1e8f887acSAmir Vadai /*
2e8f887acSAmir Vadai  * Copyright (c) 2016, Mellanox Technologies. All rights reserved.
3e8f887acSAmir Vadai  *
4e8f887acSAmir Vadai  * This software is available to you under a choice of one of two
5e8f887acSAmir Vadai  * licenses.  You may choose to be licensed under the terms of the GNU
6e8f887acSAmir Vadai  * General Public License (GPL) Version 2, available from the file
7e8f887acSAmir Vadai  * COPYING in the main directory of this source tree, or the
8e8f887acSAmir Vadai  * OpenIB.org BSD license below:
9e8f887acSAmir Vadai  *
10e8f887acSAmir Vadai  *     Redistribution and use in source and binary forms, with or
11e8f887acSAmir Vadai  *     without modification, are permitted provided that the following
12e8f887acSAmir Vadai  *     conditions are met:
13e8f887acSAmir Vadai  *
14e8f887acSAmir Vadai  *      - Redistributions of source code must retain the above
15e8f887acSAmir Vadai  *        copyright notice, this list of conditions and the following
16e8f887acSAmir Vadai  *        disclaimer.
17e8f887acSAmir Vadai  *
18e8f887acSAmir Vadai  *      - Redistributions in binary form must reproduce the above
19e8f887acSAmir Vadai  *        copyright notice, this list of conditions and the following
20e8f887acSAmir Vadai  *        disclaimer in the documentation and/or other materials
21e8f887acSAmir Vadai  *        provided with the distribution.
22e8f887acSAmir Vadai  *
23e8f887acSAmir Vadai  * THE SOFTWARE IS PROVIDED "AS IS", WITHOUT WARRANTY OF ANY KIND,
24e8f887acSAmir Vadai  * EXPRESS OR IMPLIED, INCLUDING BUT NOT LIMITED TO THE WARRANTIES OF
25e8f887acSAmir Vadai  * MERCHANTABILITY, FITNESS FOR A PARTICULAR PURPOSE AND
26e8f887acSAmir Vadai  * NONINFRINGEMENT. IN NO EVENT SHALL THE AUTHORS OR COPYRIGHT HOLDERS
27e8f887acSAmir Vadai  * BE LIABLE FOR ANY CLAIM, DAMAGES OR OTHER LIABILITY, WHETHER IN AN
28e8f887acSAmir Vadai  * ACTION OF CONTRACT, TORT OR OTHERWISE, ARISING FROM, OUT OF OR IN
29e8f887acSAmir Vadai  * CONNECTION WITH THE SOFTWARE OR THE USE OR OTHER DEALINGS IN THE
30e8f887acSAmir Vadai  * SOFTWARE.
31e8f887acSAmir Vadai  */
32e8f887acSAmir Vadai 
33e3a2b7edSAmir Vadai #include <net/flow_dissector.h>
34e2394a61SVlad Buslov #include <net/flow_offload.h>
353f7d0eb4SOr Gerlitz #include <net/sch_generic.h>
36e3a2b7edSAmir Vadai #include <net/pkt_cls.h>
37e8f887acSAmir Vadai #include <linux/mlx5/fs.h>
38e8f887acSAmir Vadai #include <linux/mlx5/device.h>
39e8f887acSAmir Vadai #include <linux/rhashtable.h>
405a7e5bcbSVlad Buslov #include <linux/refcount.h>
41db76ca24SVlad Buslov #include <linux/completion.h>
42f6dfb4c3SHadar Hen Zion #include <net/arp.h>
433616d08bSDavid Ahern #include <net/ipv6_stubs.h>
44f828ca6aSEli Cohen #include <net/bareudp.h>
45d34eb2fcSOr Gerlitz #include <net/bonding.h>
46e8f887acSAmir Vadai #include "en.h"
47f0da4daaSChris Mi #include "en/tc/post_act.h"
481d447a39SSaeed Mahameed #include "en_rep.h"
49768c3667SVlad Buslov #include "en/rep/tc.h"
50e2394a61SVlad Buslov #include "en/rep/neigh.h"
51232c0013SHadar Hen Zion #include "en_tc.h"
5203a9d11eSOr Gerlitz #include "eswitch.h"
533f6d08d1SOr Gerlitz #include "fs_core.h"
542c81bfd5SHuy Nguyen #include "en/port.h"
55101f4de9SOz Shlomo #include "en/tc_tun.h"
560a7fcb78SPaul Blakey #include "en/mapping.h"
574c3844d9SPaul Blakey #include "en/tc_ct.h"
58b2fdf3d0SPaul Blakey #include "en/mod_hdr.h"
590d9f9647SVlad Buslov #include "en/tc_tun_encap.h"
600027d70cSChris Mi #include "en/tc/sample.h"
61fad54790SRoi Dayan #include "en/tc/act/act.h"
6204de7ddaSRoi Dayan #include "lib/devcom.h"
639272e3dfSYevgeny Kliteynik #include "lib/geneve.h"
64ae430332SAriel Levkovich #include "lib/fs_chains.h"
657a978759SDmytro Linkin #include "diag/en_tc_tracepoint.h"
661fe3e316SParav Pandit #include <asm/div64.h>
67016c8946SJakub Kicinski #include "lag/lag.h"
68016c8946SJakub Kicinski #include "lag/mp.h"
69e8f887acSAmir Vadai 
70acff797cSMaor Gottlieb #define MLX5E_TC_TABLE_NUM_GROUPS 4
716a064674SAriel Levkovich #define MLX5E_TC_TABLE_MAX_GROUP_SIZE BIT(18)
72e8f887acSAmir Vadai 
738f1e0b97SPaul Blakey struct mlx5e_tc_attr_to_reg_mapping mlx5e_tc_attr_to_reg_mappings[] = {
748f1e0b97SPaul Blakey 	[CHAIN_TO_REG] = {
758f1e0b97SPaul Blakey 		.mfield = MLX5_ACTION_IN_FIELD_METADATA_REG_C_0,
768f1e0b97SPaul Blakey 		.moffset = 0,
77ed2fe7baSPaul Blakey 		.mlen = 16,
788f1e0b97SPaul Blakey 	},
7910742efcSVlad Buslov 	[VPORT_TO_REG] = {
8010742efcSVlad Buslov 		.mfield = MLX5_ACTION_IN_FIELD_METADATA_REG_C_0,
81ed2fe7baSPaul Blakey 		.moffset = 16,
82ed2fe7baSPaul Blakey 		.mlen = 16,
8310742efcSVlad Buslov 	},
840a7fcb78SPaul Blakey 	[TUNNEL_TO_REG] = {
850a7fcb78SPaul Blakey 		.mfield = MLX5_ACTION_IN_FIELD_METADATA_REG_C_1,
86ed2fe7baSPaul Blakey 		.moffset = 8,
87ed2fe7baSPaul Blakey 		.mlen = ESW_TUN_OPTS_BITS + ESW_TUN_ID_BITS,
880a7fcb78SPaul Blakey 		.soffset = MLX5_BYTE_OFF(fte_match_param,
890a7fcb78SPaul Blakey 					 misc_parameters_2.metadata_reg_c_1),
900a7fcb78SPaul Blakey 	},
914c3844d9SPaul Blakey 	[ZONE_TO_REG] = zone_to_reg_ct,
92a8eb919bSPaul Blakey 	[ZONE_RESTORE_TO_REG] = zone_restore_to_reg_ct,
934c3844d9SPaul Blakey 	[CTSTATE_TO_REG] = ctstate_to_reg_ct,
944c3844d9SPaul Blakey 	[MARK_TO_REG] = mark_to_reg_ct,
954c3844d9SPaul Blakey 	[LABELS_TO_REG] = labels_to_reg_ct,
964c3844d9SPaul Blakey 	[FTEID_TO_REG] = fteid_to_reg_ct,
9739c538d6SCai Huoqing 	/* For NIC rules we store the restore metadata directly
98c7569097SAriel Levkovich 	 * into reg_b that is passed to SW since we don't
99c7569097SAriel Levkovich 	 * jump between steering domains.
100c7569097SAriel Levkovich 	 */
101c7569097SAriel Levkovich 	[NIC_CHAIN_TO_REG] = {
102c7569097SAriel Levkovich 		.mfield = MLX5_ACTION_IN_FIELD_METADATA_REG_B,
103c7569097SAriel Levkovich 		.moffset = 0,
104ed2fe7baSPaul Blakey 		.mlen = 16,
105c7569097SAriel Levkovich 	},
106aedd133dSAriel Levkovich 	[NIC_ZONE_RESTORE_TO_REG] = nic_zone_restore_to_reg_ct,
1078f1e0b97SPaul Blakey };
1088f1e0b97SPaul Blakey 
1099ba33339SRoi Dayan /* To avoid false lock dependency warning set the tc_ht lock
1109ba33339SRoi Dayan  * class different than the lock class of the ht being used when deleting
1119ba33339SRoi Dayan  * last flow from a group and then deleting a group, we get into del_sw_flow_group()
1129ba33339SRoi Dayan  * which call rhashtable_destroy on fg->ftes_hash which will take ht->mutex but
1139ba33339SRoi Dayan  * it's different than the ht->mutex here.
1149ba33339SRoi Dayan  */
1159ba33339SRoi Dayan static struct lock_class_key tc_ht_lock_key;
1169ba33339SRoi Dayan 
1170a7fcb78SPaul Blakey static void mlx5e_put_flow_tunnel_id(struct mlx5e_tc_flow *flow);
1180a7fcb78SPaul Blakey 
1190a7fcb78SPaul Blakey void
1200a7fcb78SPaul Blakey mlx5e_tc_match_to_reg_match(struct mlx5_flow_spec *spec,
1210a7fcb78SPaul Blakey 			    enum mlx5e_tc_attr_to_reg type,
122ed2fe7baSPaul Blakey 			    u32 val,
1230a7fcb78SPaul Blakey 			    u32 mask)
1240a7fcb78SPaul Blakey {
125ed2fe7baSPaul Blakey 	void *headers_c = spec->match_criteria, *headers_v = spec->match_value, *fmask, *fval;
1260a7fcb78SPaul Blakey 	int soffset = mlx5e_tc_attr_to_reg_mappings[type].soffset;
127ed2fe7baSPaul Blakey 	int moffset = mlx5e_tc_attr_to_reg_mappings[type].moffset;
1280a7fcb78SPaul Blakey 	int match_len = mlx5e_tc_attr_to_reg_mappings[type].mlen;
129ed2fe7baSPaul Blakey 	u32 max_mask = GENMASK(match_len - 1, 0);
130ed2fe7baSPaul Blakey 	__be32 curr_mask_be, curr_val_be;
131ed2fe7baSPaul Blakey 	u32 curr_mask, curr_val;
1320a7fcb78SPaul Blakey 
1330a7fcb78SPaul Blakey 	fmask = headers_c + soffset;
1340a7fcb78SPaul Blakey 	fval = headers_v + soffset;
1350a7fcb78SPaul Blakey 
136ed2fe7baSPaul Blakey 	memcpy(&curr_mask_be, fmask, 4);
137ed2fe7baSPaul Blakey 	memcpy(&curr_val_be, fval, 4);
1380a7fcb78SPaul Blakey 
139ed2fe7baSPaul Blakey 	curr_mask = be32_to_cpu(curr_mask_be);
140ed2fe7baSPaul Blakey 	curr_val = be32_to_cpu(curr_val_be);
141ed2fe7baSPaul Blakey 
142ed2fe7baSPaul Blakey 	//move to correct offset
143ed2fe7baSPaul Blakey 	WARN_ON(mask > max_mask);
144ed2fe7baSPaul Blakey 	mask <<= moffset;
145ed2fe7baSPaul Blakey 	val <<= moffset;
146ed2fe7baSPaul Blakey 	max_mask <<= moffset;
147ed2fe7baSPaul Blakey 
148ed2fe7baSPaul Blakey 	//zero val and mask
149ed2fe7baSPaul Blakey 	curr_mask &= ~max_mask;
150ed2fe7baSPaul Blakey 	curr_val &= ~max_mask;
151ed2fe7baSPaul Blakey 
152ed2fe7baSPaul Blakey 	//add current to mask
153ed2fe7baSPaul Blakey 	curr_mask |= mask;
154ed2fe7baSPaul Blakey 	curr_val |= val;
155ed2fe7baSPaul Blakey 
156ed2fe7baSPaul Blakey 	//back to be32 and write
157ed2fe7baSPaul Blakey 	curr_mask_be = cpu_to_be32(curr_mask);
158ed2fe7baSPaul Blakey 	curr_val_be = cpu_to_be32(curr_val);
159ed2fe7baSPaul Blakey 
160ed2fe7baSPaul Blakey 	memcpy(fmask, &curr_mask_be, 4);
161ed2fe7baSPaul Blakey 	memcpy(fval, &curr_val_be, 4);
1620a7fcb78SPaul Blakey 
1630a7fcb78SPaul Blakey 	spec->match_criteria_enable |= MLX5_MATCH_MISC_PARAMETERS_2;
1640a7fcb78SPaul Blakey }
1650a7fcb78SPaul Blakey 
1667e36feebSPaul Blakey void
1677e36feebSPaul Blakey mlx5e_tc_match_to_reg_get_match(struct mlx5_flow_spec *spec,
1687e36feebSPaul Blakey 				enum mlx5e_tc_attr_to_reg type,
169ed2fe7baSPaul Blakey 				u32 *val,
1707e36feebSPaul Blakey 				u32 *mask)
1717e36feebSPaul Blakey {
172ed2fe7baSPaul Blakey 	void *headers_c = spec->match_criteria, *headers_v = spec->match_value, *fmask, *fval;
1737e36feebSPaul Blakey 	int soffset = mlx5e_tc_attr_to_reg_mappings[type].soffset;
174ed2fe7baSPaul Blakey 	int moffset = mlx5e_tc_attr_to_reg_mappings[type].moffset;
1757e36feebSPaul Blakey 	int match_len = mlx5e_tc_attr_to_reg_mappings[type].mlen;
176ed2fe7baSPaul Blakey 	u32 max_mask = GENMASK(match_len - 1, 0);
177ed2fe7baSPaul Blakey 	__be32 curr_mask_be, curr_val_be;
178ed2fe7baSPaul Blakey 	u32 curr_mask, curr_val;
1797e36feebSPaul Blakey 
1807e36feebSPaul Blakey 	fmask = headers_c + soffset;
1817e36feebSPaul Blakey 	fval = headers_v + soffset;
1827e36feebSPaul Blakey 
183ed2fe7baSPaul Blakey 	memcpy(&curr_mask_be, fmask, 4);
184ed2fe7baSPaul Blakey 	memcpy(&curr_val_be, fval, 4);
1857e36feebSPaul Blakey 
186ed2fe7baSPaul Blakey 	curr_mask = be32_to_cpu(curr_mask_be);
187ed2fe7baSPaul Blakey 	curr_val = be32_to_cpu(curr_val_be);
188ed2fe7baSPaul Blakey 
189ed2fe7baSPaul Blakey 	*mask = (curr_mask >> moffset) & max_mask;
190ed2fe7baSPaul Blakey 	*val = (curr_val >> moffset) & max_mask;
1917e36feebSPaul Blakey }
1927e36feebSPaul Blakey 
1930a7fcb78SPaul Blakey int
194c7b9038dSVlad Buslov mlx5e_tc_match_to_reg_set_and_get_id(struct mlx5_core_dev *mdev,
1950a7fcb78SPaul Blakey 				     struct mlx5e_tc_mod_hdr_acts *mod_hdr_acts,
196aedd133dSAriel Levkovich 				     enum mlx5_flow_namespace_type ns,
1970a7fcb78SPaul Blakey 				     enum mlx5e_tc_attr_to_reg type,
1980a7fcb78SPaul Blakey 				     u32 data)
1990a7fcb78SPaul Blakey {
2000a7fcb78SPaul Blakey 	int moffset = mlx5e_tc_attr_to_reg_mappings[type].moffset;
2010a7fcb78SPaul Blakey 	int mfield = mlx5e_tc_attr_to_reg_mappings[type].mfield;
2020a7fcb78SPaul Blakey 	int mlen = mlx5e_tc_attr_to_reg_mappings[type].mlen;
2030a7fcb78SPaul Blakey 	char *modact;
2040a7fcb78SPaul Blakey 	int err;
2050a7fcb78SPaul Blakey 
2062c0e5cf5SPaul Blakey 	modact = mlx5e_mod_hdr_alloc(mdev, ns, mod_hdr_acts);
2072c0e5cf5SPaul Blakey 	if (IS_ERR(modact))
2082c0e5cf5SPaul Blakey 		return PTR_ERR(modact);
2090a7fcb78SPaul Blakey 
2100a7fcb78SPaul Blakey 	/* Firmware has 5bit length field and 0 means 32bits */
211ed2fe7baSPaul Blakey 	if (mlen == 32)
2120a7fcb78SPaul Blakey 		mlen = 0;
2130a7fcb78SPaul Blakey 
2140a7fcb78SPaul Blakey 	MLX5_SET(set_action_in, modact, action_type, MLX5_ACTION_TYPE_SET);
2150a7fcb78SPaul Blakey 	MLX5_SET(set_action_in, modact, field, mfield);
216ed2fe7baSPaul Blakey 	MLX5_SET(set_action_in, modact, offset, moffset);
217ed2fe7baSPaul Blakey 	MLX5_SET(set_action_in, modact, length, mlen);
2180a7fcb78SPaul Blakey 	MLX5_SET(set_action_in, modact, data, data);
219c7b9038dSVlad Buslov 	err = mod_hdr_acts->num_actions;
2200a7fcb78SPaul Blakey 	mod_hdr_acts->num_actions++;
2210a7fcb78SPaul Blakey 
222c7b9038dSVlad Buslov 	return err;
2230a7fcb78SPaul Blakey }
2240a7fcb78SPaul Blakey 
22527484f71SAriel Levkovich struct mlx5e_tc_int_port_priv *
22627484f71SAriel Levkovich mlx5e_get_int_port_priv(struct mlx5e_priv *priv)
22727484f71SAriel Levkovich {
22827484f71SAriel Levkovich 	struct mlx5_eswitch *esw = priv->mdev->priv.eswitch;
22927484f71SAriel Levkovich 	struct mlx5_rep_uplink_priv *uplink_priv;
23027484f71SAriel Levkovich 	struct mlx5e_rep_priv *uplink_rpriv;
23127484f71SAriel Levkovich 
23227484f71SAriel Levkovich 	if (is_mdev_switchdev_mode(priv->mdev)) {
23327484f71SAriel Levkovich 		uplink_rpriv = mlx5_eswitch_get_uplink_priv(esw, REP_ETH);
23427484f71SAriel Levkovich 		uplink_priv = &uplink_rpriv->uplink_priv;
23527484f71SAriel Levkovich 
23627484f71SAriel Levkovich 		return uplink_priv->int_port_priv;
23727484f71SAriel Levkovich 	}
23827484f71SAriel Levkovich 
23927484f71SAriel Levkovich 	return NULL;
24027484f71SAriel Levkovich }
24127484f71SAriel Levkovich 
242aedd133dSAriel Levkovich static struct mlx5_tc_ct_priv *
243aedd133dSAriel Levkovich get_ct_priv(struct mlx5e_priv *priv)
244aedd133dSAriel Levkovich {
245aedd133dSAriel Levkovich 	struct mlx5_eswitch *esw = priv->mdev->priv.eswitch;
246aedd133dSAriel Levkovich 	struct mlx5_rep_uplink_priv *uplink_priv;
247aedd133dSAriel Levkovich 	struct mlx5e_rep_priv *uplink_rpriv;
248aedd133dSAriel Levkovich 
249e8711402SLeon Romanovsky 	if (is_mdev_switchdev_mode(priv->mdev)) {
250aedd133dSAriel Levkovich 		uplink_rpriv = mlx5_eswitch_get_uplink_priv(esw, REP_ETH);
251aedd133dSAriel Levkovich 		uplink_priv = &uplink_rpriv->uplink_priv;
252aedd133dSAriel Levkovich 
253aedd133dSAriel Levkovich 		return uplink_priv->ct_priv;
254aedd133dSAriel Levkovich 	}
255aedd133dSAriel Levkovich 
256aedd133dSAriel Levkovich 	return priv->fs.tc.ct;
257aedd133dSAriel Levkovich }
258aedd133dSAriel Levkovich 
2590027d70cSChris Mi static struct mlx5e_tc_psample *
260f94d6389SChris Mi get_sample_priv(struct mlx5e_priv *priv)
261f94d6389SChris Mi {
262f94d6389SChris Mi 	struct mlx5_eswitch *esw = priv->mdev->priv.eswitch;
263f94d6389SChris Mi 	struct mlx5_rep_uplink_priv *uplink_priv;
264f94d6389SChris Mi 	struct mlx5e_rep_priv *uplink_rpriv;
265f94d6389SChris Mi 
266f94d6389SChris Mi 	if (is_mdev_switchdev_mode(priv->mdev)) {
267f94d6389SChris Mi 		uplink_rpriv = mlx5_eswitch_get_uplink_priv(esw, REP_ETH);
268f94d6389SChris Mi 		uplink_priv = &uplink_rpriv->uplink_priv;
269f94d6389SChris Mi 
2700027d70cSChris Mi 		return uplink_priv->tc_psample;
271f94d6389SChris Mi 	}
272f94d6389SChris Mi 
273f94d6389SChris Mi 	return NULL;
274f94d6389SChris Mi }
275f94d6389SChris Mi 
276aedd133dSAriel Levkovich struct mlx5_flow_handle *
277aedd133dSAriel Levkovich mlx5_tc_rule_insert(struct mlx5e_priv *priv,
278aedd133dSAriel Levkovich 		    struct mlx5_flow_spec *spec,
279aedd133dSAriel Levkovich 		    struct mlx5_flow_attr *attr)
280aedd133dSAriel Levkovich {
281aedd133dSAriel Levkovich 	struct mlx5_eswitch *esw = priv->mdev->priv.eswitch;
282aedd133dSAriel Levkovich 
283e8711402SLeon Romanovsky 	if (is_mdev_switchdev_mode(priv->mdev))
284aedd133dSAriel Levkovich 		return mlx5_eswitch_add_offloaded_rule(esw, spec, attr);
285aedd133dSAriel Levkovich 
286aedd133dSAriel Levkovich 	return	mlx5e_add_offloaded_nic_rule(priv, spec, attr);
287aedd133dSAriel Levkovich }
288aedd133dSAriel Levkovich 
289aedd133dSAriel Levkovich void
290aedd133dSAriel Levkovich mlx5_tc_rule_delete(struct mlx5e_priv *priv,
291aedd133dSAriel Levkovich 		    struct mlx5_flow_handle *rule,
292aedd133dSAriel Levkovich 		    struct mlx5_flow_attr *attr)
293aedd133dSAriel Levkovich {
294aedd133dSAriel Levkovich 	struct mlx5_eswitch *esw = priv->mdev->priv.eswitch;
295aedd133dSAriel Levkovich 
296e8711402SLeon Romanovsky 	if (is_mdev_switchdev_mode(priv->mdev)) {
297aedd133dSAriel Levkovich 		mlx5_eswitch_del_offloaded_rule(esw, rule, attr);
298aedd133dSAriel Levkovich 
299aedd133dSAriel Levkovich 		return;
300aedd133dSAriel Levkovich 	}
301aedd133dSAriel Levkovich 
302aedd133dSAriel Levkovich 	mlx5e_del_offloaded_nic_rule(priv, rule, attr);
303aedd133dSAriel Levkovich }
304aedd133dSAriel Levkovich 
305c7b9038dSVlad Buslov int
306c7b9038dSVlad Buslov mlx5e_tc_match_to_reg_set(struct mlx5_core_dev *mdev,
307c7b9038dSVlad Buslov 			  struct mlx5e_tc_mod_hdr_acts *mod_hdr_acts,
308c7b9038dSVlad Buslov 			  enum mlx5_flow_namespace_type ns,
309c7b9038dSVlad Buslov 			  enum mlx5e_tc_attr_to_reg type,
310c7b9038dSVlad Buslov 			  u32 data)
311c7b9038dSVlad Buslov {
312c7b9038dSVlad Buslov 	int ret = mlx5e_tc_match_to_reg_set_and_get_id(mdev, mod_hdr_acts, ns, type, data);
313c7b9038dSVlad Buslov 
314c7b9038dSVlad Buslov 	return ret < 0 ? ret : 0;
315c7b9038dSVlad Buslov }
316c7b9038dSVlad Buslov 
317c7b9038dSVlad Buslov void mlx5e_tc_match_to_reg_mod_hdr_change(struct mlx5_core_dev *mdev,
318c7b9038dSVlad Buslov 					  struct mlx5e_tc_mod_hdr_acts *mod_hdr_acts,
319c7b9038dSVlad Buslov 					  enum mlx5e_tc_attr_to_reg type,
320c7b9038dSVlad Buslov 					  int act_id, u32 data)
321c7b9038dSVlad Buslov {
322c7b9038dSVlad Buslov 	int moffset = mlx5e_tc_attr_to_reg_mappings[type].moffset;
323c7b9038dSVlad Buslov 	int mfield = mlx5e_tc_attr_to_reg_mappings[type].mfield;
324c7b9038dSVlad Buslov 	int mlen = mlx5e_tc_attr_to_reg_mappings[type].mlen;
325c7b9038dSVlad Buslov 	char *modact;
326c7b9038dSVlad Buslov 
3272c0e5cf5SPaul Blakey 	modact = mlx5e_mod_hdr_get_item(mod_hdr_acts, act_id);
328c7b9038dSVlad Buslov 
329c7b9038dSVlad Buslov 	/* Firmware has 5bit length field and 0 means 32bits */
330ed2fe7baSPaul Blakey 	if (mlen == 32)
331c7b9038dSVlad Buslov 		mlen = 0;
332c7b9038dSVlad Buslov 
333c7b9038dSVlad Buslov 	MLX5_SET(set_action_in, modact, action_type, MLX5_ACTION_TYPE_SET);
334c7b9038dSVlad Buslov 	MLX5_SET(set_action_in, modact, field, mfield);
335ed2fe7baSPaul Blakey 	MLX5_SET(set_action_in, modact, offset, moffset);
336ed2fe7baSPaul Blakey 	MLX5_SET(set_action_in, modact, length, mlen);
337c7b9038dSVlad Buslov 	MLX5_SET(set_action_in, modact, data, data);
338c7b9038dSVlad Buslov }
339c7b9038dSVlad Buslov 
34077ab67b7SOr Gerlitz struct mlx5e_hairpin {
34177ab67b7SOr Gerlitz 	struct mlx5_hairpin *pair;
34277ab67b7SOr Gerlitz 
34377ab67b7SOr Gerlitz 	struct mlx5_core_dev *func_mdev;
3443f6d08d1SOr Gerlitz 	struct mlx5e_priv *func_priv;
34577ab67b7SOr Gerlitz 	u32 tdn;
346a6696735SMaxim Mikityanskiy 	struct mlx5e_tir direct_tir;
3473f6d08d1SOr Gerlitz 
3483f6d08d1SOr Gerlitz 	int num_channels;
3493f6d08d1SOr Gerlitz 	struct mlx5e_rqt indir_rqt;
350a6696735SMaxim Mikityanskiy 	struct mlx5e_tir indir_tir[MLX5E_NUM_INDIR_TIRS];
351f4b45940SMaor Gottlieb 	struct mlx5_ttc_table *ttc;
35277ab67b7SOr Gerlitz };
35377ab67b7SOr Gerlitz 
3545c65c564SOr Gerlitz struct mlx5e_hairpin_entry {
3555c65c564SOr Gerlitz 	/* a node of a hash table which keeps all the  hairpin entries */
3565c65c564SOr Gerlitz 	struct hlist_node hairpin_hlist;
3575c65c564SOr Gerlitz 
35873edca73SVlad Buslov 	/* protects flows list */
35973edca73SVlad Buslov 	spinlock_t flows_lock;
3605c65c564SOr Gerlitz 	/* flows sharing the same hairpin */
3615c65c564SOr Gerlitz 	struct list_head flows;
362db76ca24SVlad Buslov 	/* hpe's that were not fully initialized when dead peer update event
363db76ca24SVlad Buslov 	 * function traversed them.
364db76ca24SVlad Buslov 	 */
365db76ca24SVlad Buslov 	struct list_head dead_peer_wait_list;
3665c65c564SOr Gerlitz 
367d8822868SOr Gerlitz 	u16 peer_vhca_id;
368106be53bSOr Gerlitz 	u8 prio;
3695c65c564SOr Gerlitz 	struct mlx5e_hairpin *hp;
370e4f9abbdSVlad Buslov 	refcount_t refcnt;
371db76ca24SVlad Buslov 	struct completion res_ready;
3725c65c564SOr Gerlitz };
3735c65c564SOr Gerlitz 
3745a7e5bcbSVlad Buslov static void mlx5e_tc_del_flow(struct mlx5e_priv *priv,
3755a7e5bcbSVlad Buslov 			      struct mlx5e_tc_flow *flow);
3765a7e5bcbSVlad Buslov 
3770d9f9647SVlad Buslov struct mlx5e_tc_flow *mlx5e_flow_get(struct mlx5e_tc_flow *flow)
3785a7e5bcbSVlad Buslov {
3795a7e5bcbSVlad Buslov 	if (!flow || !refcount_inc_not_zero(&flow->refcnt))
3805a7e5bcbSVlad Buslov 		return ERR_PTR(-EINVAL);
3815a7e5bcbSVlad Buslov 	return flow;
3825a7e5bcbSVlad Buslov }
3835a7e5bcbSVlad Buslov 
3840d9f9647SVlad Buslov void mlx5e_flow_put(struct mlx5e_priv *priv, struct mlx5e_tc_flow *flow)
3855a7e5bcbSVlad Buslov {
3865a7e5bcbSVlad Buslov 	if (refcount_dec_and_test(&flow->refcnt)) {
3875a7e5bcbSVlad Buslov 		mlx5e_tc_del_flow(priv, flow);
388c5d326b2SVlad Buslov 		kfree_rcu(flow, rcu_head);
3895a7e5bcbSVlad Buslov 	}
3905a7e5bcbSVlad Buslov }
3915a7e5bcbSVlad Buslov 
392aedd133dSAriel Levkovich bool mlx5e_is_eswitch_flow(struct mlx5e_tc_flow *flow)
393226f2ca3SVlad Buslov {
394226f2ca3SVlad Buslov 	return flow_flag_test(flow, ESWITCH);
395226f2ca3SVlad Buslov }
396226f2ca3SVlad Buslov 
39767d62ee7SRoi Dayan bool mlx5e_is_ft_flow(struct mlx5e_tc_flow *flow)
39884179981SPaul Blakey {
39984179981SPaul Blakey 	return flow_flag_test(flow, FT);
40084179981SPaul Blakey }
40184179981SPaul Blakey 
4020d9f9647SVlad Buslov bool mlx5e_is_offloaded_flow(struct mlx5e_tc_flow *flow)
403226f2ca3SVlad Buslov {
404226f2ca3SVlad Buslov 	return flow_flag_test(flow, OFFLOADED);
405226f2ca3SVlad Buslov }
406226f2ca3SVlad Buslov 
407e36db1eeSRoi Dayan int mlx5e_get_flow_namespace(struct mlx5e_tc_flow *flow)
408d2faae25SVlad Buslov {
409d2faae25SVlad Buslov 	return mlx5e_is_eswitch_flow(flow) ?
410d2faae25SVlad Buslov 		MLX5_FLOW_NAMESPACE_FDB : MLX5_FLOW_NAMESPACE_KERNEL;
411d2faae25SVlad Buslov }
412b2fdf3d0SPaul Blakey 
413b2fdf3d0SPaul Blakey static struct mod_hdr_tbl *
414b2fdf3d0SPaul Blakey get_mod_hdr_table(struct mlx5e_priv *priv, struct mlx5e_tc_flow *flow)
415b2fdf3d0SPaul Blakey {
416b2fdf3d0SPaul Blakey 	struct mlx5_eswitch *esw = priv->mdev->priv.eswitch;
417b2fdf3d0SPaul Blakey 
418e36db1eeSRoi Dayan 	return mlx5e_get_flow_namespace(flow) == MLX5_FLOW_NAMESPACE_FDB ?
419b2fdf3d0SPaul Blakey 		&esw->offloads.mod_hdr :
420b2fdf3d0SPaul Blakey 		&priv->fs.tc.mod_hdr;
421b2fdf3d0SPaul Blakey }
422b2fdf3d0SPaul Blakey 
42311c9c548SOr Gerlitz static int mlx5e_attach_mod_hdr(struct mlx5e_priv *priv,
42411c9c548SOr Gerlitz 				struct mlx5e_tc_flow *flow,
42511c9c548SOr Gerlitz 				struct mlx5e_tc_flow_parse_attr *parse_attr)
42611c9c548SOr Gerlitz {
427b2fdf3d0SPaul Blakey 	struct mlx5_modify_hdr *modify_hdr;
428b2fdf3d0SPaul Blakey 	struct mlx5e_mod_hdr_handle *mh;
42911c9c548SOr Gerlitz 
430b2fdf3d0SPaul Blakey 	mh = mlx5e_mod_hdr_attach(priv->mdev, get_mod_hdr_table(priv, flow),
431e36db1eeSRoi Dayan 				  mlx5e_get_flow_namespace(flow),
432b2fdf3d0SPaul Blakey 				  &parse_attr->mod_hdr_acts);
433b2fdf3d0SPaul Blakey 	if (IS_ERR(mh))
434b2fdf3d0SPaul Blakey 		return PTR_ERR(mh);
43511c9c548SOr Gerlitz 
436b2fdf3d0SPaul Blakey 	modify_hdr = mlx5e_mod_hdr_get(mh);
437c620b772SAriel Levkovich 	flow->attr->modify_hdr = modify_hdr;
438b2fdf3d0SPaul Blakey 	flow->mh = mh;
43911c9c548SOr Gerlitz 
44011c9c548SOr Gerlitz 	return 0;
44111c9c548SOr Gerlitz }
44211c9c548SOr Gerlitz 
44311c9c548SOr Gerlitz static void mlx5e_detach_mod_hdr(struct mlx5e_priv *priv,
44411c9c548SOr Gerlitz 				 struct mlx5e_tc_flow *flow)
44511c9c548SOr Gerlitz {
4465a7e5bcbSVlad Buslov 	/* flow wasn't fully initialized */
447dd58edc3SVlad Buslov 	if (!flow->mh)
4485a7e5bcbSVlad Buslov 		return;
4495a7e5bcbSVlad Buslov 
450b2fdf3d0SPaul Blakey 	mlx5e_mod_hdr_detach(priv->mdev, get_mod_hdr_table(priv, flow),
451b2fdf3d0SPaul Blakey 			     flow->mh);
452dd58edc3SVlad Buslov 	flow->mh = NULL;
45311c9c548SOr Gerlitz }
45411c9c548SOr Gerlitz 
45577ab67b7SOr Gerlitz static
45677ab67b7SOr Gerlitz struct mlx5_core_dev *mlx5e_hairpin_get_mdev(struct net *net, int ifindex)
45777ab67b7SOr Gerlitz {
458b1c2f631SDima Chumak 	struct mlx5_core_dev *mdev;
45977ab67b7SOr Gerlitz 	struct net_device *netdev;
46077ab67b7SOr Gerlitz 	struct mlx5e_priv *priv;
46177ab67b7SOr Gerlitz 
462b1c2f631SDima Chumak 	netdev = dev_get_by_index(net, ifindex);
463b1c2f631SDima Chumak 	if (!netdev)
464b1c2f631SDima Chumak 		return ERR_PTR(-ENODEV);
465b1c2f631SDima Chumak 
46677ab67b7SOr Gerlitz 	priv = netdev_priv(netdev);
467b1c2f631SDima Chumak 	mdev = priv->mdev;
468b1c2f631SDima Chumak 	dev_put(netdev);
469b1c2f631SDima Chumak 
470b1c2f631SDima Chumak 	/* Mirred tc action holds a refcount on the ifindex net_device (see
471b1c2f631SDima Chumak 	 * net/sched/act_mirred.c:tcf_mirred_get_dev). So, it's okay to continue using mdev
472b1c2f631SDima Chumak 	 * after dev_put(netdev), while we're in the context of adding a tc flow.
473b1c2f631SDima Chumak 	 *
474b1c2f631SDima Chumak 	 * The mdev pointer corresponds to the peer/out net_device of a hairpin. It is then
475b1c2f631SDima Chumak 	 * stored in a hairpin object, which exists until all flows, that refer to it, get
476b1c2f631SDima Chumak 	 * removed.
477b1c2f631SDima Chumak 	 *
478b1c2f631SDima Chumak 	 * On the other hand, after a hairpin object has been created, the peer net_device may
479b1c2f631SDima Chumak 	 * be removed/unbound while there are still some hairpin flows that are using it. This
480b1c2f631SDima Chumak 	 * case is handled by mlx5e_tc_hairpin_update_dead_peer, which is hooked to
481b1c2f631SDima Chumak 	 * NETDEV_UNREGISTER event of the peer net_device.
482b1c2f631SDima Chumak 	 */
483b1c2f631SDima Chumak 	return mdev;
48477ab67b7SOr Gerlitz }
48577ab67b7SOr Gerlitz 
48677ab67b7SOr Gerlitz static int mlx5e_hairpin_create_transport(struct mlx5e_hairpin *hp)
48777ab67b7SOr Gerlitz {
488a6696735SMaxim Mikityanskiy 	struct mlx5e_tir_builder *builder;
48977ab67b7SOr Gerlitz 	int err;
49077ab67b7SOr Gerlitz 
491a6696735SMaxim Mikityanskiy 	builder = mlx5e_tir_builder_alloc(false);
492a6696735SMaxim Mikityanskiy 	if (!builder)
493a6696735SMaxim Mikityanskiy 		return -ENOMEM;
494a6696735SMaxim Mikityanskiy 
49577ab67b7SOr Gerlitz 	err = mlx5_core_alloc_transport_domain(hp->func_mdev, &hp->tdn);
49677ab67b7SOr Gerlitz 	if (err)
497a6696735SMaxim Mikityanskiy 		goto out;
49877ab67b7SOr Gerlitz 
499a6696735SMaxim Mikityanskiy 	mlx5e_tir_builder_build_inline(builder, hp->tdn, hp->pair->rqn[0]);
500a6696735SMaxim Mikityanskiy 	err = mlx5e_tir_init(&hp->direct_tir, builder, hp->func_mdev, false);
50177ab67b7SOr Gerlitz 	if (err)
50277ab67b7SOr Gerlitz 		goto create_tir_err;
50377ab67b7SOr Gerlitz 
504a6696735SMaxim Mikityanskiy out:
505a6696735SMaxim Mikityanskiy 	mlx5e_tir_builder_free(builder);
506a6696735SMaxim Mikityanskiy 	return err;
50777ab67b7SOr Gerlitz 
50877ab67b7SOr Gerlitz create_tir_err:
50977ab67b7SOr Gerlitz 	mlx5_core_dealloc_transport_domain(hp->func_mdev, hp->tdn);
510a6696735SMaxim Mikityanskiy 
511a6696735SMaxim Mikityanskiy 	goto out;
51277ab67b7SOr Gerlitz }
51377ab67b7SOr Gerlitz 
51477ab67b7SOr Gerlitz static void mlx5e_hairpin_destroy_transport(struct mlx5e_hairpin *hp)
51577ab67b7SOr Gerlitz {
516a6696735SMaxim Mikityanskiy 	mlx5e_tir_destroy(&hp->direct_tir);
51777ab67b7SOr Gerlitz 	mlx5_core_dealloc_transport_domain(hp->func_mdev, hp->tdn);
51877ab67b7SOr Gerlitz }
51977ab67b7SOr Gerlitz 
5203f6d08d1SOr Gerlitz static int mlx5e_hairpin_create_indirect_rqt(struct mlx5e_hairpin *hp)
5213f6d08d1SOr Gerlitz {
5223f6d08d1SOr Gerlitz 	struct mlx5e_priv *priv = hp->func_priv;
5233f6d08d1SOr Gerlitz 	struct mlx5_core_dev *mdev = priv->mdev;
52406e9f13aSMaxim Mikityanskiy 	struct mlx5e_rss_params_indir *indir;
52506e9f13aSMaxim Mikityanskiy 	int err;
5263f6d08d1SOr Gerlitz 
52706e9f13aSMaxim Mikityanskiy 	indir = kvmalloc(sizeof(*indir), GFP_KERNEL);
52806e9f13aSMaxim Mikityanskiy 	if (!indir)
5293f6d08d1SOr Gerlitz 		return -ENOMEM;
5303f6d08d1SOr Gerlitz 
53143befe99SMaxim Mikityanskiy 	mlx5e_rss_params_indir_init_uniform(indir, hp->num_channels);
53206e9f13aSMaxim Mikityanskiy 	err = mlx5e_rqt_init_indir(&hp->indir_rqt, mdev, hp->pair->rqn, hp->num_channels,
53343ec0f41SMaxim Mikityanskiy 				   mlx5e_rx_res_get_current_hash(priv->rx_res).hfunc,
53443ec0f41SMaxim Mikityanskiy 				   indir);
5353f6d08d1SOr Gerlitz 
53606e9f13aSMaxim Mikityanskiy 	kvfree(indir);
5373f6d08d1SOr Gerlitz 	return err;
5383f6d08d1SOr Gerlitz }
5393f6d08d1SOr Gerlitz 
5403f6d08d1SOr Gerlitz static int mlx5e_hairpin_create_indirect_tirs(struct mlx5e_hairpin *hp)
5413f6d08d1SOr Gerlitz {
5423f6d08d1SOr Gerlitz 	struct mlx5e_priv *priv = hp->func_priv;
54343ec0f41SMaxim Mikityanskiy 	struct mlx5e_rss_params_hash rss_hash;
544d443c6f6SMaor Gottlieb 	enum mlx5_traffic_types tt, max_tt;
545a6696735SMaxim Mikityanskiy 	struct mlx5e_tir_builder *builder;
546a6696735SMaxim Mikityanskiy 	int err = 0;
547a6696735SMaxim Mikityanskiy 
548a6696735SMaxim Mikityanskiy 	builder = mlx5e_tir_builder_alloc(false);
549a6696735SMaxim Mikityanskiy 	if (!builder)
550a6696735SMaxim Mikityanskiy 		return -ENOMEM;
551a6696735SMaxim Mikityanskiy 
55243ec0f41SMaxim Mikityanskiy 	rss_hash = mlx5e_rx_res_get_current_hash(priv->rx_res);
5533f6d08d1SOr Gerlitz 
5543f6d08d1SOr Gerlitz 	for (tt = 0; tt < MLX5E_NUM_INDIR_TIRS; tt++) {
55565d6b6e5SMaxim Mikityanskiy 		struct mlx5e_rss_params_traffic_type rss_tt;
556d930ac79SAya Levin 
55765d6b6e5SMaxim Mikityanskiy 		rss_tt = mlx5e_rss_get_default_tt_config(tt);
5583f6d08d1SOr Gerlitz 
559a6696735SMaxim Mikityanskiy 		mlx5e_tir_builder_build_rqt(builder, hp->tdn,
560a6696735SMaxim Mikityanskiy 					    mlx5e_rqt_get_rqtn(&hp->indir_rqt),
561a6696735SMaxim Mikityanskiy 					    false);
56243ec0f41SMaxim Mikityanskiy 		mlx5e_tir_builder_build_rss(builder, &rss_hash, &rss_tt, false);
563bbeb53b8SAya Levin 
564a6696735SMaxim Mikityanskiy 		err = mlx5e_tir_init(&hp->indir_tir[tt], builder, hp->func_mdev, false);
5653f6d08d1SOr Gerlitz 		if (err) {
5663f6d08d1SOr Gerlitz 			mlx5_core_warn(hp->func_mdev, "create indirect tirs failed, %d\n", err);
5673f6d08d1SOr Gerlitz 			goto err_destroy_tirs;
5683f6d08d1SOr Gerlitz 		}
569a6696735SMaxim Mikityanskiy 
570a6696735SMaxim Mikityanskiy 		mlx5e_tir_builder_clear(builder);
5713f6d08d1SOr Gerlitz 	}
572a6696735SMaxim Mikityanskiy 
573a6696735SMaxim Mikityanskiy out:
574a6696735SMaxim Mikityanskiy 	mlx5e_tir_builder_free(builder);
575a6696735SMaxim Mikityanskiy 	return err;
5763f6d08d1SOr Gerlitz 
5773f6d08d1SOr Gerlitz err_destroy_tirs:
578a6696735SMaxim Mikityanskiy 	max_tt = tt;
579a6696735SMaxim Mikityanskiy 	for (tt = 0; tt < max_tt; tt++)
580a6696735SMaxim Mikityanskiy 		mlx5e_tir_destroy(&hp->indir_tir[tt]);
581a6696735SMaxim Mikityanskiy 
582a6696735SMaxim Mikityanskiy 	goto out;
5833f6d08d1SOr Gerlitz }
5843f6d08d1SOr Gerlitz 
5853f6d08d1SOr Gerlitz static void mlx5e_hairpin_destroy_indirect_tirs(struct mlx5e_hairpin *hp)
5863f6d08d1SOr Gerlitz {
5873f6d08d1SOr Gerlitz 	int tt;
5883f6d08d1SOr Gerlitz 
5893f6d08d1SOr Gerlitz 	for (tt = 0; tt < MLX5E_NUM_INDIR_TIRS; tt++)
590a6696735SMaxim Mikityanskiy 		mlx5e_tir_destroy(&hp->indir_tir[tt]);
5913f6d08d1SOr Gerlitz }
5923f6d08d1SOr Gerlitz 
5933f6d08d1SOr Gerlitz static void mlx5e_hairpin_set_ttc_params(struct mlx5e_hairpin *hp,
5943f6d08d1SOr Gerlitz 					 struct ttc_params *ttc_params)
5953f6d08d1SOr Gerlitz {
5963f6d08d1SOr Gerlitz 	struct mlx5_flow_table_attr *ft_attr = &ttc_params->ft_attr;
5973f6d08d1SOr Gerlitz 	int tt;
5983f6d08d1SOr Gerlitz 
5993f6d08d1SOr Gerlitz 	memset(ttc_params, 0, sizeof(*ttc_params));
6003f6d08d1SOr Gerlitz 
601bc29764eSMaor Gottlieb 	ttc_params->ns = mlx5_get_flow_namespace(hp->func_mdev,
602bc29764eSMaor Gottlieb 						 MLX5_FLOW_NAMESPACE_KERNEL);
603bc29764eSMaor Gottlieb 	for (tt = 0; tt < MLX5_NUM_TT; tt++) {
604bc29764eSMaor Gottlieb 		ttc_params->dests[tt].type = MLX5_FLOW_DESTINATION_TYPE_TIR;
605bc29764eSMaor Gottlieb 		ttc_params->dests[tt].tir_num =
606bc29764eSMaor Gottlieb 			tt == MLX5_TT_ANY ?
607bc29764eSMaor Gottlieb 				mlx5e_tir_get_tirn(&hp->direct_tir) :
608bc29764eSMaor Gottlieb 				mlx5e_tir_get_tirn(&hp->indir_tir[tt]);
609bc29764eSMaor Gottlieb 	}
6103f6d08d1SOr Gerlitz 
6113f6d08d1SOr Gerlitz 	ft_attr->level = MLX5E_TC_TTC_FT_LEVEL;
6123f6d08d1SOr Gerlitz 	ft_attr->prio = MLX5E_TC_PRIO;
6133f6d08d1SOr Gerlitz }
6143f6d08d1SOr Gerlitz 
6153f6d08d1SOr Gerlitz static int mlx5e_hairpin_rss_init(struct mlx5e_hairpin *hp)
6163f6d08d1SOr Gerlitz {
6173f6d08d1SOr Gerlitz 	struct mlx5e_priv *priv = hp->func_priv;
6183f6d08d1SOr Gerlitz 	struct ttc_params ttc_params;
6193f6d08d1SOr Gerlitz 	int err;
6203f6d08d1SOr Gerlitz 
6213f6d08d1SOr Gerlitz 	err = mlx5e_hairpin_create_indirect_rqt(hp);
6223f6d08d1SOr Gerlitz 	if (err)
6233f6d08d1SOr Gerlitz 		return err;
6243f6d08d1SOr Gerlitz 
6253f6d08d1SOr Gerlitz 	err = mlx5e_hairpin_create_indirect_tirs(hp);
6263f6d08d1SOr Gerlitz 	if (err)
6273f6d08d1SOr Gerlitz 		goto err_create_indirect_tirs;
6283f6d08d1SOr Gerlitz 
6293f6d08d1SOr Gerlitz 	mlx5e_hairpin_set_ttc_params(hp, &ttc_params);
630f4b45940SMaor Gottlieb 	hp->ttc = mlx5_create_ttc_table(priv->mdev, &ttc_params);
631f4b45940SMaor Gottlieb 	if (IS_ERR(hp->ttc)) {
632f4b45940SMaor Gottlieb 		err = PTR_ERR(hp->ttc);
6333f6d08d1SOr Gerlitz 		goto err_create_ttc_table;
634f4b45940SMaor Gottlieb 	}
6353f6d08d1SOr Gerlitz 
6363f6d08d1SOr Gerlitz 	netdev_dbg(priv->netdev, "add hairpin: using %d channels rss ttc table id %x\n",
637f4b45940SMaor Gottlieb 		   hp->num_channels,
638f4b45940SMaor Gottlieb 		   mlx5_get_ttc_flow_table(priv->fs.ttc)->id);
6393f6d08d1SOr Gerlitz 
6403f6d08d1SOr Gerlitz 	return 0;
6413f6d08d1SOr Gerlitz 
6423f6d08d1SOr Gerlitz err_create_ttc_table:
6433f6d08d1SOr Gerlitz 	mlx5e_hairpin_destroy_indirect_tirs(hp);
6443f6d08d1SOr Gerlitz err_create_indirect_tirs:
64506e9f13aSMaxim Mikityanskiy 	mlx5e_rqt_destroy(&hp->indir_rqt);
6463f6d08d1SOr Gerlitz 
6473f6d08d1SOr Gerlitz 	return err;
6483f6d08d1SOr Gerlitz }
6493f6d08d1SOr Gerlitz 
6503f6d08d1SOr Gerlitz static void mlx5e_hairpin_rss_cleanup(struct mlx5e_hairpin *hp)
6513f6d08d1SOr Gerlitz {
652f4b45940SMaor Gottlieb 	mlx5_destroy_ttc_table(hp->ttc);
6533f6d08d1SOr Gerlitz 	mlx5e_hairpin_destroy_indirect_tirs(hp);
65406e9f13aSMaxim Mikityanskiy 	mlx5e_rqt_destroy(&hp->indir_rqt);
6553f6d08d1SOr Gerlitz }
6563f6d08d1SOr Gerlitz 
65777ab67b7SOr Gerlitz static struct mlx5e_hairpin *
65877ab67b7SOr Gerlitz mlx5e_hairpin_create(struct mlx5e_priv *priv, struct mlx5_hairpin_params *params,
65977ab67b7SOr Gerlitz 		     int peer_ifindex)
66077ab67b7SOr Gerlitz {
66177ab67b7SOr Gerlitz 	struct mlx5_core_dev *func_mdev, *peer_mdev;
66277ab67b7SOr Gerlitz 	struct mlx5e_hairpin *hp;
66377ab67b7SOr Gerlitz 	struct mlx5_hairpin *pair;
66477ab67b7SOr Gerlitz 	int err;
66577ab67b7SOr Gerlitz 
66677ab67b7SOr Gerlitz 	hp = kzalloc(sizeof(*hp), GFP_KERNEL);
66777ab67b7SOr Gerlitz 	if (!hp)
66877ab67b7SOr Gerlitz 		return ERR_PTR(-ENOMEM);
66977ab67b7SOr Gerlitz 
67077ab67b7SOr Gerlitz 	func_mdev = priv->mdev;
67177ab67b7SOr Gerlitz 	peer_mdev = mlx5e_hairpin_get_mdev(dev_net(priv->netdev), peer_ifindex);
672b1c2f631SDima Chumak 	if (IS_ERR(peer_mdev)) {
673b1c2f631SDima Chumak 		err = PTR_ERR(peer_mdev);
674b1c2f631SDima Chumak 		goto create_pair_err;
675b1c2f631SDima Chumak 	}
67677ab67b7SOr Gerlitz 
67777ab67b7SOr Gerlitz 	pair = mlx5_core_hairpin_create(func_mdev, peer_mdev, params);
67877ab67b7SOr Gerlitz 	if (IS_ERR(pair)) {
67977ab67b7SOr Gerlitz 		err = PTR_ERR(pair);
68077ab67b7SOr Gerlitz 		goto create_pair_err;
68177ab67b7SOr Gerlitz 	}
68277ab67b7SOr Gerlitz 	hp->pair = pair;
68377ab67b7SOr Gerlitz 	hp->func_mdev = func_mdev;
6843f6d08d1SOr Gerlitz 	hp->func_priv = priv;
6853f6d08d1SOr Gerlitz 	hp->num_channels = params->num_channels;
68677ab67b7SOr Gerlitz 
68777ab67b7SOr Gerlitz 	err = mlx5e_hairpin_create_transport(hp);
68877ab67b7SOr Gerlitz 	if (err)
68977ab67b7SOr Gerlitz 		goto create_transport_err;
69077ab67b7SOr Gerlitz 
6913f6d08d1SOr Gerlitz 	if (hp->num_channels > 1) {
6923f6d08d1SOr Gerlitz 		err = mlx5e_hairpin_rss_init(hp);
6933f6d08d1SOr Gerlitz 		if (err)
6943f6d08d1SOr Gerlitz 			goto rss_init_err;
6953f6d08d1SOr Gerlitz 	}
6963f6d08d1SOr Gerlitz 
69777ab67b7SOr Gerlitz 	return hp;
69877ab67b7SOr Gerlitz 
6993f6d08d1SOr Gerlitz rss_init_err:
7003f6d08d1SOr Gerlitz 	mlx5e_hairpin_destroy_transport(hp);
70177ab67b7SOr Gerlitz create_transport_err:
70277ab67b7SOr Gerlitz 	mlx5_core_hairpin_destroy(hp->pair);
70377ab67b7SOr Gerlitz create_pair_err:
70477ab67b7SOr Gerlitz 	kfree(hp);
70577ab67b7SOr Gerlitz 	return ERR_PTR(err);
70677ab67b7SOr Gerlitz }
70777ab67b7SOr Gerlitz 
70877ab67b7SOr Gerlitz static void mlx5e_hairpin_destroy(struct mlx5e_hairpin *hp)
70977ab67b7SOr Gerlitz {
7103f6d08d1SOr Gerlitz 	if (hp->num_channels > 1)
7113f6d08d1SOr Gerlitz 		mlx5e_hairpin_rss_cleanup(hp);
71277ab67b7SOr Gerlitz 	mlx5e_hairpin_destroy_transport(hp);
71377ab67b7SOr Gerlitz 	mlx5_core_hairpin_destroy(hp->pair);
71477ab67b7SOr Gerlitz 	kvfree(hp);
71577ab67b7SOr Gerlitz }
71677ab67b7SOr Gerlitz 
717106be53bSOr Gerlitz static inline u32 hash_hairpin_info(u16 peer_vhca_id, u8 prio)
718106be53bSOr Gerlitz {
719106be53bSOr Gerlitz 	return (peer_vhca_id << 16 | prio);
720106be53bSOr Gerlitz }
721106be53bSOr Gerlitz 
7225c65c564SOr Gerlitz static struct mlx5e_hairpin_entry *mlx5e_hairpin_get(struct mlx5e_priv *priv,
723106be53bSOr Gerlitz 						     u16 peer_vhca_id, u8 prio)
7245c65c564SOr Gerlitz {
7255c65c564SOr Gerlitz 	struct mlx5e_hairpin_entry *hpe;
726106be53bSOr Gerlitz 	u32 hash_key = hash_hairpin_info(peer_vhca_id, prio);
7275c65c564SOr Gerlitz 
7285c65c564SOr Gerlitz 	hash_for_each_possible(priv->fs.tc.hairpin_tbl, hpe,
729106be53bSOr Gerlitz 			       hairpin_hlist, hash_key) {
730e4f9abbdSVlad Buslov 		if (hpe->peer_vhca_id == peer_vhca_id && hpe->prio == prio) {
731e4f9abbdSVlad Buslov 			refcount_inc(&hpe->refcnt);
7325c65c564SOr Gerlitz 			return hpe;
7335c65c564SOr Gerlitz 		}
734e4f9abbdSVlad Buslov 	}
7355c65c564SOr Gerlitz 
7365c65c564SOr Gerlitz 	return NULL;
7375c65c564SOr Gerlitz }
7385c65c564SOr Gerlitz 
739e4f9abbdSVlad Buslov static void mlx5e_hairpin_put(struct mlx5e_priv *priv,
740e4f9abbdSVlad Buslov 			      struct mlx5e_hairpin_entry *hpe)
741e4f9abbdSVlad Buslov {
742e4f9abbdSVlad Buslov 	/* no more hairpin flows for us, release the hairpin pair */
743b32accdaSVlad Buslov 	if (!refcount_dec_and_mutex_lock(&hpe->refcnt, &priv->fs.tc.hairpin_tbl_lock))
744e4f9abbdSVlad Buslov 		return;
745b32accdaSVlad Buslov 	hash_del(&hpe->hairpin_hlist);
746b32accdaSVlad Buslov 	mutex_unlock(&priv->fs.tc.hairpin_tbl_lock);
747e4f9abbdSVlad Buslov 
748db76ca24SVlad Buslov 	if (!IS_ERR_OR_NULL(hpe->hp)) {
749e4f9abbdSVlad Buslov 		netdev_dbg(priv->netdev, "del hairpin: peer %s\n",
750e4f9abbdSVlad Buslov 			   dev_name(hpe->hp->pair->peer_mdev->device));
751e4f9abbdSVlad Buslov 
752e4f9abbdSVlad Buslov 		mlx5e_hairpin_destroy(hpe->hp);
753db76ca24SVlad Buslov 	}
754db76ca24SVlad Buslov 
755db76ca24SVlad Buslov 	WARN_ON(!list_empty(&hpe->flows));
756e4f9abbdSVlad Buslov 	kfree(hpe);
757e4f9abbdSVlad Buslov }
758e4f9abbdSVlad Buslov 
759106be53bSOr Gerlitz #define UNKNOWN_MATCH_PRIO 8
760106be53bSOr Gerlitz 
761106be53bSOr Gerlitz static int mlx5e_hairpin_get_prio(struct mlx5e_priv *priv,
762e98bedf5SEli Britstein 				  struct mlx5_flow_spec *spec, u8 *match_prio,
763e98bedf5SEli Britstein 				  struct netlink_ext_ack *extack)
764106be53bSOr Gerlitz {
765106be53bSOr Gerlitz 	void *headers_c, *headers_v;
766106be53bSOr Gerlitz 	u8 prio_val, prio_mask = 0;
767106be53bSOr Gerlitz 	bool vlan_present;
768106be53bSOr Gerlitz 
769106be53bSOr Gerlitz #ifdef CONFIG_MLX5_CORE_EN_DCB
770106be53bSOr Gerlitz 	if (priv->dcbx_dp.trust_state != MLX5_QPTS_TRUST_PCP) {
771e98bedf5SEli Britstein 		NL_SET_ERR_MSG_MOD(extack,
772e98bedf5SEli Britstein 				   "only PCP trust state supported for hairpin");
773106be53bSOr Gerlitz 		return -EOPNOTSUPP;
774106be53bSOr Gerlitz 	}
775106be53bSOr Gerlitz #endif
776106be53bSOr Gerlitz 	headers_c = MLX5_ADDR_OF(fte_match_param, spec->match_criteria, outer_headers);
777106be53bSOr Gerlitz 	headers_v = MLX5_ADDR_OF(fte_match_param, spec->match_value, outer_headers);
778106be53bSOr Gerlitz 
779106be53bSOr Gerlitz 	vlan_present = MLX5_GET(fte_match_set_lyr_2_4, headers_v, cvlan_tag);
780106be53bSOr Gerlitz 	if (vlan_present) {
781106be53bSOr Gerlitz 		prio_mask = MLX5_GET(fte_match_set_lyr_2_4, headers_c, first_prio);
782106be53bSOr Gerlitz 		prio_val = MLX5_GET(fte_match_set_lyr_2_4, headers_v, first_prio);
783106be53bSOr Gerlitz 	}
784106be53bSOr Gerlitz 
785106be53bSOr Gerlitz 	if (!vlan_present || !prio_mask) {
786106be53bSOr Gerlitz 		prio_val = UNKNOWN_MATCH_PRIO;
787106be53bSOr Gerlitz 	} else if (prio_mask != 0x7) {
788e98bedf5SEli Britstein 		NL_SET_ERR_MSG_MOD(extack,
789e98bedf5SEli Britstein 				   "masked priority match not supported for hairpin");
790106be53bSOr Gerlitz 		return -EOPNOTSUPP;
791106be53bSOr Gerlitz 	}
792106be53bSOr Gerlitz 
793106be53bSOr Gerlitz 	*match_prio = prio_val;
794106be53bSOr Gerlitz 	return 0;
795106be53bSOr Gerlitz }
796106be53bSOr Gerlitz 
7975c65c564SOr Gerlitz static int mlx5e_hairpin_flow_add(struct mlx5e_priv *priv,
7985c65c564SOr Gerlitz 				  struct mlx5e_tc_flow *flow,
799e98bedf5SEli Britstein 				  struct mlx5e_tc_flow_parse_attr *parse_attr,
800e98bedf5SEli Britstein 				  struct netlink_ext_ack *extack)
8015c65c564SOr Gerlitz {
80298b66cb1SEli Britstein 	int peer_ifindex = parse_attr->mirred_ifindex[0];
8035c65c564SOr Gerlitz 	struct mlx5_hairpin_params params;
804d8822868SOr Gerlitz 	struct mlx5_core_dev *peer_mdev;
8055c65c564SOr Gerlitz 	struct mlx5e_hairpin_entry *hpe;
8065c65c564SOr Gerlitz 	struct mlx5e_hairpin *hp;
8073f6d08d1SOr Gerlitz 	u64 link_speed64;
8083f6d08d1SOr Gerlitz 	u32 link_speed;
809106be53bSOr Gerlitz 	u8 match_prio;
810d8822868SOr Gerlitz 	u16 peer_id;
8115c65c564SOr Gerlitz 	int err;
8125c65c564SOr Gerlitz 
813d8822868SOr Gerlitz 	peer_mdev = mlx5e_hairpin_get_mdev(dev_net(priv->netdev), peer_ifindex);
814b1c2f631SDima Chumak 	if (IS_ERR(peer_mdev)) {
815b1c2f631SDima Chumak 		NL_SET_ERR_MSG_MOD(extack, "invalid ifindex of mirred device");
816b1c2f631SDima Chumak 		return PTR_ERR(peer_mdev);
817b1c2f631SDima Chumak 	}
818b1c2f631SDima Chumak 
819d8822868SOr Gerlitz 	if (!MLX5_CAP_GEN(priv->mdev, hairpin) || !MLX5_CAP_GEN(peer_mdev, hairpin)) {
820e98bedf5SEli Britstein 		NL_SET_ERR_MSG_MOD(extack, "hairpin is not supported");
8215c65c564SOr Gerlitz 		return -EOPNOTSUPP;
8225c65c564SOr Gerlitz 	}
8235c65c564SOr Gerlitz 
824d8822868SOr Gerlitz 	peer_id = MLX5_CAP_GEN(peer_mdev, vhca_id);
825e98bedf5SEli Britstein 	err = mlx5e_hairpin_get_prio(priv, &parse_attr->spec, &match_prio,
826e98bedf5SEli Britstein 				     extack);
827106be53bSOr Gerlitz 	if (err)
828106be53bSOr Gerlitz 		return err;
829b32accdaSVlad Buslov 
830b32accdaSVlad Buslov 	mutex_lock(&priv->fs.tc.hairpin_tbl_lock);
831106be53bSOr Gerlitz 	hpe = mlx5e_hairpin_get(priv, peer_id, match_prio);
832db76ca24SVlad Buslov 	if (hpe) {
833db76ca24SVlad Buslov 		mutex_unlock(&priv->fs.tc.hairpin_tbl_lock);
834db76ca24SVlad Buslov 		wait_for_completion(&hpe->res_ready);
835db76ca24SVlad Buslov 
836db76ca24SVlad Buslov 		if (IS_ERR(hpe->hp)) {
837db76ca24SVlad Buslov 			err = -EREMOTEIO;
838db76ca24SVlad Buslov 			goto out_err;
839db76ca24SVlad Buslov 		}
8405c65c564SOr Gerlitz 		goto attach_flow;
841db76ca24SVlad Buslov 	}
8425c65c564SOr Gerlitz 
8435c65c564SOr Gerlitz 	hpe = kzalloc(sizeof(*hpe), GFP_KERNEL);
844b32accdaSVlad Buslov 	if (!hpe) {
845db76ca24SVlad Buslov 		mutex_unlock(&priv->fs.tc.hairpin_tbl_lock);
846db76ca24SVlad Buslov 		return -ENOMEM;
847b32accdaSVlad Buslov 	}
8485c65c564SOr Gerlitz 
84973edca73SVlad Buslov 	spin_lock_init(&hpe->flows_lock);
8505c65c564SOr Gerlitz 	INIT_LIST_HEAD(&hpe->flows);
851db76ca24SVlad Buslov 	INIT_LIST_HEAD(&hpe->dead_peer_wait_list);
852d8822868SOr Gerlitz 	hpe->peer_vhca_id = peer_id;
853106be53bSOr Gerlitz 	hpe->prio = match_prio;
854e4f9abbdSVlad Buslov 	refcount_set(&hpe->refcnt, 1);
855db76ca24SVlad Buslov 	init_completion(&hpe->res_ready);
856db76ca24SVlad Buslov 
857db76ca24SVlad Buslov 	hash_add(priv->fs.tc.hairpin_tbl, &hpe->hairpin_hlist,
858db76ca24SVlad Buslov 		 hash_hairpin_info(peer_id, match_prio));
859db76ca24SVlad Buslov 	mutex_unlock(&priv->fs.tc.hairpin_tbl_lock);
8605c65c564SOr Gerlitz 
8616cdc686aSAriel Levkovich 	params.log_data_size = 16;
8625c65c564SOr Gerlitz 	params.log_data_size = min_t(u8, params.log_data_size,
8635c65c564SOr Gerlitz 				     MLX5_CAP_GEN(priv->mdev, log_max_hairpin_wq_data_sz));
8645c65c564SOr Gerlitz 	params.log_data_size = max_t(u8, params.log_data_size,
8655c65c564SOr Gerlitz 				     MLX5_CAP_GEN(priv->mdev, log_min_hairpin_wq_data_sz));
8665c65c564SOr Gerlitz 
867eb9180f7SOr Gerlitz 	params.log_num_packets = params.log_data_size -
868eb9180f7SOr Gerlitz 				 MLX5_MPWRQ_MIN_LOG_STRIDE_SZ(priv->mdev);
869eb9180f7SOr Gerlitz 	params.log_num_packets = min_t(u8, params.log_num_packets,
870eb9180f7SOr Gerlitz 				       MLX5_CAP_GEN(priv->mdev, log_max_hairpin_num_packets));
871eb9180f7SOr Gerlitz 
872eb9180f7SOr Gerlitz 	params.q_counter = priv->q_counter;
8733f6d08d1SOr Gerlitz 	/* set hairpin pair per each 50Gbs share of the link */
8742c81bfd5SHuy Nguyen 	mlx5e_port_max_linkspeed(priv->mdev, &link_speed);
8753f6d08d1SOr Gerlitz 	link_speed = max_t(u32, link_speed, 50000);
8763f6d08d1SOr Gerlitz 	link_speed64 = link_speed;
8773f6d08d1SOr Gerlitz 	do_div(link_speed64, 50000);
8783f6d08d1SOr Gerlitz 	params.num_channels = link_speed64;
8793f6d08d1SOr Gerlitz 
8805c65c564SOr Gerlitz 	hp = mlx5e_hairpin_create(priv, &params, peer_ifindex);
881db76ca24SVlad Buslov 	hpe->hp = hp;
882db76ca24SVlad Buslov 	complete_all(&hpe->res_ready);
8835c65c564SOr Gerlitz 	if (IS_ERR(hp)) {
8845c65c564SOr Gerlitz 		err = PTR_ERR(hp);
885db76ca24SVlad Buslov 		goto out_err;
8865c65c564SOr Gerlitz 	}
8875c65c564SOr Gerlitz 
888eb9180f7SOr Gerlitz 	netdev_dbg(priv->netdev, "add hairpin: tirn %x rqn %x peer %s sqn %x prio %d (log) data %d packets %d\n",
889a6696735SMaxim Mikityanskiy 		   mlx5e_tir_get_tirn(&hp->direct_tir), hp->pair->rqn[0],
89027b942fbSParav Pandit 		   dev_name(hp->pair->peer_mdev->device),
891eb9180f7SOr Gerlitz 		   hp->pair->sqn[0], match_prio, params.log_data_size, params.log_num_packets);
8925c65c564SOr Gerlitz 
8935c65c564SOr Gerlitz attach_flow:
8943f6d08d1SOr Gerlitz 	if (hpe->hp->num_channels > 1) {
895226f2ca3SVlad Buslov 		flow_flag_set(flow, HAIRPIN_RSS);
896f4b45940SMaor Gottlieb 		flow->attr->nic_attr->hairpin_ft =
897f4b45940SMaor Gottlieb 			mlx5_get_ttc_flow_table(hpe->hp->ttc);
8983f6d08d1SOr Gerlitz 	} else {
899a6696735SMaxim Mikityanskiy 		flow->attr->nic_attr->hairpin_tirn = mlx5e_tir_get_tirn(&hpe->hp->direct_tir);
9003f6d08d1SOr Gerlitz 	}
901b32accdaSVlad Buslov 
902e4f9abbdSVlad Buslov 	flow->hpe = hpe;
90373edca73SVlad Buslov 	spin_lock(&hpe->flows_lock);
9045c65c564SOr Gerlitz 	list_add(&flow->hairpin, &hpe->flows);
90573edca73SVlad Buslov 	spin_unlock(&hpe->flows_lock);
9063f6d08d1SOr Gerlitz 
9075c65c564SOr Gerlitz 	return 0;
9085c65c564SOr Gerlitz 
909db76ca24SVlad Buslov out_err:
910db76ca24SVlad Buslov 	mlx5e_hairpin_put(priv, hpe);
9115c65c564SOr Gerlitz 	return err;
9125c65c564SOr Gerlitz }
9135c65c564SOr Gerlitz 
9145c65c564SOr Gerlitz static void mlx5e_hairpin_flow_del(struct mlx5e_priv *priv,
9155c65c564SOr Gerlitz 				   struct mlx5e_tc_flow *flow)
9165c65c564SOr Gerlitz {
9175a7e5bcbSVlad Buslov 	/* flow wasn't fully initialized */
918e4f9abbdSVlad Buslov 	if (!flow->hpe)
9195a7e5bcbSVlad Buslov 		return;
9205a7e5bcbSVlad Buslov 
92173edca73SVlad Buslov 	spin_lock(&flow->hpe->flows_lock);
9225c65c564SOr Gerlitz 	list_del(&flow->hairpin);
92373edca73SVlad Buslov 	spin_unlock(&flow->hpe->flows_lock);
92473edca73SVlad Buslov 
925e4f9abbdSVlad Buslov 	mlx5e_hairpin_put(priv, flow->hpe);
926e4f9abbdSVlad Buslov 	flow->hpe = NULL;
9275c65c564SOr Gerlitz }
9285c65c564SOr Gerlitz 
92908247066SAriel Levkovich struct mlx5_flow_handle *
93008247066SAriel Levkovich mlx5e_add_offloaded_nic_rule(struct mlx5e_priv *priv,
93108247066SAriel Levkovich 			     struct mlx5_flow_spec *spec,
932c620b772SAriel Levkovich 			     struct mlx5_flow_attr *attr)
933e8f887acSAmir Vadai {
93408247066SAriel Levkovich 	struct mlx5_flow_context *flow_context = &spec->flow_context;
93567d62ee7SRoi Dayan 	struct mlx5_fs_chains *nic_chains = mlx5e_nic_chains(priv);
936c620b772SAriel Levkovich 	struct mlx5_nic_flow_attr *nic_attr = attr->nic_attr;
9376a064674SAriel Levkovich 	struct mlx5e_tc_table *tc = &priv->fs.tc;
9385c65c564SOr Gerlitz 	struct mlx5_flow_destination dest[2] = {};
93966958ed9SHadar Hen Zion 	struct mlx5_flow_act flow_act = {
9403bc4b7bfSOr Gerlitz 		.action = attr->action,
941bb0ee7dcSJianbo Liu 		.flags    = FLOW_ACT_NO_APPEND,
94266958ed9SHadar Hen Zion 	};
94308247066SAriel Levkovich 	struct mlx5_flow_handle *rule;
944c7569097SAriel Levkovich 	struct mlx5_flow_table *ft;
94508247066SAriel Levkovich 	int dest_ix = 0;
946e8f887acSAmir Vadai 
947bb0ee7dcSJianbo Liu 	flow_context->flags |= FLOW_CONTEXT_HAS_TAG;
948c620b772SAriel Levkovich 	flow_context->flow_tag = nic_attr->flow_tag;
949bb0ee7dcSJianbo Liu 
950aedd133dSAriel Levkovich 	if (attr->dest_ft) {
951aedd133dSAriel Levkovich 		dest[dest_ix].type = MLX5_FLOW_DESTINATION_TYPE_FLOW_TABLE;
952aedd133dSAriel Levkovich 		dest[dest_ix].ft = attr->dest_ft;
953aedd133dSAriel Levkovich 		dest_ix++;
954aedd133dSAriel Levkovich 	} else if (nic_attr->hairpin_ft) {
9553f6d08d1SOr Gerlitz 		dest[dest_ix].type = MLX5_FLOW_DESTINATION_TYPE_FLOW_TABLE;
956c620b772SAriel Levkovich 		dest[dest_ix].ft = nic_attr->hairpin_ft;
95708247066SAriel Levkovich 		dest_ix++;
958c620b772SAriel Levkovich 	} else if (nic_attr->hairpin_tirn) {
9595c65c564SOr Gerlitz 		dest[dest_ix].type = MLX5_FLOW_DESTINATION_TYPE_TIR;
960c620b772SAriel Levkovich 		dest[dest_ix].tir_num = nic_attr->hairpin_tirn;
9613f6d08d1SOr Gerlitz 		dest_ix++;
9623f6d08d1SOr Gerlitz 	} else if (attr->action & MLX5_FLOW_CONTEXT_ACTION_FWD_DEST) {
9635c65c564SOr Gerlitz 		dest[dest_ix].type = MLX5_FLOW_DESTINATION_TYPE_FLOW_TABLE;
964c7569097SAriel Levkovich 		if (attr->dest_chain) {
965c7569097SAriel Levkovich 			dest[dest_ix].ft = mlx5_chains_get_table(nic_chains,
966c7569097SAriel Levkovich 								 attr->dest_chain, 1,
967c7569097SAriel Levkovich 								 MLX5E_TC_FT_LEVEL);
968c7569097SAriel Levkovich 			if (IS_ERR(dest[dest_ix].ft))
969c7569097SAriel Levkovich 				return ERR_CAST(dest[dest_ix].ft);
970c7569097SAriel Levkovich 		} else {
9716783f0a2SVu Pham 			dest[dest_ix].ft = mlx5e_vlan_get_flowtable(priv->fs.vlan);
972c7569097SAriel Levkovich 		}
9735c65c564SOr Gerlitz 		dest_ix++;
9745c65c564SOr Gerlitz 	}
975aad7e08dSAmir Vadai 
976c7569097SAriel Levkovich 	if (dest[0].type == MLX5_FLOW_DESTINATION_TYPE_FLOW_TABLE &&
977c7569097SAriel Levkovich 	    MLX5_CAP_FLOWTABLE_NIC_RX(priv->mdev, ignore_flow_level))
978c7569097SAriel Levkovich 		flow_act.flags |= FLOW_ACT_IGNORE_FLOW_LEVEL;
979c7569097SAriel Levkovich 
98008247066SAriel Levkovich 	if (flow_act.action & MLX5_FLOW_CONTEXT_ACTION_COUNT) {
9815c65c564SOr Gerlitz 		dest[dest_ix].type = MLX5_FLOW_DESTINATION_TYPE_COUNTER;
98208247066SAriel Levkovich 		dest[dest_ix].counter_id = mlx5_fc_id(attr->counter);
9835c65c564SOr Gerlitz 		dest_ix++;
984aad7e08dSAmir Vadai 	}
985aad7e08dSAmir Vadai 
98608247066SAriel Levkovich 	if (attr->action & MLX5_FLOW_CONTEXT_ACTION_MOD_HDR)
9872b688ea5SMaor Gottlieb 		flow_act.modify_hdr = attr->modify_hdr;
9882f4fe4caSOr Gerlitz 
9896a064674SAriel Levkovich 	mutex_lock(&tc->t_lock);
9906a064674SAriel Levkovich 	if (IS_ERR_OR_NULL(tc->t)) {
9916a064674SAriel Levkovich 		/* Create the root table here if doesn't exist yet */
9926a064674SAriel Levkovich 		tc->t =
993c7569097SAriel Levkovich 			mlx5_chains_get_table(nic_chains, 0, 1, MLX5E_TC_FT_LEVEL);
99421b9c144SOr Gerlitz 
9956a064674SAriel Levkovich 		if (IS_ERR(tc->t)) {
9966a064674SAriel Levkovich 			mutex_unlock(&tc->t_lock);
997e8f887acSAmir Vadai 			netdev_err(priv->netdev,
998e8f887acSAmir Vadai 				   "Failed to create tc offload table\n");
999c7569097SAriel Levkovich 			rule = ERR_CAST(priv->fs.tc.t);
1000c7569097SAriel Levkovich 			goto err_ft_get;
1001e8f887acSAmir Vadai 		}
1002e8f887acSAmir Vadai 	}
100308247066SAriel Levkovich 	mutex_unlock(&tc->t_lock);
1004e8f887acSAmir Vadai 
1005aedd133dSAriel Levkovich 	if (attr->chain || attr->prio)
1006c7569097SAriel Levkovich 		ft = mlx5_chains_get_table(nic_chains,
1007c7569097SAriel Levkovich 					   attr->chain, attr->prio,
1008c7569097SAriel Levkovich 					   MLX5E_TC_FT_LEVEL);
1009aedd133dSAriel Levkovich 	else
1010aedd133dSAriel Levkovich 		ft = attr->ft;
1011aedd133dSAriel Levkovich 
1012c7569097SAriel Levkovich 	if (IS_ERR(ft)) {
1013c7569097SAriel Levkovich 		rule = ERR_CAST(ft);
1014c7569097SAriel Levkovich 		goto err_ft_get;
1015c7569097SAriel Levkovich 	}
1016c7569097SAriel Levkovich 
1017c620b772SAriel Levkovich 	if (attr->outer_match_level != MLX5_MATCH_NONE)
101808247066SAriel Levkovich 		spec->match_criteria_enable |= MLX5_MATCH_OUTER_HEADERS;
101938aa51c1SOr Gerlitz 
1020c7569097SAriel Levkovich 	rule = mlx5_add_flow_rules(ft, spec,
10215c65c564SOr Gerlitz 				   &flow_act, dest, dest_ix);
102208247066SAriel Levkovich 	if (IS_ERR(rule))
1023c7569097SAriel Levkovich 		goto err_rule;
102408247066SAriel Levkovich 
102508247066SAriel Levkovich 	return rule;
1026c7569097SAriel Levkovich 
1027c7569097SAriel Levkovich err_rule:
1028aedd133dSAriel Levkovich 	if (attr->chain || attr->prio)
1029c7569097SAriel Levkovich 		mlx5_chains_put_table(nic_chains,
1030c7569097SAriel Levkovich 				      attr->chain, attr->prio,
1031c7569097SAriel Levkovich 				      MLX5E_TC_FT_LEVEL);
1032c7569097SAriel Levkovich err_ft_get:
1033c7569097SAriel Levkovich 	if (attr->dest_chain)
1034c7569097SAriel Levkovich 		mlx5_chains_put_table(nic_chains,
1035c7569097SAriel Levkovich 				      attr->dest_chain, 1,
1036c7569097SAriel Levkovich 				      MLX5E_TC_FT_LEVEL);
1037c7569097SAriel Levkovich 
1038c7569097SAriel Levkovich 	return ERR_CAST(rule);
103908247066SAriel Levkovich }
104008247066SAriel Levkovich 
104108247066SAriel Levkovich static int
104208247066SAriel Levkovich mlx5e_tc_add_nic_flow(struct mlx5e_priv *priv,
104308247066SAriel Levkovich 		      struct mlx5e_tc_flow *flow,
104408247066SAriel Levkovich 		      struct netlink_ext_ack *extack)
104508247066SAriel Levkovich {
1046c6cfe113SRoi Dayan 	struct mlx5e_tc_flow_parse_attr *parse_attr;
1047c620b772SAriel Levkovich 	struct mlx5_flow_attr *attr = flow->attr;
104808247066SAriel Levkovich 	struct mlx5_core_dev *dev = priv->mdev;
104997a8d29aSRoi Dayan 	struct mlx5_fc *counter;
105008247066SAriel Levkovich 	int err;
105108247066SAriel Levkovich 
1052c6cfe113SRoi Dayan 	parse_attr = attr->parse_attr;
1053c6cfe113SRoi Dayan 
105408247066SAriel Levkovich 	if (flow_flag_test(flow, HAIRPIN)) {
105508247066SAriel Levkovich 		err = mlx5e_hairpin_flow_add(priv, flow, parse_attr, extack);
105608247066SAriel Levkovich 		if (err)
105708247066SAriel Levkovich 			return err;
105808247066SAriel Levkovich 	}
105908247066SAriel Levkovich 
106008247066SAriel Levkovich 	if (attr->action & MLX5_FLOW_CONTEXT_ACTION_COUNT) {
106108247066SAriel Levkovich 		counter = mlx5_fc_create(dev, true);
106208247066SAriel Levkovich 		if (IS_ERR(counter))
106308247066SAriel Levkovich 			return PTR_ERR(counter);
106408247066SAriel Levkovich 
106508247066SAriel Levkovich 		attr->counter = counter;
106608247066SAriel Levkovich 	}
106708247066SAriel Levkovich 
106808247066SAriel Levkovich 	if (attr->action & MLX5_FLOW_CONTEXT_ACTION_MOD_HDR) {
106908247066SAriel Levkovich 		err = mlx5e_attach_mod_hdr(priv, flow, parse_attr);
10702c0e5cf5SPaul Blakey 		mlx5e_mod_hdr_dealloc(&parse_attr->mod_hdr_acts);
107108247066SAriel Levkovich 		if (err)
107208247066SAriel Levkovich 			return err;
107308247066SAriel Levkovich 	}
107408247066SAriel Levkovich 
1075aedd133dSAriel Levkovich 	if (flow_flag_test(flow, CT))
1076aedd133dSAriel Levkovich 		flow->rule[0] = mlx5_tc_ct_flow_offload(get_ct_priv(priv), flow, &parse_attr->spec,
1077aedd133dSAriel Levkovich 							attr, &parse_attr->mod_hdr_acts);
1078aedd133dSAriel Levkovich 	else
107908247066SAriel Levkovich 		flow->rule[0] = mlx5e_add_offloaded_nic_rule(priv, &parse_attr->spec,
108008247066SAriel Levkovich 							     attr);
1081e8f887acSAmir Vadai 
1082a2b7189bSzhong jiang 	return PTR_ERR_OR_ZERO(flow->rule[0]);
1083e8f887acSAmir Vadai }
1084e8f887acSAmir Vadai 
108508247066SAriel Levkovich void mlx5e_del_offloaded_nic_rule(struct mlx5e_priv *priv,
1086c7569097SAriel Levkovich 				  struct mlx5_flow_handle *rule,
1087c7569097SAriel Levkovich 				  struct mlx5_flow_attr *attr)
108808247066SAriel Levkovich {
108967d62ee7SRoi Dayan 	struct mlx5_fs_chains *nic_chains = mlx5e_nic_chains(priv);
1090c7569097SAriel Levkovich 
109108247066SAriel Levkovich 	mlx5_del_flow_rules(rule);
1092c7569097SAriel Levkovich 
1093aedd133dSAriel Levkovich 	if (attr->chain || attr->prio)
1094c7569097SAriel Levkovich 		mlx5_chains_put_table(nic_chains, attr->chain, attr->prio,
1095c7569097SAriel Levkovich 				      MLX5E_TC_FT_LEVEL);
1096c7569097SAriel Levkovich 
1097c7569097SAriel Levkovich 	if (attr->dest_chain)
1098c7569097SAriel Levkovich 		mlx5_chains_put_table(nic_chains, attr->dest_chain, 1,
1099c7569097SAriel Levkovich 				      MLX5E_TC_FT_LEVEL);
110008247066SAriel Levkovich }
110108247066SAriel Levkovich 
1102d85cdccbSOr Gerlitz static void mlx5e_tc_del_nic_flow(struct mlx5e_priv *priv,
1103d85cdccbSOr Gerlitz 				  struct mlx5e_tc_flow *flow)
1104d85cdccbSOr Gerlitz {
1105c620b772SAriel Levkovich 	struct mlx5_flow_attr *attr = flow->attr;
11066a064674SAriel Levkovich 	struct mlx5e_tc_table *tc = &priv->fs.tc;
1107d85cdccbSOr Gerlitz 
1108c7569097SAriel Levkovich 	flow_flag_clear(flow, OFFLOADED);
1109c7569097SAriel Levkovich 
1110aedd133dSAriel Levkovich 	if (flow_flag_test(flow, CT))
1111aedd133dSAriel Levkovich 		mlx5_tc_ct_delete_flow(get_ct_priv(flow->priv), flow, attr);
1112aedd133dSAriel Levkovich 	else if (!IS_ERR_OR_NULL(flow->rule[0]))
1113aedd133dSAriel Levkovich 		mlx5e_del_offloaded_nic_rule(priv, flow->rule[0], attr);
1114aedd133dSAriel Levkovich 
1115c7569097SAriel Levkovich 	/* Remove root table if no rules are left to avoid
1116c7569097SAriel Levkovich 	 * extra steering hops.
1117c7569097SAriel Levkovich 	 */
1118b6fac0b4SVlad Buslov 	mutex_lock(&priv->fs.tc.t_lock);
11196a064674SAriel Levkovich 	if (!mlx5e_tc_num_filters(priv, MLX5_TC_FLAG(NIC_OFFLOAD)) &&
11206a064674SAriel Levkovich 	    !IS_ERR_OR_NULL(tc->t)) {
112167d62ee7SRoi Dayan 		mlx5_chains_put_table(mlx5e_nic_chains(priv), 0, 1, MLX5E_TC_FT_LEVEL);
1122d85cdccbSOr Gerlitz 		priv->fs.tc.t = NULL;
1123d85cdccbSOr Gerlitz 	}
1124b6fac0b4SVlad Buslov 	mutex_unlock(&priv->fs.tc.t_lock);
11252f4fe4caSOr Gerlitz 
1126513f8f7fSOr Gerlitz 	if (attr->action & MLX5_FLOW_CONTEXT_ACTION_MOD_HDR)
11273099eb5aSOr Gerlitz 		mlx5e_detach_mod_hdr(priv, flow);
11285c65c564SOr Gerlitz 
1129972fe492SRoi Dayan 	if (attr->action & MLX5_FLOW_CONTEXT_ACTION_COUNT)
1130aedd133dSAriel Levkovich 		mlx5_fc_destroy(priv->mdev, attr->counter);
1131aedd133dSAriel Levkovich 
1132226f2ca3SVlad Buslov 	if (flow_flag_test(flow, HAIRPIN))
11335c65c564SOr Gerlitz 		mlx5e_hairpin_flow_del(priv, flow);
1134c620b772SAriel Levkovich 
113588d97486SRoi Dayan 	kvfree(attr->parse_attr);
1136c620b772SAriel Levkovich 	kfree(flow->attr);
1137d85cdccbSOr Gerlitz }
1138d85cdccbSOr Gerlitz 
11390d9f9647SVlad Buslov struct mlx5_flow_handle *
11406d2a3ed0SOr Gerlitz mlx5e_tc_offload_fdb_rules(struct mlx5_eswitch *esw,
11416d2a3ed0SOr Gerlitz 			   struct mlx5e_tc_flow *flow,
11426d2a3ed0SOr Gerlitz 			   struct mlx5_flow_spec *spec,
1143c620b772SAriel Levkovich 			   struct mlx5_flow_attr *attr)
11446d2a3ed0SOr Gerlitz {
11451ef3018fSPaul Blakey 	struct mlx5e_tc_mod_hdr_acts *mod_hdr_acts;
11466d2a3ed0SOr Gerlitz 	struct mlx5_flow_handle *rule;
11474c3844d9SPaul Blakey 
114889e39467SPaul Blakey 	if (attr->flags & MLX5_ESW_ATTR_FLAG_SLOW_PATH)
114989e39467SPaul Blakey 		return mlx5_eswitch_add_offloaded_rule(esw, spec, attr);
115089e39467SPaul Blakey 
11511ef3018fSPaul Blakey 	if (flow_flag_test(flow, CT)) {
11521ef3018fSPaul Blakey 		mod_hdr_acts = &attr->parse_attr->mod_hdr_acts;
11531ef3018fSPaul Blakey 
115469e2916eSPaul Blakey 		rule = mlx5_tc_ct_flow_offload(get_ct_priv(flow->priv),
1155aedd133dSAriel Levkovich 					       flow, spec, attr,
11561ef3018fSPaul Blakey 					       mod_hdr_acts);
1157f94d6389SChris Mi 	} else if (flow_flag_test(flow, SAMPLE)) {
1158ee950e5dSChris Mi 		rule = mlx5e_tc_sample_offload(get_sample_priv(flow->priv), spec, attr,
1159ee950e5dSChris Mi 					       mlx5e_tc_get_flow_tun_id(flow));
116069e2916eSPaul Blakey 	} else {
116169e2916eSPaul Blakey 		rule = mlx5_eswitch_add_offloaded_rule(esw, spec, attr);
11621ef3018fSPaul Blakey 	}
11636d2a3ed0SOr Gerlitz 
11646d2a3ed0SOr Gerlitz 	if (IS_ERR(rule))
11656d2a3ed0SOr Gerlitz 		return rule;
11666d2a3ed0SOr Gerlitz 
1167c620b772SAriel Levkovich 	if (attr->esw_attr->split_count) {
11686d2a3ed0SOr Gerlitz 		flow->rule[1] = mlx5_eswitch_add_fwd_rule(esw, spec, attr);
11696d2a3ed0SOr Gerlitz 		if (IS_ERR(flow->rule[1])) {
117069e2916eSPaul Blakey 			if (flow_flag_test(flow, CT))
117169e2916eSPaul Blakey 				mlx5_tc_ct_delete_flow(get_ct_priv(flow->priv), flow, attr);
117269e2916eSPaul Blakey 			else
11736d2a3ed0SOr Gerlitz 				mlx5_eswitch_del_offloaded_rule(esw, rule, attr);
11746d2a3ed0SOr Gerlitz 			return flow->rule[1];
11756d2a3ed0SOr Gerlitz 		}
11766d2a3ed0SOr Gerlitz 	}
11776d2a3ed0SOr Gerlitz 
11786d2a3ed0SOr Gerlitz 	return rule;
11796d2a3ed0SOr Gerlitz }
11806d2a3ed0SOr Gerlitz 
11810d9f9647SVlad Buslov void mlx5e_tc_unoffload_fdb_rules(struct mlx5_eswitch *esw,
11826d2a3ed0SOr Gerlitz 				  struct mlx5e_tc_flow *flow,
1183c620b772SAriel Levkovich 				  struct mlx5_flow_attr *attr)
11846d2a3ed0SOr Gerlitz {
1185226f2ca3SVlad Buslov 	flow_flag_clear(flow, OFFLOADED);
11866d2a3ed0SOr Gerlitz 
118789e39467SPaul Blakey 	if (attr->flags & MLX5_ESW_ATTR_FLAG_SLOW_PATH)
118889e39467SPaul Blakey 		goto offload_rule_0;
118989e39467SPaul Blakey 
1190c620b772SAriel Levkovich 	if (attr->esw_attr->split_count)
11916d2a3ed0SOr Gerlitz 		mlx5_eswitch_del_fwd_rule(esw, flow->rule[1], attr);
11926d2a3ed0SOr Gerlitz 
11932820110dSChris Mi 	if (flow_flag_test(flow, CT))
11942820110dSChris Mi 		mlx5_tc_ct_delete_flow(get_ct_priv(flow->priv), flow, attr);
11952820110dSChris Mi 	else if (flow_flag_test(flow, SAMPLE))
11962820110dSChris Mi 		mlx5e_tc_sample_unoffload(get_sample_priv(flow->priv), flow->rule[0], attr);
11972820110dSChris Mi 	else
119889e39467SPaul Blakey offload_rule_0:
11996d2a3ed0SOr Gerlitz 		mlx5_eswitch_del_offloaded_rule(esw, flow->rule[0], attr);
12006d2a3ed0SOr Gerlitz }
12016d2a3ed0SOr Gerlitz 
12020d9f9647SVlad Buslov struct mlx5_flow_handle *
12035dbe906fSPaul Blakey mlx5e_tc_offload_to_slow_path(struct mlx5_eswitch *esw,
12045dbe906fSPaul Blakey 			      struct mlx5e_tc_flow *flow,
1205178f69b4SEli Cohen 			      struct mlx5_flow_spec *spec)
12065dbe906fSPaul Blakey {
1207c620b772SAriel Levkovich 	struct mlx5_flow_attr *slow_attr;
12085dbe906fSPaul Blakey 	struct mlx5_flow_handle *rule;
12095dbe906fSPaul Blakey 
1210c620b772SAriel Levkovich 	slow_attr = mlx5_alloc_flow_attr(MLX5_FLOW_NAMESPACE_FDB);
1211c620b772SAriel Levkovich 	if (!slow_attr)
1212c620b772SAriel Levkovich 		return ERR_PTR(-ENOMEM);
12135dbe906fSPaul Blakey 
1214c620b772SAriel Levkovich 	memcpy(slow_attr, flow->attr, ESW_FLOW_ATTR_SZ);
1215c620b772SAriel Levkovich 	slow_attr->action = MLX5_FLOW_CONTEXT_ACTION_FWD_DEST;
1216c620b772SAriel Levkovich 	slow_attr->esw_attr->split_count = 0;
1217c620b772SAriel Levkovich 	slow_attr->flags |= MLX5_ESW_ATTR_FLAG_SLOW_PATH;
1218c620b772SAriel Levkovich 
1219c620b772SAriel Levkovich 	rule = mlx5e_tc_offload_fdb_rules(esw, flow, spec, slow_attr);
12205dbe906fSPaul Blakey 	if (!IS_ERR(rule))
1221226f2ca3SVlad Buslov 		flow_flag_set(flow, SLOW);
12225dbe906fSPaul Blakey 
1223c620b772SAriel Levkovich 	kfree(slow_attr);
1224c620b772SAriel Levkovich 
12255dbe906fSPaul Blakey 	return rule;
12265dbe906fSPaul Blakey }
12275dbe906fSPaul Blakey 
12280d9f9647SVlad Buslov void mlx5e_tc_unoffload_from_slow_path(struct mlx5_eswitch *esw,
1229178f69b4SEli Cohen 				       struct mlx5e_tc_flow *flow)
12305dbe906fSPaul Blakey {
1231c620b772SAriel Levkovich 	struct mlx5_flow_attr *slow_attr;
1232178f69b4SEli Cohen 
1233c620b772SAriel Levkovich 	slow_attr = mlx5_alloc_flow_attr(MLX5_FLOW_NAMESPACE_FDB);
12345efbe617SAriel Levkovich 	if (!slow_attr) {
12355efbe617SAriel Levkovich 		mlx5_core_warn(flow->priv->mdev, "Unable to alloc attr to unoffload slow path rule\n");
12365efbe617SAriel Levkovich 		return;
12375efbe617SAriel Levkovich 	}
1238c620b772SAriel Levkovich 
1239c620b772SAriel Levkovich 	memcpy(slow_attr, flow->attr, ESW_FLOW_ATTR_SZ);
1240c620b772SAriel Levkovich 	slow_attr->action = MLX5_FLOW_CONTEXT_ACTION_FWD_DEST;
1241c620b772SAriel Levkovich 	slow_attr->esw_attr->split_count = 0;
1242c620b772SAriel Levkovich 	slow_attr->flags |= MLX5_ESW_ATTR_FLAG_SLOW_PATH;
1243c620b772SAriel Levkovich 	mlx5e_tc_unoffload_fdb_rules(esw, flow, slow_attr);
1244226f2ca3SVlad Buslov 	flow_flag_clear(flow, SLOW);
1245c620b772SAriel Levkovich 	kfree(slow_attr);
12465dbe906fSPaul Blakey }
12475dbe906fSPaul Blakey 
1248ad86755bSVlad Buslov /* Caller must obtain uplink_priv->unready_flows_lock mutex before calling this
1249ad86755bSVlad Buslov  * function.
1250ad86755bSVlad Buslov  */
1251ad86755bSVlad Buslov static void unready_flow_add(struct mlx5e_tc_flow *flow,
1252ad86755bSVlad Buslov 			     struct list_head *unready_flows)
1253ad86755bSVlad Buslov {
1254ad86755bSVlad Buslov 	flow_flag_set(flow, NOT_READY);
1255ad86755bSVlad Buslov 	list_add_tail(&flow->unready, unready_flows);
1256ad86755bSVlad Buslov }
1257ad86755bSVlad Buslov 
1258ad86755bSVlad Buslov /* Caller must obtain uplink_priv->unready_flows_lock mutex before calling this
1259ad86755bSVlad Buslov  * function.
1260ad86755bSVlad Buslov  */
1261ad86755bSVlad Buslov static void unready_flow_del(struct mlx5e_tc_flow *flow)
1262ad86755bSVlad Buslov {
1263ad86755bSVlad Buslov 	list_del(&flow->unready);
1264ad86755bSVlad Buslov 	flow_flag_clear(flow, NOT_READY);
1265ad86755bSVlad Buslov }
1266ad86755bSVlad Buslov 
1267b4a23329SRoi Dayan static void add_unready_flow(struct mlx5e_tc_flow *flow)
1268b4a23329SRoi Dayan {
1269b4a23329SRoi Dayan 	struct mlx5_rep_uplink_priv *uplink_priv;
1270b4a23329SRoi Dayan 	struct mlx5e_rep_priv *rpriv;
1271b4a23329SRoi Dayan 	struct mlx5_eswitch *esw;
1272b4a23329SRoi Dayan 
1273b4a23329SRoi Dayan 	esw = flow->priv->mdev->priv.eswitch;
1274b4a23329SRoi Dayan 	rpriv = mlx5_eswitch_get_uplink_priv(esw, REP_ETH);
1275b4a23329SRoi Dayan 	uplink_priv = &rpriv->uplink_priv;
1276b4a23329SRoi Dayan 
1277ad86755bSVlad Buslov 	mutex_lock(&uplink_priv->unready_flows_lock);
1278ad86755bSVlad Buslov 	unready_flow_add(flow, &uplink_priv->unready_flows);
1279ad86755bSVlad Buslov 	mutex_unlock(&uplink_priv->unready_flows_lock);
1280b4a23329SRoi Dayan }
1281b4a23329SRoi Dayan 
1282b4a23329SRoi Dayan static void remove_unready_flow(struct mlx5e_tc_flow *flow)
1283b4a23329SRoi Dayan {
1284ad86755bSVlad Buslov 	struct mlx5_rep_uplink_priv *uplink_priv;
1285ad86755bSVlad Buslov 	struct mlx5e_rep_priv *rpriv;
1286ad86755bSVlad Buslov 	struct mlx5_eswitch *esw;
1287ad86755bSVlad Buslov 
1288ad86755bSVlad Buslov 	esw = flow->priv->mdev->priv.eswitch;
1289ad86755bSVlad Buslov 	rpriv = mlx5_eswitch_get_uplink_priv(esw, REP_ETH);
1290ad86755bSVlad Buslov 	uplink_priv = &rpriv->uplink_priv;
1291ad86755bSVlad Buslov 
1292ad86755bSVlad Buslov 	mutex_lock(&uplink_priv->unready_flows_lock);
1293ad86755bSVlad Buslov 	unready_flow_del(flow);
1294ad86755bSVlad Buslov 	mutex_unlock(&uplink_priv->unready_flows_lock);
1295b4a23329SRoi Dayan }
1296b4a23329SRoi Dayan 
1297a508728aSVlad Buslov bool mlx5e_tc_is_vf_tunnel(struct net_device *out_dev, struct net_device *route_dev)
129810742efcSVlad Buslov {
129910742efcSVlad Buslov 	struct mlx5_core_dev *out_mdev, *route_mdev;
130010742efcSVlad Buslov 	struct mlx5e_priv *out_priv, *route_priv;
130110742efcSVlad Buslov 
130210742efcSVlad Buslov 	out_priv = netdev_priv(out_dev);
130310742efcSVlad Buslov 	out_mdev = out_priv->mdev;
130410742efcSVlad Buslov 	route_priv = netdev_priv(route_dev);
130510742efcSVlad Buslov 	route_mdev = route_priv->mdev;
130610742efcSVlad Buslov 
130710742efcSVlad Buslov 	if (out_mdev->coredev_type != MLX5_COREDEV_PF ||
130810742efcSVlad Buslov 	    route_mdev->coredev_type != MLX5_COREDEV_VF)
130910742efcSVlad Buslov 		return false;
131010742efcSVlad Buslov 
1311ab3f3d5eSRoi Dayan 	return mlx5e_same_hw_devs(out_priv, route_priv);
131210742efcSVlad Buslov }
131310742efcSVlad Buslov 
1314a508728aSVlad Buslov int mlx5e_tc_query_route_vport(struct net_device *out_dev, struct net_device *route_dev, u16 *vport)
131510742efcSVlad Buslov {
131610742efcSVlad Buslov 	struct mlx5e_priv *out_priv, *route_priv;
1317f9d196bdSDmytro Linkin 	struct mlx5_devcom *devcom = NULL;
131810742efcSVlad Buslov 	struct mlx5_core_dev *route_mdev;
131910742efcSVlad Buslov 	struct mlx5_eswitch *esw;
132010742efcSVlad Buslov 	u16 vhca_id;
132110742efcSVlad Buslov 	int err;
132210742efcSVlad Buslov 
132310742efcSVlad Buslov 	out_priv = netdev_priv(out_dev);
132410742efcSVlad Buslov 	esw = out_priv->mdev->priv.eswitch;
132510742efcSVlad Buslov 	route_priv = netdev_priv(route_dev);
132610742efcSVlad Buslov 	route_mdev = route_priv->mdev;
132710742efcSVlad Buslov 
132810742efcSVlad Buslov 	vhca_id = MLX5_CAP_GEN(route_mdev, vhca_id);
1329f9d196bdSDmytro Linkin 	if (mlx5_lag_is_active(out_priv->mdev)) {
1330f9d196bdSDmytro Linkin 		/* In lag case we may get devices from different eswitch instances.
1331f9d196bdSDmytro Linkin 		 * If we failed to get vport num, it means, mostly, that we on the wrong
1332f9d196bdSDmytro Linkin 		 * eswitch.
1333f9d196bdSDmytro Linkin 		 */
133410742efcSVlad Buslov 		err = mlx5_eswitch_vhca_id_to_vport(esw, vhca_id, vport);
1335f9d196bdSDmytro Linkin 		if (err != -ENOENT)
1336f9d196bdSDmytro Linkin 			return err;
1337f9d196bdSDmytro Linkin 
1338f9d196bdSDmytro Linkin 		devcom = out_priv->mdev->priv.devcom;
1339f9d196bdSDmytro Linkin 		esw = mlx5_devcom_get_peer_data(devcom, MLX5_DEVCOM_ESW_OFFLOADS);
1340f9d196bdSDmytro Linkin 		if (!esw)
1341f9d196bdSDmytro Linkin 			return -ENODEV;
1342f9d196bdSDmytro Linkin 	}
1343f9d196bdSDmytro Linkin 
1344f9d196bdSDmytro Linkin 	err = mlx5_eswitch_vhca_id_to_vport(esw, vhca_id, vport);
1345f9d196bdSDmytro Linkin 	if (devcom)
1346f9d196bdSDmytro Linkin 		mlx5_devcom_release_peer_data(devcom, MLX5_DEVCOM_ESW_OFFLOADS);
134710742efcSVlad Buslov 	return err;
134810742efcSVlad Buslov }
134910742efcSVlad Buslov 
1350c7b9038dSVlad Buslov int mlx5e_tc_add_flow_mod_hdr(struct mlx5e_priv *priv,
1351c7b9038dSVlad Buslov 			      struct mlx5e_tc_flow_parse_attr *parse_attr,
1352c7b9038dSVlad Buslov 			      struct mlx5e_tc_flow *flow)
1353c7b9038dSVlad Buslov {
1354c7b9038dSVlad Buslov 	struct mlx5e_tc_mod_hdr_acts *mod_hdr_acts = &parse_attr->mod_hdr_acts;
1355c7b9038dSVlad Buslov 	struct mlx5_modify_hdr *mod_hdr;
1356c7b9038dSVlad Buslov 
1357c7b9038dSVlad Buslov 	mod_hdr = mlx5_modify_header_alloc(priv->mdev,
1358e36db1eeSRoi Dayan 					   mlx5e_get_flow_namespace(flow),
1359c7b9038dSVlad Buslov 					   mod_hdr_acts->num_actions,
1360c7b9038dSVlad Buslov 					   mod_hdr_acts->actions);
1361c7b9038dSVlad Buslov 	if (IS_ERR(mod_hdr))
1362c7b9038dSVlad Buslov 		return PTR_ERR(mod_hdr);
1363c7b9038dSVlad Buslov 
1364c7b9038dSVlad Buslov 	WARN_ON(flow->attr->modify_hdr);
1365c7b9038dSVlad Buslov 	flow->attr->modify_hdr = mod_hdr;
1366c7b9038dSVlad Buslov 
1367c7b9038dSVlad Buslov 	return 0;
1368c7b9038dSVlad Buslov }
1369c7b9038dSVlad Buslov 
1370c83954abSRabie Loulou static int
137174491de9SMark Bloch mlx5e_tc_add_fdb_flow(struct mlx5e_priv *priv,
1372e98bedf5SEli Britstein 		      struct mlx5e_tc_flow *flow,
1373e98bedf5SEli Britstein 		      struct netlink_ext_ack *extack)
1374adb4c123SOr Gerlitz {
1375adb4c123SOr Gerlitz 	struct mlx5_eswitch *esw = priv->mdev->priv.eswitch;
1376c620b772SAriel Levkovich 	struct mlx5e_tc_flow_parse_attr *parse_attr;
1377c620b772SAriel Levkovich 	struct mlx5_flow_attr *attr = flow->attr;
13788914add2SVlad Buslov 	bool vf_tun = false, encap_valid = true;
1379fe7738ebSDima Chumak 	struct net_device *encap_dev = NULL;
1380c620b772SAriel Levkovich 	struct mlx5_esw_flow_attr *esw_attr;
13813c37745eSOr Gerlitz 	struct mlx5e_rep_priv *rpriv;
13823c37745eSOr Gerlitz 	struct mlx5e_priv *out_priv;
138397a8d29aSRoi Dayan 	struct mlx5_fc *counter;
138439ac237cSPaul Blakey 	u32 max_prio, max_chain;
13850ad060eeSRoi Dayan 	int err = 0;
1386f493f155SEli Britstein 	int out_index;
13878b32580dSOr Gerlitz 
1388b16eb3c8SAriel Levkovich 	parse_attr = attr->parse_attr;
1389b16eb3c8SAriel Levkovich 	esw_attr = attr->esw_attr;
1390b16eb3c8SAriel Levkovich 
139184179981SPaul Blakey 	/* We check chain range only for tc flows.
139284179981SPaul Blakey 	 * For ft flows, we checked attr->chain was originally 0 and set it to
139384179981SPaul Blakey 	 * FDB_FT_CHAIN which is outside tc range.
139484179981SPaul Blakey 	 * See mlx5e_rep_setup_ft_cb().
139584179981SPaul Blakey 	 */
1396ae430332SAriel Levkovich 	max_chain = mlx5_chains_get_chain_range(esw_chains(esw));
139784179981SPaul Blakey 	if (!mlx5e_is_ft_flow(flow) && attr->chain > max_chain) {
139861644c3dSRoi Dayan 		NL_SET_ERR_MSG_MOD(extack,
139961644c3dSRoi Dayan 				   "Requested chain is out of supported range");
14008914add2SVlad Buslov 		err = -EOPNOTSUPP;
14018914add2SVlad Buslov 		goto err_out;
1402bf07aa73SPaul Blakey 	}
1403bf07aa73SPaul Blakey 
1404ae430332SAriel Levkovich 	max_prio = mlx5_chains_get_prio_range(esw_chains(esw));
1405bf07aa73SPaul Blakey 	if (attr->prio > max_prio) {
140661644c3dSRoi Dayan 		NL_SET_ERR_MSG_MOD(extack,
140761644c3dSRoi Dayan 				   "Requested priority is out of supported range");
14088914add2SVlad Buslov 		err = -EOPNOTSUPP;
14098914add2SVlad Buslov 		goto err_out;
1410bf07aa73SPaul Blakey 	}
1411bf07aa73SPaul Blakey 
1412777bb800SVlad Buslov 	if (flow_flag_test(flow, TUN_RX)) {
1413777bb800SVlad Buslov 		err = mlx5e_attach_decap_route(priv, flow);
1414777bb800SVlad Buslov 		if (err)
14158914add2SVlad Buslov 			goto err_out;
1416b16eb3c8SAriel Levkovich 
1417b16eb3c8SAriel Levkovich 		if (!attr->chain && esw_attr->int_port) {
1418b16eb3c8SAriel Levkovich 			/* If decap route device is internal port, change the
1419b16eb3c8SAriel Levkovich 			 * source vport value in reg_c0 back to uplink just in
1420b16eb3c8SAriel Levkovich 			 * case the rule performs goto chain > 0. If we have a miss
1421b16eb3c8SAriel Levkovich 			 * on chain > 0 we want the metadata regs to hold the
1422b16eb3c8SAriel Levkovich 			 * chain id so SW will resume handling of this packet
1423b16eb3c8SAriel Levkovich 			 * from the proper chain.
1424b16eb3c8SAriel Levkovich 			 */
1425b16eb3c8SAriel Levkovich 			u32 metadata = mlx5_eswitch_get_vport_metadata_for_set(esw,
1426b16eb3c8SAriel Levkovich 									esw_attr->in_rep->vport);
1427b16eb3c8SAriel Levkovich 
1428b16eb3c8SAriel Levkovich 			err = mlx5e_tc_match_to_reg_set(priv->mdev, &parse_attr->mod_hdr_acts,
1429b16eb3c8SAriel Levkovich 							MLX5_FLOW_NAMESPACE_FDB, VPORT_TO_REG,
1430b16eb3c8SAriel Levkovich 							metadata);
1431b16eb3c8SAriel Levkovich 			if (err)
143231108d14SChristophe JAILLET 				goto err_out;
1433077cdda7SRoi Dayan 
1434077cdda7SRoi Dayan 			attr->action |= MLX5_FLOW_CONTEXT_ACTION_MOD_HDR;
1435b16eb3c8SAriel Levkovich 		}
1436777bb800SVlad Buslov 	}
1437777bb800SVlad Buslov 
143814e6b038SEli Cohen 	if (flow_flag_test(flow, L3_TO_L2_DECAP)) {
143914e6b038SEli Cohen 		err = mlx5e_attach_decap(priv, flow, extack);
144014e6b038SEli Cohen 		if (err)
14418914add2SVlad Buslov 			goto err_out;
144214e6b038SEli Cohen 	}
144314e6b038SEli Cohen 
1444166f431eSAriel Levkovich 	if (netif_is_ovs_master(parse_attr->filter_dev)) {
1445166f431eSAriel Levkovich 		struct mlx5e_tc_int_port *int_port;
1446166f431eSAriel Levkovich 
1447166f431eSAriel Levkovich 		if (attr->chain) {
1448166f431eSAriel Levkovich 			NL_SET_ERR_MSG_MOD(extack,
1449166f431eSAriel Levkovich 					   "Internal port rule is only supported on chain 0");
145031108d14SChristophe JAILLET 			err = -EOPNOTSUPP;
145131108d14SChristophe JAILLET 			goto err_out;
1452166f431eSAriel Levkovich 		}
1453166f431eSAriel Levkovich 
1454166f431eSAriel Levkovich 		if (attr->dest_chain) {
1455166f431eSAriel Levkovich 			NL_SET_ERR_MSG_MOD(extack,
1456166f431eSAriel Levkovich 					   "Internal port rule offload doesn't support goto action");
145731108d14SChristophe JAILLET 			err = -EOPNOTSUPP;
145831108d14SChristophe JAILLET 			goto err_out;
1459166f431eSAriel Levkovich 		}
1460166f431eSAriel Levkovich 
1461166f431eSAriel Levkovich 		int_port = mlx5e_tc_int_port_get(mlx5e_get_int_port_priv(priv),
1462166f431eSAriel Levkovich 						 parse_attr->filter_dev->ifindex,
1463166f431eSAriel Levkovich 						 flow_flag_test(flow, EGRESS) ?
1464166f431eSAriel Levkovich 						 MLX5E_TC_INT_PORT_EGRESS :
1465166f431eSAriel Levkovich 						 MLX5E_TC_INT_PORT_INGRESS);
146631108d14SChristophe JAILLET 		if (IS_ERR(int_port)) {
146731108d14SChristophe JAILLET 			err = PTR_ERR(int_port);
146831108d14SChristophe JAILLET 			goto err_out;
146931108d14SChristophe JAILLET 		}
1470166f431eSAriel Levkovich 
1471166f431eSAriel Levkovich 		esw_attr->int_port = int_port;
1472166f431eSAriel Levkovich 	}
1473166f431eSAriel Levkovich 
1474f493f155SEli Britstein 	for (out_index = 0; out_index < MLX5_MAX_FLOW_FWD_VPORTS; out_index++) {
1475fe7738ebSDima Chumak 		struct net_device *out_dev;
14768c4dc42bSEli Britstein 		int mirred_ifindex;
14778c4dc42bSEli Britstein 
1478c620b772SAriel Levkovich 		if (!(esw_attr->dests[out_index].flags & MLX5_ESW_DEST_ENCAP))
1479f493f155SEli Britstein 			continue;
1480f493f155SEli Britstein 
14817040632dSTonghao Zhang 		mirred_ifindex = parse_attr->mirred_ifindex[out_index];
1482fe7738ebSDima Chumak 		out_dev = dev_get_by_index(dev_net(priv->netdev), mirred_ifindex);
1483fe7738ebSDima Chumak 		if (!out_dev) {
1484fe7738ebSDima Chumak 			NL_SET_ERR_MSG_MOD(extack, "Requested mirred device not found");
1485fe7738ebSDima Chumak 			err = -ENODEV;
1486fe7738ebSDima Chumak 			goto err_out;
1487fe7738ebSDima Chumak 		}
1488733d4f36SRoi Dayan 		err = mlx5e_attach_encap(priv, flow, out_dev, out_index,
14890ad060eeSRoi Dayan 					 extack, &encap_dev, &encap_valid);
1490fe7738ebSDima Chumak 		dev_put(out_dev);
14910ad060eeSRoi Dayan 		if (err)
14928914add2SVlad Buslov 			goto err_out;
14930ad060eeSRoi Dayan 
14948914add2SVlad Buslov 		if (esw_attr->dests[out_index].flags &
1495100ad4e2SAriel Levkovich 		    MLX5_ESW_DEST_CHAIN_WITH_SRC_PORT_CHANGE &&
1496100ad4e2SAriel Levkovich 		    !esw_attr->dest_int_port)
14978914add2SVlad Buslov 			vf_tun = true;
14983c37745eSOr Gerlitz 		out_priv = netdev_priv(encap_dev);
14993c37745eSOr Gerlitz 		rpriv = out_priv->ppriv;
1500c620b772SAriel Levkovich 		esw_attr->dests[out_index].rep = rpriv->rep;
1501c620b772SAriel Levkovich 		esw_attr->dests[out_index].mdev = out_priv->mdev;
15023c37745eSOr Gerlitz 	}
15033c37745eSOr Gerlitz 
15047d1a3d08SVlad Buslov 	if (vf_tun && esw_attr->out_count > 1) {
15057d1a3d08SVlad Buslov 		NL_SET_ERR_MSG_MOD(extack, "VF tunnel encap with mirroring is not supported");
15067d1a3d08SVlad Buslov 		err = -EOPNOTSUPP;
15077d1a3d08SVlad Buslov 		goto err_out;
15087d1a3d08SVlad Buslov 	}
15097d1a3d08SVlad Buslov 
15108b32580dSOr Gerlitz 	err = mlx5_eswitch_add_vlan_action(esw, attr);
1511c83954abSRabie Loulou 	if (err)
15128914add2SVlad Buslov 		goto err_out;
1513adb4c123SOr Gerlitz 
1514d5a3c2b6SRoi Dayan 	if (attr->action & MLX5_FLOW_CONTEXT_ACTION_MOD_HDR &&
1515d5a3c2b6SRoi Dayan 	    !(attr->ct_attr.ct_action & TCA_CT_ACT_CLEAR)) {
15168914add2SVlad Buslov 		if (vf_tun) {
15178914add2SVlad Buslov 			err = mlx5e_tc_add_flow_mod_hdr(priv, parse_attr, flow);
15188914add2SVlad Buslov 			if (err)
15198914add2SVlad Buslov 				goto err_out;
15208914add2SVlad Buslov 		} else {
15211a9527bbSOr Gerlitz 			err = mlx5e_attach_mod_hdr(priv, flow, parse_attr);
1522c83954abSRabie Loulou 			if (err)
15238914add2SVlad Buslov 				goto err_out;
15248914add2SVlad Buslov 		}
1525d7e75a32SOr Gerlitz 	}
1526d7e75a32SOr Gerlitz 
1527b8aee822SMark Bloch 	if (attr->action & MLX5_FLOW_CONTEXT_ACTION_COUNT) {
1528c620b772SAriel Levkovich 		counter = mlx5_fc_create(esw_attr->counter_dev, true);
15298914add2SVlad Buslov 		if (IS_ERR(counter)) {
15308914add2SVlad Buslov 			err = PTR_ERR(counter);
15318914add2SVlad Buslov 			goto err_out;
15328914add2SVlad Buslov 		}
1533b8aee822SMark Bloch 
1534b8aee822SMark Bloch 		attr->counter = counter;
1535b8aee822SMark Bloch 	}
1536b8aee822SMark Bloch 
15370ad060eeSRoi Dayan 	/* we get here if one of the following takes place:
15380ad060eeSRoi Dayan 	 * (1) there's no error
15390ad060eeSRoi Dayan 	 * (2) there's an encap action and we don't have valid neigh
15403c37745eSOr Gerlitz 	 */
1541bc1d75faSRoi Dayan 	if (!encap_valid)
1542178f69b4SEli Cohen 		flow->rule[0] = mlx5e_tc_offload_to_slow_path(esw, flow, &parse_attr->spec);
1543bc1d75faSRoi Dayan 	else
15446d2a3ed0SOr Gerlitz 		flow->rule[0] = mlx5e_tc_offload_fdb_rules(esw, flow, &parse_attr->spec, attr);
15455dbe906fSPaul Blakey 
15468914add2SVlad Buslov 	if (IS_ERR(flow->rule[0])) {
15478914add2SVlad Buslov 		err = PTR_ERR(flow->rule[0]);
15488914add2SVlad Buslov 		goto err_out;
15498914add2SVlad Buslov 	}
1550226f2ca3SVlad Buslov 	flow_flag_set(flow, OFFLOADED);
1551c83954abSRabie Loulou 
15525dbe906fSPaul Blakey 	return 0;
15538914add2SVlad Buslov 
15548914add2SVlad Buslov err_out:
15558914add2SVlad Buslov 	flow_flag_set(flow, FAILED);
15568914add2SVlad Buslov 	return err;
1557aa0cbbaeSOr Gerlitz }
1558d85cdccbSOr Gerlitz 
15599272e3dfSYevgeny Kliteynik static bool mlx5_flow_has_geneve_opt(struct mlx5e_tc_flow *flow)
15609272e3dfSYevgeny Kliteynik {
1561c620b772SAriel Levkovich 	struct mlx5_flow_spec *spec = &flow->attr->parse_attr->spec;
15629272e3dfSYevgeny Kliteynik 	void *headers_v = MLX5_ADDR_OF(fte_match_param,
15639272e3dfSYevgeny Kliteynik 				       spec->match_value,
15649272e3dfSYevgeny Kliteynik 				       misc_parameters_3);
15659272e3dfSYevgeny Kliteynik 	u32 geneve_tlv_opt_0_data = MLX5_GET(fte_match_set_misc3,
15669272e3dfSYevgeny Kliteynik 					     headers_v,
15679272e3dfSYevgeny Kliteynik 					     geneve_tlv_option_0_data);
15689272e3dfSYevgeny Kliteynik 
15699272e3dfSYevgeny Kliteynik 	return !!geneve_tlv_opt_0_data;
15709272e3dfSYevgeny Kliteynik }
15719272e3dfSYevgeny Kliteynik 
1572d85cdccbSOr Gerlitz static void mlx5e_tc_del_fdb_flow(struct mlx5e_priv *priv,
1573d85cdccbSOr Gerlitz 				  struct mlx5e_tc_flow *flow)
1574d85cdccbSOr Gerlitz {
1575d85cdccbSOr Gerlitz 	struct mlx5_eswitch *esw = priv->mdev->priv.eswitch;
1576c620b772SAriel Levkovich 	struct mlx5_flow_attr *attr = flow->attr;
1577777bb800SVlad Buslov 	struct mlx5_esw_flow_attr *esw_attr;
15788914add2SVlad Buslov 	bool vf_tun = false;
1579f493f155SEli Britstein 	int out_index;
1580d85cdccbSOr Gerlitz 
1581777bb800SVlad Buslov 	esw_attr = attr->esw_attr;
15820a7fcb78SPaul Blakey 	mlx5e_put_flow_tunnel_id(flow);
15830a7fcb78SPaul Blakey 
158412a240a4SJianbo Liu 	if (flow_flag_test(flow, NOT_READY))
1585b4a23329SRoi Dayan 		remove_unready_flow(flow);
1586ef06c9eeSRoi Dayan 
1587226f2ca3SVlad Buslov 	if (mlx5e_is_offloaded_flow(flow)) {
1588226f2ca3SVlad Buslov 		if (flow_flag_test(flow, SLOW))
1589178f69b4SEli Cohen 			mlx5e_tc_unoffload_from_slow_path(esw, flow);
15905dbe906fSPaul Blakey 		else
15915dbe906fSPaul Blakey 			mlx5e_tc_unoffload_fdb_rules(esw, flow, attr);
15925dbe906fSPaul Blakey 	}
1593362980eaSVlad Buslov 	complete_all(&flow->del_hw_done);
1594d85cdccbSOr Gerlitz 
15959272e3dfSYevgeny Kliteynik 	if (mlx5_flow_has_geneve_opt(flow))
15969272e3dfSYevgeny Kliteynik 		mlx5_geneve_tlv_option_del(priv->mdev->geneve);
15979272e3dfSYevgeny Kliteynik 
1598513f8f7fSOr Gerlitz 	mlx5_eswitch_del_vlan_action(esw, attr);
1599d85cdccbSOr Gerlitz 
1600777bb800SVlad Buslov 	if (flow->decap_route)
1601777bb800SVlad Buslov 		mlx5e_detach_decap_route(priv, flow);
1602777bb800SVlad Buslov 
1603777bb800SVlad Buslov 	for (out_index = 0; out_index < MLX5_MAX_FLOW_FWD_VPORTS; out_index++) {
16048914add2SVlad Buslov 		if (esw_attr->dests[out_index].flags &
1605100ad4e2SAriel Levkovich 		    MLX5_ESW_DEST_CHAIN_WITH_SRC_PORT_CHANGE &&
1606100ad4e2SAriel Levkovich 		    !esw_attr->dest_int_port)
16078914add2SVlad Buslov 			vf_tun = true;
1608777bb800SVlad Buslov 		if (esw_attr->dests[out_index].flags & MLX5_ESW_DEST_ENCAP) {
16098c4dc42bSEli Britstein 			mlx5e_detach_encap(priv, flow, out_index);
16102a4b6526SVlad Buslov 			kfree(attr->parse_attr->tun_info[out_index]);
16112a4b6526SVlad Buslov 		}
1612777bb800SVlad Buslov 	}
1613d7e75a32SOr Gerlitz 
1614aedd133dSAriel Levkovich 	mlx5_tc_ct_match_del(get_ct_priv(priv), &flow->attr->ct_attr);
16154c8594adSRoi Dayan 
1616c7b9038dSVlad Buslov 	if (attr->action & MLX5_FLOW_CONTEXT_ACTION_MOD_HDR) {
16172c0e5cf5SPaul Blakey 		mlx5e_mod_hdr_dealloc(&attr->parse_attr->mod_hdr_acts);
16188914add2SVlad Buslov 		if (vf_tun && attr->modify_hdr)
16198914add2SVlad Buslov 			mlx5_modify_header_dealloc(priv->mdev, attr->modify_hdr);
16208914add2SVlad Buslov 		else
16211a9527bbSOr Gerlitz 			mlx5e_detach_mod_hdr(priv, flow);
1622c7b9038dSVlad Buslov 	}
1623b8aee822SMark Bloch 
1624b8aee822SMark Bloch 	if (attr->action & MLX5_FLOW_CONTEXT_ACTION_COUNT)
1625777bb800SVlad Buslov 		mlx5_fc_destroy(esw_attr->counter_dev, attr->counter);
162614e6b038SEli Cohen 
1627166f431eSAriel Levkovich 	if (esw_attr->int_port)
1628166f431eSAriel Levkovich 		mlx5e_tc_int_port_put(mlx5e_get_int_port_priv(priv), esw_attr->int_port);
1629166f431eSAriel Levkovich 
163027484f71SAriel Levkovich 	if (esw_attr->dest_int_port)
163127484f71SAriel Levkovich 		mlx5e_tc_int_port_put(mlx5e_get_int_port_priv(priv), esw_attr->dest_int_port);
163227484f71SAriel Levkovich 
163314e6b038SEli Cohen 	if (flow_flag_test(flow, L3_TO_L2_DECAP))
163414e6b038SEli Cohen 		mlx5e_detach_decap(priv, flow);
1635c620b772SAriel Levkovich 
163688d97486SRoi Dayan 	kfree(attr->sample_attr);
163788d97486SRoi Dayan 	kvfree(attr->esw_attr->rx_tun_attr);
163888d97486SRoi Dayan 	kvfree(attr->parse_attr);
1639c620b772SAriel Levkovich 	kfree(flow->attr);
1640d85cdccbSOr Gerlitz }
1641d85cdccbSOr Gerlitz 
16420d9f9647SVlad Buslov struct mlx5_fc *mlx5e_tc_get_counter(struct mlx5e_tc_flow *flow)
1643b8aee822SMark Bloch {
1644c620b772SAriel Levkovich 	return flow->attr->counter;
1645b8aee822SMark Bloch }
1646b8aee822SMark Bloch 
16476a06c2f7SVlad Buslov /* Iterate over tmp_list of flows attached to flow_list head. */
1648021905f8SVlad Buslov void mlx5e_put_flow_list(struct mlx5e_priv *priv, struct list_head *flow_list)
16496a06c2f7SVlad Buslov {
16506a06c2f7SVlad Buslov 	struct mlx5e_tc_flow *flow, *tmp;
16516a06c2f7SVlad Buslov 
16526a06c2f7SVlad Buslov 	list_for_each_entry_safe(flow, tmp, flow_list, tmp_list)
16536a06c2f7SVlad Buslov 		mlx5e_flow_put(priv, flow);
16546a06c2f7SVlad Buslov }
16556a06c2f7SVlad Buslov 
165604de7ddaSRoi Dayan static void __mlx5e_tc_del_fdb_peer_flow(struct mlx5e_tc_flow *flow)
165704de7ddaSRoi Dayan {
165804de7ddaSRoi Dayan 	struct mlx5_eswitch *esw = flow->priv->mdev->priv.eswitch;
165904de7ddaSRoi Dayan 
1660226f2ca3SVlad Buslov 	if (!flow_flag_test(flow, ESWITCH) ||
1661226f2ca3SVlad Buslov 	    !flow_flag_test(flow, DUP))
166204de7ddaSRoi Dayan 		return;
166304de7ddaSRoi Dayan 
166404de7ddaSRoi Dayan 	mutex_lock(&esw->offloads.peer_mutex);
166504de7ddaSRoi Dayan 	list_del(&flow->peer);
166604de7ddaSRoi Dayan 	mutex_unlock(&esw->offloads.peer_mutex);
166704de7ddaSRoi Dayan 
1668226f2ca3SVlad Buslov 	flow_flag_clear(flow, DUP);
166904de7ddaSRoi Dayan 
1670eb252c3aSRoi Dayan 	if (refcount_dec_and_test(&flow->peer_flow->refcnt)) {
167104de7ddaSRoi Dayan 		mlx5e_tc_del_fdb_flow(flow->peer_flow->priv, flow->peer_flow);
1672a23dae79SRoi Dayan 		kfree(flow->peer_flow);
1673eb252c3aSRoi Dayan 	}
1674eb252c3aSRoi Dayan 
167504de7ddaSRoi Dayan 	flow->peer_flow = NULL;
167604de7ddaSRoi Dayan }
167704de7ddaSRoi Dayan 
167804de7ddaSRoi Dayan static void mlx5e_tc_del_fdb_peer_flow(struct mlx5e_tc_flow *flow)
167904de7ddaSRoi Dayan {
168004de7ddaSRoi Dayan 	struct mlx5_core_dev *dev = flow->priv->mdev;
168104de7ddaSRoi Dayan 	struct mlx5_devcom *devcom = dev->priv.devcom;
168204de7ddaSRoi Dayan 	struct mlx5_eswitch *peer_esw;
168304de7ddaSRoi Dayan 
168404de7ddaSRoi Dayan 	peer_esw = mlx5_devcom_get_peer_data(devcom, MLX5_DEVCOM_ESW_OFFLOADS);
168504de7ddaSRoi Dayan 	if (!peer_esw)
168604de7ddaSRoi Dayan 		return;
168704de7ddaSRoi Dayan 
168804de7ddaSRoi Dayan 	__mlx5e_tc_del_fdb_peer_flow(flow);
168904de7ddaSRoi Dayan 	mlx5_devcom_release_peer_data(devcom, MLX5_DEVCOM_ESW_OFFLOADS);
169004de7ddaSRoi Dayan }
169104de7ddaSRoi Dayan 
1692e8f887acSAmir Vadai static void mlx5e_tc_del_flow(struct mlx5e_priv *priv,
1693961e8979SRoi Dayan 			      struct mlx5e_tc_flow *flow)
1694e8f887acSAmir Vadai {
1695226f2ca3SVlad Buslov 	if (mlx5e_is_eswitch_flow(flow)) {
169604de7ddaSRoi Dayan 		mlx5e_tc_del_fdb_peer_flow(flow);
1697d85cdccbSOr Gerlitz 		mlx5e_tc_del_fdb_flow(priv, flow);
169804de7ddaSRoi Dayan 	} else {
1699d85cdccbSOr Gerlitz 		mlx5e_tc_del_nic_flow(priv, flow);
1700e8f887acSAmir Vadai 	}
170104de7ddaSRoi Dayan }
1702e8f887acSAmir Vadai 
1703ee950e5dSChris Mi static bool flow_requires_tunnel_mapping(u32 chain, struct flow_cls_offload *f)
1704bbd00f7eSHadar Hen Zion {
1705f9e30088SPablo Neira Ayuso 	struct flow_rule *rule = flow_cls_offload_flow_rule(f);
17060a7fcb78SPaul Blakey 	struct flow_action *flow_action = &rule->action;
17070a7fcb78SPaul Blakey 	const struct flow_action_entry *act;
17080a7fcb78SPaul Blakey 	int i;
1709bbd00f7eSHadar Hen Zion 
1710ee950e5dSChris Mi 	if (chain)
1711ee950e5dSChris Mi 		return false;
1712ee950e5dSChris Mi 
17130a7fcb78SPaul Blakey 	flow_action_for_each(i, act, flow_action) {
17140a7fcb78SPaul Blakey 		switch (act->id) {
17150a7fcb78SPaul Blakey 		case FLOW_ACTION_GOTO:
17160a7fcb78SPaul Blakey 			return true;
1717ee950e5dSChris Mi 		case FLOW_ACTION_SAMPLE:
1718ee950e5dSChris Mi 			return true;
17190a7fcb78SPaul Blakey 		default:
17200a7fcb78SPaul Blakey 			continue;
1721fe1587a7SDmytro Linkin 		}
17222e72eb43SOr Gerlitz 	}
1723bbd00f7eSHadar Hen Zion 
17240a7fcb78SPaul Blakey 	return false;
17250a7fcb78SPaul Blakey }
1726bcef735cSOr Gerlitz 
17270a7fcb78SPaul Blakey static int
17280a7fcb78SPaul Blakey enc_opts_is_dont_care_or_full_match(struct mlx5e_priv *priv,
17290a7fcb78SPaul Blakey 				    struct flow_dissector_key_enc_opts *opts,
17300a7fcb78SPaul Blakey 				    struct netlink_ext_ack *extack,
17310a7fcb78SPaul Blakey 				    bool *dont_care)
17320a7fcb78SPaul Blakey {
17330a7fcb78SPaul Blakey 	struct geneve_opt *opt;
17340a7fcb78SPaul Blakey 	int off = 0;
1735bcef735cSOr Gerlitz 
17360a7fcb78SPaul Blakey 	*dont_care = true;
1737bcef735cSOr Gerlitz 
17380a7fcb78SPaul Blakey 	while (opts->len > off) {
17390a7fcb78SPaul Blakey 		opt = (struct geneve_opt *)&opts->data[off];
1740e98bedf5SEli Britstein 
17410a7fcb78SPaul Blakey 		if (!(*dont_care) || opt->opt_class || opt->type ||
17420a7fcb78SPaul Blakey 		    memchr_inv(opt->opt_data, 0, opt->length * 4)) {
17430a7fcb78SPaul Blakey 			*dont_care = false;
17440a7fcb78SPaul Blakey 
1745c51323eeSSaeed Mahameed 			if (opt->opt_class != htons(U16_MAX) ||
1746d7a42ad0SRoi Dayan 			    opt->type != U8_MAX) {
1747c50775d0SRoi Dayan 				NL_SET_ERR_MSG_MOD(extack,
17480a7fcb78SPaul Blakey 						   "Partial match of tunnel options in chain > 0 isn't supported");
17490a7fcb78SPaul Blakey 				netdev_warn(priv->netdev,
17500a7fcb78SPaul Blakey 					    "Partial match of tunnel options in chain > 0 isn't supported");
1751e98bedf5SEli Britstein 				return -EOPNOTSUPP;
1752e98bedf5SEli Britstein 			}
1753bcef735cSOr Gerlitz 		}
1754bcef735cSOr Gerlitz 
17550a7fcb78SPaul Blakey 		off += sizeof(struct geneve_opt) + opt->length * 4;
1756bbd00f7eSHadar Hen Zion 	}
1757bbd00f7eSHadar Hen Zion 
1758bbd00f7eSHadar Hen Zion 	return 0;
1759bbd00f7eSHadar Hen Zion }
1760bbd00f7eSHadar Hen Zion 
17610a7fcb78SPaul Blakey #define COPY_DISSECTOR(rule, diss_key, dst)\
17620a7fcb78SPaul Blakey ({ \
17630a7fcb78SPaul Blakey 	struct flow_rule *__rule = (rule);\
17640a7fcb78SPaul Blakey 	typeof(dst) __dst = dst;\
17650a7fcb78SPaul Blakey \
17660a7fcb78SPaul Blakey 	memcpy(__dst,\
17670a7fcb78SPaul Blakey 	       skb_flow_dissector_target(__rule->match.dissector,\
17680a7fcb78SPaul Blakey 					 diss_key,\
17690a7fcb78SPaul Blakey 					 __rule->match.key),\
17700a7fcb78SPaul Blakey 	       sizeof(*__dst));\
17710a7fcb78SPaul Blakey })
17720a7fcb78SPaul Blakey 
17730a7fcb78SPaul Blakey static int mlx5e_get_flow_tunnel_id(struct mlx5e_priv *priv,
17740a7fcb78SPaul Blakey 				    struct mlx5e_tc_flow *flow,
17750a7fcb78SPaul Blakey 				    struct flow_cls_offload *f,
17760a7fcb78SPaul Blakey 				    struct net_device *filter_dev)
17778377629eSEli Britstein {
17780a7fcb78SPaul Blakey 	struct flow_rule *rule = flow_cls_offload_flow_rule(f);
17790a7fcb78SPaul Blakey 	struct netlink_ext_ack *extack = f->common.extack;
17800a7fcb78SPaul Blakey 	struct mlx5e_tc_mod_hdr_acts *mod_hdr_acts;
17810a7fcb78SPaul Blakey 	struct flow_match_enc_opts enc_opts_match;
1782d7a42ad0SRoi Dayan 	struct tunnel_match_enc_opts tun_enc_opts;
17830a7fcb78SPaul Blakey 	struct mlx5_rep_uplink_priv *uplink_priv;
1784c620b772SAriel Levkovich 	struct mlx5_flow_attr *attr = flow->attr;
17850a7fcb78SPaul Blakey 	struct mlx5e_rep_priv *uplink_rpriv;
17860a7fcb78SPaul Blakey 	struct tunnel_match_key tunnel_key;
17870a7fcb78SPaul Blakey 	bool enc_opts_is_dont_care = true;
17880a7fcb78SPaul Blakey 	u32 tun_id, enc_opts_id = 0;
17890a7fcb78SPaul Blakey 	struct mlx5_eswitch *esw;
17900a7fcb78SPaul Blakey 	u32 value, mask;
17910a7fcb78SPaul Blakey 	int err;
17920a7fcb78SPaul Blakey 
17930a7fcb78SPaul Blakey 	esw = priv->mdev->priv.eswitch;
17940a7fcb78SPaul Blakey 	uplink_rpriv = mlx5_eswitch_get_uplink_priv(esw, REP_ETH);
17950a7fcb78SPaul Blakey 	uplink_priv = &uplink_rpriv->uplink_priv;
17960a7fcb78SPaul Blakey 
17970a7fcb78SPaul Blakey 	memset(&tunnel_key, 0, sizeof(tunnel_key));
17980a7fcb78SPaul Blakey 	COPY_DISSECTOR(rule, FLOW_DISSECTOR_KEY_ENC_CONTROL,
17990a7fcb78SPaul Blakey 		       &tunnel_key.enc_control);
18000a7fcb78SPaul Blakey 	if (tunnel_key.enc_control.addr_type == FLOW_DISSECTOR_KEY_IPV4_ADDRS)
18010a7fcb78SPaul Blakey 		COPY_DISSECTOR(rule, FLOW_DISSECTOR_KEY_ENC_IPV4_ADDRS,
18020a7fcb78SPaul Blakey 			       &tunnel_key.enc_ipv4);
18030a7fcb78SPaul Blakey 	else
18040a7fcb78SPaul Blakey 		COPY_DISSECTOR(rule, FLOW_DISSECTOR_KEY_ENC_IPV6_ADDRS,
18050a7fcb78SPaul Blakey 			       &tunnel_key.enc_ipv6);
18060a7fcb78SPaul Blakey 	COPY_DISSECTOR(rule, FLOW_DISSECTOR_KEY_ENC_IP, &tunnel_key.enc_ip);
18070a7fcb78SPaul Blakey 	COPY_DISSECTOR(rule, FLOW_DISSECTOR_KEY_ENC_PORTS,
18080a7fcb78SPaul Blakey 		       &tunnel_key.enc_tp);
18090a7fcb78SPaul Blakey 	COPY_DISSECTOR(rule, FLOW_DISSECTOR_KEY_ENC_KEYID,
18100a7fcb78SPaul Blakey 		       &tunnel_key.enc_key_id);
18110a7fcb78SPaul Blakey 	tunnel_key.filter_ifindex = filter_dev->ifindex;
18120a7fcb78SPaul Blakey 
18130a7fcb78SPaul Blakey 	err = mapping_add(uplink_priv->tunnel_mapping, &tunnel_key, &tun_id);
18140a7fcb78SPaul Blakey 	if (err)
18150a7fcb78SPaul Blakey 		return err;
18160a7fcb78SPaul Blakey 
18170a7fcb78SPaul Blakey 	flow_rule_match_enc_opts(rule, &enc_opts_match);
18180a7fcb78SPaul Blakey 	err = enc_opts_is_dont_care_or_full_match(priv,
18190a7fcb78SPaul Blakey 						  enc_opts_match.mask,
18200a7fcb78SPaul Blakey 						  extack,
18210a7fcb78SPaul Blakey 						  &enc_opts_is_dont_care);
18220a7fcb78SPaul Blakey 	if (err)
18230a7fcb78SPaul Blakey 		goto err_enc_opts;
18240a7fcb78SPaul Blakey 
18250a7fcb78SPaul Blakey 	if (!enc_opts_is_dont_care) {
1826d7a42ad0SRoi Dayan 		memset(&tun_enc_opts, 0, sizeof(tun_enc_opts));
1827d7a42ad0SRoi Dayan 		memcpy(&tun_enc_opts.key, enc_opts_match.key,
1828d7a42ad0SRoi Dayan 		       sizeof(*enc_opts_match.key));
1829d7a42ad0SRoi Dayan 		memcpy(&tun_enc_opts.mask, enc_opts_match.mask,
1830d7a42ad0SRoi Dayan 		       sizeof(*enc_opts_match.mask));
1831d7a42ad0SRoi Dayan 
18320a7fcb78SPaul Blakey 		err = mapping_add(uplink_priv->tunnel_enc_opts_mapping,
1833d7a42ad0SRoi Dayan 				  &tun_enc_opts, &enc_opts_id);
18340a7fcb78SPaul Blakey 		if (err)
18350a7fcb78SPaul Blakey 			goto err_enc_opts;
18360a7fcb78SPaul Blakey 	}
18370a7fcb78SPaul Blakey 
18380a7fcb78SPaul Blakey 	value = tun_id << ENC_OPTS_BITS | enc_opts_id;
18390a7fcb78SPaul Blakey 	mask = enc_opts_id ? TUNNEL_ID_MASK :
18400a7fcb78SPaul Blakey 			     (TUNNEL_ID_MASK & ~ENC_OPTS_BITS_MASK);
18410a7fcb78SPaul Blakey 
18420a7fcb78SPaul Blakey 	if (attr->chain) {
18430a7fcb78SPaul Blakey 		mlx5e_tc_match_to_reg_match(&attr->parse_attr->spec,
18440a7fcb78SPaul Blakey 					    TUNNEL_TO_REG, value, mask);
18450a7fcb78SPaul Blakey 	} else {
18460a7fcb78SPaul Blakey 		mod_hdr_acts = &attr->parse_attr->mod_hdr_acts;
18470a7fcb78SPaul Blakey 		err = mlx5e_tc_match_to_reg_set(priv->mdev,
1848aedd133dSAriel Levkovich 						mod_hdr_acts, MLX5_FLOW_NAMESPACE_FDB,
18490a7fcb78SPaul Blakey 						TUNNEL_TO_REG, value);
18500a7fcb78SPaul Blakey 		if (err)
18510a7fcb78SPaul Blakey 			goto err_set;
18520a7fcb78SPaul Blakey 
18530a7fcb78SPaul Blakey 		attr->action |= MLX5_FLOW_CONTEXT_ACTION_MOD_HDR;
18540a7fcb78SPaul Blakey 	}
18550a7fcb78SPaul Blakey 
18560a7fcb78SPaul Blakey 	flow->tunnel_id = value;
18570a7fcb78SPaul Blakey 	return 0;
18580a7fcb78SPaul Blakey 
18590a7fcb78SPaul Blakey err_set:
18600a7fcb78SPaul Blakey 	if (enc_opts_id)
18610a7fcb78SPaul Blakey 		mapping_remove(uplink_priv->tunnel_enc_opts_mapping,
18620a7fcb78SPaul Blakey 			       enc_opts_id);
18630a7fcb78SPaul Blakey err_enc_opts:
18640a7fcb78SPaul Blakey 	mapping_remove(uplink_priv->tunnel_mapping, tun_id);
18650a7fcb78SPaul Blakey 	return err;
18660a7fcb78SPaul Blakey }
18670a7fcb78SPaul Blakey 
18680a7fcb78SPaul Blakey static void mlx5e_put_flow_tunnel_id(struct mlx5e_tc_flow *flow)
18690a7fcb78SPaul Blakey {
18700a7fcb78SPaul Blakey 	u32 enc_opts_id = flow->tunnel_id & ENC_OPTS_BITS_MASK;
18710a7fcb78SPaul Blakey 	u32 tun_id = flow->tunnel_id >> ENC_OPTS_BITS;
18720a7fcb78SPaul Blakey 	struct mlx5_rep_uplink_priv *uplink_priv;
18730a7fcb78SPaul Blakey 	struct mlx5e_rep_priv *uplink_rpriv;
18740a7fcb78SPaul Blakey 	struct mlx5_eswitch *esw;
18750a7fcb78SPaul Blakey 
18760a7fcb78SPaul Blakey 	esw = flow->priv->mdev->priv.eswitch;
18770a7fcb78SPaul Blakey 	uplink_rpriv = mlx5_eswitch_get_uplink_priv(esw, REP_ETH);
18780a7fcb78SPaul Blakey 	uplink_priv = &uplink_rpriv->uplink_priv;
18790a7fcb78SPaul Blakey 
18800a7fcb78SPaul Blakey 	if (tun_id)
18810a7fcb78SPaul Blakey 		mapping_remove(uplink_priv->tunnel_mapping, tun_id);
18820a7fcb78SPaul Blakey 	if (enc_opts_id)
18830a7fcb78SPaul Blakey 		mapping_remove(uplink_priv->tunnel_enc_opts_mapping,
18840a7fcb78SPaul Blakey 			       enc_opts_id);
18850a7fcb78SPaul Blakey }
18860a7fcb78SPaul Blakey 
18874c3844d9SPaul Blakey u32 mlx5e_tc_get_flow_tun_id(struct mlx5e_tc_flow *flow)
18884c3844d9SPaul Blakey {
18894c3844d9SPaul Blakey 	return flow->tunnel_id;
18904c3844d9SPaul Blakey }
18914c3844d9SPaul Blakey 
1892fca53304SEli Britstein void mlx5e_tc_set_ethertype(struct mlx5_core_dev *mdev,
1893fca53304SEli Britstein 			    struct flow_match_basic *match, bool outer,
1894fca53304SEli Britstein 			    void *headers_c, void *headers_v)
18954a5d5d73SEli Britstein {
1896fca53304SEli Britstein 	bool ip_version_cap;
1897fca53304SEli Britstein 
1898fca53304SEli Britstein 	ip_version_cap = outer ?
1899fca53304SEli Britstein 		MLX5_CAP_FLOWTABLE_NIC_RX(mdev,
1900fca53304SEli Britstein 					  ft_field_support.outer_ip_version) :
1901fca53304SEli Britstein 		MLX5_CAP_FLOWTABLE_NIC_RX(mdev,
1902fca53304SEli Britstein 					  ft_field_support.inner_ip_version);
1903fca53304SEli Britstein 
1904fca53304SEli Britstein 	if (ip_version_cap && match->mask->n_proto == htons(0xFFFF) &&
1905fca53304SEli Britstein 	    (match->key->n_proto == htons(ETH_P_IP) ||
1906fca53304SEli Britstein 	     match->key->n_proto == htons(ETH_P_IPV6))) {
1907fca53304SEli Britstein 		MLX5_SET_TO_ONES(fte_match_set_lyr_2_4, headers_c, ip_version);
1908fca53304SEli Britstein 		MLX5_SET(fte_match_set_lyr_2_4, headers_v, ip_version,
1909fca53304SEli Britstein 			 match->key->n_proto == htons(ETH_P_IP) ? 4 : 6);
1910fca53304SEli Britstein 	} else {
19114a5d5d73SEli Britstein 		MLX5_SET(fte_match_set_lyr_2_4, headers_c, ethertype,
19124a5d5d73SEli Britstein 			 ntohs(match->mask->n_proto));
19134a5d5d73SEli Britstein 		MLX5_SET(fte_match_set_lyr_2_4, headers_v, ethertype,
19144a5d5d73SEli Britstein 			 ntohs(match->key->n_proto));
19154a5d5d73SEli Britstein 	}
1916fca53304SEli Britstein }
19174a5d5d73SEli Britstein 
19180d9f9647SVlad Buslov u8 mlx5e_tc_get_ip_version(struct mlx5_flow_spec *spec, bool outer)
1919a508728aSVlad Buslov {
1920a508728aSVlad Buslov 	void *headers_v;
1921a508728aSVlad Buslov 	u16 ethertype;
1922a508728aSVlad Buslov 	u8 ip_version;
1923a508728aSVlad Buslov 
1924a508728aSVlad Buslov 	if (outer)
1925a508728aSVlad Buslov 		headers_v = MLX5_ADDR_OF(fte_match_param, spec->match_value, outer_headers);
1926a508728aSVlad Buslov 	else
1927a508728aSVlad Buslov 		headers_v = MLX5_ADDR_OF(fte_match_param, spec->match_value, inner_headers);
1928a508728aSVlad Buslov 
1929a508728aSVlad Buslov 	ip_version = MLX5_GET(fte_match_set_lyr_2_4, headers_v, ip_version);
1930a508728aSVlad Buslov 	/* Return ip_version converted from ethertype anyway */
1931a508728aSVlad Buslov 	if (!ip_version) {
1932a508728aSVlad Buslov 		ethertype = MLX5_GET(fte_match_set_lyr_2_4, headers_v, ethertype);
1933a508728aSVlad Buslov 		if (ethertype == ETH_P_IP || ethertype == ETH_P_ARP)
1934a508728aSVlad Buslov 			ip_version = 4;
1935a508728aSVlad Buslov 		else if (ethertype == ETH_P_IPV6)
1936a508728aSVlad Buslov 			ip_version = 6;
1937a508728aSVlad Buslov 	}
1938a508728aSVlad Buslov 	return ip_version;
1939a508728aSVlad Buslov }
1940a508728aSVlad Buslov 
1941b6dfff21SPaul Blakey /* Tunnel device follows RFC 6040, see include/net/inet_ecn.h.
1942b6dfff21SPaul Blakey  * And changes inner ip_ecn depending on inner and outer ip_ecn as follows:
1943b6dfff21SPaul Blakey  *      +---------+----------------------------------------+
1944b6dfff21SPaul Blakey  *      |Arriving |         Arriving Outer Header          |
1945b6dfff21SPaul Blakey  *      |   Inner +---------+---------+---------+----------+
1946b6dfff21SPaul Blakey  *      |  Header | Not-ECT | ECT(0)  | ECT(1)  |   CE     |
1947b6dfff21SPaul Blakey  *      +---------+---------+---------+---------+----------+
1948b6dfff21SPaul Blakey  *      | Not-ECT | Not-ECT | Not-ECT | Not-ECT | <drop>   |
1949b6dfff21SPaul Blakey  *      |  ECT(0) |  ECT(0) | ECT(0)  | ECT(1)  |   CE*    |
1950b6dfff21SPaul Blakey  *      |  ECT(1) |  ECT(1) | ECT(1)  | ECT(1)* |   CE*    |
1951b6dfff21SPaul Blakey  *      |    CE   |   CE    |  CE     | CE      |   CE     |
1952b6dfff21SPaul Blakey  *      +---------+---------+---------+---------+----------+
1953b6dfff21SPaul Blakey  *
1954b6dfff21SPaul Blakey  * Tc matches on inner after decapsulation on tunnel device, but hw offload matches
1955b6dfff21SPaul Blakey  * the inner ip_ecn value before hardware decap action.
1956b6dfff21SPaul Blakey  *
1957b6dfff21SPaul Blakey  * Cells marked are changed from original inner packet ip_ecn value during decap, and
1958b6dfff21SPaul Blakey  * so matching those values on inner ip_ecn before decap will fail.
1959b6dfff21SPaul Blakey  *
1960b6dfff21SPaul Blakey  * The following helper allows offload when inner ip_ecn won't be changed by outer ip_ecn,
1961b6dfff21SPaul Blakey  * except for the outer ip_ecn = CE, where in all cases inner ip_ecn will be changed to CE,
1962b6dfff21SPaul Blakey  * and such we can drop the inner ip_ecn=CE match.
1963b6dfff21SPaul Blakey  */
1964b6dfff21SPaul Blakey 
1965b6dfff21SPaul Blakey static int mlx5e_tc_verify_tunnel_ecn(struct mlx5e_priv *priv,
1966b6dfff21SPaul Blakey 				      struct flow_cls_offload *f,
1967b6dfff21SPaul Blakey 				      bool *match_inner_ecn)
1968b6dfff21SPaul Blakey {
1969b6dfff21SPaul Blakey 	u8 outer_ecn_mask = 0, outer_ecn_key = 0, inner_ecn_mask = 0, inner_ecn_key = 0;
1970b6dfff21SPaul Blakey 	struct flow_rule *rule = flow_cls_offload_flow_rule(f);
1971b6dfff21SPaul Blakey 	struct netlink_ext_ack *extack = f->common.extack;
1972b6dfff21SPaul Blakey 	struct flow_match_ip match;
1973b6dfff21SPaul Blakey 
1974b6dfff21SPaul Blakey 	*match_inner_ecn = true;
1975b6dfff21SPaul Blakey 
1976b6dfff21SPaul Blakey 	if (flow_rule_match_key(rule, FLOW_DISSECTOR_KEY_ENC_IP)) {
1977b6dfff21SPaul Blakey 		flow_rule_match_enc_ip(rule, &match);
1978b6dfff21SPaul Blakey 		outer_ecn_key = match.key->tos & INET_ECN_MASK;
1979b6dfff21SPaul Blakey 		outer_ecn_mask = match.mask->tos & INET_ECN_MASK;
1980b6dfff21SPaul Blakey 	}
1981b6dfff21SPaul Blakey 
1982b6dfff21SPaul Blakey 	if (flow_rule_match_key(rule, FLOW_DISSECTOR_KEY_IP)) {
1983b6dfff21SPaul Blakey 		flow_rule_match_ip(rule, &match);
1984b6dfff21SPaul Blakey 		inner_ecn_key = match.key->tos & INET_ECN_MASK;
1985b6dfff21SPaul Blakey 		inner_ecn_mask = match.mask->tos & INET_ECN_MASK;
1986b6dfff21SPaul Blakey 	}
1987b6dfff21SPaul Blakey 
1988b6dfff21SPaul Blakey 	if (outer_ecn_mask != 0 && outer_ecn_mask != INET_ECN_MASK) {
1989b6dfff21SPaul Blakey 		NL_SET_ERR_MSG_MOD(extack, "Partial match on enc_tos ecn bits isn't supported");
1990b6dfff21SPaul Blakey 		netdev_warn(priv->netdev, "Partial match on enc_tos ecn bits isn't supported");
1991b6dfff21SPaul Blakey 		return -EOPNOTSUPP;
1992b6dfff21SPaul Blakey 	}
1993b6dfff21SPaul Blakey 
1994b6dfff21SPaul Blakey 	if (!outer_ecn_mask) {
1995b6dfff21SPaul Blakey 		if (!inner_ecn_mask)
1996b6dfff21SPaul Blakey 			return 0;
1997b6dfff21SPaul Blakey 
1998b6dfff21SPaul Blakey 		NL_SET_ERR_MSG_MOD(extack,
1999b6dfff21SPaul Blakey 				   "Matching on tos ecn bits without also matching enc_tos ecn bits isn't supported");
2000b6dfff21SPaul Blakey 		netdev_warn(priv->netdev,
2001b6dfff21SPaul Blakey 			    "Matching on tos ecn bits without also matching enc_tos ecn bits isn't supported");
2002b6dfff21SPaul Blakey 		return -EOPNOTSUPP;
2003b6dfff21SPaul Blakey 	}
2004b6dfff21SPaul Blakey 
2005b6dfff21SPaul Blakey 	if (inner_ecn_mask && inner_ecn_mask != INET_ECN_MASK) {
2006b6dfff21SPaul Blakey 		NL_SET_ERR_MSG_MOD(extack,
2007b6dfff21SPaul Blakey 				   "Partial match on tos ecn bits with match on enc_tos ecn bits isn't supported");
2008b6dfff21SPaul Blakey 		netdev_warn(priv->netdev,
2009b6dfff21SPaul Blakey 			    "Partial match on tos ecn bits with match on enc_tos ecn bits isn't supported");
2010b6dfff21SPaul Blakey 		return -EOPNOTSUPP;
2011b6dfff21SPaul Blakey 	}
2012b6dfff21SPaul Blakey 
2013b6dfff21SPaul Blakey 	if (!inner_ecn_mask)
2014b6dfff21SPaul Blakey 		return 0;
2015b6dfff21SPaul Blakey 
2016b6dfff21SPaul Blakey 	/* Both inner and outer have full mask on ecn */
2017b6dfff21SPaul Blakey 
2018b6dfff21SPaul Blakey 	if (outer_ecn_key == INET_ECN_ECT_1) {
2019b6dfff21SPaul Blakey 		/* inner ecn might change by DECAP action */
2020b6dfff21SPaul Blakey 
2021b6dfff21SPaul Blakey 		NL_SET_ERR_MSG_MOD(extack, "Match on enc_tos ecn = ECT(1) isn't supported");
2022b6dfff21SPaul Blakey 		netdev_warn(priv->netdev, "Match on enc_tos ecn = ECT(1) isn't supported");
2023b6dfff21SPaul Blakey 		return -EOPNOTSUPP;
2024b6dfff21SPaul Blakey 	}
2025b6dfff21SPaul Blakey 
2026b6dfff21SPaul Blakey 	if (outer_ecn_key != INET_ECN_CE)
2027b6dfff21SPaul Blakey 		return 0;
2028b6dfff21SPaul Blakey 
2029b6dfff21SPaul Blakey 	if (inner_ecn_key != INET_ECN_CE) {
2030b6dfff21SPaul Blakey 		/* Can't happen in software, as packet ecn will be changed to CE after decap */
2031b6dfff21SPaul Blakey 		NL_SET_ERR_MSG_MOD(extack,
2032b6dfff21SPaul Blakey 				   "Match on tos enc_tos ecn = CE while match on tos ecn != CE isn't supported");
2033b6dfff21SPaul Blakey 		netdev_warn(priv->netdev,
2034b6dfff21SPaul Blakey 			    "Match on tos enc_tos ecn = CE while match on tos ecn != CE isn't supported");
2035b6dfff21SPaul Blakey 		return -EOPNOTSUPP;
2036b6dfff21SPaul Blakey 	}
2037b6dfff21SPaul Blakey 
2038b6dfff21SPaul Blakey 	/* outer ecn = CE, inner ecn = CE, as decap will change inner ecn to CE in anycase,
2039b6dfff21SPaul Blakey 	 * drop match on inner ecn
2040b6dfff21SPaul Blakey 	 */
2041b6dfff21SPaul Blakey 	*match_inner_ecn = false;
2042b6dfff21SPaul Blakey 
2043b6dfff21SPaul Blakey 	return 0;
2044b6dfff21SPaul Blakey }
2045b6dfff21SPaul Blakey 
20460a7fcb78SPaul Blakey static int parse_tunnel_attr(struct mlx5e_priv *priv,
20470a7fcb78SPaul Blakey 			     struct mlx5e_tc_flow *flow,
20480a7fcb78SPaul Blakey 			     struct mlx5_flow_spec *spec,
20490a7fcb78SPaul Blakey 			     struct flow_cls_offload *f,
20500a7fcb78SPaul Blakey 			     struct net_device *filter_dev,
20510a7fcb78SPaul Blakey 			     u8 *match_level,
20520a7fcb78SPaul Blakey 			     bool *match_inner)
20530a7fcb78SPaul Blakey {
2054a508728aSVlad Buslov 	struct mlx5e_tc_tunnel *tunnel = mlx5e_get_tc_tun(filter_dev);
20550a7fcb78SPaul Blakey 	struct mlx5_eswitch *esw = priv->mdev->priv.eswitch;
20560a7fcb78SPaul Blakey 	struct netlink_ext_ack *extack = f->common.extack;
20570a7fcb78SPaul Blakey 	bool needs_mapping, sets_mapping;
20580a7fcb78SPaul Blakey 	int err;
20590a7fcb78SPaul Blakey 
20600885ae1aSAbhiram R N 	if (!mlx5e_is_eswitch_flow(flow)) {
20610885ae1aSAbhiram R N 		NL_SET_ERR_MSG_MOD(extack, "Match on tunnel is not supported");
20620a7fcb78SPaul Blakey 		return -EOPNOTSUPP;
20630885ae1aSAbhiram R N 	}
20640a7fcb78SPaul Blakey 
2065c620b772SAriel Levkovich 	needs_mapping = !!flow->attr->chain;
2066ee950e5dSChris Mi 	sets_mapping = flow_requires_tunnel_mapping(flow->attr->chain, f);
20670a7fcb78SPaul Blakey 	*match_inner = !needs_mapping;
20680a7fcb78SPaul Blakey 
20690a7fcb78SPaul Blakey 	if ((needs_mapping || sets_mapping) &&
2070636bb968SPaul Blakey 	    !mlx5_eswitch_reg_c1_loopback_enabled(esw)) {
2071c50775d0SRoi Dayan 		NL_SET_ERR_MSG_MOD(extack,
2072636bb968SPaul Blakey 				   "Chains on tunnel devices isn't supported without register loopback support");
20730a7fcb78SPaul Blakey 		netdev_warn(priv->netdev,
2074636bb968SPaul Blakey 			    "Chains on tunnel devices isn't supported without register loopback support");
20750a7fcb78SPaul Blakey 		return -EOPNOTSUPP;
20760a7fcb78SPaul Blakey 	}
20770a7fcb78SPaul Blakey 
2078c620b772SAriel Levkovich 	if (!flow->attr->chain) {
20790a7fcb78SPaul Blakey 		err = mlx5e_tc_tun_parse(filter_dev, priv, spec, f,
20800a7fcb78SPaul Blakey 					 match_level);
20810a7fcb78SPaul Blakey 		if (err) {
20820a7fcb78SPaul Blakey 			NL_SET_ERR_MSG_MOD(extack,
20830a7fcb78SPaul Blakey 					   "Failed to parse tunnel attributes");
20840a7fcb78SPaul Blakey 			netdev_warn(priv->netdev,
20850a7fcb78SPaul Blakey 				    "Failed to parse tunnel attributes");
20860a7fcb78SPaul Blakey 			return err;
20870a7fcb78SPaul Blakey 		}
20880a7fcb78SPaul Blakey 
208914e6b038SEli Cohen 		/* With mpls over udp we decapsulate using packet reformat
209014e6b038SEli Cohen 		 * object
209114e6b038SEli Cohen 		 */
209214e6b038SEli Cohen 		if (!netif_is_bareudp(filter_dev))
2093c620b772SAriel Levkovich 			flow->attr->action |= MLX5_FLOW_CONTEXT_ACTION_DECAP;
2094a508728aSVlad Buslov 		err = mlx5e_tc_set_attr_rx_tun(flow, spec);
2095a508728aSVlad Buslov 		if (err)
2096a508728aSVlad Buslov 			return err;
2097a508728aSVlad Buslov 	} else if (tunnel && tunnel->tunnel_type == MLX5E_TC_TUNNEL_TYPE_VXLAN) {
2098a508728aSVlad Buslov 		struct mlx5_flow_spec *tmp_spec;
2099a508728aSVlad Buslov 
2100a508728aSVlad Buslov 		tmp_spec = kvzalloc(sizeof(*tmp_spec), GFP_KERNEL);
2101a508728aSVlad Buslov 		if (!tmp_spec) {
2102a508728aSVlad Buslov 			NL_SET_ERR_MSG_MOD(extack, "Failed to allocate memory for vxlan tmp spec");
2103a508728aSVlad Buslov 			netdev_warn(priv->netdev, "Failed to allocate memory for vxlan tmp spec");
2104a508728aSVlad Buslov 			return -ENOMEM;
2105a508728aSVlad Buslov 		}
2106a508728aSVlad Buslov 		memcpy(tmp_spec, spec, sizeof(*tmp_spec));
2107a508728aSVlad Buslov 
2108a508728aSVlad Buslov 		err = mlx5e_tc_tun_parse(filter_dev, priv, tmp_spec, f, match_level);
2109a508728aSVlad Buslov 		if (err) {
2110a508728aSVlad Buslov 			kvfree(tmp_spec);
2111a508728aSVlad Buslov 			NL_SET_ERR_MSG_MOD(extack, "Failed to parse tunnel attributes");
2112a508728aSVlad Buslov 			netdev_warn(priv->netdev, "Failed to parse tunnel attributes");
2113a508728aSVlad Buslov 			return err;
2114a508728aSVlad Buslov 		}
2115a508728aSVlad Buslov 		err = mlx5e_tc_set_attr_rx_tun(flow, tmp_spec);
2116a508728aSVlad Buslov 		kvfree(tmp_spec);
2117a508728aSVlad Buslov 		if (err)
2118a508728aSVlad Buslov 			return err;
21190a7fcb78SPaul Blakey 	}
21200a7fcb78SPaul Blakey 
21210a7fcb78SPaul Blakey 	if (!needs_mapping && !sets_mapping)
21220a7fcb78SPaul Blakey 		return 0;
21230a7fcb78SPaul Blakey 
21240a7fcb78SPaul Blakey 	return mlx5e_get_flow_tunnel_id(priv, flow, f, filter_dev);
21250a7fcb78SPaul Blakey }
21260a7fcb78SPaul Blakey 
21270a7fcb78SPaul Blakey static void *get_match_inner_headers_criteria(struct mlx5_flow_spec *spec)
21280a7fcb78SPaul Blakey {
21290a7fcb78SPaul Blakey 	return MLX5_ADDR_OF(fte_match_param, spec->match_criteria,
21300a7fcb78SPaul Blakey 			    inner_headers);
21310a7fcb78SPaul Blakey }
21320a7fcb78SPaul Blakey 
21330a7fcb78SPaul Blakey static void *get_match_inner_headers_value(struct mlx5_flow_spec *spec)
21340a7fcb78SPaul Blakey {
21350a7fcb78SPaul Blakey 	return MLX5_ADDR_OF(fte_match_param, spec->match_value,
21360a7fcb78SPaul Blakey 			    inner_headers);
21370a7fcb78SPaul Blakey }
21380a7fcb78SPaul Blakey 
21390a7fcb78SPaul Blakey static void *get_match_outer_headers_criteria(struct mlx5_flow_spec *spec)
21400a7fcb78SPaul Blakey {
21410a7fcb78SPaul Blakey 	return MLX5_ADDR_OF(fte_match_param, spec->match_criteria,
21420a7fcb78SPaul Blakey 			    outer_headers);
21430a7fcb78SPaul Blakey }
21440a7fcb78SPaul Blakey 
21450a7fcb78SPaul Blakey static void *get_match_outer_headers_value(struct mlx5_flow_spec *spec)
21460a7fcb78SPaul Blakey {
21470a7fcb78SPaul Blakey 	return MLX5_ADDR_OF(fte_match_param, spec->match_value,
21488377629eSEli Britstein 			    outer_headers);
21498377629eSEli Britstein }
21508377629eSEli Britstein 
21518ee72638SRoi Dayan void *mlx5e_get_match_headers_value(u32 flags, struct mlx5_flow_spec *spec)
21528377629eSEli Britstein {
21538377629eSEli Britstein 	return (flags & MLX5_FLOW_CONTEXT_ACTION_DECAP) ?
21540a7fcb78SPaul Blakey 		get_match_inner_headers_value(spec) :
21550a7fcb78SPaul Blakey 		get_match_outer_headers_value(spec);
21560a7fcb78SPaul Blakey }
21570a7fcb78SPaul Blakey 
21588ee72638SRoi Dayan void *mlx5e_get_match_headers_criteria(u32 flags, struct mlx5_flow_spec *spec)
21590a7fcb78SPaul Blakey {
21600a7fcb78SPaul Blakey 	return (flags & MLX5_FLOW_CONTEXT_ACTION_DECAP) ?
21610a7fcb78SPaul Blakey 		get_match_inner_headers_criteria(spec) :
21620a7fcb78SPaul Blakey 		get_match_outer_headers_criteria(spec);
21638377629eSEli Britstein }
21648377629eSEli Britstein 
21656d65bc64Swenxu static int mlx5e_flower_parse_meta(struct net_device *filter_dev,
21666d65bc64Swenxu 				   struct flow_cls_offload *f)
21676d65bc64Swenxu {
21686d65bc64Swenxu 	struct flow_rule *rule = flow_cls_offload_flow_rule(f);
21696d65bc64Swenxu 	struct netlink_ext_ack *extack = f->common.extack;
21706d65bc64Swenxu 	struct net_device *ingress_dev;
21716d65bc64Swenxu 	struct flow_match_meta match;
21726d65bc64Swenxu 
21736d65bc64Swenxu 	if (!flow_rule_match_key(rule, FLOW_DISSECTOR_KEY_META))
21746d65bc64Swenxu 		return 0;
21756d65bc64Swenxu 
21766d65bc64Swenxu 	flow_rule_match_meta(rule, &match);
2177e3e0f9b2Swenxu 	if (!match.mask->ingress_ifindex)
2178e3e0f9b2Swenxu 		return 0;
2179e3e0f9b2Swenxu 
21806d65bc64Swenxu 	if (match.mask->ingress_ifindex != 0xFFFFFFFF) {
21816d65bc64Swenxu 		NL_SET_ERR_MSG_MOD(extack, "Unsupported ingress ifindex mask");
2182a683012aSPablo Neira Ayuso 		return -EOPNOTSUPP;
21836d65bc64Swenxu 	}
21846d65bc64Swenxu 
21856d65bc64Swenxu 	ingress_dev = __dev_get_by_index(dev_net(filter_dev),
21866d65bc64Swenxu 					 match.key->ingress_ifindex);
21876d65bc64Swenxu 	if (!ingress_dev) {
21886d65bc64Swenxu 		NL_SET_ERR_MSG_MOD(extack,
21896d65bc64Swenxu 				   "Can't find the ingress port to match on");
2190a683012aSPablo Neira Ayuso 		return -ENOENT;
21916d65bc64Swenxu 	}
21926d65bc64Swenxu 
21936d65bc64Swenxu 	if (ingress_dev != filter_dev) {
21946d65bc64Swenxu 		NL_SET_ERR_MSG_MOD(extack,
21956d65bc64Swenxu 				   "Can't match on the ingress filter port");
2196a683012aSPablo Neira Ayuso 		return -EOPNOTSUPP;
21976d65bc64Swenxu 	}
21986d65bc64Swenxu 
21996d65bc64Swenxu 	return 0;
22006d65bc64Swenxu }
22016d65bc64Swenxu 
220272046a91SEli Cohen static bool skip_key_basic(struct net_device *filter_dev,
220372046a91SEli Cohen 			   struct flow_cls_offload *f)
220472046a91SEli Cohen {
220572046a91SEli Cohen 	/* When doing mpls over udp decap, the user needs to provide
220672046a91SEli Cohen 	 * MPLS_UC as the protocol in order to be able to match on mpls
220772046a91SEli Cohen 	 * label fields.  However, the actual ethertype is IP so we want to
220872046a91SEli Cohen 	 * avoid matching on this, otherwise we'll fail the match.
220972046a91SEli Cohen 	 */
221072046a91SEli Cohen 	if (netif_is_bareudp(filter_dev) && f->common.chain_index == 0)
221172046a91SEli Cohen 		return true;
221272046a91SEli Cohen 
221372046a91SEli Cohen 	return false;
221472046a91SEli Cohen }
221572046a91SEli Cohen 
2216de0af0bfSRoi Dayan static int __parse_cls_flower(struct mlx5e_priv *priv,
22170a7fcb78SPaul Blakey 			      struct mlx5e_tc_flow *flow,
2218de0af0bfSRoi Dayan 			      struct mlx5_flow_spec *spec,
2219f9e30088SPablo Neira Ayuso 			      struct flow_cls_offload *f,
222054c177caSOz Shlomo 			      struct net_device *filter_dev,
222193b3586eSHuy Nguyen 			      u8 *inner_match_level, u8 *outer_match_level)
2222e3a2b7edSAmir Vadai {
2223e98bedf5SEli Britstein 	struct netlink_ext_ack *extack = f->common.extack;
2224c5bb1730SMaor Gottlieb 	void *headers_c = MLX5_ADDR_OF(fte_match_param, spec->match_criteria,
2225c5bb1730SMaor Gottlieb 				       outer_headers);
2226c5bb1730SMaor Gottlieb 	void *headers_v = MLX5_ADDR_OF(fte_match_param, spec->match_value,
2227c5bb1730SMaor Gottlieb 				       outer_headers);
2228699e96ddSJianbo Liu 	void *misc_c = MLX5_ADDR_OF(fte_match_param, spec->match_criteria,
2229699e96ddSJianbo Liu 				    misc_parameters);
2230699e96ddSJianbo Liu 	void *misc_v = MLX5_ADDR_OF(fte_match_param, spec->match_value,
2231699e96ddSJianbo Liu 				    misc_parameters);
2232a3222a2dSMaor Dickman 	void *misc_c_3 = MLX5_ADDR_OF(fte_match_param, spec->match_criteria,
2233a3222a2dSMaor Dickman 				    misc_parameters_3);
2234a3222a2dSMaor Dickman 	void *misc_v_3 = MLX5_ADDR_OF(fte_match_param, spec->match_value,
2235a3222a2dSMaor Dickman 				    misc_parameters_3);
2236f9e30088SPablo Neira Ayuso 	struct flow_rule *rule = flow_cls_offload_flow_rule(f);
22378f256622SPablo Neira Ayuso 	struct flow_dissector *dissector = rule->match.dissector;
2238afe93f71SRoi Dayan 	enum fs_flow_table_type fs_type;
2239b6dfff21SPaul Blakey 	bool match_inner_ecn = true;
2240e3a2b7edSAmir Vadai 	u16 addr_type = 0;
2241e3a2b7edSAmir Vadai 	u8 ip_proto = 0;
224293b3586eSHuy Nguyen 	u8 *match_level;
22436d65bc64Swenxu 	int err;
2244e3a2b7edSAmir Vadai 
2245afe93f71SRoi Dayan 	fs_type = mlx5e_is_eswitch_flow(flow) ? FS_FT_FDB : FS_FT_NIC_RX;
224693b3586eSHuy Nguyen 	match_level = outer_match_level;
2247de0af0bfSRoi Dayan 
22488f256622SPablo Neira Ayuso 	if (dissector->used_keys &
22493d144578SVlad Buslov 	    ~(BIT(FLOW_DISSECTOR_KEY_META) |
22503d144578SVlad Buslov 	      BIT(FLOW_DISSECTOR_KEY_CONTROL) |
2251e3a2b7edSAmir Vadai 	      BIT(FLOW_DISSECTOR_KEY_BASIC) |
2252e3a2b7edSAmir Vadai 	      BIT(FLOW_DISSECTOR_KEY_ETH_ADDRS) |
2253095b6cfdSOr Gerlitz 	      BIT(FLOW_DISSECTOR_KEY_VLAN) |
2254699e96ddSJianbo Liu 	      BIT(FLOW_DISSECTOR_KEY_CVLAN) |
2255e3a2b7edSAmir Vadai 	      BIT(FLOW_DISSECTOR_KEY_IPV4_ADDRS) |
2256e3a2b7edSAmir Vadai 	      BIT(FLOW_DISSECTOR_KEY_IPV6_ADDRS) |
2257bbd00f7eSHadar Hen Zion 	      BIT(FLOW_DISSECTOR_KEY_PORTS) |
2258bbd00f7eSHadar Hen Zion 	      BIT(FLOW_DISSECTOR_KEY_ENC_KEYID) |
2259bbd00f7eSHadar Hen Zion 	      BIT(FLOW_DISSECTOR_KEY_ENC_IPV4_ADDRS) |
2260bbd00f7eSHadar Hen Zion 	      BIT(FLOW_DISSECTOR_KEY_ENC_IPV6_ADDRS) |
2261bbd00f7eSHadar Hen Zion 	      BIT(FLOW_DISSECTOR_KEY_ENC_PORTS)	|
2262e77834ecSOr Gerlitz 	      BIT(FLOW_DISSECTOR_KEY_ENC_CONTROL) |
2263fd7da28bSOr Gerlitz 	      BIT(FLOW_DISSECTOR_KEY_TCP) |
2264bcef735cSOr Gerlitz 	      BIT(FLOW_DISSECTOR_KEY_IP)  |
22654c3844d9SPaul Blakey 	      BIT(FLOW_DISSECTOR_KEY_CT) |
22669272e3dfSYevgeny Kliteynik 	      BIT(FLOW_DISSECTOR_KEY_ENC_IP) |
226772046a91SEli Cohen 	      BIT(FLOW_DISSECTOR_KEY_ENC_OPTS) |
2268a3222a2dSMaor Dickman 	      BIT(FLOW_DISSECTOR_KEY_ICMP) |
226972046a91SEli Cohen 	      BIT(FLOW_DISSECTOR_KEY_MPLS))) {
2270e98bedf5SEli Britstein 		NL_SET_ERR_MSG_MOD(extack, "Unsupported key");
227148470a90SMaor Dickman 		netdev_dbg(priv->netdev, "Unsupported key used: 0x%x\n",
22728f256622SPablo Neira Ayuso 			   dissector->used_keys);
2273e3a2b7edSAmir Vadai 		return -EOPNOTSUPP;
2274e3a2b7edSAmir Vadai 	}
2275e3a2b7edSAmir Vadai 
2276075973c7SVlad Buslov 	if (mlx5e_get_tc_tun(filter_dev)) {
22770a7fcb78SPaul Blakey 		bool match_inner = false;
2278bbd00f7eSHadar Hen Zion 
22790a7fcb78SPaul Blakey 		err = parse_tunnel_attr(priv, flow, spec, f, filter_dev,
22800a7fcb78SPaul Blakey 					outer_match_level, &match_inner);
22810a7fcb78SPaul Blakey 		if (err)
22820a7fcb78SPaul Blakey 			return err;
22830a7fcb78SPaul Blakey 
22840a7fcb78SPaul Blakey 		if (match_inner) {
22850a7fcb78SPaul Blakey 			/* header pointers should point to the inner headers
22860a7fcb78SPaul Blakey 			 * if the packet was decapsulated already.
22870a7fcb78SPaul Blakey 			 * outer headers are set by parse_tunnel_attr.
2288bbd00f7eSHadar Hen Zion 			 */
228993b3586eSHuy Nguyen 			match_level = inner_match_level;
22900a7fcb78SPaul Blakey 			headers_c = get_match_inner_headers_criteria(spec);
22910a7fcb78SPaul Blakey 			headers_v = get_match_inner_headers_value(spec);
22920a7fcb78SPaul Blakey 		}
2293b6dfff21SPaul Blakey 
2294b6dfff21SPaul Blakey 		err = mlx5e_tc_verify_tunnel_ecn(priv, f, &match_inner_ecn);
2295b6dfff21SPaul Blakey 		if (err)
2296b6dfff21SPaul Blakey 			return err;
2297bbd00f7eSHadar Hen Zion 	}
2298bbd00f7eSHadar Hen Zion 
22996d65bc64Swenxu 	err = mlx5e_flower_parse_meta(filter_dev, f);
23006d65bc64Swenxu 	if (err)
23016d65bc64Swenxu 		return err;
23026d65bc64Swenxu 
230372046a91SEli Cohen 	if (flow_rule_match_key(rule, FLOW_DISSECTOR_KEY_BASIC) &&
230472046a91SEli Cohen 	    !skip_key_basic(filter_dev, f)) {
23058f256622SPablo Neira Ayuso 		struct flow_match_basic match;
2306e3a2b7edSAmir Vadai 
23078f256622SPablo Neira Ayuso 		flow_rule_match_basic(rule, &match);
2308fca53304SEli Britstein 		mlx5e_tc_set_ethertype(priv->mdev, &match,
2309fca53304SEli Britstein 				       match_level == outer_match_level,
2310fca53304SEli Britstein 				       headers_c, headers_v);
23118f256622SPablo Neira Ayuso 
23128f256622SPablo Neira Ayuso 		if (match.mask->n_proto)
2313d708f902SOr Gerlitz 			*match_level = MLX5_MATCH_L2;
2314e3a2b7edSAmir Vadai 	}
231535a605dbSEli Britstein 	if (flow_rule_match_key(rule, FLOW_DISSECTOR_KEY_VLAN) ||
231635a605dbSEli Britstein 	    is_vlan_dev(filter_dev)) {
231735a605dbSEli Britstein 		struct flow_dissector_key_vlan filter_dev_mask;
231835a605dbSEli Britstein 		struct flow_dissector_key_vlan filter_dev_key;
23198f256622SPablo Neira Ayuso 		struct flow_match_vlan match;
23208f256622SPablo Neira Ayuso 
232135a605dbSEli Britstein 		if (is_vlan_dev(filter_dev)) {
232235a605dbSEli Britstein 			match.key = &filter_dev_key;
232335a605dbSEli Britstein 			match.key->vlan_id = vlan_dev_vlan_id(filter_dev);
232435a605dbSEli Britstein 			match.key->vlan_tpid = vlan_dev_vlan_proto(filter_dev);
232535a605dbSEli Britstein 			match.key->vlan_priority = 0;
232635a605dbSEli Britstein 			match.mask = &filter_dev_mask;
232735a605dbSEli Britstein 			memset(match.mask, 0xff, sizeof(*match.mask));
232835a605dbSEli Britstein 			match.mask->vlan_priority = 0;
232935a605dbSEli Britstein 		} else {
23308f256622SPablo Neira Ayuso 			flow_rule_match_vlan(rule, &match);
233135a605dbSEli Britstein 		}
23328f256622SPablo Neira Ayuso 		if (match.mask->vlan_id ||
23338f256622SPablo Neira Ayuso 		    match.mask->vlan_priority ||
23348f256622SPablo Neira Ayuso 		    match.mask->vlan_tpid) {
23358f256622SPablo Neira Ayuso 			if (match.key->vlan_tpid == htons(ETH_P_8021AD)) {
2336699e96ddSJianbo Liu 				MLX5_SET(fte_match_set_lyr_2_4, headers_c,
2337699e96ddSJianbo Liu 					 svlan_tag, 1);
2338699e96ddSJianbo Liu 				MLX5_SET(fte_match_set_lyr_2_4, headers_v,
2339699e96ddSJianbo Liu 					 svlan_tag, 1);
2340699e96ddSJianbo Liu 			} else {
2341699e96ddSJianbo Liu 				MLX5_SET(fte_match_set_lyr_2_4, headers_c,
2342699e96ddSJianbo Liu 					 cvlan_tag, 1);
2343699e96ddSJianbo Liu 				MLX5_SET(fte_match_set_lyr_2_4, headers_v,
2344699e96ddSJianbo Liu 					 cvlan_tag, 1);
2345699e96ddSJianbo Liu 			}
2346095b6cfdSOr Gerlitz 
23478f256622SPablo Neira Ayuso 			MLX5_SET(fte_match_set_lyr_2_4, headers_c, first_vid,
23488f256622SPablo Neira Ayuso 				 match.mask->vlan_id);
23498f256622SPablo Neira Ayuso 			MLX5_SET(fte_match_set_lyr_2_4, headers_v, first_vid,
23508f256622SPablo Neira Ayuso 				 match.key->vlan_id);
2351358d79a4SOr Gerlitz 
23528f256622SPablo Neira Ayuso 			MLX5_SET(fte_match_set_lyr_2_4, headers_c, first_prio,
23538f256622SPablo Neira Ayuso 				 match.mask->vlan_priority);
23548f256622SPablo Neira Ayuso 			MLX5_SET(fte_match_set_lyr_2_4, headers_v, first_prio,
23558f256622SPablo Neira Ayuso 				 match.key->vlan_priority);
235654782900SOr Gerlitz 
2357d708f902SOr Gerlitz 			*match_level = MLX5_MATCH_L2;
2358095b6cfdSOr Gerlitz 		}
2359d3a80bb5SOr Gerlitz 	} else if (*match_level != MLX5_MATCH_NONE) {
2360fc603294SMark Bloch 		/* cvlan_tag enabled in match criteria and
2361fc603294SMark Bloch 		 * disabled in match value means both S & C tags
2362fc603294SMark Bloch 		 * don't exist (untagged of both)
2363fc603294SMark Bloch 		 */
2364cee26487SJianbo Liu 		MLX5_SET(fte_match_set_lyr_2_4, headers_c, cvlan_tag, 1);
2365d3a80bb5SOr Gerlitz 		*match_level = MLX5_MATCH_L2;
2366095b6cfdSOr Gerlitz 	}
2367095b6cfdSOr Gerlitz 
23688f256622SPablo Neira Ayuso 	if (flow_rule_match_key(rule, FLOW_DISSECTOR_KEY_CVLAN)) {
23698f256622SPablo Neira Ayuso 		struct flow_match_vlan match;
23708f256622SPablo Neira Ayuso 
237112d5cbf8SJianbo Liu 		flow_rule_match_cvlan(rule, &match);
23728f256622SPablo Neira Ayuso 		if (match.mask->vlan_id ||
23738f256622SPablo Neira Ayuso 		    match.mask->vlan_priority ||
23748f256622SPablo Neira Ayuso 		    match.mask->vlan_tpid) {
2375afe93f71SRoi Dayan 			if (!MLX5_CAP_FLOWTABLE_TYPE(priv->mdev, ft_field_support.outer_second_vid,
2376afe93f71SRoi Dayan 						     fs_type)) {
2377afe93f71SRoi Dayan 				NL_SET_ERR_MSG_MOD(extack,
2378afe93f71SRoi Dayan 						   "Matching on CVLAN is not supported");
2379afe93f71SRoi Dayan 				return -EOPNOTSUPP;
2380afe93f71SRoi Dayan 			}
2381afe93f71SRoi Dayan 
23828f256622SPablo Neira Ayuso 			if (match.key->vlan_tpid == htons(ETH_P_8021AD)) {
2383699e96ddSJianbo Liu 				MLX5_SET(fte_match_set_misc, misc_c,
2384699e96ddSJianbo Liu 					 outer_second_svlan_tag, 1);
2385699e96ddSJianbo Liu 				MLX5_SET(fte_match_set_misc, misc_v,
2386699e96ddSJianbo Liu 					 outer_second_svlan_tag, 1);
2387699e96ddSJianbo Liu 			} else {
2388699e96ddSJianbo Liu 				MLX5_SET(fte_match_set_misc, misc_c,
2389699e96ddSJianbo Liu 					 outer_second_cvlan_tag, 1);
2390699e96ddSJianbo Liu 				MLX5_SET(fte_match_set_misc, misc_v,
2391699e96ddSJianbo Liu 					 outer_second_cvlan_tag, 1);
2392699e96ddSJianbo Liu 			}
2393699e96ddSJianbo Liu 
2394699e96ddSJianbo Liu 			MLX5_SET(fte_match_set_misc, misc_c, outer_second_vid,
23958f256622SPablo Neira Ayuso 				 match.mask->vlan_id);
2396699e96ddSJianbo Liu 			MLX5_SET(fte_match_set_misc, misc_v, outer_second_vid,
23978f256622SPablo Neira Ayuso 				 match.key->vlan_id);
2398699e96ddSJianbo Liu 			MLX5_SET(fte_match_set_misc, misc_c, outer_second_prio,
23998f256622SPablo Neira Ayuso 				 match.mask->vlan_priority);
2400699e96ddSJianbo Liu 			MLX5_SET(fte_match_set_misc, misc_v, outer_second_prio,
24018f256622SPablo Neira Ayuso 				 match.key->vlan_priority);
2402699e96ddSJianbo Liu 
2403699e96ddSJianbo Liu 			*match_level = MLX5_MATCH_L2;
24040faddfe6SJianbo Liu 			spec->match_criteria_enable |= MLX5_MATCH_MISC_PARAMETERS;
2405699e96ddSJianbo Liu 		}
2406699e96ddSJianbo Liu 	}
2407699e96ddSJianbo Liu 
24088f256622SPablo Neira Ayuso 	if (flow_rule_match_key(rule, FLOW_DISSECTOR_KEY_ETH_ADDRS)) {
24098f256622SPablo Neira Ayuso 		struct flow_match_eth_addrs match;
241054782900SOr Gerlitz 
24118f256622SPablo Neira Ayuso 		flow_rule_match_eth_addrs(rule, &match);
2412d3a80bb5SOr Gerlitz 		ether_addr_copy(MLX5_ADDR_OF(fte_match_set_lyr_2_4, headers_c,
2413d3a80bb5SOr Gerlitz 					     dmac_47_16),
24148f256622SPablo Neira Ayuso 				match.mask->dst);
2415d3a80bb5SOr Gerlitz 		ether_addr_copy(MLX5_ADDR_OF(fte_match_set_lyr_2_4, headers_v,
2416d3a80bb5SOr Gerlitz 					     dmac_47_16),
24178f256622SPablo Neira Ayuso 				match.key->dst);
2418d3a80bb5SOr Gerlitz 
2419d3a80bb5SOr Gerlitz 		ether_addr_copy(MLX5_ADDR_OF(fte_match_set_lyr_2_4, headers_c,
2420d3a80bb5SOr Gerlitz 					     smac_47_16),
24218f256622SPablo Neira Ayuso 				match.mask->src);
2422d3a80bb5SOr Gerlitz 		ether_addr_copy(MLX5_ADDR_OF(fte_match_set_lyr_2_4, headers_v,
2423d3a80bb5SOr Gerlitz 					     smac_47_16),
24248f256622SPablo Neira Ayuso 				match.key->src);
2425d3a80bb5SOr Gerlitz 
24268f256622SPablo Neira Ayuso 		if (!is_zero_ether_addr(match.mask->src) ||
24278f256622SPablo Neira Ayuso 		    !is_zero_ether_addr(match.mask->dst))
2428d708f902SOr Gerlitz 			*match_level = MLX5_MATCH_L2;
242954782900SOr Gerlitz 	}
243054782900SOr Gerlitz 
24318f256622SPablo Neira Ayuso 	if (flow_rule_match_key(rule, FLOW_DISSECTOR_KEY_CONTROL)) {
24328f256622SPablo Neira Ayuso 		struct flow_match_control match;
243354782900SOr Gerlitz 
24348f256622SPablo Neira Ayuso 		flow_rule_match_control(rule, &match);
24358f256622SPablo Neira Ayuso 		addr_type = match.key->addr_type;
243654782900SOr Gerlitz 
243754782900SOr Gerlitz 		/* the HW doesn't support frag first/later */
24380885ae1aSAbhiram R N 		if (match.mask->flags & FLOW_DIS_FIRST_FRAG) {
24390885ae1aSAbhiram R N 			NL_SET_ERR_MSG_MOD(extack, "Match on frag first/later is not supported");
244054782900SOr Gerlitz 			return -EOPNOTSUPP;
24410885ae1aSAbhiram R N 		}
244254782900SOr Gerlitz 
24438f256622SPablo Neira Ayuso 		if (match.mask->flags & FLOW_DIS_IS_FRAGMENT) {
244454782900SOr Gerlitz 			MLX5_SET(fte_match_set_lyr_2_4, headers_c, frag, 1);
244554782900SOr Gerlitz 			MLX5_SET(fte_match_set_lyr_2_4, headers_v, frag,
24468f256622SPablo Neira Ayuso 				 match.key->flags & FLOW_DIS_IS_FRAGMENT);
244754782900SOr Gerlitz 
244854782900SOr Gerlitz 			/* the HW doesn't need L3 inline to match on frag=no */
24498f256622SPablo Neira Ayuso 			if (!(match.key->flags & FLOW_DIS_IS_FRAGMENT))
245083621b7dSOr Gerlitz 				*match_level = MLX5_MATCH_L2;
245154782900SOr Gerlitz 	/* ***  L2 attributes parsing up to here *** */
245254782900SOr Gerlitz 			else
245383621b7dSOr Gerlitz 				*match_level = MLX5_MATCH_L3;
245454782900SOr Gerlitz 		}
245554782900SOr Gerlitz 	}
245654782900SOr Gerlitz 
24578f256622SPablo Neira Ayuso 	if (flow_rule_match_key(rule, FLOW_DISSECTOR_KEY_BASIC)) {
24588f256622SPablo Neira Ayuso 		struct flow_match_basic match;
24598f256622SPablo Neira Ayuso 
24608f256622SPablo Neira Ayuso 		flow_rule_match_basic(rule, &match);
24618f256622SPablo Neira Ayuso 		ip_proto = match.key->ip_proto;
246254782900SOr Gerlitz 
246354782900SOr Gerlitz 		MLX5_SET(fte_match_set_lyr_2_4, headers_c, ip_protocol,
24648f256622SPablo Neira Ayuso 			 match.mask->ip_proto);
246554782900SOr Gerlitz 		MLX5_SET(fte_match_set_lyr_2_4, headers_v, ip_protocol,
24668f256622SPablo Neira Ayuso 			 match.key->ip_proto);
246754782900SOr Gerlitz 
24688f256622SPablo Neira Ayuso 		if (match.mask->ip_proto)
2469d708f902SOr Gerlitz 			*match_level = MLX5_MATCH_L3;
247054782900SOr Gerlitz 	}
247154782900SOr Gerlitz 
2472e3a2b7edSAmir Vadai 	if (addr_type == FLOW_DISSECTOR_KEY_IPV4_ADDRS) {
24738f256622SPablo Neira Ayuso 		struct flow_match_ipv4_addrs match;
2474e3a2b7edSAmir Vadai 
24758f256622SPablo Neira Ayuso 		flow_rule_match_ipv4_addrs(rule, &match);
2476e3a2b7edSAmir Vadai 		memcpy(MLX5_ADDR_OF(fte_match_set_lyr_2_4, headers_c,
2477e3a2b7edSAmir Vadai 				    src_ipv4_src_ipv6.ipv4_layout.ipv4),
24788f256622SPablo Neira Ayuso 		       &match.mask->src, sizeof(match.mask->src));
2479e3a2b7edSAmir Vadai 		memcpy(MLX5_ADDR_OF(fte_match_set_lyr_2_4, headers_v,
2480e3a2b7edSAmir Vadai 				    src_ipv4_src_ipv6.ipv4_layout.ipv4),
24818f256622SPablo Neira Ayuso 		       &match.key->src, sizeof(match.key->src));
2482e3a2b7edSAmir Vadai 		memcpy(MLX5_ADDR_OF(fte_match_set_lyr_2_4, headers_c,
2483e3a2b7edSAmir Vadai 				    dst_ipv4_dst_ipv6.ipv4_layout.ipv4),
24848f256622SPablo Neira Ayuso 		       &match.mask->dst, sizeof(match.mask->dst));
2485e3a2b7edSAmir Vadai 		memcpy(MLX5_ADDR_OF(fte_match_set_lyr_2_4, headers_v,
2486e3a2b7edSAmir Vadai 				    dst_ipv4_dst_ipv6.ipv4_layout.ipv4),
24878f256622SPablo Neira Ayuso 		       &match.key->dst, sizeof(match.key->dst));
2488de0af0bfSRoi Dayan 
24898f256622SPablo Neira Ayuso 		if (match.mask->src || match.mask->dst)
2490d708f902SOr Gerlitz 			*match_level = MLX5_MATCH_L3;
2491e3a2b7edSAmir Vadai 	}
2492e3a2b7edSAmir Vadai 
2493e3a2b7edSAmir Vadai 	if (addr_type == FLOW_DISSECTOR_KEY_IPV6_ADDRS) {
24948f256622SPablo Neira Ayuso 		struct flow_match_ipv6_addrs match;
2495e3a2b7edSAmir Vadai 
24968f256622SPablo Neira Ayuso 		flow_rule_match_ipv6_addrs(rule, &match);
2497e3a2b7edSAmir Vadai 		memcpy(MLX5_ADDR_OF(fte_match_set_lyr_2_4, headers_c,
2498e3a2b7edSAmir Vadai 				    src_ipv4_src_ipv6.ipv6_layout.ipv6),
24998f256622SPablo Neira Ayuso 		       &match.mask->src, sizeof(match.mask->src));
2500e3a2b7edSAmir Vadai 		memcpy(MLX5_ADDR_OF(fte_match_set_lyr_2_4, headers_v,
2501e3a2b7edSAmir Vadai 				    src_ipv4_src_ipv6.ipv6_layout.ipv6),
25028f256622SPablo Neira Ayuso 		       &match.key->src, sizeof(match.key->src));
2503e3a2b7edSAmir Vadai 
2504e3a2b7edSAmir Vadai 		memcpy(MLX5_ADDR_OF(fte_match_set_lyr_2_4, headers_c,
2505e3a2b7edSAmir Vadai 				    dst_ipv4_dst_ipv6.ipv6_layout.ipv6),
25068f256622SPablo Neira Ayuso 		       &match.mask->dst, sizeof(match.mask->dst));
2507e3a2b7edSAmir Vadai 		memcpy(MLX5_ADDR_OF(fte_match_set_lyr_2_4, headers_v,
2508e3a2b7edSAmir Vadai 				    dst_ipv4_dst_ipv6.ipv6_layout.ipv6),
25098f256622SPablo Neira Ayuso 		       &match.key->dst, sizeof(match.key->dst));
2510de0af0bfSRoi Dayan 
25118f256622SPablo Neira Ayuso 		if (ipv6_addr_type(&match.mask->src) != IPV6_ADDR_ANY ||
25128f256622SPablo Neira Ayuso 		    ipv6_addr_type(&match.mask->dst) != IPV6_ADDR_ANY)
2513d708f902SOr Gerlitz 			*match_level = MLX5_MATCH_L3;
2514e3a2b7edSAmir Vadai 	}
2515e3a2b7edSAmir Vadai 
25168f256622SPablo Neira Ayuso 	if (flow_rule_match_key(rule, FLOW_DISSECTOR_KEY_IP)) {
25178f256622SPablo Neira Ayuso 		struct flow_match_ip match;
25181f97a526SOr Gerlitz 
25198f256622SPablo Neira Ayuso 		flow_rule_match_ip(rule, &match);
2520b6dfff21SPaul Blakey 		if (match_inner_ecn) {
25218f256622SPablo Neira Ayuso 			MLX5_SET(fte_match_set_lyr_2_4, headers_c, ip_ecn,
25228f256622SPablo Neira Ayuso 				 match.mask->tos & 0x3);
25238f256622SPablo Neira Ayuso 			MLX5_SET(fte_match_set_lyr_2_4, headers_v, ip_ecn,
25248f256622SPablo Neira Ayuso 				 match.key->tos & 0x3);
2525b6dfff21SPaul Blakey 		}
25261f97a526SOr Gerlitz 
25278f256622SPablo Neira Ayuso 		MLX5_SET(fte_match_set_lyr_2_4, headers_c, ip_dscp,
25288f256622SPablo Neira Ayuso 			 match.mask->tos >> 2);
25298f256622SPablo Neira Ayuso 		MLX5_SET(fte_match_set_lyr_2_4, headers_v, ip_dscp,
25308f256622SPablo Neira Ayuso 			 match.key->tos  >> 2);
25311f97a526SOr Gerlitz 
25328f256622SPablo Neira Ayuso 		MLX5_SET(fte_match_set_lyr_2_4, headers_c, ttl_hoplimit,
25338f256622SPablo Neira Ayuso 			 match.mask->ttl);
25348f256622SPablo Neira Ayuso 		MLX5_SET(fte_match_set_lyr_2_4, headers_v, ttl_hoplimit,
25358f256622SPablo Neira Ayuso 			 match.key->ttl);
25361f97a526SOr Gerlitz 
25378f256622SPablo Neira Ayuso 		if (match.mask->ttl &&
2538a8ade55fSOr Gerlitz 		    !MLX5_CAP_ESW_FLOWTABLE_FDB(priv->mdev,
2539e98bedf5SEli Britstein 						ft_field_support.outer_ipv4_ttl)) {
2540e98bedf5SEli Britstein 			NL_SET_ERR_MSG_MOD(extack,
2541e98bedf5SEli Britstein 					   "Matching on TTL is not supported");
25421f97a526SOr Gerlitz 			return -EOPNOTSUPP;
2543e98bedf5SEli Britstein 		}
2544a8ade55fSOr Gerlitz 
25458f256622SPablo Neira Ayuso 		if (match.mask->tos || match.mask->ttl)
2546d708f902SOr Gerlitz 			*match_level = MLX5_MATCH_L3;
25471f97a526SOr Gerlitz 	}
25481f97a526SOr Gerlitz 
254954782900SOr Gerlitz 	/* ***  L3 attributes parsing up to here *** */
255054782900SOr Gerlitz 
25518f256622SPablo Neira Ayuso 	if (flow_rule_match_key(rule, FLOW_DISSECTOR_KEY_PORTS)) {
25528f256622SPablo Neira Ayuso 		struct flow_match_ports match;
25538f256622SPablo Neira Ayuso 
25548f256622SPablo Neira Ayuso 		flow_rule_match_ports(rule, &match);
2555e3a2b7edSAmir Vadai 		switch (ip_proto) {
2556e3a2b7edSAmir Vadai 		case IPPROTO_TCP:
2557e3a2b7edSAmir Vadai 			MLX5_SET(fte_match_set_lyr_2_4, headers_c,
25588f256622SPablo Neira Ayuso 				 tcp_sport, ntohs(match.mask->src));
2559e3a2b7edSAmir Vadai 			MLX5_SET(fte_match_set_lyr_2_4, headers_v,
25608f256622SPablo Neira Ayuso 				 tcp_sport, ntohs(match.key->src));
2561e3a2b7edSAmir Vadai 
2562e3a2b7edSAmir Vadai 			MLX5_SET(fte_match_set_lyr_2_4, headers_c,
25638f256622SPablo Neira Ayuso 				 tcp_dport, ntohs(match.mask->dst));
2564e3a2b7edSAmir Vadai 			MLX5_SET(fte_match_set_lyr_2_4, headers_v,
25658f256622SPablo Neira Ayuso 				 tcp_dport, ntohs(match.key->dst));
2566e3a2b7edSAmir Vadai 			break;
2567e3a2b7edSAmir Vadai 
2568e3a2b7edSAmir Vadai 		case IPPROTO_UDP:
2569e3a2b7edSAmir Vadai 			MLX5_SET(fte_match_set_lyr_2_4, headers_c,
25708f256622SPablo Neira Ayuso 				 udp_sport, ntohs(match.mask->src));
2571e3a2b7edSAmir Vadai 			MLX5_SET(fte_match_set_lyr_2_4, headers_v,
25728f256622SPablo Neira Ayuso 				 udp_sport, ntohs(match.key->src));
2573e3a2b7edSAmir Vadai 
2574e3a2b7edSAmir Vadai 			MLX5_SET(fte_match_set_lyr_2_4, headers_c,
25758f256622SPablo Neira Ayuso 				 udp_dport, ntohs(match.mask->dst));
2576e3a2b7edSAmir Vadai 			MLX5_SET(fte_match_set_lyr_2_4, headers_v,
25778f256622SPablo Neira Ayuso 				 udp_dport, ntohs(match.key->dst));
2578e3a2b7edSAmir Vadai 			break;
2579e3a2b7edSAmir Vadai 		default:
2580e98bedf5SEli Britstein 			NL_SET_ERR_MSG_MOD(extack,
2581e98bedf5SEli Britstein 					   "Only UDP and TCP transports are supported for L4 matching");
2582e3a2b7edSAmir Vadai 			netdev_err(priv->netdev,
2583e3a2b7edSAmir Vadai 				   "Only UDP and TCP transport are supported\n");
2584e3a2b7edSAmir Vadai 			return -EINVAL;
2585e3a2b7edSAmir Vadai 		}
2586de0af0bfSRoi Dayan 
25878f256622SPablo Neira Ayuso 		if (match.mask->src || match.mask->dst)
2588d708f902SOr Gerlitz 			*match_level = MLX5_MATCH_L4;
2589e3a2b7edSAmir Vadai 	}
2590e3a2b7edSAmir Vadai 
25918f256622SPablo Neira Ayuso 	if (flow_rule_match_key(rule, FLOW_DISSECTOR_KEY_TCP)) {
25928f256622SPablo Neira Ayuso 		struct flow_match_tcp match;
2593e77834ecSOr Gerlitz 
25948f256622SPablo Neira Ayuso 		flow_rule_match_tcp(rule, &match);
2595e77834ecSOr Gerlitz 		MLX5_SET(fte_match_set_lyr_2_4, headers_c, tcp_flags,
25968f256622SPablo Neira Ayuso 			 ntohs(match.mask->flags));
2597e77834ecSOr Gerlitz 		MLX5_SET(fte_match_set_lyr_2_4, headers_v, tcp_flags,
25988f256622SPablo Neira Ayuso 			 ntohs(match.key->flags));
2599e77834ecSOr Gerlitz 
26008f256622SPablo Neira Ayuso 		if (match.mask->flags)
2601d708f902SOr Gerlitz 			*match_level = MLX5_MATCH_L4;
2602e77834ecSOr Gerlitz 	}
2603a3222a2dSMaor Dickman 	if (flow_rule_match_key(rule, FLOW_DISSECTOR_KEY_ICMP)) {
2604a3222a2dSMaor Dickman 		struct flow_match_icmp match;
2605e77834ecSOr Gerlitz 
2606a3222a2dSMaor Dickman 		flow_rule_match_icmp(rule, &match);
2607a3222a2dSMaor Dickman 		switch (ip_proto) {
2608a3222a2dSMaor Dickman 		case IPPROTO_ICMP:
2609a3222a2dSMaor Dickman 			if (!(MLX5_CAP_GEN(priv->mdev, flex_parser_protocols) &
26100885ae1aSAbhiram R N 			      MLX5_FLEX_PROTO_ICMP)) {
26110885ae1aSAbhiram R N 				NL_SET_ERR_MSG_MOD(extack,
26120885ae1aSAbhiram R N 						   "Match on Flex protocols for ICMP is not supported");
2613a3222a2dSMaor Dickman 				return -EOPNOTSUPP;
26140885ae1aSAbhiram R N 			}
2615a3222a2dSMaor Dickman 			MLX5_SET(fte_match_set_misc3, misc_c_3, icmp_type,
2616a3222a2dSMaor Dickman 				 match.mask->type);
2617a3222a2dSMaor Dickman 			MLX5_SET(fte_match_set_misc3, misc_v_3, icmp_type,
2618a3222a2dSMaor Dickman 				 match.key->type);
2619a3222a2dSMaor Dickman 			MLX5_SET(fte_match_set_misc3, misc_c_3, icmp_code,
2620a3222a2dSMaor Dickman 				 match.mask->code);
2621a3222a2dSMaor Dickman 			MLX5_SET(fte_match_set_misc3, misc_v_3, icmp_code,
2622a3222a2dSMaor Dickman 				 match.key->code);
2623a3222a2dSMaor Dickman 			break;
2624a3222a2dSMaor Dickman 		case IPPROTO_ICMPV6:
2625a3222a2dSMaor Dickman 			if (!(MLX5_CAP_GEN(priv->mdev, flex_parser_protocols) &
26260885ae1aSAbhiram R N 			      MLX5_FLEX_PROTO_ICMPV6)) {
26270885ae1aSAbhiram R N 				NL_SET_ERR_MSG_MOD(extack,
26280885ae1aSAbhiram R N 						   "Match on Flex protocols for ICMPV6 is not supported");
2629a3222a2dSMaor Dickman 				return -EOPNOTSUPP;
26300885ae1aSAbhiram R N 			}
2631a3222a2dSMaor Dickman 			MLX5_SET(fte_match_set_misc3, misc_c_3, icmpv6_type,
2632a3222a2dSMaor Dickman 				 match.mask->type);
2633a3222a2dSMaor Dickman 			MLX5_SET(fte_match_set_misc3, misc_v_3, icmpv6_type,
2634a3222a2dSMaor Dickman 				 match.key->type);
2635a3222a2dSMaor Dickman 			MLX5_SET(fte_match_set_misc3, misc_c_3, icmpv6_code,
2636a3222a2dSMaor Dickman 				 match.mask->code);
2637a3222a2dSMaor Dickman 			MLX5_SET(fte_match_set_misc3, misc_v_3, icmpv6_code,
2638a3222a2dSMaor Dickman 				 match.key->code);
2639a3222a2dSMaor Dickman 			break;
2640a3222a2dSMaor Dickman 		default:
2641a3222a2dSMaor Dickman 			NL_SET_ERR_MSG_MOD(extack,
2642a3222a2dSMaor Dickman 					   "Code and type matching only with ICMP and ICMPv6");
2643a3222a2dSMaor Dickman 			netdev_err(priv->netdev,
2644a3222a2dSMaor Dickman 				   "Code and type matching only with ICMP and ICMPv6\n");
2645a3222a2dSMaor Dickman 			return -EINVAL;
2646a3222a2dSMaor Dickman 		}
2647a3222a2dSMaor Dickman 		if (match.mask->code || match.mask->type) {
2648a3222a2dSMaor Dickman 			*match_level = MLX5_MATCH_L4;
2649a3222a2dSMaor Dickman 			spec->match_criteria_enable |= MLX5_MATCH_MISC_PARAMETERS_3;
2650a3222a2dSMaor Dickman 		}
2651a3222a2dSMaor Dickman 	}
265239c538d6SCai Huoqing 	/* Currently supported only for MPLS over UDP */
26537d6c86e3SAlaa Hleihel 	if (flow_rule_match_key(rule, FLOW_DISSECTOR_KEY_MPLS) &&
26547d6c86e3SAlaa Hleihel 	    !netif_is_bareudp(filter_dev)) {
26557d6c86e3SAlaa Hleihel 		NL_SET_ERR_MSG_MOD(extack,
26567d6c86e3SAlaa Hleihel 				   "Matching on MPLS is supported only for MPLS over UDP");
26577d6c86e3SAlaa Hleihel 		netdev_err(priv->netdev,
26587d6c86e3SAlaa Hleihel 			   "Matching on MPLS is supported only for MPLS over UDP\n");
26597d6c86e3SAlaa Hleihel 		return -EOPNOTSUPP;
26607d6c86e3SAlaa Hleihel 	}
26617d6c86e3SAlaa Hleihel 
2662e3a2b7edSAmir Vadai 	return 0;
2663e3a2b7edSAmir Vadai }
2664e3a2b7edSAmir Vadai 
2665de0af0bfSRoi Dayan static int parse_cls_flower(struct mlx5e_priv *priv,
266665ba8fb7SOr Gerlitz 			    struct mlx5e_tc_flow *flow,
2667de0af0bfSRoi Dayan 			    struct mlx5_flow_spec *spec,
2668f9e30088SPablo Neira Ayuso 			    struct flow_cls_offload *f,
266954c177caSOz Shlomo 			    struct net_device *filter_dev)
2670de0af0bfSRoi Dayan {
267193b3586eSHuy Nguyen 	u8 inner_match_level, outer_match_level, non_tunnel_match_level;
2672e98bedf5SEli Britstein 	struct netlink_ext_ack *extack = f->common.extack;
2673de0af0bfSRoi Dayan 	struct mlx5_core_dev *dev = priv->mdev;
2674de0af0bfSRoi Dayan 	struct mlx5_eswitch *esw = dev->priv.eswitch;
26751d447a39SSaeed Mahameed 	struct mlx5e_rep_priv *rpriv = priv->ppriv;
26761d447a39SSaeed Mahameed 	struct mlx5_eswitch_rep *rep;
2677226f2ca3SVlad Buslov 	bool is_eswitch_flow;
2678de0af0bfSRoi Dayan 	int err;
2679de0af0bfSRoi Dayan 
268093b3586eSHuy Nguyen 	inner_match_level = MLX5_MATCH_NONE;
268193b3586eSHuy Nguyen 	outer_match_level = MLX5_MATCH_NONE;
268293b3586eSHuy Nguyen 
26830a7fcb78SPaul Blakey 	err = __parse_cls_flower(priv, flow, spec, f, filter_dev,
26840a7fcb78SPaul Blakey 				 &inner_match_level, &outer_match_level);
268593b3586eSHuy Nguyen 	non_tunnel_match_level = (inner_match_level == MLX5_MATCH_NONE) ?
268693b3586eSHuy Nguyen 				 outer_match_level : inner_match_level;
2687de0af0bfSRoi Dayan 
2688226f2ca3SVlad Buslov 	is_eswitch_flow = mlx5e_is_eswitch_flow(flow);
2689226f2ca3SVlad Buslov 	if (!err && is_eswitch_flow) {
26901d447a39SSaeed Mahameed 		rep = rpriv->rep;
2691b05af6aaSBodong Wang 		if (rep->vport != MLX5_VPORT_UPLINK &&
26921d447a39SSaeed Mahameed 		    (esw->offloads.inline_mode != MLX5_INLINE_MODE_NONE &&
269393b3586eSHuy Nguyen 		    esw->offloads.inline_mode < non_tunnel_match_level)) {
2694e98bedf5SEli Britstein 			NL_SET_ERR_MSG_MOD(extack,
2695e98bedf5SEli Britstein 					   "Flow is not offloaded due to min inline setting");
2696de0af0bfSRoi Dayan 			netdev_warn(priv->netdev,
2697de0af0bfSRoi Dayan 				    "Flow is not offloaded due to min inline setting, required %d actual %d\n",
269893b3586eSHuy Nguyen 				    non_tunnel_match_level, esw->offloads.inline_mode);
2699de0af0bfSRoi Dayan 			return -EOPNOTSUPP;
2700de0af0bfSRoi Dayan 		}
2701de0af0bfSRoi Dayan 	}
2702de0af0bfSRoi Dayan 
2703c620b772SAriel Levkovich 	flow->attr->inner_match_level = inner_match_level;
2704c620b772SAriel Levkovich 	flow->attr->outer_match_level = outer_match_level;
2705c620b772SAriel Levkovich 
270638aa51c1SOr Gerlitz 
2707de0af0bfSRoi Dayan 	return err;
2708de0af0bfSRoi Dayan }
2709de0af0bfSRoi Dayan 
2710d79b6df6SOr Gerlitz struct mlx5_fields {
2711d79b6df6SOr Gerlitz 	u8  field;
271288f30bbcSDmytro Linkin 	u8  field_bsize;
271388f30bbcSDmytro Linkin 	u32 field_mask;
2714d79b6df6SOr Gerlitz 	u32 offset;
271527c11b6bSEli Britstein 	u32 match_offset;
2716d79b6df6SOr Gerlitz };
2717d79b6df6SOr Gerlitz 
271888f30bbcSDmytro Linkin #define OFFLOAD(fw_field, field_bsize, field_mask, field, off, match_field) \
271988f30bbcSDmytro Linkin 		{MLX5_ACTION_IN_FIELD_OUT_ ## fw_field, field_bsize, field_mask, \
272027c11b6bSEli Britstein 		 offsetof(struct pedit_headers, field) + (off), \
272127c11b6bSEli Britstein 		 MLX5_BYTE_OFF(fte_match_set_lyr_2_4, match_field)}
272227c11b6bSEli Britstein 
27232ef86872SEli Britstein /* masked values are the same and there are no rewrites that do not have a
27242ef86872SEli Britstein  * match.
27252ef86872SEli Britstein  */
27262ef86872SEli Britstein #define SAME_VAL_MASK(type, valp, maskp, matchvalp, matchmaskp) ({ \
27272ef86872SEli Britstein 	type matchmaskx = *(type *)(matchmaskp); \
27282ef86872SEli Britstein 	type matchvalx = *(type *)(matchvalp); \
27292ef86872SEli Britstein 	type maskx = *(type *)(maskp); \
27302ef86872SEli Britstein 	type valx = *(type *)(valp); \
27312ef86872SEli Britstein 	\
27322ef86872SEli Britstein 	(valx & maskx) == (matchvalx & matchmaskx) && !(maskx & (maskx ^ \
27332ef86872SEli Britstein 								 matchmaskx)); \
27342ef86872SEli Britstein })
27352ef86872SEli Britstein 
273627c11b6bSEli Britstein static bool cmp_val_mask(void *valp, void *maskp, void *matchvalp,
273788f30bbcSDmytro Linkin 			 void *matchmaskp, u8 bsize)
273827c11b6bSEli Britstein {
273927c11b6bSEli Britstein 	bool same = false;
274027c11b6bSEli Britstein 
274188f30bbcSDmytro Linkin 	switch (bsize) {
274288f30bbcSDmytro Linkin 	case 8:
27432ef86872SEli Britstein 		same = SAME_VAL_MASK(u8, valp, maskp, matchvalp, matchmaskp);
274427c11b6bSEli Britstein 		break;
274588f30bbcSDmytro Linkin 	case 16:
27462ef86872SEli Britstein 		same = SAME_VAL_MASK(u16, valp, maskp, matchvalp, matchmaskp);
274727c11b6bSEli Britstein 		break;
274888f30bbcSDmytro Linkin 	case 32:
27492ef86872SEli Britstein 		same = SAME_VAL_MASK(u32, valp, maskp, matchvalp, matchmaskp);
275027c11b6bSEli Britstein 		break;
275127c11b6bSEli Britstein 	}
275227c11b6bSEli Britstein 
275327c11b6bSEli Britstein 	return same;
275427c11b6bSEli Britstein }
2755a8e4f0c4SOr Gerlitz 
2756d79b6df6SOr Gerlitz static struct mlx5_fields fields[] = {
275788f30bbcSDmytro Linkin 	OFFLOAD(DMAC_47_16, 32, U32_MAX, eth.h_dest[0], 0, dmac_47_16),
275888f30bbcSDmytro Linkin 	OFFLOAD(DMAC_15_0,  16, U16_MAX, eth.h_dest[4], 0, dmac_15_0),
275988f30bbcSDmytro Linkin 	OFFLOAD(SMAC_47_16, 32, U32_MAX, eth.h_source[0], 0, smac_47_16),
276088f30bbcSDmytro Linkin 	OFFLOAD(SMAC_15_0,  16, U16_MAX, eth.h_source[4], 0, smac_15_0),
276188f30bbcSDmytro Linkin 	OFFLOAD(ETHERTYPE,  16, U16_MAX, eth.h_proto, 0, ethertype),
276288f30bbcSDmytro Linkin 	OFFLOAD(FIRST_VID,  16, U16_MAX, vlan.h_vlan_TCI, 0, first_vid),
2763d79b6df6SOr Gerlitz 
2764ab9341b5SDmytro Linkin 	OFFLOAD(IP_DSCP, 8,    0xfc, ip4.tos,   0, ip_dscp),
276588f30bbcSDmytro Linkin 	OFFLOAD(IP_TTL,  8,  U8_MAX, ip4.ttl,   0, ttl_hoplimit),
276688f30bbcSDmytro Linkin 	OFFLOAD(SIPV4,  32, U32_MAX, ip4.saddr, 0, src_ipv4_src_ipv6.ipv4_layout.ipv4),
276788f30bbcSDmytro Linkin 	OFFLOAD(DIPV4,  32, U32_MAX, ip4.daddr, 0, dst_ipv4_dst_ipv6.ipv4_layout.ipv4),
2768d79b6df6SOr Gerlitz 
276988f30bbcSDmytro Linkin 	OFFLOAD(SIPV6_127_96, 32, U32_MAX, ip6.saddr.s6_addr32[0], 0,
277027c11b6bSEli Britstein 		src_ipv4_src_ipv6.ipv6_layout.ipv6[0]),
277188f30bbcSDmytro Linkin 	OFFLOAD(SIPV6_95_64,  32, U32_MAX, ip6.saddr.s6_addr32[1], 0,
277227c11b6bSEli Britstein 		src_ipv4_src_ipv6.ipv6_layout.ipv6[4]),
277388f30bbcSDmytro Linkin 	OFFLOAD(SIPV6_63_32,  32, U32_MAX, ip6.saddr.s6_addr32[2], 0,
277427c11b6bSEli Britstein 		src_ipv4_src_ipv6.ipv6_layout.ipv6[8]),
277588f30bbcSDmytro Linkin 	OFFLOAD(SIPV6_31_0,   32, U32_MAX, ip6.saddr.s6_addr32[3], 0,
277627c11b6bSEli Britstein 		src_ipv4_src_ipv6.ipv6_layout.ipv6[12]),
277788f30bbcSDmytro Linkin 	OFFLOAD(DIPV6_127_96, 32, U32_MAX, ip6.daddr.s6_addr32[0], 0,
277827c11b6bSEli Britstein 		dst_ipv4_dst_ipv6.ipv6_layout.ipv6[0]),
277988f30bbcSDmytro Linkin 	OFFLOAD(DIPV6_95_64,  32, U32_MAX, ip6.daddr.s6_addr32[1], 0,
278027c11b6bSEli Britstein 		dst_ipv4_dst_ipv6.ipv6_layout.ipv6[4]),
278188f30bbcSDmytro Linkin 	OFFLOAD(DIPV6_63_32,  32, U32_MAX, ip6.daddr.s6_addr32[2], 0,
278227c11b6bSEli Britstein 		dst_ipv4_dst_ipv6.ipv6_layout.ipv6[8]),
278388f30bbcSDmytro Linkin 	OFFLOAD(DIPV6_31_0,   32, U32_MAX, ip6.daddr.s6_addr32[3], 0,
278427c11b6bSEli Britstein 		dst_ipv4_dst_ipv6.ipv6_layout.ipv6[12]),
278588f30bbcSDmytro Linkin 	OFFLOAD(IPV6_HOPLIMIT, 8,  U8_MAX, ip6.hop_limit, 0, ttl_hoplimit),
2786748cde9aSMaor Dickman 	OFFLOAD(IP_DSCP, 16,  0xc00f, ip6, 0, ip_dscp),
2787d79b6df6SOr Gerlitz 
278888f30bbcSDmytro Linkin 	OFFLOAD(TCP_SPORT, 16, U16_MAX, tcp.source,  0, tcp_sport),
278988f30bbcSDmytro Linkin 	OFFLOAD(TCP_DPORT, 16, U16_MAX, tcp.dest,    0, tcp_dport),
279088f30bbcSDmytro Linkin 	/* in linux iphdr tcp_flags is 8 bits long */
279188f30bbcSDmytro Linkin 	OFFLOAD(TCP_FLAGS,  8,  U8_MAX, tcp.ack_seq, 5, tcp_flags),
2792d79b6df6SOr Gerlitz 
279388f30bbcSDmytro Linkin 	OFFLOAD(UDP_SPORT, 16, U16_MAX, udp.source, 0, udp_sport),
279488f30bbcSDmytro Linkin 	OFFLOAD(UDP_DPORT, 16, U16_MAX, udp.dest,   0, udp_dport),
2795d79b6df6SOr Gerlitz };
2796d79b6df6SOr Gerlitz 
279782198d8bSMaor Dickman static unsigned long mask_to_le(unsigned long mask, int size)
279882198d8bSMaor Dickman {
279982198d8bSMaor Dickman 	__be32 mask_be32;
280082198d8bSMaor Dickman 	__be16 mask_be16;
280182198d8bSMaor Dickman 
280282198d8bSMaor Dickman 	if (size == 32) {
280382198d8bSMaor Dickman 		mask_be32 = (__force __be32)(mask);
280482198d8bSMaor Dickman 		mask = (__force unsigned long)cpu_to_le32(be32_to_cpu(mask_be32));
280582198d8bSMaor Dickman 	} else if (size == 16) {
280682198d8bSMaor Dickman 		mask_be32 = (__force __be32)(mask);
280782198d8bSMaor Dickman 		mask_be16 = *(__be16 *)&mask_be32;
280882198d8bSMaor Dickman 		mask = (__force unsigned long)cpu_to_le16(be16_to_cpu(mask_be16));
280982198d8bSMaor Dickman 	}
281082198d8bSMaor Dickman 
281182198d8bSMaor Dickman 	return mask;
281282198d8bSMaor Dickman }
28136ae4a6a5SPaul Blakey static int offload_pedit_fields(struct mlx5e_priv *priv,
28146ae4a6a5SPaul Blakey 				int namespace,
28156ae4a6a5SPaul Blakey 				struct pedit_headers_action *hdrs,
2816e98bedf5SEli Britstein 				struct mlx5e_tc_flow_parse_attr *parse_attr,
281727c11b6bSEli Britstein 				u32 *action_flags,
2818e98bedf5SEli Britstein 				struct netlink_ext_ack *extack)
2819d79b6df6SOr Gerlitz {
2820d79b6df6SOr Gerlitz 	struct pedit_headers *set_masks, *add_masks, *set_vals, *add_vals;
282188f30bbcSDmytro Linkin 	void *headers_c, *headers_v, *action, *vals_p;
282288f30bbcSDmytro Linkin 	u32 *s_masks_p, *a_masks_p, s_mask, a_mask;
28236ae4a6a5SPaul Blakey 	struct mlx5e_tc_mod_hdr_acts *mod_acts;
282482198d8bSMaor Dickman 	unsigned long mask, field_mask;
28252c0e5cf5SPaul Blakey 	int i, first, last, next_z;
28262c0e5cf5SPaul Blakey 	struct mlx5_fields *f;
282788f30bbcSDmytro Linkin 	u8 cmd;
282888f30bbcSDmytro Linkin 
28296ae4a6a5SPaul Blakey 	mod_acts = &parse_attr->mod_hdr_acts;
28308ee72638SRoi Dayan 	headers_c = mlx5e_get_match_headers_criteria(*action_flags, &parse_attr->spec);
28318ee72638SRoi Dayan 	headers_v = mlx5e_get_match_headers_value(*action_flags, &parse_attr->spec);
2832d79b6df6SOr Gerlitz 
283373867881SPablo Neira Ayuso 	set_masks = &hdrs[0].masks;
283473867881SPablo Neira Ayuso 	add_masks = &hdrs[1].masks;
283573867881SPablo Neira Ayuso 	set_vals = &hdrs[0].vals;
283673867881SPablo Neira Ayuso 	add_vals = &hdrs[1].vals;
2837d79b6df6SOr Gerlitz 
2838d79b6df6SOr Gerlitz 	for (i = 0; i < ARRAY_SIZE(fields); i++) {
283927c11b6bSEli Britstein 		bool skip;
284027c11b6bSEli Britstein 
2841d79b6df6SOr Gerlitz 		f = &fields[i];
2842d79b6df6SOr Gerlitz 		/* avoid seeing bits set from previous iterations */
2843e3ca4e05SOr Gerlitz 		s_mask = 0;
2844e3ca4e05SOr Gerlitz 		a_mask = 0;
2845d79b6df6SOr Gerlitz 
2846d79b6df6SOr Gerlitz 		s_masks_p = (void *)set_masks + f->offset;
2847d79b6df6SOr Gerlitz 		a_masks_p = (void *)add_masks + f->offset;
2848d79b6df6SOr Gerlitz 
284988f30bbcSDmytro Linkin 		s_mask = *s_masks_p & f->field_mask;
285088f30bbcSDmytro Linkin 		a_mask = *a_masks_p & f->field_mask;
2851d79b6df6SOr Gerlitz 
2852d79b6df6SOr Gerlitz 		if (!s_mask && !a_mask) /* nothing to offload here */
2853d79b6df6SOr Gerlitz 			continue;
2854d79b6df6SOr Gerlitz 
2855d79b6df6SOr Gerlitz 		if (s_mask && a_mask) {
2856e98bedf5SEli Britstein 			NL_SET_ERR_MSG_MOD(extack,
2857e98bedf5SEli Britstein 					   "can't set and add to the same HW field");
285861b6a6c3SCai Huoqing 			netdev_warn(priv->netdev,
285961b6a6c3SCai Huoqing 				    "mlx5: can't set and add to the same HW field (%x)\n",
286061b6a6c3SCai Huoqing 				    f->field);
2861d79b6df6SOr Gerlitz 			return -EOPNOTSUPP;
2862d79b6df6SOr Gerlitz 		}
2863d79b6df6SOr Gerlitz 
286427c11b6bSEli Britstein 		skip = false;
2865d79b6df6SOr Gerlitz 		if (s_mask) {
286627c11b6bSEli Britstein 			void *match_mask = headers_c + f->match_offset;
286727c11b6bSEli Britstein 			void *match_val = headers_v + f->match_offset;
286827c11b6bSEli Britstein 
2869d79b6df6SOr Gerlitz 			cmd  = MLX5_ACTION_TYPE_SET;
2870d79b6df6SOr Gerlitz 			mask = s_mask;
2871d79b6df6SOr Gerlitz 			vals_p = (void *)set_vals + f->offset;
287227c11b6bSEli Britstein 			/* don't rewrite if we have a match on the same value */
287327c11b6bSEli Britstein 			if (cmp_val_mask(vals_p, s_masks_p, match_val,
287488f30bbcSDmytro Linkin 					 match_mask, f->field_bsize))
287527c11b6bSEli Britstein 				skip = true;
2876d79b6df6SOr Gerlitz 			/* clear to denote we consumed this field */
287788f30bbcSDmytro Linkin 			*s_masks_p &= ~f->field_mask;
2878d79b6df6SOr Gerlitz 		} else {
2879d79b6df6SOr Gerlitz 			cmd  = MLX5_ACTION_TYPE_ADD;
2880d79b6df6SOr Gerlitz 			mask = a_mask;
2881d79b6df6SOr Gerlitz 			vals_p = (void *)add_vals + f->offset;
288227c11b6bSEli Britstein 			/* add 0 is no change */
288388f30bbcSDmytro Linkin 			if ((*(u32 *)vals_p & f->field_mask) == 0)
288427c11b6bSEli Britstein 				skip = true;
2885d79b6df6SOr Gerlitz 			/* clear to denote we consumed this field */
288688f30bbcSDmytro Linkin 			*a_masks_p &= ~f->field_mask;
2887d79b6df6SOr Gerlitz 		}
288827c11b6bSEli Britstein 		if (skip)
288927c11b6bSEli Britstein 			continue;
2890d79b6df6SOr Gerlitz 
289182198d8bSMaor Dickman 		mask = mask_to_le(mask, f->field_bsize);
28922b64bebaSOr Gerlitz 
289388f30bbcSDmytro Linkin 		first = find_first_bit(&mask, f->field_bsize);
289488f30bbcSDmytro Linkin 		next_z = find_next_zero_bit(&mask, f->field_bsize, first);
289588f30bbcSDmytro Linkin 		last  = find_last_bit(&mask, f->field_bsize);
28962b64bebaSOr Gerlitz 		if (first < next_z && next_z < last) {
2897e98bedf5SEli Britstein 			NL_SET_ERR_MSG_MOD(extack,
2898e98bedf5SEli Britstein 					   "rewrite of few sub-fields isn't supported");
289961b6a6c3SCai Huoqing 			netdev_warn(priv->netdev,
290061b6a6c3SCai Huoqing 				    "mlx5: rewrite of few sub-fields (mask %lx) isn't offloaded\n",
2901d79b6df6SOr Gerlitz 				    mask);
2902d79b6df6SOr Gerlitz 			return -EOPNOTSUPP;
2903d79b6df6SOr Gerlitz 		}
2904d79b6df6SOr Gerlitz 
29052c0e5cf5SPaul Blakey 		action = mlx5e_mod_hdr_alloc(priv->mdev, namespace, mod_acts);
29062c0e5cf5SPaul Blakey 		if (IS_ERR(action)) {
29076ae4a6a5SPaul Blakey 			NL_SET_ERR_MSG_MOD(extack,
29086ae4a6a5SPaul Blakey 					   "too many pedit actions, can't offload");
29096ae4a6a5SPaul Blakey 			mlx5_core_warn(priv->mdev,
29106ae4a6a5SPaul Blakey 				       "mlx5: parsed %d pedit actions, can't do more\n",
29116ae4a6a5SPaul Blakey 				       mod_acts->num_actions);
29122c0e5cf5SPaul Blakey 			return PTR_ERR(action);
29136ae4a6a5SPaul Blakey 		}
29146ae4a6a5SPaul Blakey 
2915d79b6df6SOr Gerlitz 		MLX5_SET(set_action_in, action, action_type, cmd);
2916d79b6df6SOr Gerlitz 		MLX5_SET(set_action_in, action, field, f->field);
2917d79b6df6SOr Gerlitz 
2918d79b6df6SOr Gerlitz 		if (cmd == MLX5_ACTION_TYPE_SET) {
291988f30bbcSDmytro Linkin 			int start;
292088f30bbcSDmytro Linkin 
292182198d8bSMaor Dickman 			field_mask = mask_to_le(f->field_mask, f->field_bsize);
292282198d8bSMaor Dickman 
292388f30bbcSDmytro Linkin 			/* if field is bit sized it can start not from first bit */
292482198d8bSMaor Dickman 			start = find_first_bit(&field_mask, f->field_bsize);
292588f30bbcSDmytro Linkin 
292688f30bbcSDmytro Linkin 			MLX5_SET(set_action_in, action, offset, first - start);
2927d79b6df6SOr Gerlitz 			/* length is num of bits to be written, zero means length of 32 */
29282b64bebaSOr Gerlitz 			MLX5_SET(set_action_in, action, length, (last - first + 1));
2929d79b6df6SOr Gerlitz 		}
2930d79b6df6SOr Gerlitz 
293188f30bbcSDmytro Linkin 		if (f->field_bsize == 32)
29322b64bebaSOr Gerlitz 			MLX5_SET(set_action_in, action, data, ntohl(*(__be32 *)vals_p) >> first);
293388f30bbcSDmytro Linkin 		else if (f->field_bsize == 16)
29342b64bebaSOr Gerlitz 			MLX5_SET(set_action_in, action, data, ntohs(*(__be16 *)vals_p) >> first);
293588f30bbcSDmytro Linkin 		else if (f->field_bsize == 8)
29362b64bebaSOr Gerlitz 			MLX5_SET(set_action_in, action, data, *(u8 *)vals_p >> first);
2937d79b6df6SOr Gerlitz 
29386ae4a6a5SPaul Blakey 		++mod_acts->num_actions;
2939d79b6df6SOr Gerlitz 	}
2940d79b6df6SOr Gerlitz 
2941d79b6df6SOr Gerlitz 	return 0;
2942d79b6df6SOr Gerlitz }
2943d79b6df6SOr Gerlitz 
2944d79b6df6SOr Gerlitz static const struct pedit_headers zero_masks = {};
2945d79b6df6SOr Gerlitz 
2946c500c86bSPablo Neira Ayuso static int alloc_tc_pedit_action(struct mlx5e_priv *priv, int namespace,
2947c500c86bSPablo Neira Ayuso 				 struct mlx5e_tc_flow_parse_attr *parse_attr,
2948c500c86bSPablo Neira Ayuso 				 struct pedit_headers_action *hdrs,
294927c11b6bSEli Britstein 				 u32 *action_flags,
2950c500c86bSPablo Neira Ayuso 				 struct netlink_ext_ack *extack)
2951c500c86bSPablo Neira Ayuso {
2952c500c86bSPablo Neira Ayuso 	struct pedit_headers *cmd_masks;
2953c500c86bSPablo Neira Ayuso 	int err;
2954c500c86bSPablo Neira Ayuso 	u8 cmd;
2955c500c86bSPablo Neira Ayuso 
29566ae4a6a5SPaul Blakey 	err = offload_pedit_fields(priv, namespace, hdrs, parse_attr,
29576ae4a6a5SPaul Blakey 				   action_flags, extack);
2958d79b6df6SOr Gerlitz 	if (err < 0)
2959d79b6df6SOr Gerlitz 		goto out_dealloc_parsed_actions;
2960d79b6df6SOr Gerlitz 
2961d79b6df6SOr Gerlitz 	for (cmd = 0; cmd < __PEDIT_CMD_MAX; cmd++) {
2962c500c86bSPablo Neira Ayuso 		cmd_masks = &hdrs[cmd].masks;
2963d79b6df6SOr Gerlitz 		if (memcmp(cmd_masks, &zero_masks, sizeof(zero_masks))) {
2964e98bedf5SEli Britstein 			NL_SET_ERR_MSG_MOD(extack,
2965e98bedf5SEli Britstein 					   "attempt to offload an unsupported field");
2966b3a433deSOr Gerlitz 			netdev_warn(priv->netdev, "attempt to offload an unsupported field (cmd %d)\n", cmd);
2967d79b6df6SOr Gerlitz 			print_hex_dump(KERN_WARNING, "mask: ", DUMP_PREFIX_ADDRESS,
2968d79b6df6SOr Gerlitz 				       16, 1, cmd_masks, sizeof(zero_masks), true);
2969d79b6df6SOr Gerlitz 			err = -EOPNOTSUPP;
2970d79b6df6SOr Gerlitz 			goto out_dealloc_parsed_actions;
2971d79b6df6SOr Gerlitz 		}
2972d79b6df6SOr Gerlitz 	}
2973d79b6df6SOr Gerlitz 
2974d79b6df6SOr Gerlitz 	return 0;
2975d79b6df6SOr Gerlitz 
2976d79b6df6SOr Gerlitz out_dealloc_parsed_actions:
29772c0e5cf5SPaul Blakey 	mlx5e_mod_hdr_dealloc(&parse_attr->mod_hdr_acts);
2978d79b6df6SOr Gerlitz 	return err;
2979d79b6df6SOr Gerlitz }
2980d79b6df6SOr Gerlitz 
29818998576bSDmytro Linkin struct ip_ttl_word {
29828998576bSDmytro Linkin 	__u8	ttl;
29838998576bSDmytro Linkin 	__u8	protocol;
29848998576bSDmytro Linkin 	__sum16	check;
29858998576bSDmytro Linkin };
29868998576bSDmytro Linkin 
29878998576bSDmytro Linkin struct ipv6_hoplimit_word {
29888998576bSDmytro Linkin 	__be16	payload_len;
29898998576bSDmytro Linkin 	__u8	nexthdr;
29908998576bSDmytro Linkin 	__u8	hop_limit;
29918998576bSDmytro Linkin };
29928998576bSDmytro Linkin 
29931836d780SRoi Dayan static bool
29941836d780SRoi Dayan is_action_keys_supported(const struct flow_action_entry *act, bool ct_flow,
29951836d780SRoi Dayan 			 bool *modify_ip_header, bool *modify_tuple,
29964c3844d9SPaul Blakey 			 struct netlink_ext_ack *extack)
29978998576bSDmytro Linkin {
29988998576bSDmytro Linkin 	u32 mask, offset;
29998998576bSDmytro Linkin 	u8 htype;
30008998576bSDmytro Linkin 
30018998576bSDmytro Linkin 	htype = act->mangle.htype;
30028998576bSDmytro Linkin 	offset = act->mangle.offset;
30038998576bSDmytro Linkin 	mask = ~act->mangle.mask;
30048998576bSDmytro Linkin 	/* For IPv4 & IPv6 header check 4 byte word,
30058998576bSDmytro Linkin 	 * to determine that modified fields
30068998576bSDmytro Linkin 	 * are NOT ttl & hop_limit only.
30078998576bSDmytro Linkin 	 */
30088998576bSDmytro Linkin 	if (htype == FLOW_ACT_MANGLE_HDR_TYPE_IP4) {
30098998576bSDmytro Linkin 		struct ip_ttl_word *ttl_word =
30108998576bSDmytro Linkin 			(struct ip_ttl_word *)&mask;
30118998576bSDmytro Linkin 
30128998576bSDmytro Linkin 		if (offset != offsetof(struct iphdr, ttl) ||
30138998576bSDmytro Linkin 		    ttl_word->protocol ||
30148998576bSDmytro Linkin 		    ttl_word->check) {
30154c3844d9SPaul Blakey 			*modify_ip_header = true;
30164c3844d9SPaul Blakey 		}
30174c3844d9SPaul Blakey 
30187e36feebSPaul Blakey 		if (offset >= offsetof(struct iphdr, saddr))
30197e36feebSPaul Blakey 			*modify_tuple = true;
30207e36feebSPaul Blakey 
30217e36feebSPaul Blakey 		if (ct_flow && *modify_tuple) {
30224c3844d9SPaul Blakey 			NL_SET_ERR_MSG_MOD(extack,
30234c3844d9SPaul Blakey 					   "can't offload re-write of ipv4 address with action ct");
30241836d780SRoi Dayan 			return false;
30258998576bSDmytro Linkin 		}
30268998576bSDmytro Linkin 	} else if (htype == FLOW_ACT_MANGLE_HDR_TYPE_IP6) {
30278998576bSDmytro Linkin 		struct ipv6_hoplimit_word *hoplimit_word =
30288998576bSDmytro Linkin 			(struct ipv6_hoplimit_word *)&mask;
30298998576bSDmytro Linkin 
30308998576bSDmytro Linkin 		if (offset != offsetof(struct ipv6hdr, payload_len) ||
30318998576bSDmytro Linkin 		    hoplimit_word->payload_len ||
30328998576bSDmytro Linkin 		    hoplimit_word->nexthdr) {
30334c3844d9SPaul Blakey 			*modify_ip_header = true;
30348998576bSDmytro Linkin 		}
30354c3844d9SPaul Blakey 
30367e36feebSPaul Blakey 		if (ct_flow && offset >= offsetof(struct ipv6hdr, saddr))
30377e36feebSPaul Blakey 			*modify_tuple = true;
30387e36feebSPaul Blakey 
30397e36feebSPaul Blakey 		if (ct_flow && *modify_tuple) {
30404c3844d9SPaul Blakey 			NL_SET_ERR_MSG_MOD(extack,
30414c3844d9SPaul Blakey 					   "can't offload re-write of ipv6 address with action ct");
30421836d780SRoi Dayan 			return false;
30438998576bSDmytro Linkin 		}
30447e36feebSPaul Blakey 	} else if (htype == FLOW_ACT_MANGLE_HDR_TYPE_TCP ||
30457e36feebSPaul Blakey 		   htype == FLOW_ACT_MANGLE_HDR_TYPE_UDP) {
30467e36feebSPaul Blakey 		*modify_tuple = true;
30477e36feebSPaul Blakey 		if (ct_flow) {
30484c3844d9SPaul Blakey 			NL_SET_ERR_MSG_MOD(extack,
30494c3844d9SPaul Blakey 					   "can't offload re-write of transport header ports with action ct");
30501836d780SRoi Dayan 			return false;
30514c3844d9SPaul Blakey 		}
30527e36feebSPaul Blakey 	}
30534c3844d9SPaul Blakey 
30541836d780SRoi Dayan 	return true;
30558998576bSDmytro Linkin }
30568998576bSDmytro Linkin 
305796b5b458SDima Chumak static bool modify_tuple_supported(bool modify_tuple, bool ct_clear,
305896b5b458SDima Chumak 				   bool ct_flow, struct netlink_ext_ack *extack,
305996b5b458SDima Chumak 				   struct mlx5e_priv *priv,
306096b5b458SDima Chumak 				   struct mlx5_flow_spec *spec)
306196b5b458SDima Chumak {
306296b5b458SDima Chumak 	if (!modify_tuple || ct_clear)
306396b5b458SDima Chumak 		return true;
306496b5b458SDima Chumak 
306596b5b458SDima Chumak 	if (ct_flow) {
306696b5b458SDima Chumak 		NL_SET_ERR_MSG_MOD(extack,
306796b5b458SDima Chumak 				   "can't offload tuple modification with non-clear ct()");
306896b5b458SDima Chumak 		netdev_info(priv->netdev,
306996b5b458SDima Chumak 			    "can't offload tuple modification with non-clear ct()");
307096b5b458SDima Chumak 		return false;
307196b5b458SDima Chumak 	}
307296b5b458SDima Chumak 
307396b5b458SDima Chumak 	/* Add ct_state=-trk match so it will be offloaded for non ct flows
307496b5b458SDima Chumak 	 * (or after clear action), as otherwise, since the tuple is changed,
307596b5b458SDima Chumak 	 * we can't restore ct state
307696b5b458SDima Chumak 	 */
307796b5b458SDima Chumak 	if (mlx5_tc_ct_add_no_trk_match(spec)) {
307896b5b458SDima Chumak 		NL_SET_ERR_MSG_MOD(extack,
307996b5b458SDima Chumak 				   "can't offload tuple modification with ct matches and no ct(clear) action");
308096b5b458SDima Chumak 		netdev_info(priv->netdev,
308196b5b458SDima Chumak 			    "can't offload tuple modification with ct matches and no ct(clear) action");
308296b5b458SDima Chumak 		return false;
308396b5b458SDima Chumak 	}
308496b5b458SDima Chumak 
308596b5b458SDima Chumak 	return true;
308696b5b458SDima Chumak }
308796b5b458SDima Chumak 
30883d486ec4SOz Shlomo static bool modify_header_match_supported(struct mlx5e_priv *priv,
30893d486ec4SOz Shlomo 					  struct mlx5_flow_spec *spec,
309073867881SPablo Neira Ayuso 					  struct flow_action *flow_action,
30914c3844d9SPaul Blakey 					  u32 actions, bool ct_flow,
30927e36feebSPaul Blakey 					  bool ct_clear,
3093e98bedf5SEli Britstein 					  struct netlink_ext_ack *extack)
3094bdd66ac0SOr Gerlitz {
309573867881SPablo Neira Ayuso 	const struct flow_action_entry *act;
30967e36feebSPaul Blakey 	bool modify_ip_header, modify_tuple;
3097fca53304SEli Britstein 	void *headers_c;
3098bdd66ac0SOr Gerlitz 	void *headers_v;
3099bdd66ac0SOr Gerlitz 	u16 ethertype;
31008998576bSDmytro Linkin 	u8 ip_proto;
31011836d780SRoi Dayan 	int i;
3102bdd66ac0SOr Gerlitz 
31038ee72638SRoi Dayan 	headers_c = mlx5e_get_match_headers_criteria(actions, spec);
31048ee72638SRoi Dayan 	headers_v = mlx5e_get_match_headers_value(actions, spec);
3105bdd66ac0SOr Gerlitz 	ethertype = MLX5_GET(fte_match_set_lyr_2_4, headers_v, ethertype);
3106bdd66ac0SOr Gerlitz 
3107bdd66ac0SOr Gerlitz 	/* for non-IP we only re-write MACs, so we're okay */
3108fca53304SEli Britstein 	if (MLX5_GET(fte_match_set_lyr_2_4, headers_c, ip_version) == 0 &&
3109fca53304SEli Britstein 	    ethertype != ETH_P_IP && ethertype != ETH_P_IPV6)
3110bdd66ac0SOr Gerlitz 		goto out_ok;
3111bdd66ac0SOr Gerlitz 
3112bdd66ac0SOr Gerlitz 	modify_ip_header = false;
31137e36feebSPaul Blakey 	modify_tuple = false;
311473867881SPablo Neira Ayuso 	flow_action_for_each(i, act, flow_action) {
311573867881SPablo Neira Ayuso 		if (act->id != FLOW_ACTION_MANGLE &&
311673867881SPablo Neira Ayuso 		    act->id != FLOW_ACTION_ADD)
3117bdd66ac0SOr Gerlitz 			continue;
3118bdd66ac0SOr Gerlitz 
31191836d780SRoi Dayan 		if (!is_action_keys_supported(act, ct_flow,
31207e36feebSPaul Blakey 					      &modify_ip_header,
31211836d780SRoi Dayan 					      &modify_tuple, extack))
31221836d780SRoi Dayan 			return false;
3123bdd66ac0SOr Gerlitz 	}
3124bdd66ac0SOr Gerlitz 
312596b5b458SDima Chumak 	if (!modify_tuple_supported(modify_tuple, ct_clear, ct_flow, extack,
312696b5b458SDima Chumak 				    priv, spec))
31277e36feebSPaul Blakey 		return false;
31287e36feebSPaul Blakey 
3129bdd66ac0SOr Gerlitz 	ip_proto = MLX5_GET(fte_match_set_lyr_2_4, headers_v, ip_protocol);
31301ccef350SJianbo Liu 	if (modify_ip_header && ip_proto != IPPROTO_TCP &&
31311ccef350SJianbo Liu 	    ip_proto != IPPROTO_UDP && ip_proto != IPPROTO_ICMP) {
3132e98bedf5SEli Britstein 		NL_SET_ERR_MSG_MOD(extack,
3133e98bedf5SEli Britstein 				   "can't offload re-write of non TCP/UDP");
31343d486ec4SOz Shlomo 		netdev_info(priv->netdev, "can't offload re-write of ip proto %d\n",
31353d486ec4SOz Shlomo 			    ip_proto);
3136bdd66ac0SOr Gerlitz 		return false;
3137bdd66ac0SOr Gerlitz 	}
3138bdd66ac0SOr Gerlitz 
3139bdd66ac0SOr Gerlitz out_ok:
3140bdd66ac0SOr Gerlitz 	return true;
3141bdd66ac0SOr Gerlitz }
3142bdd66ac0SOr Gerlitz 
31439c1d3511SRoi Dayan static bool
31449c1d3511SRoi Dayan actions_match_supported_fdb(struct mlx5e_priv *priv,
31459c1d3511SRoi Dayan 			    struct mlx5e_tc_flow_parse_attr *parse_attr,
31469c1d3511SRoi Dayan 			    struct mlx5e_tc_flow *flow,
31479c1d3511SRoi Dayan 			    struct netlink_ext_ack *extack)
31489c1d3511SRoi Dayan {
3149d4f401d9SRoi Dayan 	struct mlx5_esw_flow_attr *esw_attr = flow->attr->esw_attr;
31509c1d3511SRoi Dayan 	bool ct_flow, ct_clear;
31519c1d3511SRoi Dayan 
31529c1d3511SRoi Dayan 	ct_clear = flow->attr->ct_attr.ct_action & TCA_CT_ACT_CLEAR;
31539c1d3511SRoi Dayan 	ct_flow = flow_flag_test(flow, CT) && !ct_clear;
31549c1d3511SRoi Dayan 
3155d4f401d9SRoi Dayan 	if (esw_attr->split_count && ct_flow &&
3156d4f401d9SRoi Dayan 	    !MLX5_CAP_GEN(esw_attr->in_mdev, reg_c_preserve)) {
31579c1d3511SRoi Dayan 		/* All registers used by ct are cleared when using
31589c1d3511SRoi Dayan 		 * split rules.
31599c1d3511SRoi Dayan 		 */
31609c1d3511SRoi Dayan 		NL_SET_ERR_MSG_MOD(extack, "Can't offload mirroring with action ct");
31619c1d3511SRoi Dayan 		return false;
31629c1d3511SRoi Dayan 	}
31639c1d3511SRoi Dayan 
3164d4f401d9SRoi Dayan 	if (esw_attr->split_count > 0 && !mlx5_esw_has_fwd_fdb(priv->mdev)) {
3165d4f401d9SRoi Dayan 		NL_SET_ERR_MSG_MOD(extack,
3166d4f401d9SRoi Dayan 				   "current firmware doesn't support split rule for port mirroring");
3167d4f401d9SRoi Dayan 		netdev_warn_once(priv->netdev,
3168d4f401d9SRoi Dayan 				 "current firmware doesn't support split rule for port mirroring\n");
3169d4f401d9SRoi Dayan 		return false;
3170d4f401d9SRoi Dayan 	}
3171d4f401d9SRoi Dayan 
31729c1d3511SRoi Dayan 	return true;
31739c1d3511SRoi Dayan }
31749c1d3511SRoi Dayan 
31759c1d3511SRoi Dayan static bool
31769c1d3511SRoi Dayan actions_match_supported(struct mlx5e_priv *priv,
317773867881SPablo Neira Ayuso 			struct flow_action *flow_action,
3178bdd66ac0SOr Gerlitz 			struct mlx5e_tc_flow_parse_attr *parse_attr,
3179e98bedf5SEli Britstein 			struct mlx5e_tc_flow *flow,
3180e98bedf5SEli Britstein 			struct netlink_ext_ack *extack)
3181bdd66ac0SOr Gerlitz {
31829c1d3511SRoi Dayan 	u32 actions = flow->attr->action;
31839c1d3511SRoi Dayan 	bool ct_flow, ct_clear;
3184bdd66ac0SOr Gerlitz 
31859c1d3511SRoi Dayan 	ct_clear = flow->attr->ct_attr.ct_action & TCA_CT_ACT_CLEAR;
3186a7c119bdSPaul Blakey 	ct_flow = flow_flag_test(flow, CT) && !ct_clear;
3187c620b772SAriel Levkovich 
31886b50cf45SRoi Dayan 	if (!(actions &
31896b50cf45SRoi Dayan 	      (MLX5_FLOW_CONTEXT_ACTION_FWD_DEST | MLX5_FLOW_CONTEXT_ACTION_DROP))) {
31906b50cf45SRoi Dayan 		NL_SET_ERR_MSG_MOD(extack, "Rule must have at least one forward/drop action");
31916b50cf45SRoi Dayan 		return false;
31926b50cf45SRoi Dayan 	}
31936b50cf45SRoi Dayan 
31949c1d3511SRoi Dayan 	if (actions & MLX5_FLOW_CONTEXT_ACTION_MOD_HDR &&
3195*a2446bc7SRoi Dayan 	    actions & MLX5_FLOW_CONTEXT_ACTION_DROP) {
3196*a2446bc7SRoi Dayan 		NL_SET_ERR_MSG_MOD(extack, "Drop with modify header action is not supported");
3197*a2446bc7SRoi Dayan 		return false;
3198*a2446bc7SRoi Dayan 	}
3199*a2446bc7SRoi Dayan 
3200*a2446bc7SRoi Dayan 	if (actions & MLX5_FLOW_CONTEXT_ACTION_MOD_HDR &&
32019c1d3511SRoi Dayan 	    !modify_header_match_supported(priv, &parse_attr->spec, flow_action,
32029c1d3511SRoi Dayan 					   actions, ct_flow, ct_clear, extack))
320349397b80SDan Carpenter 		return false;
3204bdd66ac0SOr Gerlitz 
32059c1d3511SRoi Dayan 	if (mlx5e_is_eswitch_flow(flow) &&
32069c1d3511SRoi Dayan 	    !actions_match_supported_fdb(priv, parse_attr, flow, extack))
32079c1d3511SRoi Dayan 		return false;
3208bdd66ac0SOr Gerlitz 
3209bdd66ac0SOr Gerlitz 	return true;
3210bdd66ac0SOr Gerlitz }
3211bdd66ac0SOr Gerlitz 
321232134847SMaor Dickman static bool same_port_devs(struct mlx5e_priv *priv, struct mlx5e_priv *peer_priv)
321332134847SMaor Dickman {
321432134847SMaor Dickman 	return priv->mdev == peer_priv->mdev;
321532134847SMaor Dickman }
321632134847SMaor Dickman 
3217ab3f3d5eSRoi Dayan bool mlx5e_same_hw_devs(struct mlx5e_priv *priv, struct mlx5e_priv *peer_priv)
32185c65c564SOr Gerlitz {
32195c65c564SOr Gerlitz 	struct mlx5_core_dev *fmdev, *pmdev;
3220816f6706SOr Gerlitz 	u64 fsystem_guid, psystem_guid;
32215c65c564SOr Gerlitz 
32225c65c564SOr Gerlitz 	fmdev = priv->mdev;
32235c65c564SOr Gerlitz 	pmdev = peer_priv->mdev;
32245c65c564SOr Gerlitz 
322559c9d35eSAlaa Hleihel 	fsystem_guid = mlx5_query_nic_system_image_guid(fmdev);
322659c9d35eSAlaa Hleihel 	psystem_guid = mlx5_query_nic_system_image_guid(pmdev);
32275c65c564SOr Gerlitz 
3228816f6706SOr Gerlitz 	return (fsystem_guid == psystem_guid);
32295c65c564SOr Gerlitz }
32305c65c564SOr Gerlitz 
32310bac1194SEli Britstein static int
32328333d53eSRoi Dayan parse_tc_actions(struct mlx5e_tc_act_parse_state *parse_state,
32338333d53eSRoi Dayan 		 struct flow_action *flow_action)
32348333d53eSRoi Dayan {
32358333d53eSRoi Dayan 	struct netlink_ext_ack *extack = parse_state->extack;
32368333d53eSRoi Dayan 	struct mlx5e_tc_flow *flow = parse_state->flow;
32378333d53eSRoi Dayan 	struct mlx5_flow_attr *attr = flow->attr;
32388333d53eSRoi Dayan 	enum mlx5_flow_namespace_type ns_type;
32398333d53eSRoi Dayan 	struct mlx5e_priv *priv = flow->priv;
32408333d53eSRoi Dayan 	const struct flow_action_entry *act;
32418333d53eSRoi Dayan 	struct mlx5e_tc_act *tc_act;
32428333d53eSRoi Dayan 	int err, i;
32438333d53eSRoi Dayan 
32448333d53eSRoi Dayan 	ns_type = mlx5e_get_flow_namespace(flow);
32458333d53eSRoi Dayan 
32468333d53eSRoi Dayan 	flow_action_for_each(i, act, flow_action) {
32478333d53eSRoi Dayan 		tc_act = mlx5e_tc_act_get(act->id, ns_type);
32488333d53eSRoi Dayan 		if (!tc_act) {
32498333d53eSRoi Dayan 			NL_SET_ERR_MSG_MOD(extack, "Not implemented offload action");
32508333d53eSRoi Dayan 			return -EOPNOTSUPP;
32518333d53eSRoi Dayan 		}
32528333d53eSRoi Dayan 
32538333d53eSRoi Dayan 		if (!tc_act->can_offload(parse_state, act, i))
32548333d53eSRoi Dayan 			return -EOPNOTSUPP;
32558333d53eSRoi Dayan 
32568333d53eSRoi Dayan 		err = tc_act->parse_action(parse_state, act, priv, attr);
32578333d53eSRoi Dayan 		if (err)
32588333d53eSRoi Dayan 			return err;
32598333d53eSRoi Dayan 	}
32608333d53eSRoi Dayan 
3261dd5ab6d1SRoi Dayan 	flow_action_for_each(i, act, flow_action) {
3262dd5ab6d1SRoi Dayan 		tc_act = mlx5e_tc_act_get(act->id, ns_type);
3263dd5ab6d1SRoi Dayan 		if (!tc_act || !tc_act->post_parse ||
3264dd5ab6d1SRoi Dayan 		    !tc_act->can_offload(parse_state, act, i))
3265dd5ab6d1SRoi Dayan 			continue;
3266dd5ab6d1SRoi Dayan 
3267dd5ab6d1SRoi Dayan 		err = tc_act->post_parse(parse_state, priv, attr);
3268dd5ab6d1SRoi Dayan 		if (err)
3269dd5ab6d1SRoi Dayan 			return err;
3270dd5ab6d1SRoi Dayan 	}
3271dd5ab6d1SRoi Dayan 
32728333d53eSRoi Dayan 	return 0;
32738333d53eSRoi Dayan }
32748333d53eSRoi Dayan 
32758333d53eSRoi Dayan static int
3276d9581e2fSRoi Dayan actions_prepare_mod_hdr_actions(struct mlx5e_priv *priv,
3277d9581e2fSRoi Dayan 				struct mlx5e_tc_flow *flow,
3278d9581e2fSRoi Dayan 				struct mlx5_flow_attr *attr,
3279d9581e2fSRoi Dayan 				struct pedit_headers_action *hdrs,
3280d9581e2fSRoi Dayan 				struct netlink_ext_ack *extack)
3281d9581e2fSRoi Dayan {
3282d9581e2fSRoi Dayan 	struct mlx5e_tc_flow_parse_attr *parse_attr = attr->parse_attr;
3283d9581e2fSRoi Dayan 	enum mlx5_flow_namespace_type ns_type;
3284d9581e2fSRoi Dayan 	int err;
3285d9581e2fSRoi Dayan 
3286d9581e2fSRoi Dayan 	if (!hdrs[TCA_PEDIT_KEY_EX_CMD_SET].pedits &&
3287d9581e2fSRoi Dayan 	    !hdrs[TCA_PEDIT_KEY_EX_CMD_ADD].pedits)
3288d9581e2fSRoi Dayan 		return 0;
3289d9581e2fSRoi Dayan 
3290e36db1eeSRoi Dayan 	ns_type = mlx5e_get_flow_namespace(flow);
3291d9581e2fSRoi Dayan 
3292d9581e2fSRoi Dayan 	err = alloc_tc_pedit_action(priv, ns_type, parse_attr, hdrs,
3293d9581e2fSRoi Dayan 				    &attr->action, extack);
3294d9581e2fSRoi Dayan 	if (err)
3295d9581e2fSRoi Dayan 		return err;
3296d9581e2fSRoi Dayan 
3297d9581e2fSRoi Dayan 	if (parse_attr->mod_hdr_acts.num_actions > 0)
3298d9581e2fSRoi Dayan 		return 0;
3299d9581e2fSRoi Dayan 
3300fc3a879aSRoi Dayan 	/* In case all pedit actions are skipped, remove the MOD_HDR flag. */
3301d9581e2fSRoi Dayan 	attr->action &= ~MLX5_FLOW_CONTEXT_ACTION_MOD_HDR;
33022c0e5cf5SPaul Blakey 	mlx5e_mod_hdr_dealloc(&parse_attr->mod_hdr_acts);
3303d9581e2fSRoi Dayan 
3304d9581e2fSRoi Dayan 	if (ns_type != MLX5_FLOW_NAMESPACE_FDB)
3305d9581e2fSRoi Dayan 		return 0;
3306d9581e2fSRoi Dayan 
3307d9581e2fSRoi Dayan 	if (!((attr->action & MLX5_FLOW_CONTEXT_ACTION_VLAN_POP) ||
3308d9581e2fSRoi Dayan 	      (attr->action & MLX5_FLOW_CONTEXT_ACTION_VLAN_PUSH)))
3309d9581e2fSRoi Dayan 		attr->esw_attr->split_count = 0;
3310d9581e2fSRoi Dayan 
3311d9581e2fSRoi Dayan 	return 0;
3312d9581e2fSRoi Dayan }
3313d9581e2fSRoi Dayan 
3314d9581e2fSRoi Dayan static int
3315df990477SRoi Dayan flow_action_supported(struct flow_action *flow_action,
3316df990477SRoi Dayan 		      struct netlink_ext_ack *extack)
3317df990477SRoi Dayan {
3318df990477SRoi Dayan 	if (!flow_action_has_entries(flow_action)) {
3319df990477SRoi Dayan 		NL_SET_ERR_MSG_MOD(extack, "Flow action doesn't have any entries");
3320df990477SRoi Dayan 		return -EINVAL;
3321df990477SRoi Dayan 	}
3322df990477SRoi Dayan 
3323df990477SRoi Dayan 	if (!flow_action_hw_stats_check(flow_action, extack,
3324df990477SRoi Dayan 					FLOW_ACTION_HW_STATS_DELAYED_BIT)) {
3325df990477SRoi Dayan 		NL_SET_ERR_MSG_MOD(extack, "Flow action HW stats type is not supported");
3326df990477SRoi Dayan 		return -EOPNOTSUPP;
3327df990477SRoi Dayan 	}
3328df990477SRoi Dayan 
3329df990477SRoi Dayan 	return 0;
3330df990477SRoi Dayan }
3331df990477SRoi Dayan 
3332df990477SRoi Dayan static int
3333d9581e2fSRoi Dayan parse_tc_nic_actions(struct mlx5e_priv *priv,
333473867881SPablo Neira Ayuso 		     struct flow_action *flow_action,
3335e98bedf5SEli Britstein 		     struct mlx5e_tc_flow *flow,
3336e98bedf5SEli Britstein 		     struct netlink_ext_ack *extack)
3337e3a2b7edSAmir Vadai {
3338fad54790SRoi Dayan 	struct mlx5e_tc_act_parse_state *parse_state;
3339c6cfe113SRoi Dayan 	struct mlx5e_tc_flow_parse_attr *parse_attr;
3340c620b772SAriel Levkovich 	struct mlx5_flow_attr *attr = flow->attr;
3341e36db1eeSRoi Dayan 	struct pedit_headers_action *hdrs;
33428333d53eSRoi Dayan 	int err;
3343e3a2b7edSAmir Vadai 
3344df990477SRoi Dayan 	err = flow_action_supported(flow_action, extack);
3345df990477SRoi Dayan 	if (err)
3346df990477SRoi Dayan 		return err;
3347319a1d19SJiri Pirko 
3348fad54790SRoi Dayan 	attr->nic_attr->flow_tag = MLX5_FS_DEFAULT_FLOW_TAG;
3349c6cfe113SRoi Dayan 	parse_attr = attr->parse_attr;
3350fad54790SRoi Dayan 	parse_state = &parse_attr->parse_state;
3351fad54790SRoi Dayan 	mlx5e_tc_act_init_parse_state(parse_state, flow, flow_action, extack);
3352758bc134SRoi Dayan 	parse_state->ct_priv = get_ct_priv(priv);
3353e36db1eeSRoi Dayan 	hdrs = parse_state->hdrs;
3354e3a2b7edSAmir Vadai 
33558333d53eSRoi Dayan 	err = parse_tc_actions(parse_state, flow_action);
3356fad54790SRoi Dayan 	if (err)
3357fad54790SRoi Dayan 		return err;
3358e3a2b7edSAmir Vadai 
3359d9581e2fSRoi Dayan 	err = actions_prepare_mod_hdr_actions(priv, flow, attr, hdrs, extack);
3360d9581e2fSRoi Dayan 	if (err)
3361d9581e2fSRoi Dayan 		return err;
3362d9581e2fSRoi Dayan 
336373867881SPablo Neira Ayuso 	if (!actions_match_supported(priv, flow_action, parse_attr, flow, extack))
3364bdd66ac0SOr Gerlitz 		return -EOPNOTSUPP;
3365bdd66ac0SOr Gerlitz 
3366e3a2b7edSAmir Vadai 	return 0;
3367e3a2b7edSAmir Vadai }
3368e3a2b7edSAmir Vadai 
336932134847SMaor Dickman static bool is_merged_eswitch_vfs(struct mlx5e_priv *priv,
3370b1d90e6bSRabie Loulou 				  struct net_device *peer_netdev)
3371b1d90e6bSRabie Loulou {
3372b1d90e6bSRabie Loulou 	struct mlx5e_priv *peer_priv;
3373b1d90e6bSRabie Loulou 
3374b1d90e6bSRabie Loulou 	peer_priv = netdev_priv(peer_netdev);
3375b1d90e6bSRabie Loulou 
3376b1d90e6bSRabie Loulou 	return (MLX5_CAP_ESW(priv->mdev, merged_eswitch) &&
337732134847SMaor Dickman 		mlx5e_eswitch_vf_rep(priv->netdev) &&
337832134847SMaor Dickman 		mlx5e_eswitch_vf_rep(peer_netdev) &&
3379ab3f3d5eSRoi Dayan 		mlx5e_same_hw_devs(priv, peer_priv));
3380d34eb2fcSOr Gerlitz }
3381d34eb2fcSOr Gerlitz 
338232134847SMaor Dickman static bool same_hw_reps(struct mlx5e_priv *priv,
338332134847SMaor Dickman 			 struct net_device *peer_netdev)
338432134847SMaor Dickman {
338532134847SMaor Dickman 	struct mlx5e_priv *peer_priv;
338632134847SMaor Dickman 
338732134847SMaor Dickman 	peer_priv = netdev_priv(peer_netdev);
338832134847SMaor Dickman 
338932134847SMaor Dickman 	return mlx5e_eswitch_rep(priv->netdev) &&
339032134847SMaor Dickman 	       mlx5e_eswitch_rep(peer_netdev) &&
3391ab3f3d5eSRoi Dayan 	       mlx5e_same_hw_devs(priv, peer_priv);
339232134847SMaor Dickman }
339332134847SMaor Dickman 
339432134847SMaor Dickman static bool is_lag_dev(struct mlx5e_priv *priv,
339532134847SMaor Dickman 		       struct net_device *peer_netdev)
339632134847SMaor Dickman {
339732134847SMaor Dickman 	return ((mlx5_lag_is_sriov(priv->mdev) ||
339832134847SMaor Dickman 		 mlx5_lag_is_multipath(priv->mdev)) &&
339932134847SMaor Dickman 		 same_hw_reps(priv, peer_netdev));
340032134847SMaor Dickman }
340132134847SMaor Dickman 
3402f6dc1264SPaul Blakey bool mlx5e_is_valid_eswitch_fwd_dev(struct mlx5e_priv *priv,
3403f6dc1264SPaul Blakey 				    struct net_device *out_dev)
3404f6dc1264SPaul Blakey {
340532134847SMaor Dickman 	if (is_merged_eswitch_vfs(priv, out_dev))
340632134847SMaor Dickman 		return true;
340732134847SMaor Dickman 
340832134847SMaor Dickman 	if (is_lag_dev(priv, out_dev))
3409f6dc1264SPaul Blakey 		return true;
3410f6dc1264SPaul Blakey 
3411f6dc1264SPaul Blakey 	return mlx5e_eswitch_rep(out_dev) &&
341232134847SMaor Dickman 	       same_port_devs(priv, netdev_priv(out_dev));
3413f6dc1264SPaul Blakey }
3414f6dc1264SPaul Blakey 
341527484f71SAriel Levkovich int mlx5e_set_fwd_to_int_port_actions(struct mlx5e_priv *priv,
341627484f71SAriel Levkovich 				      struct mlx5_flow_attr *attr,
341727484f71SAriel Levkovich 				      int ifindex,
341827484f71SAriel Levkovich 				      enum mlx5e_tc_int_port_type type,
341927484f71SAriel Levkovich 				      u32 *action,
342027484f71SAriel Levkovich 				      int out_index)
342127484f71SAriel Levkovich {
342227484f71SAriel Levkovich 	struct mlx5_esw_flow_attr *esw_attr = attr->esw_attr;
342327484f71SAriel Levkovich 	struct mlx5e_tc_int_port_priv *int_port_priv;
342427484f71SAriel Levkovich 	struct mlx5e_tc_flow_parse_attr *parse_attr;
342527484f71SAriel Levkovich 	struct mlx5e_tc_int_port *dest_int_port;
342627484f71SAriel Levkovich 	int err;
342727484f71SAriel Levkovich 
342827484f71SAriel Levkovich 	parse_attr = attr->parse_attr;
342927484f71SAriel Levkovich 	int_port_priv = mlx5e_get_int_port_priv(priv);
343027484f71SAriel Levkovich 
343127484f71SAriel Levkovich 	dest_int_port = mlx5e_tc_int_port_get(int_port_priv, ifindex, type);
343227484f71SAriel Levkovich 	if (IS_ERR(dest_int_port))
343327484f71SAriel Levkovich 		return PTR_ERR(dest_int_port);
343427484f71SAriel Levkovich 
343527484f71SAriel Levkovich 	err = mlx5e_tc_match_to_reg_set(priv->mdev, &parse_attr->mod_hdr_acts,
343627484f71SAriel Levkovich 					MLX5_FLOW_NAMESPACE_FDB, VPORT_TO_REG,
343727484f71SAriel Levkovich 					mlx5e_tc_int_port_get_metadata(dest_int_port));
343827484f71SAriel Levkovich 	if (err) {
343927484f71SAriel Levkovich 		mlx5e_tc_int_port_put(int_port_priv, dest_int_port);
344027484f71SAriel Levkovich 		return err;
344127484f71SAriel Levkovich 	}
344227484f71SAriel Levkovich 
344327484f71SAriel Levkovich 	*action |= MLX5_FLOW_CONTEXT_ACTION_MOD_HDR;
344427484f71SAriel Levkovich 
344527484f71SAriel Levkovich 	esw_attr->dest_int_port = dest_int_port;
344627484f71SAriel Levkovich 	esw_attr->dests[out_index].flags |= MLX5_ESW_DEST_CHAIN_WITH_SRC_PORT_CHANGE;
344727484f71SAriel Levkovich 
344827484f71SAriel Levkovich 	/* Forward to root fdb for matching against the new source vport */
344927484f71SAriel Levkovich 	attr->dest_chain = 0;
345027484f71SAriel Levkovich 
345127484f71SAriel Levkovich 	return 0;
345227484f71SAriel Levkovich }
345327484f71SAriel Levkovich 
34548333d53eSRoi Dayan static int
34558333d53eSRoi Dayan parse_tc_fdb_actions(struct mlx5e_priv *priv,
345673867881SPablo Neira Ayuso 		     struct flow_action *flow_action,
3457e98bedf5SEli Britstein 		     struct mlx5e_tc_flow *flow,
345870f8019eSRoi Dayan 		     struct netlink_ext_ack *extack)
3459a54e20b4SHadar Hen Zion {
3460fad54790SRoi Dayan 	struct mlx5e_tc_act_parse_state *parse_state;
3461c620b772SAriel Levkovich 	struct mlx5e_tc_flow_parse_attr *parse_attr;
3462c620b772SAriel Levkovich 	struct mlx5_flow_attr *attr = flow->attr;
3463c620b772SAriel Levkovich 	struct mlx5_esw_flow_attr *esw_attr;
3464e36db1eeSRoi Dayan 	struct pedit_headers_action *hdrs;
34658333d53eSRoi Dayan 	int err;
346603a9d11eSOr Gerlitz 
3467df990477SRoi Dayan 	err = flow_action_supported(flow_action, extack);
3468df990477SRoi Dayan 	if (err)
3469df990477SRoi Dayan 		return err;
3470319a1d19SJiri Pirko 
3471c620b772SAriel Levkovich 	esw_attr = attr->esw_attr;
3472c620b772SAriel Levkovich 	parse_attr = attr->parse_attr;
3473fad54790SRoi Dayan 	parse_state = &parse_attr->parse_state;
3474fad54790SRoi Dayan 	mlx5e_tc_act_init_parse_state(parse_state, flow, flow_action, extack);
3475758bc134SRoi Dayan 	parse_state->ct_priv = get_ct_priv(priv);
3476e36db1eeSRoi Dayan 	hdrs = parse_state->hdrs;
3477c620b772SAriel Levkovich 
34788333d53eSRoi Dayan 	err = parse_tc_actions(parse_state, flow_action);
3479fad54790SRoi Dayan 	if (err)
3480fad54790SRoi Dayan 		return err;
3481bdd66ac0SOr Gerlitz 
3482166f431eSAriel Levkovich 	/* Forward to/from internal port can only have 1 dest */
3483166f431eSAriel Levkovich 	if ((netif_is_ovs_master(parse_attr->filter_dev) || esw_attr->dest_int_port) &&
3484166f431eSAriel Levkovich 	    esw_attr->out_count > 1) {
348527484f71SAriel Levkovich 		NL_SET_ERR_MSG_MOD(extack,
3486166f431eSAriel Levkovich 				   "Rules with internal port can have only one destination");
348727484f71SAriel Levkovich 		return -EOPNOTSUPP;
348827484f71SAriel Levkovich 	}
348927484f71SAriel Levkovich 
3490d9581e2fSRoi Dayan 	err = actions_prepare_mod_hdr_actions(priv, flow, attr, hdrs, extack);
3491c500c86bSPablo Neira Ayuso 	if (err)
3492c500c86bSPablo Neira Ayuso 		return err;
3493c500c86bSPablo Neira Ayuso 
349473867881SPablo Neira Ayuso 	if (!actions_match_supported(priv, flow_action, parse_attr, flow, extack))
3495bdd66ac0SOr Gerlitz 		return -EOPNOTSUPP;
3496bdd66ac0SOr Gerlitz 
349731c8eba5SOr Gerlitz 	return 0;
349803a9d11eSOr Gerlitz }
349903a9d11eSOr Gerlitz 
3500226f2ca3SVlad Buslov static void get_flags(int flags, unsigned long *flow_flags)
350160bd4af8SOr Gerlitz {
3502226f2ca3SVlad Buslov 	unsigned long __flow_flags = 0;
350360bd4af8SOr Gerlitz 
3504226f2ca3SVlad Buslov 	if (flags & MLX5_TC_FLAG(INGRESS))
3505226f2ca3SVlad Buslov 		__flow_flags |= BIT(MLX5E_TC_FLOW_FLAG_INGRESS);
3506226f2ca3SVlad Buslov 	if (flags & MLX5_TC_FLAG(EGRESS))
3507226f2ca3SVlad Buslov 		__flow_flags |= BIT(MLX5E_TC_FLOW_FLAG_EGRESS);
350860bd4af8SOr Gerlitz 
3509226f2ca3SVlad Buslov 	if (flags & MLX5_TC_FLAG(ESW_OFFLOAD))
3510226f2ca3SVlad Buslov 		__flow_flags |= BIT(MLX5E_TC_FLOW_FLAG_ESWITCH);
3511226f2ca3SVlad Buslov 	if (flags & MLX5_TC_FLAG(NIC_OFFLOAD))
3512226f2ca3SVlad Buslov 		__flow_flags |= BIT(MLX5E_TC_FLOW_FLAG_NIC);
351384179981SPaul Blakey 	if (flags & MLX5_TC_FLAG(FT_OFFLOAD))
351484179981SPaul Blakey 		__flow_flags |= BIT(MLX5E_TC_FLOW_FLAG_FT);
3515d9ee0491SOr Gerlitz 
351660bd4af8SOr Gerlitz 	*flow_flags = __flow_flags;
351760bd4af8SOr Gerlitz }
351860bd4af8SOr Gerlitz 
351905866c82SOr Gerlitz static const struct rhashtable_params tc_ht_params = {
352005866c82SOr Gerlitz 	.head_offset = offsetof(struct mlx5e_tc_flow, node),
352105866c82SOr Gerlitz 	.key_offset = offsetof(struct mlx5e_tc_flow, cookie),
352205866c82SOr Gerlitz 	.key_len = sizeof(((struct mlx5e_tc_flow *)0)->cookie),
352305866c82SOr Gerlitz 	.automatic_shrinking = true,
352405866c82SOr Gerlitz };
352505866c82SOr Gerlitz 
3526226f2ca3SVlad Buslov static struct rhashtable *get_tc_ht(struct mlx5e_priv *priv,
3527226f2ca3SVlad Buslov 				    unsigned long flags)
352805866c82SOr Gerlitz {
3529655dc3d2SOr Gerlitz 	struct mlx5_eswitch *esw = priv->mdev->priv.eswitch;
3530655dc3d2SOr Gerlitz 	struct mlx5e_rep_priv *uplink_rpriv;
3531655dc3d2SOr Gerlitz 
3532226f2ca3SVlad Buslov 	if (flags & MLX5_TC_FLAG(ESW_OFFLOAD)) {
3533655dc3d2SOr Gerlitz 		uplink_rpriv = mlx5_eswitch_get_uplink_priv(esw, REP_ETH);
3534ec1366c2SOz Shlomo 		return &uplink_rpriv->uplink_priv.tc_ht;
3535d9ee0491SOr Gerlitz 	} else /* NIC offload */
353605866c82SOr Gerlitz 		return &priv->fs.tc.ht;
353705866c82SOr Gerlitz }
353805866c82SOr Gerlitz 
353904de7ddaSRoi Dayan static bool is_peer_flow_needed(struct mlx5e_tc_flow *flow)
354004de7ddaSRoi Dayan {
3541c620b772SAriel Levkovich 	struct mlx5_esw_flow_attr *esw_attr = flow->attr->esw_attr;
3542c620b772SAriel Levkovich 	struct mlx5_flow_attr *attr = flow->attr;
3543c620b772SAriel Levkovich 	bool is_rep_ingress = esw_attr->in_rep->vport != MLX5_VPORT_UPLINK &&
3544226f2ca3SVlad Buslov 		flow_flag_test(flow, INGRESS);
35451418ddd9SAviv Heller 	bool act_is_encap = !!(attr->action &
35461418ddd9SAviv Heller 			       MLX5_FLOW_CONTEXT_ACTION_PACKET_REFORMAT);
3547c620b772SAriel Levkovich 	bool esw_paired = mlx5_devcom_is_paired(esw_attr->in_mdev->priv.devcom,
35481418ddd9SAviv Heller 						MLX5_DEVCOM_ESW_OFFLOADS);
35491418ddd9SAviv Heller 
355010fbb1cdSRoi Dayan 	if (!esw_paired)
355110fbb1cdSRoi Dayan 		return false;
355210fbb1cdSRoi Dayan 
3553c620b772SAriel Levkovich 	if ((mlx5_lag_is_sriov(esw_attr->in_mdev) ||
3554c620b772SAriel Levkovich 	     mlx5_lag_is_multipath(esw_attr->in_mdev)) &&
355510fbb1cdSRoi Dayan 	    (is_rep_ingress || act_is_encap))
355610fbb1cdSRoi Dayan 		return true;
355710fbb1cdSRoi Dayan 
355810fbb1cdSRoi Dayan 	return false;
355904de7ddaSRoi Dayan }
356004de7ddaSRoi Dayan 
3561c620b772SAriel Levkovich struct mlx5_flow_attr *
3562c620b772SAriel Levkovich mlx5_alloc_flow_attr(enum mlx5_flow_namespace_type type)
3563c620b772SAriel Levkovich {
3564c620b772SAriel Levkovich 	u32 ex_attr_size = (type == MLX5_FLOW_NAMESPACE_FDB)  ?
3565c620b772SAriel Levkovich 				sizeof(struct mlx5_esw_flow_attr) :
3566c620b772SAriel Levkovich 				sizeof(struct mlx5_nic_flow_attr);
3567c620b772SAriel Levkovich 	struct mlx5_flow_attr *attr;
3568c620b772SAriel Levkovich 
3569c620b772SAriel Levkovich 	return kzalloc(sizeof(*attr) + ex_attr_size, GFP_KERNEL);
3570c620b772SAriel Levkovich }
3571c620b772SAriel Levkovich 
3572a88780a9SRoi Dayan static int
3573a88780a9SRoi Dayan mlx5e_alloc_flow(struct mlx5e_priv *priv, int attr_size,
3574226f2ca3SVlad Buslov 		 struct flow_cls_offload *f, unsigned long flow_flags,
3575a88780a9SRoi Dayan 		 struct mlx5e_tc_flow_parse_attr **__parse_attr,
3576a88780a9SRoi Dayan 		 struct mlx5e_tc_flow **__flow)
3577e3a2b7edSAmir Vadai {
357817091853SOr Gerlitz 	struct mlx5e_tc_flow_parse_attr *parse_attr;
3579c620b772SAriel Levkovich 	struct mlx5_flow_attr *attr;
35803bc4b7bfSOr Gerlitz 	struct mlx5e_tc_flow *flow;
3581ff7ea04aSGustavo A. R. Silva 	int err = -ENOMEM;
3582ff7ea04aSGustavo A. R. Silva 	int out_index;
3583776b12b6SOr Gerlitz 
3584c620b772SAriel Levkovich 	flow = kzalloc(sizeof(*flow), GFP_KERNEL);
35851b9a07eeSLeon Romanovsky 	parse_attr = kvzalloc(sizeof(*parse_attr), GFP_KERNEL);
3586ff7ea04aSGustavo A. R. Silva 	if (!parse_attr || !flow)
3587ff7ea04aSGustavo A. R. Silva 		goto err_free;
3588c620b772SAriel Levkovich 
3589c620b772SAriel Levkovich 	flow->flags = flow_flags;
3590c620b772SAriel Levkovich 	flow->cookie = f->cookie;
3591c620b772SAriel Levkovich 	flow->priv = priv;
3592c620b772SAriel Levkovich 
3593e36db1eeSRoi Dayan 	attr = mlx5_alloc_flow_attr(mlx5e_get_flow_namespace(flow));
3594ff7ea04aSGustavo A. R. Silva 	if (!attr)
3595e3a2b7edSAmir Vadai 		goto err_free;
3596ff7ea04aSGustavo A. R. Silva 
3597c620b772SAriel Levkovich 	flow->attr = attr;
3598e3a2b7edSAmir Vadai 
35995a7e5bcbSVlad Buslov 	for (out_index = 0; out_index < MLX5_MAX_FLOW_FWD_VPORTS; out_index++)
36005a7e5bcbSVlad Buslov 		INIT_LIST_HEAD(&flow->encaps[out_index].list);
36015a7e5bcbSVlad Buslov 	INIT_LIST_HEAD(&flow->hairpin);
360214e6b038SEli Cohen 	INIT_LIST_HEAD(&flow->l3_to_l2_reformat);
36035a7e5bcbSVlad Buslov 	refcount_set(&flow->refcnt, 1);
360495435ad7SVlad Buslov 	init_completion(&flow->init_done);
3605362980eaSVlad Buslov 	init_completion(&flow->del_hw_done);
3606e3a2b7edSAmir Vadai 
3607a88780a9SRoi Dayan 	*__flow = flow;
3608a88780a9SRoi Dayan 	*__parse_attr = parse_attr;
3609a88780a9SRoi Dayan 
3610a88780a9SRoi Dayan 	return 0;
3611a88780a9SRoi Dayan 
3612a88780a9SRoi Dayan err_free:
3613a88780a9SRoi Dayan 	kfree(flow);
3614a88780a9SRoi Dayan 	kvfree(parse_attr);
3615a88780a9SRoi Dayan 	return err;
3616adb4c123SOr Gerlitz }
3617adb4c123SOr Gerlitz 
3618988ab9c7STonghao Zhang static void
3619c7569097SAriel Levkovich mlx5e_flow_attr_init(struct mlx5_flow_attr *attr,
3620c7569097SAriel Levkovich 		     struct mlx5e_tc_flow_parse_attr *parse_attr,
3621c7569097SAriel Levkovich 		     struct flow_cls_offload *f)
3622c7569097SAriel Levkovich {
3623c7569097SAriel Levkovich 	attr->parse_attr = parse_attr;
3624c7569097SAriel Levkovich 	attr->chain = f->common.chain_index;
3625c7569097SAriel Levkovich 	attr->prio = f->common.prio;
3626c7569097SAriel Levkovich }
3627c7569097SAriel Levkovich 
3628c7569097SAriel Levkovich static void
3629c620b772SAriel Levkovich mlx5e_flow_esw_attr_init(struct mlx5_flow_attr *attr,
3630988ab9c7STonghao Zhang 			 struct mlx5e_priv *priv,
3631988ab9c7STonghao Zhang 			 struct mlx5e_tc_flow_parse_attr *parse_attr,
3632f9e30088SPablo Neira Ayuso 			 struct flow_cls_offload *f,
3633988ab9c7STonghao Zhang 			 struct mlx5_eswitch_rep *in_rep,
3634988ab9c7STonghao Zhang 			 struct mlx5_core_dev *in_mdev)
3635988ab9c7STonghao Zhang {
3636988ab9c7STonghao Zhang 	struct mlx5_eswitch *esw = priv->mdev->priv.eswitch;
3637c620b772SAriel Levkovich 	struct mlx5_esw_flow_attr *esw_attr = attr->esw_attr;
3638988ab9c7STonghao Zhang 
3639c7569097SAriel Levkovich 	mlx5e_flow_attr_init(attr, parse_attr, f);
3640988ab9c7STonghao Zhang 
3641988ab9c7STonghao Zhang 	esw_attr->in_rep = in_rep;
3642988ab9c7STonghao Zhang 	esw_attr->in_mdev = in_mdev;
3643988ab9c7STonghao Zhang 
3644988ab9c7STonghao Zhang 	if (MLX5_CAP_ESW(esw->dev, counter_eswitch_affinity) ==
3645988ab9c7STonghao Zhang 	    MLX5_COUNTER_SOURCE_ESWITCH)
3646988ab9c7STonghao Zhang 		esw_attr->counter_dev = in_mdev;
3647988ab9c7STonghao Zhang 	else
3648988ab9c7STonghao Zhang 		esw_attr->counter_dev = priv->mdev;
3649988ab9c7STonghao Zhang }
3650988ab9c7STonghao Zhang 
365171129676SJason Gunthorpe static struct mlx5e_tc_flow *
365204de7ddaSRoi Dayan __mlx5e_add_fdb_flow(struct mlx5e_priv *priv,
3653f9e30088SPablo Neira Ayuso 		     struct flow_cls_offload *f,
3654226f2ca3SVlad Buslov 		     unsigned long flow_flags,
3655d11afc26SOz Shlomo 		     struct net_device *filter_dev,
365604de7ddaSRoi Dayan 		     struct mlx5_eswitch_rep *in_rep,
365771129676SJason Gunthorpe 		     struct mlx5_core_dev *in_mdev)
3658a88780a9SRoi Dayan {
3659f9e30088SPablo Neira Ayuso 	struct flow_rule *rule = flow_cls_offload_flow_rule(f);
3660a88780a9SRoi Dayan 	struct netlink_ext_ack *extack = f->common.extack;
3661a88780a9SRoi Dayan 	struct mlx5e_tc_flow_parse_attr *parse_attr;
3662a88780a9SRoi Dayan 	struct mlx5e_tc_flow *flow;
3663a88780a9SRoi Dayan 	int attr_size, err;
3664a88780a9SRoi Dayan 
3665226f2ca3SVlad Buslov 	flow_flags |= BIT(MLX5E_TC_FLOW_FLAG_ESWITCH);
3666a88780a9SRoi Dayan 	attr_size  = sizeof(struct mlx5_esw_flow_attr);
3667a88780a9SRoi Dayan 	err = mlx5e_alloc_flow(priv, attr_size, f, flow_flags,
3668a88780a9SRoi Dayan 			       &parse_attr, &flow);
3669a88780a9SRoi Dayan 	if (err)
3670a88780a9SRoi Dayan 		goto out;
3671988ab9c7STonghao Zhang 
3672d11afc26SOz Shlomo 	parse_attr->filter_dev = filter_dev;
3673c620b772SAriel Levkovich 	mlx5e_flow_esw_attr_init(flow->attr,
3674988ab9c7STonghao Zhang 				 priv, parse_attr,
3675988ab9c7STonghao Zhang 				 f, in_rep, in_mdev);
3676988ab9c7STonghao Zhang 
367754c177caSOz Shlomo 	err = parse_cls_flower(flow->priv, flow, &parse_attr->spec,
367854c177caSOz Shlomo 			       f, filter_dev);
3679d11afc26SOz Shlomo 	if (err)
3680d11afc26SOz Shlomo 		goto err_free;
3681a88780a9SRoi Dayan 
36827e36feebSPaul Blakey 	/* actions validation depends on parsing the ct matches first */
3683aedd133dSAriel Levkovich 	err = mlx5_tc_ct_match_add(get_ct_priv(priv), &parse_attr->spec, f,
3684c620b772SAriel Levkovich 				   &flow->attr->ct_attr, extack);
3685a88780a9SRoi Dayan 	if (err)
3686a88780a9SRoi Dayan 		goto err_free;
3687a88780a9SRoi Dayan 
3688d4bb0531SRoi Dayan 	/* always set IP version for indirect table handling */
3689d4bb0531SRoi Dayan 	flow->attr->ip_version = mlx5e_tc_get_ip_version(&parse_attr->spec, true);
3690d4bb0531SRoi Dayan 
369170f8019eSRoi Dayan 	err = parse_tc_fdb_actions(priv, &rule->action, flow, extack);
36924c3844d9SPaul Blakey 	if (err)
36934c3844d9SPaul Blakey 		goto err_free;
36944c3844d9SPaul Blakey 
36957040632dSTonghao Zhang 	err = mlx5e_tc_add_fdb_flow(priv, flow, extack);
369695435ad7SVlad Buslov 	complete_all(&flow->init_done);
3697ef06c9eeSRoi Dayan 	if (err) {
3698ef06c9eeSRoi Dayan 		if (!(err == -ENETUNREACH && mlx5_lag_is_multipath(in_mdev)))
3699aa0cbbaeSOr Gerlitz 			goto err_free;
37005c40348cSOr Gerlitz 
3701b4a23329SRoi Dayan 		add_unready_flow(flow);
3702ef06c9eeSRoi Dayan 	}
3703ef06c9eeSRoi Dayan 
370471129676SJason Gunthorpe 	return flow;
3705e3a2b7edSAmir Vadai 
3706e3a2b7edSAmir Vadai err_free:
37075a7e5bcbSVlad Buslov 	mlx5e_flow_put(priv, flow);
3708a88780a9SRoi Dayan out:
370971129676SJason Gunthorpe 	return ERR_PTR(err);
3710a88780a9SRoi Dayan }
3711a88780a9SRoi Dayan 
3712f9e30088SPablo Neira Ayuso static int mlx5e_tc_add_fdb_peer_flow(struct flow_cls_offload *f,
371395dc1902SRoi Dayan 				      struct mlx5e_tc_flow *flow,
3714226f2ca3SVlad Buslov 				      unsigned long flow_flags)
371504de7ddaSRoi Dayan {
371604de7ddaSRoi Dayan 	struct mlx5e_priv *priv = flow->priv, *peer_priv;
371704de7ddaSRoi Dayan 	struct mlx5_eswitch *esw = priv->mdev->priv.eswitch, *peer_esw;
3718c620b772SAriel Levkovich 	struct mlx5_esw_flow_attr *attr = flow->attr->esw_attr;
371904de7ddaSRoi Dayan 	struct mlx5_devcom *devcom = priv->mdev->priv.devcom;
372004de7ddaSRoi Dayan 	struct mlx5e_tc_flow_parse_attr *parse_attr;
372104de7ddaSRoi Dayan 	struct mlx5e_rep_priv *peer_urpriv;
372204de7ddaSRoi Dayan 	struct mlx5e_tc_flow *peer_flow;
372304de7ddaSRoi Dayan 	struct mlx5_core_dev *in_mdev;
372404de7ddaSRoi Dayan 	int err = 0;
372504de7ddaSRoi Dayan 
372604de7ddaSRoi Dayan 	peer_esw = mlx5_devcom_get_peer_data(devcom, MLX5_DEVCOM_ESW_OFFLOADS);
372704de7ddaSRoi Dayan 	if (!peer_esw)
372804de7ddaSRoi Dayan 		return -ENODEV;
372904de7ddaSRoi Dayan 
373004de7ddaSRoi Dayan 	peer_urpriv = mlx5_eswitch_get_uplink_priv(peer_esw, REP_ETH);
373104de7ddaSRoi Dayan 	peer_priv = netdev_priv(peer_urpriv->netdev);
373204de7ddaSRoi Dayan 
373304de7ddaSRoi Dayan 	/* in_mdev is assigned of which the packet originated from.
373404de7ddaSRoi Dayan 	 * So packets redirected to uplink use the same mdev of the
373504de7ddaSRoi Dayan 	 * original flow and packets redirected from uplink use the
373604de7ddaSRoi Dayan 	 * peer mdev.
373704de7ddaSRoi Dayan 	 */
3738c620b772SAriel Levkovich 	if (attr->in_rep->vport == MLX5_VPORT_UPLINK)
373904de7ddaSRoi Dayan 		in_mdev = peer_priv->mdev;
374004de7ddaSRoi Dayan 	else
374104de7ddaSRoi Dayan 		in_mdev = priv->mdev;
374204de7ddaSRoi Dayan 
3743c620b772SAriel Levkovich 	parse_attr = flow->attr->parse_attr;
374495dc1902SRoi Dayan 	peer_flow = __mlx5e_add_fdb_flow(peer_priv, f, flow_flags,
374504de7ddaSRoi Dayan 					 parse_attr->filter_dev,
3746c620b772SAriel Levkovich 					 attr->in_rep, in_mdev);
374771129676SJason Gunthorpe 	if (IS_ERR(peer_flow)) {
374871129676SJason Gunthorpe 		err = PTR_ERR(peer_flow);
374904de7ddaSRoi Dayan 		goto out;
375071129676SJason Gunthorpe 	}
375104de7ddaSRoi Dayan 
375204de7ddaSRoi Dayan 	flow->peer_flow = peer_flow;
3753226f2ca3SVlad Buslov 	flow_flag_set(flow, DUP);
375404de7ddaSRoi Dayan 	mutex_lock(&esw->offloads.peer_mutex);
375504de7ddaSRoi Dayan 	list_add_tail(&flow->peer, &esw->offloads.peer_flows);
375604de7ddaSRoi Dayan 	mutex_unlock(&esw->offloads.peer_mutex);
375704de7ddaSRoi Dayan 
375804de7ddaSRoi Dayan out:
375904de7ddaSRoi Dayan 	mlx5_devcom_release_peer_data(devcom, MLX5_DEVCOM_ESW_OFFLOADS);
376004de7ddaSRoi Dayan 	return err;
376104de7ddaSRoi Dayan }
376204de7ddaSRoi Dayan 
376304de7ddaSRoi Dayan static int
376404de7ddaSRoi Dayan mlx5e_add_fdb_flow(struct mlx5e_priv *priv,
3765f9e30088SPablo Neira Ayuso 		   struct flow_cls_offload *f,
3766226f2ca3SVlad Buslov 		   unsigned long flow_flags,
376704de7ddaSRoi Dayan 		   struct net_device *filter_dev,
376804de7ddaSRoi Dayan 		   struct mlx5e_tc_flow **__flow)
376904de7ddaSRoi Dayan {
377004de7ddaSRoi Dayan 	struct mlx5e_rep_priv *rpriv = priv->ppriv;
377104de7ddaSRoi Dayan 	struct mlx5_eswitch_rep *in_rep = rpriv->rep;
377204de7ddaSRoi Dayan 	struct mlx5_core_dev *in_mdev = priv->mdev;
377304de7ddaSRoi Dayan 	struct mlx5e_tc_flow *flow;
377404de7ddaSRoi Dayan 	int err;
377504de7ddaSRoi Dayan 
377671129676SJason Gunthorpe 	flow = __mlx5e_add_fdb_flow(priv, f, flow_flags, filter_dev, in_rep,
377771129676SJason Gunthorpe 				    in_mdev);
377871129676SJason Gunthorpe 	if (IS_ERR(flow))
377971129676SJason Gunthorpe 		return PTR_ERR(flow);
378004de7ddaSRoi Dayan 
378104de7ddaSRoi Dayan 	if (is_peer_flow_needed(flow)) {
378295dc1902SRoi Dayan 		err = mlx5e_tc_add_fdb_peer_flow(f, flow, flow_flags);
378304de7ddaSRoi Dayan 		if (err) {
378404de7ddaSRoi Dayan 			mlx5e_tc_del_fdb_flow(priv, flow);
378504de7ddaSRoi Dayan 			goto out;
378604de7ddaSRoi Dayan 		}
378704de7ddaSRoi Dayan 	}
378804de7ddaSRoi Dayan 
378904de7ddaSRoi Dayan 	*__flow = flow;
379004de7ddaSRoi Dayan 
379104de7ddaSRoi Dayan 	return 0;
379204de7ddaSRoi Dayan 
379304de7ddaSRoi Dayan out:
379404de7ddaSRoi Dayan 	return err;
379504de7ddaSRoi Dayan }
379604de7ddaSRoi Dayan 
3797a88780a9SRoi Dayan static int
3798a88780a9SRoi Dayan mlx5e_add_nic_flow(struct mlx5e_priv *priv,
3799f9e30088SPablo Neira Ayuso 		   struct flow_cls_offload *f,
3800226f2ca3SVlad Buslov 		   unsigned long flow_flags,
3801d11afc26SOz Shlomo 		   struct net_device *filter_dev,
3802a88780a9SRoi Dayan 		   struct mlx5e_tc_flow **__flow)
3803a88780a9SRoi Dayan {
3804f9e30088SPablo Neira Ayuso 	struct flow_rule *rule = flow_cls_offload_flow_rule(f);
3805a88780a9SRoi Dayan 	struct netlink_ext_ack *extack = f->common.extack;
3806a88780a9SRoi Dayan 	struct mlx5e_tc_flow_parse_attr *parse_attr;
3807a88780a9SRoi Dayan 	struct mlx5e_tc_flow *flow;
3808a88780a9SRoi Dayan 	int attr_size, err;
3809a88780a9SRoi Dayan 
3810c7569097SAriel Levkovich 	if (!MLX5_CAP_FLOWTABLE_NIC_RX(priv->mdev, ignore_flow_level)) {
3811bf07aa73SPaul Blakey 		if (!tc_cls_can_offload_and_chain0(priv->netdev, &f->common))
3812bf07aa73SPaul Blakey 			return -EOPNOTSUPP;
3813c7569097SAriel Levkovich 	} else if (!tc_can_offload_extack(priv->netdev, f->common.extack)) {
3814c7569097SAriel Levkovich 		return -EOPNOTSUPP;
3815c7569097SAriel Levkovich 	}
3816bf07aa73SPaul Blakey 
3817226f2ca3SVlad Buslov 	flow_flags |= BIT(MLX5E_TC_FLOW_FLAG_NIC);
3818a88780a9SRoi Dayan 	attr_size  = sizeof(struct mlx5_nic_flow_attr);
3819a88780a9SRoi Dayan 	err = mlx5e_alloc_flow(priv, attr_size, f, flow_flags,
3820a88780a9SRoi Dayan 			       &parse_attr, &flow);
3821a88780a9SRoi Dayan 	if (err)
3822a88780a9SRoi Dayan 		goto out;
3823a88780a9SRoi Dayan 
3824d11afc26SOz Shlomo 	parse_attr->filter_dev = filter_dev;
3825c7569097SAriel Levkovich 	mlx5e_flow_attr_init(flow->attr, parse_attr, f);
3826c7569097SAriel Levkovich 
382754c177caSOz Shlomo 	err = parse_cls_flower(flow->priv, flow, &parse_attr->spec,
382854c177caSOz Shlomo 			       f, filter_dev);
3829d11afc26SOz Shlomo 	if (err)
3830d11afc26SOz Shlomo 		goto err_free;
3831d11afc26SOz Shlomo 
3832aedd133dSAriel Levkovich 	err = mlx5_tc_ct_match_add(get_ct_priv(priv), &parse_attr->spec, f,
3833aedd133dSAriel Levkovich 				   &flow->attr->ct_attr, extack);
3834aedd133dSAriel Levkovich 	if (err)
3835aedd133dSAriel Levkovich 		goto err_free;
3836aedd133dSAriel Levkovich 
3837c6cfe113SRoi Dayan 	err = parse_tc_nic_actions(priv, &rule->action, flow, extack);
3838a88780a9SRoi Dayan 	if (err)
3839a88780a9SRoi Dayan 		goto err_free;
3840a88780a9SRoi Dayan 
3841c6cfe113SRoi Dayan 	err = mlx5e_tc_add_nic_flow(priv, flow, extack);
3842a88780a9SRoi Dayan 	if (err)
3843a88780a9SRoi Dayan 		goto err_free;
3844a88780a9SRoi Dayan 
3845226f2ca3SVlad Buslov 	flow_flag_set(flow, OFFLOADED);
3846a88780a9SRoi Dayan 	*__flow = flow;
3847a88780a9SRoi Dayan 
3848a88780a9SRoi Dayan 	return 0;
3849a88780a9SRoi Dayan 
3850a88780a9SRoi Dayan err_free:
38518914add2SVlad Buslov 	flow_flag_set(flow, FAILED);
38522c0e5cf5SPaul Blakey 	mlx5e_mod_hdr_dealloc(&parse_attr->mod_hdr_acts);
38535a7e5bcbSVlad Buslov 	mlx5e_flow_put(priv, flow);
3854a88780a9SRoi Dayan out:
3855a88780a9SRoi Dayan 	return err;
3856a88780a9SRoi Dayan }
3857a88780a9SRoi Dayan 
3858a88780a9SRoi Dayan static int
3859a88780a9SRoi Dayan mlx5e_tc_add_flow(struct mlx5e_priv *priv,
3860f9e30088SPablo Neira Ayuso 		  struct flow_cls_offload *f,
3861226f2ca3SVlad Buslov 		  unsigned long flags,
3862d11afc26SOz Shlomo 		  struct net_device *filter_dev,
3863a88780a9SRoi Dayan 		  struct mlx5e_tc_flow **flow)
3864a88780a9SRoi Dayan {
3865a88780a9SRoi Dayan 	struct mlx5_eswitch *esw = priv->mdev->priv.eswitch;
3866226f2ca3SVlad Buslov 	unsigned long flow_flags;
3867a88780a9SRoi Dayan 	int err;
3868a88780a9SRoi Dayan 
3869a88780a9SRoi Dayan 	get_flags(flags, &flow_flags);
3870a88780a9SRoi Dayan 
3871bf07aa73SPaul Blakey 	if (!tc_can_offload_extack(priv->netdev, f->common.extack))
3872bf07aa73SPaul Blakey 		return -EOPNOTSUPP;
3873bf07aa73SPaul Blakey 
3874f6455de0SBodong Wang 	if (esw && esw->mode == MLX5_ESWITCH_OFFLOADS)
3875d11afc26SOz Shlomo 		err = mlx5e_add_fdb_flow(priv, f, flow_flags,
3876d11afc26SOz Shlomo 					 filter_dev, flow);
3877a88780a9SRoi Dayan 	else
3878d11afc26SOz Shlomo 		err = mlx5e_add_nic_flow(priv, f, flow_flags,
3879d11afc26SOz Shlomo 					 filter_dev, flow);
3880a88780a9SRoi Dayan 
3881a88780a9SRoi Dayan 	return err;
3882a88780a9SRoi Dayan }
3883a88780a9SRoi Dayan 
3884553f9328SVu Pham static bool is_flow_rule_duplicate_allowed(struct net_device *dev,
3885553f9328SVu Pham 					   struct mlx5e_rep_priv *rpriv)
3886553f9328SVu Pham {
3887553f9328SVu Pham 	/* Offloaded flow rule is allowed to duplicate on non-uplink representor
38882fb15e72SVlad Buslov 	 * sharing tc block with other slaves of a lag device. Rpriv can be NULL if this
38892fb15e72SVlad Buslov 	 * function is called from NIC mode.
3890553f9328SVu Pham 	 */
38912fb15e72SVlad Buslov 	return netif_is_lag_port(dev) && rpriv && rpriv->rep->vport != MLX5_VPORT_UPLINK;
3892553f9328SVu Pham }
3893553f9328SVu Pham 
389471d82d2aSOz Shlomo int mlx5e_configure_flower(struct net_device *dev, struct mlx5e_priv *priv,
3895226f2ca3SVlad Buslov 			   struct flow_cls_offload *f, unsigned long flags)
3896a88780a9SRoi Dayan {
3897a88780a9SRoi Dayan 	struct netlink_ext_ack *extack = f->common.extack;
3898d9ee0491SOr Gerlitz 	struct rhashtable *tc_ht = get_tc_ht(priv, flags);
3899553f9328SVu Pham 	struct mlx5e_rep_priv *rpriv = priv->ppriv;
3900a88780a9SRoi Dayan 	struct mlx5e_tc_flow *flow;
3901a88780a9SRoi Dayan 	int err = 0;
3902a88780a9SRoi Dayan 
39037dc84de9SRoi Dayan 	if (!mlx5_esw_hold(priv->mdev))
39047dc84de9SRoi Dayan 		return -EAGAIN;
39057dc84de9SRoi Dayan 
39067dc84de9SRoi Dayan 	mlx5_esw_get(priv->mdev);
39077dc84de9SRoi Dayan 
3908c5d326b2SVlad Buslov 	rcu_read_lock();
3909c5d326b2SVlad Buslov 	flow = rhashtable_lookup(tc_ht, &f->cookie, tc_ht_params);
3910a88780a9SRoi Dayan 	if (flow) {
3911553f9328SVu Pham 		/* Same flow rule offloaded to non-uplink representor sharing tc block,
3912553f9328SVu Pham 		 * just return 0.
3913553f9328SVu Pham 		 */
3914553f9328SVu Pham 		if (is_flow_rule_duplicate_allowed(dev, rpriv) && flow->orig_dev != dev)
3915c1aea9e1SVlad Buslov 			goto rcu_unlock;
3916553f9328SVu Pham 
3917a88780a9SRoi Dayan 		NL_SET_ERR_MSG_MOD(extack,
3918a88780a9SRoi Dayan 				   "flow cookie already exists, ignoring");
3919a88780a9SRoi Dayan 		netdev_warn_once(priv->netdev,
3920a88780a9SRoi Dayan 				 "flow cookie %lx already exists, ignoring\n",
3921a88780a9SRoi Dayan 				 f->cookie);
39220e1c1a2fSVlad Buslov 		err = -EEXIST;
3923c1aea9e1SVlad Buslov 		goto rcu_unlock;
3924a88780a9SRoi Dayan 	}
3925c1aea9e1SVlad Buslov rcu_unlock:
3926c1aea9e1SVlad Buslov 	rcu_read_unlock();
3927c1aea9e1SVlad Buslov 	if (flow)
3928c1aea9e1SVlad Buslov 		goto out;
3929a88780a9SRoi Dayan 
39307a978759SDmytro Linkin 	trace_mlx5e_configure_flower(f);
3931d11afc26SOz Shlomo 	err = mlx5e_tc_add_flow(priv, f, flags, dev, &flow);
3932a88780a9SRoi Dayan 	if (err)
3933a88780a9SRoi Dayan 		goto out;
3934a88780a9SRoi Dayan 
3935553f9328SVu Pham 	/* Flow rule offloaded to non-uplink representor sharing tc block,
3936553f9328SVu Pham 	 * set the flow's owner dev.
3937553f9328SVu Pham 	 */
3938553f9328SVu Pham 	if (is_flow_rule_duplicate_allowed(dev, rpriv))
3939553f9328SVu Pham 		flow->orig_dev = dev;
3940553f9328SVu Pham 
3941c5d326b2SVlad Buslov 	err = rhashtable_lookup_insert_fast(tc_ht, &flow->node, tc_ht_params);
3942a88780a9SRoi Dayan 	if (err)
3943a88780a9SRoi Dayan 		goto err_free;
3944a88780a9SRoi Dayan 
39457dc84de9SRoi Dayan 	mlx5_esw_release(priv->mdev);
3946a88780a9SRoi Dayan 	return 0;
3947a88780a9SRoi Dayan 
3948a88780a9SRoi Dayan err_free:
39495a7e5bcbSVlad Buslov 	mlx5e_flow_put(priv, flow);
3950a88780a9SRoi Dayan out:
39517dc84de9SRoi Dayan 	mlx5_esw_put(priv->mdev);
39527dc84de9SRoi Dayan 	mlx5_esw_release(priv->mdev);
3953e3a2b7edSAmir Vadai 	return err;
3954e3a2b7edSAmir Vadai }
3955e3a2b7edSAmir Vadai 
39568f8ae895SOr Gerlitz static bool same_flow_direction(struct mlx5e_tc_flow *flow, int flags)
39578f8ae895SOr Gerlitz {
3958226f2ca3SVlad Buslov 	bool dir_ingress = !!(flags & MLX5_TC_FLAG(INGRESS));
3959226f2ca3SVlad Buslov 	bool dir_egress = !!(flags & MLX5_TC_FLAG(EGRESS));
39608f8ae895SOr Gerlitz 
3961226f2ca3SVlad Buslov 	return flow_flag_test(flow, INGRESS) == dir_ingress &&
3962226f2ca3SVlad Buslov 		flow_flag_test(flow, EGRESS) == dir_egress;
39638f8ae895SOr Gerlitz }
39648f8ae895SOr Gerlitz 
396571d82d2aSOz Shlomo int mlx5e_delete_flower(struct net_device *dev, struct mlx5e_priv *priv,
3966226f2ca3SVlad Buslov 			struct flow_cls_offload *f, unsigned long flags)
3967e3a2b7edSAmir Vadai {
3968d9ee0491SOr Gerlitz 	struct rhashtable *tc_ht = get_tc_ht(priv, flags);
3969e3a2b7edSAmir Vadai 	struct mlx5e_tc_flow *flow;
3970c5d326b2SVlad Buslov 	int err;
3971e3a2b7edSAmir Vadai 
3972c5d326b2SVlad Buslov 	rcu_read_lock();
3973ab818362STaehee Yoo 	flow = rhashtable_lookup(tc_ht, &f->cookie, tc_ht_params);
3974c5d326b2SVlad Buslov 	if (!flow || !same_flow_direction(flow, flags)) {
3975c5d326b2SVlad Buslov 		err = -EINVAL;
3976c5d326b2SVlad Buslov 		goto errout;
3977c5d326b2SVlad Buslov 	}
3978e3a2b7edSAmir Vadai 
3979c5d326b2SVlad Buslov 	/* Only delete the flow if it doesn't have MLX5E_TC_FLOW_DELETED flag
3980c5d326b2SVlad Buslov 	 * set.
3981c5d326b2SVlad Buslov 	 */
3982c5d326b2SVlad Buslov 	if (flow_flag_test_and_set(flow, DELETED)) {
3983c5d326b2SVlad Buslov 		err = -EINVAL;
3984c5d326b2SVlad Buslov 		goto errout;
3985c5d326b2SVlad Buslov 	}
398605866c82SOr Gerlitz 	rhashtable_remove_fast(tc_ht, &flow->node, tc_ht_params);
3987c5d326b2SVlad Buslov 	rcu_read_unlock();
3988e3a2b7edSAmir Vadai 
39897a978759SDmytro Linkin 	trace_mlx5e_delete_flower(f);
39905a7e5bcbSVlad Buslov 	mlx5e_flow_put(priv, flow);
3991e3a2b7edSAmir Vadai 
39927dc84de9SRoi Dayan 	mlx5_esw_put(priv->mdev);
3993e3a2b7edSAmir Vadai 	return 0;
3994c5d326b2SVlad Buslov 
3995c5d326b2SVlad Buslov errout:
3996c5d326b2SVlad Buslov 	rcu_read_unlock();
3997c5d326b2SVlad Buslov 	return err;
3998e3a2b7edSAmir Vadai }
3999e3a2b7edSAmir Vadai 
400071d82d2aSOz Shlomo int mlx5e_stats_flower(struct net_device *dev, struct mlx5e_priv *priv,
4001226f2ca3SVlad Buslov 		       struct flow_cls_offload *f, unsigned long flags)
4002aad7e08dSAmir Vadai {
400304de7ddaSRoi Dayan 	struct mlx5_devcom *devcom = priv->mdev->priv.devcom;
4004d9ee0491SOr Gerlitz 	struct rhashtable *tc_ht = get_tc_ht(priv, flags);
400504de7ddaSRoi Dayan 	struct mlx5_eswitch *peer_esw;
4006aad7e08dSAmir Vadai 	struct mlx5e_tc_flow *flow;
4007aad7e08dSAmir Vadai 	struct mlx5_fc *counter;
4008316d5f72SRoi Dayan 	u64 lastuse = 0;
4009316d5f72SRoi Dayan 	u64 packets = 0;
4010316d5f72SRoi Dayan 	u64 bytes = 0;
40115a7e5bcbSVlad Buslov 	int err = 0;
4012aad7e08dSAmir Vadai 
4013c5d326b2SVlad Buslov 	rcu_read_lock();
4014c5d326b2SVlad Buslov 	flow = mlx5e_flow_get(rhashtable_lookup(tc_ht, &f->cookie,
40155a7e5bcbSVlad Buslov 						tc_ht_params));
4016c5d326b2SVlad Buslov 	rcu_read_unlock();
40175a7e5bcbSVlad Buslov 	if (IS_ERR(flow))
40185a7e5bcbSVlad Buslov 		return PTR_ERR(flow);
40195a7e5bcbSVlad Buslov 
40205a7e5bcbSVlad Buslov 	if (!same_flow_direction(flow, flags)) {
40215a7e5bcbSVlad Buslov 		err = -EINVAL;
40225a7e5bcbSVlad Buslov 		goto errout;
40235a7e5bcbSVlad Buslov 	}
4024aad7e08dSAmir Vadai 
40254c3844d9SPaul Blakey 	if (mlx5e_is_offloaded_flow(flow) || flow_flag_test(flow, CT)) {
4026b8aee822SMark Bloch 		counter = mlx5e_tc_get_counter(flow);
4027aad7e08dSAmir Vadai 		if (!counter)
40285a7e5bcbSVlad Buslov 			goto errout;
4029aad7e08dSAmir Vadai 
4030aad7e08dSAmir Vadai 		mlx5_fc_query_cached(counter, &bytes, &packets, &lastuse);
4031316d5f72SRoi Dayan 	}
4032aad7e08dSAmir Vadai 
4033316d5f72SRoi Dayan 	/* Under multipath it's possible for one rule to be currently
4034316d5f72SRoi Dayan 	 * un-offloaded while the other rule is offloaded.
4035316d5f72SRoi Dayan 	 */
403604de7ddaSRoi Dayan 	peer_esw = mlx5_devcom_get_peer_data(devcom, MLX5_DEVCOM_ESW_OFFLOADS);
403704de7ddaSRoi Dayan 	if (!peer_esw)
403804de7ddaSRoi Dayan 		goto out;
403904de7ddaSRoi Dayan 
4040226f2ca3SVlad Buslov 	if (flow_flag_test(flow, DUP) &&
4041226f2ca3SVlad Buslov 	    flow_flag_test(flow->peer_flow, OFFLOADED)) {
404204de7ddaSRoi Dayan 		u64 bytes2;
404304de7ddaSRoi Dayan 		u64 packets2;
404404de7ddaSRoi Dayan 		u64 lastuse2;
404504de7ddaSRoi Dayan 
404604de7ddaSRoi Dayan 		counter = mlx5e_tc_get_counter(flow->peer_flow);
4047316d5f72SRoi Dayan 		if (!counter)
4048316d5f72SRoi Dayan 			goto no_peer_counter;
404904de7ddaSRoi Dayan 		mlx5_fc_query_cached(counter, &bytes2, &packets2, &lastuse2);
405004de7ddaSRoi Dayan 
405104de7ddaSRoi Dayan 		bytes += bytes2;
405204de7ddaSRoi Dayan 		packets += packets2;
405304de7ddaSRoi Dayan 		lastuse = max_t(u64, lastuse, lastuse2);
405404de7ddaSRoi Dayan 	}
405504de7ddaSRoi Dayan 
4056316d5f72SRoi Dayan no_peer_counter:
405704de7ddaSRoi Dayan 	mlx5_devcom_release_peer_data(devcom, MLX5_DEVCOM_ESW_OFFLOADS);
405804de7ddaSRoi Dayan out:
40594b61d3e8SPo Liu 	flow_stats_update(&f->stats, bytes, packets, 0, lastuse,
406093a129ebSJiri Pirko 			  FLOW_ACTION_HW_STATS_DELAYED);
40617a978759SDmytro Linkin 	trace_mlx5e_stats_flower(f);
40625a7e5bcbSVlad Buslov errout:
40635a7e5bcbSVlad Buslov 	mlx5e_flow_put(priv, flow);
40645a7e5bcbSVlad Buslov 	return err;
4065aad7e08dSAmir Vadai }
4066aad7e08dSAmir Vadai 
40671fe3e316SParav Pandit static int apply_police_params(struct mlx5e_priv *priv, u64 rate,
4068fcb64c0fSEli Cohen 			       struct netlink_ext_ack *extack)
4069fcb64c0fSEli Cohen {
4070fcb64c0fSEli Cohen 	struct mlx5e_rep_priv *rpriv = priv->ppriv;
4071fcb64c0fSEli Cohen 	struct mlx5_eswitch *esw;
40721fe3e316SParav Pandit 	u32 rate_mbps = 0;
4073fcb64c0fSEli Cohen 	u16 vport_num;
4074fcb64c0fSEli Cohen 	int err;
4075fcb64c0fSEli Cohen 
4076e401a184SEli Cohen 	vport_num = rpriv->rep->vport;
4077e401a184SEli Cohen 	if (vport_num >= MLX5_VPORT_ECPF) {
4078e401a184SEli Cohen 		NL_SET_ERR_MSG_MOD(extack,
4079e401a184SEli Cohen 				   "Ingress rate limit is supported only for Eswitch ports connected to VFs");
4080e401a184SEli Cohen 		return -EOPNOTSUPP;
4081e401a184SEli Cohen 	}
4082e401a184SEli Cohen 
4083fcb64c0fSEli Cohen 	esw = priv->mdev->priv.eswitch;
4084fcb64c0fSEli Cohen 	/* rate is given in bytes/sec.
4085fcb64c0fSEli Cohen 	 * First convert to bits/sec and then round to the nearest mbit/secs.
4086fcb64c0fSEli Cohen 	 * mbit means million bits.
4087fcb64c0fSEli Cohen 	 * Moreover, if rate is non zero we choose to configure to a minimum of
4088fcb64c0fSEli Cohen 	 * 1 mbit/sec.
4089fcb64c0fSEli Cohen 	 */
40901fe3e316SParav Pandit 	if (rate) {
40911fe3e316SParav Pandit 		rate = (rate * BITS_PER_BYTE) + 500000;
40928b90d897SParav Pandit 		do_div(rate, 1000000);
40938b90d897SParav Pandit 		rate_mbps = max_t(u32, rate, 1);
40941fe3e316SParav Pandit 	}
40951fe3e316SParav Pandit 
40962d116e3eSDmytro Linkin 	err = mlx5_esw_qos_modify_vport_rate(esw, vport_num, rate_mbps);
4097fcb64c0fSEli Cohen 	if (err)
4098fcb64c0fSEli Cohen 		NL_SET_ERR_MSG_MOD(extack, "failed applying action to hardware");
4099fcb64c0fSEli Cohen 
4100fcb64c0fSEli Cohen 	return err;
4101fcb64c0fSEli Cohen }
4102fcb64c0fSEli Cohen 
4103fcb64c0fSEli Cohen static int scan_tc_matchall_fdb_actions(struct mlx5e_priv *priv,
4104fcb64c0fSEli Cohen 					struct flow_action *flow_action,
4105fcb64c0fSEli Cohen 					struct netlink_ext_ack *extack)
4106fcb64c0fSEli Cohen {
4107fcb64c0fSEli Cohen 	struct mlx5e_rep_priv *rpriv = priv->ppriv;
4108fcb64c0fSEli Cohen 	const struct flow_action_entry *act;
4109fcb64c0fSEli Cohen 	int err;
4110fcb64c0fSEli Cohen 	int i;
4111fcb64c0fSEli Cohen 
4112fcb64c0fSEli Cohen 	if (!flow_action_has_entries(flow_action)) {
4113fcb64c0fSEli Cohen 		NL_SET_ERR_MSG_MOD(extack, "matchall called with no action");
4114fcb64c0fSEli Cohen 		return -EINVAL;
4115fcb64c0fSEli Cohen 	}
4116fcb64c0fSEli Cohen 
4117fcb64c0fSEli Cohen 	if (!flow_offload_has_one_action(flow_action)) {
4118fcb64c0fSEli Cohen 		NL_SET_ERR_MSG_MOD(extack, "matchall policing support only a single action");
4119fcb64c0fSEli Cohen 		return -EOPNOTSUPP;
4120fcb64c0fSEli Cohen 	}
4121fcb64c0fSEli Cohen 
41220885ae1aSAbhiram R N 	if (!flow_action_basic_hw_stats_check(flow_action, extack)) {
41230885ae1aSAbhiram R N 		NL_SET_ERR_MSG_MOD(extack, "Flow action HW stats type is not supported");
4124319a1d19SJiri Pirko 		return -EOPNOTSUPP;
41250885ae1aSAbhiram R N 	}
4126319a1d19SJiri Pirko 
4127fcb64c0fSEli Cohen 	flow_action_for_each(i, act, flow_action) {
4128fcb64c0fSEli Cohen 		switch (act->id) {
4129fcb64c0fSEli Cohen 		case FLOW_ACTION_POLICE:
41306a56e199SBaowen Zheng 			if (act->police.rate_pkt_ps) {
41316a56e199SBaowen Zheng 				NL_SET_ERR_MSG_MOD(extack, "QoS offload not support packets per second");
41326a56e199SBaowen Zheng 				return -EOPNOTSUPP;
41336a56e199SBaowen Zheng 			}
4134fcb64c0fSEli Cohen 			err = apply_police_params(priv, act->police.rate_bytes_ps, extack);
4135fcb64c0fSEli Cohen 			if (err)
4136fcb64c0fSEli Cohen 				return err;
4137fcb64c0fSEli Cohen 
4138fcb64c0fSEli Cohen 			rpriv->prev_vf_vport_stats = priv->stats.vf_vport;
4139fcb64c0fSEli Cohen 			break;
4140fcb64c0fSEli Cohen 		default:
4141fcb64c0fSEli Cohen 			NL_SET_ERR_MSG_MOD(extack, "mlx5 supports only police action for matchall");
4142fcb64c0fSEli Cohen 			return -EOPNOTSUPP;
4143fcb64c0fSEli Cohen 		}
4144fcb64c0fSEli Cohen 	}
4145fcb64c0fSEli Cohen 
4146fcb64c0fSEli Cohen 	return 0;
4147fcb64c0fSEli Cohen }
4148fcb64c0fSEli Cohen 
4149fcb64c0fSEli Cohen int mlx5e_tc_configure_matchall(struct mlx5e_priv *priv,
4150fcb64c0fSEli Cohen 				struct tc_cls_matchall_offload *ma)
4151fcb64c0fSEli Cohen {
4152fcb64c0fSEli Cohen 	struct netlink_ext_ack *extack = ma->common.extack;
4153fcb64c0fSEli Cohen 
41547b83355fSEli Cohen 	if (ma->common.prio != 1) {
4155fcb64c0fSEli Cohen 		NL_SET_ERR_MSG_MOD(extack, "only priority 1 is supported");
4156fcb64c0fSEli Cohen 		return -EINVAL;
4157fcb64c0fSEli Cohen 	}
4158fcb64c0fSEli Cohen 
4159fcb64c0fSEli Cohen 	return scan_tc_matchall_fdb_actions(priv, &ma->rule->action, extack);
4160fcb64c0fSEli Cohen }
4161fcb64c0fSEli Cohen 
4162fcb64c0fSEli Cohen int mlx5e_tc_delete_matchall(struct mlx5e_priv *priv,
4163fcb64c0fSEli Cohen 			     struct tc_cls_matchall_offload *ma)
4164fcb64c0fSEli Cohen {
4165fcb64c0fSEli Cohen 	struct netlink_ext_ack *extack = ma->common.extack;
4166fcb64c0fSEli Cohen 
4167fcb64c0fSEli Cohen 	return apply_police_params(priv, 0, extack);
4168fcb64c0fSEli Cohen }
4169fcb64c0fSEli Cohen 
4170fcb64c0fSEli Cohen void mlx5e_tc_stats_matchall(struct mlx5e_priv *priv,
4171fcb64c0fSEli Cohen 			     struct tc_cls_matchall_offload *ma)
4172fcb64c0fSEli Cohen {
4173fcb64c0fSEli Cohen 	struct mlx5e_rep_priv *rpriv = priv->ppriv;
4174fcb64c0fSEli Cohen 	struct rtnl_link_stats64 cur_stats;
4175fcb64c0fSEli Cohen 	u64 dbytes;
4176fcb64c0fSEli Cohen 	u64 dpkts;
4177fcb64c0fSEli Cohen 
4178fcb64c0fSEli Cohen 	cur_stats = priv->stats.vf_vport;
4179fcb64c0fSEli Cohen 	dpkts = cur_stats.rx_packets - rpriv->prev_vf_vport_stats.rx_packets;
4180fcb64c0fSEli Cohen 	dbytes = cur_stats.rx_bytes - rpriv->prev_vf_vport_stats.rx_bytes;
4181fcb64c0fSEli Cohen 	rpriv->prev_vf_vport_stats = cur_stats;
41824b61d3e8SPo Liu 	flow_stats_update(&ma->stats, dbytes, dpkts, 0, jiffies,
418393a129ebSJiri Pirko 			  FLOW_ACTION_HW_STATS_DELAYED);
4184fcb64c0fSEli Cohen }
4185fcb64c0fSEli Cohen 
41864d8fcf21SAlaa Hleihel static void mlx5e_tc_hairpin_update_dead_peer(struct mlx5e_priv *priv,
41874d8fcf21SAlaa Hleihel 					      struct mlx5e_priv *peer_priv)
41884d8fcf21SAlaa Hleihel {
41894d8fcf21SAlaa Hleihel 	struct mlx5_core_dev *peer_mdev = peer_priv->mdev;
4190db76ca24SVlad Buslov 	struct mlx5e_hairpin_entry *hpe, *tmp;
4191db76ca24SVlad Buslov 	LIST_HEAD(init_wait_list);
41924d8fcf21SAlaa Hleihel 	u16 peer_vhca_id;
41934d8fcf21SAlaa Hleihel 	int bkt;
41944d8fcf21SAlaa Hleihel 
4195ab3f3d5eSRoi Dayan 	if (!mlx5e_same_hw_devs(priv, peer_priv))
41964d8fcf21SAlaa Hleihel 		return;
41974d8fcf21SAlaa Hleihel 
41984d8fcf21SAlaa Hleihel 	peer_vhca_id = MLX5_CAP_GEN(peer_mdev, vhca_id);
41994d8fcf21SAlaa Hleihel 
4200b32accdaSVlad Buslov 	mutex_lock(&priv->fs.tc.hairpin_tbl_lock);
4201db76ca24SVlad Buslov 	hash_for_each(priv->fs.tc.hairpin_tbl, bkt, hpe, hairpin_hlist)
4202db76ca24SVlad Buslov 		if (refcount_inc_not_zero(&hpe->refcnt))
4203db76ca24SVlad Buslov 			list_add(&hpe->dead_peer_wait_list, &init_wait_list);
4204b32accdaSVlad Buslov 	mutex_unlock(&priv->fs.tc.hairpin_tbl_lock);
4205db76ca24SVlad Buslov 
4206db76ca24SVlad Buslov 	list_for_each_entry_safe(hpe, tmp, &init_wait_list, dead_peer_wait_list) {
4207db76ca24SVlad Buslov 		wait_for_completion(&hpe->res_ready);
4208db76ca24SVlad Buslov 		if (!IS_ERR_OR_NULL(hpe->hp) && hpe->peer_vhca_id == peer_vhca_id)
4209a3e5fd93SDima Chumak 			mlx5_core_hairpin_clear_dead_peer(hpe->hp->pair);
4210db76ca24SVlad Buslov 
4211db76ca24SVlad Buslov 		mlx5e_hairpin_put(priv, hpe);
4212db76ca24SVlad Buslov 	}
42134d8fcf21SAlaa Hleihel }
42144d8fcf21SAlaa Hleihel 
42154d8fcf21SAlaa Hleihel static int mlx5e_tc_netdev_event(struct notifier_block *this,
42164d8fcf21SAlaa Hleihel 				 unsigned long event, void *ptr)
42174d8fcf21SAlaa Hleihel {
42184d8fcf21SAlaa Hleihel 	struct net_device *ndev = netdev_notifier_info_to_dev(ptr);
42194d8fcf21SAlaa Hleihel 	struct mlx5e_flow_steering *fs;
42204d8fcf21SAlaa Hleihel 	struct mlx5e_priv *peer_priv;
42214d8fcf21SAlaa Hleihel 	struct mlx5e_tc_table *tc;
42224d8fcf21SAlaa Hleihel 	struct mlx5e_priv *priv;
42234d8fcf21SAlaa Hleihel 
42244d8fcf21SAlaa Hleihel 	if (ndev->netdev_ops != &mlx5e_netdev_ops ||
42254d8fcf21SAlaa Hleihel 	    event != NETDEV_UNREGISTER ||
42264d8fcf21SAlaa Hleihel 	    ndev->reg_state == NETREG_REGISTERED)
42274d8fcf21SAlaa Hleihel 		return NOTIFY_DONE;
42284d8fcf21SAlaa Hleihel 
42294d8fcf21SAlaa Hleihel 	tc = container_of(this, struct mlx5e_tc_table, netdevice_nb);
42304d8fcf21SAlaa Hleihel 	fs = container_of(tc, struct mlx5e_flow_steering, tc);
42314d8fcf21SAlaa Hleihel 	priv = container_of(fs, struct mlx5e_priv, fs);
42324d8fcf21SAlaa Hleihel 	peer_priv = netdev_priv(ndev);
42334d8fcf21SAlaa Hleihel 	if (priv == peer_priv ||
42344d8fcf21SAlaa Hleihel 	    !(priv->netdev->features & NETIF_F_HW_TC))
42354d8fcf21SAlaa Hleihel 		return NOTIFY_DONE;
42364d8fcf21SAlaa Hleihel 
42374d8fcf21SAlaa Hleihel 	mlx5e_tc_hairpin_update_dead_peer(priv, peer_priv);
42384d8fcf21SAlaa Hleihel 
42394d8fcf21SAlaa Hleihel 	return NOTIFY_DONE;
42404d8fcf21SAlaa Hleihel }
42414d8fcf21SAlaa Hleihel 
42426a064674SAriel Levkovich static int mlx5e_tc_nic_get_ft_size(struct mlx5_core_dev *dev)
42436a064674SAriel Levkovich {
42446a064674SAriel Levkovich 	int tc_grp_size, tc_tbl_size;
42456a064674SAriel Levkovich 	u32 max_flow_counter;
42466a064674SAriel Levkovich 
42476a064674SAriel Levkovich 	max_flow_counter = (MLX5_CAP_GEN(dev, max_flow_counter_31_16) << 16) |
42486a064674SAriel Levkovich 			    MLX5_CAP_GEN(dev, max_flow_counter_15_0);
42496a064674SAriel Levkovich 
42506a064674SAriel Levkovich 	tc_grp_size = min_t(int, max_flow_counter, MLX5E_TC_TABLE_MAX_GROUP_SIZE);
42516a064674SAriel Levkovich 
42526a064674SAriel Levkovich 	tc_tbl_size = min_t(int, tc_grp_size * MLX5E_TC_TABLE_NUM_GROUPS,
42536a064674SAriel Levkovich 			    BIT(MLX5_CAP_FLOWTABLE_NIC_RX(dev, log_max_ft_size)));
42546a064674SAriel Levkovich 
42556a064674SAriel Levkovich 	return tc_tbl_size;
42566a064674SAriel Levkovich }
42576a064674SAriel Levkovich 
4258655dc3d2SOr Gerlitz int mlx5e_tc_nic_init(struct mlx5e_priv *priv)
4259e8f887acSAmir Vadai {
4260acff797cSMaor Gottlieb 	struct mlx5e_tc_table *tc = &priv->fs.tc;
42616a064674SAriel Levkovich 	struct mlx5_core_dev *dev = priv->mdev;
4262c9355682SChris Mi 	struct mapping_ctx *chains_mapping;
42636a064674SAriel Levkovich 	struct mlx5_chains_attr attr = {};
42642198b932SRoi Dayan 	u64 mapping_id;
42654d8fcf21SAlaa Hleihel 	int err;
4266e8f887acSAmir Vadai 
4267b2fdf3d0SPaul Blakey 	mlx5e_mod_hdr_tbl_init(&tc->mod_hdr);
4268b6fac0b4SVlad Buslov 	mutex_init(&tc->t_lock);
4269b32accdaSVlad Buslov 	mutex_init(&tc->hairpin_tbl_lock);
42705c65c564SOr Gerlitz 	hash_init(tc->hairpin_tbl);
427111c9c548SOr Gerlitz 
42724d8fcf21SAlaa Hleihel 	err = rhashtable_init(&tc->ht, &tc_ht_params);
42734d8fcf21SAlaa Hleihel 	if (err)
42744d8fcf21SAlaa Hleihel 		return err;
42754d8fcf21SAlaa Hleihel 
42769ba33339SRoi Dayan 	lockdep_set_class(&tc->ht.mutex, &tc_ht_lock_key);
42779ba33339SRoi Dayan 
42782198b932SRoi Dayan 	mapping_id = mlx5_query_nic_system_image_guid(dev);
42792198b932SRoi Dayan 
42802198b932SRoi Dayan 	chains_mapping = mapping_create_for_id(mapping_id, MAPPING_TYPE_CHAIN,
42812198b932SRoi Dayan 					       sizeof(struct mlx5_mapped_obj),
4282c9355682SChris Mi 					       MLX5E_TC_TABLE_CHAIN_TAG_MASK, true);
42832198b932SRoi Dayan 
4284c9355682SChris Mi 	if (IS_ERR(chains_mapping)) {
4285c9355682SChris Mi 		err = PTR_ERR(chains_mapping);
4286c9355682SChris Mi 		goto err_mapping;
4287c9355682SChris Mi 	}
4288c9355682SChris Mi 	tc->mapping = chains_mapping;
4289c9355682SChris Mi 
4290c9355682SChris Mi 	if (MLX5_CAP_FLOWTABLE_NIC_RX(priv->mdev, ignore_flow_level))
4291c7569097SAriel Levkovich 		attr.flags = MLX5_CHAINS_AND_PRIOS_SUPPORTED |
4292c7569097SAriel Levkovich 			MLX5_CHAINS_IGNORE_FLOW_LEVEL_SUPPORTED;
42936a064674SAriel Levkovich 	attr.ns = MLX5_FLOW_NAMESPACE_KERNEL;
42946a064674SAriel Levkovich 	attr.max_ft_sz = mlx5e_tc_nic_get_ft_size(dev);
42956a064674SAriel Levkovich 	attr.max_grp_num = MLX5E_TC_TABLE_NUM_GROUPS;
42966783f0a2SVu Pham 	attr.default_ft = mlx5e_vlan_get_flowtable(priv->fs.vlan);
4297c9355682SChris Mi 	attr.mapping = chains_mapping;
42986a064674SAriel Levkovich 
42996a064674SAriel Levkovich 	tc->chains = mlx5_chains_create(dev, &attr);
43006a064674SAriel Levkovich 	if (IS_ERR(tc->chains)) {
43016a064674SAriel Levkovich 		err = PTR_ERR(tc->chains);
43026a064674SAriel Levkovich 		goto err_chains;
43036a064674SAriel Levkovich 	}
43046a064674SAriel Levkovich 
4305f0da4daaSChris Mi 	tc->post_act = mlx5e_tc_post_act_init(priv, tc->chains, MLX5_FLOW_NAMESPACE_KERNEL);
4306aedd133dSAriel Levkovich 	tc->ct = mlx5_tc_ct_init(priv, tc->chains, &priv->fs.tc.mod_hdr,
4307f0da4daaSChris Mi 				 MLX5_FLOW_NAMESPACE_KERNEL, tc->post_act);
4308aedd133dSAriel Levkovich 
43094d8fcf21SAlaa Hleihel 	tc->netdevice_nb.notifier_call = mlx5e_tc_netdev_event;
4310d48834f9SJiri Pirko 	err = register_netdevice_notifier_dev_net(priv->netdev,
4311d48834f9SJiri Pirko 						  &tc->netdevice_nb,
4312d48834f9SJiri Pirko 						  &tc->netdevice_nn);
4313d48834f9SJiri Pirko 	if (err) {
43144d8fcf21SAlaa Hleihel 		tc->netdevice_nb.notifier_call = NULL;
43154d8fcf21SAlaa Hleihel 		mlx5_core_warn(priv->mdev, "Failed to register netdev notifier\n");
43166a064674SAriel Levkovich 		goto err_reg;
43174d8fcf21SAlaa Hleihel 	}
43184d8fcf21SAlaa Hleihel 
43196a064674SAriel Levkovich 	return 0;
43206a064674SAriel Levkovich 
43216a064674SAriel Levkovich err_reg:
4322aedd133dSAriel Levkovich 	mlx5_tc_ct_clean(tc->ct);
4323f0da4daaSChris Mi 	mlx5e_tc_post_act_destroy(tc->post_act);
43246a064674SAriel Levkovich 	mlx5_chains_destroy(tc->chains);
43256a064674SAriel Levkovich err_chains:
4326c9355682SChris Mi 	mapping_destroy(chains_mapping);
4327c9355682SChris Mi err_mapping:
43286a064674SAriel Levkovich 	rhashtable_destroy(&tc->ht);
43294d8fcf21SAlaa Hleihel 	return err;
4330e8f887acSAmir Vadai }
4331e8f887acSAmir Vadai 
4332e8f887acSAmir Vadai static void _mlx5e_tc_del_flow(void *ptr, void *arg)
4333e8f887acSAmir Vadai {
4334e8f887acSAmir Vadai 	struct mlx5e_tc_flow *flow = ptr;
4335655dc3d2SOr Gerlitz 	struct mlx5e_priv *priv = flow->priv;
4336e8f887acSAmir Vadai 
4337961e8979SRoi Dayan 	mlx5e_tc_del_flow(priv, flow);
4338e8f887acSAmir Vadai 	kfree(flow);
4339e8f887acSAmir Vadai }
4340e8f887acSAmir Vadai 
4341655dc3d2SOr Gerlitz void mlx5e_tc_nic_cleanup(struct mlx5e_priv *priv)
4342e8f887acSAmir Vadai {
4343acff797cSMaor Gottlieb 	struct mlx5e_tc_table *tc = &priv->fs.tc;
4344e8f887acSAmir Vadai 
43454d8fcf21SAlaa Hleihel 	if (tc->netdevice_nb.notifier_call)
4346d48834f9SJiri Pirko 		unregister_netdevice_notifier_dev_net(priv->netdev,
4347d48834f9SJiri Pirko 						      &tc->netdevice_nb,
4348d48834f9SJiri Pirko 						      &tc->netdevice_nn);
43494d8fcf21SAlaa Hleihel 
4350b2fdf3d0SPaul Blakey 	mlx5e_mod_hdr_tbl_destroy(&tc->mod_hdr);
4351b32accdaSVlad Buslov 	mutex_destroy(&tc->hairpin_tbl_lock);
4352b32accdaSVlad Buslov 
43536a064674SAriel Levkovich 	rhashtable_free_and_destroy(&tc->ht, _mlx5e_tc_del_flow, NULL);
4354e8f887acSAmir Vadai 
4355acff797cSMaor Gottlieb 	if (!IS_ERR_OR_NULL(tc->t)) {
43566a064674SAriel Levkovich 		mlx5_chains_put_table(tc->chains, 0, 1, MLX5E_TC_FT_LEVEL);
4357acff797cSMaor Gottlieb 		tc->t = NULL;
4358e8f887acSAmir Vadai 	}
4359b6fac0b4SVlad Buslov 	mutex_destroy(&tc->t_lock);
43606a064674SAriel Levkovich 
4361aedd133dSAriel Levkovich 	mlx5_tc_ct_clean(tc->ct);
4362f0da4daaSChris Mi 	mlx5e_tc_post_act_destroy(tc->post_act);
4363c9355682SChris Mi 	mapping_destroy(tc->mapping);
43646a064674SAriel Levkovich 	mlx5_chains_destroy(tc->chains);
4365e8f887acSAmir Vadai }
4366655dc3d2SOr Gerlitz 
4367655dc3d2SOr Gerlitz int mlx5e_tc_esw_init(struct rhashtable *tc_ht)
4368655dc3d2SOr Gerlitz {
4369d7a42ad0SRoi Dayan 	const size_t sz_enc_opts = sizeof(struct tunnel_match_enc_opts);
43700a7fcb78SPaul Blakey 	struct mlx5_rep_uplink_priv *uplink_priv;
4371aedd133dSAriel Levkovich 	struct mlx5e_rep_priv *rpriv;
43720a7fcb78SPaul Blakey 	struct mapping_ctx *mapping;
4373aedd133dSAriel Levkovich 	struct mlx5_eswitch *esw;
4374aedd133dSAriel Levkovich 	struct mlx5e_priv *priv;
43752198b932SRoi Dayan 	u64 mapping_id;
4376aedd133dSAriel Levkovich 	int err = 0;
43770a7fcb78SPaul Blakey 
43780a7fcb78SPaul Blakey 	uplink_priv = container_of(tc_ht, struct mlx5_rep_uplink_priv, tc_ht);
4379aedd133dSAriel Levkovich 	rpriv = container_of(uplink_priv, struct mlx5e_rep_priv, uplink_priv);
4380aedd133dSAriel Levkovich 	priv = netdev_priv(rpriv->netdev);
4381aedd133dSAriel Levkovich 	esw = priv->mdev->priv.eswitch;
43820a7fcb78SPaul Blakey 
4383f0da4daaSChris Mi 	uplink_priv->post_act = mlx5e_tc_post_act_init(priv, esw_chains(esw),
4384f0da4daaSChris Mi 						       MLX5_FLOW_NAMESPACE_FDB);
4385aedd133dSAriel Levkovich 	uplink_priv->ct_priv = mlx5_tc_ct_init(netdev_priv(priv->netdev),
4386aedd133dSAriel Levkovich 					       esw_chains(esw),
4387aedd133dSAriel Levkovich 					       &esw->offloads.mod_hdr,
4388f0da4daaSChris Mi 					       MLX5_FLOW_NAMESPACE_FDB,
4389f0da4daaSChris Mi 					       uplink_priv->post_act);
43904c3844d9SPaul Blakey 
43914f4edcc2SAriel Levkovich 	uplink_priv->int_port_priv = mlx5e_tc_int_port_init(netdev_priv(priv->netdev));
43924f4edcc2SAriel Levkovich 
43932741f223SChris Mi 	uplink_priv->tc_psample = mlx5e_tc_sample_init(esw, uplink_priv->post_act);
43942a9ab10aSChris Mi 
43952198b932SRoi Dayan 	mapping_id = mlx5_query_nic_system_image_guid(esw->dev);
43962198b932SRoi Dayan 
43972198b932SRoi Dayan 	mapping = mapping_create_for_id(mapping_id, MAPPING_TYPE_TUNNEL,
43982198b932SRoi Dayan 					sizeof(struct tunnel_match_key),
43990a7fcb78SPaul Blakey 					TUNNEL_INFO_BITS_MASK, true);
44002198b932SRoi Dayan 
44010a7fcb78SPaul Blakey 	if (IS_ERR(mapping)) {
44020a7fcb78SPaul Blakey 		err = PTR_ERR(mapping);
44030a7fcb78SPaul Blakey 		goto err_tun_mapping;
44040a7fcb78SPaul Blakey 	}
44050a7fcb78SPaul Blakey 	uplink_priv->tunnel_mapping = mapping;
44060a7fcb78SPaul Blakey 
44073222efd4SVlad Buslov 	/* Two last values are reserved for stack devices slow path table mark
44083222efd4SVlad Buslov 	 * and bridge ingress push mark.
44093222efd4SVlad Buslov 	 */
44102198b932SRoi Dayan 	mapping = mapping_create_for_id(mapping_id, MAPPING_TYPE_TUNNEL_ENC_OPTS,
44113222efd4SVlad Buslov 					sz_enc_opts, ENC_OPTS_BITS_MASK - 2, true);
44120a7fcb78SPaul Blakey 	if (IS_ERR(mapping)) {
44130a7fcb78SPaul Blakey 		err = PTR_ERR(mapping);
44140a7fcb78SPaul Blakey 		goto err_enc_opts_mapping;
44150a7fcb78SPaul Blakey 	}
44160a7fcb78SPaul Blakey 	uplink_priv->tunnel_enc_opts_mapping = mapping;
44170a7fcb78SPaul Blakey 
44180a7fcb78SPaul Blakey 	err = rhashtable_init(tc_ht, &tc_ht_params);
44190a7fcb78SPaul Blakey 	if (err)
44200a7fcb78SPaul Blakey 		goto err_ht_init;
44210a7fcb78SPaul Blakey 
44229ba33339SRoi Dayan 	lockdep_set_class(&tc_ht->mutex, &tc_ht_lock_key);
44239ba33339SRoi Dayan 
44248914add2SVlad Buslov 	uplink_priv->encap = mlx5e_tc_tun_init(priv);
44252b6c3c1eSWei Yongjun 	if (IS_ERR(uplink_priv->encap)) {
44262b6c3c1eSWei Yongjun 		err = PTR_ERR(uplink_priv->encap);
44278914add2SVlad Buslov 		goto err_register_fib_notifier;
44282b6c3c1eSWei Yongjun 	}
44298914add2SVlad Buslov 
44302b6c3c1eSWei Yongjun 	return 0;
44310a7fcb78SPaul Blakey 
44328914add2SVlad Buslov err_register_fib_notifier:
44338914add2SVlad Buslov 	rhashtable_destroy(tc_ht);
44340a7fcb78SPaul Blakey err_ht_init:
44350a7fcb78SPaul Blakey 	mapping_destroy(uplink_priv->tunnel_enc_opts_mapping);
44360a7fcb78SPaul Blakey err_enc_opts_mapping:
44370a7fcb78SPaul Blakey 	mapping_destroy(uplink_priv->tunnel_mapping);
44380a7fcb78SPaul Blakey err_tun_mapping:
44390027d70cSChris Mi 	mlx5e_tc_sample_cleanup(uplink_priv->tc_psample);
44404f4edcc2SAriel Levkovich 	mlx5e_tc_int_port_cleanup(uplink_priv->int_port_priv);
4441aedd133dSAriel Levkovich 	mlx5_tc_ct_clean(uplink_priv->ct_priv);
44420a7fcb78SPaul Blakey 	netdev_warn(priv->netdev,
44430a7fcb78SPaul Blakey 		    "Failed to initialize tc (eswitch), err: %d", err);
4444f0da4daaSChris Mi 	mlx5e_tc_post_act_destroy(uplink_priv->post_act);
44450a7fcb78SPaul Blakey 	return err;
4446655dc3d2SOr Gerlitz }
4447655dc3d2SOr Gerlitz 
4448655dc3d2SOr Gerlitz void mlx5e_tc_esw_cleanup(struct rhashtable *tc_ht)
4449655dc3d2SOr Gerlitz {
44500a7fcb78SPaul Blakey 	struct mlx5_rep_uplink_priv *uplink_priv;
44510a7fcb78SPaul Blakey 
44520a7fcb78SPaul Blakey 	uplink_priv = container_of(tc_ht, struct mlx5_rep_uplink_priv, tc_ht);
4453aedd133dSAriel Levkovich 
44548914add2SVlad Buslov 	rhashtable_free_and_destroy(tc_ht, _mlx5e_tc_del_flow, NULL);
44558914add2SVlad Buslov 	mlx5e_tc_tun_cleanup(uplink_priv->encap);
44568914add2SVlad Buslov 
44570a7fcb78SPaul Blakey 	mapping_destroy(uplink_priv->tunnel_enc_opts_mapping);
44580a7fcb78SPaul Blakey 	mapping_destroy(uplink_priv->tunnel_mapping);
44594c3844d9SPaul Blakey 
44600027d70cSChris Mi 	mlx5e_tc_sample_cleanup(uplink_priv->tc_psample);
44614f4edcc2SAriel Levkovich 	mlx5e_tc_int_port_cleanup(uplink_priv->int_port_priv);
4462aedd133dSAriel Levkovich 	mlx5_tc_ct_clean(uplink_priv->ct_priv);
4463f0da4daaSChris Mi 	mlx5e_tc_post_act_destroy(uplink_priv->post_act);
4464655dc3d2SOr Gerlitz }
446501252a27SOr Gerlitz 
4466226f2ca3SVlad Buslov int mlx5e_tc_num_filters(struct mlx5e_priv *priv, unsigned long flags)
446701252a27SOr Gerlitz {
4468d9ee0491SOr Gerlitz 	struct rhashtable *tc_ht = get_tc_ht(priv, flags);
446901252a27SOr Gerlitz 
447001252a27SOr Gerlitz 	return atomic_read(&tc_ht->nelems);
447101252a27SOr Gerlitz }
447204de7ddaSRoi Dayan 
447304de7ddaSRoi Dayan void mlx5e_tc_clean_fdb_peer_flows(struct mlx5_eswitch *esw)
447404de7ddaSRoi Dayan {
447504de7ddaSRoi Dayan 	struct mlx5e_tc_flow *flow, *tmp;
447604de7ddaSRoi Dayan 
447704de7ddaSRoi Dayan 	list_for_each_entry_safe(flow, tmp, &esw->offloads.peer_flows, peer)
447804de7ddaSRoi Dayan 		__mlx5e_tc_del_fdb_peer_flow(flow);
447904de7ddaSRoi Dayan }
4480b4a23329SRoi Dayan 
4481b4a23329SRoi Dayan void mlx5e_tc_reoffload_flows_work(struct work_struct *work)
4482b4a23329SRoi Dayan {
4483b4a23329SRoi Dayan 	struct mlx5_rep_uplink_priv *rpriv =
4484b4a23329SRoi Dayan 		container_of(work, struct mlx5_rep_uplink_priv,
4485b4a23329SRoi Dayan 			     reoffload_flows_work);
4486b4a23329SRoi Dayan 	struct mlx5e_tc_flow *flow, *tmp;
4487b4a23329SRoi Dayan 
4488ad86755bSVlad Buslov 	mutex_lock(&rpriv->unready_flows_lock);
4489b4a23329SRoi Dayan 	list_for_each_entry_safe(flow, tmp, &rpriv->unready_flows, unready) {
4490b4a23329SRoi Dayan 		if (!mlx5e_tc_add_fdb_flow(flow->priv, flow, NULL))
4491ad86755bSVlad Buslov 			unready_flow_del(flow);
4492b4a23329SRoi Dayan 	}
4493ad86755bSVlad Buslov 	mutex_unlock(&rpriv->unready_flows_lock);
4494b4a23329SRoi Dayan }
4495e2394a61SVlad Buslov 
4496e2394a61SVlad Buslov static int mlx5e_setup_tc_cls_flower(struct mlx5e_priv *priv,
4497e2394a61SVlad Buslov 				     struct flow_cls_offload *cls_flower,
4498e2394a61SVlad Buslov 				     unsigned long flags)
4499e2394a61SVlad Buslov {
4500e2394a61SVlad Buslov 	switch (cls_flower->command) {
4501e2394a61SVlad Buslov 	case FLOW_CLS_REPLACE:
4502e2394a61SVlad Buslov 		return mlx5e_configure_flower(priv->netdev, priv, cls_flower,
4503e2394a61SVlad Buslov 					      flags);
4504e2394a61SVlad Buslov 	case FLOW_CLS_DESTROY:
4505e2394a61SVlad Buslov 		return mlx5e_delete_flower(priv->netdev, priv, cls_flower,
4506e2394a61SVlad Buslov 					   flags);
4507e2394a61SVlad Buslov 	case FLOW_CLS_STATS:
4508e2394a61SVlad Buslov 		return mlx5e_stats_flower(priv->netdev, priv, cls_flower,
4509e2394a61SVlad Buslov 					  flags);
4510e2394a61SVlad Buslov 	default:
4511e2394a61SVlad Buslov 		return -EOPNOTSUPP;
4512e2394a61SVlad Buslov 	}
4513e2394a61SVlad Buslov }
4514e2394a61SVlad Buslov 
4515e2394a61SVlad Buslov int mlx5e_setup_tc_block_cb(enum tc_setup_type type, void *type_data,
4516e2394a61SVlad Buslov 			    void *cb_priv)
4517e2394a61SVlad Buslov {
4518ec9457a6SRoi Dayan 	unsigned long flags = MLX5_TC_FLAG(INGRESS);
4519e2394a61SVlad Buslov 	struct mlx5e_priv *priv = cb_priv;
4520e2394a61SVlad Buslov 
45212ff349c5SRoi Dayan 	if (!priv->netdev || !netif_device_present(priv->netdev))
45222ff349c5SRoi Dayan 		return -EOPNOTSUPP;
45232ff349c5SRoi Dayan 
4524ec9457a6SRoi Dayan 	if (mlx5e_is_uplink_rep(priv))
4525ec9457a6SRoi Dayan 		flags |= MLX5_TC_FLAG(ESW_OFFLOAD);
4526ec9457a6SRoi Dayan 	else
4527ec9457a6SRoi Dayan 		flags |= MLX5_TC_FLAG(NIC_OFFLOAD);
4528ec9457a6SRoi Dayan 
4529e2394a61SVlad Buslov 	switch (type) {
4530e2394a61SVlad Buslov 	case TC_SETUP_CLSFLOWER:
4531e2394a61SVlad Buslov 		return mlx5e_setup_tc_cls_flower(priv, type_data, flags);
4532e2394a61SVlad Buslov 	default:
4533e2394a61SVlad Buslov 		return -EOPNOTSUPP;
4534e2394a61SVlad Buslov 	}
4535e2394a61SVlad Buslov }
4536c7569097SAriel Levkovich 
4537c7569097SAriel Levkovich bool mlx5e_tc_update_skb(struct mlx5_cqe64 *cqe,
4538c7569097SAriel Levkovich 			 struct sk_buff *skb)
4539c7569097SAriel Levkovich {
4540c7569097SAriel Levkovich #if IS_ENABLED(CONFIG_NET_TC_SKB_EXT)
4541aedd133dSAriel Levkovich 	u32 chain = 0, chain_tag, reg_b, zone_restore_id;
4542c7569097SAriel Levkovich 	struct mlx5e_priv *priv = netdev_priv(skb->dev);
4543aedd133dSAriel Levkovich 	struct mlx5e_tc_table *tc = &priv->fs.tc;
4544a91d98a0SChris Mi 	struct mlx5_mapped_obj mapped_obj;
4545c7569097SAriel Levkovich 	struct tc_skb_ext *tc_skb_ext;
4546c7569097SAriel Levkovich 	int err;
4547c7569097SAriel Levkovich 
4548c7569097SAriel Levkovich 	reg_b = be32_to_cpu(cqe->ft_metadata);
4549c7569097SAriel Levkovich 
4550c7569097SAriel Levkovich 	chain_tag = reg_b & MLX5E_TC_TABLE_CHAIN_TAG_MASK;
4551c7569097SAriel Levkovich 
4552c9355682SChris Mi 	err = mapping_find(tc->mapping, chain_tag, &mapped_obj);
4553c7569097SAriel Levkovich 	if (err) {
4554c7569097SAriel Levkovich 		netdev_dbg(priv->netdev,
4555c7569097SAriel Levkovich 			   "Couldn't find chain for chain tag: %d, err: %d\n",
4556c7569097SAriel Levkovich 			   chain_tag, err);
4557c7569097SAriel Levkovich 		return false;
4558c7569097SAriel Levkovich 	}
4559c7569097SAriel Levkovich 
4560a91d98a0SChris Mi 	if (mapped_obj.type == MLX5_MAPPED_OBJ_CHAIN) {
4561a91d98a0SChris Mi 		chain = mapped_obj.chain;
45629453d45eSVlad Buslov 		tc_skb_ext = tc_skb_ext_alloc(skb);
4563c7569097SAriel Levkovich 		if (WARN_ON(!tc_skb_ext))
4564c7569097SAriel Levkovich 			return false;
4565c7569097SAriel Levkovich 
4566c7569097SAriel Levkovich 		tc_skb_ext->chain = chain;
4567aedd133dSAriel Levkovich 
4568ed2fe7baSPaul Blakey 		zone_restore_id = (reg_b >> REG_MAPPING_MOFFSET(NIC_ZONE_RESTORE_TO_REG)) &
456948d216e5SVlad Buslov 			ESW_ZONE_ID_MASK;
4570aedd133dSAriel Levkovich 
4571aedd133dSAriel Levkovich 		if (!mlx5e_tc_ct_restore_flow(tc->ct, skb,
4572aedd133dSAriel Levkovich 					      zone_restore_id))
4573aedd133dSAriel Levkovich 			return false;
4574a91d98a0SChris Mi 	} else {
4575a91d98a0SChris Mi 		netdev_dbg(priv->netdev, "Invalid mapped object type: %d\n", mapped_obj.type);
4576a91d98a0SChris Mi 		return false;
4577c7569097SAriel Levkovich 	}
4578c7569097SAriel Levkovich #endif /* CONFIG_NET_TC_SKB_EXT */
4579c7569097SAriel Levkovich 
4580c7569097SAriel Levkovich 	return true;
4581c7569097SAriel Levkovich }
4582