1 /* SPDX-License-Identifier: GPL-2.0 */ 2 /* 3 * ipv4 in net namespaces 4 */ 5 6 #ifndef __NETNS_IPV4_H__ 7 #define __NETNS_IPV4_H__ 8 9 #include <linux/uidgid.h> 10 #include <net/inet_frag.h> 11 #include <linux/rcupdate.h> 12 #include <linux/siphash.h> 13 14 struct ctl_table_header; 15 struct ipv4_devconf; 16 struct fib_rules_ops; 17 struct hlist_head; 18 struct fib_table; 19 struct sock; 20 struct local_ports { 21 seqlock_t lock; 22 int range[2]; 23 bool warned; 24 }; 25 26 struct ping_group_range { 27 seqlock_t lock; 28 kgid_t range[2]; 29 }; 30 31 struct inet_hashinfo; 32 33 struct inet_timewait_death_row { 34 atomic_t tw_count; 35 char tw_pad[L1_CACHE_BYTES - sizeof(atomic_t)]; 36 37 struct inet_hashinfo *hashinfo; 38 int sysctl_max_tw_buckets; 39 }; 40 41 struct tcp_fastopen_context; 42 43 struct netns_ipv4 { 44 /* Please keep tcp_death_row at first field in netns_ipv4 */ 45 struct inet_timewait_death_row tcp_death_row ____cacheline_aligned_in_smp; 46 47 #ifdef CONFIG_SYSCTL 48 struct ctl_table_header *forw_hdr; 49 struct ctl_table_header *frags_hdr; 50 struct ctl_table_header *ipv4_hdr; 51 struct ctl_table_header *route_hdr; 52 struct ctl_table_header *xfrm4_hdr; 53 #endif 54 struct ipv4_devconf *devconf_all; 55 struct ipv4_devconf *devconf_dflt; 56 struct ip_ra_chain __rcu *ra_chain; 57 struct mutex ra_mutex; 58 #ifdef CONFIG_IP_MULTIPLE_TABLES 59 struct fib_rules_ops *rules_ops; 60 struct fib_table __rcu *fib_main; 61 struct fib_table __rcu *fib_default; 62 unsigned int fib_rules_require_fldissect; 63 bool fib_has_custom_rules; 64 #endif 65 bool fib_has_custom_local_routes; 66 bool fib_offload_disabled; 67 #ifdef CONFIG_IP_ROUTE_CLASSID 68 int fib_num_tclassid_users; 69 #endif 70 struct hlist_head *fib_table_hash; 71 struct sock *fibnl; 72 73 struct sock * __percpu *icmp_sk; 74 struct sock *mc_autojoin_sk; 75 76 struct inet_peer_base *peers; 77 struct sock * __percpu *tcp_sk; 78 struct fqdir *fqdir; 79 #ifdef CONFIG_NETFILTER 80 struct xt_table *iptable_filter; 81 struct xt_table *iptable_mangle; 82 struct xt_table *iptable_raw; 83 struct xt_table *arptable_filter; 84 #ifdef CONFIG_SECURITY 85 struct xt_table *iptable_security; 86 #endif 87 struct xt_table *nat_table; 88 #endif 89 90 u8 sysctl_icmp_echo_ignore_all; 91 u8 sysctl_icmp_echo_enable_probe; 92 u8 sysctl_icmp_echo_ignore_broadcasts; 93 u8 sysctl_icmp_ignore_bogus_error_responses; 94 u8 sysctl_icmp_errors_use_inbound_ifaddr; 95 int sysctl_icmp_ratelimit; 96 int sysctl_icmp_ratemask; 97 98 struct local_ports ip_local_ports; 99 100 u8 sysctl_tcp_ecn; 101 u8 sysctl_tcp_ecn_fallback; 102 103 u8 sysctl_ip_default_ttl; 104 u8 sysctl_ip_no_pmtu_disc; 105 u8 sysctl_ip_fwd_use_pmtu; 106 u8 sysctl_ip_fwd_update_priority; 107 u8 sysctl_ip_nonlocal_bind; 108 u8 sysctl_ip_autobind_reuse; 109 /* Shall we try to damage output packets if routing dev changes? */ 110 u8 sysctl_ip_dynaddr; 111 u8 sysctl_ip_early_demux; 112 #ifdef CONFIG_NET_L3_MASTER_DEV 113 u8 sysctl_raw_l3mdev_accept; 114 #endif 115 u8 sysctl_tcp_early_demux; 116 u8 sysctl_udp_early_demux; 117 118 u8 sysctl_nexthop_compat_mode; 119 120 u8 sysctl_fwmark_reflect; 121 u8 sysctl_tcp_fwmark_accept; 122 #ifdef CONFIG_NET_L3_MASTER_DEV 123 u8 sysctl_tcp_l3mdev_accept; 124 #endif 125 u8 sysctl_tcp_mtu_probing; 126 int sysctl_tcp_mtu_probe_floor; 127 int sysctl_tcp_base_mss; 128 int sysctl_tcp_min_snd_mss; 129 int sysctl_tcp_probe_threshold; 130 u32 sysctl_tcp_probe_interval; 131 132 int sysctl_tcp_keepalive_time; 133 int sysctl_tcp_keepalive_intvl; 134 u8 sysctl_tcp_keepalive_probes; 135 136 u8 sysctl_tcp_syn_retries; 137 u8 sysctl_tcp_synack_retries; 138 u8 sysctl_tcp_syncookies; 139 int sysctl_tcp_reordering; 140 u8 sysctl_tcp_retries1; 141 u8 sysctl_tcp_retries2; 142 u8 sysctl_tcp_orphan_retries; 143 u8 sysctl_tcp_tw_reuse; 144 int sysctl_tcp_fin_timeout; 145 unsigned int sysctl_tcp_notsent_lowat; 146 u8 sysctl_tcp_sack; 147 u8 sysctl_tcp_window_scaling; 148 u8 sysctl_tcp_timestamps; 149 u8 sysctl_tcp_early_retrans; 150 u8 sysctl_tcp_recovery; 151 u8 sysctl_tcp_thin_linear_timeouts; 152 u8 sysctl_tcp_slow_start_after_idle; 153 u8 sysctl_tcp_retrans_collapse; 154 u8 sysctl_tcp_stdurg; 155 u8 sysctl_tcp_rfc1337; 156 u8 sysctl_tcp_abort_on_overflow; 157 u8 sysctl_tcp_fack; /* obsolete */ 158 int sysctl_tcp_max_reordering; 159 int sysctl_tcp_adv_win_scale; 160 u8 sysctl_tcp_dsack; 161 u8 sysctl_tcp_app_win; 162 u8 sysctl_tcp_frto; 163 u8 sysctl_tcp_nometrics_save; 164 u8 sysctl_tcp_no_ssthresh_metrics_save; 165 u8 sysctl_tcp_moderate_rcvbuf; 166 u8 sysctl_tcp_tso_win_divisor; 167 u8 sysctl_tcp_workaround_signed_windows; 168 int sysctl_tcp_limit_output_bytes; 169 int sysctl_tcp_challenge_ack_limit; 170 int sysctl_tcp_min_rtt_wlen; 171 u8 sysctl_tcp_min_tso_segs; 172 u8 sysctl_tcp_autocorking; 173 u8 sysctl_tcp_reflect_tos; 174 u8 sysctl_tcp_comp_sack_nr; 175 int sysctl_tcp_invalid_ratelimit; 176 int sysctl_tcp_pacing_ss_ratio; 177 int sysctl_tcp_pacing_ca_ratio; 178 int sysctl_tcp_wmem[3]; 179 int sysctl_tcp_rmem[3]; 180 unsigned long sysctl_tcp_comp_sack_delay_ns; 181 unsigned long sysctl_tcp_comp_sack_slack_ns; 182 int sysctl_max_syn_backlog; 183 int sysctl_tcp_fastopen; 184 const struct tcp_congestion_ops __rcu *tcp_congestion_control; 185 struct tcp_fastopen_context __rcu *tcp_fastopen_ctx; 186 spinlock_t tcp_fastopen_ctx_lock; 187 unsigned int sysctl_tcp_fastopen_blackhole_timeout; 188 atomic_t tfo_active_disable_times; 189 unsigned long tfo_active_disable_stamp; 190 191 int sysctl_udp_wmem_min; 192 int sysctl_udp_rmem_min; 193 194 u8 sysctl_fib_notify_on_flag_change; 195 196 #ifdef CONFIG_NET_L3_MASTER_DEV 197 u8 sysctl_udp_l3mdev_accept; 198 #endif 199 200 u8 sysctl_igmp_llm_reports; 201 int sysctl_igmp_max_memberships; 202 int sysctl_igmp_max_msf; 203 int sysctl_igmp_qrv; 204 205 struct ping_group_range ping_group_range; 206 207 atomic_t dev_addr_genid; 208 209 #ifdef CONFIG_SYSCTL 210 unsigned long *sysctl_local_reserved_ports; 211 int sysctl_ip_prot_sock; 212 #endif 213 214 #ifdef CONFIG_IP_MROUTE 215 #ifndef CONFIG_IP_MROUTE_MULTIPLE_TABLES 216 struct mr_table *mrt; 217 #else 218 struct list_head mr_tables; 219 struct fib_rules_ops *mr_rules_ops; 220 #endif 221 #endif 222 #ifdef CONFIG_IP_ROUTE_MULTIPATH 223 u8 sysctl_fib_multipath_use_neigh; 224 u8 sysctl_fib_multipath_hash_policy; 225 #endif 226 227 struct fib_notifier_ops *notifier_ops; 228 unsigned int fib_seq; /* protected by rtnl_mutex */ 229 230 struct fib_notifier_ops *ipmr_notifier_ops; 231 unsigned int ipmr_seq; /* protected by rtnl_mutex */ 232 233 atomic_t rt_genid; 234 siphash_key_t ip_id_key; 235 }; 236 #endif 237