1243a2e63SVlad Yasevich #include <linux/kernel.h> 2243a2e63SVlad Yasevich #include <linux/netdevice.h> 3243a2e63SVlad Yasevich #include <linux/rtnetlink.h> 4243a2e63SVlad Yasevich #include <linux/slab.h> 57f109539SScott Feldman #include <net/switchdev.h> 6243a2e63SVlad Yasevich 7243a2e63SVlad Yasevich #include "br_private.h" 8efa5356bSRoopa Prabhu #include "br_private_tunnel.h" 9243a2e63SVlad Yasevich 1080900acdSMike Manning static void nbp_vlan_set_vlan_dev_state(struct net_bridge_port *p, u16 vid); 1180900acdSMike Manning 122594e906SNikolay Aleksandrov static inline int br_vlan_cmp(struct rhashtable_compare_arg *arg, 132594e906SNikolay Aleksandrov const void *ptr) 14552406c4SVlad Yasevich { 152594e906SNikolay Aleksandrov const struct net_bridge_vlan *vle = ptr; 162594e906SNikolay Aleksandrov u16 vid = *(u16 *)arg->key; 172594e906SNikolay Aleksandrov 182594e906SNikolay Aleksandrov return vle->vid != vid; 192594e906SNikolay Aleksandrov } 202594e906SNikolay Aleksandrov 212594e906SNikolay Aleksandrov static const struct rhashtable_params br_vlan_rht_params = { 222594e906SNikolay Aleksandrov .head_offset = offsetof(struct net_bridge_vlan, vnode), 232594e906SNikolay Aleksandrov .key_offset = offsetof(struct net_bridge_vlan, vid), 242594e906SNikolay Aleksandrov .key_len = sizeof(u16), 258af78b64SNikolay Aleksandrov .nelem_hint = 3, 262594e906SNikolay Aleksandrov .max_size = VLAN_N_VID, 272594e906SNikolay Aleksandrov .obj_cmpfn = br_vlan_cmp, 282594e906SNikolay Aleksandrov .automatic_shrinking = true, 292594e906SNikolay Aleksandrov }; 302594e906SNikolay Aleksandrov 312594e906SNikolay Aleksandrov static struct net_bridge_vlan *br_vlan_lookup(struct rhashtable *tbl, u16 vid) 322594e906SNikolay Aleksandrov { 332594e906SNikolay Aleksandrov return rhashtable_lookup_fast(tbl, &vid, br_vlan_rht_params); 342594e906SNikolay Aleksandrov } 352594e906SNikolay Aleksandrov 36f418af63SNikolay Aleksandrov static bool __vlan_add_pvid(struct net_bridge_vlan_group *vg, u16 vid) 372594e906SNikolay Aleksandrov { 3877751ee8SNikolay Aleksandrov if (vg->pvid == vid) 39f418af63SNikolay Aleksandrov return false; 40552406c4SVlad Yasevich 41552406c4SVlad Yasevich smp_wmb(); 4277751ee8SNikolay Aleksandrov vg->pvid = vid; 43f418af63SNikolay Aleksandrov 44f418af63SNikolay Aleksandrov return true; 45552406c4SVlad Yasevich } 46552406c4SVlad Yasevich 47f418af63SNikolay Aleksandrov static bool __vlan_delete_pvid(struct net_bridge_vlan_group *vg, u16 vid) 48552406c4SVlad Yasevich { 4977751ee8SNikolay Aleksandrov if (vg->pvid != vid) 50f418af63SNikolay Aleksandrov return false; 51552406c4SVlad Yasevich 52552406c4SVlad Yasevich smp_wmb(); 5377751ee8SNikolay Aleksandrov vg->pvid = 0; 54f418af63SNikolay Aleksandrov 55f418af63SNikolay Aleksandrov return true; 56552406c4SVlad Yasevich } 57552406c4SVlad Yasevich 58f418af63SNikolay Aleksandrov /* return true if anything changed, false otherwise */ 59f418af63SNikolay Aleksandrov static bool __vlan_add_flags(struct net_bridge_vlan *v, u16 flags) 6035e03f3aSVlad Yasevich { 6177751ee8SNikolay Aleksandrov struct net_bridge_vlan_group *vg; 62f418af63SNikolay Aleksandrov u16 old_flags = v->flags; 63f418af63SNikolay Aleksandrov bool ret; 6477751ee8SNikolay Aleksandrov 652594e906SNikolay Aleksandrov if (br_vlan_is_master(v)) 66907b1e6eSNikolay Aleksandrov vg = br_vlan_group(v->br); 67635126b7SVlad Yasevich else 68907b1e6eSNikolay Aleksandrov vg = nbp_vlan_group(v->port); 6977751ee8SNikolay Aleksandrov 7077751ee8SNikolay Aleksandrov if (flags & BRIDGE_VLAN_INFO_PVID) 71f418af63SNikolay Aleksandrov ret = __vlan_add_pvid(vg, v->vid); 722594e906SNikolay Aleksandrov else 73f418af63SNikolay Aleksandrov ret = __vlan_delete_pvid(vg, v->vid); 7435e03f3aSVlad Yasevich 7535e03f3aSVlad Yasevich if (flags & BRIDGE_VLAN_INFO_UNTAGGED) 762594e906SNikolay Aleksandrov v->flags |= BRIDGE_VLAN_INFO_UNTAGGED; 77635126b7SVlad Yasevich else 782594e906SNikolay Aleksandrov v->flags &= ~BRIDGE_VLAN_INFO_UNTAGGED; 79f418af63SNikolay Aleksandrov 80f418af63SNikolay Aleksandrov return ret || !!(old_flags ^ v->flags); 8135e03f3aSVlad Yasevich } 8235e03f3aSVlad Yasevich 837f109539SScott Feldman static int __vlan_vid_add(struct net_device *dev, struct net_bridge *br, 8427973793SIdo Schimmel struct net_bridge_vlan *v, u16 flags, 8527973793SIdo Schimmel struct netlink_ext_ack *extack) 867f109539SScott Feldman { 870944d6b5SJiri Pirko int err; 887f109539SScott Feldman 890944d6b5SJiri Pirko /* Try switchdev op first. In case it is not supported, fallback to 900944d6b5SJiri Pirko * 8021q add. 910944d6b5SJiri Pirko */ 9227973793SIdo Schimmel err = br_switchdev_port_vlan_add(dev, v->vid, flags, extack); 937f109539SScott Feldman if (err == -EOPNOTSUPP) 9427973793SIdo Schimmel return vlan_vid_add(dev, br->vlan_proto, v->vid); 9527973793SIdo Schimmel v->priv_flags |= BR_VLFLAG_ADDED_BY_SWITCHDEV; 967f109539SScott Feldman return err; 977f109539SScott Feldman } 987f109539SScott Feldman 992594e906SNikolay Aleksandrov static void __vlan_add_list(struct net_bridge_vlan *v) 100243a2e63SVlad Yasevich { 101907b1e6eSNikolay Aleksandrov struct net_bridge_vlan_group *vg; 1022594e906SNikolay Aleksandrov struct list_head *headp, *hpos; 1032594e906SNikolay Aleksandrov struct net_bridge_vlan *vent; 104243a2e63SVlad Yasevich 105907b1e6eSNikolay Aleksandrov if (br_vlan_is_master(v)) 106907b1e6eSNikolay Aleksandrov vg = br_vlan_group(v->br); 107907b1e6eSNikolay Aleksandrov else 108907b1e6eSNikolay Aleksandrov vg = nbp_vlan_group(v->port); 109907b1e6eSNikolay Aleksandrov 110907b1e6eSNikolay Aleksandrov headp = &vg->vlan_list; 1112594e906SNikolay Aleksandrov list_for_each_prev(hpos, headp) { 1122594e906SNikolay Aleksandrov vent = list_entry(hpos, struct net_bridge_vlan, vlist); 1132594e906SNikolay Aleksandrov if (v->vid < vent->vid) 1142594e906SNikolay Aleksandrov continue; 1152594e906SNikolay Aleksandrov else 1162594e906SNikolay Aleksandrov break; 1172594e906SNikolay Aleksandrov } 118586c2b57SNikolay Aleksandrov list_add_rcu(&v->vlist, hpos); 119552406c4SVlad Yasevich } 120243a2e63SVlad Yasevich 1212594e906SNikolay Aleksandrov static void __vlan_del_list(struct net_bridge_vlan *v) 1222594e906SNikolay Aleksandrov { 123586c2b57SNikolay Aleksandrov list_del_rcu(&v->vlist); 124243a2e63SVlad Yasevich } 125243a2e63SVlad Yasevich 126bf361ad3SVivien Didelot static int __vlan_vid_del(struct net_device *dev, struct net_bridge *br, 12727973793SIdo Schimmel const struct net_bridge_vlan *v) 1287f109539SScott Feldman { 1290944d6b5SJiri Pirko int err; 1307f109539SScott Feldman 1310944d6b5SJiri Pirko /* Try switchdev op first. In case it is not supported, fallback to 1320944d6b5SJiri Pirko * 8021q del. 1330944d6b5SJiri Pirko */ 13427973793SIdo Schimmel err = br_switchdev_port_vlan_del(dev, v->vid); 13527973793SIdo Schimmel if (!(v->priv_flags & BR_VLFLAG_ADDED_BY_SWITCHDEV)) 13627973793SIdo Schimmel vlan_vid_del(dev, br->vlan_proto, v->vid); 13727973793SIdo Schimmel return err == -EOPNOTSUPP ? 0 : err; 1387f109539SScott Feldman } 1397f109539SScott Feldman 140f8ed289fSNikolay Aleksandrov /* Returns a master vlan, if it didn't exist it gets created. In all cases a 141f8ed289fSNikolay Aleksandrov * a reference is taken to the master vlan before returning. 142f8ed289fSNikolay Aleksandrov */ 143169327d5SPetr Machata static struct net_bridge_vlan * 144169327d5SPetr Machata br_vlan_get_master(struct net_bridge *br, u16 vid, 145169327d5SPetr Machata struct netlink_ext_ack *extack) 146f8ed289fSNikolay Aleksandrov { 147907b1e6eSNikolay Aleksandrov struct net_bridge_vlan_group *vg; 148f8ed289fSNikolay Aleksandrov struct net_bridge_vlan *masterv; 149f8ed289fSNikolay Aleksandrov 150907b1e6eSNikolay Aleksandrov vg = br_vlan_group(br); 151907b1e6eSNikolay Aleksandrov masterv = br_vlan_find(vg, vid); 152f8ed289fSNikolay Aleksandrov if (!masterv) { 153f418af63SNikolay Aleksandrov bool changed; 154f418af63SNikolay Aleksandrov 155f8ed289fSNikolay Aleksandrov /* missing global ctx, create it now */ 156169327d5SPetr Machata if (br_vlan_add(br, vid, 0, &changed, extack)) 157f8ed289fSNikolay Aleksandrov return NULL; 158907b1e6eSNikolay Aleksandrov masterv = br_vlan_find(vg, vid); 159f8ed289fSNikolay Aleksandrov if (WARN_ON(!masterv)) 160f8ed289fSNikolay Aleksandrov return NULL; 1610e5a82efSIdo Schimmel refcount_set(&masterv->refcnt, 1); 1620e5a82efSIdo Schimmel return masterv; 163f8ed289fSNikolay Aleksandrov } 16425127759SReshetova, Elena refcount_inc(&masterv->refcnt); 165f8ed289fSNikolay Aleksandrov 166f8ed289fSNikolay Aleksandrov return masterv; 167f8ed289fSNikolay Aleksandrov } 168f8ed289fSNikolay Aleksandrov 1696dada9b1SNikolay Aleksandrov static void br_master_vlan_rcu_free(struct rcu_head *rcu) 1706dada9b1SNikolay Aleksandrov { 1716dada9b1SNikolay Aleksandrov struct net_bridge_vlan *v; 1726dada9b1SNikolay Aleksandrov 1736dada9b1SNikolay Aleksandrov v = container_of(rcu, struct net_bridge_vlan, rcu); 1746dada9b1SNikolay Aleksandrov WARN_ON(!br_vlan_is_master(v)); 1756dada9b1SNikolay Aleksandrov free_percpu(v->stats); 1766dada9b1SNikolay Aleksandrov v->stats = NULL; 1776dada9b1SNikolay Aleksandrov kfree(v); 1786dada9b1SNikolay Aleksandrov } 1796dada9b1SNikolay Aleksandrov 180f8ed289fSNikolay Aleksandrov static void br_vlan_put_master(struct net_bridge_vlan *masterv) 181f8ed289fSNikolay Aleksandrov { 182907b1e6eSNikolay Aleksandrov struct net_bridge_vlan_group *vg; 183907b1e6eSNikolay Aleksandrov 184f8ed289fSNikolay Aleksandrov if (!br_vlan_is_master(masterv)) 185f8ed289fSNikolay Aleksandrov return; 186f8ed289fSNikolay Aleksandrov 187907b1e6eSNikolay Aleksandrov vg = br_vlan_group(masterv->br); 18825127759SReshetova, Elena if (refcount_dec_and_test(&masterv->refcnt)) { 189907b1e6eSNikolay Aleksandrov rhashtable_remove_fast(&vg->vlan_hash, 190f8ed289fSNikolay Aleksandrov &masterv->vnode, br_vlan_rht_params); 191f8ed289fSNikolay Aleksandrov __vlan_del_list(masterv); 1926dada9b1SNikolay Aleksandrov call_rcu(&masterv->rcu, br_master_vlan_rcu_free); 193f8ed289fSNikolay Aleksandrov } 194f8ed289fSNikolay Aleksandrov } 195f8ed289fSNikolay Aleksandrov 1969163a0fcSNikolay Aleksandrov static void nbp_vlan_rcu_free(struct rcu_head *rcu) 1979163a0fcSNikolay Aleksandrov { 1989163a0fcSNikolay Aleksandrov struct net_bridge_vlan *v; 1999163a0fcSNikolay Aleksandrov 2009163a0fcSNikolay Aleksandrov v = container_of(rcu, struct net_bridge_vlan, rcu); 2019163a0fcSNikolay Aleksandrov WARN_ON(br_vlan_is_master(v)); 2029163a0fcSNikolay Aleksandrov /* if we had per-port stats configured then free them here */ 2039d332e69SNikolay Aleksandrov if (v->priv_flags & BR_VLFLAG_PER_PORT_STATS) 2049163a0fcSNikolay Aleksandrov free_percpu(v->stats); 2059163a0fcSNikolay Aleksandrov v->stats = NULL; 2069163a0fcSNikolay Aleksandrov kfree(v); 2079163a0fcSNikolay Aleksandrov } 2089163a0fcSNikolay Aleksandrov 2092594e906SNikolay Aleksandrov /* This is the shared VLAN add function which works for both ports and bridge 2102594e906SNikolay Aleksandrov * devices. There are four possible calls to this function in terms of the 2112594e906SNikolay Aleksandrov * vlan entry type: 2122594e906SNikolay Aleksandrov * 1. vlan is being added on a port (no master flags, global entry exists) 213ddd611d3SIdo Schimmel * 2. vlan is being added on a bridge (both master and brentry flags) 2142594e906SNikolay Aleksandrov * 3. vlan is being added on a port, but a global entry didn't exist which 215ddd611d3SIdo Schimmel * is being created right now (master flag set, brentry flag unset), the 2162594e906SNikolay Aleksandrov * global entry is used for global per-vlan features, but not for filtering 217ddd611d3SIdo Schimmel * 4. same as 3 but with both master and brentry flags set so the entry 2182594e906SNikolay Aleksandrov * will be used for filtering in both the port and the bridge 2192594e906SNikolay Aleksandrov */ 220169327d5SPetr Machata static int __vlan_add(struct net_bridge_vlan *v, u16 flags, 221169327d5SPetr Machata struct netlink_ext_ack *extack) 222243a2e63SVlad Yasevich { 2232594e906SNikolay Aleksandrov struct net_bridge_vlan *masterv = NULL; 2242594e906SNikolay Aleksandrov struct net_bridge_port *p = NULL; 2256be144f6SNikolay Aleksandrov struct net_bridge_vlan_group *vg; 2262594e906SNikolay Aleksandrov struct net_device *dev; 2272594e906SNikolay Aleksandrov struct net_bridge *br; 228bf361ad3SVivien Didelot int err; 229bf361ad3SVivien Didelot 2302594e906SNikolay Aleksandrov if (br_vlan_is_master(v)) { 2312594e906SNikolay Aleksandrov br = v->br; 2322594e906SNikolay Aleksandrov dev = br->dev; 233907b1e6eSNikolay Aleksandrov vg = br_vlan_group(br); 2342594e906SNikolay Aleksandrov } else { 2352594e906SNikolay Aleksandrov p = v->port; 2362594e906SNikolay Aleksandrov br = p->br; 2372594e906SNikolay Aleksandrov dev = p->dev; 238907b1e6eSNikolay Aleksandrov vg = nbp_vlan_group(p); 2392594e906SNikolay Aleksandrov } 2402594e906SNikolay Aleksandrov 2412594e906SNikolay Aleksandrov if (p) { 2422594e906SNikolay Aleksandrov /* Add VLAN to the device filter if it is supported. 2432594e906SNikolay Aleksandrov * This ensures tagged traffic enters the bridge when 2442594e906SNikolay Aleksandrov * promiscuous mode is disabled by br_manage_promisc(). 2452594e906SNikolay Aleksandrov */ 24627973793SIdo Schimmel err = __vlan_vid_add(dev, br, v, flags, extack); 247bf361ad3SVivien Didelot if (err) 2482594e906SNikolay Aleksandrov goto out; 2492594e906SNikolay Aleksandrov 2502594e906SNikolay Aleksandrov /* need to work on the master vlan too */ 2512594e906SNikolay Aleksandrov if (flags & BRIDGE_VLAN_INFO_MASTER) { 252f418af63SNikolay Aleksandrov bool changed; 253f418af63SNikolay Aleksandrov 254f418af63SNikolay Aleksandrov err = br_vlan_add(br, v->vid, 255f418af63SNikolay Aleksandrov flags | BRIDGE_VLAN_INFO_BRENTRY, 256169327d5SPetr Machata &changed, extack); 2572594e906SNikolay Aleksandrov if (err) 2582594e906SNikolay Aleksandrov goto out_filt; 2592594e906SNikolay Aleksandrov } 2602594e906SNikolay Aleksandrov 261169327d5SPetr Machata masterv = br_vlan_get_master(br, v->vid, extack); 262f8ed289fSNikolay Aleksandrov if (!masterv) 2632594e906SNikolay Aleksandrov goto out_filt; 2642594e906SNikolay Aleksandrov v->brvlan = masterv; 2659163a0fcSNikolay Aleksandrov if (br_opt_get(br, BROPT_VLAN_STATS_PER_PORT)) { 2669163a0fcSNikolay Aleksandrov v->stats = netdev_alloc_pcpu_stats(struct br_vlan_stats); 2679163a0fcSNikolay Aleksandrov if (!v->stats) { 2689163a0fcSNikolay Aleksandrov err = -ENOMEM; 2699163a0fcSNikolay Aleksandrov goto out_filt; 2709163a0fcSNikolay Aleksandrov } 2719d332e69SNikolay Aleksandrov v->priv_flags |= BR_VLFLAG_PER_PORT_STATS; 2729163a0fcSNikolay Aleksandrov } else { 2736dada9b1SNikolay Aleksandrov v->stats = masterv->stats; 2749163a0fcSNikolay Aleksandrov } 2759c86ce2cSPetr Machata } else { 276169327d5SPetr Machata err = br_switchdev_port_vlan_add(dev, v->vid, flags, extack); 2779c86ce2cSPetr Machata if (err && err != -EOPNOTSUPP) 2789c86ce2cSPetr Machata goto out; 2792594e906SNikolay Aleksandrov } 2802594e906SNikolay Aleksandrov 2816be144f6SNikolay Aleksandrov /* Add the dev mac and count the vlan only if it's usable */ 2822594e906SNikolay Aleksandrov if (br_vlan_should_use(v)) { 2832594e906SNikolay Aleksandrov err = br_fdb_insert(br, p, dev->dev_addr, v->vid); 2842594e906SNikolay Aleksandrov if (err) { 2852594e906SNikolay Aleksandrov br_err(br, "failed insert local address into bridge forwarding table\n"); 2862594e906SNikolay Aleksandrov goto out_filt; 2872594e906SNikolay Aleksandrov } 2886be144f6SNikolay Aleksandrov vg->num_vlans++; 2892594e906SNikolay Aleksandrov } 2902594e906SNikolay Aleksandrov 2916be144f6SNikolay Aleksandrov err = rhashtable_lookup_insert_fast(&vg->vlan_hash, &v->vnode, 2926be144f6SNikolay Aleksandrov br_vlan_rht_params); 2932594e906SNikolay Aleksandrov if (err) 2942594e906SNikolay Aleksandrov goto out_fdb_insert; 2952594e906SNikolay Aleksandrov 2962594e906SNikolay Aleksandrov __vlan_add_list(v); 2972594e906SNikolay Aleksandrov __vlan_add_flags(v, flags); 29880900acdSMike Manning 29980900acdSMike Manning if (p) 30080900acdSMike Manning nbp_vlan_set_vlan_dev_state(p, v->vid); 3012594e906SNikolay Aleksandrov out: 3022594e906SNikolay Aleksandrov return err; 3032594e906SNikolay Aleksandrov 3042594e906SNikolay Aleksandrov out_fdb_insert: 3056be144f6SNikolay Aleksandrov if (br_vlan_should_use(v)) { 3066be144f6SNikolay Aleksandrov br_fdb_find_delete_local(br, p, dev->dev_addr, v->vid); 3076be144f6SNikolay Aleksandrov vg->num_vlans--; 3086be144f6SNikolay Aleksandrov } 3092594e906SNikolay Aleksandrov 3102594e906SNikolay Aleksandrov out_filt: 3112594e906SNikolay Aleksandrov if (p) { 31227973793SIdo Schimmel __vlan_vid_del(dev, br, v); 3132594e906SNikolay Aleksandrov if (masterv) { 3141a3aea25SLi RongQing if (v->stats && masterv->stats != v->stats) 3151a3aea25SLi RongQing free_percpu(v->stats); 3161a3aea25SLi RongQing v->stats = NULL; 3171a3aea25SLi RongQing 318f8ed289fSNikolay Aleksandrov br_vlan_put_master(masterv); 3192594e906SNikolay Aleksandrov v->brvlan = NULL; 3202594e906SNikolay Aleksandrov } 3219c86ce2cSPetr Machata } else { 3229c86ce2cSPetr Machata br_switchdev_port_vlan_del(dev, v->vid); 3232594e906SNikolay Aleksandrov } 3242594e906SNikolay Aleksandrov 3252594e906SNikolay Aleksandrov goto out; 3262594e906SNikolay Aleksandrov } 3272594e906SNikolay Aleksandrov 3282594e906SNikolay Aleksandrov static int __vlan_del(struct net_bridge_vlan *v) 3292594e906SNikolay Aleksandrov { 3302594e906SNikolay Aleksandrov struct net_bridge_vlan *masterv = v; 33177751ee8SNikolay Aleksandrov struct net_bridge_vlan_group *vg; 3322594e906SNikolay Aleksandrov struct net_bridge_port *p = NULL; 3332594e906SNikolay Aleksandrov int err = 0; 3342594e906SNikolay Aleksandrov 3352594e906SNikolay Aleksandrov if (br_vlan_is_master(v)) { 336907b1e6eSNikolay Aleksandrov vg = br_vlan_group(v->br); 3372594e906SNikolay Aleksandrov } else { 3382594e906SNikolay Aleksandrov p = v->port; 339907b1e6eSNikolay Aleksandrov vg = nbp_vlan_group(v->port); 3402594e906SNikolay Aleksandrov masterv = v->brvlan; 3412594e906SNikolay Aleksandrov } 3422594e906SNikolay Aleksandrov 34377751ee8SNikolay Aleksandrov __vlan_delete_pvid(vg, v->vid); 3442594e906SNikolay Aleksandrov if (p) { 34527973793SIdo Schimmel err = __vlan_vid_del(p->dev, p->br, v); 3462594e906SNikolay Aleksandrov if (err) 3472594e906SNikolay Aleksandrov goto out; 3489c86ce2cSPetr Machata } else { 3499c86ce2cSPetr Machata err = br_switchdev_port_vlan_del(v->br->dev, v->vid); 3509c86ce2cSPetr Machata if (err && err != -EOPNOTSUPP) 3519c86ce2cSPetr Machata goto out; 3529c86ce2cSPetr Machata err = 0; 3532594e906SNikolay Aleksandrov } 3542594e906SNikolay Aleksandrov 3556be144f6SNikolay Aleksandrov if (br_vlan_should_use(v)) { 3562594e906SNikolay Aleksandrov v->flags &= ~BRIDGE_VLAN_INFO_BRENTRY; 3576be144f6SNikolay Aleksandrov vg->num_vlans--; 3582594e906SNikolay Aleksandrov } 3592594e906SNikolay Aleksandrov 3602594e906SNikolay Aleksandrov if (masterv != v) { 361efa5356bSRoopa Prabhu vlan_tunnel_info_del(vg, v); 36277751ee8SNikolay Aleksandrov rhashtable_remove_fast(&vg->vlan_hash, &v->vnode, 36377751ee8SNikolay Aleksandrov br_vlan_rht_params); 3642594e906SNikolay Aleksandrov __vlan_del_list(v); 36580900acdSMike Manning nbp_vlan_set_vlan_dev_state(p, v->vid); 3669163a0fcSNikolay Aleksandrov call_rcu(&v->rcu, nbp_vlan_rcu_free); 3672594e906SNikolay Aleksandrov } 3682594e906SNikolay Aleksandrov 369f8ed289fSNikolay Aleksandrov br_vlan_put_master(masterv); 3702594e906SNikolay Aleksandrov out: 371bf361ad3SVivien Didelot return err; 3728580e211SToshiaki Makita } 373243a2e63SVlad Yasevich 374f409d0edSNikolay Aleksandrov static void __vlan_group_free(struct net_bridge_vlan_group *vg) 375f409d0edSNikolay Aleksandrov { 376f409d0edSNikolay Aleksandrov WARN_ON(!list_empty(&vg->vlan_list)); 377f409d0edSNikolay Aleksandrov rhashtable_destroy(&vg->vlan_hash); 378efa5356bSRoopa Prabhu vlan_tunnel_deinit(vg); 379f409d0edSNikolay Aleksandrov kfree(vg); 380f409d0edSNikolay Aleksandrov } 381f409d0edSNikolay Aleksandrov 382f409d0edSNikolay Aleksandrov static void __vlan_flush(struct net_bridge_vlan_group *vg) 383243a2e63SVlad Yasevich { 3842594e906SNikolay Aleksandrov struct net_bridge_vlan *vlan, *tmp; 3852594e906SNikolay Aleksandrov 386f409d0edSNikolay Aleksandrov __vlan_delete_pvid(vg, vg->pvid); 387f409d0edSNikolay Aleksandrov list_for_each_entry_safe(vlan, tmp, &vg->vlan_list, vlist) 3882594e906SNikolay Aleksandrov __vlan_del(vlan); 389243a2e63SVlad Yasevich } 390243a2e63SVlad Yasevich 39178851988SVlad Yasevich struct sk_buff *br_handle_vlan(struct net_bridge *br, 39211538d03SRoopa Prabhu const struct net_bridge_port *p, 3932594e906SNikolay Aleksandrov struct net_bridge_vlan_group *vg, 394a37b85c9SVlad Yasevich struct sk_buff *skb) 395a37b85c9SVlad Yasevich { 3966dada9b1SNikolay Aleksandrov struct br_vlan_stats *stats; 3972594e906SNikolay Aleksandrov struct net_bridge_vlan *v; 398a37b85c9SVlad Yasevich u16 vid; 399a37b85c9SVlad Yasevich 40020adfa1aSVlad Yasevich /* If this packet was not filtered at input, let it pass */ 40120adfa1aSVlad Yasevich if (!BR_INPUT_SKB_CB(skb)->vlan_filtered) 40278851988SVlad Yasevich goto out; 40378851988SVlad Yasevich 4042594e906SNikolay Aleksandrov /* At this point, we know that the frame was filtered and contains 4052594e906SNikolay Aleksandrov * a valid vlan id. If the vlan id has untagged flag set, 4062594e906SNikolay Aleksandrov * send untagged; otherwise, send tagged. 4072594e906SNikolay Aleksandrov */ 4082594e906SNikolay Aleksandrov br_vlan_get_tag(skb, &vid); 4092594e906SNikolay Aleksandrov v = br_vlan_find(vg, vid); 4102594e906SNikolay Aleksandrov /* Vlan entry must be configured at this point. The 411fc92f745SVlad Yasevich * only exception is the bridge is set in promisc mode and the 412fc92f745SVlad Yasevich * packet is destined for the bridge device. In this case 413fc92f745SVlad Yasevich * pass the packet as is. 414fc92f745SVlad Yasevich */ 4152594e906SNikolay Aleksandrov if (!v || !br_vlan_should_use(v)) { 416fc92f745SVlad Yasevich if ((br->dev->flags & IFF_PROMISC) && skb->dev == br->dev) { 417fc92f745SVlad Yasevich goto out; 418fc92f745SVlad Yasevich } else { 419fc92f745SVlad Yasevich kfree_skb(skb); 420fc92f745SVlad Yasevich return NULL; 421fc92f745SVlad Yasevich } 422fc92f745SVlad Yasevich } 423ae75767eSNikolay Aleksandrov if (br_opt_get(br, BROPT_VLAN_STATS_ENABLED)) { 4246dada9b1SNikolay Aleksandrov stats = this_cpu_ptr(v->stats); 4256dada9b1SNikolay Aleksandrov u64_stats_update_begin(&stats->syncp); 4266dada9b1SNikolay Aleksandrov stats->tx_bytes += skb->len; 4276dada9b1SNikolay Aleksandrov stats->tx_packets++; 4286dada9b1SNikolay Aleksandrov u64_stats_update_end(&stats->syncp); 4296dada9b1SNikolay Aleksandrov } 4306dada9b1SNikolay Aleksandrov 4312594e906SNikolay Aleksandrov if (v->flags & BRIDGE_VLAN_INFO_UNTAGGED) 4325978f8a9SMichał Mirosław __vlan_hwaccel_clear_tag(skb); 43311538d03SRoopa Prabhu 43411538d03SRoopa Prabhu if (p && (p->flags & BR_VLAN_TUNNEL) && 43511538d03SRoopa Prabhu br_handle_egress_vlan_tunnel(skb, v)) { 43611538d03SRoopa Prabhu kfree_skb(skb); 43711538d03SRoopa Prabhu return NULL; 43811538d03SRoopa Prabhu } 43978851988SVlad Yasevich out: 44078851988SVlad Yasevich return skb; 44178851988SVlad Yasevich } 44278851988SVlad Yasevich 44378851988SVlad Yasevich /* Called under RCU */ 4446dada9b1SNikolay Aleksandrov static bool __allowed_ingress(const struct net_bridge *br, 4456dada9b1SNikolay Aleksandrov struct net_bridge_vlan_group *vg, 44678851988SVlad Yasevich struct sk_buff *skb, u16 *vid) 44778851988SVlad Yasevich { 4486dada9b1SNikolay Aleksandrov struct br_vlan_stats *stats; 4496dada9b1SNikolay Aleksandrov struct net_bridge_vlan *v; 4508580e211SToshiaki Makita bool tagged; 451a37b85c9SVlad Yasevich 45220adfa1aSVlad Yasevich BR_INPUT_SKB_CB(skb)->vlan_filtered = true; 45312464bb8SToshiaki Makita /* If vlan tx offload is disabled on bridge device and frame was 45412464bb8SToshiaki Makita * sent from vlan device on the bridge device, it does not have 45512464bb8SToshiaki Makita * HW accelerated vlan tag. 45612464bb8SToshiaki Makita */ 457df8a39deSJiri Pirko if (unlikely(!skb_vlan_tag_present(skb) && 4586dada9b1SNikolay Aleksandrov skb->protocol == br->vlan_proto)) { 4590d5501c1SVlad Yasevich skb = skb_vlan_untag(skb); 46012464bb8SToshiaki Makita if (unlikely(!skb)) 46112464bb8SToshiaki Makita return false; 46212464bb8SToshiaki Makita } 46312464bb8SToshiaki Makita 4648580e211SToshiaki Makita if (!br_vlan_get_tag(skb, vid)) { 4658580e211SToshiaki Makita /* Tagged frame */ 4666dada9b1SNikolay Aleksandrov if (skb->vlan_proto != br->vlan_proto) { 4678580e211SToshiaki Makita /* Protocol-mismatch, empty out vlan_tci for new tag */ 4688580e211SToshiaki Makita skb_push(skb, ETH_HLEN); 46962749e2cSJiri Pirko skb = vlan_insert_tag_set_proto(skb, skb->vlan_proto, 470df8a39deSJiri Pirko skb_vlan_tag_get(skb)); 4718580e211SToshiaki Makita if (unlikely(!skb)) 4728580e211SToshiaki Makita return false; 4738580e211SToshiaki Makita 4748580e211SToshiaki Makita skb_pull(skb, ETH_HLEN); 4758580e211SToshiaki Makita skb_reset_mac_len(skb); 4768580e211SToshiaki Makita *vid = 0; 4778580e211SToshiaki Makita tagged = false; 4788580e211SToshiaki Makita } else { 4798580e211SToshiaki Makita tagged = true; 4808580e211SToshiaki Makita } 4818580e211SToshiaki Makita } else { 4828580e211SToshiaki Makita /* Untagged frame */ 4838580e211SToshiaki Makita tagged = false; 4848580e211SToshiaki Makita } 4858580e211SToshiaki Makita 486b90356ceSToshiaki Makita if (!*vid) { 48777751ee8SNikolay Aleksandrov u16 pvid = br_get_pvid(vg); 48877751ee8SNikolay Aleksandrov 489b90356ceSToshiaki Makita /* Frame had a tag with VID 0 or did not have a tag. 490b90356ceSToshiaki Makita * See if pvid is set on this port. That tells us which 491b90356ceSToshiaki Makita * vlan untagged or priority-tagged traffic belongs to. 49278851988SVlad Yasevich */ 4933df6bf45SVlad Yasevich if (!pvid) 494eb707618SToshiaki Makita goto drop; 49578851988SVlad Yasevich 496b90356ceSToshiaki Makita /* PVID is set on this port. Any untagged or priority-tagged 497b90356ceSToshiaki Makita * ingress frame is considered to belong to this vlan. 49878851988SVlad Yasevich */ 499dfb5fa32SToshiaki Makita *vid = pvid; 5008580e211SToshiaki Makita if (likely(!tagged)) 501b90356ceSToshiaki Makita /* Untagged Frame. */ 5026dada9b1SNikolay Aleksandrov __vlan_hwaccel_put_tag(skb, br->vlan_proto, pvid); 503b90356ceSToshiaki Makita else 504b90356ceSToshiaki Makita /* Priority-tagged Frame. 5055978f8a9SMichał Mirosław * At this point, we know that skb->vlan_tci VID 5065978f8a9SMichał Mirosław * field was 0. 507b90356ceSToshiaki Makita * We update only VID field and preserve PCP field. 508b90356ceSToshiaki Makita */ 509b90356ceSToshiaki Makita skb->vlan_tci |= pvid; 510b90356ceSToshiaki Makita 5116dada9b1SNikolay Aleksandrov /* if stats are disabled we can avoid the lookup */ 512ae75767eSNikolay Aleksandrov if (!br_opt_get(br, BROPT_VLAN_STATS_ENABLED)) 51378851988SVlad Yasevich return true; 51478851988SVlad Yasevich } 51577751ee8SNikolay Aleksandrov v = br_vlan_find(vg, *vid); 5166dada9b1SNikolay Aleksandrov if (!v || !br_vlan_should_use(v)) 5176dada9b1SNikolay Aleksandrov goto drop; 5186dada9b1SNikolay Aleksandrov 519ae75767eSNikolay Aleksandrov if (br_opt_get(br, BROPT_VLAN_STATS_ENABLED)) { 5206dada9b1SNikolay Aleksandrov stats = this_cpu_ptr(v->stats); 5216dada9b1SNikolay Aleksandrov u64_stats_update_begin(&stats->syncp); 5226dada9b1SNikolay Aleksandrov stats->rx_bytes += skb->len; 5236dada9b1SNikolay Aleksandrov stats->rx_packets++; 5246dada9b1SNikolay Aleksandrov u64_stats_update_end(&stats->syncp); 5256dada9b1SNikolay Aleksandrov } 5266dada9b1SNikolay Aleksandrov 527a37b85c9SVlad Yasevich return true; 5286dada9b1SNikolay Aleksandrov 529eb707618SToshiaki Makita drop: 530eb707618SToshiaki Makita kfree_skb(skb); 531a37b85c9SVlad Yasevich return false; 532a37b85c9SVlad Yasevich } 533a37b85c9SVlad Yasevich 53477751ee8SNikolay Aleksandrov bool br_allowed_ingress(const struct net_bridge *br, 53577751ee8SNikolay Aleksandrov struct net_bridge_vlan_group *vg, struct sk_buff *skb, 5362594e906SNikolay Aleksandrov u16 *vid) 5372594e906SNikolay Aleksandrov { 5382594e906SNikolay Aleksandrov /* If VLAN filtering is disabled on the bridge, all packets are 5392594e906SNikolay Aleksandrov * permitted. 5402594e906SNikolay Aleksandrov */ 541ae75767eSNikolay Aleksandrov if (!br_opt_get(br, BROPT_VLAN_ENABLED)) { 5422594e906SNikolay Aleksandrov BR_INPUT_SKB_CB(skb)->vlan_filtered = false; 5432594e906SNikolay Aleksandrov return true; 5442594e906SNikolay Aleksandrov } 5452594e906SNikolay Aleksandrov 5466dada9b1SNikolay Aleksandrov return __allowed_ingress(br, vg, skb, vid); 5472594e906SNikolay Aleksandrov } 5482594e906SNikolay Aleksandrov 54985f46c6bSVlad Yasevich /* Called under RCU. */ 5502594e906SNikolay Aleksandrov bool br_allowed_egress(struct net_bridge_vlan_group *vg, 55185f46c6bSVlad Yasevich const struct sk_buff *skb) 55285f46c6bSVlad Yasevich { 5532594e906SNikolay Aleksandrov const struct net_bridge_vlan *v; 55485f46c6bSVlad Yasevich u16 vid; 55585f46c6bSVlad Yasevich 55620adfa1aSVlad Yasevich /* If this packet was not filtered at input, let it pass */ 55720adfa1aSVlad Yasevich if (!BR_INPUT_SKB_CB(skb)->vlan_filtered) 55885f46c6bSVlad Yasevich return true; 55985f46c6bSVlad Yasevich 56085f46c6bSVlad Yasevich br_vlan_get_tag(skb, &vid); 5612594e906SNikolay Aleksandrov v = br_vlan_find(vg, vid); 5622594e906SNikolay Aleksandrov if (v && br_vlan_should_use(v)) 56385f46c6bSVlad Yasevich return true; 56485f46c6bSVlad Yasevich 56585f46c6bSVlad Yasevich return false; 56685f46c6bSVlad Yasevich } 56785f46c6bSVlad Yasevich 568e0d7968aSToshiaki Makita /* Called under RCU */ 569e0d7968aSToshiaki Makita bool br_should_learn(struct net_bridge_port *p, struct sk_buff *skb, u16 *vid) 570e0d7968aSToshiaki Makita { 571468e7944SNikolay Aleksandrov struct net_bridge_vlan_group *vg; 572e0d7968aSToshiaki Makita struct net_bridge *br = p->br; 573e0d7968aSToshiaki Makita 57420adfa1aSVlad Yasevich /* If filtering was disabled at input, let it pass. */ 575ae75767eSNikolay Aleksandrov if (!br_opt_get(br, BROPT_VLAN_ENABLED)) 576e0d7968aSToshiaki Makita return true; 577e0d7968aSToshiaki Makita 578eca1e006SIdo Schimmel vg = nbp_vlan_group_rcu(p); 579468e7944SNikolay Aleksandrov if (!vg || !vg->num_vlans) 580e0d7968aSToshiaki Makita return false; 581e0d7968aSToshiaki Makita 5828580e211SToshiaki Makita if (!br_vlan_get_tag(skb, vid) && skb->vlan_proto != br->vlan_proto) 5838580e211SToshiaki Makita *vid = 0; 5848580e211SToshiaki Makita 585e0d7968aSToshiaki Makita if (!*vid) { 58677751ee8SNikolay Aleksandrov *vid = br_get_pvid(vg); 5873df6bf45SVlad Yasevich if (!*vid) 588e0d7968aSToshiaki Makita return false; 589e0d7968aSToshiaki Makita 590e0d7968aSToshiaki Makita return true; 591e0d7968aSToshiaki Makita } 592e0d7968aSToshiaki Makita 59377751ee8SNikolay Aleksandrov if (br_vlan_find(vg, *vid)) 594e0d7968aSToshiaki Makita return true; 595e0d7968aSToshiaki Makita 596e0d7968aSToshiaki Makita return false; 597e0d7968aSToshiaki Makita } 598e0d7968aSToshiaki Makita 599dbd6dc75SPetr Machata static int br_vlan_add_existing(struct net_bridge *br, 600dbd6dc75SPetr Machata struct net_bridge_vlan_group *vg, 601dbd6dc75SPetr Machata struct net_bridge_vlan *vlan, 602169327d5SPetr Machata u16 flags, bool *changed, 603169327d5SPetr Machata struct netlink_ext_ack *extack) 604dbd6dc75SPetr Machata { 605dbd6dc75SPetr Machata int err; 606dbd6dc75SPetr Machata 607169327d5SPetr Machata err = br_switchdev_port_vlan_add(br->dev, vlan->vid, flags, extack); 6089c86ce2cSPetr Machata if (err && err != -EOPNOTSUPP) 6099c86ce2cSPetr Machata return err; 6109c86ce2cSPetr Machata 611dbd6dc75SPetr Machata if (!br_vlan_is_brentry(vlan)) { 612dbd6dc75SPetr Machata /* Trying to change flags of non-existent bridge vlan */ 6139c86ce2cSPetr Machata if (!(flags & BRIDGE_VLAN_INFO_BRENTRY)) { 6149c86ce2cSPetr Machata err = -EINVAL; 6159c86ce2cSPetr Machata goto err_flags; 6169c86ce2cSPetr Machata } 617dbd6dc75SPetr Machata /* It was only kept for port vlans, now make it real */ 618dbd6dc75SPetr Machata err = br_fdb_insert(br, NULL, br->dev->dev_addr, 619dbd6dc75SPetr Machata vlan->vid); 620dbd6dc75SPetr Machata if (err) { 621dbd6dc75SPetr Machata br_err(br, "failed to insert local address into bridge forwarding table\n"); 6229c86ce2cSPetr Machata goto err_fdb_insert; 623dbd6dc75SPetr Machata } 624dbd6dc75SPetr Machata 625dbd6dc75SPetr Machata refcount_inc(&vlan->refcnt); 626dbd6dc75SPetr Machata vlan->flags |= BRIDGE_VLAN_INFO_BRENTRY; 627dbd6dc75SPetr Machata vg->num_vlans++; 628dbd6dc75SPetr Machata *changed = true; 629dbd6dc75SPetr Machata } 630dbd6dc75SPetr Machata 631dbd6dc75SPetr Machata if (__vlan_add_flags(vlan, flags)) 632dbd6dc75SPetr Machata *changed = true; 633dbd6dc75SPetr Machata 634dbd6dc75SPetr Machata return 0; 6359c86ce2cSPetr Machata 6369c86ce2cSPetr Machata err_fdb_insert: 6379c86ce2cSPetr Machata err_flags: 6389c86ce2cSPetr Machata br_switchdev_port_vlan_del(br->dev, vlan->vid); 6399c86ce2cSPetr Machata return err; 640dbd6dc75SPetr Machata } 641dbd6dc75SPetr Machata 6428adff41cSToshiaki Makita /* Must be protected by RTNL. 6438adff41cSToshiaki Makita * Must be called with vid in range from 1 to 4094 inclusive. 644f418af63SNikolay Aleksandrov * changed must be true only if the vlan was created or updated 6458adff41cSToshiaki Makita */ 646169327d5SPetr Machata int br_vlan_add(struct net_bridge *br, u16 vid, u16 flags, bool *changed, 647169327d5SPetr Machata struct netlink_ext_ack *extack) 648243a2e63SVlad Yasevich { 649907b1e6eSNikolay Aleksandrov struct net_bridge_vlan_group *vg; 6502594e906SNikolay Aleksandrov struct net_bridge_vlan *vlan; 6512594e906SNikolay Aleksandrov int ret; 652243a2e63SVlad Yasevich 653243a2e63SVlad Yasevich ASSERT_RTNL(); 654243a2e63SVlad Yasevich 655f418af63SNikolay Aleksandrov *changed = false; 656907b1e6eSNikolay Aleksandrov vg = br_vlan_group(br); 657907b1e6eSNikolay Aleksandrov vlan = br_vlan_find(vg, vid); 658dbd6dc75SPetr Machata if (vlan) 659169327d5SPetr Machata return br_vlan_add_existing(br, vg, vlan, flags, changed, 660169327d5SPetr Machata extack); 661243a2e63SVlad Yasevich 6622594e906SNikolay Aleksandrov vlan = kzalloc(sizeof(*vlan), GFP_KERNEL); 6632594e906SNikolay Aleksandrov if (!vlan) 664243a2e63SVlad Yasevich return -ENOMEM; 665243a2e63SVlad Yasevich 6666dada9b1SNikolay Aleksandrov vlan->stats = netdev_alloc_pcpu_stats(struct br_vlan_stats); 6676dada9b1SNikolay Aleksandrov if (!vlan->stats) { 6686dada9b1SNikolay Aleksandrov kfree(vlan); 6696dada9b1SNikolay Aleksandrov return -ENOMEM; 6706dada9b1SNikolay Aleksandrov } 6712594e906SNikolay Aleksandrov vlan->vid = vid; 6722594e906SNikolay Aleksandrov vlan->flags = flags | BRIDGE_VLAN_INFO_MASTER; 6732594e906SNikolay Aleksandrov vlan->flags &= ~BRIDGE_VLAN_INFO_PVID; 6742594e906SNikolay Aleksandrov vlan->br = br; 6752594e906SNikolay Aleksandrov if (flags & BRIDGE_VLAN_INFO_BRENTRY) 67625127759SReshetova, Elena refcount_set(&vlan->refcnt, 1); 677169327d5SPetr Machata ret = __vlan_add(vlan, flags, extack); 6786dada9b1SNikolay Aleksandrov if (ret) { 6796dada9b1SNikolay Aleksandrov free_percpu(vlan->stats); 6802594e906SNikolay Aleksandrov kfree(vlan); 681f418af63SNikolay Aleksandrov } else { 682f418af63SNikolay Aleksandrov *changed = true; 6836dada9b1SNikolay Aleksandrov } 684243a2e63SVlad Yasevich 6852594e906SNikolay Aleksandrov return ret; 686243a2e63SVlad Yasevich } 687243a2e63SVlad Yasevich 6888adff41cSToshiaki Makita /* Must be protected by RTNL. 6898adff41cSToshiaki Makita * Must be called with vid in range from 1 to 4094 inclusive. 6908adff41cSToshiaki Makita */ 691243a2e63SVlad Yasevich int br_vlan_delete(struct net_bridge *br, u16 vid) 692243a2e63SVlad Yasevich { 693907b1e6eSNikolay Aleksandrov struct net_bridge_vlan_group *vg; 6942594e906SNikolay Aleksandrov struct net_bridge_vlan *v; 695243a2e63SVlad Yasevich 696243a2e63SVlad Yasevich ASSERT_RTNL(); 697243a2e63SVlad Yasevich 698907b1e6eSNikolay Aleksandrov vg = br_vlan_group(br); 699907b1e6eSNikolay Aleksandrov v = br_vlan_find(vg, vid); 7002594e906SNikolay Aleksandrov if (!v || !br_vlan_is_brentry(v)) 7012594e906SNikolay Aleksandrov return -ENOENT; 702243a2e63SVlad Yasevich 703424bb9c9SToshiaki Makita br_fdb_find_delete_local(br, NULL, br->dev->dev_addr, vid); 7043741873bSRoopa Prabhu br_fdb_delete_by_port(br, NULL, vid, 0); 705bc9a25d2SVlad Yasevich 706efa5356bSRoopa Prabhu vlan_tunnel_info_del(vg, v); 707efa5356bSRoopa Prabhu 7082594e906SNikolay Aleksandrov return __vlan_del(v); 709243a2e63SVlad Yasevich } 710243a2e63SVlad Yasevich 711243a2e63SVlad Yasevich void br_vlan_flush(struct net_bridge *br) 712243a2e63SVlad Yasevich { 713f409d0edSNikolay Aleksandrov struct net_bridge_vlan_group *vg; 714f409d0edSNikolay Aleksandrov 715243a2e63SVlad Yasevich ASSERT_RTNL(); 716243a2e63SVlad Yasevich 717f409d0edSNikolay Aleksandrov vg = br_vlan_group(br); 718f409d0edSNikolay Aleksandrov __vlan_flush(vg); 719f409d0edSNikolay Aleksandrov RCU_INIT_POINTER(br->vlgrp, NULL); 720f409d0edSNikolay Aleksandrov synchronize_rcu(); 721f409d0edSNikolay Aleksandrov __vlan_group_free(vg); 722243a2e63SVlad Yasevich } 723243a2e63SVlad Yasevich 7242594e906SNikolay Aleksandrov struct net_bridge_vlan *br_vlan_find(struct net_bridge_vlan_group *vg, u16 vid) 7252b292fb4SToshiaki Makita { 7262594e906SNikolay Aleksandrov if (!vg) 7272594e906SNikolay Aleksandrov return NULL; 7282b292fb4SToshiaki Makita 7292594e906SNikolay Aleksandrov return br_vlan_lookup(&vg->vlan_hash, vid); 7302b292fb4SToshiaki Makita } 7312b292fb4SToshiaki Makita 732204177f3SToshiaki Makita /* Must be protected by RTNL. */ 733204177f3SToshiaki Makita static void recalculate_group_addr(struct net_bridge *br) 734204177f3SToshiaki Makita { 735be3664a0SNikolay Aleksandrov if (br_opt_get(br, BROPT_GROUP_ADDR_SET)) 736204177f3SToshiaki Makita return; 737204177f3SToshiaki Makita 738204177f3SToshiaki Makita spin_lock_bh(&br->lock); 739ae75767eSNikolay Aleksandrov if (!br_opt_get(br, BROPT_VLAN_ENABLED) || 740ae75767eSNikolay Aleksandrov br->vlan_proto == htons(ETH_P_8021Q)) { 741204177f3SToshiaki Makita /* Bridge Group Address */ 742204177f3SToshiaki Makita br->group_addr[5] = 0x00; 743204177f3SToshiaki Makita } else { /* vlan_enabled && ETH_P_8021AD */ 744204177f3SToshiaki Makita /* Provider Bridge Group Address */ 745204177f3SToshiaki Makita br->group_addr[5] = 0x08; 746204177f3SToshiaki Makita } 747204177f3SToshiaki Makita spin_unlock_bh(&br->lock); 748204177f3SToshiaki Makita } 749204177f3SToshiaki Makita 750204177f3SToshiaki Makita /* Must be protected by RTNL. */ 751204177f3SToshiaki Makita void br_recalculate_fwd_mask(struct net_bridge *br) 752204177f3SToshiaki Makita { 753ae75767eSNikolay Aleksandrov if (!br_opt_get(br, BROPT_VLAN_ENABLED) || 754ae75767eSNikolay Aleksandrov br->vlan_proto == htons(ETH_P_8021Q)) 755204177f3SToshiaki Makita br->group_fwd_mask_required = BR_GROUPFWD_DEFAULT; 756204177f3SToshiaki Makita else /* vlan_enabled && ETH_P_8021AD */ 757204177f3SToshiaki Makita br->group_fwd_mask_required = BR_GROUPFWD_8021AD & 758204177f3SToshiaki Makita ~(1u << br->group_addr[5]); 759204177f3SToshiaki Makita } 760204177f3SToshiaki Makita 761a7854037SNikolay Aleksandrov int __br_vlan_filter_toggle(struct net_bridge *br, unsigned long val) 762243a2e63SVlad Yasevich { 7636b72a770SElad Raz struct switchdev_attr attr = { 7646b72a770SElad Raz .orig_dev = br->dev, 7656b72a770SElad Raz .id = SWITCHDEV_ATTR_ID_BRIDGE_VLAN_FILTERING, 7666b72a770SElad Raz .flags = SWITCHDEV_F_SKIP_EOPNOTSUPP, 7676b72a770SElad Raz .u.vlan_filtering = val, 7686b72a770SElad Raz }; 7696b72a770SElad Raz int err; 7706b72a770SElad Raz 771ae75767eSNikolay Aleksandrov if (br_opt_get(br, BROPT_VLAN_ENABLED) == !!val) 772a7854037SNikolay Aleksandrov return 0; 773243a2e63SVlad Yasevich 7746b72a770SElad Raz err = switchdev_port_attr_set(br->dev, &attr); 7756b72a770SElad Raz if (err && err != -EOPNOTSUPP) 7766b72a770SElad Raz return err; 7776b72a770SElad Raz 778ae75767eSNikolay Aleksandrov br_opt_toggle(br, BROPT_VLAN_ENABLED, !!val); 7792796d0c6SVlad Yasevich br_manage_promisc(br); 780204177f3SToshiaki Makita recalculate_group_addr(br); 781204177f3SToshiaki Makita br_recalculate_fwd_mask(br); 782243a2e63SVlad Yasevich 783a7854037SNikolay Aleksandrov return 0; 784a7854037SNikolay Aleksandrov } 785a7854037SNikolay Aleksandrov 786a7854037SNikolay Aleksandrov int br_vlan_filter_toggle(struct net_bridge *br, unsigned long val) 787a7854037SNikolay Aleksandrov { 788047831a9SXin Long return __br_vlan_filter_toggle(br, val); 789243a2e63SVlad Yasevich } 790243a2e63SVlad Yasevich 7911f51445aSIdo Schimmel bool br_vlan_enabled(const struct net_device *dev) 7921f51445aSIdo Schimmel { 7931f51445aSIdo Schimmel struct net_bridge *br = netdev_priv(dev); 7941f51445aSIdo Schimmel 795ae75767eSNikolay Aleksandrov return br_opt_get(br, BROPT_VLAN_ENABLED); 7961f51445aSIdo Schimmel } 7971f51445aSIdo Schimmel EXPORT_SYMBOL_GPL(br_vlan_enabled); 7981f51445aSIdo Schimmel 799d2d427b3SToshiaki Makita int __br_vlan_set_proto(struct net_bridge *br, __be16 proto) 800204177f3SToshiaki Makita { 801204177f3SToshiaki Makita int err = 0; 802204177f3SToshiaki Makita struct net_bridge_port *p; 8032594e906SNikolay Aleksandrov struct net_bridge_vlan *vlan; 804907b1e6eSNikolay Aleksandrov struct net_bridge_vlan_group *vg; 805d2d427b3SToshiaki Makita __be16 oldproto; 806204177f3SToshiaki Makita 807204177f3SToshiaki Makita if (br->vlan_proto == proto) 808d2d427b3SToshiaki Makita return 0; 809204177f3SToshiaki Makita 810204177f3SToshiaki Makita /* Add VLANs for the new proto to the device filter. */ 811204177f3SToshiaki Makita list_for_each_entry(p, &br->port_list, list) { 812907b1e6eSNikolay Aleksandrov vg = nbp_vlan_group(p); 813907b1e6eSNikolay Aleksandrov list_for_each_entry(vlan, &vg->vlan_list, vlist) { 8142594e906SNikolay Aleksandrov err = vlan_vid_add(p->dev, proto, vlan->vid); 815204177f3SToshiaki Makita if (err) 816204177f3SToshiaki Makita goto err_filt; 817204177f3SToshiaki Makita } 818204177f3SToshiaki Makita } 819204177f3SToshiaki Makita 820204177f3SToshiaki Makita oldproto = br->vlan_proto; 821204177f3SToshiaki Makita br->vlan_proto = proto; 822204177f3SToshiaki Makita 823204177f3SToshiaki Makita recalculate_group_addr(br); 824204177f3SToshiaki Makita br_recalculate_fwd_mask(br); 825204177f3SToshiaki Makita 826204177f3SToshiaki Makita /* Delete VLANs for the old proto from the device filter. */ 827907b1e6eSNikolay Aleksandrov list_for_each_entry(p, &br->port_list, list) { 828907b1e6eSNikolay Aleksandrov vg = nbp_vlan_group(p); 829907b1e6eSNikolay Aleksandrov list_for_each_entry(vlan, &vg->vlan_list, vlist) 8302594e906SNikolay Aleksandrov vlan_vid_del(p->dev, oldproto, vlan->vid); 831907b1e6eSNikolay Aleksandrov } 832204177f3SToshiaki Makita 833d2d427b3SToshiaki Makita return 0; 834204177f3SToshiaki Makita 835204177f3SToshiaki Makita err_filt: 836907b1e6eSNikolay Aleksandrov list_for_each_entry_continue_reverse(vlan, &vg->vlan_list, vlist) 8372594e906SNikolay Aleksandrov vlan_vid_del(p->dev, proto, vlan->vid); 838204177f3SToshiaki Makita 839907b1e6eSNikolay Aleksandrov list_for_each_entry_continue_reverse(p, &br->port_list, list) { 840907b1e6eSNikolay Aleksandrov vg = nbp_vlan_group(p); 841907b1e6eSNikolay Aleksandrov list_for_each_entry(vlan, &vg->vlan_list, vlist) 8422594e906SNikolay Aleksandrov vlan_vid_del(p->dev, proto, vlan->vid); 843907b1e6eSNikolay Aleksandrov } 844204177f3SToshiaki Makita 845d2d427b3SToshiaki Makita return err; 846d2d427b3SToshiaki Makita } 847d2d427b3SToshiaki Makita 848d2d427b3SToshiaki Makita int br_vlan_set_proto(struct net_bridge *br, unsigned long val) 849d2d427b3SToshiaki Makita { 850d2d427b3SToshiaki Makita if (val != ETH_P_8021Q && val != ETH_P_8021AD) 851d2d427b3SToshiaki Makita return -EPROTONOSUPPORT; 852d2d427b3SToshiaki Makita 853047831a9SXin Long return __br_vlan_set_proto(br, htons(val)); 854204177f3SToshiaki Makita } 855204177f3SToshiaki Makita 8566dada9b1SNikolay Aleksandrov int br_vlan_set_stats(struct net_bridge *br, unsigned long val) 8576dada9b1SNikolay Aleksandrov { 8586dada9b1SNikolay Aleksandrov switch (val) { 8596dada9b1SNikolay Aleksandrov case 0: 8606dada9b1SNikolay Aleksandrov case 1: 861ae75767eSNikolay Aleksandrov br_opt_toggle(br, BROPT_VLAN_STATS_ENABLED, !!val); 8626dada9b1SNikolay Aleksandrov break; 8636dada9b1SNikolay Aleksandrov default: 8646dada9b1SNikolay Aleksandrov return -EINVAL; 8656dada9b1SNikolay Aleksandrov } 8666dada9b1SNikolay Aleksandrov 8676dada9b1SNikolay Aleksandrov return 0; 8686dada9b1SNikolay Aleksandrov } 8696dada9b1SNikolay Aleksandrov 8709163a0fcSNikolay Aleksandrov int br_vlan_set_stats_per_port(struct net_bridge *br, unsigned long val) 8719163a0fcSNikolay Aleksandrov { 8729163a0fcSNikolay Aleksandrov struct net_bridge_port *p; 8739163a0fcSNikolay Aleksandrov 8749163a0fcSNikolay Aleksandrov /* allow to change the option if there are no port vlans configured */ 8759163a0fcSNikolay Aleksandrov list_for_each_entry(p, &br->port_list, list) { 8769163a0fcSNikolay Aleksandrov struct net_bridge_vlan_group *vg = nbp_vlan_group(p); 8779163a0fcSNikolay Aleksandrov 8789163a0fcSNikolay Aleksandrov if (vg->num_vlans) 8799163a0fcSNikolay Aleksandrov return -EBUSY; 8809163a0fcSNikolay Aleksandrov } 8819163a0fcSNikolay Aleksandrov 8829163a0fcSNikolay Aleksandrov switch (val) { 8839163a0fcSNikolay Aleksandrov case 0: 8849163a0fcSNikolay Aleksandrov case 1: 8859163a0fcSNikolay Aleksandrov br_opt_toggle(br, BROPT_VLAN_STATS_PER_PORT, !!val); 8869163a0fcSNikolay Aleksandrov break; 8879163a0fcSNikolay Aleksandrov default: 8889163a0fcSNikolay Aleksandrov return -EINVAL; 8899163a0fcSNikolay Aleksandrov } 8909163a0fcSNikolay Aleksandrov 8919163a0fcSNikolay Aleksandrov return 0; 8929163a0fcSNikolay Aleksandrov } 8939163a0fcSNikolay Aleksandrov 89477751ee8SNikolay Aleksandrov static bool vlan_default_pvid(struct net_bridge_vlan_group *vg, u16 vid) 8955be5a2dfSVlad Yasevich { 8962594e906SNikolay Aleksandrov struct net_bridge_vlan *v; 8972594e906SNikolay Aleksandrov 89877751ee8SNikolay Aleksandrov if (vid != vg->pvid) 8992594e906SNikolay Aleksandrov return false; 9002594e906SNikolay Aleksandrov 9012594e906SNikolay Aleksandrov v = br_vlan_lookup(&vg->vlan_hash, vid); 9022594e906SNikolay Aleksandrov if (v && br_vlan_should_use(v) && 9032594e906SNikolay Aleksandrov (v->flags & BRIDGE_VLAN_INFO_UNTAGGED)) 9042594e906SNikolay Aleksandrov return true; 9052594e906SNikolay Aleksandrov 9062594e906SNikolay Aleksandrov return false; 9075be5a2dfSVlad Yasevich } 9085be5a2dfSVlad Yasevich 9095be5a2dfSVlad Yasevich static void br_vlan_disable_default_pvid(struct net_bridge *br) 9105be5a2dfSVlad Yasevich { 9115be5a2dfSVlad Yasevich struct net_bridge_port *p; 9125be5a2dfSVlad Yasevich u16 pvid = br->default_pvid; 9135be5a2dfSVlad Yasevich 9145be5a2dfSVlad Yasevich /* Disable default_pvid on all ports where it is still 9155be5a2dfSVlad Yasevich * configured. 9165be5a2dfSVlad Yasevich */ 917907b1e6eSNikolay Aleksandrov if (vlan_default_pvid(br_vlan_group(br), pvid)) 9185be5a2dfSVlad Yasevich br_vlan_delete(br, pvid); 9195be5a2dfSVlad Yasevich 9205be5a2dfSVlad Yasevich list_for_each_entry(p, &br->port_list, list) { 921907b1e6eSNikolay Aleksandrov if (vlan_default_pvid(nbp_vlan_group(p), pvid)) 9225be5a2dfSVlad Yasevich nbp_vlan_delete(p, pvid); 9235be5a2dfSVlad Yasevich } 9245be5a2dfSVlad Yasevich 9255be5a2dfSVlad Yasevich br->default_pvid = 0; 9265be5a2dfSVlad Yasevich } 9275be5a2dfSVlad Yasevich 928169327d5SPetr Machata int __br_vlan_set_default_pvid(struct net_bridge *br, u16 pvid, 929169327d5SPetr Machata struct netlink_ext_ack *extack) 9305be5a2dfSVlad Yasevich { 9312594e906SNikolay Aleksandrov const struct net_bridge_vlan *pvent; 932907b1e6eSNikolay Aleksandrov struct net_bridge_vlan_group *vg; 9335be5a2dfSVlad Yasevich struct net_bridge_port *p; 934f418af63SNikolay Aleksandrov unsigned long *changed; 935f418af63SNikolay Aleksandrov bool vlchange; 9365be5a2dfSVlad Yasevich u16 old_pvid; 9375be5a2dfSVlad Yasevich int err = 0; 9385be5a2dfSVlad Yasevich 9390f963b75SNikolay Aleksandrov if (!pvid) { 9400f963b75SNikolay Aleksandrov br_vlan_disable_default_pvid(br); 9410f963b75SNikolay Aleksandrov return 0; 9420f963b75SNikolay Aleksandrov } 9430f963b75SNikolay Aleksandrov 944459479daSAndy Shevchenko changed = bitmap_zalloc(BR_MAX_PORTS, GFP_KERNEL); 9455be5a2dfSVlad Yasevich if (!changed) 9465be5a2dfSVlad Yasevich return -ENOMEM; 9475be5a2dfSVlad Yasevich 9485be5a2dfSVlad Yasevich old_pvid = br->default_pvid; 9495be5a2dfSVlad Yasevich 9505be5a2dfSVlad Yasevich /* Update default_pvid config only if we do not conflict with 9515be5a2dfSVlad Yasevich * user configuration. 9525be5a2dfSVlad Yasevich */ 953907b1e6eSNikolay Aleksandrov vg = br_vlan_group(br); 954907b1e6eSNikolay Aleksandrov pvent = br_vlan_find(vg, pvid); 955907b1e6eSNikolay Aleksandrov if ((!old_pvid || vlan_default_pvid(vg, old_pvid)) && 9562594e906SNikolay Aleksandrov (!pvent || !br_vlan_should_use(pvent))) { 9575be5a2dfSVlad Yasevich err = br_vlan_add(br, pvid, 9585be5a2dfSVlad Yasevich BRIDGE_VLAN_INFO_PVID | 9592594e906SNikolay Aleksandrov BRIDGE_VLAN_INFO_UNTAGGED | 960f418af63SNikolay Aleksandrov BRIDGE_VLAN_INFO_BRENTRY, 961169327d5SPetr Machata &vlchange, extack); 9625be5a2dfSVlad Yasevich if (err) 9635be5a2dfSVlad Yasevich goto out; 9645be5a2dfSVlad Yasevich br_vlan_delete(br, old_pvid); 9655be5a2dfSVlad Yasevich set_bit(0, changed); 9665be5a2dfSVlad Yasevich } 9675be5a2dfSVlad Yasevich 9685be5a2dfSVlad Yasevich list_for_each_entry(p, &br->port_list, list) { 9695be5a2dfSVlad Yasevich /* Update default_pvid config only if we do not conflict with 9705be5a2dfSVlad Yasevich * user configuration. 9715be5a2dfSVlad Yasevich */ 972907b1e6eSNikolay Aleksandrov vg = nbp_vlan_group(p); 9735be5a2dfSVlad Yasevich if ((old_pvid && 974907b1e6eSNikolay Aleksandrov !vlan_default_pvid(vg, old_pvid)) || 975907b1e6eSNikolay Aleksandrov br_vlan_find(vg, pvid)) 9765be5a2dfSVlad Yasevich continue; 9775be5a2dfSVlad Yasevich 9785be5a2dfSVlad Yasevich err = nbp_vlan_add(p, pvid, 9795be5a2dfSVlad Yasevich BRIDGE_VLAN_INFO_PVID | 980f418af63SNikolay Aleksandrov BRIDGE_VLAN_INFO_UNTAGGED, 981169327d5SPetr Machata &vlchange, extack); 9825be5a2dfSVlad Yasevich if (err) 9835be5a2dfSVlad Yasevich goto err_port; 9845be5a2dfSVlad Yasevich nbp_vlan_delete(p, old_pvid); 9855be5a2dfSVlad Yasevich set_bit(p->port_no, changed); 9865be5a2dfSVlad Yasevich } 9875be5a2dfSVlad Yasevich 9885be5a2dfSVlad Yasevich br->default_pvid = pvid; 9895be5a2dfSVlad Yasevich 9905be5a2dfSVlad Yasevich out: 991459479daSAndy Shevchenko bitmap_free(changed); 9925be5a2dfSVlad Yasevich return err; 9935be5a2dfSVlad Yasevich 9945be5a2dfSVlad Yasevich err_port: 9955be5a2dfSVlad Yasevich list_for_each_entry_continue_reverse(p, &br->port_list, list) { 9965be5a2dfSVlad Yasevich if (!test_bit(p->port_no, changed)) 9975be5a2dfSVlad Yasevich continue; 9985be5a2dfSVlad Yasevich 9995be5a2dfSVlad Yasevich if (old_pvid) 10005be5a2dfSVlad Yasevich nbp_vlan_add(p, old_pvid, 10015be5a2dfSVlad Yasevich BRIDGE_VLAN_INFO_PVID | 1002f418af63SNikolay Aleksandrov BRIDGE_VLAN_INFO_UNTAGGED, 1003169327d5SPetr Machata &vlchange, NULL); 10045be5a2dfSVlad Yasevich nbp_vlan_delete(p, pvid); 10055be5a2dfSVlad Yasevich } 10065be5a2dfSVlad Yasevich 10075be5a2dfSVlad Yasevich if (test_bit(0, changed)) { 10085be5a2dfSVlad Yasevich if (old_pvid) 10095be5a2dfSVlad Yasevich br_vlan_add(br, old_pvid, 10105be5a2dfSVlad Yasevich BRIDGE_VLAN_INFO_PVID | 10112594e906SNikolay Aleksandrov BRIDGE_VLAN_INFO_UNTAGGED | 1012f418af63SNikolay Aleksandrov BRIDGE_VLAN_INFO_BRENTRY, 1013169327d5SPetr Machata &vlchange, NULL); 10145be5a2dfSVlad Yasevich br_vlan_delete(br, pvid); 10155be5a2dfSVlad Yasevich } 10165be5a2dfSVlad Yasevich goto out; 10175be5a2dfSVlad Yasevich } 10185be5a2dfSVlad Yasevich 101996a20d9dSVlad Yasevich int br_vlan_set_default_pvid(struct net_bridge *br, unsigned long val) 102096a20d9dSVlad Yasevich { 102196a20d9dSVlad Yasevich u16 pvid = val; 102296a20d9dSVlad Yasevich int err = 0; 102396a20d9dSVlad Yasevich 10245be5a2dfSVlad Yasevich if (val >= VLAN_VID_MASK) 102596a20d9dSVlad Yasevich return -EINVAL; 102696a20d9dSVlad Yasevich 102796a20d9dSVlad Yasevich if (pvid == br->default_pvid) 1028047831a9SXin Long goto out; 102996a20d9dSVlad Yasevich 103096a20d9dSVlad Yasevich /* Only allow default pvid change when filtering is disabled */ 1031ae75767eSNikolay Aleksandrov if (br_opt_get(br, BROPT_VLAN_ENABLED)) { 103296a20d9dSVlad Yasevich pr_info_once("Please disable vlan filtering to change default_pvid\n"); 103396a20d9dSVlad Yasevich err = -EPERM; 1034047831a9SXin Long goto out; 103596a20d9dSVlad Yasevich } 1036169327d5SPetr Machata err = __br_vlan_set_default_pvid(br, pvid, NULL); 1037047831a9SXin Long out: 103896a20d9dSVlad Yasevich return err; 103996a20d9dSVlad Yasevich } 104096a20d9dSVlad Yasevich 10415be5a2dfSVlad Yasevich int br_vlan_init(struct net_bridge *br) 10428580e211SToshiaki Makita { 1043907b1e6eSNikolay Aleksandrov struct net_bridge_vlan_group *vg; 10442594e906SNikolay Aleksandrov int ret = -ENOMEM; 1045f418af63SNikolay Aleksandrov bool changed; 10462594e906SNikolay Aleksandrov 1047907b1e6eSNikolay Aleksandrov vg = kzalloc(sizeof(*vg), GFP_KERNEL); 1048907b1e6eSNikolay Aleksandrov if (!vg) 10492594e906SNikolay Aleksandrov goto out; 1050907b1e6eSNikolay Aleksandrov ret = rhashtable_init(&vg->vlan_hash, &br_vlan_rht_params); 10512594e906SNikolay Aleksandrov if (ret) 10522594e906SNikolay Aleksandrov goto err_rhtbl; 1053efa5356bSRoopa Prabhu ret = vlan_tunnel_init(vg); 1054efa5356bSRoopa Prabhu if (ret) 1055efa5356bSRoopa Prabhu goto err_tunnel_init; 1056907b1e6eSNikolay Aleksandrov INIT_LIST_HEAD(&vg->vlan_list); 10578580e211SToshiaki Makita br->vlan_proto = htons(ETH_P_8021Q); 105896a20d9dSVlad Yasevich br->default_pvid = 1; 1059907b1e6eSNikolay Aleksandrov rcu_assign_pointer(br->vlgrp, vg); 10602594e906SNikolay Aleksandrov ret = br_vlan_add(br, 1, 10612594e906SNikolay Aleksandrov BRIDGE_VLAN_INFO_PVID | BRIDGE_VLAN_INFO_UNTAGGED | 1062169327d5SPetr Machata BRIDGE_VLAN_INFO_BRENTRY, &changed, NULL); 10632594e906SNikolay Aleksandrov if (ret) 10642594e906SNikolay Aleksandrov goto err_vlan_add; 10652594e906SNikolay Aleksandrov 10662594e906SNikolay Aleksandrov out: 10672594e906SNikolay Aleksandrov return ret; 10682594e906SNikolay Aleksandrov 10692594e906SNikolay Aleksandrov err_vlan_add: 1070efa5356bSRoopa Prabhu vlan_tunnel_deinit(vg); 1071efa5356bSRoopa Prabhu err_tunnel_init: 1072907b1e6eSNikolay Aleksandrov rhashtable_destroy(&vg->vlan_hash); 10732594e906SNikolay Aleksandrov err_rhtbl: 1074907b1e6eSNikolay Aleksandrov kfree(vg); 10752594e906SNikolay Aleksandrov 10762594e906SNikolay Aleksandrov goto out; 10772594e906SNikolay Aleksandrov } 10782594e906SNikolay Aleksandrov 1079169327d5SPetr Machata int nbp_vlan_init(struct net_bridge_port *p, struct netlink_ext_ack *extack) 10802594e906SNikolay Aleksandrov { 1081404cdbf0SElad Raz struct switchdev_attr attr = { 1082404cdbf0SElad Raz .orig_dev = p->br->dev, 1083404cdbf0SElad Raz .id = SWITCHDEV_ATTR_ID_BRIDGE_VLAN_FILTERING, 1084404cdbf0SElad Raz .flags = SWITCHDEV_F_SKIP_EOPNOTSUPP, 1085ae75767eSNikolay Aleksandrov .u.vlan_filtering = br_opt_get(p->br, BROPT_VLAN_ENABLED), 1086404cdbf0SElad Raz }; 1087263344e6SNikolay Aleksandrov struct net_bridge_vlan_group *vg; 10882594e906SNikolay Aleksandrov int ret = -ENOMEM; 10892594e906SNikolay Aleksandrov 1090263344e6SNikolay Aleksandrov vg = kzalloc(sizeof(struct net_bridge_vlan_group), GFP_KERNEL); 1091263344e6SNikolay Aleksandrov if (!vg) 10922594e906SNikolay Aleksandrov goto out; 10932594e906SNikolay Aleksandrov 1094404cdbf0SElad Raz ret = switchdev_port_attr_set(p->dev, &attr); 1095404cdbf0SElad Raz if (ret && ret != -EOPNOTSUPP) 1096404cdbf0SElad Raz goto err_vlan_enabled; 1097404cdbf0SElad Raz 1098263344e6SNikolay Aleksandrov ret = rhashtable_init(&vg->vlan_hash, &br_vlan_rht_params); 10992594e906SNikolay Aleksandrov if (ret) 11002594e906SNikolay Aleksandrov goto err_rhtbl; 1101efa5356bSRoopa Prabhu ret = vlan_tunnel_init(vg); 1102efa5356bSRoopa Prabhu if (ret) 1103efa5356bSRoopa Prabhu goto err_tunnel_init; 1104263344e6SNikolay Aleksandrov INIT_LIST_HEAD(&vg->vlan_list); 1105907b1e6eSNikolay Aleksandrov rcu_assign_pointer(p->vlgrp, vg); 11062594e906SNikolay Aleksandrov if (p->br->default_pvid) { 1107f418af63SNikolay Aleksandrov bool changed; 1108f418af63SNikolay Aleksandrov 11092594e906SNikolay Aleksandrov ret = nbp_vlan_add(p, p->br->default_pvid, 11102594e906SNikolay Aleksandrov BRIDGE_VLAN_INFO_PVID | 1111f418af63SNikolay Aleksandrov BRIDGE_VLAN_INFO_UNTAGGED, 1112169327d5SPetr Machata &changed, extack); 11132594e906SNikolay Aleksandrov if (ret) 11142594e906SNikolay Aleksandrov goto err_vlan_add; 11152594e906SNikolay Aleksandrov } 11162594e906SNikolay Aleksandrov out: 11172594e906SNikolay Aleksandrov return ret; 11182594e906SNikolay Aleksandrov 11192594e906SNikolay Aleksandrov err_vlan_add: 112007bc588fSIdo Schimmel RCU_INIT_POINTER(p->vlgrp, NULL); 112107bc588fSIdo Schimmel synchronize_rcu(); 1122efa5356bSRoopa Prabhu vlan_tunnel_deinit(vg); 1123efa5356bSRoopa Prabhu err_tunnel_init: 1124efa5356bSRoopa Prabhu rhashtable_destroy(&vg->vlan_hash); 11252594e906SNikolay Aleksandrov err_rhtbl: 1126df2c4334SYotam Gigi err_vlan_enabled: 1127263344e6SNikolay Aleksandrov kfree(vg); 11282594e906SNikolay Aleksandrov 11292594e906SNikolay Aleksandrov goto out; 11308580e211SToshiaki Makita } 11318580e211SToshiaki Makita 11328adff41cSToshiaki Makita /* Must be protected by RTNL. 11338adff41cSToshiaki Makita * Must be called with vid in range from 1 to 4094 inclusive. 1134f418af63SNikolay Aleksandrov * changed must be true only if the vlan was created or updated 11358adff41cSToshiaki Makita */ 1136f418af63SNikolay Aleksandrov int nbp_vlan_add(struct net_bridge_port *port, u16 vid, u16 flags, 1137169327d5SPetr Machata bool *changed, struct netlink_ext_ack *extack) 1138243a2e63SVlad Yasevich { 11392594e906SNikolay Aleksandrov struct net_bridge_vlan *vlan; 11402594e906SNikolay Aleksandrov int ret; 1141243a2e63SVlad Yasevich 1142243a2e63SVlad Yasevich ASSERT_RTNL(); 1143243a2e63SVlad Yasevich 1144f418af63SNikolay Aleksandrov *changed = false; 1145907b1e6eSNikolay Aleksandrov vlan = br_vlan_find(nbp_vlan_group(port), vid); 11462594e906SNikolay Aleksandrov if (vlan) { 11477fbac984SIdo Schimmel /* Pass the flags to the hardware bridge */ 1148169327d5SPetr Machata ret = br_switchdev_port_vlan_add(port->dev, vid, flags, extack); 11497fbac984SIdo Schimmel if (ret && ret != -EOPNOTSUPP) 11507fbac984SIdo Schimmel return ret; 1151f418af63SNikolay Aleksandrov *changed = __vlan_add_flags(vlan, flags); 1152f418af63SNikolay Aleksandrov 11532594e906SNikolay Aleksandrov return 0; 1154243a2e63SVlad Yasevich } 1155243a2e63SVlad Yasevich 11562594e906SNikolay Aleksandrov vlan = kzalloc(sizeof(*vlan), GFP_KERNEL); 11572594e906SNikolay Aleksandrov if (!vlan) 11582594e906SNikolay Aleksandrov return -ENOMEM; 1159243a2e63SVlad Yasevich 11602594e906SNikolay Aleksandrov vlan->vid = vid; 11612594e906SNikolay Aleksandrov vlan->port = port; 1162169327d5SPetr Machata ret = __vlan_add(vlan, flags, extack); 11632594e906SNikolay Aleksandrov if (ret) 11642594e906SNikolay Aleksandrov kfree(vlan); 1165f418af63SNikolay Aleksandrov else 1166f418af63SNikolay Aleksandrov *changed = true; 1167243a2e63SVlad Yasevich 11682594e906SNikolay Aleksandrov return ret; 1169243a2e63SVlad Yasevich } 1170243a2e63SVlad Yasevich 11718adff41cSToshiaki Makita /* Must be protected by RTNL. 11728adff41cSToshiaki Makita * Must be called with vid in range from 1 to 4094 inclusive. 11738adff41cSToshiaki Makita */ 1174243a2e63SVlad Yasevich int nbp_vlan_delete(struct net_bridge_port *port, u16 vid) 1175243a2e63SVlad Yasevich { 11762594e906SNikolay Aleksandrov struct net_bridge_vlan *v; 1177243a2e63SVlad Yasevich 1178243a2e63SVlad Yasevich ASSERT_RTNL(); 1179243a2e63SVlad Yasevich 1180907b1e6eSNikolay Aleksandrov v = br_vlan_find(nbp_vlan_group(port), vid); 11812594e906SNikolay Aleksandrov if (!v) 11822594e906SNikolay Aleksandrov return -ENOENT; 1183424bb9c9SToshiaki Makita br_fdb_find_delete_local(port->br, port, port->dev->dev_addr, vid); 11841ea2d020SNikolay Aleksandrov br_fdb_delete_by_port(port->br, port, vid, 0); 1185bc9a25d2SVlad Yasevich 11862594e906SNikolay Aleksandrov return __vlan_del(v); 1187243a2e63SVlad Yasevich } 1188243a2e63SVlad Yasevich 1189243a2e63SVlad Yasevich void nbp_vlan_flush(struct net_bridge_port *port) 1190243a2e63SVlad Yasevich { 1191f409d0edSNikolay Aleksandrov struct net_bridge_vlan_group *vg; 1192f409d0edSNikolay Aleksandrov 1193243a2e63SVlad Yasevich ASSERT_RTNL(); 1194243a2e63SVlad Yasevich 1195f409d0edSNikolay Aleksandrov vg = nbp_vlan_group(port); 1196f409d0edSNikolay Aleksandrov __vlan_flush(vg); 1197f409d0edSNikolay Aleksandrov RCU_INIT_POINTER(port->vlgrp, NULL); 1198f409d0edSNikolay Aleksandrov synchronize_rcu(); 1199f409d0edSNikolay Aleksandrov __vlan_group_free(vg); 12005be5a2dfSVlad Yasevich } 1201a60c0903SNikolay Aleksandrov 1202a60c0903SNikolay Aleksandrov void br_vlan_get_stats(const struct net_bridge_vlan *v, 1203a60c0903SNikolay Aleksandrov struct br_vlan_stats *stats) 1204a60c0903SNikolay Aleksandrov { 1205a60c0903SNikolay Aleksandrov int i; 1206a60c0903SNikolay Aleksandrov 1207a60c0903SNikolay Aleksandrov memset(stats, 0, sizeof(*stats)); 1208a60c0903SNikolay Aleksandrov for_each_possible_cpu(i) { 1209a60c0903SNikolay Aleksandrov u64 rxpackets, rxbytes, txpackets, txbytes; 1210a60c0903SNikolay Aleksandrov struct br_vlan_stats *cpu_stats; 1211a60c0903SNikolay Aleksandrov unsigned int start; 1212a60c0903SNikolay Aleksandrov 1213a60c0903SNikolay Aleksandrov cpu_stats = per_cpu_ptr(v->stats, i); 1214a60c0903SNikolay Aleksandrov do { 1215a60c0903SNikolay Aleksandrov start = u64_stats_fetch_begin_irq(&cpu_stats->syncp); 1216a60c0903SNikolay Aleksandrov rxpackets = cpu_stats->rx_packets; 1217a60c0903SNikolay Aleksandrov rxbytes = cpu_stats->rx_bytes; 1218a60c0903SNikolay Aleksandrov txbytes = cpu_stats->tx_bytes; 1219a60c0903SNikolay Aleksandrov txpackets = cpu_stats->tx_packets; 1220a60c0903SNikolay Aleksandrov } while (u64_stats_fetch_retry_irq(&cpu_stats->syncp, start)); 1221a60c0903SNikolay Aleksandrov 1222a60c0903SNikolay Aleksandrov stats->rx_packets += rxpackets; 1223a60c0903SNikolay Aleksandrov stats->rx_bytes += rxbytes; 1224a60c0903SNikolay Aleksandrov stats->tx_bytes += txbytes; 1225a60c0903SNikolay Aleksandrov stats->tx_packets += txpackets; 1226a60c0903SNikolay Aleksandrov } 1227a60c0903SNikolay Aleksandrov } 12284d4fd361SPetr Machata 12294d4fd361SPetr Machata int br_vlan_get_pvid(const struct net_device *dev, u16 *p_pvid) 12304d4fd361SPetr Machata { 12314d4fd361SPetr Machata struct net_bridge_vlan_group *vg; 12325a6db04cSIdo Schimmel struct net_bridge_port *p; 12334d4fd361SPetr Machata 12344d4fd361SPetr Machata ASSERT_RTNL(); 12355a6db04cSIdo Schimmel p = br_port_get_check_rtnl(dev); 12365a6db04cSIdo Schimmel if (p) 12375a6db04cSIdo Schimmel vg = nbp_vlan_group(p); 12385a6db04cSIdo Schimmel else if (netif_is_bridge_master(dev)) 12394d4fd361SPetr Machata vg = br_vlan_group(netdev_priv(dev)); 12404d4fd361SPetr Machata else 12414d4fd361SPetr Machata return -EINVAL; 12424d4fd361SPetr Machata 12434d4fd361SPetr Machata *p_pvid = br_get_pvid(vg); 12444d4fd361SPetr Machata return 0; 12454d4fd361SPetr Machata } 12464d4fd361SPetr Machata EXPORT_SYMBOL_GPL(br_vlan_get_pvid); 12474d4fd361SPetr Machata 12484d4fd361SPetr Machata int br_vlan_get_info(const struct net_device *dev, u16 vid, 12494d4fd361SPetr Machata struct bridge_vlan_info *p_vinfo) 12504d4fd361SPetr Machata { 12514d4fd361SPetr Machata struct net_bridge_vlan_group *vg; 12524d4fd361SPetr Machata struct net_bridge_vlan *v; 12534d4fd361SPetr Machata struct net_bridge_port *p; 12544d4fd361SPetr Machata 12554d4fd361SPetr Machata ASSERT_RTNL(); 12564d4fd361SPetr Machata p = br_port_get_check_rtnl(dev); 12574d4fd361SPetr Machata if (p) 12584d4fd361SPetr Machata vg = nbp_vlan_group(p); 12592b18d79eSPetr Machata else if (netif_is_bridge_master(dev)) 12602b18d79eSPetr Machata vg = br_vlan_group(netdev_priv(dev)); 12614d4fd361SPetr Machata else 12624d4fd361SPetr Machata return -EINVAL; 12634d4fd361SPetr Machata 12644d4fd361SPetr Machata v = br_vlan_find(vg, vid); 12654d4fd361SPetr Machata if (!v) 12664d4fd361SPetr Machata return -ENOENT; 12674d4fd361SPetr Machata 12684d4fd361SPetr Machata p_vinfo->vid = vid; 12694d4fd361SPetr Machata p_vinfo->flags = v->flags; 12704d4fd361SPetr Machata return 0; 12714d4fd361SPetr Machata } 12724d4fd361SPetr Machata EXPORT_SYMBOL_GPL(br_vlan_get_info); 12739c0ec2e7SMike Manning 12749c0ec2e7SMike Manning static int br_vlan_is_bind_vlan_dev(const struct net_device *dev) 12759c0ec2e7SMike Manning { 12769c0ec2e7SMike Manning return is_vlan_dev(dev) && 12779c0ec2e7SMike Manning !!(vlan_dev_priv(dev)->flags & VLAN_FLAG_BRIDGE_BINDING); 12789c0ec2e7SMike Manning } 12799c0ec2e7SMike Manning 12809c0ec2e7SMike Manning static int br_vlan_is_bind_vlan_dev_fn(struct net_device *dev, 12819c0ec2e7SMike Manning __always_unused void *data) 12829c0ec2e7SMike Manning { 12839c0ec2e7SMike Manning return br_vlan_is_bind_vlan_dev(dev); 12849c0ec2e7SMike Manning } 12859c0ec2e7SMike Manning 12869c0ec2e7SMike Manning static bool br_vlan_has_upper_bind_vlan_dev(struct net_device *dev) 12879c0ec2e7SMike Manning { 12889c0ec2e7SMike Manning int found; 12899c0ec2e7SMike Manning 12909c0ec2e7SMike Manning rcu_read_lock(); 12919c0ec2e7SMike Manning found = netdev_walk_all_upper_dev_rcu(dev, br_vlan_is_bind_vlan_dev_fn, 12929c0ec2e7SMike Manning NULL); 12939c0ec2e7SMike Manning rcu_read_unlock(); 12949c0ec2e7SMike Manning 12959c0ec2e7SMike Manning return !!found; 12969c0ec2e7SMike Manning } 12979c0ec2e7SMike Manning 12989c0ec2e7SMike Manning struct br_vlan_bind_walk_data { 12999c0ec2e7SMike Manning u16 vid; 13009c0ec2e7SMike Manning struct net_device *result; 13019c0ec2e7SMike Manning }; 13029c0ec2e7SMike Manning 13039c0ec2e7SMike Manning static int br_vlan_match_bind_vlan_dev_fn(struct net_device *dev, 13049c0ec2e7SMike Manning void *data_in) 13059c0ec2e7SMike Manning { 13069c0ec2e7SMike Manning struct br_vlan_bind_walk_data *data = data_in; 13079c0ec2e7SMike Manning int found = 0; 13089c0ec2e7SMike Manning 13099c0ec2e7SMike Manning if (br_vlan_is_bind_vlan_dev(dev) && 13109c0ec2e7SMike Manning vlan_dev_priv(dev)->vlan_id == data->vid) { 13119c0ec2e7SMike Manning data->result = dev; 13129c0ec2e7SMike Manning found = 1; 13139c0ec2e7SMike Manning } 13149c0ec2e7SMike Manning 13159c0ec2e7SMike Manning return found; 13169c0ec2e7SMike Manning } 13179c0ec2e7SMike Manning 13189c0ec2e7SMike Manning static struct net_device * 13199c0ec2e7SMike Manning br_vlan_get_upper_bind_vlan_dev(struct net_device *dev, u16 vid) 13209c0ec2e7SMike Manning { 13219c0ec2e7SMike Manning struct br_vlan_bind_walk_data data = { 13229c0ec2e7SMike Manning .vid = vid, 13239c0ec2e7SMike Manning }; 13249c0ec2e7SMike Manning 13259c0ec2e7SMike Manning rcu_read_lock(); 13269c0ec2e7SMike Manning netdev_walk_all_upper_dev_rcu(dev, br_vlan_match_bind_vlan_dev_fn, 13279c0ec2e7SMike Manning &data); 13289c0ec2e7SMike Manning rcu_read_unlock(); 13299c0ec2e7SMike Manning 13309c0ec2e7SMike Manning return data.result; 13319c0ec2e7SMike Manning } 13329c0ec2e7SMike Manning 13339c0ec2e7SMike Manning static bool br_vlan_is_dev_up(const struct net_device *dev) 13349c0ec2e7SMike Manning { 13359c0ec2e7SMike Manning return !!(dev->flags & IFF_UP) && netif_oper_up(dev); 13369c0ec2e7SMike Manning } 13379c0ec2e7SMike Manning 13389c0ec2e7SMike Manning static void br_vlan_set_vlan_dev_state(const struct net_bridge *br, 13399c0ec2e7SMike Manning struct net_device *vlan_dev) 13409c0ec2e7SMike Manning { 13419c0ec2e7SMike Manning u16 vid = vlan_dev_priv(vlan_dev)->vlan_id; 13429c0ec2e7SMike Manning struct net_bridge_vlan_group *vg; 13439c0ec2e7SMike Manning struct net_bridge_port *p; 13449c0ec2e7SMike Manning bool has_carrier = false; 13459c0ec2e7SMike Manning 13469c0ec2e7SMike Manning list_for_each_entry(p, &br->port_list, list) { 13479c0ec2e7SMike Manning vg = nbp_vlan_group(p); 13489c0ec2e7SMike Manning if (br_vlan_find(vg, vid) && br_vlan_is_dev_up(p->dev)) { 13499c0ec2e7SMike Manning has_carrier = true; 13509c0ec2e7SMike Manning break; 13519c0ec2e7SMike Manning } 13529c0ec2e7SMike Manning } 13539c0ec2e7SMike Manning 13549c0ec2e7SMike Manning if (has_carrier) 13559c0ec2e7SMike Manning netif_carrier_on(vlan_dev); 13569c0ec2e7SMike Manning else 13579c0ec2e7SMike Manning netif_carrier_off(vlan_dev); 13589c0ec2e7SMike Manning } 13599c0ec2e7SMike Manning 13609c0ec2e7SMike Manning static void br_vlan_set_all_vlan_dev_state(struct net_bridge_port *p) 13619c0ec2e7SMike Manning { 13629c0ec2e7SMike Manning struct net_bridge_vlan_group *vg = nbp_vlan_group(p); 13639c0ec2e7SMike Manning struct net_bridge_vlan *vlan; 13649c0ec2e7SMike Manning struct net_device *vlan_dev; 13659c0ec2e7SMike Manning 13669c0ec2e7SMike Manning list_for_each_entry(vlan, &vg->vlan_list, vlist) { 13679c0ec2e7SMike Manning vlan_dev = br_vlan_get_upper_bind_vlan_dev(p->br->dev, 13689c0ec2e7SMike Manning vlan->vid); 13699c0ec2e7SMike Manning if (vlan_dev) { 13709c0ec2e7SMike Manning if (br_vlan_is_dev_up(p->dev)) 13719c0ec2e7SMike Manning netif_carrier_on(vlan_dev); 13729c0ec2e7SMike Manning else 13739c0ec2e7SMike Manning br_vlan_set_vlan_dev_state(p->br, vlan_dev); 13749c0ec2e7SMike Manning } 13759c0ec2e7SMike Manning } 13769c0ec2e7SMike Manning } 13779c0ec2e7SMike Manning 13789c0ec2e7SMike Manning static void br_vlan_upper_change(struct net_device *dev, 13799c0ec2e7SMike Manning struct net_device *upper_dev, 13809c0ec2e7SMike Manning bool linking) 13819c0ec2e7SMike Manning { 13829c0ec2e7SMike Manning struct net_bridge *br = netdev_priv(dev); 13839c0ec2e7SMike Manning 13849c0ec2e7SMike Manning if (!br_vlan_is_bind_vlan_dev(upper_dev)) 13859c0ec2e7SMike Manning return; 13869c0ec2e7SMike Manning 13879c0ec2e7SMike Manning if (linking) { 13889c0ec2e7SMike Manning br_vlan_set_vlan_dev_state(br, upper_dev); 13899c0ec2e7SMike Manning br_opt_toggle(br, BROPT_VLAN_BRIDGE_BINDING, true); 13909c0ec2e7SMike Manning } else { 13919c0ec2e7SMike Manning br_opt_toggle(br, BROPT_VLAN_BRIDGE_BINDING, 13929c0ec2e7SMike Manning br_vlan_has_upper_bind_vlan_dev(dev)); 13939c0ec2e7SMike Manning } 13949c0ec2e7SMike Manning } 13959c0ec2e7SMike Manning 13969c0ec2e7SMike Manning /* Must be protected by RTNL. */ 139780900acdSMike Manning static void nbp_vlan_set_vlan_dev_state(struct net_bridge_port *p, u16 vid) 139880900acdSMike Manning { 139980900acdSMike Manning struct net_device *vlan_dev; 140080900acdSMike Manning 140180900acdSMike Manning if (!br_opt_get(p->br, BROPT_VLAN_BRIDGE_BINDING)) 140280900acdSMike Manning return; 140380900acdSMike Manning 140480900acdSMike Manning vlan_dev = br_vlan_get_upper_bind_vlan_dev(p->br->dev, vid); 140580900acdSMike Manning if (vlan_dev) 140680900acdSMike Manning br_vlan_set_vlan_dev_state(p->br, vlan_dev); 140780900acdSMike Manning } 140880900acdSMike Manning 140980900acdSMike Manning /* Must be protected by RTNL. */ 14109c0ec2e7SMike Manning void br_vlan_bridge_event(struct net_device *dev, unsigned long event, 14119c0ec2e7SMike Manning void *ptr) 14129c0ec2e7SMike Manning { 14139c0ec2e7SMike Manning struct netdev_notifier_changeupper_info *info; 14149c0ec2e7SMike Manning 14159c0ec2e7SMike Manning switch (event) { 14169c0ec2e7SMike Manning case NETDEV_CHANGEUPPER: 14179c0ec2e7SMike Manning info = ptr; 14189c0ec2e7SMike Manning br_vlan_upper_change(dev, info->upper_dev, info->linking); 14199c0ec2e7SMike Manning break; 14209c0ec2e7SMike Manning } 14219c0ec2e7SMike Manning } 14229c0ec2e7SMike Manning 14239c0ec2e7SMike Manning /* Must be protected by RTNL. */ 14249c0ec2e7SMike Manning void br_vlan_port_event(struct net_bridge_port *p, unsigned long event) 14259c0ec2e7SMike Manning { 14269c0ec2e7SMike Manning if (!br_opt_get(p->br, BROPT_VLAN_BRIDGE_BINDING)) 14279c0ec2e7SMike Manning return; 14289c0ec2e7SMike Manning 14299c0ec2e7SMike Manning switch (event) { 14309c0ec2e7SMike Manning case NETDEV_CHANGE: 14319c0ec2e7SMike Manning case NETDEV_DOWN: 14329c0ec2e7SMike Manning case NETDEV_UP: 14339c0ec2e7SMike Manning br_vlan_set_all_vlan_dev_state(p); 14349c0ec2e7SMike Manning break; 14359c0ec2e7SMike Manning } 14369c0ec2e7SMike Manning } 1437