12a8cc6c8SYOSHIFUJI Hideaki /* 22a8cc6c8SYOSHIFUJI Hideaki * IPv6 Address Label subsystem 32a8cc6c8SYOSHIFUJI Hideaki * for the IPv6 "Default" Source Address Selection 42a8cc6c8SYOSHIFUJI Hideaki * 52a8cc6c8SYOSHIFUJI Hideaki * Copyright (C)2007 USAGI/WIDE Project 62a8cc6c8SYOSHIFUJI Hideaki */ 72a8cc6c8SYOSHIFUJI Hideaki /* 82a8cc6c8SYOSHIFUJI Hideaki * Author: 92a8cc6c8SYOSHIFUJI Hideaki * YOSHIFUJI Hideaki @ USAGI/WIDE Project <yoshfuji@linux-ipv6.org> 102a8cc6c8SYOSHIFUJI Hideaki */ 112a8cc6c8SYOSHIFUJI Hideaki 122a8cc6c8SYOSHIFUJI Hideaki #include <linux/kernel.h> 132a8cc6c8SYOSHIFUJI Hideaki #include <linux/list.h> 142a8cc6c8SYOSHIFUJI Hideaki #include <linux/rcupdate.h> 152a8cc6c8SYOSHIFUJI Hideaki #include <linux/in6.h> 165a0e3ad6STejun Heo #include <linux/slab.h> 172a8cc6c8SYOSHIFUJI Hideaki #include <net/addrconf.h> 182a8cc6c8SYOSHIFUJI Hideaki #include <linux/if_addrlabel.h> 192a8cc6c8SYOSHIFUJI Hideaki #include <linux/netlink.h> 202a8cc6c8SYOSHIFUJI Hideaki #include <linux/rtnetlink.h> 212a8cc6c8SYOSHIFUJI Hideaki 222a8cc6c8SYOSHIFUJI Hideaki #if 0 232a8cc6c8SYOSHIFUJI Hideaki #define ADDRLABEL(x...) printk(x) 242a8cc6c8SYOSHIFUJI Hideaki #else 252a8cc6c8SYOSHIFUJI Hideaki #define ADDRLABEL(x...) do { ; } while (0) 262a8cc6c8SYOSHIFUJI Hideaki #endif 272a8cc6c8SYOSHIFUJI Hideaki 282a8cc6c8SYOSHIFUJI Hideaki /* 292a8cc6c8SYOSHIFUJI Hideaki * Policy Table 302a8cc6c8SYOSHIFUJI Hideaki */ 3122b285d6SWang Yufen struct ip6addrlbl_entry { 322a8cc6c8SYOSHIFUJI Hideaki struct in6_addr prefix; 332a8cc6c8SYOSHIFUJI Hideaki int prefixlen; 342a8cc6c8SYOSHIFUJI Hideaki int ifindex; 352a8cc6c8SYOSHIFUJI Hideaki int addrtype; 362a8cc6c8SYOSHIFUJI Hideaki u32 label; 372a8cc6c8SYOSHIFUJI Hideaki struct hlist_node list; 382a8cc6c8SYOSHIFUJI Hideaki struct rcu_head rcu; 392a8cc6c8SYOSHIFUJI Hideaki }; 402a8cc6c8SYOSHIFUJI Hideaki 412a8cc6c8SYOSHIFUJI Hideaki /* 42417962a0SYOSHIFUJI Hideaki / 吉藤英明 * Default policy table (RFC6724 + extensions) 432a8cc6c8SYOSHIFUJI Hideaki * 442a8cc6c8SYOSHIFUJI Hideaki * prefix addr_type label 452a8cc6c8SYOSHIFUJI Hideaki * ------------------------------------------------------------------------- 462a8cc6c8SYOSHIFUJI Hideaki * ::1/128 LOOPBACK 0 472a8cc6c8SYOSHIFUJI Hideaki * ::/0 N/A 1 482a8cc6c8SYOSHIFUJI Hideaki * 2002::/16 N/A 2 492a8cc6c8SYOSHIFUJI Hideaki * ::/96 COMPATv4 3 502a8cc6c8SYOSHIFUJI Hideaki * ::ffff:0:0/96 V4MAPPED 4 512a8cc6c8SYOSHIFUJI Hideaki * fc00::/7 N/A 5 ULA (RFC 4193) 522a8cc6c8SYOSHIFUJI Hideaki * 2001::/32 N/A 6 Teredo (RFC 4380) 535fe47b8aSJuha-Matti Tapio * 2001:10::/28 N/A 7 ORCHID (RFC 4843) 54417962a0SYOSHIFUJI Hideaki / 吉藤英明 * fec0::/10 N/A 11 Site-local 55417962a0SYOSHIFUJI Hideaki / 吉藤英明 * (deprecated by RFC3879) 56417962a0SYOSHIFUJI Hideaki / 吉藤英明 * 3ffe::/16 N/A 12 6bone 572a8cc6c8SYOSHIFUJI Hideaki * 582a8cc6c8SYOSHIFUJI Hideaki * Note: 0xffffffff is used if we do not have any policies. 59417962a0SYOSHIFUJI Hideaki / 吉藤英明 * Note: Labels for ULA and 6to4 are different from labels listed in RFC6724. 602a8cc6c8SYOSHIFUJI Hideaki */ 612a8cc6c8SYOSHIFUJI Hideaki 622a8cc6c8SYOSHIFUJI Hideaki #define IPV6_ADDR_LABEL_DEFAULT 0xffffffffUL 632a8cc6c8SYOSHIFUJI Hideaki 6404a6f82cSAndi Kleen static const __net_initconst struct ip6addrlbl_init_table 652a8cc6c8SYOSHIFUJI Hideaki { 662a8cc6c8SYOSHIFUJI Hideaki const struct in6_addr *prefix; 672a8cc6c8SYOSHIFUJI Hideaki int prefixlen; 682a8cc6c8SYOSHIFUJI Hideaki u32 label; 692a8cc6c8SYOSHIFUJI Hideaki } ip6addrlbl_init_table[] = { 702a8cc6c8SYOSHIFUJI Hideaki { /* ::/0 */ 712a8cc6c8SYOSHIFUJI Hideaki .prefix = &in6addr_any, 722a8cc6c8SYOSHIFUJI Hideaki .label = 1, 732a8cc6c8SYOSHIFUJI Hideaki }, { /* fc00::/7 */ 742a8cc6c8SYOSHIFUJI Hideaki .prefix = &(struct in6_addr){ { { 0xfc } } } , 752a8cc6c8SYOSHIFUJI Hideaki .prefixlen = 7, 762a8cc6c8SYOSHIFUJI Hideaki .label = 5, 77417962a0SYOSHIFUJI Hideaki / 吉藤英明 }, { /* fec0::/10 */ 78417962a0SYOSHIFUJI Hideaki / 吉藤英明 .prefix = &(struct in6_addr){ { { 0xfe, 0xc0 } } }, 79417962a0SYOSHIFUJI Hideaki / 吉藤英明 .prefixlen = 10, 80417962a0SYOSHIFUJI Hideaki / 吉藤英明 .label = 11, 812a8cc6c8SYOSHIFUJI Hideaki }, { /* 2002::/16 */ 822a8cc6c8SYOSHIFUJI Hideaki .prefix = &(struct in6_addr){ { { 0x20, 0x02 } } }, 832a8cc6c8SYOSHIFUJI Hideaki .prefixlen = 16, 842a8cc6c8SYOSHIFUJI Hideaki .label = 2, 85417962a0SYOSHIFUJI Hideaki / 吉藤英明 }, { /* 3ffe::/16 */ 86417962a0SYOSHIFUJI Hideaki / 吉藤英明 .prefix = &(struct in6_addr){ { { 0x3f, 0xfe } } }, 87417962a0SYOSHIFUJI Hideaki / 吉藤英明 .prefixlen = 16, 88417962a0SYOSHIFUJI Hideaki / 吉藤英明 .label = 12, 892a8cc6c8SYOSHIFUJI Hideaki }, { /* 2001::/32 */ 902a8cc6c8SYOSHIFUJI Hideaki .prefix = &(struct in6_addr){ { { 0x20, 0x01 } } }, 912a8cc6c8SYOSHIFUJI Hideaki .prefixlen = 32, 922a8cc6c8SYOSHIFUJI Hideaki .label = 6, 935fe47b8aSJuha-Matti Tapio }, { /* 2001:10::/28 */ 945fe47b8aSJuha-Matti Tapio .prefix = &(struct in6_addr){ { { 0x20, 0x01, 0x00, 0x10 } } }, 955fe47b8aSJuha-Matti Tapio .prefixlen = 28, 965fe47b8aSJuha-Matti Tapio .label = 7, 972a8cc6c8SYOSHIFUJI Hideaki }, { /* ::ffff:0:0 */ 982a8cc6c8SYOSHIFUJI Hideaki .prefix = &(struct in6_addr){ { { [10] = 0xff, [11] = 0xff } } }, 992a8cc6c8SYOSHIFUJI Hideaki .prefixlen = 96, 1002a8cc6c8SYOSHIFUJI Hideaki .label = 4, 1012a8cc6c8SYOSHIFUJI Hideaki }, { /* ::/96 */ 1022a8cc6c8SYOSHIFUJI Hideaki .prefix = &in6addr_any, 1032a8cc6c8SYOSHIFUJI Hideaki .prefixlen = 96, 1042a8cc6c8SYOSHIFUJI Hideaki .label = 3, 1052a8cc6c8SYOSHIFUJI Hideaki }, { /* ::1/128 */ 1062a8cc6c8SYOSHIFUJI Hideaki .prefix = &in6addr_loopback, 1072a8cc6c8SYOSHIFUJI Hideaki .prefixlen = 128, 1082a8cc6c8SYOSHIFUJI Hideaki .label = 0, 1092a8cc6c8SYOSHIFUJI Hideaki } 1102a8cc6c8SYOSHIFUJI Hideaki }; 1112a8cc6c8SYOSHIFUJI Hideaki 1122a8cc6c8SYOSHIFUJI Hideaki /* Find label */ 113a90c9347SEric Dumazet static bool __ip6addrlbl_match(const struct ip6addrlbl_entry *p, 1142a8cc6c8SYOSHIFUJI Hideaki const struct in6_addr *addr, 1152a8cc6c8SYOSHIFUJI Hideaki int addrtype, int ifindex) 1162a8cc6c8SYOSHIFUJI Hideaki { 1172a8cc6c8SYOSHIFUJI Hideaki if (p->ifindex && p->ifindex != ifindex) 118a50feda5SEric Dumazet return false; 1192a8cc6c8SYOSHIFUJI Hideaki if (p->addrtype && p->addrtype != addrtype) 120a50feda5SEric Dumazet return false; 1212a8cc6c8SYOSHIFUJI Hideaki if (!ipv6_prefix_equal(addr, &p->prefix, p->prefixlen)) 122a50feda5SEric Dumazet return false; 123a50feda5SEric Dumazet return true; 1242a8cc6c8SYOSHIFUJI Hideaki } 1252a8cc6c8SYOSHIFUJI Hideaki 1263de23255SBenjamin Thery static struct ip6addrlbl_entry *__ipv6_addr_label(struct net *net, 1273de23255SBenjamin Thery const struct in6_addr *addr, 1282a8cc6c8SYOSHIFUJI Hideaki int type, int ifindex) 1292a8cc6c8SYOSHIFUJI Hideaki { 1302a8cc6c8SYOSHIFUJI Hideaki struct ip6addrlbl_entry *p; 131a90c9347SEric Dumazet 132a90c9347SEric Dumazet hlist_for_each_entry_rcu(p, &net->ipv6.ip6addrlbl_table.head, list) { 133a90c9347SEric Dumazet if (__ip6addrlbl_match(p, addr, type, ifindex)) 1342a8cc6c8SYOSHIFUJI Hideaki return p; 1352a8cc6c8SYOSHIFUJI Hideaki } 1362a8cc6c8SYOSHIFUJI Hideaki return NULL; 1372a8cc6c8SYOSHIFUJI Hideaki } 1382a8cc6c8SYOSHIFUJI Hideaki 1393de23255SBenjamin Thery u32 ipv6_addr_label(struct net *net, 1403de23255SBenjamin Thery const struct in6_addr *addr, int type, int ifindex) 1412a8cc6c8SYOSHIFUJI Hideaki { 1422a8cc6c8SYOSHIFUJI Hideaki u32 label; 1432a8cc6c8SYOSHIFUJI Hideaki struct ip6addrlbl_entry *p; 1442a8cc6c8SYOSHIFUJI Hideaki 1452a8cc6c8SYOSHIFUJI Hideaki type &= IPV6_ADDR_MAPPED | IPV6_ADDR_COMPATv4 | IPV6_ADDR_LOOPBACK; 1462a8cc6c8SYOSHIFUJI Hideaki 1472a8cc6c8SYOSHIFUJI Hideaki rcu_read_lock(); 1483de23255SBenjamin Thery p = __ipv6_addr_label(net, addr, type, ifindex); 1492a8cc6c8SYOSHIFUJI Hideaki label = p ? p->label : IPV6_ADDR_LABEL_DEFAULT; 1502a8cc6c8SYOSHIFUJI Hideaki rcu_read_unlock(); 1512a8cc6c8SYOSHIFUJI Hideaki 1525b095d98SHarvey Harrison ADDRLABEL(KERN_DEBUG "%s(addr=%pI6, type=%d, ifindex=%d) => %08x\n", 1530c6ce78aSHarvey Harrison __func__, addr, type, ifindex, label); 1542a8cc6c8SYOSHIFUJI Hideaki 1552a8cc6c8SYOSHIFUJI Hideaki return label; 1562a8cc6c8SYOSHIFUJI Hideaki } 1572a8cc6c8SYOSHIFUJI Hideaki 1582a8cc6c8SYOSHIFUJI Hideaki /* allocate one entry */ 159a90c9347SEric Dumazet static struct ip6addrlbl_entry *ip6addrlbl_alloc(const struct in6_addr *prefix, 1602a8cc6c8SYOSHIFUJI Hideaki int prefixlen, int ifindex, 1612a8cc6c8SYOSHIFUJI Hideaki u32 label) 1622a8cc6c8SYOSHIFUJI Hideaki { 1632a8cc6c8SYOSHIFUJI Hideaki struct ip6addrlbl_entry *newp; 1642a8cc6c8SYOSHIFUJI Hideaki int addrtype; 1652a8cc6c8SYOSHIFUJI Hideaki 1665b095d98SHarvey Harrison ADDRLABEL(KERN_DEBUG "%s(prefix=%pI6, prefixlen=%d, ifindex=%d, label=%u)\n", 1670c6ce78aSHarvey Harrison __func__, prefix, prefixlen, ifindex, (unsigned int)label); 1682a8cc6c8SYOSHIFUJI Hideaki 1692a8cc6c8SYOSHIFUJI Hideaki addrtype = ipv6_addr_type(prefix) & (IPV6_ADDR_MAPPED | IPV6_ADDR_COMPATv4 | IPV6_ADDR_LOOPBACK); 1702a8cc6c8SYOSHIFUJI Hideaki 1712a8cc6c8SYOSHIFUJI Hideaki switch (addrtype) { 1722a8cc6c8SYOSHIFUJI Hideaki case IPV6_ADDR_MAPPED: 1732a8cc6c8SYOSHIFUJI Hideaki if (prefixlen > 96) 1742a8cc6c8SYOSHIFUJI Hideaki return ERR_PTR(-EINVAL); 1752a8cc6c8SYOSHIFUJI Hideaki if (prefixlen < 96) 1762a8cc6c8SYOSHIFUJI Hideaki addrtype = 0; 1772a8cc6c8SYOSHIFUJI Hideaki break; 1782a8cc6c8SYOSHIFUJI Hideaki case IPV6_ADDR_COMPATv4: 1792a8cc6c8SYOSHIFUJI Hideaki if (prefixlen != 96) 1802a8cc6c8SYOSHIFUJI Hideaki addrtype = 0; 1812a8cc6c8SYOSHIFUJI Hideaki break; 1822a8cc6c8SYOSHIFUJI Hideaki case IPV6_ADDR_LOOPBACK: 1832a8cc6c8SYOSHIFUJI Hideaki if (prefixlen != 128) 1842a8cc6c8SYOSHIFUJI Hideaki addrtype = 0; 1852a8cc6c8SYOSHIFUJI Hideaki break; 1862a8cc6c8SYOSHIFUJI Hideaki } 1872a8cc6c8SYOSHIFUJI Hideaki 1882a8cc6c8SYOSHIFUJI Hideaki newp = kmalloc(sizeof(*newp), GFP_KERNEL); 1892a8cc6c8SYOSHIFUJI Hideaki if (!newp) 1902a8cc6c8SYOSHIFUJI Hideaki return ERR_PTR(-ENOMEM); 1912a8cc6c8SYOSHIFUJI Hideaki 1922a8cc6c8SYOSHIFUJI Hideaki ipv6_addr_prefix(&newp->prefix, prefix, prefixlen); 1932a8cc6c8SYOSHIFUJI Hideaki newp->prefixlen = prefixlen; 1942a8cc6c8SYOSHIFUJI Hideaki newp->ifindex = ifindex; 1952a8cc6c8SYOSHIFUJI Hideaki newp->addrtype = addrtype; 1962a8cc6c8SYOSHIFUJI Hideaki newp->label = label; 1972a8cc6c8SYOSHIFUJI Hideaki INIT_HLIST_NODE(&newp->list); 1982a8cc6c8SYOSHIFUJI Hideaki return newp; 1992a8cc6c8SYOSHIFUJI Hideaki } 2002a8cc6c8SYOSHIFUJI Hideaki 2012a8cc6c8SYOSHIFUJI Hideaki /* add a label */ 202a90c9347SEric Dumazet static int __ip6addrlbl_add(struct net *net, struct ip6addrlbl_entry *newp, 203a90c9347SEric Dumazet int replace) 2042a8cc6c8SYOSHIFUJI Hideaki { 205639739b5SHannes Frederic Sowa struct ip6addrlbl_entry *last = NULL, *p = NULL; 206a90c9347SEric Dumazet struct hlist_node *n; 2072a8cc6c8SYOSHIFUJI Hideaki int ret = 0; 2082a8cc6c8SYOSHIFUJI Hideaki 209639739b5SHannes Frederic Sowa ADDRLABEL(KERN_DEBUG "%s(newp=%p, replace=%d)\n", __func__, newp, 210639739b5SHannes Frederic Sowa replace); 2112a8cc6c8SYOSHIFUJI Hideaki 212a90c9347SEric Dumazet hlist_for_each_entry_safe(p, n, &net->ipv6.ip6addrlbl_table.head, list) { 2132a8cc6c8SYOSHIFUJI Hideaki if (p->prefixlen == newp->prefixlen && 2142a8cc6c8SYOSHIFUJI Hideaki p->ifindex == newp->ifindex && 2152a8cc6c8SYOSHIFUJI Hideaki ipv6_addr_equal(&p->prefix, &newp->prefix)) { 2162a8cc6c8SYOSHIFUJI Hideaki if (!replace) { 2172a8cc6c8SYOSHIFUJI Hideaki ret = -EEXIST; 2182a8cc6c8SYOSHIFUJI Hideaki goto out; 2192a8cc6c8SYOSHIFUJI Hideaki } 2202a8cc6c8SYOSHIFUJI Hideaki hlist_replace_rcu(&p->list, &newp->list); 2212809c095SEric Dumazet kfree_rcu(p, rcu); 2222a8cc6c8SYOSHIFUJI Hideaki goto out; 2232a8cc6c8SYOSHIFUJI Hideaki } else if ((p->prefixlen == newp->prefixlen && !p->ifindex) || 2242a8cc6c8SYOSHIFUJI Hideaki (p->prefixlen < newp->prefixlen)) { 2252a8cc6c8SYOSHIFUJI Hideaki hlist_add_before_rcu(&newp->list, &p->list); 2262a8cc6c8SYOSHIFUJI Hideaki goto out; 2272a8cc6c8SYOSHIFUJI Hideaki } 228639739b5SHannes Frederic Sowa last = p; 2292a8cc6c8SYOSHIFUJI Hideaki } 230639739b5SHannes Frederic Sowa if (last) 2311d023284SKen Helias hlist_add_behind_rcu(&newp->list, &last->list); 232639739b5SHannes Frederic Sowa else 233a90c9347SEric Dumazet hlist_add_head_rcu(&newp->list, &net->ipv6.ip6addrlbl_table.head); 2342a8cc6c8SYOSHIFUJI Hideaki out: 2352a8cc6c8SYOSHIFUJI Hideaki if (!ret) 236a90c9347SEric Dumazet net->ipv6.ip6addrlbl_table.seq++; 2372a8cc6c8SYOSHIFUJI Hideaki return ret; 2382a8cc6c8SYOSHIFUJI Hideaki } 2392a8cc6c8SYOSHIFUJI Hideaki 2402a8cc6c8SYOSHIFUJI Hideaki /* add a label */ 2413de23255SBenjamin Thery static int ip6addrlbl_add(struct net *net, 2423de23255SBenjamin Thery const struct in6_addr *prefix, int prefixlen, 2432a8cc6c8SYOSHIFUJI Hideaki int ifindex, u32 label, int replace) 2442a8cc6c8SYOSHIFUJI Hideaki { 2452a8cc6c8SYOSHIFUJI Hideaki struct ip6addrlbl_entry *newp; 2462a8cc6c8SYOSHIFUJI Hideaki int ret = 0; 2472a8cc6c8SYOSHIFUJI Hideaki 2485b095d98SHarvey Harrison ADDRLABEL(KERN_DEBUG "%s(prefix=%pI6, prefixlen=%d, ifindex=%d, label=%u, replace=%d)\n", 2490c6ce78aSHarvey Harrison __func__, prefix, prefixlen, ifindex, (unsigned int)label, 2502a8cc6c8SYOSHIFUJI Hideaki replace); 2512a8cc6c8SYOSHIFUJI Hideaki 252a90c9347SEric Dumazet newp = ip6addrlbl_alloc(prefix, prefixlen, ifindex, label); 2532a8cc6c8SYOSHIFUJI Hideaki if (IS_ERR(newp)) 2542a8cc6c8SYOSHIFUJI Hideaki return PTR_ERR(newp); 255a90c9347SEric Dumazet spin_lock(&net->ipv6.ip6addrlbl_table.lock); 256a90c9347SEric Dumazet ret = __ip6addrlbl_add(net, newp, replace); 257a90c9347SEric Dumazet spin_unlock(&net->ipv6.ip6addrlbl_table.lock); 2582a8cc6c8SYOSHIFUJI Hideaki if (ret) 2592809c095SEric Dumazet kfree(newp); 2602a8cc6c8SYOSHIFUJI Hideaki return ret; 2612a8cc6c8SYOSHIFUJI Hideaki } 2622a8cc6c8SYOSHIFUJI Hideaki 2632a8cc6c8SYOSHIFUJI Hideaki /* remove a label */ 2643de23255SBenjamin Thery static int __ip6addrlbl_del(struct net *net, 2653de23255SBenjamin Thery const struct in6_addr *prefix, int prefixlen, 2662a8cc6c8SYOSHIFUJI Hideaki int ifindex) 2672a8cc6c8SYOSHIFUJI Hideaki { 2682a8cc6c8SYOSHIFUJI Hideaki struct ip6addrlbl_entry *p = NULL; 269b67bfe0dSSasha Levin struct hlist_node *n; 2702a8cc6c8SYOSHIFUJI Hideaki int ret = -ESRCH; 2712a8cc6c8SYOSHIFUJI Hideaki 2725b095d98SHarvey Harrison ADDRLABEL(KERN_DEBUG "%s(prefix=%pI6, prefixlen=%d, ifindex=%d)\n", 2730c6ce78aSHarvey Harrison __func__, prefix, prefixlen, ifindex); 2742a8cc6c8SYOSHIFUJI Hideaki 275a90c9347SEric Dumazet hlist_for_each_entry_safe(p, n, &net->ipv6.ip6addrlbl_table.head, list) { 2762a8cc6c8SYOSHIFUJI Hideaki if (p->prefixlen == prefixlen && 2772a8cc6c8SYOSHIFUJI Hideaki p->ifindex == ifindex && 2782a8cc6c8SYOSHIFUJI Hideaki ipv6_addr_equal(&p->prefix, prefix)) { 2792a8cc6c8SYOSHIFUJI Hideaki hlist_del_rcu(&p->list); 2802809c095SEric Dumazet kfree_rcu(p, rcu); 2812a8cc6c8SYOSHIFUJI Hideaki ret = 0; 2822a8cc6c8SYOSHIFUJI Hideaki break; 2832a8cc6c8SYOSHIFUJI Hideaki } 2842a8cc6c8SYOSHIFUJI Hideaki } 2852a8cc6c8SYOSHIFUJI Hideaki return ret; 2862a8cc6c8SYOSHIFUJI Hideaki } 2872a8cc6c8SYOSHIFUJI Hideaki 2883de23255SBenjamin Thery static int ip6addrlbl_del(struct net *net, 2893de23255SBenjamin Thery const struct in6_addr *prefix, int prefixlen, 2902a8cc6c8SYOSHIFUJI Hideaki int ifindex) 2912a8cc6c8SYOSHIFUJI Hideaki { 2922a8cc6c8SYOSHIFUJI Hideaki struct in6_addr prefix_buf; 2932a8cc6c8SYOSHIFUJI Hideaki int ret; 2942a8cc6c8SYOSHIFUJI Hideaki 2955b095d98SHarvey Harrison ADDRLABEL(KERN_DEBUG "%s(prefix=%pI6, prefixlen=%d, ifindex=%d)\n", 2960c6ce78aSHarvey Harrison __func__, prefix, prefixlen, ifindex); 2972a8cc6c8SYOSHIFUJI Hideaki 2982a8cc6c8SYOSHIFUJI Hideaki ipv6_addr_prefix(&prefix_buf, prefix, prefixlen); 299a90c9347SEric Dumazet spin_lock(&net->ipv6.ip6addrlbl_table.lock); 3003de23255SBenjamin Thery ret = __ip6addrlbl_del(net, &prefix_buf, prefixlen, ifindex); 301a90c9347SEric Dumazet spin_unlock(&net->ipv6.ip6addrlbl_table.lock); 3022a8cc6c8SYOSHIFUJI Hideaki return ret; 3032a8cc6c8SYOSHIFUJI Hideaki } 3042a8cc6c8SYOSHIFUJI Hideaki 3052a8cc6c8SYOSHIFUJI Hideaki /* add default label */ 3063de23255SBenjamin Thery static int __net_init ip6addrlbl_net_init(struct net *net) 3072a8cc6c8SYOSHIFUJI Hideaki { 3082a8cc6c8SYOSHIFUJI Hideaki int err = 0; 3092a8cc6c8SYOSHIFUJI Hideaki int i; 3102a8cc6c8SYOSHIFUJI Hideaki 311f3213831SJoe Perches ADDRLABEL(KERN_DEBUG "%s\n", __func__); 3122a8cc6c8SYOSHIFUJI Hideaki 313a90c9347SEric Dumazet spin_lock_init(&net->ipv6.ip6addrlbl_table.lock); 314a90c9347SEric Dumazet INIT_HLIST_HEAD(&net->ipv6.ip6addrlbl_table.head); 315a90c9347SEric Dumazet 3162a8cc6c8SYOSHIFUJI Hideaki for (i = 0; i < ARRAY_SIZE(ip6addrlbl_init_table); i++) { 3173de23255SBenjamin Thery int ret = ip6addrlbl_add(net, 3183de23255SBenjamin Thery ip6addrlbl_init_table[i].prefix, 3192a8cc6c8SYOSHIFUJI Hideaki ip6addrlbl_init_table[i].prefixlen, 3202a8cc6c8SYOSHIFUJI Hideaki 0, 3212a8cc6c8SYOSHIFUJI Hideaki ip6addrlbl_init_table[i].label, 0); 3222a8cc6c8SYOSHIFUJI Hideaki /* XXX: should we free all rules when we catch an error? */ 3232a8cc6c8SYOSHIFUJI Hideaki if (ret && (!err || err != -ENOMEM)) 3242a8cc6c8SYOSHIFUJI Hideaki err = ret; 3252a8cc6c8SYOSHIFUJI Hideaki } 3262a8cc6c8SYOSHIFUJI Hideaki return err; 3272a8cc6c8SYOSHIFUJI Hideaki } 3282a8cc6c8SYOSHIFUJI Hideaki 3293de23255SBenjamin Thery static void __net_exit ip6addrlbl_net_exit(struct net *net) 3303de23255SBenjamin Thery { 3313de23255SBenjamin Thery struct ip6addrlbl_entry *p = NULL; 332b67bfe0dSSasha Levin struct hlist_node *n; 3333de23255SBenjamin Thery 3343de23255SBenjamin Thery /* Remove all labels belonging to the exiting net */ 335a90c9347SEric Dumazet spin_lock(&net->ipv6.ip6addrlbl_table.lock); 336a90c9347SEric Dumazet hlist_for_each_entry_safe(p, n, &net->ipv6.ip6addrlbl_table.head, list) { 3373de23255SBenjamin Thery hlist_del_rcu(&p->list); 3382809c095SEric Dumazet kfree_rcu(p, rcu); 3393de23255SBenjamin Thery } 340a90c9347SEric Dumazet spin_unlock(&net->ipv6.ip6addrlbl_table.lock); 3413de23255SBenjamin Thery } 3423de23255SBenjamin Thery 3433de23255SBenjamin Thery static struct pernet_operations ipv6_addr_label_ops = { 3443de23255SBenjamin Thery .init = ip6addrlbl_net_init, 3453de23255SBenjamin Thery .exit = ip6addrlbl_net_exit, 3463de23255SBenjamin Thery }; 3473de23255SBenjamin Thery 3482a8cc6c8SYOSHIFUJI Hideaki int __init ipv6_addr_label_init(void) 3492a8cc6c8SYOSHIFUJI Hideaki { 3503de23255SBenjamin Thery return register_pernet_subsys(&ipv6_addr_label_ops); 3512a8cc6c8SYOSHIFUJI Hideaki } 3522a8cc6c8SYOSHIFUJI Hideaki 3532cc6d2bfSNeil Horman void ipv6_addr_label_cleanup(void) 3542cc6d2bfSNeil Horman { 3552cc6d2bfSNeil Horman unregister_pernet_subsys(&ipv6_addr_label_ops); 3562cc6d2bfSNeil Horman } 3572cc6d2bfSNeil Horman 3582a8cc6c8SYOSHIFUJI Hideaki static const struct nla_policy ifal_policy[IFAL_MAX+1] = { 3592a8cc6c8SYOSHIFUJI Hideaki [IFAL_ADDRESS] = { .len = sizeof(struct in6_addr), }, 3602a8cc6c8SYOSHIFUJI Hideaki [IFAL_LABEL] = { .len = sizeof(u32), }, 3612a8cc6c8SYOSHIFUJI Hideaki }; 3622a8cc6c8SYOSHIFUJI Hideaki 363a6f57028SFlorian Westphal static bool addrlbl_ifindex_exists(struct net *net, int ifindex) 364a6f57028SFlorian Westphal { 365a6f57028SFlorian Westphal 366a6f57028SFlorian Westphal struct net_device *dev; 367a6f57028SFlorian Westphal 368a6f57028SFlorian Westphal rcu_read_lock(); 369a6f57028SFlorian Westphal dev = dev_get_by_index_rcu(net, ifindex); 370a6f57028SFlorian Westphal rcu_read_unlock(); 371a6f57028SFlorian Westphal 372a6f57028SFlorian Westphal return dev != NULL; 373a6f57028SFlorian Westphal } 374a6f57028SFlorian Westphal 375c21ef3e3SDavid Ahern static int ip6addrlbl_newdel(struct sk_buff *skb, struct nlmsghdr *nlh, 376c21ef3e3SDavid Ahern struct netlink_ext_ack *extack) 3772a8cc6c8SYOSHIFUJI Hideaki { 3783b1e0a65SYOSHIFUJI Hideaki struct net *net = sock_net(skb->sk); 3792a8cc6c8SYOSHIFUJI Hideaki struct ifaddrlblmsg *ifal; 3802a8cc6c8SYOSHIFUJI Hideaki struct nlattr *tb[IFAL_MAX+1]; 3812a8cc6c8SYOSHIFUJI Hideaki struct in6_addr *pfx; 3822a8cc6c8SYOSHIFUJI Hideaki u32 label; 3832a8cc6c8SYOSHIFUJI Hideaki int err = 0; 3842a8cc6c8SYOSHIFUJI Hideaki 385c21ef3e3SDavid Ahern err = nlmsg_parse(nlh, sizeof(*ifal), tb, IFAL_MAX, ifal_policy, 386c21ef3e3SDavid Ahern extack); 3872a8cc6c8SYOSHIFUJI Hideaki if (err < 0) 3882a8cc6c8SYOSHIFUJI Hideaki return err; 3892a8cc6c8SYOSHIFUJI Hideaki 3902a8cc6c8SYOSHIFUJI Hideaki ifal = nlmsg_data(nlh); 3912a8cc6c8SYOSHIFUJI Hideaki 3922a8cc6c8SYOSHIFUJI Hideaki if (ifal->ifal_family != AF_INET6 || 3932a8cc6c8SYOSHIFUJI Hideaki ifal->ifal_prefixlen > 128) 3942a8cc6c8SYOSHIFUJI Hideaki return -EINVAL; 3952a8cc6c8SYOSHIFUJI Hideaki 3962a8cc6c8SYOSHIFUJI Hideaki if (!tb[IFAL_ADDRESS]) 3972a8cc6c8SYOSHIFUJI Hideaki return -EINVAL; 3982a8cc6c8SYOSHIFUJI Hideaki pfx = nla_data(tb[IFAL_ADDRESS]); 3992a8cc6c8SYOSHIFUJI Hideaki 4002a8cc6c8SYOSHIFUJI Hideaki if (!tb[IFAL_LABEL]) 4012a8cc6c8SYOSHIFUJI Hideaki return -EINVAL; 4022a8cc6c8SYOSHIFUJI Hideaki label = nla_get_u32(tb[IFAL_LABEL]); 4032a8cc6c8SYOSHIFUJI Hideaki if (label == IPV6_ADDR_LABEL_DEFAULT) 4042a8cc6c8SYOSHIFUJI Hideaki return -EINVAL; 4052a8cc6c8SYOSHIFUJI Hideaki 4062a8cc6c8SYOSHIFUJI Hideaki switch (nlh->nlmsg_type) { 4072a8cc6c8SYOSHIFUJI Hideaki case RTM_NEWADDRLABEL: 4080771275bSFlorian Westphal if (ifal->ifal_index && 409a6f57028SFlorian Westphal !addrlbl_ifindex_exists(net, ifal->ifal_index)) 4100771275bSFlorian Westphal return -EINVAL; 4110771275bSFlorian Westphal 4123de23255SBenjamin Thery err = ip6addrlbl_add(net, pfx, ifal->ifal_prefixlen, 4132a8cc6c8SYOSHIFUJI Hideaki ifal->ifal_index, label, 4142a8cc6c8SYOSHIFUJI Hideaki nlh->nlmsg_flags & NLM_F_REPLACE); 4152a8cc6c8SYOSHIFUJI Hideaki break; 4162a8cc6c8SYOSHIFUJI Hideaki case RTM_DELADDRLABEL: 4173de23255SBenjamin Thery err = ip6addrlbl_del(net, pfx, ifal->ifal_prefixlen, 4182a8cc6c8SYOSHIFUJI Hideaki ifal->ifal_index); 4192a8cc6c8SYOSHIFUJI Hideaki break; 4202a8cc6c8SYOSHIFUJI Hideaki default: 4212a8cc6c8SYOSHIFUJI Hideaki err = -EOPNOTSUPP; 4222a8cc6c8SYOSHIFUJI Hideaki } 4232a8cc6c8SYOSHIFUJI Hideaki return err; 4242a8cc6c8SYOSHIFUJI Hideaki } 4252a8cc6c8SYOSHIFUJI Hideaki 426a50feda5SEric Dumazet static void ip6addrlbl_putmsg(struct nlmsghdr *nlh, 4272a8cc6c8SYOSHIFUJI Hideaki int prefixlen, int ifindex, u32 lseq) 4282a8cc6c8SYOSHIFUJI Hideaki { 4292a8cc6c8SYOSHIFUJI Hideaki struct ifaddrlblmsg *ifal = nlmsg_data(nlh); 4302a8cc6c8SYOSHIFUJI Hideaki ifal->ifal_family = AF_INET6; 4312a8cc6c8SYOSHIFUJI Hideaki ifal->ifal_prefixlen = prefixlen; 4322a8cc6c8SYOSHIFUJI Hideaki ifal->ifal_flags = 0; 4332a8cc6c8SYOSHIFUJI Hideaki ifal->ifal_index = ifindex; 4342a8cc6c8SYOSHIFUJI Hideaki ifal->ifal_seq = lseq; 4352a8cc6c8SYOSHIFUJI Hideaki }; 4362a8cc6c8SYOSHIFUJI Hideaki 4372a8cc6c8SYOSHIFUJI Hideaki static int ip6addrlbl_fill(struct sk_buff *skb, 4382a8cc6c8SYOSHIFUJI Hideaki struct ip6addrlbl_entry *p, 4392a8cc6c8SYOSHIFUJI Hideaki u32 lseq, 44015e47304SEric W. Biederman u32 portid, u32 seq, int event, 4412a8cc6c8SYOSHIFUJI Hideaki unsigned int flags) 4422a8cc6c8SYOSHIFUJI Hideaki { 44315e47304SEric W. Biederman struct nlmsghdr *nlh = nlmsg_put(skb, portid, seq, event, 4442a8cc6c8SYOSHIFUJI Hideaki sizeof(struct ifaddrlblmsg), flags); 4452a8cc6c8SYOSHIFUJI Hideaki if (!nlh) 4462a8cc6c8SYOSHIFUJI Hideaki return -EMSGSIZE; 4472a8cc6c8SYOSHIFUJI Hideaki 4482a8cc6c8SYOSHIFUJI Hideaki ip6addrlbl_putmsg(nlh, p->prefixlen, p->ifindex, lseq); 4492a8cc6c8SYOSHIFUJI Hideaki 450930345eaSJiri Benc if (nla_put_in6_addr(skb, IFAL_ADDRESS, &p->prefix) < 0 || 4512a8cc6c8SYOSHIFUJI Hideaki nla_put_u32(skb, IFAL_LABEL, p->label) < 0) { 4522a8cc6c8SYOSHIFUJI Hideaki nlmsg_cancel(skb, nlh); 4532a8cc6c8SYOSHIFUJI Hideaki return -EMSGSIZE; 4542a8cc6c8SYOSHIFUJI Hideaki } 4552a8cc6c8SYOSHIFUJI Hideaki 456053c095aSJohannes Berg nlmsg_end(skb, nlh); 457053c095aSJohannes Berg return 0; 4582a8cc6c8SYOSHIFUJI Hideaki } 4592a8cc6c8SYOSHIFUJI Hideaki 4602a8cc6c8SYOSHIFUJI Hideaki static int ip6addrlbl_dump(struct sk_buff *skb, struct netlink_callback *cb) 4612a8cc6c8SYOSHIFUJI Hideaki { 4623b1e0a65SYOSHIFUJI Hideaki struct net *net = sock_net(skb->sk); 4632a8cc6c8SYOSHIFUJI Hideaki struct ip6addrlbl_entry *p; 4642a8cc6c8SYOSHIFUJI Hideaki int idx = 0, s_idx = cb->args[0]; 4652a8cc6c8SYOSHIFUJI Hideaki int err; 4662a8cc6c8SYOSHIFUJI Hideaki 4672a8cc6c8SYOSHIFUJI Hideaki rcu_read_lock(); 468a90c9347SEric Dumazet hlist_for_each_entry_rcu(p, &net->ipv6.ip6addrlbl_table.head, list) { 469a90c9347SEric Dumazet if (idx >= s_idx) { 470cb6e926eSWang Yufen err = ip6addrlbl_fill(skb, p, 471a90c9347SEric Dumazet net->ipv6.ip6addrlbl_table.seq, 47215e47304SEric W. Biederman NETLINK_CB(cb->skb).portid, 4732a8cc6c8SYOSHIFUJI Hideaki cb->nlh->nlmsg_seq, 4742a8cc6c8SYOSHIFUJI Hideaki RTM_NEWADDRLABEL, 475cb6e926eSWang Yufen NLM_F_MULTI); 476053c095aSJohannes Berg if (err < 0) 4772a8cc6c8SYOSHIFUJI Hideaki break; 4782a8cc6c8SYOSHIFUJI Hideaki } 4792a8cc6c8SYOSHIFUJI Hideaki idx++; 4802a8cc6c8SYOSHIFUJI Hideaki } 4812a8cc6c8SYOSHIFUJI Hideaki rcu_read_unlock(); 4822a8cc6c8SYOSHIFUJI Hideaki cb->args[0] = idx; 4832a8cc6c8SYOSHIFUJI Hideaki return skb->len; 4842a8cc6c8SYOSHIFUJI Hideaki } 4852a8cc6c8SYOSHIFUJI Hideaki 4862a8cc6c8SYOSHIFUJI Hideaki static inline int ip6addrlbl_msgsize(void) 4872a8cc6c8SYOSHIFUJI Hideaki { 488a02cec21SEric Dumazet return NLMSG_ALIGN(sizeof(struct ifaddrlblmsg)) 4892a8cc6c8SYOSHIFUJI Hideaki + nla_total_size(16) /* IFAL_ADDRESS */ 490a02cec21SEric Dumazet + nla_total_size(4); /* IFAL_LABEL */ 4912a8cc6c8SYOSHIFUJI Hideaki } 4922a8cc6c8SYOSHIFUJI Hideaki 493c21ef3e3SDavid Ahern static int ip6addrlbl_get(struct sk_buff *in_skb, struct nlmsghdr *nlh, 494c21ef3e3SDavid Ahern struct netlink_ext_ack *extack) 4952a8cc6c8SYOSHIFUJI Hideaki { 4963b1e0a65SYOSHIFUJI Hideaki struct net *net = sock_net(in_skb->sk); 4972a8cc6c8SYOSHIFUJI Hideaki struct ifaddrlblmsg *ifal; 4982a8cc6c8SYOSHIFUJI Hideaki struct nlattr *tb[IFAL_MAX+1]; 4992a8cc6c8SYOSHIFUJI Hideaki struct in6_addr *addr; 5002a8cc6c8SYOSHIFUJI Hideaki u32 lseq; 5012a8cc6c8SYOSHIFUJI Hideaki int err = 0; 5022a8cc6c8SYOSHIFUJI Hideaki struct ip6addrlbl_entry *p; 5032a8cc6c8SYOSHIFUJI Hideaki struct sk_buff *skb; 5042a8cc6c8SYOSHIFUJI Hideaki 505c21ef3e3SDavid Ahern err = nlmsg_parse(nlh, sizeof(*ifal), tb, IFAL_MAX, ifal_policy, 506c21ef3e3SDavid Ahern extack); 5072a8cc6c8SYOSHIFUJI Hideaki if (err < 0) 5082a8cc6c8SYOSHIFUJI Hideaki return err; 5092a8cc6c8SYOSHIFUJI Hideaki 5102a8cc6c8SYOSHIFUJI Hideaki ifal = nlmsg_data(nlh); 5112a8cc6c8SYOSHIFUJI Hideaki 5122a8cc6c8SYOSHIFUJI Hideaki if (ifal->ifal_family != AF_INET6 || 5132a8cc6c8SYOSHIFUJI Hideaki ifal->ifal_prefixlen != 128) 5142a8cc6c8SYOSHIFUJI Hideaki return -EINVAL; 5152a8cc6c8SYOSHIFUJI Hideaki 5162a8cc6c8SYOSHIFUJI Hideaki if (ifal->ifal_index && 517a6f57028SFlorian Westphal !addrlbl_ifindex_exists(net, ifal->ifal_index)) 5182a8cc6c8SYOSHIFUJI Hideaki return -EINVAL; 5192a8cc6c8SYOSHIFUJI Hideaki 5202a8cc6c8SYOSHIFUJI Hideaki if (!tb[IFAL_ADDRESS]) 5212a8cc6c8SYOSHIFUJI Hideaki return -EINVAL; 5222a8cc6c8SYOSHIFUJI Hideaki addr = nla_data(tb[IFAL_ADDRESS]); 5232a8cc6c8SYOSHIFUJI Hideaki 52466c77ff3SEric Dumazet skb = nlmsg_new(ip6addrlbl_msgsize(), GFP_KERNEL); 52566c77ff3SEric Dumazet if (!skb) 52666c77ff3SEric Dumazet return -ENOBUFS; 52766c77ff3SEric Dumazet 52866c77ff3SEric Dumazet err = -ESRCH; 52966c77ff3SEric Dumazet 5302a8cc6c8SYOSHIFUJI Hideaki rcu_read_lock(); 5313de23255SBenjamin Thery p = __ipv6_addr_label(net, addr, ipv6_addr_type(addr), ifal->ifal_index); 532a90c9347SEric Dumazet lseq = net->ipv6.ip6addrlbl_table.seq; 53366c77ff3SEric Dumazet if (p) 5342a8cc6c8SYOSHIFUJI Hideaki err = ip6addrlbl_fill(skb, p, lseq, 53566c77ff3SEric Dumazet NETLINK_CB(in_skb).portid, 53666c77ff3SEric Dumazet nlh->nlmsg_seq, 5372a8cc6c8SYOSHIFUJI Hideaki RTM_NEWADDRLABEL, 0); 53866c77ff3SEric Dumazet rcu_read_unlock(); 5392a8cc6c8SYOSHIFUJI Hideaki 5402a8cc6c8SYOSHIFUJI Hideaki if (err < 0) { 5412a8cc6c8SYOSHIFUJI Hideaki WARN_ON(err == -EMSGSIZE); 5422a8cc6c8SYOSHIFUJI Hideaki kfree_skb(skb); 54366c77ff3SEric Dumazet } else { 54415e47304SEric W. Biederman err = rtnl_unicast(skb, net, NETLINK_CB(in_skb).portid); 54566c77ff3SEric Dumazet } 5462a8cc6c8SYOSHIFUJI Hideaki return err; 5472a8cc6c8SYOSHIFUJI Hideaki } 5482a8cc6c8SYOSHIFUJI Hideaki 5492a8cc6c8SYOSHIFUJI Hideaki void __init ipv6_addr_label_rtnl_register(void) 5502a8cc6c8SYOSHIFUJI Hideaki { 551c7ac8679SGreg Rose __rtnl_register(PF_INET6, RTM_NEWADDRLABEL, ip6addrlbl_newdel, 552a6f57028SFlorian Westphal NULL, RTNL_FLAG_DOIT_UNLOCKED); 553c7ac8679SGreg Rose __rtnl_register(PF_INET6, RTM_DELADDRLABEL, ip6addrlbl_newdel, 554a6f57028SFlorian Westphal NULL, RTNL_FLAG_DOIT_UNLOCKED); 555c7ac8679SGreg Rose __rtnl_register(PF_INET6, RTM_GETADDRLABEL, ip6addrlbl_get, 556a6f57028SFlorian Westphal ip6addrlbl_dump, RTNL_FLAG_DOIT_UNLOCKED); 5572a8cc6c8SYOSHIFUJI Hideaki } 5582a8cc6c8SYOSHIFUJI Hideaki 559