xref: /openbmc/linux/net/ipv6/datagram.c (revision 187e3838)
11da177e4SLinus Torvalds /*
21da177e4SLinus Torvalds  *	common UDP/RAW code
31da177e4SLinus Torvalds  *	Linux INET6 implementation
41da177e4SLinus Torvalds  *
51da177e4SLinus Torvalds  *	Authors:
61da177e4SLinus Torvalds  *	Pedro Roque		<roque@di.fc.ul.pt>
71da177e4SLinus Torvalds  *
81da177e4SLinus Torvalds  *	$Id: datagram.c,v 1.24 2002/02/01 22:01:04 davem Exp $
91da177e4SLinus Torvalds  *
101da177e4SLinus Torvalds  *	This program is free software; you can redistribute it and/or
111da177e4SLinus Torvalds  *      modify it under the terms of the GNU General Public License
121da177e4SLinus Torvalds  *      as published by the Free Software Foundation; either version
131da177e4SLinus Torvalds  *      2 of the License, or (at your option) any later version.
141da177e4SLinus Torvalds  */
151da177e4SLinus Torvalds 
164fc268d2SRandy Dunlap #include <linux/capability.h>
171da177e4SLinus Torvalds #include <linux/errno.h>
181da177e4SLinus Torvalds #include <linux/types.h>
191da177e4SLinus Torvalds #include <linux/kernel.h>
201da177e4SLinus Torvalds #include <linux/interrupt.h>
211da177e4SLinus Torvalds #include <linux/socket.h>
221da177e4SLinus Torvalds #include <linux/sockios.h>
231da177e4SLinus Torvalds #include <linux/in6.h>
241da177e4SLinus Torvalds #include <linux/ipv6.h>
251da177e4SLinus Torvalds #include <linux/route.h>
261da177e4SLinus Torvalds 
271da177e4SLinus Torvalds #include <net/ipv6.h>
281da177e4SLinus Torvalds #include <net/ndisc.h>
291da177e4SLinus Torvalds #include <net/addrconf.h>
301da177e4SLinus Torvalds #include <net/transp_v6.h>
311da177e4SLinus Torvalds #include <net/ip6_route.h>
32c752f073SArnaldo Carvalho de Melo #include <net/tcp_states.h>
331da177e4SLinus Torvalds 
341da177e4SLinus Torvalds #include <linux/errqueue.h>
351da177e4SLinus Torvalds #include <asm/uaccess.h>
361da177e4SLinus Torvalds 
371da177e4SLinus Torvalds int ip6_datagram_connect(struct sock *sk, struct sockaddr *uaddr, int addr_len)
381da177e4SLinus Torvalds {
391da177e4SLinus Torvalds 	struct sockaddr_in6	*usin = (struct sockaddr_in6 *) uaddr;
401da177e4SLinus Torvalds 	struct inet_sock      	*inet = inet_sk(sk);
411da177e4SLinus Torvalds 	struct ipv6_pinfo      	*np = inet6_sk(sk);
421da177e4SLinus Torvalds 	struct in6_addr		*daddr, *final_p = NULL, final;
431da177e4SLinus Torvalds 	struct dst_entry	*dst;
441da177e4SLinus Torvalds 	struct flowi		fl;
451da177e4SLinus Torvalds 	struct ip6_flowlabel	*flowlabel = NULL;
461da177e4SLinus Torvalds 	int			addr_type;
471da177e4SLinus Torvalds 	int			err;
481da177e4SLinus Torvalds 
491da177e4SLinus Torvalds 	if (usin->sin6_family == AF_INET) {
501da177e4SLinus Torvalds 		if (__ipv6_only_sock(sk))
511da177e4SLinus Torvalds 			return -EAFNOSUPPORT;
521da177e4SLinus Torvalds 		err = ip4_datagram_connect(sk, uaddr, addr_len);
531da177e4SLinus Torvalds 		goto ipv4_connected;
541da177e4SLinus Torvalds 	}
551da177e4SLinus Torvalds 
561da177e4SLinus Torvalds 	if (addr_len < SIN6_LEN_RFC2133)
571da177e4SLinus Torvalds 		return -EINVAL;
581da177e4SLinus Torvalds 
591da177e4SLinus Torvalds 	if (usin->sin6_family != AF_INET6)
601da177e4SLinus Torvalds 		return -EAFNOSUPPORT;
611da177e4SLinus Torvalds 
621da177e4SLinus Torvalds 	memset(&fl, 0, sizeof(fl));
631da177e4SLinus Torvalds 	if (np->sndflow) {
641da177e4SLinus Torvalds 		fl.fl6_flowlabel = usin->sin6_flowinfo&IPV6_FLOWINFO_MASK;
651da177e4SLinus Torvalds 		if (fl.fl6_flowlabel&IPV6_FLOWLABEL_MASK) {
661da177e4SLinus Torvalds 			flowlabel = fl6_sock_lookup(sk, fl.fl6_flowlabel);
671da177e4SLinus Torvalds 			if (flowlabel == NULL)
681da177e4SLinus Torvalds 				return -EINVAL;
691da177e4SLinus Torvalds 			ipv6_addr_copy(&usin->sin6_addr, &flowlabel->dst);
701da177e4SLinus Torvalds 		}
711da177e4SLinus Torvalds 	}
721da177e4SLinus Torvalds 
731da177e4SLinus Torvalds 	addr_type = ipv6_addr_type(&usin->sin6_addr);
741da177e4SLinus Torvalds 
751da177e4SLinus Torvalds 	if (addr_type == IPV6_ADDR_ANY) {
761da177e4SLinus Torvalds 		/*
771da177e4SLinus Torvalds 		 *	connect to self
781da177e4SLinus Torvalds 		 */
791da177e4SLinus Torvalds 		usin->sin6_addr.s6_addr[15] = 0x01;
801da177e4SLinus Torvalds 	}
811da177e4SLinus Torvalds 
821da177e4SLinus Torvalds 	daddr = &usin->sin6_addr;
831da177e4SLinus Torvalds 
841da177e4SLinus Torvalds 	if (addr_type == IPV6_ADDR_MAPPED) {
851da177e4SLinus Torvalds 		struct sockaddr_in sin;
861da177e4SLinus Torvalds 
871da177e4SLinus Torvalds 		if (__ipv6_only_sock(sk)) {
881da177e4SLinus Torvalds 			err = -ENETUNREACH;
891da177e4SLinus Torvalds 			goto out;
901da177e4SLinus Torvalds 		}
911da177e4SLinus Torvalds 		sin.sin_family = AF_INET;
921da177e4SLinus Torvalds 		sin.sin_addr.s_addr = daddr->s6_addr32[3];
931da177e4SLinus Torvalds 		sin.sin_port = usin->sin6_port;
941da177e4SLinus Torvalds 
951da177e4SLinus Torvalds 		err = ip4_datagram_connect(sk,
961da177e4SLinus Torvalds 					   (struct sockaddr*) &sin,
971da177e4SLinus Torvalds 					   sizeof(sin));
981da177e4SLinus Torvalds 
991da177e4SLinus Torvalds ipv4_connected:
1001da177e4SLinus Torvalds 		if (err)
1011da177e4SLinus Torvalds 			goto out;
1021da177e4SLinus Torvalds 
1031da177e4SLinus Torvalds 		ipv6_addr_set(&np->daddr, 0, 0, htonl(0x0000ffff), inet->daddr);
1041da177e4SLinus Torvalds 
1051da177e4SLinus Torvalds 		if (ipv6_addr_any(&np->saddr)) {
1061da177e4SLinus Torvalds 			ipv6_addr_set(&np->saddr, 0, 0, htonl(0x0000ffff),
1071da177e4SLinus Torvalds 				      inet->saddr);
1081da177e4SLinus Torvalds 		}
1091da177e4SLinus Torvalds 
1101da177e4SLinus Torvalds 		if (ipv6_addr_any(&np->rcv_saddr)) {
1111da177e4SLinus Torvalds 			ipv6_addr_set(&np->rcv_saddr, 0, 0, htonl(0x0000ffff),
1121da177e4SLinus Torvalds 				      inet->rcv_saddr);
1131da177e4SLinus Torvalds 		}
1141da177e4SLinus Torvalds 		goto out;
1151da177e4SLinus Torvalds 	}
1161da177e4SLinus Torvalds 
1171da177e4SLinus Torvalds 	if (addr_type&IPV6_ADDR_LINKLOCAL) {
1181da177e4SLinus Torvalds 		if (addr_len >= sizeof(struct sockaddr_in6) &&
1191da177e4SLinus Torvalds 		    usin->sin6_scope_id) {
1201da177e4SLinus Torvalds 			if (sk->sk_bound_dev_if &&
1211da177e4SLinus Torvalds 			    sk->sk_bound_dev_if != usin->sin6_scope_id) {
1221da177e4SLinus Torvalds 				err = -EINVAL;
1231da177e4SLinus Torvalds 				goto out;
1241da177e4SLinus Torvalds 			}
1251da177e4SLinus Torvalds 			sk->sk_bound_dev_if = usin->sin6_scope_id;
1261da177e4SLinus Torvalds 		}
1271da177e4SLinus Torvalds 
1281ac4f008SBrian Haley 		if (!sk->sk_bound_dev_if && (addr_type & IPV6_ADDR_MULTICAST))
1291ac4f008SBrian Haley 			sk->sk_bound_dev_if = np->mcast_oif;
1301ac4f008SBrian Haley 
1311da177e4SLinus Torvalds 		/* Connect to link-local address requires an interface */
1321da177e4SLinus Torvalds 		if (!sk->sk_bound_dev_if) {
1331da177e4SLinus Torvalds 			err = -EINVAL;
1341da177e4SLinus Torvalds 			goto out;
1351da177e4SLinus Torvalds 		}
1361da177e4SLinus Torvalds 	}
1371da177e4SLinus Torvalds 
1381da177e4SLinus Torvalds 	ipv6_addr_copy(&np->daddr, daddr);
1391da177e4SLinus Torvalds 	np->flow_label = fl.fl6_flowlabel;
1401da177e4SLinus Torvalds 
1411da177e4SLinus Torvalds 	inet->dport = usin->sin6_port;
1421da177e4SLinus Torvalds 
1431da177e4SLinus Torvalds 	/*
1441da177e4SLinus Torvalds 	 *	Check for a route to destination an obtain the
1451da177e4SLinus Torvalds 	 *	destination cache for it.
1461da177e4SLinus Torvalds 	 */
1471da177e4SLinus Torvalds 
1481da177e4SLinus Torvalds 	fl.proto = sk->sk_protocol;
1491da177e4SLinus Torvalds 	ipv6_addr_copy(&fl.fl6_dst, &np->daddr);
1501da177e4SLinus Torvalds 	ipv6_addr_copy(&fl.fl6_src, &np->saddr);
1511da177e4SLinus Torvalds 	fl.oif = sk->sk_bound_dev_if;
1521da177e4SLinus Torvalds 	fl.fl_ip_dport = inet->dport;
1531da177e4SLinus Torvalds 	fl.fl_ip_sport = inet->sport;
1541da177e4SLinus Torvalds 
1551da177e4SLinus Torvalds 	if (!fl.oif && (addr_type&IPV6_ADDR_MULTICAST))
1561da177e4SLinus Torvalds 		fl.oif = np->mcast_oif;
1571da177e4SLinus Torvalds 
158beb8d13bSVenkat Yekkirala 	security_sk_classify_flow(sk, &fl);
159beb8d13bSVenkat Yekkirala 
1601da177e4SLinus Torvalds 	if (flowlabel) {
1611da177e4SLinus Torvalds 		if (flowlabel->opt && flowlabel->opt->srcrt) {
1621da177e4SLinus Torvalds 			struct rt0_hdr *rt0 = (struct rt0_hdr *) flowlabel->opt->srcrt;
1631da177e4SLinus Torvalds 			ipv6_addr_copy(&final, &fl.fl6_dst);
1641da177e4SLinus Torvalds 			ipv6_addr_copy(&fl.fl6_dst, rt0->addr);
1651da177e4SLinus Torvalds 			final_p = &final;
1661da177e4SLinus Torvalds 		}
1671da177e4SLinus Torvalds 	} else if (np->opt && np->opt->srcrt) {
1681da177e4SLinus Torvalds 		struct rt0_hdr *rt0 = (struct rt0_hdr *)np->opt->srcrt;
1691da177e4SLinus Torvalds 		ipv6_addr_copy(&final, &fl.fl6_dst);
1701da177e4SLinus Torvalds 		ipv6_addr_copy(&fl.fl6_dst, rt0->addr);
1711da177e4SLinus Torvalds 		final_p = &final;
1721da177e4SLinus Torvalds 	}
1731da177e4SLinus Torvalds 
1741da177e4SLinus Torvalds 	err = ip6_dst_lookup(sk, &dst, &fl);
1751da177e4SLinus Torvalds 	if (err)
1761da177e4SLinus Torvalds 		goto out;
1771da177e4SLinus Torvalds 	if (final_p)
1781da177e4SLinus Torvalds 		ipv6_addr_copy(&fl.fl6_dst, final_p);
1791da177e4SLinus Torvalds 
180bb72845eSHerbert Xu 	if ((err = __xfrm_lookup(&dst, &fl, sk, XFRM_LOOKUP_WAIT)) < 0) {
18114e50e57SDavid S. Miller 		if (err == -EREMOTE)
18214e50e57SDavid S. Miller 			err = ip6_dst_blackhole(sk, &dst, &fl);
18314e50e57SDavid S. Miller 		if (err < 0)
1841da177e4SLinus Torvalds 			goto out;
18514e50e57SDavid S. Miller 	}
1861da177e4SLinus Torvalds 
1871da177e4SLinus Torvalds 	/* source address lookup done in ip6_dst_lookup */
1881da177e4SLinus Torvalds 
1891da177e4SLinus Torvalds 	if (ipv6_addr_any(&np->saddr))
1901da177e4SLinus Torvalds 		ipv6_addr_copy(&np->saddr, &fl.fl6_src);
1911da177e4SLinus Torvalds 
1921da177e4SLinus Torvalds 	if (ipv6_addr_any(&np->rcv_saddr)) {
1931da177e4SLinus Torvalds 		ipv6_addr_copy(&np->rcv_saddr, &fl.fl6_src);
1941da177e4SLinus Torvalds 		inet->rcv_saddr = LOOPBACK4_IPV6;
1951da177e4SLinus Torvalds 	}
1961da177e4SLinus Torvalds 
1971da177e4SLinus Torvalds 	ip6_dst_store(sk, dst,
1981da177e4SLinus Torvalds 		      ipv6_addr_equal(&fl.fl6_dst, &np->daddr) ?
1998e1ef0a9SYOSHIFUJI Hideaki 		      &np->daddr : NULL,
2008e1ef0a9SYOSHIFUJI Hideaki #ifdef CONFIG_IPV6_SUBTREES
2018e1ef0a9SYOSHIFUJI Hideaki 		      ipv6_addr_equal(&fl.fl6_src, &np->saddr) ?
2028e1ef0a9SYOSHIFUJI Hideaki 		      &np->saddr :
2038e1ef0a9SYOSHIFUJI Hideaki #endif
2048e1ef0a9SYOSHIFUJI Hideaki 		      NULL);
2051da177e4SLinus Torvalds 
2061da177e4SLinus Torvalds 	sk->sk_state = TCP_ESTABLISHED;
2071da177e4SLinus Torvalds out:
2081da177e4SLinus Torvalds 	fl6_sock_release(flowlabel);
2091da177e4SLinus Torvalds 	return err;
2101da177e4SLinus Torvalds }
2111da177e4SLinus Torvalds 
2121da177e4SLinus Torvalds void ipv6_icmp_error(struct sock *sk, struct sk_buff *skb, int err,
213e69a4adcSAl Viro 		     __be16 port, u32 info, u8 *payload)
2141da177e4SLinus Torvalds {
2151da177e4SLinus Torvalds 	struct ipv6_pinfo *np  = inet6_sk(sk);
216cc70ab26SArnaldo Carvalho de Melo 	struct icmp6hdr *icmph = icmp6_hdr(skb);
2171da177e4SLinus Torvalds 	struct sock_exterr_skb *serr;
2181da177e4SLinus Torvalds 
2191da177e4SLinus Torvalds 	if (!np->recverr)
2201da177e4SLinus Torvalds 		return;
2211da177e4SLinus Torvalds 
2221da177e4SLinus Torvalds 	skb = skb_clone(skb, GFP_ATOMIC);
2231da177e4SLinus Torvalds 	if (!skb)
2241da177e4SLinus Torvalds 		return;
2251da177e4SLinus Torvalds 
2261da177e4SLinus Torvalds 	serr = SKB_EXT_ERR(skb);
2271da177e4SLinus Torvalds 	serr->ee.ee_errno = err;
2281da177e4SLinus Torvalds 	serr->ee.ee_origin = SO_EE_ORIGIN_ICMP6;
2291da177e4SLinus Torvalds 	serr->ee.ee_type = icmph->icmp6_type;
2301da177e4SLinus Torvalds 	serr->ee.ee_code = icmph->icmp6_code;
2311da177e4SLinus Torvalds 	serr->ee.ee_pad = 0;
2321da177e4SLinus Torvalds 	serr->ee.ee_info = info;
2331da177e4SLinus Torvalds 	serr->ee.ee_data = 0;
234d56f90a7SArnaldo Carvalho de Melo 	serr->addr_offset = (u8 *)&(((struct ipv6hdr *)(icmph + 1))->daddr) -
235d56f90a7SArnaldo Carvalho de Melo 				  skb_network_header(skb);
2361da177e4SLinus Torvalds 	serr->port = port;
2371da177e4SLinus Torvalds 
2381da177e4SLinus Torvalds 	__skb_pull(skb, payload - skb->data);
239bd82393cSArnaldo Carvalho de Melo 	skb_reset_transport_header(skb);
2401da177e4SLinus Torvalds 
2411da177e4SLinus Torvalds 	if (sock_queue_err_skb(sk, skb))
2421da177e4SLinus Torvalds 		kfree_skb(skb);
2431da177e4SLinus Torvalds }
2441da177e4SLinus Torvalds 
2451da177e4SLinus Torvalds void ipv6_local_error(struct sock *sk, int err, struct flowi *fl, u32 info)
2461da177e4SLinus Torvalds {
2471da177e4SLinus Torvalds 	struct ipv6_pinfo *np = inet6_sk(sk);
2481da177e4SLinus Torvalds 	struct sock_exterr_skb *serr;
2491da177e4SLinus Torvalds 	struct ipv6hdr *iph;
2501da177e4SLinus Torvalds 	struct sk_buff *skb;
2511da177e4SLinus Torvalds 
2521da177e4SLinus Torvalds 	if (!np->recverr)
2531da177e4SLinus Torvalds 		return;
2541da177e4SLinus Torvalds 
2551da177e4SLinus Torvalds 	skb = alloc_skb(sizeof(struct ipv6hdr), GFP_ATOMIC);
2561da177e4SLinus Torvalds 	if (!skb)
2571da177e4SLinus Torvalds 		return;
2581da177e4SLinus Torvalds 
2591ced98e8SArnaldo Carvalho de Melo 	skb_put(skb, sizeof(struct ipv6hdr));
2601ced98e8SArnaldo Carvalho de Melo 	skb_reset_network_header(skb);
2610660e03fSArnaldo Carvalho de Melo 	iph = ipv6_hdr(skb);
2621da177e4SLinus Torvalds 	ipv6_addr_copy(&iph->daddr, &fl->fl6_dst);
2631da177e4SLinus Torvalds 
2641da177e4SLinus Torvalds 	serr = SKB_EXT_ERR(skb);
2651da177e4SLinus Torvalds 	serr->ee.ee_errno = err;
2661da177e4SLinus Torvalds 	serr->ee.ee_origin = SO_EE_ORIGIN_LOCAL;
2671da177e4SLinus Torvalds 	serr->ee.ee_type = 0;
2681da177e4SLinus Torvalds 	serr->ee.ee_code = 0;
2691da177e4SLinus Torvalds 	serr->ee.ee_pad = 0;
2701da177e4SLinus Torvalds 	serr->ee.ee_info = info;
2711da177e4SLinus Torvalds 	serr->ee.ee_data = 0;
272d56f90a7SArnaldo Carvalho de Melo 	serr->addr_offset = (u8 *)&iph->daddr - skb_network_header(skb);
2731da177e4SLinus Torvalds 	serr->port = fl->fl_ip_dport;
2741da177e4SLinus Torvalds 
27527a884dcSArnaldo Carvalho de Melo 	__skb_pull(skb, skb_tail_pointer(skb) - skb->data);
276bd82393cSArnaldo Carvalho de Melo 	skb_reset_transport_header(skb);
2771da177e4SLinus Torvalds 
2781da177e4SLinus Torvalds 	if (sock_queue_err_skb(sk, skb))
2791da177e4SLinus Torvalds 		kfree_skb(skb);
2801da177e4SLinus Torvalds }
2811da177e4SLinus Torvalds 
2821da177e4SLinus Torvalds /*
2831da177e4SLinus Torvalds  *	Handle MSG_ERRQUEUE
2841da177e4SLinus Torvalds  */
2851da177e4SLinus Torvalds int ipv6_recv_error(struct sock *sk, struct msghdr *msg, int len)
2861da177e4SLinus Torvalds {
2871da177e4SLinus Torvalds 	struct ipv6_pinfo *np = inet6_sk(sk);
2881da177e4SLinus Torvalds 	struct sock_exterr_skb *serr;
2891da177e4SLinus Torvalds 	struct sk_buff *skb, *skb2;
2901da177e4SLinus Torvalds 	struct sockaddr_in6 *sin;
2911da177e4SLinus Torvalds 	struct {
2921da177e4SLinus Torvalds 		struct sock_extended_err ee;
2931da177e4SLinus Torvalds 		struct sockaddr_in6	 offender;
2941da177e4SLinus Torvalds 	} errhdr;
2951da177e4SLinus Torvalds 	int err;
2961da177e4SLinus Torvalds 	int copied;
2971da177e4SLinus Torvalds 
2981da177e4SLinus Torvalds 	err = -EAGAIN;
2991da177e4SLinus Torvalds 	skb = skb_dequeue(&sk->sk_error_queue);
3001da177e4SLinus Torvalds 	if (skb == NULL)
3011da177e4SLinus Torvalds 		goto out;
3021da177e4SLinus Torvalds 
3031da177e4SLinus Torvalds 	copied = skb->len;
3041da177e4SLinus Torvalds 	if (copied > len) {
3051da177e4SLinus Torvalds 		msg->msg_flags |= MSG_TRUNC;
3061da177e4SLinus Torvalds 		copied = len;
3071da177e4SLinus Torvalds 	}
3081da177e4SLinus Torvalds 	err = skb_copy_datagram_iovec(skb, 0, msg->msg_iov, copied);
3091da177e4SLinus Torvalds 	if (err)
3101da177e4SLinus Torvalds 		goto out_free_skb;
3111da177e4SLinus Torvalds 
3121da177e4SLinus Torvalds 	sock_recv_timestamp(msg, sk, skb);
3131da177e4SLinus Torvalds 
3141da177e4SLinus Torvalds 	serr = SKB_EXT_ERR(skb);
3151da177e4SLinus Torvalds 
3161da177e4SLinus Torvalds 	sin = (struct sockaddr_in6 *)msg->msg_name;
3171da177e4SLinus Torvalds 	if (sin) {
318d56f90a7SArnaldo Carvalho de Melo 		const unsigned char *nh = skb_network_header(skb);
3191da177e4SLinus Torvalds 		sin->sin6_family = AF_INET6;
3201da177e4SLinus Torvalds 		sin->sin6_flowinfo = 0;
3211da177e4SLinus Torvalds 		sin->sin6_port = serr->port;
3221da177e4SLinus Torvalds 		sin->sin6_scope_id = 0;
3231da177e4SLinus Torvalds 		if (serr->ee.ee_origin == SO_EE_ORIGIN_ICMP6) {
3241da177e4SLinus Torvalds 			ipv6_addr_copy(&sin->sin6_addr,
325d56f90a7SArnaldo Carvalho de Melo 				  (struct in6_addr *)(nh + serr->addr_offset));
3261da177e4SLinus Torvalds 			if (np->sndflow)
327d56f90a7SArnaldo Carvalho de Melo 				sin->sin6_flowinfo =
328d56f90a7SArnaldo Carvalho de Melo 					(*(__be32 *)(nh + serr->addr_offset - 24) &
329d56f90a7SArnaldo Carvalho de Melo 					 IPV6_FLOWINFO_MASK);
3301da177e4SLinus Torvalds 			if (ipv6_addr_type(&sin->sin6_addr) & IPV6_ADDR_LINKLOCAL)
3311da177e4SLinus Torvalds 				sin->sin6_scope_id = IP6CB(skb)->iif;
3321da177e4SLinus Torvalds 		} else {
3331da177e4SLinus Torvalds 			ipv6_addr_set(&sin->sin6_addr, 0, 0,
3341da177e4SLinus Torvalds 				      htonl(0xffff),
335d56f90a7SArnaldo Carvalho de Melo 				      *(__be32 *)(nh + serr->addr_offset));
3361da177e4SLinus Torvalds 		}
3371da177e4SLinus Torvalds 	}
3381da177e4SLinus Torvalds 
3391da177e4SLinus Torvalds 	memcpy(&errhdr.ee, &serr->ee, sizeof(struct sock_extended_err));
3401da177e4SLinus Torvalds 	sin = &errhdr.offender;
3411da177e4SLinus Torvalds 	sin->sin6_family = AF_UNSPEC;
3421da177e4SLinus Torvalds 	if (serr->ee.ee_origin != SO_EE_ORIGIN_LOCAL) {
3431da177e4SLinus Torvalds 		sin->sin6_family = AF_INET6;
3441da177e4SLinus Torvalds 		sin->sin6_flowinfo = 0;
3451da177e4SLinus Torvalds 		sin->sin6_scope_id = 0;
3461da177e4SLinus Torvalds 		if (serr->ee.ee_origin == SO_EE_ORIGIN_ICMP6) {
3470660e03fSArnaldo Carvalho de Melo 			ipv6_addr_copy(&sin->sin6_addr, &ipv6_hdr(skb)->saddr);
3481da177e4SLinus Torvalds 			if (np->rxopt.all)
3491da177e4SLinus Torvalds 				datagram_recv_ctl(sk, msg, skb);
3501da177e4SLinus Torvalds 			if (ipv6_addr_type(&sin->sin6_addr) & IPV6_ADDR_LINKLOCAL)
3511da177e4SLinus Torvalds 				sin->sin6_scope_id = IP6CB(skb)->iif;
3521da177e4SLinus Torvalds 		} else {
3531da177e4SLinus Torvalds 			struct inet_sock *inet = inet_sk(sk);
3541da177e4SLinus Torvalds 
3551da177e4SLinus Torvalds 			ipv6_addr_set(&sin->sin6_addr, 0, 0,
356eddc9ec5SArnaldo Carvalho de Melo 				      htonl(0xffff), ip_hdr(skb)->saddr);
3571da177e4SLinus Torvalds 			if (inet->cmsg_flags)
3581da177e4SLinus Torvalds 				ip_cmsg_recv(msg, skb);
3591da177e4SLinus Torvalds 		}
3601da177e4SLinus Torvalds 	}
3611da177e4SLinus Torvalds 
3621da177e4SLinus Torvalds 	put_cmsg(msg, SOL_IPV6, IPV6_RECVERR, sizeof(errhdr), &errhdr);
3631da177e4SLinus Torvalds 
3641da177e4SLinus Torvalds 	/* Now we could try to dump offended packet options */
3651da177e4SLinus Torvalds 
3661da177e4SLinus Torvalds 	msg->msg_flags |= MSG_ERRQUEUE;
3671da177e4SLinus Torvalds 	err = copied;
3681da177e4SLinus Torvalds 
3691da177e4SLinus Torvalds 	/* Reset and regenerate socket error */
370e0f9f858SHerbert Xu 	spin_lock_bh(&sk->sk_error_queue.lock);
3711da177e4SLinus Torvalds 	sk->sk_err = 0;
3721da177e4SLinus Torvalds 	if ((skb2 = skb_peek(&sk->sk_error_queue)) != NULL) {
3731da177e4SLinus Torvalds 		sk->sk_err = SKB_EXT_ERR(skb2)->ee.ee_errno;
374e0f9f858SHerbert Xu 		spin_unlock_bh(&sk->sk_error_queue.lock);
3751da177e4SLinus Torvalds 		sk->sk_error_report(sk);
3761da177e4SLinus Torvalds 	} else {
377e0f9f858SHerbert Xu 		spin_unlock_bh(&sk->sk_error_queue.lock);
3781da177e4SLinus Torvalds 	}
3791da177e4SLinus Torvalds 
3801da177e4SLinus Torvalds out_free_skb:
3811da177e4SLinus Torvalds 	kfree_skb(skb);
3821da177e4SLinus Torvalds out:
3831da177e4SLinus Torvalds 	return err;
3841da177e4SLinus Torvalds }
3851da177e4SLinus Torvalds 
3861da177e4SLinus Torvalds 
3871da177e4SLinus Torvalds 
3881da177e4SLinus Torvalds int datagram_recv_ctl(struct sock *sk, struct msghdr *msg, struct sk_buff *skb)
3891da177e4SLinus Torvalds {
3901da177e4SLinus Torvalds 	struct ipv6_pinfo *np = inet6_sk(sk);
3911da177e4SLinus Torvalds 	struct inet6_skb_parm *opt = IP6CB(skb);
392d56f90a7SArnaldo Carvalho de Melo 	unsigned char *nh = skb_network_header(skb);
3931da177e4SLinus Torvalds 
3941da177e4SLinus Torvalds 	if (np->rxopt.bits.rxinfo) {
3951da177e4SLinus Torvalds 		struct in6_pktinfo src_info;
3961da177e4SLinus Torvalds 
3971da177e4SLinus Torvalds 		src_info.ipi6_ifindex = opt->iif;
3980660e03fSArnaldo Carvalho de Melo 		ipv6_addr_copy(&src_info.ipi6_addr, &ipv6_hdr(skb)->daddr);
3991da177e4SLinus Torvalds 		put_cmsg(msg, SOL_IPV6, IPV6_PKTINFO, sizeof(src_info), &src_info);
4001da177e4SLinus Torvalds 	}
4011da177e4SLinus Torvalds 
4021da177e4SLinus Torvalds 	if (np->rxopt.bits.rxhlim) {
4030660e03fSArnaldo Carvalho de Melo 		int hlim = ipv6_hdr(skb)->hop_limit;
4041da177e4SLinus Torvalds 		put_cmsg(msg, SOL_IPV6, IPV6_HOPLIMIT, sizeof(hlim), &hlim);
4051da177e4SLinus Torvalds 	}
4061da177e4SLinus Torvalds 
40741a1f8eaSYOSHIFUJI Hideaki 	if (np->rxopt.bits.rxtclass) {
4080660e03fSArnaldo Carvalho de Melo 		int tclass = (ntohl(*(__be32 *)ipv6_hdr(skb)) >> 20) & 0xff;
40941a1f8eaSYOSHIFUJI Hideaki 		put_cmsg(msg, SOL_IPV6, IPV6_TCLASS, sizeof(tclass), &tclass);
41041a1f8eaSYOSHIFUJI Hideaki 	}
41141a1f8eaSYOSHIFUJI Hideaki 
412d56f90a7SArnaldo Carvalho de Melo 	if (np->rxopt.bits.rxflow && (*(__be32 *)nh & IPV6_FLOWINFO_MASK)) {
413d56f90a7SArnaldo Carvalho de Melo 		__be32 flowinfo = *(__be32 *)nh & IPV6_FLOWINFO_MASK;
4141da177e4SLinus Torvalds 		put_cmsg(msg, SOL_IPV6, IPV6_FLOWINFO, sizeof(flowinfo), &flowinfo);
4151da177e4SLinus Torvalds 	}
416333fad53SYOSHIFUJI Hideaki 
417333fad53SYOSHIFUJI Hideaki 	/* HbH is allowed only once */
4181da177e4SLinus Torvalds 	if (np->rxopt.bits.hopopts && opt->hop) {
419d56f90a7SArnaldo Carvalho de Melo 		u8 *ptr = nh + opt->hop;
4201da177e4SLinus Torvalds 		put_cmsg(msg, SOL_IPV6, IPV6_HOPOPTS, (ptr[1]+1)<<3, ptr);
4211da177e4SLinus Torvalds 	}
422333fad53SYOSHIFUJI Hideaki 
423333fad53SYOSHIFUJI Hideaki 	if (opt->lastopt &&
424333fad53SYOSHIFUJI Hideaki 	    (np->rxopt.bits.dstopts || np->rxopt.bits.srcrt)) {
425333fad53SYOSHIFUJI Hideaki 		/*
426333fad53SYOSHIFUJI Hideaki 		 * Silly enough, but we need to reparse in order to
427333fad53SYOSHIFUJI Hideaki 		 * report extension headers (except for HbH)
428333fad53SYOSHIFUJI Hideaki 		 * in order.
429333fad53SYOSHIFUJI Hideaki 		 *
430333fad53SYOSHIFUJI Hideaki 		 * Also note that IPV6_RECVRTHDRDSTOPTS is NOT
431333fad53SYOSHIFUJI Hideaki 		 * (and WILL NOT be) defined because
432333fad53SYOSHIFUJI Hideaki 		 * IPV6_RECVDSTOPTS is more generic. --yoshfuji
433333fad53SYOSHIFUJI Hideaki 		 */
434333fad53SYOSHIFUJI Hideaki 		unsigned int off = sizeof(struct ipv6hdr);
4350660e03fSArnaldo Carvalho de Melo 		u8 nexthdr = ipv6_hdr(skb)->nexthdr;
436333fad53SYOSHIFUJI Hideaki 
437333fad53SYOSHIFUJI Hideaki 		while (off <= opt->lastopt) {
438333fad53SYOSHIFUJI Hideaki 			unsigned len;
439d56f90a7SArnaldo Carvalho de Melo 			u8 *ptr = nh + off;
440333fad53SYOSHIFUJI Hideaki 
441333fad53SYOSHIFUJI Hideaki 			switch(nexthdr) {
442333fad53SYOSHIFUJI Hideaki 			case IPPROTO_DSTOPTS:
443333fad53SYOSHIFUJI Hideaki 				nexthdr = ptr[0];
444333fad53SYOSHIFUJI Hideaki 				len = (ptr[1] + 1) << 3;
445333fad53SYOSHIFUJI Hideaki 				if (np->rxopt.bits.dstopts)
446333fad53SYOSHIFUJI Hideaki 					put_cmsg(msg, SOL_IPV6, IPV6_DSTOPTS, len, ptr);
447333fad53SYOSHIFUJI Hideaki 				break;
448333fad53SYOSHIFUJI Hideaki 			case IPPROTO_ROUTING:
449333fad53SYOSHIFUJI Hideaki 				nexthdr = ptr[0];
450333fad53SYOSHIFUJI Hideaki 				len = (ptr[1] + 1) << 3;
451333fad53SYOSHIFUJI Hideaki 				if (np->rxopt.bits.srcrt)
452333fad53SYOSHIFUJI Hideaki 					put_cmsg(msg, SOL_IPV6, IPV6_RTHDR, len, ptr);
453333fad53SYOSHIFUJI Hideaki 				break;
454333fad53SYOSHIFUJI Hideaki 			case IPPROTO_AH:
455333fad53SYOSHIFUJI Hideaki 				nexthdr = ptr[0];
456a3059893SVille Nuorvala 				len = (ptr[1] + 2) << 2;
457333fad53SYOSHIFUJI Hideaki 				break;
458333fad53SYOSHIFUJI Hideaki 			default:
459333fad53SYOSHIFUJI Hideaki 				nexthdr = ptr[0];
460333fad53SYOSHIFUJI Hideaki 				len = (ptr[1] + 1) << 3;
461333fad53SYOSHIFUJI Hideaki 				break;
462333fad53SYOSHIFUJI Hideaki 			}
463333fad53SYOSHIFUJI Hideaki 
464333fad53SYOSHIFUJI Hideaki 			off += len;
465333fad53SYOSHIFUJI Hideaki 		}
466333fad53SYOSHIFUJI Hideaki 	}
467333fad53SYOSHIFUJI Hideaki 
468333fad53SYOSHIFUJI Hideaki 	/* socket options in old style */
469333fad53SYOSHIFUJI Hideaki 	if (np->rxopt.bits.rxoinfo) {
470333fad53SYOSHIFUJI Hideaki 		struct in6_pktinfo src_info;
471333fad53SYOSHIFUJI Hideaki 
472333fad53SYOSHIFUJI Hideaki 		src_info.ipi6_ifindex = opt->iif;
4730660e03fSArnaldo Carvalho de Melo 		ipv6_addr_copy(&src_info.ipi6_addr, &ipv6_hdr(skb)->daddr);
474333fad53SYOSHIFUJI Hideaki 		put_cmsg(msg, SOL_IPV6, IPV6_2292PKTINFO, sizeof(src_info), &src_info);
475333fad53SYOSHIFUJI Hideaki 	}
476333fad53SYOSHIFUJI Hideaki 	if (np->rxopt.bits.rxohlim) {
4770660e03fSArnaldo Carvalho de Melo 		int hlim = ipv6_hdr(skb)->hop_limit;
478333fad53SYOSHIFUJI Hideaki 		put_cmsg(msg, SOL_IPV6, IPV6_2292HOPLIMIT, sizeof(hlim), &hlim);
479333fad53SYOSHIFUJI Hideaki 	}
480333fad53SYOSHIFUJI Hideaki 	if (np->rxopt.bits.ohopopts && opt->hop) {
481d56f90a7SArnaldo Carvalho de Melo 		u8 *ptr = nh + opt->hop;
482333fad53SYOSHIFUJI Hideaki 		put_cmsg(msg, SOL_IPV6, IPV6_2292HOPOPTS, (ptr[1]+1)<<3, ptr);
483333fad53SYOSHIFUJI Hideaki 	}
484333fad53SYOSHIFUJI Hideaki 	if (np->rxopt.bits.odstopts && opt->dst0) {
485d56f90a7SArnaldo Carvalho de Melo 		u8 *ptr = nh + opt->dst0;
486333fad53SYOSHIFUJI Hideaki 		put_cmsg(msg, SOL_IPV6, IPV6_2292DSTOPTS, (ptr[1]+1)<<3, ptr);
4871da177e4SLinus Torvalds 	}
488333fad53SYOSHIFUJI Hideaki 	if (np->rxopt.bits.osrcrt && opt->srcrt) {
489d56f90a7SArnaldo Carvalho de Melo 		struct ipv6_rt_hdr *rthdr = (struct ipv6_rt_hdr *)(nh + opt->srcrt);
490333fad53SYOSHIFUJI Hideaki 		put_cmsg(msg, SOL_IPV6, IPV6_2292RTHDR, (rthdr->hdrlen+1) << 3, rthdr);
4911da177e4SLinus Torvalds 	}
492333fad53SYOSHIFUJI Hideaki 	if (np->rxopt.bits.odstopts && opt->dst1) {
493d56f90a7SArnaldo Carvalho de Melo 		u8 *ptr = nh + opt->dst1;
494333fad53SYOSHIFUJI Hideaki 		put_cmsg(msg, SOL_IPV6, IPV6_2292DSTOPTS, (ptr[1]+1)<<3, ptr);
4951da177e4SLinus Torvalds 	}
4961da177e4SLinus Torvalds 	return 0;
4971da177e4SLinus Torvalds }
4981da177e4SLinus Torvalds 
4991da177e4SLinus Torvalds int datagram_send_ctl(struct msghdr *msg, struct flowi *fl,
5001da177e4SLinus Torvalds 		      struct ipv6_txoptions *opt,
50141a1f8eaSYOSHIFUJI Hideaki 		      int *hlimit, int *tclass)
5021da177e4SLinus Torvalds {
5031da177e4SLinus Torvalds 	struct in6_pktinfo *src_info;
5041da177e4SLinus Torvalds 	struct cmsghdr *cmsg;
5051da177e4SLinus Torvalds 	struct ipv6_rt_hdr *rthdr;
5061da177e4SLinus Torvalds 	struct ipv6_opt_hdr *hdr;
5071da177e4SLinus Torvalds 	int len;
5081da177e4SLinus Torvalds 	int err = 0;
5091da177e4SLinus Torvalds 
5101da177e4SLinus Torvalds 	for (cmsg = CMSG_FIRSTHDR(msg); cmsg; cmsg = CMSG_NXTHDR(msg, cmsg)) {
5111da177e4SLinus Torvalds 		int addr_type;
5121da177e4SLinus Torvalds 
5131da177e4SLinus Torvalds 		if (!CMSG_OK(msg, cmsg)) {
5141da177e4SLinus Torvalds 			err = -EINVAL;
5151da177e4SLinus Torvalds 			goto exit_f;
5161da177e4SLinus Torvalds 		}
5171da177e4SLinus Torvalds 
5181da177e4SLinus Torvalds 		if (cmsg->cmsg_level != SOL_IPV6)
5191da177e4SLinus Torvalds 			continue;
5201da177e4SLinus Torvalds 
5211da177e4SLinus Torvalds 		switch (cmsg->cmsg_type) {
5221da177e4SLinus Torvalds 		case IPV6_PKTINFO:
523333fad53SYOSHIFUJI Hideaki 		case IPV6_2292PKTINFO:
524187e3838SYOSHIFUJI Hideaki 		    {
525187e3838SYOSHIFUJI Hideaki 			struct net_device *dev = NULL;
526187e3838SYOSHIFUJI Hideaki 
5271da177e4SLinus Torvalds 			if (cmsg->cmsg_len < CMSG_LEN(sizeof(struct in6_pktinfo))) {
5281da177e4SLinus Torvalds 				err = -EINVAL;
5291da177e4SLinus Torvalds 				goto exit_f;
5301da177e4SLinus Torvalds 			}
5311da177e4SLinus Torvalds 
5321da177e4SLinus Torvalds 			src_info = (struct in6_pktinfo *)CMSG_DATA(cmsg);
5331da177e4SLinus Torvalds 
5341da177e4SLinus Torvalds 			if (src_info->ipi6_ifindex) {
5351da177e4SLinus Torvalds 				if (fl->oif && src_info->ipi6_ifindex != fl->oif)
5361da177e4SLinus Torvalds 					return -EINVAL;
5371da177e4SLinus Torvalds 				fl->oif = src_info->ipi6_ifindex;
5381da177e4SLinus Torvalds 			}
5391da177e4SLinus Torvalds 
540187e3838SYOSHIFUJI Hideaki 			addr_type = __ipv6_addr_type(&src_info->ipi6_addr);
5411da177e4SLinus Torvalds 
542187e3838SYOSHIFUJI Hideaki 			if (fl->oif) {
543187e3838SYOSHIFUJI Hideaki 				dev = dev_get_by_index(&init_net, fl->oif);
5441da177e4SLinus Torvalds 				if (!dev)
5451da177e4SLinus Torvalds 					return -ENODEV;
546187e3838SYOSHIFUJI Hideaki 			} else if (addr_type & IPV6_ADDR_LINKLOCAL)
547187e3838SYOSHIFUJI Hideaki 				return -EINVAL;
548187e3838SYOSHIFUJI Hideaki 
549187e3838SYOSHIFUJI Hideaki 			if (addr_type != IPV6_ADDR_ANY) {
550187e3838SYOSHIFUJI Hideaki 				int strict = __ipv6_addr_src_scope(addr_type) <= IPV6_ADDR_SCOPE_LINKLOCAL;
551bfeade08SDaniel Lezcano 				if (!ipv6_chk_addr(&init_net, &src_info->ipi6_addr,
552187e3838SYOSHIFUJI Hideaki 						   strict ? dev : NULL, 0))
5531da177e4SLinus Torvalds 					err = -EINVAL;
554187e3838SYOSHIFUJI Hideaki 				else
555187e3838SYOSHIFUJI Hideaki 					ipv6_addr_copy(&fl->fl6_src, &src_info->ipi6_addr);
5561da177e4SLinus Torvalds 			}
557187e3838SYOSHIFUJI Hideaki 
5581da177e4SLinus Torvalds 			if (dev)
5591da177e4SLinus Torvalds 				dev_put(dev);
5601da177e4SLinus Torvalds 
561187e3838SYOSHIFUJI Hideaki 			if (err)
562187e3838SYOSHIFUJI Hideaki 				goto exit_f;
563187e3838SYOSHIFUJI Hideaki 
5641da177e4SLinus Torvalds 			break;
565187e3838SYOSHIFUJI Hideaki 		    }
5661da177e4SLinus Torvalds 
5671da177e4SLinus Torvalds 		case IPV6_FLOWINFO:
5681da177e4SLinus Torvalds 			if (cmsg->cmsg_len < CMSG_LEN(4)) {
5691da177e4SLinus Torvalds 				err = -EINVAL;
5701da177e4SLinus Torvalds 				goto exit_f;
5711da177e4SLinus Torvalds 			}
5721da177e4SLinus Torvalds 
5731da177e4SLinus Torvalds 			if (fl->fl6_flowlabel&IPV6_FLOWINFO_MASK) {
57490bcaf7bSAl Viro 				if ((fl->fl6_flowlabel^*(__be32 *)CMSG_DATA(cmsg))&~IPV6_FLOWINFO_MASK) {
5751da177e4SLinus Torvalds 					err = -EINVAL;
5761da177e4SLinus Torvalds 					goto exit_f;
5771da177e4SLinus Torvalds 				}
5781da177e4SLinus Torvalds 			}
57990bcaf7bSAl Viro 			fl->fl6_flowlabel = IPV6_FLOWINFO_MASK & *(__be32 *)CMSG_DATA(cmsg);
5801da177e4SLinus Torvalds 			break;
5811da177e4SLinus Torvalds 
582333fad53SYOSHIFUJI Hideaki 		case IPV6_2292HOPOPTS:
5831da177e4SLinus Torvalds 		case IPV6_HOPOPTS:
5841da177e4SLinus Torvalds 			if (opt->hopopt || cmsg->cmsg_len < CMSG_LEN(sizeof(struct ipv6_opt_hdr))) {
5851da177e4SLinus Torvalds 				err = -EINVAL;
5861da177e4SLinus Torvalds 				goto exit_f;
5871da177e4SLinus Torvalds 			}
5881da177e4SLinus Torvalds 
5891da177e4SLinus Torvalds 			hdr = (struct ipv6_opt_hdr *)CMSG_DATA(cmsg);
5901da177e4SLinus Torvalds 			len = ((hdr->hdrlen + 1) << 3);
5911da177e4SLinus Torvalds 			if (cmsg->cmsg_len < CMSG_LEN(len)) {
5921da177e4SLinus Torvalds 				err = -EINVAL;
5931da177e4SLinus Torvalds 				goto exit_f;
5941da177e4SLinus Torvalds 			}
5951da177e4SLinus Torvalds 			if (!capable(CAP_NET_RAW)) {
5961da177e4SLinus Torvalds 				err = -EPERM;
5971da177e4SLinus Torvalds 				goto exit_f;
5981da177e4SLinus Torvalds 			}
5991da177e4SLinus Torvalds 			opt->opt_nflen += len;
6001da177e4SLinus Torvalds 			opt->hopopt = hdr;
6011da177e4SLinus Torvalds 			break;
6021da177e4SLinus Torvalds 
603333fad53SYOSHIFUJI Hideaki 		case IPV6_2292DSTOPTS:
6041da177e4SLinus Torvalds 			if (cmsg->cmsg_len < CMSG_LEN(sizeof(struct ipv6_opt_hdr))) {
6051da177e4SLinus Torvalds 				err = -EINVAL;
6061da177e4SLinus Torvalds 				goto exit_f;
6071da177e4SLinus Torvalds 			}
6081da177e4SLinus Torvalds 
6091da177e4SLinus Torvalds 			hdr = (struct ipv6_opt_hdr *)CMSG_DATA(cmsg);
6101da177e4SLinus Torvalds 			len = ((hdr->hdrlen + 1) << 3);
6111da177e4SLinus Torvalds 			if (cmsg->cmsg_len < CMSG_LEN(len)) {
6121da177e4SLinus Torvalds 				err = -EINVAL;
6131da177e4SLinus Torvalds 				goto exit_f;
6141da177e4SLinus Torvalds 			}
6151da177e4SLinus Torvalds 			if (!capable(CAP_NET_RAW)) {
6161da177e4SLinus Torvalds 				err = -EPERM;
6171da177e4SLinus Torvalds 				goto exit_f;
6181da177e4SLinus Torvalds 			}
6191da177e4SLinus Torvalds 			if (opt->dst1opt) {
6201da177e4SLinus Torvalds 				err = -EINVAL;
6211da177e4SLinus Torvalds 				goto exit_f;
6221da177e4SLinus Torvalds 			}
6231da177e4SLinus Torvalds 			opt->opt_flen += len;
6241da177e4SLinus Torvalds 			opt->dst1opt = hdr;
6251da177e4SLinus Torvalds 			break;
6261da177e4SLinus Torvalds 
627333fad53SYOSHIFUJI Hideaki 		case IPV6_DSTOPTS:
628333fad53SYOSHIFUJI Hideaki 		case IPV6_RTHDRDSTOPTS:
629333fad53SYOSHIFUJI Hideaki 			if (cmsg->cmsg_len < CMSG_LEN(sizeof(struct ipv6_opt_hdr))) {
630333fad53SYOSHIFUJI Hideaki 				err = -EINVAL;
631333fad53SYOSHIFUJI Hideaki 				goto exit_f;
632333fad53SYOSHIFUJI Hideaki 			}
633333fad53SYOSHIFUJI Hideaki 
634333fad53SYOSHIFUJI Hideaki 			hdr = (struct ipv6_opt_hdr *)CMSG_DATA(cmsg);
635333fad53SYOSHIFUJI Hideaki 			len = ((hdr->hdrlen + 1) << 3);
636333fad53SYOSHIFUJI Hideaki 			if (cmsg->cmsg_len < CMSG_LEN(len)) {
637333fad53SYOSHIFUJI Hideaki 				err = -EINVAL;
638333fad53SYOSHIFUJI Hideaki 				goto exit_f;
639333fad53SYOSHIFUJI Hideaki 			}
640333fad53SYOSHIFUJI Hideaki 			if (!capable(CAP_NET_RAW)) {
641333fad53SYOSHIFUJI Hideaki 				err = -EPERM;
642333fad53SYOSHIFUJI Hideaki 				goto exit_f;
643333fad53SYOSHIFUJI Hideaki 			}
644333fad53SYOSHIFUJI Hideaki 			if (cmsg->cmsg_type == IPV6_DSTOPTS) {
645333fad53SYOSHIFUJI Hideaki 				opt->opt_flen += len;
646333fad53SYOSHIFUJI Hideaki 				opt->dst1opt = hdr;
647333fad53SYOSHIFUJI Hideaki 			} else {
648333fad53SYOSHIFUJI Hideaki 				opt->opt_nflen += len;
649333fad53SYOSHIFUJI Hideaki 				opt->dst0opt = hdr;
650333fad53SYOSHIFUJI Hideaki 			}
651333fad53SYOSHIFUJI Hideaki 			break;
652333fad53SYOSHIFUJI Hideaki 
653333fad53SYOSHIFUJI Hideaki 		case IPV6_2292RTHDR:
6541da177e4SLinus Torvalds 		case IPV6_RTHDR:
6551da177e4SLinus Torvalds 			if (cmsg->cmsg_len < CMSG_LEN(sizeof(struct ipv6_rt_hdr))) {
6561da177e4SLinus Torvalds 				err = -EINVAL;
6571da177e4SLinus Torvalds 				goto exit_f;
6581da177e4SLinus Torvalds 			}
6591da177e4SLinus Torvalds 
6601da177e4SLinus Torvalds 			rthdr = (struct ipv6_rt_hdr *)CMSG_DATA(cmsg);
6611da177e4SLinus Torvalds 
662280a9d34SMasahide NAKAMURA 			switch (rthdr->type) {
66359fbb3a6SMasahide NAKAMURA #if defined(CONFIG_IPV6_MIP6) || defined(CONFIG_IPV6_MIP6_MODULE)
664280a9d34SMasahide NAKAMURA 			case IPV6_SRCRT_TYPE_2:
665280a9d34SMasahide NAKAMURA 				break;
666bb4dbf9eSYOSHIFUJI Hideaki #endif
667280a9d34SMasahide NAKAMURA 			default:
6681da177e4SLinus Torvalds 				err = -EINVAL;
6691da177e4SLinus Torvalds 				goto exit_f;
6701da177e4SLinus Torvalds 			}
6711da177e4SLinus Torvalds 
6721da177e4SLinus Torvalds 			len = ((rthdr->hdrlen + 1) << 3);
6731da177e4SLinus Torvalds 
6741da177e4SLinus Torvalds 			if (cmsg->cmsg_len < CMSG_LEN(len)) {
6751da177e4SLinus Torvalds 				err = -EINVAL;
6761da177e4SLinus Torvalds 				goto exit_f;
6771da177e4SLinus Torvalds 			}
6781da177e4SLinus Torvalds 
6791da177e4SLinus Torvalds 			/* segments left must also match */
6801da177e4SLinus Torvalds 			if ((rthdr->hdrlen >> 1) != rthdr->segments_left) {
6811da177e4SLinus Torvalds 				err = -EINVAL;
6821da177e4SLinus Torvalds 				goto exit_f;
6831da177e4SLinus Torvalds 			}
6841da177e4SLinus Torvalds 
6851da177e4SLinus Torvalds 			opt->opt_nflen += len;
6861da177e4SLinus Torvalds 			opt->srcrt = rthdr;
6871da177e4SLinus Torvalds 
688333fad53SYOSHIFUJI Hideaki 			if (cmsg->cmsg_type == IPV6_2292RTHDR && opt->dst1opt) {
6891da177e4SLinus Torvalds 				int dsthdrlen = ((opt->dst1opt->hdrlen+1)<<3);
6901da177e4SLinus Torvalds 
6911da177e4SLinus Torvalds 				opt->opt_nflen += dsthdrlen;
6921da177e4SLinus Torvalds 				opt->dst0opt = opt->dst1opt;
6931da177e4SLinus Torvalds 				opt->dst1opt = NULL;
6941da177e4SLinus Torvalds 				opt->opt_flen -= dsthdrlen;
6951da177e4SLinus Torvalds 			}
6961da177e4SLinus Torvalds 
6971da177e4SLinus Torvalds 			break;
6981da177e4SLinus Torvalds 
699333fad53SYOSHIFUJI Hideaki 		case IPV6_2292HOPLIMIT:
7001da177e4SLinus Torvalds 		case IPV6_HOPLIMIT:
7011da177e4SLinus Torvalds 			if (cmsg->cmsg_len != CMSG_LEN(sizeof(int))) {
7021da177e4SLinus Torvalds 				err = -EINVAL;
7031da177e4SLinus Torvalds 				goto exit_f;
7041da177e4SLinus Torvalds 			}
7051da177e4SLinus Torvalds 
7061da177e4SLinus Torvalds 			*hlimit = *(int *)CMSG_DATA(cmsg);
7071da177e4SLinus Torvalds 			break;
7081da177e4SLinus Torvalds 
70941a1f8eaSYOSHIFUJI Hideaki 		case IPV6_TCLASS:
71041a1f8eaSYOSHIFUJI Hideaki 		    {
71141a1f8eaSYOSHIFUJI Hideaki 			int tc;
71241a1f8eaSYOSHIFUJI Hideaki 
71341a1f8eaSYOSHIFUJI Hideaki 			err = -EINVAL;
71441a1f8eaSYOSHIFUJI Hideaki 			if (cmsg->cmsg_len != CMSG_LEN(sizeof(int))) {
71541a1f8eaSYOSHIFUJI Hideaki 				goto exit_f;
71641a1f8eaSYOSHIFUJI Hideaki 			}
71741a1f8eaSYOSHIFUJI Hideaki 
71841a1f8eaSYOSHIFUJI Hideaki 			tc = *(int *)CMSG_DATA(cmsg);
719d0ee011fSRemi Denis-Courmont 			if (tc < -1 || tc > 0xff)
72041a1f8eaSYOSHIFUJI Hideaki 				goto exit_f;
72141a1f8eaSYOSHIFUJI Hideaki 
72241a1f8eaSYOSHIFUJI Hideaki 			err = 0;
72341a1f8eaSYOSHIFUJI Hideaki 			*tclass = tc;
72441a1f8eaSYOSHIFUJI Hideaki 
72541a1f8eaSYOSHIFUJI Hideaki 			break;
72641a1f8eaSYOSHIFUJI Hideaki 		    }
7271da177e4SLinus Torvalds 		default:
72864ce2073SPatrick McHardy 			LIMIT_NETDEBUG(KERN_DEBUG "invalid cmsg type: %d\n",
72964ce2073SPatrick McHardy 				       cmsg->cmsg_type);
7301da177e4SLinus Torvalds 			err = -EINVAL;
7311da177e4SLinus Torvalds 			break;
7323ff50b79SStephen Hemminger 		}
7331da177e4SLinus Torvalds 	}
7341da177e4SLinus Torvalds 
7351da177e4SLinus Torvalds exit_f:
7361da177e4SLinus Torvalds 	return err;
7371da177e4SLinus Torvalds }
738