11da177e4SLinus Torvalds /* 21da177e4SLinus Torvalds * IPv6 BSD socket options interface 31da177e4SLinus Torvalds * Linux INET6 implementation 41da177e4SLinus Torvalds * 51da177e4SLinus Torvalds * Authors: 61da177e4SLinus Torvalds * Pedro Roque <roque@di.fc.ul.pt> 71da177e4SLinus Torvalds * 81da177e4SLinus Torvalds * Based on linux/net/ipv4/ip_sockglue.c 91da177e4SLinus Torvalds * 101da177e4SLinus Torvalds * $Id: ipv6_sockglue.c,v 1.41 2002/02/01 22:01:04 davem Exp $ 111da177e4SLinus Torvalds * 121da177e4SLinus Torvalds * This program is free software; you can redistribute it and/or 131da177e4SLinus Torvalds * modify it under the terms of the GNU General Public License 141da177e4SLinus Torvalds * as published by the Free Software Foundation; either version 151da177e4SLinus Torvalds * 2 of the License, or (at your option) any later version. 161da177e4SLinus Torvalds * 171da177e4SLinus Torvalds * FIXME: Make the setsockopt code POSIX compliant: That is 181da177e4SLinus Torvalds * 191da177e4SLinus Torvalds * o Return -EINVAL for setsockopt of short lengths 201da177e4SLinus Torvalds * o Truncate getsockopt returns 211da177e4SLinus Torvalds * o Return an optlen of the truncated length if need be 221da177e4SLinus Torvalds * 231da177e4SLinus Torvalds * Changes: 241da177e4SLinus Torvalds * David L Stevens <dlstevens@us.ibm.com>: 251da177e4SLinus Torvalds * - added multicast source filtering API for MLDv2 261da177e4SLinus Torvalds */ 271da177e4SLinus Torvalds 281da177e4SLinus Torvalds #include <linux/module.h> 294fc268d2SRandy Dunlap #include <linux/capability.h> 301da177e4SLinus Torvalds #include <linux/errno.h> 311da177e4SLinus Torvalds #include <linux/types.h> 321da177e4SLinus Torvalds #include <linux/socket.h> 331da177e4SLinus Torvalds #include <linux/sockios.h> 341da177e4SLinus Torvalds #include <linux/sched.h> 351da177e4SLinus Torvalds #include <linux/net.h> 361da177e4SLinus Torvalds #include <linux/in6.h> 371da177e4SLinus Torvalds #include <linux/netdevice.h> 381da177e4SLinus Torvalds #include <linux/if_arp.h> 391da177e4SLinus Torvalds #include <linux/init.h> 401da177e4SLinus Torvalds #include <linux/sysctl.h> 411da177e4SLinus Torvalds #include <linux/netfilter.h> 421da177e4SLinus Torvalds 431da177e4SLinus Torvalds #include <net/sock.h> 441da177e4SLinus Torvalds #include <net/snmp.h> 451da177e4SLinus Torvalds #include <net/ipv6.h> 461da177e4SLinus Torvalds #include <net/ndisc.h> 471da177e4SLinus Torvalds #include <net/protocol.h> 481da177e4SLinus Torvalds #include <net/transp_v6.h> 491da177e4SLinus Torvalds #include <net/ip6_route.h> 501da177e4SLinus Torvalds #include <net/addrconf.h> 511da177e4SLinus Torvalds #include <net/inet_common.h> 521da177e4SLinus Torvalds #include <net/tcp.h> 531da177e4SLinus Torvalds #include <net/udp.h> 541da177e4SLinus Torvalds #include <net/xfrm.h> 551da177e4SLinus Torvalds 561da177e4SLinus Torvalds #include <asm/uaccess.h> 571da177e4SLinus Torvalds 58ba89966cSEric Dumazet DEFINE_SNMP_STAT(struct ipstats_mib, ipv6_statistics) __read_mostly; 591da177e4SLinus Torvalds 60a430a43dSHerbert Xu static struct inet6_protocol *ipv6_gso_pull_exthdrs(struct sk_buff *skb, 61a430a43dSHerbert Xu int proto) 62a430a43dSHerbert Xu { 63a430a43dSHerbert Xu struct inet6_protocol *ops = NULL; 64a430a43dSHerbert Xu 65a430a43dSHerbert Xu for (;;) { 66a430a43dSHerbert Xu struct ipv6_opt_hdr *opth; 67a430a43dSHerbert Xu int len; 68a430a43dSHerbert Xu 69a430a43dSHerbert Xu if (proto != NEXTHDR_HOP) { 70a430a43dSHerbert Xu ops = rcu_dereference(inet6_protos[proto]); 71a430a43dSHerbert Xu 72a430a43dSHerbert Xu if (unlikely(!ops)) 73a430a43dSHerbert Xu break; 74a430a43dSHerbert Xu 75a430a43dSHerbert Xu if (!(ops->flags & INET6_PROTO_GSO_EXTHDR)) 76a430a43dSHerbert Xu break; 77a430a43dSHerbert Xu } 78a430a43dSHerbert Xu 79a430a43dSHerbert Xu if (unlikely(!pskb_may_pull(skb, 8))) 80a430a43dSHerbert Xu break; 81a430a43dSHerbert Xu 82a430a43dSHerbert Xu opth = (void *)skb->data; 83a430a43dSHerbert Xu len = opth->hdrlen * 8 + 8; 84a430a43dSHerbert Xu 85a430a43dSHerbert Xu if (unlikely(!pskb_may_pull(skb, len))) 86a430a43dSHerbert Xu break; 87a430a43dSHerbert Xu 88a430a43dSHerbert Xu proto = opth->nexthdr; 89a430a43dSHerbert Xu __skb_pull(skb, len); 90a430a43dSHerbert Xu } 91a430a43dSHerbert Xu 92a430a43dSHerbert Xu return ops; 93a430a43dSHerbert Xu } 94a430a43dSHerbert Xu 95a430a43dSHerbert Xu static int ipv6_gso_send_check(struct sk_buff *skb) 96a430a43dSHerbert Xu { 97a430a43dSHerbert Xu struct ipv6hdr *ipv6h; 98a430a43dSHerbert Xu struct inet6_protocol *ops; 99a430a43dSHerbert Xu int err = -EINVAL; 100a430a43dSHerbert Xu 101a430a43dSHerbert Xu if (unlikely(!pskb_may_pull(skb, sizeof(*ipv6h)))) 102a430a43dSHerbert Xu goto out; 103a430a43dSHerbert Xu 104a430a43dSHerbert Xu ipv6h = skb->nh.ipv6h; 105a430a43dSHerbert Xu __skb_pull(skb, sizeof(*ipv6h)); 106a430a43dSHerbert Xu err = -EPROTONOSUPPORT; 107a430a43dSHerbert Xu 108a430a43dSHerbert Xu rcu_read_lock(); 109a430a43dSHerbert Xu ops = ipv6_gso_pull_exthdrs(skb, ipv6h->nexthdr); 110a430a43dSHerbert Xu if (likely(ops && ops->gso_send_check)) { 111a430a43dSHerbert Xu skb->h.raw = skb->data; 112a430a43dSHerbert Xu err = ops->gso_send_check(skb); 113a430a43dSHerbert Xu } 114a430a43dSHerbert Xu rcu_read_unlock(); 115a430a43dSHerbert Xu 116a430a43dSHerbert Xu out: 117a430a43dSHerbert Xu return err; 118a430a43dSHerbert Xu } 119a430a43dSHerbert Xu 120adcfc7d0SHerbert Xu static struct sk_buff *ipv6_gso_segment(struct sk_buff *skb, int features) 121adcfc7d0SHerbert Xu { 122adcfc7d0SHerbert Xu struct sk_buff *segs = ERR_PTR(-EINVAL); 123adcfc7d0SHerbert Xu struct ipv6hdr *ipv6h; 124adcfc7d0SHerbert Xu struct inet6_protocol *ops; 125adcfc7d0SHerbert Xu 1261a9e9ef6SHerbert Xu if (!(features & NETIF_F_HW_CSUM)) 1271a9e9ef6SHerbert Xu features &= ~NETIF_F_SG; 1281a9e9ef6SHerbert Xu 129bbcf467dSHerbert Xu if (unlikely(skb_shinfo(skb)->gso_type & 130bbcf467dSHerbert Xu ~(SKB_GSO_UDP | 131bbcf467dSHerbert Xu SKB_GSO_DODGY | 132bbcf467dSHerbert Xu SKB_GSO_TCP_ECN | 133bbcf467dSHerbert Xu SKB_GSO_TCPV6 | 134bbcf467dSHerbert Xu 0))) 135bbcf467dSHerbert Xu goto out; 136bbcf467dSHerbert Xu 137adcfc7d0SHerbert Xu if (unlikely(!pskb_may_pull(skb, sizeof(*ipv6h)))) 138adcfc7d0SHerbert Xu goto out; 139adcfc7d0SHerbert Xu 140adcfc7d0SHerbert Xu ipv6h = skb->nh.ipv6h; 141adcfc7d0SHerbert Xu __skb_pull(skb, sizeof(*ipv6h)); 142a430a43dSHerbert Xu segs = ERR_PTR(-EPROTONOSUPPORT); 143adcfc7d0SHerbert Xu 144adcfc7d0SHerbert Xu rcu_read_lock(); 145a430a43dSHerbert Xu ops = ipv6_gso_pull_exthdrs(skb, ipv6h->nexthdr); 146a430a43dSHerbert Xu if (likely(ops && ops->gso_segment)) { 147adcfc7d0SHerbert Xu skb->h.raw = skb->data; 148adcfc7d0SHerbert Xu segs = ops->gso_segment(skb, features); 149a430a43dSHerbert Xu } 150adcfc7d0SHerbert Xu rcu_read_unlock(); 151adcfc7d0SHerbert Xu 152adcfc7d0SHerbert Xu if (unlikely(IS_ERR(segs))) 153adcfc7d0SHerbert Xu goto out; 154adcfc7d0SHerbert Xu 155adcfc7d0SHerbert Xu for (skb = segs; skb; skb = skb->next) { 156adcfc7d0SHerbert Xu ipv6h = skb->nh.ipv6h; 1576703931cSMichael Chan ipv6h->payload_len = htons(skb->len - skb->mac_len - 1586703931cSMichael Chan sizeof(*ipv6h)); 159adcfc7d0SHerbert Xu } 160adcfc7d0SHerbert Xu 161adcfc7d0SHerbert Xu out: 162adcfc7d0SHerbert Xu return segs; 163adcfc7d0SHerbert Xu } 164adcfc7d0SHerbert Xu 1651da177e4SLinus Torvalds static struct packet_type ipv6_packet_type = { 1661da177e4SLinus Torvalds .type = __constant_htons(ETH_P_IPV6), 1671da177e4SLinus Torvalds .func = ipv6_rcv, 168a430a43dSHerbert Xu .gso_send_check = ipv6_gso_send_check, 169adcfc7d0SHerbert Xu .gso_segment = ipv6_gso_segment, 1701da177e4SLinus Torvalds }; 1711da177e4SLinus Torvalds 1721da177e4SLinus Torvalds struct ip6_ra_chain *ip6_ra_chain; 1731da177e4SLinus Torvalds DEFINE_RWLOCK(ip6_ra_lock); 1741da177e4SLinus Torvalds 1751da177e4SLinus Torvalds int ip6_ra_control(struct sock *sk, int sel, void (*destructor)(struct sock *)) 1761da177e4SLinus Torvalds { 1771da177e4SLinus Torvalds struct ip6_ra_chain *ra, *new_ra, **rap; 1781da177e4SLinus Torvalds 1791da177e4SLinus Torvalds /* RA packet may be delivered ONLY to IPPROTO_RAW socket */ 1801da177e4SLinus Torvalds if (sk->sk_type != SOCK_RAW || inet_sk(sk)->num != IPPROTO_RAW) 1811da177e4SLinus Torvalds return -EINVAL; 1821da177e4SLinus Torvalds 1831da177e4SLinus Torvalds new_ra = (sel>=0) ? kmalloc(sizeof(*new_ra), GFP_KERNEL) : NULL; 1841da177e4SLinus Torvalds 1851da177e4SLinus Torvalds write_lock_bh(&ip6_ra_lock); 1861da177e4SLinus Torvalds for (rap = &ip6_ra_chain; (ra=*rap) != NULL; rap = &ra->next) { 1871da177e4SLinus Torvalds if (ra->sk == sk) { 1881da177e4SLinus Torvalds if (sel>=0) { 1891da177e4SLinus Torvalds write_unlock_bh(&ip6_ra_lock); 1901da177e4SLinus Torvalds kfree(new_ra); 1911da177e4SLinus Torvalds return -EADDRINUSE; 1921da177e4SLinus Torvalds } 1931da177e4SLinus Torvalds 1941da177e4SLinus Torvalds *rap = ra->next; 1951da177e4SLinus Torvalds write_unlock_bh(&ip6_ra_lock); 1961da177e4SLinus Torvalds 1971da177e4SLinus Torvalds if (ra->destructor) 1981da177e4SLinus Torvalds ra->destructor(sk); 1991da177e4SLinus Torvalds sock_put(sk); 2001da177e4SLinus Torvalds kfree(ra); 2011da177e4SLinus Torvalds return 0; 2021da177e4SLinus Torvalds } 2031da177e4SLinus Torvalds } 2041da177e4SLinus Torvalds if (new_ra == NULL) { 2051da177e4SLinus Torvalds write_unlock_bh(&ip6_ra_lock); 2061da177e4SLinus Torvalds return -ENOBUFS; 2071da177e4SLinus Torvalds } 2081da177e4SLinus Torvalds new_ra->sk = sk; 2091da177e4SLinus Torvalds new_ra->sel = sel; 2101da177e4SLinus Torvalds new_ra->destructor = destructor; 2111da177e4SLinus Torvalds new_ra->next = ra; 2121da177e4SLinus Torvalds *rap = new_ra; 2131da177e4SLinus Torvalds sock_hold(sk); 2141da177e4SLinus Torvalds write_unlock_bh(&ip6_ra_lock); 2151da177e4SLinus Torvalds return 0; 2161da177e4SLinus Torvalds } 2171da177e4SLinus Torvalds 2183fdadf7dSDmitry Mishin static int do_ipv6_setsockopt(struct sock *sk, int level, int optname, 2191da177e4SLinus Torvalds char __user *optval, int optlen) 2201da177e4SLinus Torvalds { 2211da177e4SLinus Torvalds struct ipv6_pinfo *np = inet6_sk(sk); 2221da177e4SLinus Torvalds int val, valbool; 2231da177e4SLinus Torvalds int retv = -ENOPROTOOPT; 2241da177e4SLinus Torvalds 2251da177e4SLinus Torvalds if (optval == NULL) 2261da177e4SLinus Torvalds val=0; 2271da177e4SLinus Torvalds else if (get_user(val, (int __user *) optval)) 2281da177e4SLinus Torvalds return -EFAULT; 2291da177e4SLinus Torvalds 2301da177e4SLinus Torvalds valbool = (val!=0); 2311da177e4SLinus Torvalds 2321da177e4SLinus Torvalds lock_sock(sk); 2331da177e4SLinus Torvalds 2341da177e4SLinus Torvalds switch (optname) { 2351da177e4SLinus Torvalds 2361da177e4SLinus Torvalds case IPV6_ADDRFORM: 2371da177e4SLinus Torvalds if (val == PF_INET) { 2381da177e4SLinus Torvalds struct ipv6_txoptions *opt; 2391da177e4SLinus Torvalds struct sk_buff *pktopt; 2401da177e4SLinus Torvalds 2411da177e4SLinus Torvalds if (sk->sk_protocol != IPPROTO_UDP && 2421da177e4SLinus Torvalds sk->sk_protocol != IPPROTO_TCP) 2431da177e4SLinus Torvalds break; 2441da177e4SLinus Torvalds 2451da177e4SLinus Torvalds if (sk->sk_state != TCP_ESTABLISHED) { 2461da177e4SLinus Torvalds retv = -ENOTCONN; 2471da177e4SLinus Torvalds break; 2481da177e4SLinus Torvalds } 2491da177e4SLinus Torvalds 2501da177e4SLinus Torvalds if (ipv6_only_sock(sk) || 2511da177e4SLinus Torvalds !(ipv6_addr_type(&np->daddr) & IPV6_ADDR_MAPPED)) { 2521da177e4SLinus Torvalds retv = -EADDRNOTAVAIL; 2531da177e4SLinus Torvalds break; 2541da177e4SLinus Torvalds } 2551da177e4SLinus Torvalds 2561da177e4SLinus Torvalds fl6_free_socklist(sk); 2571da177e4SLinus Torvalds ipv6_sock_mc_close(sk); 2581da177e4SLinus Torvalds 259e6848976SArnaldo Carvalho de Melo /* 260e6848976SArnaldo Carvalho de Melo * Sock is moving from IPv6 to IPv4 (sk_prot), so 261e6848976SArnaldo Carvalho de Melo * remove it from the refcnt debug socks count in the 262e6848976SArnaldo Carvalho de Melo * original family... 263e6848976SArnaldo Carvalho de Melo */ 264e6848976SArnaldo Carvalho de Melo sk_refcnt_debug_dec(sk); 265e6848976SArnaldo Carvalho de Melo 2661da177e4SLinus Torvalds if (sk->sk_protocol == IPPROTO_TCP) { 267d83d8461SArnaldo Carvalho de Melo struct inet_connection_sock *icsk = inet_csk(sk); 2681da177e4SLinus Torvalds 2691da177e4SLinus Torvalds local_bh_disable(); 2701da177e4SLinus Torvalds sock_prot_dec_use(sk->sk_prot); 2711da177e4SLinus Torvalds sock_prot_inc_use(&tcp_prot); 2721da177e4SLinus Torvalds local_bh_enable(); 2731da177e4SLinus Torvalds sk->sk_prot = &tcp_prot; 274d83d8461SArnaldo Carvalho de Melo icsk->icsk_af_ops = &ipv4_specific; 2751da177e4SLinus Torvalds sk->sk_socket->ops = &inet_stream_ops; 2761da177e4SLinus Torvalds sk->sk_family = PF_INET; 277d83d8461SArnaldo Carvalho de Melo tcp_sync_mss(sk, icsk->icsk_pmtu_cookie); 2781da177e4SLinus Torvalds } else { 2791da177e4SLinus Torvalds local_bh_disable(); 2801da177e4SLinus Torvalds sock_prot_dec_use(sk->sk_prot); 2811da177e4SLinus Torvalds sock_prot_inc_use(&udp_prot); 2821da177e4SLinus Torvalds local_bh_enable(); 2831da177e4SLinus Torvalds sk->sk_prot = &udp_prot; 2841da177e4SLinus Torvalds sk->sk_socket->ops = &inet_dgram_ops; 2851da177e4SLinus Torvalds sk->sk_family = PF_INET; 2861da177e4SLinus Torvalds } 2871da177e4SLinus Torvalds opt = xchg(&np->opt, NULL); 2881da177e4SLinus Torvalds if (opt) 2891da177e4SLinus Torvalds sock_kfree_s(sk, opt, opt->tot_len); 2901da177e4SLinus Torvalds pktopt = xchg(&np->pktoptions, NULL); 2911da177e4SLinus Torvalds if (pktopt) 2921da177e4SLinus Torvalds kfree_skb(pktopt); 2931da177e4SLinus Torvalds 2941da177e4SLinus Torvalds sk->sk_destruct = inet_sock_destruct; 295e6848976SArnaldo Carvalho de Melo /* 296e6848976SArnaldo Carvalho de Melo * ... and add it to the refcnt debug socks count 297e6848976SArnaldo Carvalho de Melo * in the new family. -acme 298e6848976SArnaldo Carvalho de Melo */ 299e6848976SArnaldo Carvalho de Melo sk_refcnt_debug_inc(sk); 3001da177e4SLinus Torvalds module_put(THIS_MODULE); 3011da177e4SLinus Torvalds retv = 0; 3021da177e4SLinus Torvalds break; 3031da177e4SLinus Torvalds } 3041da177e4SLinus Torvalds goto e_inval; 3051da177e4SLinus Torvalds 3061da177e4SLinus Torvalds case IPV6_V6ONLY: 3071da177e4SLinus Torvalds if (inet_sk(sk)->num) 3081da177e4SLinus Torvalds goto e_inval; 3091da177e4SLinus Torvalds np->ipv6only = valbool; 3101da177e4SLinus Torvalds retv = 0; 3111da177e4SLinus Torvalds break; 3121da177e4SLinus Torvalds 313333fad53SYOSHIFUJI Hideaki case IPV6_RECVPKTINFO: 3141da177e4SLinus Torvalds np->rxopt.bits.rxinfo = valbool; 3151da177e4SLinus Torvalds retv = 0; 3161da177e4SLinus Torvalds break; 3171da177e4SLinus Torvalds 318333fad53SYOSHIFUJI Hideaki case IPV6_2292PKTINFO: 319333fad53SYOSHIFUJI Hideaki np->rxopt.bits.rxoinfo = valbool; 320333fad53SYOSHIFUJI Hideaki retv = 0; 321333fad53SYOSHIFUJI Hideaki break; 322333fad53SYOSHIFUJI Hideaki 323333fad53SYOSHIFUJI Hideaki case IPV6_RECVHOPLIMIT: 3241da177e4SLinus Torvalds np->rxopt.bits.rxhlim = valbool; 3251da177e4SLinus Torvalds retv = 0; 3261da177e4SLinus Torvalds break; 3271da177e4SLinus Torvalds 328333fad53SYOSHIFUJI Hideaki case IPV6_2292HOPLIMIT: 329333fad53SYOSHIFUJI Hideaki np->rxopt.bits.rxohlim = valbool; 330333fad53SYOSHIFUJI Hideaki retv = 0; 331333fad53SYOSHIFUJI Hideaki break; 332333fad53SYOSHIFUJI Hideaki 333333fad53SYOSHIFUJI Hideaki case IPV6_RECVRTHDR: 3341da177e4SLinus Torvalds if (val < 0 || val > 2) 3351da177e4SLinus Torvalds goto e_inval; 3361da177e4SLinus Torvalds np->rxopt.bits.srcrt = val; 3371da177e4SLinus Torvalds retv = 0; 3381da177e4SLinus Torvalds break; 3391da177e4SLinus Torvalds 340333fad53SYOSHIFUJI Hideaki case IPV6_2292RTHDR: 341333fad53SYOSHIFUJI Hideaki if (val < 0 || val > 2) 342333fad53SYOSHIFUJI Hideaki goto e_inval; 343333fad53SYOSHIFUJI Hideaki np->rxopt.bits.osrcrt = val; 344333fad53SYOSHIFUJI Hideaki retv = 0; 345333fad53SYOSHIFUJI Hideaki break; 346333fad53SYOSHIFUJI Hideaki 347333fad53SYOSHIFUJI Hideaki case IPV6_RECVHOPOPTS: 3481da177e4SLinus Torvalds np->rxopt.bits.hopopts = valbool; 3491da177e4SLinus Torvalds retv = 0; 3501da177e4SLinus Torvalds break; 3511da177e4SLinus Torvalds 352333fad53SYOSHIFUJI Hideaki case IPV6_2292HOPOPTS: 353333fad53SYOSHIFUJI Hideaki np->rxopt.bits.ohopopts = valbool; 354333fad53SYOSHIFUJI Hideaki retv = 0; 355333fad53SYOSHIFUJI Hideaki break; 356333fad53SYOSHIFUJI Hideaki 357333fad53SYOSHIFUJI Hideaki case IPV6_RECVDSTOPTS: 3581da177e4SLinus Torvalds np->rxopt.bits.dstopts = valbool; 3591da177e4SLinus Torvalds retv = 0; 3601da177e4SLinus Torvalds break; 3611da177e4SLinus Torvalds 362333fad53SYOSHIFUJI Hideaki case IPV6_2292DSTOPTS: 363333fad53SYOSHIFUJI Hideaki np->rxopt.bits.odstopts = valbool; 364333fad53SYOSHIFUJI Hideaki retv = 0; 365333fad53SYOSHIFUJI Hideaki break; 366333fad53SYOSHIFUJI Hideaki 36741a1f8eaSYOSHIFUJI Hideaki case IPV6_TCLASS: 368d0ee011fSRemi Denis-Courmont if (val < -1 || val > 0xff) 36941a1f8eaSYOSHIFUJI Hideaki goto e_inval; 37041a1f8eaSYOSHIFUJI Hideaki np->tclass = val; 37141a1f8eaSYOSHIFUJI Hideaki retv = 0; 37241a1f8eaSYOSHIFUJI Hideaki break; 37341a1f8eaSYOSHIFUJI Hideaki 37441a1f8eaSYOSHIFUJI Hideaki case IPV6_RECVTCLASS: 37541a1f8eaSYOSHIFUJI Hideaki np->rxopt.bits.rxtclass = valbool; 37641a1f8eaSYOSHIFUJI Hideaki retv = 0; 37741a1f8eaSYOSHIFUJI Hideaki break; 37841a1f8eaSYOSHIFUJI Hideaki 3791da177e4SLinus Torvalds case IPV6_FLOWINFO: 3801da177e4SLinus Torvalds np->rxopt.bits.rxflow = valbool; 3811da177e4SLinus Torvalds retv = 0; 3821da177e4SLinus Torvalds break; 3831da177e4SLinus Torvalds 384333fad53SYOSHIFUJI Hideaki case IPV6_HOPOPTS: 385333fad53SYOSHIFUJI Hideaki case IPV6_RTHDRDSTOPTS: 386333fad53SYOSHIFUJI Hideaki case IPV6_RTHDR: 387333fad53SYOSHIFUJI Hideaki case IPV6_DSTOPTS: 388333fad53SYOSHIFUJI Hideaki { 389333fad53SYOSHIFUJI Hideaki struct ipv6_txoptions *opt; 390333fad53SYOSHIFUJI Hideaki if (optlen == 0) 391cb422c46SLuiz Capitulino optval = NULL; 392333fad53SYOSHIFUJI Hideaki 393333fad53SYOSHIFUJI Hideaki /* hop-by-hop / destination options are privileged option */ 394333fad53SYOSHIFUJI Hideaki retv = -EPERM; 395333fad53SYOSHIFUJI Hideaki if (optname != IPV6_RTHDR && !capable(CAP_NET_RAW)) 396333fad53SYOSHIFUJI Hideaki break; 397333fad53SYOSHIFUJI Hideaki 398333fad53SYOSHIFUJI Hideaki retv = -EINVAL; 399333fad53SYOSHIFUJI Hideaki if (optlen & 0x7 || optlen > 8 * 255) 400333fad53SYOSHIFUJI Hideaki break; 401333fad53SYOSHIFUJI Hideaki 402333fad53SYOSHIFUJI Hideaki opt = ipv6_renew_options(sk, np->opt, optname, 403333fad53SYOSHIFUJI Hideaki (struct ipv6_opt_hdr __user *)optval, 404333fad53SYOSHIFUJI Hideaki optlen); 405333fad53SYOSHIFUJI Hideaki if (IS_ERR(opt)) { 406333fad53SYOSHIFUJI Hideaki retv = PTR_ERR(opt); 407333fad53SYOSHIFUJI Hideaki break; 408333fad53SYOSHIFUJI Hideaki } 409333fad53SYOSHIFUJI Hideaki 410333fad53SYOSHIFUJI Hideaki /* routing header option needs extra check */ 411333fad53SYOSHIFUJI Hideaki if (optname == IPV6_RTHDR && opt->srcrt) { 412333fad53SYOSHIFUJI Hideaki struct ipv6_rt_hdr *rthdr = opt->srcrt; 413280a9d34SMasahide NAKAMURA switch (rthdr->type) { 414280a9d34SMasahide NAKAMURA case IPV6_SRCRT_TYPE_0: 415280a9d34SMasahide NAKAMURA #ifdef CONFIG_IPV6_MIP6 416280a9d34SMasahide NAKAMURA case IPV6_SRCRT_TYPE_2: 417280a9d34SMasahide NAKAMURA #endif 418280a9d34SMasahide NAKAMURA break; 419280a9d34SMasahide NAKAMURA default: 420333fad53SYOSHIFUJI Hideaki goto sticky_done; 421280a9d34SMasahide NAKAMURA } 422280a9d34SMasahide NAKAMURA 423333fad53SYOSHIFUJI Hideaki if ((rthdr->hdrlen & 1) || 424333fad53SYOSHIFUJI Hideaki (rthdr->hdrlen >> 1) != rthdr->segments_left) 425333fad53SYOSHIFUJI Hideaki goto sticky_done; 426333fad53SYOSHIFUJI Hideaki } 427333fad53SYOSHIFUJI Hideaki 428333fad53SYOSHIFUJI Hideaki retv = 0; 429d83d8461SArnaldo Carvalho de Melo if (inet_sk(sk)->is_icsk) { 430333fad53SYOSHIFUJI Hideaki if (opt) { 431d83d8461SArnaldo Carvalho de Melo struct inet_connection_sock *icsk = inet_csk(sk); 432333fad53SYOSHIFUJI Hideaki if (!((1 << sk->sk_state) & 433333fad53SYOSHIFUJI Hideaki (TCPF_LISTEN | TCPF_CLOSE)) 434333fad53SYOSHIFUJI Hideaki && inet_sk(sk)->daddr != LOOPBACK4_IPV6) { 435d83d8461SArnaldo Carvalho de Melo icsk->icsk_ext_hdr_len = 436d83d8461SArnaldo Carvalho de Melo opt->opt_flen + opt->opt_nflen; 437d83d8461SArnaldo Carvalho de Melo icsk->icsk_sync_mss(sk, icsk->icsk_pmtu_cookie); 438333fad53SYOSHIFUJI Hideaki } 439333fad53SYOSHIFUJI Hideaki } 440333fad53SYOSHIFUJI Hideaki opt = xchg(&np->opt, opt); 441333fad53SYOSHIFUJI Hideaki sk_dst_reset(sk); 442333fad53SYOSHIFUJI Hideaki } else { 443333fad53SYOSHIFUJI Hideaki write_lock(&sk->sk_dst_lock); 444333fad53SYOSHIFUJI Hideaki opt = xchg(&np->opt, opt); 445333fad53SYOSHIFUJI Hideaki write_unlock(&sk->sk_dst_lock); 446333fad53SYOSHIFUJI Hideaki sk_dst_reset(sk); 447333fad53SYOSHIFUJI Hideaki } 448333fad53SYOSHIFUJI Hideaki sticky_done: 449333fad53SYOSHIFUJI Hideaki if (opt) 450333fad53SYOSHIFUJI Hideaki sock_kfree_s(sk, opt, opt->tot_len); 451333fad53SYOSHIFUJI Hideaki break; 452333fad53SYOSHIFUJI Hideaki } 453333fad53SYOSHIFUJI Hideaki 454333fad53SYOSHIFUJI Hideaki case IPV6_2292PKTOPTIONS: 4551da177e4SLinus Torvalds { 4561da177e4SLinus Torvalds struct ipv6_txoptions *opt = NULL; 4571da177e4SLinus Torvalds struct msghdr msg; 4581da177e4SLinus Torvalds struct flowi fl; 4591da177e4SLinus Torvalds int junk; 4601da177e4SLinus Torvalds 4611da177e4SLinus Torvalds fl.fl6_flowlabel = 0; 4621da177e4SLinus Torvalds fl.oif = sk->sk_bound_dev_if; 4631da177e4SLinus Torvalds 4641da177e4SLinus Torvalds if (optlen == 0) 4651da177e4SLinus Torvalds goto update; 4661da177e4SLinus Torvalds 4671da177e4SLinus Torvalds /* 1K is probably excessive 4681da177e4SLinus Torvalds * 1K is surely not enough, 2K per standard header is 16K. 4691da177e4SLinus Torvalds */ 4701da177e4SLinus Torvalds retv = -EINVAL; 4711da177e4SLinus Torvalds if (optlen > 64*1024) 4721da177e4SLinus Torvalds break; 4731da177e4SLinus Torvalds 4741da177e4SLinus Torvalds opt = sock_kmalloc(sk, sizeof(*opt) + optlen, GFP_KERNEL); 4751da177e4SLinus Torvalds retv = -ENOBUFS; 4761da177e4SLinus Torvalds if (opt == NULL) 4771da177e4SLinus Torvalds break; 4781da177e4SLinus Torvalds 4791da177e4SLinus Torvalds memset(opt, 0, sizeof(*opt)); 4801da177e4SLinus Torvalds opt->tot_len = sizeof(*opt) + optlen; 4811da177e4SLinus Torvalds retv = -EFAULT; 4821da177e4SLinus Torvalds if (copy_from_user(opt+1, optval, optlen)) 4831da177e4SLinus Torvalds goto done; 4841da177e4SLinus Torvalds 4851da177e4SLinus Torvalds msg.msg_controllen = optlen; 4861da177e4SLinus Torvalds msg.msg_control = (void*)(opt+1); 4871da177e4SLinus Torvalds 48841a1f8eaSYOSHIFUJI Hideaki retv = datagram_send_ctl(&msg, &fl, opt, &junk, &junk); 4891da177e4SLinus Torvalds if (retv) 4901da177e4SLinus Torvalds goto done; 4911da177e4SLinus Torvalds update: 4921da177e4SLinus Torvalds retv = 0; 493d83d8461SArnaldo Carvalho de Melo if (inet_sk(sk)->is_icsk) { 4941da177e4SLinus Torvalds if (opt) { 495d83d8461SArnaldo Carvalho de Melo struct inet_connection_sock *icsk = inet_csk(sk); 4961da177e4SLinus Torvalds if (!((1 << sk->sk_state) & 4971da177e4SLinus Torvalds (TCPF_LISTEN | TCPF_CLOSE)) 4981da177e4SLinus Torvalds && inet_sk(sk)->daddr != LOOPBACK4_IPV6) { 499d83d8461SArnaldo Carvalho de Melo icsk->icsk_ext_hdr_len = 500d83d8461SArnaldo Carvalho de Melo opt->opt_flen + opt->opt_nflen; 501d83d8461SArnaldo Carvalho de Melo icsk->icsk_sync_mss(sk, icsk->icsk_pmtu_cookie); 5021da177e4SLinus Torvalds } 5031da177e4SLinus Torvalds } 5041da177e4SLinus Torvalds opt = xchg(&np->opt, opt); 5051da177e4SLinus Torvalds sk_dst_reset(sk); 5061da177e4SLinus Torvalds } else { 5071da177e4SLinus Torvalds write_lock(&sk->sk_dst_lock); 5081da177e4SLinus Torvalds opt = xchg(&np->opt, opt); 5091da177e4SLinus Torvalds write_unlock(&sk->sk_dst_lock); 5101da177e4SLinus Torvalds sk_dst_reset(sk); 5111da177e4SLinus Torvalds } 5121da177e4SLinus Torvalds 5131da177e4SLinus Torvalds done: 5141da177e4SLinus Torvalds if (opt) 5151da177e4SLinus Torvalds sock_kfree_s(sk, opt, opt->tot_len); 5161da177e4SLinus Torvalds break; 5171da177e4SLinus Torvalds } 5181da177e4SLinus Torvalds case IPV6_UNICAST_HOPS: 5191da177e4SLinus Torvalds if (val > 255 || val < -1) 5201da177e4SLinus Torvalds goto e_inval; 5211da177e4SLinus Torvalds np->hop_limit = val; 5221da177e4SLinus Torvalds retv = 0; 5231da177e4SLinus Torvalds break; 5241da177e4SLinus Torvalds 5251da177e4SLinus Torvalds case IPV6_MULTICAST_HOPS: 5261da177e4SLinus Torvalds if (sk->sk_type == SOCK_STREAM) 5271da177e4SLinus Torvalds goto e_inval; 5281da177e4SLinus Torvalds if (val > 255 || val < -1) 5291da177e4SLinus Torvalds goto e_inval; 5301da177e4SLinus Torvalds np->mcast_hops = val; 5311da177e4SLinus Torvalds retv = 0; 5321da177e4SLinus Torvalds break; 5331da177e4SLinus Torvalds 5341da177e4SLinus Torvalds case IPV6_MULTICAST_LOOP: 5351da177e4SLinus Torvalds np->mc_loop = valbool; 5361da177e4SLinus Torvalds retv = 0; 5371da177e4SLinus Torvalds break; 5381da177e4SLinus Torvalds 5391da177e4SLinus Torvalds case IPV6_MULTICAST_IF: 5401da177e4SLinus Torvalds if (sk->sk_type == SOCK_STREAM) 5411da177e4SLinus Torvalds goto e_inval; 5421da177e4SLinus Torvalds if (sk->sk_bound_dev_if && sk->sk_bound_dev_if != val) 5431da177e4SLinus Torvalds goto e_inval; 5441da177e4SLinus Torvalds 5451da177e4SLinus Torvalds if (__dev_get_by_index(val) == NULL) { 5461da177e4SLinus Torvalds retv = -ENODEV; 5471da177e4SLinus Torvalds break; 5481da177e4SLinus Torvalds } 5491da177e4SLinus Torvalds np->mcast_oif = val; 5501da177e4SLinus Torvalds retv = 0; 5511da177e4SLinus Torvalds break; 5521da177e4SLinus Torvalds case IPV6_ADD_MEMBERSHIP: 5531da177e4SLinus Torvalds case IPV6_DROP_MEMBERSHIP: 5541da177e4SLinus Torvalds { 5551da177e4SLinus Torvalds struct ipv6_mreq mreq; 5561da177e4SLinus Torvalds 5571da177e4SLinus Torvalds retv = -EFAULT; 5581da177e4SLinus Torvalds if (copy_from_user(&mreq, optval, sizeof(struct ipv6_mreq))) 5591da177e4SLinus Torvalds break; 5601da177e4SLinus Torvalds 5611da177e4SLinus Torvalds if (optname == IPV6_ADD_MEMBERSHIP) 5621da177e4SLinus Torvalds retv = ipv6_sock_mc_join(sk, mreq.ipv6mr_ifindex, &mreq.ipv6mr_multiaddr); 5631da177e4SLinus Torvalds else 5641da177e4SLinus Torvalds retv = ipv6_sock_mc_drop(sk, mreq.ipv6mr_ifindex, &mreq.ipv6mr_multiaddr); 5651da177e4SLinus Torvalds break; 5661da177e4SLinus Torvalds } 5671da177e4SLinus Torvalds case IPV6_JOIN_ANYCAST: 5681da177e4SLinus Torvalds case IPV6_LEAVE_ANYCAST: 5691da177e4SLinus Torvalds { 5701da177e4SLinus Torvalds struct ipv6_mreq mreq; 5711da177e4SLinus Torvalds 5721da177e4SLinus Torvalds if (optlen != sizeof(struct ipv6_mreq)) 5731da177e4SLinus Torvalds goto e_inval; 5741da177e4SLinus Torvalds 5751da177e4SLinus Torvalds retv = -EFAULT; 5761da177e4SLinus Torvalds if (copy_from_user(&mreq, optval, sizeof(struct ipv6_mreq))) 5771da177e4SLinus Torvalds break; 5781da177e4SLinus Torvalds 5791da177e4SLinus Torvalds if (optname == IPV6_JOIN_ANYCAST) 5801da177e4SLinus Torvalds retv = ipv6_sock_ac_join(sk, mreq.ipv6mr_ifindex, &mreq.ipv6mr_acaddr); 5811da177e4SLinus Torvalds else 5821da177e4SLinus Torvalds retv = ipv6_sock_ac_drop(sk, mreq.ipv6mr_ifindex, &mreq.ipv6mr_acaddr); 5831da177e4SLinus Torvalds break; 5841da177e4SLinus Torvalds } 5851da177e4SLinus Torvalds case MCAST_JOIN_GROUP: 5861da177e4SLinus Torvalds case MCAST_LEAVE_GROUP: 5871da177e4SLinus Torvalds { 5881da177e4SLinus Torvalds struct group_req greq; 5891da177e4SLinus Torvalds struct sockaddr_in6 *psin6; 5901da177e4SLinus Torvalds 5911da177e4SLinus Torvalds retv = -EFAULT; 5921da177e4SLinus Torvalds if (copy_from_user(&greq, optval, sizeof(struct group_req))) 5931da177e4SLinus Torvalds break; 5941da177e4SLinus Torvalds if (greq.gr_group.ss_family != AF_INET6) { 5951da177e4SLinus Torvalds retv = -EADDRNOTAVAIL; 5961da177e4SLinus Torvalds break; 5971da177e4SLinus Torvalds } 5981da177e4SLinus Torvalds psin6 = (struct sockaddr_in6 *)&greq.gr_group; 5991da177e4SLinus Torvalds if (optname == MCAST_JOIN_GROUP) 6001da177e4SLinus Torvalds retv = ipv6_sock_mc_join(sk, greq.gr_interface, 6011da177e4SLinus Torvalds &psin6->sin6_addr); 6021da177e4SLinus Torvalds else 6031da177e4SLinus Torvalds retv = ipv6_sock_mc_drop(sk, greq.gr_interface, 6041da177e4SLinus Torvalds &psin6->sin6_addr); 6051da177e4SLinus Torvalds break; 6061da177e4SLinus Torvalds } 6071da177e4SLinus Torvalds case MCAST_JOIN_SOURCE_GROUP: 6081da177e4SLinus Torvalds case MCAST_LEAVE_SOURCE_GROUP: 6091da177e4SLinus Torvalds case MCAST_BLOCK_SOURCE: 6101da177e4SLinus Torvalds case MCAST_UNBLOCK_SOURCE: 6111da177e4SLinus Torvalds { 6121da177e4SLinus Torvalds struct group_source_req greqs; 6131da177e4SLinus Torvalds int omode, add; 6141da177e4SLinus Torvalds 6151da177e4SLinus Torvalds if (optlen != sizeof(struct group_source_req)) 6161da177e4SLinus Torvalds goto e_inval; 6171da177e4SLinus Torvalds if (copy_from_user(&greqs, optval, sizeof(greqs))) { 6181da177e4SLinus Torvalds retv = -EFAULT; 6191da177e4SLinus Torvalds break; 6201da177e4SLinus Torvalds } 6211da177e4SLinus Torvalds if (greqs.gsr_group.ss_family != AF_INET6 || 6221da177e4SLinus Torvalds greqs.gsr_source.ss_family != AF_INET6) { 6231da177e4SLinus Torvalds retv = -EADDRNOTAVAIL; 6241da177e4SLinus Torvalds break; 6251da177e4SLinus Torvalds } 6261da177e4SLinus Torvalds if (optname == MCAST_BLOCK_SOURCE) { 6271da177e4SLinus Torvalds omode = MCAST_EXCLUDE; 6281da177e4SLinus Torvalds add = 1; 6291da177e4SLinus Torvalds } else if (optname == MCAST_UNBLOCK_SOURCE) { 6301da177e4SLinus Torvalds omode = MCAST_EXCLUDE; 6311da177e4SLinus Torvalds add = 0; 6321da177e4SLinus Torvalds } else if (optname == MCAST_JOIN_SOURCE_GROUP) { 6331da177e4SLinus Torvalds struct sockaddr_in6 *psin6; 6341da177e4SLinus Torvalds 6351da177e4SLinus Torvalds psin6 = (struct sockaddr_in6 *)&greqs.gsr_group; 6361da177e4SLinus Torvalds retv = ipv6_sock_mc_join(sk, greqs.gsr_interface, 6371da177e4SLinus Torvalds &psin6->sin6_addr); 638c9e3e8b6SDavid L Stevens /* prior join w/ different source is ok */ 639c9e3e8b6SDavid L Stevens if (retv && retv != -EADDRINUSE) 6401da177e4SLinus Torvalds break; 6411da177e4SLinus Torvalds omode = MCAST_INCLUDE; 6421da177e4SLinus Torvalds add = 1; 643c9e3e8b6SDavid L Stevens } else /* MCAST_LEAVE_SOURCE_GROUP */ { 6441da177e4SLinus Torvalds omode = MCAST_INCLUDE; 6451da177e4SLinus Torvalds add = 0; 6461da177e4SLinus Torvalds } 6471da177e4SLinus Torvalds retv = ip6_mc_source(add, omode, sk, &greqs); 6481da177e4SLinus Torvalds break; 6491da177e4SLinus Torvalds } 6501da177e4SLinus Torvalds case MCAST_MSFILTER: 6511da177e4SLinus Torvalds { 6521da177e4SLinus Torvalds extern int sysctl_mld_max_msf; 6531da177e4SLinus Torvalds struct group_filter *gsf; 6541da177e4SLinus Torvalds 6551da177e4SLinus Torvalds if (optlen < GROUP_FILTER_SIZE(0)) 6561da177e4SLinus Torvalds goto e_inval; 6571da177e4SLinus Torvalds if (optlen > sysctl_optmem_max) { 6581da177e4SLinus Torvalds retv = -ENOBUFS; 6591da177e4SLinus Torvalds break; 6601da177e4SLinus Torvalds } 6618b3a7005SKris Katterjohn gsf = kmalloc(optlen,GFP_KERNEL); 6621da177e4SLinus Torvalds if (gsf == 0) { 6631da177e4SLinus Torvalds retv = -ENOBUFS; 6641da177e4SLinus Torvalds break; 6651da177e4SLinus Torvalds } 6661da177e4SLinus Torvalds retv = -EFAULT; 6671da177e4SLinus Torvalds if (copy_from_user(gsf, optval, optlen)) { 6681da177e4SLinus Torvalds kfree(gsf); 6691da177e4SLinus Torvalds break; 6701da177e4SLinus Torvalds } 6711da177e4SLinus Torvalds /* numsrc >= (4G-140)/128 overflow in 32 bits */ 6721da177e4SLinus Torvalds if (gsf->gf_numsrc >= 0x1ffffffU || 6731da177e4SLinus Torvalds gsf->gf_numsrc > sysctl_mld_max_msf) { 6741da177e4SLinus Torvalds kfree(gsf); 6751da177e4SLinus Torvalds retv = -ENOBUFS; 6761da177e4SLinus Torvalds break; 6771da177e4SLinus Torvalds } 6781da177e4SLinus Torvalds if (GROUP_FILTER_SIZE(gsf->gf_numsrc) > optlen) { 6791da177e4SLinus Torvalds kfree(gsf); 6801da177e4SLinus Torvalds retv = -EINVAL; 6811da177e4SLinus Torvalds break; 6821da177e4SLinus Torvalds } 6831da177e4SLinus Torvalds retv = ip6_mc_msfilter(sk, gsf); 6841da177e4SLinus Torvalds kfree(gsf); 6851da177e4SLinus Torvalds 6861da177e4SLinus Torvalds break; 6871da177e4SLinus Torvalds } 6881da177e4SLinus Torvalds case IPV6_ROUTER_ALERT: 6891da177e4SLinus Torvalds retv = ip6_ra_control(sk, val, NULL); 6901da177e4SLinus Torvalds break; 6911da177e4SLinus Torvalds case IPV6_MTU_DISCOVER: 6921da177e4SLinus Torvalds if (val<0 || val>2) 6931da177e4SLinus Torvalds goto e_inval; 6941da177e4SLinus Torvalds np->pmtudisc = val; 6951da177e4SLinus Torvalds retv = 0; 6961da177e4SLinus Torvalds break; 6971da177e4SLinus Torvalds case IPV6_MTU: 6981da177e4SLinus Torvalds if (val && val < IPV6_MIN_MTU) 6991da177e4SLinus Torvalds goto e_inval; 7001da177e4SLinus Torvalds np->frag_size = val; 7011da177e4SLinus Torvalds retv = 0; 7021da177e4SLinus Torvalds break; 7031da177e4SLinus Torvalds case IPV6_RECVERR: 7041da177e4SLinus Torvalds np->recverr = valbool; 7051da177e4SLinus Torvalds if (!val) 7061da177e4SLinus Torvalds skb_queue_purge(&sk->sk_error_queue); 7071da177e4SLinus Torvalds retv = 0; 7081da177e4SLinus Torvalds break; 7091da177e4SLinus Torvalds case IPV6_FLOWINFO_SEND: 7101da177e4SLinus Torvalds np->sndflow = valbool; 7111da177e4SLinus Torvalds retv = 0; 7121da177e4SLinus Torvalds break; 7131da177e4SLinus Torvalds case IPV6_FLOWLABEL_MGR: 7141da177e4SLinus Torvalds retv = ipv6_flowlabel_opt(sk, optval, optlen); 7151da177e4SLinus Torvalds break; 7161da177e4SLinus Torvalds case IPV6_IPSEC_POLICY: 7171da177e4SLinus Torvalds case IPV6_XFRM_POLICY: 7186fc0b4a7SHerbert Xu retv = -EPERM; 7196fc0b4a7SHerbert Xu if (!capable(CAP_NET_ADMIN)) 7206fc0b4a7SHerbert Xu break; 7211da177e4SLinus Torvalds retv = xfrm_user_policy(sk, optname, optval, optlen); 7221da177e4SLinus Torvalds break; 7231da177e4SLinus Torvalds 7241da177e4SLinus Torvalds } 7251da177e4SLinus Torvalds release_sock(sk); 7261da177e4SLinus Torvalds 7271da177e4SLinus Torvalds return retv; 7281da177e4SLinus Torvalds 7291da177e4SLinus Torvalds e_inval: 7301da177e4SLinus Torvalds release_sock(sk); 7311da177e4SLinus Torvalds return -EINVAL; 7321da177e4SLinus Torvalds } 7331da177e4SLinus Torvalds 7343fdadf7dSDmitry Mishin int ipv6_setsockopt(struct sock *sk, int level, int optname, 7353fdadf7dSDmitry Mishin char __user *optval, int optlen) 7363fdadf7dSDmitry Mishin { 7373fdadf7dSDmitry Mishin int err; 7383fdadf7dSDmitry Mishin 7393fdadf7dSDmitry Mishin if (level == SOL_IP && sk->sk_type != SOCK_RAW) 7403fdadf7dSDmitry Mishin return udp_prot.setsockopt(sk, level, optname, optval, optlen); 7413fdadf7dSDmitry Mishin 7423fdadf7dSDmitry Mishin if (level != SOL_IPV6) 7433fdadf7dSDmitry Mishin return -ENOPROTOOPT; 7443fdadf7dSDmitry Mishin 7453fdadf7dSDmitry Mishin err = do_ipv6_setsockopt(sk, level, optname, optval, optlen); 7463fdadf7dSDmitry Mishin #ifdef CONFIG_NETFILTER 7473fdadf7dSDmitry Mishin /* we need to exclude all possible ENOPROTOOPTs except default case */ 7483fdadf7dSDmitry Mishin if (err == -ENOPROTOOPT && optname != IPV6_IPSEC_POLICY && 7493fdadf7dSDmitry Mishin optname != IPV6_XFRM_POLICY) { 7503fdadf7dSDmitry Mishin lock_sock(sk); 7513fdadf7dSDmitry Mishin err = nf_setsockopt(sk, PF_INET6, optname, optval, 7523fdadf7dSDmitry Mishin optlen); 7533fdadf7dSDmitry Mishin release_sock(sk); 7543fdadf7dSDmitry Mishin } 7553fdadf7dSDmitry Mishin #endif 7563fdadf7dSDmitry Mishin return err; 7573fdadf7dSDmitry Mishin } 7583fdadf7dSDmitry Mishin 7593fdadf7dSDmitry Mishin 7603fdadf7dSDmitry Mishin #ifdef CONFIG_COMPAT 7613fdadf7dSDmitry Mishin int compat_ipv6_setsockopt(struct sock *sk, int level, int optname, 7623fdadf7dSDmitry Mishin char __user *optval, int optlen) 7633fdadf7dSDmitry Mishin { 7643fdadf7dSDmitry Mishin int err; 7653fdadf7dSDmitry Mishin 7663fdadf7dSDmitry Mishin if (level == SOL_IP && sk->sk_type != SOCK_RAW) { 767543d9cfeSArnaldo Carvalho de Melo if (udp_prot.compat_setsockopt != NULL) 768543d9cfeSArnaldo Carvalho de Melo return udp_prot.compat_setsockopt(sk, level, optname, 769543d9cfeSArnaldo Carvalho de Melo optval, optlen); 770543d9cfeSArnaldo Carvalho de Melo return udp_prot.setsockopt(sk, level, optname, optval, optlen); 7713fdadf7dSDmitry Mishin } 7723fdadf7dSDmitry Mishin 7733fdadf7dSDmitry Mishin if (level != SOL_IPV6) 7743fdadf7dSDmitry Mishin return -ENOPROTOOPT; 7753fdadf7dSDmitry Mishin 7763fdadf7dSDmitry Mishin err = do_ipv6_setsockopt(sk, level, optname, optval, optlen); 7773fdadf7dSDmitry Mishin #ifdef CONFIG_NETFILTER 7783fdadf7dSDmitry Mishin /* we need to exclude all possible ENOPROTOOPTs except default case */ 7793fdadf7dSDmitry Mishin if (err == -ENOPROTOOPT && optname != IPV6_IPSEC_POLICY && 7803fdadf7dSDmitry Mishin optname != IPV6_XFRM_POLICY) { 7813fdadf7dSDmitry Mishin lock_sock(sk); 782543d9cfeSArnaldo Carvalho de Melo err = compat_nf_setsockopt(sk, PF_INET6, optname, 783543d9cfeSArnaldo Carvalho de Melo optval, optlen); 7843fdadf7dSDmitry Mishin release_sock(sk); 7853fdadf7dSDmitry Mishin } 7863fdadf7dSDmitry Mishin #endif 7873fdadf7dSDmitry Mishin return err; 7883fdadf7dSDmitry Mishin } 789543d9cfeSArnaldo Carvalho de Melo 790543d9cfeSArnaldo Carvalho de Melo EXPORT_SYMBOL(compat_ipv6_setsockopt); 7913fdadf7dSDmitry Mishin #endif 7923fdadf7dSDmitry Mishin 79334a0b3cdSAdrian Bunk static int ipv6_getsockopt_sticky(struct sock *sk, struct ipv6_opt_hdr *hdr, 794333fad53SYOSHIFUJI Hideaki char __user *optval, int len) 795333fad53SYOSHIFUJI Hideaki { 796333fad53SYOSHIFUJI Hideaki if (!hdr) 797333fad53SYOSHIFUJI Hideaki return 0; 798333fad53SYOSHIFUJI Hideaki len = min_t(int, len, ipv6_optlen(hdr)); 799333fad53SYOSHIFUJI Hideaki if (copy_to_user(optval, hdr, ipv6_optlen(hdr))) 800333fad53SYOSHIFUJI Hideaki return -EFAULT; 801333fad53SYOSHIFUJI Hideaki return len; 802333fad53SYOSHIFUJI Hideaki } 803333fad53SYOSHIFUJI Hideaki 8043fdadf7dSDmitry Mishin static int do_ipv6_getsockopt(struct sock *sk, int level, int optname, 8051da177e4SLinus Torvalds char __user *optval, int __user *optlen) 8061da177e4SLinus Torvalds { 8071da177e4SLinus Torvalds struct ipv6_pinfo *np = inet6_sk(sk); 8081da177e4SLinus Torvalds int len; 8091da177e4SLinus Torvalds int val; 8101da177e4SLinus Torvalds 8111da177e4SLinus Torvalds if (get_user(len, optlen)) 8121da177e4SLinus Torvalds return -EFAULT; 8131da177e4SLinus Torvalds switch (optname) { 8141da177e4SLinus Torvalds case IPV6_ADDRFORM: 8151da177e4SLinus Torvalds if (sk->sk_protocol != IPPROTO_UDP && 8161da177e4SLinus Torvalds sk->sk_protocol != IPPROTO_TCP) 8171da177e4SLinus Torvalds return -EINVAL; 8181da177e4SLinus Torvalds if (sk->sk_state != TCP_ESTABLISHED) 8191da177e4SLinus Torvalds return -ENOTCONN; 8201da177e4SLinus Torvalds val = sk->sk_family; 8211da177e4SLinus Torvalds break; 8221da177e4SLinus Torvalds case MCAST_MSFILTER: 8231da177e4SLinus Torvalds { 8241da177e4SLinus Torvalds struct group_filter gsf; 8251da177e4SLinus Torvalds int err; 8261da177e4SLinus Torvalds 8271da177e4SLinus Torvalds if (len < GROUP_FILTER_SIZE(0)) 8281da177e4SLinus Torvalds return -EINVAL; 8291da177e4SLinus Torvalds if (copy_from_user(&gsf, optval, GROUP_FILTER_SIZE(0))) 8301da177e4SLinus Torvalds return -EFAULT; 8311da177e4SLinus Torvalds lock_sock(sk); 8321da177e4SLinus Torvalds err = ip6_mc_msfget(sk, &gsf, 8331da177e4SLinus Torvalds (struct group_filter __user *)optval, optlen); 8341da177e4SLinus Torvalds release_sock(sk); 8351da177e4SLinus Torvalds return err; 8361da177e4SLinus Torvalds } 8371da177e4SLinus Torvalds 838333fad53SYOSHIFUJI Hideaki case IPV6_2292PKTOPTIONS: 8391da177e4SLinus Torvalds { 8401da177e4SLinus Torvalds struct msghdr msg; 8411da177e4SLinus Torvalds struct sk_buff *skb; 8421da177e4SLinus Torvalds 8431da177e4SLinus Torvalds if (sk->sk_type != SOCK_STREAM) 8441da177e4SLinus Torvalds return -ENOPROTOOPT; 8451da177e4SLinus Torvalds 8461da177e4SLinus Torvalds msg.msg_control = optval; 8471da177e4SLinus Torvalds msg.msg_controllen = len; 8481da177e4SLinus Torvalds msg.msg_flags = 0; 8491da177e4SLinus Torvalds 8501da177e4SLinus Torvalds lock_sock(sk); 8511da177e4SLinus Torvalds skb = np->pktoptions; 8521da177e4SLinus Torvalds if (skb) 8531da177e4SLinus Torvalds atomic_inc(&skb->users); 8541da177e4SLinus Torvalds release_sock(sk); 8551da177e4SLinus Torvalds 8561da177e4SLinus Torvalds if (skb) { 8571da177e4SLinus Torvalds int err = datagram_recv_ctl(sk, &msg, skb); 8581da177e4SLinus Torvalds kfree_skb(skb); 8591da177e4SLinus Torvalds if (err) 8601da177e4SLinus Torvalds return err; 8611da177e4SLinus Torvalds } else { 8621da177e4SLinus Torvalds if (np->rxopt.bits.rxinfo) { 8631da177e4SLinus Torvalds struct in6_pktinfo src_info; 8641da177e4SLinus Torvalds src_info.ipi6_ifindex = np->mcast_oif; 8651da177e4SLinus Torvalds ipv6_addr_copy(&src_info.ipi6_addr, &np->daddr); 8661da177e4SLinus Torvalds put_cmsg(&msg, SOL_IPV6, IPV6_PKTINFO, sizeof(src_info), &src_info); 8671da177e4SLinus Torvalds } 8681da177e4SLinus Torvalds if (np->rxopt.bits.rxhlim) { 8691da177e4SLinus Torvalds int hlim = np->mcast_hops; 8701da177e4SLinus Torvalds put_cmsg(&msg, SOL_IPV6, IPV6_HOPLIMIT, sizeof(hlim), &hlim); 8711da177e4SLinus Torvalds } 872333fad53SYOSHIFUJI Hideaki if (np->rxopt.bits.rxoinfo) { 873333fad53SYOSHIFUJI Hideaki struct in6_pktinfo src_info; 874333fad53SYOSHIFUJI Hideaki src_info.ipi6_ifindex = np->mcast_oif; 875333fad53SYOSHIFUJI Hideaki ipv6_addr_copy(&src_info.ipi6_addr, &np->daddr); 876333fad53SYOSHIFUJI Hideaki put_cmsg(&msg, SOL_IPV6, IPV6_2292PKTINFO, sizeof(src_info), &src_info); 877333fad53SYOSHIFUJI Hideaki } 878333fad53SYOSHIFUJI Hideaki if (np->rxopt.bits.rxohlim) { 879333fad53SYOSHIFUJI Hideaki int hlim = np->mcast_hops; 880333fad53SYOSHIFUJI Hideaki put_cmsg(&msg, SOL_IPV6, IPV6_2292HOPLIMIT, sizeof(hlim), &hlim); 881333fad53SYOSHIFUJI Hideaki } 8821da177e4SLinus Torvalds } 8831da177e4SLinus Torvalds len -= msg.msg_controllen; 8841da177e4SLinus Torvalds return put_user(len, optlen); 8851da177e4SLinus Torvalds } 8861da177e4SLinus Torvalds case IPV6_MTU: 8871da177e4SLinus Torvalds { 8881da177e4SLinus Torvalds struct dst_entry *dst; 8891da177e4SLinus Torvalds val = 0; 8901da177e4SLinus Torvalds lock_sock(sk); 8911da177e4SLinus Torvalds dst = sk_dst_get(sk); 8921da177e4SLinus Torvalds if (dst) { 8931da177e4SLinus Torvalds val = dst_mtu(dst); 8941da177e4SLinus Torvalds dst_release(dst); 8951da177e4SLinus Torvalds } 8961da177e4SLinus Torvalds release_sock(sk); 8971da177e4SLinus Torvalds if (!val) 8981da177e4SLinus Torvalds return -ENOTCONN; 8991da177e4SLinus Torvalds break; 9001da177e4SLinus Torvalds } 9011da177e4SLinus Torvalds 9021da177e4SLinus Torvalds case IPV6_V6ONLY: 9031da177e4SLinus Torvalds val = np->ipv6only; 9041da177e4SLinus Torvalds break; 9051da177e4SLinus Torvalds 906333fad53SYOSHIFUJI Hideaki case IPV6_RECVPKTINFO: 9071da177e4SLinus Torvalds val = np->rxopt.bits.rxinfo; 9081da177e4SLinus Torvalds break; 9091da177e4SLinus Torvalds 910333fad53SYOSHIFUJI Hideaki case IPV6_2292PKTINFO: 911333fad53SYOSHIFUJI Hideaki val = np->rxopt.bits.rxoinfo; 912333fad53SYOSHIFUJI Hideaki break; 913333fad53SYOSHIFUJI Hideaki 914333fad53SYOSHIFUJI Hideaki case IPV6_RECVHOPLIMIT: 9151da177e4SLinus Torvalds val = np->rxopt.bits.rxhlim; 9161da177e4SLinus Torvalds break; 9171da177e4SLinus Torvalds 918333fad53SYOSHIFUJI Hideaki case IPV6_2292HOPLIMIT: 919333fad53SYOSHIFUJI Hideaki val = np->rxopt.bits.rxohlim; 920333fad53SYOSHIFUJI Hideaki break; 921333fad53SYOSHIFUJI Hideaki 922333fad53SYOSHIFUJI Hideaki case IPV6_RECVRTHDR: 9231da177e4SLinus Torvalds val = np->rxopt.bits.srcrt; 9241da177e4SLinus Torvalds break; 9251da177e4SLinus Torvalds 926333fad53SYOSHIFUJI Hideaki case IPV6_2292RTHDR: 927333fad53SYOSHIFUJI Hideaki val = np->rxopt.bits.osrcrt; 928333fad53SYOSHIFUJI Hideaki break; 929333fad53SYOSHIFUJI Hideaki 9301da177e4SLinus Torvalds case IPV6_HOPOPTS: 931333fad53SYOSHIFUJI Hideaki case IPV6_RTHDRDSTOPTS: 932333fad53SYOSHIFUJI Hideaki case IPV6_RTHDR: 933333fad53SYOSHIFUJI Hideaki case IPV6_DSTOPTS: 934333fad53SYOSHIFUJI Hideaki { 935333fad53SYOSHIFUJI Hideaki 936333fad53SYOSHIFUJI Hideaki lock_sock(sk); 937333fad53SYOSHIFUJI Hideaki len = ipv6_getsockopt_sticky(sk, np->opt->hopopt, 938333fad53SYOSHIFUJI Hideaki optval, len); 939333fad53SYOSHIFUJI Hideaki release_sock(sk); 940333fad53SYOSHIFUJI Hideaki return put_user(len, optlen); 941333fad53SYOSHIFUJI Hideaki } 942333fad53SYOSHIFUJI Hideaki 943333fad53SYOSHIFUJI Hideaki case IPV6_RECVHOPOPTS: 9441da177e4SLinus Torvalds val = np->rxopt.bits.hopopts; 9451da177e4SLinus Torvalds break; 9461da177e4SLinus Torvalds 947333fad53SYOSHIFUJI Hideaki case IPV6_2292HOPOPTS: 948333fad53SYOSHIFUJI Hideaki val = np->rxopt.bits.ohopopts; 949333fad53SYOSHIFUJI Hideaki break; 950333fad53SYOSHIFUJI Hideaki 951333fad53SYOSHIFUJI Hideaki case IPV6_RECVDSTOPTS: 9521da177e4SLinus Torvalds val = np->rxopt.bits.dstopts; 9531da177e4SLinus Torvalds break; 9541da177e4SLinus Torvalds 955333fad53SYOSHIFUJI Hideaki case IPV6_2292DSTOPTS: 956333fad53SYOSHIFUJI Hideaki val = np->rxopt.bits.odstopts; 957333fad53SYOSHIFUJI Hideaki break; 958333fad53SYOSHIFUJI Hideaki 95941a1f8eaSYOSHIFUJI Hideaki case IPV6_TCLASS: 96041a1f8eaSYOSHIFUJI Hideaki val = np->tclass; 961d0ee011fSRemi Denis-Courmont if (val < 0) 962d0ee011fSRemi Denis-Courmont val = 0; 96341a1f8eaSYOSHIFUJI Hideaki break; 96441a1f8eaSYOSHIFUJI Hideaki 96541a1f8eaSYOSHIFUJI Hideaki case IPV6_RECVTCLASS: 96641a1f8eaSYOSHIFUJI Hideaki val = np->rxopt.bits.rxtclass; 96741a1f8eaSYOSHIFUJI Hideaki break; 96841a1f8eaSYOSHIFUJI Hideaki 9691da177e4SLinus Torvalds case IPV6_FLOWINFO: 9701da177e4SLinus Torvalds val = np->rxopt.bits.rxflow; 9711da177e4SLinus Torvalds break; 9721da177e4SLinus Torvalds 9731da177e4SLinus Torvalds case IPV6_UNICAST_HOPS: 9741da177e4SLinus Torvalds val = np->hop_limit; 9751da177e4SLinus Torvalds break; 9761da177e4SLinus Torvalds 9771da177e4SLinus Torvalds case IPV6_MULTICAST_HOPS: 9781da177e4SLinus Torvalds val = np->mcast_hops; 9791da177e4SLinus Torvalds break; 9801da177e4SLinus Torvalds 9811da177e4SLinus Torvalds case IPV6_MULTICAST_LOOP: 9821da177e4SLinus Torvalds val = np->mc_loop; 9831da177e4SLinus Torvalds break; 9841da177e4SLinus Torvalds 9851da177e4SLinus Torvalds case IPV6_MULTICAST_IF: 9861da177e4SLinus Torvalds val = np->mcast_oif; 9871da177e4SLinus Torvalds break; 9881da177e4SLinus Torvalds 9891da177e4SLinus Torvalds case IPV6_MTU_DISCOVER: 9901da177e4SLinus Torvalds val = np->pmtudisc; 9911da177e4SLinus Torvalds break; 9921da177e4SLinus Torvalds 9931da177e4SLinus Torvalds case IPV6_RECVERR: 9941da177e4SLinus Torvalds val = np->recverr; 9951da177e4SLinus Torvalds break; 9961da177e4SLinus Torvalds 9971da177e4SLinus Torvalds case IPV6_FLOWINFO_SEND: 9981da177e4SLinus Torvalds val = np->sndflow; 9991da177e4SLinus Torvalds break; 10001da177e4SLinus Torvalds 10011da177e4SLinus Torvalds default: 10021da177e4SLinus Torvalds return -EINVAL; 10031da177e4SLinus Torvalds } 10041da177e4SLinus Torvalds len = min_t(unsigned int, sizeof(int), len); 10051da177e4SLinus Torvalds if(put_user(len, optlen)) 10061da177e4SLinus Torvalds return -EFAULT; 10071da177e4SLinus Torvalds if(copy_to_user(optval,&val,len)) 10081da177e4SLinus Torvalds return -EFAULT; 10091da177e4SLinus Torvalds return 0; 10101da177e4SLinus Torvalds } 10111da177e4SLinus Torvalds 10123fdadf7dSDmitry Mishin int ipv6_getsockopt(struct sock *sk, int level, int optname, 10133fdadf7dSDmitry Mishin char __user *optval, int __user *optlen) 10143fdadf7dSDmitry Mishin { 10153fdadf7dSDmitry Mishin int err; 10163fdadf7dSDmitry Mishin 10173fdadf7dSDmitry Mishin if (level == SOL_IP && sk->sk_type != SOCK_RAW) 10183fdadf7dSDmitry Mishin return udp_prot.getsockopt(sk, level, optname, optval, optlen); 10193fdadf7dSDmitry Mishin 10203fdadf7dSDmitry Mishin if(level != SOL_IPV6) 10213fdadf7dSDmitry Mishin return -ENOPROTOOPT; 10223fdadf7dSDmitry Mishin 10233fdadf7dSDmitry Mishin err = do_ipv6_getsockopt(sk, level, optname, optval, optlen); 10243fdadf7dSDmitry Mishin #ifdef CONFIG_NETFILTER 10253fdadf7dSDmitry Mishin /* we need to exclude all possible EINVALs except default case */ 1026443da0d5SPatrick McHardy if (err == -EINVAL && optname != IPV6_ADDRFORM && 10273fdadf7dSDmitry Mishin optname != MCAST_MSFILTER) { 10283fdadf7dSDmitry Mishin int len; 10293fdadf7dSDmitry Mishin 10303fdadf7dSDmitry Mishin if (get_user(len, optlen)) 10313fdadf7dSDmitry Mishin return -EFAULT; 10323fdadf7dSDmitry Mishin 10333fdadf7dSDmitry Mishin lock_sock(sk); 10343fdadf7dSDmitry Mishin err = nf_getsockopt(sk, PF_INET6, optname, optval, 10353fdadf7dSDmitry Mishin &len); 10363fdadf7dSDmitry Mishin release_sock(sk); 10373fdadf7dSDmitry Mishin if (err >= 0) 10383fdadf7dSDmitry Mishin err = put_user(len, optlen); 10393fdadf7dSDmitry Mishin } 10403fdadf7dSDmitry Mishin #endif 10413fdadf7dSDmitry Mishin return err; 10423fdadf7dSDmitry Mishin } 10433fdadf7dSDmitry Mishin 10443fdadf7dSDmitry Mishin #ifdef CONFIG_COMPAT 10453fdadf7dSDmitry Mishin int compat_ipv6_getsockopt(struct sock *sk, int level, int optname, 10463fdadf7dSDmitry Mishin char __user *optval, int __user *optlen) 10473fdadf7dSDmitry Mishin { 10483fdadf7dSDmitry Mishin int err; 10493fdadf7dSDmitry Mishin 10503fdadf7dSDmitry Mishin if (level == SOL_IP && sk->sk_type != SOCK_RAW) { 1051543d9cfeSArnaldo Carvalho de Melo if (udp_prot.compat_getsockopt != NULL) 1052543d9cfeSArnaldo Carvalho de Melo return udp_prot.compat_getsockopt(sk, level, optname, 1053543d9cfeSArnaldo Carvalho de Melo optval, optlen); 1054543d9cfeSArnaldo Carvalho de Melo return udp_prot.getsockopt(sk, level, optname, optval, optlen); 10553fdadf7dSDmitry Mishin } 10563fdadf7dSDmitry Mishin 10573fdadf7dSDmitry Mishin if (level != SOL_IPV6) 10583fdadf7dSDmitry Mishin return -ENOPROTOOPT; 10593fdadf7dSDmitry Mishin 10603fdadf7dSDmitry Mishin err = do_ipv6_getsockopt(sk, level, optname, optval, optlen); 10613fdadf7dSDmitry Mishin #ifdef CONFIG_NETFILTER 10623fdadf7dSDmitry Mishin /* we need to exclude all possible EINVALs except default case */ 1063443da0d5SPatrick McHardy if (err == -EINVAL && optname != IPV6_ADDRFORM && 10643fdadf7dSDmitry Mishin optname != MCAST_MSFILTER) { 10653fdadf7dSDmitry Mishin int len; 10663fdadf7dSDmitry Mishin 10673fdadf7dSDmitry Mishin if (get_user(len, optlen)) 10683fdadf7dSDmitry Mishin return -EFAULT; 10693fdadf7dSDmitry Mishin 10703fdadf7dSDmitry Mishin lock_sock(sk); 1071543d9cfeSArnaldo Carvalho de Melo err = compat_nf_getsockopt(sk, PF_INET6, 1072543d9cfeSArnaldo Carvalho de Melo optname, optval, &len); 10733fdadf7dSDmitry Mishin release_sock(sk); 10743fdadf7dSDmitry Mishin if (err >= 0) 10753fdadf7dSDmitry Mishin err = put_user(len, optlen); 10763fdadf7dSDmitry Mishin } 10773fdadf7dSDmitry Mishin #endif 10783fdadf7dSDmitry Mishin return err; 10793fdadf7dSDmitry Mishin } 1080543d9cfeSArnaldo Carvalho de Melo 1081543d9cfeSArnaldo Carvalho de Melo EXPORT_SYMBOL(compat_ipv6_getsockopt); 10823fdadf7dSDmitry Mishin #endif 10833fdadf7dSDmitry Mishin 10841da177e4SLinus Torvalds void __init ipv6_packet_init(void) 10851da177e4SLinus Torvalds { 10861da177e4SLinus Torvalds dev_add_pack(&ipv6_packet_type); 10871da177e4SLinus Torvalds } 10881da177e4SLinus Torvalds 10891da177e4SLinus Torvalds void ipv6_packet_cleanup(void) 10901da177e4SLinus Torvalds { 10911da177e4SLinus Torvalds dev_remove_pack(&ipv6_packet_type); 10921da177e4SLinus Torvalds } 1093