11da177e4SLinus Torvalds /* 21da177e4SLinus Torvalds * IPv6 BSD socket options interface 31da177e4SLinus Torvalds * Linux INET6 implementation 41da177e4SLinus Torvalds * 51da177e4SLinus Torvalds * Authors: 61da177e4SLinus Torvalds * Pedro Roque <roque@di.fc.ul.pt> 71da177e4SLinus Torvalds * 81da177e4SLinus Torvalds * Based on linux/net/ipv4/ip_sockglue.c 91da177e4SLinus Torvalds * 101da177e4SLinus Torvalds * $Id: ipv6_sockglue.c,v 1.41 2002/02/01 22:01:04 davem Exp $ 111da177e4SLinus Torvalds * 121da177e4SLinus Torvalds * This program is free software; you can redistribute it and/or 131da177e4SLinus Torvalds * modify it under the terms of the GNU General Public License 141da177e4SLinus Torvalds * as published by the Free Software Foundation; either version 151da177e4SLinus Torvalds * 2 of the License, or (at your option) any later version. 161da177e4SLinus Torvalds * 171da177e4SLinus Torvalds * FIXME: Make the setsockopt code POSIX compliant: That is 181da177e4SLinus Torvalds * 191da177e4SLinus Torvalds * o Return -EINVAL for setsockopt of short lengths 201da177e4SLinus Torvalds * o Truncate getsockopt returns 211da177e4SLinus Torvalds * o Return an optlen of the truncated length if need be 221da177e4SLinus Torvalds * 231da177e4SLinus Torvalds * Changes: 241da177e4SLinus Torvalds * David L Stevens <dlstevens@us.ibm.com>: 251da177e4SLinus Torvalds * - added multicast source filtering API for MLDv2 261da177e4SLinus Torvalds */ 271da177e4SLinus Torvalds 281da177e4SLinus Torvalds #include <linux/module.h> 294fc268d2SRandy Dunlap #include <linux/capability.h> 301da177e4SLinus Torvalds #include <linux/errno.h> 311da177e4SLinus Torvalds #include <linux/types.h> 321da177e4SLinus Torvalds #include <linux/socket.h> 331da177e4SLinus Torvalds #include <linux/sockios.h> 341da177e4SLinus Torvalds #include <linux/sched.h> 351da177e4SLinus Torvalds #include <linux/net.h> 361da177e4SLinus Torvalds #include <linux/in6.h> 371da177e4SLinus Torvalds #include <linux/netdevice.h> 381da177e4SLinus Torvalds #include <linux/if_arp.h> 391da177e4SLinus Torvalds #include <linux/init.h> 401da177e4SLinus Torvalds #include <linux/sysctl.h> 411da177e4SLinus Torvalds #include <linux/netfilter.h> 421da177e4SLinus Torvalds 431da177e4SLinus Torvalds #include <net/sock.h> 441da177e4SLinus Torvalds #include <net/snmp.h> 451da177e4SLinus Torvalds #include <net/ipv6.h> 461da177e4SLinus Torvalds #include <net/ndisc.h> 471da177e4SLinus Torvalds #include <net/protocol.h> 481da177e4SLinus Torvalds #include <net/transp_v6.h> 491da177e4SLinus Torvalds #include <net/ip6_route.h> 501da177e4SLinus Torvalds #include <net/addrconf.h> 511da177e4SLinus Torvalds #include <net/inet_common.h> 521da177e4SLinus Torvalds #include <net/tcp.h> 531da177e4SLinus Torvalds #include <net/udp.h> 541da177e4SLinus Torvalds #include <net/xfrm.h> 551da177e4SLinus Torvalds 561da177e4SLinus Torvalds #include <asm/uaccess.h> 571da177e4SLinus Torvalds 58ba89966cSEric Dumazet DEFINE_SNMP_STAT(struct ipstats_mib, ipv6_statistics) __read_mostly; 591da177e4SLinus Torvalds 60a430a43dSHerbert Xu static struct inet6_protocol *ipv6_gso_pull_exthdrs(struct sk_buff *skb, 61a430a43dSHerbert Xu int proto) 62a430a43dSHerbert Xu { 63a430a43dSHerbert Xu struct inet6_protocol *ops = NULL; 64a430a43dSHerbert Xu 65a430a43dSHerbert Xu for (;;) { 66a430a43dSHerbert Xu struct ipv6_opt_hdr *opth; 67a430a43dSHerbert Xu int len; 68a430a43dSHerbert Xu 69a430a43dSHerbert Xu if (proto != NEXTHDR_HOP) { 70a430a43dSHerbert Xu ops = rcu_dereference(inet6_protos[proto]); 71a430a43dSHerbert Xu 72a430a43dSHerbert Xu if (unlikely(!ops)) 73a430a43dSHerbert Xu break; 74a430a43dSHerbert Xu 75a430a43dSHerbert Xu if (!(ops->flags & INET6_PROTO_GSO_EXTHDR)) 76a430a43dSHerbert Xu break; 77a430a43dSHerbert Xu } 78a430a43dSHerbert Xu 79a430a43dSHerbert Xu if (unlikely(!pskb_may_pull(skb, 8))) 80a430a43dSHerbert Xu break; 81a430a43dSHerbert Xu 82a430a43dSHerbert Xu opth = (void *)skb->data; 83a430a43dSHerbert Xu len = opth->hdrlen * 8 + 8; 84a430a43dSHerbert Xu 85a430a43dSHerbert Xu if (unlikely(!pskb_may_pull(skb, len))) 86a430a43dSHerbert Xu break; 87a430a43dSHerbert Xu 88a430a43dSHerbert Xu proto = opth->nexthdr; 89a430a43dSHerbert Xu __skb_pull(skb, len); 90a430a43dSHerbert Xu } 91a430a43dSHerbert Xu 92a430a43dSHerbert Xu return ops; 93a430a43dSHerbert Xu } 94a430a43dSHerbert Xu 95a430a43dSHerbert Xu static int ipv6_gso_send_check(struct sk_buff *skb) 96a430a43dSHerbert Xu { 97a430a43dSHerbert Xu struct ipv6hdr *ipv6h; 98a430a43dSHerbert Xu struct inet6_protocol *ops; 99a430a43dSHerbert Xu int err = -EINVAL; 100a430a43dSHerbert Xu 101a430a43dSHerbert Xu if (unlikely(!pskb_may_pull(skb, sizeof(*ipv6h)))) 102a430a43dSHerbert Xu goto out; 103a430a43dSHerbert Xu 104a430a43dSHerbert Xu ipv6h = skb->nh.ipv6h; 105a430a43dSHerbert Xu __skb_pull(skb, sizeof(*ipv6h)); 106a430a43dSHerbert Xu err = -EPROTONOSUPPORT; 107a430a43dSHerbert Xu 108a430a43dSHerbert Xu rcu_read_lock(); 109a430a43dSHerbert Xu ops = ipv6_gso_pull_exthdrs(skb, ipv6h->nexthdr); 110a430a43dSHerbert Xu if (likely(ops && ops->gso_send_check)) { 111a430a43dSHerbert Xu skb->h.raw = skb->data; 112a430a43dSHerbert Xu err = ops->gso_send_check(skb); 113a430a43dSHerbert Xu } 114a430a43dSHerbert Xu rcu_read_unlock(); 115a430a43dSHerbert Xu 116a430a43dSHerbert Xu out: 117a430a43dSHerbert Xu return err; 118a430a43dSHerbert Xu } 119a430a43dSHerbert Xu 120adcfc7d0SHerbert Xu static struct sk_buff *ipv6_gso_segment(struct sk_buff *skb, int features) 121adcfc7d0SHerbert Xu { 122adcfc7d0SHerbert Xu struct sk_buff *segs = ERR_PTR(-EINVAL); 123adcfc7d0SHerbert Xu struct ipv6hdr *ipv6h; 124adcfc7d0SHerbert Xu struct inet6_protocol *ops; 125adcfc7d0SHerbert Xu 126bbcf467dSHerbert Xu if (unlikely(skb_shinfo(skb)->gso_type & 127bbcf467dSHerbert Xu ~(SKB_GSO_UDP | 128bbcf467dSHerbert Xu SKB_GSO_DODGY | 129bbcf467dSHerbert Xu SKB_GSO_TCP_ECN | 130bbcf467dSHerbert Xu SKB_GSO_TCPV6 | 131bbcf467dSHerbert Xu 0))) 132bbcf467dSHerbert Xu goto out; 133bbcf467dSHerbert Xu 134adcfc7d0SHerbert Xu if (unlikely(!pskb_may_pull(skb, sizeof(*ipv6h)))) 135adcfc7d0SHerbert Xu goto out; 136adcfc7d0SHerbert Xu 137adcfc7d0SHerbert Xu ipv6h = skb->nh.ipv6h; 138adcfc7d0SHerbert Xu __skb_pull(skb, sizeof(*ipv6h)); 139a430a43dSHerbert Xu segs = ERR_PTR(-EPROTONOSUPPORT); 140adcfc7d0SHerbert Xu 141adcfc7d0SHerbert Xu rcu_read_lock(); 142a430a43dSHerbert Xu ops = ipv6_gso_pull_exthdrs(skb, ipv6h->nexthdr); 143a430a43dSHerbert Xu if (likely(ops && ops->gso_segment)) { 144adcfc7d0SHerbert Xu skb->h.raw = skb->data; 145adcfc7d0SHerbert Xu segs = ops->gso_segment(skb, features); 146a430a43dSHerbert Xu } 147adcfc7d0SHerbert Xu rcu_read_unlock(); 148adcfc7d0SHerbert Xu 149adcfc7d0SHerbert Xu if (unlikely(IS_ERR(segs))) 150adcfc7d0SHerbert Xu goto out; 151adcfc7d0SHerbert Xu 152adcfc7d0SHerbert Xu for (skb = segs; skb; skb = skb->next) { 153adcfc7d0SHerbert Xu ipv6h = skb->nh.ipv6h; 1546703931cSMichael Chan ipv6h->payload_len = htons(skb->len - skb->mac_len - 1556703931cSMichael Chan sizeof(*ipv6h)); 156adcfc7d0SHerbert Xu } 157adcfc7d0SHerbert Xu 158adcfc7d0SHerbert Xu out: 159adcfc7d0SHerbert Xu return segs; 160adcfc7d0SHerbert Xu } 161adcfc7d0SHerbert Xu 1621da177e4SLinus Torvalds static struct packet_type ipv6_packet_type = { 1631da177e4SLinus Torvalds .type = __constant_htons(ETH_P_IPV6), 1641da177e4SLinus Torvalds .func = ipv6_rcv, 165a430a43dSHerbert Xu .gso_send_check = ipv6_gso_send_check, 166adcfc7d0SHerbert Xu .gso_segment = ipv6_gso_segment, 1671da177e4SLinus Torvalds }; 1681da177e4SLinus Torvalds 1691da177e4SLinus Torvalds struct ip6_ra_chain *ip6_ra_chain; 1701da177e4SLinus Torvalds DEFINE_RWLOCK(ip6_ra_lock); 1711da177e4SLinus Torvalds 1721da177e4SLinus Torvalds int ip6_ra_control(struct sock *sk, int sel, void (*destructor)(struct sock *)) 1731da177e4SLinus Torvalds { 1741da177e4SLinus Torvalds struct ip6_ra_chain *ra, *new_ra, **rap; 1751da177e4SLinus Torvalds 1761da177e4SLinus Torvalds /* RA packet may be delivered ONLY to IPPROTO_RAW socket */ 1771da177e4SLinus Torvalds if (sk->sk_type != SOCK_RAW || inet_sk(sk)->num != IPPROTO_RAW) 1781da177e4SLinus Torvalds return -EINVAL; 1791da177e4SLinus Torvalds 1801da177e4SLinus Torvalds new_ra = (sel>=0) ? kmalloc(sizeof(*new_ra), GFP_KERNEL) : NULL; 1811da177e4SLinus Torvalds 1821da177e4SLinus Torvalds write_lock_bh(&ip6_ra_lock); 1831da177e4SLinus Torvalds for (rap = &ip6_ra_chain; (ra=*rap) != NULL; rap = &ra->next) { 1841da177e4SLinus Torvalds if (ra->sk == sk) { 1851da177e4SLinus Torvalds if (sel>=0) { 1861da177e4SLinus Torvalds write_unlock_bh(&ip6_ra_lock); 1871da177e4SLinus Torvalds kfree(new_ra); 1881da177e4SLinus Torvalds return -EADDRINUSE; 1891da177e4SLinus Torvalds } 1901da177e4SLinus Torvalds 1911da177e4SLinus Torvalds *rap = ra->next; 1921da177e4SLinus Torvalds write_unlock_bh(&ip6_ra_lock); 1931da177e4SLinus Torvalds 1941da177e4SLinus Torvalds if (ra->destructor) 1951da177e4SLinus Torvalds ra->destructor(sk); 1961da177e4SLinus Torvalds sock_put(sk); 1971da177e4SLinus Torvalds kfree(ra); 1981da177e4SLinus Torvalds return 0; 1991da177e4SLinus Torvalds } 2001da177e4SLinus Torvalds } 2011da177e4SLinus Torvalds if (new_ra == NULL) { 2021da177e4SLinus Torvalds write_unlock_bh(&ip6_ra_lock); 2031da177e4SLinus Torvalds return -ENOBUFS; 2041da177e4SLinus Torvalds } 2051da177e4SLinus Torvalds new_ra->sk = sk; 2061da177e4SLinus Torvalds new_ra->sel = sel; 2071da177e4SLinus Torvalds new_ra->destructor = destructor; 2081da177e4SLinus Torvalds new_ra->next = ra; 2091da177e4SLinus Torvalds *rap = new_ra; 2101da177e4SLinus Torvalds sock_hold(sk); 2111da177e4SLinus Torvalds write_unlock_bh(&ip6_ra_lock); 2121da177e4SLinus Torvalds return 0; 2131da177e4SLinus Torvalds } 2141da177e4SLinus Torvalds 2153fdadf7dSDmitry Mishin static int do_ipv6_setsockopt(struct sock *sk, int level, int optname, 2161da177e4SLinus Torvalds char __user *optval, int optlen) 2171da177e4SLinus Torvalds { 2181da177e4SLinus Torvalds struct ipv6_pinfo *np = inet6_sk(sk); 2191da177e4SLinus Torvalds int val, valbool; 2201da177e4SLinus Torvalds int retv = -ENOPROTOOPT; 2211da177e4SLinus Torvalds 2221da177e4SLinus Torvalds if (optval == NULL) 2231da177e4SLinus Torvalds val=0; 2241da177e4SLinus Torvalds else if (get_user(val, (int __user *) optval)) 2251da177e4SLinus Torvalds return -EFAULT; 2261da177e4SLinus Torvalds 2271da177e4SLinus Torvalds valbool = (val!=0); 2281da177e4SLinus Torvalds 2291da177e4SLinus Torvalds lock_sock(sk); 2301da177e4SLinus Torvalds 2311da177e4SLinus Torvalds switch (optname) { 2321da177e4SLinus Torvalds 2331da177e4SLinus Torvalds case IPV6_ADDRFORM: 2341da177e4SLinus Torvalds if (val == PF_INET) { 2351da177e4SLinus Torvalds struct ipv6_txoptions *opt; 2361da177e4SLinus Torvalds struct sk_buff *pktopt; 2371da177e4SLinus Torvalds 2381da177e4SLinus Torvalds if (sk->sk_protocol != IPPROTO_UDP && 2391da177e4SLinus Torvalds sk->sk_protocol != IPPROTO_TCP) 2401da177e4SLinus Torvalds break; 2411da177e4SLinus Torvalds 2421da177e4SLinus Torvalds if (sk->sk_state != TCP_ESTABLISHED) { 2431da177e4SLinus Torvalds retv = -ENOTCONN; 2441da177e4SLinus Torvalds break; 2451da177e4SLinus Torvalds } 2461da177e4SLinus Torvalds 2471da177e4SLinus Torvalds if (ipv6_only_sock(sk) || 2481da177e4SLinus Torvalds !(ipv6_addr_type(&np->daddr) & IPV6_ADDR_MAPPED)) { 2491da177e4SLinus Torvalds retv = -EADDRNOTAVAIL; 2501da177e4SLinus Torvalds break; 2511da177e4SLinus Torvalds } 2521da177e4SLinus Torvalds 2531da177e4SLinus Torvalds fl6_free_socklist(sk); 2541da177e4SLinus Torvalds ipv6_sock_mc_close(sk); 2551da177e4SLinus Torvalds 256e6848976SArnaldo Carvalho de Melo /* 257e6848976SArnaldo Carvalho de Melo * Sock is moving from IPv6 to IPv4 (sk_prot), so 258e6848976SArnaldo Carvalho de Melo * remove it from the refcnt debug socks count in the 259e6848976SArnaldo Carvalho de Melo * original family... 260e6848976SArnaldo Carvalho de Melo */ 261e6848976SArnaldo Carvalho de Melo sk_refcnt_debug_dec(sk); 262e6848976SArnaldo Carvalho de Melo 2631da177e4SLinus Torvalds if (sk->sk_protocol == IPPROTO_TCP) { 264d83d8461SArnaldo Carvalho de Melo struct inet_connection_sock *icsk = inet_csk(sk); 2651da177e4SLinus Torvalds 2661da177e4SLinus Torvalds local_bh_disable(); 2671da177e4SLinus Torvalds sock_prot_dec_use(sk->sk_prot); 2681da177e4SLinus Torvalds sock_prot_inc_use(&tcp_prot); 2691da177e4SLinus Torvalds local_bh_enable(); 2701da177e4SLinus Torvalds sk->sk_prot = &tcp_prot; 271d83d8461SArnaldo Carvalho de Melo icsk->icsk_af_ops = &ipv4_specific; 2721da177e4SLinus Torvalds sk->sk_socket->ops = &inet_stream_ops; 2731da177e4SLinus Torvalds sk->sk_family = PF_INET; 274d83d8461SArnaldo Carvalho de Melo tcp_sync_mss(sk, icsk->icsk_pmtu_cookie); 2751da177e4SLinus Torvalds } else { 2761da177e4SLinus Torvalds local_bh_disable(); 2771da177e4SLinus Torvalds sock_prot_dec_use(sk->sk_prot); 2781da177e4SLinus Torvalds sock_prot_inc_use(&udp_prot); 2791da177e4SLinus Torvalds local_bh_enable(); 2801da177e4SLinus Torvalds sk->sk_prot = &udp_prot; 2811da177e4SLinus Torvalds sk->sk_socket->ops = &inet_dgram_ops; 2821da177e4SLinus Torvalds sk->sk_family = PF_INET; 2831da177e4SLinus Torvalds } 2841da177e4SLinus Torvalds opt = xchg(&np->opt, NULL); 2851da177e4SLinus Torvalds if (opt) 2861da177e4SLinus Torvalds sock_kfree_s(sk, opt, opt->tot_len); 2871da177e4SLinus Torvalds pktopt = xchg(&np->pktoptions, NULL); 2881da177e4SLinus Torvalds if (pktopt) 2891da177e4SLinus Torvalds kfree_skb(pktopt); 2901da177e4SLinus Torvalds 2911da177e4SLinus Torvalds sk->sk_destruct = inet_sock_destruct; 292e6848976SArnaldo Carvalho de Melo /* 293e6848976SArnaldo Carvalho de Melo * ... and add it to the refcnt debug socks count 294e6848976SArnaldo Carvalho de Melo * in the new family. -acme 295e6848976SArnaldo Carvalho de Melo */ 296e6848976SArnaldo Carvalho de Melo sk_refcnt_debug_inc(sk); 2971da177e4SLinus Torvalds module_put(THIS_MODULE); 2981da177e4SLinus Torvalds retv = 0; 2991da177e4SLinus Torvalds break; 3001da177e4SLinus Torvalds } 3011da177e4SLinus Torvalds goto e_inval; 3021da177e4SLinus Torvalds 3031da177e4SLinus Torvalds case IPV6_V6ONLY: 3041da177e4SLinus Torvalds if (inet_sk(sk)->num) 3051da177e4SLinus Torvalds goto e_inval; 3061da177e4SLinus Torvalds np->ipv6only = valbool; 3071da177e4SLinus Torvalds retv = 0; 3081da177e4SLinus Torvalds break; 3091da177e4SLinus Torvalds 310333fad53SYOSHIFUJI Hideaki case IPV6_RECVPKTINFO: 3111da177e4SLinus Torvalds np->rxopt.bits.rxinfo = valbool; 3121da177e4SLinus Torvalds retv = 0; 3131da177e4SLinus Torvalds break; 3141da177e4SLinus Torvalds 315333fad53SYOSHIFUJI Hideaki case IPV6_2292PKTINFO: 316333fad53SYOSHIFUJI Hideaki np->rxopt.bits.rxoinfo = valbool; 317333fad53SYOSHIFUJI Hideaki retv = 0; 318333fad53SYOSHIFUJI Hideaki break; 319333fad53SYOSHIFUJI Hideaki 320333fad53SYOSHIFUJI Hideaki case IPV6_RECVHOPLIMIT: 3211da177e4SLinus Torvalds np->rxopt.bits.rxhlim = valbool; 3221da177e4SLinus Torvalds retv = 0; 3231da177e4SLinus Torvalds break; 3241da177e4SLinus Torvalds 325333fad53SYOSHIFUJI Hideaki case IPV6_2292HOPLIMIT: 326333fad53SYOSHIFUJI Hideaki np->rxopt.bits.rxohlim = valbool; 327333fad53SYOSHIFUJI Hideaki retv = 0; 328333fad53SYOSHIFUJI Hideaki break; 329333fad53SYOSHIFUJI Hideaki 330333fad53SYOSHIFUJI Hideaki case IPV6_RECVRTHDR: 3311da177e4SLinus Torvalds if (val < 0 || val > 2) 3321da177e4SLinus Torvalds goto e_inval; 3331da177e4SLinus Torvalds np->rxopt.bits.srcrt = val; 3341da177e4SLinus Torvalds retv = 0; 3351da177e4SLinus Torvalds break; 3361da177e4SLinus Torvalds 337333fad53SYOSHIFUJI Hideaki case IPV6_2292RTHDR: 338333fad53SYOSHIFUJI Hideaki if (val < 0 || val > 2) 339333fad53SYOSHIFUJI Hideaki goto e_inval; 340333fad53SYOSHIFUJI Hideaki np->rxopt.bits.osrcrt = val; 341333fad53SYOSHIFUJI Hideaki retv = 0; 342333fad53SYOSHIFUJI Hideaki break; 343333fad53SYOSHIFUJI Hideaki 344333fad53SYOSHIFUJI Hideaki case IPV6_RECVHOPOPTS: 3451da177e4SLinus Torvalds np->rxopt.bits.hopopts = valbool; 3461da177e4SLinus Torvalds retv = 0; 3471da177e4SLinus Torvalds break; 3481da177e4SLinus Torvalds 349333fad53SYOSHIFUJI Hideaki case IPV6_2292HOPOPTS: 350333fad53SYOSHIFUJI Hideaki np->rxopt.bits.ohopopts = valbool; 351333fad53SYOSHIFUJI Hideaki retv = 0; 352333fad53SYOSHIFUJI Hideaki break; 353333fad53SYOSHIFUJI Hideaki 354333fad53SYOSHIFUJI Hideaki case IPV6_RECVDSTOPTS: 3551da177e4SLinus Torvalds np->rxopt.bits.dstopts = valbool; 3561da177e4SLinus Torvalds retv = 0; 3571da177e4SLinus Torvalds break; 3581da177e4SLinus Torvalds 359333fad53SYOSHIFUJI Hideaki case IPV6_2292DSTOPTS: 360333fad53SYOSHIFUJI Hideaki np->rxopt.bits.odstopts = valbool; 361333fad53SYOSHIFUJI Hideaki retv = 0; 362333fad53SYOSHIFUJI Hideaki break; 363333fad53SYOSHIFUJI Hideaki 36441a1f8eaSYOSHIFUJI Hideaki case IPV6_TCLASS: 36541a1f8eaSYOSHIFUJI Hideaki if (val < 0 || val > 0xff) 36641a1f8eaSYOSHIFUJI Hideaki goto e_inval; 36741a1f8eaSYOSHIFUJI Hideaki np->tclass = val; 36841a1f8eaSYOSHIFUJI Hideaki retv = 0; 36941a1f8eaSYOSHIFUJI Hideaki break; 37041a1f8eaSYOSHIFUJI Hideaki 37141a1f8eaSYOSHIFUJI Hideaki case IPV6_RECVTCLASS: 37241a1f8eaSYOSHIFUJI Hideaki np->rxopt.bits.rxtclass = valbool; 37341a1f8eaSYOSHIFUJI Hideaki retv = 0; 37441a1f8eaSYOSHIFUJI Hideaki break; 37541a1f8eaSYOSHIFUJI Hideaki 3761da177e4SLinus Torvalds case IPV6_FLOWINFO: 3771da177e4SLinus Torvalds np->rxopt.bits.rxflow = valbool; 3781da177e4SLinus Torvalds retv = 0; 3791da177e4SLinus Torvalds break; 3801da177e4SLinus Torvalds 381333fad53SYOSHIFUJI Hideaki case IPV6_HOPOPTS: 382333fad53SYOSHIFUJI Hideaki case IPV6_RTHDRDSTOPTS: 383333fad53SYOSHIFUJI Hideaki case IPV6_RTHDR: 384333fad53SYOSHIFUJI Hideaki case IPV6_DSTOPTS: 385333fad53SYOSHIFUJI Hideaki { 386333fad53SYOSHIFUJI Hideaki struct ipv6_txoptions *opt; 387333fad53SYOSHIFUJI Hideaki if (optlen == 0) 388cb422c46SLuiz Capitulino optval = NULL; 389333fad53SYOSHIFUJI Hideaki 390333fad53SYOSHIFUJI Hideaki /* hop-by-hop / destination options are privileged option */ 391333fad53SYOSHIFUJI Hideaki retv = -EPERM; 392333fad53SYOSHIFUJI Hideaki if (optname != IPV6_RTHDR && !capable(CAP_NET_RAW)) 393333fad53SYOSHIFUJI Hideaki break; 394333fad53SYOSHIFUJI Hideaki 395333fad53SYOSHIFUJI Hideaki retv = -EINVAL; 396333fad53SYOSHIFUJI Hideaki if (optlen & 0x7 || optlen > 8 * 255) 397333fad53SYOSHIFUJI Hideaki break; 398333fad53SYOSHIFUJI Hideaki 399333fad53SYOSHIFUJI Hideaki opt = ipv6_renew_options(sk, np->opt, optname, 400333fad53SYOSHIFUJI Hideaki (struct ipv6_opt_hdr __user *)optval, 401333fad53SYOSHIFUJI Hideaki optlen); 402333fad53SYOSHIFUJI Hideaki if (IS_ERR(opt)) { 403333fad53SYOSHIFUJI Hideaki retv = PTR_ERR(opt); 404333fad53SYOSHIFUJI Hideaki break; 405333fad53SYOSHIFUJI Hideaki } 406333fad53SYOSHIFUJI Hideaki 407333fad53SYOSHIFUJI Hideaki /* routing header option needs extra check */ 408333fad53SYOSHIFUJI Hideaki if (optname == IPV6_RTHDR && opt->srcrt) { 409333fad53SYOSHIFUJI Hideaki struct ipv6_rt_hdr *rthdr = opt->srcrt; 410333fad53SYOSHIFUJI Hideaki if (rthdr->type) 411333fad53SYOSHIFUJI Hideaki goto sticky_done; 412333fad53SYOSHIFUJI Hideaki if ((rthdr->hdrlen & 1) || 413333fad53SYOSHIFUJI Hideaki (rthdr->hdrlen >> 1) != rthdr->segments_left) 414333fad53SYOSHIFUJI Hideaki goto sticky_done; 415333fad53SYOSHIFUJI Hideaki } 416333fad53SYOSHIFUJI Hideaki 417333fad53SYOSHIFUJI Hideaki retv = 0; 418d83d8461SArnaldo Carvalho de Melo if (inet_sk(sk)->is_icsk) { 419333fad53SYOSHIFUJI Hideaki if (opt) { 420d83d8461SArnaldo Carvalho de Melo struct inet_connection_sock *icsk = inet_csk(sk); 421333fad53SYOSHIFUJI Hideaki if (!((1 << sk->sk_state) & 422333fad53SYOSHIFUJI Hideaki (TCPF_LISTEN | TCPF_CLOSE)) 423333fad53SYOSHIFUJI Hideaki && inet_sk(sk)->daddr != LOOPBACK4_IPV6) { 424d83d8461SArnaldo Carvalho de Melo icsk->icsk_ext_hdr_len = 425d83d8461SArnaldo Carvalho de Melo opt->opt_flen + opt->opt_nflen; 426d83d8461SArnaldo Carvalho de Melo icsk->icsk_sync_mss(sk, icsk->icsk_pmtu_cookie); 427333fad53SYOSHIFUJI Hideaki } 428333fad53SYOSHIFUJI Hideaki } 429333fad53SYOSHIFUJI Hideaki opt = xchg(&np->opt, opt); 430333fad53SYOSHIFUJI Hideaki sk_dst_reset(sk); 431333fad53SYOSHIFUJI Hideaki } else { 432333fad53SYOSHIFUJI Hideaki write_lock(&sk->sk_dst_lock); 433333fad53SYOSHIFUJI Hideaki opt = xchg(&np->opt, opt); 434333fad53SYOSHIFUJI Hideaki write_unlock(&sk->sk_dst_lock); 435333fad53SYOSHIFUJI Hideaki sk_dst_reset(sk); 436333fad53SYOSHIFUJI Hideaki } 437333fad53SYOSHIFUJI Hideaki sticky_done: 438333fad53SYOSHIFUJI Hideaki if (opt) 439333fad53SYOSHIFUJI Hideaki sock_kfree_s(sk, opt, opt->tot_len); 440333fad53SYOSHIFUJI Hideaki break; 441333fad53SYOSHIFUJI Hideaki } 442333fad53SYOSHIFUJI Hideaki 443333fad53SYOSHIFUJI Hideaki case IPV6_2292PKTOPTIONS: 4441da177e4SLinus Torvalds { 4451da177e4SLinus Torvalds struct ipv6_txoptions *opt = NULL; 4461da177e4SLinus Torvalds struct msghdr msg; 4471da177e4SLinus Torvalds struct flowi fl; 4481da177e4SLinus Torvalds int junk; 4491da177e4SLinus Torvalds 4501da177e4SLinus Torvalds fl.fl6_flowlabel = 0; 4511da177e4SLinus Torvalds fl.oif = sk->sk_bound_dev_if; 4521da177e4SLinus Torvalds 4531da177e4SLinus Torvalds if (optlen == 0) 4541da177e4SLinus Torvalds goto update; 4551da177e4SLinus Torvalds 4561da177e4SLinus Torvalds /* 1K is probably excessive 4571da177e4SLinus Torvalds * 1K is surely not enough, 2K per standard header is 16K. 4581da177e4SLinus Torvalds */ 4591da177e4SLinus Torvalds retv = -EINVAL; 4601da177e4SLinus Torvalds if (optlen > 64*1024) 4611da177e4SLinus Torvalds break; 4621da177e4SLinus Torvalds 4631da177e4SLinus Torvalds opt = sock_kmalloc(sk, sizeof(*opt) + optlen, GFP_KERNEL); 4641da177e4SLinus Torvalds retv = -ENOBUFS; 4651da177e4SLinus Torvalds if (opt == NULL) 4661da177e4SLinus Torvalds break; 4671da177e4SLinus Torvalds 4681da177e4SLinus Torvalds memset(opt, 0, sizeof(*opt)); 4691da177e4SLinus Torvalds opt->tot_len = sizeof(*opt) + optlen; 4701da177e4SLinus Torvalds retv = -EFAULT; 4711da177e4SLinus Torvalds if (copy_from_user(opt+1, optval, optlen)) 4721da177e4SLinus Torvalds goto done; 4731da177e4SLinus Torvalds 4741da177e4SLinus Torvalds msg.msg_controllen = optlen; 4751da177e4SLinus Torvalds msg.msg_control = (void*)(opt+1); 4761da177e4SLinus Torvalds 47741a1f8eaSYOSHIFUJI Hideaki retv = datagram_send_ctl(&msg, &fl, opt, &junk, &junk); 4781da177e4SLinus Torvalds if (retv) 4791da177e4SLinus Torvalds goto done; 4801da177e4SLinus Torvalds update: 4811da177e4SLinus Torvalds retv = 0; 482d83d8461SArnaldo Carvalho de Melo if (inet_sk(sk)->is_icsk) { 4831da177e4SLinus Torvalds if (opt) { 484d83d8461SArnaldo Carvalho de Melo struct inet_connection_sock *icsk = inet_csk(sk); 4851da177e4SLinus Torvalds if (!((1 << sk->sk_state) & 4861da177e4SLinus Torvalds (TCPF_LISTEN | TCPF_CLOSE)) 4871da177e4SLinus Torvalds && inet_sk(sk)->daddr != LOOPBACK4_IPV6) { 488d83d8461SArnaldo Carvalho de Melo icsk->icsk_ext_hdr_len = 489d83d8461SArnaldo Carvalho de Melo opt->opt_flen + opt->opt_nflen; 490d83d8461SArnaldo Carvalho de Melo icsk->icsk_sync_mss(sk, icsk->icsk_pmtu_cookie); 4911da177e4SLinus Torvalds } 4921da177e4SLinus Torvalds } 4931da177e4SLinus Torvalds opt = xchg(&np->opt, opt); 4941da177e4SLinus Torvalds sk_dst_reset(sk); 4951da177e4SLinus Torvalds } else { 4961da177e4SLinus Torvalds write_lock(&sk->sk_dst_lock); 4971da177e4SLinus Torvalds opt = xchg(&np->opt, opt); 4981da177e4SLinus Torvalds write_unlock(&sk->sk_dst_lock); 4991da177e4SLinus Torvalds sk_dst_reset(sk); 5001da177e4SLinus Torvalds } 5011da177e4SLinus Torvalds 5021da177e4SLinus Torvalds done: 5031da177e4SLinus Torvalds if (opt) 5041da177e4SLinus Torvalds sock_kfree_s(sk, opt, opt->tot_len); 5051da177e4SLinus Torvalds break; 5061da177e4SLinus Torvalds } 5071da177e4SLinus Torvalds case IPV6_UNICAST_HOPS: 5081da177e4SLinus Torvalds if (val > 255 || val < -1) 5091da177e4SLinus Torvalds goto e_inval; 5101da177e4SLinus Torvalds np->hop_limit = val; 5111da177e4SLinus Torvalds retv = 0; 5121da177e4SLinus Torvalds break; 5131da177e4SLinus Torvalds 5141da177e4SLinus Torvalds case IPV6_MULTICAST_HOPS: 5151da177e4SLinus Torvalds if (sk->sk_type == SOCK_STREAM) 5161da177e4SLinus Torvalds goto e_inval; 5171da177e4SLinus Torvalds if (val > 255 || val < -1) 5181da177e4SLinus Torvalds goto e_inval; 5191da177e4SLinus Torvalds np->mcast_hops = val; 5201da177e4SLinus Torvalds retv = 0; 5211da177e4SLinus Torvalds break; 5221da177e4SLinus Torvalds 5231da177e4SLinus Torvalds case IPV6_MULTICAST_LOOP: 5241da177e4SLinus Torvalds np->mc_loop = valbool; 5251da177e4SLinus Torvalds retv = 0; 5261da177e4SLinus Torvalds break; 5271da177e4SLinus Torvalds 5281da177e4SLinus Torvalds case IPV6_MULTICAST_IF: 5291da177e4SLinus Torvalds if (sk->sk_type == SOCK_STREAM) 5301da177e4SLinus Torvalds goto e_inval; 5311da177e4SLinus Torvalds if (sk->sk_bound_dev_if && sk->sk_bound_dev_if != val) 5321da177e4SLinus Torvalds goto e_inval; 5331da177e4SLinus Torvalds 5341da177e4SLinus Torvalds if (__dev_get_by_index(val) == NULL) { 5351da177e4SLinus Torvalds retv = -ENODEV; 5361da177e4SLinus Torvalds break; 5371da177e4SLinus Torvalds } 5381da177e4SLinus Torvalds np->mcast_oif = val; 5391da177e4SLinus Torvalds retv = 0; 5401da177e4SLinus Torvalds break; 5411da177e4SLinus Torvalds case IPV6_ADD_MEMBERSHIP: 5421da177e4SLinus Torvalds case IPV6_DROP_MEMBERSHIP: 5431da177e4SLinus Torvalds { 5441da177e4SLinus Torvalds struct ipv6_mreq mreq; 5451da177e4SLinus Torvalds 5461da177e4SLinus Torvalds retv = -EFAULT; 5471da177e4SLinus Torvalds if (copy_from_user(&mreq, optval, sizeof(struct ipv6_mreq))) 5481da177e4SLinus Torvalds break; 5491da177e4SLinus Torvalds 5501da177e4SLinus Torvalds if (optname == IPV6_ADD_MEMBERSHIP) 5511da177e4SLinus Torvalds retv = ipv6_sock_mc_join(sk, mreq.ipv6mr_ifindex, &mreq.ipv6mr_multiaddr); 5521da177e4SLinus Torvalds else 5531da177e4SLinus Torvalds retv = ipv6_sock_mc_drop(sk, mreq.ipv6mr_ifindex, &mreq.ipv6mr_multiaddr); 5541da177e4SLinus Torvalds break; 5551da177e4SLinus Torvalds } 5561da177e4SLinus Torvalds case IPV6_JOIN_ANYCAST: 5571da177e4SLinus Torvalds case IPV6_LEAVE_ANYCAST: 5581da177e4SLinus Torvalds { 5591da177e4SLinus Torvalds struct ipv6_mreq mreq; 5601da177e4SLinus Torvalds 5611da177e4SLinus Torvalds if (optlen != sizeof(struct ipv6_mreq)) 5621da177e4SLinus Torvalds goto e_inval; 5631da177e4SLinus Torvalds 5641da177e4SLinus Torvalds retv = -EFAULT; 5651da177e4SLinus Torvalds if (copy_from_user(&mreq, optval, sizeof(struct ipv6_mreq))) 5661da177e4SLinus Torvalds break; 5671da177e4SLinus Torvalds 5681da177e4SLinus Torvalds if (optname == IPV6_JOIN_ANYCAST) 5691da177e4SLinus Torvalds retv = ipv6_sock_ac_join(sk, mreq.ipv6mr_ifindex, &mreq.ipv6mr_acaddr); 5701da177e4SLinus Torvalds else 5711da177e4SLinus Torvalds retv = ipv6_sock_ac_drop(sk, mreq.ipv6mr_ifindex, &mreq.ipv6mr_acaddr); 5721da177e4SLinus Torvalds break; 5731da177e4SLinus Torvalds } 5741da177e4SLinus Torvalds case MCAST_JOIN_GROUP: 5751da177e4SLinus Torvalds case MCAST_LEAVE_GROUP: 5761da177e4SLinus Torvalds { 5771da177e4SLinus Torvalds struct group_req greq; 5781da177e4SLinus Torvalds struct sockaddr_in6 *psin6; 5791da177e4SLinus Torvalds 5801da177e4SLinus Torvalds retv = -EFAULT; 5811da177e4SLinus Torvalds if (copy_from_user(&greq, optval, sizeof(struct group_req))) 5821da177e4SLinus Torvalds break; 5831da177e4SLinus Torvalds if (greq.gr_group.ss_family != AF_INET6) { 5841da177e4SLinus Torvalds retv = -EADDRNOTAVAIL; 5851da177e4SLinus Torvalds break; 5861da177e4SLinus Torvalds } 5871da177e4SLinus Torvalds psin6 = (struct sockaddr_in6 *)&greq.gr_group; 5881da177e4SLinus Torvalds if (optname == MCAST_JOIN_GROUP) 5891da177e4SLinus Torvalds retv = ipv6_sock_mc_join(sk, greq.gr_interface, 5901da177e4SLinus Torvalds &psin6->sin6_addr); 5911da177e4SLinus Torvalds else 5921da177e4SLinus Torvalds retv = ipv6_sock_mc_drop(sk, greq.gr_interface, 5931da177e4SLinus Torvalds &psin6->sin6_addr); 5941da177e4SLinus Torvalds break; 5951da177e4SLinus Torvalds } 5961da177e4SLinus Torvalds case MCAST_JOIN_SOURCE_GROUP: 5971da177e4SLinus Torvalds case MCAST_LEAVE_SOURCE_GROUP: 5981da177e4SLinus Torvalds case MCAST_BLOCK_SOURCE: 5991da177e4SLinus Torvalds case MCAST_UNBLOCK_SOURCE: 6001da177e4SLinus Torvalds { 6011da177e4SLinus Torvalds struct group_source_req greqs; 6021da177e4SLinus Torvalds int omode, add; 6031da177e4SLinus Torvalds 6041da177e4SLinus Torvalds if (optlen != sizeof(struct group_source_req)) 6051da177e4SLinus Torvalds goto e_inval; 6061da177e4SLinus Torvalds if (copy_from_user(&greqs, optval, sizeof(greqs))) { 6071da177e4SLinus Torvalds retv = -EFAULT; 6081da177e4SLinus Torvalds break; 6091da177e4SLinus Torvalds } 6101da177e4SLinus Torvalds if (greqs.gsr_group.ss_family != AF_INET6 || 6111da177e4SLinus Torvalds greqs.gsr_source.ss_family != AF_INET6) { 6121da177e4SLinus Torvalds retv = -EADDRNOTAVAIL; 6131da177e4SLinus Torvalds break; 6141da177e4SLinus Torvalds } 6151da177e4SLinus Torvalds if (optname == MCAST_BLOCK_SOURCE) { 6161da177e4SLinus Torvalds omode = MCAST_EXCLUDE; 6171da177e4SLinus Torvalds add = 1; 6181da177e4SLinus Torvalds } else if (optname == MCAST_UNBLOCK_SOURCE) { 6191da177e4SLinus Torvalds omode = MCAST_EXCLUDE; 6201da177e4SLinus Torvalds add = 0; 6211da177e4SLinus Torvalds } else if (optname == MCAST_JOIN_SOURCE_GROUP) { 6221da177e4SLinus Torvalds struct sockaddr_in6 *psin6; 6231da177e4SLinus Torvalds 6241da177e4SLinus Torvalds psin6 = (struct sockaddr_in6 *)&greqs.gsr_group; 6251da177e4SLinus Torvalds retv = ipv6_sock_mc_join(sk, greqs.gsr_interface, 6261da177e4SLinus Torvalds &psin6->sin6_addr); 627c9e3e8b6SDavid L Stevens /* prior join w/ different source is ok */ 628c9e3e8b6SDavid L Stevens if (retv && retv != -EADDRINUSE) 6291da177e4SLinus Torvalds break; 6301da177e4SLinus Torvalds omode = MCAST_INCLUDE; 6311da177e4SLinus Torvalds add = 1; 632c9e3e8b6SDavid L Stevens } else /* MCAST_LEAVE_SOURCE_GROUP */ { 6331da177e4SLinus Torvalds omode = MCAST_INCLUDE; 6341da177e4SLinus Torvalds add = 0; 6351da177e4SLinus Torvalds } 6361da177e4SLinus Torvalds retv = ip6_mc_source(add, omode, sk, &greqs); 6371da177e4SLinus Torvalds break; 6381da177e4SLinus Torvalds } 6391da177e4SLinus Torvalds case MCAST_MSFILTER: 6401da177e4SLinus Torvalds { 6411da177e4SLinus Torvalds extern int sysctl_mld_max_msf; 6421da177e4SLinus Torvalds struct group_filter *gsf; 6431da177e4SLinus Torvalds 6441da177e4SLinus Torvalds if (optlen < GROUP_FILTER_SIZE(0)) 6451da177e4SLinus Torvalds goto e_inval; 6461da177e4SLinus Torvalds if (optlen > sysctl_optmem_max) { 6471da177e4SLinus Torvalds retv = -ENOBUFS; 6481da177e4SLinus Torvalds break; 6491da177e4SLinus Torvalds } 6508b3a7005SKris Katterjohn gsf = kmalloc(optlen,GFP_KERNEL); 6511da177e4SLinus Torvalds if (gsf == 0) { 6521da177e4SLinus Torvalds retv = -ENOBUFS; 6531da177e4SLinus Torvalds break; 6541da177e4SLinus Torvalds } 6551da177e4SLinus Torvalds retv = -EFAULT; 6561da177e4SLinus Torvalds if (copy_from_user(gsf, optval, optlen)) { 6571da177e4SLinus Torvalds kfree(gsf); 6581da177e4SLinus Torvalds break; 6591da177e4SLinus Torvalds } 6601da177e4SLinus Torvalds /* numsrc >= (4G-140)/128 overflow in 32 bits */ 6611da177e4SLinus Torvalds if (gsf->gf_numsrc >= 0x1ffffffU || 6621da177e4SLinus Torvalds gsf->gf_numsrc > sysctl_mld_max_msf) { 6631da177e4SLinus Torvalds kfree(gsf); 6641da177e4SLinus Torvalds retv = -ENOBUFS; 6651da177e4SLinus Torvalds break; 6661da177e4SLinus Torvalds } 6671da177e4SLinus Torvalds if (GROUP_FILTER_SIZE(gsf->gf_numsrc) > optlen) { 6681da177e4SLinus Torvalds kfree(gsf); 6691da177e4SLinus Torvalds retv = -EINVAL; 6701da177e4SLinus Torvalds break; 6711da177e4SLinus Torvalds } 6721da177e4SLinus Torvalds retv = ip6_mc_msfilter(sk, gsf); 6731da177e4SLinus Torvalds kfree(gsf); 6741da177e4SLinus Torvalds 6751da177e4SLinus Torvalds break; 6761da177e4SLinus Torvalds } 6771da177e4SLinus Torvalds case IPV6_ROUTER_ALERT: 6781da177e4SLinus Torvalds retv = ip6_ra_control(sk, val, NULL); 6791da177e4SLinus Torvalds break; 6801da177e4SLinus Torvalds case IPV6_MTU_DISCOVER: 6811da177e4SLinus Torvalds if (val<0 || val>2) 6821da177e4SLinus Torvalds goto e_inval; 6831da177e4SLinus Torvalds np->pmtudisc = val; 6841da177e4SLinus Torvalds retv = 0; 6851da177e4SLinus Torvalds break; 6861da177e4SLinus Torvalds case IPV6_MTU: 6871da177e4SLinus Torvalds if (val && val < IPV6_MIN_MTU) 6881da177e4SLinus Torvalds goto e_inval; 6891da177e4SLinus Torvalds np->frag_size = val; 6901da177e4SLinus Torvalds retv = 0; 6911da177e4SLinus Torvalds break; 6921da177e4SLinus Torvalds case IPV6_RECVERR: 6931da177e4SLinus Torvalds np->recverr = valbool; 6941da177e4SLinus Torvalds if (!val) 6951da177e4SLinus Torvalds skb_queue_purge(&sk->sk_error_queue); 6961da177e4SLinus Torvalds retv = 0; 6971da177e4SLinus Torvalds break; 6981da177e4SLinus Torvalds case IPV6_FLOWINFO_SEND: 6991da177e4SLinus Torvalds np->sndflow = valbool; 7001da177e4SLinus Torvalds retv = 0; 7011da177e4SLinus Torvalds break; 7021da177e4SLinus Torvalds case IPV6_FLOWLABEL_MGR: 7031da177e4SLinus Torvalds retv = ipv6_flowlabel_opt(sk, optval, optlen); 7041da177e4SLinus Torvalds break; 7051da177e4SLinus Torvalds case IPV6_IPSEC_POLICY: 7061da177e4SLinus Torvalds case IPV6_XFRM_POLICY: 7076fc0b4a7SHerbert Xu retv = -EPERM; 7086fc0b4a7SHerbert Xu if (!capable(CAP_NET_ADMIN)) 7096fc0b4a7SHerbert Xu break; 7101da177e4SLinus Torvalds retv = xfrm_user_policy(sk, optname, optval, optlen); 7111da177e4SLinus Torvalds break; 7121da177e4SLinus Torvalds 7131da177e4SLinus Torvalds } 7141da177e4SLinus Torvalds release_sock(sk); 7151da177e4SLinus Torvalds 7161da177e4SLinus Torvalds return retv; 7171da177e4SLinus Torvalds 7181da177e4SLinus Torvalds e_inval: 7191da177e4SLinus Torvalds release_sock(sk); 7201da177e4SLinus Torvalds return -EINVAL; 7211da177e4SLinus Torvalds } 7221da177e4SLinus Torvalds 7233fdadf7dSDmitry Mishin int ipv6_setsockopt(struct sock *sk, int level, int optname, 7243fdadf7dSDmitry Mishin char __user *optval, int optlen) 7253fdadf7dSDmitry Mishin { 7263fdadf7dSDmitry Mishin int err; 7273fdadf7dSDmitry Mishin 7283fdadf7dSDmitry Mishin if (level == SOL_IP && sk->sk_type != SOCK_RAW) 7293fdadf7dSDmitry Mishin return udp_prot.setsockopt(sk, level, optname, optval, optlen); 7303fdadf7dSDmitry Mishin 7313fdadf7dSDmitry Mishin if (level != SOL_IPV6) 7323fdadf7dSDmitry Mishin return -ENOPROTOOPT; 7333fdadf7dSDmitry Mishin 7343fdadf7dSDmitry Mishin err = do_ipv6_setsockopt(sk, level, optname, optval, optlen); 7353fdadf7dSDmitry Mishin #ifdef CONFIG_NETFILTER 7363fdadf7dSDmitry Mishin /* we need to exclude all possible ENOPROTOOPTs except default case */ 7373fdadf7dSDmitry Mishin if (err == -ENOPROTOOPT && optname != IPV6_IPSEC_POLICY && 7383fdadf7dSDmitry Mishin optname != IPV6_XFRM_POLICY) { 7393fdadf7dSDmitry Mishin lock_sock(sk); 7403fdadf7dSDmitry Mishin err = nf_setsockopt(sk, PF_INET6, optname, optval, 7413fdadf7dSDmitry Mishin optlen); 7423fdadf7dSDmitry Mishin release_sock(sk); 7433fdadf7dSDmitry Mishin } 7443fdadf7dSDmitry Mishin #endif 7453fdadf7dSDmitry Mishin return err; 7463fdadf7dSDmitry Mishin } 7473fdadf7dSDmitry Mishin 7483fdadf7dSDmitry Mishin 7493fdadf7dSDmitry Mishin #ifdef CONFIG_COMPAT 7503fdadf7dSDmitry Mishin int compat_ipv6_setsockopt(struct sock *sk, int level, int optname, 7513fdadf7dSDmitry Mishin char __user *optval, int optlen) 7523fdadf7dSDmitry Mishin { 7533fdadf7dSDmitry Mishin int err; 7543fdadf7dSDmitry Mishin 7553fdadf7dSDmitry Mishin if (level == SOL_IP && sk->sk_type != SOCK_RAW) { 756543d9cfeSArnaldo Carvalho de Melo if (udp_prot.compat_setsockopt != NULL) 757543d9cfeSArnaldo Carvalho de Melo return udp_prot.compat_setsockopt(sk, level, optname, 758543d9cfeSArnaldo Carvalho de Melo optval, optlen); 759543d9cfeSArnaldo Carvalho de Melo return udp_prot.setsockopt(sk, level, optname, optval, optlen); 7603fdadf7dSDmitry Mishin } 7613fdadf7dSDmitry Mishin 7623fdadf7dSDmitry Mishin if (level != SOL_IPV6) 7633fdadf7dSDmitry Mishin return -ENOPROTOOPT; 7643fdadf7dSDmitry Mishin 7653fdadf7dSDmitry Mishin err = do_ipv6_setsockopt(sk, level, optname, optval, optlen); 7663fdadf7dSDmitry Mishin #ifdef CONFIG_NETFILTER 7673fdadf7dSDmitry Mishin /* we need to exclude all possible ENOPROTOOPTs except default case */ 7683fdadf7dSDmitry Mishin if (err == -ENOPROTOOPT && optname != IPV6_IPSEC_POLICY && 7693fdadf7dSDmitry Mishin optname != IPV6_XFRM_POLICY) { 7703fdadf7dSDmitry Mishin lock_sock(sk); 771543d9cfeSArnaldo Carvalho de Melo err = compat_nf_setsockopt(sk, PF_INET6, optname, 772543d9cfeSArnaldo Carvalho de Melo optval, optlen); 7733fdadf7dSDmitry Mishin release_sock(sk); 7743fdadf7dSDmitry Mishin } 7753fdadf7dSDmitry Mishin #endif 7763fdadf7dSDmitry Mishin return err; 7773fdadf7dSDmitry Mishin } 778543d9cfeSArnaldo Carvalho de Melo 779543d9cfeSArnaldo Carvalho de Melo EXPORT_SYMBOL(compat_ipv6_setsockopt); 7803fdadf7dSDmitry Mishin #endif 7813fdadf7dSDmitry Mishin 78234a0b3cdSAdrian Bunk static int ipv6_getsockopt_sticky(struct sock *sk, struct ipv6_opt_hdr *hdr, 783333fad53SYOSHIFUJI Hideaki char __user *optval, int len) 784333fad53SYOSHIFUJI Hideaki { 785333fad53SYOSHIFUJI Hideaki if (!hdr) 786333fad53SYOSHIFUJI Hideaki return 0; 787333fad53SYOSHIFUJI Hideaki len = min_t(int, len, ipv6_optlen(hdr)); 788333fad53SYOSHIFUJI Hideaki if (copy_to_user(optval, hdr, ipv6_optlen(hdr))) 789333fad53SYOSHIFUJI Hideaki return -EFAULT; 790333fad53SYOSHIFUJI Hideaki return len; 791333fad53SYOSHIFUJI Hideaki } 792333fad53SYOSHIFUJI Hideaki 7933fdadf7dSDmitry Mishin static int do_ipv6_getsockopt(struct sock *sk, int level, int optname, 7941da177e4SLinus Torvalds char __user *optval, int __user *optlen) 7951da177e4SLinus Torvalds { 7961da177e4SLinus Torvalds struct ipv6_pinfo *np = inet6_sk(sk); 7971da177e4SLinus Torvalds int len; 7981da177e4SLinus Torvalds int val; 7991da177e4SLinus Torvalds 8001da177e4SLinus Torvalds if (get_user(len, optlen)) 8011da177e4SLinus Torvalds return -EFAULT; 8021da177e4SLinus Torvalds switch (optname) { 8031da177e4SLinus Torvalds case IPV6_ADDRFORM: 8041da177e4SLinus Torvalds if (sk->sk_protocol != IPPROTO_UDP && 8051da177e4SLinus Torvalds sk->sk_protocol != IPPROTO_TCP) 8061da177e4SLinus Torvalds return -EINVAL; 8071da177e4SLinus Torvalds if (sk->sk_state != TCP_ESTABLISHED) 8081da177e4SLinus Torvalds return -ENOTCONN; 8091da177e4SLinus Torvalds val = sk->sk_family; 8101da177e4SLinus Torvalds break; 8111da177e4SLinus Torvalds case MCAST_MSFILTER: 8121da177e4SLinus Torvalds { 8131da177e4SLinus Torvalds struct group_filter gsf; 8141da177e4SLinus Torvalds int err; 8151da177e4SLinus Torvalds 8161da177e4SLinus Torvalds if (len < GROUP_FILTER_SIZE(0)) 8171da177e4SLinus Torvalds return -EINVAL; 8181da177e4SLinus Torvalds if (copy_from_user(&gsf, optval, GROUP_FILTER_SIZE(0))) 8191da177e4SLinus Torvalds return -EFAULT; 8201da177e4SLinus Torvalds lock_sock(sk); 8211da177e4SLinus Torvalds err = ip6_mc_msfget(sk, &gsf, 8221da177e4SLinus Torvalds (struct group_filter __user *)optval, optlen); 8231da177e4SLinus Torvalds release_sock(sk); 8241da177e4SLinus Torvalds return err; 8251da177e4SLinus Torvalds } 8261da177e4SLinus Torvalds 827333fad53SYOSHIFUJI Hideaki case IPV6_2292PKTOPTIONS: 8281da177e4SLinus Torvalds { 8291da177e4SLinus Torvalds struct msghdr msg; 8301da177e4SLinus Torvalds struct sk_buff *skb; 8311da177e4SLinus Torvalds 8321da177e4SLinus Torvalds if (sk->sk_type != SOCK_STREAM) 8331da177e4SLinus Torvalds return -ENOPROTOOPT; 8341da177e4SLinus Torvalds 8351da177e4SLinus Torvalds msg.msg_control = optval; 8361da177e4SLinus Torvalds msg.msg_controllen = len; 8371da177e4SLinus Torvalds msg.msg_flags = 0; 8381da177e4SLinus Torvalds 8391da177e4SLinus Torvalds lock_sock(sk); 8401da177e4SLinus Torvalds skb = np->pktoptions; 8411da177e4SLinus Torvalds if (skb) 8421da177e4SLinus Torvalds atomic_inc(&skb->users); 8431da177e4SLinus Torvalds release_sock(sk); 8441da177e4SLinus Torvalds 8451da177e4SLinus Torvalds if (skb) { 8461da177e4SLinus Torvalds int err = datagram_recv_ctl(sk, &msg, skb); 8471da177e4SLinus Torvalds kfree_skb(skb); 8481da177e4SLinus Torvalds if (err) 8491da177e4SLinus Torvalds return err; 8501da177e4SLinus Torvalds } else { 8511da177e4SLinus Torvalds if (np->rxopt.bits.rxinfo) { 8521da177e4SLinus Torvalds struct in6_pktinfo src_info; 8531da177e4SLinus Torvalds src_info.ipi6_ifindex = np->mcast_oif; 8541da177e4SLinus Torvalds ipv6_addr_copy(&src_info.ipi6_addr, &np->daddr); 8551da177e4SLinus Torvalds put_cmsg(&msg, SOL_IPV6, IPV6_PKTINFO, sizeof(src_info), &src_info); 8561da177e4SLinus Torvalds } 8571da177e4SLinus Torvalds if (np->rxopt.bits.rxhlim) { 8581da177e4SLinus Torvalds int hlim = np->mcast_hops; 8591da177e4SLinus Torvalds put_cmsg(&msg, SOL_IPV6, IPV6_HOPLIMIT, sizeof(hlim), &hlim); 8601da177e4SLinus Torvalds } 861333fad53SYOSHIFUJI Hideaki if (np->rxopt.bits.rxoinfo) { 862333fad53SYOSHIFUJI Hideaki struct in6_pktinfo src_info; 863333fad53SYOSHIFUJI Hideaki src_info.ipi6_ifindex = np->mcast_oif; 864333fad53SYOSHIFUJI Hideaki ipv6_addr_copy(&src_info.ipi6_addr, &np->daddr); 865333fad53SYOSHIFUJI Hideaki put_cmsg(&msg, SOL_IPV6, IPV6_2292PKTINFO, sizeof(src_info), &src_info); 866333fad53SYOSHIFUJI Hideaki } 867333fad53SYOSHIFUJI Hideaki if (np->rxopt.bits.rxohlim) { 868333fad53SYOSHIFUJI Hideaki int hlim = np->mcast_hops; 869333fad53SYOSHIFUJI Hideaki put_cmsg(&msg, SOL_IPV6, IPV6_2292HOPLIMIT, sizeof(hlim), &hlim); 870333fad53SYOSHIFUJI Hideaki } 8711da177e4SLinus Torvalds } 8721da177e4SLinus Torvalds len -= msg.msg_controllen; 8731da177e4SLinus Torvalds return put_user(len, optlen); 8741da177e4SLinus Torvalds } 8751da177e4SLinus Torvalds case IPV6_MTU: 8761da177e4SLinus Torvalds { 8771da177e4SLinus Torvalds struct dst_entry *dst; 8781da177e4SLinus Torvalds val = 0; 8791da177e4SLinus Torvalds lock_sock(sk); 8801da177e4SLinus Torvalds dst = sk_dst_get(sk); 8811da177e4SLinus Torvalds if (dst) { 8821da177e4SLinus Torvalds val = dst_mtu(dst); 8831da177e4SLinus Torvalds dst_release(dst); 8841da177e4SLinus Torvalds } 8851da177e4SLinus Torvalds release_sock(sk); 8861da177e4SLinus Torvalds if (!val) 8871da177e4SLinus Torvalds return -ENOTCONN; 8881da177e4SLinus Torvalds break; 8891da177e4SLinus Torvalds } 8901da177e4SLinus Torvalds 8911da177e4SLinus Torvalds case IPV6_V6ONLY: 8921da177e4SLinus Torvalds val = np->ipv6only; 8931da177e4SLinus Torvalds break; 8941da177e4SLinus Torvalds 895333fad53SYOSHIFUJI Hideaki case IPV6_RECVPKTINFO: 8961da177e4SLinus Torvalds val = np->rxopt.bits.rxinfo; 8971da177e4SLinus Torvalds break; 8981da177e4SLinus Torvalds 899333fad53SYOSHIFUJI Hideaki case IPV6_2292PKTINFO: 900333fad53SYOSHIFUJI Hideaki val = np->rxopt.bits.rxoinfo; 901333fad53SYOSHIFUJI Hideaki break; 902333fad53SYOSHIFUJI Hideaki 903333fad53SYOSHIFUJI Hideaki case IPV6_RECVHOPLIMIT: 9041da177e4SLinus Torvalds val = np->rxopt.bits.rxhlim; 9051da177e4SLinus Torvalds break; 9061da177e4SLinus Torvalds 907333fad53SYOSHIFUJI Hideaki case IPV6_2292HOPLIMIT: 908333fad53SYOSHIFUJI Hideaki val = np->rxopt.bits.rxohlim; 909333fad53SYOSHIFUJI Hideaki break; 910333fad53SYOSHIFUJI Hideaki 911333fad53SYOSHIFUJI Hideaki case IPV6_RECVRTHDR: 9121da177e4SLinus Torvalds val = np->rxopt.bits.srcrt; 9131da177e4SLinus Torvalds break; 9141da177e4SLinus Torvalds 915333fad53SYOSHIFUJI Hideaki case IPV6_2292RTHDR: 916333fad53SYOSHIFUJI Hideaki val = np->rxopt.bits.osrcrt; 917333fad53SYOSHIFUJI Hideaki break; 918333fad53SYOSHIFUJI Hideaki 9191da177e4SLinus Torvalds case IPV6_HOPOPTS: 920333fad53SYOSHIFUJI Hideaki case IPV6_RTHDRDSTOPTS: 921333fad53SYOSHIFUJI Hideaki case IPV6_RTHDR: 922333fad53SYOSHIFUJI Hideaki case IPV6_DSTOPTS: 923333fad53SYOSHIFUJI Hideaki { 924333fad53SYOSHIFUJI Hideaki 925333fad53SYOSHIFUJI Hideaki lock_sock(sk); 926333fad53SYOSHIFUJI Hideaki len = ipv6_getsockopt_sticky(sk, np->opt->hopopt, 927333fad53SYOSHIFUJI Hideaki optval, len); 928333fad53SYOSHIFUJI Hideaki release_sock(sk); 929333fad53SYOSHIFUJI Hideaki return put_user(len, optlen); 930333fad53SYOSHIFUJI Hideaki } 931333fad53SYOSHIFUJI Hideaki 932333fad53SYOSHIFUJI Hideaki case IPV6_RECVHOPOPTS: 9331da177e4SLinus Torvalds val = np->rxopt.bits.hopopts; 9341da177e4SLinus Torvalds break; 9351da177e4SLinus Torvalds 936333fad53SYOSHIFUJI Hideaki case IPV6_2292HOPOPTS: 937333fad53SYOSHIFUJI Hideaki val = np->rxopt.bits.ohopopts; 938333fad53SYOSHIFUJI Hideaki break; 939333fad53SYOSHIFUJI Hideaki 940333fad53SYOSHIFUJI Hideaki case IPV6_RECVDSTOPTS: 9411da177e4SLinus Torvalds val = np->rxopt.bits.dstopts; 9421da177e4SLinus Torvalds break; 9431da177e4SLinus Torvalds 944333fad53SYOSHIFUJI Hideaki case IPV6_2292DSTOPTS: 945333fad53SYOSHIFUJI Hideaki val = np->rxopt.bits.odstopts; 946333fad53SYOSHIFUJI Hideaki break; 947333fad53SYOSHIFUJI Hideaki 94841a1f8eaSYOSHIFUJI Hideaki case IPV6_TCLASS: 94941a1f8eaSYOSHIFUJI Hideaki val = np->tclass; 95041a1f8eaSYOSHIFUJI Hideaki break; 95141a1f8eaSYOSHIFUJI Hideaki 95241a1f8eaSYOSHIFUJI Hideaki case IPV6_RECVTCLASS: 95341a1f8eaSYOSHIFUJI Hideaki val = np->rxopt.bits.rxtclass; 95441a1f8eaSYOSHIFUJI Hideaki break; 95541a1f8eaSYOSHIFUJI Hideaki 9561da177e4SLinus Torvalds case IPV6_FLOWINFO: 9571da177e4SLinus Torvalds val = np->rxopt.bits.rxflow; 9581da177e4SLinus Torvalds break; 9591da177e4SLinus Torvalds 9601da177e4SLinus Torvalds case IPV6_UNICAST_HOPS: 9611da177e4SLinus Torvalds val = np->hop_limit; 9621da177e4SLinus Torvalds break; 9631da177e4SLinus Torvalds 9641da177e4SLinus Torvalds case IPV6_MULTICAST_HOPS: 9651da177e4SLinus Torvalds val = np->mcast_hops; 9661da177e4SLinus Torvalds break; 9671da177e4SLinus Torvalds 9681da177e4SLinus Torvalds case IPV6_MULTICAST_LOOP: 9691da177e4SLinus Torvalds val = np->mc_loop; 9701da177e4SLinus Torvalds break; 9711da177e4SLinus Torvalds 9721da177e4SLinus Torvalds case IPV6_MULTICAST_IF: 9731da177e4SLinus Torvalds val = np->mcast_oif; 9741da177e4SLinus Torvalds break; 9751da177e4SLinus Torvalds 9761da177e4SLinus Torvalds case IPV6_MTU_DISCOVER: 9771da177e4SLinus Torvalds val = np->pmtudisc; 9781da177e4SLinus Torvalds break; 9791da177e4SLinus Torvalds 9801da177e4SLinus Torvalds case IPV6_RECVERR: 9811da177e4SLinus Torvalds val = np->recverr; 9821da177e4SLinus Torvalds break; 9831da177e4SLinus Torvalds 9841da177e4SLinus Torvalds case IPV6_FLOWINFO_SEND: 9851da177e4SLinus Torvalds val = np->sndflow; 9861da177e4SLinus Torvalds break; 9871da177e4SLinus Torvalds 9881da177e4SLinus Torvalds default: 9891da177e4SLinus Torvalds return -EINVAL; 9901da177e4SLinus Torvalds } 9911da177e4SLinus Torvalds len = min_t(unsigned int, sizeof(int), len); 9921da177e4SLinus Torvalds if(put_user(len, optlen)) 9931da177e4SLinus Torvalds return -EFAULT; 9941da177e4SLinus Torvalds if(copy_to_user(optval,&val,len)) 9951da177e4SLinus Torvalds return -EFAULT; 9961da177e4SLinus Torvalds return 0; 9971da177e4SLinus Torvalds } 9981da177e4SLinus Torvalds 9993fdadf7dSDmitry Mishin int ipv6_getsockopt(struct sock *sk, int level, int optname, 10003fdadf7dSDmitry Mishin char __user *optval, int __user *optlen) 10013fdadf7dSDmitry Mishin { 10023fdadf7dSDmitry Mishin int err; 10033fdadf7dSDmitry Mishin 10043fdadf7dSDmitry Mishin if (level == SOL_IP && sk->sk_type != SOCK_RAW) 10053fdadf7dSDmitry Mishin return udp_prot.getsockopt(sk, level, optname, optval, optlen); 10063fdadf7dSDmitry Mishin 10073fdadf7dSDmitry Mishin if(level != SOL_IPV6) 10083fdadf7dSDmitry Mishin return -ENOPROTOOPT; 10093fdadf7dSDmitry Mishin 10103fdadf7dSDmitry Mishin err = do_ipv6_getsockopt(sk, level, optname, optval, optlen); 10113fdadf7dSDmitry Mishin #ifdef CONFIG_NETFILTER 10123fdadf7dSDmitry Mishin /* we need to exclude all possible EINVALs except default case */ 1013443da0d5SPatrick McHardy if (err == -EINVAL && optname != IPV6_ADDRFORM && 10143fdadf7dSDmitry Mishin optname != MCAST_MSFILTER) { 10153fdadf7dSDmitry Mishin int len; 10163fdadf7dSDmitry Mishin 10173fdadf7dSDmitry Mishin if (get_user(len, optlen)) 10183fdadf7dSDmitry Mishin return -EFAULT; 10193fdadf7dSDmitry Mishin 10203fdadf7dSDmitry Mishin lock_sock(sk); 10213fdadf7dSDmitry Mishin err = nf_getsockopt(sk, PF_INET6, optname, optval, 10223fdadf7dSDmitry Mishin &len); 10233fdadf7dSDmitry Mishin release_sock(sk); 10243fdadf7dSDmitry Mishin if (err >= 0) 10253fdadf7dSDmitry Mishin err = put_user(len, optlen); 10263fdadf7dSDmitry Mishin } 10273fdadf7dSDmitry Mishin #endif 10283fdadf7dSDmitry Mishin return err; 10293fdadf7dSDmitry Mishin } 10303fdadf7dSDmitry Mishin 10313fdadf7dSDmitry Mishin #ifdef CONFIG_COMPAT 10323fdadf7dSDmitry Mishin int compat_ipv6_getsockopt(struct sock *sk, int level, int optname, 10333fdadf7dSDmitry Mishin char __user *optval, int __user *optlen) 10343fdadf7dSDmitry Mishin { 10353fdadf7dSDmitry Mishin int err; 10363fdadf7dSDmitry Mishin 10373fdadf7dSDmitry Mishin if (level == SOL_IP && sk->sk_type != SOCK_RAW) { 1038543d9cfeSArnaldo Carvalho de Melo if (udp_prot.compat_getsockopt != NULL) 1039543d9cfeSArnaldo Carvalho de Melo return udp_prot.compat_getsockopt(sk, level, optname, 1040543d9cfeSArnaldo Carvalho de Melo optval, optlen); 1041543d9cfeSArnaldo Carvalho de Melo return udp_prot.getsockopt(sk, level, optname, optval, optlen); 10423fdadf7dSDmitry Mishin } 10433fdadf7dSDmitry Mishin 10443fdadf7dSDmitry Mishin if (level != SOL_IPV6) 10453fdadf7dSDmitry Mishin return -ENOPROTOOPT; 10463fdadf7dSDmitry Mishin 10473fdadf7dSDmitry Mishin err = do_ipv6_getsockopt(sk, level, optname, optval, optlen); 10483fdadf7dSDmitry Mishin #ifdef CONFIG_NETFILTER 10493fdadf7dSDmitry Mishin /* we need to exclude all possible EINVALs except default case */ 1050443da0d5SPatrick McHardy if (err == -EINVAL && optname != IPV6_ADDRFORM && 10513fdadf7dSDmitry Mishin optname != MCAST_MSFILTER) { 10523fdadf7dSDmitry Mishin int len; 10533fdadf7dSDmitry Mishin 10543fdadf7dSDmitry Mishin if (get_user(len, optlen)) 10553fdadf7dSDmitry Mishin return -EFAULT; 10563fdadf7dSDmitry Mishin 10573fdadf7dSDmitry Mishin lock_sock(sk); 1058543d9cfeSArnaldo Carvalho de Melo err = compat_nf_getsockopt(sk, PF_INET6, 1059543d9cfeSArnaldo Carvalho de Melo optname, optval, &len); 10603fdadf7dSDmitry Mishin release_sock(sk); 10613fdadf7dSDmitry Mishin if (err >= 0) 10623fdadf7dSDmitry Mishin err = put_user(len, optlen); 10633fdadf7dSDmitry Mishin } 10643fdadf7dSDmitry Mishin #endif 10653fdadf7dSDmitry Mishin return err; 10663fdadf7dSDmitry Mishin } 1067543d9cfeSArnaldo Carvalho de Melo 1068543d9cfeSArnaldo Carvalho de Melo EXPORT_SYMBOL(compat_ipv6_getsockopt); 10693fdadf7dSDmitry Mishin #endif 10703fdadf7dSDmitry Mishin 10711da177e4SLinus Torvalds void __init ipv6_packet_init(void) 10721da177e4SLinus Torvalds { 10731da177e4SLinus Torvalds dev_add_pack(&ipv6_packet_type); 10741da177e4SLinus Torvalds } 10751da177e4SLinus Torvalds 10761da177e4SLinus Torvalds void ipv6_packet_cleanup(void) 10771da177e4SLinus Torvalds { 10781da177e4SLinus Torvalds dev_remove_pack(&ipv6_packet_type); 10791da177e4SLinus Torvalds } 1080