11da177e4SLinus Torvalds /* 21da177e4SLinus Torvalds * IPv6 BSD socket options interface 31da177e4SLinus Torvalds * Linux INET6 implementation 41da177e4SLinus Torvalds * 51da177e4SLinus Torvalds * Authors: 61da177e4SLinus Torvalds * Pedro Roque <roque@di.fc.ul.pt> 71da177e4SLinus Torvalds * 81da177e4SLinus Torvalds * Based on linux/net/ipv4/ip_sockglue.c 91da177e4SLinus Torvalds * 101da177e4SLinus Torvalds * $Id: ipv6_sockglue.c,v 1.41 2002/02/01 22:01:04 davem Exp $ 111da177e4SLinus Torvalds * 121da177e4SLinus Torvalds * This program is free software; you can redistribute it and/or 131da177e4SLinus Torvalds * modify it under the terms of the GNU General Public License 141da177e4SLinus Torvalds * as published by the Free Software Foundation; either version 151da177e4SLinus Torvalds * 2 of the License, or (at your option) any later version. 161da177e4SLinus Torvalds * 171da177e4SLinus Torvalds * FIXME: Make the setsockopt code POSIX compliant: That is 181da177e4SLinus Torvalds * 191da177e4SLinus Torvalds * o Return -EINVAL for setsockopt of short lengths 201da177e4SLinus Torvalds * o Truncate getsockopt returns 211da177e4SLinus Torvalds * o Return an optlen of the truncated length if need be 221da177e4SLinus Torvalds * 231da177e4SLinus Torvalds * Changes: 241da177e4SLinus Torvalds * David L Stevens <dlstevens@us.ibm.com>: 251da177e4SLinus Torvalds * - added multicast source filtering API for MLDv2 261da177e4SLinus Torvalds */ 271da177e4SLinus Torvalds 281da177e4SLinus Torvalds #include <linux/module.h> 294fc268d2SRandy Dunlap #include <linux/capability.h> 301da177e4SLinus Torvalds #include <linux/config.h> 311da177e4SLinus Torvalds #include <linux/errno.h> 321da177e4SLinus Torvalds #include <linux/types.h> 331da177e4SLinus Torvalds #include <linux/socket.h> 341da177e4SLinus Torvalds #include <linux/sockios.h> 351da177e4SLinus Torvalds #include <linux/sched.h> 361da177e4SLinus Torvalds #include <linux/net.h> 371da177e4SLinus Torvalds #include <linux/in6.h> 381da177e4SLinus Torvalds #include <linux/netdevice.h> 391da177e4SLinus Torvalds #include <linux/if_arp.h> 401da177e4SLinus Torvalds #include <linux/init.h> 411da177e4SLinus Torvalds #include <linux/sysctl.h> 421da177e4SLinus Torvalds #include <linux/netfilter.h> 431da177e4SLinus Torvalds 441da177e4SLinus Torvalds #include <net/sock.h> 451da177e4SLinus Torvalds #include <net/snmp.h> 461da177e4SLinus Torvalds #include <net/ipv6.h> 471da177e4SLinus Torvalds #include <net/ndisc.h> 481da177e4SLinus Torvalds #include <net/protocol.h> 491da177e4SLinus Torvalds #include <net/transp_v6.h> 501da177e4SLinus Torvalds #include <net/ip6_route.h> 511da177e4SLinus Torvalds #include <net/addrconf.h> 521da177e4SLinus Torvalds #include <net/inet_common.h> 531da177e4SLinus Torvalds #include <net/tcp.h> 541da177e4SLinus Torvalds #include <net/udp.h> 551da177e4SLinus Torvalds #include <net/xfrm.h> 561da177e4SLinus Torvalds 571da177e4SLinus Torvalds #include <asm/uaccess.h> 581da177e4SLinus Torvalds 59ba89966cSEric Dumazet DEFINE_SNMP_STAT(struct ipstats_mib, ipv6_statistics) __read_mostly; 601da177e4SLinus Torvalds 61adcfc7d0SHerbert Xu static struct sk_buff *ipv6_gso_segment(struct sk_buff *skb, int features) 62adcfc7d0SHerbert Xu { 63adcfc7d0SHerbert Xu struct sk_buff *segs = ERR_PTR(-EINVAL); 64adcfc7d0SHerbert Xu struct ipv6hdr *ipv6h; 65adcfc7d0SHerbert Xu struct inet6_protocol *ops; 66adcfc7d0SHerbert Xu int proto; 67adcfc7d0SHerbert Xu 68adcfc7d0SHerbert Xu if (unlikely(!pskb_may_pull(skb, sizeof(*ipv6h)))) 69adcfc7d0SHerbert Xu goto out; 70adcfc7d0SHerbert Xu 71adcfc7d0SHerbert Xu ipv6h = skb->nh.ipv6h; 72adcfc7d0SHerbert Xu proto = ipv6h->nexthdr; 73adcfc7d0SHerbert Xu __skb_pull(skb, sizeof(*ipv6h)); 74adcfc7d0SHerbert Xu 75adcfc7d0SHerbert Xu rcu_read_lock(); 76adcfc7d0SHerbert Xu for (;;) { 77adcfc7d0SHerbert Xu struct ipv6_opt_hdr *opth; 78adcfc7d0SHerbert Xu int len; 79adcfc7d0SHerbert Xu 80adcfc7d0SHerbert Xu if (proto != NEXTHDR_HOP) { 81adcfc7d0SHerbert Xu ops = rcu_dereference(inet6_protos[proto]); 82adcfc7d0SHerbert Xu 83adcfc7d0SHerbert Xu if (unlikely(!ops)) 84adcfc7d0SHerbert Xu goto unlock; 85adcfc7d0SHerbert Xu 86adcfc7d0SHerbert Xu if (!(ops->flags & INET6_PROTO_GSO_EXTHDR)) 87adcfc7d0SHerbert Xu break; 88adcfc7d0SHerbert Xu } 89adcfc7d0SHerbert Xu 90adcfc7d0SHerbert Xu if (unlikely(!pskb_may_pull(skb, 8))) 91adcfc7d0SHerbert Xu goto unlock; 92adcfc7d0SHerbert Xu 93adcfc7d0SHerbert Xu opth = (void *)skb->data; 94adcfc7d0SHerbert Xu len = opth->hdrlen * 8 + 8; 95adcfc7d0SHerbert Xu 96adcfc7d0SHerbert Xu if (unlikely(!pskb_may_pull(skb, len))) 97adcfc7d0SHerbert Xu goto unlock; 98adcfc7d0SHerbert Xu 99adcfc7d0SHerbert Xu proto = opth->nexthdr; 100adcfc7d0SHerbert Xu __skb_pull(skb, len); 101adcfc7d0SHerbert Xu } 102adcfc7d0SHerbert Xu 103adcfc7d0SHerbert Xu skb->h.raw = skb->data; 104adcfc7d0SHerbert Xu if (likely(ops->gso_segment)) 105adcfc7d0SHerbert Xu segs = ops->gso_segment(skb, features); 106adcfc7d0SHerbert Xu 107adcfc7d0SHerbert Xu unlock: 108adcfc7d0SHerbert Xu rcu_read_unlock(); 109adcfc7d0SHerbert Xu 110adcfc7d0SHerbert Xu if (unlikely(IS_ERR(segs))) 111adcfc7d0SHerbert Xu goto out; 112adcfc7d0SHerbert Xu 113adcfc7d0SHerbert Xu for (skb = segs; skb; skb = skb->next) { 114adcfc7d0SHerbert Xu ipv6h = skb->nh.ipv6h; 115adcfc7d0SHerbert Xu ipv6h->payload_len = htons(skb->len - skb->mac_len); 116adcfc7d0SHerbert Xu } 117adcfc7d0SHerbert Xu 118adcfc7d0SHerbert Xu out: 119adcfc7d0SHerbert Xu return segs; 120adcfc7d0SHerbert Xu } 121adcfc7d0SHerbert Xu 1221da177e4SLinus Torvalds static struct packet_type ipv6_packet_type = { 1231da177e4SLinus Torvalds .type = __constant_htons(ETH_P_IPV6), 1241da177e4SLinus Torvalds .func = ipv6_rcv, 125adcfc7d0SHerbert Xu .gso_segment = ipv6_gso_segment, 1261da177e4SLinus Torvalds }; 1271da177e4SLinus Torvalds 1281da177e4SLinus Torvalds struct ip6_ra_chain *ip6_ra_chain; 1291da177e4SLinus Torvalds DEFINE_RWLOCK(ip6_ra_lock); 1301da177e4SLinus Torvalds 1311da177e4SLinus Torvalds int ip6_ra_control(struct sock *sk, int sel, void (*destructor)(struct sock *)) 1321da177e4SLinus Torvalds { 1331da177e4SLinus Torvalds struct ip6_ra_chain *ra, *new_ra, **rap; 1341da177e4SLinus Torvalds 1351da177e4SLinus Torvalds /* RA packet may be delivered ONLY to IPPROTO_RAW socket */ 1361da177e4SLinus Torvalds if (sk->sk_type != SOCK_RAW || inet_sk(sk)->num != IPPROTO_RAW) 1371da177e4SLinus Torvalds return -EINVAL; 1381da177e4SLinus Torvalds 1391da177e4SLinus Torvalds new_ra = (sel>=0) ? kmalloc(sizeof(*new_ra), GFP_KERNEL) : NULL; 1401da177e4SLinus Torvalds 1411da177e4SLinus Torvalds write_lock_bh(&ip6_ra_lock); 1421da177e4SLinus Torvalds for (rap = &ip6_ra_chain; (ra=*rap) != NULL; rap = &ra->next) { 1431da177e4SLinus Torvalds if (ra->sk == sk) { 1441da177e4SLinus Torvalds if (sel>=0) { 1451da177e4SLinus Torvalds write_unlock_bh(&ip6_ra_lock); 1461da177e4SLinus Torvalds kfree(new_ra); 1471da177e4SLinus Torvalds return -EADDRINUSE; 1481da177e4SLinus Torvalds } 1491da177e4SLinus Torvalds 1501da177e4SLinus Torvalds *rap = ra->next; 1511da177e4SLinus Torvalds write_unlock_bh(&ip6_ra_lock); 1521da177e4SLinus Torvalds 1531da177e4SLinus Torvalds if (ra->destructor) 1541da177e4SLinus Torvalds ra->destructor(sk); 1551da177e4SLinus Torvalds sock_put(sk); 1561da177e4SLinus Torvalds kfree(ra); 1571da177e4SLinus Torvalds return 0; 1581da177e4SLinus Torvalds } 1591da177e4SLinus Torvalds } 1601da177e4SLinus Torvalds if (new_ra == NULL) { 1611da177e4SLinus Torvalds write_unlock_bh(&ip6_ra_lock); 1621da177e4SLinus Torvalds return -ENOBUFS; 1631da177e4SLinus Torvalds } 1641da177e4SLinus Torvalds new_ra->sk = sk; 1651da177e4SLinus Torvalds new_ra->sel = sel; 1661da177e4SLinus Torvalds new_ra->destructor = destructor; 1671da177e4SLinus Torvalds new_ra->next = ra; 1681da177e4SLinus Torvalds *rap = new_ra; 1691da177e4SLinus Torvalds sock_hold(sk); 1701da177e4SLinus Torvalds write_unlock_bh(&ip6_ra_lock); 1711da177e4SLinus Torvalds return 0; 1721da177e4SLinus Torvalds } 1731da177e4SLinus Torvalds 1743fdadf7dSDmitry Mishin static int do_ipv6_setsockopt(struct sock *sk, int level, int optname, 1751da177e4SLinus Torvalds char __user *optval, int optlen) 1761da177e4SLinus Torvalds { 1771da177e4SLinus Torvalds struct ipv6_pinfo *np = inet6_sk(sk); 1781da177e4SLinus Torvalds int val, valbool; 1791da177e4SLinus Torvalds int retv = -ENOPROTOOPT; 1801da177e4SLinus Torvalds 1811da177e4SLinus Torvalds if (optval == NULL) 1821da177e4SLinus Torvalds val=0; 1831da177e4SLinus Torvalds else if (get_user(val, (int __user *) optval)) 1841da177e4SLinus Torvalds return -EFAULT; 1851da177e4SLinus Torvalds 1861da177e4SLinus Torvalds valbool = (val!=0); 1871da177e4SLinus Torvalds 1881da177e4SLinus Torvalds lock_sock(sk); 1891da177e4SLinus Torvalds 1901da177e4SLinus Torvalds switch (optname) { 1911da177e4SLinus Torvalds 1921da177e4SLinus Torvalds case IPV6_ADDRFORM: 1931da177e4SLinus Torvalds if (val == PF_INET) { 1941da177e4SLinus Torvalds struct ipv6_txoptions *opt; 1951da177e4SLinus Torvalds struct sk_buff *pktopt; 1961da177e4SLinus Torvalds 1971da177e4SLinus Torvalds if (sk->sk_protocol != IPPROTO_UDP && 1981da177e4SLinus Torvalds sk->sk_protocol != IPPROTO_TCP) 1991da177e4SLinus Torvalds break; 2001da177e4SLinus Torvalds 2011da177e4SLinus Torvalds if (sk->sk_state != TCP_ESTABLISHED) { 2021da177e4SLinus Torvalds retv = -ENOTCONN; 2031da177e4SLinus Torvalds break; 2041da177e4SLinus Torvalds } 2051da177e4SLinus Torvalds 2061da177e4SLinus Torvalds if (ipv6_only_sock(sk) || 2071da177e4SLinus Torvalds !(ipv6_addr_type(&np->daddr) & IPV6_ADDR_MAPPED)) { 2081da177e4SLinus Torvalds retv = -EADDRNOTAVAIL; 2091da177e4SLinus Torvalds break; 2101da177e4SLinus Torvalds } 2111da177e4SLinus Torvalds 2121da177e4SLinus Torvalds fl6_free_socklist(sk); 2131da177e4SLinus Torvalds ipv6_sock_mc_close(sk); 2141da177e4SLinus Torvalds 215e6848976SArnaldo Carvalho de Melo /* 216e6848976SArnaldo Carvalho de Melo * Sock is moving from IPv6 to IPv4 (sk_prot), so 217e6848976SArnaldo Carvalho de Melo * remove it from the refcnt debug socks count in the 218e6848976SArnaldo Carvalho de Melo * original family... 219e6848976SArnaldo Carvalho de Melo */ 220e6848976SArnaldo Carvalho de Melo sk_refcnt_debug_dec(sk); 221e6848976SArnaldo Carvalho de Melo 2221da177e4SLinus Torvalds if (sk->sk_protocol == IPPROTO_TCP) { 223d83d8461SArnaldo Carvalho de Melo struct inet_connection_sock *icsk = inet_csk(sk); 2241da177e4SLinus Torvalds 2251da177e4SLinus Torvalds local_bh_disable(); 2261da177e4SLinus Torvalds sock_prot_dec_use(sk->sk_prot); 2271da177e4SLinus Torvalds sock_prot_inc_use(&tcp_prot); 2281da177e4SLinus Torvalds local_bh_enable(); 2291da177e4SLinus Torvalds sk->sk_prot = &tcp_prot; 230d83d8461SArnaldo Carvalho de Melo icsk->icsk_af_ops = &ipv4_specific; 2311da177e4SLinus Torvalds sk->sk_socket->ops = &inet_stream_ops; 2321da177e4SLinus Torvalds sk->sk_family = PF_INET; 233d83d8461SArnaldo Carvalho de Melo tcp_sync_mss(sk, icsk->icsk_pmtu_cookie); 2341da177e4SLinus Torvalds } else { 2351da177e4SLinus Torvalds local_bh_disable(); 2361da177e4SLinus Torvalds sock_prot_dec_use(sk->sk_prot); 2371da177e4SLinus Torvalds sock_prot_inc_use(&udp_prot); 2381da177e4SLinus Torvalds local_bh_enable(); 2391da177e4SLinus Torvalds sk->sk_prot = &udp_prot; 2401da177e4SLinus Torvalds sk->sk_socket->ops = &inet_dgram_ops; 2411da177e4SLinus Torvalds sk->sk_family = PF_INET; 2421da177e4SLinus Torvalds } 2431da177e4SLinus Torvalds opt = xchg(&np->opt, NULL); 2441da177e4SLinus Torvalds if (opt) 2451da177e4SLinus Torvalds sock_kfree_s(sk, opt, opt->tot_len); 2461da177e4SLinus Torvalds pktopt = xchg(&np->pktoptions, NULL); 2471da177e4SLinus Torvalds if (pktopt) 2481da177e4SLinus Torvalds kfree_skb(pktopt); 2491da177e4SLinus Torvalds 2501da177e4SLinus Torvalds sk->sk_destruct = inet_sock_destruct; 251e6848976SArnaldo Carvalho de Melo /* 252e6848976SArnaldo Carvalho de Melo * ... and add it to the refcnt debug socks count 253e6848976SArnaldo Carvalho de Melo * in the new family. -acme 254e6848976SArnaldo Carvalho de Melo */ 255e6848976SArnaldo Carvalho de Melo sk_refcnt_debug_inc(sk); 2561da177e4SLinus Torvalds module_put(THIS_MODULE); 2571da177e4SLinus Torvalds retv = 0; 2581da177e4SLinus Torvalds break; 2591da177e4SLinus Torvalds } 2601da177e4SLinus Torvalds goto e_inval; 2611da177e4SLinus Torvalds 2621da177e4SLinus Torvalds case IPV6_V6ONLY: 2631da177e4SLinus Torvalds if (inet_sk(sk)->num) 2641da177e4SLinus Torvalds goto e_inval; 2651da177e4SLinus Torvalds np->ipv6only = valbool; 2661da177e4SLinus Torvalds retv = 0; 2671da177e4SLinus Torvalds break; 2681da177e4SLinus Torvalds 269333fad53SYOSHIFUJI Hideaki case IPV6_RECVPKTINFO: 2701da177e4SLinus Torvalds np->rxopt.bits.rxinfo = valbool; 2711da177e4SLinus Torvalds retv = 0; 2721da177e4SLinus Torvalds break; 2731da177e4SLinus Torvalds 274333fad53SYOSHIFUJI Hideaki case IPV6_2292PKTINFO: 275333fad53SYOSHIFUJI Hideaki np->rxopt.bits.rxoinfo = valbool; 276333fad53SYOSHIFUJI Hideaki retv = 0; 277333fad53SYOSHIFUJI Hideaki break; 278333fad53SYOSHIFUJI Hideaki 279333fad53SYOSHIFUJI Hideaki case IPV6_RECVHOPLIMIT: 2801da177e4SLinus Torvalds np->rxopt.bits.rxhlim = valbool; 2811da177e4SLinus Torvalds retv = 0; 2821da177e4SLinus Torvalds break; 2831da177e4SLinus Torvalds 284333fad53SYOSHIFUJI Hideaki case IPV6_2292HOPLIMIT: 285333fad53SYOSHIFUJI Hideaki np->rxopt.bits.rxohlim = valbool; 286333fad53SYOSHIFUJI Hideaki retv = 0; 287333fad53SYOSHIFUJI Hideaki break; 288333fad53SYOSHIFUJI Hideaki 289333fad53SYOSHIFUJI Hideaki case IPV6_RECVRTHDR: 2901da177e4SLinus Torvalds if (val < 0 || val > 2) 2911da177e4SLinus Torvalds goto e_inval; 2921da177e4SLinus Torvalds np->rxopt.bits.srcrt = val; 2931da177e4SLinus Torvalds retv = 0; 2941da177e4SLinus Torvalds break; 2951da177e4SLinus Torvalds 296333fad53SYOSHIFUJI Hideaki case IPV6_2292RTHDR: 297333fad53SYOSHIFUJI Hideaki if (val < 0 || val > 2) 298333fad53SYOSHIFUJI Hideaki goto e_inval; 299333fad53SYOSHIFUJI Hideaki np->rxopt.bits.osrcrt = val; 300333fad53SYOSHIFUJI Hideaki retv = 0; 301333fad53SYOSHIFUJI Hideaki break; 302333fad53SYOSHIFUJI Hideaki 303333fad53SYOSHIFUJI Hideaki case IPV6_RECVHOPOPTS: 3041da177e4SLinus Torvalds np->rxopt.bits.hopopts = valbool; 3051da177e4SLinus Torvalds retv = 0; 3061da177e4SLinus Torvalds break; 3071da177e4SLinus Torvalds 308333fad53SYOSHIFUJI Hideaki case IPV6_2292HOPOPTS: 309333fad53SYOSHIFUJI Hideaki np->rxopt.bits.ohopopts = valbool; 310333fad53SYOSHIFUJI Hideaki retv = 0; 311333fad53SYOSHIFUJI Hideaki break; 312333fad53SYOSHIFUJI Hideaki 313333fad53SYOSHIFUJI Hideaki case IPV6_RECVDSTOPTS: 3141da177e4SLinus Torvalds np->rxopt.bits.dstopts = valbool; 3151da177e4SLinus Torvalds retv = 0; 3161da177e4SLinus Torvalds break; 3171da177e4SLinus Torvalds 318333fad53SYOSHIFUJI Hideaki case IPV6_2292DSTOPTS: 319333fad53SYOSHIFUJI Hideaki np->rxopt.bits.odstopts = valbool; 320333fad53SYOSHIFUJI Hideaki retv = 0; 321333fad53SYOSHIFUJI Hideaki break; 322333fad53SYOSHIFUJI Hideaki 32341a1f8eaSYOSHIFUJI Hideaki case IPV6_TCLASS: 32441a1f8eaSYOSHIFUJI Hideaki if (val < 0 || val > 0xff) 32541a1f8eaSYOSHIFUJI Hideaki goto e_inval; 32641a1f8eaSYOSHIFUJI Hideaki np->tclass = val; 32741a1f8eaSYOSHIFUJI Hideaki retv = 0; 32841a1f8eaSYOSHIFUJI Hideaki break; 32941a1f8eaSYOSHIFUJI Hideaki 33041a1f8eaSYOSHIFUJI Hideaki case IPV6_RECVTCLASS: 33141a1f8eaSYOSHIFUJI Hideaki np->rxopt.bits.rxtclass = valbool; 33241a1f8eaSYOSHIFUJI Hideaki retv = 0; 33341a1f8eaSYOSHIFUJI Hideaki break; 33441a1f8eaSYOSHIFUJI Hideaki 3351da177e4SLinus Torvalds case IPV6_FLOWINFO: 3361da177e4SLinus Torvalds np->rxopt.bits.rxflow = valbool; 3371da177e4SLinus Torvalds retv = 0; 3381da177e4SLinus Torvalds break; 3391da177e4SLinus Torvalds 340333fad53SYOSHIFUJI Hideaki case IPV6_HOPOPTS: 341333fad53SYOSHIFUJI Hideaki case IPV6_RTHDRDSTOPTS: 342333fad53SYOSHIFUJI Hideaki case IPV6_RTHDR: 343333fad53SYOSHIFUJI Hideaki case IPV6_DSTOPTS: 344333fad53SYOSHIFUJI Hideaki { 345333fad53SYOSHIFUJI Hideaki struct ipv6_txoptions *opt; 346333fad53SYOSHIFUJI Hideaki if (optlen == 0) 347cb422c46SLuiz Capitulino optval = NULL; 348333fad53SYOSHIFUJI Hideaki 349333fad53SYOSHIFUJI Hideaki /* hop-by-hop / destination options are privileged option */ 350333fad53SYOSHIFUJI Hideaki retv = -EPERM; 351333fad53SYOSHIFUJI Hideaki if (optname != IPV6_RTHDR && !capable(CAP_NET_RAW)) 352333fad53SYOSHIFUJI Hideaki break; 353333fad53SYOSHIFUJI Hideaki 354333fad53SYOSHIFUJI Hideaki retv = -EINVAL; 355333fad53SYOSHIFUJI Hideaki if (optlen & 0x7 || optlen > 8 * 255) 356333fad53SYOSHIFUJI Hideaki break; 357333fad53SYOSHIFUJI Hideaki 358333fad53SYOSHIFUJI Hideaki opt = ipv6_renew_options(sk, np->opt, optname, 359333fad53SYOSHIFUJI Hideaki (struct ipv6_opt_hdr __user *)optval, 360333fad53SYOSHIFUJI Hideaki optlen); 361333fad53SYOSHIFUJI Hideaki if (IS_ERR(opt)) { 362333fad53SYOSHIFUJI Hideaki retv = PTR_ERR(opt); 363333fad53SYOSHIFUJI Hideaki break; 364333fad53SYOSHIFUJI Hideaki } 365333fad53SYOSHIFUJI Hideaki 366333fad53SYOSHIFUJI Hideaki /* routing header option needs extra check */ 367333fad53SYOSHIFUJI Hideaki if (optname == IPV6_RTHDR && opt->srcrt) { 368333fad53SYOSHIFUJI Hideaki struct ipv6_rt_hdr *rthdr = opt->srcrt; 369333fad53SYOSHIFUJI Hideaki if (rthdr->type) 370333fad53SYOSHIFUJI Hideaki goto sticky_done; 371333fad53SYOSHIFUJI Hideaki if ((rthdr->hdrlen & 1) || 372333fad53SYOSHIFUJI Hideaki (rthdr->hdrlen >> 1) != rthdr->segments_left) 373333fad53SYOSHIFUJI Hideaki goto sticky_done; 374333fad53SYOSHIFUJI Hideaki } 375333fad53SYOSHIFUJI Hideaki 376333fad53SYOSHIFUJI Hideaki retv = 0; 377d83d8461SArnaldo Carvalho de Melo if (inet_sk(sk)->is_icsk) { 378333fad53SYOSHIFUJI Hideaki if (opt) { 379d83d8461SArnaldo Carvalho de Melo struct inet_connection_sock *icsk = inet_csk(sk); 380333fad53SYOSHIFUJI Hideaki if (!((1 << sk->sk_state) & 381333fad53SYOSHIFUJI Hideaki (TCPF_LISTEN | TCPF_CLOSE)) 382333fad53SYOSHIFUJI Hideaki && inet_sk(sk)->daddr != LOOPBACK4_IPV6) { 383d83d8461SArnaldo Carvalho de Melo icsk->icsk_ext_hdr_len = 384d83d8461SArnaldo Carvalho de Melo opt->opt_flen + opt->opt_nflen; 385d83d8461SArnaldo Carvalho de Melo icsk->icsk_sync_mss(sk, icsk->icsk_pmtu_cookie); 386333fad53SYOSHIFUJI Hideaki } 387333fad53SYOSHIFUJI Hideaki } 388333fad53SYOSHIFUJI Hideaki opt = xchg(&np->opt, opt); 389333fad53SYOSHIFUJI Hideaki sk_dst_reset(sk); 390333fad53SYOSHIFUJI Hideaki } else { 391333fad53SYOSHIFUJI Hideaki write_lock(&sk->sk_dst_lock); 392333fad53SYOSHIFUJI Hideaki opt = xchg(&np->opt, opt); 393333fad53SYOSHIFUJI Hideaki write_unlock(&sk->sk_dst_lock); 394333fad53SYOSHIFUJI Hideaki sk_dst_reset(sk); 395333fad53SYOSHIFUJI Hideaki } 396333fad53SYOSHIFUJI Hideaki sticky_done: 397333fad53SYOSHIFUJI Hideaki if (opt) 398333fad53SYOSHIFUJI Hideaki sock_kfree_s(sk, opt, opt->tot_len); 399333fad53SYOSHIFUJI Hideaki break; 400333fad53SYOSHIFUJI Hideaki } 401333fad53SYOSHIFUJI Hideaki 402333fad53SYOSHIFUJI Hideaki case IPV6_2292PKTOPTIONS: 4031da177e4SLinus Torvalds { 4041da177e4SLinus Torvalds struct ipv6_txoptions *opt = NULL; 4051da177e4SLinus Torvalds struct msghdr msg; 4061da177e4SLinus Torvalds struct flowi fl; 4071da177e4SLinus Torvalds int junk; 4081da177e4SLinus Torvalds 4091da177e4SLinus Torvalds fl.fl6_flowlabel = 0; 4101da177e4SLinus Torvalds fl.oif = sk->sk_bound_dev_if; 4111da177e4SLinus Torvalds 4121da177e4SLinus Torvalds if (optlen == 0) 4131da177e4SLinus Torvalds goto update; 4141da177e4SLinus Torvalds 4151da177e4SLinus Torvalds /* 1K is probably excessive 4161da177e4SLinus Torvalds * 1K is surely not enough, 2K per standard header is 16K. 4171da177e4SLinus Torvalds */ 4181da177e4SLinus Torvalds retv = -EINVAL; 4191da177e4SLinus Torvalds if (optlen > 64*1024) 4201da177e4SLinus Torvalds break; 4211da177e4SLinus Torvalds 4221da177e4SLinus Torvalds opt = sock_kmalloc(sk, sizeof(*opt) + optlen, GFP_KERNEL); 4231da177e4SLinus Torvalds retv = -ENOBUFS; 4241da177e4SLinus Torvalds if (opt == NULL) 4251da177e4SLinus Torvalds break; 4261da177e4SLinus Torvalds 4271da177e4SLinus Torvalds memset(opt, 0, sizeof(*opt)); 4281da177e4SLinus Torvalds opt->tot_len = sizeof(*opt) + optlen; 4291da177e4SLinus Torvalds retv = -EFAULT; 4301da177e4SLinus Torvalds if (copy_from_user(opt+1, optval, optlen)) 4311da177e4SLinus Torvalds goto done; 4321da177e4SLinus Torvalds 4331da177e4SLinus Torvalds msg.msg_controllen = optlen; 4341da177e4SLinus Torvalds msg.msg_control = (void*)(opt+1); 4351da177e4SLinus Torvalds 43641a1f8eaSYOSHIFUJI Hideaki retv = datagram_send_ctl(&msg, &fl, opt, &junk, &junk); 4371da177e4SLinus Torvalds if (retv) 4381da177e4SLinus Torvalds goto done; 4391da177e4SLinus Torvalds update: 4401da177e4SLinus Torvalds retv = 0; 441d83d8461SArnaldo Carvalho de Melo if (inet_sk(sk)->is_icsk) { 4421da177e4SLinus Torvalds if (opt) { 443d83d8461SArnaldo Carvalho de Melo struct inet_connection_sock *icsk = inet_csk(sk); 4441da177e4SLinus Torvalds if (!((1 << sk->sk_state) & 4451da177e4SLinus Torvalds (TCPF_LISTEN | TCPF_CLOSE)) 4461da177e4SLinus Torvalds && inet_sk(sk)->daddr != LOOPBACK4_IPV6) { 447d83d8461SArnaldo Carvalho de Melo icsk->icsk_ext_hdr_len = 448d83d8461SArnaldo Carvalho de Melo opt->opt_flen + opt->opt_nflen; 449d83d8461SArnaldo Carvalho de Melo icsk->icsk_sync_mss(sk, icsk->icsk_pmtu_cookie); 4501da177e4SLinus Torvalds } 4511da177e4SLinus Torvalds } 4521da177e4SLinus Torvalds opt = xchg(&np->opt, opt); 4531da177e4SLinus Torvalds sk_dst_reset(sk); 4541da177e4SLinus Torvalds } else { 4551da177e4SLinus Torvalds write_lock(&sk->sk_dst_lock); 4561da177e4SLinus Torvalds opt = xchg(&np->opt, opt); 4571da177e4SLinus Torvalds write_unlock(&sk->sk_dst_lock); 4581da177e4SLinus Torvalds sk_dst_reset(sk); 4591da177e4SLinus Torvalds } 4601da177e4SLinus Torvalds 4611da177e4SLinus Torvalds done: 4621da177e4SLinus Torvalds if (opt) 4631da177e4SLinus Torvalds sock_kfree_s(sk, opt, opt->tot_len); 4641da177e4SLinus Torvalds break; 4651da177e4SLinus Torvalds } 4661da177e4SLinus Torvalds case IPV6_UNICAST_HOPS: 4671da177e4SLinus Torvalds if (val > 255 || val < -1) 4681da177e4SLinus Torvalds goto e_inval; 4691da177e4SLinus Torvalds np->hop_limit = val; 4701da177e4SLinus Torvalds retv = 0; 4711da177e4SLinus Torvalds break; 4721da177e4SLinus Torvalds 4731da177e4SLinus Torvalds case IPV6_MULTICAST_HOPS: 4741da177e4SLinus Torvalds if (sk->sk_type == SOCK_STREAM) 4751da177e4SLinus Torvalds goto e_inval; 4761da177e4SLinus Torvalds if (val > 255 || val < -1) 4771da177e4SLinus Torvalds goto e_inval; 4781da177e4SLinus Torvalds np->mcast_hops = val; 4791da177e4SLinus Torvalds retv = 0; 4801da177e4SLinus Torvalds break; 4811da177e4SLinus Torvalds 4821da177e4SLinus Torvalds case IPV6_MULTICAST_LOOP: 4831da177e4SLinus Torvalds np->mc_loop = valbool; 4841da177e4SLinus Torvalds retv = 0; 4851da177e4SLinus Torvalds break; 4861da177e4SLinus Torvalds 4871da177e4SLinus Torvalds case IPV6_MULTICAST_IF: 4881da177e4SLinus Torvalds if (sk->sk_type == SOCK_STREAM) 4891da177e4SLinus Torvalds goto e_inval; 4901da177e4SLinus Torvalds if (sk->sk_bound_dev_if && sk->sk_bound_dev_if != val) 4911da177e4SLinus Torvalds goto e_inval; 4921da177e4SLinus Torvalds 4931da177e4SLinus Torvalds if (__dev_get_by_index(val) == NULL) { 4941da177e4SLinus Torvalds retv = -ENODEV; 4951da177e4SLinus Torvalds break; 4961da177e4SLinus Torvalds } 4971da177e4SLinus Torvalds np->mcast_oif = val; 4981da177e4SLinus Torvalds retv = 0; 4991da177e4SLinus Torvalds break; 5001da177e4SLinus Torvalds case IPV6_ADD_MEMBERSHIP: 5011da177e4SLinus Torvalds case IPV6_DROP_MEMBERSHIP: 5021da177e4SLinus Torvalds { 5031da177e4SLinus Torvalds struct ipv6_mreq mreq; 5041da177e4SLinus Torvalds 5051da177e4SLinus Torvalds retv = -EFAULT; 5061da177e4SLinus Torvalds if (copy_from_user(&mreq, optval, sizeof(struct ipv6_mreq))) 5071da177e4SLinus Torvalds break; 5081da177e4SLinus Torvalds 5091da177e4SLinus Torvalds if (optname == IPV6_ADD_MEMBERSHIP) 5101da177e4SLinus Torvalds retv = ipv6_sock_mc_join(sk, mreq.ipv6mr_ifindex, &mreq.ipv6mr_multiaddr); 5111da177e4SLinus Torvalds else 5121da177e4SLinus Torvalds retv = ipv6_sock_mc_drop(sk, mreq.ipv6mr_ifindex, &mreq.ipv6mr_multiaddr); 5131da177e4SLinus Torvalds break; 5141da177e4SLinus Torvalds } 5151da177e4SLinus Torvalds case IPV6_JOIN_ANYCAST: 5161da177e4SLinus Torvalds case IPV6_LEAVE_ANYCAST: 5171da177e4SLinus Torvalds { 5181da177e4SLinus Torvalds struct ipv6_mreq mreq; 5191da177e4SLinus Torvalds 5201da177e4SLinus Torvalds if (optlen != sizeof(struct ipv6_mreq)) 5211da177e4SLinus Torvalds goto e_inval; 5221da177e4SLinus Torvalds 5231da177e4SLinus Torvalds retv = -EFAULT; 5241da177e4SLinus Torvalds if (copy_from_user(&mreq, optval, sizeof(struct ipv6_mreq))) 5251da177e4SLinus Torvalds break; 5261da177e4SLinus Torvalds 5271da177e4SLinus Torvalds if (optname == IPV6_JOIN_ANYCAST) 5281da177e4SLinus Torvalds retv = ipv6_sock_ac_join(sk, mreq.ipv6mr_ifindex, &mreq.ipv6mr_acaddr); 5291da177e4SLinus Torvalds else 5301da177e4SLinus Torvalds retv = ipv6_sock_ac_drop(sk, mreq.ipv6mr_ifindex, &mreq.ipv6mr_acaddr); 5311da177e4SLinus Torvalds break; 5321da177e4SLinus Torvalds } 5331da177e4SLinus Torvalds case MCAST_JOIN_GROUP: 5341da177e4SLinus Torvalds case MCAST_LEAVE_GROUP: 5351da177e4SLinus Torvalds { 5361da177e4SLinus Torvalds struct group_req greq; 5371da177e4SLinus Torvalds struct sockaddr_in6 *psin6; 5381da177e4SLinus Torvalds 5391da177e4SLinus Torvalds retv = -EFAULT; 5401da177e4SLinus Torvalds if (copy_from_user(&greq, optval, sizeof(struct group_req))) 5411da177e4SLinus Torvalds break; 5421da177e4SLinus Torvalds if (greq.gr_group.ss_family != AF_INET6) { 5431da177e4SLinus Torvalds retv = -EADDRNOTAVAIL; 5441da177e4SLinus Torvalds break; 5451da177e4SLinus Torvalds } 5461da177e4SLinus Torvalds psin6 = (struct sockaddr_in6 *)&greq.gr_group; 5471da177e4SLinus Torvalds if (optname == MCAST_JOIN_GROUP) 5481da177e4SLinus Torvalds retv = ipv6_sock_mc_join(sk, greq.gr_interface, 5491da177e4SLinus Torvalds &psin6->sin6_addr); 5501da177e4SLinus Torvalds else 5511da177e4SLinus Torvalds retv = ipv6_sock_mc_drop(sk, greq.gr_interface, 5521da177e4SLinus Torvalds &psin6->sin6_addr); 5531da177e4SLinus Torvalds break; 5541da177e4SLinus Torvalds } 5551da177e4SLinus Torvalds case MCAST_JOIN_SOURCE_GROUP: 5561da177e4SLinus Torvalds case MCAST_LEAVE_SOURCE_GROUP: 5571da177e4SLinus Torvalds case MCAST_BLOCK_SOURCE: 5581da177e4SLinus Torvalds case MCAST_UNBLOCK_SOURCE: 5591da177e4SLinus Torvalds { 5601da177e4SLinus Torvalds struct group_source_req greqs; 5611da177e4SLinus Torvalds int omode, add; 5621da177e4SLinus Torvalds 5631da177e4SLinus Torvalds if (optlen != sizeof(struct group_source_req)) 5641da177e4SLinus Torvalds goto e_inval; 5651da177e4SLinus Torvalds if (copy_from_user(&greqs, optval, sizeof(greqs))) { 5661da177e4SLinus Torvalds retv = -EFAULT; 5671da177e4SLinus Torvalds break; 5681da177e4SLinus Torvalds } 5691da177e4SLinus Torvalds if (greqs.gsr_group.ss_family != AF_INET6 || 5701da177e4SLinus Torvalds greqs.gsr_source.ss_family != AF_INET6) { 5711da177e4SLinus Torvalds retv = -EADDRNOTAVAIL; 5721da177e4SLinus Torvalds break; 5731da177e4SLinus Torvalds } 5741da177e4SLinus Torvalds if (optname == MCAST_BLOCK_SOURCE) { 5751da177e4SLinus Torvalds omode = MCAST_EXCLUDE; 5761da177e4SLinus Torvalds add = 1; 5771da177e4SLinus Torvalds } else if (optname == MCAST_UNBLOCK_SOURCE) { 5781da177e4SLinus Torvalds omode = MCAST_EXCLUDE; 5791da177e4SLinus Torvalds add = 0; 5801da177e4SLinus Torvalds } else if (optname == MCAST_JOIN_SOURCE_GROUP) { 5811da177e4SLinus Torvalds struct sockaddr_in6 *psin6; 5821da177e4SLinus Torvalds 5831da177e4SLinus Torvalds psin6 = (struct sockaddr_in6 *)&greqs.gsr_group; 5841da177e4SLinus Torvalds retv = ipv6_sock_mc_join(sk, greqs.gsr_interface, 5851da177e4SLinus Torvalds &psin6->sin6_addr); 586c9e3e8b6SDavid L Stevens /* prior join w/ different source is ok */ 587c9e3e8b6SDavid L Stevens if (retv && retv != -EADDRINUSE) 5881da177e4SLinus Torvalds break; 5891da177e4SLinus Torvalds omode = MCAST_INCLUDE; 5901da177e4SLinus Torvalds add = 1; 591c9e3e8b6SDavid L Stevens } else /* MCAST_LEAVE_SOURCE_GROUP */ { 5921da177e4SLinus Torvalds omode = MCAST_INCLUDE; 5931da177e4SLinus Torvalds add = 0; 5941da177e4SLinus Torvalds } 5951da177e4SLinus Torvalds retv = ip6_mc_source(add, omode, sk, &greqs); 5961da177e4SLinus Torvalds break; 5971da177e4SLinus Torvalds } 5981da177e4SLinus Torvalds case MCAST_MSFILTER: 5991da177e4SLinus Torvalds { 6001da177e4SLinus Torvalds extern int sysctl_mld_max_msf; 6011da177e4SLinus Torvalds struct group_filter *gsf; 6021da177e4SLinus Torvalds 6031da177e4SLinus Torvalds if (optlen < GROUP_FILTER_SIZE(0)) 6041da177e4SLinus Torvalds goto e_inval; 6051da177e4SLinus Torvalds if (optlen > sysctl_optmem_max) { 6061da177e4SLinus Torvalds retv = -ENOBUFS; 6071da177e4SLinus Torvalds break; 6081da177e4SLinus Torvalds } 6098b3a7005SKris Katterjohn gsf = kmalloc(optlen,GFP_KERNEL); 6101da177e4SLinus Torvalds if (gsf == 0) { 6111da177e4SLinus Torvalds retv = -ENOBUFS; 6121da177e4SLinus Torvalds break; 6131da177e4SLinus Torvalds } 6141da177e4SLinus Torvalds retv = -EFAULT; 6151da177e4SLinus Torvalds if (copy_from_user(gsf, optval, optlen)) { 6161da177e4SLinus Torvalds kfree(gsf); 6171da177e4SLinus Torvalds break; 6181da177e4SLinus Torvalds } 6191da177e4SLinus Torvalds /* numsrc >= (4G-140)/128 overflow in 32 bits */ 6201da177e4SLinus Torvalds if (gsf->gf_numsrc >= 0x1ffffffU || 6211da177e4SLinus Torvalds gsf->gf_numsrc > sysctl_mld_max_msf) { 6221da177e4SLinus Torvalds kfree(gsf); 6231da177e4SLinus Torvalds retv = -ENOBUFS; 6241da177e4SLinus Torvalds break; 6251da177e4SLinus Torvalds } 6261da177e4SLinus Torvalds if (GROUP_FILTER_SIZE(gsf->gf_numsrc) > optlen) { 6271da177e4SLinus Torvalds kfree(gsf); 6281da177e4SLinus Torvalds retv = -EINVAL; 6291da177e4SLinus Torvalds break; 6301da177e4SLinus Torvalds } 6311da177e4SLinus Torvalds retv = ip6_mc_msfilter(sk, gsf); 6321da177e4SLinus Torvalds kfree(gsf); 6331da177e4SLinus Torvalds 6341da177e4SLinus Torvalds break; 6351da177e4SLinus Torvalds } 6361da177e4SLinus Torvalds case IPV6_ROUTER_ALERT: 6371da177e4SLinus Torvalds retv = ip6_ra_control(sk, val, NULL); 6381da177e4SLinus Torvalds break; 6391da177e4SLinus Torvalds case IPV6_MTU_DISCOVER: 6401da177e4SLinus Torvalds if (val<0 || val>2) 6411da177e4SLinus Torvalds goto e_inval; 6421da177e4SLinus Torvalds np->pmtudisc = val; 6431da177e4SLinus Torvalds retv = 0; 6441da177e4SLinus Torvalds break; 6451da177e4SLinus Torvalds case IPV6_MTU: 6461da177e4SLinus Torvalds if (val && val < IPV6_MIN_MTU) 6471da177e4SLinus Torvalds goto e_inval; 6481da177e4SLinus Torvalds np->frag_size = val; 6491da177e4SLinus Torvalds retv = 0; 6501da177e4SLinus Torvalds break; 6511da177e4SLinus Torvalds case IPV6_RECVERR: 6521da177e4SLinus Torvalds np->recverr = valbool; 6531da177e4SLinus Torvalds if (!val) 6541da177e4SLinus Torvalds skb_queue_purge(&sk->sk_error_queue); 6551da177e4SLinus Torvalds retv = 0; 6561da177e4SLinus Torvalds break; 6571da177e4SLinus Torvalds case IPV6_FLOWINFO_SEND: 6581da177e4SLinus Torvalds np->sndflow = valbool; 6591da177e4SLinus Torvalds retv = 0; 6601da177e4SLinus Torvalds break; 6611da177e4SLinus Torvalds case IPV6_FLOWLABEL_MGR: 6621da177e4SLinus Torvalds retv = ipv6_flowlabel_opt(sk, optval, optlen); 6631da177e4SLinus Torvalds break; 6641da177e4SLinus Torvalds case IPV6_IPSEC_POLICY: 6651da177e4SLinus Torvalds case IPV6_XFRM_POLICY: 6666fc0b4a7SHerbert Xu retv = -EPERM; 6676fc0b4a7SHerbert Xu if (!capable(CAP_NET_ADMIN)) 6686fc0b4a7SHerbert Xu break; 6691da177e4SLinus Torvalds retv = xfrm_user_policy(sk, optname, optval, optlen); 6701da177e4SLinus Torvalds break; 6711da177e4SLinus Torvalds 6721da177e4SLinus Torvalds } 6731da177e4SLinus Torvalds release_sock(sk); 6741da177e4SLinus Torvalds 6751da177e4SLinus Torvalds return retv; 6761da177e4SLinus Torvalds 6771da177e4SLinus Torvalds e_inval: 6781da177e4SLinus Torvalds release_sock(sk); 6791da177e4SLinus Torvalds return -EINVAL; 6801da177e4SLinus Torvalds } 6811da177e4SLinus Torvalds 6823fdadf7dSDmitry Mishin int ipv6_setsockopt(struct sock *sk, int level, int optname, 6833fdadf7dSDmitry Mishin char __user *optval, int optlen) 6843fdadf7dSDmitry Mishin { 6853fdadf7dSDmitry Mishin int err; 6863fdadf7dSDmitry Mishin 6873fdadf7dSDmitry Mishin if (level == SOL_IP && sk->sk_type != SOCK_RAW) 6883fdadf7dSDmitry Mishin return udp_prot.setsockopt(sk, level, optname, optval, optlen); 6893fdadf7dSDmitry Mishin 6903fdadf7dSDmitry Mishin if (level != SOL_IPV6) 6913fdadf7dSDmitry Mishin return -ENOPROTOOPT; 6923fdadf7dSDmitry Mishin 6933fdadf7dSDmitry Mishin err = do_ipv6_setsockopt(sk, level, optname, optval, optlen); 6943fdadf7dSDmitry Mishin #ifdef CONFIG_NETFILTER 6953fdadf7dSDmitry Mishin /* we need to exclude all possible ENOPROTOOPTs except default case */ 6963fdadf7dSDmitry Mishin if (err == -ENOPROTOOPT && optname != IPV6_IPSEC_POLICY && 6973fdadf7dSDmitry Mishin optname != IPV6_XFRM_POLICY) { 6983fdadf7dSDmitry Mishin lock_sock(sk); 6993fdadf7dSDmitry Mishin err = nf_setsockopt(sk, PF_INET6, optname, optval, 7003fdadf7dSDmitry Mishin optlen); 7013fdadf7dSDmitry Mishin release_sock(sk); 7023fdadf7dSDmitry Mishin } 7033fdadf7dSDmitry Mishin #endif 7043fdadf7dSDmitry Mishin return err; 7053fdadf7dSDmitry Mishin } 7063fdadf7dSDmitry Mishin 7073fdadf7dSDmitry Mishin 7083fdadf7dSDmitry Mishin #ifdef CONFIG_COMPAT 7093fdadf7dSDmitry Mishin int compat_ipv6_setsockopt(struct sock *sk, int level, int optname, 7103fdadf7dSDmitry Mishin char __user *optval, int optlen) 7113fdadf7dSDmitry Mishin { 7123fdadf7dSDmitry Mishin int err; 7133fdadf7dSDmitry Mishin 7143fdadf7dSDmitry Mishin if (level == SOL_IP && sk->sk_type != SOCK_RAW) { 715543d9cfeSArnaldo Carvalho de Melo if (udp_prot.compat_setsockopt != NULL) 716543d9cfeSArnaldo Carvalho de Melo return udp_prot.compat_setsockopt(sk, level, optname, 717543d9cfeSArnaldo Carvalho de Melo optval, optlen); 718543d9cfeSArnaldo Carvalho de Melo return udp_prot.setsockopt(sk, level, optname, optval, optlen); 7193fdadf7dSDmitry Mishin } 7203fdadf7dSDmitry Mishin 7213fdadf7dSDmitry Mishin if (level != SOL_IPV6) 7223fdadf7dSDmitry Mishin return -ENOPROTOOPT; 7233fdadf7dSDmitry Mishin 7243fdadf7dSDmitry Mishin err = do_ipv6_setsockopt(sk, level, optname, optval, optlen); 7253fdadf7dSDmitry Mishin #ifdef CONFIG_NETFILTER 7263fdadf7dSDmitry Mishin /* we need to exclude all possible ENOPROTOOPTs except default case */ 7273fdadf7dSDmitry Mishin if (err == -ENOPROTOOPT && optname != IPV6_IPSEC_POLICY && 7283fdadf7dSDmitry Mishin optname != IPV6_XFRM_POLICY) { 7293fdadf7dSDmitry Mishin lock_sock(sk); 730543d9cfeSArnaldo Carvalho de Melo err = compat_nf_setsockopt(sk, PF_INET6, optname, 731543d9cfeSArnaldo Carvalho de Melo optval, optlen); 7323fdadf7dSDmitry Mishin release_sock(sk); 7333fdadf7dSDmitry Mishin } 7343fdadf7dSDmitry Mishin #endif 7353fdadf7dSDmitry Mishin return err; 7363fdadf7dSDmitry Mishin } 737543d9cfeSArnaldo Carvalho de Melo 738543d9cfeSArnaldo Carvalho de Melo EXPORT_SYMBOL(compat_ipv6_setsockopt); 7393fdadf7dSDmitry Mishin #endif 7403fdadf7dSDmitry Mishin 74134a0b3cdSAdrian Bunk static int ipv6_getsockopt_sticky(struct sock *sk, struct ipv6_opt_hdr *hdr, 742333fad53SYOSHIFUJI Hideaki char __user *optval, int len) 743333fad53SYOSHIFUJI Hideaki { 744333fad53SYOSHIFUJI Hideaki if (!hdr) 745333fad53SYOSHIFUJI Hideaki return 0; 746333fad53SYOSHIFUJI Hideaki len = min_t(int, len, ipv6_optlen(hdr)); 747333fad53SYOSHIFUJI Hideaki if (copy_to_user(optval, hdr, ipv6_optlen(hdr))) 748333fad53SYOSHIFUJI Hideaki return -EFAULT; 749333fad53SYOSHIFUJI Hideaki return len; 750333fad53SYOSHIFUJI Hideaki } 751333fad53SYOSHIFUJI Hideaki 7523fdadf7dSDmitry Mishin static int do_ipv6_getsockopt(struct sock *sk, int level, int optname, 7531da177e4SLinus Torvalds char __user *optval, int __user *optlen) 7541da177e4SLinus Torvalds { 7551da177e4SLinus Torvalds struct ipv6_pinfo *np = inet6_sk(sk); 7561da177e4SLinus Torvalds int len; 7571da177e4SLinus Torvalds int val; 7581da177e4SLinus Torvalds 7591da177e4SLinus Torvalds if (get_user(len, optlen)) 7601da177e4SLinus Torvalds return -EFAULT; 7611da177e4SLinus Torvalds switch (optname) { 7621da177e4SLinus Torvalds case IPV6_ADDRFORM: 7631da177e4SLinus Torvalds if (sk->sk_protocol != IPPROTO_UDP && 7641da177e4SLinus Torvalds sk->sk_protocol != IPPROTO_TCP) 7651da177e4SLinus Torvalds return -EINVAL; 7661da177e4SLinus Torvalds if (sk->sk_state != TCP_ESTABLISHED) 7671da177e4SLinus Torvalds return -ENOTCONN; 7681da177e4SLinus Torvalds val = sk->sk_family; 7691da177e4SLinus Torvalds break; 7701da177e4SLinus Torvalds case MCAST_MSFILTER: 7711da177e4SLinus Torvalds { 7721da177e4SLinus Torvalds struct group_filter gsf; 7731da177e4SLinus Torvalds int err; 7741da177e4SLinus Torvalds 7751da177e4SLinus Torvalds if (len < GROUP_FILTER_SIZE(0)) 7761da177e4SLinus Torvalds return -EINVAL; 7771da177e4SLinus Torvalds if (copy_from_user(&gsf, optval, GROUP_FILTER_SIZE(0))) 7781da177e4SLinus Torvalds return -EFAULT; 7791da177e4SLinus Torvalds lock_sock(sk); 7801da177e4SLinus Torvalds err = ip6_mc_msfget(sk, &gsf, 7811da177e4SLinus Torvalds (struct group_filter __user *)optval, optlen); 7821da177e4SLinus Torvalds release_sock(sk); 7831da177e4SLinus Torvalds return err; 7841da177e4SLinus Torvalds } 7851da177e4SLinus Torvalds 786333fad53SYOSHIFUJI Hideaki case IPV6_2292PKTOPTIONS: 7871da177e4SLinus Torvalds { 7881da177e4SLinus Torvalds struct msghdr msg; 7891da177e4SLinus Torvalds struct sk_buff *skb; 7901da177e4SLinus Torvalds 7911da177e4SLinus Torvalds if (sk->sk_type != SOCK_STREAM) 7921da177e4SLinus Torvalds return -ENOPROTOOPT; 7931da177e4SLinus Torvalds 7941da177e4SLinus Torvalds msg.msg_control = optval; 7951da177e4SLinus Torvalds msg.msg_controllen = len; 7961da177e4SLinus Torvalds msg.msg_flags = 0; 7971da177e4SLinus Torvalds 7981da177e4SLinus Torvalds lock_sock(sk); 7991da177e4SLinus Torvalds skb = np->pktoptions; 8001da177e4SLinus Torvalds if (skb) 8011da177e4SLinus Torvalds atomic_inc(&skb->users); 8021da177e4SLinus Torvalds release_sock(sk); 8031da177e4SLinus Torvalds 8041da177e4SLinus Torvalds if (skb) { 8051da177e4SLinus Torvalds int err = datagram_recv_ctl(sk, &msg, skb); 8061da177e4SLinus Torvalds kfree_skb(skb); 8071da177e4SLinus Torvalds if (err) 8081da177e4SLinus Torvalds return err; 8091da177e4SLinus Torvalds } else { 8101da177e4SLinus Torvalds if (np->rxopt.bits.rxinfo) { 8111da177e4SLinus Torvalds struct in6_pktinfo src_info; 8121da177e4SLinus Torvalds src_info.ipi6_ifindex = np->mcast_oif; 8131da177e4SLinus Torvalds ipv6_addr_copy(&src_info.ipi6_addr, &np->daddr); 8141da177e4SLinus Torvalds put_cmsg(&msg, SOL_IPV6, IPV6_PKTINFO, sizeof(src_info), &src_info); 8151da177e4SLinus Torvalds } 8161da177e4SLinus Torvalds if (np->rxopt.bits.rxhlim) { 8171da177e4SLinus Torvalds int hlim = np->mcast_hops; 8181da177e4SLinus Torvalds put_cmsg(&msg, SOL_IPV6, IPV6_HOPLIMIT, sizeof(hlim), &hlim); 8191da177e4SLinus Torvalds } 820333fad53SYOSHIFUJI Hideaki if (np->rxopt.bits.rxoinfo) { 821333fad53SYOSHIFUJI Hideaki struct in6_pktinfo src_info; 822333fad53SYOSHIFUJI Hideaki src_info.ipi6_ifindex = np->mcast_oif; 823333fad53SYOSHIFUJI Hideaki ipv6_addr_copy(&src_info.ipi6_addr, &np->daddr); 824333fad53SYOSHIFUJI Hideaki put_cmsg(&msg, SOL_IPV6, IPV6_2292PKTINFO, sizeof(src_info), &src_info); 825333fad53SYOSHIFUJI Hideaki } 826333fad53SYOSHIFUJI Hideaki if (np->rxopt.bits.rxohlim) { 827333fad53SYOSHIFUJI Hideaki int hlim = np->mcast_hops; 828333fad53SYOSHIFUJI Hideaki put_cmsg(&msg, SOL_IPV6, IPV6_2292HOPLIMIT, sizeof(hlim), &hlim); 829333fad53SYOSHIFUJI Hideaki } 8301da177e4SLinus Torvalds } 8311da177e4SLinus Torvalds len -= msg.msg_controllen; 8321da177e4SLinus Torvalds return put_user(len, optlen); 8331da177e4SLinus Torvalds } 8341da177e4SLinus Torvalds case IPV6_MTU: 8351da177e4SLinus Torvalds { 8361da177e4SLinus Torvalds struct dst_entry *dst; 8371da177e4SLinus Torvalds val = 0; 8381da177e4SLinus Torvalds lock_sock(sk); 8391da177e4SLinus Torvalds dst = sk_dst_get(sk); 8401da177e4SLinus Torvalds if (dst) { 8411da177e4SLinus Torvalds val = dst_mtu(dst); 8421da177e4SLinus Torvalds dst_release(dst); 8431da177e4SLinus Torvalds } 8441da177e4SLinus Torvalds release_sock(sk); 8451da177e4SLinus Torvalds if (!val) 8461da177e4SLinus Torvalds return -ENOTCONN; 8471da177e4SLinus Torvalds break; 8481da177e4SLinus Torvalds } 8491da177e4SLinus Torvalds 8501da177e4SLinus Torvalds case IPV6_V6ONLY: 8511da177e4SLinus Torvalds val = np->ipv6only; 8521da177e4SLinus Torvalds break; 8531da177e4SLinus Torvalds 854333fad53SYOSHIFUJI Hideaki case IPV6_RECVPKTINFO: 8551da177e4SLinus Torvalds val = np->rxopt.bits.rxinfo; 8561da177e4SLinus Torvalds break; 8571da177e4SLinus Torvalds 858333fad53SYOSHIFUJI Hideaki case IPV6_2292PKTINFO: 859333fad53SYOSHIFUJI Hideaki val = np->rxopt.bits.rxoinfo; 860333fad53SYOSHIFUJI Hideaki break; 861333fad53SYOSHIFUJI Hideaki 862333fad53SYOSHIFUJI Hideaki case IPV6_RECVHOPLIMIT: 8631da177e4SLinus Torvalds val = np->rxopt.bits.rxhlim; 8641da177e4SLinus Torvalds break; 8651da177e4SLinus Torvalds 866333fad53SYOSHIFUJI Hideaki case IPV6_2292HOPLIMIT: 867333fad53SYOSHIFUJI Hideaki val = np->rxopt.bits.rxohlim; 868333fad53SYOSHIFUJI Hideaki break; 869333fad53SYOSHIFUJI Hideaki 870333fad53SYOSHIFUJI Hideaki case IPV6_RECVRTHDR: 8711da177e4SLinus Torvalds val = np->rxopt.bits.srcrt; 8721da177e4SLinus Torvalds break; 8731da177e4SLinus Torvalds 874333fad53SYOSHIFUJI Hideaki case IPV6_2292RTHDR: 875333fad53SYOSHIFUJI Hideaki val = np->rxopt.bits.osrcrt; 876333fad53SYOSHIFUJI Hideaki break; 877333fad53SYOSHIFUJI Hideaki 8781da177e4SLinus Torvalds case IPV6_HOPOPTS: 879333fad53SYOSHIFUJI Hideaki case IPV6_RTHDRDSTOPTS: 880333fad53SYOSHIFUJI Hideaki case IPV6_RTHDR: 881333fad53SYOSHIFUJI Hideaki case IPV6_DSTOPTS: 882333fad53SYOSHIFUJI Hideaki { 883333fad53SYOSHIFUJI Hideaki 884333fad53SYOSHIFUJI Hideaki lock_sock(sk); 885333fad53SYOSHIFUJI Hideaki len = ipv6_getsockopt_sticky(sk, np->opt->hopopt, 886333fad53SYOSHIFUJI Hideaki optval, len); 887333fad53SYOSHIFUJI Hideaki release_sock(sk); 888333fad53SYOSHIFUJI Hideaki return put_user(len, optlen); 889333fad53SYOSHIFUJI Hideaki } 890333fad53SYOSHIFUJI Hideaki 891333fad53SYOSHIFUJI Hideaki case IPV6_RECVHOPOPTS: 8921da177e4SLinus Torvalds val = np->rxopt.bits.hopopts; 8931da177e4SLinus Torvalds break; 8941da177e4SLinus Torvalds 895333fad53SYOSHIFUJI Hideaki case IPV6_2292HOPOPTS: 896333fad53SYOSHIFUJI Hideaki val = np->rxopt.bits.ohopopts; 897333fad53SYOSHIFUJI Hideaki break; 898333fad53SYOSHIFUJI Hideaki 899333fad53SYOSHIFUJI Hideaki case IPV6_RECVDSTOPTS: 9001da177e4SLinus Torvalds val = np->rxopt.bits.dstopts; 9011da177e4SLinus Torvalds break; 9021da177e4SLinus Torvalds 903333fad53SYOSHIFUJI Hideaki case IPV6_2292DSTOPTS: 904333fad53SYOSHIFUJI Hideaki val = np->rxopt.bits.odstopts; 905333fad53SYOSHIFUJI Hideaki break; 906333fad53SYOSHIFUJI Hideaki 90741a1f8eaSYOSHIFUJI Hideaki case IPV6_TCLASS: 90841a1f8eaSYOSHIFUJI Hideaki val = np->tclass; 90941a1f8eaSYOSHIFUJI Hideaki break; 91041a1f8eaSYOSHIFUJI Hideaki 91141a1f8eaSYOSHIFUJI Hideaki case IPV6_RECVTCLASS: 91241a1f8eaSYOSHIFUJI Hideaki val = np->rxopt.bits.rxtclass; 91341a1f8eaSYOSHIFUJI Hideaki break; 91441a1f8eaSYOSHIFUJI Hideaki 9151da177e4SLinus Torvalds case IPV6_FLOWINFO: 9161da177e4SLinus Torvalds val = np->rxopt.bits.rxflow; 9171da177e4SLinus Torvalds break; 9181da177e4SLinus Torvalds 9191da177e4SLinus Torvalds case IPV6_UNICAST_HOPS: 9201da177e4SLinus Torvalds val = np->hop_limit; 9211da177e4SLinus Torvalds break; 9221da177e4SLinus Torvalds 9231da177e4SLinus Torvalds case IPV6_MULTICAST_HOPS: 9241da177e4SLinus Torvalds val = np->mcast_hops; 9251da177e4SLinus Torvalds break; 9261da177e4SLinus Torvalds 9271da177e4SLinus Torvalds case IPV6_MULTICAST_LOOP: 9281da177e4SLinus Torvalds val = np->mc_loop; 9291da177e4SLinus Torvalds break; 9301da177e4SLinus Torvalds 9311da177e4SLinus Torvalds case IPV6_MULTICAST_IF: 9321da177e4SLinus Torvalds val = np->mcast_oif; 9331da177e4SLinus Torvalds break; 9341da177e4SLinus Torvalds 9351da177e4SLinus Torvalds case IPV6_MTU_DISCOVER: 9361da177e4SLinus Torvalds val = np->pmtudisc; 9371da177e4SLinus Torvalds break; 9381da177e4SLinus Torvalds 9391da177e4SLinus Torvalds case IPV6_RECVERR: 9401da177e4SLinus Torvalds val = np->recverr; 9411da177e4SLinus Torvalds break; 9421da177e4SLinus Torvalds 9431da177e4SLinus Torvalds case IPV6_FLOWINFO_SEND: 9441da177e4SLinus Torvalds val = np->sndflow; 9451da177e4SLinus Torvalds break; 9461da177e4SLinus Torvalds 9471da177e4SLinus Torvalds default: 9481da177e4SLinus Torvalds return -EINVAL; 9491da177e4SLinus Torvalds } 9501da177e4SLinus Torvalds len = min_t(unsigned int, sizeof(int), len); 9511da177e4SLinus Torvalds if(put_user(len, optlen)) 9521da177e4SLinus Torvalds return -EFAULT; 9531da177e4SLinus Torvalds if(copy_to_user(optval,&val,len)) 9541da177e4SLinus Torvalds return -EFAULT; 9551da177e4SLinus Torvalds return 0; 9561da177e4SLinus Torvalds } 9571da177e4SLinus Torvalds 9583fdadf7dSDmitry Mishin int ipv6_getsockopt(struct sock *sk, int level, int optname, 9593fdadf7dSDmitry Mishin char __user *optval, int __user *optlen) 9603fdadf7dSDmitry Mishin { 9613fdadf7dSDmitry Mishin int err; 9623fdadf7dSDmitry Mishin 9633fdadf7dSDmitry Mishin if (level == SOL_IP && sk->sk_type != SOCK_RAW) 9643fdadf7dSDmitry Mishin return udp_prot.getsockopt(sk, level, optname, optval, optlen); 9653fdadf7dSDmitry Mishin 9663fdadf7dSDmitry Mishin if(level != SOL_IPV6) 9673fdadf7dSDmitry Mishin return -ENOPROTOOPT; 9683fdadf7dSDmitry Mishin 9693fdadf7dSDmitry Mishin err = do_ipv6_getsockopt(sk, level, optname, optval, optlen); 9703fdadf7dSDmitry Mishin #ifdef CONFIG_NETFILTER 9713fdadf7dSDmitry Mishin /* we need to exclude all possible EINVALs except default case */ 972443da0d5SPatrick McHardy if (err == -EINVAL && optname != IPV6_ADDRFORM && 9733fdadf7dSDmitry Mishin optname != MCAST_MSFILTER) { 9743fdadf7dSDmitry Mishin int len; 9753fdadf7dSDmitry Mishin 9763fdadf7dSDmitry Mishin if (get_user(len, optlen)) 9773fdadf7dSDmitry Mishin return -EFAULT; 9783fdadf7dSDmitry Mishin 9793fdadf7dSDmitry Mishin lock_sock(sk); 9803fdadf7dSDmitry Mishin err = nf_getsockopt(sk, PF_INET6, optname, optval, 9813fdadf7dSDmitry Mishin &len); 9823fdadf7dSDmitry Mishin release_sock(sk); 9833fdadf7dSDmitry Mishin if (err >= 0) 9843fdadf7dSDmitry Mishin err = put_user(len, optlen); 9853fdadf7dSDmitry Mishin } 9863fdadf7dSDmitry Mishin #endif 9873fdadf7dSDmitry Mishin return err; 9883fdadf7dSDmitry Mishin } 9893fdadf7dSDmitry Mishin 9903fdadf7dSDmitry Mishin #ifdef CONFIG_COMPAT 9913fdadf7dSDmitry Mishin int compat_ipv6_getsockopt(struct sock *sk, int level, int optname, 9923fdadf7dSDmitry Mishin char __user *optval, int __user *optlen) 9933fdadf7dSDmitry Mishin { 9943fdadf7dSDmitry Mishin int err; 9953fdadf7dSDmitry Mishin 9963fdadf7dSDmitry Mishin if (level == SOL_IP && sk->sk_type != SOCK_RAW) { 997543d9cfeSArnaldo Carvalho de Melo if (udp_prot.compat_getsockopt != NULL) 998543d9cfeSArnaldo Carvalho de Melo return udp_prot.compat_getsockopt(sk, level, optname, 999543d9cfeSArnaldo Carvalho de Melo optval, optlen); 1000543d9cfeSArnaldo Carvalho de Melo return udp_prot.getsockopt(sk, level, optname, optval, optlen); 10013fdadf7dSDmitry Mishin } 10023fdadf7dSDmitry Mishin 10033fdadf7dSDmitry Mishin if (level != SOL_IPV6) 10043fdadf7dSDmitry Mishin return -ENOPROTOOPT; 10053fdadf7dSDmitry Mishin 10063fdadf7dSDmitry Mishin err = do_ipv6_getsockopt(sk, level, optname, optval, optlen); 10073fdadf7dSDmitry Mishin #ifdef CONFIG_NETFILTER 10083fdadf7dSDmitry Mishin /* we need to exclude all possible EINVALs except default case */ 1009443da0d5SPatrick McHardy if (err == -EINVAL && optname != IPV6_ADDRFORM && 10103fdadf7dSDmitry Mishin optname != MCAST_MSFILTER) { 10113fdadf7dSDmitry Mishin int len; 10123fdadf7dSDmitry Mishin 10133fdadf7dSDmitry Mishin if (get_user(len, optlen)) 10143fdadf7dSDmitry Mishin return -EFAULT; 10153fdadf7dSDmitry Mishin 10163fdadf7dSDmitry Mishin lock_sock(sk); 1017543d9cfeSArnaldo Carvalho de Melo err = compat_nf_getsockopt(sk, PF_INET6, 1018543d9cfeSArnaldo Carvalho de Melo optname, optval, &len); 10193fdadf7dSDmitry Mishin release_sock(sk); 10203fdadf7dSDmitry Mishin if (err >= 0) 10213fdadf7dSDmitry Mishin err = put_user(len, optlen); 10223fdadf7dSDmitry Mishin } 10233fdadf7dSDmitry Mishin #endif 10243fdadf7dSDmitry Mishin return err; 10253fdadf7dSDmitry Mishin } 1026543d9cfeSArnaldo Carvalho de Melo 1027543d9cfeSArnaldo Carvalho de Melo EXPORT_SYMBOL(compat_ipv6_getsockopt); 10283fdadf7dSDmitry Mishin #endif 10293fdadf7dSDmitry Mishin 10301da177e4SLinus Torvalds void __init ipv6_packet_init(void) 10311da177e4SLinus Torvalds { 10321da177e4SLinus Torvalds dev_add_pack(&ipv6_packet_type); 10331da177e4SLinus Torvalds } 10341da177e4SLinus Torvalds 10351da177e4SLinus Torvalds void ipv6_packet_cleanup(void) 10361da177e4SLinus Torvalds { 10371da177e4SLinus Torvalds dev_remove_pack(&ipv6_packet_type); 10381da177e4SLinus Torvalds } 1039