11da177e4SLinus Torvalds /* 21da177e4SLinus Torvalds * IPv6 BSD socket options interface 31da177e4SLinus Torvalds * Linux INET6 implementation 41da177e4SLinus Torvalds * 51da177e4SLinus Torvalds * Authors: 61da177e4SLinus Torvalds * Pedro Roque <roque@di.fc.ul.pt> 71da177e4SLinus Torvalds * 81da177e4SLinus Torvalds * Based on linux/net/ipv4/ip_sockglue.c 91da177e4SLinus Torvalds * 101da177e4SLinus Torvalds * $Id: ipv6_sockglue.c,v 1.41 2002/02/01 22:01:04 davem Exp $ 111da177e4SLinus Torvalds * 121da177e4SLinus Torvalds * This program is free software; you can redistribute it and/or 131da177e4SLinus Torvalds * modify it under the terms of the GNU General Public License 141da177e4SLinus Torvalds * as published by the Free Software Foundation; either version 151da177e4SLinus Torvalds * 2 of the License, or (at your option) any later version. 161da177e4SLinus Torvalds * 171da177e4SLinus Torvalds * FIXME: Make the setsockopt code POSIX compliant: That is 181da177e4SLinus Torvalds * 191da177e4SLinus Torvalds * o Return -EINVAL for setsockopt of short lengths 201da177e4SLinus Torvalds * o Truncate getsockopt returns 211da177e4SLinus Torvalds * o Return an optlen of the truncated length if need be 221da177e4SLinus Torvalds * 231da177e4SLinus Torvalds * Changes: 241da177e4SLinus Torvalds * David L Stevens <dlstevens@us.ibm.com>: 251da177e4SLinus Torvalds * - added multicast source filtering API for MLDv2 261da177e4SLinus Torvalds */ 271da177e4SLinus Torvalds 281da177e4SLinus Torvalds #include <linux/module.h> 294fc268d2SRandy Dunlap #include <linux/capability.h> 301da177e4SLinus Torvalds #include <linux/errno.h> 311da177e4SLinus Torvalds #include <linux/types.h> 321da177e4SLinus Torvalds #include <linux/socket.h> 331da177e4SLinus Torvalds #include <linux/sockios.h> 341da177e4SLinus Torvalds #include <linux/sched.h> 351da177e4SLinus Torvalds #include <linux/net.h> 361da177e4SLinus Torvalds #include <linux/in6.h> 371da177e4SLinus Torvalds #include <linux/netdevice.h> 381da177e4SLinus Torvalds #include <linux/if_arp.h> 391da177e4SLinus Torvalds #include <linux/init.h> 401da177e4SLinus Torvalds #include <linux/sysctl.h> 411da177e4SLinus Torvalds #include <linux/netfilter.h> 421da177e4SLinus Torvalds 431da177e4SLinus Torvalds #include <net/sock.h> 441da177e4SLinus Torvalds #include <net/snmp.h> 451da177e4SLinus Torvalds #include <net/ipv6.h> 461da177e4SLinus Torvalds #include <net/ndisc.h> 471da177e4SLinus Torvalds #include <net/protocol.h> 481da177e4SLinus Torvalds #include <net/transp_v6.h> 491da177e4SLinus Torvalds #include <net/ip6_route.h> 501da177e4SLinus Torvalds #include <net/addrconf.h> 511da177e4SLinus Torvalds #include <net/inet_common.h> 521da177e4SLinus Torvalds #include <net/tcp.h> 531da177e4SLinus Torvalds #include <net/udp.h> 541da177e4SLinus Torvalds #include <net/xfrm.h> 551da177e4SLinus Torvalds 561da177e4SLinus Torvalds #include <asm/uaccess.h> 571da177e4SLinus Torvalds 58ba89966cSEric Dumazet DEFINE_SNMP_STAT(struct ipstats_mib, ipv6_statistics) __read_mostly; 591da177e4SLinus Torvalds 60adcfc7d0SHerbert Xu static struct sk_buff *ipv6_gso_segment(struct sk_buff *skb, int features) 61adcfc7d0SHerbert Xu { 62adcfc7d0SHerbert Xu struct sk_buff *segs = ERR_PTR(-EINVAL); 63adcfc7d0SHerbert Xu struct ipv6hdr *ipv6h; 64adcfc7d0SHerbert Xu struct inet6_protocol *ops; 65adcfc7d0SHerbert Xu int proto; 66adcfc7d0SHerbert Xu 67bbcf467dSHerbert Xu if (unlikely(skb_shinfo(skb)->gso_type & 68bbcf467dSHerbert Xu ~(SKB_GSO_UDP | 69bbcf467dSHerbert Xu SKB_GSO_DODGY | 70bbcf467dSHerbert Xu SKB_GSO_TCP_ECN | 71bbcf467dSHerbert Xu SKB_GSO_TCPV6 | 72bbcf467dSHerbert Xu 0))) 73bbcf467dSHerbert Xu goto out; 74bbcf467dSHerbert Xu 75adcfc7d0SHerbert Xu if (unlikely(!pskb_may_pull(skb, sizeof(*ipv6h)))) 76adcfc7d0SHerbert Xu goto out; 77adcfc7d0SHerbert Xu 78adcfc7d0SHerbert Xu ipv6h = skb->nh.ipv6h; 79adcfc7d0SHerbert Xu proto = ipv6h->nexthdr; 80adcfc7d0SHerbert Xu __skb_pull(skb, sizeof(*ipv6h)); 81adcfc7d0SHerbert Xu 82adcfc7d0SHerbert Xu rcu_read_lock(); 83adcfc7d0SHerbert Xu for (;;) { 84adcfc7d0SHerbert Xu struct ipv6_opt_hdr *opth; 85adcfc7d0SHerbert Xu int len; 86adcfc7d0SHerbert Xu 87adcfc7d0SHerbert Xu if (proto != NEXTHDR_HOP) { 88adcfc7d0SHerbert Xu ops = rcu_dereference(inet6_protos[proto]); 89adcfc7d0SHerbert Xu 90adcfc7d0SHerbert Xu if (unlikely(!ops)) 91adcfc7d0SHerbert Xu goto unlock; 92adcfc7d0SHerbert Xu 93adcfc7d0SHerbert Xu if (!(ops->flags & INET6_PROTO_GSO_EXTHDR)) 94adcfc7d0SHerbert Xu break; 95adcfc7d0SHerbert Xu } 96adcfc7d0SHerbert Xu 97adcfc7d0SHerbert Xu if (unlikely(!pskb_may_pull(skb, 8))) 98adcfc7d0SHerbert Xu goto unlock; 99adcfc7d0SHerbert Xu 100adcfc7d0SHerbert Xu opth = (void *)skb->data; 101adcfc7d0SHerbert Xu len = opth->hdrlen * 8 + 8; 102adcfc7d0SHerbert Xu 103adcfc7d0SHerbert Xu if (unlikely(!pskb_may_pull(skb, len))) 104adcfc7d0SHerbert Xu goto unlock; 105adcfc7d0SHerbert Xu 106adcfc7d0SHerbert Xu proto = opth->nexthdr; 107adcfc7d0SHerbert Xu __skb_pull(skb, len); 108adcfc7d0SHerbert Xu } 109adcfc7d0SHerbert Xu 110adcfc7d0SHerbert Xu skb->h.raw = skb->data; 111adcfc7d0SHerbert Xu if (likely(ops->gso_segment)) 112adcfc7d0SHerbert Xu segs = ops->gso_segment(skb, features); 113adcfc7d0SHerbert Xu 114adcfc7d0SHerbert Xu unlock: 115adcfc7d0SHerbert Xu rcu_read_unlock(); 116adcfc7d0SHerbert Xu 117adcfc7d0SHerbert Xu if (unlikely(IS_ERR(segs))) 118adcfc7d0SHerbert Xu goto out; 119adcfc7d0SHerbert Xu 120adcfc7d0SHerbert Xu for (skb = segs; skb; skb = skb->next) { 121adcfc7d0SHerbert Xu ipv6h = skb->nh.ipv6h; 122adcfc7d0SHerbert Xu ipv6h->payload_len = htons(skb->len - skb->mac_len); 123adcfc7d0SHerbert Xu } 124adcfc7d0SHerbert Xu 125adcfc7d0SHerbert Xu out: 126adcfc7d0SHerbert Xu return segs; 127adcfc7d0SHerbert Xu } 128adcfc7d0SHerbert Xu 1291da177e4SLinus Torvalds static struct packet_type ipv6_packet_type = { 1301da177e4SLinus Torvalds .type = __constant_htons(ETH_P_IPV6), 1311da177e4SLinus Torvalds .func = ipv6_rcv, 132adcfc7d0SHerbert Xu .gso_segment = ipv6_gso_segment, 1331da177e4SLinus Torvalds }; 1341da177e4SLinus Torvalds 1351da177e4SLinus Torvalds struct ip6_ra_chain *ip6_ra_chain; 1361da177e4SLinus Torvalds DEFINE_RWLOCK(ip6_ra_lock); 1371da177e4SLinus Torvalds 1381da177e4SLinus Torvalds int ip6_ra_control(struct sock *sk, int sel, void (*destructor)(struct sock *)) 1391da177e4SLinus Torvalds { 1401da177e4SLinus Torvalds struct ip6_ra_chain *ra, *new_ra, **rap; 1411da177e4SLinus Torvalds 1421da177e4SLinus Torvalds /* RA packet may be delivered ONLY to IPPROTO_RAW socket */ 1431da177e4SLinus Torvalds if (sk->sk_type != SOCK_RAW || inet_sk(sk)->num != IPPROTO_RAW) 1441da177e4SLinus Torvalds return -EINVAL; 1451da177e4SLinus Torvalds 1461da177e4SLinus Torvalds new_ra = (sel>=0) ? kmalloc(sizeof(*new_ra), GFP_KERNEL) : NULL; 1471da177e4SLinus Torvalds 1481da177e4SLinus Torvalds write_lock_bh(&ip6_ra_lock); 1491da177e4SLinus Torvalds for (rap = &ip6_ra_chain; (ra=*rap) != NULL; rap = &ra->next) { 1501da177e4SLinus Torvalds if (ra->sk == sk) { 1511da177e4SLinus Torvalds if (sel>=0) { 1521da177e4SLinus Torvalds write_unlock_bh(&ip6_ra_lock); 1531da177e4SLinus Torvalds kfree(new_ra); 1541da177e4SLinus Torvalds return -EADDRINUSE; 1551da177e4SLinus Torvalds } 1561da177e4SLinus Torvalds 1571da177e4SLinus Torvalds *rap = ra->next; 1581da177e4SLinus Torvalds write_unlock_bh(&ip6_ra_lock); 1591da177e4SLinus Torvalds 1601da177e4SLinus Torvalds if (ra->destructor) 1611da177e4SLinus Torvalds ra->destructor(sk); 1621da177e4SLinus Torvalds sock_put(sk); 1631da177e4SLinus Torvalds kfree(ra); 1641da177e4SLinus Torvalds return 0; 1651da177e4SLinus Torvalds } 1661da177e4SLinus Torvalds } 1671da177e4SLinus Torvalds if (new_ra == NULL) { 1681da177e4SLinus Torvalds write_unlock_bh(&ip6_ra_lock); 1691da177e4SLinus Torvalds return -ENOBUFS; 1701da177e4SLinus Torvalds } 1711da177e4SLinus Torvalds new_ra->sk = sk; 1721da177e4SLinus Torvalds new_ra->sel = sel; 1731da177e4SLinus Torvalds new_ra->destructor = destructor; 1741da177e4SLinus Torvalds new_ra->next = ra; 1751da177e4SLinus Torvalds *rap = new_ra; 1761da177e4SLinus Torvalds sock_hold(sk); 1771da177e4SLinus Torvalds write_unlock_bh(&ip6_ra_lock); 1781da177e4SLinus Torvalds return 0; 1791da177e4SLinus Torvalds } 1801da177e4SLinus Torvalds 1813fdadf7dSDmitry Mishin static int do_ipv6_setsockopt(struct sock *sk, int level, int optname, 1821da177e4SLinus Torvalds char __user *optval, int optlen) 1831da177e4SLinus Torvalds { 1841da177e4SLinus Torvalds struct ipv6_pinfo *np = inet6_sk(sk); 1851da177e4SLinus Torvalds int val, valbool; 1861da177e4SLinus Torvalds int retv = -ENOPROTOOPT; 1871da177e4SLinus Torvalds 1881da177e4SLinus Torvalds if (optval == NULL) 1891da177e4SLinus Torvalds val=0; 1901da177e4SLinus Torvalds else if (get_user(val, (int __user *) optval)) 1911da177e4SLinus Torvalds return -EFAULT; 1921da177e4SLinus Torvalds 1931da177e4SLinus Torvalds valbool = (val!=0); 1941da177e4SLinus Torvalds 1951da177e4SLinus Torvalds lock_sock(sk); 1961da177e4SLinus Torvalds 1971da177e4SLinus Torvalds switch (optname) { 1981da177e4SLinus Torvalds 1991da177e4SLinus Torvalds case IPV6_ADDRFORM: 2001da177e4SLinus Torvalds if (val == PF_INET) { 2011da177e4SLinus Torvalds struct ipv6_txoptions *opt; 2021da177e4SLinus Torvalds struct sk_buff *pktopt; 2031da177e4SLinus Torvalds 2041da177e4SLinus Torvalds if (sk->sk_protocol != IPPROTO_UDP && 2051da177e4SLinus Torvalds sk->sk_protocol != IPPROTO_TCP) 2061da177e4SLinus Torvalds break; 2071da177e4SLinus Torvalds 2081da177e4SLinus Torvalds if (sk->sk_state != TCP_ESTABLISHED) { 2091da177e4SLinus Torvalds retv = -ENOTCONN; 2101da177e4SLinus Torvalds break; 2111da177e4SLinus Torvalds } 2121da177e4SLinus Torvalds 2131da177e4SLinus Torvalds if (ipv6_only_sock(sk) || 2141da177e4SLinus Torvalds !(ipv6_addr_type(&np->daddr) & IPV6_ADDR_MAPPED)) { 2151da177e4SLinus Torvalds retv = -EADDRNOTAVAIL; 2161da177e4SLinus Torvalds break; 2171da177e4SLinus Torvalds } 2181da177e4SLinus Torvalds 2191da177e4SLinus Torvalds fl6_free_socklist(sk); 2201da177e4SLinus Torvalds ipv6_sock_mc_close(sk); 2211da177e4SLinus Torvalds 222e6848976SArnaldo Carvalho de Melo /* 223e6848976SArnaldo Carvalho de Melo * Sock is moving from IPv6 to IPv4 (sk_prot), so 224e6848976SArnaldo Carvalho de Melo * remove it from the refcnt debug socks count in the 225e6848976SArnaldo Carvalho de Melo * original family... 226e6848976SArnaldo Carvalho de Melo */ 227e6848976SArnaldo Carvalho de Melo sk_refcnt_debug_dec(sk); 228e6848976SArnaldo Carvalho de Melo 2291da177e4SLinus Torvalds if (sk->sk_protocol == IPPROTO_TCP) { 230d83d8461SArnaldo Carvalho de Melo struct inet_connection_sock *icsk = inet_csk(sk); 2311da177e4SLinus Torvalds 2321da177e4SLinus Torvalds local_bh_disable(); 2331da177e4SLinus Torvalds sock_prot_dec_use(sk->sk_prot); 2341da177e4SLinus Torvalds sock_prot_inc_use(&tcp_prot); 2351da177e4SLinus Torvalds local_bh_enable(); 2361da177e4SLinus Torvalds sk->sk_prot = &tcp_prot; 237d83d8461SArnaldo Carvalho de Melo icsk->icsk_af_ops = &ipv4_specific; 2381da177e4SLinus Torvalds sk->sk_socket->ops = &inet_stream_ops; 2391da177e4SLinus Torvalds sk->sk_family = PF_INET; 240d83d8461SArnaldo Carvalho de Melo tcp_sync_mss(sk, icsk->icsk_pmtu_cookie); 2411da177e4SLinus Torvalds } else { 2421da177e4SLinus Torvalds local_bh_disable(); 2431da177e4SLinus Torvalds sock_prot_dec_use(sk->sk_prot); 2441da177e4SLinus Torvalds sock_prot_inc_use(&udp_prot); 2451da177e4SLinus Torvalds local_bh_enable(); 2461da177e4SLinus Torvalds sk->sk_prot = &udp_prot; 2471da177e4SLinus Torvalds sk->sk_socket->ops = &inet_dgram_ops; 2481da177e4SLinus Torvalds sk->sk_family = PF_INET; 2491da177e4SLinus Torvalds } 2501da177e4SLinus Torvalds opt = xchg(&np->opt, NULL); 2511da177e4SLinus Torvalds if (opt) 2521da177e4SLinus Torvalds sock_kfree_s(sk, opt, opt->tot_len); 2531da177e4SLinus Torvalds pktopt = xchg(&np->pktoptions, NULL); 2541da177e4SLinus Torvalds if (pktopt) 2551da177e4SLinus Torvalds kfree_skb(pktopt); 2561da177e4SLinus Torvalds 2571da177e4SLinus Torvalds sk->sk_destruct = inet_sock_destruct; 258e6848976SArnaldo Carvalho de Melo /* 259e6848976SArnaldo Carvalho de Melo * ... and add it to the refcnt debug socks count 260e6848976SArnaldo Carvalho de Melo * in the new family. -acme 261e6848976SArnaldo Carvalho de Melo */ 262e6848976SArnaldo Carvalho de Melo sk_refcnt_debug_inc(sk); 2631da177e4SLinus Torvalds module_put(THIS_MODULE); 2641da177e4SLinus Torvalds retv = 0; 2651da177e4SLinus Torvalds break; 2661da177e4SLinus Torvalds } 2671da177e4SLinus Torvalds goto e_inval; 2681da177e4SLinus Torvalds 2691da177e4SLinus Torvalds case IPV6_V6ONLY: 2701da177e4SLinus Torvalds if (inet_sk(sk)->num) 2711da177e4SLinus Torvalds goto e_inval; 2721da177e4SLinus Torvalds np->ipv6only = valbool; 2731da177e4SLinus Torvalds retv = 0; 2741da177e4SLinus Torvalds break; 2751da177e4SLinus Torvalds 276333fad53SYOSHIFUJI Hideaki case IPV6_RECVPKTINFO: 2771da177e4SLinus Torvalds np->rxopt.bits.rxinfo = valbool; 2781da177e4SLinus Torvalds retv = 0; 2791da177e4SLinus Torvalds break; 2801da177e4SLinus Torvalds 281333fad53SYOSHIFUJI Hideaki case IPV6_2292PKTINFO: 282333fad53SYOSHIFUJI Hideaki np->rxopt.bits.rxoinfo = valbool; 283333fad53SYOSHIFUJI Hideaki retv = 0; 284333fad53SYOSHIFUJI Hideaki break; 285333fad53SYOSHIFUJI Hideaki 286333fad53SYOSHIFUJI Hideaki case IPV6_RECVHOPLIMIT: 2871da177e4SLinus Torvalds np->rxopt.bits.rxhlim = valbool; 2881da177e4SLinus Torvalds retv = 0; 2891da177e4SLinus Torvalds break; 2901da177e4SLinus Torvalds 291333fad53SYOSHIFUJI Hideaki case IPV6_2292HOPLIMIT: 292333fad53SYOSHIFUJI Hideaki np->rxopt.bits.rxohlim = valbool; 293333fad53SYOSHIFUJI Hideaki retv = 0; 294333fad53SYOSHIFUJI Hideaki break; 295333fad53SYOSHIFUJI Hideaki 296333fad53SYOSHIFUJI Hideaki case IPV6_RECVRTHDR: 2971da177e4SLinus Torvalds if (val < 0 || val > 2) 2981da177e4SLinus Torvalds goto e_inval; 2991da177e4SLinus Torvalds np->rxopt.bits.srcrt = val; 3001da177e4SLinus Torvalds retv = 0; 3011da177e4SLinus Torvalds break; 3021da177e4SLinus Torvalds 303333fad53SYOSHIFUJI Hideaki case IPV6_2292RTHDR: 304333fad53SYOSHIFUJI Hideaki if (val < 0 || val > 2) 305333fad53SYOSHIFUJI Hideaki goto e_inval; 306333fad53SYOSHIFUJI Hideaki np->rxopt.bits.osrcrt = val; 307333fad53SYOSHIFUJI Hideaki retv = 0; 308333fad53SYOSHIFUJI Hideaki break; 309333fad53SYOSHIFUJI Hideaki 310333fad53SYOSHIFUJI Hideaki case IPV6_RECVHOPOPTS: 3111da177e4SLinus Torvalds np->rxopt.bits.hopopts = valbool; 3121da177e4SLinus Torvalds retv = 0; 3131da177e4SLinus Torvalds break; 3141da177e4SLinus Torvalds 315333fad53SYOSHIFUJI Hideaki case IPV6_2292HOPOPTS: 316333fad53SYOSHIFUJI Hideaki np->rxopt.bits.ohopopts = valbool; 317333fad53SYOSHIFUJI Hideaki retv = 0; 318333fad53SYOSHIFUJI Hideaki break; 319333fad53SYOSHIFUJI Hideaki 320333fad53SYOSHIFUJI Hideaki case IPV6_RECVDSTOPTS: 3211da177e4SLinus Torvalds np->rxopt.bits.dstopts = valbool; 3221da177e4SLinus Torvalds retv = 0; 3231da177e4SLinus Torvalds break; 3241da177e4SLinus Torvalds 325333fad53SYOSHIFUJI Hideaki case IPV6_2292DSTOPTS: 326333fad53SYOSHIFUJI Hideaki np->rxopt.bits.odstopts = valbool; 327333fad53SYOSHIFUJI Hideaki retv = 0; 328333fad53SYOSHIFUJI Hideaki break; 329333fad53SYOSHIFUJI Hideaki 33041a1f8eaSYOSHIFUJI Hideaki case IPV6_TCLASS: 33141a1f8eaSYOSHIFUJI Hideaki if (val < 0 || val > 0xff) 33241a1f8eaSYOSHIFUJI Hideaki goto e_inval; 33341a1f8eaSYOSHIFUJI Hideaki np->tclass = val; 33441a1f8eaSYOSHIFUJI Hideaki retv = 0; 33541a1f8eaSYOSHIFUJI Hideaki break; 33641a1f8eaSYOSHIFUJI Hideaki 33741a1f8eaSYOSHIFUJI Hideaki case IPV6_RECVTCLASS: 33841a1f8eaSYOSHIFUJI Hideaki np->rxopt.bits.rxtclass = valbool; 33941a1f8eaSYOSHIFUJI Hideaki retv = 0; 34041a1f8eaSYOSHIFUJI Hideaki break; 34141a1f8eaSYOSHIFUJI Hideaki 3421da177e4SLinus Torvalds case IPV6_FLOWINFO: 3431da177e4SLinus Torvalds np->rxopt.bits.rxflow = valbool; 3441da177e4SLinus Torvalds retv = 0; 3451da177e4SLinus Torvalds break; 3461da177e4SLinus Torvalds 347333fad53SYOSHIFUJI Hideaki case IPV6_HOPOPTS: 348333fad53SYOSHIFUJI Hideaki case IPV6_RTHDRDSTOPTS: 349333fad53SYOSHIFUJI Hideaki case IPV6_RTHDR: 350333fad53SYOSHIFUJI Hideaki case IPV6_DSTOPTS: 351333fad53SYOSHIFUJI Hideaki { 352333fad53SYOSHIFUJI Hideaki struct ipv6_txoptions *opt; 353333fad53SYOSHIFUJI Hideaki if (optlen == 0) 354cb422c46SLuiz Capitulino optval = NULL; 355333fad53SYOSHIFUJI Hideaki 356333fad53SYOSHIFUJI Hideaki /* hop-by-hop / destination options are privileged option */ 357333fad53SYOSHIFUJI Hideaki retv = -EPERM; 358333fad53SYOSHIFUJI Hideaki if (optname != IPV6_RTHDR && !capable(CAP_NET_RAW)) 359333fad53SYOSHIFUJI Hideaki break; 360333fad53SYOSHIFUJI Hideaki 361333fad53SYOSHIFUJI Hideaki retv = -EINVAL; 362333fad53SYOSHIFUJI Hideaki if (optlen & 0x7 || optlen > 8 * 255) 363333fad53SYOSHIFUJI Hideaki break; 364333fad53SYOSHIFUJI Hideaki 365333fad53SYOSHIFUJI Hideaki opt = ipv6_renew_options(sk, np->opt, optname, 366333fad53SYOSHIFUJI Hideaki (struct ipv6_opt_hdr __user *)optval, 367333fad53SYOSHIFUJI Hideaki optlen); 368333fad53SYOSHIFUJI Hideaki if (IS_ERR(opt)) { 369333fad53SYOSHIFUJI Hideaki retv = PTR_ERR(opt); 370333fad53SYOSHIFUJI Hideaki break; 371333fad53SYOSHIFUJI Hideaki } 372333fad53SYOSHIFUJI Hideaki 373333fad53SYOSHIFUJI Hideaki /* routing header option needs extra check */ 374333fad53SYOSHIFUJI Hideaki if (optname == IPV6_RTHDR && opt->srcrt) { 375333fad53SYOSHIFUJI Hideaki struct ipv6_rt_hdr *rthdr = opt->srcrt; 376333fad53SYOSHIFUJI Hideaki if (rthdr->type) 377333fad53SYOSHIFUJI Hideaki goto sticky_done; 378333fad53SYOSHIFUJI Hideaki if ((rthdr->hdrlen & 1) || 379333fad53SYOSHIFUJI Hideaki (rthdr->hdrlen >> 1) != rthdr->segments_left) 380333fad53SYOSHIFUJI Hideaki goto sticky_done; 381333fad53SYOSHIFUJI Hideaki } 382333fad53SYOSHIFUJI Hideaki 383333fad53SYOSHIFUJI Hideaki retv = 0; 384d83d8461SArnaldo Carvalho de Melo if (inet_sk(sk)->is_icsk) { 385333fad53SYOSHIFUJI Hideaki if (opt) { 386d83d8461SArnaldo Carvalho de Melo struct inet_connection_sock *icsk = inet_csk(sk); 387333fad53SYOSHIFUJI Hideaki if (!((1 << sk->sk_state) & 388333fad53SYOSHIFUJI Hideaki (TCPF_LISTEN | TCPF_CLOSE)) 389333fad53SYOSHIFUJI Hideaki && inet_sk(sk)->daddr != LOOPBACK4_IPV6) { 390d83d8461SArnaldo Carvalho de Melo icsk->icsk_ext_hdr_len = 391d83d8461SArnaldo Carvalho de Melo opt->opt_flen + opt->opt_nflen; 392d83d8461SArnaldo Carvalho de Melo icsk->icsk_sync_mss(sk, icsk->icsk_pmtu_cookie); 393333fad53SYOSHIFUJI Hideaki } 394333fad53SYOSHIFUJI Hideaki } 395333fad53SYOSHIFUJI Hideaki opt = xchg(&np->opt, opt); 396333fad53SYOSHIFUJI Hideaki sk_dst_reset(sk); 397333fad53SYOSHIFUJI Hideaki } else { 398333fad53SYOSHIFUJI Hideaki write_lock(&sk->sk_dst_lock); 399333fad53SYOSHIFUJI Hideaki opt = xchg(&np->opt, opt); 400333fad53SYOSHIFUJI Hideaki write_unlock(&sk->sk_dst_lock); 401333fad53SYOSHIFUJI Hideaki sk_dst_reset(sk); 402333fad53SYOSHIFUJI Hideaki } 403333fad53SYOSHIFUJI Hideaki sticky_done: 404333fad53SYOSHIFUJI Hideaki if (opt) 405333fad53SYOSHIFUJI Hideaki sock_kfree_s(sk, opt, opt->tot_len); 406333fad53SYOSHIFUJI Hideaki break; 407333fad53SYOSHIFUJI Hideaki } 408333fad53SYOSHIFUJI Hideaki 409333fad53SYOSHIFUJI Hideaki case IPV6_2292PKTOPTIONS: 4101da177e4SLinus Torvalds { 4111da177e4SLinus Torvalds struct ipv6_txoptions *opt = NULL; 4121da177e4SLinus Torvalds struct msghdr msg; 4131da177e4SLinus Torvalds struct flowi fl; 4141da177e4SLinus Torvalds int junk; 4151da177e4SLinus Torvalds 4161da177e4SLinus Torvalds fl.fl6_flowlabel = 0; 4171da177e4SLinus Torvalds fl.oif = sk->sk_bound_dev_if; 4181da177e4SLinus Torvalds 4191da177e4SLinus Torvalds if (optlen == 0) 4201da177e4SLinus Torvalds goto update; 4211da177e4SLinus Torvalds 4221da177e4SLinus Torvalds /* 1K is probably excessive 4231da177e4SLinus Torvalds * 1K is surely not enough, 2K per standard header is 16K. 4241da177e4SLinus Torvalds */ 4251da177e4SLinus Torvalds retv = -EINVAL; 4261da177e4SLinus Torvalds if (optlen > 64*1024) 4271da177e4SLinus Torvalds break; 4281da177e4SLinus Torvalds 4291da177e4SLinus Torvalds opt = sock_kmalloc(sk, sizeof(*opt) + optlen, GFP_KERNEL); 4301da177e4SLinus Torvalds retv = -ENOBUFS; 4311da177e4SLinus Torvalds if (opt == NULL) 4321da177e4SLinus Torvalds break; 4331da177e4SLinus Torvalds 4341da177e4SLinus Torvalds memset(opt, 0, sizeof(*opt)); 4351da177e4SLinus Torvalds opt->tot_len = sizeof(*opt) + optlen; 4361da177e4SLinus Torvalds retv = -EFAULT; 4371da177e4SLinus Torvalds if (copy_from_user(opt+1, optval, optlen)) 4381da177e4SLinus Torvalds goto done; 4391da177e4SLinus Torvalds 4401da177e4SLinus Torvalds msg.msg_controllen = optlen; 4411da177e4SLinus Torvalds msg.msg_control = (void*)(opt+1); 4421da177e4SLinus Torvalds 44341a1f8eaSYOSHIFUJI Hideaki retv = datagram_send_ctl(&msg, &fl, opt, &junk, &junk); 4441da177e4SLinus Torvalds if (retv) 4451da177e4SLinus Torvalds goto done; 4461da177e4SLinus Torvalds update: 4471da177e4SLinus Torvalds retv = 0; 448d83d8461SArnaldo Carvalho de Melo if (inet_sk(sk)->is_icsk) { 4491da177e4SLinus Torvalds if (opt) { 450d83d8461SArnaldo Carvalho de Melo struct inet_connection_sock *icsk = inet_csk(sk); 4511da177e4SLinus Torvalds if (!((1 << sk->sk_state) & 4521da177e4SLinus Torvalds (TCPF_LISTEN | TCPF_CLOSE)) 4531da177e4SLinus Torvalds && inet_sk(sk)->daddr != LOOPBACK4_IPV6) { 454d83d8461SArnaldo Carvalho de Melo icsk->icsk_ext_hdr_len = 455d83d8461SArnaldo Carvalho de Melo opt->opt_flen + opt->opt_nflen; 456d83d8461SArnaldo Carvalho de Melo icsk->icsk_sync_mss(sk, icsk->icsk_pmtu_cookie); 4571da177e4SLinus Torvalds } 4581da177e4SLinus Torvalds } 4591da177e4SLinus Torvalds opt = xchg(&np->opt, opt); 4601da177e4SLinus Torvalds sk_dst_reset(sk); 4611da177e4SLinus Torvalds } else { 4621da177e4SLinus Torvalds write_lock(&sk->sk_dst_lock); 4631da177e4SLinus Torvalds opt = xchg(&np->opt, opt); 4641da177e4SLinus Torvalds write_unlock(&sk->sk_dst_lock); 4651da177e4SLinus Torvalds sk_dst_reset(sk); 4661da177e4SLinus Torvalds } 4671da177e4SLinus Torvalds 4681da177e4SLinus Torvalds done: 4691da177e4SLinus Torvalds if (opt) 4701da177e4SLinus Torvalds sock_kfree_s(sk, opt, opt->tot_len); 4711da177e4SLinus Torvalds break; 4721da177e4SLinus Torvalds } 4731da177e4SLinus Torvalds case IPV6_UNICAST_HOPS: 4741da177e4SLinus Torvalds if (val > 255 || val < -1) 4751da177e4SLinus Torvalds goto e_inval; 4761da177e4SLinus Torvalds np->hop_limit = val; 4771da177e4SLinus Torvalds retv = 0; 4781da177e4SLinus Torvalds break; 4791da177e4SLinus Torvalds 4801da177e4SLinus Torvalds case IPV6_MULTICAST_HOPS: 4811da177e4SLinus Torvalds if (sk->sk_type == SOCK_STREAM) 4821da177e4SLinus Torvalds goto e_inval; 4831da177e4SLinus Torvalds if (val > 255 || val < -1) 4841da177e4SLinus Torvalds goto e_inval; 4851da177e4SLinus Torvalds np->mcast_hops = val; 4861da177e4SLinus Torvalds retv = 0; 4871da177e4SLinus Torvalds break; 4881da177e4SLinus Torvalds 4891da177e4SLinus Torvalds case IPV6_MULTICAST_LOOP: 4901da177e4SLinus Torvalds np->mc_loop = valbool; 4911da177e4SLinus Torvalds retv = 0; 4921da177e4SLinus Torvalds break; 4931da177e4SLinus Torvalds 4941da177e4SLinus Torvalds case IPV6_MULTICAST_IF: 4951da177e4SLinus Torvalds if (sk->sk_type == SOCK_STREAM) 4961da177e4SLinus Torvalds goto e_inval; 4971da177e4SLinus Torvalds if (sk->sk_bound_dev_if && sk->sk_bound_dev_if != val) 4981da177e4SLinus Torvalds goto e_inval; 4991da177e4SLinus Torvalds 5001da177e4SLinus Torvalds if (__dev_get_by_index(val) == NULL) { 5011da177e4SLinus Torvalds retv = -ENODEV; 5021da177e4SLinus Torvalds break; 5031da177e4SLinus Torvalds } 5041da177e4SLinus Torvalds np->mcast_oif = val; 5051da177e4SLinus Torvalds retv = 0; 5061da177e4SLinus Torvalds break; 5071da177e4SLinus Torvalds case IPV6_ADD_MEMBERSHIP: 5081da177e4SLinus Torvalds case IPV6_DROP_MEMBERSHIP: 5091da177e4SLinus Torvalds { 5101da177e4SLinus Torvalds struct ipv6_mreq mreq; 5111da177e4SLinus Torvalds 5121da177e4SLinus Torvalds retv = -EFAULT; 5131da177e4SLinus Torvalds if (copy_from_user(&mreq, optval, sizeof(struct ipv6_mreq))) 5141da177e4SLinus Torvalds break; 5151da177e4SLinus Torvalds 5161da177e4SLinus Torvalds if (optname == IPV6_ADD_MEMBERSHIP) 5171da177e4SLinus Torvalds retv = ipv6_sock_mc_join(sk, mreq.ipv6mr_ifindex, &mreq.ipv6mr_multiaddr); 5181da177e4SLinus Torvalds else 5191da177e4SLinus Torvalds retv = ipv6_sock_mc_drop(sk, mreq.ipv6mr_ifindex, &mreq.ipv6mr_multiaddr); 5201da177e4SLinus Torvalds break; 5211da177e4SLinus Torvalds } 5221da177e4SLinus Torvalds case IPV6_JOIN_ANYCAST: 5231da177e4SLinus Torvalds case IPV6_LEAVE_ANYCAST: 5241da177e4SLinus Torvalds { 5251da177e4SLinus Torvalds struct ipv6_mreq mreq; 5261da177e4SLinus Torvalds 5271da177e4SLinus Torvalds if (optlen != sizeof(struct ipv6_mreq)) 5281da177e4SLinus Torvalds goto e_inval; 5291da177e4SLinus Torvalds 5301da177e4SLinus Torvalds retv = -EFAULT; 5311da177e4SLinus Torvalds if (copy_from_user(&mreq, optval, sizeof(struct ipv6_mreq))) 5321da177e4SLinus Torvalds break; 5331da177e4SLinus Torvalds 5341da177e4SLinus Torvalds if (optname == IPV6_JOIN_ANYCAST) 5351da177e4SLinus Torvalds retv = ipv6_sock_ac_join(sk, mreq.ipv6mr_ifindex, &mreq.ipv6mr_acaddr); 5361da177e4SLinus Torvalds else 5371da177e4SLinus Torvalds retv = ipv6_sock_ac_drop(sk, mreq.ipv6mr_ifindex, &mreq.ipv6mr_acaddr); 5381da177e4SLinus Torvalds break; 5391da177e4SLinus Torvalds } 5401da177e4SLinus Torvalds case MCAST_JOIN_GROUP: 5411da177e4SLinus Torvalds case MCAST_LEAVE_GROUP: 5421da177e4SLinus Torvalds { 5431da177e4SLinus Torvalds struct group_req greq; 5441da177e4SLinus Torvalds struct sockaddr_in6 *psin6; 5451da177e4SLinus Torvalds 5461da177e4SLinus Torvalds retv = -EFAULT; 5471da177e4SLinus Torvalds if (copy_from_user(&greq, optval, sizeof(struct group_req))) 5481da177e4SLinus Torvalds break; 5491da177e4SLinus Torvalds if (greq.gr_group.ss_family != AF_INET6) { 5501da177e4SLinus Torvalds retv = -EADDRNOTAVAIL; 5511da177e4SLinus Torvalds break; 5521da177e4SLinus Torvalds } 5531da177e4SLinus Torvalds psin6 = (struct sockaddr_in6 *)&greq.gr_group; 5541da177e4SLinus Torvalds if (optname == MCAST_JOIN_GROUP) 5551da177e4SLinus Torvalds retv = ipv6_sock_mc_join(sk, greq.gr_interface, 5561da177e4SLinus Torvalds &psin6->sin6_addr); 5571da177e4SLinus Torvalds else 5581da177e4SLinus Torvalds retv = ipv6_sock_mc_drop(sk, greq.gr_interface, 5591da177e4SLinus Torvalds &psin6->sin6_addr); 5601da177e4SLinus Torvalds break; 5611da177e4SLinus Torvalds } 5621da177e4SLinus Torvalds case MCAST_JOIN_SOURCE_GROUP: 5631da177e4SLinus Torvalds case MCAST_LEAVE_SOURCE_GROUP: 5641da177e4SLinus Torvalds case MCAST_BLOCK_SOURCE: 5651da177e4SLinus Torvalds case MCAST_UNBLOCK_SOURCE: 5661da177e4SLinus Torvalds { 5671da177e4SLinus Torvalds struct group_source_req greqs; 5681da177e4SLinus Torvalds int omode, add; 5691da177e4SLinus Torvalds 5701da177e4SLinus Torvalds if (optlen != sizeof(struct group_source_req)) 5711da177e4SLinus Torvalds goto e_inval; 5721da177e4SLinus Torvalds if (copy_from_user(&greqs, optval, sizeof(greqs))) { 5731da177e4SLinus Torvalds retv = -EFAULT; 5741da177e4SLinus Torvalds break; 5751da177e4SLinus Torvalds } 5761da177e4SLinus Torvalds if (greqs.gsr_group.ss_family != AF_INET6 || 5771da177e4SLinus Torvalds greqs.gsr_source.ss_family != AF_INET6) { 5781da177e4SLinus Torvalds retv = -EADDRNOTAVAIL; 5791da177e4SLinus Torvalds break; 5801da177e4SLinus Torvalds } 5811da177e4SLinus Torvalds if (optname == MCAST_BLOCK_SOURCE) { 5821da177e4SLinus Torvalds omode = MCAST_EXCLUDE; 5831da177e4SLinus Torvalds add = 1; 5841da177e4SLinus Torvalds } else if (optname == MCAST_UNBLOCK_SOURCE) { 5851da177e4SLinus Torvalds omode = MCAST_EXCLUDE; 5861da177e4SLinus Torvalds add = 0; 5871da177e4SLinus Torvalds } else if (optname == MCAST_JOIN_SOURCE_GROUP) { 5881da177e4SLinus Torvalds struct sockaddr_in6 *psin6; 5891da177e4SLinus Torvalds 5901da177e4SLinus Torvalds psin6 = (struct sockaddr_in6 *)&greqs.gsr_group; 5911da177e4SLinus Torvalds retv = ipv6_sock_mc_join(sk, greqs.gsr_interface, 5921da177e4SLinus Torvalds &psin6->sin6_addr); 593c9e3e8b6SDavid L Stevens /* prior join w/ different source is ok */ 594c9e3e8b6SDavid L Stevens if (retv && retv != -EADDRINUSE) 5951da177e4SLinus Torvalds break; 5961da177e4SLinus Torvalds omode = MCAST_INCLUDE; 5971da177e4SLinus Torvalds add = 1; 598c9e3e8b6SDavid L Stevens } else /* MCAST_LEAVE_SOURCE_GROUP */ { 5991da177e4SLinus Torvalds omode = MCAST_INCLUDE; 6001da177e4SLinus Torvalds add = 0; 6011da177e4SLinus Torvalds } 6021da177e4SLinus Torvalds retv = ip6_mc_source(add, omode, sk, &greqs); 6031da177e4SLinus Torvalds break; 6041da177e4SLinus Torvalds } 6051da177e4SLinus Torvalds case MCAST_MSFILTER: 6061da177e4SLinus Torvalds { 6071da177e4SLinus Torvalds extern int sysctl_mld_max_msf; 6081da177e4SLinus Torvalds struct group_filter *gsf; 6091da177e4SLinus Torvalds 6101da177e4SLinus Torvalds if (optlen < GROUP_FILTER_SIZE(0)) 6111da177e4SLinus Torvalds goto e_inval; 6121da177e4SLinus Torvalds if (optlen > sysctl_optmem_max) { 6131da177e4SLinus Torvalds retv = -ENOBUFS; 6141da177e4SLinus Torvalds break; 6151da177e4SLinus Torvalds } 6168b3a7005SKris Katterjohn gsf = kmalloc(optlen,GFP_KERNEL); 6171da177e4SLinus Torvalds if (gsf == 0) { 6181da177e4SLinus Torvalds retv = -ENOBUFS; 6191da177e4SLinus Torvalds break; 6201da177e4SLinus Torvalds } 6211da177e4SLinus Torvalds retv = -EFAULT; 6221da177e4SLinus Torvalds if (copy_from_user(gsf, optval, optlen)) { 6231da177e4SLinus Torvalds kfree(gsf); 6241da177e4SLinus Torvalds break; 6251da177e4SLinus Torvalds } 6261da177e4SLinus Torvalds /* numsrc >= (4G-140)/128 overflow in 32 bits */ 6271da177e4SLinus Torvalds if (gsf->gf_numsrc >= 0x1ffffffU || 6281da177e4SLinus Torvalds gsf->gf_numsrc > sysctl_mld_max_msf) { 6291da177e4SLinus Torvalds kfree(gsf); 6301da177e4SLinus Torvalds retv = -ENOBUFS; 6311da177e4SLinus Torvalds break; 6321da177e4SLinus Torvalds } 6331da177e4SLinus Torvalds if (GROUP_FILTER_SIZE(gsf->gf_numsrc) > optlen) { 6341da177e4SLinus Torvalds kfree(gsf); 6351da177e4SLinus Torvalds retv = -EINVAL; 6361da177e4SLinus Torvalds break; 6371da177e4SLinus Torvalds } 6381da177e4SLinus Torvalds retv = ip6_mc_msfilter(sk, gsf); 6391da177e4SLinus Torvalds kfree(gsf); 6401da177e4SLinus Torvalds 6411da177e4SLinus Torvalds break; 6421da177e4SLinus Torvalds } 6431da177e4SLinus Torvalds case IPV6_ROUTER_ALERT: 6441da177e4SLinus Torvalds retv = ip6_ra_control(sk, val, NULL); 6451da177e4SLinus Torvalds break; 6461da177e4SLinus Torvalds case IPV6_MTU_DISCOVER: 6471da177e4SLinus Torvalds if (val<0 || val>2) 6481da177e4SLinus Torvalds goto e_inval; 6491da177e4SLinus Torvalds np->pmtudisc = val; 6501da177e4SLinus Torvalds retv = 0; 6511da177e4SLinus Torvalds break; 6521da177e4SLinus Torvalds case IPV6_MTU: 6531da177e4SLinus Torvalds if (val && val < IPV6_MIN_MTU) 6541da177e4SLinus Torvalds goto e_inval; 6551da177e4SLinus Torvalds np->frag_size = val; 6561da177e4SLinus Torvalds retv = 0; 6571da177e4SLinus Torvalds break; 6581da177e4SLinus Torvalds case IPV6_RECVERR: 6591da177e4SLinus Torvalds np->recverr = valbool; 6601da177e4SLinus Torvalds if (!val) 6611da177e4SLinus Torvalds skb_queue_purge(&sk->sk_error_queue); 6621da177e4SLinus Torvalds retv = 0; 6631da177e4SLinus Torvalds break; 6641da177e4SLinus Torvalds case IPV6_FLOWINFO_SEND: 6651da177e4SLinus Torvalds np->sndflow = valbool; 6661da177e4SLinus Torvalds retv = 0; 6671da177e4SLinus Torvalds break; 6681da177e4SLinus Torvalds case IPV6_FLOWLABEL_MGR: 6691da177e4SLinus Torvalds retv = ipv6_flowlabel_opt(sk, optval, optlen); 6701da177e4SLinus Torvalds break; 6711da177e4SLinus Torvalds case IPV6_IPSEC_POLICY: 6721da177e4SLinus Torvalds case IPV6_XFRM_POLICY: 6736fc0b4a7SHerbert Xu retv = -EPERM; 6746fc0b4a7SHerbert Xu if (!capable(CAP_NET_ADMIN)) 6756fc0b4a7SHerbert Xu break; 6761da177e4SLinus Torvalds retv = xfrm_user_policy(sk, optname, optval, optlen); 6771da177e4SLinus Torvalds break; 6781da177e4SLinus Torvalds 6791da177e4SLinus Torvalds } 6801da177e4SLinus Torvalds release_sock(sk); 6811da177e4SLinus Torvalds 6821da177e4SLinus Torvalds return retv; 6831da177e4SLinus Torvalds 6841da177e4SLinus Torvalds e_inval: 6851da177e4SLinus Torvalds release_sock(sk); 6861da177e4SLinus Torvalds return -EINVAL; 6871da177e4SLinus Torvalds } 6881da177e4SLinus Torvalds 6893fdadf7dSDmitry Mishin int ipv6_setsockopt(struct sock *sk, int level, int optname, 6903fdadf7dSDmitry Mishin char __user *optval, int optlen) 6913fdadf7dSDmitry Mishin { 6923fdadf7dSDmitry Mishin int err; 6933fdadf7dSDmitry Mishin 6943fdadf7dSDmitry Mishin if (level == SOL_IP && sk->sk_type != SOCK_RAW) 6953fdadf7dSDmitry Mishin return udp_prot.setsockopt(sk, level, optname, optval, optlen); 6963fdadf7dSDmitry Mishin 6973fdadf7dSDmitry Mishin if (level != SOL_IPV6) 6983fdadf7dSDmitry Mishin return -ENOPROTOOPT; 6993fdadf7dSDmitry Mishin 7003fdadf7dSDmitry Mishin err = do_ipv6_setsockopt(sk, level, optname, optval, optlen); 7013fdadf7dSDmitry Mishin #ifdef CONFIG_NETFILTER 7023fdadf7dSDmitry Mishin /* we need to exclude all possible ENOPROTOOPTs except default case */ 7033fdadf7dSDmitry Mishin if (err == -ENOPROTOOPT && optname != IPV6_IPSEC_POLICY && 7043fdadf7dSDmitry Mishin optname != IPV6_XFRM_POLICY) { 7053fdadf7dSDmitry Mishin lock_sock(sk); 7063fdadf7dSDmitry Mishin err = nf_setsockopt(sk, PF_INET6, optname, optval, 7073fdadf7dSDmitry Mishin optlen); 7083fdadf7dSDmitry Mishin release_sock(sk); 7093fdadf7dSDmitry Mishin } 7103fdadf7dSDmitry Mishin #endif 7113fdadf7dSDmitry Mishin return err; 7123fdadf7dSDmitry Mishin } 7133fdadf7dSDmitry Mishin 7143fdadf7dSDmitry Mishin 7153fdadf7dSDmitry Mishin #ifdef CONFIG_COMPAT 7163fdadf7dSDmitry Mishin int compat_ipv6_setsockopt(struct sock *sk, int level, int optname, 7173fdadf7dSDmitry Mishin char __user *optval, int optlen) 7183fdadf7dSDmitry Mishin { 7193fdadf7dSDmitry Mishin int err; 7203fdadf7dSDmitry Mishin 7213fdadf7dSDmitry Mishin if (level == SOL_IP && sk->sk_type != SOCK_RAW) { 722543d9cfeSArnaldo Carvalho de Melo if (udp_prot.compat_setsockopt != NULL) 723543d9cfeSArnaldo Carvalho de Melo return udp_prot.compat_setsockopt(sk, level, optname, 724543d9cfeSArnaldo Carvalho de Melo optval, optlen); 725543d9cfeSArnaldo Carvalho de Melo return udp_prot.setsockopt(sk, level, optname, optval, optlen); 7263fdadf7dSDmitry Mishin } 7273fdadf7dSDmitry Mishin 7283fdadf7dSDmitry Mishin if (level != SOL_IPV6) 7293fdadf7dSDmitry Mishin return -ENOPROTOOPT; 7303fdadf7dSDmitry Mishin 7313fdadf7dSDmitry Mishin err = do_ipv6_setsockopt(sk, level, optname, optval, optlen); 7323fdadf7dSDmitry Mishin #ifdef CONFIG_NETFILTER 7333fdadf7dSDmitry Mishin /* we need to exclude all possible ENOPROTOOPTs except default case */ 7343fdadf7dSDmitry Mishin if (err == -ENOPROTOOPT && optname != IPV6_IPSEC_POLICY && 7353fdadf7dSDmitry Mishin optname != IPV6_XFRM_POLICY) { 7363fdadf7dSDmitry Mishin lock_sock(sk); 737543d9cfeSArnaldo Carvalho de Melo err = compat_nf_setsockopt(sk, PF_INET6, optname, 738543d9cfeSArnaldo Carvalho de Melo optval, optlen); 7393fdadf7dSDmitry Mishin release_sock(sk); 7403fdadf7dSDmitry Mishin } 7413fdadf7dSDmitry Mishin #endif 7423fdadf7dSDmitry Mishin return err; 7433fdadf7dSDmitry Mishin } 744543d9cfeSArnaldo Carvalho de Melo 745543d9cfeSArnaldo Carvalho de Melo EXPORT_SYMBOL(compat_ipv6_setsockopt); 7463fdadf7dSDmitry Mishin #endif 7473fdadf7dSDmitry Mishin 74834a0b3cdSAdrian Bunk static int ipv6_getsockopt_sticky(struct sock *sk, struct ipv6_opt_hdr *hdr, 749333fad53SYOSHIFUJI Hideaki char __user *optval, int len) 750333fad53SYOSHIFUJI Hideaki { 751333fad53SYOSHIFUJI Hideaki if (!hdr) 752333fad53SYOSHIFUJI Hideaki return 0; 753333fad53SYOSHIFUJI Hideaki len = min_t(int, len, ipv6_optlen(hdr)); 754333fad53SYOSHIFUJI Hideaki if (copy_to_user(optval, hdr, ipv6_optlen(hdr))) 755333fad53SYOSHIFUJI Hideaki return -EFAULT; 756333fad53SYOSHIFUJI Hideaki return len; 757333fad53SYOSHIFUJI Hideaki } 758333fad53SYOSHIFUJI Hideaki 7593fdadf7dSDmitry Mishin static int do_ipv6_getsockopt(struct sock *sk, int level, int optname, 7601da177e4SLinus Torvalds char __user *optval, int __user *optlen) 7611da177e4SLinus Torvalds { 7621da177e4SLinus Torvalds struct ipv6_pinfo *np = inet6_sk(sk); 7631da177e4SLinus Torvalds int len; 7641da177e4SLinus Torvalds int val; 7651da177e4SLinus Torvalds 7661da177e4SLinus Torvalds if (get_user(len, optlen)) 7671da177e4SLinus Torvalds return -EFAULT; 7681da177e4SLinus Torvalds switch (optname) { 7691da177e4SLinus Torvalds case IPV6_ADDRFORM: 7701da177e4SLinus Torvalds if (sk->sk_protocol != IPPROTO_UDP && 7711da177e4SLinus Torvalds sk->sk_protocol != IPPROTO_TCP) 7721da177e4SLinus Torvalds return -EINVAL; 7731da177e4SLinus Torvalds if (sk->sk_state != TCP_ESTABLISHED) 7741da177e4SLinus Torvalds return -ENOTCONN; 7751da177e4SLinus Torvalds val = sk->sk_family; 7761da177e4SLinus Torvalds break; 7771da177e4SLinus Torvalds case MCAST_MSFILTER: 7781da177e4SLinus Torvalds { 7791da177e4SLinus Torvalds struct group_filter gsf; 7801da177e4SLinus Torvalds int err; 7811da177e4SLinus Torvalds 7821da177e4SLinus Torvalds if (len < GROUP_FILTER_SIZE(0)) 7831da177e4SLinus Torvalds return -EINVAL; 7841da177e4SLinus Torvalds if (copy_from_user(&gsf, optval, GROUP_FILTER_SIZE(0))) 7851da177e4SLinus Torvalds return -EFAULT; 7861da177e4SLinus Torvalds lock_sock(sk); 7871da177e4SLinus Torvalds err = ip6_mc_msfget(sk, &gsf, 7881da177e4SLinus Torvalds (struct group_filter __user *)optval, optlen); 7891da177e4SLinus Torvalds release_sock(sk); 7901da177e4SLinus Torvalds return err; 7911da177e4SLinus Torvalds } 7921da177e4SLinus Torvalds 793333fad53SYOSHIFUJI Hideaki case IPV6_2292PKTOPTIONS: 7941da177e4SLinus Torvalds { 7951da177e4SLinus Torvalds struct msghdr msg; 7961da177e4SLinus Torvalds struct sk_buff *skb; 7971da177e4SLinus Torvalds 7981da177e4SLinus Torvalds if (sk->sk_type != SOCK_STREAM) 7991da177e4SLinus Torvalds return -ENOPROTOOPT; 8001da177e4SLinus Torvalds 8011da177e4SLinus Torvalds msg.msg_control = optval; 8021da177e4SLinus Torvalds msg.msg_controllen = len; 8031da177e4SLinus Torvalds msg.msg_flags = 0; 8041da177e4SLinus Torvalds 8051da177e4SLinus Torvalds lock_sock(sk); 8061da177e4SLinus Torvalds skb = np->pktoptions; 8071da177e4SLinus Torvalds if (skb) 8081da177e4SLinus Torvalds atomic_inc(&skb->users); 8091da177e4SLinus Torvalds release_sock(sk); 8101da177e4SLinus Torvalds 8111da177e4SLinus Torvalds if (skb) { 8121da177e4SLinus Torvalds int err = datagram_recv_ctl(sk, &msg, skb); 8131da177e4SLinus Torvalds kfree_skb(skb); 8141da177e4SLinus Torvalds if (err) 8151da177e4SLinus Torvalds return err; 8161da177e4SLinus Torvalds } else { 8171da177e4SLinus Torvalds if (np->rxopt.bits.rxinfo) { 8181da177e4SLinus Torvalds struct in6_pktinfo src_info; 8191da177e4SLinus Torvalds src_info.ipi6_ifindex = np->mcast_oif; 8201da177e4SLinus Torvalds ipv6_addr_copy(&src_info.ipi6_addr, &np->daddr); 8211da177e4SLinus Torvalds put_cmsg(&msg, SOL_IPV6, IPV6_PKTINFO, sizeof(src_info), &src_info); 8221da177e4SLinus Torvalds } 8231da177e4SLinus Torvalds if (np->rxopt.bits.rxhlim) { 8241da177e4SLinus Torvalds int hlim = np->mcast_hops; 8251da177e4SLinus Torvalds put_cmsg(&msg, SOL_IPV6, IPV6_HOPLIMIT, sizeof(hlim), &hlim); 8261da177e4SLinus Torvalds } 827333fad53SYOSHIFUJI Hideaki if (np->rxopt.bits.rxoinfo) { 828333fad53SYOSHIFUJI Hideaki struct in6_pktinfo src_info; 829333fad53SYOSHIFUJI Hideaki src_info.ipi6_ifindex = np->mcast_oif; 830333fad53SYOSHIFUJI Hideaki ipv6_addr_copy(&src_info.ipi6_addr, &np->daddr); 831333fad53SYOSHIFUJI Hideaki put_cmsg(&msg, SOL_IPV6, IPV6_2292PKTINFO, sizeof(src_info), &src_info); 832333fad53SYOSHIFUJI Hideaki } 833333fad53SYOSHIFUJI Hideaki if (np->rxopt.bits.rxohlim) { 834333fad53SYOSHIFUJI Hideaki int hlim = np->mcast_hops; 835333fad53SYOSHIFUJI Hideaki put_cmsg(&msg, SOL_IPV6, IPV6_2292HOPLIMIT, sizeof(hlim), &hlim); 836333fad53SYOSHIFUJI Hideaki } 8371da177e4SLinus Torvalds } 8381da177e4SLinus Torvalds len -= msg.msg_controllen; 8391da177e4SLinus Torvalds return put_user(len, optlen); 8401da177e4SLinus Torvalds } 8411da177e4SLinus Torvalds case IPV6_MTU: 8421da177e4SLinus Torvalds { 8431da177e4SLinus Torvalds struct dst_entry *dst; 8441da177e4SLinus Torvalds val = 0; 8451da177e4SLinus Torvalds lock_sock(sk); 8461da177e4SLinus Torvalds dst = sk_dst_get(sk); 8471da177e4SLinus Torvalds if (dst) { 8481da177e4SLinus Torvalds val = dst_mtu(dst); 8491da177e4SLinus Torvalds dst_release(dst); 8501da177e4SLinus Torvalds } 8511da177e4SLinus Torvalds release_sock(sk); 8521da177e4SLinus Torvalds if (!val) 8531da177e4SLinus Torvalds return -ENOTCONN; 8541da177e4SLinus Torvalds break; 8551da177e4SLinus Torvalds } 8561da177e4SLinus Torvalds 8571da177e4SLinus Torvalds case IPV6_V6ONLY: 8581da177e4SLinus Torvalds val = np->ipv6only; 8591da177e4SLinus Torvalds break; 8601da177e4SLinus Torvalds 861333fad53SYOSHIFUJI Hideaki case IPV6_RECVPKTINFO: 8621da177e4SLinus Torvalds val = np->rxopt.bits.rxinfo; 8631da177e4SLinus Torvalds break; 8641da177e4SLinus Torvalds 865333fad53SYOSHIFUJI Hideaki case IPV6_2292PKTINFO: 866333fad53SYOSHIFUJI Hideaki val = np->rxopt.bits.rxoinfo; 867333fad53SYOSHIFUJI Hideaki break; 868333fad53SYOSHIFUJI Hideaki 869333fad53SYOSHIFUJI Hideaki case IPV6_RECVHOPLIMIT: 8701da177e4SLinus Torvalds val = np->rxopt.bits.rxhlim; 8711da177e4SLinus Torvalds break; 8721da177e4SLinus Torvalds 873333fad53SYOSHIFUJI Hideaki case IPV6_2292HOPLIMIT: 874333fad53SYOSHIFUJI Hideaki val = np->rxopt.bits.rxohlim; 875333fad53SYOSHIFUJI Hideaki break; 876333fad53SYOSHIFUJI Hideaki 877333fad53SYOSHIFUJI Hideaki case IPV6_RECVRTHDR: 8781da177e4SLinus Torvalds val = np->rxopt.bits.srcrt; 8791da177e4SLinus Torvalds break; 8801da177e4SLinus Torvalds 881333fad53SYOSHIFUJI Hideaki case IPV6_2292RTHDR: 882333fad53SYOSHIFUJI Hideaki val = np->rxopt.bits.osrcrt; 883333fad53SYOSHIFUJI Hideaki break; 884333fad53SYOSHIFUJI Hideaki 8851da177e4SLinus Torvalds case IPV6_HOPOPTS: 886333fad53SYOSHIFUJI Hideaki case IPV6_RTHDRDSTOPTS: 887333fad53SYOSHIFUJI Hideaki case IPV6_RTHDR: 888333fad53SYOSHIFUJI Hideaki case IPV6_DSTOPTS: 889333fad53SYOSHIFUJI Hideaki { 890333fad53SYOSHIFUJI Hideaki 891333fad53SYOSHIFUJI Hideaki lock_sock(sk); 892333fad53SYOSHIFUJI Hideaki len = ipv6_getsockopt_sticky(sk, np->opt->hopopt, 893333fad53SYOSHIFUJI Hideaki optval, len); 894333fad53SYOSHIFUJI Hideaki release_sock(sk); 895333fad53SYOSHIFUJI Hideaki return put_user(len, optlen); 896333fad53SYOSHIFUJI Hideaki } 897333fad53SYOSHIFUJI Hideaki 898333fad53SYOSHIFUJI Hideaki case IPV6_RECVHOPOPTS: 8991da177e4SLinus Torvalds val = np->rxopt.bits.hopopts; 9001da177e4SLinus Torvalds break; 9011da177e4SLinus Torvalds 902333fad53SYOSHIFUJI Hideaki case IPV6_2292HOPOPTS: 903333fad53SYOSHIFUJI Hideaki val = np->rxopt.bits.ohopopts; 904333fad53SYOSHIFUJI Hideaki break; 905333fad53SYOSHIFUJI Hideaki 906333fad53SYOSHIFUJI Hideaki case IPV6_RECVDSTOPTS: 9071da177e4SLinus Torvalds val = np->rxopt.bits.dstopts; 9081da177e4SLinus Torvalds break; 9091da177e4SLinus Torvalds 910333fad53SYOSHIFUJI Hideaki case IPV6_2292DSTOPTS: 911333fad53SYOSHIFUJI Hideaki val = np->rxopt.bits.odstopts; 912333fad53SYOSHIFUJI Hideaki break; 913333fad53SYOSHIFUJI Hideaki 91441a1f8eaSYOSHIFUJI Hideaki case IPV6_TCLASS: 91541a1f8eaSYOSHIFUJI Hideaki val = np->tclass; 91641a1f8eaSYOSHIFUJI Hideaki break; 91741a1f8eaSYOSHIFUJI Hideaki 91841a1f8eaSYOSHIFUJI Hideaki case IPV6_RECVTCLASS: 91941a1f8eaSYOSHIFUJI Hideaki val = np->rxopt.bits.rxtclass; 92041a1f8eaSYOSHIFUJI Hideaki break; 92141a1f8eaSYOSHIFUJI Hideaki 9221da177e4SLinus Torvalds case IPV6_FLOWINFO: 9231da177e4SLinus Torvalds val = np->rxopt.bits.rxflow; 9241da177e4SLinus Torvalds break; 9251da177e4SLinus Torvalds 9261da177e4SLinus Torvalds case IPV6_UNICAST_HOPS: 9271da177e4SLinus Torvalds val = np->hop_limit; 9281da177e4SLinus Torvalds break; 9291da177e4SLinus Torvalds 9301da177e4SLinus Torvalds case IPV6_MULTICAST_HOPS: 9311da177e4SLinus Torvalds val = np->mcast_hops; 9321da177e4SLinus Torvalds break; 9331da177e4SLinus Torvalds 9341da177e4SLinus Torvalds case IPV6_MULTICAST_LOOP: 9351da177e4SLinus Torvalds val = np->mc_loop; 9361da177e4SLinus Torvalds break; 9371da177e4SLinus Torvalds 9381da177e4SLinus Torvalds case IPV6_MULTICAST_IF: 9391da177e4SLinus Torvalds val = np->mcast_oif; 9401da177e4SLinus Torvalds break; 9411da177e4SLinus Torvalds 9421da177e4SLinus Torvalds case IPV6_MTU_DISCOVER: 9431da177e4SLinus Torvalds val = np->pmtudisc; 9441da177e4SLinus Torvalds break; 9451da177e4SLinus Torvalds 9461da177e4SLinus Torvalds case IPV6_RECVERR: 9471da177e4SLinus Torvalds val = np->recverr; 9481da177e4SLinus Torvalds break; 9491da177e4SLinus Torvalds 9501da177e4SLinus Torvalds case IPV6_FLOWINFO_SEND: 9511da177e4SLinus Torvalds val = np->sndflow; 9521da177e4SLinus Torvalds break; 9531da177e4SLinus Torvalds 9541da177e4SLinus Torvalds default: 9551da177e4SLinus Torvalds return -EINVAL; 9561da177e4SLinus Torvalds } 9571da177e4SLinus Torvalds len = min_t(unsigned int, sizeof(int), len); 9581da177e4SLinus Torvalds if(put_user(len, optlen)) 9591da177e4SLinus Torvalds return -EFAULT; 9601da177e4SLinus Torvalds if(copy_to_user(optval,&val,len)) 9611da177e4SLinus Torvalds return -EFAULT; 9621da177e4SLinus Torvalds return 0; 9631da177e4SLinus Torvalds } 9641da177e4SLinus Torvalds 9653fdadf7dSDmitry Mishin int ipv6_getsockopt(struct sock *sk, int level, int optname, 9663fdadf7dSDmitry Mishin char __user *optval, int __user *optlen) 9673fdadf7dSDmitry Mishin { 9683fdadf7dSDmitry Mishin int err; 9693fdadf7dSDmitry Mishin 9703fdadf7dSDmitry Mishin if (level == SOL_IP && sk->sk_type != SOCK_RAW) 9713fdadf7dSDmitry Mishin return udp_prot.getsockopt(sk, level, optname, optval, optlen); 9723fdadf7dSDmitry Mishin 9733fdadf7dSDmitry Mishin if(level != SOL_IPV6) 9743fdadf7dSDmitry Mishin return -ENOPROTOOPT; 9753fdadf7dSDmitry Mishin 9763fdadf7dSDmitry Mishin err = do_ipv6_getsockopt(sk, level, optname, optval, optlen); 9773fdadf7dSDmitry Mishin #ifdef CONFIG_NETFILTER 9783fdadf7dSDmitry Mishin /* we need to exclude all possible EINVALs except default case */ 979443da0d5SPatrick McHardy if (err == -EINVAL && optname != IPV6_ADDRFORM && 9803fdadf7dSDmitry Mishin optname != MCAST_MSFILTER) { 9813fdadf7dSDmitry Mishin int len; 9823fdadf7dSDmitry Mishin 9833fdadf7dSDmitry Mishin if (get_user(len, optlen)) 9843fdadf7dSDmitry Mishin return -EFAULT; 9853fdadf7dSDmitry Mishin 9863fdadf7dSDmitry Mishin lock_sock(sk); 9873fdadf7dSDmitry Mishin err = nf_getsockopt(sk, PF_INET6, optname, optval, 9883fdadf7dSDmitry Mishin &len); 9893fdadf7dSDmitry Mishin release_sock(sk); 9903fdadf7dSDmitry Mishin if (err >= 0) 9913fdadf7dSDmitry Mishin err = put_user(len, optlen); 9923fdadf7dSDmitry Mishin } 9933fdadf7dSDmitry Mishin #endif 9943fdadf7dSDmitry Mishin return err; 9953fdadf7dSDmitry Mishin } 9963fdadf7dSDmitry Mishin 9973fdadf7dSDmitry Mishin #ifdef CONFIG_COMPAT 9983fdadf7dSDmitry Mishin int compat_ipv6_getsockopt(struct sock *sk, int level, int optname, 9993fdadf7dSDmitry Mishin char __user *optval, int __user *optlen) 10003fdadf7dSDmitry Mishin { 10013fdadf7dSDmitry Mishin int err; 10023fdadf7dSDmitry Mishin 10033fdadf7dSDmitry Mishin if (level == SOL_IP && sk->sk_type != SOCK_RAW) { 1004543d9cfeSArnaldo Carvalho de Melo if (udp_prot.compat_getsockopt != NULL) 1005543d9cfeSArnaldo Carvalho de Melo return udp_prot.compat_getsockopt(sk, level, optname, 1006543d9cfeSArnaldo Carvalho de Melo optval, optlen); 1007543d9cfeSArnaldo Carvalho de Melo return udp_prot.getsockopt(sk, level, optname, optval, optlen); 10083fdadf7dSDmitry Mishin } 10093fdadf7dSDmitry Mishin 10103fdadf7dSDmitry Mishin if (level != SOL_IPV6) 10113fdadf7dSDmitry Mishin return -ENOPROTOOPT; 10123fdadf7dSDmitry Mishin 10133fdadf7dSDmitry Mishin err = do_ipv6_getsockopt(sk, level, optname, optval, optlen); 10143fdadf7dSDmitry Mishin #ifdef CONFIG_NETFILTER 10153fdadf7dSDmitry Mishin /* we need to exclude all possible EINVALs except default case */ 1016443da0d5SPatrick McHardy if (err == -EINVAL && optname != IPV6_ADDRFORM && 10173fdadf7dSDmitry Mishin optname != MCAST_MSFILTER) { 10183fdadf7dSDmitry Mishin int len; 10193fdadf7dSDmitry Mishin 10203fdadf7dSDmitry Mishin if (get_user(len, optlen)) 10213fdadf7dSDmitry Mishin return -EFAULT; 10223fdadf7dSDmitry Mishin 10233fdadf7dSDmitry Mishin lock_sock(sk); 1024543d9cfeSArnaldo Carvalho de Melo err = compat_nf_getsockopt(sk, PF_INET6, 1025543d9cfeSArnaldo Carvalho de Melo optname, optval, &len); 10263fdadf7dSDmitry Mishin release_sock(sk); 10273fdadf7dSDmitry Mishin if (err >= 0) 10283fdadf7dSDmitry Mishin err = put_user(len, optlen); 10293fdadf7dSDmitry Mishin } 10303fdadf7dSDmitry Mishin #endif 10313fdadf7dSDmitry Mishin return err; 10323fdadf7dSDmitry Mishin } 1033543d9cfeSArnaldo Carvalho de Melo 1034543d9cfeSArnaldo Carvalho de Melo EXPORT_SYMBOL(compat_ipv6_getsockopt); 10353fdadf7dSDmitry Mishin #endif 10363fdadf7dSDmitry Mishin 10371da177e4SLinus Torvalds void __init ipv6_packet_init(void) 10381da177e4SLinus Torvalds { 10391da177e4SLinus Torvalds dev_add_pack(&ipv6_packet_type); 10401da177e4SLinus Torvalds } 10411da177e4SLinus Torvalds 10421da177e4SLinus Torvalds void ipv6_packet_cleanup(void) 10431da177e4SLinus Torvalds { 10441da177e4SLinus Torvalds dev_remove_pack(&ipv6_packet_type); 10451da177e4SLinus Torvalds } 1046