Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 1 | /* |
Yasuyuki Kozakai | c4d3efa | 2007-02-15 00:43:16 +0900 | [diff] [blame] | 2 | * IPv6 tunneling device |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 3 | * Linux INET6 implementation |
| 4 | * |
| 5 | * Authors: |
YOSHIFUJI Hideaki | 1ab1457 | 2007-02-09 23:24:49 +0900 | [diff] [blame] | 6 | * Ville Nuorvala <vnuorval@tcs.hut.fi> |
Yasuyuki Kozakai | c4d3efa | 2007-02-15 00:43:16 +0900 | [diff] [blame] | 7 | * Yasuyuki Kozakai <kozakai@linux-ipv6.org> |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 8 | * |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 9 | * Based on: |
Yasuyuki Kozakai | c4d3efa | 2007-02-15 00:43:16 +0900 | [diff] [blame] | 10 | * linux/net/ipv6/sit.c and linux/net/ipv4/ipip.c |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 11 | * |
| 12 | * RFC 2473 |
| 13 | * |
| 14 | * This program is free software; you can redistribute it and/or |
| 15 | * modify it under the terms of the GNU General Public License |
| 16 | * as published by the Free Software Foundation; either version |
| 17 | * 2 of the License, or (at your option) any later version. |
| 18 | * |
| 19 | */ |
| 20 | |
Joe Perches | f321383 | 2012-05-15 14:11:53 +0000 | [diff] [blame] | 21 | #define pr_fmt(fmt) KBUILD_MODNAME ": " fmt |
| 22 | |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 23 | #include <linux/module.h> |
Randy Dunlap | 4fc268d | 2006-01-11 12:17:47 -0800 | [diff] [blame] | 24 | #include <linux/capability.h> |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 25 | #include <linux/errno.h> |
| 26 | #include <linux/types.h> |
| 27 | #include <linux/sockios.h> |
Yasuyuki Kozakai | c4d3efa | 2007-02-15 00:43:16 +0900 | [diff] [blame] | 28 | #include <linux/icmp.h> |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 29 | #include <linux/if.h> |
| 30 | #include <linux/in.h> |
| 31 | #include <linux/ip.h> |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 32 | #include <linux/net.h> |
| 33 | #include <linux/in6.h> |
| 34 | #include <linux/netdevice.h> |
| 35 | #include <linux/if_arp.h> |
| 36 | #include <linux/icmpv6.h> |
| 37 | #include <linux/init.h> |
| 38 | #include <linux/route.h> |
| 39 | #include <linux/rtnetlink.h> |
| 40 | #include <linux/netfilter_ipv6.h> |
Tejun Heo | 5a0e3ad | 2010-03-24 17:04:11 +0900 | [diff] [blame] | 41 | #include <linux/slab.h> |
Eric Dumazet | ddbe503 | 2012-07-18 08:11:12 +0000 | [diff] [blame] | 42 | #include <linux/hash.h> |
Nicolas Dichtel | e837735 | 2013-08-20 12:16:06 +0200 | [diff] [blame] | 43 | #include <linux/etherdevice.h> |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 44 | |
Linus Torvalds | 7c0f6ba | 2016-12-24 11:46:01 -0800 | [diff] [blame] | 45 | #include <linux/uaccess.h> |
Arun Sharma | 60063497 | 2011-07-26 16:09:06 -0700 | [diff] [blame] | 46 | #include <linux/atomic.h> |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 47 | |
Yasuyuki Kozakai | c4d3efa | 2007-02-15 00:43:16 +0900 | [diff] [blame] | 48 | #include <net/icmp.h> |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 49 | #include <net/ip.h> |
Pravin B Shelar | c544193 | 2013-03-25 14:49:35 +0000 | [diff] [blame] | 50 | #include <net/ip_tunnels.h> |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 51 | #include <net/ipv6.h> |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 52 | #include <net/ip6_route.h> |
| 53 | #include <net/addrconf.h> |
| 54 | #include <net/ip6_tunnel.h> |
| 55 | #include <net/xfrm.h> |
| 56 | #include <net/dsfield.h> |
| 57 | #include <net/inet_ecn.h> |
Pavel Emelyanov | 13eeb8e | 2008-04-16 01:22:02 -0700 | [diff] [blame] | 58 | #include <net/net_namespace.h> |
| 59 | #include <net/netns/generic.h> |
Alexei Starovoitov | 8d79266 | 2016-09-15 13:00:30 -0700 | [diff] [blame] | 60 | #include <net/dst_metadata.h> |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 61 | |
| 62 | MODULE_AUTHOR("Ville Nuorvala"); |
Yasuyuki Kozakai | c4d3efa | 2007-02-15 00:43:16 +0900 | [diff] [blame] | 63 | MODULE_DESCRIPTION("IPv6 tunneling device"); |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 64 | MODULE_LICENSE("GPL"); |
Tom Gundersen | f98f89a | 2014-05-15 23:21:30 +0200 | [diff] [blame] | 65 | MODULE_ALIAS_RTNL_LINK("ip6tnl"); |
stephen hemminger | 6dfbd87 | 2011-03-10 11:43:19 +0000 | [diff] [blame] | 66 | MODULE_ALIAS_NETDEV("ip6tnl0"); |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 67 | |
Jiri Kosina | e87a8f2 | 2016-08-10 11:03:35 +0200 | [diff] [blame] | 68 | #define IP6_TUNNEL_HASH_SIZE_SHIFT 5 |
| 69 | #define IP6_TUNNEL_HASH_SIZE (1 << IP6_TUNNEL_HASH_SIZE_SHIFT) |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 70 | |
Nicolas Dichtel | f4e0b4c | 2012-11-27 03:07:11 +0000 | [diff] [blame] | 71 | static bool log_ecn_error = true; |
| 72 | module_param(log_ecn_error, bool, 0644); |
| 73 | MODULE_PARM_DESC(log_ecn_error, "Log packets received with corrupted ECN"); |
| 74 | |
Eric Dumazet | ddbe503 | 2012-07-18 08:11:12 +0000 | [diff] [blame] | 75 | static u32 HASH(const struct in6_addr *addr1, const struct in6_addr *addr2) |
| 76 | { |
| 77 | u32 hash = ipv6_addr_hash(addr1) ^ ipv6_addr_hash(addr2); |
| 78 | |
Jiri Kosina | e87a8f2 | 2016-08-10 11:03:35 +0200 | [diff] [blame] | 79 | return hash_32(hash, IP6_TUNNEL_HASH_SIZE_SHIFT); |
Eric Dumazet | ddbe503 | 2012-07-18 08:11:12 +0000 | [diff] [blame] | 80 | } |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 81 | |
Eric Dumazet | 8560f22 | 2010-09-28 03:23:34 +0000 | [diff] [blame] | 82 | static int ip6_tnl_dev_init(struct net_device *dev); |
Yasuyuki Kozakai | 3144581 | 2007-02-10 00:30:33 +0900 | [diff] [blame] | 83 | static void ip6_tnl_dev_setup(struct net_device *dev); |
Nicolas Dichtel | c075b13 | 2012-11-09 06:10:01 +0000 | [diff] [blame] | 84 | static struct rtnl_link_ops ip6_link_ops __read_mostly; |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 85 | |
Alexey Dobriyan | c7d03a0 | 2016-11-17 04:58:21 +0300 | [diff] [blame] | 86 | static unsigned int ip6_tnl_net_id __read_mostly; |
Pavel Emelyanov | 13eeb8e | 2008-04-16 01:22:02 -0700 | [diff] [blame] | 87 | struct ip6_tnl_net { |
Pavel Emelyanov | 15820e129 | 2008-04-16 01:23:02 -0700 | [diff] [blame] | 88 | /* the IPv6 tunnel fallback device */ |
| 89 | struct net_device *fb_tnl_dev; |
Pavel Emelyanov | 3e6c9fb | 2008-04-16 01:23:22 -0700 | [diff] [blame] | 90 | /* lists for storing tunnels in use */ |
Jiri Kosina | e87a8f2 | 2016-08-10 11:03:35 +0200 | [diff] [blame] | 91 | struct ip6_tnl __rcu *tnls_r_l[IP6_TUNNEL_HASH_SIZE]; |
Eric Dumazet | 9476763 | 2010-09-15 20:25:34 +0000 | [diff] [blame] | 92 | struct ip6_tnl __rcu *tnls_wc[1]; |
| 93 | struct ip6_tnl __rcu **tnls[2]; |
Alexei Starovoitov | 8d79266 | 2016-09-15 13:00:30 -0700 | [diff] [blame] | 94 | struct ip6_tnl __rcu *collect_md_tun; |
Pavel Emelyanov | 13eeb8e | 2008-04-16 01:22:02 -0700 | [diff] [blame] | 95 | }; |
| 96 | |
Eric Dumazet | 8560f22 | 2010-09-28 03:23:34 +0000 | [diff] [blame] | 97 | static struct net_device_stats *ip6_get_stats(struct net_device *dev) |
| 98 | { |
David S. Miller | 56a4342 | 2014-01-06 17:37:45 -0500 | [diff] [blame] | 99 | struct pcpu_sw_netstats tmp, sum = { 0 }; |
Eric Dumazet | 8560f22 | 2010-09-28 03:23:34 +0000 | [diff] [blame] | 100 | int i; |
| 101 | |
| 102 | for_each_possible_cpu(i) { |
Li RongQing | abb6013 | 2014-01-02 13:20:12 +0800 | [diff] [blame] | 103 | unsigned int start; |
Li RongQing | 8f84985 | 2014-01-04 13:57:59 +0800 | [diff] [blame] | 104 | const struct pcpu_sw_netstats *tstats = |
| 105 | per_cpu_ptr(dev->tstats, i); |
Eric Dumazet | 8560f22 | 2010-09-28 03:23:34 +0000 | [diff] [blame] | 106 | |
Li RongQing | abb6013 | 2014-01-02 13:20:12 +0800 | [diff] [blame] | 107 | do { |
Eric W. Biederman | 57a7744 | 2014-03-13 21:26:42 -0700 | [diff] [blame] | 108 | start = u64_stats_fetch_begin_irq(&tstats->syncp); |
Li RongQing | abb6013 | 2014-01-02 13:20:12 +0800 | [diff] [blame] | 109 | tmp.rx_packets = tstats->rx_packets; |
| 110 | tmp.rx_bytes = tstats->rx_bytes; |
| 111 | tmp.tx_packets = tstats->tx_packets; |
| 112 | tmp.tx_bytes = tstats->tx_bytes; |
Eric W. Biederman | 57a7744 | 2014-03-13 21:26:42 -0700 | [diff] [blame] | 113 | } while (u64_stats_fetch_retry_irq(&tstats->syncp, start)); |
Li RongQing | abb6013 | 2014-01-02 13:20:12 +0800 | [diff] [blame] | 114 | |
| 115 | sum.rx_packets += tmp.rx_packets; |
| 116 | sum.rx_bytes += tmp.rx_bytes; |
| 117 | sum.tx_packets += tmp.tx_packets; |
| 118 | sum.tx_bytes += tmp.tx_bytes; |
Eric Dumazet | 8560f22 | 2010-09-28 03:23:34 +0000 | [diff] [blame] | 119 | } |
| 120 | dev->stats.rx_packets = sum.rx_packets; |
| 121 | dev->stats.rx_bytes = sum.rx_bytes; |
| 122 | dev->stats.tx_packets = sum.tx_packets; |
| 123 | dev->stats.tx_bytes = sum.tx_bytes; |
| 124 | return &dev->stats; |
| 125 | } |
| 126 | |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 127 | /** |
Yasuyuki Kozakai | 3144581 | 2007-02-10 00:30:33 +0900 | [diff] [blame] | 128 | * ip6_tnl_lookup - fetch tunnel matching the end-point addresses |
YOSHIFUJI Hideaki | 1ab1457 | 2007-02-09 23:24:49 +0900 | [diff] [blame] | 129 | * @remote: the address of the tunnel exit-point |
| 130 | * @local: the address of the tunnel entry-point |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 131 | * |
YOSHIFUJI Hideaki | 1ab1457 | 2007-02-09 23:24:49 +0900 | [diff] [blame] | 132 | * Return: |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 133 | * tunnel matching given end-points if found, |
YOSHIFUJI Hideaki | 1ab1457 | 2007-02-09 23:24:49 +0900 | [diff] [blame] | 134 | * else fallback tunnel if its device is up, |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 135 | * else %NULL |
| 136 | **/ |
| 137 | |
Eric Dumazet | 2922bc8 | 2009-10-23 06:34:34 +0000 | [diff] [blame] | 138 | #define for_each_ip6_tunnel_rcu(start) \ |
| 139 | for (t = rcu_dereference(start); t; t = rcu_dereference(t->next)) |
| 140 | |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 141 | static struct ip6_tnl * |
Eric Dumazet | b71d1d4 | 2011-04-22 04:53:02 +0000 | [diff] [blame] | 142 | ip6_tnl_lookup(struct net *net, const struct in6_addr *remote, const struct in6_addr *local) |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 143 | { |
Eric Dumazet | ddbe503 | 2012-07-18 08:11:12 +0000 | [diff] [blame] | 144 | unsigned int hash = HASH(remote, local); |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 145 | struct ip6_tnl *t; |
Pavel Emelyanov | 3e6c9fb | 2008-04-16 01:23:22 -0700 | [diff] [blame] | 146 | struct ip6_tnl_net *ip6n = net_generic(net, ip6_tnl_net_id); |
Steffen Klassert | ea3dc96 | 2014-11-05 08:03:50 +0100 | [diff] [blame] | 147 | struct in6_addr any; |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 148 | |
Eric Dumazet | ddbe503 | 2012-07-18 08:11:12 +0000 | [diff] [blame] | 149 | for_each_ip6_tunnel_rcu(ip6n->tnls_r_l[hash]) { |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 150 | if (ipv6_addr_equal(local, &t->parms.laddr) && |
| 151 | ipv6_addr_equal(remote, &t->parms.raddr) && |
| 152 | (t->dev->flags & IFF_UP)) |
| 153 | return t; |
| 154 | } |
Steffen Klassert | ea3dc96 | 2014-11-05 08:03:50 +0100 | [diff] [blame] | 155 | |
| 156 | memset(&any, 0, sizeof(any)); |
| 157 | hash = HASH(&any, local); |
| 158 | for_each_ip6_tunnel_rcu(ip6n->tnls_r_l[hash]) { |
| 159 | if (ipv6_addr_equal(local, &t->parms.laddr) && |
Vadim Fedorenko | 68d00f3 | 2016-10-11 22:47:20 +0300 | [diff] [blame] | 160 | ipv6_addr_any(&t->parms.raddr) && |
Steffen Klassert | ea3dc96 | 2014-11-05 08:03:50 +0100 | [diff] [blame] | 161 | (t->dev->flags & IFF_UP)) |
| 162 | return t; |
| 163 | } |
| 164 | |
| 165 | hash = HASH(remote, &any); |
| 166 | for_each_ip6_tunnel_rcu(ip6n->tnls_r_l[hash]) { |
| 167 | if (ipv6_addr_equal(remote, &t->parms.raddr) && |
Vadim Fedorenko | 68d00f3 | 2016-10-11 22:47:20 +0300 | [diff] [blame] | 168 | ipv6_addr_any(&t->parms.laddr) && |
Steffen Klassert | ea3dc96 | 2014-11-05 08:03:50 +0100 | [diff] [blame] | 169 | (t->dev->flags & IFF_UP)) |
| 170 | return t; |
| 171 | } |
| 172 | |
Alexei Starovoitov | 8d79266 | 2016-09-15 13:00:30 -0700 | [diff] [blame] | 173 | t = rcu_dereference(ip6n->collect_md_tun); |
| 174 | if (t) |
| 175 | return t; |
| 176 | |
Eric Dumazet | 2922bc8 | 2009-10-23 06:34:34 +0000 | [diff] [blame] | 177 | t = rcu_dereference(ip6n->tnls_wc[0]); |
| 178 | if (t && (t->dev->flags & IFF_UP)) |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 179 | return t; |
| 180 | |
| 181 | return NULL; |
| 182 | } |
| 183 | |
| 184 | /** |
Yasuyuki Kozakai | 3144581 | 2007-02-10 00:30:33 +0900 | [diff] [blame] | 185 | * ip6_tnl_bucket - get head of list matching given tunnel parameters |
YOSHIFUJI Hideaki | 1ab1457 | 2007-02-09 23:24:49 +0900 | [diff] [blame] | 186 | * @p: parameters containing tunnel end-points |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 187 | * |
| 188 | * Description: |
Yasuyuki Kozakai | 3144581 | 2007-02-10 00:30:33 +0900 | [diff] [blame] | 189 | * ip6_tnl_bucket() returns the head of the list matching the |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 190 | * &struct in6_addr entries laddr and raddr in @p. |
| 191 | * |
YOSHIFUJI Hideaki | 1ab1457 | 2007-02-09 23:24:49 +0900 | [diff] [blame] | 192 | * Return: head of IPv6 tunnel list |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 193 | **/ |
| 194 | |
Eric Dumazet | 9476763 | 2010-09-15 20:25:34 +0000 | [diff] [blame] | 195 | static struct ip6_tnl __rcu ** |
xeb@mail.ru | c12b395 | 2012-08-10 00:51:50 +0000 | [diff] [blame] | 196 | ip6_tnl_bucket(struct ip6_tnl_net *ip6n, const struct __ip6_tnl_parm *p) |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 197 | { |
Eric Dumazet | b71d1d4 | 2011-04-22 04:53:02 +0000 | [diff] [blame] | 198 | const struct in6_addr *remote = &p->raddr; |
| 199 | const struct in6_addr *local = &p->laddr; |
Eric Dumazet | 95c9617 | 2012-04-15 05:58:06 +0000 | [diff] [blame] | 200 | unsigned int h = 0; |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 201 | int prio = 0; |
| 202 | |
| 203 | if (!ipv6_addr_any(remote) || !ipv6_addr_any(local)) { |
| 204 | prio = 1; |
Eric Dumazet | ddbe503 | 2012-07-18 08:11:12 +0000 | [diff] [blame] | 205 | h = HASH(remote, local); |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 206 | } |
Pavel Emelyanov | 3e6c9fb | 2008-04-16 01:23:22 -0700 | [diff] [blame] | 207 | return &ip6n->tnls[prio][h]; |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 208 | } |
| 209 | |
| 210 | /** |
Yasuyuki Kozakai | 3144581 | 2007-02-10 00:30:33 +0900 | [diff] [blame] | 211 | * ip6_tnl_link - add tunnel to hash table |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 212 | * @t: tunnel to be added |
| 213 | **/ |
| 214 | |
| 215 | static void |
Pavel Emelyanov | 2dd02c8 | 2008-04-16 01:22:23 -0700 | [diff] [blame] | 216 | ip6_tnl_link(struct ip6_tnl_net *ip6n, struct ip6_tnl *t) |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 217 | { |
Eric Dumazet | 9476763 | 2010-09-15 20:25:34 +0000 | [diff] [blame] | 218 | struct ip6_tnl __rcu **tp = ip6_tnl_bucket(ip6n, &t->parms); |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 219 | |
Alexei Starovoitov | 8d79266 | 2016-09-15 13:00:30 -0700 | [diff] [blame] | 220 | if (t->parms.collect_md) |
| 221 | rcu_assign_pointer(ip6n->collect_md_tun, t); |
Eric Dumazet | cf778b0 | 2012-01-12 04:41:32 +0000 | [diff] [blame] | 222 | rcu_assign_pointer(t->next , rtnl_dereference(*tp)); |
| 223 | rcu_assign_pointer(*tp, t); |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 224 | } |
| 225 | |
| 226 | /** |
Yasuyuki Kozakai | 3144581 | 2007-02-10 00:30:33 +0900 | [diff] [blame] | 227 | * ip6_tnl_unlink - remove tunnel from hash table |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 228 | * @t: tunnel to be removed |
| 229 | **/ |
| 230 | |
| 231 | static void |
Pavel Emelyanov | 2dd02c8 | 2008-04-16 01:22:23 -0700 | [diff] [blame] | 232 | ip6_tnl_unlink(struct ip6_tnl_net *ip6n, struct ip6_tnl *t) |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 233 | { |
Eric Dumazet | 9476763 | 2010-09-15 20:25:34 +0000 | [diff] [blame] | 234 | struct ip6_tnl __rcu **tp; |
| 235 | struct ip6_tnl *iter; |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 236 | |
Alexei Starovoitov | 8d79266 | 2016-09-15 13:00:30 -0700 | [diff] [blame] | 237 | if (t->parms.collect_md) |
| 238 | rcu_assign_pointer(ip6n->collect_md_tun, NULL); |
| 239 | |
Eric Dumazet | 9476763 | 2010-09-15 20:25:34 +0000 | [diff] [blame] | 240 | for (tp = ip6_tnl_bucket(ip6n, &t->parms); |
| 241 | (iter = rtnl_dereference(*tp)) != NULL; |
| 242 | tp = &iter->next) { |
| 243 | if (t == iter) { |
Eric Dumazet | cf778b0 | 2012-01-12 04:41:32 +0000 | [diff] [blame] | 244 | rcu_assign_pointer(*tp, t->next); |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 245 | break; |
| 246 | } |
| 247 | } |
| 248 | } |
| 249 | |
Eric Dumazet | 8560f22 | 2010-09-28 03:23:34 +0000 | [diff] [blame] | 250 | static void ip6_dev_free(struct net_device *dev) |
| 251 | { |
Martin KaFai Lau | cdf3464 | 2015-09-15 14:30:07 -0700 | [diff] [blame] | 252 | struct ip6_tnl *t = netdev_priv(dev); |
| 253 | |
Tom Herbert | 0d3c703 | 2016-04-29 17:12:15 -0700 | [diff] [blame] | 254 | gro_cells_destroy(&t->gro_cells); |
Paolo Abeni | 607f725 | 2016-02-12 15:43:54 +0100 | [diff] [blame] | 255 | dst_cache_destroy(&t->dst_cache); |
Eric Dumazet | 8560f22 | 2010-09-28 03:23:34 +0000 | [diff] [blame] | 256 | free_percpu(dev->tstats); |
| 257 | free_netdev(dev); |
| 258 | } |
| 259 | |
Nicolas Dichtel | 0b11245 | 2012-11-14 05:14:00 +0000 | [diff] [blame] | 260 | static int ip6_tnl_create2(struct net_device *dev) |
| 261 | { |
| 262 | struct ip6_tnl *t = netdev_priv(dev); |
| 263 | struct net *net = dev_net(dev); |
| 264 | struct ip6_tnl_net *ip6n = net_generic(net, ip6_tnl_net_id); |
| 265 | int err; |
| 266 | |
| 267 | t = netdev_priv(dev); |
Nicolas Dichtel | 0b11245 | 2012-11-14 05:14:00 +0000 | [diff] [blame] | 268 | |
Thadeu Lima de Souza Cascardo | b6ee376 | 2016-04-01 17:17:50 -0300 | [diff] [blame] | 269 | dev->rtnl_link_ops = &ip6_link_ops; |
Nicolas Dichtel | 0b11245 | 2012-11-14 05:14:00 +0000 | [diff] [blame] | 270 | err = register_netdevice(dev); |
| 271 | if (err < 0) |
| 272 | goto out; |
| 273 | |
| 274 | strcpy(t->parms.name, dev->name); |
Nicolas Dichtel | 0b11245 | 2012-11-14 05:14:00 +0000 | [diff] [blame] | 275 | |
| 276 | dev_hold(dev); |
| 277 | ip6_tnl_link(ip6n, t); |
| 278 | return 0; |
| 279 | |
| 280 | out: |
| 281 | return err; |
| 282 | } |
| 283 | |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 284 | /** |
Ben Hutchings | 2c53040 | 2012-07-10 10:55:09 +0000 | [diff] [blame] | 285 | * ip6_tnl_create - create a new tunnel |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 286 | * @p: tunnel parameters |
| 287 | * @pt: pointer to new tunnel |
| 288 | * |
| 289 | * Description: |
| 290 | * Create tunnel matching given parameters. |
YOSHIFUJI Hideaki | 1ab1457 | 2007-02-09 23:24:49 +0900 | [diff] [blame] | 291 | * |
| 292 | * Return: |
Nicolas Dichtel | 3735556 | 2015-03-16 15:56:05 +0100 | [diff] [blame] | 293 | * created tunnel or error pointer |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 294 | **/ |
| 295 | |
xeb@mail.ru | c12b395 | 2012-08-10 00:51:50 +0000 | [diff] [blame] | 296 | static struct ip6_tnl *ip6_tnl_create(struct net *net, struct __ip6_tnl_parm *p) |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 297 | { |
| 298 | struct net_device *dev; |
| 299 | struct ip6_tnl *t; |
| 300 | char name[IFNAMSIZ]; |
Nicolas Dichtel | 3735556 | 2015-03-16 15:56:05 +0100 | [diff] [blame] | 301 | int err = -ENOMEM; |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 302 | |
Pavel Emelyanov | 34cc7ba | 2008-02-23 20:19:20 -0800 | [diff] [blame] | 303 | if (p->name[0]) |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 304 | strlcpy(name, p->name, IFNAMSIZ); |
Pavel Emelyanov | 34cc7ba | 2008-02-23 20:19:20 -0800 | [diff] [blame] | 305 | else |
| 306 | sprintf(name, "ip6tnl%%d"); |
| 307 | |
Tom Gundersen | c835a67 | 2014-07-14 16:37:24 +0200 | [diff] [blame] | 308 | dev = alloc_netdev(sizeof(*t), name, NET_NAME_UNKNOWN, |
| 309 | ip6_tnl_dev_setup); |
Ian Morris | 63159f2 | 2015-03-29 14:00:04 +0100 | [diff] [blame] | 310 | if (!dev) |
Ville Nuorvala | 567131a | 2006-11-24 17:05:41 -0800 | [diff] [blame] | 311 | goto failed; |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 312 | |
Pavel Emelyanov | 554eb27 | 2008-04-16 01:24:13 -0700 | [diff] [blame] | 313 | dev_net_set(dev, net); |
| 314 | |
Patrick McHardy | 2941a48 | 2006-01-08 22:05:26 -0800 | [diff] [blame] | 315 | t = netdev_priv(dev); |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 316 | t->parms = *p; |
Nicolas Dichtel | 0bd87628 | 2013-08-13 17:51:12 +0200 | [diff] [blame] | 317 | t->net = dev_net(dev); |
Nicolas Dichtel | 0b11245 | 2012-11-14 05:14:00 +0000 | [diff] [blame] | 318 | err = ip6_tnl_create2(dev); |
Eric Dumazet | 8560f22 | 2010-09-28 03:23:34 +0000 | [diff] [blame] | 319 | if (err < 0) |
| 320 | goto failed_free; |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 321 | |
Ville Nuorvala | 567131a | 2006-11-24 17:05:41 -0800 | [diff] [blame] | 322 | return t; |
Pavel Emelyanov | b37d428b | 2008-02-26 23:51:04 -0800 | [diff] [blame] | 323 | |
| 324 | failed_free: |
Eric Dumazet | 8560f22 | 2010-09-28 03:23:34 +0000 | [diff] [blame] | 325 | ip6_dev_free(dev); |
Ville Nuorvala | 567131a | 2006-11-24 17:05:41 -0800 | [diff] [blame] | 326 | failed: |
Nicolas Dichtel | 3735556 | 2015-03-16 15:56:05 +0100 | [diff] [blame] | 327 | return ERR_PTR(err); |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 328 | } |
| 329 | |
| 330 | /** |
Yasuyuki Kozakai | 3144581 | 2007-02-10 00:30:33 +0900 | [diff] [blame] | 331 | * ip6_tnl_locate - find or create tunnel matching given parameters |
YOSHIFUJI Hideaki | 1ab1457 | 2007-02-09 23:24:49 +0900 | [diff] [blame] | 332 | * @p: tunnel parameters |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 333 | * @create: != 0 if allowed to create new tunnel if no match found |
| 334 | * |
| 335 | * Description: |
Yasuyuki Kozakai | 3144581 | 2007-02-10 00:30:33 +0900 | [diff] [blame] | 336 | * ip6_tnl_locate() first tries to locate an existing tunnel |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 337 | * based on @parms. If this is unsuccessful, but @create is set a new |
| 338 | * tunnel device is created and registered for use. |
| 339 | * |
| 340 | * Return: |
Nicolas Dichtel | 3735556 | 2015-03-16 15:56:05 +0100 | [diff] [blame] | 341 | * matching tunnel or error pointer |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 342 | **/ |
| 343 | |
Pavel Emelyanov | 2dd02c8 | 2008-04-16 01:22:23 -0700 | [diff] [blame] | 344 | static struct ip6_tnl *ip6_tnl_locate(struct net *net, |
xeb@mail.ru | c12b395 | 2012-08-10 00:51:50 +0000 | [diff] [blame] | 345 | struct __ip6_tnl_parm *p, int create) |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 346 | { |
Eric Dumazet | b71d1d4 | 2011-04-22 04:53:02 +0000 | [diff] [blame] | 347 | const struct in6_addr *remote = &p->raddr; |
| 348 | const struct in6_addr *local = &p->laddr; |
Eric Dumazet | 9476763 | 2010-09-15 20:25:34 +0000 | [diff] [blame] | 349 | struct ip6_tnl __rcu **tp; |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 350 | struct ip6_tnl *t; |
Pavel Emelyanov | 2dd02c8 | 2008-04-16 01:22:23 -0700 | [diff] [blame] | 351 | struct ip6_tnl_net *ip6n = net_generic(net, ip6_tnl_net_id); |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 352 | |
Eric Dumazet | 9476763 | 2010-09-15 20:25:34 +0000 | [diff] [blame] | 353 | for (tp = ip6_tnl_bucket(ip6n, p); |
| 354 | (t = rtnl_dereference(*tp)) != NULL; |
| 355 | tp = &t->next) { |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 356 | if (ipv6_addr_equal(local, &t->parms.laddr) && |
Steffen Klassert | 2b0bb01 | 2014-09-22 10:07:24 +0200 | [diff] [blame] | 357 | ipv6_addr_equal(remote, &t->parms.raddr)) { |
| 358 | if (create) |
Nicolas Dichtel | 3735556 | 2015-03-16 15:56:05 +0100 | [diff] [blame] | 359 | return ERR_PTR(-EEXIST); |
Steffen Klassert | 2b0bb01 | 2014-09-22 10:07:24 +0200 | [diff] [blame] | 360 | |
Ville Nuorvala | 567131a | 2006-11-24 17:05:41 -0800 | [diff] [blame] | 361 | return t; |
Steffen Klassert | 2b0bb01 | 2014-09-22 10:07:24 +0200 | [diff] [blame] | 362 | } |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 363 | } |
| 364 | if (!create) |
Nicolas Dichtel | 3735556 | 2015-03-16 15:56:05 +0100 | [diff] [blame] | 365 | return ERR_PTR(-ENODEV); |
Pavel Emelyanov | 2dd02c8 | 2008-04-16 01:22:23 -0700 | [diff] [blame] | 366 | return ip6_tnl_create(net, p); |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 367 | } |
| 368 | |
| 369 | /** |
Yasuyuki Kozakai | 3144581 | 2007-02-10 00:30:33 +0900 | [diff] [blame] | 370 | * ip6_tnl_dev_uninit - tunnel device uninitializer |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 371 | * @dev: the device to be destroyed |
YOSHIFUJI Hideaki | 1ab1457 | 2007-02-09 23:24:49 +0900 | [diff] [blame] | 372 | * |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 373 | * Description: |
Yasuyuki Kozakai | 3144581 | 2007-02-10 00:30:33 +0900 | [diff] [blame] | 374 | * ip6_tnl_dev_uninit() removes tunnel from its list |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 375 | **/ |
| 376 | |
| 377 | static void |
Yasuyuki Kozakai | 3144581 | 2007-02-10 00:30:33 +0900 | [diff] [blame] | 378 | ip6_tnl_dev_uninit(struct net_device *dev) |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 379 | { |
Patrick McHardy | 2941a48 | 2006-01-08 22:05:26 -0800 | [diff] [blame] | 380 | struct ip6_tnl *t = netdev_priv(dev); |
Nicolas Dichtel | 0bd87628 | 2013-08-13 17:51:12 +0200 | [diff] [blame] | 381 | struct net *net = t->net; |
Pavel Emelyanov | 2dd02c8 | 2008-04-16 01:22:23 -0700 | [diff] [blame] | 382 | struct ip6_tnl_net *ip6n = net_generic(net, ip6_tnl_net_id); |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 383 | |
Eric Dumazet | 9476763 | 2010-09-15 20:25:34 +0000 | [diff] [blame] | 384 | if (dev == ip6n->fb_tnl_dev) |
Stephen Hemminger | a9b3cd7 | 2011-08-01 16:19:00 +0000 | [diff] [blame] | 385 | RCU_INIT_POINTER(ip6n->tnls_wc[0], NULL); |
Eric Dumazet | 9476763 | 2010-09-15 20:25:34 +0000 | [diff] [blame] | 386 | else |
Pavel Emelyanov | 2dd02c8 | 2008-04-16 01:22:23 -0700 | [diff] [blame] | 387 | ip6_tnl_unlink(ip6n, t); |
Paolo Abeni | 607f725 | 2016-02-12 15:43:54 +0100 | [diff] [blame] | 388 | dst_cache_reset(&t->dst_cache); |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 389 | dev_put(dev); |
| 390 | } |
| 391 | |
| 392 | /** |
| 393 | * parse_tvl_tnl_enc_lim - handle encapsulation limit option |
| 394 | * @skb: received socket buffer |
| 395 | * |
YOSHIFUJI Hideaki | 1ab1457 | 2007-02-09 23:24:49 +0900 | [diff] [blame] | 396 | * Return: |
| 397 | * 0 if none was found, |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 398 | * else index to encapsulation limit |
| 399 | **/ |
| 400 | |
xeb@mail.ru | c12b395 | 2012-08-10 00:51:50 +0000 | [diff] [blame] | 401 | __u16 ip6_tnl_parse_tlv_enc_lim(struct sk_buff *skb, __u8 *raw) |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 402 | { |
Eric Dumazet | fbfa743 | 2017-01-23 16:43:06 -0800 | [diff] [blame] | 403 | const struct ipv6hdr *ipv6h = (const struct ipv6hdr *)raw; |
| 404 | unsigned int nhoff = raw - skb->data; |
| 405 | unsigned int off = nhoff + sizeof(*ipv6h); |
| 406 | u8 next, nexthdr = ipv6h->nexthdr; |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 407 | |
| 408 | while (ipv6_ext_hdr(nexthdr) && nexthdr != NEXTHDR_NONE) { |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 409 | struct ipv6_opt_hdr *hdr; |
Eric Dumazet | fbfa743 | 2017-01-23 16:43:06 -0800 | [diff] [blame] | 410 | u16 optlen; |
| 411 | |
| 412 | if (!pskb_may_pull(skb, off + sizeof(*hdr))) |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 413 | break; |
| 414 | |
Eric Dumazet | fbfa743 | 2017-01-23 16:43:06 -0800 | [diff] [blame] | 415 | hdr = (struct ipv6_opt_hdr *)(skb->data + off); |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 416 | if (nexthdr == NEXTHDR_FRAGMENT) { |
| 417 | struct frag_hdr *frag_hdr = (struct frag_hdr *) hdr; |
| 418 | if (frag_hdr->frag_off) |
| 419 | break; |
| 420 | optlen = 8; |
| 421 | } else if (nexthdr == NEXTHDR_AUTH) { |
| 422 | optlen = (hdr->hdrlen + 2) << 2; |
| 423 | } else { |
| 424 | optlen = ipv6_optlen(hdr); |
| 425 | } |
Eric Dumazet | fbfa743 | 2017-01-23 16:43:06 -0800 | [diff] [blame] | 426 | /* cache hdr->nexthdr, since pskb_may_pull() might |
| 427 | * invalidate hdr |
| 428 | */ |
| 429 | next = hdr->nexthdr; |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 430 | if (nexthdr == NEXTHDR_DEST) { |
Eric Dumazet | fbfa743 | 2017-01-23 16:43:06 -0800 | [diff] [blame] | 431 | u16 i = 2; |
| 432 | |
| 433 | /* Remember : hdr is no longer valid at this point. */ |
| 434 | if (!pskb_may_pull(skb, off + optlen)) |
| 435 | break; |
| 436 | |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 437 | while (1) { |
| 438 | struct ipv6_tlv_tnl_enc_lim *tel; |
| 439 | |
| 440 | /* No more room for encapsulation limit */ |
Eric Dumazet | fbfa743 | 2017-01-23 16:43:06 -0800 | [diff] [blame] | 441 | if (i + sizeof(*tel) > optlen) |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 442 | break; |
| 443 | |
Dan Carpenter | 63117f0 | 2017-02-01 11:46:32 +0300 | [diff] [blame] | 444 | tel = (struct ipv6_tlv_tnl_enc_lim *)(skb->data + off + i); |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 445 | /* return index of option if found and valid */ |
| 446 | if (tel->type == IPV6_TLV_TNL_ENCAP_LIMIT && |
| 447 | tel->length == 1) |
Eric Dumazet | fbfa743 | 2017-01-23 16:43:06 -0800 | [diff] [blame] | 448 | return i + off - nhoff; |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 449 | /* else jump to next option */ |
| 450 | if (tel->type) |
| 451 | i += tel->length + 2; |
| 452 | else |
| 453 | i++; |
| 454 | } |
| 455 | } |
Eric Dumazet | fbfa743 | 2017-01-23 16:43:06 -0800 | [diff] [blame] | 456 | nexthdr = next; |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 457 | off += optlen; |
| 458 | } |
| 459 | return 0; |
| 460 | } |
xeb@mail.ru | c12b395 | 2012-08-10 00:51:50 +0000 | [diff] [blame] | 461 | EXPORT_SYMBOL(ip6_tnl_parse_tlv_enc_lim); |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 462 | |
| 463 | /** |
Yasuyuki Kozakai | e490d1d | 2006-10-31 23:11:25 +0900 | [diff] [blame] | 464 | * ip6_tnl_err - tunnel error handler |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 465 | * |
| 466 | * Description: |
Yasuyuki Kozakai | e490d1d | 2006-10-31 23:11:25 +0900 | [diff] [blame] | 467 | * ip6_tnl_err() should handle errors in the tunnel according |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 468 | * to the specifications in RFC 2473. |
| 469 | **/ |
| 470 | |
Herbert Xu | d2acc34 | 2006-03-28 01:12:13 -0800 | [diff] [blame] | 471 | static int |
Yasuyuki Kozakai | 502b093 | 2006-11-30 14:43:28 +0900 | [diff] [blame] | 472 | ip6_tnl_err(struct sk_buff *skb, __u8 ipproto, struct inet6_skb_parm *opt, |
Brian Haley | d5fdd6b | 2009-06-23 04:31:07 -0700 | [diff] [blame] | 473 | u8 *type, u8 *code, int *msg, __u32 *info, int offset) |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 474 | { |
Eric Dumazet | b71d1d4 | 2011-04-22 04:53:02 +0000 | [diff] [blame] | 475 | const struct ipv6hdr *ipv6h = (const struct ipv6hdr *) skb->data; |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 476 | struct ip6_tnl *t; |
| 477 | int rel_msg = 0; |
Brian Haley | d5fdd6b | 2009-06-23 04:31:07 -0700 | [diff] [blame] | 478 | u8 rel_type = ICMPV6_DEST_UNREACH; |
| 479 | u8 rel_code = ICMPV6_ADDR_UNREACH; |
Alexey Andriyanov | acf722f | 2014-10-29 10:54:52 +0300 | [diff] [blame] | 480 | u8 tproto; |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 481 | __u32 rel_info = 0; |
| 482 | __u16 len; |
Herbert Xu | d2acc34 | 2006-03-28 01:12:13 -0800 | [diff] [blame] | 483 | int err = -ENOENT; |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 484 | |
YOSHIFUJI Hideaki | 1ab1457 | 2007-02-09 23:24:49 +0900 | [diff] [blame] | 485 | /* If the packet doesn't contain the original IPv6 header we are |
| 486 | in trouble since we might need the source address for further |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 487 | processing of the error. */ |
| 488 | |
Eric Dumazet | 2922bc8 | 2009-10-23 06:34:34 +0000 | [diff] [blame] | 489 | rcu_read_lock(); |
Ian Morris | e5d08d7 | 2014-11-23 21:28:43 +0000 | [diff] [blame] | 490 | t = ip6_tnl_lookup(dev_net(skb->dev), &ipv6h->daddr, &ipv6h->saddr); |
Ian Morris | 63159f2 | 2015-03-29 14:00:04 +0100 | [diff] [blame] | 491 | if (!t) |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 492 | goto out; |
| 493 | |
Alexey Andriyanov | acf722f | 2014-10-29 10:54:52 +0300 | [diff] [blame] | 494 | tproto = ACCESS_ONCE(t->parms.proto); |
| 495 | if (tproto != ipproto && tproto != 0) |
Yasuyuki Kozakai | 502b093 | 2006-11-30 14:43:28 +0900 | [diff] [blame] | 496 | goto out; |
| 497 | |
Herbert Xu | d2acc34 | 2006-03-28 01:12:13 -0800 | [diff] [blame] | 498 | err = 0; |
| 499 | |
Yasuyuki Kozakai | e490d1d | 2006-10-31 23:11:25 +0900 | [diff] [blame] | 500 | switch (*type) { |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 501 | __u32 teli; |
| 502 | struct ipv6_tlv_tnl_enc_lim *tel; |
| 503 | __u32 mtu; |
| 504 | case ICMPV6_DEST_UNREACH: |
Matt Bennett | 17a10c9 | 2015-09-25 11:01:47 +1200 | [diff] [blame] | 505 | net_dbg_ratelimited("%s: Path to destination invalid or inactive!\n", |
| 506 | t->parms.name); |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 507 | rel_msg = 1; |
| 508 | break; |
| 509 | case ICMPV6_TIME_EXCEED: |
Yasuyuki Kozakai | e490d1d | 2006-10-31 23:11:25 +0900 | [diff] [blame] | 510 | if ((*code) == ICMPV6_EXC_HOPLIMIT) { |
Matt Bennett | 17a10c9 | 2015-09-25 11:01:47 +1200 | [diff] [blame] | 511 | net_dbg_ratelimited("%s: Too small hop limit or routing loop in tunnel!\n", |
| 512 | t->parms.name); |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 513 | rel_msg = 1; |
| 514 | } |
| 515 | break; |
| 516 | case ICMPV6_PARAMPROB: |
Ville Nuorvala | 107a5fe | 2006-11-24 17:08:58 -0800 | [diff] [blame] | 517 | teli = 0; |
Yasuyuki Kozakai | e490d1d | 2006-10-31 23:11:25 +0900 | [diff] [blame] | 518 | if ((*code) == ICMPV6_HDR_FIELD) |
xeb@mail.ru | c12b395 | 2012-08-10 00:51:50 +0000 | [diff] [blame] | 519 | teli = ip6_tnl_parse_tlv_enc_lim(skb, skb->data); |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 520 | |
Al Viro | 704eae1 | 2007-07-26 17:33:29 +0100 | [diff] [blame] | 521 | if (teli && teli == *info - 2) { |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 522 | tel = (struct ipv6_tlv_tnl_enc_lim *) &skb->data[teli]; |
| 523 | if (tel->encap_limit == 0) { |
Matt Bennett | 17a10c9 | 2015-09-25 11:01:47 +1200 | [diff] [blame] | 524 | net_dbg_ratelimited("%s: Too small encapsulation limit or routing loop in tunnel!\n", |
| 525 | t->parms.name); |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 526 | rel_msg = 1; |
| 527 | } |
Joe Perches | e87cc47 | 2012-05-13 21:56:26 +0000 | [diff] [blame] | 528 | } else { |
Matt Bennett | 17a10c9 | 2015-09-25 11:01:47 +1200 | [diff] [blame] | 529 | net_dbg_ratelimited("%s: Recipient unable to parse tunneled packet!\n", |
| 530 | t->parms.name); |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 531 | } |
| 532 | break; |
| 533 | case ICMPV6_PKT_TOOBIG: |
Al Viro | 704eae1 | 2007-07-26 17:33:29 +0100 | [diff] [blame] | 534 | mtu = *info - offset; |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 535 | if (mtu < IPV6_MIN_MTU) |
| 536 | mtu = IPV6_MIN_MTU; |
| 537 | t->dev->mtu = mtu; |
| 538 | |
Ian Morris | e5d08d7 | 2014-11-23 21:28:43 +0000 | [diff] [blame] | 539 | len = sizeof(*ipv6h) + ntohs(ipv6h->payload_len); |
| 540 | if (len > mtu) { |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 541 | rel_type = ICMPV6_PKT_TOOBIG; |
| 542 | rel_code = 0; |
| 543 | rel_info = mtu; |
| 544 | rel_msg = 1; |
| 545 | } |
| 546 | break; |
| 547 | } |
Yasuyuki Kozakai | e490d1d | 2006-10-31 23:11:25 +0900 | [diff] [blame] | 548 | |
| 549 | *type = rel_type; |
| 550 | *code = rel_code; |
| 551 | *info = rel_info; |
| 552 | *msg = rel_msg; |
| 553 | |
| 554 | out: |
Eric Dumazet | 2922bc8 | 2009-10-23 06:34:34 +0000 | [diff] [blame] | 555 | rcu_read_unlock(); |
Yasuyuki Kozakai | e490d1d | 2006-10-31 23:11:25 +0900 | [diff] [blame] | 556 | return err; |
| 557 | } |
| 558 | |
| 559 | static int |
Yasuyuki Kozakai | c4d3efa | 2007-02-15 00:43:16 +0900 | [diff] [blame] | 560 | ip4ip6_err(struct sk_buff *skb, struct inet6_skb_parm *opt, |
Brian Haley | d5fdd6b | 2009-06-23 04:31:07 -0700 | [diff] [blame] | 561 | u8 type, u8 code, int offset, __be32 info) |
Yasuyuki Kozakai | c4d3efa | 2007-02-15 00:43:16 +0900 | [diff] [blame] | 562 | { |
| 563 | int rel_msg = 0; |
Brian Haley | d5fdd6b | 2009-06-23 04:31:07 -0700 | [diff] [blame] | 564 | u8 rel_type = type; |
| 565 | u8 rel_code = code; |
Al Viro | 704eae1 | 2007-07-26 17:33:29 +0100 | [diff] [blame] | 566 | __u32 rel_info = ntohl(info); |
Yasuyuki Kozakai | c4d3efa | 2007-02-15 00:43:16 +0900 | [diff] [blame] | 567 | int err; |
| 568 | struct sk_buff *skb2; |
Eric Dumazet | b71d1d4 | 2011-04-22 04:53:02 +0000 | [diff] [blame] | 569 | const struct iphdr *eiph; |
Yasuyuki Kozakai | c4d3efa | 2007-02-15 00:43:16 +0900 | [diff] [blame] | 570 | struct rtable *rt; |
David S. Miller | 31e4543d | 2011-05-03 20:25:42 -0700 | [diff] [blame] | 571 | struct flowi4 fl4; |
Yasuyuki Kozakai | c4d3efa | 2007-02-15 00:43:16 +0900 | [diff] [blame] | 572 | |
Yasuyuki Kozakai | 502b093 | 2006-11-30 14:43:28 +0900 | [diff] [blame] | 573 | err = ip6_tnl_err(skb, IPPROTO_IPIP, opt, &rel_type, &rel_code, |
| 574 | &rel_msg, &rel_info, offset); |
Yasuyuki Kozakai | c4d3efa | 2007-02-15 00:43:16 +0900 | [diff] [blame] | 575 | if (err < 0) |
| 576 | return err; |
| 577 | |
| 578 | if (rel_msg == 0) |
| 579 | return 0; |
| 580 | |
| 581 | switch (rel_type) { |
| 582 | case ICMPV6_DEST_UNREACH: |
| 583 | if (rel_code != ICMPV6_ADDR_UNREACH) |
| 584 | return 0; |
| 585 | rel_type = ICMP_DEST_UNREACH; |
| 586 | rel_code = ICMP_HOST_UNREACH; |
| 587 | break; |
| 588 | case ICMPV6_PKT_TOOBIG: |
| 589 | if (rel_code != 0) |
| 590 | return 0; |
| 591 | rel_type = ICMP_DEST_UNREACH; |
| 592 | rel_code = ICMP_FRAG_NEEDED; |
| 593 | break; |
David S. Miller | ec18d9a | 2012-07-12 00:25:15 -0700 | [diff] [blame] | 594 | case NDISC_REDIRECT: |
| 595 | rel_type = ICMP_REDIRECT; |
| 596 | rel_code = ICMP_REDIR_HOST; |
Yasuyuki Kozakai | c4d3efa | 2007-02-15 00:43:16 +0900 | [diff] [blame] | 597 | default: |
| 598 | return 0; |
| 599 | } |
| 600 | |
| 601 | if (!pskb_may_pull(skb, offset + sizeof(struct iphdr))) |
| 602 | return 0; |
| 603 | |
| 604 | skb2 = skb_clone(skb, GFP_ATOMIC); |
| 605 | if (!skb2) |
| 606 | return 0; |
| 607 | |
Eric Dumazet | adf3090 | 2009-06-02 05:19:30 +0000 | [diff] [blame] | 608 | skb_dst_drop(skb2); |
| 609 | |
Yasuyuki Kozakai | c4d3efa | 2007-02-15 00:43:16 +0900 | [diff] [blame] | 610 | skb_pull(skb2, offset); |
Arnaldo Carvalho de Melo | c1d2bbe | 2007-04-10 20:45:18 -0700 | [diff] [blame] | 611 | skb_reset_network_header(skb2); |
Arnaldo Carvalho de Melo | eddc9ec | 2007-04-20 22:47:35 -0700 | [diff] [blame] | 612 | eiph = ip_hdr(skb2); |
Yasuyuki Kozakai | c4d3efa | 2007-02-15 00:43:16 +0900 | [diff] [blame] | 613 | |
| 614 | /* Try to guess incoming interface */ |
David S. Miller | 31e4543d | 2011-05-03 20:25:42 -0700 | [diff] [blame] | 615 | rt = ip_route_output_ports(dev_net(skb->dev), &fl4, NULL, |
David S. Miller | 78fbfd8 | 2011-03-12 00:00:52 -0500 | [diff] [blame] | 616 | eiph->saddr, 0, |
| 617 | 0, 0, |
| 618 | IPPROTO_IPIP, RT_TOS(eiph->tos), 0); |
David S. Miller | b23dd4f | 2011-03-02 14:31:35 -0800 | [diff] [blame] | 619 | if (IS_ERR(rt)) |
Yasuyuki Kozakai | c4d3efa | 2007-02-15 00:43:16 +0900 | [diff] [blame] | 620 | goto out; |
| 621 | |
Changli Gao | d8d1f30 | 2010-06-10 23:31:35 -0700 | [diff] [blame] | 622 | skb2->dev = rt->dst.dev; |
Yasuyuki Kozakai | c4d3efa | 2007-02-15 00:43:16 +0900 | [diff] [blame] | 623 | |
| 624 | /* route "incoming" packet */ |
| 625 | if (rt->rt_flags & RTCF_LOCAL) { |
| 626 | ip_rt_put(rt); |
| 627 | rt = NULL; |
David S. Miller | 31e4543d | 2011-05-03 20:25:42 -0700 | [diff] [blame] | 628 | rt = ip_route_output_ports(dev_net(skb->dev), &fl4, NULL, |
David S. Miller | 78fbfd8 | 2011-03-12 00:00:52 -0500 | [diff] [blame] | 629 | eiph->daddr, eiph->saddr, |
| 630 | 0, 0, |
| 631 | IPPROTO_IPIP, |
| 632 | RT_TOS(eiph->tos), 0); |
David S. Miller | b23dd4f | 2011-03-02 14:31:35 -0800 | [diff] [blame] | 633 | if (IS_ERR(rt) || |
Changli Gao | d8d1f30 | 2010-06-10 23:31:35 -0700 | [diff] [blame] | 634 | rt->dst.dev->type != ARPHRD_TUNNEL) { |
David S. Miller | b23dd4f | 2011-03-02 14:31:35 -0800 | [diff] [blame] | 635 | if (!IS_ERR(rt)) |
| 636 | ip_rt_put(rt); |
Yasuyuki Kozakai | c4d3efa | 2007-02-15 00:43:16 +0900 | [diff] [blame] | 637 | goto out; |
| 638 | } |
David S. Miller | b23dd4f | 2011-03-02 14:31:35 -0800 | [diff] [blame] | 639 | skb_dst_set(skb2, &rt->dst); |
Yasuyuki Kozakai | c4d3efa | 2007-02-15 00:43:16 +0900 | [diff] [blame] | 640 | } else { |
| 641 | ip_rt_put(rt); |
| 642 | if (ip_route_input(skb2, eiph->daddr, eiph->saddr, eiph->tos, |
| 643 | skb2->dev) || |
Eric Dumazet | adf3090 | 2009-06-02 05:19:30 +0000 | [diff] [blame] | 644 | skb_dst(skb2)->dev->type != ARPHRD_TUNNEL) |
Yasuyuki Kozakai | c4d3efa | 2007-02-15 00:43:16 +0900 | [diff] [blame] | 645 | goto out; |
| 646 | } |
| 647 | |
| 648 | /* change mtu on this route */ |
| 649 | if (rel_type == ICMP_DEST_UNREACH && rel_code == ICMP_FRAG_NEEDED) { |
Eric Dumazet | adf3090 | 2009-06-02 05:19:30 +0000 | [diff] [blame] | 650 | if (rel_info > dst_mtu(skb_dst(skb2))) |
Yasuyuki Kozakai | c4d3efa | 2007-02-15 00:43:16 +0900 | [diff] [blame] | 651 | goto out; |
| 652 | |
David S. Miller | 6700c27 | 2012-07-17 03:29:28 -0700 | [diff] [blame] | 653 | skb_dst(skb2)->ops->update_pmtu(skb_dst(skb2), NULL, skb2, rel_info); |
Yasuyuki Kozakai | c4d3efa | 2007-02-15 00:43:16 +0900 | [diff] [blame] | 654 | } |
David S. Miller | 1ed5c48 | 2012-07-12 00:41:25 -0700 | [diff] [blame] | 655 | if (rel_type == ICMP_REDIRECT) |
David S. Miller | 6700c27 | 2012-07-17 03:29:28 -0700 | [diff] [blame] | 656 | skb_dst(skb2)->ops->redirect(skb_dst(skb2), NULL, skb2); |
Yasuyuki Kozakai | c4d3efa | 2007-02-15 00:43:16 +0900 | [diff] [blame] | 657 | |
Al Viro | 704eae1 | 2007-07-26 17:33:29 +0100 | [diff] [blame] | 658 | icmp_send(skb2, rel_type, rel_code, htonl(rel_info)); |
Yasuyuki Kozakai | c4d3efa | 2007-02-15 00:43:16 +0900 | [diff] [blame] | 659 | |
| 660 | out: |
| 661 | kfree_skb(skb2); |
| 662 | return 0; |
| 663 | } |
| 664 | |
| 665 | static int |
Yasuyuki Kozakai | e490d1d | 2006-10-31 23:11:25 +0900 | [diff] [blame] | 666 | ip6ip6_err(struct sk_buff *skb, struct inet6_skb_parm *opt, |
Brian Haley | d5fdd6b | 2009-06-23 04:31:07 -0700 | [diff] [blame] | 667 | u8 type, u8 code, int offset, __be32 info) |
Yasuyuki Kozakai | e490d1d | 2006-10-31 23:11:25 +0900 | [diff] [blame] | 668 | { |
| 669 | int rel_msg = 0; |
Brian Haley | d5fdd6b | 2009-06-23 04:31:07 -0700 | [diff] [blame] | 670 | u8 rel_type = type; |
| 671 | u8 rel_code = code; |
Al Viro | 704eae1 | 2007-07-26 17:33:29 +0100 | [diff] [blame] | 672 | __u32 rel_info = ntohl(info); |
Yasuyuki Kozakai | e490d1d | 2006-10-31 23:11:25 +0900 | [diff] [blame] | 673 | int err; |
| 674 | |
Yasuyuki Kozakai | 502b093 | 2006-11-30 14:43:28 +0900 | [diff] [blame] | 675 | err = ip6_tnl_err(skb, IPPROTO_IPV6, opt, &rel_type, &rel_code, |
| 676 | &rel_msg, &rel_info, offset); |
Yasuyuki Kozakai | e490d1d | 2006-10-31 23:11:25 +0900 | [diff] [blame] | 677 | if (err < 0) |
| 678 | return err; |
| 679 | |
| 680 | if (rel_msg && pskb_may_pull(skb, offset + sizeof(struct ipv6hdr))) { |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 681 | struct rt6_info *rt; |
| 682 | struct sk_buff *skb2 = skb_clone(skb, GFP_ATOMIC); |
Ville Nuorvala | 305d4b3 | 2006-11-24 17:06:53 -0800 | [diff] [blame] | 683 | |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 684 | if (!skb2) |
Yasuyuki Kozakai | e490d1d | 2006-10-31 23:11:25 +0900 | [diff] [blame] | 685 | return 0; |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 686 | |
Eric Dumazet | adf3090 | 2009-06-02 05:19:30 +0000 | [diff] [blame] | 687 | skb_dst_drop(skb2); |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 688 | skb_pull(skb2, offset); |
Arnaldo Carvalho de Melo | c1d2bbe | 2007-04-10 20:45:18 -0700 | [diff] [blame] | 689 | skb_reset_network_header(skb2); |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 690 | |
| 691 | /* Try to guess incoming interface */ |
Pavel Emelyanov | 2f7f54b | 2008-04-16 01:23:44 -0700 | [diff] [blame] | 692 | rt = rt6_lookup(dev_net(skb->dev), &ipv6_hdr(skb2)->saddr, |
| 693 | NULL, 0, 0); |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 694 | |
David S. Miller | d191854 | 2011-12-28 20:19:20 -0500 | [diff] [blame] | 695 | if (rt && rt->dst.dev) |
| 696 | skb2->dev = rt->dst.dev; |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 697 | |
Alexey Dobriyan | 3ffe533 | 2010-02-18 08:25:24 +0000 | [diff] [blame] | 698 | icmpv6_send(skb2, rel_type, rel_code, rel_info); |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 699 | |
Amerigo Wang | 94e187c | 2012-10-29 00:13:19 +0000 | [diff] [blame] | 700 | ip6_rt_put(rt); |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 701 | |
| 702 | kfree_skb(skb2); |
| 703 | } |
Yasuyuki Kozakai | e490d1d | 2006-10-31 23:11:25 +0900 | [diff] [blame] | 704 | |
| 705 | return 0; |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 706 | } |
| 707 | |
Nicolas Dichtel | f4e0b4c | 2012-11-27 03:07:11 +0000 | [diff] [blame] | 708 | static int ip4ip6_dscp_ecn_decapsulate(const struct ip6_tnl *t, |
| 709 | const struct ipv6hdr *ipv6h, |
| 710 | struct sk_buff *skb) |
Yasuyuki Kozakai | c4d3efa | 2007-02-15 00:43:16 +0900 | [diff] [blame] | 711 | { |
| 712 | __u8 dsfield = ipv6_get_dsfield(ipv6h) & ~INET_ECN_MASK; |
| 713 | |
| 714 | if (t->parms.flags & IP6_TNL_F_RCV_DSCP_COPY) |
Arnaldo Carvalho de Melo | eddc9ec | 2007-04-20 22:47:35 -0700 | [diff] [blame] | 715 | ipv4_change_dsfield(ip_hdr(skb), INET_ECN_MASK, dsfield); |
Yasuyuki Kozakai | c4d3efa | 2007-02-15 00:43:16 +0900 | [diff] [blame] | 716 | |
Nicolas Dichtel | f4e0b4c | 2012-11-27 03:07:11 +0000 | [diff] [blame] | 717 | return IP6_ECN_decapsulate(ipv6h, skb); |
Yasuyuki Kozakai | c4d3efa | 2007-02-15 00:43:16 +0900 | [diff] [blame] | 718 | } |
| 719 | |
Nicolas Dichtel | f4e0b4c | 2012-11-27 03:07:11 +0000 | [diff] [blame] | 720 | static int ip6ip6_dscp_ecn_decapsulate(const struct ip6_tnl *t, |
| 721 | const struct ipv6hdr *ipv6h, |
| 722 | struct sk_buff *skb) |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 723 | { |
Yasuyuki Kozakai | 8359925 | 2006-11-03 09:39:14 +0900 | [diff] [blame] | 724 | if (t->parms.flags & IP6_TNL_F_RCV_DSCP_COPY) |
Herbert Xu | 29bb43b4 | 2007-11-13 21:40:13 -0800 | [diff] [blame] | 725 | ipv6_copy_dscp(ipv6_get_dsfield(ipv6h), ipv6_hdr(skb)); |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 726 | |
Nicolas Dichtel | f4e0b4c | 2012-11-27 03:07:11 +0000 | [diff] [blame] | 727 | return IP6_ECN_decapsulate(ipv6h, skb); |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 728 | } |
Yasuyuki Kozakai | 8359925 | 2006-11-03 09:39:14 +0900 | [diff] [blame] | 729 | |
xeb@mail.ru | c12b395 | 2012-08-10 00:51:50 +0000 | [diff] [blame] | 730 | __u32 ip6_tnl_get_cap(struct ip6_tnl *t, |
Ville Nuorvala | d0087b2 | 2012-06-28 18:15:52 +0000 | [diff] [blame] | 731 | const struct in6_addr *laddr, |
| 732 | const struct in6_addr *raddr) |
| 733 | { |
xeb@mail.ru | c12b395 | 2012-08-10 00:51:50 +0000 | [diff] [blame] | 734 | struct __ip6_tnl_parm *p = &t->parms; |
Ville Nuorvala | d0087b2 | 2012-06-28 18:15:52 +0000 | [diff] [blame] | 735 | int ltype = ipv6_addr_type(laddr); |
| 736 | int rtype = ipv6_addr_type(raddr); |
| 737 | __u32 flags = 0; |
| 738 | |
| 739 | if (ltype == IPV6_ADDR_ANY || rtype == IPV6_ADDR_ANY) { |
| 740 | flags = IP6_TNL_F_CAP_PER_PACKET; |
| 741 | } else if (ltype & (IPV6_ADDR_UNICAST|IPV6_ADDR_MULTICAST) && |
| 742 | rtype & (IPV6_ADDR_UNICAST|IPV6_ADDR_MULTICAST) && |
| 743 | !((ltype|rtype) & IPV6_ADDR_LOOPBACK) && |
| 744 | (!((ltype|rtype) & IPV6_ADDR_LINKLOCAL) || p->link)) { |
| 745 | if (ltype&IPV6_ADDR_UNICAST) |
| 746 | flags |= IP6_TNL_F_CAP_XMIT; |
| 747 | if (rtype&IPV6_ADDR_UNICAST) |
| 748 | flags |= IP6_TNL_F_CAP_RCV; |
| 749 | } |
| 750 | return flags; |
| 751 | } |
xeb@mail.ru | c12b395 | 2012-08-10 00:51:50 +0000 | [diff] [blame] | 752 | EXPORT_SYMBOL(ip6_tnl_get_cap); |
Ville Nuorvala | d0087b2 | 2012-06-28 18:15:52 +0000 | [diff] [blame] | 753 | |
Eric Dumazet | f1a28ea | 2009-11-02 11:21:37 +0100 | [diff] [blame] | 754 | /* called with rcu_read_lock() */ |
xeb@mail.ru | c12b395 | 2012-08-10 00:51:50 +0000 | [diff] [blame] | 755 | int ip6_tnl_rcv_ctl(struct ip6_tnl *t, |
Ville Nuorvala | d0087b2 | 2012-06-28 18:15:52 +0000 | [diff] [blame] | 756 | const struct in6_addr *laddr, |
| 757 | const struct in6_addr *raddr) |
Ville Nuorvala | 09c6bbf | 2006-11-24 17:06:27 -0800 | [diff] [blame] | 758 | { |
xeb@mail.ru | c12b395 | 2012-08-10 00:51:50 +0000 | [diff] [blame] | 759 | struct __ip6_tnl_parm *p = &t->parms; |
Ville Nuorvala | 09c6bbf | 2006-11-24 17:06:27 -0800 | [diff] [blame] | 760 | int ret = 0; |
Nicolas Dichtel | 0bd87628 | 2013-08-13 17:51:12 +0200 | [diff] [blame] | 761 | struct net *net = t->net; |
Ville Nuorvala | 09c6bbf | 2006-11-24 17:06:27 -0800 | [diff] [blame] | 762 | |
Ville Nuorvala | d0087b2 | 2012-06-28 18:15:52 +0000 | [diff] [blame] | 763 | if ((p->flags & IP6_TNL_F_CAP_RCV) || |
| 764 | ((p->flags & IP6_TNL_F_CAP_PER_PACKET) && |
| 765 | (ip6_tnl_get_cap(t, laddr, raddr) & IP6_TNL_F_CAP_RCV))) { |
YOSHIFUJI Hideaki | 1ab1457 | 2007-02-09 23:24:49 +0900 | [diff] [blame] | 766 | struct net_device *ldev = NULL; |
Ville Nuorvala | 09c6bbf | 2006-11-24 17:06:27 -0800 | [diff] [blame] | 767 | |
| 768 | if (p->link) |
Eric Dumazet | f1a28ea | 2009-11-02 11:21:37 +0100 | [diff] [blame] | 769 | ldev = dev_get_by_index_rcu(net, p->link); |
Ville Nuorvala | 09c6bbf | 2006-11-24 17:06:27 -0800 | [diff] [blame] | 770 | |
Ville Nuorvala | d0087b2 | 2012-06-28 18:15:52 +0000 | [diff] [blame] | 771 | if ((ipv6_addr_is_multicast(laddr) || |
| 772 | likely(ipv6_chk_addr(net, laddr, ldev, 0))) && |
| 773 | likely(!ipv6_chk_addr(net, raddr, NULL, 0))) |
Ville Nuorvala | 09c6bbf | 2006-11-24 17:06:27 -0800 | [diff] [blame] | 774 | ret = 1; |
Ville Nuorvala | 09c6bbf | 2006-11-24 17:06:27 -0800 | [diff] [blame] | 775 | } |
| 776 | return ret; |
| 777 | } |
xeb@mail.ru | c12b395 | 2012-08-10 00:51:50 +0000 | [diff] [blame] | 778 | EXPORT_SYMBOL_GPL(ip6_tnl_rcv_ctl); |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 779 | |
Tom Herbert | 0d3c703 | 2016-04-29 17:12:15 -0700 | [diff] [blame] | 780 | static int __ip6_tnl_rcv(struct ip6_tnl *tunnel, struct sk_buff *skb, |
| 781 | const struct tnl_ptk_info *tpi, |
| 782 | struct metadata_dst *tun_dst, |
| 783 | int (*dscp_ecn_decapsulate)(const struct ip6_tnl *t, |
| 784 | const struct ipv6hdr *ipv6h, |
| 785 | struct sk_buff *skb), |
| 786 | bool log_ecn_err) |
| 787 | { |
| 788 | struct pcpu_sw_netstats *tstats; |
| 789 | const struct ipv6hdr *ipv6h = ipv6_hdr(skb); |
| 790 | int err; |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 791 | |
Tom Herbert | 0d3c703 | 2016-04-29 17:12:15 -0700 | [diff] [blame] | 792 | if ((!(tpi->flags & TUNNEL_CSUM) && |
| 793 | (tunnel->parms.i_flags & TUNNEL_CSUM)) || |
| 794 | ((tpi->flags & TUNNEL_CSUM) && |
| 795 | !(tunnel->parms.i_flags & TUNNEL_CSUM))) { |
| 796 | tunnel->dev->stats.rx_crc_errors++; |
| 797 | tunnel->dev->stats.rx_errors++; |
| 798 | goto drop; |
| 799 | } |
| 800 | |
| 801 | if (tunnel->parms.i_flags & TUNNEL_SEQ) { |
| 802 | if (!(tpi->flags & TUNNEL_SEQ) || |
| 803 | (tunnel->i_seqno && |
| 804 | (s32)(ntohl(tpi->seq) - tunnel->i_seqno) < 0)) { |
| 805 | tunnel->dev->stats.rx_fifo_errors++; |
| 806 | tunnel->dev->stats.rx_errors++; |
| 807 | goto drop; |
| 808 | } |
| 809 | tunnel->i_seqno = ntohl(tpi->seq) + 1; |
| 810 | } |
| 811 | |
| 812 | skb->protocol = tpi->proto; |
| 813 | |
| 814 | /* Warning: All skb pointers will be invalidated! */ |
| 815 | if (tunnel->dev->type == ARPHRD_ETHER) { |
| 816 | if (!pskb_may_pull(skb, ETH_HLEN)) { |
| 817 | tunnel->dev->stats.rx_length_errors++; |
| 818 | tunnel->dev->stats.rx_errors++; |
| 819 | goto drop; |
| 820 | } |
| 821 | |
| 822 | ipv6h = ipv6_hdr(skb); |
| 823 | skb->protocol = eth_type_trans(skb, tunnel->dev); |
| 824 | skb_postpull_rcsum(skb, eth_hdr(skb), ETH_HLEN); |
| 825 | } else { |
| 826 | skb->dev = tunnel->dev; |
| 827 | } |
| 828 | |
| 829 | skb_reset_network_header(skb); |
| 830 | memset(skb->cb, 0, sizeof(struct inet6_skb_parm)); |
| 831 | |
| 832 | __skb_tunnel_rx(skb, tunnel->dev, tunnel->net); |
| 833 | |
| 834 | err = dscp_ecn_decapsulate(tunnel, ipv6h, skb); |
| 835 | if (unlikely(err)) { |
| 836 | if (log_ecn_err) |
| 837 | net_info_ratelimited("non-ECT from %pI6 with DS=%#x\n", |
| 838 | &ipv6h->saddr, |
| 839 | ipv6_get_dsfield(ipv6h)); |
| 840 | if (err > 1) { |
| 841 | ++tunnel->dev->stats.rx_frame_errors; |
| 842 | ++tunnel->dev->stats.rx_errors; |
| 843 | goto drop; |
| 844 | } |
| 845 | } |
| 846 | |
| 847 | tstats = this_cpu_ptr(tunnel->dev->tstats); |
| 848 | u64_stats_update_begin(&tstats->syncp); |
| 849 | tstats->rx_packets++; |
| 850 | tstats->rx_bytes += skb->len; |
| 851 | u64_stats_update_end(&tstats->syncp); |
| 852 | |
| 853 | skb_scrub_packet(skb, !net_eq(tunnel->net, dev_net(tunnel->dev))); |
| 854 | |
Alexei Starovoitov | 8d79266 | 2016-09-15 13:00:30 -0700 | [diff] [blame] | 855 | if (tun_dst) |
| 856 | skb_dst_set(skb, (struct dst_entry *)tun_dst); |
| 857 | |
Tom Herbert | 0d3c703 | 2016-04-29 17:12:15 -0700 | [diff] [blame] | 858 | gro_cells_receive(&tunnel->gro_cells, skb); |
| 859 | return 0; |
| 860 | |
| 861 | drop: |
| 862 | kfree_skb(skb); |
| 863 | return 0; |
| 864 | } |
| 865 | |
| 866 | int ip6_tnl_rcv(struct ip6_tnl *t, struct sk_buff *skb, |
| 867 | const struct tnl_ptk_info *tpi, |
| 868 | struct metadata_dst *tun_dst, |
| 869 | bool log_ecn_err) |
| 870 | { |
| 871 | return __ip6_tnl_rcv(t, skb, tpi, NULL, ip6ip6_dscp_ecn_decapsulate, |
| 872 | log_ecn_err); |
| 873 | } |
| 874 | EXPORT_SYMBOL(ip6_tnl_rcv); |
| 875 | |
| 876 | static const struct tnl_ptk_info tpi_v6 = { |
| 877 | /* no tunnel info required for ipxip6. */ |
| 878 | .proto = htons(ETH_P_IPV6), |
| 879 | }; |
| 880 | |
| 881 | static const struct tnl_ptk_info tpi_v4 = { |
| 882 | /* no tunnel info required for ipxip6. */ |
| 883 | .proto = htons(ETH_P_IP), |
| 884 | }; |
| 885 | |
| 886 | static int ipxip6_rcv(struct sk_buff *skb, u8 ipproto, |
| 887 | const struct tnl_ptk_info *tpi, |
| 888 | int (*dscp_ecn_decapsulate)(const struct ip6_tnl *t, |
| 889 | const struct ipv6hdr *ipv6h, |
| 890 | struct sk_buff *skb)) |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 891 | { |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 892 | struct ip6_tnl *t; |
Eric Dumazet | b71d1d4 | 2011-04-22 04:53:02 +0000 | [diff] [blame] | 893 | const struct ipv6hdr *ipv6h = ipv6_hdr(skb); |
Alexei Starovoitov | 8d79266 | 2016-09-15 13:00:30 -0700 | [diff] [blame] | 894 | struct metadata_dst *tun_dst = NULL; |
Tom Herbert | 0d3c703 | 2016-04-29 17:12:15 -0700 | [diff] [blame] | 895 | int ret = -1; |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 896 | |
Eric Dumazet | 2922bc8 | 2009-10-23 06:34:34 +0000 | [diff] [blame] | 897 | rcu_read_lock(); |
Ian Morris | e5d08d7 | 2014-11-23 21:28:43 +0000 | [diff] [blame] | 898 | t = ip6_tnl_lookup(dev_net(skb->dev), &ipv6h->saddr, &ipv6h->daddr); |
Tom Herbert | 0d3c703 | 2016-04-29 17:12:15 -0700 | [diff] [blame] | 899 | |
Ian Morris | 53b24b8 | 2015-03-29 14:00:05 +0100 | [diff] [blame] | 900 | if (t) { |
Tom Herbert | 0d3c703 | 2016-04-29 17:12:15 -0700 | [diff] [blame] | 901 | u8 tproto = ACCESS_ONCE(t->parms.proto); |
Eric Dumazet | 8560f22 | 2010-09-28 03:23:34 +0000 | [diff] [blame] | 902 | |
Tom Herbert | 0d3c703 | 2016-04-29 17:12:15 -0700 | [diff] [blame] | 903 | if (tproto != ipproto && tproto != 0) |
| 904 | goto drop; |
| 905 | if (!xfrm6_policy_check(NULL, XFRM_POLICY_IN, skb)) |
| 906 | goto drop; |
| 907 | if (!ip6_tnl_rcv_ctl(t, &ipv6h->daddr, &ipv6h->saddr)) |
| 908 | goto drop; |
| 909 | if (iptunnel_pull_header(skb, 0, tpi->proto, false)) |
| 910 | goto drop; |
Alexei Starovoitov | 8d79266 | 2016-09-15 13:00:30 -0700 | [diff] [blame] | 911 | if (t->parms.collect_md) { |
| 912 | tun_dst = ipv6_tun_rx_dst(skb, 0, 0, 0); |
| 913 | if (!tun_dst) |
| 914 | return 0; |
| 915 | } |
| 916 | ret = __ip6_tnl_rcv(t, skb, tpi, tun_dst, dscp_ecn_decapsulate, |
Tom Herbert | 0d3c703 | 2016-04-29 17:12:15 -0700 | [diff] [blame] | 917 | log_ecn_error); |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 918 | } |
Herbert Xu | 50fba2a | 2006-04-04 13:50:45 -0700 | [diff] [blame] | 919 | |
Tom Herbert | 0d3c703 | 2016-04-29 17:12:15 -0700 | [diff] [blame] | 920 | rcu_read_unlock(); |
| 921 | |
| 922 | return ret; |
| 923 | |
| 924 | drop: |
| 925 | rcu_read_unlock(); |
Herbert Xu | 50fba2a | 2006-04-04 13:50:45 -0700 | [diff] [blame] | 926 | kfree_skb(skb); |
| 927 | return 0; |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 928 | } |
| 929 | |
Yasuyuki Kozakai | c4d3efa | 2007-02-15 00:43:16 +0900 | [diff] [blame] | 930 | static int ip4ip6_rcv(struct sk_buff *skb) |
| 931 | { |
Nicolas Dichtel | ca4aa97 | 2016-05-10 16:08:17 +0200 | [diff] [blame] | 932 | return ipxip6_rcv(skb, IPPROTO_IPIP, &tpi_v4, |
Tom Herbert | 0d3c703 | 2016-04-29 17:12:15 -0700 | [diff] [blame] | 933 | ip4ip6_dscp_ecn_decapsulate); |
Yasuyuki Kozakai | c4d3efa | 2007-02-15 00:43:16 +0900 | [diff] [blame] | 934 | } |
| 935 | |
Yasuyuki Kozakai | 8359925 | 2006-11-03 09:39:14 +0900 | [diff] [blame] | 936 | static int ip6ip6_rcv(struct sk_buff *skb) |
| 937 | { |
Tom Herbert | 0d3c703 | 2016-04-29 17:12:15 -0700 | [diff] [blame] | 938 | return ipxip6_rcv(skb, IPPROTO_IPV6, &tpi_v6, |
| 939 | ip6ip6_dscp_ecn_decapsulate); |
Yasuyuki Kozakai | 8359925 | 2006-11-03 09:39:14 +0900 | [diff] [blame] | 940 | } |
| 941 | |
Ville Nuorvala | 6fb32dd | 2006-11-24 17:08:32 -0800 | [diff] [blame] | 942 | struct ipv6_tel_txoption { |
| 943 | struct ipv6_txoptions ops; |
| 944 | __u8 dst_opt[8]; |
| 945 | }; |
| 946 | |
| 947 | static void init_tel_txopt(struct ipv6_tel_txoption *opt, __u8 encap_limit) |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 948 | { |
Ville Nuorvala | 6fb32dd | 2006-11-24 17:08:32 -0800 | [diff] [blame] | 949 | memset(opt, 0, sizeof(struct ipv6_tel_txoption)); |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 950 | |
Ville Nuorvala | 6fb32dd | 2006-11-24 17:08:32 -0800 | [diff] [blame] | 951 | opt->dst_opt[2] = IPV6_TLV_TNL_ENCAP_LIMIT; |
| 952 | opt->dst_opt[3] = 1; |
| 953 | opt->dst_opt[4] = encap_limit; |
| 954 | opt->dst_opt[5] = IPV6_TLV_PADN; |
| 955 | opt->dst_opt[6] = 1; |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 956 | |
Craig Gallek | 89a23c8 | 2017-04-26 14:37:45 -0400 | [diff] [blame] | 957 | opt->ops.dst1opt = (struct ipv6_opt_hdr *) opt->dst_opt; |
Ville Nuorvala | 6fb32dd | 2006-11-24 17:08:32 -0800 | [diff] [blame] | 958 | opt->ops.opt_nflen = 8; |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 959 | } |
| 960 | |
| 961 | /** |
Yasuyuki Kozakai | 3144581 | 2007-02-10 00:30:33 +0900 | [diff] [blame] | 962 | * ip6_tnl_addr_conflict - compare packet addresses to tunnel's own |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 963 | * @t: the outgoing tunnel device |
YOSHIFUJI Hideaki | 1ab1457 | 2007-02-09 23:24:49 +0900 | [diff] [blame] | 964 | * @hdr: IPv6 header from the incoming packet |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 965 | * |
| 966 | * Description: |
YOSHIFUJI Hideaki | 1ab1457 | 2007-02-09 23:24:49 +0900 | [diff] [blame] | 967 | * Avoid trivial tunneling loop by checking that tunnel exit-point |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 968 | * doesn't match source of incoming packet. |
| 969 | * |
YOSHIFUJI Hideaki | 1ab1457 | 2007-02-09 23:24:49 +0900 | [diff] [blame] | 970 | * Return: |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 971 | * 1 if conflict, |
| 972 | * 0 else |
| 973 | **/ |
| 974 | |
Eric Dumazet | 92113bf | 2012-05-18 08:14:11 +0200 | [diff] [blame] | 975 | static inline bool |
Eric Dumazet | b71d1d4 | 2011-04-22 04:53:02 +0000 | [diff] [blame] | 976 | ip6_tnl_addr_conflict(const struct ip6_tnl *t, const struct ipv6hdr *hdr) |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 977 | { |
| 978 | return ipv6_addr_equal(&t->parms.raddr, &hdr->saddr); |
| 979 | } |
| 980 | |
Steffen Klassert | d500514 | 2014-11-05 08:02:48 +0100 | [diff] [blame] | 981 | int ip6_tnl_xmit_ctl(struct ip6_tnl *t, |
| 982 | const struct in6_addr *laddr, |
| 983 | const struct in6_addr *raddr) |
Ville Nuorvala | 09c6bbf | 2006-11-24 17:06:27 -0800 | [diff] [blame] | 984 | { |
xeb@mail.ru | c12b395 | 2012-08-10 00:51:50 +0000 | [diff] [blame] | 985 | struct __ip6_tnl_parm *p = &t->parms; |
Ville Nuorvala | 09c6bbf | 2006-11-24 17:06:27 -0800 | [diff] [blame] | 986 | int ret = 0; |
Nicolas Dichtel | 0bd87628 | 2013-08-13 17:51:12 +0200 | [diff] [blame] | 987 | struct net *net = t->net; |
Ville Nuorvala | 09c6bbf | 2006-11-24 17:06:27 -0800 | [diff] [blame] | 988 | |
Steffen Klassert | d500514 | 2014-11-05 08:02:48 +0100 | [diff] [blame] | 989 | if ((p->flags & IP6_TNL_F_CAP_XMIT) || |
| 990 | ((p->flags & IP6_TNL_F_CAP_PER_PACKET) && |
| 991 | (ip6_tnl_get_cap(t, laddr, raddr) & IP6_TNL_F_CAP_XMIT))) { |
Ville Nuorvala | 09c6bbf | 2006-11-24 17:06:27 -0800 | [diff] [blame] | 992 | struct net_device *ldev = NULL; |
| 993 | |
Eric Dumazet | f1a28ea | 2009-11-02 11:21:37 +0100 | [diff] [blame] | 994 | rcu_read_lock(); |
Ville Nuorvala | 09c6bbf | 2006-11-24 17:06:27 -0800 | [diff] [blame] | 995 | if (p->link) |
Eric Dumazet | f1a28ea | 2009-11-02 11:21:37 +0100 | [diff] [blame] | 996 | ldev = dev_get_by_index_rcu(net, p->link); |
Ville Nuorvala | 09c6bbf | 2006-11-24 17:06:27 -0800 | [diff] [blame] | 997 | |
Steffen Klassert | d500514 | 2014-11-05 08:02:48 +0100 | [diff] [blame] | 998 | if (unlikely(!ipv6_chk_addr(net, laddr, ldev, 0))) |
Joe Perches | f321383 | 2012-05-15 14:11:53 +0000 | [diff] [blame] | 999 | pr_warn("%s xmit: Local address not yet configured!\n", |
| 1000 | p->name); |
Steffen Klassert | d500514 | 2014-11-05 08:02:48 +0100 | [diff] [blame] | 1001 | else if (!ipv6_addr_is_multicast(raddr) && |
| 1002 | unlikely(ipv6_chk_addr(net, raddr, NULL, 0))) |
Joe Perches | f321383 | 2012-05-15 14:11:53 +0000 | [diff] [blame] | 1003 | pr_warn("%s xmit: Routing loop! Remote address found on this node!\n", |
| 1004 | p->name); |
Ville Nuorvala | 09c6bbf | 2006-11-24 17:06:27 -0800 | [diff] [blame] | 1005 | else |
| 1006 | ret = 1; |
Eric Dumazet | f1a28ea | 2009-11-02 11:21:37 +0100 | [diff] [blame] | 1007 | rcu_read_unlock(); |
Ville Nuorvala | 09c6bbf | 2006-11-24 17:06:27 -0800 | [diff] [blame] | 1008 | } |
| 1009 | return ret; |
| 1010 | } |
xeb@mail.ru | c12b395 | 2012-08-10 00:51:50 +0000 | [diff] [blame] | 1011 | EXPORT_SYMBOL_GPL(ip6_tnl_xmit_ctl); |
| 1012 | |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 1013 | /** |
Tom Herbert | 8eb30be | 2016-04-29 17:12:18 -0700 | [diff] [blame] | 1014 | * ip6_tnl_xmit - encapsulate packet and send |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 1015 | * @skb: the outgoing socket buffer |
YOSHIFUJI Hideaki | 1ab1457 | 2007-02-09 23:24:49 +0900 | [diff] [blame] | 1016 | * @dev: the outgoing tunnel device |
Yasuyuki Kozakai | 61ec2ae | 2006-11-05 22:56:45 +0900 | [diff] [blame] | 1017 | * @dsfield: dscp code for outer header |
Tom Herbert | 8eb30be | 2016-04-29 17:12:18 -0700 | [diff] [blame] | 1018 | * @fl6: flow of tunneled packet |
Yasuyuki Kozakai | 61ec2ae | 2006-11-05 22:56:45 +0900 | [diff] [blame] | 1019 | * @encap_limit: encapsulation limit |
| 1020 | * @pmtu: Path MTU is stored if packet is too big |
Tom Herbert | 8eb30be | 2016-04-29 17:12:18 -0700 | [diff] [blame] | 1021 | * @proto: next header value |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 1022 | * |
| 1023 | * Description: |
| 1024 | * Build new header and do some sanity checks on the packet before sending |
| 1025 | * it. |
| 1026 | * |
YOSHIFUJI Hideaki | 1ab1457 | 2007-02-09 23:24:49 +0900 | [diff] [blame] | 1027 | * Return: |
Yasuyuki Kozakai | c4d3efa | 2007-02-15 00:43:16 +0900 | [diff] [blame] | 1028 | * 0 on success |
Yasuyuki Kozakai | 61ec2ae | 2006-11-05 22:56:45 +0900 | [diff] [blame] | 1029 | * -1 fail |
| 1030 | * %-EMSGSIZE message too big. return mtu in this case. |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 1031 | **/ |
| 1032 | |
Tom Herbert | 8eb30be | 2016-04-29 17:12:18 -0700 | [diff] [blame] | 1033 | int ip6_tnl_xmit(struct sk_buff *skb, struct net_device *dev, __u8 dsfield, |
| 1034 | struct flowi6 *fl6, int encap_limit, __u32 *pmtu, |
| 1035 | __u8 proto) |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 1036 | { |
Patrick McHardy | 2941a48 | 2006-01-08 22:05:26 -0800 | [diff] [blame] | 1037 | struct ip6_tnl *t = netdev_priv(dev); |
Nicolas Dichtel | 0bd87628 | 2013-08-13 17:51:12 +0200 | [diff] [blame] | 1038 | struct net *net = t->net; |
Pavel Emelyanov | 3dca02a | 2008-05-21 14:17:05 -0700 | [diff] [blame] | 1039 | struct net_device_stats *stats = &t->dev->stats; |
WANG Cong | 199ab00 | 2017-04-25 14:37:15 -0700 | [diff] [blame] | 1040 | struct ipv6hdr *ipv6h; |
Ville Nuorvala | 6fb32dd | 2006-11-24 17:08:32 -0800 | [diff] [blame] | 1041 | struct ipv6_tel_txoption opt; |
Eric Dumazet | d24f22f | 2011-09-20 14:50:00 -0400 | [diff] [blame] | 1042 | struct dst_entry *dst = NULL, *ndst = NULL; |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 1043 | struct net_device *tdev; |
| 1044 | int mtu; |
Tom Herbert | 058214a | 2016-05-18 09:06:17 -0700 | [diff] [blame] | 1045 | unsigned int psh_hlen = sizeof(struct ipv6hdr) + t->encap_hlen; |
| 1046 | unsigned int max_headroom = psh_hlen; |
Paolo Abeni | b5c2d49 | 2016-11-16 16:26:46 +0100 | [diff] [blame] | 1047 | bool use_cache = false; |
Alexei Starovoitov | 8d79266 | 2016-09-15 13:00:30 -0700 | [diff] [blame] | 1048 | u8 hop_limit; |
Yasuyuki Kozakai | 61ec2ae | 2006-11-05 22:56:45 +0900 | [diff] [blame] | 1049 | int err = -1; |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 1050 | |
Alexei Starovoitov | 8d79266 | 2016-09-15 13:00:30 -0700 | [diff] [blame] | 1051 | if (t->parms.collect_md) { |
| 1052 | hop_limit = skb_tunnel_info(skb)->key.ttl; |
| 1053 | goto route_lookup; |
| 1054 | } else { |
| 1055 | hop_limit = t->parms.hop_limit; |
| 1056 | } |
| 1057 | |
Steffen Klassert | ea3dc96 | 2014-11-05 08:03:50 +0100 | [diff] [blame] | 1058 | /* NBMA tunnel */ |
| 1059 | if (ipv6_addr_any(&t->parms.raddr)) { |
WANG Cong | 199ab00 | 2017-04-25 14:37:15 -0700 | [diff] [blame] | 1060 | if (skb->protocol == htons(ETH_P_IPV6)) { |
| 1061 | struct in6_addr *addr6; |
| 1062 | struct neighbour *neigh; |
| 1063 | int addr_type; |
Steffen Klassert | ea3dc96 | 2014-11-05 08:03:50 +0100 | [diff] [blame] | 1064 | |
WANG Cong | 199ab00 | 2017-04-25 14:37:15 -0700 | [diff] [blame] | 1065 | if (!skb_dst(skb)) |
| 1066 | goto tx_err_link_failure; |
Steffen Klassert | ea3dc96 | 2014-11-05 08:03:50 +0100 | [diff] [blame] | 1067 | |
WANG Cong | 199ab00 | 2017-04-25 14:37:15 -0700 | [diff] [blame] | 1068 | neigh = dst_neigh_lookup(skb_dst(skb), |
| 1069 | &ipv6_hdr(skb)->daddr); |
| 1070 | if (!neigh) |
| 1071 | goto tx_err_link_failure; |
Steffen Klassert | ea3dc96 | 2014-11-05 08:03:50 +0100 | [diff] [blame] | 1072 | |
WANG Cong | 199ab00 | 2017-04-25 14:37:15 -0700 | [diff] [blame] | 1073 | addr6 = (struct in6_addr *)&neigh->primary_key; |
| 1074 | addr_type = ipv6_addr_type(addr6); |
Steffen Klassert | ea3dc96 | 2014-11-05 08:03:50 +0100 | [diff] [blame] | 1075 | |
WANG Cong | 199ab00 | 2017-04-25 14:37:15 -0700 | [diff] [blame] | 1076 | if (addr_type == IPV6_ADDR_ANY) |
| 1077 | addr6 = &ipv6_hdr(skb)->daddr; |
Steffen Klassert | ea3dc96 | 2014-11-05 08:03:50 +0100 | [diff] [blame] | 1078 | |
WANG Cong | 199ab00 | 2017-04-25 14:37:15 -0700 | [diff] [blame] | 1079 | memcpy(&fl6->daddr, addr6, sizeof(fl6->daddr)); |
| 1080 | neigh_release(neigh); |
| 1081 | } |
Paolo Abeni | b5c2d49 | 2016-11-16 16:26:46 +0100 | [diff] [blame] | 1082 | } else if (!(t->parms.flags & |
| 1083 | (IP6_TNL_F_USE_ORIG_TCLASS | IP6_TNL_F_USE_ORIG_FWMARK))) { |
| 1084 | /* enable the cache only only if the routing decision does |
| 1085 | * not depend on the current inner header value |
| 1086 | */ |
| 1087 | use_cache = true; |
| 1088 | } |
| 1089 | |
| 1090 | if (use_cache) |
Paolo Abeni | 607f725 | 2016-02-12 15:43:54 +0100 | [diff] [blame] | 1091 | dst = dst_cache_get(&t->dst_cache); |
Steffen Klassert | d500514 | 2014-11-05 08:02:48 +0100 | [diff] [blame] | 1092 | |
| 1093 | if (!ip6_tnl_xmit_ctl(t, &fl6->saddr, &fl6->daddr)) |
| 1094 | goto tx_err_link_failure; |
| 1095 | |
Eric Dumazet | 89b0212 | 2011-07-28 04:32:25 +0000 | [diff] [blame] | 1096 | if (!dst) { |
Alexei Starovoitov | 8d79266 | 2016-09-15 13:00:30 -0700 | [diff] [blame] | 1097 | route_lookup: |
Martin KaFai Lau | cdf3464 | 2015-09-15 14:30:07 -0700 | [diff] [blame] | 1098 | dst = ip6_route_output(net, NULL, fl6); |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 1099 | |
Martin KaFai Lau | cdf3464 | 2015-09-15 14:30:07 -0700 | [diff] [blame] | 1100 | if (dst->error) |
Patrick McHardy | a57ebc9 | 2005-09-08 14:27:47 -0700 | [diff] [blame] | 1101 | goto tx_err_link_failure; |
Martin KaFai Lau | cdf3464 | 2015-09-15 14:30:07 -0700 | [diff] [blame] | 1102 | dst = xfrm_lookup(net, dst, flowi6_to_flowi(fl6), NULL, 0); |
| 1103 | if (IS_ERR(dst)) { |
| 1104 | err = PTR_ERR(dst); |
| 1105 | dst = NULL; |
David S. Miller | 452edd5 | 2011-03-02 13:27:41 -0800 | [diff] [blame] | 1106 | goto tx_err_link_failure; |
| 1107 | } |
Alexei Starovoitov | 8d79266 | 2016-09-15 13:00:30 -0700 | [diff] [blame] | 1108 | if (t->parms.collect_md && |
| 1109 | ipv6_dev_get_saddr(net, ip6_dst_idev(dst)->dev, |
| 1110 | &fl6->daddr, 0, &fl6->saddr)) |
| 1111 | goto tx_err_link_failure; |
Martin KaFai Lau | cdf3464 | 2015-09-15 14:30:07 -0700 | [diff] [blame] | 1112 | ndst = dst; |
Patrick McHardy | a57ebc9 | 2005-09-08 14:27:47 -0700 | [diff] [blame] | 1113 | } |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 1114 | |
| 1115 | tdev = dst->dev; |
| 1116 | |
| 1117 | if (tdev == dev) { |
| 1118 | stats->collisions++; |
Joe Perches | e87cc47 | 2012-05-13 21:56:26 +0000 | [diff] [blame] | 1119 | net_warn_ratelimited("%s: Local routing loop detected!\n", |
| 1120 | t->parms.name); |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 1121 | goto tx_err_dst_release; |
| 1122 | } |
Jakub Sitnicki | 02ca042 | 2017-01-13 10:12:20 +0100 | [diff] [blame] | 1123 | mtu = dst_mtu(dst) - psh_hlen - t->tun_hlen; |
Ville Nuorvala | 6fb32dd | 2006-11-24 17:08:32 -0800 | [diff] [blame] | 1124 | if (encap_limit >= 0) { |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 1125 | max_headroom += 8; |
| 1126 | mtu -= 8; |
| 1127 | } |
| 1128 | if (mtu < IPV6_MIN_MTU) |
| 1129 | mtu = IPV6_MIN_MTU; |
Alexei Starovoitov | 8d79266 | 2016-09-15 13:00:30 -0700 | [diff] [blame] | 1130 | if (skb_dst(skb) && !t->parms.collect_md) |
David S. Miller | 6700c27 | 2012-07-17 03:29:28 -0700 | [diff] [blame] | 1131 | skb_dst(skb)->ops->update_pmtu(skb_dst(skb), NULL, skb, mtu); |
Jakub Sitnicki | 02ca042 | 2017-01-13 10:12:20 +0100 | [diff] [blame] | 1132 | if (skb->len - t->tun_hlen > mtu && !skb_is_gso(skb)) { |
Yasuyuki Kozakai | 61ec2ae | 2006-11-05 22:56:45 +0900 | [diff] [blame] | 1133 | *pmtu = mtu; |
| 1134 | err = -EMSGSIZE; |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 1135 | goto tx_err_dst_release; |
| 1136 | } |
| 1137 | |
Tom Herbert | 8eb30be | 2016-04-29 17:12:18 -0700 | [diff] [blame] | 1138 | if (t->err_count > 0) { |
| 1139 | if (time_before(jiffies, |
| 1140 | t->err_time + IP6TUNNEL_ERR_TIMEO)) { |
| 1141 | t->err_count--; |
| 1142 | |
| 1143 | dst_link_failure(skb); |
| 1144 | } else { |
| 1145 | t->err_count = 0; |
| 1146 | } |
| 1147 | } |
| 1148 | |
Nicolas Dichtel | 963a88b | 2013-09-02 15:34:57 +0200 | [diff] [blame] | 1149 | skb_scrub_packet(skb, !net_eq(t->net, dev_net(dev))); |
Nicolas Dichtel | 0bd87628 | 2013-08-13 17:51:12 +0200 | [diff] [blame] | 1150 | |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 1151 | /* |
| 1152 | * Okay, now see if we can stuff it in the buffer as-is. |
| 1153 | */ |
| 1154 | max_headroom += LL_RESERVED_SPACE(tdev); |
YOSHIFUJI Hideaki | 1ab1457 | 2007-02-09 23:24:49 +0900 | [diff] [blame] | 1155 | |
Patrick McHardy | cfbba49 | 2007-07-09 15:33:40 -0700 | [diff] [blame] | 1156 | if (skb_headroom(skb) < max_headroom || skb_shared(skb) || |
| 1157 | (skb_cloned(skb) && !skb_clone_writable(skb, 0))) { |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 1158 | struct sk_buff *new_skb; |
YOSHIFUJI Hideaki | 1ab1457 | 2007-02-09 23:24:49 +0900 | [diff] [blame] | 1159 | |
Ian Morris | e5d08d7 | 2014-11-23 21:28:43 +0000 | [diff] [blame] | 1160 | new_skb = skb_realloc_headroom(skb, max_headroom); |
| 1161 | if (!new_skb) |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 1162 | goto tx_err_dst_release; |
| 1163 | |
| 1164 | if (skb->sk) |
| 1165 | skb_set_owner_w(new_skb, skb->sk); |
Eric Dumazet | 9ff2644 | 2012-04-19 02:24:17 +0000 | [diff] [blame] | 1166 | consume_skb(skb); |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 1167 | skb = new_skb; |
| 1168 | } |
Martin KaFai Lau | cdf3464 | 2015-09-15 14:30:07 -0700 | [diff] [blame] | 1169 | |
Alexei Starovoitov | 8d79266 | 2016-09-15 13:00:30 -0700 | [diff] [blame] | 1170 | if (t->parms.collect_md) { |
| 1171 | if (t->encap.type != TUNNEL_ENCAP_NONE) |
| 1172 | goto tx_err_dst_release; |
| 1173 | } else { |
Paolo Abeni | b5c2d49 | 2016-11-16 16:26:46 +0100 | [diff] [blame] | 1174 | if (use_cache && ndst) |
Alexei Starovoitov | 8d79266 | 2016-09-15 13:00:30 -0700 | [diff] [blame] | 1175 | dst_cache_set_ip6(&t->dst_cache, ndst, &fl6->saddr); |
| 1176 | } |
Martin KaFai Lau | cdf3464 | 2015-09-15 14:30:07 -0700 | [diff] [blame] | 1177 | skb_dst_set(skb, dst); |
| 1178 | |
Ville Nuorvala | 6fb32dd | 2006-11-24 17:08:32 -0800 | [diff] [blame] | 1179 | if (encap_limit >= 0) { |
| 1180 | init_tel_txopt(&opt, encap_limit); |
Craig Gallek | 89a23c8 | 2017-04-26 14:37:45 -0400 | [diff] [blame] | 1181 | ipv6_push_frag_opts(skb, &opt.ops, &proto); |
Ville Nuorvala | 6fb32dd | 2006-11-24 17:08:32 -0800 | [diff] [blame] | 1182 | } |
Hannes Frederic Sowa | 3d48305 | 2013-08-18 13:46:52 +0200 | [diff] [blame] | 1183 | |
Tom Herbert | 058214a | 2016-05-18 09:06:17 -0700 | [diff] [blame] | 1184 | /* Calculate max headroom for all the headers and adjust |
| 1185 | * needed_headroom if necessary. |
| 1186 | */ |
Tom Herbert | 8eb30be | 2016-04-29 17:12:18 -0700 | [diff] [blame] | 1187 | max_headroom = LL_RESERVED_SPACE(dst->dev) + sizeof(struct ipv6hdr) |
Tom Herbert | 058214a | 2016-05-18 09:06:17 -0700 | [diff] [blame] | 1188 | + dst->header_len + t->hlen; |
Tom Herbert | 8eb30be | 2016-04-29 17:12:18 -0700 | [diff] [blame] | 1189 | if (max_headroom > dev->needed_headroom) |
| 1190 | dev->needed_headroom = max_headroom; |
| 1191 | |
Tom Herbert | 058214a | 2016-05-18 09:06:17 -0700 | [diff] [blame] | 1192 | err = ip6_tnl_encap(skb, t, &proto, fl6); |
| 1193 | if (err) |
| 1194 | return err; |
| 1195 | |
Arnaldo Carvalho de Melo | e2d1bca | 2007-04-10 20:46:21 -0700 | [diff] [blame] | 1196 | skb_push(skb, sizeof(struct ipv6hdr)); |
| 1197 | skb_reset_network_header(skb); |
Arnaldo Carvalho de Melo | 0660e03 | 2007-04-25 17:54:47 -0700 | [diff] [blame] | 1198 | ipv6h = ipv6_hdr(skb); |
Peter Dawson | 0e9a709 | 2017-05-26 06:35:18 +1000 | [diff] [blame] | 1199 | ip6_flow_hdr(ipv6h, dsfield, |
Tom Herbert | 4224090 | 2015-07-31 16:52:12 -0700 | [diff] [blame] | 1200 | ip6_make_flowlabel(net, skb, fl6->flowlabel, true, fl6)); |
Alexei Starovoitov | 8d79266 | 2016-09-15 13:00:30 -0700 | [diff] [blame] | 1201 | ipv6h->hop_limit = hop_limit; |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 1202 | ipv6h->nexthdr = proto; |
Alexey Dobriyan | 4e3fd7a | 2011-11-21 03:39:03 +0000 | [diff] [blame] | 1203 | ipv6h->saddr = fl6->saddr; |
| 1204 | ipv6h->daddr = fl6->daddr; |
David Miller | 79b16aa | 2015-04-05 22:19:09 -0400 | [diff] [blame] | 1205 | ip6tunnel_xmit(NULL, skb, dev); |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 1206 | return 0; |
| 1207 | tx_err_link_failure: |
| 1208 | stats->tx_carrier_errors++; |
| 1209 | dst_link_failure(skb); |
| 1210 | tx_err_dst_release: |
Martin KaFai Lau | cdf3464 | 2015-09-15 14:30:07 -0700 | [diff] [blame] | 1211 | dst_release(dst); |
Yasuyuki Kozakai | 61ec2ae | 2006-11-05 22:56:45 +0900 | [diff] [blame] | 1212 | return err; |
| 1213 | } |
Tom Herbert | 8eb30be | 2016-04-29 17:12:18 -0700 | [diff] [blame] | 1214 | EXPORT_SYMBOL(ip6_tnl_xmit); |
Yasuyuki Kozakai | 61ec2ae | 2006-11-05 22:56:45 +0900 | [diff] [blame] | 1215 | |
| 1216 | static inline int |
Yasuyuki Kozakai | c4d3efa | 2007-02-15 00:43:16 +0900 | [diff] [blame] | 1217 | ip4ip6_tnl_xmit(struct sk_buff *skb, struct net_device *dev) |
| 1218 | { |
| 1219 | struct ip6_tnl *t = netdev_priv(dev); |
Eric Dumazet | b71d1d4 | 2011-04-22 04:53:02 +0000 | [diff] [blame] | 1220 | const struct iphdr *iph = ip_hdr(skb); |
Yasuyuki Kozakai | c4d3efa | 2007-02-15 00:43:16 +0900 | [diff] [blame] | 1221 | int encap_limit = -1; |
David S. Miller | 4c9483b | 2011-03-12 16:22:43 -0500 | [diff] [blame] | 1222 | struct flowi6 fl6; |
Yasuyuki Kozakai | c4d3efa | 2007-02-15 00:43:16 +0900 | [diff] [blame] | 1223 | __u8 dsfield; |
| 1224 | __u32 mtu; |
Alexey Andriyanov | acf722f | 2014-10-29 10:54:52 +0300 | [diff] [blame] | 1225 | u8 tproto; |
Yasuyuki Kozakai | c4d3efa | 2007-02-15 00:43:16 +0900 | [diff] [blame] | 1226 | int err; |
| 1227 | |
Bernie Harris | 5146d1f | 2016-02-22 12:58:05 +1300 | [diff] [blame] | 1228 | memset(&(IPCB(skb)->opt), 0, sizeof(IPCB(skb)->opt)); |
| 1229 | |
Alexey Andriyanov | acf722f | 2014-10-29 10:54:52 +0300 | [diff] [blame] | 1230 | tproto = ACCESS_ONCE(t->parms.proto); |
Steffen Klassert | d500514 | 2014-11-05 08:02:48 +0100 | [diff] [blame] | 1231 | if (tproto != IPPROTO_IPIP && tproto != 0) |
Yasuyuki Kozakai | c4d3efa | 2007-02-15 00:43:16 +0900 | [diff] [blame] | 1232 | return -1; |
| 1233 | |
Alexei Starovoitov | 8d79266 | 2016-09-15 13:00:30 -0700 | [diff] [blame] | 1234 | if (t->parms.collect_md) { |
| 1235 | struct ip_tunnel_info *tun_info; |
| 1236 | const struct ip_tunnel_key *key; |
| 1237 | |
| 1238 | tun_info = skb_tunnel_info(skb); |
| 1239 | if (unlikely(!tun_info || !(tun_info->mode & IP_TUNNEL_INFO_TX) || |
| 1240 | ip_tunnel_info_af(tun_info) != AF_INET6)) |
| 1241 | return -1; |
| 1242 | key = &tun_info->key; |
| 1243 | memset(&fl6, 0, sizeof(fl6)); |
| 1244 | fl6.flowi6_proto = IPPROTO_IPIP; |
| 1245 | fl6.daddr = key->u.ipv6.dst; |
| 1246 | fl6.flowlabel = key->label; |
Peter Dawson | 0e9a709 | 2017-05-26 06:35:18 +1000 | [diff] [blame] | 1247 | dsfield = ip6_tclass(key->label); |
Alexei Starovoitov | 8d79266 | 2016-09-15 13:00:30 -0700 | [diff] [blame] | 1248 | } else { |
| 1249 | if (!(t->parms.flags & IP6_TNL_F_IGN_ENCAP_LIMIT)) |
| 1250 | encap_limit = t->parms.encap_limit; |
| 1251 | |
| 1252 | memcpy(&fl6, &t->fl.u.ip6, sizeof(fl6)); |
| 1253 | fl6.flowi6_proto = IPPROTO_IPIP; |
| 1254 | |
| 1255 | if (t->parms.flags & IP6_TNL_F_USE_ORIG_TCLASS) |
Peter Dawson | 0e9a709 | 2017-05-26 06:35:18 +1000 | [diff] [blame] | 1256 | dsfield = ipv4_get_dsfield(iph); |
| 1257 | else |
| 1258 | dsfield = ip6_tclass(t->parms.flowinfo); |
Alexei Starovoitov | 8d79266 | 2016-09-15 13:00:30 -0700 | [diff] [blame] | 1259 | if (t->parms.flags & IP6_TNL_F_USE_ORIG_FWMARK) |
| 1260 | fl6.flowi6_mark = skb->mark; |
Craig Gallek | 0a473b8 | 2017-04-19 12:30:53 -0400 | [diff] [blame] | 1261 | else |
| 1262 | fl6.flowi6_mark = t->parms.fwmark; |
Alexei Starovoitov | 8d79266 | 2016-09-15 13:00:30 -0700 | [diff] [blame] | 1263 | } |
Yasuyuki Kozakai | c4d3efa | 2007-02-15 00:43:16 +0900 | [diff] [blame] | 1264 | |
Lorenzo Colitti | e2d118a | 2016-11-04 02:23:43 +0900 | [diff] [blame] | 1265 | fl6.flowi6_uid = sock_net_uid(dev_net(dev), NULL); |
| 1266 | |
Tom Herbert | b8921ca | 2016-05-18 09:06:23 -0700 | [diff] [blame] | 1267 | if (iptunnel_handle_offloads(skb, SKB_GSO_IPXIP6)) |
| 1268 | return -1; |
| 1269 | |
Peter Dawson | 0e9a709 | 2017-05-26 06:35:18 +1000 | [diff] [blame] | 1270 | dsfield = INET_ECN_encapsulate(dsfield, ipv4_get_dsfield(iph)); |
| 1271 | |
Tom Herbert | b8921ca | 2016-05-18 09:06:23 -0700 | [diff] [blame] | 1272 | skb_set_inner_ipproto(skb, IPPROTO_IPIP); |
| 1273 | |
Tom Herbert | 8eb30be | 2016-04-29 17:12:18 -0700 | [diff] [blame] | 1274 | err = ip6_tnl_xmit(skb, dev, dsfield, &fl6, encap_limit, &mtu, |
| 1275 | IPPROTO_IPIP); |
Yasuyuki Kozakai | c4d3efa | 2007-02-15 00:43:16 +0900 | [diff] [blame] | 1276 | if (err != 0) { |
| 1277 | /* XXX: send ICMP error even if DF is not set. */ |
| 1278 | if (err == -EMSGSIZE) |
| 1279 | icmp_send(skb, ICMP_DEST_UNREACH, ICMP_FRAG_NEEDED, |
| 1280 | htonl(mtu)); |
| 1281 | return -1; |
| 1282 | } |
| 1283 | |
| 1284 | return 0; |
| 1285 | } |
| 1286 | |
| 1287 | static inline int |
Yasuyuki Kozakai | 61ec2ae | 2006-11-05 22:56:45 +0900 | [diff] [blame] | 1288 | ip6ip6_tnl_xmit(struct sk_buff *skb, struct net_device *dev) |
| 1289 | { |
| 1290 | struct ip6_tnl *t = netdev_priv(dev); |
Arnaldo Carvalho de Melo | 0660e03 | 2007-04-25 17:54:47 -0700 | [diff] [blame] | 1291 | struct ipv6hdr *ipv6h = ipv6_hdr(skb); |
Yasuyuki Kozakai | 61ec2ae | 2006-11-05 22:56:45 +0900 | [diff] [blame] | 1292 | int encap_limit = -1; |
| 1293 | __u16 offset; |
David S. Miller | 4c9483b | 2011-03-12 16:22:43 -0500 | [diff] [blame] | 1294 | struct flowi6 fl6; |
Yasuyuki Kozakai | 61ec2ae | 2006-11-05 22:56:45 +0900 | [diff] [blame] | 1295 | __u8 dsfield; |
| 1296 | __u32 mtu; |
Alexey Andriyanov | acf722f | 2014-10-29 10:54:52 +0300 | [diff] [blame] | 1297 | u8 tproto; |
Yasuyuki Kozakai | 61ec2ae | 2006-11-05 22:56:45 +0900 | [diff] [blame] | 1298 | int err; |
| 1299 | |
Alexey Andriyanov | acf722f | 2014-10-29 10:54:52 +0300 | [diff] [blame] | 1300 | tproto = ACCESS_ONCE(t->parms.proto); |
| 1301 | if ((tproto != IPPROTO_IPV6 && tproto != 0) || |
Steffen Klassert | d500514 | 2014-11-05 08:02:48 +0100 | [diff] [blame] | 1302 | ip6_tnl_addr_conflict(t, ipv6h)) |
Yasuyuki Kozakai | 61ec2ae | 2006-11-05 22:56:45 +0900 | [diff] [blame] | 1303 | return -1; |
| 1304 | |
Alexei Starovoitov | 8d79266 | 2016-09-15 13:00:30 -0700 | [diff] [blame] | 1305 | if (t->parms.collect_md) { |
| 1306 | struct ip_tunnel_info *tun_info; |
| 1307 | const struct ip_tunnel_key *key; |
| 1308 | |
| 1309 | tun_info = skb_tunnel_info(skb); |
| 1310 | if (unlikely(!tun_info || !(tun_info->mode & IP_TUNNEL_INFO_TX) || |
| 1311 | ip_tunnel_info_af(tun_info) != AF_INET6)) |
| 1312 | return -1; |
| 1313 | key = &tun_info->key; |
| 1314 | memset(&fl6, 0, sizeof(fl6)); |
| 1315 | fl6.flowi6_proto = IPPROTO_IPV6; |
| 1316 | fl6.daddr = key->u.ipv6.dst; |
| 1317 | fl6.flowlabel = key->label; |
Peter Dawson | 0e9a709 | 2017-05-26 06:35:18 +1000 | [diff] [blame] | 1318 | dsfield = ip6_tclass(key->label); |
Alexei Starovoitov | 8d79266 | 2016-09-15 13:00:30 -0700 | [diff] [blame] | 1319 | } else { |
| 1320 | offset = ip6_tnl_parse_tlv_enc_lim(skb, skb_network_header(skb)); |
Eric Dumazet | 21b995a | 2017-01-23 16:43:05 -0800 | [diff] [blame] | 1321 | /* ip6_tnl_parse_tlv_enc_lim() might have reallocated skb->head */ |
| 1322 | ipv6h = ipv6_hdr(skb); |
Alexei Starovoitov | 8d79266 | 2016-09-15 13:00:30 -0700 | [diff] [blame] | 1323 | if (offset > 0) { |
| 1324 | struct ipv6_tlv_tnl_enc_lim *tel; |
| 1325 | |
| 1326 | tel = (void *)&skb_network_header(skb)[offset]; |
| 1327 | if (tel->encap_limit == 0) { |
| 1328 | icmpv6_send(skb, ICMPV6_PARAMPROB, |
| 1329 | ICMPV6_HDR_FIELD, offset + 2); |
| 1330 | return -1; |
| 1331 | } |
| 1332 | encap_limit = tel->encap_limit - 1; |
| 1333 | } else if (!(t->parms.flags & IP6_TNL_F_IGN_ENCAP_LIMIT)) { |
| 1334 | encap_limit = t->parms.encap_limit; |
| 1335 | } |
| 1336 | |
| 1337 | memcpy(&fl6, &t->fl.u.ip6, sizeof(fl6)); |
| 1338 | fl6.flowi6_proto = IPPROTO_IPV6; |
| 1339 | |
| 1340 | if (t->parms.flags & IP6_TNL_F_USE_ORIG_TCLASS) |
Peter Dawson | 0e9a709 | 2017-05-26 06:35:18 +1000 | [diff] [blame] | 1341 | dsfield = ipv6_get_dsfield(ipv6h); |
| 1342 | else |
| 1343 | dsfield = ip6_tclass(t->parms.flowinfo); |
Alexei Starovoitov | 8d79266 | 2016-09-15 13:00:30 -0700 | [diff] [blame] | 1344 | if (t->parms.flags & IP6_TNL_F_USE_ORIG_FLOWLABEL) |
| 1345 | fl6.flowlabel |= ip6_flowlabel(ipv6h); |
| 1346 | if (t->parms.flags & IP6_TNL_F_USE_ORIG_FWMARK) |
| 1347 | fl6.flowi6_mark = skb->mark; |
Craig Gallek | 0a473b8 | 2017-04-19 12:30:53 -0400 | [diff] [blame] | 1348 | else |
| 1349 | fl6.flowi6_mark = t->parms.fwmark; |
Alexei Starovoitov | 8d79266 | 2016-09-15 13:00:30 -0700 | [diff] [blame] | 1350 | } |
Yasuyuki Kozakai | 61ec2ae | 2006-11-05 22:56:45 +0900 | [diff] [blame] | 1351 | |
Lorenzo Colitti | e2d118a | 2016-11-04 02:23:43 +0900 | [diff] [blame] | 1352 | fl6.flowi6_uid = sock_net_uid(dev_net(dev), NULL); |
| 1353 | |
Tom Herbert | 815d22e | 2016-05-18 09:06:22 -0700 | [diff] [blame] | 1354 | if (iptunnel_handle_offloads(skb, SKB_GSO_IPXIP6)) |
| 1355 | return -1; |
| 1356 | |
Peter Dawson | 0e9a709 | 2017-05-26 06:35:18 +1000 | [diff] [blame] | 1357 | dsfield = INET_ECN_encapsulate(dsfield, ipv6_get_dsfield(ipv6h)); |
| 1358 | |
Tom Herbert | 815d22e | 2016-05-18 09:06:22 -0700 | [diff] [blame] | 1359 | skb_set_inner_ipproto(skb, IPPROTO_IPV6); |
| 1360 | |
Tom Herbert | 8eb30be | 2016-04-29 17:12:18 -0700 | [diff] [blame] | 1361 | err = ip6_tnl_xmit(skb, dev, dsfield, &fl6, encap_limit, &mtu, |
| 1362 | IPPROTO_IPV6); |
Yasuyuki Kozakai | 61ec2ae | 2006-11-05 22:56:45 +0900 | [diff] [blame] | 1363 | if (err != 0) { |
| 1364 | if (err == -EMSGSIZE) |
Alexey Dobriyan | 3ffe533 | 2010-02-18 08:25:24 +0000 | [diff] [blame] | 1365 | icmpv6_send(skb, ICMPV6_PKT_TOOBIG, 0, mtu); |
Yasuyuki Kozakai | 61ec2ae | 2006-11-05 22:56:45 +0900 | [diff] [blame] | 1366 | return -1; |
| 1367 | } |
| 1368 | |
| 1369 | return 0; |
| 1370 | } |
| 1371 | |
Stephen Hemminger | 6fef4c0 | 2009-08-31 19:50:41 +0000 | [diff] [blame] | 1372 | static netdev_tx_t |
Tom Herbert | 8eb30be | 2016-04-29 17:12:18 -0700 | [diff] [blame] | 1373 | ip6_tnl_start_xmit(struct sk_buff *skb, struct net_device *dev) |
Yasuyuki Kozakai | 61ec2ae | 2006-11-05 22:56:45 +0900 | [diff] [blame] | 1374 | { |
| 1375 | struct ip6_tnl *t = netdev_priv(dev); |
Pavel Emelyanov | 3dca02a | 2008-05-21 14:17:05 -0700 | [diff] [blame] | 1376 | struct net_device_stats *stats = &t->dev->stats; |
Yasuyuki Kozakai | 61ec2ae | 2006-11-05 22:56:45 +0900 | [diff] [blame] | 1377 | int ret; |
| 1378 | |
Yasuyuki Kozakai | 61ec2ae | 2006-11-05 22:56:45 +0900 | [diff] [blame] | 1379 | switch (skb->protocol) { |
Arnaldo Carvalho de Melo | 6067804 | 2008-09-20 22:20:49 -0700 | [diff] [blame] | 1380 | case htons(ETH_P_IP): |
Yasuyuki Kozakai | c4d3efa | 2007-02-15 00:43:16 +0900 | [diff] [blame] | 1381 | ret = ip4ip6_tnl_xmit(skb, dev); |
| 1382 | break; |
Arnaldo Carvalho de Melo | 6067804 | 2008-09-20 22:20:49 -0700 | [diff] [blame] | 1383 | case htons(ETH_P_IPV6): |
Yasuyuki Kozakai | 61ec2ae | 2006-11-05 22:56:45 +0900 | [diff] [blame] | 1384 | ret = ip6ip6_tnl_xmit(skb, dev); |
| 1385 | break; |
| 1386 | default: |
| 1387 | goto tx_err; |
| 1388 | } |
| 1389 | |
| 1390 | if (ret < 0) |
| 1391 | goto tx_err; |
| 1392 | |
Patrick McHardy | 6ed1065 | 2009-06-23 06:03:08 +0000 | [diff] [blame] | 1393 | return NETDEV_TX_OK; |
Yasuyuki Kozakai | 61ec2ae | 2006-11-05 22:56:45 +0900 | [diff] [blame] | 1394 | |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 1395 | tx_err: |
| 1396 | stats->tx_errors++; |
| 1397 | stats->tx_dropped++; |
| 1398 | kfree_skb(skb); |
Patrick McHardy | 6ed1065 | 2009-06-23 06:03:08 +0000 | [diff] [blame] | 1399 | return NETDEV_TX_OK; |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 1400 | } |
| 1401 | |
Yasuyuki Kozakai | 3144581 | 2007-02-10 00:30:33 +0900 | [diff] [blame] | 1402 | static void ip6_tnl_link_config(struct ip6_tnl *t) |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 1403 | { |
| 1404 | struct net_device *dev = t->dev; |
xeb@mail.ru | c12b395 | 2012-08-10 00:51:50 +0000 | [diff] [blame] | 1405 | struct __ip6_tnl_parm *p = &t->parms; |
David S. Miller | 4c9483b | 2011-03-12 16:22:43 -0500 | [diff] [blame] | 1406 | struct flowi6 *fl6 = &t->fl.u.ip6; |
Tom Herbert | 058214a | 2016-05-18 09:06:17 -0700 | [diff] [blame] | 1407 | int t_hlen; |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 1408 | |
Jiri Pirko | 3a6d54c | 2009-05-11 23:37:15 +0000 | [diff] [blame] | 1409 | memcpy(dev->dev_addr, &p->laddr, sizeof(struct in6_addr)); |
| 1410 | memcpy(dev->broadcast, &p->raddr, sizeof(struct in6_addr)); |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 1411 | |
| 1412 | /* Set up flowi template */ |
Alexey Dobriyan | 4e3fd7a | 2011-11-21 03:39:03 +0000 | [diff] [blame] | 1413 | fl6->saddr = p->laddr; |
| 1414 | fl6->daddr = p->raddr; |
David S. Miller | 4c9483b | 2011-03-12 16:22:43 -0500 | [diff] [blame] | 1415 | fl6->flowi6_oif = p->link; |
| 1416 | fl6->flowlabel = 0; |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 1417 | |
| 1418 | if (!(p->flags&IP6_TNL_F_USE_ORIG_TCLASS)) |
David S. Miller | 4c9483b | 2011-03-12 16:22:43 -0500 | [diff] [blame] | 1419 | fl6->flowlabel |= IPV6_TCLASS_MASK & p->flowinfo; |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 1420 | if (!(p->flags&IP6_TNL_F_USE_ORIG_FLOWLABEL)) |
David S. Miller | 4c9483b | 2011-03-12 16:22:43 -0500 | [diff] [blame] | 1421 | fl6->flowlabel |= IPV6_FLOWLABEL_MASK & p->flowinfo; |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 1422 | |
Ville Nuorvala | d0087b2 | 2012-06-28 18:15:52 +0000 | [diff] [blame] | 1423 | p->flags &= ~(IP6_TNL_F_CAP_XMIT|IP6_TNL_F_CAP_RCV|IP6_TNL_F_CAP_PER_PACKET); |
| 1424 | p->flags |= ip6_tnl_get_cap(t, &p->laddr, &p->raddr); |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 1425 | |
| 1426 | if (p->flags&IP6_TNL_F_CAP_XMIT && p->flags&IP6_TNL_F_CAP_RCV) |
| 1427 | dev->flags |= IFF_POINTOPOINT; |
| 1428 | else |
| 1429 | dev->flags &= ~IFF_POINTOPOINT; |
| 1430 | |
Tom Herbert | 058214a | 2016-05-18 09:06:17 -0700 | [diff] [blame] | 1431 | t->tun_hlen = 0; |
| 1432 | t->hlen = t->encap_hlen + t->tun_hlen; |
| 1433 | t_hlen = t->hlen + sizeof(struct ipv6hdr); |
| 1434 | |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 1435 | if (p->flags & IP6_TNL_F_CAP_XMIT) { |
Ville Nuorvala | 305d4b3 | 2006-11-24 17:06:53 -0800 | [diff] [blame] | 1436 | int strict = (ipv6_addr_type(&p->raddr) & |
| 1437 | (IPV6_ADDR_MULTICAST|IPV6_ADDR_LINKLOCAL)); |
| 1438 | |
Nicolas Dichtel | 0bd87628 | 2013-08-13 17:51:12 +0200 | [diff] [blame] | 1439 | struct rt6_info *rt = rt6_lookup(t->net, |
Pavel Emelyanov | 2f7f54b | 2008-04-16 01:23:44 -0700 | [diff] [blame] | 1440 | &p->raddr, &p->laddr, |
Ville Nuorvala | 305d4b3 | 2006-11-24 17:06:53 -0800 | [diff] [blame] | 1441 | p->link, strict); |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 1442 | |
Ian Morris | 63159f2 | 2015-03-29 14:00:04 +0100 | [diff] [blame] | 1443 | if (!rt) |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 1444 | return; |
| 1445 | |
David S. Miller | d191854 | 2011-12-28 20:19:20 -0500 | [diff] [blame] | 1446 | if (rt->dst.dev) { |
| 1447 | dev->hard_header_len = rt->dst.dev->hard_header_len + |
Tom Herbert | 058214a | 2016-05-18 09:06:17 -0700 | [diff] [blame] | 1448 | t_hlen; |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 1449 | |
Tom Herbert | 058214a | 2016-05-18 09:06:17 -0700 | [diff] [blame] | 1450 | dev->mtu = rt->dst.dev->mtu - t_hlen; |
Anders Franzen | 381601e | 2010-11-24 05:47:18 +0000 | [diff] [blame] | 1451 | if (!(t->parms.flags & IP6_TNL_F_IGN_ENCAP_LIMIT)) |
Ian Morris | 67ba415 | 2014-08-24 21:53:10 +0100 | [diff] [blame] | 1452 | dev->mtu -= 8; |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 1453 | |
| 1454 | if (dev->mtu < IPV6_MIN_MTU) |
| 1455 | dev->mtu = IPV6_MIN_MTU; |
| 1456 | } |
Amerigo Wang | 94e187c | 2012-10-29 00:13:19 +0000 | [diff] [blame] | 1457 | ip6_rt_put(rt); |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 1458 | } |
| 1459 | } |
| 1460 | |
| 1461 | /** |
Yasuyuki Kozakai | 3144581 | 2007-02-10 00:30:33 +0900 | [diff] [blame] | 1462 | * ip6_tnl_change - update the tunnel parameters |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 1463 | * @t: tunnel to be changed |
| 1464 | * @p: tunnel configuration parameters |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 1465 | * |
| 1466 | * Description: |
Yasuyuki Kozakai | 3144581 | 2007-02-10 00:30:33 +0900 | [diff] [blame] | 1467 | * ip6_tnl_change() updates the tunnel parameters |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 1468 | **/ |
| 1469 | |
| 1470 | static int |
xeb@mail.ru | c12b395 | 2012-08-10 00:51:50 +0000 | [diff] [blame] | 1471 | ip6_tnl_change(struct ip6_tnl *t, const struct __ip6_tnl_parm *p) |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 1472 | { |
Alexey Dobriyan | 4e3fd7a | 2011-11-21 03:39:03 +0000 | [diff] [blame] | 1473 | t->parms.laddr = p->laddr; |
| 1474 | t->parms.raddr = p->raddr; |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 1475 | t->parms.flags = p->flags; |
| 1476 | t->parms.hop_limit = p->hop_limit; |
| 1477 | t->parms.encap_limit = p->encap_limit; |
| 1478 | t->parms.flowinfo = p->flowinfo; |
Gabor Fekete | 8181b8c | 2005-06-08 14:54:38 -0700 | [diff] [blame] | 1479 | t->parms.link = p->link; |
Yasuyuki Kozakai | 502b093 | 2006-11-30 14:43:28 +0900 | [diff] [blame] | 1480 | t->parms.proto = p->proto; |
Craig Gallek | 0a473b8 | 2017-04-19 12:30:53 -0400 | [diff] [blame] | 1481 | t->parms.fwmark = p->fwmark; |
Paolo Abeni | 607f725 | 2016-02-12 15:43:54 +0100 | [diff] [blame] | 1482 | dst_cache_reset(&t->dst_cache); |
Yasuyuki Kozakai | 3144581 | 2007-02-10 00:30:33 +0900 | [diff] [blame] | 1483 | ip6_tnl_link_config(t); |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 1484 | return 0; |
| 1485 | } |
| 1486 | |
Nicolas Dichtel | 0b11245 | 2012-11-14 05:14:00 +0000 | [diff] [blame] | 1487 | static int ip6_tnl_update(struct ip6_tnl *t, struct __ip6_tnl_parm *p) |
| 1488 | { |
Nicolas Dichtel | 0bd87628 | 2013-08-13 17:51:12 +0200 | [diff] [blame] | 1489 | struct net *net = t->net; |
Nicolas Dichtel | 0b11245 | 2012-11-14 05:14:00 +0000 | [diff] [blame] | 1490 | struct ip6_tnl_net *ip6n = net_generic(net, ip6_tnl_net_id); |
| 1491 | int err; |
| 1492 | |
| 1493 | ip6_tnl_unlink(ip6n, t); |
| 1494 | synchronize_net(); |
| 1495 | err = ip6_tnl_change(t, p); |
| 1496 | ip6_tnl_link(ip6n, t); |
| 1497 | netdev_state_change(t->dev); |
| 1498 | return err; |
| 1499 | } |
| 1500 | |
Alexey Andriyanov | acf722f | 2014-10-29 10:54:52 +0300 | [diff] [blame] | 1501 | static int ip6_tnl0_update(struct ip6_tnl *t, struct __ip6_tnl_parm *p) |
| 1502 | { |
| 1503 | /* for default tnl0 device allow to change only the proto */ |
| 1504 | t->parms.proto = p->proto; |
| 1505 | netdev_state_change(t->dev); |
| 1506 | return 0; |
| 1507 | } |
| 1508 | |
xeb@mail.ru | c12b395 | 2012-08-10 00:51:50 +0000 | [diff] [blame] | 1509 | static void |
| 1510 | ip6_tnl_parm_from_user(struct __ip6_tnl_parm *p, const struct ip6_tnl_parm *u) |
| 1511 | { |
| 1512 | p->laddr = u->laddr; |
| 1513 | p->raddr = u->raddr; |
| 1514 | p->flags = u->flags; |
| 1515 | p->hop_limit = u->hop_limit; |
| 1516 | p->encap_limit = u->encap_limit; |
| 1517 | p->flowinfo = u->flowinfo; |
| 1518 | p->link = u->link; |
| 1519 | p->proto = u->proto; |
| 1520 | memcpy(p->name, u->name, sizeof(u->name)); |
| 1521 | } |
| 1522 | |
| 1523 | static void |
| 1524 | ip6_tnl_parm_to_user(struct ip6_tnl_parm *u, const struct __ip6_tnl_parm *p) |
| 1525 | { |
| 1526 | u->laddr = p->laddr; |
| 1527 | u->raddr = p->raddr; |
| 1528 | u->flags = p->flags; |
| 1529 | u->hop_limit = p->hop_limit; |
| 1530 | u->encap_limit = p->encap_limit; |
| 1531 | u->flowinfo = p->flowinfo; |
| 1532 | u->link = p->link; |
| 1533 | u->proto = p->proto; |
| 1534 | memcpy(u->name, p->name, sizeof(u->name)); |
| 1535 | } |
| 1536 | |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 1537 | /** |
Yasuyuki Kozakai | 3144581 | 2007-02-10 00:30:33 +0900 | [diff] [blame] | 1538 | * ip6_tnl_ioctl - configure ipv6 tunnels from userspace |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 1539 | * @dev: virtual device associated with tunnel |
| 1540 | * @ifr: parameters passed from userspace |
| 1541 | * @cmd: command to be performed |
| 1542 | * |
| 1543 | * Description: |
Yasuyuki Kozakai | 3144581 | 2007-02-10 00:30:33 +0900 | [diff] [blame] | 1544 | * ip6_tnl_ioctl() is used for managing IPv6 tunnels |
YOSHIFUJI Hideaki | 1ab1457 | 2007-02-09 23:24:49 +0900 | [diff] [blame] | 1545 | * from userspace. |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 1546 | * |
| 1547 | * The possible commands are the following: |
| 1548 | * %SIOCGETTUNNEL: get tunnel parameters for device |
| 1549 | * %SIOCADDTUNNEL: add tunnel matching given tunnel parameters |
| 1550 | * %SIOCCHGTUNNEL: change tunnel parameters to those given |
| 1551 | * %SIOCDELTUNNEL: delete tunnel |
| 1552 | * |
YOSHIFUJI Hideaki | 1ab1457 | 2007-02-09 23:24:49 +0900 | [diff] [blame] | 1553 | * The fallback device "ip6tnl0", created during module |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 1554 | * initialization, can be used for creating other tunnel devices. |
| 1555 | * |
| 1556 | * Return: |
| 1557 | * 0 on success, |
| 1558 | * %-EFAULT if unable to copy data to or from userspace, |
| 1559 | * %-EPERM if current process hasn't %CAP_NET_ADMIN set |
| 1560 | * %-EINVAL if passed tunnel parameters are invalid, |
| 1561 | * %-EEXIST if changing a tunnel's parameters would cause a conflict |
| 1562 | * %-ENODEV if attempting to change or delete a nonexisting device |
| 1563 | **/ |
| 1564 | |
| 1565 | static int |
Yasuyuki Kozakai | 3144581 | 2007-02-10 00:30:33 +0900 | [diff] [blame] | 1566 | ip6_tnl_ioctl(struct net_device *dev, struct ifreq *ifr, int cmd) |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 1567 | { |
| 1568 | int err = 0; |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 1569 | struct ip6_tnl_parm p; |
xeb@mail.ru | c12b395 | 2012-08-10 00:51:50 +0000 | [diff] [blame] | 1570 | struct __ip6_tnl_parm p1; |
Nicolas Dichtel | 74462f0 | 2014-04-16 11:19:34 +0200 | [diff] [blame] | 1571 | struct ip6_tnl *t = netdev_priv(dev); |
| 1572 | struct net *net = t->net; |
Pavel Emelyanov | 2dd02c8 | 2008-04-16 01:22:23 -0700 | [diff] [blame] | 1573 | struct ip6_tnl_net *ip6n = net_generic(net, ip6_tnl_net_id); |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 1574 | |
Tom Herbert | 0d3c703 | 2016-04-29 17:12:15 -0700 | [diff] [blame] | 1575 | memset(&p1, 0, sizeof(p1)); |
| 1576 | |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 1577 | switch (cmd) { |
| 1578 | case SIOCGETTUNNEL: |
Pavel Emelyanov | 15820e129 | 2008-04-16 01:23:02 -0700 | [diff] [blame] | 1579 | if (dev == ip6n->fb_tnl_dev) { |
Ian Morris | 67ba415 | 2014-08-24 21:53:10 +0100 | [diff] [blame] | 1580 | if (copy_from_user(&p, ifr->ifr_ifru.ifru_data, sizeof(p))) { |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 1581 | err = -EFAULT; |
| 1582 | break; |
| 1583 | } |
xeb@mail.ru | c12b395 | 2012-08-10 00:51:50 +0000 | [diff] [blame] | 1584 | ip6_tnl_parm_from_user(&p1, &p); |
| 1585 | t = ip6_tnl_locate(net, &p1, 0); |
Nicolas Dichtel | 3735556 | 2015-03-16 15:56:05 +0100 | [diff] [blame] | 1586 | if (IS_ERR(t)) |
Nicolas Dichtel | 74462f0 | 2014-04-16 11:19:34 +0200 | [diff] [blame] | 1587 | t = netdev_priv(dev); |
Dan Carpenter | 5ef5d6c | 2012-08-16 03:14:04 +0000 | [diff] [blame] | 1588 | } else { |
| 1589 | memset(&p, 0, sizeof(p)); |
Ville Nuorvala | 567131a | 2006-11-24 17:05:41 -0800 | [diff] [blame] | 1590 | } |
xeb@mail.ru | c12b395 | 2012-08-10 00:51:50 +0000 | [diff] [blame] | 1591 | ip6_tnl_parm_to_user(&p, &t->parms); |
Ian Morris | 67ba415 | 2014-08-24 21:53:10 +0100 | [diff] [blame] | 1592 | if (copy_to_user(ifr->ifr_ifru.ifru_data, &p, sizeof(p))) { |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 1593 | err = -EFAULT; |
| 1594 | } |
| 1595 | break; |
| 1596 | case SIOCADDTUNNEL: |
| 1597 | case SIOCCHGTUNNEL: |
| 1598 | err = -EPERM; |
Eric W. Biederman | af31f41 | 2012-11-16 03:03:06 +0000 | [diff] [blame] | 1599 | if (!ns_capable(net->user_ns, CAP_NET_ADMIN)) |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 1600 | break; |
Ville Nuorvala | 567131a | 2006-11-24 17:05:41 -0800 | [diff] [blame] | 1601 | err = -EFAULT; |
Ian Morris | 67ba415 | 2014-08-24 21:53:10 +0100 | [diff] [blame] | 1602 | if (copy_from_user(&p, ifr->ifr_ifru.ifru_data, sizeof(p))) |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 1603 | break; |
Ville Nuorvala | 567131a | 2006-11-24 17:05:41 -0800 | [diff] [blame] | 1604 | err = -EINVAL; |
Yasuyuki Kozakai | 502b093 | 2006-11-30 14:43:28 +0900 | [diff] [blame] | 1605 | if (p.proto != IPPROTO_IPV6 && p.proto != IPPROTO_IPIP && |
| 1606 | p.proto != 0) |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 1607 | break; |
xeb@mail.ru | c12b395 | 2012-08-10 00:51:50 +0000 | [diff] [blame] | 1608 | ip6_tnl_parm_from_user(&p1, &p); |
| 1609 | t = ip6_tnl_locate(net, &p1, cmd == SIOCADDTUNNEL); |
Alexey Andriyanov | acf722f | 2014-10-29 10:54:52 +0300 | [diff] [blame] | 1610 | if (cmd == SIOCCHGTUNNEL) { |
Nicolas Dichtel | 3735556 | 2015-03-16 15:56:05 +0100 | [diff] [blame] | 1611 | if (!IS_ERR(t)) { |
Ville Nuorvala | 567131a | 2006-11-24 17:05:41 -0800 | [diff] [blame] | 1612 | if (t->dev != dev) { |
| 1613 | err = -EEXIST; |
| 1614 | break; |
| 1615 | } |
| 1616 | } else |
| 1617 | t = netdev_priv(dev); |
Alexey Andriyanov | acf722f | 2014-10-29 10:54:52 +0300 | [diff] [blame] | 1618 | if (dev == ip6n->fb_tnl_dev) |
| 1619 | err = ip6_tnl0_update(t, &p1); |
| 1620 | else |
| 1621 | err = ip6_tnl_update(t, &p1); |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 1622 | } |
Nicolas Dichtel | 3735556 | 2015-03-16 15:56:05 +0100 | [diff] [blame] | 1623 | if (!IS_ERR(t)) { |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 1624 | err = 0; |
xeb@mail.ru | c12b395 | 2012-08-10 00:51:50 +0000 | [diff] [blame] | 1625 | ip6_tnl_parm_to_user(&p, &t->parms); |
| 1626 | if (copy_to_user(ifr->ifr_ifru.ifru_data, &p, sizeof(p))) |
Ville Nuorvala | 567131a | 2006-11-24 17:05:41 -0800 | [diff] [blame] | 1627 | err = -EFAULT; |
| 1628 | |
Nicolas Dichtel | 3735556 | 2015-03-16 15:56:05 +0100 | [diff] [blame] | 1629 | } else { |
| 1630 | err = PTR_ERR(t); |
| 1631 | } |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 1632 | break; |
| 1633 | case SIOCDELTUNNEL: |
| 1634 | err = -EPERM; |
Eric W. Biederman | af31f41 | 2012-11-16 03:03:06 +0000 | [diff] [blame] | 1635 | if (!ns_capable(net->user_ns, CAP_NET_ADMIN)) |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 1636 | break; |
| 1637 | |
Pavel Emelyanov | 15820e129 | 2008-04-16 01:23:02 -0700 | [diff] [blame] | 1638 | if (dev == ip6n->fb_tnl_dev) { |
Ville Nuorvala | 567131a | 2006-11-24 17:05:41 -0800 | [diff] [blame] | 1639 | err = -EFAULT; |
Ian Morris | 67ba415 | 2014-08-24 21:53:10 +0100 | [diff] [blame] | 1640 | if (copy_from_user(&p, ifr->ifr_ifru.ifru_data, sizeof(p))) |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 1641 | break; |
Ville Nuorvala | 567131a | 2006-11-24 17:05:41 -0800 | [diff] [blame] | 1642 | err = -ENOENT; |
xeb@mail.ru | c12b395 | 2012-08-10 00:51:50 +0000 | [diff] [blame] | 1643 | ip6_tnl_parm_from_user(&p1, &p); |
| 1644 | t = ip6_tnl_locate(net, &p1, 0); |
Nicolas Dichtel | 3735556 | 2015-03-16 15:56:05 +0100 | [diff] [blame] | 1645 | if (IS_ERR(t)) |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 1646 | break; |
Ville Nuorvala | 567131a | 2006-11-24 17:05:41 -0800 | [diff] [blame] | 1647 | err = -EPERM; |
Pavel Emelyanov | 15820e129 | 2008-04-16 01:23:02 -0700 | [diff] [blame] | 1648 | if (t->dev == ip6n->fb_tnl_dev) |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 1649 | break; |
Ville Nuorvala | 567131a | 2006-11-24 17:05:41 -0800 | [diff] [blame] | 1650 | dev = t->dev; |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 1651 | } |
Stephen Hemminger | 22f8cde | 2007-02-07 00:09:58 -0800 | [diff] [blame] | 1652 | err = 0; |
| 1653 | unregister_netdevice(dev); |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 1654 | break; |
| 1655 | default: |
| 1656 | err = -EINVAL; |
| 1657 | } |
| 1658 | return err; |
| 1659 | } |
| 1660 | |
| 1661 | /** |
Yasuyuki Kozakai | 3144581 | 2007-02-10 00:30:33 +0900 | [diff] [blame] | 1662 | * ip6_tnl_change_mtu - change mtu manually for tunnel device |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 1663 | * @dev: virtual device associated with tunnel |
| 1664 | * @new_mtu: the new mtu |
| 1665 | * |
| 1666 | * Return: |
| 1667 | * 0 on success, |
| 1668 | * %-EINVAL if mtu too small |
| 1669 | **/ |
| 1670 | |
Tom Herbert | 79ecb90 | 2016-04-29 17:12:20 -0700 | [diff] [blame] | 1671 | int ip6_tnl_change_mtu(struct net_device *dev, int new_mtu) |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 1672 | { |
Oussama Ghorbel | 582442d | 2013-10-03 14:49:26 +0100 | [diff] [blame] | 1673 | struct ip6_tnl *tnl = netdev_priv(dev); |
| 1674 | |
| 1675 | if (tnl->parms.proto == IPPROTO_IPIP) { |
Jarod Wilson | b96f9af | 2016-10-20 13:55:24 -0400 | [diff] [blame] | 1676 | if (new_mtu < ETH_MIN_MTU) |
Oussama Ghorbel | 582442d | 2013-10-03 14:49:26 +0100 | [diff] [blame] | 1677 | return -EINVAL; |
| 1678 | } else { |
| 1679 | if (new_mtu < IPV6_MIN_MTU) |
| 1680 | return -EINVAL; |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 1681 | } |
Oussama Ghorbel | 582442d | 2013-10-03 14:49:26 +0100 | [diff] [blame] | 1682 | if (new_mtu > 0xFFF8 - dev->hard_header_len) |
| 1683 | return -EINVAL; |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 1684 | dev->mtu = new_mtu; |
| 1685 | return 0; |
| 1686 | } |
Tom Herbert | 79ecb90 | 2016-04-29 17:12:20 -0700 | [diff] [blame] | 1687 | EXPORT_SYMBOL(ip6_tnl_change_mtu); |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 1688 | |
Nicolas Dichtel | ecf2c06 | 2015-04-02 17:07:01 +0200 | [diff] [blame] | 1689 | int ip6_tnl_get_iflink(const struct net_device *dev) |
| 1690 | { |
| 1691 | struct ip6_tnl *t = netdev_priv(dev); |
| 1692 | |
| 1693 | return t->parms.link; |
| 1694 | } |
| 1695 | EXPORT_SYMBOL(ip6_tnl_get_iflink); |
Stephen Hemminger | 1326c3d | 2008-11-20 20:33:56 -0800 | [diff] [blame] | 1696 | |
Tom Herbert | 058214a | 2016-05-18 09:06:17 -0700 | [diff] [blame] | 1697 | int ip6_tnl_encap_add_ops(const struct ip6_tnl_encap_ops *ops, |
| 1698 | unsigned int num) |
| 1699 | { |
| 1700 | if (num >= MAX_IPTUN_ENCAP_OPS) |
| 1701 | return -ERANGE; |
| 1702 | |
| 1703 | return !cmpxchg((const struct ip6_tnl_encap_ops **) |
| 1704 | &ip6tun_encaps[num], |
| 1705 | NULL, ops) ? 0 : -1; |
| 1706 | } |
| 1707 | EXPORT_SYMBOL(ip6_tnl_encap_add_ops); |
| 1708 | |
| 1709 | int ip6_tnl_encap_del_ops(const struct ip6_tnl_encap_ops *ops, |
| 1710 | unsigned int num) |
| 1711 | { |
| 1712 | int ret; |
| 1713 | |
| 1714 | if (num >= MAX_IPTUN_ENCAP_OPS) |
| 1715 | return -ERANGE; |
| 1716 | |
| 1717 | ret = (cmpxchg((const struct ip6_tnl_encap_ops **) |
| 1718 | &ip6tun_encaps[num], |
| 1719 | ops, NULL) == ops) ? 0 : -1; |
| 1720 | |
| 1721 | synchronize_net(); |
| 1722 | |
| 1723 | return ret; |
| 1724 | } |
| 1725 | EXPORT_SYMBOL(ip6_tnl_encap_del_ops); |
| 1726 | |
| 1727 | int ip6_tnl_encap_setup(struct ip6_tnl *t, |
| 1728 | struct ip_tunnel_encap *ipencap) |
| 1729 | { |
| 1730 | int hlen; |
| 1731 | |
| 1732 | memset(&t->encap, 0, sizeof(t->encap)); |
| 1733 | |
| 1734 | hlen = ip6_encap_hlen(ipencap); |
| 1735 | if (hlen < 0) |
| 1736 | return hlen; |
| 1737 | |
| 1738 | t->encap.type = ipencap->type; |
| 1739 | t->encap.sport = ipencap->sport; |
| 1740 | t->encap.dport = ipencap->dport; |
| 1741 | t->encap.flags = ipencap->flags; |
| 1742 | |
| 1743 | t->encap_hlen = hlen; |
| 1744 | t->hlen = t->encap_hlen + t->tun_hlen; |
| 1745 | |
| 1746 | return 0; |
| 1747 | } |
| 1748 | EXPORT_SYMBOL_GPL(ip6_tnl_encap_setup); |
| 1749 | |
Stephen Hemminger | 1326c3d | 2008-11-20 20:33:56 -0800 | [diff] [blame] | 1750 | static const struct net_device_ops ip6_tnl_netdev_ops = { |
Steffen Klassert | 6c6151d | 2014-11-03 09:19:27 +0100 | [diff] [blame] | 1751 | .ndo_init = ip6_tnl_dev_init, |
Eric Dumazet | 8560f22 | 2010-09-28 03:23:34 +0000 | [diff] [blame] | 1752 | .ndo_uninit = ip6_tnl_dev_uninit, |
Tom Herbert | 8eb30be | 2016-04-29 17:12:18 -0700 | [diff] [blame] | 1753 | .ndo_start_xmit = ip6_tnl_start_xmit, |
Eric Dumazet | 8560f22 | 2010-09-28 03:23:34 +0000 | [diff] [blame] | 1754 | .ndo_do_ioctl = ip6_tnl_ioctl, |
Stephen Hemminger | 1326c3d | 2008-11-20 20:33:56 -0800 | [diff] [blame] | 1755 | .ndo_change_mtu = ip6_tnl_change_mtu, |
Eric Dumazet | 8560f22 | 2010-09-28 03:23:34 +0000 | [diff] [blame] | 1756 | .ndo_get_stats = ip6_get_stats, |
Nicolas Dichtel | ecf2c06 | 2015-04-02 17:07:01 +0200 | [diff] [blame] | 1757 | .ndo_get_iflink = ip6_tnl_get_iflink, |
Stephen Hemminger | 1326c3d | 2008-11-20 20:33:56 -0800 | [diff] [blame] | 1758 | }; |
| 1759 | |
Tom Herbert | 51c052d | 2016-05-18 09:06:21 -0700 | [diff] [blame] | 1760 | #define IPXIPX_FEATURES (NETIF_F_SG | \ |
| 1761 | NETIF_F_FRAGLIST | \ |
| 1762 | NETIF_F_HIGHDMA | \ |
| 1763 | NETIF_F_GSO_SOFTWARE | \ |
| 1764 | NETIF_F_HW_CSUM) |
Eric Dumazet | 8560f22 | 2010-09-28 03:23:34 +0000 | [diff] [blame] | 1765 | |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 1766 | /** |
Yasuyuki Kozakai | 3144581 | 2007-02-10 00:30:33 +0900 | [diff] [blame] | 1767 | * ip6_tnl_dev_setup - setup virtual tunnel device |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 1768 | * @dev: virtual device associated with tunnel |
| 1769 | * |
| 1770 | * Description: |
| 1771 | * Initialize function pointers and device parameters |
| 1772 | **/ |
| 1773 | |
Yasuyuki Kozakai | 3144581 | 2007-02-10 00:30:33 +0900 | [diff] [blame] | 1774 | static void ip6_tnl_dev_setup(struct net_device *dev) |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 1775 | { |
Stephen Hemminger | 1326c3d | 2008-11-20 20:33:56 -0800 | [diff] [blame] | 1776 | dev->netdev_ops = &ip6_tnl_netdev_ops; |
Eric Dumazet | 8560f22 | 2010-09-28 03:23:34 +0000 | [diff] [blame] | 1777 | dev->destructor = ip6_dev_free; |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 1778 | |
| 1779 | dev->type = ARPHRD_TUNNEL6; |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 1780 | dev->flags |= IFF_NOARP; |
| 1781 | dev->addr_len = sizeof(struct in6_addr); |
Tom Herbert | 058214a | 2016-05-18 09:06:17 -0700 | [diff] [blame] | 1782 | dev->features |= NETIF_F_LLTX; |
Eric Dumazet | 0287587 | 2014-10-05 18:38:35 -0700 | [diff] [blame] | 1783 | netif_keep_dst(dev); |
Tom Herbert | 51c052d | 2016-05-18 09:06:21 -0700 | [diff] [blame] | 1784 | |
| 1785 | dev->features |= IPXIPX_FEATURES; |
| 1786 | dev->hw_features |= IPXIPX_FEATURES; |
| 1787 | |
Nicolas Dichtel | e837735 | 2013-08-20 12:16:06 +0200 | [diff] [blame] | 1788 | /* This perm addr will be used as interface identifier by IPv6 */ |
| 1789 | dev->addr_assign_type = NET_ADDR_RANDOM; |
| 1790 | eth_random_addr(dev->perm_addr); |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 1791 | } |
| 1792 | |
| 1793 | |
| 1794 | /** |
Yasuyuki Kozakai | 3144581 | 2007-02-10 00:30:33 +0900 | [diff] [blame] | 1795 | * ip6_tnl_dev_init_gen - general initializer for all tunnel devices |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 1796 | * @dev: virtual device associated with tunnel |
| 1797 | **/ |
| 1798 | |
Eric Dumazet | 8560f22 | 2010-09-28 03:23:34 +0000 | [diff] [blame] | 1799 | static inline int |
Yasuyuki Kozakai | 3144581 | 2007-02-10 00:30:33 +0900 | [diff] [blame] | 1800 | ip6_tnl_dev_init_gen(struct net_device *dev) |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 1801 | { |
Patrick McHardy | 2941a48 | 2006-01-08 22:05:26 -0800 | [diff] [blame] | 1802 | struct ip6_tnl *t = netdev_priv(dev); |
Martin KaFai Lau | cdf3464 | 2015-09-15 14:30:07 -0700 | [diff] [blame] | 1803 | int ret; |
Tom Herbert | 058214a | 2016-05-18 09:06:17 -0700 | [diff] [blame] | 1804 | int t_hlen; |
Eric Dumazet | 8560f22 | 2010-09-28 03:23:34 +0000 | [diff] [blame] | 1805 | |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 1806 | t->dev = dev; |
Nicolas Dichtel | 0bd87628 | 2013-08-13 17:51:12 +0200 | [diff] [blame] | 1807 | t->net = dev_net(dev); |
WANG Cong | 1c213bd | 2014-02-13 11:46:28 -0800 | [diff] [blame] | 1808 | dev->tstats = netdev_alloc_pcpu_stats(struct pcpu_sw_netstats); |
Eric Dumazet | 8560f22 | 2010-09-28 03:23:34 +0000 | [diff] [blame] | 1809 | if (!dev->tstats) |
| 1810 | return -ENOMEM; |
Martin KaFai Lau | cdf3464 | 2015-09-15 14:30:07 -0700 | [diff] [blame] | 1811 | |
Paolo Abeni | 607f725 | 2016-02-12 15:43:54 +0100 | [diff] [blame] | 1812 | ret = dst_cache_init(&t->dst_cache, GFP_KERNEL); |
Tom Herbert | 0d3c703 | 2016-04-29 17:12:15 -0700 | [diff] [blame] | 1813 | if (ret) |
| 1814 | goto free_stats; |
| 1815 | |
| 1816 | ret = gro_cells_init(&t->gro_cells, dev); |
| 1817 | if (ret) |
| 1818 | goto destroy_dst; |
Martin KaFai Lau | cdf3464 | 2015-09-15 14:30:07 -0700 | [diff] [blame] | 1819 | |
Tom Herbert | 79ecb90 | 2016-04-29 17:12:20 -0700 | [diff] [blame] | 1820 | t->tun_hlen = 0; |
Tom Herbert | 058214a | 2016-05-18 09:06:17 -0700 | [diff] [blame] | 1821 | t->hlen = t->encap_hlen + t->tun_hlen; |
| 1822 | t_hlen = t->hlen + sizeof(struct ipv6hdr); |
| 1823 | |
| 1824 | dev->type = ARPHRD_TUNNEL6; |
| 1825 | dev->hard_header_len = LL_MAX_HEADER + t_hlen; |
| 1826 | dev->mtu = ETH_DATA_LEN - t_hlen; |
| 1827 | if (!(t->parms.flags & IP6_TNL_F_IGN_ENCAP_LIMIT)) |
| 1828 | dev->mtu -= 8; |
Jarod Wilson | b96f9af | 2016-10-20 13:55:24 -0400 | [diff] [blame] | 1829 | dev->min_mtu = ETH_MIN_MTU; |
| 1830 | dev->max_mtu = 0xFFF8 - dev->hard_header_len; |
Tom Herbert | 79ecb90 | 2016-04-29 17:12:20 -0700 | [diff] [blame] | 1831 | |
Eric Dumazet | 8560f22 | 2010-09-28 03:23:34 +0000 | [diff] [blame] | 1832 | return 0; |
Tom Herbert | 0d3c703 | 2016-04-29 17:12:15 -0700 | [diff] [blame] | 1833 | |
| 1834 | destroy_dst: |
| 1835 | dst_cache_destroy(&t->dst_cache); |
| 1836 | free_stats: |
| 1837 | free_percpu(dev->tstats); |
| 1838 | dev->tstats = NULL; |
| 1839 | |
| 1840 | return ret; |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 1841 | } |
| 1842 | |
| 1843 | /** |
Yasuyuki Kozakai | 3144581 | 2007-02-10 00:30:33 +0900 | [diff] [blame] | 1844 | * ip6_tnl_dev_init - initializer for all non fallback tunnel devices |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 1845 | * @dev: virtual device associated with tunnel |
| 1846 | **/ |
| 1847 | |
Eric Dumazet | 8560f22 | 2010-09-28 03:23:34 +0000 | [diff] [blame] | 1848 | static int ip6_tnl_dev_init(struct net_device *dev) |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 1849 | { |
Patrick McHardy | 2941a48 | 2006-01-08 22:05:26 -0800 | [diff] [blame] | 1850 | struct ip6_tnl *t = netdev_priv(dev); |
Eric Dumazet | 8560f22 | 2010-09-28 03:23:34 +0000 | [diff] [blame] | 1851 | int err = ip6_tnl_dev_init_gen(dev); |
| 1852 | |
| 1853 | if (err) |
| 1854 | return err; |
Yasuyuki Kozakai | 3144581 | 2007-02-10 00:30:33 +0900 | [diff] [blame] | 1855 | ip6_tnl_link_config(t); |
Alexei Starovoitov | 8d79266 | 2016-09-15 13:00:30 -0700 | [diff] [blame] | 1856 | if (t->parms.collect_md) { |
| 1857 | dev->features |= NETIF_F_NETNS_LOCAL; |
| 1858 | netif_keep_dst(dev); |
| 1859 | } |
Eric Dumazet | 8560f22 | 2010-09-28 03:23:34 +0000 | [diff] [blame] | 1860 | return 0; |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 1861 | } |
| 1862 | |
| 1863 | /** |
Yasuyuki Kozakai | 3144581 | 2007-02-10 00:30:33 +0900 | [diff] [blame] | 1864 | * ip6_fb_tnl_dev_init - initializer for fallback tunnel device |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 1865 | * @dev: fallback device |
| 1866 | * |
| 1867 | * Return: 0 |
| 1868 | **/ |
| 1869 | |
Eric Dumazet | 8560f22 | 2010-09-28 03:23:34 +0000 | [diff] [blame] | 1870 | static int __net_init ip6_fb_tnl_dev_init(struct net_device *dev) |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 1871 | { |
Patrick McHardy | 2941a48 | 2006-01-08 22:05:26 -0800 | [diff] [blame] | 1872 | struct ip6_tnl *t = netdev_priv(dev); |
Pavel Emelyanov | 3e6c9fb | 2008-04-16 01:23:22 -0700 | [diff] [blame] | 1873 | struct net *net = dev_net(dev); |
| 1874 | struct ip6_tnl_net *ip6n = net_generic(net, ip6_tnl_net_id); |
Eric Dumazet | 8560f22 | 2010-09-28 03:23:34 +0000 | [diff] [blame] | 1875 | |
Yasuyuki Kozakai | 502b093 | 2006-11-30 14:43:28 +0900 | [diff] [blame] | 1876 | t->parms.proto = IPPROTO_IPV6; |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 1877 | dev_hold(dev); |
Ville Nuorvala | d0087b2 | 2012-06-28 18:15:52 +0000 | [diff] [blame] | 1878 | |
Eric Dumazet | cf778b0 | 2012-01-12 04:41:32 +0000 | [diff] [blame] | 1879 | rcu_assign_pointer(ip6n->tnls_wc[0], t); |
Eric Dumazet | 8560f22 | 2010-09-28 03:23:34 +0000 | [diff] [blame] | 1880 | return 0; |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 1881 | } |
| 1882 | |
Nicolas Dichtel | 0b11245 | 2012-11-14 05:14:00 +0000 | [diff] [blame] | 1883 | static int ip6_tnl_validate(struct nlattr *tb[], struct nlattr *data[]) |
| 1884 | { |
| 1885 | u8 proto; |
| 1886 | |
Susant Sahani | c896593 | 2014-05-10 00:11:32 +0530 | [diff] [blame] | 1887 | if (!data || !data[IFLA_IPTUN_PROTO]) |
Nicolas Dichtel | 0b11245 | 2012-11-14 05:14:00 +0000 | [diff] [blame] | 1888 | return 0; |
| 1889 | |
| 1890 | proto = nla_get_u8(data[IFLA_IPTUN_PROTO]); |
| 1891 | if (proto != IPPROTO_IPV6 && |
| 1892 | proto != IPPROTO_IPIP && |
| 1893 | proto != 0) |
| 1894 | return -EINVAL; |
| 1895 | |
| 1896 | return 0; |
| 1897 | } |
| 1898 | |
| 1899 | static void ip6_tnl_netlink_parms(struct nlattr *data[], |
| 1900 | struct __ip6_tnl_parm *parms) |
| 1901 | { |
| 1902 | memset(parms, 0, sizeof(*parms)); |
| 1903 | |
| 1904 | if (!data) |
| 1905 | return; |
| 1906 | |
| 1907 | if (data[IFLA_IPTUN_LINK]) |
| 1908 | parms->link = nla_get_u32(data[IFLA_IPTUN_LINK]); |
| 1909 | |
| 1910 | if (data[IFLA_IPTUN_LOCAL]) |
Jiri Benc | 67b61f6 | 2015-03-29 16:59:26 +0200 | [diff] [blame] | 1911 | parms->laddr = nla_get_in6_addr(data[IFLA_IPTUN_LOCAL]); |
Nicolas Dichtel | 0b11245 | 2012-11-14 05:14:00 +0000 | [diff] [blame] | 1912 | |
| 1913 | if (data[IFLA_IPTUN_REMOTE]) |
Jiri Benc | 67b61f6 | 2015-03-29 16:59:26 +0200 | [diff] [blame] | 1914 | parms->raddr = nla_get_in6_addr(data[IFLA_IPTUN_REMOTE]); |
Nicolas Dichtel | 0b11245 | 2012-11-14 05:14:00 +0000 | [diff] [blame] | 1915 | |
| 1916 | if (data[IFLA_IPTUN_TTL]) |
| 1917 | parms->hop_limit = nla_get_u8(data[IFLA_IPTUN_TTL]); |
| 1918 | |
| 1919 | if (data[IFLA_IPTUN_ENCAP_LIMIT]) |
| 1920 | parms->encap_limit = nla_get_u8(data[IFLA_IPTUN_ENCAP_LIMIT]); |
| 1921 | |
| 1922 | if (data[IFLA_IPTUN_FLOWINFO]) |
Nicolas Dichtel | 1ff05fb | 2012-11-15 04:06:42 +0000 | [diff] [blame] | 1923 | parms->flowinfo = nla_get_be32(data[IFLA_IPTUN_FLOWINFO]); |
Nicolas Dichtel | 0b11245 | 2012-11-14 05:14:00 +0000 | [diff] [blame] | 1924 | |
| 1925 | if (data[IFLA_IPTUN_FLAGS]) |
| 1926 | parms->flags = nla_get_u32(data[IFLA_IPTUN_FLAGS]); |
| 1927 | |
| 1928 | if (data[IFLA_IPTUN_PROTO]) |
| 1929 | parms->proto = nla_get_u8(data[IFLA_IPTUN_PROTO]); |
Alexei Starovoitov | 8d79266 | 2016-09-15 13:00:30 -0700 | [diff] [blame] | 1930 | |
| 1931 | if (data[IFLA_IPTUN_COLLECT_METADATA]) |
| 1932 | parms->collect_md = true; |
Craig Gallek | 0a473b8 | 2017-04-19 12:30:53 -0400 | [diff] [blame] | 1933 | |
| 1934 | if (data[IFLA_IPTUN_FWMARK]) |
| 1935 | parms->fwmark = nla_get_u32(data[IFLA_IPTUN_FWMARK]); |
Nicolas Dichtel | 0b11245 | 2012-11-14 05:14:00 +0000 | [diff] [blame] | 1936 | } |
| 1937 | |
Tom Herbert | b3a27b5 | 2016-05-18 09:06:20 -0700 | [diff] [blame] | 1938 | static bool ip6_tnl_netlink_encap_parms(struct nlattr *data[], |
| 1939 | struct ip_tunnel_encap *ipencap) |
| 1940 | { |
| 1941 | bool ret = false; |
| 1942 | |
| 1943 | memset(ipencap, 0, sizeof(*ipencap)); |
| 1944 | |
| 1945 | if (!data) |
| 1946 | return ret; |
| 1947 | |
| 1948 | if (data[IFLA_IPTUN_ENCAP_TYPE]) { |
| 1949 | ret = true; |
| 1950 | ipencap->type = nla_get_u16(data[IFLA_IPTUN_ENCAP_TYPE]); |
| 1951 | } |
| 1952 | |
| 1953 | if (data[IFLA_IPTUN_ENCAP_FLAGS]) { |
| 1954 | ret = true; |
| 1955 | ipencap->flags = nla_get_u16(data[IFLA_IPTUN_ENCAP_FLAGS]); |
| 1956 | } |
| 1957 | |
| 1958 | if (data[IFLA_IPTUN_ENCAP_SPORT]) { |
| 1959 | ret = true; |
| 1960 | ipencap->sport = nla_get_be16(data[IFLA_IPTUN_ENCAP_SPORT]); |
| 1961 | } |
| 1962 | |
| 1963 | if (data[IFLA_IPTUN_ENCAP_DPORT]) { |
| 1964 | ret = true; |
| 1965 | ipencap->dport = nla_get_be16(data[IFLA_IPTUN_ENCAP_DPORT]); |
| 1966 | } |
| 1967 | |
| 1968 | return ret; |
| 1969 | } |
| 1970 | |
Nicolas Dichtel | 0b11245 | 2012-11-14 05:14:00 +0000 | [diff] [blame] | 1971 | static int ip6_tnl_newlink(struct net *src_net, struct net_device *dev, |
| 1972 | struct nlattr *tb[], struct nlattr *data[]) |
| 1973 | { |
| 1974 | struct net *net = dev_net(dev); |
Alexei Starovoitov | 8d79266 | 2016-09-15 13:00:30 -0700 | [diff] [blame] | 1975 | struct ip6_tnl_net *ip6n = net_generic(net, ip6_tnl_net_id); |
Nicolas Dichtel | 3735556 | 2015-03-16 15:56:05 +0100 | [diff] [blame] | 1976 | struct ip6_tnl *nt, *t; |
Tom Herbert | b3a27b5 | 2016-05-18 09:06:20 -0700 | [diff] [blame] | 1977 | struct ip_tunnel_encap ipencap; |
Nicolas Dichtel | 0b11245 | 2012-11-14 05:14:00 +0000 | [diff] [blame] | 1978 | |
| 1979 | nt = netdev_priv(dev); |
Tom Herbert | b3a27b5 | 2016-05-18 09:06:20 -0700 | [diff] [blame] | 1980 | |
| 1981 | if (ip6_tnl_netlink_encap_parms(data, &ipencap)) { |
| 1982 | int err = ip6_tnl_encap_setup(nt, &ipencap); |
| 1983 | |
| 1984 | if (err < 0) |
| 1985 | return err; |
| 1986 | } |
| 1987 | |
Nicolas Dichtel | 0b11245 | 2012-11-14 05:14:00 +0000 | [diff] [blame] | 1988 | ip6_tnl_netlink_parms(data, &nt->parms); |
| 1989 | |
Alexei Starovoitov | 8d79266 | 2016-09-15 13:00:30 -0700 | [diff] [blame] | 1990 | if (nt->parms.collect_md) { |
| 1991 | if (rtnl_dereference(ip6n->collect_md_tun)) |
| 1992 | return -EEXIST; |
| 1993 | } else { |
| 1994 | t = ip6_tnl_locate(net, &nt->parms, 0); |
| 1995 | if (!IS_ERR(t)) |
| 1996 | return -EEXIST; |
| 1997 | } |
Nicolas Dichtel | 0b11245 | 2012-11-14 05:14:00 +0000 | [diff] [blame] | 1998 | |
| 1999 | return ip6_tnl_create2(dev); |
| 2000 | } |
| 2001 | |
| 2002 | static int ip6_tnl_changelink(struct net_device *dev, struct nlattr *tb[], |
| 2003 | struct nlattr *data[]) |
| 2004 | { |
Nicolas Dichtel | 0bd87628 | 2013-08-13 17:51:12 +0200 | [diff] [blame] | 2005 | struct ip6_tnl *t = netdev_priv(dev); |
Nicolas Dichtel | 0b11245 | 2012-11-14 05:14:00 +0000 | [diff] [blame] | 2006 | struct __ip6_tnl_parm p; |
Nicolas Dichtel | 0bd87628 | 2013-08-13 17:51:12 +0200 | [diff] [blame] | 2007 | struct net *net = t->net; |
Nicolas Dichtel | 0b11245 | 2012-11-14 05:14:00 +0000 | [diff] [blame] | 2008 | struct ip6_tnl_net *ip6n = net_generic(net, ip6_tnl_net_id); |
Tom Herbert | b3a27b5 | 2016-05-18 09:06:20 -0700 | [diff] [blame] | 2009 | struct ip_tunnel_encap ipencap; |
Nicolas Dichtel | 0b11245 | 2012-11-14 05:14:00 +0000 | [diff] [blame] | 2010 | |
| 2011 | if (dev == ip6n->fb_tnl_dev) |
| 2012 | return -EINVAL; |
| 2013 | |
Tom Herbert | b3a27b5 | 2016-05-18 09:06:20 -0700 | [diff] [blame] | 2014 | if (ip6_tnl_netlink_encap_parms(data, &ipencap)) { |
| 2015 | int err = ip6_tnl_encap_setup(t, &ipencap); |
| 2016 | |
| 2017 | if (err < 0) |
| 2018 | return err; |
| 2019 | } |
Nicolas Dichtel | 0b11245 | 2012-11-14 05:14:00 +0000 | [diff] [blame] | 2020 | ip6_tnl_netlink_parms(data, &p); |
Alexei Starovoitov | 8d79266 | 2016-09-15 13:00:30 -0700 | [diff] [blame] | 2021 | if (p.collect_md) |
| 2022 | return -EINVAL; |
Nicolas Dichtel | 0b11245 | 2012-11-14 05:14:00 +0000 | [diff] [blame] | 2023 | |
| 2024 | t = ip6_tnl_locate(net, &p, 0); |
Nicolas Dichtel | 3735556 | 2015-03-16 15:56:05 +0100 | [diff] [blame] | 2025 | if (!IS_ERR(t)) { |
Nicolas Dichtel | 0b11245 | 2012-11-14 05:14:00 +0000 | [diff] [blame] | 2026 | if (t->dev != dev) |
| 2027 | return -EEXIST; |
| 2028 | } else |
| 2029 | t = netdev_priv(dev); |
| 2030 | |
| 2031 | return ip6_tnl_update(t, &p); |
| 2032 | } |
| 2033 | |
Nicolas Dichtel | 1e9f3d6 | 2013-11-14 15:47:03 +0100 | [diff] [blame] | 2034 | static void ip6_tnl_dellink(struct net_device *dev, struct list_head *head) |
| 2035 | { |
| 2036 | struct net *net = dev_net(dev); |
| 2037 | struct ip6_tnl_net *ip6n = net_generic(net, ip6_tnl_net_id); |
| 2038 | |
| 2039 | if (dev != ip6n->fb_tnl_dev) |
| 2040 | unregister_netdevice_queue(dev, head); |
| 2041 | } |
| 2042 | |
Nicolas Dichtel | b58d731 | 2012-11-14 05:13:59 +0000 | [diff] [blame] | 2043 | static size_t ip6_tnl_get_size(const struct net_device *dev) |
Nicolas Dichtel | c075b13 | 2012-11-09 06:10:01 +0000 | [diff] [blame] | 2044 | { |
| 2045 | return |
| 2046 | /* IFLA_IPTUN_LINK */ |
| 2047 | nla_total_size(4) + |
| 2048 | /* IFLA_IPTUN_LOCAL */ |
| 2049 | nla_total_size(sizeof(struct in6_addr)) + |
| 2050 | /* IFLA_IPTUN_REMOTE */ |
| 2051 | nla_total_size(sizeof(struct in6_addr)) + |
| 2052 | /* IFLA_IPTUN_TTL */ |
| 2053 | nla_total_size(1) + |
| 2054 | /* IFLA_IPTUN_ENCAP_LIMIT */ |
| 2055 | nla_total_size(1) + |
| 2056 | /* IFLA_IPTUN_FLOWINFO */ |
| 2057 | nla_total_size(4) + |
| 2058 | /* IFLA_IPTUN_FLAGS */ |
| 2059 | nla_total_size(4) + |
Nicolas Dichtel | cfa323b | 2012-11-14 05:13:58 +0000 | [diff] [blame] | 2060 | /* IFLA_IPTUN_PROTO */ |
| 2061 | nla_total_size(1) + |
Tom Herbert | b3a27b5 | 2016-05-18 09:06:20 -0700 | [diff] [blame] | 2062 | /* IFLA_IPTUN_ENCAP_TYPE */ |
| 2063 | nla_total_size(2) + |
| 2064 | /* IFLA_IPTUN_ENCAP_FLAGS */ |
| 2065 | nla_total_size(2) + |
| 2066 | /* IFLA_IPTUN_ENCAP_SPORT */ |
| 2067 | nla_total_size(2) + |
| 2068 | /* IFLA_IPTUN_ENCAP_DPORT */ |
| 2069 | nla_total_size(2) + |
Alexei Starovoitov | 8d79266 | 2016-09-15 13:00:30 -0700 | [diff] [blame] | 2070 | /* IFLA_IPTUN_COLLECT_METADATA */ |
| 2071 | nla_total_size(0) + |
Craig Gallek | 0a473b8 | 2017-04-19 12:30:53 -0400 | [diff] [blame] | 2072 | /* IFLA_IPTUN_FWMARK */ |
| 2073 | nla_total_size(4) + |
Nicolas Dichtel | c075b13 | 2012-11-09 06:10:01 +0000 | [diff] [blame] | 2074 | 0; |
| 2075 | } |
| 2076 | |
Nicolas Dichtel | b58d731 | 2012-11-14 05:13:59 +0000 | [diff] [blame] | 2077 | static int ip6_tnl_fill_info(struct sk_buff *skb, const struct net_device *dev) |
Nicolas Dichtel | c075b13 | 2012-11-09 06:10:01 +0000 | [diff] [blame] | 2078 | { |
| 2079 | struct ip6_tnl *tunnel = netdev_priv(dev); |
| 2080 | struct __ip6_tnl_parm *parm = &tunnel->parms; |
| 2081 | |
| 2082 | if (nla_put_u32(skb, IFLA_IPTUN_LINK, parm->link) || |
Jiri Benc | 930345e | 2015-03-29 16:59:25 +0200 | [diff] [blame] | 2083 | nla_put_in6_addr(skb, IFLA_IPTUN_LOCAL, &parm->laddr) || |
| 2084 | nla_put_in6_addr(skb, IFLA_IPTUN_REMOTE, &parm->raddr) || |
Nicolas Dichtel | c075b13 | 2012-11-09 06:10:01 +0000 | [diff] [blame] | 2085 | nla_put_u8(skb, IFLA_IPTUN_TTL, parm->hop_limit) || |
| 2086 | nla_put_u8(skb, IFLA_IPTUN_ENCAP_LIMIT, parm->encap_limit) || |
| 2087 | nla_put_be32(skb, IFLA_IPTUN_FLOWINFO, parm->flowinfo) || |
Nicolas Dichtel | cfa323b | 2012-11-14 05:13:58 +0000 | [diff] [blame] | 2088 | nla_put_u32(skb, IFLA_IPTUN_FLAGS, parm->flags) || |
Craig Gallek | 0a473b8 | 2017-04-19 12:30:53 -0400 | [diff] [blame] | 2089 | nla_put_u8(skb, IFLA_IPTUN_PROTO, parm->proto) || |
| 2090 | nla_put_u32(skb, IFLA_IPTUN_FWMARK, parm->fwmark)) |
Nicolas Dichtel | c075b13 | 2012-11-09 06:10:01 +0000 | [diff] [blame] | 2091 | goto nla_put_failure; |
Tom Herbert | b3a27b5 | 2016-05-18 09:06:20 -0700 | [diff] [blame] | 2092 | |
Alexei Starovoitov | 8d79266 | 2016-09-15 13:00:30 -0700 | [diff] [blame] | 2093 | if (nla_put_u16(skb, IFLA_IPTUN_ENCAP_TYPE, tunnel->encap.type) || |
| 2094 | nla_put_be16(skb, IFLA_IPTUN_ENCAP_SPORT, tunnel->encap.sport) || |
| 2095 | nla_put_be16(skb, IFLA_IPTUN_ENCAP_DPORT, tunnel->encap.dport) || |
| 2096 | nla_put_u16(skb, IFLA_IPTUN_ENCAP_FLAGS, tunnel->encap.flags)) |
Tom Herbert | b3a27b5 | 2016-05-18 09:06:20 -0700 | [diff] [blame] | 2097 | goto nla_put_failure; |
| 2098 | |
Alexei Starovoitov | 8d79266 | 2016-09-15 13:00:30 -0700 | [diff] [blame] | 2099 | if (parm->collect_md) |
| 2100 | if (nla_put_flag(skb, IFLA_IPTUN_COLLECT_METADATA)) |
| 2101 | goto nla_put_failure; |
Craig Gallek | 0a473b8 | 2017-04-19 12:30:53 -0400 | [diff] [blame] | 2102 | |
Nicolas Dichtel | c075b13 | 2012-11-09 06:10:01 +0000 | [diff] [blame] | 2103 | return 0; |
| 2104 | |
| 2105 | nla_put_failure: |
| 2106 | return -EMSGSIZE; |
| 2107 | } |
| 2108 | |
Nicolas Dichtel | 1728d4f | 2015-01-15 15:11:17 +0100 | [diff] [blame] | 2109 | struct net *ip6_tnl_get_link_net(const struct net_device *dev) |
| 2110 | { |
| 2111 | struct ip6_tnl *tunnel = netdev_priv(dev); |
| 2112 | |
| 2113 | return tunnel->net; |
| 2114 | } |
| 2115 | EXPORT_SYMBOL(ip6_tnl_get_link_net); |
| 2116 | |
Nicolas Dichtel | 0b11245 | 2012-11-14 05:14:00 +0000 | [diff] [blame] | 2117 | static const struct nla_policy ip6_tnl_policy[IFLA_IPTUN_MAX + 1] = { |
| 2118 | [IFLA_IPTUN_LINK] = { .type = NLA_U32 }, |
| 2119 | [IFLA_IPTUN_LOCAL] = { .len = sizeof(struct in6_addr) }, |
| 2120 | [IFLA_IPTUN_REMOTE] = { .len = sizeof(struct in6_addr) }, |
| 2121 | [IFLA_IPTUN_TTL] = { .type = NLA_U8 }, |
| 2122 | [IFLA_IPTUN_ENCAP_LIMIT] = { .type = NLA_U8 }, |
| 2123 | [IFLA_IPTUN_FLOWINFO] = { .type = NLA_U32 }, |
| 2124 | [IFLA_IPTUN_FLAGS] = { .type = NLA_U32 }, |
| 2125 | [IFLA_IPTUN_PROTO] = { .type = NLA_U8 }, |
Tom Herbert | b3a27b5 | 2016-05-18 09:06:20 -0700 | [diff] [blame] | 2126 | [IFLA_IPTUN_ENCAP_TYPE] = { .type = NLA_U16 }, |
| 2127 | [IFLA_IPTUN_ENCAP_FLAGS] = { .type = NLA_U16 }, |
| 2128 | [IFLA_IPTUN_ENCAP_SPORT] = { .type = NLA_U16 }, |
| 2129 | [IFLA_IPTUN_ENCAP_DPORT] = { .type = NLA_U16 }, |
Alexei Starovoitov | 8d79266 | 2016-09-15 13:00:30 -0700 | [diff] [blame] | 2130 | [IFLA_IPTUN_COLLECT_METADATA] = { .type = NLA_FLAG }, |
Craig Gallek | 0a473b8 | 2017-04-19 12:30:53 -0400 | [diff] [blame] | 2131 | [IFLA_IPTUN_FWMARK] = { .type = NLA_U32 }, |
Nicolas Dichtel | 0b11245 | 2012-11-14 05:14:00 +0000 | [diff] [blame] | 2132 | }; |
| 2133 | |
Nicolas Dichtel | c075b13 | 2012-11-09 06:10:01 +0000 | [diff] [blame] | 2134 | static struct rtnl_link_ops ip6_link_ops __read_mostly = { |
| 2135 | .kind = "ip6tnl", |
| 2136 | .maxtype = IFLA_IPTUN_MAX, |
Nicolas Dichtel | 0b11245 | 2012-11-14 05:14:00 +0000 | [diff] [blame] | 2137 | .policy = ip6_tnl_policy, |
Nicolas Dichtel | c075b13 | 2012-11-09 06:10:01 +0000 | [diff] [blame] | 2138 | .priv_size = sizeof(struct ip6_tnl), |
Nicolas Dichtel | 0b11245 | 2012-11-14 05:14:00 +0000 | [diff] [blame] | 2139 | .setup = ip6_tnl_dev_setup, |
| 2140 | .validate = ip6_tnl_validate, |
| 2141 | .newlink = ip6_tnl_newlink, |
| 2142 | .changelink = ip6_tnl_changelink, |
Nicolas Dichtel | 1e9f3d6 | 2013-11-14 15:47:03 +0100 | [diff] [blame] | 2143 | .dellink = ip6_tnl_dellink, |
Nicolas Dichtel | b58d731 | 2012-11-14 05:13:59 +0000 | [diff] [blame] | 2144 | .get_size = ip6_tnl_get_size, |
| 2145 | .fill_info = ip6_tnl_fill_info, |
Nicolas Dichtel | 1728d4f | 2015-01-15 15:11:17 +0100 | [diff] [blame] | 2146 | .get_link_net = ip6_tnl_get_link_net, |
Nicolas Dichtel | c075b13 | 2012-11-09 06:10:01 +0000 | [diff] [blame] | 2147 | }; |
| 2148 | |
Eric Dumazet | 3ff2cfa | 2010-08-30 10:27:10 +0000 | [diff] [blame] | 2149 | static struct xfrm6_tunnel ip4ip6_handler __read_mostly = { |
Yasuyuki Kozakai | c4d3efa | 2007-02-15 00:43:16 +0900 | [diff] [blame] | 2150 | .handler = ip4ip6_rcv, |
| 2151 | .err_handler = ip4ip6_err, |
| 2152 | .priority = 1, |
| 2153 | }; |
| 2154 | |
Eric Dumazet | 3ff2cfa | 2010-08-30 10:27:10 +0000 | [diff] [blame] | 2155 | static struct xfrm6_tunnel ip6ip6_handler __read_mostly = { |
Patrick McHardy | 0303770 | 2005-07-19 14:03:34 -0700 | [diff] [blame] | 2156 | .handler = ip6ip6_rcv, |
| 2157 | .err_handler = ip6ip6_err, |
Herbert Xu | d2acc34 | 2006-03-28 01:12:13 -0800 | [diff] [blame] | 2158 | .priority = 1, |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 2159 | }; |
| 2160 | |
Nicolas Dichtel | 1e9f3d6 | 2013-11-14 15:47:03 +0100 | [diff] [blame] | 2161 | static void __net_exit ip6_tnl_destroy_tunnels(struct net *net) |
Pavel Emelyanov | 3e6c9fb | 2008-04-16 01:23:22 -0700 | [diff] [blame] | 2162 | { |
Nicolas Dichtel | 1e9f3d6 | 2013-11-14 15:47:03 +0100 | [diff] [blame] | 2163 | struct ip6_tnl_net *ip6n = net_generic(net, ip6_tnl_net_id); |
Nicolas Dichtel | 0bd87628 | 2013-08-13 17:51:12 +0200 | [diff] [blame] | 2164 | struct net_device *dev, *aux; |
Pavel Emelyanov | 3e6c9fb | 2008-04-16 01:23:22 -0700 | [diff] [blame] | 2165 | int h; |
| 2166 | struct ip6_tnl *t; |
Eric Dumazet | cf4432f | 2009-10-28 05:16:51 +0000 | [diff] [blame] | 2167 | LIST_HEAD(list); |
Pavel Emelyanov | 3e6c9fb | 2008-04-16 01:23:22 -0700 | [diff] [blame] | 2168 | |
Nicolas Dichtel | 0bd87628 | 2013-08-13 17:51:12 +0200 | [diff] [blame] | 2169 | for_each_netdev_safe(net, dev, aux) |
| 2170 | if (dev->rtnl_link_ops == &ip6_link_ops) |
| 2171 | unregister_netdevice_queue(dev, &list); |
| 2172 | |
Jiri Kosina | e87a8f2 | 2016-08-10 11:03:35 +0200 | [diff] [blame] | 2173 | for (h = 0; h < IP6_TUNNEL_HASH_SIZE; h++) { |
Eric Dumazet | 9476763 | 2010-09-15 20:25:34 +0000 | [diff] [blame] | 2174 | t = rtnl_dereference(ip6n->tnls_r_l[h]); |
Ian Morris | 53b24b8 | 2015-03-29 14:00:05 +0100 | [diff] [blame] | 2175 | while (t) { |
Nicolas Dichtel | 0bd87628 | 2013-08-13 17:51:12 +0200 | [diff] [blame] | 2176 | /* If dev is in the same netns, it has already |
| 2177 | * been added to the list by the previous loop. |
| 2178 | */ |
| 2179 | if (!net_eq(dev_net(t->dev), net)) |
| 2180 | unregister_netdevice_queue(t->dev, &list); |
Eric Dumazet | 9476763 | 2010-09-15 20:25:34 +0000 | [diff] [blame] | 2181 | t = rtnl_dereference(t->next); |
Eric Dumazet | cf4432f | 2009-10-28 05:16:51 +0000 | [diff] [blame] | 2182 | } |
Pavel Emelyanov | 3e6c9fb | 2008-04-16 01:23:22 -0700 | [diff] [blame] | 2183 | } |
| 2184 | |
Eric Dumazet | cf4432f | 2009-10-28 05:16:51 +0000 | [diff] [blame] | 2185 | unregister_netdevice_many(&list); |
Pavel Emelyanov | 3e6c9fb | 2008-04-16 01:23:22 -0700 | [diff] [blame] | 2186 | } |
| 2187 | |
Alexey Dobriyan | 2c8c1e7 | 2010-01-17 03:35:32 +0000 | [diff] [blame] | 2188 | static int __net_init ip6_tnl_init_net(struct net *net) |
Pavel Emelyanov | 13eeb8e | 2008-04-16 01:22:02 -0700 | [diff] [blame] | 2189 | { |
Eric W. Biederman | ac31cd3 | 2009-11-29 15:46:15 +0000 | [diff] [blame] | 2190 | struct ip6_tnl_net *ip6n = net_generic(net, ip6_tnl_net_id); |
Josh Boyer | 731abb9 | 2011-11-10 15:10:23 +0000 | [diff] [blame] | 2191 | struct ip6_tnl *t = NULL; |
Pavel Emelyanov | 13eeb8e | 2008-04-16 01:22:02 -0700 | [diff] [blame] | 2192 | int err; |
Pavel Emelyanov | 13eeb8e | 2008-04-16 01:22:02 -0700 | [diff] [blame] | 2193 | |
Pavel Emelyanov | 3e6c9fb | 2008-04-16 01:23:22 -0700 | [diff] [blame] | 2194 | ip6n->tnls[0] = ip6n->tnls_wc; |
| 2195 | ip6n->tnls[1] = ip6n->tnls_r_l; |
| 2196 | |
Pavel Emelyanov | 15820e129 | 2008-04-16 01:23:02 -0700 | [diff] [blame] | 2197 | err = -ENOMEM; |
| 2198 | ip6n->fb_tnl_dev = alloc_netdev(sizeof(struct ip6_tnl), "ip6tnl0", |
Tom Gundersen | c835a67 | 2014-07-14 16:37:24 +0200 | [diff] [blame] | 2199 | NET_NAME_UNKNOWN, ip6_tnl_dev_setup); |
Pavel Emelyanov | 15820e129 | 2008-04-16 01:23:02 -0700 | [diff] [blame] | 2200 | |
| 2201 | if (!ip6n->fb_tnl_dev) |
| 2202 | goto err_alloc_dev; |
Alexey Dobriyan | be77e59 | 2008-11-23 17:26:26 -0800 | [diff] [blame] | 2203 | dev_net_set(ip6n->fb_tnl_dev, net); |
Nicolas Dichtel | bb81409 | 2013-10-01 18:05:00 +0200 | [diff] [blame] | 2204 | ip6n->fb_tnl_dev->rtnl_link_ops = &ip6_link_ops; |
Nicolas Dichtel | 0bd87628 | 2013-08-13 17:51:12 +0200 | [diff] [blame] | 2205 | /* FB netdevice is special: we have one, and only one per netns. |
| 2206 | * Allowing to move it to another netns is clearly unsafe. |
| 2207 | */ |
| 2208 | ip6n->fb_tnl_dev->features |= NETIF_F_NETNS_LOCAL; |
Pavel Emelyanov | 15820e129 | 2008-04-16 01:23:02 -0700 | [diff] [blame] | 2209 | |
Eric Dumazet | 8560f22 | 2010-09-28 03:23:34 +0000 | [diff] [blame] | 2210 | err = ip6_fb_tnl_dev_init(ip6n->fb_tnl_dev); |
| 2211 | if (err < 0) |
| 2212 | goto err_register; |
Pavel Emelyanov | 15820e129 | 2008-04-16 01:23:02 -0700 | [diff] [blame] | 2213 | |
| 2214 | err = register_netdev(ip6n->fb_tnl_dev); |
| 2215 | if (err < 0) |
| 2216 | goto err_register; |
Josh Boyer | 731abb9 | 2011-11-10 15:10:23 +0000 | [diff] [blame] | 2217 | |
| 2218 | t = netdev_priv(ip6n->fb_tnl_dev); |
| 2219 | |
| 2220 | strcpy(t->parms.name, ip6n->fb_tnl_dev->name); |
Pavel Emelyanov | 13eeb8e | 2008-04-16 01:22:02 -0700 | [diff] [blame] | 2221 | return 0; |
| 2222 | |
Pavel Emelyanov | 15820e129 | 2008-04-16 01:23:02 -0700 | [diff] [blame] | 2223 | err_register: |
Eric Dumazet | 8560f22 | 2010-09-28 03:23:34 +0000 | [diff] [blame] | 2224 | ip6_dev_free(ip6n->fb_tnl_dev); |
Pavel Emelyanov | 15820e129 | 2008-04-16 01:23:02 -0700 | [diff] [blame] | 2225 | err_alloc_dev: |
Pavel Emelyanov | 13eeb8e | 2008-04-16 01:22:02 -0700 | [diff] [blame] | 2226 | return err; |
| 2227 | } |
| 2228 | |
Alexey Dobriyan | 2c8c1e7 | 2010-01-17 03:35:32 +0000 | [diff] [blame] | 2229 | static void __net_exit ip6_tnl_exit_net(struct net *net) |
Pavel Emelyanov | 13eeb8e | 2008-04-16 01:22:02 -0700 | [diff] [blame] | 2230 | { |
Pavel Emelyanov | 3e6c9fb | 2008-04-16 01:23:22 -0700 | [diff] [blame] | 2231 | rtnl_lock(); |
Nicolas Dichtel | 1e9f3d6 | 2013-11-14 15:47:03 +0100 | [diff] [blame] | 2232 | ip6_tnl_destroy_tunnels(net); |
Pavel Emelyanov | 3e6c9fb | 2008-04-16 01:23:22 -0700 | [diff] [blame] | 2233 | rtnl_unlock(); |
Pavel Emelyanov | 13eeb8e | 2008-04-16 01:22:02 -0700 | [diff] [blame] | 2234 | } |
| 2235 | |
| 2236 | static struct pernet_operations ip6_tnl_net_ops = { |
| 2237 | .init = ip6_tnl_init_net, |
| 2238 | .exit = ip6_tnl_exit_net, |
Eric W. Biederman | ac31cd3 | 2009-11-29 15:46:15 +0000 | [diff] [blame] | 2239 | .id = &ip6_tnl_net_id, |
| 2240 | .size = sizeof(struct ip6_tnl_net), |
Pavel Emelyanov | 13eeb8e | 2008-04-16 01:22:02 -0700 | [diff] [blame] | 2241 | }; |
| 2242 | |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 2243 | /** |
| 2244 | * ip6_tunnel_init - register protocol and reserve needed resources |
| 2245 | * |
| 2246 | * Return: 0 on success |
| 2247 | **/ |
| 2248 | |
| 2249 | static int __init ip6_tunnel_init(void) |
| 2250 | { |
| 2251 | int err; |
| 2252 | |
Eric W. Biederman | ac31cd3 | 2009-11-29 15:46:15 +0000 | [diff] [blame] | 2253 | err = register_pernet_device(&ip6_tnl_net_ops); |
Pavel Emelyanov | 13eeb8e | 2008-04-16 01:22:02 -0700 | [diff] [blame] | 2254 | if (err < 0) |
Alexey Dobriyan | d5aa407 | 2010-02-16 09:05:04 +0000 | [diff] [blame] | 2255 | goto out_pernet; |
| 2256 | |
| 2257 | err = xfrm6_tunnel_register(&ip4ip6_handler, AF_INET); |
| 2258 | if (err < 0) { |
Joe Perches | f321383 | 2012-05-15 14:11:53 +0000 | [diff] [blame] | 2259 | pr_err("%s: can't register ip4ip6\n", __func__); |
Alexey Dobriyan | d5aa407 | 2010-02-16 09:05:04 +0000 | [diff] [blame] | 2260 | goto out_ip4ip6; |
| 2261 | } |
| 2262 | |
| 2263 | err = xfrm6_tunnel_register(&ip6ip6_handler, AF_INET6); |
| 2264 | if (err < 0) { |
Joe Perches | f321383 | 2012-05-15 14:11:53 +0000 | [diff] [blame] | 2265 | pr_err("%s: can't register ip6ip6\n", __func__); |
Alexey Dobriyan | d5aa407 | 2010-02-16 09:05:04 +0000 | [diff] [blame] | 2266 | goto out_ip6ip6; |
| 2267 | } |
Nicolas Dichtel | c075b13 | 2012-11-09 06:10:01 +0000 | [diff] [blame] | 2268 | err = rtnl_link_register(&ip6_link_ops); |
| 2269 | if (err < 0) |
| 2270 | goto rtnl_link_failed; |
Alexey Dobriyan | d5aa407 | 2010-02-16 09:05:04 +0000 | [diff] [blame] | 2271 | |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 2272 | return 0; |
Alexey Dobriyan | d5aa407 | 2010-02-16 09:05:04 +0000 | [diff] [blame] | 2273 | |
Nicolas Dichtel | c075b13 | 2012-11-09 06:10:01 +0000 | [diff] [blame] | 2274 | rtnl_link_failed: |
| 2275 | xfrm6_tunnel_deregister(&ip6ip6_handler, AF_INET6); |
Alexey Dobriyan | d5aa407 | 2010-02-16 09:05:04 +0000 | [diff] [blame] | 2276 | out_ip6ip6: |
Yasuyuki Kozakai | c4d3efa | 2007-02-15 00:43:16 +0900 | [diff] [blame] | 2277 | xfrm6_tunnel_deregister(&ip4ip6_handler, AF_INET); |
Alexey Dobriyan | d5aa407 | 2010-02-16 09:05:04 +0000 | [diff] [blame] | 2278 | out_ip4ip6: |
| 2279 | unregister_pernet_device(&ip6_tnl_net_ops); |
| 2280 | out_pernet: |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 2281 | return err; |
| 2282 | } |
| 2283 | |
| 2284 | /** |
| 2285 | * ip6_tunnel_cleanup - free resources and unregister protocol |
| 2286 | **/ |
| 2287 | |
| 2288 | static void __exit ip6_tunnel_cleanup(void) |
| 2289 | { |
Nicolas Dichtel | c075b13 | 2012-11-09 06:10:01 +0000 | [diff] [blame] | 2290 | rtnl_link_unregister(&ip6_link_ops); |
Yasuyuki Kozakai | c4d3efa | 2007-02-15 00:43:16 +0900 | [diff] [blame] | 2291 | if (xfrm6_tunnel_deregister(&ip4ip6_handler, AF_INET)) |
Joe Perches | f321383 | 2012-05-15 14:11:53 +0000 | [diff] [blame] | 2292 | pr_info("%s: can't deregister ip4ip6\n", __func__); |
Yasuyuki Kozakai | c4d3efa | 2007-02-15 00:43:16 +0900 | [diff] [blame] | 2293 | |
Kazunori MIYAZAWA | 73d605d | 2007-02-13 12:55:55 -0800 | [diff] [blame] | 2294 | if (xfrm6_tunnel_deregister(&ip6ip6_handler, AF_INET6)) |
Joe Perches | f321383 | 2012-05-15 14:11:53 +0000 | [diff] [blame] | 2295 | pr_info("%s: can't deregister ip6ip6\n", __func__); |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 2296 | |
Eric W. Biederman | ac31cd3 | 2009-11-29 15:46:15 +0000 | [diff] [blame] | 2297 | unregister_pernet_device(&ip6_tnl_net_ops); |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 2298 | } |
| 2299 | |
| 2300 | module_init(ip6_tunnel_init); |
| 2301 | module_exit(ip6_tunnel_cleanup); |