blob: 64d94afa427f81fd7a505b1cfd1c0be66c273810 [file] [log] [blame]
Linus Torvalds1da177e2005-04-16 15:20:36 -07001/*
2 * TCP over IPv6
YOSHIFUJI Hideaki1ab14572007-02-09 23:24:49 +09003 * Linux INET6 implementation
Linus Torvalds1da177e2005-04-16 15:20:36 -07004 *
5 * Authors:
YOSHIFUJI Hideaki1ab14572007-02-09 23:24:49 +09006 * Pedro Roque <roque@di.fc.ul.pt>
Linus Torvalds1da177e2005-04-16 15:20:36 -07007 *
YOSHIFUJI Hideaki1ab14572007-02-09 23:24:49 +09008 * Based on:
Linus Torvalds1da177e2005-04-16 15:20:36 -07009 * linux/net/ipv4/tcp.c
10 * linux/net/ipv4/tcp_input.c
11 * linux/net/ipv4/tcp_output.c
12 *
13 * Fixes:
14 * Hideaki YOSHIFUJI : sin6_scope_id support
15 * YOSHIFUJI Hideaki @USAGI and: Support IPV6_V6ONLY socket option, which
16 * Alexey Kuznetsov allow both IPv4 and IPv6 sockets to bind
17 * a single port at the same time.
18 * YOSHIFUJI Hideaki @USAGI: convert /proc/net/tcp6 to seq_file.
19 *
20 * This program is free software; you can redistribute it and/or
21 * modify it under the terms of the GNU General Public License
22 * as published by the Free Software Foundation; either version
23 * 2 of the License, or (at your option) any later version.
24 */
25
Herbert Xueb4dea52008-12-29 23:04:08 -080026#include <linux/bottom_half.h>
Linus Torvalds1da177e2005-04-16 15:20:36 -070027#include <linux/module.h>
Linus Torvalds1da177e2005-04-16 15:20:36 -070028#include <linux/errno.h>
29#include <linux/types.h>
30#include <linux/socket.h>
31#include <linux/sockios.h>
32#include <linux/net.h>
33#include <linux/jiffies.h>
34#include <linux/in.h>
35#include <linux/in6.h>
36#include <linux/netdevice.h>
37#include <linux/init.h>
38#include <linux/jhash.h>
39#include <linux/ipsec.h>
40#include <linux/times.h>
Tejun Heo5a0e3ad2010-03-24 17:04:11 +090041#include <linux/slab.h>
Wang Yufen4aa956d2014-03-29 09:27:29 +080042#include <linux/uaccess.h>
Linus Torvalds1da177e2005-04-16 15:20:36 -070043#include <linux/ipv6.h>
44#include <linux/icmpv6.h>
45#include <linux/random.h>
46
47#include <net/tcp.h>
48#include <net/ndisc.h>
Arnaldo Carvalho de Melo5324a042005-08-12 09:26:18 -030049#include <net/inet6_hashtables.h>
Arnaldo Carvalho de Melo81297652005-12-13 23:15:24 -080050#include <net/inet6_connection_sock.h>
Linus Torvalds1da177e2005-04-16 15:20:36 -070051#include <net/ipv6.h>
52#include <net/transp_v6.h>
53#include <net/addrconf.h>
54#include <net/ip6_route.h>
55#include <net/ip6_checksum.h>
56#include <net/inet_ecn.h>
57#include <net/protocol.h>
58#include <net/xfrm.h>
Linus Torvalds1da177e2005-04-16 15:20:36 -070059#include <net/snmp.h>
60#include <net/dsfield.h>
Arnaldo Carvalho de Melo6d6ee432005-12-13 23:25:19 -080061#include <net/timewait_sock.h>
Denis V. Lunev3d58b5f2008-04-03 14:22:32 -070062#include <net/inet_common.h>
David S. Miller6e5714e2011-08-03 20:50:44 -070063#include <net/secure_seq.h>
Eliezer Tamir076bb0c2013-07-10 17:13:17 +030064#include <net/busy_poll.h>
Linus Torvalds1da177e2005-04-16 15:20:36 -070065
Linus Torvalds1da177e2005-04-16 15:20:36 -070066#include <linux/proc_fs.h>
67#include <linux/seq_file.h>
68
Herbert Xucf80e0e2016-01-24 21:20:23 +080069#include <crypto/hash.h>
YOSHIFUJI Hideakicfb6eeb2006-11-14 19:07:45 -080070#include <linux/scatterlist.h>
71
Eric Dumazeta00e7442015-09-29 07:42:39 -070072static void tcp_v6_send_reset(const struct sock *sk, struct sk_buff *skb);
73static void tcp_v6_reqsk_send_ack(const struct sock *sk, struct sk_buff *skb,
Gui Jianfeng6edafaa2008-08-06 23:50:04 -070074 struct request_sock *req);
Linus Torvalds1da177e2005-04-16 15:20:36 -070075
76static int tcp_v6_do_rcv(struct sock *sk, struct sk_buff *skb);
Linus Torvalds1da177e2005-04-16 15:20:36 -070077
Stephen Hemminger3b401a82009-09-01 19:25:04 +000078static const struct inet_connection_sock_af_ops ipv6_mapped;
79static const struct inet_connection_sock_af_ops ipv6_specific;
David S. Millera9286302006-11-14 19:53:22 -080080#ifdef CONFIG_TCP_MD5SIG
Stephen Hemmingerb2e4b3d2009-09-01 19:25:03 +000081static const struct tcp_sock_af_ops tcp_sock_ipv6_specific;
82static const struct tcp_sock_af_ops tcp_sock_ipv6_mapped_specific;
YOSHIFUJI Hideaki9501f972008-04-18 12:45:16 +090083#else
Eric Dumazet51723932015-09-29 21:24:05 -070084static struct tcp_md5sig_key *tcp_v6_md5_do_lookup(const struct sock *sk,
Eric Dumazetb71d1d42011-04-22 04:53:02 +000085 const struct in6_addr *addr)
YOSHIFUJI Hideaki9501f972008-04-18 12:45:16 +090086{
87 return NULL;
88}
David S. Millera9286302006-11-14 19:53:22 -080089#endif
Linus Torvalds1da177e2005-04-16 15:20:36 -070090
Neal Cardwellfae6ef82012-08-19 03:30:38 +000091static void inet6_sk_rx_dst_set(struct sock *sk, const struct sk_buff *skb)
92{
93 struct dst_entry *dst = skb_dst(skb);
Neal Cardwellfae6ef82012-08-19 03:30:38 +000094
Eric Dumazet5037e9e2015-12-14 14:08:53 -080095 if (dst && dst_hold_safe(dst)) {
Eric Dumazetca777ef2014-09-08 08:06:07 -070096 const struct rt6_info *rt = (const struct rt6_info *)dst;
97
Eric Dumazetca777ef2014-09-08 08:06:07 -070098 sk->sk_rx_dst = dst;
99 inet_sk(sk)->rx_dst_ifindex = skb->skb_iif;
Martin KaFai Laub197df42015-05-22 20:56:01 -0700100 inet6_sk(sk)->rx_dst_cookie = rt6_get_cookie(rt);
Eric Dumazetca777ef2014-09-08 08:06:07 -0700101 }
Neal Cardwellfae6ef82012-08-19 03:30:38 +0000102}
103
Eric Dumazet84b114b2017-05-05 06:56:54 -0700104static u32 tcp_v6_init_seq(const struct sk_buff *skb)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700105{
Eric Dumazet84b114b2017-05-05 06:56:54 -0700106 return secure_tcpv6_seq(ipv6_hdr(skb)->daddr.s6_addr32,
107 ipv6_hdr(skb)->saddr.s6_addr32,
108 tcp_hdr(skb)->dest,
109 tcp_hdr(skb)->source);
110}
111
Eric Dumazet5d2ed052017-06-07 10:34:39 -0700112static u32 tcp_v6_init_ts_off(const struct net *net, const struct sk_buff *skb)
Eric Dumazet84b114b2017-05-05 06:56:54 -0700113{
Eric Dumazet5d2ed052017-06-07 10:34:39 -0700114 return secure_tcpv6_ts_off(net, ipv6_hdr(skb)->daddr.s6_addr32,
Eric Dumazet84b114b2017-05-05 06:56:54 -0700115 ipv6_hdr(skb)->saddr.s6_addr32);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700116}
117
YOSHIFUJI Hideaki1ab14572007-02-09 23:24:49 +0900118static int tcp_v6_connect(struct sock *sk, struct sockaddr *uaddr,
Linus Torvalds1da177e2005-04-16 15:20:36 -0700119 int addr_len)
120{
121 struct sockaddr_in6 *usin = (struct sockaddr_in6 *) uaddr;
YOSHIFUJI Hideaki1ab14572007-02-09 23:24:49 +0900122 struct inet_sock *inet = inet_sk(sk);
Arnaldo Carvalho de Melod83d8462005-12-13 23:26:10 -0800123 struct inet_connection_sock *icsk = inet_csk(sk);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700124 struct ipv6_pinfo *np = inet6_sk(sk);
125 struct tcp_sock *tp = tcp_sk(sk);
Arnaud Ebalard20c59de2010-06-01 21:35:01 +0000126 struct in6_addr *saddr = NULL, *final_p, final;
Eric Dumazet45f6fad2015-11-29 19:37:57 -0800127 struct ipv6_txoptions *opt;
David S. Miller4c9483b2011-03-12 16:22:43 -0500128 struct flowi6 fl6;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700129 struct dst_entry *dst;
130 int addr_type;
131 int err;
Haishuang Yan1946e672016-12-28 17:52:32 +0800132 struct inet_timewait_death_row *tcp_death_row = &sock_net(sk)->ipv4.tcp_death_row;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700133
YOSHIFUJI Hideaki1ab14572007-02-09 23:24:49 +0900134 if (addr_len < SIN6_LEN_RFC2133)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700135 return -EINVAL;
136
YOSHIFUJI Hideaki1ab14572007-02-09 23:24:49 +0900137 if (usin->sin6_family != AF_INET6)
Eric Dumazeta02cec22010-09-22 20:43:57 +0000138 return -EAFNOSUPPORT;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700139
David S. Miller4c9483b2011-03-12 16:22:43 -0500140 memset(&fl6, 0, sizeof(fl6));
Linus Torvalds1da177e2005-04-16 15:20:36 -0700141
142 if (np->sndflow) {
David S. Miller4c9483b2011-03-12 16:22:43 -0500143 fl6.flowlabel = usin->sin6_flowinfo&IPV6_FLOWINFO_MASK;
144 IP6_ECN_flow_init(fl6.flowlabel);
145 if (fl6.flowlabel&IPV6_FLOWLABEL_MASK) {
Linus Torvalds1da177e2005-04-16 15:20:36 -0700146 struct ip6_flowlabel *flowlabel;
David S. Miller4c9483b2011-03-12 16:22:43 -0500147 flowlabel = fl6_sock_lookup(sk, fl6.flowlabel);
Ian Morris63159f22015-03-29 14:00:04 +0100148 if (!flowlabel)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700149 return -EINVAL;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700150 fl6_sock_release(flowlabel);
151 }
152 }
153
154 /*
YOSHIFUJI Hideaki1ab14572007-02-09 23:24:49 +0900155 * connect() to INADDR_ANY means loopback (BSD'ism).
156 */
157
Jonathan T. Leighton052d2362017-02-12 17:26:07 -0500158 if (ipv6_addr_any(&usin->sin6_addr)) {
159 if (ipv6_addr_v4mapped(&sk->sk_v6_rcv_saddr))
160 ipv6_addr_set_v4mapped(htonl(INADDR_LOOPBACK),
161 &usin->sin6_addr);
162 else
163 usin->sin6_addr = in6addr_loopback;
164 }
Linus Torvalds1da177e2005-04-16 15:20:36 -0700165
166 addr_type = ipv6_addr_type(&usin->sin6_addr);
167
Weilong Chen4c99aa42013-12-19 18:44:34 +0800168 if (addr_type & IPV6_ADDR_MULTICAST)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700169 return -ENETUNREACH;
170
171 if (addr_type&IPV6_ADDR_LINKLOCAL) {
172 if (addr_len >= sizeof(struct sockaddr_in6) &&
173 usin->sin6_scope_id) {
174 /* If interface is set while binding, indices
175 * must coincide.
176 */
177 if (sk->sk_bound_dev_if &&
178 sk->sk_bound_dev_if != usin->sin6_scope_id)
179 return -EINVAL;
180
181 sk->sk_bound_dev_if = usin->sin6_scope_id;
182 }
183
184 /* Connect to link-local address requires an interface */
185 if (!sk->sk_bound_dev_if)
186 return -EINVAL;
187 }
188
189 if (tp->rx_opt.ts_recent_stamp &&
Eric Dumazetefe42082013-10-03 15:42:29 -0700190 !ipv6_addr_equal(&sk->sk_v6_daddr, &usin->sin6_addr)) {
Linus Torvalds1da177e2005-04-16 15:20:36 -0700191 tp->rx_opt.ts_recent = 0;
192 tp->rx_opt.ts_recent_stamp = 0;
193 tp->write_seq = 0;
194 }
195
Eric Dumazetefe42082013-10-03 15:42:29 -0700196 sk->sk_v6_daddr = usin->sin6_addr;
David S. Miller4c9483b2011-03-12 16:22:43 -0500197 np->flow_label = fl6.flowlabel;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700198
199 /*
200 * TCP over IPv4
201 */
202
Jonathan T. Leighton052d2362017-02-12 17:26:07 -0500203 if (addr_type & IPV6_ADDR_MAPPED) {
Arnaldo Carvalho de Melod83d8462005-12-13 23:26:10 -0800204 u32 exthdrlen = icsk->icsk_ext_hdr_len;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700205 struct sockaddr_in sin;
206
207 SOCK_DEBUG(sk, "connect: ipv4 mapped\n");
208
209 if (__ipv6_only_sock(sk))
210 return -ENETUNREACH;
211
212 sin.sin_family = AF_INET;
213 sin.sin_port = usin->sin6_port;
214 sin.sin_addr.s_addr = usin->sin6_addr.s6_addr32[3];
215
Arnaldo Carvalho de Melod83d8462005-12-13 23:26:10 -0800216 icsk->icsk_af_ops = &ipv6_mapped;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700217 sk->sk_backlog_rcv = tcp_v4_do_rcv;
YOSHIFUJI Hideakicfb6eeb2006-11-14 19:07:45 -0800218#ifdef CONFIG_TCP_MD5SIG
219 tp->af_specific = &tcp_sock_ipv6_mapped_specific;
220#endif
Linus Torvalds1da177e2005-04-16 15:20:36 -0700221
222 err = tcp_v4_connect(sk, (struct sockaddr *)&sin, sizeof(sin));
223
224 if (err) {
Arnaldo Carvalho de Melod83d8462005-12-13 23:26:10 -0800225 icsk->icsk_ext_hdr_len = exthdrlen;
226 icsk->icsk_af_ops = &ipv6_specific;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700227 sk->sk_backlog_rcv = tcp_v6_do_rcv;
YOSHIFUJI Hideakicfb6eeb2006-11-14 19:07:45 -0800228#ifdef CONFIG_TCP_MD5SIG
229 tp->af_specific = &tcp_sock_ipv6_specific;
230#endif
Linus Torvalds1da177e2005-04-16 15:20:36 -0700231 goto failure;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700232 }
Eric Dumazetd1e559d2015-03-18 14:05:35 -0700233 np->saddr = sk->sk_v6_rcv_saddr;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700234
235 return err;
236 }
237
Eric Dumazetefe42082013-10-03 15:42:29 -0700238 if (!ipv6_addr_any(&sk->sk_v6_rcv_saddr))
239 saddr = &sk->sk_v6_rcv_saddr;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700240
David S. Miller4c9483b2011-03-12 16:22:43 -0500241 fl6.flowi6_proto = IPPROTO_TCP;
Eric Dumazetefe42082013-10-03 15:42:29 -0700242 fl6.daddr = sk->sk_v6_daddr;
Alexey Dobriyan4e3fd7a2011-11-21 03:39:03 +0000243 fl6.saddr = saddr ? *saddr : np->saddr;
David S. Miller4c9483b2011-03-12 16:22:43 -0500244 fl6.flowi6_oif = sk->sk_bound_dev_if;
245 fl6.flowi6_mark = sk->sk_mark;
David S. Miller1958b852011-03-12 16:36:19 -0500246 fl6.fl6_dport = usin->sin6_port;
247 fl6.fl6_sport = inet->inet_sport;
Lorenzo Colittie2d118a2016-11-04 02:23:43 +0900248 fl6.flowi6_uid = sk->sk_uid;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700249
Hannes Frederic Sowa1e1d04e2016-04-05 17:10:15 +0200250 opt = rcu_dereference_protected(np->opt, lockdep_sock_is_held(sk));
Eric Dumazet45f6fad2015-11-29 19:37:57 -0800251 final_p = fl6_update_dst(&fl6, opt, &final);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700252
David S. Miller4c9483b2011-03-12 16:22:43 -0500253 security_sk_classify_flow(sk, flowi6_to_flowi(&fl6));
Venkat Yekkiralabeb8d132006-08-04 23:12:42 -0700254
Steffen Klassert0e0d44a2013-08-28 08:04:14 +0200255 dst = ip6_dst_lookup_flow(sk, &fl6, final_p);
David S. Miller68d0c6d2011-03-01 13:19:07 -0800256 if (IS_ERR(dst)) {
257 err = PTR_ERR(dst);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700258 goto failure;
David S. Miller14e50e52007-05-24 18:17:54 -0700259 }
Linus Torvalds1da177e2005-04-16 15:20:36 -0700260
Ian Morris63159f22015-03-29 14:00:04 +0100261 if (!saddr) {
David S. Miller4c9483b2011-03-12 16:22:43 -0500262 saddr = &fl6.saddr;
Eric Dumazetefe42082013-10-03 15:42:29 -0700263 sk->sk_v6_rcv_saddr = *saddr;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700264 }
265
266 /* set the source address */
Alexey Dobriyan4e3fd7a2011-11-21 03:39:03 +0000267 np->saddr = *saddr;
Eric Dumazetc720c7e2009-10-15 06:30:45 +0000268 inet->inet_rcv_saddr = LOOPBACK4_IPV6;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700269
Herbert Xuf83ef8c2006-06-30 13:37:03 -0700270 sk->sk_gso_type = SKB_GSO_TCPV6;
Eric Dumazet6bd4f352015-12-02 21:53:57 -0800271 ip6_dst_store(sk, dst, NULL, NULL);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700272
Arnaldo Carvalho de Melod83d8462005-12-13 23:26:10 -0800273 icsk->icsk_ext_hdr_len = 0;
Eric Dumazet45f6fad2015-11-29 19:37:57 -0800274 if (opt)
275 icsk->icsk_ext_hdr_len = opt->opt_flen +
276 opt->opt_nflen;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700277
278 tp->rx_opt.mss_clamp = IPV6_MIN_MTU - sizeof(struct tcphdr) - sizeof(struct ipv6hdr);
279
Eric Dumazetc720c7e2009-10-15 06:30:45 +0000280 inet->inet_dport = usin->sin6_port;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700281
282 tcp_set_state(sk, TCP_SYN_SENT);
Haishuang Yan1946e672016-12-28 17:52:32 +0800283 err = inet6_hash_connect(tcp_death_row, sk);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700284 if (err)
285 goto late_failure;
286
Tom Herbert877d1f62015-07-28 16:02:05 -0700287 sk_set_txhash(sk);
Sathya Perla9e7ceb02014-10-22 21:42:01 +0530288
Alexey Kodanev00355fa2017-02-22 13:23:55 +0300289 if (likely(!tp->repair)) {
Alexey Kodanev00355fa2017-02-22 13:23:55 +0300290 if (!tp->write_seq)
Eric Dumazet84b114b2017-05-05 06:56:54 -0700291 tp->write_seq = secure_tcpv6_seq(np->saddr.s6_addr32,
292 sk->sk_v6_daddr.s6_addr32,
293 inet->inet_sport,
294 inet->inet_dport);
Eric Dumazet5d2ed052017-06-07 10:34:39 -0700295 tp->tsoffset = secure_tcpv6_ts_off(sock_net(sk),
296 np->saddr.s6_addr32,
Eric Dumazet84b114b2017-05-05 06:56:54 -0700297 sk->sk_v6_daddr.s6_addr32);
Alexey Kodanev00355fa2017-02-22 13:23:55 +0300298 }
Linus Torvalds1da177e2005-04-16 15:20:36 -0700299
Wei Wang19f6d3f2017-01-23 10:59:22 -0800300 if (tcp_fastopen_defer_connect(sk, &err))
301 return err;
302 if (err)
303 goto late_failure;
304
Linus Torvalds1da177e2005-04-16 15:20:36 -0700305 err = tcp_connect(sk);
306 if (err)
307 goto late_failure;
308
309 return 0;
310
311late_failure:
312 tcp_set_state(sk, TCP_CLOSE);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700313failure:
Eric Dumazetc720c7e2009-10-15 06:30:45 +0000314 inet->inet_dport = 0;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700315 sk->sk_route_caps = 0;
316 return err;
317}
318
Eric Dumazet563d34d2012-07-23 09:48:52 +0200319static void tcp_v6_mtu_reduced(struct sock *sk)
320{
321 struct dst_entry *dst;
322
323 if ((1 << sk->sk_state) & (TCPF_LISTEN | TCPF_CLOSE))
324 return;
325
326 dst = inet6_csk_update_pmtu(sk, tcp_sk(sk)->mtu_info);
327 if (!dst)
328 return;
329
330 if (inet_csk(sk)->icsk_pmtu_cookie > dst_mtu(dst)) {
331 tcp_sync_mss(sk, dst_mtu(dst));
332 tcp_simple_retransmit(sk);
333 }
334}
335
Linus Torvalds1da177e2005-04-16 15:20:36 -0700336static void tcp_v6_err(struct sk_buff *skb, struct inet6_skb_parm *opt,
Brian Haleyd5fdd6b2009-06-23 04:31:07 -0700337 u8 type, u8 code, int offset, __be32 info)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700338{
Weilong Chen4c99aa42013-12-19 18:44:34 +0800339 const struct ipv6hdr *hdr = (const struct ipv6hdr *)skb->data;
Arnaldo Carvalho de Melo505cbfc2005-08-12 09:19:38 -0300340 const struct tcphdr *th = (struct tcphdr *)(skb->data+offset);
Eric Dumazet22150892015-03-22 10:22:23 -0700341 struct net *net = dev_net(skb->dev);
342 struct request_sock *fastopen;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700343 struct ipv6_pinfo *np;
Eric Dumazet22150892015-03-22 10:22:23 -0700344 struct tcp_sock *tp;
345 __u32 seq, snd_una;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700346 struct sock *sk;
Eric Dumazet9cf74902016-02-02 19:31:12 -0800347 bool fatal;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700348 int err;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700349
Eric Dumazet22150892015-03-22 10:22:23 -0700350 sk = __inet6_lookup_established(net, &tcp_hashinfo,
351 &hdr->daddr, th->dest,
352 &hdr->saddr, ntohs(th->source),
David Ahern4297a0e2017-08-07 08:44:21 -0700353 skb->dev->ifindex, inet6_sdif(skb));
Linus Torvalds1da177e2005-04-16 15:20:36 -0700354
Eric Dumazet22150892015-03-22 10:22:23 -0700355 if (!sk) {
Eric Dumazeta16292a2016-04-27 16:44:36 -0700356 __ICMP6_INC_STATS(net, __in6_dev_get(skb->dev),
357 ICMP6_MIB_INERRORS);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700358 return;
359 }
360
361 if (sk->sk_state == TCP_TIME_WAIT) {
YOSHIFUJI Hideaki9469c7b2006-10-10 19:41:46 -0700362 inet_twsk_put(inet_twsk(sk));
Linus Torvalds1da177e2005-04-16 15:20:36 -0700363 return;
364 }
Eric Dumazet22150892015-03-22 10:22:23 -0700365 seq = ntohl(th->seq);
Eric Dumazet9cf74902016-02-02 19:31:12 -0800366 fatal = icmpv6_err_convert(type, code, &err);
Eric Dumazet22150892015-03-22 10:22:23 -0700367 if (sk->sk_state == TCP_NEW_SYN_RECV)
Eric Dumazet9cf74902016-02-02 19:31:12 -0800368 return tcp_req_err(sk, seq, fatal);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700369
370 bh_lock_sock(sk);
Eric Dumazet563d34d2012-07-23 09:48:52 +0200371 if (sock_owned_by_user(sk) && type != ICMPV6_PKT_TOOBIG)
Eric Dumazet02a1d6e2016-04-27 16:44:39 -0700372 __NET_INC_STATS(net, LINUX_MIB_LOCKDROPPEDICMPS);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700373
374 if (sk->sk_state == TCP_CLOSE)
375 goto out;
376
Stephen Hemmingere802af92010-04-22 15:24:53 -0700377 if (ipv6_hdr(skb)->hop_limit < inet6_sk(sk)->min_hopcount) {
Eric Dumazet02a1d6e2016-04-27 16:44:39 -0700378 __NET_INC_STATS(net, LINUX_MIB_TCPMINTTLDROP);
Stephen Hemmingere802af92010-04-22 15:24:53 -0700379 goto out;
380 }
381
Linus Torvalds1da177e2005-04-16 15:20:36 -0700382 tp = tcp_sk(sk);
Yuchung Cheng0a672f72014-05-11 20:22:12 -0700383 /* XXX (TFO) - tp->snd_una should be ISN (tcp_create_openreq_child() */
384 fastopen = tp->fastopen_rsk;
385 snd_una = fastopen ? tcp_rsk(fastopen)->snt_isn : tp->snd_una;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700386 if (sk->sk_state != TCP_LISTEN &&
Yuchung Cheng0a672f72014-05-11 20:22:12 -0700387 !between(seq, snd_una, tp->snd_nxt)) {
Eric Dumazet02a1d6e2016-04-27 16:44:39 -0700388 __NET_INC_STATS(net, LINUX_MIB_OUTOFWINDOWICMPS);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700389 goto out;
390 }
391
392 np = inet6_sk(sk);
393
David S. Millerec18d9a2012-07-12 00:25:15 -0700394 if (type == NDISC_REDIRECT) {
Jon Maxwell45caeaa2017-03-10 16:40:33 +1100395 if (!sock_owned_by_user(sk)) {
396 struct dst_entry *dst = __sk_dst_check(sk, np->dst_cookie);
David S. Millerec18d9a2012-07-12 00:25:15 -0700397
Jon Maxwell45caeaa2017-03-10 16:40:33 +1100398 if (dst)
399 dst->ops->redirect(dst, sk, skb);
400 }
Christoph Paasch50a75a82013-04-07 04:53:15 +0000401 goto out;
David S. Millerec18d9a2012-07-12 00:25:15 -0700402 }
403
Linus Torvalds1da177e2005-04-16 15:20:36 -0700404 if (type == ICMPV6_PKT_TOOBIG) {
Eric Dumazet0d4f0602013-03-18 07:01:28 +0000405 /* We are not interested in TCP_LISTEN and open_requests
406 * (SYN-ACKs send out by Linux are always <576bytes so
407 * they should go through unfragmented).
408 */
409 if (sk->sk_state == TCP_LISTEN)
410 goto out;
411
Hannes Frederic Sowa93b36cf2013-12-15 03:41:14 +0100412 if (!ip6_sk_accept_pmtu(sk))
413 goto out;
414
Eric Dumazet563d34d2012-07-23 09:48:52 +0200415 tp->mtu_info = ntohl(info);
416 if (!sock_owned_by_user(sk))
417 tcp_v6_mtu_reduced(sk);
Julian Anastasovd013ef2a2012-09-05 10:53:18 +0000418 else if (!test_and_set_bit(TCP_MTU_REDUCED_DEFERRED,
Eric Dumazet7aa54702016-12-03 11:14:57 -0800419 &sk->sk_tsq_flags))
Julian Anastasovd013ef2a2012-09-05 10:53:18 +0000420 sock_hold(sk);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700421 goto out;
422 }
423
Linus Torvalds1da177e2005-04-16 15:20:36 -0700424
Arnaldo Carvalho de Melo60236fd2005-06-18 22:47:21 -0700425 /* Might be for an request_sock */
Linus Torvalds1da177e2005-04-16 15:20:36 -0700426 switch (sk->sk_state) {
Linus Torvalds1da177e2005-04-16 15:20:36 -0700427 case TCP_SYN_SENT:
Yuchung Cheng0a672f72014-05-11 20:22:12 -0700428 case TCP_SYN_RECV:
429 /* Only in fast or simultaneous open. If a fast open socket is
430 * is already accepted it is treated as a connected one below.
431 */
Ian Morris63159f22015-03-29 14:00:04 +0100432 if (fastopen && !fastopen->sk)
Yuchung Cheng0a672f72014-05-11 20:22:12 -0700433 break;
434
Linus Torvalds1da177e2005-04-16 15:20:36 -0700435 if (!sock_owned_by_user(sk)) {
Linus Torvalds1da177e2005-04-16 15:20:36 -0700436 sk->sk_err = err;
437 sk->sk_error_report(sk); /* Wake people up to see the error (see connect in sock.c) */
438
439 tcp_done(sk);
440 } else
441 sk->sk_err_soft = err;
442 goto out;
443 }
444
445 if (!sock_owned_by_user(sk) && np->recverr) {
446 sk->sk_err = err;
447 sk->sk_error_report(sk);
448 } else
449 sk->sk_err_soft = err;
450
451out:
452 bh_unlock_sock(sk);
453 sock_put(sk);
454}
455
456
Eric Dumazet0f935db2015-09-25 07:39:21 -0700457static int tcp_v6_send_synack(const struct sock *sk, struct dst_entry *dst,
Octavian Purdilad6274bd2014-06-25 17:09:58 +0300458 struct flowi *fl,
Neal Cardwell3840a062012-06-28 12:34:19 +0000459 struct request_sock *req,
Eric Dumazetca6fb062015-10-02 11:43:35 -0700460 struct tcp_fastopen_cookie *foc,
Eric Dumazetb3d05142016-04-13 22:05:39 -0700461 enum tcp_synack_type synack_type)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700462{
Eric Dumazet634fb9792013-10-09 15:21:29 -0700463 struct inet_request_sock *ireq = inet_rsk(req);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700464 struct ipv6_pinfo *np = inet6_sk(sk);
Huw Davies56ac42b2016-06-27 15:05:28 -0400465 struct ipv6_txoptions *opt;
Octavian Purdilad6274bd2014-06-25 17:09:58 +0300466 struct flowi6 *fl6 = &fl->u.ip6;
Weilong Chen4c99aa42013-12-19 18:44:34 +0800467 struct sk_buff *skb;
Neal Cardwell94942182012-06-28 12:34:20 +0000468 int err = -ENOMEM;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700469
Neal Cardwell9f10d3f2012-06-28 12:34:21 +0000470 /* First, grab a route. */
Eric Dumazetf76b33c2015-09-29 07:42:42 -0700471 if (!dst && (dst = inet6_csk_route_req(sk, fl6, req,
472 IPPROTO_TCP)) == NULL)
Denis V. Lunevfd80eb92008-02-29 11:43:03 -0800473 goto done;
Neal Cardwell94942182012-06-28 12:34:20 +0000474
Eric Dumazetb3d05142016-04-13 22:05:39 -0700475 skb = tcp_make_synack(sk, dst, req, foc, synack_type);
Neal Cardwell94942182012-06-28 12:34:20 +0000476
Linus Torvalds1da177e2005-04-16 15:20:36 -0700477 if (skb) {
Eric Dumazet634fb9792013-10-09 15:21:29 -0700478 __tcp_v6_send_check(skb, &ireq->ir_v6_loc_addr,
479 &ireq->ir_v6_rmt_addr);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700480
Eric Dumazet634fb9792013-10-09 15:21:29 -0700481 fl6->daddr = ireq->ir_v6_rmt_addr;
Ian Morris53b24b82015-03-29 14:00:05 +0100482 if (np->repflow && ireq->pktopts)
Florent Fourcotdf3687f2014-01-17 17:15:03 +0100483 fl6->flowlabel = ip6_flowlabel(ipv6_hdr(ireq->pktopts));
484
Eric Dumazet3e4006f2016-01-08 09:35:51 -0800485 rcu_read_lock();
Huw Davies56ac42b2016-06-27 15:05:28 -0400486 opt = ireq->ipv6_opt;
487 if (!opt)
488 opt = rcu_dereference(np->opt);
Pablo Neira92e55f42017-01-26 22:56:21 +0100489 err = ip6_xmit(sk, skb, fl6, sk->sk_mark, opt, np->tclass);
Eric Dumazet3e4006f2016-01-08 09:35:51 -0800490 rcu_read_unlock();
Gerrit Renkerb9df3cb2006-11-14 11:21:36 -0200491 err = net_xmit_eval(err);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700492 }
493
494done:
Linus Torvalds1da177e2005-04-16 15:20:36 -0700495 return err;
496}
497
Octavian Purdila72659ec2010-01-17 19:09:39 -0800498
Arnaldo Carvalho de Melo60236fd2005-06-18 22:47:21 -0700499static void tcp_v6_reqsk_destructor(struct request_sock *req)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700500{
Huw Davies56ac42b2016-06-27 15:05:28 -0400501 kfree(inet_rsk(req)->ipv6_opt);
Eric Dumazet634fb9792013-10-09 15:21:29 -0700502 kfree_skb(inet_rsk(req)->pktopts);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700503}
504
YOSHIFUJI Hideakicfb6eeb2006-11-14 19:07:45 -0800505#ifdef CONFIG_TCP_MD5SIG
Eric Dumazetb83e3de2015-09-25 07:39:15 -0700506static struct tcp_md5sig_key *tcp_v6_md5_do_lookup(const struct sock *sk,
Eric Dumazetb71d1d42011-04-22 04:53:02 +0000507 const struct in6_addr *addr)
YOSHIFUJI Hideakicfb6eeb2006-11-14 19:07:45 -0800508{
Eric Dumazeta915da9b2012-01-31 05:18:33 +0000509 return tcp_md5_do_lookup(sk, (union tcp_md5_addr *)addr, AF_INET6);
YOSHIFUJI Hideakicfb6eeb2006-11-14 19:07:45 -0800510}
511
Eric Dumazetb83e3de2015-09-25 07:39:15 -0700512static struct tcp_md5sig_key *tcp_v6_md5_lookup(const struct sock *sk,
Eric Dumazetfd3a1542015-03-24 15:58:56 -0700513 const struct sock *addr_sk)
YOSHIFUJI Hideakicfb6eeb2006-11-14 19:07:45 -0800514{
Eric Dumazetefe42082013-10-03 15:42:29 -0700515 return tcp_v6_md5_do_lookup(sk, &addr_sk->sk_v6_daddr);
YOSHIFUJI Hideakicfb6eeb2006-11-14 19:07:45 -0800516}
517
Ivan Delalande8917a772017-06-15 18:07:07 -0700518static int tcp_v6_parse_md5_keys(struct sock *sk, int optname,
519 char __user *optval, int optlen)
YOSHIFUJI Hideakicfb6eeb2006-11-14 19:07:45 -0800520{
521 struct tcp_md5sig cmd;
522 struct sockaddr_in6 *sin6 = (struct sockaddr_in6 *)&cmd.tcpm_addr;
Ivan Delalande8917a772017-06-15 18:07:07 -0700523 u8 prefixlen;
YOSHIFUJI Hideakicfb6eeb2006-11-14 19:07:45 -0800524
525 if (optlen < sizeof(cmd))
526 return -EINVAL;
527
528 if (copy_from_user(&cmd, optval, sizeof(cmd)))
529 return -EFAULT;
530
531 if (sin6->sin6_family != AF_INET6)
532 return -EINVAL;
533
Ivan Delalande8917a772017-06-15 18:07:07 -0700534 if (optname == TCP_MD5SIG_EXT &&
535 cmd.tcpm_flags & TCP_MD5SIG_FLAG_PREFIX) {
536 prefixlen = cmd.tcpm_prefixlen;
537 if (prefixlen > 128 || (ipv6_addr_v4mapped(&sin6->sin6_addr) &&
538 prefixlen > 32))
539 return -EINVAL;
540 } else {
541 prefixlen = ipv6_addr_v4mapped(&sin6->sin6_addr) ? 32 : 128;
542 }
543
YOSHIFUJI Hideakicfb6eeb2006-11-14 19:07:45 -0800544 if (!cmd.tcpm_keylen) {
Brian Haleye773e4f2007-08-24 23:16:08 -0700545 if (ipv6_addr_v4mapped(&sin6->sin6_addr))
Eric Dumazeta915da9b2012-01-31 05:18:33 +0000546 return tcp_md5_do_del(sk, (union tcp_md5_addr *)&sin6->sin6_addr.s6_addr32[3],
Ivan Delalande8917a772017-06-15 18:07:07 -0700547 AF_INET, prefixlen);
Eric Dumazeta915da9b2012-01-31 05:18:33 +0000548 return tcp_md5_do_del(sk, (union tcp_md5_addr *)&sin6->sin6_addr,
Ivan Delalande8917a772017-06-15 18:07:07 -0700549 AF_INET6, prefixlen);
YOSHIFUJI Hideakicfb6eeb2006-11-14 19:07:45 -0800550 }
551
552 if (cmd.tcpm_keylen > TCP_MD5SIG_MAXKEYLEN)
553 return -EINVAL;
554
Eric Dumazeta915da9b2012-01-31 05:18:33 +0000555 if (ipv6_addr_v4mapped(&sin6->sin6_addr))
556 return tcp_md5_do_add(sk, (union tcp_md5_addr *)&sin6->sin6_addr.s6_addr32[3],
Ivan Delalande8917a772017-06-15 18:07:07 -0700557 AF_INET, prefixlen, cmd.tcpm_key,
Ivan Delalande67973182017-06-15 18:07:06 -0700558 cmd.tcpm_keylen, GFP_KERNEL);
YOSHIFUJI Hideakicfb6eeb2006-11-14 19:07:45 -0800559
Eric Dumazeta915da9b2012-01-31 05:18:33 +0000560 return tcp_md5_do_add(sk, (union tcp_md5_addr *)&sin6->sin6_addr,
Ivan Delalande8917a772017-06-15 18:07:07 -0700561 AF_INET6, prefixlen, cmd.tcpm_key,
562 cmd.tcpm_keylen, GFP_KERNEL);
YOSHIFUJI Hideakicfb6eeb2006-11-14 19:07:45 -0800563}
564
Eric Dumazet19689e32016-06-27 18:51:53 +0200565static int tcp_v6_md5_hash_headers(struct tcp_md5sig_pool *hp,
566 const struct in6_addr *daddr,
567 const struct in6_addr *saddr,
568 const struct tcphdr *th, int nbytes)
YOSHIFUJI Hideakicfb6eeb2006-11-14 19:07:45 -0800569{
YOSHIFUJI Hideakicfb6eeb2006-11-14 19:07:45 -0800570 struct tcp6_pseudohdr *bp;
Adam Langley49a72df2008-07-19 00:01:42 -0700571 struct scatterlist sg;
Eric Dumazet19689e32016-06-27 18:51:53 +0200572 struct tcphdr *_th;
YOSHIFUJI Hideaki8d26d762008-04-17 13:19:16 +0900573
Eric Dumazet19689e32016-06-27 18:51:53 +0200574 bp = hp->scratch;
YOSHIFUJI Hideakicfb6eeb2006-11-14 19:07:45 -0800575 /* 1. TCP pseudo-header (RFC2460) */
Alexey Dobriyan4e3fd7a2011-11-21 03:39:03 +0000576 bp->saddr = *saddr;
577 bp->daddr = *daddr;
Adam Langley49a72df2008-07-19 00:01:42 -0700578 bp->protocol = cpu_to_be32(IPPROTO_TCP);
Adam Langley00b13042008-07-31 21:36:07 -0700579 bp->len = cpu_to_be32(nbytes);
YOSHIFUJI Hideakicfb6eeb2006-11-14 19:07:45 -0800580
Eric Dumazet19689e32016-06-27 18:51:53 +0200581 _th = (struct tcphdr *)(bp + 1);
582 memcpy(_th, th, sizeof(*th));
583 _th->check = 0;
584
585 sg_init_one(&sg, bp, sizeof(*bp) + sizeof(*th));
586 ahash_request_set_crypt(hp->md5_req, &sg, NULL,
587 sizeof(*bp) + sizeof(*th));
Herbert Xucf80e0e2016-01-24 21:20:23 +0800588 return crypto_ahash_update(hp->md5_req);
Adam Langley49a72df2008-07-19 00:01:42 -0700589}
David S. Millerc7da57a2007-10-26 00:41:21 -0700590
Eric Dumazet19689e32016-06-27 18:51:53 +0200591static int tcp_v6_md5_hash_hdr(char *md5_hash, const struct tcp_md5sig_key *key,
Eric Dumazetb71d1d42011-04-22 04:53:02 +0000592 const struct in6_addr *daddr, struct in6_addr *saddr,
Eric Dumazet318cf7a2011-10-24 02:46:04 -0400593 const struct tcphdr *th)
Adam Langley49a72df2008-07-19 00:01:42 -0700594{
595 struct tcp_md5sig_pool *hp;
Herbert Xucf80e0e2016-01-24 21:20:23 +0800596 struct ahash_request *req;
Adam Langley49a72df2008-07-19 00:01:42 -0700597
598 hp = tcp_get_md5sig_pool();
599 if (!hp)
600 goto clear_hash_noput;
Herbert Xucf80e0e2016-01-24 21:20:23 +0800601 req = hp->md5_req;
Adam Langley49a72df2008-07-19 00:01:42 -0700602
Herbert Xucf80e0e2016-01-24 21:20:23 +0800603 if (crypto_ahash_init(req))
Adam Langley49a72df2008-07-19 00:01:42 -0700604 goto clear_hash;
Eric Dumazet19689e32016-06-27 18:51:53 +0200605 if (tcp_v6_md5_hash_headers(hp, daddr, saddr, th, th->doff << 2))
Adam Langley49a72df2008-07-19 00:01:42 -0700606 goto clear_hash;
607 if (tcp_md5_hash_key(hp, key))
608 goto clear_hash;
Herbert Xucf80e0e2016-01-24 21:20:23 +0800609 ahash_request_set_crypt(req, NULL, md5_hash, 0);
610 if (crypto_ahash_final(req))
YOSHIFUJI Hideakicfb6eeb2006-11-14 19:07:45 -0800611 goto clear_hash;
YOSHIFUJI Hideakicfb6eeb2006-11-14 19:07:45 -0800612
YOSHIFUJI Hideakicfb6eeb2006-11-14 19:07:45 -0800613 tcp_put_md5sig_pool();
YOSHIFUJI Hideakicfb6eeb2006-11-14 19:07:45 -0800614 return 0;
Adam Langley49a72df2008-07-19 00:01:42 -0700615
YOSHIFUJI Hideakicfb6eeb2006-11-14 19:07:45 -0800616clear_hash:
617 tcp_put_md5sig_pool();
618clear_hash_noput:
619 memset(md5_hash, 0, 16);
Adam Langley49a72df2008-07-19 00:01:42 -0700620 return 1;
YOSHIFUJI Hideakicfb6eeb2006-11-14 19:07:45 -0800621}
622
Eric Dumazet39f8e582015-03-24 15:58:55 -0700623static int tcp_v6_md5_hash_skb(char *md5_hash,
624 const struct tcp_md5sig_key *key,
Eric Dumazet318cf7a2011-10-24 02:46:04 -0400625 const struct sock *sk,
Eric Dumazet318cf7a2011-10-24 02:46:04 -0400626 const struct sk_buff *skb)
YOSHIFUJI Hideakicfb6eeb2006-11-14 19:07:45 -0800627{
Eric Dumazetb71d1d42011-04-22 04:53:02 +0000628 const struct in6_addr *saddr, *daddr;
Adam Langley49a72df2008-07-19 00:01:42 -0700629 struct tcp_md5sig_pool *hp;
Herbert Xucf80e0e2016-01-24 21:20:23 +0800630 struct ahash_request *req;
Eric Dumazet318cf7a2011-10-24 02:46:04 -0400631 const struct tcphdr *th = tcp_hdr(skb);
YOSHIFUJI Hideakicfb6eeb2006-11-14 19:07:45 -0800632
Eric Dumazet39f8e582015-03-24 15:58:55 -0700633 if (sk) { /* valid for establish/request sockets */
634 saddr = &sk->sk_v6_rcv_saddr;
Eric Dumazetefe42082013-10-03 15:42:29 -0700635 daddr = &sk->sk_v6_daddr;
Adam Langley49a72df2008-07-19 00:01:42 -0700636 } else {
Eric Dumazetb71d1d42011-04-22 04:53:02 +0000637 const struct ipv6hdr *ip6h = ipv6_hdr(skb);
Adam Langley49a72df2008-07-19 00:01:42 -0700638 saddr = &ip6h->saddr;
639 daddr = &ip6h->daddr;
YOSHIFUJI Hideakicfb6eeb2006-11-14 19:07:45 -0800640 }
Adam Langley49a72df2008-07-19 00:01:42 -0700641
642 hp = tcp_get_md5sig_pool();
643 if (!hp)
644 goto clear_hash_noput;
Herbert Xucf80e0e2016-01-24 21:20:23 +0800645 req = hp->md5_req;
Adam Langley49a72df2008-07-19 00:01:42 -0700646
Herbert Xucf80e0e2016-01-24 21:20:23 +0800647 if (crypto_ahash_init(req))
Adam Langley49a72df2008-07-19 00:01:42 -0700648 goto clear_hash;
649
Eric Dumazet19689e32016-06-27 18:51:53 +0200650 if (tcp_v6_md5_hash_headers(hp, daddr, saddr, th, skb->len))
Adam Langley49a72df2008-07-19 00:01:42 -0700651 goto clear_hash;
652 if (tcp_md5_hash_skb_data(hp, skb, th->doff << 2))
653 goto clear_hash;
654 if (tcp_md5_hash_key(hp, key))
655 goto clear_hash;
Herbert Xucf80e0e2016-01-24 21:20:23 +0800656 ahash_request_set_crypt(req, NULL, md5_hash, 0);
657 if (crypto_ahash_final(req))
Adam Langley49a72df2008-07-19 00:01:42 -0700658 goto clear_hash;
659
660 tcp_put_md5sig_pool();
661 return 0;
662
663clear_hash:
664 tcp_put_md5sig_pool();
665clear_hash_noput:
666 memset(md5_hash, 0, 16);
667 return 1;
YOSHIFUJI Hideakicfb6eeb2006-11-14 19:07:45 -0800668}
669
Eric Dumazetba8e2752015-10-02 11:43:28 -0700670#endif
671
672static bool tcp_v6_inbound_md5_hash(const struct sock *sk,
673 const struct sk_buff *skb)
YOSHIFUJI Hideakicfb6eeb2006-11-14 19:07:45 -0800674{
Eric Dumazetba8e2752015-10-02 11:43:28 -0700675#ifdef CONFIG_TCP_MD5SIG
Eric Dumazetcf533ea2011-10-21 05:22:42 -0400676 const __u8 *hash_location = NULL;
YOSHIFUJI Hideakicfb6eeb2006-11-14 19:07:45 -0800677 struct tcp_md5sig_key *hash_expected;
Eric Dumazetb71d1d42011-04-22 04:53:02 +0000678 const struct ipv6hdr *ip6h = ipv6_hdr(skb);
Eric Dumazet318cf7a2011-10-24 02:46:04 -0400679 const struct tcphdr *th = tcp_hdr(skb);
YOSHIFUJI Hideakicfb6eeb2006-11-14 19:07:45 -0800680 int genhash;
YOSHIFUJI Hideakicfb6eeb2006-11-14 19:07:45 -0800681 u8 newhash[16];
682
683 hash_expected = tcp_v6_md5_do_lookup(sk, &ip6h->saddr);
YOSHIFUJI Hideaki7d5d5522008-04-17 12:29:53 +0900684 hash_location = tcp_parse_md5sig_option(th);
YOSHIFUJI Hideakicfb6eeb2006-11-14 19:07:45 -0800685
David S. Miller785957d2008-07-30 03:03:15 -0700686 /* We've parsed the options - do we have a hash? */
687 if (!hash_expected && !hash_location)
Eric Dumazetff74e232015-03-24 15:58:54 -0700688 return false;
David S. Miller785957d2008-07-30 03:03:15 -0700689
690 if (hash_expected && !hash_location) {
Eric Dumazetc10d9312016-04-29 14:16:47 -0700691 NET_INC_STATS(sock_net(sk), LINUX_MIB_TCPMD5NOTFOUND);
Eric Dumazetff74e232015-03-24 15:58:54 -0700692 return true;
YOSHIFUJI Hideakicfb6eeb2006-11-14 19:07:45 -0800693 }
694
David S. Miller785957d2008-07-30 03:03:15 -0700695 if (!hash_expected && hash_location) {
Eric Dumazetc10d9312016-04-29 14:16:47 -0700696 NET_INC_STATS(sock_net(sk), LINUX_MIB_TCPMD5UNEXPECTED);
Eric Dumazetff74e232015-03-24 15:58:54 -0700697 return true;
YOSHIFUJI Hideakicfb6eeb2006-11-14 19:07:45 -0800698 }
699
700 /* check the signature */
Adam Langley49a72df2008-07-19 00:01:42 -0700701 genhash = tcp_v6_md5_hash_skb(newhash,
702 hash_expected,
Eric Dumazet39f8e582015-03-24 15:58:55 -0700703 NULL, skb);
Adam Langley49a72df2008-07-19 00:01:42 -0700704
YOSHIFUJI Hideakicfb6eeb2006-11-14 19:07:45 -0800705 if (genhash || memcmp(hash_location, newhash, 16) != 0) {
Eric Dumazet72145a62016-08-24 09:01:23 -0700706 NET_INC_STATS(sock_net(sk), LINUX_MIB_TCPMD5FAILURE);
Joe Perchese87cc472012-05-13 21:56:26 +0000707 net_info_ratelimited("MD5 Hash %s for [%pI6c]:%u->[%pI6c]:%u\n",
708 genhash ? "failed" : "mismatch",
709 &ip6h->saddr, ntohs(th->source),
710 &ip6h->daddr, ntohs(th->dest));
Eric Dumazetff74e232015-03-24 15:58:54 -0700711 return true;
YOSHIFUJI Hideakicfb6eeb2006-11-14 19:07:45 -0800712 }
Eric Dumazetba8e2752015-10-02 11:43:28 -0700713#endif
Eric Dumazetff74e232015-03-24 15:58:54 -0700714 return false;
YOSHIFUJI Hideakicfb6eeb2006-11-14 19:07:45 -0800715}
YOSHIFUJI Hideakicfb6eeb2006-11-14 19:07:45 -0800716
Eric Dumazetb40cf182015-09-25 07:39:08 -0700717static void tcp_v6_init_req(struct request_sock *req,
718 const struct sock *sk_listener,
Octavian Purdila16bea702014-06-25 17:09:53 +0300719 struct sk_buff *skb)
720{
721 struct inet_request_sock *ireq = inet_rsk(req);
Eric Dumazetb40cf182015-09-25 07:39:08 -0700722 const struct ipv6_pinfo *np = inet6_sk(sk_listener);
Octavian Purdila16bea702014-06-25 17:09:53 +0300723
724 ireq->ir_v6_rmt_addr = ipv6_hdr(skb)->saddr;
725 ireq->ir_v6_loc_addr = ipv6_hdr(skb)->daddr;
726
Octavian Purdila16bea702014-06-25 17:09:53 +0300727 /* So that link locals have meaning */
Eric Dumazetb40cf182015-09-25 07:39:08 -0700728 if (!sk_listener->sk_bound_dev_if &&
Octavian Purdila16bea702014-06-25 17:09:53 +0300729 ipv6_addr_type(&ireq->ir_v6_rmt_addr) & IPV6_ADDR_LINKLOCAL)
Eric Dumazet870c3152014-10-17 09:17:20 -0700730 ireq->ir_iif = tcp_v6_iif(skb);
Octavian Purdila16bea702014-06-25 17:09:53 +0300731
Eric Dumazet04317da2014-09-05 15:33:32 -0700732 if (!TCP_SKB_CB(skb)->tcp_tw_isn &&
Eric Dumazetb40cf182015-09-25 07:39:08 -0700733 (ipv6_opt_accepted(sk_listener, skb, &TCP_SKB_CB(skb)->header.h6) ||
Eric Dumazeta2247722014-09-27 09:50:56 -0700734 np->rxopt.bits.rxinfo ||
Octavian Purdila16bea702014-06-25 17:09:53 +0300735 np->rxopt.bits.rxoinfo || np->rxopt.bits.rxhlim ||
736 np->rxopt.bits.rxohlim || np->repflow)) {
Reshetova, Elena63354792017-06-30 13:07:58 +0300737 refcount_inc(&skb->users);
Octavian Purdila16bea702014-06-25 17:09:53 +0300738 ireq->pktopts = skb;
739 }
740}
741
Eric Dumazetf9646292015-09-29 07:42:50 -0700742static struct dst_entry *tcp_v6_route_req(const struct sock *sk,
743 struct flowi *fl,
Soheil Hassas Yeganeh4396e462017-03-15 16:30:46 -0400744 const struct request_sock *req)
Octavian Purdilad94e0412014-06-25 17:09:55 +0300745{
Eric Dumazetf76b33c2015-09-29 07:42:42 -0700746 return inet6_csk_route_req(sk, &fl->u.ip6, req, IPPROTO_TCP);
Octavian Purdilad94e0412014-06-25 17:09:55 +0300747}
748
Glenn Griffinc6aefaf2008-02-07 21:49:26 -0800749struct request_sock_ops tcp6_request_sock_ops __read_mostly = {
Linus Torvalds1da177e2005-04-16 15:20:36 -0700750 .family = AF_INET6,
Arnaldo Carvalho de Melo2e6599c2005-06-18 22:46:52 -0700751 .obj_size = sizeof(struct tcp6_request_sock),
Octavian Purdila5db92c92014-06-25 17:09:59 +0300752 .rtx_syn_ack = tcp_rtx_synack,
Arnaldo Carvalho de Melo60236fd2005-06-18 22:47:21 -0700753 .send_ack = tcp_v6_reqsk_send_ack,
754 .destructor = tcp_v6_reqsk_destructor,
Octavian Purdila72659ec2010-01-17 19:09:39 -0800755 .send_reset = tcp_v6_send_reset,
Wang Yufen4aa956d2014-03-29 09:27:29 +0800756 .syn_ack_timeout = tcp_syn_ack_timeout,
Linus Torvalds1da177e2005-04-16 15:20:36 -0700757};
758
Stephen Hemmingerb2e4b3d2009-09-01 19:25:03 +0000759static const struct tcp_request_sock_ops tcp_request_sock_ipv6_ops = {
Octavian Purdila2aec4a22014-06-25 17:10:00 +0300760 .mss_clamp = IPV6_MIN_MTU - sizeof(struct tcphdr) -
761 sizeof(struct ipv6hdr),
Octavian Purdila16bea702014-06-25 17:09:53 +0300762#ifdef CONFIG_TCP_MD5SIG
Eric Dumazetfd3a1542015-03-24 15:58:56 -0700763 .req_md5_lookup = tcp_v6_md5_lookup,
John Dykstrae3afe7b2009-07-16 05:04:51 +0000764 .calc_md5_hash = tcp_v6_md5_hash_skb,
Andrew Mortonb6332e62006-11-30 19:16:28 -0800765#endif
Octavian Purdila16bea702014-06-25 17:09:53 +0300766 .init_req = tcp_v6_init_req,
Octavian Purdilafb7b37a2014-06-25 17:09:54 +0300767#ifdef CONFIG_SYN_COOKIES
768 .cookie_init_seq = cookie_v6_init_sequence,
769#endif
Octavian Purdilad94e0412014-06-25 17:09:55 +0300770 .route_req = tcp_v6_route_req,
Eric Dumazet84b114b2017-05-05 06:56:54 -0700771 .init_seq = tcp_v6_init_seq,
772 .init_ts_off = tcp_v6_init_ts_off,
Octavian Purdilad6274bd2014-06-25 17:09:58 +0300773 .send_synack = tcp_v6_send_synack,
Octavian Purdila16bea702014-06-25 17:09:53 +0300774};
YOSHIFUJI Hideakicfb6eeb2006-11-14 19:07:45 -0800775
Eric Dumazeta00e7442015-09-29 07:42:39 -0700776static void tcp_v6_send_response(const struct sock *sk, struct sk_buff *skb, u32 seq,
Eric Dumazet0f85fea2014-12-09 09:56:08 -0800777 u32 ack, u32 win, u32 tsval, u32 tsecr,
778 int oif, struct tcp_md5sig_key *key, int rst,
Hannes Frederic Sowa5119bd12016-06-11 20:41:38 +0200779 u8 tclass, __be32 label)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700780{
Eric Dumazetcf533ea2011-10-21 05:22:42 -0400781 const struct tcphdr *th = tcp_hdr(skb);
782 struct tcphdr *t1;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700783 struct sk_buff *buff;
David S. Miller4c9483b2011-03-12 16:22:43 -0500784 struct flowi6 fl6;
Eric Dumazet0f85fea2014-12-09 09:56:08 -0800785 struct net *net = sk ? sock_net(sk) : dev_net(skb_dst(skb)->dev);
Daniel Lezcanoe5047992008-03-07 11:16:26 -0800786 struct sock *ctl_sk = net->ipv6.tcp_sk;
YOSHIFUJI Hideaki9cb57342008-01-12 02:16:03 -0800787 unsigned int tot_len = sizeof(struct tcphdr);
Eric Dumazetadf30902009-06-02 05:19:30 +0000788 struct dst_entry *dst;
Al Viroe69a4ad2006-11-14 20:56:00 -0800789 __be32 *topt;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700790
Andrey Vaginee684b62013-02-11 05:50:19 +0000791 if (tsecr)
YOSHIFUJI Hideaki4244f8a2006-10-10 19:40:50 -0700792 tot_len += TCPOLEN_TSTAMP_ALIGNED;
YOSHIFUJI Hideakicfb6eeb2006-11-14 19:07:45 -0800793#ifdef CONFIG_TCP_MD5SIG
794 if (key)
795 tot_len += TCPOLEN_MD5SIG_ALIGNED;
796#endif
Linus Torvalds1da177e2005-04-16 15:20:36 -0700797
798 buff = alloc_skb(MAX_HEADER + sizeof(struct ipv6hdr) + tot_len,
799 GFP_ATOMIC);
Ian Morris63159f22015-03-29 14:00:04 +0100800 if (!buff)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700801 return;
802
803 skb_reserve(buff, MAX_HEADER + sizeof(struct ipv6hdr) + tot_len);
804
Johannes Bergd58ff352017-06-16 14:29:23 +0200805 t1 = skb_push(buff, tot_len);
Herbert Xu6651ffc2010-04-21 00:47:15 -0700806 skb_reset_transport_header(buff);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700807
808 /* Swap the send and the receive. */
809 memset(t1, 0, sizeof(*t1));
810 t1->dest = th->source;
811 t1->source = th->dest;
Ilpo Järvinen77c676d2008-10-09 14:41:38 -0700812 t1->doff = tot_len / 4;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700813 t1->seq = htonl(seq);
814 t1->ack_seq = htonl(ack);
Ilpo Järvinen626e2642008-10-09 14:42:40 -0700815 t1->ack = !rst || !th->ack;
816 t1->rst = rst;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700817 t1->window = htons(win);
YOSHIFUJI Hideakicfb6eeb2006-11-14 19:07:45 -0800818
Al Viroe69a4ad2006-11-14 20:56:00 -0800819 topt = (__be32 *)(t1 + 1);
YOSHIFUJI Hideaki1ab14572007-02-09 23:24:49 +0900820
Andrey Vaginee684b62013-02-11 05:50:19 +0000821 if (tsecr) {
YOSHIFUJI Hideakicfb6eeb2006-11-14 19:07:45 -0800822 *topt++ = htonl((TCPOPT_NOP << 24) | (TCPOPT_NOP << 16) |
823 (TCPOPT_TIMESTAMP << 8) | TCPOLEN_TIMESTAMP);
Andrey Vaginee684b62013-02-11 05:50:19 +0000824 *topt++ = htonl(tsval);
825 *topt++ = htonl(tsecr);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700826 }
827
YOSHIFUJI Hideakicfb6eeb2006-11-14 19:07:45 -0800828#ifdef CONFIG_TCP_MD5SIG
829 if (key) {
830 *topt++ = htonl((TCPOPT_NOP << 24) | (TCPOPT_NOP << 16) |
831 (TCPOPT_MD5SIG << 8) | TCPOLEN_MD5SIG);
Adam Langley49a72df2008-07-19 00:01:42 -0700832 tcp_v6_md5_hash_hdr((__u8 *)topt, key,
Adam Langley90b7e112008-07-31 20:49:48 -0700833 &ipv6_hdr(skb)->saddr,
834 &ipv6_hdr(skb)->daddr, t1);
YOSHIFUJI Hideakicfb6eeb2006-11-14 19:07:45 -0800835 }
836#endif
837
David S. Miller4c9483b2011-03-12 16:22:43 -0500838 memset(&fl6, 0, sizeof(fl6));
Alexey Dobriyan4e3fd7a2011-11-21 03:39:03 +0000839 fl6.daddr = ipv6_hdr(skb)->saddr;
840 fl6.saddr = ipv6_hdr(skb)->daddr;
Florent Fourcot1d13a962014-01-16 17:21:22 +0100841 fl6.flowlabel = label;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700842
David S. Millere5700af2010-04-21 14:59:20 -0700843 buff->ip_summed = CHECKSUM_PARTIAL;
844 buff->csum = 0;
845
David S. Miller4c9483b2011-03-12 16:22:43 -0500846 __tcp_v6_send_check(buff, &fl6.saddr, &fl6.daddr);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700847
David S. Miller4c9483b2011-03-12 16:22:43 -0500848 fl6.flowi6_proto = IPPROTO_TCP;
Lorenzo Colittia36dbdb2014-04-11 13:19:12 +0900849 if (rt6_need_strict(&fl6.daddr) && !oif)
Eric Dumazet870c3152014-10-17 09:17:20 -0700850 fl6.flowi6_oif = tcp_v6_iif(skb);
David Ahern9b6c14d2016-11-09 09:07:26 -0800851 else {
852 if (!oif && netif_index_is_l3_master(net, skb->skb_iif))
853 oif = skb->skb_iif;
854
855 fl6.flowi6_oif = oif;
856 }
David Ahern1d2f7b22016-05-04 21:26:08 -0700857
Lorenzo Colittie1108612014-05-13 10:17:33 -0700858 fl6.flowi6_mark = IP6_REPLY_MARK(net, skb->mark);
David S. Miller1958b852011-03-12 16:36:19 -0500859 fl6.fl6_dport = t1->dest;
860 fl6.fl6_sport = t1->source;
Lorenzo Colittie2d118a2016-11-04 02:23:43 +0900861 fl6.flowi6_uid = sock_net_uid(net, sk && sk_fullsock(sk) ? sk : NULL);
David S. Miller4c9483b2011-03-12 16:22:43 -0500862 security_skb_classify_flow(skb, flowi6_to_flowi(&fl6));
Linus Torvalds1da177e2005-04-16 15:20:36 -0700863
Ilpo Järvinen626e2642008-10-09 14:42:40 -0700864 /* Pass a socket to ip6_dst_lookup either it is for RST
865 * Underlying function will use this to retrieve the network
866 * namespace
867 */
Steffen Klassert0e0d44a2013-08-28 08:04:14 +0200868 dst = ip6_dst_lookup_flow(ctl_sk, &fl6, NULL);
David S. Miller68d0c6d2011-03-01 13:19:07 -0800869 if (!IS_ERR(dst)) {
870 skb_dst_set(buff, dst);
Pablo Neira92e55f42017-01-26 22:56:21 +0100871 ip6_xmit(ctl_sk, buff, &fl6, fl6.flowi6_mark, NULL, tclass);
Eric Dumazetc10d9312016-04-29 14:16:47 -0700872 TCP_INC_STATS(net, TCP_MIB_OUTSEGS);
David S. Miller68d0c6d2011-03-01 13:19:07 -0800873 if (rst)
Eric Dumazetc10d9312016-04-29 14:16:47 -0700874 TCP_INC_STATS(net, TCP_MIB_OUTRSTS);
David S. Miller68d0c6d2011-03-01 13:19:07 -0800875 return;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700876 }
877
878 kfree_skb(buff);
879}
880
Eric Dumazeta00e7442015-09-29 07:42:39 -0700881static void tcp_v6_send_reset(const struct sock *sk, struct sk_buff *skb)
Ilpo Järvinen626e2642008-10-09 14:42:40 -0700882{
Eric Dumazetcf533ea2011-10-21 05:22:42 -0400883 const struct tcphdr *th = tcp_hdr(skb);
Ilpo Järvinen626e2642008-10-09 14:42:40 -0700884 u32 seq = 0, ack_seq = 0;
Guo-Fu Tsengfa3e5b42008-10-09 21:11:56 -0700885 struct tcp_md5sig_key *key = NULL;
Shawn Lu658ddaa2012-01-31 22:35:48 +0000886#ifdef CONFIG_TCP_MD5SIG
887 const __u8 *hash_location = NULL;
888 struct ipv6hdr *ipv6h = ipv6_hdr(skb);
889 unsigned char newhash[16];
890 int genhash;
891 struct sock *sk1 = NULL;
892#endif
Wang Yufen9c76a112014-03-29 09:27:31 +0800893 int oif;
Ilpo Järvinen626e2642008-10-09 14:42:40 -0700894
895 if (th->rst)
896 return;
897
Eric Dumazetc3658e82014-11-25 07:40:04 -0800898 /* If sk not NULL, it means we did a successful lookup and incoming
899 * route had to be correct. prequeue might have dropped our dst.
900 */
901 if (!sk && !ipv6_unicast_destination(skb))
Ilpo Järvinen626e2642008-10-09 14:42:40 -0700902 return;
903
904#ifdef CONFIG_TCP_MD5SIG
Eric Dumazet3b24d852016-04-01 08:52:17 -0700905 rcu_read_lock();
Shawn Lu658ddaa2012-01-31 22:35:48 +0000906 hash_location = tcp_parse_md5sig_option(th);
Florian Westphal271c3b92015-12-21 21:29:26 +0100907 if (sk && sk_fullsock(sk)) {
Florian Westphale46787f2015-12-21 21:29:25 +0100908 key = tcp_v6_md5_do_lookup(sk, &ipv6h->saddr);
909 } else if (hash_location) {
Shawn Lu658ddaa2012-01-31 22:35:48 +0000910 /*
911 * active side is lost. Try to find listening socket through
912 * source port, and then find md5 key through listening socket.
913 * we are not loose security here:
914 * Incoming packet is checked with md5 hash with finding key,
915 * no RST generated if md5 hash doesn't match.
916 */
917 sk1 = inet6_lookup_listener(dev_net(skb_dst(skb)->dev),
Craig Galleka5836362016-02-10 11:50:38 -0500918 &tcp_hashinfo, NULL, 0,
919 &ipv6h->saddr,
Tom Herbert5ba24952013-01-22 09:50:39 +0000920 th->source, &ipv6h->daddr,
David Ahern4297a0e2017-08-07 08:44:21 -0700921 ntohs(th->source), tcp_v6_iif(skb),
922 tcp_v6_sdif(skb));
Shawn Lu658ddaa2012-01-31 22:35:48 +0000923 if (!sk1)
Eric Dumazet3b24d852016-04-01 08:52:17 -0700924 goto out;
Shawn Lu658ddaa2012-01-31 22:35:48 +0000925
Shawn Lu658ddaa2012-01-31 22:35:48 +0000926 key = tcp_v6_md5_do_lookup(sk1, &ipv6h->saddr);
927 if (!key)
Eric Dumazet3b24d852016-04-01 08:52:17 -0700928 goto out;
Shawn Lu658ddaa2012-01-31 22:35:48 +0000929
Eric Dumazet39f8e582015-03-24 15:58:55 -0700930 genhash = tcp_v6_md5_hash_skb(newhash, key, NULL, skb);
Shawn Lu658ddaa2012-01-31 22:35:48 +0000931 if (genhash || memcmp(hash_location, newhash, 16) != 0)
Eric Dumazet3b24d852016-04-01 08:52:17 -0700932 goto out;
Shawn Lu658ddaa2012-01-31 22:35:48 +0000933 }
Ilpo Järvinen626e2642008-10-09 14:42:40 -0700934#endif
935
936 if (th->ack)
937 seq = ntohl(th->ack_seq);
938 else
939 ack_seq = ntohl(th->seq) + th->syn + th->fin + skb->len -
940 (th->doff << 2);
941
Wang Yufen9c76a112014-03-29 09:27:31 +0800942 oif = sk ? sk->sk_bound_dev_if : 0;
Eric Dumazet0f85fea2014-12-09 09:56:08 -0800943 tcp_v6_send_response(sk, skb, seq, ack_seq, 0, 0, 0, oif, key, 1, 0, 0);
Shawn Lu658ddaa2012-01-31 22:35:48 +0000944
945#ifdef CONFIG_TCP_MD5SIG
Eric Dumazet3b24d852016-04-01 08:52:17 -0700946out:
947 rcu_read_unlock();
Shawn Lu658ddaa2012-01-31 22:35:48 +0000948#endif
Ilpo Järvinen626e2642008-10-09 14:42:40 -0700949}
950
Eric Dumazeta00e7442015-09-29 07:42:39 -0700951static void tcp_v6_send_ack(const struct sock *sk, struct sk_buff *skb, u32 seq,
Eric Dumazet0f85fea2014-12-09 09:56:08 -0800952 u32 ack, u32 win, u32 tsval, u32 tsecr, int oif,
Florent Fourcot1d13a962014-01-16 17:21:22 +0100953 struct tcp_md5sig_key *key, u8 tclass,
Hannes Frederic Sowa5119bd12016-06-11 20:41:38 +0200954 __be32 label)
Ilpo Järvinen626e2642008-10-09 14:42:40 -0700955{
Eric Dumazet0f85fea2014-12-09 09:56:08 -0800956 tcp_v6_send_response(sk, skb, seq, ack, win, tsval, tsecr, oif, key, 0,
957 tclass, label);
Ilpo Järvinen626e2642008-10-09 14:42:40 -0700958}
959
Linus Torvalds1da177e2005-04-16 15:20:36 -0700960static void tcp_v6_timewait_ack(struct sock *sk, struct sk_buff *skb)
961{
Arnaldo Carvalho de Melo8feaf0c02005-08-09 20:09:30 -0700962 struct inet_timewait_sock *tw = inet_twsk(sk);
YOSHIFUJI Hideakicfb6eeb2006-11-14 19:07:45 -0800963 struct tcp_timewait_sock *tcptw = tcp_twsk(sk);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700964
Eric Dumazet0f85fea2014-12-09 09:56:08 -0800965 tcp_v6_send_ack(sk, skb, tcptw->tw_snd_nxt, tcptw->tw_rcv_nxt,
Arnaldo Carvalho de Melo8feaf0c02005-08-09 20:09:30 -0700966 tcptw->tw_rcv_wnd >> tw->tw_rcv_wscale,
Eric Dumazet9a568de2017-05-16 14:00:14 -0700967 tcp_time_stamp_raw() + tcptw->tw_ts_offset,
Wang Yufen9c76a112014-03-29 09:27:31 +0800968 tcptw->tw_ts_recent, tw->tw_bound_dev_if, tcp_twsk_md5_key(tcptw),
Florent Fourcot21858cd2015-05-16 00:24:59 +0200969 tw->tw_tclass, cpu_to_be32(tw->tw_flowlabel));
Linus Torvalds1da177e2005-04-16 15:20:36 -0700970
Arnaldo Carvalho de Melo8feaf0c02005-08-09 20:09:30 -0700971 inet_twsk_put(tw);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700972}
973
Eric Dumazeta00e7442015-09-29 07:42:39 -0700974static void tcp_v6_reqsk_send_ack(const struct sock *sk, struct sk_buff *skb,
Gui Jianfeng6edafaa2008-08-06 23:50:04 -0700975 struct request_sock *req)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700976{
Daniel Lee3a19ce02014-05-11 20:22:13 -0700977 /* sk->sk_state == TCP_LISTEN -> for regular TCP_SYN_RECV
978 * sk->sk_state == TCP_SYN_RECV -> for Fast Open.
979 */
Eric Dumazet20a2b492016-08-22 11:31:10 -0700980 /* RFC 7323 2.3
981 * The window field (SEG.WND) of every outgoing segment, with the
982 * exception of <SYN> segments, MUST be right-shifted by
983 * Rcv.Wind.Shift bits:
984 */
Eric Dumazet0f85fea2014-12-09 09:56:08 -0800985 tcp_v6_send_ack(sk, skb, (sk->sk_state == TCP_LISTEN) ?
Daniel Lee3a19ce02014-05-11 20:22:13 -0700986 tcp_rsk(req)->snt_isn + 1 : tcp_sk(sk)->snd_nxt,
Eric Dumazet20a2b492016-08-22 11:31:10 -0700987 tcp_rsk(req)->rcv_nxt,
988 req->rsk_rcv_wnd >> inet_rsk(req)->rcv_wscale,
Eric Dumazet9a568de2017-05-16 14:00:14 -0700989 tcp_time_stamp_raw() + tcp_rsk(req)->ts_off,
Florian Westphal95a22ca2016-12-01 11:32:06 +0100990 req->ts_recent, sk->sk_bound_dev_if,
Florent Fourcot1d13a962014-01-16 17:21:22 +0100991 tcp_v6_md5_do_lookup(sk, &ipv6_hdr(skb)->daddr),
992 0, 0);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700993}
994
995
Eric Dumazet079096f2015-10-02 11:43:32 -0700996static struct sock *tcp_v6_cookie_check(struct sock *sk, struct sk_buff *skb)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700997{
Glenn Griffinc6aefaf2008-02-07 21:49:26 -0800998#ifdef CONFIG_SYN_COOKIES
Eric Dumazet079096f2015-10-02 11:43:32 -0700999 const struct tcphdr *th = tcp_hdr(skb);
1000
Florian Westphalaf9b4732010-06-03 00:43:44 +00001001 if (!th->syn)
Glenn Griffinc6aefaf2008-02-07 21:49:26 -08001002 sk = cookie_v6_check(sk, skb);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001003#endif
1004 return sk;
1005}
1006
Linus Torvalds1da177e2005-04-16 15:20:36 -07001007static int tcp_v6_conn_request(struct sock *sk, struct sk_buff *skb)
1008{
Linus Torvalds1da177e2005-04-16 15:20:36 -07001009 if (skb->protocol == htons(ETH_P_IP))
1010 return tcp_v4_conn_request(sk, skb);
1011
1012 if (!ipv6_unicast_destination(skb))
YOSHIFUJI Hideaki1ab14572007-02-09 23:24:49 +09001013 goto drop;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001014
Octavian Purdila1fb6f152014-06-25 17:10:02 +03001015 return tcp_conn_request(&tcp6_request_sock_ops,
1016 &tcp_request_sock_ipv6_ops, sk, skb);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001017
Linus Torvalds1da177e2005-04-16 15:20:36 -07001018drop:
Eric Dumazet9caad862016-04-01 08:52:20 -07001019 tcp_listendrop(sk);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001020 return 0; /* don't send reset */
1021}
1022
Eric Dumazetebf6c9c2017-02-05 20:23:22 -08001023static void tcp_v6_restore_cb(struct sk_buff *skb)
1024{
1025 /* We need to move header back to the beginning if xfrm6_policy_check()
1026 * and tcp_v6_fill_cb() are going to be called again.
1027 * ip6_datagram_recv_specific_ctl() also expects IP6CB to be there.
1028 */
1029 memmove(IP6CB(skb), &TCP_SKB_CB(skb)->header.h6,
1030 sizeof(struct inet6_skb_parm));
1031}
1032
Eric Dumazet0c271712015-09-29 07:42:48 -07001033static struct sock *tcp_v6_syn_recv_sock(const struct sock *sk, struct sk_buff *skb,
Weilong Chen4c99aa42013-12-19 18:44:34 +08001034 struct request_sock *req,
Eric Dumazet5e0724d2015-10-22 08:20:46 -07001035 struct dst_entry *dst,
1036 struct request_sock *req_unhash,
1037 bool *own_req)
Linus Torvalds1da177e2005-04-16 15:20:36 -07001038{
Eric Dumazet634fb9792013-10-09 15:21:29 -07001039 struct inet_request_sock *ireq;
Eric Dumazet0c271712015-09-29 07:42:48 -07001040 struct ipv6_pinfo *newnp;
1041 const struct ipv6_pinfo *np = inet6_sk(sk);
Eric Dumazet45f6fad2015-11-29 19:37:57 -08001042 struct ipv6_txoptions *opt;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001043 struct tcp6_sock *newtcp6sk;
1044 struct inet_sock *newinet;
1045 struct tcp_sock *newtp;
1046 struct sock *newsk;
YOSHIFUJI Hideakicfb6eeb2006-11-14 19:07:45 -08001047#ifdef CONFIG_TCP_MD5SIG
1048 struct tcp_md5sig_key *key;
1049#endif
Neal Cardwell3840a062012-06-28 12:34:19 +00001050 struct flowi6 fl6;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001051
1052 if (skb->protocol == htons(ETH_P_IP)) {
1053 /*
1054 * v6 mapped
1055 */
1056
Eric Dumazet5e0724d2015-10-22 08:20:46 -07001057 newsk = tcp_v4_syn_recv_sock(sk, skb, req, dst,
1058 req_unhash, own_req);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001059
Ian Morris63159f22015-03-29 14:00:04 +01001060 if (!newsk)
Linus Torvalds1da177e2005-04-16 15:20:36 -07001061 return NULL;
1062
1063 newtcp6sk = (struct tcp6_sock *)newsk;
1064 inet_sk(newsk)->pinet6 = &newtcp6sk->inet6;
1065
1066 newinet = inet_sk(newsk);
1067 newnp = inet6_sk(newsk);
1068 newtp = tcp_sk(newsk);
1069
1070 memcpy(newnp, np, sizeof(struct ipv6_pinfo));
1071
Eric Dumazetd1e559d2015-03-18 14:05:35 -07001072 newnp->saddr = newsk->sk_v6_rcv_saddr;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001073
Arnaldo Carvalho de Melo8292a172005-12-13 23:15:52 -08001074 inet_csk(newsk)->icsk_af_ops = &ipv6_mapped;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001075 newsk->sk_backlog_rcv = tcp_v4_do_rcv;
YOSHIFUJI Hideakicfb6eeb2006-11-14 19:07:45 -08001076#ifdef CONFIG_TCP_MD5SIG
1077 newtp->af_specific = &tcp_sock_ipv6_mapped_specific;
1078#endif
1079
WANG Cong83eadda2017-05-09 16:59:54 -07001080 newnp->ipv6_mc_list = NULL;
Yan, Zheng676a1182011-09-25 02:21:30 +00001081 newnp->ipv6_ac_list = NULL;
1082 newnp->ipv6_fl_list = NULL;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001083 newnp->pktoptions = NULL;
1084 newnp->opt = NULL;
Eric Dumazet870c3152014-10-17 09:17:20 -07001085 newnp->mcast_oif = tcp_v6_iif(skb);
Arnaldo Carvalho de Melo0660e032007-04-25 17:54:47 -07001086 newnp->mcast_hops = ipv6_hdr(skb)->hop_limit;
Florent Fourcot1397ed32013-12-08 15:46:57 +01001087 newnp->rcv_flowinfo = ip6_flowinfo(ipv6_hdr(skb));
Florent Fourcotdf3687f2014-01-17 17:15:03 +01001088 if (np->repflow)
1089 newnp->flow_label = ip6_flowlabel(ipv6_hdr(skb));
Linus Torvalds1da177e2005-04-16 15:20:36 -07001090
Arnaldo Carvalho de Meloe6848972005-08-09 19:45:38 -07001091 /*
1092 * No need to charge this sock to the relevant IPv6 refcnt debug socks count
1093 * here, tcp_create_openreq_child now does this for us, see the comment in
1094 * that function for the gory details. -acme
Linus Torvalds1da177e2005-04-16 15:20:36 -07001095 */
Linus Torvalds1da177e2005-04-16 15:20:36 -07001096
1097 /* It is tricky place. Until this moment IPv4 tcp
Arnaldo Carvalho de Melo8292a172005-12-13 23:15:52 -08001098 worked with IPv6 icsk.icsk_af_ops.
Linus Torvalds1da177e2005-04-16 15:20:36 -07001099 Sync it now.
1100 */
Arnaldo Carvalho de Melod83d8462005-12-13 23:26:10 -08001101 tcp_sync_mss(newsk, inet_csk(newsk)->icsk_pmtu_cookie);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001102
1103 return newsk;
1104 }
1105
Eric Dumazet634fb9792013-10-09 15:21:29 -07001106 ireq = inet_rsk(req);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001107
1108 if (sk_acceptq_is_full(sk))
1109 goto out_overflow;
1110
David S. Miller493f3772010-12-02 12:14:29 -08001111 if (!dst) {
Eric Dumazetf76b33c2015-09-29 07:42:42 -07001112 dst = inet6_csk_route_req(sk, &fl6, req, IPPROTO_TCP);
David S. Miller493f3772010-12-02 12:14:29 -08001113 if (!dst)
Linus Torvalds1da177e2005-04-16 15:20:36 -07001114 goto out;
YOSHIFUJI Hideaki1ab14572007-02-09 23:24:49 +09001115 }
Linus Torvalds1da177e2005-04-16 15:20:36 -07001116
1117 newsk = tcp_create_openreq_child(sk, req, skb);
Ian Morris63159f22015-03-29 14:00:04 +01001118 if (!newsk)
Balazs Scheidler093d2822010-10-21 13:06:43 +02001119 goto out_nonewsk;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001120
Arnaldo Carvalho de Meloe6848972005-08-09 19:45:38 -07001121 /*
1122 * No need to charge this sock to the relevant IPv6 refcnt debug socks
1123 * count here, tcp_create_openreq_child now does this for us, see the
1124 * comment in that function for the gory details. -acme
1125 */
Linus Torvalds1da177e2005-04-16 15:20:36 -07001126
Stephen Hemminger59eed272006-08-25 15:55:43 -07001127 newsk->sk_gso_type = SKB_GSO_TCPV6;
Eric Dumazet6bd4f352015-12-02 21:53:57 -08001128 ip6_dst_store(newsk, dst, NULL, NULL);
Neal Cardwellfae6ef82012-08-19 03:30:38 +00001129 inet6_sk_rx_dst_set(newsk, skb);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001130
1131 newtcp6sk = (struct tcp6_sock *)newsk;
1132 inet_sk(newsk)->pinet6 = &newtcp6sk->inet6;
1133
1134 newtp = tcp_sk(newsk);
1135 newinet = inet_sk(newsk);
1136 newnp = inet6_sk(newsk);
1137
1138 memcpy(newnp, np, sizeof(struct ipv6_pinfo));
1139
Eric Dumazet634fb9792013-10-09 15:21:29 -07001140 newsk->sk_v6_daddr = ireq->ir_v6_rmt_addr;
1141 newnp->saddr = ireq->ir_v6_loc_addr;
1142 newsk->sk_v6_rcv_saddr = ireq->ir_v6_loc_addr;
1143 newsk->sk_bound_dev_if = ireq->ir_iif;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001144
YOSHIFUJI Hideaki1ab14572007-02-09 23:24:49 +09001145 /* Now IPv6 options...
Linus Torvalds1da177e2005-04-16 15:20:36 -07001146
1147 First: no IPv4 options.
1148 */
Eric Dumazetf6d8bd02011-04-21 09:45:37 +00001149 newinet->inet_opt = NULL;
WANG Cong83eadda2017-05-09 16:59:54 -07001150 newnp->ipv6_mc_list = NULL;
Yan, Zheng676a1182011-09-25 02:21:30 +00001151 newnp->ipv6_ac_list = NULL;
Masayuki Nakagawad35690b2007-03-16 16:14:03 -07001152 newnp->ipv6_fl_list = NULL;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001153
1154 /* Clone RX bits */
1155 newnp->rxopt.all = np->rxopt.all;
1156
Linus Torvalds1da177e2005-04-16 15:20:36 -07001157 newnp->pktoptions = NULL;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001158 newnp->opt = NULL;
Eric Dumazet870c3152014-10-17 09:17:20 -07001159 newnp->mcast_oif = tcp_v6_iif(skb);
Arnaldo Carvalho de Melo0660e032007-04-25 17:54:47 -07001160 newnp->mcast_hops = ipv6_hdr(skb)->hop_limit;
Florent Fourcot1397ed32013-12-08 15:46:57 +01001161 newnp->rcv_flowinfo = ip6_flowinfo(ipv6_hdr(skb));
Florent Fourcotdf3687f2014-01-17 17:15:03 +01001162 if (np->repflow)
1163 newnp->flow_label = ip6_flowlabel(ipv6_hdr(skb));
Linus Torvalds1da177e2005-04-16 15:20:36 -07001164
1165 /* Clone native IPv6 options from listening socket (if any)
1166
1167 Yes, keeping reference count would be much more clever,
1168 but we make one more one thing there: reattach optmem
1169 to newsk.
1170 */
Huw Davies56ac42b2016-06-27 15:05:28 -04001171 opt = ireq->ipv6_opt;
1172 if (!opt)
1173 opt = rcu_dereference(np->opt);
Eric Dumazet45f6fad2015-11-29 19:37:57 -08001174 if (opt) {
1175 opt = ipv6_dup_options(newsk, opt);
1176 RCU_INIT_POINTER(newnp->opt, opt);
1177 }
Arnaldo Carvalho de Melod83d8462005-12-13 23:26:10 -08001178 inet_csk(newsk)->icsk_ext_hdr_len = 0;
Eric Dumazet45f6fad2015-11-29 19:37:57 -08001179 if (opt)
1180 inet_csk(newsk)->icsk_ext_hdr_len = opt->opt_nflen +
1181 opt->opt_flen;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001182
Daniel Borkmann81164412015-01-05 23:57:48 +01001183 tcp_ca_openreq_child(newsk, dst);
1184
Linus Torvalds1da177e2005-04-16 15:20:36 -07001185 tcp_sync_mss(newsk, dst_mtu(dst));
Eric Dumazet3541f9e2017-02-02 08:04:56 -08001186 newtp->advmss = tcp_mss_clamp(tcp_sk(sk), dst_metric_advmss(dst));
Neal Cardwelld135c522012-04-22 09:45:47 +00001187
Linus Torvalds1da177e2005-04-16 15:20:36 -07001188 tcp_initialize_rcv_mss(newsk);
1189
Eric Dumazetc720c7e2009-10-15 06:30:45 +00001190 newinet->inet_daddr = newinet->inet_saddr = LOOPBACK4_IPV6;
1191 newinet->inet_rcv_saddr = LOOPBACK4_IPV6;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001192
YOSHIFUJI Hideakicfb6eeb2006-11-14 19:07:45 -08001193#ifdef CONFIG_TCP_MD5SIG
1194 /* Copy over the MD5 key from the original socket */
Wang Yufen4aa956d2014-03-29 09:27:29 +08001195 key = tcp_v6_md5_do_lookup(sk, &newsk->sk_v6_daddr);
Ian Morris53b24b82015-03-29 14:00:05 +01001196 if (key) {
YOSHIFUJI Hideakicfb6eeb2006-11-14 19:07:45 -08001197 /* We're using one, so create a matching key
1198 * on the newsk structure. If we fail to get
1199 * memory, then we end up not copying the key
1200 * across. Shucks.
1201 */
Eric Dumazetefe42082013-10-03 15:42:29 -07001202 tcp_md5_do_add(newsk, (union tcp_md5_addr *)&newsk->sk_v6_daddr,
Ivan Delalande67973182017-06-15 18:07:06 -07001203 AF_INET6, 128, key->key, key->keylen,
Eric Dumazet7450aaf2015-11-30 08:57:28 -08001204 sk_gfp_mask(sk, GFP_ATOMIC));
YOSHIFUJI Hideakicfb6eeb2006-11-14 19:07:45 -08001205 }
1206#endif
1207
Balazs Scheidler093d2822010-10-21 13:06:43 +02001208 if (__inet_inherit_port(sk, newsk) < 0) {
Christoph Paasche337e242012-12-14 04:07:58 +00001209 inet_csk_prepare_forced_close(newsk);
1210 tcp_done(newsk);
Balazs Scheidler093d2822010-10-21 13:06:43 +02001211 goto out;
1212 }
Eric Dumazet5e0724d2015-10-22 08:20:46 -07001213 *own_req = inet_ehash_nolisten(newsk, req_to_sk(req_unhash));
Eric Dumazet805c4bc2015-11-05 11:07:13 -08001214 if (*own_req) {
Eric Dumazet49a496c2015-11-05 12:50:19 -08001215 tcp_move_syn(newtp, req);
Eric Dumazet805c4bc2015-11-05 11:07:13 -08001216
1217 /* Clone pktoptions received with SYN, if we own the req */
1218 if (ireq->pktopts) {
1219 newnp->pktoptions = skb_clone(ireq->pktopts,
Eric Dumazet7450aaf2015-11-30 08:57:28 -08001220 sk_gfp_mask(sk, GFP_ATOMIC));
Eric Dumazet805c4bc2015-11-05 11:07:13 -08001221 consume_skb(ireq->pktopts);
1222 ireq->pktopts = NULL;
Eric Dumazetebf6c9c2017-02-05 20:23:22 -08001223 if (newnp->pktoptions) {
1224 tcp_v6_restore_cb(newnp->pktoptions);
Eric Dumazet805c4bc2015-11-05 11:07:13 -08001225 skb_set_owner_r(newnp->pktoptions, newsk);
Eric Dumazetebf6c9c2017-02-05 20:23:22 -08001226 }
Eric Dumazet805c4bc2015-11-05 11:07:13 -08001227 }
Eric Dumazetce105002015-10-30 09:46:12 -07001228 }
Linus Torvalds1da177e2005-04-16 15:20:36 -07001229
1230 return newsk;
1231
1232out_overflow:
Eric Dumazet02a1d6e2016-04-27 16:44:39 -07001233 __NET_INC_STATS(sock_net(sk), LINUX_MIB_LISTENOVERFLOWS);
Balazs Scheidler093d2822010-10-21 13:06:43 +02001234out_nonewsk:
Linus Torvalds1da177e2005-04-16 15:20:36 -07001235 dst_release(dst);
Balazs Scheidler093d2822010-10-21 13:06:43 +02001236out:
Eric Dumazet9caad862016-04-01 08:52:20 -07001237 tcp_listendrop(sk);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001238 return NULL;
1239}
1240
Linus Torvalds1da177e2005-04-16 15:20:36 -07001241/* The socket must have it's spinlock held when we get
Eric Dumazete994b2f2015-10-02 11:43:39 -07001242 * here, unless it is a TCP_LISTEN socket.
Linus Torvalds1da177e2005-04-16 15:20:36 -07001243 *
1244 * We have a potential double-lock case here, so even when
1245 * doing backlog processing we use the BH locking scheme.
1246 * This is because we cannot sleep with the original spinlock
1247 * held.
1248 */
1249static int tcp_v6_do_rcv(struct sock *sk, struct sk_buff *skb)
1250{
1251 struct ipv6_pinfo *np = inet6_sk(sk);
1252 struct tcp_sock *tp;
1253 struct sk_buff *opt_skb = NULL;
1254
1255 /* Imagine: socket is IPv6. IPv4 packet arrives,
1256 goes to IPv4 receive handler and backlogged.
1257 From backlog it always goes here. Kerboom...
1258 Fortunately, tcp_rcv_established and rcv_established
1259 handle them correctly, but it is not case with
1260 tcp_v6_hnd_req and tcp_v6_send_reset(). --ANK
1261 */
1262
1263 if (skb->protocol == htons(ETH_P_IP))
1264 return tcp_v4_do_rcv(sk, skb);
1265
Linus Torvalds1da177e2005-04-16 15:20:36 -07001266 /*
1267 * socket locking is here for SMP purposes as backlog rcv
1268 * is currently called with bh processing disabled.
1269 */
1270
1271 /* Do Stevens' IPV6_PKTOPTIONS.
1272
1273 Yes, guys, it is the only place in our code, where we
1274 may make it not affecting IPv4.
1275 The rest of code is protocol independent,
1276 and I do not like idea to uglify IPv4.
1277
1278 Actually, all the idea behind IPV6_PKTOPTIONS
1279 looks not very well thought. For now we latch
1280 options, received in the last packet, enqueued
1281 by tcp. Feel free to propose better solution.
YOSHIFUJI Hideaki1ab14572007-02-09 23:24:49 +09001282 --ANK (980728)
Linus Torvalds1da177e2005-04-16 15:20:36 -07001283 */
1284 if (np->rxopt.all)
Eric Dumazet7450aaf2015-11-30 08:57:28 -08001285 opt_skb = skb_clone(skb, sk_gfp_mask(sk, GFP_ATOMIC));
Linus Torvalds1da177e2005-04-16 15:20:36 -07001286
1287 if (sk->sk_state == TCP_ESTABLISHED) { /* Fast path */
Eric Dumazet5d299f32012-08-06 05:09:33 +00001288 struct dst_entry *dst = sk->sk_rx_dst;
1289
Tom Herbertbdeab992011-08-14 19:45:55 +00001290 sock_rps_save_rxhash(sk, skb);
Eric Dumazet3d973792014-11-11 05:54:27 -08001291 sk_mark_napi_id(sk, skb);
Eric Dumazet5d299f32012-08-06 05:09:33 +00001292 if (dst) {
1293 if (inet_sk(sk)->rx_dst_ifindex != skb->skb_iif ||
1294 dst->ops->check(dst, np->rx_dst_cookie) == NULL) {
1295 dst_release(dst);
1296 sk->sk_rx_dst = NULL;
1297 }
1298 }
1299
Matvejchikov Ilyae42e24c2017-07-24 16:02:12 +04001300 tcp_rcv_established(sk, skb, tcp_hdr(skb));
Linus Torvalds1da177e2005-04-16 15:20:36 -07001301 if (opt_skb)
1302 goto ipv6_pktoptions;
1303 return 0;
1304 }
1305
Eric Dumazet12e25e12015-06-03 23:49:21 -07001306 if (tcp_checksum_complete(skb))
Linus Torvalds1da177e2005-04-16 15:20:36 -07001307 goto csum_err;
1308
YOSHIFUJI Hideaki1ab14572007-02-09 23:24:49 +09001309 if (sk->sk_state == TCP_LISTEN) {
Eric Dumazet079096f2015-10-02 11:43:32 -07001310 struct sock *nsk = tcp_v6_cookie_check(sk, skb);
1311
Linus Torvalds1da177e2005-04-16 15:20:36 -07001312 if (!nsk)
1313 goto discard;
1314
Weilong Chen4c99aa42013-12-19 18:44:34 +08001315 if (nsk != sk) {
Linus Torvalds1da177e2005-04-16 15:20:36 -07001316 if (tcp_child_process(sk, nsk, skb))
1317 goto reset;
1318 if (opt_skb)
1319 __kfree_skb(opt_skb);
1320 return 0;
1321 }
Neil Horman47482f12011-04-06 13:07:09 -07001322 } else
Tom Herbertbdeab992011-08-14 19:45:55 +00001323 sock_rps_save_rxhash(sk, skb);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001324
Eric Dumazet72ab4a82015-09-29 07:42:41 -07001325 if (tcp_rcv_state_process(sk, skb))
Linus Torvalds1da177e2005-04-16 15:20:36 -07001326 goto reset;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001327 if (opt_skb)
1328 goto ipv6_pktoptions;
1329 return 0;
1330
1331reset:
YOSHIFUJI Hideakicfb6eeb2006-11-14 19:07:45 -08001332 tcp_v6_send_reset(sk, skb);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001333discard:
1334 if (opt_skb)
1335 __kfree_skb(opt_skb);
1336 kfree_skb(skb);
1337 return 0;
1338csum_err:
Eric Dumazetc10d9312016-04-29 14:16:47 -07001339 TCP_INC_STATS(sock_net(sk), TCP_MIB_CSUMERRORS);
1340 TCP_INC_STATS(sock_net(sk), TCP_MIB_INERRS);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001341 goto discard;
1342
1343
1344ipv6_pktoptions:
1345 /* Do you ask, what is it?
1346
1347 1. skb was enqueued by tcp.
1348 2. skb is added to tail of read queue, rather than out of order.
1349 3. socket is not in passive state.
1350 4. Finally, it really contains options, which user wants to receive.
1351 */
1352 tp = tcp_sk(sk);
1353 if (TCP_SKB_CB(opt_skb)->end_seq == tp->rcv_nxt &&
1354 !((1 << sk->sk_state) & (TCPF_CLOSE | TCPF_LISTEN))) {
YOSHIFUJI Hideaki333fad52005-09-08 09:59:17 +09001355 if (np->rxopt.bits.rxinfo || np->rxopt.bits.rxoinfo)
Eric Dumazet870c3152014-10-17 09:17:20 -07001356 np->mcast_oif = tcp_v6_iif(opt_skb);
YOSHIFUJI Hideaki333fad52005-09-08 09:59:17 +09001357 if (np->rxopt.bits.rxhlim || np->rxopt.bits.rxohlim)
Arnaldo Carvalho de Melo0660e032007-04-25 17:54:47 -07001358 np->mcast_hops = ipv6_hdr(opt_skb)->hop_limit;
Florent Fourcot82e9f102013-12-08 15:46:59 +01001359 if (np->rxopt.bits.rxflow || np->rxopt.bits.rxtclass)
Florent Fourcot1397ed32013-12-08 15:46:57 +01001360 np->rcv_flowinfo = ip6_flowinfo(ipv6_hdr(opt_skb));
Florent Fourcotdf3687f2014-01-17 17:15:03 +01001361 if (np->repflow)
1362 np->flow_label = ip6_flowlabel(ipv6_hdr(opt_skb));
Eric Dumazeta2247722014-09-27 09:50:56 -07001363 if (ipv6_opt_accepted(sk, opt_skb, &TCP_SKB_CB(opt_skb)->header.h6)) {
Linus Torvalds1da177e2005-04-16 15:20:36 -07001364 skb_set_owner_r(opt_skb, sk);
Eric Dumazet8ce48622016-10-12 19:01:45 +02001365 tcp_v6_restore_cb(opt_skb);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001366 opt_skb = xchg(&np->pktoptions, opt_skb);
1367 } else {
1368 __kfree_skb(opt_skb);
1369 opt_skb = xchg(&np->pktoptions, NULL);
1370 }
1371 }
1372
Wei Yongjun800d55f2009-02-23 21:45:33 +00001373 kfree_skb(opt_skb);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001374 return 0;
1375}
1376
Nicolas Dichtel2dc49d12014-12-22 18:22:48 +01001377static void tcp_v6_fill_cb(struct sk_buff *skb, const struct ipv6hdr *hdr,
1378 const struct tcphdr *th)
1379{
1380 /* This is tricky: we move IP6CB at its correct location into
1381 * TCP_SKB_CB(). It must be done after xfrm6_policy_check(), because
1382 * _decode_session6() uses IP6CB().
1383 * barrier() makes sure compiler won't play aliasing games.
1384 */
1385 memmove(&TCP_SKB_CB(skb)->header.h6, IP6CB(skb),
1386 sizeof(struct inet6_skb_parm));
1387 barrier();
1388
1389 TCP_SKB_CB(skb)->seq = ntohl(th->seq);
1390 TCP_SKB_CB(skb)->end_seq = (TCP_SKB_CB(skb)->seq + th->syn + th->fin +
1391 skb->len - th->doff*4);
1392 TCP_SKB_CB(skb)->ack_seq = ntohl(th->ack_seq);
1393 TCP_SKB_CB(skb)->tcp_flags = tcp_flag_byte(th);
1394 TCP_SKB_CB(skb)->tcp_tw_isn = 0;
1395 TCP_SKB_CB(skb)->ip_dsfield = ipv6_get_dsfield(hdr);
1396 TCP_SKB_CB(skb)->sacked = 0;
Mike Maloney98aaa912017-08-22 17:08:48 -04001397 TCP_SKB_CB(skb)->has_rxtstamp =
1398 skb->tstamp || skb_hwtstamps(skb)->hwtstamp;
Nicolas Dichtel2dc49d12014-12-22 18:22:48 +01001399}
1400
Herbert Xue5bbef22007-10-15 12:50:28 -07001401static int tcp_v6_rcv(struct sk_buff *skb)
Linus Torvalds1da177e2005-04-16 15:20:36 -07001402{
David Ahern4297a0e2017-08-07 08:44:21 -07001403 int sdif = inet6_sdif(skb);
Eric Dumazetcf533ea2011-10-21 05:22:42 -04001404 const struct tcphdr *th;
Eric Dumazetb71d1d42011-04-22 04:53:02 +00001405 const struct ipv6hdr *hdr;
Eric Dumazet3b24d852016-04-01 08:52:17 -07001406 bool refcounted;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001407 struct sock *sk;
1408 int ret;
Pavel Emelyanova86b1e32008-07-16 20:20:58 -07001409 struct net *net = dev_net(skb->dev);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001410
1411 if (skb->pkt_type != PACKET_HOST)
1412 goto discard_it;
1413
1414 /*
1415 * Count it even if it's bad.
1416 */
Eric Dumazet90bbcc62016-04-27 16:44:32 -07001417 __TCP_INC_STATS(net, TCP_MIB_INSEGS);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001418
1419 if (!pskb_may_pull(skb, sizeof(struct tcphdr)))
1420 goto discard_it;
1421
Eric Dumazetea1627c2016-05-13 09:16:40 -07001422 th = (const struct tcphdr *)skb->data;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001423
Eric Dumazetea1627c2016-05-13 09:16:40 -07001424 if (unlikely(th->doff < sizeof(struct tcphdr)/4))
Linus Torvalds1da177e2005-04-16 15:20:36 -07001425 goto bad_packet;
1426 if (!pskb_may_pull(skb, th->doff*4))
1427 goto discard_it;
1428
Tom Herberte4f45b72014-05-02 16:29:51 -07001429 if (skb_checksum_init(skb, IPPROTO_TCP, ip6_compute_pseudo))
Eric Dumazet6a5dc9e2013-04-29 08:39:56 +00001430 goto csum_error;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001431
Eric Dumazetea1627c2016-05-13 09:16:40 -07001432 th = (const struct tcphdr *)skb->data;
Stephen Hemmingere802af92010-04-22 15:24:53 -07001433 hdr = ipv6_hdr(skb);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001434
Eric Dumazet4bdc3d62015-10-13 17:12:54 -07001435lookup:
Craig Galleka5836362016-02-10 11:50:38 -05001436 sk = __inet6_lookup_skb(&tcp_hashinfo, skb, __tcp_hdrlen(th),
David Ahern4297a0e2017-08-07 08:44:21 -07001437 th->source, th->dest, inet6_iif(skb), sdif,
Eric Dumazet3b24d852016-04-01 08:52:17 -07001438 &refcounted);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001439 if (!sk)
1440 goto no_tcp_socket;
1441
1442process:
1443 if (sk->sk_state == TCP_TIME_WAIT)
1444 goto do_time_wait;
1445
Eric Dumazet079096f2015-10-02 11:43:32 -07001446 if (sk->sk_state == TCP_NEW_SYN_RECV) {
1447 struct request_sock *req = inet_reqsk(sk);
Eric Dumazet77166822016-02-18 05:39:18 -08001448 struct sock *nsk;
Eric Dumazet079096f2015-10-02 11:43:32 -07001449
1450 sk = req->rsk_listener;
1451 tcp_v6_fill_cb(skb, hdr, th);
1452 if (tcp_v6_inbound_md5_hash(sk, skb)) {
Eric Dumazete65c3322016-08-24 08:50:24 -07001453 sk_drops_add(sk, skb);
Eric Dumazet079096f2015-10-02 11:43:32 -07001454 reqsk_put(req);
1455 goto discard_it;
1456 }
Eric Dumazet77166822016-02-18 05:39:18 -08001457 if (unlikely(sk->sk_state != TCP_LISTEN)) {
Eric Dumazetf03f2e12015-10-14 11:16:27 -07001458 inet_csk_reqsk_queue_drop_and_put(sk, req);
Eric Dumazet4bdc3d62015-10-13 17:12:54 -07001459 goto lookup;
1460 }
Eric Dumazet77166822016-02-18 05:39:18 -08001461 sock_hold(sk);
Eric Dumazet3b24d852016-04-01 08:52:17 -07001462 refcounted = true;
Eric Dumazet1f3b3592017-09-08 12:44:47 -07001463 nsk = NULL;
1464 if (!tcp_filter(sk, skb))
1465 nsk = tcp_check_req(sk, skb, req, false);
Eric Dumazet079096f2015-10-02 11:43:32 -07001466 if (!nsk) {
1467 reqsk_put(req);
Eric Dumazet77166822016-02-18 05:39:18 -08001468 goto discard_and_relse;
Eric Dumazet079096f2015-10-02 11:43:32 -07001469 }
1470 if (nsk == sk) {
Eric Dumazet079096f2015-10-02 11:43:32 -07001471 reqsk_put(req);
1472 tcp_v6_restore_cb(skb);
1473 } else if (tcp_child_process(sk, nsk, skb)) {
1474 tcp_v6_send_reset(nsk, skb);
Eric Dumazet77166822016-02-18 05:39:18 -08001475 goto discard_and_relse;
Eric Dumazet079096f2015-10-02 11:43:32 -07001476 } else {
Eric Dumazet77166822016-02-18 05:39:18 -08001477 sock_put(sk);
Eric Dumazet079096f2015-10-02 11:43:32 -07001478 return 0;
1479 }
1480 }
Stephen Hemmingere802af92010-04-22 15:24:53 -07001481 if (hdr->hop_limit < inet6_sk(sk)->min_hopcount) {
Eric Dumazet02a1d6e2016-04-27 16:44:39 -07001482 __NET_INC_STATS(net, LINUX_MIB_TCPMINTTLDROP);
Stephen Hemmingere802af92010-04-22 15:24:53 -07001483 goto discard_and_relse;
1484 }
1485
Linus Torvalds1da177e2005-04-16 15:20:36 -07001486 if (!xfrm6_policy_check(sk, XFRM_POLICY_IN, skb))
1487 goto discard_and_relse;
1488
Nicolas Dichtel2dc49d12014-12-22 18:22:48 +01001489 tcp_v6_fill_cb(skb, hdr, th);
1490
Dmitry Popov9ea88a12014-08-07 02:38:22 +04001491 if (tcp_v6_inbound_md5_hash(sk, skb))
1492 goto discard_and_relse;
Dmitry Popov9ea88a12014-08-07 02:38:22 +04001493
Eric Dumazetac6e7802016-11-10 13:12:35 -08001494 if (tcp_filter(sk, skb))
Linus Torvalds1da177e2005-04-16 15:20:36 -07001495 goto discard_and_relse;
Eric Dumazetac6e7802016-11-10 13:12:35 -08001496 th = (const struct tcphdr *)skb->data;
1497 hdr = ipv6_hdr(skb);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001498
1499 skb->dev = NULL;
1500
Eric Dumazete994b2f2015-10-02 11:43:39 -07001501 if (sk->sk_state == TCP_LISTEN) {
1502 ret = tcp_v6_do_rcv(sk, skb);
1503 goto put_and_return;
1504 }
1505
1506 sk_incoming_cpu_update(sk);
1507
Fabio Olive Leite293b9c42006-09-25 22:28:47 -07001508 bh_lock_sock_nested(sk);
Martin KaFai Laua44d6ea2016-03-14 10:52:15 -07001509 tcp_segs_in(tcp_sk(sk), skb);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001510 ret = 0;
1511 if (!sock_owned_by_user(sk)) {
Florian Westphale7942d02017-07-30 03:57:18 +02001512 ret = tcp_v6_do_rcv(sk, skb);
Eric Dumazetc9c33212016-08-27 07:37:54 -07001513 } else if (tcp_add_backlog(sk, skb)) {
Zhu Yi6b03a532010-03-04 18:01:41 +00001514 goto discard_and_relse;
1515 }
Linus Torvalds1da177e2005-04-16 15:20:36 -07001516 bh_unlock_sock(sk);
1517
Eric Dumazete994b2f2015-10-02 11:43:39 -07001518put_and_return:
Eric Dumazet3b24d852016-04-01 08:52:17 -07001519 if (refcounted)
1520 sock_put(sk);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001521 return ret ? -1 : 0;
1522
1523no_tcp_socket:
1524 if (!xfrm6_policy_check(NULL, XFRM_POLICY_IN, skb))
1525 goto discard_it;
1526
Nicolas Dichtel2dc49d12014-12-22 18:22:48 +01001527 tcp_v6_fill_cb(skb, hdr, th);
1528
Eric Dumazet12e25e12015-06-03 23:49:21 -07001529 if (tcp_checksum_complete(skb)) {
Eric Dumazet6a5dc9e2013-04-29 08:39:56 +00001530csum_error:
Eric Dumazet90bbcc62016-04-27 16:44:32 -07001531 __TCP_INC_STATS(net, TCP_MIB_CSUMERRORS);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001532bad_packet:
Eric Dumazet90bbcc62016-04-27 16:44:32 -07001533 __TCP_INC_STATS(net, TCP_MIB_INERRS);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001534 } else {
YOSHIFUJI Hideakicfb6eeb2006-11-14 19:07:45 -08001535 tcp_v6_send_reset(NULL, skb);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001536 }
1537
1538discard_it:
Linus Torvalds1da177e2005-04-16 15:20:36 -07001539 kfree_skb(skb);
1540 return 0;
1541
1542discard_and_relse:
Eric Dumazet532182c2016-04-01 08:52:19 -07001543 sk_drops_add(sk, skb);
Eric Dumazet3b24d852016-04-01 08:52:17 -07001544 if (refcounted)
1545 sock_put(sk);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001546 goto discard_it;
1547
1548do_time_wait:
1549 if (!xfrm6_policy_check(NULL, XFRM_POLICY_IN, skb)) {
YOSHIFUJI Hideaki9469c7b2006-10-10 19:41:46 -07001550 inet_twsk_put(inet_twsk(sk));
Linus Torvalds1da177e2005-04-16 15:20:36 -07001551 goto discard_it;
1552 }
1553
Nicolas Dichtel2dc49d12014-12-22 18:22:48 +01001554 tcp_v6_fill_cb(skb, hdr, th);
1555
Eric Dumazet6a5dc9e2013-04-29 08:39:56 +00001556 if (tcp_checksum_complete(skb)) {
1557 inet_twsk_put(inet_twsk(sk));
1558 goto csum_error;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001559 }
1560
YOSHIFUJI Hideaki9469c7b2006-10-10 19:41:46 -07001561 switch (tcp_timewait_state_process(inet_twsk(sk), skb, th)) {
Linus Torvalds1da177e2005-04-16 15:20:36 -07001562 case TCP_TW_SYN:
1563 {
1564 struct sock *sk2;
1565
YOSHIFUJI Hideakic346dca2008-03-25 21:47:49 +09001566 sk2 = inet6_lookup_listener(dev_net(skb->dev), &tcp_hashinfo,
Craig Galleka5836362016-02-10 11:50:38 -05001567 skb, __tcp_hdrlen(th),
Tom Herbert5ba24952013-01-22 09:50:39 +00001568 &ipv6_hdr(skb)->saddr, th->source,
Arnaldo Carvalho de Melo0660e032007-04-25 17:54:47 -07001569 &ipv6_hdr(skb)->daddr,
David Ahern4297a0e2017-08-07 08:44:21 -07001570 ntohs(th->dest), tcp_v6_iif(skb),
1571 sdif);
Ian Morris53b24b82015-03-29 14:00:05 +01001572 if (sk2) {
Arnaldo Carvalho de Melo295ff7e2005-08-09 20:44:40 -07001573 struct inet_timewait_sock *tw = inet_twsk(sk);
Eric Dumazetdbe7faa2015-07-08 14:28:30 -07001574 inet_twsk_deschedule_put(tw);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001575 sk = sk2;
Alexey Kodanev4ad19de2015-03-27 12:24:22 +03001576 tcp_v6_restore_cb(skb);
Eric Dumazet3b24d852016-04-01 08:52:17 -07001577 refcounted = false;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001578 goto process;
1579 }
1580 /* Fall through to ACK */
1581 }
1582 case TCP_TW_ACK:
1583 tcp_v6_timewait_ack(sk, skb);
1584 break;
1585 case TCP_TW_RST:
Alexey Kodanev4ad19de2015-03-27 12:24:22 +03001586 tcp_v6_restore_cb(skb);
Florian Westphal271c3b92015-12-21 21:29:26 +01001587 tcp_v6_send_reset(sk, skb);
1588 inet_twsk_deschedule_put(inet_twsk(sk));
1589 goto discard_it;
Wang Yufen4aa956d2014-03-29 09:27:29 +08001590 case TCP_TW_SUCCESS:
1591 ;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001592 }
1593 goto discard_it;
1594}
1595
Eric Dumazetc7109982012-07-26 12:18:11 +00001596static void tcp_v6_early_demux(struct sk_buff *skb)
1597{
1598 const struct ipv6hdr *hdr;
1599 const struct tcphdr *th;
1600 struct sock *sk;
1601
1602 if (skb->pkt_type != PACKET_HOST)
1603 return;
1604
1605 if (!pskb_may_pull(skb, skb_transport_offset(skb) + sizeof(struct tcphdr)))
1606 return;
1607
1608 hdr = ipv6_hdr(skb);
1609 th = tcp_hdr(skb);
1610
1611 if (th->doff < sizeof(struct tcphdr) / 4)
1612 return;
1613
Eric Dumazet870c3152014-10-17 09:17:20 -07001614 /* Note : We use inet6_iif() here, not tcp_v6_iif() */
Eric Dumazetc7109982012-07-26 12:18:11 +00001615 sk = __inet6_lookup_established(dev_net(skb->dev), &tcp_hashinfo,
1616 &hdr->saddr, th->source,
1617 &hdr->daddr, ntohs(th->dest),
David Ahern4297a0e2017-08-07 08:44:21 -07001618 inet6_iif(skb), inet6_sdif(skb));
Eric Dumazetc7109982012-07-26 12:18:11 +00001619 if (sk) {
1620 skb->sk = sk;
1621 skb->destructor = sock_edemux;
Eric Dumazetf7e4eb02015-03-15 21:12:13 -07001622 if (sk_fullsock(sk)) {
Michal Kubečekd0c294c2015-03-23 15:14:00 +01001623 struct dst_entry *dst = READ_ONCE(sk->sk_rx_dst);
Neal Cardwellf3f12132012-10-22 21:41:48 +00001624
Eric Dumazetc7109982012-07-26 12:18:11 +00001625 if (dst)
Eric Dumazet5d299f32012-08-06 05:09:33 +00001626 dst = dst_check(dst, inet6_sk(sk)->rx_dst_cookie);
Eric Dumazetc7109982012-07-26 12:18:11 +00001627 if (dst &&
Neal Cardwellf3f12132012-10-22 21:41:48 +00001628 inet_sk(sk)->rx_dst_ifindex == skb->skb_iif)
Eric Dumazetc7109982012-07-26 12:18:11 +00001629 skb_dst_set_noref(skb, dst);
1630 }
1631 }
1632}
1633
David S. Millerccb7c412010-12-01 18:09:13 -08001634static struct timewait_sock_ops tcp6_timewait_sock_ops = {
1635 .twsk_obj_size = sizeof(struct tcp6_timewait_sock),
1636 .twsk_unique = tcp_twsk_unique,
Wang Yufen4aa956d2014-03-29 09:27:29 +08001637 .twsk_destructor = tcp_twsk_destructor,
David S. Millerccb7c412010-12-01 18:09:13 -08001638};
1639
Stephen Hemminger3b401a82009-09-01 19:25:04 +00001640static const struct inet_connection_sock_af_ops ipv6_specific = {
Arnaldo Carvalho de Melo543d9cf2006-03-20 22:48:35 -08001641 .queue_xmit = inet6_csk_xmit,
1642 .send_check = tcp_v6_send_check,
1643 .rebuild_header = inet6_sk_rebuild_header,
Eric Dumazet5d299f32012-08-06 05:09:33 +00001644 .sk_rx_dst_set = inet6_sk_rx_dst_set,
Arnaldo Carvalho de Melo543d9cf2006-03-20 22:48:35 -08001645 .conn_request = tcp_v6_conn_request,
1646 .syn_recv_sock = tcp_v6_syn_recv_sock,
Arnaldo Carvalho de Melo543d9cf2006-03-20 22:48:35 -08001647 .net_header_len = sizeof(struct ipv6hdr),
Eric Dumazet67469602012-04-24 07:37:38 +00001648 .net_frag_header_len = sizeof(struct frag_hdr),
Arnaldo Carvalho de Melo543d9cf2006-03-20 22:48:35 -08001649 .setsockopt = ipv6_setsockopt,
1650 .getsockopt = ipv6_getsockopt,
1651 .addr2sockaddr = inet6_csk_addr2sockaddr,
1652 .sockaddr_len = sizeof(struct sockaddr_in6),
Dmitry Mishin3fdadf72006-03-20 22:45:21 -08001653#ifdef CONFIG_COMPAT
Arnaldo Carvalho de Melo543d9cf2006-03-20 22:48:35 -08001654 .compat_setsockopt = compat_ipv6_setsockopt,
1655 .compat_getsockopt = compat_ipv6_getsockopt,
Dmitry Mishin3fdadf72006-03-20 22:45:21 -08001656#endif
Neal Cardwell4fab9072014-08-14 12:40:05 -04001657 .mtu_reduced = tcp_v6_mtu_reduced,
Linus Torvalds1da177e2005-04-16 15:20:36 -07001658};
1659
YOSHIFUJI Hideakicfb6eeb2006-11-14 19:07:45 -08001660#ifdef CONFIG_TCP_MD5SIG
Stephen Hemmingerb2e4b3d2009-09-01 19:25:03 +00001661static const struct tcp_sock_af_ops tcp_sock_ipv6_specific = {
YOSHIFUJI Hideakicfb6eeb2006-11-14 19:07:45 -08001662 .md5_lookup = tcp_v6_md5_lookup,
Adam Langley49a72df2008-07-19 00:01:42 -07001663 .calc_md5_hash = tcp_v6_md5_hash_skb,
YOSHIFUJI Hideakicfb6eeb2006-11-14 19:07:45 -08001664 .md5_parse = tcp_v6_parse_md5_keys,
YOSHIFUJI Hideakicfb6eeb2006-11-14 19:07:45 -08001665};
David S. Millera9286302006-11-14 19:53:22 -08001666#endif
YOSHIFUJI Hideakicfb6eeb2006-11-14 19:07:45 -08001667
Linus Torvalds1da177e2005-04-16 15:20:36 -07001668/*
1669 * TCP over IPv4 via INET6 API
1670 */
Stephen Hemminger3b401a82009-09-01 19:25:04 +00001671static const struct inet_connection_sock_af_ops ipv6_mapped = {
Arnaldo Carvalho de Melo543d9cf2006-03-20 22:48:35 -08001672 .queue_xmit = ip_queue_xmit,
1673 .send_check = tcp_v4_send_check,
1674 .rebuild_header = inet_sk_rebuild_header,
Eric Dumazet63d02d12012-08-09 14:11:00 +00001675 .sk_rx_dst_set = inet_sk_rx_dst_set,
Arnaldo Carvalho de Melo543d9cf2006-03-20 22:48:35 -08001676 .conn_request = tcp_v6_conn_request,
1677 .syn_recv_sock = tcp_v6_syn_recv_sock,
Arnaldo Carvalho de Melo543d9cf2006-03-20 22:48:35 -08001678 .net_header_len = sizeof(struct iphdr),
1679 .setsockopt = ipv6_setsockopt,
1680 .getsockopt = ipv6_getsockopt,
1681 .addr2sockaddr = inet6_csk_addr2sockaddr,
1682 .sockaddr_len = sizeof(struct sockaddr_in6),
Dmitry Mishin3fdadf72006-03-20 22:45:21 -08001683#ifdef CONFIG_COMPAT
Arnaldo Carvalho de Melo543d9cf2006-03-20 22:48:35 -08001684 .compat_setsockopt = compat_ipv6_setsockopt,
1685 .compat_getsockopt = compat_ipv6_getsockopt,
Dmitry Mishin3fdadf72006-03-20 22:45:21 -08001686#endif
Neal Cardwell4fab9072014-08-14 12:40:05 -04001687 .mtu_reduced = tcp_v4_mtu_reduced,
Linus Torvalds1da177e2005-04-16 15:20:36 -07001688};
1689
YOSHIFUJI Hideakicfb6eeb2006-11-14 19:07:45 -08001690#ifdef CONFIG_TCP_MD5SIG
Stephen Hemmingerb2e4b3d2009-09-01 19:25:03 +00001691static const struct tcp_sock_af_ops tcp_sock_ipv6_mapped_specific = {
YOSHIFUJI Hideakicfb6eeb2006-11-14 19:07:45 -08001692 .md5_lookup = tcp_v4_md5_lookup,
Adam Langley49a72df2008-07-19 00:01:42 -07001693 .calc_md5_hash = tcp_v4_md5_hash_skb,
YOSHIFUJI Hideakicfb6eeb2006-11-14 19:07:45 -08001694 .md5_parse = tcp_v6_parse_md5_keys,
YOSHIFUJI Hideakicfb6eeb2006-11-14 19:07:45 -08001695};
David S. Millera9286302006-11-14 19:53:22 -08001696#endif
YOSHIFUJI Hideakicfb6eeb2006-11-14 19:07:45 -08001697
Linus Torvalds1da177e2005-04-16 15:20:36 -07001698/* NOTE: A lot of things set to zero explicitly by call to
1699 * sk_alloc() so need not be done here.
1700 */
1701static int tcp_v6_init_sock(struct sock *sk)
1702{
Arnaldo Carvalho de Melo6687e982005-08-10 04:03:31 -03001703 struct inet_connection_sock *icsk = inet_csk(sk);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001704
Neal Cardwell900f65d2012-04-19 09:55:21 +00001705 tcp_init_sock(sk);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001706
Arnaldo Carvalho de Melo8292a172005-12-13 23:15:52 -08001707 icsk->icsk_af_ops = &ipv6_specific;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001708
YOSHIFUJI Hideakicfb6eeb2006-11-14 19:07:45 -08001709#ifdef CONFIG_TCP_MD5SIG
David S. Millerac807fa2012-04-23 03:21:58 -04001710 tcp_sk(sk)->af_specific = &tcp_sock_ipv6_specific;
YOSHIFUJI Hideakicfb6eeb2006-11-14 19:07:45 -08001711#endif
1712
Linus Torvalds1da177e2005-04-16 15:20:36 -07001713 return 0;
1714}
1715
Brian Haley7d06b2e2008-06-14 17:04:49 -07001716static void tcp_v6_destroy_sock(struct sock *sk)
Linus Torvalds1da177e2005-04-16 15:20:36 -07001717{
Linus Torvalds1da177e2005-04-16 15:20:36 -07001718 tcp_v4_destroy_sock(sk);
Brian Haley7d06b2e2008-06-14 17:04:49 -07001719 inet6_destroy_sock(sk);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001720}
1721
YOSHIFUJI Hideaki952a10b2007-04-21 20:13:44 +09001722#ifdef CONFIG_PROC_FS
Linus Torvalds1da177e2005-04-16 15:20:36 -07001723/* Proc filesystem TCPv6 sock list dumping. */
YOSHIFUJI Hideaki1ab14572007-02-09 23:24:49 +09001724static void get_openreq6(struct seq_file *seq,
Eric Dumazetaa3a0c82015-10-02 11:43:30 -07001725 const struct request_sock *req, int i)
Linus Torvalds1da177e2005-04-16 15:20:36 -07001726{
Eric Dumazetfa76ce732015-03-19 19:04:20 -07001727 long ttd = req->rsk_timer.expires - jiffies;
Eric Dumazet634fb9792013-10-09 15:21:29 -07001728 const struct in6_addr *src = &inet_rsk(req)->ir_v6_loc_addr;
1729 const struct in6_addr *dest = &inet_rsk(req)->ir_v6_rmt_addr;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001730
1731 if (ttd < 0)
1732 ttd = 0;
1733
Linus Torvalds1da177e2005-04-16 15:20:36 -07001734 seq_printf(seq,
1735 "%4d: %08X%08X%08X%08X:%04X %08X%08X%08X%08X:%04X "
Francesco Fuscod14c5ab2013-08-15 13:42:14 +02001736 "%02X %08X:%08X %02X:%08lX %08X %5u %8d %d %d %pK\n",
Linus Torvalds1da177e2005-04-16 15:20:36 -07001737 i,
1738 src->s6_addr32[0], src->s6_addr32[1],
1739 src->s6_addr32[2], src->s6_addr32[3],
Eric Dumazetb44084c2013-10-10 00:04:37 -07001740 inet_rsk(req)->ir_num,
Linus Torvalds1da177e2005-04-16 15:20:36 -07001741 dest->s6_addr32[0], dest->s6_addr32[1],
1742 dest->s6_addr32[2], dest->s6_addr32[3],
Eric Dumazet634fb9792013-10-09 15:21:29 -07001743 ntohs(inet_rsk(req)->ir_rmt_port),
Linus Torvalds1da177e2005-04-16 15:20:36 -07001744 TCP_SYN_RECV,
Weilong Chen4c99aa42013-12-19 18:44:34 +08001745 0, 0, /* could print option size, but that is af dependent. */
YOSHIFUJI Hideaki1ab14572007-02-09 23:24:49 +09001746 1, /* timers active (only the expire timer) */
1747 jiffies_to_clock_t(ttd),
Eric Dumazete6c022a2012-10-27 23:16:46 +00001748 req->num_timeout,
Eric Dumazetaa3a0c82015-10-02 11:43:30 -07001749 from_kuid_munged(seq_user_ns(seq),
1750 sock_i_uid(req->rsk_listener)),
YOSHIFUJI Hideaki1ab14572007-02-09 23:24:49 +09001751 0, /* non standard timer */
Linus Torvalds1da177e2005-04-16 15:20:36 -07001752 0, /* open_requests have no inode */
1753 0, req);
1754}
1755
1756static void get_tcp6_sock(struct seq_file *seq, struct sock *sp, int i)
1757{
Eric Dumazetb71d1d42011-04-22 04:53:02 +00001758 const struct in6_addr *dest, *src;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001759 __u16 destp, srcp;
1760 int timer_active;
1761 unsigned long timer_expires;
Eric Dumazetcf533ea2011-10-21 05:22:42 -04001762 const struct inet_sock *inet = inet_sk(sp);
1763 const struct tcp_sock *tp = tcp_sk(sp);
Arnaldo Carvalho de Melo463c84b2005-08-09 20:10:42 -07001764 const struct inet_connection_sock *icsk = inet_csk(sp);
Eric Dumazet0536fcc2015-09-29 07:42:52 -07001765 const struct fastopen_queue *fastopenq = &icsk->icsk_accept_queue.fastopenq;
Eric Dumazet00fd38d2015-11-12 08:43:18 -08001766 int rx_queue;
1767 int state;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001768
Eric Dumazetefe42082013-10-03 15:42:29 -07001769 dest = &sp->sk_v6_daddr;
1770 src = &sp->sk_v6_rcv_saddr;
Eric Dumazetc720c7e2009-10-15 06:30:45 +00001771 destp = ntohs(inet->inet_dport);
1772 srcp = ntohs(inet->inet_sport);
Arnaldo Carvalho de Melo463c84b2005-08-09 20:10:42 -07001773
Yuchung Chengce3cf4e2016-06-06 15:07:18 -07001774 if (icsk->icsk_pending == ICSK_TIME_RETRANS ||
Yuchung Cheng57dde7f2017-01-12 22:11:33 -08001775 icsk->icsk_pending == ICSK_TIME_REO_TIMEOUT ||
Yuchung Chengce3cf4e2016-06-06 15:07:18 -07001776 icsk->icsk_pending == ICSK_TIME_LOSS_PROBE) {
Linus Torvalds1da177e2005-04-16 15:20:36 -07001777 timer_active = 1;
Arnaldo Carvalho de Melo463c84b2005-08-09 20:10:42 -07001778 timer_expires = icsk->icsk_timeout;
1779 } else if (icsk->icsk_pending == ICSK_TIME_PROBE0) {
Linus Torvalds1da177e2005-04-16 15:20:36 -07001780 timer_active = 4;
Arnaldo Carvalho de Melo463c84b2005-08-09 20:10:42 -07001781 timer_expires = icsk->icsk_timeout;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001782 } else if (timer_pending(&sp->sk_timer)) {
1783 timer_active = 2;
1784 timer_expires = sp->sk_timer.expires;
1785 } else {
1786 timer_active = 0;
1787 timer_expires = jiffies;
1788 }
1789
Eric Dumazet00fd38d2015-11-12 08:43:18 -08001790 state = sk_state_load(sp);
1791 if (state == TCP_LISTEN)
1792 rx_queue = sp->sk_ack_backlog;
1793 else
1794 /* Because we don't lock the socket,
1795 * we might find a transient negative value.
1796 */
1797 rx_queue = max_t(int, tp->rcv_nxt - tp->copied_seq, 0);
1798
Linus Torvalds1da177e2005-04-16 15:20:36 -07001799 seq_printf(seq,
1800 "%4d: %08X%08X%08X%08X:%04X %08X%08X%08X%08X:%04X "
Francesco Fuscod14c5ab2013-08-15 13:42:14 +02001801 "%02X %08X:%08X %02X:%08lX %08X %5u %8d %lu %d %pK %lu %lu %u %u %d\n",
Linus Torvalds1da177e2005-04-16 15:20:36 -07001802 i,
1803 src->s6_addr32[0], src->s6_addr32[1],
1804 src->s6_addr32[2], src->s6_addr32[3], srcp,
1805 dest->s6_addr32[0], dest->s6_addr32[1],
1806 dest->s6_addr32[2], dest->s6_addr32[3], destp,
Eric Dumazet00fd38d2015-11-12 08:43:18 -08001807 state,
1808 tp->write_seq - tp->snd_una,
1809 rx_queue,
Linus Torvalds1da177e2005-04-16 15:20:36 -07001810 timer_active,
Eric Dumazeta399a802012-08-08 21:13:53 +00001811 jiffies_delta_to_clock_t(timer_expires - jiffies),
Arnaldo Carvalho de Melo463c84b2005-08-09 20:10:42 -07001812 icsk->icsk_retransmits,
Eric W. Biedermana7cb5a42012-05-24 01:10:10 -06001813 from_kuid_munged(seq_user_ns(seq), sock_i_uid(sp)),
Arnaldo Carvalho de Melo6687e982005-08-10 04:03:31 -03001814 icsk->icsk_probes_out,
Linus Torvalds1da177e2005-04-16 15:20:36 -07001815 sock_i_ino(sp),
Reshetova, Elena41c6d652017-06-30 13:08:01 +03001816 refcount_read(&sp->sk_refcnt), sp,
Stephen Hemminger7be87352008-06-27 20:00:19 -07001817 jiffies_to_clock_t(icsk->icsk_rto),
1818 jiffies_to_clock_t(icsk->icsk_ack.ato),
Weilong Chen4c99aa42013-12-19 18:44:34 +08001819 (icsk->icsk_ack.quick << 1) | icsk->icsk_ack.pingpong,
Ilpo Järvinen0b6a05c2009-09-15 01:30:10 -07001820 tp->snd_cwnd,
Eric Dumazet00fd38d2015-11-12 08:43:18 -08001821 state == TCP_LISTEN ?
Eric Dumazet0536fcc2015-09-29 07:42:52 -07001822 fastopenq->max_qlen :
Yuchung Cheng0a672f72014-05-11 20:22:12 -07001823 (tcp_in_initial_slowstart(tp) ? -1 : tp->snd_ssthresh)
Linus Torvalds1da177e2005-04-16 15:20:36 -07001824 );
1825}
1826
YOSHIFUJI Hideaki1ab14572007-02-09 23:24:49 +09001827static void get_timewait6_sock(struct seq_file *seq,
Arnaldo Carvalho de Melo8feaf0c02005-08-09 20:09:30 -07001828 struct inet_timewait_sock *tw, int i)
Linus Torvalds1da177e2005-04-16 15:20:36 -07001829{
Eric Dumazet789f5582015-04-12 18:51:09 -07001830 long delta = tw->tw_timer.expires - jiffies;
Eric Dumazetb71d1d42011-04-22 04:53:02 +00001831 const struct in6_addr *dest, *src;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001832 __u16 destp, srcp;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001833
Eric Dumazetefe42082013-10-03 15:42:29 -07001834 dest = &tw->tw_v6_daddr;
1835 src = &tw->tw_v6_rcv_saddr;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001836 destp = ntohs(tw->tw_dport);
1837 srcp = ntohs(tw->tw_sport);
1838
1839 seq_printf(seq,
1840 "%4d: %08X%08X%08X%08X:%04X %08X%08X%08X%08X:%04X "
Dan Rosenberg71338aa2011-05-23 12:17:35 +00001841 "%02X %08X:%08X %02X:%08lX %08X %5d %8d %d %d %pK\n",
Linus Torvalds1da177e2005-04-16 15:20:36 -07001842 i,
1843 src->s6_addr32[0], src->s6_addr32[1],
1844 src->s6_addr32[2], src->s6_addr32[3], srcp,
1845 dest->s6_addr32[0], dest->s6_addr32[1],
1846 dest->s6_addr32[2], dest->s6_addr32[3], destp,
1847 tw->tw_substate, 0, 0,
Eric Dumazeta399a802012-08-08 21:13:53 +00001848 3, jiffies_delta_to_clock_t(delta), 0, 0, 0, 0,
Reshetova, Elena41c6d652017-06-30 13:08:01 +03001849 refcount_read(&tw->tw_refcnt), tw);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001850}
1851
Linus Torvalds1da177e2005-04-16 15:20:36 -07001852static int tcp6_seq_show(struct seq_file *seq, void *v)
1853{
1854 struct tcp_iter_state *st;
Eric Dumazet05dbc7b2013-10-03 00:22:02 -07001855 struct sock *sk = v;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001856
1857 if (v == SEQ_START_TOKEN) {
1858 seq_puts(seq,
1859 " sl "
1860 "local_address "
1861 "remote_address "
1862 "st tx_queue rx_queue tr tm->when retrnsmt"
1863 " uid timeout inode\n");
1864 goto out;
1865 }
1866 st = seq->private;
1867
Eric Dumazet079096f2015-10-02 11:43:32 -07001868 if (sk->sk_state == TCP_TIME_WAIT)
1869 get_timewait6_sock(seq, v, st->num);
1870 else if (sk->sk_state == TCP_NEW_SYN_RECV)
Eric Dumazetaa3a0c82015-10-02 11:43:30 -07001871 get_openreq6(seq, v, st->num);
Eric Dumazet079096f2015-10-02 11:43:32 -07001872 else
1873 get_tcp6_sock(seq, v, st->num);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001874out:
1875 return 0;
1876}
1877
Arjan van de Ven73cb88e2011-10-30 06:46:30 +00001878static const struct file_operations tcp6_afinfo_seq_fops = {
1879 .owner = THIS_MODULE,
1880 .open = tcp_seq_open,
1881 .read = seq_read,
1882 .llseek = seq_lseek,
1883 .release = seq_release_net
1884};
1885
Linus Torvalds1da177e2005-04-16 15:20:36 -07001886static struct tcp_seq_afinfo tcp6_seq_afinfo = {
Linus Torvalds1da177e2005-04-16 15:20:36 -07001887 .name = "tcp6",
1888 .family = AF_INET6,
Arjan van de Ven73cb88e2011-10-30 06:46:30 +00001889 .seq_fops = &tcp6_afinfo_seq_fops,
Denis V. Lunev9427c4b2008-04-13 22:12:13 -07001890 .seq_ops = {
1891 .show = tcp6_seq_show,
1892 },
Linus Torvalds1da177e2005-04-16 15:20:36 -07001893};
1894
Alexey Dobriyan2c8c1e72010-01-17 03:35:32 +00001895int __net_init tcp6_proc_init(struct net *net)
Linus Torvalds1da177e2005-04-16 15:20:36 -07001896{
Daniel Lezcano6f8b13b2008-03-21 04:14:45 -07001897 return tcp_proc_register(net, &tcp6_seq_afinfo);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001898}
1899
Daniel Lezcano6f8b13b2008-03-21 04:14:45 -07001900void tcp6_proc_exit(struct net *net)
Linus Torvalds1da177e2005-04-16 15:20:36 -07001901{
Daniel Lezcano6f8b13b2008-03-21 04:14:45 -07001902 tcp_proc_unregister(net, &tcp6_seq_afinfo);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001903}
1904#endif
1905
1906struct proto tcpv6_prot = {
1907 .name = "TCPv6",
1908 .owner = THIS_MODULE,
1909 .close = tcp_close,
1910 .connect = tcp_v6_connect,
1911 .disconnect = tcp_disconnect,
Arnaldo Carvalho de Melo463c84b2005-08-09 20:10:42 -07001912 .accept = inet_csk_accept,
Linus Torvalds1da177e2005-04-16 15:20:36 -07001913 .ioctl = tcp_ioctl,
1914 .init = tcp_v6_init_sock,
1915 .destroy = tcp_v6_destroy_sock,
1916 .shutdown = tcp_shutdown,
1917 .setsockopt = tcp_setsockopt,
1918 .getsockopt = tcp_getsockopt,
Ursula Braun4b9d07a2017-01-09 16:55:12 +01001919 .keepalive = tcp_set_keepalive,
Linus Torvalds1da177e2005-04-16 15:20:36 -07001920 .recvmsg = tcp_recvmsg,
Changli Gao7ba42912010-07-10 20:41:55 +00001921 .sendmsg = tcp_sendmsg,
1922 .sendpage = tcp_sendpage,
Linus Torvalds1da177e2005-04-16 15:20:36 -07001923 .backlog_rcv = tcp_v6_do_rcv,
Eric Dumazet46d3cea2012-07-11 05:50:31 +00001924 .release_cb = tcp_release_cb,
Craig Gallek496611d2016-02-10 11:50:36 -05001925 .hash = inet6_hash,
Arnaldo Carvalho de Meloab1e0a12008-02-03 04:06:04 -08001926 .unhash = inet_unhash,
1927 .get_port = inet_csk_get_port,
Linus Torvalds1da177e2005-04-16 15:20:36 -07001928 .enter_memory_pressure = tcp_enter_memory_pressure,
Eric Dumazet06044752017-06-07 13:29:12 -07001929 .leave_memory_pressure = tcp_leave_memory_pressure,
Eric Dumazetc9bee3b72013-07-22 20:27:07 -07001930 .stream_memory_free = tcp_stream_memory_free,
Linus Torvalds1da177e2005-04-16 15:20:36 -07001931 .sockets_allocated = &tcp_sockets_allocated,
1932 .memory_allocated = &tcp_memory_allocated,
1933 .memory_pressure = &tcp_memory_pressure,
Arnaldo Carvalho de Melo0a5578c2005-08-09 20:11:41 -07001934 .orphan_count = &tcp_orphan_count,
Eric W. Biedermana4fe34b2013-10-19 16:25:36 -07001935 .sysctl_mem = sysctl_tcp_mem,
Linus Torvalds1da177e2005-04-16 15:20:36 -07001936 .sysctl_wmem = sysctl_tcp_wmem,
1937 .sysctl_rmem = sysctl_tcp_rmem,
1938 .max_header = MAX_TCP_HEADER,
1939 .obj_size = sizeof(struct tcp6_sock),
Paul E. McKenney5f0d5a32017-01-18 02:53:44 -08001940 .slab_flags = SLAB_TYPESAFE_BY_RCU,
Arnaldo Carvalho de Melo6d6ee432005-12-13 23:25:19 -08001941 .twsk_prot = &tcp6_timewait_sock_ops,
Arnaldo Carvalho de Melo60236fd2005-06-18 22:47:21 -07001942 .rsk_prot = &tcp6_request_sock_ops,
Pavel Emelyanov39d8cda2008-03-22 16:50:58 -07001943 .h.hashinfo = &tcp_hashinfo,
Changli Gao7ba42912010-07-10 20:41:55 +00001944 .no_autobind = true,
Arnaldo Carvalho de Melo543d9cf2006-03-20 22:48:35 -08001945#ifdef CONFIG_COMPAT
1946 .compat_setsockopt = compat_tcp_setsockopt,
1947 .compat_getsockopt = compat_tcp_getsockopt,
1948#endif
Lorenzo Colittic1e64e22015-12-16 12:30:05 +09001949 .diag_destroy = tcp_abort,
Linus Torvalds1da177e2005-04-16 15:20:36 -07001950};
1951
David Aherna8e3bb32017-08-28 15:14:20 -07001952/* thinking of making this const? Don't.
1953 * early_demux can change based on sysctl.
1954 */
Julia Lawall39294c32017-08-01 18:27:28 +02001955static struct inet6_protocol tcpv6_protocol = {
Eric Dumazetc7109982012-07-26 12:18:11 +00001956 .early_demux = tcp_v6_early_demux,
subashab@codeaurora.orgdddb64b2017-03-23 13:34:16 -06001957 .early_demux_handler = tcp_v6_early_demux,
Linus Torvalds1da177e2005-04-16 15:20:36 -07001958 .handler = tcp_v6_rcv,
1959 .err_handler = tcp_v6_err,
1960 .flags = INET6_PROTO_NOPOLICY|INET6_PROTO_FINAL,
1961};
1962
Linus Torvalds1da177e2005-04-16 15:20:36 -07001963static struct inet_protosw tcpv6_protosw = {
1964 .type = SOCK_STREAM,
1965 .protocol = IPPROTO_TCP,
1966 .prot = &tcpv6_prot,
1967 .ops = &inet6_stream_ops,
Arnaldo Carvalho de Melod83d8462005-12-13 23:26:10 -08001968 .flags = INET_PROTOSW_PERMANENT |
1969 INET_PROTOSW_ICSK,
Linus Torvalds1da177e2005-04-16 15:20:36 -07001970};
1971
Alexey Dobriyan2c8c1e72010-01-17 03:35:32 +00001972static int __net_init tcpv6_net_init(struct net *net)
Daniel Lezcano93ec9262008-03-07 11:16:02 -08001973{
Denis V. Lunev56772422008-04-03 14:28:30 -07001974 return inet_ctl_sock_create(&net->ipv6.tcp_sk, PF_INET6,
1975 SOCK_RAW, IPPROTO_TCP, net);
Daniel Lezcano93ec9262008-03-07 11:16:02 -08001976}
1977
Alexey Dobriyan2c8c1e72010-01-17 03:35:32 +00001978static void __net_exit tcpv6_net_exit(struct net *net)
Daniel Lezcano93ec9262008-03-07 11:16:02 -08001979{
Denis V. Lunev56772422008-04-03 14:28:30 -07001980 inet_ctl_sock_destroy(net->ipv6.tcp_sk);
Eric W. Biedermanb099ce22009-12-03 02:29:09 +00001981}
1982
Alexey Dobriyan2c8c1e72010-01-17 03:35:32 +00001983static void __net_exit tcpv6_net_exit_batch(struct list_head *net_exit_list)
Eric W. Biedermanb099ce22009-12-03 02:29:09 +00001984{
Haishuang Yan1946e672016-12-28 17:52:32 +08001985 inet_twsk_purge(&tcp_hashinfo, AF_INET6);
Daniel Lezcano93ec9262008-03-07 11:16:02 -08001986}
1987
1988static struct pernet_operations tcpv6_net_ops = {
Eric W. Biedermanb099ce22009-12-03 02:29:09 +00001989 .init = tcpv6_net_init,
1990 .exit = tcpv6_net_exit,
1991 .exit_batch = tcpv6_net_exit_batch,
Daniel Lezcano93ec9262008-03-07 11:16:02 -08001992};
1993
Daniel Lezcano7f4e4862007-12-11 02:25:35 -08001994int __init tcpv6_init(void)
Linus Torvalds1da177e2005-04-16 15:20:36 -07001995{
Daniel Lezcano7f4e4862007-12-11 02:25:35 -08001996 int ret;
David Woodhouseae0f7d52006-01-11 15:53:04 -08001997
Vlad Yasevich33362882012-11-15 08:49:15 +00001998 ret = inet6_add_protocol(&tcpv6_protocol, IPPROTO_TCP);
1999 if (ret)
Vlad Yasevichc6b641a2012-11-15 08:49:22 +00002000 goto out;
Vlad Yasevich33362882012-11-15 08:49:15 +00002001
Daniel Lezcano7f4e4862007-12-11 02:25:35 -08002002 /* register inet6 protocol */
2003 ret = inet6_register_protosw(&tcpv6_protosw);
2004 if (ret)
2005 goto out_tcpv6_protocol;
2006
Daniel Lezcano93ec9262008-03-07 11:16:02 -08002007 ret = register_pernet_subsys(&tcpv6_net_ops);
Daniel Lezcano7f4e4862007-12-11 02:25:35 -08002008 if (ret)
2009 goto out_tcpv6_protosw;
2010out:
2011 return ret;
2012
Daniel Lezcano7f4e4862007-12-11 02:25:35 -08002013out_tcpv6_protosw:
2014 inet6_unregister_protosw(&tcpv6_protosw);
Vlad Yasevich33362882012-11-15 08:49:15 +00002015out_tcpv6_protocol:
2016 inet6_del_protocol(&tcpv6_protocol, IPPROTO_TCP);
Daniel Lezcano7f4e4862007-12-11 02:25:35 -08002017 goto out;
2018}
2019
Daniel Lezcano09f77092007-12-13 05:34:58 -08002020void tcpv6_exit(void)
Daniel Lezcano7f4e4862007-12-11 02:25:35 -08002021{
Daniel Lezcano93ec9262008-03-07 11:16:02 -08002022 unregister_pernet_subsys(&tcpv6_net_ops);
Daniel Lezcano7f4e4862007-12-11 02:25:35 -08002023 inet6_unregister_protosw(&tcpv6_protosw);
2024 inet6_del_protocol(&tcpv6_protocol, IPPROTO_TCP);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002025}