blob: 6fc3e131237d2cd9625240e8686324ebee02e424 [file] [log] [blame]
Linus Torvalds1da177e2005-04-16 15:20:36 -07001/*
2 *
3 * Generic internet FLOW.
4 *
5 */
6
7#ifndef _NET_FLOW_H
8#define _NET_FLOW_H
9
dpwardaa1c3662011-09-05 16:47:24 +000010#include <linux/socket.h>
Linus Torvalds1da177e2005-04-16 15:20:36 -070011#include <linux/in6.h>
Arun Sharma600634972011-07-26 16:09:06 -070012#include <linux/atomic.h>
Tom Herbertc6cc1ca2015-09-01 09:24:25 -070013#include <net/flow_dissector.h>
Lorenzo Colitti2ec93fe2016-11-04 02:23:42 +090014#include <linux/uidgid.h>
Linus Torvalds1da177e2005-04-16 15:20:36 -070015
Cong Wang6a662712014-04-15 16:25:34 -070016/*
17 * ifindex generation is per-net namespace, and loopback is
18 * always the 1st device in ns (see net_dev_init), thus any
19 * loopback device should get ifindex 1
20 */
21
22#define LOOPBACK_IFINDEX 1
23
Thomas Graf1b7179d2015-07-21 10:43:59 +020024struct flowi_tunnel {
25 __be64 tun_id;
26};
27
Steffen Klassert6de6e332018-06-12 14:06:57 +020028struct flowi_xfrm {
29 __u32 if_id;
30};
31
David S. Miller806566c2011-03-11 18:22:00 -050032struct flowi_common {
33 int flowic_oif;
34 int flowic_iif;
35 __u32 flowic_mark;
36 __u8 flowic_tos;
37 __u8 flowic_scope;
38 __u8 flowic_proto;
39 __u8 flowic_flags;
David S. Millerfbef0a42011-03-11 15:55:37 -050040#define FLOWI_FLAG_ANYSRC 0x01
Steffen Klassert0e0d44a2013-08-28 08:04:14 +020041#define FLOWI_FLAG_KNOWN_NH 0x02
David Ahernc71ad3d2016-09-10 12:10:02 -070042#define FLOWI_FLAG_SKIP_NH_OIF 0x04
David S. Miller806566c2011-03-11 18:22:00 -050043 __u32 flowic_secid;
Thomas Graf1b7179d2015-07-21 10:43:59 +020044 struct flowi_tunnel flowic_tun_key;
Steffen Klassert6de6e332018-06-12 14:06:57 +020045 struct flowi_xfrm xfrm;
Lorenzo Colitti2ec93fe2016-11-04 02:23:42 +090046 kuid_t flowic_uid;
David S. Miller806566c2011-03-11 18:22:00 -050047};
48
David S. Miller08704bc2011-03-11 18:36:42 -050049union flowi_uli {
50 struct {
David S. Miller08704bc2011-03-11 18:36:42 -050051 __be16 dport;
David S. Miller9b12c752011-03-31 18:03:35 -070052 __be16 sport;
David S. Miller08704bc2011-03-11 18:36:42 -050053 } ports;
54
55 struct {
56 __u8 type;
57 __u8 code;
58 } icmpt;
59
60 struct {
David S. Miller08704bc2011-03-11 18:36:42 -050061 __le16 dport;
David S. Miller9b12c752011-03-31 18:03:35 -070062 __le16 sport;
David S. Miller08704bc2011-03-11 18:36:42 -050063 } dnports;
64
65 __be32 spi;
66 __be32 gre_key;
67
68 struct {
69 __u8 type;
70 } mht;
71};
72
David S. Miller56bb8052011-03-12 00:44:35 -050073struct flowi4 {
David S. Miller806566c2011-03-11 18:22:00 -050074 struct flowi_common __fl_common;
David S. Miller22bd5b92011-03-11 19:54:08 -050075#define flowi4_oif __fl_common.flowic_oif
76#define flowi4_iif __fl_common.flowic_iif
77#define flowi4_mark __fl_common.flowic_mark
78#define flowi4_tos __fl_common.flowic_tos
79#define flowi4_scope __fl_common.flowic_scope
80#define flowi4_proto __fl_common.flowic_proto
81#define flowi4_flags __fl_common.flowic_flags
82#define flowi4_secid __fl_common.flowic_secid
Thomas Graf1b7179d2015-07-21 10:43:59 +020083#define flowi4_tun_key __fl_common.flowic_tun_key
Lorenzo Colitti2ec93fe2016-11-04 02:23:42 +090084#define flowi4_uid __fl_common.flowic_uid
Steffen Klassert6de6e332018-06-12 14:06:57 +020085#define flowi4_xfrm __fl_common.xfrm
Eric Dumazet84f93072011-11-30 19:00:53 +000086
87 /* (saddr,daddr) must be grouped, same order as in IP header */
David S. Miller56bb8052011-03-12 00:44:35 -050088 __be32 saddr;
Eric Dumazet84f93072011-11-30 19:00:53 +000089 __be32 daddr;
90
David S. Miller56bb8052011-03-12 00:44:35 -050091 union flowi_uli uli;
David S. Miller9cce96d2011-03-12 03:00:33 -050092#define fl4_sport uli.ports.sport
93#define fl4_dport uli.ports.dport
94#define fl4_icmp_type uli.icmpt.type
95#define fl4_icmp_code uli.icmpt.code
96#define fl4_ipsec_spi uli.spi
97#define fl4_mh_type uli.mht.type
98#define fl4_gre_key uli.gre_key
David Ward728871b2011-09-05 16:47:23 +000099} __attribute__((__aligned__(BITS_PER_LONG/8)));
Linus Torvalds1da177e2005-04-16 15:20:36 -0700100
David S. Miller83229aa2011-03-31 04:52:14 -0700101static inline void flowi4_init_output(struct flowi4 *fl4, int oif,
102 __u32 mark, __u8 tos, __u8 scope,
103 __u8 proto, __u8 flags,
104 __be32 daddr, __be32 saddr,
Lorenzo Colitti50442922016-11-04 02:23:43 +0900105 __be16 dport, __be16 sport,
106 kuid_t uid)
David S. Miller83229aa2011-03-31 04:52:14 -0700107{
108 fl4->flowi4_oif = oif;
Cong Wang6a662712014-04-15 16:25:34 -0700109 fl4->flowi4_iif = LOOPBACK_IFINDEX;
David S. Miller83229aa2011-03-31 04:52:14 -0700110 fl4->flowi4_mark = mark;
111 fl4->flowi4_tos = tos;
112 fl4->flowi4_scope = scope;
113 fl4->flowi4_proto = proto;
114 fl4->flowi4_flags = flags;
115 fl4->flowi4_secid = 0;
Thomas Graf1b7179d2015-07-21 10:43:59 +0200116 fl4->flowi4_tun_key.tun_id = 0;
Steffen Klassert6de6e332018-06-12 14:06:57 +0200117 fl4->flowi4_xfrm.if_id = 0;
Lorenzo Colitti50442922016-11-04 02:23:43 +0900118 fl4->flowi4_uid = uid;
David S. Miller83229aa2011-03-31 04:52:14 -0700119 fl4->daddr = daddr;
120 fl4->saddr = saddr;
David S. Miller83229aa2011-03-31 04:52:14 -0700121 fl4->fl4_dport = dport;
David S. Miller9b12c752011-03-31 18:03:35 -0700122 fl4->fl4_sport = sport;
David S. Miller83229aa2011-03-31 04:52:14 -0700123}
Julian Anastasove6b45242012-02-04 13:04:46 +0000124
125/* Reset some input parameters after previous lookup */
126static inline void flowi4_update_output(struct flowi4 *fl4, int oif, __u8 tos,
127 __be32 daddr, __be32 saddr)
128{
129 fl4->flowi4_oif = oif;
130 fl4->flowi4_tos = tos;
131 fl4->daddr = daddr;
132 fl4->saddr = saddr;
133}
David S. Miller83229aa2011-03-31 04:52:14 -0700134
135
David S. Miller56bb8052011-03-12 00:44:35 -0500136struct flowi6 {
137 struct flowi_common __fl_common;
David S. Miller20326562011-03-12 02:30:50 -0500138#define flowi6_oif __fl_common.flowic_oif
139#define flowi6_iif __fl_common.flowic_iif
140#define flowi6_mark __fl_common.flowic_mark
David S. Miller20326562011-03-12 02:30:50 -0500141#define flowi6_scope __fl_common.flowic_scope
142#define flowi6_proto __fl_common.flowic_proto
143#define flowi6_flags __fl_common.flowic_flags
144#define flowi6_secid __fl_common.flowic_secid
Jiri Benc904af042015-08-20 13:56:31 +0200145#define flowi6_tun_key __fl_common.flowic_tun_key
Lorenzo Colitti2ec93fe2016-11-04 02:23:42 +0900146#define flowi6_uid __fl_common.flowic_uid
Steffen Klassert6de6e332018-06-12 14:06:57 +0200147#define flowi6_xfrm __fl_common.xfrm
David S. Miller56bb8052011-03-12 00:44:35 -0500148 struct in6_addr daddr;
149 struct in6_addr saddr;
Daniel Borkmann69716a22016-03-18 18:37:59 +0100150 /* Note: flowi6_tos is encoded in flowlabel, too. */
David S. Miller56bb8052011-03-12 00:44:35 -0500151 __be32 flowlabel;
152 union flowi_uli uli;
David S. Miller1958b852011-03-12 16:36:19 -0500153#define fl6_sport uli.ports.sport
154#define fl6_dport uli.ports.dport
155#define fl6_icmp_type uli.icmpt.type
156#define fl6_icmp_code uli.icmpt.code
157#define fl6_ipsec_spi uli.spi
158#define fl6_mh_type uli.mht.type
159#define fl6_gre_key uli.gre_key
David Ward728871b2011-09-05 16:47:23 +0000160} __attribute__((__aligned__(BITS_PER_LONG/8)));
David S. Miller56bb8052011-03-12 00:44:35 -0500161
162struct flowidn {
163 struct flowi_common __fl_common;
David S. Millerbef55ae2011-03-12 17:17:10 -0500164#define flowidn_oif __fl_common.flowic_oif
165#define flowidn_iif __fl_common.flowic_iif
166#define flowidn_mark __fl_common.flowic_mark
167#define flowidn_scope __fl_common.flowic_scope
168#define flowidn_proto __fl_common.flowic_proto
169#define flowidn_flags __fl_common.flowic_flags
David S. Miller56bb8052011-03-12 00:44:35 -0500170 __le16 daddr;
171 __le16 saddr;
172 union flowi_uli uli;
David S. Millerbef55ae2011-03-12 17:17:10 -0500173#define fld_sport uli.ports.sport
174#define fld_dport uli.ports.dport
David Ward728871b2011-09-05 16:47:23 +0000175} __attribute__((__aligned__(BITS_PER_LONG/8)));
David S. Miller56bb8052011-03-12 00:44:35 -0500176
177struct flowi {
Linus Torvalds1da177e2005-04-16 15:20:36 -0700178 union {
David S. Miller56bb8052011-03-12 00:44:35 -0500179 struct flowi_common __fl_common;
180 struct flowi4 ip4;
181 struct flowi6 ip6;
182 struct flowidn dn;
183 } u;
184#define flowi_oif u.__fl_common.flowic_oif
185#define flowi_iif u.__fl_common.flowic_iif
186#define flowi_mark u.__fl_common.flowic_mark
187#define flowi_tos u.__fl_common.flowic_tos
188#define flowi_scope u.__fl_common.flowic_scope
189#define flowi_proto u.__fl_common.flowic_proto
190#define flowi_flags u.__fl_common.flowic_flags
191#define flowi_secid u.__fl_common.flowic_secid
Thomas Graf1b7179d2015-07-21 10:43:59 +0200192#define flowi_tun_key u.__fl_common.flowic_tun_key
Lorenzo Colitti2ec93fe2016-11-04 02:23:42 +0900193#define flowi_uid u.__fl_common.flowic_uid
Steffen Klassert6de6e332018-06-12 14:06:57 +0200194#define flowi_xfrm u.__fl_common.xfrm
Linus Torvalds1da177e2005-04-16 15:20:36 -0700195} __attribute__((__aligned__(BITS_PER_LONG/8)));
196
David S. Miller59b1a942011-03-11 19:23:02 -0500197static inline struct flowi *flowi4_to_flowi(struct flowi4 *fl4)
198{
199 return container_of(fl4, struct flowi, u.ip4);
200}
201
202static inline struct flowi *flowi6_to_flowi(struct flowi6 *fl6)
203{
204 return container_of(fl6, struct flowi, u.ip6);
205}
206
207static inline struct flowi *flowidn_to_flowi(struct flowidn *fldn)
208{
209 return container_of(fldn, struct flowi, u.dn);
210}
211
dpwardaa1c3662011-09-05 16:47:24 +0000212typedef unsigned long flow_compare_t;
213
214static inline size_t flow_key_size(u16 family)
215{
216 switch (family) {
217 case AF_INET:
218 BUILD_BUG_ON(sizeof(struct flowi4) % sizeof(flow_compare_t));
219 return sizeof(struct flowi4) / sizeof(flow_compare_t);
220 case AF_INET6:
221 BUILD_BUG_ON(sizeof(struct flowi6) % sizeof(flow_compare_t));
222 return sizeof(struct flowi6) / sizeof(flow_compare_t);
223 case AF_DECnet:
224 BUILD_BUG_ON(sizeof(struct flowidn) % sizeof(flow_compare_t));
225 return sizeof(struct flowidn) / sizeof(flow_compare_t);
226 }
227 return 0;
228}
229
Linus Torvalds1da177e2005-04-16 15:20:36 -0700230#define FLOW_DIR_IN 0
231#define FLOW_DIR_OUT 1
232#define FLOW_DIR_FWD 2
233
Alexey Dobriyan52479b62008-11-25 17:35:18 -0800234struct net;
Trent Jaegerdf718372005-12-13 23:12:27 -0800235struct sock;
Timo Teräsfe1a5f02010-04-07 00:30:04 +0000236struct flow_cache_ops;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700237
Timo Teräsfe1a5f02010-04-07 00:30:04 +0000238struct flow_cache_object {
239 const struct flow_cache_ops *ops;
240};
241
242struct flow_cache_ops {
243 struct flow_cache_object *(*get)(struct flow_cache_object *);
244 int (*check)(struct flow_cache_object *);
245 void (*delete)(struct flow_cache_object *);
246};
247
248typedef struct flow_cache_object *(*flow_resolve_t)(
David S. Millerdee9f4b2011-02-22 18:44:31 -0800249 struct net *net, const struct flowi *key, u16 family,
Timo Teräsfe1a5f02010-04-07 00:30:04 +0000250 u8 dir, struct flow_cache_object *oldobj, void *ctx);
251
Joe Perches47873422013-09-20 11:23:24 -0700252struct flow_cache_object *flow_cache_lookup(struct net *net,
253 const struct flowi *key, u16 family,
254 u8 dir, flow_resolve_t resolver,
255 void *ctx);
Fan Duca925cf2014-01-18 09:55:27 +0800256int flow_cache_init(struct net *net);
Steffen Klassert4a93f502014-03-12 09:43:17 +0100257void flow_cache_fini(struct net *net);
Timo Teräsfe1a5f02010-04-07 00:30:04 +0000258
Fan Duca925cf2014-01-18 09:55:27 +0800259void flow_cache_flush(struct net *net);
260void flow_cache_flush_deferred(struct net *net);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700261extern atomic_t flow_cache_genid;
262
David S. Miller20a17bf2015-09-01 21:19:17 -0700263__u32 __get_hash_from_flowi6(const struct flowi6 *fl6, struct flow_keys *keys);
Tom Herbertc6cc1ca2015-09-01 09:24:25 -0700264
David S. Miller20a17bf2015-09-01 21:19:17 -0700265static inline __u32 get_hash_from_flowi6(const struct flowi6 *fl6)
Tom Herbertc6cc1ca2015-09-01 09:24:25 -0700266{
267 struct flow_keys keys;
268
269 return __get_hash_from_flowi6(fl6, &keys);
270}
271
David S. Miller20a17bf2015-09-01 21:19:17 -0700272__u32 __get_hash_from_flowi4(const struct flowi4 *fl4, struct flow_keys *keys);
Tom Herbertc6cc1ca2015-09-01 09:24:25 -0700273
David S. Miller20a17bf2015-09-01 21:19:17 -0700274static inline __u32 get_hash_from_flowi4(const struct flowi4 *fl4)
Tom Herbertc6cc1ca2015-09-01 09:24:25 -0700275{
276 struct flow_keys keys;
277
278 return __get_hash_from_flowi4(fl4, &keys);
279}
280
Linus Torvalds1da177e2005-04-16 15:20:36 -0700281#endif