blob: d6cb2bfcd8e1baf7495e55ce83b534b2b0955b2f [file] [log] [blame]
Linus Torvalds1da177e2005-04-16 15:20:36 -07001/*
2 * INET An implementation of the TCP/IP protocol suite for the LINUX
3 * operating system. INET is implemented using the BSD Socket
4 * interface as the means of communication with the user level.
5 *
6 * ROUTE - implementation of the IP router.
7 *
Jesper Juhl02c30a82005-05-05 16:16:16 -07008 * Authors: Ross Biro
Linus Torvalds1da177e2005-04-16 15:20:36 -07009 * Fred N. van Kempen, <waltje@uWalt.NL.Mugnet.ORG>
10 * Alan Cox, <gw4pts@gw4pts.ampr.org>
11 * Linus Torvalds, <Linus.Torvalds@helsinki.fi>
12 * Alexey Kuznetsov, <kuznet@ms2.inr.ac.ru>
13 *
14 * Fixes:
15 * Alan Cox : Verify area fixes.
16 * Alan Cox : cli() protects routing changes
17 * Rui Oliveira : ICMP routing table updates
18 * (rco@di.uminho.pt) Routing table insertion and update
19 * Linus Torvalds : Rewrote bits to be sensible
20 * Alan Cox : Added BSD route gw semantics
YOSHIFUJI Hideakie905a9e2007-02-09 23:24:47 +090021 * Alan Cox : Super /proc >4K
Linus Torvalds1da177e2005-04-16 15:20:36 -070022 * Alan Cox : MTU in route table
23 * Alan Cox : MSS actually. Also added the window
24 * clamper.
25 * Sam Lantinga : Fixed route matching in rt_del()
26 * Alan Cox : Routing cache support.
27 * Alan Cox : Removed compatibility cruft.
28 * Alan Cox : RTF_REJECT support.
29 * Alan Cox : TCP irtt support.
30 * Jonathan Naylor : Added Metric support.
31 * Miquel van Smoorenburg : BSD API fixes.
32 * Miquel van Smoorenburg : Metrics.
33 * Alan Cox : Use __u32 properly
34 * Alan Cox : Aligned routing errors more closely with BSD
35 * our system is still very different.
36 * Alan Cox : Faster /proc handling
37 * Alexey Kuznetsov : Massive rework to support tree based routing,
38 * routing caches and better behaviour.
YOSHIFUJI Hideakie905a9e2007-02-09 23:24:47 +090039 *
Linus Torvalds1da177e2005-04-16 15:20:36 -070040 * Olaf Erb : irtt wasn't being copied right.
41 * Bjorn Ekwall : Kerneld route support.
42 * Alan Cox : Multicast fixed (I hope)
43 * Pavel Krauz : Limited broadcast fixed
44 * Mike McLagan : Routing by source
45 * Alexey Kuznetsov : End of old history. Split to fib.c and
46 * route.c and rewritten from scratch.
47 * Andi Kleen : Load-limit warning messages.
48 * Vitaly E. Lavrov : Transparent proxy revived after year coma.
49 * Vitaly E. Lavrov : Race condition in ip_route_input_slow.
50 * Tobias Ringstrom : Uninitialized res.type in ip_route_output_slow.
51 * Vladimir V. Ivanov : IP rule info (flowid) is really useful.
52 * Marc Boucher : routing by fwmark
53 * Robert Olsson : Added rt_cache statistics
54 * Arnaldo C. Melo : Convert proc stuff to seq_file
Eric Dumazetbb1d23b2005-07-05 15:00:32 -070055 * Eric Dumazet : hashed spinlocks and rt_check_expire() fixes.
Ilia Sotnikovcef26852006-03-25 01:38:55 -080056 * Ilia Sotnikov : Ignore TOS on PMTUD and Redirect
57 * Ilia Sotnikov : Removed TOS from hash calculations
Linus Torvalds1da177e2005-04-16 15:20:36 -070058 *
59 * This program is free software; you can redistribute it and/or
60 * modify it under the terms of the GNU General Public License
61 * as published by the Free Software Foundation; either version
62 * 2 of the License, or (at your option) any later version.
63 */
64
Linus Torvalds1da177e2005-04-16 15:20:36 -070065#include <linux/module.h>
66#include <asm/uaccess.h>
67#include <asm/system.h>
68#include <linux/bitops.h>
69#include <linux/types.h>
70#include <linux/kernel.h>
Linus Torvalds1da177e2005-04-16 15:20:36 -070071#include <linux/mm.h>
Eric Dumazet424c4b72005-07-05 14:58:19 -070072#include <linux/bootmem.h>
Linus Torvalds1da177e2005-04-16 15:20:36 -070073#include <linux/string.h>
74#include <linux/socket.h>
75#include <linux/sockios.h>
76#include <linux/errno.h>
77#include <linux/in.h>
78#include <linux/inet.h>
79#include <linux/netdevice.h>
80#include <linux/proc_fs.h>
81#include <linux/init.h>
Eric Dumazet39c90ec2007-09-15 10:55:54 -070082#include <linux/workqueue.h>
Linus Torvalds1da177e2005-04-16 15:20:36 -070083#include <linux/skbuff.h>
Linus Torvalds1da177e2005-04-16 15:20:36 -070084#include <linux/inetdevice.h>
85#include <linux/igmp.h>
86#include <linux/pkt_sched.h>
87#include <linux/mroute.h>
88#include <linux/netfilter_ipv4.h>
89#include <linux/random.h>
90#include <linux/jhash.h>
91#include <linux/rcupdate.h>
92#include <linux/times.h>
Tejun Heo5a0e3ad2010-03-24 17:04:11 +090093#include <linux/slab.h>
Herbert Xu352e5122007-11-13 21:34:06 -080094#include <net/dst.h>
Eric W. Biederman457c4cb2007-09-12 12:01:34 +020095#include <net/net_namespace.h>
Linus Torvalds1da177e2005-04-16 15:20:36 -070096#include <net/protocol.h>
97#include <net/ip.h>
98#include <net/route.h>
99#include <net/inetpeer.h>
100#include <net/sock.h>
101#include <net/ip_fib.h>
102#include <net/arp.h>
103#include <net/tcp.h>
104#include <net/icmp.h>
105#include <net/xfrm.h>
Tom Tucker8d717402006-07-30 20:43:36 -0700106#include <net/netevent.h>
Thomas Graf63f34442007-03-22 11:55:17 -0700107#include <net/rtnetlink.h>
Linus Torvalds1da177e2005-04-16 15:20:36 -0700108#ifdef CONFIG_SYSCTL
109#include <linux/sysctl.h>
110#endif
111
112#define RT_FL_TOS(oldflp) \
113 ((u32)(oldflp->fl4_tos & (IPTOS_RT_MASK | RTO_ONLINK)))
114
115#define IP_MAX_MTU 0xFFF0
116
117#define RT_GC_TIMEOUT (300*HZ)
118
Linus Torvalds1da177e2005-04-16 15:20:36 -0700119static int ip_rt_max_size;
Stephen Hemminger817bc4d2008-03-22 17:43:59 -0700120static int ip_rt_gc_timeout __read_mostly = RT_GC_TIMEOUT;
121static int ip_rt_gc_interval __read_mostly = 60 * HZ;
122static int ip_rt_gc_min_interval __read_mostly = HZ / 2;
123static int ip_rt_redirect_number __read_mostly = 9;
124static int ip_rt_redirect_load __read_mostly = HZ / 50;
125static int ip_rt_redirect_silence __read_mostly = ((HZ / 50) << (9 + 1));
126static int ip_rt_error_cost __read_mostly = HZ;
127static int ip_rt_error_burst __read_mostly = 5 * HZ;
128static int ip_rt_gc_elasticity __read_mostly = 8;
129static int ip_rt_mtu_expires __read_mostly = 10 * 60 * HZ;
130static int ip_rt_min_pmtu __read_mostly = 512 + 20 + 20;
131static int ip_rt_min_advmss __read_mostly = 256;
Neil Horman1080d702008-10-27 12:28:25 -0700132static int rt_chain_length_max __read_mostly = 20;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700133
Eric Dumazet125bb8f2009-06-11 20:10:07 +0000134static struct delayed_work expires_work;
135static unsigned long expires_ljiffies;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700136
137/*
138 * Interface to generic destination cache.
139 */
140
141static struct dst_entry *ipv4_dst_check(struct dst_entry *dst, u32 cookie);
142static void ipv4_dst_destroy(struct dst_entry *dst);
143static void ipv4_dst_ifdown(struct dst_entry *dst,
144 struct net_device *dev, int how);
145static struct dst_entry *ipv4_negative_advice(struct dst_entry *dst);
146static void ipv4_link_failure(struct sk_buff *skb);
147static void ip_rt_update_pmtu(struct dst_entry *dst, u32 mtu);
Daniel Lezcano569d3642008-01-18 03:56:57 -0800148static int rt_garbage_collect(struct dst_ops *ops);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700149
150
151static struct dst_ops ipv4_dst_ops = {
152 .family = AF_INET,
Harvey Harrison09640e62009-02-01 00:45:17 -0800153 .protocol = cpu_to_be16(ETH_P_IP),
Linus Torvalds1da177e2005-04-16 15:20:36 -0700154 .gc = rt_garbage_collect,
155 .check = ipv4_dst_check,
156 .destroy = ipv4_dst_destroy,
157 .ifdown = ipv4_dst_ifdown,
158 .negative_advice = ipv4_negative_advice,
159 .link_failure = ipv4_link_failure,
160 .update_pmtu = ip_rt_update_pmtu,
Herbert Xu1ac06e02008-05-20 14:32:14 -0700161 .local_out = __ip_local_out,
Linus Torvalds1da177e2005-04-16 15:20:36 -0700162};
163
164#define ECN_OR_COST(class) TC_PRIO_##class
165
Philippe De Muyter4839c522007-07-09 15:32:57 -0700166const __u8 ip_tos2prio[16] = {
Linus Torvalds1da177e2005-04-16 15:20:36 -0700167 TC_PRIO_BESTEFFORT,
168 ECN_OR_COST(FILLER),
169 TC_PRIO_BESTEFFORT,
170 ECN_OR_COST(BESTEFFORT),
171 TC_PRIO_BULK,
172 ECN_OR_COST(BULK),
173 TC_PRIO_BULK,
174 ECN_OR_COST(BULK),
175 TC_PRIO_INTERACTIVE,
176 ECN_OR_COST(INTERACTIVE),
177 TC_PRIO_INTERACTIVE,
178 ECN_OR_COST(INTERACTIVE),
179 TC_PRIO_INTERACTIVE_BULK,
180 ECN_OR_COST(INTERACTIVE_BULK),
181 TC_PRIO_INTERACTIVE_BULK,
182 ECN_OR_COST(INTERACTIVE_BULK)
183};
184
185
186/*
187 * Route cache.
188 */
189
190/* The locking scheme is rather straight forward:
191 *
192 * 1) Read-Copy Update protects the buckets of the central route hash.
193 * 2) Only writers remove entries, and they hold the lock
194 * as they look at rtable reference counts.
195 * 3) Only readers acquire references to rtable entries,
196 * they do so with atomic increments and with the
197 * lock held.
198 */
199
200struct rt_hash_bucket {
201 struct rtable *chain;
Eric Dumazet22c047c2005-07-05 14:55:24 -0700202};
Neil Horman1080d702008-10-27 12:28:25 -0700203
Ingo Molnar8a25d5d2006-07-03 00:24:54 -0700204#if defined(CONFIG_SMP) || defined(CONFIG_DEBUG_SPINLOCK) || \
205 defined(CONFIG_PROVE_LOCKING)
Eric Dumazet22c047c2005-07-05 14:55:24 -0700206/*
207 * Instead of using one spinlock for each rt_hash_bucket, we use a table of spinlocks
208 * The size of this table is a power of two and depends on the number of CPUS.
Ingo Molnar62051202006-07-03 00:24:59 -0700209 * (on lockdep we have a quite big spinlock_t, so keep the size down there)
Eric Dumazet22c047c2005-07-05 14:55:24 -0700210 */
Ingo Molnar62051202006-07-03 00:24:59 -0700211#ifdef CONFIG_LOCKDEP
212# define RT_HASH_LOCK_SZ 256
Eric Dumazet22c047c2005-07-05 14:55:24 -0700213#else
Ingo Molnar62051202006-07-03 00:24:59 -0700214# if NR_CPUS >= 32
215# define RT_HASH_LOCK_SZ 4096
216# elif NR_CPUS >= 16
217# define RT_HASH_LOCK_SZ 2048
218# elif NR_CPUS >= 8
219# define RT_HASH_LOCK_SZ 1024
220# elif NR_CPUS >= 4
221# define RT_HASH_LOCK_SZ 512
222# else
223# define RT_HASH_LOCK_SZ 256
224# endif
Eric Dumazet22c047c2005-07-05 14:55:24 -0700225#endif
226
227static spinlock_t *rt_hash_locks;
228# define rt_hash_lock_addr(slot) &rt_hash_locks[(slot) & (RT_HASH_LOCK_SZ - 1)]
Pavel Emelyanov1ff1cc22007-12-05 21:15:05 -0800229
230static __init void rt_hash_lock_init(void)
231{
232 int i;
233
234 rt_hash_locks = kmalloc(sizeof(spinlock_t) * RT_HASH_LOCK_SZ,
235 GFP_KERNEL);
236 if (!rt_hash_locks)
237 panic("IP: failed to allocate rt_hash_locks\n");
238
239 for (i = 0; i < RT_HASH_LOCK_SZ; i++)
240 spin_lock_init(&rt_hash_locks[i]);
241}
Eric Dumazet22c047c2005-07-05 14:55:24 -0700242#else
243# define rt_hash_lock_addr(slot) NULL
Pavel Emelyanov1ff1cc22007-12-05 21:15:05 -0800244
245static inline void rt_hash_lock_init(void)
246{
247}
Eric Dumazet22c047c2005-07-05 14:55:24 -0700248#endif
Linus Torvalds1da177e2005-04-16 15:20:36 -0700249
Stephen Hemminger817bc4d2008-03-22 17:43:59 -0700250static struct rt_hash_bucket *rt_hash_table __read_mostly;
251static unsigned rt_hash_mask __read_mostly;
252static unsigned int rt_hash_log __read_mostly;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700253
Eric Dumazet2f970d82006-01-17 02:54:36 -0800254static DEFINE_PER_CPU(struct rt_cache_stat, rt_cache_stat);
Eric Dumazet27f39c73e2010-05-19 22:07:23 +0000255#define RT_CACHE_STAT_INC(field) __this_cpu_inc(rt_cache_stat.field)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700256
Denis V. Lunevb00180d2008-07-05 19:04:09 -0700257static inline unsigned int rt_hash(__be32 daddr, __be32 saddr, int idx,
Eric Dumazet0eae88f2010-04-20 19:06:52 -0700258 int genid)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700259{
Eric Dumazet0eae88f2010-04-20 19:06:52 -0700260 return jhash_3words((__force u32)daddr, (__force u32)saddr,
Denis V. Lunevb00180d2008-07-05 19:04:09 -0700261 idx, genid)
Eric Dumazet29e75252008-01-31 17:05:09 -0800262 & rt_hash_mask;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700263}
264
Denis V. Luneve84f84f2008-07-05 19:04:32 -0700265static inline int rt_genid(struct net *net)
266{
267 return atomic_read(&net->ipv4.rt_genid);
268}
269
Linus Torvalds1da177e2005-04-16 15:20:36 -0700270#ifdef CONFIG_PROC_FS
271struct rt_cache_iter_state {
Denis V. Luneva75e9362008-02-28 20:50:55 -0800272 struct seq_net_private p;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700273 int bucket;
Eric Dumazet29e75252008-01-31 17:05:09 -0800274 int genid;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700275};
276
YOSHIFUJI Hideaki12188542008-03-26 02:36:06 +0900277static struct rtable *rt_cache_get_first(struct seq_file *seq)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700278{
YOSHIFUJI Hideaki12188542008-03-26 02:36:06 +0900279 struct rt_cache_iter_state *st = seq->private;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700280 struct rtable *r = NULL;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700281
282 for (st->bucket = rt_hash_mask; st->bucket >= 0; --st->bucket) {
Eric Dumazeta6272662008-08-28 01:11:25 -0700283 if (!rt_hash_table[st->bucket].chain)
284 continue;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700285 rcu_read_lock_bh();
Paul E. McKenneya898def2010-02-22 17:04:49 -0800286 r = rcu_dereference_bh(rt_hash_table[st->bucket].chain);
Eric Dumazet29e75252008-01-31 17:05:09 -0800287 while (r) {
Changli Gaod8d1f302010-06-10 23:31:35 -0700288 if (dev_net(r->dst.dev) == seq_file_net(seq) &&
Denis V. Luneva75e9362008-02-28 20:50:55 -0800289 r->rt_genid == st->genid)
Eric Dumazet29e75252008-01-31 17:05:09 -0800290 return r;
Changli Gaod8d1f302010-06-10 23:31:35 -0700291 r = rcu_dereference_bh(r->dst.rt_next);
Eric Dumazet29e75252008-01-31 17:05:09 -0800292 }
Linus Torvalds1da177e2005-04-16 15:20:36 -0700293 rcu_read_unlock_bh();
294 }
Eric Dumazet29e75252008-01-31 17:05:09 -0800295 return r;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700296}
297
YOSHIFUJI Hideaki12188542008-03-26 02:36:06 +0900298static struct rtable *__rt_cache_get_next(struct seq_file *seq,
Denis V. Lunev642d6312008-02-28 20:50:33 -0800299 struct rtable *r)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700300{
YOSHIFUJI Hideaki12188542008-03-26 02:36:06 +0900301 struct rt_cache_iter_state *st = seq->private;
Eric Dumazeta6272662008-08-28 01:11:25 -0700302
Changli Gaod8d1f302010-06-10 23:31:35 -0700303 r = r->dst.rt_next;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700304 while (!r) {
305 rcu_read_unlock_bh();
Eric Dumazeta6272662008-08-28 01:11:25 -0700306 do {
307 if (--st->bucket < 0)
308 return NULL;
309 } while (!rt_hash_table[st->bucket].chain);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700310 rcu_read_lock_bh();
311 r = rt_hash_table[st->bucket].chain;
312 }
Paul E. McKenneya898def2010-02-22 17:04:49 -0800313 return rcu_dereference_bh(r);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700314}
315
YOSHIFUJI Hideaki12188542008-03-26 02:36:06 +0900316static struct rtable *rt_cache_get_next(struct seq_file *seq,
Denis V. Lunev642d6312008-02-28 20:50:33 -0800317 struct rtable *r)
318{
YOSHIFUJI Hideaki12188542008-03-26 02:36:06 +0900319 struct rt_cache_iter_state *st = seq->private;
320 while ((r = __rt_cache_get_next(seq, r)) != NULL) {
Changli Gaod8d1f302010-06-10 23:31:35 -0700321 if (dev_net(r->dst.dev) != seq_file_net(seq))
Denis V. Luneva75e9362008-02-28 20:50:55 -0800322 continue;
Denis V. Lunev642d6312008-02-28 20:50:33 -0800323 if (r->rt_genid == st->genid)
324 break;
325 }
326 return r;
327}
328
YOSHIFUJI Hideaki12188542008-03-26 02:36:06 +0900329static struct rtable *rt_cache_get_idx(struct seq_file *seq, loff_t pos)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700330{
YOSHIFUJI Hideaki12188542008-03-26 02:36:06 +0900331 struct rtable *r = rt_cache_get_first(seq);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700332
333 if (r)
YOSHIFUJI Hideaki12188542008-03-26 02:36:06 +0900334 while (pos && (r = rt_cache_get_next(seq, r)))
Linus Torvalds1da177e2005-04-16 15:20:36 -0700335 --pos;
336 return pos ? NULL : r;
337}
338
339static void *rt_cache_seq_start(struct seq_file *seq, loff_t *pos)
340{
Eric Dumazet29e75252008-01-31 17:05:09 -0800341 struct rt_cache_iter_state *st = seq->private;
Eric Dumazet29e75252008-01-31 17:05:09 -0800342 if (*pos)
YOSHIFUJI Hideaki12188542008-03-26 02:36:06 +0900343 return rt_cache_get_idx(seq, *pos - 1);
Denis V. Luneve84f84f2008-07-05 19:04:32 -0700344 st->genid = rt_genid(seq_file_net(seq));
Eric Dumazet29e75252008-01-31 17:05:09 -0800345 return SEQ_START_TOKEN;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700346}
347
348static void *rt_cache_seq_next(struct seq_file *seq, void *v, loff_t *pos)
349{
Eric Dumazet29e75252008-01-31 17:05:09 -0800350 struct rtable *r;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700351
352 if (v == SEQ_START_TOKEN)
YOSHIFUJI Hideaki12188542008-03-26 02:36:06 +0900353 r = rt_cache_get_first(seq);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700354 else
YOSHIFUJI Hideaki12188542008-03-26 02:36:06 +0900355 r = rt_cache_get_next(seq, v);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700356 ++*pos;
357 return r;
358}
359
360static void rt_cache_seq_stop(struct seq_file *seq, void *v)
361{
362 if (v && v != SEQ_START_TOKEN)
363 rcu_read_unlock_bh();
364}
365
366static int rt_cache_seq_show(struct seq_file *seq, void *v)
367{
368 if (v == SEQ_START_TOKEN)
369 seq_printf(seq, "%-127s\n",
370 "Iface\tDestination\tGateway \tFlags\t\tRefCnt\tUse\t"
371 "Metric\tSource\t\tMTU\tWindow\tIRTT\tTOS\tHHRef\t"
372 "HHUptod\tSpecDst");
373 else {
374 struct rtable *r = v;
Pavel Emelyanov5e659e42008-04-24 01:02:16 -0700375 int len;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700376
Eric Dumazet0eae88f2010-04-20 19:06:52 -0700377 seq_printf(seq, "%s\t%08X\t%08X\t%8X\t%d\t%u\t%d\t"
378 "%08X\t%d\t%u\t%u\t%02X\t%d\t%1d\t%08X%n",
Changli Gaod8d1f302010-06-10 23:31:35 -0700379 r->dst.dev ? r->dst.dev->name : "*",
Eric Dumazet0eae88f2010-04-20 19:06:52 -0700380 (__force u32)r->rt_dst,
381 (__force u32)r->rt_gateway,
Changli Gaod8d1f302010-06-10 23:31:35 -0700382 r->rt_flags, atomic_read(&r->dst.__refcnt),
383 r->dst.__use, 0, (__force u32)r->rt_src,
384 (dst_metric(&r->dst, RTAX_ADVMSS) ?
385 (int)dst_metric(&r->dst, RTAX_ADVMSS) + 40 : 0),
386 dst_metric(&r->dst, RTAX_WINDOW),
387 (int)((dst_metric(&r->dst, RTAX_RTT) >> 3) +
388 dst_metric(&r->dst, RTAX_RTTVAR)),
Linus Torvalds1da177e2005-04-16 15:20:36 -0700389 r->fl.fl4_tos,
Changli Gaod8d1f302010-06-10 23:31:35 -0700390 r->dst.hh ? atomic_read(&r->dst.hh->hh_refcnt) : -1,
391 r->dst.hh ? (r->dst.hh->hh_output ==
Linus Torvalds1da177e2005-04-16 15:20:36 -0700392 dev_queue_xmit) : 0,
Pavel Emelyanov5e659e42008-04-24 01:02:16 -0700393 r->rt_spec_dst, &len);
394
395 seq_printf(seq, "%*s\n", 127 - len, "");
YOSHIFUJI Hideakie905a9e2007-02-09 23:24:47 +0900396 }
397 return 0;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700398}
399
Stephen Hemmingerf6908082007-03-12 14:34:29 -0700400static const struct seq_operations rt_cache_seq_ops = {
Linus Torvalds1da177e2005-04-16 15:20:36 -0700401 .start = rt_cache_seq_start,
402 .next = rt_cache_seq_next,
403 .stop = rt_cache_seq_stop,
404 .show = rt_cache_seq_show,
405};
406
407static int rt_cache_seq_open(struct inode *inode, struct file *file)
408{
Denis V. Luneva75e9362008-02-28 20:50:55 -0800409 return seq_open_net(inode, file, &rt_cache_seq_ops,
Pavel Emelyanovcf7732e2007-10-10 02:29:29 -0700410 sizeof(struct rt_cache_iter_state));
Linus Torvalds1da177e2005-04-16 15:20:36 -0700411}
412
Arjan van de Ven9a321442007-02-12 00:55:35 -0800413static const struct file_operations rt_cache_seq_fops = {
Linus Torvalds1da177e2005-04-16 15:20:36 -0700414 .owner = THIS_MODULE,
415 .open = rt_cache_seq_open,
416 .read = seq_read,
417 .llseek = seq_lseek,
Denis V. Luneva75e9362008-02-28 20:50:55 -0800418 .release = seq_release_net,
Linus Torvalds1da177e2005-04-16 15:20:36 -0700419};
420
421
422static void *rt_cpu_seq_start(struct seq_file *seq, loff_t *pos)
423{
424 int cpu;
425
426 if (*pos == 0)
427 return SEQ_START_TOKEN;
428
Rusty Russell0f23174a2008-12-29 12:23:42 +0000429 for (cpu = *pos-1; cpu < nr_cpu_ids; ++cpu) {
Linus Torvalds1da177e2005-04-16 15:20:36 -0700430 if (!cpu_possible(cpu))
431 continue;
432 *pos = cpu+1;
Eric Dumazet2f970d82006-01-17 02:54:36 -0800433 return &per_cpu(rt_cache_stat, cpu);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700434 }
435 return NULL;
436}
437
438static void *rt_cpu_seq_next(struct seq_file *seq, void *v, loff_t *pos)
439{
440 int cpu;
441
Rusty Russell0f23174a2008-12-29 12:23:42 +0000442 for (cpu = *pos; cpu < nr_cpu_ids; ++cpu) {
Linus Torvalds1da177e2005-04-16 15:20:36 -0700443 if (!cpu_possible(cpu))
444 continue;
445 *pos = cpu+1;
Eric Dumazet2f970d82006-01-17 02:54:36 -0800446 return &per_cpu(rt_cache_stat, cpu);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700447 }
448 return NULL;
YOSHIFUJI Hideakie905a9e2007-02-09 23:24:47 +0900449
Linus Torvalds1da177e2005-04-16 15:20:36 -0700450}
451
452static void rt_cpu_seq_stop(struct seq_file *seq, void *v)
453{
454
455}
456
457static int rt_cpu_seq_show(struct seq_file *seq, void *v)
458{
459 struct rt_cache_stat *st = v;
460
461 if (v == SEQ_START_TOKEN) {
Olaf Rempel5bec0032005-04-28 12:16:08 -0700462 seq_printf(seq, "entries in_hit in_slow_tot in_slow_mc in_no_route in_brd in_martian_dst in_martian_src out_hit out_slow_tot out_slow_mc gc_total gc_ignored gc_goal_miss gc_dst_overflow in_hlist_search out_hlist_search\n");
Linus Torvalds1da177e2005-04-16 15:20:36 -0700463 return 0;
464 }
YOSHIFUJI Hideakie905a9e2007-02-09 23:24:47 +0900465
Linus Torvalds1da177e2005-04-16 15:20:36 -0700466 seq_printf(seq,"%08x %08x %08x %08x %08x %08x %08x %08x "
467 " %08x %08x %08x %08x %08x %08x %08x %08x %08x \n",
Eric Dumazetfc66f952010-10-08 06:37:34 +0000468 dst_entries_get_slow(&ipv4_dst_ops),
Linus Torvalds1da177e2005-04-16 15:20:36 -0700469 st->in_hit,
470 st->in_slow_tot,
471 st->in_slow_mc,
472 st->in_no_route,
473 st->in_brd,
474 st->in_martian_dst,
475 st->in_martian_src,
476
477 st->out_hit,
478 st->out_slow_tot,
YOSHIFUJI Hideakie905a9e2007-02-09 23:24:47 +0900479 st->out_slow_mc,
Linus Torvalds1da177e2005-04-16 15:20:36 -0700480
481 st->gc_total,
482 st->gc_ignored,
483 st->gc_goal_miss,
484 st->gc_dst_overflow,
485 st->in_hlist_search,
486 st->out_hlist_search
487 );
488 return 0;
489}
490
Stephen Hemmingerf6908082007-03-12 14:34:29 -0700491static const struct seq_operations rt_cpu_seq_ops = {
Linus Torvalds1da177e2005-04-16 15:20:36 -0700492 .start = rt_cpu_seq_start,
493 .next = rt_cpu_seq_next,
494 .stop = rt_cpu_seq_stop,
495 .show = rt_cpu_seq_show,
496};
497
498
499static int rt_cpu_seq_open(struct inode *inode, struct file *file)
500{
501 return seq_open(file, &rt_cpu_seq_ops);
502}
503
Arjan van de Ven9a321442007-02-12 00:55:35 -0800504static const struct file_operations rt_cpu_seq_fops = {
Linus Torvalds1da177e2005-04-16 15:20:36 -0700505 .owner = THIS_MODULE,
506 .open = rt_cpu_seq_open,
507 .read = seq_read,
508 .llseek = seq_lseek,
509 .release = seq_release,
510};
511
Pavel Emelyanov78c686e2007-12-05 21:13:48 -0800512#ifdef CONFIG_NET_CLS_ROUTE
Alexey Dobriyana661c412009-11-25 15:40:35 -0800513static int rt_acct_proc_show(struct seq_file *m, void *v)
Pavel Emelyanov78c686e2007-12-05 21:13:48 -0800514{
Alexey Dobriyana661c412009-11-25 15:40:35 -0800515 struct ip_rt_acct *dst, *src;
516 unsigned int i, j;
Pavel Emelyanov78c686e2007-12-05 21:13:48 -0800517
Alexey Dobriyana661c412009-11-25 15:40:35 -0800518 dst = kcalloc(256, sizeof(struct ip_rt_acct), GFP_KERNEL);
519 if (!dst)
520 return -ENOMEM;
Pavel Emelyanov78c686e2007-12-05 21:13:48 -0800521
Alexey Dobriyana661c412009-11-25 15:40:35 -0800522 for_each_possible_cpu(i) {
523 src = (struct ip_rt_acct *)per_cpu_ptr(ip_rt_acct, i);
524 for (j = 0; j < 256; j++) {
525 dst[j].o_bytes += src[j].o_bytes;
526 dst[j].o_packets += src[j].o_packets;
527 dst[j].i_bytes += src[j].i_bytes;
528 dst[j].i_packets += src[j].i_packets;
Pavel Emelyanov78c686e2007-12-05 21:13:48 -0800529 }
530 }
Alexey Dobriyana661c412009-11-25 15:40:35 -0800531
532 seq_write(m, dst, 256 * sizeof(struct ip_rt_acct));
533 kfree(dst);
534 return 0;
Pavel Emelyanov78c686e2007-12-05 21:13:48 -0800535}
Alexey Dobriyana661c412009-11-25 15:40:35 -0800536
537static int rt_acct_proc_open(struct inode *inode, struct file *file)
538{
539 return single_open(file, rt_acct_proc_show, NULL);
540}
541
542static const struct file_operations rt_acct_proc_fops = {
543 .owner = THIS_MODULE,
544 .open = rt_acct_proc_open,
545 .read = seq_read,
546 .llseek = seq_lseek,
547 .release = single_release,
548};
Pavel Emelyanov78c686e2007-12-05 21:13:48 -0800549#endif
Pavel Emelyanov107f1632007-12-05 21:14:28 -0800550
Denis V. Lunev73b38712008-02-28 20:51:18 -0800551static int __net_init ip_rt_do_proc_init(struct net *net)
Pavel Emelyanov107f1632007-12-05 21:14:28 -0800552{
553 struct proc_dir_entry *pde;
554
555 pde = proc_net_fops_create(net, "rt_cache", S_IRUGO,
556 &rt_cache_seq_fops);
557 if (!pde)
558 goto err1;
559
Wang Chen77020722008-02-28 14:14:25 -0800560 pde = proc_create("rt_cache", S_IRUGO,
561 net->proc_net_stat, &rt_cpu_seq_fops);
Pavel Emelyanov107f1632007-12-05 21:14:28 -0800562 if (!pde)
563 goto err2;
564
Pavel Emelyanov107f1632007-12-05 21:14:28 -0800565#ifdef CONFIG_NET_CLS_ROUTE
Alexey Dobriyana661c412009-11-25 15:40:35 -0800566 pde = proc_create("rt_acct", 0, net->proc_net, &rt_acct_proc_fops);
Pavel Emelyanov107f1632007-12-05 21:14:28 -0800567 if (!pde)
568 goto err3;
569#endif
570 return 0;
571
572#ifdef CONFIG_NET_CLS_ROUTE
573err3:
574 remove_proc_entry("rt_cache", net->proc_net_stat);
575#endif
576err2:
577 remove_proc_entry("rt_cache", net->proc_net);
578err1:
579 return -ENOMEM;
580}
Denis V. Lunev73b38712008-02-28 20:51:18 -0800581
582static void __net_exit ip_rt_do_proc_exit(struct net *net)
583{
584 remove_proc_entry("rt_cache", net->proc_net_stat);
585 remove_proc_entry("rt_cache", net->proc_net);
Alexey Dobriyan0a931ac2010-01-17 03:32:50 +0000586#ifdef CONFIG_NET_CLS_ROUTE
Denis V. Lunev73b38712008-02-28 20:51:18 -0800587 remove_proc_entry("rt_acct", net->proc_net);
Alexey Dobriyan0a931ac2010-01-17 03:32:50 +0000588#endif
Denis V. Lunev73b38712008-02-28 20:51:18 -0800589}
590
591static struct pernet_operations ip_rt_proc_ops __net_initdata = {
592 .init = ip_rt_do_proc_init,
593 .exit = ip_rt_do_proc_exit,
594};
595
596static int __init ip_rt_proc_init(void)
597{
598 return register_pernet_subsys(&ip_rt_proc_ops);
599}
600
Pavel Emelyanov107f1632007-12-05 21:14:28 -0800601#else
Denis V. Lunev73b38712008-02-28 20:51:18 -0800602static inline int ip_rt_proc_init(void)
Pavel Emelyanov107f1632007-12-05 21:14:28 -0800603{
604 return 0;
605}
Linus Torvalds1da177e2005-04-16 15:20:36 -0700606#endif /* CONFIG_PROC_FS */
YOSHIFUJI Hideakie905a9e2007-02-09 23:24:47 +0900607
Stephen Hemminger5969f712008-04-10 01:52:09 -0700608static inline void rt_free(struct rtable *rt)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700609{
Changli Gaod8d1f302010-06-10 23:31:35 -0700610 call_rcu_bh(&rt->dst.rcu_head, dst_rcu_free);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700611}
612
Stephen Hemminger5969f712008-04-10 01:52:09 -0700613static inline void rt_drop(struct rtable *rt)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700614{
Linus Torvalds1da177e2005-04-16 15:20:36 -0700615 ip_rt_put(rt);
Changli Gaod8d1f302010-06-10 23:31:35 -0700616 call_rcu_bh(&rt->dst.rcu_head, dst_rcu_free);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700617}
618
Stephen Hemminger5969f712008-04-10 01:52:09 -0700619static inline int rt_fast_clean(struct rtable *rth)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700620{
621 /* Kill broadcast/multicast entries very aggresively, if they
622 collide in hash table with more useful entries */
623 return (rth->rt_flags & (RTCF_BROADCAST | RTCF_MULTICAST)) &&
Changli Gaod8d1f302010-06-10 23:31:35 -0700624 rth->fl.iif && rth->dst.rt_next;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700625}
626
Stephen Hemminger5969f712008-04-10 01:52:09 -0700627static inline int rt_valuable(struct rtable *rth)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700628{
629 return (rth->rt_flags & (RTCF_REDIRECTED | RTCF_NOTIFY)) ||
Changli Gaod8d1f302010-06-10 23:31:35 -0700630 rth->dst.expires;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700631}
632
633static int rt_may_expire(struct rtable *rth, unsigned long tmo1, unsigned long tmo2)
634{
635 unsigned long age;
636 int ret = 0;
637
Changli Gaod8d1f302010-06-10 23:31:35 -0700638 if (atomic_read(&rth->dst.__refcnt))
Linus Torvalds1da177e2005-04-16 15:20:36 -0700639 goto out;
640
641 ret = 1;
Changli Gaod8d1f302010-06-10 23:31:35 -0700642 if (rth->dst.expires &&
643 time_after_eq(jiffies, rth->dst.expires))
Linus Torvalds1da177e2005-04-16 15:20:36 -0700644 goto out;
645
Changli Gaod8d1f302010-06-10 23:31:35 -0700646 age = jiffies - rth->dst.lastuse;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700647 ret = 0;
648 if ((age <= tmo1 && !rt_fast_clean(rth)) ||
649 (age <= tmo2 && rt_valuable(rth)))
650 goto out;
651 ret = 1;
652out: return ret;
653}
654
655/* Bits of score are:
656 * 31: very valuable
657 * 30: not quite useless
658 * 29..0: usage counter
659 */
660static inline u32 rt_score(struct rtable *rt)
661{
Changli Gaod8d1f302010-06-10 23:31:35 -0700662 u32 score = jiffies - rt->dst.lastuse;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700663
664 score = ~score & ~(3<<30);
665
666 if (rt_valuable(rt))
667 score |= (1<<31);
668
669 if (!rt->fl.iif ||
670 !(rt->rt_flags & (RTCF_BROADCAST|RTCF_MULTICAST|RTCF_LOCAL)))
671 score |= (1<<30);
672
673 return score;
674}
675
Neil Horman1080d702008-10-27 12:28:25 -0700676static inline bool rt_caching(const struct net *net)
677{
678 return net->ipv4.current_rt_cache_rebuild_count <=
679 net->ipv4.sysctl_rt_cache_rebuild_count;
680}
681
682static inline bool compare_hash_inputs(const struct flowi *fl1,
683 const struct flowi *fl2)
684{
Eric Dumazet0eae88f2010-04-20 19:06:52 -0700685 return ((((__force u32)fl1->nl_u.ip4_u.daddr ^ (__force u32)fl2->nl_u.ip4_u.daddr) |
686 ((__force u32)fl1->nl_u.ip4_u.saddr ^ (__force u32)fl2->nl_u.ip4_u.saddr) |
Neil Horman1080d702008-10-27 12:28:25 -0700687 (fl1->iif ^ fl2->iif)) == 0);
688}
689
Linus Torvalds1da177e2005-04-16 15:20:36 -0700690static inline int compare_keys(struct flowi *fl1, struct flowi *fl2)
691{
Eric Dumazet0eae88f2010-04-20 19:06:52 -0700692 return (((__force u32)fl1->nl_u.ip4_u.daddr ^ (__force u32)fl2->nl_u.ip4_u.daddr) |
693 ((__force u32)fl1->nl_u.ip4_u.saddr ^ (__force u32)fl2->nl_u.ip4_u.saddr) |
Thomas Graf47dcf0c2006-11-09 15:20:38 -0800694 (fl1->mark ^ fl2->mark) |
Eric Dumazet0eae88f2010-04-20 19:06:52 -0700695 (*(u16 *)&fl1->nl_u.ip4_u.tos ^ *(u16 *)&fl2->nl_u.ip4_u.tos) |
David S. Miller8238b212006-10-12 00:49:15 -0700696 (fl1->oif ^ fl2->oif) |
697 (fl1->iif ^ fl2->iif)) == 0;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700698}
699
Denis V. Lunevb5921912008-01-22 23:50:25 -0800700static inline int compare_netns(struct rtable *rt1, struct rtable *rt2)
701{
Changli Gaod8d1f302010-06-10 23:31:35 -0700702 return net_eq(dev_net(rt1->dst.dev), dev_net(rt2->dst.dev));
Denis V. Lunevb5921912008-01-22 23:50:25 -0800703}
704
Denis V. Luneve84f84f2008-07-05 19:04:32 -0700705static inline int rt_is_expired(struct rtable *rth)
706{
Changli Gaod8d1f302010-06-10 23:31:35 -0700707 return rth->rt_genid != rt_genid(dev_net(rth->dst.dev));
Denis V. Luneve84f84f2008-07-05 19:04:32 -0700708}
709
Eric Dumazetbeb659b2007-11-19 22:43:37 -0800710/*
711 * Perform a full scan of hash table and free all entries.
712 * Can be called by a softirq or a process.
713 * In the later case, we want to be reschedule if necessary
714 */
715static void rt_do_flush(int process_context)
716{
717 unsigned int i;
718 struct rtable *rth, *next;
Denis V. Lunev32cb5b42008-07-05 19:06:12 -0700719 struct rtable * tail;
Eric Dumazetbeb659b2007-11-19 22:43:37 -0800720
721 for (i = 0; i <= rt_hash_mask; i++) {
722 if (process_context && need_resched())
723 cond_resched();
724 rth = rt_hash_table[i].chain;
725 if (!rth)
726 continue;
727
728 spin_lock_bh(rt_hash_lock_addr(i));
Denis V. Lunev32cb5b42008-07-05 19:06:12 -0700729#ifdef CONFIG_NET_NS
730 {
731 struct rtable ** prev, * p;
732
733 rth = rt_hash_table[i].chain;
734
735 /* defer releasing the head of the list after spin_unlock */
Changli Gaod8d1f302010-06-10 23:31:35 -0700736 for (tail = rth; tail; tail = tail->dst.rt_next)
Denis V. Lunev32cb5b42008-07-05 19:06:12 -0700737 if (!rt_is_expired(tail))
738 break;
739 if (rth != tail)
740 rt_hash_table[i].chain = tail;
741
742 /* call rt_free on entries after the tail requiring flush */
743 prev = &rt_hash_table[i].chain;
744 for (p = *prev; p; p = next) {
Changli Gaod8d1f302010-06-10 23:31:35 -0700745 next = p->dst.rt_next;
Denis V. Lunev32cb5b42008-07-05 19:06:12 -0700746 if (!rt_is_expired(p)) {
Changli Gaod8d1f302010-06-10 23:31:35 -0700747 prev = &p->dst.rt_next;
Denis V. Lunev32cb5b42008-07-05 19:06:12 -0700748 } else {
749 *prev = next;
750 rt_free(p);
751 }
752 }
753 }
754#else
Eric Dumazetbeb659b2007-11-19 22:43:37 -0800755 rth = rt_hash_table[i].chain;
756 rt_hash_table[i].chain = NULL;
Denis V. Lunev32cb5b42008-07-05 19:06:12 -0700757 tail = NULL;
758#endif
Eric Dumazetbeb659b2007-11-19 22:43:37 -0800759 spin_unlock_bh(rt_hash_lock_addr(i));
760
Denis V. Lunev32cb5b42008-07-05 19:06:12 -0700761 for (; rth != tail; rth = next) {
Changli Gaod8d1f302010-06-10 23:31:35 -0700762 next = rth->dst.rt_next;
Eric Dumazetbeb659b2007-11-19 22:43:37 -0800763 rt_free(rth);
764 }
765 }
766}
767
Neil Horman1080d702008-10-27 12:28:25 -0700768/*
769 * While freeing expired entries, we compute average chain length
770 * and standard deviation, using fixed-point arithmetic.
771 * This to have an estimation of rt_chain_length_max
772 * rt_chain_length_max = max(elasticity, AVG + 4*SD)
773 * We use 3 bits for frational part, and 29 (or 61) for magnitude.
774 */
775
776#define FRACT_BITS 3
777#define ONE (1UL << FRACT_BITS)
778
Eric Dumazet98376382010-03-08 03:20:00 +0000779/*
780 * Given a hash chain and an item in this hash chain,
781 * find if a previous entry has the same hash_inputs
782 * (but differs on tos, mark or oif)
783 * Returns 0 if an alias is found.
784 * Returns ONE if rth has no alias before itself.
785 */
786static int has_noalias(const struct rtable *head, const struct rtable *rth)
787{
788 const struct rtable *aux = head;
789
790 while (aux != rth) {
791 if (compare_hash_inputs(&aux->fl, &rth->fl))
792 return 0;
Changli Gaod8d1f302010-06-10 23:31:35 -0700793 aux = aux->dst.rt_next;
Eric Dumazet98376382010-03-08 03:20:00 +0000794 }
795 return ONE;
796}
797
Eric Dumazetbeb659b2007-11-19 22:43:37 -0800798static void rt_check_expire(void)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700799{
Eric Dumazetbb1d23b2005-07-05 15:00:32 -0700800 static unsigned int rover;
801 unsigned int i = rover, goal;
Eric Dumazet98376382010-03-08 03:20:00 +0000802 struct rtable *rth, **rthp;
Eric Dumazetcf8da762009-05-19 18:54:22 +0000803 unsigned long samples = 0;
Neil Horman1080d702008-10-27 12:28:25 -0700804 unsigned long sum = 0, sum2 = 0;
Eric Dumazet125bb8f2009-06-11 20:10:07 +0000805 unsigned long delta;
Eric Dumazetbb1d23b2005-07-05 15:00:32 -0700806 u64 mult;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700807
Eric Dumazet125bb8f2009-06-11 20:10:07 +0000808 delta = jiffies - expires_ljiffies;
809 expires_ljiffies = jiffies;
810 mult = ((u64)delta) << rt_hash_log;
Eric Dumazetbb1d23b2005-07-05 15:00:32 -0700811 if (ip_rt_gc_timeout > 1)
812 do_div(mult, ip_rt_gc_timeout);
813 goal = (unsigned int)mult;
Eric Dumazet39c90ec2007-09-15 10:55:54 -0700814 if (goal > rt_hash_mask)
815 goal = rt_hash_mask + 1;
Eric Dumazetbb1d23b2005-07-05 15:00:32 -0700816 for (; goal > 0; goal--) {
Linus Torvalds1da177e2005-04-16 15:20:36 -0700817 unsigned long tmo = ip_rt_gc_timeout;
Eric Dumazetcf8da762009-05-19 18:54:22 +0000818 unsigned long length;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700819
820 i = (i + 1) & rt_hash_mask;
821 rthp = &rt_hash_table[i].chain;
822
Eric Dumazetd90bf5a2007-11-14 16:14:05 -0800823 if (need_resched())
824 cond_resched();
825
Neil Horman1080d702008-10-27 12:28:25 -0700826 samples++;
827
Stephen Hemmingercfcabdc2007-10-09 01:59:42 -0700828 if (*rthp == NULL)
Eric Dumazetbb1d23b2005-07-05 15:00:32 -0700829 continue;
Eric Dumazetcf8da762009-05-19 18:54:22 +0000830 length = 0;
Eric Dumazet39c90ec2007-09-15 10:55:54 -0700831 spin_lock_bh(rt_hash_lock_addr(i));
Linus Torvalds1da177e2005-04-16 15:20:36 -0700832 while ((rth = *rthp) != NULL) {
Changli Gaod8d1f302010-06-10 23:31:35 -0700833 prefetch(rth->dst.rt_next);
Denis V. Luneve84f84f2008-07-05 19:04:32 -0700834 if (rt_is_expired(rth)) {
Changli Gaod8d1f302010-06-10 23:31:35 -0700835 *rthp = rth->dst.rt_next;
Eric Dumazet29e75252008-01-31 17:05:09 -0800836 rt_free(rth);
837 continue;
838 }
Changli Gaod8d1f302010-06-10 23:31:35 -0700839 if (rth->dst.expires) {
Linus Torvalds1da177e2005-04-16 15:20:36 -0700840 /* Entry is expired even if it is in use */
Changli Gaod8d1f302010-06-10 23:31:35 -0700841 if (time_before_eq(jiffies, rth->dst.expires)) {
Eric Dumazet1ddbcb02009-05-19 20:14:28 +0000842nofree:
Linus Torvalds1da177e2005-04-16 15:20:36 -0700843 tmo >>= 1;
Changli Gaod8d1f302010-06-10 23:31:35 -0700844 rthp = &rth->dst.rt_next;
Neil Horman1080d702008-10-27 12:28:25 -0700845 /*
Eric Dumazet1ddbcb02009-05-19 20:14:28 +0000846 * We only count entries on
Neil Horman1080d702008-10-27 12:28:25 -0700847 * a chain with equal hash inputs once
848 * so that entries for different QOS
849 * levels, and other non-hash input
850 * attributes don't unfairly skew
851 * the length computation
852 */
Eric Dumazet98376382010-03-08 03:20:00 +0000853 length += has_noalias(rt_hash_table[i].chain, rth);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700854 continue;
855 }
Eric Dumazet1ddbcb02009-05-19 20:14:28 +0000856 } else if (!rt_may_expire(rth, tmo, ip_rt_gc_timeout))
857 goto nofree;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700858
859 /* Cleanup aged off entries. */
Changli Gaod8d1f302010-06-10 23:31:35 -0700860 *rthp = rth->dst.rt_next;
YOSHIFUJI Hideakie905a9e2007-02-09 23:24:47 +0900861 rt_free(rth);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700862 }
Eric Dumazet39c90ec2007-09-15 10:55:54 -0700863 spin_unlock_bh(rt_hash_lock_addr(i));
Neil Horman1080d702008-10-27 12:28:25 -0700864 sum += length;
865 sum2 += length*length;
866 }
867 if (samples) {
868 unsigned long avg = sum / samples;
869 unsigned long sd = int_sqrt(sum2 / samples - avg*avg);
870 rt_chain_length_max = max_t(unsigned long,
871 ip_rt_gc_elasticity,
872 (avg + 4*sd) >> FRACT_BITS);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700873 }
874 rover = i;
Eric Dumazetbeb659b2007-11-19 22:43:37 -0800875}
876
877/*
878 * rt_worker_func() is run in process context.
Eric Dumazet29e75252008-01-31 17:05:09 -0800879 * we call rt_check_expire() to scan part of the hash table
Eric Dumazetbeb659b2007-11-19 22:43:37 -0800880 */
881static void rt_worker_func(struct work_struct *work)
882{
Eric Dumazet29e75252008-01-31 17:05:09 -0800883 rt_check_expire();
Eric Dumazet39c90ec2007-09-15 10:55:54 -0700884 schedule_delayed_work(&expires_work, ip_rt_gc_interval);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700885}
886
Eric Dumazet29e75252008-01-31 17:05:09 -0800887/*
888 * Pertubation of rt_genid by a small quantity [1..256]
889 * Using 8 bits of shuffling ensure we can call rt_cache_invalidate()
890 * many times (2^24) without giving recent rt_genid.
891 * Jenkins hash is strong enough that litle changes of rt_genid are OK.
Linus Torvalds1da177e2005-04-16 15:20:36 -0700892 */
Denis V. Lunev86c657f2008-07-05 19:03:31 -0700893static void rt_cache_invalidate(struct net *net)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700894{
Eric Dumazet29e75252008-01-31 17:05:09 -0800895 unsigned char shuffle;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700896
Eric Dumazet29e75252008-01-31 17:05:09 -0800897 get_random_bytes(&shuffle, sizeof(shuffle));
Denis V. Luneve84f84f2008-07-05 19:04:32 -0700898 atomic_add(shuffle + 1U, &net->ipv4.rt_genid);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700899}
900
Eric Dumazetbeb659b2007-11-19 22:43:37 -0800901/*
Eric Dumazet29e75252008-01-31 17:05:09 -0800902 * delay < 0 : invalidate cache (fast : entries will be deleted later)
903 * delay >= 0 : invalidate & flush cache (can be long)
904 */
Denis V. Lunev76e6ebf2008-07-05 19:00:44 -0700905void rt_cache_flush(struct net *net, int delay)
Eric Dumazet29e75252008-01-31 17:05:09 -0800906{
Denis V. Lunev86c657f2008-07-05 19:03:31 -0700907 rt_cache_invalidate(net);
Eric Dumazet29e75252008-01-31 17:05:09 -0800908 if (delay >= 0)
909 rt_do_flush(!in_softirq());
910}
911
Eric W. Biedermana5ee1552009-11-29 15:45:58 +0000912/* Flush previous cache invalidated entries from the cache */
913void rt_cache_flush_batch(void)
914{
915 rt_do_flush(!in_softirq());
916}
917
Neil Horman1080d702008-10-27 12:28:25 -0700918static void rt_emergency_hash_rebuild(struct net *net)
919{
Neil Horman3ee94372010-05-08 01:57:52 -0700920 if (net_ratelimit())
Neil Horman1080d702008-10-27 12:28:25 -0700921 printk(KERN_WARNING "Route hash chain too long!\n");
Neil Horman3ee94372010-05-08 01:57:52 -0700922 rt_cache_invalidate(net);
Neil Horman1080d702008-10-27 12:28:25 -0700923}
924
Linus Torvalds1da177e2005-04-16 15:20:36 -0700925/*
926 Short description of GC goals.
927
928 We want to build algorithm, which will keep routing cache
929 at some equilibrium point, when number of aged off entries
930 is kept approximately equal to newly generated ones.
931
932 Current expiration strength is variable "expire".
933 We try to adjust it dynamically, so that if networking
934 is idle expires is large enough to keep enough of warm entries,
935 and when load increases it reduces to limit cache size.
936 */
937
Daniel Lezcano569d3642008-01-18 03:56:57 -0800938static int rt_garbage_collect(struct dst_ops *ops)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700939{
940 static unsigned long expire = RT_GC_TIMEOUT;
941 static unsigned long last_gc;
942 static int rover;
943 static int equilibrium;
944 struct rtable *rth, **rthp;
945 unsigned long now = jiffies;
946 int goal;
Eric Dumazetfc66f952010-10-08 06:37:34 +0000947 int entries = dst_entries_get_fast(&ipv4_dst_ops);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700948
949 /*
950 * Garbage collection is pretty expensive,
951 * do not make it too frequently.
952 */
953
954 RT_CACHE_STAT_INC(gc_total);
955
956 if (now - last_gc < ip_rt_gc_min_interval &&
Eric Dumazetfc66f952010-10-08 06:37:34 +0000957 entries < ip_rt_max_size) {
Linus Torvalds1da177e2005-04-16 15:20:36 -0700958 RT_CACHE_STAT_INC(gc_ignored);
959 goto out;
960 }
961
Eric Dumazetfc66f952010-10-08 06:37:34 +0000962 entries = dst_entries_get_slow(&ipv4_dst_ops);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700963 /* Calculate number of entries, which we want to expire now. */
Eric Dumazetfc66f952010-10-08 06:37:34 +0000964 goal = entries - (ip_rt_gc_elasticity << rt_hash_log);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700965 if (goal <= 0) {
966 if (equilibrium < ipv4_dst_ops.gc_thresh)
967 equilibrium = ipv4_dst_ops.gc_thresh;
Eric Dumazetfc66f952010-10-08 06:37:34 +0000968 goal = entries - equilibrium;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700969 if (goal > 0) {
Eric Dumazetb790ced2007-12-21 01:49:07 -0800970 equilibrium += min_t(unsigned int, goal >> 1, rt_hash_mask + 1);
Eric Dumazetfc66f952010-10-08 06:37:34 +0000971 goal = entries - equilibrium;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700972 }
973 } else {
974 /* We are in dangerous area. Try to reduce cache really
975 * aggressively.
976 */
Eric Dumazetb790ced2007-12-21 01:49:07 -0800977 goal = max_t(unsigned int, goal >> 1, rt_hash_mask + 1);
Eric Dumazetfc66f952010-10-08 06:37:34 +0000978 equilibrium = entries - goal;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700979 }
980
981 if (now - last_gc >= ip_rt_gc_min_interval)
982 last_gc = now;
983
984 if (goal <= 0) {
985 equilibrium += goal;
986 goto work_done;
987 }
988
989 do {
990 int i, k;
991
992 for (i = rt_hash_mask, k = rover; i >= 0; i--) {
993 unsigned long tmo = expire;
994
995 k = (k + 1) & rt_hash_mask;
996 rthp = &rt_hash_table[k].chain;
Eric Dumazet22c047c2005-07-05 14:55:24 -0700997 spin_lock_bh(rt_hash_lock_addr(k));
Linus Torvalds1da177e2005-04-16 15:20:36 -0700998 while ((rth = *rthp) != NULL) {
Denis V. Luneve84f84f2008-07-05 19:04:32 -0700999 if (!rt_is_expired(rth) &&
Eric Dumazet29e75252008-01-31 17:05:09 -08001000 !rt_may_expire(rth, tmo, expire)) {
Linus Torvalds1da177e2005-04-16 15:20:36 -07001001 tmo >>= 1;
Changli Gaod8d1f302010-06-10 23:31:35 -07001002 rthp = &rth->dst.rt_next;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001003 continue;
1004 }
Changli Gaod8d1f302010-06-10 23:31:35 -07001005 *rthp = rth->dst.rt_next;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001006 rt_free(rth);
1007 goal--;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001008 }
Eric Dumazet22c047c2005-07-05 14:55:24 -07001009 spin_unlock_bh(rt_hash_lock_addr(k));
Linus Torvalds1da177e2005-04-16 15:20:36 -07001010 if (goal <= 0)
1011 break;
1012 }
1013 rover = k;
1014
1015 if (goal <= 0)
1016 goto work_done;
1017
1018 /* Goal is not achieved. We stop process if:
1019
1020 - if expire reduced to zero. Otherwise, expire is halfed.
1021 - if table is not full.
1022 - if we are called from interrupt.
1023 - jiffies check is just fallback/debug loop breaker.
1024 We will not spin here for long time in any case.
1025 */
1026
1027 RT_CACHE_STAT_INC(gc_goal_miss);
1028
1029 if (expire == 0)
1030 break;
1031
1032 expire >>= 1;
1033#if RT_CACHE_DEBUG >= 2
1034 printk(KERN_DEBUG "expire>> %u %d %d %d\n", expire,
Eric Dumazetfc66f952010-10-08 06:37:34 +00001035 dst_entries_get_fast(&ipv4_dst_ops), goal, i);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001036#endif
1037
Eric Dumazetfc66f952010-10-08 06:37:34 +00001038 if (dst_entries_get_fast(&ipv4_dst_ops) < ip_rt_max_size)
Linus Torvalds1da177e2005-04-16 15:20:36 -07001039 goto out;
1040 } while (!in_softirq() && time_before_eq(jiffies, now));
1041
Eric Dumazetfc66f952010-10-08 06:37:34 +00001042 if (dst_entries_get_fast(&ipv4_dst_ops) < ip_rt_max_size)
1043 goto out;
1044 if (dst_entries_get_slow(&ipv4_dst_ops) < ip_rt_max_size)
Linus Torvalds1da177e2005-04-16 15:20:36 -07001045 goto out;
1046 if (net_ratelimit())
1047 printk(KERN_WARNING "dst cache overflow\n");
1048 RT_CACHE_STAT_INC(gc_dst_overflow);
1049 return 1;
1050
1051work_done:
1052 expire += ip_rt_gc_min_interval;
1053 if (expire > ip_rt_gc_timeout ||
Eric Dumazetfc66f952010-10-08 06:37:34 +00001054 dst_entries_get_fast(&ipv4_dst_ops) < ipv4_dst_ops.gc_thresh ||
1055 dst_entries_get_slow(&ipv4_dst_ops) < ipv4_dst_ops.gc_thresh)
Linus Torvalds1da177e2005-04-16 15:20:36 -07001056 expire = ip_rt_gc_timeout;
1057#if RT_CACHE_DEBUG >= 2
1058 printk(KERN_DEBUG "expire++ %u %d %d %d\n", expire,
Eric Dumazetfc66f952010-10-08 06:37:34 +00001059 dst_entries_get_fast(&ipv4_dst_ops), goal, rover);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001060#endif
1061out: return 0;
1062}
1063
Eric Dumazet98376382010-03-08 03:20:00 +00001064/*
1065 * Returns number of entries in a hash chain that have different hash_inputs
1066 */
1067static int slow_chain_length(const struct rtable *head)
1068{
1069 int length = 0;
1070 const struct rtable *rth = head;
1071
1072 while (rth) {
1073 length += has_noalias(head, rth);
Changli Gaod8d1f302010-06-10 23:31:35 -07001074 rth = rth->dst.rt_next;
Eric Dumazet98376382010-03-08 03:20:00 +00001075 }
1076 return length >> FRACT_BITS;
1077}
1078
Eric Dumazet511c3f92009-06-02 05:14:27 +00001079static int rt_intern_hash(unsigned hash, struct rtable *rt,
Pavel Emelyanov6a2bad72010-03-24 21:51:22 +00001080 struct rtable **rp, struct sk_buff *skb, int ifindex)
Linus Torvalds1da177e2005-04-16 15:20:36 -07001081{
1082 struct rtable *rth, **rthp;
1083 unsigned long now;
1084 struct rtable *cand, **candp;
1085 u32 min_score;
1086 int chain_length;
1087 int attempts = !in_softirq();
1088
1089restart:
1090 chain_length = 0;
1091 min_score = ~(u32)0;
1092 cand = NULL;
1093 candp = NULL;
1094 now = jiffies;
1095
Changli Gaod8d1f302010-06-10 23:31:35 -07001096 if (!rt_caching(dev_net(rt->dst.dev))) {
Neil Horman73e42892009-06-20 01:15:16 -07001097 /*
1098 * If we're not caching, just tell the caller we
1099 * were successful and don't touch the route. The
1100 * caller hold the sole reference to the cache entry, and
1101 * it will be released when the caller is done with it.
1102 * If we drop it here, the callers have no way to resolve routes
1103 * when we're not caching. Instead, just point *rp at rt, so
1104 * the caller gets a single use out of the route
Neil Hormanb6280b42009-06-22 10:18:53 +00001105 * Note that we do rt_free on this new route entry, so that
1106 * once its refcount hits zero, we are still able to reap it
1107 * (Thanks Alexey)
Eric Dumazet27b75c92010-10-15 05:44:11 +00001108 * Note: To avoid expensive rcu stuff for this uncached dst,
1109 * we set DST_NOCACHE so that dst_release() can free dst without
1110 * waiting a grace period.
Neil Horman73e42892009-06-20 01:15:16 -07001111 */
Neil Hormanb6280b42009-06-22 10:18:53 +00001112
Eric Dumazetc7d44262010-10-03 22:17:54 -07001113 rt->dst.flags |= DST_NOCACHE;
Neil Hormanb6280b42009-06-22 10:18:53 +00001114 if (rt->rt_type == RTN_UNICAST || rt->fl.iif == 0) {
Changli Gaod8d1f302010-06-10 23:31:35 -07001115 int err = arp_bind_neighbour(&rt->dst);
Neil Hormanb6280b42009-06-22 10:18:53 +00001116 if (err) {
1117 if (net_ratelimit())
1118 printk(KERN_WARNING
1119 "Neighbour table failure & not caching routes.\n");
Eric Dumazet27b75c92010-10-15 05:44:11 +00001120 ip_rt_put(rt);
Neil Hormanb6280b42009-06-22 10:18:53 +00001121 return err;
1122 }
1123 }
1124
Neil Hormanb6280b42009-06-22 10:18:53 +00001125 goto skip_hashing;
Neil Horman1080d702008-10-27 12:28:25 -07001126 }
1127
Linus Torvalds1da177e2005-04-16 15:20:36 -07001128 rthp = &rt_hash_table[hash].chain;
1129
Eric Dumazet22c047c2005-07-05 14:55:24 -07001130 spin_lock_bh(rt_hash_lock_addr(hash));
Linus Torvalds1da177e2005-04-16 15:20:36 -07001131 while ((rth = *rthp) != NULL) {
Denis V. Luneve84f84f2008-07-05 19:04:32 -07001132 if (rt_is_expired(rth)) {
Changli Gaod8d1f302010-06-10 23:31:35 -07001133 *rthp = rth->dst.rt_next;
Eric Dumazet29e75252008-01-31 17:05:09 -08001134 rt_free(rth);
1135 continue;
1136 }
Denis V. Lunevb5921912008-01-22 23:50:25 -08001137 if (compare_keys(&rth->fl, &rt->fl) && compare_netns(rth, rt)) {
Linus Torvalds1da177e2005-04-16 15:20:36 -07001138 /* Put it first */
Changli Gaod8d1f302010-06-10 23:31:35 -07001139 *rthp = rth->dst.rt_next;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001140 /*
1141 * Since lookup is lockfree, the deletion
1142 * must be visible to another weakly ordered CPU before
1143 * the insertion at the start of the hash chain.
1144 */
Changli Gaod8d1f302010-06-10 23:31:35 -07001145 rcu_assign_pointer(rth->dst.rt_next,
Linus Torvalds1da177e2005-04-16 15:20:36 -07001146 rt_hash_table[hash].chain);
1147 /*
1148 * Since lookup is lockfree, the update writes
1149 * must be ordered for consistency on SMP.
1150 */
1151 rcu_assign_pointer(rt_hash_table[hash].chain, rth);
1152
Changli Gaod8d1f302010-06-10 23:31:35 -07001153 dst_use(&rth->dst, now);
Eric Dumazet22c047c2005-07-05 14:55:24 -07001154 spin_unlock_bh(rt_hash_lock_addr(hash));
Linus Torvalds1da177e2005-04-16 15:20:36 -07001155
1156 rt_drop(rt);
Eric Dumazet511c3f92009-06-02 05:14:27 +00001157 if (rp)
1158 *rp = rth;
1159 else
Changli Gaod8d1f302010-06-10 23:31:35 -07001160 skb_dst_set(skb, &rth->dst);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001161 return 0;
1162 }
1163
Changli Gaod8d1f302010-06-10 23:31:35 -07001164 if (!atomic_read(&rth->dst.__refcnt)) {
Linus Torvalds1da177e2005-04-16 15:20:36 -07001165 u32 score = rt_score(rth);
1166
1167 if (score <= min_score) {
1168 cand = rth;
1169 candp = rthp;
1170 min_score = score;
1171 }
1172 }
1173
1174 chain_length++;
1175
Changli Gaod8d1f302010-06-10 23:31:35 -07001176 rthp = &rth->dst.rt_next;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001177 }
1178
1179 if (cand) {
1180 /* ip_rt_gc_elasticity used to be average length of chain
1181 * length, when exceeded gc becomes really aggressive.
1182 *
1183 * The second limit is less certain. At the moment it allows
1184 * only 2 entries per bucket. We will see.
1185 */
1186 if (chain_length > ip_rt_gc_elasticity) {
Changli Gaod8d1f302010-06-10 23:31:35 -07001187 *candp = cand->dst.rt_next;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001188 rt_free(cand);
1189 }
Neil Horman1080d702008-10-27 12:28:25 -07001190 } else {
Eric Dumazet98376382010-03-08 03:20:00 +00001191 if (chain_length > rt_chain_length_max &&
1192 slow_chain_length(rt_hash_table[hash].chain) > rt_chain_length_max) {
Changli Gaod8d1f302010-06-10 23:31:35 -07001193 struct net *net = dev_net(rt->dst.dev);
Neil Horman1080d702008-10-27 12:28:25 -07001194 int num = ++net->ipv4.current_rt_cache_rebuild_count;
Pavel Emelyanovb35ecb52010-03-24 07:43:17 +00001195 if (!rt_caching(net)) {
Neil Horman1080d702008-10-27 12:28:25 -07001196 printk(KERN_WARNING "%s: %d rebuilds is over limit, route caching disabled\n",
Changli Gaod8d1f302010-06-10 23:31:35 -07001197 rt->dst.dev->name, num);
Neil Horman1080d702008-10-27 12:28:25 -07001198 }
Pavel Emelyanovb35ecb52010-03-24 07:43:17 +00001199 rt_emergency_hash_rebuild(net);
Pavel Emelyanov6a2bad72010-03-24 21:51:22 +00001200 spin_unlock_bh(rt_hash_lock_addr(hash));
1201
1202 hash = rt_hash(rt->fl.fl4_dst, rt->fl.fl4_src,
1203 ifindex, rt_genid(net));
1204 goto restart;
Neil Horman1080d702008-10-27 12:28:25 -07001205 }
Linus Torvalds1da177e2005-04-16 15:20:36 -07001206 }
1207
1208 /* Try to bind route to arp only if it is output
1209 route or unicast forwarding path.
1210 */
1211 if (rt->rt_type == RTN_UNICAST || rt->fl.iif == 0) {
Changli Gaod8d1f302010-06-10 23:31:35 -07001212 int err = arp_bind_neighbour(&rt->dst);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001213 if (err) {
Eric Dumazet22c047c2005-07-05 14:55:24 -07001214 spin_unlock_bh(rt_hash_lock_addr(hash));
Linus Torvalds1da177e2005-04-16 15:20:36 -07001215
1216 if (err != -ENOBUFS) {
1217 rt_drop(rt);
1218 return err;
1219 }
1220
1221 /* Neighbour tables are full and nothing
1222 can be released. Try to shrink route cache,
1223 it is most likely it holds some neighbour records.
1224 */
1225 if (attempts-- > 0) {
1226 int saved_elasticity = ip_rt_gc_elasticity;
1227 int saved_int = ip_rt_gc_min_interval;
1228 ip_rt_gc_elasticity = 1;
1229 ip_rt_gc_min_interval = 0;
Daniel Lezcano569d3642008-01-18 03:56:57 -08001230 rt_garbage_collect(&ipv4_dst_ops);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001231 ip_rt_gc_min_interval = saved_int;
1232 ip_rt_gc_elasticity = saved_elasticity;
1233 goto restart;
1234 }
1235
1236 if (net_ratelimit())
Ulrich Weber7e1b33e2010-09-27 15:02:18 -07001237 printk(KERN_WARNING "ipv4: Neighbour table overflow.\n");
Linus Torvalds1da177e2005-04-16 15:20:36 -07001238 rt_drop(rt);
1239 return -ENOBUFS;
1240 }
1241 }
1242
Changli Gaod8d1f302010-06-10 23:31:35 -07001243 rt->dst.rt_next = rt_hash_table[hash].chain;
Neil Horman1080d702008-10-27 12:28:25 -07001244
Linus Torvalds1da177e2005-04-16 15:20:36 -07001245#if RT_CACHE_DEBUG >= 2
Changli Gaod8d1f302010-06-10 23:31:35 -07001246 if (rt->dst.rt_next) {
Linus Torvalds1da177e2005-04-16 15:20:36 -07001247 struct rtable *trt;
Neil Hormanb6280b42009-06-22 10:18:53 +00001248 printk(KERN_DEBUG "rt_cache @%02x: %pI4",
1249 hash, &rt->rt_dst);
Changli Gaod8d1f302010-06-10 23:31:35 -07001250 for (trt = rt->dst.rt_next; trt; trt = trt->dst.rt_next)
Harvey Harrison673d57e2008-10-31 00:53:57 -07001251 printk(" . %pI4", &trt->rt_dst);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001252 printk("\n");
1253 }
1254#endif
Eric Dumazet00269b52008-10-16 14:18:29 -07001255 /*
1256 * Since lookup is lockfree, we must make sure
1257 * previous writes to rt are comitted to memory
1258 * before making rt visible to other CPUS.
1259 */
Eric Dumazet1ddbcb02009-05-19 20:14:28 +00001260 rcu_assign_pointer(rt_hash_table[hash].chain, rt);
Neil Horman1080d702008-10-27 12:28:25 -07001261
Eric Dumazet22c047c2005-07-05 14:55:24 -07001262 spin_unlock_bh(rt_hash_lock_addr(hash));
Neil Horman73e42892009-06-20 01:15:16 -07001263
Neil Hormanb6280b42009-06-22 10:18:53 +00001264skip_hashing:
Eric Dumazet511c3f92009-06-02 05:14:27 +00001265 if (rp)
1266 *rp = rt;
1267 else
Changli Gaod8d1f302010-06-10 23:31:35 -07001268 skb_dst_set(skb, &rt->dst);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001269 return 0;
1270}
1271
1272void rt_bind_peer(struct rtable *rt, int create)
1273{
Linus Torvalds1da177e2005-04-16 15:20:36 -07001274 struct inet_peer *peer;
1275
1276 peer = inet_getpeer(rt->rt_dst, create);
1277
Eric Dumazet49e8ab02010-08-19 06:10:45 +00001278 if (peer && cmpxchg(&rt->peer, NULL, peer) != NULL)
Linus Torvalds1da177e2005-04-16 15:20:36 -07001279 inet_putpeer(peer);
1280}
1281
1282/*
1283 * Peer allocation may fail only in serious out-of-memory conditions. However
1284 * we still can generate some output.
1285 * Random ID selection looks a bit dangerous because we have no chances to
1286 * select ID being unique in a reasonable period of time.
1287 * But broken packet identifier may be better than no packet at all.
1288 */
1289static void ip_select_fb_ident(struct iphdr *iph)
1290{
1291 static DEFINE_SPINLOCK(ip_fb_id_lock);
1292 static u32 ip_fallback_id;
1293 u32 salt;
1294
1295 spin_lock_bh(&ip_fb_id_lock);
Al Viroe4485152006-09-26 22:15:01 -07001296 salt = secure_ip_id((__force __be32)ip_fallback_id ^ iph->daddr);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001297 iph->id = htons(salt & 0xFFFF);
1298 ip_fallback_id = salt;
1299 spin_unlock_bh(&ip_fb_id_lock);
1300}
1301
1302void __ip_select_ident(struct iphdr *iph, struct dst_entry *dst, int more)
1303{
1304 struct rtable *rt = (struct rtable *) dst;
1305
1306 if (rt) {
1307 if (rt->peer == NULL)
1308 rt_bind_peer(rt, 1);
1309
1310 /* If peer is attached to destination, it is never detached,
1311 so that we need not to grab a lock to dereference it.
1312 */
1313 if (rt->peer) {
1314 iph->id = htons(inet_getid(rt->peer, more));
1315 return;
1316 }
1317 } else
YOSHIFUJI Hideakie905a9e2007-02-09 23:24:47 +09001318 printk(KERN_DEBUG "rt_bind_peer(0) @%p\n",
Stephen Hemminger9c2b3322005-04-19 22:39:42 -07001319 __builtin_return_address(0));
Linus Torvalds1da177e2005-04-16 15:20:36 -07001320
1321 ip_select_fb_ident(iph);
1322}
Eric Dumazet4bc2f182010-07-09 21:22:10 +00001323EXPORT_SYMBOL(__ip_select_ident);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001324
1325static void rt_del(unsigned hash, struct rtable *rt)
1326{
Eric Dumazet29e75252008-01-31 17:05:09 -08001327 struct rtable **rthp, *aux;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001328
Eric Dumazet29e75252008-01-31 17:05:09 -08001329 rthp = &rt_hash_table[hash].chain;
Eric Dumazet22c047c2005-07-05 14:55:24 -07001330 spin_lock_bh(rt_hash_lock_addr(hash));
Linus Torvalds1da177e2005-04-16 15:20:36 -07001331 ip_rt_put(rt);
Eric Dumazet29e75252008-01-31 17:05:09 -08001332 while ((aux = *rthp) != NULL) {
Denis V. Luneve84f84f2008-07-05 19:04:32 -07001333 if (aux == rt || rt_is_expired(aux)) {
Changli Gaod8d1f302010-06-10 23:31:35 -07001334 *rthp = aux->dst.rt_next;
Eric Dumazet29e75252008-01-31 17:05:09 -08001335 rt_free(aux);
1336 continue;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001337 }
Changli Gaod8d1f302010-06-10 23:31:35 -07001338 rthp = &aux->dst.rt_next;
Eric Dumazet29e75252008-01-31 17:05:09 -08001339 }
Eric Dumazet22c047c2005-07-05 14:55:24 -07001340 spin_unlock_bh(rt_hash_lock_addr(hash));
Linus Torvalds1da177e2005-04-16 15:20:36 -07001341}
1342
Eric Dumazeted7865a42010-06-07 21:49:44 -07001343/* called in rcu_read_lock() section */
Al Virof7655222006-09-26 21:25:43 -07001344void ip_rt_redirect(__be32 old_gw, __be32 daddr, __be32 new_gw,
1345 __be32 saddr, struct net_device *dev)
Linus Torvalds1da177e2005-04-16 15:20:36 -07001346{
1347 int i, k;
Eric Dumazeted7865a42010-06-07 21:49:44 -07001348 struct in_device *in_dev = __in_dev_get_rcu(dev);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001349 struct rtable *rth, **rthp;
Al Virof7655222006-09-26 21:25:43 -07001350 __be32 skeys[2] = { saddr, 0 };
Linus Torvalds1da177e2005-04-16 15:20:36 -07001351 int ikeys[2] = { dev->ifindex, 0 };
Tom Tucker8d717402006-07-30 20:43:36 -07001352 struct netevent_redirect netevent;
Denis V. Lunev317805b2008-02-28 20:50:06 -08001353 struct net *net;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001354
Linus Torvalds1da177e2005-04-16 15:20:36 -07001355 if (!in_dev)
1356 return;
1357
YOSHIFUJI Hideakic346dca2008-03-25 21:47:49 +09001358 net = dev_net(dev);
Joe Perches9d4fb272009-11-23 10:41:23 -08001359 if (new_gw == old_gw || !IN_DEV_RX_REDIRECTS(in_dev) ||
1360 ipv4_is_multicast(new_gw) || ipv4_is_lbcast(new_gw) ||
1361 ipv4_is_zeronet(new_gw))
Linus Torvalds1da177e2005-04-16 15:20:36 -07001362 goto reject_redirect;
1363
Neil Horman1080d702008-10-27 12:28:25 -07001364 if (!rt_caching(net))
1365 goto reject_redirect;
1366
Linus Torvalds1da177e2005-04-16 15:20:36 -07001367 if (!IN_DEV_SHARED_MEDIA(in_dev)) {
1368 if (!inet_addr_onlink(in_dev, new_gw, old_gw))
1369 goto reject_redirect;
1370 if (IN_DEV_SEC_REDIRECTS(in_dev) && ip_fib_check_default(new_gw, dev))
1371 goto reject_redirect;
1372 } else {
Denis V. Lunev317805b2008-02-28 20:50:06 -08001373 if (inet_addr_type(net, new_gw) != RTN_UNICAST)
Linus Torvalds1da177e2005-04-16 15:20:36 -07001374 goto reject_redirect;
1375 }
1376
1377 for (i = 0; i < 2; i++) {
1378 for (k = 0; k < 2; k++) {
Denis V. Lunevb00180d2008-07-05 19:04:09 -07001379 unsigned hash = rt_hash(daddr, skeys[i], ikeys[k],
Denis V. Luneve84f84f2008-07-05 19:04:32 -07001380 rt_genid(net));
Linus Torvalds1da177e2005-04-16 15:20:36 -07001381
1382 rthp=&rt_hash_table[hash].chain;
1383
Linus Torvalds1da177e2005-04-16 15:20:36 -07001384 while ((rth = rcu_dereference(*rthp)) != NULL) {
1385 struct rtable *rt;
1386
1387 if (rth->fl.fl4_dst != daddr ||
1388 rth->fl.fl4_src != skeys[i] ||
Linus Torvalds1da177e2005-04-16 15:20:36 -07001389 rth->fl.oif != ikeys[k] ||
Eric Dumazet29e75252008-01-31 17:05:09 -08001390 rth->fl.iif != 0 ||
Denis V. Luneve84f84f2008-07-05 19:04:32 -07001391 rt_is_expired(rth) ||
Changli Gaod8d1f302010-06-10 23:31:35 -07001392 !net_eq(dev_net(rth->dst.dev), net)) {
1393 rthp = &rth->dst.rt_next;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001394 continue;
1395 }
1396
1397 if (rth->rt_dst != daddr ||
1398 rth->rt_src != saddr ||
Changli Gaod8d1f302010-06-10 23:31:35 -07001399 rth->dst.error ||
Linus Torvalds1da177e2005-04-16 15:20:36 -07001400 rth->rt_gateway != old_gw ||
Changli Gaod8d1f302010-06-10 23:31:35 -07001401 rth->dst.dev != dev)
Linus Torvalds1da177e2005-04-16 15:20:36 -07001402 break;
1403
Changli Gaod8d1f302010-06-10 23:31:35 -07001404 dst_hold(&rth->dst);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001405
1406 rt = dst_alloc(&ipv4_dst_ops);
1407 if (rt == NULL) {
1408 ip_rt_put(rth);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001409 return;
1410 }
1411
1412 /* Copy all the information. */
1413 *rt = *rth;
Changli Gaod8d1f302010-06-10 23:31:35 -07001414 rt->dst.__use = 1;
1415 atomic_set(&rt->dst.__refcnt, 1);
1416 rt->dst.child = NULL;
1417 if (rt->dst.dev)
1418 dev_hold(rt->dst.dev);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001419 if (rt->idev)
1420 in_dev_hold(rt->idev);
Changli Gaod8d1f302010-06-10 23:31:35 -07001421 rt->dst.obsolete = -1;
1422 rt->dst.lastuse = jiffies;
1423 rt->dst.path = &rt->dst;
1424 rt->dst.neighbour = NULL;
1425 rt->dst.hh = NULL;
Alexey Dobriyandef8b4f2008-10-28 13:24:06 -07001426#ifdef CONFIG_XFRM
Changli Gaod8d1f302010-06-10 23:31:35 -07001427 rt->dst.xfrm = NULL;
Alexey Dobriyandef8b4f2008-10-28 13:24:06 -07001428#endif
Denis V. Luneve84f84f2008-07-05 19:04:32 -07001429 rt->rt_genid = rt_genid(net);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001430 rt->rt_flags |= RTCF_REDIRECTED;
1431
1432 /* Gateway is different ... */
1433 rt->rt_gateway = new_gw;
1434
1435 /* Redirect received -> path was valid */
Changli Gaod8d1f302010-06-10 23:31:35 -07001436 dst_confirm(&rth->dst);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001437
1438 if (rt->peer)
1439 atomic_inc(&rt->peer->refcnt);
1440
Changli Gaod8d1f302010-06-10 23:31:35 -07001441 if (arp_bind_neighbour(&rt->dst) ||
1442 !(rt->dst.neighbour->nud_state &
Linus Torvalds1da177e2005-04-16 15:20:36 -07001443 NUD_VALID)) {
Changli Gaod8d1f302010-06-10 23:31:35 -07001444 if (rt->dst.neighbour)
1445 neigh_event_send(rt->dst.neighbour, NULL);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001446 ip_rt_put(rth);
1447 rt_drop(rt);
1448 goto do_next;
1449 }
YOSHIFUJI Hideakie905a9e2007-02-09 23:24:47 +09001450
Changli Gaod8d1f302010-06-10 23:31:35 -07001451 netevent.old = &rth->dst;
1452 netevent.new = &rt->dst;
YOSHIFUJI Hideakie905a9e2007-02-09 23:24:47 +09001453 call_netevent_notifiers(NETEVENT_REDIRECT,
1454 &netevent);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001455
1456 rt_del(hash, rth);
Pavel Emelyanov6a2bad72010-03-24 21:51:22 +00001457 if (!rt_intern_hash(hash, rt, &rt, NULL, rt->fl.oif))
Linus Torvalds1da177e2005-04-16 15:20:36 -07001458 ip_rt_put(rt);
1459 goto do_next;
1460 }
Linus Torvalds1da177e2005-04-16 15:20:36 -07001461 do_next:
1462 ;
1463 }
1464 }
Linus Torvalds1da177e2005-04-16 15:20:36 -07001465 return;
1466
1467reject_redirect:
1468#ifdef CONFIG_IP_ROUTE_VERBOSE
1469 if (IN_DEV_LOG_MARTIANS(in_dev) && net_ratelimit())
Harvey Harrison673d57e2008-10-31 00:53:57 -07001470 printk(KERN_INFO "Redirect from %pI4 on %s about %pI4 ignored.\n"
1471 " Advised path = %pI4 -> %pI4\n",
1472 &old_gw, dev->name, &new_gw,
1473 &saddr, &daddr);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001474#endif
Eric Dumazeted7865a42010-06-07 21:49:44 -07001475 ;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001476}
1477
1478static struct dst_entry *ipv4_negative_advice(struct dst_entry *dst)
1479{
Eric Dumazetee6b9672008-03-05 18:30:47 -08001480 struct rtable *rt = (struct rtable *)dst;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001481 struct dst_entry *ret = dst;
1482
1483 if (rt) {
Timo Teräsd11a4dc2010-03-18 23:20:20 +00001484 if (dst->obsolete > 0) {
Linus Torvalds1da177e2005-04-16 15:20:36 -07001485 ip_rt_put(rt);
1486 ret = NULL;
1487 } else if ((rt->rt_flags & RTCF_REDIRECTED) ||
Changli Gaod8d1f302010-06-10 23:31:35 -07001488 (rt->dst.expires &&
1489 time_after_eq(jiffies, rt->dst.expires))) {
Al Viro8c7bc842006-09-26 21:26:19 -07001490 unsigned hash = rt_hash(rt->fl.fl4_dst, rt->fl.fl4_src,
Denis V. Lunevb00180d2008-07-05 19:04:09 -07001491 rt->fl.oif,
Denis V. Luneve84f84f2008-07-05 19:04:32 -07001492 rt_genid(dev_net(dst->dev)));
Linus Torvalds1da177e2005-04-16 15:20:36 -07001493#if RT_CACHE_DEBUG >= 1
Harvey Harrison673d57e2008-10-31 00:53:57 -07001494 printk(KERN_DEBUG "ipv4_negative_advice: redirect to %pI4/%02x dropped\n",
1495 &rt->rt_dst, rt->fl.fl4_tos);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001496#endif
1497 rt_del(hash, rt);
1498 ret = NULL;
1499 }
1500 }
1501 return ret;
1502}
1503
1504/*
1505 * Algorithm:
1506 * 1. The first ip_rt_redirect_number redirects are sent
1507 * with exponential backoff, then we stop sending them at all,
1508 * assuming that the host ignores our redirects.
1509 * 2. If we did not see packets requiring redirects
1510 * during ip_rt_redirect_silence, we assume that the host
1511 * forgot redirected route and start to send redirects again.
1512 *
1513 * This algorithm is much cheaper and more intelligent than dumb load limiting
1514 * in icmp.c.
1515 *
1516 * NOTE. Do not forget to inhibit load limiting for redirects (redundant)
1517 * and "frag. need" (breaks PMTU discovery) in icmp.c.
1518 */
1519
1520void ip_rt_send_redirect(struct sk_buff *skb)
1521{
Eric Dumazet511c3f92009-06-02 05:14:27 +00001522 struct rtable *rt = skb_rtable(skb);
Eric Dumazet30038fc2009-08-28 23:52:01 -07001523 struct in_device *in_dev;
1524 int log_martians;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001525
Eric Dumazet30038fc2009-08-28 23:52:01 -07001526 rcu_read_lock();
Changli Gaod8d1f302010-06-10 23:31:35 -07001527 in_dev = __in_dev_get_rcu(rt->dst.dev);
Eric Dumazet30038fc2009-08-28 23:52:01 -07001528 if (!in_dev || !IN_DEV_TX_REDIRECTS(in_dev)) {
1529 rcu_read_unlock();
Linus Torvalds1da177e2005-04-16 15:20:36 -07001530 return;
Eric Dumazet30038fc2009-08-28 23:52:01 -07001531 }
1532 log_martians = IN_DEV_LOG_MARTIANS(in_dev);
1533 rcu_read_unlock();
Linus Torvalds1da177e2005-04-16 15:20:36 -07001534
1535 /* No redirected packets during ip_rt_redirect_silence;
1536 * reset the algorithm.
1537 */
Changli Gaod8d1f302010-06-10 23:31:35 -07001538 if (time_after(jiffies, rt->dst.rate_last + ip_rt_redirect_silence))
1539 rt->dst.rate_tokens = 0;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001540
1541 /* Too many ignored redirects; do not send anything
Changli Gaod8d1f302010-06-10 23:31:35 -07001542 * set dst.rate_last to the last seen redirected packet.
Linus Torvalds1da177e2005-04-16 15:20:36 -07001543 */
Changli Gaod8d1f302010-06-10 23:31:35 -07001544 if (rt->dst.rate_tokens >= ip_rt_redirect_number) {
1545 rt->dst.rate_last = jiffies;
Eric Dumazet30038fc2009-08-28 23:52:01 -07001546 return;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001547 }
1548
1549 /* Check for load limit; set rate_last to the latest sent
1550 * redirect.
1551 */
Changli Gaod8d1f302010-06-10 23:31:35 -07001552 if (rt->dst.rate_tokens == 0 ||
Li Yewang14fb8a72006-12-18 00:26:35 -08001553 time_after(jiffies,
Changli Gaod8d1f302010-06-10 23:31:35 -07001554 (rt->dst.rate_last +
1555 (ip_rt_redirect_load << rt->dst.rate_tokens)))) {
Linus Torvalds1da177e2005-04-16 15:20:36 -07001556 icmp_send(skb, ICMP_REDIRECT, ICMP_REDIR_HOST, rt->rt_gateway);
Changli Gaod8d1f302010-06-10 23:31:35 -07001557 rt->dst.rate_last = jiffies;
1558 ++rt->dst.rate_tokens;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001559#ifdef CONFIG_IP_ROUTE_VERBOSE
Eric Dumazet30038fc2009-08-28 23:52:01 -07001560 if (log_martians &&
Changli Gaod8d1f302010-06-10 23:31:35 -07001561 rt->dst.rate_tokens == ip_rt_redirect_number &&
Linus Torvalds1da177e2005-04-16 15:20:36 -07001562 net_ratelimit())
Harvey Harrison673d57e2008-10-31 00:53:57 -07001563 printk(KERN_WARNING "host %pI4/if%d ignores redirects for %pI4 to %pI4.\n",
1564 &rt->rt_src, rt->rt_iif,
1565 &rt->rt_dst, &rt->rt_gateway);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001566#endif
1567 }
Linus Torvalds1da177e2005-04-16 15:20:36 -07001568}
1569
1570static int ip_error(struct sk_buff *skb)
1571{
Eric Dumazet511c3f92009-06-02 05:14:27 +00001572 struct rtable *rt = skb_rtable(skb);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001573 unsigned long now;
1574 int code;
1575
Changli Gaod8d1f302010-06-10 23:31:35 -07001576 switch (rt->dst.error) {
Linus Torvalds1da177e2005-04-16 15:20:36 -07001577 case EINVAL:
1578 default:
1579 goto out;
1580 case EHOSTUNREACH:
1581 code = ICMP_HOST_UNREACH;
1582 break;
1583 case ENETUNREACH:
1584 code = ICMP_NET_UNREACH;
Changli Gaod8d1f302010-06-10 23:31:35 -07001585 IP_INC_STATS_BH(dev_net(rt->dst.dev),
Pavel Emelyanov7c73a6f2008-07-16 20:20:11 -07001586 IPSTATS_MIB_INNOROUTES);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001587 break;
1588 case EACCES:
1589 code = ICMP_PKT_FILTERED;
1590 break;
1591 }
1592
1593 now = jiffies;
Changli Gaod8d1f302010-06-10 23:31:35 -07001594 rt->dst.rate_tokens += now - rt->dst.rate_last;
1595 if (rt->dst.rate_tokens > ip_rt_error_burst)
1596 rt->dst.rate_tokens = ip_rt_error_burst;
1597 rt->dst.rate_last = now;
1598 if (rt->dst.rate_tokens >= ip_rt_error_cost) {
1599 rt->dst.rate_tokens -= ip_rt_error_cost;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001600 icmp_send(skb, ICMP_DEST_UNREACH, code, 0);
1601 }
1602
1603out: kfree_skb(skb);
1604 return 0;
YOSHIFUJI Hideakie905a9e2007-02-09 23:24:47 +09001605}
Linus Torvalds1da177e2005-04-16 15:20:36 -07001606
1607/*
1608 * The last two values are not from the RFC but
1609 * are needed for AMPRnet AX.25 paths.
1610 */
1611
Arjan van de Ven9b5b5cf2005-11-29 16:21:38 -08001612static const unsigned short mtu_plateau[] =
Linus Torvalds1da177e2005-04-16 15:20:36 -07001613{32000, 17914, 8166, 4352, 2002, 1492, 576, 296, 216, 128 };
1614
Stephen Hemminger5969f712008-04-10 01:52:09 -07001615static inline unsigned short guess_mtu(unsigned short old_mtu)
Linus Torvalds1da177e2005-04-16 15:20:36 -07001616{
1617 int i;
YOSHIFUJI Hideakie905a9e2007-02-09 23:24:47 +09001618
Linus Torvalds1da177e2005-04-16 15:20:36 -07001619 for (i = 0; i < ARRAY_SIZE(mtu_plateau); i++)
1620 if (old_mtu > mtu_plateau[i])
1621 return mtu_plateau[i];
1622 return 68;
1623}
1624
Denis V. Lunevb5921912008-01-22 23:50:25 -08001625unsigned short ip_rt_frag_needed(struct net *net, struct iphdr *iph,
Timo Teras0010e462008-04-29 03:32:25 -07001626 unsigned short new_mtu,
1627 struct net_device *dev)
Linus Torvalds1da177e2005-04-16 15:20:36 -07001628{
Timo Teras0010e462008-04-29 03:32:25 -07001629 int i, k;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001630 unsigned short old_mtu = ntohs(iph->tot_len);
1631 struct rtable *rth;
Timo Teras0010e462008-04-29 03:32:25 -07001632 int ikeys[2] = { dev->ifindex, 0 };
Al Viroe4485152006-09-26 22:15:01 -07001633 __be32 skeys[2] = { iph->saddr, 0, };
1634 __be32 daddr = iph->daddr;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001635 unsigned short est_mtu = 0;
1636
Timo Teras0010e462008-04-29 03:32:25 -07001637 for (k = 0; k < 2; k++) {
1638 for (i = 0; i < 2; i++) {
Denis V. Lunevb00180d2008-07-05 19:04:09 -07001639 unsigned hash = rt_hash(daddr, skeys[i], ikeys[k],
Denis V. Luneve84f84f2008-07-05 19:04:32 -07001640 rt_genid(net));
Linus Torvalds1da177e2005-04-16 15:20:36 -07001641
Timo Teras0010e462008-04-29 03:32:25 -07001642 rcu_read_lock();
1643 for (rth = rcu_dereference(rt_hash_table[hash].chain); rth;
Changli Gaod8d1f302010-06-10 23:31:35 -07001644 rth = rcu_dereference(rth->dst.rt_next)) {
Linus Torvalds1da177e2005-04-16 15:20:36 -07001645 unsigned short mtu = new_mtu;
1646
Timo Teras0010e462008-04-29 03:32:25 -07001647 if (rth->fl.fl4_dst != daddr ||
1648 rth->fl.fl4_src != skeys[i] ||
1649 rth->rt_dst != daddr ||
1650 rth->rt_src != iph->saddr ||
1651 rth->fl.oif != ikeys[k] ||
1652 rth->fl.iif != 0 ||
Changli Gaod8d1f302010-06-10 23:31:35 -07001653 dst_metric_locked(&rth->dst, RTAX_MTU) ||
1654 !net_eq(dev_net(rth->dst.dev), net) ||
Hugh Dickins6c3b8fc2008-07-26 17:51:06 -07001655 rt_is_expired(rth))
Timo Teras0010e462008-04-29 03:32:25 -07001656 continue;
1657
Linus Torvalds1da177e2005-04-16 15:20:36 -07001658 if (new_mtu < 68 || new_mtu >= old_mtu) {
1659
1660 /* BSD 4.2 compatibility hack :-( */
1661 if (mtu == 0 &&
Changli Gaod8d1f302010-06-10 23:31:35 -07001662 old_mtu >= dst_mtu(&rth->dst) &&
Linus Torvalds1da177e2005-04-16 15:20:36 -07001663 old_mtu >= 68 + (iph->ihl << 2))
1664 old_mtu -= iph->ihl << 2;
1665
1666 mtu = guess_mtu(old_mtu);
1667 }
Changli Gaod8d1f302010-06-10 23:31:35 -07001668 if (mtu <= dst_mtu(&rth->dst)) {
1669 if (mtu < dst_mtu(&rth->dst)) {
1670 dst_confirm(&rth->dst);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001671 if (mtu < ip_rt_min_pmtu) {
1672 mtu = ip_rt_min_pmtu;
Changli Gaod8d1f302010-06-10 23:31:35 -07001673 rth->dst.metrics[RTAX_LOCK-1] |=
Linus Torvalds1da177e2005-04-16 15:20:36 -07001674 (1 << RTAX_MTU);
1675 }
Changli Gaod8d1f302010-06-10 23:31:35 -07001676 rth->dst.metrics[RTAX_MTU-1] = mtu;
1677 dst_set_expires(&rth->dst,
Linus Torvalds1da177e2005-04-16 15:20:36 -07001678 ip_rt_mtu_expires);
1679 }
1680 est_mtu = mtu;
1681 }
1682 }
Timo Teras0010e462008-04-29 03:32:25 -07001683 rcu_read_unlock();
Linus Torvalds1da177e2005-04-16 15:20:36 -07001684 }
Linus Torvalds1da177e2005-04-16 15:20:36 -07001685 }
1686 return est_mtu ? : new_mtu;
1687}
1688
1689static void ip_rt_update_pmtu(struct dst_entry *dst, u32 mtu)
1690{
Rami Rosen6d273f82008-08-06 02:33:49 -07001691 if (dst_mtu(dst) > mtu && mtu >= 68 &&
Linus Torvalds1da177e2005-04-16 15:20:36 -07001692 !(dst_metric_locked(dst, RTAX_MTU))) {
1693 if (mtu < ip_rt_min_pmtu) {
1694 mtu = ip_rt_min_pmtu;
1695 dst->metrics[RTAX_LOCK-1] |= (1 << RTAX_MTU);
1696 }
1697 dst->metrics[RTAX_MTU-1] = mtu;
1698 dst_set_expires(dst, ip_rt_mtu_expires);
Tom Tucker8d717402006-07-30 20:43:36 -07001699 call_netevent_notifiers(NETEVENT_PMTU_UPDATE, dst);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001700 }
1701}
1702
1703static struct dst_entry *ipv4_dst_check(struct dst_entry *dst, u32 cookie)
1704{
Timo Teräsd11a4dc2010-03-18 23:20:20 +00001705 if (rt_is_expired((struct rtable *)dst))
1706 return NULL;
1707 return dst;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001708}
1709
1710static void ipv4_dst_destroy(struct dst_entry *dst)
1711{
1712 struct rtable *rt = (struct rtable *) dst;
1713 struct inet_peer *peer = rt->peer;
1714 struct in_device *idev = rt->idev;
1715
1716 if (peer) {
1717 rt->peer = NULL;
1718 inet_putpeer(peer);
1719 }
1720
1721 if (idev) {
1722 rt->idev = NULL;
1723 in_dev_put(idev);
1724 }
1725}
1726
1727static void ipv4_dst_ifdown(struct dst_entry *dst, struct net_device *dev,
1728 int how)
1729{
1730 struct rtable *rt = (struct rtable *) dst;
1731 struct in_device *idev = rt->idev;
YOSHIFUJI Hideakic346dca2008-03-25 21:47:49 +09001732 if (dev != dev_net(dev)->loopback_dev && idev && idev->dev == dev) {
Denis V. Lunev5a3e55d2007-12-07 00:38:10 -08001733 struct in_device *loopback_idev =
YOSHIFUJI Hideakic346dca2008-03-25 21:47:49 +09001734 in_dev_get(dev_net(dev)->loopback_dev);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001735 if (loopback_idev) {
1736 rt->idev = loopback_idev;
1737 in_dev_put(idev);
1738 }
1739 }
1740}
1741
1742static void ipv4_link_failure(struct sk_buff *skb)
1743{
1744 struct rtable *rt;
1745
1746 icmp_send(skb, ICMP_DEST_UNREACH, ICMP_HOST_UNREACH, 0);
1747
Eric Dumazet511c3f92009-06-02 05:14:27 +00001748 rt = skb_rtable(skb);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001749 if (rt)
Changli Gaod8d1f302010-06-10 23:31:35 -07001750 dst_set_expires(&rt->dst, 0);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001751}
1752
1753static int ip_rt_bug(struct sk_buff *skb)
1754{
Harvey Harrison673d57e2008-10-31 00:53:57 -07001755 printk(KERN_DEBUG "ip_rt_bug: %pI4 -> %pI4, %s\n",
1756 &ip_hdr(skb)->saddr, &ip_hdr(skb)->daddr,
Linus Torvalds1da177e2005-04-16 15:20:36 -07001757 skb->dev ? skb->dev->name : "?");
1758 kfree_skb(skb);
1759 return 0;
1760}
1761
1762/*
1763 We do not cache source address of outgoing interface,
1764 because it is used only by IP RR, TS and SRR options,
1765 so that it out of fast path.
1766
1767 BTW remember: "addr" is allowed to be not aligned
1768 in IP options!
1769 */
1770
1771void ip_rt_get_source(u8 *addr, struct rtable *rt)
1772{
Al Viroa61ced52006-09-26 21:27:54 -07001773 __be32 src;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001774 struct fib_result res;
1775
1776 if (rt->fl.iif == 0)
1777 src = rt->rt_src;
Eric Dumazetebc0ffa2010-10-05 10:41:36 +00001778 else {
1779 rcu_read_lock();
1780 if (fib_lookup(dev_net(rt->dst.dev), &rt->fl, &res) == 0)
1781 src = FIB_RES_PREFSRC(res);
1782 else
1783 src = inet_select_addr(rt->dst.dev, rt->rt_gateway,
Linus Torvalds1da177e2005-04-16 15:20:36 -07001784 RT_SCOPE_UNIVERSE);
Eric Dumazetebc0ffa2010-10-05 10:41:36 +00001785 rcu_read_unlock();
1786 }
Linus Torvalds1da177e2005-04-16 15:20:36 -07001787 memcpy(addr, &src, 4);
1788}
1789
1790#ifdef CONFIG_NET_CLS_ROUTE
1791static void set_class_tag(struct rtable *rt, u32 tag)
1792{
Changli Gaod8d1f302010-06-10 23:31:35 -07001793 if (!(rt->dst.tclassid & 0xFFFF))
1794 rt->dst.tclassid |= tag & 0xFFFF;
1795 if (!(rt->dst.tclassid & 0xFFFF0000))
1796 rt->dst.tclassid |= tag & 0xFFFF0000;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001797}
1798#endif
1799
1800static void rt_set_nexthop(struct rtable *rt, struct fib_result *res, u32 itag)
1801{
1802 struct fib_info *fi = res->fi;
1803
1804 if (fi) {
1805 if (FIB_RES_GW(*res) &&
1806 FIB_RES_NH(*res).nh_scope == RT_SCOPE_LINK)
1807 rt->rt_gateway = FIB_RES_GW(*res);
Changli Gaod8d1f302010-06-10 23:31:35 -07001808 memcpy(rt->dst.metrics, fi->fib_metrics,
1809 sizeof(rt->dst.metrics));
Linus Torvalds1da177e2005-04-16 15:20:36 -07001810 if (fi->fib_mtu == 0) {
Changli Gaod8d1f302010-06-10 23:31:35 -07001811 rt->dst.metrics[RTAX_MTU-1] = rt->dst.dev->mtu;
1812 if (dst_metric_locked(&rt->dst, RTAX_MTU) &&
Linus Torvalds1da177e2005-04-16 15:20:36 -07001813 rt->rt_gateway != rt->rt_dst &&
Changli Gaod8d1f302010-06-10 23:31:35 -07001814 rt->dst.dev->mtu > 576)
1815 rt->dst.metrics[RTAX_MTU-1] = 576;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001816 }
1817#ifdef CONFIG_NET_CLS_ROUTE
Changli Gaod8d1f302010-06-10 23:31:35 -07001818 rt->dst.tclassid = FIB_RES_NH(*res).nh_tclassid;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001819#endif
1820 } else
Changli Gaod8d1f302010-06-10 23:31:35 -07001821 rt->dst.metrics[RTAX_MTU-1]= rt->dst.dev->mtu;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001822
Changli Gaod8d1f302010-06-10 23:31:35 -07001823 if (dst_metric(&rt->dst, RTAX_HOPLIMIT) == 0)
1824 rt->dst.metrics[RTAX_HOPLIMIT-1] = sysctl_ip_default_ttl;
1825 if (dst_mtu(&rt->dst) > IP_MAX_MTU)
1826 rt->dst.metrics[RTAX_MTU-1] = IP_MAX_MTU;
1827 if (dst_metric(&rt->dst, RTAX_ADVMSS) == 0)
1828 rt->dst.metrics[RTAX_ADVMSS-1] = max_t(unsigned int, rt->dst.dev->mtu - 40,
Linus Torvalds1da177e2005-04-16 15:20:36 -07001829 ip_rt_min_advmss);
Changli Gaod8d1f302010-06-10 23:31:35 -07001830 if (dst_metric(&rt->dst, RTAX_ADVMSS) > 65535 - 40)
1831 rt->dst.metrics[RTAX_ADVMSS-1] = 65535 - 40;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001832
1833#ifdef CONFIG_NET_CLS_ROUTE
1834#ifdef CONFIG_IP_MULTIPLE_TABLES
1835 set_class_tag(rt, fib_rules_tclass(res));
1836#endif
1837 set_class_tag(rt, itag);
1838#endif
YOSHIFUJI Hideakie905a9e2007-02-09 23:24:47 +09001839 rt->rt_type = res->type;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001840}
1841
Eric Dumazet96d36222010-06-02 19:21:31 +00001842/* called in rcu_read_lock() section */
Al Viro9e12bb22006-09-26 21:25:20 -07001843static int ip_route_input_mc(struct sk_buff *skb, __be32 daddr, __be32 saddr,
Linus Torvalds1da177e2005-04-16 15:20:36 -07001844 u8 tos, struct net_device *dev, int our)
1845{
Eric Dumazet96d36222010-06-02 19:21:31 +00001846 unsigned int hash;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001847 struct rtable *rth;
Al Viroa61ced52006-09-26 21:27:54 -07001848 __be32 spec_dst;
Eric Dumazet96d36222010-06-02 19:21:31 +00001849 struct in_device *in_dev = __in_dev_get_rcu(dev);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001850 u32 itag = 0;
Eric Dumazetb5f7e752010-06-02 12:05:27 +00001851 int err;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001852
1853 /* Primary sanity checks. */
1854
1855 if (in_dev == NULL)
1856 return -EINVAL;
1857
Jan Engelhardt1e637c72008-01-21 03:18:08 -08001858 if (ipv4_is_multicast(saddr) || ipv4_is_lbcast(saddr) ||
Joe Perchesf97c1e02007-12-16 13:45:43 -08001859 ipv4_is_loopback(saddr) || skb->protocol != htons(ETH_P_IP))
Linus Torvalds1da177e2005-04-16 15:20:36 -07001860 goto e_inval;
1861
Joe Perchesf97c1e02007-12-16 13:45:43 -08001862 if (ipv4_is_zeronet(saddr)) {
1863 if (!ipv4_is_local_multicast(daddr))
Linus Torvalds1da177e2005-04-16 15:20:36 -07001864 goto e_inval;
1865 spec_dst = inet_select_addr(dev, 0, RT_SCOPE_LINK);
Eric Dumazetb5f7e752010-06-02 12:05:27 +00001866 } else {
1867 err = fib_validate_source(saddr, 0, tos, 0, dev, &spec_dst,
1868 &itag, 0);
1869 if (err < 0)
1870 goto e_err;
1871 }
Linus Torvalds1da177e2005-04-16 15:20:36 -07001872 rth = dst_alloc(&ipv4_dst_ops);
1873 if (!rth)
1874 goto e_nobufs;
1875
Changli Gaod8d1f302010-06-10 23:31:35 -07001876 rth->dst.output = ip_rt_bug;
1877 rth->dst.obsolete = -1;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001878
Changli Gaod8d1f302010-06-10 23:31:35 -07001879 atomic_set(&rth->dst.__refcnt, 1);
1880 rth->dst.flags= DST_HOST;
Herbert Xu42f811b2007-06-04 23:34:44 -07001881 if (IN_DEV_CONF_GET(in_dev, NOPOLICY))
Changli Gaod8d1f302010-06-10 23:31:35 -07001882 rth->dst.flags |= DST_NOPOLICY;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001883 rth->fl.fl4_dst = daddr;
1884 rth->rt_dst = daddr;
1885 rth->fl.fl4_tos = tos;
Thomas Graf47dcf0c2006-11-09 15:20:38 -08001886 rth->fl.mark = skb->mark;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001887 rth->fl.fl4_src = saddr;
1888 rth->rt_src = saddr;
1889#ifdef CONFIG_NET_CLS_ROUTE
Changli Gaod8d1f302010-06-10 23:31:35 -07001890 rth->dst.tclassid = itag;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001891#endif
1892 rth->rt_iif =
1893 rth->fl.iif = dev->ifindex;
Changli Gaod8d1f302010-06-10 23:31:35 -07001894 rth->dst.dev = init_net.loopback_dev;
1895 dev_hold(rth->dst.dev);
1896 rth->idev = in_dev_get(rth->dst.dev);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001897 rth->fl.oif = 0;
1898 rth->rt_gateway = daddr;
1899 rth->rt_spec_dst= spec_dst;
Denis V. Luneve84f84f2008-07-05 19:04:32 -07001900 rth->rt_genid = rt_genid(dev_net(dev));
Linus Torvalds1da177e2005-04-16 15:20:36 -07001901 rth->rt_flags = RTCF_MULTICAST;
Eric Dumazet29e75252008-01-31 17:05:09 -08001902 rth->rt_type = RTN_MULTICAST;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001903 if (our) {
Changli Gaod8d1f302010-06-10 23:31:35 -07001904 rth->dst.input= ip_local_deliver;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001905 rth->rt_flags |= RTCF_LOCAL;
1906 }
1907
1908#ifdef CONFIG_IP_MROUTE
Joe Perchesf97c1e02007-12-16 13:45:43 -08001909 if (!ipv4_is_local_multicast(daddr) && IN_DEV_MFORWARD(in_dev))
Changli Gaod8d1f302010-06-10 23:31:35 -07001910 rth->dst.input = ip_mr_input;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001911#endif
1912 RT_CACHE_STAT_INC(in_slow_mc);
1913
Denis V. Luneve84f84f2008-07-05 19:04:32 -07001914 hash = rt_hash(daddr, saddr, dev->ifindex, rt_genid(dev_net(dev)));
Pavel Emelyanov6a2bad72010-03-24 21:51:22 +00001915 return rt_intern_hash(hash, rth, NULL, skb, dev->ifindex);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001916
1917e_nobufs:
Linus Torvalds1da177e2005-04-16 15:20:36 -07001918 return -ENOBUFS;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001919e_inval:
Eric Dumazet96d36222010-06-02 19:21:31 +00001920 return -EINVAL;
Eric Dumazetb5f7e752010-06-02 12:05:27 +00001921e_err:
Eric Dumazetb5f7e752010-06-02 12:05:27 +00001922 return err;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001923}
1924
1925
1926static void ip_handle_martian_source(struct net_device *dev,
1927 struct in_device *in_dev,
1928 struct sk_buff *skb,
Al Viro9e12bb22006-09-26 21:25:20 -07001929 __be32 daddr,
1930 __be32 saddr)
Linus Torvalds1da177e2005-04-16 15:20:36 -07001931{
1932 RT_CACHE_STAT_INC(in_martian_src);
1933#ifdef CONFIG_IP_ROUTE_VERBOSE
1934 if (IN_DEV_LOG_MARTIANS(in_dev) && net_ratelimit()) {
1935 /*
1936 * RFC1812 recommendation, if source is martian,
1937 * the only hint is MAC header.
1938 */
Harvey Harrison673d57e2008-10-31 00:53:57 -07001939 printk(KERN_WARNING "martian source %pI4 from %pI4, on dev %s\n",
1940 &daddr, &saddr, dev->name);
Arnaldo Carvalho de Melo98e399f2007-03-19 15:33:04 -07001941 if (dev->hard_header_len && skb_mac_header_was_set(skb)) {
Linus Torvalds1da177e2005-04-16 15:20:36 -07001942 int i;
Arnaldo Carvalho de Melo98e399f2007-03-19 15:33:04 -07001943 const unsigned char *p = skb_mac_header(skb);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001944 printk(KERN_WARNING "ll header: ");
1945 for (i = 0; i < dev->hard_header_len; i++, p++) {
1946 printk("%02x", *p);
1947 if (i < (dev->hard_header_len - 1))
1948 printk(":");
1949 }
1950 printk("\n");
1951 }
1952 }
1953#endif
1954}
1955
Eric Dumazet47360222010-06-03 04:13:21 +00001956/* called in rcu_read_lock() section */
Stephen Hemminger5969f712008-04-10 01:52:09 -07001957static int __mkroute_input(struct sk_buff *skb,
1958 struct fib_result *res,
1959 struct in_device *in_dev,
1960 __be32 daddr, __be32 saddr, u32 tos,
1961 struct rtable **result)
Linus Torvalds1da177e2005-04-16 15:20:36 -07001962{
Linus Torvalds1da177e2005-04-16 15:20:36 -07001963 struct rtable *rth;
1964 int err;
1965 struct in_device *out_dev;
Eric Dumazet47360222010-06-03 04:13:21 +00001966 unsigned int flags = 0;
Al Virod9c9df82006-09-26 21:28:14 -07001967 __be32 spec_dst;
1968 u32 itag;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001969
1970 /* get a working reference to the output device */
Eric Dumazet47360222010-06-03 04:13:21 +00001971 out_dev = __in_dev_get_rcu(FIB_RES_DEV(*res));
Linus Torvalds1da177e2005-04-16 15:20:36 -07001972 if (out_dev == NULL) {
1973 if (net_ratelimit())
1974 printk(KERN_CRIT "Bug in ip_route_input" \
1975 "_slow(). Please, report\n");
1976 return -EINVAL;
1977 }
1978
1979
YOSHIFUJI Hideakie905a9e2007-02-09 23:24:47 +09001980 err = fib_validate_source(saddr, daddr, tos, FIB_RES_OIF(*res),
jamalb0c110c2009-10-18 02:12:33 +00001981 in_dev->dev, &spec_dst, &itag, skb->mark);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001982 if (err < 0) {
YOSHIFUJI Hideakie905a9e2007-02-09 23:24:47 +09001983 ip_handle_martian_source(in_dev->dev, in_dev, skb, daddr,
Linus Torvalds1da177e2005-04-16 15:20:36 -07001984 saddr);
YOSHIFUJI Hideakie905a9e2007-02-09 23:24:47 +09001985
Linus Torvalds1da177e2005-04-16 15:20:36 -07001986 goto cleanup;
1987 }
1988
1989 if (err)
1990 flags |= RTCF_DIRECTSRC;
1991
Thomas Graf51b77ca2008-06-03 16:36:01 -07001992 if (out_dev == in_dev && err &&
Linus Torvalds1da177e2005-04-16 15:20:36 -07001993 (IN_DEV_SHARED_MEDIA(out_dev) ||
1994 inet_addr_onlink(out_dev, saddr, FIB_RES_GW(*res))))
1995 flags |= RTCF_DOREDIRECT;
1996
1997 if (skb->protocol != htons(ETH_P_IP)) {
1998 /* Not IP (i.e. ARP). Do not create route, if it is
1999 * invalid for proxy arp. DNAT routes are always valid.
Jesper Dangaard Brouer65324142010-01-05 05:50:47 +00002000 *
2001 * Proxy arp feature have been extended to allow, ARP
2002 * replies back to the same interface, to support
2003 * Private VLAN switch technologies. See arp.c.
Linus Torvalds1da177e2005-04-16 15:20:36 -07002004 */
Jesper Dangaard Brouer65324142010-01-05 05:50:47 +00002005 if (out_dev == in_dev &&
2006 IN_DEV_PROXY_ARP_PVLAN(in_dev) == 0) {
Linus Torvalds1da177e2005-04-16 15:20:36 -07002007 err = -EINVAL;
2008 goto cleanup;
2009 }
2010 }
2011
2012
2013 rth = dst_alloc(&ipv4_dst_ops);
2014 if (!rth) {
2015 err = -ENOBUFS;
2016 goto cleanup;
2017 }
2018
Changli Gaod8d1f302010-06-10 23:31:35 -07002019 atomic_set(&rth->dst.__refcnt, 1);
2020 rth->dst.flags= DST_HOST;
Herbert Xu42f811b2007-06-04 23:34:44 -07002021 if (IN_DEV_CONF_GET(in_dev, NOPOLICY))
Changli Gaod8d1f302010-06-10 23:31:35 -07002022 rth->dst.flags |= DST_NOPOLICY;
Herbert Xu42f811b2007-06-04 23:34:44 -07002023 if (IN_DEV_CONF_GET(out_dev, NOXFRM))
Changli Gaod8d1f302010-06-10 23:31:35 -07002024 rth->dst.flags |= DST_NOXFRM;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002025 rth->fl.fl4_dst = daddr;
2026 rth->rt_dst = daddr;
2027 rth->fl.fl4_tos = tos;
Thomas Graf47dcf0c2006-11-09 15:20:38 -08002028 rth->fl.mark = skb->mark;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002029 rth->fl.fl4_src = saddr;
2030 rth->rt_src = saddr;
2031 rth->rt_gateway = daddr;
2032 rth->rt_iif =
2033 rth->fl.iif = in_dev->dev->ifindex;
Changli Gaod8d1f302010-06-10 23:31:35 -07002034 rth->dst.dev = (out_dev)->dev;
2035 dev_hold(rth->dst.dev);
2036 rth->idev = in_dev_get(rth->dst.dev);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002037 rth->fl.oif = 0;
2038 rth->rt_spec_dst= spec_dst;
2039
Changli Gaod8d1f302010-06-10 23:31:35 -07002040 rth->dst.obsolete = -1;
2041 rth->dst.input = ip_forward;
2042 rth->dst.output = ip_output;
2043 rth->rt_genid = rt_genid(dev_net(rth->dst.dev));
Linus Torvalds1da177e2005-04-16 15:20:36 -07002044
2045 rt_set_nexthop(rth, res, itag);
2046
2047 rth->rt_flags = flags;
2048
2049 *result = rth;
2050 err = 0;
2051 cleanup:
Linus Torvalds1da177e2005-04-16 15:20:36 -07002052 return err;
YOSHIFUJI Hideakie905a9e2007-02-09 23:24:47 +09002053}
Linus Torvalds1da177e2005-04-16 15:20:36 -07002054
Stephen Hemminger5969f712008-04-10 01:52:09 -07002055static int ip_mkroute_input(struct sk_buff *skb,
2056 struct fib_result *res,
2057 const struct flowi *fl,
2058 struct in_device *in_dev,
2059 __be32 daddr, __be32 saddr, u32 tos)
Linus Torvalds1da177e2005-04-16 15:20:36 -07002060{
Chuck Short7abaa272005-06-22 22:10:23 -07002061 struct rtable* rth = NULL;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002062 int err;
2063 unsigned hash;
2064
2065#ifdef CONFIG_IP_ROUTE_MULTIPATH
2066 if (res->fi && res->fi->fib_nhs > 1 && fl->oif == 0)
2067 fib_select_multipath(fl, res);
2068#endif
2069
2070 /* create a routing cache entry */
2071 err = __mkroute_input(skb, res, in_dev, daddr, saddr, tos, &rth);
2072 if (err)
2073 return err;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002074
2075 /* put it into the cache */
Denis V. Luneve84f84f2008-07-05 19:04:32 -07002076 hash = rt_hash(daddr, saddr, fl->iif,
Changli Gaod8d1f302010-06-10 23:31:35 -07002077 rt_genid(dev_net(rth->dst.dev)));
Pavel Emelyanov6a2bad72010-03-24 21:51:22 +00002078 return rt_intern_hash(hash, rth, NULL, skb, fl->iif);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002079}
2080
Linus Torvalds1da177e2005-04-16 15:20:36 -07002081/*
2082 * NOTE. We drop all the packets that has local source
2083 * addresses, because every properly looped back packet
2084 * must have correct destination already attached by output routine.
2085 *
2086 * Such approach solves two big problems:
2087 * 1. Not simplex devices are handled properly.
2088 * 2. IP spoofing attempts are filtered with 100% of guarantee.
Eric Dumazetebc0ffa2010-10-05 10:41:36 +00002089 * called with rcu_read_lock()
Linus Torvalds1da177e2005-04-16 15:20:36 -07002090 */
2091
Al Viro9e12bb22006-09-26 21:25:20 -07002092static int ip_route_input_slow(struct sk_buff *skb, __be32 daddr, __be32 saddr,
Linus Torvalds1da177e2005-04-16 15:20:36 -07002093 u8 tos, struct net_device *dev)
2094{
2095 struct fib_result res;
Eric Dumazet96d36222010-06-02 19:21:31 +00002096 struct in_device *in_dev = __in_dev_get_rcu(dev);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002097 struct flowi fl = { .nl_u = { .ip4_u =
2098 { .daddr = daddr,
2099 .saddr = saddr,
2100 .tos = tos,
2101 .scope = RT_SCOPE_UNIVERSE,
Linus Torvalds1da177e2005-04-16 15:20:36 -07002102 } },
Thomas Graf47dcf0c2006-11-09 15:20:38 -08002103 .mark = skb->mark,
Linus Torvalds1da177e2005-04-16 15:20:36 -07002104 .iif = dev->ifindex };
2105 unsigned flags = 0;
2106 u32 itag = 0;
2107 struct rtable * rth;
2108 unsigned hash;
Al Viro9e12bb22006-09-26 21:25:20 -07002109 __be32 spec_dst;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002110 int err = -EINVAL;
YOSHIFUJI Hideakic346dca2008-03-25 21:47:49 +09002111 struct net * net = dev_net(dev);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002112
2113 /* IP on this device is disabled. */
2114
2115 if (!in_dev)
2116 goto out;
2117
2118 /* Check for the most weird martians, which can be not detected
2119 by fib_lookup.
2120 */
2121
Jan Engelhardt1e637c72008-01-21 03:18:08 -08002122 if (ipv4_is_multicast(saddr) || ipv4_is_lbcast(saddr) ||
Joe Perchesf97c1e02007-12-16 13:45:43 -08002123 ipv4_is_loopback(saddr))
Linus Torvalds1da177e2005-04-16 15:20:36 -07002124 goto martian_source;
2125
Andy Walls27a954b2010-10-17 15:11:22 +00002126 if (ipv4_is_lbcast(daddr) || (saddr == 0 && daddr == 0))
Linus Torvalds1da177e2005-04-16 15:20:36 -07002127 goto brd_input;
2128
2129 /* Accept zero addresses only to limited broadcast;
2130 * I even do not know to fix it or not. Waiting for complains :-)
2131 */
Joe Perchesf97c1e02007-12-16 13:45:43 -08002132 if (ipv4_is_zeronet(saddr))
Linus Torvalds1da177e2005-04-16 15:20:36 -07002133 goto martian_source;
2134
Andy Walls27a954b2010-10-17 15:11:22 +00002135 if (ipv4_is_zeronet(daddr) || ipv4_is_loopback(daddr))
Linus Torvalds1da177e2005-04-16 15:20:36 -07002136 goto martian_destination;
2137
2138 /*
2139 * Now we are ready to route packet.
2140 */
Eric Dumazetebc0ffa2010-10-05 10:41:36 +00002141 err = fib_lookup(net, &fl, &res);
2142 if (err != 0) {
Linus Torvalds1da177e2005-04-16 15:20:36 -07002143 if (!IN_DEV_FORWARD(in_dev))
Dietmar Eggemann2c2910a2005-06-28 13:06:23 -07002144 goto e_hostunreach;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002145 goto no_route;
2146 }
Linus Torvalds1da177e2005-04-16 15:20:36 -07002147
2148 RT_CACHE_STAT_INC(in_slow_tot);
2149
2150 if (res.type == RTN_BROADCAST)
2151 goto brd_input;
2152
2153 if (res.type == RTN_LOCAL) {
Eric Dumazetb5f7e752010-06-02 12:05:27 +00002154 err = fib_validate_source(saddr, daddr, tos,
Eric Dumazetebc0ffa2010-10-05 10:41:36 +00002155 net->loopback_dev->ifindex,
2156 dev, &spec_dst, &itag, skb->mark);
Eric Dumazetb5f7e752010-06-02 12:05:27 +00002157 if (err < 0)
2158 goto martian_source_keep_err;
2159 if (err)
Linus Torvalds1da177e2005-04-16 15:20:36 -07002160 flags |= RTCF_DIRECTSRC;
2161 spec_dst = daddr;
2162 goto local_input;
2163 }
2164
2165 if (!IN_DEV_FORWARD(in_dev))
Dietmar Eggemann2c2910a2005-06-28 13:06:23 -07002166 goto e_hostunreach;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002167 if (res.type != RTN_UNICAST)
2168 goto martian_destination;
2169
2170 err = ip_mkroute_input(skb, &res, &fl, in_dev, daddr, saddr, tos);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002171out: return err;
2172
2173brd_input:
2174 if (skb->protocol != htons(ETH_P_IP))
2175 goto e_inval;
2176
Joe Perchesf97c1e02007-12-16 13:45:43 -08002177 if (ipv4_is_zeronet(saddr))
Linus Torvalds1da177e2005-04-16 15:20:36 -07002178 spec_dst = inet_select_addr(dev, 0, RT_SCOPE_LINK);
2179 else {
2180 err = fib_validate_source(saddr, 0, tos, 0, dev, &spec_dst,
jamalb0c110c2009-10-18 02:12:33 +00002181 &itag, skb->mark);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002182 if (err < 0)
Eric Dumazetb5f7e752010-06-02 12:05:27 +00002183 goto martian_source_keep_err;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002184 if (err)
2185 flags |= RTCF_DIRECTSRC;
2186 }
2187 flags |= RTCF_BROADCAST;
2188 res.type = RTN_BROADCAST;
2189 RT_CACHE_STAT_INC(in_brd);
2190
2191local_input:
2192 rth = dst_alloc(&ipv4_dst_ops);
2193 if (!rth)
2194 goto e_nobufs;
2195
Changli Gaod8d1f302010-06-10 23:31:35 -07002196 rth->dst.output= ip_rt_bug;
2197 rth->dst.obsolete = -1;
Denis V. Luneve84f84f2008-07-05 19:04:32 -07002198 rth->rt_genid = rt_genid(net);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002199
Changli Gaod8d1f302010-06-10 23:31:35 -07002200 atomic_set(&rth->dst.__refcnt, 1);
2201 rth->dst.flags= DST_HOST;
Herbert Xu42f811b2007-06-04 23:34:44 -07002202 if (IN_DEV_CONF_GET(in_dev, NOPOLICY))
Changli Gaod8d1f302010-06-10 23:31:35 -07002203 rth->dst.flags |= DST_NOPOLICY;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002204 rth->fl.fl4_dst = daddr;
2205 rth->rt_dst = daddr;
2206 rth->fl.fl4_tos = tos;
Thomas Graf47dcf0c2006-11-09 15:20:38 -08002207 rth->fl.mark = skb->mark;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002208 rth->fl.fl4_src = saddr;
2209 rth->rt_src = saddr;
2210#ifdef CONFIG_NET_CLS_ROUTE
Changli Gaod8d1f302010-06-10 23:31:35 -07002211 rth->dst.tclassid = itag;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002212#endif
2213 rth->rt_iif =
2214 rth->fl.iif = dev->ifindex;
Changli Gaod8d1f302010-06-10 23:31:35 -07002215 rth->dst.dev = net->loopback_dev;
2216 dev_hold(rth->dst.dev);
2217 rth->idev = in_dev_get(rth->dst.dev);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002218 rth->rt_gateway = daddr;
2219 rth->rt_spec_dst= spec_dst;
Changli Gaod8d1f302010-06-10 23:31:35 -07002220 rth->dst.input= ip_local_deliver;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002221 rth->rt_flags = flags|RTCF_LOCAL;
2222 if (res.type == RTN_UNREACHABLE) {
Changli Gaod8d1f302010-06-10 23:31:35 -07002223 rth->dst.input= ip_error;
2224 rth->dst.error= -err;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002225 rth->rt_flags &= ~RTCF_LOCAL;
2226 }
2227 rth->rt_type = res.type;
Denis V. Luneve84f84f2008-07-05 19:04:32 -07002228 hash = rt_hash(daddr, saddr, fl.iif, rt_genid(net));
Pavel Emelyanov6a2bad72010-03-24 21:51:22 +00002229 err = rt_intern_hash(hash, rth, NULL, skb, fl.iif);
Eric Dumazetebc0ffa2010-10-05 10:41:36 +00002230 goto out;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002231
2232no_route:
2233 RT_CACHE_STAT_INC(in_no_route);
2234 spec_dst = inet_select_addr(dev, 0, RT_SCOPE_UNIVERSE);
2235 res.type = RTN_UNREACHABLE;
Mitsuru Chinen7f538782007-12-07 01:07:24 -08002236 if (err == -ESRCH)
2237 err = -ENETUNREACH;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002238 goto local_input;
2239
2240 /*
2241 * Do not cache martian addresses: they should be logged (RFC1812)
2242 */
2243martian_destination:
2244 RT_CACHE_STAT_INC(in_martian_dst);
2245#ifdef CONFIG_IP_ROUTE_VERBOSE
2246 if (IN_DEV_LOG_MARTIANS(in_dev) && net_ratelimit())
Harvey Harrison673d57e2008-10-31 00:53:57 -07002247 printk(KERN_WARNING "martian destination %pI4 from %pI4, dev %s\n",
2248 &daddr, &saddr, dev->name);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002249#endif
Dietmar Eggemann2c2910a2005-06-28 13:06:23 -07002250
2251e_hostunreach:
YOSHIFUJI Hideakie905a9e2007-02-09 23:24:47 +09002252 err = -EHOSTUNREACH;
Eric Dumazetebc0ffa2010-10-05 10:41:36 +00002253 goto out;
Dietmar Eggemann2c2910a2005-06-28 13:06:23 -07002254
Linus Torvalds1da177e2005-04-16 15:20:36 -07002255e_inval:
2256 err = -EINVAL;
Eric Dumazetebc0ffa2010-10-05 10:41:36 +00002257 goto out;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002258
2259e_nobufs:
2260 err = -ENOBUFS;
Eric Dumazetebc0ffa2010-10-05 10:41:36 +00002261 goto out;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002262
2263martian_source:
Eric Dumazetb5f7e752010-06-02 12:05:27 +00002264 err = -EINVAL;
2265martian_source_keep_err:
Linus Torvalds1da177e2005-04-16 15:20:36 -07002266 ip_handle_martian_source(dev, in_dev, skb, daddr, saddr);
Eric Dumazetebc0ffa2010-10-05 10:41:36 +00002267 goto out;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002268}
2269
Eric Dumazet407eadd2010-05-10 11:32:55 +00002270int ip_route_input_common(struct sk_buff *skb, __be32 daddr, __be32 saddr,
2271 u8 tos, struct net_device *dev, bool noref)
Linus Torvalds1da177e2005-04-16 15:20:36 -07002272{
2273 struct rtable * rth;
2274 unsigned hash;
2275 int iif = dev->ifindex;
Denis V. Lunevb5921912008-01-22 23:50:25 -08002276 struct net *net;
Eric Dumazet96d36222010-06-02 19:21:31 +00002277 int res;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002278
YOSHIFUJI Hideakic346dca2008-03-25 21:47:49 +09002279 net = dev_net(dev);
Neil Horman1080d702008-10-27 12:28:25 -07002280
Eric Dumazet96d36222010-06-02 19:21:31 +00002281 rcu_read_lock();
2282
Neil Horman1080d702008-10-27 12:28:25 -07002283 if (!rt_caching(net))
2284 goto skip_cache;
2285
Linus Torvalds1da177e2005-04-16 15:20:36 -07002286 tos &= IPTOS_RT_MASK;
Denis V. Luneve84f84f2008-07-05 19:04:32 -07002287 hash = rt_hash(daddr, saddr, iif, rt_genid(net));
Linus Torvalds1da177e2005-04-16 15:20:36 -07002288
Linus Torvalds1da177e2005-04-16 15:20:36 -07002289 for (rth = rcu_dereference(rt_hash_table[hash].chain); rth;
Changli Gaod8d1f302010-06-10 23:31:35 -07002290 rth = rcu_dereference(rth->dst.rt_next)) {
Eric Dumazet0eae88f2010-04-20 19:06:52 -07002291 if ((((__force u32)rth->fl.fl4_dst ^ (__force u32)daddr) |
2292 ((__force u32)rth->fl.fl4_src ^ (__force u32)saddr) |
Stephen Hemmingerc0b8c322008-04-10 04:00:28 -07002293 (rth->fl.iif ^ iif) |
2294 rth->fl.oif |
2295 (rth->fl.fl4_tos ^ tos)) == 0 &&
Thomas Graf47dcf0c2006-11-09 15:20:38 -08002296 rth->fl.mark == skb->mark &&
Changli Gaod8d1f302010-06-10 23:31:35 -07002297 net_eq(dev_net(rth->dst.dev), net) &&
Denis V. Luneve84f84f2008-07-05 19:04:32 -07002298 !rt_is_expired(rth)) {
Eric Dumazet407eadd2010-05-10 11:32:55 +00002299 if (noref) {
Changli Gaod8d1f302010-06-10 23:31:35 -07002300 dst_use_noref(&rth->dst, jiffies);
2301 skb_dst_set_noref(skb, &rth->dst);
Eric Dumazet407eadd2010-05-10 11:32:55 +00002302 } else {
Changli Gaod8d1f302010-06-10 23:31:35 -07002303 dst_use(&rth->dst, jiffies);
2304 skb_dst_set(skb, &rth->dst);
Eric Dumazet407eadd2010-05-10 11:32:55 +00002305 }
Linus Torvalds1da177e2005-04-16 15:20:36 -07002306 RT_CACHE_STAT_INC(in_hit);
2307 rcu_read_unlock();
Linus Torvalds1da177e2005-04-16 15:20:36 -07002308 return 0;
2309 }
2310 RT_CACHE_STAT_INC(in_hlist_search);
2311 }
Linus Torvalds1da177e2005-04-16 15:20:36 -07002312
Neil Horman1080d702008-10-27 12:28:25 -07002313skip_cache:
Linus Torvalds1da177e2005-04-16 15:20:36 -07002314 /* Multicast recognition logic is moved from route cache to here.
2315 The problem was that too many Ethernet cards have broken/missing
2316 hardware multicast filters :-( As result the host on multicasting
2317 network acquires a lot of useless route cache entries, sort of
2318 SDR messages from all the world. Now we try to get rid of them.
2319 Really, provided software IP multicast filter is organized
2320 reasonably (at least, hashed), it does not result in a slowdown
2321 comparing with route cache reject entries.
2322 Note, that multicast routers are not affected, because
2323 route cache entry is created eventually.
2324 */
Joe Perchesf97c1e02007-12-16 13:45:43 -08002325 if (ipv4_is_multicast(daddr)) {
Eric Dumazet96d36222010-06-02 19:21:31 +00002326 struct in_device *in_dev = __in_dev_get_rcu(dev);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002327
Eric Dumazet96d36222010-06-02 19:21:31 +00002328 if (in_dev) {
Linus Torvalds1da177e2005-04-16 15:20:36 -07002329 int our = ip_check_mc(in_dev, daddr, saddr,
Eric Dumazet96d36222010-06-02 19:21:31 +00002330 ip_hdr(skb)->protocol);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002331 if (our
2332#ifdef CONFIG_IP_MROUTE
Joe Perches9d4fb272009-11-23 10:41:23 -08002333 ||
2334 (!ipv4_is_local_multicast(daddr) &&
2335 IN_DEV_MFORWARD(in_dev))
Linus Torvalds1da177e2005-04-16 15:20:36 -07002336#endif
Joe Perches9d4fb272009-11-23 10:41:23 -08002337 ) {
Eric Dumazet96d36222010-06-02 19:21:31 +00002338 int res = ip_route_input_mc(skb, daddr, saddr,
2339 tos, dev, our);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002340 rcu_read_unlock();
Eric Dumazet96d36222010-06-02 19:21:31 +00002341 return res;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002342 }
2343 }
2344 rcu_read_unlock();
2345 return -EINVAL;
2346 }
Eric Dumazet96d36222010-06-02 19:21:31 +00002347 res = ip_route_input_slow(skb, daddr, saddr, tos, dev);
2348 rcu_read_unlock();
2349 return res;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002350}
Eric Dumazet407eadd2010-05-10 11:32:55 +00002351EXPORT_SYMBOL(ip_route_input_common);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002352
Eric Dumazetebc0ffa2010-10-05 10:41:36 +00002353/* called with rcu_read_lock() */
Stephen Hemminger5969f712008-04-10 01:52:09 -07002354static int __mkroute_output(struct rtable **result,
2355 struct fib_result *res,
2356 const struct flowi *fl,
2357 const struct flowi *oldflp,
2358 struct net_device *dev_out,
2359 unsigned flags)
Linus Torvalds1da177e2005-04-16 15:20:36 -07002360{
2361 struct rtable *rth;
2362 struct in_device *in_dev;
2363 u32 tos = RT_FL_TOS(oldflp);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002364
Eric Dumazetdd28d1a2010-09-29 11:53:50 +00002365 if (ipv4_is_loopback(fl->fl4_src) && !(dev_out->flags & IFF_LOOPBACK))
Linus Torvalds1da177e2005-04-16 15:20:36 -07002366 return -EINVAL;
2367
Andy Walls27a954b2010-10-17 15:11:22 +00002368 if (ipv4_is_lbcast(fl->fl4_dst))
Linus Torvalds1da177e2005-04-16 15:20:36 -07002369 res->type = RTN_BROADCAST;
Joe Perchesf97c1e02007-12-16 13:45:43 -08002370 else if (ipv4_is_multicast(fl->fl4_dst))
Linus Torvalds1da177e2005-04-16 15:20:36 -07002371 res->type = RTN_MULTICAST;
Andy Walls27a954b2010-10-17 15:11:22 +00002372 else if (ipv4_is_zeronet(fl->fl4_dst))
Linus Torvalds1da177e2005-04-16 15:20:36 -07002373 return -EINVAL;
2374
2375 if (dev_out->flags & IFF_LOOPBACK)
2376 flags |= RTCF_LOCAL;
2377
Eric Dumazetdd28d1a2010-09-29 11:53:50 +00002378 in_dev = __in_dev_get_rcu(dev_out);
Eric Dumazetebc0ffa2010-10-05 10:41:36 +00002379 if (!in_dev)
Linus Torvalds1da177e2005-04-16 15:20:36 -07002380 return -EINVAL;
Eric Dumazetebc0ffa2010-10-05 10:41:36 +00002381
Linus Torvalds1da177e2005-04-16 15:20:36 -07002382 if (res->type == RTN_BROADCAST) {
2383 flags |= RTCF_BROADCAST | RTCF_LOCAL;
Eric Dumazetebc0ffa2010-10-05 10:41:36 +00002384 res->fi = NULL;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002385 } else if (res->type == RTN_MULTICAST) {
Eric Dumazetdd28d1a2010-09-29 11:53:50 +00002386 flags |= RTCF_MULTICAST | RTCF_LOCAL;
YOSHIFUJI Hideakie905a9e2007-02-09 23:24:47 +09002387 if (!ip_check_mc(in_dev, oldflp->fl4_dst, oldflp->fl4_src,
Linus Torvalds1da177e2005-04-16 15:20:36 -07002388 oldflp->proto))
2389 flags &= ~RTCF_LOCAL;
2390 /* If multicast route do not exist use
Eric Dumazetdd28d1a2010-09-29 11:53:50 +00002391 * default one, but do not gateway in this case.
2392 * Yes, it is hack.
Linus Torvalds1da177e2005-04-16 15:20:36 -07002393 */
Eric Dumazetebc0ffa2010-10-05 10:41:36 +00002394 if (res->fi && res->prefixlen < 4)
Linus Torvalds1da177e2005-04-16 15:20:36 -07002395 res->fi = NULL;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002396 }
2397
2398
2399 rth = dst_alloc(&ipv4_dst_ops);
Dimitris Michailidis8391d072010-10-07 14:48:38 +00002400 if (!rth)
Eric Dumazetdd28d1a2010-09-29 11:53:50 +00002401 return -ENOBUFS;
Dimitris Michailidis8391d072010-10-07 14:48:38 +00002402
Eric Dumazetdd28d1a2010-09-29 11:53:50 +00002403 in_dev_hold(in_dev);
Eric Dumazetdd28d1a2010-09-29 11:53:50 +00002404 rth->idev = in_dev;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002405
Changli Gaod8d1f302010-06-10 23:31:35 -07002406 atomic_set(&rth->dst.__refcnt, 1);
2407 rth->dst.flags= DST_HOST;
Herbert Xu42f811b2007-06-04 23:34:44 -07002408 if (IN_DEV_CONF_GET(in_dev, NOXFRM))
Changli Gaod8d1f302010-06-10 23:31:35 -07002409 rth->dst.flags |= DST_NOXFRM;
Herbert Xu42f811b2007-06-04 23:34:44 -07002410 if (IN_DEV_CONF_GET(in_dev, NOPOLICY))
Changli Gaod8d1f302010-06-10 23:31:35 -07002411 rth->dst.flags |= DST_NOPOLICY;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002412
2413 rth->fl.fl4_dst = oldflp->fl4_dst;
2414 rth->fl.fl4_tos = tos;
2415 rth->fl.fl4_src = oldflp->fl4_src;
2416 rth->fl.oif = oldflp->oif;
Thomas Graf47dcf0c2006-11-09 15:20:38 -08002417 rth->fl.mark = oldflp->mark;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002418 rth->rt_dst = fl->fl4_dst;
2419 rth->rt_src = fl->fl4_src;
2420 rth->rt_iif = oldflp->oif ? : dev_out->ifindex;
YOSHIFUJI Hideakie905a9e2007-02-09 23:24:47 +09002421 /* get references to the devices that are to be hold by the routing
Linus Torvalds1da177e2005-04-16 15:20:36 -07002422 cache entry */
Changli Gaod8d1f302010-06-10 23:31:35 -07002423 rth->dst.dev = dev_out;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002424 dev_hold(dev_out);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002425 rth->rt_gateway = fl->fl4_dst;
2426 rth->rt_spec_dst= fl->fl4_src;
2427
Changli Gaod8d1f302010-06-10 23:31:35 -07002428 rth->dst.output=ip_output;
2429 rth->dst.obsolete = -1;
Denis V. Luneve84f84f2008-07-05 19:04:32 -07002430 rth->rt_genid = rt_genid(dev_net(dev_out));
Linus Torvalds1da177e2005-04-16 15:20:36 -07002431
2432 RT_CACHE_STAT_INC(out_slow_tot);
2433
2434 if (flags & RTCF_LOCAL) {
Changli Gaod8d1f302010-06-10 23:31:35 -07002435 rth->dst.input = ip_local_deliver;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002436 rth->rt_spec_dst = fl->fl4_dst;
2437 }
2438 if (flags & (RTCF_BROADCAST | RTCF_MULTICAST)) {
2439 rth->rt_spec_dst = fl->fl4_src;
YOSHIFUJI Hideakie905a9e2007-02-09 23:24:47 +09002440 if (flags & RTCF_LOCAL &&
Linus Torvalds1da177e2005-04-16 15:20:36 -07002441 !(dev_out->flags & IFF_LOOPBACK)) {
Changli Gaod8d1f302010-06-10 23:31:35 -07002442 rth->dst.output = ip_mc_output;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002443 RT_CACHE_STAT_INC(out_slow_mc);
2444 }
2445#ifdef CONFIG_IP_MROUTE
2446 if (res->type == RTN_MULTICAST) {
2447 if (IN_DEV_MFORWARD(in_dev) &&
Joe Perchesf97c1e02007-12-16 13:45:43 -08002448 !ipv4_is_local_multicast(oldflp->fl4_dst)) {
Changli Gaod8d1f302010-06-10 23:31:35 -07002449 rth->dst.input = ip_mr_input;
2450 rth->dst.output = ip_mc_output;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002451 }
2452 }
2453#endif
2454 }
2455
2456 rt_set_nexthop(rth, res, 0);
2457
2458 rth->rt_flags = flags;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002459 *result = rth;
Eric Dumazetdd28d1a2010-09-29 11:53:50 +00002460 return 0;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002461}
2462
Eric Dumazetebc0ffa2010-10-05 10:41:36 +00002463/* called with rcu_read_lock() */
Stephen Hemminger5969f712008-04-10 01:52:09 -07002464static int ip_mkroute_output(struct rtable **rp,
2465 struct fib_result *res,
2466 const struct flowi *fl,
2467 const struct flowi *oldflp,
2468 struct net_device *dev_out,
2469 unsigned flags)
Linus Torvalds1da177e2005-04-16 15:20:36 -07002470{
Chuck Short7abaa272005-06-22 22:10:23 -07002471 struct rtable *rth = NULL;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002472 int err = __mkroute_output(&rth, res, fl, oldflp, dev_out, flags);
2473 unsigned hash;
2474 if (err == 0) {
Denis V. Lunevb00180d2008-07-05 19:04:09 -07002475 hash = rt_hash(oldflp->fl4_dst, oldflp->fl4_src, oldflp->oif,
Denis V. Luneve84f84f2008-07-05 19:04:32 -07002476 rt_genid(dev_net(dev_out)));
Pavel Emelyanov6a2bad72010-03-24 21:51:22 +00002477 err = rt_intern_hash(hash, rth, rp, NULL, oldflp->oif);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002478 }
YOSHIFUJI Hideakie905a9e2007-02-09 23:24:47 +09002479
Linus Torvalds1da177e2005-04-16 15:20:36 -07002480 return err;
2481}
2482
Linus Torvalds1da177e2005-04-16 15:20:36 -07002483/*
2484 * Major route resolver routine.
Eric Dumazet0197aa32010-09-30 03:33:58 +00002485 * called with rcu_read_lock();
Linus Torvalds1da177e2005-04-16 15:20:36 -07002486 */
2487
Denis V. Lunevb40afd02008-01-22 22:06:19 -08002488static int ip_route_output_slow(struct net *net, struct rtable **rp,
2489 const struct flowi *oldflp)
Linus Torvalds1da177e2005-04-16 15:20:36 -07002490{
2491 u32 tos = RT_FL_TOS(oldflp);
2492 struct flowi fl = { .nl_u = { .ip4_u =
2493 { .daddr = oldflp->fl4_dst,
2494 .saddr = oldflp->fl4_src,
2495 .tos = tos & IPTOS_RT_MASK,
2496 .scope = ((tos & RTO_ONLINK) ?
2497 RT_SCOPE_LINK :
2498 RT_SCOPE_UNIVERSE),
Linus Torvalds1da177e2005-04-16 15:20:36 -07002499 } },
Thomas Graf47dcf0c2006-11-09 15:20:38 -08002500 .mark = oldflp->mark,
Denis V. Lunevb40afd02008-01-22 22:06:19 -08002501 .iif = net->loopback_dev->ifindex,
Linus Torvalds1da177e2005-04-16 15:20:36 -07002502 .oif = oldflp->oif };
2503 struct fib_result res;
Eric Dumazet0197aa32010-09-30 03:33:58 +00002504 unsigned int flags = 0;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002505 struct net_device *dev_out = NULL;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002506 int err;
2507
2508
2509 res.fi = NULL;
2510#ifdef CONFIG_IP_MULTIPLE_TABLES
2511 res.r = NULL;
2512#endif
2513
2514 if (oldflp->fl4_src) {
2515 err = -EINVAL;
Joe Perchesf97c1e02007-12-16 13:45:43 -08002516 if (ipv4_is_multicast(oldflp->fl4_src) ||
Jan Engelhardt1e637c72008-01-21 03:18:08 -08002517 ipv4_is_lbcast(oldflp->fl4_src) ||
Joe Perchesf97c1e02007-12-16 13:45:43 -08002518 ipv4_is_zeronet(oldflp->fl4_src))
Linus Torvalds1da177e2005-04-16 15:20:36 -07002519 goto out;
2520
Linus Torvalds1da177e2005-04-16 15:20:36 -07002521 /* I removed check for oif == dev_out->oif here.
2522 It was wrong for two reasons:
Denis V. Lunev1ab35272008-01-22 22:04:30 -08002523 1. ip_dev_find(net, saddr) can return wrong iface, if saddr
2524 is assigned to multiple interfaces.
Linus Torvalds1da177e2005-04-16 15:20:36 -07002525 2. Moreover, we are allowed to send packets with saddr
2526 of another iface. --ANK
2527 */
2528
Joe Perches9d4fb272009-11-23 10:41:23 -08002529 if (oldflp->oif == 0 &&
2530 (ipv4_is_multicast(oldflp->fl4_dst) ||
Andy Walls27a954b2010-10-17 15:11:22 +00002531 ipv4_is_lbcast(oldflp->fl4_dst))) {
Julian Anastasova210d012008-10-01 07:28:28 -07002532 /* It is equivalent to inet_addr_type(saddr) == RTN_LOCAL */
Eric Dumazet0197aa32010-09-30 03:33:58 +00002533 dev_out = __ip_dev_find(net, oldflp->fl4_src, false);
Julian Anastasova210d012008-10-01 07:28:28 -07002534 if (dev_out == NULL)
2535 goto out;
2536
Linus Torvalds1da177e2005-04-16 15:20:36 -07002537 /* Special hack: user can direct multicasts
2538 and limited broadcast via necessary interface
2539 without fiddling with IP_MULTICAST_IF or IP_PKTINFO.
2540 This hack is not just for fun, it allows
2541 vic,vat and friends to work.
2542 They bind socket to loopback, set ttl to zero
2543 and expect that it will work.
2544 From the viewpoint of routing cache they are broken,
2545 because we are not allowed to build multicast path
2546 with loopback source addr (look, routing cache
2547 cannot know, that ttl is zero, so that packet
2548 will not leave this host and route is valid).
2549 Luckily, this hack is good workaround.
2550 */
2551
2552 fl.oif = dev_out->ifindex;
2553 goto make_route;
2554 }
Julian Anastasova210d012008-10-01 07:28:28 -07002555
2556 if (!(oldflp->flags & FLOWI_FLAG_ANYSRC)) {
2557 /* It is equivalent to inet_addr_type(saddr) == RTN_LOCAL */
Eric Dumazet0197aa32010-09-30 03:33:58 +00002558 if (!__ip_dev_find(net, oldflp->fl4_src, false))
Julian Anastasova210d012008-10-01 07:28:28 -07002559 goto out;
Julian Anastasova210d012008-10-01 07:28:28 -07002560 }
Linus Torvalds1da177e2005-04-16 15:20:36 -07002561 }
2562
2563
2564 if (oldflp->oif) {
Eric Dumazet0197aa32010-09-30 03:33:58 +00002565 dev_out = dev_get_by_index_rcu(net, oldflp->oif);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002566 err = -ENODEV;
2567 if (dev_out == NULL)
2568 goto out;
Herbert Xue5ed6392005-10-03 14:35:55 -07002569
2570 /* RACE: Check return value of inet_select_addr instead. */
Eric Dumazet0197aa32010-09-30 03:33:58 +00002571 if (rcu_dereference(dev_out->ip_ptr) == NULL)
Linus Torvalds1da177e2005-04-16 15:20:36 -07002572 goto out; /* Wrong error code */
Linus Torvalds1da177e2005-04-16 15:20:36 -07002573
Joe Perchesf97c1e02007-12-16 13:45:43 -08002574 if (ipv4_is_local_multicast(oldflp->fl4_dst) ||
Andy Walls27a954b2010-10-17 15:11:22 +00002575 ipv4_is_lbcast(oldflp->fl4_dst)) {
Linus Torvalds1da177e2005-04-16 15:20:36 -07002576 if (!fl.fl4_src)
2577 fl.fl4_src = inet_select_addr(dev_out, 0,
2578 RT_SCOPE_LINK);
2579 goto make_route;
2580 }
2581 if (!fl.fl4_src) {
Joe Perchesf97c1e02007-12-16 13:45:43 -08002582 if (ipv4_is_multicast(oldflp->fl4_dst))
Linus Torvalds1da177e2005-04-16 15:20:36 -07002583 fl.fl4_src = inet_select_addr(dev_out, 0,
2584 fl.fl4_scope);
2585 else if (!oldflp->fl4_dst)
2586 fl.fl4_src = inet_select_addr(dev_out, 0,
2587 RT_SCOPE_HOST);
2588 }
2589 }
2590
2591 if (!fl.fl4_dst) {
2592 fl.fl4_dst = fl.fl4_src;
2593 if (!fl.fl4_dst)
2594 fl.fl4_dst = fl.fl4_src = htonl(INADDR_LOOPBACK);
Denis V. Lunevb40afd02008-01-22 22:06:19 -08002595 dev_out = net->loopback_dev;
Denis V. Lunevb40afd02008-01-22 22:06:19 -08002596 fl.oif = net->loopback_dev->ifindex;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002597 res.type = RTN_LOCAL;
2598 flags |= RTCF_LOCAL;
2599 goto make_route;
2600 }
2601
Denis V. Lunevb40afd02008-01-22 22:06:19 -08002602 if (fib_lookup(net, &fl, &res)) {
Linus Torvalds1da177e2005-04-16 15:20:36 -07002603 res.fi = NULL;
2604 if (oldflp->oif) {
2605 /* Apparently, routing tables are wrong. Assume,
2606 that the destination is on link.
2607
2608 WHY? DW.
2609 Because we are allowed to send to iface
2610 even if it has NO routes and NO assigned
2611 addresses. When oif is specified, routing
2612 tables are looked up with only one purpose:
2613 to catch if destination is gatewayed, rather than
2614 direct. Moreover, if MSG_DONTROUTE is set,
2615 we send packet, ignoring both routing tables
2616 and ifaddr state. --ANK
2617
2618
2619 We could make it even if oif is unknown,
2620 likely IPv6, but we do not.
2621 */
2622
2623 if (fl.fl4_src == 0)
2624 fl.fl4_src = inet_select_addr(dev_out, 0,
2625 RT_SCOPE_LINK);
2626 res.type = RTN_UNICAST;
2627 goto make_route;
2628 }
Linus Torvalds1da177e2005-04-16 15:20:36 -07002629 err = -ENETUNREACH;
2630 goto out;
2631 }
Linus Torvalds1da177e2005-04-16 15:20:36 -07002632
2633 if (res.type == RTN_LOCAL) {
2634 if (!fl.fl4_src)
2635 fl.fl4_src = fl.fl4_dst;
Denis V. Lunevb40afd02008-01-22 22:06:19 -08002636 dev_out = net->loopback_dev;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002637 fl.oif = dev_out->ifindex;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002638 res.fi = NULL;
2639 flags |= RTCF_LOCAL;
2640 goto make_route;
2641 }
2642
2643#ifdef CONFIG_IP_ROUTE_MULTIPATH
2644 if (res.fi->fib_nhs > 1 && fl.oif == 0)
2645 fib_select_multipath(&fl, &res);
2646 else
2647#endif
2648 if (!res.prefixlen && res.type == RTN_UNICAST && !fl.oif)
Denis V. Lunevb40afd02008-01-22 22:06:19 -08002649 fib_select_default(net, &fl, &res);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002650
2651 if (!fl.fl4_src)
2652 fl.fl4_src = FIB_RES_PREFSRC(res);
2653
Linus Torvalds1da177e2005-04-16 15:20:36 -07002654 dev_out = FIB_RES_DEV(res);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002655 fl.oif = dev_out->ifindex;
2656
2657
2658make_route:
2659 err = ip_mkroute_output(rp, &res, &fl, oldflp, dev_out, flags);
2660
Linus Torvalds1da177e2005-04-16 15:20:36 -07002661out: return err;
2662}
2663
Denis V. Lunev611c1832008-01-22 22:06:48 -08002664int __ip_route_output_key(struct net *net, struct rtable **rp,
2665 const struct flowi *flp)
Linus Torvalds1da177e2005-04-16 15:20:36 -07002666{
Eric Dumazet0197aa32010-09-30 03:33:58 +00002667 unsigned int hash;
2668 int res;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002669 struct rtable *rth;
2670
Neil Horman1080d702008-10-27 12:28:25 -07002671 if (!rt_caching(net))
2672 goto slow_output;
2673
Denis V. Luneve84f84f2008-07-05 19:04:32 -07002674 hash = rt_hash(flp->fl4_dst, flp->fl4_src, flp->oif, rt_genid(net));
Linus Torvalds1da177e2005-04-16 15:20:36 -07002675
2676 rcu_read_lock_bh();
Paul E. McKenneya898def2010-02-22 17:04:49 -08002677 for (rth = rcu_dereference_bh(rt_hash_table[hash].chain); rth;
Changli Gaod8d1f302010-06-10 23:31:35 -07002678 rth = rcu_dereference_bh(rth->dst.rt_next)) {
Linus Torvalds1da177e2005-04-16 15:20:36 -07002679 if (rth->fl.fl4_dst == flp->fl4_dst &&
2680 rth->fl.fl4_src == flp->fl4_src &&
2681 rth->fl.iif == 0 &&
2682 rth->fl.oif == flp->oif &&
Thomas Graf47dcf0c2006-11-09 15:20:38 -08002683 rth->fl.mark == flp->mark &&
Linus Torvalds1da177e2005-04-16 15:20:36 -07002684 !((rth->fl.fl4_tos ^ flp->fl4_tos) &
Denis V. Lunevb5921912008-01-22 23:50:25 -08002685 (IPTOS_RT_MASK | RTO_ONLINK)) &&
Changli Gaod8d1f302010-06-10 23:31:35 -07002686 net_eq(dev_net(rth->dst.dev), net) &&
Denis V. Luneve84f84f2008-07-05 19:04:32 -07002687 !rt_is_expired(rth)) {
Changli Gaod8d1f302010-06-10 23:31:35 -07002688 dst_use(&rth->dst, jiffies);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002689 RT_CACHE_STAT_INC(out_hit);
2690 rcu_read_unlock_bh();
2691 *rp = rth;
2692 return 0;
2693 }
2694 RT_CACHE_STAT_INC(out_hlist_search);
2695 }
2696 rcu_read_unlock_bh();
2697
Neil Horman1080d702008-10-27 12:28:25 -07002698slow_output:
Eric Dumazet0197aa32010-09-30 03:33:58 +00002699 rcu_read_lock();
2700 res = ip_route_output_slow(net, rp, flp);
2701 rcu_read_unlock();
2702 return res;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002703}
Arnaldo Carvalho de Melod8c97a92005-08-09 20:12:12 -07002704EXPORT_SYMBOL_GPL(__ip_route_output_key);
2705
Jianzhao Wangae2688d2010-09-08 14:35:43 -07002706static struct dst_entry *ipv4_blackhole_dst_check(struct dst_entry *dst, u32 cookie)
2707{
2708 return NULL;
2709}
2710
David S. Miller14e50e52007-05-24 18:17:54 -07002711static void ipv4_rt_blackhole_update_pmtu(struct dst_entry *dst, u32 mtu)
2712{
2713}
2714
2715static struct dst_ops ipv4_dst_blackhole_ops = {
2716 .family = AF_INET,
Harvey Harrison09640e62009-02-01 00:45:17 -08002717 .protocol = cpu_to_be16(ETH_P_IP),
David S. Miller14e50e52007-05-24 18:17:54 -07002718 .destroy = ipv4_dst_destroy,
Jianzhao Wangae2688d2010-09-08 14:35:43 -07002719 .check = ipv4_blackhole_dst_check,
David S. Miller14e50e52007-05-24 18:17:54 -07002720 .update_pmtu = ipv4_rt_blackhole_update_pmtu,
David S. Miller14e50e52007-05-24 18:17:54 -07002721};
2722
2723
Denis V. Luneve84f84f2008-07-05 19:04:32 -07002724static int ipv4_dst_blackhole(struct net *net, struct rtable **rp, struct flowi *flp)
David S. Miller14e50e52007-05-24 18:17:54 -07002725{
2726 struct rtable *ort = *rp;
2727 struct rtable *rt = (struct rtable *)
2728 dst_alloc(&ipv4_dst_blackhole_ops);
2729
2730 if (rt) {
Changli Gaod8d1f302010-06-10 23:31:35 -07002731 struct dst_entry *new = &rt->dst;
David S. Miller14e50e52007-05-24 18:17:54 -07002732
2733 atomic_set(&new->__refcnt, 1);
2734 new->__use = 1;
Herbert Xu352e5122007-11-13 21:34:06 -08002735 new->input = dst_discard;
2736 new->output = dst_discard;
Changli Gaod8d1f302010-06-10 23:31:35 -07002737 memcpy(new->metrics, ort->dst.metrics, RTAX_MAX*sizeof(u32));
David S. Miller14e50e52007-05-24 18:17:54 -07002738
Changli Gaod8d1f302010-06-10 23:31:35 -07002739 new->dev = ort->dst.dev;
David S. Miller14e50e52007-05-24 18:17:54 -07002740 if (new->dev)
2741 dev_hold(new->dev);
2742
2743 rt->fl = ort->fl;
2744
2745 rt->idev = ort->idev;
2746 if (rt->idev)
2747 in_dev_hold(rt->idev);
Denis V. Luneve84f84f2008-07-05 19:04:32 -07002748 rt->rt_genid = rt_genid(net);
David S. Miller14e50e52007-05-24 18:17:54 -07002749 rt->rt_flags = ort->rt_flags;
2750 rt->rt_type = ort->rt_type;
2751 rt->rt_dst = ort->rt_dst;
2752 rt->rt_src = ort->rt_src;
2753 rt->rt_iif = ort->rt_iif;
2754 rt->rt_gateway = ort->rt_gateway;
2755 rt->rt_spec_dst = ort->rt_spec_dst;
2756 rt->peer = ort->peer;
2757 if (rt->peer)
2758 atomic_inc(&rt->peer->refcnt);
2759
2760 dst_free(new);
2761 }
2762
Changli Gaod8d1f302010-06-10 23:31:35 -07002763 dst_release(&(*rp)->dst);
David S. Miller14e50e52007-05-24 18:17:54 -07002764 *rp = rt;
Eric Dumazeta02cec22010-09-22 20:43:57 +00002765 return rt ? 0 : -ENOMEM;
David S. Miller14e50e52007-05-24 18:17:54 -07002766}
2767
Denis V. Lunevf1b050b2008-01-22 22:07:10 -08002768int ip_route_output_flow(struct net *net, struct rtable **rp, struct flowi *flp,
2769 struct sock *sk, int flags)
Linus Torvalds1da177e2005-04-16 15:20:36 -07002770{
2771 int err;
2772
Denis V. Lunevf1b050b2008-01-22 22:07:10 -08002773 if ((err = __ip_route_output_key(net, rp, flp)) != 0)
Linus Torvalds1da177e2005-04-16 15:20:36 -07002774 return err;
2775
2776 if (flp->proto) {
2777 if (!flp->fl4_src)
2778 flp->fl4_src = (*rp)->rt_src;
2779 if (!flp->fl4_dst)
2780 flp->fl4_dst = (*rp)->rt_dst;
Alexey Dobriyan52479b62008-11-25 17:35:18 -08002781 err = __xfrm_lookup(net, (struct dst_entry **)rp, flp, sk,
Herbert Xubb728452007-12-12 18:48:58 -08002782 flags ? XFRM_LOOKUP_WAIT : 0);
David S. Miller14e50e52007-05-24 18:17:54 -07002783 if (err == -EREMOTE)
Denis V. Luneve84f84f2008-07-05 19:04:32 -07002784 err = ipv4_dst_blackhole(net, rp, flp);
David S. Miller14e50e52007-05-24 18:17:54 -07002785
2786 return err;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002787 }
2788
2789 return 0;
2790}
Arnaldo Carvalho de Melod8c97a92005-08-09 20:12:12 -07002791EXPORT_SYMBOL_GPL(ip_route_output_flow);
2792
Denis V. Lunevf2063512008-01-22 22:07:34 -08002793int ip_route_output_key(struct net *net, struct rtable **rp, struct flowi *flp)
Linus Torvalds1da177e2005-04-16 15:20:36 -07002794{
Denis V. Lunevf2063512008-01-22 22:07:34 -08002795 return ip_route_output_flow(net, rp, flp, NULL, 0);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002796}
Eric Dumazet4bc2f182010-07-09 21:22:10 +00002797EXPORT_SYMBOL(ip_route_output_key);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002798
Benjamin Thery4feb88e2009-01-22 04:56:23 +00002799static int rt_fill_info(struct net *net,
2800 struct sk_buff *skb, u32 pid, u32 seq, int event,
Jamal Hadi Salimb6544c02005-06-18 22:54:12 -07002801 int nowait, unsigned int flags)
Linus Torvalds1da177e2005-04-16 15:20:36 -07002802{
Eric Dumazet511c3f92009-06-02 05:14:27 +00002803 struct rtable *rt = skb_rtable(skb);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002804 struct rtmsg *r;
Thomas Grafbe403ea2006-08-17 18:15:17 -07002805 struct nlmsghdr *nlh;
Thomas Grafe3703b32006-11-27 09:27:07 -08002806 long expires;
2807 u32 id = 0, ts = 0, tsage = 0, error;
Thomas Grafbe403ea2006-08-17 18:15:17 -07002808
2809 nlh = nlmsg_put(skb, pid, seq, event, sizeof(*r), flags);
2810 if (nlh == NULL)
Patrick McHardy26932562007-01-31 23:16:40 -08002811 return -EMSGSIZE;
Thomas Grafbe403ea2006-08-17 18:15:17 -07002812
2813 r = nlmsg_data(nlh);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002814 r->rtm_family = AF_INET;
2815 r->rtm_dst_len = 32;
2816 r->rtm_src_len = 0;
2817 r->rtm_tos = rt->fl.fl4_tos;
2818 r->rtm_table = RT_TABLE_MAIN;
Thomas Grafbe403ea2006-08-17 18:15:17 -07002819 NLA_PUT_U32(skb, RTA_TABLE, RT_TABLE_MAIN);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002820 r->rtm_type = rt->rt_type;
2821 r->rtm_scope = RT_SCOPE_UNIVERSE;
2822 r->rtm_protocol = RTPROT_UNSPEC;
2823 r->rtm_flags = (rt->rt_flags & ~0xFFFF) | RTM_F_CLONED;
2824 if (rt->rt_flags & RTCF_NOTIFY)
2825 r->rtm_flags |= RTM_F_NOTIFY;
Thomas Grafbe403ea2006-08-17 18:15:17 -07002826
Al Viro17fb2c62006-09-26 22:15:25 -07002827 NLA_PUT_BE32(skb, RTA_DST, rt->rt_dst);
Thomas Grafbe403ea2006-08-17 18:15:17 -07002828
Linus Torvalds1da177e2005-04-16 15:20:36 -07002829 if (rt->fl.fl4_src) {
2830 r->rtm_src_len = 32;
Al Viro17fb2c62006-09-26 22:15:25 -07002831 NLA_PUT_BE32(skb, RTA_SRC, rt->fl.fl4_src);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002832 }
Changli Gaod8d1f302010-06-10 23:31:35 -07002833 if (rt->dst.dev)
2834 NLA_PUT_U32(skb, RTA_OIF, rt->dst.dev->ifindex);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002835#ifdef CONFIG_NET_CLS_ROUTE
Changli Gaod8d1f302010-06-10 23:31:35 -07002836 if (rt->dst.tclassid)
2837 NLA_PUT_U32(skb, RTA_FLOW, rt->dst.tclassid);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002838#endif
Linus Torvalds1da177e2005-04-16 15:20:36 -07002839 if (rt->fl.iif)
Al Viro17fb2c62006-09-26 22:15:25 -07002840 NLA_PUT_BE32(skb, RTA_PREFSRC, rt->rt_spec_dst);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002841 else if (rt->rt_src != rt->fl.fl4_src)
Al Viro17fb2c62006-09-26 22:15:25 -07002842 NLA_PUT_BE32(skb, RTA_PREFSRC, rt->rt_src);
Thomas Grafbe403ea2006-08-17 18:15:17 -07002843
Linus Torvalds1da177e2005-04-16 15:20:36 -07002844 if (rt->rt_dst != rt->rt_gateway)
Al Viro17fb2c62006-09-26 22:15:25 -07002845 NLA_PUT_BE32(skb, RTA_GATEWAY, rt->rt_gateway);
Thomas Grafbe403ea2006-08-17 18:15:17 -07002846
Changli Gaod8d1f302010-06-10 23:31:35 -07002847 if (rtnetlink_put_metrics(skb, rt->dst.metrics) < 0)
Thomas Grafbe403ea2006-08-17 18:15:17 -07002848 goto nla_put_failure;
2849
Eric Dumazet963bfee2010-07-20 22:03:14 +00002850 if (rt->fl.mark)
2851 NLA_PUT_BE32(skb, RTA_MARK, rt->fl.mark);
2852
Changli Gaod8d1f302010-06-10 23:31:35 -07002853 error = rt->dst.error;
2854 expires = rt->dst.expires ? rt->dst.expires - jiffies : 0;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002855 if (rt->peer) {
Eric Dumazet317fe0e2010-06-16 04:52:13 +00002856 inet_peer_refcheck(rt->peer);
Eric Dumazet2c1409a2009-11-12 09:33:09 +00002857 id = atomic_read(&rt->peer->ip_id_count) & 0xffff;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002858 if (rt->peer->tcp_ts_stamp) {
Thomas Grafe3703b32006-11-27 09:27:07 -08002859 ts = rt->peer->tcp_ts;
James Morris9d729f72007-03-04 16:12:44 -08002860 tsage = get_seconds() - rt->peer->tcp_ts_stamp;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002861 }
2862 }
Thomas Grafbe403ea2006-08-17 18:15:17 -07002863
Linus Torvalds1da177e2005-04-16 15:20:36 -07002864 if (rt->fl.iif) {
2865#ifdef CONFIG_IP_MROUTE
Al Viroe4485152006-09-26 22:15:01 -07002866 __be32 dst = rt->rt_dst;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002867
Joe Perchesf97c1e02007-12-16 13:45:43 -08002868 if (ipv4_is_multicast(dst) && !ipv4_is_local_multicast(dst) &&
Benjamin Thery4feb88e2009-01-22 04:56:23 +00002869 IPV4_DEVCONF_ALL(net, MC_FORWARDING)) {
2870 int err = ipmr_get_route(net, skb, r, nowait);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002871 if (err <= 0) {
2872 if (!nowait) {
2873 if (err == 0)
2874 return 0;
Thomas Grafbe403ea2006-08-17 18:15:17 -07002875 goto nla_put_failure;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002876 } else {
2877 if (err == -EMSGSIZE)
Thomas Grafbe403ea2006-08-17 18:15:17 -07002878 goto nla_put_failure;
Thomas Grafe3703b32006-11-27 09:27:07 -08002879 error = err;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002880 }
2881 }
2882 } else
2883#endif
Thomas Grafbe403ea2006-08-17 18:15:17 -07002884 NLA_PUT_U32(skb, RTA_IIF, rt->fl.iif);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002885 }
2886
Changli Gaod8d1f302010-06-10 23:31:35 -07002887 if (rtnl_put_cacheinfo(skb, &rt->dst, id, ts, tsage,
Thomas Grafe3703b32006-11-27 09:27:07 -08002888 expires, error) < 0)
2889 goto nla_put_failure;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002890
Thomas Grafbe403ea2006-08-17 18:15:17 -07002891 return nlmsg_end(skb, nlh);
2892
2893nla_put_failure:
Patrick McHardy26932562007-01-31 23:16:40 -08002894 nlmsg_cancel(skb, nlh);
2895 return -EMSGSIZE;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002896}
2897
Thomas Graf63f34442007-03-22 11:55:17 -07002898static int inet_rtm_getroute(struct sk_buff *in_skb, struct nlmsghdr* nlh, void *arg)
Linus Torvalds1da177e2005-04-16 15:20:36 -07002899{
YOSHIFUJI Hideaki3b1e0a62008-03-26 02:26:21 +09002900 struct net *net = sock_net(in_skb->sk);
Thomas Grafd889ce32006-08-17 18:15:44 -07002901 struct rtmsg *rtm;
2902 struct nlattr *tb[RTA_MAX+1];
Linus Torvalds1da177e2005-04-16 15:20:36 -07002903 struct rtable *rt = NULL;
Al Viro9e12bb22006-09-26 21:25:20 -07002904 __be32 dst = 0;
2905 __be32 src = 0;
2906 u32 iif;
Thomas Grafd889ce32006-08-17 18:15:44 -07002907 int err;
Eric Dumazet963bfee2010-07-20 22:03:14 +00002908 int mark;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002909 struct sk_buff *skb;
2910
Thomas Grafd889ce32006-08-17 18:15:44 -07002911 err = nlmsg_parse(nlh, sizeof(*rtm), tb, RTA_MAX, rtm_ipv4_policy);
2912 if (err < 0)
2913 goto errout;
2914
2915 rtm = nlmsg_data(nlh);
2916
Linus Torvalds1da177e2005-04-16 15:20:36 -07002917 skb = alloc_skb(NLMSG_GOODSIZE, GFP_KERNEL);
Thomas Grafd889ce32006-08-17 18:15:44 -07002918 if (skb == NULL) {
2919 err = -ENOBUFS;
2920 goto errout;
2921 }
Linus Torvalds1da177e2005-04-16 15:20:36 -07002922
2923 /* Reserve room for dummy headers, this skb can pass
2924 through good chunk of routing engine.
2925 */
Arnaldo Carvalho de Melo459a98e2007-03-19 15:30:44 -07002926 skb_reset_mac_header(skb);
Arnaldo Carvalho de Meloc1d2bbe2007-04-10 20:45:18 -07002927 skb_reset_network_header(skb);
Stephen Hemmingerd2c962b2006-04-17 17:27:11 -07002928
2929 /* Bugfix: need to give ip_route_input enough of an IP header to not gag. */
Arnaldo Carvalho de Meloeddc9ec2007-04-20 22:47:35 -07002930 ip_hdr(skb)->protocol = IPPROTO_ICMP;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002931 skb_reserve(skb, MAX_HEADER + sizeof(struct iphdr));
2932
Al Viro17fb2c62006-09-26 22:15:25 -07002933 src = tb[RTA_SRC] ? nla_get_be32(tb[RTA_SRC]) : 0;
2934 dst = tb[RTA_DST] ? nla_get_be32(tb[RTA_DST]) : 0;
Thomas Grafd889ce32006-08-17 18:15:44 -07002935 iif = tb[RTA_IIF] ? nla_get_u32(tb[RTA_IIF]) : 0;
Eric Dumazet963bfee2010-07-20 22:03:14 +00002936 mark = tb[RTA_MARK] ? nla_get_u32(tb[RTA_MARK]) : 0;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002937
2938 if (iif) {
Thomas Grafd889ce32006-08-17 18:15:44 -07002939 struct net_device *dev;
2940
Denis V. Lunev19375042008-02-28 20:52:04 -08002941 dev = __dev_get_by_index(net, iif);
Thomas Grafd889ce32006-08-17 18:15:44 -07002942 if (dev == NULL) {
2943 err = -ENODEV;
2944 goto errout_free;
2945 }
2946
Linus Torvalds1da177e2005-04-16 15:20:36 -07002947 skb->protocol = htons(ETH_P_IP);
2948 skb->dev = dev;
Eric Dumazet963bfee2010-07-20 22:03:14 +00002949 skb->mark = mark;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002950 local_bh_disable();
2951 err = ip_route_input(skb, dst, src, rtm->rtm_tos, dev);
2952 local_bh_enable();
Thomas Grafd889ce32006-08-17 18:15:44 -07002953
Eric Dumazet511c3f92009-06-02 05:14:27 +00002954 rt = skb_rtable(skb);
Changli Gaod8d1f302010-06-10 23:31:35 -07002955 if (err == 0 && rt->dst.error)
2956 err = -rt->dst.error;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002957 } else {
Thomas Grafd889ce32006-08-17 18:15:44 -07002958 struct flowi fl = {
2959 .nl_u = {
2960 .ip4_u = {
2961 .daddr = dst,
2962 .saddr = src,
2963 .tos = rtm->rtm_tos,
2964 },
2965 },
2966 .oif = tb[RTA_OIF] ? nla_get_u32(tb[RTA_OIF]) : 0,
Eric Dumazet963bfee2010-07-20 22:03:14 +00002967 .mark = mark,
Thomas Grafd889ce32006-08-17 18:15:44 -07002968 };
Denis V. Lunev19375042008-02-28 20:52:04 -08002969 err = ip_route_output_key(net, &rt, &fl);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002970 }
Thomas Grafd889ce32006-08-17 18:15:44 -07002971
Linus Torvalds1da177e2005-04-16 15:20:36 -07002972 if (err)
Thomas Grafd889ce32006-08-17 18:15:44 -07002973 goto errout_free;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002974
Changli Gaod8d1f302010-06-10 23:31:35 -07002975 skb_dst_set(skb, &rt->dst);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002976 if (rtm->rtm_flags & RTM_F_NOTIFY)
2977 rt->rt_flags |= RTCF_NOTIFY;
2978
Benjamin Thery4feb88e2009-01-22 04:56:23 +00002979 err = rt_fill_info(net, skb, NETLINK_CB(in_skb).pid, nlh->nlmsg_seq,
Denis V. Lunev19375042008-02-28 20:52:04 -08002980 RTM_NEWROUTE, 0, 0);
Thomas Grafd889ce32006-08-17 18:15:44 -07002981 if (err <= 0)
2982 goto errout_free;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002983
Denis V. Lunev19375042008-02-28 20:52:04 -08002984 err = rtnl_unicast(skb, net, NETLINK_CB(in_skb).pid);
Thomas Grafd889ce32006-08-17 18:15:44 -07002985errout:
Thomas Graf2942e902006-08-15 00:30:25 -07002986 return err;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002987
Thomas Grafd889ce32006-08-17 18:15:44 -07002988errout_free:
Linus Torvalds1da177e2005-04-16 15:20:36 -07002989 kfree_skb(skb);
Thomas Grafd889ce32006-08-17 18:15:44 -07002990 goto errout;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002991}
2992
2993int ip_rt_dump(struct sk_buff *skb, struct netlink_callback *cb)
2994{
2995 struct rtable *rt;
2996 int h, s_h;
2997 int idx, s_idx;
Denis V. Lunev19375042008-02-28 20:52:04 -08002998 struct net *net;
2999
YOSHIFUJI Hideaki3b1e0a62008-03-26 02:26:21 +09003000 net = sock_net(skb->sk);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003001
3002 s_h = cb->args[0];
Eric Dumazetd8c92832008-01-07 21:52:14 -08003003 if (s_h < 0)
3004 s_h = 0;
Linus Torvalds1da177e2005-04-16 15:20:36 -07003005 s_idx = idx = cb->args[1];
Eric Dumazeta6272662008-08-28 01:11:25 -07003006 for (h = s_h; h <= rt_hash_mask; h++, s_idx = 0) {
3007 if (!rt_hash_table[h].chain)
3008 continue;
Linus Torvalds1da177e2005-04-16 15:20:36 -07003009 rcu_read_lock_bh();
Paul E. McKenneya898def2010-02-22 17:04:49 -08003010 for (rt = rcu_dereference_bh(rt_hash_table[h].chain), idx = 0; rt;
Changli Gaod8d1f302010-06-10 23:31:35 -07003011 rt = rcu_dereference_bh(rt->dst.rt_next), idx++) {
3012 if (!net_eq(dev_net(rt->dst.dev), net) || idx < s_idx)
Linus Torvalds1da177e2005-04-16 15:20:36 -07003013 continue;
Denis V. Luneve84f84f2008-07-05 19:04:32 -07003014 if (rt_is_expired(rt))
Eric Dumazet29e75252008-01-31 17:05:09 -08003015 continue;
Changli Gaod8d1f302010-06-10 23:31:35 -07003016 skb_dst_set_noref(skb, &rt->dst);
Benjamin Thery4feb88e2009-01-22 04:56:23 +00003017 if (rt_fill_info(net, skb, NETLINK_CB(cb->skb).pid,
YOSHIFUJI Hideakie905a9e2007-02-09 23:24:47 +09003018 cb->nlh->nlmsg_seq, RTM_NEWROUTE,
Jamal Hadi Salimb6544c02005-06-18 22:54:12 -07003019 1, NLM_F_MULTI) <= 0) {
Eric Dumazetadf30902009-06-02 05:19:30 +00003020 skb_dst_drop(skb);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003021 rcu_read_unlock_bh();
3022 goto done;
3023 }
Eric Dumazetadf30902009-06-02 05:19:30 +00003024 skb_dst_drop(skb);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003025 }
3026 rcu_read_unlock_bh();
3027 }
3028
3029done:
3030 cb->args[0] = h;
3031 cb->args[1] = idx;
3032 return skb->len;
3033}
3034
3035void ip_rt_multicast_event(struct in_device *in_dev)
3036{
Denis V. Lunev76e6ebf2008-07-05 19:00:44 -07003037 rt_cache_flush(dev_net(in_dev->dev), 0);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003038}
3039
3040#ifdef CONFIG_SYSCTL
Denis V. Lunev81c684d2008-07-08 03:05:28 -07003041static int ipv4_sysctl_rtcache_flush(ctl_table *__ctl, int write,
Alexey Dobriyan8d65af72009-09-23 15:57:19 -07003042 void __user *buffer,
Linus Torvalds1da177e2005-04-16 15:20:36 -07003043 size_t *lenp, loff_t *ppos)
3044{
3045 if (write) {
Denis V. Lunev639e1042008-07-05 19:02:06 -07003046 int flush_delay;
Denis V. Lunev81c684d2008-07-08 03:05:28 -07003047 ctl_table ctl;
Denis V. Lunev39a23e72008-07-05 19:02:33 -07003048 struct net *net;
Denis V. Lunev639e1042008-07-05 19:02:06 -07003049
Denis V. Lunev81c684d2008-07-08 03:05:28 -07003050 memcpy(&ctl, __ctl, sizeof(ctl));
3051 ctl.data = &flush_delay;
Alexey Dobriyan8d65af72009-09-23 15:57:19 -07003052 proc_dointvec(&ctl, write, buffer, lenp, ppos);
Denis V. Lunev639e1042008-07-05 19:02:06 -07003053
Denis V. Lunev81c684d2008-07-08 03:05:28 -07003054 net = (struct net *)__ctl->extra1;
Denis V. Lunev39a23e72008-07-05 19:02:33 -07003055 rt_cache_flush(net, flush_delay);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003056 return 0;
YOSHIFUJI Hideakie905a9e2007-02-09 23:24:47 +09003057 }
Linus Torvalds1da177e2005-04-16 15:20:36 -07003058
3059 return -EINVAL;
3060}
3061
Al Viroeeb61f72008-07-27 08:59:33 +01003062static ctl_table ipv4_route_table[] = {
YOSHIFUJI Hideakie905a9e2007-02-09 23:24:47 +09003063 {
Linus Torvalds1da177e2005-04-16 15:20:36 -07003064 .procname = "gc_thresh",
3065 .data = &ipv4_dst_ops.gc_thresh,
3066 .maxlen = sizeof(int),
3067 .mode = 0644,
Alexey Dobriyan6d9f2392008-11-03 18:21:05 -08003068 .proc_handler = proc_dointvec,
Linus Torvalds1da177e2005-04-16 15:20:36 -07003069 },
3070 {
Linus Torvalds1da177e2005-04-16 15:20:36 -07003071 .procname = "max_size",
3072 .data = &ip_rt_max_size,
3073 .maxlen = sizeof(int),
3074 .mode = 0644,
Alexey Dobriyan6d9f2392008-11-03 18:21:05 -08003075 .proc_handler = proc_dointvec,
Linus Torvalds1da177e2005-04-16 15:20:36 -07003076 },
3077 {
3078 /* Deprecated. Use gc_min_interval_ms */
YOSHIFUJI Hideakie905a9e2007-02-09 23:24:47 +09003079
Linus Torvalds1da177e2005-04-16 15:20:36 -07003080 .procname = "gc_min_interval",
3081 .data = &ip_rt_gc_min_interval,
3082 .maxlen = sizeof(int),
3083 .mode = 0644,
Alexey Dobriyan6d9f2392008-11-03 18:21:05 -08003084 .proc_handler = proc_dointvec_jiffies,
Linus Torvalds1da177e2005-04-16 15:20:36 -07003085 },
3086 {
Linus Torvalds1da177e2005-04-16 15:20:36 -07003087 .procname = "gc_min_interval_ms",
3088 .data = &ip_rt_gc_min_interval,
3089 .maxlen = sizeof(int),
3090 .mode = 0644,
Alexey Dobriyan6d9f2392008-11-03 18:21:05 -08003091 .proc_handler = proc_dointvec_ms_jiffies,
Linus Torvalds1da177e2005-04-16 15:20:36 -07003092 },
3093 {
Linus Torvalds1da177e2005-04-16 15:20:36 -07003094 .procname = "gc_timeout",
3095 .data = &ip_rt_gc_timeout,
3096 .maxlen = sizeof(int),
3097 .mode = 0644,
Alexey Dobriyan6d9f2392008-11-03 18:21:05 -08003098 .proc_handler = proc_dointvec_jiffies,
Linus Torvalds1da177e2005-04-16 15:20:36 -07003099 },
3100 {
Linus Torvalds1da177e2005-04-16 15:20:36 -07003101 .procname = "gc_interval",
3102 .data = &ip_rt_gc_interval,
3103 .maxlen = sizeof(int),
3104 .mode = 0644,
Alexey Dobriyan6d9f2392008-11-03 18:21:05 -08003105 .proc_handler = proc_dointvec_jiffies,
Linus Torvalds1da177e2005-04-16 15:20:36 -07003106 },
3107 {
Linus Torvalds1da177e2005-04-16 15:20:36 -07003108 .procname = "redirect_load",
3109 .data = &ip_rt_redirect_load,
3110 .maxlen = sizeof(int),
3111 .mode = 0644,
Alexey Dobriyan6d9f2392008-11-03 18:21:05 -08003112 .proc_handler = proc_dointvec,
Linus Torvalds1da177e2005-04-16 15:20:36 -07003113 },
3114 {
Linus Torvalds1da177e2005-04-16 15:20:36 -07003115 .procname = "redirect_number",
3116 .data = &ip_rt_redirect_number,
3117 .maxlen = sizeof(int),
3118 .mode = 0644,
Alexey Dobriyan6d9f2392008-11-03 18:21:05 -08003119 .proc_handler = proc_dointvec,
Linus Torvalds1da177e2005-04-16 15:20:36 -07003120 },
3121 {
Linus Torvalds1da177e2005-04-16 15:20:36 -07003122 .procname = "redirect_silence",
3123 .data = &ip_rt_redirect_silence,
3124 .maxlen = sizeof(int),
3125 .mode = 0644,
Alexey Dobriyan6d9f2392008-11-03 18:21:05 -08003126 .proc_handler = proc_dointvec,
Linus Torvalds1da177e2005-04-16 15:20:36 -07003127 },
3128 {
Linus Torvalds1da177e2005-04-16 15:20:36 -07003129 .procname = "error_cost",
3130 .data = &ip_rt_error_cost,
3131 .maxlen = sizeof(int),
3132 .mode = 0644,
Alexey Dobriyan6d9f2392008-11-03 18:21:05 -08003133 .proc_handler = proc_dointvec,
Linus Torvalds1da177e2005-04-16 15:20:36 -07003134 },
3135 {
Linus Torvalds1da177e2005-04-16 15:20:36 -07003136 .procname = "error_burst",
3137 .data = &ip_rt_error_burst,
3138 .maxlen = sizeof(int),
3139 .mode = 0644,
Alexey Dobriyan6d9f2392008-11-03 18:21:05 -08003140 .proc_handler = proc_dointvec,
Linus Torvalds1da177e2005-04-16 15:20:36 -07003141 },
3142 {
Linus Torvalds1da177e2005-04-16 15:20:36 -07003143 .procname = "gc_elasticity",
3144 .data = &ip_rt_gc_elasticity,
3145 .maxlen = sizeof(int),
3146 .mode = 0644,
Alexey Dobriyan6d9f2392008-11-03 18:21:05 -08003147 .proc_handler = proc_dointvec,
Linus Torvalds1da177e2005-04-16 15:20:36 -07003148 },
3149 {
Linus Torvalds1da177e2005-04-16 15:20:36 -07003150 .procname = "mtu_expires",
3151 .data = &ip_rt_mtu_expires,
3152 .maxlen = sizeof(int),
3153 .mode = 0644,
Alexey Dobriyan6d9f2392008-11-03 18:21:05 -08003154 .proc_handler = proc_dointvec_jiffies,
Linus Torvalds1da177e2005-04-16 15:20:36 -07003155 },
3156 {
Linus Torvalds1da177e2005-04-16 15:20:36 -07003157 .procname = "min_pmtu",
3158 .data = &ip_rt_min_pmtu,
3159 .maxlen = sizeof(int),
3160 .mode = 0644,
Alexey Dobriyan6d9f2392008-11-03 18:21:05 -08003161 .proc_handler = proc_dointvec,
Linus Torvalds1da177e2005-04-16 15:20:36 -07003162 },
3163 {
Linus Torvalds1da177e2005-04-16 15:20:36 -07003164 .procname = "min_adv_mss",
3165 .data = &ip_rt_min_advmss,
3166 .maxlen = sizeof(int),
3167 .mode = 0644,
Alexey Dobriyan6d9f2392008-11-03 18:21:05 -08003168 .proc_handler = proc_dointvec,
Linus Torvalds1da177e2005-04-16 15:20:36 -07003169 },
Eric W. Biedermanf8572d82009-11-05 13:32:03 -08003170 { }
Linus Torvalds1da177e2005-04-16 15:20:36 -07003171};
Denis V. Lunev39a23e72008-07-05 19:02:33 -07003172
Al Viro2f4520d2008-08-25 15:17:44 -07003173static struct ctl_table empty[1];
3174
3175static struct ctl_table ipv4_skeleton[] =
3176{
Eric W. Biedermanf8572d82009-11-05 13:32:03 -08003177 { .procname = "route",
Hugh Dickinsd994af02008-08-27 02:35:18 -07003178 .mode = 0555, .child = ipv4_route_table},
Eric W. Biedermanf8572d82009-11-05 13:32:03 -08003179 { .procname = "neigh",
Hugh Dickinsd994af02008-08-27 02:35:18 -07003180 .mode = 0555, .child = empty},
Al Viro2f4520d2008-08-25 15:17:44 -07003181 { }
Denis V. Lunev39a23e72008-07-05 19:02:33 -07003182};
3183
Al Viro2f4520d2008-08-25 15:17:44 -07003184static __net_initdata struct ctl_path ipv4_path[] = {
Eric W. Biedermanf8572d82009-11-05 13:32:03 -08003185 { .procname = "net", },
3186 { .procname = "ipv4", },
Al Viro2f4520d2008-08-25 15:17:44 -07003187 { },
3188};
Denis V. Lunev39a23e72008-07-05 19:02:33 -07003189
3190static struct ctl_table ipv4_route_flush_table[] = {
3191 {
Denis V. Lunev39a23e72008-07-05 19:02:33 -07003192 .procname = "flush",
3193 .maxlen = sizeof(int),
3194 .mode = 0200,
Alexey Dobriyan6d9f2392008-11-03 18:21:05 -08003195 .proc_handler = ipv4_sysctl_rtcache_flush,
Denis V. Lunev39a23e72008-07-05 19:02:33 -07003196 },
Eric W. Biedermanf8572d82009-11-05 13:32:03 -08003197 { },
Denis V. Lunev39a23e72008-07-05 19:02:33 -07003198};
3199
Al Viro2f4520d2008-08-25 15:17:44 -07003200static __net_initdata struct ctl_path ipv4_route_path[] = {
Eric W. Biedermanf8572d82009-11-05 13:32:03 -08003201 { .procname = "net", },
3202 { .procname = "ipv4", },
3203 { .procname = "route", },
Al Viro2f4520d2008-08-25 15:17:44 -07003204 { },
3205};
3206
Denis V. Lunev39a23e72008-07-05 19:02:33 -07003207static __net_init int sysctl_route_net_init(struct net *net)
3208{
3209 struct ctl_table *tbl;
3210
3211 tbl = ipv4_route_flush_table;
Octavian Purdila09ad9bc2009-11-25 15:14:13 -08003212 if (!net_eq(net, &init_net)) {
Denis V. Lunev39a23e72008-07-05 19:02:33 -07003213 tbl = kmemdup(tbl, sizeof(ipv4_route_flush_table), GFP_KERNEL);
3214 if (tbl == NULL)
3215 goto err_dup;
3216 }
3217 tbl[0].extra1 = net;
3218
3219 net->ipv4.route_hdr =
3220 register_net_sysctl_table(net, ipv4_route_path, tbl);
3221 if (net->ipv4.route_hdr == NULL)
3222 goto err_reg;
3223 return 0;
3224
3225err_reg:
3226 if (tbl != ipv4_route_flush_table)
3227 kfree(tbl);
3228err_dup:
3229 return -ENOMEM;
3230}
3231
3232static __net_exit void sysctl_route_net_exit(struct net *net)
3233{
3234 struct ctl_table *tbl;
3235
3236 tbl = net->ipv4.route_hdr->ctl_table_arg;
3237 unregister_net_sysctl_table(net->ipv4.route_hdr);
3238 BUG_ON(tbl == ipv4_route_flush_table);
3239 kfree(tbl);
3240}
3241
3242static __net_initdata struct pernet_operations sysctl_route_ops = {
3243 .init = sysctl_route_net_init,
3244 .exit = sysctl_route_net_exit,
3245};
Linus Torvalds1da177e2005-04-16 15:20:36 -07003246#endif
3247
Neil Horman3ee94372010-05-08 01:57:52 -07003248static __net_init int rt_genid_init(struct net *net)
Denis V. Lunev9f5e97e2008-07-05 19:02:59 -07003249{
Neil Horman3ee94372010-05-08 01:57:52 -07003250 get_random_bytes(&net->ipv4.rt_genid,
3251 sizeof(net->ipv4.rt_genid));
Denis V. Lunev9f5e97e2008-07-05 19:02:59 -07003252 return 0;
3253}
3254
Neil Horman3ee94372010-05-08 01:57:52 -07003255static __net_initdata struct pernet_operations rt_genid_ops = {
3256 .init = rt_genid_init,
Denis V. Lunev9f5e97e2008-07-05 19:02:59 -07003257};
3258
3259
Linus Torvalds1da177e2005-04-16 15:20:36 -07003260#ifdef CONFIG_NET_CLS_ROUTE
Tejun Heo7d720c32010-02-16 15:20:26 +00003261struct ip_rt_acct __percpu *ip_rt_acct __read_mostly;
Linus Torvalds1da177e2005-04-16 15:20:36 -07003262#endif /* CONFIG_NET_CLS_ROUTE */
3263
3264static __initdata unsigned long rhash_entries;
3265static int __init set_rhash_entries(char *str)
3266{
3267 if (!str)
3268 return 0;
3269 rhash_entries = simple_strtoul(str, &str, 0);
3270 return 1;
3271}
3272__setup("rhash_entries=", set_rhash_entries);
3273
3274int __init ip_rt_init(void)
3275{
Eric Dumazet424c4b72005-07-05 14:58:19 -07003276 int rc = 0;
Linus Torvalds1da177e2005-04-16 15:20:36 -07003277
Linus Torvalds1da177e2005-04-16 15:20:36 -07003278#ifdef CONFIG_NET_CLS_ROUTE
Ingo Molnar0dcec8c2009-02-25 14:07:33 +01003279 ip_rt_acct = __alloc_percpu(256 * sizeof(struct ip_rt_acct), __alignof__(struct ip_rt_acct));
Linus Torvalds1da177e2005-04-16 15:20:36 -07003280 if (!ip_rt_acct)
3281 panic("IP: failed to allocate ip_rt_acct\n");
Linus Torvalds1da177e2005-04-16 15:20:36 -07003282#endif
3283
Alexey Dobriyane5d679f332006-08-26 19:25:52 -07003284 ipv4_dst_ops.kmem_cachep =
3285 kmem_cache_create("ip_dst_cache", sizeof(struct rtable), 0,
Paul Mundt20c2df82007-07-20 10:11:58 +09003286 SLAB_HWCACHE_ALIGN|SLAB_PANIC, NULL);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003287
David S. Miller14e50e52007-05-24 18:17:54 -07003288 ipv4_dst_blackhole_ops.kmem_cachep = ipv4_dst_ops.kmem_cachep;
3289
Eric Dumazetfc66f952010-10-08 06:37:34 +00003290 if (dst_entries_init(&ipv4_dst_ops) < 0)
3291 panic("IP: failed to allocate ipv4_dst_ops counter\n");
3292
3293 if (dst_entries_init(&ipv4_dst_blackhole_ops) < 0)
3294 panic("IP: failed to allocate ipv4_dst_blackhole_ops counter\n");
3295
Eric Dumazet424c4b72005-07-05 14:58:19 -07003296 rt_hash_table = (struct rt_hash_bucket *)
3297 alloc_large_system_hash("IP route cache",
3298 sizeof(struct rt_hash_bucket),
3299 rhash_entries,
Jan Beulich44813742009-09-21 17:03:05 -07003300 (totalram_pages >= 128 * 1024) ?
Mike Stroyan18955cf2005-11-29 16:12:55 -08003301 15 : 17,
Kirill Korotaev8d1502d2006-08-07 20:44:22 -07003302 0,
Eric Dumazet424c4b72005-07-05 14:58:19 -07003303 &rt_hash_log,
3304 &rt_hash_mask,
Anton Blanchardc9503e02009-04-27 05:42:24 -07003305 rhash_entries ? 0 : 512 * 1024);
Eric Dumazet22c047c2005-07-05 14:55:24 -07003306 memset(rt_hash_table, 0, (rt_hash_mask + 1) * sizeof(struct rt_hash_bucket));
3307 rt_hash_lock_init();
Linus Torvalds1da177e2005-04-16 15:20:36 -07003308
3309 ipv4_dst_ops.gc_thresh = (rt_hash_mask + 1);
3310 ip_rt_max_size = (rt_hash_mask + 1) * 16;
3311
Linus Torvalds1da177e2005-04-16 15:20:36 -07003312 devinet_init();
3313 ip_fib_init();
3314
Linus Torvalds1da177e2005-04-16 15:20:36 -07003315 /* All the timers, started at system startup tend
3316 to synchronize. Perturb it a bit.
3317 */
Eric Dumazet125bb8f2009-06-11 20:10:07 +00003318 INIT_DELAYED_WORK_DEFERRABLE(&expires_work, rt_worker_func);
3319 expires_ljiffies = jiffies;
Eric Dumazet39c90ec2007-09-15 10:55:54 -07003320 schedule_delayed_work(&expires_work,
3321 net_random() % ip_rt_gc_interval + ip_rt_gc_interval);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003322
Denis V. Lunev73b38712008-02-28 20:51:18 -08003323 if (ip_rt_proc_init())
Pavel Emelyanov107f1632007-12-05 21:14:28 -08003324 printk(KERN_ERR "Unable to create route proc files\n");
Linus Torvalds1da177e2005-04-16 15:20:36 -07003325#ifdef CONFIG_XFRM
3326 xfrm_init();
Neil Hormana33bc5c2009-07-30 18:52:15 -07003327 xfrm4_init(ip_rt_max_size);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003328#endif
Thomas Graf63f34442007-03-22 11:55:17 -07003329 rtnl_register(PF_INET, RTM_GETROUTE, inet_rtm_getroute, NULL);
3330
Denis V. Lunev39a23e72008-07-05 19:02:33 -07003331#ifdef CONFIG_SYSCTL
3332 register_pernet_subsys(&sysctl_route_ops);
3333#endif
Neil Horman3ee94372010-05-08 01:57:52 -07003334 register_pernet_subsys(&rt_genid_ops);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003335 return rc;
3336}
3337
Al Viroa1bc6eb2008-07-30 06:32:52 -04003338#ifdef CONFIG_SYSCTL
Al Viroeeb61f72008-07-27 08:59:33 +01003339/*
3340 * We really need to sanitize the damn ipv4 init order, then all
3341 * this nonsense will go away.
3342 */
3343void __init ip_static_sysctl_init(void)
3344{
Al Viro2f4520d2008-08-25 15:17:44 -07003345 register_sysctl_paths(ipv4_path, ipv4_skeleton);
Al Viroeeb61f72008-07-27 08:59:33 +01003346}
Al Viroa1bc6eb2008-07-30 06:32:52 -04003347#endif