blob: 554a760c2cd071dba453df301190c6c50c7ee76e [file] [log] [blame]
Linus Torvalds1da177e2005-04-16 15:20:36 -07001/*
YOSHIFUJI Hideakie905a9e2007-02-09 23:24:47 +09002 * Linux NET3: GRE over IP protocol decoder.
Linus Torvalds1da177e2005-04-16 15:20:36 -07003 *
4 * Authors: Alexey Kuznetsov (kuznet@ms2.inr.ac.ru)
5 *
6 * This program is free software; you can redistribute it and/or
7 * modify it under the terms of the GNU General Public License
8 * as published by the Free Software Foundation; either version
9 * 2 of the License, or (at your option) any later version.
10 *
11 */
12
Joe Perchesafd465032012-03-12 07:03:32 +000013#define pr_fmt(fmt) KBUILD_MODNAME ": " fmt
14
Randy Dunlap4fc268d2006-01-11 12:17:47 -080015#include <linux/capability.h>
Linus Torvalds1da177e2005-04-16 15:20:36 -070016#include <linux/module.h>
17#include <linux/types.h>
Linus Torvalds1da177e2005-04-16 15:20:36 -070018#include <linux/kernel.h>
Tejun Heo5a0e3ad2010-03-24 17:04:11 +090019#include <linux/slab.h>
Linus Torvalds1da177e2005-04-16 15:20:36 -070020#include <asm/uaccess.h>
21#include <linux/skbuff.h>
22#include <linux/netdevice.h>
23#include <linux/in.h>
24#include <linux/tcp.h>
25#include <linux/udp.h>
26#include <linux/if_arp.h>
27#include <linux/mroute.h>
Pravin B Shelar2e15ea32015-08-07 23:51:42 -070028#include <linux/if_vlan.h>
Linus Torvalds1da177e2005-04-16 15:20:36 -070029#include <linux/init.h>
30#include <linux/in6.h>
31#include <linux/inetdevice.h>
32#include <linux/igmp.h>
33#include <linux/netfilter_ipv4.h>
Herbert Xue1a80002008-10-09 12:00:17 -070034#include <linux/etherdevice.h>
Kris Katterjohn46f25df2006-01-05 16:35:42 -080035#include <linux/if_ether.h>
Linus Torvalds1da177e2005-04-16 15:20:36 -070036
37#include <net/sock.h>
38#include <net/ip.h>
39#include <net/icmp.h>
40#include <net/protocol.h>
Pravin B Shelarc5441932013-03-25 14:49:35 +000041#include <net/ip_tunnels.h>
Linus Torvalds1da177e2005-04-16 15:20:36 -070042#include <net/arp.h>
43#include <net/checksum.h>
44#include <net/dsfield.h>
45#include <net/inet_ecn.h>
46#include <net/xfrm.h>
Pavel Emelyanov59a4c752008-04-16 01:08:53 -070047#include <net/net_namespace.h>
48#include <net/netns/generic.h>
Herbert Xuc19e6542008-10-09 11:59:55 -070049#include <net/rtnetlink.h>
Dmitry Kozlov00959ad2010-08-21 23:05:39 -070050#include <net/gre.h>
Pravin B Shelar2e15ea32015-08-07 23:51:42 -070051#include <net/dst_metadata.h>
Linus Torvalds1da177e2005-04-16 15:20:36 -070052
Eric Dumazetdfd56b82011-12-10 09:48:31 +000053#if IS_ENABLED(CONFIG_IPV6)
Linus Torvalds1da177e2005-04-16 15:20:36 -070054#include <net/ipv6.h>
55#include <net/ip6_fib.h>
56#include <net/ip6_route.h>
57#endif
58
59/*
60 Problems & solutions
61 --------------------
62
63 1. The most important issue is detecting local dead loops.
64 They would cause complete host lockup in transmit, which
65 would be "resolved" by stack overflow or, if queueing is enabled,
66 with infinite looping in net_bh.
67
68 We cannot track such dead loops during route installation,
69 it is infeasible task. The most general solutions would be
70 to keep skb->encapsulation counter (sort of local ttl),
Eric Dumazet6d0722a2010-09-29 23:35:10 -070071 and silently drop packet when it expires. It is a good
stephen hemmingerbff52852012-02-24 08:08:20 +000072 solution, but it supposes maintaining new variable in ALL
Linus Torvalds1da177e2005-04-16 15:20:36 -070073 skb, even if no tunneling is used.
74
Eric Dumazet6d0722a2010-09-29 23:35:10 -070075 Current solution: xmit_recursion breaks dead loops. This is a percpu
76 counter, since when we enter the first ndo_xmit(), cpu migration is
77 forbidden. We force an exit if this counter reaches RECURSION_LIMIT
Linus Torvalds1da177e2005-04-16 15:20:36 -070078
79 2. Networking dead loops would not kill routers, but would really
80 kill network. IP hop limit plays role of "t->recursion" in this case,
81 if we copy it from packet being encapsulated to upper header.
82 It is very good solution, but it introduces two problems:
83
84 - Routing protocols, using packets with ttl=1 (OSPF, RIP2),
85 do not work over tunnels.
86 - traceroute does not work. I planned to relay ICMP from tunnel,
87 so that this problem would be solved and traceroute output
88 would even more informative. This idea appeared to be wrong:
89 only Linux complies to rfc1812 now (yes, guys, Linux is the only
90 true router now :-)), all routers (at least, in neighbourhood of mine)
91 return only 8 bytes of payload. It is the end.
92
93 Hence, if we want that OSPF worked or traceroute said something reasonable,
94 we should search for another solution.
95
96 One of them is to parse packet trying to detect inner encapsulation
97 made by our node. It is difficult or even impossible, especially,
stephen hemmingerbff52852012-02-24 08:08:20 +000098 taking into account fragmentation. TO be short, ttl is not solution at all.
Linus Torvalds1da177e2005-04-16 15:20:36 -070099
100 Current solution: The solution was UNEXPECTEDLY SIMPLE.
101 We force DF flag on tunnels with preconfigured hop limit,
102 that is ALL. :-) Well, it does not remove the problem completely,
103 but exponential growth of network traffic is changed to linear
104 (branches, that exceed pmtu are pruned) and tunnel mtu
stephen hemmingerbff52852012-02-24 08:08:20 +0000105 rapidly degrades to value <68, where looping stops.
Linus Torvalds1da177e2005-04-16 15:20:36 -0700106 Yes, it is not good if there exists a router in the loop,
107 which does not force DF, even when encapsulating packets have DF set.
108 But it is not our problem! Nobody could accuse us, we made
109 all that we could make. Even if it is your gated who injected
110 fatal route to network, even if it were you who configured
111 fatal static route: you are innocent. :-)
112
Linus Torvalds1da177e2005-04-16 15:20:36 -0700113 Alexey Kuznetsov.
114 */
115
stephen hemmingereccc1bb2012-09-25 11:02:48 +0000116static bool log_ecn_error = true;
117module_param(log_ecn_error, bool, 0644);
118MODULE_PARM_DESC(log_ecn_error, "Log packets received with corrupted ECN");
119
Herbert Xuc19e6542008-10-09 11:59:55 -0700120static struct rtnl_link_ops ipgre_link_ops __read_mostly;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700121static int ipgre_tunnel_init(struct net_device *dev);
Pavel Emelyanoveb8ce742008-04-16 01:10:26 -0700122
Eric Dumazetf99189b2009-11-17 10:42:49 +0000123static int ipgre_net_id __read_mostly;
Pravin B Shelarc5441932013-03-25 14:49:35 +0000124static int gre_tap_net_id __read_mostly;
Pavel Emelyanoveb8ce742008-04-16 01:10:26 -0700125
Pravin B Shelarbda7bb42013-06-17 17:49:38 -0700126static int ipgre_err(struct sk_buff *skb, u32 info,
127 const struct tnl_ptk_info *tpi)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700128{
Linus Torvalds1da177e2005-04-16 15:20:36 -0700129
Pravin B Shelarc5441932013-03-25 14:49:35 +0000130 /* All the routers (except for Linux) return only
131 8 bytes of packet payload. It means, that precise relaying of
132 ICMP in the real Internet is absolutely infeasible.
Linus Torvalds1da177e2005-04-16 15:20:36 -0700133
Pravin B Shelarc5441932013-03-25 14:49:35 +0000134 Moreover, Cisco "wise men" put GRE key to the third word
135 in GRE header. It makes impossible maintaining even soft
136 state for keyed GRE tunnels with enabled checksum. Tell
137 them "thank you".
Linus Torvalds1da177e2005-04-16 15:20:36 -0700138
Pravin B Shelarc5441932013-03-25 14:49:35 +0000139 Well, I wonder, rfc1812 was written by Cisco employee,
140 what the hell these idiots break standards established
141 by themselves???
142 */
143 struct net *net = dev_net(skb->dev);
144 struct ip_tunnel_net *itn;
Eric Dumazet96f5a842013-05-18 08:36:03 +0000145 const struct iphdr *iph;
Arnaldo Carvalho de Melo88c76642007-03-13 14:43:18 -0300146 const int type = icmp_hdr(skb)->type;
147 const int code = icmp_hdr(skb)->code;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700148 struct ip_tunnel *t;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700149
Linus Torvalds1da177e2005-04-16 15:20:36 -0700150 switch (type) {
151 default:
152 case ICMP_PARAMETERPROB:
Pravin B Shelarbda7bb42013-06-17 17:49:38 -0700153 return PACKET_RCVD;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700154
155 case ICMP_DEST_UNREACH:
156 switch (code) {
157 case ICMP_SR_FAILED:
158 case ICMP_PORT_UNREACH:
159 /* Impossible event. */
Pravin B Shelarbda7bb42013-06-17 17:49:38 -0700160 return PACKET_RCVD;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700161 default:
162 /* All others are translated to HOST_UNREACH.
163 rfc2003 contains "deep thoughts" about NET_UNREACH,
164 I believe they are just ether pollution. --ANK
165 */
166 break;
167 }
168 break;
169 case ICMP_TIME_EXCEEDED:
170 if (code != ICMP_EXC_TTL)
Pravin B Shelarbda7bb42013-06-17 17:49:38 -0700171 return PACKET_RCVD;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700172 break;
David S. Miller55be7a92012-07-11 21:27:49 -0700173
174 case ICMP_REDIRECT:
175 break;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700176 }
177
Pravin B Shelarbda7bb42013-06-17 17:49:38 -0700178 if (tpi->proto == htons(ETH_P_TEB))
Pravin B Shelarc5441932013-03-25 14:49:35 +0000179 itn = net_generic(net, gre_tap_net_id);
180 else
181 itn = net_generic(net, ipgre_net_id);
182
Duan Jiongc0c0c502014-01-28 11:49:43 +0800183 iph = (const struct iphdr *)(icmp_hdr(skb) + 1);
Pravin B Shelarbda7bb42013-06-17 17:49:38 -0700184 t = ip_tunnel_lookup(itn, skb->dev->ifindex, tpi->flags,
185 iph->daddr, iph->saddr, tpi->key);
stephen hemmingerd2083282012-09-24 18:12:23 +0000186
Ian Morris51456b22015-04-03 09:17:26 +0100187 if (!t)
Pravin B Shelarbda7bb42013-06-17 17:49:38 -0700188 return PACKET_REJECT;
David S. Miller36393392012-06-14 22:21:46 -0700189
David S. Miller36393392012-06-14 22:21:46 -0700190 if (t->parms.iph.daddr == 0 ||
Joe Perchesf97c1e02007-12-16 13:45:43 -0800191 ipv4_is_multicast(t->parms.iph.daddr))
Pravin B Shelarbda7bb42013-06-17 17:49:38 -0700192 return PACKET_RCVD;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700193
194 if (t->parms.iph.ttl == 0 && type == ICMP_TIME_EXCEEDED)
Pravin B Shelarbda7bb42013-06-17 17:49:38 -0700195 return PACKET_RCVD;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700196
Wei Yongjunda6185d82009-02-24 23:34:48 -0800197 if (time_before(jiffies, t->err_time + IPTUNNEL_ERR_TIMEO))
Linus Torvalds1da177e2005-04-16 15:20:36 -0700198 t->err_count++;
199 else
200 t->err_count = 1;
201 t->err_time = jiffies;
Pravin B Shelarbda7bb42013-06-17 17:49:38 -0700202 return PACKET_RCVD;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700203}
204
Pravin B Shelar2e15ea32015-08-07 23:51:42 -0700205static __be64 key_to_tunnel_id(__be32 key)
206{
207#ifdef __BIG_ENDIAN
208 return (__force __be64)((__force u32)key);
209#else
210 return (__force __be64)((__force u64)key << 32);
211#endif
212}
213
214/* Returns the least-significant 32 bits of a __be64. */
215static __be32 tunnel_id_to_key(__be64 x)
216{
217#ifdef __BIG_ENDIAN
218 return (__force __be32)x;
219#else
220 return (__force __be32)((__force u64)x >> 32);
221#endif
222}
223
Pravin B Shelarbda7bb42013-06-17 17:49:38 -0700224static int ipgre_rcv(struct sk_buff *skb, const struct tnl_ptk_info *tpi)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700225{
Pravin B Shelarc5441932013-03-25 14:49:35 +0000226 struct net *net = dev_net(skb->dev);
Pravin B Shelar2e15ea32015-08-07 23:51:42 -0700227 struct metadata_dst *tun_dst = NULL;
Pravin B Shelarc5441932013-03-25 14:49:35 +0000228 struct ip_tunnel_net *itn;
Eric Dumazetb71d1d42011-04-22 04:53:02 +0000229 const struct iphdr *iph;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700230 struct ip_tunnel *tunnel;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700231
Pravin B Shelarbda7bb42013-06-17 17:49:38 -0700232 if (tpi->proto == htons(ETH_P_TEB))
Pravin B Shelarc5441932013-03-25 14:49:35 +0000233 itn = net_generic(net, gre_tap_net_id);
234 else
235 itn = net_generic(net, ipgre_net_id);
236
Arnaldo Carvalho de Meloeddc9ec2007-04-20 22:47:35 -0700237 iph = ip_hdr(skb);
Pravin B Shelarbda7bb42013-06-17 17:49:38 -0700238 tunnel = ip_tunnel_lookup(itn, skb->dev->ifindex, tpi->flags,
239 iph->saddr, iph->daddr, tpi->key);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700240
stephen hemmingerd2083282012-09-24 18:12:23 +0000241 if (tunnel) {
Timo Teräs0e3da5b2013-12-16 11:02:09 +0200242 skb_pop_mac_header(skb);
Pravin B Shelar2e15ea32015-08-07 23:51:42 -0700243 if (tunnel->collect_md) {
244 struct ip_tunnel_info *info;
245
246 tun_dst = metadata_dst_alloc(0, GFP_ATOMIC);
247 if (!tun_dst)
248 return PACKET_REJECT;
249
250 info = &tun_dst->u.tun_info;
251 info->key.ipv4_src = iph->saddr;
252 info->key.ipv4_dst = iph->daddr;
253 info->key.ipv4_tos = iph->tos;
254 info->key.ipv4_ttl = iph->ttl;
255
256 info->mode = IP_TUNNEL_INFO_RX;
257 info->key.tun_flags = tpi->flags &
258 (TUNNEL_CSUM | TUNNEL_KEY);
259 info->key.tun_id = key_to_tunnel_id(tpi->key);
260
261 info->key.tp_src = 0;
262 info->key.tp_dst = 0;
263 }
264
265 ip_tunnel_rcv(tunnel, skb, tpi, tun_dst, log_ecn_error);
Pravin B Shelarbda7bb42013-06-17 17:49:38 -0700266 return PACKET_RCVD;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700267 }
Pravin B Shelarbda7bb42013-06-17 17:49:38 -0700268 return PACKET_REJECT;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700269}
270
Pravin B Shelar2e15ea32015-08-07 23:51:42 -0700271static void build_header(struct sk_buff *skb, int hdr_len, __be16 flags,
272 __be16 proto, __be32 key, __be32 seq)
273{
274 struct gre_base_hdr *greh;
275
276 skb_push(skb, hdr_len);
277
278 skb_reset_transport_header(skb);
279 greh = (struct gre_base_hdr *)skb->data;
280 greh->flags = tnl_flags_to_gre_flags(flags);
281 greh->protocol = proto;
282
283 if (flags & (TUNNEL_KEY | TUNNEL_CSUM | TUNNEL_SEQ)) {
284 __be32 *ptr = (__be32 *)(((u8 *)greh) + hdr_len - 4);
285
286 if (flags & TUNNEL_SEQ) {
287 *ptr = seq;
288 ptr--;
289 }
290 if (flags & TUNNEL_KEY) {
291 *ptr = key;
292 ptr--;
293 }
294 if (flags & TUNNEL_CSUM &&
295 !(skb_shinfo(skb)->gso_type &
296 (SKB_GSO_GRE | SKB_GSO_GRE_CSUM))) {
297 *ptr = 0;
298 *(__sum16 *)ptr = csum_fold(skb_checksum(skb, 0,
299 skb->len, 0));
300 }
301 }
302}
303
Pravin B Shelarc5441932013-03-25 14:49:35 +0000304static void __gre_xmit(struct sk_buff *skb, struct net_device *dev,
305 const struct iphdr *tnl_params,
306 __be16 proto)
307{
308 struct ip_tunnel *tunnel = netdev_priv(dev);
Pravin B Shelarc5441932013-03-25 14:49:35 +0000309
Pravin B Shelarc5441932013-03-25 14:49:35 +0000310 if (tunnel->parms.o_flags & TUNNEL_SEQ)
311 tunnel->o_seqno++;
Eric Dumazetcef401d2013-01-25 20:34:37 +0000312
Pravin B Shelarc5441932013-03-25 14:49:35 +0000313 /* Push GRE header. */
Pravin B Shelar2e15ea32015-08-07 23:51:42 -0700314 build_header(skb, tunnel->tun_hlen, tunnel->parms.o_flags,
315 proto, tunnel->parms.o_key, htonl(tunnel->o_seqno));
Linus Torvalds1da177e2005-04-16 15:20:36 -0700316
Pravin B Shelar2e15ea32015-08-07 23:51:42 -0700317 skb_set_inner_protocol(skb, proto);
Nicolas Dichtelbf3d6a82013-05-27 23:48:15 +0000318 ip_tunnel_xmit(skb, dev, tnl_params, tnl_params->protocol);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700319}
320
Pravin B Shelar2e15ea32015-08-07 23:51:42 -0700321static void gre_fb_xmit(struct sk_buff *skb, struct net_device *dev)
322{
323 struct ip_tunnel_info *tun_info;
324 struct net *net = dev_net(dev);
325 const struct ip_tunnel_key *key;
326 struct flowi4 fl;
327 struct rtable *rt;
328 int min_headroom;
329 int tunnel_hlen;
330 __be16 df, flags;
331 int err;
332
333 tun_info = skb_tunnel_info(skb, AF_INET);
334 if (unlikely(!tun_info || tun_info->mode != IP_TUNNEL_INFO_TX))
335 goto err_free_skb;
336
337 key = &tun_info->key;
338 memset(&fl, 0, sizeof(fl));
339 fl.daddr = key->ipv4_dst;
340 fl.saddr = key->ipv4_src;
341 fl.flowi4_tos = RT_TOS(key->ipv4_tos);
342 fl.flowi4_mark = skb->mark;
343 fl.flowi4_proto = IPPROTO_GRE;
344
345 rt = ip_route_output_key(net, &fl);
346 if (IS_ERR(rt))
347 goto err_free_skb;
348
349 tunnel_hlen = ip_gre_calc_hlen(key->tun_flags);
350
351 min_headroom = LL_RESERVED_SPACE(rt->dst.dev) + rt->dst.header_len
352 + tunnel_hlen + sizeof(struct iphdr);
353 if (skb_headroom(skb) < min_headroom || skb_header_cloned(skb)) {
354 int head_delta = SKB_DATA_ALIGN(min_headroom -
355 skb_headroom(skb) +
356 16);
357 err = pskb_expand_head(skb, max_t(int, head_delta, 0),
358 0, GFP_ATOMIC);
359 if (unlikely(err))
360 goto err_free_rt;
361 }
362
363 /* Push Tunnel header. */
364 skb = gre_handle_offloads(skb, !!(tun_info->key.tun_flags & TUNNEL_CSUM));
365 if (IS_ERR(skb)) {
366 skb = NULL;
367 goto err_free_rt;
368 }
369
370 flags = tun_info->key.tun_flags & (TUNNEL_CSUM | TUNNEL_KEY);
371 build_header(skb, tunnel_hlen, flags, htons(ETH_P_TEB),
372 tunnel_id_to_key(tun_info->key.tun_id), 0);
373
374 df = key->tun_flags & TUNNEL_DONT_FRAGMENT ? htons(IP_DF) : 0;
375 err = iptunnel_xmit(skb->sk, rt, skb, fl.saddr,
376 key->ipv4_dst, IPPROTO_GRE,
377 key->ipv4_tos, key->ipv4_ttl, df, false);
378 iptunnel_xmit_stats(err, &dev->stats, dev->tstats);
379 return;
380
381err_free_rt:
382 ip_rt_put(rt);
383err_free_skb:
384 kfree_skb(skb);
385 dev->stats.tx_dropped++;
386}
387
Pravin B Shelarc5441932013-03-25 14:49:35 +0000388static netdev_tx_t ipgre_xmit(struct sk_buff *skb,
389 struct net_device *dev)
Michal Schmidtee34c1e2007-12-13 09:46:32 -0800390{
Pravin B Shelarc5441932013-03-25 14:49:35 +0000391 struct ip_tunnel *tunnel = netdev_priv(dev);
392 const struct iphdr *tnl_params;
Michal Schmidtee34c1e2007-12-13 09:46:32 -0800393
Pravin B Shelar2e15ea32015-08-07 23:51:42 -0700394 if (tunnel->collect_md) {
395 gre_fb_xmit(skb, dev);
396 return NETDEV_TX_OK;
397 }
398
Pravin B Shelarc5441932013-03-25 14:49:35 +0000399 if (dev->header_ops) {
400 /* Need space for new headers */
401 if (skb_cow_head(skb, dev->needed_headroom -
Chen Gang2bac7cb2013-04-22 20:45:42 +0000402 (tunnel->hlen + sizeof(struct iphdr))))
Pravin B Shelarc5441932013-03-25 14:49:35 +0000403 goto free_skb;
Michal Schmidtee34c1e2007-12-13 09:46:32 -0800404
Pravin B Shelarc5441932013-03-25 14:49:35 +0000405 tnl_params = (const struct iphdr *)skb->data;
Eric Dumazete985aad2010-09-27 03:57:11 +0000406
Pravin B Shelarc5441932013-03-25 14:49:35 +0000407 /* Pull skb since ip_tunnel_xmit() needs skb->data pointing
408 * to gre header.
409 */
410 skb_pull(skb, tunnel->hlen + sizeof(struct iphdr));
Timo Teräs8a0033a2014-12-15 09:24:13 +0200411 skb_reset_mac_header(skb);
Pravin B Shelarc5441932013-03-25 14:49:35 +0000412 } else {
413 if (skb_cow_head(skb, dev->needed_headroom))
414 goto free_skb;
Herbert Xue1a80002008-10-09 12:00:17 -0700415
Pravin B Shelarc5441932013-03-25 14:49:35 +0000416 tnl_params = &tunnel->parms.iph;
Michal Schmidtee34c1e2007-12-13 09:46:32 -0800417 }
418
Timo Teräs8a0033a2014-12-15 09:24:13 +0200419 skb = gre_handle_offloads(skb, !!(tunnel->parms.o_flags&TUNNEL_CSUM));
420 if (IS_ERR(skb))
421 goto out;
422
Pravin B Shelarc5441932013-03-25 14:49:35 +0000423 __gre_xmit(skb, dev, tnl_params, skb->protocol);
Pravin B Shelarc5441932013-03-25 14:49:35 +0000424 return NETDEV_TX_OK;
Michal Schmidtee34c1e2007-12-13 09:46:32 -0800425
Pravin B Shelarc5441932013-03-25 14:49:35 +0000426free_skb:
Eric Dumazet3acfa1e2014-01-18 18:27:49 -0800427 kfree_skb(skb);
Pravin B Shelarc5441932013-03-25 14:49:35 +0000428out:
429 dev->stats.tx_dropped++;
430 return NETDEV_TX_OK;
Michal Schmidtee34c1e2007-12-13 09:46:32 -0800431}
432
Pravin B Shelarc5441932013-03-25 14:49:35 +0000433static netdev_tx_t gre_tap_xmit(struct sk_buff *skb,
434 struct net_device *dev)
435{
436 struct ip_tunnel *tunnel = netdev_priv(dev);
437
Pravin B Shelar2e15ea32015-08-07 23:51:42 -0700438 if (tunnel->collect_md) {
439 gre_fb_xmit(skb, dev);
440 return NETDEV_TX_OK;
441 }
442
Pravin B Shelar45f2e992013-06-17 17:49:51 -0700443 skb = gre_handle_offloads(skb, !!(tunnel->parms.o_flags&TUNNEL_CSUM));
Pravin B Shelarc5441932013-03-25 14:49:35 +0000444 if (IS_ERR(skb))
445 goto out;
446
447 if (skb_cow_head(skb, dev->needed_headroom))
448 goto free_skb;
449
450 __gre_xmit(skb, dev, &tunnel->parms.iph, htons(ETH_P_TEB));
Pravin B Shelarc5441932013-03-25 14:49:35 +0000451 return NETDEV_TX_OK;
452
453free_skb:
Eric Dumazet3acfa1e2014-01-18 18:27:49 -0800454 kfree_skb(skb);
Pravin B Shelarc5441932013-03-25 14:49:35 +0000455out:
456 dev->stats.tx_dropped++;
457 return NETDEV_TX_OK;
458}
459
460static int ipgre_tunnel_ioctl(struct net_device *dev,
461 struct ifreq *ifr, int cmd)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700462{
Tom Herbert4565e992014-09-17 12:26:01 -0700463 int err;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700464 struct ip_tunnel_parm p;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700465
Pravin B Shelarc5441932013-03-25 14:49:35 +0000466 if (copy_from_user(&p, ifr->ifr_ifru.ifru_data, sizeof(p)))
467 return -EFAULT;
Cong Wang6c734fb2013-06-29 12:02:59 +0800468 if (cmd == SIOCADDTUNNEL || cmd == SIOCCHGTUNNEL) {
469 if (p.iph.version != 4 || p.iph.protocol != IPPROTO_GRE ||
470 p.iph.ihl != 5 || (p.iph.frag_off&htons(~IP_DF)) ||
471 ((p.i_flags|p.o_flags)&(GRE_VERSION|GRE_ROUTING)))
472 return -EINVAL;
Pravin B Shelarc5441932013-03-25 14:49:35 +0000473 }
474 p.i_flags = gre_flags_to_tnl_flags(p.i_flags);
475 p.o_flags = gre_flags_to_tnl_flags(p.o_flags);
476
477 err = ip_tunnel_ioctl(dev, &p, cmd);
478 if (err)
479 return err;
480
481 p.i_flags = tnl_flags_to_gre_flags(p.i_flags);
482 p.o_flags = tnl_flags_to_gre_flags(p.o_flags);
483
484 if (copy_to_user(ifr->ifr_ifru.ifru_data, &p, sizeof(p)))
485 return -EFAULT;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700486 return 0;
487}
488
Linus Torvalds1da177e2005-04-16 15:20:36 -0700489/* Nice toy. Unfortunately, useless in real life :-)
490 It allows to construct virtual multiprotocol broadcast "LAN"
491 over the Internet, provided multicast routing is tuned.
492
493
494 I have no idea was this bicycle invented before me,
495 so that I had to set ARPHRD_IPGRE to a random value.
496 I have an impression, that Cisco could make something similar,
497 but this feature is apparently missing in IOS<=11.2(8).
YOSHIFUJI Hideakie905a9e2007-02-09 23:24:47 +0900498
Linus Torvalds1da177e2005-04-16 15:20:36 -0700499 I set up 10.66.66/24 and fec0:6666:6666::0/96 as virtual networks
500 with broadcast 224.66.66.66. If you have access to mbone, play with me :-)
501
502 ping -t 255 224.66.66.66
503
504 If nobody answers, mbone does not work.
505
506 ip tunnel add Universe mode gre remote 224.66.66.66 local <Your_real_addr> ttl 255
507 ip addr add 10.66.66.<somewhat>/24 dev Universe
508 ifconfig Universe up
509 ifconfig Universe add fe80::<Your_real_addr>/10
510 ifconfig Universe add fec0:6666:6666::<Your_real_addr>/96
511 ftp 10.66.66.66
512 ...
513 ftp fec0:6666:6666::193.233.7.65
514 ...
Linus Torvalds1da177e2005-04-16 15:20:36 -0700515 */
Stephen Hemminger3b04ddd2007-10-09 01:40:57 -0700516static int ipgre_header(struct sk_buff *skb, struct net_device *dev,
517 unsigned short type,
Eric Dumazet15078502010-09-15 11:07:53 +0000518 const void *daddr, const void *saddr, unsigned int len)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700519{
Patrick McHardy2941a482006-01-08 22:05:26 -0800520 struct ip_tunnel *t = netdev_priv(dev);
Pravin B Shelarc5441932013-03-25 14:49:35 +0000521 struct iphdr *iph;
522 struct gre_base_hdr *greh;
523
524 iph = (struct iphdr *)skb_push(skb, t->hlen + sizeof(*iph));
525 greh = (struct gre_base_hdr *)(iph+1);
526 greh->flags = tnl_flags_to_gre_flags(t->parms.o_flags);
527 greh->protocol = htons(type);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700528
529 memcpy(iph, &t->parms.iph, sizeof(struct iphdr));
Linus Torvalds1da177e2005-04-16 15:20:36 -0700530
Pravin B Shelarc5441932013-03-25 14:49:35 +0000531 /* Set the source hardware address. */
Linus Torvalds1da177e2005-04-16 15:20:36 -0700532 if (saddr)
533 memcpy(&iph->saddr, saddr, 4);
Timo Teräs6d55cb92010-03-03 04:01:13 +0000534 if (daddr)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700535 memcpy(&iph->daddr, daddr, 4);
Timo Teräs6d55cb92010-03-03 04:01:13 +0000536 if (iph->daddr)
Timo Teräs77a482b2013-08-06 13:45:43 +0300537 return t->hlen + sizeof(*iph);
YOSHIFUJI Hideakie905a9e2007-02-09 23:24:47 +0900538
Pravin B Shelarc5441932013-03-25 14:49:35 +0000539 return -(t->hlen + sizeof(*iph));
Linus Torvalds1da177e2005-04-16 15:20:36 -0700540}
541
Timo Teras6a5f44d2007-10-23 20:31:53 -0700542static int ipgre_header_parse(const struct sk_buff *skb, unsigned char *haddr)
543{
Eric Dumazetb71d1d42011-04-22 04:53:02 +0000544 const struct iphdr *iph = (const struct iphdr *) skb_mac_header(skb);
Timo Teras6a5f44d2007-10-23 20:31:53 -0700545 memcpy(haddr, &iph->saddr, 4);
546 return 4;
547}
548
Stephen Hemminger3b04ddd2007-10-09 01:40:57 -0700549static const struct header_ops ipgre_header_ops = {
550 .create = ipgre_header,
Timo Teras6a5f44d2007-10-23 20:31:53 -0700551 .parse = ipgre_header_parse,
Stephen Hemminger3b04ddd2007-10-09 01:40:57 -0700552};
553
Timo Teras6a5f44d2007-10-23 20:31:53 -0700554#ifdef CONFIG_NET_IPGRE_BROADCAST
Linus Torvalds1da177e2005-04-16 15:20:36 -0700555static int ipgre_open(struct net_device *dev)
556{
Patrick McHardy2941a482006-01-08 22:05:26 -0800557 struct ip_tunnel *t = netdev_priv(dev);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700558
Joe Perchesf97c1e02007-12-16 13:45:43 -0800559 if (ipv4_is_multicast(t->parms.iph.daddr)) {
David S. Millercbb1e852011-05-04 12:33:34 -0700560 struct flowi4 fl4;
561 struct rtable *rt;
Eric Dumazete985aad2010-09-27 03:57:11 +0000562
Nicolas Dichtelb57708a2014-04-22 10:15:23 +0200563 rt = ip_route_output_gre(t->net, &fl4,
David S. Millercbb1e852011-05-04 12:33:34 -0700564 t->parms.iph.daddr,
565 t->parms.iph.saddr,
566 t->parms.o_key,
567 RT_TOS(t->parms.iph.tos),
568 t->parms.link);
David S. Millerb23dd4f2011-03-02 14:31:35 -0800569 if (IS_ERR(rt))
Linus Torvalds1da177e2005-04-16 15:20:36 -0700570 return -EADDRNOTAVAIL;
Changli Gaod8d1f302010-06-10 23:31:35 -0700571 dev = rt->dst.dev;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700572 ip_rt_put(rt);
Ian Morris51456b22015-04-03 09:17:26 +0100573 if (!__in_dev_get_rtnl(dev))
Linus Torvalds1da177e2005-04-16 15:20:36 -0700574 return -EADDRNOTAVAIL;
575 t->mlink = dev->ifindex;
Herbert Xue5ed6392005-10-03 14:35:55 -0700576 ip_mc_inc_group(__in_dev_get_rtnl(dev), t->parms.iph.daddr);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700577 }
578 return 0;
579}
580
581static int ipgre_close(struct net_device *dev)
582{
Patrick McHardy2941a482006-01-08 22:05:26 -0800583 struct ip_tunnel *t = netdev_priv(dev);
Stephen Hemmingerb8c26a32008-11-20 20:34:29 -0800584
Joe Perchesf97c1e02007-12-16 13:45:43 -0800585 if (ipv4_is_multicast(t->parms.iph.daddr) && t->mlink) {
Denis V. Lunev7fee0ca2008-01-21 17:32:38 -0800586 struct in_device *in_dev;
Nicolas Dichtelb57708a2014-04-22 10:15:23 +0200587 in_dev = inetdev_by_index(t->net, t->mlink);
Eric Dumazet8723e1b2010-10-19 00:39:26 +0000588 if (in_dev)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700589 ip_mc_dec_group(in_dev, t->parms.iph.daddr);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700590 }
591 return 0;
592}
Linus Torvalds1da177e2005-04-16 15:20:36 -0700593#endif
594
Stephen Hemmingerb8c26a32008-11-20 20:34:29 -0800595static const struct net_device_ops ipgre_netdev_ops = {
596 .ndo_init = ipgre_tunnel_init,
Pravin B Shelarc5441932013-03-25 14:49:35 +0000597 .ndo_uninit = ip_tunnel_uninit,
Stephen Hemmingerb8c26a32008-11-20 20:34:29 -0800598#ifdef CONFIG_NET_IPGRE_BROADCAST
599 .ndo_open = ipgre_open,
600 .ndo_stop = ipgre_close,
601#endif
Pravin B Shelarc5441932013-03-25 14:49:35 +0000602 .ndo_start_xmit = ipgre_xmit,
Stephen Hemmingerb8c26a32008-11-20 20:34:29 -0800603 .ndo_do_ioctl = ipgre_tunnel_ioctl,
Pravin B Shelarc5441932013-03-25 14:49:35 +0000604 .ndo_change_mtu = ip_tunnel_change_mtu,
605 .ndo_get_stats64 = ip_tunnel_get_stats64,
Nicolas Dichtel1e995842015-04-02 17:07:02 +0200606 .ndo_get_iflink = ip_tunnel_get_iflink,
Stephen Hemmingerb8c26a32008-11-20 20:34:29 -0800607};
608
Eric Dumazet6b78f162012-09-13 21:25:33 +0000609#define GRE_FEATURES (NETIF_F_SG | \
610 NETIF_F_FRAGLIST | \
611 NETIF_F_HIGHDMA | \
612 NETIF_F_HW_CSUM)
613
Linus Torvalds1da177e2005-04-16 15:20:36 -0700614static void ipgre_tunnel_setup(struct net_device *dev)
615{
Stephen Hemmingerb8c26a32008-11-20 20:34:29 -0800616 dev->netdev_ops = &ipgre_netdev_ops;
Nicolas Dichtel5a455272014-04-11 15:51:18 +0200617 dev->type = ARPHRD_IPGRE;
Pravin B Shelarc5441932013-03-25 14:49:35 +0000618 ip_tunnel_setup(dev, ipgre_net_id);
619}
Linus Torvalds1da177e2005-04-16 15:20:36 -0700620
Pravin B Shelarc5441932013-03-25 14:49:35 +0000621static void __gre_tunnel_init(struct net_device *dev)
622{
623 struct ip_tunnel *tunnel;
Tom Herbert4565e992014-09-17 12:26:01 -0700624 int t_hlen;
Pravin B Shelarc5441932013-03-25 14:49:35 +0000625
626 tunnel = netdev_priv(dev);
Tom Herbert4565e992014-09-17 12:26:01 -0700627 tunnel->tun_hlen = ip_gre_calc_hlen(tunnel->parms.o_flags);
Pravin B Shelarc5441932013-03-25 14:49:35 +0000628 tunnel->parms.iph.protocol = IPPROTO_GRE;
629
Tom Herbert4565e992014-09-17 12:26:01 -0700630 tunnel->hlen = tunnel->tun_hlen + tunnel->encap_hlen;
631
632 t_hlen = tunnel->hlen + sizeof(struct iphdr);
633
634 dev->needed_headroom = LL_MAX_HEADER + t_hlen + 4;
635 dev->mtu = ETH_DATA_LEN - t_hlen - 4;
Eric Dumazet6b78f162012-09-13 21:25:33 +0000636
Nicolas Dichtelb57708a2014-04-22 10:15:23 +0200637 dev->features |= GRE_FEATURES;
Eric Dumazet6b78f162012-09-13 21:25:33 +0000638 dev->hw_features |= GRE_FEATURES;
Pravin B Shelarc5441932013-03-25 14:49:35 +0000639
640 if (!(tunnel->parms.o_flags & TUNNEL_SEQ)) {
641 /* TCP offload with GRE SEQ is not supported. */
642 dev->features |= NETIF_F_GSO_SOFTWARE;
643 dev->hw_features |= NETIF_F_GSO_SOFTWARE;
644 /* Can use a lockless transmit, unless we generate
645 * output sequences
646 */
647 dev->features |= NETIF_F_LLTX;
648 }
Linus Torvalds1da177e2005-04-16 15:20:36 -0700649}
650
651static int ipgre_tunnel_init(struct net_device *dev)
652{
Pravin B Shelarc5441932013-03-25 14:49:35 +0000653 struct ip_tunnel *tunnel = netdev_priv(dev);
654 struct iphdr *iph = &tunnel->parms.iph;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700655
Pravin B Shelarc5441932013-03-25 14:49:35 +0000656 __gre_tunnel_init(dev);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700657
Pravin B Shelarc5441932013-03-25 14:49:35 +0000658 memcpy(dev->dev_addr, &iph->saddr, 4);
659 memcpy(dev->broadcast, &iph->daddr, 4);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700660
Pravin B Shelarc5441932013-03-25 14:49:35 +0000661 dev->flags = IFF_NOARP;
Eric Dumazet02875872014-10-05 18:38:35 -0700662 netif_keep_dst(dev);
Pravin B Shelarc5441932013-03-25 14:49:35 +0000663 dev->addr_len = 4;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700664
Linus Torvalds1da177e2005-04-16 15:20:36 -0700665 if (iph->daddr) {
Linus Torvalds1da177e2005-04-16 15:20:36 -0700666#ifdef CONFIG_NET_IPGRE_BROADCAST
Joe Perchesf97c1e02007-12-16 13:45:43 -0800667 if (ipv4_is_multicast(iph->daddr)) {
Linus Torvalds1da177e2005-04-16 15:20:36 -0700668 if (!iph->saddr)
669 return -EINVAL;
670 dev->flags = IFF_BROADCAST;
Stephen Hemminger3b04ddd2007-10-09 01:40:57 -0700671 dev->header_ops = &ipgre_header_ops;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700672 }
673#endif
Michal Schmidtee34c1e2007-12-13 09:46:32 -0800674 } else
Timo Teras6a5f44d2007-10-23 20:31:53 -0700675 dev->header_ops = &ipgre_header_ops;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700676
Pravin B Shelarc5441932013-03-25 14:49:35 +0000677 return ip_tunnel_init(dev);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700678}
679
Pravin B Shelarbda7bb42013-06-17 17:49:38 -0700680static struct gre_cisco_protocol ipgre_protocol = {
681 .handler = ipgre_rcv,
682 .err_handler = ipgre_err,
683 .priority = 0,
Linus Torvalds1da177e2005-04-16 15:20:36 -0700684};
685
Alexey Dobriyan2c8c1e72010-01-17 03:35:32 +0000686static int __net_init ipgre_init_net(struct net *net)
Pavel Emelyanov59a4c752008-04-16 01:08:53 -0700687{
Pravin B Shelarc5441932013-03-25 14:49:35 +0000688 return ip_tunnel_init_net(net, ipgre_net_id, &ipgre_link_ops, NULL);
Pavel Emelyanov59a4c752008-04-16 01:08:53 -0700689}
690
Alexey Dobriyan2c8c1e72010-01-17 03:35:32 +0000691static void __net_exit ipgre_exit_net(struct net *net)
Pavel Emelyanov59a4c752008-04-16 01:08:53 -0700692{
Pravin B Shelarc5441932013-03-25 14:49:35 +0000693 struct ip_tunnel_net *itn = net_generic(net, ipgre_net_id);
Nicolas Dichtel6c742e72013-08-13 17:51:11 +0200694 ip_tunnel_delete_net(itn, &ipgre_link_ops);
Pavel Emelyanov59a4c752008-04-16 01:08:53 -0700695}
696
697static struct pernet_operations ipgre_net_ops = {
698 .init = ipgre_init_net,
699 .exit = ipgre_exit_net,
Eric W. Biedermancfb8fbf2009-11-29 15:46:13 +0000700 .id = &ipgre_net_id,
Pravin B Shelarc5441932013-03-25 14:49:35 +0000701 .size = sizeof(struct ip_tunnel_net),
Pavel Emelyanov59a4c752008-04-16 01:08:53 -0700702};
Linus Torvalds1da177e2005-04-16 15:20:36 -0700703
Herbert Xuc19e6542008-10-09 11:59:55 -0700704static int ipgre_tunnel_validate(struct nlattr *tb[], struct nlattr *data[])
705{
706 __be16 flags;
707
708 if (!data)
709 return 0;
710
711 flags = 0;
712 if (data[IFLA_GRE_IFLAGS])
713 flags |= nla_get_be16(data[IFLA_GRE_IFLAGS]);
714 if (data[IFLA_GRE_OFLAGS])
715 flags |= nla_get_be16(data[IFLA_GRE_OFLAGS]);
716 if (flags & (GRE_VERSION|GRE_ROUTING))
717 return -EINVAL;
718
719 return 0;
720}
721
Herbert Xue1a80002008-10-09 12:00:17 -0700722static int ipgre_tap_validate(struct nlattr *tb[], struct nlattr *data[])
723{
724 __be32 daddr;
725
726 if (tb[IFLA_ADDRESS]) {
727 if (nla_len(tb[IFLA_ADDRESS]) != ETH_ALEN)
728 return -EINVAL;
729 if (!is_valid_ether_addr(nla_data(tb[IFLA_ADDRESS])))
730 return -EADDRNOTAVAIL;
731 }
732
733 if (!data)
734 goto out;
735
736 if (data[IFLA_GRE_REMOTE]) {
737 memcpy(&daddr, nla_data(data[IFLA_GRE_REMOTE]), 4);
738 if (!daddr)
739 return -EINVAL;
740 }
741
742out:
743 return ipgre_tunnel_validate(tb, data);
744}
745
Pravin B Shelar2e15ea32015-08-07 23:51:42 -0700746static void ipgre_netlink_parms(struct net_device *dev,
747 struct nlattr *data[],
748 struct nlattr *tb[],
749 struct ip_tunnel_parm *parms)
Herbert Xuc19e6542008-10-09 11:59:55 -0700750{
Herbert Xu7bb82d92008-10-11 12:20:15 -0700751 memset(parms, 0, sizeof(*parms));
Herbert Xuc19e6542008-10-09 11:59:55 -0700752
753 parms->iph.protocol = IPPROTO_GRE;
754
755 if (!data)
756 return;
757
758 if (data[IFLA_GRE_LINK])
759 parms->link = nla_get_u32(data[IFLA_GRE_LINK]);
760
761 if (data[IFLA_GRE_IFLAGS])
Pravin B Shelarc5441932013-03-25 14:49:35 +0000762 parms->i_flags = gre_flags_to_tnl_flags(nla_get_be16(data[IFLA_GRE_IFLAGS]));
Herbert Xuc19e6542008-10-09 11:59:55 -0700763
764 if (data[IFLA_GRE_OFLAGS])
Pravin B Shelarc5441932013-03-25 14:49:35 +0000765 parms->o_flags = gre_flags_to_tnl_flags(nla_get_be16(data[IFLA_GRE_OFLAGS]));
Herbert Xuc19e6542008-10-09 11:59:55 -0700766
767 if (data[IFLA_GRE_IKEY])
768 parms->i_key = nla_get_be32(data[IFLA_GRE_IKEY]);
769
770 if (data[IFLA_GRE_OKEY])
771 parms->o_key = nla_get_be32(data[IFLA_GRE_OKEY]);
772
773 if (data[IFLA_GRE_LOCAL])
Jiri Benc67b61f62015-03-29 16:59:26 +0200774 parms->iph.saddr = nla_get_in_addr(data[IFLA_GRE_LOCAL]);
Herbert Xuc19e6542008-10-09 11:59:55 -0700775
776 if (data[IFLA_GRE_REMOTE])
Jiri Benc67b61f62015-03-29 16:59:26 +0200777 parms->iph.daddr = nla_get_in_addr(data[IFLA_GRE_REMOTE]);
Herbert Xuc19e6542008-10-09 11:59:55 -0700778
779 if (data[IFLA_GRE_TTL])
780 parms->iph.ttl = nla_get_u8(data[IFLA_GRE_TTL]);
781
782 if (data[IFLA_GRE_TOS])
783 parms->iph.tos = nla_get_u8(data[IFLA_GRE_TOS]);
784
785 if (!data[IFLA_GRE_PMTUDISC] || nla_get_u8(data[IFLA_GRE_PMTUDISC]))
786 parms->iph.frag_off = htons(IP_DF);
Pravin B Shelar2e15ea32015-08-07 23:51:42 -0700787
788 if (data[IFLA_GRE_COLLECT_METADATA]) {
789 struct ip_tunnel *t = netdev_priv(dev);
790
791 t->collect_md = true;
792 }
Herbert Xuc19e6542008-10-09 11:59:55 -0700793}
794
Tom Herbert4565e992014-09-17 12:26:01 -0700795/* This function returns true when ENCAP attributes are present in the nl msg */
796static bool ipgre_netlink_encap_parms(struct nlattr *data[],
797 struct ip_tunnel_encap *ipencap)
798{
799 bool ret = false;
800
801 memset(ipencap, 0, sizeof(*ipencap));
802
803 if (!data)
804 return ret;
805
806 if (data[IFLA_GRE_ENCAP_TYPE]) {
807 ret = true;
808 ipencap->type = nla_get_u16(data[IFLA_GRE_ENCAP_TYPE]);
809 }
810
811 if (data[IFLA_GRE_ENCAP_FLAGS]) {
812 ret = true;
813 ipencap->flags = nla_get_u16(data[IFLA_GRE_ENCAP_FLAGS]);
814 }
815
816 if (data[IFLA_GRE_ENCAP_SPORT]) {
817 ret = true;
Sabrina Dubroca3e97fa72015-02-06 17:22:22 +0100818 ipencap->sport = nla_get_be16(data[IFLA_GRE_ENCAP_SPORT]);
Tom Herbert4565e992014-09-17 12:26:01 -0700819 }
820
821 if (data[IFLA_GRE_ENCAP_DPORT]) {
822 ret = true;
Sabrina Dubroca3e97fa72015-02-06 17:22:22 +0100823 ipencap->dport = nla_get_be16(data[IFLA_GRE_ENCAP_DPORT]);
Tom Herbert4565e992014-09-17 12:26:01 -0700824 }
825
826 return ret;
827}
828
Pravin B Shelarc5441932013-03-25 14:49:35 +0000829static int gre_tap_init(struct net_device *dev)
Herbert Xue1a80002008-10-09 12:00:17 -0700830{
Pravin B Shelarc5441932013-03-25 14:49:35 +0000831 __gre_tunnel_init(dev);
stephen hemmingerbec94d42014-12-27 10:01:42 -0800832 dev->priv_flags |= IFF_LIVE_ADDR_CHANGE;
Herbert Xue1a80002008-10-09 12:00:17 -0700833
Pravin B Shelarc5441932013-03-25 14:49:35 +0000834 return ip_tunnel_init(dev);
Herbert Xue1a80002008-10-09 12:00:17 -0700835}
836
Pravin B Shelarc5441932013-03-25 14:49:35 +0000837static const struct net_device_ops gre_tap_netdev_ops = {
838 .ndo_init = gre_tap_init,
839 .ndo_uninit = ip_tunnel_uninit,
840 .ndo_start_xmit = gre_tap_xmit,
Stephen Hemmingerb8c26a32008-11-20 20:34:29 -0800841 .ndo_set_mac_address = eth_mac_addr,
842 .ndo_validate_addr = eth_validate_addr,
Pravin B Shelarc5441932013-03-25 14:49:35 +0000843 .ndo_change_mtu = ip_tunnel_change_mtu,
844 .ndo_get_stats64 = ip_tunnel_get_stats64,
Nicolas Dichtel1e995842015-04-02 17:07:02 +0200845 .ndo_get_iflink = ip_tunnel_get_iflink,
Stephen Hemmingerb8c26a32008-11-20 20:34:29 -0800846};
847
Herbert Xue1a80002008-10-09 12:00:17 -0700848static void ipgre_tap_setup(struct net_device *dev)
849{
Herbert Xue1a80002008-10-09 12:00:17 -0700850 ether_setup(dev);
Pravin B Shelarc5441932013-03-25 14:49:35 +0000851 dev->netdev_ops = &gre_tap_netdev_ops;
stephen hemmingerf8c1b7c2014-06-06 08:10:00 -0700852 dev->priv_flags |= IFF_LIVE_ADDR_CHANGE;
Pravin B Shelarc5441932013-03-25 14:49:35 +0000853 ip_tunnel_setup(dev, gre_tap_net_id);
Herbert Xue1a80002008-10-09 12:00:17 -0700854}
855
Pravin B Shelarc5441932013-03-25 14:49:35 +0000856static int ipgre_newlink(struct net *src_net, struct net_device *dev,
857 struct nlattr *tb[], struct nlattr *data[])
Herbert Xuc19e6542008-10-09 11:59:55 -0700858{
Pravin B Shelarc5441932013-03-25 14:49:35 +0000859 struct ip_tunnel_parm p;
Tom Herbert4565e992014-09-17 12:26:01 -0700860 struct ip_tunnel_encap ipencap;
861
862 if (ipgre_netlink_encap_parms(data, &ipencap)) {
863 struct ip_tunnel *t = netdev_priv(dev);
864 int err = ip_tunnel_encap_setup(t, &ipencap);
865
866 if (err < 0)
867 return err;
868 }
Herbert Xuc19e6542008-10-09 11:59:55 -0700869
Pravin B Shelar2e15ea32015-08-07 23:51:42 -0700870 ipgre_netlink_parms(dev, data, tb, &p);
Pravin B Shelarc5441932013-03-25 14:49:35 +0000871 return ip_tunnel_newlink(dev, tb, &p);
Herbert Xuc19e6542008-10-09 11:59:55 -0700872}
873
874static int ipgre_changelink(struct net_device *dev, struct nlattr *tb[],
875 struct nlattr *data[])
876{
Herbert Xuc19e6542008-10-09 11:59:55 -0700877 struct ip_tunnel_parm p;
Tom Herbert4565e992014-09-17 12:26:01 -0700878 struct ip_tunnel_encap ipencap;
879
880 if (ipgre_netlink_encap_parms(data, &ipencap)) {
881 struct ip_tunnel *t = netdev_priv(dev);
882 int err = ip_tunnel_encap_setup(t, &ipencap);
883
884 if (err < 0)
885 return err;
886 }
Herbert Xuc19e6542008-10-09 11:59:55 -0700887
Pravin B Shelar2e15ea32015-08-07 23:51:42 -0700888 ipgre_netlink_parms(dev, data, tb, &p);
Pravin B Shelarc5441932013-03-25 14:49:35 +0000889 return ip_tunnel_changelink(dev, tb, &p);
Herbert Xuc19e6542008-10-09 11:59:55 -0700890}
891
892static size_t ipgre_get_size(const struct net_device *dev)
893{
894 return
895 /* IFLA_GRE_LINK */
896 nla_total_size(4) +
897 /* IFLA_GRE_IFLAGS */
898 nla_total_size(2) +
899 /* IFLA_GRE_OFLAGS */
900 nla_total_size(2) +
901 /* IFLA_GRE_IKEY */
902 nla_total_size(4) +
903 /* IFLA_GRE_OKEY */
904 nla_total_size(4) +
905 /* IFLA_GRE_LOCAL */
906 nla_total_size(4) +
907 /* IFLA_GRE_REMOTE */
908 nla_total_size(4) +
909 /* IFLA_GRE_TTL */
910 nla_total_size(1) +
911 /* IFLA_GRE_TOS */
912 nla_total_size(1) +
913 /* IFLA_GRE_PMTUDISC */
914 nla_total_size(1) +
Tom Herbert4565e992014-09-17 12:26:01 -0700915 /* IFLA_GRE_ENCAP_TYPE */
916 nla_total_size(2) +
917 /* IFLA_GRE_ENCAP_FLAGS */
918 nla_total_size(2) +
919 /* IFLA_GRE_ENCAP_SPORT */
920 nla_total_size(2) +
921 /* IFLA_GRE_ENCAP_DPORT */
922 nla_total_size(2) +
Pravin B Shelar2e15ea32015-08-07 23:51:42 -0700923 /* IFLA_GRE_COLLECT_METADATA */
924 nla_total_size(0) +
Herbert Xuc19e6542008-10-09 11:59:55 -0700925 0;
926}
927
928static int ipgre_fill_info(struct sk_buff *skb, const struct net_device *dev)
929{
930 struct ip_tunnel *t = netdev_priv(dev);
931 struct ip_tunnel_parm *p = &t->parms;
932
David S. Millerf3756b72012-04-01 20:39:02 -0400933 if (nla_put_u32(skb, IFLA_GRE_LINK, p->link) ||
Pravin B Shelarc5441932013-03-25 14:49:35 +0000934 nla_put_be16(skb, IFLA_GRE_IFLAGS, tnl_flags_to_gre_flags(p->i_flags)) ||
935 nla_put_be16(skb, IFLA_GRE_OFLAGS, tnl_flags_to_gre_flags(p->o_flags)) ||
David S. Millerf3756b72012-04-01 20:39:02 -0400936 nla_put_be32(skb, IFLA_GRE_IKEY, p->i_key) ||
937 nla_put_be32(skb, IFLA_GRE_OKEY, p->o_key) ||
Jiri Benc930345e2015-03-29 16:59:25 +0200938 nla_put_in_addr(skb, IFLA_GRE_LOCAL, p->iph.saddr) ||
939 nla_put_in_addr(skb, IFLA_GRE_REMOTE, p->iph.daddr) ||
David S. Millerf3756b72012-04-01 20:39:02 -0400940 nla_put_u8(skb, IFLA_GRE_TTL, p->iph.ttl) ||
941 nla_put_u8(skb, IFLA_GRE_TOS, p->iph.tos) ||
942 nla_put_u8(skb, IFLA_GRE_PMTUDISC,
943 !!(p->iph.frag_off & htons(IP_DF))))
944 goto nla_put_failure;
Tom Herbert4565e992014-09-17 12:26:01 -0700945
946 if (nla_put_u16(skb, IFLA_GRE_ENCAP_TYPE,
947 t->encap.type) ||
Sabrina Dubroca3e97fa72015-02-06 17:22:22 +0100948 nla_put_be16(skb, IFLA_GRE_ENCAP_SPORT,
949 t->encap.sport) ||
950 nla_put_be16(skb, IFLA_GRE_ENCAP_DPORT,
951 t->encap.dport) ||
Tom Herbert4565e992014-09-17 12:26:01 -0700952 nla_put_u16(skb, IFLA_GRE_ENCAP_FLAGS,
Tom Herberte1b2cb62014-11-05 16:49:38 -0800953 t->encap.flags))
Tom Herbert4565e992014-09-17 12:26:01 -0700954 goto nla_put_failure;
955
Pravin B Shelar2e15ea32015-08-07 23:51:42 -0700956 if (t->collect_md) {
957 if (nla_put_flag(skb, IFLA_GRE_COLLECT_METADATA))
958 goto nla_put_failure;
959 }
960
Herbert Xuc19e6542008-10-09 11:59:55 -0700961 return 0;
962
963nla_put_failure:
964 return -EMSGSIZE;
965}
966
967static const struct nla_policy ipgre_policy[IFLA_GRE_MAX + 1] = {
968 [IFLA_GRE_LINK] = { .type = NLA_U32 },
969 [IFLA_GRE_IFLAGS] = { .type = NLA_U16 },
970 [IFLA_GRE_OFLAGS] = { .type = NLA_U16 },
971 [IFLA_GRE_IKEY] = { .type = NLA_U32 },
972 [IFLA_GRE_OKEY] = { .type = NLA_U32 },
Patrick McHardy4d74f8b2008-10-10 12:11:06 -0700973 [IFLA_GRE_LOCAL] = { .len = FIELD_SIZEOF(struct iphdr, saddr) },
974 [IFLA_GRE_REMOTE] = { .len = FIELD_SIZEOF(struct iphdr, daddr) },
Herbert Xuc19e6542008-10-09 11:59:55 -0700975 [IFLA_GRE_TTL] = { .type = NLA_U8 },
976 [IFLA_GRE_TOS] = { .type = NLA_U8 },
977 [IFLA_GRE_PMTUDISC] = { .type = NLA_U8 },
Tom Herbert4565e992014-09-17 12:26:01 -0700978 [IFLA_GRE_ENCAP_TYPE] = { .type = NLA_U16 },
979 [IFLA_GRE_ENCAP_FLAGS] = { .type = NLA_U16 },
980 [IFLA_GRE_ENCAP_SPORT] = { .type = NLA_U16 },
981 [IFLA_GRE_ENCAP_DPORT] = { .type = NLA_U16 },
Pravin B Shelar2e15ea32015-08-07 23:51:42 -0700982 [IFLA_GRE_COLLECT_METADATA] = { .type = NLA_FLAG },
Herbert Xuc19e6542008-10-09 11:59:55 -0700983};
984
985static struct rtnl_link_ops ipgre_link_ops __read_mostly = {
986 .kind = "gre",
987 .maxtype = IFLA_GRE_MAX,
988 .policy = ipgre_policy,
989 .priv_size = sizeof(struct ip_tunnel),
990 .setup = ipgre_tunnel_setup,
991 .validate = ipgre_tunnel_validate,
992 .newlink = ipgre_newlink,
993 .changelink = ipgre_changelink,
Pravin B Shelarc5441932013-03-25 14:49:35 +0000994 .dellink = ip_tunnel_dellink,
Herbert Xuc19e6542008-10-09 11:59:55 -0700995 .get_size = ipgre_get_size,
996 .fill_info = ipgre_fill_info,
Nicolas Dichtel1728d4f2015-01-15 15:11:17 +0100997 .get_link_net = ip_tunnel_get_link_net,
Herbert Xuc19e6542008-10-09 11:59:55 -0700998};
999
Herbert Xue1a80002008-10-09 12:00:17 -07001000static struct rtnl_link_ops ipgre_tap_ops __read_mostly = {
1001 .kind = "gretap",
1002 .maxtype = IFLA_GRE_MAX,
1003 .policy = ipgre_policy,
1004 .priv_size = sizeof(struct ip_tunnel),
1005 .setup = ipgre_tap_setup,
1006 .validate = ipgre_tap_validate,
1007 .newlink = ipgre_newlink,
1008 .changelink = ipgre_changelink,
Pravin B Shelarc5441932013-03-25 14:49:35 +00001009 .dellink = ip_tunnel_dellink,
Herbert Xue1a80002008-10-09 12:00:17 -07001010 .get_size = ipgre_get_size,
1011 .fill_info = ipgre_fill_info,
Nicolas Dichtel1728d4f2015-01-15 15:11:17 +01001012 .get_link_net = ip_tunnel_get_link_net,
Herbert Xue1a80002008-10-09 12:00:17 -07001013};
1014
Pravin B Shelarc5441932013-03-25 14:49:35 +00001015static int __net_init ipgre_tap_init_net(struct net *net)
1016{
Pravin B Shelar2e15ea32015-08-07 23:51:42 -07001017 return ip_tunnel_init_net(net, gre_tap_net_id, &ipgre_tap_ops, "gretap0");
Pravin B Shelarc5441932013-03-25 14:49:35 +00001018}
1019
1020static void __net_exit ipgre_tap_exit_net(struct net *net)
1021{
1022 struct ip_tunnel_net *itn = net_generic(net, gre_tap_net_id);
Nicolas Dichtel6c742e72013-08-13 17:51:11 +02001023 ip_tunnel_delete_net(itn, &ipgre_tap_ops);
Pravin B Shelarc5441932013-03-25 14:49:35 +00001024}
1025
1026static struct pernet_operations ipgre_tap_net_ops = {
1027 .init = ipgre_tap_init_net,
1028 .exit = ipgre_tap_exit_net,
1029 .id = &gre_tap_net_id,
1030 .size = sizeof(struct ip_tunnel_net),
1031};
Linus Torvalds1da177e2005-04-16 15:20:36 -07001032
1033static int __init ipgre_init(void)
1034{
1035 int err;
1036
Joe Perches058bd4d2012-03-11 18:36:11 +00001037 pr_info("GRE over IPv4 tunneling driver\n");
Linus Torvalds1da177e2005-04-16 15:20:36 -07001038
Eric W. Biedermancfb8fbf2009-11-29 15:46:13 +00001039 err = register_pernet_device(&ipgre_net_ops);
Pavel Emelyanov59a4c752008-04-16 01:08:53 -07001040 if (err < 0)
Alexey Dobriyanc2892f02010-02-16 07:57:44 +00001041 return err;
1042
Pravin B Shelarc5441932013-03-25 14:49:35 +00001043 err = register_pernet_device(&ipgre_tap_net_ops);
1044 if (err < 0)
1045 goto pnet_tap_faied;
1046
Pravin B Shelarbda7bb42013-06-17 17:49:38 -07001047 err = gre_cisco_register(&ipgre_protocol);
Alexey Dobriyanc2892f02010-02-16 07:57:44 +00001048 if (err < 0) {
Joe Perches058bd4d2012-03-11 18:36:11 +00001049 pr_info("%s: can't add protocol\n", __func__);
Alexey Dobriyanc2892f02010-02-16 07:57:44 +00001050 goto add_proto_failed;
1051 }
Pavel Emelyanov7daa0002008-04-16 01:10:05 -07001052
Herbert Xuc19e6542008-10-09 11:59:55 -07001053 err = rtnl_link_register(&ipgre_link_ops);
1054 if (err < 0)
1055 goto rtnl_link_failed;
1056
Herbert Xue1a80002008-10-09 12:00:17 -07001057 err = rtnl_link_register(&ipgre_tap_ops);
1058 if (err < 0)
1059 goto tap_ops_failed;
1060
Pravin B Shelarc5441932013-03-25 14:49:35 +00001061 return 0;
Herbert Xuc19e6542008-10-09 11:59:55 -07001062
Herbert Xue1a80002008-10-09 12:00:17 -07001063tap_ops_failed:
1064 rtnl_link_unregister(&ipgre_link_ops);
Herbert Xuc19e6542008-10-09 11:59:55 -07001065rtnl_link_failed:
Pravin B Shelarbda7bb42013-06-17 17:49:38 -07001066 gre_cisco_unregister(&ipgre_protocol);
Alexey Dobriyanc2892f02010-02-16 07:57:44 +00001067add_proto_failed:
Pravin B Shelarc5441932013-03-25 14:49:35 +00001068 unregister_pernet_device(&ipgre_tap_net_ops);
1069pnet_tap_faied:
Alexey Dobriyanc2892f02010-02-16 07:57:44 +00001070 unregister_pernet_device(&ipgre_net_ops);
Pravin B Shelarc5441932013-03-25 14:49:35 +00001071 return err;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001072}
1073
Alexey Kuznetsovdb445752005-07-30 17:46:44 -07001074static void __exit ipgre_fini(void)
Linus Torvalds1da177e2005-04-16 15:20:36 -07001075{
Herbert Xue1a80002008-10-09 12:00:17 -07001076 rtnl_link_unregister(&ipgre_tap_ops);
Herbert Xuc19e6542008-10-09 11:59:55 -07001077 rtnl_link_unregister(&ipgre_link_ops);
Pravin B Shelarbda7bb42013-06-17 17:49:38 -07001078 gre_cisco_unregister(&ipgre_protocol);
Pravin B Shelarc5441932013-03-25 14:49:35 +00001079 unregister_pernet_device(&ipgre_tap_net_ops);
Alexey Dobriyanc2892f02010-02-16 07:57:44 +00001080 unregister_pernet_device(&ipgre_net_ops);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001081}
1082
1083module_init(ipgre_init);
1084module_exit(ipgre_fini);
1085MODULE_LICENSE("GPL");
Patrick McHardy4d74f8b2008-10-10 12:11:06 -07001086MODULE_ALIAS_RTNL_LINK("gre");
1087MODULE_ALIAS_RTNL_LINK("gretap");
Vasiliy Kulikov8909c9a2011-03-02 00:33:13 +03001088MODULE_ALIAS_NETDEV("gre0");
Pravin B Shelarc5441932013-03-25 14:49:35 +00001089MODULE_ALIAS_NETDEV("gretap0");