blob: 1c3035dda31f66a33d50cf2617d3a70288812383 [file] [log] [blame]
Yasuyuki Kozakaiecfab2c2007-07-07 22:23:21 -07001#ifndef _NF_CONNTRACK_EXTEND_H
2#define _NF_CONNTRACK_EXTEND_H
3
Tejun Heo5a0e3ad2010-03-24 17:04:11 +09004#include <linux/slab.h>
5
Yasuyuki Kozakaiecfab2c2007-07-07 22:23:21 -07006#include <net/netfilter/nf_conntrack.h>
7
Eric Dumazetfd2c3ef2009-11-03 03:26:03 +00008enum nf_ct_ext_id {
Yasuyuki Kozakaiceceae12007-07-07 22:23:42 -07009 NF_CT_EXT_HELPER,
Changli Gaoe0e76c82010-11-15 12:23:24 +010010#if defined(CONFIG_NF_NAT) || defined(CONFIG_NF_NAT_MODULE)
Yasuyuki Kozakai2d59e5c2007-07-07 22:24:28 -070011 NF_CT_EXT_NAT,
Changli Gaoe0e76c82010-11-15 12:23:24 +010012#endif
Patrick McHardy48b1de42013-08-27 08:50:14 +020013 NF_CT_EXT_SEQADJ,
Krzysztof Piotr Oledzki58401572008-07-21 10:01:34 -070014 NF_CT_EXT_ACCT,
Changli Gaoe0e76c82010-11-15 12:23:24 +010015#ifdef CONFIG_NF_CONNTRACK_EVENTS
Pablo Neira Ayusoa0891aa2009-06-13 12:26:29 +020016 NF_CT_EXT_ECACHE,
Changli Gaoe0e76c82010-11-15 12:23:24 +010017#endif
Pablo Neira Ayusoa992ca22011-01-19 16:00:07 +010018#ifdef CONFIG_NF_CONNTRACK_TIMESTAMP
19 NF_CT_EXT_TSTAMP,
20#endif
Pablo Neira Ayusodd705072012-02-28 23:36:48 +010021#ifdef CONFIG_NF_CONNTRACK_TIMEOUT
22 NF_CT_EXT_TIMEOUT,
23#endif
Florian Westphalc539f012013-01-11 06:30:44 +000024#ifdef CONFIG_NF_CONNTRACK_LABELS
25 NF_CT_EXT_LABELS,
26#endif
Patrick McHardy48b1de42013-08-27 08:50:14 +020027#if IS_ENABLED(CONFIG_NETFILTER_SYNPROXY)
28 NF_CT_EXT_SYNPROXY,
29#endif
Yasuyuki Kozakaiecfab2c2007-07-07 22:23:21 -070030 NF_CT_EXT_NUM,
31};
32
Yasuyuki Kozakaiceceae12007-07-07 22:23:42 -070033#define NF_CT_EXT_HELPER_TYPE struct nf_conn_help
Yasuyuki Kozakai2d59e5c2007-07-07 22:24:28 -070034#define NF_CT_EXT_NAT_TYPE struct nf_conn_nat
Patrick McHardy41d73ec2013-08-27 08:50:12 +020035#define NF_CT_EXT_SEQADJ_TYPE struct nf_conn_seqadj
Holger Eitzenbergerf7b13e42013-09-26 17:31:51 +020036#define NF_CT_EXT_ACCT_TYPE struct nf_conn_acct
Pablo Neira Ayusoa0891aa2009-06-13 12:26:29 +020037#define NF_CT_EXT_ECACHE_TYPE struct nf_conntrack_ecache
Pablo Neira Ayusoa992ca22011-01-19 16:00:07 +010038#define NF_CT_EXT_TSTAMP_TYPE struct nf_conn_tstamp
Pablo Neira Ayusodd705072012-02-28 23:36:48 +010039#define NF_CT_EXT_TIMEOUT_TYPE struct nf_conn_timeout
Florian Westphalc539f012013-01-11 06:30:44 +000040#define NF_CT_EXT_LABELS_TYPE struct nf_conn_labels
Patrick McHardy48b1de42013-08-27 08:50:14 +020041#define NF_CT_EXT_SYNPROXY_TYPE struct nf_conn_synproxy
Yasuyuki Kozakaiceceae12007-07-07 22:23:42 -070042
Yasuyuki Kozakaiecfab2c2007-07-07 22:23:21 -070043/* Extensions: optional stuff which isn't permanently in struct. */
44struct nf_ct_ext {
Patrick McHardy68b80f12008-06-17 15:51:47 -070045 struct rcu_head rcu;
Andrey Vagin223b02d2014-03-28 13:54:32 +040046 u16 offset[NF_CT_EXT_NUM];
47 u16 len;
Yasuyuki Kozakaiecfab2c2007-07-07 22:23:21 -070048 char data[0];
49};
50
Changli Gaoee92d372010-08-02 17:06:19 +020051static inline bool __nf_ct_ext_exist(const struct nf_ct_ext *ext, u8 id)
Yasuyuki Kozakaiecfab2c2007-07-07 22:23:21 -070052{
Changli Gaoee92d372010-08-02 17:06:19 +020053 return !!ext->offset[id];
54}
55
56static inline bool nf_ct_ext_exist(const struct nf_conn *ct, u8 id)
57{
58 return (ct->ext && __nf_ct_ext_exist(ct->ext, id));
Yasuyuki Kozakaiecfab2c2007-07-07 22:23:21 -070059}
60
61static inline void *__nf_ct_ext_find(const struct nf_conn *ct, u8 id)
62{
63 if (!nf_ct_ext_exist(ct, id))
64 return NULL;
65
66 return (void *)ct->ext + ct->ext->offset[id];
67}
68#define nf_ct_ext_find(ext, id) \
69 ((id##_TYPE *)__nf_ct_ext_find((ext), (id)))
70
71/* Destroy all relationships */
Joe Perches4e77be42013-09-23 11:37:48 -070072void __nf_ct_ext_destroy(struct nf_conn *ct);
Yasuyuki Kozakaiecfab2c2007-07-07 22:23:21 -070073static inline void nf_ct_ext_destroy(struct nf_conn *ct)
74{
75 if (ct->ext)
76 __nf_ct_ext_destroy(ct);
77}
78
79/* Free operation. If you want to free a object referred from private area,
80 * please implement __nf_ct_ext_free() and call it.
81 */
82static inline void nf_ct_ext_free(struct nf_conn *ct)
83{
84 if (ct->ext)
Michal Kubečekc13a84a2013-09-11 10:17:27 +020085 kfree_rcu(ct->ext, rcu);
Yasuyuki Kozakaiecfab2c2007-07-07 22:23:21 -070086}
87
88/* Add this type, returns pointer to data or NULL. */
Pablo Neira Ayuso3cf4c7e2012-02-01 16:18:31 +010089void *__nf_ct_ext_add_length(struct nf_conn *ct, enum nf_ct_ext_id id,
90 size_t var_alloc_len, gfp_t gfp);
91
Yasuyuki Kozakaiecfab2c2007-07-07 22:23:21 -070092#define nf_ct_ext_add(ct, id, gfp) \
Pablo Neira Ayuso3cf4c7e2012-02-01 16:18:31 +010093 ((id##_TYPE *)__nf_ct_ext_add_length((ct), (id), 0, (gfp)))
94#define nf_ct_ext_add_length(ct, id, len, gfp) \
95 ((id##_TYPE *)__nf_ct_ext_add_length((ct), (id), (len), (gfp)))
Yasuyuki Kozakaiecfab2c2007-07-07 22:23:21 -070096
97#define NF_CT_EXT_F_PREALLOC 0x0001
98
Eric Dumazetfd2c3ef2009-11-03 03:26:03 +000099struct nf_ct_ext_type {
Yasuyuki Kozakaiecfab2c2007-07-07 22:23:21 -0700100 /* Destroys relationships (can be NULL). */
101 void (*destroy)(struct nf_conn *ct);
Yasuyuki Kozakaiecfab2c2007-07-07 22:23:21 -0700102
103 enum nf_ct_ext_id id;
104
105 unsigned int flags;
106
107 /* Length and min alignment. */
108 u8 len;
109 u8 align;
110 /* initial size of nf_ct_ext. */
111 u8 alloc_size;
112};
113
114int nf_ct_extend_register(struct nf_ct_ext_type *type);
115void nf_ct_extend_unregister(struct nf_ct_ext_type *type);
116#endif /* _NF_CONNTRACK_EXTEND_H */