blob: 3a4ad7d82f6765f167d8ddfc7434baf6a5373da3 [file] [log] [blame]
Linus Torvalds1da177e2005-04-16 15:20:36 -07001/*
YOSHIFUJI Hideakie905a9e2007-02-09 23:24:47 +09002 * Linux NET3: IP/IP protocol decoder.
Linus Torvalds1da177e2005-04-16 15:20:36 -07003 *
Linus Torvalds1da177e2005-04-16 15:20:36 -07004 * Authors:
5 * Sam Lantinga (slouken@cs.ucdavis.edu) 02/01/95
6 *
7 * Fixes:
8 * Alan Cox : Merged and made usable non modular (its so tiny its silly as
9 * a module taking up 2 pages).
10 * Alan Cox : Fixed bug with 1.3.18 and IPIP not working (now needs to set skb->h.iph)
11 * to keep ip_forward happy.
12 * Alan Cox : More fixes for 1.3.21, and firewall fix. Maybe this will work soon 8).
13 * Kai Schulte : Fixed #defines for IP_FIREWALL->FIREWALL
14 * David Woodhouse : Perform some basic ICMP handling.
15 * IPIP Routing without decapsulation.
16 * Carlos Picoto : GRE over IP support
17 * Alexey Kuznetsov: Reworked. Really, now it is truncated version of ipv4/ip_gre.c.
18 * I do not want to merge them together.
19 *
20 * This program is free software; you can redistribute it and/or
21 * modify it under the terms of the GNU General Public License
22 * as published by the Free Software Foundation; either version
23 * 2 of the License, or (at your option) any later version.
24 *
25 */
26
27/* tunnel.c: an IP tunnel driver
28
29 The purpose of this driver is to provide an IP tunnel through
30 which you can tunnel network traffic transparently across subnets.
31
32 This was written by looking at Nick Holloway's dummy driver
33 Thanks for the great code!
34
35 -Sam Lantinga (slouken@cs.ucdavis.edu) 02/01/95
YOSHIFUJI Hideakie905a9e2007-02-09 23:24:47 +090036
Linus Torvalds1da177e2005-04-16 15:20:36 -070037 Minor tweaks:
38 Cleaned up the code a little and added some pre-1.3.0 tweaks.
39 dev->hard_header/hard_header_len changed to use no headers.
40 Comments/bracketing tweaked.
41 Made the tunnels use dev->name not tunnel: when error reporting.
42 Added tx_dropped stat
YOSHIFUJI Hideakie905a9e2007-02-09 23:24:47 +090043
Alan Cox113aa832008-10-13 19:01:08 -070044 -Alan Cox (alan@lxorguk.ukuu.org.uk) 21 March 95
Linus Torvalds1da177e2005-04-16 15:20:36 -070045
46 Reworked:
47 Changed to tunnel to destination gateway in addition to the
48 tunnel's pointopoint address
49 Almost completely rewritten
50 Note: There is currently no firewall or ICMP handling done.
51
52 -Sam Lantinga (slouken@cs.ucdavis.edu) 02/13/96
YOSHIFUJI Hideakie905a9e2007-02-09 23:24:47 +090053
Linus Torvalds1da177e2005-04-16 15:20:36 -070054*/
55
56/* Things I wish I had known when writing the tunnel driver:
57
58 When the tunnel_xmit() function is called, the skb contains the
59 packet to be sent (plus a great deal of extra info), and dev
60 contains the tunnel device that _we_ are.
61
62 When we are passed a packet, we are expected to fill in the
63 source address with our source IP address.
64
65 What is the proper way to allocate, copy and free a buffer?
66 After you allocate it, it is a "0 length" chunk of memory
67 starting at zero. If you want to add headers to the buffer
68 later, you'll have to call "skb_reserve(skb, amount)" with
69 the amount of memory you want reserved. Then, you call
70 "skb_put(skb, amount)" with the amount of space you want in
71 the buffer. skb_put() returns a pointer to the top (#0) of
72 that buffer. skb->len is set to the amount of space you have
73 "allocated" with skb_put(). You can then write up to skb->len
74 bytes to that buffer. If you need more, you can call skb_put()
75 again with the additional amount of space you need. You can
YOSHIFUJI Hideakie905a9e2007-02-09 23:24:47 +090076 find out how much more space you can allocate by calling
Linus Torvalds1da177e2005-04-16 15:20:36 -070077 "skb_tailroom(skb)".
78 Now, to add header space, call "skb_push(skb, header_len)".
79 This creates space at the beginning of the buffer and returns
80 a pointer to this new space. If later you need to strip a
81 header from a buffer, call "skb_pull(skb, header_len)".
82 skb_headroom() will return how much space is left at the top
83 of the buffer (before the main data). Remember, this headroom
84 space must be reserved before the skb_put() function is called.
85 */
86
87/*
88 This version of net/ipv4/ipip.c is cloned of net/ipv4/ip_gre.c
89
90 For comments look at net/ipv4/ip_gre.c --ANK
91 */
92
YOSHIFUJI Hideakie905a9e2007-02-09 23:24:47 +090093
Randy Dunlap4fc268d2006-01-11 12:17:47 -080094#include <linux/capability.h>
Linus Torvalds1da177e2005-04-16 15:20:36 -070095#include <linux/module.h>
96#include <linux/types.h>
Linus Torvalds1da177e2005-04-16 15:20:36 -070097#include <linux/kernel.h>
Tejun Heo5a0e3ad2010-03-24 17:04:11 +090098#include <linux/slab.h>
Linus Torvalds1da177e2005-04-16 15:20:36 -070099#include <asm/uaccess.h>
100#include <linux/skbuff.h>
101#include <linux/netdevice.h>
102#include <linux/in.h>
103#include <linux/tcp.h>
104#include <linux/udp.h>
105#include <linux/if_arp.h>
106#include <linux/mroute.h>
107#include <linux/init.h>
108#include <linux/netfilter_ipv4.h>
Kris Katterjohn46f25df2006-01-05 16:35:42 -0800109#include <linux/if_ether.h>
Linus Torvalds1da177e2005-04-16 15:20:36 -0700110
111#include <net/sock.h>
112#include <net/ip.h>
113#include <net/icmp.h>
Linus Torvalds1da177e2005-04-16 15:20:36 -0700114#include <net/ipip.h>
115#include <net/inet_ecn.h>
116#include <net/xfrm.h>
Pavel Emelyanov10dc4c72008-04-16 01:03:13 -0700117#include <net/net_namespace.h>
118#include <net/netns/generic.h>
Linus Torvalds1da177e2005-04-16 15:20:36 -0700119
120#define HASH_SIZE 16
Al Virod5a0a1e2006-11-08 00:23:14 -0800121#define HASH(addr) (((__force u32)addr^((__force u32)addr>>4))&0xF)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700122
stephen hemmingereccc1bb2012-09-25 11:02:48 +0000123static bool log_ecn_error = true;
124module_param(log_ecn_error, bool, 0644);
125MODULE_PARM_DESC(log_ecn_error, "Log packets received with corrupted ECN");
126
Eric Dumazetf99189b2009-11-17 10:42:49 +0000127static int ipip_net_id __read_mostly;
Pavel Emelyanov10dc4c72008-04-16 01:03:13 -0700128struct ipip_net {
Eric Dumazetb7285b72010-09-15 11:07:24 +0000129 struct ip_tunnel __rcu *tunnels_r_l[HASH_SIZE];
130 struct ip_tunnel __rcu *tunnels_r[HASH_SIZE];
131 struct ip_tunnel __rcu *tunnels_l[HASH_SIZE];
132 struct ip_tunnel __rcu *tunnels_wc[1];
133 struct ip_tunnel __rcu **tunnels[4];
Pavel Emelyanov44d3c292008-04-16 01:05:32 -0700134
Pavel Emelyanovb9855c52008-04-16 01:04:13 -0700135 struct net_device *fb_tunnel_dev;
Pavel Emelyanov10dc4c72008-04-16 01:03:13 -0700136};
137
Eric Dumazet3c97af92010-09-27 00:35:50 +0000138static int ipip_tunnel_init(struct net_device *dev);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700139static void ipip_tunnel_setup(struct net_device *dev);
Eric Dumazet3c97af92010-09-27 00:35:50 +0000140static void ipip_dev_free(struct net_device *dev);
Nicolas Dichtel09746582012-11-09 06:09:59 +0000141static struct rtnl_link_ops ipip_link_ops __read_mostly;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700142
Eric Dumazet8f95dd62009-10-23 05:42:02 +0000143/*
Eric Dumazetb7285b72010-09-15 11:07:24 +0000144 * Locking : hash tables are protected by RCU and RTNL
Eric Dumazet8f95dd62009-10-23 05:42:02 +0000145 */
Eric Dumazet8f95dd62009-10-23 05:42:02 +0000146
147#define for_each_ip_tunnel_rcu(start) \
148 for (t = rcu_dereference(start); t; t = rcu_dereference(t->next))
Linus Torvalds1da177e2005-04-16 15:20:36 -0700149
stephen hemminger87b6d212012-04-12 06:31:16 +0000150static struct rtnl_link_stats64 *ipip_get_stats64(struct net_device *dev,
151 struct rtnl_link_stats64 *tot)
Eric Dumazet3c97af92010-09-27 00:35:50 +0000152{
Eric Dumazet3c97af92010-09-27 00:35:50 +0000153 int i;
154
155 for_each_possible_cpu(i) {
156 const struct pcpu_tstats *tstats = per_cpu_ptr(dev->tstats, i);
stephen hemminger87b6d212012-04-12 06:31:16 +0000157 u64 rx_packets, rx_bytes, tx_packets, tx_bytes;
158 unsigned int start;
Eric Dumazet3c97af92010-09-27 00:35:50 +0000159
stephen hemminger87b6d212012-04-12 06:31:16 +0000160 do {
161 start = u64_stats_fetch_begin_bh(&tstats->syncp);
162 rx_packets = tstats->rx_packets;
163 tx_packets = tstats->tx_packets;
164 rx_bytes = tstats->rx_bytes;
165 tx_bytes = tstats->tx_bytes;
166 } while (u64_stats_fetch_retry_bh(&tstats->syncp, start));
167
168 tot->rx_packets += rx_packets;
169 tot->tx_packets += tx_packets;
170 tot->rx_bytes += rx_bytes;
171 tot->tx_bytes += tx_bytes;
Eric Dumazet3c97af92010-09-27 00:35:50 +0000172 }
stephen hemminger87b6d212012-04-12 06:31:16 +0000173
174 tot->tx_fifo_errors = dev->stats.tx_fifo_errors;
175 tot->tx_carrier_errors = dev->stats.tx_carrier_errors;
176 tot->tx_dropped = dev->stats.tx_dropped;
177 tot->tx_aborted_errors = dev->stats.tx_aborted_errors;
178 tot->tx_errors = dev->stats.tx_errors;
179 tot->collisions = dev->stats.collisions;
180
181 return tot;
Eric Dumazet3c97af92010-09-27 00:35:50 +0000182}
183
Daniel Baluta5e73ea12012-04-15 01:34:41 +0000184static struct ip_tunnel *ipip_tunnel_lookup(struct net *net,
Pavel Emelyanovb9fae5c2008-04-16 01:04:35 -0700185 __be32 remote, __be32 local)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700186{
Eric Dumazetb7285b72010-09-15 11:07:24 +0000187 unsigned int h0 = HASH(remote);
188 unsigned int h1 = HASH(local);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700189 struct ip_tunnel *t;
Pavel Emelyanov44d3c292008-04-16 01:05:32 -0700190 struct ipip_net *ipn = net_generic(net, ipip_net_id);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700191
Eric Dumazet8f95dd62009-10-23 05:42:02 +0000192 for_each_ip_tunnel_rcu(ipn->tunnels_r_l[h0 ^ h1])
Linus Torvalds1da177e2005-04-16 15:20:36 -0700193 if (local == t->parms.iph.saddr &&
194 remote == t->parms.iph.daddr && (t->dev->flags&IFF_UP))
195 return t;
Eric Dumazet8f95dd62009-10-23 05:42:02 +0000196
197 for_each_ip_tunnel_rcu(ipn->tunnels_r[h0])
Linus Torvalds1da177e2005-04-16 15:20:36 -0700198 if (remote == t->parms.iph.daddr && (t->dev->flags&IFF_UP))
199 return t;
Eric Dumazet8f95dd62009-10-23 05:42:02 +0000200
201 for_each_ip_tunnel_rcu(ipn->tunnels_l[h1])
Linus Torvalds1da177e2005-04-16 15:20:36 -0700202 if (local == t->parms.iph.saddr && (t->dev->flags&IFF_UP))
203 return t;
Eric Dumazet8f95dd62009-10-23 05:42:02 +0000204
205 t = rcu_dereference(ipn->tunnels_wc[0]);
206 if (t && (t->dev->flags&IFF_UP))
Linus Torvalds1da177e2005-04-16 15:20:36 -0700207 return t;
208 return NULL;
209}
210
Eric Dumazetb7285b72010-09-15 11:07:24 +0000211static struct ip_tunnel __rcu **__ipip_bucket(struct ipip_net *ipn,
Pavel Emelyanovb9fae5c2008-04-16 01:04:35 -0700212 struct ip_tunnel_parm *parms)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700213{
YOSHIFUJI Hideaki87d1a162007-04-24 20:44:47 +0900214 __be32 remote = parms->iph.daddr;
215 __be32 local = parms->iph.saddr;
Eric Dumazetb7285b72010-09-15 11:07:24 +0000216 unsigned int h = 0;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700217 int prio = 0;
218
219 if (remote) {
220 prio |= 2;
221 h ^= HASH(remote);
222 }
223 if (local) {
224 prio |= 1;
225 h ^= HASH(local);
226 }
Pavel Emelyanov44d3c292008-04-16 01:05:32 -0700227 return &ipn->tunnels[prio][h];
Linus Torvalds1da177e2005-04-16 15:20:36 -0700228}
229
Eric Dumazetb7285b72010-09-15 11:07:24 +0000230static inline struct ip_tunnel __rcu **ipip_bucket(struct ipip_net *ipn,
Pavel Emelyanovb9fae5c2008-04-16 01:04:35 -0700231 struct ip_tunnel *t)
YOSHIFUJI Hideaki87d1a162007-04-24 20:44:47 +0900232{
Pavel Emelyanovb9fae5c2008-04-16 01:04:35 -0700233 return __ipip_bucket(ipn, &t->parms);
YOSHIFUJI Hideaki87d1a162007-04-24 20:44:47 +0900234}
Linus Torvalds1da177e2005-04-16 15:20:36 -0700235
Pavel Emelyanovb9fae5c2008-04-16 01:04:35 -0700236static void ipip_tunnel_unlink(struct ipip_net *ipn, struct ip_tunnel *t)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700237{
Eric Dumazetb7285b72010-09-15 11:07:24 +0000238 struct ip_tunnel __rcu **tp;
239 struct ip_tunnel *iter;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700240
Eric Dumazetb7285b72010-09-15 11:07:24 +0000241 for (tp = ipip_bucket(ipn, t);
242 (iter = rtnl_dereference(*tp)) != NULL;
243 tp = &iter->next) {
244 if (t == iter) {
Eric Dumazetcf778b02012-01-12 04:41:32 +0000245 rcu_assign_pointer(*tp, t->next);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700246 break;
247 }
248 }
249}
250
Pavel Emelyanovb9fae5c2008-04-16 01:04:35 -0700251static void ipip_tunnel_link(struct ipip_net *ipn, struct ip_tunnel *t)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700252{
Eric Dumazetb7285b72010-09-15 11:07:24 +0000253 struct ip_tunnel __rcu **tp = ipip_bucket(ipn, t);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700254
Eric Dumazetcf778b02012-01-12 04:41:32 +0000255 rcu_assign_pointer(t->next, rtnl_dereference(*tp));
256 rcu_assign_pointer(*tp, t);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700257}
258
Daniel Baluta5e73ea12012-04-15 01:34:41 +0000259static struct ip_tunnel *ipip_tunnel_locate(struct net *net,
Pavel Emelyanovb9fae5c2008-04-16 01:04:35 -0700260 struct ip_tunnel_parm *parms, int create)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700261{
Al Virod5a0a1e2006-11-08 00:23:14 -0800262 __be32 remote = parms->iph.daddr;
263 __be32 local = parms->iph.saddr;
Eric Dumazetb7285b72010-09-15 11:07:24 +0000264 struct ip_tunnel *t, *nt;
265 struct ip_tunnel __rcu **tp;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700266 struct net_device *dev;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700267 char name[IFNAMSIZ];
Pavel Emelyanovb9fae5c2008-04-16 01:04:35 -0700268 struct ipip_net *ipn = net_generic(net, ipip_net_id);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700269
Eric Dumazetb7285b72010-09-15 11:07:24 +0000270 for (tp = __ipip_bucket(ipn, parms);
271 (t = rtnl_dereference(*tp)) != NULL;
272 tp = &t->next) {
Linus Torvalds1da177e2005-04-16 15:20:36 -0700273 if (local == t->parms.iph.saddr && remote == t->parms.iph.daddr)
274 return t;
275 }
276 if (!create)
277 return NULL;
278
279 if (parms->name[0])
280 strlcpy(name, parms->name, IFNAMSIZ);
Pavel Emelyanov34cc7ba2008-02-23 20:19:20 -0800281 else
Eric Dumazet3c97af92010-09-27 00:35:50 +0000282 strcpy(name, "tunl%d");
Linus Torvalds1da177e2005-04-16 15:20:36 -0700283
284 dev = alloc_netdev(sizeof(*t), name, ipip_tunnel_setup);
285 if (dev == NULL)
286 return NULL;
287
Pavel Emelyanov0a826402008-04-16 01:06:18 -0700288 dev_net_set(dev, net);
289
Patrick McHardy2941a482006-01-08 22:05:26 -0800290 nt = netdev_priv(dev);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700291 nt->parms = *parms;
292
Eric Dumazet3c97af92010-09-27 00:35:50 +0000293 if (ipip_tunnel_init(dev) < 0)
294 goto failed_free;
Stephen Hemminger23a12b12008-11-20 20:33:21 -0800295
Pavel Emelyanovb37d428b2008-02-26 23:51:04 -0800296 if (register_netdevice(dev) < 0)
297 goto failed_free;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700298
Ted Feng72b36012011-12-08 00:46:21 +0000299 strcpy(nt->parms.name, dev->name);
Nicolas Dichtel09746582012-11-09 06:09:59 +0000300 dev->rtnl_link_ops = &ipip_link_ops;
Ted Feng72b36012011-12-08 00:46:21 +0000301
Linus Torvalds1da177e2005-04-16 15:20:36 -0700302 dev_hold(dev);
Pavel Emelyanovb9fae5c2008-04-16 01:04:35 -0700303 ipip_tunnel_link(ipn, nt);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700304 return nt;
305
Pavel Emelyanovb37d428b2008-02-26 23:51:04 -0800306failed_free:
Eric Dumazet3c97af92010-09-27 00:35:50 +0000307 ipip_dev_free(dev);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700308 return NULL;
309}
310
Eric Dumazetb7285b72010-09-15 11:07:24 +0000311/* called with RTNL */
Linus Torvalds1da177e2005-04-16 15:20:36 -0700312static void ipip_tunnel_uninit(struct net_device *dev)
313{
Pavel Emelyanovb9855c52008-04-16 01:04:13 -0700314 struct net *net = dev_net(dev);
315 struct ipip_net *ipn = net_generic(net, ipip_net_id);
316
Eric Dumazetb7285b72010-09-15 11:07:24 +0000317 if (dev == ipn->fb_tunnel_dev)
Stephen Hemmingera9b3cd72011-08-01 16:19:00 +0000318 RCU_INIT_POINTER(ipn->tunnels_wc[0], NULL);
Eric Dumazetb7285b72010-09-15 11:07:24 +0000319 else
Pavel Emelyanovb9fae5c2008-04-16 01:04:35 -0700320 ipip_tunnel_unlink(ipn, netdev_priv(dev));
Linus Torvalds1da177e2005-04-16 15:20:36 -0700321 dev_put(dev);
322}
323
Herbert Xud2acc342006-03-28 01:12:13 -0800324static int ipip_err(struct sk_buff *skb, u32 info)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700325{
Linus Torvalds1da177e2005-04-16 15:20:36 -0700326
Rami Rosen071f92d2008-05-21 17:47:54 -0700327/* All the routers (except for Linux) return only
Linus Torvalds1da177e2005-04-16 15:20:36 -0700328 8 bytes of packet payload. It means, that precise relaying of
329 ICMP in the real Internet is absolutely infeasible.
330 */
Eric Dumazetb71d1d42011-04-22 04:53:02 +0000331 const struct iphdr *iph = (const struct iphdr *)skb->data;
Arnaldo Carvalho de Melo88c76642007-03-13 14:43:18 -0300332 const int type = icmp_hdr(skb)->type;
333 const int code = icmp_hdr(skb)->code;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700334 struct ip_tunnel *t;
Herbert Xud2acc342006-03-28 01:12:13 -0800335 int err;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700336
337 switch (type) {
338 default:
339 case ICMP_PARAMETERPROB:
Herbert Xud2acc342006-03-28 01:12:13 -0800340 return 0;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700341
342 case ICMP_DEST_UNREACH:
343 switch (code) {
344 case ICMP_SR_FAILED:
345 case ICMP_PORT_UNREACH:
346 /* Impossible event. */
Herbert Xud2acc342006-03-28 01:12:13 -0800347 return 0;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700348 default:
349 /* All others are translated to HOST_UNREACH.
350 rfc2003 contains "deep thoughts" about NET_UNREACH,
351 I believe they are just ether pollution. --ANK
352 */
353 break;
354 }
355 break;
356 case ICMP_TIME_EXCEEDED:
357 if (code != ICMP_EXC_TTL)
Herbert Xud2acc342006-03-28 01:12:13 -0800358 return 0;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700359 break;
David S. Miller55be7a92012-07-11 21:27:49 -0700360 case ICMP_REDIRECT:
361 break;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700362 }
363
Herbert Xud2acc342006-03-28 01:12:13 -0800364 err = -ENOENT;
Pavel Emelyanovcec3ffa2008-04-16 01:05:03 -0700365 t = ipip_tunnel_lookup(dev_net(skb->dev), iph->daddr, iph->saddr);
David S. Miller36393392012-06-14 22:21:46 -0700366 if (t == NULL)
367 goto out;
368
369 if (type == ICMP_DEST_UNREACH && code == ICMP_FRAG_NEEDED) {
370 ipv4_update_pmtu(skb, dev_net(skb->dev), info,
371 t->dev->ifindex, 0, IPPROTO_IPIP, 0);
372 err = 0;
373 goto out;
374 }
375
David S. Miller55be7a92012-07-11 21:27:49 -0700376 if (type == ICMP_REDIRECT) {
377 ipv4_redirect(skb, dev_net(skb->dev), t->dev->ifindex, 0,
378 IPPROTO_IPIP, 0);
379 err = 0;
380 goto out;
381 }
382
David S. Miller36393392012-06-14 22:21:46 -0700383 if (t->parms.iph.daddr == 0)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700384 goto out;
Herbert Xud2acc342006-03-28 01:12:13 -0800385
386 err = 0;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700387 if (t->parms.iph.ttl == 0 && type == ICMP_TIME_EXCEEDED)
388 goto out;
389
Wei Yongjun26d94b42009-02-24 23:36:47 -0800390 if (time_before(jiffies, t->err_time + IPTUNNEL_ERR_TIMEO))
Linus Torvalds1da177e2005-04-16 15:20:36 -0700391 t->err_count++;
392 else
393 t->err_count = 1;
394 t->err_time = jiffies;
395out:
stephen hemmingerb0558ef2012-09-24 18:12:25 +0000396
Herbert Xud2acc342006-03-28 01:12:13 -0800397 return err;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700398}
399
Linus Torvalds1da177e2005-04-16 15:20:36 -0700400static int ipip_rcv(struct sk_buff *skb)
401{
Linus Torvalds1da177e2005-04-16 15:20:36 -0700402 struct ip_tunnel *tunnel;
Arnaldo Carvalho de Meloeddc9ec2007-04-20 22:47:35 -0700403 const struct iphdr *iph = ip_hdr(skb);
stephen hemmingereccc1bb2012-09-25 11:02:48 +0000404 int err;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700405
Eric Dumazet3c97af92010-09-27 00:35:50 +0000406 tunnel = ipip_tunnel_lookup(dev_net(skb->dev), iph->saddr, iph->daddr);
407 if (tunnel != NULL) {
408 struct pcpu_tstats *tstats;
409
stephen hemmingereccc1bb2012-09-25 11:02:48 +0000410 if (!xfrm4_policy_check(NULL, XFRM_POLICY_IN, skb))
411 goto drop;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700412
413 secpath_reset(skb);
414
Arnaldo Carvalho de Melob0e380b2007-04-10 21:21:55 -0700415 skb->mac_header = skb->network_header;
Arnaldo Carvalho de Meloc1d2bbe2007-04-10 20:45:18 -0700416 skb_reset_network_header(skb);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700417 skb->protocol = htons(ETH_P_IP);
418 skb->pkt_type = PACKET_HOST;
419
stephen hemmingereccc1bb2012-09-25 11:02:48 +0000420 __skb_tunnel_rx(skb, tunnel->dev);
421
422 err = IP_ECN_decapsulate(iph, skb);
423 if (unlikely(err)) {
424 if (log_ecn_error)
425 net_info_ratelimited("non-ECT from %pI4 with TOS=%#x\n",
426 &iph->saddr, iph->tos);
427 if (err > 1) {
428 ++tunnel->dev->stats.rx_frame_errors;
429 ++tunnel->dev->stats.rx_errors;
430 goto drop;
431 }
432 }
433
Eric Dumazet3c97af92010-09-27 00:35:50 +0000434 tstats = this_cpu_ptr(tunnel->dev->tstats);
stephen hemminger87b6d212012-04-12 06:31:16 +0000435 u64_stats_update_begin(&tstats->syncp);
Eric Dumazet3c97af92010-09-27 00:35:50 +0000436 tstats->rx_packets++;
437 tstats->rx_bytes += skb->len;
stephen hemminger87b6d212012-04-12 06:31:16 +0000438 u64_stats_update_end(&tstats->syncp);
Eric Dumazet3c97af92010-09-27 00:35:50 +0000439
Eric Dumazetcaf586e2010-09-30 21:06:55 +0000440 netif_rx(skb);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700441 return 0;
442 }
Linus Torvalds1da177e2005-04-16 15:20:36 -0700443
Linus Torvalds1da177e2005-04-16 15:20:36 -0700444 return -1;
stephen hemmingereccc1bb2012-09-25 11:02:48 +0000445
446drop:
447 kfree_skb(skb);
448 return 0;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700449}
450
451/*
452 * This function assumes it is being called from dev_queue_xmit()
453 * and that skb is filled properly by that function.
454 */
455
Stephen Hemminger6fef4c02009-08-31 19:50:41 +0000456static netdev_tx_t ipip_tunnel_xmit(struct sk_buff *skb, struct net_device *dev)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700457{
Patrick McHardy2941a482006-01-08 22:05:26 -0800458 struct ip_tunnel *tunnel = netdev_priv(dev);
Eric Dumazetb71d1d42011-04-22 04:53:02 +0000459 const struct iphdr *tiph = &tunnel->parms.iph;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700460 u8 tos = tunnel->parms.iph.tos;
Al Virod5a0a1e2006-11-08 00:23:14 -0800461 __be16 df = tiph->frag_off;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700462 struct rtable *rt; /* Route to the other host */
Eric Dumazet3c97af92010-09-27 00:35:50 +0000463 struct net_device *tdev; /* Device to other host */
Eric Dumazetb71d1d42011-04-22 04:53:02 +0000464 const struct iphdr *old_iph = ip_hdr(skb);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700465 struct iphdr *iph; /* Our new IP header */
Chuck Leverc2636b42007-10-23 21:07:32 -0700466 unsigned int max_headroom; /* The extra header space needed */
Al Virod5a0a1e2006-11-08 00:23:14 -0800467 __be32 dst = tiph->daddr;
David S. Miller31e45432011-05-03 20:25:42 -0700468 struct flowi4 fl4;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700469 int mtu;
470
Linus Torvalds1da177e2005-04-16 15:20:36 -0700471 if (skb->protocol != htons(ETH_P_IP))
472 goto tx_error;
473
Eric Dumazetc3b89fb2012-11-08 09:59:52 +0000474 if (skb->ip_summed == CHECKSUM_PARTIAL &&
475 skb_checksum_help(skb))
476 goto tx_error;
477
Eric Dumazet3c97af92010-09-27 00:35:50 +0000478 if (tos & 1)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700479 tos = old_iph->tos;
480
481 if (!dst) {
482 /* NBMA tunnel */
Eric Dumazet511c3f92009-06-02 05:14:27 +0000483 if ((rt = skb_rtable(skb)) == NULL) {
Eric Dumazet3c97af92010-09-27 00:35:50 +0000484 dev->stats.tx_fifo_errors++;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700485 goto tx_error;
486 }
David S. Millerf8126f12012-07-13 05:03:45 -0700487 dst = rt_nexthop(rt, old_iph->daddr);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700488 }
489
David S. Miller31e45432011-05-03 20:25:42 -0700490 rt = ip_route_output_ports(dev_net(dev), &fl4, NULL,
David S. Miller78fbfd82011-03-12 00:00:52 -0500491 dst, tiph->saddr,
492 0, 0,
493 IPPROTO_IPIP, RT_TOS(tos),
494 tunnel->parms.link);
495 if (IS_ERR(rt)) {
496 dev->stats.tx_carrier_errors++;
497 goto tx_error_icmp;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700498 }
Changli Gaod8d1f302010-06-10 23:31:35 -0700499 tdev = rt->dst.dev;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700500
501 if (tdev == dev) {
502 ip_rt_put(rt);
Eric Dumazet3c97af92010-09-27 00:35:50 +0000503 dev->stats.collisions++;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700504 goto tx_error;
505 }
506
Herbert Xu23ca0c92009-11-06 10:37:41 +0000507 df |= old_iph->frag_off & htons(IP_DF);
508
509 if (df) {
Changli Gaod8d1f302010-06-10 23:31:35 -0700510 mtu = dst_mtu(&rt->dst) - sizeof(struct iphdr);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700511
Herbert Xu23ca0c92009-11-06 10:37:41 +0000512 if (mtu < 68) {
Eric Dumazet3c97af92010-09-27 00:35:50 +0000513 dev->stats.collisions++;
Herbert Xu23ca0c92009-11-06 10:37:41 +0000514 ip_rt_put(rt);
515 goto tx_error;
516 }
Linus Torvalds1da177e2005-04-16 15:20:36 -0700517
Herbert Xu23ca0c92009-11-06 10:37:41 +0000518 if (skb_dst(skb))
David S. Miller6700c272012-07-17 03:29:28 -0700519 skb_dst(skb)->ops->update_pmtu(skb_dst(skb), NULL, skb, mtu);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700520
Herbert Xu23ca0c92009-11-06 10:37:41 +0000521 if ((old_iph->frag_off & htons(IP_DF)) &&
522 mtu < ntohs(old_iph->tot_len)) {
523 icmp_send(skb, ICMP_DEST_UNREACH, ICMP_FRAG_NEEDED,
524 htonl(mtu));
525 ip_rt_put(rt);
526 goto tx_error;
527 }
Linus Torvalds1da177e2005-04-16 15:20:36 -0700528 }
529
530 if (tunnel->err_count > 0) {
Wei Yongjun26d94b42009-02-24 23:36:47 -0800531 if (time_before(jiffies,
532 tunnel->err_time + IPTUNNEL_ERR_TIMEO)) {
Linus Torvalds1da177e2005-04-16 15:20:36 -0700533 tunnel->err_count--;
534 dst_link_failure(skb);
535 } else
536 tunnel->err_count = 0;
537 }
538
539 /*
540 * Okay, now see if we can stuff it in the buffer as-is.
541 */
542 max_headroom = (LL_RESERVED_SPACE(tdev)+sizeof(struct iphdr));
543
Patrick McHardycfbba492007-07-09 15:33:40 -0700544 if (skb_headroom(skb) < max_headroom || skb_shared(skb) ||
545 (skb_cloned(skb) && !skb_clone_writable(skb, 0))) {
Linus Torvalds1da177e2005-04-16 15:20:36 -0700546 struct sk_buff *new_skb = skb_realloc_headroom(skb, max_headroom);
547 if (!new_skb) {
548 ip_rt_put(rt);
Eric Dumazet3c97af92010-09-27 00:35:50 +0000549 dev->stats.tx_dropped++;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700550 dev_kfree_skb(skb);
Patrick McHardy6ed10652009-06-23 06:03:08 +0000551 return NETDEV_TX_OK;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700552 }
553 if (skb->sk)
554 skb_set_owner_w(new_skb, skb->sk);
555 dev_kfree_skb(skb);
556 skb = new_skb;
Arnaldo Carvalho de Meloeddc9ec2007-04-20 22:47:35 -0700557 old_iph = ip_hdr(skb);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700558 }
559
Arnaldo Carvalho de Melob0e380b2007-04-10 21:21:55 -0700560 skb->transport_header = skb->network_header;
Arnaldo Carvalho de Meloe2d1bca2007-04-10 20:46:21 -0700561 skb_push(skb, sizeof(struct iphdr));
562 skb_reset_network_header(skb);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700563 memset(&(IPCB(skb)->opt), 0, sizeof(IPCB(skb)->opt));
Patrick McHardy48d5cad2006-02-15 15:10:22 -0800564 IPCB(skb)->flags &= ~(IPSKB_XFRM_TUNNEL_SIZE | IPSKB_XFRM_TRANSFORMED |
565 IPSKB_REROUTED);
Eric Dumazetadf30902009-06-02 05:19:30 +0000566 skb_dst_drop(skb);
Changli Gaod8d1f302010-06-10 23:31:35 -0700567 skb_dst_set(skb, &rt->dst);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700568
569 /*
570 * Push down and install the IPIP header.
571 */
572
Arnaldo Carvalho de Meloeddc9ec2007-04-20 22:47:35 -0700573 iph = ip_hdr(skb);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700574 iph->version = 4;
575 iph->ihl = sizeof(struct iphdr)>>2;
576 iph->frag_off = df;
577 iph->protocol = IPPROTO_IPIP;
578 iph->tos = INET_ECN_encapsulate(tos, old_iph->tos);
David S. Miller69458cb2011-05-04 11:10:28 -0700579 iph->daddr = fl4.daddr;
580 iph->saddr = fl4.saddr;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700581
582 if ((iph->ttl = tiph->ttl) == 0)
583 iph->ttl = old_iph->ttl;
584
Amerigo Wangaa0010f2012-11-11 21:52:33 +0000585 iptunnel_xmit(skb, dev);
Patrick McHardy6ed10652009-06-23 06:03:08 +0000586 return NETDEV_TX_OK;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700587
588tx_error_icmp:
589 dst_link_failure(skb);
590tx_error:
Eric Dumazet3c97af92010-09-27 00:35:50 +0000591 dev->stats.tx_errors++;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700592 dev_kfree_skb(skb);
Patrick McHardy6ed10652009-06-23 06:03:08 +0000593 return NETDEV_TX_OK;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700594}
595
Michal Schmidt55339952007-12-12 11:01:43 -0800596static void ipip_tunnel_bind_dev(struct net_device *dev)
597{
598 struct net_device *tdev = NULL;
599 struct ip_tunnel *tunnel;
Eric Dumazetb71d1d42011-04-22 04:53:02 +0000600 const struct iphdr *iph;
Michal Schmidt55339952007-12-12 11:01:43 -0800601
602 tunnel = netdev_priv(dev);
603 iph = &tunnel->parms.iph;
604
605 if (iph->daddr) {
David S. Miller31e45432011-05-03 20:25:42 -0700606 struct rtable *rt;
607 struct flowi4 fl4;
Eric Dumazet3c97af92010-09-27 00:35:50 +0000608
David S. Miller31e45432011-05-03 20:25:42 -0700609 rt = ip_route_output_ports(dev_net(dev), &fl4, NULL,
610 iph->daddr, iph->saddr,
611 0, 0,
612 IPPROTO_IPIP,
613 RT_TOS(iph->tos),
614 tunnel->parms.link);
David S. Millerb23dd4f2011-03-02 14:31:35 -0800615 if (!IS_ERR(rt)) {
Changli Gaod8d1f302010-06-10 23:31:35 -0700616 tdev = rt->dst.dev;
Michal Schmidt55339952007-12-12 11:01:43 -0800617 ip_rt_put(rt);
618 }
619 dev->flags |= IFF_POINTOPOINT;
620 }
621
622 if (!tdev && tunnel->parms.link)
Pavel Emelyanovb99f0152008-04-16 01:05:57 -0700623 tdev = __dev_get_by_index(dev_net(dev), tunnel->parms.link);
Michal Schmidt55339952007-12-12 11:01:43 -0800624
625 if (tdev) {
626 dev->hard_header_len = tdev->hard_header_len + sizeof(struct iphdr);
627 dev->mtu = tdev->mtu - sizeof(struct iphdr);
628 }
629 dev->iflink = tunnel->parms.link;
630}
631
Linus Torvalds1da177e2005-04-16 15:20:36 -0700632static int
633ipip_tunnel_ioctl (struct net_device *dev, struct ifreq *ifr, int cmd)
634{
635 int err = 0;
636 struct ip_tunnel_parm p;
637 struct ip_tunnel *t;
Pavel Emelyanovb9855c52008-04-16 01:04:13 -0700638 struct net *net = dev_net(dev);
639 struct ipip_net *ipn = net_generic(net, ipip_net_id);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700640
641 switch (cmd) {
642 case SIOCGETTUNNEL:
643 t = NULL;
Pavel Emelyanovb9855c52008-04-16 01:04:13 -0700644 if (dev == ipn->fb_tunnel_dev) {
Linus Torvalds1da177e2005-04-16 15:20:36 -0700645 if (copy_from_user(&p, ifr->ifr_ifru.ifru_data, sizeof(p))) {
646 err = -EFAULT;
647 break;
648 }
Pavel Emelyanovb9fae5c2008-04-16 01:04:35 -0700649 t = ipip_tunnel_locate(net, &p, 0);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700650 }
651 if (t == NULL)
Patrick McHardy2941a482006-01-08 22:05:26 -0800652 t = netdev_priv(dev);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700653 memcpy(&p, &t->parms, sizeof(p));
654 if (copy_to_user(ifr->ifr_ifru.ifru_data, &p, sizeof(p)))
655 err = -EFAULT;
656 break;
657
658 case SIOCADDTUNNEL:
659 case SIOCCHGTUNNEL:
660 err = -EPERM;
661 if (!capable(CAP_NET_ADMIN))
662 goto done;
663
664 err = -EFAULT;
665 if (copy_from_user(&p, ifr->ifr_ifru.ifru_data, sizeof(p)))
666 goto done;
667
668 err = -EINVAL;
669 if (p.iph.version != 4 || p.iph.protocol != IPPROTO_IPIP ||
670 p.iph.ihl != 5 || (p.iph.frag_off&htons(~IP_DF)))
671 goto done;
672 if (p.iph.ttl)
673 p.iph.frag_off |= htons(IP_DF);
674
Pavel Emelyanovb9fae5c2008-04-16 01:04:35 -0700675 t = ipip_tunnel_locate(net, &p, cmd == SIOCADDTUNNEL);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700676
Pavel Emelyanovb9855c52008-04-16 01:04:13 -0700677 if (dev != ipn->fb_tunnel_dev && cmd == SIOCCHGTUNNEL) {
Linus Torvalds1da177e2005-04-16 15:20:36 -0700678 if (t != NULL) {
679 if (t->dev != dev) {
680 err = -EEXIST;
681 break;
682 }
683 } else {
684 if (((dev->flags&IFF_POINTOPOINT) && !p.iph.daddr) ||
685 (!(dev->flags&IFF_POINTOPOINT) && p.iph.daddr)) {
686 err = -EINVAL;
687 break;
688 }
Patrick McHardy2941a482006-01-08 22:05:26 -0800689 t = netdev_priv(dev);
Pavel Emelyanovb9fae5c2008-04-16 01:04:35 -0700690 ipip_tunnel_unlink(ipn, t);
Pavel Emelyanov74b0b852010-10-27 05:43:53 +0000691 synchronize_net();
Linus Torvalds1da177e2005-04-16 15:20:36 -0700692 t->parms.iph.saddr = p.iph.saddr;
693 t->parms.iph.daddr = p.iph.daddr;
694 memcpy(dev->dev_addr, &p.iph.saddr, 4);
695 memcpy(dev->broadcast, &p.iph.daddr, 4);
Pavel Emelyanovb9fae5c2008-04-16 01:04:35 -0700696 ipip_tunnel_link(ipn, t);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700697 netdev_state_change(dev);
698 }
699 }
700
701 if (t) {
702 err = 0;
703 if (cmd == SIOCCHGTUNNEL) {
704 t->parms.iph.ttl = p.iph.ttl;
705 t->parms.iph.tos = p.iph.tos;
706 t->parms.iph.frag_off = p.iph.frag_off;
Michal Schmidt55339952007-12-12 11:01:43 -0800707 if (t->parms.link != p.link) {
708 t->parms.link = p.link;
709 ipip_tunnel_bind_dev(dev);
710 netdev_state_change(dev);
711 }
Linus Torvalds1da177e2005-04-16 15:20:36 -0700712 }
713 if (copy_to_user(ifr->ifr_ifru.ifru_data, &t->parms, sizeof(p)))
714 err = -EFAULT;
715 } else
716 err = (cmd == SIOCADDTUNNEL ? -ENOBUFS : -ENOENT);
717 break;
718
719 case SIOCDELTUNNEL:
720 err = -EPERM;
721 if (!capable(CAP_NET_ADMIN))
722 goto done;
723
Pavel Emelyanovb9855c52008-04-16 01:04:13 -0700724 if (dev == ipn->fb_tunnel_dev) {
Linus Torvalds1da177e2005-04-16 15:20:36 -0700725 err = -EFAULT;
726 if (copy_from_user(&p, ifr->ifr_ifru.ifru_data, sizeof(p)))
727 goto done;
728 err = -ENOENT;
Pavel Emelyanovb9fae5c2008-04-16 01:04:35 -0700729 if ((t = ipip_tunnel_locate(net, &p, 0)) == NULL)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700730 goto done;
731 err = -EPERM;
Pavel Emelyanovb9855c52008-04-16 01:04:13 -0700732 if (t->dev == ipn->fb_tunnel_dev)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700733 goto done;
734 dev = t->dev;
735 }
Stephen Hemminger22f8cde2007-02-07 00:09:58 -0800736 unregister_netdevice(dev);
737 err = 0;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700738 break;
739
740 default:
741 err = -EINVAL;
742 }
743
744done:
745 return err;
746}
747
Linus Torvalds1da177e2005-04-16 15:20:36 -0700748static int ipip_tunnel_change_mtu(struct net_device *dev, int new_mtu)
749{
750 if (new_mtu < 68 || new_mtu > 0xFFF8 - sizeof(struct iphdr))
751 return -EINVAL;
752 dev->mtu = new_mtu;
753 return 0;
754}
755
Stephen Hemminger23a12b12008-11-20 20:33:21 -0800756static const struct net_device_ops ipip_netdev_ops = {
757 .ndo_uninit = ipip_tunnel_uninit,
758 .ndo_start_xmit = ipip_tunnel_xmit,
759 .ndo_do_ioctl = ipip_tunnel_ioctl,
760 .ndo_change_mtu = ipip_tunnel_change_mtu,
stephen hemminger87b6d212012-04-12 06:31:16 +0000761 .ndo_get_stats64 = ipip_get_stats64,
Stephen Hemminger23a12b12008-11-20 20:33:21 -0800762};
763
Eric Dumazet3c97af92010-09-27 00:35:50 +0000764static void ipip_dev_free(struct net_device *dev)
765{
766 free_percpu(dev->tstats);
767 free_netdev(dev);
768}
769
Eric Dumazetc3b89fb2012-11-08 09:59:52 +0000770#define IPIP_FEATURES (NETIF_F_SG | \
771 NETIF_F_FRAGLIST | \
772 NETIF_F_HIGHDMA | \
773 NETIF_F_HW_CSUM)
774
Linus Torvalds1da177e2005-04-16 15:20:36 -0700775static void ipip_tunnel_setup(struct net_device *dev)
776{
Stephen Hemminger23a12b12008-11-20 20:33:21 -0800777 dev->netdev_ops = &ipip_netdev_ops;
Eric Dumazet3c97af92010-09-27 00:35:50 +0000778 dev->destructor = ipip_dev_free;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700779
780 dev->type = ARPHRD_TUNNEL;
781 dev->hard_header_len = LL_MAX_HEADER + sizeof(struct iphdr);
Kris Katterjohn46f25df2006-01-05 16:35:42 -0800782 dev->mtu = ETH_DATA_LEN - sizeof(struct iphdr);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700783 dev->flags = IFF_NOARP;
784 dev->iflink = 0;
785 dev->addr_len = 4;
Pavel Emelyanov0a826402008-04-16 01:06:18 -0700786 dev->features |= NETIF_F_NETNS_LOCAL;
Eric Dumazet153f0942010-09-28 00:17:17 +0000787 dev->features |= NETIF_F_LLTX;
Eric Dumazet28e72212009-05-28 10:44:30 +0000788 dev->priv_flags &= ~IFF_XMIT_DST_RELEASE;
Eric Dumazetc3b89fb2012-11-08 09:59:52 +0000789
790 dev->features |= IPIP_FEATURES;
791 dev->hw_features |= IPIP_FEATURES;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700792}
793
Eric Dumazet3c97af92010-09-27 00:35:50 +0000794static int ipip_tunnel_init(struct net_device *dev)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700795{
Stephen Hemminger23a12b12008-11-20 20:33:21 -0800796 struct ip_tunnel *tunnel = netdev_priv(dev);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700797
798 tunnel->dev = dev;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700799
800 memcpy(dev->dev_addr, &tunnel->parms.iph.saddr, 4);
801 memcpy(dev->broadcast, &tunnel->parms.iph.daddr, 4);
802
Michal Schmidt55339952007-12-12 11:01:43 -0800803 ipip_tunnel_bind_dev(dev);
Eric Dumazet3c97af92010-09-27 00:35:50 +0000804
805 dev->tstats = alloc_percpu(struct pcpu_tstats);
806 if (!dev->tstats)
807 return -ENOMEM;
808
809 return 0;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700810}
811
Eric Dumazetfada5632010-09-27 23:56:46 +0000812static int __net_init ipip_fb_tunnel_init(struct net_device *dev)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700813{
Patrick McHardy2941a482006-01-08 22:05:26 -0800814 struct ip_tunnel *tunnel = netdev_priv(dev);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700815 struct iphdr *iph = &tunnel->parms.iph;
Pavel Emelyanov44d3c292008-04-16 01:05:32 -0700816 struct ipip_net *ipn = net_generic(dev_net(dev), ipip_net_id);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700817
818 tunnel->dev = dev;
819 strcpy(tunnel->parms.name, dev->name);
820
821 iph->version = 4;
822 iph->protocol = IPPROTO_IPIP;
823 iph->ihl = 5;
824
Eric Dumazetfada5632010-09-27 23:56:46 +0000825 dev->tstats = alloc_percpu(struct pcpu_tstats);
826 if (!dev->tstats)
827 return -ENOMEM;
828
Linus Torvalds1da177e2005-04-16 15:20:36 -0700829 dev_hold(dev);
Eric Dumazetcf778b02012-01-12 04:41:32 +0000830 rcu_assign_pointer(ipn->tunnels_wc[0], tunnel);
Eric Dumazetfada5632010-09-27 23:56:46 +0000831 return 0;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700832}
833
Nicolas Dichtel09746582012-11-09 06:09:59 +0000834static size_t ipip_get_size(const struct net_device *dev)
835{
836 return
837 /* IFLA_IPTUN_LINK */
838 nla_total_size(4) +
839 /* IFLA_IPTUN_LOCAL */
840 nla_total_size(4) +
841 /* IFLA_IPTUN_REMOTE */
842 nla_total_size(4) +
843 /* IFLA_IPTUN_TTL */
844 nla_total_size(1) +
845 /* IFLA_IPTUN_TOS */
846 nla_total_size(1) +
847 0;
848}
849
850static int ipip_fill_info(struct sk_buff *skb, const struct net_device *dev)
851{
852 struct ip_tunnel *tunnel = netdev_priv(dev);
853 struct ip_tunnel_parm *parm = &tunnel->parms;
854
855 if (nla_put_u32(skb, IFLA_IPTUN_LINK, parm->link) ||
856 nla_put_be32(skb, IFLA_IPTUN_LOCAL, parm->iph.saddr) ||
857 nla_put_be32(skb, IFLA_IPTUN_REMOTE, parm->iph.daddr) ||
858 nla_put_u8(skb, IFLA_IPTUN_TTL, parm->iph.ttl) ||
859 nla_put_u8(skb, IFLA_IPTUN_TOS, parm->iph.tos))
860 goto nla_put_failure;
861 return 0;
862
863nla_put_failure:
864 return -EMSGSIZE;
865}
866
867static struct rtnl_link_ops ipip_link_ops __read_mostly = {
868 .kind = "ipip",
869 .maxtype = IFLA_IPTUN_MAX,
870 .priv_size = sizeof(struct ip_tunnel),
871 .get_size = ipip_get_size,
872 .fill_info = ipip_fill_info,
873};
874
Eric Dumazet6dcd8142010-08-30 07:04:14 +0000875static struct xfrm_tunnel ipip_handler __read_mostly = {
Linus Torvalds1da177e2005-04-16 15:20:36 -0700876 .handler = ipip_rcv,
877 .err_handler = ipip_err,
Herbert Xud2acc342006-03-28 01:12:13 -0800878 .priority = 1,
Linus Torvalds1da177e2005-04-16 15:20:36 -0700879};
880
Stephen Hemminger5747a1a2009-02-22 00:02:08 -0800881static const char banner[] __initconst =
Linus Torvalds1da177e2005-04-16 15:20:36 -0700882 KERN_INFO "IPv4 over IPv4 tunneling driver\n";
883
Eric Dumazet0694c4c2009-10-27 07:06:59 +0000884static void ipip_destroy_tunnels(struct ipip_net *ipn, struct list_head *head)
Pavel Emelyanov44d3c292008-04-16 01:05:32 -0700885{
886 int prio;
887
888 for (prio = 1; prio < 4; prio++) {
889 int h;
890 for (h = 0; h < HASH_SIZE; h++) {
Eric Dumazetb7285b72010-09-15 11:07:24 +0000891 struct ip_tunnel *t;
Eric Dumazet0694c4c2009-10-27 07:06:59 +0000892
Eric Dumazetb7285b72010-09-15 11:07:24 +0000893 t = rtnl_dereference(ipn->tunnels[prio][h]);
Eric Dumazet0694c4c2009-10-27 07:06:59 +0000894 while (t != NULL) {
895 unregister_netdevice_queue(t->dev, head);
Eric Dumazetb7285b72010-09-15 11:07:24 +0000896 t = rtnl_dereference(t->next);
Eric Dumazet0694c4c2009-10-27 07:06:59 +0000897 }
Pavel Emelyanov44d3c292008-04-16 01:05:32 -0700898 }
899 }
900}
901
Alexey Dobriyan2c8c1e72010-01-17 03:35:32 +0000902static int __net_init ipip_init_net(struct net *net)
Pavel Emelyanov10dc4c72008-04-16 01:03:13 -0700903{
Eric W. Biederman86de8a62009-11-29 15:46:14 +0000904 struct ipip_net *ipn = net_generic(net, ipip_net_id);
Ted Feng72b36012011-12-08 00:46:21 +0000905 struct ip_tunnel *t;
Pavel Emelyanov10dc4c72008-04-16 01:03:13 -0700906 int err;
Pavel Emelyanov10dc4c72008-04-16 01:03:13 -0700907
Pavel Emelyanov44d3c292008-04-16 01:05:32 -0700908 ipn->tunnels[0] = ipn->tunnels_wc;
909 ipn->tunnels[1] = ipn->tunnels_l;
910 ipn->tunnels[2] = ipn->tunnels_r;
911 ipn->tunnels[3] = ipn->tunnels_r_l;
912
Pavel Emelyanovb9855c52008-04-16 01:04:13 -0700913 ipn->fb_tunnel_dev = alloc_netdev(sizeof(struct ip_tunnel),
914 "tunl0",
915 ipip_tunnel_setup);
916 if (!ipn->fb_tunnel_dev) {
917 err = -ENOMEM;
918 goto err_alloc_dev;
919 }
Alexey Dobriyanbe77e592008-11-23 17:26:26 -0800920 dev_net_set(ipn->fb_tunnel_dev, net);
Pavel Emelyanovb9855c52008-04-16 01:04:13 -0700921
Eric Dumazetfada5632010-09-27 23:56:46 +0000922 err = ipip_fb_tunnel_init(ipn->fb_tunnel_dev);
923 if (err)
924 goto err_reg_dev;
Pavel Emelyanovb9855c52008-04-16 01:04:13 -0700925
926 if ((err = register_netdev(ipn->fb_tunnel_dev)))
927 goto err_reg_dev;
928
Ted Feng72b36012011-12-08 00:46:21 +0000929 t = netdev_priv(ipn->fb_tunnel_dev);
930
931 strcpy(t->parms.name, ipn->fb_tunnel_dev->name);
Pavel Emelyanov10dc4c72008-04-16 01:03:13 -0700932 return 0;
933
Pavel Emelyanovb9855c52008-04-16 01:04:13 -0700934err_reg_dev:
Eric Dumazetfada5632010-09-27 23:56:46 +0000935 ipip_dev_free(ipn->fb_tunnel_dev);
Pavel Emelyanovb9855c52008-04-16 01:04:13 -0700936err_alloc_dev:
937 /* nothing */
Pavel Emelyanov10dc4c72008-04-16 01:03:13 -0700938 return err;
939}
940
Alexey Dobriyan2c8c1e72010-01-17 03:35:32 +0000941static void __net_exit ipip_exit_net(struct net *net)
Pavel Emelyanov10dc4c72008-04-16 01:03:13 -0700942{
Eric W. Biederman86de8a62009-11-29 15:46:14 +0000943 struct ipip_net *ipn = net_generic(net, ipip_net_id);
Eric Dumazet0694c4c2009-10-27 07:06:59 +0000944 LIST_HEAD(list);
Pavel Emelyanov10dc4c72008-04-16 01:03:13 -0700945
Pavel Emelyanovb9855c52008-04-16 01:04:13 -0700946 rtnl_lock();
Eric Dumazet0694c4c2009-10-27 07:06:59 +0000947 ipip_destroy_tunnels(ipn, &list);
948 unregister_netdevice_queue(ipn->fb_tunnel_dev, &list);
949 unregister_netdevice_many(&list);
Pavel Emelyanovb9855c52008-04-16 01:04:13 -0700950 rtnl_unlock();
Pavel Emelyanov10dc4c72008-04-16 01:03:13 -0700951}
952
953static struct pernet_operations ipip_net_ops = {
954 .init = ipip_init_net,
955 .exit = ipip_exit_net,
Eric W. Biederman86de8a62009-11-29 15:46:14 +0000956 .id = &ipip_net_id,
957 .size = sizeof(struct ipip_net),
Pavel Emelyanov10dc4c72008-04-16 01:03:13 -0700958};
959
Linus Torvalds1da177e2005-04-16 15:20:36 -0700960static int __init ipip_init(void)
961{
962 int err;
963
964 printk(banner);
965
Eric W. Biederman86de8a62009-11-29 15:46:14 +0000966 err = register_pernet_device(&ipip_net_ops);
Alexey Dobriyand5aa4072010-02-16 09:05:04 +0000967 if (err < 0)
968 return err;
969 err = xfrm4_tunnel_register(&ipip_handler, AF_INET);
970 if (err < 0) {
Joe Perches058bd4d2012-03-11 18:36:11 +0000971 pr_info("%s: can't register tunnel\n", __func__);
Nicolas Dichtel09746582012-11-09 06:09:59 +0000972 goto xfrm_tunnel_failed;
Alexey Dobriyand5aa4072010-02-16 09:05:04 +0000973 }
Nicolas Dichtel09746582012-11-09 06:09:59 +0000974 err = rtnl_link_register(&ipip_link_ops);
975 if (err < 0)
976 goto rtnl_link_failed;
977
978out:
Linus Torvalds1da177e2005-04-16 15:20:36 -0700979 return err;
Nicolas Dichtel09746582012-11-09 06:09:59 +0000980
981rtnl_link_failed:
982 xfrm4_tunnel_deregister(&ipip_handler, AF_INET);
983xfrm_tunnel_failed:
984 unregister_pernet_device(&ipip_net_ops);
985 goto out;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700986}
987
988static void __exit ipip_fini(void)
989{
Nicolas Dichtel09746582012-11-09 06:09:59 +0000990 rtnl_link_unregister(&ipip_link_ops);
Kazunori MIYAZAWAc0d56402007-02-13 12:54:47 -0800991 if (xfrm4_tunnel_deregister(&ipip_handler, AF_INET))
Joe Perches058bd4d2012-03-11 18:36:11 +0000992 pr_info("%s: can't deregister tunnel\n", __func__);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700993
Eric W. Biederman86de8a62009-11-29 15:46:14 +0000994 unregister_pernet_device(&ipip_net_ops);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700995}
996
997module_init(ipip_init);
998module_exit(ipip_fini);
999MODULE_LICENSE("GPL");
Vasiliy Kulikov8909c9a2011-03-02 00:33:13 +03001000MODULE_ALIAS_NETDEV("tunl0");