blob: b1e5d3ac34603b7acc5090fcc370aeb2b48b8b37 [file] [log] [blame]
Linus Torvalds1da177e2005-04-16 15:20:36 -07001/*
2 * INET An implementation of the TCP/IP protocol suite for the LINUX
3 * operating system. INET is implemented using the BSD Socket
4 * interface as the means of communication with the user level.
5 *
6 * ROUTE - implementation of the IP router.
7 *
Jesper Juhl02c30a82005-05-05 16:16:16 -07008 * Authors: Ross Biro
Linus Torvalds1da177e2005-04-16 15:20:36 -07009 * Fred N. van Kempen, <waltje@uWalt.NL.Mugnet.ORG>
10 * Alan Cox, <gw4pts@gw4pts.ampr.org>
11 * Linus Torvalds, <Linus.Torvalds@helsinki.fi>
12 * Alexey Kuznetsov, <kuznet@ms2.inr.ac.ru>
13 *
14 * Fixes:
15 * Alan Cox : Verify area fixes.
16 * Alan Cox : cli() protects routing changes
17 * Rui Oliveira : ICMP routing table updates
18 * (rco@di.uminho.pt) Routing table insertion and update
19 * Linus Torvalds : Rewrote bits to be sensible
20 * Alan Cox : Added BSD route gw semantics
YOSHIFUJI Hideakie905a9e2007-02-09 23:24:47 +090021 * Alan Cox : Super /proc >4K
Linus Torvalds1da177e2005-04-16 15:20:36 -070022 * Alan Cox : MTU in route table
23 * Alan Cox : MSS actually. Also added the window
24 * clamper.
25 * Sam Lantinga : Fixed route matching in rt_del()
26 * Alan Cox : Routing cache support.
27 * Alan Cox : Removed compatibility cruft.
28 * Alan Cox : RTF_REJECT support.
29 * Alan Cox : TCP irtt support.
30 * Jonathan Naylor : Added Metric support.
31 * Miquel van Smoorenburg : BSD API fixes.
32 * Miquel van Smoorenburg : Metrics.
33 * Alan Cox : Use __u32 properly
34 * Alan Cox : Aligned routing errors more closely with BSD
35 * our system is still very different.
36 * Alan Cox : Faster /proc handling
37 * Alexey Kuznetsov : Massive rework to support tree based routing,
38 * routing caches and better behaviour.
YOSHIFUJI Hideakie905a9e2007-02-09 23:24:47 +090039 *
Linus Torvalds1da177e2005-04-16 15:20:36 -070040 * Olaf Erb : irtt wasn't being copied right.
41 * Bjorn Ekwall : Kerneld route support.
42 * Alan Cox : Multicast fixed (I hope)
43 * Pavel Krauz : Limited broadcast fixed
44 * Mike McLagan : Routing by source
45 * Alexey Kuznetsov : End of old history. Split to fib.c and
46 * route.c and rewritten from scratch.
47 * Andi Kleen : Load-limit warning messages.
48 * Vitaly E. Lavrov : Transparent proxy revived after year coma.
49 * Vitaly E. Lavrov : Race condition in ip_route_input_slow.
50 * Tobias Ringstrom : Uninitialized res.type in ip_route_output_slow.
51 * Vladimir V. Ivanov : IP rule info (flowid) is really useful.
52 * Marc Boucher : routing by fwmark
53 * Robert Olsson : Added rt_cache statistics
54 * Arnaldo C. Melo : Convert proc stuff to seq_file
Eric Dumazetbb1d23b2005-07-05 15:00:32 -070055 * Eric Dumazet : hashed spinlocks and rt_check_expire() fixes.
Ilia Sotnikovcef26852006-03-25 01:38:55 -080056 * Ilia Sotnikov : Ignore TOS on PMTUD and Redirect
57 * Ilia Sotnikov : Removed TOS from hash calculations
Linus Torvalds1da177e2005-04-16 15:20:36 -070058 *
59 * This program is free software; you can redistribute it and/or
60 * modify it under the terms of the GNU General Public License
61 * as published by the Free Software Foundation; either version
62 * 2 of the License, or (at your option) any later version.
63 */
64
Linus Torvalds1da177e2005-04-16 15:20:36 -070065#include <linux/module.h>
66#include <asm/uaccess.h>
67#include <asm/system.h>
68#include <linux/bitops.h>
69#include <linux/types.h>
70#include <linux/kernel.h>
Linus Torvalds1da177e2005-04-16 15:20:36 -070071#include <linux/mm.h>
Eric Dumazet424c4b72005-07-05 14:58:19 -070072#include <linux/bootmem.h>
Linus Torvalds1da177e2005-04-16 15:20:36 -070073#include <linux/string.h>
74#include <linux/socket.h>
75#include <linux/sockios.h>
76#include <linux/errno.h>
77#include <linux/in.h>
78#include <linux/inet.h>
79#include <linux/netdevice.h>
80#include <linux/proc_fs.h>
81#include <linux/init.h>
Eric Dumazet39c90ec2007-09-15 10:55:54 -070082#include <linux/workqueue.h>
Linus Torvalds1da177e2005-04-16 15:20:36 -070083#include <linux/skbuff.h>
Linus Torvalds1da177e2005-04-16 15:20:36 -070084#include <linux/inetdevice.h>
85#include <linux/igmp.h>
86#include <linux/pkt_sched.h>
87#include <linux/mroute.h>
88#include <linux/netfilter_ipv4.h>
89#include <linux/random.h>
90#include <linux/jhash.h>
91#include <linux/rcupdate.h>
92#include <linux/times.h>
Tejun Heo5a0e3ad2010-03-24 17:04:11 +090093#include <linux/slab.h>
Herbert Xu352e5122007-11-13 21:34:06 -080094#include <net/dst.h>
Eric W. Biederman457c4cb2007-09-12 12:01:34 +020095#include <net/net_namespace.h>
Linus Torvalds1da177e2005-04-16 15:20:36 -070096#include <net/protocol.h>
97#include <net/ip.h>
98#include <net/route.h>
99#include <net/inetpeer.h>
100#include <net/sock.h>
101#include <net/ip_fib.h>
102#include <net/arp.h>
103#include <net/tcp.h>
104#include <net/icmp.h>
105#include <net/xfrm.h>
Tom Tucker8d717402006-07-30 20:43:36 -0700106#include <net/netevent.h>
Thomas Graf63f34442007-03-22 11:55:17 -0700107#include <net/rtnetlink.h>
Linus Torvalds1da177e2005-04-16 15:20:36 -0700108#ifdef CONFIG_SYSCTL
109#include <linux/sysctl.h>
110#endif
111
112#define RT_FL_TOS(oldflp) \
113 ((u32)(oldflp->fl4_tos & (IPTOS_RT_MASK | RTO_ONLINK)))
114
115#define IP_MAX_MTU 0xFFF0
116
117#define RT_GC_TIMEOUT (300*HZ)
118
Linus Torvalds1da177e2005-04-16 15:20:36 -0700119static int ip_rt_max_size;
Stephen Hemminger817bc4d2008-03-22 17:43:59 -0700120static int ip_rt_gc_timeout __read_mostly = RT_GC_TIMEOUT;
121static int ip_rt_gc_interval __read_mostly = 60 * HZ;
122static int ip_rt_gc_min_interval __read_mostly = HZ / 2;
123static int ip_rt_redirect_number __read_mostly = 9;
124static int ip_rt_redirect_load __read_mostly = HZ / 50;
125static int ip_rt_redirect_silence __read_mostly = ((HZ / 50) << (9 + 1));
126static int ip_rt_error_cost __read_mostly = HZ;
127static int ip_rt_error_burst __read_mostly = 5 * HZ;
128static int ip_rt_gc_elasticity __read_mostly = 8;
129static int ip_rt_mtu_expires __read_mostly = 10 * 60 * HZ;
130static int ip_rt_min_pmtu __read_mostly = 512 + 20 + 20;
131static int ip_rt_min_advmss __read_mostly = 256;
Neil Horman1080d702008-10-27 12:28:25 -0700132static int rt_chain_length_max __read_mostly = 20;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700133
Eric Dumazet125bb8f2009-06-11 20:10:07 +0000134static struct delayed_work expires_work;
135static unsigned long expires_ljiffies;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700136
137/*
138 * Interface to generic destination cache.
139 */
140
141static struct dst_entry *ipv4_dst_check(struct dst_entry *dst, u32 cookie);
David S. Miller0dbaee32010-12-13 12:52:14 -0800142static unsigned int ipv4_default_advmss(const struct dst_entry *dst);
David S. Millerd33e4552010-12-14 13:01:14 -0800143static unsigned int ipv4_default_mtu(const struct dst_entry *dst);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700144static void ipv4_dst_destroy(struct dst_entry *dst);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700145static struct dst_entry *ipv4_negative_advice(struct dst_entry *dst);
146static void ipv4_link_failure(struct sk_buff *skb);
147static void ip_rt_update_pmtu(struct dst_entry *dst, u32 mtu);
Daniel Lezcano569d3642008-01-18 03:56:57 -0800148static int rt_garbage_collect(struct dst_ops *ops);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700149
Eric Dumazet72cdd1d2010-11-11 07:14:07 +0000150static void ipv4_dst_ifdown(struct dst_entry *dst, struct net_device *dev,
151 int how)
152{
153}
Linus Torvalds1da177e2005-04-16 15:20:36 -0700154
David S. Miller62fa8a82011-01-26 20:51:05 -0800155static u32 *ipv4_cow_metrics(struct dst_entry *dst, unsigned long old)
156{
David S. Miller06582542011-01-27 14:58:42 -0800157 struct rtable *rt = (struct rtable *) dst;
158 struct inet_peer *peer;
159 u32 *p = NULL;
David S. Miller62fa8a82011-01-26 20:51:05 -0800160
David S. Miller06582542011-01-27 14:58:42 -0800161 if (!rt->peer)
162 rt_bind_peer(rt, 1);
163
164 peer = rt->peer;
165 if (peer) {
David S. Miller62fa8a82011-01-26 20:51:05 -0800166 u32 *old_p = __DST_METRICS_PTR(old);
167 unsigned long prev, new;
168
David S. Miller06582542011-01-27 14:58:42 -0800169 p = peer->metrics;
170 if (inet_metrics_new(peer))
171 memcpy(p, old_p, sizeof(u32) * RTAX_MAX);
David S. Miller62fa8a82011-01-26 20:51:05 -0800172
173 new = (unsigned long) p;
174 prev = cmpxchg(&dst->_metrics, old, new);
175
176 if (prev != old) {
David S. Miller62fa8a82011-01-26 20:51:05 -0800177 p = __DST_METRICS_PTR(prev);
178 if (prev & DST_METRICS_READ_ONLY)
179 p = NULL;
180 } else {
David S. Miller62fa8a82011-01-26 20:51:05 -0800181 if (rt->fi) {
182 fib_info_put(rt->fi);
183 rt->fi = NULL;
184 }
185 }
186 }
187 return p;
188}
189
Linus Torvalds1da177e2005-04-16 15:20:36 -0700190static struct dst_ops ipv4_dst_ops = {
191 .family = AF_INET,
Harvey Harrison09640e62009-02-01 00:45:17 -0800192 .protocol = cpu_to_be16(ETH_P_IP),
Linus Torvalds1da177e2005-04-16 15:20:36 -0700193 .gc = rt_garbage_collect,
194 .check = ipv4_dst_check,
David S. Miller0dbaee32010-12-13 12:52:14 -0800195 .default_advmss = ipv4_default_advmss,
David S. Millerd33e4552010-12-14 13:01:14 -0800196 .default_mtu = ipv4_default_mtu,
David S. Miller62fa8a82011-01-26 20:51:05 -0800197 .cow_metrics = ipv4_cow_metrics,
Linus Torvalds1da177e2005-04-16 15:20:36 -0700198 .destroy = ipv4_dst_destroy,
199 .ifdown = ipv4_dst_ifdown,
200 .negative_advice = ipv4_negative_advice,
201 .link_failure = ipv4_link_failure,
202 .update_pmtu = ip_rt_update_pmtu,
Herbert Xu1ac06e02008-05-20 14:32:14 -0700203 .local_out = __ip_local_out,
Linus Torvalds1da177e2005-04-16 15:20:36 -0700204};
205
206#define ECN_OR_COST(class) TC_PRIO_##class
207
Philippe De Muyter4839c522007-07-09 15:32:57 -0700208const __u8 ip_tos2prio[16] = {
Linus Torvalds1da177e2005-04-16 15:20:36 -0700209 TC_PRIO_BESTEFFORT,
210 ECN_OR_COST(FILLER),
211 TC_PRIO_BESTEFFORT,
212 ECN_OR_COST(BESTEFFORT),
213 TC_PRIO_BULK,
214 ECN_OR_COST(BULK),
215 TC_PRIO_BULK,
216 ECN_OR_COST(BULK),
217 TC_PRIO_INTERACTIVE,
218 ECN_OR_COST(INTERACTIVE),
219 TC_PRIO_INTERACTIVE,
220 ECN_OR_COST(INTERACTIVE),
221 TC_PRIO_INTERACTIVE_BULK,
222 ECN_OR_COST(INTERACTIVE_BULK),
223 TC_PRIO_INTERACTIVE_BULK,
224 ECN_OR_COST(INTERACTIVE_BULK)
225};
226
227
228/*
229 * Route cache.
230 */
231
232/* The locking scheme is rather straight forward:
233 *
234 * 1) Read-Copy Update protects the buckets of the central route hash.
235 * 2) Only writers remove entries, and they hold the lock
236 * as they look at rtable reference counts.
237 * 3) Only readers acquire references to rtable entries,
238 * they do so with atomic increments and with the
239 * lock held.
240 */
241
242struct rt_hash_bucket {
Eric Dumazet1c317202010-10-25 21:02:07 +0000243 struct rtable __rcu *chain;
Eric Dumazet22c047c2005-07-05 14:55:24 -0700244};
Neil Horman1080d702008-10-27 12:28:25 -0700245
Ingo Molnar8a25d5d2006-07-03 00:24:54 -0700246#if defined(CONFIG_SMP) || defined(CONFIG_DEBUG_SPINLOCK) || \
247 defined(CONFIG_PROVE_LOCKING)
Eric Dumazet22c047c2005-07-05 14:55:24 -0700248/*
249 * Instead of using one spinlock for each rt_hash_bucket, we use a table of spinlocks
250 * The size of this table is a power of two and depends on the number of CPUS.
Ingo Molnar62051202006-07-03 00:24:59 -0700251 * (on lockdep we have a quite big spinlock_t, so keep the size down there)
Eric Dumazet22c047c2005-07-05 14:55:24 -0700252 */
Ingo Molnar62051202006-07-03 00:24:59 -0700253#ifdef CONFIG_LOCKDEP
254# define RT_HASH_LOCK_SZ 256
Eric Dumazet22c047c2005-07-05 14:55:24 -0700255#else
Ingo Molnar62051202006-07-03 00:24:59 -0700256# if NR_CPUS >= 32
257# define RT_HASH_LOCK_SZ 4096
258# elif NR_CPUS >= 16
259# define RT_HASH_LOCK_SZ 2048
260# elif NR_CPUS >= 8
261# define RT_HASH_LOCK_SZ 1024
262# elif NR_CPUS >= 4
263# define RT_HASH_LOCK_SZ 512
264# else
265# define RT_HASH_LOCK_SZ 256
266# endif
Eric Dumazet22c047c2005-07-05 14:55:24 -0700267#endif
268
269static spinlock_t *rt_hash_locks;
270# define rt_hash_lock_addr(slot) &rt_hash_locks[(slot) & (RT_HASH_LOCK_SZ - 1)]
Pavel Emelyanov1ff1cc22007-12-05 21:15:05 -0800271
272static __init void rt_hash_lock_init(void)
273{
274 int i;
275
276 rt_hash_locks = kmalloc(sizeof(spinlock_t) * RT_HASH_LOCK_SZ,
277 GFP_KERNEL);
278 if (!rt_hash_locks)
279 panic("IP: failed to allocate rt_hash_locks\n");
280
281 for (i = 0; i < RT_HASH_LOCK_SZ; i++)
282 spin_lock_init(&rt_hash_locks[i]);
283}
Eric Dumazet22c047c2005-07-05 14:55:24 -0700284#else
285# define rt_hash_lock_addr(slot) NULL
Pavel Emelyanov1ff1cc22007-12-05 21:15:05 -0800286
287static inline void rt_hash_lock_init(void)
288{
289}
Eric Dumazet22c047c2005-07-05 14:55:24 -0700290#endif
Linus Torvalds1da177e2005-04-16 15:20:36 -0700291
Stephen Hemminger817bc4d2008-03-22 17:43:59 -0700292static struct rt_hash_bucket *rt_hash_table __read_mostly;
293static unsigned rt_hash_mask __read_mostly;
294static unsigned int rt_hash_log __read_mostly;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700295
Eric Dumazet2f970d82006-01-17 02:54:36 -0800296static DEFINE_PER_CPU(struct rt_cache_stat, rt_cache_stat);
Eric Dumazet27f39c73e2010-05-19 22:07:23 +0000297#define RT_CACHE_STAT_INC(field) __this_cpu_inc(rt_cache_stat.field)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700298
Denis V. Lunevb00180d2008-07-05 19:04:09 -0700299static inline unsigned int rt_hash(__be32 daddr, __be32 saddr, int idx,
Eric Dumazet0eae88f2010-04-20 19:06:52 -0700300 int genid)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700301{
Eric Dumazet0eae88f2010-04-20 19:06:52 -0700302 return jhash_3words((__force u32)daddr, (__force u32)saddr,
Denis V. Lunevb00180d2008-07-05 19:04:09 -0700303 idx, genid)
Eric Dumazet29e75252008-01-31 17:05:09 -0800304 & rt_hash_mask;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700305}
306
Denis V. Luneve84f84f2008-07-05 19:04:32 -0700307static inline int rt_genid(struct net *net)
308{
309 return atomic_read(&net->ipv4.rt_genid);
310}
311
Linus Torvalds1da177e2005-04-16 15:20:36 -0700312#ifdef CONFIG_PROC_FS
313struct rt_cache_iter_state {
Denis V. Luneva75e9362008-02-28 20:50:55 -0800314 struct seq_net_private p;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700315 int bucket;
Eric Dumazet29e75252008-01-31 17:05:09 -0800316 int genid;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700317};
318
YOSHIFUJI Hideaki12188542008-03-26 02:36:06 +0900319static struct rtable *rt_cache_get_first(struct seq_file *seq)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700320{
YOSHIFUJI Hideaki12188542008-03-26 02:36:06 +0900321 struct rt_cache_iter_state *st = seq->private;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700322 struct rtable *r = NULL;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700323
324 for (st->bucket = rt_hash_mask; st->bucket >= 0; --st->bucket) {
Eric Dumazet1c317202010-10-25 21:02:07 +0000325 if (!rcu_dereference_raw(rt_hash_table[st->bucket].chain))
Eric Dumazeta6272662008-08-28 01:11:25 -0700326 continue;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700327 rcu_read_lock_bh();
Paul E. McKenneya898def2010-02-22 17:04:49 -0800328 r = rcu_dereference_bh(rt_hash_table[st->bucket].chain);
Eric Dumazet29e75252008-01-31 17:05:09 -0800329 while (r) {
Changli Gaod8d1f302010-06-10 23:31:35 -0700330 if (dev_net(r->dst.dev) == seq_file_net(seq) &&
Denis V. Luneva75e9362008-02-28 20:50:55 -0800331 r->rt_genid == st->genid)
Eric Dumazet29e75252008-01-31 17:05:09 -0800332 return r;
Changli Gaod8d1f302010-06-10 23:31:35 -0700333 r = rcu_dereference_bh(r->dst.rt_next);
Eric Dumazet29e75252008-01-31 17:05:09 -0800334 }
Linus Torvalds1da177e2005-04-16 15:20:36 -0700335 rcu_read_unlock_bh();
336 }
Eric Dumazet29e75252008-01-31 17:05:09 -0800337 return r;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700338}
339
YOSHIFUJI Hideaki12188542008-03-26 02:36:06 +0900340static struct rtable *__rt_cache_get_next(struct seq_file *seq,
Denis V. Lunev642d6312008-02-28 20:50:33 -0800341 struct rtable *r)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700342{
YOSHIFUJI Hideaki12188542008-03-26 02:36:06 +0900343 struct rt_cache_iter_state *st = seq->private;
Eric Dumazeta6272662008-08-28 01:11:25 -0700344
Eric Dumazet1c317202010-10-25 21:02:07 +0000345 r = rcu_dereference_bh(r->dst.rt_next);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700346 while (!r) {
347 rcu_read_unlock_bh();
Eric Dumazeta6272662008-08-28 01:11:25 -0700348 do {
349 if (--st->bucket < 0)
350 return NULL;
Eric Dumazet1c317202010-10-25 21:02:07 +0000351 } while (!rcu_dereference_raw(rt_hash_table[st->bucket].chain));
Linus Torvalds1da177e2005-04-16 15:20:36 -0700352 rcu_read_lock_bh();
Eric Dumazet1c317202010-10-25 21:02:07 +0000353 r = rcu_dereference_bh(rt_hash_table[st->bucket].chain);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700354 }
Eric Dumazet1c317202010-10-25 21:02:07 +0000355 return r;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700356}
357
YOSHIFUJI Hideaki12188542008-03-26 02:36:06 +0900358static struct rtable *rt_cache_get_next(struct seq_file *seq,
Denis V. Lunev642d6312008-02-28 20:50:33 -0800359 struct rtable *r)
360{
YOSHIFUJI Hideaki12188542008-03-26 02:36:06 +0900361 struct rt_cache_iter_state *st = seq->private;
362 while ((r = __rt_cache_get_next(seq, r)) != NULL) {
Changli Gaod8d1f302010-06-10 23:31:35 -0700363 if (dev_net(r->dst.dev) != seq_file_net(seq))
Denis V. Luneva75e9362008-02-28 20:50:55 -0800364 continue;
Denis V. Lunev642d6312008-02-28 20:50:33 -0800365 if (r->rt_genid == st->genid)
366 break;
367 }
368 return r;
369}
370
YOSHIFUJI Hideaki12188542008-03-26 02:36:06 +0900371static struct rtable *rt_cache_get_idx(struct seq_file *seq, loff_t pos)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700372{
YOSHIFUJI Hideaki12188542008-03-26 02:36:06 +0900373 struct rtable *r = rt_cache_get_first(seq);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700374
375 if (r)
YOSHIFUJI Hideaki12188542008-03-26 02:36:06 +0900376 while (pos && (r = rt_cache_get_next(seq, r)))
Linus Torvalds1da177e2005-04-16 15:20:36 -0700377 --pos;
378 return pos ? NULL : r;
379}
380
381static void *rt_cache_seq_start(struct seq_file *seq, loff_t *pos)
382{
Eric Dumazet29e75252008-01-31 17:05:09 -0800383 struct rt_cache_iter_state *st = seq->private;
Eric Dumazet29e75252008-01-31 17:05:09 -0800384 if (*pos)
YOSHIFUJI Hideaki12188542008-03-26 02:36:06 +0900385 return rt_cache_get_idx(seq, *pos - 1);
Denis V. Luneve84f84f2008-07-05 19:04:32 -0700386 st->genid = rt_genid(seq_file_net(seq));
Eric Dumazet29e75252008-01-31 17:05:09 -0800387 return SEQ_START_TOKEN;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700388}
389
390static void *rt_cache_seq_next(struct seq_file *seq, void *v, loff_t *pos)
391{
Eric Dumazet29e75252008-01-31 17:05:09 -0800392 struct rtable *r;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700393
394 if (v == SEQ_START_TOKEN)
YOSHIFUJI Hideaki12188542008-03-26 02:36:06 +0900395 r = rt_cache_get_first(seq);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700396 else
YOSHIFUJI Hideaki12188542008-03-26 02:36:06 +0900397 r = rt_cache_get_next(seq, v);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700398 ++*pos;
399 return r;
400}
401
402static void rt_cache_seq_stop(struct seq_file *seq, void *v)
403{
404 if (v && v != SEQ_START_TOKEN)
405 rcu_read_unlock_bh();
406}
407
408static int rt_cache_seq_show(struct seq_file *seq, void *v)
409{
410 if (v == SEQ_START_TOKEN)
411 seq_printf(seq, "%-127s\n",
412 "Iface\tDestination\tGateway \tFlags\t\tRefCnt\tUse\t"
413 "Metric\tSource\t\tMTU\tWindow\tIRTT\tTOS\tHHRef\t"
414 "HHUptod\tSpecDst");
415 else {
416 struct rtable *r = v;
Pavel Emelyanov5e659e42008-04-24 01:02:16 -0700417 int len;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700418
Eric Dumazet0eae88f2010-04-20 19:06:52 -0700419 seq_printf(seq, "%s\t%08X\t%08X\t%8X\t%d\t%u\t%d\t"
420 "%08X\t%d\t%u\t%u\t%02X\t%d\t%1d\t%08X%n",
Changli Gaod8d1f302010-06-10 23:31:35 -0700421 r->dst.dev ? r->dst.dev->name : "*",
Eric Dumazet0eae88f2010-04-20 19:06:52 -0700422 (__force u32)r->rt_dst,
423 (__force u32)r->rt_gateway,
Changli Gaod8d1f302010-06-10 23:31:35 -0700424 r->rt_flags, atomic_read(&r->dst.__refcnt),
425 r->dst.__use, 0, (__force u32)r->rt_src,
David S. Miller0dbaee32010-12-13 12:52:14 -0800426 dst_metric_advmss(&r->dst) + 40,
Changli Gaod8d1f302010-06-10 23:31:35 -0700427 dst_metric(&r->dst, RTAX_WINDOW),
428 (int)((dst_metric(&r->dst, RTAX_RTT) >> 3) +
429 dst_metric(&r->dst, RTAX_RTTVAR)),
Linus Torvalds1da177e2005-04-16 15:20:36 -0700430 r->fl.fl4_tos,
Changli Gaod8d1f302010-06-10 23:31:35 -0700431 r->dst.hh ? atomic_read(&r->dst.hh->hh_refcnt) : -1,
432 r->dst.hh ? (r->dst.hh->hh_output ==
Linus Torvalds1da177e2005-04-16 15:20:36 -0700433 dev_queue_xmit) : 0,
Pavel Emelyanov5e659e42008-04-24 01:02:16 -0700434 r->rt_spec_dst, &len);
435
436 seq_printf(seq, "%*s\n", 127 - len, "");
YOSHIFUJI Hideakie905a9e2007-02-09 23:24:47 +0900437 }
438 return 0;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700439}
440
Stephen Hemmingerf6908082007-03-12 14:34:29 -0700441static const struct seq_operations rt_cache_seq_ops = {
Linus Torvalds1da177e2005-04-16 15:20:36 -0700442 .start = rt_cache_seq_start,
443 .next = rt_cache_seq_next,
444 .stop = rt_cache_seq_stop,
445 .show = rt_cache_seq_show,
446};
447
448static int rt_cache_seq_open(struct inode *inode, struct file *file)
449{
Denis V. Luneva75e9362008-02-28 20:50:55 -0800450 return seq_open_net(inode, file, &rt_cache_seq_ops,
Pavel Emelyanovcf7732e2007-10-10 02:29:29 -0700451 sizeof(struct rt_cache_iter_state));
Linus Torvalds1da177e2005-04-16 15:20:36 -0700452}
453
Arjan van de Ven9a321442007-02-12 00:55:35 -0800454static const struct file_operations rt_cache_seq_fops = {
Linus Torvalds1da177e2005-04-16 15:20:36 -0700455 .owner = THIS_MODULE,
456 .open = rt_cache_seq_open,
457 .read = seq_read,
458 .llseek = seq_lseek,
Denis V. Luneva75e9362008-02-28 20:50:55 -0800459 .release = seq_release_net,
Linus Torvalds1da177e2005-04-16 15:20:36 -0700460};
461
462
463static void *rt_cpu_seq_start(struct seq_file *seq, loff_t *pos)
464{
465 int cpu;
466
467 if (*pos == 0)
468 return SEQ_START_TOKEN;
469
Rusty Russell0f23174a2008-12-29 12:23:42 +0000470 for (cpu = *pos-1; cpu < nr_cpu_ids; ++cpu) {
Linus Torvalds1da177e2005-04-16 15:20:36 -0700471 if (!cpu_possible(cpu))
472 continue;
473 *pos = cpu+1;
Eric Dumazet2f970d82006-01-17 02:54:36 -0800474 return &per_cpu(rt_cache_stat, cpu);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700475 }
476 return NULL;
477}
478
479static void *rt_cpu_seq_next(struct seq_file *seq, void *v, loff_t *pos)
480{
481 int cpu;
482
Rusty Russell0f23174a2008-12-29 12:23:42 +0000483 for (cpu = *pos; cpu < nr_cpu_ids; ++cpu) {
Linus Torvalds1da177e2005-04-16 15:20:36 -0700484 if (!cpu_possible(cpu))
485 continue;
486 *pos = cpu+1;
Eric Dumazet2f970d82006-01-17 02:54:36 -0800487 return &per_cpu(rt_cache_stat, cpu);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700488 }
489 return NULL;
YOSHIFUJI Hideakie905a9e2007-02-09 23:24:47 +0900490
Linus Torvalds1da177e2005-04-16 15:20:36 -0700491}
492
493static void rt_cpu_seq_stop(struct seq_file *seq, void *v)
494{
495
496}
497
498static int rt_cpu_seq_show(struct seq_file *seq, void *v)
499{
500 struct rt_cache_stat *st = v;
501
502 if (v == SEQ_START_TOKEN) {
Olaf Rempel5bec0032005-04-28 12:16:08 -0700503 seq_printf(seq, "entries in_hit in_slow_tot in_slow_mc in_no_route in_brd in_martian_dst in_martian_src out_hit out_slow_tot out_slow_mc gc_total gc_ignored gc_goal_miss gc_dst_overflow in_hlist_search out_hlist_search\n");
Linus Torvalds1da177e2005-04-16 15:20:36 -0700504 return 0;
505 }
YOSHIFUJI Hideakie905a9e2007-02-09 23:24:47 +0900506
Linus Torvalds1da177e2005-04-16 15:20:36 -0700507 seq_printf(seq,"%08x %08x %08x %08x %08x %08x %08x %08x "
508 " %08x %08x %08x %08x %08x %08x %08x %08x %08x \n",
Eric Dumazetfc66f952010-10-08 06:37:34 +0000509 dst_entries_get_slow(&ipv4_dst_ops),
Linus Torvalds1da177e2005-04-16 15:20:36 -0700510 st->in_hit,
511 st->in_slow_tot,
512 st->in_slow_mc,
513 st->in_no_route,
514 st->in_brd,
515 st->in_martian_dst,
516 st->in_martian_src,
517
518 st->out_hit,
519 st->out_slow_tot,
YOSHIFUJI Hideakie905a9e2007-02-09 23:24:47 +0900520 st->out_slow_mc,
Linus Torvalds1da177e2005-04-16 15:20:36 -0700521
522 st->gc_total,
523 st->gc_ignored,
524 st->gc_goal_miss,
525 st->gc_dst_overflow,
526 st->in_hlist_search,
527 st->out_hlist_search
528 );
529 return 0;
530}
531
Stephen Hemmingerf6908082007-03-12 14:34:29 -0700532static const struct seq_operations rt_cpu_seq_ops = {
Linus Torvalds1da177e2005-04-16 15:20:36 -0700533 .start = rt_cpu_seq_start,
534 .next = rt_cpu_seq_next,
535 .stop = rt_cpu_seq_stop,
536 .show = rt_cpu_seq_show,
537};
538
539
540static int rt_cpu_seq_open(struct inode *inode, struct file *file)
541{
542 return seq_open(file, &rt_cpu_seq_ops);
543}
544
Arjan van de Ven9a321442007-02-12 00:55:35 -0800545static const struct file_operations rt_cpu_seq_fops = {
Linus Torvalds1da177e2005-04-16 15:20:36 -0700546 .owner = THIS_MODULE,
547 .open = rt_cpu_seq_open,
548 .read = seq_read,
549 .llseek = seq_lseek,
550 .release = seq_release,
551};
552
Patrick McHardyc7066f72011-01-14 13:36:42 +0100553#ifdef CONFIG_IP_ROUTE_CLASSID
Alexey Dobriyana661c412009-11-25 15:40:35 -0800554static int rt_acct_proc_show(struct seq_file *m, void *v)
Pavel Emelyanov78c686e2007-12-05 21:13:48 -0800555{
Alexey Dobriyana661c412009-11-25 15:40:35 -0800556 struct ip_rt_acct *dst, *src;
557 unsigned int i, j;
Pavel Emelyanov78c686e2007-12-05 21:13:48 -0800558
Alexey Dobriyana661c412009-11-25 15:40:35 -0800559 dst = kcalloc(256, sizeof(struct ip_rt_acct), GFP_KERNEL);
560 if (!dst)
561 return -ENOMEM;
Pavel Emelyanov78c686e2007-12-05 21:13:48 -0800562
Alexey Dobriyana661c412009-11-25 15:40:35 -0800563 for_each_possible_cpu(i) {
564 src = (struct ip_rt_acct *)per_cpu_ptr(ip_rt_acct, i);
565 for (j = 0; j < 256; j++) {
566 dst[j].o_bytes += src[j].o_bytes;
567 dst[j].o_packets += src[j].o_packets;
568 dst[j].i_bytes += src[j].i_bytes;
569 dst[j].i_packets += src[j].i_packets;
Pavel Emelyanov78c686e2007-12-05 21:13:48 -0800570 }
571 }
Alexey Dobriyana661c412009-11-25 15:40:35 -0800572
573 seq_write(m, dst, 256 * sizeof(struct ip_rt_acct));
574 kfree(dst);
575 return 0;
Pavel Emelyanov78c686e2007-12-05 21:13:48 -0800576}
Alexey Dobriyana661c412009-11-25 15:40:35 -0800577
578static int rt_acct_proc_open(struct inode *inode, struct file *file)
579{
580 return single_open(file, rt_acct_proc_show, NULL);
581}
582
583static const struct file_operations rt_acct_proc_fops = {
584 .owner = THIS_MODULE,
585 .open = rt_acct_proc_open,
586 .read = seq_read,
587 .llseek = seq_lseek,
588 .release = single_release,
589};
Pavel Emelyanov78c686e2007-12-05 21:13:48 -0800590#endif
Pavel Emelyanov107f1632007-12-05 21:14:28 -0800591
Denis V. Lunev73b38712008-02-28 20:51:18 -0800592static int __net_init ip_rt_do_proc_init(struct net *net)
Pavel Emelyanov107f1632007-12-05 21:14:28 -0800593{
594 struct proc_dir_entry *pde;
595
596 pde = proc_net_fops_create(net, "rt_cache", S_IRUGO,
597 &rt_cache_seq_fops);
598 if (!pde)
599 goto err1;
600
Wang Chen77020722008-02-28 14:14:25 -0800601 pde = proc_create("rt_cache", S_IRUGO,
602 net->proc_net_stat, &rt_cpu_seq_fops);
Pavel Emelyanov107f1632007-12-05 21:14:28 -0800603 if (!pde)
604 goto err2;
605
Patrick McHardyc7066f72011-01-14 13:36:42 +0100606#ifdef CONFIG_IP_ROUTE_CLASSID
Alexey Dobriyana661c412009-11-25 15:40:35 -0800607 pde = proc_create("rt_acct", 0, net->proc_net, &rt_acct_proc_fops);
Pavel Emelyanov107f1632007-12-05 21:14:28 -0800608 if (!pde)
609 goto err3;
610#endif
611 return 0;
612
Patrick McHardyc7066f72011-01-14 13:36:42 +0100613#ifdef CONFIG_IP_ROUTE_CLASSID
Pavel Emelyanov107f1632007-12-05 21:14:28 -0800614err3:
615 remove_proc_entry("rt_cache", net->proc_net_stat);
616#endif
617err2:
618 remove_proc_entry("rt_cache", net->proc_net);
619err1:
620 return -ENOMEM;
621}
Denis V. Lunev73b38712008-02-28 20:51:18 -0800622
623static void __net_exit ip_rt_do_proc_exit(struct net *net)
624{
625 remove_proc_entry("rt_cache", net->proc_net_stat);
626 remove_proc_entry("rt_cache", net->proc_net);
Patrick McHardyc7066f72011-01-14 13:36:42 +0100627#ifdef CONFIG_IP_ROUTE_CLASSID
Denis V. Lunev73b38712008-02-28 20:51:18 -0800628 remove_proc_entry("rt_acct", net->proc_net);
Alexey Dobriyan0a931ac2010-01-17 03:32:50 +0000629#endif
Denis V. Lunev73b38712008-02-28 20:51:18 -0800630}
631
632static struct pernet_operations ip_rt_proc_ops __net_initdata = {
633 .init = ip_rt_do_proc_init,
634 .exit = ip_rt_do_proc_exit,
635};
636
637static int __init ip_rt_proc_init(void)
638{
639 return register_pernet_subsys(&ip_rt_proc_ops);
640}
641
Pavel Emelyanov107f1632007-12-05 21:14:28 -0800642#else
Denis V. Lunev73b38712008-02-28 20:51:18 -0800643static inline int ip_rt_proc_init(void)
Pavel Emelyanov107f1632007-12-05 21:14:28 -0800644{
645 return 0;
646}
Linus Torvalds1da177e2005-04-16 15:20:36 -0700647#endif /* CONFIG_PROC_FS */
YOSHIFUJI Hideakie905a9e2007-02-09 23:24:47 +0900648
Stephen Hemminger5969f712008-04-10 01:52:09 -0700649static inline void rt_free(struct rtable *rt)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700650{
Changli Gaod8d1f302010-06-10 23:31:35 -0700651 call_rcu_bh(&rt->dst.rcu_head, dst_rcu_free);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700652}
653
Stephen Hemminger5969f712008-04-10 01:52:09 -0700654static inline void rt_drop(struct rtable *rt)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700655{
Linus Torvalds1da177e2005-04-16 15:20:36 -0700656 ip_rt_put(rt);
Changli Gaod8d1f302010-06-10 23:31:35 -0700657 call_rcu_bh(&rt->dst.rcu_head, dst_rcu_free);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700658}
659
Stephen Hemminger5969f712008-04-10 01:52:09 -0700660static inline int rt_fast_clean(struct rtable *rth)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700661{
662 /* Kill broadcast/multicast entries very aggresively, if they
663 collide in hash table with more useful entries */
664 return (rth->rt_flags & (RTCF_BROADCAST | RTCF_MULTICAST)) &&
David S. Millerc7537962010-11-11 17:07:48 -0800665 rt_is_input_route(rth) && rth->dst.rt_next;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700666}
667
Stephen Hemminger5969f712008-04-10 01:52:09 -0700668static inline int rt_valuable(struct rtable *rth)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700669{
670 return (rth->rt_flags & (RTCF_REDIRECTED | RTCF_NOTIFY)) ||
Changli Gaod8d1f302010-06-10 23:31:35 -0700671 rth->dst.expires;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700672}
673
674static int rt_may_expire(struct rtable *rth, unsigned long tmo1, unsigned long tmo2)
675{
676 unsigned long age;
677 int ret = 0;
678
Changli Gaod8d1f302010-06-10 23:31:35 -0700679 if (atomic_read(&rth->dst.__refcnt))
Linus Torvalds1da177e2005-04-16 15:20:36 -0700680 goto out;
681
682 ret = 1;
Changli Gaod8d1f302010-06-10 23:31:35 -0700683 if (rth->dst.expires &&
684 time_after_eq(jiffies, rth->dst.expires))
Linus Torvalds1da177e2005-04-16 15:20:36 -0700685 goto out;
686
Changli Gaod8d1f302010-06-10 23:31:35 -0700687 age = jiffies - rth->dst.lastuse;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700688 ret = 0;
689 if ((age <= tmo1 && !rt_fast_clean(rth)) ||
690 (age <= tmo2 && rt_valuable(rth)))
691 goto out;
692 ret = 1;
693out: return ret;
694}
695
696/* Bits of score are:
697 * 31: very valuable
698 * 30: not quite useless
699 * 29..0: usage counter
700 */
701static inline u32 rt_score(struct rtable *rt)
702{
Changli Gaod8d1f302010-06-10 23:31:35 -0700703 u32 score = jiffies - rt->dst.lastuse;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700704
705 score = ~score & ~(3<<30);
706
707 if (rt_valuable(rt))
708 score |= (1<<31);
709
David S. Millerc7537962010-11-11 17:07:48 -0800710 if (rt_is_output_route(rt) ||
Linus Torvalds1da177e2005-04-16 15:20:36 -0700711 !(rt->rt_flags & (RTCF_BROADCAST|RTCF_MULTICAST|RTCF_LOCAL)))
712 score |= (1<<30);
713
714 return score;
715}
716
Neil Horman1080d702008-10-27 12:28:25 -0700717static inline bool rt_caching(const struct net *net)
718{
719 return net->ipv4.current_rt_cache_rebuild_count <=
720 net->ipv4.sysctl_rt_cache_rebuild_count;
721}
722
723static inline bool compare_hash_inputs(const struct flowi *fl1,
724 const struct flowi *fl2)
725{
Changli Gao58116622010-11-12 18:43:55 +0000726 return ((((__force u32)fl1->fl4_dst ^ (__force u32)fl2->fl4_dst) |
727 ((__force u32)fl1->fl4_src ^ (__force u32)fl2->fl4_src) |
Neil Horman1080d702008-10-27 12:28:25 -0700728 (fl1->iif ^ fl2->iif)) == 0);
729}
730
Linus Torvalds1da177e2005-04-16 15:20:36 -0700731static inline int compare_keys(struct flowi *fl1, struct flowi *fl2)
732{
Changli Gao58116622010-11-12 18:43:55 +0000733 return (((__force u32)fl1->fl4_dst ^ (__force u32)fl2->fl4_dst) |
734 ((__force u32)fl1->fl4_src ^ (__force u32)fl2->fl4_src) |
Thomas Graf47dcf0c2006-11-09 15:20:38 -0800735 (fl1->mark ^ fl2->mark) |
Changli Gao58116622010-11-12 18:43:55 +0000736 (*(u16 *)&fl1->fl4_tos ^ *(u16 *)&fl2->fl4_tos) |
David S. Miller8238b212006-10-12 00:49:15 -0700737 (fl1->oif ^ fl2->oif) |
738 (fl1->iif ^ fl2->iif)) == 0;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700739}
740
Denis V. Lunevb5921912008-01-22 23:50:25 -0800741static inline int compare_netns(struct rtable *rt1, struct rtable *rt2)
742{
Changli Gaod8d1f302010-06-10 23:31:35 -0700743 return net_eq(dev_net(rt1->dst.dev), dev_net(rt2->dst.dev));
Denis V. Lunevb5921912008-01-22 23:50:25 -0800744}
745
Denis V. Luneve84f84f2008-07-05 19:04:32 -0700746static inline int rt_is_expired(struct rtable *rth)
747{
Changli Gaod8d1f302010-06-10 23:31:35 -0700748 return rth->rt_genid != rt_genid(dev_net(rth->dst.dev));
Denis V. Luneve84f84f2008-07-05 19:04:32 -0700749}
750
Eric Dumazetbeb659b2007-11-19 22:43:37 -0800751/*
752 * Perform a full scan of hash table and free all entries.
753 * Can be called by a softirq or a process.
754 * In the later case, we want to be reschedule if necessary
755 */
David S. Miller6561a3b2010-12-19 21:11:20 -0800756static void rt_do_flush(struct net *net, int process_context)
Eric Dumazetbeb659b2007-11-19 22:43:37 -0800757{
758 unsigned int i;
759 struct rtable *rth, *next;
760
761 for (i = 0; i <= rt_hash_mask; i++) {
David S. Miller6561a3b2010-12-19 21:11:20 -0800762 struct rtable __rcu **pprev;
763 struct rtable *list;
764
Eric Dumazetbeb659b2007-11-19 22:43:37 -0800765 if (process_context && need_resched())
766 cond_resched();
Eric Dumazet1c317202010-10-25 21:02:07 +0000767 rth = rcu_dereference_raw(rt_hash_table[i].chain);
Eric Dumazetbeb659b2007-11-19 22:43:37 -0800768 if (!rth)
769 continue;
770
771 spin_lock_bh(rt_hash_lock_addr(i));
Denis V. Lunev32cb5b42008-07-05 19:06:12 -0700772
David S. Miller6561a3b2010-12-19 21:11:20 -0800773 list = NULL;
774 pprev = &rt_hash_table[i].chain;
775 rth = rcu_dereference_protected(*pprev,
Eric Dumazet1c317202010-10-25 21:02:07 +0000776 lockdep_is_held(rt_hash_lock_addr(i)));
Denis V. Lunev32cb5b42008-07-05 19:06:12 -0700777
David S. Miller6561a3b2010-12-19 21:11:20 -0800778 while (rth) {
779 next = rcu_dereference_protected(rth->dst.rt_next,
780 lockdep_is_held(rt_hash_lock_addr(i)));
Denis V. Lunev32cb5b42008-07-05 19:06:12 -0700781
David S. Miller6561a3b2010-12-19 21:11:20 -0800782 if (!net ||
783 net_eq(dev_net(rth->dst.dev), net)) {
784 rcu_assign_pointer(*pprev, next);
785 rcu_assign_pointer(rth->dst.rt_next, list);
786 list = rth;
Denis V. Lunev32cb5b42008-07-05 19:06:12 -0700787 } else {
David S. Miller6561a3b2010-12-19 21:11:20 -0800788 pprev = &rth->dst.rt_next;
Denis V. Lunev32cb5b42008-07-05 19:06:12 -0700789 }
David S. Miller6561a3b2010-12-19 21:11:20 -0800790 rth = next;
Denis V. Lunev32cb5b42008-07-05 19:06:12 -0700791 }
David S. Miller6561a3b2010-12-19 21:11:20 -0800792
Eric Dumazetbeb659b2007-11-19 22:43:37 -0800793 spin_unlock_bh(rt_hash_lock_addr(i));
794
David S. Miller6561a3b2010-12-19 21:11:20 -0800795 for (; list; list = next) {
796 next = rcu_dereference_protected(list->dst.rt_next, 1);
797 rt_free(list);
Eric Dumazetbeb659b2007-11-19 22:43:37 -0800798 }
799 }
800}
801
Neil Horman1080d702008-10-27 12:28:25 -0700802/*
803 * While freeing expired entries, we compute average chain length
804 * and standard deviation, using fixed-point arithmetic.
805 * This to have an estimation of rt_chain_length_max
806 * rt_chain_length_max = max(elasticity, AVG + 4*SD)
807 * We use 3 bits for frational part, and 29 (or 61) for magnitude.
808 */
809
810#define FRACT_BITS 3
811#define ONE (1UL << FRACT_BITS)
812
Eric Dumazet98376382010-03-08 03:20:00 +0000813/*
814 * Given a hash chain and an item in this hash chain,
815 * find if a previous entry has the same hash_inputs
816 * (but differs on tos, mark or oif)
817 * Returns 0 if an alias is found.
818 * Returns ONE if rth has no alias before itself.
819 */
820static int has_noalias(const struct rtable *head, const struct rtable *rth)
821{
822 const struct rtable *aux = head;
823
824 while (aux != rth) {
825 if (compare_hash_inputs(&aux->fl, &rth->fl))
826 return 0;
Eric Dumazet1c317202010-10-25 21:02:07 +0000827 aux = rcu_dereference_protected(aux->dst.rt_next, 1);
Eric Dumazet98376382010-03-08 03:20:00 +0000828 }
829 return ONE;
830}
831
Eric Dumazetbeb659b2007-11-19 22:43:37 -0800832static void rt_check_expire(void)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700833{
Eric Dumazetbb1d23b2005-07-05 15:00:32 -0700834 static unsigned int rover;
835 unsigned int i = rover, goal;
Eric Dumazet1c317202010-10-25 21:02:07 +0000836 struct rtable *rth;
837 struct rtable __rcu **rthp;
Eric Dumazetcf8da762009-05-19 18:54:22 +0000838 unsigned long samples = 0;
Neil Horman1080d702008-10-27 12:28:25 -0700839 unsigned long sum = 0, sum2 = 0;
Eric Dumazet125bb8f2009-06-11 20:10:07 +0000840 unsigned long delta;
Eric Dumazetbb1d23b2005-07-05 15:00:32 -0700841 u64 mult;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700842
Eric Dumazet125bb8f2009-06-11 20:10:07 +0000843 delta = jiffies - expires_ljiffies;
844 expires_ljiffies = jiffies;
845 mult = ((u64)delta) << rt_hash_log;
Eric Dumazetbb1d23b2005-07-05 15:00:32 -0700846 if (ip_rt_gc_timeout > 1)
847 do_div(mult, ip_rt_gc_timeout);
848 goal = (unsigned int)mult;
Eric Dumazet39c90ec2007-09-15 10:55:54 -0700849 if (goal > rt_hash_mask)
850 goal = rt_hash_mask + 1;
Eric Dumazetbb1d23b2005-07-05 15:00:32 -0700851 for (; goal > 0; goal--) {
Linus Torvalds1da177e2005-04-16 15:20:36 -0700852 unsigned long tmo = ip_rt_gc_timeout;
Eric Dumazetcf8da762009-05-19 18:54:22 +0000853 unsigned long length;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700854
855 i = (i + 1) & rt_hash_mask;
856 rthp = &rt_hash_table[i].chain;
857
Eric Dumazetd90bf5a2007-11-14 16:14:05 -0800858 if (need_resched())
859 cond_resched();
860
Neil Horman1080d702008-10-27 12:28:25 -0700861 samples++;
862
Eric Dumazet1c317202010-10-25 21:02:07 +0000863 if (rcu_dereference_raw(*rthp) == NULL)
Eric Dumazetbb1d23b2005-07-05 15:00:32 -0700864 continue;
Eric Dumazetcf8da762009-05-19 18:54:22 +0000865 length = 0;
Eric Dumazet39c90ec2007-09-15 10:55:54 -0700866 spin_lock_bh(rt_hash_lock_addr(i));
Eric Dumazet1c317202010-10-25 21:02:07 +0000867 while ((rth = rcu_dereference_protected(*rthp,
868 lockdep_is_held(rt_hash_lock_addr(i)))) != NULL) {
Changli Gaod8d1f302010-06-10 23:31:35 -0700869 prefetch(rth->dst.rt_next);
Denis V. Luneve84f84f2008-07-05 19:04:32 -0700870 if (rt_is_expired(rth)) {
Changli Gaod8d1f302010-06-10 23:31:35 -0700871 *rthp = rth->dst.rt_next;
Eric Dumazet29e75252008-01-31 17:05:09 -0800872 rt_free(rth);
873 continue;
874 }
Changli Gaod8d1f302010-06-10 23:31:35 -0700875 if (rth->dst.expires) {
Linus Torvalds1da177e2005-04-16 15:20:36 -0700876 /* Entry is expired even if it is in use */
Changli Gaod8d1f302010-06-10 23:31:35 -0700877 if (time_before_eq(jiffies, rth->dst.expires)) {
Eric Dumazet1ddbcb02009-05-19 20:14:28 +0000878nofree:
Linus Torvalds1da177e2005-04-16 15:20:36 -0700879 tmo >>= 1;
Changli Gaod8d1f302010-06-10 23:31:35 -0700880 rthp = &rth->dst.rt_next;
Neil Horman1080d702008-10-27 12:28:25 -0700881 /*
Eric Dumazet1ddbcb02009-05-19 20:14:28 +0000882 * We only count entries on
Neil Horman1080d702008-10-27 12:28:25 -0700883 * a chain with equal hash inputs once
884 * so that entries for different QOS
885 * levels, and other non-hash input
886 * attributes don't unfairly skew
887 * the length computation
888 */
Eric Dumazet98376382010-03-08 03:20:00 +0000889 length += has_noalias(rt_hash_table[i].chain, rth);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700890 continue;
891 }
Eric Dumazet1ddbcb02009-05-19 20:14:28 +0000892 } else if (!rt_may_expire(rth, tmo, ip_rt_gc_timeout))
893 goto nofree;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700894
895 /* Cleanup aged off entries. */
Changli Gaod8d1f302010-06-10 23:31:35 -0700896 *rthp = rth->dst.rt_next;
YOSHIFUJI Hideakie905a9e2007-02-09 23:24:47 +0900897 rt_free(rth);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700898 }
Eric Dumazet39c90ec2007-09-15 10:55:54 -0700899 spin_unlock_bh(rt_hash_lock_addr(i));
Neil Horman1080d702008-10-27 12:28:25 -0700900 sum += length;
901 sum2 += length*length;
902 }
903 if (samples) {
904 unsigned long avg = sum / samples;
905 unsigned long sd = int_sqrt(sum2 / samples - avg*avg);
906 rt_chain_length_max = max_t(unsigned long,
907 ip_rt_gc_elasticity,
908 (avg + 4*sd) >> FRACT_BITS);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700909 }
910 rover = i;
Eric Dumazetbeb659b2007-11-19 22:43:37 -0800911}
912
913/*
914 * rt_worker_func() is run in process context.
Eric Dumazet29e75252008-01-31 17:05:09 -0800915 * we call rt_check_expire() to scan part of the hash table
Eric Dumazetbeb659b2007-11-19 22:43:37 -0800916 */
917static void rt_worker_func(struct work_struct *work)
918{
Eric Dumazet29e75252008-01-31 17:05:09 -0800919 rt_check_expire();
Eric Dumazet39c90ec2007-09-15 10:55:54 -0700920 schedule_delayed_work(&expires_work, ip_rt_gc_interval);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700921}
922
Eric Dumazet29e75252008-01-31 17:05:09 -0800923/*
924 * Pertubation of rt_genid by a small quantity [1..256]
925 * Using 8 bits of shuffling ensure we can call rt_cache_invalidate()
926 * many times (2^24) without giving recent rt_genid.
927 * Jenkins hash is strong enough that litle changes of rt_genid are OK.
Linus Torvalds1da177e2005-04-16 15:20:36 -0700928 */
Denis V. Lunev86c657f2008-07-05 19:03:31 -0700929static void rt_cache_invalidate(struct net *net)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700930{
Eric Dumazet29e75252008-01-31 17:05:09 -0800931 unsigned char shuffle;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700932
Eric Dumazet29e75252008-01-31 17:05:09 -0800933 get_random_bytes(&shuffle, sizeof(shuffle));
Denis V. Luneve84f84f2008-07-05 19:04:32 -0700934 atomic_add(shuffle + 1U, &net->ipv4.rt_genid);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700935}
936
Eric Dumazetbeb659b2007-11-19 22:43:37 -0800937/*
Eric Dumazet29e75252008-01-31 17:05:09 -0800938 * delay < 0 : invalidate cache (fast : entries will be deleted later)
939 * delay >= 0 : invalidate & flush cache (can be long)
940 */
Denis V. Lunev76e6ebf2008-07-05 19:00:44 -0700941void rt_cache_flush(struct net *net, int delay)
Eric Dumazet29e75252008-01-31 17:05:09 -0800942{
Denis V. Lunev86c657f2008-07-05 19:03:31 -0700943 rt_cache_invalidate(net);
Eric Dumazet29e75252008-01-31 17:05:09 -0800944 if (delay >= 0)
David S. Miller6561a3b2010-12-19 21:11:20 -0800945 rt_do_flush(net, !in_softirq());
Eric Dumazet29e75252008-01-31 17:05:09 -0800946}
947
Eric W. Biedermana5ee1552009-11-29 15:45:58 +0000948/* Flush previous cache invalidated entries from the cache */
David S. Miller6561a3b2010-12-19 21:11:20 -0800949void rt_cache_flush_batch(struct net *net)
Eric W. Biedermana5ee1552009-11-29 15:45:58 +0000950{
David S. Miller6561a3b2010-12-19 21:11:20 -0800951 rt_do_flush(net, !in_softirq());
Eric W. Biedermana5ee1552009-11-29 15:45:58 +0000952}
953
Neil Horman1080d702008-10-27 12:28:25 -0700954static void rt_emergency_hash_rebuild(struct net *net)
955{
Neil Horman3ee94372010-05-08 01:57:52 -0700956 if (net_ratelimit())
Neil Horman1080d702008-10-27 12:28:25 -0700957 printk(KERN_WARNING "Route hash chain too long!\n");
Neil Horman3ee94372010-05-08 01:57:52 -0700958 rt_cache_invalidate(net);
Neil Horman1080d702008-10-27 12:28:25 -0700959}
960
Linus Torvalds1da177e2005-04-16 15:20:36 -0700961/*
962 Short description of GC goals.
963
964 We want to build algorithm, which will keep routing cache
965 at some equilibrium point, when number of aged off entries
966 is kept approximately equal to newly generated ones.
967
968 Current expiration strength is variable "expire".
969 We try to adjust it dynamically, so that if networking
970 is idle expires is large enough to keep enough of warm entries,
971 and when load increases it reduces to limit cache size.
972 */
973
Daniel Lezcano569d3642008-01-18 03:56:57 -0800974static int rt_garbage_collect(struct dst_ops *ops)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700975{
976 static unsigned long expire = RT_GC_TIMEOUT;
977 static unsigned long last_gc;
978 static int rover;
979 static int equilibrium;
Eric Dumazet1c317202010-10-25 21:02:07 +0000980 struct rtable *rth;
981 struct rtable __rcu **rthp;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700982 unsigned long now = jiffies;
983 int goal;
Eric Dumazetfc66f952010-10-08 06:37:34 +0000984 int entries = dst_entries_get_fast(&ipv4_dst_ops);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700985
986 /*
987 * Garbage collection is pretty expensive,
988 * do not make it too frequently.
989 */
990
991 RT_CACHE_STAT_INC(gc_total);
992
993 if (now - last_gc < ip_rt_gc_min_interval &&
Eric Dumazetfc66f952010-10-08 06:37:34 +0000994 entries < ip_rt_max_size) {
Linus Torvalds1da177e2005-04-16 15:20:36 -0700995 RT_CACHE_STAT_INC(gc_ignored);
996 goto out;
997 }
998
Eric Dumazetfc66f952010-10-08 06:37:34 +0000999 entries = dst_entries_get_slow(&ipv4_dst_ops);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001000 /* Calculate number of entries, which we want to expire now. */
Eric Dumazetfc66f952010-10-08 06:37:34 +00001001 goal = entries - (ip_rt_gc_elasticity << rt_hash_log);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001002 if (goal <= 0) {
1003 if (equilibrium < ipv4_dst_ops.gc_thresh)
1004 equilibrium = ipv4_dst_ops.gc_thresh;
Eric Dumazetfc66f952010-10-08 06:37:34 +00001005 goal = entries - equilibrium;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001006 if (goal > 0) {
Eric Dumazetb790ced2007-12-21 01:49:07 -08001007 equilibrium += min_t(unsigned int, goal >> 1, rt_hash_mask + 1);
Eric Dumazetfc66f952010-10-08 06:37:34 +00001008 goal = entries - equilibrium;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001009 }
1010 } else {
1011 /* We are in dangerous area. Try to reduce cache really
1012 * aggressively.
1013 */
Eric Dumazetb790ced2007-12-21 01:49:07 -08001014 goal = max_t(unsigned int, goal >> 1, rt_hash_mask + 1);
Eric Dumazetfc66f952010-10-08 06:37:34 +00001015 equilibrium = entries - goal;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001016 }
1017
1018 if (now - last_gc >= ip_rt_gc_min_interval)
1019 last_gc = now;
1020
1021 if (goal <= 0) {
1022 equilibrium += goal;
1023 goto work_done;
1024 }
1025
1026 do {
1027 int i, k;
1028
1029 for (i = rt_hash_mask, k = rover; i >= 0; i--) {
1030 unsigned long tmo = expire;
1031
1032 k = (k + 1) & rt_hash_mask;
1033 rthp = &rt_hash_table[k].chain;
Eric Dumazet22c047c2005-07-05 14:55:24 -07001034 spin_lock_bh(rt_hash_lock_addr(k));
Eric Dumazet1c317202010-10-25 21:02:07 +00001035 while ((rth = rcu_dereference_protected(*rthp,
1036 lockdep_is_held(rt_hash_lock_addr(k)))) != NULL) {
Denis V. Luneve84f84f2008-07-05 19:04:32 -07001037 if (!rt_is_expired(rth) &&
Eric Dumazet29e75252008-01-31 17:05:09 -08001038 !rt_may_expire(rth, tmo, expire)) {
Linus Torvalds1da177e2005-04-16 15:20:36 -07001039 tmo >>= 1;
Changli Gaod8d1f302010-06-10 23:31:35 -07001040 rthp = &rth->dst.rt_next;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001041 continue;
1042 }
Changli Gaod8d1f302010-06-10 23:31:35 -07001043 *rthp = rth->dst.rt_next;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001044 rt_free(rth);
1045 goal--;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001046 }
Eric Dumazet22c047c2005-07-05 14:55:24 -07001047 spin_unlock_bh(rt_hash_lock_addr(k));
Linus Torvalds1da177e2005-04-16 15:20:36 -07001048 if (goal <= 0)
1049 break;
1050 }
1051 rover = k;
1052
1053 if (goal <= 0)
1054 goto work_done;
1055
1056 /* Goal is not achieved. We stop process if:
1057
1058 - if expire reduced to zero. Otherwise, expire is halfed.
1059 - if table is not full.
1060 - if we are called from interrupt.
1061 - jiffies check is just fallback/debug loop breaker.
1062 We will not spin here for long time in any case.
1063 */
1064
1065 RT_CACHE_STAT_INC(gc_goal_miss);
1066
1067 if (expire == 0)
1068 break;
1069
1070 expire >>= 1;
1071#if RT_CACHE_DEBUG >= 2
1072 printk(KERN_DEBUG "expire>> %u %d %d %d\n", expire,
Eric Dumazetfc66f952010-10-08 06:37:34 +00001073 dst_entries_get_fast(&ipv4_dst_ops), goal, i);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001074#endif
1075
Eric Dumazetfc66f952010-10-08 06:37:34 +00001076 if (dst_entries_get_fast(&ipv4_dst_ops) < ip_rt_max_size)
Linus Torvalds1da177e2005-04-16 15:20:36 -07001077 goto out;
1078 } while (!in_softirq() && time_before_eq(jiffies, now));
1079
Eric Dumazetfc66f952010-10-08 06:37:34 +00001080 if (dst_entries_get_fast(&ipv4_dst_ops) < ip_rt_max_size)
1081 goto out;
1082 if (dst_entries_get_slow(&ipv4_dst_ops) < ip_rt_max_size)
Linus Torvalds1da177e2005-04-16 15:20:36 -07001083 goto out;
1084 if (net_ratelimit())
1085 printk(KERN_WARNING "dst cache overflow\n");
1086 RT_CACHE_STAT_INC(gc_dst_overflow);
1087 return 1;
1088
1089work_done:
1090 expire += ip_rt_gc_min_interval;
1091 if (expire > ip_rt_gc_timeout ||
Eric Dumazetfc66f952010-10-08 06:37:34 +00001092 dst_entries_get_fast(&ipv4_dst_ops) < ipv4_dst_ops.gc_thresh ||
1093 dst_entries_get_slow(&ipv4_dst_ops) < ipv4_dst_ops.gc_thresh)
Linus Torvalds1da177e2005-04-16 15:20:36 -07001094 expire = ip_rt_gc_timeout;
1095#if RT_CACHE_DEBUG >= 2
1096 printk(KERN_DEBUG "expire++ %u %d %d %d\n", expire,
Eric Dumazetfc66f952010-10-08 06:37:34 +00001097 dst_entries_get_fast(&ipv4_dst_ops), goal, rover);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001098#endif
1099out: return 0;
1100}
1101
Eric Dumazet98376382010-03-08 03:20:00 +00001102/*
1103 * Returns number of entries in a hash chain that have different hash_inputs
1104 */
1105static int slow_chain_length(const struct rtable *head)
1106{
1107 int length = 0;
1108 const struct rtable *rth = head;
1109
1110 while (rth) {
1111 length += has_noalias(head, rth);
Eric Dumazet1c317202010-10-25 21:02:07 +00001112 rth = rcu_dereference_protected(rth->dst.rt_next, 1);
Eric Dumazet98376382010-03-08 03:20:00 +00001113 }
1114 return length >> FRACT_BITS;
1115}
1116
Eric Dumazet511c3f92009-06-02 05:14:27 +00001117static int rt_intern_hash(unsigned hash, struct rtable *rt,
Pavel Emelyanov6a2bad72010-03-24 21:51:22 +00001118 struct rtable **rp, struct sk_buff *skb, int ifindex)
Linus Torvalds1da177e2005-04-16 15:20:36 -07001119{
Eric Dumazet1c317202010-10-25 21:02:07 +00001120 struct rtable *rth, *cand;
1121 struct rtable __rcu **rthp, **candp;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001122 unsigned long now;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001123 u32 min_score;
1124 int chain_length;
1125 int attempts = !in_softirq();
1126
1127restart:
1128 chain_length = 0;
1129 min_score = ~(u32)0;
1130 cand = NULL;
1131 candp = NULL;
1132 now = jiffies;
1133
Changli Gaod8d1f302010-06-10 23:31:35 -07001134 if (!rt_caching(dev_net(rt->dst.dev))) {
Neil Horman73e42892009-06-20 01:15:16 -07001135 /*
1136 * If we're not caching, just tell the caller we
1137 * were successful and don't touch the route. The
1138 * caller hold the sole reference to the cache entry, and
1139 * it will be released when the caller is done with it.
1140 * If we drop it here, the callers have no way to resolve routes
1141 * when we're not caching. Instead, just point *rp at rt, so
1142 * the caller gets a single use out of the route
Neil Hormanb6280b42009-06-22 10:18:53 +00001143 * Note that we do rt_free on this new route entry, so that
1144 * once its refcount hits zero, we are still able to reap it
1145 * (Thanks Alexey)
Eric Dumazet27b75c92010-10-15 05:44:11 +00001146 * Note: To avoid expensive rcu stuff for this uncached dst,
1147 * we set DST_NOCACHE so that dst_release() can free dst without
1148 * waiting a grace period.
Neil Horman73e42892009-06-20 01:15:16 -07001149 */
Neil Hormanb6280b42009-06-22 10:18:53 +00001150
Eric Dumazetc7d44262010-10-03 22:17:54 -07001151 rt->dst.flags |= DST_NOCACHE;
David S. Millerc7537962010-11-11 17:07:48 -08001152 if (rt->rt_type == RTN_UNICAST || rt_is_output_route(rt)) {
Changli Gaod8d1f302010-06-10 23:31:35 -07001153 int err = arp_bind_neighbour(&rt->dst);
Neil Hormanb6280b42009-06-22 10:18:53 +00001154 if (err) {
1155 if (net_ratelimit())
1156 printk(KERN_WARNING
1157 "Neighbour table failure & not caching routes.\n");
Eric Dumazet27b75c92010-10-15 05:44:11 +00001158 ip_rt_put(rt);
Neil Hormanb6280b42009-06-22 10:18:53 +00001159 return err;
1160 }
1161 }
1162
Neil Hormanb6280b42009-06-22 10:18:53 +00001163 goto skip_hashing;
Neil Horman1080d702008-10-27 12:28:25 -07001164 }
1165
Linus Torvalds1da177e2005-04-16 15:20:36 -07001166 rthp = &rt_hash_table[hash].chain;
1167
Eric Dumazet22c047c2005-07-05 14:55:24 -07001168 spin_lock_bh(rt_hash_lock_addr(hash));
Eric Dumazet1c317202010-10-25 21:02:07 +00001169 while ((rth = rcu_dereference_protected(*rthp,
1170 lockdep_is_held(rt_hash_lock_addr(hash)))) != NULL) {
Denis V. Luneve84f84f2008-07-05 19:04:32 -07001171 if (rt_is_expired(rth)) {
Changli Gaod8d1f302010-06-10 23:31:35 -07001172 *rthp = rth->dst.rt_next;
Eric Dumazet29e75252008-01-31 17:05:09 -08001173 rt_free(rth);
1174 continue;
1175 }
Denis V. Lunevb5921912008-01-22 23:50:25 -08001176 if (compare_keys(&rth->fl, &rt->fl) && compare_netns(rth, rt)) {
Linus Torvalds1da177e2005-04-16 15:20:36 -07001177 /* Put it first */
Changli Gaod8d1f302010-06-10 23:31:35 -07001178 *rthp = rth->dst.rt_next;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001179 /*
1180 * Since lookup is lockfree, the deletion
1181 * must be visible to another weakly ordered CPU before
1182 * the insertion at the start of the hash chain.
1183 */
Changli Gaod8d1f302010-06-10 23:31:35 -07001184 rcu_assign_pointer(rth->dst.rt_next,
Linus Torvalds1da177e2005-04-16 15:20:36 -07001185 rt_hash_table[hash].chain);
1186 /*
1187 * Since lookup is lockfree, the update writes
1188 * must be ordered for consistency on SMP.
1189 */
1190 rcu_assign_pointer(rt_hash_table[hash].chain, rth);
1191
Changli Gaod8d1f302010-06-10 23:31:35 -07001192 dst_use(&rth->dst, now);
Eric Dumazet22c047c2005-07-05 14:55:24 -07001193 spin_unlock_bh(rt_hash_lock_addr(hash));
Linus Torvalds1da177e2005-04-16 15:20:36 -07001194
1195 rt_drop(rt);
Eric Dumazet511c3f92009-06-02 05:14:27 +00001196 if (rp)
1197 *rp = rth;
1198 else
Changli Gaod8d1f302010-06-10 23:31:35 -07001199 skb_dst_set(skb, &rth->dst);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001200 return 0;
1201 }
1202
Changli Gaod8d1f302010-06-10 23:31:35 -07001203 if (!atomic_read(&rth->dst.__refcnt)) {
Linus Torvalds1da177e2005-04-16 15:20:36 -07001204 u32 score = rt_score(rth);
1205
1206 if (score <= min_score) {
1207 cand = rth;
1208 candp = rthp;
1209 min_score = score;
1210 }
1211 }
1212
1213 chain_length++;
1214
Changli Gaod8d1f302010-06-10 23:31:35 -07001215 rthp = &rth->dst.rt_next;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001216 }
1217
1218 if (cand) {
1219 /* ip_rt_gc_elasticity used to be average length of chain
1220 * length, when exceeded gc becomes really aggressive.
1221 *
1222 * The second limit is less certain. At the moment it allows
1223 * only 2 entries per bucket. We will see.
1224 */
1225 if (chain_length > ip_rt_gc_elasticity) {
Changli Gaod8d1f302010-06-10 23:31:35 -07001226 *candp = cand->dst.rt_next;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001227 rt_free(cand);
1228 }
Neil Horman1080d702008-10-27 12:28:25 -07001229 } else {
Eric Dumazet98376382010-03-08 03:20:00 +00001230 if (chain_length > rt_chain_length_max &&
1231 slow_chain_length(rt_hash_table[hash].chain) > rt_chain_length_max) {
Changli Gaod8d1f302010-06-10 23:31:35 -07001232 struct net *net = dev_net(rt->dst.dev);
Neil Horman1080d702008-10-27 12:28:25 -07001233 int num = ++net->ipv4.current_rt_cache_rebuild_count;
Pavel Emelyanovb35ecb52010-03-24 07:43:17 +00001234 if (!rt_caching(net)) {
Neil Horman1080d702008-10-27 12:28:25 -07001235 printk(KERN_WARNING "%s: %d rebuilds is over limit, route caching disabled\n",
Changli Gaod8d1f302010-06-10 23:31:35 -07001236 rt->dst.dev->name, num);
Neil Horman1080d702008-10-27 12:28:25 -07001237 }
Pavel Emelyanovb35ecb52010-03-24 07:43:17 +00001238 rt_emergency_hash_rebuild(net);
Pavel Emelyanov6a2bad72010-03-24 21:51:22 +00001239 spin_unlock_bh(rt_hash_lock_addr(hash));
1240
1241 hash = rt_hash(rt->fl.fl4_dst, rt->fl.fl4_src,
1242 ifindex, rt_genid(net));
1243 goto restart;
Neil Horman1080d702008-10-27 12:28:25 -07001244 }
Linus Torvalds1da177e2005-04-16 15:20:36 -07001245 }
1246
1247 /* Try to bind route to arp only if it is output
1248 route or unicast forwarding path.
1249 */
David S. Millerc7537962010-11-11 17:07:48 -08001250 if (rt->rt_type == RTN_UNICAST || rt_is_output_route(rt)) {
Changli Gaod8d1f302010-06-10 23:31:35 -07001251 int err = arp_bind_neighbour(&rt->dst);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001252 if (err) {
Eric Dumazet22c047c2005-07-05 14:55:24 -07001253 spin_unlock_bh(rt_hash_lock_addr(hash));
Linus Torvalds1da177e2005-04-16 15:20:36 -07001254
1255 if (err != -ENOBUFS) {
1256 rt_drop(rt);
1257 return err;
1258 }
1259
1260 /* Neighbour tables are full and nothing
1261 can be released. Try to shrink route cache,
1262 it is most likely it holds some neighbour records.
1263 */
1264 if (attempts-- > 0) {
1265 int saved_elasticity = ip_rt_gc_elasticity;
1266 int saved_int = ip_rt_gc_min_interval;
1267 ip_rt_gc_elasticity = 1;
1268 ip_rt_gc_min_interval = 0;
Daniel Lezcano569d3642008-01-18 03:56:57 -08001269 rt_garbage_collect(&ipv4_dst_ops);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001270 ip_rt_gc_min_interval = saved_int;
1271 ip_rt_gc_elasticity = saved_elasticity;
1272 goto restart;
1273 }
1274
1275 if (net_ratelimit())
Ulrich Weber7e1b33e2010-09-27 15:02:18 -07001276 printk(KERN_WARNING "ipv4: Neighbour table overflow.\n");
Linus Torvalds1da177e2005-04-16 15:20:36 -07001277 rt_drop(rt);
1278 return -ENOBUFS;
1279 }
1280 }
1281
Changli Gaod8d1f302010-06-10 23:31:35 -07001282 rt->dst.rt_next = rt_hash_table[hash].chain;
Neil Horman1080d702008-10-27 12:28:25 -07001283
Linus Torvalds1da177e2005-04-16 15:20:36 -07001284#if RT_CACHE_DEBUG >= 2
Changli Gaod8d1f302010-06-10 23:31:35 -07001285 if (rt->dst.rt_next) {
Linus Torvalds1da177e2005-04-16 15:20:36 -07001286 struct rtable *trt;
Neil Hormanb6280b42009-06-22 10:18:53 +00001287 printk(KERN_DEBUG "rt_cache @%02x: %pI4",
1288 hash, &rt->rt_dst);
Changli Gaod8d1f302010-06-10 23:31:35 -07001289 for (trt = rt->dst.rt_next; trt; trt = trt->dst.rt_next)
Harvey Harrison673d57e2008-10-31 00:53:57 -07001290 printk(" . %pI4", &trt->rt_dst);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001291 printk("\n");
1292 }
1293#endif
Eric Dumazet00269b52008-10-16 14:18:29 -07001294 /*
1295 * Since lookup is lockfree, we must make sure
1296 * previous writes to rt are comitted to memory
1297 * before making rt visible to other CPUS.
1298 */
Eric Dumazet1ddbcb02009-05-19 20:14:28 +00001299 rcu_assign_pointer(rt_hash_table[hash].chain, rt);
Neil Horman1080d702008-10-27 12:28:25 -07001300
Eric Dumazet22c047c2005-07-05 14:55:24 -07001301 spin_unlock_bh(rt_hash_lock_addr(hash));
Neil Horman73e42892009-06-20 01:15:16 -07001302
Neil Hormanb6280b42009-06-22 10:18:53 +00001303skip_hashing:
Eric Dumazet511c3f92009-06-02 05:14:27 +00001304 if (rp)
1305 *rp = rt;
1306 else
Changli Gaod8d1f302010-06-10 23:31:35 -07001307 skb_dst_set(skb, &rt->dst);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001308 return 0;
1309}
1310
1311void rt_bind_peer(struct rtable *rt, int create)
1312{
Linus Torvalds1da177e2005-04-16 15:20:36 -07001313 struct inet_peer *peer;
1314
David S. Millerb534ecf2010-11-30 11:54:19 -08001315 peer = inet_getpeer_v4(rt->rt_dst, create);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001316
Eric Dumazet49e8ab02010-08-19 06:10:45 +00001317 if (peer && cmpxchg(&rt->peer, NULL, peer) != NULL)
Linus Torvalds1da177e2005-04-16 15:20:36 -07001318 inet_putpeer(peer);
1319}
1320
1321/*
1322 * Peer allocation may fail only in serious out-of-memory conditions. However
1323 * we still can generate some output.
1324 * Random ID selection looks a bit dangerous because we have no chances to
1325 * select ID being unique in a reasonable period of time.
1326 * But broken packet identifier may be better than no packet at all.
1327 */
1328static void ip_select_fb_ident(struct iphdr *iph)
1329{
1330 static DEFINE_SPINLOCK(ip_fb_id_lock);
1331 static u32 ip_fallback_id;
1332 u32 salt;
1333
1334 spin_lock_bh(&ip_fb_id_lock);
Al Viroe4485152006-09-26 22:15:01 -07001335 salt = secure_ip_id((__force __be32)ip_fallback_id ^ iph->daddr);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001336 iph->id = htons(salt & 0xFFFF);
1337 ip_fallback_id = salt;
1338 spin_unlock_bh(&ip_fb_id_lock);
1339}
1340
1341void __ip_select_ident(struct iphdr *iph, struct dst_entry *dst, int more)
1342{
1343 struct rtable *rt = (struct rtable *) dst;
1344
1345 if (rt) {
1346 if (rt->peer == NULL)
1347 rt_bind_peer(rt, 1);
1348
1349 /* If peer is attached to destination, it is never detached,
1350 so that we need not to grab a lock to dereference it.
1351 */
1352 if (rt->peer) {
1353 iph->id = htons(inet_getid(rt->peer, more));
1354 return;
1355 }
1356 } else
YOSHIFUJI Hideakie905a9e2007-02-09 23:24:47 +09001357 printk(KERN_DEBUG "rt_bind_peer(0) @%p\n",
Stephen Hemminger9c2b3322005-04-19 22:39:42 -07001358 __builtin_return_address(0));
Linus Torvalds1da177e2005-04-16 15:20:36 -07001359
1360 ip_select_fb_ident(iph);
1361}
Eric Dumazet4bc2f182010-07-09 21:22:10 +00001362EXPORT_SYMBOL(__ip_select_ident);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001363
1364static void rt_del(unsigned hash, struct rtable *rt)
1365{
Eric Dumazet1c317202010-10-25 21:02:07 +00001366 struct rtable __rcu **rthp;
1367 struct rtable *aux;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001368
Eric Dumazet29e75252008-01-31 17:05:09 -08001369 rthp = &rt_hash_table[hash].chain;
Eric Dumazet22c047c2005-07-05 14:55:24 -07001370 spin_lock_bh(rt_hash_lock_addr(hash));
Linus Torvalds1da177e2005-04-16 15:20:36 -07001371 ip_rt_put(rt);
Eric Dumazet1c317202010-10-25 21:02:07 +00001372 while ((aux = rcu_dereference_protected(*rthp,
1373 lockdep_is_held(rt_hash_lock_addr(hash)))) != NULL) {
Denis V. Luneve84f84f2008-07-05 19:04:32 -07001374 if (aux == rt || rt_is_expired(aux)) {
Changli Gaod8d1f302010-06-10 23:31:35 -07001375 *rthp = aux->dst.rt_next;
Eric Dumazet29e75252008-01-31 17:05:09 -08001376 rt_free(aux);
1377 continue;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001378 }
Changli Gaod8d1f302010-06-10 23:31:35 -07001379 rthp = &aux->dst.rt_next;
Eric Dumazet29e75252008-01-31 17:05:09 -08001380 }
Eric Dumazet22c047c2005-07-05 14:55:24 -07001381 spin_unlock_bh(rt_hash_lock_addr(hash));
Linus Torvalds1da177e2005-04-16 15:20:36 -07001382}
1383
Eric Dumazeted7865a42010-06-07 21:49:44 -07001384/* called in rcu_read_lock() section */
Al Virof7655222006-09-26 21:25:43 -07001385void ip_rt_redirect(__be32 old_gw, __be32 daddr, __be32 new_gw,
1386 __be32 saddr, struct net_device *dev)
Linus Torvalds1da177e2005-04-16 15:20:36 -07001387{
1388 int i, k;
Eric Dumazeted7865a42010-06-07 21:49:44 -07001389 struct in_device *in_dev = __in_dev_get_rcu(dev);
Eric Dumazet1c317202010-10-25 21:02:07 +00001390 struct rtable *rth;
1391 struct rtable __rcu **rthp;
Al Virof7655222006-09-26 21:25:43 -07001392 __be32 skeys[2] = { saddr, 0 };
Linus Torvalds1da177e2005-04-16 15:20:36 -07001393 int ikeys[2] = { dev->ifindex, 0 };
Tom Tucker8d717402006-07-30 20:43:36 -07001394 struct netevent_redirect netevent;
Denis V. Lunev317805b2008-02-28 20:50:06 -08001395 struct net *net;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001396
Linus Torvalds1da177e2005-04-16 15:20:36 -07001397 if (!in_dev)
1398 return;
1399
YOSHIFUJI Hideakic346dca2008-03-25 21:47:49 +09001400 net = dev_net(dev);
Joe Perches9d4fb272009-11-23 10:41:23 -08001401 if (new_gw == old_gw || !IN_DEV_RX_REDIRECTS(in_dev) ||
1402 ipv4_is_multicast(new_gw) || ipv4_is_lbcast(new_gw) ||
1403 ipv4_is_zeronet(new_gw))
Linus Torvalds1da177e2005-04-16 15:20:36 -07001404 goto reject_redirect;
1405
Neil Horman1080d702008-10-27 12:28:25 -07001406 if (!rt_caching(net))
1407 goto reject_redirect;
1408
Linus Torvalds1da177e2005-04-16 15:20:36 -07001409 if (!IN_DEV_SHARED_MEDIA(in_dev)) {
1410 if (!inet_addr_onlink(in_dev, new_gw, old_gw))
1411 goto reject_redirect;
1412 if (IN_DEV_SEC_REDIRECTS(in_dev) && ip_fib_check_default(new_gw, dev))
1413 goto reject_redirect;
1414 } else {
Denis V. Lunev317805b2008-02-28 20:50:06 -08001415 if (inet_addr_type(net, new_gw) != RTN_UNICAST)
Linus Torvalds1da177e2005-04-16 15:20:36 -07001416 goto reject_redirect;
1417 }
1418
1419 for (i = 0; i < 2; i++) {
1420 for (k = 0; k < 2; k++) {
Denis V. Lunevb00180d2008-07-05 19:04:09 -07001421 unsigned hash = rt_hash(daddr, skeys[i], ikeys[k],
Denis V. Luneve84f84f2008-07-05 19:04:32 -07001422 rt_genid(net));
Linus Torvalds1da177e2005-04-16 15:20:36 -07001423
Eric Dumazet1c317202010-10-25 21:02:07 +00001424 rthp = &rt_hash_table[hash].chain;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001425
Linus Torvalds1da177e2005-04-16 15:20:36 -07001426 while ((rth = rcu_dereference(*rthp)) != NULL) {
1427 struct rtable *rt;
1428
1429 if (rth->fl.fl4_dst != daddr ||
1430 rth->fl.fl4_src != skeys[i] ||
Linus Torvalds1da177e2005-04-16 15:20:36 -07001431 rth->fl.oif != ikeys[k] ||
David S. Millerc7537962010-11-11 17:07:48 -08001432 rt_is_input_route(rth) ||
Denis V. Luneve84f84f2008-07-05 19:04:32 -07001433 rt_is_expired(rth) ||
Changli Gaod8d1f302010-06-10 23:31:35 -07001434 !net_eq(dev_net(rth->dst.dev), net)) {
1435 rthp = &rth->dst.rt_next;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001436 continue;
1437 }
1438
1439 if (rth->rt_dst != daddr ||
1440 rth->rt_src != saddr ||
Changli Gaod8d1f302010-06-10 23:31:35 -07001441 rth->dst.error ||
Linus Torvalds1da177e2005-04-16 15:20:36 -07001442 rth->rt_gateway != old_gw ||
Changli Gaod8d1f302010-06-10 23:31:35 -07001443 rth->dst.dev != dev)
Linus Torvalds1da177e2005-04-16 15:20:36 -07001444 break;
1445
Changli Gaod8d1f302010-06-10 23:31:35 -07001446 dst_hold(&rth->dst);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001447
1448 rt = dst_alloc(&ipv4_dst_ops);
1449 if (rt == NULL) {
1450 ip_rt_put(rth);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001451 return;
1452 }
1453
1454 /* Copy all the information. */
1455 *rt = *rth;
Changli Gaod8d1f302010-06-10 23:31:35 -07001456 rt->dst.__use = 1;
1457 atomic_set(&rt->dst.__refcnt, 1);
1458 rt->dst.child = NULL;
1459 if (rt->dst.dev)
1460 dev_hold(rt->dst.dev);
Changli Gaod8d1f302010-06-10 23:31:35 -07001461 rt->dst.obsolete = -1;
1462 rt->dst.lastuse = jiffies;
1463 rt->dst.path = &rt->dst;
1464 rt->dst.neighbour = NULL;
1465 rt->dst.hh = NULL;
Alexey Dobriyandef8b4f2008-10-28 13:24:06 -07001466#ifdef CONFIG_XFRM
Changli Gaod8d1f302010-06-10 23:31:35 -07001467 rt->dst.xfrm = NULL;
Alexey Dobriyandef8b4f2008-10-28 13:24:06 -07001468#endif
Denis V. Luneve84f84f2008-07-05 19:04:32 -07001469 rt->rt_genid = rt_genid(net);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001470 rt->rt_flags |= RTCF_REDIRECTED;
1471
1472 /* Gateway is different ... */
1473 rt->rt_gateway = new_gw;
1474
1475 /* Redirect received -> path was valid */
Changli Gaod8d1f302010-06-10 23:31:35 -07001476 dst_confirm(&rth->dst);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001477
1478 if (rt->peer)
1479 atomic_inc(&rt->peer->refcnt);
David S. Miller62fa8a82011-01-26 20:51:05 -08001480 if (rt->fi)
1481 atomic_inc(&rt->fi->fib_clntref);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001482
Changli Gaod8d1f302010-06-10 23:31:35 -07001483 if (arp_bind_neighbour(&rt->dst) ||
1484 !(rt->dst.neighbour->nud_state &
Linus Torvalds1da177e2005-04-16 15:20:36 -07001485 NUD_VALID)) {
Changli Gaod8d1f302010-06-10 23:31:35 -07001486 if (rt->dst.neighbour)
1487 neigh_event_send(rt->dst.neighbour, NULL);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001488 ip_rt_put(rth);
1489 rt_drop(rt);
1490 goto do_next;
1491 }
YOSHIFUJI Hideakie905a9e2007-02-09 23:24:47 +09001492
Changli Gaod8d1f302010-06-10 23:31:35 -07001493 netevent.old = &rth->dst;
1494 netevent.new = &rt->dst;
YOSHIFUJI Hideakie905a9e2007-02-09 23:24:47 +09001495 call_netevent_notifiers(NETEVENT_REDIRECT,
1496 &netevent);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001497
1498 rt_del(hash, rth);
Pavel Emelyanov6a2bad72010-03-24 21:51:22 +00001499 if (!rt_intern_hash(hash, rt, &rt, NULL, rt->fl.oif))
Linus Torvalds1da177e2005-04-16 15:20:36 -07001500 ip_rt_put(rt);
1501 goto do_next;
1502 }
Linus Torvalds1da177e2005-04-16 15:20:36 -07001503 do_next:
1504 ;
1505 }
1506 }
Linus Torvalds1da177e2005-04-16 15:20:36 -07001507 return;
1508
1509reject_redirect:
1510#ifdef CONFIG_IP_ROUTE_VERBOSE
1511 if (IN_DEV_LOG_MARTIANS(in_dev) && net_ratelimit())
Harvey Harrison673d57e2008-10-31 00:53:57 -07001512 printk(KERN_INFO "Redirect from %pI4 on %s about %pI4 ignored.\n"
1513 " Advised path = %pI4 -> %pI4\n",
1514 &old_gw, dev->name, &new_gw,
1515 &saddr, &daddr);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001516#endif
Eric Dumazeted7865a42010-06-07 21:49:44 -07001517 ;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001518}
1519
1520static struct dst_entry *ipv4_negative_advice(struct dst_entry *dst)
1521{
Eric Dumazetee6b9672008-03-05 18:30:47 -08001522 struct rtable *rt = (struct rtable *)dst;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001523 struct dst_entry *ret = dst;
1524
1525 if (rt) {
Timo Teräsd11a4dc2010-03-18 23:20:20 +00001526 if (dst->obsolete > 0) {
Linus Torvalds1da177e2005-04-16 15:20:36 -07001527 ip_rt_put(rt);
1528 ret = NULL;
1529 } else if ((rt->rt_flags & RTCF_REDIRECTED) ||
Changli Gaod8d1f302010-06-10 23:31:35 -07001530 (rt->dst.expires &&
1531 time_after_eq(jiffies, rt->dst.expires))) {
Al Viro8c7bc842006-09-26 21:26:19 -07001532 unsigned hash = rt_hash(rt->fl.fl4_dst, rt->fl.fl4_src,
Denis V. Lunevb00180d2008-07-05 19:04:09 -07001533 rt->fl.oif,
Denis V. Luneve84f84f2008-07-05 19:04:32 -07001534 rt_genid(dev_net(dst->dev)));
Linus Torvalds1da177e2005-04-16 15:20:36 -07001535#if RT_CACHE_DEBUG >= 1
Harvey Harrison673d57e2008-10-31 00:53:57 -07001536 printk(KERN_DEBUG "ipv4_negative_advice: redirect to %pI4/%02x dropped\n",
1537 &rt->rt_dst, rt->fl.fl4_tos);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001538#endif
1539 rt_del(hash, rt);
1540 ret = NULL;
1541 }
1542 }
1543 return ret;
1544}
1545
1546/*
1547 * Algorithm:
1548 * 1. The first ip_rt_redirect_number redirects are sent
1549 * with exponential backoff, then we stop sending them at all,
1550 * assuming that the host ignores our redirects.
1551 * 2. If we did not see packets requiring redirects
1552 * during ip_rt_redirect_silence, we assume that the host
1553 * forgot redirected route and start to send redirects again.
1554 *
1555 * This algorithm is much cheaper and more intelligent than dumb load limiting
1556 * in icmp.c.
1557 *
1558 * NOTE. Do not forget to inhibit load limiting for redirects (redundant)
1559 * and "frag. need" (breaks PMTU discovery) in icmp.c.
1560 */
1561
1562void ip_rt_send_redirect(struct sk_buff *skb)
1563{
Eric Dumazet511c3f92009-06-02 05:14:27 +00001564 struct rtable *rt = skb_rtable(skb);
Eric Dumazet30038fc2009-08-28 23:52:01 -07001565 struct in_device *in_dev;
1566 int log_martians;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001567
Eric Dumazet30038fc2009-08-28 23:52:01 -07001568 rcu_read_lock();
Changli Gaod8d1f302010-06-10 23:31:35 -07001569 in_dev = __in_dev_get_rcu(rt->dst.dev);
Eric Dumazet30038fc2009-08-28 23:52:01 -07001570 if (!in_dev || !IN_DEV_TX_REDIRECTS(in_dev)) {
1571 rcu_read_unlock();
Linus Torvalds1da177e2005-04-16 15:20:36 -07001572 return;
Eric Dumazet30038fc2009-08-28 23:52:01 -07001573 }
1574 log_martians = IN_DEV_LOG_MARTIANS(in_dev);
1575 rcu_read_unlock();
Linus Torvalds1da177e2005-04-16 15:20:36 -07001576
1577 /* No redirected packets during ip_rt_redirect_silence;
1578 * reset the algorithm.
1579 */
Changli Gaod8d1f302010-06-10 23:31:35 -07001580 if (time_after(jiffies, rt->dst.rate_last + ip_rt_redirect_silence))
1581 rt->dst.rate_tokens = 0;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001582
1583 /* Too many ignored redirects; do not send anything
Changli Gaod8d1f302010-06-10 23:31:35 -07001584 * set dst.rate_last to the last seen redirected packet.
Linus Torvalds1da177e2005-04-16 15:20:36 -07001585 */
Changli Gaod8d1f302010-06-10 23:31:35 -07001586 if (rt->dst.rate_tokens >= ip_rt_redirect_number) {
1587 rt->dst.rate_last = jiffies;
Eric Dumazet30038fc2009-08-28 23:52:01 -07001588 return;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001589 }
1590
1591 /* Check for load limit; set rate_last to the latest sent
1592 * redirect.
1593 */
Changli Gaod8d1f302010-06-10 23:31:35 -07001594 if (rt->dst.rate_tokens == 0 ||
Li Yewang14fb8a72006-12-18 00:26:35 -08001595 time_after(jiffies,
Changli Gaod8d1f302010-06-10 23:31:35 -07001596 (rt->dst.rate_last +
1597 (ip_rt_redirect_load << rt->dst.rate_tokens)))) {
Linus Torvalds1da177e2005-04-16 15:20:36 -07001598 icmp_send(skb, ICMP_REDIRECT, ICMP_REDIR_HOST, rt->rt_gateway);
Changli Gaod8d1f302010-06-10 23:31:35 -07001599 rt->dst.rate_last = jiffies;
1600 ++rt->dst.rate_tokens;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001601#ifdef CONFIG_IP_ROUTE_VERBOSE
Eric Dumazet30038fc2009-08-28 23:52:01 -07001602 if (log_martians &&
Changli Gaod8d1f302010-06-10 23:31:35 -07001603 rt->dst.rate_tokens == ip_rt_redirect_number &&
Linus Torvalds1da177e2005-04-16 15:20:36 -07001604 net_ratelimit())
Harvey Harrison673d57e2008-10-31 00:53:57 -07001605 printk(KERN_WARNING "host %pI4/if%d ignores redirects for %pI4 to %pI4.\n",
1606 &rt->rt_src, rt->rt_iif,
1607 &rt->rt_dst, &rt->rt_gateway);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001608#endif
1609 }
Linus Torvalds1da177e2005-04-16 15:20:36 -07001610}
1611
1612static int ip_error(struct sk_buff *skb)
1613{
Eric Dumazet511c3f92009-06-02 05:14:27 +00001614 struct rtable *rt = skb_rtable(skb);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001615 unsigned long now;
1616 int code;
1617
Changli Gaod8d1f302010-06-10 23:31:35 -07001618 switch (rt->dst.error) {
Linus Torvalds1da177e2005-04-16 15:20:36 -07001619 case EINVAL:
1620 default:
1621 goto out;
1622 case EHOSTUNREACH:
1623 code = ICMP_HOST_UNREACH;
1624 break;
1625 case ENETUNREACH:
1626 code = ICMP_NET_UNREACH;
Changli Gaod8d1f302010-06-10 23:31:35 -07001627 IP_INC_STATS_BH(dev_net(rt->dst.dev),
Pavel Emelyanov7c73a6f2008-07-16 20:20:11 -07001628 IPSTATS_MIB_INNOROUTES);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001629 break;
1630 case EACCES:
1631 code = ICMP_PKT_FILTERED;
1632 break;
1633 }
1634
1635 now = jiffies;
Changli Gaod8d1f302010-06-10 23:31:35 -07001636 rt->dst.rate_tokens += now - rt->dst.rate_last;
1637 if (rt->dst.rate_tokens > ip_rt_error_burst)
1638 rt->dst.rate_tokens = ip_rt_error_burst;
1639 rt->dst.rate_last = now;
1640 if (rt->dst.rate_tokens >= ip_rt_error_cost) {
1641 rt->dst.rate_tokens -= ip_rt_error_cost;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001642 icmp_send(skb, ICMP_DEST_UNREACH, code, 0);
1643 }
1644
1645out: kfree_skb(skb);
1646 return 0;
YOSHIFUJI Hideakie905a9e2007-02-09 23:24:47 +09001647}
Linus Torvalds1da177e2005-04-16 15:20:36 -07001648
1649/*
1650 * The last two values are not from the RFC but
1651 * are needed for AMPRnet AX.25 paths.
1652 */
1653
Arjan van de Ven9b5b5cf2005-11-29 16:21:38 -08001654static const unsigned short mtu_plateau[] =
Linus Torvalds1da177e2005-04-16 15:20:36 -07001655{32000, 17914, 8166, 4352, 2002, 1492, 576, 296, 216, 128 };
1656
Stephen Hemminger5969f712008-04-10 01:52:09 -07001657static inline unsigned short guess_mtu(unsigned short old_mtu)
Linus Torvalds1da177e2005-04-16 15:20:36 -07001658{
1659 int i;
YOSHIFUJI Hideakie905a9e2007-02-09 23:24:47 +09001660
Linus Torvalds1da177e2005-04-16 15:20:36 -07001661 for (i = 0; i < ARRAY_SIZE(mtu_plateau); i++)
1662 if (old_mtu > mtu_plateau[i])
1663 return mtu_plateau[i];
1664 return 68;
1665}
1666
Denis V. Lunevb5921912008-01-22 23:50:25 -08001667unsigned short ip_rt_frag_needed(struct net *net, struct iphdr *iph,
Timo Teras0010e462008-04-29 03:32:25 -07001668 unsigned short new_mtu,
1669 struct net_device *dev)
Linus Torvalds1da177e2005-04-16 15:20:36 -07001670{
Timo Teras0010e462008-04-29 03:32:25 -07001671 int i, k;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001672 unsigned short old_mtu = ntohs(iph->tot_len);
1673 struct rtable *rth;
Timo Teras0010e462008-04-29 03:32:25 -07001674 int ikeys[2] = { dev->ifindex, 0 };
Al Viroe4485152006-09-26 22:15:01 -07001675 __be32 skeys[2] = { iph->saddr, 0, };
1676 __be32 daddr = iph->daddr;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001677 unsigned short est_mtu = 0;
1678
Timo Teras0010e462008-04-29 03:32:25 -07001679 for (k = 0; k < 2; k++) {
1680 for (i = 0; i < 2; i++) {
Denis V. Lunevb00180d2008-07-05 19:04:09 -07001681 unsigned hash = rt_hash(daddr, skeys[i], ikeys[k],
Denis V. Luneve84f84f2008-07-05 19:04:32 -07001682 rt_genid(net));
Linus Torvalds1da177e2005-04-16 15:20:36 -07001683
Timo Teras0010e462008-04-29 03:32:25 -07001684 rcu_read_lock();
1685 for (rth = rcu_dereference(rt_hash_table[hash].chain); rth;
Changli Gaod8d1f302010-06-10 23:31:35 -07001686 rth = rcu_dereference(rth->dst.rt_next)) {
Linus Torvalds1da177e2005-04-16 15:20:36 -07001687 unsigned short mtu = new_mtu;
1688
Timo Teras0010e462008-04-29 03:32:25 -07001689 if (rth->fl.fl4_dst != daddr ||
1690 rth->fl.fl4_src != skeys[i] ||
1691 rth->rt_dst != daddr ||
1692 rth->rt_src != iph->saddr ||
1693 rth->fl.oif != ikeys[k] ||
David S. Millerc7537962010-11-11 17:07:48 -08001694 rt_is_input_route(rth) ||
Changli Gaod8d1f302010-06-10 23:31:35 -07001695 dst_metric_locked(&rth->dst, RTAX_MTU) ||
1696 !net_eq(dev_net(rth->dst.dev), net) ||
Hugh Dickins6c3b8fc2008-07-26 17:51:06 -07001697 rt_is_expired(rth))
Timo Teras0010e462008-04-29 03:32:25 -07001698 continue;
1699
Linus Torvalds1da177e2005-04-16 15:20:36 -07001700 if (new_mtu < 68 || new_mtu >= old_mtu) {
1701
1702 /* BSD 4.2 compatibility hack :-( */
1703 if (mtu == 0 &&
Changli Gaod8d1f302010-06-10 23:31:35 -07001704 old_mtu >= dst_mtu(&rth->dst) &&
Linus Torvalds1da177e2005-04-16 15:20:36 -07001705 old_mtu >= 68 + (iph->ihl << 2))
1706 old_mtu -= iph->ihl << 2;
1707
1708 mtu = guess_mtu(old_mtu);
1709 }
Changli Gaod8d1f302010-06-10 23:31:35 -07001710 if (mtu <= dst_mtu(&rth->dst)) {
1711 if (mtu < dst_mtu(&rth->dst)) {
1712 dst_confirm(&rth->dst);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001713 if (mtu < ip_rt_min_pmtu) {
David S. Millerdefb3512010-12-08 21:16:57 -08001714 u32 lock = dst_metric(&rth->dst,
1715 RTAX_LOCK);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001716 mtu = ip_rt_min_pmtu;
David S. Millerdefb3512010-12-08 21:16:57 -08001717 lock |= (1 << RTAX_MTU);
1718 dst_metric_set(&rth->dst, RTAX_LOCK,
1719 lock);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001720 }
David S. Millerdefb3512010-12-08 21:16:57 -08001721 dst_metric_set(&rth->dst, RTAX_MTU, mtu);
Changli Gaod8d1f302010-06-10 23:31:35 -07001722 dst_set_expires(&rth->dst,
Linus Torvalds1da177e2005-04-16 15:20:36 -07001723 ip_rt_mtu_expires);
1724 }
1725 est_mtu = mtu;
1726 }
1727 }
Timo Teras0010e462008-04-29 03:32:25 -07001728 rcu_read_unlock();
Linus Torvalds1da177e2005-04-16 15:20:36 -07001729 }
Linus Torvalds1da177e2005-04-16 15:20:36 -07001730 }
1731 return est_mtu ? : new_mtu;
1732}
1733
1734static void ip_rt_update_pmtu(struct dst_entry *dst, u32 mtu)
1735{
Rami Rosen6d273f82008-08-06 02:33:49 -07001736 if (dst_mtu(dst) > mtu && mtu >= 68 &&
Linus Torvalds1da177e2005-04-16 15:20:36 -07001737 !(dst_metric_locked(dst, RTAX_MTU))) {
1738 if (mtu < ip_rt_min_pmtu) {
David S. Millerdefb3512010-12-08 21:16:57 -08001739 u32 lock = dst_metric(dst, RTAX_LOCK);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001740 mtu = ip_rt_min_pmtu;
David S. Millerdefb3512010-12-08 21:16:57 -08001741 dst_metric_set(dst, RTAX_LOCK, lock | (1 << RTAX_MTU));
Linus Torvalds1da177e2005-04-16 15:20:36 -07001742 }
David S. Millerdefb3512010-12-08 21:16:57 -08001743 dst_metric_set(dst, RTAX_MTU, mtu);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001744 dst_set_expires(dst, ip_rt_mtu_expires);
Tom Tucker8d717402006-07-30 20:43:36 -07001745 call_netevent_notifiers(NETEVENT_PMTU_UPDATE, dst);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001746 }
1747}
1748
1749static struct dst_entry *ipv4_dst_check(struct dst_entry *dst, u32 cookie)
1750{
Timo Teräsd11a4dc2010-03-18 23:20:20 +00001751 if (rt_is_expired((struct rtable *)dst))
1752 return NULL;
1753 return dst;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001754}
1755
1756static void ipv4_dst_destroy(struct dst_entry *dst)
1757{
1758 struct rtable *rt = (struct rtable *) dst;
1759 struct inet_peer *peer = rt->peer;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001760
David S. Miller62fa8a82011-01-26 20:51:05 -08001761 if (rt->fi) {
1762 fib_info_put(rt->fi);
1763 rt->fi = NULL;
1764 }
Linus Torvalds1da177e2005-04-16 15:20:36 -07001765 if (peer) {
1766 rt->peer = NULL;
1767 inet_putpeer(peer);
1768 }
Linus Torvalds1da177e2005-04-16 15:20:36 -07001769}
1770
Linus Torvalds1da177e2005-04-16 15:20:36 -07001771
1772static void ipv4_link_failure(struct sk_buff *skb)
1773{
1774 struct rtable *rt;
1775
1776 icmp_send(skb, ICMP_DEST_UNREACH, ICMP_HOST_UNREACH, 0);
1777
Eric Dumazet511c3f92009-06-02 05:14:27 +00001778 rt = skb_rtable(skb);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001779 if (rt)
Changli Gaod8d1f302010-06-10 23:31:35 -07001780 dst_set_expires(&rt->dst, 0);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001781}
1782
1783static int ip_rt_bug(struct sk_buff *skb)
1784{
Harvey Harrison673d57e2008-10-31 00:53:57 -07001785 printk(KERN_DEBUG "ip_rt_bug: %pI4 -> %pI4, %s\n",
1786 &ip_hdr(skb)->saddr, &ip_hdr(skb)->daddr,
Linus Torvalds1da177e2005-04-16 15:20:36 -07001787 skb->dev ? skb->dev->name : "?");
1788 kfree_skb(skb);
1789 return 0;
1790}
1791
1792/*
1793 We do not cache source address of outgoing interface,
1794 because it is used only by IP RR, TS and SRR options,
1795 so that it out of fast path.
1796
1797 BTW remember: "addr" is allowed to be not aligned
1798 in IP options!
1799 */
1800
1801void ip_rt_get_source(u8 *addr, struct rtable *rt)
1802{
Al Viroa61ced52006-09-26 21:27:54 -07001803 __be32 src;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001804 struct fib_result res;
1805
David S. Millerc7537962010-11-11 17:07:48 -08001806 if (rt_is_output_route(rt))
Linus Torvalds1da177e2005-04-16 15:20:36 -07001807 src = rt->rt_src;
Eric Dumazetebc0ffa2010-10-05 10:41:36 +00001808 else {
1809 rcu_read_lock();
1810 if (fib_lookup(dev_net(rt->dst.dev), &rt->fl, &res) == 0)
1811 src = FIB_RES_PREFSRC(res);
1812 else
1813 src = inet_select_addr(rt->dst.dev, rt->rt_gateway,
Linus Torvalds1da177e2005-04-16 15:20:36 -07001814 RT_SCOPE_UNIVERSE);
Eric Dumazetebc0ffa2010-10-05 10:41:36 +00001815 rcu_read_unlock();
1816 }
Linus Torvalds1da177e2005-04-16 15:20:36 -07001817 memcpy(addr, &src, 4);
1818}
1819
Patrick McHardyc7066f72011-01-14 13:36:42 +01001820#ifdef CONFIG_IP_ROUTE_CLASSID
Linus Torvalds1da177e2005-04-16 15:20:36 -07001821static void set_class_tag(struct rtable *rt, u32 tag)
1822{
Changli Gaod8d1f302010-06-10 23:31:35 -07001823 if (!(rt->dst.tclassid & 0xFFFF))
1824 rt->dst.tclassid |= tag & 0xFFFF;
1825 if (!(rt->dst.tclassid & 0xFFFF0000))
1826 rt->dst.tclassid |= tag & 0xFFFF0000;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001827}
1828#endif
1829
David S. Miller0dbaee32010-12-13 12:52:14 -08001830static unsigned int ipv4_default_advmss(const struct dst_entry *dst)
1831{
1832 unsigned int advmss = dst_metric_raw(dst, RTAX_ADVMSS);
1833
1834 if (advmss == 0) {
1835 advmss = max_t(unsigned int, dst->dev->mtu - 40,
1836 ip_rt_min_advmss);
1837 if (advmss > 65535 - 40)
1838 advmss = 65535 - 40;
1839 }
1840 return advmss;
1841}
1842
David S. Millerd33e4552010-12-14 13:01:14 -08001843static unsigned int ipv4_default_mtu(const struct dst_entry *dst)
1844{
1845 unsigned int mtu = dst->dev->mtu;
1846
1847 if (unlikely(dst_metric_locked(dst, RTAX_MTU))) {
1848 const struct rtable *rt = (const struct rtable *) dst;
1849
1850 if (rt->rt_gateway != rt->rt_dst && mtu > 576)
1851 mtu = 576;
1852 }
1853
1854 if (mtu > IP_MAX_MTU)
1855 mtu = IP_MAX_MTU;
1856
1857 return mtu;
1858}
1859
David S. Millera4daad62011-01-27 22:01:53 -08001860static void rt_init_metrics(struct rtable *rt, struct fib_info *fi)
1861{
1862 if (!(rt->fl.flags & FLOWI_FLAG_PRECOW_METRICS)) {
1863 no_cow:
David S. Millerb8dad612011-01-28 14:07:16 -08001864 if (fi->fib_metrics != (u32 *) dst_default_metrics) {
1865 rt->fi = fi;
1866 atomic_inc(&fi->fib_clntref);
1867 }
David S. Millera4daad62011-01-27 22:01:53 -08001868 dst_init_metrics(&rt->dst, fi->fib_metrics, true);
1869 } else {
1870 struct inet_peer *peer;
1871
1872 if (!rt->peer)
1873 rt_bind_peer(rt, 1);
1874 peer = rt->peer;
1875 if (!peer)
1876 goto no_cow;
1877 if (inet_metrics_new(peer))
1878 memcpy(peer->metrics, fi->fib_metrics,
1879 sizeof(u32) * RTAX_MAX);
1880 dst_init_metrics(&rt->dst, peer->metrics, false);
1881 }
1882}
1883
Linus Torvalds1da177e2005-04-16 15:20:36 -07001884static void rt_set_nexthop(struct rtable *rt, struct fib_result *res, u32 itag)
1885{
David S. Millerdefb3512010-12-08 21:16:57 -08001886 struct dst_entry *dst = &rt->dst;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001887 struct fib_info *fi = res->fi;
1888
1889 if (fi) {
1890 if (FIB_RES_GW(*res) &&
1891 FIB_RES_NH(*res).nh_scope == RT_SCOPE_LINK)
1892 rt->rt_gateway = FIB_RES_GW(*res);
David S. Millera4daad62011-01-27 22:01:53 -08001893 rt_init_metrics(rt, fi);
Patrick McHardyc7066f72011-01-14 13:36:42 +01001894#ifdef CONFIG_IP_ROUTE_CLASSID
David S. Millerdefb3512010-12-08 21:16:57 -08001895 dst->tclassid = FIB_RES_NH(*res).nh_tclassid;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001896#endif
David S. Millerd33e4552010-12-14 13:01:14 -08001897 }
Linus Torvalds1da177e2005-04-16 15:20:36 -07001898
David S. Millerdefb3512010-12-08 21:16:57 -08001899 if (dst_mtu(dst) > IP_MAX_MTU)
1900 dst_metric_set(dst, RTAX_MTU, IP_MAX_MTU);
David S. Miller0dbaee32010-12-13 12:52:14 -08001901 if (dst_metric_raw(dst, RTAX_ADVMSS) > 65535 - 40)
David S. Millerdefb3512010-12-08 21:16:57 -08001902 dst_metric_set(dst, RTAX_ADVMSS, 65535 - 40);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001903
Patrick McHardyc7066f72011-01-14 13:36:42 +01001904#ifdef CONFIG_IP_ROUTE_CLASSID
Linus Torvalds1da177e2005-04-16 15:20:36 -07001905#ifdef CONFIG_IP_MULTIPLE_TABLES
1906 set_class_tag(rt, fib_rules_tclass(res));
1907#endif
1908 set_class_tag(rt, itag);
1909#endif
YOSHIFUJI Hideakie905a9e2007-02-09 23:24:47 +09001910 rt->rt_type = res->type;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001911}
1912
Eric Dumazet96d36222010-06-02 19:21:31 +00001913/* called in rcu_read_lock() section */
Al Viro9e12bb22006-09-26 21:25:20 -07001914static int ip_route_input_mc(struct sk_buff *skb, __be32 daddr, __be32 saddr,
Linus Torvalds1da177e2005-04-16 15:20:36 -07001915 u8 tos, struct net_device *dev, int our)
1916{
Eric Dumazet96d36222010-06-02 19:21:31 +00001917 unsigned int hash;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001918 struct rtable *rth;
Al Viroa61ced52006-09-26 21:27:54 -07001919 __be32 spec_dst;
Eric Dumazet96d36222010-06-02 19:21:31 +00001920 struct in_device *in_dev = __in_dev_get_rcu(dev);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001921 u32 itag = 0;
Eric Dumazetb5f7e752010-06-02 12:05:27 +00001922 int err;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001923
1924 /* Primary sanity checks. */
1925
1926 if (in_dev == NULL)
1927 return -EINVAL;
1928
Jan Engelhardt1e637c72008-01-21 03:18:08 -08001929 if (ipv4_is_multicast(saddr) || ipv4_is_lbcast(saddr) ||
Joe Perchesf97c1e02007-12-16 13:45:43 -08001930 ipv4_is_loopback(saddr) || skb->protocol != htons(ETH_P_IP))
Linus Torvalds1da177e2005-04-16 15:20:36 -07001931 goto e_inval;
1932
Joe Perchesf97c1e02007-12-16 13:45:43 -08001933 if (ipv4_is_zeronet(saddr)) {
1934 if (!ipv4_is_local_multicast(daddr))
Linus Torvalds1da177e2005-04-16 15:20:36 -07001935 goto e_inval;
1936 spec_dst = inet_select_addr(dev, 0, RT_SCOPE_LINK);
Eric Dumazetb5f7e752010-06-02 12:05:27 +00001937 } else {
1938 err = fib_validate_source(saddr, 0, tos, 0, dev, &spec_dst,
1939 &itag, 0);
1940 if (err < 0)
1941 goto e_err;
1942 }
Linus Torvalds1da177e2005-04-16 15:20:36 -07001943 rth = dst_alloc(&ipv4_dst_ops);
1944 if (!rth)
1945 goto e_nobufs;
1946
Changli Gaod8d1f302010-06-10 23:31:35 -07001947 rth->dst.output = ip_rt_bug;
1948 rth->dst.obsolete = -1;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001949
Changli Gaod8d1f302010-06-10 23:31:35 -07001950 atomic_set(&rth->dst.__refcnt, 1);
1951 rth->dst.flags= DST_HOST;
Herbert Xu42f811b2007-06-04 23:34:44 -07001952 if (IN_DEV_CONF_GET(in_dev, NOPOLICY))
Changli Gaod8d1f302010-06-10 23:31:35 -07001953 rth->dst.flags |= DST_NOPOLICY;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001954 rth->fl.fl4_dst = daddr;
1955 rth->rt_dst = daddr;
1956 rth->fl.fl4_tos = tos;
Thomas Graf47dcf0c2006-11-09 15:20:38 -08001957 rth->fl.mark = skb->mark;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001958 rth->fl.fl4_src = saddr;
1959 rth->rt_src = saddr;
Patrick McHardyc7066f72011-01-14 13:36:42 +01001960#ifdef CONFIG_IP_ROUTE_CLASSID
Changli Gaod8d1f302010-06-10 23:31:35 -07001961 rth->dst.tclassid = itag;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001962#endif
1963 rth->rt_iif =
1964 rth->fl.iif = dev->ifindex;
Changli Gaod8d1f302010-06-10 23:31:35 -07001965 rth->dst.dev = init_net.loopback_dev;
1966 dev_hold(rth->dst.dev);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001967 rth->fl.oif = 0;
1968 rth->rt_gateway = daddr;
1969 rth->rt_spec_dst= spec_dst;
Denis V. Luneve84f84f2008-07-05 19:04:32 -07001970 rth->rt_genid = rt_genid(dev_net(dev));
Linus Torvalds1da177e2005-04-16 15:20:36 -07001971 rth->rt_flags = RTCF_MULTICAST;
Eric Dumazet29e75252008-01-31 17:05:09 -08001972 rth->rt_type = RTN_MULTICAST;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001973 if (our) {
Changli Gaod8d1f302010-06-10 23:31:35 -07001974 rth->dst.input= ip_local_deliver;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001975 rth->rt_flags |= RTCF_LOCAL;
1976 }
1977
1978#ifdef CONFIG_IP_MROUTE
Joe Perchesf97c1e02007-12-16 13:45:43 -08001979 if (!ipv4_is_local_multicast(daddr) && IN_DEV_MFORWARD(in_dev))
Changli Gaod8d1f302010-06-10 23:31:35 -07001980 rth->dst.input = ip_mr_input;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001981#endif
1982 RT_CACHE_STAT_INC(in_slow_mc);
1983
Denis V. Luneve84f84f2008-07-05 19:04:32 -07001984 hash = rt_hash(daddr, saddr, dev->ifindex, rt_genid(dev_net(dev)));
Pavel Emelyanov6a2bad72010-03-24 21:51:22 +00001985 return rt_intern_hash(hash, rth, NULL, skb, dev->ifindex);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001986
1987e_nobufs:
Linus Torvalds1da177e2005-04-16 15:20:36 -07001988 return -ENOBUFS;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001989e_inval:
Eric Dumazet96d36222010-06-02 19:21:31 +00001990 return -EINVAL;
Eric Dumazetb5f7e752010-06-02 12:05:27 +00001991e_err:
Eric Dumazetb5f7e752010-06-02 12:05:27 +00001992 return err;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001993}
1994
1995
1996static void ip_handle_martian_source(struct net_device *dev,
1997 struct in_device *in_dev,
1998 struct sk_buff *skb,
Al Viro9e12bb22006-09-26 21:25:20 -07001999 __be32 daddr,
2000 __be32 saddr)
Linus Torvalds1da177e2005-04-16 15:20:36 -07002001{
2002 RT_CACHE_STAT_INC(in_martian_src);
2003#ifdef CONFIG_IP_ROUTE_VERBOSE
2004 if (IN_DEV_LOG_MARTIANS(in_dev) && net_ratelimit()) {
2005 /*
2006 * RFC1812 recommendation, if source is martian,
2007 * the only hint is MAC header.
2008 */
Harvey Harrison673d57e2008-10-31 00:53:57 -07002009 printk(KERN_WARNING "martian source %pI4 from %pI4, on dev %s\n",
2010 &daddr, &saddr, dev->name);
Arnaldo Carvalho de Melo98e399f2007-03-19 15:33:04 -07002011 if (dev->hard_header_len && skb_mac_header_was_set(skb)) {
Linus Torvalds1da177e2005-04-16 15:20:36 -07002012 int i;
Arnaldo Carvalho de Melo98e399f2007-03-19 15:33:04 -07002013 const unsigned char *p = skb_mac_header(skb);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002014 printk(KERN_WARNING "ll header: ");
2015 for (i = 0; i < dev->hard_header_len; i++, p++) {
2016 printk("%02x", *p);
2017 if (i < (dev->hard_header_len - 1))
2018 printk(":");
2019 }
2020 printk("\n");
2021 }
2022 }
2023#endif
2024}
2025
Eric Dumazet47360222010-06-03 04:13:21 +00002026/* called in rcu_read_lock() section */
Stephen Hemminger5969f712008-04-10 01:52:09 -07002027static int __mkroute_input(struct sk_buff *skb,
2028 struct fib_result *res,
2029 struct in_device *in_dev,
2030 __be32 daddr, __be32 saddr, u32 tos,
2031 struct rtable **result)
Linus Torvalds1da177e2005-04-16 15:20:36 -07002032{
Linus Torvalds1da177e2005-04-16 15:20:36 -07002033 struct rtable *rth;
2034 int err;
2035 struct in_device *out_dev;
Eric Dumazet47360222010-06-03 04:13:21 +00002036 unsigned int flags = 0;
Al Virod9c9df82006-09-26 21:28:14 -07002037 __be32 spec_dst;
2038 u32 itag;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002039
2040 /* get a working reference to the output device */
Eric Dumazet47360222010-06-03 04:13:21 +00002041 out_dev = __in_dev_get_rcu(FIB_RES_DEV(*res));
Linus Torvalds1da177e2005-04-16 15:20:36 -07002042 if (out_dev == NULL) {
2043 if (net_ratelimit())
2044 printk(KERN_CRIT "Bug in ip_route_input" \
2045 "_slow(). Please, report\n");
2046 return -EINVAL;
2047 }
2048
2049
YOSHIFUJI Hideakie905a9e2007-02-09 23:24:47 +09002050 err = fib_validate_source(saddr, daddr, tos, FIB_RES_OIF(*res),
jamalb0c110c2009-10-18 02:12:33 +00002051 in_dev->dev, &spec_dst, &itag, skb->mark);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002052 if (err < 0) {
YOSHIFUJI Hideakie905a9e2007-02-09 23:24:47 +09002053 ip_handle_martian_source(in_dev->dev, in_dev, skb, daddr,
Linus Torvalds1da177e2005-04-16 15:20:36 -07002054 saddr);
YOSHIFUJI Hideakie905a9e2007-02-09 23:24:47 +09002055
Linus Torvalds1da177e2005-04-16 15:20:36 -07002056 goto cleanup;
2057 }
2058
2059 if (err)
2060 flags |= RTCF_DIRECTSRC;
2061
Thomas Graf51b77ca2008-06-03 16:36:01 -07002062 if (out_dev == in_dev && err &&
Linus Torvalds1da177e2005-04-16 15:20:36 -07002063 (IN_DEV_SHARED_MEDIA(out_dev) ||
2064 inet_addr_onlink(out_dev, saddr, FIB_RES_GW(*res))))
2065 flags |= RTCF_DOREDIRECT;
2066
2067 if (skb->protocol != htons(ETH_P_IP)) {
2068 /* Not IP (i.e. ARP). Do not create route, if it is
2069 * invalid for proxy arp. DNAT routes are always valid.
Jesper Dangaard Brouer65324142010-01-05 05:50:47 +00002070 *
2071 * Proxy arp feature have been extended to allow, ARP
2072 * replies back to the same interface, to support
2073 * Private VLAN switch technologies. See arp.c.
Linus Torvalds1da177e2005-04-16 15:20:36 -07002074 */
Jesper Dangaard Brouer65324142010-01-05 05:50:47 +00002075 if (out_dev == in_dev &&
2076 IN_DEV_PROXY_ARP_PVLAN(in_dev) == 0) {
Linus Torvalds1da177e2005-04-16 15:20:36 -07002077 err = -EINVAL;
2078 goto cleanup;
2079 }
2080 }
2081
2082
2083 rth = dst_alloc(&ipv4_dst_ops);
2084 if (!rth) {
2085 err = -ENOBUFS;
2086 goto cleanup;
2087 }
2088
Changli Gaod8d1f302010-06-10 23:31:35 -07002089 atomic_set(&rth->dst.__refcnt, 1);
2090 rth->dst.flags= DST_HOST;
Herbert Xu42f811b2007-06-04 23:34:44 -07002091 if (IN_DEV_CONF_GET(in_dev, NOPOLICY))
Changli Gaod8d1f302010-06-10 23:31:35 -07002092 rth->dst.flags |= DST_NOPOLICY;
Herbert Xu42f811b2007-06-04 23:34:44 -07002093 if (IN_DEV_CONF_GET(out_dev, NOXFRM))
Changli Gaod8d1f302010-06-10 23:31:35 -07002094 rth->dst.flags |= DST_NOXFRM;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002095 rth->fl.fl4_dst = daddr;
2096 rth->rt_dst = daddr;
2097 rth->fl.fl4_tos = tos;
Thomas Graf47dcf0c2006-11-09 15:20:38 -08002098 rth->fl.mark = skb->mark;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002099 rth->fl.fl4_src = saddr;
2100 rth->rt_src = saddr;
2101 rth->rt_gateway = daddr;
2102 rth->rt_iif =
2103 rth->fl.iif = in_dev->dev->ifindex;
Changli Gaod8d1f302010-06-10 23:31:35 -07002104 rth->dst.dev = (out_dev)->dev;
2105 dev_hold(rth->dst.dev);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002106 rth->fl.oif = 0;
2107 rth->rt_spec_dst= spec_dst;
2108
Changli Gaod8d1f302010-06-10 23:31:35 -07002109 rth->dst.obsolete = -1;
2110 rth->dst.input = ip_forward;
2111 rth->dst.output = ip_output;
2112 rth->rt_genid = rt_genid(dev_net(rth->dst.dev));
Linus Torvalds1da177e2005-04-16 15:20:36 -07002113
2114 rt_set_nexthop(rth, res, itag);
2115
2116 rth->rt_flags = flags;
2117
2118 *result = rth;
2119 err = 0;
2120 cleanup:
Linus Torvalds1da177e2005-04-16 15:20:36 -07002121 return err;
YOSHIFUJI Hideakie905a9e2007-02-09 23:24:47 +09002122}
Linus Torvalds1da177e2005-04-16 15:20:36 -07002123
Stephen Hemminger5969f712008-04-10 01:52:09 -07002124static int ip_mkroute_input(struct sk_buff *skb,
2125 struct fib_result *res,
2126 const struct flowi *fl,
2127 struct in_device *in_dev,
2128 __be32 daddr, __be32 saddr, u32 tos)
Linus Torvalds1da177e2005-04-16 15:20:36 -07002129{
Chuck Short7abaa272005-06-22 22:10:23 -07002130 struct rtable* rth = NULL;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002131 int err;
2132 unsigned hash;
2133
2134#ifdef CONFIG_IP_ROUTE_MULTIPATH
2135 if (res->fi && res->fi->fib_nhs > 1 && fl->oif == 0)
2136 fib_select_multipath(fl, res);
2137#endif
2138
2139 /* create a routing cache entry */
2140 err = __mkroute_input(skb, res, in_dev, daddr, saddr, tos, &rth);
2141 if (err)
2142 return err;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002143
2144 /* put it into the cache */
Denis V. Luneve84f84f2008-07-05 19:04:32 -07002145 hash = rt_hash(daddr, saddr, fl->iif,
Changli Gaod8d1f302010-06-10 23:31:35 -07002146 rt_genid(dev_net(rth->dst.dev)));
Pavel Emelyanov6a2bad72010-03-24 21:51:22 +00002147 return rt_intern_hash(hash, rth, NULL, skb, fl->iif);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002148}
2149
Linus Torvalds1da177e2005-04-16 15:20:36 -07002150/*
2151 * NOTE. We drop all the packets that has local source
2152 * addresses, because every properly looped back packet
2153 * must have correct destination already attached by output routine.
2154 *
2155 * Such approach solves two big problems:
2156 * 1. Not simplex devices are handled properly.
2157 * 2. IP spoofing attempts are filtered with 100% of guarantee.
Eric Dumazetebc0ffa2010-10-05 10:41:36 +00002158 * called with rcu_read_lock()
Linus Torvalds1da177e2005-04-16 15:20:36 -07002159 */
2160
Al Viro9e12bb22006-09-26 21:25:20 -07002161static int ip_route_input_slow(struct sk_buff *skb, __be32 daddr, __be32 saddr,
Linus Torvalds1da177e2005-04-16 15:20:36 -07002162 u8 tos, struct net_device *dev)
2163{
2164 struct fib_result res;
Eric Dumazet96d36222010-06-02 19:21:31 +00002165 struct in_device *in_dev = __in_dev_get_rcu(dev);
Changli Gao58116622010-11-12 18:43:55 +00002166 struct flowi fl = { .fl4_dst = daddr,
2167 .fl4_src = saddr,
2168 .fl4_tos = tos,
2169 .fl4_scope = RT_SCOPE_UNIVERSE,
Thomas Graf47dcf0c2006-11-09 15:20:38 -08002170 .mark = skb->mark,
Linus Torvalds1da177e2005-04-16 15:20:36 -07002171 .iif = dev->ifindex };
2172 unsigned flags = 0;
2173 u32 itag = 0;
2174 struct rtable * rth;
2175 unsigned hash;
Al Viro9e12bb22006-09-26 21:25:20 -07002176 __be32 spec_dst;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002177 int err = -EINVAL;
YOSHIFUJI Hideakic346dca2008-03-25 21:47:49 +09002178 struct net * net = dev_net(dev);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002179
2180 /* IP on this device is disabled. */
2181
2182 if (!in_dev)
2183 goto out;
2184
2185 /* Check for the most weird martians, which can be not detected
2186 by fib_lookup.
2187 */
2188
Jan Engelhardt1e637c72008-01-21 03:18:08 -08002189 if (ipv4_is_multicast(saddr) || ipv4_is_lbcast(saddr) ||
Joe Perchesf97c1e02007-12-16 13:45:43 -08002190 ipv4_is_loopback(saddr))
Linus Torvalds1da177e2005-04-16 15:20:36 -07002191 goto martian_source;
2192
Andy Walls27a954b2010-10-17 15:11:22 +00002193 if (ipv4_is_lbcast(daddr) || (saddr == 0 && daddr == 0))
Linus Torvalds1da177e2005-04-16 15:20:36 -07002194 goto brd_input;
2195
2196 /* Accept zero addresses only to limited broadcast;
2197 * I even do not know to fix it or not. Waiting for complains :-)
2198 */
Joe Perchesf97c1e02007-12-16 13:45:43 -08002199 if (ipv4_is_zeronet(saddr))
Linus Torvalds1da177e2005-04-16 15:20:36 -07002200 goto martian_source;
2201
Andy Walls27a954b2010-10-17 15:11:22 +00002202 if (ipv4_is_zeronet(daddr) || ipv4_is_loopback(daddr))
Linus Torvalds1da177e2005-04-16 15:20:36 -07002203 goto martian_destination;
2204
2205 /*
2206 * Now we are ready to route packet.
2207 */
Eric Dumazetebc0ffa2010-10-05 10:41:36 +00002208 err = fib_lookup(net, &fl, &res);
2209 if (err != 0) {
Linus Torvalds1da177e2005-04-16 15:20:36 -07002210 if (!IN_DEV_FORWARD(in_dev))
Dietmar Eggemann2c2910a2005-06-28 13:06:23 -07002211 goto e_hostunreach;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002212 goto no_route;
2213 }
Linus Torvalds1da177e2005-04-16 15:20:36 -07002214
2215 RT_CACHE_STAT_INC(in_slow_tot);
2216
2217 if (res.type == RTN_BROADCAST)
2218 goto brd_input;
2219
2220 if (res.type == RTN_LOCAL) {
Eric Dumazetb5f7e752010-06-02 12:05:27 +00002221 err = fib_validate_source(saddr, daddr, tos,
Eric Dumazetebc0ffa2010-10-05 10:41:36 +00002222 net->loopback_dev->ifindex,
2223 dev, &spec_dst, &itag, skb->mark);
Eric Dumazetb5f7e752010-06-02 12:05:27 +00002224 if (err < 0)
2225 goto martian_source_keep_err;
2226 if (err)
Linus Torvalds1da177e2005-04-16 15:20:36 -07002227 flags |= RTCF_DIRECTSRC;
2228 spec_dst = daddr;
2229 goto local_input;
2230 }
2231
2232 if (!IN_DEV_FORWARD(in_dev))
Dietmar Eggemann2c2910a2005-06-28 13:06:23 -07002233 goto e_hostunreach;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002234 if (res.type != RTN_UNICAST)
2235 goto martian_destination;
2236
2237 err = ip_mkroute_input(skb, &res, &fl, in_dev, daddr, saddr, tos);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002238out: return err;
2239
2240brd_input:
2241 if (skb->protocol != htons(ETH_P_IP))
2242 goto e_inval;
2243
Joe Perchesf97c1e02007-12-16 13:45:43 -08002244 if (ipv4_is_zeronet(saddr))
Linus Torvalds1da177e2005-04-16 15:20:36 -07002245 spec_dst = inet_select_addr(dev, 0, RT_SCOPE_LINK);
2246 else {
2247 err = fib_validate_source(saddr, 0, tos, 0, dev, &spec_dst,
jamalb0c110c2009-10-18 02:12:33 +00002248 &itag, skb->mark);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002249 if (err < 0)
Eric Dumazetb5f7e752010-06-02 12:05:27 +00002250 goto martian_source_keep_err;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002251 if (err)
2252 flags |= RTCF_DIRECTSRC;
2253 }
2254 flags |= RTCF_BROADCAST;
2255 res.type = RTN_BROADCAST;
2256 RT_CACHE_STAT_INC(in_brd);
2257
2258local_input:
2259 rth = dst_alloc(&ipv4_dst_ops);
2260 if (!rth)
2261 goto e_nobufs;
2262
Changli Gaod8d1f302010-06-10 23:31:35 -07002263 rth->dst.output= ip_rt_bug;
2264 rth->dst.obsolete = -1;
Denis V. Luneve84f84f2008-07-05 19:04:32 -07002265 rth->rt_genid = rt_genid(net);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002266
Changli Gaod8d1f302010-06-10 23:31:35 -07002267 atomic_set(&rth->dst.__refcnt, 1);
2268 rth->dst.flags= DST_HOST;
Herbert Xu42f811b2007-06-04 23:34:44 -07002269 if (IN_DEV_CONF_GET(in_dev, NOPOLICY))
Changli Gaod8d1f302010-06-10 23:31:35 -07002270 rth->dst.flags |= DST_NOPOLICY;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002271 rth->fl.fl4_dst = daddr;
2272 rth->rt_dst = daddr;
2273 rth->fl.fl4_tos = tos;
Thomas Graf47dcf0c2006-11-09 15:20:38 -08002274 rth->fl.mark = skb->mark;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002275 rth->fl.fl4_src = saddr;
2276 rth->rt_src = saddr;
Patrick McHardyc7066f72011-01-14 13:36:42 +01002277#ifdef CONFIG_IP_ROUTE_CLASSID
Changli Gaod8d1f302010-06-10 23:31:35 -07002278 rth->dst.tclassid = itag;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002279#endif
2280 rth->rt_iif =
2281 rth->fl.iif = dev->ifindex;
Changli Gaod8d1f302010-06-10 23:31:35 -07002282 rth->dst.dev = net->loopback_dev;
2283 dev_hold(rth->dst.dev);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002284 rth->rt_gateway = daddr;
2285 rth->rt_spec_dst= spec_dst;
Changli Gaod8d1f302010-06-10 23:31:35 -07002286 rth->dst.input= ip_local_deliver;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002287 rth->rt_flags = flags|RTCF_LOCAL;
2288 if (res.type == RTN_UNREACHABLE) {
Changli Gaod8d1f302010-06-10 23:31:35 -07002289 rth->dst.input= ip_error;
2290 rth->dst.error= -err;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002291 rth->rt_flags &= ~RTCF_LOCAL;
2292 }
2293 rth->rt_type = res.type;
Denis V. Luneve84f84f2008-07-05 19:04:32 -07002294 hash = rt_hash(daddr, saddr, fl.iif, rt_genid(net));
Pavel Emelyanov6a2bad72010-03-24 21:51:22 +00002295 err = rt_intern_hash(hash, rth, NULL, skb, fl.iif);
Eric Dumazetebc0ffa2010-10-05 10:41:36 +00002296 goto out;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002297
2298no_route:
2299 RT_CACHE_STAT_INC(in_no_route);
2300 spec_dst = inet_select_addr(dev, 0, RT_SCOPE_UNIVERSE);
2301 res.type = RTN_UNREACHABLE;
Mitsuru Chinen7f538782007-12-07 01:07:24 -08002302 if (err == -ESRCH)
2303 err = -ENETUNREACH;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002304 goto local_input;
2305
2306 /*
2307 * Do not cache martian addresses: they should be logged (RFC1812)
2308 */
2309martian_destination:
2310 RT_CACHE_STAT_INC(in_martian_dst);
2311#ifdef CONFIG_IP_ROUTE_VERBOSE
2312 if (IN_DEV_LOG_MARTIANS(in_dev) && net_ratelimit())
Harvey Harrison673d57e2008-10-31 00:53:57 -07002313 printk(KERN_WARNING "martian destination %pI4 from %pI4, dev %s\n",
2314 &daddr, &saddr, dev->name);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002315#endif
Dietmar Eggemann2c2910a2005-06-28 13:06:23 -07002316
2317e_hostunreach:
YOSHIFUJI Hideakie905a9e2007-02-09 23:24:47 +09002318 err = -EHOSTUNREACH;
Eric Dumazetebc0ffa2010-10-05 10:41:36 +00002319 goto out;
Dietmar Eggemann2c2910a2005-06-28 13:06:23 -07002320
Linus Torvalds1da177e2005-04-16 15:20:36 -07002321e_inval:
2322 err = -EINVAL;
Eric Dumazetebc0ffa2010-10-05 10:41:36 +00002323 goto out;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002324
2325e_nobufs:
2326 err = -ENOBUFS;
Eric Dumazetebc0ffa2010-10-05 10:41:36 +00002327 goto out;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002328
2329martian_source:
Eric Dumazetb5f7e752010-06-02 12:05:27 +00002330 err = -EINVAL;
2331martian_source_keep_err:
Linus Torvalds1da177e2005-04-16 15:20:36 -07002332 ip_handle_martian_source(dev, in_dev, skb, daddr, saddr);
Eric Dumazetebc0ffa2010-10-05 10:41:36 +00002333 goto out;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002334}
2335
Eric Dumazet407eadd2010-05-10 11:32:55 +00002336int ip_route_input_common(struct sk_buff *skb, __be32 daddr, __be32 saddr,
2337 u8 tos, struct net_device *dev, bool noref)
Linus Torvalds1da177e2005-04-16 15:20:36 -07002338{
2339 struct rtable * rth;
2340 unsigned hash;
2341 int iif = dev->ifindex;
Denis V. Lunevb5921912008-01-22 23:50:25 -08002342 struct net *net;
Eric Dumazet96d36222010-06-02 19:21:31 +00002343 int res;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002344
YOSHIFUJI Hideakic346dca2008-03-25 21:47:49 +09002345 net = dev_net(dev);
Neil Horman1080d702008-10-27 12:28:25 -07002346
Eric Dumazet96d36222010-06-02 19:21:31 +00002347 rcu_read_lock();
2348
Neil Horman1080d702008-10-27 12:28:25 -07002349 if (!rt_caching(net))
2350 goto skip_cache;
2351
Linus Torvalds1da177e2005-04-16 15:20:36 -07002352 tos &= IPTOS_RT_MASK;
Denis V. Luneve84f84f2008-07-05 19:04:32 -07002353 hash = rt_hash(daddr, saddr, iif, rt_genid(net));
Linus Torvalds1da177e2005-04-16 15:20:36 -07002354
Linus Torvalds1da177e2005-04-16 15:20:36 -07002355 for (rth = rcu_dereference(rt_hash_table[hash].chain); rth;
Changli Gaod8d1f302010-06-10 23:31:35 -07002356 rth = rcu_dereference(rth->dst.rt_next)) {
Eric Dumazet0eae88f2010-04-20 19:06:52 -07002357 if ((((__force u32)rth->fl.fl4_dst ^ (__force u32)daddr) |
2358 ((__force u32)rth->fl.fl4_src ^ (__force u32)saddr) |
Stephen Hemmingerc0b8c322008-04-10 04:00:28 -07002359 (rth->fl.iif ^ iif) |
2360 rth->fl.oif |
2361 (rth->fl.fl4_tos ^ tos)) == 0 &&
Thomas Graf47dcf0c2006-11-09 15:20:38 -08002362 rth->fl.mark == skb->mark &&
Changli Gaod8d1f302010-06-10 23:31:35 -07002363 net_eq(dev_net(rth->dst.dev), net) &&
Denis V. Luneve84f84f2008-07-05 19:04:32 -07002364 !rt_is_expired(rth)) {
Eric Dumazet407eadd2010-05-10 11:32:55 +00002365 if (noref) {
Changli Gaod8d1f302010-06-10 23:31:35 -07002366 dst_use_noref(&rth->dst, jiffies);
2367 skb_dst_set_noref(skb, &rth->dst);
Eric Dumazet407eadd2010-05-10 11:32:55 +00002368 } else {
Changli Gaod8d1f302010-06-10 23:31:35 -07002369 dst_use(&rth->dst, jiffies);
2370 skb_dst_set(skb, &rth->dst);
Eric Dumazet407eadd2010-05-10 11:32:55 +00002371 }
Linus Torvalds1da177e2005-04-16 15:20:36 -07002372 RT_CACHE_STAT_INC(in_hit);
2373 rcu_read_unlock();
Linus Torvalds1da177e2005-04-16 15:20:36 -07002374 return 0;
2375 }
2376 RT_CACHE_STAT_INC(in_hlist_search);
2377 }
Linus Torvalds1da177e2005-04-16 15:20:36 -07002378
Neil Horman1080d702008-10-27 12:28:25 -07002379skip_cache:
Linus Torvalds1da177e2005-04-16 15:20:36 -07002380 /* Multicast recognition logic is moved from route cache to here.
2381 The problem was that too many Ethernet cards have broken/missing
2382 hardware multicast filters :-( As result the host on multicasting
2383 network acquires a lot of useless route cache entries, sort of
2384 SDR messages from all the world. Now we try to get rid of them.
2385 Really, provided software IP multicast filter is organized
2386 reasonably (at least, hashed), it does not result in a slowdown
2387 comparing with route cache reject entries.
2388 Note, that multicast routers are not affected, because
2389 route cache entry is created eventually.
2390 */
Joe Perchesf97c1e02007-12-16 13:45:43 -08002391 if (ipv4_is_multicast(daddr)) {
Eric Dumazet96d36222010-06-02 19:21:31 +00002392 struct in_device *in_dev = __in_dev_get_rcu(dev);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002393
Eric Dumazet96d36222010-06-02 19:21:31 +00002394 if (in_dev) {
Linus Torvalds1da177e2005-04-16 15:20:36 -07002395 int our = ip_check_mc(in_dev, daddr, saddr,
Eric Dumazet96d36222010-06-02 19:21:31 +00002396 ip_hdr(skb)->protocol);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002397 if (our
2398#ifdef CONFIG_IP_MROUTE
Joe Perches9d4fb272009-11-23 10:41:23 -08002399 ||
2400 (!ipv4_is_local_multicast(daddr) &&
2401 IN_DEV_MFORWARD(in_dev))
Linus Torvalds1da177e2005-04-16 15:20:36 -07002402#endif
Joe Perches9d4fb272009-11-23 10:41:23 -08002403 ) {
Eric Dumazet96d36222010-06-02 19:21:31 +00002404 int res = ip_route_input_mc(skb, daddr, saddr,
2405 tos, dev, our);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002406 rcu_read_unlock();
Eric Dumazet96d36222010-06-02 19:21:31 +00002407 return res;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002408 }
2409 }
2410 rcu_read_unlock();
2411 return -EINVAL;
2412 }
Eric Dumazet96d36222010-06-02 19:21:31 +00002413 res = ip_route_input_slow(skb, daddr, saddr, tos, dev);
2414 rcu_read_unlock();
2415 return res;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002416}
Eric Dumazet407eadd2010-05-10 11:32:55 +00002417EXPORT_SYMBOL(ip_route_input_common);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002418
Eric Dumazetebc0ffa2010-10-05 10:41:36 +00002419/* called with rcu_read_lock() */
Stephen Hemminger5969f712008-04-10 01:52:09 -07002420static int __mkroute_output(struct rtable **result,
2421 struct fib_result *res,
2422 const struct flowi *fl,
2423 const struct flowi *oldflp,
2424 struct net_device *dev_out,
2425 unsigned flags)
Linus Torvalds1da177e2005-04-16 15:20:36 -07002426{
2427 struct rtable *rth;
2428 struct in_device *in_dev;
2429 u32 tos = RT_FL_TOS(oldflp);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002430
Eric Dumazetdd28d1a2010-09-29 11:53:50 +00002431 if (ipv4_is_loopback(fl->fl4_src) && !(dev_out->flags & IFF_LOOPBACK))
Linus Torvalds1da177e2005-04-16 15:20:36 -07002432 return -EINVAL;
2433
Andy Walls27a954b2010-10-17 15:11:22 +00002434 if (ipv4_is_lbcast(fl->fl4_dst))
Linus Torvalds1da177e2005-04-16 15:20:36 -07002435 res->type = RTN_BROADCAST;
Joe Perchesf97c1e02007-12-16 13:45:43 -08002436 else if (ipv4_is_multicast(fl->fl4_dst))
Linus Torvalds1da177e2005-04-16 15:20:36 -07002437 res->type = RTN_MULTICAST;
Andy Walls27a954b2010-10-17 15:11:22 +00002438 else if (ipv4_is_zeronet(fl->fl4_dst))
Linus Torvalds1da177e2005-04-16 15:20:36 -07002439 return -EINVAL;
2440
2441 if (dev_out->flags & IFF_LOOPBACK)
2442 flags |= RTCF_LOCAL;
2443
Eric Dumazetdd28d1a2010-09-29 11:53:50 +00002444 in_dev = __in_dev_get_rcu(dev_out);
Eric Dumazetebc0ffa2010-10-05 10:41:36 +00002445 if (!in_dev)
Linus Torvalds1da177e2005-04-16 15:20:36 -07002446 return -EINVAL;
Eric Dumazetebc0ffa2010-10-05 10:41:36 +00002447
Linus Torvalds1da177e2005-04-16 15:20:36 -07002448 if (res->type == RTN_BROADCAST) {
2449 flags |= RTCF_BROADCAST | RTCF_LOCAL;
Eric Dumazetebc0ffa2010-10-05 10:41:36 +00002450 res->fi = NULL;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002451 } else if (res->type == RTN_MULTICAST) {
Eric Dumazetdd28d1a2010-09-29 11:53:50 +00002452 flags |= RTCF_MULTICAST | RTCF_LOCAL;
YOSHIFUJI Hideakie905a9e2007-02-09 23:24:47 +09002453 if (!ip_check_mc(in_dev, oldflp->fl4_dst, oldflp->fl4_src,
Linus Torvalds1da177e2005-04-16 15:20:36 -07002454 oldflp->proto))
2455 flags &= ~RTCF_LOCAL;
2456 /* If multicast route do not exist use
Eric Dumazetdd28d1a2010-09-29 11:53:50 +00002457 * default one, but do not gateway in this case.
2458 * Yes, it is hack.
Linus Torvalds1da177e2005-04-16 15:20:36 -07002459 */
Eric Dumazetebc0ffa2010-10-05 10:41:36 +00002460 if (res->fi && res->prefixlen < 4)
Linus Torvalds1da177e2005-04-16 15:20:36 -07002461 res->fi = NULL;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002462 }
2463
2464
2465 rth = dst_alloc(&ipv4_dst_ops);
Dimitris Michailidis8391d072010-10-07 14:48:38 +00002466 if (!rth)
Eric Dumazetdd28d1a2010-09-29 11:53:50 +00002467 return -ENOBUFS;
Dimitris Michailidis8391d072010-10-07 14:48:38 +00002468
Changli Gaod8d1f302010-06-10 23:31:35 -07002469 atomic_set(&rth->dst.__refcnt, 1);
2470 rth->dst.flags= DST_HOST;
Herbert Xu42f811b2007-06-04 23:34:44 -07002471 if (IN_DEV_CONF_GET(in_dev, NOXFRM))
Changli Gaod8d1f302010-06-10 23:31:35 -07002472 rth->dst.flags |= DST_NOXFRM;
Herbert Xu42f811b2007-06-04 23:34:44 -07002473 if (IN_DEV_CONF_GET(in_dev, NOPOLICY))
Changli Gaod8d1f302010-06-10 23:31:35 -07002474 rth->dst.flags |= DST_NOPOLICY;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002475
2476 rth->fl.fl4_dst = oldflp->fl4_dst;
2477 rth->fl.fl4_tos = tos;
2478 rth->fl.fl4_src = oldflp->fl4_src;
2479 rth->fl.oif = oldflp->oif;
Thomas Graf47dcf0c2006-11-09 15:20:38 -08002480 rth->fl.mark = oldflp->mark;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002481 rth->rt_dst = fl->fl4_dst;
2482 rth->rt_src = fl->fl4_src;
2483 rth->rt_iif = oldflp->oif ? : dev_out->ifindex;
YOSHIFUJI Hideakie905a9e2007-02-09 23:24:47 +09002484 /* get references to the devices that are to be hold by the routing
Linus Torvalds1da177e2005-04-16 15:20:36 -07002485 cache entry */
Changli Gaod8d1f302010-06-10 23:31:35 -07002486 rth->dst.dev = dev_out;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002487 dev_hold(dev_out);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002488 rth->rt_gateway = fl->fl4_dst;
2489 rth->rt_spec_dst= fl->fl4_src;
2490
Changli Gaod8d1f302010-06-10 23:31:35 -07002491 rth->dst.output=ip_output;
2492 rth->dst.obsolete = -1;
Denis V. Luneve84f84f2008-07-05 19:04:32 -07002493 rth->rt_genid = rt_genid(dev_net(dev_out));
Linus Torvalds1da177e2005-04-16 15:20:36 -07002494
2495 RT_CACHE_STAT_INC(out_slow_tot);
2496
2497 if (flags & RTCF_LOCAL) {
Changli Gaod8d1f302010-06-10 23:31:35 -07002498 rth->dst.input = ip_local_deliver;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002499 rth->rt_spec_dst = fl->fl4_dst;
2500 }
2501 if (flags & (RTCF_BROADCAST | RTCF_MULTICAST)) {
2502 rth->rt_spec_dst = fl->fl4_src;
YOSHIFUJI Hideakie905a9e2007-02-09 23:24:47 +09002503 if (flags & RTCF_LOCAL &&
Linus Torvalds1da177e2005-04-16 15:20:36 -07002504 !(dev_out->flags & IFF_LOOPBACK)) {
Changli Gaod8d1f302010-06-10 23:31:35 -07002505 rth->dst.output = ip_mc_output;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002506 RT_CACHE_STAT_INC(out_slow_mc);
2507 }
2508#ifdef CONFIG_IP_MROUTE
2509 if (res->type == RTN_MULTICAST) {
2510 if (IN_DEV_MFORWARD(in_dev) &&
Joe Perchesf97c1e02007-12-16 13:45:43 -08002511 !ipv4_is_local_multicast(oldflp->fl4_dst)) {
Changli Gaod8d1f302010-06-10 23:31:35 -07002512 rth->dst.input = ip_mr_input;
2513 rth->dst.output = ip_mc_output;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002514 }
2515 }
2516#endif
2517 }
2518
2519 rt_set_nexthop(rth, res, 0);
2520
2521 rth->rt_flags = flags;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002522 *result = rth;
Eric Dumazetdd28d1a2010-09-29 11:53:50 +00002523 return 0;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002524}
2525
Eric Dumazetebc0ffa2010-10-05 10:41:36 +00002526/* called with rcu_read_lock() */
Stephen Hemminger5969f712008-04-10 01:52:09 -07002527static int ip_mkroute_output(struct rtable **rp,
2528 struct fib_result *res,
2529 const struct flowi *fl,
2530 const struct flowi *oldflp,
2531 struct net_device *dev_out,
2532 unsigned flags)
Linus Torvalds1da177e2005-04-16 15:20:36 -07002533{
Chuck Short7abaa272005-06-22 22:10:23 -07002534 struct rtable *rth = NULL;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002535 int err = __mkroute_output(&rth, res, fl, oldflp, dev_out, flags);
2536 unsigned hash;
2537 if (err == 0) {
Denis V. Lunevb00180d2008-07-05 19:04:09 -07002538 hash = rt_hash(oldflp->fl4_dst, oldflp->fl4_src, oldflp->oif,
Denis V. Luneve84f84f2008-07-05 19:04:32 -07002539 rt_genid(dev_net(dev_out)));
Pavel Emelyanov6a2bad72010-03-24 21:51:22 +00002540 err = rt_intern_hash(hash, rth, rp, NULL, oldflp->oif);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002541 }
YOSHIFUJI Hideakie905a9e2007-02-09 23:24:47 +09002542
Linus Torvalds1da177e2005-04-16 15:20:36 -07002543 return err;
2544}
2545
Linus Torvalds1da177e2005-04-16 15:20:36 -07002546/*
2547 * Major route resolver routine.
Eric Dumazet0197aa32010-09-30 03:33:58 +00002548 * called with rcu_read_lock();
Linus Torvalds1da177e2005-04-16 15:20:36 -07002549 */
2550
Denis V. Lunevb40afd02008-01-22 22:06:19 -08002551static int ip_route_output_slow(struct net *net, struct rtable **rp,
2552 const struct flowi *oldflp)
Linus Torvalds1da177e2005-04-16 15:20:36 -07002553{
2554 u32 tos = RT_FL_TOS(oldflp);
Changli Gao58116622010-11-12 18:43:55 +00002555 struct flowi fl = { .fl4_dst = oldflp->fl4_dst,
2556 .fl4_src = oldflp->fl4_src,
2557 .fl4_tos = tos & IPTOS_RT_MASK,
2558 .fl4_scope = ((tos & RTO_ONLINK) ?
2559 RT_SCOPE_LINK : RT_SCOPE_UNIVERSE),
Thomas Graf47dcf0c2006-11-09 15:20:38 -08002560 .mark = oldflp->mark,
Denis V. Lunevb40afd02008-01-22 22:06:19 -08002561 .iif = net->loopback_dev->ifindex,
Linus Torvalds1da177e2005-04-16 15:20:36 -07002562 .oif = oldflp->oif };
2563 struct fib_result res;
Eric Dumazet0197aa32010-09-30 03:33:58 +00002564 unsigned int flags = 0;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002565 struct net_device *dev_out = NULL;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002566 int err;
2567
2568
2569 res.fi = NULL;
2570#ifdef CONFIG_IP_MULTIPLE_TABLES
2571 res.r = NULL;
2572#endif
2573
2574 if (oldflp->fl4_src) {
2575 err = -EINVAL;
Joe Perchesf97c1e02007-12-16 13:45:43 -08002576 if (ipv4_is_multicast(oldflp->fl4_src) ||
Jan Engelhardt1e637c72008-01-21 03:18:08 -08002577 ipv4_is_lbcast(oldflp->fl4_src) ||
Joe Perchesf97c1e02007-12-16 13:45:43 -08002578 ipv4_is_zeronet(oldflp->fl4_src))
Linus Torvalds1da177e2005-04-16 15:20:36 -07002579 goto out;
2580
Linus Torvalds1da177e2005-04-16 15:20:36 -07002581 /* I removed check for oif == dev_out->oif here.
2582 It was wrong for two reasons:
Denis V. Lunev1ab35272008-01-22 22:04:30 -08002583 1. ip_dev_find(net, saddr) can return wrong iface, if saddr
2584 is assigned to multiple interfaces.
Linus Torvalds1da177e2005-04-16 15:20:36 -07002585 2. Moreover, we are allowed to send packets with saddr
2586 of another iface. --ANK
2587 */
2588
Joe Perches9d4fb272009-11-23 10:41:23 -08002589 if (oldflp->oif == 0 &&
2590 (ipv4_is_multicast(oldflp->fl4_dst) ||
Andy Walls27a954b2010-10-17 15:11:22 +00002591 ipv4_is_lbcast(oldflp->fl4_dst))) {
Julian Anastasova210d012008-10-01 07:28:28 -07002592 /* It is equivalent to inet_addr_type(saddr) == RTN_LOCAL */
Eric Dumazet0197aa32010-09-30 03:33:58 +00002593 dev_out = __ip_dev_find(net, oldflp->fl4_src, false);
Julian Anastasova210d012008-10-01 07:28:28 -07002594 if (dev_out == NULL)
2595 goto out;
2596
Linus Torvalds1da177e2005-04-16 15:20:36 -07002597 /* Special hack: user can direct multicasts
2598 and limited broadcast via necessary interface
2599 without fiddling with IP_MULTICAST_IF or IP_PKTINFO.
2600 This hack is not just for fun, it allows
2601 vic,vat and friends to work.
2602 They bind socket to loopback, set ttl to zero
2603 and expect that it will work.
2604 From the viewpoint of routing cache they are broken,
2605 because we are not allowed to build multicast path
2606 with loopback source addr (look, routing cache
2607 cannot know, that ttl is zero, so that packet
2608 will not leave this host and route is valid).
2609 Luckily, this hack is good workaround.
2610 */
2611
2612 fl.oif = dev_out->ifindex;
2613 goto make_route;
2614 }
Julian Anastasova210d012008-10-01 07:28:28 -07002615
2616 if (!(oldflp->flags & FLOWI_FLAG_ANYSRC)) {
2617 /* It is equivalent to inet_addr_type(saddr) == RTN_LOCAL */
Eric Dumazet0197aa32010-09-30 03:33:58 +00002618 if (!__ip_dev_find(net, oldflp->fl4_src, false))
Julian Anastasova210d012008-10-01 07:28:28 -07002619 goto out;
Julian Anastasova210d012008-10-01 07:28:28 -07002620 }
Linus Torvalds1da177e2005-04-16 15:20:36 -07002621 }
2622
2623
2624 if (oldflp->oif) {
Eric Dumazet0197aa32010-09-30 03:33:58 +00002625 dev_out = dev_get_by_index_rcu(net, oldflp->oif);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002626 err = -ENODEV;
2627 if (dev_out == NULL)
2628 goto out;
Herbert Xue5ed6392005-10-03 14:35:55 -07002629
2630 /* RACE: Check return value of inet_select_addr instead. */
Eric Dumazetfc75fc82010-12-22 04:39:39 +00002631 if (!(dev_out->flags & IFF_UP) || !__in_dev_get_rcu(dev_out)) {
2632 err = -ENETUNREACH;
2633 goto out;
2634 }
Joe Perchesf97c1e02007-12-16 13:45:43 -08002635 if (ipv4_is_local_multicast(oldflp->fl4_dst) ||
Andy Walls27a954b2010-10-17 15:11:22 +00002636 ipv4_is_lbcast(oldflp->fl4_dst)) {
Linus Torvalds1da177e2005-04-16 15:20:36 -07002637 if (!fl.fl4_src)
2638 fl.fl4_src = inet_select_addr(dev_out, 0,
2639 RT_SCOPE_LINK);
2640 goto make_route;
2641 }
2642 if (!fl.fl4_src) {
Joe Perchesf97c1e02007-12-16 13:45:43 -08002643 if (ipv4_is_multicast(oldflp->fl4_dst))
Linus Torvalds1da177e2005-04-16 15:20:36 -07002644 fl.fl4_src = inet_select_addr(dev_out, 0,
2645 fl.fl4_scope);
2646 else if (!oldflp->fl4_dst)
2647 fl.fl4_src = inet_select_addr(dev_out, 0,
2648 RT_SCOPE_HOST);
2649 }
2650 }
2651
2652 if (!fl.fl4_dst) {
2653 fl.fl4_dst = fl.fl4_src;
2654 if (!fl.fl4_dst)
2655 fl.fl4_dst = fl.fl4_src = htonl(INADDR_LOOPBACK);
Denis V. Lunevb40afd02008-01-22 22:06:19 -08002656 dev_out = net->loopback_dev;
Denis V. Lunevb40afd02008-01-22 22:06:19 -08002657 fl.oif = net->loopback_dev->ifindex;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002658 res.type = RTN_LOCAL;
2659 flags |= RTCF_LOCAL;
2660 goto make_route;
2661 }
2662
Denis V. Lunevb40afd02008-01-22 22:06:19 -08002663 if (fib_lookup(net, &fl, &res)) {
Linus Torvalds1da177e2005-04-16 15:20:36 -07002664 res.fi = NULL;
2665 if (oldflp->oif) {
2666 /* Apparently, routing tables are wrong. Assume,
2667 that the destination is on link.
2668
2669 WHY? DW.
2670 Because we are allowed to send to iface
2671 even if it has NO routes and NO assigned
2672 addresses. When oif is specified, routing
2673 tables are looked up with only one purpose:
2674 to catch if destination is gatewayed, rather than
2675 direct. Moreover, if MSG_DONTROUTE is set,
2676 we send packet, ignoring both routing tables
2677 and ifaddr state. --ANK
2678
2679
2680 We could make it even if oif is unknown,
2681 likely IPv6, but we do not.
2682 */
2683
2684 if (fl.fl4_src == 0)
2685 fl.fl4_src = inet_select_addr(dev_out, 0,
2686 RT_SCOPE_LINK);
2687 res.type = RTN_UNICAST;
2688 goto make_route;
2689 }
Linus Torvalds1da177e2005-04-16 15:20:36 -07002690 err = -ENETUNREACH;
2691 goto out;
2692 }
Linus Torvalds1da177e2005-04-16 15:20:36 -07002693
2694 if (res.type == RTN_LOCAL) {
Joel Sing9fc3bbb2011-01-03 20:24:20 +00002695 if (!fl.fl4_src) {
2696 if (res.fi->fib_prefsrc)
2697 fl.fl4_src = res.fi->fib_prefsrc;
2698 else
2699 fl.fl4_src = fl.fl4_dst;
2700 }
Denis V. Lunevb40afd02008-01-22 22:06:19 -08002701 dev_out = net->loopback_dev;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002702 fl.oif = dev_out->ifindex;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002703 res.fi = NULL;
2704 flags |= RTCF_LOCAL;
2705 goto make_route;
2706 }
2707
2708#ifdef CONFIG_IP_ROUTE_MULTIPATH
2709 if (res.fi->fib_nhs > 1 && fl.oif == 0)
2710 fib_select_multipath(&fl, &res);
2711 else
2712#endif
2713 if (!res.prefixlen && res.type == RTN_UNICAST && !fl.oif)
Denis V. Lunevb40afd02008-01-22 22:06:19 -08002714 fib_select_default(net, &fl, &res);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002715
2716 if (!fl.fl4_src)
2717 fl.fl4_src = FIB_RES_PREFSRC(res);
2718
Linus Torvalds1da177e2005-04-16 15:20:36 -07002719 dev_out = FIB_RES_DEV(res);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002720 fl.oif = dev_out->ifindex;
2721
2722
2723make_route:
2724 err = ip_mkroute_output(rp, &res, &fl, oldflp, dev_out, flags);
2725
Linus Torvalds1da177e2005-04-16 15:20:36 -07002726out: return err;
2727}
2728
Denis V. Lunev611c1832008-01-22 22:06:48 -08002729int __ip_route_output_key(struct net *net, struct rtable **rp,
2730 const struct flowi *flp)
Linus Torvalds1da177e2005-04-16 15:20:36 -07002731{
Eric Dumazet0197aa32010-09-30 03:33:58 +00002732 unsigned int hash;
2733 int res;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002734 struct rtable *rth;
2735
Neil Horman1080d702008-10-27 12:28:25 -07002736 if (!rt_caching(net))
2737 goto slow_output;
2738
Denis V. Luneve84f84f2008-07-05 19:04:32 -07002739 hash = rt_hash(flp->fl4_dst, flp->fl4_src, flp->oif, rt_genid(net));
Linus Torvalds1da177e2005-04-16 15:20:36 -07002740
2741 rcu_read_lock_bh();
Paul E. McKenneya898def2010-02-22 17:04:49 -08002742 for (rth = rcu_dereference_bh(rt_hash_table[hash].chain); rth;
Changli Gaod8d1f302010-06-10 23:31:35 -07002743 rth = rcu_dereference_bh(rth->dst.rt_next)) {
Linus Torvalds1da177e2005-04-16 15:20:36 -07002744 if (rth->fl.fl4_dst == flp->fl4_dst &&
2745 rth->fl.fl4_src == flp->fl4_src &&
David S. Millerc7537962010-11-11 17:07:48 -08002746 rt_is_output_route(rth) &&
Linus Torvalds1da177e2005-04-16 15:20:36 -07002747 rth->fl.oif == flp->oif &&
Thomas Graf47dcf0c2006-11-09 15:20:38 -08002748 rth->fl.mark == flp->mark &&
Linus Torvalds1da177e2005-04-16 15:20:36 -07002749 !((rth->fl.fl4_tos ^ flp->fl4_tos) &
Denis V. Lunevb5921912008-01-22 23:50:25 -08002750 (IPTOS_RT_MASK | RTO_ONLINK)) &&
Changli Gaod8d1f302010-06-10 23:31:35 -07002751 net_eq(dev_net(rth->dst.dev), net) &&
Denis V. Luneve84f84f2008-07-05 19:04:32 -07002752 !rt_is_expired(rth)) {
Changli Gaod8d1f302010-06-10 23:31:35 -07002753 dst_use(&rth->dst, jiffies);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002754 RT_CACHE_STAT_INC(out_hit);
2755 rcu_read_unlock_bh();
2756 *rp = rth;
2757 return 0;
2758 }
2759 RT_CACHE_STAT_INC(out_hlist_search);
2760 }
2761 rcu_read_unlock_bh();
2762
Neil Horman1080d702008-10-27 12:28:25 -07002763slow_output:
Eric Dumazet0197aa32010-09-30 03:33:58 +00002764 rcu_read_lock();
2765 res = ip_route_output_slow(net, rp, flp);
2766 rcu_read_unlock();
2767 return res;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002768}
Arnaldo Carvalho de Melod8c97a92005-08-09 20:12:12 -07002769EXPORT_SYMBOL_GPL(__ip_route_output_key);
2770
Jianzhao Wangae2688d2010-09-08 14:35:43 -07002771static struct dst_entry *ipv4_blackhole_dst_check(struct dst_entry *dst, u32 cookie)
2772{
2773 return NULL;
2774}
2775
David S. Miller14e50e52007-05-24 18:17:54 -07002776static void ipv4_rt_blackhole_update_pmtu(struct dst_entry *dst, u32 mtu)
2777{
2778}
2779
2780static struct dst_ops ipv4_dst_blackhole_ops = {
2781 .family = AF_INET,
Harvey Harrison09640e62009-02-01 00:45:17 -08002782 .protocol = cpu_to_be16(ETH_P_IP),
David S. Miller14e50e52007-05-24 18:17:54 -07002783 .destroy = ipv4_dst_destroy,
Jianzhao Wangae2688d2010-09-08 14:35:43 -07002784 .check = ipv4_blackhole_dst_check,
David S. Miller14e50e52007-05-24 18:17:54 -07002785 .update_pmtu = ipv4_rt_blackhole_update_pmtu,
David S. Miller14e50e52007-05-24 18:17:54 -07002786};
2787
2788
Denis V. Luneve84f84f2008-07-05 19:04:32 -07002789static int ipv4_dst_blackhole(struct net *net, struct rtable **rp, struct flowi *flp)
David S. Miller14e50e52007-05-24 18:17:54 -07002790{
2791 struct rtable *ort = *rp;
2792 struct rtable *rt = (struct rtable *)
2793 dst_alloc(&ipv4_dst_blackhole_ops);
2794
2795 if (rt) {
Changli Gaod8d1f302010-06-10 23:31:35 -07002796 struct dst_entry *new = &rt->dst;
David S. Miller14e50e52007-05-24 18:17:54 -07002797
2798 atomic_set(&new->__refcnt, 1);
2799 new->__use = 1;
Herbert Xu352e5122007-11-13 21:34:06 -08002800 new->input = dst_discard;
2801 new->output = dst_discard;
David S. Millerdefb3512010-12-08 21:16:57 -08002802 dst_copy_metrics(new, &ort->dst);
David S. Miller14e50e52007-05-24 18:17:54 -07002803
Changli Gaod8d1f302010-06-10 23:31:35 -07002804 new->dev = ort->dst.dev;
David S. Miller14e50e52007-05-24 18:17:54 -07002805 if (new->dev)
2806 dev_hold(new->dev);
2807
2808 rt->fl = ort->fl;
2809
Denis V. Luneve84f84f2008-07-05 19:04:32 -07002810 rt->rt_genid = rt_genid(net);
David S. Miller14e50e52007-05-24 18:17:54 -07002811 rt->rt_flags = ort->rt_flags;
2812 rt->rt_type = ort->rt_type;
2813 rt->rt_dst = ort->rt_dst;
2814 rt->rt_src = ort->rt_src;
2815 rt->rt_iif = ort->rt_iif;
2816 rt->rt_gateway = ort->rt_gateway;
2817 rt->rt_spec_dst = ort->rt_spec_dst;
2818 rt->peer = ort->peer;
2819 if (rt->peer)
2820 atomic_inc(&rt->peer->refcnt);
David S. Miller62fa8a82011-01-26 20:51:05 -08002821 rt->fi = ort->fi;
2822 if (rt->fi)
2823 atomic_inc(&rt->fi->fib_clntref);
David S. Miller14e50e52007-05-24 18:17:54 -07002824
2825 dst_free(new);
2826 }
2827
Changli Gaod8d1f302010-06-10 23:31:35 -07002828 dst_release(&(*rp)->dst);
David S. Miller14e50e52007-05-24 18:17:54 -07002829 *rp = rt;
Eric Dumazeta02cec22010-09-22 20:43:57 +00002830 return rt ? 0 : -ENOMEM;
David S. Miller14e50e52007-05-24 18:17:54 -07002831}
2832
Denis V. Lunevf1b050b2008-01-22 22:07:10 -08002833int ip_route_output_flow(struct net *net, struct rtable **rp, struct flowi *flp,
2834 struct sock *sk, int flags)
Linus Torvalds1da177e2005-04-16 15:20:36 -07002835{
2836 int err;
2837
Denis V. Lunevf1b050b2008-01-22 22:07:10 -08002838 if ((err = __ip_route_output_key(net, rp, flp)) != 0)
Linus Torvalds1da177e2005-04-16 15:20:36 -07002839 return err;
2840
2841 if (flp->proto) {
2842 if (!flp->fl4_src)
2843 flp->fl4_src = (*rp)->rt_src;
2844 if (!flp->fl4_dst)
2845 flp->fl4_dst = (*rp)->rt_dst;
Alexey Dobriyan52479b62008-11-25 17:35:18 -08002846 err = __xfrm_lookup(net, (struct dst_entry **)rp, flp, sk,
Herbert Xubb728452007-12-12 18:48:58 -08002847 flags ? XFRM_LOOKUP_WAIT : 0);
David S. Miller14e50e52007-05-24 18:17:54 -07002848 if (err == -EREMOTE)
Denis V. Luneve84f84f2008-07-05 19:04:32 -07002849 err = ipv4_dst_blackhole(net, rp, flp);
David S. Miller14e50e52007-05-24 18:17:54 -07002850
2851 return err;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002852 }
2853
2854 return 0;
2855}
Arnaldo Carvalho de Melod8c97a92005-08-09 20:12:12 -07002856EXPORT_SYMBOL_GPL(ip_route_output_flow);
2857
Denis V. Lunevf2063512008-01-22 22:07:34 -08002858int ip_route_output_key(struct net *net, struct rtable **rp, struct flowi *flp)
Linus Torvalds1da177e2005-04-16 15:20:36 -07002859{
Denis V. Lunevf2063512008-01-22 22:07:34 -08002860 return ip_route_output_flow(net, rp, flp, NULL, 0);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002861}
Eric Dumazet4bc2f182010-07-09 21:22:10 +00002862EXPORT_SYMBOL(ip_route_output_key);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002863
Benjamin Thery4feb88e2009-01-22 04:56:23 +00002864static int rt_fill_info(struct net *net,
2865 struct sk_buff *skb, u32 pid, u32 seq, int event,
Jamal Hadi Salimb6544c02005-06-18 22:54:12 -07002866 int nowait, unsigned int flags)
Linus Torvalds1da177e2005-04-16 15:20:36 -07002867{
Eric Dumazet511c3f92009-06-02 05:14:27 +00002868 struct rtable *rt = skb_rtable(skb);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002869 struct rtmsg *r;
Thomas Grafbe403ea2006-08-17 18:15:17 -07002870 struct nlmsghdr *nlh;
Thomas Grafe3703b32006-11-27 09:27:07 -08002871 long expires;
2872 u32 id = 0, ts = 0, tsage = 0, error;
Thomas Grafbe403ea2006-08-17 18:15:17 -07002873
2874 nlh = nlmsg_put(skb, pid, seq, event, sizeof(*r), flags);
2875 if (nlh == NULL)
Patrick McHardy26932562007-01-31 23:16:40 -08002876 return -EMSGSIZE;
Thomas Grafbe403ea2006-08-17 18:15:17 -07002877
2878 r = nlmsg_data(nlh);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002879 r->rtm_family = AF_INET;
2880 r->rtm_dst_len = 32;
2881 r->rtm_src_len = 0;
2882 r->rtm_tos = rt->fl.fl4_tos;
2883 r->rtm_table = RT_TABLE_MAIN;
Thomas Grafbe403ea2006-08-17 18:15:17 -07002884 NLA_PUT_U32(skb, RTA_TABLE, RT_TABLE_MAIN);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002885 r->rtm_type = rt->rt_type;
2886 r->rtm_scope = RT_SCOPE_UNIVERSE;
2887 r->rtm_protocol = RTPROT_UNSPEC;
2888 r->rtm_flags = (rt->rt_flags & ~0xFFFF) | RTM_F_CLONED;
2889 if (rt->rt_flags & RTCF_NOTIFY)
2890 r->rtm_flags |= RTM_F_NOTIFY;
Thomas Grafbe403ea2006-08-17 18:15:17 -07002891
Al Viro17fb2c62006-09-26 22:15:25 -07002892 NLA_PUT_BE32(skb, RTA_DST, rt->rt_dst);
Thomas Grafbe403ea2006-08-17 18:15:17 -07002893
Linus Torvalds1da177e2005-04-16 15:20:36 -07002894 if (rt->fl.fl4_src) {
2895 r->rtm_src_len = 32;
Al Viro17fb2c62006-09-26 22:15:25 -07002896 NLA_PUT_BE32(skb, RTA_SRC, rt->fl.fl4_src);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002897 }
Changli Gaod8d1f302010-06-10 23:31:35 -07002898 if (rt->dst.dev)
2899 NLA_PUT_U32(skb, RTA_OIF, rt->dst.dev->ifindex);
Patrick McHardyc7066f72011-01-14 13:36:42 +01002900#ifdef CONFIG_IP_ROUTE_CLASSID
Changli Gaod8d1f302010-06-10 23:31:35 -07002901 if (rt->dst.tclassid)
2902 NLA_PUT_U32(skb, RTA_FLOW, rt->dst.tclassid);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002903#endif
David S. Millerc7537962010-11-11 17:07:48 -08002904 if (rt_is_input_route(rt))
Al Viro17fb2c62006-09-26 22:15:25 -07002905 NLA_PUT_BE32(skb, RTA_PREFSRC, rt->rt_spec_dst);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002906 else if (rt->rt_src != rt->fl.fl4_src)
Al Viro17fb2c62006-09-26 22:15:25 -07002907 NLA_PUT_BE32(skb, RTA_PREFSRC, rt->rt_src);
Thomas Grafbe403ea2006-08-17 18:15:17 -07002908
Linus Torvalds1da177e2005-04-16 15:20:36 -07002909 if (rt->rt_dst != rt->rt_gateway)
Al Viro17fb2c62006-09-26 22:15:25 -07002910 NLA_PUT_BE32(skb, RTA_GATEWAY, rt->rt_gateway);
Thomas Grafbe403ea2006-08-17 18:15:17 -07002911
David S. Millerdefb3512010-12-08 21:16:57 -08002912 if (rtnetlink_put_metrics(skb, dst_metrics_ptr(&rt->dst)) < 0)
Thomas Grafbe403ea2006-08-17 18:15:17 -07002913 goto nla_put_failure;
2914
Eric Dumazet963bfee2010-07-20 22:03:14 +00002915 if (rt->fl.mark)
2916 NLA_PUT_BE32(skb, RTA_MARK, rt->fl.mark);
2917
Changli Gaod8d1f302010-06-10 23:31:35 -07002918 error = rt->dst.error;
2919 expires = rt->dst.expires ? rt->dst.expires - jiffies : 0;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002920 if (rt->peer) {
Eric Dumazet317fe0e2010-06-16 04:52:13 +00002921 inet_peer_refcheck(rt->peer);
Eric Dumazet2c1409a2009-11-12 09:33:09 +00002922 id = atomic_read(&rt->peer->ip_id_count) & 0xffff;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002923 if (rt->peer->tcp_ts_stamp) {
Thomas Grafe3703b32006-11-27 09:27:07 -08002924 ts = rt->peer->tcp_ts;
James Morris9d729f72007-03-04 16:12:44 -08002925 tsage = get_seconds() - rt->peer->tcp_ts_stamp;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002926 }
2927 }
Thomas Grafbe403ea2006-08-17 18:15:17 -07002928
David S. Millerc7537962010-11-11 17:07:48 -08002929 if (rt_is_input_route(rt)) {
Linus Torvalds1da177e2005-04-16 15:20:36 -07002930#ifdef CONFIG_IP_MROUTE
Al Viroe4485152006-09-26 22:15:01 -07002931 __be32 dst = rt->rt_dst;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002932
Joe Perchesf97c1e02007-12-16 13:45:43 -08002933 if (ipv4_is_multicast(dst) && !ipv4_is_local_multicast(dst) &&
Benjamin Thery4feb88e2009-01-22 04:56:23 +00002934 IPV4_DEVCONF_ALL(net, MC_FORWARDING)) {
2935 int err = ipmr_get_route(net, skb, r, nowait);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002936 if (err <= 0) {
2937 if (!nowait) {
2938 if (err == 0)
2939 return 0;
Thomas Grafbe403ea2006-08-17 18:15:17 -07002940 goto nla_put_failure;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002941 } else {
2942 if (err == -EMSGSIZE)
Thomas Grafbe403ea2006-08-17 18:15:17 -07002943 goto nla_put_failure;
Thomas Grafe3703b32006-11-27 09:27:07 -08002944 error = err;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002945 }
2946 }
2947 } else
2948#endif
Thomas Grafbe403ea2006-08-17 18:15:17 -07002949 NLA_PUT_U32(skb, RTA_IIF, rt->fl.iif);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002950 }
2951
Changli Gaod8d1f302010-06-10 23:31:35 -07002952 if (rtnl_put_cacheinfo(skb, &rt->dst, id, ts, tsage,
Thomas Grafe3703b32006-11-27 09:27:07 -08002953 expires, error) < 0)
2954 goto nla_put_failure;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002955
Thomas Grafbe403ea2006-08-17 18:15:17 -07002956 return nlmsg_end(skb, nlh);
2957
2958nla_put_failure:
Patrick McHardy26932562007-01-31 23:16:40 -08002959 nlmsg_cancel(skb, nlh);
2960 return -EMSGSIZE;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002961}
2962
Thomas Graf63f34442007-03-22 11:55:17 -07002963static int inet_rtm_getroute(struct sk_buff *in_skb, struct nlmsghdr* nlh, void *arg)
Linus Torvalds1da177e2005-04-16 15:20:36 -07002964{
YOSHIFUJI Hideaki3b1e0a62008-03-26 02:26:21 +09002965 struct net *net = sock_net(in_skb->sk);
Thomas Grafd889ce32006-08-17 18:15:44 -07002966 struct rtmsg *rtm;
2967 struct nlattr *tb[RTA_MAX+1];
Linus Torvalds1da177e2005-04-16 15:20:36 -07002968 struct rtable *rt = NULL;
Al Viro9e12bb22006-09-26 21:25:20 -07002969 __be32 dst = 0;
2970 __be32 src = 0;
2971 u32 iif;
Thomas Grafd889ce32006-08-17 18:15:44 -07002972 int err;
Eric Dumazet963bfee2010-07-20 22:03:14 +00002973 int mark;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002974 struct sk_buff *skb;
2975
Thomas Grafd889ce32006-08-17 18:15:44 -07002976 err = nlmsg_parse(nlh, sizeof(*rtm), tb, RTA_MAX, rtm_ipv4_policy);
2977 if (err < 0)
2978 goto errout;
2979
2980 rtm = nlmsg_data(nlh);
2981
Linus Torvalds1da177e2005-04-16 15:20:36 -07002982 skb = alloc_skb(NLMSG_GOODSIZE, GFP_KERNEL);
Thomas Grafd889ce32006-08-17 18:15:44 -07002983 if (skb == NULL) {
2984 err = -ENOBUFS;
2985 goto errout;
2986 }
Linus Torvalds1da177e2005-04-16 15:20:36 -07002987
2988 /* Reserve room for dummy headers, this skb can pass
2989 through good chunk of routing engine.
2990 */
Arnaldo Carvalho de Melo459a98e2007-03-19 15:30:44 -07002991 skb_reset_mac_header(skb);
Arnaldo Carvalho de Meloc1d2bbe2007-04-10 20:45:18 -07002992 skb_reset_network_header(skb);
Stephen Hemmingerd2c962b2006-04-17 17:27:11 -07002993
2994 /* Bugfix: need to give ip_route_input enough of an IP header to not gag. */
Arnaldo Carvalho de Meloeddc9ec2007-04-20 22:47:35 -07002995 ip_hdr(skb)->protocol = IPPROTO_ICMP;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002996 skb_reserve(skb, MAX_HEADER + sizeof(struct iphdr));
2997
Al Viro17fb2c62006-09-26 22:15:25 -07002998 src = tb[RTA_SRC] ? nla_get_be32(tb[RTA_SRC]) : 0;
2999 dst = tb[RTA_DST] ? nla_get_be32(tb[RTA_DST]) : 0;
Thomas Grafd889ce32006-08-17 18:15:44 -07003000 iif = tb[RTA_IIF] ? nla_get_u32(tb[RTA_IIF]) : 0;
Eric Dumazet963bfee2010-07-20 22:03:14 +00003001 mark = tb[RTA_MARK] ? nla_get_u32(tb[RTA_MARK]) : 0;
Linus Torvalds1da177e2005-04-16 15:20:36 -07003002
3003 if (iif) {
Thomas Grafd889ce32006-08-17 18:15:44 -07003004 struct net_device *dev;
3005
Denis V. Lunev19375042008-02-28 20:52:04 -08003006 dev = __dev_get_by_index(net, iif);
Thomas Grafd889ce32006-08-17 18:15:44 -07003007 if (dev == NULL) {
3008 err = -ENODEV;
3009 goto errout_free;
3010 }
3011
Linus Torvalds1da177e2005-04-16 15:20:36 -07003012 skb->protocol = htons(ETH_P_IP);
3013 skb->dev = dev;
Eric Dumazet963bfee2010-07-20 22:03:14 +00003014 skb->mark = mark;
Linus Torvalds1da177e2005-04-16 15:20:36 -07003015 local_bh_disable();
3016 err = ip_route_input(skb, dst, src, rtm->rtm_tos, dev);
3017 local_bh_enable();
Thomas Grafd889ce32006-08-17 18:15:44 -07003018
Eric Dumazet511c3f92009-06-02 05:14:27 +00003019 rt = skb_rtable(skb);
Changli Gaod8d1f302010-06-10 23:31:35 -07003020 if (err == 0 && rt->dst.error)
3021 err = -rt->dst.error;
Linus Torvalds1da177e2005-04-16 15:20:36 -07003022 } else {
Thomas Grafd889ce32006-08-17 18:15:44 -07003023 struct flowi fl = {
Changli Gao58116622010-11-12 18:43:55 +00003024 .fl4_dst = dst,
3025 .fl4_src = src,
3026 .fl4_tos = rtm->rtm_tos,
Thomas Grafd889ce32006-08-17 18:15:44 -07003027 .oif = tb[RTA_OIF] ? nla_get_u32(tb[RTA_OIF]) : 0,
Eric Dumazet963bfee2010-07-20 22:03:14 +00003028 .mark = mark,
Thomas Grafd889ce32006-08-17 18:15:44 -07003029 };
Denis V. Lunev19375042008-02-28 20:52:04 -08003030 err = ip_route_output_key(net, &rt, &fl);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003031 }
Thomas Grafd889ce32006-08-17 18:15:44 -07003032
Linus Torvalds1da177e2005-04-16 15:20:36 -07003033 if (err)
Thomas Grafd889ce32006-08-17 18:15:44 -07003034 goto errout_free;
Linus Torvalds1da177e2005-04-16 15:20:36 -07003035
Changli Gaod8d1f302010-06-10 23:31:35 -07003036 skb_dst_set(skb, &rt->dst);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003037 if (rtm->rtm_flags & RTM_F_NOTIFY)
3038 rt->rt_flags |= RTCF_NOTIFY;
3039
Benjamin Thery4feb88e2009-01-22 04:56:23 +00003040 err = rt_fill_info(net, skb, NETLINK_CB(in_skb).pid, nlh->nlmsg_seq,
Denis V. Lunev19375042008-02-28 20:52:04 -08003041 RTM_NEWROUTE, 0, 0);
Thomas Grafd889ce32006-08-17 18:15:44 -07003042 if (err <= 0)
3043 goto errout_free;
Linus Torvalds1da177e2005-04-16 15:20:36 -07003044
Denis V. Lunev19375042008-02-28 20:52:04 -08003045 err = rtnl_unicast(skb, net, NETLINK_CB(in_skb).pid);
Thomas Grafd889ce32006-08-17 18:15:44 -07003046errout:
Thomas Graf2942e902006-08-15 00:30:25 -07003047 return err;
Linus Torvalds1da177e2005-04-16 15:20:36 -07003048
Thomas Grafd889ce32006-08-17 18:15:44 -07003049errout_free:
Linus Torvalds1da177e2005-04-16 15:20:36 -07003050 kfree_skb(skb);
Thomas Grafd889ce32006-08-17 18:15:44 -07003051 goto errout;
Linus Torvalds1da177e2005-04-16 15:20:36 -07003052}
3053
3054int ip_rt_dump(struct sk_buff *skb, struct netlink_callback *cb)
3055{
3056 struct rtable *rt;
3057 int h, s_h;
3058 int idx, s_idx;
Denis V. Lunev19375042008-02-28 20:52:04 -08003059 struct net *net;
3060
YOSHIFUJI Hideaki3b1e0a62008-03-26 02:26:21 +09003061 net = sock_net(skb->sk);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003062
3063 s_h = cb->args[0];
Eric Dumazetd8c92832008-01-07 21:52:14 -08003064 if (s_h < 0)
3065 s_h = 0;
Linus Torvalds1da177e2005-04-16 15:20:36 -07003066 s_idx = idx = cb->args[1];
Eric Dumazeta6272662008-08-28 01:11:25 -07003067 for (h = s_h; h <= rt_hash_mask; h++, s_idx = 0) {
3068 if (!rt_hash_table[h].chain)
3069 continue;
Linus Torvalds1da177e2005-04-16 15:20:36 -07003070 rcu_read_lock_bh();
Paul E. McKenneya898def2010-02-22 17:04:49 -08003071 for (rt = rcu_dereference_bh(rt_hash_table[h].chain), idx = 0; rt;
Changli Gaod8d1f302010-06-10 23:31:35 -07003072 rt = rcu_dereference_bh(rt->dst.rt_next), idx++) {
3073 if (!net_eq(dev_net(rt->dst.dev), net) || idx < s_idx)
Linus Torvalds1da177e2005-04-16 15:20:36 -07003074 continue;
Denis V. Luneve84f84f2008-07-05 19:04:32 -07003075 if (rt_is_expired(rt))
Eric Dumazet29e75252008-01-31 17:05:09 -08003076 continue;
Changli Gaod8d1f302010-06-10 23:31:35 -07003077 skb_dst_set_noref(skb, &rt->dst);
Benjamin Thery4feb88e2009-01-22 04:56:23 +00003078 if (rt_fill_info(net, skb, NETLINK_CB(cb->skb).pid,
YOSHIFUJI Hideakie905a9e2007-02-09 23:24:47 +09003079 cb->nlh->nlmsg_seq, RTM_NEWROUTE,
Jamal Hadi Salimb6544c02005-06-18 22:54:12 -07003080 1, NLM_F_MULTI) <= 0) {
Eric Dumazetadf30902009-06-02 05:19:30 +00003081 skb_dst_drop(skb);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003082 rcu_read_unlock_bh();
3083 goto done;
3084 }
Eric Dumazetadf30902009-06-02 05:19:30 +00003085 skb_dst_drop(skb);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003086 }
3087 rcu_read_unlock_bh();
3088 }
3089
3090done:
3091 cb->args[0] = h;
3092 cb->args[1] = idx;
3093 return skb->len;
3094}
3095
3096void ip_rt_multicast_event(struct in_device *in_dev)
3097{
Denis V. Lunev76e6ebf2008-07-05 19:00:44 -07003098 rt_cache_flush(dev_net(in_dev->dev), 0);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003099}
3100
3101#ifdef CONFIG_SYSCTL
Denis V. Lunev81c684d2008-07-08 03:05:28 -07003102static int ipv4_sysctl_rtcache_flush(ctl_table *__ctl, int write,
Alexey Dobriyan8d65af72009-09-23 15:57:19 -07003103 void __user *buffer,
Linus Torvalds1da177e2005-04-16 15:20:36 -07003104 size_t *lenp, loff_t *ppos)
3105{
3106 if (write) {
Denis V. Lunev639e1042008-07-05 19:02:06 -07003107 int flush_delay;
Denis V. Lunev81c684d2008-07-08 03:05:28 -07003108 ctl_table ctl;
Denis V. Lunev39a23e72008-07-05 19:02:33 -07003109 struct net *net;
Denis V. Lunev639e1042008-07-05 19:02:06 -07003110
Denis V. Lunev81c684d2008-07-08 03:05:28 -07003111 memcpy(&ctl, __ctl, sizeof(ctl));
3112 ctl.data = &flush_delay;
Alexey Dobriyan8d65af72009-09-23 15:57:19 -07003113 proc_dointvec(&ctl, write, buffer, lenp, ppos);
Denis V. Lunev639e1042008-07-05 19:02:06 -07003114
Denis V. Lunev81c684d2008-07-08 03:05:28 -07003115 net = (struct net *)__ctl->extra1;
Denis V. Lunev39a23e72008-07-05 19:02:33 -07003116 rt_cache_flush(net, flush_delay);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003117 return 0;
YOSHIFUJI Hideakie905a9e2007-02-09 23:24:47 +09003118 }
Linus Torvalds1da177e2005-04-16 15:20:36 -07003119
3120 return -EINVAL;
3121}
3122
Al Viroeeb61f72008-07-27 08:59:33 +01003123static ctl_table ipv4_route_table[] = {
YOSHIFUJI Hideakie905a9e2007-02-09 23:24:47 +09003124 {
Linus Torvalds1da177e2005-04-16 15:20:36 -07003125 .procname = "gc_thresh",
3126 .data = &ipv4_dst_ops.gc_thresh,
3127 .maxlen = sizeof(int),
3128 .mode = 0644,
Alexey Dobriyan6d9f2392008-11-03 18:21:05 -08003129 .proc_handler = proc_dointvec,
Linus Torvalds1da177e2005-04-16 15:20:36 -07003130 },
3131 {
Linus Torvalds1da177e2005-04-16 15:20:36 -07003132 .procname = "max_size",
3133 .data = &ip_rt_max_size,
3134 .maxlen = sizeof(int),
3135 .mode = 0644,
Alexey Dobriyan6d9f2392008-11-03 18:21:05 -08003136 .proc_handler = proc_dointvec,
Linus Torvalds1da177e2005-04-16 15:20:36 -07003137 },
3138 {
3139 /* Deprecated. Use gc_min_interval_ms */
YOSHIFUJI Hideakie905a9e2007-02-09 23:24:47 +09003140
Linus Torvalds1da177e2005-04-16 15:20:36 -07003141 .procname = "gc_min_interval",
3142 .data = &ip_rt_gc_min_interval,
3143 .maxlen = sizeof(int),
3144 .mode = 0644,
Alexey Dobriyan6d9f2392008-11-03 18:21:05 -08003145 .proc_handler = proc_dointvec_jiffies,
Linus Torvalds1da177e2005-04-16 15:20:36 -07003146 },
3147 {
Linus Torvalds1da177e2005-04-16 15:20:36 -07003148 .procname = "gc_min_interval_ms",
3149 .data = &ip_rt_gc_min_interval,
3150 .maxlen = sizeof(int),
3151 .mode = 0644,
Alexey Dobriyan6d9f2392008-11-03 18:21:05 -08003152 .proc_handler = proc_dointvec_ms_jiffies,
Linus Torvalds1da177e2005-04-16 15:20:36 -07003153 },
3154 {
Linus Torvalds1da177e2005-04-16 15:20:36 -07003155 .procname = "gc_timeout",
3156 .data = &ip_rt_gc_timeout,
3157 .maxlen = sizeof(int),
3158 .mode = 0644,
Alexey Dobriyan6d9f2392008-11-03 18:21:05 -08003159 .proc_handler = proc_dointvec_jiffies,
Linus Torvalds1da177e2005-04-16 15:20:36 -07003160 },
3161 {
Linus Torvalds1da177e2005-04-16 15:20:36 -07003162 .procname = "gc_interval",
3163 .data = &ip_rt_gc_interval,
3164 .maxlen = sizeof(int),
3165 .mode = 0644,
Alexey Dobriyan6d9f2392008-11-03 18:21:05 -08003166 .proc_handler = proc_dointvec_jiffies,
Linus Torvalds1da177e2005-04-16 15:20:36 -07003167 },
3168 {
Linus Torvalds1da177e2005-04-16 15:20:36 -07003169 .procname = "redirect_load",
3170 .data = &ip_rt_redirect_load,
3171 .maxlen = sizeof(int),
3172 .mode = 0644,
Alexey Dobriyan6d9f2392008-11-03 18:21:05 -08003173 .proc_handler = proc_dointvec,
Linus Torvalds1da177e2005-04-16 15:20:36 -07003174 },
3175 {
Linus Torvalds1da177e2005-04-16 15:20:36 -07003176 .procname = "redirect_number",
3177 .data = &ip_rt_redirect_number,
3178 .maxlen = sizeof(int),
3179 .mode = 0644,
Alexey Dobriyan6d9f2392008-11-03 18:21:05 -08003180 .proc_handler = proc_dointvec,
Linus Torvalds1da177e2005-04-16 15:20:36 -07003181 },
3182 {
Linus Torvalds1da177e2005-04-16 15:20:36 -07003183 .procname = "redirect_silence",
3184 .data = &ip_rt_redirect_silence,
3185 .maxlen = sizeof(int),
3186 .mode = 0644,
Alexey Dobriyan6d9f2392008-11-03 18:21:05 -08003187 .proc_handler = proc_dointvec,
Linus Torvalds1da177e2005-04-16 15:20:36 -07003188 },
3189 {
Linus Torvalds1da177e2005-04-16 15:20:36 -07003190 .procname = "error_cost",
3191 .data = &ip_rt_error_cost,
3192 .maxlen = sizeof(int),
3193 .mode = 0644,
Alexey Dobriyan6d9f2392008-11-03 18:21:05 -08003194 .proc_handler = proc_dointvec,
Linus Torvalds1da177e2005-04-16 15:20:36 -07003195 },
3196 {
Linus Torvalds1da177e2005-04-16 15:20:36 -07003197 .procname = "error_burst",
3198 .data = &ip_rt_error_burst,
3199 .maxlen = sizeof(int),
3200 .mode = 0644,
Alexey Dobriyan6d9f2392008-11-03 18:21:05 -08003201 .proc_handler = proc_dointvec,
Linus Torvalds1da177e2005-04-16 15:20:36 -07003202 },
3203 {
Linus Torvalds1da177e2005-04-16 15:20:36 -07003204 .procname = "gc_elasticity",
3205 .data = &ip_rt_gc_elasticity,
3206 .maxlen = sizeof(int),
3207 .mode = 0644,
Alexey Dobriyan6d9f2392008-11-03 18:21:05 -08003208 .proc_handler = proc_dointvec,
Linus Torvalds1da177e2005-04-16 15:20:36 -07003209 },
3210 {
Linus Torvalds1da177e2005-04-16 15:20:36 -07003211 .procname = "mtu_expires",
3212 .data = &ip_rt_mtu_expires,
3213 .maxlen = sizeof(int),
3214 .mode = 0644,
Alexey Dobriyan6d9f2392008-11-03 18:21:05 -08003215 .proc_handler = proc_dointvec_jiffies,
Linus Torvalds1da177e2005-04-16 15:20:36 -07003216 },
3217 {
Linus Torvalds1da177e2005-04-16 15:20:36 -07003218 .procname = "min_pmtu",
3219 .data = &ip_rt_min_pmtu,
3220 .maxlen = sizeof(int),
3221 .mode = 0644,
Alexey Dobriyan6d9f2392008-11-03 18:21:05 -08003222 .proc_handler = proc_dointvec,
Linus Torvalds1da177e2005-04-16 15:20:36 -07003223 },
3224 {
Linus Torvalds1da177e2005-04-16 15:20:36 -07003225 .procname = "min_adv_mss",
3226 .data = &ip_rt_min_advmss,
3227 .maxlen = sizeof(int),
3228 .mode = 0644,
Alexey Dobriyan6d9f2392008-11-03 18:21:05 -08003229 .proc_handler = proc_dointvec,
Linus Torvalds1da177e2005-04-16 15:20:36 -07003230 },
Eric W. Biedermanf8572d82009-11-05 13:32:03 -08003231 { }
Linus Torvalds1da177e2005-04-16 15:20:36 -07003232};
Denis V. Lunev39a23e72008-07-05 19:02:33 -07003233
Al Viro2f4520d2008-08-25 15:17:44 -07003234static struct ctl_table empty[1];
3235
3236static struct ctl_table ipv4_skeleton[] =
3237{
Eric W. Biedermanf8572d82009-11-05 13:32:03 -08003238 { .procname = "route",
Hugh Dickinsd994af02008-08-27 02:35:18 -07003239 .mode = 0555, .child = ipv4_route_table},
Eric W. Biedermanf8572d82009-11-05 13:32:03 -08003240 { .procname = "neigh",
Hugh Dickinsd994af02008-08-27 02:35:18 -07003241 .mode = 0555, .child = empty},
Al Viro2f4520d2008-08-25 15:17:44 -07003242 { }
Denis V. Lunev39a23e72008-07-05 19:02:33 -07003243};
3244
Al Viro2f4520d2008-08-25 15:17:44 -07003245static __net_initdata struct ctl_path ipv4_path[] = {
Eric W. Biedermanf8572d82009-11-05 13:32:03 -08003246 { .procname = "net", },
3247 { .procname = "ipv4", },
Al Viro2f4520d2008-08-25 15:17:44 -07003248 { },
3249};
Denis V. Lunev39a23e72008-07-05 19:02:33 -07003250
3251static struct ctl_table ipv4_route_flush_table[] = {
3252 {
Denis V. Lunev39a23e72008-07-05 19:02:33 -07003253 .procname = "flush",
3254 .maxlen = sizeof(int),
3255 .mode = 0200,
Alexey Dobriyan6d9f2392008-11-03 18:21:05 -08003256 .proc_handler = ipv4_sysctl_rtcache_flush,
Denis V. Lunev39a23e72008-07-05 19:02:33 -07003257 },
Eric W. Biedermanf8572d82009-11-05 13:32:03 -08003258 { },
Denis V. Lunev39a23e72008-07-05 19:02:33 -07003259};
3260
Al Viro2f4520d2008-08-25 15:17:44 -07003261static __net_initdata struct ctl_path ipv4_route_path[] = {
Eric W. Biedermanf8572d82009-11-05 13:32:03 -08003262 { .procname = "net", },
3263 { .procname = "ipv4", },
3264 { .procname = "route", },
Al Viro2f4520d2008-08-25 15:17:44 -07003265 { },
3266};
3267
Denis V. Lunev39a23e72008-07-05 19:02:33 -07003268static __net_init int sysctl_route_net_init(struct net *net)
3269{
3270 struct ctl_table *tbl;
3271
3272 tbl = ipv4_route_flush_table;
Octavian Purdila09ad9bc2009-11-25 15:14:13 -08003273 if (!net_eq(net, &init_net)) {
Denis V. Lunev39a23e72008-07-05 19:02:33 -07003274 tbl = kmemdup(tbl, sizeof(ipv4_route_flush_table), GFP_KERNEL);
3275 if (tbl == NULL)
3276 goto err_dup;
3277 }
3278 tbl[0].extra1 = net;
3279
3280 net->ipv4.route_hdr =
3281 register_net_sysctl_table(net, ipv4_route_path, tbl);
3282 if (net->ipv4.route_hdr == NULL)
3283 goto err_reg;
3284 return 0;
3285
3286err_reg:
3287 if (tbl != ipv4_route_flush_table)
3288 kfree(tbl);
3289err_dup:
3290 return -ENOMEM;
3291}
3292
3293static __net_exit void sysctl_route_net_exit(struct net *net)
3294{
3295 struct ctl_table *tbl;
3296
3297 tbl = net->ipv4.route_hdr->ctl_table_arg;
3298 unregister_net_sysctl_table(net->ipv4.route_hdr);
3299 BUG_ON(tbl == ipv4_route_flush_table);
3300 kfree(tbl);
3301}
3302
3303static __net_initdata struct pernet_operations sysctl_route_ops = {
3304 .init = sysctl_route_net_init,
3305 .exit = sysctl_route_net_exit,
3306};
Linus Torvalds1da177e2005-04-16 15:20:36 -07003307#endif
3308
Neil Horman3ee94372010-05-08 01:57:52 -07003309static __net_init int rt_genid_init(struct net *net)
Denis V. Lunev9f5e97e2008-07-05 19:02:59 -07003310{
Neil Horman3ee94372010-05-08 01:57:52 -07003311 get_random_bytes(&net->ipv4.rt_genid,
3312 sizeof(net->ipv4.rt_genid));
Denis V. Lunev9f5e97e2008-07-05 19:02:59 -07003313 return 0;
3314}
3315
Neil Horman3ee94372010-05-08 01:57:52 -07003316static __net_initdata struct pernet_operations rt_genid_ops = {
3317 .init = rt_genid_init,
Denis V. Lunev9f5e97e2008-07-05 19:02:59 -07003318};
3319
3320
Patrick McHardyc7066f72011-01-14 13:36:42 +01003321#ifdef CONFIG_IP_ROUTE_CLASSID
Tejun Heo7d720c32010-02-16 15:20:26 +00003322struct ip_rt_acct __percpu *ip_rt_acct __read_mostly;
Patrick McHardyc7066f72011-01-14 13:36:42 +01003323#endif /* CONFIG_IP_ROUTE_CLASSID */
Linus Torvalds1da177e2005-04-16 15:20:36 -07003324
3325static __initdata unsigned long rhash_entries;
3326static int __init set_rhash_entries(char *str)
3327{
3328 if (!str)
3329 return 0;
3330 rhash_entries = simple_strtoul(str, &str, 0);
3331 return 1;
3332}
3333__setup("rhash_entries=", set_rhash_entries);
3334
3335int __init ip_rt_init(void)
3336{
Eric Dumazet424c4b72005-07-05 14:58:19 -07003337 int rc = 0;
Linus Torvalds1da177e2005-04-16 15:20:36 -07003338
Patrick McHardyc7066f72011-01-14 13:36:42 +01003339#ifdef CONFIG_IP_ROUTE_CLASSID
Ingo Molnar0dcec8c2009-02-25 14:07:33 +01003340 ip_rt_acct = __alloc_percpu(256 * sizeof(struct ip_rt_acct), __alignof__(struct ip_rt_acct));
Linus Torvalds1da177e2005-04-16 15:20:36 -07003341 if (!ip_rt_acct)
3342 panic("IP: failed to allocate ip_rt_acct\n");
Linus Torvalds1da177e2005-04-16 15:20:36 -07003343#endif
3344
Alexey Dobriyane5d679f332006-08-26 19:25:52 -07003345 ipv4_dst_ops.kmem_cachep =
3346 kmem_cache_create("ip_dst_cache", sizeof(struct rtable), 0,
Paul Mundt20c2df82007-07-20 10:11:58 +09003347 SLAB_HWCACHE_ALIGN|SLAB_PANIC, NULL);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003348
David S. Miller14e50e52007-05-24 18:17:54 -07003349 ipv4_dst_blackhole_ops.kmem_cachep = ipv4_dst_ops.kmem_cachep;
3350
Eric Dumazetfc66f952010-10-08 06:37:34 +00003351 if (dst_entries_init(&ipv4_dst_ops) < 0)
3352 panic("IP: failed to allocate ipv4_dst_ops counter\n");
3353
3354 if (dst_entries_init(&ipv4_dst_blackhole_ops) < 0)
3355 panic("IP: failed to allocate ipv4_dst_blackhole_ops counter\n");
3356
Eric Dumazet424c4b72005-07-05 14:58:19 -07003357 rt_hash_table = (struct rt_hash_bucket *)
3358 alloc_large_system_hash("IP route cache",
3359 sizeof(struct rt_hash_bucket),
3360 rhash_entries,
Jan Beulich44813742009-09-21 17:03:05 -07003361 (totalram_pages >= 128 * 1024) ?
Mike Stroyan18955cf2005-11-29 16:12:55 -08003362 15 : 17,
Kirill Korotaev8d1502d2006-08-07 20:44:22 -07003363 0,
Eric Dumazet424c4b72005-07-05 14:58:19 -07003364 &rt_hash_log,
3365 &rt_hash_mask,
Anton Blanchardc9503e02009-04-27 05:42:24 -07003366 rhash_entries ? 0 : 512 * 1024);
Eric Dumazet22c047c2005-07-05 14:55:24 -07003367 memset(rt_hash_table, 0, (rt_hash_mask + 1) * sizeof(struct rt_hash_bucket));
3368 rt_hash_lock_init();
Linus Torvalds1da177e2005-04-16 15:20:36 -07003369
3370 ipv4_dst_ops.gc_thresh = (rt_hash_mask + 1);
3371 ip_rt_max_size = (rt_hash_mask + 1) * 16;
3372
Linus Torvalds1da177e2005-04-16 15:20:36 -07003373 devinet_init();
3374 ip_fib_init();
3375
Linus Torvalds1da177e2005-04-16 15:20:36 -07003376 /* All the timers, started at system startup tend
3377 to synchronize. Perturb it a bit.
3378 */
Eric Dumazet125bb8f2009-06-11 20:10:07 +00003379 INIT_DELAYED_WORK_DEFERRABLE(&expires_work, rt_worker_func);
3380 expires_ljiffies = jiffies;
Eric Dumazet39c90ec2007-09-15 10:55:54 -07003381 schedule_delayed_work(&expires_work,
3382 net_random() % ip_rt_gc_interval + ip_rt_gc_interval);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003383
Denis V. Lunev73b38712008-02-28 20:51:18 -08003384 if (ip_rt_proc_init())
Pavel Emelyanov107f1632007-12-05 21:14:28 -08003385 printk(KERN_ERR "Unable to create route proc files\n");
Linus Torvalds1da177e2005-04-16 15:20:36 -07003386#ifdef CONFIG_XFRM
3387 xfrm_init();
Neil Hormana33bc5c2009-07-30 18:52:15 -07003388 xfrm4_init(ip_rt_max_size);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003389#endif
Thomas Graf63f34442007-03-22 11:55:17 -07003390 rtnl_register(PF_INET, RTM_GETROUTE, inet_rtm_getroute, NULL);
3391
Denis V. Lunev39a23e72008-07-05 19:02:33 -07003392#ifdef CONFIG_SYSCTL
3393 register_pernet_subsys(&sysctl_route_ops);
3394#endif
Neil Horman3ee94372010-05-08 01:57:52 -07003395 register_pernet_subsys(&rt_genid_ops);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003396 return rc;
3397}
3398
Al Viroa1bc6eb2008-07-30 06:32:52 -04003399#ifdef CONFIG_SYSCTL
Al Viroeeb61f72008-07-27 08:59:33 +01003400/*
3401 * We really need to sanitize the damn ipv4 init order, then all
3402 * this nonsense will go away.
3403 */
3404void __init ip_static_sysctl_init(void)
3405{
Al Viro2f4520d2008-08-25 15:17:44 -07003406 register_sysctl_paths(ipv4_path, ipv4_skeleton);
Al Viroeeb61f72008-07-27 08:59:33 +01003407}
Al Viroa1bc6eb2008-07-30 06:32:52 -04003408#endif