blob: cf3975ee4fd826cc462041c3bf77bb8c8f54db2b [file] [log] [blame]
Herbert Xu03c8efc2010-10-19 21:12:39 +08001/*
2 * af_alg: User-space algorithm interface
3 *
4 * This file provides the user-space API for algorithms.
5 *
6 * Copyright (c) 2010 Herbert Xu <herbert@gondor.apana.org.au>
7 *
8 * This program is free software; you can redistribute it and/or modify it
9 * under the terms of the GNU General Public License as published by the Free
10 * Software Foundation; either version 2 of the License, or (at your option)
11 * any later version.
12 *
13 */
14
Arun Sharma600634972011-07-26 16:09:06 -070015#include <linux/atomic.h>
Herbert Xu03c8efc2010-10-19 21:12:39 +080016#include <crypto/if_alg.h>
17#include <linux/crypto.h>
18#include <linux/init.h>
19#include <linux/kernel.h>
20#include <linux/list.h>
21#include <linux/module.h>
22#include <linux/net.h>
23#include <linux/rwsem.h>
Milan Broz4c63f832014-07-29 18:41:09 +000024#include <linux/security.h>
Herbert Xu03c8efc2010-10-19 21:12:39 +080025
26struct alg_type_list {
27 const struct af_alg_type *type;
28 struct list_head list;
29};
30
Randy Dunlap06869522010-12-21 22:22:40 +110031static atomic_long_t alg_memory_allocated;
Herbert Xu03c8efc2010-10-19 21:12:39 +080032
33static struct proto alg_proto = {
34 .name = "ALG",
35 .owner = THIS_MODULE,
36 .memory_allocated = &alg_memory_allocated,
37 .obj_size = sizeof(struct alg_sock),
38};
39
40static LIST_HEAD(alg_types);
41static DECLARE_RWSEM(alg_types_sem);
42
43static const struct af_alg_type *alg_get_type(const char *name)
44{
45 const struct af_alg_type *type = ERR_PTR(-ENOENT);
46 struct alg_type_list *node;
47
48 down_read(&alg_types_sem);
49 list_for_each_entry(node, &alg_types, list) {
50 if (strcmp(node->type->name, name))
51 continue;
52
53 if (try_module_get(node->type->owner))
54 type = node->type;
55 break;
56 }
57 up_read(&alg_types_sem);
58
59 return type;
60}
61
62int af_alg_register_type(const struct af_alg_type *type)
63{
64 struct alg_type_list *node;
65 int err = -EEXIST;
66
67 down_write(&alg_types_sem);
68 list_for_each_entry(node, &alg_types, list) {
69 if (!strcmp(node->type->name, type->name))
70 goto unlock;
71 }
72
73 node = kmalloc(sizeof(*node), GFP_KERNEL);
74 err = -ENOMEM;
75 if (!node)
76 goto unlock;
77
78 type->ops->owner = THIS_MODULE;
Herbert Xu37766582016-01-04 13:35:18 +090079 if (type->ops_nokey)
80 type->ops_nokey->owner = THIS_MODULE;
Herbert Xu03c8efc2010-10-19 21:12:39 +080081 node->type = type;
82 list_add(&node->list, &alg_types);
83 err = 0;
84
85unlock:
86 up_write(&alg_types_sem);
87
88 return err;
89}
90EXPORT_SYMBOL_GPL(af_alg_register_type);
91
92int af_alg_unregister_type(const struct af_alg_type *type)
93{
94 struct alg_type_list *node;
95 int err = -ENOENT;
96
97 down_write(&alg_types_sem);
98 list_for_each_entry(node, &alg_types, list) {
99 if (strcmp(node->type->name, type->name))
100 continue;
101
102 list_del(&node->list);
103 kfree(node);
104 err = 0;
105 break;
106 }
107 up_write(&alg_types_sem);
108
109 return err;
110}
111EXPORT_SYMBOL_GPL(af_alg_unregister_type);
112
113static void alg_do_release(const struct af_alg_type *type, void *private)
114{
115 if (!type)
116 return;
117
118 type->release(private);
119 module_put(type->owner);
120}
121
122int af_alg_release(struct socket *sock)
123{
124 if (sock->sk)
125 sock_put(sock->sk);
126 return 0;
127}
128EXPORT_SYMBOL_GPL(af_alg_release);
129
Herbert Xuc840ac62015-12-30 11:47:53 +0800130void af_alg_release_parent(struct sock *sk)
131{
132 struct alg_sock *ask = alg_sk(sk);
Herbert Xua6a48c52016-01-13 15:03:32 +0800133 unsigned int nokey = ask->nokey_refcnt;
134 bool last = nokey && !ask->refcnt;
Herbert Xuc840ac62015-12-30 11:47:53 +0800135
136 sk = ask->parent;
137 ask = alg_sk(sk);
138
Herbert Xu7e202552019-12-05 13:45:05 +0800139 local_bh_disable();
140 bh_lock_sock(sk);
Herbert Xua6a48c52016-01-13 15:03:32 +0800141 ask->nokey_refcnt -= nokey;
142 if (!last)
143 last = !--ask->refcnt;
Herbert Xu7e202552019-12-05 13:45:05 +0800144 bh_unlock_sock(sk);
145 local_bh_enable();
Herbert Xuc840ac62015-12-30 11:47:53 +0800146
147 if (last)
148 sock_put(sk);
149}
150EXPORT_SYMBOL_GPL(af_alg_release_parent);
151
Herbert Xu03c8efc2010-10-19 21:12:39 +0800152static int alg_bind(struct socket *sock, struct sockaddr *uaddr, int addr_len)
153{
Stephan Muellerb7edc452018-01-02 08:55:25 +0100154 const u32 allowed = CRYPTO_ALG_KERN_DRIVER_ONLY;
Herbert Xu03c8efc2010-10-19 21:12:39 +0800155 struct sock *sk = sock->sk;
156 struct alg_sock *ask = alg_sk(sk);
157 struct sockaddr_alg *sa = (void *)uaddr;
158 const struct af_alg_type *type;
159 void *private;
Herbert Xuc840ac62015-12-30 11:47:53 +0800160 int err;
Herbert Xu03c8efc2010-10-19 21:12:39 +0800161
162 if (sock->state == SS_CONNECTED)
163 return -EINVAL;
164
165 if (addr_len != sizeof(*sa))
166 return -EINVAL;
167
Eric Dumazet7b38b6d2018-04-07 13:42:36 -0700168 /* If caller uses non-allowed flag, return error. */
169 if ((sa->salg_feat & ~allowed) || (sa->salg_mask & ~allowed))
170 return -EINVAL;
171
Herbert Xu03c8efc2010-10-19 21:12:39 +0800172 sa->salg_type[sizeof(sa->salg_type) - 1] = 0;
173 sa->salg_name[sizeof(sa->salg_name) - 1] = 0;
174
175 type = alg_get_type(sa->salg_type);
176 if (IS_ERR(type) && PTR_ERR(type) == -ENOENT) {
177 request_module("algif-%s", sa->salg_type);
178 type = alg_get_type(sa->salg_type);
179 }
180
181 if (IS_ERR(type))
182 return PTR_ERR(type);
183
Stephan Muellerb7edc452018-01-02 08:55:25 +0100184 private = type->bind(sa->salg_name, sa->salg_feat, sa->salg_mask);
Herbert Xu03c8efc2010-10-19 21:12:39 +0800185 if (IS_ERR(private)) {
186 module_put(type->owner);
187 return PTR_ERR(private);
188 }
189
Herbert Xuc840ac62015-12-30 11:47:53 +0800190 err = -EBUSY;
Herbert Xu03c8efc2010-10-19 21:12:39 +0800191 lock_sock(sk);
Herbert Xua6a48c52016-01-13 15:03:32 +0800192 if (ask->refcnt | ask->nokey_refcnt)
Herbert Xuc840ac62015-12-30 11:47:53 +0800193 goto unlock;
Herbert Xu03c8efc2010-10-19 21:12:39 +0800194
195 swap(ask->type, type);
196 swap(ask->private, private);
197
Herbert Xuc840ac62015-12-30 11:47:53 +0800198 err = 0;
199
200unlock:
Herbert Xu03c8efc2010-10-19 21:12:39 +0800201 release_sock(sk);
202
203 alg_do_release(type, private);
204
Herbert Xuc840ac62015-12-30 11:47:53 +0800205 return err;
Herbert Xu03c8efc2010-10-19 21:12:39 +0800206}
207
208static int alg_setkey(struct sock *sk, char __user *ukey,
209 unsigned int keylen)
210{
211 struct alg_sock *ask = alg_sk(sk);
212 const struct af_alg_type *type = ask->type;
213 u8 *key;
214 int err;
215
216 key = sock_kmalloc(sk, keylen, GFP_KERNEL);
217 if (!key)
218 return -ENOMEM;
219
220 err = -EFAULT;
221 if (copy_from_user(key, ukey, keylen))
222 goto out;
223
224 err = type->setkey(ask->private, key, keylen);
225
226out:
Stephan Muellerad202c82014-12-23 09:34:03 +0100227 sock_kzfree_s(sk, key, keylen);
Herbert Xu03c8efc2010-10-19 21:12:39 +0800228
229 return err;
230}
231
232static int alg_setsockopt(struct socket *sock, int level, int optname,
233 char __user *optval, unsigned int optlen)
234{
235 struct sock *sk = sock->sk;
236 struct alg_sock *ask = alg_sk(sk);
237 const struct af_alg_type *type;
Herbert Xuc840ac62015-12-30 11:47:53 +0800238 int err = -EBUSY;
Herbert Xu03c8efc2010-10-19 21:12:39 +0800239
240 lock_sock(sk);
Herbert Xuc840ac62015-12-30 11:47:53 +0800241 if (ask->refcnt)
242 goto unlock;
243
Herbert Xu03c8efc2010-10-19 21:12:39 +0800244 type = ask->type;
245
Herbert Xuc840ac62015-12-30 11:47:53 +0800246 err = -ENOPROTOOPT;
Herbert Xu03c8efc2010-10-19 21:12:39 +0800247 if (level != SOL_ALG || !type)
248 goto unlock;
249
250 switch (optname) {
251 case ALG_SET_KEY:
252 if (sock->state == SS_CONNECTED)
253 goto unlock;
254 if (!type->setkey)
255 goto unlock;
256
257 err = alg_setkey(sk, optval, optlen);
Stephan Mueller25fb8632014-12-07 23:21:42 +0100258 break;
259 case ALG_SET_AEAD_AUTHSIZE:
260 if (sock->state == SS_CONNECTED)
261 goto unlock;
262 if (!type->setauthsize)
263 goto unlock;
264 err = type->setauthsize(ask->private, optlen);
Herbert Xu03c8efc2010-10-19 21:12:39 +0800265 }
266
267unlock:
268 release_sock(sk);
269
270 return err;
271}
272
273int af_alg_accept(struct sock *sk, struct socket *newsock)
274{
275 struct alg_sock *ask = alg_sk(sk);
276 const struct af_alg_type *type;
277 struct sock *sk2;
Herbert Xu6a935172016-01-13 14:59:03 +0800278 unsigned int nokey;
Herbert Xu03c8efc2010-10-19 21:12:39 +0800279 int err;
280
281 lock_sock(sk);
282 type = ask->type;
283
284 err = -EINVAL;
285 if (!type)
286 goto unlock;
287
Eric W. Biederman11aa9c22015-05-08 21:09:13 -0500288 sk2 = sk_alloc(sock_net(sk), PF_ALG, GFP_KERNEL, &alg_proto, 0);
Herbert Xu03c8efc2010-10-19 21:12:39 +0800289 err = -ENOMEM;
290 if (!sk2)
291 goto unlock;
292
293 sock_init_data(newsock, sk2);
Miloslav Trmač507cad32010-12-08 14:36:19 +0800294 sock_graft(sk2, newsock);
Milan Broz4c63f832014-07-29 18:41:09 +0000295 security_sk_clone(sk, sk2);
Herbert Xu03c8efc2010-10-19 21:12:39 +0800296
297 err = type->accept(ask->private, sk2);
Herbert Xu37766582016-01-04 13:35:18 +0900298
299 nokey = err == -ENOKEY;
300 if (nokey && type->accept_nokey)
301 err = type->accept_nokey(ask->private, sk2);
302
Herbert Xua3832922015-12-30 20:24:17 +0800303 if (err)
Herbert Xu03c8efc2010-10-19 21:12:39 +0800304 goto unlock;
Herbert Xu03c8efc2010-10-19 21:12:39 +0800305
306 sk2->sk_family = PF_ALG;
307
Herbert Xu37766582016-01-04 13:35:18 +0900308 if (nokey || !ask->refcnt++)
Herbert Xuc840ac62015-12-30 11:47:53 +0800309 sock_hold(sk);
Herbert Xua6a48c52016-01-13 15:03:32 +0800310 ask->nokey_refcnt += nokey;
Herbert Xu03c8efc2010-10-19 21:12:39 +0800311 alg_sk(sk2)->parent = sk;
312 alg_sk(sk2)->type = type;
Herbert Xu6a935172016-01-13 14:59:03 +0800313 alg_sk(sk2)->nokey_refcnt = nokey;
Herbert Xu03c8efc2010-10-19 21:12:39 +0800314
315 newsock->ops = type->ops;
316 newsock->state = SS_CONNECTED;
317
Herbert Xu37766582016-01-04 13:35:18 +0900318 if (nokey)
319 newsock->ops = type->ops_nokey;
320
Herbert Xu03c8efc2010-10-19 21:12:39 +0800321 err = 0;
322
323unlock:
324 release_sock(sk);
325
326 return err;
327}
328EXPORT_SYMBOL_GPL(af_alg_accept);
329
330static int alg_accept(struct socket *sock, struct socket *newsock, int flags)
331{
332 return af_alg_accept(sock->sk, newsock);
333}
334
335static const struct proto_ops alg_proto_ops = {
336 .family = PF_ALG,
337 .owner = THIS_MODULE,
338
339 .connect = sock_no_connect,
340 .socketpair = sock_no_socketpair,
341 .getname = sock_no_getname,
342 .ioctl = sock_no_ioctl,
343 .listen = sock_no_listen,
344 .shutdown = sock_no_shutdown,
345 .getsockopt = sock_no_getsockopt,
346 .mmap = sock_no_mmap,
347 .sendpage = sock_no_sendpage,
348 .sendmsg = sock_no_sendmsg,
349 .recvmsg = sock_no_recvmsg,
350 .poll = sock_no_poll,
351
352 .bind = alg_bind,
353 .release = af_alg_release,
354 .setsockopt = alg_setsockopt,
355 .accept = alg_accept,
356};
357
358static void alg_sock_destruct(struct sock *sk)
359{
360 struct alg_sock *ask = alg_sk(sk);
361
362 alg_do_release(ask->type, ask->private);
363}
364
365static int alg_create(struct net *net, struct socket *sock, int protocol,
366 int kern)
367{
368 struct sock *sk;
369 int err;
370
371 if (sock->type != SOCK_SEQPACKET)
372 return -ESOCKTNOSUPPORT;
373 if (protocol != 0)
374 return -EPROTONOSUPPORT;
375
376 err = -ENOMEM;
Eric W. Biederman11aa9c22015-05-08 21:09:13 -0500377 sk = sk_alloc(net, PF_ALG, GFP_KERNEL, &alg_proto, kern);
Herbert Xu03c8efc2010-10-19 21:12:39 +0800378 if (!sk)
379 goto out;
380
381 sock->ops = &alg_proto_ops;
382 sock_init_data(sock, sk);
383
384 sk->sk_family = PF_ALG;
385 sk->sk_destruct = alg_sock_destruct;
386
387 return 0;
388out:
389 return err;
390}
391
392static const struct net_proto_family alg_family = {
393 .family = PF_ALG,
394 .create = alg_create,
395 .owner = THIS_MODULE,
396};
397
Al Viro1d10eb22014-11-28 16:39:25 -0500398int af_alg_make_sg(struct af_alg_sgl *sgl, struct iov_iter *iter, int len)
Herbert Xu03c8efc2010-10-19 21:12:39 +0800399{
Al Viro1d10eb22014-11-28 16:39:25 -0500400 size_t off;
401 ssize_t n;
402 int npages, i;
Herbert Xu03c8efc2010-10-19 21:12:39 +0800403
Al Viro1d10eb22014-11-28 16:39:25 -0500404 n = iov_iter_get_pages(iter, sgl->pages, len, ALG_MAX_PAGES, &off);
405 if (n < 0)
406 return n;
Herbert Xu03c8efc2010-10-19 21:12:39 +0800407
Linus Torvalds9399f0c2015-02-10 19:55:45 -0800408 npages = (off + n + PAGE_SIZE - 1) >> PAGE_SHIFT;
Herbert Xu03c8efc2010-10-19 21:12:39 +0800409 if (WARN_ON(npages == 0))
Al Viro1d10eb22014-11-28 16:39:25 -0500410 return -EINVAL;
Tadeusz Struk66db3732015-03-19 12:31:30 -0700411 /* Add one extra for linking */
412 sg_init_table(sgl->sg, npages + 1);
Herbert Xu03c8efc2010-10-19 21:12:39 +0800413
Al Viro1d10eb22014-11-28 16:39:25 -0500414 for (i = 0, len = n; i < npages; i++) {
Herbert Xu03c8efc2010-10-19 21:12:39 +0800415 int plen = min_t(int, len, PAGE_SIZE - off);
416
417 sg_set_page(sgl->sg + i, sgl->pages[i], plen, off);
418
419 off = 0;
420 len -= plen;
Herbert Xu03c8efc2010-10-19 21:12:39 +0800421 }
Tadeusz Struk66db3732015-03-19 12:31:30 -0700422 sg_mark_end(sgl->sg + npages - 1);
423 sgl->npages = npages;
424
Al Viro1d10eb22014-11-28 16:39:25 -0500425 return n;
Herbert Xu03c8efc2010-10-19 21:12:39 +0800426}
427EXPORT_SYMBOL_GPL(af_alg_make_sg);
428
Tadeusz Struk66db3732015-03-19 12:31:30 -0700429void af_alg_link_sg(struct af_alg_sgl *sgl_prev, struct af_alg_sgl *sgl_new)
430{
431 sg_unmark_end(sgl_prev->sg + sgl_prev->npages - 1);
432 sg_chain(sgl_prev->sg, sgl_prev->npages + 1, sgl_new->sg);
433}
Tadeusz Strukbd507522015-03-30 14:25:43 -0700434EXPORT_SYMBOL_GPL(af_alg_link_sg);
Tadeusz Struk66db3732015-03-19 12:31:30 -0700435
Herbert Xu03c8efc2010-10-19 21:12:39 +0800436void af_alg_free_sg(struct af_alg_sgl *sgl)
437{
438 int i;
439
Tadeusz Struk66db3732015-03-19 12:31:30 -0700440 for (i = 0; i < sgl->npages; i++)
Herbert Xu03c8efc2010-10-19 21:12:39 +0800441 put_page(sgl->pages[i]);
Herbert Xu03c8efc2010-10-19 21:12:39 +0800442}
443EXPORT_SYMBOL_GPL(af_alg_free_sg);
444
445int af_alg_cmsg_send(struct msghdr *msg, struct af_alg_control *con)
446{
447 struct cmsghdr *cmsg;
448
Gu Zhengf95b4142014-12-11 11:22:04 +0800449 for_each_cmsghdr(cmsg, msg) {
Herbert Xu03c8efc2010-10-19 21:12:39 +0800450 if (!CMSG_OK(msg, cmsg))
451 return -EINVAL;
452 if (cmsg->cmsg_level != SOL_ALG)
453 continue;
454
Joshua I. James267c4222014-12-05 14:38:40 +0900455 switch (cmsg->cmsg_type) {
Herbert Xu03c8efc2010-10-19 21:12:39 +0800456 case ALG_SET_IV:
457 if (cmsg->cmsg_len < CMSG_LEN(sizeof(*con->iv)))
458 return -EINVAL;
459 con->iv = (void *)CMSG_DATA(cmsg);
460 if (cmsg->cmsg_len < CMSG_LEN(con->iv->ivlen +
461 sizeof(*con->iv)))
462 return -EINVAL;
463 break;
464
465 case ALG_SET_OP:
466 if (cmsg->cmsg_len < CMSG_LEN(sizeof(u32)))
467 return -EINVAL;
468 con->op = *(u32 *)CMSG_DATA(cmsg);
469 break;
470
Stephan Muelleraf8e8072014-12-03 20:55:42 +0100471 case ALG_SET_AEAD_ASSOCLEN:
472 if (cmsg->cmsg_len < CMSG_LEN(sizeof(u32)))
473 return -EINVAL;
474 con->aead_assoclen = *(u32 *)CMSG_DATA(cmsg);
475 break;
476
Herbert Xu03c8efc2010-10-19 21:12:39 +0800477 default:
478 return -EINVAL;
479 }
480 }
481
482 return 0;
483}
484EXPORT_SYMBOL_GPL(af_alg_cmsg_send);
485
486int af_alg_wait_for_completion(int err, struct af_alg_completion *completion)
487{
488 switch (err) {
489 case -EINPROGRESS:
490 case -EBUSY:
491 wait_for_completion(&completion->completion);
Wolfram Sang16735d02013-11-14 14:32:02 -0800492 reinit_completion(&completion->completion);
Herbert Xu03c8efc2010-10-19 21:12:39 +0800493 err = completion->err;
494 break;
495 };
496
497 return err;
498}
499EXPORT_SYMBOL_GPL(af_alg_wait_for_completion);
500
501void af_alg_complete(struct crypto_async_request *req, int err)
502{
503 struct af_alg_completion *completion = req->data;
504
Rabin Vincent7e77bde2014-12-19 13:36:08 +0100505 if (err == -EINPROGRESS)
506 return;
507
Herbert Xu03c8efc2010-10-19 21:12:39 +0800508 completion->err = err;
509 complete(&completion->completion);
510}
511EXPORT_SYMBOL_GPL(af_alg_complete);
512
513static int __init af_alg_init(void)
514{
515 int err = proto_register(&alg_proto, 0);
516
517 if (err)
518 goto out;
519
520 err = sock_register(&alg_family);
521 if (err != 0)
522 goto out_unregister_proto;
523
524out:
525 return err;
526
527out_unregister_proto:
528 proto_unregister(&alg_proto);
529 goto out;
530}
531
532static void __exit af_alg_exit(void)
533{
534 sock_unregister(PF_ALG);
535 proto_unregister(&alg_proto);
536}
537
538module_init(af_alg_init);
539module_exit(af_alg_exit);
540MODULE_LICENSE("GPL");
541MODULE_ALIAS_NETPROTO(AF_ALG);