blob: aeb49b4d8c7dd7888731127621c6515f21a59620 [file] [log] [blame]
Linus Torvalds1da177e2005-04-16 15:20:36 -07001/*
2 * Internet Control Message Protocol (ICMPv6)
3 * Linux INET6 implementation
4 *
5 * Authors:
6 * Pedro Roque <roque@di.fc.ul.pt>
7 *
Linus Torvalds1da177e2005-04-16 15:20:36 -07008 * Based on net/ipv4/icmp.c
9 *
10 * RFC 1885
11 *
12 * This program is free software; you can redistribute it and/or
13 * modify it under the terms of the GNU General Public License
14 * as published by the Free Software Foundation; either version
15 * 2 of the License, or (at your option) any later version.
16 */
17
18/*
19 * Changes:
20 *
21 * Andi Kleen : exception handling
22 * Andi Kleen add rate limits. never reply to a icmp.
23 * add more length checks and other fixes.
24 * yoshfuji : ensure to sent parameter problem for
25 * fragments.
26 * YOSHIFUJI Hideaki @USAGI: added sysctl for icmp rate limit.
27 * Randy Dunlap and
28 * YOSHIFUJI Hideaki @USAGI: Per-interface statistics support
29 * Kazunori MIYAZAWA @USAGI: change output process to use ip6_append_data
30 */
31
Joe Perchesf3213832012-05-15 14:11:53 +000032#define pr_fmt(fmt) "IPv6: " fmt
33
Linus Torvalds1da177e2005-04-16 15:20:36 -070034#include <linux/module.h>
35#include <linux/errno.h>
36#include <linux/types.h>
37#include <linux/socket.h>
38#include <linux/in.h>
39#include <linux/kernel.h>
Linus Torvalds1da177e2005-04-16 15:20:36 -070040#include <linux/sockios.h>
41#include <linux/net.h>
42#include <linux/skbuff.h>
43#include <linux/init.h>
Yasuyuki Kozakai763ecff2006-02-15 15:24:15 -080044#include <linux/netfilter.h>
Tejun Heo5a0e3ad2010-03-24 17:04:11 +090045#include <linux/slab.h>
Linus Torvalds1da177e2005-04-16 15:20:36 -070046
47#ifdef CONFIG_SYSCTL
48#include <linux/sysctl.h>
49#endif
50
51#include <linux/inet.h>
52#include <linux/netdevice.h>
53#include <linux/icmpv6.h>
54
55#include <net/ip.h>
56#include <net/sock.h>
57
58#include <net/ipv6.h>
59#include <net/ip6_checksum.h>
Lorenzo Colitti6d0bfe22013-05-22 20:17:31 +000060#include <net/ping.h>
Linus Torvalds1da177e2005-04-16 15:20:36 -070061#include <net/protocol.h>
62#include <net/raw.h>
63#include <net/rawv6.h>
64#include <net/transp_v6.h>
65#include <net/ip6_route.h>
66#include <net/addrconf.h>
67#include <net/icmp.h>
Herbert Xu8b7817f2007-12-12 10:44:43 -080068#include <net/xfrm.h>
Denis V. Lunev1ed85162008-04-03 14:31:03 -070069#include <net/inet_common.h>
Hannes Frederic Sowa825edac2014-01-11 11:55:46 +010070#include <net/dsfield.h>
David Ahernca254492015-10-12 11:47:10 -070071#include <net/l3mdev.h>
Linus Torvalds1da177e2005-04-16 15:20:36 -070072
Linus Torvalds7c0f6ba2016-12-24 11:46:01 -080073#include <linux/uaccess.h>
Linus Torvalds1da177e2005-04-16 15:20:36 -070074
Linus Torvalds1da177e2005-04-16 15:20:36 -070075/*
76 * The ICMP socket(s). This is the most convenient way to flow control
77 * our ICMP output as well as maintain a clean interface throughout
78 * all layers. All Socketless IP sends will soon be gone.
79 *
80 * On SMP we have one ICMP socket per-cpu.
81 */
Denis V. Lunev98c6d1b2008-02-29 11:21:22 -080082static inline struct sock *icmpv6_sk(struct net *net)
83{
84 return net->ipv6.icmp_sk[smp_processor_id()];
85}
Linus Torvalds1da177e2005-04-16 15:20:36 -070086
Steffen Klassert6f809da2013-01-16 22:09:49 +000087static void icmpv6_err(struct sk_buff *skb, struct inet6_skb_parm *opt,
88 u8 type, u8 code, int offset, __be32 info)
89{
Lorenzo Colitti6d0bfe22013-05-22 20:17:31 +000090 /* icmpv6_notify checks 8 bytes can be pulled, icmp6hdr is 8 bytes */
91 struct icmp6hdr *icmp6 = (struct icmp6hdr *) (skb->data + offset);
Steffen Klassert6f809da2013-01-16 22:09:49 +000092 struct net *net = dev_net(skb->dev);
93
94 if (type == ICMPV6_PKT_TOOBIG)
Lorenzo Colittie2d118a2016-11-04 02:23:43 +090095 ip6_update_pmtu(skb, net, info, 0, 0, sock_net_uid(net, NULL));
Steffen Klassert6f809da2013-01-16 22:09:49 +000096 else if (type == NDISC_REDIRECT)
Lorenzo Colittie2d118a2016-11-04 02:23:43 +090097 ip6_redirect(skb, net, skb->dev->ifindex, 0,
98 sock_net_uid(net, NULL));
Lorenzo Colitti6d0bfe22013-05-22 20:17:31 +000099
100 if (!(type & ICMPV6_INFOMSG_MASK))
101 if (icmp6->icmp6_type == ICMPV6_ECHO_REQUEST)
Hannes Frederic Sowadcb94b82016-06-11 20:32:06 +0200102 ping_err(skb, offset, ntohl(info));
Steffen Klassert6f809da2013-01-16 22:09:49 +0000103}
104
Herbert Xue5bbef22007-10-15 12:50:28 -0700105static int icmpv6_rcv(struct sk_buff *skb);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700106
Alexey Dobriyan41135cc2009-09-14 12:22:28 +0000107static const struct inet6_protocol icmpv6_protocol = {
Linus Torvalds1da177e2005-04-16 15:20:36 -0700108 .handler = icmpv6_rcv,
Steffen Klassert6f809da2013-01-16 22:09:49 +0000109 .err_handler = icmpv6_err,
Herbert Xu8b7817f2007-12-12 10:44:43 -0800110 .flags = INET6_PROTO_NOPOLICY|INET6_PROTO_FINAL,
Linus Torvalds1da177e2005-04-16 15:20:36 -0700111};
112
Jesper Dangaard Brouer7ba91ec2017-01-09 16:04:14 +0100113/* Called with BH disabled */
Denis V. Lunevfdc0bde2008-08-23 04:43:33 -0700114static __inline__ struct sock *icmpv6_xmit_lock(struct net *net)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700115{
Denis V. Lunevfdc0bde2008-08-23 04:43:33 -0700116 struct sock *sk;
117
Denis V. Lunevfdc0bde2008-08-23 04:43:33 -0700118 sk = icmpv6_sk(net);
Denis V. Lunev405666d2008-02-29 11:16:46 -0800119 if (unlikely(!spin_trylock(&sk->sk_lock.slock))) {
Linus Torvalds1da177e2005-04-16 15:20:36 -0700120 /* This can happen if the output path (f.e. SIT or
121 * ip6ip6 tunnel) signals dst_link_failure() for an
122 * outgoing ICMP6 packet.
123 */
Denis V. Lunevfdc0bde2008-08-23 04:43:33 -0700124 return NULL;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700125 }
Denis V. Lunevfdc0bde2008-08-23 04:43:33 -0700126 return sk;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700127}
128
Denis V. Lunev405666d2008-02-29 11:16:46 -0800129static __inline__ void icmpv6_xmit_unlock(struct sock *sk)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700130{
Jesper Dangaard Brouer7ba91ec2017-01-09 16:04:14 +0100131 spin_unlock(&sk->sk_lock.slock);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700132}
133
YOSHIFUJI Hideaki1ab14572007-02-09 23:24:49 +0900134/*
Linus Torvalds1da177e2005-04-16 15:20:36 -0700135 * Figure out, may we reply to this packet with icmp error.
136 *
137 * We do not reply, if:
138 * - it was icmp error message.
139 * - it is truncated, so that it is known, that protocol is ICMPV6
140 * (i.e. in the middle of some exthdr)
141 *
142 * --ANK (980726)
143 */
144
Eric Dumazeta50feda2012-05-18 18:57:34 +0000145static bool is_ineligible(const struct sk_buff *skb)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700146{
Arnaldo Carvalho de Melo0660e032007-04-25 17:54:47 -0700147 int ptr = (u8 *)(ipv6_hdr(skb) + 1) - skb->data;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700148 int len = skb->len - ptr;
Arnaldo Carvalho de Melo0660e032007-04-25 17:54:47 -0700149 __u8 nexthdr = ipv6_hdr(skb)->nexthdr;
Jesse Gross75f28112011-11-30 17:05:51 -0800150 __be16 frag_off;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700151
152 if (len < 0)
Eric Dumazeta50feda2012-05-18 18:57:34 +0000153 return true;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700154
Jesse Gross75f28112011-11-30 17:05:51 -0800155 ptr = ipv6_skip_exthdr(skb, ptr, &nexthdr, &frag_off);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700156 if (ptr < 0)
Eric Dumazeta50feda2012-05-18 18:57:34 +0000157 return false;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700158 if (nexthdr == IPPROTO_ICMPV6) {
159 u8 _type, *tp;
160 tp = skb_header_pointer(skb,
161 ptr+offsetof(struct icmp6hdr, icmp6_type),
162 sizeof(_type), &_type);
Ian Morris63159f22015-03-29 14:00:04 +0100163 if (!tp || !(*tp & ICMPV6_INFOMSG_MASK))
Eric Dumazeta50feda2012-05-18 18:57:34 +0000164 return true;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700165 }
Eric Dumazeta50feda2012-05-18 18:57:34 +0000166 return false;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700167}
168
Jesper Dangaard Brouerc0303ef2017-01-09 16:04:09 +0100169static bool icmpv6_mask_allow(int type)
170{
171 /* Informational messages are not limited. */
172 if (type & ICMPV6_INFOMSG_MASK)
173 return true;
174
175 /* Do not limit pmtu discovery, it would break it. */
176 if (type == ICMPV6_PKT_TOOBIG)
177 return true;
178
179 return false;
180}
181
182static bool icmpv6_global_allow(int type)
183{
184 if (icmpv6_mask_allow(type))
185 return true;
186
187 if (icmp_global_allow())
188 return true;
189
190 return false;
191}
192
YOSHIFUJI Hideaki1ab14572007-02-09 23:24:49 +0900193/*
194 * Check the ICMP output rate limit
Linus Torvalds1da177e2005-04-16 15:20:36 -0700195 */
Eric Dumazet4cdf5072014-09-19 07:38:40 -0700196static bool icmpv6_xrlim_allow(struct sock *sk, u8 type,
197 struct flowi6 *fl6)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700198{
YOSHIFUJI Hideaki3b1e0a62008-03-26 02:26:21 +0900199 struct net *net = sock_net(sk);
Eric Dumazet4cdf5072014-09-19 07:38:40 -0700200 struct dst_entry *dst;
David S. Miller92d86822011-02-04 15:55:25 -0800201 bool res = false;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700202
Jesper Dangaard Brouerc0303ef2017-01-09 16:04:09 +0100203 if (icmpv6_mask_allow(type))
David S. Miller92d86822011-02-04 15:55:25 -0800204 return true;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700205
YOSHIFUJI Hideaki1ab14572007-02-09 23:24:49 +0900206 /*
Linus Torvalds1da177e2005-04-16 15:20:36 -0700207 * Look up the output route.
208 * XXX: perhaps the expire for routing entries cloned by
209 * this lookup should be more aggressive (not longer than timeout).
210 */
David S. Miller4c9483b2011-03-12 16:22:43 -0500211 dst = ip6_route_output(net, sk, fl6);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700212 if (dst->error) {
Denis V. Lunev3bd653c2008-10-08 10:54:51 -0700213 IP6_INC_STATS(net, ip6_dst_idev(dst),
YOSHIFUJI Hideakia11d2062006-11-04 20:11:37 +0900214 IPSTATS_MIB_OUTNOROUTES);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700215 } else if (dst->dev && (dst->dev->flags&IFF_LOOPBACK)) {
David S. Miller92d86822011-02-04 15:55:25 -0800216 res = true;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700217 } else {
218 struct rt6_info *rt = (struct rt6_info *)dst;
Benjamin Thery9a43b702008-03-05 10:49:18 -0800219 int tmo = net->ipv6.sysctl.icmpv6_time;
Jesper Dangaard Brouerc0303ef2017-01-09 16:04:09 +0100220 struct inet_peer *peer;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700221
222 /* Give more bandwidth to wider prefixes. */
223 if (rt->rt6i_dst.plen < 128)
224 tmo >>= ((128 - rt->rt6i_dst.plen)>>5);
225
Jesper Dangaard Brouerc0303ef2017-01-09 16:04:09 +0100226 peer = inet_getpeer_v6(net->ipv6.peers, &fl6->daddr, 1);
227 res = inet_peer_xrlim_allow(peer, tmo);
228 if (peer)
229 inet_putpeer(peer);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700230 }
231 dst_release(dst);
232 return res;
233}
234
235/*
236 * an inline helper for the "simple" if statement below
237 * checks if parameter problem report is caused by an
YOSHIFUJI Hideaki1ab14572007-02-09 23:24:49 +0900238 * unrecognized IPv6 option that has the Option Type
Linus Torvalds1da177e2005-04-16 15:20:36 -0700239 * highest-order two bits set to 10
240 */
241
Eric Dumazeta50feda2012-05-18 18:57:34 +0000242static bool opt_unrec(struct sk_buff *skb, __u32 offset)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700243{
244 u8 _optval, *op;
245
Arnaldo Carvalho de Melobbe735e2007-03-10 22:16:10 -0300246 offset += skb_network_offset(skb);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700247 op = skb_header_pointer(skb, offset, sizeof(_optval), &_optval);
Ian Morris63159f22015-03-29 14:00:04 +0100248 if (!op)
Eric Dumazeta50feda2012-05-18 18:57:34 +0000249 return true;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700250 return (*op & 0xC0) == 0x80;
251}
252
Lorenzo Colitti6d0bfe22013-05-22 20:17:31 +0000253int icmpv6_push_pending_frames(struct sock *sk, struct flowi6 *fl6,
254 struct icmp6hdr *thdr, int len)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700255{
256 struct sk_buff *skb;
257 struct icmp6hdr *icmp6h;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700258
Ian Morrise5d08d72014-11-23 21:28:43 +0000259 skb = skb_peek(&sk->sk_write_queue);
Ian Morris63159f22015-03-29 14:00:04 +0100260 if (!skb)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700261 goto out;
262
Arnaldo Carvalho de Melocc70ab22007-03-13 14:03:22 -0300263 icmp6h = icmp6_hdr(skb);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700264 memcpy(icmp6h, thdr, sizeof(struct icmp6hdr));
265 icmp6h->icmp6_cksum = 0;
266
267 if (skb_queue_len(&sk->sk_write_queue) == 1) {
Joe Perches07f07572008-11-19 15:44:53 -0800268 skb->csum = csum_partial(icmp6h,
Linus Torvalds1da177e2005-04-16 15:20:36 -0700269 sizeof(struct icmp6hdr), skb->csum);
David S. Miller4c9483b2011-03-12 16:22:43 -0500270 icmp6h->icmp6_cksum = csum_ipv6_magic(&fl6->saddr,
271 &fl6->daddr,
272 len, fl6->flowi6_proto,
Linus Torvalds1da177e2005-04-16 15:20:36 -0700273 skb->csum);
274 } else {
Al Viro868c86b2006-11-14 21:35:48 -0800275 __wsum tmp_csum = 0;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700276
277 skb_queue_walk(&sk->sk_write_queue, skb) {
278 tmp_csum = csum_add(tmp_csum, skb->csum);
279 }
280
Joe Perches07f07572008-11-19 15:44:53 -0800281 tmp_csum = csum_partial(icmp6h,
Linus Torvalds1da177e2005-04-16 15:20:36 -0700282 sizeof(struct icmp6hdr), tmp_csum);
David S. Miller4c9483b2011-03-12 16:22:43 -0500283 icmp6h->icmp6_cksum = csum_ipv6_magic(&fl6->saddr,
284 &fl6->daddr,
285 len, fl6->flowi6_proto,
Al Viro868c86b2006-11-14 21:35:48 -0800286 tmp_csum);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700287 }
Linus Torvalds1da177e2005-04-16 15:20:36 -0700288 ip6_push_pending_frames(sk);
289out:
Tim Hansencc71b7b2017-10-05 15:45:32 -0400290 return 0;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700291}
292
293struct icmpv6_msg {
294 struct sk_buff *skb;
295 int offset;
Yasuyuki Kozakai763ecff2006-02-15 15:24:15 -0800296 uint8_t type;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700297};
298
299static int icmpv6_getfrag(void *from, char *to, int offset, int len, int odd, struct sk_buff *skb)
300{
301 struct icmpv6_msg *msg = (struct icmpv6_msg *) from;
302 struct sk_buff *org_skb = msg->skb;
Al Viro5f92a732006-11-14 21:36:54 -0800303 __wsum csum = 0;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700304
305 csum = skb_copy_and_csum_bits(org_skb, msg->offset + offset,
306 to, len, csum);
307 skb->csum = csum_block_add(skb->csum, csum, odd);
Yasuyuki Kozakai763ecff2006-02-15 15:24:15 -0800308 if (!(msg->type & ICMPV6_INFOMSG_MASK))
309 nf_ct_attach(skb, org_skb);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700310 return 0;
311}
312
Amerigo Wang07a93622012-10-29 16:23:10 +0000313#if IS_ENABLED(CONFIG_IPV6_MIP6)
Masahide NAKAMURA79383232006-08-23 19:27:25 -0700314static void mip6_addr_swap(struct sk_buff *skb)
315{
Arnaldo Carvalho de Melo0660e032007-04-25 17:54:47 -0700316 struct ipv6hdr *iph = ipv6_hdr(skb);
Masahide NAKAMURA79383232006-08-23 19:27:25 -0700317 struct inet6_skb_parm *opt = IP6CB(skb);
318 struct ipv6_destopt_hao *hao;
319 struct in6_addr tmp;
320 int off;
321
322 if (opt->dsthao) {
323 off = ipv6_find_tlv(skb, opt->dsthao, IPV6_TLV_HAO);
324 if (likely(off >= 0)) {
Arnaldo Carvalho de Melod56f90a2007-04-10 20:50:43 -0700325 hao = (struct ipv6_destopt_hao *)
326 (skb_network_header(skb) + off);
Alexey Dobriyan4e3fd7a2011-11-21 03:39:03 +0000327 tmp = iph->saddr;
328 iph->saddr = hao->addr;
329 hao->addr = tmp;
Masahide NAKAMURA79383232006-08-23 19:27:25 -0700330 }
331 }
332}
333#else
334static inline void mip6_addr_swap(struct sk_buff *skb) {}
335#endif
336
stephen hemmingere8243532013-12-29 14:03:31 -0800337static struct dst_entry *icmpv6_route_lookup(struct net *net,
338 struct sk_buff *skb,
339 struct sock *sk,
340 struct flowi6 *fl6)
David S. Millerb42835d2011-03-01 22:06:22 -0800341{
342 struct dst_entry *dst, *dst2;
David S. Miller4c9483b2011-03-12 16:22:43 -0500343 struct flowi6 fl2;
David S. Millerb42835d2011-03-01 22:06:22 -0800344 int err;
345
Roopa Prabhu343d60a2015-07-30 13:34:53 -0700346 err = ip6_dst_lookup(net, sk, &dst, fl6);
David S. Millerb42835d2011-03-01 22:06:22 -0800347 if (err)
348 return ERR_PTR(err);
349
350 /*
351 * We won't send icmp if the destination is known
352 * anycast.
353 */
Martin KaFai Lau2647a9b2015-05-22 20:55:58 -0700354 if (ipv6_anycast_destination(dst, &fl6->daddr)) {
Joe Perchesba7a46f2014-11-11 10:59:17 -0800355 net_dbg_ratelimited("icmp6_send: acast source\n");
David S. Millerb42835d2011-03-01 22:06:22 -0800356 dst_release(dst);
357 return ERR_PTR(-EINVAL);
358 }
359
360 /* No need to clone since we're just using its address. */
361 dst2 = dst;
362
David S. Miller4c9483b2011-03-12 16:22:43 -0500363 dst = xfrm_lookup(net, dst, flowi6_to_flowi(fl6), sk, 0);
David S. Miller452edd52011-03-02 13:27:41 -0800364 if (!IS_ERR(dst)) {
David S. Millerb42835d2011-03-01 22:06:22 -0800365 if (dst != dst2)
366 return dst;
David S. Miller452edd52011-03-02 13:27:41 -0800367 } else {
368 if (PTR_ERR(dst) == -EPERM)
369 dst = NULL;
370 else
371 return dst;
David S. Millerb42835d2011-03-01 22:06:22 -0800372 }
373
David S. Miller4c9483b2011-03-12 16:22:43 -0500374 err = xfrm_decode_session_reverse(skb, flowi6_to_flowi(&fl2), AF_INET6);
David S. Millerb42835d2011-03-01 22:06:22 -0800375 if (err)
376 goto relookup_failed;
377
Roopa Prabhu343d60a2015-07-30 13:34:53 -0700378 err = ip6_dst_lookup(net, sk, &dst2, &fl2);
David S. Millerb42835d2011-03-01 22:06:22 -0800379 if (err)
380 goto relookup_failed;
381
David S. Miller4c9483b2011-03-12 16:22:43 -0500382 dst2 = xfrm_lookup(net, dst2, flowi6_to_flowi(&fl2), sk, XFRM_LOOKUP_ICMP);
David S. Miller452edd52011-03-02 13:27:41 -0800383 if (!IS_ERR(dst2)) {
David S. Millerb42835d2011-03-01 22:06:22 -0800384 dst_release(dst);
385 dst = dst2;
David S. Miller452edd52011-03-02 13:27:41 -0800386 } else {
387 err = PTR_ERR(dst2);
388 if (err == -EPERM) {
389 dst_release(dst);
390 return dst2;
391 } else
392 goto relookup_failed;
David S. Millerb42835d2011-03-01 22:06:22 -0800393 }
394
395relookup_failed:
396 if (dst)
397 return dst;
398 return ERR_PTR(err);
399}
400
David Ahern1b70d7922017-08-28 13:53:34 -0700401static int icmp6_iif(const struct sk_buff *skb)
402{
403 int iif = skb->dev->ifindex;
404
405 /* for local traffic to local address, skb dev is the loopback
406 * device. Check if there is a dst attached to the skb and if so
407 * get the real device index.
408 */
409 if (unlikely(iif == LOOPBACK_IFINDEX)) {
410 const struct rt6_info *rt6 = skb_rt6_info(skb);
411
412 if (rt6)
413 iif = rt6->rt6i_idev->dev->ifindex;
414 }
415
416 return iif;
417}
418
Linus Torvalds1da177e2005-04-16 15:20:36 -0700419/*
420 * Send an ICMP message in response to a packet in error
421 */
Eric Dumazetb1cadc12016-06-18 21:52:02 -0700422static void icmp6_send(struct sk_buff *skb, u8 type, u8 code, __u32 info,
423 const struct in6_addr *force_saddr)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700424{
YOSHIFUJI Hideakic346dca2008-03-25 21:47:49 +0900425 struct net *net = dev_net(skb->dev);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700426 struct inet6_dev *idev = NULL;
Arnaldo Carvalho de Melo0660e032007-04-25 17:54:47 -0700427 struct ipv6hdr *hdr = ipv6_hdr(skb);
YOSHIFUJI Hideaki84427d52005-06-13 14:59:44 -0700428 struct sock *sk;
429 struct ipv6_pinfo *np;
Eric Dumazetb71d1d42011-04-22 04:53:02 +0000430 const struct in6_addr *saddr = NULL;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700431 struct dst_entry *dst;
432 struct icmp6hdr tmp_hdr;
David S. Miller4c9483b2011-03-12 16:22:43 -0500433 struct flowi6 fl6;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700434 struct icmpv6_msg msg;
Soheil Hassas Yeganehc14ac942016-04-02 23:08:12 -0400435 struct sockcm_cookie sockc_unused = {0};
Wei Wang26879da2016-05-02 21:40:07 -0700436 struct ipcm6_cookie ipc6;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700437 int iif = 0;
438 int addr_type = 0;
439 int len;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700440 int err = 0;
Lorenzo Colittie1108612014-05-13 10:17:33 -0700441 u32 mark = IP6_REPLY_MARK(net, skb->mark);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700442
Arnaldo Carvalho de Melo27a884d2007-04-19 20:29:13 -0700443 if ((u8 *)hdr < skb->head ||
Simon Horman29a3cad2013-05-28 20:34:26 +0000444 (skb_network_header(skb) + sizeof(*hdr)) > skb_tail_pointer(skb))
Linus Torvalds1da177e2005-04-16 15:20:36 -0700445 return;
446
447 /*
YOSHIFUJI Hideaki1ab14572007-02-09 23:24:49 +0900448 * Make sure we respect the rules
Linus Torvalds1da177e2005-04-16 15:20:36 -0700449 * i.e. RFC 1885 2.4(e)
Pravin B Shelar5f5624c2013-04-25 11:08:30 +0000450 * Rule (e.1) is enforced by not using icmp6_send
Linus Torvalds1da177e2005-04-16 15:20:36 -0700451 * in any code that processes icmp errors.
452 */
453 addr_type = ipv6_addr_type(&hdr->daddr);
454
FX Le Bail446fab592014-01-19 17:00:36 +0100455 if (ipv6_chk_addr(net, &hdr->daddr, skb->dev, 0) ||
FX Le Baild94c1f92014-02-07 11:22:37 +0100456 ipv6_chk_acast_addr_src(net, skb->dev, &hdr->daddr))
Linus Torvalds1da177e2005-04-16 15:20:36 -0700457 saddr = &hdr->daddr;
458
459 /*
460 * Dest addr check
461 */
462
zhuyj9a6b4b32015-01-14 17:23:59 +0800463 if (addr_type & IPV6_ADDR_MULTICAST || skb->pkt_type != PACKET_HOST) {
Linus Torvalds1da177e2005-04-16 15:20:36 -0700464 if (type != ICMPV6_PKT_TOOBIG &&
YOSHIFUJI Hideaki1ab14572007-02-09 23:24:49 +0900465 !(type == ICMPV6_PARAMPROB &&
466 code == ICMPV6_UNK_OPTION &&
Linus Torvalds1da177e2005-04-16 15:20:36 -0700467 (opt_unrec(skb, info))))
468 return;
469
470 saddr = NULL;
471 }
472
473 addr_type = ipv6_addr_type(&hdr->saddr);
474
475 /*
476 * Source addr check
477 */
478
David Ahern4832c302017-08-17 12:17:20 -0700479 if (__ipv6_addr_needs_scope_id(addr_type)) {
David Ahern1b70d7922017-08-28 13:53:34 -0700480 iif = icmp6_iif(skb);
David Ahern4832c302017-08-17 12:17:20 -0700481 } else {
David Ahern79dc7e32016-11-27 18:52:53 -0800482 dst = skb_dst(skb);
483 iif = l3mdev_master_ifindex(dst ? dst->dev : skb->dev);
484 }
Linus Torvalds1da177e2005-04-16 15:20:36 -0700485
486 /*
YOSHIFUJI Hideaki8de33512005-12-21 22:57:06 +0900487 * Must not send error if the source does not uniquely
488 * identify a single node (RFC2463 Section 2.4).
489 * We check unspecified / multicast addresses here,
490 * and anycast addresses will be checked later.
Linus Torvalds1da177e2005-04-16 15:20:36 -0700491 */
492 if ((addr_type == IPV6_ADDR_ANY) || (addr_type & IPV6_ADDR_MULTICAST)) {
Bjørn Mork4b3418f2015-10-24 14:00:20 +0200493 net_dbg_ratelimited("icmp6_send: addr_any/mcast source [%pI6c > %pI6c]\n",
494 &hdr->saddr, &hdr->daddr);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700495 return;
496 }
497
YOSHIFUJI Hideaki1ab14572007-02-09 23:24:49 +0900498 /*
Linus Torvalds1da177e2005-04-16 15:20:36 -0700499 * Never answer to a ICMP packet.
500 */
501 if (is_ineligible(skb)) {
Bjørn Mork4b3418f2015-10-24 14:00:20 +0200502 net_dbg_ratelimited("icmp6_send: no reply to icmp error [%pI6c > %pI6c]\n",
503 &hdr->saddr, &hdr->daddr);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700504 return;
505 }
506
Jesper Dangaard Brouer7ba91ec2017-01-09 16:04:14 +0100507 /* Needed by both icmp_global_allow and icmpv6_xmit_lock */
508 local_bh_disable();
509
510 /* Check global sysctl_icmp_msgs_per_sec ratelimit */
Jesper Dangaard Brouer849a44d2017-06-14 13:27:37 +0200511 if (!(skb->dev->flags&IFF_LOOPBACK) && !icmpv6_global_allow(type))
Jesper Dangaard Brouer7ba91ec2017-01-09 16:04:14 +0100512 goto out_bh_enable;
513
Masahide NAKAMURA79383232006-08-23 19:27:25 -0700514 mip6_addr_swap(skb);
515
David S. Miller4c9483b2011-03-12 16:22:43 -0500516 memset(&fl6, 0, sizeof(fl6));
517 fl6.flowi6_proto = IPPROTO_ICMPV6;
Alexey Dobriyan4e3fd7a2011-11-21 03:39:03 +0000518 fl6.daddr = hdr->saddr;
Eric Dumazetb1cadc12016-06-18 21:52:02 -0700519 if (force_saddr)
520 saddr = force_saddr;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700521 if (saddr)
Alexey Dobriyan4e3fd7a2011-11-21 03:39:03 +0000522 fl6.saddr = *saddr;
Lorenzo Colittie1108612014-05-13 10:17:33 -0700523 fl6.flowi6_mark = mark;
David S. Miller4c9483b2011-03-12 16:22:43 -0500524 fl6.flowi6_oif = iif;
David S. Miller1958b852011-03-12 16:36:19 -0500525 fl6.fl6_icmp_type = type;
526 fl6.fl6_icmp_code = code;
Lorenzo Colittie2d118a2016-11-04 02:23:43 +0900527 fl6.flowi6_uid = sock_net_uid(net, NULL);
Jakub Sitnicki23aebda2017-08-23 09:58:29 +0200528 fl6.mp_hash = rt6_multipath_hash(&fl6, skb);
David S. Miller4c9483b2011-03-12 16:22:43 -0500529 security_skb_classify_flow(skb, flowi6_to_flowi(&fl6));
Linus Torvalds1da177e2005-04-16 15:20:36 -0700530
Denis V. Lunevfdc0bde2008-08-23 04:43:33 -0700531 sk = icmpv6_xmit_lock(net);
Ian Morris63159f22015-03-29 14:00:04 +0100532 if (!sk)
Jesper Dangaard Brouer7ba91ec2017-01-09 16:04:14 +0100533 goto out_bh_enable;
Jesper Dangaard Brouerc0303ef2017-01-09 16:04:09 +0100534
Lorenzo Colittie1108612014-05-13 10:17:33 -0700535 sk->sk_mark = mark;
Denis V. Lunevfdc0bde2008-08-23 04:43:33 -0700536 np = inet6_sk(sk);
Denis V. Lunev405666d2008-02-29 11:16:46 -0800537
David S. Miller4c9483b2011-03-12 16:22:43 -0500538 if (!icmpv6_xrlim_allow(sk, type, &fl6))
Linus Torvalds1da177e2005-04-16 15:20:36 -0700539 goto out;
540
541 tmp_hdr.icmp6_type = type;
542 tmp_hdr.icmp6_code = code;
543 tmp_hdr.icmp6_cksum = 0;
544 tmp_hdr.icmp6_pointer = htonl(info);
545
David S. Miller4c9483b2011-03-12 16:22:43 -0500546 if (!fl6.flowi6_oif && ipv6_addr_is_multicast(&fl6.daddr))
547 fl6.flowi6_oif = np->mcast_oif;
Erich E. Hooverc4062df2012-02-08 09:11:08 +0000548 else if (!fl6.flowi6_oif)
549 fl6.flowi6_oif = np->ucast_oif;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700550
Hannes Frederic Sowa38b70972016-06-11 20:08:19 +0200551 ipc6.tclass = np->tclass;
552 fl6.flowlabel = ip6_make_flowinfo(ipc6.tclass, fl6.flowlabel);
553
David S. Miller4c9483b2011-03-12 16:22:43 -0500554 dst = icmpv6_route_lookup(net, skb, sk, &fl6);
David S. Millerb42835d2011-03-01 22:06:22 -0800555 if (IS_ERR(dst))
Linus Torvalds1da177e2005-04-16 15:20:36 -0700556 goto out;
YOSHIFUJI Hideaki8de33512005-12-21 22:57:06 +0900557
Wei Wang26879da2016-05-02 21:40:07 -0700558 ipc6.hlimit = ip6_sk_dst_hoplimit(np, &fl6, dst);
Wei Wang26879da2016-05-02 21:40:07 -0700559 ipc6.dontfrag = np->dontfrag;
560 ipc6.opt = NULL;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700561
562 msg.skb = skb;
Arnaldo Carvalho de Melobbe735e2007-03-10 22:16:10 -0300563 msg.offset = skb_network_offset(skb);
Yasuyuki Kozakai763ecff2006-02-15 15:24:15 -0800564 msg.type = type;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700565
566 len = skb->len - msg.offset;
Ian Morris67ba4152014-08-24 21:53:10 +0100567 len = min_t(unsigned int, len, IPV6_MIN_MTU - sizeof(struct ipv6hdr) - sizeof(struct icmp6hdr));
Linus Torvalds1da177e2005-04-16 15:20:36 -0700568 if (len < 0) {
Bjørn Mork4b3418f2015-10-24 14:00:20 +0200569 net_dbg_ratelimited("icmp: len problem [%pI6c > %pI6c]\n",
570 &hdr->saddr, &hdr->daddr);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700571 goto out_dst_release;
572 }
573
Eric Dumazetcfdf7642011-07-27 21:13:03 +0000574 rcu_read_lock();
575 idev = __in6_dev_get(skb->dev);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700576
577 err = ip6_append_data(sk, icmpv6_getfrag, &msg,
578 len + sizeof(struct icmp6hdr),
Wei Wang26879da2016-05-02 21:40:07 -0700579 sizeof(struct icmp6hdr),
580 &ipc6, &fl6, (struct rt6_info *)dst,
581 MSG_DONTWAIT, &sockc_unused);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700582 if (err) {
Hannes Frederic Sowa43a43b62014-03-31 20:14:10 +0200583 ICMP6_INC_STATS(net, idev, ICMP6_MIB_OUTERRORS);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700584 ip6_flush_pending_frames(sk);
Eric Dumazetcfdf7642011-07-27 21:13:03 +0000585 } else {
586 err = icmpv6_push_pending_frames(sk, &fl6, &tmp_hdr,
587 len + sizeof(struct icmp6hdr));
Linus Torvalds1da177e2005-04-16 15:20:36 -0700588 }
Eric Dumazetcfdf7642011-07-27 21:13:03 +0000589 rcu_read_unlock();
Linus Torvalds1da177e2005-04-16 15:20:36 -0700590out_dst_release:
591 dst_release(dst);
592out:
Denis V. Lunev405666d2008-02-29 11:16:46 -0800593 icmpv6_xmit_unlock(sk);
Jesper Dangaard Brouer7ba91ec2017-01-09 16:04:14 +0100594out_bh_enable:
595 local_bh_enable();
Linus Torvalds1da177e2005-04-16 15:20:36 -0700596}
Pravin B Shelar5f5624c2013-04-25 11:08:30 +0000597
598/* Slightly more convenient version of icmp6_send.
599 */
600void icmpv6_param_prob(struct sk_buff *skb, u8 code, int pos)
601{
Eric Dumazetb1cadc12016-06-18 21:52:02 -0700602 icmp6_send(skb, ICMPV6_PARAMPROB, code, pos, NULL);
Pravin B Shelar5f5624c2013-04-25 11:08:30 +0000603 kfree_skb(skb);
604}
YOSHIFUJI Hideaki71590392007-02-22 22:05:40 +0900605
Eric Dumazet5fbba8a2016-06-18 21:52:03 -0700606/* Generate icmpv6 with type/code ICMPV6_DEST_UNREACH/ICMPV6_ADDR_UNREACH
607 * if sufficient data bytes are available
608 * @nhs is the size of the tunnel header(s) :
609 * Either an IPv4 header for SIT encap
610 * an IPv4 header + GRE header for GRE encap
611 */
Eric Dumazet20e19542016-06-18 21:52:06 -0700612int ip6_err_gen_icmpv6_unreach(struct sk_buff *skb, int nhs, int type,
613 unsigned int data_len)
Eric Dumazet5fbba8a2016-06-18 21:52:03 -0700614{
Eric Dumazet2d7a3b22016-06-18 21:52:04 -0700615 struct in6_addr temp_saddr;
Eric Dumazet5fbba8a2016-06-18 21:52:03 -0700616 struct rt6_info *rt;
617 struct sk_buff *skb2;
Eric Dumazet20e19542016-06-18 21:52:06 -0700618 u32 info = 0;
Eric Dumazet5fbba8a2016-06-18 21:52:03 -0700619
620 if (!pskb_may_pull(skb, nhs + sizeof(struct ipv6hdr) + 8))
621 return 1;
622
Eric Dumazet20e19542016-06-18 21:52:06 -0700623 /* RFC 4884 (partial) support for ICMP extensions */
624 if (data_len < 128 || (data_len & 7) || skb->len < data_len)
625 data_len = 0;
626
627 skb2 = data_len ? skb_copy(skb, GFP_ATOMIC) : skb_clone(skb, GFP_ATOMIC);
Eric Dumazet5fbba8a2016-06-18 21:52:03 -0700628
629 if (!skb2)
630 return 1;
631
632 skb_dst_drop(skb2);
633 skb_pull(skb2, nhs);
634 skb_reset_network_header(skb2);
635
636 rt = rt6_lookup(dev_net(skb->dev), &ipv6_hdr(skb2)->saddr, NULL, 0, 0);
637
638 if (rt && rt->dst.dev)
639 skb2->dev = rt->dst.dev;
640
Eric Dumazet2d7a3b22016-06-18 21:52:04 -0700641 ipv6_addr_set_v4mapped(ip_hdr(skb)->saddr, &temp_saddr);
Eric Dumazet20e19542016-06-18 21:52:06 -0700642
643 if (data_len) {
644 /* RFC 4884 (partial) support :
645 * insert 0 padding at the end, before the extensions
646 */
647 __skb_push(skb2, nhs);
648 skb_reset_network_header(skb2);
649 memmove(skb2->data, skb2->data + nhs, data_len - nhs);
650 memset(skb2->data + data_len - nhs, 0, nhs);
651 /* RFC 4884 4.5 : Length is measured in 64-bit words,
652 * and stored in reserved[0]
653 */
654 info = (data_len/8) << 24;
655 }
Eric Dumazet2d7a3b22016-06-18 21:52:04 -0700656 if (type == ICMP_TIME_EXCEEDED)
657 icmp6_send(skb2, ICMPV6_TIME_EXCEED, ICMPV6_EXC_HOPLIMIT,
Eric Dumazet20e19542016-06-18 21:52:06 -0700658 info, &temp_saddr);
Eric Dumazet2d7a3b22016-06-18 21:52:04 -0700659 else
660 icmp6_send(skb2, ICMPV6_DEST_UNREACH, ICMPV6_ADDR_UNREACH,
Eric Dumazet20e19542016-06-18 21:52:06 -0700661 info, &temp_saddr);
Eric Dumazet5fbba8a2016-06-18 21:52:03 -0700662 if (rt)
663 ip6_rt_put(rt);
664
665 kfree_skb(skb2);
666
667 return 0;
668}
669EXPORT_SYMBOL(ip6_err_gen_icmpv6_unreach);
670
Linus Torvalds1da177e2005-04-16 15:20:36 -0700671static void icmpv6_echo_reply(struct sk_buff *skb)
672{
YOSHIFUJI Hideakic346dca2008-03-25 21:47:49 +0900673 struct net *net = dev_net(skb->dev);
YOSHIFUJI Hideaki84427d52005-06-13 14:59:44 -0700674 struct sock *sk;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700675 struct inet6_dev *idev;
YOSHIFUJI Hideaki84427d52005-06-13 14:59:44 -0700676 struct ipv6_pinfo *np;
Eric Dumazetb71d1d42011-04-22 04:53:02 +0000677 const struct in6_addr *saddr = NULL;
Arnaldo Carvalho de Melocc70ab22007-03-13 14:03:22 -0300678 struct icmp6hdr *icmph = icmp6_hdr(skb);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700679 struct icmp6hdr tmp_hdr;
David S. Miller4c9483b2011-03-12 16:22:43 -0500680 struct flowi6 fl6;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700681 struct icmpv6_msg msg;
682 struct dst_entry *dst;
Wei Wang26879da2016-05-02 21:40:07 -0700683 struct ipcm6_cookie ipc6;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700684 int err = 0;
Lorenzo Colittie1108612014-05-13 10:17:33 -0700685 u32 mark = IP6_REPLY_MARK(net, skb->mark);
Soheil Hassas Yeganehc14ac942016-04-02 23:08:12 -0400686 struct sockcm_cookie sockc_unused = {0};
Linus Torvalds1da177e2005-04-16 15:20:36 -0700687
Arnaldo Carvalho de Melo0660e032007-04-25 17:54:47 -0700688 saddr = &ipv6_hdr(skb)->daddr;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700689
FX Le Bail509aba32014-01-07 14:57:27 +0100690 if (!ipv6_unicast_destination(skb) &&
FX Le Bailec35b612014-01-13 15:59:01 +0100691 !(net->ipv6.sysctl.anycast_src_echo_reply &&
Martin KaFai Lau2647a9b2015-05-22 20:55:58 -0700692 ipv6_anycast_destination(skb_dst(skb), saddr)))
Linus Torvalds1da177e2005-04-16 15:20:36 -0700693 saddr = NULL;
694
695 memcpy(&tmp_hdr, icmph, sizeof(tmp_hdr));
696 tmp_hdr.icmp6_type = ICMPV6_ECHO_REPLY;
697
David S. Miller4c9483b2011-03-12 16:22:43 -0500698 memset(&fl6, 0, sizeof(fl6));
699 fl6.flowi6_proto = IPPROTO_ICMPV6;
Alexey Dobriyan4e3fd7a2011-11-21 03:39:03 +0000700 fl6.daddr = ipv6_hdr(skb)->saddr;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700701 if (saddr)
Alexey Dobriyan4e3fd7a2011-11-21 03:39:03 +0000702 fl6.saddr = *saddr;
David Ahern1b70d7922017-08-28 13:53:34 -0700703 fl6.flowi6_oif = icmp6_iif(skb);
David S. Miller1958b852011-03-12 16:36:19 -0500704 fl6.fl6_icmp_type = ICMPV6_ECHO_REPLY;
Lorenzo Colittie1108612014-05-13 10:17:33 -0700705 fl6.flowi6_mark = mark;
Lorenzo Colittie2d118a2016-11-04 02:23:43 +0900706 fl6.flowi6_uid = sock_net_uid(net, NULL);
David S. Miller4c9483b2011-03-12 16:22:43 -0500707 security_skb_classify_flow(skb, flowi6_to_flowi(&fl6));
Linus Torvalds1da177e2005-04-16 15:20:36 -0700708
Jesper Dangaard Brouer7ba91ec2017-01-09 16:04:14 +0100709 local_bh_disable();
Denis V. Lunevfdc0bde2008-08-23 04:43:33 -0700710 sk = icmpv6_xmit_lock(net);
Ian Morris63159f22015-03-29 14:00:04 +0100711 if (!sk)
Jesper Dangaard Brouer7ba91ec2017-01-09 16:04:14 +0100712 goto out_bh_enable;
Lorenzo Colittie1108612014-05-13 10:17:33 -0700713 sk->sk_mark = mark;
Denis V. Lunevfdc0bde2008-08-23 04:43:33 -0700714 np = inet6_sk(sk);
Denis V. Lunev405666d2008-02-29 11:16:46 -0800715
David S. Miller4c9483b2011-03-12 16:22:43 -0500716 if (!fl6.flowi6_oif && ipv6_addr_is_multicast(&fl6.daddr))
717 fl6.flowi6_oif = np->mcast_oif;
Erich E. Hooverc4062df2012-02-08 09:11:08 +0000718 else if (!fl6.flowi6_oif)
719 fl6.flowi6_oif = np->ucast_oif;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700720
Roopa Prabhu343d60a2015-07-30 13:34:53 -0700721 err = ip6_dst_lookup(net, sk, &dst, &fl6);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700722 if (err)
723 goto out;
David S. Miller4c9483b2011-03-12 16:22:43 -0500724 dst = xfrm_lookup(net, dst, flowi6_to_flowi(&fl6), sk, 0);
David S. Miller452edd52011-03-02 13:27:41 -0800725 if (IS_ERR(dst))
Patrick McHardye104411b2005-09-08 15:11:55 -0700726 goto out;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700727
Eric Dumazetcfdf7642011-07-27 21:13:03 +0000728 idev = __in6_dev_get(skb->dev);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700729
730 msg.skb = skb;
731 msg.offset = 0;
Yasuyuki Kozakai763ecff2006-02-15 15:24:15 -0800732 msg.type = ICMPV6_ECHO_REPLY;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700733
Wei Wang26879da2016-05-02 21:40:07 -0700734 ipc6.hlimit = ip6_sk_dst_hoplimit(np, &fl6, dst);
735 ipc6.tclass = ipv6_get_dsfield(ipv6_hdr(skb));
736 ipc6.dontfrag = np->dontfrag;
737 ipc6.opt = NULL;
738
Linus Torvalds1da177e2005-04-16 15:20:36 -0700739 err = ip6_append_data(sk, icmpv6_getfrag, &msg, skb->len + sizeof(struct icmp6hdr),
Wei Wang26879da2016-05-02 21:40:07 -0700740 sizeof(struct icmp6hdr), &ipc6, &fl6,
Eldad Zacka2d91a02012-04-01 07:49:07 +0000741 (struct rt6_info *)dst, MSG_DONTWAIT,
Wei Wang26879da2016-05-02 21:40:07 -0700742 &sockc_unused);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700743
744 if (err) {
Eric Dumazeta16292a2016-04-27 16:44:36 -0700745 __ICMP6_INC_STATS(net, idev, ICMP6_MIB_OUTERRORS);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700746 ip6_flush_pending_frames(sk);
Eric Dumazetcfdf7642011-07-27 21:13:03 +0000747 } else {
748 err = icmpv6_push_pending_frames(sk, &fl6, &tmp_hdr,
749 skb->len + sizeof(struct icmp6hdr));
Linus Torvalds1da177e2005-04-16 15:20:36 -0700750 }
Linus Torvalds1da177e2005-04-16 15:20:36 -0700751 dst_release(dst);
YOSHIFUJI Hideaki1ab14572007-02-09 23:24:49 +0900752out:
Denis V. Lunev405666d2008-02-29 11:16:46 -0800753 icmpv6_xmit_unlock(sk);
Jesper Dangaard Brouer7ba91ec2017-01-09 16:04:14 +0100754out_bh_enable:
755 local_bh_enable();
Linus Torvalds1da177e2005-04-16 15:20:36 -0700756}
757
David S. Millerb94f1c02012-07-12 00:33:37 -0700758void icmpv6_notify(struct sk_buff *skb, u8 type, u8 code, __be32 info)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700759{
Alexey Dobriyan41135cc2009-09-14 12:22:28 +0000760 const struct inet6_protocol *ipprot;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700761 int inner_offset;
Jesse Gross75f28112011-11-30 17:05:51 -0800762 __be16 frag_off;
David S. Millerf9242b62012-06-19 18:56:21 -0700763 u8 nexthdr;
Duan Jiong7304fe42014-07-31 17:54:32 +0800764 struct net *net = dev_net(skb->dev);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700765
766 if (!pskb_may_pull(skb, sizeof(struct ipv6hdr)))
Duan Jiong7304fe42014-07-31 17:54:32 +0800767 goto out;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700768
769 nexthdr = ((struct ipv6hdr *)skb->data)->nexthdr;
770 if (ipv6_ext_hdr(nexthdr)) {
771 /* now skip over extension headers */
Jesse Gross75f28112011-11-30 17:05:51 -0800772 inner_offset = ipv6_skip_exthdr(skb, sizeof(struct ipv6hdr),
773 &nexthdr, &frag_off);
Ian Morris67ba4152014-08-24 21:53:10 +0100774 if (inner_offset < 0)
Duan Jiong7304fe42014-07-31 17:54:32 +0800775 goto out;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700776 } else {
777 inner_offset = sizeof(struct ipv6hdr);
778 }
779
780 /* Checkin header including 8 bytes of inner protocol header. */
781 if (!pskb_may_pull(skb, inner_offset+8))
Duan Jiong7304fe42014-07-31 17:54:32 +0800782 goto out;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700783
Linus Torvalds1da177e2005-04-16 15:20:36 -0700784 /* BUGGG_FUTURE: we should try to parse exthdrs in this packet.
785 Without this we will not able f.e. to make source routed
786 pmtu discovery.
787 Corresponding argument (opt) to notifiers is already added.
788 --ANK (980726)
789 */
790
David S. Millerf9242b62012-06-19 18:56:21 -0700791 ipprot = rcu_dereference(inet6_protos[nexthdr]);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700792 if (ipprot && ipprot->err_handler)
793 ipprot->err_handler(skb, NULL, type, code, inner_offset, info);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700794
Pavel Emelyanov69d6da02007-11-19 22:35:57 -0800795 raw6_icmp_error(skb, nexthdr, type, code, inner_offset, info);
Duan Jiong7304fe42014-07-31 17:54:32 +0800796 return;
797
798out:
Eric Dumazeta16292a2016-04-27 16:44:36 -0700799 __ICMP6_INC_STATS(net, __in6_dev_get(skb->dev), ICMP6_MIB_INERRORS);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700800}
YOSHIFUJI Hideaki1ab14572007-02-09 23:24:49 +0900801
Linus Torvalds1da177e2005-04-16 15:20:36 -0700802/*
803 * Handle icmp messages
804 */
805
Herbert Xue5bbef22007-10-15 12:50:28 -0700806static int icmpv6_rcv(struct sk_buff *skb)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700807{
Linus Torvalds1da177e2005-04-16 15:20:36 -0700808 struct net_device *dev = skb->dev;
809 struct inet6_dev *idev = __in6_dev_get(dev);
Eric Dumazetb71d1d42011-04-22 04:53:02 +0000810 const struct in6_addr *saddr, *daddr;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700811 struct icmp6hdr *hdr;
Brian Haleyd5fdd6b2009-06-23 04:31:07 -0700812 u8 type;
Rick Jonese3e32172014-11-17 14:04:29 -0800813 bool success = false;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700814
Herbert Xuaebcf822007-12-12 18:54:16 -0800815 if (!xfrm6_policy_check(NULL, XFRM_POLICY_IN, skb)) {
Alexey Dobriyandef8b4f2008-10-28 13:24:06 -0700816 struct sec_path *sp = skb_sec_path(skb);
Herbert Xu8b7817f2007-12-12 10:44:43 -0800817 int nh;
818
Alexey Dobriyandef8b4f2008-10-28 13:24:06 -0700819 if (!(sp && sp->xvec[sp->len - 1]->props.flags &
Herbert Xuaebcf822007-12-12 18:54:16 -0800820 XFRM_STATE_ICMP))
821 goto drop_no_count;
822
David S. Miller81aded22012-06-15 14:54:11 -0700823 if (!pskb_may_pull(skb, sizeof(*hdr) + sizeof(struct ipv6hdr)))
Herbert Xu8b7817f2007-12-12 10:44:43 -0800824 goto drop_no_count;
825
826 nh = skb_network_offset(skb);
827 skb_set_network_header(skb, sizeof(*hdr));
828
829 if (!xfrm6_policy_check_reverse(NULL, XFRM_POLICY_IN, skb))
830 goto drop_no_count;
831
832 skb_set_network_header(skb, nh);
833 }
834
Eric Dumazeta16292a2016-04-27 16:44:36 -0700835 __ICMP6_INC_STATS(dev_net(dev), idev, ICMP6_MIB_INMSGS);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700836
Arnaldo Carvalho de Melo0660e032007-04-25 17:54:47 -0700837 saddr = &ipv6_hdr(skb)->saddr;
838 daddr = &ipv6_hdr(skb)->daddr;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700839
Tom Herbert39471ac2014-05-07 16:52:29 -0700840 if (skb_checksum_validate(skb, IPPROTO_ICMPV6, ip6_compute_pseudo)) {
Joe Perchesba7a46f2014-11-11 10:59:17 -0800841 net_dbg_ratelimited("ICMPv6 checksum failed [%pI6c > %pI6c]\n",
842 saddr, daddr);
Tom Herbert39471ac2014-05-07 16:52:29 -0700843 goto csum_error;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700844 }
845
Herbert Xu8cf22942008-02-05 03:15:50 -0800846 if (!pskb_pull(skb, sizeof(*hdr)))
847 goto discard_it;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700848
Arnaldo Carvalho de Melocc70ab22007-03-13 14:03:22 -0300849 hdr = icmp6_hdr(skb);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700850
851 type = hdr->icmp6_type;
852
Eric Dumazetf3832ed2016-04-27 16:44:42 -0700853 ICMP6MSGIN_INC_STATS(dev_net(dev), idev, type);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700854
855 switch (type) {
856 case ICMPV6_ECHO_REQUEST:
857 icmpv6_echo_reply(skb);
858 break;
859
860 case ICMPV6_ECHO_REPLY:
Rick Jonese3e32172014-11-17 14:04:29 -0800861 success = ping_rcv(skb);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700862 break;
863
864 case ICMPV6_PKT_TOOBIG:
865 /* BUGGG_FUTURE: if packet contains rthdr, we cannot update
866 standard destination cache. Seems, only "advanced"
867 destination cache will allow to solve this problem
868 --ANK (980726)
869 */
870 if (!pskb_may_pull(skb, sizeof(struct ipv6hdr)))
871 goto discard_it;
Arnaldo Carvalho de Melocc70ab22007-03-13 14:03:22 -0300872 hdr = icmp6_hdr(skb);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700873
874 /*
875 * Drop through to notify
876 */
877
878 case ICMPV6_DEST_UNREACH:
879 case ICMPV6_TIME_EXCEED:
880 case ICMPV6_PARAMPROB:
881 icmpv6_notify(skb, type, hdr->icmp6_code, hdr->icmp6_mtu);
882 break;
883
884 case NDISC_ROUTER_SOLICITATION:
885 case NDISC_ROUTER_ADVERTISEMENT:
886 case NDISC_NEIGHBOUR_SOLICITATION:
887 case NDISC_NEIGHBOUR_ADVERTISEMENT:
888 case NDISC_REDIRECT:
889 ndisc_rcv(skb);
890 break;
891
892 case ICMPV6_MGM_QUERY:
893 igmp6_event_query(skb);
894 break;
895
896 case ICMPV6_MGM_REPORT:
897 igmp6_event_report(skb);
898 break;
899
900 case ICMPV6_MGM_REDUCTION:
901 case ICMPV6_NI_QUERY:
902 case ICMPV6_NI_REPLY:
903 case ICMPV6_MLD2_REPORT:
904 case ICMPV6_DHAAD_REQUEST:
905 case ICMPV6_DHAAD_REPLY:
906 case ICMPV6_MOBILE_PREFIX_SOL:
907 case ICMPV6_MOBILE_PREFIX_ADV:
908 break;
909
910 default:
Linus Torvalds1da177e2005-04-16 15:20:36 -0700911 /* informational */
912 if (type & ICMPV6_INFOMSG_MASK)
913 break;
914
Bjørn Mork4b3418f2015-10-24 14:00:20 +0200915 net_dbg_ratelimited("icmpv6: msg of unknown type [%pI6c > %pI6c]\n",
916 saddr, daddr);
David S. Millerea85a0a2014-10-07 16:33:53 -0400917
YOSHIFUJI Hideaki1ab14572007-02-09 23:24:49 +0900918 /*
919 * error of unknown type.
920 * must pass to upper level
Linus Torvalds1da177e2005-04-16 15:20:36 -0700921 */
922
923 icmpv6_notify(skb, type, hdr->icmp6_code, hdr->icmp6_mtu);
Stephen Hemminger3ff50b72007-04-20 17:09:22 -0700924 }
925
Rick Jonese3e32172014-11-17 14:04:29 -0800926 /* until the v6 path can be better sorted assume failure and
927 * preserve the status quo behaviour for the rest of the paths to here
928 */
929 if (success)
930 consume_skb(skb);
931 else
932 kfree_skb(skb);
933
Linus Torvalds1da177e2005-04-16 15:20:36 -0700934 return 0;
935
Eric Dumazet6a5dc9e2013-04-29 08:39:56 +0000936csum_error:
Eric Dumazeta16292a2016-04-27 16:44:36 -0700937 __ICMP6_INC_STATS(dev_net(dev), idev, ICMP6_MIB_CSUMERRORS);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700938discard_it:
Eric Dumazeta16292a2016-04-27 16:44:36 -0700939 __ICMP6_INC_STATS(dev_net(dev), idev, ICMP6_MIB_INERRORS);
Herbert Xu8b7817f2007-12-12 10:44:43 -0800940drop_no_count:
Linus Torvalds1da177e2005-04-16 15:20:36 -0700941 kfree_skb(skb);
942 return 0;
943}
944
David S. Miller4c9483b2011-03-12 16:22:43 -0500945void icmpv6_flow_init(struct sock *sk, struct flowi6 *fl6,
YOSHIFUJI Hideaki95e41e92007-12-06 15:43:30 -0800946 u8 type,
947 const struct in6_addr *saddr,
948 const struct in6_addr *daddr,
949 int oif)
950{
David S. Miller4c9483b2011-03-12 16:22:43 -0500951 memset(fl6, 0, sizeof(*fl6));
Alexey Dobriyan4e3fd7a2011-11-21 03:39:03 +0000952 fl6->saddr = *saddr;
953 fl6->daddr = *daddr;
Ian Morris67ba4152014-08-24 21:53:10 +0100954 fl6->flowi6_proto = IPPROTO_ICMPV6;
David S. Miller1958b852011-03-12 16:36:19 -0500955 fl6->fl6_icmp_type = type;
956 fl6->fl6_icmp_code = 0;
David S. Miller4c9483b2011-03-12 16:22:43 -0500957 fl6->flowi6_oif = oif;
958 security_sk_classify_flow(sk, flowi6_to_flowi(fl6));
YOSHIFUJI Hideaki95e41e92007-12-06 15:43:30 -0800959}
960
Denis V. Lunev98c6d1b2008-02-29 11:21:22 -0800961static int __net_init icmpv6_sk_init(struct net *net)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700962{
963 struct sock *sk;
964 int err, i, j;
965
Denis V. Lunev98c6d1b2008-02-29 11:21:22 -0800966 net->ipv6.icmp_sk =
967 kzalloc(nr_cpu_ids * sizeof(struct sock *), GFP_KERNEL);
Ian Morris63159f22015-03-29 14:00:04 +0100968 if (!net->ipv6.icmp_sk)
Denis V. Lunev79c91152008-02-29 11:17:11 -0800969 return -ENOMEM;
970
KAMEZAWA Hiroyuki6f912042006-04-10 22:52:50 -0700971 for_each_possible_cpu(i) {
Denis V. Lunev1ed85162008-04-03 14:31:03 -0700972 err = inet_ctl_sock_create(&sk, PF_INET6,
973 SOCK_RAW, IPPROTO_ICMPV6, net);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700974 if (err < 0) {
Joe Perchesf3213832012-05-15 14:11:53 +0000975 pr_err("Failed to initialize the ICMP6 control socket (err %d)\n",
Linus Torvalds1da177e2005-04-16 15:20:36 -0700976 err);
977 goto fail;
978 }
979
Denis V. Lunev1ed85162008-04-03 14:31:03 -0700980 net->ipv6.icmp_sk[i] = sk;
Denis V. Lunev5c8cafd2008-02-29 11:19:22 -0800981
Linus Torvalds1da177e2005-04-16 15:20:36 -0700982 /* Enough space for 2 64K ICMP packets, including
983 * sk_buff struct overhead.
984 */
Eric Dumazet87fb4b72011-10-13 07:28:54 +0000985 sk->sk_sndbuf = 2 * SKB_TRUESIZE(64 * 1024);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700986 }
Linus Torvalds1da177e2005-04-16 15:20:36 -0700987 return 0;
988
989 fail:
Denis V. Lunev5c8cafd2008-02-29 11:19:22 -0800990 for (j = 0; j < i; j++)
Denis V. Lunev1ed85162008-04-03 14:31:03 -0700991 inet_ctl_sock_destroy(net->ipv6.icmp_sk[j]);
Denis V. Lunev98c6d1b2008-02-29 11:21:22 -0800992 kfree(net->ipv6.icmp_sk);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700993 return err;
994}
995
Denis V. Lunev98c6d1b2008-02-29 11:21:22 -0800996static void __net_exit icmpv6_sk_exit(struct net *net)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700997{
998 int i;
999
KAMEZAWA Hiroyuki6f912042006-04-10 22:52:50 -07001000 for_each_possible_cpu(i) {
Denis V. Lunev1ed85162008-04-03 14:31:03 -07001001 inet_ctl_sock_destroy(net->ipv6.icmp_sk[i]);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001002 }
Denis V. Lunev98c6d1b2008-02-29 11:21:22 -08001003 kfree(net->ipv6.icmp_sk);
1004}
1005
Alexey Dobriyan8ed7edc2008-03-03 12:02:54 -08001006static struct pernet_operations icmpv6_sk_ops = {
Ian Morris67ba4152014-08-24 21:53:10 +01001007 .init = icmpv6_sk_init,
1008 .exit = icmpv6_sk_exit,
Denis V. Lunev98c6d1b2008-02-29 11:21:22 -08001009};
1010
1011int __init icmpv6_init(void)
1012{
1013 int err;
1014
1015 err = register_pernet_subsys(&icmpv6_sk_ops);
1016 if (err < 0)
1017 return err;
1018
1019 err = -EAGAIN;
1020 if (inet6_add_protocol(&icmpv6_protocol, IPPROTO_ICMPV6) < 0)
1021 goto fail;
Pravin B Shelar5f5624c2013-04-25 11:08:30 +00001022
1023 err = inet6_register_icmp_sender(icmp6_send);
1024 if (err)
1025 goto sender_reg_err;
Denis V. Lunev98c6d1b2008-02-29 11:21:22 -08001026 return 0;
1027
Pravin B Shelar5f5624c2013-04-25 11:08:30 +00001028sender_reg_err:
1029 inet6_del_protocol(&icmpv6_protocol, IPPROTO_ICMPV6);
Denis V. Lunev98c6d1b2008-02-29 11:21:22 -08001030fail:
Joe Perchesf3213832012-05-15 14:11:53 +00001031 pr_err("Failed to register ICMP6 protocol\n");
Denis V. Lunev98c6d1b2008-02-29 11:21:22 -08001032 unregister_pernet_subsys(&icmpv6_sk_ops);
1033 return err;
1034}
1035
Alexey Dobriyan8ed7edc2008-03-03 12:02:54 -08001036void icmpv6_cleanup(void)
Denis V. Lunev98c6d1b2008-02-29 11:21:22 -08001037{
Pravin B Shelar5f5624c2013-04-25 11:08:30 +00001038 inet6_unregister_icmp_sender(icmp6_send);
Denis V. Lunev98c6d1b2008-02-29 11:21:22 -08001039 unregister_pernet_subsys(&icmpv6_sk_ops);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001040 inet6_del_protocol(&icmpv6_protocol, IPPROTO_ICMPV6);
1041}
1042
Denis V. Lunev98c6d1b2008-02-29 11:21:22 -08001043
Arjan van de Ven9b5b5cf2005-11-29 16:21:38 -08001044static const struct icmp6_err {
Linus Torvalds1da177e2005-04-16 15:20:36 -07001045 int err;
1046 int fatal;
1047} tab_unreach[] = {
1048 { /* NOROUTE */
1049 .err = ENETUNREACH,
1050 .fatal = 0,
1051 },
1052 { /* ADM_PROHIBITED */
1053 .err = EACCES,
1054 .fatal = 1,
1055 },
1056 { /* Was NOT_NEIGHBOUR, now reserved */
1057 .err = EHOSTUNREACH,
1058 .fatal = 0,
1059 },
1060 { /* ADDR_UNREACH */
1061 .err = EHOSTUNREACH,
1062 .fatal = 0,
1063 },
1064 { /* PORT_UNREACH */
1065 .err = ECONNREFUSED,
1066 .fatal = 1,
1067 },
Jiri Bohac61e76b12013-08-30 11:18:45 +02001068 { /* POLICY_FAIL */
1069 .err = EACCES,
1070 .fatal = 1,
1071 },
1072 { /* REJECT_ROUTE */
1073 .err = EACCES,
1074 .fatal = 1,
1075 },
Linus Torvalds1da177e2005-04-16 15:20:36 -07001076};
1077
Brian Haleyd5fdd6b2009-06-23 04:31:07 -07001078int icmpv6_err_convert(u8 type, u8 code, int *err)
Linus Torvalds1da177e2005-04-16 15:20:36 -07001079{
1080 int fatal = 0;
1081
1082 *err = EPROTO;
1083
1084 switch (type) {
1085 case ICMPV6_DEST_UNREACH:
1086 fatal = 1;
Jiri Bohac61e76b12013-08-30 11:18:45 +02001087 if (code < ARRAY_SIZE(tab_unreach)) {
Linus Torvalds1da177e2005-04-16 15:20:36 -07001088 *err = tab_unreach[code].err;
1089 fatal = tab_unreach[code].fatal;
1090 }
1091 break;
1092
1093 case ICMPV6_PKT_TOOBIG:
1094 *err = EMSGSIZE;
1095 break;
YOSHIFUJI Hideaki1ab14572007-02-09 23:24:49 +09001096
Linus Torvalds1da177e2005-04-16 15:20:36 -07001097 case ICMPV6_PARAMPROB:
1098 *err = EPROTO;
1099 fatal = 1;
1100 break;
1101
1102 case ICMPV6_TIME_EXCEED:
1103 *err = EHOSTUNREACH;
1104 break;
Stephen Hemminger3ff50b72007-04-20 17:09:22 -07001105 }
Linus Torvalds1da177e2005-04-16 15:20:36 -07001106
1107 return fatal;
1108}
YOSHIFUJI Hideaki71590392007-02-22 22:05:40 +09001109EXPORT_SYMBOL(icmpv6_err_convert);
1110
Linus Torvalds1da177e2005-04-16 15:20:36 -07001111#ifdef CONFIG_SYSCTL
stephen hemmingere8243532013-12-29 14:03:31 -08001112static struct ctl_table ipv6_icmp_table_template[] = {
Linus Torvalds1da177e2005-04-16 15:20:36 -07001113 {
Linus Torvalds1da177e2005-04-16 15:20:36 -07001114 .procname = "ratelimit",
Daniel Lezcano41a76902008-01-10 03:02:40 -08001115 .data = &init_net.ipv6.sysctl.icmpv6_time,
Linus Torvalds1da177e2005-04-16 15:20:36 -07001116 .maxlen = sizeof(int),
1117 .mode = 0644,
Alexey Dobriyan6d9f2392008-11-03 18:21:05 -08001118 .proc_handler = proc_dointvec_ms_jiffies,
Linus Torvalds1da177e2005-04-16 15:20:36 -07001119 },
Eric W. Biedermanf8572d82009-11-05 13:32:03 -08001120 { },
Linus Torvalds1da177e2005-04-16 15:20:36 -07001121};
Daniel Lezcano760f2d02008-01-10 02:53:43 -08001122
Alexey Dobriyan2c8c1e72010-01-17 03:35:32 +00001123struct ctl_table * __net_init ipv6_icmp_sysctl_init(struct net *net)
Daniel Lezcano760f2d02008-01-10 02:53:43 -08001124{
1125 struct ctl_table *table;
1126
1127 table = kmemdup(ipv6_icmp_table_template,
1128 sizeof(ipv6_icmp_table_template),
1129 GFP_KERNEL);
YOSHIFUJI Hideaki5ee09102008-02-28 00:24:28 +09001130
Eric W. Biedermanc027aab2012-11-16 03:03:10 +00001131 if (table)
YOSHIFUJI Hideaki5ee09102008-02-28 00:24:28 +09001132 table[0].data = &net->ipv6.sysctl.icmpv6_time;
1133
Daniel Lezcano760f2d02008-01-10 02:53:43 -08001134 return table;
1135}
Linus Torvalds1da177e2005-04-16 15:20:36 -07001136#endif