blob: b0b436b0692c60da591785e9941d177cb6edb726 [file] [log] [blame]
Tom Herbert23461552014-09-17 12:25:56 -07001#include <linux/module.h>
2#include <linux/errno.h>
3#include <linux/socket.h>
4#include <linux/skbuff.h>
5#include <linux/ip.h>
6#include <linux/udp.h>
7#include <linux/types.h>
8#include <linux/kernel.h>
9#include <net/genetlink.h>
Tom Herbert37dd0242014-10-03 15:48:09 -070010#include <net/gue.h>
Tom Herbert23461552014-09-17 12:25:56 -070011#include <net/ip.h>
Tom Herbertafe93322014-09-17 12:25:57 -070012#include <net/protocol.h>
Tom Herbert23461552014-09-17 12:25:56 -070013#include <net/udp.h>
14#include <net/udp_tunnel.h>
15#include <net/xfrm.h>
16#include <uapi/linux/fou.h>
17#include <uapi/linux/genetlink.h>
18
19static DEFINE_SPINLOCK(fou_lock);
20static LIST_HEAD(fou_list);
21
22struct fou {
23 struct socket *sock;
24 u8 protocol;
25 u16 port;
Tom Herbertafe93322014-09-17 12:25:57 -070026 struct udp_offload udp_offloads;
Tom Herbert23461552014-09-17 12:25:56 -070027 struct list_head list;
28};
29
30struct fou_cfg {
Tom Herbert37dd0242014-10-03 15:48:09 -070031 u16 type;
Tom Herbert23461552014-09-17 12:25:56 -070032 u8 protocol;
33 struct udp_port_cfg udp_config;
34};
35
36static inline struct fou *fou_from_sock(struct sock *sk)
37{
38 return sk->sk_user_data;
39}
40
Tom Herbert5024c332014-11-04 09:06:53 -080041static void fou_recv_pull(struct sk_buff *skb, size_t len)
Tom Herbert23461552014-09-17 12:25:56 -070042{
43 struct iphdr *iph = ip_hdr(skb);
44
45 /* Remove 'len' bytes from the packet (UDP header and
Tom Herbert5024c332014-11-04 09:06:53 -080046 * FOU header if present).
Tom Herbert23461552014-09-17 12:25:56 -070047 */
48 iph->tot_len = htons(ntohs(iph->tot_len) - len);
49 __skb_pull(skb, len);
50 skb_postpull_rcsum(skb, udp_hdr(skb), len);
51 skb_reset_transport_header(skb);
Tom Herbert23461552014-09-17 12:25:56 -070052}
53
54static int fou_udp_recv(struct sock *sk, struct sk_buff *skb)
55{
56 struct fou *fou = fou_from_sock(sk);
57
58 if (!fou)
59 return 1;
60
Tom Herbert5024c332014-11-04 09:06:53 -080061 fou_recv_pull(skb, sizeof(struct udphdr));
62
63 return -fou->protocol;
64}
65
Tom Herberta8d31c12014-11-04 09:06:57 -080066static struct guehdr *gue_remcsum(struct sk_buff *skb, struct guehdr *guehdr,
67 void *data, int hdrlen, u8 ipproto)
68{
69 __be16 *pd = data;
70 u16 start = ntohs(pd[0]);
71 u16 offset = ntohs(pd[1]);
72 u16 poffset = 0;
73 u16 plen;
74 __wsum csum, delta;
75 __sum16 *psum;
76
77 if (skb->remcsum_offload) {
78 /* Already processed in GRO path */
79 skb->remcsum_offload = 0;
80 return guehdr;
81 }
82
83 if (start > skb->len - hdrlen ||
84 offset > skb->len - hdrlen - sizeof(u16))
85 return NULL;
86
87 if (unlikely(skb->ip_summed != CHECKSUM_COMPLETE))
88 __skb_checksum_complete(skb);
89
90 plen = hdrlen + offset + sizeof(u16);
91 if (!pskb_may_pull(skb, plen))
92 return NULL;
93 guehdr = (struct guehdr *)&udp_hdr(skb)[1];
94
95 if (ipproto == IPPROTO_IP && sizeof(struct iphdr) < plen) {
96 struct iphdr *ip = (struct iphdr *)(skb->data + hdrlen);
97
98 /* If next header happens to be IP we can skip that for the
99 * checksum calculation since the IP header checksum is zero
100 * if correct.
101 */
102 poffset = ip->ihl * 4;
103 }
104
105 csum = csum_sub(skb->csum, skb_checksum(skb, poffset + hdrlen,
106 start - poffset - hdrlen, 0));
107
108 /* Set derived checksum in packet */
109 psum = (__sum16 *)(skb->data + hdrlen + offset);
110 delta = csum_sub(csum_fold(csum), *psum);
111 *psum = csum_fold(csum);
112
113 /* Adjust skb->csum since we changed the packet */
114 skb->csum = csum_add(skb->csum, delta);
115
116 return guehdr;
117}
118
Tom Herbert5024c332014-11-04 09:06:53 -0800119static int gue_control_message(struct sk_buff *skb, struct guehdr *guehdr)
120{
121 /* No support yet */
122 kfree_skb(skb);
123 return 0;
Tom Herbert23461552014-09-17 12:25:56 -0700124}
125
Tom Herbert37dd0242014-10-03 15:48:09 -0700126static int gue_udp_recv(struct sock *sk, struct sk_buff *skb)
127{
128 struct fou *fou = fou_from_sock(sk);
Tom Herbert5024c332014-11-04 09:06:53 -0800129 size_t len, optlen, hdrlen;
Tom Herbert37dd0242014-10-03 15:48:09 -0700130 struct guehdr *guehdr;
Tom Herbert5024c332014-11-04 09:06:53 -0800131 void *data;
Tom Herberta8d31c12014-11-04 09:06:57 -0800132 u16 doffset = 0;
Tom Herbert37dd0242014-10-03 15:48:09 -0700133
134 if (!fou)
135 return 1;
136
137 len = sizeof(struct udphdr) + sizeof(struct guehdr);
138 if (!pskb_may_pull(skb, len))
139 goto drop;
140
Tom Herbert5024c332014-11-04 09:06:53 -0800141 guehdr = (struct guehdr *)&udp_hdr(skb)[1];
Tom Herbert37dd0242014-10-03 15:48:09 -0700142
Tom Herbert5024c332014-11-04 09:06:53 -0800143 optlen = guehdr->hlen << 2;
144 len += optlen;
145
Tom Herbert37dd0242014-10-03 15:48:09 -0700146 if (!pskb_may_pull(skb, len))
147 goto drop;
148
Tom Herbert5024c332014-11-04 09:06:53 -0800149 /* guehdr may change after pull */
150 guehdr = (struct guehdr *)&udp_hdr(skb)[1];
Li RongQingd8f00d22014-10-17 16:53:47 +0800151
Tom Herbert5024c332014-11-04 09:06:53 -0800152 hdrlen = sizeof(struct guehdr) + optlen;
153
154 if (guehdr->version != 0 || validate_gue_flags(guehdr, optlen))
Tom Herbert37dd0242014-10-03 15:48:09 -0700155 goto drop;
156
Tom Herberta8d31c12014-11-04 09:06:57 -0800157 hdrlen = sizeof(struct guehdr) + optlen;
158
159 ip_hdr(skb)->tot_len = htons(ntohs(ip_hdr(skb)->tot_len) - len);
160
161 /* Pull UDP header now, skb->data points to guehdr */
162 __skb_pull(skb, sizeof(struct udphdr));
163
164 /* Pull csum through the guehdr now . This can be used if
165 * there is a remote checksum offload.
166 */
167 skb_postpull_rcsum(skb, udp_hdr(skb), len);
Tom Herbert5024c332014-11-04 09:06:53 -0800168
169 data = &guehdr[1];
170
171 if (guehdr->flags & GUE_FLAG_PRIV) {
Tom Herberta8d31c12014-11-04 09:06:57 -0800172 __be32 flags = *(__be32 *)(data + doffset);
Tom Herbert5024c332014-11-04 09:06:53 -0800173
Tom Herberta8d31c12014-11-04 09:06:57 -0800174 doffset += GUE_LEN_PRIV;
175
176 if (flags & GUE_PFLAG_REMCSUM) {
177 guehdr = gue_remcsum(skb, guehdr, data + doffset,
178 hdrlen, guehdr->proto_ctype);
179 if (!guehdr)
180 goto drop;
181
182 data = &guehdr[1];
183
184 doffset += GUE_PLEN_REMCSUM;
185 }
Tom Herbert37dd0242014-10-03 15:48:09 -0700186 }
187
Tom Herbert5024c332014-11-04 09:06:53 -0800188 if (unlikely(guehdr->control))
189 return gue_control_message(skb, guehdr);
190
Tom Herberta8d31c12014-11-04 09:06:57 -0800191 __skb_pull(skb, hdrlen);
192 skb_reset_transport_header(skb);
193
Tom Herbert5024c332014-11-04 09:06:53 -0800194 return -guehdr->proto_ctype;
195
Tom Herbert37dd0242014-10-03 15:48:09 -0700196drop:
197 kfree_skb(skb);
198 return 0;
199}
200
Tom Herbertafe93322014-09-17 12:25:57 -0700201static struct sk_buff **fou_gro_receive(struct sk_buff **head,
Tom Herbertefc98d02014-10-03 15:48:08 -0700202 struct sk_buff *skb)
Tom Herbertafe93322014-09-17 12:25:57 -0700203{
204 const struct net_offload *ops;
205 struct sk_buff **pp = NULL;
206 u8 proto = NAPI_GRO_CB(skb)->proto;
Tom Herbertefc98d02014-10-03 15:48:08 -0700207 const struct net_offload **offloads;
Tom Herbertafe93322014-09-17 12:25:57 -0700208
209 rcu_read_lock();
Tom Herbertefc98d02014-10-03 15:48:08 -0700210 offloads = NAPI_GRO_CB(skb)->is_ipv6 ? inet6_offloads : inet_offloads;
Tom Herbertafe93322014-09-17 12:25:57 -0700211 ops = rcu_dereference(offloads[proto]);
212 if (!ops || !ops->callbacks.gro_receive)
213 goto out_unlock;
214
215 pp = ops->callbacks.gro_receive(head, skb);
216
217out_unlock:
218 rcu_read_unlock();
219
220 return pp;
221}
222
Tom Herbertefc98d02014-10-03 15:48:08 -0700223static int fou_gro_complete(struct sk_buff *skb, int nhoff)
Tom Herbertafe93322014-09-17 12:25:57 -0700224{
225 const struct net_offload *ops;
226 u8 proto = NAPI_GRO_CB(skb)->proto;
227 int err = -ENOSYS;
Tom Herbertefc98d02014-10-03 15:48:08 -0700228 const struct net_offload **offloads;
Tom Herbertafe93322014-09-17 12:25:57 -0700229
230 rcu_read_lock();
Tom Herbertefc98d02014-10-03 15:48:08 -0700231 offloads = NAPI_GRO_CB(skb)->is_ipv6 ? inet6_offloads : inet_offloads;
Tom Herbertafe93322014-09-17 12:25:57 -0700232 ops = rcu_dereference(offloads[proto]);
233 if (WARN_ON(!ops || !ops->callbacks.gro_complete))
234 goto out_unlock;
235
236 err = ops->callbacks.gro_complete(skb, nhoff);
237
238out_unlock:
239 rcu_read_unlock();
240
241 return err;
242}
243
Tom Herberta8d31c12014-11-04 09:06:57 -0800244static struct guehdr *gue_gro_remcsum(struct sk_buff *skb, unsigned int off,
245 struct guehdr *guehdr, void *data,
246 size_t hdrlen, u8 ipproto)
247{
248 __be16 *pd = data;
249 u16 start = ntohs(pd[0]);
250 u16 offset = ntohs(pd[1]);
251 u16 poffset = 0;
252 u16 plen;
253 void *ptr;
254 __wsum csum, delta;
255 __sum16 *psum;
256
257 if (skb->remcsum_offload)
258 return guehdr;
259
260 if (start > skb_gro_len(skb) - hdrlen ||
261 offset > skb_gro_len(skb) - hdrlen - sizeof(u16) ||
262 !NAPI_GRO_CB(skb)->csum_valid || skb->remcsum_offload)
263 return NULL;
264
265 plen = hdrlen + offset + sizeof(u16);
266
267 /* Pull checksum that will be written */
268 if (skb_gro_header_hard(skb, off + plen)) {
269 guehdr = skb_gro_header_slow(skb, off + plen, off);
270 if (!guehdr)
271 return NULL;
272 }
273
274 ptr = (void *)guehdr + hdrlen;
275
276 if (ipproto == IPPROTO_IP &&
277 (hdrlen + sizeof(struct iphdr) < plen)) {
278 struct iphdr *ip = (struct iphdr *)(ptr + hdrlen);
279
280 /* If next header happens to be IP we can skip
281 * that for the checksum calculation since the
282 * IP header checksum is zero if correct.
283 */
284 poffset = ip->ihl * 4;
285 }
286
287 csum = csum_sub(NAPI_GRO_CB(skb)->csum,
288 csum_partial(ptr + poffset, start - poffset, 0));
289
290 /* Set derived checksum in packet */
291 psum = (__sum16 *)(ptr + offset);
292 delta = csum_sub(csum_fold(csum), *psum);
293 *psum = csum_fold(csum);
294
295 /* Adjust skb->csum since we changed the packet */
296 skb->csum = csum_add(skb->csum, delta);
297 NAPI_GRO_CB(skb)->csum = csum_add(NAPI_GRO_CB(skb)->csum, delta);
298
299 skb->remcsum_offload = 1;
300
301 return guehdr;
302}
303
Tom Herbert37dd0242014-10-03 15:48:09 -0700304static struct sk_buff **gue_gro_receive(struct sk_buff **head,
305 struct sk_buff *skb)
306{
307 const struct net_offload **offloads;
308 const struct net_offload *ops;
309 struct sk_buff **pp = NULL;
310 struct sk_buff *p;
Tom Herbert37dd0242014-10-03 15:48:09 -0700311 struct guehdr *guehdr;
Tom Herbert5024c332014-11-04 09:06:53 -0800312 size_t len, optlen, hdrlen, off;
313 void *data;
Tom Herberta8d31c12014-11-04 09:06:57 -0800314 u16 doffset = 0;
Tom Herbert37dd0242014-10-03 15:48:09 -0700315 int flush = 1;
316
317 off = skb_gro_offset(skb);
Tom Herbert5024c332014-11-04 09:06:53 -0800318 len = off + sizeof(*guehdr);
319
Tom Herbert37dd0242014-10-03 15:48:09 -0700320 guehdr = skb_gro_header_fast(skb, off);
Tom Herbert5024c332014-11-04 09:06:53 -0800321 if (skb_gro_header_hard(skb, len)) {
322 guehdr = skb_gro_header_slow(skb, len, off);
Tom Herbert37dd0242014-10-03 15:48:09 -0700323 if (unlikely(!guehdr))
324 goto out;
325 }
326
Tom Herbert5024c332014-11-04 09:06:53 -0800327 optlen = guehdr->hlen << 2;
328 len += optlen;
Tom Herbert37dd0242014-10-03 15:48:09 -0700329
Tom Herbert5024c332014-11-04 09:06:53 -0800330 if (skb_gro_header_hard(skb, len)) {
331 guehdr = skb_gro_header_slow(skb, len, off);
Tom Herbert37dd0242014-10-03 15:48:09 -0700332 if (unlikely(!guehdr))
Tom Herbert5024c332014-11-04 09:06:53 -0800333 goto out;
334 }
335
336 if (unlikely(guehdr->control) || guehdr->version != 0 ||
337 validate_gue_flags(guehdr, optlen))
338 goto out;
339
340 hdrlen = sizeof(*guehdr) + optlen;
341
Tom Herberta8d31c12014-11-04 09:06:57 -0800342 /* Adjust NAPI_GRO_CB(skb)->csum to account for guehdr,
343 * this is needed if there is a remote checkcsum offload.
344 */
Tom Herbert5024c332014-11-04 09:06:53 -0800345 skb_gro_postpull_rcsum(skb, guehdr, hdrlen);
346
347 data = &guehdr[1];
348
349 if (guehdr->flags & GUE_FLAG_PRIV) {
Tom Herberta8d31c12014-11-04 09:06:57 -0800350 __be32 flags = *(__be32 *)(data + doffset);
Tom Herbert5024c332014-11-04 09:06:53 -0800351
Tom Herberta8d31c12014-11-04 09:06:57 -0800352 doffset += GUE_LEN_PRIV;
353
354 if (flags & GUE_PFLAG_REMCSUM) {
355 guehdr = gue_gro_remcsum(skb, off, guehdr,
356 data + doffset, hdrlen,
357 guehdr->proto_ctype);
358 if (!guehdr)
359 goto out;
360
361 data = &guehdr[1];
362
363 doffset += GUE_PLEN_REMCSUM;
364 }
Tom Herbert37dd0242014-10-03 15:48:09 -0700365 }
366
Tom Herberta8d31c12014-11-04 09:06:57 -0800367 skb_gro_pull(skb, hdrlen);
368
Tom Herbert37dd0242014-10-03 15:48:09 -0700369 flush = 0;
370
371 for (p = *head; p; p = p->next) {
372 const struct guehdr *guehdr2;
373
374 if (!NAPI_GRO_CB(p)->same_flow)
375 continue;
376
377 guehdr2 = (struct guehdr *)(p->data + off);
378
379 /* Compare base GUE header to be equal (covers
Tom Herbert5024c332014-11-04 09:06:53 -0800380 * hlen, version, proto_ctype, and flags.
Tom Herbert37dd0242014-10-03 15:48:09 -0700381 */
382 if (guehdr->word != guehdr2->word) {
383 NAPI_GRO_CB(p)->same_flow = 0;
384 continue;
385 }
386
387 /* Compare optional fields are the same. */
388 if (guehdr->hlen && memcmp(&guehdr[1], &guehdr2[1],
389 guehdr->hlen << 2)) {
390 NAPI_GRO_CB(p)->same_flow = 0;
391 continue;
392 }
393 }
394
Tom Herbert5024c332014-11-04 09:06:53 -0800395 rcu_read_lock();
396 offloads = NAPI_GRO_CB(skb)->is_ipv6 ? inet6_offloads : inet_offloads;
397 ops = rcu_dereference(offloads[guehdr->proto_ctype]);
398 if (WARN_ON(!ops || !ops->callbacks.gro_receive))
399 goto out_unlock;
Tom Herbert37dd0242014-10-03 15:48:09 -0700400
401 pp = ops->callbacks.gro_receive(head, skb);
402
403out_unlock:
404 rcu_read_unlock();
405out:
406 NAPI_GRO_CB(skb)->flush |= flush;
407
408 return pp;
409}
410
411static int gue_gro_complete(struct sk_buff *skb, int nhoff)
412{
413 const struct net_offload **offloads;
414 struct guehdr *guehdr = (struct guehdr *)(skb->data + nhoff);
415 const struct net_offload *ops;
416 unsigned int guehlen;
417 u8 proto;
418 int err = -ENOENT;
419
Tom Herbert5024c332014-11-04 09:06:53 -0800420 proto = guehdr->proto_ctype;
Tom Herbert37dd0242014-10-03 15:48:09 -0700421
422 guehlen = sizeof(*guehdr) + (guehdr->hlen << 2);
423
424 rcu_read_lock();
425 offloads = NAPI_GRO_CB(skb)->is_ipv6 ? inet6_offloads : inet_offloads;
426 ops = rcu_dereference(offloads[proto]);
427 if (WARN_ON(!ops || !ops->callbacks.gro_complete))
428 goto out_unlock;
429
430 err = ops->callbacks.gro_complete(skb, nhoff + guehlen);
431
432out_unlock:
433 rcu_read_unlock();
434 return err;
435}
436
Tom Herbert23461552014-09-17 12:25:56 -0700437static int fou_add_to_port_list(struct fou *fou)
438{
439 struct fou *fout;
440
441 spin_lock(&fou_lock);
442 list_for_each_entry(fout, &fou_list, list) {
443 if (fou->port == fout->port) {
444 spin_unlock(&fou_lock);
445 return -EALREADY;
446 }
447 }
448
449 list_add(&fou->list, &fou_list);
450 spin_unlock(&fou_lock);
451
452 return 0;
453}
454
455static void fou_release(struct fou *fou)
456{
457 struct socket *sock = fou->sock;
458 struct sock *sk = sock->sk;
459
460 udp_del_offload(&fou->udp_offloads);
461
462 list_del(&fou->list);
463
464 /* Remove hooks into tunnel socket */
465 sk->sk_user_data = NULL;
466
467 sock_release(sock);
468
469 kfree(fou);
470}
471
Tom Herbert37dd0242014-10-03 15:48:09 -0700472static int fou_encap_init(struct sock *sk, struct fou *fou, struct fou_cfg *cfg)
473{
474 udp_sk(sk)->encap_rcv = fou_udp_recv;
475 fou->protocol = cfg->protocol;
476 fou->udp_offloads.callbacks.gro_receive = fou_gro_receive;
477 fou->udp_offloads.callbacks.gro_complete = fou_gro_complete;
478 fou->udp_offloads.port = cfg->udp_config.local_udp_port;
479 fou->udp_offloads.ipproto = cfg->protocol;
480
481 return 0;
482}
483
484static int gue_encap_init(struct sock *sk, struct fou *fou, struct fou_cfg *cfg)
485{
486 udp_sk(sk)->encap_rcv = gue_udp_recv;
487 fou->udp_offloads.callbacks.gro_receive = gue_gro_receive;
488 fou->udp_offloads.callbacks.gro_complete = gue_gro_complete;
489 fou->udp_offloads.port = cfg->udp_config.local_udp_port;
490
491 return 0;
492}
493
Tom Herbert23461552014-09-17 12:25:56 -0700494static int fou_create(struct net *net, struct fou_cfg *cfg,
495 struct socket **sockp)
496{
497 struct fou *fou = NULL;
498 int err;
499 struct socket *sock = NULL;
500 struct sock *sk;
501
502 /* Open UDP socket */
503 err = udp_sock_create(net, &cfg->udp_config, &sock);
504 if (err < 0)
505 goto error;
506
507 /* Allocate FOU port structure */
508 fou = kzalloc(sizeof(*fou), GFP_KERNEL);
509 if (!fou) {
510 err = -ENOMEM;
511 goto error;
512 }
513
514 sk = sock->sk;
515
Tom Herbert37dd0242014-10-03 15:48:09 -0700516 fou->port = cfg->udp_config.local_udp_port;
517
518 /* Initial for fou type */
519 switch (cfg->type) {
520 case FOU_ENCAP_DIRECT:
521 err = fou_encap_init(sk, fou, cfg);
522 if (err)
523 goto error;
524 break;
525 case FOU_ENCAP_GUE:
526 err = gue_encap_init(sk, fou, cfg);
527 if (err)
528 goto error;
529 break;
530 default:
531 err = -EINVAL;
532 goto error;
533 }
Tom Herbert23461552014-09-17 12:25:56 -0700534
535 udp_sk(sk)->encap_type = 1;
536 udp_encap_enable();
537
538 sk->sk_user_data = fou;
539 fou->sock = sock;
540
541 udp_set_convert_csum(sk, true);
542
543 sk->sk_allocation = GFP_ATOMIC;
544
Tom Herbertafe93322014-09-17 12:25:57 -0700545 if (cfg->udp_config.family == AF_INET) {
546 err = udp_add_offload(&fou->udp_offloads);
547 if (err)
548 goto error;
549 }
550
Tom Herbert23461552014-09-17 12:25:56 -0700551 err = fou_add_to_port_list(fou);
552 if (err)
553 goto error;
554
555 if (sockp)
556 *sockp = sock;
557
558 return 0;
559
560error:
561 kfree(fou);
562 if (sock)
563 sock_release(sock);
564
565 return err;
566}
567
568static int fou_destroy(struct net *net, struct fou_cfg *cfg)
569{
570 struct fou *fou;
571 u16 port = cfg->udp_config.local_udp_port;
572 int err = -EINVAL;
573
574 spin_lock(&fou_lock);
575 list_for_each_entry(fou, &fou_list, list) {
576 if (fou->port == port) {
Tom Herbertafe93322014-09-17 12:25:57 -0700577 udp_del_offload(&fou->udp_offloads);
Tom Herbert23461552014-09-17 12:25:56 -0700578 fou_release(fou);
579 err = 0;
580 break;
581 }
582 }
583 spin_unlock(&fou_lock);
584
585 return err;
586}
587
588static struct genl_family fou_nl_family = {
589 .id = GENL_ID_GENERATE,
590 .hdrsize = 0,
591 .name = FOU_GENL_NAME,
592 .version = FOU_GENL_VERSION,
593 .maxattr = FOU_ATTR_MAX,
594 .netnsok = true,
595};
596
597static struct nla_policy fou_nl_policy[FOU_ATTR_MAX + 1] = {
598 [FOU_ATTR_PORT] = { .type = NLA_U16, },
599 [FOU_ATTR_AF] = { .type = NLA_U8, },
600 [FOU_ATTR_IPPROTO] = { .type = NLA_U8, },
Tom Herbert37dd0242014-10-03 15:48:09 -0700601 [FOU_ATTR_TYPE] = { .type = NLA_U8, },
Tom Herbert23461552014-09-17 12:25:56 -0700602};
603
604static int parse_nl_config(struct genl_info *info,
605 struct fou_cfg *cfg)
606{
607 memset(cfg, 0, sizeof(*cfg));
608
609 cfg->udp_config.family = AF_INET;
610
611 if (info->attrs[FOU_ATTR_AF]) {
612 u8 family = nla_get_u8(info->attrs[FOU_ATTR_AF]);
613
614 if (family != AF_INET && family != AF_INET6)
615 return -EINVAL;
616
617 cfg->udp_config.family = family;
618 }
619
620 if (info->attrs[FOU_ATTR_PORT]) {
621 u16 port = nla_get_u16(info->attrs[FOU_ATTR_PORT]);
622
623 cfg->udp_config.local_udp_port = port;
624 }
625
626 if (info->attrs[FOU_ATTR_IPPROTO])
627 cfg->protocol = nla_get_u8(info->attrs[FOU_ATTR_IPPROTO]);
628
Tom Herbert37dd0242014-10-03 15:48:09 -0700629 if (info->attrs[FOU_ATTR_TYPE])
630 cfg->type = nla_get_u8(info->attrs[FOU_ATTR_TYPE]);
631
Tom Herbert23461552014-09-17 12:25:56 -0700632 return 0;
633}
634
635static int fou_nl_cmd_add_port(struct sk_buff *skb, struct genl_info *info)
636{
637 struct fou_cfg cfg;
638 int err;
639
640 err = parse_nl_config(info, &cfg);
641 if (err)
642 return err;
643
644 return fou_create(&init_net, &cfg, NULL);
645}
646
647static int fou_nl_cmd_rm_port(struct sk_buff *skb, struct genl_info *info)
648{
649 struct fou_cfg cfg;
650
651 parse_nl_config(info, &cfg);
652
653 return fou_destroy(&init_net, &cfg);
654}
655
656static const struct genl_ops fou_nl_ops[] = {
657 {
658 .cmd = FOU_CMD_ADD,
659 .doit = fou_nl_cmd_add_port,
660 .policy = fou_nl_policy,
661 .flags = GENL_ADMIN_PERM,
662 },
663 {
664 .cmd = FOU_CMD_DEL,
665 .doit = fou_nl_cmd_rm_port,
666 .policy = fou_nl_policy,
667 .flags = GENL_ADMIN_PERM,
668 },
669};
670
Tom Herberta8c5f902014-11-12 11:54:09 -0800671size_t fou_encap_hlen(struct ip_tunnel_encap *e)
672{
673 return sizeof(struct udphdr);
674}
675EXPORT_SYMBOL(fou_encap_hlen);
676
677size_t gue_encap_hlen(struct ip_tunnel_encap *e)
678{
679 size_t len;
680 bool need_priv = false;
681
682 len = sizeof(struct udphdr) + sizeof(struct guehdr);
683
684 if (e->flags & TUNNEL_ENCAP_FLAG_REMCSUM) {
685 len += GUE_PLEN_REMCSUM;
686 need_priv = true;
687 }
688
689 len += need_priv ? GUE_LEN_PRIV : 0;
690
691 return len;
692}
693EXPORT_SYMBOL(gue_encap_hlen);
694
Tom Herbert63487ba2014-11-04 09:06:51 -0800695static void fou_build_udp(struct sk_buff *skb, struct ip_tunnel_encap *e,
696 struct flowi4 *fl4, u8 *protocol, __be16 sport)
697{
698 struct udphdr *uh;
699
700 skb_push(skb, sizeof(struct udphdr));
701 skb_reset_transport_header(skb);
702
703 uh = udp_hdr(skb);
704
705 uh->dest = e->dport;
706 uh->source = sport;
707 uh->len = htons(skb->len);
708 uh->check = 0;
709 udp_set_csum(!(e->flags & TUNNEL_ENCAP_FLAG_CSUM), skb,
710 fl4->saddr, fl4->daddr, skb->len);
711
712 *protocol = IPPROTO_UDP;
713}
714
715int fou_build_header(struct sk_buff *skb, struct ip_tunnel_encap *e,
716 u8 *protocol, struct flowi4 *fl4)
717{
718 bool csum = !!(e->flags & TUNNEL_ENCAP_FLAG_CSUM);
719 int type = csum ? SKB_GSO_UDP_TUNNEL_CSUM : SKB_GSO_UDP_TUNNEL;
720 __be16 sport;
721
722 skb = iptunnel_handle_offloads(skb, csum, type);
723
724 if (IS_ERR(skb))
725 return PTR_ERR(skb);
726
727 sport = e->sport ? : udp_flow_src_port(dev_net(skb->dev),
728 skb, 0, 0, false);
729 fou_build_udp(skb, e, fl4, protocol, sport);
730
731 return 0;
732}
733EXPORT_SYMBOL(fou_build_header);
734
735int gue_build_header(struct sk_buff *skb, struct ip_tunnel_encap *e,
736 u8 *protocol, struct flowi4 *fl4)
737{
738 bool csum = !!(e->flags & TUNNEL_ENCAP_FLAG_CSUM);
739 int type = csum ? SKB_GSO_UDP_TUNNEL_CSUM : SKB_GSO_UDP_TUNNEL;
740 struct guehdr *guehdr;
Tom Herbertb17f7092014-11-04 09:06:56 -0800741 size_t hdrlen, optlen = 0;
Tom Herbert63487ba2014-11-04 09:06:51 -0800742 __be16 sport;
Tom Herbert5024c332014-11-04 09:06:53 -0800743 void *data;
744 bool need_priv = false;
745
Tom Herbertb17f7092014-11-04 09:06:56 -0800746 if ((e->flags & TUNNEL_ENCAP_FLAG_REMCSUM) &&
747 skb->ip_summed == CHECKSUM_PARTIAL) {
748 csum = false;
749 optlen += GUE_PLEN_REMCSUM;
750 type |= SKB_GSO_TUNNEL_REMCSUM;
751 need_priv = true;
752 }
753
Tom Herbert5024c332014-11-04 09:06:53 -0800754 optlen += need_priv ? GUE_LEN_PRIV : 0;
Tom Herbert63487ba2014-11-04 09:06:51 -0800755
756 skb = iptunnel_handle_offloads(skb, csum, type);
757
758 if (IS_ERR(skb))
759 return PTR_ERR(skb);
760
761 /* Get source port (based on flow hash) before skb_push */
762 sport = e->sport ? : udp_flow_src_port(dev_net(skb->dev),
763 skb, 0, 0, false);
764
Tom Herbertb17f7092014-11-04 09:06:56 -0800765 hdrlen = sizeof(struct guehdr) + optlen;
766
767 skb_push(skb, hdrlen);
Tom Herbert63487ba2014-11-04 09:06:51 -0800768
769 guehdr = (struct guehdr *)skb->data;
770
Tom Herbert5024c332014-11-04 09:06:53 -0800771 guehdr->control = 0;
Tom Herbert63487ba2014-11-04 09:06:51 -0800772 guehdr->version = 0;
Tom Herbert5024c332014-11-04 09:06:53 -0800773 guehdr->hlen = optlen >> 2;
Tom Herbert63487ba2014-11-04 09:06:51 -0800774 guehdr->flags = 0;
Tom Herbert5024c332014-11-04 09:06:53 -0800775 guehdr->proto_ctype = *protocol;
776
777 data = &guehdr[1];
778
779 if (need_priv) {
780 __be32 *flags = data;
781
782 guehdr->flags |= GUE_FLAG_PRIV;
783 *flags = 0;
784 data += GUE_LEN_PRIV;
785
Tom Herbertb17f7092014-11-04 09:06:56 -0800786 if (type & SKB_GSO_TUNNEL_REMCSUM) {
787 u16 csum_start = skb_checksum_start_offset(skb);
788 __be16 *pd = data;
789
790 if (csum_start < hdrlen)
791 return -EINVAL;
792
793 csum_start -= hdrlen;
794 pd[0] = htons(csum_start);
795 pd[1] = htons(csum_start + skb->csum_offset);
796
797 if (!skb_is_gso(skb)) {
798 skb->ip_summed = CHECKSUM_NONE;
799 skb->encapsulation = 0;
800 }
801
802 *flags |= GUE_PFLAG_REMCSUM;
803 data += GUE_PLEN_REMCSUM;
804 }
805
Tom Herbert5024c332014-11-04 09:06:53 -0800806 }
Tom Herbert63487ba2014-11-04 09:06:51 -0800807
808 fou_build_udp(skb, e, fl4, protocol, sport);
809
810 return 0;
811}
812EXPORT_SYMBOL(gue_build_header);
813
Tom Herberta8c5f902014-11-12 11:54:09 -0800814#ifdef CONFIG_NET_FOU_IP_TUNNELS
815
816static const struct ip_tunnel_encap_ops __read_mostly fou_iptun_ops = {
817 .encap_hlen = fou_encap_hlen,
818 .build_header = fou_build_header,
819};
820
821static const struct ip_tunnel_encap_ops __read_mostly gue_iptun_ops = {
822 .encap_hlen = gue_encap_hlen,
823 .build_header = gue_build_header,
824};
825
826static int ip_tunnel_encap_add_fou_ops(void)
827{
828 int ret;
829
830 ret = ip_tunnel_encap_add_ops(&fou_iptun_ops, TUNNEL_ENCAP_FOU);
831 if (ret < 0) {
832 pr_err("can't add fou ops\n");
833 return ret;
834 }
835
836 ret = ip_tunnel_encap_add_ops(&gue_iptun_ops, TUNNEL_ENCAP_GUE);
837 if (ret < 0) {
838 pr_err("can't add gue ops\n");
839 ip_tunnel_encap_del_ops(&fou_iptun_ops, TUNNEL_ENCAP_FOU);
840 return ret;
841 }
842
843 return 0;
844}
845
846static void ip_tunnel_encap_del_fou_ops(void)
847{
848 ip_tunnel_encap_del_ops(&fou_iptun_ops, TUNNEL_ENCAP_FOU);
849 ip_tunnel_encap_del_ops(&gue_iptun_ops, TUNNEL_ENCAP_GUE);
850}
851
852#else
853
854static int ip_tunnel_encap_add_fou_ops(void)
855{
856 return 0;
857}
858
Thomas Graf882288c2014-11-13 12:48:21 +0100859static void ip_tunnel_encap_del_fou_ops(void)
Tom Herberta8c5f902014-11-12 11:54:09 -0800860{
861}
862
863#endif
864
Tom Herbert23461552014-09-17 12:25:56 -0700865static int __init fou_init(void)
866{
867 int ret;
868
869 ret = genl_register_family_with_ops(&fou_nl_family,
870 fou_nl_ops);
871
Tom Herberta8c5f902014-11-12 11:54:09 -0800872 if (ret < 0)
873 goto exit;
874
875 ret = ip_tunnel_encap_add_fou_ops();
876 if (ret < 0)
877 genl_unregister_family(&fou_nl_family);
878
879exit:
Tom Herbert23461552014-09-17 12:25:56 -0700880 return ret;
881}
882
883static void __exit fou_fini(void)
884{
885 struct fou *fou, *next;
886
Tom Herberta8c5f902014-11-12 11:54:09 -0800887 ip_tunnel_encap_del_fou_ops();
888
Tom Herbert23461552014-09-17 12:25:56 -0700889 genl_unregister_family(&fou_nl_family);
890
891 /* Close all the FOU sockets */
892
893 spin_lock(&fou_lock);
894 list_for_each_entry_safe(fou, next, &fou_list, list)
895 fou_release(fou);
896 spin_unlock(&fou_lock);
897}
898
899module_init(fou_init);
900module_exit(fou_fini);
901MODULE_AUTHOR("Tom Herbert <therbert@google.com>");
902MODULE_LICENSE("GPL");