blob: 0407bbc5a028be646cbbdab861489fa0314400db [file] [log] [blame]
Linus Torvalds1da177e2005-04-16 15:20:36 -07001/*
2 * Linux INET6 implementation
3 * FIB front-end.
4 *
5 * Authors:
YOSHIFUJI Hideaki1ab14572007-02-09 23:24:49 +09006 * Pedro Roque <roque@di.fc.ul.pt>
Linus Torvalds1da177e2005-04-16 15:20:36 -07007 *
Linus Torvalds1da177e2005-04-16 15:20:36 -07008 * This program is free software; you can redistribute it and/or
9 * modify it under the terms of the GNU General Public License
10 * as published by the Free Software Foundation; either version
11 * 2 of the License, or (at your option) any later version.
12 */
13
14/* Changes:
15 *
16 * YOSHIFUJI Hideaki @USAGI
17 * reworked default router selection.
18 * - respect outgoing interface
19 * - select from (probably) reachable routers (i.e.
20 * routers in REACHABLE, STALE, DELAY or PROBE states).
21 * - always select the same router if it is (probably)
22 * reachable. otherwise, round-robin the list.
YOSHIFUJI Hideakic0bece92006-08-23 17:23:25 -070023 * Ville Nuorvala
24 * Fixed routing subtrees.
Linus Torvalds1da177e2005-04-16 15:20:36 -070025 */
26
Joe Perchesf3213832012-05-15 14:11:53 +000027#define pr_fmt(fmt) "IPv6: " fmt
28
Randy Dunlap4fc268d2006-01-11 12:17:47 -080029#include <linux/capability.h>
Linus Torvalds1da177e2005-04-16 15:20:36 -070030#include <linux/errno.h>
Paul Gortmakerbc3b2d72011-07-15 11:47:34 -040031#include <linux/export.h>
Linus Torvalds1da177e2005-04-16 15:20:36 -070032#include <linux/types.h>
33#include <linux/times.h>
34#include <linux/socket.h>
35#include <linux/sockios.h>
36#include <linux/net.h>
37#include <linux/route.h>
38#include <linux/netdevice.h>
39#include <linux/in6.h>
YOSHIFUJI Hideaki7bc570c2008-04-03 09:22:53 +090040#include <linux/mroute6.h>
Linus Torvalds1da177e2005-04-16 15:20:36 -070041#include <linux/init.h>
Linus Torvalds1da177e2005-04-16 15:20:36 -070042#include <linux/if_arp.h>
Linus Torvalds1da177e2005-04-16 15:20:36 -070043#include <linux/proc_fs.h>
44#include <linux/seq_file.h>
Daniel Lezcano5b7c9312008-03-03 23:28:58 -080045#include <linux/nsproxy.h>
Tejun Heo5a0e3ad2010-03-24 17:04:11 +090046#include <linux/slab.h>
Wei Wang35732d02017-10-06 12:05:57 -070047#include <linux/jhash.h>
Eric W. Biederman457c4cb2007-09-12 12:01:34 +020048#include <net/net_namespace.h>
Linus Torvalds1da177e2005-04-16 15:20:36 -070049#include <net/snmp.h>
50#include <net/ipv6.h>
51#include <net/ip6_fib.h>
52#include <net/ip6_route.h>
53#include <net/ndisc.h>
54#include <net/addrconf.h>
55#include <net/tcp.h>
56#include <linux/rtnetlink.h>
57#include <net/dst.h>
Jiri Benc904af042015-08-20 13:56:31 +020058#include <net/dst_metadata.h>
Linus Torvalds1da177e2005-04-16 15:20:36 -070059#include <net/xfrm.h>
Tom Tucker8d717402006-07-30 20:43:36 -070060#include <net/netevent.h>
Thomas Graf21713eb2006-08-15 00:35:24 -070061#include <net/netlink.h>
Nicolas Dichtel51ebd312012-10-22 03:42:09 +000062#include <net/nexthop.h>
Roopa Prabhu19e42e42015-07-21 10:43:48 +020063#include <net/lwtunnel.h>
Jiri Benc904af042015-08-20 13:56:31 +020064#include <net/ip_tunnels.h>
David Ahernca254492015-10-12 11:47:10 -070065#include <net/l3mdev.h>
David Ahernb8115802015-11-19 12:24:22 -080066#include <trace/events/fib6.h>
Linus Torvalds1da177e2005-04-16 15:20:36 -070067
Linus Torvalds7c0f6ba2016-12-24 11:46:01 -080068#include <linux/uaccess.h>
Linus Torvalds1da177e2005-04-16 15:20:36 -070069
70#ifdef CONFIG_SYSCTL
71#include <linux/sysctl.h>
72#endif
73
Hannes Frederic Sowaafc154e2013-07-11 12:43:42 +020074enum rt6_nud_state {
Jiri Benc7e980562013-12-11 13:48:20 +010075 RT6_NUD_FAIL_HARD = -3,
76 RT6_NUD_FAIL_PROBE = -2,
77 RT6_NUD_FAIL_DO_RR = -1,
Hannes Frederic Sowaafc154e2013-07-11 12:43:42 +020078 RT6_NUD_SUCCEED = 1
79};
80
Linus Torvalds1da177e2005-04-16 15:20:36 -070081static struct dst_entry *ip6_dst_check(struct dst_entry *dst, u32 cookie);
David S. Miller0dbaee32010-12-13 12:52:14 -080082static unsigned int ip6_default_advmss(const struct dst_entry *dst);
Steffen Klassertebb762f2011-11-23 02:12:51 +000083static unsigned int ip6_mtu(const struct dst_entry *dst);
Linus Torvalds1da177e2005-04-16 15:20:36 -070084static struct dst_entry *ip6_negative_advice(struct dst_entry *);
85static void ip6_dst_destroy(struct dst_entry *);
86static void ip6_dst_ifdown(struct dst_entry *,
87 struct net_device *dev, int how);
Daniel Lezcano569d3642008-01-18 03:56:57 -080088static int ip6_dst_gc(struct dst_ops *ops);
Linus Torvalds1da177e2005-04-16 15:20:36 -070089
90static int ip6_pkt_discard(struct sk_buff *skb);
Eric W. Biedermanede20592015-10-07 16:48:47 -050091static int ip6_pkt_discard_out(struct net *net, struct sock *sk, struct sk_buff *skb);
Kamala R7150aed2013-12-02 19:55:21 +053092static int ip6_pkt_prohibit(struct sk_buff *skb);
Eric W. Biedermanede20592015-10-07 16:48:47 -050093static int ip6_pkt_prohibit_out(struct net *net, struct sock *sk, struct sk_buff *skb);
Linus Torvalds1da177e2005-04-16 15:20:36 -070094static void ip6_link_failure(struct sk_buff *skb);
David S. Miller6700c272012-07-17 03:29:28 -070095static void ip6_rt_update_pmtu(struct dst_entry *dst, struct sock *sk,
96 struct sk_buff *skb, u32 mtu);
97static void rt6_do_redirect(struct dst_entry *dst, struct sock *sk,
98 struct sk_buff *skb);
David Ahern8d1c8022018-04-17 17:33:26 -070099static int rt6_score_route(struct fib6_info *rt, int oif, int strict);
100static size_t rt6_nlmsg_size(struct fib6_info *rt);
David Ahernd4ead6b2018-04-17 17:33:16 -0700101static int rt6_fill_node(struct net *net, struct sk_buff *skb,
David Ahern8d1c8022018-04-17 17:33:26 -0700102 struct fib6_info *rt, struct dst_entry *dst,
David Ahernd4ead6b2018-04-17 17:33:16 -0700103 struct in6_addr *dest, struct in6_addr *src,
David Ahern16a16cd2017-02-02 12:37:11 -0800104 int iif, int type, u32 portid, u32 seq,
105 unsigned int flags);
David Ahern8d1c8022018-04-17 17:33:26 -0700106static struct rt6_info *rt6_find_cached_rt(struct fib6_info *rt,
Wei Wang35732d02017-10-06 12:05:57 -0700107 struct in6_addr *daddr,
108 struct in6_addr *saddr);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700109
YOSHIFUJI Hideaki70ceb4f2006-03-20 17:06:24 -0800110#ifdef CONFIG_IPV6_ROUTE_INFO
David Ahern8d1c8022018-04-17 17:33:26 -0700111static struct fib6_info *rt6_add_route_info(struct net *net,
Eric Dumazetb71d1d42011-04-22 04:53:02 +0000112 const struct in6_addr *prefix, int prefixlen,
David Ahern830218c2016-10-24 10:52:35 -0700113 const struct in6_addr *gwaddr,
114 struct net_device *dev,
Eric Dumazet95c96172012-04-15 05:58:06 +0000115 unsigned int pref);
David Ahern8d1c8022018-04-17 17:33:26 -0700116static struct fib6_info *rt6_get_route_info(struct net *net,
Eric Dumazetb71d1d42011-04-22 04:53:02 +0000117 const struct in6_addr *prefix, int prefixlen,
David Ahern830218c2016-10-24 10:52:35 -0700118 const struct in6_addr *gwaddr,
119 struct net_device *dev);
YOSHIFUJI Hideaki70ceb4f2006-03-20 17:06:24 -0800120#endif
121
Martin KaFai Lau8d0b94a2015-05-22 20:56:04 -0700122struct uncached_list {
123 spinlock_t lock;
124 struct list_head head;
125};
126
127static DEFINE_PER_CPU_ALIGNED(struct uncached_list, rt6_uncached_list);
128
Xin Long510c3212018-02-14 19:06:02 +0800129void rt6_uncached_list_add(struct rt6_info *rt)
Martin KaFai Lau8d0b94a2015-05-22 20:56:04 -0700130{
131 struct uncached_list *ul = raw_cpu_ptr(&rt6_uncached_list);
132
Martin KaFai Lau8d0b94a2015-05-22 20:56:04 -0700133 rt->rt6i_uncached_list = ul;
134
135 spin_lock_bh(&ul->lock);
136 list_add_tail(&rt->rt6i_uncached, &ul->head);
137 spin_unlock_bh(&ul->lock);
138}
139
Xin Long510c3212018-02-14 19:06:02 +0800140void rt6_uncached_list_del(struct rt6_info *rt)
Martin KaFai Lau8d0b94a2015-05-22 20:56:04 -0700141{
142 if (!list_empty(&rt->rt6i_uncached)) {
143 struct uncached_list *ul = rt->rt6i_uncached_list;
Wei Wang81eb8442017-10-06 12:06:11 -0700144 struct net *net = dev_net(rt->dst.dev);
Martin KaFai Lau8d0b94a2015-05-22 20:56:04 -0700145
146 spin_lock_bh(&ul->lock);
147 list_del(&rt->rt6i_uncached);
Wei Wang81eb8442017-10-06 12:06:11 -0700148 atomic_dec(&net->ipv6.rt6_stats->fib_rt_uncache);
Martin KaFai Lau8d0b94a2015-05-22 20:56:04 -0700149 spin_unlock_bh(&ul->lock);
150 }
151}
152
153static void rt6_uncached_list_flush_dev(struct net *net, struct net_device *dev)
154{
155 struct net_device *loopback_dev = net->loopback_dev;
156 int cpu;
157
Eric W. Biedermane332bc62015-10-12 11:02:08 -0500158 if (dev == loopback_dev)
159 return;
160
Martin KaFai Lau8d0b94a2015-05-22 20:56:04 -0700161 for_each_possible_cpu(cpu) {
162 struct uncached_list *ul = per_cpu_ptr(&rt6_uncached_list, cpu);
163 struct rt6_info *rt;
164
165 spin_lock_bh(&ul->lock);
166 list_for_each_entry(rt, &ul->head, rt6i_uncached) {
167 struct inet6_dev *rt_idev = rt->rt6i_idev;
168 struct net_device *rt_dev = rt->dst.dev;
169
Eric W. Biedermane332bc62015-10-12 11:02:08 -0500170 if (rt_idev->dev == dev) {
Martin KaFai Lau8d0b94a2015-05-22 20:56:04 -0700171 rt->rt6i_idev = in6_dev_get(loopback_dev);
172 in6_dev_put(rt_idev);
173 }
174
Eric W. Biedermane332bc62015-10-12 11:02:08 -0500175 if (rt_dev == dev) {
Martin KaFai Lau8d0b94a2015-05-22 20:56:04 -0700176 rt->dst.dev = loopback_dev;
177 dev_hold(rt->dst.dev);
178 dev_put(rt_dev);
179 }
180 }
181 spin_unlock_bh(&ul->lock);
182 }
183}
184
David Ahernf8a1b432018-04-17 17:33:21 -0700185static inline const void *choose_neigh_daddr(const struct in6_addr *p,
David S. Millerf894cbf2012-07-02 21:52:24 -0700186 struct sk_buff *skb,
187 const void *daddr)
David S. Miller39232972012-01-26 15:22:32 -0500188{
David S. Millera7563f32012-01-26 16:29:16 -0500189 if (!ipv6_addr_any(p))
David S. Miller39232972012-01-26 15:22:32 -0500190 return (const void *) p;
David S. Millerf894cbf2012-07-02 21:52:24 -0700191 else if (skb)
192 return &ipv6_hdr(skb)->daddr;
David S. Miller39232972012-01-26 15:22:32 -0500193 return daddr;
194}
195
David Ahernf8a1b432018-04-17 17:33:21 -0700196struct neighbour *ip6_neigh_lookup(const struct in6_addr *gw,
197 struct net_device *dev,
198 struct sk_buff *skb,
199 const void *daddr)
David S. Millerd3aaeb32011-07-18 00:40:17 -0700200{
David S. Miller39232972012-01-26 15:22:32 -0500201 struct neighbour *n;
202
David Ahernf8a1b432018-04-17 17:33:21 -0700203 daddr = choose_neigh_daddr(gw, skb, daddr);
204 n = __ipv6_neigh_lookup(dev, daddr);
David S. Millerf83c7792011-12-28 15:41:23 -0500205 if (n)
206 return n;
David Ahernf8a1b432018-04-17 17:33:21 -0700207 return neigh_create(&nd_tbl, daddr, dev);
208}
209
210static struct neighbour *ip6_dst_neigh_lookup(const struct dst_entry *dst,
211 struct sk_buff *skb,
212 const void *daddr)
213{
214 const struct rt6_info *rt = container_of(dst, struct rt6_info, dst);
215
216 return ip6_neigh_lookup(&rt->rt6i_gateway, dst->dev, skb, daddr);
David S. Millerf83c7792011-12-28 15:41:23 -0500217}
218
Julian Anastasov63fca652017-02-06 23:14:15 +0200219static void ip6_confirm_neigh(const struct dst_entry *dst, const void *daddr)
220{
221 struct net_device *dev = dst->dev;
222 struct rt6_info *rt = (struct rt6_info *)dst;
223
David Ahernf8a1b432018-04-17 17:33:21 -0700224 daddr = choose_neigh_daddr(&rt->rt6i_gateway, NULL, daddr);
Julian Anastasov63fca652017-02-06 23:14:15 +0200225 if (!daddr)
226 return;
227 if (dev->flags & (IFF_NOARP | IFF_LOOPBACK))
228 return;
229 if (ipv6_addr_is_multicast((const struct in6_addr *)daddr))
230 return;
231 __ipv6_confirm_neigh(dev, daddr);
232}
233
Daniel Lezcano9a7ec3a2008-03-04 13:48:53 -0800234static struct dst_ops ip6_dst_ops_template = {
Linus Torvalds1da177e2005-04-16 15:20:36 -0700235 .family = AF_INET6,
Linus Torvalds1da177e2005-04-16 15:20:36 -0700236 .gc = ip6_dst_gc,
237 .gc_thresh = 1024,
238 .check = ip6_dst_check,
David S. Miller0dbaee32010-12-13 12:52:14 -0800239 .default_advmss = ip6_default_advmss,
Steffen Klassertebb762f2011-11-23 02:12:51 +0000240 .mtu = ip6_mtu,
David Ahernd4ead6b2018-04-17 17:33:16 -0700241 .cow_metrics = dst_cow_metrics_generic,
Linus Torvalds1da177e2005-04-16 15:20:36 -0700242 .destroy = ip6_dst_destroy,
243 .ifdown = ip6_dst_ifdown,
244 .negative_advice = ip6_negative_advice,
245 .link_failure = ip6_link_failure,
246 .update_pmtu = ip6_rt_update_pmtu,
David S. Miller6e157b62012-07-12 00:05:02 -0700247 .redirect = rt6_do_redirect,
Eric W. Biederman9f8955c2015-10-07 16:48:39 -0500248 .local_out = __ip6_local_out,
David Ahernf8a1b432018-04-17 17:33:21 -0700249 .neigh_lookup = ip6_dst_neigh_lookup,
Julian Anastasov63fca652017-02-06 23:14:15 +0200250 .confirm_neigh = ip6_confirm_neigh,
Linus Torvalds1da177e2005-04-16 15:20:36 -0700251};
252
Steffen Klassertebb762f2011-11-23 02:12:51 +0000253static unsigned int ip6_blackhole_mtu(const struct dst_entry *dst)
Roland Dreierec831ea2011-01-31 13:16:00 -0800254{
Steffen Klassert618f9bc2011-11-23 02:13:31 +0000255 unsigned int mtu = dst_metric_raw(dst, RTAX_MTU);
256
257 return mtu ? : dst->dev->mtu;
Roland Dreierec831ea2011-01-31 13:16:00 -0800258}
259
David S. Miller6700c272012-07-17 03:29:28 -0700260static void ip6_rt_blackhole_update_pmtu(struct dst_entry *dst, struct sock *sk,
261 struct sk_buff *skb, u32 mtu)
David S. Miller14e50e52007-05-24 18:17:54 -0700262{
263}
264
David S. Miller6700c272012-07-17 03:29:28 -0700265static void ip6_rt_blackhole_redirect(struct dst_entry *dst, struct sock *sk,
266 struct sk_buff *skb)
David S. Millerb587ee32012-07-12 00:39:24 -0700267{
268}
269
David S. Miller14e50e52007-05-24 18:17:54 -0700270static struct dst_ops ip6_dst_blackhole_ops = {
271 .family = AF_INET6,
David S. Miller14e50e52007-05-24 18:17:54 -0700272 .destroy = ip6_dst_destroy,
273 .check = ip6_dst_check,
Steffen Klassertebb762f2011-11-23 02:12:51 +0000274 .mtu = ip6_blackhole_mtu,
Eric Dumazet214f45c2011-02-18 11:39:01 -0800275 .default_advmss = ip6_default_advmss,
David S. Miller14e50e52007-05-24 18:17:54 -0700276 .update_pmtu = ip6_rt_blackhole_update_pmtu,
David S. Millerb587ee32012-07-12 00:39:24 -0700277 .redirect = ip6_rt_blackhole_redirect,
Martin KaFai Lau0a1f5962015-10-15 16:39:58 -0700278 .cow_metrics = dst_cow_metrics_generic,
David Ahernf8a1b432018-04-17 17:33:21 -0700279 .neigh_lookup = ip6_dst_neigh_lookup,
David S. Miller14e50e52007-05-24 18:17:54 -0700280};
281
David S. Miller62fa8a82011-01-26 20:51:05 -0800282static const u32 ip6_template_metrics[RTAX_MAX] = {
Li RongQing14edd872012-10-24 14:01:18 +0800283 [RTAX_HOPLIMIT - 1] = 0,
David S. Miller62fa8a82011-01-26 20:51:05 -0800284};
285
David Ahern8d1c8022018-04-17 17:33:26 -0700286static const struct fib6_info fib6_null_entry_template = {
David Ahern93c2fb22018-04-18 15:38:59 -0700287 .fib6_flags = (RTF_REJECT | RTF_NONEXTHOP),
288 .fib6_protocol = RTPROT_KERNEL,
289 .fib6_metric = ~(u32)0,
290 .fib6_ref = ATOMIC_INIT(1),
David Ahern421842e2018-04-17 17:33:18 -0700291 .fib6_type = RTN_UNREACHABLE,
292 .fib6_metrics = (struct dst_metrics *)&dst_default_metrics,
293};
294
Eric Dumazetfb0af4c2012-09-11 21:47:51 +0000295static const struct rt6_info ip6_null_entry_template = {
Changli Gaod8d1f302010-06-10 23:31:35 -0700296 .dst = {
297 .__refcnt = ATOMIC_INIT(1),
298 .__use = 1,
Nicolas Dichtel2c20cbd2012-09-10 22:09:47 +0000299 .obsolete = DST_OBSOLETE_FORCE_CHK,
Changli Gaod8d1f302010-06-10 23:31:35 -0700300 .error = -ENETUNREACH,
Changli Gaod8d1f302010-06-10 23:31:35 -0700301 .input = ip6_pkt_discard,
302 .output = ip6_pkt_discard_out,
Linus Torvalds1da177e2005-04-16 15:20:36 -0700303 },
304 .rt6i_flags = (RTF_REJECT | RTF_NONEXTHOP),
Linus Torvalds1da177e2005-04-16 15:20:36 -0700305};
306
Thomas Graf101367c2006-08-04 03:39:02 -0700307#ifdef CONFIG_IPV6_MULTIPLE_TABLES
308
Eric Dumazetfb0af4c2012-09-11 21:47:51 +0000309static const struct rt6_info ip6_prohibit_entry_template = {
Changli Gaod8d1f302010-06-10 23:31:35 -0700310 .dst = {
311 .__refcnt = ATOMIC_INIT(1),
312 .__use = 1,
Nicolas Dichtel2c20cbd2012-09-10 22:09:47 +0000313 .obsolete = DST_OBSOLETE_FORCE_CHK,
Changli Gaod8d1f302010-06-10 23:31:35 -0700314 .error = -EACCES,
Changli Gaod8d1f302010-06-10 23:31:35 -0700315 .input = ip6_pkt_prohibit,
316 .output = ip6_pkt_prohibit_out,
Thomas Graf101367c2006-08-04 03:39:02 -0700317 },
318 .rt6i_flags = (RTF_REJECT | RTF_NONEXTHOP),
Thomas Graf101367c2006-08-04 03:39:02 -0700319};
320
Eric Dumazetfb0af4c2012-09-11 21:47:51 +0000321static const struct rt6_info ip6_blk_hole_entry_template = {
Changli Gaod8d1f302010-06-10 23:31:35 -0700322 .dst = {
323 .__refcnt = ATOMIC_INIT(1),
324 .__use = 1,
Nicolas Dichtel2c20cbd2012-09-10 22:09:47 +0000325 .obsolete = DST_OBSOLETE_FORCE_CHK,
Changli Gaod8d1f302010-06-10 23:31:35 -0700326 .error = -EINVAL,
Changli Gaod8d1f302010-06-10 23:31:35 -0700327 .input = dst_discard,
Eric W. Biedermanede20592015-10-07 16:48:47 -0500328 .output = dst_discard_out,
Thomas Graf101367c2006-08-04 03:39:02 -0700329 },
330 .rt6i_flags = (RTF_REJECT | RTF_NONEXTHOP),
Thomas Graf101367c2006-08-04 03:39:02 -0700331};
332
333#endif
334
Martin KaFai Lauebfa45f2015-10-15 16:39:57 -0700335static void rt6_info_init(struct rt6_info *rt)
336{
337 struct dst_entry *dst = &rt->dst;
338
339 memset(dst + 1, 0, sizeof(*rt) - sizeof(*dst));
Martin KaFai Lauebfa45f2015-10-15 16:39:57 -0700340 INIT_LIST_HEAD(&rt->rt6i_uncached);
341}
342
Linus Torvalds1da177e2005-04-16 15:20:36 -0700343/* allocate dst with ip6_dst_ops */
David Ahern93531c62018-04-17 17:33:25 -0700344struct rt6_info *ip6_dst_alloc(struct net *net, struct net_device *dev,
345 int flags)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700346{
David S. Miller97bab732012-06-09 22:36:36 -0700347 struct rt6_info *rt = dst_alloc(&net->ipv6.ip6_dst_ops, dev,
Wei Wangb2a9c0e2017-06-17 10:42:41 -0700348 1, DST_OBSOLETE_FORCE_CHK, flags);
David S. Millercf911662011-04-28 14:31:47 -0700349
Wei Wang81eb8442017-10-06 12:06:11 -0700350 if (rt) {
Martin KaFai Lauebfa45f2015-10-15 16:39:57 -0700351 rt6_info_init(rt);
Wei Wang81eb8442017-10-06 12:06:11 -0700352 atomic_inc(&net->ipv6.rt6_stats->fib_rt_alloc);
353 }
Steffen Klassert81048912012-07-05 23:37:09 +0000354
David S. Millercf911662011-04-28 14:31:47 -0700355 return rt;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700356}
David Ahern9ab179d2016-04-07 11:10:06 -0700357EXPORT_SYMBOL(ip6_dst_alloc);
Martin KaFai Laud52d3992015-05-22 20:56:06 -0700358
Linus Torvalds1da177e2005-04-16 15:20:36 -0700359static void ip6_dst_destroy(struct dst_entry *dst)
360{
361 struct rt6_info *rt = (struct rt6_info *)dst;
David Aherna68886a2018-04-20 15:38:02 -0700362 struct fib6_info *from;
Martin KaFai Lau8d0b94a2015-05-22 20:56:04 -0700363 struct inet6_dev *idev;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700364
Martin KaFai Lau4b32b5a2015-04-28 13:03:06 -0700365 dst_destroy_metrics_generic(dst);
Martin KaFai Lau8d0b94a2015-05-22 20:56:04 -0700366 rt6_uncached_list_del(rt);
367
368 idev = rt->rt6i_idev;
David S. Miller38308472011-12-03 18:02:47 -0500369 if (idev) {
Linus Torvalds1da177e2005-04-16 15:20:36 -0700370 rt->rt6i_idev = NULL;
371 in6_dev_put(idev);
YOSHIFUJI Hideaki1ab14572007-02-09 23:24:49 +0900372 }
David Ahernd4ead6b2018-04-17 17:33:16 -0700373
David Aherna68886a2018-04-20 15:38:02 -0700374 rcu_read_lock();
375 from = rcu_dereference(rt->from);
376 rcu_assign_pointer(rt->from, NULL);
David Ahern93531c62018-04-17 17:33:25 -0700377 fib6_info_release(from);
David Aherna68886a2018-04-20 15:38:02 -0700378 rcu_read_unlock();
David S. Millerb3419362010-11-30 12:27:11 -0800379}
380
Linus Torvalds1da177e2005-04-16 15:20:36 -0700381static void ip6_dst_ifdown(struct dst_entry *dst, struct net_device *dev,
382 int how)
383{
384 struct rt6_info *rt = (struct rt6_info *)dst;
385 struct inet6_dev *idev = rt->rt6i_idev;
Denis V. Lunev5a3e55d2007-12-07 00:38:10 -0800386 struct net_device *loopback_dev =
YOSHIFUJI Hideakic346dca2008-03-25 21:47:49 +0900387 dev_net(dev)->loopback_dev;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700388
Wei Wange5645f52017-08-14 10:44:59 -0700389 if (idev && idev->dev != loopback_dev) {
390 struct inet6_dev *loopback_idev = in6_dev_get(loopback_dev);
391 if (loopback_idev) {
392 rt->rt6i_idev = loopback_idev;
393 in6_dev_put(idev);
David S. Miller97cac082012-07-02 22:43:47 -0700394 }
Linus Torvalds1da177e2005-04-16 15:20:36 -0700395 }
396}
397
Martin KaFai Lau5973fb12015-11-11 11:51:07 -0800398static bool __rt6_check_expired(const struct rt6_info *rt)
399{
400 if (rt->rt6i_flags & RTF_EXPIRES)
401 return time_after(jiffies, rt->dst.expires);
402 else
403 return false;
404}
405
Eric Dumazeta50feda2012-05-18 18:57:34 +0000406static bool rt6_check_expired(const struct rt6_info *rt)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700407{
David Aherna68886a2018-04-20 15:38:02 -0700408 struct fib6_info *from;
409
410 from = rcu_dereference(rt->from);
411
Gao feng1716a962012-04-06 00:13:10 +0000412 if (rt->rt6i_flags & RTF_EXPIRES) {
413 if (time_after(jiffies, rt->dst.expires))
Eric Dumazeta50feda2012-05-18 18:57:34 +0000414 return true;
David Aherna68886a2018-04-20 15:38:02 -0700415 } else if (from) {
Xin Long1e2ea8a2017-08-26 20:10:10 +0800416 return rt->dst.obsolete != DST_OBSOLETE_FORCE_CHK ||
David Aherna68886a2018-04-20 15:38:02 -0700417 fib6_check_expired(from);
Gao feng1716a962012-04-06 00:13:10 +0000418 }
Eric Dumazeta50feda2012-05-18 18:57:34 +0000419 return false;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700420}
421
David Ahern8d1c8022018-04-17 17:33:26 -0700422static struct fib6_info *rt6_multipath_select(const struct net *net,
423 struct fib6_info *match,
Nicolas Dichtel52bd4c02013-06-28 17:35:48 +0200424 struct flowi6 *fl6, int oif,
David Ahernb75cc8f2018-03-02 08:32:17 -0800425 const struct sk_buff *skb,
Nicolas Dichtel52bd4c02013-06-28 17:35:48 +0200426 int strict)
Nicolas Dichtel51ebd312012-10-22 03:42:09 +0000427{
David Ahern8d1c8022018-04-17 17:33:26 -0700428 struct fib6_info *sibling, *next_sibling;
Nicolas Dichtel51ebd312012-10-22 03:42:09 +0000429
Jakub Sitnickib673d6c2017-08-23 09:58:31 +0200430 /* We might have already computed the hash for ICMPv6 errors. In such
431 * case it will always be non-zero. Otherwise now is the time to do it.
432 */
433 if (!fl6->mp_hash)
David Ahernb4bac172018-03-02 08:32:18 -0800434 fl6->mp_hash = rt6_multipath_hash(net, fl6, skb, NULL);
Jakub Sitnickib673d6c2017-08-23 09:58:31 +0200435
David Ahern5e670d82018-04-17 17:33:14 -0700436 if (fl6->mp_hash <= atomic_read(&match->fib6_nh.nh_upper_bound))
Ido Schimmel3d709f62018-01-09 16:40:27 +0200437 return match;
Ido Schimmelbbfcd772017-11-21 09:50:12 +0200438
David Ahern93c2fb22018-04-18 15:38:59 -0700439 list_for_each_entry_safe(sibling, next_sibling, &match->fib6_siblings,
440 fib6_siblings) {
David Ahern5e670d82018-04-17 17:33:14 -0700441 int nh_upper_bound;
442
443 nh_upper_bound = atomic_read(&sibling->fib6_nh.nh_upper_bound);
444 if (fl6->mp_hash > nh_upper_bound)
Ido Schimmel3d709f62018-01-09 16:40:27 +0200445 continue;
446 if (rt6_score_route(sibling, oif, strict) < 0)
447 break;
448 match = sibling;
449 break;
450 }
451
Nicolas Dichtel51ebd312012-10-22 03:42:09 +0000452 return match;
453}
454
Linus Torvalds1da177e2005-04-16 15:20:36 -0700455/*
Wei Wang66f5d6c2017-10-06 12:06:10 -0700456 * Route lookup. rcu_read_lock() should be held.
Linus Torvalds1da177e2005-04-16 15:20:36 -0700457 */
458
David Ahern8d1c8022018-04-17 17:33:26 -0700459static inline struct fib6_info *rt6_device_match(struct net *net,
460 struct fib6_info *rt,
Eric Dumazetb71d1d42011-04-22 04:53:02 +0000461 const struct in6_addr *saddr,
Linus Torvalds1da177e2005-04-16 15:20:36 -0700462 int oif,
YOSHIFUJI Hideakid4208952008-06-27 20:14:54 -0700463 int flags)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700464{
David Ahern8d1c8022018-04-17 17:33:26 -0700465 struct fib6_info *sprt;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700466
David Ahern5e670d82018-04-17 17:33:14 -0700467 if (!oif && ipv6_addr_any(saddr) &&
468 !(rt->fib6_nh.nh_flags & RTNH_F_DEAD))
Ido Schimmel8067bb82018-01-07 12:45:09 +0200469 return rt;
YOSHIFUJI Hideakidd3abc42008-07-02 18:30:18 +0900470
David Miller071fb372017-11-28 15:40:15 -0500471 for (sprt = rt; sprt; sprt = rcu_dereference(sprt->rt6_next)) {
David Ahern5e670d82018-04-17 17:33:14 -0700472 const struct net_device *dev = sprt->fib6_nh.nh_dev;
YOSHIFUJI Hideakidd3abc42008-07-02 18:30:18 +0900473
David Ahern5e670d82018-04-17 17:33:14 -0700474 if (sprt->fib6_nh.nh_flags & RTNH_F_DEAD)
Ido Schimmel8067bb82018-01-07 12:45:09 +0200475 continue;
476
YOSHIFUJI Hideakidd3abc42008-07-02 18:30:18 +0900477 if (oif) {
Linus Torvalds1da177e2005-04-16 15:20:36 -0700478 if (dev->ifindex == oif)
479 return sprt;
YOSHIFUJI Hideakidd3abc42008-07-02 18:30:18 +0900480 } else {
481 if (ipv6_chk_addr(net, saddr, dev,
482 flags & RT6_LOOKUP_F_IFACE))
483 return sprt;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700484 }
YOSHIFUJI Hideakidd3abc42008-07-02 18:30:18 +0900485 }
Linus Torvalds1da177e2005-04-16 15:20:36 -0700486
David Aherneea68cd2018-04-18 15:39:02 -0700487 if (oif && flags & RT6_LOOKUP_F_IFACE)
488 return net->ipv6.fib6_null_entry;
Ido Schimmel8067bb82018-01-07 12:45:09 +0200489
David Ahern421842e2018-04-17 17:33:18 -0700490 return rt->fib6_nh.nh_flags & RTNH_F_DEAD ? net->ipv6.fib6_null_entry : rt;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700491}
492
YOSHIFUJI Hideaki27097252006-03-20 17:05:13 -0800493#ifdef CONFIG_IPV6_ROUTER_PREF
Hannes Frederic Sowac2f17e82013-10-21 06:17:15 +0200494struct __rt6_probe_work {
495 struct work_struct work;
496 struct in6_addr target;
497 struct net_device *dev;
498};
499
500static void rt6_probe_deferred(struct work_struct *w)
501{
502 struct in6_addr mcaddr;
503 struct __rt6_probe_work *work =
504 container_of(w, struct __rt6_probe_work, work);
505
506 addrconf_addr_solict_mult(&work->target, &mcaddr);
Erik Nordmarkadc176c2016-12-02 14:00:08 -0800507 ndisc_send_ns(work->dev, &work->target, &mcaddr, NULL, 0);
Hannes Frederic Sowac2f17e82013-10-21 06:17:15 +0200508 dev_put(work->dev);
Michael Büsch662f5532015-02-08 10:14:07 +0100509 kfree(work);
Hannes Frederic Sowac2f17e82013-10-21 06:17:15 +0200510}
511
David Ahern8d1c8022018-04-17 17:33:26 -0700512static void rt6_probe(struct fib6_info *rt)
YOSHIFUJI Hideaki27097252006-03-20 17:05:13 -0800513{
Martin KaFai Lau990edb42015-07-24 09:57:42 -0700514 struct __rt6_probe_work *work;
David Ahern5e670d82018-04-17 17:33:14 -0700515 const struct in6_addr *nh_gw;
Eric Dumazetf2c31e32011-07-29 19:00:53 +0000516 struct neighbour *neigh;
David Ahern5e670d82018-04-17 17:33:14 -0700517 struct net_device *dev;
518
YOSHIFUJI Hideaki27097252006-03-20 17:05:13 -0800519 /*
520 * Okay, this does not seem to be appropriate
521 * for now, however, we need to check if it
522 * is really so; aka Router Reachability Probing.
523 *
524 * Router Reachability Probe MUST be rate-limited
525 * to no more than one per minute.
526 */
David Ahern93c2fb22018-04-18 15:38:59 -0700527 if (!rt || !(rt->fib6_flags & RTF_GATEWAY))
Amerigo Wangfdd66812012-09-10 02:48:44 +0000528 return;
David Ahern5e670d82018-04-17 17:33:14 -0700529
530 nh_gw = &rt->fib6_nh.nh_gw;
531 dev = rt->fib6_nh.nh_dev;
YOSHIFUJI Hideaki / 吉藤英明2152cae2013-01-17 12:53:43 +0000532 rcu_read_lock_bh();
David Ahern5e670d82018-04-17 17:33:14 -0700533 neigh = __ipv6_neigh_lookup_noref(dev, nh_gw);
YOSHIFUJI Hideaki / 吉藤英明2152cae2013-01-17 12:53:43 +0000534 if (neigh) {
David Aherndcd1f572018-04-18 15:39:05 -0700535 struct inet6_dev *idev;
536
Martin KaFai Lau8d6c31b2015-07-24 09:57:43 -0700537 if (neigh->nud_state & NUD_VALID)
538 goto out;
539
David Aherndcd1f572018-04-18 15:39:05 -0700540 idev = __in6_dev_get(dev);
Martin KaFai Lau990edb42015-07-24 09:57:42 -0700541 work = NULL;
YOSHIFUJI Hideaki / 吉藤英明2152cae2013-01-17 12:53:43 +0000542 write_lock(&neigh->lock);
Martin KaFai Lau990edb42015-07-24 09:57:42 -0700543 if (!(neigh->nud_state & NUD_VALID) &&
544 time_after(jiffies,
David Aherndcd1f572018-04-18 15:39:05 -0700545 neigh->updated + idev->cnf.rtr_probe_interval)) {
Martin KaFai Lau990edb42015-07-24 09:57:42 -0700546 work = kmalloc(sizeof(*work), GFP_ATOMIC);
547 if (work)
548 __neigh_set_probe_once(neigh);
Hannes Frederic Sowac2f17e82013-10-21 06:17:15 +0200549 }
YOSHIFUJI Hideaki / 吉藤英明2152cae2013-01-17 12:53:43 +0000550 write_unlock(&neigh->lock);
Martin KaFai Lau990edb42015-07-24 09:57:42 -0700551 } else {
552 work = kmalloc(sizeof(*work), GFP_ATOMIC);
Eric Dumazetf2c31e32011-07-29 19:00:53 +0000553 }
Martin KaFai Lau990edb42015-07-24 09:57:42 -0700554
555 if (work) {
556 INIT_WORK(&work->work, rt6_probe_deferred);
David Ahern5e670d82018-04-17 17:33:14 -0700557 work->target = *nh_gw;
558 dev_hold(dev);
559 work->dev = dev;
Martin KaFai Lau990edb42015-07-24 09:57:42 -0700560 schedule_work(&work->work);
561 }
562
Martin KaFai Lau8d6c31b2015-07-24 09:57:43 -0700563out:
YOSHIFUJI Hideaki / 吉藤英明2152cae2013-01-17 12:53:43 +0000564 rcu_read_unlock_bh();
YOSHIFUJI Hideaki27097252006-03-20 17:05:13 -0800565}
566#else
David Ahern8d1c8022018-04-17 17:33:26 -0700567static inline void rt6_probe(struct fib6_info *rt)
YOSHIFUJI Hideaki27097252006-03-20 17:05:13 -0800568{
YOSHIFUJI Hideaki27097252006-03-20 17:05:13 -0800569}
570#endif
571
Linus Torvalds1da177e2005-04-16 15:20:36 -0700572/*
YOSHIFUJI Hideaki554cfb72006-03-20 17:00:26 -0800573 * Default Router Selection (RFC 2461 6.3.6)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700574 */
David Ahern8d1c8022018-04-17 17:33:26 -0700575static inline int rt6_check_dev(struct fib6_info *rt, int oif)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700576{
David Ahern5e670d82018-04-17 17:33:14 -0700577 const struct net_device *dev = rt->fib6_nh.nh_dev;
578
David S. Miller161980f2007-04-06 11:42:27 -0700579 if (!oif || dev->ifindex == oif)
YOSHIFUJI Hideaki554cfb72006-03-20 17:00:26 -0800580 return 2;
David S. Miller161980f2007-04-06 11:42:27 -0700581 return 0;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700582}
583
David Ahern8d1c8022018-04-17 17:33:26 -0700584static inline enum rt6_nud_state rt6_check_neigh(struct fib6_info *rt)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700585{
Hannes Frederic Sowaafc154e2013-07-11 12:43:42 +0200586 enum rt6_nud_state ret = RT6_NUD_FAIL_HARD;
David Ahern5e670d82018-04-17 17:33:14 -0700587 struct neighbour *neigh;
Eric Dumazetf2c31e32011-07-29 19:00:53 +0000588
David Ahern93c2fb22018-04-18 15:38:59 -0700589 if (rt->fib6_flags & RTF_NONEXTHOP ||
590 !(rt->fib6_flags & RTF_GATEWAY))
Hannes Frederic Sowaafc154e2013-07-11 12:43:42 +0200591 return RT6_NUD_SUCCEED;
YOSHIFUJI Hideaki / 吉藤英明145a3622013-01-17 12:53:38 +0000592
593 rcu_read_lock_bh();
David Ahern5e670d82018-04-17 17:33:14 -0700594 neigh = __ipv6_neigh_lookup_noref(rt->fib6_nh.nh_dev,
595 &rt->fib6_nh.nh_gw);
YOSHIFUJI Hideaki / 吉藤英明145a3622013-01-17 12:53:38 +0000596 if (neigh) {
597 read_lock(&neigh->lock);
YOSHIFUJI Hideaki554cfb72006-03-20 17:00:26 -0800598 if (neigh->nud_state & NUD_VALID)
Hannes Frederic Sowaafc154e2013-07-11 12:43:42 +0200599 ret = RT6_NUD_SUCCEED;
YOSHIFUJI Hideaki398bcbe2008-01-19 00:35:16 -0800600#ifdef CONFIG_IPV6_ROUTER_PREF
Paul Marksa5a81f02012-12-03 10:26:54 +0000601 else if (!(neigh->nud_state & NUD_FAILED))
Hannes Frederic Sowaafc154e2013-07-11 12:43:42 +0200602 ret = RT6_NUD_SUCCEED;
Jiri Benc7e980562013-12-11 13:48:20 +0100603 else
604 ret = RT6_NUD_FAIL_PROBE;
YOSHIFUJI Hideaki398bcbe2008-01-19 00:35:16 -0800605#endif
YOSHIFUJI Hideaki / 吉藤英明145a3622013-01-17 12:53:38 +0000606 read_unlock(&neigh->lock);
Hannes Frederic Sowaafc154e2013-07-11 12:43:42 +0200607 } else {
608 ret = IS_ENABLED(CONFIG_IPV6_ROUTER_PREF) ?
Jiri Benc7e980562013-12-11 13:48:20 +0100609 RT6_NUD_SUCCEED : RT6_NUD_FAIL_DO_RR;
Paul Marksa5a81f02012-12-03 10:26:54 +0000610 }
YOSHIFUJI Hideaki / 吉藤英明145a3622013-01-17 12:53:38 +0000611 rcu_read_unlock_bh();
612
Paul Marksa5a81f02012-12-03 10:26:54 +0000613 return ret;
YOSHIFUJI Hideaki554cfb72006-03-20 17:00:26 -0800614}
Linus Torvalds1da177e2005-04-16 15:20:36 -0700615
David Ahern8d1c8022018-04-17 17:33:26 -0700616static int rt6_score_route(struct fib6_info *rt, int oif, int strict)
YOSHIFUJI Hideaki554cfb72006-03-20 17:00:26 -0800617{
Paul Marksa5a81f02012-12-03 10:26:54 +0000618 int m;
YOSHIFUJI Hideaki1ab14572007-02-09 23:24:49 +0900619
YOSHIFUJI Hideaki4d0c5912006-05-26 13:23:41 -0700620 m = rt6_check_dev(rt, oif);
YOSHIFUJI Hideaki77d16f42006-08-23 17:25:05 -0700621 if (!m && (strict & RT6_LOOKUP_F_IFACE))
Hannes Frederic Sowaafc154e2013-07-11 12:43:42 +0200622 return RT6_NUD_FAIL_HARD;
YOSHIFUJI Hideakiebacaaa2006-03-20 17:04:53 -0800623#ifdef CONFIG_IPV6_ROUTER_PREF
David Ahern93c2fb22018-04-18 15:38:59 -0700624 m |= IPV6_DECODE_PREF(IPV6_EXTRACT_PREF(rt->fib6_flags)) << 2;
YOSHIFUJI Hideakiebacaaa2006-03-20 17:04:53 -0800625#endif
Hannes Frederic Sowaafc154e2013-07-11 12:43:42 +0200626 if (strict & RT6_LOOKUP_F_REACHABLE) {
627 int n = rt6_check_neigh(rt);
628 if (n < 0)
629 return n;
630 }
YOSHIFUJI Hideaki554cfb72006-03-20 17:00:26 -0800631 return m;
632}
Linus Torvalds1da177e2005-04-16 15:20:36 -0700633
David Aherndcd1f572018-04-18 15:39:05 -0700634/* called with rc_read_lock held */
635static inline bool fib6_ignore_linkdown(const struct fib6_info *f6i)
636{
637 const struct net_device *dev = fib6_info_nh_dev(f6i);
638 bool rc = false;
639
640 if (dev) {
641 const struct inet6_dev *idev = __in6_dev_get(dev);
642
643 rc = !!idev->cnf.ignore_routes_with_linkdown;
644 }
645
646 return rc;
647}
648
David Ahern8d1c8022018-04-17 17:33:26 -0700649static struct fib6_info *find_match(struct fib6_info *rt, int oif, int strict,
650 int *mpri, struct fib6_info *match,
Hannes Frederic Sowaafc154e2013-07-11 12:43:42 +0200651 bool *do_rr)
YOSHIFUJI Hideaki554cfb72006-03-20 17:00:26 -0800652{
David S. Millerf11e6652007-03-24 20:36:25 -0700653 int m;
Hannes Frederic Sowaafc154e2013-07-11 12:43:42 +0200654 bool match_do_rr = false;
Andy Gospodarek35103d12015-08-13 10:39:01 -0400655
David Ahern5e670d82018-04-17 17:33:14 -0700656 if (rt->fib6_nh.nh_flags & RTNH_F_DEAD)
Ido Schimmel8067bb82018-01-07 12:45:09 +0200657 goto out;
658
David Aherndcd1f572018-04-18 15:39:05 -0700659 if (fib6_ignore_linkdown(rt) &&
David Ahern5e670d82018-04-17 17:33:14 -0700660 rt->fib6_nh.nh_flags & RTNH_F_LINKDOWN &&
David Ahernd5d32e42016-10-24 12:27:23 -0700661 !(strict & RT6_LOOKUP_F_IGNORE_LINKSTATE))
Andy Gospodarek35103d12015-08-13 10:39:01 -0400662 goto out;
David S. Millerf11e6652007-03-24 20:36:25 -0700663
David Ahern14895682018-04-17 17:33:17 -0700664 if (fib6_check_expired(rt))
David S. Millerf11e6652007-03-24 20:36:25 -0700665 goto out;
666
667 m = rt6_score_route(rt, oif, strict);
Jiri Benc7e980562013-12-11 13:48:20 +0100668 if (m == RT6_NUD_FAIL_DO_RR) {
Hannes Frederic Sowaafc154e2013-07-11 12:43:42 +0200669 match_do_rr = true;
670 m = 0; /* lowest valid score */
Jiri Benc7e980562013-12-11 13:48:20 +0100671 } else if (m == RT6_NUD_FAIL_HARD) {
David S. Millerf11e6652007-03-24 20:36:25 -0700672 goto out;
David S. Millerf11e6652007-03-24 20:36:25 -0700673 }
674
Hannes Frederic Sowaafc154e2013-07-11 12:43:42 +0200675 if (strict & RT6_LOOKUP_F_REACHABLE)
676 rt6_probe(rt);
677
Jiri Benc7e980562013-12-11 13:48:20 +0100678 /* note that m can be RT6_NUD_FAIL_PROBE at this point */
Hannes Frederic Sowaafc154e2013-07-11 12:43:42 +0200679 if (m > *mpri) {
680 *do_rr = match_do_rr;
681 *mpri = m;
682 match = rt;
683 }
David S. Millerf11e6652007-03-24 20:36:25 -0700684out:
685 return match;
686}
687
David Ahern8d1c8022018-04-17 17:33:26 -0700688static struct fib6_info *find_rr_leaf(struct fib6_node *fn,
689 struct fib6_info *leaf,
690 struct fib6_info *rr_head,
Hannes Frederic Sowaafc154e2013-07-11 12:43:42 +0200691 u32 metric, int oif, int strict,
692 bool *do_rr)
David S. Millerf11e6652007-03-24 20:36:25 -0700693{
David Ahern8d1c8022018-04-17 17:33:26 -0700694 struct fib6_info *rt, *match, *cont;
YOSHIFUJI Hideaki554cfb72006-03-20 17:00:26 -0800695 int mpri = -1;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700696
David S. Millerf11e6652007-03-24 20:36:25 -0700697 match = NULL;
Steffen Klassert9fbdcfa2015-04-28 13:03:04 -0700698 cont = NULL;
David Miller071fb372017-11-28 15:40:15 -0500699 for (rt = rr_head; rt; rt = rcu_dereference(rt->rt6_next)) {
David Ahern93c2fb22018-04-18 15:38:59 -0700700 if (rt->fib6_metric != metric) {
Steffen Klassert9fbdcfa2015-04-28 13:03:04 -0700701 cont = rt;
702 break;
703 }
704
Hannes Frederic Sowaafc154e2013-07-11 12:43:42 +0200705 match = find_match(rt, oif, strict, &mpri, match, do_rr);
Steffen Klassert9fbdcfa2015-04-28 13:03:04 -0700706 }
707
Wei Wang66f5d6c2017-10-06 12:06:10 -0700708 for (rt = leaf; rt && rt != rr_head;
David Miller071fb372017-11-28 15:40:15 -0500709 rt = rcu_dereference(rt->rt6_next)) {
David Ahern93c2fb22018-04-18 15:38:59 -0700710 if (rt->fib6_metric != metric) {
Steffen Klassert9fbdcfa2015-04-28 13:03:04 -0700711 cont = rt;
712 break;
713 }
714
715 match = find_match(rt, oif, strict, &mpri, match, do_rr);
716 }
717
718 if (match || !cont)
719 return match;
720
David Miller071fb372017-11-28 15:40:15 -0500721 for (rt = cont; rt; rt = rcu_dereference(rt->rt6_next))
Hannes Frederic Sowaafc154e2013-07-11 12:43:42 +0200722 match = find_match(rt, oif, strict, &mpri, match, do_rr);
YOSHIFUJI Hideaki554cfb72006-03-20 17:00:26 -0800723
David S. Millerf11e6652007-03-24 20:36:25 -0700724 return match;
725}
YOSHIFUJI Hideaki554cfb72006-03-20 17:00:26 -0800726
David Ahern8d1c8022018-04-17 17:33:26 -0700727static struct fib6_info *rt6_select(struct net *net, struct fib6_node *fn,
Wei Wang8d1040e2017-10-06 12:06:08 -0700728 int oif, int strict)
David S. Millerf11e6652007-03-24 20:36:25 -0700729{
David Ahern8d1c8022018-04-17 17:33:26 -0700730 struct fib6_info *leaf = rcu_dereference(fn->leaf);
731 struct fib6_info *match, *rt0;
Hannes Frederic Sowaafc154e2013-07-11 12:43:42 +0200732 bool do_rr = false;
Wei Wang17ecf592017-10-06 12:06:09 -0700733 int key_plen;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700734
David Ahern421842e2018-04-17 17:33:18 -0700735 if (!leaf || leaf == net->ipv6.fib6_null_entry)
736 return net->ipv6.fib6_null_entry;
Wei Wang8d1040e2017-10-06 12:06:08 -0700737
Wei Wang66f5d6c2017-10-06 12:06:10 -0700738 rt0 = rcu_dereference(fn->rr_ptr);
David S. Millerf11e6652007-03-24 20:36:25 -0700739 if (!rt0)
Wei Wang66f5d6c2017-10-06 12:06:10 -0700740 rt0 = leaf;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700741
Wei Wang17ecf592017-10-06 12:06:09 -0700742 /* Double check to make sure fn is not an intermediate node
743 * and fn->leaf does not points to its child's leaf
744 * (This might happen if all routes under fn are deleted from
745 * the tree and fib6_repair_tree() is called on the node.)
746 */
David Ahern93c2fb22018-04-18 15:38:59 -0700747 key_plen = rt0->fib6_dst.plen;
Wei Wang17ecf592017-10-06 12:06:09 -0700748#ifdef CONFIG_IPV6_SUBTREES
David Ahern93c2fb22018-04-18 15:38:59 -0700749 if (rt0->fib6_src.plen)
750 key_plen = rt0->fib6_src.plen;
Wei Wang17ecf592017-10-06 12:06:09 -0700751#endif
752 if (fn->fn_bit != key_plen)
David Ahern421842e2018-04-17 17:33:18 -0700753 return net->ipv6.fib6_null_entry;
Wei Wang17ecf592017-10-06 12:06:09 -0700754
David Ahern93c2fb22018-04-18 15:38:59 -0700755 match = find_rr_leaf(fn, leaf, rt0, rt0->fib6_metric, oif, strict,
Hannes Frederic Sowaafc154e2013-07-11 12:43:42 +0200756 &do_rr);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700757
Hannes Frederic Sowaafc154e2013-07-11 12:43:42 +0200758 if (do_rr) {
David Ahern8d1c8022018-04-17 17:33:26 -0700759 struct fib6_info *next = rcu_dereference(rt0->rt6_next);
David S. Millerf11e6652007-03-24 20:36:25 -0700760
YOSHIFUJI Hideaki554cfb72006-03-20 17:00:26 -0800761 /* no entries matched; do round-robin */
David Ahern93c2fb22018-04-18 15:38:59 -0700762 if (!next || next->fib6_metric != rt0->fib6_metric)
Wei Wang8d1040e2017-10-06 12:06:08 -0700763 next = leaf;
David S. Millerf11e6652007-03-24 20:36:25 -0700764
Wei Wang66f5d6c2017-10-06 12:06:10 -0700765 if (next != rt0) {
David Ahern93c2fb22018-04-18 15:38:59 -0700766 spin_lock_bh(&leaf->fib6_table->tb6_lock);
Wei Wang66f5d6c2017-10-06 12:06:10 -0700767 /* make sure next is not being deleted from the tree */
David Ahern93c2fb22018-04-18 15:38:59 -0700768 if (next->fib6_node)
Wei Wang66f5d6c2017-10-06 12:06:10 -0700769 rcu_assign_pointer(fn->rr_ptr, next);
David Ahern93c2fb22018-04-18 15:38:59 -0700770 spin_unlock_bh(&leaf->fib6_table->tb6_lock);
Wei Wang66f5d6c2017-10-06 12:06:10 -0700771 }
Linus Torvalds1da177e2005-04-16 15:20:36 -0700772 }
773
David Ahern421842e2018-04-17 17:33:18 -0700774 return match ? match : net->ipv6.fib6_null_entry;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700775}
776
David Ahern8d1c8022018-04-17 17:33:26 -0700777static bool rt6_is_gw_or_nonexthop(const struct fib6_info *rt)
Martin KaFai Lau8b9df262015-05-22 20:55:59 -0700778{
David Ahern93c2fb22018-04-18 15:38:59 -0700779 return (rt->fib6_flags & (RTF_NONEXTHOP | RTF_GATEWAY));
Martin KaFai Lau8b9df262015-05-22 20:55:59 -0700780}
781
YOSHIFUJI Hideaki70ceb4f2006-03-20 17:06:24 -0800782#ifdef CONFIG_IPV6_ROUTE_INFO
783int rt6_route_rcv(struct net_device *dev, u8 *opt, int len,
Eric Dumazetb71d1d42011-04-22 04:53:02 +0000784 const struct in6_addr *gwaddr)
YOSHIFUJI Hideaki70ceb4f2006-03-20 17:06:24 -0800785{
YOSHIFUJI Hideakic346dca2008-03-25 21:47:49 +0900786 struct net *net = dev_net(dev);
YOSHIFUJI Hideaki70ceb4f2006-03-20 17:06:24 -0800787 struct route_info *rinfo = (struct route_info *) opt;
788 struct in6_addr prefix_buf, *prefix;
789 unsigned int pref;
YOSHIFUJI Hideaki4bed72e2008-05-27 17:37:49 +0900790 unsigned long lifetime;
David Ahern8d1c8022018-04-17 17:33:26 -0700791 struct fib6_info *rt;
YOSHIFUJI Hideaki70ceb4f2006-03-20 17:06:24 -0800792
793 if (len < sizeof(struct route_info)) {
794 return -EINVAL;
795 }
796
797 /* Sanity check for prefix_len and length */
798 if (rinfo->length > 3) {
799 return -EINVAL;
800 } else if (rinfo->prefix_len > 128) {
801 return -EINVAL;
802 } else if (rinfo->prefix_len > 64) {
803 if (rinfo->length < 2) {
804 return -EINVAL;
805 }
806 } else if (rinfo->prefix_len > 0) {
807 if (rinfo->length < 1) {
808 return -EINVAL;
809 }
810 }
811
812 pref = rinfo->route_pref;
813 if (pref == ICMPV6_ROUTER_PREF_INVALID)
Jens Rosenboom3933fc92009-09-10 06:25:11 +0000814 return -EINVAL;
YOSHIFUJI Hideaki70ceb4f2006-03-20 17:06:24 -0800815
YOSHIFUJI Hideaki4bed72e2008-05-27 17:37:49 +0900816 lifetime = addrconf_timeout_fixup(ntohl(rinfo->lifetime), HZ);
YOSHIFUJI Hideaki70ceb4f2006-03-20 17:06:24 -0800817
818 if (rinfo->length == 3)
819 prefix = (struct in6_addr *)rinfo->prefix;
820 else {
821 /* this function is safe */
822 ipv6_addr_prefix(&prefix_buf,
823 (struct in6_addr *)rinfo->prefix,
824 rinfo->prefix_len);
825 prefix = &prefix_buf;
826 }
827
Duan Jiongf104a562013-11-08 09:56:53 +0800828 if (rinfo->prefix_len == 0)
David Ahernafb1d4b52018-04-17 17:33:11 -0700829 rt = rt6_get_dflt_router(net, gwaddr, dev);
Duan Jiongf104a562013-11-08 09:56:53 +0800830 else
831 rt = rt6_get_route_info(net, prefix, rinfo->prefix_len,
David Ahern830218c2016-10-24 10:52:35 -0700832 gwaddr, dev);
YOSHIFUJI Hideaki70ceb4f2006-03-20 17:06:24 -0800833
834 if (rt && !lifetime) {
David Ahernafb1d4b52018-04-17 17:33:11 -0700835 ip6_del_rt(net, rt);
YOSHIFUJI Hideaki70ceb4f2006-03-20 17:06:24 -0800836 rt = NULL;
837 }
838
839 if (!rt && lifetime)
David Ahern830218c2016-10-24 10:52:35 -0700840 rt = rt6_add_route_info(net, prefix, rinfo->prefix_len, gwaddr,
841 dev, pref);
YOSHIFUJI Hideaki70ceb4f2006-03-20 17:06:24 -0800842 else if (rt)
David Ahern93c2fb22018-04-18 15:38:59 -0700843 rt->fib6_flags = RTF_ROUTEINFO |
844 (rt->fib6_flags & ~RTF_PREF_MASK) | RTF_PREF(pref);
YOSHIFUJI Hideaki70ceb4f2006-03-20 17:06:24 -0800845
846 if (rt) {
Gao feng1716a962012-04-06 00:13:10 +0000847 if (!addrconf_finite_timeout(lifetime))
David Ahern14895682018-04-17 17:33:17 -0700848 fib6_clean_expires(rt);
Gao feng1716a962012-04-06 00:13:10 +0000849 else
David Ahern14895682018-04-17 17:33:17 -0700850 fib6_set_expires(rt, jiffies + HZ * lifetime);
Gao feng1716a962012-04-06 00:13:10 +0000851
David Ahern93531c62018-04-17 17:33:25 -0700852 fib6_info_release(rt);
YOSHIFUJI Hideaki70ceb4f2006-03-20 17:06:24 -0800853 }
854 return 0;
855}
856#endif
857
David Ahernae90d862018-04-17 17:33:12 -0700858/*
859 * Misc support functions
860 */
861
862/* called with rcu_lock held */
David Ahern8d1c8022018-04-17 17:33:26 -0700863static struct net_device *ip6_rt_get_dev_rcu(struct fib6_info *rt)
David Ahernae90d862018-04-17 17:33:12 -0700864{
David Ahern5e670d82018-04-17 17:33:14 -0700865 struct net_device *dev = rt->fib6_nh.nh_dev;
David Ahernae90d862018-04-17 17:33:12 -0700866
David Ahern93c2fb22018-04-18 15:38:59 -0700867 if (rt->fib6_flags & (RTF_LOCAL | RTF_ANYCAST)) {
David Ahernae90d862018-04-17 17:33:12 -0700868 /* for copies of local routes, dst->dev needs to be the
869 * device if it is a master device, the master device if
870 * device is enslaved, and the loopback as the default
871 */
872 if (netif_is_l3_slave(dev) &&
David Ahern93c2fb22018-04-18 15:38:59 -0700873 !rt6_need_strict(&rt->fib6_dst.addr))
David Ahernae90d862018-04-17 17:33:12 -0700874 dev = l3mdev_master_dev_rcu(dev);
875 else if (!netif_is_l3_master(dev))
876 dev = dev_net(dev)->loopback_dev;
877 /* last case is netif_is_l3_master(dev) is true in which
878 * case we want dev returned to be dev
879 */
880 }
881
882 return dev;
883}
884
David Ahern6edb3c92018-04-17 17:33:15 -0700885static const int fib6_prop[RTN_MAX + 1] = {
886 [RTN_UNSPEC] = 0,
887 [RTN_UNICAST] = 0,
888 [RTN_LOCAL] = 0,
889 [RTN_BROADCAST] = 0,
890 [RTN_ANYCAST] = 0,
891 [RTN_MULTICAST] = 0,
892 [RTN_BLACKHOLE] = -EINVAL,
893 [RTN_UNREACHABLE] = -EHOSTUNREACH,
894 [RTN_PROHIBIT] = -EACCES,
895 [RTN_THROW] = -EAGAIN,
896 [RTN_NAT] = -EINVAL,
897 [RTN_XRESOLVE] = -EINVAL,
898};
899
900static int ip6_rt_type_to_error(u8 fib6_type)
901{
902 return fib6_prop[fib6_type];
903}
904
David Ahern8d1c8022018-04-17 17:33:26 -0700905static unsigned short fib6_info_dst_flags(struct fib6_info *rt)
David Ahern3b6761d2018-04-17 17:33:20 -0700906{
907 unsigned short flags = 0;
908
909 if (rt->dst_nocount)
910 flags |= DST_NOCOUNT;
911 if (rt->dst_nopolicy)
912 flags |= DST_NOPOLICY;
913 if (rt->dst_host)
914 flags |= DST_HOST;
915
916 return flags;
917}
918
David Ahern8d1c8022018-04-17 17:33:26 -0700919static void ip6_rt_init_dst_reject(struct rt6_info *rt, struct fib6_info *ort)
David Ahern6edb3c92018-04-17 17:33:15 -0700920{
921 rt->dst.error = ip6_rt_type_to_error(ort->fib6_type);
922
923 switch (ort->fib6_type) {
924 case RTN_BLACKHOLE:
925 rt->dst.output = dst_discard_out;
926 rt->dst.input = dst_discard;
927 break;
928 case RTN_PROHIBIT:
929 rt->dst.output = ip6_pkt_prohibit_out;
930 rt->dst.input = ip6_pkt_prohibit;
931 break;
932 case RTN_THROW:
933 case RTN_UNREACHABLE:
934 default:
935 rt->dst.output = ip6_pkt_discard_out;
936 rt->dst.input = ip6_pkt_discard;
937 break;
938 }
939}
940
David Ahern8d1c8022018-04-17 17:33:26 -0700941static void ip6_rt_init_dst(struct rt6_info *rt, struct fib6_info *ort)
David Ahern6edb3c92018-04-17 17:33:15 -0700942{
David Ahern3b6761d2018-04-17 17:33:20 -0700943 rt->dst.flags |= fib6_info_dst_flags(ort);
944
David Ahern93c2fb22018-04-18 15:38:59 -0700945 if (ort->fib6_flags & RTF_REJECT) {
David Ahern6edb3c92018-04-17 17:33:15 -0700946 ip6_rt_init_dst_reject(rt, ort);
947 return;
948 }
949
950 rt->dst.error = 0;
951 rt->dst.output = ip6_output;
952
953 if (ort->fib6_type == RTN_LOCAL) {
David Ahern6edb3c92018-04-17 17:33:15 -0700954 rt->dst.input = ip6_input;
David Ahern93c2fb22018-04-18 15:38:59 -0700955 } else if (ipv6_addr_type(&ort->fib6_dst.addr) & IPV6_ADDR_MULTICAST) {
David Ahern6edb3c92018-04-17 17:33:15 -0700956 rt->dst.input = ip6_mc_input;
957 } else {
958 rt->dst.input = ip6_forward;
959 }
960
961 if (ort->fib6_nh.nh_lwtstate) {
962 rt->dst.lwtstate = lwtstate_get(ort->fib6_nh.nh_lwtstate);
963 lwtunnel_set_redirect(&rt->dst);
964 }
965
966 rt->dst.lastuse = jiffies;
967}
968
David Ahern8d1c8022018-04-17 17:33:26 -0700969static void rt6_set_from(struct rt6_info *rt, struct fib6_info *from)
David Ahernae90d862018-04-17 17:33:12 -0700970{
David Ahernae90d862018-04-17 17:33:12 -0700971 rt->rt6i_flags &= ~RTF_EXPIRES;
David Ahern93531c62018-04-17 17:33:25 -0700972 fib6_info_hold(from);
David Aherna68886a2018-04-20 15:38:02 -0700973 rcu_assign_pointer(rt->from, from);
David Ahernd4ead6b2018-04-17 17:33:16 -0700974 dst_init_metrics(&rt->dst, from->fib6_metrics->metrics, true);
975 if (from->fib6_metrics != &dst_default_metrics) {
976 rt->dst._metrics |= DST_METRICS_REFCOUNTED;
977 refcount_inc(&from->fib6_metrics->refcnt);
978 }
David Ahernae90d862018-04-17 17:33:12 -0700979}
980
David Ahern8d1c8022018-04-17 17:33:26 -0700981static void ip6_rt_copy_init(struct rt6_info *rt, struct fib6_info *ort)
David Ahernae90d862018-04-17 17:33:12 -0700982{
David Aherndcd1f572018-04-18 15:39:05 -0700983 struct net_device *dev = fib6_info_nh_dev(ort);
984
David Ahern6edb3c92018-04-17 17:33:15 -0700985 ip6_rt_init_dst(rt, ort);
986
David Ahern93c2fb22018-04-18 15:38:59 -0700987 rt->rt6i_dst = ort->fib6_dst;
David Aherndcd1f572018-04-18 15:39:05 -0700988 rt->rt6i_idev = dev ? in6_dev_get(dev) : NULL;
David Ahern5e670d82018-04-17 17:33:14 -0700989 rt->rt6i_gateway = ort->fib6_nh.nh_gw;
David Ahern93c2fb22018-04-18 15:38:59 -0700990 rt->rt6i_flags = ort->fib6_flags;
David Ahernae90d862018-04-17 17:33:12 -0700991 rt6_set_from(rt, ort);
David Ahernae90d862018-04-17 17:33:12 -0700992#ifdef CONFIG_IPV6_SUBTREES
David Ahern93c2fb22018-04-18 15:38:59 -0700993 rt->rt6i_src = ort->fib6_src;
David Ahernae90d862018-04-17 17:33:12 -0700994#endif
David Ahern93c2fb22018-04-18 15:38:59 -0700995 rt->rt6i_prefsrc = ort->fib6_prefsrc;
David Ahern5e670d82018-04-17 17:33:14 -0700996 rt->dst.lwtstate = lwtstate_get(ort->fib6_nh.nh_lwtstate);
David Ahernae90d862018-04-17 17:33:12 -0700997}
998
Martin KaFai Laua3c00e42014-10-20 13:42:43 -0700999static struct fib6_node* fib6_backtrack(struct fib6_node *fn,
1000 struct in6_addr *saddr)
1001{
Wei Wang66f5d6c2017-10-06 12:06:10 -07001002 struct fib6_node *pn, *sn;
Martin KaFai Laua3c00e42014-10-20 13:42:43 -07001003 while (1) {
1004 if (fn->fn_flags & RTN_TL_ROOT)
1005 return NULL;
Wei Wang66f5d6c2017-10-06 12:06:10 -07001006 pn = rcu_dereference(fn->parent);
1007 sn = FIB6_SUBTREE(pn);
1008 if (sn && sn != fn)
1009 fn = fib6_lookup(sn, NULL, saddr);
Martin KaFai Laua3c00e42014-10-20 13:42:43 -07001010 else
1011 fn = pn;
1012 if (fn->fn_flags & RTN_RTINFO)
1013 return fn;
1014 }
1015}
Thomas Grafc71099a2006-08-04 23:20:06 -07001016
Wei Wangd3843fe2017-10-06 12:06:06 -07001017static bool ip6_hold_safe(struct net *net, struct rt6_info **prt,
1018 bool null_fallback)
1019{
1020 struct rt6_info *rt = *prt;
1021
1022 if (dst_hold_safe(&rt->dst))
1023 return true;
1024 if (null_fallback) {
1025 rt = net->ipv6.ip6_null_entry;
1026 dst_hold(&rt->dst);
1027 } else {
1028 rt = NULL;
1029 }
1030 *prt = rt;
1031 return false;
1032}
1033
David Aherndec9b0e2018-04-17 17:33:19 -07001034/* called with rcu_lock held */
David Ahern8d1c8022018-04-17 17:33:26 -07001035static struct rt6_info *ip6_create_rt_rcu(struct fib6_info *rt)
David Aherndec9b0e2018-04-17 17:33:19 -07001036{
David Ahern3b6761d2018-04-17 17:33:20 -07001037 unsigned short flags = fib6_info_dst_flags(rt);
David Aherndec9b0e2018-04-17 17:33:19 -07001038 struct net_device *dev = rt->fib6_nh.nh_dev;
1039 struct rt6_info *nrt;
1040
David Ahern93531c62018-04-17 17:33:25 -07001041 nrt = ip6_dst_alloc(dev_net(dev), dev, flags);
David Aherndec9b0e2018-04-17 17:33:19 -07001042 if (nrt)
1043 ip6_rt_copy_init(nrt, rt);
1044
1045 return nrt;
1046}
1047
Daniel Lezcano8ed67782008-03-04 13:48:30 -08001048static struct rt6_info *ip6_pol_route_lookup(struct net *net,
1049 struct fib6_table *table,
David Ahernb75cc8f2018-03-02 08:32:17 -08001050 struct flowi6 *fl6,
1051 const struct sk_buff *skb,
1052 int flags)
Linus Torvalds1da177e2005-04-16 15:20:36 -07001053{
David Ahern8d1c8022018-04-17 17:33:26 -07001054 struct fib6_info *f6i;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001055 struct fib6_node *fn;
David Ahern23fb93a2018-04-17 17:33:23 -07001056 struct rt6_info *rt;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001057
David Ahernb6cdbc82018-03-29 17:44:57 -07001058 if (fl6->flowi6_flags & FLOWI_FLAG_SKIP_NH_OIF)
1059 flags &= ~RT6_LOOKUP_F_IFACE;
1060
Wei Wang66f5d6c2017-10-06 12:06:10 -07001061 rcu_read_lock();
David S. Miller4c9483b2011-03-12 16:22:43 -05001062 fn = fib6_lookup(&table->tb6_root, &fl6->daddr, &fl6->saddr);
Thomas Grafc71099a2006-08-04 23:20:06 -07001063restart:
David Ahern23fb93a2018-04-17 17:33:23 -07001064 f6i = rcu_dereference(fn->leaf);
1065 if (!f6i) {
1066 f6i = net->ipv6.fib6_null_entry;
Wei Wang66f5d6c2017-10-06 12:06:10 -07001067 } else {
David Ahern23fb93a2018-04-17 17:33:23 -07001068 f6i = rt6_device_match(net, f6i, &fl6->saddr,
Wei Wang66f5d6c2017-10-06 12:06:10 -07001069 fl6->flowi6_oif, flags);
David Ahern93c2fb22018-04-18 15:38:59 -07001070 if (f6i->fib6_nsiblings && fl6->flowi6_oif == 0)
David Ahern23fb93a2018-04-17 17:33:23 -07001071 f6i = rt6_multipath_select(net, f6i, fl6,
1072 fl6->flowi6_oif, skb, flags);
Wei Wang66f5d6c2017-10-06 12:06:10 -07001073 }
David Ahern23fb93a2018-04-17 17:33:23 -07001074 if (f6i == net->ipv6.fib6_null_entry) {
Martin KaFai Laua3c00e42014-10-20 13:42:43 -07001075 fn = fib6_backtrack(fn, &fl6->saddr);
1076 if (fn)
1077 goto restart;
1078 }
David Ahern23fb93a2018-04-17 17:33:23 -07001079
Wei Wang2b760fc2017-10-06 12:06:03 -07001080 /* Search through exception table */
David Ahern23fb93a2018-04-17 17:33:23 -07001081 rt = rt6_find_cached_rt(f6i, &fl6->daddr, &fl6->saddr);
1082 if (rt) {
David Aherndec9b0e2018-04-17 17:33:19 -07001083 if (ip6_hold_safe(net, &rt, true))
1084 dst_use_noref(&rt->dst, jiffies);
David Ahern23fb93a2018-04-17 17:33:23 -07001085 } else if (f6i == net->ipv6.fib6_null_entry) {
David Aherndec9b0e2018-04-17 17:33:19 -07001086 rt = net->ipv6.ip6_null_entry;
1087 dst_hold(&rt->dst);
David Ahern23fb93a2018-04-17 17:33:23 -07001088 } else {
1089 rt = ip6_create_rt_rcu(f6i);
1090 if (!rt) {
1091 rt = net->ipv6.ip6_null_entry;
1092 dst_hold(&rt->dst);
1093 }
David Aherndec9b0e2018-04-17 17:33:19 -07001094 }
Wei Wangd3843fe2017-10-06 12:06:06 -07001095
Wei Wang66f5d6c2017-10-06 12:06:10 -07001096 rcu_read_unlock();
David Ahernb8115802015-11-19 12:24:22 -08001097
Paolo Abenib65f1642017-10-19 09:31:43 +02001098 trace_fib6_table_lookup(net, rt, table, fl6);
David Ahernb8115802015-11-19 12:24:22 -08001099
Thomas Grafc71099a2006-08-04 23:20:06 -07001100 return rt;
Thomas Grafc71099a2006-08-04 23:20:06 -07001101}
1102
Ian Morris67ba4152014-08-24 21:53:10 +01001103struct dst_entry *ip6_route_lookup(struct net *net, struct flowi6 *fl6,
David Ahernb75cc8f2018-03-02 08:32:17 -08001104 const struct sk_buff *skb, int flags)
Florian Westphalea6e5742011-09-05 16:05:44 +02001105{
David Ahernb75cc8f2018-03-02 08:32:17 -08001106 return fib6_rule_lookup(net, fl6, skb, flags, ip6_pol_route_lookup);
Florian Westphalea6e5742011-09-05 16:05:44 +02001107}
1108EXPORT_SYMBOL_GPL(ip6_route_lookup);
1109
YOSHIFUJI Hideaki9acd9f32008-04-10 15:42:10 +09001110struct rt6_info *rt6_lookup(struct net *net, const struct in6_addr *daddr,
David Ahernb75cc8f2018-03-02 08:32:17 -08001111 const struct in6_addr *saddr, int oif,
1112 const struct sk_buff *skb, int strict)
Thomas Grafc71099a2006-08-04 23:20:06 -07001113{
David S. Miller4c9483b2011-03-12 16:22:43 -05001114 struct flowi6 fl6 = {
1115 .flowi6_oif = oif,
1116 .daddr = *daddr,
Thomas Grafc71099a2006-08-04 23:20:06 -07001117 };
1118 struct dst_entry *dst;
YOSHIFUJI Hideaki77d16f42006-08-23 17:25:05 -07001119 int flags = strict ? RT6_LOOKUP_F_IFACE : 0;
Thomas Grafc71099a2006-08-04 23:20:06 -07001120
Thomas Grafadaa70b2006-10-13 15:01:03 -07001121 if (saddr) {
David S. Miller4c9483b2011-03-12 16:22:43 -05001122 memcpy(&fl6.saddr, saddr, sizeof(*saddr));
Thomas Grafadaa70b2006-10-13 15:01:03 -07001123 flags |= RT6_LOOKUP_F_HAS_SADDR;
1124 }
1125
David Ahernb75cc8f2018-03-02 08:32:17 -08001126 dst = fib6_rule_lookup(net, &fl6, skb, flags, ip6_pol_route_lookup);
Thomas Grafc71099a2006-08-04 23:20:06 -07001127 if (dst->error == 0)
1128 return (struct rt6_info *) dst;
1129
1130 dst_release(dst);
1131
Linus Torvalds1da177e2005-04-16 15:20:36 -07001132 return NULL;
1133}
YOSHIFUJI Hideaki71590392007-02-22 22:05:40 +09001134EXPORT_SYMBOL(rt6_lookup);
1135
Thomas Grafc71099a2006-08-04 23:20:06 -07001136/* ip6_ins_rt is called with FREE table->tb6_lock.
Wei Wang1cfb71e2017-06-17 10:42:33 -07001137 * It takes new route entry, the addition fails by any reason the
1138 * route is released.
1139 * Caller must hold dst before calling it.
Linus Torvalds1da177e2005-04-16 15:20:36 -07001140 */
1141
David Ahern8d1c8022018-04-17 17:33:26 -07001142static int __ip6_ins_rt(struct fib6_info *rt, struct nl_info *info,
David Ahern333c4302017-05-21 10:12:04 -06001143 struct netlink_ext_ack *extack)
Linus Torvalds1da177e2005-04-16 15:20:36 -07001144{
1145 int err;
Thomas Grafc71099a2006-08-04 23:20:06 -07001146 struct fib6_table *table;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001147
David Ahern93c2fb22018-04-18 15:38:59 -07001148 table = rt->fib6_table;
Wei Wang66f5d6c2017-10-06 12:06:10 -07001149 spin_lock_bh(&table->tb6_lock);
David Ahernd4ead6b2018-04-17 17:33:16 -07001150 err = fib6_add(&table->tb6_root, rt, info, extack);
Wei Wang66f5d6c2017-10-06 12:06:10 -07001151 spin_unlock_bh(&table->tb6_lock);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001152
1153 return err;
1154}
1155
David Ahern8d1c8022018-04-17 17:33:26 -07001156int ip6_ins_rt(struct net *net, struct fib6_info *rt)
Thomas Graf40e22e82006-08-22 00:00:45 -07001157{
David Ahernafb1d4b52018-04-17 17:33:11 -07001158 struct nl_info info = { .nl_net = net, };
Florian Westphale715b6d2015-01-05 23:57:44 +01001159
David Ahernd4ead6b2018-04-17 17:33:16 -07001160 return __ip6_ins_rt(rt, &info, NULL);
Thomas Graf40e22e82006-08-22 00:00:45 -07001161}
1162
David Ahern8d1c8022018-04-17 17:33:26 -07001163static struct rt6_info *ip6_rt_cache_alloc(struct fib6_info *ort,
Martin KaFai Lau8b9df262015-05-22 20:55:59 -07001164 const struct in6_addr *daddr,
1165 const struct in6_addr *saddr)
Linus Torvalds1da177e2005-04-16 15:20:36 -07001166{
David Ahern4832c302017-08-17 12:17:20 -07001167 struct net_device *dev;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001168 struct rt6_info *rt;
1169
1170 /*
1171 * Clone the route.
1172 */
1173
David Ahern4832c302017-08-17 12:17:20 -07001174 dev = ip6_rt_get_dev_rcu(ort);
David Ahern93531c62018-04-17 17:33:25 -07001175 rt = ip6_dst_alloc(dev_net(dev), dev, 0);
Martin KaFai Lau83a09ab2015-05-22 20:56:05 -07001176 if (!rt)
1177 return NULL;
1178
1179 ip6_rt_copy_init(rt, ort);
1180 rt->rt6i_flags |= RTF_CACHE;
Martin KaFai Lau83a09ab2015-05-22 20:56:05 -07001181 rt->dst.flags |= DST_HOST;
1182 rt->rt6i_dst.addr = *daddr;
1183 rt->rt6i_dst.plen = 128;
1184
1185 if (!rt6_is_gw_or_nonexthop(ort)) {
David Ahern93c2fb22018-04-18 15:38:59 -07001186 if (ort->fib6_dst.plen != 128 &&
1187 ipv6_addr_equal(&ort->fib6_dst.addr, daddr))
Martin KaFai Lau83a09ab2015-05-22 20:56:05 -07001188 rt->rt6i_flags |= RTF_ANYCAST;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001189#ifdef CONFIG_IPV6_SUBTREES
Martin KaFai Lau83a09ab2015-05-22 20:56:05 -07001190 if (rt->rt6i_src.plen && saddr) {
1191 rt->rt6i_src.addr = *saddr;
1192 rt->rt6i_src.plen = 128;
Martin KaFai Lau8b9df262015-05-22 20:55:59 -07001193 }
Martin KaFai Lau83a09ab2015-05-22 20:56:05 -07001194#endif
YOSHIFUJI Hideaki95a9a5b2006-03-20 16:55:51 -08001195 }
Linus Torvalds1da177e2005-04-16 15:20:36 -07001196
YOSHIFUJI Hideaki95a9a5b2006-03-20 16:55:51 -08001197 return rt;
1198}
Linus Torvalds1da177e2005-04-16 15:20:36 -07001199
David Ahern8d1c8022018-04-17 17:33:26 -07001200static struct rt6_info *ip6_rt_pcpu_alloc(struct fib6_info *rt)
Martin KaFai Laud52d3992015-05-22 20:56:06 -07001201{
David Ahern3b6761d2018-04-17 17:33:20 -07001202 unsigned short flags = fib6_info_dst_flags(rt);
David Ahern4832c302017-08-17 12:17:20 -07001203 struct net_device *dev;
Martin KaFai Laud52d3992015-05-22 20:56:06 -07001204 struct rt6_info *pcpu_rt;
1205
David Ahern4832c302017-08-17 12:17:20 -07001206 rcu_read_lock();
1207 dev = ip6_rt_get_dev_rcu(rt);
David Ahern93531c62018-04-17 17:33:25 -07001208 pcpu_rt = ip6_dst_alloc(dev_net(dev), dev, flags);
David Ahern4832c302017-08-17 12:17:20 -07001209 rcu_read_unlock();
Martin KaFai Laud52d3992015-05-22 20:56:06 -07001210 if (!pcpu_rt)
1211 return NULL;
1212 ip6_rt_copy_init(pcpu_rt, rt);
Martin KaFai Laud52d3992015-05-22 20:56:06 -07001213 pcpu_rt->rt6i_flags |= RTF_PCPU;
1214 return pcpu_rt;
1215}
1216
Wei Wang66f5d6c2017-10-06 12:06:10 -07001217/* It should be called with rcu_read_lock() acquired */
David Ahern8d1c8022018-04-17 17:33:26 -07001218static struct rt6_info *rt6_get_pcpu_route(struct fib6_info *rt)
Martin KaFai Laud52d3992015-05-22 20:56:06 -07001219{
Martin KaFai Laua73e4192015-08-14 11:05:53 -07001220 struct rt6_info *pcpu_rt, **p;
Martin KaFai Laud52d3992015-05-22 20:56:06 -07001221
1222 p = this_cpu_ptr(rt->rt6i_pcpu);
1223 pcpu_rt = *p;
1224
David Ahernd4ead6b2018-04-17 17:33:16 -07001225 if (pcpu_rt)
1226 ip6_hold_safe(NULL, &pcpu_rt, false);
Wei Wangd3843fe2017-10-06 12:06:06 -07001227
Martin KaFai Laua73e4192015-08-14 11:05:53 -07001228 return pcpu_rt;
1229}
1230
David Ahernafb1d4b52018-04-17 17:33:11 -07001231static struct rt6_info *rt6_make_pcpu_route(struct net *net,
David Ahern8d1c8022018-04-17 17:33:26 -07001232 struct fib6_info *rt)
Martin KaFai Laua73e4192015-08-14 11:05:53 -07001233{
1234 struct rt6_info *pcpu_rt, *prev, **p;
Martin KaFai Laud52d3992015-05-22 20:56:06 -07001235
1236 pcpu_rt = ip6_rt_pcpu_alloc(rt);
1237 if (!pcpu_rt) {
Martin KaFai Lau9c7370a2015-08-14 11:05:54 -07001238 dst_hold(&net->ipv6.ip6_null_entry->dst);
1239 return net->ipv6.ip6_null_entry;
Martin KaFai Laud52d3992015-05-22 20:56:06 -07001240 }
1241
Martin KaFai Laud52d3992015-05-22 20:56:06 -07001242 dst_hold(&pcpu_rt->dst);
Wei Wanga94b9362017-10-06 12:06:04 -07001243 p = this_cpu_ptr(rt->rt6i_pcpu);
1244 prev = cmpxchg(p, NULL, pcpu_rt);
Eric Dumazet951f7882017-10-08 21:07:18 -07001245 BUG_ON(prev);
Wei Wanga94b9362017-10-06 12:06:04 -07001246
Martin KaFai Laud52d3992015-05-22 20:56:06 -07001247 return pcpu_rt;
1248}
1249
Wei Wang35732d02017-10-06 12:05:57 -07001250/* exception hash table implementation
1251 */
1252static DEFINE_SPINLOCK(rt6_exception_lock);
1253
1254/* Remove rt6_ex from hash table and free the memory
1255 * Caller must hold rt6_exception_lock
1256 */
1257static void rt6_remove_exception(struct rt6_exception_bucket *bucket,
1258 struct rt6_exception *rt6_ex)
1259{
Colin Ian Kingb2427e62017-10-10 18:01:16 +01001260 struct net *net;
Wei Wang81eb8442017-10-06 12:06:11 -07001261
Wei Wang35732d02017-10-06 12:05:57 -07001262 if (!bucket || !rt6_ex)
1263 return;
Colin Ian Kingb2427e62017-10-10 18:01:16 +01001264
1265 net = dev_net(rt6_ex->rt6i->dst.dev);
Wei Wang35732d02017-10-06 12:05:57 -07001266 hlist_del_rcu(&rt6_ex->hlist);
David Ahern77634cc2018-04-17 17:33:27 -07001267 dst_release(&rt6_ex->rt6i->dst);
Wei Wang35732d02017-10-06 12:05:57 -07001268 kfree_rcu(rt6_ex, rcu);
1269 WARN_ON_ONCE(!bucket->depth);
1270 bucket->depth--;
Wei Wang81eb8442017-10-06 12:06:11 -07001271 net->ipv6.rt6_stats->fib_rt_cache--;
Wei Wang35732d02017-10-06 12:05:57 -07001272}
1273
1274/* Remove oldest rt6_ex in bucket and free the memory
1275 * Caller must hold rt6_exception_lock
1276 */
1277static void rt6_exception_remove_oldest(struct rt6_exception_bucket *bucket)
1278{
1279 struct rt6_exception *rt6_ex, *oldest = NULL;
1280
1281 if (!bucket)
1282 return;
1283
1284 hlist_for_each_entry(rt6_ex, &bucket->chain, hlist) {
1285 if (!oldest || time_before(rt6_ex->stamp, oldest->stamp))
1286 oldest = rt6_ex;
1287 }
1288 rt6_remove_exception(bucket, oldest);
1289}
1290
1291static u32 rt6_exception_hash(const struct in6_addr *dst,
1292 const struct in6_addr *src)
1293{
1294 static u32 seed __read_mostly;
1295 u32 val;
1296
1297 net_get_random_once(&seed, sizeof(seed));
1298 val = jhash(dst, sizeof(*dst), seed);
1299
1300#ifdef CONFIG_IPV6_SUBTREES
1301 if (src)
1302 val = jhash(src, sizeof(*src), val);
1303#endif
1304 return hash_32(val, FIB6_EXCEPTION_BUCKET_SIZE_SHIFT);
1305}
1306
1307/* Helper function to find the cached rt in the hash table
1308 * and update bucket pointer to point to the bucket for this
1309 * (daddr, saddr) pair
1310 * Caller must hold rt6_exception_lock
1311 */
1312static struct rt6_exception *
1313__rt6_find_exception_spinlock(struct rt6_exception_bucket **bucket,
1314 const struct in6_addr *daddr,
1315 const struct in6_addr *saddr)
1316{
1317 struct rt6_exception *rt6_ex;
1318 u32 hval;
1319
1320 if (!(*bucket) || !daddr)
1321 return NULL;
1322
1323 hval = rt6_exception_hash(daddr, saddr);
1324 *bucket += hval;
1325
1326 hlist_for_each_entry(rt6_ex, &(*bucket)->chain, hlist) {
1327 struct rt6_info *rt6 = rt6_ex->rt6i;
1328 bool matched = ipv6_addr_equal(daddr, &rt6->rt6i_dst.addr);
1329
1330#ifdef CONFIG_IPV6_SUBTREES
1331 if (matched && saddr)
1332 matched = ipv6_addr_equal(saddr, &rt6->rt6i_src.addr);
1333#endif
1334 if (matched)
1335 return rt6_ex;
1336 }
1337 return NULL;
1338}
1339
1340/* Helper function to find the cached rt in the hash table
1341 * and update bucket pointer to point to the bucket for this
1342 * (daddr, saddr) pair
1343 * Caller must hold rcu_read_lock()
1344 */
1345static struct rt6_exception *
1346__rt6_find_exception_rcu(struct rt6_exception_bucket **bucket,
1347 const struct in6_addr *daddr,
1348 const struct in6_addr *saddr)
1349{
1350 struct rt6_exception *rt6_ex;
1351 u32 hval;
1352
1353 WARN_ON_ONCE(!rcu_read_lock_held());
1354
1355 if (!(*bucket) || !daddr)
1356 return NULL;
1357
1358 hval = rt6_exception_hash(daddr, saddr);
1359 *bucket += hval;
1360
1361 hlist_for_each_entry_rcu(rt6_ex, &(*bucket)->chain, hlist) {
1362 struct rt6_info *rt6 = rt6_ex->rt6i;
1363 bool matched = ipv6_addr_equal(daddr, &rt6->rt6i_dst.addr);
1364
1365#ifdef CONFIG_IPV6_SUBTREES
1366 if (matched && saddr)
1367 matched = ipv6_addr_equal(saddr, &rt6->rt6i_src.addr);
1368#endif
1369 if (matched)
1370 return rt6_ex;
1371 }
1372 return NULL;
1373}
1374
David Ahern8d1c8022018-04-17 17:33:26 -07001375static unsigned int fib6_mtu(const struct fib6_info *rt)
David Ahernd4ead6b2018-04-17 17:33:16 -07001376{
1377 unsigned int mtu;
1378
David Aherndcd1f572018-04-18 15:39:05 -07001379 if (rt->fib6_pmtu) {
1380 mtu = rt->fib6_pmtu;
1381 } else {
1382 struct net_device *dev = fib6_info_nh_dev(rt);
1383 struct inet6_dev *idev;
1384
1385 rcu_read_lock();
1386 idev = __in6_dev_get(dev);
1387 mtu = idev->cnf.mtu6;
1388 rcu_read_unlock();
1389 }
1390
David Ahernd4ead6b2018-04-17 17:33:16 -07001391 mtu = min_t(unsigned int, mtu, IP6_MAX_MTU);
1392
1393 return mtu - lwtunnel_headroom(rt->fib6_nh.nh_lwtstate, mtu);
1394}
1395
Wei Wang35732d02017-10-06 12:05:57 -07001396static int rt6_insert_exception(struct rt6_info *nrt,
David Ahern8d1c8022018-04-17 17:33:26 -07001397 struct fib6_info *ort)
Wei Wang35732d02017-10-06 12:05:57 -07001398{
David Ahern5e670d82018-04-17 17:33:14 -07001399 struct net *net = dev_net(nrt->dst.dev);
Wei Wang35732d02017-10-06 12:05:57 -07001400 struct rt6_exception_bucket *bucket;
1401 struct in6_addr *src_key = NULL;
1402 struct rt6_exception *rt6_ex;
1403 int err = 0;
1404
Wei Wang35732d02017-10-06 12:05:57 -07001405 spin_lock_bh(&rt6_exception_lock);
1406
1407 if (ort->exception_bucket_flushed) {
1408 err = -EINVAL;
1409 goto out;
1410 }
1411
1412 bucket = rcu_dereference_protected(ort->rt6i_exception_bucket,
1413 lockdep_is_held(&rt6_exception_lock));
1414 if (!bucket) {
1415 bucket = kcalloc(FIB6_EXCEPTION_BUCKET_SIZE, sizeof(*bucket),
1416 GFP_ATOMIC);
1417 if (!bucket) {
1418 err = -ENOMEM;
1419 goto out;
1420 }
1421 rcu_assign_pointer(ort->rt6i_exception_bucket, bucket);
1422 }
1423
1424#ifdef CONFIG_IPV6_SUBTREES
1425 /* rt6i_src.plen != 0 indicates ort is in subtree
1426 * and exception table is indexed by a hash of
1427 * both rt6i_dst and rt6i_src.
1428 * Otherwise, the exception table is indexed by
1429 * a hash of only rt6i_dst.
1430 */
David Ahern93c2fb22018-04-18 15:38:59 -07001431 if (ort->fib6_src.plen)
Wei Wang35732d02017-10-06 12:05:57 -07001432 src_key = &nrt->rt6i_src.addr;
1433#endif
Wei Wang60006a42017-10-06 12:05:58 -07001434
1435 /* Update rt6i_prefsrc as it could be changed
1436 * in rt6_remove_prefsrc()
1437 */
David Ahern93c2fb22018-04-18 15:38:59 -07001438 nrt->rt6i_prefsrc = ort->fib6_prefsrc;
Wei Wangf5bbe7e2017-10-06 12:05:59 -07001439 /* rt6_mtu_change() might lower mtu on ort.
1440 * Only insert this exception route if its mtu
1441 * is less than ort's mtu value.
1442 */
David Ahernd4ead6b2018-04-17 17:33:16 -07001443 if (dst_metric_raw(&nrt->dst, RTAX_MTU) >= fib6_mtu(ort)) {
Wei Wangf5bbe7e2017-10-06 12:05:59 -07001444 err = -EINVAL;
1445 goto out;
1446 }
Wei Wang60006a42017-10-06 12:05:58 -07001447
Wei Wang35732d02017-10-06 12:05:57 -07001448 rt6_ex = __rt6_find_exception_spinlock(&bucket, &nrt->rt6i_dst.addr,
1449 src_key);
1450 if (rt6_ex)
1451 rt6_remove_exception(bucket, rt6_ex);
1452
1453 rt6_ex = kzalloc(sizeof(*rt6_ex), GFP_ATOMIC);
1454 if (!rt6_ex) {
1455 err = -ENOMEM;
1456 goto out;
1457 }
1458 rt6_ex->rt6i = nrt;
1459 rt6_ex->stamp = jiffies;
Wei Wang35732d02017-10-06 12:05:57 -07001460 hlist_add_head_rcu(&rt6_ex->hlist, &bucket->chain);
1461 bucket->depth++;
Wei Wang81eb8442017-10-06 12:06:11 -07001462 net->ipv6.rt6_stats->fib_rt_cache++;
Wei Wang35732d02017-10-06 12:05:57 -07001463
1464 if (bucket->depth > FIB6_MAX_DEPTH)
1465 rt6_exception_remove_oldest(bucket);
1466
1467out:
1468 spin_unlock_bh(&rt6_exception_lock);
1469
1470 /* Update fn->fn_sernum to invalidate all cached dst */
Paolo Abenib886d5f2017-10-19 16:07:10 +02001471 if (!err) {
David Ahern93c2fb22018-04-18 15:38:59 -07001472 spin_lock_bh(&ort->fib6_table->tb6_lock);
David Ahern7aef6852018-04-17 17:33:10 -07001473 fib6_update_sernum(net, ort);
David Ahern93c2fb22018-04-18 15:38:59 -07001474 spin_unlock_bh(&ort->fib6_table->tb6_lock);
Paolo Abenib886d5f2017-10-19 16:07:10 +02001475 fib6_force_start_gc(net);
1476 }
Wei Wang35732d02017-10-06 12:05:57 -07001477
1478 return err;
1479}
1480
David Ahern8d1c8022018-04-17 17:33:26 -07001481void rt6_flush_exceptions(struct fib6_info *rt)
Wei Wang35732d02017-10-06 12:05:57 -07001482{
1483 struct rt6_exception_bucket *bucket;
1484 struct rt6_exception *rt6_ex;
1485 struct hlist_node *tmp;
1486 int i;
1487
1488 spin_lock_bh(&rt6_exception_lock);
1489 /* Prevent rt6_insert_exception() to recreate the bucket list */
1490 rt->exception_bucket_flushed = 1;
1491
1492 bucket = rcu_dereference_protected(rt->rt6i_exception_bucket,
1493 lockdep_is_held(&rt6_exception_lock));
1494 if (!bucket)
1495 goto out;
1496
1497 for (i = 0; i < FIB6_EXCEPTION_BUCKET_SIZE; i++) {
1498 hlist_for_each_entry_safe(rt6_ex, tmp, &bucket->chain, hlist)
1499 rt6_remove_exception(bucket, rt6_ex);
1500 WARN_ON_ONCE(bucket->depth);
1501 bucket++;
1502 }
1503
1504out:
1505 spin_unlock_bh(&rt6_exception_lock);
1506}
1507
1508/* Find cached rt in the hash table inside passed in rt
1509 * Caller has to hold rcu_read_lock()
1510 */
David Ahern8d1c8022018-04-17 17:33:26 -07001511static struct rt6_info *rt6_find_cached_rt(struct fib6_info *rt,
Wei Wang35732d02017-10-06 12:05:57 -07001512 struct in6_addr *daddr,
1513 struct in6_addr *saddr)
1514{
1515 struct rt6_exception_bucket *bucket;
1516 struct in6_addr *src_key = NULL;
1517 struct rt6_exception *rt6_ex;
1518 struct rt6_info *res = NULL;
1519
1520 bucket = rcu_dereference(rt->rt6i_exception_bucket);
1521
1522#ifdef CONFIG_IPV6_SUBTREES
1523 /* rt6i_src.plen != 0 indicates rt is in subtree
1524 * and exception table is indexed by a hash of
1525 * both rt6i_dst and rt6i_src.
1526 * Otherwise, the exception table is indexed by
1527 * a hash of only rt6i_dst.
1528 */
David Ahern93c2fb22018-04-18 15:38:59 -07001529 if (rt->fib6_src.plen)
Wei Wang35732d02017-10-06 12:05:57 -07001530 src_key = saddr;
1531#endif
1532 rt6_ex = __rt6_find_exception_rcu(&bucket, daddr, src_key);
1533
1534 if (rt6_ex && !rt6_check_expired(rt6_ex->rt6i))
1535 res = rt6_ex->rt6i;
1536
1537 return res;
1538}
1539
1540/* Remove the passed in cached rt from the hash table that contains it */
David Ahern23fb93a2018-04-17 17:33:23 -07001541static int rt6_remove_exception_rt(struct rt6_info *rt)
Wei Wang35732d02017-10-06 12:05:57 -07001542{
Wei Wang35732d02017-10-06 12:05:57 -07001543 struct rt6_exception_bucket *bucket;
David Ahern8d1c8022018-04-17 17:33:26 -07001544 struct fib6_info *from = rt->from;
Wei Wang35732d02017-10-06 12:05:57 -07001545 struct in6_addr *src_key = NULL;
1546 struct rt6_exception *rt6_ex;
1547 int err;
1548
1549 if (!from ||
Colin Ian King442d7132017-10-10 19:10:30 +01001550 !(rt->rt6i_flags & RTF_CACHE))
Wei Wang35732d02017-10-06 12:05:57 -07001551 return -EINVAL;
1552
1553 if (!rcu_access_pointer(from->rt6i_exception_bucket))
1554 return -ENOENT;
1555
1556 spin_lock_bh(&rt6_exception_lock);
1557 bucket = rcu_dereference_protected(from->rt6i_exception_bucket,
1558 lockdep_is_held(&rt6_exception_lock));
1559#ifdef CONFIG_IPV6_SUBTREES
1560 /* rt6i_src.plen != 0 indicates 'from' is in subtree
1561 * and exception table is indexed by a hash of
1562 * both rt6i_dst and rt6i_src.
1563 * Otherwise, the exception table is indexed by
1564 * a hash of only rt6i_dst.
1565 */
David Ahern93c2fb22018-04-18 15:38:59 -07001566 if (from->fib6_src.plen)
Wei Wang35732d02017-10-06 12:05:57 -07001567 src_key = &rt->rt6i_src.addr;
1568#endif
1569 rt6_ex = __rt6_find_exception_spinlock(&bucket,
1570 &rt->rt6i_dst.addr,
1571 src_key);
1572 if (rt6_ex) {
1573 rt6_remove_exception(bucket, rt6_ex);
1574 err = 0;
1575 } else {
1576 err = -ENOENT;
1577 }
1578
1579 spin_unlock_bh(&rt6_exception_lock);
1580 return err;
1581}
1582
1583/* Find rt6_ex which contains the passed in rt cache and
1584 * refresh its stamp
1585 */
1586static void rt6_update_exception_stamp_rt(struct rt6_info *rt)
1587{
Wei Wang35732d02017-10-06 12:05:57 -07001588 struct rt6_exception_bucket *bucket;
David Ahern8d1c8022018-04-17 17:33:26 -07001589 struct fib6_info *from = rt->from;
Wei Wang35732d02017-10-06 12:05:57 -07001590 struct in6_addr *src_key = NULL;
1591 struct rt6_exception *rt6_ex;
1592
1593 if (!from ||
Colin Ian King442d7132017-10-10 19:10:30 +01001594 !(rt->rt6i_flags & RTF_CACHE))
Wei Wang35732d02017-10-06 12:05:57 -07001595 return;
1596
1597 rcu_read_lock();
1598 bucket = rcu_dereference(from->rt6i_exception_bucket);
1599
1600#ifdef CONFIG_IPV6_SUBTREES
1601 /* rt6i_src.plen != 0 indicates 'from' is in subtree
1602 * and exception table is indexed by a hash of
1603 * both rt6i_dst and rt6i_src.
1604 * Otherwise, the exception table is indexed by
1605 * a hash of only rt6i_dst.
1606 */
David Ahern93c2fb22018-04-18 15:38:59 -07001607 if (from->fib6_src.plen)
Wei Wang35732d02017-10-06 12:05:57 -07001608 src_key = &rt->rt6i_src.addr;
1609#endif
1610 rt6_ex = __rt6_find_exception_rcu(&bucket,
1611 &rt->rt6i_dst.addr,
1612 src_key);
1613 if (rt6_ex)
1614 rt6_ex->stamp = jiffies;
1615
1616 rcu_read_unlock();
1617}
1618
David Ahern8d1c8022018-04-17 17:33:26 -07001619static void rt6_exceptions_remove_prefsrc(struct fib6_info *rt)
Wei Wang60006a42017-10-06 12:05:58 -07001620{
1621 struct rt6_exception_bucket *bucket;
1622 struct rt6_exception *rt6_ex;
1623 int i;
1624
1625 bucket = rcu_dereference_protected(rt->rt6i_exception_bucket,
1626 lockdep_is_held(&rt6_exception_lock));
1627
1628 if (bucket) {
1629 for (i = 0; i < FIB6_EXCEPTION_BUCKET_SIZE; i++) {
1630 hlist_for_each_entry(rt6_ex, &bucket->chain, hlist) {
1631 rt6_ex->rt6i->rt6i_prefsrc.plen = 0;
1632 }
1633 bucket++;
1634 }
1635 }
1636}
1637
Stefano Brivioe9fa1492018-03-06 11:10:19 +01001638static bool rt6_mtu_change_route_allowed(struct inet6_dev *idev,
1639 struct rt6_info *rt, int mtu)
1640{
1641 /* If the new MTU is lower than the route PMTU, this new MTU will be the
1642 * lowest MTU in the path: always allow updating the route PMTU to
1643 * reflect PMTU decreases.
1644 *
1645 * If the new MTU is higher, and the route PMTU is equal to the local
1646 * MTU, this means the old MTU is the lowest in the path, so allow
1647 * updating it: if other nodes now have lower MTUs, PMTU discovery will
1648 * handle this.
1649 */
1650
1651 if (dst_mtu(&rt->dst) >= mtu)
1652 return true;
1653
1654 if (dst_mtu(&rt->dst) == idev->cnf.mtu6)
1655 return true;
1656
1657 return false;
1658}
1659
1660static void rt6_exceptions_update_pmtu(struct inet6_dev *idev,
David Ahern8d1c8022018-04-17 17:33:26 -07001661 struct fib6_info *rt, int mtu)
Wei Wangf5bbe7e2017-10-06 12:05:59 -07001662{
1663 struct rt6_exception_bucket *bucket;
1664 struct rt6_exception *rt6_ex;
1665 int i;
1666
1667 bucket = rcu_dereference_protected(rt->rt6i_exception_bucket,
1668 lockdep_is_held(&rt6_exception_lock));
1669
Stefano Brivioe9fa1492018-03-06 11:10:19 +01001670 if (!bucket)
1671 return;
1672
1673 for (i = 0; i < FIB6_EXCEPTION_BUCKET_SIZE; i++) {
1674 hlist_for_each_entry(rt6_ex, &bucket->chain, hlist) {
1675 struct rt6_info *entry = rt6_ex->rt6i;
1676
1677 /* For RTF_CACHE with rt6i_pmtu == 0 (i.e. a redirected
David Ahernd4ead6b2018-04-17 17:33:16 -07001678 * route), the metrics of its rt->from have already
Stefano Brivioe9fa1492018-03-06 11:10:19 +01001679 * been updated.
1680 */
David Ahernd4ead6b2018-04-17 17:33:16 -07001681 if (dst_metric_raw(&entry->dst, RTAX_MTU) &&
Stefano Brivioe9fa1492018-03-06 11:10:19 +01001682 rt6_mtu_change_route_allowed(idev, entry, mtu))
David Ahernd4ead6b2018-04-17 17:33:16 -07001683 dst_metric_set(&entry->dst, RTAX_MTU, mtu);
Wei Wangf5bbe7e2017-10-06 12:05:59 -07001684 }
Stefano Brivioe9fa1492018-03-06 11:10:19 +01001685 bucket++;
Wei Wangf5bbe7e2017-10-06 12:05:59 -07001686 }
1687}
1688
Wei Wangb16cb452017-10-06 12:06:00 -07001689#define RTF_CACHE_GATEWAY (RTF_GATEWAY | RTF_CACHE)
1690
David Ahern8d1c8022018-04-17 17:33:26 -07001691static void rt6_exceptions_clean_tohost(struct fib6_info *rt,
Wei Wangb16cb452017-10-06 12:06:00 -07001692 struct in6_addr *gateway)
1693{
1694 struct rt6_exception_bucket *bucket;
1695 struct rt6_exception *rt6_ex;
1696 struct hlist_node *tmp;
1697 int i;
1698
1699 if (!rcu_access_pointer(rt->rt6i_exception_bucket))
1700 return;
1701
1702 spin_lock_bh(&rt6_exception_lock);
1703 bucket = rcu_dereference_protected(rt->rt6i_exception_bucket,
1704 lockdep_is_held(&rt6_exception_lock));
1705
1706 if (bucket) {
1707 for (i = 0; i < FIB6_EXCEPTION_BUCKET_SIZE; i++) {
1708 hlist_for_each_entry_safe(rt6_ex, tmp,
1709 &bucket->chain, hlist) {
1710 struct rt6_info *entry = rt6_ex->rt6i;
1711
1712 if ((entry->rt6i_flags & RTF_CACHE_GATEWAY) ==
1713 RTF_CACHE_GATEWAY &&
1714 ipv6_addr_equal(gateway,
1715 &entry->rt6i_gateway)) {
1716 rt6_remove_exception(bucket, rt6_ex);
1717 }
1718 }
1719 bucket++;
1720 }
1721 }
1722
1723 spin_unlock_bh(&rt6_exception_lock);
1724}
1725
Wei Wangc757faa2017-10-06 12:06:01 -07001726static void rt6_age_examine_exception(struct rt6_exception_bucket *bucket,
1727 struct rt6_exception *rt6_ex,
1728 struct fib6_gc_args *gc_args,
1729 unsigned long now)
1730{
1731 struct rt6_info *rt = rt6_ex->rt6i;
1732
Paolo Abeni1859bac2017-10-19 16:07:11 +02001733 /* we are pruning and obsoleting aged-out and non gateway exceptions
1734 * even if others have still references to them, so that on next
1735 * dst_check() such references can be dropped.
1736 * EXPIRES exceptions - e.g. pmtu-generated ones are pruned when
1737 * expired, independently from their aging, as per RFC 8201 section 4
1738 */
Wei Wang31afeb42018-01-26 11:40:17 -08001739 if (!(rt->rt6i_flags & RTF_EXPIRES)) {
1740 if (time_after_eq(now, rt->dst.lastuse + gc_args->timeout)) {
1741 RT6_TRACE("aging clone %p\n", rt);
1742 rt6_remove_exception(bucket, rt6_ex);
1743 return;
1744 }
1745 } else if (time_after(jiffies, rt->dst.expires)) {
1746 RT6_TRACE("purging expired route %p\n", rt);
Wei Wangc757faa2017-10-06 12:06:01 -07001747 rt6_remove_exception(bucket, rt6_ex);
1748 return;
Wei Wang31afeb42018-01-26 11:40:17 -08001749 }
1750
1751 if (rt->rt6i_flags & RTF_GATEWAY) {
Wei Wangc757faa2017-10-06 12:06:01 -07001752 struct neighbour *neigh;
1753 __u8 neigh_flags = 0;
1754
Eric Dumazet1bfa26f2018-03-23 07:56:58 -07001755 neigh = __ipv6_neigh_lookup_noref(rt->dst.dev, &rt->rt6i_gateway);
1756 if (neigh)
Wei Wangc757faa2017-10-06 12:06:01 -07001757 neigh_flags = neigh->flags;
Eric Dumazet1bfa26f2018-03-23 07:56:58 -07001758
Wei Wangc757faa2017-10-06 12:06:01 -07001759 if (!(neigh_flags & NTF_ROUTER)) {
1760 RT6_TRACE("purging route %p via non-router but gateway\n",
1761 rt);
1762 rt6_remove_exception(bucket, rt6_ex);
1763 return;
1764 }
1765 }
Wei Wang31afeb42018-01-26 11:40:17 -08001766
Wei Wangc757faa2017-10-06 12:06:01 -07001767 gc_args->more++;
1768}
1769
David Ahern8d1c8022018-04-17 17:33:26 -07001770void rt6_age_exceptions(struct fib6_info *rt,
Wei Wangc757faa2017-10-06 12:06:01 -07001771 struct fib6_gc_args *gc_args,
1772 unsigned long now)
1773{
1774 struct rt6_exception_bucket *bucket;
1775 struct rt6_exception *rt6_ex;
1776 struct hlist_node *tmp;
1777 int i;
1778
1779 if (!rcu_access_pointer(rt->rt6i_exception_bucket))
1780 return;
1781
Eric Dumazet1bfa26f2018-03-23 07:56:58 -07001782 rcu_read_lock_bh();
1783 spin_lock(&rt6_exception_lock);
Wei Wangc757faa2017-10-06 12:06:01 -07001784 bucket = rcu_dereference_protected(rt->rt6i_exception_bucket,
1785 lockdep_is_held(&rt6_exception_lock));
1786
1787 if (bucket) {
1788 for (i = 0; i < FIB6_EXCEPTION_BUCKET_SIZE; i++) {
1789 hlist_for_each_entry_safe(rt6_ex, tmp,
1790 &bucket->chain, hlist) {
1791 rt6_age_examine_exception(bucket, rt6_ex,
1792 gc_args, now);
1793 }
1794 bucket++;
1795 }
1796 }
Eric Dumazet1bfa26f2018-03-23 07:56:58 -07001797 spin_unlock(&rt6_exception_lock);
1798 rcu_read_unlock_bh();
Wei Wangc757faa2017-10-06 12:06:01 -07001799}
1800
David Ahern9ff74382016-06-13 13:44:19 -07001801struct rt6_info *ip6_pol_route(struct net *net, struct fib6_table *table,
David Ahernb75cc8f2018-03-02 08:32:17 -08001802 int oif, struct flowi6 *fl6,
1803 const struct sk_buff *skb, int flags)
Linus Torvalds1da177e2005-04-16 15:20:36 -07001804{
Martin KaFai Lau367efcb2014-10-20 13:42:45 -07001805 struct fib6_node *fn, *saved_fn;
David Ahern8d1c8022018-04-17 17:33:26 -07001806 struct fib6_info *f6i;
David Ahern23fb93a2018-04-17 17:33:23 -07001807 struct rt6_info *rt;
Thomas Grafc71099a2006-08-04 23:20:06 -07001808 int strict = 0;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001809
YOSHIFUJI Hideaki77d16f42006-08-23 17:25:05 -07001810 strict |= flags & RT6_LOOKUP_F_IFACE;
David Ahernd5d32e42016-10-24 12:27:23 -07001811 strict |= flags & RT6_LOOKUP_F_IGNORE_LINKSTATE;
Martin KaFai Lau367efcb2014-10-20 13:42:45 -07001812 if (net->ipv6.devconf_all->forwarding == 0)
1813 strict |= RT6_LOOKUP_F_REACHABLE;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001814
Wei Wang66f5d6c2017-10-06 12:06:10 -07001815 rcu_read_lock();
Linus Torvalds1da177e2005-04-16 15:20:36 -07001816
David S. Miller4c9483b2011-03-12 16:22:43 -05001817 fn = fib6_lookup(&table->tb6_root, &fl6->daddr, &fl6->saddr);
Martin KaFai Lau367efcb2014-10-20 13:42:45 -07001818 saved_fn = fn;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001819
David Ahernca254492015-10-12 11:47:10 -07001820 if (fl6->flowi6_flags & FLOWI_FLAG_SKIP_NH_OIF)
1821 oif = 0;
1822
Martin KaFai Laua3c00e42014-10-20 13:42:43 -07001823redo_rt6_select:
David Ahern23fb93a2018-04-17 17:33:23 -07001824 f6i = rt6_select(net, fn, oif, strict);
David Ahern93c2fb22018-04-18 15:38:59 -07001825 if (f6i->fib6_nsiblings)
David Ahern23fb93a2018-04-17 17:33:23 -07001826 f6i = rt6_multipath_select(net, f6i, fl6, oif, skb, strict);
1827 if (f6i == net->ipv6.fib6_null_entry) {
Martin KaFai Laua3c00e42014-10-20 13:42:43 -07001828 fn = fib6_backtrack(fn, &fl6->saddr);
1829 if (fn)
1830 goto redo_rt6_select;
Martin KaFai Lau367efcb2014-10-20 13:42:45 -07001831 else if (strict & RT6_LOOKUP_F_REACHABLE) {
1832 /* also consider unreachable route */
1833 strict &= ~RT6_LOOKUP_F_REACHABLE;
1834 fn = saved_fn;
1835 goto redo_rt6_select;
Martin KaFai Lau367efcb2014-10-20 13:42:45 -07001836 }
Martin KaFai Laua3c00e42014-10-20 13:42:43 -07001837 }
1838
David Ahern23fb93a2018-04-17 17:33:23 -07001839 if (f6i == net->ipv6.fib6_null_entry) {
David Ahern421842e2018-04-17 17:33:18 -07001840 rt = net->ipv6.ip6_null_entry;
Wei Wang66f5d6c2017-10-06 12:06:10 -07001841 rcu_read_unlock();
Wei Wangd3843fe2017-10-06 12:06:06 -07001842 dst_hold(&rt->dst);
Paolo Abenib65f1642017-10-19 09:31:43 +02001843 trace_fib6_table_lookup(net, rt, table, fl6);
Wei Wangd3843fe2017-10-06 12:06:06 -07001844 return rt;
David Ahern23fb93a2018-04-17 17:33:23 -07001845 }
1846
1847 /*Search through exception table */
1848 rt = rt6_find_cached_rt(f6i, &fl6->daddr, &fl6->saddr);
1849 if (rt) {
David Ahernd4ead6b2018-04-17 17:33:16 -07001850 if (ip6_hold_safe(net, &rt, true))
Wei Wangd3843fe2017-10-06 12:06:06 -07001851 dst_use_noref(&rt->dst, jiffies);
David Ahernd4ead6b2018-04-17 17:33:16 -07001852
Wei Wang66f5d6c2017-10-06 12:06:10 -07001853 rcu_read_unlock();
Paolo Abenib65f1642017-10-19 09:31:43 +02001854 trace_fib6_table_lookup(net, rt, table, fl6);
Martin KaFai Laud52d3992015-05-22 20:56:06 -07001855 return rt;
Martin KaFai Lau3da59bd2015-05-22 20:56:03 -07001856 } else if (unlikely((fl6->flowi6_flags & FLOWI_FLAG_KNOWN_NH) &&
David Ahern93c2fb22018-04-18 15:38:59 -07001857 !(f6i->fib6_flags & RTF_GATEWAY))) {
Martin KaFai Lau3da59bd2015-05-22 20:56:03 -07001858 /* Create a RTF_CACHE clone which will not be
1859 * owned by the fib6 tree. It is for the special case where
1860 * the daddr in the skb during the neighbor look-up is different
1861 * from the fl6->daddr used to look-up route here.
1862 */
Martin KaFai Lau3da59bd2015-05-22 20:56:03 -07001863 struct rt6_info *uncached_rt;
1864
David Ahern23fb93a2018-04-17 17:33:23 -07001865 uncached_rt = ip6_rt_cache_alloc(f6i, &fl6->daddr, NULL);
David Ahern4d85cd02018-04-20 15:37:59 -07001866
1867 rcu_read_unlock();
Martin KaFai Lau3da59bd2015-05-22 20:56:03 -07001868
Wei Wang1cfb71e2017-06-17 10:42:33 -07001869 if (uncached_rt) {
1870 /* Uncached_rt's refcnt is taken during ip6_rt_cache_alloc()
1871 * No need for another dst_hold()
1872 */
Martin KaFai Lau8d0b94a2015-05-22 20:56:04 -07001873 rt6_uncached_list_add(uncached_rt);
Wei Wang81eb8442017-10-06 12:06:11 -07001874 atomic_inc(&net->ipv6.rt6_stats->fib_rt_uncache);
Wei Wang1cfb71e2017-06-17 10:42:33 -07001875 } else {
Martin KaFai Lau3da59bd2015-05-22 20:56:03 -07001876 uncached_rt = net->ipv6.ip6_null_entry;
Wei Wang1cfb71e2017-06-17 10:42:33 -07001877 dst_hold(&uncached_rt->dst);
1878 }
David Ahernb8115802015-11-19 12:24:22 -08001879
Paolo Abenib65f1642017-10-19 09:31:43 +02001880 trace_fib6_table_lookup(net, uncached_rt, table, fl6);
Martin KaFai Lau3da59bd2015-05-22 20:56:03 -07001881 return uncached_rt;
Martin KaFai Lau3da59bd2015-05-22 20:56:03 -07001882
Martin KaFai Laud52d3992015-05-22 20:56:06 -07001883 } else {
1884 /* Get a percpu copy */
1885
1886 struct rt6_info *pcpu_rt;
1887
Eric Dumazet951f7882017-10-08 21:07:18 -07001888 local_bh_disable();
David Ahern23fb93a2018-04-17 17:33:23 -07001889 pcpu_rt = rt6_get_pcpu_route(f6i);
Martin KaFai Laud52d3992015-05-22 20:56:06 -07001890
David Ahern93531c62018-04-17 17:33:25 -07001891 if (!pcpu_rt)
1892 pcpu_rt = rt6_make_pcpu_route(net, f6i);
1893
Eric Dumazet951f7882017-10-08 21:07:18 -07001894 local_bh_enable();
1895 rcu_read_unlock();
Paolo Abenib65f1642017-10-19 09:31:43 +02001896 trace_fib6_table_lookup(net, pcpu_rt, table, fl6);
Martin KaFai Laud52d3992015-05-22 20:56:06 -07001897 return pcpu_rt;
1898 }
Thomas Grafc71099a2006-08-04 23:20:06 -07001899}
David Ahern9ff74382016-06-13 13:44:19 -07001900EXPORT_SYMBOL_GPL(ip6_pol_route);
Thomas Grafc71099a2006-08-04 23:20:06 -07001901
David Ahernb75cc8f2018-03-02 08:32:17 -08001902static struct rt6_info *ip6_pol_route_input(struct net *net,
1903 struct fib6_table *table,
1904 struct flowi6 *fl6,
1905 const struct sk_buff *skb,
1906 int flags)
Pavel Emelyanov4acad722007-10-15 13:02:51 -07001907{
David Ahernb75cc8f2018-03-02 08:32:17 -08001908 return ip6_pol_route(net, table, fl6->flowi6_iif, fl6, skb, flags);
Pavel Emelyanov4acad722007-10-15 13:02:51 -07001909}
1910
Mahesh Bandeward409b842016-09-16 12:59:08 -07001911struct dst_entry *ip6_route_input_lookup(struct net *net,
1912 struct net_device *dev,
David Ahernb75cc8f2018-03-02 08:32:17 -08001913 struct flowi6 *fl6,
1914 const struct sk_buff *skb,
1915 int flags)
Shmulik Ladkani72331bc2012-04-01 04:03:45 +00001916{
1917 if (rt6_need_strict(&fl6->daddr) && dev->type != ARPHRD_PIMREG)
1918 flags |= RT6_LOOKUP_F_IFACE;
1919
David Ahernb75cc8f2018-03-02 08:32:17 -08001920 return fib6_rule_lookup(net, fl6, skb, flags, ip6_pol_route_input);
Shmulik Ladkani72331bc2012-04-01 04:03:45 +00001921}
Mahesh Bandeward409b842016-09-16 12:59:08 -07001922EXPORT_SYMBOL_GPL(ip6_route_input_lookup);
Shmulik Ladkani72331bc2012-04-01 04:03:45 +00001923
Jakub Sitnicki23aebda2017-08-23 09:58:29 +02001924static void ip6_multipath_l3_keys(const struct sk_buff *skb,
Roopa Prabhu5e5d6fe2018-02-28 22:43:22 -05001925 struct flow_keys *keys,
1926 struct flow_keys *flkeys)
Jakub Sitnicki23aebda2017-08-23 09:58:29 +02001927{
1928 const struct ipv6hdr *outer_iph = ipv6_hdr(skb);
1929 const struct ipv6hdr *key_iph = outer_iph;
Roopa Prabhu5e5d6fe2018-02-28 22:43:22 -05001930 struct flow_keys *_flkeys = flkeys;
Jakub Sitnicki23aebda2017-08-23 09:58:29 +02001931 const struct ipv6hdr *inner_iph;
1932 const struct icmp6hdr *icmph;
1933 struct ipv6hdr _inner_iph;
1934
1935 if (likely(outer_iph->nexthdr != IPPROTO_ICMPV6))
1936 goto out;
1937
1938 icmph = icmp6_hdr(skb);
1939 if (icmph->icmp6_type != ICMPV6_DEST_UNREACH &&
1940 icmph->icmp6_type != ICMPV6_PKT_TOOBIG &&
1941 icmph->icmp6_type != ICMPV6_TIME_EXCEED &&
1942 icmph->icmp6_type != ICMPV6_PARAMPROB)
1943 goto out;
1944
1945 inner_iph = skb_header_pointer(skb,
1946 skb_transport_offset(skb) + sizeof(*icmph),
1947 sizeof(_inner_iph), &_inner_iph);
1948 if (!inner_iph)
1949 goto out;
1950
1951 key_iph = inner_iph;
Roopa Prabhu5e5d6fe2018-02-28 22:43:22 -05001952 _flkeys = NULL;
Jakub Sitnicki23aebda2017-08-23 09:58:29 +02001953out:
Roopa Prabhu5e5d6fe2018-02-28 22:43:22 -05001954 if (_flkeys) {
1955 keys->addrs.v6addrs.src = _flkeys->addrs.v6addrs.src;
1956 keys->addrs.v6addrs.dst = _flkeys->addrs.v6addrs.dst;
1957 keys->tags.flow_label = _flkeys->tags.flow_label;
1958 keys->basic.ip_proto = _flkeys->basic.ip_proto;
1959 } else {
1960 keys->addrs.v6addrs.src = key_iph->saddr;
1961 keys->addrs.v6addrs.dst = key_iph->daddr;
1962 keys->tags.flow_label = ip6_flowinfo(key_iph);
1963 keys->basic.ip_proto = key_iph->nexthdr;
1964 }
Jakub Sitnicki23aebda2017-08-23 09:58:29 +02001965}
1966
1967/* if skb is set it will be used and fl6 can be NULL */
David Ahernb4bac172018-03-02 08:32:18 -08001968u32 rt6_multipath_hash(const struct net *net, const struct flowi6 *fl6,
1969 const struct sk_buff *skb, struct flow_keys *flkeys)
Jakub Sitnicki23aebda2017-08-23 09:58:29 +02001970{
1971 struct flow_keys hash_keys;
David Ahern9a2a5372018-03-02 08:32:15 -08001972 u32 mhash;
Jakub Sitnicki23aebda2017-08-23 09:58:29 +02001973
David S. Millerbbfa0472018-03-12 11:09:33 -04001974 switch (ip6_multipath_hash_policy(net)) {
David Ahernb4bac172018-03-02 08:32:18 -08001975 case 0:
1976 memset(&hash_keys, 0, sizeof(hash_keys));
1977 hash_keys.control.addr_type = FLOW_DISSECTOR_KEY_IPV6_ADDRS;
1978 if (skb) {
1979 ip6_multipath_l3_keys(skb, &hash_keys, flkeys);
1980 } else {
1981 hash_keys.addrs.v6addrs.src = fl6->saddr;
1982 hash_keys.addrs.v6addrs.dst = fl6->daddr;
1983 hash_keys.tags.flow_label = (__force u32)fl6->flowlabel;
1984 hash_keys.basic.ip_proto = fl6->flowi6_proto;
1985 }
1986 break;
1987 case 1:
1988 if (skb) {
1989 unsigned int flag = FLOW_DISSECTOR_F_STOP_AT_ENCAP;
1990 struct flow_keys keys;
1991
1992 /* short-circuit if we already have L4 hash present */
1993 if (skb->l4_hash)
1994 return skb_get_hash_raw(skb) >> 1;
1995
1996 memset(&hash_keys, 0, sizeof(hash_keys));
1997
1998 if (!flkeys) {
1999 skb_flow_dissect_flow_keys(skb, &keys, flag);
2000 flkeys = &keys;
2001 }
2002 hash_keys.control.addr_type = FLOW_DISSECTOR_KEY_IPV6_ADDRS;
2003 hash_keys.addrs.v6addrs.src = flkeys->addrs.v6addrs.src;
2004 hash_keys.addrs.v6addrs.dst = flkeys->addrs.v6addrs.dst;
2005 hash_keys.ports.src = flkeys->ports.src;
2006 hash_keys.ports.dst = flkeys->ports.dst;
2007 hash_keys.basic.ip_proto = flkeys->basic.ip_proto;
2008 } else {
2009 memset(&hash_keys, 0, sizeof(hash_keys));
2010 hash_keys.control.addr_type = FLOW_DISSECTOR_KEY_IPV6_ADDRS;
2011 hash_keys.addrs.v6addrs.src = fl6->saddr;
2012 hash_keys.addrs.v6addrs.dst = fl6->daddr;
2013 hash_keys.ports.src = fl6->fl6_sport;
2014 hash_keys.ports.dst = fl6->fl6_dport;
2015 hash_keys.basic.ip_proto = fl6->flowi6_proto;
2016 }
2017 break;
Jakub Sitnicki23aebda2017-08-23 09:58:29 +02002018 }
David Ahern9a2a5372018-03-02 08:32:15 -08002019 mhash = flow_hash_from_keys(&hash_keys);
Jakub Sitnicki23aebda2017-08-23 09:58:29 +02002020
David Ahern9a2a5372018-03-02 08:32:15 -08002021 return mhash >> 1;
Jakub Sitnicki23aebda2017-08-23 09:58:29 +02002022}
2023
Thomas Grafc71099a2006-08-04 23:20:06 -07002024void ip6_route_input(struct sk_buff *skb)
2025{
Eric Dumazetb71d1d42011-04-22 04:53:02 +00002026 const struct ipv6hdr *iph = ipv6_hdr(skb);
YOSHIFUJI Hideakic346dca2008-03-25 21:47:49 +09002027 struct net *net = dev_net(skb->dev);
Thomas Grafadaa70b2006-10-13 15:01:03 -07002028 int flags = RT6_LOOKUP_F_HAS_SADDR;
Jiri Benc904af042015-08-20 13:56:31 +02002029 struct ip_tunnel_info *tun_info;
David S. Miller4c9483b2011-03-12 16:22:43 -05002030 struct flowi6 fl6 = {
David Aherne0d56fd2016-09-10 12:09:57 -07002031 .flowi6_iif = skb->dev->ifindex,
David S. Miller4c9483b2011-03-12 16:22:43 -05002032 .daddr = iph->daddr,
2033 .saddr = iph->saddr,
YOSHIFUJI Hideaki / 吉藤英明6502ca52013-01-13 05:01:51 +00002034 .flowlabel = ip6_flowinfo(iph),
David S. Miller4c9483b2011-03-12 16:22:43 -05002035 .flowi6_mark = skb->mark,
2036 .flowi6_proto = iph->nexthdr,
Thomas Grafc71099a2006-08-04 23:20:06 -07002037 };
Roopa Prabhu5e5d6fe2018-02-28 22:43:22 -05002038 struct flow_keys *flkeys = NULL, _flkeys;
Thomas Grafadaa70b2006-10-13 15:01:03 -07002039
Jiri Benc904af042015-08-20 13:56:31 +02002040 tun_info = skb_tunnel_info(skb);
Jiri Benc46fa0622015-08-28 20:48:19 +02002041 if (tun_info && !(tun_info->mode & IP_TUNNEL_INFO_TX))
Jiri Benc904af042015-08-20 13:56:31 +02002042 fl6.flowi6_tun_key.tun_id = tun_info->key.tun_id;
Roopa Prabhu5e5d6fe2018-02-28 22:43:22 -05002043
2044 if (fib6_rules_early_flow_dissect(net, skb, &fl6, &_flkeys))
2045 flkeys = &_flkeys;
2046
Jakub Sitnicki23aebda2017-08-23 09:58:29 +02002047 if (unlikely(fl6.flowi6_proto == IPPROTO_ICMPV6))
David Ahernb4bac172018-03-02 08:32:18 -08002048 fl6.mp_hash = rt6_multipath_hash(net, &fl6, skb, flkeys);
Jiri Benc06e9d042015-08-20 13:56:26 +02002049 skb_dst_drop(skb);
David Ahernb75cc8f2018-03-02 08:32:17 -08002050 skb_dst_set(skb,
2051 ip6_route_input_lookup(net, skb->dev, &fl6, skb, flags));
Thomas Grafc71099a2006-08-04 23:20:06 -07002052}
2053
David Ahernb75cc8f2018-03-02 08:32:17 -08002054static struct rt6_info *ip6_pol_route_output(struct net *net,
2055 struct fib6_table *table,
2056 struct flowi6 *fl6,
2057 const struct sk_buff *skb,
2058 int flags)
Thomas Grafc71099a2006-08-04 23:20:06 -07002059{
David Ahernb75cc8f2018-03-02 08:32:17 -08002060 return ip6_pol_route(net, table, fl6->flowi6_oif, fl6, skb, flags);
Thomas Grafc71099a2006-08-04 23:20:06 -07002061}
2062
Paolo Abeni6f21c962016-01-29 12:30:19 +01002063struct dst_entry *ip6_route_output_flags(struct net *net, const struct sock *sk,
2064 struct flowi6 *fl6, int flags)
Thomas Grafc71099a2006-08-04 23:20:06 -07002065{
David Ahernd46a9d62015-10-21 08:42:22 -07002066 bool any_src;
Thomas Grafc71099a2006-08-04 23:20:06 -07002067
David Ahern4c1feac2016-09-10 12:09:56 -07002068 if (rt6_need_strict(&fl6->daddr)) {
2069 struct dst_entry *dst;
2070
2071 dst = l3mdev_link_scope_lookup(net, fl6);
2072 if (dst)
2073 return dst;
2074 }
David Ahernca254492015-10-12 11:47:10 -07002075
Pavel Emelyanov1fb94892012-08-08 21:53:36 +00002076 fl6->flowi6_iif = LOOPBACK_IFINDEX;
David McCullough4dc27d1c2012-06-25 15:42:26 +00002077
David Ahernd46a9d62015-10-21 08:42:22 -07002078 any_src = ipv6_addr_any(&fl6->saddr);
David Ahern741a11d2015-09-28 10:12:13 -07002079 if ((sk && sk->sk_bound_dev_if) || rt6_need_strict(&fl6->daddr) ||
David Ahernd46a9d62015-10-21 08:42:22 -07002080 (fl6->flowi6_oif && any_src))
YOSHIFUJI Hideaki77d16f42006-08-23 17:25:05 -07002081 flags |= RT6_LOOKUP_F_IFACE;
Thomas Grafc71099a2006-08-04 23:20:06 -07002082
David Ahernd46a9d62015-10-21 08:42:22 -07002083 if (!any_src)
Thomas Grafadaa70b2006-10-13 15:01:03 -07002084 flags |= RT6_LOOKUP_F_HAS_SADDR;
YOSHIFUJI Hideaki / 吉藤英明0c9a2ac2010-03-07 00:14:44 +00002085 else if (sk)
2086 flags |= rt6_srcprefs2flags(inet6_sk(sk)->srcprefs);
Thomas Grafadaa70b2006-10-13 15:01:03 -07002087
David Ahernb75cc8f2018-03-02 08:32:17 -08002088 return fib6_rule_lookup(net, fl6, NULL, flags, ip6_pol_route_output);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002089}
Paolo Abeni6f21c962016-01-29 12:30:19 +01002090EXPORT_SYMBOL_GPL(ip6_route_output_flags);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002091
David S. Miller2774c132011-03-01 14:59:04 -08002092struct dst_entry *ip6_blackhole_route(struct net *net, struct dst_entry *dst_orig)
David S. Miller14e50e52007-05-24 18:17:54 -07002093{
David S. Miller5c1e6aa2011-04-28 14:13:38 -07002094 struct rt6_info *rt, *ort = (struct rt6_info *) dst_orig;
Wei Wang1dbe32522017-06-17 10:42:26 -07002095 struct net_device *loopback_dev = net->loopback_dev;
David S. Miller14e50e52007-05-24 18:17:54 -07002096 struct dst_entry *new = NULL;
2097
Wei Wang1dbe32522017-06-17 10:42:26 -07002098 rt = dst_alloc(&ip6_dst_blackhole_ops, loopback_dev, 1,
Steffen Klassert62cf27e2017-10-09 08:39:43 +02002099 DST_OBSOLETE_DEAD, 0);
David S. Miller14e50e52007-05-24 18:17:54 -07002100 if (rt) {
Martin KaFai Lau0a1f5962015-10-15 16:39:58 -07002101 rt6_info_init(rt);
Wei Wang81eb8442017-10-06 12:06:11 -07002102 atomic_inc(&net->ipv6.rt6_stats->fib_rt_alloc);
Martin KaFai Lau0a1f5962015-10-15 16:39:58 -07002103
Changli Gaod8d1f302010-06-10 23:31:35 -07002104 new = &rt->dst;
David S. Miller14e50e52007-05-24 18:17:54 -07002105 new->__use = 1;
Herbert Xu352e5122007-11-13 21:34:06 -08002106 new->input = dst_discard;
Eric W. Biedermanede20592015-10-07 16:48:47 -05002107 new->output = dst_discard_out;
David S. Miller14e50e52007-05-24 18:17:54 -07002108
Martin KaFai Lau0a1f5962015-10-15 16:39:58 -07002109 dst_copy_metrics(new, &ort->dst);
David S. Miller14e50e52007-05-24 18:17:54 -07002110
Wei Wang1dbe32522017-06-17 10:42:26 -07002111 rt->rt6i_idev = in6_dev_get(loopback_dev);
Alexey Dobriyan4e3fd7a2011-11-21 03:39:03 +00002112 rt->rt6i_gateway = ort->rt6i_gateway;
Martin KaFai Lau0a1f5962015-10-15 16:39:58 -07002113 rt->rt6i_flags = ort->rt6i_flags & ~RTF_PCPU;
David S. Miller14e50e52007-05-24 18:17:54 -07002114
2115 memcpy(&rt->rt6i_dst, &ort->rt6i_dst, sizeof(struct rt6key));
2116#ifdef CONFIG_IPV6_SUBTREES
2117 memcpy(&rt->rt6i_src, &ort->rt6i_src, sizeof(struct rt6key));
2118#endif
David S. Miller14e50e52007-05-24 18:17:54 -07002119 }
2120
David S. Miller69ead7a2011-03-01 14:45:33 -08002121 dst_release(dst_orig);
2122 return new ? new : ERR_PTR(-ENOMEM);
David S. Miller14e50e52007-05-24 18:17:54 -07002123}
David S. Miller14e50e52007-05-24 18:17:54 -07002124
Linus Torvalds1da177e2005-04-16 15:20:36 -07002125/*
2126 * Destination cache support functions
2127 */
2128
David Ahern8d1c8022018-04-17 17:33:26 -07002129static bool fib6_check(struct fib6_info *f6i, u32 cookie)
David Ahern93531c62018-04-17 17:33:25 -07002130{
2131 u32 rt_cookie = 0;
2132
David Ahern8ae86972018-04-20 15:38:03 -07002133 if (!fib6_get_cookie_safe(f6i, &rt_cookie) || rt_cookie != cookie)
David Ahern93531c62018-04-17 17:33:25 -07002134 return false;
2135
2136 if (fib6_check_expired(f6i))
2137 return false;
2138
2139 return true;
2140}
2141
David Aherna68886a2018-04-20 15:38:02 -07002142static struct dst_entry *rt6_check(struct rt6_info *rt,
2143 struct fib6_info *from,
2144 u32 cookie)
Martin KaFai Lau3da59bd2015-05-22 20:56:03 -07002145{
Steffen Klassert36143642017-08-25 09:05:42 +02002146 u32 rt_cookie = 0;
Wei Wangc5cff852017-08-21 09:47:10 -07002147
David Aherna68886a2018-04-20 15:38:02 -07002148 if ((from && !fib6_get_cookie_safe(from, &rt_cookie)) ||
David Ahern93531c62018-04-17 17:33:25 -07002149 rt_cookie != cookie)
Martin KaFai Lau3da59bd2015-05-22 20:56:03 -07002150 return NULL;
2151
2152 if (rt6_check_expired(rt))
2153 return NULL;
2154
2155 return &rt->dst;
2156}
2157
David Aherna68886a2018-04-20 15:38:02 -07002158static struct dst_entry *rt6_dst_from_check(struct rt6_info *rt,
2159 struct fib6_info *from,
2160 u32 cookie)
Martin KaFai Lau3da59bd2015-05-22 20:56:03 -07002161{
Martin KaFai Lau5973fb12015-11-11 11:51:07 -08002162 if (!__rt6_check_expired(rt) &&
2163 rt->dst.obsolete == DST_OBSOLETE_FORCE_CHK &&
David Aherna68886a2018-04-20 15:38:02 -07002164 fib6_check(from, cookie))
Martin KaFai Lau3da59bd2015-05-22 20:56:03 -07002165 return &rt->dst;
2166 else
2167 return NULL;
2168}
2169
Linus Torvalds1da177e2005-04-16 15:20:36 -07002170static struct dst_entry *ip6_dst_check(struct dst_entry *dst, u32 cookie)
2171{
David Aherna87b7dc2018-04-20 15:38:00 -07002172 struct dst_entry *dst_ret;
David Aherna68886a2018-04-20 15:38:02 -07002173 struct fib6_info *from;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002174 struct rt6_info *rt;
2175
David Aherna87b7dc2018-04-20 15:38:00 -07002176 rt = container_of(dst, struct rt6_info, dst);
2177
2178 rcu_read_lock();
Linus Torvalds1da177e2005-04-16 15:20:36 -07002179
Nicolas Dichtel6f3118b2012-09-10 22:09:46 +00002180 /* All IPV6 dsts are created with ->obsolete set to the value
2181 * DST_OBSOLETE_FORCE_CHK which forces validation calls down
2182 * into this function always.
2183 */
Hannes Frederic Sowae3bc10b2013-10-24 07:48:24 +02002184
David Aherna68886a2018-04-20 15:38:02 -07002185 from = rcu_dereference(rt->from);
2186
2187 if (from && (rt->rt6i_flags & RTF_PCPU ||
2188 unlikely(!list_empty(&rt->rt6i_uncached))))
2189 dst_ret = rt6_dst_from_check(rt, from, cookie);
Martin KaFai Lau3da59bd2015-05-22 20:56:03 -07002190 else
David Aherna68886a2018-04-20 15:38:02 -07002191 dst_ret = rt6_check(rt, from, cookie);
David Aherna87b7dc2018-04-20 15:38:00 -07002192
2193 rcu_read_unlock();
2194
2195 return dst_ret;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002196}
2197
2198static struct dst_entry *ip6_negative_advice(struct dst_entry *dst)
2199{
2200 struct rt6_info *rt = (struct rt6_info *) dst;
2201
2202 if (rt) {
YOSHIFUJI Hideaki / 吉藤英明54c1a852010-03-28 07:15:45 +00002203 if (rt->rt6i_flags & RTF_CACHE) {
2204 if (rt6_check_expired(rt)) {
David Ahern93531c62018-04-17 17:33:25 -07002205 rt6_remove_exception_rt(rt);
YOSHIFUJI Hideaki / 吉藤英明54c1a852010-03-28 07:15:45 +00002206 dst = NULL;
2207 }
2208 } else {
Linus Torvalds1da177e2005-04-16 15:20:36 -07002209 dst_release(dst);
YOSHIFUJI Hideaki / 吉藤英明54c1a852010-03-28 07:15:45 +00002210 dst = NULL;
2211 }
Linus Torvalds1da177e2005-04-16 15:20:36 -07002212 }
YOSHIFUJI Hideaki / 吉藤英明54c1a852010-03-28 07:15:45 +00002213 return dst;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002214}
2215
2216static void ip6_link_failure(struct sk_buff *skb)
2217{
2218 struct rt6_info *rt;
2219
Alexey Dobriyan3ffe5332010-02-18 08:25:24 +00002220 icmpv6_send(skb, ICMPV6_DEST_UNREACH, ICMPV6_ADDR_UNREACH, 0);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002221
Eric Dumazetadf30902009-06-02 05:19:30 +00002222 rt = (struct rt6_info *) skb_dst(skb);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002223 if (rt) {
Hannes Frederic Sowa1eb4f752013-07-10 23:00:57 +02002224 if (rt->rt6i_flags & RTF_CACHE) {
Wei Wangad65a2f2017-06-17 10:42:35 -07002225 if (dst_hold_safe(&rt->dst))
David Ahern93531c62018-04-17 17:33:25 -07002226 rt6_remove_exception_rt(rt);
David Aherna68886a2018-04-20 15:38:02 -07002227 } else {
2228 struct fib6_info *from;
Wei Wangc5cff852017-08-21 09:47:10 -07002229 struct fib6_node *fn;
2230
2231 rcu_read_lock();
David Aherna68886a2018-04-20 15:38:02 -07002232 from = rcu_dereference(rt->from);
2233 if (from) {
2234 fn = rcu_dereference(from->fib6_node);
2235 if (fn && (rt->rt6i_flags & RTF_DEFAULT))
2236 fn->fn_sernum = -1;
2237 }
Wei Wangc5cff852017-08-21 09:47:10 -07002238 rcu_read_unlock();
Hannes Frederic Sowa1eb4f752013-07-10 23:00:57 +02002239 }
Linus Torvalds1da177e2005-04-16 15:20:36 -07002240 }
2241}
2242
David Ahern6a3e0302018-04-20 15:37:57 -07002243static void rt6_update_expires(struct rt6_info *rt0, int timeout)
2244{
David Aherna68886a2018-04-20 15:38:02 -07002245 if (!(rt0->rt6i_flags & RTF_EXPIRES)) {
2246 struct fib6_info *from;
2247
2248 rcu_read_lock();
2249 from = rcu_dereference(rt0->from);
2250 if (from)
2251 rt0->dst.expires = from->expires;
2252 rcu_read_unlock();
2253 }
David Ahern6a3e0302018-04-20 15:37:57 -07002254
2255 dst_set_expires(&rt0->dst, timeout);
2256 rt0->rt6i_flags |= RTF_EXPIRES;
2257}
2258
Martin KaFai Lau45e4fd22015-05-22 20:56:00 -07002259static void rt6_do_update_pmtu(struct rt6_info *rt, u32 mtu)
2260{
2261 struct net *net = dev_net(rt->dst.dev);
2262
David Ahernd4ead6b2018-04-17 17:33:16 -07002263 dst_metric_set(&rt->dst, RTAX_MTU, mtu);
Martin KaFai Lau45e4fd22015-05-22 20:56:00 -07002264 rt->rt6i_flags |= RTF_MODIFIED;
Martin KaFai Lau45e4fd22015-05-22 20:56:00 -07002265 rt6_update_expires(rt, net->ipv6.sysctl.ip6_rt_mtu_expires);
2266}
2267
Martin KaFai Lau0d3f6d22015-11-11 11:51:06 -08002268static bool rt6_cache_allowed_for_pmtu(const struct rt6_info *rt)
2269{
David Aherna68886a2018-04-20 15:38:02 -07002270 bool from_set;
2271
2272 rcu_read_lock();
2273 from_set = !!rcu_dereference(rt->from);
2274 rcu_read_unlock();
2275
Martin KaFai Lau0d3f6d22015-11-11 11:51:06 -08002276 return !(rt->rt6i_flags & RTF_CACHE) &&
David Aherna68886a2018-04-20 15:38:02 -07002277 (rt->rt6i_flags & RTF_PCPU || from_set);
Martin KaFai Lau0d3f6d22015-11-11 11:51:06 -08002278}
2279
Martin KaFai Lau45e4fd22015-05-22 20:56:00 -07002280static void __ip6_rt_update_pmtu(struct dst_entry *dst, const struct sock *sk,
2281 const struct ipv6hdr *iph, u32 mtu)
Linus Torvalds1da177e2005-04-16 15:20:36 -07002282{
Julian Anastasov0dec8792017-02-06 23:14:16 +02002283 const struct in6_addr *daddr, *saddr;
Ian Morris67ba4152014-08-24 21:53:10 +01002284 struct rt6_info *rt6 = (struct rt6_info *)dst;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002285
Martin KaFai Lau45e4fd22015-05-22 20:56:00 -07002286 if (rt6->rt6i_flags & RTF_LOCAL)
2287 return;
2288
Xin Long19bda362016-10-28 18:18:01 +08002289 if (dst_metric_locked(dst, RTAX_MTU))
2290 return;
2291
Julian Anastasov0dec8792017-02-06 23:14:16 +02002292 if (iph) {
2293 daddr = &iph->daddr;
2294 saddr = &iph->saddr;
2295 } else if (sk) {
2296 daddr = &sk->sk_v6_daddr;
2297 saddr = &inet6_sk(sk)->saddr;
2298 } else {
2299 daddr = NULL;
2300 saddr = NULL;
2301 }
2302 dst_confirm_neigh(dst, daddr);
Martin KaFai Lau45e4fd22015-05-22 20:56:00 -07002303 mtu = max_t(u32, mtu, IPV6_MIN_MTU);
2304 if (mtu >= dst_mtu(dst))
2305 return;
David S. Miller81aded22012-06-15 14:54:11 -07002306
Martin KaFai Lau0d3f6d22015-11-11 11:51:06 -08002307 if (!rt6_cache_allowed_for_pmtu(rt6)) {
Martin KaFai Lau45e4fd22015-05-22 20:56:00 -07002308 rt6_do_update_pmtu(rt6, mtu);
Wei Wang2b760fc2017-10-06 12:06:03 -07002309 /* update rt6_ex->stamp for cache */
2310 if (rt6->rt6i_flags & RTF_CACHE)
2311 rt6_update_exception_stamp_rt(rt6);
Julian Anastasov0dec8792017-02-06 23:14:16 +02002312 } else if (daddr) {
David Aherna68886a2018-04-20 15:38:02 -07002313 struct fib6_info *from;
Martin KaFai Lau45e4fd22015-05-22 20:56:00 -07002314 struct rt6_info *nrt6;
Hagen Paul Pfeifer9d289712015-01-15 22:34:25 +01002315
David Ahern4d85cd02018-04-20 15:37:59 -07002316 rcu_read_lock();
David Aherna68886a2018-04-20 15:38:02 -07002317 from = rcu_dereference(rt6->from);
2318 nrt6 = ip6_rt_cache_alloc(from, daddr, saddr);
Martin KaFai Lau45e4fd22015-05-22 20:56:00 -07002319 if (nrt6) {
2320 rt6_do_update_pmtu(nrt6, mtu);
David Aherna68886a2018-04-20 15:38:02 -07002321 if (rt6_insert_exception(nrt6, from))
Wei Wang2b760fc2017-10-06 12:06:03 -07002322 dst_release_immediate(&nrt6->dst);
Martin KaFai Lau45e4fd22015-05-22 20:56:00 -07002323 }
David Aherna68886a2018-04-20 15:38:02 -07002324 rcu_read_unlock();
Linus Torvalds1da177e2005-04-16 15:20:36 -07002325 }
2326}
2327
Martin KaFai Lau45e4fd22015-05-22 20:56:00 -07002328static void ip6_rt_update_pmtu(struct dst_entry *dst, struct sock *sk,
2329 struct sk_buff *skb, u32 mtu)
2330{
2331 __ip6_rt_update_pmtu(dst, sk, skb ? ipv6_hdr(skb) : NULL, mtu);
2332}
2333
David S. Miller42ae66c2012-06-15 20:01:57 -07002334void ip6_update_pmtu(struct sk_buff *skb, struct net *net, __be32 mtu,
Lorenzo Colittie2d118a2016-11-04 02:23:43 +09002335 int oif, u32 mark, kuid_t uid)
David S. Miller81aded22012-06-15 14:54:11 -07002336{
2337 const struct ipv6hdr *iph = (struct ipv6hdr *) skb->data;
2338 struct dst_entry *dst;
2339 struct flowi6 fl6;
2340
2341 memset(&fl6, 0, sizeof(fl6));
2342 fl6.flowi6_oif = oif;
Lorenzo Colitti1b3c61d2014-05-13 10:17:34 -07002343 fl6.flowi6_mark = mark ? mark : IP6_REPLY_MARK(net, skb->mark);
David S. Miller81aded22012-06-15 14:54:11 -07002344 fl6.daddr = iph->daddr;
2345 fl6.saddr = iph->saddr;
YOSHIFUJI Hideaki / 吉藤英明6502ca52013-01-13 05:01:51 +00002346 fl6.flowlabel = ip6_flowinfo(iph);
Lorenzo Colittie2d118a2016-11-04 02:23:43 +09002347 fl6.flowi6_uid = uid;
David S. Miller81aded22012-06-15 14:54:11 -07002348
2349 dst = ip6_route_output(net, NULL, &fl6);
2350 if (!dst->error)
Martin KaFai Lau45e4fd22015-05-22 20:56:00 -07002351 __ip6_rt_update_pmtu(dst, NULL, iph, ntohl(mtu));
David S. Miller81aded22012-06-15 14:54:11 -07002352 dst_release(dst);
2353}
2354EXPORT_SYMBOL_GPL(ip6_update_pmtu);
2355
2356void ip6_sk_update_pmtu(struct sk_buff *skb, struct sock *sk, __be32 mtu)
2357{
Martin KaFai Lau33c162a2016-04-11 15:29:36 -07002358 struct dst_entry *dst;
2359
David S. Miller81aded22012-06-15 14:54:11 -07002360 ip6_update_pmtu(skb, sock_net(sk), mtu,
Lorenzo Colittie2d118a2016-11-04 02:23:43 +09002361 sk->sk_bound_dev_if, sk->sk_mark, sk->sk_uid);
Martin KaFai Lau33c162a2016-04-11 15:29:36 -07002362
2363 dst = __sk_dst_get(sk);
2364 if (!dst || !dst->obsolete ||
2365 dst->ops->check(dst, inet6_sk(sk)->dst_cookie))
2366 return;
2367
2368 bh_lock_sock(sk);
2369 if (!sock_owned_by_user(sk) && !ipv6_addr_v4mapped(&sk->sk_v6_daddr))
2370 ip6_datagram_dst_update(sk, false);
2371 bh_unlock_sock(sk);
David S. Miller81aded22012-06-15 14:54:11 -07002372}
2373EXPORT_SYMBOL_GPL(ip6_sk_update_pmtu);
2374
Alexey Kodanev7d6850f2018-04-03 15:00:07 +03002375void ip6_sk_dst_store_flow(struct sock *sk, struct dst_entry *dst,
2376 const struct flowi6 *fl6)
2377{
2378#ifdef CONFIG_IPV6_SUBTREES
2379 struct ipv6_pinfo *np = inet6_sk(sk);
2380#endif
2381
2382 ip6_dst_store(sk, dst,
2383 ipv6_addr_equal(&fl6->daddr, &sk->sk_v6_daddr) ?
2384 &sk->sk_v6_daddr : NULL,
2385#ifdef CONFIG_IPV6_SUBTREES
2386 ipv6_addr_equal(&fl6->saddr, &np->saddr) ?
2387 &np->saddr :
2388#endif
2389 NULL);
2390}
2391
Duan Jiongb55b76b2013-09-04 19:44:21 +08002392/* Handle redirects */
2393struct ip6rd_flowi {
2394 struct flowi6 fl6;
2395 struct in6_addr gateway;
2396};
2397
2398static struct rt6_info *__ip6_route_redirect(struct net *net,
2399 struct fib6_table *table,
2400 struct flowi6 *fl6,
David Ahernb75cc8f2018-03-02 08:32:17 -08002401 const struct sk_buff *skb,
Duan Jiongb55b76b2013-09-04 19:44:21 +08002402 int flags)
2403{
2404 struct ip6rd_flowi *rdfl = (struct ip6rd_flowi *)fl6;
David Ahern23fb93a2018-04-17 17:33:23 -07002405 struct rt6_info *ret = NULL, *rt_cache;
David Ahern8d1c8022018-04-17 17:33:26 -07002406 struct fib6_info *rt;
Duan Jiongb55b76b2013-09-04 19:44:21 +08002407 struct fib6_node *fn;
2408
2409 /* Get the "current" route for this destination and
Alexander Alemayhu67c408c2017-01-07 23:53:00 +01002410 * check if the redirect has come from appropriate router.
Duan Jiongb55b76b2013-09-04 19:44:21 +08002411 *
2412 * RFC 4861 specifies that redirects should only be
2413 * accepted if they come from the nexthop to the target.
2414 * Due to the way the routes are chosen, this notion
2415 * is a bit fuzzy and one might need to check all possible
2416 * routes.
2417 */
2418
Wei Wang66f5d6c2017-10-06 12:06:10 -07002419 rcu_read_lock();
Duan Jiongb55b76b2013-09-04 19:44:21 +08002420 fn = fib6_lookup(&table->tb6_root, &fl6->daddr, &fl6->saddr);
2421restart:
Wei Wang66f5d6c2017-10-06 12:06:10 -07002422 for_each_fib6_node_rt_rcu(fn) {
David Ahern5e670d82018-04-17 17:33:14 -07002423 if (rt->fib6_nh.nh_flags & RTNH_F_DEAD)
Ido Schimmel8067bb82018-01-07 12:45:09 +02002424 continue;
David Ahern14895682018-04-17 17:33:17 -07002425 if (fib6_check_expired(rt))
Duan Jiongb55b76b2013-09-04 19:44:21 +08002426 continue;
David Ahern93c2fb22018-04-18 15:38:59 -07002427 if (rt->fib6_flags & RTF_REJECT)
Duan Jiongb55b76b2013-09-04 19:44:21 +08002428 break;
David Ahern93c2fb22018-04-18 15:38:59 -07002429 if (!(rt->fib6_flags & RTF_GATEWAY))
Duan Jiongb55b76b2013-09-04 19:44:21 +08002430 continue;
David Ahern5e670d82018-04-17 17:33:14 -07002431 if (fl6->flowi6_oif != rt->fib6_nh.nh_dev->ifindex)
Duan Jiongb55b76b2013-09-04 19:44:21 +08002432 continue;
Wei Wang2b760fc2017-10-06 12:06:03 -07002433 /* rt_cache's gateway might be different from its 'parent'
2434 * in the case of an ip redirect.
2435 * So we keep searching in the exception table if the gateway
2436 * is different.
2437 */
David Ahern5e670d82018-04-17 17:33:14 -07002438 if (!ipv6_addr_equal(&rdfl->gateway, &rt->fib6_nh.nh_gw)) {
Wei Wang2b760fc2017-10-06 12:06:03 -07002439 rt_cache = rt6_find_cached_rt(rt,
2440 &fl6->daddr,
2441 &fl6->saddr);
2442 if (rt_cache &&
2443 ipv6_addr_equal(&rdfl->gateway,
2444 &rt_cache->rt6i_gateway)) {
David Ahern23fb93a2018-04-17 17:33:23 -07002445 ret = rt_cache;
Wei Wang2b760fc2017-10-06 12:06:03 -07002446 break;
2447 }
Duan Jiongb55b76b2013-09-04 19:44:21 +08002448 continue;
Wei Wang2b760fc2017-10-06 12:06:03 -07002449 }
Duan Jiongb55b76b2013-09-04 19:44:21 +08002450 break;
2451 }
2452
2453 if (!rt)
David Ahern421842e2018-04-17 17:33:18 -07002454 rt = net->ipv6.fib6_null_entry;
David Ahern93c2fb22018-04-18 15:38:59 -07002455 else if (rt->fib6_flags & RTF_REJECT) {
David Ahern23fb93a2018-04-17 17:33:23 -07002456 ret = net->ipv6.ip6_null_entry;
Martin KaFai Laub0a1ba52015-01-20 19:16:02 -08002457 goto out;
2458 }
2459
David Ahern421842e2018-04-17 17:33:18 -07002460 if (rt == net->ipv6.fib6_null_entry) {
Martin KaFai Laua3c00e42014-10-20 13:42:43 -07002461 fn = fib6_backtrack(fn, &fl6->saddr);
2462 if (fn)
2463 goto restart;
Duan Jiongb55b76b2013-09-04 19:44:21 +08002464 }
Martin KaFai Laua3c00e42014-10-20 13:42:43 -07002465
Martin KaFai Laub0a1ba52015-01-20 19:16:02 -08002466out:
David Ahern23fb93a2018-04-17 17:33:23 -07002467 if (ret)
2468 dst_hold(&ret->dst);
2469 else
2470 ret = ip6_create_rt_rcu(rt);
Duan Jiongb55b76b2013-09-04 19:44:21 +08002471
Wei Wang66f5d6c2017-10-06 12:06:10 -07002472 rcu_read_unlock();
Duan Jiongb55b76b2013-09-04 19:44:21 +08002473
David Ahern23fb93a2018-04-17 17:33:23 -07002474 trace_fib6_table_lookup(net, ret, table, fl6);
2475 return ret;
Duan Jiongb55b76b2013-09-04 19:44:21 +08002476};
2477
2478static struct dst_entry *ip6_route_redirect(struct net *net,
David Ahernb75cc8f2018-03-02 08:32:17 -08002479 const struct flowi6 *fl6,
2480 const struct sk_buff *skb,
2481 const struct in6_addr *gateway)
Duan Jiongb55b76b2013-09-04 19:44:21 +08002482{
2483 int flags = RT6_LOOKUP_F_HAS_SADDR;
2484 struct ip6rd_flowi rdfl;
2485
2486 rdfl.fl6 = *fl6;
2487 rdfl.gateway = *gateway;
2488
David Ahernb75cc8f2018-03-02 08:32:17 -08002489 return fib6_rule_lookup(net, &rdfl.fl6, skb,
Duan Jiongb55b76b2013-09-04 19:44:21 +08002490 flags, __ip6_route_redirect);
2491}
2492
Lorenzo Colittie2d118a2016-11-04 02:23:43 +09002493void ip6_redirect(struct sk_buff *skb, struct net *net, int oif, u32 mark,
2494 kuid_t uid)
David S. Miller3a5ad2e2012-07-12 00:08:07 -07002495{
2496 const struct ipv6hdr *iph = (struct ipv6hdr *) skb->data;
2497 struct dst_entry *dst;
2498 struct flowi6 fl6;
2499
2500 memset(&fl6, 0, sizeof(fl6));
Julian Anastasove374c612014-04-28 10:51:56 +03002501 fl6.flowi6_iif = LOOPBACK_IFINDEX;
David S. Miller3a5ad2e2012-07-12 00:08:07 -07002502 fl6.flowi6_oif = oif;
2503 fl6.flowi6_mark = mark;
David S. Miller3a5ad2e2012-07-12 00:08:07 -07002504 fl6.daddr = iph->daddr;
2505 fl6.saddr = iph->saddr;
YOSHIFUJI Hideaki / 吉藤英明6502ca52013-01-13 05:01:51 +00002506 fl6.flowlabel = ip6_flowinfo(iph);
Lorenzo Colittie2d118a2016-11-04 02:23:43 +09002507 fl6.flowi6_uid = uid;
David S. Miller3a5ad2e2012-07-12 00:08:07 -07002508
David Ahernb75cc8f2018-03-02 08:32:17 -08002509 dst = ip6_route_redirect(net, &fl6, skb, &ipv6_hdr(skb)->saddr);
Duan Jiongb55b76b2013-09-04 19:44:21 +08002510 rt6_do_redirect(dst, NULL, skb);
David S. Miller3a5ad2e2012-07-12 00:08:07 -07002511 dst_release(dst);
2512}
2513EXPORT_SYMBOL_GPL(ip6_redirect);
2514
Duan Jiongc92a59e2013-08-22 12:07:35 +08002515void ip6_redirect_no_header(struct sk_buff *skb, struct net *net, int oif,
2516 u32 mark)
2517{
2518 const struct ipv6hdr *iph = ipv6_hdr(skb);
2519 const struct rd_msg *msg = (struct rd_msg *)icmp6_hdr(skb);
2520 struct dst_entry *dst;
2521 struct flowi6 fl6;
2522
2523 memset(&fl6, 0, sizeof(fl6));
Julian Anastasove374c612014-04-28 10:51:56 +03002524 fl6.flowi6_iif = LOOPBACK_IFINDEX;
Duan Jiongc92a59e2013-08-22 12:07:35 +08002525 fl6.flowi6_oif = oif;
2526 fl6.flowi6_mark = mark;
Duan Jiongc92a59e2013-08-22 12:07:35 +08002527 fl6.daddr = msg->dest;
2528 fl6.saddr = iph->daddr;
Lorenzo Colittie2d118a2016-11-04 02:23:43 +09002529 fl6.flowi6_uid = sock_net_uid(net, NULL);
Duan Jiongc92a59e2013-08-22 12:07:35 +08002530
David Ahernb75cc8f2018-03-02 08:32:17 -08002531 dst = ip6_route_redirect(net, &fl6, skb, &iph->saddr);
Duan Jiongb55b76b2013-09-04 19:44:21 +08002532 rt6_do_redirect(dst, NULL, skb);
Duan Jiongc92a59e2013-08-22 12:07:35 +08002533 dst_release(dst);
2534}
2535
David S. Miller3a5ad2e2012-07-12 00:08:07 -07002536void ip6_sk_redirect(struct sk_buff *skb, struct sock *sk)
2537{
Lorenzo Colittie2d118a2016-11-04 02:23:43 +09002538 ip6_redirect(skb, sock_net(sk), sk->sk_bound_dev_if, sk->sk_mark,
2539 sk->sk_uid);
David S. Miller3a5ad2e2012-07-12 00:08:07 -07002540}
2541EXPORT_SYMBOL_GPL(ip6_sk_redirect);
2542
David S. Miller0dbaee32010-12-13 12:52:14 -08002543static unsigned int ip6_default_advmss(const struct dst_entry *dst)
Linus Torvalds1da177e2005-04-16 15:20:36 -07002544{
David S. Miller0dbaee32010-12-13 12:52:14 -08002545 struct net_device *dev = dst->dev;
2546 unsigned int mtu = dst_mtu(dst);
2547 struct net *net = dev_net(dev);
2548
Linus Torvalds1da177e2005-04-16 15:20:36 -07002549 mtu -= sizeof(struct ipv6hdr) + sizeof(struct tcphdr);
2550
Daniel Lezcano55786892008-03-04 13:47:47 -08002551 if (mtu < net->ipv6.sysctl.ip6_rt_min_advmss)
2552 mtu = net->ipv6.sysctl.ip6_rt_min_advmss;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002553
2554 /*
YOSHIFUJI Hideaki1ab14572007-02-09 23:24:49 +09002555 * Maximal non-jumbo IPv6 payload is IPV6_MAXPLEN and
2556 * corresponding MSS is IPV6_MAXPLEN - tcp_header_size.
2557 * IPV6_MAXPLEN is also valid and means: "any MSS,
Linus Torvalds1da177e2005-04-16 15:20:36 -07002558 * rely only on pmtu discovery"
2559 */
2560 if (mtu > IPV6_MAXPLEN - sizeof(struct tcphdr))
2561 mtu = IPV6_MAXPLEN;
2562 return mtu;
2563}
2564
Steffen Klassertebb762f2011-11-23 02:12:51 +00002565static unsigned int ip6_mtu(const struct dst_entry *dst)
David S. Millerd33e4552010-12-14 13:01:14 -08002566{
David S. Millerd33e4552010-12-14 13:01:14 -08002567 struct inet6_dev *idev;
David Ahernd4ead6b2018-04-17 17:33:16 -07002568 unsigned int mtu;
Steffen Klassert618f9bc2011-11-23 02:13:31 +00002569
Martin KaFai Lau4b32b5a2015-04-28 13:03:06 -07002570 mtu = dst_metric_raw(dst, RTAX_MTU);
2571 if (mtu)
2572 goto out;
2573
Steffen Klassert618f9bc2011-11-23 02:13:31 +00002574 mtu = IPV6_MIN_MTU;
David S. Millerd33e4552010-12-14 13:01:14 -08002575
2576 rcu_read_lock();
2577 idev = __in6_dev_get(dst->dev);
2578 if (idev)
2579 mtu = idev->cnf.mtu6;
2580 rcu_read_unlock();
2581
Eric Dumazet30f78d82014-04-10 21:23:36 -07002582out:
Roopa Prabhu14972cb2016-08-24 20:10:43 -07002583 mtu = min_t(unsigned int, mtu, IP6_MAX_MTU);
2584
2585 return mtu - lwtunnel_headroom(dst->lwtstate, mtu);
David S. Millerd33e4552010-12-14 13:01:14 -08002586}
2587
YOSHIFUJI Hideaki3b009442007-12-06 16:11:48 -08002588struct dst_entry *icmp6_dst_alloc(struct net_device *dev,
David S. Miller87a11572011-12-06 17:04:13 -05002589 struct flowi6 *fl6)
Linus Torvalds1da177e2005-04-16 15:20:36 -07002590{
David S. Miller87a11572011-12-06 17:04:13 -05002591 struct dst_entry *dst;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002592 struct rt6_info *rt;
2593 struct inet6_dev *idev = in6_dev_get(dev);
YOSHIFUJI Hideakic346dca2008-03-25 21:47:49 +09002594 struct net *net = dev_net(dev);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002595
David S. Miller38308472011-12-03 18:02:47 -05002596 if (unlikely(!idev))
Eric Dumazet122bdf62012-03-14 21:13:11 +00002597 return ERR_PTR(-ENODEV);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002598
Martin KaFai Lauad706862015-08-14 11:05:52 -07002599 rt = ip6_dst_alloc(net, dev, 0);
David S. Miller38308472011-12-03 18:02:47 -05002600 if (unlikely(!rt)) {
Linus Torvalds1da177e2005-04-16 15:20:36 -07002601 in6_dev_put(idev);
David S. Miller87a11572011-12-06 17:04:13 -05002602 dst = ERR_PTR(-ENOMEM);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002603 goto out;
2604 }
2605
Yan, Zheng8e2ec632011-09-05 21:34:30 +00002606 rt->dst.flags |= DST_HOST;
Brendan McGrath588753f2017-12-13 22:14:57 +11002607 rt->dst.input = ip6_input;
Yan, Zheng8e2ec632011-09-05 21:34:30 +00002608 rt->dst.output = ip6_output;
Julian Anastasov550bab42013-10-20 15:43:04 +03002609 rt->rt6i_gateway = fl6->daddr;
David S. Miller87a11572011-12-06 17:04:13 -05002610 rt->rt6i_dst.addr = fl6->daddr;
Yan, Zheng8e2ec632011-09-05 21:34:30 +00002611 rt->rt6i_dst.plen = 128;
2612 rt->rt6i_idev = idev;
Li RongQing14edd872012-10-24 14:01:18 +08002613 dst_metric_set(&rt->dst, RTAX_HOPLIMIT, 0);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002614
Ido Schimmel4c981e22018-01-07 12:45:04 +02002615 /* Add this dst into uncached_list so that rt6_disable_ip() can
Wei Wang587fea72017-06-17 10:42:36 -07002616 * do proper release of the net_device
2617 */
2618 rt6_uncached_list_add(rt);
Wei Wang81eb8442017-10-06 12:06:11 -07002619 atomic_inc(&net->ipv6.rt6_stats->fib_rt_uncache);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002620
David S. Miller87a11572011-12-06 17:04:13 -05002621 dst = xfrm_lookup(net, &rt->dst, flowi6_to_flowi(fl6), NULL, 0);
2622
Linus Torvalds1da177e2005-04-16 15:20:36 -07002623out:
David S. Miller87a11572011-12-06 17:04:13 -05002624 return dst;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002625}
2626
Daniel Lezcano569d3642008-01-18 03:56:57 -08002627static int ip6_dst_gc(struct dst_ops *ops)
Linus Torvalds1da177e2005-04-16 15:20:36 -07002628{
Alexey Dobriyan86393e52009-08-29 01:34:49 +00002629 struct net *net = container_of(ops, struct net, ipv6.ip6_dst_ops);
Daniel Lezcano7019b782008-03-04 13:50:14 -08002630 int rt_min_interval = net->ipv6.sysctl.ip6_rt_gc_min_interval;
2631 int rt_max_size = net->ipv6.sysctl.ip6_rt_max_size;
2632 int rt_elasticity = net->ipv6.sysctl.ip6_rt_gc_elasticity;
2633 int rt_gc_timeout = net->ipv6.sysctl.ip6_rt_gc_timeout;
2634 unsigned long rt_last_gc = net->ipv6.ip6_rt_last_gc;
Eric Dumazetfc66f952010-10-08 06:37:34 +00002635 int entries;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002636
Eric Dumazetfc66f952010-10-08 06:37:34 +00002637 entries = dst_entries_get_fast(ops);
Michal Kubeček49a18d82013-08-01 10:04:24 +02002638 if (time_after(rt_last_gc + rt_min_interval, jiffies) &&
Eric Dumazetfc66f952010-10-08 06:37:34 +00002639 entries <= rt_max_size)
Linus Torvalds1da177e2005-04-16 15:20:36 -07002640 goto out;
2641
Benjamin Thery6891a342008-03-04 13:49:47 -08002642 net->ipv6.ip6_rt_gc_expire++;
Li RongQing14956642014-05-19 17:30:28 +08002643 fib6_run_gc(net->ipv6.ip6_rt_gc_expire, net, true);
Eric Dumazetfc66f952010-10-08 06:37:34 +00002644 entries = dst_entries_get_slow(ops);
2645 if (entries < ops->gc_thresh)
Daniel Lezcano7019b782008-03-04 13:50:14 -08002646 net->ipv6.ip6_rt_gc_expire = rt_gc_timeout>>1;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002647out:
Daniel Lezcano7019b782008-03-04 13:50:14 -08002648 net->ipv6.ip6_rt_gc_expire -= net->ipv6.ip6_rt_gc_expire>>rt_elasticity;
Eric Dumazetfc66f952010-10-08 06:37:34 +00002649 return entries > rt_max_size;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002650}
2651
David Ahern8d1c8022018-04-17 17:33:26 -07002652static int ip6_convert_metrics(struct net *net, struct fib6_info *rt,
David Ahernd4ead6b2018-04-17 17:33:16 -07002653 struct fib6_config *cfg)
Florian Westphale715b6d2015-01-05 23:57:44 +01002654{
Eric Dumazet263243d2018-04-19 09:14:53 -07002655 struct dst_metrics *p;
Florian Westphale715b6d2015-01-05 23:57:44 +01002656
Eric Dumazet263243d2018-04-19 09:14:53 -07002657 if (!cfg->fc_mx)
2658 return 0;
Florian Westphale715b6d2015-01-05 23:57:44 +01002659
Eric Dumazet263243d2018-04-19 09:14:53 -07002660 p = kzalloc(sizeof(*rt->fib6_metrics), GFP_KERNEL);
2661 if (unlikely(!p))
2662 return -ENOMEM;
Florian Westphale715b6d2015-01-05 23:57:44 +01002663
Eric Dumazet263243d2018-04-19 09:14:53 -07002664 refcount_set(&p->refcnt, 1);
2665 rt->fib6_metrics = p;
Florian Westphale715b6d2015-01-05 23:57:44 +01002666
Eric Dumazet263243d2018-04-19 09:14:53 -07002667 return ip_metrics_convert(net, cfg->fc_mx, cfg->fc_mx_len, p->metrics);
Florian Westphale715b6d2015-01-05 23:57:44 +01002668}
Linus Torvalds1da177e2005-04-16 15:20:36 -07002669
David Ahern8c145862016-04-24 21:26:04 -07002670static struct rt6_info *ip6_nh_lookup_table(struct net *net,
2671 struct fib6_config *cfg,
David Ahernf4797b32018-01-25 16:55:08 -08002672 const struct in6_addr *gw_addr,
2673 u32 tbid, int flags)
David Ahern8c145862016-04-24 21:26:04 -07002674{
2675 struct flowi6 fl6 = {
2676 .flowi6_oif = cfg->fc_ifindex,
2677 .daddr = *gw_addr,
2678 .saddr = cfg->fc_prefsrc,
2679 };
2680 struct fib6_table *table;
2681 struct rt6_info *rt;
David Ahern8c145862016-04-24 21:26:04 -07002682
David Ahernf4797b32018-01-25 16:55:08 -08002683 table = fib6_get_table(net, tbid);
David Ahern8c145862016-04-24 21:26:04 -07002684 if (!table)
2685 return NULL;
2686
2687 if (!ipv6_addr_any(&cfg->fc_prefsrc))
2688 flags |= RT6_LOOKUP_F_HAS_SADDR;
2689
David Ahernf4797b32018-01-25 16:55:08 -08002690 flags |= RT6_LOOKUP_F_IGNORE_LINKSTATE;
David Ahernb75cc8f2018-03-02 08:32:17 -08002691 rt = ip6_pol_route(net, table, cfg->fc_ifindex, &fl6, NULL, flags);
David Ahern8c145862016-04-24 21:26:04 -07002692
2693 /* if table lookup failed, fall back to full lookup */
2694 if (rt == net->ipv6.ip6_null_entry) {
2695 ip6_rt_put(rt);
2696 rt = NULL;
2697 }
2698
2699 return rt;
2700}
2701
David Ahernfc1e64e2018-01-25 16:55:09 -08002702static int ip6_route_check_nh_onlink(struct net *net,
2703 struct fib6_config *cfg,
David Ahern9fbb7042018-03-13 08:29:36 -07002704 const struct net_device *dev,
David Ahernfc1e64e2018-01-25 16:55:09 -08002705 struct netlink_ext_ack *extack)
2706{
David Ahern44750f82018-02-06 13:17:06 -08002707 u32 tbid = l3mdev_fib_table(dev) ? : RT_TABLE_MAIN;
David Ahernfc1e64e2018-01-25 16:55:09 -08002708 const struct in6_addr *gw_addr = &cfg->fc_gateway;
2709 u32 flags = RTF_LOCAL | RTF_ANYCAST | RTF_REJECT;
2710 struct rt6_info *grt;
2711 int err;
2712
2713 err = 0;
2714 grt = ip6_nh_lookup_table(net, cfg, gw_addr, tbid, 0);
2715 if (grt) {
David Ahern58e354c2018-02-06 12:14:12 -08002716 if (!grt->dst.error &&
2717 (grt->rt6i_flags & flags || dev != grt->dst.dev)) {
David Ahern44750f82018-02-06 13:17:06 -08002718 NL_SET_ERR_MSG(extack,
2719 "Nexthop has invalid gateway or device mismatch");
David Ahernfc1e64e2018-01-25 16:55:09 -08002720 err = -EINVAL;
2721 }
2722
2723 ip6_rt_put(grt);
2724 }
2725
2726 return err;
2727}
2728
David Ahern1edce992018-01-25 16:55:07 -08002729static int ip6_route_check_nh(struct net *net,
2730 struct fib6_config *cfg,
2731 struct net_device **_dev,
2732 struct inet6_dev **idev)
2733{
2734 const struct in6_addr *gw_addr = &cfg->fc_gateway;
2735 struct net_device *dev = _dev ? *_dev : NULL;
2736 struct rt6_info *grt = NULL;
2737 int err = -EHOSTUNREACH;
2738
2739 if (cfg->fc_table) {
David Ahernf4797b32018-01-25 16:55:08 -08002740 int flags = RT6_LOOKUP_F_IFACE;
2741
2742 grt = ip6_nh_lookup_table(net, cfg, gw_addr,
2743 cfg->fc_table, flags);
David Ahern1edce992018-01-25 16:55:07 -08002744 if (grt) {
2745 if (grt->rt6i_flags & RTF_GATEWAY ||
2746 (dev && dev != grt->dst.dev)) {
2747 ip6_rt_put(grt);
2748 grt = NULL;
2749 }
2750 }
2751 }
2752
2753 if (!grt)
David Ahernb75cc8f2018-03-02 08:32:17 -08002754 grt = rt6_lookup(net, gw_addr, NULL, cfg->fc_ifindex, NULL, 1);
David Ahern1edce992018-01-25 16:55:07 -08002755
2756 if (!grt)
2757 goto out;
2758
2759 if (dev) {
2760 if (dev != grt->dst.dev) {
2761 ip6_rt_put(grt);
2762 goto out;
2763 }
2764 } else {
2765 *_dev = dev = grt->dst.dev;
2766 *idev = grt->rt6i_idev;
2767 dev_hold(dev);
2768 in6_dev_hold(grt->rt6i_idev);
2769 }
2770
2771 if (!(grt->rt6i_flags & RTF_GATEWAY))
2772 err = 0;
2773
2774 ip6_rt_put(grt);
2775
2776out:
2777 return err;
2778}
2779
David Ahern9fbb7042018-03-13 08:29:36 -07002780static int ip6_validate_gw(struct net *net, struct fib6_config *cfg,
2781 struct net_device **_dev, struct inet6_dev **idev,
2782 struct netlink_ext_ack *extack)
2783{
2784 const struct in6_addr *gw_addr = &cfg->fc_gateway;
2785 int gwa_type = ipv6_addr_type(gw_addr);
David Ahern232378e2018-03-13 08:29:37 -07002786 bool skip_dev = gwa_type & IPV6_ADDR_LINKLOCAL ? false : true;
David Ahern9fbb7042018-03-13 08:29:36 -07002787 const struct net_device *dev = *_dev;
David Ahern232378e2018-03-13 08:29:37 -07002788 bool need_addr_check = !dev;
David Ahern9fbb7042018-03-13 08:29:36 -07002789 int err = -EINVAL;
2790
2791 /* if gw_addr is local we will fail to detect this in case
2792 * address is still TENTATIVE (DAD in progress). rt6_lookup()
2793 * will return already-added prefix route via interface that
2794 * prefix route was assigned to, which might be non-loopback.
2795 */
David Ahern232378e2018-03-13 08:29:37 -07002796 if (dev &&
2797 ipv6_chk_addr_and_flags(net, gw_addr, dev, skip_dev, 0, 0)) {
2798 NL_SET_ERR_MSG(extack, "Gateway can not be a local address");
David Ahern9fbb7042018-03-13 08:29:36 -07002799 goto out;
2800 }
2801
2802 if (gwa_type != (IPV6_ADDR_LINKLOCAL | IPV6_ADDR_UNICAST)) {
2803 /* IPv6 strictly inhibits using not link-local
2804 * addresses as nexthop address.
2805 * Otherwise, router will not able to send redirects.
2806 * It is very good, but in some (rare!) circumstances
2807 * (SIT, PtP, NBMA NOARP links) it is handy to allow
2808 * some exceptions. --ANK
2809 * We allow IPv4-mapped nexthops to support RFC4798-type
2810 * addressing
2811 */
2812 if (!(gwa_type & (IPV6_ADDR_UNICAST | IPV6_ADDR_MAPPED))) {
2813 NL_SET_ERR_MSG(extack, "Invalid gateway address");
2814 goto out;
2815 }
2816
2817 if (cfg->fc_flags & RTNH_F_ONLINK)
2818 err = ip6_route_check_nh_onlink(net, cfg, dev, extack);
2819 else
2820 err = ip6_route_check_nh(net, cfg, _dev, idev);
2821
2822 if (err)
2823 goto out;
2824 }
2825
2826 /* reload in case device was changed */
2827 dev = *_dev;
2828
2829 err = -EINVAL;
2830 if (!dev) {
2831 NL_SET_ERR_MSG(extack, "Egress device not specified");
2832 goto out;
2833 } else if (dev->flags & IFF_LOOPBACK) {
2834 NL_SET_ERR_MSG(extack,
2835 "Egress device can not be loopback device for this route");
2836 goto out;
2837 }
David Ahern232378e2018-03-13 08:29:37 -07002838
2839 /* if we did not check gw_addr above, do so now that the
2840 * egress device has been resolved.
2841 */
2842 if (need_addr_check &&
2843 ipv6_chk_addr_and_flags(net, gw_addr, dev, skip_dev, 0, 0)) {
2844 NL_SET_ERR_MSG(extack, "Gateway can not be a local address");
2845 goto out;
2846 }
2847
David Ahern9fbb7042018-03-13 08:29:36 -07002848 err = 0;
2849out:
2850 return err;
2851}
2852
David Ahern8d1c8022018-04-17 17:33:26 -07002853static struct fib6_info *ip6_route_info_create(struct fib6_config *cfg,
David Ahernacb54e32018-04-17 17:33:22 -07002854 gfp_t gfp_flags,
David Ahern333c4302017-05-21 10:12:04 -06002855 struct netlink_ext_ack *extack)
Linus Torvalds1da177e2005-04-16 15:20:36 -07002856{
Daniel Lezcano55786892008-03-04 13:47:47 -08002857 struct net *net = cfg->fc_nlinfo.nl_net;
David Ahern8d1c8022018-04-17 17:33:26 -07002858 struct fib6_info *rt = NULL;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002859 struct net_device *dev = NULL;
2860 struct inet6_dev *idev = NULL;
Thomas Grafc71099a2006-08-04 23:20:06 -07002861 struct fib6_table *table;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002862 int addr_type;
Roopa Prabhu8c5b83f2015-10-10 08:26:36 -07002863 int err = -EINVAL;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002864
David Ahern557c44b2017-04-19 14:19:43 -07002865 /* RTF_PCPU is an internal flag; can not be set by userspace */
David Ahernd5d531c2017-05-21 10:12:05 -06002866 if (cfg->fc_flags & RTF_PCPU) {
2867 NL_SET_ERR_MSG(extack, "Userspace can not set RTF_PCPU");
David Ahern557c44b2017-04-19 14:19:43 -07002868 goto out;
David Ahernd5d531c2017-05-21 10:12:05 -06002869 }
David Ahern557c44b2017-04-19 14:19:43 -07002870
Wei Wang2ea23522017-10-27 17:30:12 -07002871 /* RTF_CACHE is an internal flag; can not be set by userspace */
2872 if (cfg->fc_flags & RTF_CACHE) {
2873 NL_SET_ERR_MSG(extack, "Userspace can not set RTF_CACHE");
2874 goto out;
2875 }
2876
David Aherne8478e82018-04-17 17:33:13 -07002877 if (cfg->fc_type > RTN_MAX) {
2878 NL_SET_ERR_MSG(extack, "Invalid route type");
2879 goto out;
2880 }
2881
David Ahernd5d531c2017-05-21 10:12:05 -06002882 if (cfg->fc_dst_len > 128) {
2883 NL_SET_ERR_MSG(extack, "Invalid prefix length");
Roopa Prabhu8c5b83f2015-10-10 08:26:36 -07002884 goto out;
David Ahernd5d531c2017-05-21 10:12:05 -06002885 }
2886 if (cfg->fc_src_len > 128) {
2887 NL_SET_ERR_MSG(extack, "Invalid source address length");
2888 goto out;
2889 }
Linus Torvalds1da177e2005-04-16 15:20:36 -07002890#ifndef CONFIG_IPV6_SUBTREES
David Ahernd5d531c2017-05-21 10:12:05 -06002891 if (cfg->fc_src_len) {
2892 NL_SET_ERR_MSG(extack,
2893 "Specifying source address requires IPV6_SUBTREES to be enabled");
Roopa Prabhu8c5b83f2015-10-10 08:26:36 -07002894 goto out;
David Ahernd5d531c2017-05-21 10:12:05 -06002895 }
Linus Torvalds1da177e2005-04-16 15:20:36 -07002896#endif
Thomas Graf86872cb2006-08-22 00:01:08 -07002897 if (cfg->fc_ifindex) {
Linus Torvalds1da177e2005-04-16 15:20:36 -07002898 err = -ENODEV;
Daniel Lezcano55786892008-03-04 13:47:47 -08002899 dev = dev_get_by_index(net, cfg->fc_ifindex);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002900 if (!dev)
2901 goto out;
2902 idev = in6_dev_get(dev);
2903 if (!idev)
2904 goto out;
2905 }
2906
Thomas Graf86872cb2006-08-22 00:01:08 -07002907 if (cfg->fc_metric == 0)
2908 cfg->fc_metric = IP6_RT_PRIO_USER;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002909
David Ahernfc1e64e2018-01-25 16:55:09 -08002910 if (cfg->fc_flags & RTNH_F_ONLINK) {
2911 if (!dev) {
2912 NL_SET_ERR_MSG(extack,
2913 "Nexthop device required for onlink");
2914 err = -ENODEV;
2915 goto out;
2916 }
2917
2918 if (!(dev->flags & IFF_UP)) {
2919 NL_SET_ERR_MSG(extack, "Nexthop device is not up");
2920 err = -ENETDOWN;
2921 goto out;
2922 }
2923 }
2924
Matti Vaittinend71314b2011-11-14 00:14:49 +00002925 err = -ENOBUFS;
David S. Miller38308472011-12-03 18:02:47 -05002926 if (cfg->fc_nlinfo.nlh &&
2927 !(cfg->fc_nlinfo.nlh->nlmsg_flags & NLM_F_CREATE)) {
Matti Vaittinend71314b2011-11-14 00:14:49 +00002928 table = fib6_get_table(net, cfg->fc_table);
David S. Miller38308472011-12-03 18:02:47 -05002929 if (!table) {
Joe Perchesf3213832012-05-15 14:11:53 +00002930 pr_warn("NLM_F_CREATE should be specified when creating new route\n");
Matti Vaittinend71314b2011-11-14 00:14:49 +00002931 table = fib6_new_table(net, cfg->fc_table);
2932 }
2933 } else {
2934 table = fib6_new_table(net, cfg->fc_table);
2935 }
David S. Miller38308472011-12-03 18:02:47 -05002936
2937 if (!table)
Thomas Grafc71099a2006-08-04 23:20:06 -07002938 goto out;
Thomas Grafc71099a2006-08-04 23:20:06 -07002939
David Ahern93531c62018-04-17 17:33:25 -07002940 err = -ENOMEM;
2941 rt = fib6_info_alloc(gfp_flags);
2942 if (!rt)
Linus Torvalds1da177e2005-04-16 15:20:36 -07002943 goto out;
David Ahern93531c62018-04-17 17:33:25 -07002944
2945 if (cfg->fc_flags & RTF_ADDRCONF)
2946 rt->dst_nocount = true;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002947
David Ahernd4ead6b2018-04-17 17:33:16 -07002948 err = ip6_convert_metrics(net, rt, cfg);
2949 if (err < 0)
2950 goto out;
2951
Gao feng1716a962012-04-06 00:13:10 +00002952 if (cfg->fc_flags & RTF_EXPIRES)
David Ahern14895682018-04-17 17:33:17 -07002953 fib6_set_expires(rt, jiffies +
Gao feng1716a962012-04-06 00:13:10 +00002954 clock_t_to_jiffies(cfg->fc_expires));
2955 else
David Ahern14895682018-04-17 17:33:17 -07002956 fib6_clean_expires(rt);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002957
Thomas Graf86872cb2006-08-22 00:01:08 -07002958 if (cfg->fc_protocol == RTPROT_UNSPEC)
2959 cfg->fc_protocol = RTPROT_BOOT;
David Ahern93c2fb22018-04-18 15:38:59 -07002960 rt->fib6_protocol = cfg->fc_protocol;
Thomas Graf86872cb2006-08-22 00:01:08 -07002961
2962 addr_type = ipv6_addr_type(&cfg->fc_dst);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002963
Roopa Prabhu19e42e42015-07-21 10:43:48 +02002964 if (cfg->fc_encap) {
2965 struct lwtunnel_state *lwtstate;
2966
David Ahern30357d72017-01-30 12:07:37 -08002967 err = lwtunnel_build_state(cfg->fc_encap_type,
Tom Herbert127eb7c2015-08-24 09:45:41 -07002968 cfg->fc_encap, AF_INET6, cfg,
David Ahern9ae28722017-05-27 16:19:28 -06002969 &lwtstate, extack);
Roopa Prabhu19e42e42015-07-21 10:43:48 +02002970 if (err)
2971 goto out;
David Ahern5e670d82018-04-17 17:33:14 -07002972 rt->fib6_nh.nh_lwtstate = lwtstate_get(lwtstate);
Roopa Prabhu19e42e42015-07-21 10:43:48 +02002973 }
2974
David Ahern93c2fb22018-04-18 15:38:59 -07002975 ipv6_addr_prefix(&rt->fib6_dst.addr, &cfg->fc_dst, cfg->fc_dst_len);
2976 rt->fib6_dst.plen = cfg->fc_dst_len;
2977 if (rt->fib6_dst.plen == 128)
David Ahern3b6761d2018-04-17 17:33:20 -07002978 rt->dst_host = true;
Michal Kubečeke5fd3872014-03-27 13:04:08 +01002979
Linus Torvalds1da177e2005-04-16 15:20:36 -07002980#ifdef CONFIG_IPV6_SUBTREES
David Ahern93c2fb22018-04-18 15:38:59 -07002981 ipv6_addr_prefix(&rt->fib6_src.addr, &cfg->fc_src, cfg->fc_src_len);
2982 rt->fib6_src.plen = cfg->fc_src_len;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002983#endif
2984
David Ahern93c2fb22018-04-18 15:38:59 -07002985 rt->fib6_metric = cfg->fc_metric;
David Ahern5e670d82018-04-17 17:33:14 -07002986 rt->fib6_nh.nh_weight = 1;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002987
David Aherne8478e82018-04-17 17:33:13 -07002988 rt->fib6_type = cfg->fc_type;
2989
Linus Torvalds1da177e2005-04-16 15:20:36 -07002990 /* We cannot add true routes via loopback here,
2991 they would result in kernel looping; promote them to reject routes
2992 */
Thomas Graf86872cb2006-08-22 00:01:08 -07002993 if ((cfg->fc_flags & RTF_REJECT) ||
David S. Miller38308472011-12-03 18:02:47 -05002994 (dev && (dev->flags & IFF_LOOPBACK) &&
2995 !(addr_type & IPV6_ADDR_LOOPBACK) &&
2996 !(cfg->fc_flags & RTF_LOCAL))) {
Linus Torvalds1da177e2005-04-16 15:20:36 -07002997 /* hold loopback dev/idev if we haven't done so. */
Daniel Lezcano55786892008-03-04 13:47:47 -08002998 if (dev != net->loopback_dev) {
Linus Torvalds1da177e2005-04-16 15:20:36 -07002999 if (dev) {
3000 dev_put(dev);
3001 in6_dev_put(idev);
3002 }
Daniel Lezcano55786892008-03-04 13:47:47 -08003003 dev = net->loopback_dev;
Linus Torvalds1da177e2005-04-16 15:20:36 -07003004 dev_hold(dev);
3005 idev = in6_dev_get(dev);
3006 if (!idev) {
3007 err = -ENODEV;
3008 goto out;
3009 }
3010 }
David Ahern93c2fb22018-04-18 15:38:59 -07003011 rt->fib6_flags = RTF_REJECT|RTF_NONEXTHOP;
Linus Torvalds1da177e2005-04-16 15:20:36 -07003012 goto install_route;
3013 }
3014
Thomas Graf86872cb2006-08-22 00:01:08 -07003015 if (cfg->fc_flags & RTF_GATEWAY) {
David Ahern9fbb7042018-03-13 08:29:36 -07003016 err = ip6_validate_gw(net, cfg, &dev, &idev, extack);
3017 if (err)
Florian Westphal48ed7b22015-05-21 00:25:41 +02003018 goto out;
Linus Torvalds1da177e2005-04-16 15:20:36 -07003019
David Ahern93531c62018-04-17 17:33:25 -07003020 rt->fib6_nh.nh_gw = cfg->fc_gateway;
Linus Torvalds1da177e2005-04-16 15:20:36 -07003021 }
3022
3023 err = -ENODEV;
David S. Miller38308472011-12-03 18:02:47 -05003024 if (!dev)
Linus Torvalds1da177e2005-04-16 15:20:36 -07003025 goto out;
3026
Lorenzo Bianconi428604f2018-03-29 11:02:24 +02003027 if (idev->cnf.disable_ipv6) {
3028 NL_SET_ERR_MSG(extack, "IPv6 is disabled on nexthop device");
3029 err = -EACCES;
3030 goto out;
3031 }
3032
David Ahern955ec4c2018-01-24 19:45:29 -08003033 if (!(dev->flags & IFF_UP)) {
3034 NL_SET_ERR_MSG(extack, "Nexthop device is not up");
3035 err = -ENETDOWN;
3036 goto out;
3037 }
3038
Daniel Walterc3968a82011-04-13 21:10:57 +00003039 if (!ipv6_addr_any(&cfg->fc_prefsrc)) {
3040 if (!ipv6_chk_addr(net, &cfg->fc_prefsrc, dev, 0)) {
David Ahernd5d531c2017-05-21 10:12:05 -06003041 NL_SET_ERR_MSG(extack, "Invalid source address");
Daniel Walterc3968a82011-04-13 21:10:57 +00003042 err = -EINVAL;
3043 goto out;
3044 }
David Ahern93c2fb22018-04-18 15:38:59 -07003045 rt->fib6_prefsrc.addr = cfg->fc_prefsrc;
3046 rt->fib6_prefsrc.plen = 128;
Daniel Walterc3968a82011-04-13 21:10:57 +00003047 } else
David Ahern93c2fb22018-04-18 15:38:59 -07003048 rt->fib6_prefsrc.plen = 0;
Daniel Walterc3968a82011-04-13 21:10:57 +00003049
David Ahern93c2fb22018-04-18 15:38:59 -07003050 rt->fib6_flags = cfg->fc_flags;
Linus Torvalds1da177e2005-04-16 15:20:36 -07003051
3052install_route:
David Ahern93c2fb22018-04-18 15:38:59 -07003053 if (!(rt->fib6_flags & (RTF_LOCAL | RTF_ANYCAST)) &&
Ido Schimmel5609b802018-01-07 12:45:06 +02003054 !netif_carrier_ok(dev))
David Ahern5e670d82018-04-17 17:33:14 -07003055 rt->fib6_nh.nh_flags |= RTNH_F_LINKDOWN;
3056 rt->fib6_nh.nh_flags |= (cfg->fc_flags & RTNH_F_ONLINK);
David Ahern93531c62018-04-17 17:33:25 -07003057 rt->fib6_nh.nh_dev = dev;
David Ahern93c2fb22018-04-18 15:38:59 -07003058 rt->fib6_table = table;
Daniel Lezcano63152fc2008-03-03 23:31:11 -08003059
YOSHIFUJI Hideakic346dca2008-03-25 21:47:49 +09003060 cfg->fc_nlinfo.nl_net = dev_net(dev);
Daniel Lezcano63152fc2008-03-03 23:31:11 -08003061
David Aherndcd1f572018-04-18 15:39:05 -07003062 if (idev)
3063 in6_dev_put(idev);
3064
Roopa Prabhu8c5b83f2015-10-10 08:26:36 -07003065 return rt;
Linus Torvalds1da177e2005-04-16 15:20:36 -07003066out:
3067 if (dev)
3068 dev_put(dev);
3069 if (idev)
3070 in6_dev_put(idev);
Roopa Prabhu6b9ea5a2015-09-08 10:53:04 -07003071
David Ahern93531c62018-04-17 17:33:25 -07003072 fib6_info_release(rt);
Roopa Prabhu8c5b83f2015-10-10 08:26:36 -07003073 return ERR_PTR(err);
Roopa Prabhu6b9ea5a2015-09-08 10:53:04 -07003074}
3075
David Ahernacb54e32018-04-17 17:33:22 -07003076int ip6_route_add(struct fib6_config *cfg, gfp_t gfp_flags,
3077 struct netlink_ext_ack *extack)
Roopa Prabhu6b9ea5a2015-09-08 10:53:04 -07003078{
David Ahern8d1c8022018-04-17 17:33:26 -07003079 struct fib6_info *rt;
Roopa Prabhu6b9ea5a2015-09-08 10:53:04 -07003080 int err;
3081
David Ahernacb54e32018-04-17 17:33:22 -07003082 rt = ip6_route_info_create(cfg, gfp_flags, extack);
David Ahernd4ead6b2018-04-17 17:33:16 -07003083 if (IS_ERR(rt))
3084 return PTR_ERR(rt);
Roopa Prabhu6b9ea5a2015-09-08 10:53:04 -07003085
David Ahernd4ead6b2018-04-17 17:33:16 -07003086 err = __ip6_ins_rt(rt, &cfg->fc_nlinfo, extack);
David Ahern93531c62018-04-17 17:33:25 -07003087 fib6_info_release(rt);
Roopa Prabhu6b9ea5a2015-09-08 10:53:04 -07003088
Linus Torvalds1da177e2005-04-16 15:20:36 -07003089 return err;
3090}
3091
David Ahern8d1c8022018-04-17 17:33:26 -07003092static int __ip6_del_rt(struct fib6_info *rt, struct nl_info *info)
Linus Torvalds1da177e2005-04-16 15:20:36 -07003093{
David Ahernafb1d4b52018-04-17 17:33:11 -07003094 struct net *net = info->nl_net;
Thomas Grafc71099a2006-08-04 23:20:06 -07003095 struct fib6_table *table;
David Ahernafb1d4b52018-04-17 17:33:11 -07003096 int err;
Linus Torvalds1da177e2005-04-16 15:20:36 -07003097
David Ahern421842e2018-04-17 17:33:18 -07003098 if (rt == net->ipv6.fib6_null_entry) {
Gao feng6825a262012-09-19 19:25:34 +00003099 err = -ENOENT;
3100 goto out;
3101 }
Patrick McHardy6c813a72006-08-06 22:22:47 -07003102
David Ahern93c2fb22018-04-18 15:38:59 -07003103 table = rt->fib6_table;
Wei Wang66f5d6c2017-10-06 12:06:10 -07003104 spin_lock_bh(&table->tb6_lock);
Thomas Graf86872cb2006-08-22 00:01:08 -07003105 err = fib6_del(rt, info);
Wei Wang66f5d6c2017-10-06 12:06:10 -07003106 spin_unlock_bh(&table->tb6_lock);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003107
Gao feng6825a262012-09-19 19:25:34 +00003108out:
David Ahern93531c62018-04-17 17:33:25 -07003109 fib6_info_release(rt);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003110 return err;
3111}
3112
David Ahern8d1c8022018-04-17 17:33:26 -07003113int ip6_del_rt(struct net *net, struct fib6_info *rt)
Thomas Grafe0a1ad732006-08-22 00:00:21 -07003114{
David Ahernafb1d4b52018-04-17 17:33:11 -07003115 struct nl_info info = { .nl_net = net };
3116
Denis V. Lunev528c4ce2007-12-13 09:45:12 -08003117 return __ip6_del_rt(rt, &info);
Thomas Grafe0a1ad732006-08-22 00:00:21 -07003118}
3119
David Ahern8d1c8022018-04-17 17:33:26 -07003120static int __ip6_del_rt_siblings(struct fib6_info *rt, struct fib6_config *cfg)
David Ahern0ae81332017-02-02 12:37:08 -08003121{
3122 struct nl_info *info = &cfg->fc_nlinfo;
WANG Conge3330032017-02-27 16:07:43 -08003123 struct net *net = info->nl_net;
David Ahern16a16cd2017-02-02 12:37:11 -08003124 struct sk_buff *skb = NULL;
David Ahern0ae81332017-02-02 12:37:08 -08003125 struct fib6_table *table;
WANG Conge3330032017-02-27 16:07:43 -08003126 int err = -ENOENT;
David Ahern0ae81332017-02-02 12:37:08 -08003127
David Ahern421842e2018-04-17 17:33:18 -07003128 if (rt == net->ipv6.fib6_null_entry)
WANG Conge3330032017-02-27 16:07:43 -08003129 goto out_put;
David Ahern93c2fb22018-04-18 15:38:59 -07003130 table = rt->fib6_table;
Wei Wang66f5d6c2017-10-06 12:06:10 -07003131 spin_lock_bh(&table->tb6_lock);
David Ahern0ae81332017-02-02 12:37:08 -08003132
David Ahern93c2fb22018-04-18 15:38:59 -07003133 if (rt->fib6_nsiblings && cfg->fc_delete_all_nh) {
David Ahern8d1c8022018-04-17 17:33:26 -07003134 struct fib6_info *sibling, *next_sibling;
David Ahern0ae81332017-02-02 12:37:08 -08003135
David Ahern16a16cd2017-02-02 12:37:11 -08003136 /* prefer to send a single notification with all hops */
3137 skb = nlmsg_new(rt6_nlmsg_size(rt), gfp_any());
3138 if (skb) {
3139 u32 seq = info->nlh ? info->nlh->nlmsg_seq : 0;
3140
David Ahernd4ead6b2018-04-17 17:33:16 -07003141 if (rt6_fill_node(net, skb, rt, NULL,
David Ahern16a16cd2017-02-02 12:37:11 -08003142 NULL, NULL, 0, RTM_DELROUTE,
3143 info->portid, seq, 0) < 0) {
3144 kfree_skb(skb);
3145 skb = NULL;
3146 } else
3147 info->skip_notify = 1;
3148 }
3149
David Ahern0ae81332017-02-02 12:37:08 -08003150 list_for_each_entry_safe(sibling, next_sibling,
David Ahern93c2fb22018-04-18 15:38:59 -07003151 &rt->fib6_siblings,
3152 fib6_siblings) {
David Ahern0ae81332017-02-02 12:37:08 -08003153 err = fib6_del(sibling, info);
3154 if (err)
WANG Conge3330032017-02-27 16:07:43 -08003155 goto out_unlock;
David Ahern0ae81332017-02-02 12:37:08 -08003156 }
3157 }
3158
3159 err = fib6_del(rt, info);
WANG Conge3330032017-02-27 16:07:43 -08003160out_unlock:
Wei Wang66f5d6c2017-10-06 12:06:10 -07003161 spin_unlock_bh(&table->tb6_lock);
WANG Conge3330032017-02-27 16:07:43 -08003162out_put:
David Ahern93531c62018-04-17 17:33:25 -07003163 fib6_info_release(rt);
David Ahern16a16cd2017-02-02 12:37:11 -08003164
3165 if (skb) {
WANG Conge3330032017-02-27 16:07:43 -08003166 rtnl_notify(skb, net, info->portid, RTNLGRP_IPV6_ROUTE,
David Ahern16a16cd2017-02-02 12:37:11 -08003167 info->nlh, gfp_any());
3168 }
David Ahern0ae81332017-02-02 12:37:08 -08003169 return err;
3170}
3171
David Ahern23fb93a2018-04-17 17:33:23 -07003172static int ip6_del_cached_rt(struct rt6_info *rt, struct fib6_config *cfg)
3173{
3174 int rc = -ESRCH;
3175
3176 if (cfg->fc_ifindex && rt->dst.dev->ifindex != cfg->fc_ifindex)
3177 goto out;
3178
3179 if (cfg->fc_flags & RTF_GATEWAY &&
3180 !ipv6_addr_equal(&cfg->fc_gateway, &rt->rt6i_gateway))
3181 goto out;
3182 if (dst_hold_safe(&rt->dst))
3183 rc = rt6_remove_exception_rt(rt);
3184out:
3185 return rc;
3186}
3187
David Ahern333c4302017-05-21 10:12:04 -06003188static int ip6_route_del(struct fib6_config *cfg,
3189 struct netlink_ext_ack *extack)
Linus Torvalds1da177e2005-04-16 15:20:36 -07003190{
David Ahern8d1c8022018-04-17 17:33:26 -07003191 struct rt6_info *rt_cache;
Thomas Grafc71099a2006-08-04 23:20:06 -07003192 struct fib6_table *table;
David Ahern8d1c8022018-04-17 17:33:26 -07003193 struct fib6_info *rt;
Linus Torvalds1da177e2005-04-16 15:20:36 -07003194 struct fib6_node *fn;
Linus Torvalds1da177e2005-04-16 15:20:36 -07003195 int err = -ESRCH;
3196
Daniel Lezcano55786892008-03-04 13:47:47 -08003197 table = fib6_get_table(cfg->fc_nlinfo.nl_net, cfg->fc_table);
David Ahernd5d531c2017-05-21 10:12:05 -06003198 if (!table) {
3199 NL_SET_ERR_MSG(extack, "FIB table does not exist");
Thomas Grafc71099a2006-08-04 23:20:06 -07003200 return err;
David Ahernd5d531c2017-05-21 10:12:05 -06003201 }
Linus Torvalds1da177e2005-04-16 15:20:36 -07003202
Wei Wang66f5d6c2017-10-06 12:06:10 -07003203 rcu_read_lock();
Thomas Grafc71099a2006-08-04 23:20:06 -07003204
3205 fn = fib6_locate(&table->tb6_root,
Thomas Graf86872cb2006-08-22 00:01:08 -07003206 &cfg->fc_dst, cfg->fc_dst_len,
Wei Wang38fbeee2017-10-06 12:06:02 -07003207 &cfg->fc_src, cfg->fc_src_len,
Wei Wang2b760fc2017-10-06 12:06:03 -07003208 !(cfg->fc_flags & RTF_CACHE));
YOSHIFUJI Hideaki1ab14572007-02-09 23:24:49 +09003209
Linus Torvalds1da177e2005-04-16 15:20:36 -07003210 if (fn) {
Wei Wang66f5d6c2017-10-06 12:06:10 -07003211 for_each_fib6_node_rt_rcu(fn) {
Wei Wang2b760fc2017-10-06 12:06:03 -07003212 if (cfg->fc_flags & RTF_CACHE) {
David Ahern23fb93a2018-04-17 17:33:23 -07003213 int rc;
3214
Wei Wang2b760fc2017-10-06 12:06:03 -07003215 rt_cache = rt6_find_cached_rt(rt, &cfg->fc_dst,
3216 &cfg->fc_src);
David Ahern23fb93a2018-04-17 17:33:23 -07003217 if (rt_cache) {
3218 rc = ip6_del_cached_rt(rt_cache, cfg);
3219 if (rc != -ESRCH)
3220 return rc;
3221 }
3222 continue;
Wei Wang2b760fc2017-10-06 12:06:03 -07003223 }
Thomas Graf86872cb2006-08-22 00:01:08 -07003224 if (cfg->fc_ifindex &&
David Ahern5e670d82018-04-17 17:33:14 -07003225 (!rt->fib6_nh.nh_dev ||
3226 rt->fib6_nh.nh_dev->ifindex != cfg->fc_ifindex))
Linus Torvalds1da177e2005-04-16 15:20:36 -07003227 continue;
Thomas Graf86872cb2006-08-22 00:01:08 -07003228 if (cfg->fc_flags & RTF_GATEWAY &&
David Ahern5e670d82018-04-17 17:33:14 -07003229 !ipv6_addr_equal(&cfg->fc_gateway, &rt->fib6_nh.nh_gw))
Linus Torvalds1da177e2005-04-16 15:20:36 -07003230 continue;
David Ahern93c2fb22018-04-18 15:38:59 -07003231 if (cfg->fc_metric && cfg->fc_metric != rt->fib6_metric)
Linus Torvalds1da177e2005-04-16 15:20:36 -07003232 continue;
David Ahern93c2fb22018-04-18 15:38:59 -07003233 if (cfg->fc_protocol && cfg->fc_protocol != rt->fib6_protocol)
Mantas Mc2ed1882016-12-16 10:30:59 +02003234 continue;
David Ahern93531c62018-04-17 17:33:25 -07003235 fib6_info_hold(rt);
Wei Wang66f5d6c2017-10-06 12:06:10 -07003236 rcu_read_unlock();
Linus Torvalds1da177e2005-04-16 15:20:36 -07003237
David Ahern0ae81332017-02-02 12:37:08 -08003238 /* if gateway was specified only delete the one hop */
3239 if (cfg->fc_flags & RTF_GATEWAY)
3240 return __ip6_del_rt(rt, &cfg->fc_nlinfo);
3241
3242 return __ip6_del_rt_siblings(rt, cfg);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003243 }
3244 }
Wei Wang66f5d6c2017-10-06 12:06:10 -07003245 rcu_read_unlock();
Linus Torvalds1da177e2005-04-16 15:20:36 -07003246
3247 return err;
3248}
3249
David S. Miller6700c272012-07-17 03:29:28 -07003250static void rt6_do_redirect(struct dst_entry *dst, struct sock *sk, struct sk_buff *skb)
YOSHIFUJI Hideakia6279452006-08-23 17:18:26 -07003251{
YOSHIFUJI Hideakia6279452006-08-23 17:18:26 -07003252 struct netevent_redirect netevent;
David S. Millere8599ff2012-07-11 23:43:53 -07003253 struct rt6_info *rt, *nrt = NULL;
David S. Millere8599ff2012-07-11 23:43:53 -07003254 struct ndisc_options ndopts;
3255 struct inet6_dev *in6_dev;
3256 struct neighbour *neigh;
David Aherna68886a2018-04-20 15:38:02 -07003257 struct fib6_info *from;
YOSHIFUJI Hideaki / 吉藤英明71bcdba2013-01-05 16:34:51 +00003258 struct rd_msg *msg;
David S. Miller6e157b62012-07-12 00:05:02 -07003259 int optlen, on_link;
3260 u8 *lladdr;
David S. Millere8599ff2012-07-11 23:43:53 -07003261
Simon Horman29a3cad2013-05-28 20:34:26 +00003262 optlen = skb_tail_pointer(skb) - skb_transport_header(skb);
YOSHIFUJI Hideaki / 吉藤英明71bcdba2013-01-05 16:34:51 +00003263 optlen -= sizeof(*msg);
David S. Millere8599ff2012-07-11 23:43:53 -07003264
3265 if (optlen < 0) {
David S. Miller6e157b62012-07-12 00:05:02 -07003266 net_dbg_ratelimited("rt6_do_redirect: packet too short\n");
David S. Millere8599ff2012-07-11 23:43:53 -07003267 return;
3268 }
3269
YOSHIFUJI Hideaki / 吉藤英明71bcdba2013-01-05 16:34:51 +00003270 msg = (struct rd_msg *)icmp6_hdr(skb);
David S. Millere8599ff2012-07-11 23:43:53 -07003271
YOSHIFUJI Hideaki / 吉藤英明71bcdba2013-01-05 16:34:51 +00003272 if (ipv6_addr_is_multicast(&msg->dest)) {
David S. Miller6e157b62012-07-12 00:05:02 -07003273 net_dbg_ratelimited("rt6_do_redirect: destination address is multicast\n");
David S. Millere8599ff2012-07-11 23:43:53 -07003274 return;
3275 }
3276
David S. Miller6e157b62012-07-12 00:05:02 -07003277 on_link = 0;
YOSHIFUJI Hideaki / 吉藤英明71bcdba2013-01-05 16:34:51 +00003278 if (ipv6_addr_equal(&msg->dest, &msg->target)) {
David S. Millere8599ff2012-07-11 23:43:53 -07003279 on_link = 1;
YOSHIFUJI Hideaki / 吉藤英明71bcdba2013-01-05 16:34:51 +00003280 } else if (ipv6_addr_type(&msg->target) !=
David S. Millere8599ff2012-07-11 23:43:53 -07003281 (IPV6_ADDR_UNICAST|IPV6_ADDR_LINKLOCAL)) {
David S. Miller6e157b62012-07-12 00:05:02 -07003282 net_dbg_ratelimited("rt6_do_redirect: target address is not link-local unicast\n");
David S. Millere8599ff2012-07-11 23:43:53 -07003283 return;
3284 }
3285
3286 in6_dev = __in6_dev_get(skb->dev);
3287 if (!in6_dev)
3288 return;
3289 if (in6_dev->cnf.forwarding || !in6_dev->cnf.accept_redirects)
3290 return;
3291
3292 /* RFC2461 8.1:
3293 * The IP source address of the Redirect MUST be the same as the current
3294 * first-hop router for the specified ICMP Destination Address.
3295 */
3296
Alexander Aringf997c552016-06-15 21:20:23 +02003297 if (!ndisc_parse_options(skb->dev, msg->opt, optlen, &ndopts)) {
David S. Millere8599ff2012-07-11 23:43:53 -07003298 net_dbg_ratelimited("rt6_redirect: invalid ND options\n");
3299 return;
3300 }
David S. Miller6e157b62012-07-12 00:05:02 -07003301
3302 lladdr = NULL;
David S. Millere8599ff2012-07-11 23:43:53 -07003303 if (ndopts.nd_opts_tgt_lladdr) {
3304 lladdr = ndisc_opt_addr_data(ndopts.nd_opts_tgt_lladdr,
3305 skb->dev);
3306 if (!lladdr) {
3307 net_dbg_ratelimited("rt6_redirect: invalid link-layer address length\n");
3308 return;
3309 }
3310 }
3311
David S. Miller6e157b62012-07-12 00:05:02 -07003312 rt = (struct rt6_info *) dst;
Matthias Schifferec13ad12015-11-02 01:24:38 +01003313 if (rt->rt6i_flags & RTF_REJECT) {
David S. Miller6e157b62012-07-12 00:05:02 -07003314 net_dbg_ratelimited("rt6_redirect: source isn't a valid nexthop for redirect target\n");
3315 return;
3316 }
3317
3318 /* Redirect received -> path was valid.
3319 * Look, redirects are sent only in response to data packets,
3320 * so that this nexthop apparently is reachable. --ANK
3321 */
Julian Anastasov0dec8792017-02-06 23:14:16 +02003322 dst_confirm_neigh(&rt->dst, &ipv6_hdr(skb)->saddr);
David S. Miller6e157b62012-07-12 00:05:02 -07003323
YOSHIFUJI Hideaki / 吉藤英明71bcdba2013-01-05 16:34:51 +00003324 neigh = __neigh_lookup(&nd_tbl, &msg->target, skb->dev, 1);
David S. Millere8599ff2012-07-11 23:43:53 -07003325 if (!neigh)
3326 return;
3327
Linus Torvalds1da177e2005-04-16 15:20:36 -07003328 /*
3329 * We have finally decided to accept it.
3330 */
3331
Alexander Aringf997c552016-06-15 21:20:23 +02003332 ndisc_update(skb->dev, neigh, lladdr, NUD_STALE,
Linus Torvalds1da177e2005-04-16 15:20:36 -07003333 NEIGH_UPDATE_F_WEAK_OVERRIDE|
3334 NEIGH_UPDATE_F_OVERRIDE|
3335 (on_link ? 0 : (NEIGH_UPDATE_F_OVERRIDE_ISROUTER|
Alexander Aringf997c552016-06-15 21:20:23 +02003336 NEIGH_UPDATE_F_ISROUTER)),
3337 NDISC_REDIRECT, &ndopts);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003338
David Ahern4d85cd02018-04-20 15:37:59 -07003339 rcu_read_lock();
David Aherna68886a2018-04-20 15:38:02 -07003340 from = rcu_dereference(rt->from);
3341 nrt = ip6_rt_cache_alloc(from, &msg->dest, NULL);
David Ahern4d85cd02018-04-20 15:37:59 -07003342 rcu_read_unlock();
David S. Miller38308472011-12-03 18:02:47 -05003343 if (!nrt)
Linus Torvalds1da177e2005-04-16 15:20:36 -07003344 goto out;
3345
3346 nrt->rt6i_flags = RTF_GATEWAY|RTF_UP|RTF_DYNAMIC|RTF_CACHE;
3347 if (on_link)
3348 nrt->rt6i_flags &= ~RTF_GATEWAY;
3349
Alexey Dobriyan4e3fd7a2011-11-21 03:39:03 +00003350 nrt->rt6i_gateway = *(struct in6_addr *)neigh->primary_key;
Linus Torvalds1da177e2005-04-16 15:20:36 -07003351
Wei Wang2b760fc2017-10-06 12:06:03 -07003352 /* No need to remove rt from the exception table if rt is
3353 * a cached route because rt6_insert_exception() will
3354 * takes care of it
3355 */
David Ahernd4ead6b2018-04-17 17:33:16 -07003356 if (rt6_insert_exception(nrt, rt->from)) {
Wei Wang2b760fc2017-10-06 12:06:03 -07003357 dst_release_immediate(&nrt->dst);
3358 goto out;
3359 }
Linus Torvalds1da177e2005-04-16 15:20:36 -07003360
Changli Gaod8d1f302010-06-10 23:31:35 -07003361 netevent.old = &rt->dst;
3362 netevent.new = &nrt->dst;
YOSHIFUJI Hideaki / 吉藤英明71bcdba2013-01-05 16:34:51 +00003363 netevent.daddr = &msg->dest;
YOSHIFUJI Hideaki / 吉藤英明60592832013-01-14 09:28:27 +00003364 netevent.neigh = neigh;
Tom Tucker8d717402006-07-30 20:43:36 -07003365 call_netevent_notifiers(NETEVENT_REDIRECT, &netevent);
3366
Linus Torvalds1da177e2005-04-16 15:20:36 -07003367out:
David S. Millere8599ff2012-07-11 23:43:53 -07003368 neigh_release(neigh);
David S. Miller6e157b62012-07-12 00:05:02 -07003369}
3370
YOSHIFUJI Hideaki70ceb4f2006-03-20 17:06:24 -08003371#ifdef CONFIG_IPV6_ROUTE_INFO
David Ahern8d1c8022018-04-17 17:33:26 -07003372static struct fib6_info *rt6_get_route_info(struct net *net,
Eric Dumazetb71d1d42011-04-22 04:53:02 +00003373 const struct in6_addr *prefix, int prefixlen,
David Ahern830218c2016-10-24 10:52:35 -07003374 const struct in6_addr *gwaddr,
3375 struct net_device *dev)
YOSHIFUJI Hideaki70ceb4f2006-03-20 17:06:24 -08003376{
David Ahern830218c2016-10-24 10:52:35 -07003377 u32 tb_id = l3mdev_fib_table(dev) ? : RT6_TABLE_INFO;
3378 int ifindex = dev->ifindex;
YOSHIFUJI Hideaki70ceb4f2006-03-20 17:06:24 -08003379 struct fib6_node *fn;
David Ahern8d1c8022018-04-17 17:33:26 -07003380 struct fib6_info *rt = NULL;
Thomas Grafc71099a2006-08-04 23:20:06 -07003381 struct fib6_table *table;
YOSHIFUJI Hideaki70ceb4f2006-03-20 17:06:24 -08003382
David Ahern830218c2016-10-24 10:52:35 -07003383 table = fib6_get_table(net, tb_id);
David S. Miller38308472011-12-03 18:02:47 -05003384 if (!table)
Thomas Grafc71099a2006-08-04 23:20:06 -07003385 return NULL;
3386
Wei Wang66f5d6c2017-10-06 12:06:10 -07003387 rcu_read_lock();
Wei Wang38fbeee2017-10-06 12:06:02 -07003388 fn = fib6_locate(&table->tb6_root, prefix, prefixlen, NULL, 0, true);
YOSHIFUJI Hideaki70ceb4f2006-03-20 17:06:24 -08003389 if (!fn)
3390 goto out;
3391
Wei Wang66f5d6c2017-10-06 12:06:10 -07003392 for_each_fib6_node_rt_rcu(fn) {
David Ahern5e670d82018-04-17 17:33:14 -07003393 if (rt->fib6_nh.nh_dev->ifindex != ifindex)
YOSHIFUJI Hideaki70ceb4f2006-03-20 17:06:24 -08003394 continue;
David Ahern93c2fb22018-04-18 15:38:59 -07003395 if ((rt->fib6_flags & (RTF_ROUTEINFO|RTF_GATEWAY)) != (RTF_ROUTEINFO|RTF_GATEWAY))
YOSHIFUJI Hideaki70ceb4f2006-03-20 17:06:24 -08003396 continue;
David Ahern5e670d82018-04-17 17:33:14 -07003397 if (!ipv6_addr_equal(&rt->fib6_nh.nh_gw, gwaddr))
YOSHIFUJI Hideaki70ceb4f2006-03-20 17:06:24 -08003398 continue;
David Ahern8d1c8022018-04-17 17:33:26 -07003399 fib6_info_hold(rt);
YOSHIFUJI Hideaki70ceb4f2006-03-20 17:06:24 -08003400 break;
3401 }
3402out:
Wei Wang66f5d6c2017-10-06 12:06:10 -07003403 rcu_read_unlock();
YOSHIFUJI Hideaki70ceb4f2006-03-20 17:06:24 -08003404 return rt;
3405}
3406
David Ahern8d1c8022018-04-17 17:33:26 -07003407static struct fib6_info *rt6_add_route_info(struct net *net,
Eric Dumazetb71d1d42011-04-22 04:53:02 +00003408 const struct in6_addr *prefix, int prefixlen,
David Ahern830218c2016-10-24 10:52:35 -07003409 const struct in6_addr *gwaddr,
3410 struct net_device *dev,
Eric Dumazet95c96172012-04-15 05:58:06 +00003411 unsigned int pref)
YOSHIFUJI Hideaki70ceb4f2006-03-20 17:06:24 -08003412{
Thomas Graf86872cb2006-08-22 00:01:08 -07003413 struct fib6_config cfg = {
Rami Rosen238fc7e2008-02-09 23:43:11 -08003414 .fc_metric = IP6_RT_PRIO_USER,
David Ahern830218c2016-10-24 10:52:35 -07003415 .fc_ifindex = dev->ifindex,
Thomas Graf86872cb2006-08-22 00:01:08 -07003416 .fc_dst_len = prefixlen,
3417 .fc_flags = RTF_GATEWAY | RTF_ADDRCONF | RTF_ROUTEINFO |
3418 RTF_UP | RTF_PREF(pref),
Xin Longb91d5322017-08-03 14:13:46 +08003419 .fc_protocol = RTPROT_RA,
David Aherne8478e82018-04-17 17:33:13 -07003420 .fc_type = RTN_UNICAST,
Eric W. Biederman15e47302012-09-07 20:12:54 +00003421 .fc_nlinfo.portid = 0,
Daniel Lezcanoefa2cea2008-03-04 13:46:48 -08003422 .fc_nlinfo.nlh = NULL,
3423 .fc_nlinfo.nl_net = net,
Thomas Graf86872cb2006-08-22 00:01:08 -07003424 };
YOSHIFUJI Hideaki70ceb4f2006-03-20 17:06:24 -08003425
David Ahern830218c2016-10-24 10:52:35 -07003426 cfg.fc_table = l3mdev_fib_table(dev) ? : RT6_TABLE_INFO,
Alexey Dobriyan4e3fd7a2011-11-21 03:39:03 +00003427 cfg.fc_dst = *prefix;
3428 cfg.fc_gateway = *gwaddr;
Thomas Graf86872cb2006-08-22 00:01:08 -07003429
YOSHIFUJI Hideakie317da92006-03-20 17:06:42 -08003430 /* We should treat it as a default route if prefix length is 0. */
3431 if (!prefixlen)
Thomas Graf86872cb2006-08-22 00:01:08 -07003432 cfg.fc_flags |= RTF_DEFAULT;
YOSHIFUJI Hideaki70ceb4f2006-03-20 17:06:24 -08003433
David Ahernacb54e32018-04-17 17:33:22 -07003434 ip6_route_add(&cfg, GFP_ATOMIC, NULL);
YOSHIFUJI Hideaki70ceb4f2006-03-20 17:06:24 -08003435
David Ahern830218c2016-10-24 10:52:35 -07003436 return rt6_get_route_info(net, prefix, prefixlen, gwaddr, dev);
YOSHIFUJI Hideaki70ceb4f2006-03-20 17:06:24 -08003437}
3438#endif
3439
David Ahern8d1c8022018-04-17 17:33:26 -07003440struct fib6_info *rt6_get_dflt_router(struct net *net,
David Ahernafb1d4b52018-04-17 17:33:11 -07003441 const struct in6_addr *addr,
3442 struct net_device *dev)
YOSHIFUJI Hideaki1ab14572007-02-09 23:24:49 +09003443{
David Ahern830218c2016-10-24 10:52:35 -07003444 u32 tb_id = l3mdev_fib_table(dev) ? : RT6_TABLE_DFLT;
David Ahern8d1c8022018-04-17 17:33:26 -07003445 struct fib6_info *rt;
Thomas Grafc71099a2006-08-04 23:20:06 -07003446 struct fib6_table *table;
Linus Torvalds1da177e2005-04-16 15:20:36 -07003447
David Ahernafb1d4b52018-04-17 17:33:11 -07003448 table = fib6_get_table(net, tb_id);
David S. Miller38308472011-12-03 18:02:47 -05003449 if (!table)
Thomas Grafc71099a2006-08-04 23:20:06 -07003450 return NULL;
Linus Torvalds1da177e2005-04-16 15:20:36 -07003451
Wei Wang66f5d6c2017-10-06 12:06:10 -07003452 rcu_read_lock();
3453 for_each_fib6_node_rt_rcu(&table->tb6_root) {
David Ahern5e670d82018-04-17 17:33:14 -07003454 if (dev == rt->fib6_nh.nh_dev &&
David Ahern93c2fb22018-04-18 15:38:59 -07003455 ((rt->fib6_flags & (RTF_ADDRCONF | RTF_DEFAULT)) == (RTF_ADDRCONF | RTF_DEFAULT)) &&
David Ahern5e670d82018-04-17 17:33:14 -07003456 ipv6_addr_equal(&rt->fib6_nh.nh_gw, addr))
Linus Torvalds1da177e2005-04-16 15:20:36 -07003457 break;
3458 }
3459 if (rt)
David Ahern8d1c8022018-04-17 17:33:26 -07003460 fib6_info_hold(rt);
Wei Wang66f5d6c2017-10-06 12:06:10 -07003461 rcu_read_unlock();
Linus Torvalds1da177e2005-04-16 15:20:36 -07003462 return rt;
3463}
3464
David Ahern8d1c8022018-04-17 17:33:26 -07003465struct fib6_info *rt6_add_dflt_router(struct net *net,
David Ahernafb1d4b52018-04-17 17:33:11 -07003466 const struct in6_addr *gwaddr,
YOSHIFUJI Hideakiebacaaa2006-03-20 17:04:53 -08003467 struct net_device *dev,
3468 unsigned int pref)
Linus Torvalds1da177e2005-04-16 15:20:36 -07003469{
Thomas Graf86872cb2006-08-22 00:01:08 -07003470 struct fib6_config cfg = {
David Ahernca254492015-10-12 11:47:10 -07003471 .fc_table = l3mdev_fib_table(dev) ? : RT6_TABLE_DFLT,
Rami Rosen238fc7e2008-02-09 23:43:11 -08003472 .fc_metric = IP6_RT_PRIO_USER,
Thomas Graf86872cb2006-08-22 00:01:08 -07003473 .fc_ifindex = dev->ifindex,
3474 .fc_flags = RTF_GATEWAY | RTF_ADDRCONF | RTF_DEFAULT |
3475 RTF_UP | RTF_EXPIRES | RTF_PREF(pref),
Xin Longb91d5322017-08-03 14:13:46 +08003476 .fc_protocol = RTPROT_RA,
David Aherne8478e82018-04-17 17:33:13 -07003477 .fc_type = RTN_UNICAST,
Eric W. Biederman15e47302012-09-07 20:12:54 +00003478 .fc_nlinfo.portid = 0,
Daniel Lezcano55786892008-03-04 13:47:47 -08003479 .fc_nlinfo.nlh = NULL,
David Ahernafb1d4b52018-04-17 17:33:11 -07003480 .fc_nlinfo.nl_net = net,
Thomas Graf86872cb2006-08-22 00:01:08 -07003481 };
Linus Torvalds1da177e2005-04-16 15:20:36 -07003482
Alexey Dobriyan4e3fd7a2011-11-21 03:39:03 +00003483 cfg.fc_gateway = *gwaddr;
Linus Torvalds1da177e2005-04-16 15:20:36 -07003484
David Ahernacb54e32018-04-17 17:33:22 -07003485 if (!ip6_route_add(&cfg, GFP_ATOMIC, NULL)) {
David Ahern830218c2016-10-24 10:52:35 -07003486 struct fib6_table *table;
3487
3488 table = fib6_get_table(dev_net(dev), cfg.fc_table);
3489 if (table)
3490 table->flags |= RT6_TABLE_HAS_DFLT_ROUTER;
3491 }
Linus Torvalds1da177e2005-04-16 15:20:36 -07003492
David Ahernafb1d4b52018-04-17 17:33:11 -07003493 return rt6_get_dflt_router(net, gwaddr, dev);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003494}
3495
David Ahernafb1d4b52018-04-17 17:33:11 -07003496static void __rt6_purge_dflt_routers(struct net *net,
3497 struct fib6_table *table)
Linus Torvalds1da177e2005-04-16 15:20:36 -07003498{
David Ahern8d1c8022018-04-17 17:33:26 -07003499 struct fib6_info *rt;
Linus Torvalds1da177e2005-04-16 15:20:36 -07003500
3501restart:
Wei Wang66f5d6c2017-10-06 12:06:10 -07003502 rcu_read_lock();
3503 for_each_fib6_node_rt_rcu(&table->tb6_root) {
David Aherndcd1f572018-04-18 15:39:05 -07003504 struct net_device *dev = fib6_info_nh_dev(rt);
3505 struct inet6_dev *idev = dev ? __in6_dev_get(dev) : NULL;
3506
David Ahern93c2fb22018-04-18 15:38:59 -07003507 if (rt->fib6_flags & (RTF_DEFAULT | RTF_ADDRCONF) &&
David Aherndcd1f572018-04-18 15:39:05 -07003508 (!idev || idev->cnf.accept_ra != 2)) {
David Ahern93531c62018-04-17 17:33:25 -07003509 fib6_info_hold(rt);
3510 rcu_read_unlock();
3511 ip6_del_rt(net, rt);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003512 goto restart;
3513 }
3514 }
Wei Wang66f5d6c2017-10-06 12:06:10 -07003515 rcu_read_unlock();
David Ahern830218c2016-10-24 10:52:35 -07003516
3517 table->flags &= ~RT6_TABLE_HAS_DFLT_ROUTER;
3518}
3519
3520void rt6_purge_dflt_routers(struct net *net)
3521{
3522 struct fib6_table *table;
3523 struct hlist_head *head;
3524 unsigned int h;
3525
3526 rcu_read_lock();
3527
3528 for (h = 0; h < FIB6_TABLE_HASHSZ; h++) {
3529 head = &net->ipv6.fib_table_hash[h];
3530 hlist_for_each_entry_rcu(table, head, tb6_hlist) {
3531 if (table->flags & RT6_TABLE_HAS_DFLT_ROUTER)
David Ahernafb1d4b52018-04-17 17:33:11 -07003532 __rt6_purge_dflt_routers(net, table);
David Ahern830218c2016-10-24 10:52:35 -07003533 }
3534 }
3535
3536 rcu_read_unlock();
Linus Torvalds1da177e2005-04-16 15:20:36 -07003537}
3538
Daniel Lezcano55786892008-03-04 13:47:47 -08003539static void rtmsg_to_fib6_config(struct net *net,
3540 struct in6_rtmsg *rtmsg,
Thomas Graf86872cb2006-08-22 00:01:08 -07003541 struct fib6_config *cfg)
3542{
3543 memset(cfg, 0, sizeof(*cfg));
3544
David Ahernca254492015-10-12 11:47:10 -07003545 cfg->fc_table = l3mdev_fib_table_by_index(net, rtmsg->rtmsg_ifindex) ?
3546 : RT6_TABLE_MAIN;
Thomas Graf86872cb2006-08-22 00:01:08 -07003547 cfg->fc_ifindex = rtmsg->rtmsg_ifindex;
3548 cfg->fc_metric = rtmsg->rtmsg_metric;
3549 cfg->fc_expires = rtmsg->rtmsg_info;
3550 cfg->fc_dst_len = rtmsg->rtmsg_dst_len;
3551 cfg->fc_src_len = rtmsg->rtmsg_src_len;
3552 cfg->fc_flags = rtmsg->rtmsg_flags;
David Aherne8478e82018-04-17 17:33:13 -07003553 cfg->fc_type = rtmsg->rtmsg_type;
Thomas Graf86872cb2006-08-22 00:01:08 -07003554
Daniel Lezcano55786892008-03-04 13:47:47 -08003555 cfg->fc_nlinfo.nl_net = net;
Benjamin Theryf1243c22008-02-26 18:10:03 -08003556
Alexey Dobriyan4e3fd7a2011-11-21 03:39:03 +00003557 cfg->fc_dst = rtmsg->rtmsg_dst;
3558 cfg->fc_src = rtmsg->rtmsg_src;
3559 cfg->fc_gateway = rtmsg->rtmsg_gateway;
Thomas Graf86872cb2006-08-22 00:01:08 -07003560}
3561
Daniel Lezcano55786892008-03-04 13:47:47 -08003562int ipv6_route_ioctl(struct net *net, unsigned int cmd, void __user *arg)
Linus Torvalds1da177e2005-04-16 15:20:36 -07003563{
Thomas Graf86872cb2006-08-22 00:01:08 -07003564 struct fib6_config cfg;
Linus Torvalds1da177e2005-04-16 15:20:36 -07003565 struct in6_rtmsg rtmsg;
3566 int err;
3567
Ian Morris67ba4152014-08-24 21:53:10 +01003568 switch (cmd) {
Linus Torvalds1da177e2005-04-16 15:20:36 -07003569 case SIOCADDRT: /* Add a route */
3570 case SIOCDELRT: /* Delete a route */
Eric W. Biedermanaf31f412012-11-16 03:03:06 +00003571 if (!ns_capable(net->user_ns, CAP_NET_ADMIN))
Linus Torvalds1da177e2005-04-16 15:20:36 -07003572 return -EPERM;
3573 err = copy_from_user(&rtmsg, arg,
3574 sizeof(struct in6_rtmsg));
3575 if (err)
3576 return -EFAULT;
Thomas Graf86872cb2006-08-22 00:01:08 -07003577
Daniel Lezcano55786892008-03-04 13:47:47 -08003578 rtmsg_to_fib6_config(net, &rtmsg, &cfg);
Thomas Graf86872cb2006-08-22 00:01:08 -07003579
Linus Torvalds1da177e2005-04-16 15:20:36 -07003580 rtnl_lock();
3581 switch (cmd) {
3582 case SIOCADDRT:
David Ahernacb54e32018-04-17 17:33:22 -07003583 err = ip6_route_add(&cfg, GFP_KERNEL, NULL);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003584 break;
3585 case SIOCDELRT:
David Ahern333c4302017-05-21 10:12:04 -06003586 err = ip6_route_del(&cfg, NULL);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003587 break;
3588 default:
3589 err = -EINVAL;
3590 }
3591 rtnl_unlock();
3592
3593 return err;
Stephen Hemminger3ff50b72007-04-20 17:09:22 -07003594 }
Linus Torvalds1da177e2005-04-16 15:20:36 -07003595
3596 return -EINVAL;
3597}
3598
3599/*
3600 * Drop the packet on the floor
3601 */
3602
Brian Haleyd5fdd6b2009-06-23 04:31:07 -07003603static int ip6_pkt_drop(struct sk_buff *skb, u8 code, int ipstats_mib_noroutes)
Linus Torvalds1da177e2005-04-16 15:20:36 -07003604{
YOSHIFUJI Hideaki612f09e2007-04-13 16:18:02 -07003605 int type;
Eric Dumazetadf30902009-06-02 05:19:30 +00003606 struct dst_entry *dst = skb_dst(skb);
YOSHIFUJI Hideaki612f09e2007-04-13 16:18:02 -07003607 switch (ipstats_mib_noroutes) {
3608 case IPSTATS_MIB_INNOROUTES:
Arnaldo Carvalho de Melo0660e032007-04-25 17:54:47 -07003609 type = ipv6_addr_type(&ipv6_hdr(skb)->daddr);
Ulrich Weber45bb0062010-02-25 23:28:58 +00003610 if (type == IPV6_ADDR_ANY) {
Stephen Suryaputrabdb7cc62018-04-16 13:42:16 -04003611 IP6_INC_STATS(dev_net(dst->dev),
3612 __in6_dev_get_safely(skb->dev),
Denis V. Lunev3bd653c2008-10-08 10:54:51 -07003613 IPSTATS_MIB_INADDRERRORS);
YOSHIFUJI Hideaki612f09e2007-04-13 16:18:02 -07003614 break;
3615 }
3616 /* FALLTHROUGH */
3617 case IPSTATS_MIB_OUTNOROUTES:
Denis V. Lunev3bd653c2008-10-08 10:54:51 -07003618 IP6_INC_STATS(dev_net(dst->dev), ip6_dst_idev(dst),
3619 ipstats_mib_noroutes);
YOSHIFUJI Hideaki612f09e2007-04-13 16:18:02 -07003620 break;
3621 }
Alexey Dobriyan3ffe5332010-02-18 08:25:24 +00003622 icmpv6_send(skb, ICMPV6_DEST_UNREACH, code, 0);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003623 kfree_skb(skb);
3624 return 0;
3625}
3626
Thomas Graf9ce8ade2006-10-18 20:46:54 -07003627static int ip6_pkt_discard(struct sk_buff *skb)
3628{
YOSHIFUJI Hideaki612f09e2007-04-13 16:18:02 -07003629 return ip6_pkt_drop(skb, ICMPV6_NOROUTE, IPSTATS_MIB_INNOROUTES);
Thomas Graf9ce8ade2006-10-18 20:46:54 -07003630}
3631
Eric W. Biedermanede20592015-10-07 16:48:47 -05003632static int ip6_pkt_discard_out(struct net *net, struct sock *sk, struct sk_buff *skb)
Linus Torvalds1da177e2005-04-16 15:20:36 -07003633{
Eric Dumazetadf30902009-06-02 05:19:30 +00003634 skb->dev = skb_dst(skb)->dev;
YOSHIFUJI Hideaki612f09e2007-04-13 16:18:02 -07003635 return ip6_pkt_drop(skb, ICMPV6_NOROUTE, IPSTATS_MIB_OUTNOROUTES);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003636}
3637
Thomas Graf9ce8ade2006-10-18 20:46:54 -07003638static int ip6_pkt_prohibit(struct sk_buff *skb)
3639{
YOSHIFUJI Hideaki612f09e2007-04-13 16:18:02 -07003640 return ip6_pkt_drop(skb, ICMPV6_ADM_PROHIBITED, IPSTATS_MIB_INNOROUTES);
Thomas Graf9ce8ade2006-10-18 20:46:54 -07003641}
3642
Eric W. Biedermanede20592015-10-07 16:48:47 -05003643static int ip6_pkt_prohibit_out(struct net *net, struct sock *sk, struct sk_buff *skb)
Thomas Graf9ce8ade2006-10-18 20:46:54 -07003644{
Eric Dumazetadf30902009-06-02 05:19:30 +00003645 skb->dev = skb_dst(skb)->dev;
YOSHIFUJI Hideaki612f09e2007-04-13 16:18:02 -07003646 return ip6_pkt_drop(skb, ICMPV6_ADM_PROHIBITED, IPSTATS_MIB_OUTNOROUTES);
Thomas Graf9ce8ade2006-10-18 20:46:54 -07003647}
3648
Linus Torvalds1da177e2005-04-16 15:20:36 -07003649/*
3650 * Allocate a dst for local (unicast / anycast) address.
3651 */
3652
David Ahern360a9882018-04-18 15:39:00 -07003653struct fib6_info *addrconf_f6i_alloc(struct net *net,
3654 struct inet6_dev *idev,
3655 const struct in6_addr *addr,
3656 bool anycast, gfp_t gfp_flags)
Linus Torvalds1da177e2005-04-16 15:20:36 -07003657{
David Ahernca254492015-10-12 11:47:10 -07003658 u32 tb_id;
David Ahern4832c302017-08-17 12:17:20 -07003659 struct net_device *dev = idev->dev;
David Ahern360a9882018-04-18 15:39:00 -07003660 struct fib6_info *f6i;
David Ahern5f02ce242016-09-10 12:09:54 -07003661
David Ahern360a9882018-04-18 15:39:00 -07003662 f6i = fib6_info_alloc(gfp_flags);
3663 if (!f6i)
Linus Torvalds1da177e2005-04-16 15:20:36 -07003664 return ERR_PTR(-ENOMEM);
3665
David Ahern360a9882018-04-18 15:39:00 -07003666 f6i->dst_nocount = true;
David Ahern360a9882018-04-18 15:39:00 -07003667 f6i->dst_host = true;
3668 f6i->fib6_protocol = RTPROT_KERNEL;
3669 f6i->fib6_flags = RTF_UP | RTF_NONEXTHOP;
David Aherne8478e82018-04-17 17:33:13 -07003670 if (anycast) {
David Ahern360a9882018-04-18 15:39:00 -07003671 f6i->fib6_type = RTN_ANYCAST;
3672 f6i->fib6_flags |= RTF_ANYCAST;
David Aherne8478e82018-04-17 17:33:13 -07003673 } else {
David Ahern360a9882018-04-18 15:39:00 -07003674 f6i->fib6_type = RTN_LOCAL;
3675 f6i->fib6_flags |= RTF_LOCAL;
David Aherne8478e82018-04-17 17:33:13 -07003676 }
Linus Torvalds1da177e2005-04-16 15:20:36 -07003677
David Ahern360a9882018-04-18 15:39:00 -07003678 f6i->fib6_nh.nh_gw = *addr;
David Ahern93531c62018-04-17 17:33:25 -07003679 dev_hold(dev);
David Ahern360a9882018-04-18 15:39:00 -07003680 f6i->fib6_nh.nh_dev = dev;
3681 f6i->fib6_dst.addr = *addr;
3682 f6i->fib6_dst.plen = 128;
David Ahernca254492015-10-12 11:47:10 -07003683 tb_id = l3mdev_fib_table(idev->dev) ? : RT6_TABLE_LOCAL;
David Ahern360a9882018-04-18 15:39:00 -07003684 f6i->fib6_table = fib6_get_table(net, tb_id);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003685
David Ahern360a9882018-04-18 15:39:00 -07003686 return f6i;
Linus Torvalds1da177e2005-04-16 15:20:36 -07003687}
3688
Daniel Walterc3968a82011-04-13 21:10:57 +00003689/* remove deleted ip from prefsrc entries */
3690struct arg_dev_net_ip {
3691 struct net_device *dev;
3692 struct net *net;
3693 struct in6_addr *addr;
3694};
3695
David Ahern8d1c8022018-04-17 17:33:26 -07003696static int fib6_remove_prefsrc(struct fib6_info *rt, void *arg)
Daniel Walterc3968a82011-04-13 21:10:57 +00003697{
3698 struct net_device *dev = ((struct arg_dev_net_ip *)arg)->dev;
3699 struct net *net = ((struct arg_dev_net_ip *)arg)->net;
3700 struct in6_addr *addr = ((struct arg_dev_net_ip *)arg)->addr;
3701
David Ahern5e670d82018-04-17 17:33:14 -07003702 if (((void *)rt->fib6_nh.nh_dev == dev || !dev) &&
David Ahern421842e2018-04-17 17:33:18 -07003703 rt != net->ipv6.fib6_null_entry &&
David Ahern93c2fb22018-04-18 15:38:59 -07003704 ipv6_addr_equal(addr, &rt->fib6_prefsrc.addr)) {
Wei Wang60006a42017-10-06 12:05:58 -07003705 spin_lock_bh(&rt6_exception_lock);
Daniel Walterc3968a82011-04-13 21:10:57 +00003706 /* remove prefsrc entry */
David Ahern93c2fb22018-04-18 15:38:59 -07003707 rt->fib6_prefsrc.plen = 0;
Wei Wang60006a42017-10-06 12:05:58 -07003708 /* need to update cache as well */
3709 rt6_exceptions_remove_prefsrc(rt);
3710 spin_unlock_bh(&rt6_exception_lock);
Daniel Walterc3968a82011-04-13 21:10:57 +00003711 }
3712 return 0;
3713}
3714
3715void rt6_remove_prefsrc(struct inet6_ifaddr *ifp)
3716{
3717 struct net *net = dev_net(ifp->idev->dev);
3718 struct arg_dev_net_ip adni = {
3719 .dev = ifp->idev->dev,
3720 .net = net,
3721 .addr = &ifp->addr,
3722 };
Li RongQing0c3584d2013-12-27 16:32:38 +08003723 fib6_clean_all(net, fib6_remove_prefsrc, &adni);
Daniel Walterc3968a82011-04-13 21:10:57 +00003724}
3725
Duan Jiongbe7a0102014-05-15 15:56:14 +08003726#define RTF_RA_ROUTER (RTF_ADDRCONF | RTF_DEFAULT | RTF_GATEWAY)
Duan Jiongbe7a0102014-05-15 15:56:14 +08003727
3728/* Remove routers and update dst entries when gateway turn into host. */
David Ahern8d1c8022018-04-17 17:33:26 -07003729static int fib6_clean_tohost(struct fib6_info *rt, void *arg)
Duan Jiongbe7a0102014-05-15 15:56:14 +08003730{
3731 struct in6_addr *gateway = (struct in6_addr *)arg;
3732
David Ahern93c2fb22018-04-18 15:38:59 -07003733 if (((rt->fib6_flags & RTF_RA_ROUTER) == RTF_RA_ROUTER) &&
David Ahern5e670d82018-04-17 17:33:14 -07003734 ipv6_addr_equal(gateway, &rt->fib6_nh.nh_gw)) {
Duan Jiongbe7a0102014-05-15 15:56:14 +08003735 return -1;
3736 }
Wei Wangb16cb452017-10-06 12:06:00 -07003737
3738 /* Further clean up cached routes in exception table.
3739 * This is needed because cached route may have a different
3740 * gateway than its 'parent' in the case of an ip redirect.
3741 */
3742 rt6_exceptions_clean_tohost(rt, gateway);
3743
Duan Jiongbe7a0102014-05-15 15:56:14 +08003744 return 0;
3745}
3746
3747void rt6_clean_tohost(struct net *net, struct in6_addr *gateway)
3748{
3749 fib6_clean_all(net, fib6_clean_tohost, gateway);
3750}
3751
Ido Schimmel2127d952018-01-07 12:45:03 +02003752struct arg_netdev_event {
3753 const struct net_device *dev;
Ido Schimmel4c981e22018-01-07 12:45:04 +02003754 union {
3755 unsigned int nh_flags;
3756 unsigned long event;
3757 };
Ido Schimmel2127d952018-01-07 12:45:03 +02003758};
3759
David Ahern8d1c8022018-04-17 17:33:26 -07003760static struct fib6_info *rt6_multipath_first_sibling(const struct fib6_info *rt)
Ido Schimmeld7dedee2018-01-09 16:40:25 +02003761{
David Ahern8d1c8022018-04-17 17:33:26 -07003762 struct fib6_info *iter;
Ido Schimmeld7dedee2018-01-09 16:40:25 +02003763 struct fib6_node *fn;
3764
David Ahern93c2fb22018-04-18 15:38:59 -07003765 fn = rcu_dereference_protected(rt->fib6_node,
3766 lockdep_is_held(&rt->fib6_table->tb6_lock));
Ido Schimmeld7dedee2018-01-09 16:40:25 +02003767 iter = rcu_dereference_protected(fn->leaf,
David Ahern93c2fb22018-04-18 15:38:59 -07003768 lockdep_is_held(&rt->fib6_table->tb6_lock));
Ido Schimmeld7dedee2018-01-09 16:40:25 +02003769 while (iter) {
David Ahern93c2fb22018-04-18 15:38:59 -07003770 if (iter->fib6_metric == rt->fib6_metric &&
Ido Schimmeld7dedee2018-01-09 16:40:25 +02003771 rt6_qualify_for_ecmp(iter))
3772 return iter;
3773 iter = rcu_dereference_protected(iter->rt6_next,
David Ahern93c2fb22018-04-18 15:38:59 -07003774 lockdep_is_held(&rt->fib6_table->tb6_lock));
Ido Schimmeld7dedee2018-01-09 16:40:25 +02003775 }
3776
3777 return NULL;
3778}
3779
David Ahern8d1c8022018-04-17 17:33:26 -07003780static bool rt6_is_dead(const struct fib6_info *rt)
Ido Schimmeld7dedee2018-01-09 16:40:25 +02003781{
David Ahern5e670d82018-04-17 17:33:14 -07003782 if (rt->fib6_nh.nh_flags & RTNH_F_DEAD ||
3783 (rt->fib6_nh.nh_flags & RTNH_F_LINKDOWN &&
David Aherndcd1f572018-04-18 15:39:05 -07003784 fib6_ignore_linkdown(rt)))
Ido Schimmeld7dedee2018-01-09 16:40:25 +02003785 return true;
3786
3787 return false;
3788}
3789
David Ahern8d1c8022018-04-17 17:33:26 -07003790static int rt6_multipath_total_weight(const struct fib6_info *rt)
Ido Schimmeld7dedee2018-01-09 16:40:25 +02003791{
David Ahern8d1c8022018-04-17 17:33:26 -07003792 struct fib6_info *iter;
Ido Schimmeld7dedee2018-01-09 16:40:25 +02003793 int total = 0;
3794
3795 if (!rt6_is_dead(rt))
David Ahern5e670d82018-04-17 17:33:14 -07003796 total += rt->fib6_nh.nh_weight;
Ido Schimmeld7dedee2018-01-09 16:40:25 +02003797
David Ahern93c2fb22018-04-18 15:38:59 -07003798 list_for_each_entry(iter, &rt->fib6_siblings, fib6_siblings) {
Ido Schimmeld7dedee2018-01-09 16:40:25 +02003799 if (!rt6_is_dead(iter))
David Ahern5e670d82018-04-17 17:33:14 -07003800 total += iter->fib6_nh.nh_weight;
Ido Schimmeld7dedee2018-01-09 16:40:25 +02003801 }
3802
3803 return total;
3804}
3805
David Ahern8d1c8022018-04-17 17:33:26 -07003806static void rt6_upper_bound_set(struct fib6_info *rt, int *weight, int total)
Ido Schimmeld7dedee2018-01-09 16:40:25 +02003807{
3808 int upper_bound = -1;
3809
3810 if (!rt6_is_dead(rt)) {
David Ahern5e670d82018-04-17 17:33:14 -07003811 *weight += rt->fib6_nh.nh_weight;
Ido Schimmeld7dedee2018-01-09 16:40:25 +02003812 upper_bound = DIV_ROUND_CLOSEST_ULL((u64) (*weight) << 31,
3813 total) - 1;
3814 }
David Ahern5e670d82018-04-17 17:33:14 -07003815 atomic_set(&rt->fib6_nh.nh_upper_bound, upper_bound);
Ido Schimmeld7dedee2018-01-09 16:40:25 +02003816}
3817
David Ahern8d1c8022018-04-17 17:33:26 -07003818static void rt6_multipath_upper_bound_set(struct fib6_info *rt, int total)
Ido Schimmeld7dedee2018-01-09 16:40:25 +02003819{
David Ahern8d1c8022018-04-17 17:33:26 -07003820 struct fib6_info *iter;
Ido Schimmeld7dedee2018-01-09 16:40:25 +02003821 int weight = 0;
3822
3823 rt6_upper_bound_set(rt, &weight, total);
3824
David Ahern93c2fb22018-04-18 15:38:59 -07003825 list_for_each_entry(iter, &rt->fib6_siblings, fib6_siblings)
Ido Schimmeld7dedee2018-01-09 16:40:25 +02003826 rt6_upper_bound_set(iter, &weight, total);
3827}
3828
David Ahern8d1c8022018-04-17 17:33:26 -07003829void rt6_multipath_rebalance(struct fib6_info *rt)
Ido Schimmeld7dedee2018-01-09 16:40:25 +02003830{
David Ahern8d1c8022018-04-17 17:33:26 -07003831 struct fib6_info *first;
Ido Schimmeld7dedee2018-01-09 16:40:25 +02003832 int total;
3833
3834 /* In case the entire multipath route was marked for flushing,
3835 * then there is no need to rebalance upon the removal of every
3836 * sibling route.
3837 */
David Ahern93c2fb22018-04-18 15:38:59 -07003838 if (!rt->fib6_nsiblings || rt->should_flush)
Ido Schimmeld7dedee2018-01-09 16:40:25 +02003839 return;
3840
3841 /* During lookup routes are evaluated in order, so we need to
3842 * make sure upper bounds are assigned from the first sibling
3843 * onwards.
3844 */
3845 first = rt6_multipath_first_sibling(rt);
3846 if (WARN_ON_ONCE(!first))
3847 return;
3848
3849 total = rt6_multipath_total_weight(first);
3850 rt6_multipath_upper_bound_set(first, total);
3851}
3852
David Ahern8d1c8022018-04-17 17:33:26 -07003853static int fib6_ifup(struct fib6_info *rt, void *p_arg)
Ido Schimmel2127d952018-01-07 12:45:03 +02003854{
3855 const struct arg_netdev_event *arg = p_arg;
David Ahern7aef6852018-04-17 17:33:10 -07003856 struct net *net = dev_net(arg->dev);
Ido Schimmel2127d952018-01-07 12:45:03 +02003857
David Ahern421842e2018-04-17 17:33:18 -07003858 if (rt != net->ipv6.fib6_null_entry && rt->fib6_nh.nh_dev == arg->dev) {
David Ahern5e670d82018-04-17 17:33:14 -07003859 rt->fib6_nh.nh_flags &= ~arg->nh_flags;
David Ahern7aef6852018-04-17 17:33:10 -07003860 fib6_update_sernum_upto_root(net, rt);
Ido Schimmeld7dedee2018-01-09 16:40:25 +02003861 rt6_multipath_rebalance(rt);
Ido Schimmel1de178e2018-01-07 12:45:15 +02003862 }
Ido Schimmel2127d952018-01-07 12:45:03 +02003863
3864 return 0;
3865}
3866
3867void rt6_sync_up(struct net_device *dev, unsigned int nh_flags)
3868{
3869 struct arg_netdev_event arg = {
3870 .dev = dev,
Ido Schimmel6802f3a2018-01-12 22:07:36 +02003871 {
3872 .nh_flags = nh_flags,
3873 },
Ido Schimmel2127d952018-01-07 12:45:03 +02003874 };
3875
3876 if (nh_flags & RTNH_F_DEAD && netif_carrier_ok(dev))
3877 arg.nh_flags |= RTNH_F_LINKDOWN;
3878
3879 fib6_clean_all(dev_net(dev), fib6_ifup, &arg);
3880}
3881
David Ahern8d1c8022018-04-17 17:33:26 -07003882static bool rt6_multipath_uses_dev(const struct fib6_info *rt,
Ido Schimmel1de178e2018-01-07 12:45:15 +02003883 const struct net_device *dev)
3884{
David Ahern8d1c8022018-04-17 17:33:26 -07003885 struct fib6_info *iter;
Ido Schimmel1de178e2018-01-07 12:45:15 +02003886
David Ahern5e670d82018-04-17 17:33:14 -07003887 if (rt->fib6_nh.nh_dev == dev)
Ido Schimmel1de178e2018-01-07 12:45:15 +02003888 return true;
David Ahern93c2fb22018-04-18 15:38:59 -07003889 list_for_each_entry(iter, &rt->fib6_siblings, fib6_siblings)
David Ahern5e670d82018-04-17 17:33:14 -07003890 if (iter->fib6_nh.nh_dev == dev)
Ido Schimmel1de178e2018-01-07 12:45:15 +02003891 return true;
3892
3893 return false;
3894}
3895
David Ahern8d1c8022018-04-17 17:33:26 -07003896static void rt6_multipath_flush(struct fib6_info *rt)
Ido Schimmel1de178e2018-01-07 12:45:15 +02003897{
David Ahern8d1c8022018-04-17 17:33:26 -07003898 struct fib6_info *iter;
Ido Schimmel1de178e2018-01-07 12:45:15 +02003899
3900 rt->should_flush = 1;
David Ahern93c2fb22018-04-18 15:38:59 -07003901 list_for_each_entry(iter, &rt->fib6_siblings, fib6_siblings)
Ido Schimmel1de178e2018-01-07 12:45:15 +02003902 iter->should_flush = 1;
3903}
3904
David Ahern8d1c8022018-04-17 17:33:26 -07003905static unsigned int rt6_multipath_dead_count(const struct fib6_info *rt,
Ido Schimmel1de178e2018-01-07 12:45:15 +02003906 const struct net_device *down_dev)
3907{
David Ahern8d1c8022018-04-17 17:33:26 -07003908 struct fib6_info *iter;
Ido Schimmel1de178e2018-01-07 12:45:15 +02003909 unsigned int dead = 0;
3910
David Ahern5e670d82018-04-17 17:33:14 -07003911 if (rt->fib6_nh.nh_dev == down_dev ||
3912 rt->fib6_nh.nh_flags & RTNH_F_DEAD)
Ido Schimmel1de178e2018-01-07 12:45:15 +02003913 dead++;
David Ahern93c2fb22018-04-18 15:38:59 -07003914 list_for_each_entry(iter, &rt->fib6_siblings, fib6_siblings)
David Ahern5e670d82018-04-17 17:33:14 -07003915 if (iter->fib6_nh.nh_dev == down_dev ||
3916 iter->fib6_nh.nh_flags & RTNH_F_DEAD)
Ido Schimmel1de178e2018-01-07 12:45:15 +02003917 dead++;
3918
3919 return dead;
3920}
3921
David Ahern8d1c8022018-04-17 17:33:26 -07003922static void rt6_multipath_nh_flags_set(struct fib6_info *rt,
Ido Schimmel1de178e2018-01-07 12:45:15 +02003923 const struct net_device *dev,
3924 unsigned int nh_flags)
3925{
David Ahern8d1c8022018-04-17 17:33:26 -07003926 struct fib6_info *iter;
Ido Schimmel1de178e2018-01-07 12:45:15 +02003927
David Ahern5e670d82018-04-17 17:33:14 -07003928 if (rt->fib6_nh.nh_dev == dev)
3929 rt->fib6_nh.nh_flags |= nh_flags;
David Ahern93c2fb22018-04-18 15:38:59 -07003930 list_for_each_entry(iter, &rt->fib6_siblings, fib6_siblings)
David Ahern5e670d82018-04-17 17:33:14 -07003931 if (iter->fib6_nh.nh_dev == dev)
3932 iter->fib6_nh.nh_flags |= nh_flags;
Ido Schimmel1de178e2018-01-07 12:45:15 +02003933}
3934
David Aherna1a22c12017-01-18 07:40:36 -08003935/* called with write lock held for table with rt */
David Ahern8d1c8022018-04-17 17:33:26 -07003936static int fib6_ifdown(struct fib6_info *rt, void *p_arg)
Linus Torvalds1da177e2005-04-16 15:20:36 -07003937{
Ido Schimmel4c981e22018-01-07 12:45:04 +02003938 const struct arg_netdev_event *arg = p_arg;
3939 const struct net_device *dev = arg->dev;
David Ahern7aef6852018-04-17 17:33:10 -07003940 struct net *net = dev_net(dev);
Daniel Lezcano8ed67782008-03-04 13:48:30 -08003941
David Ahern421842e2018-04-17 17:33:18 -07003942 if (rt == net->ipv6.fib6_null_entry)
Ido Schimmel27c6fa72018-01-07 12:45:05 +02003943 return 0;
3944
3945 switch (arg->event) {
3946 case NETDEV_UNREGISTER:
David Ahern5e670d82018-04-17 17:33:14 -07003947 return rt->fib6_nh.nh_dev == dev ? -1 : 0;
Ido Schimmel27c6fa72018-01-07 12:45:05 +02003948 case NETDEV_DOWN:
Ido Schimmel1de178e2018-01-07 12:45:15 +02003949 if (rt->should_flush)
Ido Schimmel27c6fa72018-01-07 12:45:05 +02003950 return -1;
David Ahern93c2fb22018-04-18 15:38:59 -07003951 if (!rt->fib6_nsiblings)
David Ahern5e670d82018-04-17 17:33:14 -07003952 return rt->fib6_nh.nh_dev == dev ? -1 : 0;
Ido Schimmel1de178e2018-01-07 12:45:15 +02003953 if (rt6_multipath_uses_dev(rt, dev)) {
3954 unsigned int count;
3955
3956 count = rt6_multipath_dead_count(rt, dev);
David Ahern93c2fb22018-04-18 15:38:59 -07003957 if (rt->fib6_nsiblings + 1 == count) {
Ido Schimmel1de178e2018-01-07 12:45:15 +02003958 rt6_multipath_flush(rt);
3959 return -1;
3960 }
3961 rt6_multipath_nh_flags_set(rt, dev, RTNH_F_DEAD |
3962 RTNH_F_LINKDOWN);
David Ahern7aef6852018-04-17 17:33:10 -07003963 fib6_update_sernum(net, rt);
Ido Schimmeld7dedee2018-01-09 16:40:25 +02003964 rt6_multipath_rebalance(rt);
Ido Schimmel1de178e2018-01-07 12:45:15 +02003965 }
3966 return -2;
Ido Schimmel27c6fa72018-01-07 12:45:05 +02003967 case NETDEV_CHANGE:
David Ahern5e670d82018-04-17 17:33:14 -07003968 if (rt->fib6_nh.nh_dev != dev ||
David Ahern93c2fb22018-04-18 15:38:59 -07003969 rt->fib6_flags & (RTF_LOCAL | RTF_ANYCAST))
Ido Schimmel27c6fa72018-01-07 12:45:05 +02003970 break;
David Ahern5e670d82018-04-17 17:33:14 -07003971 rt->fib6_nh.nh_flags |= RTNH_F_LINKDOWN;
Ido Schimmeld7dedee2018-01-09 16:40:25 +02003972 rt6_multipath_rebalance(rt);
Ido Schimmel27c6fa72018-01-07 12:45:05 +02003973 break;
Ido Schimmel2b241362018-01-07 12:45:02 +02003974 }
David S. Millerc159d302011-12-26 15:24:36 -05003975
Linus Torvalds1da177e2005-04-16 15:20:36 -07003976 return 0;
3977}
3978
Ido Schimmel27c6fa72018-01-07 12:45:05 +02003979void rt6_sync_down_dev(struct net_device *dev, unsigned long event)
Linus Torvalds1da177e2005-04-16 15:20:36 -07003980{
Ido Schimmel4c981e22018-01-07 12:45:04 +02003981 struct arg_netdev_event arg = {
Daniel Lezcano8ed67782008-03-04 13:48:30 -08003982 .dev = dev,
Ido Schimmel6802f3a2018-01-12 22:07:36 +02003983 {
3984 .event = event,
3985 },
Daniel Lezcano8ed67782008-03-04 13:48:30 -08003986 };
3987
Ido Schimmel4c981e22018-01-07 12:45:04 +02003988 fib6_clean_all(dev_net(dev), fib6_ifdown, &arg);
3989}
3990
3991void rt6_disable_ip(struct net_device *dev, unsigned long event)
3992{
3993 rt6_sync_down_dev(dev, event);
3994 rt6_uncached_list_flush_dev(dev_net(dev), dev);
3995 neigh_ifdown(&nd_tbl, dev);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003996}
3997
Eric Dumazet95c96172012-04-15 05:58:06 +00003998struct rt6_mtu_change_arg {
Linus Torvalds1da177e2005-04-16 15:20:36 -07003999 struct net_device *dev;
Eric Dumazet95c96172012-04-15 05:58:06 +00004000 unsigned int mtu;
Linus Torvalds1da177e2005-04-16 15:20:36 -07004001};
4002
David Ahern8d1c8022018-04-17 17:33:26 -07004003static int rt6_mtu_change_route(struct fib6_info *rt, void *p_arg)
Linus Torvalds1da177e2005-04-16 15:20:36 -07004004{
4005 struct rt6_mtu_change_arg *arg = (struct rt6_mtu_change_arg *) p_arg;
4006 struct inet6_dev *idev;
4007
4008 /* In IPv6 pmtu discovery is not optional,
4009 so that RTAX_MTU lock cannot disable it.
4010 We still use this lock to block changes
4011 caused by addrconf/ndisc.
4012 */
4013
4014 idev = __in6_dev_get(arg->dev);
David S. Miller38308472011-12-03 18:02:47 -05004015 if (!idev)
Linus Torvalds1da177e2005-04-16 15:20:36 -07004016 return 0;
4017
4018 /* For administrative MTU increase, there is no way to discover
4019 IPv6 PMTU increase, so PMTU increase should be updated here.
4020 Since RFC 1981 doesn't include administrative MTU increase
4021 update PMTU increase is a MUST. (i.e. jumbo frame)
4022 */
David Ahern5e670d82018-04-17 17:33:14 -07004023 if (rt->fib6_nh.nh_dev == arg->dev &&
David Ahernd4ead6b2018-04-17 17:33:16 -07004024 !fib6_metric_locked(rt, RTAX_MTU)) {
4025 u32 mtu = rt->fib6_pmtu;
4026
4027 if (mtu >= arg->mtu ||
4028 (mtu < arg->mtu && mtu == idev->cnf.mtu6))
4029 fib6_metric_set(rt, RTAX_MTU, arg->mtu);
4030
Wei Wangf5bbe7e2017-10-06 12:05:59 -07004031 spin_lock_bh(&rt6_exception_lock);
Stefano Brivioe9fa1492018-03-06 11:10:19 +01004032 rt6_exceptions_update_pmtu(idev, rt, arg->mtu);
Wei Wangf5bbe7e2017-10-06 12:05:59 -07004033 spin_unlock_bh(&rt6_exception_lock);
Simon Arlott566cfd82007-07-26 00:09:55 -07004034 }
Linus Torvalds1da177e2005-04-16 15:20:36 -07004035 return 0;
4036}
4037
Eric Dumazet95c96172012-04-15 05:58:06 +00004038void rt6_mtu_change(struct net_device *dev, unsigned int mtu)
Linus Torvalds1da177e2005-04-16 15:20:36 -07004039{
Thomas Grafc71099a2006-08-04 23:20:06 -07004040 struct rt6_mtu_change_arg arg = {
4041 .dev = dev,
4042 .mtu = mtu,
4043 };
Linus Torvalds1da177e2005-04-16 15:20:36 -07004044
Li RongQing0c3584d2013-12-27 16:32:38 +08004045 fib6_clean_all(dev_net(dev), rt6_mtu_change_route, &arg);
Linus Torvalds1da177e2005-04-16 15:20:36 -07004046}
4047
Patrick McHardyef7c79e2007-06-05 12:38:30 -07004048static const struct nla_policy rtm_ipv6_policy[RTA_MAX+1] = {
Thomas Graf5176f912006-08-26 20:13:18 -07004049 [RTA_GATEWAY] = { .len = sizeof(struct in6_addr) },
Thomas Graf86872cb2006-08-22 00:01:08 -07004050 [RTA_OIF] = { .type = NLA_U32 },
Thomas Grafab364a62006-08-22 00:01:47 -07004051 [RTA_IIF] = { .type = NLA_U32 },
Thomas Graf86872cb2006-08-22 00:01:08 -07004052 [RTA_PRIORITY] = { .type = NLA_U32 },
4053 [RTA_METRICS] = { .type = NLA_NESTED },
Nicolas Dichtel51ebd312012-10-22 03:42:09 +00004054 [RTA_MULTIPATH] = { .len = sizeof(struct rtnexthop) },
Lubomir Rintelc78ba6d2015-03-11 15:39:21 +01004055 [RTA_PREF] = { .type = NLA_U8 },
Roopa Prabhu19e42e42015-07-21 10:43:48 +02004056 [RTA_ENCAP_TYPE] = { .type = NLA_U16 },
4057 [RTA_ENCAP] = { .type = NLA_NESTED },
Xin Long32bc2012015-12-16 17:50:11 +08004058 [RTA_EXPIRES] = { .type = NLA_U32 },
Lorenzo Colitti622ec2c2016-11-04 02:23:42 +09004059 [RTA_UID] = { .type = NLA_U32 },
Liping Zhang3b45a412017-02-27 20:59:39 +08004060 [RTA_MARK] = { .type = NLA_U32 },
Thomas Graf86872cb2006-08-22 00:01:08 -07004061};
4062
4063static int rtm_to_fib6_config(struct sk_buff *skb, struct nlmsghdr *nlh,
David Ahern333c4302017-05-21 10:12:04 -06004064 struct fib6_config *cfg,
4065 struct netlink_ext_ack *extack)
Linus Torvalds1da177e2005-04-16 15:20:36 -07004066{
Thomas Graf86872cb2006-08-22 00:01:08 -07004067 struct rtmsg *rtm;
4068 struct nlattr *tb[RTA_MAX+1];
Lubomir Rintelc78ba6d2015-03-11 15:39:21 +01004069 unsigned int pref;
Thomas Graf86872cb2006-08-22 00:01:08 -07004070 int err;
Linus Torvalds1da177e2005-04-16 15:20:36 -07004071
Johannes Bergfceb6432017-04-12 14:34:07 +02004072 err = nlmsg_parse(nlh, sizeof(*rtm), tb, RTA_MAX, rtm_ipv6_policy,
4073 NULL);
Thomas Graf86872cb2006-08-22 00:01:08 -07004074 if (err < 0)
4075 goto errout;
Linus Torvalds1da177e2005-04-16 15:20:36 -07004076
Thomas Graf86872cb2006-08-22 00:01:08 -07004077 err = -EINVAL;
4078 rtm = nlmsg_data(nlh);
4079 memset(cfg, 0, sizeof(*cfg));
4080
4081 cfg->fc_table = rtm->rtm_table;
4082 cfg->fc_dst_len = rtm->rtm_dst_len;
4083 cfg->fc_src_len = rtm->rtm_src_len;
4084 cfg->fc_flags = RTF_UP;
4085 cfg->fc_protocol = rtm->rtm_protocol;
Nicolas Dichtelef2c7d72012-09-05 02:12:42 +00004086 cfg->fc_type = rtm->rtm_type;
Thomas Graf86872cb2006-08-22 00:01:08 -07004087
Nicolas Dichtelef2c7d72012-09-05 02:12:42 +00004088 if (rtm->rtm_type == RTN_UNREACHABLE ||
4089 rtm->rtm_type == RTN_BLACKHOLE ||
Nicolas Dichtelb4949ab2012-09-06 05:53:35 +00004090 rtm->rtm_type == RTN_PROHIBIT ||
4091 rtm->rtm_type == RTN_THROW)
Thomas Graf86872cb2006-08-22 00:01:08 -07004092 cfg->fc_flags |= RTF_REJECT;
4093
Maciej Żenczykowskiab79ad12010-09-27 00:07:02 +00004094 if (rtm->rtm_type == RTN_LOCAL)
4095 cfg->fc_flags |= RTF_LOCAL;
4096
Martin KaFai Lau1f56a012015-04-28 13:03:03 -07004097 if (rtm->rtm_flags & RTM_F_CLONED)
4098 cfg->fc_flags |= RTF_CACHE;
4099
David Ahernfc1e64e2018-01-25 16:55:09 -08004100 cfg->fc_flags |= (rtm->rtm_flags & RTNH_F_ONLINK);
4101
Eric W. Biederman15e47302012-09-07 20:12:54 +00004102 cfg->fc_nlinfo.portid = NETLINK_CB(skb).portid;
Thomas Graf86872cb2006-08-22 00:01:08 -07004103 cfg->fc_nlinfo.nlh = nlh;
YOSHIFUJI Hideaki3b1e0a62008-03-26 02:26:21 +09004104 cfg->fc_nlinfo.nl_net = sock_net(skb->sk);
Thomas Graf86872cb2006-08-22 00:01:08 -07004105
4106 if (tb[RTA_GATEWAY]) {
Jiri Benc67b61f62015-03-29 16:59:26 +02004107 cfg->fc_gateway = nla_get_in6_addr(tb[RTA_GATEWAY]);
Thomas Graf86872cb2006-08-22 00:01:08 -07004108 cfg->fc_flags |= RTF_GATEWAY;
Linus Torvalds1da177e2005-04-16 15:20:36 -07004109 }
Thomas Graf86872cb2006-08-22 00:01:08 -07004110
4111 if (tb[RTA_DST]) {
4112 int plen = (rtm->rtm_dst_len + 7) >> 3;
4113
4114 if (nla_len(tb[RTA_DST]) < plen)
4115 goto errout;
4116
4117 nla_memcpy(&cfg->fc_dst, tb[RTA_DST], plen);
Linus Torvalds1da177e2005-04-16 15:20:36 -07004118 }
Thomas Graf86872cb2006-08-22 00:01:08 -07004119
4120 if (tb[RTA_SRC]) {
4121 int plen = (rtm->rtm_src_len + 7) >> 3;
4122
4123 if (nla_len(tb[RTA_SRC]) < plen)
4124 goto errout;
4125
4126 nla_memcpy(&cfg->fc_src, tb[RTA_SRC], plen);
Linus Torvalds1da177e2005-04-16 15:20:36 -07004127 }
Thomas Graf86872cb2006-08-22 00:01:08 -07004128
Daniel Walterc3968a82011-04-13 21:10:57 +00004129 if (tb[RTA_PREFSRC])
Jiri Benc67b61f62015-03-29 16:59:26 +02004130 cfg->fc_prefsrc = nla_get_in6_addr(tb[RTA_PREFSRC]);
Daniel Walterc3968a82011-04-13 21:10:57 +00004131
Thomas Graf86872cb2006-08-22 00:01:08 -07004132 if (tb[RTA_OIF])
4133 cfg->fc_ifindex = nla_get_u32(tb[RTA_OIF]);
4134
4135 if (tb[RTA_PRIORITY])
4136 cfg->fc_metric = nla_get_u32(tb[RTA_PRIORITY]);
4137
4138 if (tb[RTA_METRICS]) {
4139 cfg->fc_mx = nla_data(tb[RTA_METRICS]);
4140 cfg->fc_mx_len = nla_len(tb[RTA_METRICS]);
Linus Torvalds1da177e2005-04-16 15:20:36 -07004141 }
Thomas Graf86872cb2006-08-22 00:01:08 -07004142
4143 if (tb[RTA_TABLE])
4144 cfg->fc_table = nla_get_u32(tb[RTA_TABLE]);
4145
Nicolas Dichtel51ebd312012-10-22 03:42:09 +00004146 if (tb[RTA_MULTIPATH]) {
4147 cfg->fc_mp = nla_data(tb[RTA_MULTIPATH]);
4148 cfg->fc_mp_len = nla_len(tb[RTA_MULTIPATH]);
David Ahern9ed59592017-01-17 14:57:36 -08004149
4150 err = lwtunnel_valid_encap_type_attr(cfg->fc_mp,
David Ahernc255bd62017-05-27 16:19:27 -06004151 cfg->fc_mp_len, extack);
David Ahern9ed59592017-01-17 14:57:36 -08004152 if (err < 0)
4153 goto errout;
Nicolas Dichtel51ebd312012-10-22 03:42:09 +00004154 }
4155
Lubomir Rintelc78ba6d2015-03-11 15:39:21 +01004156 if (tb[RTA_PREF]) {
4157 pref = nla_get_u8(tb[RTA_PREF]);
4158 if (pref != ICMPV6_ROUTER_PREF_LOW &&
4159 pref != ICMPV6_ROUTER_PREF_HIGH)
4160 pref = ICMPV6_ROUTER_PREF_MEDIUM;
4161 cfg->fc_flags |= RTF_PREF(pref);
4162 }
4163
Roopa Prabhu19e42e42015-07-21 10:43:48 +02004164 if (tb[RTA_ENCAP])
4165 cfg->fc_encap = tb[RTA_ENCAP];
4166
David Ahern9ed59592017-01-17 14:57:36 -08004167 if (tb[RTA_ENCAP_TYPE]) {
Roopa Prabhu19e42e42015-07-21 10:43:48 +02004168 cfg->fc_encap_type = nla_get_u16(tb[RTA_ENCAP_TYPE]);
4169
David Ahernc255bd62017-05-27 16:19:27 -06004170 err = lwtunnel_valid_encap_type(cfg->fc_encap_type, extack);
David Ahern9ed59592017-01-17 14:57:36 -08004171 if (err < 0)
4172 goto errout;
4173 }
4174
Xin Long32bc2012015-12-16 17:50:11 +08004175 if (tb[RTA_EXPIRES]) {
4176 unsigned long timeout = addrconf_timeout_fixup(nla_get_u32(tb[RTA_EXPIRES]), HZ);
4177
4178 if (addrconf_finite_timeout(timeout)) {
4179 cfg->fc_expires = jiffies_to_clock_t(timeout * HZ);
4180 cfg->fc_flags |= RTF_EXPIRES;
4181 }
4182 }
4183
Thomas Graf86872cb2006-08-22 00:01:08 -07004184 err = 0;
4185errout:
4186 return err;
Linus Torvalds1da177e2005-04-16 15:20:36 -07004187}
4188
Roopa Prabhu6b9ea5a2015-09-08 10:53:04 -07004189struct rt6_nh {
David Ahern8d1c8022018-04-17 17:33:26 -07004190 struct fib6_info *fib6_info;
Roopa Prabhu6b9ea5a2015-09-08 10:53:04 -07004191 struct fib6_config r_cfg;
Roopa Prabhu6b9ea5a2015-09-08 10:53:04 -07004192 struct list_head next;
4193};
4194
4195static void ip6_print_replace_route_err(struct list_head *rt6_nh_list)
4196{
4197 struct rt6_nh *nh;
4198
4199 list_for_each_entry(nh, rt6_nh_list, next) {
David Ahern7d4d5062017-02-02 12:37:12 -08004200 pr_warn("IPV6: multipath route replace failed (check consistency of installed routes): %pI6c nexthop %pI6c ifi %d\n",
Roopa Prabhu6b9ea5a2015-09-08 10:53:04 -07004201 &nh->r_cfg.fc_dst, &nh->r_cfg.fc_gateway,
4202 nh->r_cfg.fc_ifindex);
4203 }
4204}
4205
David Ahernd4ead6b2018-04-17 17:33:16 -07004206static int ip6_route_info_append(struct net *net,
4207 struct list_head *rt6_nh_list,
David Ahern8d1c8022018-04-17 17:33:26 -07004208 struct fib6_info *rt,
4209 struct fib6_config *r_cfg)
Roopa Prabhu6b9ea5a2015-09-08 10:53:04 -07004210{
4211 struct rt6_nh *nh;
Roopa Prabhu6b9ea5a2015-09-08 10:53:04 -07004212 int err = -EEXIST;
4213
4214 list_for_each_entry(nh, rt6_nh_list, next) {
David Ahern8d1c8022018-04-17 17:33:26 -07004215 /* check if fib6_info already exists */
4216 if (rt6_duplicate_nexthop(nh->fib6_info, rt))
Roopa Prabhu6b9ea5a2015-09-08 10:53:04 -07004217 return err;
4218 }
4219
4220 nh = kzalloc(sizeof(*nh), GFP_KERNEL);
4221 if (!nh)
4222 return -ENOMEM;
David Ahern8d1c8022018-04-17 17:33:26 -07004223 nh->fib6_info = rt;
David Ahernd4ead6b2018-04-17 17:33:16 -07004224 err = ip6_convert_metrics(net, rt, r_cfg);
Roopa Prabhu6b9ea5a2015-09-08 10:53:04 -07004225 if (err) {
4226 kfree(nh);
4227 return err;
4228 }
4229 memcpy(&nh->r_cfg, r_cfg, sizeof(*r_cfg));
4230 list_add_tail(&nh->next, rt6_nh_list);
4231
4232 return 0;
4233}
4234
David Ahern8d1c8022018-04-17 17:33:26 -07004235static void ip6_route_mpath_notify(struct fib6_info *rt,
4236 struct fib6_info *rt_last,
David Ahern3b1137f2017-02-02 12:37:10 -08004237 struct nl_info *info,
4238 __u16 nlflags)
4239{
4240 /* if this is an APPEND route, then rt points to the first route
4241 * inserted and rt_last points to last route inserted. Userspace
4242 * wants a consistent dump of the route which starts at the first
4243 * nexthop. Since sibling routes are always added at the end of
4244 * the list, find the first sibling of the last route appended
4245 */
David Ahern93c2fb22018-04-18 15:38:59 -07004246 if ((nlflags & NLM_F_APPEND) && rt_last && rt_last->fib6_nsiblings) {
4247 rt = list_first_entry(&rt_last->fib6_siblings,
David Ahern8d1c8022018-04-17 17:33:26 -07004248 struct fib6_info,
David Ahern93c2fb22018-04-18 15:38:59 -07004249 fib6_siblings);
David Ahern3b1137f2017-02-02 12:37:10 -08004250 }
4251
4252 if (rt)
4253 inet6_rt_notify(RTM_NEWROUTE, rt, info, nlflags);
4254}
4255
David Ahern333c4302017-05-21 10:12:04 -06004256static int ip6_route_multipath_add(struct fib6_config *cfg,
4257 struct netlink_ext_ack *extack)
Nicolas Dichtel51ebd312012-10-22 03:42:09 +00004258{
David Ahern8d1c8022018-04-17 17:33:26 -07004259 struct fib6_info *rt_notif = NULL, *rt_last = NULL;
David Ahern3b1137f2017-02-02 12:37:10 -08004260 struct nl_info *info = &cfg->fc_nlinfo;
Nicolas Dichtel51ebd312012-10-22 03:42:09 +00004261 struct fib6_config r_cfg;
4262 struct rtnexthop *rtnh;
David Ahern8d1c8022018-04-17 17:33:26 -07004263 struct fib6_info *rt;
Roopa Prabhu6b9ea5a2015-09-08 10:53:04 -07004264 struct rt6_nh *err_nh;
4265 struct rt6_nh *nh, *nh_safe;
David Ahern3b1137f2017-02-02 12:37:10 -08004266 __u16 nlflags;
Nicolas Dichtel51ebd312012-10-22 03:42:09 +00004267 int remaining;
4268 int attrlen;
Roopa Prabhu6b9ea5a2015-09-08 10:53:04 -07004269 int err = 1;
4270 int nhn = 0;
4271 int replace = (cfg->fc_nlinfo.nlh &&
4272 (cfg->fc_nlinfo.nlh->nlmsg_flags & NLM_F_REPLACE));
4273 LIST_HEAD(rt6_nh_list);
Nicolas Dichtel51ebd312012-10-22 03:42:09 +00004274
David Ahern3b1137f2017-02-02 12:37:10 -08004275 nlflags = replace ? NLM_F_REPLACE : NLM_F_CREATE;
4276 if (info->nlh && info->nlh->nlmsg_flags & NLM_F_APPEND)
4277 nlflags |= NLM_F_APPEND;
4278
Michal Kubeček35f1b4e2015-05-18 20:53:55 +02004279 remaining = cfg->fc_mp_len;
Nicolas Dichtel51ebd312012-10-22 03:42:09 +00004280 rtnh = (struct rtnexthop *)cfg->fc_mp;
Nicolas Dichtel51ebd312012-10-22 03:42:09 +00004281
Roopa Prabhu6b9ea5a2015-09-08 10:53:04 -07004282 /* Parse a Multipath Entry and build a list (rt6_nh_list) of
David Ahern8d1c8022018-04-17 17:33:26 -07004283 * fib6_info structs per nexthop
Roopa Prabhu6b9ea5a2015-09-08 10:53:04 -07004284 */
Nicolas Dichtel51ebd312012-10-22 03:42:09 +00004285 while (rtnh_ok(rtnh, remaining)) {
4286 memcpy(&r_cfg, cfg, sizeof(*cfg));
4287 if (rtnh->rtnh_ifindex)
4288 r_cfg.fc_ifindex = rtnh->rtnh_ifindex;
4289
4290 attrlen = rtnh_attrlen(rtnh);
4291 if (attrlen > 0) {
4292 struct nlattr *nla, *attrs = rtnh_attrs(rtnh);
4293
4294 nla = nla_find(attrs, attrlen, RTA_GATEWAY);
4295 if (nla) {
Jiri Benc67b61f62015-03-29 16:59:26 +02004296 r_cfg.fc_gateway = nla_get_in6_addr(nla);
Nicolas Dichtel51ebd312012-10-22 03:42:09 +00004297 r_cfg.fc_flags |= RTF_GATEWAY;
4298 }
Roopa Prabhu19e42e42015-07-21 10:43:48 +02004299 r_cfg.fc_encap = nla_find(attrs, attrlen, RTA_ENCAP);
4300 nla = nla_find(attrs, attrlen, RTA_ENCAP_TYPE);
4301 if (nla)
4302 r_cfg.fc_encap_type = nla_get_u16(nla);
Nicolas Dichtel51ebd312012-10-22 03:42:09 +00004303 }
Roopa Prabhu6b9ea5a2015-09-08 10:53:04 -07004304
David Ahern68e2ffd2018-03-20 10:06:59 -07004305 r_cfg.fc_flags |= (rtnh->rtnh_flags & RTNH_F_ONLINK);
David Ahernacb54e32018-04-17 17:33:22 -07004306 rt = ip6_route_info_create(&r_cfg, GFP_KERNEL, extack);
Roopa Prabhu8c5b83f2015-10-10 08:26:36 -07004307 if (IS_ERR(rt)) {
4308 err = PTR_ERR(rt);
4309 rt = NULL;
Roopa Prabhu6b9ea5a2015-09-08 10:53:04 -07004310 goto cleanup;
Roopa Prabhu8c5b83f2015-10-10 08:26:36 -07004311 }
Roopa Prabhu6b9ea5a2015-09-08 10:53:04 -07004312
David Ahern5e670d82018-04-17 17:33:14 -07004313 rt->fib6_nh.nh_weight = rtnh->rtnh_hops + 1;
Ido Schimmel398958a2018-01-09 16:40:28 +02004314
David Ahernd4ead6b2018-04-17 17:33:16 -07004315 err = ip6_route_info_append(info->nl_net, &rt6_nh_list,
4316 rt, &r_cfg);
Nicolas Dichtel51ebd312012-10-22 03:42:09 +00004317 if (err) {
David Ahern93531c62018-04-17 17:33:25 -07004318 fib6_info_release(rt);
Roopa Prabhu6b9ea5a2015-09-08 10:53:04 -07004319 goto cleanup;
Nicolas Dichtel51ebd312012-10-22 03:42:09 +00004320 }
Roopa Prabhu6b9ea5a2015-09-08 10:53:04 -07004321
4322 rtnh = rtnh_next(rtnh, &remaining);
4323 }
4324
David Ahern3b1137f2017-02-02 12:37:10 -08004325 /* for add and replace send one notification with all nexthops.
4326 * Skip the notification in fib6_add_rt2node and send one with
4327 * the full route when done
4328 */
4329 info->skip_notify = 1;
4330
Roopa Prabhu6b9ea5a2015-09-08 10:53:04 -07004331 err_nh = NULL;
4332 list_for_each_entry(nh, &rt6_nh_list, next) {
David Ahern8d1c8022018-04-17 17:33:26 -07004333 rt_last = nh->fib6_info;
4334 err = __ip6_ins_rt(nh->fib6_info, info, extack);
4335 fib6_info_release(nh->fib6_info);
David Ahern93531c62018-04-17 17:33:25 -07004336
David Ahern3b1137f2017-02-02 12:37:10 -08004337 /* save reference to first route for notification */
4338 if (!rt_notif && !err)
David Ahern8d1c8022018-04-17 17:33:26 -07004339 rt_notif = nh->fib6_info;
David Ahern3b1137f2017-02-02 12:37:10 -08004340
David Ahern8d1c8022018-04-17 17:33:26 -07004341 /* nh->fib6_info is used or freed at this point, reset to NULL*/
4342 nh->fib6_info = NULL;
Roopa Prabhu6b9ea5a2015-09-08 10:53:04 -07004343 if (err) {
4344 if (replace && nhn)
4345 ip6_print_replace_route_err(&rt6_nh_list);
4346 err_nh = nh;
4347 goto add_errout;
4348 }
4349
Nicolas Dichtel1a724182012-11-01 22:58:22 +00004350 /* Because each route is added like a single route we remove
Michal Kubeček27596472015-05-18 20:54:00 +02004351 * these flags after the first nexthop: if there is a collision,
4352 * we have already failed to add the first nexthop:
4353 * fib6_add_rt2node() has rejected it; when replacing, old
4354 * nexthops have been replaced by first new, the rest should
4355 * be added to it.
Nicolas Dichtel1a724182012-11-01 22:58:22 +00004356 */
Michal Kubeček27596472015-05-18 20:54:00 +02004357 cfg->fc_nlinfo.nlh->nlmsg_flags &= ~(NLM_F_EXCL |
4358 NLM_F_REPLACE);
Roopa Prabhu6b9ea5a2015-09-08 10:53:04 -07004359 nhn++;
4360 }
4361
David Ahern3b1137f2017-02-02 12:37:10 -08004362 /* success ... tell user about new route */
4363 ip6_route_mpath_notify(rt_notif, rt_last, info, nlflags);
Roopa Prabhu6b9ea5a2015-09-08 10:53:04 -07004364 goto cleanup;
4365
4366add_errout:
David Ahern3b1137f2017-02-02 12:37:10 -08004367 /* send notification for routes that were added so that
4368 * the delete notifications sent by ip6_route_del are
4369 * coherent
4370 */
4371 if (rt_notif)
4372 ip6_route_mpath_notify(rt_notif, rt_last, info, nlflags);
4373
Roopa Prabhu6b9ea5a2015-09-08 10:53:04 -07004374 /* Delete routes that were already added */
4375 list_for_each_entry(nh, &rt6_nh_list, next) {
4376 if (err_nh == nh)
4377 break;
David Ahern333c4302017-05-21 10:12:04 -06004378 ip6_route_del(&nh->r_cfg, extack);
Roopa Prabhu6b9ea5a2015-09-08 10:53:04 -07004379 }
4380
4381cleanup:
4382 list_for_each_entry_safe(nh, nh_safe, &rt6_nh_list, next) {
David Ahern8d1c8022018-04-17 17:33:26 -07004383 if (nh->fib6_info)
4384 fib6_info_release(nh->fib6_info);
Roopa Prabhu6b9ea5a2015-09-08 10:53:04 -07004385 list_del(&nh->next);
4386 kfree(nh);
4387 }
4388
4389 return err;
4390}
4391
David Ahern333c4302017-05-21 10:12:04 -06004392static int ip6_route_multipath_del(struct fib6_config *cfg,
4393 struct netlink_ext_ack *extack)
Roopa Prabhu6b9ea5a2015-09-08 10:53:04 -07004394{
4395 struct fib6_config r_cfg;
4396 struct rtnexthop *rtnh;
4397 int remaining;
4398 int attrlen;
4399 int err = 1, last_err = 0;
4400
4401 remaining = cfg->fc_mp_len;
4402 rtnh = (struct rtnexthop *)cfg->fc_mp;
4403
4404 /* Parse a Multipath Entry */
4405 while (rtnh_ok(rtnh, remaining)) {
4406 memcpy(&r_cfg, cfg, sizeof(*cfg));
4407 if (rtnh->rtnh_ifindex)
4408 r_cfg.fc_ifindex = rtnh->rtnh_ifindex;
4409
4410 attrlen = rtnh_attrlen(rtnh);
4411 if (attrlen > 0) {
4412 struct nlattr *nla, *attrs = rtnh_attrs(rtnh);
4413
4414 nla = nla_find(attrs, attrlen, RTA_GATEWAY);
4415 if (nla) {
4416 nla_memcpy(&r_cfg.fc_gateway, nla, 16);
4417 r_cfg.fc_flags |= RTF_GATEWAY;
4418 }
4419 }
David Ahern333c4302017-05-21 10:12:04 -06004420 err = ip6_route_del(&r_cfg, extack);
Roopa Prabhu6b9ea5a2015-09-08 10:53:04 -07004421 if (err)
4422 last_err = err;
4423
Nicolas Dichtel51ebd312012-10-22 03:42:09 +00004424 rtnh = rtnh_next(rtnh, &remaining);
4425 }
4426
4427 return last_err;
4428}
4429
David Ahernc21ef3e2017-04-16 09:48:24 -07004430static int inet6_rtm_delroute(struct sk_buff *skb, struct nlmsghdr *nlh,
4431 struct netlink_ext_ack *extack)
Linus Torvalds1da177e2005-04-16 15:20:36 -07004432{
Thomas Graf86872cb2006-08-22 00:01:08 -07004433 struct fib6_config cfg;
4434 int err;
Linus Torvalds1da177e2005-04-16 15:20:36 -07004435
David Ahern333c4302017-05-21 10:12:04 -06004436 err = rtm_to_fib6_config(skb, nlh, &cfg, extack);
Thomas Graf86872cb2006-08-22 00:01:08 -07004437 if (err < 0)
4438 return err;
4439
Nicolas Dichtel51ebd312012-10-22 03:42:09 +00004440 if (cfg.fc_mp)
David Ahern333c4302017-05-21 10:12:04 -06004441 return ip6_route_multipath_del(&cfg, extack);
David Ahern0ae81332017-02-02 12:37:08 -08004442 else {
4443 cfg.fc_delete_all_nh = 1;
David Ahern333c4302017-05-21 10:12:04 -06004444 return ip6_route_del(&cfg, extack);
David Ahern0ae81332017-02-02 12:37:08 -08004445 }
Linus Torvalds1da177e2005-04-16 15:20:36 -07004446}
4447
David Ahernc21ef3e2017-04-16 09:48:24 -07004448static int inet6_rtm_newroute(struct sk_buff *skb, struct nlmsghdr *nlh,
4449 struct netlink_ext_ack *extack)
Linus Torvalds1da177e2005-04-16 15:20:36 -07004450{
Thomas Graf86872cb2006-08-22 00:01:08 -07004451 struct fib6_config cfg;
4452 int err;
Linus Torvalds1da177e2005-04-16 15:20:36 -07004453
David Ahern333c4302017-05-21 10:12:04 -06004454 err = rtm_to_fib6_config(skb, nlh, &cfg, extack);
Thomas Graf86872cb2006-08-22 00:01:08 -07004455 if (err < 0)
4456 return err;
4457
Nicolas Dichtel51ebd312012-10-22 03:42:09 +00004458 if (cfg.fc_mp)
David Ahern333c4302017-05-21 10:12:04 -06004459 return ip6_route_multipath_add(&cfg, extack);
Nicolas Dichtel51ebd312012-10-22 03:42:09 +00004460 else
David Ahernacb54e32018-04-17 17:33:22 -07004461 return ip6_route_add(&cfg, GFP_KERNEL, extack);
Linus Torvalds1da177e2005-04-16 15:20:36 -07004462}
4463
David Ahern8d1c8022018-04-17 17:33:26 -07004464static size_t rt6_nlmsg_size(struct fib6_info *rt)
Thomas Graf339bf982006-11-10 14:10:15 -08004465{
David Ahernbeb1afac52017-02-02 12:37:09 -08004466 int nexthop_len = 0;
4467
David Ahern93c2fb22018-04-18 15:38:59 -07004468 if (rt->fib6_nsiblings) {
David Ahernbeb1afac52017-02-02 12:37:09 -08004469 nexthop_len = nla_total_size(0) /* RTA_MULTIPATH */
4470 + NLA_ALIGN(sizeof(struct rtnexthop))
4471 + nla_total_size(16) /* RTA_GATEWAY */
David Ahern5e670d82018-04-17 17:33:14 -07004472 + lwtunnel_get_encap_size(rt->fib6_nh.nh_lwtstate);
David Ahernbeb1afac52017-02-02 12:37:09 -08004473
David Ahern93c2fb22018-04-18 15:38:59 -07004474 nexthop_len *= rt->fib6_nsiblings;
David Ahernbeb1afac52017-02-02 12:37:09 -08004475 }
4476
Thomas Graf339bf982006-11-10 14:10:15 -08004477 return NLMSG_ALIGN(sizeof(struct rtmsg))
4478 + nla_total_size(16) /* RTA_SRC */
4479 + nla_total_size(16) /* RTA_DST */
4480 + nla_total_size(16) /* RTA_GATEWAY */
4481 + nla_total_size(16) /* RTA_PREFSRC */
4482 + nla_total_size(4) /* RTA_TABLE */
4483 + nla_total_size(4) /* RTA_IIF */
4484 + nla_total_size(4) /* RTA_OIF */
4485 + nla_total_size(4) /* RTA_PRIORITY */
Noriaki TAKAMIYA6a2b9ce2007-01-23 22:09:41 -08004486 + RTAX_MAX * nla_total_size(4) /* RTA_METRICS */
Daniel Borkmannea697632015-01-05 23:57:47 +01004487 + nla_total_size(sizeof(struct rta_cacheinfo))
Lubomir Rintelc78ba6d2015-03-11 15:39:21 +01004488 + nla_total_size(TCP_CA_NAME_MAX) /* RTAX_CC_ALGO */
Roopa Prabhu19e42e42015-07-21 10:43:48 +02004489 + nla_total_size(1) /* RTA_PREF */
David Ahern5e670d82018-04-17 17:33:14 -07004490 + lwtunnel_get_encap_size(rt->fib6_nh.nh_lwtstate)
David Ahernbeb1afac52017-02-02 12:37:09 -08004491 + nexthop_len;
4492}
4493
David Ahern8d1c8022018-04-17 17:33:26 -07004494static int rt6_nexthop_info(struct sk_buff *skb, struct fib6_info *rt,
David Ahern5be083c2017-03-06 15:57:31 -08004495 unsigned int *flags, bool skip_oif)
David Ahernbeb1afac52017-02-02 12:37:09 -08004496{
David Ahern5e670d82018-04-17 17:33:14 -07004497 if (rt->fib6_nh.nh_flags & RTNH_F_DEAD)
Ido Schimmelf9d882e2018-01-07 12:45:10 +02004498 *flags |= RTNH_F_DEAD;
4499
David Ahern5e670d82018-04-17 17:33:14 -07004500 if (rt->fib6_nh.nh_flags & RTNH_F_LINKDOWN) {
David Ahernbeb1afac52017-02-02 12:37:09 -08004501 *flags |= RTNH_F_LINKDOWN;
David Aherndcd1f572018-04-18 15:39:05 -07004502
4503 rcu_read_lock();
4504 if (fib6_ignore_linkdown(rt))
David Ahernbeb1afac52017-02-02 12:37:09 -08004505 *flags |= RTNH_F_DEAD;
David Aherndcd1f572018-04-18 15:39:05 -07004506 rcu_read_unlock();
David Ahernbeb1afac52017-02-02 12:37:09 -08004507 }
4508
David Ahern93c2fb22018-04-18 15:38:59 -07004509 if (rt->fib6_flags & RTF_GATEWAY) {
David Ahern5e670d82018-04-17 17:33:14 -07004510 if (nla_put_in6_addr(skb, RTA_GATEWAY, &rt->fib6_nh.nh_gw) < 0)
David Ahernbeb1afac52017-02-02 12:37:09 -08004511 goto nla_put_failure;
4512 }
4513
David Ahern5e670d82018-04-17 17:33:14 -07004514 *flags |= (rt->fib6_nh.nh_flags & RTNH_F_ONLINK);
4515 if (rt->fib6_nh.nh_flags & RTNH_F_OFFLOAD)
Ido Schimmel61e4d012017-08-03 13:28:20 +02004516 *flags |= RTNH_F_OFFLOAD;
4517
David Ahern5be083c2017-03-06 15:57:31 -08004518 /* not needed for multipath encoding b/c it has a rtnexthop struct */
David Ahern5e670d82018-04-17 17:33:14 -07004519 if (!skip_oif && rt->fib6_nh.nh_dev &&
4520 nla_put_u32(skb, RTA_OIF, rt->fib6_nh.nh_dev->ifindex))
David Ahernbeb1afac52017-02-02 12:37:09 -08004521 goto nla_put_failure;
4522
David Ahern5e670d82018-04-17 17:33:14 -07004523 if (rt->fib6_nh.nh_lwtstate &&
4524 lwtunnel_fill_encap(skb, rt->fib6_nh.nh_lwtstate) < 0)
David Ahernbeb1afac52017-02-02 12:37:09 -08004525 goto nla_put_failure;
4526
4527 return 0;
4528
4529nla_put_failure:
4530 return -EMSGSIZE;
4531}
4532
David Ahern5be083c2017-03-06 15:57:31 -08004533/* add multipath next hop */
David Ahern8d1c8022018-04-17 17:33:26 -07004534static int rt6_add_nexthop(struct sk_buff *skb, struct fib6_info *rt)
David Ahernbeb1afac52017-02-02 12:37:09 -08004535{
David Ahern5e670d82018-04-17 17:33:14 -07004536 const struct net_device *dev = rt->fib6_nh.nh_dev;
David Ahernbeb1afac52017-02-02 12:37:09 -08004537 struct rtnexthop *rtnh;
4538 unsigned int flags = 0;
4539
4540 rtnh = nla_reserve_nohdr(skb, sizeof(*rtnh));
4541 if (!rtnh)
4542 goto nla_put_failure;
4543
David Ahern5e670d82018-04-17 17:33:14 -07004544 rtnh->rtnh_hops = rt->fib6_nh.nh_weight - 1;
4545 rtnh->rtnh_ifindex = dev ? dev->ifindex : 0;
David Ahernbeb1afac52017-02-02 12:37:09 -08004546
David Ahern5be083c2017-03-06 15:57:31 -08004547 if (rt6_nexthop_info(skb, rt, &flags, true) < 0)
David Ahernbeb1afac52017-02-02 12:37:09 -08004548 goto nla_put_failure;
4549
4550 rtnh->rtnh_flags = flags;
4551
4552 /* length of rtnetlink header + attributes */
4553 rtnh->rtnh_len = nlmsg_get_pos(skb) - (void *)rtnh;
4554
4555 return 0;
4556
4557nla_put_failure:
4558 return -EMSGSIZE;
Thomas Graf339bf982006-11-10 14:10:15 -08004559}
4560
David Ahernd4ead6b2018-04-17 17:33:16 -07004561static int rt6_fill_node(struct net *net, struct sk_buff *skb,
David Ahern8d1c8022018-04-17 17:33:26 -07004562 struct fib6_info *rt, struct dst_entry *dst,
David Ahernd4ead6b2018-04-17 17:33:16 -07004563 struct in6_addr *dest, struct in6_addr *src,
Eric W. Biederman15e47302012-09-07 20:12:54 +00004564 int iif, int type, u32 portid, u32 seq,
David Ahernf8cfe2c2017-01-17 15:51:08 -08004565 unsigned int flags)
Linus Torvalds1da177e2005-04-16 15:20:36 -07004566{
4567 struct rtmsg *rtm;
Thomas Graf2d7202b2006-08-22 00:01:27 -07004568 struct nlmsghdr *nlh;
David Ahernd4ead6b2018-04-17 17:33:16 -07004569 long expires = 0;
4570 u32 *pmetrics;
Patrick McHardy9e762a42006-08-10 23:09:48 -07004571 u32 table;
Linus Torvalds1da177e2005-04-16 15:20:36 -07004572
Eric W. Biederman15e47302012-09-07 20:12:54 +00004573 nlh = nlmsg_put(skb, portid, seq, type, sizeof(*rtm), flags);
David S. Miller38308472011-12-03 18:02:47 -05004574 if (!nlh)
Patrick McHardy26932562007-01-31 23:16:40 -08004575 return -EMSGSIZE;
Thomas Graf2d7202b2006-08-22 00:01:27 -07004576
4577 rtm = nlmsg_data(nlh);
Linus Torvalds1da177e2005-04-16 15:20:36 -07004578 rtm->rtm_family = AF_INET6;
David Ahern93c2fb22018-04-18 15:38:59 -07004579 rtm->rtm_dst_len = rt->fib6_dst.plen;
4580 rtm->rtm_src_len = rt->fib6_src.plen;
Linus Torvalds1da177e2005-04-16 15:20:36 -07004581 rtm->rtm_tos = 0;
David Ahern93c2fb22018-04-18 15:38:59 -07004582 if (rt->fib6_table)
4583 table = rt->fib6_table->tb6_id;
Thomas Grafc71099a2006-08-04 23:20:06 -07004584 else
Patrick McHardy9e762a42006-08-10 23:09:48 -07004585 table = RT6_TABLE_UNSPEC;
4586 rtm->rtm_table = table;
David S. Millerc78679e2012-04-01 20:27:33 -04004587 if (nla_put_u32(skb, RTA_TABLE, table))
4588 goto nla_put_failure;
David Aherne8478e82018-04-17 17:33:13 -07004589
4590 rtm->rtm_type = rt->fib6_type;
Linus Torvalds1da177e2005-04-16 15:20:36 -07004591 rtm->rtm_flags = 0;
4592 rtm->rtm_scope = RT_SCOPE_UNIVERSE;
David Ahern93c2fb22018-04-18 15:38:59 -07004593 rtm->rtm_protocol = rt->fib6_protocol;
Linus Torvalds1da177e2005-04-16 15:20:36 -07004594
David Ahern93c2fb22018-04-18 15:38:59 -07004595 if (rt->fib6_flags & RTF_CACHE)
Linus Torvalds1da177e2005-04-16 15:20:36 -07004596 rtm->rtm_flags |= RTM_F_CLONED;
4597
David Ahernd4ead6b2018-04-17 17:33:16 -07004598 if (dest) {
4599 if (nla_put_in6_addr(skb, RTA_DST, dest))
David S. Millerc78679e2012-04-01 20:27:33 -04004600 goto nla_put_failure;
YOSHIFUJI Hideaki1ab14572007-02-09 23:24:49 +09004601 rtm->rtm_dst_len = 128;
Linus Torvalds1da177e2005-04-16 15:20:36 -07004602 } else if (rtm->rtm_dst_len)
David Ahern93c2fb22018-04-18 15:38:59 -07004603 if (nla_put_in6_addr(skb, RTA_DST, &rt->fib6_dst.addr))
David S. Millerc78679e2012-04-01 20:27:33 -04004604 goto nla_put_failure;
Linus Torvalds1da177e2005-04-16 15:20:36 -07004605#ifdef CONFIG_IPV6_SUBTREES
4606 if (src) {
Jiri Benc930345e2015-03-29 16:59:25 +02004607 if (nla_put_in6_addr(skb, RTA_SRC, src))
David S. Millerc78679e2012-04-01 20:27:33 -04004608 goto nla_put_failure;
YOSHIFUJI Hideaki1ab14572007-02-09 23:24:49 +09004609 rtm->rtm_src_len = 128;
David S. Millerc78679e2012-04-01 20:27:33 -04004610 } else if (rtm->rtm_src_len &&
David Ahern93c2fb22018-04-18 15:38:59 -07004611 nla_put_in6_addr(skb, RTA_SRC, &rt->fib6_src.addr))
David S. Millerc78679e2012-04-01 20:27:33 -04004612 goto nla_put_failure;
Linus Torvalds1da177e2005-04-16 15:20:36 -07004613#endif
YOSHIFUJI Hideaki7bc570c2008-04-03 09:22:53 +09004614 if (iif) {
4615#ifdef CONFIG_IPV6_MROUTE
David Ahern93c2fb22018-04-18 15:38:59 -07004616 if (ipv6_addr_is_multicast(&rt->fib6_dst.addr)) {
David Ahernfd61c6b2017-01-17 15:51:07 -08004617 int err = ip6mr_get_route(net, skb, rtm, portid);
Nikolay Aleksandrov2cf75072016-09-25 23:08:31 +02004618
David Ahernfd61c6b2017-01-17 15:51:07 -08004619 if (err == 0)
4620 return 0;
4621 if (err < 0)
4622 goto nla_put_failure;
YOSHIFUJI Hideaki7bc570c2008-04-03 09:22:53 +09004623 } else
4624#endif
David S. Millerc78679e2012-04-01 20:27:33 -04004625 if (nla_put_u32(skb, RTA_IIF, iif))
4626 goto nla_put_failure;
David Ahernd4ead6b2018-04-17 17:33:16 -07004627 } else if (dest) {
Linus Torvalds1da177e2005-04-16 15:20:36 -07004628 struct in6_addr saddr_buf;
David Ahernd4ead6b2018-04-17 17:33:16 -07004629 if (ip6_route_get_saddr(net, rt, dest, 0, &saddr_buf) == 0 &&
Jiri Benc930345e2015-03-29 16:59:25 +02004630 nla_put_in6_addr(skb, RTA_PREFSRC, &saddr_buf))
David S. Millerc78679e2012-04-01 20:27:33 -04004631 goto nla_put_failure;
Linus Torvalds1da177e2005-04-16 15:20:36 -07004632 }
Thomas Graf2d7202b2006-08-22 00:01:27 -07004633
David Ahern93c2fb22018-04-18 15:38:59 -07004634 if (rt->fib6_prefsrc.plen) {
Daniel Walterc3968a82011-04-13 21:10:57 +00004635 struct in6_addr saddr_buf;
David Ahern93c2fb22018-04-18 15:38:59 -07004636 saddr_buf = rt->fib6_prefsrc.addr;
Jiri Benc930345e2015-03-29 16:59:25 +02004637 if (nla_put_in6_addr(skb, RTA_PREFSRC, &saddr_buf))
David S. Millerc78679e2012-04-01 20:27:33 -04004638 goto nla_put_failure;
Daniel Walterc3968a82011-04-13 21:10:57 +00004639 }
4640
David Ahernd4ead6b2018-04-17 17:33:16 -07004641 pmetrics = dst ? dst_metrics_ptr(dst) : rt->fib6_metrics->metrics;
4642 if (rtnetlink_put_metrics(skb, pmetrics) < 0)
Thomas Graf2d7202b2006-08-22 00:01:27 -07004643 goto nla_put_failure;
4644
David Ahern93c2fb22018-04-18 15:38:59 -07004645 if (nla_put_u32(skb, RTA_PRIORITY, rt->fib6_metric))
David S. Millerc78679e2012-04-01 20:27:33 -04004646 goto nla_put_failure;
Li Wei82539472012-07-29 16:01:30 +00004647
David Ahernbeb1afac52017-02-02 12:37:09 -08004648 /* For multipath routes, walk the siblings list and add
4649 * each as a nexthop within RTA_MULTIPATH.
4650 */
David Ahern93c2fb22018-04-18 15:38:59 -07004651 if (rt->fib6_nsiblings) {
David Ahern8d1c8022018-04-17 17:33:26 -07004652 struct fib6_info *sibling, *next_sibling;
David Ahernbeb1afac52017-02-02 12:37:09 -08004653 struct nlattr *mp;
4654
4655 mp = nla_nest_start(skb, RTA_MULTIPATH);
4656 if (!mp)
4657 goto nla_put_failure;
4658
4659 if (rt6_add_nexthop(skb, rt) < 0)
4660 goto nla_put_failure;
4661
4662 list_for_each_entry_safe(sibling, next_sibling,
David Ahern93c2fb22018-04-18 15:38:59 -07004663 &rt->fib6_siblings, fib6_siblings) {
David Ahernbeb1afac52017-02-02 12:37:09 -08004664 if (rt6_add_nexthop(skb, sibling) < 0)
4665 goto nla_put_failure;
4666 }
4667
4668 nla_nest_end(skb, mp);
4669 } else {
David Ahern5be083c2017-03-06 15:57:31 -08004670 if (rt6_nexthop_info(skb, rt, &rtm->rtm_flags, false) < 0)
David Ahernbeb1afac52017-02-02 12:37:09 -08004671 goto nla_put_failure;
4672 }
4673
David Ahern93c2fb22018-04-18 15:38:59 -07004674 if (rt->fib6_flags & RTF_EXPIRES) {
David Ahern14895682018-04-17 17:33:17 -07004675 expires = dst ? dst->expires : rt->expires;
4676 expires -= jiffies;
4677 }
YOSHIFUJI Hideaki69cdf8f2008-05-19 16:55:13 -07004678
David Ahernd4ead6b2018-04-17 17:33:16 -07004679 if (rtnl_put_cacheinfo(skb, dst, 0, expires, dst ? dst->error : 0) < 0)
Thomas Grafe3703b32006-11-27 09:27:07 -08004680 goto nla_put_failure;
Linus Torvalds1da177e2005-04-16 15:20:36 -07004681
David Ahern93c2fb22018-04-18 15:38:59 -07004682 if (nla_put_u8(skb, RTA_PREF, IPV6_EXTRACT_PREF(rt->fib6_flags)))
Lubomir Rintelc78ba6d2015-03-11 15:39:21 +01004683 goto nla_put_failure;
4684
Roopa Prabhu19e42e42015-07-21 10:43:48 +02004685
Johannes Berg053c0952015-01-16 22:09:00 +01004686 nlmsg_end(skb, nlh);
4687 return 0;
Thomas Graf2d7202b2006-08-22 00:01:27 -07004688
4689nla_put_failure:
Patrick McHardy26932562007-01-31 23:16:40 -08004690 nlmsg_cancel(skb, nlh);
4691 return -EMSGSIZE;
Linus Torvalds1da177e2005-04-16 15:20:36 -07004692}
4693
David Ahern8d1c8022018-04-17 17:33:26 -07004694int rt6_dump_route(struct fib6_info *rt, void *p_arg)
Linus Torvalds1da177e2005-04-16 15:20:36 -07004695{
4696 struct rt6_rtnl_dump_arg *arg = (struct rt6_rtnl_dump_arg *) p_arg;
David Ahern1f17e2f2017-01-26 13:54:08 -08004697 struct net *net = arg->net;
4698
David Ahern421842e2018-04-17 17:33:18 -07004699 if (rt == net->ipv6.fib6_null_entry)
David Ahern1f17e2f2017-01-26 13:54:08 -08004700 return 0;
Linus Torvalds1da177e2005-04-16 15:20:36 -07004701
Thomas Graf2d7202b2006-08-22 00:01:27 -07004702 if (nlmsg_len(arg->cb->nlh) >= sizeof(struct rtmsg)) {
4703 struct rtmsg *rtm = nlmsg_data(arg->cb->nlh);
David Ahernf8cfe2c2017-01-17 15:51:08 -08004704
4705 /* user wants prefix routes only */
4706 if (rtm->rtm_flags & RTM_F_PREFIX &&
David Ahern93c2fb22018-04-18 15:38:59 -07004707 !(rt->fib6_flags & RTF_PREFIX_RT)) {
David Ahernf8cfe2c2017-01-17 15:51:08 -08004708 /* success since this is not a prefix route */
4709 return 1;
4710 }
4711 }
Linus Torvalds1da177e2005-04-16 15:20:36 -07004712
David Ahernd4ead6b2018-04-17 17:33:16 -07004713 return rt6_fill_node(net, arg->skb, rt, NULL, NULL, NULL, 0,
4714 RTM_NEWROUTE, NETLINK_CB(arg->cb->skb).portid,
4715 arg->cb->nlh->nlmsg_seq, NLM_F_MULTI);
Linus Torvalds1da177e2005-04-16 15:20:36 -07004716}
4717
David Ahernc21ef3e2017-04-16 09:48:24 -07004718static int inet6_rtm_getroute(struct sk_buff *in_skb, struct nlmsghdr *nlh,
4719 struct netlink_ext_ack *extack)
Linus Torvalds1da177e2005-04-16 15:20:36 -07004720{
YOSHIFUJI Hideaki3b1e0a62008-03-26 02:26:21 +09004721 struct net *net = sock_net(in_skb->sk);
Thomas Grafab364a62006-08-22 00:01:47 -07004722 struct nlattr *tb[RTA_MAX+1];
Roopa Prabhu18c3a612017-05-25 10:42:40 -07004723 int err, iif = 0, oif = 0;
David Aherna68886a2018-04-20 15:38:02 -07004724 struct fib6_info *from;
Roopa Prabhu18c3a612017-05-25 10:42:40 -07004725 struct dst_entry *dst;
Linus Torvalds1da177e2005-04-16 15:20:36 -07004726 struct rt6_info *rt;
Thomas Grafab364a62006-08-22 00:01:47 -07004727 struct sk_buff *skb;
4728 struct rtmsg *rtm;
David S. Miller4c9483b2011-03-12 16:22:43 -05004729 struct flowi6 fl6;
Roopa Prabhu18c3a612017-05-25 10:42:40 -07004730 bool fibmatch;
Thomas Grafab364a62006-08-22 00:01:47 -07004731
Johannes Bergfceb6432017-04-12 14:34:07 +02004732 err = nlmsg_parse(nlh, sizeof(*rtm), tb, RTA_MAX, rtm_ipv6_policy,
David Ahernc21ef3e2017-04-16 09:48:24 -07004733 extack);
Thomas Grafab364a62006-08-22 00:01:47 -07004734 if (err < 0)
4735 goto errout;
4736
4737 err = -EINVAL;
David S. Miller4c9483b2011-03-12 16:22:43 -05004738 memset(&fl6, 0, sizeof(fl6));
Hannes Frederic Sowa38b70972016-06-11 20:08:19 +02004739 rtm = nlmsg_data(nlh);
4740 fl6.flowlabel = ip6_make_flowinfo(rtm->rtm_tos, 0);
Roopa Prabhu18c3a612017-05-25 10:42:40 -07004741 fibmatch = !!(rtm->rtm_flags & RTM_F_FIB_MATCH);
Thomas Grafab364a62006-08-22 00:01:47 -07004742
4743 if (tb[RTA_SRC]) {
4744 if (nla_len(tb[RTA_SRC]) < sizeof(struct in6_addr))
4745 goto errout;
4746
Alexey Dobriyan4e3fd7a2011-11-21 03:39:03 +00004747 fl6.saddr = *(struct in6_addr *)nla_data(tb[RTA_SRC]);
Thomas Grafab364a62006-08-22 00:01:47 -07004748 }
4749
4750 if (tb[RTA_DST]) {
4751 if (nla_len(tb[RTA_DST]) < sizeof(struct in6_addr))
4752 goto errout;
4753
Alexey Dobriyan4e3fd7a2011-11-21 03:39:03 +00004754 fl6.daddr = *(struct in6_addr *)nla_data(tb[RTA_DST]);
Thomas Grafab364a62006-08-22 00:01:47 -07004755 }
4756
4757 if (tb[RTA_IIF])
4758 iif = nla_get_u32(tb[RTA_IIF]);
4759
4760 if (tb[RTA_OIF])
Shmulik Ladkani72331bc2012-04-01 04:03:45 +00004761 oif = nla_get_u32(tb[RTA_OIF]);
Thomas Grafab364a62006-08-22 00:01:47 -07004762
Lorenzo Colitti2e47b292014-05-15 16:38:41 -07004763 if (tb[RTA_MARK])
4764 fl6.flowi6_mark = nla_get_u32(tb[RTA_MARK]);
4765
Lorenzo Colitti622ec2c2016-11-04 02:23:42 +09004766 if (tb[RTA_UID])
4767 fl6.flowi6_uid = make_kuid(current_user_ns(),
4768 nla_get_u32(tb[RTA_UID]));
4769 else
4770 fl6.flowi6_uid = iif ? INVALID_UID : current_uid();
4771
Thomas Grafab364a62006-08-22 00:01:47 -07004772 if (iif) {
4773 struct net_device *dev;
Shmulik Ladkani72331bc2012-04-01 04:03:45 +00004774 int flags = 0;
4775
Florian Westphal121622d2017-08-15 16:34:42 +02004776 rcu_read_lock();
4777
4778 dev = dev_get_by_index_rcu(net, iif);
Thomas Grafab364a62006-08-22 00:01:47 -07004779 if (!dev) {
Florian Westphal121622d2017-08-15 16:34:42 +02004780 rcu_read_unlock();
Thomas Grafab364a62006-08-22 00:01:47 -07004781 err = -ENODEV;
4782 goto errout;
4783 }
Shmulik Ladkani72331bc2012-04-01 04:03:45 +00004784
4785 fl6.flowi6_iif = iif;
4786
4787 if (!ipv6_addr_any(&fl6.saddr))
4788 flags |= RT6_LOOKUP_F_HAS_SADDR;
4789
David Ahernb75cc8f2018-03-02 08:32:17 -08004790 dst = ip6_route_input_lookup(net, dev, &fl6, NULL, flags);
Florian Westphal121622d2017-08-15 16:34:42 +02004791
4792 rcu_read_unlock();
Shmulik Ladkani72331bc2012-04-01 04:03:45 +00004793 } else {
4794 fl6.flowi6_oif = oif;
4795
Ido Schimmel58acfd72017-12-20 12:28:25 +02004796 dst = ip6_route_output(net, NULL, &fl6);
Roopa Prabhu18c3a612017-05-25 10:42:40 -07004797 }
4798
Roopa Prabhu18c3a612017-05-25 10:42:40 -07004799
4800 rt = container_of(dst, struct rt6_info, dst);
4801 if (rt->dst.error) {
4802 err = rt->dst.error;
4803 ip6_rt_put(rt);
4804 goto errout;
Thomas Grafab364a62006-08-22 00:01:47 -07004805 }
Linus Torvalds1da177e2005-04-16 15:20:36 -07004806
WANG Cong9d6acb32017-03-01 20:48:39 -08004807 if (rt == net->ipv6.ip6_null_entry) {
4808 err = rt->dst.error;
4809 ip6_rt_put(rt);
4810 goto errout;
4811 }
4812
Linus Torvalds1da177e2005-04-16 15:20:36 -07004813 skb = alloc_skb(NLMSG_GOODSIZE, GFP_KERNEL);
David S. Miller38308472011-12-03 18:02:47 -05004814 if (!skb) {
Amerigo Wang94e187c2012-10-29 00:13:19 +00004815 ip6_rt_put(rt);
Thomas Grafab364a62006-08-22 00:01:47 -07004816 err = -ENOBUFS;
4817 goto errout;
4818 }
Linus Torvalds1da177e2005-04-16 15:20:36 -07004819
Changli Gaod8d1f302010-06-10 23:31:35 -07004820 skb_dst_set(skb, &rt->dst);
David Aherna68886a2018-04-20 15:38:02 -07004821
4822 rcu_read_lock();
4823 from = rcu_dereference(rt->from);
4824
Roopa Prabhu18c3a612017-05-25 10:42:40 -07004825 if (fibmatch)
David Aherna68886a2018-04-20 15:38:02 -07004826 err = rt6_fill_node(net, skb, from, NULL, NULL, NULL, iif,
Roopa Prabhu18c3a612017-05-25 10:42:40 -07004827 RTM_NEWROUTE, NETLINK_CB(in_skb).portid,
4828 nlh->nlmsg_seq, 0);
4829 else
David Aherna68886a2018-04-20 15:38:02 -07004830 err = rt6_fill_node(net, skb, from, dst, &fl6.daddr,
4831 &fl6.saddr, iif, RTM_NEWROUTE,
David Ahernd4ead6b2018-04-17 17:33:16 -07004832 NETLINK_CB(in_skb).portid, nlh->nlmsg_seq,
4833 0);
David Aherna68886a2018-04-20 15:38:02 -07004834 rcu_read_unlock();
4835
Linus Torvalds1da177e2005-04-16 15:20:36 -07004836 if (err < 0) {
Thomas Grafab364a62006-08-22 00:01:47 -07004837 kfree_skb(skb);
4838 goto errout;
Linus Torvalds1da177e2005-04-16 15:20:36 -07004839 }
4840
Eric W. Biederman15e47302012-09-07 20:12:54 +00004841 err = rtnl_unicast(skb, net, NETLINK_CB(in_skb).portid);
Thomas Grafab364a62006-08-22 00:01:47 -07004842errout:
Linus Torvalds1da177e2005-04-16 15:20:36 -07004843 return err;
Linus Torvalds1da177e2005-04-16 15:20:36 -07004844}
4845
David Ahern8d1c8022018-04-17 17:33:26 -07004846void inet6_rt_notify(int event, struct fib6_info *rt, struct nl_info *info,
Roopa Prabhu37a1d362015-09-13 10:18:33 -07004847 unsigned int nlm_flags)
Linus Torvalds1da177e2005-04-16 15:20:36 -07004848{
4849 struct sk_buff *skb;
Daniel Lezcano55786892008-03-04 13:47:47 -08004850 struct net *net = info->nl_net;
Denis V. Lunev528c4ce2007-12-13 09:45:12 -08004851 u32 seq;
4852 int err;
Linus Torvalds1da177e2005-04-16 15:20:36 -07004853
Denis V. Lunev528c4ce2007-12-13 09:45:12 -08004854 err = -ENOBUFS;
David S. Miller38308472011-12-03 18:02:47 -05004855 seq = info->nlh ? info->nlh->nlmsg_seq : 0;
Thomas Graf86872cb2006-08-22 00:01:08 -07004856
Roopa Prabhu19e42e42015-07-21 10:43:48 +02004857 skb = nlmsg_new(rt6_nlmsg_size(rt), gfp_any());
David S. Miller38308472011-12-03 18:02:47 -05004858 if (!skb)
Thomas Graf21713eb2006-08-15 00:35:24 -07004859 goto errout;
4860
David Ahernd4ead6b2018-04-17 17:33:16 -07004861 err = rt6_fill_node(net, skb, rt, NULL, NULL, NULL, 0,
4862 event, info->portid, seq, nlm_flags);
Patrick McHardy26932562007-01-31 23:16:40 -08004863 if (err < 0) {
4864 /* -EMSGSIZE implies BUG in rt6_nlmsg_size() */
4865 WARN_ON(err == -EMSGSIZE);
4866 kfree_skb(skb);
4867 goto errout;
4868 }
Eric W. Biederman15e47302012-09-07 20:12:54 +00004869 rtnl_notify(skb, net, info->portid, RTNLGRP_IPV6_ROUTE,
Pablo Neira Ayuso1ce85fe2009-02-24 23:18:28 -08004870 info->nlh, gfp_any());
4871 return;
Thomas Graf21713eb2006-08-15 00:35:24 -07004872errout:
4873 if (err < 0)
Daniel Lezcano55786892008-03-04 13:47:47 -08004874 rtnl_set_sk_err(net, RTNLGRP_IPV6_ROUTE, err);
Linus Torvalds1da177e2005-04-16 15:20:36 -07004875}
4876
Daniel Lezcano8ed67782008-03-04 13:48:30 -08004877static int ip6_route_dev_notify(struct notifier_block *this,
Jiri Pirko351638e2013-05-28 01:30:21 +00004878 unsigned long event, void *ptr)
Daniel Lezcano8ed67782008-03-04 13:48:30 -08004879{
Jiri Pirko351638e2013-05-28 01:30:21 +00004880 struct net_device *dev = netdev_notifier_info_to_dev(ptr);
YOSHIFUJI Hideakic346dca2008-03-25 21:47:49 +09004881 struct net *net = dev_net(dev);
Daniel Lezcano8ed67782008-03-04 13:48:30 -08004882
WANG Cong242d3a42017-05-08 10:12:13 -07004883 if (!(dev->flags & IFF_LOOPBACK))
4884 return NOTIFY_OK;
4885
4886 if (event == NETDEV_REGISTER) {
David Ahern421842e2018-04-17 17:33:18 -07004887 net->ipv6.fib6_null_entry->fib6_nh.nh_dev = dev;
Changli Gaod8d1f302010-06-10 23:31:35 -07004888 net->ipv6.ip6_null_entry->dst.dev = dev;
Daniel Lezcano8ed67782008-03-04 13:48:30 -08004889 net->ipv6.ip6_null_entry->rt6i_idev = in6_dev_get(dev);
4890#ifdef CONFIG_IPV6_MULTIPLE_TABLES
Changli Gaod8d1f302010-06-10 23:31:35 -07004891 net->ipv6.ip6_prohibit_entry->dst.dev = dev;
Daniel Lezcano8ed67782008-03-04 13:48:30 -08004892 net->ipv6.ip6_prohibit_entry->rt6i_idev = in6_dev_get(dev);
Changli Gaod8d1f302010-06-10 23:31:35 -07004893 net->ipv6.ip6_blk_hole_entry->dst.dev = dev;
Daniel Lezcano8ed67782008-03-04 13:48:30 -08004894 net->ipv6.ip6_blk_hole_entry->rt6i_idev = in6_dev_get(dev);
4895#endif
WANG Cong76da0702017-06-20 11:42:27 -07004896 } else if (event == NETDEV_UNREGISTER &&
4897 dev->reg_state != NETREG_UNREGISTERED) {
4898 /* NETDEV_UNREGISTER could be fired for multiple times by
4899 * netdev_wait_allrefs(). Make sure we only call this once.
4900 */
Eric Dumazet12d94a82017-08-15 04:09:51 -07004901 in6_dev_put_clear(&net->ipv6.ip6_null_entry->rt6i_idev);
WANG Cong242d3a42017-05-08 10:12:13 -07004902#ifdef CONFIG_IPV6_MULTIPLE_TABLES
Eric Dumazet12d94a82017-08-15 04:09:51 -07004903 in6_dev_put_clear(&net->ipv6.ip6_prohibit_entry->rt6i_idev);
4904 in6_dev_put_clear(&net->ipv6.ip6_blk_hole_entry->rt6i_idev);
WANG Cong242d3a42017-05-08 10:12:13 -07004905#endif
Daniel Lezcano8ed67782008-03-04 13:48:30 -08004906 }
4907
4908 return NOTIFY_OK;
4909}
4910
Linus Torvalds1da177e2005-04-16 15:20:36 -07004911/*
4912 * /proc
4913 */
4914
4915#ifdef CONFIG_PROC_FS
4916
Alexey Dobriyan33120b32007-11-06 05:27:11 -08004917static const struct file_operations ipv6_route_proc_fops = {
Alexey Dobriyan33120b32007-11-06 05:27:11 -08004918 .open = ipv6_route_open,
4919 .read = seq_read,
4920 .llseek = seq_lseek,
Hannes Frederic Sowa8d2ca1d2013-09-21 16:55:59 +02004921 .release = seq_release_net,
Alexey Dobriyan33120b32007-11-06 05:27:11 -08004922};
4923
Linus Torvalds1da177e2005-04-16 15:20:36 -07004924static int rt6_stats_seq_show(struct seq_file *seq, void *v)
4925{
Daniel Lezcano69ddb802008-03-04 13:46:23 -08004926 struct net *net = (struct net *)seq->private;
Linus Torvalds1da177e2005-04-16 15:20:36 -07004927 seq_printf(seq, "%04x %04x %04x %04x %04x %04x %04x\n",
Daniel Lezcano69ddb802008-03-04 13:46:23 -08004928 net->ipv6.rt6_stats->fib_nodes,
4929 net->ipv6.rt6_stats->fib_route_nodes,
Wei Wang81eb8442017-10-06 12:06:11 -07004930 atomic_read(&net->ipv6.rt6_stats->fib_rt_alloc),
Daniel Lezcano69ddb802008-03-04 13:46:23 -08004931 net->ipv6.rt6_stats->fib_rt_entries,
4932 net->ipv6.rt6_stats->fib_rt_cache,
Eric Dumazetfc66f952010-10-08 06:37:34 +00004933 dst_entries_get_slow(&net->ipv6.ip6_dst_ops),
Daniel Lezcano69ddb802008-03-04 13:46:23 -08004934 net->ipv6.rt6_stats->fib_discarded_routes);
Linus Torvalds1da177e2005-04-16 15:20:36 -07004935
4936 return 0;
4937}
4938
4939static int rt6_stats_seq_open(struct inode *inode, struct file *file)
4940{
Pavel Emelyanovde05c552008-07-18 04:07:21 -07004941 return single_open_net(inode, file, rt6_stats_seq_show);
Daniel Lezcano69ddb802008-03-04 13:46:23 -08004942}
4943
Arjan van de Ven9a321442007-02-12 00:55:35 -08004944static const struct file_operations rt6_stats_seq_fops = {
Linus Torvalds1da177e2005-04-16 15:20:36 -07004945 .open = rt6_stats_seq_open,
4946 .read = seq_read,
4947 .llseek = seq_lseek,
Pavel Emelyanovb6fcbdb2008-07-18 04:07:44 -07004948 .release = single_release_net,
Linus Torvalds1da177e2005-04-16 15:20:36 -07004949};
4950#endif /* CONFIG_PROC_FS */
4951
4952#ifdef CONFIG_SYSCTL
4953
Linus Torvalds1da177e2005-04-16 15:20:36 -07004954static
Joe Perchesfe2c6332013-06-11 23:04:25 -07004955int ipv6_sysctl_rtcache_flush(struct ctl_table *ctl, int write,
Linus Torvalds1da177e2005-04-16 15:20:36 -07004956 void __user *buffer, size_t *lenp, loff_t *ppos)
4957{
Lucian Adrian Grijincuc486da32011-02-24 19:48:03 +00004958 struct net *net;
4959 int delay;
4960 if (!write)
Linus Torvalds1da177e2005-04-16 15:20:36 -07004961 return -EINVAL;
Lucian Adrian Grijincuc486da32011-02-24 19:48:03 +00004962
4963 net = (struct net *)ctl->extra1;
4964 delay = net->ipv6.sysctl.flush_delay;
4965 proc_dointvec(ctl, write, buffer, lenp, ppos);
Michal Kubeček2ac3ac82013-08-01 10:04:14 +02004966 fib6_run_gc(delay <= 0 ? 0 : (unsigned long)delay, net, delay > 0);
Lucian Adrian Grijincuc486da32011-02-24 19:48:03 +00004967 return 0;
Linus Torvalds1da177e2005-04-16 15:20:36 -07004968}
4969
Joe Perchesfe2c6332013-06-11 23:04:25 -07004970struct ctl_table ipv6_route_table_template[] = {
YOSHIFUJI Hideaki1ab14572007-02-09 23:24:49 +09004971 {
Linus Torvalds1da177e2005-04-16 15:20:36 -07004972 .procname = "flush",
Daniel Lezcano49905092008-01-10 03:01:01 -08004973 .data = &init_net.ipv6.sysctl.flush_delay,
Linus Torvalds1da177e2005-04-16 15:20:36 -07004974 .maxlen = sizeof(int),
Dave Jones89c8b3a12005-04-28 12:11:49 -07004975 .mode = 0200,
Alexey Dobriyan6d9f2392008-11-03 18:21:05 -08004976 .proc_handler = ipv6_sysctl_rtcache_flush
Linus Torvalds1da177e2005-04-16 15:20:36 -07004977 },
4978 {
Linus Torvalds1da177e2005-04-16 15:20:36 -07004979 .procname = "gc_thresh",
Daniel Lezcano9a7ec3a2008-03-04 13:48:53 -08004980 .data = &ip6_dst_ops_template.gc_thresh,
Linus Torvalds1da177e2005-04-16 15:20:36 -07004981 .maxlen = sizeof(int),
4982 .mode = 0644,
Alexey Dobriyan6d9f2392008-11-03 18:21:05 -08004983 .proc_handler = proc_dointvec,
Linus Torvalds1da177e2005-04-16 15:20:36 -07004984 },
4985 {
Linus Torvalds1da177e2005-04-16 15:20:36 -07004986 .procname = "max_size",
Daniel Lezcano49905092008-01-10 03:01:01 -08004987 .data = &init_net.ipv6.sysctl.ip6_rt_max_size,
Linus Torvalds1da177e2005-04-16 15:20:36 -07004988 .maxlen = sizeof(int),
4989 .mode = 0644,
Alexey Dobriyan6d9f2392008-11-03 18:21:05 -08004990 .proc_handler = proc_dointvec,
Linus Torvalds1da177e2005-04-16 15:20:36 -07004991 },
4992 {
Linus Torvalds1da177e2005-04-16 15:20:36 -07004993 .procname = "gc_min_interval",
Daniel Lezcano49905092008-01-10 03:01:01 -08004994 .data = &init_net.ipv6.sysctl.ip6_rt_gc_min_interval,
Linus Torvalds1da177e2005-04-16 15:20:36 -07004995 .maxlen = sizeof(int),
4996 .mode = 0644,
Alexey Dobriyan6d9f2392008-11-03 18:21:05 -08004997 .proc_handler = proc_dointvec_jiffies,
Linus Torvalds1da177e2005-04-16 15:20:36 -07004998 },
4999 {
Linus Torvalds1da177e2005-04-16 15:20:36 -07005000 .procname = "gc_timeout",
Daniel Lezcano49905092008-01-10 03:01:01 -08005001 .data = &init_net.ipv6.sysctl.ip6_rt_gc_timeout,
Linus Torvalds1da177e2005-04-16 15:20:36 -07005002 .maxlen = sizeof(int),
5003 .mode = 0644,
Alexey Dobriyan6d9f2392008-11-03 18:21:05 -08005004 .proc_handler = proc_dointvec_jiffies,
Linus Torvalds1da177e2005-04-16 15:20:36 -07005005 },
5006 {
Linus Torvalds1da177e2005-04-16 15:20:36 -07005007 .procname = "gc_interval",
Daniel Lezcano49905092008-01-10 03:01:01 -08005008 .data = &init_net.ipv6.sysctl.ip6_rt_gc_interval,
Linus Torvalds1da177e2005-04-16 15:20:36 -07005009 .maxlen = sizeof(int),
5010 .mode = 0644,
Alexey Dobriyan6d9f2392008-11-03 18:21:05 -08005011 .proc_handler = proc_dointvec_jiffies,
Linus Torvalds1da177e2005-04-16 15:20:36 -07005012 },
5013 {
Linus Torvalds1da177e2005-04-16 15:20:36 -07005014 .procname = "gc_elasticity",
Daniel Lezcano49905092008-01-10 03:01:01 -08005015 .data = &init_net.ipv6.sysctl.ip6_rt_gc_elasticity,
Linus Torvalds1da177e2005-04-16 15:20:36 -07005016 .maxlen = sizeof(int),
5017 .mode = 0644,
Min Zhangf3d3f612010-08-14 22:42:51 -07005018 .proc_handler = proc_dointvec,
Linus Torvalds1da177e2005-04-16 15:20:36 -07005019 },
5020 {
Linus Torvalds1da177e2005-04-16 15:20:36 -07005021 .procname = "mtu_expires",
Daniel Lezcano49905092008-01-10 03:01:01 -08005022 .data = &init_net.ipv6.sysctl.ip6_rt_mtu_expires,
Linus Torvalds1da177e2005-04-16 15:20:36 -07005023 .maxlen = sizeof(int),
5024 .mode = 0644,
Alexey Dobriyan6d9f2392008-11-03 18:21:05 -08005025 .proc_handler = proc_dointvec_jiffies,
Linus Torvalds1da177e2005-04-16 15:20:36 -07005026 },
5027 {
Linus Torvalds1da177e2005-04-16 15:20:36 -07005028 .procname = "min_adv_mss",
Daniel Lezcano49905092008-01-10 03:01:01 -08005029 .data = &init_net.ipv6.sysctl.ip6_rt_min_advmss,
Linus Torvalds1da177e2005-04-16 15:20:36 -07005030 .maxlen = sizeof(int),
5031 .mode = 0644,
Min Zhangf3d3f612010-08-14 22:42:51 -07005032 .proc_handler = proc_dointvec,
Linus Torvalds1da177e2005-04-16 15:20:36 -07005033 },
5034 {
Linus Torvalds1da177e2005-04-16 15:20:36 -07005035 .procname = "gc_min_interval_ms",
Daniel Lezcano49905092008-01-10 03:01:01 -08005036 .data = &init_net.ipv6.sysctl.ip6_rt_gc_min_interval,
Linus Torvalds1da177e2005-04-16 15:20:36 -07005037 .maxlen = sizeof(int),
5038 .mode = 0644,
Alexey Dobriyan6d9f2392008-11-03 18:21:05 -08005039 .proc_handler = proc_dointvec_ms_jiffies,
Linus Torvalds1da177e2005-04-16 15:20:36 -07005040 },
Eric W. Biedermanf8572d82009-11-05 13:32:03 -08005041 { }
Linus Torvalds1da177e2005-04-16 15:20:36 -07005042};
5043
Alexey Dobriyan2c8c1e72010-01-17 03:35:32 +00005044struct ctl_table * __net_init ipv6_route_sysctl_init(struct net *net)
Daniel Lezcano760f2d02008-01-10 02:53:43 -08005045{
5046 struct ctl_table *table;
5047
5048 table = kmemdup(ipv6_route_table_template,
5049 sizeof(ipv6_route_table_template),
5050 GFP_KERNEL);
YOSHIFUJI Hideaki5ee09102008-02-28 00:24:28 +09005051
5052 if (table) {
5053 table[0].data = &net->ipv6.sysctl.flush_delay;
Lucian Adrian Grijincuc486da32011-02-24 19:48:03 +00005054 table[0].extra1 = net;
Alexey Dobriyan86393e52009-08-29 01:34:49 +00005055 table[1].data = &net->ipv6.ip6_dst_ops.gc_thresh;
YOSHIFUJI Hideaki5ee09102008-02-28 00:24:28 +09005056 table[2].data = &net->ipv6.sysctl.ip6_rt_max_size;
5057 table[3].data = &net->ipv6.sysctl.ip6_rt_gc_min_interval;
5058 table[4].data = &net->ipv6.sysctl.ip6_rt_gc_timeout;
5059 table[5].data = &net->ipv6.sysctl.ip6_rt_gc_interval;
5060 table[6].data = &net->ipv6.sysctl.ip6_rt_gc_elasticity;
5061 table[7].data = &net->ipv6.sysctl.ip6_rt_mtu_expires;
5062 table[8].data = &net->ipv6.sysctl.ip6_rt_min_advmss;
Alexey Dobriyan9c69fab2009-12-18 20:11:03 -08005063 table[9].data = &net->ipv6.sysctl.ip6_rt_gc_min_interval;
Eric W. Biederman464dc802012-11-16 03:02:59 +00005064
5065 /* Don't export sysctls to unprivileged users */
5066 if (net->user_ns != &init_user_ns)
5067 table[0].procname = NULL;
YOSHIFUJI Hideaki5ee09102008-02-28 00:24:28 +09005068 }
5069
Daniel Lezcano760f2d02008-01-10 02:53:43 -08005070 return table;
5071}
Linus Torvalds1da177e2005-04-16 15:20:36 -07005072#endif
5073
Alexey Dobriyan2c8c1e72010-01-17 03:35:32 +00005074static int __net_init ip6_route_net_init(struct net *net)
Daniel Lezcanocdb18762008-03-04 13:45:33 -08005075{
Pavel Emelyanov633d424b2008-04-21 14:25:23 -07005076 int ret = -ENOMEM;
Daniel Lezcano8ed67782008-03-04 13:48:30 -08005077
Alexey Dobriyan86393e52009-08-29 01:34:49 +00005078 memcpy(&net->ipv6.ip6_dst_ops, &ip6_dst_ops_template,
5079 sizeof(net->ipv6.ip6_dst_ops));
Benjamin Theryf2fc6a52008-03-04 13:49:23 -08005080
Eric Dumazetfc66f952010-10-08 06:37:34 +00005081 if (dst_entries_init(&net->ipv6.ip6_dst_ops) < 0)
5082 goto out_ip6_dst_ops;
5083
David Ahern421842e2018-04-17 17:33:18 -07005084 net->ipv6.fib6_null_entry = kmemdup(&fib6_null_entry_template,
5085 sizeof(*net->ipv6.fib6_null_entry),
5086 GFP_KERNEL);
5087 if (!net->ipv6.fib6_null_entry)
5088 goto out_ip6_dst_entries;
5089
Daniel Lezcano8ed67782008-03-04 13:48:30 -08005090 net->ipv6.ip6_null_entry = kmemdup(&ip6_null_entry_template,
5091 sizeof(*net->ipv6.ip6_null_entry),
5092 GFP_KERNEL);
5093 if (!net->ipv6.ip6_null_entry)
David Ahern421842e2018-04-17 17:33:18 -07005094 goto out_fib6_null_entry;
Changli Gaod8d1f302010-06-10 23:31:35 -07005095 net->ipv6.ip6_null_entry->dst.ops = &net->ipv6.ip6_dst_ops;
David S. Miller62fa8a82011-01-26 20:51:05 -08005096 dst_init_metrics(&net->ipv6.ip6_null_entry->dst,
5097 ip6_template_metrics, true);
Daniel Lezcano8ed67782008-03-04 13:48:30 -08005098
5099#ifdef CONFIG_IPV6_MULTIPLE_TABLES
Vincent Bernatfeca7d82017-08-08 20:23:49 +02005100 net->ipv6.fib6_has_custom_rules = false;
Daniel Lezcano8ed67782008-03-04 13:48:30 -08005101 net->ipv6.ip6_prohibit_entry = kmemdup(&ip6_prohibit_entry_template,
5102 sizeof(*net->ipv6.ip6_prohibit_entry),
5103 GFP_KERNEL);
Peter Zijlstra68fffc62008-10-07 14:12:10 -07005104 if (!net->ipv6.ip6_prohibit_entry)
5105 goto out_ip6_null_entry;
Changli Gaod8d1f302010-06-10 23:31:35 -07005106 net->ipv6.ip6_prohibit_entry->dst.ops = &net->ipv6.ip6_dst_ops;
David S. Miller62fa8a82011-01-26 20:51:05 -08005107 dst_init_metrics(&net->ipv6.ip6_prohibit_entry->dst,
5108 ip6_template_metrics, true);
Daniel Lezcano8ed67782008-03-04 13:48:30 -08005109
5110 net->ipv6.ip6_blk_hole_entry = kmemdup(&ip6_blk_hole_entry_template,
5111 sizeof(*net->ipv6.ip6_blk_hole_entry),
5112 GFP_KERNEL);
Peter Zijlstra68fffc62008-10-07 14:12:10 -07005113 if (!net->ipv6.ip6_blk_hole_entry)
5114 goto out_ip6_prohibit_entry;
Changli Gaod8d1f302010-06-10 23:31:35 -07005115 net->ipv6.ip6_blk_hole_entry->dst.ops = &net->ipv6.ip6_dst_ops;
David S. Miller62fa8a82011-01-26 20:51:05 -08005116 dst_init_metrics(&net->ipv6.ip6_blk_hole_entry->dst,
5117 ip6_template_metrics, true);
Daniel Lezcano8ed67782008-03-04 13:48:30 -08005118#endif
5119
Peter Zijlstrab339a47c2008-10-07 14:15:00 -07005120 net->ipv6.sysctl.flush_delay = 0;
5121 net->ipv6.sysctl.ip6_rt_max_size = 4096;
5122 net->ipv6.sysctl.ip6_rt_gc_min_interval = HZ / 2;
5123 net->ipv6.sysctl.ip6_rt_gc_timeout = 60*HZ;
5124 net->ipv6.sysctl.ip6_rt_gc_interval = 30*HZ;
5125 net->ipv6.sysctl.ip6_rt_gc_elasticity = 9;
5126 net->ipv6.sysctl.ip6_rt_mtu_expires = 10*60*HZ;
5127 net->ipv6.sysctl.ip6_rt_min_advmss = IPV6_MIN_MTU - 20 - 40;
5128
Benjamin Thery6891a342008-03-04 13:49:47 -08005129 net->ipv6.ip6_rt_gc_expire = 30*HZ;
5130
Daniel Lezcano8ed67782008-03-04 13:48:30 -08005131 ret = 0;
5132out:
5133 return ret;
Benjamin Theryf2fc6a52008-03-04 13:49:23 -08005134
Peter Zijlstra68fffc62008-10-07 14:12:10 -07005135#ifdef CONFIG_IPV6_MULTIPLE_TABLES
5136out_ip6_prohibit_entry:
5137 kfree(net->ipv6.ip6_prohibit_entry);
5138out_ip6_null_entry:
5139 kfree(net->ipv6.ip6_null_entry);
5140#endif
David Ahern421842e2018-04-17 17:33:18 -07005141out_fib6_null_entry:
5142 kfree(net->ipv6.fib6_null_entry);
Eric Dumazetfc66f952010-10-08 06:37:34 +00005143out_ip6_dst_entries:
5144 dst_entries_destroy(&net->ipv6.ip6_dst_ops);
Benjamin Theryf2fc6a52008-03-04 13:49:23 -08005145out_ip6_dst_ops:
Benjamin Theryf2fc6a52008-03-04 13:49:23 -08005146 goto out;
Daniel Lezcanocdb18762008-03-04 13:45:33 -08005147}
5148
Alexey Dobriyan2c8c1e72010-01-17 03:35:32 +00005149static void __net_exit ip6_route_net_exit(struct net *net)
Daniel Lezcanocdb18762008-03-04 13:45:33 -08005150{
David Ahern421842e2018-04-17 17:33:18 -07005151 kfree(net->ipv6.fib6_null_entry);
Daniel Lezcano8ed67782008-03-04 13:48:30 -08005152 kfree(net->ipv6.ip6_null_entry);
5153#ifdef CONFIG_IPV6_MULTIPLE_TABLES
5154 kfree(net->ipv6.ip6_prohibit_entry);
5155 kfree(net->ipv6.ip6_blk_hole_entry);
5156#endif
Xiaotian Feng41bb78b2010-11-02 16:11:05 +00005157 dst_entries_destroy(&net->ipv6.ip6_dst_ops);
Daniel Lezcanocdb18762008-03-04 13:45:33 -08005158}
5159
Thomas Grafd1896342012-06-18 12:08:33 +00005160static int __net_init ip6_route_net_init_late(struct net *net)
5161{
5162#ifdef CONFIG_PROC_FS
Gao fengd4beaa62013-02-18 01:34:54 +00005163 proc_create("ipv6_route", 0, net->proc_net, &ipv6_route_proc_fops);
Joe Perchesd6444062018-03-23 15:54:38 -07005164 proc_create("rt6_stats", 0444, net->proc_net, &rt6_stats_seq_fops);
Thomas Grafd1896342012-06-18 12:08:33 +00005165#endif
5166 return 0;
5167}
5168
5169static void __net_exit ip6_route_net_exit_late(struct net *net)
5170{
5171#ifdef CONFIG_PROC_FS
Gao fengece31ff2013-02-18 01:34:56 +00005172 remove_proc_entry("ipv6_route", net->proc_net);
5173 remove_proc_entry("rt6_stats", net->proc_net);
Thomas Grafd1896342012-06-18 12:08:33 +00005174#endif
5175}
5176
Daniel Lezcanocdb18762008-03-04 13:45:33 -08005177static struct pernet_operations ip6_route_net_ops = {
5178 .init = ip6_route_net_init,
5179 .exit = ip6_route_net_exit,
5180};
5181
David S. Millerc3426b42012-06-09 16:27:05 -07005182static int __net_init ipv6_inetpeer_init(struct net *net)
5183{
5184 struct inet_peer_base *bp = kmalloc(sizeof(*bp), GFP_KERNEL);
5185
5186 if (!bp)
5187 return -ENOMEM;
5188 inet_peer_base_init(bp);
5189 net->ipv6.peers = bp;
5190 return 0;
5191}
5192
5193static void __net_exit ipv6_inetpeer_exit(struct net *net)
5194{
5195 struct inet_peer_base *bp = net->ipv6.peers;
5196
5197 net->ipv6.peers = NULL;
David S. Miller56a6b242012-06-09 16:32:41 -07005198 inetpeer_invalidate_tree(bp);
David S. Millerc3426b42012-06-09 16:27:05 -07005199 kfree(bp);
5200}
5201
David S. Miller2b823f72012-06-09 19:00:16 -07005202static struct pernet_operations ipv6_inetpeer_ops = {
David S. Millerc3426b42012-06-09 16:27:05 -07005203 .init = ipv6_inetpeer_init,
5204 .exit = ipv6_inetpeer_exit,
5205};
5206
Thomas Grafd1896342012-06-18 12:08:33 +00005207static struct pernet_operations ip6_route_net_late_ops = {
5208 .init = ip6_route_net_init_late,
5209 .exit = ip6_route_net_exit_late,
5210};
5211
Daniel Lezcano8ed67782008-03-04 13:48:30 -08005212static struct notifier_block ip6_route_dev_notifier = {
5213 .notifier_call = ip6_route_dev_notify,
WANG Cong242d3a42017-05-08 10:12:13 -07005214 .priority = ADDRCONF_NOTIFY_PRIORITY - 10,
Daniel Lezcano8ed67782008-03-04 13:48:30 -08005215};
5216
WANG Cong2f460932017-05-03 22:07:31 -07005217void __init ip6_route_init_special_entries(void)
5218{
5219 /* Registering of the loopback is done before this portion of code,
5220 * the loopback reference in rt6_info will not be taken, do it
5221 * manually for init_net */
David Ahern421842e2018-04-17 17:33:18 -07005222 init_net.ipv6.fib6_null_entry->fib6_nh.nh_dev = init_net.loopback_dev;
WANG Cong2f460932017-05-03 22:07:31 -07005223 init_net.ipv6.ip6_null_entry->dst.dev = init_net.loopback_dev;
5224 init_net.ipv6.ip6_null_entry->rt6i_idev = in6_dev_get(init_net.loopback_dev);
5225 #ifdef CONFIG_IPV6_MULTIPLE_TABLES
5226 init_net.ipv6.ip6_prohibit_entry->dst.dev = init_net.loopback_dev;
5227 init_net.ipv6.ip6_prohibit_entry->rt6i_idev = in6_dev_get(init_net.loopback_dev);
5228 init_net.ipv6.ip6_blk_hole_entry->dst.dev = init_net.loopback_dev;
5229 init_net.ipv6.ip6_blk_hole_entry->rt6i_idev = in6_dev_get(init_net.loopback_dev);
5230 #endif
5231}
5232
Daniel Lezcano433d49c2007-12-07 00:43:48 -08005233int __init ip6_route_init(void)
Linus Torvalds1da177e2005-04-16 15:20:36 -07005234{
Daniel Lezcano433d49c2007-12-07 00:43:48 -08005235 int ret;
Martin KaFai Lau8d0b94a2015-05-22 20:56:04 -07005236 int cpu;
Daniel Lezcano433d49c2007-12-07 00:43:48 -08005237
Daniel Lezcano9a7ec3a2008-03-04 13:48:53 -08005238 ret = -ENOMEM;
5239 ip6_dst_ops_template.kmem_cachep =
5240 kmem_cache_create("ip6_dst_cache", sizeof(struct rt6_info), 0,
5241 SLAB_HWCACHE_ALIGN, NULL);
5242 if (!ip6_dst_ops_template.kmem_cachep)
Fernando Carrijoc19a28e2009-01-07 18:09:08 -08005243 goto out;
David S. Miller14e50e52007-05-24 18:17:54 -07005244
Eric Dumazetfc66f952010-10-08 06:37:34 +00005245 ret = dst_entries_init(&ip6_dst_blackhole_ops);
Daniel Lezcano8ed67782008-03-04 13:48:30 -08005246 if (ret)
Daniel Lezcanobdb32892008-03-04 13:48:10 -08005247 goto out_kmem_cache;
Daniel Lezcanobdb32892008-03-04 13:48:10 -08005248
David S. Millerc3426b42012-06-09 16:27:05 -07005249 ret = register_pernet_subsys(&ipv6_inetpeer_ops);
5250 if (ret)
David S. Millere8803b62012-06-16 01:12:19 -07005251 goto out_dst_entries;
Thomas Graf2a0c4512012-06-14 23:00:17 +00005252
David S. Miller7e52b332012-06-15 15:51:55 -07005253 ret = register_pernet_subsys(&ip6_route_net_ops);
5254 if (ret)
5255 goto out_register_inetpeer;
David S. Millerc3426b42012-06-09 16:27:05 -07005256
Arnaud Ebalard5dc121e2008-10-01 02:37:56 -07005257 ip6_dst_blackhole_ops.kmem_cachep = ip6_dst_ops_template.kmem_cachep;
5258
David S. Millere8803b62012-06-16 01:12:19 -07005259 ret = fib6_init();
Daniel Lezcano433d49c2007-12-07 00:43:48 -08005260 if (ret)
Daniel Lezcano8ed67782008-03-04 13:48:30 -08005261 goto out_register_subsys;
Daniel Lezcano433d49c2007-12-07 00:43:48 -08005262
Daniel Lezcano433d49c2007-12-07 00:43:48 -08005263 ret = xfrm6_init();
5264 if (ret)
David S. Millere8803b62012-06-16 01:12:19 -07005265 goto out_fib6_init;
Daniel Lezcanoc35b7e72007-12-08 00:14:11 -08005266
Daniel Lezcano433d49c2007-12-07 00:43:48 -08005267 ret = fib6_rules_init();
5268 if (ret)
5269 goto xfrm6_init;
Daniel Lezcano7e5449c2007-12-08 00:14:54 -08005270
Thomas Grafd1896342012-06-18 12:08:33 +00005271 ret = register_pernet_subsys(&ip6_route_net_late_ops);
5272 if (ret)
5273 goto fib6_rules_init;
5274
Florian Westphal16feebc2017-12-02 21:44:08 +01005275 ret = rtnl_register_module(THIS_MODULE, PF_INET6, RTM_NEWROUTE,
5276 inet6_rtm_newroute, NULL, 0);
5277 if (ret < 0)
5278 goto out_register_late_subsys;
5279
5280 ret = rtnl_register_module(THIS_MODULE, PF_INET6, RTM_DELROUTE,
5281 inet6_rtm_delroute, NULL, 0);
5282 if (ret < 0)
5283 goto out_register_late_subsys;
5284
5285 ret = rtnl_register_module(THIS_MODULE, PF_INET6, RTM_GETROUTE,
5286 inet6_rtm_getroute, NULL,
5287 RTNL_FLAG_DOIT_UNLOCKED);
5288 if (ret < 0)
Thomas Grafd1896342012-06-18 12:08:33 +00005289 goto out_register_late_subsys;
Daniel Lezcano433d49c2007-12-07 00:43:48 -08005290
Daniel Lezcano8ed67782008-03-04 13:48:30 -08005291 ret = register_netdevice_notifier(&ip6_route_dev_notifier);
Daniel Lezcanocdb18762008-03-04 13:45:33 -08005292 if (ret)
Thomas Grafd1896342012-06-18 12:08:33 +00005293 goto out_register_late_subsys;
Daniel Lezcano8ed67782008-03-04 13:48:30 -08005294
Martin KaFai Lau8d0b94a2015-05-22 20:56:04 -07005295 for_each_possible_cpu(cpu) {
5296 struct uncached_list *ul = per_cpu_ptr(&rt6_uncached_list, cpu);
5297
5298 INIT_LIST_HEAD(&ul->head);
5299 spin_lock_init(&ul->lock);
5300 }
5301
Daniel Lezcano433d49c2007-12-07 00:43:48 -08005302out:
5303 return ret;
5304
Thomas Grafd1896342012-06-18 12:08:33 +00005305out_register_late_subsys:
Florian Westphal16feebc2017-12-02 21:44:08 +01005306 rtnl_unregister_all(PF_INET6);
Thomas Grafd1896342012-06-18 12:08:33 +00005307 unregister_pernet_subsys(&ip6_route_net_late_ops);
Daniel Lezcano433d49c2007-12-07 00:43:48 -08005308fib6_rules_init:
Daniel Lezcano433d49c2007-12-07 00:43:48 -08005309 fib6_rules_cleanup();
5310xfrm6_init:
Daniel Lezcano433d49c2007-12-07 00:43:48 -08005311 xfrm6_fini();
Thomas Graf2a0c4512012-06-14 23:00:17 +00005312out_fib6_init:
5313 fib6_gc_cleanup();
Daniel Lezcano8ed67782008-03-04 13:48:30 -08005314out_register_subsys:
5315 unregister_pernet_subsys(&ip6_route_net_ops);
David S. Miller7e52b332012-06-15 15:51:55 -07005316out_register_inetpeer:
5317 unregister_pernet_subsys(&ipv6_inetpeer_ops);
Eric Dumazetfc66f952010-10-08 06:37:34 +00005318out_dst_entries:
5319 dst_entries_destroy(&ip6_dst_blackhole_ops);
Daniel Lezcano433d49c2007-12-07 00:43:48 -08005320out_kmem_cache:
Benjamin Theryf2fc6a52008-03-04 13:49:23 -08005321 kmem_cache_destroy(ip6_dst_ops_template.kmem_cachep);
Daniel Lezcano433d49c2007-12-07 00:43:48 -08005322 goto out;
Linus Torvalds1da177e2005-04-16 15:20:36 -07005323}
5324
5325void ip6_route_cleanup(void)
5326{
Daniel Lezcano8ed67782008-03-04 13:48:30 -08005327 unregister_netdevice_notifier(&ip6_route_dev_notifier);
Thomas Grafd1896342012-06-18 12:08:33 +00005328 unregister_pernet_subsys(&ip6_route_net_late_ops);
Thomas Graf101367c2006-08-04 03:39:02 -07005329 fib6_rules_cleanup();
Linus Torvalds1da177e2005-04-16 15:20:36 -07005330 xfrm6_fini();
Linus Torvalds1da177e2005-04-16 15:20:36 -07005331 fib6_gc_cleanup();
David S. Millerc3426b42012-06-09 16:27:05 -07005332 unregister_pernet_subsys(&ipv6_inetpeer_ops);
Daniel Lezcano8ed67782008-03-04 13:48:30 -08005333 unregister_pernet_subsys(&ip6_route_net_ops);
Xiaotian Feng41bb78b2010-11-02 16:11:05 +00005334 dst_entries_destroy(&ip6_dst_blackhole_ops);
Benjamin Theryf2fc6a52008-03-04 13:49:23 -08005335 kmem_cache_destroy(ip6_dst_ops_template.kmem_cachep);
Linus Torvalds1da177e2005-04-16 15:20:36 -07005336}