blob: 432c4bcc1111085671f32987e4673e47898085a3 [file] [log] [blame]
Linus Torvalds1da177e2005-04-16 15:20:36 -07001/*
2 * Linux INET6 implementation
3 * FIB front-end.
4 *
5 * Authors:
YOSHIFUJI Hideaki1ab14572007-02-09 23:24:49 +09006 * Pedro Roque <roque@di.fc.ul.pt>
Linus Torvalds1da177e2005-04-16 15:20:36 -07007 *
Linus Torvalds1da177e2005-04-16 15:20:36 -07008 * This program is free software; you can redistribute it and/or
9 * modify it under the terms of the GNU General Public License
10 * as published by the Free Software Foundation; either version
11 * 2 of the License, or (at your option) any later version.
12 */
13
14/* Changes:
15 *
16 * YOSHIFUJI Hideaki @USAGI
17 * reworked default router selection.
18 * - respect outgoing interface
19 * - select from (probably) reachable routers (i.e.
20 * routers in REACHABLE, STALE, DELAY or PROBE states).
21 * - always select the same router if it is (probably)
22 * reachable. otherwise, round-robin the list.
YOSHIFUJI Hideakic0bece92006-08-23 17:23:25 -070023 * Ville Nuorvala
24 * Fixed routing subtrees.
Linus Torvalds1da177e2005-04-16 15:20:36 -070025 */
26
Joe Perchesf3213832012-05-15 14:11:53 +000027#define pr_fmt(fmt) "IPv6: " fmt
28
Randy Dunlap4fc268d2006-01-11 12:17:47 -080029#include <linux/capability.h>
Linus Torvalds1da177e2005-04-16 15:20:36 -070030#include <linux/errno.h>
Paul Gortmakerbc3b2d72011-07-15 11:47:34 -040031#include <linux/export.h>
Linus Torvalds1da177e2005-04-16 15:20:36 -070032#include <linux/types.h>
33#include <linux/times.h>
34#include <linux/socket.h>
35#include <linux/sockios.h>
36#include <linux/net.h>
37#include <linux/route.h>
38#include <linux/netdevice.h>
39#include <linux/in6.h>
YOSHIFUJI Hideaki7bc570c2008-04-03 09:22:53 +090040#include <linux/mroute6.h>
Linus Torvalds1da177e2005-04-16 15:20:36 -070041#include <linux/init.h>
Linus Torvalds1da177e2005-04-16 15:20:36 -070042#include <linux/if_arp.h>
Linus Torvalds1da177e2005-04-16 15:20:36 -070043#include <linux/proc_fs.h>
44#include <linux/seq_file.h>
Daniel Lezcano5b7c9312008-03-03 23:28:58 -080045#include <linux/nsproxy.h>
Tejun Heo5a0e3ad2010-03-24 17:04:11 +090046#include <linux/slab.h>
Wei Wang35732d02017-10-06 12:05:57 -070047#include <linux/jhash.h>
Eric W. Biederman457c4cb2007-09-12 12:01:34 +020048#include <net/net_namespace.h>
Linus Torvalds1da177e2005-04-16 15:20:36 -070049#include <net/snmp.h>
50#include <net/ipv6.h>
51#include <net/ip6_fib.h>
52#include <net/ip6_route.h>
53#include <net/ndisc.h>
54#include <net/addrconf.h>
55#include <net/tcp.h>
56#include <linux/rtnetlink.h>
57#include <net/dst.h>
Jiri Benc904af042015-08-20 13:56:31 +020058#include <net/dst_metadata.h>
Linus Torvalds1da177e2005-04-16 15:20:36 -070059#include <net/xfrm.h>
Tom Tucker8d717402006-07-30 20:43:36 -070060#include <net/netevent.h>
Thomas Graf21713eb2006-08-15 00:35:24 -070061#include <net/netlink.h>
Nicolas Dichtel51ebd312012-10-22 03:42:09 +000062#include <net/nexthop.h>
Roopa Prabhu19e42e42015-07-21 10:43:48 +020063#include <net/lwtunnel.h>
Jiri Benc904af042015-08-20 13:56:31 +020064#include <net/ip_tunnels.h>
David Ahernca254492015-10-12 11:47:10 -070065#include <net/l3mdev.h>
David Ahernb8115802015-11-19 12:24:22 -080066#include <trace/events/fib6.h>
Linus Torvalds1da177e2005-04-16 15:20:36 -070067
Linus Torvalds7c0f6ba2016-12-24 11:46:01 -080068#include <linux/uaccess.h>
Linus Torvalds1da177e2005-04-16 15:20:36 -070069
70#ifdef CONFIG_SYSCTL
71#include <linux/sysctl.h>
72#endif
73
Hannes Frederic Sowaafc154e2013-07-11 12:43:42 +020074enum rt6_nud_state {
Jiri Benc7e980562013-12-11 13:48:20 +010075 RT6_NUD_FAIL_HARD = -3,
76 RT6_NUD_FAIL_PROBE = -2,
77 RT6_NUD_FAIL_DO_RR = -1,
Hannes Frederic Sowaafc154e2013-07-11 12:43:42 +020078 RT6_NUD_SUCCEED = 1
79};
80
Linus Torvalds1da177e2005-04-16 15:20:36 -070081static struct dst_entry *ip6_dst_check(struct dst_entry *dst, u32 cookie);
David S. Miller0dbaee32010-12-13 12:52:14 -080082static unsigned int ip6_default_advmss(const struct dst_entry *dst);
Steffen Klassertebb762f2011-11-23 02:12:51 +000083static unsigned int ip6_mtu(const struct dst_entry *dst);
Linus Torvalds1da177e2005-04-16 15:20:36 -070084static struct dst_entry *ip6_negative_advice(struct dst_entry *);
85static void ip6_dst_destroy(struct dst_entry *);
86static void ip6_dst_ifdown(struct dst_entry *,
87 struct net_device *dev, int how);
Daniel Lezcano569d3642008-01-18 03:56:57 -080088static int ip6_dst_gc(struct dst_ops *ops);
Linus Torvalds1da177e2005-04-16 15:20:36 -070089
90static int ip6_pkt_discard(struct sk_buff *skb);
Eric W. Biedermanede20592015-10-07 16:48:47 -050091static int ip6_pkt_discard_out(struct net *net, struct sock *sk, struct sk_buff *skb);
Kamala R7150aed2013-12-02 19:55:21 +053092static int ip6_pkt_prohibit(struct sk_buff *skb);
Eric W. Biedermanede20592015-10-07 16:48:47 -050093static int ip6_pkt_prohibit_out(struct net *net, struct sock *sk, struct sk_buff *skb);
Linus Torvalds1da177e2005-04-16 15:20:36 -070094static void ip6_link_failure(struct sk_buff *skb);
David S. Miller6700c272012-07-17 03:29:28 -070095static void ip6_rt_update_pmtu(struct dst_entry *dst, struct sock *sk,
96 struct sk_buff *skb, u32 mtu);
97static void rt6_do_redirect(struct dst_entry *dst, struct sock *sk,
98 struct sk_buff *skb);
David Ahern8d1c8022018-04-17 17:33:26 -070099static int rt6_score_route(struct fib6_info *rt, int oif, int strict);
100static size_t rt6_nlmsg_size(struct fib6_info *rt);
David Ahernd4ead6b2018-04-17 17:33:16 -0700101static int rt6_fill_node(struct net *net, struct sk_buff *skb,
David Ahern8d1c8022018-04-17 17:33:26 -0700102 struct fib6_info *rt, struct dst_entry *dst,
David Ahernd4ead6b2018-04-17 17:33:16 -0700103 struct in6_addr *dest, struct in6_addr *src,
David Ahern16a16cd2017-02-02 12:37:11 -0800104 int iif, int type, u32 portid, u32 seq,
105 unsigned int flags);
David Ahern8d1c8022018-04-17 17:33:26 -0700106static struct rt6_info *rt6_find_cached_rt(struct fib6_info *rt,
Wei Wang35732d02017-10-06 12:05:57 -0700107 struct in6_addr *daddr,
108 struct in6_addr *saddr);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700109
YOSHIFUJI Hideaki70ceb4f2006-03-20 17:06:24 -0800110#ifdef CONFIG_IPV6_ROUTE_INFO
David Ahern8d1c8022018-04-17 17:33:26 -0700111static struct fib6_info *rt6_add_route_info(struct net *net,
Eric Dumazetb71d1d42011-04-22 04:53:02 +0000112 const struct in6_addr *prefix, int prefixlen,
David Ahern830218c2016-10-24 10:52:35 -0700113 const struct in6_addr *gwaddr,
114 struct net_device *dev,
Eric Dumazet95c96172012-04-15 05:58:06 +0000115 unsigned int pref);
David Ahern8d1c8022018-04-17 17:33:26 -0700116static struct fib6_info *rt6_get_route_info(struct net *net,
Eric Dumazetb71d1d42011-04-22 04:53:02 +0000117 const struct in6_addr *prefix, int prefixlen,
David Ahern830218c2016-10-24 10:52:35 -0700118 const struct in6_addr *gwaddr,
119 struct net_device *dev);
YOSHIFUJI Hideaki70ceb4f2006-03-20 17:06:24 -0800120#endif
121
Martin KaFai Lau8d0b94a2015-05-22 20:56:04 -0700122struct uncached_list {
123 spinlock_t lock;
124 struct list_head head;
125};
126
127static DEFINE_PER_CPU_ALIGNED(struct uncached_list, rt6_uncached_list);
128
Xin Long510c3212018-02-14 19:06:02 +0800129void rt6_uncached_list_add(struct rt6_info *rt)
Martin KaFai Lau8d0b94a2015-05-22 20:56:04 -0700130{
131 struct uncached_list *ul = raw_cpu_ptr(&rt6_uncached_list);
132
Martin KaFai Lau8d0b94a2015-05-22 20:56:04 -0700133 rt->rt6i_uncached_list = ul;
134
135 spin_lock_bh(&ul->lock);
136 list_add_tail(&rt->rt6i_uncached, &ul->head);
137 spin_unlock_bh(&ul->lock);
138}
139
Xin Long510c3212018-02-14 19:06:02 +0800140void rt6_uncached_list_del(struct rt6_info *rt)
Martin KaFai Lau8d0b94a2015-05-22 20:56:04 -0700141{
142 if (!list_empty(&rt->rt6i_uncached)) {
143 struct uncached_list *ul = rt->rt6i_uncached_list;
Wei Wang81eb8442017-10-06 12:06:11 -0700144 struct net *net = dev_net(rt->dst.dev);
Martin KaFai Lau8d0b94a2015-05-22 20:56:04 -0700145
146 spin_lock_bh(&ul->lock);
147 list_del(&rt->rt6i_uncached);
Wei Wang81eb8442017-10-06 12:06:11 -0700148 atomic_dec(&net->ipv6.rt6_stats->fib_rt_uncache);
Martin KaFai Lau8d0b94a2015-05-22 20:56:04 -0700149 spin_unlock_bh(&ul->lock);
150 }
151}
152
153static void rt6_uncached_list_flush_dev(struct net *net, struct net_device *dev)
154{
155 struct net_device *loopback_dev = net->loopback_dev;
156 int cpu;
157
Eric W. Biedermane332bc62015-10-12 11:02:08 -0500158 if (dev == loopback_dev)
159 return;
160
Martin KaFai Lau8d0b94a2015-05-22 20:56:04 -0700161 for_each_possible_cpu(cpu) {
162 struct uncached_list *ul = per_cpu_ptr(&rt6_uncached_list, cpu);
163 struct rt6_info *rt;
164
165 spin_lock_bh(&ul->lock);
166 list_for_each_entry(rt, &ul->head, rt6i_uncached) {
167 struct inet6_dev *rt_idev = rt->rt6i_idev;
168 struct net_device *rt_dev = rt->dst.dev;
169
Eric W. Biedermane332bc62015-10-12 11:02:08 -0500170 if (rt_idev->dev == dev) {
Martin KaFai Lau8d0b94a2015-05-22 20:56:04 -0700171 rt->rt6i_idev = in6_dev_get(loopback_dev);
172 in6_dev_put(rt_idev);
173 }
174
Eric W. Biedermane332bc62015-10-12 11:02:08 -0500175 if (rt_dev == dev) {
Martin KaFai Lau8d0b94a2015-05-22 20:56:04 -0700176 rt->dst.dev = loopback_dev;
177 dev_hold(rt->dst.dev);
178 dev_put(rt_dev);
179 }
180 }
181 spin_unlock_bh(&ul->lock);
182 }
183}
184
David Ahernf8a1b432018-04-17 17:33:21 -0700185static inline const void *choose_neigh_daddr(const struct in6_addr *p,
David S. Millerf894cbf2012-07-02 21:52:24 -0700186 struct sk_buff *skb,
187 const void *daddr)
David S. Miller39232972012-01-26 15:22:32 -0500188{
David S. Millera7563f32012-01-26 16:29:16 -0500189 if (!ipv6_addr_any(p))
David S. Miller39232972012-01-26 15:22:32 -0500190 return (const void *) p;
David S. Millerf894cbf2012-07-02 21:52:24 -0700191 else if (skb)
192 return &ipv6_hdr(skb)->daddr;
David S. Miller39232972012-01-26 15:22:32 -0500193 return daddr;
194}
195
David Ahernf8a1b432018-04-17 17:33:21 -0700196struct neighbour *ip6_neigh_lookup(const struct in6_addr *gw,
197 struct net_device *dev,
198 struct sk_buff *skb,
199 const void *daddr)
David S. Millerd3aaeb32011-07-18 00:40:17 -0700200{
David S. Miller39232972012-01-26 15:22:32 -0500201 struct neighbour *n;
202
David Ahernf8a1b432018-04-17 17:33:21 -0700203 daddr = choose_neigh_daddr(gw, skb, daddr);
204 n = __ipv6_neigh_lookup(dev, daddr);
David S. Millerf83c7792011-12-28 15:41:23 -0500205 if (n)
206 return n;
David Ahernf8a1b432018-04-17 17:33:21 -0700207 return neigh_create(&nd_tbl, daddr, dev);
208}
209
210static struct neighbour *ip6_dst_neigh_lookup(const struct dst_entry *dst,
211 struct sk_buff *skb,
212 const void *daddr)
213{
214 const struct rt6_info *rt = container_of(dst, struct rt6_info, dst);
215
216 return ip6_neigh_lookup(&rt->rt6i_gateway, dst->dev, skb, daddr);
David S. Millerf83c7792011-12-28 15:41:23 -0500217}
218
Julian Anastasov63fca652017-02-06 23:14:15 +0200219static void ip6_confirm_neigh(const struct dst_entry *dst, const void *daddr)
220{
221 struct net_device *dev = dst->dev;
222 struct rt6_info *rt = (struct rt6_info *)dst;
223
David Ahernf8a1b432018-04-17 17:33:21 -0700224 daddr = choose_neigh_daddr(&rt->rt6i_gateway, NULL, daddr);
Julian Anastasov63fca652017-02-06 23:14:15 +0200225 if (!daddr)
226 return;
227 if (dev->flags & (IFF_NOARP | IFF_LOOPBACK))
228 return;
229 if (ipv6_addr_is_multicast((const struct in6_addr *)daddr))
230 return;
231 __ipv6_confirm_neigh(dev, daddr);
232}
233
Daniel Lezcano9a7ec3a2008-03-04 13:48:53 -0800234static struct dst_ops ip6_dst_ops_template = {
Linus Torvalds1da177e2005-04-16 15:20:36 -0700235 .family = AF_INET6,
Linus Torvalds1da177e2005-04-16 15:20:36 -0700236 .gc = ip6_dst_gc,
237 .gc_thresh = 1024,
238 .check = ip6_dst_check,
David S. Miller0dbaee32010-12-13 12:52:14 -0800239 .default_advmss = ip6_default_advmss,
Steffen Klassertebb762f2011-11-23 02:12:51 +0000240 .mtu = ip6_mtu,
David Ahernd4ead6b2018-04-17 17:33:16 -0700241 .cow_metrics = dst_cow_metrics_generic,
Linus Torvalds1da177e2005-04-16 15:20:36 -0700242 .destroy = ip6_dst_destroy,
243 .ifdown = ip6_dst_ifdown,
244 .negative_advice = ip6_negative_advice,
245 .link_failure = ip6_link_failure,
246 .update_pmtu = ip6_rt_update_pmtu,
David S. Miller6e157b62012-07-12 00:05:02 -0700247 .redirect = rt6_do_redirect,
Eric W. Biederman9f8955c2015-10-07 16:48:39 -0500248 .local_out = __ip6_local_out,
David Ahernf8a1b432018-04-17 17:33:21 -0700249 .neigh_lookup = ip6_dst_neigh_lookup,
Julian Anastasov63fca652017-02-06 23:14:15 +0200250 .confirm_neigh = ip6_confirm_neigh,
Linus Torvalds1da177e2005-04-16 15:20:36 -0700251};
252
Steffen Klassertebb762f2011-11-23 02:12:51 +0000253static unsigned int ip6_blackhole_mtu(const struct dst_entry *dst)
Roland Dreierec831ea2011-01-31 13:16:00 -0800254{
Steffen Klassert618f9bc2011-11-23 02:13:31 +0000255 unsigned int mtu = dst_metric_raw(dst, RTAX_MTU);
256
257 return mtu ? : dst->dev->mtu;
Roland Dreierec831ea2011-01-31 13:16:00 -0800258}
259
David S. Miller6700c272012-07-17 03:29:28 -0700260static void ip6_rt_blackhole_update_pmtu(struct dst_entry *dst, struct sock *sk,
261 struct sk_buff *skb, u32 mtu)
David S. Miller14e50e52007-05-24 18:17:54 -0700262{
263}
264
David S. Miller6700c272012-07-17 03:29:28 -0700265static void ip6_rt_blackhole_redirect(struct dst_entry *dst, struct sock *sk,
266 struct sk_buff *skb)
David S. Millerb587ee32012-07-12 00:39:24 -0700267{
268}
269
David S. Miller14e50e52007-05-24 18:17:54 -0700270static struct dst_ops ip6_dst_blackhole_ops = {
271 .family = AF_INET6,
David S. Miller14e50e52007-05-24 18:17:54 -0700272 .destroy = ip6_dst_destroy,
273 .check = ip6_dst_check,
Steffen Klassertebb762f2011-11-23 02:12:51 +0000274 .mtu = ip6_blackhole_mtu,
Eric Dumazet214f45c2011-02-18 11:39:01 -0800275 .default_advmss = ip6_default_advmss,
David S. Miller14e50e52007-05-24 18:17:54 -0700276 .update_pmtu = ip6_rt_blackhole_update_pmtu,
David S. Millerb587ee32012-07-12 00:39:24 -0700277 .redirect = ip6_rt_blackhole_redirect,
Martin KaFai Lau0a1f5962015-10-15 16:39:58 -0700278 .cow_metrics = dst_cow_metrics_generic,
David Ahernf8a1b432018-04-17 17:33:21 -0700279 .neigh_lookup = ip6_dst_neigh_lookup,
David S. Miller14e50e52007-05-24 18:17:54 -0700280};
281
David S. Miller62fa8a82011-01-26 20:51:05 -0800282static const u32 ip6_template_metrics[RTAX_MAX] = {
Li RongQing14edd872012-10-24 14:01:18 +0800283 [RTAX_HOPLIMIT - 1] = 0,
David S. Miller62fa8a82011-01-26 20:51:05 -0800284};
285
David Ahern8d1c8022018-04-17 17:33:26 -0700286static const struct fib6_info fib6_null_entry_template = {
David Ahern93c2fb22018-04-18 15:38:59 -0700287 .fib6_flags = (RTF_REJECT | RTF_NONEXTHOP),
288 .fib6_protocol = RTPROT_KERNEL,
289 .fib6_metric = ~(u32)0,
290 .fib6_ref = ATOMIC_INIT(1),
David Ahern421842e2018-04-17 17:33:18 -0700291 .fib6_type = RTN_UNREACHABLE,
292 .fib6_metrics = (struct dst_metrics *)&dst_default_metrics,
293};
294
Eric Dumazetfb0af4c2012-09-11 21:47:51 +0000295static const struct rt6_info ip6_null_entry_template = {
Changli Gaod8d1f302010-06-10 23:31:35 -0700296 .dst = {
297 .__refcnt = ATOMIC_INIT(1),
298 .__use = 1,
Nicolas Dichtel2c20cbd2012-09-10 22:09:47 +0000299 .obsolete = DST_OBSOLETE_FORCE_CHK,
Changli Gaod8d1f302010-06-10 23:31:35 -0700300 .error = -ENETUNREACH,
Changli Gaod8d1f302010-06-10 23:31:35 -0700301 .input = ip6_pkt_discard,
302 .output = ip6_pkt_discard_out,
Linus Torvalds1da177e2005-04-16 15:20:36 -0700303 },
304 .rt6i_flags = (RTF_REJECT | RTF_NONEXTHOP),
Linus Torvalds1da177e2005-04-16 15:20:36 -0700305};
306
Thomas Graf101367c2006-08-04 03:39:02 -0700307#ifdef CONFIG_IPV6_MULTIPLE_TABLES
308
Eric Dumazetfb0af4c2012-09-11 21:47:51 +0000309static const struct rt6_info ip6_prohibit_entry_template = {
Changli Gaod8d1f302010-06-10 23:31:35 -0700310 .dst = {
311 .__refcnt = ATOMIC_INIT(1),
312 .__use = 1,
Nicolas Dichtel2c20cbd2012-09-10 22:09:47 +0000313 .obsolete = DST_OBSOLETE_FORCE_CHK,
Changli Gaod8d1f302010-06-10 23:31:35 -0700314 .error = -EACCES,
Changli Gaod8d1f302010-06-10 23:31:35 -0700315 .input = ip6_pkt_prohibit,
316 .output = ip6_pkt_prohibit_out,
Thomas Graf101367c2006-08-04 03:39:02 -0700317 },
318 .rt6i_flags = (RTF_REJECT | RTF_NONEXTHOP),
Thomas Graf101367c2006-08-04 03:39:02 -0700319};
320
Eric Dumazetfb0af4c2012-09-11 21:47:51 +0000321static const struct rt6_info ip6_blk_hole_entry_template = {
Changli Gaod8d1f302010-06-10 23:31:35 -0700322 .dst = {
323 .__refcnt = ATOMIC_INIT(1),
324 .__use = 1,
Nicolas Dichtel2c20cbd2012-09-10 22:09:47 +0000325 .obsolete = DST_OBSOLETE_FORCE_CHK,
Changli Gaod8d1f302010-06-10 23:31:35 -0700326 .error = -EINVAL,
Changli Gaod8d1f302010-06-10 23:31:35 -0700327 .input = dst_discard,
Eric W. Biedermanede20592015-10-07 16:48:47 -0500328 .output = dst_discard_out,
Thomas Graf101367c2006-08-04 03:39:02 -0700329 },
330 .rt6i_flags = (RTF_REJECT | RTF_NONEXTHOP),
Thomas Graf101367c2006-08-04 03:39:02 -0700331};
332
333#endif
334
Martin KaFai Lauebfa45f2015-10-15 16:39:57 -0700335static void rt6_info_init(struct rt6_info *rt)
336{
337 struct dst_entry *dst = &rt->dst;
338
339 memset(dst + 1, 0, sizeof(*rt) - sizeof(*dst));
Martin KaFai Lauebfa45f2015-10-15 16:39:57 -0700340 INIT_LIST_HEAD(&rt->rt6i_uncached);
341}
342
Linus Torvalds1da177e2005-04-16 15:20:36 -0700343/* allocate dst with ip6_dst_ops */
David Ahern93531c62018-04-17 17:33:25 -0700344struct rt6_info *ip6_dst_alloc(struct net *net, struct net_device *dev,
345 int flags)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700346{
David S. Miller97bab732012-06-09 22:36:36 -0700347 struct rt6_info *rt = dst_alloc(&net->ipv6.ip6_dst_ops, dev,
Wei Wangb2a9c0e2017-06-17 10:42:41 -0700348 1, DST_OBSOLETE_FORCE_CHK, flags);
David S. Millercf911662011-04-28 14:31:47 -0700349
Wei Wang81eb8442017-10-06 12:06:11 -0700350 if (rt) {
Martin KaFai Lauebfa45f2015-10-15 16:39:57 -0700351 rt6_info_init(rt);
Wei Wang81eb8442017-10-06 12:06:11 -0700352 atomic_inc(&net->ipv6.rt6_stats->fib_rt_alloc);
353 }
Steffen Klassert81048912012-07-05 23:37:09 +0000354
David S. Millercf911662011-04-28 14:31:47 -0700355 return rt;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700356}
David Ahern9ab179d2016-04-07 11:10:06 -0700357EXPORT_SYMBOL(ip6_dst_alloc);
Martin KaFai Laud52d3992015-05-22 20:56:06 -0700358
Linus Torvalds1da177e2005-04-16 15:20:36 -0700359static void ip6_dst_destroy(struct dst_entry *dst)
360{
361 struct rt6_info *rt = (struct rt6_info *)dst;
David Aherna68886a2018-04-20 15:38:02 -0700362 struct fib6_info *from;
Martin KaFai Lau8d0b94a2015-05-22 20:56:04 -0700363 struct inet6_dev *idev;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700364
Martin KaFai Lau4b32b5a2015-04-28 13:03:06 -0700365 dst_destroy_metrics_generic(dst);
Martin KaFai Lau8d0b94a2015-05-22 20:56:04 -0700366 rt6_uncached_list_del(rt);
367
368 idev = rt->rt6i_idev;
David S. Miller38308472011-12-03 18:02:47 -0500369 if (idev) {
Linus Torvalds1da177e2005-04-16 15:20:36 -0700370 rt->rt6i_idev = NULL;
371 in6_dev_put(idev);
YOSHIFUJI Hideaki1ab14572007-02-09 23:24:49 +0900372 }
David Ahernd4ead6b2018-04-17 17:33:16 -0700373
David Aherna68886a2018-04-20 15:38:02 -0700374 rcu_read_lock();
375 from = rcu_dereference(rt->from);
376 rcu_assign_pointer(rt->from, NULL);
David Ahern93531c62018-04-17 17:33:25 -0700377 fib6_info_release(from);
David Aherna68886a2018-04-20 15:38:02 -0700378 rcu_read_unlock();
David S. Millerb3419362010-11-30 12:27:11 -0800379}
380
Linus Torvalds1da177e2005-04-16 15:20:36 -0700381static void ip6_dst_ifdown(struct dst_entry *dst, struct net_device *dev,
382 int how)
383{
384 struct rt6_info *rt = (struct rt6_info *)dst;
385 struct inet6_dev *idev = rt->rt6i_idev;
Denis V. Lunev5a3e55d2007-12-07 00:38:10 -0800386 struct net_device *loopback_dev =
YOSHIFUJI Hideakic346dca2008-03-25 21:47:49 +0900387 dev_net(dev)->loopback_dev;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700388
Wei Wange5645f52017-08-14 10:44:59 -0700389 if (idev && idev->dev != loopback_dev) {
390 struct inet6_dev *loopback_idev = in6_dev_get(loopback_dev);
391 if (loopback_idev) {
392 rt->rt6i_idev = loopback_idev;
393 in6_dev_put(idev);
David S. Miller97cac082012-07-02 22:43:47 -0700394 }
Linus Torvalds1da177e2005-04-16 15:20:36 -0700395 }
396}
397
Martin KaFai Lau5973fb12015-11-11 11:51:07 -0800398static bool __rt6_check_expired(const struct rt6_info *rt)
399{
400 if (rt->rt6i_flags & RTF_EXPIRES)
401 return time_after(jiffies, rt->dst.expires);
402 else
403 return false;
404}
405
Eric Dumazeta50feda2012-05-18 18:57:34 +0000406static bool rt6_check_expired(const struct rt6_info *rt)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700407{
David Aherna68886a2018-04-20 15:38:02 -0700408 struct fib6_info *from;
409
410 from = rcu_dereference(rt->from);
411
Gao feng1716a962012-04-06 00:13:10 +0000412 if (rt->rt6i_flags & RTF_EXPIRES) {
413 if (time_after(jiffies, rt->dst.expires))
Eric Dumazeta50feda2012-05-18 18:57:34 +0000414 return true;
David Aherna68886a2018-04-20 15:38:02 -0700415 } else if (from) {
Xin Long1e2ea8a2017-08-26 20:10:10 +0800416 return rt->dst.obsolete != DST_OBSOLETE_FORCE_CHK ||
David Aherna68886a2018-04-20 15:38:02 -0700417 fib6_check_expired(from);
Gao feng1716a962012-04-06 00:13:10 +0000418 }
Eric Dumazeta50feda2012-05-18 18:57:34 +0000419 return false;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700420}
421
David Ahern8d1c8022018-04-17 17:33:26 -0700422static struct fib6_info *rt6_multipath_select(const struct net *net,
423 struct fib6_info *match,
Nicolas Dichtel52bd4c02013-06-28 17:35:48 +0200424 struct flowi6 *fl6, int oif,
David Ahernb75cc8f2018-03-02 08:32:17 -0800425 const struct sk_buff *skb,
Nicolas Dichtel52bd4c02013-06-28 17:35:48 +0200426 int strict)
Nicolas Dichtel51ebd312012-10-22 03:42:09 +0000427{
David Ahern8d1c8022018-04-17 17:33:26 -0700428 struct fib6_info *sibling, *next_sibling;
Nicolas Dichtel51ebd312012-10-22 03:42:09 +0000429
Jakub Sitnickib673d6c2017-08-23 09:58:31 +0200430 /* We might have already computed the hash for ICMPv6 errors. In such
431 * case it will always be non-zero. Otherwise now is the time to do it.
432 */
433 if (!fl6->mp_hash)
David Ahernb4bac172018-03-02 08:32:18 -0800434 fl6->mp_hash = rt6_multipath_hash(net, fl6, skb, NULL);
Jakub Sitnickib673d6c2017-08-23 09:58:31 +0200435
David Ahern5e670d82018-04-17 17:33:14 -0700436 if (fl6->mp_hash <= atomic_read(&match->fib6_nh.nh_upper_bound))
Ido Schimmel3d709f62018-01-09 16:40:27 +0200437 return match;
Ido Schimmelbbfcd772017-11-21 09:50:12 +0200438
David Ahern93c2fb22018-04-18 15:38:59 -0700439 list_for_each_entry_safe(sibling, next_sibling, &match->fib6_siblings,
440 fib6_siblings) {
David Ahern5e670d82018-04-17 17:33:14 -0700441 int nh_upper_bound;
442
443 nh_upper_bound = atomic_read(&sibling->fib6_nh.nh_upper_bound);
444 if (fl6->mp_hash > nh_upper_bound)
Ido Schimmel3d709f62018-01-09 16:40:27 +0200445 continue;
446 if (rt6_score_route(sibling, oif, strict) < 0)
447 break;
448 match = sibling;
449 break;
450 }
451
Nicolas Dichtel51ebd312012-10-22 03:42:09 +0000452 return match;
453}
454
Linus Torvalds1da177e2005-04-16 15:20:36 -0700455/*
Wei Wang66f5d6c2017-10-06 12:06:10 -0700456 * Route lookup. rcu_read_lock() should be held.
Linus Torvalds1da177e2005-04-16 15:20:36 -0700457 */
458
David Ahern8d1c8022018-04-17 17:33:26 -0700459static inline struct fib6_info *rt6_device_match(struct net *net,
460 struct fib6_info *rt,
Eric Dumazetb71d1d42011-04-22 04:53:02 +0000461 const struct in6_addr *saddr,
Linus Torvalds1da177e2005-04-16 15:20:36 -0700462 int oif,
YOSHIFUJI Hideakid4208952008-06-27 20:14:54 -0700463 int flags)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700464{
David Ahern8d1c8022018-04-17 17:33:26 -0700465 struct fib6_info *sprt;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700466
David Ahern5e670d82018-04-17 17:33:14 -0700467 if (!oif && ipv6_addr_any(saddr) &&
468 !(rt->fib6_nh.nh_flags & RTNH_F_DEAD))
Ido Schimmel8067bb82018-01-07 12:45:09 +0200469 return rt;
YOSHIFUJI Hideakidd3abc42008-07-02 18:30:18 +0900470
David Miller071fb372017-11-28 15:40:15 -0500471 for (sprt = rt; sprt; sprt = rcu_dereference(sprt->rt6_next)) {
David Ahern5e670d82018-04-17 17:33:14 -0700472 const struct net_device *dev = sprt->fib6_nh.nh_dev;
YOSHIFUJI Hideakidd3abc42008-07-02 18:30:18 +0900473
David Ahern5e670d82018-04-17 17:33:14 -0700474 if (sprt->fib6_nh.nh_flags & RTNH_F_DEAD)
Ido Schimmel8067bb82018-01-07 12:45:09 +0200475 continue;
476
YOSHIFUJI Hideakidd3abc42008-07-02 18:30:18 +0900477 if (oif) {
Linus Torvalds1da177e2005-04-16 15:20:36 -0700478 if (dev->ifindex == oif)
479 return sprt;
YOSHIFUJI Hideakidd3abc42008-07-02 18:30:18 +0900480 } else {
481 if (ipv6_chk_addr(net, saddr, dev,
482 flags & RT6_LOOKUP_F_IFACE))
483 return sprt;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700484 }
YOSHIFUJI Hideakidd3abc42008-07-02 18:30:18 +0900485 }
Linus Torvalds1da177e2005-04-16 15:20:36 -0700486
David Aherneea68cd2018-04-18 15:39:02 -0700487 if (oif && flags & RT6_LOOKUP_F_IFACE)
488 return net->ipv6.fib6_null_entry;
Ido Schimmel8067bb82018-01-07 12:45:09 +0200489
David Ahern421842e2018-04-17 17:33:18 -0700490 return rt->fib6_nh.nh_flags & RTNH_F_DEAD ? net->ipv6.fib6_null_entry : rt;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700491}
492
YOSHIFUJI Hideaki27097252006-03-20 17:05:13 -0800493#ifdef CONFIG_IPV6_ROUTER_PREF
Hannes Frederic Sowac2f17e82013-10-21 06:17:15 +0200494struct __rt6_probe_work {
495 struct work_struct work;
496 struct in6_addr target;
497 struct net_device *dev;
498};
499
500static void rt6_probe_deferred(struct work_struct *w)
501{
502 struct in6_addr mcaddr;
503 struct __rt6_probe_work *work =
504 container_of(w, struct __rt6_probe_work, work);
505
506 addrconf_addr_solict_mult(&work->target, &mcaddr);
Erik Nordmarkadc176c2016-12-02 14:00:08 -0800507 ndisc_send_ns(work->dev, &work->target, &mcaddr, NULL, 0);
Hannes Frederic Sowac2f17e82013-10-21 06:17:15 +0200508 dev_put(work->dev);
Michael Büsch662f5532015-02-08 10:14:07 +0100509 kfree(work);
Hannes Frederic Sowac2f17e82013-10-21 06:17:15 +0200510}
511
David Ahern8d1c8022018-04-17 17:33:26 -0700512static void rt6_probe(struct fib6_info *rt)
YOSHIFUJI Hideaki27097252006-03-20 17:05:13 -0800513{
Martin KaFai Lau990edb42015-07-24 09:57:42 -0700514 struct __rt6_probe_work *work;
David Ahern5e670d82018-04-17 17:33:14 -0700515 const struct in6_addr *nh_gw;
Eric Dumazetf2c31e32011-07-29 19:00:53 +0000516 struct neighbour *neigh;
David Ahern5e670d82018-04-17 17:33:14 -0700517 struct net_device *dev;
518
YOSHIFUJI Hideaki27097252006-03-20 17:05:13 -0800519 /*
520 * Okay, this does not seem to be appropriate
521 * for now, however, we need to check if it
522 * is really so; aka Router Reachability Probing.
523 *
524 * Router Reachability Probe MUST be rate-limited
525 * to no more than one per minute.
526 */
David Ahern93c2fb22018-04-18 15:38:59 -0700527 if (!rt || !(rt->fib6_flags & RTF_GATEWAY))
Amerigo Wangfdd66812012-09-10 02:48:44 +0000528 return;
David Ahern5e670d82018-04-17 17:33:14 -0700529
530 nh_gw = &rt->fib6_nh.nh_gw;
531 dev = rt->fib6_nh.nh_dev;
YOSHIFUJI Hideaki / 吉藤英明2152cae2013-01-17 12:53:43 +0000532 rcu_read_lock_bh();
David Ahern5e670d82018-04-17 17:33:14 -0700533 neigh = __ipv6_neigh_lookup_noref(dev, nh_gw);
YOSHIFUJI Hideaki / 吉藤英明2152cae2013-01-17 12:53:43 +0000534 if (neigh) {
David Aherndcd1f572018-04-18 15:39:05 -0700535 struct inet6_dev *idev;
536
Martin KaFai Lau8d6c31b2015-07-24 09:57:43 -0700537 if (neigh->nud_state & NUD_VALID)
538 goto out;
539
David Aherndcd1f572018-04-18 15:39:05 -0700540 idev = __in6_dev_get(dev);
Martin KaFai Lau990edb42015-07-24 09:57:42 -0700541 work = NULL;
YOSHIFUJI Hideaki / 吉藤英明2152cae2013-01-17 12:53:43 +0000542 write_lock(&neigh->lock);
Martin KaFai Lau990edb42015-07-24 09:57:42 -0700543 if (!(neigh->nud_state & NUD_VALID) &&
544 time_after(jiffies,
David Aherndcd1f572018-04-18 15:39:05 -0700545 neigh->updated + idev->cnf.rtr_probe_interval)) {
Martin KaFai Lau990edb42015-07-24 09:57:42 -0700546 work = kmalloc(sizeof(*work), GFP_ATOMIC);
547 if (work)
548 __neigh_set_probe_once(neigh);
Hannes Frederic Sowac2f17e82013-10-21 06:17:15 +0200549 }
YOSHIFUJI Hideaki / 吉藤英明2152cae2013-01-17 12:53:43 +0000550 write_unlock(&neigh->lock);
Martin KaFai Lau990edb42015-07-24 09:57:42 -0700551 } else {
552 work = kmalloc(sizeof(*work), GFP_ATOMIC);
Eric Dumazetf2c31e32011-07-29 19:00:53 +0000553 }
Martin KaFai Lau990edb42015-07-24 09:57:42 -0700554
555 if (work) {
556 INIT_WORK(&work->work, rt6_probe_deferred);
David Ahern5e670d82018-04-17 17:33:14 -0700557 work->target = *nh_gw;
558 dev_hold(dev);
559 work->dev = dev;
Martin KaFai Lau990edb42015-07-24 09:57:42 -0700560 schedule_work(&work->work);
561 }
562
Martin KaFai Lau8d6c31b2015-07-24 09:57:43 -0700563out:
YOSHIFUJI Hideaki / 吉藤英明2152cae2013-01-17 12:53:43 +0000564 rcu_read_unlock_bh();
YOSHIFUJI Hideaki27097252006-03-20 17:05:13 -0800565}
566#else
David Ahern8d1c8022018-04-17 17:33:26 -0700567static inline void rt6_probe(struct fib6_info *rt)
YOSHIFUJI Hideaki27097252006-03-20 17:05:13 -0800568{
YOSHIFUJI Hideaki27097252006-03-20 17:05:13 -0800569}
570#endif
571
Linus Torvalds1da177e2005-04-16 15:20:36 -0700572/*
YOSHIFUJI Hideaki554cfb72006-03-20 17:00:26 -0800573 * Default Router Selection (RFC 2461 6.3.6)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700574 */
David Ahern8d1c8022018-04-17 17:33:26 -0700575static inline int rt6_check_dev(struct fib6_info *rt, int oif)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700576{
David Ahern5e670d82018-04-17 17:33:14 -0700577 const struct net_device *dev = rt->fib6_nh.nh_dev;
578
David S. Miller161980f2007-04-06 11:42:27 -0700579 if (!oif || dev->ifindex == oif)
YOSHIFUJI Hideaki554cfb72006-03-20 17:00:26 -0800580 return 2;
David S. Miller161980f2007-04-06 11:42:27 -0700581 return 0;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700582}
583
David Ahern8d1c8022018-04-17 17:33:26 -0700584static inline enum rt6_nud_state rt6_check_neigh(struct fib6_info *rt)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700585{
Hannes Frederic Sowaafc154e2013-07-11 12:43:42 +0200586 enum rt6_nud_state ret = RT6_NUD_FAIL_HARD;
David Ahern5e670d82018-04-17 17:33:14 -0700587 struct neighbour *neigh;
Eric Dumazetf2c31e32011-07-29 19:00:53 +0000588
David Ahern93c2fb22018-04-18 15:38:59 -0700589 if (rt->fib6_flags & RTF_NONEXTHOP ||
590 !(rt->fib6_flags & RTF_GATEWAY))
Hannes Frederic Sowaafc154e2013-07-11 12:43:42 +0200591 return RT6_NUD_SUCCEED;
YOSHIFUJI Hideaki / 吉藤英明145a3622013-01-17 12:53:38 +0000592
593 rcu_read_lock_bh();
David Ahern5e670d82018-04-17 17:33:14 -0700594 neigh = __ipv6_neigh_lookup_noref(rt->fib6_nh.nh_dev,
595 &rt->fib6_nh.nh_gw);
YOSHIFUJI Hideaki / 吉藤英明145a3622013-01-17 12:53:38 +0000596 if (neigh) {
597 read_lock(&neigh->lock);
YOSHIFUJI Hideaki554cfb72006-03-20 17:00:26 -0800598 if (neigh->nud_state & NUD_VALID)
Hannes Frederic Sowaafc154e2013-07-11 12:43:42 +0200599 ret = RT6_NUD_SUCCEED;
YOSHIFUJI Hideaki398bcbe2008-01-19 00:35:16 -0800600#ifdef CONFIG_IPV6_ROUTER_PREF
Paul Marksa5a81f02012-12-03 10:26:54 +0000601 else if (!(neigh->nud_state & NUD_FAILED))
Hannes Frederic Sowaafc154e2013-07-11 12:43:42 +0200602 ret = RT6_NUD_SUCCEED;
Jiri Benc7e980562013-12-11 13:48:20 +0100603 else
604 ret = RT6_NUD_FAIL_PROBE;
YOSHIFUJI Hideaki398bcbe2008-01-19 00:35:16 -0800605#endif
YOSHIFUJI Hideaki / 吉藤英明145a3622013-01-17 12:53:38 +0000606 read_unlock(&neigh->lock);
Hannes Frederic Sowaafc154e2013-07-11 12:43:42 +0200607 } else {
608 ret = IS_ENABLED(CONFIG_IPV6_ROUTER_PREF) ?
Jiri Benc7e980562013-12-11 13:48:20 +0100609 RT6_NUD_SUCCEED : RT6_NUD_FAIL_DO_RR;
Paul Marksa5a81f02012-12-03 10:26:54 +0000610 }
YOSHIFUJI Hideaki / 吉藤英明145a3622013-01-17 12:53:38 +0000611 rcu_read_unlock_bh();
612
Paul Marksa5a81f02012-12-03 10:26:54 +0000613 return ret;
YOSHIFUJI Hideaki554cfb72006-03-20 17:00:26 -0800614}
Linus Torvalds1da177e2005-04-16 15:20:36 -0700615
David Ahern8d1c8022018-04-17 17:33:26 -0700616static int rt6_score_route(struct fib6_info *rt, int oif, int strict)
YOSHIFUJI Hideaki554cfb72006-03-20 17:00:26 -0800617{
Paul Marksa5a81f02012-12-03 10:26:54 +0000618 int m;
YOSHIFUJI Hideaki1ab14572007-02-09 23:24:49 +0900619
YOSHIFUJI Hideaki4d0c5912006-05-26 13:23:41 -0700620 m = rt6_check_dev(rt, oif);
YOSHIFUJI Hideaki77d16f42006-08-23 17:25:05 -0700621 if (!m && (strict & RT6_LOOKUP_F_IFACE))
Hannes Frederic Sowaafc154e2013-07-11 12:43:42 +0200622 return RT6_NUD_FAIL_HARD;
YOSHIFUJI Hideakiebacaaa2006-03-20 17:04:53 -0800623#ifdef CONFIG_IPV6_ROUTER_PREF
David Ahern93c2fb22018-04-18 15:38:59 -0700624 m |= IPV6_DECODE_PREF(IPV6_EXTRACT_PREF(rt->fib6_flags)) << 2;
YOSHIFUJI Hideakiebacaaa2006-03-20 17:04:53 -0800625#endif
Hannes Frederic Sowaafc154e2013-07-11 12:43:42 +0200626 if (strict & RT6_LOOKUP_F_REACHABLE) {
627 int n = rt6_check_neigh(rt);
628 if (n < 0)
629 return n;
630 }
YOSHIFUJI Hideaki554cfb72006-03-20 17:00:26 -0800631 return m;
632}
Linus Torvalds1da177e2005-04-16 15:20:36 -0700633
David Aherndcd1f572018-04-18 15:39:05 -0700634/* called with rc_read_lock held */
635static inline bool fib6_ignore_linkdown(const struct fib6_info *f6i)
636{
637 const struct net_device *dev = fib6_info_nh_dev(f6i);
638 bool rc = false;
639
640 if (dev) {
641 const struct inet6_dev *idev = __in6_dev_get(dev);
642
643 rc = !!idev->cnf.ignore_routes_with_linkdown;
644 }
645
646 return rc;
647}
648
David Ahern8d1c8022018-04-17 17:33:26 -0700649static struct fib6_info *find_match(struct fib6_info *rt, int oif, int strict,
650 int *mpri, struct fib6_info *match,
Hannes Frederic Sowaafc154e2013-07-11 12:43:42 +0200651 bool *do_rr)
YOSHIFUJI Hideaki554cfb72006-03-20 17:00:26 -0800652{
David S. Millerf11e6652007-03-24 20:36:25 -0700653 int m;
Hannes Frederic Sowaafc154e2013-07-11 12:43:42 +0200654 bool match_do_rr = false;
Andy Gospodarek35103d12015-08-13 10:39:01 -0400655
David Ahern5e670d82018-04-17 17:33:14 -0700656 if (rt->fib6_nh.nh_flags & RTNH_F_DEAD)
Ido Schimmel8067bb82018-01-07 12:45:09 +0200657 goto out;
658
David Aherndcd1f572018-04-18 15:39:05 -0700659 if (fib6_ignore_linkdown(rt) &&
David Ahern5e670d82018-04-17 17:33:14 -0700660 rt->fib6_nh.nh_flags & RTNH_F_LINKDOWN &&
David Ahernd5d32e42016-10-24 12:27:23 -0700661 !(strict & RT6_LOOKUP_F_IGNORE_LINKSTATE))
Andy Gospodarek35103d12015-08-13 10:39:01 -0400662 goto out;
David S. Millerf11e6652007-03-24 20:36:25 -0700663
David Ahern14895682018-04-17 17:33:17 -0700664 if (fib6_check_expired(rt))
David S. Millerf11e6652007-03-24 20:36:25 -0700665 goto out;
666
667 m = rt6_score_route(rt, oif, strict);
Jiri Benc7e980562013-12-11 13:48:20 +0100668 if (m == RT6_NUD_FAIL_DO_RR) {
Hannes Frederic Sowaafc154e2013-07-11 12:43:42 +0200669 match_do_rr = true;
670 m = 0; /* lowest valid score */
Jiri Benc7e980562013-12-11 13:48:20 +0100671 } else if (m == RT6_NUD_FAIL_HARD) {
David S. Millerf11e6652007-03-24 20:36:25 -0700672 goto out;
David S. Millerf11e6652007-03-24 20:36:25 -0700673 }
674
Hannes Frederic Sowaafc154e2013-07-11 12:43:42 +0200675 if (strict & RT6_LOOKUP_F_REACHABLE)
676 rt6_probe(rt);
677
Jiri Benc7e980562013-12-11 13:48:20 +0100678 /* note that m can be RT6_NUD_FAIL_PROBE at this point */
Hannes Frederic Sowaafc154e2013-07-11 12:43:42 +0200679 if (m > *mpri) {
680 *do_rr = match_do_rr;
681 *mpri = m;
682 match = rt;
683 }
David S. Millerf11e6652007-03-24 20:36:25 -0700684out:
685 return match;
686}
687
David Ahern8d1c8022018-04-17 17:33:26 -0700688static struct fib6_info *find_rr_leaf(struct fib6_node *fn,
689 struct fib6_info *leaf,
690 struct fib6_info *rr_head,
Hannes Frederic Sowaafc154e2013-07-11 12:43:42 +0200691 u32 metric, int oif, int strict,
692 bool *do_rr)
David S. Millerf11e6652007-03-24 20:36:25 -0700693{
David Ahern8d1c8022018-04-17 17:33:26 -0700694 struct fib6_info *rt, *match, *cont;
YOSHIFUJI Hideaki554cfb72006-03-20 17:00:26 -0800695 int mpri = -1;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700696
David S. Millerf11e6652007-03-24 20:36:25 -0700697 match = NULL;
Steffen Klassert9fbdcfa2015-04-28 13:03:04 -0700698 cont = NULL;
David Miller071fb372017-11-28 15:40:15 -0500699 for (rt = rr_head; rt; rt = rcu_dereference(rt->rt6_next)) {
David Ahern93c2fb22018-04-18 15:38:59 -0700700 if (rt->fib6_metric != metric) {
Steffen Klassert9fbdcfa2015-04-28 13:03:04 -0700701 cont = rt;
702 break;
703 }
704
Hannes Frederic Sowaafc154e2013-07-11 12:43:42 +0200705 match = find_match(rt, oif, strict, &mpri, match, do_rr);
Steffen Klassert9fbdcfa2015-04-28 13:03:04 -0700706 }
707
Wei Wang66f5d6c2017-10-06 12:06:10 -0700708 for (rt = leaf; rt && rt != rr_head;
David Miller071fb372017-11-28 15:40:15 -0500709 rt = rcu_dereference(rt->rt6_next)) {
David Ahern93c2fb22018-04-18 15:38:59 -0700710 if (rt->fib6_metric != metric) {
Steffen Klassert9fbdcfa2015-04-28 13:03:04 -0700711 cont = rt;
712 break;
713 }
714
715 match = find_match(rt, oif, strict, &mpri, match, do_rr);
716 }
717
718 if (match || !cont)
719 return match;
720
David Miller071fb372017-11-28 15:40:15 -0500721 for (rt = cont; rt; rt = rcu_dereference(rt->rt6_next))
Hannes Frederic Sowaafc154e2013-07-11 12:43:42 +0200722 match = find_match(rt, oif, strict, &mpri, match, do_rr);
YOSHIFUJI Hideaki554cfb72006-03-20 17:00:26 -0800723
David S. Millerf11e6652007-03-24 20:36:25 -0700724 return match;
725}
YOSHIFUJI Hideaki554cfb72006-03-20 17:00:26 -0800726
David Ahern8d1c8022018-04-17 17:33:26 -0700727static struct fib6_info *rt6_select(struct net *net, struct fib6_node *fn,
Wei Wang8d1040e2017-10-06 12:06:08 -0700728 int oif, int strict)
David S. Millerf11e6652007-03-24 20:36:25 -0700729{
David Ahern8d1c8022018-04-17 17:33:26 -0700730 struct fib6_info *leaf = rcu_dereference(fn->leaf);
731 struct fib6_info *match, *rt0;
Hannes Frederic Sowaafc154e2013-07-11 12:43:42 +0200732 bool do_rr = false;
Wei Wang17ecf592017-10-06 12:06:09 -0700733 int key_plen;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700734
David Ahern421842e2018-04-17 17:33:18 -0700735 if (!leaf || leaf == net->ipv6.fib6_null_entry)
736 return net->ipv6.fib6_null_entry;
Wei Wang8d1040e2017-10-06 12:06:08 -0700737
Wei Wang66f5d6c2017-10-06 12:06:10 -0700738 rt0 = rcu_dereference(fn->rr_ptr);
David S. Millerf11e6652007-03-24 20:36:25 -0700739 if (!rt0)
Wei Wang66f5d6c2017-10-06 12:06:10 -0700740 rt0 = leaf;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700741
Wei Wang17ecf592017-10-06 12:06:09 -0700742 /* Double check to make sure fn is not an intermediate node
743 * and fn->leaf does not points to its child's leaf
744 * (This might happen if all routes under fn are deleted from
745 * the tree and fib6_repair_tree() is called on the node.)
746 */
David Ahern93c2fb22018-04-18 15:38:59 -0700747 key_plen = rt0->fib6_dst.plen;
Wei Wang17ecf592017-10-06 12:06:09 -0700748#ifdef CONFIG_IPV6_SUBTREES
David Ahern93c2fb22018-04-18 15:38:59 -0700749 if (rt0->fib6_src.plen)
750 key_plen = rt0->fib6_src.plen;
Wei Wang17ecf592017-10-06 12:06:09 -0700751#endif
752 if (fn->fn_bit != key_plen)
David Ahern421842e2018-04-17 17:33:18 -0700753 return net->ipv6.fib6_null_entry;
Wei Wang17ecf592017-10-06 12:06:09 -0700754
David Ahern93c2fb22018-04-18 15:38:59 -0700755 match = find_rr_leaf(fn, leaf, rt0, rt0->fib6_metric, oif, strict,
Hannes Frederic Sowaafc154e2013-07-11 12:43:42 +0200756 &do_rr);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700757
Hannes Frederic Sowaafc154e2013-07-11 12:43:42 +0200758 if (do_rr) {
David Ahern8d1c8022018-04-17 17:33:26 -0700759 struct fib6_info *next = rcu_dereference(rt0->rt6_next);
David S. Millerf11e6652007-03-24 20:36:25 -0700760
YOSHIFUJI Hideaki554cfb72006-03-20 17:00:26 -0800761 /* no entries matched; do round-robin */
David Ahern93c2fb22018-04-18 15:38:59 -0700762 if (!next || next->fib6_metric != rt0->fib6_metric)
Wei Wang8d1040e2017-10-06 12:06:08 -0700763 next = leaf;
David S. Millerf11e6652007-03-24 20:36:25 -0700764
Wei Wang66f5d6c2017-10-06 12:06:10 -0700765 if (next != rt0) {
David Ahern93c2fb22018-04-18 15:38:59 -0700766 spin_lock_bh(&leaf->fib6_table->tb6_lock);
Wei Wang66f5d6c2017-10-06 12:06:10 -0700767 /* make sure next is not being deleted from the tree */
David Ahern93c2fb22018-04-18 15:38:59 -0700768 if (next->fib6_node)
Wei Wang66f5d6c2017-10-06 12:06:10 -0700769 rcu_assign_pointer(fn->rr_ptr, next);
David Ahern93c2fb22018-04-18 15:38:59 -0700770 spin_unlock_bh(&leaf->fib6_table->tb6_lock);
Wei Wang66f5d6c2017-10-06 12:06:10 -0700771 }
Linus Torvalds1da177e2005-04-16 15:20:36 -0700772 }
773
David Ahern421842e2018-04-17 17:33:18 -0700774 return match ? match : net->ipv6.fib6_null_entry;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700775}
776
David Ahern8d1c8022018-04-17 17:33:26 -0700777static bool rt6_is_gw_or_nonexthop(const struct fib6_info *rt)
Martin KaFai Lau8b9df262015-05-22 20:55:59 -0700778{
David Ahern93c2fb22018-04-18 15:38:59 -0700779 return (rt->fib6_flags & (RTF_NONEXTHOP | RTF_GATEWAY));
Martin KaFai Lau8b9df262015-05-22 20:55:59 -0700780}
781
YOSHIFUJI Hideaki70ceb4f2006-03-20 17:06:24 -0800782#ifdef CONFIG_IPV6_ROUTE_INFO
783int rt6_route_rcv(struct net_device *dev, u8 *opt, int len,
Eric Dumazetb71d1d42011-04-22 04:53:02 +0000784 const struct in6_addr *gwaddr)
YOSHIFUJI Hideaki70ceb4f2006-03-20 17:06:24 -0800785{
YOSHIFUJI Hideakic346dca2008-03-25 21:47:49 +0900786 struct net *net = dev_net(dev);
YOSHIFUJI Hideaki70ceb4f2006-03-20 17:06:24 -0800787 struct route_info *rinfo = (struct route_info *) opt;
788 struct in6_addr prefix_buf, *prefix;
789 unsigned int pref;
YOSHIFUJI Hideaki4bed72e2008-05-27 17:37:49 +0900790 unsigned long lifetime;
David Ahern8d1c8022018-04-17 17:33:26 -0700791 struct fib6_info *rt;
YOSHIFUJI Hideaki70ceb4f2006-03-20 17:06:24 -0800792
793 if (len < sizeof(struct route_info)) {
794 return -EINVAL;
795 }
796
797 /* Sanity check for prefix_len and length */
798 if (rinfo->length > 3) {
799 return -EINVAL;
800 } else if (rinfo->prefix_len > 128) {
801 return -EINVAL;
802 } else if (rinfo->prefix_len > 64) {
803 if (rinfo->length < 2) {
804 return -EINVAL;
805 }
806 } else if (rinfo->prefix_len > 0) {
807 if (rinfo->length < 1) {
808 return -EINVAL;
809 }
810 }
811
812 pref = rinfo->route_pref;
813 if (pref == ICMPV6_ROUTER_PREF_INVALID)
Jens Rosenboom3933fc92009-09-10 06:25:11 +0000814 return -EINVAL;
YOSHIFUJI Hideaki70ceb4f2006-03-20 17:06:24 -0800815
YOSHIFUJI Hideaki4bed72e2008-05-27 17:37:49 +0900816 lifetime = addrconf_timeout_fixup(ntohl(rinfo->lifetime), HZ);
YOSHIFUJI Hideaki70ceb4f2006-03-20 17:06:24 -0800817
818 if (rinfo->length == 3)
819 prefix = (struct in6_addr *)rinfo->prefix;
820 else {
821 /* this function is safe */
822 ipv6_addr_prefix(&prefix_buf,
823 (struct in6_addr *)rinfo->prefix,
824 rinfo->prefix_len);
825 prefix = &prefix_buf;
826 }
827
Duan Jiongf104a562013-11-08 09:56:53 +0800828 if (rinfo->prefix_len == 0)
David Ahernafb1d4b52018-04-17 17:33:11 -0700829 rt = rt6_get_dflt_router(net, gwaddr, dev);
Duan Jiongf104a562013-11-08 09:56:53 +0800830 else
831 rt = rt6_get_route_info(net, prefix, rinfo->prefix_len,
David Ahern830218c2016-10-24 10:52:35 -0700832 gwaddr, dev);
YOSHIFUJI Hideaki70ceb4f2006-03-20 17:06:24 -0800833
834 if (rt && !lifetime) {
David Ahernafb1d4b52018-04-17 17:33:11 -0700835 ip6_del_rt(net, rt);
YOSHIFUJI Hideaki70ceb4f2006-03-20 17:06:24 -0800836 rt = NULL;
837 }
838
839 if (!rt && lifetime)
David Ahern830218c2016-10-24 10:52:35 -0700840 rt = rt6_add_route_info(net, prefix, rinfo->prefix_len, gwaddr,
841 dev, pref);
YOSHIFUJI Hideaki70ceb4f2006-03-20 17:06:24 -0800842 else if (rt)
David Ahern93c2fb22018-04-18 15:38:59 -0700843 rt->fib6_flags = RTF_ROUTEINFO |
844 (rt->fib6_flags & ~RTF_PREF_MASK) | RTF_PREF(pref);
YOSHIFUJI Hideaki70ceb4f2006-03-20 17:06:24 -0800845
846 if (rt) {
Gao feng1716a962012-04-06 00:13:10 +0000847 if (!addrconf_finite_timeout(lifetime))
David Ahern14895682018-04-17 17:33:17 -0700848 fib6_clean_expires(rt);
Gao feng1716a962012-04-06 00:13:10 +0000849 else
David Ahern14895682018-04-17 17:33:17 -0700850 fib6_set_expires(rt, jiffies + HZ * lifetime);
Gao feng1716a962012-04-06 00:13:10 +0000851
David Ahern93531c62018-04-17 17:33:25 -0700852 fib6_info_release(rt);
YOSHIFUJI Hideaki70ceb4f2006-03-20 17:06:24 -0800853 }
854 return 0;
855}
856#endif
857
David Ahernae90d862018-04-17 17:33:12 -0700858/*
859 * Misc support functions
860 */
861
862/* called with rcu_lock held */
David Ahern8d1c8022018-04-17 17:33:26 -0700863static struct net_device *ip6_rt_get_dev_rcu(struct fib6_info *rt)
David Ahernae90d862018-04-17 17:33:12 -0700864{
David Ahern5e670d82018-04-17 17:33:14 -0700865 struct net_device *dev = rt->fib6_nh.nh_dev;
David Ahernae90d862018-04-17 17:33:12 -0700866
David Ahern93c2fb22018-04-18 15:38:59 -0700867 if (rt->fib6_flags & (RTF_LOCAL | RTF_ANYCAST)) {
David Ahernae90d862018-04-17 17:33:12 -0700868 /* for copies of local routes, dst->dev needs to be the
869 * device if it is a master device, the master device if
870 * device is enslaved, and the loopback as the default
871 */
872 if (netif_is_l3_slave(dev) &&
David Ahern93c2fb22018-04-18 15:38:59 -0700873 !rt6_need_strict(&rt->fib6_dst.addr))
David Ahernae90d862018-04-17 17:33:12 -0700874 dev = l3mdev_master_dev_rcu(dev);
875 else if (!netif_is_l3_master(dev))
876 dev = dev_net(dev)->loopback_dev;
877 /* last case is netif_is_l3_master(dev) is true in which
878 * case we want dev returned to be dev
879 */
880 }
881
882 return dev;
883}
884
David Ahern6edb3c92018-04-17 17:33:15 -0700885static const int fib6_prop[RTN_MAX + 1] = {
886 [RTN_UNSPEC] = 0,
887 [RTN_UNICAST] = 0,
888 [RTN_LOCAL] = 0,
889 [RTN_BROADCAST] = 0,
890 [RTN_ANYCAST] = 0,
891 [RTN_MULTICAST] = 0,
892 [RTN_BLACKHOLE] = -EINVAL,
893 [RTN_UNREACHABLE] = -EHOSTUNREACH,
894 [RTN_PROHIBIT] = -EACCES,
895 [RTN_THROW] = -EAGAIN,
896 [RTN_NAT] = -EINVAL,
897 [RTN_XRESOLVE] = -EINVAL,
898};
899
900static int ip6_rt_type_to_error(u8 fib6_type)
901{
902 return fib6_prop[fib6_type];
903}
904
David Ahern8d1c8022018-04-17 17:33:26 -0700905static unsigned short fib6_info_dst_flags(struct fib6_info *rt)
David Ahern3b6761d2018-04-17 17:33:20 -0700906{
907 unsigned short flags = 0;
908
909 if (rt->dst_nocount)
910 flags |= DST_NOCOUNT;
911 if (rt->dst_nopolicy)
912 flags |= DST_NOPOLICY;
913 if (rt->dst_host)
914 flags |= DST_HOST;
915
916 return flags;
917}
918
David Ahern8d1c8022018-04-17 17:33:26 -0700919static void ip6_rt_init_dst_reject(struct rt6_info *rt, struct fib6_info *ort)
David Ahern6edb3c92018-04-17 17:33:15 -0700920{
921 rt->dst.error = ip6_rt_type_to_error(ort->fib6_type);
922
923 switch (ort->fib6_type) {
924 case RTN_BLACKHOLE:
925 rt->dst.output = dst_discard_out;
926 rt->dst.input = dst_discard;
927 break;
928 case RTN_PROHIBIT:
929 rt->dst.output = ip6_pkt_prohibit_out;
930 rt->dst.input = ip6_pkt_prohibit;
931 break;
932 case RTN_THROW:
933 case RTN_UNREACHABLE:
934 default:
935 rt->dst.output = ip6_pkt_discard_out;
936 rt->dst.input = ip6_pkt_discard;
937 break;
938 }
939}
940
David Ahern8d1c8022018-04-17 17:33:26 -0700941static void ip6_rt_init_dst(struct rt6_info *rt, struct fib6_info *ort)
David Ahern6edb3c92018-04-17 17:33:15 -0700942{
David Ahern3b6761d2018-04-17 17:33:20 -0700943 rt->dst.flags |= fib6_info_dst_flags(ort);
944
David Ahern93c2fb22018-04-18 15:38:59 -0700945 if (ort->fib6_flags & RTF_REJECT) {
David Ahern6edb3c92018-04-17 17:33:15 -0700946 ip6_rt_init_dst_reject(rt, ort);
947 return;
948 }
949
950 rt->dst.error = 0;
951 rt->dst.output = ip6_output;
952
953 if (ort->fib6_type == RTN_LOCAL) {
David Ahern6edb3c92018-04-17 17:33:15 -0700954 rt->dst.input = ip6_input;
David Ahern93c2fb22018-04-18 15:38:59 -0700955 } else if (ipv6_addr_type(&ort->fib6_dst.addr) & IPV6_ADDR_MULTICAST) {
David Ahern6edb3c92018-04-17 17:33:15 -0700956 rt->dst.input = ip6_mc_input;
957 } else {
958 rt->dst.input = ip6_forward;
959 }
960
961 if (ort->fib6_nh.nh_lwtstate) {
962 rt->dst.lwtstate = lwtstate_get(ort->fib6_nh.nh_lwtstate);
963 lwtunnel_set_redirect(&rt->dst);
964 }
965
966 rt->dst.lastuse = jiffies;
967}
968
David Ahern8d1c8022018-04-17 17:33:26 -0700969static void rt6_set_from(struct rt6_info *rt, struct fib6_info *from)
David Ahernae90d862018-04-17 17:33:12 -0700970{
David Ahernae90d862018-04-17 17:33:12 -0700971 rt->rt6i_flags &= ~RTF_EXPIRES;
David Ahern93531c62018-04-17 17:33:25 -0700972 fib6_info_hold(from);
David Aherna68886a2018-04-20 15:38:02 -0700973 rcu_assign_pointer(rt->from, from);
David Ahernd4ead6b2018-04-17 17:33:16 -0700974 dst_init_metrics(&rt->dst, from->fib6_metrics->metrics, true);
975 if (from->fib6_metrics != &dst_default_metrics) {
976 rt->dst._metrics |= DST_METRICS_REFCOUNTED;
977 refcount_inc(&from->fib6_metrics->refcnt);
978 }
David Ahernae90d862018-04-17 17:33:12 -0700979}
980
David Ahern8d1c8022018-04-17 17:33:26 -0700981static void ip6_rt_copy_init(struct rt6_info *rt, struct fib6_info *ort)
David Ahernae90d862018-04-17 17:33:12 -0700982{
David Aherndcd1f572018-04-18 15:39:05 -0700983 struct net_device *dev = fib6_info_nh_dev(ort);
984
David Ahern6edb3c92018-04-17 17:33:15 -0700985 ip6_rt_init_dst(rt, ort);
986
David Ahern93c2fb22018-04-18 15:38:59 -0700987 rt->rt6i_dst = ort->fib6_dst;
David Aherndcd1f572018-04-18 15:39:05 -0700988 rt->rt6i_idev = dev ? in6_dev_get(dev) : NULL;
David Ahern5e670d82018-04-17 17:33:14 -0700989 rt->rt6i_gateway = ort->fib6_nh.nh_gw;
David Ahern93c2fb22018-04-18 15:38:59 -0700990 rt->rt6i_flags = ort->fib6_flags;
David Ahernae90d862018-04-17 17:33:12 -0700991 rt6_set_from(rt, ort);
David Ahernae90d862018-04-17 17:33:12 -0700992#ifdef CONFIG_IPV6_SUBTREES
David Ahern93c2fb22018-04-18 15:38:59 -0700993 rt->rt6i_src = ort->fib6_src;
David Ahernae90d862018-04-17 17:33:12 -0700994#endif
David Ahern93c2fb22018-04-18 15:38:59 -0700995 rt->rt6i_prefsrc = ort->fib6_prefsrc;
David Ahern5e670d82018-04-17 17:33:14 -0700996 rt->dst.lwtstate = lwtstate_get(ort->fib6_nh.nh_lwtstate);
David Ahernae90d862018-04-17 17:33:12 -0700997}
998
Martin KaFai Laua3c00e42014-10-20 13:42:43 -0700999static struct fib6_node* fib6_backtrack(struct fib6_node *fn,
1000 struct in6_addr *saddr)
1001{
Wei Wang66f5d6c2017-10-06 12:06:10 -07001002 struct fib6_node *pn, *sn;
Martin KaFai Laua3c00e42014-10-20 13:42:43 -07001003 while (1) {
1004 if (fn->fn_flags & RTN_TL_ROOT)
1005 return NULL;
Wei Wang66f5d6c2017-10-06 12:06:10 -07001006 pn = rcu_dereference(fn->parent);
1007 sn = FIB6_SUBTREE(pn);
1008 if (sn && sn != fn)
1009 fn = fib6_lookup(sn, NULL, saddr);
Martin KaFai Laua3c00e42014-10-20 13:42:43 -07001010 else
1011 fn = pn;
1012 if (fn->fn_flags & RTN_RTINFO)
1013 return fn;
1014 }
1015}
Thomas Grafc71099a2006-08-04 23:20:06 -07001016
Wei Wangd3843fe2017-10-06 12:06:06 -07001017static bool ip6_hold_safe(struct net *net, struct rt6_info **prt,
1018 bool null_fallback)
1019{
1020 struct rt6_info *rt = *prt;
1021
1022 if (dst_hold_safe(&rt->dst))
1023 return true;
1024 if (null_fallback) {
1025 rt = net->ipv6.ip6_null_entry;
1026 dst_hold(&rt->dst);
1027 } else {
1028 rt = NULL;
1029 }
1030 *prt = rt;
1031 return false;
1032}
1033
David Aherndec9b0e2018-04-17 17:33:19 -07001034/* called with rcu_lock held */
David Ahern8d1c8022018-04-17 17:33:26 -07001035static struct rt6_info *ip6_create_rt_rcu(struct fib6_info *rt)
David Aherndec9b0e2018-04-17 17:33:19 -07001036{
David Ahern3b6761d2018-04-17 17:33:20 -07001037 unsigned short flags = fib6_info_dst_flags(rt);
David Aherndec9b0e2018-04-17 17:33:19 -07001038 struct net_device *dev = rt->fib6_nh.nh_dev;
1039 struct rt6_info *nrt;
1040
David Ahern93531c62018-04-17 17:33:25 -07001041 nrt = ip6_dst_alloc(dev_net(dev), dev, flags);
David Aherndec9b0e2018-04-17 17:33:19 -07001042 if (nrt)
1043 ip6_rt_copy_init(nrt, rt);
1044
1045 return nrt;
1046}
1047
Daniel Lezcano8ed67782008-03-04 13:48:30 -08001048static struct rt6_info *ip6_pol_route_lookup(struct net *net,
1049 struct fib6_table *table,
David Ahernb75cc8f2018-03-02 08:32:17 -08001050 struct flowi6 *fl6,
1051 const struct sk_buff *skb,
1052 int flags)
Linus Torvalds1da177e2005-04-16 15:20:36 -07001053{
David Ahern8d1c8022018-04-17 17:33:26 -07001054 struct fib6_info *f6i;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001055 struct fib6_node *fn;
David Ahern23fb93a2018-04-17 17:33:23 -07001056 struct rt6_info *rt;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001057
David Ahernb6cdbc82018-03-29 17:44:57 -07001058 if (fl6->flowi6_flags & FLOWI_FLAG_SKIP_NH_OIF)
1059 flags &= ~RT6_LOOKUP_F_IFACE;
1060
Wei Wang66f5d6c2017-10-06 12:06:10 -07001061 rcu_read_lock();
David S. Miller4c9483b2011-03-12 16:22:43 -05001062 fn = fib6_lookup(&table->tb6_root, &fl6->daddr, &fl6->saddr);
Thomas Grafc71099a2006-08-04 23:20:06 -07001063restart:
David Ahern23fb93a2018-04-17 17:33:23 -07001064 f6i = rcu_dereference(fn->leaf);
1065 if (!f6i) {
1066 f6i = net->ipv6.fib6_null_entry;
Wei Wang66f5d6c2017-10-06 12:06:10 -07001067 } else {
David Ahern23fb93a2018-04-17 17:33:23 -07001068 f6i = rt6_device_match(net, f6i, &fl6->saddr,
Wei Wang66f5d6c2017-10-06 12:06:10 -07001069 fl6->flowi6_oif, flags);
David Ahern93c2fb22018-04-18 15:38:59 -07001070 if (f6i->fib6_nsiblings && fl6->flowi6_oif == 0)
David Ahern23fb93a2018-04-17 17:33:23 -07001071 f6i = rt6_multipath_select(net, f6i, fl6,
1072 fl6->flowi6_oif, skb, flags);
Wei Wang66f5d6c2017-10-06 12:06:10 -07001073 }
David Ahern23fb93a2018-04-17 17:33:23 -07001074 if (f6i == net->ipv6.fib6_null_entry) {
Martin KaFai Laua3c00e42014-10-20 13:42:43 -07001075 fn = fib6_backtrack(fn, &fl6->saddr);
1076 if (fn)
1077 goto restart;
1078 }
David Ahern23fb93a2018-04-17 17:33:23 -07001079
Wei Wang2b760fc2017-10-06 12:06:03 -07001080 /* Search through exception table */
David Ahern23fb93a2018-04-17 17:33:23 -07001081 rt = rt6_find_cached_rt(f6i, &fl6->daddr, &fl6->saddr);
1082 if (rt) {
David Aherndec9b0e2018-04-17 17:33:19 -07001083 if (ip6_hold_safe(net, &rt, true))
1084 dst_use_noref(&rt->dst, jiffies);
David Ahern23fb93a2018-04-17 17:33:23 -07001085 } else if (f6i == net->ipv6.fib6_null_entry) {
David Aherndec9b0e2018-04-17 17:33:19 -07001086 rt = net->ipv6.ip6_null_entry;
1087 dst_hold(&rt->dst);
David Ahern23fb93a2018-04-17 17:33:23 -07001088 } else {
1089 rt = ip6_create_rt_rcu(f6i);
1090 if (!rt) {
1091 rt = net->ipv6.ip6_null_entry;
1092 dst_hold(&rt->dst);
1093 }
David Aherndec9b0e2018-04-17 17:33:19 -07001094 }
Wei Wangd3843fe2017-10-06 12:06:06 -07001095
Wei Wang66f5d6c2017-10-06 12:06:10 -07001096 rcu_read_unlock();
David Ahernb8115802015-11-19 12:24:22 -08001097
Paolo Abenib65f1642017-10-19 09:31:43 +02001098 trace_fib6_table_lookup(net, rt, table, fl6);
David Ahernb8115802015-11-19 12:24:22 -08001099
Thomas Grafc71099a2006-08-04 23:20:06 -07001100 return rt;
Thomas Grafc71099a2006-08-04 23:20:06 -07001101}
1102
Ian Morris67ba4152014-08-24 21:53:10 +01001103struct dst_entry *ip6_route_lookup(struct net *net, struct flowi6 *fl6,
David Ahernb75cc8f2018-03-02 08:32:17 -08001104 const struct sk_buff *skb, int flags)
Florian Westphalea6e5742011-09-05 16:05:44 +02001105{
David Ahernb75cc8f2018-03-02 08:32:17 -08001106 return fib6_rule_lookup(net, fl6, skb, flags, ip6_pol_route_lookup);
Florian Westphalea6e5742011-09-05 16:05:44 +02001107}
1108EXPORT_SYMBOL_GPL(ip6_route_lookup);
1109
YOSHIFUJI Hideaki9acd9f32008-04-10 15:42:10 +09001110struct rt6_info *rt6_lookup(struct net *net, const struct in6_addr *daddr,
David Ahernb75cc8f2018-03-02 08:32:17 -08001111 const struct in6_addr *saddr, int oif,
1112 const struct sk_buff *skb, int strict)
Thomas Grafc71099a2006-08-04 23:20:06 -07001113{
David S. Miller4c9483b2011-03-12 16:22:43 -05001114 struct flowi6 fl6 = {
1115 .flowi6_oif = oif,
1116 .daddr = *daddr,
Thomas Grafc71099a2006-08-04 23:20:06 -07001117 };
1118 struct dst_entry *dst;
YOSHIFUJI Hideaki77d16f42006-08-23 17:25:05 -07001119 int flags = strict ? RT6_LOOKUP_F_IFACE : 0;
Thomas Grafc71099a2006-08-04 23:20:06 -07001120
Thomas Grafadaa70b2006-10-13 15:01:03 -07001121 if (saddr) {
David S. Miller4c9483b2011-03-12 16:22:43 -05001122 memcpy(&fl6.saddr, saddr, sizeof(*saddr));
Thomas Grafadaa70b2006-10-13 15:01:03 -07001123 flags |= RT6_LOOKUP_F_HAS_SADDR;
1124 }
1125
David Ahernb75cc8f2018-03-02 08:32:17 -08001126 dst = fib6_rule_lookup(net, &fl6, skb, flags, ip6_pol_route_lookup);
Thomas Grafc71099a2006-08-04 23:20:06 -07001127 if (dst->error == 0)
1128 return (struct rt6_info *) dst;
1129
1130 dst_release(dst);
1131
Linus Torvalds1da177e2005-04-16 15:20:36 -07001132 return NULL;
1133}
YOSHIFUJI Hideaki71590392007-02-22 22:05:40 +09001134EXPORT_SYMBOL(rt6_lookup);
1135
Thomas Grafc71099a2006-08-04 23:20:06 -07001136/* ip6_ins_rt is called with FREE table->tb6_lock.
Wei Wang1cfb71e2017-06-17 10:42:33 -07001137 * It takes new route entry, the addition fails by any reason the
1138 * route is released.
1139 * Caller must hold dst before calling it.
Linus Torvalds1da177e2005-04-16 15:20:36 -07001140 */
1141
David Ahern8d1c8022018-04-17 17:33:26 -07001142static int __ip6_ins_rt(struct fib6_info *rt, struct nl_info *info,
David Ahern333c4302017-05-21 10:12:04 -06001143 struct netlink_ext_ack *extack)
Linus Torvalds1da177e2005-04-16 15:20:36 -07001144{
1145 int err;
Thomas Grafc71099a2006-08-04 23:20:06 -07001146 struct fib6_table *table;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001147
David Ahern93c2fb22018-04-18 15:38:59 -07001148 table = rt->fib6_table;
Wei Wang66f5d6c2017-10-06 12:06:10 -07001149 spin_lock_bh(&table->tb6_lock);
David Ahernd4ead6b2018-04-17 17:33:16 -07001150 err = fib6_add(&table->tb6_root, rt, info, extack);
Wei Wang66f5d6c2017-10-06 12:06:10 -07001151 spin_unlock_bh(&table->tb6_lock);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001152
1153 return err;
1154}
1155
David Ahern8d1c8022018-04-17 17:33:26 -07001156int ip6_ins_rt(struct net *net, struct fib6_info *rt)
Thomas Graf40e22e82006-08-22 00:00:45 -07001157{
David Ahernafb1d4b52018-04-17 17:33:11 -07001158 struct nl_info info = { .nl_net = net, };
Florian Westphale715b6d2015-01-05 23:57:44 +01001159
David Ahernd4ead6b2018-04-17 17:33:16 -07001160 return __ip6_ins_rt(rt, &info, NULL);
Thomas Graf40e22e82006-08-22 00:00:45 -07001161}
1162
David Ahern8d1c8022018-04-17 17:33:26 -07001163static struct rt6_info *ip6_rt_cache_alloc(struct fib6_info *ort,
Martin KaFai Lau8b9df262015-05-22 20:55:59 -07001164 const struct in6_addr *daddr,
1165 const struct in6_addr *saddr)
Linus Torvalds1da177e2005-04-16 15:20:36 -07001166{
David Ahern4832c302017-08-17 12:17:20 -07001167 struct net_device *dev;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001168 struct rt6_info *rt;
1169
1170 /*
1171 * Clone the route.
1172 */
1173
David Ahern4832c302017-08-17 12:17:20 -07001174 dev = ip6_rt_get_dev_rcu(ort);
David Ahern93531c62018-04-17 17:33:25 -07001175 rt = ip6_dst_alloc(dev_net(dev), dev, 0);
Martin KaFai Lau83a09ab2015-05-22 20:56:05 -07001176 if (!rt)
1177 return NULL;
1178
1179 ip6_rt_copy_init(rt, ort);
1180 rt->rt6i_flags |= RTF_CACHE;
Martin KaFai Lau83a09ab2015-05-22 20:56:05 -07001181 rt->dst.flags |= DST_HOST;
1182 rt->rt6i_dst.addr = *daddr;
1183 rt->rt6i_dst.plen = 128;
1184
1185 if (!rt6_is_gw_or_nonexthop(ort)) {
David Ahern93c2fb22018-04-18 15:38:59 -07001186 if (ort->fib6_dst.plen != 128 &&
1187 ipv6_addr_equal(&ort->fib6_dst.addr, daddr))
Martin KaFai Lau83a09ab2015-05-22 20:56:05 -07001188 rt->rt6i_flags |= RTF_ANYCAST;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001189#ifdef CONFIG_IPV6_SUBTREES
Martin KaFai Lau83a09ab2015-05-22 20:56:05 -07001190 if (rt->rt6i_src.plen && saddr) {
1191 rt->rt6i_src.addr = *saddr;
1192 rt->rt6i_src.plen = 128;
Martin KaFai Lau8b9df262015-05-22 20:55:59 -07001193 }
Martin KaFai Lau83a09ab2015-05-22 20:56:05 -07001194#endif
YOSHIFUJI Hideaki95a9a5b2006-03-20 16:55:51 -08001195 }
Linus Torvalds1da177e2005-04-16 15:20:36 -07001196
YOSHIFUJI Hideaki95a9a5b2006-03-20 16:55:51 -08001197 return rt;
1198}
Linus Torvalds1da177e2005-04-16 15:20:36 -07001199
David Ahern8d1c8022018-04-17 17:33:26 -07001200static struct rt6_info *ip6_rt_pcpu_alloc(struct fib6_info *rt)
Martin KaFai Laud52d3992015-05-22 20:56:06 -07001201{
David Ahern3b6761d2018-04-17 17:33:20 -07001202 unsigned short flags = fib6_info_dst_flags(rt);
David Ahern4832c302017-08-17 12:17:20 -07001203 struct net_device *dev;
Martin KaFai Laud52d3992015-05-22 20:56:06 -07001204 struct rt6_info *pcpu_rt;
1205
David Ahern4832c302017-08-17 12:17:20 -07001206 rcu_read_lock();
1207 dev = ip6_rt_get_dev_rcu(rt);
David Ahern93531c62018-04-17 17:33:25 -07001208 pcpu_rt = ip6_dst_alloc(dev_net(dev), dev, flags);
David Ahern4832c302017-08-17 12:17:20 -07001209 rcu_read_unlock();
Martin KaFai Laud52d3992015-05-22 20:56:06 -07001210 if (!pcpu_rt)
1211 return NULL;
1212 ip6_rt_copy_init(pcpu_rt, rt);
Martin KaFai Laud52d3992015-05-22 20:56:06 -07001213 pcpu_rt->rt6i_flags |= RTF_PCPU;
1214 return pcpu_rt;
1215}
1216
Wei Wang66f5d6c2017-10-06 12:06:10 -07001217/* It should be called with rcu_read_lock() acquired */
David Ahern8d1c8022018-04-17 17:33:26 -07001218static struct rt6_info *rt6_get_pcpu_route(struct fib6_info *rt)
Martin KaFai Laud52d3992015-05-22 20:56:06 -07001219{
Martin KaFai Laua73e4192015-08-14 11:05:53 -07001220 struct rt6_info *pcpu_rt, **p;
Martin KaFai Laud52d3992015-05-22 20:56:06 -07001221
1222 p = this_cpu_ptr(rt->rt6i_pcpu);
1223 pcpu_rt = *p;
1224
David Ahernd4ead6b2018-04-17 17:33:16 -07001225 if (pcpu_rt)
1226 ip6_hold_safe(NULL, &pcpu_rt, false);
Wei Wangd3843fe2017-10-06 12:06:06 -07001227
Martin KaFai Laua73e4192015-08-14 11:05:53 -07001228 return pcpu_rt;
1229}
1230
David Ahernafb1d4b52018-04-17 17:33:11 -07001231static struct rt6_info *rt6_make_pcpu_route(struct net *net,
David Ahern8d1c8022018-04-17 17:33:26 -07001232 struct fib6_info *rt)
Martin KaFai Laua73e4192015-08-14 11:05:53 -07001233{
1234 struct rt6_info *pcpu_rt, *prev, **p;
Martin KaFai Laud52d3992015-05-22 20:56:06 -07001235
1236 pcpu_rt = ip6_rt_pcpu_alloc(rt);
1237 if (!pcpu_rt) {
Martin KaFai Lau9c7370a2015-08-14 11:05:54 -07001238 dst_hold(&net->ipv6.ip6_null_entry->dst);
1239 return net->ipv6.ip6_null_entry;
Martin KaFai Laud52d3992015-05-22 20:56:06 -07001240 }
1241
Martin KaFai Laud52d3992015-05-22 20:56:06 -07001242 dst_hold(&pcpu_rt->dst);
Wei Wanga94b9362017-10-06 12:06:04 -07001243 p = this_cpu_ptr(rt->rt6i_pcpu);
1244 prev = cmpxchg(p, NULL, pcpu_rt);
Eric Dumazet951f7882017-10-08 21:07:18 -07001245 BUG_ON(prev);
Wei Wanga94b9362017-10-06 12:06:04 -07001246
Martin KaFai Laud52d3992015-05-22 20:56:06 -07001247 return pcpu_rt;
1248}
1249
Wei Wang35732d02017-10-06 12:05:57 -07001250/* exception hash table implementation
1251 */
1252static DEFINE_SPINLOCK(rt6_exception_lock);
1253
1254/* Remove rt6_ex from hash table and free the memory
1255 * Caller must hold rt6_exception_lock
1256 */
1257static void rt6_remove_exception(struct rt6_exception_bucket *bucket,
1258 struct rt6_exception *rt6_ex)
1259{
Colin Ian Kingb2427e62017-10-10 18:01:16 +01001260 struct net *net;
Wei Wang81eb8442017-10-06 12:06:11 -07001261
Wei Wang35732d02017-10-06 12:05:57 -07001262 if (!bucket || !rt6_ex)
1263 return;
Colin Ian Kingb2427e62017-10-10 18:01:16 +01001264
1265 net = dev_net(rt6_ex->rt6i->dst.dev);
Wei Wang35732d02017-10-06 12:05:57 -07001266 hlist_del_rcu(&rt6_ex->hlist);
David Ahern77634cc2018-04-17 17:33:27 -07001267 dst_release(&rt6_ex->rt6i->dst);
Wei Wang35732d02017-10-06 12:05:57 -07001268 kfree_rcu(rt6_ex, rcu);
1269 WARN_ON_ONCE(!bucket->depth);
1270 bucket->depth--;
Wei Wang81eb8442017-10-06 12:06:11 -07001271 net->ipv6.rt6_stats->fib_rt_cache--;
Wei Wang35732d02017-10-06 12:05:57 -07001272}
1273
1274/* Remove oldest rt6_ex in bucket and free the memory
1275 * Caller must hold rt6_exception_lock
1276 */
1277static void rt6_exception_remove_oldest(struct rt6_exception_bucket *bucket)
1278{
1279 struct rt6_exception *rt6_ex, *oldest = NULL;
1280
1281 if (!bucket)
1282 return;
1283
1284 hlist_for_each_entry(rt6_ex, &bucket->chain, hlist) {
1285 if (!oldest || time_before(rt6_ex->stamp, oldest->stamp))
1286 oldest = rt6_ex;
1287 }
1288 rt6_remove_exception(bucket, oldest);
1289}
1290
1291static u32 rt6_exception_hash(const struct in6_addr *dst,
1292 const struct in6_addr *src)
1293{
1294 static u32 seed __read_mostly;
1295 u32 val;
1296
1297 net_get_random_once(&seed, sizeof(seed));
1298 val = jhash(dst, sizeof(*dst), seed);
1299
1300#ifdef CONFIG_IPV6_SUBTREES
1301 if (src)
1302 val = jhash(src, sizeof(*src), val);
1303#endif
1304 return hash_32(val, FIB6_EXCEPTION_BUCKET_SIZE_SHIFT);
1305}
1306
1307/* Helper function to find the cached rt in the hash table
1308 * and update bucket pointer to point to the bucket for this
1309 * (daddr, saddr) pair
1310 * Caller must hold rt6_exception_lock
1311 */
1312static struct rt6_exception *
1313__rt6_find_exception_spinlock(struct rt6_exception_bucket **bucket,
1314 const struct in6_addr *daddr,
1315 const struct in6_addr *saddr)
1316{
1317 struct rt6_exception *rt6_ex;
1318 u32 hval;
1319
1320 if (!(*bucket) || !daddr)
1321 return NULL;
1322
1323 hval = rt6_exception_hash(daddr, saddr);
1324 *bucket += hval;
1325
1326 hlist_for_each_entry(rt6_ex, &(*bucket)->chain, hlist) {
1327 struct rt6_info *rt6 = rt6_ex->rt6i;
1328 bool matched = ipv6_addr_equal(daddr, &rt6->rt6i_dst.addr);
1329
1330#ifdef CONFIG_IPV6_SUBTREES
1331 if (matched && saddr)
1332 matched = ipv6_addr_equal(saddr, &rt6->rt6i_src.addr);
1333#endif
1334 if (matched)
1335 return rt6_ex;
1336 }
1337 return NULL;
1338}
1339
1340/* Helper function to find the cached rt in the hash table
1341 * and update bucket pointer to point to the bucket for this
1342 * (daddr, saddr) pair
1343 * Caller must hold rcu_read_lock()
1344 */
1345static struct rt6_exception *
1346__rt6_find_exception_rcu(struct rt6_exception_bucket **bucket,
1347 const struct in6_addr *daddr,
1348 const struct in6_addr *saddr)
1349{
1350 struct rt6_exception *rt6_ex;
1351 u32 hval;
1352
1353 WARN_ON_ONCE(!rcu_read_lock_held());
1354
1355 if (!(*bucket) || !daddr)
1356 return NULL;
1357
1358 hval = rt6_exception_hash(daddr, saddr);
1359 *bucket += hval;
1360
1361 hlist_for_each_entry_rcu(rt6_ex, &(*bucket)->chain, hlist) {
1362 struct rt6_info *rt6 = rt6_ex->rt6i;
1363 bool matched = ipv6_addr_equal(daddr, &rt6->rt6i_dst.addr);
1364
1365#ifdef CONFIG_IPV6_SUBTREES
1366 if (matched && saddr)
1367 matched = ipv6_addr_equal(saddr, &rt6->rt6i_src.addr);
1368#endif
1369 if (matched)
1370 return rt6_ex;
1371 }
1372 return NULL;
1373}
1374
David Ahern8d1c8022018-04-17 17:33:26 -07001375static unsigned int fib6_mtu(const struct fib6_info *rt)
David Ahernd4ead6b2018-04-17 17:33:16 -07001376{
1377 unsigned int mtu;
1378
David Aherndcd1f572018-04-18 15:39:05 -07001379 if (rt->fib6_pmtu) {
1380 mtu = rt->fib6_pmtu;
1381 } else {
1382 struct net_device *dev = fib6_info_nh_dev(rt);
1383 struct inet6_dev *idev;
1384
1385 rcu_read_lock();
1386 idev = __in6_dev_get(dev);
1387 mtu = idev->cnf.mtu6;
1388 rcu_read_unlock();
1389 }
1390
David Ahernd4ead6b2018-04-17 17:33:16 -07001391 mtu = min_t(unsigned int, mtu, IP6_MAX_MTU);
1392
1393 return mtu - lwtunnel_headroom(rt->fib6_nh.nh_lwtstate, mtu);
1394}
1395
Wei Wang35732d02017-10-06 12:05:57 -07001396static int rt6_insert_exception(struct rt6_info *nrt,
David Ahern8d1c8022018-04-17 17:33:26 -07001397 struct fib6_info *ort)
Wei Wang35732d02017-10-06 12:05:57 -07001398{
David Ahern5e670d82018-04-17 17:33:14 -07001399 struct net *net = dev_net(nrt->dst.dev);
Wei Wang35732d02017-10-06 12:05:57 -07001400 struct rt6_exception_bucket *bucket;
1401 struct in6_addr *src_key = NULL;
1402 struct rt6_exception *rt6_ex;
1403 int err = 0;
1404
Wei Wang35732d02017-10-06 12:05:57 -07001405 spin_lock_bh(&rt6_exception_lock);
1406
1407 if (ort->exception_bucket_flushed) {
1408 err = -EINVAL;
1409 goto out;
1410 }
1411
1412 bucket = rcu_dereference_protected(ort->rt6i_exception_bucket,
1413 lockdep_is_held(&rt6_exception_lock));
1414 if (!bucket) {
1415 bucket = kcalloc(FIB6_EXCEPTION_BUCKET_SIZE, sizeof(*bucket),
1416 GFP_ATOMIC);
1417 if (!bucket) {
1418 err = -ENOMEM;
1419 goto out;
1420 }
1421 rcu_assign_pointer(ort->rt6i_exception_bucket, bucket);
1422 }
1423
1424#ifdef CONFIG_IPV6_SUBTREES
1425 /* rt6i_src.plen != 0 indicates ort is in subtree
1426 * and exception table is indexed by a hash of
1427 * both rt6i_dst and rt6i_src.
1428 * Otherwise, the exception table is indexed by
1429 * a hash of only rt6i_dst.
1430 */
David Ahern93c2fb22018-04-18 15:38:59 -07001431 if (ort->fib6_src.plen)
Wei Wang35732d02017-10-06 12:05:57 -07001432 src_key = &nrt->rt6i_src.addr;
1433#endif
Wei Wang60006a42017-10-06 12:05:58 -07001434
1435 /* Update rt6i_prefsrc as it could be changed
1436 * in rt6_remove_prefsrc()
1437 */
David Ahern93c2fb22018-04-18 15:38:59 -07001438 nrt->rt6i_prefsrc = ort->fib6_prefsrc;
Wei Wangf5bbe7e2017-10-06 12:05:59 -07001439 /* rt6_mtu_change() might lower mtu on ort.
1440 * Only insert this exception route if its mtu
1441 * is less than ort's mtu value.
1442 */
David Ahernd4ead6b2018-04-17 17:33:16 -07001443 if (dst_metric_raw(&nrt->dst, RTAX_MTU) >= fib6_mtu(ort)) {
Wei Wangf5bbe7e2017-10-06 12:05:59 -07001444 err = -EINVAL;
1445 goto out;
1446 }
Wei Wang60006a42017-10-06 12:05:58 -07001447
Wei Wang35732d02017-10-06 12:05:57 -07001448 rt6_ex = __rt6_find_exception_spinlock(&bucket, &nrt->rt6i_dst.addr,
1449 src_key);
1450 if (rt6_ex)
1451 rt6_remove_exception(bucket, rt6_ex);
1452
1453 rt6_ex = kzalloc(sizeof(*rt6_ex), GFP_ATOMIC);
1454 if (!rt6_ex) {
1455 err = -ENOMEM;
1456 goto out;
1457 }
1458 rt6_ex->rt6i = nrt;
1459 rt6_ex->stamp = jiffies;
Wei Wang35732d02017-10-06 12:05:57 -07001460 hlist_add_head_rcu(&rt6_ex->hlist, &bucket->chain);
1461 bucket->depth++;
Wei Wang81eb8442017-10-06 12:06:11 -07001462 net->ipv6.rt6_stats->fib_rt_cache++;
Wei Wang35732d02017-10-06 12:05:57 -07001463
1464 if (bucket->depth > FIB6_MAX_DEPTH)
1465 rt6_exception_remove_oldest(bucket);
1466
1467out:
1468 spin_unlock_bh(&rt6_exception_lock);
1469
1470 /* Update fn->fn_sernum to invalidate all cached dst */
Paolo Abenib886d5f2017-10-19 16:07:10 +02001471 if (!err) {
David Ahern93c2fb22018-04-18 15:38:59 -07001472 spin_lock_bh(&ort->fib6_table->tb6_lock);
David Ahern7aef6852018-04-17 17:33:10 -07001473 fib6_update_sernum(net, ort);
David Ahern93c2fb22018-04-18 15:38:59 -07001474 spin_unlock_bh(&ort->fib6_table->tb6_lock);
Paolo Abenib886d5f2017-10-19 16:07:10 +02001475 fib6_force_start_gc(net);
1476 }
Wei Wang35732d02017-10-06 12:05:57 -07001477
1478 return err;
1479}
1480
David Ahern8d1c8022018-04-17 17:33:26 -07001481void rt6_flush_exceptions(struct fib6_info *rt)
Wei Wang35732d02017-10-06 12:05:57 -07001482{
1483 struct rt6_exception_bucket *bucket;
1484 struct rt6_exception *rt6_ex;
1485 struct hlist_node *tmp;
1486 int i;
1487
1488 spin_lock_bh(&rt6_exception_lock);
1489 /* Prevent rt6_insert_exception() to recreate the bucket list */
1490 rt->exception_bucket_flushed = 1;
1491
1492 bucket = rcu_dereference_protected(rt->rt6i_exception_bucket,
1493 lockdep_is_held(&rt6_exception_lock));
1494 if (!bucket)
1495 goto out;
1496
1497 for (i = 0; i < FIB6_EXCEPTION_BUCKET_SIZE; i++) {
1498 hlist_for_each_entry_safe(rt6_ex, tmp, &bucket->chain, hlist)
1499 rt6_remove_exception(bucket, rt6_ex);
1500 WARN_ON_ONCE(bucket->depth);
1501 bucket++;
1502 }
1503
1504out:
1505 spin_unlock_bh(&rt6_exception_lock);
1506}
1507
1508/* Find cached rt in the hash table inside passed in rt
1509 * Caller has to hold rcu_read_lock()
1510 */
David Ahern8d1c8022018-04-17 17:33:26 -07001511static struct rt6_info *rt6_find_cached_rt(struct fib6_info *rt,
Wei Wang35732d02017-10-06 12:05:57 -07001512 struct in6_addr *daddr,
1513 struct in6_addr *saddr)
1514{
1515 struct rt6_exception_bucket *bucket;
1516 struct in6_addr *src_key = NULL;
1517 struct rt6_exception *rt6_ex;
1518 struct rt6_info *res = NULL;
1519
1520 bucket = rcu_dereference(rt->rt6i_exception_bucket);
1521
1522#ifdef CONFIG_IPV6_SUBTREES
1523 /* rt6i_src.plen != 0 indicates rt is in subtree
1524 * and exception table is indexed by a hash of
1525 * both rt6i_dst and rt6i_src.
1526 * Otherwise, the exception table is indexed by
1527 * a hash of only rt6i_dst.
1528 */
David Ahern93c2fb22018-04-18 15:38:59 -07001529 if (rt->fib6_src.plen)
Wei Wang35732d02017-10-06 12:05:57 -07001530 src_key = saddr;
1531#endif
1532 rt6_ex = __rt6_find_exception_rcu(&bucket, daddr, src_key);
1533
1534 if (rt6_ex && !rt6_check_expired(rt6_ex->rt6i))
1535 res = rt6_ex->rt6i;
1536
1537 return res;
1538}
1539
1540/* Remove the passed in cached rt from the hash table that contains it */
David Ahern23fb93a2018-04-17 17:33:23 -07001541static int rt6_remove_exception_rt(struct rt6_info *rt)
Wei Wang35732d02017-10-06 12:05:57 -07001542{
Wei Wang35732d02017-10-06 12:05:57 -07001543 struct rt6_exception_bucket *bucket;
1544 struct in6_addr *src_key = NULL;
1545 struct rt6_exception *rt6_ex;
David Ahern8a14e462018-04-23 11:32:07 -07001546 struct fib6_info *from;
Wei Wang35732d02017-10-06 12:05:57 -07001547 int err;
1548
Eric Dumazet091311d2018-04-24 09:22:49 -07001549 from = rcu_dereference(rt->from);
Wei Wang35732d02017-10-06 12:05:57 -07001550 if (!from ||
Colin Ian King442d7132017-10-10 19:10:30 +01001551 !(rt->rt6i_flags & RTF_CACHE))
Wei Wang35732d02017-10-06 12:05:57 -07001552 return -EINVAL;
1553
1554 if (!rcu_access_pointer(from->rt6i_exception_bucket))
1555 return -ENOENT;
1556
1557 spin_lock_bh(&rt6_exception_lock);
1558 bucket = rcu_dereference_protected(from->rt6i_exception_bucket,
1559 lockdep_is_held(&rt6_exception_lock));
1560#ifdef CONFIG_IPV6_SUBTREES
1561 /* rt6i_src.plen != 0 indicates 'from' is in subtree
1562 * and exception table is indexed by a hash of
1563 * both rt6i_dst and rt6i_src.
1564 * Otherwise, the exception table is indexed by
1565 * a hash of only rt6i_dst.
1566 */
David Ahern93c2fb22018-04-18 15:38:59 -07001567 if (from->fib6_src.plen)
Wei Wang35732d02017-10-06 12:05:57 -07001568 src_key = &rt->rt6i_src.addr;
1569#endif
1570 rt6_ex = __rt6_find_exception_spinlock(&bucket,
1571 &rt->rt6i_dst.addr,
1572 src_key);
1573 if (rt6_ex) {
1574 rt6_remove_exception(bucket, rt6_ex);
1575 err = 0;
1576 } else {
1577 err = -ENOENT;
1578 }
1579
1580 spin_unlock_bh(&rt6_exception_lock);
1581 return err;
1582}
1583
1584/* Find rt6_ex which contains the passed in rt cache and
1585 * refresh its stamp
1586 */
1587static void rt6_update_exception_stamp_rt(struct rt6_info *rt)
1588{
Wei Wang35732d02017-10-06 12:05:57 -07001589 struct rt6_exception_bucket *bucket;
David Ahern8d1c8022018-04-17 17:33:26 -07001590 struct fib6_info *from = rt->from;
Wei Wang35732d02017-10-06 12:05:57 -07001591 struct in6_addr *src_key = NULL;
1592 struct rt6_exception *rt6_ex;
1593
1594 if (!from ||
Colin Ian King442d7132017-10-10 19:10:30 +01001595 !(rt->rt6i_flags & RTF_CACHE))
Wei Wang35732d02017-10-06 12:05:57 -07001596 return;
1597
1598 rcu_read_lock();
1599 bucket = rcu_dereference(from->rt6i_exception_bucket);
1600
1601#ifdef CONFIG_IPV6_SUBTREES
1602 /* rt6i_src.plen != 0 indicates 'from' is in subtree
1603 * and exception table is indexed by a hash of
1604 * both rt6i_dst and rt6i_src.
1605 * Otherwise, the exception table is indexed by
1606 * a hash of only rt6i_dst.
1607 */
David Ahern93c2fb22018-04-18 15:38:59 -07001608 if (from->fib6_src.plen)
Wei Wang35732d02017-10-06 12:05:57 -07001609 src_key = &rt->rt6i_src.addr;
1610#endif
1611 rt6_ex = __rt6_find_exception_rcu(&bucket,
1612 &rt->rt6i_dst.addr,
1613 src_key);
1614 if (rt6_ex)
1615 rt6_ex->stamp = jiffies;
1616
1617 rcu_read_unlock();
1618}
1619
David Ahern8d1c8022018-04-17 17:33:26 -07001620static void rt6_exceptions_remove_prefsrc(struct fib6_info *rt)
Wei Wang60006a42017-10-06 12:05:58 -07001621{
1622 struct rt6_exception_bucket *bucket;
1623 struct rt6_exception *rt6_ex;
1624 int i;
1625
1626 bucket = rcu_dereference_protected(rt->rt6i_exception_bucket,
1627 lockdep_is_held(&rt6_exception_lock));
1628
1629 if (bucket) {
1630 for (i = 0; i < FIB6_EXCEPTION_BUCKET_SIZE; i++) {
1631 hlist_for_each_entry(rt6_ex, &bucket->chain, hlist) {
1632 rt6_ex->rt6i->rt6i_prefsrc.plen = 0;
1633 }
1634 bucket++;
1635 }
1636 }
1637}
1638
Stefano Brivioe9fa1492018-03-06 11:10:19 +01001639static bool rt6_mtu_change_route_allowed(struct inet6_dev *idev,
1640 struct rt6_info *rt, int mtu)
1641{
1642 /* If the new MTU is lower than the route PMTU, this new MTU will be the
1643 * lowest MTU in the path: always allow updating the route PMTU to
1644 * reflect PMTU decreases.
1645 *
1646 * If the new MTU is higher, and the route PMTU is equal to the local
1647 * MTU, this means the old MTU is the lowest in the path, so allow
1648 * updating it: if other nodes now have lower MTUs, PMTU discovery will
1649 * handle this.
1650 */
1651
1652 if (dst_mtu(&rt->dst) >= mtu)
1653 return true;
1654
1655 if (dst_mtu(&rt->dst) == idev->cnf.mtu6)
1656 return true;
1657
1658 return false;
1659}
1660
1661static void rt6_exceptions_update_pmtu(struct inet6_dev *idev,
David Ahern8d1c8022018-04-17 17:33:26 -07001662 struct fib6_info *rt, int mtu)
Wei Wangf5bbe7e2017-10-06 12:05:59 -07001663{
1664 struct rt6_exception_bucket *bucket;
1665 struct rt6_exception *rt6_ex;
1666 int i;
1667
1668 bucket = rcu_dereference_protected(rt->rt6i_exception_bucket,
1669 lockdep_is_held(&rt6_exception_lock));
1670
Stefano Brivioe9fa1492018-03-06 11:10:19 +01001671 if (!bucket)
1672 return;
1673
1674 for (i = 0; i < FIB6_EXCEPTION_BUCKET_SIZE; i++) {
1675 hlist_for_each_entry(rt6_ex, &bucket->chain, hlist) {
1676 struct rt6_info *entry = rt6_ex->rt6i;
1677
1678 /* For RTF_CACHE with rt6i_pmtu == 0 (i.e. a redirected
David Ahernd4ead6b2018-04-17 17:33:16 -07001679 * route), the metrics of its rt->from have already
Stefano Brivioe9fa1492018-03-06 11:10:19 +01001680 * been updated.
1681 */
David Ahernd4ead6b2018-04-17 17:33:16 -07001682 if (dst_metric_raw(&entry->dst, RTAX_MTU) &&
Stefano Brivioe9fa1492018-03-06 11:10:19 +01001683 rt6_mtu_change_route_allowed(idev, entry, mtu))
David Ahernd4ead6b2018-04-17 17:33:16 -07001684 dst_metric_set(&entry->dst, RTAX_MTU, mtu);
Wei Wangf5bbe7e2017-10-06 12:05:59 -07001685 }
Stefano Brivioe9fa1492018-03-06 11:10:19 +01001686 bucket++;
Wei Wangf5bbe7e2017-10-06 12:05:59 -07001687 }
1688}
1689
Wei Wangb16cb452017-10-06 12:06:00 -07001690#define RTF_CACHE_GATEWAY (RTF_GATEWAY | RTF_CACHE)
1691
David Ahern8d1c8022018-04-17 17:33:26 -07001692static void rt6_exceptions_clean_tohost(struct fib6_info *rt,
Wei Wangb16cb452017-10-06 12:06:00 -07001693 struct in6_addr *gateway)
1694{
1695 struct rt6_exception_bucket *bucket;
1696 struct rt6_exception *rt6_ex;
1697 struct hlist_node *tmp;
1698 int i;
1699
1700 if (!rcu_access_pointer(rt->rt6i_exception_bucket))
1701 return;
1702
1703 spin_lock_bh(&rt6_exception_lock);
1704 bucket = rcu_dereference_protected(rt->rt6i_exception_bucket,
1705 lockdep_is_held(&rt6_exception_lock));
1706
1707 if (bucket) {
1708 for (i = 0; i < FIB6_EXCEPTION_BUCKET_SIZE; i++) {
1709 hlist_for_each_entry_safe(rt6_ex, tmp,
1710 &bucket->chain, hlist) {
1711 struct rt6_info *entry = rt6_ex->rt6i;
1712
1713 if ((entry->rt6i_flags & RTF_CACHE_GATEWAY) ==
1714 RTF_CACHE_GATEWAY &&
1715 ipv6_addr_equal(gateway,
1716 &entry->rt6i_gateway)) {
1717 rt6_remove_exception(bucket, rt6_ex);
1718 }
1719 }
1720 bucket++;
1721 }
1722 }
1723
1724 spin_unlock_bh(&rt6_exception_lock);
1725}
1726
Wei Wangc757faa2017-10-06 12:06:01 -07001727static void rt6_age_examine_exception(struct rt6_exception_bucket *bucket,
1728 struct rt6_exception *rt6_ex,
1729 struct fib6_gc_args *gc_args,
1730 unsigned long now)
1731{
1732 struct rt6_info *rt = rt6_ex->rt6i;
1733
Paolo Abeni1859bac2017-10-19 16:07:11 +02001734 /* we are pruning and obsoleting aged-out and non gateway exceptions
1735 * even if others have still references to them, so that on next
1736 * dst_check() such references can be dropped.
1737 * EXPIRES exceptions - e.g. pmtu-generated ones are pruned when
1738 * expired, independently from their aging, as per RFC 8201 section 4
1739 */
Wei Wang31afeb42018-01-26 11:40:17 -08001740 if (!(rt->rt6i_flags & RTF_EXPIRES)) {
1741 if (time_after_eq(now, rt->dst.lastuse + gc_args->timeout)) {
1742 RT6_TRACE("aging clone %p\n", rt);
1743 rt6_remove_exception(bucket, rt6_ex);
1744 return;
1745 }
1746 } else if (time_after(jiffies, rt->dst.expires)) {
1747 RT6_TRACE("purging expired route %p\n", rt);
Wei Wangc757faa2017-10-06 12:06:01 -07001748 rt6_remove_exception(bucket, rt6_ex);
1749 return;
Wei Wang31afeb42018-01-26 11:40:17 -08001750 }
1751
1752 if (rt->rt6i_flags & RTF_GATEWAY) {
Wei Wangc757faa2017-10-06 12:06:01 -07001753 struct neighbour *neigh;
1754 __u8 neigh_flags = 0;
1755
Eric Dumazet1bfa26f2018-03-23 07:56:58 -07001756 neigh = __ipv6_neigh_lookup_noref(rt->dst.dev, &rt->rt6i_gateway);
1757 if (neigh)
Wei Wangc757faa2017-10-06 12:06:01 -07001758 neigh_flags = neigh->flags;
Eric Dumazet1bfa26f2018-03-23 07:56:58 -07001759
Wei Wangc757faa2017-10-06 12:06:01 -07001760 if (!(neigh_flags & NTF_ROUTER)) {
1761 RT6_TRACE("purging route %p via non-router but gateway\n",
1762 rt);
1763 rt6_remove_exception(bucket, rt6_ex);
1764 return;
1765 }
1766 }
Wei Wang31afeb42018-01-26 11:40:17 -08001767
Wei Wangc757faa2017-10-06 12:06:01 -07001768 gc_args->more++;
1769}
1770
David Ahern8d1c8022018-04-17 17:33:26 -07001771void rt6_age_exceptions(struct fib6_info *rt,
Wei Wangc757faa2017-10-06 12:06:01 -07001772 struct fib6_gc_args *gc_args,
1773 unsigned long now)
1774{
1775 struct rt6_exception_bucket *bucket;
1776 struct rt6_exception *rt6_ex;
1777 struct hlist_node *tmp;
1778 int i;
1779
1780 if (!rcu_access_pointer(rt->rt6i_exception_bucket))
1781 return;
1782
Eric Dumazet1bfa26f2018-03-23 07:56:58 -07001783 rcu_read_lock_bh();
1784 spin_lock(&rt6_exception_lock);
Wei Wangc757faa2017-10-06 12:06:01 -07001785 bucket = rcu_dereference_protected(rt->rt6i_exception_bucket,
1786 lockdep_is_held(&rt6_exception_lock));
1787
1788 if (bucket) {
1789 for (i = 0; i < FIB6_EXCEPTION_BUCKET_SIZE; i++) {
1790 hlist_for_each_entry_safe(rt6_ex, tmp,
1791 &bucket->chain, hlist) {
1792 rt6_age_examine_exception(bucket, rt6_ex,
1793 gc_args, now);
1794 }
1795 bucket++;
1796 }
1797 }
Eric Dumazet1bfa26f2018-03-23 07:56:58 -07001798 spin_unlock(&rt6_exception_lock);
1799 rcu_read_unlock_bh();
Wei Wangc757faa2017-10-06 12:06:01 -07001800}
1801
David Ahern9ff74382016-06-13 13:44:19 -07001802struct rt6_info *ip6_pol_route(struct net *net, struct fib6_table *table,
David Ahernb75cc8f2018-03-02 08:32:17 -08001803 int oif, struct flowi6 *fl6,
1804 const struct sk_buff *skb, int flags)
Linus Torvalds1da177e2005-04-16 15:20:36 -07001805{
Martin KaFai Lau367efcb2014-10-20 13:42:45 -07001806 struct fib6_node *fn, *saved_fn;
David Ahern8d1c8022018-04-17 17:33:26 -07001807 struct fib6_info *f6i;
David Ahern23fb93a2018-04-17 17:33:23 -07001808 struct rt6_info *rt;
Thomas Grafc71099a2006-08-04 23:20:06 -07001809 int strict = 0;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001810
YOSHIFUJI Hideaki77d16f42006-08-23 17:25:05 -07001811 strict |= flags & RT6_LOOKUP_F_IFACE;
David Ahernd5d32e42016-10-24 12:27:23 -07001812 strict |= flags & RT6_LOOKUP_F_IGNORE_LINKSTATE;
Martin KaFai Lau367efcb2014-10-20 13:42:45 -07001813 if (net->ipv6.devconf_all->forwarding == 0)
1814 strict |= RT6_LOOKUP_F_REACHABLE;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001815
Wei Wang66f5d6c2017-10-06 12:06:10 -07001816 rcu_read_lock();
Linus Torvalds1da177e2005-04-16 15:20:36 -07001817
David S. Miller4c9483b2011-03-12 16:22:43 -05001818 fn = fib6_lookup(&table->tb6_root, &fl6->daddr, &fl6->saddr);
Martin KaFai Lau367efcb2014-10-20 13:42:45 -07001819 saved_fn = fn;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001820
David Ahernca254492015-10-12 11:47:10 -07001821 if (fl6->flowi6_flags & FLOWI_FLAG_SKIP_NH_OIF)
1822 oif = 0;
1823
Martin KaFai Laua3c00e42014-10-20 13:42:43 -07001824redo_rt6_select:
David Ahern23fb93a2018-04-17 17:33:23 -07001825 f6i = rt6_select(net, fn, oif, strict);
David Ahern93c2fb22018-04-18 15:38:59 -07001826 if (f6i->fib6_nsiblings)
David Ahern23fb93a2018-04-17 17:33:23 -07001827 f6i = rt6_multipath_select(net, f6i, fl6, oif, skb, strict);
1828 if (f6i == net->ipv6.fib6_null_entry) {
Martin KaFai Laua3c00e42014-10-20 13:42:43 -07001829 fn = fib6_backtrack(fn, &fl6->saddr);
1830 if (fn)
1831 goto redo_rt6_select;
Martin KaFai Lau367efcb2014-10-20 13:42:45 -07001832 else if (strict & RT6_LOOKUP_F_REACHABLE) {
1833 /* also consider unreachable route */
1834 strict &= ~RT6_LOOKUP_F_REACHABLE;
1835 fn = saved_fn;
1836 goto redo_rt6_select;
Martin KaFai Lau367efcb2014-10-20 13:42:45 -07001837 }
Martin KaFai Laua3c00e42014-10-20 13:42:43 -07001838 }
1839
David Ahern23fb93a2018-04-17 17:33:23 -07001840 if (f6i == net->ipv6.fib6_null_entry) {
David Ahern421842e2018-04-17 17:33:18 -07001841 rt = net->ipv6.ip6_null_entry;
Wei Wang66f5d6c2017-10-06 12:06:10 -07001842 rcu_read_unlock();
Wei Wangd3843fe2017-10-06 12:06:06 -07001843 dst_hold(&rt->dst);
Paolo Abenib65f1642017-10-19 09:31:43 +02001844 trace_fib6_table_lookup(net, rt, table, fl6);
Wei Wangd3843fe2017-10-06 12:06:06 -07001845 return rt;
David Ahern23fb93a2018-04-17 17:33:23 -07001846 }
1847
1848 /*Search through exception table */
1849 rt = rt6_find_cached_rt(f6i, &fl6->daddr, &fl6->saddr);
1850 if (rt) {
David Ahernd4ead6b2018-04-17 17:33:16 -07001851 if (ip6_hold_safe(net, &rt, true))
Wei Wangd3843fe2017-10-06 12:06:06 -07001852 dst_use_noref(&rt->dst, jiffies);
David Ahernd4ead6b2018-04-17 17:33:16 -07001853
Wei Wang66f5d6c2017-10-06 12:06:10 -07001854 rcu_read_unlock();
Paolo Abenib65f1642017-10-19 09:31:43 +02001855 trace_fib6_table_lookup(net, rt, table, fl6);
Martin KaFai Laud52d3992015-05-22 20:56:06 -07001856 return rt;
Martin KaFai Lau3da59bd2015-05-22 20:56:03 -07001857 } else if (unlikely((fl6->flowi6_flags & FLOWI_FLAG_KNOWN_NH) &&
David Ahern93c2fb22018-04-18 15:38:59 -07001858 !(f6i->fib6_flags & RTF_GATEWAY))) {
Martin KaFai Lau3da59bd2015-05-22 20:56:03 -07001859 /* Create a RTF_CACHE clone which will not be
1860 * owned by the fib6 tree. It is for the special case where
1861 * the daddr in the skb during the neighbor look-up is different
1862 * from the fl6->daddr used to look-up route here.
1863 */
Martin KaFai Lau3da59bd2015-05-22 20:56:03 -07001864 struct rt6_info *uncached_rt;
1865
David Ahern23fb93a2018-04-17 17:33:23 -07001866 uncached_rt = ip6_rt_cache_alloc(f6i, &fl6->daddr, NULL);
David Ahern4d85cd02018-04-20 15:37:59 -07001867
1868 rcu_read_unlock();
Martin KaFai Lau3da59bd2015-05-22 20:56:03 -07001869
Wei Wang1cfb71e2017-06-17 10:42:33 -07001870 if (uncached_rt) {
1871 /* Uncached_rt's refcnt is taken during ip6_rt_cache_alloc()
1872 * No need for another dst_hold()
1873 */
Martin KaFai Lau8d0b94a2015-05-22 20:56:04 -07001874 rt6_uncached_list_add(uncached_rt);
Wei Wang81eb8442017-10-06 12:06:11 -07001875 atomic_inc(&net->ipv6.rt6_stats->fib_rt_uncache);
Wei Wang1cfb71e2017-06-17 10:42:33 -07001876 } else {
Martin KaFai Lau3da59bd2015-05-22 20:56:03 -07001877 uncached_rt = net->ipv6.ip6_null_entry;
Wei Wang1cfb71e2017-06-17 10:42:33 -07001878 dst_hold(&uncached_rt->dst);
1879 }
David Ahernb8115802015-11-19 12:24:22 -08001880
Paolo Abenib65f1642017-10-19 09:31:43 +02001881 trace_fib6_table_lookup(net, uncached_rt, table, fl6);
Martin KaFai Lau3da59bd2015-05-22 20:56:03 -07001882 return uncached_rt;
Martin KaFai Lau3da59bd2015-05-22 20:56:03 -07001883
Martin KaFai Laud52d3992015-05-22 20:56:06 -07001884 } else {
1885 /* Get a percpu copy */
1886
1887 struct rt6_info *pcpu_rt;
1888
Eric Dumazet951f7882017-10-08 21:07:18 -07001889 local_bh_disable();
David Ahern23fb93a2018-04-17 17:33:23 -07001890 pcpu_rt = rt6_get_pcpu_route(f6i);
Martin KaFai Laud52d3992015-05-22 20:56:06 -07001891
David Ahern93531c62018-04-17 17:33:25 -07001892 if (!pcpu_rt)
1893 pcpu_rt = rt6_make_pcpu_route(net, f6i);
1894
Eric Dumazet951f7882017-10-08 21:07:18 -07001895 local_bh_enable();
1896 rcu_read_unlock();
Paolo Abenib65f1642017-10-19 09:31:43 +02001897 trace_fib6_table_lookup(net, pcpu_rt, table, fl6);
Martin KaFai Laud52d3992015-05-22 20:56:06 -07001898 return pcpu_rt;
1899 }
Thomas Grafc71099a2006-08-04 23:20:06 -07001900}
David Ahern9ff74382016-06-13 13:44:19 -07001901EXPORT_SYMBOL_GPL(ip6_pol_route);
Thomas Grafc71099a2006-08-04 23:20:06 -07001902
David Ahernb75cc8f2018-03-02 08:32:17 -08001903static struct rt6_info *ip6_pol_route_input(struct net *net,
1904 struct fib6_table *table,
1905 struct flowi6 *fl6,
1906 const struct sk_buff *skb,
1907 int flags)
Pavel Emelyanov4acad722007-10-15 13:02:51 -07001908{
David Ahernb75cc8f2018-03-02 08:32:17 -08001909 return ip6_pol_route(net, table, fl6->flowi6_iif, fl6, skb, flags);
Pavel Emelyanov4acad722007-10-15 13:02:51 -07001910}
1911
Mahesh Bandeward409b842016-09-16 12:59:08 -07001912struct dst_entry *ip6_route_input_lookup(struct net *net,
1913 struct net_device *dev,
David Ahernb75cc8f2018-03-02 08:32:17 -08001914 struct flowi6 *fl6,
1915 const struct sk_buff *skb,
1916 int flags)
Shmulik Ladkani72331bc2012-04-01 04:03:45 +00001917{
1918 if (rt6_need_strict(&fl6->daddr) && dev->type != ARPHRD_PIMREG)
1919 flags |= RT6_LOOKUP_F_IFACE;
1920
David Ahernb75cc8f2018-03-02 08:32:17 -08001921 return fib6_rule_lookup(net, fl6, skb, flags, ip6_pol_route_input);
Shmulik Ladkani72331bc2012-04-01 04:03:45 +00001922}
Mahesh Bandeward409b842016-09-16 12:59:08 -07001923EXPORT_SYMBOL_GPL(ip6_route_input_lookup);
Shmulik Ladkani72331bc2012-04-01 04:03:45 +00001924
Jakub Sitnicki23aebda2017-08-23 09:58:29 +02001925static void ip6_multipath_l3_keys(const struct sk_buff *skb,
Roopa Prabhu5e5d6fe2018-02-28 22:43:22 -05001926 struct flow_keys *keys,
1927 struct flow_keys *flkeys)
Jakub Sitnicki23aebda2017-08-23 09:58:29 +02001928{
1929 const struct ipv6hdr *outer_iph = ipv6_hdr(skb);
1930 const struct ipv6hdr *key_iph = outer_iph;
Roopa Prabhu5e5d6fe2018-02-28 22:43:22 -05001931 struct flow_keys *_flkeys = flkeys;
Jakub Sitnicki23aebda2017-08-23 09:58:29 +02001932 const struct ipv6hdr *inner_iph;
1933 const struct icmp6hdr *icmph;
1934 struct ipv6hdr _inner_iph;
1935
1936 if (likely(outer_iph->nexthdr != IPPROTO_ICMPV6))
1937 goto out;
1938
1939 icmph = icmp6_hdr(skb);
1940 if (icmph->icmp6_type != ICMPV6_DEST_UNREACH &&
1941 icmph->icmp6_type != ICMPV6_PKT_TOOBIG &&
1942 icmph->icmp6_type != ICMPV6_TIME_EXCEED &&
1943 icmph->icmp6_type != ICMPV6_PARAMPROB)
1944 goto out;
1945
1946 inner_iph = skb_header_pointer(skb,
1947 skb_transport_offset(skb) + sizeof(*icmph),
1948 sizeof(_inner_iph), &_inner_iph);
1949 if (!inner_iph)
1950 goto out;
1951
1952 key_iph = inner_iph;
Roopa Prabhu5e5d6fe2018-02-28 22:43:22 -05001953 _flkeys = NULL;
Jakub Sitnicki23aebda2017-08-23 09:58:29 +02001954out:
Roopa Prabhu5e5d6fe2018-02-28 22:43:22 -05001955 if (_flkeys) {
1956 keys->addrs.v6addrs.src = _flkeys->addrs.v6addrs.src;
1957 keys->addrs.v6addrs.dst = _flkeys->addrs.v6addrs.dst;
1958 keys->tags.flow_label = _flkeys->tags.flow_label;
1959 keys->basic.ip_proto = _flkeys->basic.ip_proto;
1960 } else {
1961 keys->addrs.v6addrs.src = key_iph->saddr;
1962 keys->addrs.v6addrs.dst = key_iph->daddr;
1963 keys->tags.flow_label = ip6_flowinfo(key_iph);
1964 keys->basic.ip_proto = key_iph->nexthdr;
1965 }
Jakub Sitnicki23aebda2017-08-23 09:58:29 +02001966}
1967
1968/* if skb is set it will be used and fl6 can be NULL */
David Ahernb4bac172018-03-02 08:32:18 -08001969u32 rt6_multipath_hash(const struct net *net, const struct flowi6 *fl6,
1970 const struct sk_buff *skb, struct flow_keys *flkeys)
Jakub Sitnicki23aebda2017-08-23 09:58:29 +02001971{
1972 struct flow_keys hash_keys;
David Ahern9a2a5372018-03-02 08:32:15 -08001973 u32 mhash;
Jakub Sitnicki23aebda2017-08-23 09:58:29 +02001974
David S. Millerbbfa0472018-03-12 11:09:33 -04001975 switch (ip6_multipath_hash_policy(net)) {
David Ahernb4bac172018-03-02 08:32:18 -08001976 case 0:
1977 memset(&hash_keys, 0, sizeof(hash_keys));
1978 hash_keys.control.addr_type = FLOW_DISSECTOR_KEY_IPV6_ADDRS;
1979 if (skb) {
1980 ip6_multipath_l3_keys(skb, &hash_keys, flkeys);
1981 } else {
1982 hash_keys.addrs.v6addrs.src = fl6->saddr;
1983 hash_keys.addrs.v6addrs.dst = fl6->daddr;
1984 hash_keys.tags.flow_label = (__force u32)fl6->flowlabel;
1985 hash_keys.basic.ip_proto = fl6->flowi6_proto;
1986 }
1987 break;
1988 case 1:
1989 if (skb) {
1990 unsigned int flag = FLOW_DISSECTOR_F_STOP_AT_ENCAP;
1991 struct flow_keys keys;
1992
1993 /* short-circuit if we already have L4 hash present */
1994 if (skb->l4_hash)
1995 return skb_get_hash_raw(skb) >> 1;
1996
1997 memset(&hash_keys, 0, sizeof(hash_keys));
1998
1999 if (!flkeys) {
2000 skb_flow_dissect_flow_keys(skb, &keys, flag);
2001 flkeys = &keys;
2002 }
2003 hash_keys.control.addr_type = FLOW_DISSECTOR_KEY_IPV6_ADDRS;
2004 hash_keys.addrs.v6addrs.src = flkeys->addrs.v6addrs.src;
2005 hash_keys.addrs.v6addrs.dst = flkeys->addrs.v6addrs.dst;
2006 hash_keys.ports.src = flkeys->ports.src;
2007 hash_keys.ports.dst = flkeys->ports.dst;
2008 hash_keys.basic.ip_proto = flkeys->basic.ip_proto;
2009 } else {
2010 memset(&hash_keys, 0, sizeof(hash_keys));
2011 hash_keys.control.addr_type = FLOW_DISSECTOR_KEY_IPV6_ADDRS;
2012 hash_keys.addrs.v6addrs.src = fl6->saddr;
2013 hash_keys.addrs.v6addrs.dst = fl6->daddr;
2014 hash_keys.ports.src = fl6->fl6_sport;
2015 hash_keys.ports.dst = fl6->fl6_dport;
2016 hash_keys.basic.ip_proto = fl6->flowi6_proto;
2017 }
2018 break;
Jakub Sitnicki23aebda2017-08-23 09:58:29 +02002019 }
David Ahern9a2a5372018-03-02 08:32:15 -08002020 mhash = flow_hash_from_keys(&hash_keys);
Jakub Sitnicki23aebda2017-08-23 09:58:29 +02002021
David Ahern9a2a5372018-03-02 08:32:15 -08002022 return mhash >> 1;
Jakub Sitnicki23aebda2017-08-23 09:58:29 +02002023}
2024
Thomas Grafc71099a2006-08-04 23:20:06 -07002025void ip6_route_input(struct sk_buff *skb)
2026{
Eric Dumazetb71d1d42011-04-22 04:53:02 +00002027 const struct ipv6hdr *iph = ipv6_hdr(skb);
YOSHIFUJI Hideakic346dca2008-03-25 21:47:49 +09002028 struct net *net = dev_net(skb->dev);
Thomas Grafadaa70b2006-10-13 15:01:03 -07002029 int flags = RT6_LOOKUP_F_HAS_SADDR;
Jiri Benc904af042015-08-20 13:56:31 +02002030 struct ip_tunnel_info *tun_info;
David S. Miller4c9483b2011-03-12 16:22:43 -05002031 struct flowi6 fl6 = {
David Aherne0d56fd2016-09-10 12:09:57 -07002032 .flowi6_iif = skb->dev->ifindex,
David S. Miller4c9483b2011-03-12 16:22:43 -05002033 .daddr = iph->daddr,
2034 .saddr = iph->saddr,
YOSHIFUJI Hideaki / 吉藤英明6502ca52013-01-13 05:01:51 +00002035 .flowlabel = ip6_flowinfo(iph),
David S. Miller4c9483b2011-03-12 16:22:43 -05002036 .flowi6_mark = skb->mark,
2037 .flowi6_proto = iph->nexthdr,
Thomas Grafc71099a2006-08-04 23:20:06 -07002038 };
Roopa Prabhu5e5d6fe2018-02-28 22:43:22 -05002039 struct flow_keys *flkeys = NULL, _flkeys;
Thomas Grafadaa70b2006-10-13 15:01:03 -07002040
Jiri Benc904af042015-08-20 13:56:31 +02002041 tun_info = skb_tunnel_info(skb);
Jiri Benc46fa0622015-08-28 20:48:19 +02002042 if (tun_info && !(tun_info->mode & IP_TUNNEL_INFO_TX))
Jiri Benc904af042015-08-20 13:56:31 +02002043 fl6.flowi6_tun_key.tun_id = tun_info->key.tun_id;
Roopa Prabhu5e5d6fe2018-02-28 22:43:22 -05002044
2045 if (fib6_rules_early_flow_dissect(net, skb, &fl6, &_flkeys))
2046 flkeys = &_flkeys;
2047
Jakub Sitnicki23aebda2017-08-23 09:58:29 +02002048 if (unlikely(fl6.flowi6_proto == IPPROTO_ICMPV6))
David Ahernb4bac172018-03-02 08:32:18 -08002049 fl6.mp_hash = rt6_multipath_hash(net, &fl6, skb, flkeys);
Jiri Benc06e9d042015-08-20 13:56:26 +02002050 skb_dst_drop(skb);
David Ahernb75cc8f2018-03-02 08:32:17 -08002051 skb_dst_set(skb,
2052 ip6_route_input_lookup(net, skb->dev, &fl6, skb, flags));
Thomas Grafc71099a2006-08-04 23:20:06 -07002053}
2054
David Ahernb75cc8f2018-03-02 08:32:17 -08002055static struct rt6_info *ip6_pol_route_output(struct net *net,
2056 struct fib6_table *table,
2057 struct flowi6 *fl6,
2058 const struct sk_buff *skb,
2059 int flags)
Thomas Grafc71099a2006-08-04 23:20:06 -07002060{
David Ahernb75cc8f2018-03-02 08:32:17 -08002061 return ip6_pol_route(net, table, fl6->flowi6_oif, fl6, skb, flags);
Thomas Grafc71099a2006-08-04 23:20:06 -07002062}
2063
Paolo Abeni6f21c962016-01-29 12:30:19 +01002064struct dst_entry *ip6_route_output_flags(struct net *net, const struct sock *sk,
2065 struct flowi6 *fl6, int flags)
Thomas Grafc71099a2006-08-04 23:20:06 -07002066{
David Ahernd46a9d62015-10-21 08:42:22 -07002067 bool any_src;
Thomas Grafc71099a2006-08-04 23:20:06 -07002068
David Ahern4c1feac2016-09-10 12:09:56 -07002069 if (rt6_need_strict(&fl6->daddr)) {
2070 struct dst_entry *dst;
2071
2072 dst = l3mdev_link_scope_lookup(net, fl6);
2073 if (dst)
2074 return dst;
2075 }
David Ahernca254492015-10-12 11:47:10 -07002076
Pavel Emelyanov1fb94892012-08-08 21:53:36 +00002077 fl6->flowi6_iif = LOOPBACK_IFINDEX;
David McCullough4dc27d1c2012-06-25 15:42:26 +00002078
David Ahernd46a9d62015-10-21 08:42:22 -07002079 any_src = ipv6_addr_any(&fl6->saddr);
David Ahern741a11d2015-09-28 10:12:13 -07002080 if ((sk && sk->sk_bound_dev_if) || rt6_need_strict(&fl6->daddr) ||
David Ahernd46a9d62015-10-21 08:42:22 -07002081 (fl6->flowi6_oif && any_src))
YOSHIFUJI Hideaki77d16f42006-08-23 17:25:05 -07002082 flags |= RT6_LOOKUP_F_IFACE;
Thomas Grafc71099a2006-08-04 23:20:06 -07002083
David Ahernd46a9d62015-10-21 08:42:22 -07002084 if (!any_src)
Thomas Grafadaa70b2006-10-13 15:01:03 -07002085 flags |= RT6_LOOKUP_F_HAS_SADDR;
YOSHIFUJI Hideaki / 吉藤英明0c9a2ac2010-03-07 00:14:44 +00002086 else if (sk)
2087 flags |= rt6_srcprefs2flags(inet6_sk(sk)->srcprefs);
Thomas Grafadaa70b2006-10-13 15:01:03 -07002088
David Ahernb75cc8f2018-03-02 08:32:17 -08002089 return fib6_rule_lookup(net, fl6, NULL, flags, ip6_pol_route_output);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002090}
Paolo Abeni6f21c962016-01-29 12:30:19 +01002091EXPORT_SYMBOL_GPL(ip6_route_output_flags);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002092
David S. Miller2774c132011-03-01 14:59:04 -08002093struct dst_entry *ip6_blackhole_route(struct net *net, struct dst_entry *dst_orig)
David S. Miller14e50e52007-05-24 18:17:54 -07002094{
David S. Miller5c1e6aa2011-04-28 14:13:38 -07002095 struct rt6_info *rt, *ort = (struct rt6_info *) dst_orig;
Wei Wang1dbe32522017-06-17 10:42:26 -07002096 struct net_device *loopback_dev = net->loopback_dev;
David S. Miller14e50e52007-05-24 18:17:54 -07002097 struct dst_entry *new = NULL;
2098
Wei Wang1dbe32522017-06-17 10:42:26 -07002099 rt = dst_alloc(&ip6_dst_blackhole_ops, loopback_dev, 1,
Steffen Klassert62cf27e2017-10-09 08:39:43 +02002100 DST_OBSOLETE_DEAD, 0);
David S. Miller14e50e52007-05-24 18:17:54 -07002101 if (rt) {
Martin KaFai Lau0a1f5962015-10-15 16:39:58 -07002102 rt6_info_init(rt);
Wei Wang81eb8442017-10-06 12:06:11 -07002103 atomic_inc(&net->ipv6.rt6_stats->fib_rt_alloc);
Martin KaFai Lau0a1f5962015-10-15 16:39:58 -07002104
Changli Gaod8d1f302010-06-10 23:31:35 -07002105 new = &rt->dst;
David S. Miller14e50e52007-05-24 18:17:54 -07002106 new->__use = 1;
Herbert Xu352e5122007-11-13 21:34:06 -08002107 new->input = dst_discard;
Eric W. Biedermanede20592015-10-07 16:48:47 -05002108 new->output = dst_discard_out;
David S. Miller14e50e52007-05-24 18:17:54 -07002109
Martin KaFai Lau0a1f5962015-10-15 16:39:58 -07002110 dst_copy_metrics(new, &ort->dst);
David S. Miller14e50e52007-05-24 18:17:54 -07002111
Wei Wang1dbe32522017-06-17 10:42:26 -07002112 rt->rt6i_idev = in6_dev_get(loopback_dev);
Alexey Dobriyan4e3fd7a2011-11-21 03:39:03 +00002113 rt->rt6i_gateway = ort->rt6i_gateway;
Martin KaFai Lau0a1f5962015-10-15 16:39:58 -07002114 rt->rt6i_flags = ort->rt6i_flags & ~RTF_PCPU;
David S. Miller14e50e52007-05-24 18:17:54 -07002115
2116 memcpy(&rt->rt6i_dst, &ort->rt6i_dst, sizeof(struct rt6key));
2117#ifdef CONFIG_IPV6_SUBTREES
2118 memcpy(&rt->rt6i_src, &ort->rt6i_src, sizeof(struct rt6key));
2119#endif
David S. Miller14e50e52007-05-24 18:17:54 -07002120 }
2121
David S. Miller69ead7a2011-03-01 14:45:33 -08002122 dst_release(dst_orig);
2123 return new ? new : ERR_PTR(-ENOMEM);
David S. Miller14e50e52007-05-24 18:17:54 -07002124}
David S. Miller14e50e52007-05-24 18:17:54 -07002125
Linus Torvalds1da177e2005-04-16 15:20:36 -07002126/*
2127 * Destination cache support functions
2128 */
2129
David Ahern8d1c8022018-04-17 17:33:26 -07002130static bool fib6_check(struct fib6_info *f6i, u32 cookie)
David Ahern93531c62018-04-17 17:33:25 -07002131{
2132 u32 rt_cookie = 0;
2133
David Ahern8ae86972018-04-20 15:38:03 -07002134 if (!fib6_get_cookie_safe(f6i, &rt_cookie) || rt_cookie != cookie)
David Ahern93531c62018-04-17 17:33:25 -07002135 return false;
2136
2137 if (fib6_check_expired(f6i))
2138 return false;
2139
2140 return true;
2141}
2142
David Aherna68886a2018-04-20 15:38:02 -07002143static struct dst_entry *rt6_check(struct rt6_info *rt,
2144 struct fib6_info *from,
2145 u32 cookie)
Martin KaFai Lau3da59bd2015-05-22 20:56:03 -07002146{
Steffen Klassert36143642017-08-25 09:05:42 +02002147 u32 rt_cookie = 0;
Wei Wangc5cff852017-08-21 09:47:10 -07002148
David Aherna68886a2018-04-20 15:38:02 -07002149 if ((from && !fib6_get_cookie_safe(from, &rt_cookie)) ||
David Ahern93531c62018-04-17 17:33:25 -07002150 rt_cookie != cookie)
Martin KaFai Lau3da59bd2015-05-22 20:56:03 -07002151 return NULL;
2152
2153 if (rt6_check_expired(rt))
2154 return NULL;
2155
2156 return &rt->dst;
2157}
2158
David Aherna68886a2018-04-20 15:38:02 -07002159static struct dst_entry *rt6_dst_from_check(struct rt6_info *rt,
2160 struct fib6_info *from,
2161 u32 cookie)
Martin KaFai Lau3da59bd2015-05-22 20:56:03 -07002162{
Martin KaFai Lau5973fb12015-11-11 11:51:07 -08002163 if (!__rt6_check_expired(rt) &&
2164 rt->dst.obsolete == DST_OBSOLETE_FORCE_CHK &&
David Aherna68886a2018-04-20 15:38:02 -07002165 fib6_check(from, cookie))
Martin KaFai Lau3da59bd2015-05-22 20:56:03 -07002166 return &rt->dst;
2167 else
2168 return NULL;
2169}
2170
Linus Torvalds1da177e2005-04-16 15:20:36 -07002171static struct dst_entry *ip6_dst_check(struct dst_entry *dst, u32 cookie)
2172{
David Aherna87b7dc2018-04-20 15:38:00 -07002173 struct dst_entry *dst_ret;
David Aherna68886a2018-04-20 15:38:02 -07002174 struct fib6_info *from;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002175 struct rt6_info *rt;
2176
David Aherna87b7dc2018-04-20 15:38:00 -07002177 rt = container_of(dst, struct rt6_info, dst);
2178
2179 rcu_read_lock();
Linus Torvalds1da177e2005-04-16 15:20:36 -07002180
Nicolas Dichtel6f3118b2012-09-10 22:09:46 +00002181 /* All IPV6 dsts are created with ->obsolete set to the value
2182 * DST_OBSOLETE_FORCE_CHK which forces validation calls down
2183 * into this function always.
2184 */
Hannes Frederic Sowae3bc10b2013-10-24 07:48:24 +02002185
David Aherna68886a2018-04-20 15:38:02 -07002186 from = rcu_dereference(rt->from);
2187
2188 if (from && (rt->rt6i_flags & RTF_PCPU ||
2189 unlikely(!list_empty(&rt->rt6i_uncached))))
2190 dst_ret = rt6_dst_from_check(rt, from, cookie);
Martin KaFai Lau3da59bd2015-05-22 20:56:03 -07002191 else
David Aherna68886a2018-04-20 15:38:02 -07002192 dst_ret = rt6_check(rt, from, cookie);
David Aherna87b7dc2018-04-20 15:38:00 -07002193
2194 rcu_read_unlock();
2195
2196 return dst_ret;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002197}
2198
2199static struct dst_entry *ip6_negative_advice(struct dst_entry *dst)
2200{
2201 struct rt6_info *rt = (struct rt6_info *) dst;
2202
2203 if (rt) {
YOSHIFUJI Hideaki / 吉藤英明54c1a852010-03-28 07:15:45 +00002204 if (rt->rt6i_flags & RTF_CACHE) {
David Ahernc3c14da2018-04-23 11:32:06 -07002205 rcu_read_lock();
YOSHIFUJI Hideaki / 吉藤英明54c1a852010-03-28 07:15:45 +00002206 if (rt6_check_expired(rt)) {
David Ahern93531c62018-04-17 17:33:25 -07002207 rt6_remove_exception_rt(rt);
YOSHIFUJI Hideaki / 吉藤英明54c1a852010-03-28 07:15:45 +00002208 dst = NULL;
2209 }
David Ahernc3c14da2018-04-23 11:32:06 -07002210 rcu_read_unlock();
YOSHIFUJI Hideaki / 吉藤英明54c1a852010-03-28 07:15:45 +00002211 } else {
Linus Torvalds1da177e2005-04-16 15:20:36 -07002212 dst_release(dst);
YOSHIFUJI Hideaki / 吉藤英明54c1a852010-03-28 07:15:45 +00002213 dst = NULL;
2214 }
Linus Torvalds1da177e2005-04-16 15:20:36 -07002215 }
YOSHIFUJI Hideaki / 吉藤英明54c1a852010-03-28 07:15:45 +00002216 return dst;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002217}
2218
2219static void ip6_link_failure(struct sk_buff *skb)
2220{
2221 struct rt6_info *rt;
2222
Alexey Dobriyan3ffe5332010-02-18 08:25:24 +00002223 icmpv6_send(skb, ICMPV6_DEST_UNREACH, ICMPV6_ADDR_UNREACH, 0);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002224
Eric Dumazetadf30902009-06-02 05:19:30 +00002225 rt = (struct rt6_info *) skb_dst(skb);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002226 if (rt) {
David Ahern8a14e462018-04-23 11:32:07 -07002227 rcu_read_lock();
Hannes Frederic Sowa1eb4f752013-07-10 23:00:57 +02002228 if (rt->rt6i_flags & RTF_CACHE) {
Wei Wangad65a2f2017-06-17 10:42:35 -07002229 if (dst_hold_safe(&rt->dst))
David Ahern93531c62018-04-17 17:33:25 -07002230 rt6_remove_exception_rt(rt);
David Aherna68886a2018-04-20 15:38:02 -07002231 } else {
2232 struct fib6_info *from;
Wei Wangc5cff852017-08-21 09:47:10 -07002233 struct fib6_node *fn;
2234
David Aherna68886a2018-04-20 15:38:02 -07002235 from = rcu_dereference(rt->from);
2236 if (from) {
2237 fn = rcu_dereference(from->fib6_node);
2238 if (fn && (rt->rt6i_flags & RTF_DEFAULT))
2239 fn->fn_sernum = -1;
2240 }
Hannes Frederic Sowa1eb4f752013-07-10 23:00:57 +02002241 }
David Ahern8a14e462018-04-23 11:32:07 -07002242 rcu_read_unlock();
Linus Torvalds1da177e2005-04-16 15:20:36 -07002243 }
2244}
2245
David Ahern6a3e0302018-04-20 15:37:57 -07002246static void rt6_update_expires(struct rt6_info *rt0, int timeout)
2247{
David Aherna68886a2018-04-20 15:38:02 -07002248 if (!(rt0->rt6i_flags & RTF_EXPIRES)) {
2249 struct fib6_info *from;
2250
2251 rcu_read_lock();
2252 from = rcu_dereference(rt0->from);
2253 if (from)
2254 rt0->dst.expires = from->expires;
2255 rcu_read_unlock();
2256 }
David Ahern6a3e0302018-04-20 15:37:57 -07002257
2258 dst_set_expires(&rt0->dst, timeout);
2259 rt0->rt6i_flags |= RTF_EXPIRES;
2260}
2261
Martin KaFai Lau45e4fd22015-05-22 20:56:00 -07002262static void rt6_do_update_pmtu(struct rt6_info *rt, u32 mtu)
2263{
2264 struct net *net = dev_net(rt->dst.dev);
2265
David Ahernd4ead6b2018-04-17 17:33:16 -07002266 dst_metric_set(&rt->dst, RTAX_MTU, mtu);
Martin KaFai Lau45e4fd22015-05-22 20:56:00 -07002267 rt->rt6i_flags |= RTF_MODIFIED;
Martin KaFai Lau45e4fd22015-05-22 20:56:00 -07002268 rt6_update_expires(rt, net->ipv6.sysctl.ip6_rt_mtu_expires);
2269}
2270
Martin KaFai Lau0d3f6d22015-11-11 11:51:06 -08002271static bool rt6_cache_allowed_for_pmtu(const struct rt6_info *rt)
2272{
David Aherna68886a2018-04-20 15:38:02 -07002273 bool from_set;
2274
2275 rcu_read_lock();
2276 from_set = !!rcu_dereference(rt->from);
2277 rcu_read_unlock();
2278
Martin KaFai Lau0d3f6d22015-11-11 11:51:06 -08002279 return !(rt->rt6i_flags & RTF_CACHE) &&
David Aherna68886a2018-04-20 15:38:02 -07002280 (rt->rt6i_flags & RTF_PCPU || from_set);
Martin KaFai Lau0d3f6d22015-11-11 11:51:06 -08002281}
2282
Martin KaFai Lau45e4fd22015-05-22 20:56:00 -07002283static void __ip6_rt_update_pmtu(struct dst_entry *dst, const struct sock *sk,
2284 const struct ipv6hdr *iph, u32 mtu)
Linus Torvalds1da177e2005-04-16 15:20:36 -07002285{
Julian Anastasov0dec8792017-02-06 23:14:16 +02002286 const struct in6_addr *daddr, *saddr;
Ian Morris67ba4152014-08-24 21:53:10 +01002287 struct rt6_info *rt6 = (struct rt6_info *)dst;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002288
Martin KaFai Lau45e4fd22015-05-22 20:56:00 -07002289 if (rt6->rt6i_flags & RTF_LOCAL)
2290 return;
2291
Xin Long19bda362016-10-28 18:18:01 +08002292 if (dst_metric_locked(dst, RTAX_MTU))
2293 return;
2294
Julian Anastasov0dec8792017-02-06 23:14:16 +02002295 if (iph) {
2296 daddr = &iph->daddr;
2297 saddr = &iph->saddr;
2298 } else if (sk) {
2299 daddr = &sk->sk_v6_daddr;
2300 saddr = &inet6_sk(sk)->saddr;
2301 } else {
2302 daddr = NULL;
2303 saddr = NULL;
2304 }
2305 dst_confirm_neigh(dst, daddr);
Martin KaFai Lau45e4fd22015-05-22 20:56:00 -07002306 mtu = max_t(u32, mtu, IPV6_MIN_MTU);
2307 if (mtu >= dst_mtu(dst))
2308 return;
David S. Miller81aded22012-06-15 14:54:11 -07002309
Martin KaFai Lau0d3f6d22015-11-11 11:51:06 -08002310 if (!rt6_cache_allowed_for_pmtu(rt6)) {
Martin KaFai Lau45e4fd22015-05-22 20:56:00 -07002311 rt6_do_update_pmtu(rt6, mtu);
Wei Wang2b760fc2017-10-06 12:06:03 -07002312 /* update rt6_ex->stamp for cache */
2313 if (rt6->rt6i_flags & RTF_CACHE)
2314 rt6_update_exception_stamp_rt(rt6);
Julian Anastasov0dec8792017-02-06 23:14:16 +02002315 } else if (daddr) {
David Aherna68886a2018-04-20 15:38:02 -07002316 struct fib6_info *from;
Martin KaFai Lau45e4fd22015-05-22 20:56:00 -07002317 struct rt6_info *nrt6;
Hagen Paul Pfeifer9d289712015-01-15 22:34:25 +01002318
David Ahern4d85cd02018-04-20 15:37:59 -07002319 rcu_read_lock();
David Aherna68886a2018-04-20 15:38:02 -07002320 from = rcu_dereference(rt6->from);
2321 nrt6 = ip6_rt_cache_alloc(from, daddr, saddr);
Martin KaFai Lau45e4fd22015-05-22 20:56:00 -07002322 if (nrt6) {
2323 rt6_do_update_pmtu(nrt6, mtu);
David Aherna68886a2018-04-20 15:38:02 -07002324 if (rt6_insert_exception(nrt6, from))
Wei Wang2b760fc2017-10-06 12:06:03 -07002325 dst_release_immediate(&nrt6->dst);
Martin KaFai Lau45e4fd22015-05-22 20:56:00 -07002326 }
David Aherna68886a2018-04-20 15:38:02 -07002327 rcu_read_unlock();
Linus Torvalds1da177e2005-04-16 15:20:36 -07002328 }
2329}
2330
Martin KaFai Lau45e4fd22015-05-22 20:56:00 -07002331static void ip6_rt_update_pmtu(struct dst_entry *dst, struct sock *sk,
2332 struct sk_buff *skb, u32 mtu)
2333{
2334 __ip6_rt_update_pmtu(dst, sk, skb ? ipv6_hdr(skb) : NULL, mtu);
2335}
2336
David S. Miller42ae66c2012-06-15 20:01:57 -07002337void ip6_update_pmtu(struct sk_buff *skb, struct net *net, __be32 mtu,
Lorenzo Colittie2d118a2016-11-04 02:23:43 +09002338 int oif, u32 mark, kuid_t uid)
David S. Miller81aded22012-06-15 14:54:11 -07002339{
2340 const struct ipv6hdr *iph = (struct ipv6hdr *) skb->data;
2341 struct dst_entry *dst;
2342 struct flowi6 fl6;
2343
2344 memset(&fl6, 0, sizeof(fl6));
2345 fl6.flowi6_oif = oif;
Lorenzo Colitti1b3c61d2014-05-13 10:17:34 -07002346 fl6.flowi6_mark = mark ? mark : IP6_REPLY_MARK(net, skb->mark);
David S. Miller81aded22012-06-15 14:54:11 -07002347 fl6.daddr = iph->daddr;
2348 fl6.saddr = iph->saddr;
YOSHIFUJI Hideaki / 吉藤英明6502ca52013-01-13 05:01:51 +00002349 fl6.flowlabel = ip6_flowinfo(iph);
Lorenzo Colittie2d118a2016-11-04 02:23:43 +09002350 fl6.flowi6_uid = uid;
David S. Miller81aded22012-06-15 14:54:11 -07002351
2352 dst = ip6_route_output(net, NULL, &fl6);
2353 if (!dst->error)
Martin KaFai Lau45e4fd22015-05-22 20:56:00 -07002354 __ip6_rt_update_pmtu(dst, NULL, iph, ntohl(mtu));
David S. Miller81aded22012-06-15 14:54:11 -07002355 dst_release(dst);
2356}
2357EXPORT_SYMBOL_GPL(ip6_update_pmtu);
2358
2359void ip6_sk_update_pmtu(struct sk_buff *skb, struct sock *sk, __be32 mtu)
2360{
Martin KaFai Lau33c162a2016-04-11 15:29:36 -07002361 struct dst_entry *dst;
2362
David S. Miller81aded22012-06-15 14:54:11 -07002363 ip6_update_pmtu(skb, sock_net(sk), mtu,
Lorenzo Colittie2d118a2016-11-04 02:23:43 +09002364 sk->sk_bound_dev_if, sk->sk_mark, sk->sk_uid);
Martin KaFai Lau33c162a2016-04-11 15:29:36 -07002365
2366 dst = __sk_dst_get(sk);
2367 if (!dst || !dst->obsolete ||
2368 dst->ops->check(dst, inet6_sk(sk)->dst_cookie))
2369 return;
2370
2371 bh_lock_sock(sk);
2372 if (!sock_owned_by_user(sk) && !ipv6_addr_v4mapped(&sk->sk_v6_daddr))
2373 ip6_datagram_dst_update(sk, false);
2374 bh_unlock_sock(sk);
David S. Miller81aded22012-06-15 14:54:11 -07002375}
2376EXPORT_SYMBOL_GPL(ip6_sk_update_pmtu);
2377
Alexey Kodanev7d6850f2018-04-03 15:00:07 +03002378void ip6_sk_dst_store_flow(struct sock *sk, struct dst_entry *dst,
2379 const struct flowi6 *fl6)
2380{
2381#ifdef CONFIG_IPV6_SUBTREES
2382 struct ipv6_pinfo *np = inet6_sk(sk);
2383#endif
2384
2385 ip6_dst_store(sk, dst,
2386 ipv6_addr_equal(&fl6->daddr, &sk->sk_v6_daddr) ?
2387 &sk->sk_v6_daddr : NULL,
2388#ifdef CONFIG_IPV6_SUBTREES
2389 ipv6_addr_equal(&fl6->saddr, &np->saddr) ?
2390 &np->saddr :
2391#endif
2392 NULL);
2393}
2394
Duan Jiongb55b76b2013-09-04 19:44:21 +08002395/* Handle redirects */
2396struct ip6rd_flowi {
2397 struct flowi6 fl6;
2398 struct in6_addr gateway;
2399};
2400
2401static struct rt6_info *__ip6_route_redirect(struct net *net,
2402 struct fib6_table *table,
2403 struct flowi6 *fl6,
David Ahernb75cc8f2018-03-02 08:32:17 -08002404 const struct sk_buff *skb,
Duan Jiongb55b76b2013-09-04 19:44:21 +08002405 int flags)
2406{
2407 struct ip6rd_flowi *rdfl = (struct ip6rd_flowi *)fl6;
David Ahern23fb93a2018-04-17 17:33:23 -07002408 struct rt6_info *ret = NULL, *rt_cache;
David Ahern8d1c8022018-04-17 17:33:26 -07002409 struct fib6_info *rt;
Duan Jiongb55b76b2013-09-04 19:44:21 +08002410 struct fib6_node *fn;
2411
2412 /* Get the "current" route for this destination and
Alexander Alemayhu67c408c2017-01-07 23:53:00 +01002413 * check if the redirect has come from appropriate router.
Duan Jiongb55b76b2013-09-04 19:44:21 +08002414 *
2415 * RFC 4861 specifies that redirects should only be
2416 * accepted if they come from the nexthop to the target.
2417 * Due to the way the routes are chosen, this notion
2418 * is a bit fuzzy and one might need to check all possible
2419 * routes.
2420 */
2421
Wei Wang66f5d6c2017-10-06 12:06:10 -07002422 rcu_read_lock();
Duan Jiongb55b76b2013-09-04 19:44:21 +08002423 fn = fib6_lookup(&table->tb6_root, &fl6->daddr, &fl6->saddr);
2424restart:
Wei Wang66f5d6c2017-10-06 12:06:10 -07002425 for_each_fib6_node_rt_rcu(fn) {
David Ahern5e670d82018-04-17 17:33:14 -07002426 if (rt->fib6_nh.nh_flags & RTNH_F_DEAD)
Ido Schimmel8067bb82018-01-07 12:45:09 +02002427 continue;
David Ahern14895682018-04-17 17:33:17 -07002428 if (fib6_check_expired(rt))
Duan Jiongb55b76b2013-09-04 19:44:21 +08002429 continue;
David Ahern93c2fb22018-04-18 15:38:59 -07002430 if (rt->fib6_flags & RTF_REJECT)
Duan Jiongb55b76b2013-09-04 19:44:21 +08002431 break;
David Ahern93c2fb22018-04-18 15:38:59 -07002432 if (!(rt->fib6_flags & RTF_GATEWAY))
Duan Jiongb55b76b2013-09-04 19:44:21 +08002433 continue;
David Ahern5e670d82018-04-17 17:33:14 -07002434 if (fl6->flowi6_oif != rt->fib6_nh.nh_dev->ifindex)
Duan Jiongb55b76b2013-09-04 19:44:21 +08002435 continue;
Wei Wang2b760fc2017-10-06 12:06:03 -07002436 /* rt_cache's gateway might be different from its 'parent'
2437 * in the case of an ip redirect.
2438 * So we keep searching in the exception table if the gateway
2439 * is different.
2440 */
David Ahern5e670d82018-04-17 17:33:14 -07002441 if (!ipv6_addr_equal(&rdfl->gateway, &rt->fib6_nh.nh_gw)) {
Wei Wang2b760fc2017-10-06 12:06:03 -07002442 rt_cache = rt6_find_cached_rt(rt,
2443 &fl6->daddr,
2444 &fl6->saddr);
2445 if (rt_cache &&
2446 ipv6_addr_equal(&rdfl->gateway,
2447 &rt_cache->rt6i_gateway)) {
David Ahern23fb93a2018-04-17 17:33:23 -07002448 ret = rt_cache;
Wei Wang2b760fc2017-10-06 12:06:03 -07002449 break;
2450 }
Duan Jiongb55b76b2013-09-04 19:44:21 +08002451 continue;
Wei Wang2b760fc2017-10-06 12:06:03 -07002452 }
Duan Jiongb55b76b2013-09-04 19:44:21 +08002453 break;
2454 }
2455
2456 if (!rt)
David Ahern421842e2018-04-17 17:33:18 -07002457 rt = net->ipv6.fib6_null_entry;
David Ahern93c2fb22018-04-18 15:38:59 -07002458 else if (rt->fib6_flags & RTF_REJECT) {
David Ahern23fb93a2018-04-17 17:33:23 -07002459 ret = net->ipv6.ip6_null_entry;
Martin KaFai Laub0a1ba52015-01-20 19:16:02 -08002460 goto out;
2461 }
2462
David Ahern421842e2018-04-17 17:33:18 -07002463 if (rt == net->ipv6.fib6_null_entry) {
Martin KaFai Laua3c00e42014-10-20 13:42:43 -07002464 fn = fib6_backtrack(fn, &fl6->saddr);
2465 if (fn)
2466 goto restart;
Duan Jiongb55b76b2013-09-04 19:44:21 +08002467 }
Martin KaFai Laua3c00e42014-10-20 13:42:43 -07002468
Martin KaFai Laub0a1ba52015-01-20 19:16:02 -08002469out:
David Ahern23fb93a2018-04-17 17:33:23 -07002470 if (ret)
2471 dst_hold(&ret->dst);
2472 else
2473 ret = ip6_create_rt_rcu(rt);
Duan Jiongb55b76b2013-09-04 19:44:21 +08002474
Wei Wang66f5d6c2017-10-06 12:06:10 -07002475 rcu_read_unlock();
Duan Jiongb55b76b2013-09-04 19:44:21 +08002476
David Ahern23fb93a2018-04-17 17:33:23 -07002477 trace_fib6_table_lookup(net, ret, table, fl6);
2478 return ret;
Duan Jiongb55b76b2013-09-04 19:44:21 +08002479};
2480
2481static struct dst_entry *ip6_route_redirect(struct net *net,
David Ahernb75cc8f2018-03-02 08:32:17 -08002482 const struct flowi6 *fl6,
2483 const struct sk_buff *skb,
2484 const struct in6_addr *gateway)
Duan Jiongb55b76b2013-09-04 19:44:21 +08002485{
2486 int flags = RT6_LOOKUP_F_HAS_SADDR;
2487 struct ip6rd_flowi rdfl;
2488
2489 rdfl.fl6 = *fl6;
2490 rdfl.gateway = *gateway;
2491
David Ahernb75cc8f2018-03-02 08:32:17 -08002492 return fib6_rule_lookup(net, &rdfl.fl6, skb,
Duan Jiongb55b76b2013-09-04 19:44:21 +08002493 flags, __ip6_route_redirect);
2494}
2495
Lorenzo Colittie2d118a2016-11-04 02:23:43 +09002496void ip6_redirect(struct sk_buff *skb, struct net *net, int oif, u32 mark,
2497 kuid_t uid)
David S. Miller3a5ad2e2012-07-12 00:08:07 -07002498{
2499 const struct ipv6hdr *iph = (struct ipv6hdr *) skb->data;
2500 struct dst_entry *dst;
2501 struct flowi6 fl6;
2502
2503 memset(&fl6, 0, sizeof(fl6));
Julian Anastasove374c612014-04-28 10:51:56 +03002504 fl6.flowi6_iif = LOOPBACK_IFINDEX;
David S. Miller3a5ad2e2012-07-12 00:08:07 -07002505 fl6.flowi6_oif = oif;
2506 fl6.flowi6_mark = mark;
David S. Miller3a5ad2e2012-07-12 00:08:07 -07002507 fl6.daddr = iph->daddr;
2508 fl6.saddr = iph->saddr;
YOSHIFUJI Hideaki / 吉藤英明6502ca52013-01-13 05:01:51 +00002509 fl6.flowlabel = ip6_flowinfo(iph);
Lorenzo Colittie2d118a2016-11-04 02:23:43 +09002510 fl6.flowi6_uid = uid;
David S. Miller3a5ad2e2012-07-12 00:08:07 -07002511
David Ahernb75cc8f2018-03-02 08:32:17 -08002512 dst = ip6_route_redirect(net, &fl6, skb, &ipv6_hdr(skb)->saddr);
Duan Jiongb55b76b2013-09-04 19:44:21 +08002513 rt6_do_redirect(dst, NULL, skb);
David S. Miller3a5ad2e2012-07-12 00:08:07 -07002514 dst_release(dst);
2515}
2516EXPORT_SYMBOL_GPL(ip6_redirect);
2517
Duan Jiongc92a59e2013-08-22 12:07:35 +08002518void ip6_redirect_no_header(struct sk_buff *skb, struct net *net, int oif,
2519 u32 mark)
2520{
2521 const struct ipv6hdr *iph = ipv6_hdr(skb);
2522 const struct rd_msg *msg = (struct rd_msg *)icmp6_hdr(skb);
2523 struct dst_entry *dst;
2524 struct flowi6 fl6;
2525
2526 memset(&fl6, 0, sizeof(fl6));
Julian Anastasove374c612014-04-28 10:51:56 +03002527 fl6.flowi6_iif = LOOPBACK_IFINDEX;
Duan Jiongc92a59e2013-08-22 12:07:35 +08002528 fl6.flowi6_oif = oif;
2529 fl6.flowi6_mark = mark;
Duan Jiongc92a59e2013-08-22 12:07:35 +08002530 fl6.daddr = msg->dest;
2531 fl6.saddr = iph->daddr;
Lorenzo Colittie2d118a2016-11-04 02:23:43 +09002532 fl6.flowi6_uid = sock_net_uid(net, NULL);
Duan Jiongc92a59e2013-08-22 12:07:35 +08002533
David Ahernb75cc8f2018-03-02 08:32:17 -08002534 dst = ip6_route_redirect(net, &fl6, skb, &iph->saddr);
Duan Jiongb55b76b2013-09-04 19:44:21 +08002535 rt6_do_redirect(dst, NULL, skb);
Duan Jiongc92a59e2013-08-22 12:07:35 +08002536 dst_release(dst);
2537}
2538
David S. Miller3a5ad2e2012-07-12 00:08:07 -07002539void ip6_sk_redirect(struct sk_buff *skb, struct sock *sk)
2540{
Lorenzo Colittie2d118a2016-11-04 02:23:43 +09002541 ip6_redirect(skb, sock_net(sk), sk->sk_bound_dev_if, sk->sk_mark,
2542 sk->sk_uid);
David S. Miller3a5ad2e2012-07-12 00:08:07 -07002543}
2544EXPORT_SYMBOL_GPL(ip6_sk_redirect);
2545
David S. Miller0dbaee32010-12-13 12:52:14 -08002546static unsigned int ip6_default_advmss(const struct dst_entry *dst)
Linus Torvalds1da177e2005-04-16 15:20:36 -07002547{
David S. Miller0dbaee32010-12-13 12:52:14 -08002548 struct net_device *dev = dst->dev;
2549 unsigned int mtu = dst_mtu(dst);
2550 struct net *net = dev_net(dev);
2551
Linus Torvalds1da177e2005-04-16 15:20:36 -07002552 mtu -= sizeof(struct ipv6hdr) + sizeof(struct tcphdr);
2553
Daniel Lezcano55786892008-03-04 13:47:47 -08002554 if (mtu < net->ipv6.sysctl.ip6_rt_min_advmss)
2555 mtu = net->ipv6.sysctl.ip6_rt_min_advmss;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002556
2557 /*
YOSHIFUJI Hideaki1ab14572007-02-09 23:24:49 +09002558 * Maximal non-jumbo IPv6 payload is IPV6_MAXPLEN and
2559 * corresponding MSS is IPV6_MAXPLEN - tcp_header_size.
2560 * IPV6_MAXPLEN is also valid and means: "any MSS,
Linus Torvalds1da177e2005-04-16 15:20:36 -07002561 * rely only on pmtu discovery"
2562 */
2563 if (mtu > IPV6_MAXPLEN - sizeof(struct tcphdr))
2564 mtu = IPV6_MAXPLEN;
2565 return mtu;
2566}
2567
Steffen Klassertebb762f2011-11-23 02:12:51 +00002568static unsigned int ip6_mtu(const struct dst_entry *dst)
David S. Millerd33e4552010-12-14 13:01:14 -08002569{
David S. Millerd33e4552010-12-14 13:01:14 -08002570 struct inet6_dev *idev;
David Ahernd4ead6b2018-04-17 17:33:16 -07002571 unsigned int mtu;
Steffen Klassert618f9bc2011-11-23 02:13:31 +00002572
Martin KaFai Lau4b32b5a2015-04-28 13:03:06 -07002573 mtu = dst_metric_raw(dst, RTAX_MTU);
2574 if (mtu)
2575 goto out;
2576
Steffen Klassert618f9bc2011-11-23 02:13:31 +00002577 mtu = IPV6_MIN_MTU;
David S. Millerd33e4552010-12-14 13:01:14 -08002578
2579 rcu_read_lock();
2580 idev = __in6_dev_get(dst->dev);
2581 if (idev)
2582 mtu = idev->cnf.mtu6;
2583 rcu_read_unlock();
2584
Eric Dumazet30f78d82014-04-10 21:23:36 -07002585out:
Roopa Prabhu14972cb2016-08-24 20:10:43 -07002586 mtu = min_t(unsigned int, mtu, IP6_MAX_MTU);
2587
2588 return mtu - lwtunnel_headroom(dst->lwtstate, mtu);
David S. Millerd33e4552010-12-14 13:01:14 -08002589}
2590
YOSHIFUJI Hideaki3b009442007-12-06 16:11:48 -08002591struct dst_entry *icmp6_dst_alloc(struct net_device *dev,
David S. Miller87a11572011-12-06 17:04:13 -05002592 struct flowi6 *fl6)
Linus Torvalds1da177e2005-04-16 15:20:36 -07002593{
David S. Miller87a11572011-12-06 17:04:13 -05002594 struct dst_entry *dst;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002595 struct rt6_info *rt;
2596 struct inet6_dev *idev = in6_dev_get(dev);
YOSHIFUJI Hideakic346dca2008-03-25 21:47:49 +09002597 struct net *net = dev_net(dev);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002598
David S. Miller38308472011-12-03 18:02:47 -05002599 if (unlikely(!idev))
Eric Dumazet122bdf62012-03-14 21:13:11 +00002600 return ERR_PTR(-ENODEV);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002601
Martin KaFai Lauad706862015-08-14 11:05:52 -07002602 rt = ip6_dst_alloc(net, dev, 0);
David S. Miller38308472011-12-03 18:02:47 -05002603 if (unlikely(!rt)) {
Linus Torvalds1da177e2005-04-16 15:20:36 -07002604 in6_dev_put(idev);
David S. Miller87a11572011-12-06 17:04:13 -05002605 dst = ERR_PTR(-ENOMEM);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002606 goto out;
2607 }
2608
Yan, Zheng8e2ec632011-09-05 21:34:30 +00002609 rt->dst.flags |= DST_HOST;
Brendan McGrath588753f2017-12-13 22:14:57 +11002610 rt->dst.input = ip6_input;
Yan, Zheng8e2ec632011-09-05 21:34:30 +00002611 rt->dst.output = ip6_output;
Julian Anastasov550bab42013-10-20 15:43:04 +03002612 rt->rt6i_gateway = fl6->daddr;
David S. Miller87a11572011-12-06 17:04:13 -05002613 rt->rt6i_dst.addr = fl6->daddr;
Yan, Zheng8e2ec632011-09-05 21:34:30 +00002614 rt->rt6i_dst.plen = 128;
2615 rt->rt6i_idev = idev;
Li RongQing14edd872012-10-24 14:01:18 +08002616 dst_metric_set(&rt->dst, RTAX_HOPLIMIT, 0);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002617
Ido Schimmel4c981e22018-01-07 12:45:04 +02002618 /* Add this dst into uncached_list so that rt6_disable_ip() can
Wei Wang587fea72017-06-17 10:42:36 -07002619 * do proper release of the net_device
2620 */
2621 rt6_uncached_list_add(rt);
Wei Wang81eb8442017-10-06 12:06:11 -07002622 atomic_inc(&net->ipv6.rt6_stats->fib_rt_uncache);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002623
David S. Miller87a11572011-12-06 17:04:13 -05002624 dst = xfrm_lookup(net, &rt->dst, flowi6_to_flowi(fl6), NULL, 0);
2625
Linus Torvalds1da177e2005-04-16 15:20:36 -07002626out:
David S. Miller87a11572011-12-06 17:04:13 -05002627 return dst;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002628}
2629
Daniel Lezcano569d3642008-01-18 03:56:57 -08002630static int ip6_dst_gc(struct dst_ops *ops)
Linus Torvalds1da177e2005-04-16 15:20:36 -07002631{
Alexey Dobriyan86393e52009-08-29 01:34:49 +00002632 struct net *net = container_of(ops, struct net, ipv6.ip6_dst_ops);
Daniel Lezcano7019b782008-03-04 13:50:14 -08002633 int rt_min_interval = net->ipv6.sysctl.ip6_rt_gc_min_interval;
2634 int rt_max_size = net->ipv6.sysctl.ip6_rt_max_size;
2635 int rt_elasticity = net->ipv6.sysctl.ip6_rt_gc_elasticity;
2636 int rt_gc_timeout = net->ipv6.sysctl.ip6_rt_gc_timeout;
2637 unsigned long rt_last_gc = net->ipv6.ip6_rt_last_gc;
Eric Dumazetfc66f952010-10-08 06:37:34 +00002638 int entries;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002639
Eric Dumazetfc66f952010-10-08 06:37:34 +00002640 entries = dst_entries_get_fast(ops);
Michal Kubeček49a18d82013-08-01 10:04:24 +02002641 if (time_after(rt_last_gc + rt_min_interval, jiffies) &&
Eric Dumazetfc66f952010-10-08 06:37:34 +00002642 entries <= rt_max_size)
Linus Torvalds1da177e2005-04-16 15:20:36 -07002643 goto out;
2644
Benjamin Thery6891a342008-03-04 13:49:47 -08002645 net->ipv6.ip6_rt_gc_expire++;
Li RongQing14956642014-05-19 17:30:28 +08002646 fib6_run_gc(net->ipv6.ip6_rt_gc_expire, net, true);
Eric Dumazetfc66f952010-10-08 06:37:34 +00002647 entries = dst_entries_get_slow(ops);
2648 if (entries < ops->gc_thresh)
Daniel Lezcano7019b782008-03-04 13:50:14 -08002649 net->ipv6.ip6_rt_gc_expire = rt_gc_timeout>>1;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002650out:
Daniel Lezcano7019b782008-03-04 13:50:14 -08002651 net->ipv6.ip6_rt_gc_expire -= net->ipv6.ip6_rt_gc_expire>>rt_elasticity;
Eric Dumazetfc66f952010-10-08 06:37:34 +00002652 return entries > rt_max_size;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002653}
2654
David Ahern8d1c8022018-04-17 17:33:26 -07002655static int ip6_convert_metrics(struct net *net, struct fib6_info *rt,
David Ahernd4ead6b2018-04-17 17:33:16 -07002656 struct fib6_config *cfg)
Florian Westphale715b6d2015-01-05 23:57:44 +01002657{
Eric Dumazet263243d2018-04-19 09:14:53 -07002658 struct dst_metrics *p;
Florian Westphale715b6d2015-01-05 23:57:44 +01002659
Eric Dumazet263243d2018-04-19 09:14:53 -07002660 if (!cfg->fc_mx)
2661 return 0;
Florian Westphale715b6d2015-01-05 23:57:44 +01002662
Eric Dumazet263243d2018-04-19 09:14:53 -07002663 p = kzalloc(sizeof(*rt->fib6_metrics), GFP_KERNEL);
2664 if (unlikely(!p))
2665 return -ENOMEM;
Florian Westphale715b6d2015-01-05 23:57:44 +01002666
Eric Dumazet263243d2018-04-19 09:14:53 -07002667 refcount_set(&p->refcnt, 1);
2668 rt->fib6_metrics = p;
Florian Westphale715b6d2015-01-05 23:57:44 +01002669
Eric Dumazet263243d2018-04-19 09:14:53 -07002670 return ip_metrics_convert(net, cfg->fc_mx, cfg->fc_mx_len, p->metrics);
Florian Westphale715b6d2015-01-05 23:57:44 +01002671}
Linus Torvalds1da177e2005-04-16 15:20:36 -07002672
David Ahern8c145862016-04-24 21:26:04 -07002673static struct rt6_info *ip6_nh_lookup_table(struct net *net,
2674 struct fib6_config *cfg,
David Ahernf4797b32018-01-25 16:55:08 -08002675 const struct in6_addr *gw_addr,
2676 u32 tbid, int flags)
David Ahern8c145862016-04-24 21:26:04 -07002677{
2678 struct flowi6 fl6 = {
2679 .flowi6_oif = cfg->fc_ifindex,
2680 .daddr = *gw_addr,
2681 .saddr = cfg->fc_prefsrc,
2682 };
2683 struct fib6_table *table;
2684 struct rt6_info *rt;
David Ahern8c145862016-04-24 21:26:04 -07002685
David Ahernf4797b32018-01-25 16:55:08 -08002686 table = fib6_get_table(net, tbid);
David Ahern8c145862016-04-24 21:26:04 -07002687 if (!table)
2688 return NULL;
2689
2690 if (!ipv6_addr_any(&cfg->fc_prefsrc))
2691 flags |= RT6_LOOKUP_F_HAS_SADDR;
2692
David Ahernf4797b32018-01-25 16:55:08 -08002693 flags |= RT6_LOOKUP_F_IGNORE_LINKSTATE;
David Ahernb75cc8f2018-03-02 08:32:17 -08002694 rt = ip6_pol_route(net, table, cfg->fc_ifindex, &fl6, NULL, flags);
David Ahern8c145862016-04-24 21:26:04 -07002695
2696 /* if table lookup failed, fall back to full lookup */
2697 if (rt == net->ipv6.ip6_null_entry) {
2698 ip6_rt_put(rt);
2699 rt = NULL;
2700 }
2701
2702 return rt;
2703}
2704
David Ahernfc1e64e2018-01-25 16:55:09 -08002705static int ip6_route_check_nh_onlink(struct net *net,
2706 struct fib6_config *cfg,
David Ahern9fbb7042018-03-13 08:29:36 -07002707 const struct net_device *dev,
David Ahernfc1e64e2018-01-25 16:55:09 -08002708 struct netlink_ext_ack *extack)
2709{
David Ahern44750f82018-02-06 13:17:06 -08002710 u32 tbid = l3mdev_fib_table(dev) ? : RT_TABLE_MAIN;
David Ahernfc1e64e2018-01-25 16:55:09 -08002711 const struct in6_addr *gw_addr = &cfg->fc_gateway;
2712 u32 flags = RTF_LOCAL | RTF_ANYCAST | RTF_REJECT;
2713 struct rt6_info *grt;
2714 int err;
2715
2716 err = 0;
2717 grt = ip6_nh_lookup_table(net, cfg, gw_addr, tbid, 0);
2718 if (grt) {
David Ahern58e354c2018-02-06 12:14:12 -08002719 if (!grt->dst.error &&
2720 (grt->rt6i_flags & flags || dev != grt->dst.dev)) {
David Ahern44750f82018-02-06 13:17:06 -08002721 NL_SET_ERR_MSG(extack,
2722 "Nexthop has invalid gateway or device mismatch");
David Ahernfc1e64e2018-01-25 16:55:09 -08002723 err = -EINVAL;
2724 }
2725
2726 ip6_rt_put(grt);
2727 }
2728
2729 return err;
2730}
2731
David Ahern1edce992018-01-25 16:55:07 -08002732static int ip6_route_check_nh(struct net *net,
2733 struct fib6_config *cfg,
2734 struct net_device **_dev,
2735 struct inet6_dev **idev)
2736{
2737 const struct in6_addr *gw_addr = &cfg->fc_gateway;
2738 struct net_device *dev = _dev ? *_dev : NULL;
2739 struct rt6_info *grt = NULL;
2740 int err = -EHOSTUNREACH;
2741
2742 if (cfg->fc_table) {
David Ahernf4797b32018-01-25 16:55:08 -08002743 int flags = RT6_LOOKUP_F_IFACE;
2744
2745 grt = ip6_nh_lookup_table(net, cfg, gw_addr,
2746 cfg->fc_table, flags);
David Ahern1edce992018-01-25 16:55:07 -08002747 if (grt) {
2748 if (grt->rt6i_flags & RTF_GATEWAY ||
2749 (dev && dev != grt->dst.dev)) {
2750 ip6_rt_put(grt);
2751 grt = NULL;
2752 }
2753 }
2754 }
2755
2756 if (!grt)
David Ahernb75cc8f2018-03-02 08:32:17 -08002757 grt = rt6_lookup(net, gw_addr, NULL, cfg->fc_ifindex, NULL, 1);
David Ahern1edce992018-01-25 16:55:07 -08002758
2759 if (!grt)
2760 goto out;
2761
2762 if (dev) {
2763 if (dev != grt->dst.dev) {
2764 ip6_rt_put(grt);
2765 goto out;
2766 }
2767 } else {
2768 *_dev = dev = grt->dst.dev;
2769 *idev = grt->rt6i_idev;
2770 dev_hold(dev);
2771 in6_dev_hold(grt->rt6i_idev);
2772 }
2773
2774 if (!(grt->rt6i_flags & RTF_GATEWAY))
2775 err = 0;
2776
2777 ip6_rt_put(grt);
2778
2779out:
2780 return err;
2781}
2782
David Ahern9fbb7042018-03-13 08:29:36 -07002783static int ip6_validate_gw(struct net *net, struct fib6_config *cfg,
2784 struct net_device **_dev, struct inet6_dev **idev,
2785 struct netlink_ext_ack *extack)
2786{
2787 const struct in6_addr *gw_addr = &cfg->fc_gateway;
2788 int gwa_type = ipv6_addr_type(gw_addr);
David Ahern232378e2018-03-13 08:29:37 -07002789 bool skip_dev = gwa_type & IPV6_ADDR_LINKLOCAL ? false : true;
David Ahern9fbb7042018-03-13 08:29:36 -07002790 const struct net_device *dev = *_dev;
David Ahern232378e2018-03-13 08:29:37 -07002791 bool need_addr_check = !dev;
David Ahern9fbb7042018-03-13 08:29:36 -07002792 int err = -EINVAL;
2793
2794 /* if gw_addr is local we will fail to detect this in case
2795 * address is still TENTATIVE (DAD in progress). rt6_lookup()
2796 * will return already-added prefix route via interface that
2797 * prefix route was assigned to, which might be non-loopback.
2798 */
David Ahern232378e2018-03-13 08:29:37 -07002799 if (dev &&
2800 ipv6_chk_addr_and_flags(net, gw_addr, dev, skip_dev, 0, 0)) {
2801 NL_SET_ERR_MSG(extack, "Gateway can not be a local address");
David Ahern9fbb7042018-03-13 08:29:36 -07002802 goto out;
2803 }
2804
2805 if (gwa_type != (IPV6_ADDR_LINKLOCAL | IPV6_ADDR_UNICAST)) {
2806 /* IPv6 strictly inhibits using not link-local
2807 * addresses as nexthop address.
2808 * Otherwise, router will not able to send redirects.
2809 * It is very good, but in some (rare!) circumstances
2810 * (SIT, PtP, NBMA NOARP links) it is handy to allow
2811 * some exceptions. --ANK
2812 * We allow IPv4-mapped nexthops to support RFC4798-type
2813 * addressing
2814 */
2815 if (!(gwa_type & (IPV6_ADDR_UNICAST | IPV6_ADDR_MAPPED))) {
2816 NL_SET_ERR_MSG(extack, "Invalid gateway address");
2817 goto out;
2818 }
2819
2820 if (cfg->fc_flags & RTNH_F_ONLINK)
2821 err = ip6_route_check_nh_onlink(net, cfg, dev, extack);
2822 else
2823 err = ip6_route_check_nh(net, cfg, _dev, idev);
2824
2825 if (err)
2826 goto out;
2827 }
2828
2829 /* reload in case device was changed */
2830 dev = *_dev;
2831
2832 err = -EINVAL;
2833 if (!dev) {
2834 NL_SET_ERR_MSG(extack, "Egress device not specified");
2835 goto out;
2836 } else if (dev->flags & IFF_LOOPBACK) {
2837 NL_SET_ERR_MSG(extack,
2838 "Egress device can not be loopback device for this route");
2839 goto out;
2840 }
David Ahern232378e2018-03-13 08:29:37 -07002841
2842 /* if we did not check gw_addr above, do so now that the
2843 * egress device has been resolved.
2844 */
2845 if (need_addr_check &&
2846 ipv6_chk_addr_and_flags(net, gw_addr, dev, skip_dev, 0, 0)) {
2847 NL_SET_ERR_MSG(extack, "Gateway can not be a local address");
2848 goto out;
2849 }
2850
David Ahern9fbb7042018-03-13 08:29:36 -07002851 err = 0;
2852out:
2853 return err;
2854}
2855
David Ahern8d1c8022018-04-17 17:33:26 -07002856static struct fib6_info *ip6_route_info_create(struct fib6_config *cfg,
David Ahernacb54e32018-04-17 17:33:22 -07002857 gfp_t gfp_flags,
David Ahern333c4302017-05-21 10:12:04 -06002858 struct netlink_ext_ack *extack)
Linus Torvalds1da177e2005-04-16 15:20:36 -07002859{
Daniel Lezcano55786892008-03-04 13:47:47 -08002860 struct net *net = cfg->fc_nlinfo.nl_net;
David Ahern8d1c8022018-04-17 17:33:26 -07002861 struct fib6_info *rt = NULL;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002862 struct net_device *dev = NULL;
2863 struct inet6_dev *idev = NULL;
Thomas Grafc71099a2006-08-04 23:20:06 -07002864 struct fib6_table *table;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002865 int addr_type;
Roopa Prabhu8c5b83f2015-10-10 08:26:36 -07002866 int err = -EINVAL;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002867
David Ahern557c44b2017-04-19 14:19:43 -07002868 /* RTF_PCPU is an internal flag; can not be set by userspace */
David Ahernd5d531c2017-05-21 10:12:05 -06002869 if (cfg->fc_flags & RTF_PCPU) {
2870 NL_SET_ERR_MSG(extack, "Userspace can not set RTF_PCPU");
David Ahern557c44b2017-04-19 14:19:43 -07002871 goto out;
David Ahernd5d531c2017-05-21 10:12:05 -06002872 }
David Ahern557c44b2017-04-19 14:19:43 -07002873
Wei Wang2ea23522017-10-27 17:30:12 -07002874 /* RTF_CACHE is an internal flag; can not be set by userspace */
2875 if (cfg->fc_flags & RTF_CACHE) {
2876 NL_SET_ERR_MSG(extack, "Userspace can not set RTF_CACHE");
2877 goto out;
2878 }
2879
David Aherne8478e82018-04-17 17:33:13 -07002880 if (cfg->fc_type > RTN_MAX) {
2881 NL_SET_ERR_MSG(extack, "Invalid route type");
2882 goto out;
2883 }
2884
David Ahernd5d531c2017-05-21 10:12:05 -06002885 if (cfg->fc_dst_len > 128) {
2886 NL_SET_ERR_MSG(extack, "Invalid prefix length");
Roopa Prabhu8c5b83f2015-10-10 08:26:36 -07002887 goto out;
David Ahernd5d531c2017-05-21 10:12:05 -06002888 }
2889 if (cfg->fc_src_len > 128) {
2890 NL_SET_ERR_MSG(extack, "Invalid source address length");
2891 goto out;
2892 }
Linus Torvalds1da177e2005-04-16 15:20:36 -07002893#ifndef CONFIG_IPV6_SUBTREES
David Ahernd5d531c2017-05-21 10:12:05 -06002894 if (cfg->fc_src_len) {
2895 NL_SET_ERR_MSG(extack,
2896 "Specifying source address requires IPV6_SUBTREES to be enabled");
Roopa Prabhu8c5b83f2015-10-10 08:26:36 -07002897 goto out;
David Ahernd5d531c2017-05-21 10:12:05 -06002898 }
Linus Torvalds1da177e2005-04-16 15:20:36 -07002899#endif
Thomas Graf86872cb2006-08-22 00:01:08 -07002900 if (cfg->fc_ifindex) {
Linus Torvalds1da177e2005-04-16 15:20:36 -07002901 err = -ENODEV;
Daniel Lezcano55786892008-03-04 13:47:47 -08002902 dev = dev_get_by_index(net, cfg->fc_ifindex);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002903 if (!dev)
2904 goto out;
2905 idev = in6_dev_get(dev);
2906 if (!idev)
2907 goto out;
2908 }
2909
Thomas Graf86872cb2006-08-22 00:01:08 -07002910 if (cfg->fc_metric == 0)
2911 cfg->fc_metric = IP6_RT_PRIO_USER;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002912
David Ahernfc1e64e2018-01-25 16:55:09 -08002913 if (cfg->fc_flags & RTNH_F_ONLINK) {
2914 if (!dev) {
2915 NL_SET_ERR_MSG(extack,
2916 "Nexthop device required for onlink");
2917 err = -ENODEV;
2918 goto out;
2919 }
2920
2921 if (!(dev->flags & IFF_UP)) {
2922 NL_SET_ERR_MSG(extack, "Nexthop device is not up");
2923 err = -ENETDOWN;
2924 goto out;
2925 }
2926 }
2927
Matti Vaittinend71314b2011-11-14 00:14:49 +00002928 err = -ENOBUFS;
David S. Miller38308472011-12-03 18:02:47 -05002929 if (cfg->fc_nlinfo.nlh &&
2930 !(cfg->fc_nlinfo.nlh->nlmsg_flags & NLM_F_CREATE)) {
Matti Vaittinend71314b2011-11-14 00:14:49 +00002931 table = fib6_get_table(net, cfg->fc_table);
David S. Miller38308472011-12-03 18:02:47 -05002932 if (!table) {
Joe Perchesf3213832012-05-15 14:11:53 +00002933 pr_warn("NLM_F_CREATE should be specified when creating new route\n");
Matti Vaittinend71314b2011-11-14 00:14:49 +00002934 table = fib6_new_table(net, cfg->fc_table);
2935 }
2936 } else {
2937 table = fib6_new_table(net, cfg->fc_table);
2938 }
David S. Miller38308472011-12-03 18:02:47 -05002939
2940 if (!table)
Thomas Grafc71099a2006-08-04 23:20:06 -07002941 goto out;
Thomas Grafc71099a2006-08-04 23:20:06 -07002942
David Ahern93531c62018-04-17 17:33:25 -07002943 err = -ENOMEM;
2944 rt = fib6_info_alloc(gfp_flags);
2945 if (!rt)
Linus Torvalds1da177e2005-04-16 15:20:36 -07002946 goto out;
David Ahern93531c62018-04-17 17:33:25 -07002947
2948 if (cfg->fc_flags & RTF_ADDRCONF)
2949 rt->dst_nocount = true;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002950
David Ahernd4ead6b2018-04-17 17:33:16 -07002951 err = ip6_convert_metrics(net, rt, cfg);
2952 if (err < 0)
2953 goto out;
2954
Gao feng1716a962012-04-06 00:13:10 +00002955 if (cfg->fc_flags & RTF_EXPIRES)
David Ahern14895682018-04-17 17:33:17 -07002956 fib6_set_expires(rt, jiffies +
Gao feng1716a962012-04-06 00:13:10 +00002957 clock_t_to_jiffies(cfg->fc_expires));
2958 else
David Ahern14895682018-04-17 17:33:17 -07002959 fib6_clean_expires(rt);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002960
Thomas Graf86872cb2006-08-22 00:01:08 -07002961 if (cfg->fc_protocol == RTPROT_UNSPEC)
2962 cfg->fc_protocol = RTPROT_BOOT;
David Ahern93c2fb22018-04-18 15:38:59 -07002963 rt->fib6_protocol = cfg->fc_protocol;
Thomas Graf86872cb2006-08-22 00:01:08 -07002964
2965 addr_type = ipv6_addr_type(&cfg->fc_dst);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002966
Roopa Prabhu19e42e42015-07-21 10:43:48 +02002967 if (cfg->fc_encap) {
2968 struct lwtunnel_state *lwtstate;
2969
David Ahern30357d72017-01-30 12:07:37 -08002970 err = lwtunnel_build_state(cfg->fc_encap_type,
Tom Herbert127eb7c2015-08-24 09:45:41 -07002971 cfg->fc_encap, AF_INET6, cfg,
David Ahern9ae28722017-05-27 16:19:28 -06002972 &lwtstate, extack);
Roopa Prabhu19e42e42015-07-21 10:43:48 +02002973 if (err)
2974 goto out;
David Ahern5e670d82018-04-17 17:33:14 -07002975 rt->fib6_nh.nh_lwtstate = lwtstate_get(lwtstate);
Roopa Prabhu19e42e42015-07-21 10:43:48 +02002976 }
2977
David Ahern93c2fb22018-04-18 15:38:59 -07002978 ipv6_addr_prefix(&rt->fib6_dst.addr, &cfg->fc_dst, cfg->fc_dst_len);
2979 rt->fib6_dst.plen = cfg->fc_dst_len;
2980 if (rt->fib6_dst.plen == 128)
David Ahern3b6761d2018-04-17 17:33:20 -07002981 rt->dst_host = true;
Michal Kubečeke5fd3872014-03-27 13:04:08 +01002982
Linus Torvalds1da177e2005-04-16 15:20:36 -07002983#ifdef CONFIG_IPV6_SUBTREES
David Ahern93c2fb22018-04-18 15:38:59 -07002984 ipv6_addr_prefix(&rt->fib6_src.addr, &cfg->fc_src, cfg->fc_src_len);
2985 rt->fib6_src.plen = cfg->fc_src_len;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002986#endif
2987
David Ahern93c2fb22018-04-18 15:38:59 -07002988 rt->fib6_metric = cfg->fc_metric;
David Ahern5e670d82018-04-17 17:33:14 -07002989 rt->fib6_nh.nh_weight = 1;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002990
David Aherne8478e82018-04-17 17:33:13 -07002991 rt->fib6_type = cfg->fc_type;
2992
Linus Torvalds1da177e2005-04-16 15:20:36 -07002993 /* We cannot add true routes via loopback here,
2994 they would result in kernel looping; promote them to reject routes
2995 */
Thomas Graf86872cb2006-08-22 00:01:08 -07002996 if ((cfg->fc_flags & RTF_REJECT) ||
David S. Miller38308472011-12-03 18:02:47 -05002997 (dev && (dev->flags & IFF_LOOPBACK) &&
2998 !(addr_type & IPV6_ADDR_LOOPBACK) &&
2999 !(cfg->fc_flags & RTF_LOCAL))) {
Linus Torvalds1da177e2005-04-16 15:20:36 -07003000 /* hold loopback dev/idev if we haven't done so. */
Daniel Lezcano55786892008-03-04 13:47:47 -08003001 if (dev != net->loopback_dev) {
Linus Torvalds1da177e2005-04-16 15:20:36 -07003002 if (dev) {
3003 dev_put(dev);
3004 in6_dev_put(idev);
3005 }
Daniel Lezcano55786892008-03-04 13:47:47 -08003006 dev = net->loopback_dev;
Linus Torvalds1da177e2005-04-16 15:20:36 -07003007 dev_hold(dev);
3008 idev = in6_dev_get(dev);
3009 if (!idev) {
3010 err = -ENODEV;
3011 goto out;
3012 }
3013 }
David Ahern93c2fb22018-04-18 15:38:59 -07003014 rt->fib6_flags = RTF_REJECT|RTF_NONEXTHOP;
Linus Torvalds1da177e2005-04-16 15:20:36 -07003015 goto install_route;
3016 }
3017
Thomas Graf86872cb2006-08-22 00:01:08 -07003018 if (cfg->fc_flags & RTF_GATEWAY) {
David Ahern9fbb7042018-03-13 08:29:36 -07003019 err = ip6_validate_gw(net, cfg, &dev, &idev, extack);
3020 if (err)
Florian Westphal48ed7b22015-05-21 00:25:41 +02003021 goto out;
Linus Torvalds1da177e2005-04-16 15:20:36 -07003022
David Ahern93531c62018-04-17 17:33:25 -07003023 rt->fib6_nh.nh_gw = cfg->fc_gateway;
Linus Torvalds1da177e2005-04-16 15:20:36 -07003024 }
3025
3026 err = -ENODEV;
David S. Miller38308472011-12-03 18:02:47 -05003027 if (!dev)
Linus Torvalds1da177e2005-04-16 15:20:36 -07003028 goto out;
3029
Lorenzo Bianconi428604f2018-03-29 11:02:24 +02003030 if (idev->cnf.disable_ipv6) {
3031 NL_SET_ERR_MSG(extack, "IPv6 is disabled on nexthop device");
3032 err = -EACCES;
3033 goto out;
3034 }
3035
David Ahern955ec4c2018-01-24 19:45:29 -08003036 if (!(dev->flags & IFF_UP)) {
3037 NL_SET_ERR_MSG(extack, "Nexthop device is not up");
3038 err = -ENETDOWN;
3039 goto out;
3040 }
3041
Daniel Walterc3968a82011-04-13 21:10:57 +00003042 if (!ipv6_addr_any(&cfg->fc_prefsrc)) {
3043 if (!ipv6_chk_addr(net, &cfg->fc_prefsrc, dev, 0)) {
David Ahernd5d531c2017-05-21 10:12:05 -06003044 NL_SET_ERR_MSG(extack, "Invalid source address");
Daniel Walterc3968a82011-04-13 21:10:57 +00003045 err = -EINVAL;
3046 goto out;
3047 }
David Ahern93c2fb22018-04-18 15:38:59 -07003048 rt->fib6_prefsrc.addr = cfg->fc_prefsrc;
3049 rt->fib6_prefsrc.plen = 128;
Daniel Walterc3968a82011-04-13 21:10:57 +00003050 } else
David Ahern93c2fb22018-04-18 15:38:59 -07003051 rt->fib6_prefsrc.plen = 0;
Daniel Walterc3968a82011-04-13 21:10:57 +00003052
David Ahern93c2fb22018-04-18 15:38:59 -07003053 rt->fib6_flags = cfg->fc_flags;
Linus Torvalds1da177e2005-04-16 15:20:36 -07003054
3055install_route:
David Ahern93c2fb22018-04-18 15:38:59 -07003056 if (!(rt->fib6_flags & (RTF_LOCAL | RTF_ANYCAST)) &&
Ido Schimmel5609b802018-01-07 12:45:06 +02003057 !netif_carrier_ok(dev))
David Ahern5e670d82018-04-17 17:33:14 -07003058 rt->fib6_nh.nh_flags |= RTNH_F_LINKDOWN;
3059 rt->fib6_nh.nh_flags |= (cfg->fc_flags & RTNH_F_ONLINK);
David Ahern93531c62018-04-17 17:33:25 -07003060 rt->fib6_nh.nh_dev = dev;
David Ahern93c2fb22018-04-18 15:38:59 -07003061 rt->fib6_table = table;
Daniel Lezcano63152fc2008-03-03 23:31:11 -08003062
YOSHIFUJI Hideakic346dca2008-03-25 21:47:49 +09003063 cfg->fc_nlinfo.nl_net = dev_net(dev);
Daniel Lezcano63152fc2008-03-03 23:31:11 -08003064
David Aherndcd1f572018-04-18 15:39:05 -07003065 if (idev)
3066 in6_dev_put(idev);
3067
Roopa Prabhu8c5b83f2015-10-10 08:26:36 -07003068 return rt;
Linus Torvalds1da177e2005-04-16 15:20:36 -07003069out:
3070 if (dev)
3071 dev_put(dev);
3072 if (idev)
3073 in6_dev_put(idev);
Roopa Prabhu6b9ea5a2015-09-08 10:53:04 -07003074
David Ahern93531c62018-04-17 17:33:25 -07003075 fib6_info_release(rt);
Roopa Prabhu8c5b83f2015-10-10 08:26:36 -07003076 return ERR_PTR(err);
Roopa Prabhu6b9ea5a2015-09-08 10:53:04 -07003077}
3078
David Ahernacb54e32018-04-17 17:33:22 -07003079int ip6_route_add(struct fib6_config *cfg, gfp_t gfp_flags,
3080 struct netlink_ext_ack *extack)
Roopa Prabhu6b9ea5a2015-09-08 10:53:04 -07003081{
David Ahern8d1c8022018-04-17 17:33:26 -07003082 struct fib6_info *rt;
Roopa Prabhu6b9ea5a2015-09-08 10:53:04 -07003083 int err;
3084
David Ahernacb54e32018-04-17 17:33:22 -07003085 rt = ip6_route_info_create(cfg, gfp_flags, extack);
David Ahernd4ead6b2018-04-17 17:33:16 -07003086 if (IS_ERR(rt))
3087 return PTR_ERR(rt);
Roopa Prabhu6b9ea5a2015-09-08 10:53:04 -07003088
David Ahernd4ead6b2018-04-17 17:33:16 -07003089 err = __ip6_ins_rt(rt, &cfg->fc_nlinfo, extack);
David Ahern93531c62018-04-17 17:33:25 -07003090 fib6_info_release(rt);
Roopa Prabhu6b9ea5a2015-09-08 10:53:04 -07003091
Linus Torvalds1da177e2005-04-16 15:20:36 -07003092 return err;
3093}
3094
David Ahern8d1c8022018-04-17 17:33:26 -07003095static int __ip6_del_rt(struct fib6_info *rt, struct nl_info *info)
Linus Torvalds1da177e2005-04-16 15:20:36 -07003096{
David Ahernafb1d4b52018-04-17 17:33:11 -07003097 struct net *net = info->nl_net;
Thomas Grafc71099a2006-08-04 23:20:06 -07003098 struct fib6_table *table;
David Ahernafb1d4b52018-04-17 17:33:11 -07003099 int err;
Linus Torvalds1da177e2005-04-16 15:20:36 -07003100
David Ahern421842e2018-04-17 17:33:18 -07003101 if (rt == net->ipv6.fib6_null_entry) {
Gao feng6825a262012-09-19 19:25:34 +00003102 err = -ENOENT;
3103 goto out;
3104 }
Patrick McHardy6c813a72006-08-06 22:22:47 -07003105
David Ahern93c2fb22018-04-18 15:38:59 -07003106 table = rt->fib6_table;
Wei Wang66f5d6c2017-10-06 12:06:10 -07003107 spin_lock_bh(&table->tb6_lock);
Thomas Graf86872cb2006-08-22 00:01:08 -07003108 err = fib6_del(rt, info);
Wei Wang66f5d6c2017-10-06 12:06:10 -07003109 spin_unlock_bh(&table->tb6_lock);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003110
Gao feng6825a262012-09-19 19:25:34 +00003111out:
David Ahern93531c62018-04-17 17:33:25 -07003112 fib6_info_release(rt);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003113 return err;
3114}
3115
David Ahern8d1c8022018-04-17 17:33:26 -07003116int ip6_del_rt(struct net *net, struct fib6_info *rt)
Thomas Grafe0a1ad732006-08-22 00:00:21 -07003117{
David Ahernafb1d4b52018-04-17 17:33:11 -07003118 struct nl_info info = { .nl_net = net };
3119
Denis V. Lunev528c4ce2007-12-13 09:45:12 -08003120 return __ip6_del_rt(rt, &info);
Thomas Grafe0a1ad732006-08-22 00:00:21 -07003121}
3122
David Ahern8d1c8022018-04-17 17:33:26 -07003123static int __ip6_del_rt_siblings(struct fib6_info *rt, struct fib6_config *cfg)
David Ahern0ae81332017-02-02 12:37:08 -08003124{
3125 struct nl_info *info = &cfg->fc_nlinfo;
WANG Conge3330032017-02-27 16:07:43 -08003126 struct net *net = info->nl_net;
David Ahern16a16cd2017-02-02 12:37:11 -08003127 struct sk_buff *skb = NULL;
David Ahern0ae81332017-02-02 12:37:08 -08003128 struct fib6_table *table;
WANG Conge3330032017-02-27 16:07:43 -08003129 int err = -ENOENT;
David Ahern0ae81332017-02-02 12:37:08 -08003130
David Ahern421842e2018-04-17 17:33:18 -07003131 if (rt == net->ipv6.fib6_null_entry)
WANG Conge3330032017-02-27 16:07:43 -08003132 goto out_put;
David Ahern93c2fb22018-04-18 15:38:59 -07003133 table = rt->fib6_table;
Wei Wang66f5d6c2017-10-06 12:06:10 -07003134 spin_lock_bh(&table->tb6_lock);
David Ahern0ae81332017-02-02 12:37:08 -08003135
David Ahern93c2fb22018-04-18 15:38:59 -07003136 if (rt->fib6_nsiblings && cfg->fc_delete_all_nh) {
David Ahern8d1c8022018-04-17 17:33:26 -07003137 struct fib6_info *sibling, *next_sibling;
David Ahern0ae81332017-02-02 12:37:08 -08003138
David Ahern16a16cd2017-02-02 12:37:11 -08003139 /* prefer to send a single notification with all hops */
3140 skb = nlmsg_new(rt6_nlmsg_size(rt), gfp_any());
3141 if (skb) {
3142 u32 seq = info->nlh ? info->nlh->nlmsg_seq : 0;
3143
David Ahernd4ead6b2018-04-17 17:33:16 -07003144 if (rt6_fill_node(net, skb, rt, NULL,
David Ahern16a16cd2017-02-02 12:37:11 -08003145 NULL, NULL, 0, RTM_DELROUTE,
3146 info->portid, seq, 0) < 0) {
3147 kfree_skb(skb);
3148 skb = NULL;
3149 } else
3150 info->skip_notify = 1;
3151 }
3152
David Ahern0ae81332017-02-02 12:37:08 -08003153 list_for_each_entry_safe(sibling, next_sibling,
David Ahern93c2fb22018-04-18 15:38:59 -07003154 &rt->fib6_siblings,
3155 fib6_siblings) {
David Ahern0ae81332017-02-02 12:37:08 -08003156 err = fib6_del(sibling, info);
3157 if (err)
WANG Conge3330032017-02-27 16:07:43 -08003158 goto out_unlock;
David Ahern0ae81332017-02-02 12:37:08 -08003159 }
3160 }
3161
3162 err = fib6_del(rt, info);
WANG Conge3330032017-02-27 16:07:43 -08003163out_unlock:
Wei Wang66f5d6c2017-10-06 12:06:10 -07003164 spin_unlock_bh(&table->tb6_lock);
WANG Conge3330032017-02-27 16:07:43 -08003165out_put:
David Ahern93531c62018-04-17 17:33:25 -07003166 fib6_info_release(rt);
David Ahern16a16cd2017-02-02 12:37:11 -08003167
3168 if (skb) {
WANG Conge3330032017-02-27 16:07:43 -08003169 rtnl_notify(skb, net, info->portid, RTNLGRP_IPV6_ROUTE,
David Ahern16a16cd2017-02-02 12:37:11 -08003170 info->nlh, gfp_any());
3171 }
David Ahern0ae81332017-02-02 12:37:08 -08003172 return err;
3173}
3174
David Ahern23fb93a2018-04-17 17:33:23 -07003175static int ip6_del_cached_rt(struct rt6_info *rt, struct fib6_config *cfg)
3176{
3177 int rc = -ESRCH;
3178
3179 if (cfg->fc_ifindex && rt->dst.dev->ifindex != cfg->fc_ifindex)
3180 goto out;
3181
3182 if (cfg->fc_flags & RTF_GATEWAY &&
3183 !ipv6_addr_equal(&cfg->fc_gateway, &rt->rt6i_gateway))
3184 goto out;
3185 if (dst_hold_safe(&rt->dst))
3186 rc = rt6_remove_exception_rt(rt);
3187out:
3188 return rc;
3189}
3190
David Ahern333c4302017-05-21 10:12:04 -06003191static int ip6_route_del(struct fib6_config *cfg,
3192 struct netlink_ext_ack *extack)
Linus Torvalds1da177e2005-04-16 15:20:36 -07003193{
David Ahern8d1c8022018-04-17 17:33:26 -07003194 struct rt6_info *rt_cache;
Thomas Grafc71099a2006-08-04 23:20:06 -07003195 struct fib6_table *table;
David Ahern8d1c8022018-04-17 17:33:26 -07003196 struct fib6_info *rt;
Linus Torvalds1da177e2005-04-16 15:20:36 -07003197 struct fib6_node *fn;
Linus Torvalds1da177e2005-04-16 15:20:36 -07003198 int err = -ESRCH;
3199
Daniel Lezcano55786892008-03-04 13:47:47 -08003200 table = fib6_get_table(cfg->fc_nlinfo.nl_net, cfg->fc_table);
David Ahernd5d531c2017-05-21 10:12:05 -06003201 if (!table) {
3202 NL_SET_ERR_MSG(extack, "FIB table does not exist");
Thomas Grafc71099a2006-08-04 23:20:06 -07003203 return err;
David Ahernd5d531c2017-05-21 10:12:05 -06003204 }
Linus Torvalds1da177e2005-04-16 15:20:36 -07003205
Wei Wang66f5d6c2017-10-06 12:06:10 -07003206 rcu_read_lock();
Thomas Grafc71099a2006-08-04 23:20:06 -07003207
3208 fn = fib6_locate(&table->tb6_root,
Thomas Graf86872cb2006-08-22 00:01:08 -07003209 &cfg->fc_dst, cfg->fc_dst_len,
Wei Wang38fbeee2017-10-06 12:06:02 -07003210 &cfg->fc_src, cfg->fc_src_len,
Wei Wang2b760fc2017-10-06 12:06:03 -07003211 !(cfg->fc_flags & RTF_CACHE));
YOSHIFUJI Hideaki1ab14572007-02-09 23:24:49 +09003212
Linus Torvalds1da177e2005-04-16 15:20:36 -07003213 if (fn) {
Wei Wang66f5d6c2017-10-06 12:06:10 -07003214 for_each_fib6_node_rt_rcu(fn) {
Wei Wang2b760fc2017-10-06 12:06:03 -07003215 if (cfg->fc_flags & RTF_CACHE) {
David Ahern23fb93a2018-04-17 17:33:23 -07003216 int rc;
3217
Wei Wang2b760fc2017-10-06 12:06:03 -07003218 rt_cache = rt6_find_cached_rt(rt, &cfg->fc_dst,
3219 &cfg->fc_src);
David Ahern23fb93a2018-04-17 17:33:23 -07003220 if (rt_cache) {
3221 rc = ip6_del_cached_rt(rt_cache, cfg);
3222 if (rc != -ESRCH)
3223 return rc;
3224 }
3225 continue;
Wei Wang2b760fc2017-10-06 12:06:03 -07003226 }
Thomas Graf86872cb2006-08-22 00:01:08 -07003227 if (cfg->fc_ifindex &&
David Ahern5e670d82018-04-17 17:33:14 -07003228 (!rt->fib6_nh.nh_dev ||
3229 rt->fib6_nh.nh_dev->ifindex != cfg->fc_ifindex))
Linus Torvalds1da177e2005-04-16 15:20:36 -07003230 continue;
Thomas Graf86872cb2006-08-22 00:01:08 -07003231 if (cfg->fc_flags & RTF_GATEWAY &&
David Ahern5e670d82018-04-17 17:33:14 -07003232 !ipv6_addr_equal(&cfg->fc_gateway, &rt->fib6_nh.nh_gw))
Linus Torvalds1da177e2005-04-16 15:20:36 -07003233 continue;
David Ahern93c2fb22018-04-18 15:38:59 -07003234 if (cfg->fc_metric && cfg->fc_metric != rt->fib6_metric)
Linus Torvalds1da177e2005-04-16 15:20:36 -07003235 continue;
David Ahern93c2fb22018-04-18 15:38:59 -07003236 if (cfg->fc_protocol && cfg->fc_protocol != rt->fib6_protocol)
Mantas Mc2ed1882016-12-16 10:30:59 +02003237 continue;
David Ahern93531c62018-04-17 17:33:25 -07003238 fib6_info_hold(rt);
Wei Wang66f5d6c2017-10-06 12:06:10 -07003239 rcu_read_unlock();
Linus Torvalds1da177e2005-04-16 15:20:36 -07003240
David Ahern0ae81332017-02-02 12:37:08 -08003241 /* if gateway was specified only delete the one hop */
3242 if (cfg->fc_flags & RTF_GATEWAY)
3243 return __ip6_del_rt(rt, &cfg->fc_nlinfo);
3244
3245 return __ip6_del_rt_siblings(rt, cfg);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003246 }
3247 }
Wei Wang66f5d6c2017-10-06 12:06:10 -07003248 rcu_read_unlock();
Linus Torvalds1da177e2005-04-16 15:20:36 -07003249
3250 return err;
3251}
3252
David S. Miller6700c272012-07-17 03:29:28 -07003253static void rt6_do_redirect(struct dst_entry *dst, struct sock *sk, struct sk_buff *skb)
YOSHIFUJI Hideakia6279452006-08-23 17:18:26 -07003254{
YOSHIFUJI Hideakia6279452006-08-23 17:18:26 -07003255 struct netevent_redirect netevent;
David S. Millere8599ff2012-07-11 23:43:53 -07003256 struct rt6_info *rt, *nrt = NULL;
David S. Millere8599ff2012-07-11 23:43:53 -07003257 struct ndisc_options ndopts;
3258 struct inet6_dev *in6_dev;
3259 struct neighbour *neigh;
David Aherna68886a2018-04-20 15:38:02 -07003260 struct fib6_info *from;
YOSHIFUJI Hideaki / 吉藤英明71bcdba2013-01-05 16:34:51 +00003261 struct rd_msg *msg;
David S. Miller6e157b62012-07-12 00:05:02 -07003262 int optlen, on_link;
3263 u8 *lladdr;
David S. Millere8599ff2012-07-11 23:43:53 -07003264
Simon Horman29a3cad2013-05-28 20:34:26 +00003265 optlen = skb_tail_pointer(skb) - skb_transport_header(skb);
YOSHIFUJI Hideaki / 吉藤英明71bcdba2013-01-05 16:34:51 +00003266 optlen -= sizeof(*msg);
David S. Millere8599ff2012-07-11 23:43:53 -07003267
3268 if (optlen < 0) {
David S. Miller6e157b62012-07-12 00:05:02 -07003269 net_dbg_ratelimited("rt6_do_redirect: packet too short\n");
David S. Millere8599ff2012-07-11 23:43:53 -07003270 return;
3271 }
3272
YOSHIFUJI Hideaki / 吉藤英明71bcdba2013-01-05 16:34:51 +00003273 msg = (struct rd_msg *)icmp6_hdr(skb);
David S. Millere8599ff2012-07-11 23:43:53 -07003274
YOSHIFUJI Hideaki / 吉藤英明71bcdba2013-01-05 16:34:51 +00003275 if (ipv6_addr_is_multicast(&msg->dest)) {
David S. Miller6e157b62012-07-12 00:05:02 -07003276 net_dbg_ratelimited("rt6_do_redirect: destination address is multicast\n");
David S. Millere8599ff2012-07-11 23:43:53 -07003277 return;
3278 }
3279
David S. Miller6e157b62012-07-12 00:05:02 -07003280 on_link = 0;
YOSHIFUJI Hideaki / 吉藤英明71bcdba2013-01-05 16:34:51 +00003281 if (ipv6_addr_equal(&msg->dest, &msg->target)) {
David S. Millere8599ff2012-07-11 23:43:53 -07003282 on_link = 1;
YOSHIFUJI Hideaki / 吉藤英明71bcdba2013-01-05 16:34:51 +00003283 } else if (ipv6_addr_type(&msg->target) !=
David S. Millere8599ff2012-07-11 23:43:53 -07003284 (IPV6_ADDR_UNICAST|IPV6_ADDR_LINKLOCAL)) {
David S. Miller6e157b62012-07-12 00:05:02 -07003285 net_dbg_ratelimited("rt6_do_redirect: target address is not link-local unicast\n");
David S. Millere8599ff2012-07-11 23:43:53 -07003286 return;
3287 }
3288
3289 in6_dev = __in6_dev_get(skb->dev);
3290 if (!in6_dev)
3291 return;
3292 if (in6_dev->cnf.forwarding || !in6_dev->cnf.accept_redirects)
3293 return;
3294
3295 /* RFC2461 8.1:
3296 * The IP source address of the Redirect MUST be the same as the current
3297 * first-hop router for the specified ICMP Destination Address.
3298 */
3299
Alexander Aringf997c552016-06-15 21:20:23 +02003300 if (!ndisc_parse_options(skb->dev, msg->opt, optlen, &ndopts)) {
David S. Millere8599ff2012-07-11 23:43:53 -07003301 net_dbg_ratelimited("rt6_redirect: invalid ND options\n");
3302 return;
3303 }
David S. Miller6e157b62012-07-12 00:05:02 -07003304
3305 lladdr = NULL;
David S. Millere8599ff2012-07-11 23:43:53 -07003306 if (ndopts.nd_opts_tgt_lladdr) {
3307 lladdr = ndisc_opt_addr_data(ndopts.nd_opts_tgt_lladdr,
3308 skb->dev);
3309 if (!lladdr) {
3310 net_dbg_ratelimited("rt6_redirect: invalid link-layer address length\n");
3311 return;
3312 }
3313 }
3314
David S. Miller6e157b62012-07-12 00:05:02 -07003315 rt = (struct rt6_info *) dst;
Matthias Schifferec13ad12015-11-02 01:24:38 +01003316 if (rt->rt6i_flags & RTF_REJECT) {
David S. Miller6e157b62012-07-12 00:05:02 -07003317 net_dbg_ratelimited("rt6_redirect: source isn't a valid nexthop for redirect target\n");
3318 return;
3319 }
3320
3321 /* Redirect received -> path was valid.
3322 * Look, redirects are sent only in response to data packets,
3323 * so that this nexthop apparently is reachable. --ANK
3324 */
Julian Anastasov0dec8792017-02-06 23:14:16 +02003325 dst_confirm_neigh(&rt->dst, &ipv6_hdr(skb)->saddr);
David S. Miller6e157b62012-07-12 00:05:02 -07003326
YOSHIFUJI Hideaki / 吉藤英明71bcdba2013-01-05 16:34:51 +00003327 neigh = __neigh_lookup(&nd_tbl, &msg->target, skb->dev, 1);
David S. Millere8599ff2012-07-11 23:43:53 -07003328 if (!neigh)
3329 return;
3330
Linus Torvalds1da177e2005-04-16 15:20:36 -07003331 /*
3332 * We have finally decided to accept it.
3333 */
3334
Alexander Aringf997c552016-06-15 21:20:23 +02003335 ndisc_update(skb->dev, neigh, lladdr, NUD_STALE,
Linus Torvalds1da177e2005-04-16 15:20:36 -07003336 NEIGH_UPDATE_F_WEAK_OVERRIDE|
3337 NEIGH_UPDATE_F_OVERRIDE|
3338 (on_link ? 0 : (NEIGH_UPDATE_F_OVERRIDE_ISROUTER|
Alexander Aringf997c552016-06-15 21:20:23 +02003339 NEIGH_UPDATE_F_ISROUTER)),
3340 NDISC_REDIRECT, &ndopts);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003341
David Ahern4d85cd02018-04-20 15:37:59 -07003342 rcu_read_lock();
David Aherna68886a2018-04-20 15:38:02 -07003343 from = rcu_dereference(rt->from);
David Ahern8a14e462018-04-23 11:32:07 -07003344 fib6_info_hold(from);
David Ahern4d85cd02018-04-20 15:37:59 -07003345 rcu_read_unlock();
David Ahern8a14e462018-04-23 11:32:07 -07003346
3347 nrt = ip6_rt_cache_alloc(from, &msg->dest, NULL);
David S. Miller38308472011-12-03 18:02:47 -05003348 if (!nrt)
Linus Torvalds1da177e2005-04-16 15:20:36 -07003349 goto out;
3350
3351 nrt->rt6i_flags = RTF_GATEWAY|RTF_UP|RTF_DYNAMIC|RTF_CACHE;
3352 if (on_link)
3353 nrt->rt6i_flags &= ~RTF_GATEWAY;
3354
Alexey Dobriyan4e3fd7a2011-11-21 03:39:03 +00003355 nrt->rt6i_gateway = *(struct in6_addr *)neigh->primary_key;
Linus Torvalds1da177e2005-04-16 15:20:36 -07003356
Wei Wang2b760fc2017-10-06 12:06:03 -07003357 /* No need to remove rt from the exception table if rt is
3358 * a cached route because rt6_insert_exception() will
3359 * takes care of it
3360 */
David Ahern8a14e462018-04-23 11:32:07 -07003361 if (rt6_insert_exception(nrt, from)) {
Wei Wang2b760fc2017-10-06 12:06:03 -07003362 dst_release_immediate(&nrt->dst);
3363 goto out;
3364 }
Linus Torvalds1da177e2005-04-16 15:20:36 -07003365
Changli Gaod8d1f302010-06-10 23:31:35 -07003366 netevent.old = &rt->dst;
3367 netevent.new = &nrt->dst;
YOSHIFUJI Hideaki / 吉藤英明71bcdba2013-01-05 16:34:51 +00003368 netevent.daddr = &msg->dest;
YOSHIFUJI Hideaki / 吉藤英明60592832013-01-14 09:28:27 +00003369 netevent.neigh = neigh;
Tom Tucker8d717402006-07-30 20:43:36 -07003370 call_netevent_notifiers(NETEVENT_REDIRECT, &netevent);
3371
Linus Torvalds1da177e2005-04-16 15:20:36 -07003372out:
David Ahern8a14e462018-04-23 11:32:07 -07003373 fib6_info_release(from);
David S. Millere8599ff2012-07-11 23:43:53 -07003374 neigh_release(neigh);
David S. Miller6e157b62012-07-12 00:05:02 -07003375}
3376
YOSHIFUJI Hideaki70ceb4f2006-03-20 17:06:24 -08003377#ifdef CONFIG_IPV6_ROUTE_INFO
David Ahern8d1c8022018-04-17 17:33:26 -07003378static struct fib6_info *rt6_get_route_info(struct net *net,
Eric Dumazetb71d1d42011-04-22 04:53:02 +00003379 const struct in6_addr *prefix, int prefixlen,
David Ahern830218c2016-10-24 10:52:35 -07003380 const struct in6_addr *gwaddr,
3381 struct net_device *dev)
YOSHIFUJI Hideaki70ceb4f2006-03-20 17:06:24 -08003382{
David Ahern830218c2016-10-24 10:52:35 -07003383 u32 tb_id = l3mdev_fib_table(dev) ? : RT6_TABLE_INFO;
3384 int ifindex = dev->ifindex;
YOSHIFUJI Hideaki70ceb4f2006-03-20 17:06:24 -08003385 struct fib6_node *fn;
David Ahern8d1c8022018-04-17 17:33:26 -07003386 struct fib6_info *rt = NULL;
Thomas Grafc71099a2006-08-04 23:20:06 -07003387 struct fib6_table *table;
YOSHIFUJI Hideaki70ceb4f2006-03-20 17:06:24 -08003388
David Ahern830218c2016-10-24 10:52:35 -07003389 table = fib6_get_table(net, tb_id);
David S. Miller38308472011-12-03 18:02:47 -05003390 if (!table)
Thomas Grafc71099a2006-08-04 23:20:06 -07003391 return NULL;
3392
Wei Wang66f5d6c2017-10-06 12:06:10 -07003393 rcu_read_lock();
Wei Wang38fbeee2017-10-06 12:06:02 -07003394 fn = fib6_locate(&table->tb6_root, prefix, prefixlen, NULL, 0, true);
YOSHIFUJI Hideaki70ceb4f2006-03-20 17:06:24 -08003395 if (!fn)
3396 goto out;
3397
Wei Wang66f5d6c2017-10-06 12:06:10 -07003398 for_each_fib6_node_rt_rcu(fn) {
David Ahern5e670d82018-04-17 17:33:14 -07003399 if (rt->fib6_nh.nh_dev->ifindex != ifindex)
YOSHIFUJI Hideaki70ceb4f2006-03-20 17:06:24 -08003400 continue;
David Ahern93c2fb22018-04-18 15:38:59 -07003401 if ((rt->fib6_flags & (RTF_ROUTEINFO|RTF_GATEWAY)) != (RTF_ROUTEINFO|RTF_GATEWAY))
YOSHIFUJI Hideaki70ceb4f2006-03-20 17:06:24 -08003402 continue;
David Ahern5e670d82018-04-17 17:33:14 -07003403 if (!ipv6_addr_equal(&rt->fib6_nh.nh_gw, gwaddr))
YOSHIFUJI Hideaki70ceb4f2006-03-20 17:06:24 -08003404 continue;
David Ahern8d1c8022018-04-17 17:33:26 -07003405 fib6_info_hold(rt);
YOSHIFUJI Hideaki70ceb4f2006-03-20 17:06:24 -08003406 break;
3407 }
3408out:
Wei Wang66f5d6c2017-10-06 12:06:10 -07003409 rcu_read_unlock();
YOSHIFUJI Hideaki70ceb4f2006-03-20 17:06:24 -08003410 return rt;
3411}
3412
David Ahern8d1c8022018-04-17 17:33:26 -07003413static struct fib6_info *rt6_add_route_info(struct net *net,
Eric Dumazetb71d1d42011-04-22 04:53:02 +00003414 const struct in6_addr *prefix, int prefixlen,
David Ahern830218c2016-10-24 10:52:35 -07003415 const struct in6_addr *gwaddr,
3416 struct net_device *dev,
Eric Dumazet95c96172012-04-15 05:58:06 +00003417 unsigned int pref)
YOSHIFUJI Hideaki70ceb4f2006-03-20 17:06:24 -08003418{
Thomas Graf86872cb2006-08-22 00:01:08 -07003419 struct fib6_config cfg = {
Rami Rosen238fc7e2008-02-09 23:43:11 -08003420 .fc_metric = IP6_RT_PRIO_USER,
David Ahern830218c2016-10-24 10:52:35 -07003421 .fc_ifindex = dev->ifindex,
Thomas Graf86872cb2006-08-22 00:01:08 -07003422 .fc_dst_len = prefixlen,
3423 .fc_flags = RTF_GATEWAY | RTF_ADDRCONF | RTF_ROUTEINFO |
3424 RTF_UP | RTF_PREF(pref),
Xin Longb91d5322017-08-03 14:13:46 +08003425 .fc_protocol = RTPROT_RA,
David Aherne8478e82018-04-17 17:33:13 -07003426 .fc_type = RTN_UNICAST,
Eric W. Biederman15e47302012-09-07 20:12:54 +00003427 .fc_nlinfo.portid = 0,
Daniel Lezcanoefa2cea2008-03-04 13:46:48 -08003428 .fc_nlinfo.nlh = NULL,
3429 .fc_nlinfo.nl_net = net,
Thomas Graf86872cb2006-08-22 00:01:08 -07003430 };
YOSHIFUJI Hideaki70ceb4f2006-03-20 17:06:24 -08003431
David Ahern830218c2016-10-24 10:52:35 -07003432 cfg.fc_table = l3mdev_fib_table(dev) ? : RT6_TABLE_INFO,
Alexey Dobriyan4e3fd7a2011-11-21 03:39:03 +00003433 cfg.fc_dst = *prefix;
3434 cfg.fc_gateway = *gwaddr;
Thomas Graf86872cb2006-08-22 00:01:08 -07003435
YOSHIFUJI Hideakie317da92006-03-20 17:06:42 -08003436 /* We should treat it as a default route if prefix length is 0. */
3437 if (!prefixlen)
Thomas Graf86872cb2006-08-22 00:01:08 -07003438 cfg.fc_flags |= RTF_DEFAULT;
YOSHIFUJI Hideaki70ceb4f2006-03-20 17:06:24 -08003439
David Ahernacb54e32018-04-17 17:33:22 -07003440 ip6_route_add(&cfg, GFP_ATOMIC, NULL);
YOSHIFUJI Hideaki70ceb4f2006-03-20 17:06:24 -08003441
David Ahern830218c2016-10-24 10:52:35 -07003442 return rt6_get_route_info(net, prefix, prefixlen, gwaddr, dev);
YOSHIFUJI Hideaki70ceb4f2006-03-20 17:06:24 -08003443}
3444#endif
3445
David Ahern8d1c8022018-04-17 17:33:26 -07003446struct fib6_info *rt6_get_dflt_router(struct net *net,
David Ahernafb1d4b52018-04-17 17:33:11 -07003447 const struct in6_addr *addr,
3448 struct net_device *dev)
YOSHIFUJI Hideaki1ab14572007-02-09 23:24:49 +09003449{
David Ahern830218c2016-10-24 10:52:35 -07003450 u32 tb_id = l3mdev_fib_table(dev) ? : RT6_TABLE_DFLT;
David Ahern8d1c8022018-04-17 17:33:26 -07003451 struct fib6_info *rt;
Thomas Grafc71099a2006-08-04 23:20:06 -07003452 struct fib6_table *table;
Linus Torvalds1da177e2005-04-16 15:20:36 -07003453
David Ahernafb1d4b52018-04-17 17:33:11 -07003454 table = fib6_get_table(net, tb_id);
David S. Miller38308472011-12-03 18:02:47 -05003455 if (!table)
Thomas Grafc71099a2006-08-04 23:20:06 -07003456 return NULL;
Linus Torvalds1da177e2005-04-16 15:20:36 -07003457
Wei Wang66f5d6c2017-10-06 12:06:10 -07003458 rcu_read_lock();
3459 for_each_fib6_node_rt_rcu(&table->tb6_root) {
David Ahern5e670d82018-04-17 17:33:14 -07003460 if (dev == rt->fib6_nh.nh_dev &&
David Ahern93c2fb22018-04-18 15:38:59 -07003461 ((rt->fib6_flags & (RTF_ADDRCONF | RTF_DEFAULT)) == (RTF_ADDRCONF | RTF_DEFAULT)) &&
David Ahern5e670d82018-04-17 17:33:14 -07003462 ipv6_addr_equal(&rt->fib6_nh.nh_gw, addr))
Linus Torvalds1da177e2005-04-16 15:20:36 -07003463 break;
3464 }
3465 if (rt)
David Ahern8d1c8022018-04-17 17:33:26 -07003466 fib6_info_hold(rt);
Wei Wang66f5d6c2017-10-06 12:06:10 -07003467 rcu_read_unlock();
Linus Torvalds1da177e2005-04-16 15:20:36 -07003468 return rt;
3469}
3470
David Ahern8d1c8022018-04-17 17:33:26 -07003471struct fib6_info *rt6_add_dflt_router(struct net *net,
David Ahernafb1d4b52018-04-17 17:33:11 -07003472 const struct in6_addr *gwaddr,
YOSHIFUJI Hideakiebacaaa2006-03-20 17:04:53 -08003473 struct net_device *dev,
3474 unsigned int pref)
Linus Torvalds1da177e2005-04-16 15:20:36 -07003475{
Thomas Graf86872cb2006-08-22 00:01:08 -07003476 struct fib6_config cfg = {
David Ahernca254492015-10-12 11:47:10 -07003477 .fc_table = l3mdev_fib_table(dev) ? : RT6_TABLE_DFLT,
Rami Rosen238fc7e2008-02-09 23:43:11 -08003478 .fc_metric = IP6_RT_PRIO_USER,
Thomas Graf86872cb2006-08-22 00:01:08 -07003479 .fc_ifindex = dev->ifindex,
3480 .fc_flags = RTF_GATEWAY | RTF_ADDRCONF | RTF_DEFAULT |
3481 RTF_UP | RTF_EXPIRES | RTF_PREF(pref),
Xin Longb91d5322017-08-03 14:13:46 +08003482 .fc_protocol = RTPROT_RA,
David Aherne8478e82018-04-17 17:33:13 -07003483 .fc_type = RTN_UNICAST,
Eric W. Biederman15e47302012-09-07 20:12:54 +00003484 .fc_nlinfo.portid = 0,
Daniel Lezcano55786892008-03-04 13:47:47 -08003485 .fc_nlinfo.nlh = NULL,
David Ahernafb1d4b52018-04-17 17:33:11 -07003486 .fc_nlinfo.nl_net = net,
Thomas Graf86872cb2006-08-22 00:01:08 -07003487 };
Linus Torvalds1da177e2005-04-16 15:20:36 -07003488
Alexey Dobriyan4e3fd7a2011-11-21 03:39:03 +00003489 cfg.fc_gateway = *gwaddr;
Linus Torvalds1da177e2005-04-16 15:20:36 -07003490
David Ahernacb54e32018-04-17 17:33:22 -07003491 if (!ip6_route_add(&cfg, GFP_ATOMIC, NULL)) {
David Ahern830218c2016-10-24 10:52:35 -07003492 struct fib6_table *table;
3493
3494 table = fib6_get_table(dev_net(dev), cfg.fc_table);
3495 if (table)
3496 table->flags |= RT6_TABLE_HAS_DFLT_ROUTER;
3497 }
Linus Torvalds1da177e2005-04-16 15:20:36 -07003498
David Ahernafb1d4b52018-04-17 17:33:11 -07003499 return rt6_get_dflt_router(net, gwaddr, dev);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003500}
3501
David Ahernafb1d4b52018-04-17 17:33:11 -07003502static void __rt6_purge_dflt_routers(struct net *net,
3503 struct fib6_table *table)
Linus Torvalds1da177e2005-04-16 15:20:36 -07003504{
David Ahern8d1c8022018-04-17 17:33:26 -07003505 struct fib6_info *rt;
Linus Torvalds1da177e2005-04-16 15:20:36 -07003506
3507restart:
Wei Wang66f5d6c2017-10-06 12:06:10 -07003508 rcu_read_lock();
3509 for_each_fib6_node_rt_rcu(&table->tb6_root) {
David Aherndcd1f572018-04-18 15:39:05 -07003510 struct net_device *dev = fib6_info_nh_dev(rt);
3511 struct inet6_dev *idev = dev ? __in6_dev_get(dev) : NULL;
3512
David Ahern93c2fb22018-04-18 15:38:59 -07003513 if (rt->fib6_flags & (RTF_DEFAULT | RTF_ADDRCONF) &&
David Aherndcd1f572018-04-18 15:39:05 -07003514 (!idev || idev->cnf.accept_ra != 2)) {
David Ahern93531c62018-04-17 17:33:25 -07003515 fib6_info_hold(rt);
3516 rcu_read_unlock();
3517 ip6_del_rt(net, rt);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003518 goto restart;
3519 }
3520 }
Wei Wang66f5d6c2017-10-06 12:06:10 -07003521 rcu_read_unlock();
David Ahern830218c2016-10-24 10:52:35 -07003522
3523 table->flags &= ~RT6_TABLE_HAS_DFLT_ROUTER;
3524}
3525
3526void rt6_purge_dflt_routers(struct net *net)
3527{
3528 struct fib6_table *table;
3529 struct hlist_head *head;
3530 unsigned int h;
3531
3532 rcu_read_lock();
3533
3534 for (h = 0; h < FIB6_TABLE_HASHSZ; h++) {
3535 head = &net->ipv6.fib_table_hash[h];
3536 hlist_for_each_entry_rcu(table, head, tb6_hlist) {
3537 if (table->flags & RT6_TABLE_HAS_DFLT_ROUTER)
David Ahernafb1d4b52018-04-17 17:33:11 -07003538 __rt6_purge_dflt_routers(net, table);
David Ahern830218c2016-10-24 10:52:35 -07003539 }
3540 }
3541
3542 rcu_read_unlock();
Linus Torvalds1da177e2005-04-16 15:20:36 -07003543}
3544
Daniel Lezcano55786892008-03-04 13:47:47 -08003545static void rtmsg_to_fib6_config(struct net *net,
3546 struct in6_rtmsg *rtmsg,
Thomas Graf86872cb2006-08-22 00:01:08 -07003547 struct fib6_config *cfg)
3548{
3549 memset(cfg, 0, sizeof(*cfg));
3550
David Ahernca254492015-10-12 11:47:10 -07003551 cfg->fc_table = l3mdev_fib_table_by_index(net, rtmsg->rtmsg_ifindex) ?
3552 : RT6_TABLE_MAIN;
Thomas Graf86872cb2006-08-22 00:01:08 -07003553 cfg->fc_ifindex = rtmsg->rtmsg_ifindex;
3554 cfg->fc_metric = rtmsg->rtmsg_metric;
3555 cfg->fc_expires = rtmsg->rtmsg_info;
3556 cfg->fc_dst_len = rtmsg->rtmsg_dst_len;
3557 cfg->fc_src_len = rtmsg->rtmsg_src_len;
3558 cfg->fc_flags = rtmsg->rtmsg_flags;
David Aherne8478e82018-04-17 17:33:13 -07003559 cfg->fc_type = rtmsg->rtmsg_type;
Thomas Graf86872cb2006-08-22 00:01:08 -07003560
Daniel Lezcano55786892008-03-04 13:47:47 -08003561 cfg->fc_nlinfo.nl_net = net;
Benjamin Theryf1243c22008-02-26 18:10:03 -08003562
Alexey Dobriyan4e3fd7a2011-11-21 03:39:03 +00003563 cfg->fc_dst = rtmsg->rtmsg_dst;
3564 cfg->fc_src = rtmsg->rtmsg_src;
3565 cfg->fc_gateway = rtmsg->rtmsg_gateway;
Thomas Graf86872cb2006-08-22 00:01:08 -07003566}
3567
Daniel Lezcano55786892008-03-04 13:47:47 -08003568int ipv6_route_ioctl(struct net *net, unsigned int cmd, void __user *arg)
Linus Torvalds1da177e2005-04-16 15:20:36 -07003569{
Thomas Graf86872cb2006-08-22 00:01:08 -07003570 struct fib6_config cfg;
Linus Torvalds1da177e2005-04-16 15:20:36 -07003571 struct in6_rtmsg rtmsg;
3572 int err;
3573
Ian Morris67ba4152014-08-24 21:53:10 +01003574 switch (cmd) {
Linus Torvalds1da177e2005-04-16 15:20:36 -07003575 case SIOCADDRT: /* Add a route */
3576 case SIOCDELRT: /* Delete a route */
Eric W. Biedermanaf31f412012-11-16 03:03:06 +00003577 if (!ns_capable(net->user_ns, CAP_NET_ADMIN))
Linus Torvalds1da177e2005-04-16 15:20:36 -07003578 return -EPERM;
3579 err = copy_from_user(&rtmsg, arg,
3580 sizeof(struct in6_rtmsg));
3581 if (err)
3582 return -EFAULT;
Thomas Graf86872cb2006-08-22 00:01:08 -07003583
Daniel Lezcano55786892008-03-04 13:47:47 -08003584 rtmsg_to_fib6_config(net, &rtmsg, &cfg);
Thomas Graf86872cb2006-08-22 00:01:08 -07003585
Linus Torvalds1da177e2005-04-16 15:20:36 -07003586 rtnl_lock();
3587 switch (cmd) {
3588 case SIOCADDRT:
David Ahernacb54e32018-04-17 17:33:22 -07003589 err = ip6_route_add(&cfg, GFP_KERNEL, NULL);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003590 break;
3591 case SIOCDELRT:
David Ahern333c4302017-05-21 10:12:04 -06003592 err = ip6_route_del(&cfg, NULL);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003593 break;
3594 default:
3595 err = -EINVAL;
3596 }
3597 rtnl_unlock();
3598
3599 return err;
Stephen Hemminger3ff50b72007-04-20 17:09:22 -07003600 }
Linus Torvalds1da177e2005-04-16 15:20:36 -07003601
3602 return -EINVAL;
3603}
3604
3605/*
3606 * Drop the packet on the floor
3607 */
3608
Brian Haleyd5fdd6b2009-06-23 04:31:07 -07003609static int ip6_pkt_drop(struct sk_buff *skb, u8 code, int ipstats_mib_noroutes)
Linus Torvalds1da177e2005-04-16 15:20:36 -07003610{
YOSHIFUJI Hideaki612f09e2007-04-13 16:18:02 -07003611 int type;
Eric Dumazetadf30902009-06-02 05:19:30 +00003612 struct dst_entry *dst = skb_dst(skb);
YOSHIFUJI Hideaki612f09e2007-04-13 16:18:02 -07003613 switch (ipstats_mib_noroutes) {
3614 case IPSTATS_MIB_INNOROUTES:
Arnaldo Carvalho de Melo0660e032007-04-25 17:54:47 -07003615 type = ipv6_addr_type(&ipv6_hdr(skb)->daddr);
Ulrich Weber45bb0062010-02-25 23:28:58 +00003616 if (type == IPV6_ADDR_ANY) {
Stephen Suryaputrabdb7cc62018-04-16 13:42:16 -04003617 IP6_INC_STATS(dev_net(dst->dev),
3618 __in6_dev_get_safely(skb->dev),
Denis V. Lunev3bd653c2008-10-08 10:54:51 -07003619 IPSTATS_MIB_INADDRERRORS);
YOSHIFUJI Hideaki612f09e2007-04-13 16:18:02 -07003620 break;
3621 }
3622 /* FALLTHROUGH */
3623 case IPSTATS_MIB_OUTNOROUTES:
Denis V. Lunev3bd653c2008-10-08 10:54:51 -07003624 IP6_INC_STATS(dev_net(dst->dev), ip6_dst_idev(dst),
3625 ipstats_mib_noroutes);
YOSHIFUJI Hideaki612f09e2007-04-13 16:18:02 -07003626 break;
3627 }
Alexey Dobriyan3ffe5332010-02-18 08:25:24 +00003628 icmpv6_send(skb, ICMPV6_DEST_UNREACH, code, 0);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003629 kfree_skb(skb);
3630 return 0;
3631}
3632
Thomas Graf9ce8ade2006-10-18 20:46:54 -07003633static int ip6_pkt_discard(struct sk_buff *skb)
3634{
YOSHIFUJI Hideaki612f09e2007-04-13 16:18:02 -07003635 return ip6_pkt_drop(skb, ICMPV6_NOROUTE, IPSTATS_MIB_INNOROUTES);
Thomas Graf9ce8ade2006-10-18 20:46:54 -07003636}
3637
Eric W. Biedermanede20592015-10-07 16:48:47 -05003638static int ip6_pkt_discard_out(struct net *net, struct sock *sk, struct sk_buff *skb)
Linus Torvalds1da177e2005-04-16 15:20:36 -07003639{
Eric Dumazetadf30902009-06-02 05:19:30 +00003640 skb->dev = skb_dst(skb)->dev;
YOSHIFUJI Hideaki612f09e2007-04-13 16:18:02 -07003641 return ip6_pkt_drop(skb, ICMPV6_NOROUTE, IPSTATS_MIB_OUTNOROUTES);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003642}
3643
Thomas Graf9ce8ade2006-10-18 20:46:54 -07003644static int ip6_pkt_prohibit(struct sk_buff *skb)
3645{
YOSHIFUJI Hideaki612f09e2007-04-13 16:18:02 -07003646 return ip6_pkt_drop(skb, ICMPV6_ADM_PROHIBITED, IPSTATS_MIB_INNOROUTES);
Thomas Graf9ce8ade2006-10-18 20:46:54 -07003647}
3648
Eric W. Biedermanede20592015-10-07 16:48:47 -05003649static int ip6_pkt_prohibit_out(struct net *net, struct sock *sk, struct sk_buff *skb)
Thomas Graf9ce8ade2006-10-18 20:46:54 -07003650{
Eric Dumazetadf30902009-06-02 05:19:30 +00003651 skb->dev = skb_dst(skb)->dev;
YOSHIFUJI Hideaki612f09e2007-04-13 16:18:02 -07003652 return ip6_pkt_drop(skb, ICMPV6_ADM_PROHIBITED, IPSTATS_MIB_OUTNOROUTES);
Thomas Graf9ce8ade2006-10-18 20:46:54 -07003653}
3654
Linus Torvalds1da177e2005-04-16 15:20:36 -07003655/*
3656 * Allocate a dst for local (unicast / anycast) address.
3657 */
3658
David Ahern360a9882018-04-18 15:39:00 -07003659struct fib6_info *addrconf_f6i_alloc(struct net *net,
3660 struct inet6_dev *idev,
3661 const struct in6_addr *addr,
3662 bool anycast, gfp_t gfp_flags)
Linus Torvalds1da177e2005-04-16 15:20:36 -07003663{
David Ahernca254492015-10-12 11:47:10 -07003664 u32 tb_id;
David Ahern4832c302017-08-17 12:17:20 -07003665 struct net_device *dev = idev->dev;
David Ahern360a9882018-04-18 15:39:00 -07003666 struct fib6_info *f6i;
David Ahern5f02ce242016-09-10 12:09:54 -07003667
David Ahern360a9882018-04-18 15:39:00 -07003668 f6i = fib6_info_alloc(gfp_flags);
3669 if (!f6i)
Linus Torvalds1da177e2005-04-16 15:20:36 -07003670 return ERR_PTR(-ENOMEM);
3671
David Ahern360a9882018-04-18 15:39:00 -07003672 f6i->dst_nocount = true;
David Ahern360a9882018-04-18 15:39:00 -07003673 f6i->dst_host = true;
3674 f6i->fib6_protocol = RTPROT_KERNEL;
3675 f6i->fib6_flags = RTF_UP | RTF_NONEXTHOP;
David Aherne8478e82018-04-17 17:33:13 -07003676 if (anycast) {
David Ahern360a9882018-04-18 15:39:00 -07003677 f6i->fib6_type = RTN_ANYCAST;
3678 f6i->fib6_flags |= RTF_ANYCAST;
David Aherne8478e82018-04-17 17:33:13 -07003679 } else {
David Ahern360a9882018-04-18 15:39:00 -07003680 f6i->fib6_type = RTN_LOCAL;
3681 f6i->fib6_flags |= RTF_LOCAL;
David Aherne8478e82018-04-17 17:33:13 -07003682 }
Linus Torvalds1da177e2005-04-16 15:20:36 -07003683
David Ahern360a9882018-04-18 15:39:00 -07003684 f6i->fib6_nh.nh_gw = *addr;
David Ahern93531c62018-04-17 17:33:25 -07003685 dev_hold(dev);
David Ahern360a9882018-04-18 15:39:00 -07003686 f6i->fib6_nh.nh_dev = dev;
3687 f6i->fib6_dst.addr = *addr;
3688 f6i->fib6_dst.plen = 128;
David Ahernca254492015-10-12 11:47:10 -07003689 tb_id = l3mdev_fib_table(idev->dev) ? : RT6_TABLE_LOCAL;
David Ahern360a9882018-04-18 15:39:00 -07003690 f6i->fib6_table = fib6_get_table(net, tb_id);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003691
David Ahern360a9882018-04-18 15:39:00 -07003692 return f6i;
Linus Torvalds1da177e2005-04-16 15:20:36 -07003693}
3694
Daniel Walterc3968a82011-04-13 21:10:57 +00003695/* remove deleted ip from prefsrc entries */
3696struct arg_dev_net_ip {
3697 struct net_device *dev;
3698 struct net *net;
3699 struct in6_addr *addr;
3700};
3701
David Ahern8d1c8022018-04-17 17:33:26 -07003702static int fib6_remove_prefsrc(struct fib6_info *rt, void *arg)
Daniel Walterc3968a82011-04-13 21:10:57 +00003703{
3704 struct net_device *dev = ((struct arg_dev_net_ip *)arg)->dev;
3705 struct net *net = ((struct arg_dev_net_ip *)arg)->net;
3706 struct in6_addr *addr = ((struct arg_dev_net_ip *)arg)->addr;
3707
David Ahern5e670d82018-04-17 17:33:14 -07003708 if (((void *)rt->fib6_nh.nh_dev == dev || !dev) &&
David Ahern421842e2018-04-17 17:33:18 -07003709 rt != net->ipv6.fib6_null_entry &&
David Ahern93c2fb22018-04-18 15:38:59 -07003710 ipv6_addr_equal(addr, &rt->fib6_prefsrc.addr)) {
Wei Wang60006a42017-10-06 12:05:58 -07003711 spin_lock_bh(&rt6_exception_lock);
Daniel Walterc3968a82011-04-13 21:10:57 +00003712 /* remove prefsrc entry */
David Ahern93c2fb22018-04-18 15:38:59 -07003713 rt->fib6_prefsrc.plen = 0;
Wei Wang60006a42017-10-06 12:05:58 -07003714 /* need to update cache as well */
3715 rt6_exceptions_remove_prefsrc(rt);
3716 spin_unlock_bh(&rt6_exception_lock);
Daniel Walterc3968a82011-04-13 21:10:57 +00003717 }
3718 return 0;
3719}
3720
3721void rt6_remove_prefsrc(struct inet6_ifaddr *ifp)
3722{
3723 struct net *net = dev_net(ifp->idev->dev);
3724 struct arg_dev_net_ip adni = {
3725 .dev = ifp->idev->dev,
3726 .net = net,
3727 .addr = &ifp->addr,
3728 };
Li RongQing0c3584d2013-12-27 16:32:38 +08003729 fib6_clean_all(net, fib6_remove_prefsrc, &adni);
Daniel Walterc3968a82011-04-13 21:10:57 +00003730}
3731
Duan Jiongbe7a0102014-05-15 15:56:14 +08003732#define RTF_RA_ROUTER (RTF_ADDRCONF | RTF_DEFAULT | RTF_GATEWAY)
Duan Jiongbe7a0102014-05-15 15:56:14 +08003733
3734/* Remove routers and update dst entries when gateway turn into host. */
David Ahern8d1c8022018-04-17 17:33:26 -07003735static int fib6_clean_tohost(struct fib6_info *rt, void *arg)
Duan Jiongbe7a0102014-05-15 15:56:14 +08003736{
3737 struct in6_addr *gateway = (struct in6_addr *)arg;
3738
David Ahern93c2fb22018-04-18 15:38:59 -07003739 if (((rt->fib6_flags & RTF_RA_ROUTER) == RTF_RA_ROUTER) &&
David Ahern5e670d82018-04-17 17:33:14 -07003740 ipv6_addr_equal(gateway, &rt->fib6_nh.nh_gw)) {
Duan Jiongbe7a0102014-05-15 15:56:14 +08003741 return -1;
3742 }
Wei Wangb16cb452017-10-06 12:06:00 -07003743
3744 /* Further clean up cached routes in exception table.
3745 * This is needed because cached route may have a different
3746 * gateway than its 'parent' in the case of an ip redirect.
3747 */
3748 rt6_exceptions_clean_tohost(rt, gateway);
3749
Duan Jiongbe7a0102014-05-15 15:56:14 +08003750 return 0;
3751}
3752
3753void rt6_clean_tohost(struct net *net, struct in6_addr *gateway)
3754{
3755 fib6_clean_all(net, fib6_clean_tohost, gateway);
3756}
3757
Ido Schimmel2127d952018-01-07 12:45:03 +02003758struct arg_netdev_event {
3759 const struct net_device *dev;
Ido Schimmel4c981e22018-01-07 12:45:04 +02003760 union {
3761 unsigned int nh_flags;
3762 unsigned long event;
3763 };
Ido Schimmel2127d952018-01-07 12:45:03 +02003764};
3765
David Ahern8d1c8022018-04-17 17:33:26 -07003766static struct fib6_info *rt6_multipath_first_sibling(const struct fib6_info *rt)
Ido Schimmeld7dedee2018-01-09 16:40:25 +02003767{
David Ahern8d1c8022018-04-17 17:33:26 -07003768 struct fib6_info *iter;
Ido Schimmeld7dedee2018-01-09 16:40:25 +02003769 struct fib6_node *fn;
3770
David Ahern93c2fb22018-04-18 15:38:59 -07003771 fn = rcu_dereference_protected(rt->fib6_node,
3772 lockdep_is_held(&rt->fib6_table->tb6_lock));
Ido Schimmeld7dedee2018-01-09 16:40:25 +02003773 iter = rcu_dereference_protected(fn->leaf,
David Ahern93c2fb22018-04-18 15:38:59 -07003774 lockdep_is_held(&rt->fib6_table->tb6_lock));
Ido Schimmeld7dedee2018-01-09 16:40:25 +02003775 while (iter) {
David Ahern93c2fb22018-04-18 15:38:59 -07003776 if (iter->fib6_metric == rt->fib6_metric &&
Ido Schimmeld7dedee2018-01-09 16:40:25 +02003777 rt6_qualify_for_ecmp(iter))
3778 return iter;
3779 iter = rcu_dereference_protected(iter->rt6_next,
David Ahern93c2fb22018-04-18 15:38:59 -07003780 lockdep_is_held(&rt->fib6_table->tb6_lock));
Ido Schimmeld7dedee2018-01-09 16:40:25 +02003781 }
3782
3783 return NULL;
3784}
3785
David Ahern8d1c8022018-04-17 17:33:26 -07003786static bool rt6_is_dead(const struct fib6_info *rt)
Ido Schimmeld7dedee2018-01-09 16:40:25 +02003787{
David Ahern5e670d82018-04-17 17:33:14 -07003788 if (rt->fib6_nh.nh_flags & RTNH_F_DEAD ||
3789 (rt->fib6_nh.nh_flags & RTNH_F_LINKDOWN &&
David Aherndcd1f572018-04-18 15:39:05 -07003790 fib6_ignore_linkdown(rt)))
Ido Schimmeld7dedee2018-01-09 16:40:25 +02003791 return true;
3792
3793 return false;
3794}
3795
David Ahern8d1c8022018-04-17 17:33:26 -07003796static int rt6_multipath_total_weight(const struct fib6_info *rt)
Ido Schimmeld7dedee2018-01-09 16:40:25 +02003797{
David Ahern8d1c8022018-04-17 17:33:26 -07003798 struct fib6_info *iter;
Ido Schimmeld7dedee2018-01-09 16:40:25 +02003799 int total = 0;
3800
3801 if (!rt6_is_dead(rt))
David Ahern5e670d82018-04-17 17:33:14 -07003802 total += rt->fib6_nh.nh_weight;
Ido Schimmeld7dedee2018-01-09 16:40:25 +02003803
David Ahern93c2fb22018-04-18 15:38:59 -07003804 list_for_each_entry(iter, &rt->fib6_siblings, fib6_siblings) {
Ido Schimmeld7dedee2018-01-09 16:40:25 +02003805 if (!rt6_is_dead(iter))
David Ahern5e670d82018-04-17 17:33:14 -07003806 total += iter->fib6_nh.nh_weight;
Ido Schimmeld7dedee2018-01-09 16:40:25 +02003807 }
3808
3809 return total;
3810}
3811
David Ahern8d1c8022018-04-17 17:33:26 -07003812static void rt6_upper_bound_set(struct fib6_info *rt, int *weight, int total)
Ido Schimmeld7dedee2018-01-09 16:40:25 +02003813{
3814 int upper_bound = -1;
3815
3816 if (!rt6_is_dead(rt)) {
David Ahern5e670d82018-04-17 17:33:14 -07003817 *weight += rt->fib6_nh.nh_weight;
Ido Schimmeld7dedee2018-01-09 16:40:25 +02003818 upper_bound = DIV_ROUND_CLOSEST_ULL((u64) (*weight) << 31,
3819 total) - 1;
3820 }
David Ahern5e670d82018-04-17 17:33:14 -07003821 atomic_set(&rt->fib6_nh.nh_upper_bound, upper_bound);
Ido Schimmeld7dedee2018-01-09 16:40:25 +02003822}
3823
David Ahern8d1c8022018-04-17 17:33:26 -07003824static void rt6_multipath_upper_bound_set(struct fib6_info *rt, int total)
Ido Schimmeld7dedee2018-01-09 16:40:25 +02003825{
David Ahern8d1c8022018-04-17 17:33:26 -07003826 struct fib6_info *iter;
Ido Schimmeld7dedee2018-01-09 16:40:25 +02003827 int weight = 0;
3828
3829 rt6_upper_bound_set(rt, &weight, total);
3830
David Ahern93c2fb22018-04-18 15:38:59 -07003831 list_for_each_entry(iter, &rt->fib6_siblings, fib6_siblings)
Ido Schimmeld7dedee2018-01-09 16:40:25 +02003832 rt6_upper_bound_set(iter, &weight, total);
3833}
3834
David Ahern8d1c8022018-04-17 17:33:26 -07003835void rt6_multipath_rebalance(struct fib6_info *rt)
Ido Schimmeld7dedee2018-01-09 16:40:25 +02003836{
David Ahern8d1c8022018-04-17 17:33:26 -07003837 struct fib6_info *first;
Ido Schimmeld7dedee2018-01-09 16:40:25 +02003838 int total;
3839
3840 /* In case the entire multipath route was marked for flushing,
3841 * then there is no need to rebalance upon the removal of every
3842 * sibling route.
3843 */
David Ahern93c2fb22018-04-18 15:38:59 -07003844 if (!rt->fib6_nsiblings || rt->should_flush)
Ido Schimmeld7dedee2018-01-09 16:40:25 +02003845 return;
3846
3847 /* During lookup routes are evaluated in order, so we need to
3848 * make sure upper bounds are assigned from the first sibling
3849 * onwards.
3850 */
3851 first = rt6_multipath_first_sibling(rt);
3852 if (WARN_ON_ONCE(!first))
3853 return;
3854
3855 total = rt6_multipath_total_weight(first);
3856 rt6_multipath_upper_bound_set(first, total);
3857}
3858
David Ahern8d1c8022018-04-17 17:33:26 -07003859static int fib6_ifup(struct fib6_info *rt, void *p_arg)
Ido Schimmel2127d952018-01-07 12:45:03 +02003860{
3861 const struct arg_netdev_event *arg = p_arg;
David Ahern7aef6852018-04-17 17:33:10 -07003862 struct net *net = dev_net(arg->dev);
Ido Schimmel2127d952018-01-07 12:45:03 +02003863
David Ahern421842e2018-04-17 17:33:18 -07003864 if (rt != net->ipv6.fib6_null_entry && rt->fib6_nh.nh_dev == arg->dev) {
David Ahern5e670d82018-04-17 17:33:14 -07003865 rt->fib6_nh.nh_flags &= ~arg->nh_flags;
David Ahern7aef6852018-04-17 17:33:10 -07003866 fib6_update_sernum_upto_root(net, rt);
Ido Schimmeld7dedee2018-01-09 16:40:25 +02003867 rt6_multipath_rebalance(rt);
Ido Schimmel1de178e2018-01-07 12:45:15 +02003868 }
Ido Schimmel2127d952018-01-07 12:45:03 +02003869
3870 return 0;
3871}
3872
3873void rt6_sync_up(struct net_device *dev, unsigned int nh_flags)
3874{
3875 struct arg_netdev_event arg = {
3876 .dev = dev,
Ido Schimmel6802f3a2018-01-12 22:07:36 +02003877 {
3878 .nh_flags = nh_flags,
3879 },
Ido Schimmel2127d952018-01-07 12:45:03 +02003880 };
3881
3882 if (nh_flags & RTNH_F_DEAD && netif_carrier_ok(dev))
3883 arg.nh_flags |= RTNH_F_LINKDOWN;
3884
3885 fib6_clean_all(dev_net(dev), fib6_ifup, &arg);
3886}
3887
David Ahern8d1c8022018-04-17 17:33:26 -07003888static bool rt6_multipath_uses_dev(const struct fib6_info *rt,
Ido Schimmel1de178e2018-01-07 12:45:15 +02003889 const struct net_device *dev)
3890{
David Ahern8d1c8022018-04-17 17:33:26 -07003891 struct fib6_info *iter;
Ido Schimmel1de178e2018-01-07 12:45:15 +02003892
David Ahern5e670d82018-04-17 17:33:14 -07003893 if (rt->fib6_nh.nh_dev == dev)
Ido Schimmel1de178e2018-01-07 12:45:15 +02003894 return true;
David Ahern93c2fb22018-04-18 15:38:59 -07003895 list_for_each_entry(iter, &rt->fib6_siblings, fib6_siblings)
David Ahern5e670d82018-04-17 17:33:14 -07003896 if (iter->fib6_nh.nh_dev == dev)
Ido Schimmel1de178e2018-01-07 12:45:15 +02003897 return true;
3898
3899 return false;
3900}
3901
David Ahern8d1c8022018-04-17 17:33:26 -07003902static void rt6_multipath_flush(struct fib6_info *rt)
Ido Schimmel1de178e2018-01-07 12:45:15 +02003903{
David Ahern8d1c8022018-04-17 17:33:26 -07003904 struct fib6_info *iter;
Ido Schimmel1de178e2018-01-07 12:45:15 +02003905
3906 rt->should_flush = 1;
David Ahern93c2fb22018-04-18 15:38:59 -07003907 list_for_each_entry(iter, &rt->fib6_siblings, fib6_siblings)
Ido Schimmel1de178e2018-01-07 12:45:15 +02003908 iter->should_flush = 1;
3909}
3910
David Ahern8d1c8022018-04-17 17:33:26 -07003911static unsigned int rt6_multipath_dead_count(const struct fib6_info *rt,
Ido Schimmel1de178e2018-01-07 12:45:15 +02003912 const struct net_device *down_dev)
3913{
David Ahern8d1c8022018-04-17 17:33:26 -07003914 struct fib6_info *iter;
Ido Schimmel1de178e2018-01-07 12:45:15 +02003915 unsigned int dead = 0;
3916
David Ahern5e670d82018-04-17 17:33:14 -07003917 if (rt->fib6_nh.nh_dev == down_dev ||
3918 rt->fib6_nh.nh_flags & RTNH_F_DEAD)
Ido Schimmel1de178e2018-01-07 12:45:15 +02003919 dead++;
David Ahern93c2fb22018-04-18 15:38:59 -07003920 list_for_each_entry(iter, &rt->fib6_siblings, fib6_siblings)
David Ahern5e670d82018-04-17 17:33:14 -07003921 if (iter->fib6_nh.nh_dev == down_dev ||
3922 iter->fib6_nh.nh_flags & RTNH_F_DEAD)
Ido Schimmel1de178e2018-01-07 12:45:15 +02003923 dead++;
3924
3925 return dead;
3926}
3927
David Ahern8d1c8022018-04-17 17:33:26 -07003928static void rt6_multipath_nh_flags_set(struct fib6_info *rt,
Ido Schimmel1de178e2018-01-07 12:45:15 +02003929 const struct net_device *dev,
3930 unsigned int nh_flags)
3931{
David Ahern8d1c8022018-04-17 17:33:26 -07003932 struct fib6_info *iter;
Ido Schimmel1de178e2018-01-07 12:45:15 +02003933
David Ahern5e670d82018-04-17 17:33:14 -07003934 if (rt->fib6_nh.nh_dev == dev)
3935 rt->fib6_nh.nh_flags |= nh_flags;
David Ahern93c2fb22018-04-18 15:38:59 -07003936 list_for_each_entry(iter, &rt->fib6_siblings, fib6_siblings)
David Ahern5e670d82018-04-17 17:33:14 -07003937 if (iter->fib6_nh.nh_dev == dev)
3938 iter->fib6_nh.nh_flags |= nh_flags;
Ido Schimmel1de178e2018-01-07 12:45:15 +02003939}
3940
David Aherna1a22c12017-01-18 07:40:36 -08003941/* called with write lock held for table with rt */
David Ahern8d1c8022018-04-17 17:33:26 -07003942static int fib6_ifdown(struct fib6_info *rt, void *p_arg)
Linus Torvalds1da177e2005-04-16 15:20:36 -07003943{
Ido Schimmel4c981e22018-01-07 12:45:04 +02003944 const struct arg_netdev_event *arg = p_arg;
3945 const struct net_device *dev = arg->dev;
David Ahern7aef6852018-04-17 17:33:10 -07003946 struct net *net = dev_net(dev);
Daniel Lezcano8ed67782008-03-04 13:48:30 -08003947
David Ahern421842e2018-04-17 17:33:18 -07003948 if (rt == net->ipv6.fib6_null_entry)
Ido Schimmel27c6fa72018-01-07 12:45:05 +02003949 return 0;
3950
3951 switch (arg->event) {
3952 case NETDEV_UNREGISTER:
David Ahern5e670d82018-04-17 17:33:14 -07003953 return rt->fib6_nh.nh_dev == dev ? -1 : 0;
Ido Schimmel27c6fa72018-01-07 12:45:05 +02003954 case NETDEV_DOWN:
Ido Schimmel1de178e2018-01-07 12:45:15 +02003955 if (rt->should_flush)
Ido Schimmel27c6fa72018-01-07 12:45:05 +02003956 return -1;
David Ahern93c2fb22018-04-18 15:38:59 -07003957 if (!rt->fib6_nsiblings)
David Ahern5e670d82018-04-17 17:33:14 -07003958 return rt->fib6_nh.nh_dev == dev ? -1 : 0;
Ido Schimmel1de178e2018-01-07 12:45:15 +02003959 if (rt6_multipath_uses_dev(rt, dev)) {
3960 unsigned int count;
3961
3962 count = rt6_multipath_dead_count(rt, dev);
David Ahern93c2fb22018-04-18 15:38:59 -07003963 if (rt->fib6_nsiblings + 1 == count) {
Ido Schimmel1de178e2018-01-07 12:45:15 +02003964 rt6_multipath_flush(rt);
3965 return -1;
3966 }
3967 rt6_multipath_nh_flags_set(rt, dev, RTNH_F_DEAD |
3968 RTNH_F_LINKDOWN);
David Ahern7aef6852018-04-17 17:33:10 -07003969 fib6_update_sernum(net, rt);
Ido Schimmeld7dedee2018-01-09 16:40:25 +02003970 rt6_multipath_rebalance(rt);
Ido Schimmel1de178e2018-01-07 12:45:15 +02003971 }
3972 return -2;
Ido Schimmel27c6fa72018-01-07 12:45:05 +02003973 case NETDEV_CHANGE:
David Ahern5e670d82018-04-17 17:33:14 -07003974 if (rt->fib6_nh.nh_dev != dev ||
David Ahern93c2fb22018-04-18 15:38:59 -07003975 rt->fib6_flags & (RTF_LOCAL | RTF_ANYCAST))
Ido Schimmel27c6fa72018-01-07 12:45:05 +02003976 break;
David Ahern5e670d82018-04-17 17:33:14 -07003977 rt->fib6_nh.nh_flags |= RTNH_F_LINKDOWN;
Ido Schimmeld7dedee2018-01-09 16:40:25 +02003978 rt6_multipath_rebalance(rt);
Ido Schimmel27c6fa72018-01-07 12:45:05 +02003979 break;
Ido Schimmel2b241362018-01-07 12:45:02 +02003980 }
David S. Millerc159d302011-12-26 15:24:36 -05003981
Linus Torvalds1da177e2005-04-16 15:20:36 -07003982 return 0;
3983}
3984
Ido Schimmel27c6fa72018-01-07 12:45:05 +02003985void rt6_sync_down_dev(struct net_device *dev, unsigned long event)
Linus Torvalds1da177e2005-04-16 15:20:36 -07003986{
Ido Schimmel4c981e22018-01-07 12:45:04 +02003987 struct arg_netdev_event arg = {
Daniel Lezcano8ed67782008-03-04 13:48:30 -08003988 .dev = dev,
Ido Schimmel6802f3a2018-01-12 22:07:36 +02003989 {
3990 .event = event,
3991 },
Daniel Lezcano8ed67782008-03-04 13:48:30 -08003992 };
3993
Ido Schimmel4c981e22018-01-07 12:45:04 +02003994 fib6_clean_all(dev_net(dev), fib6_ifdown, &arg);
3995}
3996
3997void rt6_disable_ip(struct net_device *dev, unsigned long event)
3998{
3999 rt6_sync_down_dev(dev, event);
4000 rt6_uncached_list_flush_dev(dev_net(dev), dev);
4001 neigh_ifdown(&nd_tbl, dev);
Linus Torvalds1da177e2005-04-16 15:20:36 -07004002}
4003
Eric Dumazet95c96172012-04-15 05:58:06 +00004004struct rt6_mtu_change_arg {
Linus Torvalds1da177e2005-04-16 15:20:36 -07004005 struct net_device *dev;
Eric Dumazet95c96172012-04-15 05:58:06 +00004006 unsigned int mtu;
Linus Torvalds1da177e2005-04-16 15:20:36 -07004007};
4008
David Ahern8d1c8022018-04-17 17:33:26 -07004009static int rt6_mtu_change_route(struct fib6_info *rt, void *p_arg)
Linus Torvalds1da177e2005-04-16 15:20:36 -07004010{
4011 struct rt6_mtu_change_arg *arg = (struct rt6_mtu_change_arg *) p_arg;
4012 struct inet6_dev *idev;
4013
4014 /* In IPv6 pmtu discovery is not optional,
4015 so that RTAX_MTU lock cannot disable it.
4016 We still use this lock to block changes
4017 caused by addrconf/ndisc.
4018 */
4019
4020 idev = __in6_dev_get(arg->dev);
David S. Miller38308472011-12-03 18:02:47 -05004021 if (!idev)
Linus Torvalds1da177e2005-04-16 15:20:36 -07004022 return 0;
4023
4024 /* For administrative MTU increase, there is no way to discover
4025 IPv6 PMTU increase, so PMTU increase should be updated here.
4026 Since RFC 1981 doesn't include administrative MTU increase
4027 update PMTU increase is a MUST. (i.e. jumbo frame)
4028 */
David Ahern5e670d82018-04-17 17:33:14 -07004029 if (rt->fib6_nh.nh_dev == arg->dev &&
David Ahernd4ead6b2018-04-17 17:33:16 -07004030 !fib6_metric_locked(rt, RTAX_MTU)) {
4031 u32 mtu = rt->fib6_pmtu;
4032
4033 if (mtu >= arg->mtu ||
4034 (mtu < arg->mtu && mtu == idev->cnf.mtu6))
4035 fib6_metric_set(rt, RTAX_MTU, arg->mtu);
4036
Wei Wangf5bbe7e2017-10-06 12:05:59 -07004037 spin_lock_bh(&rt6_exception_lock);
Stefano Brivioe9fa1492018-03-06 11:10:19 +01004038 rt6_exceptions_update_pmtu(idev, rt, arg->mtu);
Wei Wangf5bbe7e2017-10-06 12:05:59 -07004039 spin_unlock_bh(&rt6_exception_lock);
Simon Arlott566cfd82007-07-26 00:09:55 -07004040 }
Linus Torvalds1da177e2005-04-16 15:20:36 -07004041 return 0;
4042}
4043
Eric Dumazet95c96172012-04-15 05:58:06 +00004044void rt6_mtu_change(struct net_device *dev, unsigned int mtu)
Linus Torvalds1da177e2005-04-16 15:20:36 -07004045{
Thomas Grafc71099a2006-08-04 23:20:06 -07004046 struct rt6_mtu_change_arg arg = {
4047 .dev = dev,
4048 .mtu = mtu,
4049 };
Linus Torvalds1da177e2005-04-16 15:20:36 -07004050
Li RongQing0c3584d2013-12-27 16:32:38 +08004051 fib6_clean_all(dev_net(dev), rt6_mtu_change_route, &arg);
Linus Torvalds1da177e2005-04-16 15:20:36 -07004052}
4053
Patrick McHardyef7c79e2007-06-05 12:38:30 -07004054static const struct nla_policy rtm_ipv6_policy[RTA_MAX+1] = {
Thomas Graf5176f912006-08-26 20:13:18 -07004055 [RTA_GATEWAY] = { .len = sizeof(struct in6_addr) },
Thomas Graf86872cb2006-08-22 00:01:08 -07004056 [RTA_OIF] = { .type = NLA_U32 },
Thomas Grafab364a62006-08-22 00:01:47 -07004057 [RTA_IIF] = { .type = NLA_U32 },
Thomas Graf86872cb2006-08-22 00:01:08 -07004058 [RTA_PRIORITY] = { .type = NLA_U32 },
4059 [RTA_METRICS] = { .type = NLA_NESTED },
Nicolas Dichtel51ebd312012-10-22 03:42:09 +00004060 [RTA_MULTIPATH] = { .len = sizeof(struct rtnexthop) },
Lubomir Rintelc78ba6d2015-03-11 15:39:21 +01004061 [RTA_PREF] = { .type = NLA_U8 },
Roopa Prabhu19e42e42015-07-21 10:43:48 +02004062 [RTA_ENCAP_TYPE] = { .type = NLA_U16 },
4063 [RTA_ENCAP] = { .type = NLA_NESTED },
Xin Long32bc2012015-12-16 17:50:11 +08004064 [RTA_EXPIRES] = { .type = NLA_U32 },
Lorenzo Colitti622ec2c2016-11-04 02:23:42 +09004065 [RTA_UID] = { .type = NLA_U32 },
Liping Zhang3b45a412017-02-27 20:59:39 +08004066 [RTA_MARK] = { .type = NLA_U32 },
Thomas Graf86872cb2006-08-22 00:01:08 -07004067};
4068
4069static int rtm_to_fib6_config(struct sk_buff *skb, struct nlmsghdr *nlh,
David Ahern333c4302017-05-21 10:12:04 -06004070 struct fib6_config *cfg,
4071 struct netlink_ext_ack *extack)
Linus Torvalds1da177e2005-04-16 15:20:36 -07004072{
Thomas Graf86872cb2006-08-22 00:01:08 -07004073 struct rtmsg *rtm;
4074 struct nlattr *tb[RTA_MAX+1];
Lubomir Rintelc78ba6d2015-03-11 15:39:21 +01004075 unsigned int pref;
Thomas Graf86872cb2006-08-22 00:01:08 -07004076 int err;
Linus Torvalds1da177e2005-04-16 15:20:36 -07004077
Johannes Bergfceb6432017-04-12 14:34:07 +02004078 err = nlmsg_parse(nlh, sizeof(*rtm), tb, RTA_MAX, rtm_ipv6_policy,
4079 NULL);
Thomas Graf86872cb2006-08-22 00:01:08 -07004080 if (err < 0)
4081 goto errout;
Linus Torvalds1da177e2005-04-16 15:20:36 -07004082
Thomas Graf86872cb2006-08-22 00:01:08 -07004083 err = -EINVAL;
4084 rtm = nlmsg_data(nlh);
4085 memset(cfg, 0, sizeof(*cfg));
4086
4087 cfg->fc_table = rtm->rtm_table;
4088 cfg->fc_dst_len = rtm->rtm_dst_len;
4089 cfg->fc_src_len = rtm->rtm_src_len;
4090 cfg->fc_flags = RTF_UP;
4091 cfg->fc_protocol = rtm->rtm_protocol;
Nicolas Dichtelef2c7d72012-09-05 02:12:42 +00004092 cfg->fc_type = rtm->rtm_type;
Thomas Graf86872cb2006-08-22 00:01:08 -07004093
Nicolas Dichtelef2c7d72012-09-05 02:12:42 +00004094 if (rtm->rtm_type == RTN_UNREACHABLE ||
4095 rtm->rtm_type == RTN_BLACKHOLE ||
Nicolas Dichtelb4949ab2012-09-06 05:53:35 +00004096 rtm->rtm_type == RTN_PROHIBIT ||
4097 rtm->rtm_type == RTN_THROW)
Thomas Graf86872cb2006-08-22 00:01:08 -07004098 cfg->fc_flags |= RTF_REJECT;
4099
Maciej Żenczykowskiab79ad12010-09-27 00:07:02 +00004100 if (rtm->rtm_type == RTN_LOCAL)
4101 cfg->fc_flags |= RTF_LOCAL;
4102
Martin KaFai Lau1f56a01f2015-04-28 13:03:03 -07004103 if (rtm->rtm_flags & RTM_F_CLONED)
4104 cfg->fc_flags |= RTF_CACHE;
4105
David Ahernfc1e64e2018-01-25 16:55:09 -08004106 cfg->fc_flags |= (rtm->rtm_flags & RTNH_F_ONLINK);
4107
Eric W. Biederman15e47302012-09-07 20:12:54 +00004108 cfg->fc_nlinfo.portid = NETLINK_CB(skb).portid;
Thomas Graf86872cb2006-08-22 00:01:08 -07004109 cfg->fc_nlinfo.nlh = nlh;
YOSHIFUJI Hideaki3b1e0a62008-03-26 02:26:21 +09004110 cfg->fc_nlinfo.nl_net = sock_net(skb->sk);
Thomas Graf86872cb2006-08-22 00:01:08 -07004111
4112 if (tb[RTA_GATEWAY]) {
Jiri Benc67b61f62015-03-29 16:59:26 +02004113 cfg->fc_gateway = nla_get_in6_addr(tb[RTA_GATEWAY]);
Thomas Graf86872cb2006-08-22 00:01:08 -07004114 cfg->fc_flags |= RTF_GATEWAY;
Linus Torvalds1da177e2005-04-16 15:20:36 -07004115 }
Thomas Graf86872cb2006-08-22 00:01:08 -07004116
4117 if (tb[RTA_DST]) {
4118 int plen = (rtm->rtm_dst_len + 7) >> 3;
4119
4120 if (nla_len(tb[RTA_DST]) < plen)
4121 goto errout;
4122
4123 nla_memcpy(&cfg->fc_dst, tb[RTA_DST], plen);
Linus Torvalds1da177e2005-04-16 15:20:36 -07004124 }
Thomas Graf86872cb2006-08-22 00:01:08 -07004125
4126 if (tb[RTA_SRC]) {
4127 int plen = (rtm->rtm_src_len + 7) >> 3;
4128
4129 if (nla_len(tb[RTA_SRC]) < plen)
4130 goto errout;
4131
4132 nla_memcpy(&cfg->fc_src, tb[RTA_SRC], plen);
Linus Torvalds1da177e2005-04-16 15:20:36 -07004133 }
Thomas Graf86872cb2006-08-22 00:01:08 -07004134
Daniel Walterc3968a82011-04-13 21:10:57 +00004135 if (tb[RTA_PREFSRC])
Jiri Benc67b61f62015-03-29 16:59:26 +02004136 cfg->fc_prefsrc = nla_get_in6_addr(tb[RTA_PREFSRC]);
Daniel Walterc3968a82011-04-13 21:10:57 +00004137
Thomas Graf86872cb2006-08-22 00:01:08 -07004138 if (tb[RTA_OIF])
4139 cfg->fc_ifindex = nla_get_u32(tb[RTA_OIF]);
4140
4141 if (tb[RTA_PRIORITY])
4142 cfg->fc_metric = nla_get_u32(tb[RTA_PRIORITY]);
4143
4144 if (tb[RTA_METRICS]) {
4145 cfg->fc_mx = nla_data(tb[RTA_METRICS]);
4146 cfg->fc_mx_len = nla_len(tb[RTA_METRICS]);
Linus Torvalds1da177e2005-04-16 15:20:36 -07004147 }
Thomas Graf86872cb2006-08-22 00:01:08 -07004148
4149 if (tb[RTA_TABLE])
4150 cfg->fc_table = nla_get_u32(tb[RTA_TABLE]);
4151
Nicolas Dichtel51ebd312012-10-22 03:42:09 +00004152 if (tb[RTA_MULTIPATH]) {
4153 cfg->fc_mp = nla_data(tb[RTA_MULTIPATH]);
4154 cfg->fc_mp_len = nla_len(tb[RTA_MULTIPATH]);
David Ahern9ed59592017-01-17 14:57:36 -08004155
4156 err = lwtunnel_valid_encap_type_attr(cfg->fc_mp,
David Ahernc255bd62017-05-27 16:19:27 -06004157 cfg->fc_mp_len, extack);
David Ahern9ed59592017-01-17 14:57:36 -08004158 if (err < 0)
4159 goto errout;
Nicolas Dichtel51ebd312012-10-22 03:42:09 +00004160 }
4161
Lubomir Rintelc78ba6d2015-03-11 15:39:21 +01004162 if (tb[RTA_PREF]) {
4163 pref = nla_get_u8(tb[RTA_PREF]);
4164 if (pref != ICMPV6_ROUTER_PREF_LOW &&
4165 pref != ICMPV6_ROUTER_PREF_HIGH)
4166 pref = ICMPV6_ROUTER_PREF_MEDIUM;
4167 cfg->fc_flags |= RTF_PREF(pref);
4168 }
4169
Roopa Prabhu19e42e42015-07-21 10:43:48 +02004170 if (tb[RTA_ENCAP])
4171 cfg->fc_encap = tb[RTA_ENCAP];
4172
David Ahern9ed59592017-01-17 14:57:36 -08004173 if (tb[RTA_ENCAP_TYPE]) {
Roopa Prabhu19e42e42015-07-21 10:43:48 +02004174 cfg->fc_encap_type = nla_get_u16(tb[RTA_ENCAP_TYPE]);
4175
David Ahernc255bd62017-05-27 16:19:27 -06004176 err = lwtunnel_valid_encap_type(cfg->fc_encap_type, extack);
David Ahern9ed59592017-01-17 14:57:36 -08004177 if (err < 0)
4178 goto errout;
4179 }
4180
Xin Long32bc2012015-12-16 17:50:11 +08004181 if (tb[RTA_EXPIRES]) {
4182 unsigned long timeout = addrconf_timeout_fixup(nla_get_u32(tb[RTA_EXPIRES]), HZ);
4183
4184 if (addrconf_finite_timeout(timeout)) {
4185 cfg->fc_expires = jiffies_to_clock_t(timeout * HZ);
4186 cfg->fc_flags |= RTF_EXPIRES;
4187 }
4188 }
4189
Thomas Graf86872cb2006-08-22 00:01:08 -07004190 err = 0;
4191errout:
4192 return err;
Linus Torvalds1da177e2005-04-16 15:20:36 -07004193}
4194
Roopa Prabhu6b9ea5a2015-09-08 10:53:04 -07004195struct rt6_nh {
David Ahern8d1c8022018-04-17 17:33:26 -07004196 struct fib6_info *fib6_info;
Roopa Prabhu6b9ea5a2015-09-08 10:53:04 -07004197 struct fib6_config r_cfg;
Roopa Prabhu6b9ea5a2015-09-08 10:53:04 -07004198 struct list_head next;
4199};
4200
4201static void ip6_print_replace_route_err(struct list_head *rt6_nh_list)
4202{
4203 struct rt6_nh *nh;
4204
4205 list_for_each_entry(nh, rt6_nh_list, next) {
David Ahern7d4d5062017-02-02 12:37:12 -08004206 pr_warn("IPV6: multipath route replace failed (check consistency of installed routes): %pI6c nexthop %pI6c ifi %d\n",
Roopa Prabhu6b9ea5a2015-09-08 10:53:04 -07004207 &nh->r_cfg.fc_dst, &nh->r_cfg.fc_gateway,
4208 nh->r_cfg.fc_ifindex);
4209 }
4210}
4211
David Ahernd4ead6b2018-04-17 17:33:16 -07004212static int ip6_route_info_append(struct net *net,
4213 struct list_head *rt6_nh_list,
David Ahern8d1c8022018-04-17 17:33:26 -07004214 struct fib6_info *rt,
4215 struct fib6_config *r_cfg)
Roopa Prabhu6b9ea5a2015-09-08 10:53:04 -07004216{
4217 struct rt6_nh *nh;
Roopa Prabhu6b9ea5a2015-09-08 10:53:04 -07004218 int err = -EEXIST;
4219
4220 list_for_each_entry(nh, rt6_nh_list, next) {
David Ahern8d1c8022018-04-17 17:33:26 -07004221 /* check if fib6_info already exists */
4222 if (rt6_duplicate_nexthop(nh->fib6_info, rt))
Roopa Prabhu6b9ea5a2015-09-08 10:53:04 -07004223 return err;
4224 }
4225
4226 nh = kzalloc(sizeof(*nh), GFP_KERNEL);
4227 if (!nh)
4228 return -ENOMEM;
David Ahern8d1c8022018-04-17 17:33:26 -07004229 nh->fib6_info = rt;
David Ahernd4ead6b2018-04-17 17:33:16 -07004230 err = ip6_convert_metrics(net, rt, r_cfg);
Roopa Prabhu6b9ea5a2015-09-08 10:53:04 -07004231 if (err) {
4232 kfree(nh);
4233 return err;
4234 }
4235 memcpy(&nh->r_cfg, r_cfg, sizeof(*r_cfg));
4236 list_add_tail(&nh->next, rt6_nh_list);
4237
4238 return 0;
4239}
4240
David Ahern8d1c8022018-04-17 17:33:26 -07004241static void ip6_route_mpath_notify(struct fib6_info *rt,
4242 struct fib6_info *rt_last,
David Ahern3b1137f2017-02-02 12:37:10 -08004243 struct nl_info *info,
4244 __u16 nlflags)
4245{
4246 /* if this is an APPEND route, then rt points to the first route
4247 * inserted and rt_last points to last route inserted. Userspace
4248 * wants a consistent dump of the route which starts at the first
4249 * nexthop. Since sibling routes are always added at the end of
4250 * the list, find the first sibling of the last route appended
4251 */
David Ahern93c2fb22018-04-18 15:38:59 -07004252 if ((nlflags & NLM_F_APPEND) && rt_last && rt_last->fib6_nsiblings) {
4253 rt = list_first_entry(&rt_last->fib6_siblings,
David Ahern8d1c8022018-04-17 17:33:26 -07004254 struct fib6_info,
David Ahern93c2fb22018-04-18 15:38:59 -07004255 fib6_siblings);
David Ahern3b1137f2017-02-02 12:37:10 -08004256 }
4257
4258 if (rt)
4259 inet6_rt_notify(RTM_NEWROUTE, rt, info, nlflags);
4260}
4261
David Ahern333c4302017-05-21 10:12:04 -06004262static int ip6_route_multipath_add(struct fib6_config *cfg,
4263 struct netlink_ext_ack *extack)
Nicolas Dichtel51ebd312012-10-22 03:42:09 +00004264{
David Ahern8d1c8022018-04-17 17:33:26 -07004265 struct fib6_info *rt_notif = NULL, *rt_last = NULL;
David Ahern3b1137f2017-02-02 12:37:10 -08004266 struct nl_info *info = &cfg->fc_nlinfo;
Nicolas Dichtel51ebd312012-10-22 03:42:09 +00004267 struct fib6_config r_cfg;
4268 struct rtnexthop *rtnh;
David Ahern8d1c8022018-04-17 17:33:26 -07004269 struct fib6_info *rt;
Roopa Prabhu6b9ea5a2015-09-08 10:53:04 -07004270 struct rt6_nh *err_nh;
4271 struct rt6_nh *nh, *nh_safe;
David Ahern3b1137f2017-02-02 12:37:10 -08004272 __u16 nlflags;
Nicolas Dichtel51ebd312012-10-22 03:42:09 +00004273 int remaining;
4274 int attrlen;
Roopa Prabhu6b9ea5a2015-09-08 10:53:04 -07004275 int err = 1;
4276 int nhn = 0;
4277 int replace = (cfg->fc_nlinfo.nlh &&
4278 (cfg->fc_nlinfo.nlh->nlmsg_flags & NLM_F_REPLACE));
4279 LIST_HEAD(rt6_nh_list);
Nicolas Dichtel51ebd312012-10-22 03:42:09 +00004280
David Ahern3b1137f2017-02-02 12:37:10 -08004281 nlflags = replace ? NLM_F_REPLACE : NLM_F_CREATE;
4282 if (info->nlh && info->nlh->nlmsg_flags & NLM_F_APPEND)
4283 nlflags |= NLM_F_APPEND;
4284
Michal Kubeček35f1b4e2015-05-18 20:53:55 +02004285 remaining = cfg->fc_mp_len;
Nicolas Dichtel51ebd312012-10-22 03:42:09 +00004286 rtnh = (struct rtnexthop *)cfg->fc_mp;
Nicolas Dichtel51ebd312012-10-22 03:42:09 +00004287
Roopa Prabhu6b9ea5a2015-09-08 10:53:04 -07004288 /* Parse a Multipath Entry and build a list (rt6_nh_list) of
David Ahern8d1c8022018-04-17 17:33:26 -07004289 * fib6_info structs per nexthop
Roopa Prabhu6b9ea5a2015-09-08 10:53:04 -07004290 */
Nicolas Dichtel51ebd312012-10-22 03:42:09 +00004291 while (rtnh_ok(rtnh, remaining)) {
4292 memcpy(&r_cfg, cfg, sizeof(*cfg));
4293 if (rtnh->rtnh_ifindex)
4294 r_cfg.fc_ifindex = rtnh->rtnh_ifindex;
4295
4296 attrlen = rtnh_attrlen(rtnh);
4297 if (attrlen > 0) {
4298 struct nlattr *nla, *attrs = rtnh_attrs(rtnh);
4299
4300 nla = nla_find(attrs, attrlen, RTA_GATEWAY);
4301 if (nla) {
Jiri Benc67b61f62015-03-29 16:59:26 +02004302 r_cfg.fc_gateway = nla_get_in6_addr(nla);
Nicolas Dichtel51ebd312012-10-22 03:42:09 +00004303 r_cfg.fc_flags |= RTF_GATEWAY;
4304 }
Roopa Prabhu19e42e42015-07-21 10:43:48 +02004305 r_cfg.fc_encap = nla_find(attrs, attrlen, RTA_ENCAP);
4306 nla = nla_find(attrs, attrlen, RTA_ENCAP_TYPE);
4307 if (nla)
4308 r_cfg.fc_encap_type = nla_get_u16(nla);
Nicolas Dichtel51ebd312012-10-22 03:42:09 +00004309 }
Roopa Prabhu6b9ea5a2015-09-08 10:53:04 -07004310
David Ahern68e2ffd2018-03-20 10:06:59 -07004311 r_cfg.fc_flags |= (rtnh->rtnh_flags & RTNH_F_ONLINK);
David Ahernacb54e32018-04-17 17:33:22 -07004312 rt = ip6_route_info_create(&r_cfg, GFP_KERNEL, extack);
Roopa Prabhu8c5b83f2015-10-10 08:26:36 -07004313 if (IS_ERR(rt)) {
4314 err = PTR_ERR(rt);
4315 rt = NULL;
Roopa Prabhu6b9ea5a2015-09-08 10:53:04 -07004316 goto cleanup;
Roopa Prabhu8c5b83f2015-10-10 08:26:36 -07004317 }
Roopa Prabhu6b9ea5a2015-09-08 10:53:04 -07004318
David Ahern5e670d82018-04-17 17:33:14 -07004319 rt->fib6_nh.nh_weight = rtnh->rtnh_hops + 1;
Ido Schimmel398958a2018-01-09 16:40:28 +02004320
David Ahernd4ead6b2018-04-17 17:33:16 -07004321 err = ip6_route_info_append(info->nl_net, &rt6_nh_list,
4322 rt, &r_cfg);
Nicolas Dichtel51ebd312012-10-22 03:42:09 +00004323 if (err) {
David Ahern93531c62018-04-17 17:33:25 -07004324 fib6_info_release(rt);
Roopa Prabhu6b9ea5a2015-09-08 10:53:04 -07004325 goto cleanup;
Nicolas Dichtel51ebd312012-10-22 03:42:09 +00004326 }
Roopa Prabhu6b9ea5a2015-09-08 10:53:04 -07004327
4328 rtnh = rtnh_next(rtnh, &remaining);
4329 }
4330
David Ahern3b1137f2017-02-02 12:37:10 -08004331 /* for add and replace send one notification with all nexthops.
4332 * Skip the notification in fib6_add_rt2node and send one with
4333 * the full route when done
4334 */
4335 info->skip_notify = 1;
4336
Roopa Prabhu6b9ea5a2015-09-08 10:53:04 -07004337 err_nh = NULL;
4338 list_for_each_entry(nh, &rt6_nh_list, next) {
David Ahern8d1c8022018-04-17 17:33:26 -07004339 rt_last = nh->fib6_info;
4340 err = __ip6_ins_rt(nh->fib6_info, info, extack);
4341 fib6_info_release(nh->fib6_info);
David Ahern93531c62018-04-17 17:33:25 -07004342
David Ahern3b1137f2017-02-02 12:37:10 -08004343 /* save reference to first route for notification */
4344 if (!rt_notif && !err)
David Ahern8d1c8022018-04-17 17:33:26 -07004345 rt_notif = nh->fib6_info;
David Ahern3b1137f2017-02-02 12:37:10 -08004346
David Ahern8d1c8022018-04-17 17:33:26 -07004347 /* nh->fib6_info is used or freed at this point, reset to NULL*/
4348 nh->fib6_info = NULL;
Roopa Prabhu6b9ea5a2015-09-08 10:53:04 -07004349 if (err) {
4350 if (replace && nhn)
4351 ip6_print_replace_route_err(&rt6_nh_list);
4352 err_nh = nh;
4353 goto add_errout;
4354 }
4355
Nicolas Dichtel1a724182012-11-01 22:58:22 +00004356 /* Because each route is added like a single route we remove
Michal Kubeček27596472015-05-18 20:54:00 +02004357 * these flags after the first nexthop: if there is a collision,
4358 * we have already failed to add the first nexthop:
4359 * fib6_add_rt2node() has rejected it; when replacing, old
4360 * nexthops have been replaced by first new, the rest should
4361 * be added to it.
Nicolas Dichtel1a724182012-11-01 22:58:22 +00004362 */
Michal Kubeček27596472015-05-18 20:54:00 +02004363 cfg->fc_nlinfo.nlh->nlmsg_flags &= ~(NLM_F_EXCL |
4364 NLM_F_REPLACE);
Roopa Prabhu6b9ea5a2015-09-08 10:53:04 -07004365 nhn++;
4366 }
4367
David Ahern3b1137f2017-02-02 12:37:10 -08004368 /* success ... tell user about new route */
4369 ip6_route_mpath_notify(rt_notif, rt_last, info, nlflags);
Roopa Prabhu6b9ea5a2015-09-08 10:53:04 -07004370 goto cleanup;
4371
4372add_errout:
David Ahern3b1137f2017-02-02 12:37:10 -08004373 /* send notification for routes that were added so that
4374 * the delete notifications sent by ip6_route_del are
4375 * coherent
4376 */
4377 if (rt_notif)
4378 ip6_route_mpath_notify(rt_notif, rt_last, info, nlflags);
4379
Roopa Prabhu6b9ea5a2015-09-08 10:53:04 -07004380 /* Delete routes that were already added */
4381 list_for_each_entry(nh, &rt6_nh_list, next) {
4382 if (err_nh == nh)
4383 break;
David Ahern333c4302017-05-21 10:12:04 -06004384 ip6_route_del(&nh->r_cfg, extack);
Roopa Prabhu6b9ea5a2015-09-08 10:53:04 -07004385 }
4386
4387cleanup:
4388 list_for_each_entry_safe(nh, nh_safe, &rt6_nh_list, next) {
David Ahern8d1c8022018-04-17 17:33:26 -07004389 if (nh->fib6_info)
4390 fib6_info_release(nh->fib6_info);
Roopa Prabhu6b9ea5a2015-09-08 10:53:04 -07004391 list_del(&nh->next);
4392 kfree(nh);
4393 }
4394
4395 return err;
4396}
4397
David Ahern333c4302017-05-21 10:12:04 -06004398static int ip6_route_multipath_del(struct fib6_config *cfg,
4399 struct netlink_ext_ack *extack)
Roopa Prabhu6b9ea5a2015-09-08 10:53:04 -07004400{
4401 struct fib6_config r_cfg;
4402 struct rtnexthop *rtnh;
4403 int remaining;
4404 int attrlen;
4405 int err = 1, last_err = 0;
4406
4407 remaining = cfg->fc_mp_len;
4408 rtnh = (struct rtnexthop *)cfg->fc_mp;
4409
4410 /* Parse a Multipath Entry */
4411 while (rtnh_ok(rtnh, remaining)) {
4412 memcpy(&r_cfg, cfg, sizeof(*cfg));
4413 if (rtnh->rtnh_ifindex)
4414 r_cfg.fc_ifindex = rtnh->rtnh_ifindex;
4415
4416 attrlen = rtnh_attrlen(rtnh);
4417 if (attrlen > 0) {
4418 struct nlattr *nla, *attrs = rtnh_attrs(rtnh);
4419
4420 nla = nla_find(attrs, attrlen, RTA_GATEWAY);
4421 if (nla) {
4422 nla_memcpy(&r_cfg.fc_gateway, nla, 16);
4423 r_cfg.fc_flags |= RTF_GATEWAY;
4424 }
4425 }
David Ahern333c4302017-05-21 10:12:04 -06004426 err = ip6_route_del(&r_cfg, extack);
Roopa Prabhu6b9ea5a2015-09-08 10:53:04 -07004427 if (err)
4428 last_err = err;
4429
Nicolas Dichtel51ebd312012-10-22 03:42:09 +00004430 rtnh = rtnh_next(rtnh, &remaining);
4431 }
4432
4433 return last_err;
4434}
4435
David Ahernc21ef3e2017-04-16 09:48:24 -07004436static int inet6_rtm_delroute(struct sk_buff *skb, struct nlmsghdr *nlh,
4437 struct netlink_ext_ack *extack)
Linus Torvalds1da177e2005-04-16 15:20:36 -07004438{
Thomas Graf86872cb2006-08-22 00:01:08 -07004439 struct fib6_config cfg;
4440 int err;
Linus Torvalds1da177e2005-04-16 15:20:36 -07004441
David Ahern333c4302017-05-21 10:12:04 -06004442 err = rtm_to_fib6_config(skb, nlh, &cfg, extack);
Thomas Graf86872cb2006-08-22 00:01:08 -07004443 if (err < 0)
4444 return err;
4445
Nicolas Dichtel51ebd312012-10-22 03:42:09 +00004446 if (cfg.fc_mp)
David Ahern333c4302017-05-21 10:12:04 -06004447 return ip6_route_multipath_del(&cfg, extack);
David Ahern0ae81332017-02-02 12:37:08 -08004448 else {
4449 cfg.fc_delete_all_nh = 1;
David Ahern333c4302017-05-21 10:12:04 -06004450 return ip6_route_del(&cfg, extack);
David Ahern0ae81332017-02-02 12:37:08 -08004451 }
Linus Torvalds1da177e2005-04-16 15:20:36 -07004452}
4453
David Ahernc21ef3e2017-04-16 09:48:24 -07004454static int inet6_rtm_newroute(struct sk_buff *skb, struct nlmsghdr *nlh,
4455 struct netlink_ext_ack *extack)
Linus Torvalds1da177e2005-04-16 15:20:36 -07004456{
Thomas Graf86872cb2006-08-22 00:01:08 -07004457 struct fib6_config cfg;
4458 int err;
Linus Torvalds1da177e2005-04-16 15:20:36 -07004459
David Ahern333c4302017-05-21 10:12:04 -06004460 err = rtm_to_fib6_config(skb, nlh, &cfg, extack);
Thomas Graf86872cb2006-08-22 00:01:08 -07004461 if (err < 0)
4462 return err;
4463
Nicolas Dichtel51ebd312012-10-22 03:42:09 +00004464 if (cfg.fc_mp)
David Ahern333c4302017-05-21 10:12:04 -06004465 return ip6_route_multipath_add(&cfg, extack);
Nicolas Dichtel51ebd312012-10-22 03:42:09 +00004466 else
David Ahernacb54e32018-04-17 17:33:22 -07004467 return ip6_route_add(&cfg, GFP_KERNEL, extack);
Linus Torvalds1da177e2005-04-16 15:20:36 -07004468}
4469
David Ahern8d1c8022018-04-17 17:33:26 -07004470static size_t rt6_nlmsg_size(struct fib6_info *rt)
Thomas Graf339bf982006-11-10 14:10:15 -08004471{
David Ahernbeb1afac52017-02-02 12:37:09 -08004472 int nexthop_len = 0;
4473
David Ahern93c2fb22018-04-18 15:38:59 -07004474 if (rt->fib6_nsiblings) {
David Ahernbeb1afac52017-02-02 12:37:09 -08004475 nexthop_len = nla_total_size(0) /* RTA_MULTIPATH */
4476 + NLA_ALIGN(sizeof(struct rtnexthop))
4477 + nla_total_size(16) /* RTA_GATEWAY */
David Ahern5e670d82018-04-17 17:33:14 -07004478 + lwtunnel_get_encap_size(rt->fib6_nh.nh_lwtstate);
David Ahernbeb1afac52017-02-02 12:37:09 -08004479
David Ahern93c2fb22018-04-18 15:38:59 -07004480 nexthop_len *= rt->fib6_nsiblings;
David Ahernbeb1afac52017-02-02 12:37:09 -08004481 }
4482
Thomas Graf339bf982006-11-10 14:10:15 -08004483 return NLMSG_ALIGN(sizeof(struct rtmsg))
4484 + nla_total_size(16) /* RTA_SRC */
4485 + nla_total_size(16) /* RTA_DST */
4486 + nla_total_size(16) /* RTA_GATEWAY */
4487 + nla_total_size(16) /* RTA_PREFSRC */
4488 + nla_total_size(4) /* RTA_TABLE */
4489 + nla_total_size(4) /* RTA_IIF */
4490 + nla_total_size(4) /* RTA_OIF */
4491 + nla_total_size(4) /* RTA_PRIORITY */
Noriaki TAKAMIYA6a2b9ce2007-01-23 22:09:41 -08004492 + RTAX_MAX * nla_total_size(4) /* RTA_METRICS */
Daniel Borkmannea697632015-01-05 23:57:47 +01004493 + nla_total_size(sizeof(struct rta_cacheinfo))
Lubomir Rintelc78ba6d2015-03-11 15:39:21 +01004494 + nla_total_size(TCP_CA_NAME_MAX) /* RTAX_CC_ALGO */
Roopa Prabhu19e42e42015-07-21 10:43:48 +02004495 + nla_total_size(1) /* RTA_PREF */
David Ahern5e670d82018-04-17 17:33:14 -07004496 + lwtunnel_get_encap_size(rt->fib6_nh.nh_lwtstate)
David Ahernbeb1afac52017-02-02 12:37:09 -08004497 + nexthop_len;
4498}
4499
David Ahern8d1c8022018-04-17 17:33:26 -07004500static int rt6_nexthop_info(struct sk_buff *skb, struct fib6_info *rt,
David Ahern5be083c2017-03-06 15:57:31 -08004501 unsigned int *flags, bool skip_oif)
David Ahernbeb1afac52017-02-02 12:37:09 -08004502{
David Ahern5e670d82018-04-17 17:33:14 -07004503 if (rt->fib6_nh.nh_flags & RTNH_F_DEAD)
Ido Schimmelf9d882e2018-01-07 12:45:10 +02004504 *flags |= RTNH_F_DEAD;
4505
David Ahern5e670d82018-04-17 17:33:14 -07004506 if (rt->fib6_nh.nh_flags & RTNH_F_LINKDOWN) {
David Ahernbeb1afac52017-02-02 12:37:09 -08004507 *flags |= RTNH_F_LINKDOWN;
David Aherndcd1f572018-04-18 15:39:05 -07004508
4509 rcu_read_lock();
4510 if (fib6_ignore_linkdown(rt))
David Ahernbeb1afac52017-02-02 12:37:09 -08004511 *flags |= RTNH_F_DEAD;
David Aherndcd1f572018-04-18 15:39:05 -07004512 rcu_read_unlock();
David Ahernbeb1afac52017-02-02 12:37:09 -08004513 }
4514
David Ahern93c2fb22018-04-18 15:38:59 -07004515 if (rt->fib6_flags & RTF_GATEWAY) {
David Ahern5e670d82018-04-17 17:33:14 -07004516 if (nla_put_in6_addr(skb, RTA_GATEWAY, &rt->fib6_nh.nh_gw) < 0)
David Ahernbeb1afac52017-02-02 12:37:09 -08004517 goto nla_put_failure;
4518 }
4519
David Ahern5e670d82018-04-17 17:33:14 -07004520 *flags |= (rt->fib6_nh.nh_flags & RTNH_F_ONLINK);
4521 if (rt->fib6_nh.nh_flags & RTNH_F_OFFLOAD)
Ido Schimmel61e4d012017-08-03 13:28:20 +02004522 *flags |= RTNH_F_OFFLOAD;
4523
David Ahern5be083c2017-03-06 15:57:31 -08004524 /* not needed for multipath encoding b/c it has a rtnexthop struct */
David Ahern5e670d82018-04-17 17:33:14 -07004525 if (!skip_oif && rt->fib6_nh.nh_dev &&
4526 nla_put_u32(skb, RTA_OIF, rt->fib6_nh.nh_dev->ifindex))
David Ahernbeb1afac52017-02-02 12:37:09 -08004527 goto nla_put_failure;
4528
David Ahern5e670d82018-04-17 17:33:14 -07004529 if (rt->fib6_nh.nh_lwtstate &&
4530 lwtunnel_fill_encap(skb, rt->fib6_nh.nh_lwtstate) < 0)
David Ahernbeb1afac52017-02-02 12:37:09 -08004531 goto nla_put_failure;
4532
4533 return 0;
4534
4535nla_put_failure:
4536 return -EMSGSIZE;
4537}
4538
David Ahern5be083c2017-03-06 15:57:31 -08004539/* add multipath next hop */
David Ahern8d1c8022018-04-17 17:33:26 -07004540static int rt6_add_nexthop(struct sk_buff *skb, struct fib6_info *rt)
David Ahernbeb1afac52017-02-02 12:37:09 -08004541{
David Ahern5e670d82018-04-17 17:33:14 -07004542 const struct net_device *dev = rt->fib6_nh.nh_dev;
David Ahernbeb1afac52017-02-02 12:37:09 -08004543 struct rtnexthop *rtnh;
4544 unsigned int flags = 0;
4545
4546 rtnh = nla_reserve_nohdr(skb, sizeof(*rtnh));
4547 if (!rtnh)
4548 goto nla_put_failure;
4549
David Ahern5e670d82018-04-17 17:33:14 -07004550 rtnh->rtnh_hops = rt->fib6_nh.nh_weight - 1;
4551 rtnh->rtnh_ifindex = dev ? dev->ifindex : 0;
David Ahernbeb1afac52017-02-02 12:37:09 -08004552
David Ahern5be083c2017-03-06 15:57:31 -08004553 if (rt6_nexthop_info(skb, rt, &flags, true) < 0)
David Ahernbeb1afac52017-02-02 12:37:09 -08004554 goto nla_put_failure;
4555
4556 rtnh->rtnh_flags = flags;
4557
4558 /* length of rtnetlink header + attributes */
4559 rtnh->rtnh_len = nlmsg_get_pos(skb) - (void *)rtnh;
4560
4561 return 0;
4562
4563nla_put_failure:
4564 return -EMSGSIZE;
Thomas Graf339bf982006-11-10 14:10:15 -08004565}
4566
David Ahernd4ead6b2018-04-17 17:33:16 -07004567static int rt6_fill_node(struct net *net, struct sk_buff *skb,
David Ahern8d1c8022018-04-17 17:33:26 -07004568 struct fib6_info *rt, struct dst_entry *dst,
David Ahernd4ead6b2018-04-17 17:33:16 -07004569 struct in6_addr *dest, struct in6_addr *src,
Eric W. Biederman15e47302012-09-07 20:12:54 +00004570 int iif, int type, u32 portid, u32 seq,
David Ahernf8cfe2c2017-01-17 15:51:08 -08004571 unsigned int flags)
Linus Torvalds1da177e2005-04-16 15:20:36 -07004572{
4573 struct rtmsg *rtm;
Thomas Graf2d7202b2006-08-22 00:01:27 -07004574 struct nlmsghdr *nlh;
David Ahernd4ead6b2018-04-17 17:33:16 -07004575 long expires = 0;
4576 u32 *pmetrics;
Patrick McHardy9e762a42006-08-10 23:09:48 -07004577 u32 table;
Linus Torvalds1da177e2005-04-16 15:20:36 -07004578
Eric W. Biederman15e47302012-09-07 20:12:54 +00004579 nlh = nlmsg_put(skb, portid, seq, type, sizeof(*rtm), flags);
David S. Miller38308472011-12-03 18:02:47 -05004580 if (!nlh)
Patrick McHardy26932562007-01-31 23:16:40 -08004581 return -EMSGSIZE;
Thomas Graf2d7202b2006-08-22 00:01:27 -07004582
4583 rtm = nlmsg_data(nlh);
Linus Torvalds1da177e2005-04-16 15:20:36 -07004584 rtm->rtm_family = AF_INET6;
David Ahern93c2fb22018-04-18 15:38:59 -07004585 rtm->rtm_dst_len = rt->fib6_dst.plen;
4586 rtm->rtm_src_len = rt->fib6_src.plen;
Linus Torvalds1da177e2005-04-16 15:20:36 -07004587 rtm->rtm_tos = 0;
David Ahern93c2fb22018-04-18 15:38:59 -07004588 if (rt->fib6_table)
4589 table = rt->fib6_table->tb6_id;
Thomas Grafc71099a2006-08-04 23:20:06 -07004590 else
Patrick McHardy9e762a42006-08-10 23:09:48 -07004591 table = RT6_TABLE_UNSPEC;
4592 rtm->rtm_table = table;
David S. Millerc78679e2012-04-01 20:27:33 -04004593 if (nla_put_u32(skb, RTA_TABLE, table))
4594 goto nla_put_failure;
David Aherne8478e82018-04-17 17:33:13 -07004595
4596 rtm->rtm_type = rt->fib6_type;
Linus Torvalds1da177e2005-04-16 15:20:36 -07004597 rtm->rtm_flags = 0;
4598 rtm->rtm_scope = RT_SCOPE_UNIVERSE;
David Ahern93c2fb22018-04-18 15:38:59 -07004599 rtm->rtm_protocol = rt->fib6_protocol;
Linus Torvalds1da177e2005-04-16 15:20:36 -07004600
David Ahern93c2fb22018-04-18 15:38:59 -07004601 if (rt->fib6_flags & RTF_CACHE)
Linus Torvalds1da177e2005-04-16 15:20:36 -07004602 rtm->rtm_flags |= RTM_F_CLONED;
4603
David Ahernd4ead6b2018-04-17 17:33:16 -07004604 if (dest) {
4605 if (nla_put_in6_addr(skb, RTA_DST, dest))
David S. Millerc78679e2012-04-01 20:27:33 -04004606 goto nla_put_failure;
YOSHIFUJI Hideaki1ab14572007-02-09 23:24:49 +09004607 rtm->rtm_dst_len = 128;
Linus Torvalds1da177e2005-04-16 15:20:36 -07004608 } else if (rtm->rtm_dst_len)
David Ahern93c2fb22018-04-18 15:38:59 -07004609 if (nla_put_in6_addr(skb, RTA_DST, &rt->fib6_dst.addr))
David S. Millerc78679e2012-04-01 20:27:33 -04004610 goto nla_put_failure;
Linus Torvalds1da177e2005-04-16 15:20:36 -07004611#ifdef CONFIG_IPV6_SUBTREES
4612 if (src) {
Jiri Benc930345e2015-03-29 16:59:25 +02004613 if (nla_put_in6_addr(skb, RTA_SRC, src))
David S. Millerc78679e2012-04-01 20:27:33 -04004614 goto nla_put_failure;
YOSHIFUJI Hideaki1ab14572007-02-09 23:24:49 +09004615 rtm->rtm_src_len = 128;
David S. Millerc78679e2012-04-01 20:27:33 -04004616 } else if (rtm->rtm_src_len &&
David Ahern93c2fb22018-04-18 15:38:59 -07004617 nla_put_in6_addr(skb, RTA_SRC, &rt->fib6_src.addr))
David S. Millerc78679e2012-04-01 20:27:33 -04004618 goto nla_put_failure;
Linus Torvalds1da177e2005-04-16 15:20:36 -07004619#endif
YOSHIFUJI Hideaki7bc570c2008-04-03 09:22:53 +09004620 if (iif) {
4621#ifdef CONFIG_IPV6_MROUTE
David Ahern93c2fb22018-04-18 15:38:59 -07004622 if (ipv6_addr_is_multicast(&rt->fib6_dst.addr)) {
David Ahernfd61c6b2017-01-17 15:51:07 -08004623 int err = ip6mr_get_route(net, skb, rtm, portid);
Nikolay Aleksandrov2cf75072016-09-25 23:08:31 +02004624
David Ahernfd61c6b2017-01-17 15:51:07 -08004625 if (err == 0)
4626 return 0;
4627 if (err < 0)
4628 goto nla_put_failure;
YOSHIFUJI Hideaki7bc570c2008-04-03 09:22:53 +09004629 } else
4630#endif
David S. Millerc78679e2012-04-01 20:27:33 -04004631 if (nla_put_u32(skb, RTA_IIF, iif))
4632 goto nla_put_failure;
David Ahernd4ead6b2018-04-17 17:33:16 -07004633 } else if (dest) {
Linus Torvalds1da177e2005-04-16 15:20:36 -07004634 struct in6_addr saddr_buf;
David Ahernd4ead6b2018-04-17 17:33:16 -07004635 if (ip6_route_get_saddr(net, rt, dest, 0, &saddr_buf) == 0 &&
Jiri Benc930345e2015-03-29 16:59:25 +02004636 nla_put_in6_addr(skb, RTA_PREFSRC, &saddr_buf))
David S. Millerc78679e2012-04-01 20:27:33 -04004637 goto nla_put_failure;
Linus Torvalds1da177e2005-04-16 15:20:36 -07004638 }
Thomas Graf2d7202b2006-08-22 00:01:27 -07004639
David Ahern93c2fb22018-04-18 15:38:59 -07004640 if (rt->fib6_prefsrc.plen) {
Daniel Walterc3968a82011-04-13 21:10:57 +00004641 struct in6_addr saddr_buf;
David Ahern93c2fb22018-04-18 15:38:59 -07004642 saddr_buf = rt->fib6_prefsrc.addr;
Jiri Benc930345e2015-03-29 16:59:25 +02004643 if (nla_put_in6_addr(skb, RTA_PREFSRC, &saddr_buf))
David S. Millerc78679e2012-04-01 20:27:33 -04004644 goto nla_put_failure;
Daniel Walterc3968a82011-04-13 21:10:57 +00004645 }
4646
David Ahernd4ead6b2018-04-17 17:33:16 -07004647 pmetrics = dst ? dst_metrics_ptr(dst) : rt->fib6_metrics->metrics;
4648 if (rtnetlink_put_metrics(skb, pmetrics) < 0)
Thomas Graf2d7202b2006-08-22 00:01:27 -07004649 goto nla_put_failure;
4650
David Ahern93c2fb22018-04-18 15:38:59 -07004651 if (nla_put_u32(skb, RTA_PRIORITY, rt->fib6_metric))
David S. Millerc78679e2012-04-01 20:27:33 -04004652 goto nla_put_failure;
Li Wei82539472012-07-29 16:01:30 +00004653
David Ahernbeb1afac52017-02-02 12:37:09 -08004654 /* For multipath routes, walk the siblings list and add
4655 * each as a nexthop within RTA_MULTIPATH.
4656 */
David Ahern93c2fb22018-04-18 15:38:59 -07004657 if (rt->fib6_nsiblings) {
David Ahern8d1c8022018-04-17 17:33:26 -07004658 struct fib6_info *sibling, *next_sibling;
David Ahernbeb1afac52017-02-02 12:37:09 -08004659 struct nlattr *mp;
4660
4661 mp = nla_nest_start(skb, RTA_MULTIPATH);
4662 if (!mp)
4663 goto nla_put_failure;
4664
4665 if (rt6_add_nexthop(skb, rt) < 0)
4666 goto nla_put_failure;
4667
4668 list_for_each_entry_safe(sibling, next_sibling,
David Ahern93c2fb22018-04-18 15:38:59 -07004669 &rt->fib6_siblings, fib6_siblings) {
David Ahernbeb1afac52017-02-02 12:37:09 -08004670 if (rt6_add_nexthop(skb, sibling) < 0)
4671 goto nla_put_failure;
4672 }
4673
4674 nla_nest_end(skb, mp);
4675 } else {
David Ahern5be083c2017-03-06 15:57:31 -08004676 if (rt6_nexthop_info(skb, rt, &rtm->rtm_flags, false) < 0)
David Ahernbeb1afac52017-02-02 12:37:09 -08004677 goto nla_put_failure;
4678 }
4679
David Ahern93c2fb22018-04-18 15:38:59 -07004680 if (rt->fib6_flags & RTF_EXPIRES) {
David Ahern14895682018-04-17 17:33:17 -07004681 expires = dst ? dst->expires : rt->expires;
4682 expires -= jiffies;
4683 }
YOSHIFUJI Hideaki69cdf8f2008-05-19 16:55:13 -07004684
David Ahernd4ead6b2018-04-17 17:33:16 -07004685 if (rtnl_put_cacheinfo(skb, dst, 0, expires, dst ? dst->error : 0) < 0)
Thomas Grafe3703b32006-11-27 09:27:07 -08004686 goto nla_put_failure;
Linus Torvalds1da177e2005-04-16 15:20:36 -07004687
David Ahern93c2fb22018-04-18 15:38:59 -07004688 if (nla_put_u8(skb, RTA_PREF, IPV6_EXTRACT_PREF(rt->fib6_flags)))
Lubomir Rintelc78ba6d2015-03-11 15:39:21 +01004689 goto nla_put_failure;
4690
Roopa Prabhu19e42e42015-07-21 10:43:48 +02004691
Johannes Berg053c0952015-01-16 22:09:00 +01004692 nlmsg_end(skb, nlh);
4693 return 0;
Thomas Graf2d7202b2006-08-22 00:01:27 -07004694
4695nla_put_failure:
Patrick McHardy26932562007-01-31 23:16:40 -08004696 nlmsg_cancel(skb, nlh);
4697 return -EMSGSIZE;
Linus Torvalds1da177e2005-04-16 15:20:36 -07004698}
4699
David Ahern8d1c8022018-04-17 17:33:26 -07004700int rt6_dump_route(struct fib6_info *rt, void *p_arg)
Linus Torvalds1da177e2005-04-16 15:20:36 -07004701{
4702 struct rt6_rtnl_dump_arg *arg = (struct rt6_rtnl_dump_arg *) p_arg;
David Ahern1f17e2f2017-01-26 13:54:08 -08004703 struct net *net = arg->net;
4704
David Ahern421842e2018-04-17 17:33:18 -07004705 if (rt == net->ipv6.fib6_null_entry)
David Ahern1f17e2f2017-01-26 13:54:08 -08004706 return 0;
Linus Torvalds1da177e2005-04-16 15:20:36 -07004707
Thomas Graf2d7202b2006-08-22 00:01:27 -07004708 if (nlmsg_len(arg->cb->nlh) >= sizeof(struct rtmsg)) {
4709 struct rtmsg *rtm = nlmsg_data(arg->cb->nlh);
David Ahernf8cfe2c2017-01-17 15:51:08 -08004710
4711 /* user wants prefix routes only */
4712 if (rtm->rtm_flags & RTM_F_PREFIX &&
David Ahern93c2fb22018-04-18 15:38:59 -07004713 !(rt->fib6_flags & RTF_PREFIX_RT)) {
David Ahernf8cfe2c2017-01-17 15:51:08 -08004714 /* success since this is not a prefix route */
4715 return 1;
4716 }
4717 }
Linus Torvalds1da177e2005-04-16 15:20:36 -07004718
David Ahernd4ead6b2018-04-17 17:33:16 -07004719 return rt6_fill_node(net, arg->skb, rt, NULL, NULL, NULL, 0,
4720 RTM_NEWROUTE, NETLINK_CB(arg->cb->skb).portid,
4721 arg->cb->nlh->nlmsg_seq, NLM_F_MULTI);
Linus Torvalds1da177e2005-04-16 15:20:36 -07004722}
4723
David Ahernc21ef3e2017-04-16 09:48:24 -07004724static int inet6_rtm_getroute(struct sk_buff *in_skb, struct nlmsghdr *nlh,
4725 struct netlink_ext_ack *extack)
Linus Torvalds1da177e2005-04-16 15:20:36 -07004726{
YOSHIFUJI Hideaki3b1e0a62008-03-26 02:26:21 +09004727 struct net *net = sock_net(in_skb->sk);
Thomas Grafab364a62006-08-22 00:01:47 -07004728 struct nlattr *tb[RTA_MAX+1];
Roopa Prabhu18c3a612017-05-25 10:42:40 -07004729 int err, iif = 0, oif = 0;
David Aherna68886a2018-04-20 15:38:02 -07004730 struct fib6_info *from;
Roopa Prabhu18c3a612017-05-25 10:42:40 -07004731 struct dst_entry *dst;
Linus Torvalds1da177e2005-04-16 15:20:36 -07004732 struct rt6_info *rt;
Thomas Grafab364a62006-08-22 00:01:47 -07004733 struct sk_buff *skb;
4734 struct rtmsg *rtm;
David S. Miller4c9483b2011-03-12 16:22:43 -05004735 struct flowi6 fl6;
Roopa Prabhu18c3a612017-05-25 10:42:40 -07004736 bool fibmatch;
Thomas Grafab364a62006-08-22 00:01:47 -07004737
Johannes Bergfceb6432017-04-12 14:34:07 +02004738 err = nlmsg_parse(nlh, sizeof(*rtm), tb, RTA_MAX, rtm_ipv6_policy,
David Ahernc21ef3e2017-04-16 09:48:24 -07004739 extack);
Thomas Grafab364a62006-08-22 00:01:47 -07004740 if (err < 0)
4741 goto errout;
4742
4743 err = -EINVAL;
David S. Miller4c9483b2011-03-12 16:22:43 -05004744 memset(&fl6, 0, sizeof(fl6));
Hannes Frederic Sowa38b70972016-06-11 20:08:19 +02004745 rtm = nlmsg_data(nlh);
4746 fl6.flowlabel = ip6_make_flowinfo(rtm->rtm_tos, 0);
Roopa Prabhu18c3a612017-05-25 10:42:40 -07004747 fibmatch = !!(rtm->rtm_flags & RTM_F_FIB_MATCH);
Thomas Grafab364a62006-08-22 00:01:47 -07004748
4749 if (tb[RTA_SRC]) {
4750 if (nla_len(tb[RTA_SRC]) < sizeof(struct in6_addr))
4751 goto errout;
4752
Alexey Dobriyan4e3fd7a2011-11-21 03:39:03 +00004753 fl6.saddr = *(struct in6_addr *)nla_data(tb[RTA_SRC]);
Thomas Grafab364a62006-08-22 00:01:47 -07004754 }
4755
4756 if (tb[RTA_DST]) {
4757 if (nla_len(tb[RTA_DST]) < sizeof(struct in6_addr))
4758 goto errout;
4759
Alexey Dobriyan4e3fd7a2011-11-21 03:39:03 +00004760 fl6.daddr = *(struct in6_addr *)nla_data(tb[RTA_DST]);
Thomas Grafab364a62006-08-22 00:01:47 -07004761 }
4762
4763 if (tb[RTA_IIF])
4764 iif = nla_get_u32(tb[RTA_IIF]);
4765
4766 if (tb[RTA_OIF])
Shmulik Ladkani72331bc2012-04-01 04:03:45 +00004767 oif = nla_get_u32(tb[RTA_OIF]);
Thomas Grafab364a62006-08-22 00:01:47 -07004768
Lorenzo Colitti2e47b292014-05-15 16:38:41 -07004769 if (tb[RTA_MARK])
4770 fl6.flowi6_mark = nla_get_u32(tb[RTA_MARK]);
4771
Lorenzo Colitti622ec2c2016-11-04 02:23:42 +09004772 if (tb[RTA_UID])
4773 fl6.flowi6_uid = make_kuid(current_user_ns(),
4774 nla_get_u32(tb[RTA_UID]));
4775 else
4776 fl6.flowi6_uid = iif ? INVALID_UID : current_uid();
4777
Thomas Grafab364a62006-08-22 00:01:47 -07004778 if (iif) {
4779 struct net_device *dev;
Shmulik Ladkani72331bc2012-04-01 04:03:45 +00004780 int flags = 0;
4781
Florian Westphal121622d2017-08-15 16:34:42 +02004782 rcu_read_lock();
4783
4784 dev = dev_get_by_index_rcu(net, iif);
Thomas Grafab364a62006-08-22 00:01:47 -07004785 if (!dev) {
Florian Westphal121622d2017-08-15 16:34:42 +02004786 rcu_read_unlock();
Thomas Grafab364a62006-08-22 00:01:47 -07004787 err = -ENODEV;
4788 goto errout;
4789 }
Shmulik Ladkani72331bc2012-04-01 04:03:45 +00004790
4791 fl6.flowi6_iif = iif;
4792
4793 if (!ipv6_addr_any(&fl6.saddr))
4794 flags |= RT6_LOOKUP_F_HAS_SADDR;
4795
David Ahernb75cc8f2018-03-02 08:32:17 -08004796 dst = ip6_route_input_lookup(net, dev, &fl6, NULL, flags);
Florian Westphal121622d2017-08-15 16:34:42 +02004797
4798 rcu_read_unlock();
Shmulik Ladkani72331bc2012-04-01 04:03:45 +00004799 } else {
4800 fl6.flowi6_oif = oif;
4801
Ido Schimmel58acfd72017-12-20 12:28:25 +02004802 dst = ip6_route_output(net, NULL, &fl6);
Roopa Prabhu18c3a612017-05-25 10:42:40 -07004803 }
4804
Roopa Prabhu18c3a612017-05-25 10:42:40 -07004805
4806 rt = container_of(dst, struct rt6_info, dst);
4807 if (rt->dst.error) {
4808 err = rt->dst.error;
4809 ip6_rt_put(rt);
4810 goto errout;
Thomas Grafab364a62006-08-22 00:01:47 -07004811 }
Linus Torvalds1da177e2005-04-16 15:20:36 -07004812
WANG Cong9d6acb32017-03-01 20:48:39 -08004813 if (rt == net->ipv6.ip6_null_entry) {
4814 err = rt->dst.error;
4815 ip6_rt_put(rt);
4816 goto errout;
4817 }
4818
Linus Torvalds1da177e2005-04-16 15:20:36 -07004819 skb = alloc_skb(NLMSG_GOODSIZE, GFP_KERNEL);
David S. Miller38308472011-12-03 18:02:47 -05004820 if (!skb) {
Amerigo Wang94e187c2012-10-29 00:13:19 +00004821 ip6_rt_put(rt);
Thomas Grafab364a62006-08-22 00:01:47 -07004822 err = -ENOBUFS;
4823 goto errout;
4824 }
Linus Torvalds1da177e2005-04-16 15:20:36 -07004825
Changli Gaod8d1f302010-06-10 23:31:35 -07004826 skb_dst_set(skb, &rt->dst);
David Aherna68886a2018-04-20 15:38:02 -07004827
4828 rcu_read_lock();
4829 from = rcu_dereference(rt->from);
4830
Roopa Prabhu18c3a612017-05-25 10:42:40 -07004831 if (fibmatch)
David Aherna68886a2018-04-20 15:38:02 -07004832 err = rt6_fill_node(net, skb, from, NULL, NULL, NULL, iif,
Roopa Prabhu18c3a612017-05-25 10:42:40 -07004833 RTM_NEWROUTE, NETLINK_CB(in_skb).portid,
4834 nlh->nlmsg_seq, 0);
4835 else
David Aherna68886a2018-04-20 15:38:02 -07004836 err = rt6_fill_node(net, skb, from, dst, &fl6.daddr,
4837 &fl6.saddr, iif, RTM_NEWROUTE,
David Ahernd4ead6b2018-04-17 17:33:16 -07004838 NETLINK_CB(in_skb).portid, nlh->nlmsg_seq,
4839 0);
David Aherna68886a2018-04-20 15:38:02 -07004840 rcu_read_unlock();
4841
Linus Torvalds1da177e2005-04-16 15:20:36 -07004842 if (err < 0) {
Thomas Grafab364a62006-08-22 00:01:47 -07004843 kfree_skb(skb);
4844 goto errout;
Linus Torvalds1da177e2005-04-16 15:20:36 -07004845 }
4846
Eric W. Biederman15e47302012-09-07 20:12:54 +00004847 err = rtnl_unicast(skb, net, NETLINK_CB(in_skb).portid);
Thomas Grafab364a62006-08-22 00:01:47 -07004848errout:
Linus Torvalds1da177e2005-04-16 15:20:36 -07004849 return err;
Linus Torvalds1da177e2005-04-16 15:20:36 -07004850}
4851
David Ahern8d1c8022018-04-17 17:33:26 -07004852void inet6_rt_notify(int event, struct fib6_info *rt, struct nl_info *info,
Roopa Prabhu37a1d362015-09-13 10:18:33 -07004853 unsigned int nlm_flags)
Linus Torvalds1da177e2005-04-16 15:20:36 -07004854{
4855 struct sk_buff *skb;
Daniel Lezcano55786892008-03-04 13:47:47 -08004856 struct net *net = info->nl_net;
Denis V. Lunev528c4ce2007-12-13 09:45:12 -08004857 u32 seq;
4858 int err;
Linus Torvalds1da177e2005-04-16 15:20:36 -07004859
Denis V. Lunev528c4ce2007-12-13 09:45:12 -08004860 err = -ENOBUFS;
David S. Miller38308472011-12-03 18:02:47 -05004861 seq = info->nlh ? info->nlh->nlmsg_seq : 0;
Thomas Graf86872cb2006-08-22 00:01:08 -07004862
Roopa Prabhu19e42e42015-07-21 10:43:48 +02004863 skb = nlmsg_new(rt6_nlmsg_size(rt), gfp_any());
David S. Miller38308472011-12-03 18:02:47 -05004864 if (!skb)
Thomas Graf21713eb2006-08-15 00:35:24 -07004865 goto errout;
4866
David Ahernd4ead6b2018-04-17 17:33:16 -07004867 err = rt6_fill_node(net, skb, rt, NULL, NULL, NULL, 0,
4868 event, info->portid, seq, nlm_flags);
Patrick McHardy26932562007-01-31 23:16:40 -08004869 if (err < 0) {
4870 /* -EMSGSIZE implies BUG in rt6_nlmsg_size() */
4871 WARN_ON(err == -EMSGSIZE);
4872 kfree_skb(skb);
4873 goto errout;
4874 }
Eric W. Biederman15e47302012-09-07 20:12:54 +00004875 rtnl_notify(skb, net, info->portid, RTNLGRP_IPV6_ROUTE,
Pablo Neira Ayuso1ce85fe2009-02-24 23:18:28 -08004876 info->nlh, gfp_any());
4877 return;
Thomas Graf21713eb2006-08-15 00:35:24 -07004878errout:
4879 if (err < 0)
Daniel Lezcano55786892008-03-04 13:47:47 -08004880 rtnl_set_sk_err(net, RTNLGRP_IPV6_ROUTE, err);
Linus Torvalds1da177e2005-04-16 15:20:36 -07004881}
4882
Daniel Lezcano8ed67782008-03-04 13:48:30 -08004883static int ip6_route_dev_notify(struct notifier_block *this,
Jiri Pirko351638e2013-05-28 01:30:21 +00004884 unsigned long event, void *ptr)
Daniel Lezcano8ed67782008-03-04 13:48:30 -08004885{
Jiri Pirko351638e2013-05-28 01:30:21 +00004886 struct net_device *dev = netdev_notifier_info_to_dev(ptr);
YOSHIFUJI Hideakic346dca2008-03-25 21:47:49 +09004887 struct net *net = dev_net(dev);
Daniel Lezcano8ed67782008-03-04 13:48:30 -08004888
WANG Cong242d3a42017-05-08 10:12:13 -07004889 if (!(dev->flags & IFF_LOOPBACK))
4890 return NOTIFY_OK;
4891
4892 if (event == NETDEV_REGISTER) {
David Ahern421842e2018-04-17 17:33:18 -07004893 net->ipv6.fib6_null_entry->fib6_nh.nh_dev = dev;
Changli Gaod8d1f302010-06-10 23:31:35 -07004894 net->ipv6.ip6_null_entry->dst.dev = dev;
Daniel Lezcano8ed67782008-03-04 13:48:30 -08004895 net->ipv6.ip6_null_entry->rt6i_idev = in6_dev_get(dev);
4896#ifdef CONFIG_IPV6_MULTIPLE_TABLES
Changli Gaod8d1f302010-06-10 23:31:35 -07004897 net->ipv6.ip6_prohibit_entry->dst.dev = dev;
Daniel Lezcano8ed67782008-03-04 13:48:30 -08004898 net->ipv6.ip6_prohibit_entry->rt6i_idev = in6_dev_get(dev);
Changli Gaod8d1f302010-06-10 23:31:35 -07004899 net->ipv6.ip6_blk_hole_entry->dst.dev = dev;
Daniel Lezcano8ed67782008-03-04 13:48:30 -08004900 net->ipv6.ip6_blk_hole_entry->rt6i_idev = in6_dev_get(dev);
4901#endif
WANG Cong76da0702017-06-20 11:42:27 -07004902 } else if (event == NETDEV_UNREGISTER &&
4903 dev->reg_state != NETREG_UNREGISTERED) {
4904 /* NETDEV_UNREGISTER could be fired for multiple times by
4905 * netdev_wait_allrefs(). Make sure we only call this once.
4906 */
Eric Dumazet12d94a82017-08-15 04:09:51 -07004907 in6_dev_put_clear(&net->ipv6.ip6_null_entry->rt6i_idev);
WANG Cong242d3a42017-05-08 10:12:13 -07004908#ifdef CONFIG_IPV6_MULTIPLE_TABLES
Eric Dumazet12d94a82017-08-15 04:09:51 -07004909 in6_dev_put_clear(&net->ipv6.ip6_prohibit_entry->rt6i_idev);
4910 in6_dev_put_clear(&net->ipv6.ip6_blk_hole_entry->rt6i_idev);
WANG Cong242d3a42017-05-08 10:12:13 -07004911#endif
Daniel Lezcano8ed67782008-03-04 13:48:30 -08004912 }
4913
4914 return NOTIFY_OK;
4915}
4916
Linus Torvalds1da177e2005-04-16 15:20:36 -07004917/*
4918 * /proc
4919 */
4920
4921#ifdef CONFIG_PROC_FS
4922
Alexey Dobriyan33120b32007-11-06 05:27:11 -08004923static const struct file_operations ipv6_route_proc_fops = {
Alexey Dobriyan33120b32007-11-06 05:27:11 -08004924 .open = ipv6_route_open,
4925 .read = seq_read,
4926 .llseek = seq_lseek,
Hannes Frederic Sowa8d2ca1d2013-09-21 16:55:59 +02004927 .release = seq_release_net,
Alexey Dobriyan33120b32007-11-06 05:27:11 -08004928};
4929
Linus Torvalds1da177e2005-04-16 15:20:36 -07004930static int rt6_stats_seq_show(struct seq_file *seq, void *v)
4931{
Daniel Lezcano69ddb802008-03-04 13:46:23 -08004932 struct net *net = (struct net *)seq->private;
Linus Torvalds1da177e2005-04-16 15:20:36 -07004933 seq_printf(seq, "%04x %04x %04x %04x %04x %04x %04x\n",
Daniel Lezcano69ddb802008-03-04 13:46:23 -08004934 net->ipv6.rt6_stats->fib_nodes,
4935 net->ipv6.rt6_stats->fib_route_nodes,
Wei Wang81eb8442017-10-06 12:06:11 -07004936 atomic_read(&net->ipv6.rt6_stats->fib_rt_alloc),
Daniel Lezcano69ddb802008-03-04 13:46:23 -08004937 net->ipv6.rt6_stats->fib_rt_entries,
4938 net->ipv6.rt6_stats->fib_rt_cache,
Eric Dumazetfc66f952010-10-08 06:37:34 +00004939 dst_entries_get_slow(&net->ipv6.ip6_dst_ops),
Daniel Lezcano69ddb802008-03-04 13:46:23 -08004940 net->ipv6.rt6_stats->fib_discarded_routes);
Linus Torvalds1da177e2005-04-16 15:20:36 -07004941
4942 return 0;
4943}
4944
4945static int rt6_stats_seq_open(struct inode *inode, struct file *file)
4946{
Pavel Emelyanovde05c552008-07-18 04:07:21 -07004947 return single_open_net(inode, file, rt6_stats_seq_show);
Daniel Lezcano69ddb802008-03-04 13:46:23 -08004948}
4949
Arjan van de Ven9a321442007-02-12 00:55:35 -08004950static const struct file_operations rt6_stats_seq_fops = {
Linus Torvalds1da177e2005-04-16 15:20:36 -07004951 .open = rt6_stats_seq_open,
4952 .read = seq_read,
4953 .llseek = seq_lseek,
Pavel Emelyanovb6fcbdb2008-07-18 04:07:44 -07004954 .release = single_release_net,
Linus Torvalds1da177e2005-04-16 15:20:36 -07004955};
4956#endif /* CONFIG_PROC_FS */
4957
4958#ifdef CONFIG_SYSCTL
4959
Linus Torvalds1da177e2005-04-16 15:20:36 -07004960static
Joe Perchesfe2c6332013-06-11 23:04:25 -07004961int ipv6_sysctl_rtcache_flush(struct ctl_table *ctl, int write,
Linus Torvalds1da177e2005-04-16 15:20:36 -07004962 void __user *buffer, size_t *lenp, loff_t *ppos)
4963{
Lucian Adrian Grijincuc486da32011-02-24 19:48:03 +00004964 struct net *net;
4965 int delay;
4966 if (!write)
Linus Torvalds1da177e2005-04-16 15:20:36 -07004967 return -EINVAL;
Lucian Adrian Grijincuc486da32011-02-24 19:48:03 +00004968
4969 net = (struct net *)ctl->extra1;
4970 delay = net->ipv6.sysctl.flush_delay;
4971 proc_dointvec(ctl, write, buffer, lenp, ppos);
Michal Kubeček2ac3ac82013-08-01 10:04:14 +02004972 fib6_run_gc(delay <= 0 ? 0 : (unsigned long)delay, net, delay > 0);
Lucian Adrian Grijincuc486da32011-02-24 19:48:03 +00004973 return 0;
Linus Torvalds1da177e2005-04-16 15:20:36 -07004974}
4975
Joe Perchesfe2c6332013-06-11 23:04:25 -07004976struct ctl_table ipv6_route_table_template[] = {
YOSHIFUJI Hideaki1ab14572007-02-09 23:24:49 +09004977 {
Linus Torvalds1da177e2005-04-16 15:20:36 -07004978 .procname = "flush",
Daniel Lezcano49905092008-01-10 03:01:01 -08004979 .data = &init_net.ipv6.sysctl.flush_delay,
Linus Torvalds1da177e2005-04-16 15:20:36 -07004980 .maxlen = sizeof(int),
Dave Jones89c8b3a12005-04-28 12:11:49 -07004981 .mode = 0200,
Alexey Dobriyan6d9f2392008-11-03 18:21:05 -08004982 .proc_handler = ipv6_sysctl_rtcache_flush
Linus Torvalds1da177e2005-04-16 15:20:36 -07004983 },
4984 {
Linus Torvalds1da177e2005-04-16 15:20:36 -07004985 .procname = "gc_thresh",
Daniel Lezcano9a7ec3a2008-03-04 13:48:53 -08004986 .data = &ip6_dst_ops_template.gc_thresh,
Linus Torvalds1da177e2005-04-16 15:20:36 -07004987 .maxlen = sizeof(int),
4988 .mode = 0644,
Alexey Dobriyan6d9f2392008-11-03 18:21:05 -08004989 .proc_handler = proc_dointvec,
Linus Torvalds1da177e2005-04-16 15:20:36 -07004990 },
4991 {
Linus Torvalds1da177e2005-04-16 15:20:36 -07004992 .procname = "max_size",
Daniel Lezcano49905092008-01-10 03:01:01 -08004993 .data = &init_net.ipv6.sysctl.ip6_rt_max_size,
Linus Torvalds1da177e2005-04-16 15:20:36 -07004994 .maxlen = sizeof(int),
4995 .mode = 0644,
Alexey Dobriyan6d9f2392008-11-03 18:21:05 -08004996 .proc_handler = proc_dointvec,
Linus Torvalds1da177e2005-04-16 15:20:36 -07004997 },
4998 {
Linus Torvalds1da177e2005-04-16 15:20:36 -07004999 .procname = "gc_min_interval",
Daniel Lezcano49905092008-01-10 03:01:01 -08005000 .data = &init_net.ipv6.sysctl.ip6_rt_gc_min_interval,
Linus Torvalds1da177e2005-04-16 15:20:36 -07005001 .maxlen = sizeof(int),
5002 .mode = 0644,
Alexey Dobriyan6d9f2392008-11-03 18:21:05 -08005003 .proc_handler = proc_dointvec_jiffies,
Linus Torvalds1da177e2005-04-16 15:20:36 -07005004 },
5005 {
Linus Torvalds1da177e2005-04-16 15:20:36 -07005006 .procname = "gc_timeout",
Daniel Lezcano49905092008-01-10 03:01:01 -08005007 .data = &init_net.ipv6.sysctl.ip6_rt_gc_timeout,
Linus Torvalds1da177e2005-04-16 15:20:36 -07005008 .maxlen = sizeof(int),
5009 .mode = 0644,
Alexey Dobriyan6d9f2392008-11-03 18:21:05 -08005010 .proc_handler = proc_dointvec_jiffies,
Linus Torvalds1da177e2005-04-16 15:20:36 -07005011 },
5012 {
Linus Torvalds1da177e2005-04-16 15:20:36 -07005013 .procname = "gc_interval",
Daniel Lezcano49905092008-01-10 03:01:01 -08005014 .data = &init_net.ipv6.sysctl.ip6_rt_gc_interval,
Linus Torvalds1da177e2005-04-16 15:20:36 -07005015 .maxlen = sizeof(int),
5016 .mode = 0644,
Alexey Dobriyan6d9f2392008-11-03 18:21:05 -08005017 .proc_handler = proc_dointvec_jiffies,
Linus Torvalds1da177e2005-04-16 15:20:36 -07005018 },
5019 {
Linus Torvalds1da177e2005-04-16 15:20:36 -07005020 .procname = "gc_elasticity",
Daniel Lezcano49905092008-01-10 03:01:01 -08005021 .data = &init_net.ipv6.sysctl.ip6_rt_gc_elasticity,
Linus Torvalds1da177e2005-04-16 15:20:36 -07005022 .maxlen = sizeof(int),
5023 .mode = 0644,
Min Zhangf3d3f612010-08-14 22:42:51 -07005024 .proc_handler = proc_dointvec,
Linus Torvalds1da177e2005-04-16 15:20:36 -07005025 },
5026 {
Linus Torvalds1da177e2005-04-16 15:20:36 -07005027 .procname = "mtu_expires",
Daniel Lezcano49905092008-01-10 03:01:01 -08005028 .data = &init_net.ipv6.sysctl.ip6_rt_mtu_expires,
Linus Torvalds1da177e2005-04-16 15:20:36 -07005029 .maxlen = sizeof(int),
5030 .mode = 0644,
Alexey Dobriyan6d9f2392008-11-03 18:21:05 -08005031 .proc_handler = proc_dointvec_jiffies,
Linus Torvalds1da177e2005-04-16 15:20:36 -07005032 },
5033 {
Linus Torvalds1da177e2005-04-16 15:20:36 -07005034 .procname = "min_adv_mss",
Daniel Lezcano49905092008-01-10 03:01:01 -08005035 .data = &init_net.ipv6.sysctl.ip6_rt_min_advmss,
Linus Torvalds1da177e2005-04-16 15:20:36 -07005036 .maxlen = sizeof(int),
5037 .mode = 0644,
Min Zhangf3d3f612010-08-14 22:42:51 -07005038 .proc_handler = proc_dointvec,
Linus Torvalds1da177e2005-04-16 15:20:36 -07005039 },
5040 {
Linus Torvalds1da177e2005-04-16 15:20:36 -07005041 .procname = "gc_min_interval_ms",
Daniel Lezcano49905092008-01-10 03:01:01 -08005042 .data = &init_net.ipv6.sysctl.ip6_rt_gc_min_interval,
Linus Torvalds1da177e2005-04-16 15:20:36 -07005043 .maxlen = sizeof(int),
5044 .mode = 0644,
Alexey Dobriyan6d9f2392008-11-03 18:21:05 -08005045 .proc_handler = proc_dointvec_ms_jiffies,
Linus Torvalds1da177e2005-04-16 15:20:36 -07005046 },
Eric W. Biedermanf8572d82009-11-05 13:32:03 -08005047 { }
Linus Torvalds1da177e2005-04-16 15:20:36 -07005048};
5049
Alexey Dobriyan2c8c1e72010-01-17 03:35:32 +00005050struct ctl_table * __net_init ipv6_route_sysctl_init(struct net *net)
Daniel Lezcano760f2d02008-01-10 02:53:43 -08005051{
5052 struct ctl_table *table;
5053
5054 table = kmemdup(ipv6_route_table_template,
5055 sizeof(ipv6_route_table_template),
5056 GFP_KERNEL);
YOSHIFUJI Hideaki5ee09102008-02-28 00:24:28 +09005057
5058 if (table) {
5059 table[0].data = &net->ipv6.sysctl.flush_delay;
Lucian Adrian Grijincuc486da32011-02-24 19:48:03 +00005060 table[0].extra1 = net;
Alexey Dobriyan86393e52009-08-29 01:34:49 +00005061 table[1].data = &net->ipv6.ip6_dst_ops.gc_thresh;
YOSHIFUJI Hideaki5ee09102008-02-28 00:24:28 +09005062 table[2].data = &net->ipv6.sysctl.ip6_rt_max_size;
5063 table[3].data = &net->ipv6.sysctl.ip6_rt_gc_min_interval;
5064 table[4].data = &net->ipv6.sysctl.ip6_rt_gc_timeout;
5065 table[5].data = &net->ipv6.sysctl.ip6_rt_gc_interval;
5066 table[6].data = &net->ipv6.sysctl.ip6_rt_gc_elasticity;
5067 table[7].data = &net->ipv6.sysctl.ip6_rt_mtu_expires;
5068 table[8].data = &net->ipv6.sysctl.ip6_rt_min_advmss;
Alexey Dobriyan9c69fab2009-12-18 20:11:03 -08005069 table[9].data = &net->ipv6.sysctl.ip6_rt_gc_min_interval;
Eric W. Biederman464dc802012-11-16 03:02:59 +00005070
5071 /* Don't export sysctls to unprivileged users */
5072 if (net->user_ns != &init_user_ns)
5073 table[0].procname = NULL;
YOSHIFUJI Hideaki5ee09102008-02-28 00:24:28 +09005074 }
5075
Daniel Lezcano760f2d02008-01-10 02:53:43 -08005076 return table;
5077}
Linus Torvalds1da177e2005-04-16 15:20:36 -07005078#endif
5079
Alexey Dobriyan2c8c1e72010-01-17 03:35:32 +00005080static int __net_init ip6_route_net_init(struct net *net)
Daniel Lezcanocdb18762008-03-04 13:45:33 -08005081{
Pavel Emelyanov633d424b2008-04-21 14:25:23 -07005082 int ret = -ENOMEM;
Daniel Lezcano8ed67782008-03-04 13:48:30 -08005083
Alexey Dobriyan86393e52009-08-29 01:34:49 +00005084 memcpy(&net->ipv6.ip6_dst_ops, &ip6_dst_ops_template,
5085 sizeof(net->ipv6.ip6_dst_ops));
Benjamin Theryf2fc6a52008-03-04 13:49:23 -08005086
Eric Dumazetfc66f952010-10-08 06:37:34 +00005087 if (dst_entries_init(&net->ipv6.ip6_dst_ops) < 0)
5088 goto out_ip6_dst_ops;
5089
David Ahern421842e2018-04-17 17:33:18 -07005090 net->ipv6.fib6_null_entry = kmemdup(&fib6_null_entry_template,
5091 sizeof(*net->ipv6.fib6_null_entry),
5092 GFP_KERNEL);
5093 if (!net->ipv6.fib6_null_entry)
5094 goto out_ip6_dst_entries;
5095
Daniel Lezcano8ed67782008-03-04 13:48:30 -08005096 net->ipv6.ip6_null_entry = kmemdup(&ip6_null_entry_template,
5097 sizeof(*net->ipv6.ip6_null_entry),
5098 GFP_KERNEL);
5099 if (!net->ipv6.ip6_null_entry)
David Ahern421842e2018-04-17 17:33:18 -07005100 goto out_fib6_null_entry;
Changli Gaod8d1f302010-06-10 23:31:35 -07005101 net->ipv6.ip6_null_entry->dst.ops = &net->ipv6.ip6_dst_ops;
David S. Miller62fa8a82011-01-26 20:51:05 -08005102 dst_init_metrics(&net->ipv6.ip6_null_entry->dst,
5103 ip6_template_metrics, true);
Daniel Lezcano8ed67782008-03-04 13:48:30 -08005104
5105#ifdef CONFIG_IPV6_MULTIPLE_TABLES
Vincent Bernatfeca7d82017-08-08 20:23:49 +02005106 net->ipv6.fib6_has_custom_rules = false;
Daniel Lezcano8ed67782008-03-04 13:48:30 -08005107 net->ipv6.ip6_prohibit_entry = kmemdup(&ip6_prohibit_entry_template,
5108 sizeof(*net->ipv6.ip6_prohibit_entry),
5109 GFP_KERNEL);
Peter Zijlstra68fffc62008-10-07 14:12:10 -07005110 if (!net->ipv6.ip6_prohibit_entry)
5111 goto out_ip6_null_entry;
Changli Gaod8d1f302010-06-10 23:31:35 -07005112 net->ipv6.ip6_prohibit_entry->dst.ops = &net->ipv6.ip6_dst_ops;
David S. Miller62fa8a82011-01-26 20:51:05 -08005113 dst_init_metrics(&net->ipv6.ip6_prohibit_entry->dst,
5114 ip6_template_metrics, true);
Daniel Lezcano8ed67782008-03-04 13:48:30 -08005115
5116 net->ipv6.ip6_blk_hole_entry = kmemdup(&ip6_blk_hole_entry_template,
5117 sizeof(*net->ipv6.ip6_blk_hole_entry),
5118 GFP_KERNEL);
Peter Zijlstra68fffc62008-10-07 14:12:10 -07005119 if (!net->ipv6.ip6_blk_hole_entry)
5120 goto out_ip6_prohibit_entry;
Changli Gaod8d1f302010-06-10 23:31:35 -07005121 net->ipv6.ip6_blk_hole_entry->dst.ops = &net->ipv6.ip6_dst_ops;
David S. Miller62fa8a82011-01-26 20:51:05 -08005122 dst_init_metrics(&net->ipv6.ip6_blk_hole_entry->dst,
5123 ip6_template_metrics, true);
Daniel Lezcano8ed67782008-03-04 13:48:30 -08005124#endif
5125
Peter Zijlstrab339a47c2008-10-07 14:15:00 -07005126 net->ipv6.sysctl.flush_delay = 0;
5127 net->ipv6.sysctl.ip6_rt_max_size = 4096;
5128 net->ipv6.sysctl.ip6_rt_gc_min_interval = HZ / 2;
5129 net->ipv6.sysctl.ip6_rt_gc_timeout = 60*HZ;
5130 net->ipv6.sysctl.ip6_rt_gc_interval = 30*HZ;
5131 net->ipv6.sysctl.ip6_rt_gc_elasticity = 9;
5132 net->ipv6.sysctl.ip6_rt_mtu_expires = 10*60*HZ;
5133 net->ipv6.sysctl.ip6_rt_min_advmss = IPV6_MIN_MTU - 20 - 40;
5134
Benjamin Thery6891a342008-03-04 13:49:47 -08005135 net->ipv6.ip6_rt_gc_expire = 30*HZ;
5136
Daniel Lezcano8ed67782008-03-04 13:48:30 -08005137 ret = 0;
5138out:
5139 return ret;
Benjamin Theryf2fc6a52008-03-04 13:49:23 -08005140
Peter Zijlstra68fffc62008-10-07 14:12:10 -07005141#ifdef CONFIG_IPV6_MULTIPLE_TABLES
5142out_ip6_prohibit_entry:
5143 kfree(net->ipv6.ip6_prohibit_entry);
5144out_ip6_null_entry:
5145 kfree(net->ipv6.ip6_null_entry);
5146#endif
David Ahern421842e2018-04-17 17:33:18 -07005147out_fib6_null_entry:
5148 kfree(net->ipv6.fib6_null_entry);
Eric Dumazetfc66f952010-10-08 06:37:34 +00005149out_ip6_dst_entries:
5150 dst_entries_destroy(&net->ipv6.ip6_dst_ops);
Benjamin Theryf2fc6a52008-03-04 13:49:23 -08005151out_ip6_dst_ops:
Benjamin Theryf2fc6a52008-03-04 13:49:23 -08005152 goto out;
Daniel Lezcanocdb18762008-03-04 13:45:33 -08005153}
5154
Alexey Dobriyan2c8c1e72010-01-17 03:35:32 +00005155static void __net_exit ip6_route_net_exit(struct net *net)
Daniel Lezcanocdb18762008-03-04 13:45:33 -08005156{
David Ahern421842e2018-04-17 17:33:18 -07005157 kfree(net->ipv6.fib6_null_entry);
Daniel Lezcano8ed67782008-03-04 13:48:30 -08005158 kfree(net->ipv6.ip6_null_entry);
5159#ifdef CONFIG_IPV6_MULTIPLE_TABLES
5160 kfree(net->ipv6.ip6_prohibit_entry);
5161 kfree(net->ipv6.ip6_blk_hole_entry);
5162#endif
Xiaotian Feng41bb78b2010-11-02 16:11:05 +00005163 dst_entries_destroy(&net->ipv6.ip6_dst_ops);
Daniel Lezcanocdb18762008-03-04 13:45:33 -08005164}
5165
Thomas Grafd1896342012-06-18 12:08:33 +00005166static int __net_init ip6_route_net_init_late(struct net *net)
5167{
5168#ifdef CONFIG_PROC_FS
Gao fengd4beaa62013-02-18 01:34:54 +00005169 proc_create("ipv6_route", 0, net->proc_net, &ipv6_route_proc_fops);
Joe Perchesd6444062018-03-23 15:54:38 -07005170 proc_create("rt6_stats", 0444, net->proc_net, &rt6_stats_seq_fops);
Thomas Grafd1896342012-06-18 12:08:33 +00005171#endif
5172 return 0;
5173}
5174
5175static void __net_exit ip6_route_net_exit_late(struct net *net)
5176{
5177#ifdef CONFIG_PROC_FS
Gao fengece31ff2013-02-18 01:34:56 +00005178 remove_proc_entry("ipv6_route", net->proc_net);
5179 remove_proc_entry("rt6_stats", net->proc_net);
Thomas Grafd1896342012-06-18 12:08:33 +00005180#endif
5181}
5182
Daniel Lezcanocdb18762008-03-04 13:45:33 -08005183static struct pernet_operations ip6_route_net_ops = {
5184 .init = ip6_route_net_init,
5185 .exit = ip6_route_net_exit,
5186};
5187
David S. Millerc3426b42012-06-09 16:27:05 -07005188static int __net_init ipv6_inetpeer_init(struct net *net)
5189{
5190 struct inet_peer_base *bp = kmalloc(sizeof(*bp), GFP_KERNEL);
5191
5192 if (!bp)
5193 return -ENOMEM;
5194 inet_peer_base_init(bp);
5195 net->ipv6.peers = bp;
5196 return 0;
5197}
5198
5199static void __net_exit ipv6_inetpeer_exit(struct net *net)
5200{
5201 struct inet_peer_base *bp = net->ipv6.peers;
5202
5203 net->ipv6.peers = NULL;
David S. Miller56a6b242012-06-09 16:32:41 -07005204 inetpeer_invalidate_tree(bp);
David S. Millerc3426b42012-06-09 16:27:05 -07005205 kfree(bp);
5206}
5207
David S. Miller2b823f72012-06-09 19:00:16 -07005208static struct pernet_operations ipv6_inetpeer_ops = {
David S. Millerc3426b42012-06-09 16:27:05 -07005209 .init = ipv6_inetpeer_init,
5210 .exit = ipv6_inetpeer_exit,
5211};
5212
Thomas Grafd1896342012-06-18 12:08:33 +00005213static struct pernet_operations ip6_route_net_late_ops = {
5214 .init = ip6_route_net_init_late,
5215 .exit = ip6_route_net_exit_late,
5216};
5217
Daniel Lezcano8ed67782008-03-04 13:48:30 -08005218static struct notifier_block ip6_route_dev_notifier = {
5219 .notifier_call = ip6_route_dev_notify,
WANG Cong242d3a42017-05-08 10:12:13 -07005220 .priority = ADDRCONF_NOTIFY_PRIORITY - 10,
Daniel Lezcano8ed67782008-03-04 13:48:30 -08005221};
5222
WANG Cong2f460932017-05-03 22:07:31 -07005223void __init ip6_route_init_special_entries(void)
5224{
5225 /* Registering of the loopback is done before this portion of code,
5226 * the loopback reference in rt6_info will not be taken, do it
5227 * manually for init_net */
David Ahern421842e2018-04-17 17:33:18 -07005228 init_net.ipv6.fib6_null_entry->fib6_nh.nh_dev = init_net.loopback_dev;
WANG Cong2f460932017-05-03 22:07:31 -07005229 init_net.ipv6.ip6_null_entry->dst.dev = init_net.loopback_dev;
5230 init_net.ipv6.ip6_null_entry->rt6i_idev = in6_dev_get(init_net.loopback_dev);
5231 #ifdef CONFIG_IPV6_MULTIPLE_TABLES
5232 init_net.ipv6.ip6_prohibit_entry->dst.dev = init_net.loopback_dev;
5233 init_net.ipv6.ip6_prohibit_entry->rt6i_idev = in6_dev_get(init_net.loopback_dev);
5234 init_net.ipv6.ip6_blk_hole_entry->dst.dev = init_net.loopback_dev;
5235 init_net.ipv6.ip6_blk_hole_entry->rt6i_idev = in6_dev_get(init_net.loopback_dev);
5236 #endif
5237}
5238
Daniel Lezcano433d49c2007-12-07 00:43:48 -08005239int __init ip6_route_init(void)
Linus Torvalds1da177e2005-04-16 15:20:36 -07005240{
Daniel Lezcano433d49c2007-12-07 00:43:48 -08005241 int ret;
Martin KaFai Lau8d0b94a2015-05-22 20:56:04 -07005242 int cpu;
Daniel Lezcano433d49c2007-12-07 00:43:48 -08005243
Daniel Lezcano9a7ec3a2008-03-04 13:48:53 -08005244 ret = -ENOMEM;
5245 ip6_dst_ops_template.kmem_cachep =
5246 kmem_cache_create("ip6_dst_cache", sizeof(struct rt6_info), 0,
5247 SLAB_HWCACHE_ALIGN, NULL);
5248 if (!ip6_dst_ops_template.kmem_cachep)
Fernando Carrijoc19a28e2009-01-07 18:09:08 -08005249 goto out;
David S. Miller14e50e52007-05-24 18:17:54 -07005250
Eric Dumazetfc66f952010-10-08 06:37:34 +00005251 ret = dst_entries_init(&ip6_dst_blackhole_ops);
Daniel Lezcano8ed67782008-03-04 13:48:30 -08005252 if (ret)
Daniel Lezcanobdb32892008-03-04 13:48:10 -08005253 goto out_kmem_cache;
Daniel Lezcanobdb32892008-03-04 13:48:10 -08005254
David S. Millerc3426b42012-06-09 16:27:05 -07005255 ret = register_pernet_subsys(&ipv6_inetpeer_ops);
5256 if (ret)
David S. Millere8803b62012-06-16 01:12:19 -07005257 goto out_dst_entries;
Thomas Graf2a0c4512012-06-14 23:00:17 +00005258
David S. Miller7e52b332012-06-15 15:51:55 -07005259 ret = register_pernet_subsys(&ip6_route_net_ops);
5260 if (ret)
5261 goto out_register_inetpeer;
David S. Millerc3426b42012-06-09 16:27:05 -07005262
Arnaud Ebalard5dc121e2008-10-01 02:37:56 -07005263 ip6_dst_blackhole_ops.kmem_cachep = ip6_dst_ops_template.kmem_cachep;
5264
David S. Millere8803b62012-06-16 01:12:19 -07005265 ret = fib6_init();
Daniel Lezcano433d49c2007-12-07 00:43:48 -08005266 if (ret)
Daniel Lezcano8ed67782008-03-04 13:48:30 -08005267 goto out_register_subsys;
Daniel Lezcano433d49c2007-12-07 00:43:48 -08005268
Daniel Lezcano433d49c2007-12-07 00:43:48 -08005269 ret = xfrm6_init();
5270 if (ret)
David S. Millere8803b62012-06-16 01:12:19 -07005271 goto out_fib6_init;
Daniel Lezcanoc35b7e72007-12-08 00:14:11 -08005272
Daniel Lezcano433d49c2007-12-07 00:43:48 -08005273 ret = fib6_rules_init();
5274 if (ret)
5275 goto xfrm6_init;
Daniel Lezcano7e5449c2007-12-08 00:14:54 -08005276
Thomas Grafd1896342012-06-18 12:08:33 +00005277 ret = register_pernet_subsys(&ip6_route_net_late_ops);
5278 if (ret)
5279 goto fib6_rules_init;
5280
Florian Westphal16feebc2017-12-02 21:44:08 +01005281 ret = rtnl_register_module(THIS_MODULE, PF_INET6, RTM_NEWROUTE,
5282 inet6_rtm_newroute, NULL, 0);
5283 if (ret < 0)
5284 goto out_register_late_subsys;
5285
5286 ret = rtnl_register_module(THIS_MODULE, PF_INET6, RTM_DELROUTE,
5287 inet6_rtm_delroute, NULL, 0);
5288 if (ret < 0)
5289 goto out_register_late_subsys;
5290
5291 ret = rtnl_register_module(THIS_MODULE, PF_INET6, RTM_GETROUTE,
5292 inet6_rtm_getroute, NULL,
5293 RTNL_FLAG_DOIT_UNLOCKED);
5294 if (ret < 0)
Thomas Grafd1896342012-06-18 12:08:33 +00005295 goto out_register_late_subsys;
Daniel Lezcano433d49c2007-12-07 00:43:48 -08005296
Daniel Lezcano8ed67782008-03-04 13:48:30 -08005297 ret = register_netdevice_notifier(&ip6_route_dev_notifier);
Daniel Lezcanocdb18762008-03-04 13:45:33 -08005298 if (ret)
Thomas Grafd1896342012-06-18 12:08:33 +00005299 goto out_register_late_subsys;
Daniel Lezcano8ed67782008-03-04 13:48:30 -08005300
Martin KaFai Lau8d0b94a2015-05-22 20:56:04 -07005301 for_each_possible_cpu(cpu) {
5302 struct uncached_list *ul = per_cpu_ptr(&rt6_uncached_list, cpu);
5303
5304 INIT_LIST_HEAD(&ul->head);
5305 spin_lock_init(&ul->lock);
5306 }
5307
Daniel Lezcano433d49c2007-12-07 00:43:48 -08005308out:
5309 return ret;
5310
Thomas Grafd1896342012-06-18 12:08:33 +00005311out_register_late_subsys:
Florian Westphal16feebc2017-12-02 21:44:08 +01005312 rtnl_unregister_all(PF_INET6);
Thomas Grafd1896342012-06-18 12:08:33 +00005313 unregister_pernet_subsys(&ip6_route_net_late_ops);
Daniel Lezcano433d49c2007-12-07 00:43:48 -08005314fib6_rules_init:
Daniel Lezcano433d49c2007-12-07 00:43:48 -08005315 fib6_rules_cleanup();
5316xfrm6_init:
Daniel Lezcano433d49c2007-12-07 00:43:48 -08005317 xfrm6_fini();
Thomas Graf2a0c4512012-06-14 23:00:17 +00005318out_fib6_init:
5319 fib6_gc_cleanup();
Daniel Lezcano8ed67782008-03-04 13:48:30 -08005320out_register_subsys:
5321 unregister_pernet_subsys(&ip6_route_net_ops);
David S. Miller7e52b332012-06-15 15:51:55 -07005322out_register_inetpeer:
5323 unregister_pernet_subsys(&ipv6_inetpeer_ops);
Eric Dumazetfc66f952010-10-08 06:37:34 +00005324out_dst_entries:
5325 dst_entries_destroy(&ip6_dst_blackhole_ops);
Daniel Lezcano433d49c2007-12-07 00:43:48 -08005326out_kmem_cache:
Benjamin Theryf2fc6a52008-03-04 13:49:23 -08005327 kmem_cache_destroy(ip6_dst_ops_template.kmem_cachep);
Daniel Lezcano433d49c2007-12-07 00:43:48 -08005328 goto out;
Linus Torvalds1da177e2005-04-16 15:20:36 -07005329}
5330
5331void ip6_route_cleanup(void)
5332{
Daniel Lezcano8ed67782008-03-04 13:48:30 -08005333 unregister_netdevice_notifier(&ip6_route_dev_notifier);
Thomas Grafd1896342012-06-18 12:08:33 +00005334 unregister_pernet_subsys(&ip6_route_net_late_ops);
Thomas Graf101367c2006-08-04 03:39:02 -07005335 fib6_rules_cleanup();
Linus Torvalds1da177e2005-04-16 15:20:36 -07005336 xfrm6_fini();
Linus Torvalds1da177e2005-04-16 15:20:36 -07005337 fib6_gc_cleanup();
David S. Millerc3426b42012-06-09 16:27:05 -07005338 unregister_pernet_subsys(&ipv6_inetpeer_ops);
Daniel Lezcano8ed67782008-03-04 13:48:30 -08005339 unregister_pernet_subsys(&ip6_route_net_ops);
Xiaotian Feng41bb78b2010-11-02 16:11:05 +00005340 dst_entries_destroy(&ip6_dst_blackhole_ops);
Benjamin Theryf2fc6a52008-03-04 13:49:23 -08005341 kmem_cache_destroy(ip6_dst_ops_template.kmem_cachep);
Linus Torvalds1da177e2005-04-16 15:20:36 -07005342}