Alexei Starovoitov | 99c55f7 | 2014-09-26 00:16:57 -0700 | [diff] [blame] | 1 | /* Copyright (c) 2011-2014 PLUMgrid, http://plumgrid.com |
| 2 | * |
| 3 | * This program is free software; you can redistribute it and/or |
| 4 | * modify it under the terms of version 2 of the GNU General Public |
| 5 | * License as published by the Free Software Foundation. |
| 6 | */ |
| 7 | #ifndef _LINUX_BPF_H |
| 8 | #define _LINUX_BPF_H 1 |
| 9 | |
| 10 | #include <uapi/linux/bpf.h> |
Daniel Borkmann | 74451e66 | 2017-02-16 22:24:50 +0100 | [diff] [blame] | 11 | |
Alexei Starovoitov | 99c55f7 | 2014-09-26 00:16:57 -0700 | [diff] [blame] | 12 | #include <linux/workqueue.h> |
Alexei Starovoitov | db20fd2 | 2014-09-26 00:16:59 -0700 | [diff] [blame] | 13 | #include <linux/file.h> |
Alexei Starovoitov | b121d1e | 2016-03-07 21:57:13 -0800 | [diff] [blame] | 14 | #include <linux/percpu.h> |
Zi Shen Lim | 002245c | 2016-06-08 21:18:47 -0700 | [diff] [blame] | 15 | #include <linux/err.h> |
Daniel Borkmann | 74451e66 | 2017-02-16 22:24:50 +0100 | [diff] [blame] | 16 | #include <linux/rbtree_latch.h> |
David S. Miller | d6e1e46 | 2017-08-19 23:34:03 -0700 | [diff] [blame] | 17 | #include <linux/numa.h> |
Alexei Starovoitov | 99c55f7 | 2014-09-26 00:16:57 -0700 | [diff] [blame] | 18 | |
Daniel Borkmann | 3b1efb1 | 2016-06-15 22:47:14 +0200 | [diff] [blame] | 19 | struct perf_event; |
John Fastabend | 174a79f | 2017-08-15 22:32:47 -0700 | [diff] [blame] | 20 | struct bpf_prog; |
Alexei Starovoitov | 99c55f7 | 2014-09-26 00:16:57 -0700 | [diff] [blame] | 21 | struct bpf_map; |
| 22 | |
| 23 | /* map is generic key/value storage optionally accesible by eBPF programs */ |
| 24 | struct bpf_map_ops { |
| 25 | /* funcs callable from userspace (via syscall) */ |
| 26 | struct bpf_map *(*map_alloc)(union bpf_attr *attr); |
Daniel Borkmann | 61d1b6a | 2016-06-15 22:47:12 +0200 | [diff] [blame] | 27 | void (*map_release)(struct bpf_map *map, struct file *map_file); |
| 28 | void (*map_free)(struct bpf_map *map); |
Alexei Starovoitov | db20fd2 | 2014-09-26 00:16:59 -0700 | [diff] [blame] | 29 | int (*map_get_next_key)(struct bpf_map *map, void *key, void *next_key); |
| 30 | |
| 31 | /* funcs callable from userspace and from eBPF programs */ |
| 32 | void *(*map_lookup_elem)(struct bpf_map *map, void *key); |
Alexei Starovoitov | 3274f52 | 2014-11-13 17:36:44 -0800 | [diff] [blame] | 33 | int (*map_update_elem)(struct bpf_map *map, void *key, void *value, u64 flags); |
Alexei Starovoitov | db20fd2 | 2014-09-26 00:16:59 -0700 | [diff] [blame] | 34 | int (*map_delete_elem)(struct bpf_map *map, void *key); |
Wang Nan | 2a36f0b | 2015-08-06 07:02:33 +0000 | [diff] [blame] | 35 | |
| 36 | /* funcs called by prog_array and perf_event_array map */ |
Daniel Borkmann | d056a78 | 2016-06-15 22:47:13 +0200 | [diff] [blame] | 37 | void *(*map_fd_get_ptr)(struct bpf_map *map, struct file *map_file, |
| 38 | int fd); |
| 39 | void (*map_fd_put_ptr)(void *ptr); |
Alexei Starovoitov | 81ed18a | 2017-03-15 18:26:42 -0700 | [diff] [blame] | 40 | u32 (*map_gen_lookup)(struct bpf_map *map, struct bpf_insn *insn_buf); |
Martin KaFai Lau | 14dc6f0 | 2017-06-27 23:08:34 -0700 | [diff] [blame] | 41 | u32 (*map_fd_sys_lookup_elem)(void *ptr); |
Alexei Starovoitov | 99c55f7 | 2014-09-26 00:16:57 -0700 | [diff] [blame] | 42 | }; |
| 43 | |
| 44 | struct bpf_map { |
| 45 | atomic_t refcnt; |
| 46 | enum bpf_map_type map_type; |
| 47 | u32 key_size; |
| 48 | u32 value_size; |
| 49 | u32 max_entries; |
Alexei Starovoitov | 6c90598 | 2016-03-07 21:57:15 -0800 | [diff] [blame] | 50 | u32 map_flags; |
Alexei Starovoitov | aaac3ba | 2015-10-07 22:23:22 -0700 | [diff] [blame] | 51 | u32 pages; |
Martin KaFai Lau | f3f1c05 | 2017-06-05 12:15:47 -0700 | [diff] [blame] | 52 | u32 id; |
Martin KaFai Lau | 96eabe7 | 2017-08-18 11:28:00 -0700 | [diff] [blame] | 53 | int numa_node; |
Alexei Starovoitov | aaac3ba | 2015-10-07 22:23:22 -0700 | [diff] [blame] | 54 | struct user_struct *user; |
Daniel Borkmann | a2c83ff | 2015-03-01 12:31:42 +0100 | [diff] [blame] | 55 | const struct bpf_map_ops *ops; |
Alexei Starovoitov | 99c55f7 | 2014-09-26 00:16:57 -0700 | [diff] [blame] | 56 | struct work_struct work; |
Daniel Borkmann | c9da161 | 2015-11-24 21:28:15 +0100 | [diff] [blame] | 57 | atomic_t usercnt; |
Martin KaFai Lau | 56f668d | 2017-03-22 10:00:33 -0700 | [diff] [blame] | 58 | struct bpf_map *inner_map_meta; |
Martin KaFai Lau | 067cae4 | 2017-10-05 21:52:12 -0700 | [diff] [blame] | 59 | char name[BPF_OBJ_NAME_LEN]; |
Chenbo Feng | afdb09c | 2017-10-18 13:00:24 -0700 | [diff] [blame] | 60 | #ifdef CONFIG_SECURITY |
| 61 | void *security; |
| 62 | #endif |
Alexei Starovoitov | 99c55f7 | 2014-09-26 00:16:57 -0700 | [diff] [blame] | 63 | }; |
| 64 | |
Alexei Starovoitov | 17a5267 | 2014-09-26 00:17:06 -0700 | [diff] [blame] | 65 | /* function argument constraints */ |
| 66 | enum bpf_arg_type { |
Daniel Borkmann | 80f1d68 | 2015-03-12 17:21:42 +0100 | [diff] [blame] | 67 | ARG_DONTCARE = 0, /* unused argument in helper function */ |
Alexei Starovoitov | 17a5267 | 2014-09-26 00:17:06 -0700 | [diff] [blame] | 68 | |
| 69 | /* the following constraints used to prototype |
| 70 | * bpf_map_lookup/update/delete_elem() functions |
| 71 | */ |
| 72 | ARG_CONST_MAP_PTR, /* const argument used as pointer to bpf_map */ |
| 73 | ARG_PTR_TO_MAP_KEY, /* pointer to stack used as map key */ |
| 74 | ARG_PTR_TO_MAP_VALUE, /* pointer to stack used as map value */ |
| 75 | |
| 76 | /* the following constraints used to prototype bpf_memcmp() and other |
| 77 | * functions that access data on eBPF program stack |
| 78 | */ |
Alexei Starovoitov | 39f19ebb | 2017-01-09 10:19:50 -0800 | [diff] [blame] | 79 | ARG_PTR_TO_MEM, /* pointer to valid memory (stack, packet, map value) */ |
| 80 | ARG_PTR_TO_UNINIT_MEM, /* pointer to memory does not need to be initialized, |
| 81 | * helper function must fill all bytes or clear |
| 82 | * them in error case. |
Daniel Borkmann | 435faee1 | 2016-04-13 00:10:51 +0200 | [diff] [blame] | 83 | */ |
| 84 | |
Alexei Starovoitov | 39f19ebb | 2017-01-09 10:19:50 -0800 | [diff] [blame] | 85 | ARG_CONST_SIZE, /* number of bytes accessed from memory */ |
| 86 | ARG_CONST_SIZE_OR_ZERO, /* number of bytes accessed from memory or 0 */ |
Daniel Borkmann | 80f1d68 | 2015-03-12 17:21:42 +0100 | [diff] [blame] | 87 | |
Alexei Starovoitov | 608cd71 | 2015-03-26 19:53:57 -0700 | [diff] [blame] | 88 | ARG_PTR_TO_CTX, /* pointer to context */ |
Daniel Borkmann | 80f1d68 | 2015-03-12 17:21:42 +0100 | [diff] [blame] | 89 | ARG_ANYTHING, /* any (initialized) argument is ok */ |
Alexei Starovoitov | 17a5267 | 2014-09-26 00:17:06 -0700 | [diff] [blame] | 90 | }; |
| 91 | |
| 92 | /* type of values returned from helper functions */ |
| 93 | enum bpf_return_type { |
| 94 | RET_INTEGER, /* function returns integer */ |
| 95 | RET_VOID, /* function doesn't return anything */ |
| 96 | RET_PTR_TO_MAP_VALUE_OR_NULL, /* returns a pointer to map elem value or NULL */ |
| 97 | }; |
| 98 | |
Alexei Starovoitov | 09756af | 2014-09-26 00:17:00 -0700 | [diff] [blame] | 99 | /* eBPF function prototype used by verifier to allow BPF_CALLs from eBPF programs |
| 100 | * to in-kernel helper functions and for adjusting imm32 field in BPF_CALL |
| 101 | * instructions after verifying |
| 102 | */ |
| 103 | struct bpf_func_proto { |
| 104 | u64 (*func)(u64 r1, u64 r2, u64 r3, u64 r4, u64 r5); |
| 105 | bool gpl_only; |
Daniel Borkmann | 36bbef5 | 2016-09-20 00:26:13 +0200 | [diff] [blame] | 106 | bool pkt_access; |
Alexei Starovoitov | 17a5267 | 2014-09-26 00:17:06 -0700 | [diff] [blame] | 107 | enum bpf_return_type ret_type; |
| 108 | enum bpf_arg_type arg1_type; |
| 109 | enum bpf_arg_type arg2_type; |
| 110 | enum bpf_arg_type arg3_type; |
| 111 | enum bpf_arg_type arg4_type; |
| 112 | enum bpf_arg_type arg5_type; |
| 113 | }; |
| 114 | |
| 115 | /* bpf_context is intentionally undefined structure. Pointer to bpf_context is |
| 116 | * the first argument to eBPF programs. |
| 117 | * For socket filters: 'struct bpf_context *' == 'struct sk_buff *' |
| 118 | */ |
| 119 | struct bpf_context; |
| 120 | |
| 121 | enum bpf_access_type { |
| 122 | BPF_READ = 1, |
| 123 | BPF_WRITE = 2 |
Alexei Starovoitov | 09756af | 2014-09-26 00:17:00 -0700 | [diff] [blame] | 124 | }; |
| 125 | |
Alexei Starovoitov | 19de99f | 2016-06-15 18:25:38 -0700 | [diff] [blame] | 126 | /* types of values stored in eBPF registers */ |
Edward Cree | f1174f7 | 2017-08-07 15:26:19 +0100 | [diff] [blame] | 127 | /* Pointer types represent: |
| 128 | * pointer |
| 129 | * pointer + imm |
| 130 | * pointer + (u16) var |
| 131 | * pointer + (u16) var + imm |
| 132 | * if (range > 0) then [ptr, ptr + range - off) is safe to access |
| 133 | * if (id > 0) means that some 'var' was added |
| 134 | * if (off > 0) means that 'imm' was added |
| 135 | */ |
Alexei Starovoitov | 19de99f | 2016-06-15 18:25:38 -0700 | [diff] [blame] | 136 | enum bpf_reg_type { |
| 137 | NOT_INIT = 0, /* nothing was written into register */ |
Edward Cree | f1174f7 | 2017-08-07 15:26:19 +0100 | [diff] [blame] | 138 | SCALAR_VALUE, /* reg doesn't contain a valid pointer */ |
Alexei Starovoitov | 19de99f | 2016-06-15 18:25:38 -0700 | [diff] [blame] | 139 | PTR_TO_CTX, /* reg points to bpf_context */ |
| 140 | CONST_PTR_TO_MAP, /* reg points to struct bpf_map */ |
| 141 | PTR_TO_MAP_VALUE, /* reg points to map element value */ |
| 142 | PTR_TO_MAP_VALUE_OR_NULL,/* points to map elem value or NULL */ |
Edward Cree | f1174f7 | 2017-08-07 15:26:19 +0100 | [diff] [blame] | 143 | PTR_TO_STACK, /* reg == frame_pointer + offset */ |
Daniel Borkmann | de8f3a8 | 2017-09-25 02:25:51 +0200 | [diff] [blame] | 144 | PTR_TO_PACKET_META, /* skb->data - meta_len */ |
Edward Cree | f1174f7 | 2017-08-07 15:26:19 +0100 | [diff] [blame] | 145 | PTR_TO_PACKET, /* reg points to skb->data */ |
Alexei Starovoitov | 19de99f | 2016-06-15 18:25:38 -0700 | [diff] [blame] | 146 | PTR_TO_PACKET_END, /* skb->data + headlen */ |
| 147 | }; |
| 148 | |
Yonghong Song | 2399463 | 2017-06-22 15:07:39 -0700 | [diff] [blame] | 149 | /* The information passed from prog-specific *_is_valid_access |
| 150 | * back to the verifier. |
| 151 | */ |
| 152 | struct bpf_insn_access_aux { |
| 153 | enum bpf_reg_type reg_type; |
| 154 | int ctx_field_size; |
Yonghong Song | 2399463 | 2017-06-22 15:07:39 -0700 | [diff] [blame] | 155 | }; |
| 156 | |
Daniel Borkmann | f96da09 | 2017-07-02 02:13:27 +0200 | [diff] [blame] | 157 | static inline void |
| 158 | bpf_ctx_record_field_size(struct bpf_insn_access_aux *aux, u32 size) |
| 159 | { |
| 160 | aux->ctx_field_size = size; |
| 161 | } |
| 162 | |
Jakub Kicinski | 7de16e3 | 2017-10-16 16:40:53 -0700 | [diff] [blame] | 163 | struct bpf_prog_ops { |
| 164 | int (*test_run)(struct bpf_prog *prog, const union bpf_attr *kattr, |
| 165 | union bpf_attr __user *uattr); |
| 166 | }; |
| 167 | |
Alexei Starovoitov | 09756af | 2014-09-26 00:17:00 -0700 | [diff] [blame] | 168 | struct bpf_verifier_ops { |
| 169 | /* return eBPF function prototype for verification */ |
| 170 | const struct bpf_func_proto *(*get_func_proto)(enum bpf_func_id func_id); |
Alexei Starovoitov | 17a5267 | 2014-09-26 00:17:06 -0700 | [diff] [blame] | 171 | |
| 172 | /* return true if 'size' wide access at offset 'off' within bpf_context |
| 173 | * with 'type' (read or write) is allowed |
| 174 | */ |
Alexei Starovoitov | 19de99f | 2016-06-15 18:25:38 -0700 | [diff] [blame] | 175 | bool (*is_valid_access)(int off, int size, enum bpf_access_type type, |
Yonghong Song | 2399463 | 2017-06-22 15:07:39 -0700 | [diff] [blame] | 176 | struct bpf_insn_access_aux *info); |
Daniel Borkmann | 36bbef5 | 2016-09-20 00:26:13 +0200 | [diff] [blame] | 177 | int (*gen_prologue)(struct bpf_insn *insn, bool direct_write, |
| 178 | const struct bpf_prog *prog); |
Daniel Borkmann | 6b8cc1d | 2017-01-12 11:51:32 +0100 | [diff] [blame] | 179 | u32 (*convert_ctx_access)(enum bpf_access_type type, |
| 180 | const struct bpf_insn *src, |
| 181 | struct bpf_insn *dst, |
Daniel Borkmann | f96da09 | 2017-07-02 02:13:27 +0200 | [diff] [blame] | 182 | struct bpf_prog *prog, u32 *target_size); |
Alexei Starovoitov | 09756af | 2014-09-26 00:17:00 -0700 | [diff] [blame] | 183 | }; |
| 184 | |
Alexei Starovoitov | 09756af | 2014-09-26 00:17:00 -0700 | [diff] [blame] | 185 | struct bpf_prog_aux { |
| 186 | atomic_t refcnt; |
Daniel Borkmann | 24701ec | 2015-03-01 12:31:47 +0100 | [diff] [blame] | 187 | u32 used_map_cnt; |
Alexei Starovoitov | 32bbe00 | 2016-04-06 18:43:28 -0700 | [diff] [blame] | 188 | u32 max_ctx_offset; |
Alexei Starovoitov | 8726679 | 2017-05-30 13:31:29 -0700 | [diff] [blame] | 189 | u32 stack_depth; |
Martin KaFai Lau | dc4bb0e | 2017-06-05 12:15:46 -0700 | [diff] [blame] | 190 | u32 id; |
Daniel Borkmann | 74451e66 | 2017-02-16 22:24:50 +0100 | [diff] [blame] | 191 | struct latch_tree_node ksym_tnode; |
| 192 | struct list_head ksym_lnode; |
Jakub Kicinski | 7de16e3 | 2017-10-16 16:40:53 -0700 | [diff] [blame] | 193 | const struct bpf_prog_ops *ops; |
Alexei Starovoitov | 09756af | 2014-09-26 00:17:00 -0700 | [diff] [blame] | 194 | struct bpf_map **used_maps; |
Alexei Starovoitov | 09756af | 2014-09-26 00:17:00 -0700 | [diff] [blame] | 195 | struct bpf_prog *prog; |
Alexei Starovoitov | aaac3ba | 2015-10-07 22:23:22 -0700 | [diff] [blame] | 196 | struct user_struct *user; |
Martin KaFai Lau | cb4d2b3 | 2017-09-27 14:37:52 -0700 | [diff] [blame] | 197 | u64 load_time; /* ns since boottime */ |
Martin KaFai Lau | 067cae4 | 2017-10-05 21:52:12 -0700 | [diff] [blame] | 198 | char name[BPF_OBJ_NAME_LEN]; |
Chenbo Feng | afdb09c | 2017-10-18 13:00:24 -0700 | [diff] [blame] | 199 | #ifdef CONFIG_SECURITY |
| 200 | void *security; |
| 201 | #endif |
Alexei Starovoitov | abf2e7d | 2015-05-28 19:26:02 -0700 | [diff] [blame] | 202 | union { |
| 203 | struct work_struct work; |
| 204 | struct rcu_head rcu; |
| 205 | }; |
Alexei Starovoitov | 09756af | 2014-09-26 00:17:00 -0700 | [diff] [blame] | 206 | }; |
| 207 | |
Alexei Starovoitov | 04fd61ab | 2015-05-19 16:59:03 -0700 | [diff] [blame] | 208 | struct bpf_array { |
| 209 | struct bpf_map map; |
| 210 | u32 elem_size; |
| 211 | /* 'ownership' of prog_array is claimed by the first program that |
| 212 | * is going to use this map or by the first program which FD is stored |
| 213 | * in the map to make sure that all callers and callees have the same |
| 214 | * prog_type and JITed flag |
| 215 | */ |
| 216 | enum bpf_prog_type owner_prog_type; |
| 217 | bool owner_jited; |
| 218 | union { |
| 219 | char value[0] __aligned(8); |
Wang Nan | 2a36f0b | 2015-08-06 07:02:33 +0000 | [diff] [blame] | 220 | void *ptrs[0] __aligned(8); |
Alexei Starovoitov | a10423b | 2016-02-01 22:39:54 -0800 | [diff] [blame] | 221 | void __percpu *pptrs[0] __aligned(8); |
Alexei Starovoitov | 04fd61ab | 2015-05-19 16:59:03 -0700 | [diff] [blame] | 222 | }; |
| 223 | }; |
Daniel Borkmann | 3b1efb1 | 2016-06-15 22:47:14 +0200 | [diff] [blame] | 224 | |
Alexei Starovoitov | 04fd61ab | 2015-05-19 16:59:03 -0700 | [diff] [blame] | 225 | #define MAX_TAIL_CALL_CNT 32 |
| 226 | |
Daniel Borkmann | 3b1efb1 | 2016-06-15 22:47:14 +0200 | [diff] [blame] | 227 | struct bpf_event_entry { |
| 228 | struct perf_event *event; |
| 229 | struct file *perf_file; |
| 230 | struct file *map_file; |
| 231 | struct rcu_head rcu; |
| 232 | }; |
| 233 | |
Alexei Starovoitov | 04fd61ab | 2015-05-19 16:59:03 -0700 | [diff] [blame] | 234 | bool bpf_prog_array_compatible(struct bpf_array *array, const struct bpf_prog *fp); |
Daniel Borkmann | f1f7714 | 2017-01-13 23:38:15 +0100 | [diff] [blame] | 235 | int bpf_prog_calc_tag(struct bpf_prog *fp); |
Daniel Borkmann | bd570ff | 2016-04-18 21:01:24 +0200 | [diff] [blame] | 236 | |
Alexei Starovoitov | 0756ea3 | 2015-06-12 19:39:13 -0700 | [diff] [blame] | 237 | const struct bpf_func_proto *bpf_get_trace_printk_proto(void); |
Daniel Borkmann | 555c8a8 | 2016-07-14 18:08:05 +0200 | [diff] [blame] | 238 | |
| 239 | typedef unsigned long (*bpf_ctx_copy_t)(void *dst, const void *src, |
Daniel Borkmann | aa7145c | 2016-07-22 01:19:42 +0200 | [diff] [blame] | 240 | unsigned long off, unsigned long len); |
Daniel Borkmann | 555c8a8 | 2016-07-14 18:08:05 +0200 | [diff] [blame] | 241 | |
| 242 | u64 bpf_event_output(struct bpf_map *map, u64 flags, void *meta, u64 meta_size, |
| 243 | void *ctx, u64 ctx_size, bpf_ctx_copy_t ctx_copy); |
Alexei Starovoitov | 04fd61ab | 2015-05-19 16:59:03 -0700 | [diff] [blame] | 244 | |
Alexei Starovoitov | 1cf1cae | 2017-03-30 21:45:38 -0700 | [diff] [blame] | 245 | int bpf_prog_test_run_xdp(struct bpf_prog *prog, const union bpf_attr *kattr, |
| 246 | union bpf_attr __user *uattr); |
| 247 | int bpf_prog_test_run_skb(struct bpf_prog *prog, const union bpf_attr *kattr, |
| 248 | union bpf_attr __user *uattr); |
| 249 | |
Alexei Starovoitov | 324bda9e6 | 2017-10-02 22:50:21 -0700 | [diff] [blame] | 250 | /* an array of programs to be executed under rcu_lock. |
| 251 | * |
| 252 | * Typical usage: |
| 253 | * ret = BPF_PROG_RUN_ARRAY(&bpf_prog_array, ctx, BPF_PROG_RUN); |
| 254 | * |
| 255 | * the structure returned by bpf_prog_array_alloc() should be populated |
| 256 | * with program pointers and the last pointer must be NULL. |
| 257 | * The user has to keep refcnt on the program and make sure the program |
| 258 | * is removed from the array before bpf_prog_put(). |
| 259 | * The 'struct bpf_prog_array *' should only be replaced with xchg() |
| 260 | * since other cpus are walking the array of pointers in parallel. |
| 261 | */ |
| 262 | struct bpf_prog_array { |
| 263 | struct rcu_head rcu; |
| 264 | struct bpf_prog *progs[0]; |
| 265 | }; |
| 266 | |
| 267 | struct bpf_prog_array __rcu *bpf_prog_array_alloc(u32 prog_cnt, gfp_t flags); |
| 268 | void bpf_prog_array_free(struct bpf_prog_array __rcu *progs); |
Alexei Starovoitov | 468e2f6 | 2017-10-02 22:50:22 -0700 | [diff] [blame] | 269 | int bpf_prog_array_length(struct bpf_prog_array __rcu *progs); |
| 270 | int bpf_prog_array_copy_to_user(struct bpf_prog_array __rcu *progs, |
| 271 | __u32 __user *prog_ids, u32 cnt); |
Alexei Starovoitov | 324bda9e6 | 2017-10-02 22:50:21 -0700 | [diff] [blame] | 272 | |
Yonghong Song | e87c6bc | 2017-10-23 23:53:08 -0700 | [diff] [blame] | 273 | void bpf_prog_array_delete_safe(struct bpf_prog_array __rcu *progs, |
| 274 | struct bpf_prog *old_prog); |
| 275 | int bpf_prog_array_copy(struct bpf_prog_array __rcu *old_array, |
| 276 | struct bpf_prog *exclude_prog, |
| 277 | struct bpf_prog *include_prog, |
| 278 | struct bpf_prog_array **new_array); |
| 279 | |
| 280 | #define __BPF_PROG_RUN_ARRAY(array, ctx, func, check_non_null) \ |
Alexei Starovoitov | 324bda9e6 | 2017-10-02 22:50:21 -0700 | [diff] [blame] | 281 | ({ \ |
Yonghong Song | e87c6bc | 2017-10-23 23:53:08 -0700 | [diff] [blame] | 282 | struct bpf_prog **_prog, *__prog; \ |
| 283 | struct bpf_prog_array *_array; \ |
Alexei Starovoitov | 324bda9e6 | 2017-10-02 22:50:21 -0700 | [diff] [blame] | 284 | u32 _ret = 1; \ |
| 285 | rcu_read_lock(); \ |
Yonghong Song | e87c6bc | 2017-10-23 23:53:08 -0700 | [diff] [blame] | 286 | _array = rcu_dereference(array); \ |
| 287 | if (unlikely(check_non_null && !_array))\ |
| 288 | goto _out; \ |
| 289 | _prog = _array->progs; \ |
| 290 | while ((__prog = READ_ONCE(*_prog))) { \ |
| 291 | _ret &= func(__prog, ctx); \ |
| 292 | _prog++; \ |
| 293 | } \ |
| 294 | _out: \ |
Alexei Starovoitov | 324bda9e6 | 2017-10-02 22:50:21 -0700 | [diff] [blame] | 295 | rcu_read_unlock(); \ |
| 296 | _ret; \ |
| 297 | }) |
| 298 | |
Yonghong Song | e87c6bc | 2017-10-23 23:53:08 -0700 | [diff] [blame] | 299 | #define BPF_PROG_RUN_ARRAY(array, ctx, func) \ |
| 300 | __BPF_PROG_RUN_ARRAY(array, ctx, func, false) |
| 301 | |
| 302 | #define BPF_PROG_RUN_ARRAY_CHECK(array, ctx, func) \ |
| 303 | __BPF_PROG_RUN_ARRAY(array, ctx, func, true) |
| 304 | |
Alexei Starovoitov | 89aa075 | 2014-12-01 15:06:35 -0800 | [diff] [blame] | 305 | #ifdef CONFIG_BPF_SYSCALL |
Alexei Starovoitov | b121d1e | 2016-03-07 21:57:13 -0800 | [diff] [blame] | 306 | DECLARE_PER_CPU(int, bpf_prog_active); |
| 307 | |
Chenbo Feng | f66e448 | 2017-10-18 13:00:26 -0700 | [diff] [blame] | 308 | extern const struct file_operations bpf_map_fops; |
| 309 | extern const struct file_operations bpf_prog_fops; |
| 310 | |
Jakub Kicinski | 7de16e3 | 2017-10-16 16:40:53 -0700 | [diff] [blame] | 311 | #define BPF_PROG_TYPE(_id, _name) \ |
| 312 | extern const struct bpf_prog_ops _name ## _prog_ops; \ |
| 313 | extern const struct bpf_verifier_ops _name ## _verifier_ops; |
Johannes Berg | 40077e0 | 2017-04-11 15:34:58 +0200 | [diff] [blame] | 314 | #define BPF_MAP_TYPE(_id, _ops) \ |
| 315 | extern const struct bpf_map_ops _ops; |
Johannes Berg | be9370a | 2017-04-11 15:34:57 +0200 | [diff] [blame] | 316 | #include <linux/bpf_types.h> |
| 317 | #undef BPF_PROG_TYPE |
Johannes Berg | 40077e0 | 2017-04-11 15:34:58 +0200 | [diff] [blame] | 318 | #undef BPF_MAP_TYPE |
Daniel Borkmann | 0fc174d | 2015-03-01 12:31:44 +0100 | [diff] [blame] | 319 | |
Jakub Kicinski | 4f9218a | 2017-10-16 16:40:55 -0700 | [diff] [blame] | 320 | extern const struct bpf_verifier_ops tc_cls_act_analyzer_ops; |
| 321 | extern const struct bpf_verifier_ops xdp_analyzer_ops; |
| 322 | |
Alexei Starovoitov | 09756af | 2014-09-26 00:17:00 -0700 | [diff] [blame] | 323 | struct bpf_prog *bpf_prog_get(u32 ufd); |
Daniel Borkmann | 113214b | 2016-06-30 17:24:44 +0200 | [diff] [blame] | 324 | struct bpf_prog *bpf_prog_get_type(u32 ufd, enum bpf_prog_type type); |
Daniel Borkmann | 6d67942dd | 2016-11-19 01:45:03 +0100 | [diff] [blame] | 325 | struct bpf_prog * __must_check bpf_prog_add(struct bpf_prog *prog, int i); |
Daniel Borkmann | c540594 | 2016-11-09 22:02:34 +0100 | [diff] [blame] | 326 | void bpf_prog_sub(struct bpf_prog *prog, int i); |
Daniel Borkmann | 6d67942dd | 2016-11-19 01:45:03 +0100 | [diff] [blame] | 327 | struct bpf_prog * __must_check bpf_prog_inc(struct bpf_prog *prog); |
John Fastabend | a6f6df6 | 2017-08-15 22:32:22 -0700 | [diff] [blame] | 328 | struct bpf_prog * __must_check bpf_prog_inc_not_zero(struct bpf_prog *prog); |
Daniel Borkmann | 61e021f | 2015-03-02 15:21:55 +0100 | [diff] [blame] | 329 | void bpf_prog_put(struct bpf_prog *prog); |
Daniel Borkmann | 5ccb071 | 2016-12-18 01:52:58 +0100 | [diff] [blame] | 330 | int __bpf_prog_charge(struct user_struct *user, u32 pages); |
| 331 | void __bpf_prog_uncharge(struct user_struct *user, u32 pages); |
Daniel Borkmann | 61e021f | 2015-03-02 15:21:55 +0100 | [diff] [blame] | 332 | |
Daniel Borkmann | c9da161 | 2015-11-24 21:28:15 +0100 | [diff] [blame] | 333 | struct bpf_map *bpf_map_get_with_uref(u32 ufd); |
Daniel Borkmann | c210129 | 2015-10-29 14:58:07 +0100 | [diff] [blame] | 334 | struct bpf_map *__bpf_map_get(struct fd f); |
Daniel Borkmann | 6d67942dd | 2016-11-19 01:45:03 +0100 | [diff] [blame] | 335 | struct bpf_map * __must_check bpf_map_inc(struct bpf_map *map, bool uref); |
Daniel Borkmann | c9da161 | 2015-11-24 21:28:15 +0100 | [diff] [blame] | 336 | void bpf_map_put_with_uref(struct bpf_map *map); |
Daniel Borkmann | 61e021f | 2015-03-02 15:21:55 +0100 | [diff] [blame] | 337 | void bpf_map_put(struct bpf_map *map); |
Alexei Starovoitov | 6c90598 | 2016-03-07 21:57:15 -0800 | [diff] [blame] | 338 | int bpf_map_precharge_memlock(u32 pages); |
Martin KaFai Lau | 96eabe7 | 2017-08-18 11:28:00 -0700 | [diff] [blame] | 339 | void *bpf_map_area_alloc(size_t size, int numa_node); |
Daniel Borkmann | d407bd2 | 2017-01-18 15:14:17 +0100 | [diff] [blame] | 340 | void bpf_map_area_free(void *base); |
Daniel Borkmann | 61e021f | 2015-03-02 15:21:55 +0100 | [diff] [blame] | 341 | |
Alexei Starovoitov | 1be7f75 | 2015-10-07 22:23:21 -0700 | [diff] [blame] | 342 | extern int sysctl_unprivileged_bpf_disabled; |
| 343 | |
Chenbo Feng | 6e71b04 | 2017-10-18 13:00:22 -0700 | [diff] [blame] | 344 | int bpf_map_new_fd(struct bpf_map *map, int flags); |
Daniel Borkmann | b219775 | 2015-10-29 14:58:09 +0100 | [diff] [blame] | 345 | int bpf_prog_new_fd(struct bpf_prog *prog); |
| 346 | |
| 347 | int bpf_obj_pin_user(u32 ufd, const char __user *pathname); |
Chenbo Feng | 6e71b04 | 2017-10-18 13:00:22 -0700 | [diff] [blame] | 348 | int bpf_obj_get_user(const char __user *pathname, int flags); |
Daniel Borkmann | b219775 | 2015-10-29 14:58:09 +0100 | [diff] [blame] | 349 | |
Alexei Starovoitov | 15a07b3 | 2016-02-01 22:39:55 -0800 | [diff] [blame] | 350 | int bpf_percpu_hash_copy(struct bpf_map *map, void *key, void *value); |
| 351 | int bpf_percpu_array_copy(struct bpf_map *map, void *key, void *value); |
| 352 | int bpf_percpu_hash_update(struct bpf_map *map, void *key, void *value, |
| 353 | u64 flags); |
| 354 | int bpf_percpu_array_update(struct bpf_map *map, void *key, void *value, |
| 355 | u64 flags); |
Daniel Borkmann | d056a78 | 2016-06-15 22:47:13 +0200 | [diff] [blame] | 356 | |
Alexei Starovoitov | 557c0c6 | 2016-03-07 21:57:17 -0800 | [diff] [blame] | 357 | int bpf_stackmap_copy(struct bpf_map *map, void *key, void *value); |
Alexei Starovoitov | 15a07b3 | 2016-02-01 22:39:55 -0800 | [diff] [blame] | 358 | |
Daniel Borkmann | d056a78 | 2016-06-15 22:47:13 +0200 | [diff] [blame] | 359 | int bpf_fd_array_map_update_elem(struct bpf_map *map, struct file *map_file, |
| 360 | void *key, void *value, u64 map_flags); |
Martin KaFai Lau | 14dc6f0 | 2017-06-27 23:08:34 -0700 | [diff] [blame] | 361 | int bpf_fd_array_map_lookup_elem(struct bpf_map *map, void *key, u32 *value); |
Daniel Borkmann | d056a78 | 2016-06-15 22:47:13 +0200 | [diff] [blame] | 362 | void bpf_fd_array_map_clear(struct bpf_map *map); |
Martin KaFai Lau | bcc6b1b | 2017-03-22 10:00:34 -0700 | [diff] [blame] | 363 | int bpf_fd_htab_map_update_elem(struct bpf_map *map, struct file *map_file, |
| 364 | void *key, void *value, u64 map_flags); |
Martin KaFai Lau | 14dc6f0 | 2017-06-27 23:08:34 -0700 | [diff] [blame] | 365 | int bpf_fd_htab_map_lookup_elem(struct bpf_map *map, void *key, u32 *value); |
Daniel Borkmann | d056a78 | 2016-06-15 22:47:13 +0200 | [diff] [blame] | 366 | |
Chenbo Feng | 6e71b04 | 2017-10-18 13:00:22 -0700 | [diff] [blame] | 367 | int bpf_get_file_flag(int flags); |
| 368 | |
Alexei Starovoitov | 15a07b3 | 2016-02-01 22:39:55 -0800 | [diff] [blame] | 369 | /* memcpy that is used with 8-byte aligned pointers, power-of-8 size and |
| 370 | * forced to use 'long' read/writes to try to atomically copy long counters. |
| 371 | * Best-effort only. No barriers here, since it _will_ race with concurrent |
| 372 | * updates from BPF programs. Called from bpf syscall and mostly used with |
| 373 | * size 8 or 16 bytes, so ask compiler to inline it. |
| 374 | */ |
| 375 | static inline void bpf_long_memcpy(void *dst, const void *src, u32 size) |
| 376 | { |
| 377 | const long *lsrc = src; |
| 378 | long *ldst = dst; |
| 379 | |
| 380 | size /= sizeof(long); |
| 381 | while (size--) |
| 382 | *ldst++ = *lsrc++; |
| 383 | } |
| 384 | |
Daniel Borkmann | 61e021f | 2015-03-02 15:21:55 +0100 | [diff] [blame] | 385 | /* verify correctness of eBPF program */ |
Alexei Starovoitov | 9bac3d6 | 2015-03-13 11:57:42 -0700 | [diff] [blame] | 386 | int bpf_check(struct bpf_prog **fp, union bpf_attr *attr); |
John Fastabend | 46f55cf | 2017-07-17 21:56:48 -0700 | [diff] [blame] | 387 | |
| 388 | /* Map specifics */ |
| 389 | struct net_device *__dev_map_lookup_elem(struct bpf_map *map, u32 key); |
| 390 | void __dev_map_insert_ctx(struct bpf_map *map, u32 index); |
| 391 | void __dev_map_flush(struct bpf_map *map); |
| 392 | |
Jesper Dangaard Brouer | 9c270af | 2017-10-16 12:19:34 +0200 | [diff] [blame] | 393 | struct bpf_cpu_map_entry *__cpu_map_lookup_elem(struct bpf_map *map, u32 key); |
| 394 | void __cpu_map_insert_ctx(struct bpf_map *map, u32 index); |
| 395 | void __cpu_map_flush(struct bpf_map *map); |
| 396 | struct xdp_buff; |
| 397 | int cpu_map_enqueue(struct bpf_cpu_map_entry *rcpu, struct xdp_buff *xdp, |
| 398 | struct net_device *dev_rx); |
| 399 | |
Martin KaFai Lau | 96eabe7 | 2017-08-18 11:28:00 -0700 | [diff] [blame] | 400 | /* Return map's numa specified by userspace */ |
| 401 | static inline int bpf_map_attr_numa_node(const union bpf_attr *attr) |
| 402 | { |
| 403 | return (attr->map_flags & BPF_F_NUMA_NODE) ? |
| 404 | attr->numa_node : NUMA_NO_NODE; |
| 405 | } |
| 406 | |
Jesper Dangaard Brouer | 9c270af | 2017-10-16 12:19:34 +0200 | [diff] [blame] | 407 | #else /* !CONFIG_BPF_SYSCALL */ |
Daniel Borkmann | 0fc174d | 2015-03-01 12:31:44 +0100 | [diff] [blame] | 408 | static inline struct bpf_prog *bpf_prog_get(u32 ufd) |
| 409 | { |
| 410 | return ERR_PTR(-EOPNOTSUPP); |
| 411 | } |
| 412 | |
Daniel Borkmann | 113214b | 2016-06-30 17:24:44 +0200 | [diff] [blame] | 413 | static inline struct bpf_prog *bpf_prog_get_type(u32 ufd, |
| 414 | enum bpf_prog_type type) |
| 415 | { |
| 416 | return ERR_PTR(-EOPNOTSUPP); |
| 417 | } |
Daniel Borkmann | 6d67942dd | 2016-11-19 01:45:03 +0100 | [diff] [blame] | 418 | static inline struct bpf_prog * __must_check bpf_prog_add(struct bpf_prog *prog, |
| 419 | int i) |
Brenden Blanco | cc2e0b3 | 2016-07-20 07:55:52 -0700 | [diff] [blame] | 420 | { |
| 421 | return ERR_PTR(-EOPNOTSUPP); |
| 422 | } |
Daniel Borkmann | 113214b | 2016-06-30 17:24:44 +0200 | [diff] [blame] | 423 | |
Daniel Borkmann | c540594 | 2016-11-09 22:02:34 +0100 | [diff] [blame] | 424 | static inline void bpf_prog_sub(struct bpf_prog *prog, int i) |
| 425 | { |
| 426 | } |
| 427 | |
Daniel Borkmann | 0fc174d | 2015-03-01 12:31:44 +0100 | [diff] [blame] | 428 | static inline void bpf_prog_put(struct bpf_prog *prog) |
| 429 | { |
| 430 | } |
Daniel Borkmann | 6d67942dd | 2016-11-19 01:45:03 +0100 | [diff] [blame] | 431 | |
| 432 | static inline struct bpf_prog * __must_check bpf_prog_inc(struct bpf_prog *prog) |
Alexei Starovoitov | aa6a5f3 | 2016-09-01 18:37:24 -0700 | [diff] [blame] | 433 | { |
| 434 | return ERR_PTR(-EOPNOTSUPP); |
| 435 | } |
Daniel Borkmann | 5ccb071 | 2016-12-18 01:52:58 +0100 | [diff] [blame] | 436 | |
John Fastabend | a6f6df6 | 2017-08-15 22:32:22 -0700 | [diff] [blame] | 437 | static inline struct bpf_prog *__must_check |
| 438 | bpf_prog_inc_not_zero(struct bpf_prog *prog) |
| 439 | { |
| 440 | return ERR_PTR(-EOPNOTSUPP); |
| 441 | } |
| 442 | |
Daniel Borkmann | 5ccb071 | 2016-12-18 01:52:58 +0100 | [diff] [blame] | 443 | static inline int __bpf_prog_charge(struct user_struct *user, u32 pages) |
| 444 | { |
| 445 | return 0; |
| 446 | } |
| 447 | |
| 448 | static inline void __bpf_prog_uncharge(struct user_struct *user, u32 pages) |
| 449 | { |
| 450 | } |
John Fastabend | 46f55cf | 2017-07-17 21:56:48 -0700 | [diff] [blame] | 451 | |
Chenbo Feng | 6e71b04 | 2017-10-18 13:00:22 -0700 | [diff] [blame] | 452 | static inline int bpf_obj_get_user(const char __user *pathname, int flags) |
Shmulik Ladkani | 98589a0 | 2017-10-09 15:27:15 +0300 | [diff] [blame] | 453 | { |
| 454 | return -EOPNOTSUPP; |
| 455 | } |
| 456 | |
John Fastabend | 46f55cf | 2017-07-17 21:56:48 -0700 | [diff] [blame] | 457 | static inline struct net_device *__dev_map_lookup_elem(struct bpf_map *map, |
| 458 | u32 key) |
| 459 | { |
| 460 | return NULL; |
| 461 | } |
| 462 | |
| 463 | static inline void __dev_map_insert_ctx(struct bpf_map *map, u32 index) |
| 464 | { |
| 465 | } |
| 466 | |
| 467 | static inline void __dev_map_flush(struct bpf_map *map) |
| 468 | { |
| 469 | } |
Jesper Dangaard Brouer | 9c270af | 2017-10-16 12:19:34 +0200 | [diff] [blame] | 470 | |
| 471 | static inline |
| 472 | struct bpf_cpu_map_entry *__cpu_map_lookup_elem(struct bpf_map *map, u32 key) |
| 473 | { |
| 474 | return NULL; |
| 475 | } |
| 476 | |
| 477 | static inline void __cpu_map_insert_ctx(struct bpf_map *map, u32 index) |
| 478 | { |
| 479 | } |
| 480 | |
| 481 | static inline void __cpu_map_flush(struct bpf_map *map) |
| 482 | { |
| 483 | } |
| 484 | |
| 485 | struct xdp_buff; |
| 486 | static inline int cpu_map_enqueue(struct bpf_cpu_map_entry *rcpu, |
| 487 | struct xdp_buff *xdp, |
| 488 | struct net_device *dev_rx) |
| 489 | { |
| 490 | return 0; |
| 491 | } |
Daniel Borkmann | 61e021f | 2015-03-02 15:21:55 +0100 | [diff] [blame] | 492 | #endif /* CONFIG_BPF_SYSCALL */ |
Alexei Starovoitov | 09756af | 2014-09-26 00:17:00 -0700 | [diff] [blame] | 493 | |
John Fastabend | 6bdc9c4 | 2017-08-16 15:02:32 -0700 | [diff] [blame] | 494 | #if defined(CONFIG_STREAM_PARSER) && defined(CONFIG_BPF_SYSCALL) |
| 495 | struct sock *__sock_map_lookup_elem(struct bpf_map *map, u32 key); |
John Fastabend | 5a67da2 | 2017-09-08 14:00:49 -0700 | [diff] [blame] | 496 | int sock_map_prog(struct bpf_map *map, struct bpf_prog *prog, u32 type); |
John Fastabend | 6bdc9c4 | 2017-08-16 15:02:32 -0700 | [diff] [blame] | 497 | #else |
| 498 | static inline struct sock *__sock_map_lookup_elem(struct bpf_map *map, u32 key) |
| 499 | { |
| 500 | return NULL; |
| 501 | } |
John Fastabend | 464bc0f | 2017-08-28 07:10:04 -0700 | [diff] [blame] | 502 | |
John Fastabend | 5a67da2 | 2017-09-08 14:00:49 -0700 | [diff] [blame] | 503 | static inline int sock_map_prog(struct bpf_map *map, |
| 504 | struct bpf_prog *prog, |
| 505 | u32 type) |
John Fastabend | 464bc0f | 2017-08-28 07:10:04 -0700 | [diff] [blame] | 506 | { |
| 507 | return -EOPNOTSUPP; |
| 508 | } |
John Fastabend | 6bdc9c4 | 2017-08-16 15:02:32 -0700 | [diff] [blame] | 509 | #endif |
| 510 | |
Alexei Starovoitov | d0003ec | 2014-11-13 17:36:49 -0800 | [diff] [blame] | 511 | /* verifier prototypes for helper functions called from eBPF programs */ |
Daniel Borkmann | a2c83ff | 2015-03-01 12:31:42 +0100 | [diff] [blame] | 512 | extern const struct bpf_func_proto bpf_map_lookup_elem_proto; |
| 513 | extern const struct bpf_func_proto bpf_map_update_elem_proto; |
| 514 | extern const struct bpf_func_proto bpf_map_delete_elem_proto; |
Alexei Starovoitov | d0003ec | 2014-11-13 17:36:49 -0800 | [diff] [blame] | 515 | |
Daniel Borkmann | 03e69b5 | 2015-03-14 02:27:16 +0100 | [diff] [blame] | 516 | extern const struct bpf_func_proto bpf_get_prandom_u32_proto; |
Daniel Borkmann | c04167c | 2015-03-14 02:27:17 +0100 | [diff] [blame] | 517 | extern const struct bpf_func_proto bpf_get_smp_processor_id_proto; |
Daniel Borkmann | 2d0e30c | 2016-10-21 12:46:33 +0200 | [diff] [blame] | 518 | extern const struct bpf_func_proto bpf_get_numa_node_id_proto; |
Alexei Starovoitov | 04fd61ab | 2015-05-19 16:59:03 -0700 | [diff] [blame] | 519 | extern const struct bpf_func_proto bpf_tail_call_proto; |
Daniel Borkmann | 17ca8cb | 2015-05-29 23:23:06 +0200 | [diff] [blame] | 520 | extern const struct bpf_func_proto bpf_ktime_get_ns_proto; |
Alexei Starovoitov | ffeedaf | 2015-06-12 19:39:12 -0700 | [diff] [blame] | 521 | extern const struct bpf_func_proto bpf_get_current_pid_tgid_proto; |
| 522 | extern const struct bpf_func_proto bpf_get_current_uid_gid_proto; |
| 523 | extern const struct bpf_func_proto bpf_get_current_comm_proto; |
Alexei Starovoitov | 4e10df9 | 2015-07-20 20:34:18 -0700 | [diff] [blame] | 524 | extern const struct bpf_func_proto bpf_skb_vlan_push_proto; |
| 525 | extern const struct bpf_func_proto bpf_skb_vlan_pop_proto; |
Alexei Starovoitov | d5a3b1f | 2016-02-17 19:58:58 -0800 | [diff] [blame] | 526 | extern const struct bpf_func_proto bpf_get_stackid_proto; |
John Fastabend | 174a79f | 2017-08-15 22:32:47 -0700 | [diff] [blame] | 527 | extern const struct bpf_func_proto bpf_sock_map_update_proto; |
Daniel Borkmann | 03e69b5 | 2015-03-14 02:27:16 +0100 | [diff] [blame] | 528 | |
Daniel Borkmann | 3ad0040 | 2015-10-08 01:20:39 +0200 | [diff] [blame] | 529 | /* Shared helpers among cBPF and eBPF. */ |
| 530 | void bpf_user_rnd_init_once(void); |
| 531 | u64 bpf_user_rnd_u32(u64 r1, u64 r2, u64 r3, u64 r4, u64 r5); |
| 532 | |
Alexei Starovoitov | 99c55f7 | 2014-09-26 00:16:57 -0700 | [diff] [blame] | 533 | #endif /* _LINUX_BPF_H */ |