blob: df948b0f1ac97c0e1d436690c6bb49f4c9fd056d [file] [log] [blame]
Linus Torvalds1da177e2005-04-16 15:20:36 -07001/*
2 * INET An implementation of the TCP/IP protocol suite for the LINUX
3 * operating system. INET is implemented using the BSD Socket
4 * interface as the means of communication with the user level.
5 *
6 * ROUTE - implementation of the IP router.
7 *
Jesper Juhl02c30a82005-05-05 16:16:16 -07008 * Authors: Ross Biro
Linus Torvalds1da177e2005-04-16 15:20:36 -07009 * Fred N. van Kempen, <waltje@uWalt.NL.Mugnet.ORG>
10 * Alan Cox, <gw4pts@gw4pts.ampr.org>
11 * Linus Torvalds, <Linus.Torvalds@helsinki.fi>
12 * Alexey Kuznetsov, <kuznet@ms2.inr.ac.ru>
13 *
14 * Fixes:
15 * Alan Cox : Verify area fixes.
16 * Alan Cox : cli() protects routing changes
17 * Rui Oliveira : ICMP routing table updates
18 * (rco@di.uminho.pt) Routing table insertion and update
19 * Linus Torvalds : Rewrote bits to be sensible
20 * Alan Cox : Added BSD route gw semantics
YOSHIFUJI Hideakie905a9e2007-02-09 23:24:47 +090021 * Alan Cox : Super /proc >4K
Linus Torvalds1da177e2005-04-16 15:20:36 -070022 * Alan Cox : MTU in route table
23 * Alan Cox : MSS actually. Also added the window
24 * clamper.
25 * Sam Lantinga : Fixed route matching in rt_del()
26 * Alan Cox : Routing cache support.
27 * Alan Cox : Removed compatibility cruft.
28 * Alan Cox : RTF_REJECT support.
29 * Alan Cox : TCP irtt support.
30 * Jonathan Naylor : Added Metric support.
31 * Miquel van Smoorenburg : BSD API fixes.
32 * Miquel van Smoorenburg : Metrics.
33 * Alan Cox : Use __u32 properly
34 * Alan Cox : Aligned routing errors more closely with BSD
35 * our system is still very different.
36 * Alan Cox : Faster /proc handling
37 * Alexey Kuznetsov : Massive rework to support tree based routing,
38 * routing caches and better behaviour.
YOSHIFUJI Hideakie905a9e2007-02-09 23:24:47 +090039 *
Linus Torvalds1da177e2005-04-16 15:20:36 -070040 * Olaf Erb : irtt wasn't being copied right.
41 * Bjorn Ekwall : Kerneld route support.
42 * Alan Cox : Multicast fixed (I hope)
43 * Pavel Krauz : Limited broadcast fixed
44 * Mike McLagan : Routing by source
45 * Alexey Kuznetsov : End of old history. Split to fib.c and
46 * route.c and rewritten from scratch.
47 * Andi Kleen : Load-limit warning messages.
48 * Vitaly E. Lavrov : Transparent proxy revived after year coma.
49 * Vitaly E. Lavrov : Race condition in ip_route_input_slow.
50 * Tobias Ringstrom : Uninitialized res.type in ip_route_output_slow.
51 * Vladimir V. Ivanov : IP rule info (flowid) is really useful.
52 * Marc Boucher : routing by fwmark
53 * Robert Olsson : Added rt_cache statistics
54 * Arnaldo C. Melo : Convert proc stuff to seq_file
Eric Dumazetbb1d23b2005-07-05 15:00:32 -070055 * Eric Dumazet : hashed spinlocks and rt_check_expire() fixes.
Ilia Sotnikovcef26852006-03-25 01:38:55 -080056 * Ilia Sotnikov : Ignore TOS on PMTUD and Redirect
57 * Ilia Sotnikov : Removed TOS from hash calculations
Linus Torvalds1da177e2005-04-16 15:20:36 -070058 *
59 * This program is free software; you can redistribute it and/or
60 * modify it under the terms of the GNU General Public License
61 * as published by the Free Software Foundation; either version
62 * 2 of the License, or (at your option) any later version.
63 */
64
Linus Torvalds1da177e2005-04-16 15:20:36 -070065#include <linux/module.h>
66#include <asm/uaccess.h>
67#include <asm/system.h>
68#include <linux/bitops.h>
69#include <linux/types.h>
70#include <linux/kernel.h>
Linus Torvalds1da177e2005-04-16 15:20:36 -070071#include <linux/mm.h>
Eric Dumazet424c4b72005-07-05 14:58:19 -070072#include <linux/bootmem.h>
Linus Torvalds1da177e2005-04-16 15:20:36 -070073#include <linux/string.h>
74#include <linux/socket.h>
75#include <linux/sockios.h>
76#include <linux/errno.h>
77#include <linux/in.h>
78#include <linux/inet.h>
79#include <linux/netdevice.h>
80#include <linux/proc_fs.h>
81#include <linux/init.h>
Eric Dumazet39c90ec2007-09-15 10:55:54 -070082#include <linux/workqueue.h>
Linus Torvalds1da177e2005-04-16 15:20:36 -070083#include <linux/skbuff.h>
Linus Torvalds1da177e2005-04-16 15:20:36 -070084#include <linux/inetdevice.h>
85#include <linux/igmp.h>
86#include <linux/pkt_sched.h>
87#include <linux/mroute.h>
88#include <linux/netfilter_ipv4.h>
89#include <linux/random.h>
90#include <linux/jhash.h>
91#include <linux/rcupdate.h>
92#include <linux/times.h>
Tejun Heo5a0e3ad2010-03-24 17:04:11 +090093#include <linux/slab.h>
Herbert Xu352e5122007-11-13 21:34:06 -080094#include <net/dst.h>
Eric W. Biederman457c4cb2007-09-12 12:01:34 +020095#include <net/net_namespace.h>
Linus Torvalds1da177e2005-04-16 15:20:36 -070096#include <net/protocol.h>
97#include <net/ip.h>
98#include <net/route.h>
99#include <net/inetpeer.h>
100#include <net/sock.h>
101#include <net/ip_fib.h>
102#include <net/arp.h>
103#include <net/tcp.h>
104#include <net/icmp.h>
105#include <net/xfrm.h>
Tom Tucker8d717402006-07-30 20:43:36 -0700106#include <net/netevent.h>
Thomas Graf63f34442007-03-22 11:55:17 -0700107#include <net/rtnetlink.h>
Linus Torvalds1da177e2005-04-16 15:20:36 -0700108#ifdef CONFIG_SYSCTL
109#include <linux/sysctl.h>
110#endif
111
112#define RT_FL_TOS(oldflp) \
113 ((u32)(oldflp->fl4_tos & (IPTOS_RT_MASK | RTO_ONLINK)))
114
115#define IP_MAX_MTU 0xFFF0
116
117#define RT_GC_TIMEOUT (300*HZ)
118
Linus Torvalds1da177e2005-04-16 15:20:36 -0700119static int ip_rt_max_size;
Stephen Hemminger817bc4d2008-03-22 17:43:59 -0700120static int ip_rt_gc_timeout __read_mostly = RT_GC_TIMEOUT;
121static int ip_rt_gc_interval __read_mostly = 60 * HZ;
122static int ip_rt_gc_min_interval __read_mostly = HZ / 2;
123static int ip_rt_redirect_number __read_mostly = 9;
124static int ip_rt_redirect_load __read_mostly = HZ / 50;
125static int ip_rt_redirect_silence __read_mostly = ((HZ / 50) << (9 + 1));
126static int ip_rt_error_cost __read_mostly = HZ;
127static int ip_rt_error_burst __read_mostly = 5 * HZ;
128static int ip_rt_gc_elasticity __read_mostly = 8;
129static int ip_rt_mtu_expires __read_mostly = 10 * 60 * HZ;
130static int ip_rt_min_pmtu __read_mostly = 512 + 20 + 20;
131static int ip_rt_min_advmss __read_mostly = 256;
Neil Horman1080d702008-10-27 12:28:25 -0700132static int rt_chain_length_max __read_mostly = 20;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700133
Eric Dumazet125bb8f2009-06-11 20:10:07 +0000134static struct delayed_work expires_work;
135static unsigned long expires_ljiffies;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700136
137/*
138 * Interface to generic destination cache.
139 */
140
141static struct dst_entry *ipv4_dst_check(struct dst_entry *dst, u32 cookie);
142static void ipv4_dst_destroy(struct dst_entry *dst);
143static void ipv4_dst_ifdown(struct dst_entry *dst,
144 struct net_device *dev, int how);
145static struct dst_entry *ipv4_negative_advice(struct dst_entry *dst);
146static void ipv4_link_failure(struct sk_buff *skb);
147static void ip_rt_update_pmtu(struct dst_entry *dst, u32 mtu);
Daniel Lezcano569d3642008-01-18 03:56:57 -0800148static int rt_garbage_collect(struct dst_ops *ops);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700149
150
151static struct dst_ops ipv4_dst_ops = {
152 .family = AF_INET,
Harvey Harrison09640e632009-02-01 00:45:17 -0800153 .protocol = cpu_to_be16(ETH_P_IP),
Linus Torvalds1da177e2005-04-16 15:20:36 -0700154 .gc = rt_garbage_collect,
155 .check = ipv4_dst_check,
156 .destroy = ipv4_dst_destroy,
157 .ifdown = ipv4_dst_ifdown,
158 .negative_advice = ipv4_negative_advice,
159 .link_failure = ipv4_link_failure,
160 .update_pmtu = ip_rt_update_pmtu,
Herbert Xu1ac06e02008-05-20 14:32:14 -0700161 .local_out = __ip_local_out,
Linus Torvalds1da177e2005-04-16 15:20:36 -0700162};
163
164#define ECN_OR_COST(class) TC_PRIO_##class
165
Philippe De Muyter4839c522007-07-09 15:32:57 -0700166const __u8 ip_tos2prio[16] = {
Linus Torvalds1da177e2005-04-16 15:20:36 -0700167 TC_PRIO_BESTEFFORT,
168 ECN_OR_COST(FILLER),
169 TC_PRIO_BESTEFFORT,
170 ECN_OR_COST(BESTEFFORT),
171 TC_PRIO_BULK,
172 ECN_OR_COST(BULK),
173 TC_PRIO_BULK,
174 ECN_OR_COST(BULK),
175 TC_PRIO_INTERACTIVE,
176 ECN_OR_COST(INTERACTIVE),
177 TC_PRIO_INTERACTIVE,
178 ECN_OR_COST(INTERACTIVE),
179 TC_PRIO_INTERACTIVE_BULK,
180 ECN_OR_COST(INTERACTIVE_BULK),
181 TC_PRIO_INTERACTIVE_BULK,
182 ECN_OR_COST(INTERACTIVE_BULK)
183};
184
185
186/*
187 * Route cache.
188 */
189
190/* The locking scheme is rather straight forward:
191 *
192 * 1) Read-Copy Update protects the buckets of the central route hash.
193 * 2) Only writers remove entries, and they hold the lock
194 * as they look at rtable reference counts.
195 * 3) Only readers acquire references to rtable entries,
196 * they do so with atomic increments and with the
197 * lock held.
198 */
199
200struct rt_hash_bucket {
Eric Dumazet1c317202010-10-25 21:02:07 +0000201 struct rtable __rcu *chain;
Eric Dumazet22c047c2005-07-05 14:55:24 -0700202};
Neil Horman1080d702008-10-27 12:28:25 -0700203
Ingo Molnar8a25d5d2006-07-03 00:24:54 -0700204#if defined(CONFIG_SMP) || defined(CONFIG_DEBUG_SPINLOCK) || \
205 defined(CONFIG_PROVE_LOCKING)
Eric Dumazet22c047c2005-07-05 14:55:24 -0700206/*
207 * Instead of using one spinlock for each rt_hash_bucket, we use a table of spinlocks
208 * The size of this table is a power of two and depends on the number of CPUS.
Ingo Molnar62051202006-07-03 00:24:59 -0700209 * (on lockdep we have a quite big spinlock_t, so keep the size down there)
Eric Dumazet22c047c2005-07-05 14:55:24 -0700210 */
Ingo Molnar62051202006-07-03 00:24:59 -0700211#ifdef CONFIG_LOCKDEP
212# define RT_HASH_LOCK_SZ 256
Eric Dumazet22c047c2005-07-05 14:55:24 -0700213#else
Ingo Molnar62051202006-07-03 00:24:59 -0700214# if NR_CPUS >= 32
215# define RT_HASH_LOCK_SZ 4096
216# elif NR_CPUS >= 16
217# define RT_HASH_LOCK_SZ 2048
218# elif NR_CPUS >= 8
219# define RT_HASH_LOCK_SZ 1024
220# elif NR_CPUS >= 4
221# define RT_HASH_LOCK_SZ 512
222# else
223# define RT_HASH_LOCK_SZ 256
224# endif
Eric Dumazet22c047c2005-07-05 14:55:24 -0700225#endif
226
227static spinlock_t *rt_hash_locks;
228# define rt_hash_lock_addr(slot) &rt_hash_locks[(slot) & (RT_HASH_LOCK_SZ - 1)]
Pavel Emelyanov1ff1cc22007-12-05 21:15:05 -0800229
230static __init void rt_hash_lock_init(void)
231{
232 int i;
233
234 rt_hash_locks = kmalloc(sizeof(spinlock_t) * RT_HASH_LOCK_SZ,
235 GFP_KERNEL);
236 if (!rt_hash_locks)
237 panic("IP: failed to allocate rt_hash_locks\n");
238
239 for (i = 0; i < RT_HASH_LOCK_SZ; i++)
240 spin_lock_init(&rt_hash_locks[i]);
241}
Eric Dumazet22c047c2005-07-05 14:55:24 -0700242#else
243# define rt_hash_lock_addr(slot) NULL
Pavel Emelyanov1ff1cc22007-12-05 21:15:05 -0800244
245static inline void rt_hash_lock_init(void)
246{
247}
Eric Dumazet22c047c2005-07-05 14:55:24 -0700248#endif
Linus Torvalds1da177e2005-04-16 15:20:36 -0700249
Stephen Hemminger817bc4d2008-03-22 17:43:59 -0700250static struct rt_hash_bucket *rt_hash_table __read_mostly;
251static unsigned rt_hash_mask __read_mostly;
252static unsigned int rt_hash_log __read_mostly;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700253
Eric Dumazet2f970d82006-01-17 02:54:36 -0800254static DEFINE_PER_CPU(struct rt_cache_stat, rt_cache_stat);
Eric Dumazet27f39c73e2010-05-19 22:07:23 +0000255#define RT_CACHE_STAT_INC(field) __this_cpu_inc(rt_cache_stat.field)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700256
Denis V. Lunevb00180d2008-07-05 19:04:09 -0700257static inline unsigned int rt_hash(__be32 daddr, __be32 saddr, int idx,
Eric Dumazet0eae88f2010-04-20 19:06:52 -0700258 int genid)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700259{
Eric Dumazet0eae88f2010-04-20 19:06:52 -0700260 return jhash_3words((__force u32)daddr, (__force u32)saddr,
Denis V. Lunevb00180d2008-07-05 19:04:09 -0700261 idx, genid)
Eric Dumazet29e75252008-01-31 17:05:09 -0800262 & rt_hash_mask;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700263}
264
Denis V. Luneve84f84f2008-07-05 19:04:32 -0700265static inline int rt_genid(struct net *net)
266{
267 return atomic_read(&net->ipv4.rt_genid);
268}
269
Linus Torvalds1da177e2005-04-16 15:20:36 -0700270#ifdef CONFIG_PROC_FS
271struct rt_cache_iter_state {
Denis V. Luneva75e9362008-02-28 20:50:55 -0800272 struct seq_net_private p;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700273 int bucket;
Eric Dumazet29e75252008-01-31 17:05:09 -0800274 int genid;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700275};
276
YOSHIFUJI Hideaki12188542008-03-26 02:36:06 +0900277static struct rtable *rt_cache_get_first(struct seq_file *seq)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700278{
YOSHIFUJI Hideaki12188542008-03-26 02:36:06 +0900279 struct rt_cache_iter_state *st = seq->private;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700280 struct rtable *r = NULL;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700281
282 for (st->bucket = rt_hash_mask; st->bucket >= 0; --st->bucket) {
Eric Dumazet1c317202010-10-25 21:02:07 +0000283 if (!rcu_dereference_raw(rt_hash_table[st->bucket].chain))
Eric Dumazeta6272662008-08-28 01:11:25 -0700284 continue;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700285 rcu_read_lock_bh();
Paul E. McKenneya898def2010-02-22 17:04:49 -0800286 r = rcu_dereference_bh(rt_hash_table[st->bucket].chain);
Eric Dumazet29e75252008-01-31 17:05:09 -0800287 while (r) {
Changli Gaod8d1f302010-06-10 23:31:35 -0700288 if (dev_net(r->dst.dev) == seq_file_net(seq) &&
Denis V. Luneva75e9362008-02-28 20:50:55 -0800289 r->rt_genid == st->genid)
Eric Dumazet29e75252008-01-31 17:05:09 -0800290 return r;
Changli Gaod8d1f302010-06-10 23:31:35 -0700291 r = rcu_dereference_bh(r->dst.rt_next);
Eric Dumazet29e75252008-01-31 17:05:09 -0800292 }
Linus Torvalds1da177e2005-04-16 15:20:36 -0700293 rcu_read_unlock_bh();
294 }
Eric Dumazet29e75252008-01-31 17:05:09 -0800295 return r;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700296}
297
YOSHIFUJI Hideaki12188542008-03-26 02:36:06 +0900298static struct rtable *__rt_cache_get_next(struct seq_file *seq,
Denis V. Lunev642d6312008-02-28 20:50:33 -0800299 struct rtable *r)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700300{
YOSHIFUJI Hideaki12188542008-03-26 02:36:06 +0900301 struct rt_cache_iter_state *st = seq->private;
Eric Dumazeta6272662008-08-28 01:11:25 -0700302
Eric Dumazet1c317202010-10-25 21:02:07 +0000303 r = rcu_dereference_bh(r->dst.rt_next);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700304 while (!r) {
305 rcu_read_unlock_bh();
Eric Dumazeta6272662008-08-28 01:11:25 -0700306 do {
307 if (--st->bucket < 0)
308 return NULL;
Eric Dumazet1c317202010-10-25 21:02:07 +0000309 } while (!rcu_dereference_raw(rt_hash_table[st->bucket].chain));
Linus Torvalds1da177e2005-04-16 15:20:36 -0700310 rcu_read_lock_bh();
Eric Dumazet1c317202010-10-25 21:02:07 +0000311 r = rcu_dereference_bh(rt_hash_table[st->bucket].chain);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700312 }
Eric Dumazet1c317202010-10-25 21:02:07 +0000313 return r;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700314}
315
YOSHIFUJI Hideaki12188542008-03-26 02:36:06 +0900316static struct rtable *rt_cache_get_next(struct seq_file *seq,
Denis V. Lunev642d6312008-02-28 20:50:33 -0800317 struct rtable *r)
318{
YOSHIFUJI Hideaki12188542008-03-26 02:36:06 +0900319 struct rt_cache_iter_state *st = seq->private;
320 while ((r = __rt_cache_get_next(seq, r)) != NULL) {
Changli Gaod8d1f302010-06-10 23:31:35 -0700321 if (dev_net(r->dst.dev) != seq_file_net(seq))
Denis V. Luneva75e9362008-02-28 20:50:55 -0800322 continue;
Denis V. Lunev642d6312008-02-28 20:50:33 -0800323 if (r->rt_genid == st->genid)
324 break;
325 }
326 return r;
327}
328
YOSHIFUJI Hideaki12188542008-03-26 02:36:06 +0900329static struct rtable *rt_cache_get_idx(struct seq_file *seq, loff_t pos)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700330{
YOSHIFUJI Hideaki12188542008-03-26 02:36:06 +0900331 struct rtable *r = rt_cache_get_first(seq);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700332
333 if (r)
YOSHIFUJI Hideaki12188542008-03-26 02:36:06 +0900334 while (pos && (r = rt_cache_get_next(seq, r)))
Linus Torvalds1da177e2005-04-16 15:20:36 -0700335 --pos;
336 return pos ? NULL : r;
337}
338
339static void *rt_cache_seq_start(struct seq_file *seq, loff_t *pos)
340{
Eric Dumazet29e75252008-01-31 17:05:09 -0800341 struct rt_cache_iter_state *st = seq->private;
Eric Dumazet29e75252008-01-31 17:05:09 -0800342 if (*pos)
YOSHIFUJI Hideaki12188542008-03-26 02:36:06 +0900343 return rt_cache_get_idx(seq, *pos - 1);
Denis V. Luneve84f84f2008-07-05 19:04:32 -0700344 st->genid = rt_genid(seq_file_net(seq));
Eric Dumazet29e75252008-01-31 17:05:09 -0800345 return SEQ_START_TOKEN;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700346}
347
348static void *rt_cache_seq_next(struct seq_file *seq, void *v, loff_t *pos)
349{
Eric Dumazet29e75252008-01-31 17:05:09 -0800350 struct rtable *r;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700351
352 if (v == SEQ_START_TOKEN)
YOSHIFUJI Hideaki12188542008-03-26 02:36:06 +0900353 r = rt_cache_get_first(seq);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700354 else
YOSHIFUJI Hideaki12188542008-03-26 02:36:06 +0900355 r = rt_cache_get_next(seq, v);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700356 ++*pos;
357 return r;
358}
359
360static void rt_cache_seq_stop(struct seq_file *seq, void *v)
361{
362 if (v && v != SEQ_START_TOKEN)
363 rcu_read_unlock_bh();
364}
365
366static int rt_cache_seq_show(struct seq_file *seq, void *v)
367{
368 if (v == SEQ_START_TOKEN)
369 seq_printf(seq, "%-127s\n",
370 "Iface\tDestination\tGateway \tFlags\t\tRefCnt\tUse\t"
371 "Metric\tSource\t\tMTU\tWindow\tIRTT\tTOS\tHHRef\t"
372 "HHUptod\tSpecDst");
373 else {
374 struct rtable *r = v;
Pavel Emelyanov5e659e42008-04-24 01:02:16 -0700375 int len;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700376
Eric Dumazet0eae88f2010-04-20 19:06:52 -0700377 seq_printf(seq, "%s\t%08X\t%08X\t%8X\t%d\t%u\t%d\t"
378 "%08X\t%d\t%u\t%u\t%02X\t%d\t%1d\t%08X%n",
Changli Gaod8d1f302010-06-10 23:31:35 -0700379 r->dst.dev ? r->dst.dev->name : "*",
Eric Dumazet0eae88f2010-04-20 19:06:52 -0700380 (__force u32)r->rt_dst,
381 (__force u32)r->rt_gateway,
Changli Gaod8d1f302010-06-10 23:31:35 -0700382 r->rt_flags, atomic_read(&r->dst.__refcnt),
383 r->dst.__use, 0, (__force u32)r->rt_src,
384 (dst_metric(&r->dst, RTAX_ADVMSS) ?
385 (int)dst_metric(&r->dst, RTAX_ADVMSS) + 40 : 0),
386 dst_metric(&r->dst, RTAX_WINDOW),
387 (int)((dst_metric(&r->dst, RTAX_RTT) >> 3) +
388 dst_metric(&r->dst, RTAX_RTTVAR)),
Linus Torvalds1da177e2005-04-16 15:20:36 -0700389 r->fl.fl4_tos,
Changli Gaod8d1f302010-06-10 23:31:35 -0700390 r->dst.hh ? atomic_read(&r->dst.hh->hh_refcnt) : -1,
391 r->dst.hh ? (r->dst.hh->hh_output ==
Linus Torvalds1da177e2005-04-16 15:20:36 -0700392 dev_queue_xmit) : 0,
Pavel Emelyanov5e659e42008-04-24 01:02:16 -0700393 r->rt_spec_dst, &len);
394
395 seq_printf(seq, "%*s\n", 127 - len, "");
YOSHIFUJI Hideakie905a9e2007-02-09 23:24:47 +0900396 }
397 return 0;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700398}
399
Stephen Hemmingerf6908082007-03-12 14:34:29 -0700400static const struct seq_operations rt_cache_seq_ops = {
Linus Torvalds1da177e2005-04-16 15:20:36 -0700401 .start = rt_cache_seq_start,
402 .next = rt_cache_seq_next,
403 .stop = rt_cache_seq_stop,
404 .show = rt_cache_seq_show,
405};
406
407static int rt_cache_seq_open(struct inode *inode, struct file *file)
408{
Denis V. Luneva75e9362008-02-28 20:50:55 -0800409 return seq_open_net(inode, file, &rt_cache_seq_ops,
Pavel Emelyanovcf7732e2007-10-10 02:29:29 -0700410 sizeof(struct rt_cache_iter_state));
Linus Torvalds1da177e2005-04-16 15:20:36 -0700411}
412
Arjan van de Ven9a321442007-02-12 00:55:35 -0800413static const struct file_operations rt_cache_seq_fops = {
Linus Torvalds1da177e2005-04-16 15:20:36 -0700414 .owner = THIS_MODULE,
415 .open = rt_cache_seq_open,
416 .read = seq_read,
417 .llseek = seq_lseek,
Denis V. Luneva75e9362008-02-28 20:50:55 -0800418 .release = seq_release_net,
Linus Torvalds1da177e2005-04-16 15:20:36 -0700419};
420
421
422static void *rt_cpu_seq_start(struct seq_file *seq, loff_t *pos)
423{
424 int cpu;
425
426 if (*pos == 0)
427 return SEQ_START_TOKEN;
428
Rusty Russell0f23174a2008-12-29 12:23:42 +0000429 for (cpu = *pos-1; cpu < nr_cpu_ids; ++cpu) {
Linus Torvalds1da177e2005-04-16 15:20:36 -0700430 if (!cpu_possible(cpu))
431 continue;
432 *pos = cpu+1;
Eric Dumazet2f970d82006-01-17 02:54:36 -0800433 return &per_cpu(rt_cache_stat, cpu);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700434 }
435 return NULL;
436}
437
438static void *rt_cpu_seq_next(struct seq_file *seq, void *v, loff_t *pos)
439{
440 int cpu;
441
Rusty Russell0f23174a2008-12-29 12:23:42 +0000442 for (cpu = *pos; cpu < nr_cpu_ids; ++cpu) {
Linus Torvalds1da177e2005-04-16 15:20:36 -0700443 if (!cpu_possible(cpu))
444 continue;
445 *pos = cpu+1;
Eric Dumazet2f970d82006-01-17 02:54:36 -0800446 return &per_cpu(rt_cache_stat, cpu);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700447 }
448 return NULL;
YOSHIFUJI Hideakie905a9e2007-02-09 23:24:47 +0900449
Linus Torvalds1da177e2005-04-16 15:20:36 -0700450}
451
452static void rt_cpu_seq_stop(struct seq_file *seq, void *v)
453{
454
455}
456
457static int rt_cpu_seq_show(struct seq_file *seq, void *v)
458{
459 struct rt_cache_stat *st = v;
460
461 if (v == SEQ_START_TOKEN) {
Olaf Rempel5bec0032005-04-28 12:16:08 -0700462 seq_printf(seq, "entries in_hit in_slow_tot in_slow_mc in_no_route in_brd in_martian_dst in_martian_src out_hit out_slow_tot out_slow_mc gc_total gc_ignored gc_goal_miss gc_dst_overflow in_hlist_search out_hlist_search\n");
Linus Torvalds1da177e2005-04-16 15:20:36 -0700463 return 0;
464 }
YOSHIFUJI Hideakie905a9e2007-02-09 23:24:47 +0900465
Linus Torvalds1da177e2005-04-16 15:20:36 -0700466 seq_printf(seq,"%08x %08x %08x %08x %08x %08x %08x %08x "
467 " %08x %08x %08x %08x %08x %08x %08x %08x %08x \n",
Eric Dumazetfc66f952010-10-08 06:37:34 +0000468 dst_entries_get_slow(&ipv4_dst_ops),
Linus Torvalds1da177e2005-04-16 15:20:36 -0700469 st->in_hit,
470 st->in_slow_tot,
471 st->in_slow_mc,
472 st->in_no_route,
473 st->in_brd,
474 st->in_martian_dst,
475 st->in_martian_src,
476
477 st->out_hit,
478 st->out_slow_tot,
YOSHIFUJI Hideakie905a9e2007-02-09 23:24:47 +0900479 st->out_slow_mc,
Linus Torvalds1da177e2005-04-16 15:20:36 -0700480
481 st->gc_total,
482 st->gc_ignored,
483 st->gc_goal_miss,
484 st->gc_dst_overflow,
485 st->in_hlist_search,
486 st->out_hlist_search
487 );
488 return 0;
489}
490
Stephen Hemmingerf6908082007-03-12 14:34:29 -0700491static const struct seq_operations rt_cpu_seq_ops = {
Linus Torvalds1da177e2005-04-16 15:20:36 -0700492 .start = rt_cpu_seq_start,
493 .next = rt_cpu_seq_next,
494 .stop = rt_cpu_seq_stop,
495 .show = rt_cpu_seq_show,
496};
497
498
499static int rt_cpu_seq_open(struct inode *inode, struct file *file)
500{
501 return seq_open(file, &rt_cpu_seq_ops);
502}
503
Arjan van de Ven9a321442007-02-12 00:55:35 -0800504static const struct file_operations rt_cpu_seq_fops = {
Linus Torvalds1da177e2005-04-16 15:20:36 -0700505 .owner = THIS_MODULE,
506 .open = rt_cpu_seq_open,
507 .read = seq_read,
508 .llseek = seq_lseek,
509 .release = seq_release,
510};
511
Pavel Emelyanov78c686e2007-12-05 21:13:48 -0800512#ifdef CONFIG_NET_CLS_ROUTE
Alexey Dobriyana661c412009-11-25 15:40:35 -0800513static int rt_acct_proc_show(struct seq_file *m, void *v)
Pavel Emelyanov78c686e2007-12-05 21:13:48 -0800514{
Alexey Dobriyana661c412009-11-25 15:40:35 -0800515 struct ip_rt_acct *dst, *src;
516 unsigned int i, j;
Pavel Emelyanov78c686e2007-12-05 21:13:48 -0800517
Alexey Dobriyana661c412009-11-25 15:40:35 -0800518 dst = kcalloc(256, sizeof(struct ip_rt_acct), GFP_KERNEL);
519 if (!dst)
520 return -ENOMEM;
Pavel Emelyanov78c686e2007-12-05 21:13:48 -0800521
Alexey Dobriyana661c412009-11-25 15:40:35 -0800522 for_each_possible_cpu(i) {
523 src = (struct ip_rt_acct *)per_cpu_ptr(ip_rt_acct, i);
524 for (j = 0; j < 256; j++) {
525 dst[j].o_bytes += src[j].o_bytes;
526 dst[j].o_packets += src[j].o_packets;
527 dst[j].i_bytes += src[j].i_bytes;
528 dst[j].i_packets += src[j].i_packets;
Pavel Emelyanov78c686e2007-12-05 21:13:48 -0800529 }
530 }
Alexey Dobriyana661c412009-11-25 15:40:35 -0800531
532 seq_write(m, dst, 256 * sizeof(struct ip_rt_acct));
533 kfree(dst);
534 return 0;
Pavel Emelyanov78c686e2007-12-05 21:13:48 -0800535}
Alexey Dobriyana661c412009-11-25 15:40:35 -0800536
537static int rt_acct_proc_open(struct inode *inode, struct file *file)
538{
539 return single_open(file, rt_acct_proc_show, NULL);
540}
541
542static const struct file_operations rt_acct_proc_fops = {
543 .owner = THIS_MODULE,
544 .open = rt_acct_proc_open,
545 .read = seq_read,
546 .llseek = seq_lseek,
547 .release = single_release,
548};
Pavel Emelyanov78c686e2007-12-05 21:13:48 -0800549#endif
Pavel Emelyanov107f1632007-12-05 21:14:28 -0800550
Denis V. Lunev73b38712008-02-28 20:51:18 -0800551static int __net_init ip_rt_do_proc_init(struct net *net)
Pavel Emelyanov107f1632007-12-05 21:14:28 -0800552{
553 struct proc_dir_entry *pde;
554
555 pde = proc_net_fops_create(net, "rt_cache", S_IRUGO,
556 &rt_cache_seq_fops);
557 if (!pde)
558 goto err1;
559
Wang Chen77020722008-02-28 14:14:25 -0800560 pde = proc_create("rt_cache", S_IRUGO,
561 net->proc_net_stat, &rt_cpu_seq_fops);
Pavel Emelyanov107f1632007-12-05 21:14:28 -0800562 if (!pde)
563 goto err2;
564
Pavel Emelyanov107f1632007-12-05 21:14:28 -0800565#ifdef CONFIG_NET_CLS_ROUTE
Alexey Dobriyana661c412009-11-25 15:40:35 -0800566 pde = proc_create("rt_acct", 0, net->proc_net, &rt_acct_proc_fops);
Pavel Emelyanov107f1632007-12-05 21:14:28 -0800567 if (!pde)
568 goto err3;
569#endif
570 return 0;
571
572#ifdef CONFIG_NET_CLS_ROUTE
573err3:
574 remove_proc_entry("rt_cache", net->proc_net_stat);
575#endif
576err2:
577 remove_proc_entry("rt_cache", net->proc_net);
578err1:
579 return -ENOMEM;
580}
Denis V. Lunev73b38712008-02-28 20:51:18 -0800581
582static void __net_exit ip_rt_do_proc_exit(struct net *net)
583{
584 remove_proc_entry("rt_cache", net->proc_net_stat);
585 remove_proc_entry("rt_cache", net->proc_net);
Alexey Dobriyan0a931ac2010-01-17 03:32:50 +0000586#ifdef CONFIG_NET_CLS_ROUTE
Denis V. Lunev73b38712008-02-28 20:51:18 -0800587 remove_proc_entry("rt_acct", net->proc_net);
Alexey Dobriyan0a931ac2010-01-17 03:32:50 +0000588#endif
Denis V. Lunev73b38712008-02-28 20:51:18 -0800589}
590
591static struct pernet_operations ip_rt_proc_ops __net_initdata = {
592 .init = ip_rt_do_proc_init,
593 .exit = ip_rt_do_proc_exit,
594};
595
596static int __init ip_rt_proc_init(void)
597{
598 return register_pernet_subsys(&ip_rt_proc_ops);
599}
600
Pavel Emelyanov107f1632007-12-05 21:14:28 -0800601#else
Denis V. Lunev73b38712008-02-28 20:51:18 -0800602static inline int ip_rt_proc_init(void)
Pavel Emelyanov107f1632007-12-05 21:14:28 -0800603{
604 return 0;
605}
Linus Torvalds1da177e2005-04-16 15:20:36 -0700606#endif /* CONFIG_PROC_FS */
YOSHIFUJI Hideakie905a9e2007-02-09 23:24:47 +0900607
Stephen Hemminger5969f712008-04-10 01:52:09 -0700608static inline void rt_free(struct rtable *rt)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700609{
Changli Gaod8d1f302010-06-10 23:31:35 -0700610 call_rcu_bh(&rt->dst.rcu_head, dst_rcu_free);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700611}
612
Stephen Hemminger5969f712008-04-10 01:52:09 -0700613static inline void rt_drop(struct rtable *rt)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700614{
Linus Torvalds1da177e2005-04-16 15:20:36 -0700615 ip_rt_put(rt);
Changli Gaod8d1f302010-06-10 23:31:35 -0700616 call_rcu_bh(&rt->dst.rcu_head, dst_rcu_free);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700617}
618
Stephen Hemminger5969f712008-04-10 01:52:09 -0700619static inline int rt_fast_clean(struct rtable *rth)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700620{
621 /* Kill broadcast/multicast entries very aggresively, if they
622 collide in hash table with more useful entries */
623 return (rth->rt_flags & (RTCF_BROADCAST | RTCF_MULTICAST)) &&
Changli Gaod8d1f302010-06-10 23:31:35 -0700624 rth->fl.iif && rth->dst.rt_next;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700625}
626
Stephen Hemminger5969f712008-04-10 01:52:09 -0700627static inline int rt_valuable(struct rtable *rth)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700628{
629 return (rth->rt_flags & (RTCF_REDIRECTED | RTCF_NOTIFY)) ||
Changli Gaod8d1f302010-06-10 23:31:35 -0700630 rth->dst.expires;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700631}
632
633static int rt_may_expire(struct rtable *rth, unsigned long tmo1, unsigned long tmo2)
634{
635 unsigned long age;
636 int ret = 0;
637
Changli Gaod8d1f302010-06-10 23:31:35 -0700638 if (atomic_read(&rth->dst.__refcnt))
Linus Torvalds1da177e2005-04-16 15:20:36 -0700639 goto out;
640
641 ret = 1;
Changli Gaod8d1f302010-06-10 23:31:35 -0700642 if (rth->dst.expires &&
643 time_after_eq(jiffies, rth->dst.expires))
Linus Torvalds1da177e2005-04-16 15:20:36 -0700644 goto out;
645
Changli Gaod8d1f302010-06-10 23:31:35 -0700646 age = jiffies - rth->dst.lastuse;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700647 ret = 0;
648 if ((age <= tmo1 && !rt_fast_clean(rth)) ||
649 (age <= tmo2 && rt_valuable(rth)))
650 goto out;
651 ret = 1;
652out: return ret;
653}
654
655/* Bits of score are:
656 * 31: very valuable
657 * 30: not quite useless
658 * 29..0: usage counter
659 */
660static inline u32 rt_score(struct rtable *rt)
661{
Changli Gaod8d1f302010-06-10 23:31:35 -0700662 u32 score = jiffies - rt->dst.lastuse;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700663
664 score = ~score & ~(3<<30);
665
666 if (rt_valuable(rt))
667 score |= (1<<31);
668
669 if (!rt->fl.iif ||
670 !(rt->rt_flags & (RTCF_BROADCAST|RTCF_MULTICAST|RTCF_LOCAL)))
671 score |= (1<<30);
672
673 return score;
674}
675
Neil Horman1080d702008-10-27 12:28:25 -0700676static inline bool rt_caching(const struct net *net)
677{
678 return net->ipv4.current_rt_cache_rebuild_count <=
679 net->ipv4.sysctl_rt_cache_rebuild_count;
680}
681
682static inline bool compare_hash_inputs(const struct flowi *fl1,
683 const struct flowi *fl2)
684{
Eric Dumazet0eae88f2010-04-20 19:06:52 -0700685 return ((((__force u32)fl1->nl_u.ip4_u.daddr ^ (__force u32)fl2->nl_u.ip4_u.daddr) |
686 ((__force u32)fl1->nl_u.ip4_u.saddr ^ (__force u32)fl2->nl_u.ip4_u.saddr) |
Neil Horman1080d702008-10-27 12:28:25 -0700687 (fl1->iif ^ fl2->iif)) == 0);
688}
689
Linus Torvalds1da177e2005-04-16 15:20:36 -0700690static inline int compare_keys(struct flowi *fl1, struct flowi *fl2)
691{
Eric Dumazet0eae88f2010-04-20 19:06:52 -0700692 return (((__force u32)fl1->nl_u.ip4_u.daddr ^ (__force u32)fl2->nl_u.ip4_u.daddr) |
693 ((__force u32)fl1->nl_u.ip4_u.saddr ^ (__force u32)fl2->nl_u.ip4_u.saddr) |
Thomas Graf47dcf0c2006-11-09 15:20:38 -0800694 (fl1->mark ^ fl2->mark) |
Eric Dumazet0eae88f2010-04-20 19:06:52 -0700695 (*(u16 *)&fl1->nl_u.ip4_u.tos ^ *(u16 *)&fl2->nl_u.ip4_u.tos) |
David S. Miller8238b212006-10-12 00:49:15 -0700696 (fl1->oif ^ fl2->oif) |
697 (fl1->iif ^ fl2->iif)) == 0;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700698}
699
Denis V. Lunevb5921912008-01-22 23:50:25 -0800700static inline int compare_netns(struct rtable *rt1, struct rtable *rt2)
701{
Changli Gaod8d1f302010-06-10 23:31:35 -0700702 return net_eq(dev_net(rt1->dst.dev), dev_net(rt2->dst.dev));
Denis V. Lunevb5921912008-01-22 23:50:25 -0800703}
704
Denis V. Luneve84f84f2008-07-05 19:04:32 -0700705static inline int rt_is_expired(struct rtable *rth)
706{
Changli Gaod8d1f302010-06-10 23:31:35 -0700707 return rth->rt_genid != rt_genid(dev_net(rth->dst.dev));
Denis V. Luneve84f84f2008-07-05 19:04:32 -0700708}
709
Eric Dumazetbeb659b2007-11-19 22:43:37 -0800710/*
711 * Perform a full scan of hash table and free all entries.
712 * Can be called by a softirq or a process.
713 * In the later case, we want to be reschedule if necessary
714 */
715static void rt_do_flush(int process_context)
716{
717 unsigned int i;
718 struct rtable *rth, *next;
Denis V. Lunev32cb5b42008-07-05 19:06:12 -0700719 struct rtable * tail;
Eric Dumazetbeb659b2007-11-19 22:43:37 -0800720
721 for (i = 0; i <= rt_hash_mask; i++) {
722 if (process_context && need_resched())
723 cond_resched();
Eric Dumazet1c317202010-10-25 21:02:07 +0000724 rth = rcu_dereference_raw(rt_hash_table[i].chain);
Eric Dumazetbeb659b2007-11-19 22:43:37 -0800725 if (!rth)
726 continue;
727
728 spin_lock_bh(rt_hash_lock_addr(i));
Denis V. Lunev32cb5b42008-07-05 19:06:12 -0700729#ifdef CONFIG_NET_NS
730 {
Eric Dumazet1c317202010-10-25 21:02:07 +0000731 struct rtable __rcu **prev;
732 struct rtable *p;
Denis V. Lunev32cb5b42008-07-05 19:06:12 -0700733
Eric Dumazet1c317202010-10-25 21:02:07 +0000734 rth = rcu_dereference_protected(rt_hash_table[i].chain,
735 lockdep_is_held(rt_hash_lock_addr(i)));
Denis V. Lunev32cb5b42008-07-05 19:06:12 -0700736
737 /* defer releasing the head of the list after spin_unlock */
Eric Dumazet1c317202010-10-25 21:02:07 +0000738 for (tail = rth; tail;
739 tail = rcu_dereference_protected(tail->dst.rt_next,
740 lockdep_is_held(rt_hash_lock_addr(i))))
Denis V. Lunev32cb5b42008-07-05 19:06:12 -0700741 if (!rt_is_expired(tail))
742 break;
743 if (rth != tail)
744 rt_hash_table[i].chain = tail;
745
746 /* call rt_free on entries after the tail requiring flush */
747 prev = &rt_hash_table[i].chain;
Eric Dumazet1c317202010-10-25 21:02:07 +0000748 for (p = rcu_dereference_protected(*prev,
749 lockdep_is_held(rt_hash_lock_addr(i)));
750 p != NULL;
751 p = next) {
752 next = rcu_dereference_protected(p->dst.rt_next,
753 lockdep_is_held(rt_hash_lock_addr(i)));
Denis V. Lunev32cb5b42008-07-05 19:06:12 -0700754 if (!rt_is_expired(p)) {
Changli Gaod8d1f302010-06-10 23:31:35 -0700755 prev = &p->dst.rt_next;
Denis V. Lunev32cb5b42008-07-05 19:06:12 -0700756 } else {
757 *prev = next;
758 rt_free(p);
759 }
760 }
761 }
762#else
Eric Dumazet1c317202010-10-25 21:02:07 +0000763 rth = rcu_dereference_protected(rt_hash_table[i].chain,
764 lockdep_is_held(rt_hash_lock_addr(i)));
765 rcu_assign_pointer(rt_hash_table[i].chain, NULL);
Denis V. Lunev32cb5b42008-07-05 19:06:12 -0700766 tail = NULL;
767#endif
Eric Dumazetbeb659b2007-11-19 22:43:37 -0800768 spin_unlock_bh(rt_hash_lock_addr(i));
769
Denis V. Lunev32cb5b42008-07-05 19:06:12 -0700770 for (; rth != tail; rth = next) {
Eric Dumazet1c317202010-10-25 21:02:07 +0000771 next = rcu_dereference_protected(rth->dst.rt_next, 1);
Eric Dumazetbeb659b2007-11-19 22:43:37 -0800772 rt_free(rth);
773 }
774 }
775}
776
Neil Horman1080d702008-10-27 12:28:25 -0700777/*
778 * While freeing expired entries, we compute average chain length
779 * and standard deviation, using fixed-point arithmetic.
780 * This to have an estimation of rt_chain_length_max
781 * rt_chain_length_max = max(elasticity, AVG + 4*SD)
782 * We use 3 bits for frational part, and 29 (or 61) for magnitude.
783 */
784
785#define FRACT_BITS 3
786#define ONE (1UL << FRACT_BITS)
787
Eric Dumazet98376382010-03-08 03:20:00 +0000788/*
789 * Given a hash chain and an item in this hash chain,
790 * find if a previous entry has the same hash_inputs
791 * (but differs on tos, mark or oif)
792 * Returns 0 if an alias is found.
793 * Returns ONE if rth has no alias before itself.
794 */
795static int has_noalias(const struct rtable *head, const struct rtable *rth)
796{
797 const struct rtable *aux = head;
798
799 while (aux != rth) {
800 if (compare_hash_inputs(&aux->fl, &rth->fl))
801 return 0;
Eric Dumazet1c317202010-10-25 21:02:07 +0000802 aux = rcu_dereference_protected(aux->dst.rt_next, 1);
Eric Dumazet98376382010-03-08 03:20:00 +0000803 }
804 return ONE;
805}
806
Eric Dumazetbeb659b2007-11-19 22:43:37 -0800807static void rt_check_expire(void)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700808{
Eric Dumazetbb1d23b2005-07-05 15:00:32 -0700809 static unsigned int rover;
810 unsigned int i = rover, goal;
Eric Dumazet1c317202010-10-25 21:02:07 +0000811 struct rtable *rth;
812 struct rtable __rcu **rthp;
Eric Dumazetcf8da762009-05-19 18:54:22 +0000813 unsigned long samples = 0;
Neil Horman1080d702008-10-27 12:28:25 -0700814 unsigned long sum = 0, sum2 = 0;
Eric Dumazet125bb8f2009-06-11 20:10:07 +0000815 unsigned long delta;
Eric Dumazetbb1d23b2005-07-05 15:00:32 -0700816 u64 mult;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700817
Eric Dumazet125bb8f2009-06-11 20:10:07 +0000818 delta = jiffies - expires_ljiffies;
819 expires_ljiffies = jiffies;
820 mult = ((u64)delta) << rt_hash_log;
Eric Dumazetbb1d23b2005-07-05 15:00:32 -0700821 if (ip_rt_gc_timeout > 1)
822 do_div(mult, ip_rt_gc_timeout);
823 goal = (unsigned int)mult;
Eric Dumazet39c90ec2007-09-15 10:55:54 -0700824 if (goal > rt_hash_mask)
825 goal = rt_hash_mask + 1;
Eric Dumazetbb1d23b2005-07-05 15:00:32 -0700826 for (; goal > 0; goal--) {
Linus Torvalds1da177e2005-04-16 15:20:36 -0700827 unsigned long tmo = ip_rt_gc_timeout;
Eric Dumazetcf8da762009-05-19 18:54:22 +0000828 unsigned long length;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700829
830 i = (i + 1) & rt_hash_mask;
831 rthp = &rt_hash_table[i].chain;
832
Eric Dumazetd90bf5a2007-11-14 16:14:05 -0800833 if (need_resched())
834 cond_resched();
835
Neil Horman1080d702008-10-27 12:28:25 -0700836 samples++;
837
Eric Dumazet1c317202010-10-25 21:02:07 +0000838 if (rcu_dereference_raw(*rthp) == NULL)
Eric Dumazetbb1d23b2005-07-05 15:00:32 -0700839 continue;
Eric Dumazetcf8da762009-05-19 18:54:22 +0000840 length = 0;
Eric Dumazet39c90ec2007-09-15 10:55:54 -0700841 spin_lock_bh(rt_hash_lock_addr(i));
Eric Dumazet1c317202010-10-25 21:02:07 +0000842 while ((rth = rcu_dereference_protected(*rthp,
843 lockdep_is_held(rt_hash_lock_addr(i)))) != NULL) {
Changli Gaod8d1f302010-06-10 23:31:35 -0700844 prefetch(rth->dst.rt_next);
Denis V. Luneve84f84f2008-07-05 19:04:32 -0700845 if (rt_is_expired(rth)) {
Changli Gaod8d1f302010-06-10 23:31:35 -0700846 *rthp = rth->dst.rt_next;
Eric Dumazet29e75252008-01-31 17:05:09 -0800847 rt_free(rth);
848 continue;
849 }
Changli Gaod8d1f302010-06-10 23:31:35 -0700850 if (rth->dst.expires) {
Linus Torvalds1da177e2005-04-16 15:20:36 -0700851 /* Entry is expired even if it is in use */
Changli Gaod8d1f302010-06-10 23:31:35 -0700852 if (time_before_eq(jiffies, rth->dst.expires)) {
Eric Dumazet1ddbcb02009-05-19 20:14:28 +0000853nofree:
Linus Torvalds1da177e2005-04-16 15:20:36 -0700854 tmo >>= 1;
Changli Gaod8d1f302010-06-10 23:31:35 -0700855 rthp = &rth->dst.rt_next;
Neil Horman1080d702008-10-27 12:28:25 -0700856 /*
Eric Dumazet1ddbcb02009-05-19 20:14:28 +0000857 * We only count entries on
Neil Horman1080d702008-10-27 12:28:25 -0700858 * a chain with equal hash inputs once
859 * so that entries for different QOS
860 * levels, and other non-hash input
861 * attributes don't unfairly skew
862 * the length computation
863 */
Eric Dumazet98376382010-03-08 03:20:00 +0000864 length += has_noalias(rt_hash_table[i].chain, rth);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700865 continue;
866 }
Eric Dumazet1ddbcb02009-05-19 20:14:28 +0000867 } else if (!rt_may_expire(rth, tmo, ip_rt_gc_timeout))
868 goto nofree;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700869
870 /* Cleanup aged off entries. */
Changli Gaod8d1f302010-06-10 23:31:35 -0700871 *rthp = rth->dst.rt_next;
YOSHIFUJI Hideakie905a9e2007-02-09 23:24:47 +0900872 rt_free(rth);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700873 }
Eric Dumazet39c90ec2007-09-15 10:55:54 -0700874 spin_unlock_bh(rt_hash_lock_addr(i));
Neil Horman1080d702008-10-27 12:28:25 -0700875 sum += length;
876 sum2 += length*length;
877 }
878 if (samples) {
879 unsigned long avg = sum / samples;
880 unsigned long sd = int_sqrt(sum2 / samples - avg*avg);
881 rt_chain_length_max = max_t(unsigned long,
882 ip_rt_gc_elasticity,
883 (avg + 4*sd) >> FRACT_BITS);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700884 }
885 rover = i;
Eric Dumazetbeb659b2007-11-19 22:43:37 -0800886}
887
888/*
889 * rt_worker_func() is run in process context.
Eric Dumazet29e75252008-01-31 17:05:09 -0800890 * we call rt_check_expire() to scan part of the hash table
Eric Dumazetbeb659b2007-11-19 22:43:37 -0800891 */
892static void rt_worker_func(struct work_struct *work)
893{
Eric Dumazet29e75252008-01-31 17:05:09 -0800894 rt_check_expire();
Eric Dumazet39c90ec2007-09-15 10:55:54 -0700895 schedule_delayed_work(&expires_work, ip_rt_gc_interval);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700896}
897
Eric Dumazet29e75252008-01-31 17:05:09 -0800898/*
899 * Pertubation of rt_genid by a small quantity [1..256]
900 * Using 8 bits of shuffling ensure we can call rt_cache_invalidate()
901 * many times (2^24) without giving recent rt_genid.
902 * Jenkins hash is strong enough that litle changes of rt_genid are OK.
Linus Torvalds1da177e2005-04-16 15:20:36 -0700903 */
Denis V. Lunev86c657f2008-07-05 19:03:31 -0700904static void rt_cache_invalidate(struct net *net)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700905{
Eric Dumazet29e75252008-01-31 17:05:09 -0800906 unsigned char shuffle;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700907
Eric Dumazet29e75252008-01-31 17:05:09 -0800908 get_random_bytes(&shuffle, sizeof(shuffle));
Denis V. Luneve84f84f2008-07-05 19:04:32 -0700909 atomic_add(shuffle + 1U, &net->ipv4.rt_genid);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700910}
911
Eric Dumazetbeb659b2007-11-19 22:43:37 -0800912/*
Eric Dumazet29e75252008-01-31 17:05:09 -0800913 * delay < 0 : invalidate cache (fast : entries will be deleted later)
914 * delay >= 0 : invalidate & flush cache (can be long)
915 */
Denis V. Lunev76e6ebf2008-07-05 19:00:44 -0700916void rt_cache_flush(struct net *net, int delay)
Eric Dumazet29e75252008-01-31 17:05:09 -0800917{
Denis V. Lunev86c657f2008-07-05 19:03:31 -0700918 rt_cache_invalidate(net);
Eric Dumazet29e75252008-01-31 17:05:09 -0800919 if (delay >= 0)
920 rt_do_flush(!in_softirq());
921}
922
Eric W. Biedermana5ee1552009-11-29 15:45:58 +0000923/* Flush previous cache invalidated entries from the cache */
924void rt_cache_flush_batch(void)
925{
926 rt_do_flush(!in_softirq());
927}
928
Neil Horman1080d702008-10-27 12:28:25 -0700929static void rt_emergency_hash_rebuild(struct net *net)
930{
Neil Horman3ee94372010-05-08 01:57:52 -0700931 if (net_ratelimit())
Neil Horman1080d702008-10-27 12:28:25 -0700932 printk(KERN_WARNING "Route hash chain too long!\n");
Neil Horman3ee94372010-05-08 01:57:52 -0700933 rt_cache_invalidate(net);
Neil Horman1080d702008-10-27 12:28:25 -0700934}
935
Linus Torvalds1da177e2005-04-16 15:20:36 -0700936/*
937 Short description of GC goals.
938
939 We want to build algorithm, which will keep routing cache
940 at some equilibrium point, when number of aged off entries
941 is kept approximately equal to newly generated ones.
942
943 Current expiration strength is variable "expire".
944 We try to adjust it dynamically, so that if networking
945 is idle expires is large enough to keep enough of warm entries,
946 and when load increases it reduces to limit cache size.
947 */
948
Daniel Lezcano569d3642008-01-18 03:56:57 -0800949static int rt_garbage_collect(struct dst_ops *ops)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700950{
951 static unsigned long expire = RT_GC_TIMEOUT;
952 static unsigned long last_gc;
953 static int rover;
954 static int equilibrium;
Eric Dumazet1c317202010-10-25 21:02:07 +0000955 struct rtable *rth;
956 struct rtable __rcu **rthp;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700957 unsigned long now = jiffies;
958 int goal;
Eric Dumazetfc66f952010-10-08 06:37:34 +0000959 int entries = dst_entries_get_fast(&ipv4_dst_ops);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700960
961 /*
962 * Garbage collection is pretty expensive,
963 * do not make it too frequently.
964 */
965
966 RT_CACHE_STAT_INC(gc_total);
967
968 if (now - last_gc < ip_rt_gc_min_interval &&
Eric Dumazetfc66f952010-10-08 06:37:34 +0000969 entries < ip_rt_max_size) {
Linus Torvalds1da177e2005-04-16 15:20:36 -0700970 RT_CACHE_STAT_INC(gc_ignored);
971 goto out;
972 }
973
Eric Dumazetfc66f952010-10-08 06:37:34 +0000974 entries = dst_entries_get_slow(&ipv4_dst_ops);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700975 /* Calculate number of entries, which we want to expire now. */
Eric Dumazetfc66f952010-10-08 06:37:34 +0000976 goal = entries - (ip_rt_gc_elasticity << rt_hash_log);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700977 if (goal <= 0) {
978 if (equilibrium < ipv4_dst_ops.gc_thresh)
979 equilibrium = ipv4_dst_ops.gc_thresh;
Eric Dumazetfc66f952010-10-08 06:37:34 +0000980 goal = entries - equilibrium;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700981 if (goal > 0) {
Eric Dumazetb790ced2007-12-21 01:49:07 -0800982 equilibrium += min_t(unsigned int, goal >> 1, rt_hash_mask + 1);
Eric Dumazetfc66f952010-10-08 06:37:34 +0000983 goal = entries - equilibrium;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700984 }
985 } else {
986 /* We are in dangerous area. Try to reduce cache really
987 * aggressively.
988 */
Eric Dumazetb790ced2007-12-21 01:49:07 -0800989 goal = max_t(unsigned int, goal >> 1, rt_hash_mask + 1);
Eric Dumazetfc66f952010-10-08 06:37:34 +0000990 equilibrium = entries - goal;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700991 }
992
993 if (now - last_gc >= ip_rt_gc_min_interval)
994 last_gc = now;
995
996 if (goal <= 0) {
997 equilibrium += goal;
998 goto work_done;
999 }
1000
1001 do {
1002 int i, k;
1003
1004 for (i = rt_hash_mask, k = rover; i >= 0; i--) {
1005 unsigned long tmo = expire;
1006
1007 k = (k + 1) & rt_hash_mask;
1008 rthp = &rt_hash_table[k].chain;
Eric Dumazet22c047c2005-07-05 14:55:24 -07001009 spin_lock_bh(rt_hash_lock_addr(k));
Eric Dumazet1c317202010-10-25 21:02:07 +00001010 while ((rth = rcu_dereference_protected(*rthp,
1011 lockdep_is_held(rt_hash_lock_addr(k)))) != NULL) {
Denis V. Luneve84f84f2008-07-05 19:04:32 -07001012 if (!rt_is_expired(rth) &&
Eric Dumazet29e75252008-01-31 17:05:09 -08001013 !rt_may_expire(rth, tmo, expire)) {
Linus Torvalds1da177e2005-04-16 15:20:36 -07001014 tmo >>= 1;
Changli Gaod8d1f302010-06-10 23:31:35 -07001015 rthp = &rth->dst.rt_next;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001016 continue;
1017 }
Changli Gaod8d1f302010-06-10 23:31:35 -07001018 *rthp = rth->dst.rt_next;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001019 rt_free(rth);
1020 goal--;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001021 }
Eric Dumazet22c047c2005-07-05 14:55:24 -07001022 spin_unlock_bh(rt_hash_lock_addr(k));
Linus Torvalds1da177e2005-04-16 15:20:36 -07001023 if (goal <= 0)
1024 break;
1025 }
1026 rover = k;
1027
1028 if (goal <= 0)
1029 goto work_done;
1030
1031 /* Goal is not achieved. We stop process if:
1032
1033 - if expire reduced to zero. Otherwise, expire is halfed.
1034 - if table is not full.
1035 - if we are called from interrupt.
1036 - jiffies check is just fallback/debug loop breaker.
1037 We will not spin here for long time in any case.
1038 */
1039
1040 RT_CACHE_STAT_INC(gc_goal_miss);
1041
1042 if (expire == 0)
1043 break;
1044
1045 expire >>= 1;
1046#if RT_CACHE_DEBUG >= 2
1047 printk(KERN_DEBUG "expire>> %u %d %d %d\n", expire,
Eric Dumazetfc66f952010-10-08 06:37:34 +00001048 dst_entries_get_fast(&ipv4_dst_ops), goal, i);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001049#endif
1050
Eric Dumazetfc66f952010-10-08 06:37:34 +00001051 if (dst_entries_get_fast(&ipv4_dst_ops) < ip_rt_max_size)
Linus Torvalds1da177e2005-04-16 15:20:36 -07001052 goto out;
1053 } while (!in_softirq() && time_before_eq(jiffies, now));
1054
Eric Dumazetfc66f952010-10-08 06:37:34 +00001055 if (dst_entries_get_fast(&ipv4_dst_ops) < ip_rt_max_size)
1056 goto out;
1057 if (dst_entries_get_slow(&ipv4_dst_ops) < ip_rt_max_size)
Linus Torvalds1da177e2005-04-16 15:20:36 -07001058 goto out;
1059 if (net_ratelimit())
1060 printk(KERN_WARNING "dst cache overflow\n");
1061 RT_CACHE_STAT_INC(gc_dst_overflow);
1062 return 1;
1063
1064work_done:
1065 expire += ip_rt_gc_min_interval;
1066 if (expire > ip_rt_gc_timeout ||
Eric Dumazetfc66f952010-10-08 06:37:34 +00001067 dst_entries_get_fast(&ipv4_dst_ops) < ipv4_dst_ops.gc_thresh ||
1068 dst_entries_get_slow(&ipv4_dst_ops) < ipv4_dst_ops.gc_thresh)
Linus Torvalds1da177e2005-04-16 15:20:36 -07001069 expire = ip_rt_gc_timeout;
1070#if RT_CACHE_DEBUG >= 2
1071 printk(KERN_DEBUG "expire++ %u %d %d %d\n", expire,
Eric Dumazetfc66f952010-10-08 06:37:34 +00001072 dst_entries_get_fast(&ipv4_dst_ops), goal, rover);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001073#endif
1074out: return 0;
1075}
1076
Eric Dumazet98376382010-03-08 03:20:00 +00001077/*
1078 * Returns number of entries in a hash chain that have different hash_inputs
1079 */
1080static int slow_chain_length(const struct rtable *head)
1081{
1082 int length = 0;
1083 const struct rtable *rth = head;
1084
1085 while (rth) {
1086 length += has_noalias(head, rth);
Eric Dumazet1c317202010-10-25 21:02:07 +00001087 rth = rcu_dereference_protected(rth->dst.rt_next, 1);
Eric Dumazet98376382010-03-08 03:20:00 +00001088 }
1089 return length >> FRACT_BITS;
1090}
1091
Eric Dumazet511c3f92009-06-02 05:14:27 +00001092static int rt_intern_hash(unsigned hash, struct rtable *rt,
Pavel Emelyanov6a2bad72010-03-24 21:51:22 +00001093 struct rtable **rp, struct sk_buff *skb, int ifindex)
Linus Torvalds1da177e2005-04-16 15:20:36 -07001094{
Eric Dumazet1c317202010-10-25 21:02:07 +00001095 struct rtable *rth, *cand;
1096 struct rtable __rcu **rthp, **candp;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001097 unsigned long now;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001098 u32 min_score;
1099 int chain_length;
1100 int attempts = !in_softirq();
1101
1102restart:
1103 chain_length = 0;
1104 min_score = ~(u32)0;
1105 cand = NULL;
1106 candp = NULL;
1107 now = jiffies;
1108
Changli Gaod8d1f302010-06-10 23:31:35 -07001109 if (!rt_caching(dev_net(rt->dst.dev))) {
Neil Horman73e42892009-06-20 01:15:16 -07001110 /*
1111 * If we're not caching, just tell the caller we
1112 * were successful and don't touch the route. The
1113 * caller hold the sole reference to the cache entry, and
1114 * it will be released when the caller is done with it.
1115 * If we drop it here, the callers have no way to resolve routes
1116 * when we're not caching. Instead, just point *rp at rt, so
1117 * the caller gets a single use out of the route
Neil Hormanb6280b42009-06-22 10:18:53 +00001118 * Note that we do rt_free on this new route entry, so that
1119 * once its refcount hits zero, we are still able to reap it
1120 * (Thanks Alexey)
Eric Dumazet27b75c92010-10-15 05:44:11 +00001121 * Note: To avoid expensive rcu stuff for this uncached dst,
1122 * we set DST_NOCACHE so that dst_release() can free dst without
1123 * waiting a grace period.
Neil Horman73e42892009-06-20 01:15:16 -07001124 */
Neil Hormanb6280b42009-06-22 10:18:53 +00001125
Eric Dumazetc7d44262010-10-03 22:17:54 -07001126 rt->dst.flags |= DST_NOCACHE;
Neil Hormanb6280b42009-06-22 10:18:53 +00001127 if (rt->rt_type == RTN_UNICAST || rt->fl.iif == 0) {
Changli Gaod8d1f302010-06-10 23:31:35 -07001128 int err = arp_bind_neighbour(&rt->dst);
Neil Hormanb6280b42009-06-22 10:18:53 +00001129 if (err) {
1130 if (net_ratelimit())
1131 printk(KERN_WARNING
1132 "Neighbour table failure & not caching routes.\n");
Eric Dumazet27b75c92010-10-15 05:44:11 +00001133 ip_rt_put(rt);
Neil Hormanb6280b42009-06-22 10:18:53 +00001134 return err;
1135 }
1136 }
1137
Neil Hormanb6280b42009-06-22 10:18:53 +00001138 goto skip_hashing;
Neil Horman1080d702008-10-27 12:28:25 -07001139 }
1140
Linus Torvalds1da177e2005-04-16 15:20:36 -07001141 rthp = &rt_hash_table[hash].chain;
1142
Eric Dumazet22c047c2005-07-05 14:55:24 -07001143 spin_lock_bh(rt_hash_lock_addr(hash));
Eric Dumazet1c317202010-10-25 21:02:07 +00001144 while ((rth = rcu_dereference_protected(*rthp,
1145 lockdep_is_held(rt_hash_lock_addr(hash)))) != NULL) {
Denis V. Luneve84f84f2008-07-05 19:04:32 -07001146 if (rt_is_expired(rth)) {
Changli Gaod8d1f302010-06-10 23:31:35 -07001147 *rthp = rth->dst.rt_next;
Eric Dumazet29e75252008-01-31 17:05:09 -08001148 rt_free(rth);
1149 continue;
1150 }
Denis V. Lunevb5921912008-01-22 23:50:25 -08001151 if (compare_keys(&rth->fl, &rt->fl) && compare_netns(rth, rt)) {
Linus Torvalds1da177e2005-04-16 15:20:36 -07001152 /* Put it first */
Changli Gaod8d1f302010-06-10 23:31:35 -07001153 *rthp = rth->dst.rt_next;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001154 /*
1155 * Since lookup is lockfree, the deletion
1156 * must be visible to another weakly ordered CPU before
1157 * the insertion at the start of the hash chain.
1158 */
Changli Gaod8d1f302010-06-10 23:31:35 -07001159 rcu_assign_pointer(rth->dst.rt_next,
Linus Torvalds1da177e2005-04-16 15:20:36 -07001160 rt_hash_table[hash].chain);
1161 /*
1162 * Since lookup is lockfree, the update writes
1163 * must be ordered for consistency on SMP.
1164 */
1165 rcu_assign_pointer(rt_hash_table[hash].chain, rth);
1166
Changli Gaod8d1f302010-06-10 23:31:35 -07001167 dst_use(&rth->dst, now);
Eric Dumazet22c047c2005-07-05 14:55:24 -07001168 spin_unlock_bh(rt_hash_lock_addr(hash));
Linus Torvalds1da177e2005-04-16 15:20:36 -07001169
1170 rt_drop(rt);
Eric Dumazet511c3f92009-06-02 05:14:27 +00001171 if (rp)
1172 *rp = rth;
1173 else
Changli Gaod8d1f302010-06-10 23:31:35 -07001174 skb_dst_set(skb, &rth->dst);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001175 return 0;
1176 }
1177
Changli Gaod8d1f302010-06-10 23:31:35 -07001178 if (!atomic_read(&rth->dst.__refcnt)) {
Linus Torvalds1da177e2005-04-16 15:20:36 -07001179 u32 score = rt_score(rth);
1180
1181 if (score <= min_score) {
1182 cand = rth;
1183 candp = rthp;
1184 min_score = score;
1185 }
1186 }
1187
1188 chain_length++;
1189
Changli Gaod8d1f302010-06-10 23:31:35 -07001190 rthp = &rth->dst.rt_next;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001191 }
1192
1193 if (cand) {
1194 /* ip_rt_gc_elasticity used to be average length of chain
1195 * length, when exceeded gc becomes really aggressive.
1196 *
1197 * The second limit is less certain. At the moment it allows
1198 * only 2 entries per bucket. We will see.
1199 */
1200 if (chain_length > ip_rt_gc_elasticity) {
Changli Gaod8d1f302010-06-10 23:31:35 -07001201 *candp = cand->dst.rt_next;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001202 rt_free(cand);
1203 }
Neil Horman1080d702008-10-27 12:28:25 -07001204 } else {
Eric Dumazet98376382010-03-08 03:20:00 +00001205 if (chain_length > rt_chain_length_max &&
1206 slow_chain_length(rt_hash_table[hash].chain) > rt_chain_length_max) {
Changli Gaod8d1f302010-06-10 23:31:35 -07001207 struct net *net = dev_net(rt->dst.dev);
Neil Horman1080d702008-10-27 12:28:25 -07001208 int num = ++net->ipv4.current_rt_cache_rebuild_count;
Pavel Emelyanovb35ecb52010-03-24 07:43:17 +00001209 if (!rt_caching(net)) {
Neil Horman1080d702008-10-27 12:28:25 -07001210 printk(KERN_WARNING "%s: %d rebuilds is over limit, route caching disabled\n",
Changli Gaod8d1f302010-06-10 23:31:35 -07001211 rt->dst.dev->name, num);
Neil Horman1080d702008-10-27 12:28:25 -07001212 }
Pavel Emelyanovb35ecb52010-03-24 07:43:17 +00001213 rt_emergency_hash_rebuild(net);
Pavel Emelyanov6a2bad72010-03-24 21:51:22 +00001214 spin_unlock_bh(rt_hash_lock_addr(hash));
1215
1216 hash = rt_hash(rt->fl.fl4_dst, rt->fl.fl4_src,
1217 ifindex, rt_genid(net));
1218 goto restart;
Neil Horman1080d702008-10-27 12:28:25 -07001219 }
Linus Torvalds1da177e2005-04-16 15:20:36 -07001220 }
1221
1222 /* Try to bind route to arp only if it is output
1223 route or unicast forwarding path.
1224 */
1225 if (rt->rt_type == RTN_UNICAST || rt->fl.iif == 0) {
Changli Gaod8d1f302010-06-10 23:31:35 -07001226 int err = arp_bind_neighbour(&rt->dst);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001227 if (err) {
Eric Dumazet22c047c2005-07-05 14:55:24 -07001228 spin_unlock_bh(rt_hash_lock_addr(hash));
Linus Torvalds1da177e2005-04-16 15:20:36 -07001229
1230 if (err != -ENOBUFS) {
1231 rt_drop(rt);
1232 return err;
1233 }
1234
1235 /* Neighbour tables are full and nothing
1236 can be released. Try to shrink route cache,
1237 it is most likely it holds some neighbour records.
1238 */
1239 if (attempts-- > 0) {
1240 int saved_elasticity = ip_rt_gc_elasticity;
1241 int saved_int = ip_rt_gc_min_interval;
1242 ip_rt_gc_elasticity = 1;
1243 ip_rt_gc_min_interval = 0;
Daniel Lezcano569d3642008-01-18 03:56:57 -08001244 rt_garbage_collect(&ipv4_dst_ops);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001245 ip_rt_gc_min_interval = saved_int;
1246 ip_rt_gc_elasticity = saved_elasticity;
1247 goto restart;
1248 }
1249
1250 if (net_ratelimit())
Ulrich Weber7e1b33e2010-09-27 15:02:18 -07001251 printk(KERN_WARNING "ipv4: Neighbour table overflow.\n");
Linus Torvalds1da177e2005-04-16 15:20:36 -07001252 rt_drop(rt);
1253 return -ENOBUFS;
1254 }
1255 }
1256
Changli Gaod8d1f302010-06-10 23:31:35 -07001257 rt->dst.rt_next = rt_hash_table[hash].chain;
Neil Horman1080d702008-10-27 12:28:25 -07001258
Linus Torvalds1da177e2005-04-16 15:20:36 -07001259#if RT_CACHE_DEBUG >= 2
Changli Gaod8d1f302010-06-10 23:31:35 -07001260 if (rt->dst.rt_next) {
Linus Torvalds1da177e2005-04-16 15:20:36 -07001261 struct rtable *trt;
Neil Hormanb6280b42009-06-22 10:18:53 +00001262 printk(KERN_DEBUG "rt_cache @%02x: %pI4",
1263 hash, &rt->rt_dst);
Changli Gaod8d1f302010-06-10 23:31:35 -07001264 for (trt = rt->dst.rt_next; trt; trt = trt->dst.rt_next)
Harvey Harrison673d57e2008-10-31 00:53:57 -07001265 printk(" . %pI4", &trt->rt_dst);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001266 printk("\n");
1267 }
1268#endif
Eric Dumazet00269b52008-10-16 14:18:29 -07001269 /*
1270 * Since lookup is lockfree, we must make sure
1271 * previous writes to rt are comitted to memory
1272 * before making rt visible to other CPUS.
1273 */
Eric Dumazet1ddbcb02009-05-19 20:14:28 +00001274 rcu_assign_pointer(rt_hash_table[hash].chain, rt);
Neil Horman1080d702008-10-27 12:28:25 -07001275
Eric Dumazet22c047c2005-07-05 14:55:24 -07001276 spin_unlock_bh(rt_hash_lock_addr(hash));
Neil Horman73e42892009-06-20 01:15:16 -07001277
Neil Hormanb6280b42009-06-22 10:18:53 +00001278skip_hashing:
Eric Dumazet511c3f92009-06-02 05:14:27 +00001279 if (rp)
1280 *rp = rt;
1281 else
Changli Gaod8d1f302010-06-10 23:31:35 -07001282 skb_dst_set(skb, &rt->dst);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001283 return 0;
1284}
1285
1286void rt_bind_peer(struct rtable *rt, int create)
1287{
Linus Torvalds1da177e2005-04-16 15:20:36 -07001288 struct inet_peer *peer;
1289
1290 peer = inet_getpeer(rt->rt_dst, create);
1291
Eric Dumazet49e8ab02010-08-19 06:10:45 +00001292 if (peer && cmpxchg(&rt->peer, NULL, peer) != NULL)
Linus Torvalds1da177e2005-04-16 15:20:36 -07001293 inet_putpeer(peer);
1294}
1295
1296/*
1297 * Peer allocation may fail only in serious out-of-memory conditions. However
1298 * we still can generate some output.
1299 * Random ID selection looks a bit dangerous because we have no chances to
1300 * select ID being unique in a reasonable period of time.
1301 * But broken packet identifier may be better than no packet at all.
1302 */
1303static void ip_select_fb_ident(struct iphdr *iph)
1304{
1305 static DEFINE_SPINLOCK(ip_fb_id_lock);
1306 static u32 ip_fallback_id;
1307 u32 salt;
1308
1309 spin_lock_bh(&ip_fb_id_lock);
Al Viroe4485152006-09-26 22:15:01 -07001310 salt = secure_ip_id((__force __be32)ip_fallback_id ^ iph->daddr);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001311 iph->id = htons(salt & 0xFFFF);
1312 ip_fallback_id = salt;
1313 spin_unlock_bh(&ip_fb_id_lock);
1314}
1315
1316void __ip_select_ident(struct iphdr *iph, struct dst_entry *dst, int more)
1317{
1318 struct rtable *rt = (struct rtable *) dst;
1319
1320 if (rt) {
1321 if (rt->peer == NULL)
1322 rt_bind_peer(rt, 1);
1323
1324 /* If peer is attached to destination, it is never detached,
1325 so that we need not to grab a lock to dereference it.
1326 */
1327 if (rt->peer) {
1328 iph->id = htons(inet_getid(rt->peer, more));
1329 return;
1330 }
1331 } else
YOSHIFUJI Hideakie905a9e2007-02-09 23:24:47 +09001332 printk(KERN_DEBUG "rt_bind_peer(0) @%p\n",
Stephen Hemminger9c2b3322005-04-19 22:39:42 -07001333 __builtin_return_address(0));
Linus Torvalds1da177e2005-04-16 15:20:36 -07001334
1335 ip_select_fb_ident(iph);
1336}
Eric Dumazet4bc2f182010-07-09 21:22:10 +00001337EXPORT_SYMBOL(__ip_select_ident);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001338
1339static void rt_del(unsigned hash, struct rtable *rt)
1340{
Eric Dumazet1c317202010-10-25 21:02:07 +00001341 struct rtable __rcu **rthp;
1342 struct rtable *aux;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001343
Eric Dumazet29e75252008-01-31 17:05:09 -08001344 rthp = &rt_hash_table[hash].chain;
Eric Dumazet22c047c2005-07-05 14:55:24 -07001345 spin_lock_bh(rt_hash_lock_addr(hash));
Linus Torvalds1da177e2005-04-16 15:20:36 -07001346 ip_rt_put(rt);
Eric Dumazet1c317202010-10-25 21:02:07 +00001347 while ((aux = rcu_dereference_protected(*rthp,
1348 lockdep_is_held(rt_hash_lock_addr(hash)))) != NULL) {
Denis V. Luneve84f84f2008-07-05 19:04:32 -07001349 if (aux == rt || rt_is_expired(aux)) {
Changli Gaod8d1f302010-06-10 23:31:35 -07001350 *rthp = aux->dst.rt_next;
Eric Dumazet29e75252008-01-31 17:05:09 -08001351 rt_free(aux);
1352 continue;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001353 }
Changli Gaod8d1f302010-06-10 23:31:35 -07001354 rthp = &aux->dst.rt_next;
Eric Dumazet29e75252008-01-31 17:05:09 -08001355 }
Eric Dumazet22c047c2005-07-05 14:55:24 -07001356 spin_unlock_bh(rt_hash_lock_addr(hash));
Linus Torvalds1da177e2005-04-16 15:20:36 -07001357}
1358
Eric Dumazeted7865a42010-06-07 21:49:44 -07001359/* called in rcu_read_lock() section */
Al Virof7655222006-09-26 21:25:43 -07001360void ip_rt_redirect(__be32 old_gw, __be32 daddr, __be32 new_gw,
1361 __be32 saddr, struct net_device *dev)
Linus Torvalds1da177e2005-04-16 15:20:36 -07001362{
1363 int i, k;
Eric Dumazeted7865a42010-06-07 21:49:44 -07001364 struct in_device *in_dev = __in_dev_get_rcu(dev);
Eric Dumazet1c317202010-10-25 21:02:07 +00001365 struct rtable *rth;
1366 struct rtable __rcu **rthp;
Al Virof7655222006-09-26 21:25:43 -07001367 __be32 skeys[2] = { saddr, 0 };
Linus Torvalds1da177e2005-04-16 15:20:36 -07001368 int ikeys[2] = { dev->ifindex, 0 };
Tom Tucker8d717402006-07-30 20:43:36 -07001369 struct netevent_redirect netevent;
Denis V. Lunev317805b2008-02-28 20:50:06 -08001370 struct net *net;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001371
Linus Torvalds1da177e2005-04-16 15:20:36 -07001372 if (!in_dev)
1373 return;
1374
YOSHIFUJI Hideakic346dca2008-03-25 21:47:49 +09001375 net = dev_net(dev);
Joe Perches9d4fb272009-11-23 10:41:23 -08001376 if (new_gw == old_gw || !IN_DEV_RX_REDIRECTS(in_dev) ||
1377 ipv4_is_multicast(new_gw) || ipv4_is_lbcast(new_gw) ||
1378 ipv4_is_zeronet(new_gw))
Linus Torvalds1da177e2005-04-16 15:20:36 -07001379 goto reject_redirect;
1380
Neil Horman1080d702008-10-27 12:28:25 -07001381 if (!rt_caching(net))
1382 goto reject_redirect;
1383
Linus Torvalds1da177e2005-04-16 15:20:36 -07001384 if (!IN_DEV_SHARED_MEDIA(in_dev)) {
1385 if (!inet_addr_onlink(in_dev, new_gw, old_gw))
1386 goto reject_redirect;
1387 if (IN_DEV_SEC_REDIRECTS(in_dev) && ip_fib_check_default(new_gw, dev))
1388 goto reject_redirect;
1389 } else {
Denis V. Lunev317805b2008-02-28 20:50:06 -08001390 if (inet_addr_type(net, new_gw) != RTN_UNICAST)
Linus Torvalds1da177e2005-04-16 15:20:36 -07001391 goto reject_redirect;
1392 }
1393
1394 for (i = 0; i < 2; i++) {
1395 for (k = 0; k < 2; k++) {
Denis V. Lunevb00180d2008-07-05 19:04:09 -07001396 unsigned hash = rt_hash(daddr, skeys[i], ikeys[k],
Denis V. Luneve84f84f2008-07-05 19:04:32 -07001397 rt_genid(net));
Linus Torvalds1da177e2005-04-16 15:20:36 -07001398
Eric Dumazet1c317202010-10-25 21:02:07 +00001399 rthp = &rt_hash_table[hash].chain;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001400
Linus Torvalds1da177e2005-04-16 15:20:36 -07001401 while ((rth = rcu_dereference(*rthp)) != NULL) {
1402 struct rtable *rt;
1403
1404 if (rth->fl.fl4_dst != daddr ||
1405 rth->fl.fl4_src != skeys[i] ||
Linus Torvalds1da177e2005-04-16 15:20:36 -07001406 rth->fl.oif != ikeys[k] ||
Eric Dumazet29e75252008-01-31 17:05:09 -08001407 rth->fl.iif != 0 ||
Denis V. Luneve84f84f2008-07-05 19:04:32 -07001408 rt_is_expired(rth) ||
Changli Gaod8d1f302010-06-10 23:31:35 -07001409 !net_eq(dev_net(rth->dst.dev), net)) {
1410 rthp = &rth->dst.rt_next;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001411 continue;
1412 }
1413
1414 if (rth->rt_dst != daddr ||
1415 rth->rt_src != saddr ||
Changli Gaod8d1f302010-06-10 23:31:35 -07001416 rth->dst.error ||
Linus Torvalds1da177e2005-04-16 15:20:36 -07001417 rth->rt_gateway != old_gw ||
Changli Gaod8d1f302010-06-10 23:31:35 -07001418 rth->dst.dev != dev)
Linus Torvalds1da177e2005-04-16 15:20:36 -07001419 break;
1420
Changli Gaod8d1f302010-06-10 23:31:35 -07001421 dst_hold(&rth->dst);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001422
1423 rt = dst_alloc(&ipv4_dst_ops);
1424 if (rt == NULL) {
1425 ip_rt_put(rth);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001426 return;
1427 }
1428
1429 /* Copy all the information. */
1430 *rt = *rth;
Changli Gaod8d1f302010-06-10 23:31:35 -07001431 rt->dst.__use = 1;
1432 atomic_set(&rt->dst.__refcnt, 1);
1433 rt->dst.child = NULL;
1434 if (rt->dst.dev)
1435 dev_hold(rt->dst.dev);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001436 if (rt->idev)
1437 in_dev_hold(rt->idev);
Changli Gaod8d1f302010-06-10 23:31:35 -07001438 rt->dst.obsolete = -1;
1439 rt->dst.lastuse = jiffies;
1440 rt->dst.path = &rt->dst;
1441 rt->dst.neighbour = NULL;
1442 rt->dst.hh = NULL;
Alexey Dobriyandef8b4f2008-10-28 13:24:06 -07001443#ifdef CONFIG_XFRM
Changli Gaod8d1f302010-06-10 23:31:35 -07001444 rt->dst.xfrm = NULL;
Alexey Dobriyandef8b4f2008-10-28 13:24:06 -07001445#endif
Denis V. Luneve84f84f2008-07-05 19:04:32 -07001446 rt->rt_genid = rt_genid(net);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001447 rt->rt_flags |= RTCF_REDIRECTED;
1448
1449 /* Gateway is different ... */
1450 rt->rt_gateway = new_gw;
1451
1452 /* Redirect received -> path was valid */
Changli Gaod8d1f302010-06-10 23:31:35 -07001453 dst_confirm(&rth->dst);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001454
1455 if (rt->peer)
1456 atomic_inc(&rt->peer->refcnt);
1457
Changli Gaod8d1f302010-06-10 23:31:35 -07001458 if (arp_bind_neighbour(&rt->dst) ||
1459 !(rt->dst.neighbour->nud_state &
Linus Torvalds1da177e2005-04-16 15:20:36 -07001460 NUD_VALID)) {
Changli Gaod8d1f302010-06-10 23:31:35 -07001461 if (rt->dst.neighbour)
1462 neigh_event_send(rt->dst.neighbour, NULL);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001463 ip_rt_put(rth);
1464 rt_drop(rt);
1465 goto do_next;
1466 }
YOSHIFUJI Hideakie905a9e2007-02-09 23:24:47 +09001467
Changli Gaod8d1f302010-06-10 23:31:35 -07001468 netevent.old = &rth->dst;
1469 netevent.new = &rt->dst;
YOSHIFUJI Hideakie905a9e2007-02-09 23:24:47 +09001470 call_netevent_notifiers(NETEVENT_REDIRECT,
1471 &netevent);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001472
1473 rt_del(hash, rth);
Pavel Emelyanov6a2bad72010-03-24 21:51:22 +00001474 if (!rt_intern_hash(hash, rt, &rt, NULL, rt->fl.oif))
Linus Torvalds1da177e2005-04-16 15:20:36 -07001475 ip_rt_put(rt);
1476 goto do_next;
1477 }
Linus Torvalds1da177e2005-04-16 15:20:36 -07001478 do_next:
1479 ;
1480 }
1481 }
Linus Torvalds1da177e2005-04-16 15:20:36 -07001482 return;
1483
1484reject_redirect:
1485#ifdef CONFIG_IP_ROUTE_VERBOSE
1486 if (IN_DEV_LOG_MARTIANS(in_dev) && net_ratelimit())
Harvey Harrison673d57e2008-10-31 00:53:57 -07001487 printk(KERN_INFO "Redirect from %pI4 on %s about %pI4 ignored.\n"
1488 " Advised path = %pI4 -> %pI4\n",
1489 &old_gw, dev->name, &new_gw,
1490 &saddr, &daddr);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001491#endif
Eric Dumazeted7865a42010-06-07 21:49:44 -07001492 ;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001493}
1494
1495static struct dst_entry *ipv4_negative_advice(struct dst_entry *dst)
1496{
Eric Dumazetee6b9672008-03-05 18:30:47 -08001497 struct rtable *rt = (struct rtable *)dst;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001498 struct dst_entry *ret = dst;
1499
1500 if (rt) {
Timo Teräsd11a4dc2010-03-18 23:20:20 +00001501 if (dst->obsolete > 0) {
Linus Torvalds1da177e2005-04-16 15:20:36 -07001502 ip_rt_put(rt);
1503 ret = NULL;
1504 } else if ((rt->rt_flags & RTCF_REDIRECTED) ||
Changli Gaod8d1f302010-06-10 23:31:35 -07001505 (rt->dst.expires &&
1506 time_after_eq(jiffies, rt->dst.expires))) {
Al Viro8c7bc842006-09-26 21:26:19 -07001507 unsigned hash = rt_hash(rt->fl.fl4_dst, rt->fl.fl4_src,
Denis V. Lunevb00180d2008-07-05 19:04:09 -07001508 rt->fl.oif,
Denis V. Luneve84f84f2008-07-05 19:04:32 -07001509 rt_genid(dev_net(dst->dev)));
Linus Torvalds1da177e2005-04-16 15:20:36 -07001510#if RT_CACHE_DEBUG >= 1
Harvey Harrison673d57e2008-10-31 00:53:57 -07001511 printk(KERN_DEBUG "ipv4_negative_advice: redirect to %pI4/%02x dropped\n",
1512 &rt->rt_dst, rt->fl.fl4_tos);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001513#endif
1514 rt_del(hash, rt);
1515 ret = NULL;
1516 }
1517 }
1518 return ret;
1519}
1520
1521/*
1522 * Algorithm:
1523 * 1. The first ip_rt_redirect_number redirects are sent
1524 * with exponential backoff, then we stop sending them at all,
1525 * assuming that the host ignores our redirects.
1526 * 2. If we did not see packets requiring redirects
1527 * during ip_rt_redirect_silence, we assume that the host
1528 * forgot redirected route and start to send redirects again.
1529 *
1530 * This algorithm is much cheaper and more intelligent than dumb load limiting
1531 * in icmp.c.
1532 *
1533 * NOTE. Do not forget to inhibit load limiting for redirects (redundant)
1534 * and "frag. need" (breaks PMTU discovery) in icmp.c.
1535 */
1536
1537void ip_rt_send_redirect(struct sk_buff *skb)
1538{
Eric Dumazet511c3f92009-06-02 05:14:27 +00001539 struct rtable *rt = skb_rtable(skb);
Eric Dumazet30038fc2009-08-28 23:52:01 -07001540 struct in_device *in_dev;
1541 int log_martians;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001542
Eric Dumazet30038fc2009-08-28 23:52:01 -07001543 rcu_read_lock();
Changli Gaod8d1f302010-06-10 23:31:35 -07001544 in_dev = __in_dev_get_rcu(rt->dst.dev);
Eric Dumazet30038fc2009-08-28 23:52:01 -07001545 if (!in_dev || !IN_DEV_TX_REDIRECTS(in_dev)) {
1546 rcu_read_unlock();
Linus Torvalds1da177e2005-04-16 15:20:36 -07001547 return;
Eric Dumazet30038fc2009-08-28 23:52:01 -07001548 }
1549 log_martians = IN_DEV_LOG_MARTIANS(in_dev);
1550 rcu_read_unlock();
Linus Torvalds1da177e2005-04-16 15:20:36 -07001551
1552 /* No redirected packets during ip_rt_redirect_silence;
1553 * reset the algorithm.
1554 */
Changli Gaod8d1f302010-06-10 23:31:35 -07001555 if (time_after(jiffies, rt->dst.rate_last + ip_rt_redirect_silence))
1556 rt->dst.rate_tokens = 0;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001557
1558 /* Too many ignored redirects; do not send anything
Changli Gaod8d1f302010-06-10 23:31:35 -07001559 * set dst.rate_last to the last seen redirected packet.
Linus Torvalds1da177e2005-04-16 15:20:36 -07001560 */
Changli Gaod8d1f302010-06-10 23:31:35 -07001561 if (rt->dst.rate_tokens >= ip_rt_redirect_number) {
1562 rt->dst.rate_last = jiffies;
Eric Dumazet30038fc2009-08-28 23:52:01 -07001563 return;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001564 }
1565
1566 /* Check for load limit; set rate_last to the latest sent
1567 * redirect.
1568 */
Changli Gaod8d1f302010-06-10 23:31:35 -07001569 if (rt->dst.rate_tokens == 0 ||
Li Yewang14fb8a72006-12-18 00:26:35 -08001570 time_after(jiffies,
Changli Gaod8d1f302010-06-10 23:31:35 -07001571 (rt->dst.rate_last +
1572 (ip_rt_redirect_load << rt->dst.rate_tokens)))) {
Linus Torvalds1da177e2005-04-16 15:20:36 -07001573 icmp_send(skb, ICMP_REDIRECT, ICMP_REDIR_HOST, rt->rt_gateway);
Changli Gaod8d1f302010-06-10 23:31:35 -07001574 rt->dst.rate_last = jiffies;
1575 ++rt->dst.rate_tokens;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001576#ifdef CONFIG_IP_ROUTE_VERBOSE
Eric Dumazet30038fc2009-08-28 23:52:01 -07001577 if (log_martians &&
Changli Gaod8d1f302010-06-10 23:31:35 -07001578 rt->dst.rate_tokens == ip_rt_redirect_number &&
Linus Torvalds1da177e2005-04-16 15:20:36 -07001579 net_ratelimit())
Harvey Harrison673d57e2008-10-31 00:53:57 -07001580 printk(KERN_WARNING "host %pI4/if%d ignores redirects for %pI4 to %pI4.\n",
1581 &rt->rt_src, rt->rt_iif,
1582 &rt->rt_dst, &rt->rt_gateway);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001583#endif
1584 }
Linus Torvalds1da177e2005-04-16 15:20:36 -07001585}
1586
1587static int ip_error(struct sk_buff *skb)
1588{
Eric Dumazet511c3f92009-06-02 05:14:27 +00001589 struct rtable *rt = skb_rtable(skb);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001590 unsigned long now;
1591 int code;
1592
Changli Gaod8d1f302010-06-10 23:31:35 -07001593 switch (rt->dst.error) {
Linus Torvalds1da177e2005-04-16 15:20:36 -07001594 case EINVAL:
1595 default:
1596 goto out;
1597 case EHOSTUNREACH:
1598 code = ICMP_HOST_UNREACH;
1599 break;
1600 case ENETUNREACH:
1601 code = ICMP_NET_UNREACH;
Changli Gaod8d1f302010-06-10 23:31:35 -07001602 IP_INC_STATS_BH(dev_net(rt->dst.dev),
Pavel Emelyanov7c73a6f2008-07-16 20:20:11 -07001603 IPSTATS_MIB_INNOROUTES);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001604 break;
1605 case EACCES:
1606 code = ICMP_PKT_FILTERED;
1607 break;
1608 }
1609
1610 now = jiffies;
Changli Gaod8d1f302010-06-10 23:31:35 -07001611 rt->dst.rate_tokens += now - rt->dst.rate_last;
1612 if (rt->dst.rate_tokens > ip_rt_error_burst)
1613 rt->dst.rate_tokens = ip_rt_error_burst;
1614 rt->dst.rate_last = now;
1615 if (rt->dst.rate_tokens >= ip_rt_error_cost) {
1616 rt->dst.rate_tokens -= ip_rt_error_cost;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001617 icmp_send(skb, ICMP_DEST_UNREACH, code, 0);
1618 }
1619
1620out: kfree_skb(skb);
1621 return 0;
YOSHIFUJI Hideakie905a9e2007-02-09 23:24:47 +09001622}
Linus Torvalds1da177e2005-04-16 15:20:36 -07001623
1624/*
1625 * The last two values are not from the RFC but
1626 * are needed for AMPRnet AX.25 paths.
1627 */
1628
Arjan van de Ven9b5b5cf2005-11-29 16:21:38 -08001629static const unsigned short mtu_plateau[] =
Linus Torvalds1da177e2005-04-16 15:20:36 -07001630{32000, 17914, 8166, 4352, 2002, 1492, 576, 296, 216, 128 };
1631
Stephen Hemminger5969f712008-04-10 01:52:09 -07001632static inline unsigned short guess_mtu(unsigned short old_mtu)
Linus Torvalds1da177e2005-04-16 15:20:36 -07001633{
1634 int i;
YOSHIFUJI Hideakie905a9e2007-02-09 23:24:47 +09001635
Linus Torvalds1da177e2005-04-16 15:20:36 -07001636 for (i = 0; i < ARRAY_SIZE(mtu_plateau); i++)
1637 if (old_mtu > mtu_plateau[i])
1638 return mtu_plateau[i];
1639 return 68;
1640}
1641
Denis V. Lunevb5921912008-01-22 23:50:25 -08001642unsigned short ip_rt_frag_needed(struct net *net, struct iphdr *iph,
Timo Teras0010e462008-04-29 03:32:25 -07001643 unsigned short new_mtu,
1644 struct net_device *dev)
Linus Torvalds1da177e2005-04-16 15:20:36 -07001645{
Timo Teras0010e462008-04-29 03:32:25 -07001646 int i, k;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001647 unsigned short old_mtu = ntohs(iph->tot_len);
1648 struct rtable *rth;
Timo Teras0010e462008-04-29 03:32:25 -07001649 int ikeys[2] = { dev->ifindex, 0 };
Al Viroe4485152006-09-26 22:15:01 -07001650 __be32 skeys[2] = { iph->saddr, 0, };
1651 __be32 daddr = iph->daddr;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001652 unsigned short est_mtu = 0;
1653
Timo Teras0010e462008-04-29 03:32:25 -07001654 for (k = 0; k < 2; k++) {
1655 for (i = 0; i < 2; i++) {
Denis V. Lunevb00180d2008-07-05 19:04:09 -07001656 unsigned hash = rt_hash(daddr, skeys[i], ikeys[k],
Denis V. Luneve84f84f2008-07-05 19:04:32 -07001657 rt_genid(net));
Linus Torvalds1da177e2005-04-16 15:20:36 -07001658
Timo Teras0010e462008-04-29 03:32:25 -07001659 rcu_read_lock();
1660 for (rth = rcu_dereference(rt_hash_table[hash].chain); rth;
Changli Gaod8d1f302010-06-10 23:31:35 -07001661 rth = rcu_dereference(rth->dst.rt_next)) {
Linus Torvalds1da177e2005-04-16 15:20:36 -07001662 unsigned short mtu = new_mtu;
1663
Timo Teras0010e462008-04-29 03:32:25 -07001664 if (rth->fl.fl4_dst != daddr ||
1665 rth->fl.fl4_src != skeys[i] ||
1666 rth->rt_dst != daddr ||
1667 rth->rt_src != iph->saddr ||
1668 rth->fl.oif != ikeys[k] ||
1669 rth->fl.iif != 0 ||
Changli Gaod8d1f302010-06-10 23:31:35 -07001670 dst_metric_locked(&rth->dst, RTAX_MTU) ||
1671 !net_eq(dev_net(rth->dst.dev), net) ||
Hugh Dickins6c3b8fc2008-07-26 17:51:06 -07001672 rt_is_expired(rth))
Timo Teras0010e462008-04-29 03:32:25 -07001673 continue;
1674
Linus Torvalds1da177e2005-04-16 15:20:36 -07001675 if (new_mtu < 68 || new_mtu >= old_mtu) {
1676
1677 /* BSD 4.2 compatibility hack :-( */
1678 if (mtu == 0 &&
Changli Gaod8d1f302010-06-10 23:31:35 -07001679 old_mtu >= dst_mtu(&rth->dst) &&
Linus Torvalds1da177e2005-04-16 15:20:36 -07001680 old_mtu >= 68 + (iph->ihl << 2))
1681 old_mtu -= iph->ihl << 2;
1682
1683 mtu = guess_mtu(old_mtu);
1684 }
Changli Gaod8d1f302010-06-10 23:31:35 -07001685 if (mtu <= dst_mtu(&rth->dst)) {
1686 if (mtu < dst_mtu(&rth->dst)) {
1687 dst_confirm(&rth->dst);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001688 if (mtu < ip_rt_min_pmtu) {
1689 mtu = ip_rt_min_pmtu;
Changli Gaod8d1f302010-06-10 23:31:35 -07001690 rth->dst.metrics[RTAX_LOCK-1] |=
Linus Torvalds1da177e2005-04-16 15:20:36 -07001691 (1 << RTAX_MTU);
1692 }
Changli Gaod8d1f302010-06-10 23:31:35 -07001693 rth->dst.metrics[RTAX_MTU-1] = mtu;
1694 dst_set_expires(&rth->dst,
Linus Torvalds1da177e2005-04-16 15:20:36 -07001695 ip_rt_mtu_expires);
1696 }
1697 est_mtu = mtu;
1698 }
1699 }
Timo Teras0010e462008-04-29 03:32:25 -07001700 rcu_read_unlock();
Linus Torvalds1da177e2005-04-16 15:20:36 -07001701 }
Linus Torvalds1da177e2005-04-16 15:20:36 -07001702 }
1703 return est_mtu ? : new_mtu;
1704}
1705
1706static void ip_rt_update_pmtu(struct dst_entry *dst, u32 mtu)
1707{
Rami Rosen6d273f82008-08-06 02:33:49 -07001708 if (dst_mtu(dst) > mtu && mtu >= 68 &&
Linus Torvalds1da177e2005-04-16 15:20:36 -07001709 !(dst_metric_locked(dst, RTAX_MTU))) {
1710 if (mtu < ip_rt_min_pmtu) {
1711 mtu = ip_rt_min_pmtu;
1712 dst->metrics[RTAX_LOCK-1] |= (1 << RTAX_MTU);
1713 }
1714 dst->metrics[RTAX_MTU-1] = mtu;
1715 dst_set_expires(dst, ip_rt_mtu_expires);
Tom Tucker8d717402006-07-30 20:43:36 -07001716 call_netevent_notifiers(NETEVENT_PMTU_UPDATE, dst);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001717 }
1718}
1719
1720static struct dst_entry *ipv4_dst_check(struct dst_entry *dst, u32 cookie)
1721{
Timo Teräsd11a4dc2010-03-18 23:20:20 +00001722 if (rt_is_expired((struct rtable *)dst))
1723 return NULL;
1724 return dst;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001725}
1726
1727static void ipv4_dst_destroy(struct dst_entry *dst)
1728{
1729 struct rtable *rt = (struct rtable *) dst;
1730 struct inet_peer *peer = rt->peer;
1731 struct in_device *idev = rt->idev;
1732
1733 if (peer) {
1734 rt->peer = NULL;
1735 inet_putpeer(peer);
1736 }
1737
1738 if (idev) {
1739 rt->idev = NULL;
1740 in_dev_put(idev);
1741 }
1742}
1743
1744static void ipv4_dst_ifdown(struct dst_entry *dst, struct net_device *dev,
1745 int how)
1746{
1747 struct rtable *rt = (struct rtable *) dst;
1748 struct in_device *idev = rt->idev;
YOSHIFUJI Hideakic346dca2008-03-25 21:47:49 +09001749 if (dev != dev_net(dev)->loopback_dev && idev && idev->dev == dev) {
Denis V. Lunev5a3e55d2007-12-07 00:38:10 -08001750 struct in_device *loopback_idev =
YOSHIFUJI Hideakic346dca2008-03-25 21:47:49 +09001751 in_dev_get(dev_net(dev)->loopback_dev);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001752 if (loopback_idev) {
1753 rt->idev = loopback_idev;
1754 in_dev_put(idev);
1755 }
1756 }
1757}
1758
1759static void ipv4_link_failure(struct sk_buff *skb)
1760{
1761 struct rtable *rt;
1762
1763 icmp_send(skb, ICMP_DEST_UNREACH, ICMP_HOST_UNREACH, 0);
1764
Eric Dumazet511c3f92009-06-02 05:14:27 +00001765 rt = skb_rtable(skb);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001766 if (rt)
Changli Gaod8d1f302010-06-10 23:31:35 -07001767 dst_set_expires(&rt->dst, 0);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001768}
1769
1770static int ip_rt_bug(struct sk_buff *skb)
1771{
Harvey Harrison673d57e2008-10-31 00:53:57 -07001772 printk(KERN_DEBUG "ip_rt_bug: %pI4 -> %pI4, %s\n",
1773 &ip_hdr(skb)->saddr, &ip_hdr(skb)->daddr,
Linus Torvalds1da177e2005-04-16 15:20:36 -07001774 skb->dev ? skb->dev->name : "?");
1775 kfree_skb(skb);
1776 return 0;
1777}
1778
1779/*
1780 We do not cache source address of outgoing interface,
1781 because it is used only by IP RR, TS and SRR options,
1782 so that it out of fast path.
1783
1784 BTW remember: "addr" is allowed to be not aligned
1785 in IP options!
1786 */
1787
1788void ip_rt_get_source(u8 *addr, struct rtable *rt)
1789{
Al Viroa61ced52006-09-26 21:27:54 -07001790 __be32 src;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001791 struct fib_result res;
1792
1793 if (rt->fl.iif == 0)
1794 src = rt->rt_src;
Eric Dumazetebc0ffa2010-10-05 10:41:36 +00001795 else {
1796 rcu_read_lock();
1797 if (fib_lookup(dev_net(rt->dst.dev), &rt->fl, &res) == 0)
1798 src = FIB_RES_PREFSRC(res);
1799 else
1800 src = inet_select_addr(rt->dst.dev, rt->rt_gateway,
Linus Torvalds1da177e2005-04-16 15:20:36 -07001801 RT_SCOPE_UNIVERSE);
Eric Dumazetebc0ffa2010-10-05 10:41:36 +00001802 rcu_read_unlock();
1803 }
Linus Torvalds1da177e2005-04-16 15:20:36 -07001804 memcpy(addr, &src, 4);
1805}
1806
1807#ifdef CONFIG_NET_CLS_ROUTE
1808static void set_class_tag(struct rtable *rt, u32 tag)
1809{
Changli Gaod8d1f302010-06-10 23:31:35 -07001810 if (!(rt->dst.tclassid & 0xFFFF))
1811 rt->dst.tclassid |= tag & 0xFFFF;
1812 if (!(rt->dst.tclassid & 0xFFFF0000))
1813 rt->dst.tclassid |= tag & 0xFFFF0000;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001814}
1815#endif
1816
1817static void rt_set_nexthop(struct rtable *rt, struct fib_result *res, u32 itag)
1818{
1819 struct fib_info *fi = res->fi;
1820
1821 if (fi) {
1822 if (FIB_RES_GW(*res) &&
1823 FIB_RES_NH(*res).nh_scope == RT_SCOPE_LINK)
1824 rt->rt_gateway = FIB_RES_GW(*res);
Changli Gaod8d1f302010-06-10 23:31:35 -07001825 memcpy(rt->dst.metrics, fi->fib_metrics,
1826 sizeof(rt->dst.metrics));
Linus Torvalds1da177e2005-04-16 15:20:36 -07001827 if (fi->fib_mtu == 0) {
Changli Gaod8d1f302010-06-10 23:31:35 -07001828 rt->dst.metrics[RTAX_MTU-1] = rt->dst.dev->mtu;
1829 if (dst_metric_locked(&rt->dst, RTAX_MTU) &&
Linus Torvalds1da177e2005-04-16 15:20:36 -07001830 rt->rt_gateway != rt->rt_dst &&
Changli Gaod8d1f302010-06-10 23:31:35 -07001831 rt->dst.dev->mtu > 576)
1832 rt->dst.metrics[RTAX_MTU-1] = 576;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001833 }
1834#ifdef CONFIG_NET_CLS_ROUTE
Changli Gaod8d1f302010-06-10 23:31:35 -07001835 rt->dst.tclassid = FIB_RES_NH(*res).nh_tclassid;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001836#endif
1837 } else
Changli Gaod8d1f302010-06-10 23:31:35 -07001838 rt->dst.metrics[RTAX_MTU-1]= rt->dst.dev->mtu;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001839
Changli Gaod8d1f302010-06-10 23:31:35 -07001840 if (dst_metric(&rt->dst, RTAX_HOPLIMIT) == 0)
1841 rt->dst.metrics[RTAX_HOPLIMIT-1] = sysctl_ip_default_ttl;
1842 if (dst_mtu(&rt->dst) > IP_MAX_MTU)
1843 rt->dst.metrics[RTAX_MTU-1] = IP_MAX_MTU;
1844 if (dst_metric(&rt->dst, RTAX_ADVMSS) == 0)
1845 rt->dst.metrics[RTAX_ADVMSS-1] = max_t(unsigned int, rt->dst.dev->mtu - 40,
Linus Torvalds1da177e2005-04-16 15:20:36 -07001846 ip_rt_min_advmss);
Changli Gaod8d1f302010-06-10 23:31:35 -07001847 if (dst_metric(&rt->dst, RTAX_ADVMSS) > 65535 - 40)
1848 rt->dst.metrics[RTAX_ADVMSS-1] = 65535 - 40;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001849
1850#ifdef CONFIG_NET_CLS_ROUTE
1851#ifdef CONFIG_IP_MULTIPLE_TABLES
1852 set_class_tag(rt, fib_rules_tclass(res));
1853#endif
1854 set_class_tag(rt, itag);
1855#endif
YOSHIFUJI Hideakie905a9e2007-02-09 23:24:47 +09001856 rt->rt_type = res->type;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001857}
1858
Eric Dumazet96d36222010-06-02 19:21:31 +00001859/* called in rcu_read_lock() section */
Al Viro9e12bb22006-09-26 21:25:20 -07001860static int ip_route_input_mc(struct sk_buff *skb, __be32 daddr, __be32 saddr,
Linus Torvalds1da177e2005-04-16 15:20:36 -07001861 u8 tos, struct net_device *dev, int our)
1862{
Eric Dumazet96d36222010-06-02 19:21:31 +00001863 unsigned int hash;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001864 struct rtable *rth;
Al Viroa61ced52006-09-26 21:27:54 -07001865 __be32 spec_dst;
Eric Dumazet96d36222010-06-02 19:21:31 +00001866 struct in_device *in_dev = __in_dev_get_rcu(dev);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001867 u32 itag = 0;
Eric Dumazetb5f7e752010-06-02 12:05:27 +00001868 int err;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001869
1870 /* Primary sanity checks. */
1871
1872 if (in_dev == NULL)
1873 return -EINVAL;
1874
Jan Engelhardt1e637c72008-01-21 03:18:08 -08001875 if (ipv4_is_multicast(saddr) || ipv4_is_lbcast(saddr) ||
Joe Perchesf97c1e02007-12-16 13:45:43 -08001876 ipv4_is_loopback(saddr) || skb->protocol != htons(ETH_P_IP))
Linus Torvalds1da177e2005-04-16 15:20:36 -07001877 goto e_inval;
1878
Joe Perchesf97c1e02007-12-16 13:45:43 -08001879 if (ipv4_is_zeronet(saddr)) {
1880 if (!ipv4_is_local_multicast(daddr))
Linus Torvalds1da177e2005-04-16 15:20:36 -07001881 goto e_inval;
1882 spec_dst = inet_select_addr(dev, 0, RT_SCOPE_LINK);
Eric Dumazetb5f7e752010-06-02 12:05:27 +00001883 } else {
1884 err = fib_validate_source(saddr, 0, tos, 0, dev, &spec_dst,
1885 &itag, 0);
1886 if (err < 0)
1887 goto e_err;
1888 }
Linus Torvalds1da177e2005-04-16 15:20:36 -07001889 rth = dst_alloc(&ipv4_dst_ops);
1890 if (!rth)
1891 goto e_nobufs;
1892
Changli Gaod8d1f302010-06-10 23:31:35 -07001893 rth->dst.output = ip_rt_bug;
1894 rth->dst.obsolete = -1;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001895
Changli Gaod8d1f302010-06-10 23:31:35 -07001896 atomic_set(&rth->dst.__refcnt, 1);
1897 rth->dst.flags= DST_HOST;
Herbert Xu42f811b2007-06-04 23:34:44 -07001898 if (IN_DEV_CONF_GET(in_dev, NOPOLICY))
Changli Gaod8d1f302010-06-10 23:31:35 -07001899 rth->dst.flags |= DST_NOPOLICY;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001900 rth->fl.fl4_dst = daddr;
1901 rth->rt_dst = daddr;
1902 rth->fl.fl4_tos = tos;
Thomas Graf47dcf0c2006-11-09 15:20:38 -08001903 rth->fl.mark = skb->mark;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001904 rth->fl.fl4_src = saddr;
1905 rth->rt_src = saddr;
1906#ifdef CONFIG_NET_CLS_ROUTE
Changli Gaod8d1f302010-06-10 23:31:35 -07001907 rth->dst.tclassid = itag;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001908#endif
1909 rth->rt_iif =
1910 rth->fl.iif = dev->ifindex;
Changli Gaod8d1f302010-06-10 23:31:35 -07001911 rth->dst.dev = init_net.loopback_dev;
1912 dev_hold(rth->dst.dev);
1913 rth->idev = in_dev_get(rth->dst.dev);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001914 rth->fl.oif = 0;
1915 rth->rt_gateway = daddr;
1916 rth->rt_spec_dst= spec_dst;
Denis V. Luneve84f84f2008-07-05 19:04:32 -07001917 rth->rt_genid = rt_genid(dev_net(dev));
Linus Torvalds1da177e2005-04-16 15:20:36 -07001918 rth->rt_flags = RTCF_MULTICAST;
Eric Dumazet29e75252008-01-31 17:05:09 -08001919 rth->rt_type = RTN_MULTICAST;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001920 if (our) {
Changli Gaod8d1f302010-06-10 23:31:35 -07001921 rth->dst.input= ip_local_deliver;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001922 rth->rt_flags |= RTCF_LOCAL;
1923 }
1924
1925#ifdef CONFIG_IP_MROUTE
Joe Perchesf97c1e02007-12-16 13:45:43 -08001926 if (!ipv4_is_local_multicast(daddr) && IN_DEV_MFORWARD(in_dev))
Changli Gaod8d1f302010-06-10 23:31:35 -07001927 rth->dst.input = ip_mr_input;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001928#endif
1929 RT_CACHE_STAT_INC(in_slow_mc);
1930
Denis V. Luneve84f84f2008-07-05 19:04:32 -07001931 hash = rt_hash(daddr, saddr, dev->ifindex, rt_genid(dev_net(dev)));
Pavel Emelyanov6a2bad72010-03-24 21:51:22 +00001932 return rt_intern_hash(hash, rth, NULL, skb, dev->ifindex);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001933
1934e_nobufs:
Linus Torvalds1da177e2005-04-16 15:20:36 -07001935 return -ENOBUFS;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001936e_inval:
Eric Dumazet96d36222010-06-02 19:21:31 +00001937 return -EINVAL;
Eric Dumazetb5f7e752010-06-02 12:05:27 +00001938e_err:
Eric Dumazetb5f7e752010-06-02 12:05:27 +00001939 return err;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001940}
1941
1942
1943static void ip_handle_martian_source(struct net_device *dev,
1944 struct in_device *in_dev,
1945 struct sk_buff *skb,
Al Viro9e12bb22006-09-26 21:25:20 -07001946 __be32 daddr,
1947 __be32 saddr)
Linus Torvalds1da177e2005-04-16 15:20:36 -07001948{
1949 RT_CACHE_STAT_INC(in_martian_src);
1950#ifdef CONFIG_IP_ROUTE_VERBOSE
1951 if (IN_DEV_LOG_MARTIANS(in_dev) && net_ratelimit()) {
1952 /*
1953 * RFC1812 recommendation, if source is martian,
1954 * the only hint is MAC header.
1955 */
Harvey Harrison673d57e2008-10-31 00:53:57 -07001956 printk(KERN_WARNING "martian source %pI4 from %pI4, on dev %s\n",
1957 &daddr, &saddr, dev->name);
Arnaldo Carvalho de Melo98e399f2007-03-19 15:33:04 -07001958 if (dev->hard_header_len && skb_mac_header_was_set(skb)) {
Linus Torvalds1da177e2005-04-16 15:20:36 -07001959 int i;
Arnaldo Carvalho de Melo98e399f2007-03-19 15:33:04 -07001960 const unsigned char *p = skb_mac_header(skb);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001961 printk(KERN_WARNING "ll header: ");
1962 for (i = 0; i < dev->hard_header_len; i++, p++) {
1963 printk("%02x", *p);
1964 if (i < (dev->hard_header_len - 1))
1965 printk(":");
1966 }
1967 printk("\n");
1968 }
1969 }
1970#endif
1971}
1972
Eric Dumazet47360222010-06-03 04:13:21 +00001973/* called in rcu_read_lock() section */
Stephen Hemminger5969f712008-04-10 01:52:09 -07001974static int __mkroute_input(struct sk_buff *skb,
1975 struct fib_result *res,
1976 struct in_device *in_dev,
1977 __be32 daddr, __be32 saddr, u32 tos,
1978 struct rtable **result)
Linus Torvalds1da177e2005-04-16 15:20:36 -07001979{
Linus Torvalds1da177e2005-04-16 15:20:36 -07001980 struct rtable *rth;
1981 int err;
1982 struct in_device *out_dev;
Eric Dumazet47360222010-06-03 04:13:21 +00001983 unsigned int flags = 0;
Al Virod9c9df82006-09-26 21:28:14 -07001984 __be32 spec_dst;
1985 u32 itag;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001986
1987 /* get a working reference to the output device */
Eric Dumazet47360222010-06-03 04:13:21 +00001988 out_dev = __in_dev_get_rcu(FIB_RES_DEV(*res));
Linus Torvalds1da177e2005-04-16 15:20:36 -07001989 if (out_dev == NULL) {
1990 if (net_ratelimit())
1991 printk(KERN_CRIT "Bug in ip_route_input" \
1992 "_slow(). Please, report\n");
1993 return -EINVAL;
1994 }
1995
1996
YOSHIFUJI Hideakie905a9e2007-02-09 23:24:47 +09001997 err = fib_validate_source(saddr, daddr, tos, FIB_RES_OIF(*res),
jamalb0c110c2009-10-18 02:12:33 +00001998 in_dev->dev, &spec_dst, &itag, skb->mark);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001999 if (err < 0) {
YOSHIFUJI Hideakie905a9e2007-02-09 23:24:47 +09002000 ip_handle_martian_source(in_dev->dev, in_dev, skb, daddr,
Linus Torvalds1da177e2005-04-16 15:20:36 -07002001 saddr);
YOSHIFUJI Hideakie905a9e2007-02-09 23:24:47 +09002002
Linus Torvalds1da177e2005-04-16 15:20:36 -07002003 goto cleanup;
2004 }
2005
2006 if (err)
2007 flags |= RTCF_DIRECTSRC;
2008
Thomas Graf51b77ca2008-06-03 16:36:01 -07002009 if (out_dev == in_dev && err &&
Linus Torvalds1da177e2005-04-16 15:20:36 -07002010 (IN_DEV_SHARED_MEDIA(out_dev) ||
2011 inet_addr_onlink(out_dev, saddr, FIB_RES_GW(*res))))
2012 flags |= RTCF_DOREDIRECT;
2013
2014 if (skb->protocol != htons(ETH_P_IP)) {
2015 /* Not IP (i.e. ARP). Do not create route, if it is
2016 * invalid for proxy arp. DNAT routes are always valid.
Jesper Dangaard Brouer65324142010-01-05 05:50:47 +00002017 *
2018 * Proxy arp feature have been extended to allow, ARP
2019 * replies back to the same interface, to support
2020 * Private VLAN switch technologies. See arp.c.
Linus Torvalds1da177e2005-04-16 15:20:36 -07002021 */
Jesper Dangaard Brouer65324142010-01-05 05:50:47 +00002022 if (out_dev == in_dev &&
2023 IN_DEV_PROXY_ARP_PVLAN(in_dev) == 0) {
Linus Torvalds1da177e2005-04-16 15:20:36 -07002024 err = -EINVAL;
2025 goto cleanup;
2026 }
2027 }
2028
2029
2030 rth = dst_alloc(&ipv4_dst_ops);
2031 if (!rth) {
2032 err = -ENOBUFS;
2033 goto cleanup;
2034 }
2035
Changli Gaod8d1f302010-06-10 23:31:35 -07002036 atomic_set(&rth->dst.__refcnt, 1);
2037 rth->dst.flags= DST_HOST;
Herbert Xu42f811b2007-06-04 23:34:44 -07002038 if (IN_DEV_CONF_GET(in_dev, NOPOLICY))
Changli Gaod8d1f302010-06-10 23:31:35 -07002039 rth->dst.flags |= DST_NOPOLICY;
Herbert Xu42f811b2007-06-04 23:34:44 -07002040 if (IN_DEV_CONF_GET(out_dev, NOXFRM))
Changli Gaod8d1f302010-06-10 23:31:35 -07002041 rth->dst.flags |= DST_NOXFRM;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002042 rth->fl.fl4_dst = daddr;
2043 rth->rt_dst = daddr;
2044 rth->fl.fl4_tos = tos;
Thomas Graf47dcf0c2006-11-09 15:20:38 -08002045 rth->fl.mark = skb->mark;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002046 rth->fl.fl4_src = saddr;
2047 rth->rt_src = saddr;
2048 rth->rt_gateway = daddr;
2049 rth->rt_iif =
2050 rth->fl.iif = in_dev->dev->ifindex;
Changli Gaod8d1f302010-06-10 23:31:35 -07002051 rth->dst.dev = (out_dev)->dev;
2052 dev_hold(rth->dst.dev);
2053 rth->idev = in_dev_get(rth->dst.dev);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002054 rth->fl.oif = 0;
2055 rth->rt_spec_dst= spec_dst;
2056
Changli Gaod8d1f302010-06-10 23:31:35 -07002057 rth->dst.obsolete = -1;
2058 rth->dst.input = ip_forward;
2059 rth->dst.output = ip_output;
2060 rth->rt_genid = rt_genid(dev_net(rth->dst.dev));
Linus Torvalds1da177e2005-04-16 15:20:36 -07002061
2062 rt_set_nexthop(rth, res, itag);
2063
2064 rth->rt_flags = flags;
2065
2066 *result = rth;
2067 err = 0;
2068 cleanup:
Linus Torvalds1da177e2005-04-16 15:20:36 -07002069 return err;
YOSHIFUJI Hideakie905a9e2007-02-09 23:24:47 +09002070}
Linus Torvalds1da177e2005-04-16 15:20:36 -07002071
Stephen Hemminger5969f712008-04-10 01:52:09 -07002072static int ip_mkroute_input(struct sk_buff *skb,
2073 struct fib_result *res,
2074 const struct flowi *fl,
2075 struct in_device *in_dev,
2076 __be32 daddr, __be32 saddr, u32 tos)
Linus Torvalds1da177e2005-04-16 15:20:36 -07002077{
Chuck Short7abaa272005-06-22 22:10:23 -07002078 struct rtable* rth = NULL;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002079 int err;
2080 unsigned hash;
2081
2082#ifdef CONFIG_IP_ROUTE_MULTIPATH
2083 if (res->fi && res->fi->fib_nhs > 1 && fl->oif == 0)
2084 fib_select_multipath(fl, res);
2085#endif
2086
2087 /* create a routing cache entry */
2088 err = __mkroute_input(skb, res, in_dev, daddr, saddr, tos, &rth);
2089 if (err)
2090 return err;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002091
2092 /* put it into the cache */
Denis V. Luneve84f84f2008-07-05 19:04:32 -07002093 hash = rt_hash(daddr, saddr, fl->iif,
Changli Gaod8d1f302010-06-10 23:31:35 -07002094 rt_genid(dev_net(rth->dst.dev)));
Pavel Emelyanov6a2bad72010-03-24 21:51:22 +00002095 return rt_intern_hash(hash, rth, NULL, skb, fl->iif);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002096}
2097
Linus Torvalds1da177e2005-04-16 15:20:36 -07002098/*
2099 * NOTE. We drop all the packets that has local source
2100 * addresses, because every properly looped back packet
2101 * must have correct destination already attached by output routine.
2102 *
2103 * Such approach solves two big problems:
2104 * 1. Not simplex devices are handled properly.
2105 * 2. IP spoofing attempts are filtered with 100% of guarantee.
Eric Dumazetebc0ffa2010-10-05 10:41:36 +00002106 * called with rcu_read_lock()
Linus Torvalds1da177e2005-04-16 15:20:36 -07002107 */
2108
Al Viro9e12bb22006-09-26 21:25:20 -07002109static int ip_route_input_slow(struct sk_buff *skb, __be32 daddr, __be32 saddr,
Linus Torvalds1da177e2005-04-16 15:20:36 -07002110 u8 tos, struct net_device *dev)
2111{
2112 struct fib_result res;
Eric Dumazet96d36222010-06-02 19:21:31 +00002113 struct in_device *in_dev = __in_dev_get_rcu(dev);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002114 struct flowi fl = { .nl_u = { .ip4_u =
2115 { .daddr = daddr,
2116 .saddr = saddr,
2117 .tos = tos,
2118 .scope = RT_SCOPE_UNIVERSE,
Linus Torvalds1da177e2005-04-16 15:20:36 -07002119 } },
Thomas Graf47dcf0c2006-11-09 15:20:38 -08002120 .mark = skb->mark,
Linus Torvalds1da177e2005-04-16 15:20:36 -07002121 .iif = dev->ifindex };
2122 unsigned flags = 0;
2123 u32 itag = 0;
2124 struct rtable * rth;
2125 unsigned hash;
Al Viro9e12bb22006-09-26 21:25:20 -07002126 __be32 spec_dst;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002127 int err = -EINVAL;
YOSHIFUJI Hideakic346dca2008-03-25 21:47:49 +09002128 struct net * net = dev_net(dev);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002129
2130 /* IP on this device is disabled. */
2131
2132 if (!in_dev)
2133 goto out;
2134
2135 /* Check for the most weird martians, which can be not detected
2136 by fib_lookup.
2137 */
2138
Jan Engelhardt1e637c72008-01-21 03:18:08 -08002139 if (ipv4_is_multicast(saddr) || ipv4_is_lbcast(saddr) ||
Joe Perchesf97c1e02007-12-16 13:45:43 -08002140 ipv4_is_loopback(saddr))
Linus Torvalds1da177e2005-04-16 15:20:36 -07002141 goto martian_source;
2142
Andy Walls27a954b2010-10-17 15:11:22 +00002143 if (ipv4_is_lbcast(daddr) || (saddr == 0 && daddr == 0))
Linus Torvalds1da177e2005-04-16 15:20:36 -07002144 goto brd_input;
2145
2146 /* Accept zero addresses only to limited broadcast;
2147 * I even do not know to fix it or not. Waiting for complains :-)
2148 */
Joe Perchesf97c1e02007-12-16 13:45:43 -08002149 if (ipv4_is_zeronet(saddr))
Linus Torvalds1da177e2005-04-16 15:20:36 -07002150 goto martian_source;
2151
Andy Walls27a954b2010-10-17 15:11:22 +00002152 if (ipv4_is_zeronet(daddr) || ipv4_is_loopback(daddr))
Linus Torvalds1da177e2005-04-16 15:20:36 -07002153 goto martian_destination;
2154
2155 /*
2156 * Now we are ready to route packet.
2157 */
Eric Dumazetebc0ffa2010-10-05 10:41:36 +00002158 err = fib_lookup(net, &fl, &res);
2159 if (err != 0) {
Linus Torvalds1da177e2005-04-16 15:20:36 -07002160 if (!IN_DEV_FORWARD(in_dev))
Dietmar Eggemann2c2910a2005-06-28 13:06:23 -07002161 goto e_hostunreach;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002162 goto no_route;
2163 }
Linus Torvalds1da177e2005-04-16 15:20:36 -07002164
2165 RT_CACHE_STAT_INC(in_slow_tot);
2166
2167 if (res.type == RTN_BROADCAST)
2168 goto brd_input;
2169
2170 if (res.type == RTN_LOCAL) {
Eric Dumazetb5f7e752010-06-02 12:05:27 +00002171 err = fib_validate_source(saddr, daddr, tos,
Eric Dumazetebc0ffa2010-10-05 10:41:36 +00002172 net->loopback_dev->ifindex,
2173 dev, &spec_dst, &itag, skb->mark);
Eric Dumazetb5f7e752010-06-02 12:05:27 +00002174 if (err < 0)
2175 goto martian_source_keep_err;
2176 if (err)
Linus Torvalds1da177e2005-04-16 15:20:36 -07002177 flags |= RTCF_DIRECTSRC;
2178 spec_dst = daddr;
2179 goto local_input;
2180 }
2181
2182 if (!IN_DEV_FORWARD(in_dev))
Dietmar Eggemann2c2910a2005-06-28 13:06:23 -07002183 goto e_hostunreach;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002184 if (res.type != RTN_UNICAST)
2185 goto martian_destination;
2186
2187 err = ip_mkroute_input(skb, &res, &fl, in_dev, daddr, saddr, tos);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002188out: return err;
2189
2190brd_input:
2191 if (skb->protocol != htons(ETH_P_IP))
2192 goto e_inval;
2193
Joe Perchesf97c1e02007-12-16 13:45:43 -08002194 if (ipv4_is_zeronet(saddr))
Linus Torvalds1da177e2005-04-16 15:20:36 -07002195 spec_dst = inet_select_addr(dev, 0, RT_SCOPE_LINK);
2196 else {
2197 err = fib_validate_source(saddr, 0, tos, 0, dev, &spec_dst,
jamalb0c110c2009-10-18 02:12:33 +00002198 &itag, skb->mark);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002199 if (err < 0)
Eric Dumazetb5f7e752010-06-02 12:05:27 +00002200 goto martian_source_keep_err;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002201 if (err)
2202 flags |= RTCF_DIRECTSRC;
2203 }
2204 flags |= RTCF_BROADCAST;
2205 res.type = RTN_BROADCAST;
2206 RT_CACHE_STAT_INC(in_brd);
2207
2208local_input:
2209 rth = dst_alloc(&ipv4_dst_ops);
2210 if (!rth)
2211 goto e_nobufs;
2212
Changli Gaod8d1f302010-06-10 23:31:35 -07002213 rth->dst.output= ip_rt_bug;
2214 rth->dst.obsolete = -1;
Denis V. Luneve84f84f2008-07-05 19:04:32 -07002215 rth->rt_genid = rt_genid(net);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002216
Changli Gaod8d1f302010-06-10 23:31:35 -07002217 atomic_set(&rth->dst.__refcnt, 1);
2218 rth->dst.flags= DST_HOST;
Herbert Xu42f811b2007-06-04 23:34:44 -07002219 if (IN_DEV_CONF_GET(in_dev, NOPOLICY))
Changli Gaod8d1f302010-06-10 23:31:35 -07002220 rth->dst.flags |= DST_NOPOLICY;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002221 rth->fl.fl4_dst = daddr;
2222 rth->rt_dst = daddr;
2223 rth->fl.fl4_tos = tos;
Thomas Graf47dcf0c2006-11-09 15:20:38 -08002224 rth->fl.mark = skb->mark;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002225 rth->fl.fl4_src = saddr;
2226 rth->rt_src = saddr;
2227#ifdef CONFIG_NET_CLS_ROUTE
Changli Gaod8d1f302010-06-10 23:31:35 -07002228 rth->dst.tclassid = itag;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002229#endif
2230 rth->rt_iif =
2231 rth->fl.iif = dev->ifindex;
Changli Gaod8d1f302010-06-10 23:31:35 -07002232 rth->dst.dev = net->loopback_dev;
2233 dev_hold(rth->dst.dev);
2234 rth->idev = in_dev_get(rth->dst.dev);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002235 rth->rt_gateway = daddr;
2236 rth->rt_spec_dst= spec_dst;
Changli Gaod8d1f302010-06-10 23:31:35 -07002237 rth->dst.input= ip_local_deliver;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002238 rth->rt_flags = flags|RTCF_LOCAL;
2239 if (res.type == RTN_UNREACHABLE) {
Changli Gaod8d1f302010-06-10 23:31:35 -07002240 rth->dst.input= ip_error;
2241 rth->dst.error= -err;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002242 rth->rt_flags &= ~RTCF_LOCAL;
2243 }
2244 rth->rt_type = res.type;
Denis V. Luneve84f84f2008-07-05 19:04:32 -07002245 hash = rt_hash(daddr, saddr, fl.iif, rt_genid(net));
Pavel Emelyanov6a2bad72010-03-24 21:51:22 +00002246 err = rt_intern_hash(hash, rth, NULL, skb, fl.iif);
Eric Dumazetebc0ffa2010-10-05 10:41:36 +00002247 goto out;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002248
2249no_route:
2250 RT_CACHE_STAT_INC(in_no_route);
2251 spec_dst = inet_select_addr(dev, 0, RT_SCOPE_UNIVERSE);
2252 res.type = RTN_UNREACHABLE;
Mitsuru Chinen7f538782007-12-07 01:07:24 -08002253 if (err == -ESRCH)
2254 err = -ENETUNREACH;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002255 goto local_input;
2256
2257 /*
2258 * Do not cache martian addresses: they should be logged (RFC1812)
2259 */
2260martian_destination:
2261 RT_CACHE_STAT_INC(in_martian_dst);
2262#ifdef CONFIG_IP_ROUTE_VERBOSE
2263 if (IN_DEV_LOG_MARTIANS(in_dev) && net_ratelimit())
Harvey Harrison673d57e2008-10-31 00:53:57 -07002264 printk(KERN_WARNING "martian destination %pI4 from %pI4, dev %s\n",
2265 &daddr, &saddr, dev->name);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002266#endif
Dietmar Eggemann2c2910a2005-06-28 13:06:23 -07002267
2268e_hostunreach:
YOSHIFUJI Hideakie905a9e2007-02-09 23:24:47 +09002269 err = -EHOSTUNREACH;
Eric Dumazetebc0ffa2010-10-05 10:41:36 +00002270 goto out;
Dietmar Eggemann2c2910a2005-06-28 13:06:23 -07002271
Linus Torvalds1da177e2005-04-16 15:20:36 -07002272e_inval:
2273 err = -EINVAL;
Eric Dumazetebc0ffa2010-10-05 10:41:36 +00002274 goto out;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002275
2276e_nobufs:
2277 err = -ENOBUFS;
Eric Dumazetebc0ffa2010-10-05 10:41:36 +00002278 goto out;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002279
2280martian_source:
Eric Dumazetb5f7e752010-06-02 12:05:27 +00002281 err = -EINVAL;
2282martian_source_keep_err:
Linus Torvalds1da177e2005-04-16 15:20:36 -07002283 ip_handle_martian_source(dev, in_dev, skb, daddr, saddr);
Eric Dumazetebc0ffa2010-10-05 10:41:36 +00002284 goto out;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002285}
2286
Eric Dumazet407eadd2010-05-10 11:32:55 +00002287int ip_route_input_common(struct sk_buff *skb, __be32 daddr, __be32 saddr,
2288 u8 tos, struct net_device *dev, bool noref)
Linus Torvalds1da177e2005-04-16 15:20:36 -07002289{
2290 struct rtable * rth;
2291 unsigned hash;
2292 int iif = dev->ifindex;
Denis V. Lunevb5921912008-01-22 23:50:25 -08002293 struct net *net;
Eric Dumazet96d36222010-06-02 19:21:31 +00002294 int res;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002295
YOSHIFUJI Hideakic346dca2008-03-25 21:47:49 +09002296 net = dev_net(dev);
Neil Horman1080d702008-10-27 12:28:25 -07002297
Eric Dumazet96d36222010-06-02 19:21:31 +00002298 rcu_read_lock();
2299
Neil Horman1080d702008-10-27 12:28:25 -07002300 if (!rt_caching(net))
2301 goto skip_cache;
2302
Linus Torvalds1da177e2005-04-16 15:20:36 -07002303 tos &= IPTOS_RT_MASK;
Denis V. Luneve84f84f2008-07-05 19:04:32 -07002304 hash = rt_hash(daddr, saddr, iif, rt_genid(net));
Linus Torvalds1da177e2005-04-16 15:20:36 -07002305
Linus Torvalds1da177e2005-04-16 15:20:36 -07002306 for (rth = rcu_dereference(rt_hash_table[hash].chain); rth;
Changli Gaod8d1f302010-06-10 23:31:35 -07002307 rth = rcu_dereference(rth->dst.rt_next)) {
Eric Dumazet0eae88f2010-04-20 19:06:52 -07002308 if ((((__force u32)rth->fl.fl4_dst ^ (__force u32)daddr) |
2309 ((__force u32)rth->fl.fl4_src ^ (__force u32)saddr) |
Stephen Hemmingerc0b8c322008-04-10 04:00:28 -07002310 (rth->fl.iif ^ iif) |
2311 rth->fl.oif |
2312 (rth->fl.fl4_tos ^ tos)) == 0 &&
Thomas Graf47dcf0c2006-11-09 15:20:38 -08002313 rth->fl.mark == skb->mark &&
Changli Gaod8d1f302010-06-10 23:31:35 -07002314 net_eq(dev_net(rth->dst.dev), net) &&
Denis V. Luneve84f84f2008-07-05 19:04:32 -07002315 !rt_is_expired(rth)) {
Eric Dumazet407eadd2010-05-10 11:32:55 +00002316 if (noref) {
Changli Gaod8d1f302010-06-10 23:31:35 -07002317 dst_use_noref(&rth->dst, jiffies);
2318 skb_dst_set_noref(skb, &rth->dst);
Eric Dumazet407eadd2010-05-10 11:32:55 +00002319 } else {
Changli Gaod8d1f302010-06-10 23:31:35 -07002320 dst_use(&rth->dst, jiffies);
2321 skb_dst_set(skb, &rth->dst);
Eric Dumazet407eadd2010-05-10 11:32:55 +00002322 }
Linus Torvalds1da177e2005-04-16 15:20:36 -07002323 RT_CACHE_STAT_INC(in_hit);
2324 rcu_read_unlock();
Linus Torvalds1da177e2005-04-16 15:20:36 -07002325 return 0;
2326 }
2327 RT_CACHE_STAT_INC(in_hlist_search);
2328 }
Linus Torvalds1da177e2005-04-16 15:20:36 -07002329
Neil Horman1080d702008-10-27 12:28:25 -07002330skip_cache:
Linus Torvalds1da177e2005-04-16 15:20:36 -07002331 /* Multicast recognition logic is moved from route cache to here.
2332 The problem was that too many Ethernet cards have broken/missing
2333 hardware multicast filters :-( As result the host on multicasting
2334 network acquires a lot of useless route cache entries, sort of
2335 SDR messages from all the world. Now we try to get rid of them.
2336 Really, provided software IP multicast filter is organized
2337 reasonably (at least, hashed), it does not result in a slowdown
2338 comparing with route cache reject entries.
2339 Note, that multicast routers are not affected, because
2340 route cache entry is created eventually.
2341 */
Joe Perchesf97c1e02007-12-16 13:45:43 -08002342 if (ipv4_is_multicast(daddr)) {
Eric Dumazet96d36222010-06-02 19:21:31 +00002343 struct in_device *in_dev = __in_dev_get_rcu(dev);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002344
Eric Dumazet96d36222010-06-02 19:21:31 +00002345 if (in_dev) {
Linus Torvalds1da177e2005-04-16 15:20:36 -07002346 int our = ip_check_mc(in_dev, daddr, saddr,
Eric Dumazet96d36222010-06-02 19:21:31 +00002347 ip_hdr(skb)->protocol);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002348 if (our
2349#ifdef CONFIG_IP_MROUTE
Joe Perches9d4fb272009-11-23 10:41:23 -08002350 ||
2351 (!ipv4_is_local_multicast(daddr) &&
2352 IN_DEV_MFORWARD(in_dev))
Linus Torvalds1da177e2005-04-16 15:20:36 -07002353#endif
Joe Perches9d4fb272009-11-23 10:41:23 -08002354 ) {
Eric Dumazet96d36222010-06-02 19:21:31 +00002355 int res = ip_route_input_mc(skb, daddr, saddr,
2356 tos, dev, our);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002357 rcu_read_unlock();
Eric Dumazet96d36222010-06-02 19:21:31 +00002358 return res;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002359 }
2360 }
2361 rcu_read_unlock();
2362 return -EINVAL;
2363 }
Eric Dumazet96d36222010-06-02 19:21:31 +00002364 res = ip_route_input_slow(skb, daddr, saddr, tos, dev);
2365 rcu_read_unlock();
2366 return res;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002367}
Eric Dumazet407eadd2010-05-10 11:32:55 +00002368EXPORT_SYMBOL(ip_route_input_common);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002369
Eric Dumazetebc0ffa2010-10-05 10:41:36 +00002370/* called with rcu_read_lock() */
Stephen Hemminger5969f712008-04-10 01:52:09 -07002371static int __mkroute_output(struct rtable **result,
2372 struct fib_result *res,
2373 const struct flowi *fl,
2374 const struct flowi *oldflp,
2375 struct net_device *dev_out,
2376 unsigned flags)
Linus Torvalds1da177e2005-04-16 15:20:36 -07002377{
2378 struct rtable *rth;
2379 struct in_device *in_dev;
2380 u32 tos = RT_FL_TOS(oldflp);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002381
Eric Dumazetdd28d1a2010-09-29 11:53:50 +00002382 if (ipv4_is_loopback(fl->fl4_src) && !(dev_out->flags & IFF_LOOPBACK))
Linus Torvalds1da177e2005-04-16 15:20:36 -07002383 return -EINVAL;
2384
Andy Walls27a954b2010-10-17 15:11:22 +00002385 if (ipv4_is_lbcast(fl->fl4_dst))
Linus Torvalds1da177e2005-04-16 15:20:36 -07002386 res->type = RTN_BROADCAST;
Joe Perchesf97c1e02007-12-16 13:45:43 -08002387 else if (ipv4_is_multicast(fl->fl4_dst))
Linus Torvalds1da177e2005-04-16 15:20:36 -07002388 res->type = RTN_MULTICAST;
Andy Walls27a954b2010-10-17 15:11:22 +00002389 else if (ipv4_is_zeronet(fl->fl4_dst))
Linus Torvalds1da177e2005-04-16 15:20:36 -07002390 return -EINVAL;
2391
2392 if (dev_out->flags & IFF_LOOPBACK)
2393 flags |= RTCF_LOCAL;
2394
Eric Dumazetdd28d1a2010-09-29 11:53:50 +00002395 in_dev = __in_dev_get_rcu(dev_out);
Eric Dumazetebc0ffa2010-10-05 10:41:36 +00002396 if (!in_dev)
Linus Torvalds1da177e2005-04-16 15:20:36 -07002397 return -EINVAL;
Eric Dumazetebc0ffa2010-10-05 10:41:36 +00002398
Linus Torvalds1da177e2005-04-16 15:20:36 -07002399 if (res->type == RTN_BROADCAST) {
2400 flags |= RTCF_BROADCAST | RTCF_LOCAL;
Eric Dumazetebc0ffa2010-10-05 10:41:36 +00002401 res->fi = NULL;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002402 } else if (res->type == RTN_MULTICAST) {
Eric Dumazetdd28d1a2010-09-29 11:53:50 +00002403 flags |= RTCF_MULTICAST | RTCF_LOCAL;
YOSHIFUJI Hideakie905a9e2007-02-09 23:24:47 +09002404 if (!ip_check_mc(in_dev, oldflp->fl4_dst, oldflp->fl4_src,
Linus Torvalds1da177e2005-04-16 15:20:36 -07002405 oldflp->proto))
2406 flags &= ~RTCF_LOCAL;
2407 /* If multicast route do not exist use
Eric Dumazetdd28d1a2010-09-29 11:53:50 +00002408 * default one, but do not gateway in this case.
2409 * Yes, it is hack.
Linus Torvalds1da177e2005-04-16 15:20:36 -07002410 */
Eric Dumazetebc0ffa2010-10-05 10:41:36 +00002411 if (res->fi && res->prefixlen < 4)
Linus Torvalds1da177e2005-04-16 15:20:36 -07002412 res->fi = NULL;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002413 }
2414
2415
2416 rth = dst_alloc(&ipv4_dst_ops);
Dimitris Michailidis8391d072010-10-07 14:48:38 +00002417 if (!rth)
Eric Dumazetdd28d1a2010-09-29 11:53:50 +00002418 return -ENOBUFS;
Dimitris Michailidis8391d072010-10-07 14:48:38 +00002419
Eric Dumazetdd28d1a2010-09-29 11:53:50 +00002420 in_dev_hold(in_dev);
Eric Dumazetdd28d1a2010-09-29 11:53:50 +00002421 rth->idev = in_dev;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002422
Changli Gaod8d1f302010-06-10 23:31:35 -07002423 atomic_set(&rth->dst.__refcnt, 1);
2424 rth->dst.flags= DST_HOST;
Herbert Xu42f811b2007-06-04 23:34:44 -07002425 if (IN_DEV_CONF_GET(in_dev, NOXFRM))
Changli Gaod8d1f302010-06-10 23:31:35 -07002426 rth->dst.flags |= DST_NOXFRM;
Herbert Xu42f811b2007-06-04 23:34:44 -07002427 if (IN_DEV_CONF_GET(in_dev, NOPOLICY))
Changli Gaod8d1f302010-06-10 23:31:35 -07002428 rth->dst.flags |= DST_NOPOLICY;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002429
2430 rth->fl.fl4_dst = oldflp->fl4_dst;
2431 rth->fl.fl4_tos = tos;
2432 rth->fl.fl4_src = oldflp->fl4_src;
2433 rth->fl.oif = oldflp->oif;
Thomas Graf47dcf0c2006-11-09 15:20:38 -08002434 rth->fl.mark = oldflp->mark;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002435 rth->rt_dst = fl->fl4_dst;
2436 rth->rt_src = fl->fl4_src;
2437 rth->rt_iif = oldflp->oif ? : dev_out->ifindex;
YOSHIFUJI Hideakie905a9e2007-02-09 23:24:47 +09002438 /* get references to the devices that are to be hold by the routing
Linus Torvalds1da177e2005-04-16 15:20:36 -07002439 cache entry */
Changli Gaod8d1f302010-06-10 23:31:35 -07002440 rth->dst.dev = dev_out;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002441 dev_hold(dev_out);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002442 rth->rt_gateway = fl->fl4_dst;
2443 rth->rt_spec_dst= fl->fl4_src;
2444
Changli Gaod8d1f302010-06-10 23:31:35 -07002445 rth->dst.output=ip_output;
2446 rth->dst.obsolete = -1;
Denis V. Luneve84f84f2008-07-05 19:04:32 -07002447 rth->rt_genid = rt_genid(dev_net(dev_out));
Linus Torvalds1da177e2005-04-16 15:20:36 -07002448
2449 RT_CACHE_STAT_INC(out_slow_tot);
2450
2451 if (flags & RTCF_LOCAL) {
Changli Gaod8d1f302010-06-10 23:31:35 -07002452 rth->dst.input = ip_local_deliver;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002453 rth->rt_spec_dst = fl->fl4_dst;
2454 }
2455 if (flags & (RTCF_BROADCAST | RTCF_MULTICAST)) {
2456 rth->rt_spec_dst = fl->fl4_src;
YOSHIFUJI Hideakie905a9e2007-02-09 23:24:47 +09002457 if (flags & RTCF_LOCAL &&
Linus Torvalds1da177e2005-04-16 15:20:36 -07002458 !(dev_out->flags & IFF_LOOPBACK)) {
Changli Gaod8d1f302010-06-10 23:31:35 -07002459 rth->dst.output = ip_mc_output;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002460 RT_CACHE_STAT_INC(out_slow_mc);
2461 }
2462#ifdef CONFIG_IP_MROUTE
2463 if (res->type == RTN_MULTICAST) {
2464 if (IN_DEV_MFORWARD(in_dev) &&
Joe Perchesf97c1e02007-12-16 13:45:43 -08002465 !ipv4_is_local_multicast(oldflp->fl4_dst)) {
Changli Gaod8d1f302010-06-10 23:31:35 -07002466 rth->dst.input = ip_mr_input;
2467 rth->dst.output = ip_mc_output;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002468 }
2469 }
2470#endif
2471 }
2472
2473 rt_set_nexthop(rth, res, 0);
2474
2475 rth->rt_flags = flags;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002476 *result = rth;
Eric Dumazetdd28d1a2010-09-29 11:53:50 +00002477 return 0;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002478}
2479
Eric Dumazetebc0ffa2010-10-05 10:41:36 +00002480/* called with rcu_read_lock() */
Stephen Hemminger5969f712008-04-10 01:52:09 -07002481static int ip_mkroute_output(struct rtable **rp,
2482 struct fib_result *res,
2483 const struct flowi *fl,
2484 const struct flowi *oldflp,
2485 struct net_device *dev_out,
2486 unsigned flags)
Linus Torvalds1da177e2005-04-16 15:20:36 -07002487{
Chuck Short7abaa272005-06-22 22:10:23 -07002488 struct rtable *rth = NULL;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002489 int err = __mkroute_output(&rth, res, fl, oldflp, dev_out, flags);
2490 unsigned hash;
2491 if (err == 0) {
Denis V. Lunevb00180d2008-07-05 19:04:09 -07002492 hash = rt_hash(oldflp->fl4_dst, oldflp->fl4_src, oldflp->oif,
Denis V. Luneve84f84f2008-07-05 19:04:32 -07002493 rt_genid(dev_net(dev_out)));
Pavel Emelyanov6a2bad72010-03-24 21:51:22 +00002494 err = rt_intern_hash(hash, rth, rp, NULL, oldflp->oif);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002495 }
YOSHIFUJI Hideakie905a9e2007-02-09 23:24:47 +09002496
Linus Torvalds1da177e2005-04-16 15:20:36 -07002497 return err;
2498}
2499
Linus Torvalds1da177e2005-04-16 15:20:36 -07002500/*
2501 * Major route resolver routine.
Eric Dumazet0197aa32010-09-30 03:33:58 +00002502 * called with rcu_read_lock();
Linus Torvalds1da177e2005-04-16 15:20:36 -07002503 */
2504
Denis V. Lunevb40afd02008-01-22 22:06:19 -08002505static int ip_route_output_slow(struct net *net, struct rtable **rp,
2506 const struct flowi *oldflp)
Linus Torvalds1da177e2005-04-16 15:20:36 -07002507{
2508 u32 tos = RT_FL_TOS(oldflp);
2509 struct flowi fl = { .nl_u = { .ip4_u =
2510 { .daddr = oldflp->fl4_dst,
2511 .saddr = oldflp->fl4_src,
2512 .tos = tos & IPTOS_RT_MASK,
2513 .scope = ((tos & RTO_ONLINK) ?
2514 RT_SCOPE_LINK :
2515 RT_SCOPE_UNIVERSE),
Linus Torvalds1da177e2005-04-16 15:20:36 -07002516 } },
Thomas Graf47dcf0c2006-11-09 15:20:38 -08002517 .mark = oldflp->mark,
Denis V. Lunevb40afd02008-01-22 22:06:19 -08002518 .iif = net->loopback_dev->ifindex,
Linus Torvalds1da177e2005-04-16 15:20:36 -07002519 .oif = oldflp->oif };
2520 struct fib_result res;
Eric Dumazet0197aa32010-09-30 03:33:58 +00002521 unsigned int flags = 0;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002522 struct net_device *dev_out = NULL;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002523 int err;
2524
2525
2526 res.fi = NULL;
2527#ifdef CONFIG_IP_MULTIPLE_TABLES
2528 res.r = NULL;
2529#endif
2530
2531 if (oldflp->fl4_src) {
2532 err = -EINVAL;
Joe Perchesf97c1e02007-12-16 13:45:43 -08002533 if (ipv4_is_multicast(oldflp->fl4_src) ||
Jan Engelhardt1e637c72008-01-21 03:18:08 -08002534 ipv4_is_lbcast(oldflp->fl4_src) ||
Joe Perchesf97c1e02007-12-16 13:45:43 -08002535 ipv4_is_zeronet(oldflp->fl4_src))
Linus Torvalds1da177e2005-04-16 15:20:36 -07002536 goto out;
2537
Linus Torvalds1da177e2005-04-16 15:20:36 -07002538 /* I removed check for oif == dev_out->oif here.
2539 It was wrong for two reasons:
Denis V. Lunev1ab35272008-01-22 22:04:30 -08002540 1. ip_dev_find(net, saddr) can return wrong iface, if saddr
2541 is assigned to multiple interfaces.
Linus Torvalds1da177e2005-04-16 15:20:36 -07002542 2. Moreover, we are allowed to send packets with saddr
2543 of another iface. --ANK
2544 */
2545
Joe Perches9d4fb272009-11-23 10:41:23 -08002546 if (oldflp->oif == 0 &&
2547 (ipv4_is_multicast(oldflp->fl4_dst) ||
Andy Walls27a954b2010-10-17 15:11:22 +00002548 ipv4_is_lbcast(oldflp->fl4_dst))) {
Julian Anastasova210d012008-10-01 07:28:28 -07002549 /* It is equivalent to inet_addr_type(saddr) == RTN_LOCAL */
Eric Dumazet0197aa32010-09-30 03:33:58 +00002550 dev_out = __ip_dev_find(net, oldflp->fl4_src, false);
Julian Anastasova210d012008-10-01 07:28:28 -07002551 if (dev_out == NULL)
2552 goto out;
2553
Linus Torvalds1da177e2005-04-16 15:20:36 -07002554 /* Special hack: user can direct multicasts
2555 and limited broadcast via necessary interface
2556 without fiddling with IP_MULTICAST_IF or IP_PKTINFO.
2557 This hack is not just for fun, it allows
2558 vic,vat and friends to work.
2559 They bind socket to loopback, set ttl to zero
2560 and expect that it will work.
2561 From the viewpoint of routing cache they are broken,
2562 because we are not allowed to build multicast path
2563 with loopback source addr (look, routing cache
2564 cannot know, that ttl is zero, so that packet
2565 will not leave this host and route is valid).
2566 Luckily, this hack is good workaround.
2567 */
2568
2569 fl.oif = dev_out->ifindex;
2570 goto make_route;
2571 }
Julian Anastasova210d012008-10-01 07:28:28 -07002572
2573 if (!(oldflp->flags & FLOWI_FLAG_ANYSRC)) {
2574 /* It is equivalent to inet_addr_type(saddr) == RTN_LOCAL */
Eric Dumazet0197aa32010-09-30 03:33:58 +00002575 if (!__ip_dev_find(net, oldflp->fl4_src, false))
Julian Anastasova210d012008-10-01 07:28:28 -07002576 goto out;
Julian Anastasova210d012008-10-01 07:28:28 -07002577 }
Linus Torvalds1da177e2005-04-16 15:20:36 -07002578 }
2579
2580
2581 if (oldflp->oif) {
Eric Dumazet0197aa32010-09-30 03:33:58 +00002582 dev_out = dev_get_by_index_rcu(net, oldflp->oif);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002583 err = -ENODEV;
2584 if (dev_out == NULL)
2585 goto out;
Herbert Xue5ed6392005-10-03 14:35:55 -07002586
2587 /* RACE: Check return value of inet_select_addr instead. */
Eric Dumazetfc75fc82010-12-22 04:39:39 +00002588 if (!(dev_out->flags & IFF_UP) || !__in_dev_get_rcu(dev_out)) {
2589 err = -ENETUNREACH;
2590 goto out;
2591 }
Joe Perchesf97c1e02007-12-16 13:45:43 -08002592 if (ipv4_is_local_multicast(oldflp->fl4_dst) ||
Andy Walls27a954b2010-10-17 15:11:22 +00002593 ipv4_is_lbcast(oldflp->fl4_dst)) {
Linus Torvalds1da177e2005-04-16 15:20:36 -07002594 if (!fl.fl4_src)
2595 fl.fl4_src = inet_select_addr(dev_out, 0,
2596 RT_SCOPE_LINK);
2597 goto make_route;
2598 }
2599 if (!fl.fl4_src) {
Joe Perchesf97c1e02007-12-16 13:45:43 -08002600 if (ipv4_is_multicast(oldflp->fl4_dst))
Linus Torvalds1da177e2005-04-16 15:20:36 -07002601 fl.fl4_src = inet_select_addr(dev_out, 0,
2602 fl.fl4_scope);
2603 else if (!oldflp->fl4_dst)
2604 fl.fl4_src = inet_select_addr(dev_out, 0,
2605 RT_SCOPE_HOST);
2606 }
2607 }
2608
2609 if (!fl.fl4_dst) {
2610 fl.fl4_dst = fl.fl4_src;
2611 if (!fl.fl4_dst)
2612 fl.fl4_dst = fl.fl4_src = htonl(INADDR_LOOPBACK);
Denis V. Lunevb40afd02008-01-22 22:06:19 -08002613 dev_out = net->loopback_dev;
Denis V. Lunevb40afd02008-01-22 22:06:19 -08002614 fl.oif = net->loopback_dev->ifindex;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002615 res.type = RTN_LOCAL;
2616 flags |= RTCF_LOCAL;
2617 goto make_route;
2618 }
2619
Denis V. Lunevb40afd02008-01-22 22:06:19 -08002620 if (fib_lookup(net, &fl, &res)) {
Linus Torvalds1da177e2005-04-16 15:20:36 -07002621 res.fi = NULL;
2622 if (oldflp->oif) {
2623 /* Apparently, routing tables are wrong. Assume,
2624 that the destination is on link.
2625
2626 WHY? DW.
2627 Because we are allowed to send to iface
2628 even if it has NO routes and NO assigned
2629 addresses. When oif is specified, routing
2630 tables are looked up with only one purpose:
2631 to catch if destination is gatewayed, rather than
2632 direct. Moreover, if MSG_DONTROUTE is set,
2633 we send packet, ignoring both routing tables
2634 and ifaddr state. --ANK
2635
2636
2637 We could make it even if oif is unknown,
2638 likely IPv6, but we do not.
2639 */
2640
2641 if (fl.fl4_src == 0)
2642 fl.fl4_src = inet_select_addr(dev_out, 0,
2643 RT_SCOPE_LINK);
2644 res.type = RTN_UNICAST;
2645 goto make_route;
2646 }
Linus Torvalds1da177e2005-04-16 15:20:36 -07002647 err = -ENETUNREACH;
2648 goto out;
2649 }
Linus Torvalds1da177e2005-04-16 15:20:36 -07002650
2651 if (res.type == RTN_LOCAL) {
2652 if (!fl.fl4_src)
2653 fl.fl4_src = fl.fl4_dst;
Denis V. Lunevb40afd02008-01-22 22:06:19 -08002654 dev_out = net->loopback_dev;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002655 fl.oif = dev_out->ifindex;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002656 res.fi = NULL;
2657 flags |= RTCF_LOCAL;
2658 goto make_route;
2659 }
2660
2661#ifdef CONFIG_IP_ROUTE_MULTIPATH
2662 if (res.fi->fib_nhs > 1 && fl.oif == 0)
2663 fib_select_multipath(&fl, &res);
2664 else
2665#endif
2666 if (!res.prefixlen && res.type == RTN_UNICAST && !fl.oif)
Denis V. Lunevb40afd02008-01-22 22:06:19 -08002667 fib_select_default(net, &fl, &res);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002668
2669 if (!fl.fl4_src)
2670 fl.fl4_src = FIB_RES_PREFSRC(res);
2671
Linus Torvalds1da177e2005-04-16 15:20:36 -07002672 dev_out = FIB_RES_DEV(res);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002673 fl.oif = dev_out->ifindex;
2674
2675
2676make_route:
2677 err = ip_mkroute_output(rp, &res, &fl, oldflp, dev_out, flags);
2678
Linus Torvalds1da177e2005-04-16 15:20:36 -07002679out: return err;
2680}
2681
Denis V. Lunev611c1832008-01-22 22:06:48 -08002682int __ip_route_output_key(struct net *net, struct rtable **rp,
2683 const struct flowi *flp)
Linus Torvalds1da177e2005-04-16 15:20:36 -07002684{
Eric Dumazet0197aa32010-09-30 03:33:58 +00002685 unsigned int hash;
2686 int res;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002687 struct rtable *rth;
2688
Neil Horman1080d702008-10-27 12:28:25 -07002689 if (!rt_caching(net))
2690 goto slow_output;
2691
Denis V. Luneve84f84f2008-07-05 19:04:32 -07002692 hash = rt_hash(flp->fl4_dst, flp->fl4_src, flp->oif, rt_genid(net));
Linus Torvalds1da177e2005-04-16 15:20:36 -07002693
2694 rcu_read_lock_bh();
Paul E. McKenneya898def2010-02-22 17:04:49 -08002695 for (rth = rcu_dereference_bh(rt_hash_table[hash].chain); rth;
Changli Gaod8d1f302010-06-10 23:31:35 -07002696 rth = rcu_dereference_bh(rth->dst.rt_next)) {
Linus Torvalds1da177e2005-04-16 15:20:36 -07002697 if (rth->fl.fl4_dst == flp->fl4_dst &&
2698 rth->fl.fl4_src == flp->fl4_src &&
2699 rth->fl.iif == 0 &&
2700 rth->fl.oif == flp->oif &&
Thomas Graf47dcf0c2006-11-09 15:20:38 -08002701 rth->fl.mark == flp->mark &&
Linus Torvalds1da177e2005-04-16 15:20:36 -07002702 !((rth->fl.fl4_tos ^ flp->fl4_tos) &
Denis V. Lunevb5921912008-01-22 23:50:25 -08002703 (IPTOS_RT_MASK | RTO_ONLINK)) &&
Changli Gaod8d1f302010-06-10 23:31:35 -07002704 net_eq(dev_net(rth->dst.dev), net) &&
Denis V. Luneve84f84f2008-07-05 19:04:32 -07002705 !rt_is_expired(rth)) {
Changli Gaod8d1f302010-06-10 23:31:35 -07002706 dst_use(&rth->dst, jiffies);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002707 RT_CACHE_STAT_INC(out_hit);
2708 rcu_read_unlock_bh();
2709 *rp = rth;
2710 return 0;
2711 }
2712 RT_CACHE_STAT_INC(out_hlist_search);
2713 }
2714 rcu_read_unlock_bh();
2715
Neil Horman1080d702008-10-27 12:28:25 -07002716slow_output:
Eric Dumazet0197aa32010-09-30 03:33:58 +00002717 rcu_read_lock();
2718 res = ip_route_output_slow(net, rp, flp);
2719 rcu_read_unlock();
2720 return res;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002721}
Arnaldo Carvalho de Melod8c97a92005-08-09 20:12:12 -07002722EXPORT_SYMBOL_GPL(__ip_route_output_key);
2723
Jianzhao Wangae2688d2010-09-08 14:35:43 -07002724static struct dst_entry *ipv4_blackhole_dst_check(struct dst_entry *dst, u32 cookie)
2725{
2726 return NULL;
2727}
2728
David S. Miller14e50e52007-05-24 18:17:54 -07002729static void ipv4_rt_blackhole_update_pmtu(struct dst_entry *dst, u32 mtu)
2730{
2731}
2732
2733static struct dst_ops ipv4_dst_blackhole_ops = {
2734 .family = AF_INET,
Harvey Harrison09640e632009-02-01 00:45:17 -08002735 .protocol = cpu_to_be16(ETH_P_IP),
David S. Miller14e50e52007-05-24 18:17:54 -07002736 .destroy = ipv4_dst_destroy,
Jianzhao Wangae2688d2010-09-08 14:35:43 -07002737 .check = ipv4_blackhole_dst_check,
David S. Miller14e50e52007-05-24 18:17:54 -07002738 .update_pmtu = ipv4_rt_blackhole_update_pmtu,
David S. Miller14e50e52007-05-24 18:17:54 -07002739};
2740
2741
Denis V. Luneve84f84f2008-07-05 19:04:32 -07002742static int ipv4_dst_blackhole(struct net *net, struct rtable **rp, struct flowi *flp)
David S. Miller14e50e52007-05-24 18:17:54 -07002743{
2744 struct rtable *ort = *rp;
2745 struct rtable *rt = (struct rtable *)
2746 dst_alloc(&ipv4_dst_blackhole_ops);
2747
2748 if (rt) {
Changli Gaod8d1f302010-06-10 23:31:35 -07002749 struct dst_entry *new = &rt->dst;
David S. Miller14e50e52007-05-24 18:17:54 -07002750
2751 atomic_set(&new->__refcnt, 1);
2752 new->__use = 1;
Herbert Xu352e5122007-11-13 21:34:06 -08002753 new->input = dst_discard;
2754 new->output = dst_discard;
Changli Gaod8d1f302010-06-10 23:31:35 -07002755 memcpy(new->metrics, ort->dst.metrics, RTAX_MAX*sizeof(u32));
David S. Miller14e50e52007-05-24 18:17:54 -07002756
Changli Gaod8d1f302010-06-10 23:31:35 -07002757 new->dev = ort->dst.dev;
David S. Miller14e50e52007-05-24 18:17:54 -07002758 if (new->dev)
2759 dev_hold(new->dev);
2760
2761 rt->fl = ort->fl;
2762
2763 rt->idev = ort->idev;
2764 if (rt->idev)
2765 in_dev_hold(rt->idev);
Denis V. Luneve84f84f2008-07-05 19:04:32 -07002766 rt->rt_genid = rt_genid(net);
David S. Miller14e50e52007-05-24 18:17:54 -07002767 rt->rt_flags = ort->rt_flags;
2768 rt->rt_type = ort->rt_type;
2769 rt->rt_dst = ort->rt_dst;
2770 rt->rt_src = ort->rt_src;
2771 rt->rt_iif = ort->rt_iif;
2772 rt->rt_gateway = ort->rt_gateway;
2773 rt->rt_spec_dst = ort->rt_spec_dst;
2774 rt->peer = ort->peer;
2775 if (rt->peer)
2776 atomic_inc(&rt->peer->refcnt);
2777
2778 dst_free(new);
2779 }
2780
Changli Gaod8d1f302010-06-10 23:31:35 -07002781 dst_release(&(*rp)->dst);
David S. Miller14e50e52007-05-24 18:17:54 -07002782 *rp = rt;
Eric Dumazeta02cec22010-09-22 20:43:57 +00002783 return rt ? 0 : -ENOMEM;
David S. Miller14e50e52007-05-24 18:17:54 -07002784}
2785
Denis V. Lunevf1b050b2008-01-22 22:07:10 -08002786int ip_route_output_flow(struct net *net, struct rtable **rp, struct flowi *flp,
2787 struct sock *sk, int flags)
Linus Torvalds1da177e2005-04-16 15:20:36 -07002788{
2789 int err;
2790
Denis V. Lunevf1b050b2008-01-22 22:07:10 -08002791 if ((err = __ip_route_output_key(net, rp, flp)) != 0)
Linus Torvalds1da177e2005-04-16 15:20:36 -07002792 return err;
2793
2794 if (flp->proto) {
2795 if (!flp->fl4_src)
2796 flp->fl4_src = (*rp)->rt_src;
2797 if (!flp->fl4_dst)
2798 flp->fl4_dst = (*rp)->rt_dst;
Alexey Dobriyan52479b62008-11-25 17:35:18 -08002799 err = __xfrm_lookup(net, (struct dst_entry **)rp, flp, sk,
Herbert Xubb728452007-12-12 18:48:58 -08002800 flags ? XFRM_LOOKUP_WAIT : 0);
David S. Miller14e50e52007-05-24 18:17:54 -07002801 if (err == -EREMOTE)
Denis V. Luneve84f84f2008-07-05 19:04:32 -07002802 err = ipv4_dst_blackhole(net, rp, flp);
David S. Miller14e50e52007-05-24 18:17:54 -07002803
2804 return err;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002805 }
2806
2807 return 0;
2808}
Arnaldo Carvalho de Melod8c97a92005-08-09 20:12:12 -07002809EXPORT_SYMBOL_GPL(ip_route_output_flow);
2810
Denis V. Lunevf2063512008-01-22 22:07:34 -08002811int ip_route_output_key(struct net *net, struct rtable **rp, struct flowi *flp)
Linus Torvalds1da177e2005-04-16 15:20:36 -07002812{
Denis V. Lunevf2063512008-01-22 22:07:34 -08002813 return ip_route_output_flow(net, rp, flp, NULL, 0);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002814}
Eric Dumazet4bc2f182010-07-09 21:22:10 +00002815EXPORT_SYMBOL(ip_route_output_key);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002816
Benjamin Thery4feb88e2009-01-22 04:56:23 +00002817static int rt_fill_info(struct net *net,
2818 struct sk_buff *skb, u32 pid, u32 seq, int event,
Jamal Hadi Salimb6544c02005-06-18 22:54:12 -07002819 int nowait, unsigned int flags)
Linus Torvalds1da177e2005-04-16 15:20:36 -07002820{
Eric Dumazet511c3f92009-06-02 05:14:27 +00002821 struct rtable *rt = skb_rtable(skb);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002822 struct rtmsg *r;
Thomas Grafbe403ea2006-08-17 18:15:17 -07002823 struct nlmsghdr *nlh;
Thomas Grafe3703b32006-11-27 09:27:07 -08002824 long expires;
2825 u32 id = 0, ts = 0, tsage = 0, error;
Thomas Grafbe403ea2006-08-17 18:15:17 -07002826
2827 nlh = nlmsg_put(skb, pid, seq, event, sizeof(*r), flags);
2828 if (nlh == NULL)
Patrick McHardy26932562007-01-31 23:16:40 -08002829 return -EMSGSIZE;
Thomas Grafbe403ea2006-08-17 18:15:17 -07002830
2831 r = nlmsg_data(nlh);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002832 r->rtm_family = AF_INET;
2833 r->rtm_dst_len = 32;
2834 r->rtm_src_len = 0;
2835 r->rtm_tos = rt->fl.fl4_tos;
2836 r->rtm_table = RT_TABLE_MAIN;
Thomas Grafbe403ea2006-08-17 18:15:17 -07002837 NLA_PUT_U32(skb, RTA_TABLE, RT_TABLE_MAIN);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002838 r->rtm_type = rt->rt_type;
2839 r->rtm_scope = RT_SCOPE_UNIVERSE;
2840 r->rtm_protocol = RTPROT_UNSPEC;
2841 r->rtm_flags = (rt->rt_flags & ~0xFFFF) | RTM_F_CLONED;
2842 if (rt->rt_flags & RTCF_NOTIFY)
2843 r->rtm_flags |= RTM_F_NOTIFY;
Thomas Grafbe403ea2006-08-17 18:15:17 -07002844
Al Viro17fb2c62006-09-26 22:15:25 -07002845 NLA_PUT_BE32(skb, RTA_DST, rt->rt_dst);
Thomas Grafbe403ea2006-08-17 18:15:17 -07002846
Linus Torvalds1da177e2005-04-16 15:20:36 -07002847 if (rt->fl.fl4_src) {
2848 r->rtm_src_len = 32;
Al Viro17fb2c62006-09-26 22:15:25 -07002849 NLA_PUT_BE32(skb, RTA_SRC, rt->fl.fl4_src);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002850 }
Changli Gaod8d1f302010-06-10 23:31:35 -07002851 if (rt->dst.dev)
2852 NLA_PUT_U32(skb, RTA_OIF, rt->dst.dev->ifindex);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002853#ifdef CONFIG_NET_CLS_ROUTE
Changli Gaod8d1f302010-06-10 23:31:35 -07002854 if (rt->dst.tclassid)
2855 NLA_PUT_U32(skb, RTA_FLOW, rt->dst.tclassid);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002856#endif
Linus Torvalds1da177e2005-04-16 15:20:36 -07002857 if (rt->fl.iif)
Al Viro17fb2c62006-09-26 22:15:25 -07002858 NLA_PUT_BE32(skb, RTA_PREFSRC, rt->rt_spec_dst);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002859 else if (rt->rt_src != rt->fl.fl4_src)
Al Viro17fb2c62006-09-26 22:15:25 -07002860 NLA_PUT_BE32(skb, RTA_PREFSRC, rt->rt_src);
Thomas Grafbe403ea2006-08-17 18:15:17 -07002861
Linus Torvalds1da177e2005-04-16 15:20:36 -07002862 if (rt->rt_dst != rt->rt_gateway)
Al Viro17fb2c62006-09-26 22:15:25 -07002863 NLA_PUT_BE32(skb, RTA_GATEWAY, rt->rt_gateway);
Thomas Grafbe403ea2006-08-17 18:15:17 -07002864
Changli Gaod8d1f302010-06-10 23:31:35 -07002865 if (rtnetlink_put_metrics(skb, rt->dst.metrics) < 0)
Thomas Grafbe403ea2006-08-17 18:15:17 -07002866 goto nla_put_failure;
2867
Eric Dumazet963bfee2010-07-20 22:03:14 +00002868 if (rt->fl.mark)
2869 NLA_PUT_BE32(skb, RTA_MARK, rt->fl.mark);
2870
Changli Gaod8d1f302010-06-10 23:31:35 -07002871 error = rt->dst.error;
2872 expires = rt->dst.expires ? rt->dst.expires - jiffies : 0;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002873 if (rt->peer) {
Eric Dumazet317fe0e2010-06-16 04:52:13 +00002874 inet_peer_refcheck(rt->peer);
Eric Dumazet2c1409a2009-11-12 09:33:09 +00002875 id = atomic_read(&rt->peer->ip_id_count) & 0xffff;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002876 if (rt->peer->tcp_ts_stamp) {
Thomas Grafe3703b32006-11-27 09:27:07 -08002877 ts = rt->peer->tcp_ts;
James Morris9d729f72007-03-04 16:12:44 -08002878 tsage = get_seconds() - rt->peer->tcp_ts_stamp;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002879 }
2880 }
Thomas Grafbe403ea2006-08-17 18:15:17 -07002881
Linus Torvalds1da177e2005-04-16 15:20:36 -07002882 if (rt->fl.iif) {
2883#ifdef CONFIG_IP_MROUTE
Al Viroe4485152006-09-26 22:15:01 -07002884 __be32 dst = rt->rt_dst;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002885
Joe Perchesf97c1e02007-12-16 13:45:43 -08002886 if (ipv4_is_multicast(dst) && !ipv4_is_local_multicast(dst) &&
Benjamin Thery4feb88e2009-01-22 04:56:23 +00002887 IPV4_DEVCONF_ALL(net, MC_FORWARDING)) {
2888 int err = ipmr_get_route(net, skb, r, nowait);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002889 if (err <= 0) {
2890 if (!nowait) {
2891 if (err == 0)
2892 return 0;
Thomas Grafbe403ea2006-08-17 18:15:17 -07002893 goto nla_put_failure;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002894 } else {
2895 if (err == -EMSGSIZE)
Thomas Grafbe403ea2006-08-17 18:15:17 -07002896 goto nla_put_failure;
Thomas Grafe3703b32006-11-27 09:27:07 -08002897 error = err;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002898 }
2899 }
2900 } else
2901#endif
Thomas Grafbe403ea2006-08-17 18:15:17 -07002902 NLA_PUT_U32(skb, RTA_IIF, rt->fl.iif);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002903 }
2904
Changli Gaod8d1f302010-06-10 23:31:35 -07002905 if (rtnl_put_cacheinfo(skb, &rt->dst, id, ts, tsage,
Thomas Grafe3703b32006-11-27 09:27:07 -08002906 expires, error) < 0)
2907 goto nla_put_failure;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002908
Thomas Grafbe403ea2006-08-17 18:15:17 -07002909 return nlmsg_end(skb, nlh);
2910
2911nla_put_failure:
Patrick McHardy26932562007-01-31 23:16:40 -08002912 nlmsg_cancel(skb, nlh);
2913 return -EMSGSIZE;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002914}
2915
Thomas Graf63f34442007-03-22 11:55:17 -07002916static int inet_rtm_getroute(struct sk_buff *in_skb, struct nlmsghdr* nlh, void *arg)
Linus Torvalds1da177e2005-04-16 15:20:36 -07002917{
YOSHIFUJI Hideaki3b1e0a62008-03-26 02:26:21 +09002918 struct net *net = sock_net(in_skb->sk);
Thomas Grafd889ce32006-08-17 18:15:44 -07002919 struct rtmsg *rtm;
2920 struct nlattr *tb[RTA_MAX+1];
Linus Torvalds1da177e2005-04-16 15:20:36 -07002921 struct rtable *rt = NULL;
Al Viro9e12bb22006-09-26 21:25:20 -07002922 __be32 dst = 0;
2923 __be32 src = 0;
2924 u32 iif;
Thomas Grafd889ce32006-08-17 18:15:44 -07002925 int err;
Eric Dumazet963bfee2010-07-20 22:03:14 +00002926 int mark;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002927 struct sk_buff *skb;
2928
Thomas Grafd889ce32006-08-17 18:15:44 -07002929 err = nlmsg_parse(nlh, sizeof(*rtm), tb, RTA_MAX, rtm_ipv4_policy);
2930 if (err < 0)
2931 goto errout;
2932
2933 rtm = nlmsg_data(nlh);
2934
Linus Torvalds1da177e2005-04-16 15:20:36 -07002935 skb = alloc_skb(NLMSG_GOODSIZE, GFP_KERNEL);
Thomas Grafd889ce32006-08-17 18:15:44 -07002936 if (skb == NULL) {
2937 err = -ENOBUFS;
2938 goto errout;
2939 }
Linus Torvalds1da177e2005-04-16 15:20:36 -07002940
2941 /* Reserve room for dummy headers, this skb can pass
2942 through good chunk of routing engine.
2943 */
Arnaldo Carvalho de Melo459a98e2007-03-19 15:30:44 -07002944 skb_reset_mac_header(skb);
Arnaldo Carvalho de Meloc1d2bbe2007-04-10 20:45:18 -07002945 skb_reset_network_header(skb);
Stephen Hemmingerd2c962b2006-04-17 17:27:11 -07002946
2947 /* Bugfix: need to give ip_route_input enough of an IP header to not gag. */
Arnaldo Carvalho de Meloeddc9ec2007-04-20 22:47:35 -07002948 ip_hdr(skb)->protocol = IPPROTO_ICMP;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002949 skb_reserve(skb, MAX_HEADER + sizeof(struct iphdr));
2950
Al Viro17fb2c62006-09-26 22:15:25 -07002951 src = tb[RTA_SRC] ? nla_get_be32(tb[RTA_SRC]) : 0;
2952 dst = tb[RTA_DST] ? nla_get_be32(tb[RTA_DST]) : 0;
Thomas Grafd889ce32006-08-17 18:15:44 -07002953 iif = tb[RTA_IIF] ? nla_get_u32(tb[RTA_IIF]) : 0;
Eric Dumazet963bfee2010-07-20 22:03:14 +00002954 mark = tb[RTA_MARK] ? nla_get_u32(tb[RTA_MARK]) : 0;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002955
2956 if (iif) {
Thomas Grafd889ce32006-08-17 18:15:44 -07002957 struct net_device *dev;
2958
Denis V. Lunev19375042008-02-28 20:52:04 -08002959 dev = __dev_get_by_index(net, iif);
Thomas Grafd889ce32006-08-17 18:15:44 -07002960 if (dev == NULL) {
2961 err = -ENODEV;
2962 goto errout_free;
2963 }
2964
Linus Torvalds1da177e2005-04-16 15:20:36 -07002965 skb->protocol = htons(ETH_P_IP);
2966 skb->dev = dev;
Eric Dumazet963bfee2010-07-20 22:03:14 +00002967 skb->mark = mark;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002968 local_bh_disable();
2969 err = ip_route_input(skb, dst, src, rtm->rtm_tos, dev);
2970 local_bh_enable();
Thomas Grafd889ce32006-08-17 18:15:44 -07002971
Eric Dumazet511c3f92009-06-02 05:14:27 +00002972 rt = skb_rtable(skb);
Changli Gaod8d1f302010-06-10 23:31:35 -07002973 if (err == 0 && rt->dst.error)
2974 err = -rt->dst.error;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002975 } else {
Thomas Grafd889ce32006-08-17 18:15:44 -07002976 struct flowi fl = {
2977 .nl_u = {
2978 .ip4_u = {
2979 .daddr = dst,
2980 .saddr = src,
2981 .tos = rtm->rtm_tos,
2982 },
2983 },
2984 .oif = tb[RTA_OIF] ? nla_get_u32(tb[RTA_OIF]) : 0,
Eric Dumazet963bfee2010-07-20 22:03:14 +00002985 .mark = mark,
Thomas Grafd889ce32006-08-17 18:15:44 -07002986 };
Denis V. Lunev19375042008-02-28 20:52:04 -08002987 err = ip_route_output_key(net, &rt, &fl);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002988 }
Thomas Grafd889ce32006-08-17 18:15:44 -07002989
Linus Torvalds1da177e2005-04-16 15:20:36 -07002990 if (err)
Thomas Grafd889ce32006-08-17 18:15:44 -07002991 goto errout_free;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002992
Changli Gaod8d1f302010-06-10 23:31:35 -07002993 skb_dst_set(skb, &rt->dst);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002994 if (rtm->rtm_flags & RTM_F_NOTIFY)
2995 rt->rt_flags |= RTCF_NOTIFY;
2996
Benjamin Thery4feb88e2009-01-22 04:56:23 +00002997 err = rt_fill_info(net, skb, NETLINK_CB(in_skb).pid, nlh->nlmsg_seq,
Denis V. Lunev19375042008-02-28 20:52:04 -08002998 RTM_NEWROUTE, 0, 0);
Thomas Grafd889ce32006-08-17 18:15:44 -07002999 if (err <= 0)
3000 goto errout_free;
Linus Torvalds1da177e2005-04-16 15:20:36 -07003001
Denis V. Lunev19375042008-02-28 20:52:04 -08003002 err = rtnl_unicast(skb, net, NETLINK_CB(in_skb).pid);
Thomas Grafd889ce32006-08-17 18:15:44 -07003003errout:
Thomas Graf2942e902006-08-15 00:30:25 -07003004 return err;
Linus Torvalds1da177e2005-04-16 15:20:36 -07003005
Thomas Grafd889ce32006-08-17 18:15:44 -07003006errout_free:
Linus Torvalds1da177e2005-04-16 15:20:36 -07003007 kfree_skb(skb);
Thomas Grafd889ce32006-08-17 18:15:44 -07003008 goto errout;
Linus Torvalds1da177e2005-04-16 15:20:36 -07003009}
3010
3011int ip_rt_dump(struct sk_buff *skb, struct netlink_callback *cb)
3012{
3013 struct rtable *rt;
3014 int h, s_h;
3015 int idx, s_idx;
Denis V. Lunev19375042008-02-28 20:52:04 -08003016 struct net *net;
3017
YOSHIFUJI Hideaki3b1e0a62008-03-26 02:26:21 +09003018 net = sock_net(skb->sk);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003019
3020 s_h = cb->args[0];
Eric Dumazetd8c92832008-01-07 21:52:14 -08003021 if (s_h < 0)
3022 s_h = 0;
Linus Torvalds1da177e2005-04-16 15:20:36 -07003023 s_idx = idx = cb->args[1];
Eric Dumazeta6272662008-08-28 01:11:25 -07003024 for (h = s_h; h <= rt_hash_mask; h++, s_idx = 0) {
3025 if (!rt_hash_table[h].chain)
3026 continue;
Linus Torvalds1da177e2005-04-16 15:20:36 -07003027 rcu_read_lock_bh();
Paul E. McKenneya898def2010-02-22 17:04:49 -08003028 for (rt = rcu_dereference_bh(rt_hash_table[h].chain), idx = 0; rt;
Changli Gaod8d1f302010-06-10 23:31:35 -07003029 rt = rcu_dereference_bh(rt->dst.rt_next), idx++) {
3030 if (!net_eq(dev_net(rt->dst.dev), net) || idx < s_idx)
Linus Torvalds1da177e2005-04-16 15:20:36 -07003031 continue;
Denis V. Luneve84f84f2008-07-05 19:04:32 -07003032 if (rt_is_expired(rt))
Eric Dumazet29e75252008-01-31 17:05:09 -08003033 continue;
Changli Gaod8d1f302010-06-10 23:31:35 -07003034 skb_dst_set_noref(skb, &rt->dst);
Benjamin Thery4feb88e2009-01-22 04:56:23 +00003035 if (rt_fill_info(net, skb, NETLINK_CB(cb->skb).pid,
YOSHIFUJI Hideakie905a9e2007-02-09 23:24:47 +09003036 cb->nlh->nlmsg_seq, RTM_NEWROUTE,
Jamal Hadi Salimb6544c02005-06-18 22:54:12 -07003037 1, NLM_F_MULTI) <= 0) {
Eric Dumazetadf30902009-06-02 05:19:30 +00003038 skb_dst_drop(skb);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003039 rcu_read_unlock_bh();
3040 goto done;
3041 }
Eric Dumazetadf30902009-06-02 05:19:30 +00003042 skb_dst_drop(skb);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003043 }
3044 rcu_read_unlock_bh();
3045 }
3046
3047done:
3048 cb->args[0] = h;
3049 cb->args[1] = idx;
3050 return skb->len;
3051}
3052
3053void ip_rt_multicast_event(struct in_device *in_dev)
3054{
Denis V. Lunev76e6ebf2008-07-05 19:00:44 -07003055 rt_cache_flush(dev_net(in_dev->dev), 0);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003056}
3057
3058#ifdef CONFIG_SYSCTL
Denis V. Lunev81c684d2008-07-08 03:05:28 -07003059static int ipv4_sysctl_rtcache_flush(ctl_table *__ctl, int write,
Alexey Dobriyan8d65af72009-09-23 15:57:19 -07003060 void __user *buffer,
Linus Torvalds1da177e2005-04-16 15:20:36 -07003061 size_t *lenp, loff_t *ppos)
3062{
3063 if (write) {
Denis V. Lunev639e1042008-07-05 19:02:06 -07003064 int flush_delay;
Denis V. Lunev81c684d2008-07-08 03:05:28 -07003065 ctl_table ctl;
Denis V. Lunev39a23e72008-07-05 19:02:33 -07003066 struct net *net;
Denis V. Lunev639e1042008-07-05 19:02:06 -07003067
Denis V. Lunev81c684d2008-07-08 03:05:28 -07003068 memcpy(&ctl, __ctl, sizeof(ctl));
3069 ctl.data = &flush_delay;
Alexey Dobriyan8d65af72009-09-23 15:57:19 -07003070 proc_dointvec(&ctl, write, buffer, lenp, ppos);
Denis V. Lunev639e1042008-07-05 19:02:06 -07003071
Denis V. Lunev81c684d2008-07-08 03:05:28 -07003072 net = (struct net *)__ctl->extra1;
Denis V. Lunev39a23e72008-07-05 19:02:33 -07003073 rt_cache_flush(net, flush_delay);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003074 return 0;
YOSHIFUJI Hideakie905a9e2007-02-09 23:24:47 +09003075 }
Linus Torvalds1da177e2005-04-16 15:20:36 -07003076
3077 return -EINVAL;
3078}
3079
Al Viroeeb61f72008-07-27 08:59:33 +01003080static ctl_table ipv4_route_table[] = {
YOSHIFUJI Hideakie905a9e2007-02-09 23:24:47 +09003081 {
Linus Torvalds1da177e2005-04-16 15:20:36 -07003082 .procname = "gc_thresh",
3083 .data = &ipv4_dst_ops.gc_thresh,
3084 .maxlen = sizeof(int),
3085 .mode = 0644,
Alexey Dobriyan6d9f2392008-11-03 18:21:05 -08003086 .proc_handler = proc_dointvec,
Linus Torvalds1da177e2005-04-16 15:20:36 -07003087 },
3088 {
Linus Torvalds1da177e2005-04-16 15:20:36 -07003089 .procname = "max_size",
3090 .data = &ip_rt_max_size,
3091 .maxlen = sizeof(int),
3092 .mode = 0644,
Alexey Dobriyan6d9f2392008-11-03 18:21:05 -08003093 .proc_handler = proc_dointvec,
Linus Torvalds1da177e2005-04-16 15:20:36 -07003094 },
3095 {
3096 /* Deprecated. Use gc_min_interval_ms */
YOSHIFUJI Hideakie905a9e2007-02-09 23:24:47 +09003097
Linus Torvalds1da177e2005-04-16 15:20:36 -07003098 .procname = "gc_min_interval",
3099 .data = &ip_rt_gc_min_interval,
3100 .maxlen = sizeof(int),
3101 .mode = 0644,
Alexey Dobriyan6d9f2392008-11-03 18:21:05 -08003102 .proc_handler = proc_dointvec_jiffies,
Linus Torvalds1da177e2005-04-16 15:20:36 -07003103 },
3104 {
Linus Torvalds1da177e2005-04-16 15:20:36 -07003105 .procname = "gc_min_interval_ms",
3106 .data = &ip_rt_gc_min_interval,
3107 .maxlen = sizeof(int),
3108 .mode = 0644,
Alexey Dobriyan6d9f2392008-11-03 18:21:05 -08003109 .proc_handler = proc_dointvec_ms_jiffies,
Linus Torvalds1da177e2005-04-16 15:20:36 -07003110 },
3111 {
Linus Torvalds1da177e2005-04-16 15:20:36 -07003112 .procname = "gc_timeout",
3113 .data = &ip_rt_gc_timeout,
3114 .maxlen = sizeof(int),
3115 .mode = 0644,
Alexey Dobriyan6d9f2392008-11-03 18:21:05 -08003116 .proc_handler = proc_dointvec_jiffies,
Linus Torvalds1da177e2005-04-16 15:20:36 -07003117 },
3118 {
Linus Torvalds1da177e2005-04-16 15:20:36 -07003119 .procname = "gc_interval",
3120 .data = &ip_rt_gc_interval,
3121 .maxlen = sizeof(int),
3122 .mode = 0644,
Alexey Dobriyan6d9f2392008-11-03 18:21:05 -08003123 .proc_handler = proc_dointvec_jiffies,
Linus Torvalds1da177e2005-04-16 15:20:36 -07003124 },
3125 {
Linus Torvalds1da177e2005-04-16 15:20:36 -07003126 .procname = "redirect_load",
3127 .data = &ip_rt_redirect_load,
3128 .maxlen = sizeof(int),
3129 .mode = 0644,
Alexey Dobriyan6d9f2392008-11-03 18:21:05 -08003130 .proc_handler = proc_dointvec,
Linus Torvalds1da177e2005-04-16 15:20:36 -07003131 },
3132 {
Linus Torvalds1da177e2005-04-16 15:20:36 -07003133 .procname = "redirect_number",
3134 .data = &ip_rt_redirect_number,
3135 .maxlen = sizeof(int),
3136 .mode = 0644,
Alexey Dobriyan6d9f2392008-11-03 18:21:05 -08003137 .proc_handler = proc_dointvec,
Linus Torvalds1da177e2005-04-16 15:20:36 -07003138 },
3139 {
Linus Torvalds1da177e2005-04-16 15:20:36 -07003140 .procname = "redirect_silence",
3141 .data = &ip_rt_redirect_silence,
3142 .maxlen = sizeof(int),
3143 .mode = 0644,
Alexey Dobriyan6d9f2392008-11-03 18:21:05 -08003144 .proc_handler = proc_dointvec,
Linus Torvalds1da177e2005-04-16 15:20:36 -07003145 },
3146 {
Linus Torvalds1da177e2005-04-16 15:20:36 -07003147 .procname = "error_cost",
3148 .data = &ip_rt_error_cost,
3149 .maxlen = sizeof(int),
3150 .mode = 0644,
Alexey Dobriyan6d9f2392008-11-03 18:21:05 -08003151 .proc_handler = proc_dointvec,
Linus Torvalds1da177e2005-04-16 15:20:36 -07003152 },
3153 {
Linus Torvalds1da177e2005-04-16 15:20:36 -07003154 .procname = "error_burst",
3155 .data = &ip_rt_error_burst,
3156 .maxlen = sizeof(int),
3157 .mode = 0644,
Alexey Dobriyan6d9f2392008-11-03 18:21:05 -08003158 .proc_handler = proc_dointvec,
Linus Torvalds1da177e2005-04-16 15:20:36 -07003159 },
3160 {
Linus Torvalds1da177e2005-04-16 15:20:36 -07003161 .procname = "gc_elasticity",
3162 .data = &ip_rt_gc_elasticity,
3163 .maxlen = sizeof(int),
3164 .mode = 0644,
Alexey Dobriyan6d9f2392008-11-03 18:21:05 -08003165 .proc_handler = proc_dointvec,
Linus Torvalds1da177e2005-04-16 15:20:36 -07003166 },
3167 {
Linus Torvalds1da177e2005-04-16 15:20:36 -07003168 .procname = "mtu_expires",
3169 .data = &ip_rt_mtu_expires,
3170 .maxlen = sizeof(int),
3171 .mode = 0644,
Alexey Dobriyan6d9f2392008-11-03 18:21:05 -08003172 .proc_handler = proc_dointvec_jiffies,
Linus Torvalds1da177e2005-04-16 15:20:36 -07003173 },
3174 {
Linus Torvalds1da177e2005-04-16 15:20:36 -07003175 .procname = "min_pmtu",
3176 .data = &ip_rt_min_pmtu,
3177 .maxlen = sizeof(int),
3178 .mode = 0644,
Alexey Dobriyan6d9f2392008-11-03 18:21:05 -08003179 .proc_handler = proc_dointvec,
Linus Torvalds1da177e2005-04-16 15:20:36 -07003180 },
3181 {
Linus Torvalds1da177e2005-04-16 15:20:36 -07003182 .procname = "min_adv_mss",
3183 .data = &ip_rt_min_advmss,
3184 .maxlen = sizeof(int),
3185 .mode = 0644,
Alexey Dobriyan6d9f2392008-11-03 18:21:05 -08003186 .proc_handler = proc_dointvec,
Linus Torvalds1da177e2005-04-16 15:20:36 -07003187 },
Eric W. Biedermanf8572d82009-11-05 13:32:03 -08003188 { }
Linus Torvalds1da177e2005-04-16 15:20:36 -07003189};
Denis V. Lunev39a23e72008-07-05 19:02:33 -07003190
Al Viro2f4520d2008-08-25 15:17:44 -07003191static struct ctl_table empty[1];
3192
3193static struct ctl_table ipv4_skeleton[] =
3194{
Eric W. Biedermanf8572d82009-11-05 13:32:03 -08003195 { .procname = "route",
Hugh Dickinsd994af02008-08-27 02:35:18 -07003196 .mode = 0555, .child = ipv4_route_table},
Eric W. Biedermanf8572d82009-11-05 13:32:03 -08003197 { .procname = "neigh",
Hugh Dickinsd994af02008-08-27 02:35:18 -07003198 .mode = 0555, .child = empty},
Al Viro2f4520d2008-08-25 15:17:44 -07003199 { }
Denis V. Lunev39a23e72008-07-05 19:02:33 -07003200};
3201
Al Viro2f4520d2008-08-25 15:17:44 -07003202static __net_initdata struct ctl_path ipv4_path[] = {
Eric W. Biedermanf8572d82009-11-05 13:32:03 -08003203 { .procname = "net", },
3204 { .procname = "ipv4", },
Al Viro2f4520d2008-08-25 15:17:44 -07003205 { },
3206};
Denis V. Lunev39a23e72008-07-05 19:02:33 -07003207
3208static struct ctl_table ipv4_route_flush_table[] = {
3209 {
Denis V. Lunev39a23e72008-07-05 19:02:33 -07003210 .procname = "flush",
3211 .maxlen = sizeof(int),
3212 .mode = 0200,
Alexey Dobriyan6d9f2392008-11-03 18:21:05 -08003213 .proc_handler = ipv4_sysctl_rtcache_flush,
Denis V. Lunev39a23e72008-07-05 19:02:33 -07003214 },
Eric W. Biedermanf8572d82009-11-05 13:32:03 -08003215 { },
Denis V. Lunev39a23e72008-07-05 19:02:33 -07003216};
3217
Al Viro2f4520d2008-08-25 15:17:44 -07003218static __net_initdata struct ctl_path ipv4_route_path[] = {
Eric W. Biedermanf8572d82009-11-05 13:32:03 -08003219 { .procname = "net", },
3220 { .procname = "ipv4", },
3221 { .procname = "route", },
Al Viro2f4520d2008-08-25 15:17:44 -07003222 { },
3223};
3224
Denis V. Lunev39a23e72008-07-05 19:02:33 -07003225static __net_init int sysctl_route_net_init(struct net *net)
3226{
3227 struct ctl_table *tbl;
3228
3229 tbl = ipv4_route_flush_table;
Octavian Purdila09ad9bc2009-11-25 15:14:13 -08003230 if (!net_eq(net, &init_net)) {
Denis V. Lunev39a23e72008-07-05 19:02:33 -07003231 tbl = kmemdup(tbl, sizeof(ipv4_route_flush_table), GFP_KERNEL);
3232 if (tbl == NULL)
3233 goto err_dup;
3234 }
3235 tbl[0].extra1 = net;
3236
3237 net->ipv4.route_hdr =
3238 register_net_sysctl_table(net, ipv4_route_path, tbl);
3239 if (net->ipv4.route_hdr == NULL)
3240 goto err_reg;
3241 return 0;
3242
3243err_reg:
3244 if (tbl != ipv4_route_flush_table)
3245 kfree(tbl);
3246err_dup:
3247 return -ENOMEM;
3248}
3249
3250static __net_exit void sysctl_route_net_exit(struct net *net)
3251{
3252 struct ctl_table *tbl;
3253
3254 tbl = net->ipv4.route_hdr->ctl_table_arg;
3255 unregister_net_sysctl_table(net->ipv4.route_hdr);
3256 BUG_ON(tbl == ipv4_route_flush_table);
3257 kfree(tbl);
3258}
3259
3260static __net_initdata struct pernet_operations sysctl_route_ops = {
3261 .init = sysctl_route_net_init,
3262 .exit = sysctl_route_net_exit,
3263};
Linus Torvalds1da177e2005-04-16 15:20:36 -07003264#endif
3265
Neil Horman3ee94372010-05-08 01:57:52 -07003266static __net_init int rt_genid_init(struct net *net)
Denis V. Lunev9f5e97e2008-07-05 19:02:59 -07003267{
Neil Horman3ee94372010-05-08 01:57:52 -07003268 get_random_bytes(&net->ipv4.rt_genid,
3269 sizeof(net->ipv4.rt_genid));
Denis V. Lunev9f5e97e2008-07-05 19:02:59 -07003270 return 0;
3271}
3272
Neil Horman3ee94372010-05-08 01:57:52 -07003273static __net_initdata struct pernet_operations rt_genid_ops = {
3274 .init = rt_genid_init,
Denis V. Lunev9f5e97e2008-07-05 19:02:59 -07003275};
3276
3277
Linus Torvalds1da177e2005-04-16 15:20:36 -07003278#ifdef CONFIG_NET_CLS_ROUTE
Tejun Heo7d720c32010-02-16 15:20:26 +00003279struct ip_rt_acct __percpu *ip_rt_acct __read_mostly;
Linus Torvalds1da177e2005-04-16 15:20:36 -07003280#endif /* CONFIG_NET_CLS_ROUTE */
3281
3282static __initdata unsigned long rhash_entries;
3283static int __init set_rhash_entries(char *str)
3284{
3285 if (!str)
3286 return 0;
3287 rhash_entries = simple_strtoul(str, &str, 0);
3288 return 1;
3289}
3290__setup("rhash_entries=", set_rhash_entries);
3291
3292int __init ip_rt_init(void)
3293{
Eric Dumazet424c4b72005-07-05 14:58:19 -07003294 int rc = 0;
Linus Torvalds1da177e2005-04-16 15:20:36 -07003295
Linus Torvalds1da177e2005-04-16 15:20:36 -07003296#ifdef CONFIG_NET_CLS_ROUTE
Ingo Molnar0dcec8c2009-02-25 14:07:33 +01003297 ip_rt_acct = __alloc_percpu(256 * sizeof(struct ip_rt_acct), __alignof__(struct ip_rt_acct));
Linus Torvalds1da177e2005-04-16 15:20:36 -07003298 if (!ip_rt_acct)
3299 panic("IP: failed to allocate ip_rt_acct\n");
Linus Torvalds1da177e2005-04-16 15:20:36 -07003300#endif
3301
Alexey Dobriyane5d679f332006-08-26 19:25:52 -07003302 ipv4_dst_ops.kmem_cachep =
3303 kmem_cache_create("ip_dst_cache", sizeof(struct rtable), 0,
Paul Mundt20c2df82007-07-20 10:11:58 +09003304 SLAB_HWCACHE_ALIGN|SLAB_PANIC, NULL);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003305
David S. Miller14e50e52007-05-24 18:17:54 -07003306 ipv4_dst_blackhole_ops.kmem_cachep = ipv4_dst_ops.kmem_cachep;
3307
Eric Dumazetfc66f952010-10-08 06:37:34 +00003308 if (dst_entries_init(&ipv4_dst_ops) < 0)
3309 panic("IP: failed to allocate ipv4_dst_ops counter\n");
3310
3311 if (dst_entries_init(&ipv4_dst_blackhole_ops) < 0)
3312 panic("IP: failed to allocate ipv4_dst_blackhole_ops counter\n");
3313
Eric Dumazet424c4b72005-07-05 14:58:19 -07003314 rt_hash_table = (struct rt_hash_bucket *)
3315 alloc_large_system_hash("IP route cache",
3316 sizeof(struct rt_hash_bucket),
3317 rhash_entries,
Jan Beulich44813742009-09-21 17:03:05 -07003318 (totalram_pages >= 128 * 1024) ?
Mike Stroyan18955cf2005-11-29 16:12:55 -08003319 15 : 17,
Kirill Korotaev8d1502d2006-08-07 20:44:22 -07003320 0,
Eric Dumazet424c4b72005-07-05 14:58:19 -07003321 &rt_hash_log,
3322 &rt_hash_mask,
Anton Blanchardc9503e02009-04-27 05:42:24 -07003323 rhash_entries ? 0 : 512 * 1024);
Eric Dumazet22c047c2005-07-05 14:55:24 -07003324 memset(rt_hash_table, 0, (rt_hash_mask + 1) * sizeof(struct rt_hash_bucket));
3325 rt_hash_lock_init();
Linus Torvalds1da177e2005-04-16 15:20:36 -07003326
3327 ipv4_dst_ops.gc_thresh = (rt_hash_mask + 1);
3328 ip_rt_max_size = (rt_hash_mask + 1) * 16;
3329
Linus Torvalds1da177e2005-04-16 15:20:36 -07003330 devinet_init();
3331 ip_fib_init();
3332
Linus Torvalds1da177e2005-04-16 15:20:36 -07003333 /* All the timers, started at system startup tend
3334 to synchronize. Perturb it a bit.
3335 */
Eric Dumazet125bb8f2009-06-11 20:10:07 +00003336 INIT_DELAYED_WORK_DEFERRABLE(&expires_work, rt_worker_func);
3337 expires_ljiffies = jiffies;
Eric Dumazet39c90ec2007-09-15 10:55:54 -07003338 schedule_delayed_work(&expires_work,
3339 net_random() % ip_rt_gc_interval + ip_rt_gc_interval);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003340
Denis V. Lunev73b38712008-02-28 20:51:18 -08003341 if (ip_rt_proc_init())
Pavel Emelyanov107f1632007-12-05 21:14:28 -08003342 printk(KERN_ERR "Unable to create route proc files\n");
Linus Torvalds1da177e2005-04-16 15:20:36 -07003343#ifdef CONFIG_XFRM
3344 xfrm_init();
Neil Hormana33bc5c2009-07-30 18:52:15 -07003345 xfrm4_init(ip_rt_max_size);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003346#endif
Thomas Graf63f34442007-03-22 11:55:17 -07003347 rtnl_register(PF_INET, RTM_GETROUTE, inet_rtm_getroute, NULL);
3348
Denis V. Lunev39a23e72008-07-05 19:02:33 -07003349#ifdef CONFIG_SYSCTL
3350 register_pernet_subsys(&sysctl_route_ops);
3351#endif
Neil Horman3ee94372010-05-08 01:57:52 -07003352 register_pernet_subsys(&rt_genid_ops);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003353 return rc;
3354}
3355
Al Viroa1bc6eb2008-07-30 06:32:52 -04003356#ifdef CONFIG_SYSCTL
Al Viroeeb61f72008-07-27 08:59:33 +01003357/*
3358 * We really need to sanitize the damn ipv4 init order, then all
3359 * this nonsense will go away.
3360 */
3361void __init ip_static_sysctl_init(void)
3362{
Al Viro2f4520d2008-08-25 15:17:44 -07003363 register_sysctl_paths(ipv4_path, ipv4_skeleton);
Al Viroeeb61f72008-07-27 08:59:33 +01003364}
Al Viroa1bc6eb2008-07-30 06:32:52 -04003365#endif