blob: bae557ff2da8be6736e47477e0f482db794f85ce [file] [log] [blame]
Thomas Gleixner25763b32019-05-28 10:10:09 -07001/* SPDX-License-Identifier: GPL-2.0-only */
Alexei Starovoitov99c55f72014-09-26 00:16:57 -07002/* Copyright (c) 2011-2014 PLUMgrid, http://plumgrid.com
Alexei Starovoitov99c55f72014-09-26 00:16:57 -07003 */
4#ifndef _LINUX_BPF_H
5#define _LINUX_BPF_H 1
6
7#include <uapi/linux/bpf.h>
Daniel Borkmann74451e662017-02-16 22:24:50 +01008
Alexei Starovoitov99c55f72014-09-26 00:16:57 -07009#include <linux/workqueue.h>
Alexei Starovoitovdb20fd22014-09-26 00:16:59 -070010#include <linux/file.h>
Alexei Starovoitovb121d1e2016-03-07 21:57:13 -080011#include <linux/percpu.h>
Zi Shen Lim002245c2016-06-08 21:18:47 -070012#include <linux/err.h>
Daniel Borkmann74451e662017-02-16 22:24:50 +010013#include <linux/rbtree_latch.h>
David S. Millerd6e1e462017-08-19 23:34:03 -070014#include <linux/numa.h>
Andrii Nakryikofc970222019-11-17 09:28:04 -080015#include <linux/mm_types.h>
Jakub Kicinskiab3f0062017-11-03 13:56:17 -070016#include <linux/wait.h>
Alexei Starovoitov492ecee2019-02-25 14:28:39 -080017#include <linux/u64_stats_sync.h>
Alexei Starovoitovfec56f52019-11-14 10:57:04 -080018#include <linux/refcount.h>
19#include <linux/mutex.h>
Martin KaFai Lau85d33df2020-01-08 16:35:05 -080020#include <linux/module.h>
Jiri Olsabfea9a82020-03-12 20:55:59 +010021#include <linux/kallsyms.h>
Alexei Starovoitov2c78ee82020-05-13 16:03:54 -070022#include <linux/capability.h>
Alexei Starovoitov99c55f72014-09-26 00:16:57 -070023
Jakub Kicinskicae19272017-12-27 18:39:05 -080024struct bpf_verifier_env;
Alexei Starovoitov9e15db62019-10-15 20:25:00 -070025struct bpf_verifier_log;
Daniel Borkmann3b1efb12016-06-15 22:47:14 +020026struct perf_event;
John Fastabend174a79f2017-08-15 22:32:47 -070027struct bpf_prog;
Daniel Borkmannda765a22019-11-22 21:07:58 +010028struct bpf_prog_aux;
Alexei Starovoitov99c55f72014-09-26 00:16:57 -070029struct bpf_map;
John Fastabend4f738ad2018-03-18 12:57:10 -070030struct sock;
Martin KaFai Laua26ca7c2018-04-18 15:56:03 -070031struct seq_file;
Roman Gushchin1b2b2342018-12-10 15:43:00 -080032struct btf;
Daniel Borkmanne8d2bec2018-08-12 01:59:17 +020033struct btf_type;
Alexei Starovoitov3dec5412019-10-15 20:25:03 -070034struct exception_table_entry;
Yonghong Songae243452020-05-09 10:58:59 -070035struct seq_operations;
Alexei Starovoitov99c55f72014-09-26 00:16:57 -070036
Quentin Monnet1b9ed842019-08-20 10:31:50 +010037extern struct idr btf_idr;
38extern spinlock_t btf_idr_lock;
39
Alexei Starovoitov99c55f72014-09-26 00:16:57 -070040/* map is generic key/value storage optionally accesible by eBPF programs */
41struct bpf_map_ops {
42 /* funcs callable from userspace (via syscall) */
Jakub Kicinski1110f3a2018-01-11 20:29:03 -080043 int (*map_alloc_check)(union bpf_attr *attr);
Alexei Starovoitov99c55f72014-09-26 00:16:57 -070044 struct bpf_map *(*map_alloc)(union bpf_attr *attr);
Daniel Borkmann61d1b6a2016-06-15 22:47:12 +020045 void (*map_release)(struct bpf_map *map, struct file *map_file);
46 void (*map_free)(struct bpf_map *map);
Alexei Starovoitovdb20fd22014-09-26 00:16:59 -070047 int (*map_get_next_key)(struct bpf_map *map, void *key, void *next_key);
John Fastabendba6b8de2018-04-23 15:39:23 -070048 void (*map_release_uref)(struct bpf_map *map);
Daniel Borkmannc6110222019-05-14 01:18:55 +020049 void *(*map_lookup_elem_sys_only)(struct bpf_map *map, void *key);
Brian Vazquezcb4d03a2020-01-15 10:43:01 -080050 int (*map_lookup_batch)(struct bpf_map *map, const union bpf_attr *attr,
51 union bpf_attr __user *uattr);
Yonghong Song05799632020-01-15 10:43:04 -080052 int (*map_lookup_and_delete_batch)(struct bpf_map *map,
53 const union bpf_attr *attr,
54 union bpf_attr __user *uattr);
Brian Vazquezaa2e93b2020-01-15 10:43:02 -080055 int (*map_update_batch)(struct bpf_map *map, const union bpf_attr *attr,
56 union bpf_attr __user *uattr);
57 int (*map_delete_batch)(struct bpf_map *map, const union bpf_attr *attr,
58 union bpf_attr __user *uattr);
Alexei Starovoitovdb20fd22014-09-26 00:16:59 -070059
60 /* funcs callable from userspace and from eBPF programs */
61 void *(*map_lookup_elem)(struct bpf_map *map, void *key);
Alexei Starovoitov3274f522014-11-13 17:36:44 -080062 int (*map_update_elem)(struct bpf_map *map, void *key, void *value, u64 flags);
Alexei Starovoitovdb20fd22014-09-26 00:16:59 -070063 int (*map_delete_elem)(struct bpf_map *map, void *key);
Mauricio Vasquez Bf1a2e442018-10-18 15:16:25 +020064 int (*map_push_elem)(struct bpf_map *map, void *value, u64 flags);
65 int (*map_pop_elem)(struct bpf_map *map, void *value);
66 int (*map_peek_elem)(struct bpf_map *map, void *value);
Wang Nan2a36f0b2015-08-06 07:02:33 +000067
68 /* funcs called by prog_array and perf_event_array map */
Daniel Borkmannd056a782016-06-15 22:47:13 +020069 void *(*map_fd_get_ptr)(struct bpf_map *map, struct file *map_file,
70 int fd);
71 void (*map_fd_put_ptr)(void *ptr);
Alexei Starovoitov81ed18a2017-03-15 18:26:42 -070072 u32 (*map_gen_lookup)(struct bpf_map *map, struct bpf_insn *insn_buf);
Martin KaFai Lau14dc6f02017-06-27 23:08:34 -070073 u32 (*map_fd_sys_lookup_elem)(void *ptr);
Martin KaFai Laua26ca7c2018-04-18 15:56:03 -070074 void (*map_seq_show_elem)(struct bpf_map *map, void *key,
75 struct seq_file *m);
Daniel Borkmanne8d2bec2018-08-12 01:59:17 +020076 int (*map_check_btf)(const struct bpf_map *map,
Roman Gushchin1b2b2342018-12-10 15:43:00 -080077 const struct btf *btf,
Daniel Borkmanne8d2bec2018-08-12 01:59:17 +020078 const struct btf_type *key_type,
79 const struct btf_type *value_type);
Daniel Borkmannd8eca5b2019-04-09 23:20:03 +020080
Daniel Borkmannda765a22019-11-22 21:07:58 +010081 /* Prog poke tracking helpers. */
82 int (*map_poke_track)(struct bpf_map *map, struct bpf_prog_aux *aux);
83 void (*map_poke_untrack)(struct bpf_map *map, struct bpf_prog_aux *aux);
84 void (*map_poke_run)(struct bpf_map *map, u32 key, struct bpf_prog *old,
85 struct bpf_prog *new);
86
Daniel Borkmannd8eca5b2019-04-09 23:20:03 +020087 /* Direct value access helpers. */
88 int (*map_direct_value_addr)(const struct bpf_map *map,
89 u64 *imm, u32 off);
90 int (*map_direct_value_meta)(const struct bpf_map *map,
91 u64 imm, u32 *off);
Andrii Nakryikofc970222019-11-17 09:28:04 -080092 int (*map_mmap)(struct bpf_map *map, struct vm_area_struct *vma);
Andrii Nakryiko457f4432020-05-29 00:54:20 -070093 __poll_t (*map_poll)(struct bpf_map *map, struct file *filp,
94 struct poll_table_struct *pts);
Andrey Ignatov41c48f32020-06-19 14:11:43 -070095
96 /* BTF name and id of struct allocated by map_alloc */
97 const char * const map_btf_name;
98 int *map_btf_id;
Alexei Starovoitov99c55f72014-09-26 00:16:57 -070099};
100
Roman Gushchin3539b962019-05-29 18:03:57 -0700101struct bpf_map_memory {
102 u32 pages;
103 struct user_struct *user;
104};
105
Alexei Starovoitov99c55f72014-09-26 00:16:57 -0700106struct bpf_map {
Martin KaFai Laua26ca7c2018-04-18 15:56:03 -0700107 /* The first two cachelines with read-mostly members of which some
Daniel Borkmannbe95a842018-01-09 13:17:44 +0100108 * are also accessed in fast-path (e.g. ops, max_entries).
109 */
110 const struct bpf_map_ops *ops ____cacheline_aligned;
111 struct bpf_map *inner_map_meta;
112#ifdef CONFIG_SECURITY
113 void *security;
114#endif
Alexei Starovoitov99c55f72014-09-26 00:16:57 -0700115 enum bpf_map_type map_type;
116 u32 key_size;
117 u32 value_size;
118 u32 max_entries;
Alexei Starovoitov6c905982016-03-07 21:57:15 -0800119 u32 map_flags;
Alexei Starovoitovd83525c2019-01-31 15:40:04 -0800120 int spin_lock_off; /* >=0 valid offset, <0 error */
Martin KaFai Lauf3f1c052017-06-05 12:15:47 -0700121 u32 id;
Martin KaFai Lau96eabe72017-08-18 11:28:00 -0700122 int numa_node;
Martin KaFai Lau9b2cf322018-05-22 14:57:21 -0700123 u32 btf_key_type_id;
124 u32 btf_value_type_id;
Martin KaFai Laua26ca7c2018-04-18 15:56:03 -0700125 struct btf *btf;
Roman Gushchin3539b962019-05-29 18:03:57 -0700126 struct bpf_map_memory memory;
Andrii Nakryikofc970222019-11-17 09:28:04 -0800127 char name[BPF_OBJ_NAME_LEN];
Martin KaFai Lau85d33df2020-01-08 16:35:05 -0800128 u32 btf_vmlinux_value_type_id;
Alexei Starovoitov2c78ee82020-05-13 16:03:54 -0700129 bool bypass_spec_v1;
Andrii Nakryikofc970222019-11-17 09:28:04 -0800130 bool frozen; /* write-once; write-protected by freeze_mutex */
131 /* 22 bytes hole */
Daniel Borkmannbe95a842018-01-09 13:17:44 +0100132
Martin KaFai Laua26ca7c2018-04-18 15:56:03 -0700133 /* The 3rd and 4th cacheline with misc members to avoid false sharing
Daniel Borkmannbe95a842018-01-09 13:17:44 +0100134 * particularly with refcounting.
135 */
Andrii Nakryiko1e0bd5a2019-11-17 09:28:02 -0800136 atomic64_t refcnt ____cacheline_aligned;
137 atomic64_t usercnt;
Daniel Borkmannbe95a842018-01-09 13:17:44 +0100138 struct work_struct work;
Andrii Nakryikofc970222019-11-17 09:28:04 -0800139 struct mutex freeze_mutex;
140 u64 writecnt; /* writable mmap cnt; protected by freeze_mutex */
Alexei Starovoitov99c55f72014-09-26 00:16:57 -0700141};
142
Alexei Starovoitovd83525c2019-01-31 15:40:04 -0800143static inline bool map_value_has_spin_lock(const struct bpf_map *map)
144{
145 return map->spin_lock_off >= 0;
146}
147
148static inline void check_and_init_map_lock(struct bpf_map *map, void *dst)
149{
150 if (likely(!map_value_has_spin_lock(map)))
151 return;
152 *(struct bpf_spin_lock *)(dst + map->spin_lock_off) =
153 (struct bpf_spin_lock){};
154}
155
156/* copy everything but bpf_spin_lock */
157static inline void copy_map_value(struct bpf_map *map, void *dst, void *src)
158{
159 if (unlikely(map_value_has_spin_lock(map))) {
160 u32 off = map->spin_lock_off;
161
162 memcpy(dst, src, off);
163 memcpy(dst + off + sizeof(struct bpf_spin_lock),
164 src + off + sizeof(struct bpf_spin_lock),
165 map->value_size - off - sizeof(struct bpf_spin_lock));
166 } else {
167 memcpy(dst, src, map->value_size);
168 }
169}
Alexei Starovoitov96049f32019-01-31 15:40:09 -0800170void copy_map_value_locked(struct bpf_map *map, void *dst, void *src,
171 bool lock_src);
Martin KaFai Lau8e7ae252020-03-13 18:02:09 -0700172int bpf_obj_name_cpy(char *dst, const char *src, unsigned int size);
Alexei Starovoitovd83525c2019-01-31 15:40:04 -0800173
Jakub Kicinski602144c2018-07-17 10:53:25 -0700174struct bpf_offload_dev;
Jakub Kicinskia3884572018-01-11 20:29:09 -0800175struct bpf_offloaded_map;
176
177struct bpf_map_dev_ops {
178 int (*map_get_next_key)(struct bpf_offloaded_map *map,
179 void *key, void *next_key);
180 int (*map_lookup_elem)(struct bpf_offloaded_map *map,
181 void *key, void *value);
182 int (*map_update_elem)(struct bpf_offloaded_map *map,
183 void *key, void *value, u64 flags);
184 int (*map_delete_elem)(struct bpf_offloaded_map *map, void *key);
185};
186
187struct bpf_offloaded_map {
188 struct bpf_map map;
189 struct net_device *netdev;
190 const struct bpf_map_dev_ops *dev_ops;
191 void *dev_priv;
192 struct list_head offloads;
193};
194
195static inline struct bpf_offloaded_map *map_to_offmap(struct bpf_map *map)
196{
197 return container_of(map, struct bpf_offloaded_map, map);
198}
199
Jakub Kicinski0cd3cbe2018-05-03 18:37:08 -0700200static inline bool bpf_map_offload_neutral(const struct bpf_map *map)
201{
202 return map->map_type == BPF_MAP_TYPE_PERF_EVENT_ARRAY;
203}
204
Martin KaFai Laua26ca7c2018-04-18 15:56:03 -0700205static inline bool bpf_map_support_seq_show(const struct bpf_map *map)
206{
Martin KaFai Lau85d33df2020-01-08 16:35:05 -0800207 return (map->btf_value_type_id || map->btf_vmlinux_value_type_id) &&
208 map->ops->map_seq_show_elem;
Martin KaFai Laua26ca7c2018-04-18 15:56:03 -0700209}
210
Daniel Borkmanne8d2bec2018-08-12 01:59:17 +0200211int map_check_no_btf(const struct bpf_map *map,
Roman Gushchin1b2b2342018-12-10 15:43:00 -0800212 const struct btf *btf,
Daniel Borkmanne8d2bec2018-08-12 01:59:17 +0200213 const struct btf_type *key_type,
214 const struct btf_type *value_type);
215
Jakub Kicinskia3884572018-01-11 20:29:09 -0800216extern const struct bpf_map_ops bpf_map_offload_ops;
217
Alexei Starovoitov17a52672014-09-26 00:17:06 -0700218/* function argument constraints */
219enum bpf_arg_type {
Daniel Borkmann80f1d682015-03-12 17:21:42 +0100220 ARG_DONTCARE = 0, /* unused argument in helper function */
Alexei Starovoitov17a52672014-09-26 00:17:06 -0700221
222 /* the following constraints used to prototype
223 * bpf_map_lookup/update/delete_elem() functions
224 */
225 ARG_CONST_MAP_PTR, /* const argument used as pointer to bpf_map */
226 ARG_PTR_TO_MAP_KEY, /* pointer to stack used as map key */
227 ARG_PTR_TO_MAP_VALUE, /* pointer to stack used as map value */
Mauricio Vasquez B2ea864c2018-10-18 15:16:20 +0200228 ARG_PTR_TO_UNINIT_MAP_VALUE, /* pointer to valid memory used to store a map value */
Martin KaFai Lau6ac99e82019-04-26 16:39:39 -0700229 ARG_PTR_TO_MAP_VALUE_OR_NULL, /* pointer to stack used as map value or NULL */
Alexei Starovoitov17a52672014-09-26 00:17:06 -0700230
231 /* the following constraints used to prototype bpf_memcmp() and other
232 * functions that access data on eBPF program stack
233 */
Alexei Starovoitov39f19ebb2017-01-09 10:19:50 -0800234 ARG_PTR_TO_MEM, /* pointer to valid memory (stack, packet, map value) */
Gianluca Borellodb1ac492017-11-22 18:32:53 +0000235 ARG_PTR_TO_MEM_OR_NULL, /* pointer to valid memory or NULL */
Alexei Starovoitov39f19ebb2017-01-09 10:19:50 -0800236 ARG_PTR_TO_UNINIT_MEM, /* pointer to memory does not need to be initialized,
237 * helper function must fill all bytes or clear
238 * them in error case.
Daniel Borkmann435faee12016-04-13 00:10:51 +0200239 */
240
Alexei Starovoitov39f19ebb2017-01-09 10:19:50 -0800241 ARG_CONST_SIZE, /* number of bytes accessed from memory */
242 ARG_CONST_SIZE_OR_ZERO, /* number of bytes accessed from memory or 0 */
Daniel Borkmann80f1d682015-03-12 17:21:42 +0100243
Alexei Starovoitov608cd712015-03-26 19:53:57 -0700244 ARG_PTR_TO_CTX, /* pointer to context */
Daniel Borkmannf3189032020-03-27 16:58:52 +0100245 ARG_PTR_TO_CTX_OR_NULL, /* pointer to context or NULL */
Daniel Borkmann80f1d682015-03-12 17:21:42 +0100246 ARG_ANYTHING, /* any (initialized) argument is ok */
Alexei Starovoitovd83525c2019-01-31 15:40:04 -0800247 ARG_PTR_TO_SPIN_LOCK, /* pointer to bpf_spin_lock */
Martin KaFai Lau46f8bc92019-02-09 23:22:20 -0800248 ARG_PTR_TO_SOCK_COMMON, /* pointer to sock_common */
Andrey Ignatov57c3bb72019-03-18 16:57:10 -0700249 ARG_PTR_TO_INT, /* pointer to int */
250 ARG_PTR_TO_LONG, /* pointer to long */
Martin KaFai Lau6ac99e82019-04-26 16:39:39 -0700251 ARG_PTR_TO_SOCKET, /* pointer to bpf_sock (fullsock) */
Jakub Sitnickie9ddbb72020-07-17 12:35:23 +0200252 ARG_PTR_TO_SOCKET_OR_NULL, /* pointer to bpf_sock (fullsock) or NULL */
Alexei Starovoitova7658e12019-10-15 20:25:04 -0700253 ARG_PTR_TO_BTF_ID, /* pointer to in-kernel struct */
Andrii Nakryiko457f4432020-05-29 00:54:20 -0700254 ARG_PTR_TO_ALLOC_MEM, /* pointer to dynamically allocated memory */
255 ARG_PTR_TO_ALLOC_MEM_OR_NULL, /* pointer to dynamically allocated memory or NULL */
256 ARG_CONST_ALLOC_SIZE_OR_ZERO, /* number of allocated bytes requested */
Alexei Starovoitov17a52672014-09-26 00:17:06 -0700257};
258
259/* type of values returned from helper functions */
260enum bpf_return_type {
261 RET_INTEGER, /* function returns integer */
262 RET_VOID, /* function doesn't return anything */
Roman Gushchin3e6a4b32018-08-02 14:27:22 -0700263 RET_PTR_TO_MAP_VALUE, /* returns a pointer to map elem value */
Alexei Starovoitov17a52672014-09-26 00:17:06 -0700264 RET_PTR_TO_MAP_VALUE_OR_NULL, /* returns a pointer to map elem value or NULL */
Joe Stringerc64b7982018-10-02 13:35:33 -0700265 RET_PTR_TO_SOCKET_OR_NULL, /* returns a pointer to a socket or NULL */
Martin KaFai Lau655a51e2019-02-09 23:22:24 -0800266 RET_PTR_TO_TCP_SOCK_OR_NULL, /* returns a pointer to a tcp_sock or NULL */
Lorenz Bauer85a51f82019-03-22 09:54:00 +0800267 RET_PTR_TO_SOCK_COMMON_OR_NULL, /* returns a pointer to a sock_common or NULL */
Andrii Nakryiko457f4432020-05-29 00:54:20 -0700268 RET_PTR_TO_ALLOC_MEM_OR_NULL, /* returns a pointer to dynamically allocated memory or NULL */
Yonghong Songaf7ec132020-06-23 16:08:09 -0700269 RET_PTR_TO_BTF_ID_OR_NULL, /* returns a pointer to a btf_id or NULL */
Alexei Starovoitov17a52672014-09-26 00:17:06 -0700270};
271
Alexei Starovoitov09756af2014-09-26 00:17:00 -0700272/* eBPF function prototype used by verifier to allow BPF_CALLs from eBPF programs
273 * to in-kernel helper functions and for adjusting imm32 field in BPF_CALL
274 * instructions after verifying
275 */
276struct bpf_func_proto {
277 u64 (*func)(u64 r1, u64 r2, u64 r3, u64 r4, u64 r5);
278 bool gpl_only;
Daniel Borkmann36bbef52016-09-20 00:26:13 +0200279 bool pkt_access;
Alexei Starovoitov17a52672014-09-26 00:17:06 -0700280 enum bpf_return_type ret_type;
Alexei Starovoitova7658e12019-10-15 20:25:04 -0700281 union {
282 struct {
283 enum bpf_arg_type arg1_type;
284 enum bpf_arg_type arg2_type;
285 enum bpf_arg_type arg3_type;
286 enum bpf_arg_type arg4_type;
287 enum bpf_arg_type arg5_type;
288 };
289 enum bpf_arg_type arg_type[5];
290 };
Alexei Starovoitov9cc31b32019-11-14 10:57:14 -0800291 int *btf_id; /* BTF ids of arguments */
Yonghong Songaf7ec132020-06-23 16:08:09 -0700292 bool (*check_btf_id)(u32 btf_id, u32 arg); /* if the argument btf_id is
293 * valid. Often used if more
294 * than one btf id is permitted
295 * for this argument.
296 */
297 int *ret_btf_id; /* return value btf_id */
Alexei Starovoitov17a52672014-09-26 00:17:06 -0700298};
299
300/* bpf_context is intentionally undefined structure. Pointer to bpf_context is
301 * the first argument to eBPF programs.
302 * For socket filters: 'struct bpf_context *' == 'struct sk_buff *'
303 */
304struct bpf_context;
305
306enum bpf_access_type {
307 BPF_READ = 1,
308 BPF_WRITE = 2
Alexei Starovoitov09756af2014-09-26 00:17:00 -0700309};
310
Alexei Starovoitov19de99f2016-06-15 18:25:38 -0700311/* types of values stored in eBPF registers */
Edward Creef1174f72017-08-07 15:26:19 +0100312/* Pointer types represent:
313 * pointer
314 * pointer + imm
315 * pointer + (u16) var
316 * pointer + (u16) var + imm
317 * if (range > 0) then [ptr, ptr + range - off) is safe to access
318 * if (id > 0) means that some 'var' was added
319 * if (off > 0) means that 'imm' was added
320 */
Alexei Starovoitov19de99f2016-06-15 18:25:38 -0700321enum bpf_reg_type {
322 NOT_INIT = 0, /* nothing was written into register */
Edward Creef1174f72017-08-07 15:26:19 +0100323 SCALAR_VALUE, /* reg doesn't contain a valid pointer */
Alexei Starovoitov19de99f2016-06-15 18:25:38 -0700324 PTR_TO_CTX, /* reg points to bpf_context */
325 CONST_PTR_TO_MAP, /* reg points to struct bpf_map */
326 PTR_TO_MAP_VALUE, /* reg points to map element value */
327 PTR_TO_MAP_VALUE_OR_NULL,/* points to map elem value or NULL */
Edward Creef1174f72017-08-07 15:26:19 +0100328 PTR_TO_STACK, /* reg == frame_pointer + offset */
Daniel Borkmannde8f3a82017-09-25 02:25:51 +0200329 PTR_TO_PACKET_META, /* skb->data - meta_len */
Edward Creef1174f72017-08-07 15:26:19 +0100330 PTR_TO_PACKET, /* reg points to skb->data */
Alexei Starovoitov19de99f2016-06-15 18:25:38 -0700331 PTR_TO_PACKET_END, /* skb->data + headlen */
Petar Penkovd58e4682018-09-14 07:46:18 -0700332 PTR_TO_FLOW_KEYS, /* reg points to bpf_flow_keys */
Joe Stringerc64b7982018-10-02 13:35:33 -0700333 PTR_TO_SOCKET, /* reg points to struct bpf_sock */
334 PTR_TO_SOCKET_OR_NULL, /* reg points to struct bpf_sock or NULL */
Martin KaFai Lau46f8bc92019-02-09 23:22:20 -0800335 PTR_TO_SOCK_COMMON, /* reg points to sock_common */
336 PTR_TO_SOCK_COMMON_OR_NULL, /* reg points to sock_common or NULL */
Martin KaFai Lau655a51e2019-02-09 23:22:24 -0800337 PTR_TO_TCP_SOCK, /* reg points to struct tcp_sock */
338 PTR_TO_TCP_SOCK_OR_NULL, /* reg points to struct tcp_sock or NULL */
Matt Mullins9df1c282019-04-26 11:49:47 -0700339 PTR_TO_TP_BUFFER, /* reg points to a writable raw tp's buffer */
Jonathan Lemonfada7fd2019-06-06 13:59:40 -0700340 PTR_TO_XDP_SOCK, /* reg points to struct xdp_sock */
Alexei Starovoitov9e15db62019-10-15 20:25:00 -0700341 PTR_TO_BTF_ID, /* reg points to kernel struct */
Yonghong Songb121b342020-05-09 10:59:12 -0700342 PTR_TO_BTF_ID_OR_NULL, /* reg points to kernel struct or NULL */
Andrii Nakryiko457f4432020-05-29 00:54:20 -0700343 PTR_TO_MEM, /* reg points to valid memory region */
344 PTR_TO_MEM_OR_NULL, /* reg points to valid memory region or NULL */
Alexei Starovoitov19de99f2016-06-15 18:25:38 -0700345};
346
Yonghong Song23994632017-06-22 15:07:39 -0700347/* The information passed from prog-specific *_is_valid_access
348 * back to the verifier.
349 */
350struct bpf_insn_access_aux {
351 enum bpf_reg_type reg_type;
Alexei Starovoitov9e15db62019-10-15 20:25:00 -0700352 union {
353 int ctx_field_size;
354 u32 btf_id;
355 };
356 struct bpf_verifier_log *log; /* for verbose logs */
Yonghong Song23994632017-06-22 15:07:39 -0700357};
358
Daniel Borkmannf96da092017-07-02 02:13:27 +0200359static inline void
360bpf_ctx_record_field_size(struct bpf_insn_access_aux *aux, u32 size)
361{
362 aux->ctx_field_size = size;
363}
364
Jakub Kicinski7de16e32017-10-16 16:40:53 -0700365struct bpf_prog_ops {
366 int (*test_run)(struct bpf_prog *prog, const union bpf_attr *kattr,
367 union bpf_attr __user *uattr);
368};
369
Alexei Starovoitov09756af2014-09-26 00:17:00 -0700370struct bpf_verifier_ops {
371 /* return eBPF function prototype for verification */
Andrey Ignatov5e43f892018-03-30 15:08:00 -0700372 const struct bpf_func_proto *
373 (*get_func_proto)(enum bpf_func_id func_id,
374 const struct bpf_prog *prog);
Alexei Starovoitov17a52672014-09-26 00:17:06 -0700375
376 /* return true if 'size' wide access at offset 'off' within bpf_context
377 * with 'type' (read or write) is allowed
378 */
Alexei Starovoitov19de99f2016-06-15 18:25:38 -0700379 bool (*is_valid_access)(int off, int size, enum bpf_access_type type,
Andrey Ignatov5e43f892018-03-30 15:08:00 -0700380 const struct bpf_prog *prog,
Yonghong Song23994632017-06-22 15:07:39 -0700381 struct bpf_insn_access_aux *info);
Daniel Borkmann36bbef52016-09-20 00:26:13 +0200382 int (*gen_prologue)(struct bpf_insn *insn, bool direct_write,
383 const struct bpf_prog *prog);
Daniel Borkmanne0cea7c2018-05-04 01:08:14 +0200384 int (*gen_ld_abs)(const struct bpf_insn *orig,
385 struct bpf_insn *insn_buf);
Daniel Borkmann6b8cc1d2017-01-12 11:51:32 +0100386 u32 (*convert_ctx_access)(enum bpf_access_type type,
387 const struct bpf_insn *src,
388 struct bpf_insn *dst,
Daniel Borkmannf96da092017-07-02 02:13:27 +0200389 struct bpf_prog *prog, u32 *target_size);
Martin KaFai Lau27ae79972020-01-08 16:35:03 -0800390 int (*btf_struct_access)(struct bpf_verifier_log *log,
391 const struct btf_type *t, int off, int size,
392 enum bpf_access_type atype,
393 u32 *next_btf_id);
Alexei Starovoitov09756af2014-09-26 00:17:00 -0700394};
395
Jakub Kicinskicae19272017-12-27 18:39:05 -0800396struct bpf_prog_offload_ops {
Jakub Kicinski08ca90a2019-01-22 22:45:24 -0800397 /* verifier basic callbacks */
Jakub Kicinskicae19272017-12-27 18:39:05 -0800398 int (*insn_hook)(struct bpf_verifier_env *env,
399 int insn_idx, int prev_insn_idx);
Quentin Monnetc941ce92018-10-07 12:56:47 +0100400 int (*finalize)(struct bpf_verifier_env *env);
Jakub Kicinski08ca90a2019-01-22 22:45:24 -0800401 /* verifier optimization callbacks (called after .finalize) */
402 int (*replace_insn)(struct bpf_verifier_env *env, u32 off,
403 struct bpf_insn *insn);
404 int (*remove_insns)(struct bpf_verifier_env *env, u32 off, u32 cnt);
405 /* program management callbacks */
Quentin Monnet16a8cb5c2018-11-09 13:03:32 +0000406 int (*prepare)(struct bpf_prog *prog);
407 int (*translate)(struct bpf_prog *prog);
Quentin Monneteb911942018-11-09 13:03:30 +0000408 void (*destroy)(struct bpf_prog *prog);
Jakub Kicinskicae19272017-12-27 18:39:05 -0800409};
410
Jakub Kicinski0a9c1992018-01-11 20:29:07 -0800411struct bpf_prog_offload {
Jakub Kicinskiab3f0062017-11-03 13:56:17 -0700412 struct bpf_prog *prog;
413 struct net_device *netdev;
Quentin Monnet341b3e72018-11-09 13:03:26 +0000414 struct bpf_offload_dev *offdev;
Jakub Kicinskiab3f0062017-11-03 13:56:17 -0700415 void *dev_priv;
416 struct list_head offloads;
417 bool dev_state;
Jakub Kicinski08ca90a2019-01-22 22:45:24 -0800418 bool opt_failed;
Jiong Wangfcfb1262018-01-16 16:05:19 -0800419 void *jited_image;
420 u32 jited_len;
Jakub Kicinskiab3f0062017-11-03 13:56:17 -0700421};
422
Roman Gushchin8bad74f2018-09-28 14:45:36 +0000423enum bpf_cgroup_storage_type {
424 BPF_CGROUP_STORAGE_SHARED,
Roman Gushchinb741f162018-09-28 14:45:43 +0000425 BPF_CGROUP_STORAGE_PERCPU,
Roman Gushchin8bad74f2018-09-28 14:45:36 +0000426 __BPF_CGROUP_STORAGE_MAX
427};
428
429#define MAX_BPF_CGROUP_STORAGE_TYPE __BPF_CGROUP_STORAGE_MAX
430
Alexei Starovoitovf1b95092019-10-30 15:32:11 -0700431/* The longest tracepoint has 12 args.
432 * See include/trace/bpf_probe.h
433 */
434#define MAX_BPF_FUNC_ARGS 12
435
Alexei Starovoitov492ecee2019-02-25 14:28:39 -0800436struct bpf_prog_stats {
437 u64 cnt;
438 u64 nsecs;
439 struct u64_stats_sync syncp;
Eric Dumazet84a081f2019-10-11 11:11:40 -0700440} __aligned(2 * sizeof(u64));
Alexei Starovoitov492ecee2019-02-25 14:28:39 -0800441
Alexei Starovoitovfec56f52019-11-14 10:57:04 -0800442struct btf_func_model {
443 u8 ret_size;
444 u8 nr_args;
445 u8 arg_size[MAX_BPF_FUNC_ARGS];
446};
447
448/* Restore arguments before returning from trampoline to let original function
449 * continue executing. This flag is used for fentry progs when there are no
450 * fexit progs.
451 */
452#define BPF_TRAMP_F_RESTORE_REGS BIT(0)
453/* Call original function after fentry progs, but before fexit progs.
454 * Makes sense for fentry/fexit, normal calls and indirect calls.
455 */
456#define BPF_TRAMP_F_CALL_ORIG BIT(1)
457/* Skip current frame and return to parent. Makes sense for fentry/fexit
458 * programs only. Should not be used with normal calls and indirect calls.
459 */
460#define BPF_TRAMP_F_SKIP_FRAME BIT(2)
461
KP Singh88fd9e52020-03-04 20:18:47 +0100462/* Each call __bpf_prog_enter + call bpf_func + call __bpf_prog_exit is ~50
463 * bytes on x86. Pick a number to fit into BPF_IMAGE_SIZE / 2
464 */
465#define BPF_MAX_TRAMP_PROGS 40
466
467struct bpf_tramp_progs {
468 struct bpf_prog *progs[BPF_MAX_TRAMP_PROGS];
469 int nr_progs;
470};
471
Alexei Starovoitovfec56f52019-11-14 10:57:04 -0800472/* Different use cases for BPF trampoline:
473 * 1. replace nop at the function entry (kprobe equivalent)
474 * flags = BPF_TRAMP_F_RESTORE_REGS
475 * fentry = a set of programs to run before returning from trampoline
476 *
477 * 2. replace nop at the function entry (kprobe + kretprobe equivalent)
478 * flags = BPF_TRAMP_F_CALL_ORIG | BPF_TRAMP_F_SKIP_FRAME
479 * orig_call = fentry_ip + MCOUNT_INSN_SIZE
480 * fentry = a set of program to run before calling original function
481 * fexit = a set of program to run after original function
482 *
483 * 3. replace direct call instruction anywhere in the function body
484 * or assign a function pointer for indirect call (like tcp_congestion_ops->cong_avoid)
485 * With flags = 0
486 * fentry = a set of programs to run before returning from trampoline
487 * With flags = BPF_TRAMP_F_CALL_ORIG
488 * orig_call = original callback addr or direct function addr
489 * fentry = a set of program to run before calling original function
490 * fexit = a set of program to run after original function
491 */
Martin KaFai Lau85d33df2020-01-08 16:35:05 -0800492int arch_prepare_bpf_trampoline(void *image, void *image_end,
493 const struct btf_func_model *m, u32 flags,
KP Singh88fd9e52020-03-04 20:18:47 +0100494 struct bpf_tramp_progs *tprogs,
Alexei Starovoitovfec56f52019-11-14 10:57:04 -0800495 void *orig_call);
496/* these two functions are called from generated trampoline */
497u64 notrace __bpf_prog_enter(void);
498void notrace __bpf_prog_exit(struct bpf_prog *prog, u64 start);
499
Jiri Olsa535911c2020-03-12 20:55:58 +0100500struct bpf_ksym {
501 unsigned long start;
502 unsigned long end;
Jiri Olsabfea9a82020-03-12 20:55:59 +0100503 char name[KSYM_NAME_LEN];
Jiri Olsaecb60d12020-03-12 20:56:00 +0100504 struct list_head lnode;
Jiri Olsaca4424c2020-03-12 20:56:01 +0100505 struct latch_tree_node tnode;
Jiri Olsacbd76f82020-03-12 20:56:03 +0100506 bool prog;
Jiri Olsa535911c2020-03-12 20:55:58 +0100507};
508
Alexei Starovoitovfec56f52019-11-14 10:57:04 -0800509enum bpf_tramp_prog_type {
510 BPF_TRAMP_FENTRY,
511 BPF_TRAMP_FEXIT,
KP Singhae240822020-03-04 20:18:49 +0100512 BPF_TRAMP_MODIFY_RETURN,
Alexei Starovoitovbe8704f2020-01-20 16:53:46 -0800513 BPF_TRAMP_MAX,
514 BPF_TRAMP_REPLACE, /* more than MAX */
Alexei Starovoitovfec56f52019-11-14 10:57:04 -0800515};
516
517struct bpf_trampoline {
518 /* hlist for trampoline_table */
519 struct hlist_node hlist;
520 /* serializes access to fields of this trampoline */
521 struct mutex mutex;
522 refcount_t refcnt;
523 u64 key;
524 struct {
525 struct btf_func_model model;
526 void *addr;
Alexei Starovoitovb91e0142019-12-08 16:01:13 -0800527 bool ftrace_managed;
Alexei Starovoitovfec56f52019-11-14 10:57:04 -0800528 } func;
Alexei Starovoitovbe8704f2020-01-20 16:53:46 -0800529 /* if !NULL this is BPF_PROG_TYPE_EXT program that extends another BPF
530 * program by replacing one of its functions. func.addr is the address
531 * of the function it replaced.
532 */
533 struct bpf_prog *extension_prog;
Alexei Starovoitovfec56f52019-11-14 10:57:04 -0800534 /* list of BPF programs using this trampoline */
535 struct hlist_head progs_hlist[BPF_TRAMP_MAX];
536 /* Number of attached programs. A counter per kind. */
537 int progs_cnt[BPF_TRAMP_MAX];
538 /* Executable image of trampoline */
539 void *image;
540 u64 selector;
Jiri Olsaa108f7d2020-03-12 20:56:05 +0100541 struct bpf_ksym ksym;
Alexei Starovoitovfec56f52019-11-14 10:57:04 -0800542};
Björn Töpel75ccbef2019-12-13 18:51:08 +0100543
Björn Töpel116eb782019-12-13 18:51:12 +0100544#define BPF_DISPATCHER_MAX 48 /* Fits in 2048B */
Björn Töpel75ccbef2019-12-13 18:51:08 +0100545
546struct bpf_dispatcher_prog {
547 struct bpf_prog *prog;
548 refcount_t users;
549};
550
551struct bpf_dispatcher {
552 /* dispatcher mutex */
553 struct mutex mutex;
554 void *func;
555 struct bpf_dispatcher_prog progs[BPF_DISPATCHER_MAX];
556 int num_progs;
557 void *image;
558 u32 image_off;
Jiri Olsa517b75e2020-03-12 20:56:06 +0100559 struct bpf_ksym ksym;
Björn Töpel75ccbef2019-12-13 18:51:08 +0100560};
561
Björn Töpel6a640372020-03-12 20:55:57 +0100562static __always_inline unsigned int bpf_dispatcher_nop_func(
Björn Töpel7e6897f2019-12-13 18:51:09 +0100563 const void *ctx,
564 const struct bpf_insn *insnsi,
565 unsigned int (*bpf_func)(const void *,
566 const struct bpf_insn *))
567{
568 return bpf_func(ctx, insnsi);
569}
Alexei Starovoitovfec56f52019-11-14 10:57:04 -0800570#ifdef CONFIG_BPF_JIT
571struct bpf_trampoline *bpf_trampoline_lookup(u64 key);
572int bpf_trampoline_link_prog(struct bpf_prog *prog);
573int bpf_trampoline_unlink_prog(struct bpf_prog *prog);
574void bpf_trampoline_put(struct bpf_trampoline *tr);
Jiri Olsa517b75e2020-03-12 20:56:06 +0100575#define BPF_DISPATCHER_INIT(_name) { \
576 .mutex = __MUTEX_INITIALIZER(_name.mutex), \
577 .func = &_name##_func, \
578 .progs = {}, \
579 .num_progs = 0, \
580 .image = NULL, \
581 .image_off = 0, \
582 .ksym = { \
583 .name = #_name, \
584 .lnode = LIST_HEAD_INIT(_name.ksym.lnode), \
585 }, \
Björn Töpel75ccbef2019-12-13 18:51:08 +0100586}
587
588#define DEFINE_BPF_DISPATCHER(name) \
Björn Töpel6a640372020-03-12 20:55:57 +0100589 noinline unsigned int bpf_dispatcher_##name##_func( \
Björn Töpel75ccbef2019-12-13 18:51:08 +0100590 const void *ctx, \
591 const struct bpf_insn *insnsi, \
592 unsigned int (*bpf_func)(const void *, \
593 const struct bpf_insn *)) \
594 { \
595 return bpf_func(ctx, insnsi); \
596 } \
Björn Töpel6a640372020-03-12 20:55:57 +0100597 EXPORT_SYMBOL(bpf_dispatcher_##name##_func); \
598 struct bpf_dispatcher bpf_dispatcher_##name = \
599 BPF_DISPATCHER_INIT(bpf_dispatcher_##name);
Björn Töpel75ccbef2019-12-13 18:51:08 +0100600#define DECLARE_BPF_DISPATCHER(name) \
Björn Töpel6a640372020-03-12 20:55:57 +0100601 unsigned int bpf_dispatcher_##name##_func( \
Björn Töpel75ccbef2019-12-13 18:51:08 +0100602 const void *ctx, \
603 const struct bpf_insn *insnsi, \
604 unsigned int (*bpf_func)(const void *, \
605 const struct bpf_insn *)); \
Björn Töpel6a640372020-03-12 20:55:57 +0100606 extern struct bpf_dispatcher bpf_dispatcher_##name;
607#define BPF_DISPATCHER_FUNC(name) bpf_dispatcher_##name##_func
608#define BPF_DISPATCHER_PTR(name) (&bpf_dispatcher_##name)
Björn Töpel75ccbef2019-12-13 18:51:08 +0100609void bpf_dispatcher_change_prog(struct bpf_dispatcher *d, struct bpf_prog *from,
610 struct bpf_prog *to);
Jiri Olsadba122f2020-03-12 20:56:04 +0100611/* Called only from JIT-enabled code, so there's no need for stubs. */
Jiri Olsa7ac88eb2020-03-12 20:56:07 +0100612void *bpf_jit_alloc_exec_page(void);
Jiri Olsaa108f7d2020-03-12 20:56:05 +0100613void bpf_image_ksym_add(void *data, struct bpf_ksym *ksym);
614void bpf_image_ksym_del(struct bpf_ksym *ksym);
Jiri Olsadba122f2020-03-12 20:56:04 +0100615void bpf_ksym_add(struct bpf_ksym *ksym);
616void bpf_ksym_del(struct bpf_ksym *ksym);
Alexei Starovoitovfec56f52019-11-14 10:57:04 -0800617#else
618static inline struct bpf_trampoline *bpf_trampoline_lookup(u64 key)
619{
620 return NULL;
621}
622static inline int bpf_trampoline_link_prog(struct bpf_prog *prog)
623{
624 return -ENOTSUPP;
625}
626static inline int bpf_trampoline_unlink_prog(struct bpf_prog *prog)
627{
628 return -ENOTSUPP;
629}
630static inline void bpf_trampoline_put(struct bpf_trampoline *tr) {}
Björn Töpel75ccbef2019-12-13 18:51:08 +0100631#define DEFINE_BPF_DISPATCHER(name)
632#define DECLARE_BPF_DISPATCHER(name)
Björn Töpel6a640372020-03-12 20:55:57 +0100633#define BPF_DISPATCHER_FUNC(name) bpf_dispatcher_nop_func
Björn Töpel75ccbef2019-12-13 18:51:08 +0100634#define BPF_DISPATCHER_PTR(name) NULL
635static inline void bpf_dispatcher_change_prog(struct bpf_dispatcher *d,
636 struct bpf_prog *from,
637 struct bpf_prog *to) {}
Jiri Olsae9b4e602020-01-23 17:15:07 +0100638static inline bool is_bpf_image_address(unsigned long address)
639{
640 return false;
641}
Alexei Starovoitovfec56f52019-11-14 10:57:04 -0800642#endif
643
Alexei Starovoitov8c1b6e62019-11-14 10:57:16 -0800644struct bpf_func_info_aux {
Alexei Starovoitov51c39bb2020-01-09 22:41:20 -0800645 u16 linkage;
Alexei Starovoitov8c1b6e62019-11-14 10:57:16 -0800646 bool unreliable;
647};
648
Daniel Borkmanna66886f2019-11-22 21:07:57 +0100649enum bpf_jit_poke_reason {
650 BPF_POKE_REASON_TAIL_CALL,
651};
652
653/* Descriptor of pokes pointing /into/ the JITed image. */
654struct bpf_jit_poke_descriptor {
655 void *ip;
656 union {
657 struct {
658 struct bpf_map *map;
659 u32 key;
660 } tail_call;
661 };
662 bool ip_stable;
663 u8 adj_off;
664 u16 reason;
665};
666
Yonghong Song3c32cc12020-05-13 11:02:21 -0700667/* reg_type info for ctx arguments */
668struct bpf_ctx_arg_aux {
669 u32 offset;
670 enum bpf_reg_type reg_type;
Yonghong Song951cf362020-07-20 09:34:03 -0700671 u32 btf_id;
Yonghong Song3c32cc12020-05-13 11:02:21 -0700672};
673
Alexei Starovoitov09756af2014-09-26 00:17:00 -0700674struct bpf_prog_aux {
Andrii Nakryiko85192db2019-11-17 09:28:03 -0800675 atomic64_t refcnt;
Daniel Borkmann24701ec2015-03-01 12:31:47 +0100676 u32 used_map_cnt;
Alexei Starovoitov32bbe002016-04-06 18:43:28 -0700677 u32 max_ctx_offset;
Jiong Wange6478152018-11-08 04:08:42 -0500678 u32 max_pkt_offset;
Matt Mullins9df1c282019-04-26 11:49:47 -0700679 u32 max_tp_access;
Alexei Starovoitov87266792017-05-30 13:31:29 -0700680 u32 stack_depth;
Martin KaFai Laudc4bb0e2017-06-05 12:15:46 -0700681 u32 id;
Yonghong Songba64e7d2018-11-24 23:20:44 -0800682 u32 func_cnt; /* used by non-func prog as the number of func progs */
683 u32 func_idx; /* 0 for non-func prog, the index in func array for func prog */
Alexei Starovoitovccfe29eb22019-10-15 20:24:58 -0700684 u32 attach_btf_id; /* in-kernel BTF type id to attach to */
Yonghong Song3c32cc12020-05-13 11:02:21 -0700685 u32 ctx_arg_info_size;
686 const struct bpf_ctx_arg_aux *ctx_arg_info;
Alexei Starovoitov5b92a282019-11-14 10:57:17 -0800687 struct bpf_prog *linked_prog;
Jiong Wanga4b1d3c2019-05-24 23:25:15 +0100688 bool verifier_zext; /* Zero extensions has been inserted by verifier. */
Jakub Kicinski9a18eed2017-12-27 18:39:04 -0800689 bool offload_requested;
Martin KaFai Lau38207292019-10-24 17:18:11 -0700690 bool attach_btf_trace; /* true if attaching to BTF-enabled raw tp */
Alexei Starovoitov8c1b6e62019-11-14 10:57:16 -0800691 bool func_proto_unreliable;
Alexei Starovoitovfec56f52019-11-14 10:57:04 -0800692 enum bpf_tramp_prog_type trampoline_prog_type;
693 struct bpf_trampoline *trampoline;
694 struct hlist_node tramp_hlist;
Martin KaFai Lau38207292019-10-24 17:18:11 -0700695 /* BTF_KIND_FUNC_PROTO for valid attach_btf_id */
696 const struct btf_type *attach_func_proto;
697 /* function name for valid attach_btf_id */
698 const char *attach_func_name;
Alexei Starovoitov1c2a0882017-12-14 17:55:15 -0800699 struct bpf_prog **func;
700 void *jit_data; /* JIT specific data. arch dependent */
Daniel Borkmanna66886f2019-11-22 21:07:57 +0100701 struct bpf_jit_poke_descriptor *poke_tab;
702 u32 size_poke_tab;
Jiri Olsa535911c2020-03-12 20:55:58 +0100703 struct bpf_ksym ksym;
Jakub Kicinski7de16e32017-10-16 16:40:53 -0700704 const struct bpf_prog_ops *ops;
Alexei Starovoitov09756af2014-09-26 00:17:00 -0700705 struct bpf_map **used_maps;
Alexei Starovoitov09756af2014-09-26 00:17:00 -0700706 struct bpf_prog *prog;
Alexei Starovoitovaaac3ba2015-10-07 22:23:22 -0700707 struct user_struct *user;
Martin KaFai Laucb4d2b32017-09-27 14:37:52 -0700708 u64 load_time; /* ns since boottime */
Roman Gushchin8bad74f2018-09-28 14:45:36 +0000709 struct bpf_map *cgroup_storage[MAX_BPF_CGROUP_STORAGE_TYPE];
Martin KaFai Lau067cae42017-10-05 21:52:12 -0700710 char name[BPF_OBJ_NAME_LEN];
Chenbo Fengafdb09c2017-10-18 13:00:24 -0700711#ifdef CONFIG_SECURITY
712 void *security;
713#endif
Jakub Kicinski0a9c1992018-01-11 20:29:07 -0800714 struct bpf_prog_offload *offload;
Yonghong Song838e9692018-11-19 15:29:11 -0800715 struct btf *btf;
Yonghong Songba64e7d2018-11-24 23:20:44 -0800716 struct bpf_func_info *func_info;
Alexei Starovoitov8c1b6e62019-11-14 10:57:16 -0800717 struct bpf_func_info_aux *func_info_aux;
Martin KaFai Lauc454a462018-12-07 16:42:25 -0800718 /* bpf_line_info loaded from userspace. linfo->insn_off
719 * has the xlated insn offset.
720 * Both the main and sub prog share the same linfo.
721 * The subprog can access its first linfo by
722 * using the linfo_idx.
723 */
724 struct bpf_line_info *linfo;
725 /* jited_linfo is the jited addr of the linfo. It has a
726 * one to one mapping to linfo:
727 * jited_linfo[i] is the jited addr for the linfo[i]->insn_off.
728 * Both the main and sub prog share the same jited_linfo.
729 * The subprog can access its first jited_linfo by
730 * using the linfo_idx.
731 */
732 void **jited_linfo;
Yonghong Songba64e7d2018-11-24 23:20:44 -0800733 u32 func_info_cnt;
Martin KaFai Lauc454a462018-12-07 16:42:25 -0800734 u32 nr_linfo;
735 /* subprog can use linfo_idx to access its first linfo and
736 * jited_linfo.
737 * main prog always has linfo_idx == 0
738 */
739 u32 linfo_idx;
Alexei Starovoitov3dec5412019-10-15 20:25:03 -0700740 u32 num_exentries;
741 struct exception_table_entry *extable;
Alexei Starovoitov492ecee2019-02-25 14:28:39 -0800742 struct bpf_prog_stats __percpu *stats;
Alexei Starovoitovabf2e7d2015-05-28 19:26:02 -0700743 union {
744 struct work_struct work;
745 struct rcu_head rcu;
746 };
Alexei Starovoitov09756af2014-09-26 00:17:00 -0700747};
748
Daniel Borkmann2beee5f2019-11-22 21:07:56 +0100749struct bpf_array_aux {
750 /* 'Ownership' of prog array is claimed by the first program that
751 * is going to use this map or by the first program which FD is
752 * stored in the map to make sure that all callers and callees have
753 * the same prog type and JITed flag.
754 */
755 enum bpf_prog_type type;
756 bool jited;
Daniel Borkmannda765a22019-11-22 21:07:58 +0100757 /* Programs with direct jumps into programs part of this array. */
758 struct list_head poke_progs;
759 struct bpf_map *map;
760 struct mutex poke_mutex;
761 struct work_struct work;
Daniel Borkmann2beee5f2019-11-22 21:07:56 +0100762};
763
Martin KaFai Lau85d33df2020-01-08 16:35:05 -0800764struct bpf_struct_ops_value;
Martin KaFai Lau27ae79972020-01-08 16:35:03 -0800765struct btf_type;
766struct btf_member;
767
768#define BPF_STRUCT_OPS_MAX_NR_MEMBERS 64
769struct bpf_struct_ops {
770 const struct bpf_verifier_ops *verifier_ops;
771 int (*init)(struct btf *btf);
772 int (*check_member)(const struct btf_type *t,
773 const struct btf_member *member);
Martin KaFai Lau85d33df2020-01-08 16:35:05 -0800774 int (*init_member)(const struct btf_type *t,
775 const struct btf_member *member,
776 void *kdata, const void *udata);
777 int (*reg)(void *kdata);
778 void (*unreg)(void *kdata);
Martin KaFai Lau27ae79972020-01-08 16:35:03 -0800779 const struct btf_type *type;
Martin KaFai Lau85d33df2020-01-08 16:35:05 -0800780 const struct btf_type *value_type;
Martin KaFai Lau27ae79972020-01-08 16:35:03 -0800781 const char *name;
782 struct btf_func_model func_models[BPF_STRUCT_OPS_MAX_NR_MEMBERS];
783 u32 type_id;
Martin KaFai Lau85d33df2020-01-08 16:35:05 -0800784 u32 value_id;
Martin KaFai Lau27ae79972020-01-08 16:35:03 -0800785};
786
787#if defined(CONFIG_BPF_JIT) && defined(CONFIG_BPF_SYSCALL)
Martin KaFai Lau85d33df2020-01-08 16:35:05 -0800788#define BPF_MODULE_OWNER ((void *)((0xeB9FUL << 2) + POISON_POINTER_DELTA))
Martin KaFai Lau27ae79972020-01-08 16:35:03 -0800789const struct bpf_struct_ops *bpf_struct_ops_find(u32 type_id);
Martin KaFai Laud3e42bb2020-01-27 09:51:45 -0800790void bpf_struct_ops_init(struct btf *btf, struct bpf_verifier_log *log);
Martin KaFai Lau85d33df2020-01-08 16:35:05 -0800791bool bpf_struct_ops_get(const void *kdata);
792void bpf_struct_ops_put(const void *kdata);
793int bpf_struct_ops_map_sys_lookup_elem(struct bpf_map *map, void *key,
794 void *value);
795static inline bool bpf_try_module_get(const void *data, struct module *owner)
796{
797 if (owner == BPF_MODULE_OWNER)
798 return bpf_struct_ops_get(data);
799 else
800 return try_module_get(owner);
801}
802static inline void bpf_module_put(const void *data, struct module *owner)
803{
804 if (owner == BPF_MODULE_OWNER)
805 bpf_struct_ops_put(data);
806 else
807 module_put(owner);
808}
Martin KaFai Lau27ae79972020-01-08 16:35:03 -0800809#else
810static inline const struct bpf_struct_ops *bpf_struct_ops_find(u32 type_id)
811{
812 return NULL;
813}
Martin KaFai Laud3e42bb2020-01-27 09:51:45 -0800814static inline void bpf_struct_ops_init(struct btf *btf,
815 struct bpf_verifier_log *log)
816{
817}
Martin KaFai Lau85d33df2020-01-08 16:35:05 -0800818static inline bool bpf_try_module_get(const void *data, struct module *owner)
819{
820 return try_module_get(owner);
821}
822static inline void bpf_module_put(const void *data, struct module *owner)
823{
824 module_put(owner);
825}
826static inline int bpf_struct_ops_map_sys_lookup_elem(struct bpf_map *map,
827 void *key,
828 void *value)
829{
830 return -EINVAL;
831}
Martin KaFai Lau27ae79972020-01-08 16:35:03 -0800832#endif
833
Alexei Starovoitov04fd61ab2015-05-19 16:59:03 -0700834struct bpf_array {
835 struct bpf_map map;
836 u32 elem_size;
Alexei Starovoitovb2157392018-01-07 17:33:02 -0800837 u32 index_mask;
Daniel Borkmann2beee5f2019-11-22 21:07:56 +0100838 struct bpf_array_aux *aux;
Alexei Starovoitov04fd61ab2015-05-19 16:59:03 -0700839 union {
840 char value[0] __aligned(8);
Wang Nan2a36f0b2015-08-06 07:02:33 +0000841 void *ptrs[0] __aligned(8);
Alexei Starovoitova10423b2016-02-01 22:39:54 -0800842 void __percpu *pptrs[0] __aligned(8);
Alexei Starovoitov04fd61ab2015-05-19 16:59:03 -0700843 };
844};
Daniel Borkmann3b1efb12016-06-15 22:47:14 +0200845
Alexei Starovoitovc04c0d22019-04-01 21:27:45 -0700846#define BPF_COMPLEXITY_LIMIT_INSNS 1000000 /* yes. 1M insns */
Alexei Starovoitov04fd61ab2015-05-19 16:59:03 -0700847#define MAX_TAIL_CALL_CNT 32
848
Daniel Borkmann591fe982019-04-09 23:20:05 +0200849#define BPF_F_ACCESS_MASK (BPF_F_RDONLY | \
850 BPF_F_RDONLY_PROG | \
851 BPF_F_WRONLY | \
852 BPF_F_WRONLY_PROG)
853
854#define BPF_MAP_CAN_READ BIT(0)
855#define BPF_MAP_CAN_WRITE BIT(1)
856
857static inline u32 bpf_map_flags_to_cap(struct bpf_map *map)
858{
859 u32 access_flags = map->map_flags & (BPF_F_RDONLY_PROG | BPF_F_WRONLY_PROG);
860
861 /* Combination of BPF_F_RDONLY_PROG | BPF_F_WRONLY_PROG is
862 * not possible.
863 */
864 if (access_flags & BPF_F_RDONLY_PROG)
865 return BPF_MAP_CAN_READ;
866 else if (access_flags & BPF_F_WRONLY_PROG)
867 return BPF_MAP_CAN_WRITE;
868 else
869 return BPF_MAP_CAN_READ | BPF_MAP_CAN_WRITE;
870}
871
872static inline bool bpf_map_flags_access_ok(u32 access_flags)
873{
874 return (access_flags & (BPF_F_RDONLY_PROG | BPF_F_WRONLY_PROG)) !=
875 (BPF_F_RDONLY_PROG | BPF_F_WRONLY_PROG);
876}
877
Daniel Borkmann3b1efb12016-06-15 22:47:14 +0200878struct bpf_event_entry {
879 struct perf_event *event;
880 struct file *perf_file;
881 struct file *map_file;
882 struct rcu_head rcu;
883};
884
Alexei Starovoitov04fd61ab2015-05-19 16:59:03 -0700885bool bpf_prog_array_compatible(struct bpf_array *array, const struct bpf_prog *fp);
Daniel Borkmannf1f77142017-01-13 23:38:15 +0100886int bpf_prog_calc_tag(struct bpf_prog *fp);
Alexei Starovoitov9e15db62019-10-15 20:25:00 -0700887const char *kernel_type_name(u32 btf_type_id);
Daniel Borkmannbd570ff2016-04-18 21:01:24 +0200888
Alexei Starovoitov0756ea32015-06-12 19:39:13 -0700889const struct bpf_func_proto *bpf_get_trace_printk_proto(void);
Daniel Borkmann555c8a82016-07-14 18:08:05 +0200890
891typedef unsigned long (*bpf_ctx_copy_t)(void *dst, const void *src,
Daniel Borkmannaa7145c2016-07-22 01:19:42 +0200892 unsigned long off, unsigned long len);
Joe Stringerc64b7982018-10-02 13:35:33 -0700893typedef u32 (*bpf_convert_ctx_access_t)(enum bpf_access_type type,
894 const struct bpf_insn *src,
895 struct bpf_insn *dst,
896 struct bpf_prog *prog,
897 u32 *target_size);
Daniel Borkmann555c8a82016-07-14 18:08:05 +0200898
899u64 bpf_event_output(struct bpf_map *map, u64 flags, void *meta, u64 meta_size,
900 void *ctx, u64 ctx_size, bpf_ctx_copy_t ctx_copy);
Alexei Starovoitov04fd61ab2015-05-19 16:59:03 -0700901
Alexei Starovoitov324bda9e62017-10-02 22:50:21 -0700902/* an array of programs to be executed under rcu_lock.
903 *
904 * Typical usage:
905 * ret = BPF_PROG_RUN_ARRAY(&bpf_prog_array, ctx, BPF_PROG_RUN);
906 *
907 * the structure returned by bpf_prog_array_alloc() should be populated
908 * with program pointers and the last pointer must be NULL.
909 * The user has to keep refcnt on the program and make sure the program
910 * is removed from the array before bpf_prog_put().
911 * The 'struct bpf_prog_array *' should only be replaced with xchg()
912 * since other cpus are walking the array of pointers in parallel.
913 */
Roman Gushchin394e40a2018-08-02 14:27:21 -0700914struct bpf_prog_array_item {
915 struct bpf_prog *prog;
Roman Gushchin8bad74f2018-09-28 14:45:36 +0000916 struct bpf_cgroup_storage *cgroup_storage[MAX_BPF_CGROUP_STORAGE_TYPE];
Roman Gushchin394e40a2018-08-02 14:27:21 -0700917};
918
Alexei Starovoitov324bda9e62017-10-02 22:50:21 -0700919struct bpf_prog_array {
920 struct rcu_head rcu;
Gustavo A. R. Silvad7f10df2020-02-26 18:17:44 -0600921 struct bpf_prog_array_item items[];
Alexei Starovoitov324bda9e62017-10-02 22:50:21 -0700922};
923
Roman Gushchind29ab6e2018-07-13 12:41:10 -0700924struct bpf_prog_array *bpf_prog_array_alloc(u32 prog_cnt, gfp_t flags);
Stanislav Fomichev54e9c9d2019-05-28 14:14:41 -0700925void bpf_prog_array_free(struct bpf_prog_array *progs);
926int bpf_prog_array_length(struct bpf_prog_array *progs);
Stanislav Fomichev0d01da62019-06-27 13:38:47 -0700927bool bpf_prog_array_is_empty(struct bpf_prog_array *array);
Stanislav Fomichev54e9c9d2019-05-28 14:14:41 -0700928int bpf_prog_array_copy_to_user(struct bpf_prog_array *progs,
Alexei Starovoitov468e2f62017-10-02 22:50:22 -0700929 __u32 __user *prog_ids, u32 cnt);
Alexei Starovoitov324bda9e62017-10-02 22:50:21 -0700930
Stanislav Fomichev54e9c9d2019-05-28 14:14:41 -0700931void bpf_prog_array_delete_safe(struct bpf_prog_array *progs,
Yonghong Songe87c6bc2017-10-23 23:53:08 -0700932 struct bpf_prog *old_prog);
Jakub Sitnickice3aa9c2020-07-17 12:35:22 +0200933int bpf_prog_array_delete_safe_at(struct bpf_prog_array *array, int index);
934int bpf_prog_array_update_at(struct bpf_prog_array *array, int index,
935 struct bpf_prog *prog);
Stanislav Fomichev54e9c9d2019-05-28 14:14:41 -0700936int bpf_prog_array_copy_info(struct bpf_prog_array *array,
Yonghong Song3a38bb92018-04-10 09:37:32 -0700937 u32 *prog_ids, u32 request_cnt,
938 u32 *prog_cnt);
Stanislav Fomichev54e9c9d2019-05-28 14:14:41 -0700939int bpf_prog_array_copy(struct bpf_prog_array *old_array,
Yonghong Songe87c6bc2017-10-23 23:53:08 -0700940 struct bpf_prog *exclude_prog,
941 struct bpf_prog *include_prog,
942 struct bpf_prog_array **new_array);
943
944#define __BPF_PROG_RUN_ARRAY(array, ctx, func, check_non_null) \
Alexei Starovoitov324bda9e62017-10-02 22:50:21 -0700945 ({ \
Roman Gushchin394e40a2018-08-02 14:27:21 -0700946 struct bpf_prog_array_item *_item; \
947 struct bpf_prog *_prog; \
Yonghong Songe87c6bc2017-10-23 23:53:08 -0700948 struct bpf_prog_array *_array; \
Alexei Starovoitov324bda9e62017-10-02 22:50:21 -0700949 u32 _ret = 1; \
David Miller2a916f22020-02-24 15:01:46 +0100950 migrate_disable(); \
Alexei Starovoitov324bda9e62017-10-02 22:50:21 -0700951 rcu_read_lock(); \
Yonghong Songe87c6bc2017-10-23 23:53:08 -0700952 _array = rcu_dereference(array); \
953 if (unlikely(check_non_null && !_array))\
954 goto _out; \
Roman Gushchin394e40a2018-08-02 14:27:21 -0700955 _item = &_array->items[0]; \
956 while ((_prog = READ_ONCE(_item->prog))) { \
957 bpf_cgroup_storage_set(_item->cgroup_storage); \
958 _ret &= func(_prog, ctx); \
959 _item++; \
Yonghong Songe87c6bc2017-10-23 23:53:08 -0700960 } \
961_out: \
Alexei Starovoitov324bda9e62017-10-02 22:50:21 -0700962 rcu_read_unlock(); \
David Miller2a916f22020-02-24 15:01:46 +0100963 migrate_enable(); \
Alexei Starovoitov324bda9e62017-10-02 22:50:21 -0700964 _ret; \
965 })
966
brakmo1f52f6c2019-05-28 16:59:35 -0700967/* To be used by __cgroup_bpf_run_filter_skb for EGRESS BPF progs
968 * so BPF programs can request cwr for TCP packets.
969 *
970 * Current cgroup skb programs can only return 0 or 1 (0 to drop the
971 * packet. This macro changes the behavior so the low order bit
972 * indicates whether the packet should be dropped (0) or not (1)
973 * and the next bit is a congestion notification bit. This could be
974 * used by TCP to call tcp_enter_cwr()
975 *
976 * Hence, new allowed return values of CGROUP EGRESS BPF programs are:
977 * 0: drop packet
978 * 1: keep packet
979 * 2: drop packet and cn
980 * 3: keep packet and cn
981 *
982 * This macro then converts it to one of the NET_XMIT or an error
983 * code that is then interpreted as drop packet (and no cn):
984 * 0: NET_XMIT_SUCCESS skb should be transmitted
985 * 1: NET_XMIT_DROP skb should be dropped and cn
986 * 2: NET_XMIT_CN skb should be transmitted and cn
987 * 3: -EPERM skb should be dropped
988 */
989#define BPF_PROG_CGROUP_INET_EGRESS_RUN_ARRAY(array, ctx, func) \
990 ({ \
991 struct bpf_prog_array_item *_item; \
992 struct bpf_prog *_prog; \
993 struct bpf_prog_array *_array; \
994 u32 ret; \
995 u32 _ret = 1; \
996 u32 _cn = 0; \
David Miller2a916f22020-02-24 15:01:46 +0100997 migrate_disable(); \
brakmo1f52f6c2019-05-28 16:59:35 -0700998 rcu_read_lock(); \
999 _array = rcu_dereference(array); \
1000 _item = &_array->items[0]; \
1001 while ((_prog = READ_ONCE(_item->prog))) { \
1002 bpf_cgroup_storage_set(_item->cgroup_storage); \
1003 ret = func(_prog, ctx); \
1004 _ret &= (ret & 1); \
1005 _cn |= (ret & 2); \
1006 _item++; \
1007 } \
1008 rcu_read_unlock(); \
David Miller2a916f22020-02-24 15:01:46 +01001009 migrate_enable(); \
brakmo1f52f6c2019-05-28 16:59:35 -07001010 if (_ret) \
1011 _ret = (_cn ? NET_XMIT_CN : NET_XMIT_SUCCESS); \
1012 else \
1013 _ret = (_cn ? NET_XMIT_DROP : -EPERM); \
1014 _ret; \
1015 })
1016
Yonghong Songe87c6bc2017-10-23 23:53:08 -07001017#define BPF_PROG_RUN_ARRAY(array, ctx, func) \
1018 __BPF_PROG_RUN_ARRAY(array, ctx, func, false)
1019
1020#define BPF_PROG_RUN_ARRAY_CHECK(array, ctx, func) \
1021 __BPF_PROG_RUN_ARRAY(array, ctx, func, true)
1022
Alexei Starovoitov89aa0752014-12-01 15:06:35 -08001023#ifdef CONFIG_BPF_SYSCALL
Alexei Starovoitovb121d1e2016-03-07 21:57:13 -08001024DECLARE_PER_CPU(int, bpf_prog_active);
Song Liud46edd62020-04-30 00:15:04 -07001025extern struct mutex bpf_stats_enabled_mutex;
Alexei Starovoitovb121d1e2016-03-07 21:57:13 -08001026
Thomas Gleixnerc518cfa2020-02-24 15:01:47 +01001027/*
1028 * Block execution of BPF programs attached to instrumentation (perf,
1029 * kprobes, tracepoints) to prevent deadlocks on map operations as any of
1030 * these events can happen inside a region which holds a map bucket lock
1031 * and can deadlock on it.
1032 *
1033 * Use the preemption safe inc/dec variants on RT because migrate disable
1034 * is preemptible on RT and preemption in the middle of the RMW operation
1035 * might lead to inconsistent state. Use the raw variants for non RT
1036 * kernels as migrate_disable() maps to preempt_disable() so the slightly
1037 * more expensive save operation can be avoided.
1038 */
1039static inline void bpf_disable_instrumentation(void)
1040{
1041 migrate_disable();
1042 if (IS_ENABLED(CONFIG_PREEMPT_RT))
1043 this_cpu_inc(bpf_prog_active);
1044 else
1045 __this_cpu_inc(bpf_prog_active);
1046}
1047
1048static inline void bpf_enable_instrumentation(void)
1049{
1050 if (IS_ENABLED(CONFIG_PREEMPT_RT))
1051 this_cpu_dec(bpf_prog_active);
1052 else
1053 __this_cpu_dec(bpf_prog_active);
1054 migrate_enable();
1055}
1056
Chenbo Fengf66e4482017-10-18 13:00:26 -07001057extern const struct file_operations bpf_map_fops;
1058extern const struct file_operations bpf_prog_fops;
Yonghong Song367ec3e2020-05-09 10:59:06 -07001059extern const struct file_operations bpf_iter_fops;
Chenbo Fengf66e4482017-10-18 13:00:26 -07001060
Alexei Starovoitov91cc1a92019-11-14 10:57:15 -08001061#define BPF_PROG_TYPE(_id, _name, prog_ctx_type, kern_ctx_type) \
Jakub Kicinski7de16e32017-10-16 16:40:53 -07001062 extern const struct bpf_prog_ops _name ## _prog_ops; \
1063 extern const struct bpf_verifier_ops _name ## _verifier_ops;
Johannes Berg40077e02017-04-11 15:34:58 +02001064#define BPF_MAP_TYPE(_id, _ops) \
1065 extern const struct bpf_map_ops _ops;
Andrii Nakryikof2e10bf2020-04-28 17:16:08 -07001066#define BPF_LINK_TYPE(_id, _name)
Johannes Bergbe9370a2017-04-11 15:34:57 +02001067#include <linux/bpf_types.h>
1068#undef BPF_PROG_TYPE
Johannes Berg40077e02017-04-11 15:34:58 +02001069#undef BPF_MAP_TYPE
Andrii Nakryikof2e10bf2020-04-28 17:16:08 -07001070#undef BPF_LINK_TYPE
Daniel Borkmann0fc174d2015-03-01 12:31:44 +01001071
Jakub Kicinskiab3f0062017-11-03 13:56:17 -07001072extern const struct bpf_prog_ops bpf_offload_prog_ops;
Jakub Kicinski4f9218a2017-10-16 16:40:55 -07001073extern const struct bpf_verifier_ops tc_cls_act_analyzer_ops;
1074extern const struct bpf_verifier_ops xdp_analyzer_ops;
1075
Alexei Starovoitov09756af2014-09-26 00:17:00 -07001076struct bpf_prog *bpf_prog_get(u32 ufd);
Jakub Kicinski248f3462017-11-03 13:56:20 -07001077struct bpf_prog *bpf_prog_get_type_dev(u32 ufd, enum bpf_prog_type type,
Jakub Kicinski288b3de2017-11-20 15:21:54 -08001078 bool attach_drv);
Andrii Nakryiko85192db2019-11-17 09:28:03 -08001079void bpf_prog_add(struct bpf_prog *prog, int i);
Daniel Borkmannc5405942016-11-09 22:02:34 +01001080void bpf_prog_sub(struct bpf_prog *prog, int i);
Andrii Nakryiko85192db2019-11-17 09:28:03 -08001081void bpf_prog_inc(struct bpf_prog *prog);
John Fastabenda6f6df62017-08-15 22:32:22 -07001082struct bpf_prog * __must_check bpf_prog_inc_not_zero(struct bpf_prog *prog);
Daniel Borkmann61e021f2015-03-02 15:21:55 +01001083void bpf_prog_put(struct bpf_prog *prog);
Daniel Borkmann5ccb0712016-12-18 01:52:58 +01001084int __bpf_prog_charge(struct user_struct *user, u32 pages);
1085void __bpf_prog_uncharge(struct user_struct *user, u32 pages);
Daniel Borkmanna2ea0742019-12-16 17:49:00 +01001086void __bpf_free_used_maps(struct bpf_prog_aux *aux,
1087 struct bpf_map **used_maps, u32 len);
Daniel Borkmann61e021f2015-03-02 15:21:55 +01001088
Jakub Kicinskiad8ad792017-12-27 18:39:07 -08001089void bpf_prog_free_id(struct bpf_prog *prog, bool do_idr_lock);
Jakub Kicinskia3884572018-01-11 20:29:09 -08001090void bpf_map_free_id(struct bpf_map *map, bool do_idr_lock);
Jakub Kicinskiad8ad792017-12-27 18:39:07 -08001091
Martin KaFai Lau1ed4d922020-02-25 15:04:21 -08001092struct bpf_map *bpf_map_get(u32 ufd);
Daniel Borkmannc9da1612015-11-24 21:28:15 +01001093struct bpf_map *bpf_map_get_with_uref(u32 ufd);
Daniel Borkmannc2101292015-10-29 14:58:07 +01001094struct bpf_map *__bpf_map_get(struct fd f);
Andrii Nakryiko1e0bd5a2019-11-17 09:28:02 -08001095void bpf_map_inc(struct bpf_map *map);
1096void bpf_map_inc_with_uref(struct bpf_map *map);
1097struct bpf_map * __must_check bpf_map_inc_not_zero(struct bpf_map *map);
Daniel Borkmannc9da1612015-11-24 21:28:15 +01001098void bpf_map_put_with_uref(struct bpf_map *map);
Daniel Borkmann61e021f2015-03-02 15:21:55 +01001099void bpf_map_put(struct bpf_map *map);
Roman Gushchin0a4c58f2018-08-02 14:27:17 -07001100int bpf_map_charge_memlock(struct bpf_map *map, u32 pages);
1101void bpf_map_uncharge_memlock(struct bpf_map *map, u32 pages);
Daniel Borkmann196e8ca2019-11-20 23:04:44 +01001102int bpf_map_charge_init(struct bpf_map_memory *mem, u64 size);
Roman Gushchinb936ca62019-05-29 18:03:58 -07001103void bpf_map_charge_finish(struct bpf_map_memory *mem);
1104void bpf_map_charge_move(struct bpf_map_memory *dst,
1105 struct bpf_map_memory *src);
Daniel Borkmann196e8ca2019-11-20 23:04:44 +01001106void *bpf_map_area_alloc(u64 size, int numa_node);
1107void *bpf_map_area_mmapable_alloc(u64 size, int numa_node);
Daniel Borkmannd407bd22017-01-18 15:14:17 +01001108void bpf_map_area_free(void *base);
Jakub Kicinskibd475642018-01-11 20:29:06 -08001109void bpf_map_init_from_attr(struct bpf_map *map, union bpf_attr *attr);
Brian Vazquezcb4d03a2020-01-15 10:43:01 -08001110int generic_map_lookup_batch(struct bpf_map *map,
1111 const union bpf_attr *attr,
1112 union bpf_attr __user *uattr);
Brian Vazquezaa2e93b2020-01-15 10:43:02 -08001113int generic_map_update_batch(struct bpf_map *map,
1114 const union bpf_attr *attr,
1115 union bpf_attr __user *uattr);
1116int generic_map_delete_batch(struct bpf_map *map,
1117 const union bpf_attr *attr,
1118 union bpf_attr __user *uattr);
Yonghong Song6086d292020-05-09 10:59:09 -07001119struct bpf_map *bpf_map_get_curr_or_next(u32 *id);
Daniel Borkmann61e021f2015-03-02 15:21:55 +01001120
Alexei Starovoitov1be7f752015-10-07 22:23:21 -07001121extern int sysctl_unprivileged_bpf_disabled;
1122
Alexei Starovoitov2c78ee82020-05-13 16:03:54 -07001123static inline bool bpf_allow_ptr_leaks(void)
1124{
1125 return perfmon_capable();
1126}
1127
Andrey Ignatov41c48f32020-06-19 14:11:43 -07001128static inline bool bpf_allow_ptr_to_map_access(void)
1129{
1130 return perfmon_capable();
1131}
1132
Alexei Starovoitov2c78ee82020-05-13 16:03:54 -07001133static inline bool bpf_bypass_spec_v1(void)
1134{
1135 return perfmon_capable();
1136}
1137
1138static inline bool bpf_bypass_spec_v4(void)
1139{
1140 return perfmon_capable();
1141}
1142
Chenbo Feng6e71b042017-10-18 13:00:22 -07001143int bpf_map_new_fd(struct bpf_map *map, int flags);
Daniel Borkmannb2197752015-10-29 14:58:09 +01001144int bpf_prog_new_fd(struct bpf_prog *prog);
1145
Andrii Nakryikoaf6eea52020-03-29 19:59:58 -07001146struct bpf_link {
1147 atomic64_t refcnt;
Andrii Nakryikoa3b80e12020-04-28 17:16:06 -07001148 u32 id;
Andrii Nakryikof2e10bf2020-04-28 17:16:08 -07001149 enum bpf_link_type type;
Andrii Nakryikoaf6eea52020-03-29 19:59:58 -07001150 const struct bpf_link_ops *ops;
1151 struct bpf_prog *prog;
1152 struct work_struct work;
1153};
Andrii Nakryiko70ed5062020-03-02 20:31:57 -08001154
Andrii Nakryikoa3b80e12020-04-28 17:16:06 -07001155struct bpf_link_primer {
1156 struct bpf_link *link;
1157 struct file *file;
1158 int fd;
1159 u32 id;
1160};
1161
Andrii Nakryiko70ed5062020-03-02 20:31:57 -08001162struct bpf_link_ops {
1163 void (*release)(struct bpf_link *link);
Andrii Nakryikobabf3162020-03-09 16:10:51 -07001164 void (*dealloc)(struct bpf_link *link);
Andrii Nakryikof9d04122020-04-28 17:16:05 -07001165 int (*update_prog)(struct bpf_link *link, struct bpf_prog *new_prog,
1166 struct bpf_prog *old_prog);
Andrii Nakryikof2e10bf2020-04-28 17:16:08 -07001167 void (*show_fdinfo)(const struct bpf_link *link, struct seq_file *seq);
1168 int (*fill_link_info)(const struct bpf_link *link,
1169 struct bpf_link_info *info);
Andrii Nakryiko70ed5062020-03-02 20:31:57 -08001170};
1171
Andrii Nakryikof2e10bf2020-04-28 17:16:08 -07001172void bpf_link_init(struct bpf_link *link, enum bpf_link_type type,
Andrii Nakryikoa3b80e12020-04-28 17:16:06 -07001173 const struct bpf_link_ops *ops, struct bpf_prog *prog);
1174int bpf_link_prime(struct bpf_link *link, struct bpf_link_primer *primer);
1175int bpf_link_settle(struct bpf_link_primer *primer);
1176void bpf_link_cleanup(struct bpf_link_primer *primer);
Andrii Nakryiko70ed5062020-03-02 20:31:57 -08001177void bpf_link_inc(struct bpf_link *link);
1178void bpf_link_put(struct bpf_link *link);
1179int bpf_link_new_fd(struct bpf_link *link);
Andrii Nakryikobabf3162020-03-09 16:10:51 -07001180struct file *bpf_link_new_file(struct bpf_link *link, int *reserved_fd);
Andrii Nakryiko70ed5062020-03-02 20:31:57 -08001181struct bpf_link *bpf_link_get_from_fd(u32 ufd);
1182
Daniel Borkmannb2197752015-10-29 14:58:09 +01001183int bpf_obj_pin_user(u32 ufd, const char __user *pathname);
Chenbo Feng6e71b042017-10-18 13:00:22 -07001184int bpf_obj_get_user(const char __user *pathname, int flags);
Daniel Borkmannb2197752015-10-29 14:58:09 +01001185
Yonghong Song21aef702020-05-13 11:02:16 -07001186#define BPF_ITER_FUNC_PREFIX "bpf_iter_"
Yonghong Songe5158d92020-05-09 10:59:07 -07001187#define DEFINE_BPF_ITER_FUNC(target, args...) \
Yonghong Song21aef702020-05-13 11:02:16 -07001188 extern int bpf_iter_ ## target(args); \
1189 int __init bpf_iter_ ## target(args) { return 0; }
Yonghong Song15d83c42020-05-09 10:59:00 -07001190
Yonghong Songae243452020-05-09 10:58:59 -07001191typedef int (*bpf_iter_init_seq_priv_t)(void *private_data);
1192typedef void (*bpf_iter_fini_seq_priv_t)(void *private_data);
1193
Yonghong Song3c32cc12020-05-13 11:02:21 -07001194#define BPF_ITER_CTX_ARG_MAX 2
Yonghong Songae243452020-05-09 10:58:59 -07001195struct bpf_iter_reg {
1196 const char *target;
1197 const struct seq_operations *seq_ops;
1198 bpf_iter_init_seq_priv_t init_seq_private;
1199 bpf_iter_fini_seq_priv_t fini_seq_private;
1200 u32 seq_priv_size;
Yonghong Song3c32cc12020-05-13 11:02:21 -07001201 u32 ctx_arg_info_size;
1202 struct bpf_ctx_arg_aux ctx_arg_info[BPF_ITER_CTX_ARG_MAX];
Yonghong Songae243452020-05-09 10:58:59 -07001203};
1204
Yonghong Songe5158d92020-05-09 10:59:07 -07001205struct bpf_iter_meta {
1206 __bpf_md_ptr(struct seq_file *, seq);
1207 u64 session_id;
1208 u64 seq_num;
1209};
1210
Yonghong Song15172a42020-05-13 11:02:19 -07001211int bpf_iter_reg_target(const struct bpf_iter_reg *reg_info);
Yonghong Songab2ee4f2020-05-13 11:02:20 -07001212void bpf_iter_unreg_target(const struct bpf_iter_reg *reg_info);
Yonghong Song15d83c42020-05-09 10:59:00 -07001213bool bpf_iter_prog_supported(struct bpf_prog *prog);
Yonghong Songde4e05c2020-05-09 10:59:01 -07001214int bpf_iter_link_attach(const union bpf_attr *attr, struct bpf_prog *prog);
Yonghong Songac51d992020-05-09 10:59:05 -07001215int bpf_iter_new_fd(struct bpf_link *link);
Yonghong Song367ec3e2020-05-09 10:59:06 -07001216bool bpf_link_is_iter(struct bpf_link *link);
Yonghong Songe5158d92020-05-09 10:59:07 -07001217struct bpf_prog *bpf_iter_get_info(struct bpf_iter_meta *meta, bool in_stop);
1218int bpf_iter_run_prog(struct bpf_prog *prog, void *ctx);
Yonghong Songae243452020-05-09 10:58:59 -07001219
Alexei Starovoitov15a07b32016-02-01 22:39:55 -08001220int bpf_percpu_hash_copy(struct bpf_map *map, void *key, void *value);
1221int bpf_percpu_array_copy(struct bpf_map *map, void *key, void *value);
1222int bpf_percpu_hash_update(struct bpf_map *map, void *key, void *value,
1223 u64 flags);
1224int bpf_percpu_array_update(struct bpf_map *map, void *key, void *value,
1225 u64 flags);
Daniel Borkmannd056a782016-06-15 22:47:13 +02001226
Alexei Starovoitov557c0c62016-03-07 21:57:17 -08001227int bpf_stackmap_copy(struct bpf_map *map, void *key, void *value);
Alexei Starovoitov15a07b32016-02-01 22:39:55 -08001228
Daniel Borkmannd056a782016-06-15 22:47:13 +02001229int bpf_fd_array_map_update_elem(struct bpf_map *map, struct file *map_file,
1230 void *key, void *value, u64 map_flags);
Martin KaFai Lau14dc6f02017-06-27 23:08:34 -07001231int bpf_fd_array_map_lookup_elem(struct bpf_map *map, void *key, u32 *value);
Martin KaFai Laubcc6b1b2017-03-22 10:00:34 -07001232int bpf_fd_htab_map_update_elem(struct bpf_map *map, struct file *map_file,
1233 void *key, void *value, u64 map_flags);
Martin KaFai Lau14dc6f02017-06-27 23:08:34 -07001234int bpf_fd_htab_map_lookup_elem(struct bpf_map *map, void *key, u32 *value);
Daniel Borkmannd056a782016-06-15 22:47:13 +02001235
Chenbo Feng6e71b042017-10-18 13:00:22 -07001236int bpf_get_file_flag(int flags);
Martin KaFai Laudcab51f2018-05-22 15:03:31 -07001237int bpf_check_uarg_tail_zero(void __user *uaddr, size_t expected_size,
1238 size_t actual_size);
Chenbo Feng6e71b042017-10-18 13:00:22 -07001239
Alexei Starovoitov15a07b32016-02-01 22:39:55 -08001240/* memcpy that is used with 8-byte aligned pointers, power-of-8 size and
1241 * forced to use 'long' read/writes to try to atomically copy long counters.
1242 * Best-effort only. No barriers here, since it _will_ race with concurrent
1243 * updates from BPF programs. Called from bpf syscall and mostly used with
1244 * size 8 or 16 bytes, so ask compiler to inline it.
1245 */
1246static inline void bpf_long_memcpy(void *dst, const void *src, u32 size)
1247{
1248 const long *lsrc = src;
1249 long *ldst = dst;
1250
1251 size /= sizeof(long);
1252 while (size--)
1253 *ldst++ = *lsrc++;
1254}
1255
Daniel Borkmann61e021f2015-03-02 15:21:55 +01001256/* verify correctness of eBPF program */
Yonghong Song838e9692018-11-19 15:29:11 -08001257int bpf_check(struct bpf_prog **fp, union bpf_attr *attr,
1258 union bpf_attr __user *uattr);
Alexei Starovoitov1ea47e02017-12-14 17:55:13 -08001259void bpf_patch_call_args(struct bpf_insn *insn, u32 stack_depth);
John Fastabend46f55cf2017-07-17 21:56:48 -07001260
1261/* Map specifics */
Jesper Dangaard Brouer67f29e02018-05-24 16:45:46 +02001262struct xdp_buff;
Toshiaki Makita6d5fc192018-06-14 11:07:42 +09001263struct sk_buff;
Jesper Dangaard Brouer67f29e02018-05-24 16:45:46 +02001264
1265struct bpf_dtab_netdev *__dev_map_lookup_elem(struct bpf_map *map, u32 key);
Toke Høiland-Jørgensen6f9d4512019-07-26 18:06:55 +02001266struct bpf_dtab_netdev *__dev_map_hash_lookup_elem(struct bpf_map *map, u32 key);
Toke Høiland-Jørgensen1d233882020-01-16 16:14:45 +01001267void __dev_flush(void);
1268int dev_xdp_enqueue(struct net_device *dev, struct xdp_buff *xdp,
1269 struct net_device *dev_rx);
Jesper Dangaard Brouer38edddb2018-05-24 16:45:57 +02001270int dev_map_enqueue(struct bpf_dtab_netdev *dst, struct xdp_buff *xdp,
1271 struct net_device *dev_rx);
Toshiaki Makita6d5fc192018-06-14 11:07:42 +09001272int dev_map_generic_redirect(struct bpf_dtab_netdev *dst, struct sk_buff *skb,
1273 struct bpf_prog *xdp_prog);
David Ahernfbee97f2020-05-29 16:07:13 -06001274bool dev_map_can_have_prog(struct bpf_map *map);
John Fastabend46f55cf2017-07-17 21:56:48 -07001275
Jesper Dangaard Brouer9c270af2017-10-16 12:19:34 +02001276struct bpf_cpu_map_entry *__cpu_map_lookup_elem(struct bpf_map *map, u32 key);
Björn Töpelcdfafe92019-12-19 07:10:04 +01001277void __cpu_map_flush(void);
Jesper Dangaard Brouer9c270af2017-10-16 12:19:34 +02001278int cpu_map_enqueue(struct bpf_cpu_map_entry *rcpu, struct xdp_buff *xdp,
1279 struct net_device *dev_rx);
Lorenzo Bianconi92164772020-07-14 15:56:38 +02001280bool cpu_map_prog_allowed(struct bpf_map *map);
Jesper Dangaard Brouer9c270af2017-10-16 12:19:34 +02001281
Martin KaFai Lau96eabe72017-08-18 11:28:00 -07001282/* Return map's numa specified by userspace */
1283static inline int bpf_map_attr_numa_node(const union bpf_attr *attr)
1284{
1285 return (attr->map_flags & BPF_F_NUMA_NODE) ?
1286 attr->numa_node : NUMA_NO_NODE;
1287}
1288
Al Viro040ee692017-12-02 20:20:38 -05001289struct bpf_prog *bpf_prog_get_type_path(const char *name, enum bpf_prog_type type);
Martin KaFai Lau5dc4c4b2018-08-08 01:01:24 -07001290int array_map_alloc_check(union bpf_attr *attr);
Al Viro040ee692017-12-02 20:20:38 -05001291
Stanislav Fomichevc6958652019-04-11 09:12:02 -07001292int bpf_prog_test_run_xdp(struct bpf_prog *prog, const union bpf_attr *kattr,
1293 union bpf_attr __user *uattr);
1294int bpf_prog_test_run_skb(struct bpf_prog *prog, const union bpf_attr *kattr,
1295 union bpf_attr __user *uattr);
KP Singhda00d2f2020-03-04 20:18:52 +01001296int bpf_prog_test_run_tracing(struct bpf_prog *prog,
1297 const union bpf_attr *kattr,
1298 union bpf_attr __user *uattr);
Stanislav Fomichevc6958652019-04-11 09:12:02 -07001299int bpf_prog_test_run_flow_dissector(struct bpf_prog *prog,
1300 const union bpf_attr *kattr,
1301 union bpf_attr __user *uattr);
Alexei Starovoitov9e15db62019-10-15 20:25:00 -07001302bool btf_ctx_access(int off, int size, enum bpf_access_type type,
1303 const struct bpf_prog *prog,
1304 struct bpf_insn_access_aux *info);
1305int btf_struct_access(struct bpf_verifier_log *log,
1306 const struct btf_type *t, int off, int size,
1307 enum bpf_access_type atype,
1308 u32 *next_btf_id);
Alexei Starovoitov9cc31b32019-11-14 10:57:14 -08001309int btf_resolve_helper_id(struct bpf_verifier_log *log,
1310 const struct bpf_func_proto *fn, int);
Alexei Starovoitov9e15db62019-10-15 20:25:00 -07001311
Alexei Starovoitovfec56f52019-11-14 10:57:04 -08001312int btf_distill_func_proto(struct bpf_verifier_log *log,
1313 struct btf *btf,
1314 const struct btf_type *func_proto,
1315 const char *func_name,
1316 struct btf_func_model *m);
1317
Alexei Starovoitov51c39bb2020-01-09 22:41:20 -08001318struct bpf_reg_state;
1319int btf_check_func_arg_match(struct bpf_verifier_env *env, int subprog,
1320 struct bpf_reg_state *regs);
1321int btf_prepare_func_args(struct bpf_verifier_env *env, int subprog,
1322 struct bpf_reg_state *reg);
Alexei Starovoitovbe8704f2020-01-20 16:53:46 -08001323int btf_check_type_match(struct bpf_verifier_env *env, struct bpf_prog *prog,
1324 struct btf *btf, const struct btf_type *t);
Alexei Starovoitov8c1b6e62019-11-14 10:57:16 -08001325
Björn Töpel7e6897f2019-12-13 18:51:09 +01001326struct bpf_prog *bpf_prog_by_id(u32 id);
1327
Stanislav Fomichev68908962020-04-24 16:59:41 -07001328const struct bpf_func_proto *bpf_base_func_proto(enum bpf_func_id func_id);
Jesper Dangaard Brouer9c270af2017-10-16 12:19:34 +02001329#else /* !CONFIG_BPF_SYSCALL */
Daniel Borkmann0fc174d2015-03-01 12:31:44 +01001330static inline struct bpf_prog *bpf_prog_get(u32 ufd)
1331{
1332 return ERR_PTR(-EOPNOTSUPP);
1333}
1334
Jakub Kicinski248f3462017-11-03 13:56:20 -07001335static inline struct bpf_prog *bpf_prog_get_type_dev(u32 ufd,
1336 enum bpf_prog_type type,
Jakub Kicinski288b3de2017-11-20 15:21:54 -08001337 bool attach_drv)
Jakub Kicinski248f3462017-11-03 13:56:20 -07001338{
1339 return ERR_PTR(-EOPNOTSUPP);
1340}
1341
Andrii Nakryiko85192db2019-11-17 09:28:03 -08001342static inline void bpf_prog_add(struct bpf_prog *prog, int i)
Brenden Blancocc2e0b32016-07-20 07:55:52 -07001343{
Brenden Blancocc2e0b32016-07-20 07:55:52 -07001344}
Daniel Borkmann113214b2016-06-30 17:24:44 +02001345
Daniel Borkmannc5405942016-11-09 22:02:34 +01001346static inline void bpf_prog_sub(struct bpf_prog *prog, int i)
1347{
1348}
1349
Daniel Borkmann0fc174d2015-03-01 12:31:44 +01001350static inline void bpf_prog_put(struct bpf_prog *prog)
1351{
1352}
Daniel Borkmann6d67942dd2016-11-19 01:45:03 +01001353
Andrii Nakryiko85192db2019-11-17 09:28:03 -08001354static inline void bpf_prog_inc(struct bpf_prog *prog)
Alexei Starovoitovaa6a5f32016-09-01 18:37:24 -07001355{
Alexei Starovoitovaa6a5f32016-09-01 18:37:24 -07001356}
Daniel Borkmann5ccb0712016-12-18 01:52:58 +01001357
John Fastabenda6f6df62017-08-15 22:32:22 -07001358static inline struct bpf_prog *__must_check
1359bpf_prog_inc_not_zero(struct bpf_prog *prog)
1360{
1361 return ERR_PTR(-EOPNOTSUPP);
1362}
1363
Daniel Borkmann5ccb0712016-12-18 01:52:58 +01001364static inline int __bpf_prog_charge(struct user_struct *user, u32 pages)
1365{
1366 return 0;
1367}
1368
1369static inline void __bpf_prog_uncharge(struct user_struct *user, u32 pages)
1370{
1371}
John Fastabend46f55cf2017-07-17 21:56:48 -07001372
Chenbo Feng6e71b042017-10-18 13:00:22 -07001373static inline int bpf_obj_get_user(const char __user *pathname, int flags)
Shmulik Ladkani98589a02017-10-09 15:27:15 +03001374{
1375 return -EOPNOTSUPP;
1376}
1377
John Fastabend46f55cf2017-07-17 21:56:48 -07001378static inline struct net_device *__dev_map_lookup_elem(struct bpf_map *map,
1379 u32 key)
1380{
1381 return NULL;
1382}
1383
Toke Høiland-Jørgensen6f9d4512019-07-26 18:06:55 +02001384static inline struct net_device *__dev_map_hash_lookup_elem(struct bpf_map *map,
1385 u32 key)
1386{
1387 return NULL;
1388}
David Ahernfbee97f2020-05-29 16:07:13 -06001389static inline bool dev_map_can_have_prog(struct bpf_map *map)
1390{
1391 return false;
1392}
Toke Høiland-Jørgensen6f9d4512019-07-26 18:06:55 +02001393
Toke Høiland-Jørgensen1d233882020-01-16 16:14:45 +01001394static inline void __dev_flush(void)
John Fastabend46f55cf2017-07-17 21:56:48 -07001395{
1396}
Jesper Dangaard Brouer9c270af2017-10-16 12:19:34 +02001397
Jesper Dangaard Brouer67f29e02018-05-24 16:45:46 +02001398struct xdp_buff;
1399struct bpf_dtab_netdev;
1400
1401static inline
Toke Høiland-Jørgensen1d233882020-01-16 16:14:45 +01001402int dev_xdp_enqueue(struct net_device *dev, struct xdp_buff *xdp,
1403 struct net_device *dev_rx)
1404{
1405 return 0;
1406}
1407
1408static inline
Jesper Dangaard Brouer38edddb2018-05-24 16:45:57 +02001409int dev_map_enqueue(struct bpf_dtab_netdev *dst, struct xdp_buff *xdp,
1410 struct net_device *dev_rx)
Jesper Dangaard Brouer67f29e02018-05-24 16:45:46 +02001411{
1412 return 0;
1413}
1414
Toshiaki Makita6d5fc192018-06-14 11:07:42 +09001415struct sk_buff;
1416
1417static inline int dev_map_generic_redirect(struct bpf_dtab_netdev *dst,
1418 struct sk_buff *skb,
1419 struct bpf_prog *xdp_prog)
1420{
1421 return 0;
1422}
1423
Jesper Dangaard Brouer9c270af2017-10-16 12:19:34 +02001424static inline
1425struct bpf_cpu_map_entry *__cpu_map_lookup_elem(struct bpf_map *map, u32 key)
1426{
1427 return NULL;
1428}
1429
Björn Töpelcdfafe92019-12-19 07:10:04 +01001430static inline void __cpu_map_flush(void)
Jesper Dangaard Brouer9c270af2017-10-16 12:19:34 +02001431{
1432}
1433
Jesper Dangaard Brouer9c270af2017-10-16 12:19:34 +02001434static inline int cpu_map_enqueue(struct bpf_cpu_map_entry *rcpu,
1435 struct xdp_buff *xdp,
1436 struct net_device *dev_rx)
1437{
1438 return 0;
1439}
Al Viro040ee692017-12-02 20:20:38 -05001440
Lorenzo Bianconi92164772020-07-14 15:56:38 +02001441static inline bool cpu_map_prog_allowed(struct bpf_map *map)
1442{
1443 return false;
1444}
1445
Al Viro040ee692017-12-02 20:20:38 -05001446static inline struct bpf_prog *bpf_prog_get_type_path(const char *name,
1447 enum bpf_prog_type type)
1448{
1449 return ERR_PTR(-EOPNOTSUPP);
1450}
Stanislav Fomichevc6958652019-04-11 09:12:02 -07001451
1452static inline int bpf_prog_test_run_xdp(struct bpf_prog *prog,
1453 const union bpf_attr *kattr,
1454 union bpf_attr __user *uattr)
1455{
1456 return -ENOTSUPP;
1457}
1458
1459static inline int bpf_prog_test_run_skb(struct bpf_prog *prog,
1460 const union bpf_attr *kattr,
1461 union bpf_attr __user *uattr)
1462{
1463 return -ENOTSUPP;
1464}
1465
KP Singhda00d2f2020-03-04 20:18:52 +01001466static inline int bpf_prog_test_run_tracing(struct bpf_prog *prog,
1467 const union bpf_attr *kattr,
1468 union bpf_attr __user *uattr)
1469{
1470 return -ENOTSUPP;
1471}
1472
Stanislav Fomichevc6958652019-04-11 09:12:02 -07001473static inline int bpf_prog_test_run_flow_dissector(struct bpf_prog *prog,
1474 const union bpf_attr *kattr,
1475 union bpf_attr __user *uattr)
1476{
1477 return -ENOTSUPP;
1478}
Daniel Borkmann6332be02019-11-22 21:07:55 +01001479
1480static inline void bpf_map_put(struct bpf_map *map)
1481{
1482}
Björn Töpel7e6897f2019-12-13 18:51:09 +01001483
1484static inline struct bpf_prog *bpf_prog_by_id(u32 id)
1485{
1486 return ERR_PTR(-ENOTSUPP);
1487}
Stanislav Fomichev68908962020-04-24 16:59:41 -07001488
1489static inline const struct bpf_func_proto *
1490bpf_base_func_proto(enum bpf_func_id func_id)
1491{
1492 return NULL;
1493}
Daniel Borkmann61e021f2015-03-02 15:21:55 +01001494#endif /* CONFIG_BPF_SYSCALL */
Alexei Starovoitov09756af2014-09-26 00:17:00 -07001495
Jakub Kicinski479321e2017-11-20 15:21:56 -08001496static inline struct bpf_prog *bpf_prog_get_type(u32 ufd,
1497 enum bpf_prog_type type)
1498{
1499 return bpf_prog_get_type_dev(ufd, type, false);
1500}
1501
Al Viro040ee692017-12-02 20:20:38 -05001502bool bpf_prog_get_ok(struct bpf_prog *, enum bpf_prog_type *, bool);
1503
Jakub Kicinskiab3f0062017-11-03 13:56:17 -07001504int bpf_prog_offload_compile(struct bpf_prog *prog);
1505void bpf_prog_offload_destroy(struct bpf_prog *prog);
Jakub Kicinski675fc272017-12-27 18:39:09 -08001506int bpf_prog_offload_info_fill(struct bpf_prog_info *info,
1507 struct bpf_prog *prog);
Jakub Kicinskiab3f0062017-11-03 13:56:17 -07001508
Jakub Kicinski52775b32018-01-17 19:13:28 -08001509int bpf_map_offload_info_fill(struct bpf_map_info *info, struct bpf_map *map);
1510
Jakub Kicinskia3884572018-01-11 20:29:09 -08001511int bpf_map_offload_lookup_elem(struct bpf_map *map, void *key, void *value);
1512int bpf_map_offload_update_elem(struct bpf_map *map,
1513 void *key, void *value, u64 flags);
1514int bpf_map_offload_delete_elem(struct bpf_map *map, void *key);
1515int bpf_map_offload_get_next_key(struct bpf_map *map,
1516 void *key, void *next_key);
1517
Jakub Kicinski09728262018-07-17 10:53:23 -07001518bool bpf_offload_prog_map_match(struct bpf_prog *prog, struct bpf_map *map);
Jakub Kicinskia3884572018-01-11 20:29:09 -08001519
Quentin Monnet1385d752018-11-09 13:03:25 +00001520struct bpf_offload_dev *
Jakub Kicinskidd27c2e2019-02-12 00:20:39 -08001521bpf_offload_dev_create(const struct bpf_prog_offload_ops *ops, void *priv);
Jakub Kicinski602144c2018-07-17 10:53:25 -07001522void bpf_offload_dev_destroy(struct bpf_offload_dev *offdev);
Jakub Kicinskidd27c2e2019-02-12 00:20:39 -08001523void *bpf_offload_dev_priv(struct bpf_offload_dev *offdev);
Jakub Kicinski602144c2018-07-17 10:53:25 -07001524int bpf_offload_dev_netdev_register(struct bpf_offload_dev *offdev,
1525 struct net_device *netdev);
1526void bpf_offload_dev_netdev_unregister(struct bpf_offload_dev *offdev,
1527 struct net_device *netdev);
Jakub Kicinskifd4f2272018-07-17 10:53:26 -07001528bool bpf_offload_dev_match(struct bpf_prog *prog, struct net_device *netdev);
Jakub Kicinski9fd7c552018-07-17 10:53:24 -07001529
Jakub Kicinskiab3f0062017-11-03 13:56:17 -07001530#if defined(CONFIG_NET) && defined(CONFIG_BPF_SYSCALL)
1531int bpf_prog_offload_init(struct bpf_prog *prog, union bpf_attr *attr);
1532
Jakub Kicinski0d830032018-05-08 19:37:06 -07001533static inline bool bpf_prog_is_dev_bound(const struct bpf_prog_aux *aux)
Jakub Kicinskiab3f0062017-11-03 13:56:17 -07001534{
Jakub Kicinski9a18eed2017-12-27 18:39:04 -08001535 return aux->offload_requested;
Jakub Kicinskiab3f0062017-11-03 13:56:17 -07001536}
Jakub Kicinskia3884572018-01-11 20:29:09 -08001537
1538static inline bool bpf_map_is_dev_bound(struct bpf_map *map)
1539{
1540 return unlikely(map->ops == &bpf_map_offload_ops);
1541}
1542
1543struct bpf_map *bpf_map_offload_map_alloc(union bpf_attr *attr);
1544void bpf_map_offload_map_free(struct bpf_map *map);
Jakub Kicinskiab3f0062017-11-03 13:56:17 -07001545#else
1546static inline int bpf_prog_offload_init(struct bpf_prog *prog,
1547 union bpf_attr *attr)
1548{
1549 return -EOPNOTSUPP;
1550}
1551
1552static inline bool bpf_prog_is_dev_bound(struct bpf_prog_aux *aux)
1553{
1554 return false;
1555}
Jakub Kicinskia3884572018-01-11 20:29:09 -08001556
1557static inline bool bpf_map_is_dev_bound(struct bpf_map *map)
1558{
1559 return false;
1560}
1561
1562static inline struct bpf_map *bpf_map_offload_map_alloc(union bpf_attr *attr)
1563{
1564 return ERR_PTR(-EOPNOTSUPP);
1565}
1566
1567static inline void bpf_map_offload_map_free(struct bpf_map *map)
1568{
1569}
Jakub Kicinskiab3f0062017-11-03 13:56:17 -07001570#endif /* CONFIG_NET && CONFIG_BPF_SYSCALL */
1571
Daniel Borkmann604326b2018-10-13 02:45:58 +02001572#if defined(CONFIG_BPF_STREAM_PARSER)
Lorenz Bauerbb0de312020-06-29 10:56:28 +01001573int sock_map_prog_update(struct bpf_map *map, struct bpf_prog *prog,
1574 struct bpf_prog *old, u32 which);
Daniel Borkmann604326b2018-10-13 02:45:58 +02001575int sock_map_get_from_fd(const union bpf_attr *attr, struct bpf_prog *prog);
Lorenz Bauerbb0de312020-06-29 10:56:28 +01001576int sock_map_prog_detach(const union bpf_attr *attr, enum bpf_prog_type ptype);
Lorenz Bauerf7476322020-03-09 11:12:36 +00001577void sock_map_unhash(struct sock *sk);
1578void sock_map_close(struct sock *sk, long timeout);
John Fastabend6bdc9c42017-08-16 15:02:32 -07001579#else
Daniel Borkmann604326b2018-10-13 02:45:58 +02001580static inline int sock_map_prog_update(struct bpf_map *map,
Lorenz Bauerbb0de312020-06-29 10:56:28 +01001581 struct bpf_prog *prog,
1582 struct bpf_prog *old, u32 which)
John Fastabend464bc0f2017-08-28 07:10:04 -07001583{
1584 return -EOPNOTSUPP;
1585}
Sean Youngfdb5c452018-06-19 00:04:24 +01001586
Daniel Borkmann604326b2018-10-13 02:45:58 +02001587static inline int sock_map_get_from_fd(const union bpf_attr *attr,
1588 struct bpf_prog *prog)
Sean Youngfdb5c452018-06-19 00:04:24 +01001589{
1590 return -EINVAL;
1591}
Lorenz Bauerbb0de312020-06-29 10:56:28 +01001592
1593static inline int sock_map_prog_detach(const union bpf_attr *attr,
1594 enum bpf_prog_type ptype)
1595{
1596 return -EOPNOTSUPP;
1597}
Lorenz Bauerf7476322020-03-09 11:12:36 +00001598#endif /* CONFIG_BPF_STREAM_PARSER */
John Fastabend6bdc9c42017-08-16 15:02:32 -07001599
Martin KaFai Lau5dc4c4b2018-08-08 01:01:24 -07001600#if defined(CONFIG_INET) && defined(CONFIG_BPF_SYSCALL)
1601void bpf_sk_reuseport_detach(struct sock *sk);
1602int bpf_fd_reuseport_array_lookup_elem(struct bpf_map *map, void *key,
1603 void *value);
1604int bpf_fd_reuseport_array_update_elem(struct bpf_map *map, void *key,
1605 void *value, u64 map_flags);
1606#else
1607static inline void bpf_sk_reuseport_detach(struct sock *sk)
1608{
1609}
1610
1611#ifdef CONFIG_BPF_SYSCALL
1612static inline int bpf_fd_reuseport_array_lookup_elem(struct bpf_map *map,
1613 void *key, void *value)
1614{
1615 return -EOPNOTSUPP;
1616}
1617
1618static inline int bpf_fd_reuseport_array_update_elem(struct bpf_map *map,
1619 void *key, void *value,
1620 u64 map_flags)
1621{
1622 return -EOPNOTSUPP;
1623}
1624#endif /* CONFIG_BPF_SYSCALL */
1625#endif /* defined(CONFIG_INET) && defined(CONFIG_BPF_SYSCALL) */
1626
Alexei Starovoitovd0003ec2014-11-13 17:36:49 -08001627/* verifier prototypes for helper functions called from eBPF programs */
Daniel Borkmanna2c83ff2015-03-01 12:31:42 +01001628extern const struct bpf_func_proto bpf_map_lookup_elem_proto;
1629extern const struct bpf_func_proto bpf_map_update_elem_proto;
1630extern const struct bpf_func_proto bpf_map_delete_elem_proto;
Mauricio Vasquez Bf1a2e442018-10-18 15:16:25 +02001631extern const struct bpf_func_proto bpf_map_push_elem_proto;
1632extern const struct bpf_func_proto bpf_map_pop_elem_proto;
1633extern const struct bpf_func_proto bpf_map_peek_elem_proto;
Alexei Starovoitovd0003ec2014-11-13 17:36:49 -08001634
Daniel Borkmann03e69b52015-03-14 02:27:16 +01001635extern const struct bpf_func_proto bpf_get_prandom_u32_proto;
Daniel Borkmannc04167c2015-03-14 02:27:17 +01001636extern const struct bpf_func_proto bpf_get_smp_processor_id_proto;
Daniel Borkmann2d0e30c2016-10-21 12:46:33 +02001637extern const struct bpf_func_proto bpf_get_numa_node_id_proto;
Alexei Starovoitov04fd61ab2015-05-19 16:59:03 -07001638extern const struct bpf_func_proto bpf_tail_call_proto;
Daniel Borkmann17ca8cb2015-05-29 23:23:06 +02001639extern const struct bpf_func_proto bpf_ktime_get_ns_proto;
Maciej Żenczykowski71d19212020-04-26 09:15:25 -07001640extern const struct bpf_func_proto bpf_ktime_get_boot_ns_proto;
Alexei Starovoitovffeedaf2015-06-12 19:39:12 -07001641extern const struct bpf_func_proto bpf_get_current_pid_tgid_proto;
1642extern const struct bpf_func_proto bpf_get_current_uid_gid_proto;
1643extern const struct bpf_func_proto bpf_get_current_comm_proto;
Alexei Starovoitovd5a3b1f2016-02-17 19:58:58 -08001644extern const struct bpf_func_proto bpf_get_stackid_proto;
Yonghong Songc195651e2018-04-28 22:28:08 -07001645extern const struct bpf_func_proto bpf_get_stack_proto;
Song Liufa28dcb2020-06-29 23:28:44 -07001646extern const struct bpf_func_proto bpf_get_task_stack_proto;
John Fastabend174a79f2017-08-15 22:32:47 -07001647extern const struct bpf_func_proto bpf_sock_map_update_proto;
John Fastabend81110382018-05-14 10:00:17 -07001648extern const struct bpf_func_proto bpf_sock_hash_update_proto;
Yonghong Songbf6fa2c82018-06-03 15:59:41 -07001649extern const struct bpf_func_proto bpf_get_current_cgroup_id_proto;
Daniel Borkmann0f09abd2020-03-27 16:58:54 +01001650extern const struct bpf_func_proto bpf_get_current_ancestor_cgroup_id_proto;
Daniel Borkmann604326b2018-10-13 02:45:58 +02001651extern const struct bpf_func_proto bpf_msg_redirect_hash_proto;
1652extern const struct bpf_func_proto bpf_msg_redirect_map_proto;
1653extern const struct bpf_func_proto bpf_sk_redirect_hash_proto;
1654extern const struct bpf_func_proto bpf_sk_redirect_map_proto;
Alexei Starovoitovd83525c2019-01-31 15:40:04 -08001655extern const struct bpf_func_proto bpf_spin_lock_proto;
1656extern const struct bpf_func_proto bpf_spin_unlock_proto;
Roman Gushchincd339432018-08-02 14:27:24 -07001657extern const struct bpf_func_proto bpf_get_local_storage_proto;
Andrey Ignatovd7a4cb92019-03-18 17:55:26 -07001658extern const struct bpf_func_proto bpf_strtol_proto;
1659extern const struct bpf_func_proto bpf_strtoul_proto;
Stanislav Fomichev0d01da62019-06-27 13:38:47 -07001660extern const struct bpf_func_proto bpf_tcp_sock_proto;
Martin KaFai Lau5576b992020-01-22 15:36:46 -08001661extern const struct bpf_func_proto bpf_jiffies64_proto;
Carlos Neirab4490c52020-03-04 17:41:56 -03001662extern const struct bpf_func_proto bpf_get_ns_current_pid_tgid_proto;
Stanislav Fomichev0456ea12020-04-20 10:46:10 -07001663extern const struct bpf_func_proto bpf_event_output_data_proto;
Andrii Nakryiko457f4432020-05-29 00:54:20 -07001664extern const struct bpf_func_proto bpf_ringbuf_output_proto;
1665extern const struct bpf_func_proto bpf_ringbuf_reserve_proto;
1666extern const struct bpf_func_proto bpf_ringbuf_submit_proto;
1667extern const struct bpf_func_proto bpf_ringbuf_discard_proto;
1668extern const struct bpf_func_proto bpf_ringbuf_query_proto;
Yonghong Songaf7ec132020-06-23 16:08:09 -07001669extern const struct bpf_func_proto bpf_skc_to_tcp6_sock_proto;
Yonghong Song478cfbd2020-06-23 16:08:11 -07001670extern const struct bpf_func_proto bpf_skc_to_tcp_sock_proto;
1671extern const struct bpf_func_proto bpf_skc_to_tcp_timewait_sock_proto;
1672extern const struct bpf_func_proto bpf_skc_to_tcp_request_sock_proto;
Yonghong Song0d4fad32020-06-23 16:08:15 -07001673extern const struct bpf_func_proto bpf_skc_to_udp6_sock_proto;
Roman Gushchincd339432018-08-02 14:27:24 -07001674
KP Singhfc611f42020-03-29 01:43:49 +01001675const struct bpf_func_proto *bpf_tracing_func_proto(
1676 enum bpf_func_id func_id, const struct bpf_prog *prog);
1677
Jiri Olsa958a3f22020-05-31 17:42:55 +02001678const struct bpf_func_proto *tracing_prog_func_proto(
1679 enum bpf_func_id func_id, const struct bpf_prog *prog);
1680
Daniel Borkmann3ad00402015-10-08 01:20:39 +02001681/* Shared helpers among cBPF and eBPF. */
1682void bpf_user_rnd_init_once(void);
1683u64 bpf_user_rnd_u32(u64 r1, u64 r2, u64 r3, u64 r4, u64 r5);
Stanislav Fomichev68908962020-04-24 16:59:41 -07001684u64 bpf_get_raw_cpu_id(u64 r1, u64 r2, u64 r3, u64 r4, u64 r5);
Daniel Borkmann3ad00402015-10-08 01:20:39 +02001685
Joe Stringerc64b7982018-10-02 13:35:33 -07001686#if defined(CONFIG_NET)
Martin KaFai Lau46f8bc92019-02-09 23:22:20 -08001687bool bpf_sock_common_is_valid_access(int off, int size,
1688 enum bpf_access_type type,
1689 struct bpf_insn_access_aux *info);
Joe Stringerc64b7982018-10-02 13:35:33 -07001690bool bpf_sock_is_valid_access(int off, int size, enum bpf_access_type type,
1691 struct bpf_insn_access_aux *info);
1692u32 bpf_sock_convert_ctx_access(enum bpf_access_type type,
1693 const struct bpf_insn *si,
1694 struct bpf_insn *insn_buf,
1695 struct bpf_prog *prog,
1696 u32 *target_size);
1697#else
Martin KaFai Lau46f8bc92019-02-09 23:22:20 -08001698static inline bool bpf_sock_common_is_valid_access(int off, int size,
1699 enum bpf_access_type type,
1700 struct bpf_insn_access_aux *info)
1701{
1702 return false;
1703}
Joe Stringerc64b7982018-10-02 13:35:33 -07001704static inline bool bpf_sock_is_valid_access(int off, int size,
1705 enum bpf_access_type type,
1706 struct bpf_insn_access_aux *info)
1707{
1708 return false;
1709}
1710static inline u32 bpf_sock_convert_ctx_access(enum bpf_access_type type,
1711 const struct bpf_insn *si,
1712 struct bpf_insn *insn_buf,
1713 struct bpf_prog *prog,
1714 u32 *target_size)
1715{
1716 return 0;
1717}
1718#endif
1719
Martin KaFai Lau655a51e2019-02-09 23:22:24 -08001720#ifdef CONFIG_INET
Alexei Starovoitov91cc1a92019-11-14 10:57:15 -08001721struct sk_reuseport_kern {
1722 struct sk_buff *skb;
1723 struct sock *sk;
1724 struct sock *selected_sk;
1725 void *data_end;
1726 u32 hash;
1727 u32 reuseport_id;
1728 bool bind_inany;
1729};
Martin KaFai Lau655a51e2019-02-09 23:22:24 -08001730bool bpf_tcp_sock_is_valid_access(int off, int size, enum bpf_access_type type,
1731 struct bpf_insn_access_aux *info);
1732
1733u32 bpf_tcp_sock_convert_ctx_access(enum bpf_access_type type,
1734 const struct bpf_insn *si,
1735 struct bpf_insn *insn_buf,
1736 struct bpf_prog *prog,
1737 u32 *target_size);
YueHaibing7f942082019-06-12 17:18:47 +08001738
1739bool bpf_xdp_sock_is_valid_access(int off, int size, enum bpf_access_type type,
1740 struct bpf_insn_access_aux *info);
1741
1742u32 bpf_xdp_sock_convert_ctx_access(enum bpf_access_type type,
1743 const struct bpf_insn *si,
1744 struct bpf_insn *insn_buf,
1745 struct bpf_prog *prog,
1746 u32 *target_size);
Martin KaFai Lau655a51e2019-02-09 23:22:24 -08001747#else
1748static inline bool bpf_tcp_sock_is_valid_access(int off, int size,
1749 enum bpf_access_type type,
1750 struct bpf_insn_access_aux *info)
1751{
1752 return false;
1753}
1754
1755static inline u32 bpf_tcp_sock_convert_ctx_access(enum bpf_access_type type,
1756 const struct bpf_insn *si,
1757 struct bpf_insn *insn_buf,
1758 struct bpf_prog *prog,
1759 u32 *target_size)
1760{
1761 return 0;
1762}
YueHaibing7f942082019-06-12 17:18:47 +08001763static inline bool bpf_xdp_sock_is_valid_access(int off, int size,
1764 enum bpf_access_type type,
1765 struct bpf_insn_access_aux *info)
1766{
1767 return false;
1768}
1769
1770static inline u32 bpf_xdp_sock_convert_ctx_access(enum bpf_access_type type,
1771 const struct bpf_insn *si,
1772 struct bpf_insn *insn_buf,
1773 struct bpf_prog *prog,
1774 u32 *target_size)
1775{
1776 return 0;
1777}
Martin KaFai Lau655a51e2019-02-09 23:22:24 -08001778#endif /* CONFIG_INET */
1779
Alexei Starovoitov5964b202019-11-14 10:57:03 -08001780enum bpf_text_poke_type {
Daniel Borkmannb553a6e2019-11-24 01:39:42 +01001781 BPF_MOD_CALL,
1782 BPF_MOD_JUMP,
Alexei Starovoitov5964b202019-11-14 10:57:03 -08001783};
Daniel Borkmann4b3da772019-11-22 21:07:54 +01001784
Alexei Starovoitov5964b202019-11-14 10:57:03 -08001785int bpf_arch_text_poke(void *ip, enum bpf_text_poke_type t,
1786 void *addr1, void *addr2);
1787
Alexei Starovoitov99c55f72014-09-26 00:16:57 -07001788#endif /* _LINUX_BPF_H */