blob: b33d057ac5eb2a85e19be59f0bceacf547cc9e59 [file] [log] [blame]
Linus Torvalds1da177e2005-04-16 15:20:36 -07001/*
2 * Linux INET6 implementation
3 * FIB front-end.
4 *
5 * Authors:
YOSHIFUJI Hideaki1ab14572007-02-09 23:24:49 +09006 * Pedro Roque <roque@di.fc.ul.pt>
Linus Torvalds1da177e2005-04-16 15:20:36 -07007 *
Linus Torvalds1da177e2005-04-16 15:20:36 -07008 * This program is free software; you can redistribute it and/or
9 * modify it under the terms of the GNU General Public License
10 * as published by the Free Software Foundation; either version
11 * 2 of the License, or (at your option) any later version.
12 */
13
14/* Changes:
15 *
16 * YOSHIFUJI Hideaki @USAGI
17 * reworked default router selection.
18 * - respect outgoing interface
19 * - select from (probably) reachable routers (i.e.
20 * routers in REACHABLE, STALE, DELAY or PROBE states).
21 * - always select the same router if it is (probably)
22 * reachable. otherwise, round-robin the list.
YOSHIFUJI Hideakic0bece92006-08-23 17:23:25 -070023 * Ville Nuorvala
24 * Fixed routing subtrees.
Linus Torvalds1da177e2005-04-16 15:20:36 -070025 */
26
Joe Perchesf3213832012-05-15 14:11:53 +000027#define pr_fmt(fmt) "IPv6: " fmt
28
Randy Dunlap4fc268d2006-01-11 12:17:47 -080029#include <linux/capability.h>
Linus Torvalds1da177e2005-04-16 15:20:36 -070030#include <linux/errno.h>
Paul Gortmakerbc3b2d72011-07-15 11:47:34 -040031#include <linux/export.h>
Linus Torvalds1da177e2005-04-16 15:20:36 -070032#include <linux/types.h>
33#include <linux/times.h>
34#include <linux/socket.h>
35#include <linux/sockios.h>
36#include <linux/net.h>
37#include <linux/route.h>
38#include <linux/netdevice.h>
39#include <linux/in6.h>
YOSHIFUJI Hideaki7bc570c2008-04-03 09:22:53 +090040#include <linux/mroute6.h>
Linus Torvalds1da177e2005-04-16 15:20:36 -070041#include <linux/init.h>
Linus Torvalds1da177e2005-04-16 15:20:36 -070042#include <linux/if_arp.h>
Linus Torvalds1da177e2005-04-16 15:20:36 -070043#include <linux/proc_fs.h>
44#include <linux/seq_file.h>
Daniel Lezcano5b7c9312008-03-03 23:28:58 -080045#include <linux/nsproxy.h>
Tejun Heo5a0e3ad2010-03-24 17:04:11 +090046#include <linux/slab.h>
Wei Wang35732d02017-10-06 12:05:57 -070047#include <linux/jhash.h>
Eric W. Biederman457c4cb2007-09-12 12:01:34 +020048#include <net/net_namespace.h>
Linus Torvalds1da177e2005-04-16 15:20:36 -070049#include <net/snmp.h>
50#include <net/ipv6.h>
51#include <net/ip6_fib.h>
52#include <net/ip6_route.h>
53#include <net/ndisc.h>
54#include <net/addrconf.h>
55#include <net/tcp.h>
56#include <linux/rtnetlink.h>
57#include <net/dst.h>
Jiri Benc904af042015-08-20 13:56:31 +020058#include <net/dst_metadata.h>
Linus Torvalds1da177e2005-04-16 15:20:36 -070059#include <net/xfrm.h>
Tom Tucker8d717402006-07-30 20:43:36 -070060#include <net/netevent.h>
Thomas Graf21713eb2006-08-15 00:35:24 -070061#include <net/netlink.h>
Nicolas Dichtel51ebd312012-10-22 03:42:09 +000062#include <net/nexthop.h>
Roopa Prabhu19e42e42015-07-21 10:43:48 +020063#include <net/lwtunnel.h>
Jiri Benc904af042015-08-20 13:56:31 +020064#include <net/ip_tunnels.h>
David Ahernca254492015-10-12 11:47:10 -070065#include <net/l3mdev.h>
David Ahernb8115802015-11-19 12:24:22 -080066#include <trace/events/fib6.h>
Linus Torvalds1da177e2005-04-16 15:20:36 -070067
Linus Torvalds7c0f6ba2016-12-24 11:46:01 -080068#include <linux/uaccess.h>
Linus Torvalds1da177e2005-04-16 15:20:36 -070069
70#ifdef CONFIG_SYSCTL
71#include <linux/sysctl.h>
72#endif
73
Hannes Frederic Sowaafc154e2013-07-11 12:43:42 +020074enum rt6_nud_state {
Jiri Benc7e980562013-12-11 13:48:20 +010075 RT6_NUD_FAIL_HARD = -3,
76 RT6_NUD_FAIL_PROBE = -2,
77 RT6_NUD_FAIL_DO_RR = -1,
Hannes Frederic Sowaafc154e2013-07-11 12:43:42 +020078 RT6_NUD_SUCCEED = 1
79};
80
Martin KaFai Lau83a09ab2015-05-22 20:56:05 -070081static void ip6_rt_copy_init(struct rt6_info *rt, struct rt6_info *ort);
Linus Torvalds1da177e2005-04-16 15:20:36 -070082static struct dst_entry *ip6_dst_check(struct dst_entry *dst, u32 cookie);
David S. Miller0dbaee32010-12-13 12:52:14 -080083static unsigned int ip6_default_advmss(const struct dst_entry *dst);
Steffen Klassertebb762f2011-11-23 02:12:51 +000084static unsigned int ip6_mtu(const struct dst_entry *dst);
Linus Torvalds1da177e2005-04-16 15:20:36 -070085static struct dst_entry *ip6_negative_advice(struct dst_entry *);
86static void ip6_dst_destroy(struct dst_entry *);
87static void ip6_dst_ifdown(struct dst_entry *,
88 struct net_device *dev, int how);
Daniel Lezcano569d3642008-01-18 03:56:57 -080089static int ip6_dst_gc(struct dst_ops *ops);
Linus Torvalds1da177e2005-04-16 15:20:36 -070090
91static int ip6_pkt_discard(struct sk_buff *skb);
Eric W. Biedermanede20592015-10-07 16:48:47 -050092static int ip6_pkt_discard_out(struct net *net, struct sock *sk, struct sk_buff *skb);
Kamala R7150aed2013-12-02 19:55:21 +053093static int ip6_pkt_prohibit(struct sk_buff *skb);
Eric W. Biedermanede20592015-10-07 16:48:47 -050094static int ip6_pkt_prohibit_out(struct net *net, struct sock *sk, struct sk_buff *skb);
Linus Torvalds1da177e2005-04-16 15:20:36 -070095static void ip6_link_failure(struct sk_buff *skb);
David S. Miller6700c272012-07-17 03:29:28 -070096static void ip6_rt_update_pmtu(struct dst_entry *dst, struct sock *sk,
97 struct sk_buff *skb, u32 mtu);
98static void rt6_do_redirect(struct dst_entry *dst, struct sock *sk,
99 struct sk_buff *skb);
Martin KaFai Lau4b32b5a2015-04-28 13:03:06 -0700100static void rt6_dst_from_metrics_check(struct rt6_info *rt);
Nicolas Dichtel52bd4c02013-06-28 17:35:48 +0200101static int rt6_score_route(struct rt6_info *rt, int oif, int strict);
David Ahern16a16cd2017-02-02 12:37:11 -0800102static size_t rt6_nlmsg_size(struct rt6_info *rt);
103static int rt6_fill_node(struct net *net,
104 struct sk_buff *skb, struct rt6_info *rt,
105 struct in6_addr *dst, struct in6_addr *src,
106 int iif, int type, u32 portid, u32 seq,
107 unsigned int flags);
Wei Wang35732d02017-10-06 12:05:57 -0700108static struct rt6_info *rt6_find_cached_rt(struct rt6_info *rt,
109 struct in6_addr *daddr,
110 struct in6_addr *saddr);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700111
YOSHIFUJI Hideaki70ceb4f2006-03-20 17:06:24 -0800112#ifdef CONFIG_IPV6_ROUTE_INFO
Daniel Lezcanoefa2cea2008-03-04 13:46:48 -0800113static struct rt6_info *rt6_add_route_info(struct net *net,
Eric Dumazetb71d1d42011-04-22 04:53:02 +0000114 const struct in6_addr *prefix, int prefixlen,
David Ahern830218c2016-10-24 10:52:35 -0700115 const struct in6_addr *gwaddr,
116 struct net_device *dev,
Eric Dumazet95c96172012-04-15 05:58:06 +0000117 unsigned int pref);
Daniel Lezcanoefa2cea2008-03-04 13:46:48 -0800118static struct rt6_info *rt6_get_route_info(struct net *net,
Eric Dumazetb71d1d42011-04-22 04:53:02 +0000119 const struct in6_addr *prefix, int prefixlen,
David Ahern830218c2016-10-24 10:52:35 -0700120 const struct in6_addr *gwaddr,
121 struct net_device *dev);
YOSHIFUJI Hideaki70ceb4f2006-03-20 17:06:24 -0800122#endif
123
Martin KaFai Lau8d0b94a2015-05-22 20:56:04 -0700124struct uncached_list {
125 spinlock_t lock;
126 struct list_head head;
127};
128
129static DEFINE_PER_CPU_ALIGNED(struct uncached_list, rt6_uncached_list);
130
Xin Long510c3212018-02-14 19:06:02 +0800131void rt6_uncached_list_add(struct rt6_info *rt)
Martin KaFai Lau8d0b94a2015-05-22 20:56:04 -0700132{
133 struct uncached_list *ul = raw_cpu_ptr(&rt6_uncached_list);
134
Martin KaFai Lau8d0b94a2015-05-22 20:56:04 -0700135 rt->rt6i_uncached_list = ul;
136
137 spin_lock_bh(&ul->lock);
138 list_add_tail(&rt->rt6i_uncached, &ul->head);
139 spin_unlock_bh(&ul->lock);
140}
141
Xin Long510c3212018-02-14 19:06:02 +0800142void rt6_uncached_list_del(struct rt6_info *rt)
Martin KaFai Lau8d0b94a2015-05-22 20:56:04 -0700143{
144 if (!list_empty(&rt->rt6i_uncached)) {
145 struct uncached_list *ul = rt->rt6i_uncached_list;
Wei Wang81eb8442017-10-06 12:06:11 -0700146 struct net *net = dev_net(rt->dst.dev);
Martin KaFai Lau8d0b94a2015-05-22 20:56:04 -0700147
148 spin_lock_bh(&ul->lock);
149 list_del(&rt->rt6i_uncached);
Wei Wang81eb8442017-10-06 12:06:11 -0700150 atomic_dec(&net->ipv6.rt6_stats->fib_rt_uncache);
Martin KaFai Lau8d0b94a2015-05-22 20:56:04 -0700151 spin_unlock_bh(&ul->lock);
152 }
153}
154
155static void rt6_uncached_list_flush_dev(struct net *net, struct net_device *dev)
156{
157 struct net_device *loopback_dev = net->loopback_dev;
158 int cpu;
159
Eric W. Biedermane332bc62015-10-12 11:02:08 -0500160 if (dev == loopback_dev)
161 return;
162
Martin KaFai Lau8d0b94a2015-05-22 20:56:04 -0700163 for_each_possible_cpu(cpu) {
164 struct uncached_list *ul = per_cpu_ptr(&rt6_uncached_list, cpu);
165 struct rt6_info *rt;
166
167 spin_lock_bh(&ul->lock);
168 list_for_each_entry(rt, &ul->head, rt6i_uncached) {
169 struct inet6_dev *rt_idev = rt->rt6i_idev;
170 struct net_device *rt_dev = rt->dst.dev;
171
Eric W. Biedermane332bc62015-10-12 11:02:08 -0500172 if (rt_idev->dev == dev) {
Martin KaFai Lau8d0b94a2015-05-22 20:56:04 -0700173 rt->rt6i_idev = in6_dev_get(loopback_dev);
174 in6_dev_put(rt_idev);
175 }
176
Eric W. Biedermane332bc62015-10-12 11:02:08 -0500177 if (rt_dev == dev) {
Martin KaFai Lau8d0b94a2015-05-22 20:56:04 -0700178 rt->dst.dev = loopback_dev;
179 dev_hold(rt->dst.dev);
180 dev_put(rt_dev);
181 }
182 }
183 spin_unlock_bh(&ul->lock);
184 }
185}
186
Martin KaFai Laud52d3992015-05-22 20:56:06 -0700187static u32 *rt6_pcpu_cow_metrics(struct rt6_info *rt)
188{
David Miller3a2232e2017-11-28 15:40:40 -0500189 return dst_metrics_write_ptr(&rt->from->dst);
Martin KaFai Laud52d3992015-05-22 20:56:06 -0700190}
191
David S. Miller06582542011-01-27 14:58:42 -0800192static u32 *ipv6_cow_metrics(struct dst_entry *dst, unsigned long old)
193{
Martin KaFai Lau4b32b5a2015-04-28 13:03:06 -0700194 struct rt6_info *rt = (struct rt6_info *)dst;
David S. Miller06582542011-01-27 14:58:42 -0800195
Martin KaFai Laud52d3992015-05-22 20:56:06 -0700196 if (rt->rt6i_flags & RTF_PCPU)
197 return rt6_pcpu_cow_metrics(rt);
198 else if (rt->rt6i_flags & RTF_CACHE)
Martin KaFai Lau4b32b5a2015-04-28 13:03:06 -0700199 return NULL;
200 else
Martin KaFai Lau3b471172015-02-12 16:14:08 -0800201 return dst_cow_metrics_generic(dst, old);
David S. Miller06582542011-01-27 14:58:42 -0800202}
203
David S. Millerf894cbf2012-07-02 21:52:24 -0700204static inline const void *choose_neigh_daddr(struct rt6_info *rt,
205 struct sk_buff *skb,
206 const void *daddr)
David S. Miller39232972012-01-26 15:22:32 -0500207{
208 struct in6_addr *p = &rt->rt6i_gateway;
209
David S. Millera7563f32012-01-26 16:29:16 -0500210 if (!ipv6_addr_any(p))
David S. Miller39232972012-01-26 15:22:32 -0500211 return (const void *) p;
David S. Millerf894cbf2012-07-02 21:52:24 -0700212 else if (skb)
213 return &ipv6_hdr(skb)->daddr;
David S. Miller39232972012-01-26 15:22:32 -0500214 return daddr;
215}
216
David S. Millerf894cbf2012-07-02 21:52:24 -0700217static struct neighbour *ip6_neigh_lookup(const struct dst_entry *dst,
218 struct sk_buff *skb,
219 const void *daddr)
David S. Millerd3aaeb32011-07-18 00:40:17 -0700220{
David S. Miller39232972012-01-26 15:22:32 -0500221 struct rt6_info *rt = (struct rt6_info *) dst;
222 struct neighbour *n;
223
David S. Millerf894cbf2012-07-02 21:52:24 -0700224 daddr = choose_neigh_daddr(rt, skb, daddr);
YOSHIFUJI Hideaki / 吉藤英明8e022ee2013-01-17 12:53:09 +0000225 n = __ipv6_neigh_lookup(dst->dev, daddr);
David S. Millerf83c7792011-12-28 15:41:23 -0500226 if (n)
227 return n;
228 return neigh_create(&nd_tbl, daddr, dst->dev);
229}
230
Julian Anastasov63fca652017-02-06 23:14:15 +0200231static void ip6_confirm_neigh(const struct dst_entry *dst, const void *daddr)
232{
233 struct net_device *dev = dst->dev;
234 struct rt6_info *rt = (struct rt6_info *)dst;
235
236 daddr = choose_neigh_daddr(rt, NULL, daddr);
237 if (!daddr)
238 return;
239 if (dev->flags & (IFF_NOARP | IFF_LOOPBACK))
240 return;
241 if (ipv6_addr_is_multicast((const struct in6_addr *)daddr))
242 return;
243 __ipv6_confirm_neigh(dev, daddr);
244}
245
Daniel Lezcano9a7ec3a2008-03-04 13:48:53 -0800246static struct dst_ops ip6_dst_ops_template = {
Linus Torvalds1da177e2005-04-16 15:20:36 -0700247 .family = AF_INET6,
Linus Torvalds1da177e2005-04-16 15:20:36 -0700248 .gc = ip6_dst_gc,
249 .gc_thresh = 1024,
250 .check = ip6_dst_check,
David S. Miller0dbaee32010-12-13 12:52:14 -0800251 .default_advmss = ip6_default_advmss,
Steffen Klassertebb762f2011-11-23 02:12:51 +0000252 .mtu = ip6_mtu,
David S. Miller06582542011-01-27 14:58:42 -0800253 .cow_metrics = ipv6_cow_metrics,
Linus Torvalds1da177e2005-04-16 15:20:36 -0700254 .destroy = ip6_dst_destroy,
255 .ifdown = ip6_dst_ifdown,
256 .negative_advice = ip6_negative_advice,
257 .link_failure = ip6_link_failure,
258 .update_pmtu = ip6_rt_update_pmtu,
David S. Miller6e157b62012-07-12 00:05:02 -0700259 .redirect = rt6_do_redirect,
Eric W. Biederman9f8955c2015-10-07 16:48:39 -0500260 .local_out = __ip6_local_out,
David S. Millerd3aaeb32011-07-18 00:40:17 -0700261 .neigh_lookup = ip6_neigh_lookup,
Julian Anastasov63fca652017-02-06 23:14:15 +0200262 .confirm_neigh = ip6_confirm_neigh,
Linus Torvalds1da177e2005-04-16 15:20:36 -0700263};
264
Steffen Klassertebb762f2011-11-23 02:12:51 +0000265static unsigned int ip6_blackhole_mtu(const struct dst_entry *dst)
Roland Dreierec831ea2011-01-31 13:16:00 -0800266{
Steffen Klassert618f9bc2011-11-23 02:13:31 +0000267 unsigned int mtu = dst_metric_raw(dst, RTAX_MTU);
268
269 return mtu ? : dst->dev->mtu;
Roland Dreierec831ea2011-01-31 13:16:00 -0800270}
271
David S. Miller6700c272012-07-17 03:29:28 -0700272static void ip6_rt_blackhole_update_pmtu(struct dst_entry *dst, struct sock *sk,
273 struct sk_buff *skb, u32 mtu)
David S. Miller14e50e52007-05-24 18:17:54 -0700274{
275}
276
David S. Miller6700c272012-07-17 03:29:28 -0700277static void ip6_rt_blackhole_redirect(struct dst_entry *dst, struct sock *sk,
278 struct sk_buff *skb)
David S. Millerb587ee32012-07-12 00:39:24 -0700279{
280}
281
David S. Miller14e50e52007-05-24 18:17:54 -0700282static struct dst_ops ip6_dst_blackhole_ops = {
283 .family = AF_INET6,
David S. Miller14e50e52007-05-24 18:17:54 -0700284 .destroy = ip6_dst_destroy,
285 .check = ip6_dst_check,
Steffen Klassertebb762f2011-11-23 02:12:51 +0000286 .mtu = ip6_blackhole_mtu,
Eric Dumazet214f45c2011-02-18 11:39:01 -0800287 .default_advmss = ip6_default_advmss,
David S. Miller14e50e52007-05-24 18:17:54 -0700288 .update_pmtu = ip6_rt_blackhole_update_pmtu,
David S. Millerb587ee32012-07-12 00:39:24 -0700289 .redirect = ip6_rt_blackhole_redirect,
Martin KaFai Lau0a1f5962015-10-15 16:39:58 -0700290 .cow_metrics = dst_cow_metrics_generic,
David S. Millerd3aaeb32011-07-18 00:40:17 -0700291 .neigh_lookup = ip6_neigh_lookup,
David S. Miller14e50e52007-05-24 18:17:54 -0700292};
293
David S. Miller62fa8a82011-01-26 20:51:05 -0800294static const u32 ip6_template_metrics[RTAX_MAX] = {
Li RongQing14edd872012-10-24 14:01:18 +0800295 [RTAX_HOPLIMIT - 1] = 0,
David S. Miller62fa8a82011-01-26 20:51:05 -0800296};
297
Eric Dumazetfb0af4c2012-09-11 21:47:51 +0000298static const struct rt6_info ip6_null_entry_template = {
Changli Gaod8d1f302010-06-10 23:31:35 -0700299 .dst = {
300 .__refcnt = ATOMIC_INIT(1),
301 .__use = 1,
Nicolas Dichtel2c20cbd2012-09-10 22:09:47 +0000302 .obsolete = DST_OBSOLETE_FORCE_CHK,
Changli Gaod8d1f302010-06-10 23:31:35 -0700303 .error = -ENETUNREACH,
Changli Gaod8d1f302010-06-10 23:31:35 -0700304 .input = ip6_pkt_discard,
305 .output = ip6_pkt_discard_out,
Linus Torvalds1da177e2005-04-16 15:20:36 -0700306 },
307 .rt6i_flags = (RTF_REJECT | RTF_NONEXTHOP),
Jean-Mickael Guerin4f724272009-05-20 17:38:59 -0700308 .rt6i_protocol = RTPROT_KERNEL,
Linus Torvalds1da177e2005-04-16 15:20:36 -0700309 .rt6i_metric = ~(u32) 0,
310 .rt6i_ref = ATOMIC_INIT(1),
311};
312
Thomas Graf101367c2006-08-04 03:39:02 -0700313#ifdef CONFIG_IPV6_MULTIPLE_TABLES
314
Eric Dumazetfb0af4c2012-09-11 21:47:51 +0000315static const struct rt6_info ip6_prohibit_entry_template = {
Changli Gaod8d1f302010-06-10 23:31:35 -0700316 .dst = {
317 .__refcnt = ATOMIC_INIT(1),
318 .__use = 1,
Nicolas Dichtel2c20cbd2012-09-10 22:09:47 +0000319 .obsolete = DST_OBSOLETE_FORCE_CHK,
Changli Gaod8d1f302010-06-10 23:31:35 -0700320 .error = -EACCES,
Changli Gaod8d1f302010-06-10 23:31:35 -0700321 .input = ip6_pkt_prohibit,
322 .output = ip6_pkt_prohibit_out,
Thomas Graf101367c2006-08-04 03:39:02 -0700323 },
324 .rt6i_flags = (RTF_REJECT | RTF_NONEXTHOP),
Jean-Mickael Guerin4f724272009-05-20 17:38:59 -0700325 .rt6i_protocol = RTPROT_KERNEL,
Thomas Graf101367c2006-08-04 03:39:02 -0700326 .rt6i_metric = ~(u32) 0,
327 .rt6i_ref = ATOMIC_INIT(1),
328};
329
Eric Dumazetfb0af4c2012-09-11 21:47:51 +0000330static const struct rt6_info ip6_blk_hole_entry_template = {
Changli Gaod8d1f302010-06-10 23:31:35 -0700331 .dst = {
332 .__refcnt = ATOMIC_INIT(1),
333 .__use = 1,
Nicolas Dichtel2c20cbd2012-09-10 22:09:47 +0000334 .obsolete = DST_OBSOLETE_FORCE_CHK,
Changli Gaod8d1f302010-06-10 23:31:35 -0700335 .error = -EINVAL,
Changli Gaod8d1f302010-06-10 23:31:35 -0700336 .input = dst_discard,
Eric W. Biedermanede20592015-10-07 16:48:47 -0500337 .output = dst_discard_out,
Thomas Graf101367c2006-08-04 03:39:02 -0700338 },
339 .rt6i_flags = (RTF_REJECT | RTF_NONEXTHOP),
Jean-Mickael Guerin4f724272009-05-20 17:38:59 -0700340 .rt6i_protocol = RTPROT_KERNEL,
Thomas Graf101367c2006-08-04 03:39:02 -0700341 .rt6i_metric = ~(u32) 0,
342 .rt6i_ref = ATOMIC_INIT(1),
343};
344
345#endif
346
Martin KaFai Lauebfa45f2015-10-15 16:39:57 -0700347static void rt6_info_init(struct rt6_info *rt)
348{
349 struct dst_entry *dst = &rt->dst;
350
351 memset(dst + 1, 0, sizeof(*rt) - sizeof(*dst));
352 INIT_LIST_HEAD(&rt->rt6i_siblings);
353 INIT_LIST_HEAD(&rt->rt6i_uncached);
354}
355
Linus Torvalds1da177e2005-04-16 15:20:36 -0700356/* allocate dst with ip6_dst_ops */
Martin KaFai Laud52d3992015-05-22 20:56:06 -0700357static struct rt6_info *__ip6_dst_alloc(struct net *net,
358 struct net_device *dev,
Martin KaFai Lauad706862015-08-14 11:05:52 -0700359 int flags)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700360{
David S. Miller97bab732012-06-09 22:36:36 -0700361 struct rt6_info *rt = dst_alloc(&net->ipv6.ip6_dst_ops, dev,
Wei Wangb2a9c0e2017-06-17 10:42:41 -0700362 1, DST_OBSOLETE_FORCE_CHK, flags);
David S. Millercf911662011-04-28 14:31:47 -0700363
Wei Wang81eb8442017-10-06 12:06:11 -0700364 if (rt) {
Martin KaFai Lauebfa45f2015-10-15 16:39:57 -0700365 rt6_info_init(rt);
Wei Wang81eb8442017-10-06 12:06:11 -0700366 atomic_inc(&net->ipv6.rt6_stats->fib_rt_alloc);
367 }
Steffen Klassert81048912012-07-05 23:37:09 +0000368
David S. Millercf911662011-04-28 14:31:47 -0700369 return rt;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700370}
371
David Ahern9ab179d2016-04-07 11:10:06 -0700372struct rt6_info *ip6_dst_alloc(struct net *net,
373 struct net_device *dev,
374 int flags)
Martin KaFai Laud52d3992015-05-22 20:56:06 -0700375{
Martin KaFai Lauad706862015-08-14 11:05:52 -0700376 struct rt6_info *rt = __ip6_dst_alloc(net, dev, flags);
Martin KaFai Laud52d3992015-05-22 20:56:06 -0700377
378 if (rt) {
379 rt->rt6i_pcpu = alloc_percpu_gfp(struct rt6_info *, GFP_ATOMIC);
Eric Dumazetbfd8e5a2017-10-09 06:01:37 -0700380 if (!rt->rt6i_pcpu) {
Wei Wang587fea72017-06-17 10:42:36 -0700381 dst_release_immediate(&rt->dst);
Martin KaFai Laud52d3992015-05-22 20:56:06 -0700382 return NULL;
383 }
384 }
385
386 return rt;
387}
David Ahern9ab179d2016-04-07 11:10:06 -0700388EXPORT_SYMBOL(ip6_dst_alloc);
Martin KaFai Laud52d3992015-05-22 20:56:06 -0700389
Linus Torvalds1da177e2005-04-16 15:20:36 -0700390static void ip6_dst_destroy(struct dst_entry *dst)
391{
392 struct rt6_info *rt = (struct rt6_info *)dst;
Wei Wang35732d02017-10-06 12:05:57 -0700393 struct rt6_exception_bucket *bucket;
David Miller3a2232e2017-11-28 15:40:40 -0500394 struct rt6_info *from = rt->from;
Martin KaFai Lau8d0b94a2015-05-22 20:56:04 -0700395 struct inet6_dev *idev;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700396
Martin KaFai Lau4b32b5a2015-04-28 13:03:06 -0700397 dst_destroy_metrics_generic(dst);
Markus Elfring87775312015-07-02 16:30:24 +0200398 free_percpu(rt->rt6i_pcpu);
Martin KaFai Lau8d0b94a2015-05-22 20:56:04 -0700399 rt6_uncached_list_del(rt);
400
401 idev = rt->rt6i_idev;
David S. Miller38308472011-12-03 18:02:47 -0500402 if (idev) {
Linus Torvalds1da177e2005-04-16 15:20:36 -0700403 rt->rt6i_idev = NULL;
404 in6_dev_put(idev);
YOSHIFUJI Hideaki1ab14572007-02-09 23:24:49 +0900405 }
Wei Wang35732d02017-10-06 12:05:57 -0700406 bucket = rcu_dereference_protected(rt->rt6i_exception_bucket, 1);
407 if (bucket) {
408 rt->rt6i_exception_bucket = NULL;
409 kfree(bucket);
410 }
Gao feng1716a962012-04-06 00:13:10 +0000411
David Miller3a2232e2017-11-28 15:40:40 -0500412 rt->from = NULL;
413 dst_release(&from->dst);
David S. Millerb3419362010-11-30 12:27:11 -0800414}
415
Linus Torvalds1da177e2005-04-16 15:20:36 -0700416static void ip6_dst_ifdown(struct dst_entry *dst, struct net_device *dev,
417 int how)
418{
419 struct rt6_info *rt = (struct rt6_info *)dst;
420 struct inet6_dev *idev = rt->rt6i_idev;
Denis V. Lunev5a3e55d2007-12-07 00:38:10 -0800421 struct net_device *loopback_dev =
YOSHIFUJI Hideakic346dca2008-03-25 21:47:49 +0900422 dev_net(dev)->loopback_dev;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700423
Wei Wange5645f52017-08-14 10:44:59 -0700424 if (idev && idev->dev != loopback_dev) {
425 struct inet6_dev *loopback_idev = in6_dev_get(loopback_dev);
426 if (loopback_idev) {
427 rt->rt6i_idev = loopback_idev;
428 in6_dev_put(idev);
David S. Miller97cac082012-07-02 22:43:47 -0700429 }
Linus Torvalds1da177e2005-04-16 15:20:36 -0700430 }
431}
432
Martin KaFai Lau5973fb12015-11-11 11:51:07 -0800433static bool __rt6_check_expired(const struct rt6_info *rt)
434{
435 if (rt->rt6i_flags & RTF_EXPIRES)
436 return time_after(jiffies, rt->dst.expires);
437 else
438 return false;
439}
440
Eric Dumazeta50feda2012-05-18 18:57:34 +0000441static bool rt6_check_expired(const struct rt6_info *rt)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700442{
Gao feng1716a962012-04-06 00:13:10 +0000443 if (rt->rt6i_flags & RTF_EXPIRES) {
444 if (time_after(jiffies, rt->dst.expires))
Eric Dumazeta50feda2012-05-18 18:57:34 +0000445 return true;
David Miller3a2232e2017-11-28 15:40:40 -0500446 } else if (rt->from) {
Xin Long1e2ea8a2017-08-26 20:10:10 +0800447 return rt->dst.obsolete != DST_OBSOLETE_FORCE_CHK ||
David Miller3a2232e2017-11-28 15:40:40 -0500448 rt6_check_expired(rt->from);
Gao feng1716a962012-04-06 00:13:10 +0000449 }
Eric Dumazeta50feda2012-05-18 18:57:34 +0000450 return false;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700451}
452
Nicolas Dichtel51ebd312012-10-22 03:42:09 +0000453static struct rt6_info *rt6_multipath_select(struct rt6_info *match,
Nicolas Dichtel52bd4c02013-06-28 17:35:48 +0200454 struct flowi6 *fl6, int oif,
455 int strict)
Nicolas Dichtel51ebd312012-10-22 03:42:09 +0000456{
457 struct rt6_info *sibling, *next_sibling;
Nicolas Dichtel51ebd312012-10-22 03:42:09 +0000458
Jakub Sitnickib673d6c2017-08-23 09:58:31 +0200459 /* We might have already computed the hash for ICMPv6 errors. In such
460 * case it will always be non-zero. Otherwise now is the time to do it.
461 */
462 if (!fl6->mp_hash)
463 fl6->mp_hash = rt6_multipath_hash(fl6, NULL);
464
Ido Schimmel3d709f62018-01-09 16:40:27 +0200465 if (fl6->mp_hash <= atomic_read(&match->rt6i_nh_upper_bound))
466 return match;
Ido Schimmelbbfcd772017-11-21 09:50:12 +0200467
Ido Schimmel3d709f62018-01-09 16:40:27 +0200468 list_for_each_entry_safe(sibling, next_sibling, &match->rt6i_siblings,
469 rt6i_siblings) {
470 if (fl6->mp_hash > atomic_read(&sibling->rt6i_nh_upper_bound))
471 continue;
472 if (rt6_score_route(sibling, oif, strict) < 0)
473 break;
474 match = sibling;
475 break;
476 }
477
Nicolas Dichtel51ebd312012-10-22 03:42:09 +0000478 return match;
479}
480
Linus Torvalds1da177e2005-04-16 15:20:36 -0700481/*
Wei Wang66f5d6c2017-10-06 12:06:10 -0700482 * Route lookup. rcu_read_lock() should be held.
Linus Torvalds1da177e2005-04-16 15:20:36 -0700483 */
484
Daniel Lezcano8ed67782008-03-04 13:48:30 -0800485static inline struct rt6_info *rt6_device_match(struct net *net,
486 struct rt6_info *rt,
Eric Dumazetb71d1d42011-04-22 04:53:02 +0000487 const struct in6_addr *saddr,
Linus Torvalds1da177e2005-04-16 15:20:36 -0700488 int oif,
YOSHIFUJI Hideakid4208952008-06-27 20:14:54 -0700489 int flags)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700490{
491 struct rt6_info *local = NULL;
492 struct rt6_info *sprt;
493
Ido Schimmel8067bb82018-01-07 12:45:09 +0200494 if (!oif && ipv6_addr_any(saddr) && !(rt->rt6i_nh_flags & RTNH_F_DEAD))
495 return rt;
YOSHIFUJI Hideakidd3abc42008-07-02 18:30:18 +0900496
David Miller071fb372017-11-28 15:40:15 -0500497 for (sprt = rt; sprt; sprt = rcu_dereference(sprt->rt6_next)) {
David S. Millerd1918542011-12-28 20:19:20 -0500498 struct net_device *dev = sprt->dst.dev;
YOSHIFUJI Hideakidd3abc42008-07-02 18:30:18 +0900499
Ido Schimmel8067bb82018-01-07 12:45:09 +0200500 if (sprt->rt6i_nh_flags & RTNH_F_DEAD)
501 continue;
502
YOSHIFUJI Hideakidd3abc42008-07-02 18:30:18 +0900503 if (oif) {
Linus Torvalds1da177e2005-04-16 15:20:36 -0700504 if (dev->ifindex == oif)
505 return sprt;
506 if (dev->flags & IFF_LOOPBACK) {
David S. Miller38308472011-12-03 18:02:47 -0500507 if (!sprt->rt6i_idev ||
Linus Torvalds1da177e2005-04-16 15:20:36 -0700508 sprt->rt6i_idev->dev->ifindex != oif) {
David Ahern17fb0b22015-09-25 15:22:54 -0600509 if (flags & RT6_LOOKUP_F_IFACE)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700510 continue;
David Ahern17fb0b22015-09-25 15:22:54 -0600511 if (local &&
512 local->rt6i_idev->dev->ifindex == oif)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700513 continue;
514 }
515 local = sprt;
516 }
YOSHIFUJI Hideakidd3abc42008-07-02 18:30:18 +0900517 } else {
518 if (ipv6_chk_addr(net, saddr, dev,
519 flags & RT6_LOOKUP_F_IFACE))
520 return sprt;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700521 }
YOSHIFUJI Hideakidd3abc42008-07-02 18:30:18 +0900522 }
Linus Torvalds1da177e2005-04-16 15:20:36 -0700523
YOSHIFUJI Hideakidd3abc42008-07-02 18:30:18 +0900524 if (oif) {
Linus Torvalds1da177e2005-04-16 15:20:36 -0700525 if (local)
526 return local;
527
YOSHIFUJI Hideakid4208952008-06-27 20:14:54 -0700528 if (flags & RT6_LOOKUP_F_IFACE)
Daniel Lezcano8ed67782008-03-04 13:48:30 -0800529 return net->ipv6.ip6_null_entry;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700530 }
Ido Schimmel8067bb82018-01-07 12:45:09 +0200531
532 return rt->rt6i_nh_flags & RTNH_F_DEAD ? net->ipv6.ip6_null_entry : rt;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700533}
534
YOSHIFUJI Hideaki27097252006-03-20 17:05:13 -0800535#ifdef CONFIG_IPV6_ROUTER_PREF
Hannes Frederic Sowac2f17e82013-10-21 06:17:15 +0200536struct __rt6_probe_work {
537 struct work_struct work;
538 struct in6_addr target;
539 struct net_device *dev;
540};
541
542static void rt6_probe_deferred(struct work_struct *w)
543{
544 struct in6_addr mcaddr;
545 struct __rt6_probe_work *work =
546 container_of(w, struct __rt6_probe_work, work);
547
548 addrconf_addr_solict_mult(&work->target, &mcaddr);
Erik Nordmarkadc176c2016-12-02 14:00:08 -0800549 ndisc_send_ns(work->dev, &work->target, &mcaddr, NULL, 0);
Hannes Frederic Sowac2f17e82013-10-21 06:17:15 +0200550 dev_put(work->dev);
Michael Büsch662f5532015-02-08 10:14:07 +0100551 kfree(work);
Hannes Frederic Sowac2f17e82013-10-21 06:17:15 +0200552}
553
YOSHIFUJI Hideaki27097252006-03-20 17:05:13 -0800554static void rt6_probe(struct rt6_info *rt)
555{
Martin KaFai Lau990edb42015-07-24 09:57:42 -0700556 struct __rt6_probe_work *work;
Eric Dumazetf2c31e32011-07-29 19:00:53 +0000557 struct neighbour *neigh;
YOSHIFUJI Hideaki27097252006-03-20 17:05:13 -0800558 /*
559 * Okay, this does not seem to be appropriate
560 * for now, however, we need to check if it
561 * is really so; aka Router Reachability Probing.
562 *
563 * Router Reachability Probe MUST be rate-limited
564 * to no more than one per minute.
565 */
YOSHIFUJI Hideaki / 吉藤英明2152cae2013-01-17 12:53:43 +0000566 if (!rt || !(rt->rt6i_flags & RTF_GATEWAY))
Amerigo Wangfdd66812012-09-10 02:48:44 +0000567 return;
YOSHIFUJI Hideaki / 吉藤英明2152cae2013-01-17 12:53:43 +0000568 rcu_read_lock_bh();
569 neigh = __ipv6_neigh_lookup_noref(rt->dst.dev, &rt->rt6i_gateway);
570 if (neigh) {
Martin KaFai Lau8d6c31b2015-07-24 09:57:43 -0700571 if (neigh->nud_state & NUD_VALID)
572 goto out;
573
Martin KaFai Lau990edb42015-07-24 09:57:42 -0700574 work = NULL;
YOSHIFUJI Hideaki / 吉藤英明2152cae2013-01-17 12:53:43 +0000575 write_lock(&neigh->lock);
Martin KaFai Lau990edb42015-07-24 09:57:42 -0700576 if (!(neigh->nud_state & NUD_VALID) &&
577 time_after(jiffies,
578 neigh->updated +
579 rt->rt6i_idev->cnf.rtr_probe_interval)) {
580 work = kmalloc(sizeof(*work), GFP_ATOMIC);
581 if (work)
582 __neigh_set_probe_once(neigh);
Hannes Frederic Sowac2f17e82013-10-21 06:17:15 +0200583 }
YOSHIFUJI Hideaki / 吉藤英明2152cae2013-01-17 12:53:43 +0000584 write_unlock(&neigh->lock);
Martin KaFai Lau990edb42015-07-24 09:57:42 -0700585 } else {
586 work = kmalloc(sizeof(*work), GFP_ATOMIC);
Eric Dumazetf2c31e32011-07-29 19:00:53 +0000587 }
Martin KaFai Lau990edb42015-07-24 09:57:42 -0700588
589 if (work) {
590 INIT_WORK(&work->work, rt6_probe_deferred);
591 work->target = rt->rt6i_gateway;
592 dev_hold(rt->dst.dev);
593 work->dev = rt->dst.dev;
594 schedule_work(&work->work);
595 }
596
Martin KaFai Lau8d6c31b2015-07-24 09:57:43 -0700597out:
YOSHIFUJI Hideaki / 吉藤英明2152cae2013-01-17 12:53:43 +0000598 rcu_read_unlock_bh();
YOSHIFUJI Hideaki27097252006-03-20 17:05:13 -0800599}
600#else
601static inline void rt6_probe(struct rt6_info *rt)
602{
YOSHIFUJI Hideaki27097252006-03-20 17:05:13 -0800603}
604#endif
605
Linus Torvalds1da177e2005-04-16 15:20:36 -0700606/*
YOSHIFUJI Hideaki554cfb72006-03-20 17:00:26 -0800607 * Default Router Selection (RFC 2461 6.3.6)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700608 */
Dave Jonesb6f99a22007-03-22 12:27:49 -0700609static inline int rt6_check_dev(struct rt6_info *rt, int oif)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700610{
David S. Millerd1918542011-12-28 20:19:20 -0500611 struct net_device *dev = rt->dst.dev;
David S. Miller161980f2007-04-06 11:42:27 -0700612 if (!oif || dev->ifindex == oif)
YOSHIFUJI Hideaki554cfb72006-03-20 17:00:26 -0800613 return 2;
David S. Miller161980f2007-04-06 11:42:27 -0700614 if ((dev->flags & IFF_LOOPBACK) &&
615 rt->rt6i_idev && rt->rt6i_idev->dev->ifindex == oif)
616 return 1;
617 return 0;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700618}
619
Hannes Frederic Sowaafc154e2013-07-11 12:43:42 +0200620static inline enum rt6_nud_state rt6_check_neigh(struct rt6_info *rt)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700621{
Eric Dumazetf2c31e32011-07-29 19:00:53 +0000622 struct neighbour *neigh;
Hannes Frederic Sowaafc154e2013-07-11 12:43:42 +0200623 enum rt6_nud_state ret = RT6_NUD_FAIL_HARD;
Eric Dumazetf2c31e32011-07-29 19:00:53 +0000624
YOSHIFUJI Hideaki4d0c5912006-05-26 13:23:41 -0700625 if (rt->rt6i_flags & RTF_NONEXTHOP ||
626 !(rt->rt6i_flags & RTF_GATEWAY))
Hannes Frederic Sowaafc154e2013-07-11 12:43:42 +0200627 return RT6_NUD_SUCCEED;
YOSHIFUJI Hideaki / 吉藤英明145a3622013-01-17 12:53:38 +0000628
629 rcu_read_lock_bh();
630 neigh = __ipv6_neigh_lookup_noref(rt->dst.dev, &rt->rt6i_gateway);
631 if (neigh) {
632 read_lock(&neigh->lock);
YOSHIFUJI Hideaki554cfb72006-03-20 17:00:26 -0800633 if (neigh->nud_state & NUD_VALID)
Hannes Frederic Sowaafc154e2013-07-11 12:43:42 +0200634 ret = RT6_NUD_SUCCEED;
YOSHIFUJI Hideaki398bcbe2008-01-19 00:35:16 -0800635#ifdef CONFIG_IPV6_ROUTER_PREF
Paul Marksa5a81f02012-12-03 10:26:54 +0000636 else if (!(neigh->nud_state & NUD_FAILED))
Hannes Frederic Sowaafc154e2013-07-11 12:43:42 +0200637 ret = RT6_NUD_SUCCEED;
Jiri Benc7e980562013-12-11 13:48:20 +0100638 else
639 ret = RT6_NUD_FAIL_PROBE;
YOSHIFUJI Hideaki398bcbe2008-01-19 00:35:16 -0800640#endif
YOSHIFUJI Hideaki / 吉藤英明145a3622013-01-17 12:53:38 +0000641 read_unlock(&neigh->lock);
Hannes Frederic Sowaafc154e2013-07-11 12:43:42 +0200642 } else {
643 ret = IS_ENABLED(CONFIG_IPV6_ROUTER_PREF) ?
Jiri Benc7e980562013-12-11 13:48:20 +0100644 RT6_NUD_SUCCEED : RT6_NUD_FAIL_DO_RR;
Paul Marksa5a81f02012-12-03 10:26:54 +0000645 }
YOSHIFUJI Hideaki / 吉藤英明145a3622013-01-17 12:53:38 +0000646 rcu_read_unlock_bh();
647
Paul Marksa5a81f02012-12-03 10:26:54 +0000648 return ret;
YOSHIFUJI Hideaki554cfb72006-03-20 17:00:26 -0800649}
Linus Torvalds1da177e2005-04-16 15:20:36 -0700650
YOSHIFUJI Hideaki554cfb72006-03-20 17:00:26 -0800651static int rt6_score_route(struct rt6_info *rt, int oif,
652 int strict)
653{
Paul Marksa5a81f02012-12-03 10:26:54 +0000654 int m;
YOSHIFUJI Hideaki1ab14572007-02-09 23:24:49 +0900655
YOSHIFUJI Hideaki4d0c5912006-05-26 13:23:41 -0700656 m = rt6_check_dev(rt, oif);
YOSHIFUJI Hideaki77d16f42006-08-23 17:25:05 -0700657 if (!m && (strict & RT6_LOOKUP_F_IFACE))
Hannes Frederic Sowaafc154e2013-07-11 12:43:42 +0200658 return RT6_NUD_FAIL_HARD;
YOSHIFUJI Hideakiebacaaa2006-03-20 17:04:53 -0800659#ifdef CONFIG_IPV6_ROUTER_PREF
660 m |= IPV6_DECODE_PREF(IPV6_EXTRACT_PREF(rt->rt6i_flags)) << 2;
661#endif
Hannes Frederic Sowaafc154e2013-07-11 12:43:42 +0200662 if (strict & RT6_LOOKUP_F_REACHABLE) {
663 int n = rt6_check_neigh(rt);
664 if (n < 0)
665 return n;
666 }
YOSHIFUJI Hideaki554cfb72006-03-20 17:00:26 -0800667 return m;
668}
Linus Torvalds1da177e2005-04-16 15:20:36 -0700669
David S. Millerf11e6652007-03-24 20:36:25 -0700670static struct rt6_info *find_match(struct rt6_info *rt, int oif, int strict,
Hannes Frederic Sowaafc154e2013-07-11 12:43:42 +0200671 int *mpri, struct rt6_info *match,
672 bool *do_rr)
YOSHIFUJI Hideaki554cfb72006-03-20 17:00:26 -0800673{
David S. Millerf11e6652007-03-24 20:36:25 -0700674 int m;
Hannes Frederic Sowaafc154e2013-07-11 12:43:42 +0200675 bool match_do_rr = false;
Andy Gospodarek35103d12015-08-13 10:39:01 -0400676 struct inet6_dev *idev = rt->rt6i_idev;
Andy Gospodarek35103d12015-08-13 10:39:01 -0400677
Ido Schimmel8067bb82018-01-07 12:45:09 +0200678 if (rt->rt6i_nh_flags & RTNH_F_DEAD)
679 goto out;
680
Ido Schimmel14c52062018-01-07 12:45:07 +0200681 if (idev->cnf.ignore_routes_with_linkdown &&
682 rt->rt6i_nh_flags & RTNH_F_LINKDOWN &&
David Ahernd5d32e42016-10-24 12:27:23 -0700683 !(strict & RT6_LOOKUP_F_IGNORE_LINKSTATE))
Andy Gospodarek35103d12015-08-13 10:39:01 -0400684 goto out;
David S. Millerf11e6652007-03-24 20:36:25 -0700685
686 if (rt6_check_expired(rt))
687 goto out;
688
689 m = rt6_score_route(rt, oif, strict);
Jiri Benc7e980562013-12-11 13:48:20 +0100690 if (m == RT6_NUD_FAIL_DO_RR) {
Hannes Frederic Sowaafc154e2013-07-11 12:43:42 +0200691 match_do_rr = true;
692 m = 0; /* lowest valid score */
Jiri Benc7e980562013-12-11 13:48:20 +0100693 } else if (m == RT6_NUD_FAIL_HARD) {
David S. Millerf11e6652007-03-24 20:36:25 -0700694 goto out;
David S. Millerf11e6652007-03-24 20:36:25 -0700695 }
696
Hannes Frederic Sowaafc154e2013-07-11 12:43:42 +0200697 if (strict & RT6_LOOKUP_F_REACHABLE)
698 rt6_probe(rt);
699
Jiri Benc7e980562013-12-11 13:48:20 +0100700 /* note that m can be RT6_NUD_FAIL_PROBE at this point */
Hannes Frederic Sowaafc154e2013-07-11 12:43:42 +0200701 if (m > *mpri) {
702 *do_rr = match_do_rr;
703 *mpri = m;
704 match = rt;
705 }
David S. Millerf11e6652007-03-24 20:36:25 -0700706out:
707 return match;
708}
709
710static struct rt6_info *find_rr_leaf(struct fib6_node *fn,
Wei Wang8d1040e2017-10-06 12:06:08 -0700711 struct rt6_info *leaf,
David S. Millerf11e6652007-03-24 20:36:25 -0700712 struct rt6_info *rr_head,
Hannes Frederic Sowaafc154e2013-07-11 12:43:42 +0200713 u32 metric, int oif, int strict,
714 bool *do_rr)
David S. Millerf11e6652007-03-24 20:36:25 -0700715{
Steffen Klassert9fbdcfa2015-04-28 13:03:04 -0700716 struct rt6_info *rt, *match, *cont;
YOSHIFUJI Hideaki554cfb72006-03-20 17:00:26 -0800717 int mpri = -1;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700718
David S. Millerf11e6652007-03-24 20:36:25 -0700719 match = NULL;
Steffen Klassert9fbdcfa2015-04-28 13:03:04 -0700720 cont = NULL;
David Miller071fb372017-11-28 15:40:15 -0500721 for (rt = rr_head; rt; rt = rcu_dereference(rt->rt6_next)) {
Steffen Klassert9fbdcfa2015-04-28 13:03:04 -0700722 if (rt->rt6i_metric != metric) {
723 cont = rt;
724 break;
725 }
726
Hannes Frederic Sowaafc154e2013-07-11 12:43:42 +0200727 match = find_match(rt, oif, strict, &mpri, match, do_rr);
Steffen Klassert9fbdcfa2015-04-28 13:03:04 -0700728 }
729
Wei Wang66f5d6c2017-10-06 12:06:10 -0700730 for (rt = leaf; rt && rt != rr_head;
David Miller071fb372017-11-28 15:40:15 -0500731 rt = rcu_dereference(rt->rt6_next)) {
Steffen Klassert9fbdcfa2015-04-28 13:03:04 -0700732 if (rt->rt6i_metric != metric) {
733 cont = rt;
734 break;
735 }
736
737 match = find_match(rt, oif, strict, &mpri, match, do_rr);
738 }
739
740 if (match || !cont)
741 return match;
742
David Miller071fb372017-11-28 15:40:15 -0500743 for (rt = cont; rt; rt = rcu_dereference(rt->rt6_next))
Hannes Frederic Sowaafc154e2013-07-11 12:43:42 +0200744 match = find_match(rt, oif, strict, &mpri, match, do_rr);
YOSHIFUJI Hideaki554cfb72006-03-20 17:00:26 -0800745
David S. Millerf11e6652007-03-24 20:36:25 -0700746 return match;
747}
YOSHIFUJI Hideaki554cfb72006-03-20 17:00:26 -0800748
Wei Wang8d1040e2017-10-06 12:06:08 -0700749static struct rt6_info *rt6_select(struct net *net, struct fib6_node *fn,
750 int oif, int strict)
David S. Millerf11e6652007-03-24 20:36:25 -0700751{
Wei Wang66f5d6c2017-10-06 12:06:10 -0700752 struct rt6_info *leaf = rcu_dereference(fn->leaf);
David S. Millerf11e6652007-03-24 20:36:25 -0700753 struct rt6_info *match, *rt0;
Hannes Frederic Sowaafc154e2013-07-11 12:43:42 +0200754 bool do_rr = false;
Wei Wang17ecf592017-10-06 12:06:09 -0700755 int key_plen;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700756
Wei Wang87b1af82017-10-23 14:59:35 -0700757 if (!leaf || leaf == net->ipv6.ip6_null_entry)
Wei Wang8d1040e2017-10-06 12:06:08 -0700758 return net->ipv6.ip6_null_entry;
759
Wei Wang66f5d6c2017-10-06 12:06:10 -0700760 rt0 = rcu_dereference(fn->rr_ptr);
David S. Millerf11e6652007-03-24 20:36:25 -0700761 if (!rt0)
Wei Wang66f5d6c2017-10-06 12:06:10 -0700762 rt0 = leaf;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700763
Wei Wang17ecf592017-10-06 12:06:09 -0700764 /* Double check to make sure fn is not an intermediate node
765 * and fn->leaf does not points to its child's leaf
766 * (This might happen if all routes under fn are deleted from
767 * the tree and fib6_repair_tree() is called on the node.)
768 */
769 key_plen = rt0->rt6i_dst.plen;
770#ifdef CONFIG_IPV6_SUBTREES
771 if (rt0->rt6i_src.plen)
772 key_plen = rt0->rt6i_src.plen;
773#endif
774 if (fn->fn_bit != key_plen)
775 return net->ipv6.ip6_null_entry;
776
Wei Wang8d1040e2017-10-06 12:06:08 -0700777 match = find_rr_leaf(fn, leaf, rt0, rt0->rt6i_metric, oif, strict,
Hannes Frederic Sowaafc154e2013-07-11 12:43:42 +0200778 &do_rr);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700779
Hannes Frederic Sowaafc154e2013-07-11 12:43:42 +0200780 if (do_rr) {
David Miller071fb372017-11-28 15:40:15 -0500781 struct rt6_info *next = rcu_dereference(rt0->rt6_next);
David S. Millerf11e6652007-03-24 20:36:25 -0700782
YOSHIFUJI Hideaki554cfb72006-03-20 17:00:26 -0800783 /* no entries matched; do round-robin */
David S. Millerf11e6652007-03-24 20:36:25 -0700784 if (!next || next->rt6i_metric != rt0->rt6i_metric)
Wei Wang8d1040e2017-10-06 12:06:08 -0700785 next = leaf;
David S. Millerf11e6652007-03-24 20:36:25 -0700786
Wei Wang66f5d6c2017-10-06 12:06:10 -0700787 if (next != rt0) {
788 spin_lock_bh(&leaf->rt6i_table->tb6_lock);
789 /* make sure next is not being deleted from the tree */
790 if (next->rt6i_node)
791 rcu_assign_pointer(fn->rr_ptr, next);
792 spin_unlock_bh(&leaf->rt6i_table->tb6_lock);
793 }
Linus Torvalds1da177e2005-04-16 15:20:36 -0700794 }
795
Eric Dumazeta02cec22010-09-22 20:43:57 +0000796 return match ? match : net->ipv6.ip6_null_entry;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700797}
798
Martin KaFai Lau8b9df262015-05-22 20:55:59 -0700799static bool rt6_is_gw_or_nonexthop(const struct rt6_info *rt)
800{
801 return (rt->rt6i_flags & (RTF_NONEXTHOP | RTF_GATEWAY));
802}
803
YOSHIFUJI Hideaki70ceb4f2006-03-20 17:06:24 -0800804#ifdef CONFIG_IPV6_ROUTE_INFO
805int rt6_route_rcv(struct net_device *dev, u8 *opt, int len,
Eric Dumazetb71d1d42011-04-22 04:53:02 +0000806 const struct in6_addr *gwaddr)
YOSHIFUJI Hideaki70ceb4f2006-03-20 17:06:24 -0800807{
YOSHIFUJI Hideakic346dca2008-03-25 21:47:49 +0900808 struct net *net = dev_net(dev);
YOSHIFUJI Hideaki70ceb4f2006-03-20 17:06:24 -0800809 struct route_info *rinfo = (struct route_info *) opt;
810 struct in6_addr prefix_buf, *prefix;
811 unsigned int pref;
YOSHIFUJI Hideaki4bed72e2008-05-27 17:37:49 +0900812 unsigned long lifetime;
YOSHIFUJI Hideaki70ceb4f2006-03-20 17:06:24 -0800813 struct rt6_info *rt;
814
815 if (len < sizeof(struct route_info)) {
816 return -EINVAL;
817 }
818
819 /* Sanity check for prefix_len and length */
820 if (rinfo->length > 3) {
821 return -EINVAL;
822 } else if (rinfo->prefix_len > 128) {
823 return -EINVAL;
824 } else if (rinfo->prefix_len > 64) {
825 if (rinfo->length < 2) {
826 return -EINVAL;
827 }
828 } else if (rinfo->prefix_len > 0) {
829 if (rinfo->length < 1) {
830 return -EINVAL;
831 }
832 }
833
834 pref = rinfo->route_pref;
835 if (pref == ICMPV6_ROUTER_PREF_INVALID)
Jens Rosenboom3933fc92009-09-10 06:25:11 +0000836 return -EINVAL;
YOSHIFUJI Hideaki70ceb4f2006-03-20 17:06:24 -0800837
YOSHIFUJI Hideaki4bed72e2008-05-27 17:37:49 +0900838 lifetime = addrconf_timeout_fixup(ntohl(rinfo->lifetime), HZ);
YOSHIFUJI Hideaki70ceb4f2006-03-20 17:06:24 -0800839
840 if (rinfo->length == 3)
841 prefix = (struct in6_addr *)rinfo->prefix;
842 else {
843 /* this function is safe */
844 ipv6_addr_prefix(&prefix_buf,
845 (struct in6_addr *)rinfo->prefix,
846 rinfo->prefix_len);
847 prefix = &prefix_buf;
848 }
849
Duan Jiongf104a562013-11-08 09:56:53 +0800850 if (rinfo->prefix_len == 0)
851 rt = rt6_get_dflt_router(gwaddr, dev);
852 else
853 rt = rt6_get_route_info(net, prefix, rinfo->prefix_len,
David Ahern830218c2016-10-24 10:52:35 -0700854 gwaddr, dev);
YOSHIFUJI Hideaki70ceb4f2006-03-20 17:06:24 -0800855
856 if (rt && !lifetime) {
Thomas Grafe0a1ad732006-08-22 00:00:21 -0700857 ip6_del_rt(rt);
YOSHIFUJI Hideaki70ceb4f2006-03-20 17:06:24 -0800858 rt = NULL;
859 }
860
861 if (!rt && lifetime)
David Ahern830218c2016-10-24 10:52:35 -0700862 rt = rt6_add_route_info(net, prefix, rinfo->prefix_len, gwaddr,
863 dev, pref);
YOSHIFUJI Hideaki70ceb4f2006-03-20 17:06:24 -0800864 else if (rt)
865 rt->rt6i_flags = RTF_ROUTEINFO |
866 (rt->rt6i_flags & ~RTF_PREF_MASK) | RTF_PREF(pref);
867
868 if (rt) {
Gao feng1716a962012-04-06 00:13:10 +0000869 if (!addrconf_finite_timeout(lifetime))
870 rt6_clean_expires(rt);
871 else
872 rt6_set_expires(rt, jiffies + HZ * lifetime);
873
Amerigo Wang94e187c2012-10-29 00:13:19 +0000874 ip6_rt_put(rt);
YOSHIFUJI Hideaki70ceb4f2006-03-20 17:06:24 -0800875 }
876 return 0;
877}
878#endif
879
Martin KaFai Laua3c00e42014-10-20 13:42:43 -0700880static struct fib6_node* fib6_backtrack(struct fib6_node *fn,
881 struct in6_addr *saddr)
882{
Wei Wang66f5d6c2017-10-06 12:06:10 -0700883 struct fib6_node *pn, *sn;
Martin KaFai Laua3c00e42014-10-20 13:42:43 -0700884 while (1) {
885 if (fn->fn_flags & RTN_TL_ROOT)
886 return NULL;
Wei Wang66f5d6c2017-10-06 12:06:10 -0700887 pn = rcu_dereference(fn->parent);
888 sn = FIB6_SUBTREE(pn);
889 if (sn && sn != fn)
890 fn = fib6_lookup(sn, NULL, saddr);
Martin KaFai Laua3c00e42014-10-20 13:42:43 -0700891 else
892 fn = pn;
893 if (fn->fn_flags & RTN_RTINFO)
894 return fn;
895 }
896}
Thomas Grafc71099a2006-08-04 23:20:06 -0700897
Wei Wangd3843fe2017-10-06 12:06:06 -0700898static bool ip6_hold_safe(struct net *net, struct rt6_info **prt,
899 bool null_fallback)
900{
901 struct rt6_info *rt = *prt;
902
903 if (dst_hold_safe(&rt->dst))
904 return true;
905 if (null_fallback) {
906 rt = net->ipv6.ip6_null_entry;
907 dst_hold(&rt->dst);
908 } else {
909 rt = NULL;
910 }
911 *prt = rt;
912 return false;
913}
914
Daniel Lezcano8ed67782008-03-04 13:48:30 -0800915static struct rt6_info *ip6_pol_route_lookup(struct net *net,
916 struct fib6_table *table,
David S. Miller4c9483b2011-03-12 16:22:43 -0500917 struct flowi6 *fl6, int flags)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700918{
Wei Wang2b760fc2017-10-06 12:06:03 -0700919 struct rt6_info *rt, *rt_cache;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700920 struct fib6_node *fn;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700921
Wei Wang66f5d6c2017-10-06 12:06:10 -0700922 rcu_read_lock();
David S. Miller4c9483b2011-03-12 16:22:43 -0500923 fn = fib6_lookup(&table->tb6_root, &fl6->daddr, &fl6->saddr);
Thomas Grafc71099a2006-08-04 23:20:06 -0700924restart:
Wei Wang66f5d6c2017-10-06 12:06:10 -0700925 rt = rcu_dereference(fn->leaf);
926 if (!rt) {
927 rt = net->ipv6.ip6_null_entry;
928 } else {
929 rt = rt6_device_match(net, rt, &fl6->saddr,
930 fl6->flowi6_oif, flags);
931 if (rt->rt6i_nsiblings && fl6->flowi6_oif == 0)
932 rt = rt6_multipath_select(rt, fl6,
933 fl6->flowi6_oif, flags);
934 }
Martin KaFai Laua3c00e42014-10-20 13:42:43 -0700935 if (rt == net->ipv6.ip6_null_entry) {
936 fn = fib6_backtrack(fn, &fl6->saddr);
937 if (fn)
938 goto restart;
939 }
Wei Wang2b760fc2017-10-06 12:06:03 -0700940 /* Search through exception table */
941 rt_cache = rt6_find_cached_rt(rt, &fl6->daddr, &fl6->saddr);
942 if (rt_cache)
943 rt = rt_cache;
944
Wei Wangd3843fe2017-10-06 12:06:06 -0700945 if (ip6_hold_safe(net, &rt, true))
946 dst_use_noref(&rt->dst, jiffies);
947
Wei Wang66f5d6c2017-10-06 12:06:10 -0700948 rcu_read_unlock();
David Ahernb8115802015-11-19 12:24:22 -0800949
Paolo Abenib65f1642017-10-19 09:31:43 +0200950 trace_fib6_table_lookup(net, rt, table, fl6);
David Ahernb8115802015-11-19 12:24:22 -0800951
Thomas Grafc71099a2006-08-04 23:20:06 -0700952 return rt;
953
954}
955
Ian Morris67ba4152014-08-24 21:53:10 +0100956struct dst_entry *ip6_route_lookup(struct net *net, struct flowi6 *fl6,
Florian Westphalea6e5742011-09-05 16:05:44 +0200957 int flags)
958{
959 return fib6_rule_lookup(net, fl6, flags, ip6_pol_route_lookup);
960}
961EXPORT_SYMBOL_GPL(ip6_route_lookup);
962
YOSHIFUJI Hideaki9acd9f32008-04-10 15:42:10 +0900963struct rt6_info *rt6_lookup(struct net *net, const struct in6_addr *daddr,
964 const struct in6_addr *saddr, int oif, int strict)
Thomas Grafc71099a2006-08-04 23:20:06 -0700965{
David S. Miller4c9483b2011-03-12 16:22:43 -0500966 struct flowi6 fl6 = {
967 .flowi6_oif = oif,
968 .daddr = *daddr,
Thomas Grafc71099a2006-08-04 23:20:06 -0700969 };
970 struct dst_entry *dst;
YOSHIFUJI Hideaki77d16f42006-08-23 17:25:05 -0700971 int flags = strict ? RT6_LOOKUP_F_IFACE : 0;
Thomas Grafc71099a2006-08-04 23:20:06 -0700972
Thomas Grafadaa70b2006-10-13 15:01:03 -0700973 if (saddr) {
David S. Miller4c9483b2011-03-12 16:22:43 -0500974 memcpy(&fl6.saddr, saddr, sizeof(*saddr));
Thomas Grafadaa70b2006-10-13 15:01:03 -0700975 flags |= RT6_LOOKUP_F_HAS_SADDR;
976 }
977
David S. Miller4c9483b2011-03-12 16:22:43 -0500978 dst = fib6_rule_lookup(net, &fl6, flags, ip6_pol_route_lookup);
Thomas Grafc71099a2006-08-04 23:20:06 -0700979 if (dst->error == 0)
980 return (struct rt6_info *) dst;
981
982 dst_release(dst);
983
Linus Torvalds1da177e2005-04-16 15:20:36 -0700984 return NULL;
985}
YOSHIFUJI Hideaki71590392007-02-22 22:05:40 +0900986EXPORT_SYMBOL(rt6_lookup);
987
Thomas Grafc71099a2006-08-04 23:20:06 -0700988/* ip6_ins_rt is called with FREE table->tb6_lock.
Wei Wang1cfb71e2017-06-17 10:42:33 -0700989 * It takes new route entry, the addition fails by any reason the
990 * route is released.
991 * Caller must hold dst before calling it.
Linus Torvalds1da177e2005-04-16 15:20:36 -0700992 */
993
Michal Kubečeke5fd3872014-03-27 13:04:08 +0100994static int __ip6_ins_rt(struct rt6_info *rt, struct nl_info *info,
David Ahern333c4302017-05-21 10:12:04 -0600995 struct mx6_config *mxc,
996 struct netlink_ext_ack *extack)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700997{
998 int err;
Thomas Grafc71099a2006-08-04 23:20:06 -0700999 struct fib6_table *table;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001000
Thomas Grafc71099a2006-08-04 23:20:06 -07001001 table = rt->rt6i_table;
Wei Wang66f5d6c2017-10-06 12:06:10 -07001002 spin_lock_bh(&table->tb6_lock);
David Ahern333c4302017-05-21 10:12:04 -06001003 err = fib6_add(&table->tb6_root, rt, info, mxc, extack);
Wei Wang66f5d6c2017-10-06 12:06:10 -07001004 spin_unlock_bh(&table->tb6_lock);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001005
1006 return err;
1007}
1008
Thomas Graf40e22e82006-08-22 00:00:45 -07001009int ip6_ins_rt(struct rt6_info *rt)
1010{
Florian Westphale715b6d2015-01-05 23:57:44 +01001011 struct nl_info info = { .nl_net = dev_net(rt->dst.dev), };
1012 struct mx6_config mxc = { .mx = NULL, };
1013
Wei Wang1cfb71e2017-06-17 10:42:33 -07001014 /* Hold dst to account for the reference from the fib6 tree */
1015 dst_hold(&rt->dst);
David Ahern333c4302017-05-21 10:12:04 -06001016 return __ip6_ins_rt(rt, &info, &mxc, NULL);
Thomas Graf40e22e82006-08-22 00:00:45 -07001017}
1018
David Ahern4832c302017-08-17 12:17:20 -07001019/* called with rcu_lock held */
1020static struct net_device *ip6_rt_get_dev_rcu(struct rt6_info *rt)
1021{
1022 struct net_device *dev = rt->dst.dev;
1023
David Ahern98d11292017-11-21 07:08:57 -08001024 if (rt->rt6i_flags & (RTF_LOCAL | RTF_ANYCAST)) {
David Ahern4832c302017-08-17 12:17:20 -07001025 /* for copies of local routes, dst->dev needs to be the
1026 * device if it is a master device, the master device if
1027 * device is enslaved, and the loopback as the default
1028 */
1029 if (netif_is_l3_slave(dev) &&
1030 !rt6_need_strict(&rt->rt6i_dst.addr))
1031 dev = l3mdev_master_dev_rcu(dev);
1032 else if (!netif_is_l3_master(dev))
1033 dev = dev_net(dev)->loopback_dev;
1034 /* last case is netif_is_l3_master(dev) is true in which
1035 * case we want dev returned to be dev
1036 */
1037 }
1038
1039 return dev;
1040}
1041
Martin KaFai Lau8b9df262015-05-22 20:55:59 -07001042static struct rt6_info *ip6_rt_cache_alloc(struct rt6_info *ort,
1043 const struct in6_addr *daddr,
1044 const struct in6_addr *saddr)
Linus Torvalds1da177e2005-04-16 15:20:36 -07001045{
David Ahern4832c302017-08-17 12:17:20 -07001046 struct net_device *dev;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001047 struct rt6_info *rt;
1048
1049 /*
1050 * Clone the route.
1051 */
1052
Martin KaFai Laud52d3992015-05-22 20:56:06 -07001053 if (ort->rt6i_flags & (RTF_CACHE | RTF_PCPU))
David Miller3a2232e2017-11-28 15:40:40 -05001054 ort = ort->from;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001055
David Ahern4832c302017-08-17 12:17:20 -07001056 rcu_read_lock();
1057 dev = ip6_rt_get_dev_rcu(ort);
1058 rt = __ip6_dst_alloc(dev_net(dev), dev, 0);
1059 rcu_read_unlock();
Martin KaFai Lau83a09ab2015-05-22 20:56:05 -07001060 if (!rt)
1061 return NULL;
1062
1063 ip6_rt_copy_init(rt, ort);
1064 rt->rt6i_flags |= RTF_CACHE;
1065 rt->rt6i_metric = 0;
1066 rt->dst.flags |= DST_HOST;
1067 rt->rt6i_dst.addr = *daddr;
1068 rt->rt6i_dst.plen = 128;
1069
1070 if (!rt6_is_gw_or_nonexthop(ort)) {
1071 if (ort->rt6i_dst.plen != 128 &&
1072 ipv6_addr_equal(&ort->rt6i_dst.addr, daddr))
1073 rt->rt6i_flags |= RTF_ANYCAST;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001074#ifdef CONFIG_IPV6_SUBTREES
Martin KaFai Lau83a09ab2015-05-22 20:56:05 -07001075 if (rt->rt6i_src.plen && saddr) {
1076 rt->rt6i_src.addr = *saddr;
1077 rt->rt6i_src.plen = 128;
Martin KaFai Lau8b9df262015-05-22 20:55:59 -07001078 }
Martin KaFai Lau83a09ab2015-05-22 20:56:05 -07001079#endif
YOSHIFUJI Hideaki95a9a5b2006-03-20 16:55:51 -08001080 }
Linus Torvalds1da177e2005-04-16 15:20:36 -07001081
YOSHIFUJI Hideaki95a9a5b2006-03-20 16:55:51 -08001082 return rt;
1083}
Linus Torvalds1da177e2005-04-16 15:20:36 -07001084
Martin KaFai Laud52d3992015-05-22 20:56:06 -07001085static struct rt6_info *ip6_rt_pcpu_alloc(struct rt6_info *rt)
1086{
David Ahern4832c302017-08-17 12:17:20 -07001087 struct net_device *dev;
Martin KaFai Laud52d3992015-05-22 20:56:06 -07001088 struct rt6_info *pcpu_rt;
1089
David Ahern4832c302017-08-17 12:17:20 -07001090 rcu_read_lock();
1091 dev = ip6_rt_get_dev_rcu(rt);
1092 pcpu_rt = __ip6_dst_alloc(dev_net(dev), dev, rt->dst.flags);
1093 rcu_read_unlock();
Martin KaFai Laud52d3992015-05-22 20:56:06 -07001094 if (!pcpu_rt)
1095 return NULL;
1096 ip6_rt_copy_init(pcpu_rt, rt);
1097 pcpu_rt->rt6i_protocol = rt->rt6i_protocol;
1098 pcpu_rt->rt6i_flags |= RTF_PCPU;
1099 return pcpu_rt;
1100}
1101
Wei Wang66f5d6c2017-10-06 12:06:10 -07001102/* It should be called with rcu_read_lock() acquired */
Martin KaFai Laud52d3992015-05-22 20:56:06 -07001103static struct rt6_info *rt6_get_pcpu_route(struct rt6_info *rt)
1104{
Martin KaFai Laua73e4192015-08-14 11:05:53 -07001105 struct rt6_info *pcpu_rt, **p;
Martin KaFai Laud52d3992015-05-22 20:56:06 -07001106
1107 p = this_cpu_ptr(rt->rt6i_pcpu);
1108 pcpu_rt = *p;
1109
Wei Wangd3843fe2017-10-06 12:06:06 -07001110 if (pcpu_rt && ip6_hold_safe(NULL, &pcpu_rt, false))
Martin KaFai Laua73e4192015-08-14 11:05:53 -07001111 rt6_dst_from_metrics_check(pcpu_rt);
Wei Wangd3843fe2017-10-06 12:06:06 -07001112
Martin KaFai Laua73e4192015-08-14 11:05:53 -07001113 return pcpu_rt;
1114}
1115
1116static struct rt6_info *rt6_make_pcpu_route(struct rt6_info *rt)
1117{
1118 struct rt6_info *pcpu_rt, *prev, **p;
Martin KaFai Laud52d3992015-05-22 20:56:06 -07001119
1120 pcpu_rt = ip6_rt_pcpu_alloc(rt);
1121 if (!pcpu_rt) {
1122 struct net *net = dev_net(rt->dst.dev);
1123
Martin KaFai Lau9c7370a2015-08-14 11:05:54 -07001124 dst_hold(&net->ipv6.ip6_null_entry->dst);
1125 return net->ipv6.ip6_null_entry;
Martin KaFai Laud52d3992015-05-22 20:56:06 -07001126 }
1127
Martin KaFai Laud52d3992015-05-22 20:56:06 -07001128 dst_hold(&pcpu_rt->dst);
Wei Wanga94b9362017-10-06 12:06:04 -07001129 p = this_cpu_ptr(rt->rt6i_pcpu);
1130 prev = cmpxchg(p, NULL, pcpu_rt);
Eric Dumazet951f7882017-10-08 21:07:18 -07001131 BUG_ON(prev);
Wei Wanga94b9362017-10-06 12:06:04 -07001132
Martin KaFai Laud52d3992015-05-22 20:56:06 -07001133 rt6_dst_from_metrics_check(pcpu_rt);
1134 return pcpu_rt;
1135}
1136
Wei Wang35732d02017-10-06 12:05:57 -07001137/* exception hash table implementation
1138 */
1139static DEFINE_SPINLOCK(rt6_exception_lock);
1140
1141/* Remove rt6_ex from hash table and free the memory
1142 * Caller must hold rt6_exception_lock
1143 */
1144static void rt6_remove_exception(struct rt6_exception_bucket *bucket,
1145 struct rt6_exception *rt6_ex)
1146{
Colin Ian Kingb2427e62017-10-10 18:01:16 +01001147 struct net *net;
Wei Wang81eb8442017-10-06 12:06:11 -07001148
Wei Wang35732d02017-10-06 12:05:57 -07001149 if (!bucket || !rt6_ex)
1150 return;
Colin Ian Kingb2427e62017-10-10 18:01:16 +01001151
1152 net = dev_net(rt6_ex->rt6i->dst.dev);
Wei Wang35732d02017-10-06 12:05:57 -07001153 rt6_ex->rt6i->rt6i_node = NULL;
1154 hlist_del_rcu(&rt6_ex->hlist);
1155 rt6_release(rt6_ex->rt6i);
1156 kfree_rcu(rt6_ex, rcu);
1157 WARN_ON_ONCE(!bucket->depth);
1158 bucket->depth--;
Wei Wang81eb8442017-10-06 12:06:11 -07001159 net->ipv6.rt6_stats->fib_rt_cache--;
Wei Wang35732d02017-10-06 12:05:57 -07001160}
1161
1162/* Remove oldest rt6_ex in bucket and free the memory
1163 * Caller must hold rt6_exception_lock
1164 */
1165static void rt6_exception_remove_oldest(struct rt6_exception_bucket *bucket)
1166{
1167 struct rt6_exception *rt6_ex, *oldest = NULL;
1168
1169 if (!bucket)
1170 return;
1171
1172 hlist_for_each_entry(rt6_ex, &bucket->chain, hlist) {
1173 if (!oldest || time_before(rt6_ex->stamp, oldest->stamp))
1174 oldest = rt6_ex;
1175 }
1176 rt6_remove_exception(bucket, oldest);
1177}
1178
1179static u32 rt6_exception_hash(const struct in6_addr *dst,
1180 const struct in6_addr *src)
1181{
1182 static u32 seed __read_mostly;
1183 u32 val;
1184
1185 net_get_random_once(&seed, sizeof(seed));
1186 val = jhash(dst, sizeof(*dst), seed);
1187
1188#ifdef CONFIG_IPV6_SUBTREES
1189 if (src)
1190 val = jhash(src, sizeof(*src), val);
1191#endif
1192 return hash_32(val, FIB6_EXCEPTION_BUCKET_SIZE_SHIFT);
1193}
1194
1195/* Helper function to find the cached rt in the hash table
1196 * and update bucket pointer to point to the bucket for this
1197 * (daddr, saddr) pair
1198 * Caller must hold rt6_exception_lock
1199 */
1200static struct rt6_exception *
1201__rt6_find_exception_spinlock(struct rt6_exception_bucket **bucket,
1202 const struct in6_addr *daddr,
1203 const struct in6_addr *saddr)
1204{
1205 struct rt6_exception *rt6_ex;
1206 u32 hval;
1207
1208 if (!(*bucket) || !daddr)
1209 return NULL;
1210
1211 hval = rt6_exception_hash(daddr, saddr);
1212 *bucket += hval;
1213
1214 hlist_for_each_entry(rt6_ex, &(*bucket)->chain, hlist) {
1215 struct rt6_info *rt6 = rt6_ex->rt6i;
1216 bool matched = ipv6_addr_equal(daddr, &rt6->rt6i_dst.addr);
1217
1218#ifdef CONFIG_IPV6_SUBTREES
1219 if (matched && saddr)
1220 matched = ipv6_addr_equal(saddr, &rt6->rt6i_src.addr);
1221#endif
1222 if (matched)
1223 return rt6_ex;
1224 }
1225 return NULL;
1226}
1227
1228/* Helper function to find the cached rt in the hash table
1229 * and update bucket pointer to point to the bucket for this
1230 * (daddr, saddr) pair
1231 * Caller must hold rcu_read_lock()
1232 */
1233static struct rt6_exception *
1234__rt6_find_exception_rcu(struct rt6_exception_bucket **bucket,
1235 const struct in6_addr *daddr,
1236 const struct in6_addr *saddr)
1237{
1238 struct rt6_exception *rt6_ex;
1239 u32 hval;
1240
1241 WARN_ON_ONCE(!rcu_read_lock_held());
1242
1243 if (!(*bucket) || !daddr)
1244 return NULL;
1245
1246 hval = rt6_exception_hash(daddr, saddr);
1247 *bucket += hval;
1248
1249 hlist_for_each_entry_rcu(rt6_ex, &(*bucket)->chain, hlist) {
1250 struct rt6_info *rt6 = rt6_ex->rt6i;
1251 bool matched = ipv6_addr_equal(daddr, &rt6->rt6i_dst.addr);
1252
1253#ifdef CONFIG_IPV6_SUBTREES
1254 if (matched && saddr)
1255 matched = ipv6_addr_equal(saddr, &rt6->rt6i_src.addr);
1256#endif
1257 if (matched)
1258 return rt6_ex;
1259 }
1260 return NULL;
1261}
1262
1263static int rt6_insert_exception(struct rt6_info *nrt,
1264 struct rt6_info *ort)
1265{
Wei Wang81eb8442017-10-06 12:06:11 -07001266 struct net *net = dev_net(ort->dst.dev);
Wei Wang35732d02017-10-06 12:05:57 -07001267 struct rt6_exception_bucket *bucket;
1268 struct in6_addr *src_key = NULL;
1269 struct rt6_exception *rt6_ex;
1270 int err = 0;
1271
1272 /* ort can't be a cache or pcpu route */
1273 if (ort->rt6i_flags & (RTF_CACHE | RTF_PCPU))
David Miller3a2232e2017-11-28 15:40:40 -05001274 ort = ort->from;
Wei Wang35732d02017-10-06 12:05:57 -07001275 WARN_ON_ONCE(ort->rt6i_flags & (RTF_CACHE | RTF_PCPU));
1276
1277 spin_lock_bh(&rt6_exception_lock);
1278
1279 if (ort->exception_bucket_flushed) {
1280 err = -EINVAL;
1281 goto out;
1282 }
1283
1284 bucket = rcu_dereference_protected(ort->rt6i_exception_bucket,
1285 lockdep_is_held(&rt6_exception_lock));
1286 if (!bucket) {
1287 bucket = kcalloc(FIB6_EXCEPTION_BUCKET_SIZE, sizeof(*bucket),
1288 GFP_ATOMIC);
1289 if (!bucket) {
1290 err = -ENOMEM;
1291 goto out;
1292 }
1293 rcu_assign_pointer(ort->rt6i_exception_bucket, bucket);
1294 }
1295
1296#ifdef CONFIG_IPV6_SUBTREES
1297 /* rt6i_src.plen != 0 indicates ort is in subtree
1298 * and exception table is indexed by a hash of
1299 * both rt6i_dst and rt6i_src.
1300 * Otherwise, the exception table is indexed by
1301 * a hash of only rt6i_dst.
1302 */
1303 if (ort->rt6i_src.plen)
1304 src_key = &nrt->rt6i_src.addr;
1305#endif
Wei Wang60006a42017-10-06 12:05:58 -07001306
1307 /* Update rt6i_prefsrc as it could be changed
1308 * in rt6_remove_prefsrc()
1309 */
1310 nrt->rt6i_prefsrc = ort->rt6i_prefsrc;
Wei Wangf5bbe7e2017-10-06 12:05:59 -07001311 /* rt6_mtu_change() might lower mtu on ort.
1312 * Only insert this exception route if its mtu
1313 * is less than ort's mtu value.
1314 */
1315 if (nrt->rt6i_pmtu >= dst_mtu(&ort->dst)) {
1316 err = -EINVAL;
1317 goto out;
1318 }
Wei Wang60006a42017-10-06 12:05:58 -07001319
Wei Wang35732d02017-10-06 12:05:57 -07001320 rt6_ex = __rt6_find_exception_spinlock(&bucket, &nrt->rt6i_dst.addr,
1321 src_key);
1322 if (rt6_ex)
1323 rt6_remove_exception(bucket, rt6_ex);
1324
1325 rt6_ex = kzalloc(sizeof(*rt6_ex), GFP_ATOMIC);
1326 if (!rt6_ex) {
1327 err = -ENOMEM;
1328 goto out;
1329 }
1330 rt6_ex->rt6i = nrt;
1331 rt6_ex->stamp = jiffies;
1332 atomic_inc(&nrt->rt6i_ref);
1333 nrt->rt6i_node = ort->rt6i_node;
1334 hlist_add_head_rcu(&rt6_ex->hlist, &bucket->chain);
1335 bucket->depth++;
Wei Wang81eb8442017-10-06 12:06:11 -07001336 net->ipv6.rt6_stats->fib_rt_cache++;
Wei Wang35732d02017-10-06 12:05:57 -07001337
1338 if (bucket->depth > FIB6_MAX_DEPTH)
1339 rt6_exception_remove_oldest(bucket);
1340
1341out:
1342 spin_unlock_bh(&rt6_exception_lock);
1343
1344 /* Update fn->fn_sernum to invalidate all cached dst */
Paolo Abenib886d5f2017-10-19 16:07:10 +02001345 if (!err) {
Ido Schimmel922c2ac2018-01-07 12:45:14 +02001346 spin_lock_bh(&ort->rt6i_table->tb6_lock);
Wei Wang35732d02017-10-06 12:05:57 -07001347 fib6_update_sernum(ort);
Ido Schimmel922c2ac2018-01-07 12:45:14 +02001348 spin_unlock_bh(&ort->rt6i_table->tb6_lock);
Paolo Abenib886d5f2017-10-19 16:07:10 +02001349 fib6_force_start_gc(net);
1350 }
Wei Wang35732d02017-10-06 12:05:57 -07001351
1352 return err;
1353}
1354
1355void rt6_flush_exceptions(struct rt6_info *rt)
1356{
1357 struct rt6_exception_bucket *bucket;
1358 struct rt6_exception *rt6_ex;
1359 struct hlist_node *tmp;
1360 int i;
1361
1362 spin_lock_bh(&rt6_exception_lock);
1363 /* Prevent rt6_insert_exception() to recreate the bucket list */
1364 rt->exception_bucket_flushed = 1;
1365
1366 bucket = rcu_dereference_protected(rt->rt6i_exception_bucket,
1367 lockdep_is_held(&rt6_exception_lock));
1368 if (!bucket)
1369 goto out;
1370
1371 for (i = 0; i < FIB6_EXCEPTION_BUCKET_SIZE; i++) {
1372 hlist_for_each_entry_safe(rt6_ex, tmp, &bucket->chain, hlist)
1373 rt6_remove_exception(bucket, rt6_ex);
1374 WARN_ON_ONCE(bucket->depth);
1375 bucket++;
1376 }
1377
1378out:
1379 spin_unlock_bh(&rt6_exception_lock);
1380}
1381
1382/* Find cached rt in the hash table inside passed in rt
1383 * Caller has to hold rcu_read_lock()
1384 */
1385static struct rt6_info *rt6_find_cached_rt(struct rt6_info *rt,
1386 struct in6_addr *daddr,
1387 struct in6_addr *saddr)
1388{
1389 struct rt6_exception_bucket *bucket;
1390 struct in6_addr *src_key = NULL;
1391 struct rt6_exception *rt6_ex;
1392 struct rt6_info *res = NULL;
1393
1394 bucket = rcu_dereference(rt->rt6i_exception_bucket);
1395
1396#ifdef CONFIG_IPV6_SUBTREES
1397 /* rt6i_src.plen != 0 indicates rt is in subtree
1398 * and exception table is indexed by a hash of
1399 * both rt6i_dst and rt6i_src.
1400 * Otherwise, the exception table is indexed by
1401 * a hash of only rt6i_dst.
1402 */
1403 if (rt->rt6i_src.plen)
1404 src_key = saddr;
1405#endif
1406 rt6_ex = __rt6_find_exception_rcu(&bucket, daddr, src_key);
1407
1408 if (rt6_ex && !rt6_check_expired(rt6_ex->rt6i))
1409 res = rt6_ex->rt6i;
1410
1411 return res;
1412}
1413
1414/* Remove the passed in cached rt from the hash table that contains it */
1415int rt6_remove_exception_rt(struct rt6_info *rt)
1416{
Wei Wang35732d02017-10-06 12:05:57 -07001417 struct rt6_exception_bucket *bucket;
David Miller3a2232e2017-11-28 15:40:40 -05001418 struct rt6_info *from = rt->from;
Wei Wang35732d02017-10-06 12:05:57 -07001419 struct in6_addr *src_key = NULL;
1420 struct rt6_exception *rt6_ex;
1421 int err;
1422
1423 if (!from ||
Colin Ian King442d7132017-10-10 19:10:30 +01001424 !(rt->rt6i_flags & RTF_CACHE))
Wei Wang35732d02017-10-06 12:05:57 -07001425 return -EINVAL;
1426
1427 if (!rcu_access_pointer(from->rt6i_exception_bucket))
1428 return -ENOENT;
1429
1430 spin_lock_bh(&rt6_exception_lock);
1431 bucket = rcu_dereference_protected(from->rt6i_exception_bucket,
1432 lockdep_is_held(&rt6_exception_lock));
1433#ifdef CONFIG_IPV6_SUBTREES
1434 /* rt6i_src.plen != 0 indicates 'from' is in subtree
1435 * and exception table is indexed by a hash of
1436 * both rt6i_dst and rt6i_src.
1437 * Otherwise, the exception table is indexed by
1438 * a hash of only rt6i_dst.
1439 */
1440 if (from->rt6i_src.plen)
1441 src_key = &rt->rt6i_src.addr;
1442#endif
1443 rt6_ex = __rt6_find_exception_spinlock(&bucket,
1444 &rt->rt6i_dst.addr,
1445 src_key);
1446 if (rt6_ex) {
1447 rt6_remove_exception(bucket, rt6_ex);
1448 err = 0;
1449 } else {
1450 err = -ENOENT;
1451 }
1452
1453 spin_unlock_bh(&rt6_exception_lock);
1454 return err;
1455}
1456
1457/* Find rt6_ex which contains the passed in rt cache and
1458 * refresh its stamp
1459 */
1460static void rt6_update_exception_stamp_rt(struct rt6_info *rt)
1461{
Wei Wang35732d02017-10-06 12:05:57 -07001462 struct rt6_exception_bucket *bucket;
David Miller3a2232e2017-11-28 15:40:40 -05001463 struct rt6_info *from = rt->from;
Wei Wang35732d02017-10-06 12:05:57 -07001464 struct in6_addr *src_key = NULL;
1465 struct rt6_exception *rt6_ex;
1466
1467 if (!from ||
Colin Ian King442d7132017-10-10 19:10:30 +01001468 !(rt->rt6i_flags & RTF_CACHE))
Wei Wang35732d02017-10-06 12:05:57 -07001469 return;
1470
1471 rcu_read_lock();
1472 bucket = rcu_dereference(from->rt6i_exception_bucket);
1473
1474#ifdef CONFIG_IPV6_SUBTREES
1475 /* rt6i_src.plen != 0 indicates 'from' is in subtree
1476 * and exception table is indexed by a hash of
1477 * both rt6i_dst and rt6i_src.
1478 * Otherwise, the exception table is indexed by
1479 * a hash of only rt6i_dst.
1480 */
1481 if (from->rt6i_src.plen)
1482 src_key = &rt->rt6i_src.addr;
1483#endif
1484 rt6_ex = __rt6_find_exception_rcu(&bucket,
1485 &rt->rt6i_dst.addr,
1486 src_key);
1487 if (rt6_ex)
1488 rt6_ex->stamp = jiffies;
1489
1490 rcu_read_unlock();
1491}
1492
Wei Wang60006a42017-10-06 12:05:58 -07001493static void rt6_exceptions_remove_prefsrc(struct rt6_info *rt)
1494{
1495 struct rt6_exception_bucket *bucket;
1496 struct rt6_exception *rt6_ex;
1497 int i;
1498
1499 bucket = rcu_dereference_protected(rt->rt6i_exception_bucket,
1500 lockdep_is_held(&rt6_exception_lock));
1501
1502 if (bucket) {
1503 for (i = 0; i < FIB6_EXCEPTION_BUCKET_SIZE; i++) {
1504 hlist_for_each_entry(rt6_ex, &bucket->chain, hlist) {
1505 rt6_ex->rt6i->rt6i_prefsrc.plen = 0;
1506 }
1507 bucket++;
1508 }
1509 }
1510}
1511
Stefano Brivioe9fa1492018-03-06 11:10:19 +01001512static bool rt6_mtu_change_route_allowed(struct inet6_dev *idev,
1513 struct rt6_info *rt, int mtu)
1514{
1515 /* If the new MTU is lower than the route PMTU, this new MTU will be the
1516 * lowest MTU in the path: always allow updating the route PMTU to
1517 * reflect PMTU decreases.
1518 *
1519 * If the new MTU is higher, and the route PMTU is equal to the local
1520 * MTU, this means the old MTU is the lowest in the path, so allow
1521 * updating it: if other nodes now have lower MTUs, PMTU discovery will
1522 * handle this.
1523 */
1524
1525 if (dst_mtu(&rt->dst) >= mtu)
1526 return true;
1527
1528 if (dst_mtu(&rt->dst) == idev->cnf.mtu6)
1529 return true;
1530
1531 return false;
1532}
1533
1534static void rt6_exceptions_update_pmtu(struct inet6_dev *idev,
1535 struct rt6_info *rt, int mtu)
Wei Wangf5bbe7e2017-10-06 12:05:59 -07001536{
1537 struct rt6_exception_bucket *bucket;
1538 struct rt6_exception *rt6_ex;
1539 int i;
1540
1541 bucket = rcu_dereference_protected(rt->rt6i_exception_bucket,
1542 lockdep_is_held(&rt6_exception_lock));
1543
Stefano Brivioe9fa1492018-03-06 11:10:19 +01001544 if (!bucket)
1545 return;
1546
1547 for (i = 0; i < FIB6_EXCEPTION_BUCKET_SIZE; i++) {
1548 hlist_for_each_entry(rt6_ex, &bucket->chain, hlist) {
1549 struct rt6_info *entry = rt6_ex->rt6i;
1550
1551 /* For RTF_CACHE with rt6i_pmtu == 0 (i.e. a redirected
1552 * route), the metrics of its rt->dst.from have already
1553 * been updated.
1554 */
1555 if (entry->rt6i_pmtu &&
1556 rt6_mtu_change_route_allowed(idev, entry, mtu))
1557 entry->rt6i_pmtu = mtu;
Wei Wangf5bbe7e2017-10-06 12:05:59 -07001558 }
Stefano Brivioe9fa1492018-03-06 11:10:19 +01001559 bucket++;
Wei Wangf5bbe7e2017-10-06 12:05:59 -07001560 }
1561}
1562
Wei Wangb16cb452017-10-06 12:06:00 -07001563#define RTF_CACHE_GATEWAY (RTF_GATEWAY | RTF_CACHE)
1564
1565static void rt6_exceptions_clean_tohost(struct rt6_info *rt,
1566 struct in6_addr *gateway)
1567{
1568 struct rt6_exception_bucket *bucket;
1569 struct rt6_exception *rt6_ex;
1570 struct hlist_node *tmp;
1571 int i;
1572
1573 if (!rcu_access_pointer(rt->rt6i_exception_bucket))
1574 return;
1575
1576 spin_lock_bh(&rt6_exception_lock);
1577 bucket = rcu_dereference_protected(rt->rt6i_exception_bucket,
1578 lockdep_is_held(&rt6_exception_lock));
1579
1580 if (bucket) {
1581 for (i = 0; i < FIB6_EXCEPTION_BUCKET_SIZE; i++) {
1582 hlist_for_each_entry_safe(rt6_ex, tmp,
1583 &bucket->chain, hlist) {
1584 struct rt6_info *entry = rt6_ex->rt6i;
1585
1586 if ((entry->rt6i_flags & RTF_CACHE_GATEWAY) ==
1587 RTF_CACHE_GATEWAY &&
1588 ipv6_addr_equal(gateway,
1589 &entry->rt6i_gateway)) {
1590 rt6_remove_exception(bucket, rt6_ex);
1591 }
1592 }
1593 bucket++;
1594 }
1595 }
1596
1597 spin_unlock_bh(&rt6_exception_lock);
1598}
1599
Wei Wangc757faa2017-10-06 12:06:01 -07001600static void rt6_age_examine_exception(struct rt6_exception_bucket *bucket,
1601 struct rt6_exception *rt6_ex,
1602 struct fib6_gc_args *gc_args,
1603 unsigned long now)
1604{
1605 struct rt6_info *rt = rt6_ex->rt6i;
1606
Paolo Abeni1859bac2017-10-19 16:07:11 +02001607 /* we are pruning and obsoleting aged-out and non gateway exceptions
1608 * even if others have still references to them, so that on next
1609 * dst_check() such references can be dropped.
1610 * EXPIRES exceptions - e.g. pmtu-generated ones are pruned when
1611 * expired, independently from their aging, as per RFC 8201 section 4
1612 */
Wei Wang31afeb42018-01-26 11:40:17 -08001613 if (!(rt->rt6i_flags & RTF_EXPIRES)) {
1614 if (time_after_eq(now, rt->dst.lastuse + gc_args->timeout)) {
1615 RT6_TRACE("aging clone %p\n", rt);
1616 rt6_remove_exception(bucket, rt6_ex);
1617 return;
1618 }
1619 } else if (time_after(jiffies, rt->dst.expires)) {
1620 RT6_TRACE("purging expired route %p\n", rt);
Wei Wangc757faa2017-10-06 12:06:01 -07001621 rt6_remove_exception(bucket, rt6_ex);
1622 return;
Wei Wang31afeb42018-01-26 11:40:17 -08001623 }
1624
1625 if (rt->rt6i_flags & RTF_GATEWAY) {
Wei Wangc757faa2017-10-06 12:06:01 -07001626 struct neighbour *neigh;
1627 __u8 neigh_flags = 0;
1628
Eric Dumazet1bfa26f2018-03-23 07:56:58 -07001629 neigh = __ipv6_neigh_lookup_noref(rt->dst.dev, &rt->rt6i_gateway);
1630 if (neigh)
Wei Wangc757faa2017-10-06 12:06:01 -07001631 neigh_flags = neigh->flags;
Eric Dumazet1bfa26f2018-03-23 07:56:58 -07001632
Wei Wangc757faa2017-10-06 12:06:01 -07001633 if (!(neigh_flags & NTF_ROUTER)) {
1634 RT6_TRACE("purging route %p via non-router but gateway\n",
1635 rt);
1636 rt6_remove_exception(bucket, rt6_ex);
1637 return;
1638 }
1639 }
Wei Wang31afeb42018-01-26 11:40:17 -08001640
Wei Wangc757faa2017-10-06 12:06:01 -07001641 gc_args->more++;
1642}
1643
1644void rt6_age_exceptions(struct rt6_info *rt,
1645 struct fib6_gc_args *gc_args,
1646 unsigned long now)
1647{
1648 struct rt6_exception_bucket *bucket;
1649 struct rt6_exception *rt6_ex;
1650 struct hlist_node *tmp;
1651 int i;
1652
1653 if (!rcu_access_pointer(rt->rt6i_exception_bucket))
1654 return;
1655
Eric Dumazet1bfa26f2018-03-23 07:56:58 -07001656 rcu_read_lock_bh();
1657 spin_lock(&rt6_exception_lock);
Wei Wangc757faa2017-10-06 12:06:01 -07001658 bucket = rcu_dereference_protected(rt->rt6i_exception_bucket,
1659 lockdep_is_held(&rt6_exception_lock));
1660
1661 if (bucket) {
1662 for (i = 0; i < FIB6_EXCEPTION_BUCKET_SIZE; i++) {
1663 hlist_for_each_entry_safe(rt6_ex, tmp,
1664 &bucket->chain, hlist) {
1665 rt6_age_examine_exception(bucket, rt6_ex,
1666 gc_args, now);
1667 }
1668 bucket++;
1669 }
1670 }
Eric Dumazet1bfa26f2018-03-23 07:56:58 -07001671 spin_unlock(&rt6_exception_lock);
1672 rcu_read_unlock_bh();
Wei Wangc757faa2017-10-06 12:06:01 -07001673}
1674
David Ahern9ff74382016-06-13 13:44:19 -07001675struct rt6_info *ip6_pol_route(struct net *net, struct fib6_table *table,
1676 int oif, struct flowi6 *fl6, int flags)
Linus Torvalds1da177e2005-04-16 15:20:36 -07001677{
Martin KaFai Lau367efcb2014-10-20 13:42:45 -07001678 struct fib6_node *fn, *saved_fn;
Wei Wang2b760fc2017-10-06 12:06:03 -07001679 struct rt6_info *rt, *rt_cache;
Thomas Grafc71099a2006-08-04 23:20:06 -07001680 int strict = 0;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001681
YOSHIFUJI Hideaki77d16f42006-08-23 17:25:05 -07001682 strict |= flags & RT6_LOOKUP_F_IFACE;
David Ahernd5d32e42016-10-24 12:27:23 -07001683 strict |= flags & RT6_LOOKUP_F_IGNORE_LINKSTATE;
Martin KaFai Lau367efcb2014-10-20 13:42:45 -07001684 if (net->ipv6.devconf_all->forwarding == 0)
1685 strict |= RT6_LOOKUP_F_REACHABLE;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001686
Wei Wang66f5d6c2017-10-06 12:06:10 -07001687 rcu_read_lock();
Linus Torvalds1da177e2005-04-16 15:20:36 -07001688
David S. Miller4c9483b2011-03-12 16:22:43 -05001689 fn = fib6_lookup(&table->tb6_root, &fl6->daddr, &fl6->saddr);
Martin KaFai Lau367efcb2014-10-20 13:42:45 -07001690 saved_fn = fn;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001691
David Ahernca254492015-10-12 11:47:10 -07001692 if (fl6->flowi6_flags & FLOWI_FLAG_SKIP_NH_OIF)
1693 oif = 0;
1694
Martin KaFai Laua3c00e42014-10-20 13:42:43 -07001695redo_rt6_select:
Wei Wang8d1040e2017-10-06 12:06:08 -07001696 rt = rt6_select(net, fn, oif, strict);
Nicolas Dichtel52bd4c02013-06-28 17:35:48 +02001697 if (rt->rt6i_nsiblings)
Martin KaFai Lau367efcb2014-10-20 13:42:45 -07001698 rt = rt6_multipath_select(rt, fl6, oif, strict);
Martin KaFai Laua3c00e42014-10-20 13:42:43 -07001699 if (rt == net->ipv6.ip6_null_entry) {
1700 fn = fib6_backtrack(fn, &fl6->saddr);
1701 if (fn)
1702 goto redo_rt6_select;
Martin KaFai Lau367efcb2014-10-20 13:42:45 -07001703 else if (strict & RT6_LOOKUP_F_REACHABLE) {
1704 /* also consider unreachable route */
1705 strict &= ~RT6_LOOKUP_F_REACHABLE;
1706 fn = saved_fn;
1707 goto redo_rt6_select;
Martin KaFai Lau367efcb2014-10-20 13:42:45 -07001708 }
Martin KaFai Laua3c00e42014-10-20 13:42:43 -07001709 }
1710
Wei Wang2b760fc2017-10-06 12:06:03 -07001711 /*Search through exception table */
1712 rt_cache = rt6_find_cached_rt(rt, &fl6->daddr, &fl6->saddr);
1713 if (rt_cache)
1714 rt = rt_cache;
YOSHIFUJI Hideakifb9de912006-03-20 16:59:08 -08001715
Wei Wangd3843fe2017-10-06 12:06:06 -07001716 if (rt == net->ipv6.ip6_null_entry) {
Wei Wang66f5d6c2017-10-06 12:06:10 -07001717 rcu_read_unlock();
Wei Wangd3843fe2017-10-06 12:06:06 -07001718 dst_hold(&rt->dst);
Paolo Abenib65f1642017-10-19 09:31:43 +02001719 trace_fib6_table_lookup(net, rt, table, fl6);
Wei Wangd3843fe2017-10-06 12:06:06 -07001720 return rt;
1721 } else if (rt->rt6i_flags & RTF_CACHE) {
1722 if (ip6_hold_safe(net, &rt, true)) {
1723 dst_use_noref(&rt->dst, jiffies);
1724 rt6_dst_from_metrics_check(rt);
1725 }
Wei Wang66f5d6c2017-10-06 12:06:10 -07001726 rcu_read_unlock();
Paolo Abenib65f1642017-10-19 09:31:43 +02001727 trace_fib6_table_lookup(net, rt, table, fl6);
Martin KaFai Laud52d3992015-05-22 20:56:06 -07001728 return rt;
Martin KaFai Lau3da59bd2015-05-22 20:56:03 -07001729 } else if (unlikely((fl6->flowi6_flags & FLOWI_FLAG_KNOWN_NH) &&
1730 !(rt->rt6i_flags & RTF_GATEWAY))) {
1731 /* Create a RTF_CACHE clone which will not be
1732 * owned by the fib6 tree. It is for the special case where
1733 * the daddr in the skb during the neighbor look-up is different
1734 * from the fl6->daddr used to look-up route here.
1735 */
Thomas Grafc71099a2006-08-04 23:20:06 -07001736
Martin KaFai Lau3da59bd2015-05-22 20:56:03 -07001737 struct rt6_info *uncached_rt;
1738
Wei Wangd3843fe2017-10-06 12:06:06 -07001739 if (ip6_hold_safe(net, &rt, true)) {
1740 dst_use_noref(&rt->dst, jiffies);
1741 } else {
Wei Wang66f5d6c2017-10-06 12:06:10 -07001742 rcu_read_unlock();
Wei Wangd3843fe2017-10-06 12:06:06 -07001743 uncached_rt = rt;
1744 goto uncached_rt_out;
1745 }
Wei Wang66f5d6c2017-10-06 12:06:10 -07001746 rcu_read_unlock();
Martin KaFai Laud52d3992015-05-22 20:56:06 -07001747
Martin KaFai Lau3da59bd2015-05-22 20:56:03 -07001748 uncached_rt = ip6_rt_cache_alloc(rt, &fl6->daddr, NULL);
1749 dst_release(&rt->dst);
1750
Wei Wang1cfb71e2017-06-17 10:42:33 -07001751 if (uncached_rt) {
1752 /* Uncached_rt's refcnt is taken during ip6_rt_cache_alloc()
1753 * No need for another dst_hold()
1754 */
Martin KaFai Lau8d0b94a2015-05-22 20:56:04 -07001755 rt6_uncached_list_add(uncached_rt);
Wei Wang81eb8442017-10-06 12:06:11 -07001756 atomic_inc(&net->ipv6.rt6_stats->fib_rt_uncache);
Wei Wang1cfb71e2017-06-17 10:42:33 -07001757 } else {
Martin KaFai Lau3da59bd2015-05-22 20:56:03 -07001758 uncached_rt = net->ipv6.ip6_null_entry;
Wei Wang1cfb71e2017-06-17 10:42:33 -07001759 dst_hold(&uncached_rt->dst);
1760 }
David Ahernb8115802015-11-19 12:24:22 -08001761
Wei Wangd3843fe2017-10-06 12:06:06 -07001762uncached_rt_out:
Paolo Abenib65f1642017-10-19 09:31:43 +02001763 trace_fib6_table_lookup(net, uncached_rt, table, fl6);
Martin KaFai Lau3da59bd2015-05-22 20:56:03 -07001764 return uncached_rt;
Martin KaFai Lau3da59bd2015-05-22 20:56:03 -07001765
Martin KaFai Laud52d3992015-05-22 20:56:06 -07001766 } else {
1767 /* Get a percpu copy */
1768
1769 struct rt6_info *pcpu_rt;
1770
Wei Wangd3843fe2017-10-06 12:06:06 -07001771 dst_use_noref(&rt->dst, jiffies);
Eric Dumazet951f7882017-10-08 21:07:18 -07001772 local_bh_disable();
Martin KaFai Laud52d3992015-05-22 20:56:06 -07001773 pcpu_rt = rt6_get_pcpu_route(rt);
Martin KaFai Laud52d3992015-05-22 20:56:06 -07001774
Eric Dumazet951f7882017-10-08 21:07:18 -07001775 if (!pcpu_rt) {
Wei Wanga94b9362017-10-06 12:06:04 -07001776 /* atomic_inc_not_zero() is needed when using rcu */
1777 if (atomic_inc_not_zero(&rt->rt6i_ref)) {
Eric Dumazet951f7882017-10-08 21:07:18 -07001778 /* No dst_hold() on rt is needed because grabbing
Wei Wanga94b9362017-10-06 12:06:04 -07001779 * rt->rt6i_ref makes sure rt can't be released.
1780 */
Wei Wanga94b9362017-10-06 12:06:04 -07001781 pcpu_rt = rt6_make_pcpu_route(rt);
1782 rt6_release(rt);
1783 } else {
1784 /* rt is already removed from tree */
Wei Wanga94b9362017-10-06 12:06:04 -07001785 pcpu_rt = net->ipv6.ip6_null_entry;
1786 dst_hold(&pcpu_rt->dst);
1787 }
Martin KaFai Lau9c7370a2015-08-14 11:05:54 -07001788 }
Eric Dumazet951f7882017-10-08 21:07:18 -07001789 local_bh_enable();
1790 rcu_read_unlock();
Paolo Abenib65f1642017-10-19 09:31:43 +02001791 trace_fib6_table_lookup(net, pcpu_rt, table, fl6);
Martin KaFai Laud52d3992015-05-22 20:56:06 -07001792 return pcpu_rt;
1793 }
Thomas Grafc71099a2006-08-04 23:20:06 -07001794}
David Ahern9ff74382016-06-13 13:44:19 -07001795EXPORT_SYMBOL_GPL(ip6_pol_route);
Thomas Grafc71099a2006-08-04 23:20:06 -07001796
Daniel Lezcano8ed67782008-03-04 13:48:30 -08001797static struct rt6_info *ip6_pol_route_input(struct net *net, struct fib6_table *table,
David S. Miller4c9483b2011-03-12 16:22:43 -05001798 struct flowi6 *fl6, int flags)
Pavel Emelyanov4acad722007-10-15 13:02:51 -07001799{
David S. Miller4c9483b2011-03-12 16:22:43 -05001800 return ip6_pol_route(net, table, fl6->flowi6_iif, fl6, flags);
Pavel Emelyanov4acad722007-10-15 13:02:51 -07001801}
1802
Mahesh Bandeward409b842016-09-16 12:59:08 -07001803struct dst_entry *ip6_route_input_lookup(struct net *net,
1804 struct net_device *dev,
1805 struct flowi6 *fl6, int flags)
Shmulik Ladkani72331bc2012-04-01 04:03:45 +00001806{
1807 if (rt6_need_strict(&fl6->daddr) && dev->type != ARPHRD_PIMREG)
1808 flags |= RT6_LOOKUP_F_IFACE;
1809
1810 return fib6_rule_lookup(net, fl6, flags, ip6_pol_route_input);
1811}
Mahesh Bandeward409b842016-09-16 12:59:08 -07001812EXPORT_SYMBOL_GPL(ip6_route_input_lookup);
Shmulik Ladkani72331bc2012-04-01 04:03:45 +00001813
Jakub Sitnicki23aebda2017-08-23 09:58:29 +02001814static void ip6_multipath_l3_keys(const struct sk_buff *skb,
1815 struct flow_keys *keys)
1816{
1817 const struct ipv6hdr *outer_iph = ipv6_hdr(skb);
1818 const struct ipv6hdr *key_iph = outer_iph;
1819 const struct ipv6hdr *inner_iph;
1820 const struct icmp6hdr *icmph;
1821 struct ipv6hdr _inner_iph;
1822
1823 if (likely(outer_iph->nexthdr != IPPROTO_ICMPV6))
1824 goto out;
1825
1826 icmph = icmp6_hdr(skb);
1827 if (icmph->icmp6_type != ICMPV6_DEST_UNREACH &&
1828 icmph->icmp6_type != ICMPV6_PKT_TOOBIG &&
1829 icmph->icmp6_type != ICMPV6_TIME_EXCEED &&
1830 icmph->icmp6_type != ICMPV6_PARAMPROB)
1831 goto out;
1832
1833 inner_iph = skb_header_pointer(skb,
1834 skb_transport_offset(skb) + sizeof(*icmph),
1835 sizeof(_inner_iph), &_inner_iph);
1836 if (!inner_iph)
1837 goto out;
1838
1839 key_iph = inner_iph;
1840out:
1841 memset(keys, 0, sizeof(*keys));
1842 keys->control.addr_type = FLOW_DISSECTOR_KEY_IPV6_ADDRS;
1843 keys->addrs.v6addrs.src = key_iph->saddr;
1844 keys->addrs.v6addrs.dst = key_iph->daddr;
1845 keys->tags.flow_label = ip6_flowinfo(key_iph);
1846 keys->basic.ip_proto = key_iph->nexthdr;
1847}
1848
1849/* if skb is set it will be used and fl6 can be NULL */
1850u32 rt6_multipath_hash(const struct flowi6 *fl6, const struct sk_buff *skb)
1851{
1852 struct flow_keys hash_keys;
1853
1854 if (skb) {
1855 ip6_multipath_l3_keys(skb, &hash_keys);
Ido Schimmel7696c062018-01-09 16:40:26 +02001856 return flow_hash_from_keys(&hash_keys) >> 1;
Jakub Sitnicki23aebda2017-08-23 09:58:29 +02001857 }
1858
Ido Schimmel7696c062018-01-09 16:40:26 +02001859 return get_hash_from_flowi6(fl6) >> 1;
Jakub Sitnicki23aebda2017-08-23 09:58:29 +02001860}
1861
Thomas Grafc71099a2006-08-04 23:20:06 -07001862void ip6_route_input(struct sk_buff *skb)
1863{
Eric Dumazetb71d1d42011-04-22 04:53:02 +00001864 const struct ipv6hdr *iph = ipv6_hdr(skb);
YOSHIFUJI Hideakic346dca2008-03-25 21:47:49 +09001865 struct net *net = dev_net(skb->dev);
Thomas Grafadaa70b2006-10-13 15:01:03 -07001866 int flags = RT6_LOOKUP_F_HAS_SADDR;
Jiri Benc904af042015-08-20 13:56:31 +02001867 struct ip_tunnel_info *tun_info;
David S. Miller4c9483b2011-03-12 16:22:43 -05001868 struct flowi6 fl6 = {
David Aherne0d56fd2016-09-10 12:09:57 -07001869 .flowi6_iif = skb->dev->ifindex,
David S. Miller4c9483b2011-03-12 16:22:43 -05001870 .daddr = iph->daddr,
1871 .saddr = iph->saddr,
YOSHIFUJI Hideaki / 吉藤英明6502ca52013-01-13 05:01:51 +00001872 .flowlabel = ip6_flowinfo(iph),
David S. Miller4c9483b2011-03-12 16:22:43 -05001873 .flowi6_mark = skb->mark,
1874 .flowi6_proto = iph->nexthdr,
Thomas Grafc71099a2006-08-04 23:20:06 -07001875 };
Thomas Grafadaa70b2006-10-13 15:01:03 -07001876
Jiri Benc904af042015-08-20 13:56:31 +02001877 tun_info = skb_tunnel_info(skb);
Jiri Benc46fa0622015-08-28 20:48:19 +02001878 if (tun_info && !(tun_info->mode & IP_TUNNEL_INFO_TX))
Jiri Benc904af042015-08-20 13:56:31 +02001879 fl6.flowi6_tun_key.tun_id = tun_info->key.tun_id;
Jakub Sitnicki23aebda2017-08-23 09:58:29 +02001880 if (unlikely(fl6.flowi6_proto == IPPROTO_ICMPV6))
1881 fl6.mp_hash = rt6_multipath_hash(&fl6, skb);
Jiri Benc06e9d042015-08-20 13:56:26 +02001882 skb_dst_drop(skb);
Shmulik Ladkani72331bc2012-04-01 04:03:45 +00001883 skb_dst_set(skb, ip6_route_input_lookup(net, skb->dev, &fl6, flags));
Thomas Grafc71099a2006-08-04 23:20:06 -07001884}
1885
Daniel Lezcano8ed67782008-03-04 13:48:30 -08001886static struct rt6_info *ip6_pol_route_output(struct net *net, struct fib6_table *table,
David S. Miller4c9483b2011-03-12 16:22:43 -05001887 struct flowi6 *fl6, int flags)
Thomas Grafc71099a2006-08-04 23:20:06 -07001888{
David S. Miller4c9483b2011-03-12 16:22:43 -05001889 return ip6_pol_route(net, table, fl6->flowi6_oif, fl6, flags);
Thomas Grafc71099a2006-08-04 23:20:06 -07001890}
1891
Paolo Abeni6f21c962016-01-29 12:30:19 +01001892struct dst_entry *ip6_route_output_flags(struct net *net, const struct sock *sk,
1893 struct flowi6 *fl6, int flags)
Thomas Grafc71099a2006-08-04 23:20:06 -07001894{
David Ahernd46a9d62015-10-21 08:42:22 -07001895 bool any_src;
Thomas Grafc71099a2006-08-04 23:20:06 -07001896
David Ahern4c1feac2016-09-10 12:09:56 -07001897 if (rt6_need_strict(&fl6->daddr)) {
1898 struct dst_entry *dst;
1899
1900 dst = l3mdev_link_scope_lookup(net, fl6);
1901 if (dst)
1902 return dst;
1903 }
David Ahernca254492015-10-12 11:47:10 -07001904
Pavel Emelyanov1fb94892012-08-08 21:53:36 +00001905 fl6->flowi6_iif = LOOPBACK_IFINDEX;
David McCullough4dc27d1c2012-06-25 15:42:26 +00001906
David Ahernd46a9d62015-10-21 08:42:22 -07001907 any_src = ipv6_addr_any(&fl6->saddr);
David Ahern741a11d2015-09-28 10:12:13 -07001908 if ((sk && sk->sk_bound_dev_if) || rt6_need_strict(&fl6->daddr) ||
David Ahernd46a9d62015-10-21 08:42:22 -07001909 (fl6->flowi6_oif && any_src))
YOSHIFUJI Hideaki77d16f42006-08-23 17:25:05 -07001910 flags |= RT6_LOOKUP_F_IFACE;
Thomas Grafc71099a2006-08-04 23:20:06 -07001911
David Ahernd46a9d62015-10-21 08:42:22 -07001912 if (!any_src)
Thomas Grafadaa70b2006-10-13 15:01:03 -07001913 flags |= RT6_LOOKUP_F_HAS_SADDR;
YOSHIFUJI Hideaki / 吉藤英明0c9a2ac2010-03-07 00:14:44 +00001914 else if (sk)
1915 flags |= rt6_srcprefs2flags(inet6_sk(sk)->srcprefs);
Thomas Grafadaa70b2006-10-13 15:01:03 -07001916
David S. Miller4c9483b2011-03-12 16:22:43 -05001917 return fib6_rule_lookup(net, fl6, flags, ip6_pol_route_output);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001918}
Paolo Abeni6f21c962016-01-29 12:30:19 +01001919EXPORT_SYMBOL_GPL(ip6_route_output_flags);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001920
David S. Miller2774c132011-03-01 14:59:04 -08001921struct dst_entry *ip6_blackhole_route(struct net *net, struct dst_entry *dst_orig)
David S. Miller14e50e52007-05-24 18:17:54 -07001922{
David S. Miller5c1e6aa2011-04-28 14:13:38 -07001923 struct rt6_info *rt, *ort = (struct rt6_info *) dst_orig;
Wei Wang1dbe32522017-06-17 10:42:26 -07001924 struct net_device *loopback_dev = net->loopback_dev;
David S. Miller14e50e52007-05-24 18:17:54 -07001925 struct dst_entry *new = NULL;
1926
Wei Wang1dbe32522017-06-17 10:42:26 -07001927 rt = dst_alloc(&ip6_dst_blackhole_ops, loopback_dev, 1,
Steffen Klassert62cf27e2017-10-09 08:39:43 +02001928 DST_OBSOLETE_DEAD, 0);
David S. Miller14e50e52007-05-24 18:17:54 -07001929 if (rt) {
Martin KaFai Lau0a1f5962015-10-15 16:39:58 -07001930 rt6_info_init(rt);
Wei Wang81eb8442017-10-06 12:06:11 -07001931 atomic_inc(&net->ipv6.rt6_stats->fib_rt_alloc);
Martin KaFai Lau0a1f5962015-10-15 16:39:58 -07001932
Changli Gaod8d1f302010-06-10 23:31:35 -07001933 new = &rt->dst;
David S. Miller14e50e52007-05-24 18:17:54 -07001934 new->__use = 1;
Herbert Xu352e5122007-11-13 21:34:06 -08001935 new->input = dst_discard;
Eric W. Biedermanede20592015-10-07 16:48:47 -05001936 new->output = dst_discard_out;
David S. Miller14e50e52007-05-24 18:17:54 -07001937
Martin KaFai Lau0a1f5962015-10-15 16:39:58 -07001938 dst_copy_metrics(new, &ort->dst);
David S. Miller14e50e52007-05-24 18:17:54 -07001939
Wei Wang1dbe32522017-06-17 10:42:26 -07001940 rt->rt6i_idev = in6_dev_get(loopback_dev);
Alexey Dobriyan4e3fd7a2011-11-21 03:39:03 +00001941 rt->rt6i_gateway = ort->rt6i_gateway;
Martin KaFai Lau0a1f5962015-10-15 16:39:58 -07001942 rt->rt6i_flags = ort->rt6i_flags & ~RTF_PCPU;
David S. Miller14e50e52007-05-24 18:17:54 -07001943 rt->rt6i_metric = 0;
1944
1945 memcpy(&rt->rt6i_dst, &ort->rt6i_dst, sizeof(struct rt6key));
1946#ifdef CONFIG_IPV6_SUBTREES
1947 memcpy(&rt->rt6i_src, &ort->rt6i_src, sizeof(struct rt6key));
1948#endif
David S. Miller14e50e52007-05-24 18:17:54 -07001949 }
1950
David S. Miller69ead7a2011-03-01 14:45:33 -08001951 dst_release(dst_orig);
1952 return new ? new : ERR_PTR(-ENOMEM);
David S. Miller14e50e52007-05-24 18:17:54 -07001953}
David S. Miller14e50e52007-05-24 18:17:54 -07001954
Linus Torvalds1da177e2005-04-16 15:20:36 -07001955/*
1956 * Destination cache support functions
1957 */
1958
Martin KaFai Lau4b32b5a2015-04-28 13:03:06 -07001959static void rt6_dst_from_metrics_check(struct rt6_info *rt)
1960{
David Miller3a2232e2017-11-28 15:40:40 -05001961 if (rt->from &&
1962 dst_metrics_ptr(&rt->dst) != dst_metrics_ptr(&rt->from->dst))
1963 dst_init_metrics(&rt->dst, dst_metrics_ptr(&rt->from->dst), true);
Martin KaFai Lau4b32b5a2015-04-28 13:03:06 -07001964}
1965
Martin KaFai Lau3da59bd2015-05-22 20:56:03 -07001966static struct dst_entry *rt6_check(struct rt6_info *rt, u32 cookie)
1967{
Steffen Klassert36143642017-08-25 09:05:42 +02001968 u32 rt_cookie = 0;
Wei Wangc5cff852017-08-21 09:47:10 -07001969
1970 if (!rt6_get_cookie_safe(rt, &rt_cookie) || rt_cookie != cookie)
Martin KaFai Lau3da59bd2015-05-22 20:56:03 -07001971 return NULL;
1972
1973 if (rt6_check_expired(rt))
1974 return NULL;
1975
1976 return &rt->dst;
1977}
1978
1979static struct dst_entry *rt6_dst_from_check(struct rt6_info *rt, u32 cookie)
1980{
Martin KaFai Lau5973fb12015-11-11 11:51:07 -08001981 if (!__rt6_check_expired(rt) &&
1982 rt->dst.obsolete == DST_OBSOLETE_FORCE_CHK &&
David Miller3a2232e2017-11-28 15:40:40 -05001983 rt6_check(rt->from, cookie))
Martin KaFai Lau3da59bd2015-05-22 20:56:03 -07001984 return &rt->dst;
1985 else
1986 return NULL;
1987}
1988
Linus Torvalds1da177e2005-04-16 15:20:36 -07001989static struct dst_entry *ip6_dst_check(struct dst_entry *dst, u32 cookie)
1990{
1991 struct rt6_info *rt;
1992
1993 rt = (struct rt6_info *) dst;
1994
Nicolas Dichtel6f3118b2012-09-10 22:09:46 +00001995 /* All IPV6 dsts are created with ->obsolete set to the value
1996 * DST_OBSOLETE_FORCE_CHK which forces validation calls down
1997 * into this function always.
1998 */
Hannes Frederic Sowae3bc10b2013-10-24 07:48:24 +02001999
Martin KaFai Lau4b32b5a2015-04-28 13:03:06 -07002000 rt6_dst_from_metrics_check(rt);
2001
Martin KaFai Lau02bcf4e2015-11-11 11:51:08 -08002002 if (rt->rt6i_flags & RTF_PCPU ||
David Miller3a2232e2017-11-28 15:40:40 -05002003 (unlikely(!list_empty(&rt->rt6i_uncached)) && rt->from))
Martin KaFai Lau3da59bd2015-05-22 20:56:03 -07002004 return rt6_dst_from_check(rt, cookie);
2005 else
2006 return rt6_check(rt, cookie);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002007}
2008
2009static struct dst_entry *ip6_negative_advice(struct dst_entry *dst)
2010{
2011 struct rt6_info *rt = (struct rt6_info *) dst;
2012
2013 if (rt) {
YOSHIFUJI Hideaki / 吉藤英明54c1a852010-03-28 07:15:45 +00002014 if (rt->rt6i_flags & RTF_CACHE) {
2015 if (rt6_check_expired(rt)) {
2016 ip6_del_rt(rt);
2017 dst = NULL;
2018 }
2019 } else {
Linus Torvalds1da177e2005-04-16 15:20:36 -07002020 dst_release(dst);
YOSHIFUJI Hideaki / 吉藤英明54c1a852010-03-28 07:15:45 +00002021 dst = NULL;
2022 }
Linus Torvalds1da177e2005-04-16 15:20:36 -07002023 }
YOSHIFUJI Hideaki / 吉藤英明54c1a852010-03-28 07:15:45 +00002024 return dst;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002025}
2026
2027static void ip6_link_failure(struct sk_buff *skb)
2028{
2029 struct rt6_info *rt;
2030
Alexey Dobriyan3ffe5332010-02-18 08:25:24 +00002031 icmpv6_send(skb, ICMPV6_DEST_UNREACH, ICMPV6_ADDR_UNREACH, 0);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002032
Eric Dumazetadf30902009-06-02 05:19:30 +00002033 rt = (struct rt6_info *) skb_dst(skb);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002034 if (rt) {
Hannes Frederic Sowa1eb4f752013-07-10 23:00:57 +02002035 if (rt->rt6i_flags & RTF_CACHE) {
Wei Wangad65a2f2017-06-17 10:42:35 -07002036 if (dst_hold_safe(&rt->dst))
2037 ip6_del_rt(rt);
Wei Wangc5cff852017-08-21 09:47:10 -07002038 } else {
2039 struct fib6_node *fn;
2040
2041 rcu_read_lock();
2042 fn = rcu_dereference(rt->rt6i_node);
2043 if (fn && (rt->rt6i_flags & RTF_DEFAULT))
2044 fn->fn_sernum = -1;
2045 rcu_read_unlock();
Hannes Frederic Sowa1eb4f752013-07-10 23:00:57 +02002046 }
Linus Torvalds1da177e2005-04-16 15:20:36 -07002047 }
2048}
2049
Martin KaFai Lau45e4fd22015-05-22 20:56:00 -07002050static void rt6_do_update_pmtu(struct rt6_info *rt, u32 mtu)
2051{
2052 struct net *net = dev_net(rt->dst.dev);
2053
2054 rt->rt6i_flags |= RTF_MODIFIED;
2055 rt->rt6i_pmtu = mtu;
2056 rt6_update_expires(rt, net->ipv6.sysctl.ip6_rt_mtu_expires);
2057}
2058
Martin KaFai Lau0d3f6d22015-11-11 11:51:06 -08002059static bool rt6_cache_allowed_for_pmtu(const struct rt6_info *rt)
2060{
2061 return !(rt->rt6i_flags & RTF_CACHE) &&
Wei Wang4e587ea2017-08-25 15:03:10 -07002062 (rt->rt6i_flags & RTF_PCPU ||
2063 rcu_access_pointer(rt->rt6i_node));
Martin KaFai Lau0d3f6d22015-11-11 11:51:06 -08002064}
2065
Martin KaFai Lau45e4fd22015-05-22 20:56:00 -07002066static void __ip6_rt_update_pmtu(struct dst_entry *dst, const struct sock *sk,
2067 const struct ipv6hdr *iph, u32 mtu)
Linus Torvalds1da177e2005-04-16 15:20:36 -07002068{
Julian Anastasov0dec8792017-02-06 23:14:16 +02002069 const struct in6_addr *daddr, *saddr;
Ian Morris67ba4152014-08-24 21:53:10 +01002070 struct rt6_info *rt6 = (struct rt6_info *)dst;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002071
Martin KaFai Lau45e4fd22015-05-22 20:56:00 -07002072 if (rt6->rt6i_flags & RTF_LOCAL)
2073 return;
2074
Xin Long19bda362016-10-28 18:18:01 +08002075 if (dst_metric_locked(dst, RTAX_MTU))
2076 return;
2077
Julian Anastasov0dec8792017-02-06 23:14:16 +02002078 if (iph) {
2079 daddr = &iph->daddr;
2080 saddr = &iph->saddr;
2081 } else if (sk) {
2082 daddr = &sk->sk_v6_daddr;
2083 saddr = &inet6_sk(sk)->saddr;
2084 } else {
2085 daddr = NULL;
2086 saddr = NULL;
2087 }
2088 dst_confirm_neigh(dst, daddr);
Martin KaFai Lau45e4fd22015-05-22 20:56:00 -07002089 mtu = max_t(u32, mtu, IPV6_MIN_MTU);
2090 if (mtu >= dst_mtu(dst))
2091 return;
David S. Miller81aded22012-06-15 14:54:11 -07002092
Martin KaFai Lau0d3f6d22015-11-11 11:51:06 -08002093 if (!rt6_cache_allowed_for_pmtu(rt6)) {
Martin KaFai Lau45e4fd22015-05-22 20:56:00 -07002094 rt6_do_update_pmtu(rt6, mtu);
Wei Wang2b760fc2017-10-06 12:06:03 -07002095 /* update rt6_ex->stamp for cache */
2096 if (rt6->rt6i_flags & RTF_CACHE)
2097 rt6_update_exception_stamp_rt(rt6);
Julian Anastasov0dec8792017-02-06 23:14:16 +02002098 } else if (daddr) {
Martin KaFai Lau45e4fd22015-05-22 20:56:00 -07002099 struct rt6_info *nrt6;
Hagen Paul Pfeifer9d289712015-01-15 22:34:25 +01002100
Martin KaFai Lau45e4fd22015-05-22 20:56:00 -07002101 nrt6 = ip6_rt_cache_alloc(rt6, daddr, saddr);
2102 if (nrt6) {
2103 rt6_do_update_pmtu(nrt6, mtu);
Wei Wang2b760fc2017-10-06 12:06:03 -07002104 if (rt6_insert_exception(nrt6, rt6))
2105 dst_release_immediate(&nrt6->dst);
Martin KaFai Lau45e4fd22015-05-22 20:56:00 -07002106 }
Linus Torvalds1da177e2005-04-16 15:20:36 -07002107 }
2108}
2109
Martin KaFai Lau45e4fd22015-05-22 20:56:00 -07002110static void ip6_rt_update_pmtu(struct dst_entry *dst, struct sock *sk,
2111 struct sk_buff *skb, u32 mtu)
2112{
2113 __ip6_rt_update_pmtu(dst, sk, skb ? ipv6_hdr(skb) : NULL, mtu);
2114}
2115
David S. Miller42ae66c2012-06-15 20:01:57 -07002116void ip6_update_pmtu(struct sk_buff *skb, struct net *net, __be32 mtu,
Lorenzo Colittie2d118a2016-11-04 02:23:43 +09002117 int oif, u32 mark, kuid_t uid)
David S. Miller81aded22012-06-15 14:54:11 -07002118{
2119 const struct ipv6hdr *iph = (struct ipv6hdr *) skb->data;
2120 struct dst_entry *dst;
2121 struct flowi6 fl6;
2122
2123 memset(&fl6, 0, sizeof(fl6));
2124 fl6.flowi6_oif = oif;
Lorenzo Colitti1b3c61d2014-05-13 10:17:34 -07002125 fl6.flowi6_mark = mark ? mark : IP6_REPLY_MARK(net, skb->mark);
David S. Miller81aded22012-06-15 14:54:11 -07002126 fl6.daddr = iph->daddr;
2127 fl6.saddr = iph->saddr;
YOSHIFUJI Hideaki / 吉藤英明6502ca52013-01-13 05:01:51 +00002128 fl6.flowlabel = ip6_flowinfo(iph);
Lorenzo Colittie2d118a2016-11-04 02:23:43 +09002129 fl6.flowi6_uid = uid;
David S. Miller81aded22012-06-15 14:54:11 -07002130
2131 dst = ip6_route_output(net, NULL, &fl6);
2132 if (!dst->error)
Martin KaFai Lau45e4fd22015-05-22 20:56:00 -07002133 __ip6_rt_update_pmtu(dst, NULL, iph, ntohl(mtu));
David S. Miller81aded22012-06-15 14:54:11 -07002134 dst_release(dst);
2135}
2136EXPORT_SYMBOL_GPL(ip6_update_pmtu);
2137
2138void ip6_sk_update_pmtu(struct sk_buff *skb, struct sock *sk, __be32 mtu)
2139{
Martin KaFai Lau33c162a2016-04-11 15:29:36 -07002140 struct dst_entry *dst;
2141
David S. Miller81aded22012-06-15 14:54:11 -07002142 ip6_update_pmtu(skb, sock_net(sk), mtu,
Lorenzo Colittie2d118a2016-11-04 02:23:43 +09002143 sk->sk_bound_dev_if, sk->sk_mark, sk->sk_uid);
Martin KaFai Lau33c162a2016-04-11 15:29:36 -07002144
2145 dst = __sk_dst_get(sk);
2146 if (!dst || !dst->obsolete ||
2147 dst->ops->check(dst, inet6_sk(sk)->dst_cookie))
2148 return;
2149
2150 bh_lock_sock(sk);
2151 if (!sock_owned_by_user(sk) && !ipv6_addr_v4mapped(&sk->sk_v6_daddr))
2152 ip6_datagram_dst_update(sk, false);
2153 bh_unlock_sock(sk);
David S. Miller81aded22012-06-15 14:54:11 -07002154}
2155EXPORT_SYMBOL_GPL(ip6_sk_update_pmtu);
2156
Duan Jiongb55b76b2013-09-04 19:44:21 +08002157/* Handle redirects */
2158struct ip6rd_flowi {
2159 struct flowi6 fl6;
2160 struct in6_addr gateway;
2161};
2162
2163static struct rt6_info *__ip6_route_redirect(struct net *net,
2164 struct fib6_table *table,
2165 struct flowi6 *fl6,
2166 int flags)
2167{
2168 struct ip6rd_flowi *rdfl = (struct ip6rd_flowi *)fl6;
Wei Wang2b760fc2017-10-06 12:06:03 -07002169 struct rt6_info *rt, *rt_cache;
Duan Jiongb55b76b2013-09-04 19:44:21 +08002170 struct fib6_node *fn;
2171
2172 /* Get the "current" route for this destination and
Alexander Alemayhu67c408c2017-01-07 23:53:00 +01002173 * check if the redirect has come from appropriate router.
Duan Jiongb55b76b2013-09-04 19:44:21 +08002174 *
2175 * RFC 4861 specifies that redirects should only be
2176 * accepted if they come from the nexthop to the target.
2177 * Due to the way the routes are chosen, this notion
2178 * is a bit fuzzy and one might need to check all possible
2179 * routes.
2180 */
2181
Wei Wang66f5d6c2017-10-06 12:06:10 -07002182 rcu_read_lock();
Duan Jiongb55b76b2013-09-04 19:44:21 +08002183 fn = fib6_lookup(&table->tb6_root, &fl6->daddr, &fl6->saddr);
2184restart:
Wei Wang66f5d6c2017-10-06 12:06:10 -07002185 for_each_fib6_node_rt_rcu(fn) {
Ido Schimmel8067bb82018-01-07 12:45:09 +02002186 if (rt->rt6i_nh_flags & RTNH_F_DEAD)
2187 continue;
Duan Jiongb55b76b2013-09-04 19:44:21 +08002188 if (rt6_check_expired(rt))
2189 continue;
2190 if (rt->dst.error)
2191 break;
2192 if (!(rt->rt6i_flags & RTF_GATEWAY))
2193 continue;
2194 if (fl6->flowi6_oif != rt->dst.dev->ifindex)
2195 continue;
Wei Wang2b760fc2017-10-06 12:06:03 -07002196 /* rt_cache's gateway might be different from its 'parent'
2197 * in the case of an ip redirect.
2198 * So we keep searching in the exception table if the gateway
2199 * is different.
2200 */
2201 if (!ipv6_addr_equal(&rdfl->gateway, &rt->rt6i_gateway)) {
2202 rt_cache = rt6_find_cached_rt(rt,
2203 &fl6->daddr,
2204 &fl6->saddr);
2205 if (rt_cache &&
2206 ipv6_addr_equal(&rdfl->gateway,
2207 &rt_cache->rt6i_gateway)) {
2208 rt = rt_cache;
2209 break;
2210 }
Duan Jiongb55b76b2013-09-04 19:44:21 +08002211 continue;
Wei Wang2b760fc2017-10-06 12:06:03 -07002212 }
Duan Jiongb55b76b2013-09-04 19:44:21 +08002213 break;
2214 }
2215
2216 if (!rt)
2217 rt = net->ipv6.ip6_null_entry;
2218 else if (rt->dst.error) {
2219 rt = net->ipv6.ip6_null_entry;
Martin KaFai Laub0a1ba52015-01-20 19:16:02 -08002220 goto out;
2221 }
2222
2223 if (rt == net->ipv6.ip6_null_entry) {
Martin KaFai Laua3c00e42014-10-20 13:42:43 -07002224 fn = fib6_backtrack(fn, &fl6->saddr);
2225 if (fn)
2226 goto restart;
Duan Jiongb55b76b2013-09-04 19:44:21 +08002227 }
Martin KaFai Laua3c00e42014-10-20 13:42:43 -07002228
Martin KaFai Laub0a1ba52015-01-20 19:16:02 -08002229out:
Wei Wangd3843fe2017-10-06 12:06:06 -07002230 ip6_hold_safe(net, &rt, true);
Duan Jiongb55b76b2013-09-04 19:44:21 +08002231
Wei Wang66f5d6c2017-10-06 12:06:10 -07002232 rcu_read_unlock();
Duan Jiongb55b76b2013-09-04 19:44:21 +08002233
Paolo Abenib65f1642017-10-19 09:31:43 +02002234 trace_fib6_table_lookup(net, rt, table, fl6);
Duan Jiongb55b76b2013-09-04 19:44:21 +08002235 return rt;
2236};
2237
2238static struct dst_entry *ip6_route_redirect(struct net *net,
2239 const struct flowi6 *fl6,
2240 const struct in6_addr *gateway)
2241{
2242 int flags = RT6_LOOKUP_F_HAS_SADDR;
2243 struct ip6rd_flowi rdfl;
2244
2245 rdfl.fl6 = *fl6;
2246 rdfl.gateway = *gateway;
2247
2248 return fib6_rule_lookup(net, &rdfl.fl6,
2249 flags, __ip6_route_redirect);
2250}
2251
Lorenzo Colittie2d118a2016-11-04 02:23:43 +09002252void ip6_redirect(struct sk_buff *skb, struct net *net, int oif, u32 mark,
2253 kuid_t uid)
David S. Miller3a5ad2e2012-07-12 00:08:07 -07002254{
2255 const struct ipv6hdr *iph = (struct ipv6hdr *) skb->data;
2256 struct dst_entry *dst;
2257 struct flowi6 fl6;
2258
2259 memset(&fl6, 0, sizeof(fl6));
Julian Anastasove374c612014-04-28 10:51:56 +03002260 fl6.flowi6_iif = LOOPBACK_IFINDEX;
David S. Miller3a5ad2e2012-07-12 00:08:07 -07002261 fl6.flowi6_oif = oif;
2262 fl6.flowi6_mark = mark;
David S. Miller3a5ad2e2012-07-12 00:08:07 -07002263 fl6.daddr = iph->daddr;
2264 fl6.saddr = iph->saddr;
YOSHIFUJI Hideaki / 吉藤英明6502ca52013-01-13 05:01:51 +00002265 fl6.flowlabel = ip6_flowinfo(iph);
Lorenzo Colittie2d118a2016-11-04 02:23:43 +09002266 fl6.flowi6_uid = uid;
David S. Miller3a5ad2e2012-07-12 00:08:07 -07002267
Duan Jiongb55b76b2013-09-04 19:44:21 +08002268 dst = ip6_route_redirect(net, &fl6, &ipv6_hdr(skb)->saddr);
2269 rt6_do_redirect(dst, NULL, skb);
David S. Miller3a5ad2e2012-07-12 00:08:07 -07002270 dst_release(dst);
2271}
2272EXPORT_SYMBOL_GPL(ip6_redirect);
2273
Duan Jiongc92a59e2013-08-22 12:07:35 +08002274void ip6_redirect_no_header(struct sk_buff *skb, struct net *net, int oif,
2275 u32 mark)
2276{
2277 const struct ipv6hdr *iph = ipv6_hdr(skb);
2278 const struct rd_msg *msg = (struct rd_msg *)icmp6_hdr(skb);
2279 struct dst_entry *dst;
2280 struct flowi6 fl6;
2281
2282 memset(&fl6, 0, sizeof(fl6));
Julian Anastasove374c612014-04-28 10:51:56 +03002283 fl6.flowi6_iif = LOOPBACK_IFINDEX;
Duan Jiongc92a59e2013-08-22 12:07:35 +08002284 fl6.flowi6_oif = oif;
2285 fl6.flowi6_mark = mark;
Duan Jiongc92a59e2013-08-22 12:07:35 +08002286 fl6.daddr = msg->dest;
2287 fl6.saddr = iph->daddr;
Lorenzo Colittie2d118a2016-11-04 02:23:43 +09002288 fl6.flowi6_uid = sock_net_uid(net, NULL);
Duan Jiongc92a59e2013-08-22 12:07:35 +08002289
Duan Jiongb55b76b2013-09-04 19:44:21 +08002290 dst = ip6_route_redirect(net, &fl6, &iph->saddr);
2291 rt6_do_redirect(dst, NULL, skb);
Duan Jiongc92a59e2013-08-22 12:07:35 +08002292 dst_release(dst);
2293}
2294
David S. Miller3a5ad2e2012-07-12 00:08:07 -07002295void ip6_sk_redirect(struct sk_buff *skb, struct sock *sk)
2296{
Lorenzo Colittie2d118a2016-11-04 02:23:43 +09002297 ip6_redirect(skb, sock_net(sk), sk->sk_bound_dev_if, sk->sk_mark,
2298 sk->sk_uid);
David S. Miller3a5ad2e2012-07-12 00:08:07 -07002299}
2300EXPORT_SYMBOL_GPL(ip6_sk_redirect);
2301
David S. Miller0dbaee32010-12-13 12:52:14 -08002302static unsigned int ip6_default_advmss(const struct dst_entry *dst)
Linus Torvalds1da177e2005-04-16 15:20:36 -07002303{
David S. Miller0dbaee32010-12-13 12:52:14 -08002304 struct net_device *dev = dst->dev;
2305 unsigned int mtu = dst_mtu(dst);
2306 struct net *net = dev_net(dev);
2307
Linus Torvalds1da177e2005-04-16 15:20:36 -07002308 mtu -= sizeof(struct ipv6hdr) + sizeof(struct tcphdr);
2309
Daniel Lezcano55786892008-03-04 13:47:47 -08002310 if (mtu < net->ipv6.sysctl.ip6_rt_min_advmss)
2311 mtu = net->ipv6.sysctl.ip6_rt_min_advmss;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002312
2313 /*
YOSHIFUJI Hideaki1ab14572007-02-09 23:24:49 +09002314 * Maximal non-jumbo IPv6 payload is IPV6_MAXPLEN and
2315 * corresponding MSS is IPV6_MAXPLEN - tcp_header_size.
2316 * IPV6_MAXPLEN is also valid and means: "any MSS,
Linus Torvalds1da177e2005-04-16 15:20:36 -07002317 * rely only on pmtu discovery"
2318 */
2319 if (mtu > IPV6_MAXPLEN - sizeof(struct tcphdr))
2320 mtu = IPV6_MAXPLEN;
2321 return mtu;
2322}
2323
Steffen Klassertebb762f2011-11-23 02:12:51 +00002324static unsigned int ip6_mtu(const struct dst_entry *dst)
David S. Millerd33e4552010-12-14 13:01:14 -08002325{
Martin KaFai Lau4b32b5a2015-04-28 13:03:06 -07002326 const struct rt6_info *rt = (const struct rt6_info *)dst;
2327 unsigned int mtu = rt->rt6i_pmtu;
David S. Millerd33e4552010-12-14 13:01:14 -08002328 struct inet6_dev *idev;
Steffen Klassert618f9bc2011-11-23 02:13:31 +00002329
2330 if (mtu)
Eric Dumazet30f78d82014-04-10 21:23:36 -07002331 goto out;
Steffen Klassert618f9bc2011-11-23 02:13:31 +00002332
Martin KaFai Lau4b32b5a2015-04-28 13:03:06 -07002333 mtu = dst_metric_raw(dst, RTAX_MTU);
2334 if (mtu)
2335 goto out;
2336
Steffen Klassert618f9bc2011-11-23 02:13:31 +00002337 mtu = IPV6_MIN_MTU;
David S. Millerd33e4552010-12-14 13:01:14 -08002338
2339 rcu_read_lock();
2340 idev = __in6_dev_get(dst->dev);
2341 if (idev)
2342 mtu = idev->cnf.mtu6;
2343 rcu_read_unlock();
2344
Eric Dumazet30f78d82014-04-10 21:23:36 -07002345out:
Roopa Prabhu14972cb2016-08-24 20:10:43 -07002346 mtu = min_t(unsigned int, mtu, IP6_MAX_MTU);
2347
2348 return mtu - lwtunnel_headroom(dst->lwtstate, mtu);
David S. Millerd33e4552010-12-14 13:01:14 -08002349}
2350
YOSHIFUJI Hideaki3b009442007-12-06 16:11:48 -08002351struct dst_entry *icmp6_dst_alloc(struct net_device *dev,
David S. Miller87a11572011-12-06 17:04:13 -05002352 struct flowi6 *fl6)
Linus Torvalds1da177e2005-04-16 15:20:36 -07002353{
David S. Miller87a11572011-12-06 17:04:13 -05002354 struct dst_entry *dst;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002355 struct rt6_info *rt;
2356 struct inet6_dev *idev = in6_dev_get(dev);
YOSHIFUJI Hideakic346dca2008-03-25 21:47:49 +09002357 struct net *net = dev_net(dev);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002358
David S. Miller38308472011-12-03 18:02:47 -05002359 if (unlikely(!idev))
Eric Dumazet122bdf62012-03-14 21:13:11 +00002360 return ERR_PTR(-ENODEV);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002361
Martin KaFai Lauad706862015-08-14 11:05:52 -07002362 rt = ip6_dst_alloc(net, dev, 0);
David S. Miller38308472011-12-03 18:02:47 -05002363 if (unlikely(!rt)) {
Linus Torvalds1da177e2005-04-16 15:20:36 -07002364 in6_dev_put(idev);
David S. Miller87a11572011-12-06 17:04:13 -05002365 dst = ERR_PTR(-ENOMEM);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002366 goto out;
2367 }
2368
Yan, Zheng8e2ec632011-09-05 21:34:30 +00002369 rt->dst.flags |= DST_HOST;
Brendan McGrath588753f2017-12-13 22:14:57 +11002370 rt->dst.input = ip6_input;
Yan, Zheng8e2ec632011-09-05 21:34:30 +00002371 rt->dst.output = ip6_output;
Julian Anastasov550bab42013-10-20 15:43:04 +03002372 rt->rt6i_gateway = fl6->daddr;
David S. Miller87a11572011-12-06 17:04:13 -05002373 rt->rt6i_dst.addr = fl6->daddr;
Yan, Zheng8e2ec632011-09-05 21:34:30 +00002374 rt->rt6i_dst.plen = 128;
2375 rt->rt6i_idev = idev;
Li RongQing14edd872012-10-24 14:01:18 +08002376 dst_metric_set(&rt->dst, RTAX_HOPLIMIT, 0);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002377
Ido Schimmel4c981e22018-01-07 12:45:04 +02002378 /* Add this dst into uncached_list so that rt6_disable_ip() can
Wei Wang587fea72017-06-17 10:42:36 -07002379 * do proper release of the net_device
2380 */
2381 rt6_uncached_list_add(rt);
Wei Wang81eb8442017-10-06 12:06:11 -07002382 atomic_inc(&net->ipv6.rt6_stats->fib_rt_uncache);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002383
David S. Miller87a11572011-12-06 17:04:13 -05002384 dst = xfrm_lookup(net, &rt->dst, flowi6_to_flowi(fl6), NULL, 0);
2385
Linus Torvalds1da177e2005-04-16 15:20:36 -07002386out:
David S. Miller87a11572011-12-06 17:04:13 -05002387 return dst;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002388}
2389
Daniel Lezcano569d3642008-01-18 03:56:57 -08002390static int ip6_dst_gc(struct dst_ops *ops)
Linus Torvalds1da177e2005-04-16 15:20:36 -07002391{
Alexey Dobriyan86393e52009-08-29 01:34:49 +00002392 struct net *net = container_of(ops, struct net, ipv6.ip6_dst_ops);
Daniel Lezcano7019b782008-03-04 13:50:14 -08002393 int rt_min_interval = net->ipv6.sysctl.ip6_rt_gc_min_interval;
2394 int rt_max_size = net->ipv6.sysctl.ip6_rt_max_size;
2395 int rt_elasticity = net->ipv6.sysctl.ip6_rt_gc_elasticity;
2396 int rt_gc_timeout = net->ipv6.sysctl.ip6_rt_gc_timeout;
2397 unsigned long rt_last_gc = net->ipv6.ip6_rt_last_gc;
Eric Dumazetfc66f952010-10-08 06:37:34 +00002398 int entries;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002399
Eric Dumazetfc66f952010-10-08 06:37:34 +00002400 entries = dst_entries_get_fast(ops);
Michal Kubeček49a18d82013-08-01 10:04:24 +02002401 if (time_after(rt_last_gc + rt_min_interval, jiffies) &&
Eric Dumazetfc66f952010-10-08 06:37:34 +00002402 entries <= rt_max_size)
Linus Torvalds1da177e2005-04-16 15:20:36 -07002403 goto out;
2404
Benjamin Thery6891a342008-03-04 13:49:47 -08002405 net->ipv6.ip6_rt_gc_expire++;
Li RongQing14956642014-05-19 17:30:28 +08002406 fib6_run_gc(net->ipv6.ip6_rt_gc_expire, net, true);
Eric Dumazetfc66f952010-10-08 06:37:34 +00002407 entries = dst_entries_get_slow(ops);
2408 if (entries < ops->gc_thresh)
Daniel Lezcano7019b782008-03-04 13:50:14 -08002409 net->ipv6.ip6_rt_gc_expire = rt_gc_timeout>>1;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002410out:
Daniel Lezcano7019b782008-03-04 13:50:14 -08002411 net->ipv6.ip6_rt_gc_expire -= net->ipv6.ip6_rt_gc_expire>>rt_elasticity;
Eric Dumazetfc66f952010-10-08 06:37:34 +00002412 return entries > rt_max_size;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002413}
2414
Florian Westphale715b6d2015-01-05 23:57:44 +01002415static int ip6_convert_metrics(struct mx6_config *mxc,
2416 const struct fib6_config *cfg)
2417{
Stephen Hemminger6670e152017-11-14 08:25:49 -08002418 struct net *net = cfg->fc_nlinfo.nl_net;
Daniel Borkmannc3a8d942015-08-31 15:58:47 +02002419 bool ecn_ca = false;
Florian Westphale715b6d2015-01-05 23:57:44 +01002420 struct nlattr *nla;
2421 int remaining;
2422 u32 *mp;
2423
Ian Morris63159f22015-03-29 14:00:04 +01002424 if (!cfg->fc_mx)
Florian Westphale715b6d2015-01-05 23:57:44 +01002425 return 0;
2426
2427 mp = kzalloc(sizeof(u32) * RTAX_MAX, GFP_KERNEL);
2428 if (unlikely(!mp))
2429 return -ENOMEM;
2430
2431 nla_for_each_attr(nla, cfg->fc_mx, cfg->fc_mx_len, remaining) {
2432 int type = nla_type(nla);
Daniel Borkmann1bb14802015-08-31 15:58:45 +02002433 u32 val;
Florian Westphale715b6d2015-01-05 23:57:44 +01002434
Daniel Borkmann1bb14802015-08-31 15:58:45 +02002435 if (!type)
2436 continue;
2437 if (unlikely(type > RTAX_MAX))
2438 goto err;
Daniel Borkmannea697632015-01-05 23:57:47 +01002439
Daniel Borkmann1bb14802015-08-31 15:58:45 +02002440 if (type == RTAX_CC_ALGO) {
2441 char tmp[TCP_CA_NAME_MAX];
2442
2443 nla_strlcpy(tmp, nla, sizeof(tmp));
Stephen Hemminger6670e152017-11-14 08:25:49 -08002444 val = tcp_ca_get_key_by_name(net, tmp, &ecn_ca);
Daniel Borkmann1bb14802015-08-31 15:58:45 +02002445 if (val == TCP_CA_UNSPEC)
Florian Westphale715b6d2015-01-05 23:57:44 +01002446 goto err;
Daniel Borkmann1bb14802015-08-31 15:58:45 +02002447 } else {
2448 val = nla_get_u32(nla);
Florian Westphale715b6d2015-01-05 23:57:44 +01002449 }
Paolo Abeni626abd52016-05-13 18:33:41 +02002450 if (type == RTAX_HOPLIMIT && val > 255)
2451 val = 255;
Daniel Borkmannb8d3e412015-08-31 15:58:46 +02002452 if (type == RTAX_FEATURES && (val & ~RTAX_FEATURE_MASK))
2453 goto err;
Daniel Borkmann1bb14802015-08-31 15:58:45 +02002454
2455 mp[type - 1] = val;
2456 __set_bit(type - 1, mxc->mx_valid);
Florian Westphale715b6d2015-01-05 23:57:44 +01002457 }
2458
Daniel Borkmannc3a8d942015-08-31 15:58:47 +02002459 if (ecn_ca) {
2460 __set_bit(RTAX_FEATURES - 1, mxc->mx_valid);
2461 mp[RTAX_FEATURES - 1] |= DST_FEATURE_ECN_CA;
2462 }
Florian Westphale715b6d2015-01-05 23:57:44 +01002463
Daniel Borkmannc3a8d942015-08-31 15:58:47 +02002464 mxc->mx = mp;
Florian Westphale715b6d2015-01-05 23:57:44 +01002465 return 0;
2466 err:
2467 kfree(mp);
2468 return -EINVAL;
2469}
Linus Torvalds1da177e2005-04-16 15:20:36 -07002470
David Ahern8c145862016-04-24 21:26:04 -07002471static struct rt6_info *ip6_nh_lookup_table(struct net *net,
2472 struct fib6_config *cfg,
David Ahernf4797b32018-01-25 16:55:08 -08002473 const struct in6_addr *gw_addr,
2474 u32 tbid, int flags)
David Ahern8c145862016-04-24 21:26:04 -07002475{
2476 struct flowi6 fl6 = {
2477 .flowi6_oif = cfg->fc_ifindex,
2478 .daddr = *gw_addr,
2479 .saddr = cfg->fc_prefsrc,
2480 };
2481 struct fib6_table *table;
2482 struct rt6_info *rt;
David Ahern8c145862016-04-24 21:26:04 -07002483
David Ahernf4797b32018-01-25 16:55:08 -08002484 table = fib6_get_table(net, tbid);
David Ahern8c145862016-04-24 21:26:04 -07002485 if (!table)
2486 return NULL;
2487
2488 if (!ipv6_addr_any(&cfg->fc_prefsrc))
2489 flags |= RT6_LOOKUP_F_HAS_SADDR;
2490
David Ahernf4797b32018-01-25 16:55:08 -08002491 flags |= RT6_LOOKUP_F_IGNORE_LINKSTATE;
David Ahern8c145862016-04-24 21:26:04 -07002492 rt = ip6_pol_route(net, table, cfg->fc_ifindex, &fl6, flags);
2493
2494 /* if table lookup failed, fall back to full lookup */
2495 if (rt == net->ipv6.ip6_null_entry) {
2496 ip6_rt_put(rt);
2497 rt = NULL;
2498 }
2499
2500 return rt;
2501}
2502
David Ahernfc1e64e2018-01-25 16:55:09 -08002503static int ip6_route_check_nh_onlink(struct net *net,
2504 struct fib6_config *cfg,
2505 struct net_device *dev,
2506 struct netlink_ext_ack *extack)
2507{
David Ahern44750f82018-02-06 13:17:06 -08002508 u32 tbid = l3mdev_fib_table(dev) ? : RT_TABLE_MAIN;
David Ahernfc1e64e2018-01-25 16:55:09 -08002509 const struct in6_addr *gw_addr = &cfg->fc_gateway;
2510 u32 flags = RTF_LOCAL | RTF_ANYCAST | RTF_REJECT;
2511 struct rt6_info *grt;
2512 int err;
2513
2514 err = 0;
2515 grt = ip6_nh_lookup_table(net, cfg, gw_addr, tbid, 0);
2516 if (grt) {
David Ahern58e354c2018-02-06 12:14:12 -08002517 if (!grt->dst.error &&
2518 (grt->rt6i_flags & flags || dev != grt->dst.dev)) {
David Ahern44750f82018-02-06 13:17:06 -08002519 NL_SET_ERR_MSG(extack,
2520 "Nexthop has invalid gateway or device mismatch");
David Ahernfc1e64e2018-01-25 16:55:09 -08002521 err = -EINVAL;
2522 }
2523
2524 ip6_rt_put(grt);
2525 }
2526
2527 return err;
2528}
2529
David Ahern1edce992018-01-25 16:55:07 -08002530static int ip6_route_check_nh(struct net *net,
2531 struct fib6_config *cfg,
2532 struct net_device **_dev,
2533 struct inet6_dev **idev)
2534{
2535 const struct in6_addr *gw_addr = &cfg->fc_gateway;
2536 struct net_device *dev = _dev ? *_dev : NULL;
2537 struct rt6_info *grt = NULL;
2538 int err = -EHOSTUNREACH;
2539
2540 if (cfg->fc_table) {
David Ahernf4797b32018-01-25 16:55:08 -08002541 int flags = RT6_LOOKUP_F_IFACE;
2542
2543 grt = ip6_nh_lookup_table(net, cfg, gw_addr,
2544 cfg->fc_table, flags);
David Ahern1edce992018-01-25 16:55:07 -08002545 if (grt) {
2546 if (grt->rt6i_flags & RTF_GATEWAY ||
2547 (dev && dev != grt->dst.dev)) {
2548 ip6_rt_put(grt);
2549 grt = NULL;
2550 }
2551 }
2552 }
2553
2554 if (!grt)
2555 grt = rt6_lookup(net, gw_addr, NULL, cfg->fc_ifindex, 1);
2556
2557 if (!grt)
2558 goto out;
2559
2560 if (dev) {
2561 if (dev != grt->dst.dev) {
2562 ip6_rt_put(grt);
2563 goto out;
2564 }
2565 } else {
2566 *_dev = dev = grt->dst.dev;
2567 *idev = grt->rt6i_idev;
2568 dev_hold(dev);
2569 in6_dev_hold(grt->rt6i_idev);
2570 }
2571
2572 if (!(grt->rt6i_flags & RTF_GATEWAY))
2573 err = 0;
2574
2575 ip6_rt_put(grt);
2576
2577out:
2578 return err;
2579}
2580
David Ahern333c4302017-05-21 10:12:04 -06002581static struct rt6_info *ip6_route_info_create(struct fib6_config *cfg,
2582 struct netlink_ext_ack *extack)
Linus Torvalds1da177e2005-04-16 15:20:36 -07002583{
Daniel Lezcano55786892008-03-04 13:47:47 -08002584 struct net *net = cfg->fc_nlinfo.nl_net;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002585 struct rt6_info *rt = NULL;
2586 struct net_device *dev = NULL;
2587 struct inet6_dev *idev = NULL;
Thomas Grafc71099a2006-08-04 23:20:06 -07002588 struct fib6_table *table;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002589 int addr_type;
Roopa Prabhu8c5b83f2015-10-10 08:26:36 -07002590 int err = -EINVAL;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002591
David Ahern557c44b2017-04-19 14:19:43 -07002592 /* RTF_PCPU is an internal flag; can not be set by userspace */
David Ahernd5d531c2017-05-21 10:12:05 -06002593 if (cfg->fc_flags & RTF_PCPU) {
2594 NL_SET_ERR_MSG(extack, "Userspace can not set RTF_PCPU");
David Ahern557c44b2017-04-19 14:19:43 -07002595 goto out;
David Ahernd5d531c2017-05-21 10:12:05 -06002596 }
David Ahern557c44b2017-04-19 14:19:43 -07002597
Wei Wang2ea23522017-10-27 17:30:12 -07002598 /* RTF_CACHE is an internal flag; can not be set by userspace */
2599 if (cfg->fc_flags & RTF_CACHE) {
2600 NL_SET_ERR_MSG(extack, "Userspace can not set RTF_CACHE");
2601 goto out;
2602 }
2603
David Ahernd5d531c2017-05-21 10:12:05 -06002604 if (cfg->fc_dst_len > 128) {
2605 NL_SET_ERR_MSG(extack, "Invalid prefix length");
Roopa Prabhu8c5b83f2015-10-10 08:26:36 -07002606 goto out;
David Ahernd5d531c2017-05-21 10:12:05 -06002607 }
2608 if (cfg->fc_src_len > 128) {
2609 NL_SET_ERR_MSG(extack, "Invalid source address length");
2610 goto out;
2611 }
Linus Torvalds1da177e2005-04-16 15:20:36 -07002612#ifndef CONFIG_IPV6_SUBTREES
David Ahernd5d531c2017-05-21 10:12:05 -06002613 if (cfg->fc_src_len) {
2614 NL_SET_ERR_MSG(extack,
2615 "Specifying source address requires IPV6_SUBTREES to be enabled");
Roopa Prabhu8c5b83f2015-10-10 08:26:36 -07002616 goto out;
David Ahernd5d531c2017-05-21 10:12:05 -06002617 }
Linus Torvalds1da177e2005-04-16 15:20:36 -07002618#endif
Thomas Graf86872cb2006-08-22 00:01:08 -07002619 if (cfg->fc_ifindex) {
Linus Torvalds1da177e2005-04-16 15:20:36 -07002620 err = -ENODEV;
Daniel Lezcano55786892008-03-04 13:47:47 -08002621 dev = dev_get_by_index(net, cfg->fc_ifindex);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002622 if (!dev)
2623 goto out;
2624 idev = in6_dev_get(dev);
2625 if (!idev)
2626 goto out;
2627 }
2628
Thomas Graf86872cb2006-08-22 00:01:08 -07002629 if (cfg->fc_metric == 0)
2630 cfg->fc_metric = IP6_RT_PRIO_USER;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002631
David Ahernfc1e64e2018-01-25 16:55:09 -08002632 if (cfg->fc_flags & RTNH_F_ONLINK) {
2633 if (!dev) {
2634 NL_SET_ERR_MSG(extack,
2635 "Nexthop device required for onlink");
2636 err = -ENODEV;
2637 goto out;
2638 }
2639
2640 if (!(dev->flags & IFF_UP)) {
2641 NL_SET_ERR_MSG(extack, "Nexthop device is not up");
2642 err = -ENETDOWN;
2643 goto out;
2644 }
2645 }
2646
Matti Vaittinend71314b2011-11-14 00:14:49 +00002647 err = -ENOBUFS;
David S. Miller38308472011-12-03 18:02:47 -05002648 if (cfg->fc_nlinfo.nlh &&
2649 !(cfg->fc_nlinfo.nlh->nlmsg_flags & NLM_F_CREATE)) {
Matti Vaittinend71314b2011-11-14 00:14:49 +00002650 table = fib6_get_table(net, cfg->fc_table);
David S. Miller38308472011-12-03 18:02:47 -05002651 if (!table) {
Joe Perchesf3213832012-05-15 14:11:53 +00002652 pr_warn("NLM_F_CREATE should be specified when creating new route\n");
Matti Vaittinend71314b2011-11-14 00:14:49 +00002653 table = fib6_new_table(net, cfg->fc_table);
2654 }
2655 } else {
2656 table = fib6_new_table(net, cfg->fc_table);
2657 }
David S. Miller38308472011-12-03 18:02:47 -05002658
2659 if (!table)
Thomas Grafc71099a2006-08-04 23:20:06 -07002660 goto out;
Thomas Grafc71099a2006-08-04 23:20:06 -07002661
Martin KaFai Lauad706862015-08-14 11:05:52 -07002662 rt = ip6_dst_alloc(net, NULL,
2663 (cfg->fc_flags & RTF_ADDRCONF) ? 0 : DST_NOCOUNT);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002664
David S. Miller38308472011-12-03 18:02:47 -05002665 if (!rt) {
Linus Torvalds1da177e2005-04-16 15:20:36 -07002666 err = -ENOMEM;
2667 goto out;
2668 }
2669
Gao feng1716a962012-04-06 00:13:10 +00002670 if (cfg->fc_flags & RTF_EXPIRES)
2671 rt6_set_expires(rt, jiffies +
2672 clock_t_to_jiffies(cfg->fc_expires));
2673 else
2674 rt6_clean_expires(rt);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002675
Thomas Graf86872cb2006-08-22 00:01:08 -07002676 if (cfg->fc_protocol == RTPROT_UNSPEC)
2677 cfg->fc_protocol = RTPROT_BOOT;
2678 rt->rt6i_protocol = cfg->fc_protocol;
2679
2680 addr_type = ipv6_addr_type(&cfg->fc_dst);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002681
2682 if (addr_type & IPV6_ADDR_MULTICAST)
Changli Gaod8d1f302010-06-10 23:31:35 -07002683 rt->dst.input = ip6_mc_input;
Maciej Żenczykowskiab79ad12010-09-27 00:07:02 +00002684 else if (cfg->fc_flags & RTF_LOCAL)
2685 rt->dst.input = ip6_input;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002686 else
Changli Gaod8d1f302010-06-10 23:31:35 -07002687 rt->dst.input = ip6_forward;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002688
Changli Gaod8d1f302010-06-10 23:31:35 -07002689 rt->dst.output = ip6_output;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002690
Roopa Prabhu19e42e42015-07-21 10:43:48 +02002691 if (cfg->fc_encap) {
2692 struct lwtunnel_state *lwtstate;
2693
David Ahern30357d72017-01-30 12:07:37 -08002694 err = lwtunnel_build_state(cfg->fc_encap_type,
Tom Herbert127eb7c2015-08-24 09:45:41 -07002695 cfg->fc_encap, AF_INET6, cfg,
David Ahern9ae28722017-05-27 16:19:28 -06002696 &lwtstate, extack);
Roopa Prabhu19e42e42015-07-21 10:43:48 +02002697 if (err)
2698 goto out;
Jiri Benc61adedf2015-08-20 13:56:25 +02002699 rt->dst.lwtstate = lwtstate_get(lwtstate);
2700 if (lwtunnel_output_redirect(rt->dst.lwtstate)) {
2701 rt->dst.lwtstate->orig_output = rt->dst.output;
2702 rt->dst.output = lwtunnel_output;
Tom Herbert25368622015-08-17 13:42:24 -07002703 }
Jiri Benc61adedf2015-08-20 13:56:25 +02002704 if (lwtunnel_input_redirect(rt->dst.lwtstate)) {
2705 rt->dst.lwtstate->orig_input = rt->dst.input;
2706 rt->dst.input = lwtunnel_input;
Tom Herbert25368622015-08-17 13:42:24 -07002707 }
Roopa Prabhu19e42e42015-07-21 10:43:48 +02002708 }
2709
Thomas Graf86872cb2006-08-22 00:01:08 -07002710 ipv6_addr_prefix(&rt->rt6i_dst.addr, &cfg->fc_dst, cfg->fc_dst_len);
2711 rt->rt6i_dst.plen = cfg->fc_dst_len;
Martin KaFai Lauafc4eef2015-04-28 13:03:07 -07002712 if (rt->rt6i_dst.plen == 128)
Michal Kubečeke5fd3872014-03-27 13:04:08 +01002713 rt->dst.flags |= DST_HOST;
Michal Kubečeke5fd3872014-03-27 13:04:08 +01002714
Linus Torvalds1da177e2005-04-16 15:20:36 -07002715#ifdef CONFIG_IPV6_SUBTREES
Thomas Graf86872cb2006-08-22 00:01:08 -07002716 ipv6_addr_prefix(&rt->rt6i_src.addr, &cfg->fc_src, cfg->fc_src_len);
2717 rt->rt6i_src.plen = cfg->fc_src_len;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002718#endif
2719
Thomas Graf86872cb2006-08-22 00:01:08 -07002720 rt->rt6i_metric = cfg->fc_metric;
Ido Schimmel398958a2018-01-09 16:40:28 +02002721 rt->rt6i_nh_weight = 1;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002722
2723 /* We cannot add true routes via loopback here,
2724 they would result in kernel looping; promote them to reject routes
2725 */
Thomas Graf86872cb2006-08-22 00:01:08 -07002726 if ((cfg->fc_flags & RTF_REJECT) ||
David S. Miller38308472011-12-03 18:02:47 -05002727 (dev && (dev->flags & IFF_LOOPBACK) &&
2728 !(addr_type & IPV6_ADDR_LOOPBACK) &&
2729 !(cfg->fc_flags & RTF_LOCAL))) {
Linus Torvalds1da177e2005-04-16 15:20:36 -07002730 /* hold loopback dev/idev if we haven't done so. */
Daniel Lezcano55786892008-03-04 13:47:47 -08002731 if (dev != net->loopback_dev) {
Linus Torvalds1da177e2005-04-16 15:20:36 -07002732 if (dev) {
2733 dev_put(dev);
2734 in6_dev_put(idev);
2735 }
Daniel Lezcano55786892008-03-04 13:47:47 -08002736 dev = net->loopback_dev;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002737 dev_hold(dev);
2738 idev = in6_dev_get(dev);
2739 if (!idev) {
2740 err = -ENODEV;
2741 goto out;
2742 }
2743 }
Linus Torvalds1da177e2005-04-16 15:20:36 -07002744 rt->rt6i_flags = RTF_REJECT|RTF_NONEXTHOP;
Nicolas Dichtelef2c7d72012-09-05 02:12:42 +00002745 switch (cfg->fc_type) {
2746 case RTN_BLACKHOLE:
2747 rt->dst.error = -EINVAL;
Eric W. Biedermanede20592015-10-07 16:48:47 -05002748 rt->dst.output = dst_discard_out;
Kamala R7150aed2013-12-02 19:55:21 +05302749 rt->dst.input = dst_discard;
Nicolas Dichtelef2c7d72012-09-05 02:12:42 +00002750 break;
2751 case RTN_PROHIBIT:
2752 rt->dst.error = -EACCES;
Kamala R7150aed2013-12-02 19:55:21 +05302753 rt->dst.output = ip6_pkt_prohibit_out;
2754 rt->dst.input = ip6_pkt_prohibit;
Nicolas Dichtelef2c7d72012-09-05 02:12:42 +00002755 break;
Nicolas Dichtelb4949ab2012-09-06 05:53:35 +00002756 case RTN_THROW:
Nikola Forró0315e382015-09-17 16:01:32 +02002757 case RTN_UNREACHABLE:
Nicolas Dichtelef2c7d72012-09-05 02:12:42 +00002758 default:
Kamala R7150aed2013-12-02 19:55:21 +05302759 rt->dst.error = (cfg->fc_type == RTN_THROW) ? -EAGAIN
Nikola Forró0315e382015-09-17 16:01:32 +02002760 : (cfg->fc_type == RTN_UNREACHABLE)
2761 ? -EHOSTUNREACH : -ENETUNREACH;
Kamala R7150aed2013-12-02 19:55:21 +05302762 rt->dst.output = ip6_pkt_discard_out;
2763 rt->dst.input = ip6_pkt_discard;
Nicolas Dichtelef2c7d72012-09-05 02:12:42 +00002764 break;
2765 }
Linus Torvalds1da177e2005-04-16 15:20:36 -07002766 goto install_route;
2767 }
2768
Thomas Graf86872cb2006-08-22 00:01:08 -07002769 if (cfg->fc_flags & RTF_GATEWAY) {
Eric Dumazetb71d1d42011-04-22 04:53:02 +00002770 const struct in6_addr *gw_addr;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002771 int gwa_type;
2772
Thomas Graf86872cb2006-08-22 00:01:08 -07002773 gw_addr = &cfg->fc_gateway;
Florian Westphal330567b2015-08-07 10:54:28 +02002774 gwa_type = ipv6_addr_type(gw_addr);
Florian Westphal48ed7b22015-05-21 00:25:41 +02002775
2776 /* if gw_addr is local we will fail to detect this in case
2777 * address is still TENTATIVE (DAD in progress). rt6_lookup()
2778 * will return already-added prefix route via interface that
2779 * prefix route was assigned to, which might be non-loopback.
2780 */
2781 err = -EINVAL;
Florian Westphal330567b2015-08-07 10:54:28 +02002782 if (ipv6_chk_addr_and_flags(net, gw_addr,
2783 gwa_type & IPV6_ADDR_LINKLOCAL ?
David Ahernd5d531c2017-05-21 10:12:05 -06002784 dev : NULL, 0, 0)) {
2785 NL_SET_ERR_MSG(extack, "Invalid gateway address");
Florian Westphal48ed7b22015-05-21 00:25:41 +02002786 goto out;
David Ahernd5d531c2017-05-21 10:12:05 -06002787 }
Alexey Dobriyan4e3fd7a2011-11-21 03:39:03 +00002788 rt->rt6i_gateway = *gw_addr;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002789
2790 if (gwa_type != (IPV6_ADDR_LINKLOCAL|IPV6_ADDR_UNICAST)) {
Linus Torvalds1da177e2005-04-16 15:20:36 -07002791 /* IPv6 strictly inhibits using not link-local
2792 addresses as nexthop address.
2793 Otherwise, router will not able to send redirects.
2794 It is very good, but in some (rare!) circumstances
2795 (SIT, PtP, NBMA NOARP links) it is handy to allow
2796 some exceptions. --ANK
Erik Nordmark96d58222016-12-03 20:57:09 -08002797 We allow IPv4-mapped nexthops to support RFC4798-type
2798 addressing
Linus Torvalds1da177e2005-04-16 15:20:36 -07002799 */
Erik Nordmark96d58222016-12-03 20:57:09 -08002800 if (!(gwa_type & (IPV6_ADDR_UNICAST |
David Ahernd5d531c2017-05-21 10:12:05 -06002801 IPV6_ADDR_MAPPED))) {
2802 NL_SET_ERR_MSG(extack,
2803 "Invalid gateway address");
Linus Torvalds1da177e2005-04-16 15:20:36 -07002804 goto out;
David Ahernd5d531c2017-05-21 10:12:05 -06002805 }
Linus Torvalds1da177e2005-04-16 15:20:36 -07002806
David Ahernfc1e64e2018-01-25 16:55:09 -08002807 if (cfg->fc_flags & RTNH_F_ONLINK) {
2808 err = ip6_route_check_nh_onlink(net, cfg, dev,
2809 extack);
2810 } else {
2811 err = ip6_route_check_nh(net, cfg, &dev, &idev);
2812 }
Linus Torvalds1da177e2005-04-16 15:20:36 -07002813 if (err)
2814 goto out;
2815 }
2816 err = -EINVAL;
David Ahernd5d531c2017-05-21 10:12:05 -06002817 if (!dev) {
2818 NL_SET_ERR_MSG(extack, "Egress device not specified");
Linus Torvalds1da177e2005-04-16 15:20:36 -07002819 goto out;
David Ahernd5d531c2017-05-21 10:12:05 -06002820 } else if (dev->flags & IFF_LOOPBACK) {
2821 NL_SET_ERR_MSG(extack,
2822 "Egress device can not be loopback device for this route");
2823 goto out;
2824 }
Linus Torvalds1da177e2005-04-16 15:20:36 -07002825 }
2826
2827 err = -ENODEV;
David S. Miller38308472011-12-03 18:02:47 -05002828 if (!dev)
Linus Torvalds1da177e2005-04-16 15:20:36 -07002829 goto out;
2830
David Ahern955ec4c2018-01-24 19:45:29 -08002831 if (!(dev->flags & IFF_UP)) {
2832 NL_SET_ERR_MSG(extack, "Nexthop device is not up");
2833 err = -ENETDOWN;
2834 goto out;
2835 }
2836
Daniel Walterc3968a82011-04-13 21:10:57 +00002837 if (!ipv6_addr_any(&cfg->fc_prefsrc)) {
2838 if (!ipv6_chk_addr(net, &cfg->fc_prefsrc, dev, 0)) {
David Ahernd5d531c2017-05-21 10:12:05 -06002839 NL_SET_ERR_MSG(extack, "Invalid source address");
Daniel Walterc3968a82011-04-13 21:10:57 +00002840 err = -EINVAL;
2841 goto out;
2842 }
Alexey Dobriyan4e3fd7a2011-11-21 03:39:03 +00002843 rt->rt6i_prefsrc.addr = cfg->fc_prefsrc;
Daniel Walterc3968a82011-04-13 21:10:57 +00002844 rt->rt6i_prefsrc.plen = 128;
2845 } else
2846 rt->rt6i_prefsrc.plen = 0;
2847
Thomas Graf86872cb2006-08-22 00:01:08 -07002848 rt->rt6i_flags = cfg->fc_flags;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002849
2850install_route:
Ido Schimmel5609b802018-01-07 12:45:06 +02002851 if (!(rt->rt6i_flags & (RTF_LOCAL | RTF_ANYCAST)) &&
2852 !netif_carrier_ok(dev))
2853 rt->rt6i_nh_flags |= RTNH_F_LINKDOWN;
David Ahernfc1e64e2018-01-25 16:55:09 -08002854 rt->rt6i_nh_flags |= (cfg->fc_flags & RTNH_F_ONLINK);
Changli Gaod8d1f302010-06-10 23:31:35 -07002855 rt->dst.dev = dev;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002856 rt->rt6i_idev = idev;
Thomas Grafc71099a2006-08-04 23:20:06 -07002857 rt->rt6i_table = table;
Daniel Lezcano63152fc2008-03-03 23:31:11 -08002858
YOSHIFUJI Hideakic346dca2008-03-25 21:47:49 +09002859 cfg->fc_nlinfo.nl_net = dev_net(dev);
Daniel Lezcano63152fc2008-03-03 23:31:11 -08002860
Roopa Prabhu8c5b83f2015-10-10 08:26:36 -07002861 return rt;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002862out:
2863 if (dev)
2864 dev_put(dev);
2865 if (idev)
2866 in6_dev_put(idev);
Wei Wang587fea72017-06-17 10:42:36 -07002867 if (rt)
2868 dst_release_immediate(&rt->dst);
Roopa Prabhu6b9ea5a2015-09-08 10:53:04 -07002869
Roopa Prabhu8c5b83f2015-10-10 08:26:36 -07002870 return ERR_PTR(err);
Roopa Prabhu6b9ea5a2015-09-08 10:53:04 -07002871}
2872
David Ahern333c4302017-05-21 10:12:04 -06002873int ip6_route_add(struct fib6_config *cfg,
2874 struct netlink_ext_ack *extack)
Roopa Prabhu6b9ea5a2015-09-08 10:53:04 -07002875{
2876 struct mx6_config mxc = { .mx = NULL, };
Roopa Prabhu8c5b83f2015-10-10 08:26:36 -07002877 struct rt6_info *rt;
Roopa Prabhu6b9ea5a2015-09-08 10:53:04 -07002878 int err;
2879
David Ahern333c4302017-05-21 10:12:04 -06002880 rt = ip6_route_info_create(cfg, extack);
Roopa Prabhu8c5b83f2015-10-10 08:26:36 -07002881 if (IS_ERR(rt)) {
2882 err = PTR_ERR(rt);
2883 rt = NULL;
Roopa Prabhu6b9ea5a2015-09-08 10:53:04 -07002884 goto out;
Roopa Prabhu8c5b83f2015-10-10 08:26:36 -07002885 }
Roopa Prabhu6b9ea5a2015-09-08 10:53:04 -07002886
2887 err = ip6_convert_metrics(&mxc, cfg);
2888 if (err)
2889 goto out;
2890
David Ahern333c4302017-05-21 10:12:04 -06002891 err = __ip6_ins_rt(rt, &cfg->fc_nlinfo, &mxc, extack);
Roopa Prabhu6b9ea5a2015-09-08 10:53:04 -07002892
2893 kfree(mxc.mx);
2894
2895 return err;
2896out:
Wei Wang587fea72017-06-17 10:42:36 -07002897 if (rt)
2898 dst_release_immediate(&rt->dst);
Roopa Prabhu6b9ea5a2015-09-08 10:53:04 -07002899
Linus Torvalds1da177e2005-04-16 15:20:36 -07002900 return err;
2901}
2902
Thomas Graf86872cb2006-08-22 00:01:08 -07002903static int __ip6_del_rt(struct rt6_info *rt, struct nl_info *info)
Linus Torvalds1da177e2005-04-16 15:20:36 -07002904{
2905 int err;
Thomas Grafc71099a2006-08-04 23:20:06 -07002906 struct fib6_table *table;
David S. Millerd1918542011-12-28 20:19:20 -05002907 struct net *net = dev_net(rt->dst.dev);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002908
Wei Wanga4c2fd72017-06-17 10:42:42 -07002909 if (rt == net->ipv6.ip6_null_entry) {
Gao feng6825a262012-09-19 19:25:34 +00002910 err = -ENOENT;
2911 goto out;
2912 }
Patrick McHardy6c813a72006-08-06 22:22:47 -07002913
Thomas Grafc71099a2006-08-04 23:20:06 -07002914 table = rt->rt6i_table;
Wei Wang66f5d6c2017-10-06 12:06:10 -07002915 spin_lock_bh(&table->tb6_lock);
Thomas Graf86872cb2006-08-22 00:01:08 -07002916 err = fib6_del(rt, info);
Wei Wang66f5d6c2017-10-06 12:06:10 -07002917 spin_unlock_bh(&table->tb6_lock);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002918
Gao feng6825a262012-09-19 19:25:34 +00002919out:
Amerigo Wang94e187c2012-10-29 00:13:19 +00002920 ip6_rt_put(rt);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002921 return err;
2922}
2923
Thomas Grafe0a1ad732006-08-22 00:00:21 -07002924int ip6_del_rt(struct rt6_info *rt)
2925{
Denis V. Lunev4d1169c2008-01-10 03:26:13 -08002926 struct nl_info info = {
David S. Millerd1918542011-12-28 20:19:20 -05002927 .nl_net = dev_net(rt->dst.dev),
Denis V. Lunev4d1169c2008-01-10 03:26:13 -08002928 };
Denis V. Lunev528c4ce2007-12-13 09:45:12 -08002929 return __ip6_del_rt(rt, &info);
Thomas Grafe0a1ad732006-08-22 00:00:21 -07002930}
2931
David Ahern0ae81332017-02-02 12:37:08 -08002932static int __ip6_del_rt_siblings(struct rt6_info *rt, struct fib6_config *cfg)
2933{
2934 struct nl_info *info = &cfg->fc_nlinfo;
WANG Conge3330032017-02-27 16:07:43 -08002935 struct net *net = info->nl_net;
David Ahern16a16cd2017-02-02 12:37:11 -08002936 struct sk_buff *skb = NULL;
David Ahern0ae81332017-02-02 12:37:08 -08002937 struct fib6_table *table;
WANG Conge3330032017-02-27 16:07:43 -08002938 int err = -ENOENT;
David Ahern0ae81332017-02-02 12:37:08 -08002939
WANG Conge3330032017-02-27 16:07:43 -08002940 if (rt == net->ipv6.ip6_null_entry)
2941 goto out_put;
David Ahern0ae81332017-02-02 12:37:08 -08002942 table = rt->rt6i_table;
Wei Wang66f5d6c2017-10-06 12:06:10 -07002943 spin_lock_bh(&table->tb6_lock);
David Ahern0ae81332017-02-02 12:37:08 -08002944
2945 if (rt->rt6i_nsiblings && cfg->fc_delete_all_nh) {
2946 struct rt6_info *sibling, *next_sibling;
2947
David Ahern16a16cd2017-02-02 12:37:11 -08002948 /* prefer to send a single notification with all hops */
2949 skb = nlmsg_new(rt6_nlmsg_size(rt), gfp_any());
2950 if (skb) {
2951 u32 seq = info->nlh ? info->nlh->nlmsg_seq : 0;
2952
WANG Conge3330032017-02-27 16:07:43 -08002953 if (rt6_fill_node(net, skb, rt,
David Ahern16a16cd2017-02-02 12:37:11 -08002954 NULL, NULL, 0, RTM_DELROUTE,
2955 info->portid, seq, 0) < 0) {
2956 kfree_skb(skb);
2957 skb = NULL;
2958 } else
2959 info->skip_notify = 1;
2960 }
2961
David Ahern0ae81332017-02-02 12:37:08 -08002962 list_for_each_entry_safe(sibling, next_sibling,
2963 &rt->rt6i_siblings,
2964 rt6i_siblings) {
2965 err = fib6_del(sibling, info);
2966 if (err)
WANG Conge3330032017-02-27 16:07:43 -08002967 goto out_unlock;
David Ahern0ae81332017-02-02 12:37:08 -08002968 }
2969 }
2970
2971 err = fib6_del(rt, info);
WANG Conge3330032017-02-27 16:07:43 -08002972out_unlock:
Wei Wang66f5d6c2017-10-06 12:06:10 -07002973 spin_unlock_bh(&table->tb6_lock);
WANG Conge3330032017-02-27 16:07:43 -08002974out_put:
David Ahern0ae81332017-02-02 12:37:08 -08002975 ip6_rt_put(rt);
David Ahern16a16cd2017-02-02 12:37:11 -08002976
2977 if (skb) {
WANG Conge3330032017-02-27 16:07:43 -08002978 rtnl_notify(skb, net, info->portid, RTNLGRP_IPV6_ROUTE,
David Ahern16a16cd2017-02-02 12:37:11 -08002979 info->nlh, gfp_any());
2980 }
David Ahern0ae81332017-02-02 12:37:08 -08002981 return err;
2982}
2983
David Ahern333c4302017-05-21 10:12:04 -06002984static int ip6_route_del(struct fib6_config *cfg,
2985 struct netlink_ext_ack *extack)
Linus Torvalds1da177e2005-04-16 15:20:36 -07002986{
Wei Wang2b760fc2017-10-06 12:06:03 -07002987 struct rt6_info *rt, *rt_cache;
Thomas Grafc71099a2006-08-04 23:20:06 -07002988 struct fib6_table *table;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002989 struct fib6_node *fn;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002990 int err = -ESRCH;
2991
Daniel Lezcano55786892008-03-04 13:47:47 -08002992 table = fib6_get_table(cfg->fc_nlinfo.nl_net, cfg->fc_table);
David Ahernd5d531c2017-05-21 10:12:05 -06002993 if (!table) {
2994 NL_SET_ERR_MSG(extack, "FIB table does not exist");
Thomas Grafc71099a2006-08-04 23:20:06 -07002995 return err;
David Ahernd5d531c2017-05-21 10:12:05 -06002996 }
Linus Torvalds1da177e2005-04-16 15:20:36 -07002997
Wei Wang66f5d6c2017-10-06 12:06:10 -07002998 rcu_read_lock();
Thomas Grafc71099a2006-08-04 23:20:06 -07002999
3000 fn = fib6_locate(&table->tb6_root,
Thomas Graf86872cb2006-08-22 00:01:08 -07003001 &cfg->fc_dst, cfg->fc_dst_len,
Wei Wang38fbeee2017-10-06 12:06:02 -07003002 &cfg->fc_src, cfg->fc_src_len,
Wei Wang2b760fc2017-10-06 12:06:03 -07003003 !(cfg->fc_flags & RTF_CACHE));
YOSHIFUJI Hideaki1ab14572007-02-09 23:24:49 +09003004
Linus Torvalds1da177e2005-04-16 15:20:36 -07003005 if (fn) {
Wei Wang66f5d6c2017-10-06 12:06:10 -07003006 for_each_fib6_node_rt_rcu(fn) {
Wei Wang2b760fc2017-10-06 12:06:03 -07003007 if (cfg->fc_flags & RTF_CACHE) {
3008 rt_cache = rt6_find_cached_rt(rt, &cfg->fc_dst,
3009 &cfg->fc_src);
3010 if (!rt_cache)
3011 continue;
3012 rt = rt_cache;
3013 }
Thomas Graf86872cb2006-08-22 00:01:08 -07003014 if (cfg->fc_ifindex &&
David S. Millerd1918542011-12-28 20:19:20 -05003015 (!rt->dst.dev ||
3016 rt->dst.dev->ifindex != cfg->fc_ifindex))
Linus Torvalds1da177e2005-04-16 15:20:36 -07003017 continue;
Thomas Graf86872cb2006-08-22 00:01:08 -07003018 if (cfg->fc_flags & RTF_GATEWAY &&
3019 !ipv6_addr_equal(&cfg->fc_gateway, &rt->rt6i_gateway))
Linus Torvalds1da177e2005-04-16 15:20:36 -07003020 continue;
Thomas Graf86872cb2006-08-22 00:01:08 -07003021 if (cfg->fc_metric && cfg->fc_metric != rt->rt6i_metric)
Linus Torvalds1da177e2005-04-16 15:20:36 -07003022 continue;
Mantas Mc2ed1882016-12-16 10:30:59 +02003023 if (cfg->fc_protocol && cfg->fc_protocol != rt->rt6i_protocol)
3024 continue;
Wei Wangd3843fe2017-10-06 12:06:06 -07003025 if (!dst_hold_safe(&rt->dst))
3026 break;
Wei Wang66f5d6c2017-10-06 12:06:10 -07003027 rcu_read_unlock();
Linus Torvalds1da177e2005-04-16 15:20:36 -07003028
David Ahern0ae81332017-02-02 12:37:08 -08003029 /* if gateway was specified only delete the one hop */
3030 if (cfg->fc_flags & RTF_GATEWAY)
3031 return __ip6_del_rt(rt, &cfg->fc_nlinfo);
3032
3033 return __ip6_del_rt_siblings(rt, cfg);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003034 }
3035 }
Wei Wang66f5d6c2017-10-06 12:06:10 -07003036 rcu_read_unlock();
Linus Torvalds1da177e2005-04-16 15:20:36 -07003037
3038 return err;
3039}
3040
David S. Miller6700c272012-07-17 03:29:28 -07003041static void rt6_do_redirect(struct dst_entry *dst, struct sock *sk, struct sk_buff *skb)
YOSHIFUJI Hideakia6279452006-08-23 17:18:26 -07003042{
YOSHIFUJI Hideakia6279452006-08-23 17:18:26 -07003043 struct netevent_redirect netevent;
David S. Millere8599ff2012-07-11 23:43:53 -07003044 struct rt6_info *rt, *nrt = NULL;
David S. Millere8599ff2012-07-11 23:43:53 -07003045 struct ndisc_options ndopts;
3046 struct inet6_dev *in6_dev;
3047 struct neighbour *neigh;
YOSHIFUJI Hideaki / 吉藤英明71bcdba2013-01-05 16:34:51 +00003048 struct rd_msg *msg;
David S. Miller6e157b62012-07-12 00:05:02 -07003049 int optlen, on_link;
3050 u8 *lladdr;
David S. Millere8599ff2012-07-11 23:43:53 -07003051
Simon Horman29a3cad2013-05-28 20:34:26 +00003052 optlen = skb_tail_pointer(skb) - skb_transport_header(skb);
YOSHIFUJI Hideaki / 吉藤英明71bcdba2013-01-05 16:34:51 +00003053 optlen -= sizeof(*msg);
David S. Millere8599ff2012-07-11 23:43:53 -07003054
3055 if (optlen < 0) {
David S. Miller6e157b62012-07-12 00:05:02 -07003056 net_dbg_ratelimited("rt6_do_redirect: packet too short\n");
David S. Millere8599ff2012-07-11 23:43:53 -07003057 return;
3058 }
3059
YOSHIFUJI Hideaki / 吉藤英明71bcdba2013-01-05 16:34:51 +00003060 msg = (struct rd_msg *)icmp6_hdr(skb);
David S. Millere8599ff2012-07-11 23:43:53 -07003061
YOSHIFUJI Hideaki / 吉藤英明71bcdba2013-01-05 16:34:51 +00003062 if (ipv6_addr_is_multicast(&msg->dest)) {
David S. Miller6e157b62012-07-12 00:05:02 -07003063 net_dbg_ratelimited("rt6_do_redirect: destination address is multicast\n");
David S. Millere8599ff2012-07-11 23:43:53 -07003064 return;
3065 }
3066
David S. Miller6e157b62012-07-12 00:05:02 -07003067 on_link = 0;
YOSHIFUJI Hideaki / 吉藤英明71bcdba2013-01-05 16:34:51 +00003068 if (ipv6_addr_equal(&msg->dest, &msg->target)) {
David S. Millere8599ff2012-07-11 23:43:53 -07003069 on_link = 1;
YOSHIFUJI Hideaki / 吉藤英明71bcdba2013-01-05 16:34:51 +00003070 } else if (ipv6_addr_type(&msg->target) !=
David S. Millere8599ff2012-07-11 23:43:53 -07003071 (IPV6_ADDR_UNICAST|IPV6_ADDR_LINKLOCAL)) {
David S. Miller6e157b62012-07-12 00:05:02 -07003072 net_dbg_ratelimited("rt6_do_redirect: target address is not link-local unicast\n");
David S. Millere8599ff2012-07-11 23:43:53 -07003073 return;
3074 }
3075
3076 in6_dev = __in6_dev_get(skb->dev);
3077 if (!in6_dev)
3078 return;
3079 if (in6_dev->cnf.forwarding || !in6_dev->cnf.accept_redirects)
3080 return;
3081
3082 /* RFC2461 8.1:
3083 * The IP source address of the Redirect MUST be the same as the current
3084 * first-hop router for the specified ICMP Destination Address.
3085 */
3086
Alexander Aringf997c552016-06-15 21:20:23 +02003087 if (!ndisc_parse_options(skb->dev, msg->opt, optlen, &ndopts)) {
David S. Millere8599ff2012-07-11 23:43:53 -07003088 net_dbg_ratelimited("rt6_redirect: invalid ND options\n");
3089 return;
3090 }
David S. Miller6e157b62012-07-12 00:05:02 -07003091
3092 lladdr = NULL;
David S. Millere8599ff2012-07-11 23:43:53 -07003093 if (ndopts.nd_opts_tgt_lladdr) {
3094 lladdr = ndisc_opt_addr_data(ndopts.nd_opts_tgt_lladdr,
3095 skb->dev);
3096 if (!lladdr) {
3097 net_dbg_ratelimited("rt6_redirect: invalid link-layer address length\n");
3098 return;
3099 }
3100 }
3101
David S. Miller6e157b62012-07-12 00:05:02 -07003102 rt = (struct rt6_info *) dst;
Matthias Schifferec13ad12015-11-02 01:24:38 +01003103 if (rt->rt6i_flags & RTF_REJECT) {
David S. Miller6e157b62012-07-12 00:05:02 -07003104 net_dbg_ratelimited("rt6_redirect: source isn't a valid nexthop for redirect target\n");
3105 return;
3106 }
3107
3108 /* Redirect received -> path was valid.
3109 * Look, redirects are sent only in response to data packets,
3110 * so that this nexthop apparently is reachable. --ANK
3111 */
Julian Anastasov0dec8792017-02-06 23:14:16 +02003112 dst_confirm_neigh(&rt->dst, &ipv6_hdr(skb)->saddr);
David S. Miller6e157b62012-07-12 00:05:02 -07003113
YOSHIFUJI Hideaki / 吉藤英明71bcdba2013-01-05 16:34:51 +00003114 neigh = __neigh_lookup(&nd_tbl, &msg->target, skb->dev, 1);
David S. Millere8599ff2012-07-11 23:43:53 -07003115 if (!neigh)
3116 return;
3117
Linus Torvalds1da177e2005-04-16 15:20:36 -07003118 /*
3119 * We have finally decided to accept it.
3120 */
3121
Alexander Aringf997c552016-06-15 21:20:23 +02003122 ndisc_update(skb->dev, neigh, lladdr, NUD_STALE,
Linus Torvalds1da177e2005-04-16 15:20:36 -07003123 NEIGH_UPDATE_F_WEAK_OVERRIDE|
3124 NEIGH_UPDATE_F_OVERRIDE|
3125 (on_link ? 0 : (NEIGH_UPDATE_F_OVERRIDE_ISROUTER|
Alexander Aringf997c552016-06-15 21:20:23 +02003126 NEIGH_UPDATE_F_ISROUTER)),
3127 NDISC_REDIRECT, &ndopts);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003128
Martin KaFai Lau83a09ab2015-05-22 20:56:05 -07003129 nrt = ip6_rt_cache_alloc(rt, &msg->dest, NULL);
David S. Miller38308472011-12-03 18:02:47 -05003130 if (!nrt)
Linus Torvalds1da177e2005-04-16 15:20:36 -07003131 goto out;
3132
3133 nrt->rt6i_flags = RTF_GATEWAY|RTF_UP|RTF_DYNAMIC|RTF_CACHE;
3134 if (on_link)
3135 nrt->rt6i_flags &= ~RTF_GATEWAY;
3136
Xin Longb91d5322017-08-03 14:13:46 +08003137 nrt->rt6i_protocol = RTPROT_REDIRECT;
Alexey Dobriyan4e3fd7a2011-11-21 03:39:03 +00003138 nrt->rt6i_gateway = *(struct in6_addr *)neigh->primary_key;
Linus Torvalds1da177e2005-04-16 15:20:36 -07003139
Wei Wang2b760fc2017-10-06 12:06:03 -07003140 /* No need to remove rt from the exception table if rt is
3141 * a cached route because rt6_insert_exception() will
3142 * takes care of it
3143 */
3144 if (rt6_insert_exception(nrt, rt)) {
3145 dst_release_immediate(&nrt->dst);
3146 goto out;
3147 }
Linus Torvalds1da177e2005-04-16 15:20:36 -07003148
Changli Gaod8d1f302010-06-10 23:31:35 -07003149 netevent.old = &rt->dst;
3150 netevent.new = &nrt->dst;
YOSHIFUJI Hideaki / 吉藤英明71bcdba2013-01-05 16:34:51 +00003151 netevent.daddr = &msg->dest;
YOSHIFUJI Hideaki / 吉藤英明60592832013-01-14 09:28:27 +00003152 netevent.neigh = neigh;
Tom Tucker8d717402006-07-30 20:43:36 -07003153 call_netevent_notifiers(NETEVENT_REDIRECT, &netevent);
3154
Linus Torvalds1da177e2005-04-16 15:20:36 -07003155out:
David S. Millere8599ff2012-07-11 23:43:53 -07003156 neigh_release(neigh);
David S. Miller6e157b62012-07-12 00:05:02 -07003157}
3158
Linus Torvalds1da177e2005-04-16 15:20:36 -07003159/*
Linus Torvalds1da177e2005-04-16 15:20:36 -07003160 * Misc support functions
3161 */
3162
Martin KaFai Lau4b32b5a2015-04-28 13:03:06 -07003163static void rt6_set_from(struct rt6_info *rt, struct rt6_info *from)
3164{
David Miller3a2232e2017-11-28 15:40:40 -05003165 BUG_ON(from->from);
Martin KaFai Lau4b32b5a2015-04-28 13:03:06 -07003166
3167 rt->rt6i_flags &= ~RTF_EXPIRES;
3168 dst_hold(&from->dst);
David Miller3a2232e2017-11-28 15:40:40 -05003169 rt->from = from;
Martin KaFai Lau4b32b5a2015-04-28 13:03:06 -07003170 dst_init_metrics(&rt->dst, dst_metrics_ptr(&from->dst), true);
3171}
3172
Martin KaFai Lau83a09ab2015-05-22 20:56:05 -07003173static void ip6_rt_copy_init(struct rt6_info *rt, struct rt6_info *ort)
Linus Torvalds1da177e2005-04-16 15:20:36 -07003174{
Martin KaFai Lau83a09ab2015-05-22 20:56:05 -07003175 rt->dst.input = ort->dst.input;
3176 rt->dst.output = ort->dst.output;
3177 rt->rt6i_dst = ort->rt6i_dst;
3178 rt->dst.error = ort->dst.error;
3179 rt->rt6i_idev = ort->rt6i_idev;
3180 if (rt->rt6i_idev)
3181 in6_dev_hold(rt->rt6i_idev);
3182 rt->dst.lastuse = jiffies;
3183 rt->rt6i_gateway = ort->rt6i_gateway;
3184 rt->rt6i_flags = ort->rt6i_flags;
3185 rt6_set_from(rt, ort);
3186 rt->rt6i_metric = ort->rt6i_metric;
Linus Torvalds1da177e2005-04-16 15:20:36 -07003187#ifdef CONFIG_IPV6_SUBTREES
Martin KaFai Lau83a09ab2015-05-22 20:56:05 -07003188 rt->rt6i_src = ort->rt6i_src;
Linus Torvalds1da177e2005-04-16 15:20:36 -07003189#endif
Martin KaFai Lau83a09ab2015-05-22 20:56:05 -07003190 rt->rt6i_prefsrc = ort->rt6i_prefsrc;
3191 rt->rt6i_table = ort->rt6i_table;
Jiri Benc61adedf2015-08-20 13:56:25 +02003192 rt->dst.lwtstate = lwtstate_get(ort->dst.lwtstate);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003193}
3194
YOSHIFUJI Hideaki70ceb4f2006-03-20 17:06:24 -08003195#ifdef CONFIG_IPV6_ROUTE_INFO
Daniel Lezcanoefa2cea2008-03-04 13:46:48 -08003196static struct rt6_info *rt6_get_route_info(struct net *net,
Eric Dumazetb71d1d42011-04-22 04:53:02 +00003197 const struct in6_addr *prefix, int prefixlen,
David Ahern830218c2016-10-24 10:52:35 -07003198 const struct in6_addr *gwaddr,
3199 struct net_device *dev)
YOSHIFUJI Hideaki70ceb4f2006-03-20 17:06:24 -08003200{
David Ahern830218c2016-10-24 10:52:35 -07003201 u32 tb_id = l3mdev_fib_table(dev) ? : RT6_TABLE_INFO;
3202 int ifindex = dev->ifindex;
YOSHIFUJI Hideaki70ceb4f2006-03-20 17:06:24 -08003203 struct fib6_node *fn;
3204 struct rt6_info *rt = NULL;
Thomas Grafc71099a2006-08-04 23:20:06 -07003205 struct fib6_table *table;
YOSHIFUJI Hideaki70ceb4f2006-03-20 17:06:24 -08003206
David Ahern830218c2016-10-24 10:52:35 -07003207 table = fib6_get_table(net, tb_id);
David S. Miller38308472011-12-03 18:02:47 -05003208 if (!table)
Thomas Grafc71099a2006-08-04 23:20:06 -07003209 return NULL;
3210
Wei Wang66f5d6c2017-10-06 12:06:10 -07003211 rcu_read_lock();
Wei Wang38fbeee2017-10-06 12:06:02 -07003212 fn = fib6_locate(&table->tb6_root, prefix, prefixlen, NULL, 0, true);
YOSHIFUJI Hideaki70ceb4f2006-03-20 17:06:24 -08003213 if (!fn)
3214 goto out;
3215
Wei Wang66f5d6c2017-10-06 12:06:10 -07003216 for_each_fib6_node_rt_rcu(fn) {
David S. Millerd1918542011-12-28 20:19:20 -05003217 if (rt->dst.dev->ifindex != ifindex)
YOSHIFUJI Hideaki70ceb4f2006-03-20 17:06:24 -08003218 continue;
3219 if ((rt->rt6i_flags & (RTF_ROUTEINFO|RTF_GATEWAY)) != (RTF_ROUTEINFO|RTF_GATEWAY))
3220 continue;
3221 if (!ipv6_addr_equal(&rt->rt6i_gateway, gwaddr))
3222 continue;
Wei Wangd3843fe2017-10-06 12:06:06 -07003223 ip6_hold_safe(NULL, &rt, false);
YOSHIFUJI Hideaki70ceb4f2006-03-20 17:06:24 -08003224 break;
3225 }
3226out:
Wei Wang66f5d6c2017-10-06 12:06:10 -07003227 rcu_read_unlock();
YOSHIFUJI Hideaki70ceb4f2006-03-20 17:06:24 -08003228 return rt;
3229}
3230
Daniel Lezcanoefa2cea2008-03-04 13:46:48 -08003231static struct rt6_info *rt6_add_route_info(struct net *net,
Eric Dumazetb71d1d42011-04-22 04:53:02 +00003232 const struct in6_addr *prefix, int prefixlen,
David Ahern830218c2016-10-24 10:52:35 -07003233 const struct in6_addr *gwaddr,
3234 struct net_device *dev,
Eric Dumazet95c96172012-04-15 05:58:06 +00003235 unsigned int pref)
YOSHIFUJI Hideaki70ceb4f2006-03-20 17:06:24 -08003236{
Thomas Graf86872cb2006-08-22 00:01:08 -07003237 struct fib6_config cfg = {
Rami Rosen238fc7e2008-02-09 23:43:11 -08003238 .fc_metric = IP6_RT_PRIO_USER,
David Ahern830218c2016-10-24 10:52:35 -07003239 .fc_ifindex = dev->ifindex,
Thomas Graf86872cb2006-08-22 00:01:08 -07003240 .fc_dst_len = prefixlen,
3241 .fc_flags = RTF_GATEWAY | RTF_ADDRCONF | RTF_ROUTEINFO |
3242 RTF_UP | RTF_PREF(pref),
Xin Longb91d5322017-08-03 14:13:46 +08003243 .fc_protocol = RTPROT_RA,
Eric W. Biederman15e47302012-09-07 20:12:54 +00003244 .fc_nlinfo.portid = 0,
Daniel Lezcanoefa2cea2008-03-04 13:46:48 -08003245 .fc_nlinfo.nlh = NULL,
3246 .fc_nlinfo.nl_net = net,
Thomas Graf86872cb2006-08-22 00:01:08 -07003247 };
YOSHIFUJI Hideaki70ceb4f2006-03-20 17:06:24 -08003248
David Ahern830218c2016-10-24 10:52:35 -07003249 cfg.fc_table = l3mdev_fib_table(dev) ? : RT6_TABLE_INFO,
Alexey Dobriyan4e3fd7a2011-11-21 03:39:03 +00003250 cfg.fc_dst = *prefix;
3251 cfg.fc_gateway = *gwaddr;
Thomas Graf86872cb2006-08-22 00:01:08 -07003252
YOSHIFUJI Hideakie317da92006-03-20 17:06:42 -08003253 /* We should treat it as a default route if prefix length is 0. */
3254 if (!prefixlen)
Thomas Graf86872cb2006-08-22 00:01:08 -07003255 cfg.fc_flags |= RTF_DEFAULT;
YOSHIFUJI Hideaki70ceb4f2006-03-20 17:06:24 -08003256
David Ahern333c4302017-05-21 10:12:04 -06003257 ip6_route_add(&cfg, NULL);
YOSHIFUJI Hideaki70ceb4f2006-03-20 17:06:24 -08003258
David Ahern830218c2016-10-24 10:52:35 -07003259 return rt6_get_route_info(net, prefix, prefixlen, gwaddr, dev);
YOSHIFUJI Hideaki70ceb4f2006-03-20 17:06:24 -08003260}
3261#endif
3262
Eric Dumazetb71d1d42011-04-22 04:53:02 +00003263struct rt6_info *rt6_get_dflt_router(const struct in6_addr *addr, struct net_device *dev)
YOSHIFUJI Hideaki1ab14572007-02-09 23:24:49 +09003264{
David Ahern830218c2016-10-24 10:52:35 -07003265 u32 tb_id = l3mdev_fib_table(dev) ? : RT6_TABLE_DFLT;
Linus Torvalds1da177e2005-04-16 15:20:36 -07003266 struct rt6_info *rt;
Thomas Grafc71099a2006-08-04 23:20:06 -07003267 struct fib6_table *table;
Linus Torvalds1da177e2005-04-16 15:20:36 -07003268
David Ahern830218c2016-10-24 10:52:35 -07003269 table = fib6_get_table(dev_net(dev), tb_id);
David S. Miller38308472011-12-03 18:02:47 -05003270 if (!table)
Thomas Grafc71099a2006-08-04 23:20:06 -07003271 return NULL;
Linus Torvalds1da177e2005-04-16 15:20:36 -07003272
Wei Wang66f5d6c2017-10-06 12:06:10 -07003273 rcu_read_lock();
3274 for_each_fib6_node_rt_rcu(&table->tb6_root) {
David S. Millerd1918542011-12-28 20:19:20 -05003275 if (dev == rt->dst.dev &&
YOSHIFUJI Hideaki045927f2006-03-20 17:00:48 -08003276 ((rt->rt6i_flags & (RTF_ADDRCONF | RTF_DEFAULT)) == (RTF_ADDRCONF | RTF_DEFAULT)) &&
Linus Torvalds1da177e2005-04-16 15:20:36 -07003277 ipv6_addr_equal(&rt->rt6i_gateway, addr))
3278 break;
3279 }
3280 if (rt)
Wei Wangd3843fe2017-10-06 12:06:06 -07003281 ip6_hold_safe(NULL, &rt, false);
Wei Wang66f5d6c2017-10-06 12:06:10 -07003282 rcu_read_unlock();
Linus Torvalds1da177e2005-04-16 15:20:36 -07003283 return rt;
3284}
3285
Eric Dumazetb71d1d42011-04-22 04:53:02 +00003286struct rt6_info *rt6_add_dflt_router(const struct in6_addr *gwaddr,
YOSHIFUJI Hideakiebacaaa2006-03-20 17:04:53 -08003287 struct net_device *dev,
3288 unsigned int pref)
Linus Torvalds1da177e2005-04-16 15:20:36 -07003289{
Thomas Graf86872cb2006-08-22 00:01:08 -07003290 struct fib6_config cfg = {
David Ahernca254492015-10-12 11:47:10 -07003291 .fc_table = l3mdev_fib_table(dev) ? : RT6_TABLE_DFLT,
Rami Rosen238fc7e2008-02-09 23:43:11 -08003292 .fc_metric = IP6_RT_PRIO_USER,
Thomas Graf86872cb2006-08-22 00:01:08 -07003293 .fc_ifindex = dev->ifindex,
3294 .fc_flags = RTF_GATEWAY | RTF_ADDRCONF | RTF_DEFAULT |
3295 RTF_UP | RTF_EXPIRES | RTF_PREF(pref),
Xin Longb91d5322017-08-03 14:13:46 +08003296 .fc_protocol = RTPROT_RA,
Eric W. Biederman15e47302012-09-07 20:12:54 +00003297 .fc_nlinfo.portid = 0,
Daniel Lezcano55786892008-03-04 13:47:47 -08003298 .fc_nlinfo.nlh = NULL,
YOSHIFUJI Hideakic346dca2008-03-25 21:47:49 +09003299 .fc_nlinfo.nl_net = dev_net(dev),
Thomas Graf86872cb2006-08-22 00:01:08 -07003300 };
Linus Torvalds1da177e2005-04-16 15:20:36 -07003301
Alexey Dobriyan4e3fd7a2011-11-21 03:39:03 +00003302 cfg.fc_gateway = *gwaddr;
Linus Torvalds1da177e2005-04-16 15:20:36 -07003303
David Ahern333c4302017-05-21 10:12:04 -06003304 if (!ip6_route_add(&cfg, NULL)) {
David Ahern830218c2016-10-24 10:52:35 -07003305 struct fib6_table *table;
3306
3307 table = fib6_get_table(dev_net(dev), cfg.fc_table);
3308 if (table)
3309 table->flags |= RT6_TABLE_HAS_DFLT_ROUTER;
3310 }
Linus Torvalds1da177e2005-04-16 15:20:36 -07003311
Linus Torvalds1da177e2005-04-16 15:20:36 -07003312 return rt6_get_dflt_router(gwaddr, dev);
3313}
3314
David Ahern830218c2016-10-24 10:52:35 -07003315static void __rt6_purge_dflt_routers(struct fib6_table *table)
Linus Torvalds1da177e2005-04-16 15:20:36 -07003316{
3317 struct rt6_info *rt;
3318
3319restart:
Wei Wang66f5d6c2017-10-06 12:06:10 -07003320 rcu_read_lock();
3321 for_each_fib6_node_rt_rcu(&table->tb6_root) {
Lorenzo Colitti3e8b0ac2013-03-03 20:46:46 +00003322 if (rt->rt6i_flags & (RTF_DEFAULT | RTF_ADDRCONF) &&
3323 (!rt->rt6i_idev || rt->rt6i_idev->cnf.accept_ra != 2)) {
Wei Wangd3843fe2017-10-06 12:06:06 -07003324 if (dst_hold_safe(&rt->dst)) {
Wei Wang66f5d6c2017-10-06 12:06:10 -07003325 rcu_read_unlock();
Wei Wangd3843fe2017-10-06 12:06:06 -07003326 ip6_del_rt(rt);
3327 } else {
Wei Wang66f5d6c2017-10-06 12:06:10 -07003328 rcu_read_unlock();
Wei Wangd3843fe2017-10-06 12:06:06 -07003329 }
Linus Torvalds1da177e2005-04-16 15:20:36 -07003330 goto restart;
3331 }
3332 }
Wei Wang66f5d6c2017-10-06 12:06:10 -07003333 rcu_read_unlock();
David Ahern830218c2016-10-24 10:52:35 -07003334
3335 table->flags &= ~RT6_TABLE_HAS_DFLT_ROUTER;
3336}
3337
3338void rt6_purge_dflt_routers(struct net *net)
3339{
3340 struct fib6_table *table;
3341 struct hlist_head *head;
3342 unsigned int h;
3343
3344 rcu_read_lock();
3345
3346 for (h = 0; h < FIB6_TABLE_HASHSZ; h++) {
3347 head = &net->ipv6.fib_table_hash[h];
3348 hlist_for_each_entry_rcu(table, head, tb6_hlist) {
3349 if (table->flags & RT6_TABLE_HAS_DFLT_ROUTER)
3350 __rt6_purge_dflt_routers(table);
3351 }
3352 }
3353
3354 rcu_read_unlock();
Linus Torvalds1da177e2005-04-16 15:20:36 -07003355}
3356
Daniel Lezcano55786892008-03-04 13:47:47 -08003357static void rtmsg_to_fib6_config(struct net *net,
3358 struct in6_rtmsg *rtmsg,
Thomas Graf86872cb2006-08-22 00:01:08 -07003359 struct fib6_config *cfg)
3360{
3361 memset(cfg, 0, sizeof(*cfg));
3362
David Ahernca254492015-10-12 11:47:10 -07003363 cfg->fc_table = l3mdev_fib_table_by_index(net, rtmsg->rtmsg_ifindex) ?
3364 : RT6_TABLE_MAIN;
Thomas Graf86872cb2006-08-22 00:01:08 -07003365 cfg->fc_ifindex = rtmsg->rtmsg_ifindex;
3366 cfg->fc_metric = rtmsg->rtmsg_metric;
3367 cfg->fc_expires = rtmsg->rtmsg_info;
3368 cfg->fc_dst_len = rtmsg->rtmsg_dst_len;
3369 cfg->fc_src_len = rtmsg->rtmsg_src_len;
3370 cfg->fc_flags = rtmsg->rtmsg_flags;
3371
Daniel Lezcano55786892008-03-04 13:47:47 -08003372 cfg->fc_nlinfo.nl_net = net;
Benjamin Theryf1243c22008-02-26 18:10:03 -08003373
Alexey Dobriyan4e3fd7a2011-11-21 03:39:03 +00003374 cfg->fc_dst = rtmsg->rtmsg_dst;
3375 cfg->fc_src = rtmsg->rtmsg_src;
3376 cfg->fc_gateway = rtmsg->rtmsg_gateway;
Thomas Graf86872cb2006-08-22 00:01:08 -07003377}
3378
Daniel Lezcano55786892008-03-04 13:47:47 -08003379int ipv6_route_ioctl(struct net *net, unsigned int cmd, void __user *arg)
Linus Torvalds1da177e2005-04-16 15:20:36 -07003380{
Thomas Graf86872cb2006-08-22 00:01:08 -07003381 struct fib6_config cfg;
Linus Torvalds1da177e2005-04-16 15:20:36 -07003382 struct in6_rtmsg rtmsg;
3383 int err;
3384
Ian Morris67ba4152014-08-24 21:53:10 +01003385 switch (cmd) {
Linus Torvalds1da177e2005-04-16 15:20:36 -07003386 case SIOCADDRT: /* Add a route */
3387 case SIOCDELRT: /* Delete a route */
Eric W. Biedermanaf31f412012-11-16 03:03:06 +00003388 if (!ns_capable(net->user_ns, CAP_NET_ADMIN))
Linus Torvalds1da177e2005-04-16 15:20:36 -07003389 return -EPERM;
3390 err = copy_from_user(&rtmsg, arg,
3391 sizeof(struct in6_rtmsg));
3392 if (err)
3393 return -EFAULT;
Thomas Graf86872cb2006-08-22 00:01:08 -07003394
Daniel Lezcano55786892008-03-04 13:47:47 -08003395 rtmsg_to_fib6_config(net, &rtmsg, &cfg);
Thomas Graf86872cb2006-08-22 00:01:08 -07003396
Linus Torvalds1da177e2005-04-16 15:20:36 -07003397 rtnl_lock();
3398 switch (cmd) {
3399 case SIOCADDRT:
David Ahern333c4302017-05-21 10:12:04 -06003400 err = ip6_route_add(&cfg, NULL);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003401 break;
3402 case SIOCDELRT:
David Ahern333c4302017-05-21 10:12:04 -06003403 err = ip6_route_del(&cfg, NULL);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003404 break;
3405 default:
3406 err = -EINVAL;
3407 }
3408 rtnl_unlock();
3409
3410 return err;
Stephen Hemminger3ff50b72007-04-20 17:09:22 -07003411 }
Linus Torvalds1da177e2005-04-16 15:20:36 -07003412
3413 return -EINVAL;
3414}
3415
3416/*
3417 * Drop the packet on the floor
3418 */
3419
Brian Haleyd5fdd6b2009-06-23 04:31:07 -07003420static int ip6_pkt_drop(struct sk_buff *skb, u8 code, int ipstats_mib_noroutes)
Linus Torvalds1da177e2005-04-16 15:20:36 -07003421{
YOSHIFUJI Hideaki612f09e2007-04-13 16:18:02 -07003422 int type;
Eric Dumazetadf30902009-06-02 05:19:30 +00003423 struct dst_entry *dst = skb_dst(skb);
YOSHIFUJI Hideaki612f09e2007-04-13 16:18:02 -07003424 switch (ipstats_mib_noroutes) {
3425 case IPSTATS_MIB_INNOROUTES:
Arnaldo Carvalho de Melo0660e032007-04-25 17:54:47 -07003426 type = ipv6_addr_type(&ipv6_hdr(skb)->daddr);
Ulrich Weber45bb0062010-02-25 23:28:58 +00003427 if (type == IPV6_ADDR_ANY) {
Denis V. Lunev3bd653c2008-10-08 10:54:51 -07003428 IP6_INC_STATS(dev_net(dst->dev), ip6_dst_idev(dst),
3429 IPSTATS_MIB_INADDRERRORS);
YOSHIFUJI Hideaki612f09e2007-04-13 16:18:02 -07003430 break;
3431 }
3432 /* FALLTHROUGH */
3433 case IPSTATS_MIB_OUTNOROUTES:
Denis V. Lunev3bd653c2008-10-08 10:54:51 -07003434 IP6_INC_STATS(dev_net(dst->dev), ip6_dst_idev(dst),
3435 ipstats_mib_noroutes);
YOSHIFUJI Hideaki612f09e2007-04-13 16:18:02 -07003436 break;
3437 }
Alexey Dobriyan3ffe5332010-02-18 08:25:24 +00003438 icmpv6_send(skb, ICMPV6_DEST_UNREACH, code, 0);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003439 kfree_skb(skb);
3440 return 0;
3441}
3442
Thomas Graf9ce8ade2006-10-18 20:46:54 -07003443static int ip6_pkt_discard(struct sk_buff *skb)
3444{
YOSHIFUJI Hideaki612f09e2007-04-13 16:18:02 -07003445 return ip6_pkt_drop(skb, ICMPV6_NOROUTE, IPSTATS_MIB_INNOROUTES);
Thomas Graf9ce8ade2006-10-18 20:46:54 -07003446}
3447
Eric W. Biedermanede20592015-10-07 16:48:47 -05003448static int ip6_pkt_discard_out(struct net *net, struct sock *sk, struct sk_buff *skb)
Linus Torvalds1da177e2005-04-16 15:20:36 -07003449{
Eric Dumazetadf30902009-06-02 05:19:30 +00003450 skb->dev = skb_dst(skb)->dev;
YOSHIFUJI Hideaki612f09e2007-04-13 16:18:02 -07003451 return ip6_pkt_drop(skb, ICMPV6_NOROUTE, IPSTATS_MIB_OUTNOROUTES);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003452}
3453
Thomas Graf9ce8ade2006-10-18 20:46:54 -07003454static int ip6_pkt_prohibit(struct sk_buff *skb)
3455{
YOSHIFUJI Hideaki612f09e2007-04-13 16:18:02 -07003456 return ip6_pkt_drop(skb, ICMPV6_ADM_PROHIBITED, IPSTATS_MIB_INNOROUTES);
Thomas Graf9ce8ade2006-10-18 20:46:54 -07003457}
3458
Eric W. Biedermanede20592015-10-07 16:48:47 -05003459static int ip6_pkt_prohibit_out(struct net *net, struct sock *sk, struct sk_buff *skb)
Thomas Graf9ce8ade2006-10-18 20:46:54 -07003460{
Eric Dumazetadf30902009-06-02 05:19:30 +00003461 skb->dev = skb_dst(skb)->dev;
YOSHIFUJI Hideaki612f09e2007-04-13 16:18:02 -07003462 return ip6_pkt_drop(skb, ICMPV6_ADM_PROHIBITED, IPSTATS_MIB_OUTNOROUTES);
Thomas Graf9ce8ade2006-10-18 20:46:54 -07003463}
3464
Linus Torvalds1da177e2005-04-16 15:20:36 -07003465/*
3466 * Allocate a dst for local (unicast / anycast) address.
3467 */
3468
3469struct rt6_info *addrconf_dst_alloc(struct inet6_dev *idev,
3470 const struct in6_addr *addr,
David S. Miller8f031512011-12-06 16:48:14 -05003471 bool anycast)
Linus Torvalds1da177e2005-04-16 15:20:36 -07003472{
David Ahernca254492015-10-12 11:47:10 -07003473 u32 tb_id;
YOSHIFUJI Hideakic346dca2008-03-25 21:47:49 +09003474 struct net *net = dev_net(idev->dev);
David Ahern4832c302017-08-17 12:17:20 -07003475 struct net_device *dev = idev->dev;
David Ahern5f02ce242016-09-10 12:09:54 -07003476 struct rt6_info *rt;
3477
David Ahern5f02ce242016-09-10 12:09:54 -07003478 rt = ip6_dst_alloc(net, dev, DST_NOCOUNT);
Hannes Frederic Sowaa3300ef2013-12-07 03:33:45 +01003479 if (!rt)
Linus Torvalds1da177e2005-04-16 15:20:36 -07003480 return ERR_PTR(-ENOMEM);
3481
Linus Torvalds1da177e2005-04-16 15:20:36 -07003482 in6_dev_hold(idev);
3483
David S. Miller11d53b42011-06-24 15:23:34 -07003484 rt->dst.flags |= DST_HOST;
Changli Gaod8d1f302010-06-10 23:31:35 -07003485 rt->dst.input = ip6_input;
3486 rt->dst.output = ip6_output;
Linus Torvalds1da177e2005-04-16 15:20:36 -07003487 rt->rt6i_idev = idev;
Linus Torvalds1da177e2005-04-16 15:20:36 -07003488
David Ahern94b5e0f2017-02-02 08:52:21 -08003489 rt->rt6i_protocol = RTPROT_KERNEL;
Linus Torvalds1da177e2005-04-16 15:20:36 -07003490 rt->rt6i_flags = RTF_UP | RTF_NONEXTHOP;
YOSHIFUJI Hideaki58c4fb82005-12-21 22:56:42 +09003491 if (anycast)
3492 rt->rt6i_flags |= RTF_ANYCAST;
3493 else
Linus Torvalds1da177e2005-04-16 15:20:36 -07003494 rt->rt6i_flags |= RTF_LOCAL;
Linus Torvalds1da177e2005-04-16 15:20:36 -07003495
Julian Anastasov550bab42013-10-20 15:43:04 +03003496 rt->rt6i_gateway = *addr;
Alexey Dobriyan4e3fd7a2011-11-21 03:39:03 +00003497 rt->rt6i_dst.addr = *addr;
Linus Torvalds1da177e2005-04-16 15:20:36 -07003498 rt->rt6i_dst.plen = 128;
David Ahernca254492015-10-12 11:47:10 -07003499 tb_id = l3mdev_fib_table(idev->dev) ? : RT6_TABLE_LOCAL;
3500 rt->rt6i_table = fib6_get_table(net, tb_id);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003501
Linus Torvalds1da177e2005-04-16 15:20:36 -07003502 return rt;
3503}
3504
Daniel Walterc3968a82011-04-13 21:10:57 +00003505/* remove deleted ip from prefsrc entries */
3506struct arg_dev_net_ip {
3507 struct net_device *dev;
3508 struct net *net;
3509 struct in6_addr *addr;
3510};
3511
3512static int fib6_remove_prefsrc(struct rt6_info *rt, void *arg)
3513{
3514 struct net_device *dev = ((struct arg_dev_net_ip *)arg)->dev;
3515 struct net *net = ((struct arg_dev_net_ip *)arg)->net;
3516 struct in6_addr *addr = ((struct arg_dev_net_ip *)arg)->addr;
3517
David S. Millerd1918542011-12-28 20:19:20 -05003518 if (((void *)rt->dst.dev == dev || !dev) &&
Daniel Walterc3968a82011-04-13 21:10:57 +00003519 rt != net->ipv6.ip6_null_entry &&
3520 ipv6_addr_equal(addr, &rt->rt6i_prefsrc.addr)) {
Wei Wang60006a42017-10-06 12:05:58 -07003521 spin_lock_bh(&rt6_exception_lock);
Daniel Walterc3968a82011-04-13 21:10:57 +00003522 /* remove prefsrc entry */
3523 rt->rt6i_prefsrc.plen = 0;
Wei Wang60006a42017-10-06 12:05:58 -07003524 /* need to update cache as well */
3525 rt6_exceptions_remove_prefsrc(rt);
3526 spin_unlock_bh(&rt6_exception_lock);
Daniel Walterc3968a82011-04-13 21:10:57 +00003527 }
3528 return 0;
3529}
3530
3531void rt6_remove_prefsrc(struct inet6_ifaddr *ifp)
3532{
3533 struct net *net = dev_net(ifp->idev->dev);
3534 struct arg_dev_net_ip adni = {
3535 .dev = ifp->idev->dev,
3536 .net = net,
3537 .addr = &ifp->addr,
3538 };
Li RongQing0c3584d2013-12-27 16:32:38 +08003539 fib6_clean_all(net, fib6_remove_prefsrc, &adni);
Daniel Walterc3968a82011-04-13 21:10:57 +00003540}
3541
Duan Jiongbe7a0102014-05-15 15:56:14 +08003542#define RTF_RA_ROUTER (RTF_ADDRCONF | RTF_DEFAULT | RTF_GATEWAY)
Duan Jiongbe7a0102014-05-15 15:56:14 +08003543
3544/* Remove routers and update dst entries when gateway turn into host. */
3545static int fib6_clean_tohost(struct rt6_info *rt, void *arg)
3546{
3547 struct in6_addr *gateway = (struct in6_addr *)arg;
3548
Wei Wang2b760fc2017-10-06 12:06:03 -07003549 if (((rt->rt6i_flags & RTF_RA_ROUTER) == RTF_RA_ROUTER) &&
3550 ipv6_addr_equal(gateway, &rt->rt6i_gateway)) {
Duan Jiongbe7a0102014-05-15 15:56:14 +08003551 return -1;
3552 }
Wei Wangb16cb452017-10-06 12:06:00 -07003553
3554 /* Further clean up cached routes in exception table.
3555 * This is needed because cached route may have a different
3556 * gateway than its 'parent' in the case of an ip redirect.
3557 */
3558 rt6_exceptions_clean_tohost(rt, gateway);
3559
Duan Jiongbe7a0102014-05-15 15:56:14 +08003560 return 0;
3561}
3562
3563void rt6_clean_tohost(struct net *net, struct in6_addr *gateway)
3564{
3565 fib6_clean_all(net, fib6_clean_tohost, gateway);
3566}
3567
Ido Schimmel2127d952018-01-07 12:45:03 +02003568struct arg_netdev_event {
3569 const struct net_device *dev;
Ido Schimmel4c981e22018-01-07 12:45:04 +02003570 union {
3571 unsigned int nh_flags;
3572 unsigned long event;
3573 };
Ido Schimmel2127d952018-01-07 12:45:03 +02003574};
3575
Ido Schimmeld7dedee2018-01-09 16:40:25 +02003576static struct rt6_info *rt6_multipath_first_sibling(const struct rt6_info *rt)
3577{
3578 struct rt6_info *iter;
3579 struct fib6_node *fn;
3580
3581 fn = rcu_dereference_protected(rt->rt6i_node,
3582 lockdep_is_held(&rt->rt6i_table->tb6_lock));
3583 iter = rcu_dereference_protected(fn->leaf,
3584 lockdep_is_held(&rt->rt6i_table->tb6_lock));
3585 while (iter) {
3586 if (iter->rt6i_metric == rt->rt6i_metric &&
3587 rt6_qualify_for_ecmp(iter))
3588 return iter;
3589 iter = rcu_dereference_protected(iter->rt6_next,
3590 lockdep_is_held(&rt->rt6i_table->tb6_lock));
3591 }
3592
3593 return NULL;
3594}
3595
3596static bool rt6_is_dead(const struct rt6_info *rt)
3597{
3598 if (rt->rt6i_nh_flags & RTNH_F_DEAD ||
3599 (rt->rt6i_nh_flags & RTNH_F_LINKDOWN &&
3600 rt->rt6i_idev->cnf.ignore_routes_with_linkdown))
3601 return true;
3602
3603 return false;
3604}
3605
3606static int rt6_multipath_total_weight(const struct rt6_info *rt)
3607{
3608 struct rt6_info *iter;
3609 int total = 0;
3610
3611 if (!rt6_is_dead(rt))
Ido Schimmel398958a2018-01-09 16:40:28 +02003612 total += rt->rt6i_nh_weight;
Ido Schimmeld7dedee2018-01-09 16:40:25 +02003613
3614 list_for_each_entry(iter, &rt->rt6i_siblings, rt6i_siblings) {
3615 if (!rt6_is_dead(iter))
Ido Schimmel398958a2018-01-09 16:40:28 +02003616 total += iter->rt6i_nh_weight;
Ido Schimmeld7dedee2018-01-09 16:40:25 +02003617 }
3618
3619 return total;
3620}
3621
3622static void rt6_upper_bound_set(struct rt6_info *rt, int *weight, int total)
3623{
3624 int upper_bound = -1;
3625
3626 if (!rt6_is_dead(rt)) {
Ido Schimmel398958a2018-01-09 16:40:28 +02003627 *weight += rt->rt6i_nh_weight;
Ido Schimmeld7dedee2018-01-09 16:40:25 +02003628 upper_bound = DIV_ROUND_CLOSEST_ULL((u64) (*weight) << 31,
3629 total) - 1;
3630 }
3631 atomic_set(&rt->rt6i_nh_upper_bound, upper_bound);
3632}
3633
3634static void rt6_multipath_upper_bound_set(struct rt6_info *rt, int total)
3635{
3636 struct rt6_info *iter;
3637 int weight = 0;
3638
3639 rt6_upper_bound_set(rt, &weight, total);
3640
3641 list_for_each_entry(iter, &rt->rt6i_siblings, rt6i_siblings)
3642 rt6_upper_bound_set(iter, &weight, total);
3643}
3644
3645void rt6_multipath_rebalance(struct rt6_info *rt)
3646{
3647 struct rt6_info *first;
3648 int total;
3649
3650 /* In case the entire multipath route was marked for flushing,
3651 * then there is no need to rebalance upon the removal of every
3652 * sibling route.
3653 */
3654 if (!rt->rt6i_nsiblings || rt->should_flush)
3655 return;
3656
3657 /* During lookup routes are evaluated in order, so we need to
3658 * make sure upper bounds are assigned from the first sibling
3659 * onwards.
3660 */
3661 first = rt6_multipath_first_sibling(rt);
3662 if (WARN_ON_ONCE(!first))
3663 return;
3664
3665 total = rt6_multipath_total_weight(first);
3666 rt6_multipath_upper_bound_set(first, total);
3667}
3668
Ido Schimmel2127d952018-01-07 12:45:03 +02003669static int fib6_ifup(struct rt6_info *rt, void *p_arg)
3670{
3671 const struct arg_netdev_event *arg = p_arg;
3672 const struct net *net = dev_net(arg->dev);
3673
Ido Schimmel1de178e2018-01-07 12:45:15 +02003674 if (rt != net->ipv6.ip6_null_entry && rt->dst.dev == arg->dev) {
Ido Schimmel2127d952018-01-07 12:45:03 +02003675 rt->rt6i_nh_flags &= ~arg->nh_flags;
Ido Schimmel1de178e2018-01-07 12:45:15 +02003676 fib6_update_sernum_upto_root(dev_net(rt->dst.dev), rt);
Ido Schimmeld7dedee2018-01-09 16:40:25 +02003677 rt6_multipath_rebalance(rt);
Ido Schimmel1de178e2018-01-07 12:45:15 +02003678 }
Ido Schimmel2127d952018-01-07 12:45:03 +02003679
3680 return 0;
3681}
3682
3683void rt6_sync_up(struct net_device *dev, unsigned int nh_flags)
3684{
3685 struct arg_netdev_event arg = {
3686 .dev = dev,
Ido Schimmel6802f3a2018-01-12 22:07:36 +02003687 {
3688 .nh_flags = nh_flags,
3689 },
Ido Schimmel2127d952018-01-07 12:45:03 +02003690 };
3691
3692 if (nh_flags & RTNH_F_DEAD && netif_carrier_ok(dev))
3693 arg.nh_flags |= RTNH_F_LINKDOWN;
3694
3695 fib6_clean_all(dev_net(dev), fib6_ifup, &arg);
3696}
3697
Ido Schimmel1de178e2018-01-07 12:45:15 +02003698static bool rt6_multipath_uses_dev(const struct rt6_info *rt,
3699 const struct net_device *dev)
3700{
3701 struct rt6_info *iter;
3702
3703 if (rt->dst.dev == dev)
3704 return true;
3705 list_for_each_entry(iter, &rt->rt6i_siblings, rt6i_siblings)
3706 if (iter->dst.dev == dev)
3707 return true;
3708
3709 return false;
3710}
3711
3712static void rt6_multipath_flush(struct rt6_info *rt)
3713{
3714 struct rt6_info *iter;
3715
3716 rt->should_flush = 1;
3717 list_for_each_entry(iter, &rt->rt6i_siblings, rt6i_siblings)
3718 iter->should_flush = 1;
3719}
3720
3721static unsigned int rt6_multipath_dead_count(const struct rt6_info *rt,
3722 const struct net_device *down_dev)
3723{
3724 struct rt6_info *iter;
3725 unsigned int dead = 0;
3726
3727 if (rt->dst.dev == down_dev || rt->rt6i_nh_flags & RTNH_F_DEAD)
3728 dead++;
3729 list_for_each_entry(iter, &rt->rt6i_siblings, rt6i_siblings)
3730 if (iter->dst.dev == down_dev ||
3731 iter->rt6i_nh_flags & RTNH_F_DEAD)
3732 dead++;
3733
3734 return dead;
3735}
3736
3737static void rt6_multipath_nh_flags_set(struct rt6_info *rt,
3738 const struct net_device *dev,
3739 unsigned int nh_flags)
3740{
3741 struct rt6_info *iter;
3742
3743 if (rt->dst.dev == dev)
3744 rt->rt6i_nh_flags |= nh_flags;
3745 list_for_each_entry(iter, &rt->rt6i_siblings, rt6i_siblings)
3746 if (iter->dst.dev == dev)
3747 iter->rt6i_nh_flags |= nh_flags;
3748}
3749
David Aherna1a22c12017-01-18 07:40:36 -08003750/* called with write lock held for table with rt */
Ido Schimmel4c981e22018-01-07 12:45:04 +02003751static int fib6_ifdown(struct rt6_info *rt, void *p_arg)
Linus Torvalds1da177e2005-04-16 15:20:36 -07003752{
Ido Schimmel4c981e22018-01-07 12:45:04 +02003753 const struct arg_netdev_event *arg = p_arg;
3754 const struct net_device *dev = arg->dev;
3755 const struct net *net = dev_net(dev);
Daniel Lezcano8ed67782008-03-04 13:48:30 -08003756
Ido Schimmel1de178e2018-01-07 12:45:15 +02003757 if (rt == net->ipv6.ip6_null_entry)
Ido Schimmel27c6fa72018-01-07 12:45:05 +02003758 return 0;
3759
3760 switch (arg->event) {
3761 case NETDEV_UNREGISTER:
Ido Schimmel1de178e2018-01-07 12:45:15 +02003762 return rt->dst.dev == dev ? -1 : 0;
Ido Schimmel27c6fa72018-01-07 12:45:05 +02003763 case NETDEV_DOWN:
Ido Schimmel1de178e2018-01-07 12:45:15 +02003764 if (rt->should_flush)
Ido Schimmel27c6fa72018-01-07 12:45:05 +02003765 return -1;
Ido Schimmel1de178e2018-01-07 12:45:15 +02003766 if (!rt->rt6i_nsiblings)
3767 return rt->dst.dev == dev ? -1 : 0;
3768 if (rt6_multipath_uses_dev(rt, dev)) {
3769 unsigned int count;
3770
3771 count = rt6_multipath_dead_count(rt, dev);
3772 if (rt->rt6i_nsiblings + 1 == count) {
3773 rt6_multipath_flush(rt);
3774 return -1;
3775 }
3776 rt6_multipath_nh_flags_set(rt, dev, RTNH_F_DEAD |
3777 RTNH_F_LINKDOWN);
3778 fib6_update_sernum(rt);
Ido Schimmeld7dedee2018-01-09 16:40:25 +02003779 rt6_multipath_rebalance(rt);
Ido Schimmel1de178e2018-01-07 12:45:15 +02003780 }
3781 return -2;
Ido Schimmel27c6fa72018-01-07 12:45:05 +02003782 case NETDEV_CHANGE:
Ido Schimmel1de178e2018-01-07 12:45:15 +02003783 if (rt->dst.dev != dev ||
3784 rt->rt6i_flags & (RTF_LOCAL | RTF_ANYCAST))
Ido Schimmel27c6fa72018-01-07 12:45:05 +02003785 break;
3786 rt->rt6i_nh_flags |= RTNH_F_LINKDOWN;
Ido Schimmeld7dedee2018-01-09 16:40:25 +02003787 rt6_multipath_rebalance(rt);
Ido Schimmel27c6fa72018-01-07 12:45:05 +02003788 break;
Ido Schimmel2b241362018-01-07 12:45:02 +02003789 }
David S. Millerc159d302011-12-26 15:24:36 -05003790
Linus Torvalds1da177e2005-04-16 15:20:36 -07003791 return 0;
3792}
3793
Ido Schimmel27c6fa72018-01-07 12:45:05 +02003794void rt6_sync_down_dev(struct net_device *dev, unsigned long event)
Linus Torvalds1da177e2005-04-16 15:20:36 -07003795{
Ido Schimmel4c981e22018-01-07 12:45:04 +02003796 struct arg_netdev_event arg = {
Daniel Lezcano8ed67782008-03-04 13:48:30 -08003797 .dev = dev,
Ido Schimmel6802f3a2018-01-12 22:07:36 +02003798 {
3799 .event = event,
3800 },
Daniel Lezcano8ed67782008-03-04 13:48:30 -08003801 };
3802
Ido Schimmel4c981e22018-01-07 12:45:04 +02003803 fib6_clean_all(dev_net(dev), fib6_ifdown, &arg);
3804}
3805
3806void rt6_disable_ip(struct net_device *dev, unsigned long event)
3807{
3808 rt6_sync_down_dev(dev, event);
3809 rt6_uncached_list_flush_dev(dev_net(dev), dev);
3810 neigh_ifdown(&nd_tbl, dev);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003811}
3812
Eric Dumazet95c96172012-04-15 05:58:06 +00003813struct rt6_mtu_change_arg {
Linus Torvalds1da177e2005-04-16 15:20:36 -07003814 struct net_device *dev;
Eric Dumazet95c96172012-04-15 05:58:06 +00003815 unsigned int mtu;
Linus Torvalds1da177e2005-04-16 15:20:36 -07003816};
3817
3818static int rt6_mtu_change_route(struct rt6_info *rt, void *p_arg)
3819{
3820 struct rt6_mtu_change_arg *arg = (struct rt6_mtu_change_arg *) p_arg;
3821 struct inet6_dev *idev;
3822
3823 /* In IPv6 pmtu discovery is not optional,
3824 so that RTAX_MTU lock cannot disable it.
3825 We still use this lock to block changes
3826 caused by addrconf/ndisc.
3827 */
3828
3829 idev = __in6_dev_get(arg->dev);
David S. Miller38308472011-12-03 18:02:47 -05003830 if (!idev)
Linus Torvalds1da177e2005-04-16 15:20:36 -07003831 return 0;
3832
3833 /* For administrative MTU increase, there is no way to discover
3834 IPv6 PMTU increase, so PMTU increase should be updated here.
3835 Since RFC 1981 doesn't include administrative MTU increase
3836 update PMTU increase is a MUST. (i.e. jumbo frame)
3837 */
David S. Millerd1918542011-12-28 20:19:20 -05003838 if (rt->dst.dev == arg->dev &&
Martin KaFai Lau4b32b5a2015-04-28 13:03:06 -07003839 !dst_metric_locked(&rt->dst, RTAX_MTU)) {
Wei Wangf5bbe7e2017-10-06 12:05:59 -07003840 spin_lock_bh(&rt6_exception_lock);
Stefano Brivioe9fa1492018-03-06 11:10:19 +01003841 if (dst_metric_raw(&rt->dst, RTAX_MTU) &&
3842 rt6_mtu_change_route_allowed(idev, rt, arg->mtu))
Martin KaFai Lau4b32b5a2015-04-28 13:03:06 -07003843 dst_metric_set(&rt->dst, RTAX_MTU, arg->mtu);
Stefano Brivioe9fa1492018-03-06 11:10:19 +01003844 rt6_exceptions_update_pmtu(idev, rt, arg->mtu);
Wei Wangf5bbe7e2017-10-06 12:05:59 -07003845 spin_unlock_bh(&rt6_exception_lock);
Simon Arlott566cfd82007-07-26 00:09:55 -07003846 }
Linus Torvalds1da177e2005-04-16 15:20:36 -07003847 return 0;
3848}
3849
Eric Dumazet95c96172012-04-15 05:58:06 +00003850void rt6_mtu_change(struct net_device *dev, unsigned int mtu)
Linus Torvalds1da177e2005-04-16 15:20:36 -07003851{
Thomas Grafc71099a2006-08-04 23:20:06 -07003852 struct rt6_mtu_change_arg arg = {
3853 .dev = dev,
3854 .mtu = mtu,
3855 };
Linus Torvalds1da177e2005-04-16 15:20:36 -07003856
Li RongQing0c3584d2013-12-27 16:32:38 +08003857 fib6_clean_all(dev_net(dev), rt6_mtu_change_route, &arg);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003858}
3859
Patrick McHardyef7c79e2007-06-05 12:38:30 -07003860static const struct nla_policy rtm_ipv6_policy[RTA_MAX+1] = {
Thomas Graf5176f912006-08-26 20:13:18 -07003861 [RTA_GATEWAY] = { .len = sizeof(struct in6_addr) },
Thomas Graf86872cb2006-08-22 00:01:08 -07003862 [RTA_OIF] = { .type = NLA_U32 },
Thomas Grafab364a62006-08-22 00:01:47 -07003863 [RTA_IIF] = { .type = NLA_U32 },
Thomas Graf86872cb2006-08-22 00:01:08 -07003864 [RTA_PRIORITY] = { .type = NLA_U32 },
3865 [RTA_METRICS] = { .type = NLA_NESTED },
Nicolas Dichtel51ebd312012-10-22 03:42:09 +00003866 [RTA_MULTIPATH] = { .len = sizeof(struct rtnexthop) },
Lubomir Rintelc78ba6d2015-03-11 15:39:21 +01003867 [RTA_PREF] = { .type = NLA_U8 },
Roopa Prabhu19e42e42015-07-21 10:43:48 +02003868 [RTA_ENCAP_TYPE] = { .type = NLA_U16 },
3869 [RTA_ENCAP] = { .type = NLA_NESTED },
Xin Long32bc2012015-12-16 17:50:11 +08003870 [RTA_EXPIRES] = { .type = NLA_U32 },
Lorenzo Colitti622ec2c2016-11-04 02:23:42 +09003871 [RTA_UID] = { .type = NLA_U32 },
Liping Zhang3b45a412017-02-27 20:59:39 +08003872 [RTA_MARK] = { .type = NLA_U32 },
Thomas Graf86872cb2006-08-22 00:01:08 -07003873};
3874
3875static int rtm_to_fib6_config(struct sk_buff *skb, struct nlmsghdr *nlh,
David Ahern333c4302017-05-21 10:12:04 -06003876 struct fib6_config *cfg,
3877 struct netlink_ext_ack *extack)
Linus Torvalds1da177e2005-04-16 15:20:36 -07003878{
Thomas Graf86872cb2006-08-22 00:01:08 -07003879 struct rtmsg *rtm;
3880 struct nlattr *tb[RTA_MAX+1];
Lubomir Rintelc78ba6d2015-03-11 15:39:21 +01003881 unsigned int pref;
Thomas Graf86872cb2006-08-22 00:01:08 -07003882 int err;
Linus Torvalds1da177e2005-04-16 15:20:36 -07003883
Johannes Bergfceb6432017-04-12 14:34:07 +02003884 err = nlmsg_parse(nlh, sizeof(*rtm), tb, RTA_MAX, rtm_ipv6_policy,
3885 NULL);
Thomas Graf86872cb2006-08-22 00:01:08 -07003886 if (err < 0)
3887 goto errout;
Linus Torvalds1da177e2005-04-16 15:20:36 -07003888
Thomas Graf86872cb2006-08-22 00:01:08 -07003889 err = -EINVAL;
3890 rtm = nlmsg_data(nlh);
3891 memset(cfg, 0, sizeof(*cfg));
3892
3893 cfg->fc_table = rtm->rtm_table;
3894 cfg->fc_dst_len = rtm->rtm_dst_len;
3895 cfg->fc_src_len = rtm->rtm_src_len;
3896 cfg->fc_flags = RTF_UP;
3897 cfg->fc_protocol = rtm->rtm_protocol;
Nicolas Dichtelef2c7d72012-09-05 02:12:42 +00003898 cfg->fc_type = rtm->rtm_type;
Thomas Graf86872cb2006-08-22 00:01:08 -07003899
Nicolas Dichtelef2c7d72012-09-05 02:12:42 +00003900 if (rtm->rtm_type == RTN_UNREACHABLE ||
3901 rtm->rtm_type == RTN_BLACKHOLE ||
Nicolas Dichtelb4949ab2012-09-06 05:53:35 +00003902 rtm->rtm_type == RTN_PROHIBIT ||
3903 rtm->rtm_type == RTN_THROW)
Thomas Graf86872cb2006-08-22 00:01:08 -07003904 cfg->fc_flags |= RTF_REJECT;
3905
Maciej Żenczykowskiab79ad12010-09-27 00:07:02 +00003906 if (rtm->rtm_type == RTN_LOCAL)
3907 cfg->fc_flags |= RTF_LOCAL;
3908
Martin KaFai Lau1f56a01f2015-04-28 13:03:03 -07003909 if (rtm->rtm_flags & RTM_F_CLONED)
3910 cfg->fc_flags |= RTF_CACHE;
3911
David Ahernfc1e64e2018-01-25 16:55:09 -08003912 cfg->fc_flags |= (rtm->rtm_flags & RTNH_F_ONLINK);
3913
Eric W. Biederman15e47302012-09-07 20:12:54 +00003914 cfg->fc_nlinfo.portid = NETLINK_CB(skb).portid;
Thomas Graf86872cb2006-08-22 00:01:08 -07003915 cfg->fc_nlinfo.nlh = nlh;
YOSHIFUJI Hideaki3b1e0a62008-03-26 02:26:21 +09003916 cfg->fc_nlinfo.nl_net = sock_net(skb->sk);
Thomas Graf86872cb2006-08-22 00:01:08 -07003917
3918 if (tb[RTA_GATEWAY]) {
Jiri Benc67b61f62015-03-29 16:59:26 +02003919 cfg->fc_gateway = nla_get_in6_addr(tb[RTA_GATEWAY]);
Thomas Graf86872cb2006-08-22 00:01:08 -07003920 cfg->fc_flags |= RTF_GATEWAY;
Linus Torvalds1da177e2005-04-16 15:20:36 -07003921 }
Thomas Graf86872cb2006-08-22 00:01:08 -07003922
3923 if (tb[RTA_DST]) {
3924 int plen = (rtm->rtm_dst_len + 7) >> 3;
3925
3926 if (nla_len(tb[RTA_DST]) < plen)
3927 goto errout;
3928
3929 nla_memcpy(&cfg->fc_dst, tb[RTA_DST], plen);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003930 }
Thomas Graf86872cb2006-08-22 00:01:08 -07003931
3932 if (tb[RTA_SRC]) {
3933 int plen = (rtm->rtm_src_len + 7) >> 3;
3934
3935 if (nla_len(tb[RTA_SRC]) < plen)
3936 goto errout;
3937
3938 nla_memcpy(&cfg->fc_src, tb[RTA_SRC], plen);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003939 }
Thomas Graf86872cb2006-08-22 00:01:08 -07003940
Daniel Walterc3968a82011-04-13 21:10:57 +00003941 if (tb[RTA_PREFSRC])
Jiri Benc67b61f62015-03-29 16:59:26 +02003942 cfg->fc_prefsrc = nla_get_in6_addr(tb[RTA_PREFSRC]);
Daniel Walterc3968a82011-04-13 21:10:57 +00003943
Thomas Graf86872cb2006-08-22 00:01:08 -07003944 if (tb[RTA_OIF])
3945 cfg->fc_ifindex = nla_get_u32(tb[RTA_OIF]);
3946
3947 if (tb[RTA_PRIORITY])
3948 cfg->fc_metric = nla_get_u32(tb[RTA_PRIORITY]);
3949
3950 if (tb[RTA_METRICS]) {
3951 cfg->fc_mx = nla_data(tb[RTA_METRICS]);
3952 cfg->fc_mx_len = nla_len(tb[RTA_METRICS]);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003953 }
Thomas Graf86872cb2006-08-22 00:01:08 -07003954
3955 if (tb[RTA_TABLE])
3956 cfg->fc_table = nla_get_u32(tb[RTA_TABLE]);
3957
Nicolas Dichtel51ebd312012-10-22 03:42:09 +00003958 if (tb[RTA_MULTIPATH]) {
3959 cfg->fc_mp = nla_data(tb[RTA_MULTIPATH]);
3960 cfg->fc_mp_len = nla_len(tb[RTA_MULTIPATH]);
David Ahern9ed59592017-01-17 14:57:36 -08003961
3962 err = lwtunnel_valid_encap_type_attr(cfg->fc_mp,
David Ahernc255bd62017-05-27 16:19:27 -06003963 cfg->fc_mp_len, extack);
David Ahern9ed59592017-01-17 14:57:36 -08003964 if (err < 0)
3965 goto errout;
Nicolas Dichtel51ebd312012-10-22 03:42:09 +00003966 }
3967
Lubomir Rintelc78ba6d2015-03-11 15:39:21 +01003968 if (tb[RTA_PREF]) {
3969 pref = nla_get_u8(tb[RTA_PREF]);
3970 if (pref != ICMPV6_ROUTER_PREF_LOW &&
3971 pref != ICMPV6_ROUTER_PREF_HIGH)
3972 pref = ICMPV6_ROUTER_PREF_MEDIUM;
3973 cfg->fc_flags |= RTF_PREF(pref);
3974 }
3975
Roopa Prabhu19e42e42015-07-21 10:43:48 +02003976 if (tb[RTA_ENCAP])
3977 cfg->fc_encap = tb[RTA_ENCAP];
3978
David Ahern9ed59592017-01-17 14:57:36 -08003979 if (tb[RTA_ENCAP_TYPE]) {
Roopa Prabhu19e42e42015-07-21 10:43:48 +02003980 cfg->fc_encap_type = nla_get_u16(tb[RTA_ENCAP_TYPE]);
3981
David Ahernc255bd62017-05-27 16:19:27 -06003982 err = lwtunnel_valid_encap_type(cfg->fc_encap_type, extack);
David Ahern9ed59592017-01-17 14:57:36 -08003983 if (err < 0)
3984 goto errout;
3985 }
3986
Xin Long32bc2012015-12-16 17:50:11 +08003987 if (tb[RTA_EXPIRES]) {
3988 unsigned long timeout = addrconf_timeout_fixup(nla_get_u32(tb[RTA_EXPIRES]), HZ);
3989
3990 if (addrconf_finite_timeout(timeout)) {
3991 cfg->fc_expires = jiffies_to_clock_t(timeout * HZ);
3992 cfg->fc_flags |= RTF_EXPIRES;
3993 }
3994 }
3995
Thomas Graf86872cb2006-08-22 00:01:08 -07003996 err = 0;
3997errout:
3998 return err;
Linus Torvalds1da177e2005-04-16 15:20:36 -07003999}
4000
Roopa Prabhu6b9ea5a2015-09-08 10:53:04 -07004001struct rt6_nh {
4002 struct rt6_info *rt6_info;
4003 struct fib6_config r_cfg;
4004 struct mx6_config mxc;
4005 struct list_head next;
4006};
4007
4008static void ip6_print_replace_route_err(struct list_head *rt6_nh_list)
4009{
4010 struct rt6_nh *nh;
4011
4012 list_for_each_entry(nh, rt6_nh_list, next) {
David Ahern7d4d5062017-02-02 12:37:12 -08004013 pr_warn("IPV6: multipath route replace failed (check consistency of installed routes): %pI6c nexthop %pI6c ifi %d\n",
Roopa Prabhu6b9ea5a2015-09-08 10:53:04 -07004014 &nh->r_cfg.fc_dst, &nh->r_cfg.fc_gateway,
4015 nh->r_cfg.fc_ifindex);
4016 }
4017}
4018
4019static int ip6_route_info_append(struct list_head *rt6_nh_list,
4020 struct rt6_info *rt, struct fib6_config *r_cfg)
4021{
4022 struct rt6_nh *nh;
Roopa Prabhu6b9ea5a2015-09-08 10:53:04 -07004023 int err = -EEXIST;
4024
4025 list_for_each_entry(nh, rt6_nh_list, next) {
4026 /* check if rt6_info already exists */
David Ahernf06b7542017-07-05 14:41:46 -06004027 if (rt6_duplicate_nexthop(nh->rt6_info, rt))
Roopa Prabhu6b9ea5a2015-09-08 10:53:04 -07004028 return err;
4029 }
4030
4031 nh = kzalloc(sizeof(*nh), GFP_KERNEL);
4032 if (!nh)
4033 return -ENOMEM;
4034 nh->rt6_info = rt;
4035 err = ip6_convert_metrics(&nh->mxc, r_cfg);
4036 if (err) {
4037 kfree(nh);
4038 return err;
4039 }
4040 memcpy(&nh->r_cfg, r_cfg, sizeof(*r_cfg));
4041 list_add_tail(&nh->next, rt6_nh_list);
4042
4043 return 0;
4044}
4045
David Ahern3b1137f2017-02-02 12:37:10 -08004046static void ip6_route_mpath_notify(struct rt6_info *rt,
4047 struct rt6_info *rt_last,
4048 struct nl_info *info,
4049 __u16 nlflags)
4050{
4051 /* if this is an APPEND route, then rt points to the first route
4052 * inserted and rt_last points to last route inserted. Userspace
4053 * wants a consistent dump of the route which starts at the first
4054 * nexthop. Since sibling routes are always added at the end of
4055 * the list, find the first sibling of the last route appended
4056 */
4057 if ((nlflags & NLM_F_APPEND) && rt_last && rt_last->rt6i_nsiblings) {
4058 rt = list_first_entry(&rt_last->rt6i_siblings,
4059 struct rt6_info,
4060 rt6i_siblings);
4061 }
4062
4063 if (rt)
4064 inet6_rt_notify(RTM_NEWROUTE, rt, info, nlflags);
4065}
4066
David Ahern333c4302017-05-21 10:12:04 -06004067static int ip6_route_multipath_add(struct fib6_config *cfg,
4068 struct netlink_ext_ack *extack)
Nicolas Dichtel51ebd312012-10-22 03:42:09 +00004069{
David Ahern3b1137f2017-02-02 12:37:10 -08004070 struct rt6_info *rt_notif = NULL, *rt_last = NULL;
4071 struct nl_info *info = &cfg->fc_nlinfo;
Nicolas Dichtel51ebd312012-10-22 03:42:09 +00004072 struct fib6_config r_cfg;
4073 struct rtnexthop *rtnh;
Roopa Prabhu6b9ea5a2015-09-08 10:53:04 -07004074 struct rt6_info *rt;
4075 struct rt6_nh *err_nh;
4076 struct rt6_nh *nh, *nh_safe;
David Ahern3b1137f2017-02-02 12:37:10 -08004077 __u16 nlflags;
Nicolas Dichtel51ebd312012-10-22 03:42:09 +00004078 int remaining;
4079 int attrlen;
Roopa Prabhu6b9ea5a2015-09-08 10:53:04 -07004080 int err = 1;
4081 int nhn = 0;
4082 int replace = (cfg->fc_nlinfo.nlh &&
4083 (cfg->fc_nlinfo.nlh->nlmsg_flags & NLM_F_REPLACE));
4084 LIST_HEAD(rt6_nh_list);
Nicolas Dichtel51ebd312012-10-22 03:42:09 +00004085
David Ahern3b1137f2017-02-02 12:37:10 -08004086 nlflags = replace ? NLM_F_REPLACE : NLM_F_CREATE;
4087 if (info->nlh && info->nlh->nlmsg_flags & NLM_F_APPEND)
4088 nlflags |= NLM_F_APPEND;
4089
Michal Kubeček35f1b4e2015-05-18 20:53:55 +02004090 remaining = cfg->fc_mp_len;
Nicolas Dichtel51ebd312012-10-22 03:42:09 +00004091 rtnh = (struct rtnexthop *)cfg->fc_mp;
Nicolas Dichtel51ebd312012-10-22 03:42:09 +00004092
Roopa Prabhu6b9ea5a2015-09-08 10:53:04 -07004093 /* Parse a Multipath Entry and build a list (rt6_nh_list) of
4094 * rt6_info structs per nexthop
4095 */
Nicolas Dichtel51ebd312012-10-22 03:42:09 +00004096 while (rtnh_ok(rtnh, remaining)) {
4097 memcpy(&r_cfg, cfg, sizeof(*cfg));
4098 if (rtnh->rtnh_ifindex)
4099 r_cfg.fc_ifindex = rtnh->rtnh_ifindex;
4100
4101 attrlen = rtnh_attrlen(rtnh);
4102 if (attrlen > 0) {
4103 struct nlattr *nla, *attrs = rtnh_attrs(rtnh);
4104
4105 nla = nla_find(attrs, attrlen, RTA_GATEWAY);
4106 if (nla) {
Jiri Benc67b61f62015-03-29 16:59:26 +02004107 r_cfg.fc_gateway = nla_get_in6_addr(nla);
Nicolas Dichtel51ebd312012-10-22 03:42:09 +00004108 r_cfg.fc_flags |= RTF_GATEWAY;
4109 }
Roopa Prabhu19e42e42015-07-21 10:43:48 +02004110 r_cfg.fc_encap = nla_find(attrs, attrlen, RTA_ENCAP);
4111 nla = nla_find(attrs, attrlen, RTA_ENCAP_TYPE);
4112 if (nla)
4113 r_cfg.fc_encap_type = nla_get_u16(nla);
Nicolas Dichtel51ebd312012-10-22 03:42:09 +00004114 }
Roopa Prabhu6b9ea5a2015-09-08 10:53:04 -07004115
David Ahern68e2ffd2018-03-20 10:06:59 -07004116 r_cfg.fc_flags |= (rtnh->rtnh_flags & RTNH_F_ONLINK);
David Ahern333c4302017-05-21 10:12:04 -06004117 rt = ip6_route_info_create(&r_cfg, extack);
Roopa Prabhu8c5b83f2015-10-10 08:26:36 -07004118 if (IS_ERR(rt)) {
4119 err = PTR_ERR(rt);
4120 rt = NULL;
Roopa Prabhu6b9ea5a2015-09-08 10:53:04 -07004121 goto cleanup;
Roopa Prabhu8c5b83f2015-10-10 08:26:36 -07004122 }
Roopa Prabhu6b9ea5a2015-09-08 10:53:04 -07004123
Ido Schimmel398958a2018-01-09 16:40:28 +02004124 rt->rt6i_nh_weight = rtnh->rtnh_hops + 1;
4125
Roopa Prabhu6b9ea5a2015-09-08 10:53:04 -07004126 err = ip6_route_info_append(&rt6_nh_list, rt, &r_cfg);
Nicolas Dichtel51ebd312012-10-22 03:42:09 +00004127 if (err) {
Wei Wang587fea72017-06-17 10:42:36 -07004128 dst_release_immediate(&rt->dst);
Roopa Prabhu6b9ea5a2015-09-08 10:53:04 -07004129 goto cleanup;
Nicolas Dichtel51ebd312012-10-22 03:42:09 +00004130 }
Roopa Prabhu6b9ea5a2015-09-08 10:53:04 -07004131
4132 rtnh = rtnh_next(rtnh, &remaining);
4133 }
4134
David Ahern3b1137f2017-02-02 12:37:10 -08004135 /* for add and replace send one notification with all nexthops.
4136 * Skip the notification in fib6_add_rt2node and send one with
4137 * the full route when done
4138 */
4139 info->skip_notify = 1;
4140
Roopa Prabhu6b9ea5a2015-09-08 10:53:04 -07004141 err_nh = NULL;
4142 list_for_each_entry(nh, &rt6_nh_list, next) {
David Ahern3b1137f2017-02-02 12:37:10 -08004143 rt_last = nh->rt6_info;
David Ahern333c4302017-05-21 10:12:04 -06004144 err = __ip6_ins_rt(nh->rt6_info, info, &nh->mxc, extack);
David Ahern3b1137f2017-02-02 12:37:10 -08004145 /* save reference to first route for notification */
4146 if (!rt_notif && !err)
4147 rt_notif = nh->rt6_info;
4148
Roopa Prabhu6b9ea5a2015-09-08 10:53:04 -07004149 /* nh->rt6_info is used or freed at this point, reset to NULL*/
4150 nh->rt6_info = NULL;
4151 if (err) {
4152 if (replace && nhn)
4153 ip6_print_replace_route_err(&rt6_nh_list);
4154 err_nh = nh;
4155 goto add_errout;
4156 }
4157
Nicolas Dichtel1a724182012-11-01 22:58:22 +00004158 /* Because each route is added like a single route we remove
Michal Kubeček27596472015-05-18 20:54:00 +02004159 * these flags after the first nexthop: if there is a collision,
4160 * we have already failed to add the first nexthop:
4161 * fib6_add_rt2node() has rejected it; when replacing, old
4162 * nexthops have been replaced by first new, the rest should
4163 * be added to it.
Nicolas Dichtel1a724182012-11-01 22:58:22 +00004164 */
Michal Kubeček27596472015-05-18 20:54:00 +02004165 cfg->fc_nlinfo.nlh->nlmsg_flags &= ~(NLM_F_EXCL |
4166 NLM_F_REPLACE);
Roopa Prabhu6b9ea5a2015-09-08 10:53:04 -07004167 nhn++;
4168 }
4169
David Ahern3b1137f2017-02-02 12:37:10 -08004170 /* success ... tell user about new route */
4171 ip6_route_mpath_notify(rt_notif, rt_last, info, nlflags);
Roopa Prabhu6b9ea5a2015-09-08 10:53:04 -07004172 goto cleanup;
4173
4174add_errout:
David Ahern3b1137f2017-02-02 12:37:10 -08004175 /* send notification for routes that were added so that
4176 * the delete notifications sent by ip6_route_del are
4177 * coherent
4178 */
4179 if (rt_notif)
4180 ip6_route_mpath_notify(rt_notif, rt_last, info, nlflags);
4181
Roopa Prabhu6b9ea5a2015-09-08 10:53:04 -07004182 /* Delete routes that were already added */
4183 list_for_each_entry(nh, &rt6_nh_list, next) {
4184 if (err_nh == nh)
4185 break;
David Ahern333c4302017-05-21 10:12:04 -06004186 ip6_route_del(&nh->r_cfg, extack);
Roopa Prabhu6b9ea5a2015-09-08 10:53:04 -07004187 }
4188
4189cleanup:
4190 list_for_each_entry_safe(nh, nh_safe, &rt6_nh_list, next) {
Wei Wang587fea72017-06-17 10:42:36 -07004191 if (nh->rt6_info)
4192 dst_release_immediate(&nh->rt6_info->dst);
Wu Fengguang52fe51f2015-09-10 06:57:12 +08004193 kfree(nh->mxc.mx);
Roopa Prabhu6b9ea5a2015-09-08 10:53:04 -07004194 list_del(&nh->next);
4195 kfree(nh);
4196 }
4197
4198 return err;
4199}
4200
David Ahern333c4302017-05-21 10:12:04 -06004201static int ip6_route_multipath_del(struct fib6_config *cfg,
4202 struct netlink_ext_ack *extack)
Roopa Prabhu6b9ea5a2015-09-08 10:53:04 -07004203{
4204 struct fib6_config r_cfg;
4205 struct rtnexthop *rtnh;
4206 int remaining;
4207 int attrlen;
4208 int err = 1, last_err = 0;
4209
4210 remaining = cfg->fc_mp_len;
4211 rtnh = (struct rtnexthop *)cfg->fc_mp;
4212
4213 /* Parse a Multipath Entry */
4214 while (rtnh_ok(rtnh, remaining)) {
4215 memcpy(&r_cfg, cfg, sizeof(*cfg));
4216 if (rtnh->rtnh_ifindex)
4217 r_cfg.fc_ifindex = rtnh->rtnh_ifindex;
4218
4219 attrlen = rtnh_attrlen(rtnh);
4220 if (attrlen > 0) {
4221 struct nlattr *nla, *attrs = rtnh_attrs(rtnh);
4222
4223 nla = nla_find(attrs, attrlen, RTA_GATEWAY);
4224 if (nla) {
4225 nla_memcpy(&r_cfg.fc_gateway, nla, 16);
4226 r_cfg.fc_flags |= RTF_GATEWAY;
4227 }
4228 }
David Ahern333c4302017-05-21 10:12:04 -06004229 err = ip6_route_del(&r_cfg, extack);
Roopa Prabhu6b9ea5a2015-09-08 10:53:04 -07004230 if (err)
4231 last_err = err;
4232
Nicolas Dichtel51ebd312012-10-22 03:42:09 +00004233 rtnh = rtnh_next(rtnh, &remaining);
4234 }
4235
4236 return last_err;
4237}
4238
David Ahernc21ef3e2017-04-16 09:48:24 -07004239static int inet6_rtm_delroute(struct sk_buff *skb, struct nlmsghdr *nlh,
4240 struct netlink_ext_ack *extack)
Linus Torvalds1da177e2005-04-16 15:20:36 -07004241{
Thomas Graf86872cb2006-08-22 00:01:08 -07004242 struct fib6_config cfg;
4243 int err;
Linus Torvalds1da177e2005-04-16 15:20:36 -07004244
David Ahern333c4302017-05-21 10:12:04 -06004245 err = rtm_to_fib6_config(skb, nlh, &cfg, extack);
Thomas Graf86872cb2006-08-22 00:01:08 -07004246 if (err < 0)
4247 return err;
4248
Nicolas Dichtel51ebd312012-10-22 03:42:09 +00004249 if (cfg.fc_mp)
David Ahern333c4302017-05-21 10:12:04 -06004250 return ip6_route_multipath_del(&cfg, extack);
David Ahern0ae81332017-02-02 12:37:08 -08004251 else {
4252 cfg.fc_delete_all_nh = 1;
David Ahern333c4302017-05-21 10:12:04 -06004253 return ip6_route_del(&cfg, extack);
David Ahern0ae81332017-02-02 12:37:08 -08004254 }
Linus Torvalds1da177e2005-04-16 15:20:36 -07004255}
4256
David Ahernc21ef3e2017-04-16 09:48:24 -07004257static int inet6_rtm_newroute(struct sk_buff *skb, struct nlmsghdr *nlh,
4258 struct netlink_ext_ack *extack)
Linus Torvalds1da177e2005-04-16 15:20:36 -07004259{
Thomas Graf86872cb2006-08-22 00:01:08 -07004260 struct fib6_config cfg;
4261 int err;
Linus Torvalds1da177e2005-04-16 15:20:36 -07004262
David Ahern333c4302017-05-21 10:12:04 -06004263 err = rtm_to_fib6_config(skb, nlh, &cfg, extack);
Thomas Graf86872cb2006-08-22 00:01:08 -07004264 if (err < 0)
4265 return err;
4266
Nicolas Dichtel51ebd312012-10-22 03:42:09 +00004267 if (cfg.fc_mp)
David Ahern333c4302017-05-21 10:12:04 -06004268 return ip6_route_multipath_add(&cfg, extack);
Nicolas Dichtel51ebd312012-10-22 03:42:09 +00004269 else
David Ahern333c4302017-05-21 10:12:04 -06004270 return ip6_route_add(&cfg, extack);
Linus Torvalds1da177e2005-04-16 15:20:36 -07004271}
4272
David Ahernbeb1afac52017-02-02 12:37:09 -08004273static size_t rt6_nlmsg_size(struct rt6_info *rt)
Thomas Graf339bf982006-11-10 14:10:15 -08004274{
David Ahernbeb1afac52017-02-02 12:37:09 -08004275 int nexthop_len = 0;
4276
4277 if (rt->rt6i_nsiblings) {
4278 nexthop_len = nla_total_size(0) /* RTA_MULTIPATH */
4279 + NLA_ALIGN(sizeof(struct rtnexthop))
4280 + nla_total_size(16) /* RTA_GATEWAY */
David Ahernbeb1afac52017-02-02 12:37:09 -08004281 + lwtunnel_get_encap_size(rt->dst.lwtstate);
4282
4283 nexthop_len *= rt->rt6i_nsiblings;
4284 }
4285
Thomas Graf339bf982006-11-10 14:10:15 -08004286 return NLMSG_ALIGN(sizeof(struct rtmsg))
4287 + nla_total_size(16) /* RTA_SRC */
4288 + nla_total_size(16) /* RTA_DST */
4289 + nla_total_size(16) /* RTA_GATEWAY */
4290 + nla_total_size(16) /* RTA_PREFSRC */
4291 + nla_total_size(4) /* RTA_TABLE */
4292 + nla_total_size(4) /* RTA_IIF */
4293 + nla_total_size(4) /* RTA_OIF */
4294 + nla_total_size(4) /* RTA_PRIORITY */
Noriaki TAKAMIYA6a2b9ce2007-01-23 22:09:41 -08004295 + RTAX_MAX * nla_total_size(4) /* RTA_METRICS */
Daniel Borkmannea697632015-01-05 23:57:47 +01004296 + nla_total_size(sizeof(struct rta_cacheinfo))
Lubomir Rintelc78ba6d2015-03-11 15:39:21 +01004297 + nla_total_size(TCP_CA_NAME_MAX) /* RTAX_CC_ALGO */
Roopa Prabhu19e42e42015-07-21 10:43:48 +02004298 + nla_total_size(1) /* RTA_PREF */
David Ahernbeb1afac52017-02-02 12:37:09 -08004299 + lwtunnel_get_encap_size(rt->dst.lwtstate)
4300 + nexthop_len;
4301}
4302
4303static int rt6_nexthop_info(struct sk_buff *skb, struct rt6_info *rt,
David Ahern5be083c2017-03-06 15:57:31 -08004304 unsigned int *flags, bool skip_oif)
David Ahernbeb1afac52017-02-02 12:37:09 -08004305{
Ido Schimmelf9d882e2018-01-07 12:45:10 +02004306 if (rt->rt6i_nh_flags & RTNH_F_DEAD)
4307 *flags |= RTNH_F_DEAD;
4308
Ido Schimmel44c9f2f2018-01-07 12:45:08 +02004309 if (rt->rt6i_nh_flags & RTNH_F_LINKDOWN) {
David Ahernbeb1afac52017-02-02 12:37:09 -08004310 *flags |= RTNH_F_LINKDOWN;
4311 if (rt->rt6i_idev->cnf.ignore_routes_with_linkdown)
4312 *flags |= RTNH_F_DEAD;
4313 }
4314
4315 if (rt->rt6i_flags & RTF_GATEWAY) {
4316 if (nla_put_in6_addr(skb, RTA_GATEWAY, &rt->rt6i_gateway) < 0)
4317 goto nla_put_failure;
4318 }
4319
David Ahernfc1e64e2018-01-25 16:55:09 -08004320 *flags |= (rt->rt6i_nh_flags & RTNH_F_ONLINK);
Ido Schimmelfe400792017-08-15 09:09:49 +02004321 if (rt->rt6i_nh_flags & RTNH_F_OFFLOAD)
Ido Schimmel61e4d012017-08-03 13:28:20 +02004322 *flags |= RTNH_F_OFFLOAD;
4323
David Ahern5be083c2017-03-06 15:57:31 -08004324 /* not needed for multipath encoding b/c it has a rtnexthop struct */
4325 if (!skip_oif && rt->dst.dev &&
David Ahernbeb1afac52017-02-02 12:37:09 -08004326 nla_put_u32(skb, RTA_OIF, rt->dst.dev->ifindex))
4327 goto nla_put_failure;
4328
4329 if (rt->dst.lwtstate &&
4330 lwtunnel_fill_encap(skb, rt->dst.lwtstate) < 0)
4331 goto nla_put_failure;
4332
4333 return 0;
4334
4335nla_put_failure:
4336 return -EMSGSIZE;
4337}
4338
David Ahern5be083c2017-03-06 15:57:31 -08004339/* add multipath next hop */
David Ahernbeb1afac52017-02-02 12:37:09 -08004340static int rt6_add_nexthop(struct sk_buff *skb, struct rt6_info *rt)
4341{
4342 struct rtnexthop *rtnh;
4343 unsigned int flags = 0;
4344
4345 rtnh = nla_reserve_nohdr(skb, sizeof(*rtnh));
4346 if (!rtnh)
4347 goto nla_put_failure;
4348
Ido Schimmel398958a2018-01-09 16:40:28 +02004349 rtnh->rtnh_hops = rt->rt6i_nh_weight - 1;
David Ahernbeb1afac52017-02-02 12:37:09 -08004350 rtnh->rtnh_ifindex = rt->dst.dev ? rt->dst.dev->ifindex : 0;
4351
David Ahern5be083c2017-03-06 15:57:31 -08004352 if (rt6_nexthop_info(skb, rt, &flags, true) < 0)
David Ahernbeb1afac52017-02-02 12:37:09 -08004353 goto nla_put_failure;
4354
4355 rtnh->rtnh_flags = flags;
4356
4357 /* length of rtnetlink header + attributes */
4358 rtnh->rtnh_len = nlmsg_get_pos(skb) - (void *)rtnh;
4359
4360 return 0;
4361
4362nla_put_failure:
4363 return -EMSGSIZE;
Thomas Graf339bf982006-11-10 14:10:15 -08004364}
4365
Brian Haley191cd582008-08-14 15:33:21 -07004366static int rt6_fill_node(struct net *net,
4367 struct sk_buff *skb, struct rt6_info *rt,
Jamal Hadi Salim0d51aa82005-06-21 13:51:04 -07004368 struct in6_addr *dst, struct in6_addr *src,
Eric W. Biederman15e47302012-09-07 20:12:54 +00004369 int iif, int type, u32 portid, u32 seq,
David Ahernf8cfe2c2017-01-17 15:51:08 -08004370 unsigned int flags)
Linus Torvalds1da177e2005-04-16 15:20:36 -07004371{
Martin KaFai Lau4b32b5a2015-04-28 13:03:06 -07004372 u32 metrics[RTAX_MAX];
Linus Torvalds1da177e2005-04-16 15:20:36 -07004373 struct rtmsg *rtm;
Thomas Graf2d7202b2006-08-22 00:01:27 -07004374 struct nlmsghdr *nlh;
Thomas Grafe3703b32006-11-27 09:27:07 -08004375 long expires;
Patrick McHardy9e762a42006-08-10 23:09:48 -07004376 u32 table;
Linus Torvalds1da177e2005-04-16 15:20:36 -07004377
Eric W. Biederman15e47302012-09-07 20:12:54 +00004378 nlh = nlmsg_put(skb, portid, seq, type, sizeof(*rtm), flags);
David S. Miller38308472011-12-03 18:02:47 -05004379 if (!nlh)
Patrick McHardy26932562007-01-31 23:16:40 -08004380 return -EMSGSIZE;
Thomas Graf2d7202b2006-08-22 00:01:27 -07004381
4382 rtm = nlmsg_data(nlh);
Linus Torvalds1da177e2005-04-16 15:20:36 -07004383 rtm->rtm_family = AF_INET6;
4384 rtm->rtm_dst_len = rt->rt6i_dst.plen;
4385 rtm->rtm_src_len = rt->rt6i_src.plen;
4386 rtm->rtm_tos = 0;
Thomas Grafc71099a2006-08-04 23:20:06 -07004387 if (rt->rt6i_table)
Patrick McHardy9e762a42006-08-10 23:09:48 -07004388 table = rt->rt6i_table->tb6_id;
Thomas Grafc71099a2006-08-04 23:20:06 -07004389 else
Patrick McHardy9e762a42006-08-10 23:09:48 -07004390 table = RT6_TABLE_UNSPEC;
4391 rtm->rtm_table = table;
David S. Millerc78679e2012-04-01 20:27:33 -04004392 if (nla_put_u32(skb, RTA_TABLE, table))
4393 goto nla_put_failure;
Nicolas Dichtelef2c7d72012-09-05 02:12:42 +00004394 if (rt->rt6i_flags & RTF_REJECT) {
4395 switch (rt->dst.error) {
4396 case -EINVAL:
4397 rtm->rtm_type = RTN_BLACKHOLE;
4398 break;
4399 case -EACCES:
4400 rtm->rtm_type = RTN_PROHIBIT;
4401 break;
Nicolas Dichtelb4949ab2012-09-06 05:53:35 +00004402 case -EAGAIN:
4403 rtm->rtm_type = RTN_THROW;
4404 break;
Nicolas Dichtelef2c7d72012-09-05 02:12:42 +00004405 default:
4406 rtm->rtm_type = RTN_UNREACHABLE;
4407 break;
4408 }
4409 }
David S. Miller38308472011-12-03 18:02:47 -05004410 else if (rt->rt6i_flags & RTF_LOCAL)
Maciej Żenczykowskiab79ad12010-09-27 00:07:02 +00004411 rtm->rtm_type = RTN_LOCAL;
David Ahern4ee39732017-03-15 18:14:33 -07004412 else if (rt->rt6i_flags & RTF_ANYCAST)
4413 rtm->rtm_type = RTN_ANYCAST;
David S. Millerd1918542011-12-28 20:19:20 -05004414 else if (rt->dst.dev && (rt->dst.dev->flags & IFF_LOOPBACK))
Linus Torvalds1da177e2005-04-16 15:20:36 -07004415 rtm->rtm_type = RTN_LOCAL;
4416 else
4417 rtm->rtm_type = RTN_UNICAST;
4418 rtm->rtm_flags = 0;
4419 rtm->rtm_scope = RT_SCOPE_UNIVERSE;
4420 rtm->rtm_protocol = rt->rt6i_protocol;
Linus Torvalds1da177e2005-04-16 15:20:36 -07004421
David S. Miller38308472011-12-03 18:02:47 -05004422 if (rt->rt6i_flags & RTF_CACHE)
Linus Torvalds1da177e2005-04-16 15:20:36 -07004423 rtm->rtm_flags |= RTM_F_CLONED;
4424
4425 if (dst) {
Jiri Benc930345e2015-03-29 16:59:25 +02004426 if (nla_put_in6_addr(skb, RTA_DST, dst))
David S. Millerc78679e2012-04-01 20:27:33 -04004427 goto nla_put_failure;
YOSHIFUJI Hideaki1ab14572007-02-09 23:24:49 +09004428 rtm->rtm_dst_len = 128;
Linus Torvalds1da177e2005-04-16 15:20:36 -07004429 } else if (rtm->rtm_dst_len)
Jiri Benc930345e2015-03-29 16:59:25 +02004430 if (nla_put_in6_addr(skb, RTA_DST, &rt->rt6i_dst.addr))
David S. Millerc78679e2012-04-01 20:27:33 -04004431 goto nla_put_failure;
Linus Torvalds1da177e2005-04-16 15:20:36 -07004432#ifdef CONFIG_IPV6_SUBTREES
4433 if (src) {
Jiri Benc930345e2015-03-29 16:59:25 +02004434 if (nla_put_in6_addr(skb, RTA_SRC, src))
David S. Millerc78679e2012-04-01 20:27:33 -04004435 goto nla_put_failure;
YOSHIFUJI Hideaki1ab14572007-02-09 23:24:49 +09004436 rtm->rtm_src_len = 128;
David S. Millerc78679e2012-04-01 20:27:33 -04004437 } else if (rtm->rtm_src_len &&
Jiri Benc930345e2015-03-29 16:59:25 +02004438 nla_put_in6_addr(skb, RTA_SRC, &rt->rt6i_src.addr))
David S. Millerc78679e2012-04-01 20:27:33 -04004439 goto nla_put_failure;
Linus Torvalds1da177e2005-04-16 15:20:36 -07004440#endif
YOSHIFUJI Hideaki7bc570c2008-04-03 09:22:53 +09004441 if (iif) {
4442#ifdef CONFIG_IPV6_MROUTE
4443 if (ipv6_addr_is_multicast(&rt->rt6i_dst.addr)) {
David Ahernfd61c6b2017-01-17 15:51:07 -08004444 int err = ip6mr_get_route(net, skb, rtm, portid);
Nikolay Aleksandrov2cf75072016-09-25 23:08:31 +02004445
David Ahernfd61c6b2017-01-17 15:51:07 -08004446 if (err == 0)
4447 return 0;
4448 if (err < 0)
4449 goto nla_put_failure;
YOSHIFUJI Hideaki7bc570c2008-04-03 09:22:53 +09004450 } else
4451#endif
David S. Millerc78679e2012-04-01 20:27:33 -04004452 if (nla_put_u32(skb, RTA_IIF, iif))
4453 goto nla_put_failure;
YOSHIFUJI Hideaki7bc570c2008-04-03 09:22:53 +09004454 } else if (dst) {
Linus Torvalds1da177e2005-04-16 15:20:36 -07004455 struct in6_addr saddr_buf;
David S. Millerc78679e2012-04-01 20:27:33 -04004456 if (ip6_route_get_saddr(net, rt, dst, 0, &saddr_buf) == 0 &&
Jiri Benc930345e2015-03-29 16:59:25 +02004457 nla_put_in6_addr(skb, RTA_PREFSRC, &saddr_buf))
David S. Millerc78679e2012-04-01 20:27:33 -04004458 goto nla_put_failure;
Linus Torvalds1da177e2005-04-16 15:20:36 -07004459 }
Thomas Graf2d7202b2006-08-22 00:01:27 -07004460
Daniel Walterc3968a82011-04-13 21:10:57 +00004461 if (rt->rt6i_prefsrc.plen) {
4462 struct in6_addr saddr_buf;
Alexey Dobriyan4e3fd7a2011-11-21 03:39:03 +00004463 saddr_buf = rt->rt6i_prefsrc.addr;
Jiri Benc930345e2015-03-29 16:59:25 +02004464 if (nla_put_in6_addr(skb, RTA_PREFSRC, &saddr_buf))
David S. Millerc78679e2012-04-01 20:27:33 -04004465 goto nla_put_failure;
Daniel Walterc3968a82011-04-13 21:10:57 +00004466 }
4467
Martin KaFai Lau4b32b5a2015-04-28 13:03:06 -07004468 memcpy(metrics, dst_metrics_ptr(&rt->dst), sizeof(metrics));
4469 if (rt->rt6i_pmtu)
4470 metrics[RTAX_MTU - 1] = rt->rt6i_pmtu;
4471 if (rtnetlink_put_metrics(skb, metrics) < 0)
Thomas Graf2d7202b2006-08-22 00:01:27 -07004472 goto nla_put_failure;
4473
David S. Millerc78679e2012-04-01 20:27:33 -04004474 if (nla_put_u32(skb, RTA_PRIORITY, rt->rt6i_metric))
4475 goto nla_put_failure;
Li Wei82539472012-07-29 16:01:30 +00004476
David Ahernbeb1afac52017-02-02 12:37:09 -08004477 /* For multipath routes, walk the siblings list and add
4478 * each as a nexthop within RTA_MULTIPATH.
4479 */
4480 if (rt->rt6i_nsiblings) {
4481 struct rt6_info *sibling, *next_sibling;
4482 struct nlattr *mp;
4483
4484 mp = nla_nest_start(skb, RTA_MULTIPATH);
4485 if (!mp)
4486 goto nla_put_failure;
4487
4488 if (rt6_add_nexthop(skb, rt) < 0)
4489 goto nla_put_failure;
4490
4491 list_for_each_entry_safe(sibling, next_sibling,
4492 &rt->rt6i_siblings, rt6i_siblings) {
4493 if (rt6_add_nexthop(skb, sibling) < 0)
4494 goto nla_put_failure;
4495 }
4496
4497 nla_nest_end(skb, mp);
4498 } else {
David Ahern5be083c2017-03-06 15:57:31 -08004499 if (rt6_nexthop_info(skb, rt, &rtm->rtm_flags, false) < 0)
David Ahernbeb1afac52017-02-02 12:37:09 -08004500 goto nla_put_failure;
4501 }
4502
Li Wei82539472012-07-29 16:01:30 +00004503 expires = (rt->rt6i_flags & RTF_EXPIRES) ? rt->dst.expires - jiffies : 0;
YOSHIFUJI Hideaki69cdf8f2008-05-19 16:55:13 -07004504
David S. Miller87a50692012-07-10 05:06:14 -07004505 if (rtnl_put_cacheinfo(skb, &rt->dst, 0, expires, rt->dst.error) < 0)
Thomas Grafe3703b32006-11-27 09:27:07 -08004506 goto nla_put_failure;
Linus Torvalds1da177e2005-04-16 15:20:36 -07004507
Lubomir Rintelc78ba6d2015-03-11 15:39:21 +01004508 if (nla_put_u8(skb, RTA_PREF, IPV6_EXTRACT_PREF(rt->rt6i_flags)))
4509 goto nla_put_failure;
4510
Roopa Prabhu19e42e42015-07-21 10:43:48 +02004511
Johannes Berg053c0952015-01-16 22:09:00 +01004512 nlmsg_end(skb, nlh);
4513 return 0;
Thomas Graf2d7202b2006-08-22 00:01:27 -07004514
4515nla_put_failure:
Patrick McHardy26932562007-01-31 23:16:40 -08004516 nlmsg_cancel(skb, nlh);
4517 return -EMSGSIZE;
Linus Torvalds1da177e2005-04-16 15:20:36 -07004518}
4519
Patrick McHardy1b43af52006-08-10 23:11:17 -07004520int rt6_dump_route(struct rt6_info *rt, void *p_arg)
Linus Torvalds1da177e2005-04-16 15:20:36 -07004521{
4522 struct rt6_rtnl_dump_arg *arg = (struct rt6_rtnl_dump_arg *) p_arg;
David Ahern1f17e2f2017-01-26 13:54:08 -08004523 struct net *net = arg->net;
4524
4525 if (rt == net->ipv6.ip6_null_entry)
4526 return 0;
Linus Torvalds1da177e2005-04-16 15:20:36 -07004527
Thomas Graf2d7202b2006-08-22 00:01:27 -07004528 if (nlmsg_len(arg->cb->nlh) >= sizeof(struct rtmsg)) {
4529 struct rtmsg *rtm = nlmsg_data(arg->cb->nlh);
David Ahernf8cfe2c2017-01-17 15:51:08 -08004530
4531 /* user wants prefix routes only */
4532 if (rtm->rtm_flags & RTM_F_PREFIX &&
4533 !(rt->rt6i_flags & RTF_PREFIX_RT)) {
4534 /* success since this is not a prefix route */
4535 return 1;
4536 }
4537 }
Linus Torvalds1da177e2005-04-16 15:20:36 -07004538
David Ahern1f17e2f2017-01-26 13:54:08 -08004539 return rt6_fill_node(net,
Brian Haley191cd582008-08-14 15:33:21 -07004540 arg->skb, rt, NULL, NULL, 0, RTM_NEWROUTE,
Eric W. Biederman15e47302012-09-07 20:12:54 +00004541 NETLINK_CB(arg->cb->skb).portid, arg->cb->nlh->nlmsg_seq,
David Ahernf8cfe2c2017-01-17 15:51:08 -08004542 NLM_F_MULTI);
Linus Torvalds1da177e2005-04-16 15:20:36 -07004543}
4544
David Ahernc21ef3e2017-04-16 09:48:24 -07004545static int inet6_rtm_getroute(struct sk_buff *in_skb, struct nlmsghdr *nlh,
4546 struct netlink_ext_ack *extack)
Linus Torvalds1da177e2005-04-16 15:20:36 -07004547{
YOSHIFUJI Hideaki3b1e0a62008-03-26 02:26:21 +09004548 struct net *net = sock_net(in_skb->sk);
Thomas Grafab364a62006-08-22 00:01:47 -07004549 struct nlattr *tb[RTA_MAX+1];
Roopa Prabhu18c3a612017-05-25 10:42:40 -07004550 int err, iif = 0, oif = 0;
4551 struct dst_entry *dst;
Linus Torvalds1da177e2005-04-16 15:20:36 -07004552 struct rt6_info *rt;
Thomas Grafab364a62006-08-22 00:01:47 -07004553 struct sk_buff *skb;
4554 struct rtmsg *rtm;
David S. Miller4c9483b2011-03-12 16:22:43 -05004555 struct flowi6 fl6;
Roopa Prabhu18c3a612017-05-25 10:42:40 -07004556 bool fibmatch;
Thomas Grafab364a62006-08-22 00:01:47 -07004557
Johannes Bergfceb6432017-04-12 14:34:07 +02004558 err = nlmsg_parse(nlh, sizeof(*rtm), tb, RTA_MAX, rtm_ipv6_policy,
David Ahernc21ef3e2017-04-16 09:48:24 -07004559 extack);
Thomas Grafab364a62006-08-22 00:01:47 -07004560 if (err < 0)
4561 goto errout;
4562
4563 err = -EINVAL;
David S. Miller4c9483b2011-03-12 16:22:43 -05004564 memset(&fl6, 0, sizeof(fl6));
Hannes Frederic Sowa38b70972016-06-11 20:08:19 +02004565 rtm = nlmsg_data(nlh);
4566 fl6.flowlabel = ip6_make_flowinfo(rtm->rtm_tos, 0);
Roopa Prabhu18c3a612017-05-25 10:42:40 -07004567 fibmatch = !!(rtm->rtm_flags & RTM_F_FIB_MATCH);
Thomas Grafab364a62006-08-22 00:01:47 -07004568
4569 if (tb[RTA_SRC]) {
4570 if (nla_len(tb[RTA_SRC]) < sizeof(struct in6_addr))
4571 goto errout;
4572
Alexey Dobriyan4e3fd7a2011-11-21 03:39:03 +00004573 fl6.saddr = *(struct in6_addr *)nla_data(tb[RTA_SRC]);
Thomas Grafab364a62006-08-22 00:01:47 -07004574 }
4575
4576 if (tb[RTA_DST]) {
4577 if (nla_len(tb[RTA_DST]) < sizeof(struct in6_addr))
4578 goto errout;
4579
Alexey Dobriyan4e3fd7a2011-11-21 03:39:03 +00004580 fl6.daddr = *(struct in6_addr *)nla_data(tb[RTA_DST]);
Thomas Grafab364a62006-08-22 00:01:47 -07004581 }
4582
4583 if (tb[RTA_IIF])
4584 iif = nla_get_u32(tb[RTA_IIF]);
4585
4586 if (tb[RTA_OIF])
Shmulik Ladkani72331bc2012-04-01 04:03:45 +00004587 oif = nla_get_u32(tb[RTA_OIF]);
Thomas Grafab364a62006-08-22 00:01:47 -07004588
Lorenzo Colitti2e47b292014-05-15 16:38:41 -07004589 if (tb[RTA_MARK])
4590 fl6.flowi6_mark = nla_get_u32(tb[RTA_MARK]);
4591
Lorenzo Colitti622ec2c2016-11-04 02:23:42 +09004592 if (tb[RTA_UID])
4593 fl6.flowi6_uid = make_kuid(current_user_ns(),
4594 nla_get_u32(tb[RTA_UID]));
4595 else
4596 fl6.flowi6_uid = iif ? INVALID_UID : current_uid();
4597
Thomas Grafab364a62006-08-22 00:01:47 -07004598 if (iif) {
4599 struct net_device *dev;
Shmulik Ladkani72331bc2012-04-01 04:03:45 +00004600 int flags = 0;
4601
Florian Westphal121622d2017-08-15 16:34:42 +02004602 rcu_read_lock();
4603
4604 dev = dev_get_by_index_rcu(net, iif);
Thomas Grafab364a62006-08-22 00:01:47 -07004605 if (!dev) {
Florian Westphal121622d2017-08-15 16:34:42 +02004606 rcu_read_unlock();
Thomas Grafab364a62006-08-22 00:01:47 -07004607 err = -ENODEV;
4608 goto errout;
4609 }
Shmulik Ladkani72331bc2012-04-01 04:03:45 +00004610
4611 fl6.flowi6_iif = iif;
4612
4613 if (!ipv6_addr_any(&fl6.saddr))
4614 flags |= RT6_LOOKUP_F_HAS_SADDR;
4615
Ido Schimmel58acfd72017-12-20 12:28:25 +02004616 dst = ip6_route_input_lookup(net, dev, &fl6, flags);
Florian Westphal121622d2017-08-15 16:34:42 +02004617
4618 rcu_read_unlock();
Shmulik Ladkani72331bc2012-04-01 04:03:45 +00004619 } else {
4620 fl6.flowi6_oif = oif;
4621
Ido Schimmel58acfd72017-12-20 12:28:25 +02004622 dst = ip6_route_output(net, NULL, &fl6);
Roopa Prabhu18c3a612017-05-25 10:42:40 -07004623 }
4624
Roopa Prabhu18c3a612017-05-25 10:42:40 -07004625
4626 rt = container_of(dst, struct rt6_info, dst);
4627 if (rt->dst.error) {
4628 err = rt->dst.error;
4629 ip6_rt_put(rt);
4630 goto errout;
Thomas Grafab364a62006-08-22 00:01:47 -07004631 }
Linus Torvalds1da177e2005-04-16 15:20:36 -07004632
WANG Cong9d6acb32017-03-01 20:48:39 -08004633 if (rt == net->ipv6.ip6_null_entry) {
4634 err = rt->dst.error;
4635 ip6_rt_put(rt);
4636 goto errout;
4637 }
4638
David S. Millerfba961a2017-12-22 11:16:31 -05004639 if (fibmatch && rt->from) {
4640 struct rt6_info *ort = rt->from;
Ido Schimmel58acfd72017-12-20 12:28:25 +02004641
4642 dst_hold(&ort->dst);
4643 ip6_rt_put(rt);
4644 rt = ort;
4645 }
4646
Linus Torvalds1da177e2005-04-16 15:20:36 -07004647 skb = alloc_skb(NLMSG_GOODSIZE, GFP_KERNEL);
David S. Miller38308472011-12-03 18:02:47 -05004648 if (!skb) {
Amerigo Wang94e187c2012-10-29 00:13:19 +00004649 ip6_rt_put(rt);
Thomas Grafab364a62006-08-22 00:01:47 -07004650 err = -ENOBUFS;
4651 goto errout;
4652 }
Linus Torvalds1da177e2005-04-16 15:20:36 -07004653
Changli Gaod8d1f302010-06-10 23:31:35 -07004654 skb_dst_set(skb, &rt->dst);
Roopa Prabhu18c3a612017-05-25 10:42:40 -07004655 if (fibmatch)
4656 err = rt6_fill_node(net, skb, rt, NULL, NULL, iif,
4657 RTM_NEWROUTE, NETLINK_CB(in_skb).portid,
4658 nlh->nlmsg_seq, 0);
4659 else
4660 err = rt6_fill_node(net, skb, rt, &fl6.daddr, &fl6.saddr, iif,
4661 RTM_NEWROUTE, NETLINK_CB(in_skb).portid,
4662 nlh->nlmsg_seq, 0);
Linus Torvalds1da177e2005-04-16 15:20:36 -07004663 if (err < 0) {
Thomas Grafab364a62006-08-22 00:01:47 -07004664 kfree_skb(skb);
4665 goto errout;
Linus Torvalds1da177e2005-04-16 15:20:36 -07004666 }
4667
Eric W. Biederman15e47302012-09-07 20:12:54 +00004668 err = rtnl_unicast(skb, net, NETLINK_CB(in_skb).portid);
Thomas Grafab364a62006-08-22 00:01:47 -07004669errout:
Linus Torvalds1da177e2005-04-16 15:20:36 -07004670 return err;
Linus Torvalds1da177e2005-04-16 15:20:36 -07004671}
4672
Roopa Prabhu37a1d362015-09-13 10:18:33 -07004673void inet6_rt_notify(int event, struct rt6_info *rt, struct nl_info *info,
4674 unsigned int nlm_flags)
Linus Torvalds1da177e2005-04-16 15:20:36 -07004675{
4676 struct sk_buff *skb;
Daniel Lezcano55786892008-03-04 13:47:47 -08004677 struct net *net = info->nl_net;
Denis V. Lunev528c4ce2007-12-13 09:45:12 -08004678 u32 seq;
4679 int err;
Linus Torvalds1da177e2005-04-16 15:20:36 -07004680
Denis V. Lunev528c4ce2007-12-13 09:45:12 -08004681 err = -ENOBUFS;
David S. Miller38308472011-12-03 18:02:47 -05004682 seq = info->nlh ? info->nlh->nlmsg_seq : 0;
Thomas Graf86872cb2006-08-22 00:01:08 -07004683
Roopa Prabhu19e42e42015-07-21 10:43:48 +02004684 skb = nlmsg_new(rt6_nlmsg_size(rt), gfp_any());
David S. Miller38308472011-12-03 18:02:47 -05004685 if (!skb)
Thomas Graf21713eb2006-08-15 00:35:24 -07004686 goto errout;
4687
Brian Haley191cd582008-08-14 15:33:21 -07004688 err = rt6_fill_node(net, skb, rt, NULL, NULL, 0,
David Ahernf8cfe2c2017-01-17 15:51:08 -08004689 event, info->portid, seq, nlm_flags);
Patrick McHardy26932562007-01-31 23:16:40 -08004690 if (err < 0) {
4691 /* -EMSGSIZE implies BUG in rt6_nlmsg_size() */
4692 WARN_ON(err == -EMSGSIZE);
4693 kfree_skb(skb);
4694 goto errout;
4695 }
Eric W. Biederman15e47302012-09-07 20:12:54 +00004696 rtnl_notify(skb, net, info->portid, RTNLGRP_IPV6_ROUTE,
Pablo Neira Ayuso1ce85fe2009-02-24 23:18:28 -08004697 info->nlh, gfp_any());
4698 return;
Thomas Graf21713eb2006-08-15 00:35:24 -07004699errout:
4700 if (err < 0)
Daniel Lezcano55786892008-03-04 13:47:47 -08004701 rtnl_set_sk_err(net, RTNLGRP_IPV6_ROUTE, err);
Linus Torvalds1da177e2005-04-16 15:20:36 -07004702}
4703
Daniel Lezcano8ed67782008-03-04 13:48:30 -08004704static int ip6_route_dev_notify(struct notifier_block *this,
Jiri Pirko351638e2013-05-28 01:30:21 +00004705 unsigned long event, void *ptr)
Daniel Lezcano8ed67782008-03-04 13:48:30 -08004706{
Jiri Pirko351638e2013-05-28 01:30:21 +00004707 struct net_device *dev = netdev_notifier_info_to_dev(ptr);
YOSHIFUJI Hideakic346dca2008-03-25 21:47:49 +09004708 struct net *net = dev_net(dev);
Daniel Lezcano8ed67782008-03-04 13:48:30 -08004709
WANG Cong242d3a42017-05-08 10:12:13 -07004710 if (!(dev->flags & IFF_LOOPBACK))
4711 return NOTIFY_OK;
4712
4713 if (event == NETDEV_REGISTER) {
Changli Gaod8d1f302010-06-10 23:31:35 -07004714 net->ipv6.ip6_null_entry->dst.dev = dev;
Daniel Lezcano8ed67782008-03-04 13:48:30 -08004715 net->ipv6.ip6_null_entry->rt6i_idev = in6_dev_get(dev);
4716#ifdef CONFIG_IPV6_MULTIPLE_TABLES
Changli Gaod8d1f302010-06-10 23:31:35 -07004717 net->ipv6.ip6_prohibit_entry->dst.dev = dev;
Daniel Lezcano8ed67782008-03-04 13:48:30 -08004718 net->ipv6.ip6_prohibit_entry->rt6i_idev = in6_dev_get(dev);
Changli Gaod8d1f302010-06-10 23:31:35 -07004719 net->ipv6.ip6_blk_hole_entry->dst.dev = dev;
Daniel Lezcano8ed67782008-03-04 13:48:30 -08004720 net->ipv6.ip6_blk_hole_entry->rt6i_idev = in6_dev_get(dev);
4721#endif
WANG Cong76da0702017-06-20 11:42:27 -07004722 } else if (event == NETDEV_UNREGISTER &&
4723 dev->reg_state != NETREG_UNREGISTERED) {
4724 /* NETDEV_UNREGISTER could be fired for multiple times by
4725 * netdev_wait_allrefs(). Make sure we only call this once.
4726 */
Eric Dumazet12d94a82017-08-15 04:09:51 -07004727 in6_dev_put_clear(&net->ipv6.ip6_null_entry->rt6i_idev);
WANG Cong242d3a42017-05-08 10:12:13 -07004728#ifdef CONFIG_IPV6_MULTIPLE_TABLES
Eric Dumazet12d94a82017-08-15 04:09:51 -07004729 in6_dev_put_clear(&net->ipv6.ip6_prohibit_entry->rt6i_idev);
4730 in6_dev_put_clear(&net->ipv6.ip6_blk_hole_entry->rt6i_idev);
WANG Cong242d3a42017-05-08 10:12:13 -07004731#endif
Daniel Lezcano8ed67782008-03-04 13:48:30 -08004732 }
4733
4734 return NOTIFY_OK;
4735}
4736
Linus Torvalds1da177e2005-04-16 15:20:36 -07004737/*
4738 * /proc
4739 */
4740
4741#ifdef CONFIG_PROC_FS
4742
Alexey Dobriyan33120b32007-11-06 05:27:11 -08004743static const struct file_operations ipv6_route_proc_fops = {
Alexey Dobriyan33120b32007-11-06 05:27:11 -08004744 .open = ipv6_route_open,
4745 .read = seq_read,
4746 .llseek = seq_lseek,
Hannes Frederic Sowa8d2ca1d2013-09-21 16:55:59 +02004747 .release = seq_release_net,
Alexey Dobriyan33120b32007-11-06 05:27:11 -08004748};
4749
Linus Torvalds1da177e2005-04-16 15:20:36 -07004750static int rt6_stats_seq_show(struct seq_file *seq, void *v)
4751{
Daniel Lezcano69ddb802008-03-04 13:46:23 -08004752 struct net *net = (struct net *)seq->private;
Linus Torvalds1da177e2005-04-16 15:20:36 -07004753 seq_printf(seq, "%04x %04x %04x %04x %04x %04x %04x\n",
Daniel Lezcano69ddb802008-03-04 13:46:23 -08004754 net->ipv6.rt6_stats->fib_nodes,
4755 net->ipv6.rt6_stats->fib_route_nodes,
Wei Wang81eb8442017-10-06 12:06:11 -07004756 atomic_read(&net->ipv6.rt6_stats->fib_rt_alloc),
Daniel Lezcano69ddb802008-03-04 13:46:23 -08004757 net->ipv6.rt6_stats->fib_rt_entries,
4758 net->ipv6.rt6_stats->fib_rt_cache,
Eric Dumazetfc66f952010-10-08 06:37:34 +00004759 dst_entries_get_slow(&net->ipv6.ip6_dst_ops),
Daniel Lezcano69ddb802008-03-04 13:46:23 -08004760 net->ipv6.rt6_stats->fib_discarded_routes);
Linus Torvalds1da177e2005-04-16 15:20:36 -07004761
4762 return 0;
4763}
4764
4765static int rt6_stats_seq_open(struct inode *inode, struct file *file)
4766{
Pavel Emelyanovde05c552008-07-18 04:07:21 -07004767 return single_open_net(inode, file, rt6_stats_seq_show);
Daniel Lezcano69ddb802008-03-04 13:46:23 -08004768}
4769
Arjan van de Ven9a321442007-02-12 00:55:35 -08004770static const struct file_operations rt6_stats_seq_fops = {
Linus Torvalds1da177e2005-04-16 15:20:36 -07004771 .open = rt6_stats_seq_open,
4772 .read = seq_read,
4773 .llseek = seq_lseek,
Pavel Emelyanovb6fcbdb2008-07-18 04:07:44 -07004774 .release = single_release_net,
Linus Torvalds1da177e2005-04-16 15:20:36 -07004775};
4776#endif /* CONFIG_PROC_FS */
4777
4778#ifdef CONFIG_SYSCTL
4779
Linus Torvalds1da177e2005-04-16 15:20:36 -07004780static
Joe Perchesfe2c6332013-06-11 23:04:25 -07004781int ipv6_sysctl_rtcache_flush(struct ctl_table *ctl, int write,
Linus Torvalds1da177e2005-04-16 15:20:36 -07004782 void __user *buffer, size_t *lenp, loff_t *ppos)
4783{
Lucian Adrian Grijincuc486da32011-02-24 19:48:03 +00004784 struct net *net;
4785 int delay;
4786 if (!write)
Linus Torvalds1da177e2005-04-16 15:20:36 -07004787 return -EINVAL;
Lucian Adrian Grijincuc486da32011-02-24 19:48:03 +00004788
4789 net = (struct net *)ctl->extra1;
4790 delay = net->ipv6.sysctl.flush_delay;
4791 proc_dointvec(ctl, write, buffer, lenp, ppos);
Michal Kubeček2ac3ac82013-08-01 10:04:14 +02004792 fib6_run_gc(delay <= 0 ? 0 : (unsigned long)delay, net, delay > 0);
Lucian Adrian Grijincuc486da32011-02-24 19:48:03 +00004793 return 0;
Linus Torvalds1da177e2005-04-16 15:20:36 -07004794}
4795
Joe Perchesfe2c6332013-06-11 23:04:25 -07004796struct ctl_table ipv6_route_table_template[] = {
YOSHIFUJI Hideaki1ab14572007-02-09 23:24:49 +09004797 {
Linus Torvalds1da177e2005-04-16 15:20:36 -07004798 .procname = "flush",
Daniel Lezcano49905092008-01-10 03:01:01 -08004799 .data = &init_net.ipv6.sysctl.flush_delay,
Linus Torvalds1da177e2005-04-16 15:20:36 -07004800 .maxlen = sizeof(int),
Dave Jones89c8b3a12005-04-28 12:11:49 -07004801 .mode = 0200,
Alexey Dobriyan6d9f2392008-11-03 18:21:05 -08004802 .proc_handler = ipv6_sysctl_rtcache_flush
Linus Torvalds1da177e2005-04-16 15:20:36 -07004803 },
4804 {
Linus Torvalds1da177e2005-04-16 15:20:36 -07004805 .procname = "gc_thresh",
Daniel Lezcano9a7ec3a2008-03-04 13:48:53 -08004806 .data = &ip6_dst_ops_template.gc_thresh,
Linus Torvalds1da177e2005-04-16 15:20:36 -07004807 .maxlen = sizeof(int),
4808 .mode = 0644,
Alexey Dobriyan6d9f2392008-11-03 18:21:05 -08004809 .proc_handler = proc_dointvec,
Linus Torvalds1da177e2005-04-16 15:20:36 -07004810 },
4811 {
Linus Torvalds1da177e2005-04-16 15:20:36 -07004812 .procname = "max_size",
Daniel Lezcano49905092008-01-10 03:01:01 -08004813 .data = &init_net.ipv6.sysctl.ip6_rt_max_size,
Linus Torvalds1da177e2005-04-16 15:20:36 -07004814 .maxlen = sizeof(int),
4815 .mode = 0644,
Alexey Dobriyan6d9f2392008-11-03 18:21:05 -08004816 .proc_handler = proc_dointvec,
Linus Torvalds1da177e2005-04-16 15:20:36 -07004817 },
4818 {
Linus Torvalds1da177e2005-04-16 15:20:36 -07004819 .procname = "gc_min_interval",
Daniel Lezcano49905092008-01-10 03:01:01 -08004820 .data = &init_net.ipv6.sysctl.ip6_rt_gc_min_interval,
Linus Torvalds1da177e2005-04-16 15:20:36 -07004821 .maxlen = sizeof(int),
4822 .mode = 0644,
Alexey Dobriyan6d9f2392008-11-03 18:21:05 -08004823 .proc_handler = proc_dointvec_jiffies,
Linus Torvalds1da177e2005-04-16 15:20:36 -07004824 },
4825 {
Linus Torvalds1da177e2005-04-16 15:20:36 -07004826 .procname = "gc_timeout",
Daniel Lezcano49905092008-01-10 03:01:01 -08004827 .data = &init_net.ipv6.sysctl.ip6_rt_gc_timeout,
Linus Torvalds1da177e2005-04-16 15:20:36 -07004828 .maxlen = sizeof(int),
4829 .mode = 0644,
Alexey Dobriyan6d9f2392008-11-03 18:21:05 -08004830 .proc_handler = proc_dointvec_jiffies,
Linus Torvalds1da177e2005-04-16 15:20:36 -07004831 },
4832 {
Linus Torvalds1da177e2005-04-16 15:20:36 -07004833 .procname = "gc_interval",
Daniel Lezcano49905092008-01-10 03:01:01 -08004834 .data = &init_net.ipv6.sysctl.ip6_rt_gc_interval,
Linus Torvalds1da177e2005-04-16 15:20:36 -07004835 .maxlen = sizeof(int),
4836 .mode = 0644,
Alexey Dobriyan6d9f2392008-11-03 18:21:05 -08004837 .proc_handler = proc_dointvec_jiffies,
Linus Torvalds1da177e2005-04-16 15:20:36 -07004838 },
4839 {
Linus Torvalds1da177e2005-04-16 15:20:36 -07004840 .procname = "gc_elasticity",
Daniel Lezcano49905092008-01-10 03:01:01 -08004841 .data = &init_net.ipv6.sysctl.ip6_rt_gc_elasticity,
Linus Torvalds1da177e2005-04-16 15:20:36 -07004842 .maxlen = sizeof(int),
4843 .mode = 0644,
Min Zhangf3d3f612010-08-14 22:42:51 -07004844 .proc_handler = proc_dointvec,
Linus Torvalds1da177e2005-04-16 15:20:36 -07004845 },
4846 {
Linus Torvalds1da177e2005-04-16 15:20:36 -07004847 .procname = "mtu_expires",
Daniel Lezcano49905092008-01-10 03:01:01 -08004848 .data = &init_net.ipv6.sysctl.ip6_rt_mtu_expires,
Linus Torvalds1da177e2005-04-16 15:20:36 -07004849 .maxlen = sizeof(int),
4850 .mode = 0644,
Alexey Dobriyan6d9f2392008-11-03 18:21:05 -08004851 .proc_handler = proc_dointvec_jiffies,
Linus Torvalds1da177e2005-04-16 15:20:36 -07004852 },
4853 {
Linus Torvalds1da177e2005-04-16 15:20:36 -07004854 .procname = "min_adv_mss",
Daniel Lezcano49905092008-01-10 03:01:01 -08004855 .data = &init_net.ipv6.sysctl.ip6_rt_min_advmss,
Linus Torvalds1da177e2005-04-16 15:20:36 -07004856 .maxlen = sizeof(int),
4857 .mode = 0644,
Min Zhangf3d3f612010-08-14 22:42:51 -07004858 .proc_handler = proc_dointvec,
Linus Torvalds1da177e2005-04-16 15:20:36 -07004859 },
4860 {
Linus Torvalds1da177e2005-04-16 15:20:36 -07004861 .procname = "gc_min_interval_ms",
Daniel Lezcano49905092008-01-10 03:01:01 -08004862 .data = &init_net.ipv6.sysctl.ip6_rt_gc_min_interval,
Linus Torvalds1da177e2005-04-16 15:20:36 -07004863 .maxlen = sizeof(int),
4864 .mode = 0644,
Alexey Dobriyan6d9f2392008-11-03 18:21:05 -08004865 .proc_handler = proc_dointvec_ms_jiffies,
Linus Torvalds1da177e2005-04-16 15:20:36 -07004866 },
Eric W. Biedermanf8572d82009-11-05 13:32:03 -08004867 { }
Linus Torvalds1da177e2005-04-16 15:20:36 -07004868};
4869
Alexey Dobriyan2c8c1e72010-01-17 03:35:32 +00004870struct ctl_table * __net_init ipv6_route_sysctl_init(struct net *net)
Daniel Lezcano760f2d02008-01-10 02:53:43 -08004871{
4872 struct ctl_table *table;
4873
4874 table = kmemdup(ipv6_route_table_template,
4875 sizeof(ipv6_route_table_template),
4876 GFP_KERNEL);
YOSHIFUJI Hideaki5ee09102008-02-28 00:24:28 +09004877
4878 if (table) {
4879 table[0].data = &net->ipv6.sysctl.flush_delay;
Lucian Adrian Grijincuc486da32011-02-24 19:48:03 +00004880 table[0].extra1 = net;
Alexey Dobriyan86393e52009-08-29 01:34:49 +00004881 table[1].data = &net->ipv6.ip6_dst_ops.gc_thresh;
YOSHIFUJI Hideaki5ee09102008-02-28 00:24:28 +09004882 table[2].data = &net->ipv6.sysctl.ip6_rt_max_size;
4883 table[3].data = &net->ipv6.sysctl.ip6_rt_gc_min_interval;
4884 table[4].data = &net->ipv6.sysctl.ip6_rt_gc_timeout;
4885 table[5].data = &net->ipv6.sysctl.ip6_rt_gc_interval;
4886 table[6].data = &net->ipv6.sysctl.ip6_rt_gc_elasticity;
4887 table[7].data = &net->ipv6.sysctl.ip6_rt_mtu_expires;
4888 table[8].data = &net->ipv6.sysctl.ip6_rt_min_advmss;
Alexey Dobriyan9c69fab2009-12-18 20:11:03 -08004889 table[9].data = &net->ipv6.sysctl.ip6_rt_gc_min_interval;
Eric W. Biederman464dc802012-11-16 03:02:59 +00004890
4891 /* Don't export sysctls to unprivileged users */
4892 if (net->user_ns != &init_user_ns)
4893 table[0].procname = NULL;
YOSHIFUJI Hideaki5ee09102008-02-28 00:24:28 +09004894 }
4895
Daniel Lezcano760f2d02008-01-10 02:53:43 -08004896 return table;
4897}
Linus Torvalds1da177e2005-04-16 15:20:36 -07004898#endif
4899
Alexey Dobriyan2c8c1e72010-01-17 03:35:32 +00004900static int __net_init ip6_route_net_init(struct net *net)
Daniel Lezcanocdb18762008-03-04 13:45:33 -08004901{
Pavel Emelyanov633d424b2008-04-21 14:25:23 -07004902 int ret = -ENOMEM;
Daniel Lezcano8ed67782008-03-04 13:48:30 -08004903
Alexey Dobriyan86393e52009-08-29 01:34:49 +00004904 memcpy(&net->ipv6.ip6_dst_ops, &ip6_dst_ops_template,
4905 sizeof(net->ipv6.ip6_dst_ops));
Benjamin Theryf2fc6a52008-03-04 13:49:23 -08004906
Eric Dumazetfc66f952010-10-08 06:37:34 +00004907 if (dst_entries_init(&net->ipv6.ip6_dst_ops) < 0)
4908 goto out_ip6_dst_ops;
4909
Daniel Lezcano8ed67782008-03-04 13:48:30 -08004910 net->ipv6.ip6_null_entry = kmemdup(&ip6_null_entry_template,
4911 sizeof(*net->ipv6.ip6_null_entry),
4912 GFP_KERNEL);
4913 if (!net->ipv6.ip6_null_entry)
Eric Dumazetfc66f952010-10-08 06:37:34 +00004914 goto out_ip6_dst_entries;
Changli Gaod8d1f302010-06-10 23:31:35 -07004915 net->ipv6.ip6_null_entry->dst.ops = &net->ipv6.ip6_dst_ops;
David S. Miller62fa8a82011-01-26 20:51:05 -08004916 dst_init_metrics(&net->ipv6.ip6_null_entry->dst,
4917 ip6_template_metrics, true);
Daniel Lezcano8ed67782008-03-04 13:48:30 -08004918
4919#ifdef CONFIG_IPV6_MULTIPLE_TABLES
Vincent Bernatfeca7d82017-08-08 20:23:49 +02004920 net->ipv6.fib6_has_custom_rules = false;
Daniel Lezcano8ed67782008-03-04 13:48:30 -08004921 net->ipv6.ip6_prohibit_entry = kmemdup(&ip6_prohibit_entry_template,
4922 sizeof(*net->ipv6.ip6_prohibit_entry),
4923 GFP_KERNEL);
Peter Zijlstra68fffc62008-10-07 14:12:10 -07004924 if (!net->ipv6.ip6_prohibit_entry)
4925 goto out_ip6_null_entry;
Changli Gaod8d1f302010-06-10 23:31:35 -07004926 net->ipv6.ip6_prohibit_entry->dst.ops = &net->ipv6.ip6_dst_ops;
David S. Miller62fa8a82011-01-26 20:51:05 -08004927 dst_init_metrics(&net->ipv6.ip6_prohibit_entry->dst,
4928 ip6_template_metrics, true);
Daniel Lezcano8ed67782008-03-04 13:48:30 -08004929
4930 net->ipv6.ip6_blk_hole_entry = kmemdup(&ip6_blk_hole_entry_template,
4931 sizeof(*net->ipv6.ip6_blk_hole_entry),
4932 GFP_KERNEL);
Peter Zijlstra68fffc62008-10-07 14:12:10 -07004933 if (!net->ipv6.ip6_blk_hole_entry)
4934 goto out_ip6_prohibit_entry;
Changli Gaod8d1f302010-06-10 23:31:35 -07004935 net->ipv6.ip6_blk_hole_entry->dst.ops = &net->ipv6.ip6_dst_ops;
David S. Miller62fa8a82011-01-26 20:51:05 -08004936 dst_init_metrics(&net->ipv6.ip6_blk_hole_entry->dst,
4937 ip6_template_metrics, true);
Daniel Lezcano8ed67782008-03-04 13:48:30 -08004938#endif
4939
Peter Zijlstrab339a47c2008-10-07 14:15:00 -07004940 net->ipv6.sysctl.flush_delay = 0;
4941 net->ipv6.sysctl.ip6_rt_max_size = 4096;
4942 net->ipv6.sysctl.ip6_rt_gc_min_interval = HZ / 2;
4943 net->ipv6.sysctl.ip6_rt_gc_timeout = 60*HZ;
4944 net->ipv6.sysctl.ip6_rt_gc_interval = 30*HZ;
4945 net->ipv6.sysctl.ip6_rt_gc_elasticity = 9;
4946 net->ipv6.sysctl.ip6_rt_mtu_expires = 10*60*HZ;
4947 net->ipv6.sysctl.ip6_rt_min_advmss = IPV6_MIN_MTU - 20 - 40;
4948
Benjamin Thery6891a342008-03-04 13:49:47 -08004949 net->ipv6.ip6_rt_gc_expire = 30*HZ;
4950
Daniel Lezcano8ed67782008-03-04 13:48:30 -08004951 ret = 0;
4952out:
4953 return ret;
Benjamin Theryf2fc6a52008-03-04 13:49:23 -08004954
Peter Zijlstra68fffc62008-10-07 14:12:10 -07004955#ifdef CONFIG_IPV6_MULTIPLE_TABLES
4956out_ip6_prohibit_entry:
4957 kfree(net->ipv6.ip6_prohibit_entry);
4958out_ip6_null_entry:
4959 kfree(net->ipv6.ip6_null_entry);
4960#endif
Eric Dumazetfc66f952010-10-08 06:37:34 +00004961out_ip6_dst_entries:
4962 dst_entries_destroy(&net->ipv6.ip6_dst_ops);
Benjamin Theryf2fc6a52008-03-04 13:49:23 -08004963out_ip6_dst_ops:
Benjamin Theryf2fc6a52008-03-04 13:49:23 -08004964 goto out;
Daniel Lezcanocdb18762008-03-04 13:45:33 -08004965}
4966
Alexey Dobriyan2c8c1e72010-01-17 03:35:32 +00004967static void __net_exit ip6_route_net_exit(struct net *net)
Daniel Lezcanocdb18762008-03-04 13:45:33 -08004968{
Daniel Lezcano8ed67782008-03-04 13:48:30 -08004969 kfree(net->ipv6.ip6_null_entry);
4970#ifdef CONFIG_IPV6_MULTIPLE_TABLES
4971 kfree(net->ipv6.ip6_prohibit_entry);
4972 kfree(net->ipv6.ip6_blk_hole_entry);
4973#endif
Xiaotian Feng41bb78b2010-11-02 16:11:05 +00004974 dst_entries_destroy(&net->ipv6.ip6_dst_ops);
Daniel Lezcanocdb18762008-03-04 13:45:33 -08004975}
4976
Thomas Grafd1896342012-06-18 12:08:33 +00004977static int __net_init ip6_route_net_init_late(struct net *net)
4978{
4979#ifdef CONFIG_PROC_FS
Gao fengd4beaa62013-02-18 01:34:54 +00004980 proc_create("ipv6_route", 0, net->proc_net, &ipv6_route_proc_fops);
4981 proc_create("rt6_stats", S_IRUGO, net->proc_net, &rt6_stats_seq_fops);
Thomas Grafd1896342012-06-18 12:08:33 +00004982#endif
4983 return 0;
4984}
4985
4986static void __net_exit ip6_route_net_exit_late(struct net *net)
4987{
4988#ifdef CONFIG_PROC_FS
Gao fengece31ff2013-02-18 01:34:56 +00004989 remove_proc_entry("ipv6_route", net->proc_net);
4990 remove_proc_entry("rt6_stats", net->proc_net);
Thomas Grafd1896342012-06-18 12:08:33 +00004991#endif
4992}
4993
Daniel Lezcanocdb18762008-03-04 13:45:33 -08004994static struct pernet_operations ip6_route_net_ops = {
4995 .init = ip6_route_net_init,
4996 .exit = ip6_route_net_exit,
4997};
4998
David S. Millerc3426b42012-06-09 16:27:05 -07004999static int __net_init ipv6_inetpeer_init(struct net *net)
5000{
5001 struct inet_peer_base *bp = kmalloc(sizeof(*bp), GFP_KERNEL);
5002
5003 if (!bp)
5004 return -ENOMEM;
5005 inet_peer_base_init(bp);
5006 net->ipv6.peers = bp;
5007 return 0;
5008}
5009
5010static void __net_exit ipv6_inetpeer_exit(struct net *net)
5011{
5012 struct inet_peer_base *bp = net->ipv6.peers;
5013
5014 net->ipv6.peers = NULL;
David S. Miller56a6b242012-06-09 16:32:41 -07005015 inetpeer_invalidate_tree(bp);
David S. Millerc3426b42012-06-09 16:27:05 -07005016 kfree(bp);
5017}
5018
David S. Miller2b823f72012-06-09 19:00:16 -07005019static struct pernet_operations ipv6_inetpeer_ops = {
David S. Millerc3426b42012-06-09 16:27:05 -07005020 .init = ipv6_inetpeer_init,
5021 .exit = ipv6_inetpeer_exit,
5022};
5023
Thomas Grafd1896342012-06-18 12:08:33 +00005024static struct pernet_operations ip6_route_net_late_ops = {
5025 .init = ip6_route_net_init_late,
5026 .exit = ip6_route_net_exit_late,
5027};
5028
Daniel Lezcano8ed67782008-03-04 13:48:30 -08005029static struct notifier_block ip6_route_dev_notifier = {
5030 .notifier_call = ip6_route_dev_notify,
WANG Cong242d3a42017-05-08 10:12:13 -07005031 .priority = ADDRCONF_NOTIFY_PRIORITY - 10,
Daniel Lezcano8ed67782008-03-04 13:48:30 -08005032};
5033
WANG Cong2f460932017-05-03 22:07:31 -07005034void __init ip6_route_init_special_entries(void)
5035{
5036 /* Registering of the loopback is done before this portion of code,
5037 * the loopback reference in rt6_info will not be taken, do it
5038 * manually for init_net */
5039 init_net.ipv6.ip6_null_entry->dst.dev = init_net.loopback_dev;
5040 init_net.ipv6.ip6_null_entry->rt6i_idev = in6_dev_get(init_net.loopback_dev);
5041 #ifdef CONFIG_IPV6_MULTIPLE_TABLES
5042 init_net.ipv6.ip6_prohibit_entry->dst.dev = init_net.loopback_dev;
5043 init_net.ipv6.ip6_prohibit_entry->rt6i_idev = in6_dev_get(init_net.loopback_dev);
5044 init_net.ipv6.ip6_blk_hole_entry->dst.dev = init_net.loopback_dev;
5045 init_net.ipv6.ip6_blk_hole_entry->rt6i_idev = in6_dev_get(init_net.loopback_dev);
5046 #endif
5047}
5048
Daniel Lezcano433d49c2007-12-07 00:43:48 -08005049int __init ip6_route_init(void)
Linus Torvalds1da177e2005-04-16 15:20:36 -07005050{
Daniel Lezcano433d49c2007-12-07 00:43:48 -08005051 int ret;
Martin KaFai Lau8d0b94a2015-05-22 20:56:04 -07005052 int cpu;
Daniel Lezcano433d49c2007-12-07 00:43:48 -08005053
Daniel Lezcano9a7ec3a2008-03-04 13:48:53 -08005054 ret = -ENOMEM;
5055 ip6_dst_ops_template.kmem_cachep =
5056 kmem_cache_create("ip6_dst_cache", sizeof(struct rt6_info), 0,
5057 SLAB_HWCACHE_ALIGN, NULL);
5058 if (!ip6_dst_ops_template.kmem_cachep)
Fernando Carrijoc19a28e2009-01-07 18:09:08 -08005059 goto out;
David S. Miller14e50e52007-05-24 18:17:54 -07005060
Eric Dumazetfc66f952010-10-08 06:37:34 +00005061 ret = dst_entries_init(&ip6_dst_blackhole_ops);
Daniel Lezcano8ed67782008-03-04 13:48:30 -08005062 if (ret)
Daniel Lezcanobdb32892008-03-04 13:48:10 -08005063 goto out_kmem_cache;
Daniel Lezcanobdb32892008-03-04 13:48:10 -08005064
David S. Millerc3426b42012-06-09 16:27:05 -07005065 ret = register_pernet_subsys(&ipv6_inetpeer_ops);
5066 if (ret)
David S. Millere8803b62012-06-16 01:12:19 -07005067 goto out_dst_entries;
Thomas Graf2a0c4512012-06-14 23:00:17 +00005068
David S. Miller7e52b332012-06-15 15:51:55 -07005069 ret = register_pernet_subsys(&ip6_route_net_ops);
5070 if (ret)
5071 goto out_register_inetpeer;
David S. Millerc3426b42012-06-09 16:27:05 -07005072
Arnaud Ebalard5dc121e2008-10-01 02:37:56 -07005073 ip6_dst_blackhole_ops.kmem_cachep = ip6_dst_ops_template.kmem_cachep;
5074
David S. Millere8803b62012-06-16 01:12:19 -07005075 ret = fib6_init();
Daniel Lezcano433d49c2007-12-07 00:43:48 -08005076 if (ret)
Daniel Lezcano8ed67782008-03-04 13:48:30 -08005077 goto out_register_subsys;
Daniel Lezcano433d49c2007-12-07 00:43:48 -08005078
Daniel Lezcano433d49c2007-12-07 00:43:48 -08005079 ret = xfrm6_init();
5080 if (ret)
David S. Millere8803b62012-06-16 01:12:19 -07005081 goto out_fib6_init;
Daniel Lezcanoc35b7e72007-12-08 00:14:11 -08005082
Daniel Lezcano433d49c2007-12-07 00:43:48 -08005083 ret = fib6_rules_init();
5084 if (ret)
5085 goto xfrm6_init;
Daniel Lezcano7e5449c2007-12-08 00:14:54 -08005086
Thomas Grafd1896342012-06-18 12:08:33 +00005087 ret = register_pernet_subsys(&ip6_route_net_late_ops);
5088 if (ret)
5089 goto fib6_rules_init;
5090
Florian Westphal16feebc2017-12-02 21:44:08 +01005091 ret = rtnl_register_module(THIS_MODULE, PF_INET6, RTM_NEWROUTE,
5092 inet6_rtm_newroute, NULL, 0);
5093 if (ret < 0)
5094 goto out_register_late_subsys;
5095
5096 ret = rtnl_register_module(THIS_MODULE, PF_INET6, RTM_DELROUTE,
5097 inet6_rtm_delroute, NULL, 0);
5098 if (ret < 0)
5099 goto out_register_late_subsys;
5100
5101 ret = rtnl_register_module(THIS_MODULE, PF_INET6, RTM_GETROUTE,
5102 inet6_rtm_getroute, NULL,
5103 RTNL_FLAG_DOIT_UNLOCKED);
5104 if (ret < 0)
Thomas Grafd1896342012-06-18 12:08:33 +00005105 goto out_register_late_subsys;
Daniel Lezcano433d49c2007-12-07 00:43:48 -08005106
Daniel Lezcano8ed67782008-03-04 13:48:30 -08005107 ret = register_netdevice_notifier(&ip6_route_dev_notifier);
Daniel Lezcanocdb18762008-03-04 13:45:33 -08005108 if (ret)
Thomas Grafd1896342012-06-18 12:08:33 +00005109 goto out_register_late_subsys;
Daniel Lezcano8ed67782008-03-04 13:48:30 -08005110
Martin KaFai Lau8d0b94a2015-05-22 20:56:04 -07005111 for_each_possible_cpu(cpu) {
5112 struct uncached_list *ul = per_cpu_ptr(&rt6_uncached_list, cpu);
5113
5114 INIT_LIST_HEAD(&ul->head);
5115 spin_lock_init(&ul->lock);
5116 }
5117
Daniel Lezcano433d49c2007-12-07 00:43:48 -08005118out:
5119 return ret;
5120
Thomas Grafd1896342012-06-18 12:08:33 +00005121out_register_late_subsys:
Florian Westphal16feebc2017-12-02 21:44:08 +01005122 rtnl_unregister_all(PF_INET6);
Thomas Grafd1896342012-06-18 12:08:33 +00005123 unregister_pernet_subsys(&ip6_route_net_late_ops);
Daniel Lezcano433d49c2007-12-07 00:43:48 -08005124fib6_rules_init:
Daniel Lezcano433d49c2007-12-07 00:43:48 -08005125 fib6_rules_cleanup();
5126xfrm6_init:
Daniel Lezcano433d49c2007-12-07 00:43:48 -08005127 xfrm6_fini();
Thomas Graf2a0c4512012-06-14 23:00:17 +00005128out_fib6_init:
5129 fib6_gc_cleanup();
Daniel Lezcano8ed67782008-03-04 13:48:30 -08005130out_register_subsys:
5131 unregister_pernet_subsys(&ip6_route_net_ops);
David S. Miller7e52b332012-06-15 15:51:55 -07005132out_register_inetpeer:
5133 unregister_pernet_subsys(&ipv6_inetpeer_ops);
Eric Dumazetfc66f952010-10-08 06:37:34 +00005134out_dst_entries:
5135 dst_entries_destroy(&ip6_dst_blackhole_ops);
Daniel Lezcano433d49c2007-12-07 00:43:48 -08005136out_kmem_cache:
Benjamin Theryf2fc6a52008-03-04 13:49:23 -08005137 kmem_cache_destroy(ip6_dst_ops_template.kmem_cachep);
Daniel Lezcano433d49c2007-12-07 00:43:48 -08005138 goto out;
Linus Torvalds1da177e2005-04-16 15:20:36 -07005139}
5140
5141void ip6_route_cleanup(void)
5142{
Daniel Lezcano8ed67782008-03-04 13:48:30 -08005143 unregister_netdevice_notifier(&ip6_route_dev_notifier);
Thomas Grafd1896342012-06-18 12:08:33 +00005144 unregister_pernet_subsys(&ip6_route_net_late_ops);
Thomas Graf101367c2006-08-04 03:39:02 -07005145 fib6_rules_cleanup();
Linus Torvalds1da177e2005-04-16 15:20:36 -07005146 xfrm6_fini();
Linus Torvalds1da177e2005-04-16 15:20:36 -07005147 fib6_gc_cleanup();
David S. Millerc3426b42012-06-09 16:27:05 -07005148 unregister_pernet_subsys(&ipv6_inetpeer_ops);
Daniel Lezcano8ed67782008-03-04 13:48:30 -08005149 unregister_pernet_subsys(&ip6_route_net_ops);
Xiaotian Feng41bb78b2010-11-02 16:11:05 +00005150 dst_entries_destroy(&ip6_dst_blackhole_ops);
Benjamin Theryf2fc6a52008-03-04 13:49:23 -08005151 kmem_cache_destroy(ip6_dst_ops_template.kmem_cachep);
Linus Torvalds1da177e2005-04-16 15:20:36 -07005152}