Thomas Gleixner | 2874c5f | 2019-05-27 08:55:01 +0200 | [diff] [blame] | 1 | // SPDX-License-Identifier: GPL-2.0-or-later |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 2 | /* |
| 3 | * IP Payload Compression Protocol (IPComp) - RFC3173. |
| 4 | * |
| 5 | * Copyright (c) 2003 James Morris <jmorris@intercode.com.au> |
| 6 | * |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 7 | * Todo: |
| 8 | * - Tunable compression parameters. |
| 9 | * - Compression stats. |
| 10 | * - Adaptive compression. |
| 11 | */ |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 12 | #include <linux/module.h> |
Herbert Xu | 4999f36 | 2007-11-07 02:21:47 -0800 | [diff] [blame] | 13 | #include <linux/err.h> |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 14 | #include <linux/rtnetlink.h> |
| 15 | #include <net/ip.h> |
| 16 | #include <net/xfrm.h> |
| 17 | #include <net/icmp.h> |
| 18 | #include <net/ipcomp.h> |
Arnaldo Carvalho de Melo | 14c8502 | 2005-12-27 02:43:12 -0200 | [diff] [blame] | 19 | #include <net/protocol.h> |
Herbert Xu | 6fccab6 | 2008-07-25 02:54:40 -0700 | [diff] [blame] | 20 | #include <net/sock.h> |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 21 | |
Steffen Klassert | d099160 | 2014-02-21 08:41:09 +0100 | [diff] [blame] | 22 | static int ipcomp4_err(struct sk_buff *skb, u32 info) |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 23 | { |
Alexey Dobriyan | a92df25 | 2010-01-25 10:38:34 +0000 | [diff] [blame] | 24 | struct net *net = dev_net(skb->dev); |
Al Viro | a94cfd1 | 2006-09-27 18:47:24 -0700 | [diff] [blame] | 25 | __be32 spi; |
Eric Dumazet | b71d1d4 | 2011-04-22 04:53:02 +0000 | [diff] [blame] | 26 | const struct iphdr *iph = (const struct iphdr *)skb->data; |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 27 | struct ip_comp_hdr *ipch = (struct ip_comp_hdr *)(skb->data+(iph->ihl<<2)); |
| 28 | struct xfrm_state *x; |
| 29 | |
David S. Miller | 55be7a9 | 2012-07-11 21:27:49 -0700 | [diff] [blame] | 30 | switch (icmp_hdr(skb)->type) { |
| 31 | case ICMP_DEST_UNREACH: |
| 32 | if (icmp_hdr(skb)->code != ICMP_FRAG_NEEDED) |
Steffen Klassert | d099160 | 2014-02-21 08:41:09 +0100 | [diff] [blame] | 33 | return 0; |
Gustavo A. R. Silva | 7912118 | 2020-11-20 12:25:57 -0600 | [diff] [blame] | 34 | break; |
David S. Miller | 55be7a9 | 2012-07-11 21:27:49 -0700 | [diff] [blame] | 35 | case ICMP_REDIRECT: |
| 36 | break; |
| 37 | default: |
Steffen Klassert | d099160 | 2014-02-21 08:41:09 +0100 | [diff] [blame] | 38 | return 0; |
David S. Miller | 55be7a9 | 2012-07-11 21:27:49 -0700 | [diff] [blame] | 39 | } |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 40 | |
Alexey Dobriyan | 4195f81 | 2006-05-22 16:53:22 -0700 | [diff] [blame] | 41 | spi = htonl(ntohs(ipch->cpi)); |
Eric Dumazet | b71d1d4 | 2011-04-22 04:53:02 +0000 | [diff] [blame] | 42 | x = xfrm_state_lookup(net, skb->mark, (const xfrm_address_t *)&iph->daddr, |
YOSHIFUJI Hideaki | e905a9e | 2007-02-09 23:24:47 +0900 | [diff] [blame] | 43 | spi, IPPROTO_COMP, AF_INET); |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 44 | if (!x) |
Steffen Klassert | d099160 | 2014-02-21 08:41:09 +0100 | [diff] [blame] | 45 | return 0; |
David S. Miller | 55be7a9 | 2012-07-11 21:27:49 -0700 | [diff] [blame] | 46 | |
Timo Teräs | 387aa65 | 2013-05-27 20:46:31 +0000 | [diff] [blame] | 47 | if (icmp_hdr(skb)->type == ICMP_DEST_UNREACH) |
Maciej Żenczykowski | d888f39 | 2018-09-25 20:56:26 -0700 | [diff] [blame] | 48 | ipv4_update_pmtu(skb, net, info, 0, IPPROTO_COMP); |
Timo Teräs | 387aa65 | 2013-05-27 20:46:31 +0000 | [diff] [blame] | 49 | else |
Maciej Żenczykowski | 1042caa | 2018-09-25 20:56:27 -0700 | [diff] [blame] | 50 | ipv4_redirect(skb, net, 0, IPPROTO_COMP); |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 51 | xfrm_state_put(x); |
Steffen Klassert | d099160 | 2014-02-21 08:41:09 +0100 | [diff] [blame] | 52 | |
| 53 | return 0; |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 54 | } |
| 55 | |
YOSHIFUJI Hideaki | e905a9e | 2007-02-09 23:24:47 +0900 | [diff] [blame] | 56 | /* We always hold one tunnel user reference to indicate a tunnel */ |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 57 | static struct xfrm_state *ipcomp_tunnel_create(struct xfrm_state *x) |
| 58 | { |
Alexey Dobriyan | a92df25 | 2010-01-25 10:38:34 +0000 | [diff] [blame] | 59 | struct net *net = xs_net(x); |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 60 | struct xfrm_state *t; |
YOSHIFUJI Hideaki | e905a9e | 2007-02-09 23:24:47 +0900 | [diff] [blame] | 61 | |
Alexey Dobriyan | a92df25 | 2010-01-25 10:38:34 +0000 | [diff] [blame] | 62 | t = xfrm_state_alloc(net); |
Ian Morris | 51456b2 | 2015-04-03 09:17:26 +0100 | [diff] [blame] | 63 | if (!t) |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 64 | goto out; |
| 65 | |
| 66 | t->id.proto = IPPROTO_IPIP; |
| 67 | t->id.spi = x->props.saddr.a4; |
| 68 | t->id.daddr.a4 = x->id.daddr.a4; |
| 69 | memcpy(&t->sel, &x->sel, sizeof(t->sel)); |
| 70 | t->props.family = AF_INET; |
Herbert Xu | e40b328 | 2007-11-13 21:39:08 -0800 | [diff] [blame] | 71 | t->props.mode = x->props.mode; |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 72 | t->props.saddr.a4 = x->props.saddr.a4; |
| 73 | t->props.flags = x->props.flags; |
Nicolas Dichtel | a947b0a | 2013-02-22 10:54:54 +0100 | [diff] [blame] | 74 | t->props.extra_flags = x->props.extra_flags; |
Jamal Hadi Salim | bd55775 | 2010-02-22 16:20:22 -0800 | [diff] [blame] | 75 | memcpy(&t->mark, &x->mark, sizeof(t->mark)); |
Xin Long | d5a7a50 | 2020-07-06 20:01:36 +0800 | [diff] [blame] | 76 | t->if_id = x->if_id; |
Herbert Xu | 72cb696 | 2005-06-20 13:18:08 -0700 | [diff] [blame] | 77 | |
| 78 | if (xfrm_init_state(t)) |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 79 | goto error; |
| 80 | |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 81 | atomic_set(&t->tunnel_users, 1); |
| 82 | out: |
| 83 | return t; |
| 84 | |
| 85 | error: |
| 86 | t->km.state = XFRM_STATE_DEAD; |
| 87 | xfrm_state_put(t); |
| 88 | t = NULL; |
| 89 | goto out; |
| 90 | } |
| 91 | |
| 92 | /* |
Arjan van de Ven | 4a3e2f7 | 2006-03-20 22:33:17 -0800 | [diff] [blame] | 93 | * Must be protected by xfrm_cfg_mutex. State and tunnel user references are |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 94 | * always incremented on success. |
| 95 | */ |
| 96 | static int ipcomp_tunnel_attach(struct xfrm_state *x) |
| 97 | { |
Alexey Dobriyan | a92df25 | 2010-01-25 10:38:34 +0000 | [diff] [blame] | 98 | struct net *net = xs_net(x); |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 99 | int err = 0; |
| 100 | struct xfrm_state *t; |
Jamal Hadi Salim | bd55775 | 2010-02-22 16:20:22 -0800 | [diff] [blame] | 101 | u32 mark = x->mark.v & x->mark.m; |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 102 | |
Jamal Hadi Salim | bd55775 | 2010-02-22 16:20:22 -0800 | [diff] [blame] | 103 | t = xfrm_state_lookup(net, mark, (xfrm_address_t *)&x->id.daddr.a4, |
YOSHIFUJI Hideaki | e905a9e | 2007-02-09 23:24:47 +0900 | [diff] [blame] | 104 | x->props.saddr.a4, IPPROTO_IPIP, AF_INET); |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 105 | if (!t) { |
| 106 | t = ipcomp_tunnel_create(x); |
| 107 | if (!t) { |
| 108 | err = -EINVAL; |
| 109 | goto out; |
| 110 | } |
| 111 | xfrm_state_insert(t); |
| 112 | xfrm_state_hold(t); |
| 113 | } |
| 114 | x->tunnel = t; |
| 115 | atomic_inc(&t->tunnel_users); |
| 116 | out: |
| 117 | return err; |
| 118 | } |
| 119 | |
Herbert Xu | 6fccab6 | 2008-07-25 02:54:40 -0700 | [diff] [blame] | 120 | static int ipcomp4_init_state(struct xfrm_state *x) |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 121 | { |
David S. Miller | 2c3abab | 2008-07-27 03:59:24 -0700 | [diff] [blame] | 122 | int err = -EINVAL; |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 123 | |
Herbert Xu | e40b328 | 2007-11-13 21:39:08 -0800 | [diff] [blame] | 124 | x->props.header_len = 0; |
| 125 | switch (x->props.mode) { |
| 126 | case XFRM_MODE_TRANSPORT: |
| 127 | break; |
| 128 | case XFRM_MODE_TUNNEL: |
| 129 | x->props.header_len += sizeof(struct iphdr); |
| 130 | break; |
| 131 | default: |
| 132 | goto out; |
| 133 | } |
| 134 | |
Herbert Xu | 6fccab6 | 2008-07-25 02:54:40 -0700 | [diff] [blame] | 135 | err = ipcomp_init_state(x); |
| 136 | if (err) |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 137 | goto out; |
| 138 | |
Masahide NAKAMURA | 7e49e6d | 2006-09-22 15:05:15 -0700 | [diff] [blame] | 139 | if (x->props.mode == XFRM_MODE_TUNNEL) { |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 140 | err = ipcomp_tunnel_attach(x); |
| 141 | if (err) |
Herbert Xu | 10e7454 | 2010-02-15 19:24:30 +0000 | [diff] [blame] | 142 | goto out; |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 143 | } |
| 144 | |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 145 | err = 0; |
| 146 | out: |
| 147 | return err; |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 148 | } |
| 149 | |
Steffen Klassert | d099160 | 2014-02-21 08:41:09 +0100 | [diff] [blame] | 150 | static int ipcomp4_rcv_cb(struct sk_buff *skb, int err) |
| 151 | { |
| 152 | return 0; |
| 153 | } |
| 154 | |
Eric Dumazet | 533cb5b | 2008-01-30 19:11:50 -0800 | [diff] [blame] | 155 | static const struct xfrm_type ipcomp_type = { |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 156 | .owner = THIS_MODULE, |
| 157 | .proto = IPPROTO_COMP, |
Herbert Xu | 6fccab6 | 2008-07-25 02:54:40 -0700 | [diff] [blame] | 158 | .init_state = ipcomp4_init_state, |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 159 | .destructor = ipcomp_destroy, |
| 160 | .input = ipcomp_input, |
| 161 | .output = ipcomp_output |
| 162 | }; |
| 163 | |
Steffen Klassert | d099160 | 2014-02-21 08:41:09 +0100 | [diff] [blame] | 164 | static struct xfrm4_protocol ipcomp4_protocol = { |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 165 | .handler = xfrm4_rcv, |
Steffen Klassert | d099160 | 2014-02-21 08:41:09 +0100 | [diff] [blame] | 166 | .input_handler = xfrm_input, |
| 167 | .cb_handler = ipcomp4_rcv_cb, |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 168 | .err_handler = ipcomp4_err, |
Steffen Klassert | d099160 | 2014-02-21 08:41:09 +0100 | [diff] [blame] | 169 | .priority = 0, |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 170 | }; |
| 171 | |
| 172 | static int __init ipcomp4_init(void) |
| 173 | { |
| 174 | if (xfrm_register_type(&ipcomp_type, AF_INET) < 0) { |
Joe Perches | 058bd4d | 2012-03-11 18:36:11 +0000 | [diff] [blame] | 175 | pr_info("%s: can't add xfrm type\n", __func__); |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 176 | return -EAGAIN; |
| 177 | } |
Steffen Klassert | d099160 | 2014-02-21 08:41:09 +0100 | [diff] [blame] | 178 | if (xfrm4_protocol_register(&ipcomp4_protocol, IPPROTO_COMP) < 0) { |
Joe Perches | 058bd4d | 2012-03-11 18:36:11 +0000 | [diff] [blame] | 179 | pr_info("%s: can't add protocol\n", __func__); |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 180 | xfrm_unregister_type(&ipcomp_type, AF_INET); |
| 181 | return -EAGAIN; |
| 182 | } |
| 183 | return 0; |
| 184 | } |
| 185 | |
| 186 | static void __exit ipcomp4_fini(void) |
| 187 | { |
Steffen Klassert | d099160 | 2014-02-21 08:41:09 +0100 | [diff] [blame] | 188 | if (xfrm4_protocol_deregister(&ipcomp4_protocol, IPPROTO_COMP) < 0) |
Joe Perches | 058bd4d | 2012-03-11 18:36:11 +0000 | [diff] [blame] | 189 | pr_info("%s: can't remove protocol\n", __func__); |
Florian Westphal | 4f518e8 | 2019-05-03 17:46:19 +0200 | [diff] [blame] | 190 | xfrm_unregister_type(&ipcomp_type, AF_INET); |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 191 | } |
| 192 | |
| 193 | module_init(ipcomp4_init); |
| 194 | module_exit(ipcomp4_fini); |
| 195 | |
| 196 | MODULE_LICENSE("GPL"); |
Herbert Xu | 6fccab6 | 2008-07-25 02:54:40 -0700 | [diff] [blame] | 197 | MODULE_DESCRIPTION("IP Payload Compression Protocol (IPComp/IPv4) - RFC3173"); |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 198 | MODULE_AUTHOR("James Morris <jmorris@intercode.com.au>"); |
| 199 | |
Masahide NAKAMURA | d3d6dd3 | 2007-06-26 23:57:49 -0700 | [diff] [blame] | 200 | MODULE_ALIAS_XFRM_TYPE(AF_INET, XFRM_PROTO_COMP); |