Thomas Gleixner | 2874c5f | 2019-05-27 08:55:01 +0200 | [diff] [blame] | 1 | // SPDX-License-Identifier: GPL-2.0-or-later |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 2 | /* |
| 3 | * Ioctl handler |
| 4 | * Linux ethernet bridge |
| 5 | * |
| 6 | * Authors: |
| 7 | * Lennert Buytenhek <buytenh@gnu.org> |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 8 | */ |
| 9 | |
Randy Dunlap | 4fc268d | 2006-01-11 12:17:47 -0800 | [diff] [blame] | 10 | #include <linux/capability.h> |
Jakub Kicinski | b645941 | 2021-12-28 16:49:13 -0800 | [diff] [blame] | 11 | #include <linux/compat.h> |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 12 | #include <linux/kernel.h> |
| 13 | #include <linux/if_bridge.h> |
| 14 | #include <linux/netdevice.h> |
Tejun Heo | 5a0e3ad | 2010-03-24 17:04:11 +0900 | [diff] [blame] | 15 | #include <linux/slab.h> |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 16 | #include <linux/times.h> |
Eric W. Biederman | 881d966 | 2007-09-17 11:56:21 -0700 | [diff] [blame] | 17 | #include <net/net_namespace.h> |
Linus Torvalds | 7c0f6ba | 2016-12-24 11:46:01 -0800 | [diff] [blame] | 18 | #include <linux/uaccess.h> |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 19 | #include "br_private.h" |
| 20 | |
Alexey Dobriyan | 4aa678b | 2008-09-08 16:19:58 -0700 | [diff] [blame] | 21 | static int get_bridge_ifindices(struct net *net, int *indices, int num) |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 22 | { |
| 23 | struct net_device *dev; |
| 24 | int i = 0; |
| 25 | |
Nikolay Aleksandrov | 31ca045 | 2016-05-04 16:18:45 +0200 | [diff] [blame] | 26 | rcu_read_lock(); |
| 27 | for_each_netdev_rcu(net, dev) { |
Pavel Emelianov | 7562f87 | 2007-05-03 15:13:45 -0700 | [diff] [blame] | 28 | if (i >= num) |
| 29 | break; |
Kyungrok Chung | 254ec03 | 2021-10-16 20:21:36 +0900 | [diff] [blame] | 30 | if (netif_is_bridge_master(dev)) |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 31 | indices[i++] = dev->ifindex; |
| 32 | } |
Nikolay Aleksandrov | 31ca045 | 2016-05-04 16:18:45 +0200 | [diff] [blame] | 33 | rcu_read_unlock(); |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 34 | |
| 35 | return i; |
| 36 | } |
| 37 | |
| 38 | /* called with RTNL */ |
| 39 | static void get_port_ifindices(struct net_bridge *br, int *ifindices, int num) |
| 40 | { |
| 41 | struct net_bridge_port *p; |
| 42 | |
| 43 | list_for_each_entry(p, &br->port_list, list) { |
| 44 | if (p->port_no < num) |
| 45 | ifindices[p->port_no] = p->dev->ifindex; |
| 46 | } |
| 47 | } |
| 48 | |
| 49 | /* |
| 50 | * Format up to a page worth of forwarding table entries |
| 51 | * userbuf -- where to copy result |
| 52 | * maxnum -- maximum number of entries desired |
| 53 | * (limited to a page for sanity) |
| 54 | * offset -- number of records to skip |
| 55 | */ |
YOSHIFUJI Hideaki | 9d6f229 | 2007-02-09 23:24:35 +0900 | [diff] [blame] | 56 | static int get_fdb_entries(struct net_bridge *br, void __user *userbuf, |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 57 | unsigned long maxnum, unsigned long offset) |
| 58 | { |
| 59 | int num; |
| 60 | void *buf; |
Chris Wright | ba8379b2 | 2006-11-20 15:02:49 -0800 | [diff] [blame] | 61 | size_t size; |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 62 | |
Chris Wright | ba8379b2 | 2006-11-20 15:02:49 -0800 | [diff] [blame] | 63 | /* Clamp size to PAGE_SIZE, test maxnum to avoid overflow */ |
| 64 | if (maxnum > PAGE_SIZE/sizeof(struct __fdb_entry)) |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 65 | maxnum = PAGE_SIZE/sizeof(struct __fdb_entry); |
Chris Wright | ba8379b2 | 2006-11-20 15:02:49 -0800 | [diff] [blame] | 66 | |
| 67 | size = maxnum * sizeof(struct __fdb_entry); |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 68 | |
| 69 | buf = kmalloc(size, GFP_USER); |
| 70 | if (!buf) |
| 71 | return -ENOMEM; |
YOSHIFUJI Hideaki | 9d6f229 | 2007-02-09 23:24:35 +0900 | [diff] [blame] | 72 | |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 73 | num = br_fdb_fillbuf(br, buf, maxnum, offset); |
| 74 | if (num > 0) { |
Gustavo A. R. Silva | 865bfb2 | 2021-09-28 15:12:39 -0500 | [diff] [blame] | 75 | if (copy_to_user(userbuf, buf, |
| 76 | array_size(num, sizeof(struct __fdb_entry)))) |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 77 | num = -EFAULT; |
| 78 | } |
| 79 | kfree(buf); |
| 80 | |
| 81 | return num; |
| 82 | } |
| 83 | |
Eric Dumazet | 31ef30c | 2009-11-05 20:47:35 -0800 | [diff] [blame] | 84 | /* called with RTNL */ |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 85 | static int add_del_if(struct net_bridge *br, int ifindex, int isadd) |
| 86 | { |
Eric W. Biederman | cb99050 | 2012-11-16 03:03:08 +0000 | [diff] [blame] | 87 | struct net *net = dev_net(br->dev); |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 88 | struct net_device *dev; |
| 89 | int ret; |
| 90 | |
Eric W. Biederman | cb99050 | 2012-11-16 03:03:08 +0000 | [diff] [blame] | 91 | if (!ns_capable(net->user_ns, CAP_NET_ADMIN)) |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 92 | return -EPERM; |
| 93 | |
Eric W. Biederman | cb99050 | 2012-11-16 03:03:08 +0000 | [diff] [blame] | 94 | dev = __dev_get_by_index(net, ifindex); |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 95 | if (dev == NULL) |
| 96 | return -EINVAL; |
YOSHIFUJI Hideaki | 9d6f229 | 2007-02-09 23:24:35 +0900 | [diff] [blame] | 97 | |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 98 | if (isadd) |
David Ahern | ca752be | 2017-10-04 17:48:50 -0700 | [diff] [blame] | 99 | ret = br_add_if(br, dev, NULL); |
David S. Miller | eccaa9e | 2017-09-20 15:39:59 -0700 | [diff] [blame] | 100 | else |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 101 | ret = br_del_if(br, dev); |
| 102 | |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 103 | return ret; |
| 104 | } |
| 105 | |
Remi Pommarel | fd3a459 | 2021-12-24 12:46:40 +0100 | [diff] [blame] | 106 | #define BR_UARGS_MAX 4 |
| 107 | static int br_dev_read_uargs(unsigned long *args, size_t nr_args, |
| 108 | void __user **argp, void __user *data) |
| 109 | { |
| 110 | int ret; |
| 111 | |
| 112 | if (nr_args < 2 || nr_args > BR_UARGS_MAX) |
| 113 | return -EINVAL; |
| 114 | |
| 115 | if (in_compat_syscall()) { |
| 116 | unsigned int cargs[BR_UARGS_MAX]; |
| 117 | int i; |
| 118 | |
| 119 | ret = copy_from_user(cargs, data, nr_args * sizeof(*cargs)); |
| 120 | if (ret) |
| 121 | goto fault; |
| 122 | |
| 123 | for (i = 0; i < nr_args; ++i) |
| 124 | args[i] = cargs[i]; |
| 125 | |
| 126 | *argp = compat_ptr(args[1]); |
| 127 | } else { |
| 128 | ret = copy_from_user(args, data, nr_args * sizeof(*args)); |
| 129 | if (ret) |
| 130 | goto fault; |
| 131 | *argp = (void __user *)args[1]; |
| 132 | } |
| 133 | |
| 134 | return 0; |
| 135 | fault: |
| 136 | return -EFAULT; |
| 137 | } |
| 138 | |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 139 | /* |
| 140 | * Legacy ioctl's through SIOCDEVPRIVATE |
Randy Dunlap | 4bbd026 | 2020-09-17 21:35:21 -0700 | [diff] [blame] | 141 | * This interface is deprecated because it was too difficult |
Lucas De Marchi | 25985ed | 2011-03-30 22:57:33 -0300 | [diff] [blame] | 142 | * to do the translation for 32/64bit ioctl compatibility. |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 143 | */ |
Remi Pommarel | fd3a459 | 2021-12-24 12:46:40 +0100 | [diff] [blame] | 144 | int br_dev_siocdevprivate(struct net_device *dev, struct ifreq *rq, |
| 145 | void __user *data, int cmd) |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 146 | { |
| 147 | struct net_bridge *br = netdev_priv(dev); |
Xin Long | bf871ad | 2016-04-09 00:03:33 +0800 | [diff] [blame] | 148 | struct net_bridge_port *p = NULL; |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 149 | unsigned long args[4]; |
Arnd Bergmann | 561d835 | 2021-07-27 15:44:51 +0200 | [diff] [blame] | 150 | void __user *argp; |
Remi Pommarel | fd3a459 | 2021-12-24 12:46:40 +0100 | [diff] [blame] | 151 | int ret; |
YOSHIFUJI Hideaki | 9d6f229 | 2007-02-09 23:24:35 +0900 | [diff] [blame] | 152 | |
Remi Pommarel | fd3a459 | 2021-12-24 12:46:40 +0100 | [diff] [blame] | 153 | ret = br_dev_read_uargs(args, ARRAY_SIZE(args), &argp, data); |
| 154 | if (ret) |
| 155 | return ret; |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 156 | |
| 157 | switch (args[0]) { |
| 158 | case BRCTL_ADD_IF: |
| 159 | case BRCTL_DEL_IF: |
| 160 | return add_del_if(br, args[1], args[0] == BRCTL_ADD_IF); |
| 161 | |
| 162 | case BRCTL_GET_BRIDGE_INFO: |
| 163 | { |
| 164 | struct __bridge_info b; |
| 165 | |
| 166 | memset(&b, 0, sizeof(struct __bridge_info)); |
| 167 | rcu_read_lock(); |
| 168 | memcpy(&b.designated_root, &br->designated_root, 8); |
| 169 | memcpy(&b.bridge_id, &br->bridge_id, 8); |
| 170 | b.root_path_cost = br->root_path_cost; |
| 171 | b.max_age = jiffies_to_clock_t(br->max_age); |
| 172 | b.hello_time = jiffies_to_clock_t(br->hello_time); |
| 173 | b.forward_delay = br->forward_delay; |
| 174 | b.bridge_max_age = br->bridge_max_age; |
| 175 | b.bridge_hello_time = br->bridge_hello_time; |
| 176 | b.bridge_forward_delay = jiffies_to_clock_t(br->bridge_forward_delay); |
| 177 | b.topology_change = br->topology_change; |
| 178 | b.topology_change_detected = br->topology_change_detected; |
| 179 | b.root_port = br->root_port; |
Stephen Hemminger | 9cde070 | 2007-03-21 14:22:44 -0700 | [diff] [blame] | 180 | |
| 181 | b.stp_enabled = (br->stp_enabled != BR_NO_STP); |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 182 | b.ageing_time = jiffies_to_clock_t(br->ageing_time); |
| 183 | b.hello_timer_value = br_timer_value(&br->hello_timer); |
| 184 | b.tcn_timer_value = br_timer_value(&br->tcn_timer); |
| 185 | b.topology_change_timer_value = br_timer_value(&br->topology_change_timer); |
Nikolay Aleksandrov | f7cdee8 | 2017-02-04 18:05:07 +0100 | [diff] [blame] | 186 | b.gc_timer_value = br_timer_value(&br->gc_work.timer); |
YOSHIFUJI Hideaki | 9d6f229 | 2007-02-09 23:24:35 +0900 | [diff] [blame] | 187 | rcu_read_unlock(); |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 188 | |
| 189 | if (copy_to_user((void __user *)args[1], &b, sizeof(b))) |
| 190 | return -EFAULT; |
| 191 | |
| 192 | return 0; |
| 193 | } |
| 194 | |
| 195 | case BRCTL_GET_PORT_LIST: |
| 196 | { |
| 197 | int num, *indices; |
| 198 | |
| 199 | num = args[2]; |
| 200 | if (num < 0) |
| 201 | return -EINVAL; |
| 202 | if (num == 0) |
| 203 | num = 256; |
| 204 | if (num > BR_MAX_PORTS) |
| 205 | num = BR_MAX_PORTS; |
| 206 | |
Panagiotis Issaris | 0da974f | 2006-07-21 14:51:30 -0700 | [diff] [blame] | 207 | indices = kcalloc(num, sizeof(int), GFP_KERNEL); |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 208 | if (indices == NULL) |
| 209 | return -ENOMEM; |
| 210 | |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 211 | get_port_ifindices(br, indices, num); |
Gustavo A. R. Silva | 865bfb2 | 2021-09-28 15:12:39 -0500 | [diff] [blame] | 212 | if (copy_to_user(argp, indices, array_size(num, sizeof(int)))) |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 213 | num = -EFAULT; |
| 214 | kfree(indices); |
| 215 | return num; |
| 216 | } |
| 217 | |
| 218 | case BRCTL_SET_BRIDGE_FORWARD_DELAY: |
Eric W. Biederman | cb99050 | 2012-11-16 03:03:08 +0000 | [diff] [blame] | 219 | if (!ns_capable(dev_net(dev)->user_ns, CAP_NET_ADMIN)) |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 220 | return -EPERM; |
| 221 | |
Xin Long | bf871ad | 2016-04-09 00:03:33 +0800 | [diff] [blame] | 222 | ret = br_set_forward_delay(br, args[1]); |
| 223 | break; |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 224 | |
| 225 | case BRCTL_SET_BRIDGE_HELLO_TIME: |
Eric W. Biederman | cb99050 | 2012-11-16 03:03:08 +0000 | [diff] [blame] | 226 | if (!ns_capable(dev_net(dev)->user_ns, CAP_NET_ADMIN)) |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 227 | return -EPERM; |
| 228 | |
Xin Long | bf871ad | 2016-04-09 00:03:33 +0800 | [diff] [blame] | 229 | ret = br_set_hello_time(br, args[1]); |
| 230 | break; |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 231 | |
| 232 | case BRCTL_SET_BRIDGE_MAX_AGE: |
Eric W. Biederman | cb99050 | 2012-11-16 03:03:08 +0000 | [diff] [blame] | 233 | if (!ns_capable(dev_net(dev)->user_ns, CAP_NET_ADMIN)) |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 234 | return -EPERM; |
| 235 | |
Xin Long | bf871ad | 2016-04-09 00:03:33 +0800 | [diff] [blame] | 236 | ret = br_set_max_age(br, args[1]); |
| 237 | break; |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 238 | |
| 239 | case BRCTL_SET_AGEING_TIME: |
Eric W. Biederman | cb99050 | 2012-11-16 03:03:08 +0000 | [diff] [blame] | 240 | if (!ns_capable(dev_net(dev)->user_ns, CAP_NET_ADMIN)) |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 241 | return -EPERM; |
| 242 | |
Xin Long | bf871ad | 2016-04-09 00:03:33 +0800 | [diff] [blame] | 243 | ret = br_set_ageing_time(br, args[1]); |
| 244 | break; |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 245 | |
| 246 | case BRCTL_GET_PORT_INFO: |
| 247 | { |
| 248 | struct __port_info p; |
| 249 | struct net_bridge_port *pt; |
| 250 | |
| 251 | rcu_read_lock(); |
| 252 | if ((pt = br_get_port(br, args[2])) == NULL) { |
| 253 | rcu_read_unlock(); |
| 254 | return -EINVAL; |
| 255 | } |
| 256 | |
| 257 | memset(&p, 0, sizeof(struct __port_info)); |
| 258 | memcpy(&p.designated_root, &pt->designated_root, 8); |
| 259 | memcpy(&p.designated_bridge, &pt->designated_bridge, 8); |
| 260 | p.port_id = pt->port_id; |
| 261 | p.designated_port = pt->designated_port; |
| 262 | p.path_cost = pt->path_cost; |
| 263 | p.designated_cost = pt->designated_cost; |
| 264 | p.state = pt->state; |
| 265 | p.top_change_ack = pt->topology_change_ack; |
| 266 | p.config_pending = pt->config_pending; |
| 267 | p.message_age_timer_value = br_timer_value(&pt->message_age_timer); |
| 268 | p.forward_delay_timer_value = br_timer_value(&pt->forward_delay_timer); |
| 269 | p.hold_timer_value = br_timer_value(&pt->hold_timer); |
| 270 | |
| 271 | rcu_read_unlock(); |
| 272 | |
Arnd Bergmann | 561d835 | 2021-07-27 15:44:51 +0200 | [diff] [blame] | 273 | if (copy_to_user(argp, &p, sizeof(p))) |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 274 | return -EFAULT; |
| 275 | |
| 276 | return 0; |
| 277 | } |
| 278 | |
| 279 | case BRCTL_SET_BRIDGE_STP_STATE: |
Eric W. Biederman | cb99050 | 2012-11-16 03:03:08 +0000 | [diff] [blame] | 280 | if (!ns_capable(dev_net(dev)->user_ns, CAP_NET_ADMIN)) |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 281 | return -EPERM; |
| 282 | |
Horatiu Vultur | 419dba8a | 2020-04-26 15:22:08 +0200 | [diff] [blame] | 283 | ret = br_stp_set_enabled(br, args[1], NULL); |
Xin Long | bf871ad | 2016-04-09 00:03:33 +0800 | [diff] [blame] | 284 | break; |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 285 | |
| 286 | case BRCTL_SET_BRIDGE_PRIORITY: |
Eric W. Biederman | cb99050 | 2012-11-16 03:03:08 +0000 | [diff] [blame] | 287 | if (!ns_capable(dev_net(dev)->user_ns, CAP_NET_ADMIN)) |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 288 | return -EPERM; |
| 289 | |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 290 | br_stp_set_bridge_priority(br, args[1]); |
Xin Long | bf871ad | 2016-04-09 00:03:33 +0800 | [diff] [blame] | 291 | ret = 0; |
| 292 | break; |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 293 | |
| 294 | case BRCTL_SET_PORT_PRIORITY: |
| 295 | { |
Eric W. Biederman | cb99050 | 2012-11-16 03:03:08 +0000 | [diff] [blame] | 296 | if (!ns_capable(dev_net(dev)->user_ns, CAP_NET_ADMIN)) |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 297 | return -EPERM; |
| 298 | |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 299 | spin_lock_bh(&br->lock); |
YOSHIFUJI Hideaki | 9d6f229 | 2007-02-09 23:24:35 +0900 | [diff] [blame] | 300 | if ((p = br_get_port(br, args[1])) == NULL) |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 301 | ret = -EINVAL; |
| 302 | else |
stephen hemminger | 14f98f2 | 2011-04-04 14:03:33 +0000 | [diff] [blame] | 303 | ret = br_stp_set_port_priority(p, args[2]); |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 304 | spin_unlock_bh(&br->lock); |
Xin Long | bf871ad | 2016-04-09 00:03:33 +0800 | [diff] [blame] | 305 | break; |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 306 | } |
| 307 | |
| 308 | case BRCTL_SET_PATH_COST: |
| 309 | { |
Eric W. Biederman | cb99050 | 2012-11-16 03:03:08 +0000 | [diff] [blame] | 310 | if (!ns_capable(dev_net(dev)->user_ns, CAP_NET_ADMIN)) |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 311 | return -EPERM; |
| 312 | |
stephen hemminger | 14f98f2 | 2011-04-04 14:03:33 +0000 | [diff] [blame] | 313 | spin_lock_bh(&br->lock); |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 314 | if ((p = br_get_port(br, args[1])) == NULL) |
| 315 | ret = -EINVAL; |
| 316 | else |
stephen hemminger | 14f98f2 | 2011-04-04 14:03:33 +0000 | [diff] [blame] | 317 | ret = br_stp_set_path_cost(p, args[2]); |
| 318 | spin_unlock_bh(&br->lock); |
Xin Long | bf871ad | 2016-04-09 00:03:33 +0800 | [diff] [blame] | 319 | break; |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 320 | } |
| 321 | |
| 322 | case BRCTL_GET_FDB_ENTRIES: |
Arnd Bergmann | 561d835 | 2021-07-27 15:44:51 +0200 | [diff] [blame] | 323 | return get_fdb_entries(br, argp, args[2], args[3]); |
Remi Pommarel | fd3a459 | 2021-12-24 12:46:40 +0100 | [diff] [blame] | 324 | |
| 325 | default: |
| 326 | ret = -EOPNOTSUPP; |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 327 | } |
| 328 | |
Xin Long | bf871ad | 2016-04-09 00:03:33 +0800 | [diff] [blame] | 329 | if (!ret) { |
| 330 | if (p) |
Nikolay Aleksandrov | 9289906 | 2017-11-01 12:18:13 +0200 | [diff] [blame] | 331 | br_ifinfo_notify(RTM_NEWLINK, NULL, p); |
Xin Long | bf871ad | 2016-04-09 00:03:33 +0800 | [diff] [blame] | 332 | else |
| 333 | netdev_state_change(br->dev); |
| 334 | } |
| 335 | |
| 336 | return ret; |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 337 | } |
| 338 | |
Remi Pommarel | fd3a459 | 2021-12-24 12:46:40 +0100 | [diff] [blame] | 339 | static int old_deviceless(struct net *net, void __user *data) |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 340 | { |
| 341 | unsigned long args[3]; |
Remi Pommarel | fd3a459 | 2021-12-24 12:46:40 +0100 | [diff] [blame] | 342 | void __user *argp; |
| 343 | int ret; |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 344 | |
Remi Pommarel | fd3a459 | 2021-12-24 12:46:40 +0100 | [diff] [blame] | 345 | ret = br_dev_read_uargs(args, ARRAY_SIZE(args), &argp, data); |
| 346 | if (ret) |
| 347 | return ret; |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 348 | |
| 349 | switch (args[0]) { |
| 350 | case BRCTL_GET_VERSION: |
| 351 | return BRCTL_VERSION; |
| 352 | |
| 353 | case BRCTL_GET_BRIDGES: |
| 354 | { |
| 355 | int *indices; |
| 356 | int ret = 0; |
| 357 | |
| 358 | if (args[2] >= 2048) |
| 359 | return -ENOMEM; |
Panagiotis Issaris | 0da974f | 2006-07-21 14:51:30 -0700 | [diff] [blame] | 360 | indices = kcalloc(args[2], sizeof(int), GFP_KERNEL); |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 361 | if (indices == NULL) |
| 362 | return -ENOMEM; |
| 363 | |
Alexey Dobriyan | 4aa678b | 2008-09-08 16:19:58 -0700 | [diff] [blame] | 364 | args[2] = get_bridge_ifindices(net, indices, args[2]); |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 365 | |
Remi Pommarel | fd3a459 | 2021-12-24 12:46:40 +0100 | [diff] [blame] | 366 | ret = copy_to_user(argp, indices, |
Gustavo A. R. Silva | 865bfb2 | 2021-09-28 15:12:39 -0500 | [diff] [blame] | 367 | array_size(args[2], sizeof(int))) |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 368 | ? -EFAULT : args[2]; |
| 369 | |
| 370 | kfree(indices); |
| 371 | return ret; |
| 372 | } |
| 373 | |
| 374 | case BRCTL_ADD_BRIDGE: |
| 375 | case BRCTL_DEL_BRIDGE: |
| 376 | { |
| 377 | char buf[IFNAMSIZ]; |
| 378 | |
Eric W. Biederman | cb99050 | 2012-11-16 03:03:08 +0000 | [diff] [blame] | 379 | if (!ns_capable(net->user_ns, CAP_NET_ADMIN)) |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 380 | return -EPERM; |
| 381 | |
Remi Pommarel | fd3a459 | 2021-12-24 12:46:40 +0100 | [diff] [blame] | 382 | if (copy_from_user(buf, argp, IFNAMSIZ)) |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 383 | return -EFAULT; |
| 384 | |
| 385 | buf[IFNAMSIZ-1] = 0; |
| 386 | |
| 387 | if (args[0] == BRCTL_ADD_BRIDGE) |
Alexey Dobriyan | 4aa678b | 2008-09-08 16:19:58 -0700 | [diff] [blame] | 388 | return br_add_bridge(net, buf); |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 389 | |
Alexey Dobriyan | 4aa678b | 2008-09-08 16:19:58 -0700 | [diff] [blame] | 390 | return br_del_bridge(net, buf); |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 391 | } |
| 392 | } |
| 393 | |
| 394 | return -EOPNOTSUPP; |
| 395 | } |
| 396 | |
Arnd Bergmann | ad2f99a | 2021-07-27 15:45:16 +0200 | [diff] [blame] | 397 | int br_ioctl_stub(struct net *net, struct net_bridge *br, unsigned int cmd, |
| 398 | struct ifreq *ifr, void __user *uarg) |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 399 | { |
Nikolay Aleksandrov | 893b195 | 2021-08-05 11:29:01 +0300 | [diff] [blame] | 400 | int ret = -EOPNOTSUPP; |
| 401 | |
| 402 | rtnl_lock(); |
| 403 | |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 404 | switch (cmd) { |
| 405 | case SIOCGIFBR: |
| 406 | case SIOCSIFBR: |
Nikolay Aleksandrov | 893b195 | 2021-08-05 11:29:01 +0300 | [diff] [blame] | 407 | ret = old_deviceless(net, uarg); |
| 408 | break; |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 409 | case SIOCBRADDBR: |
| 410 | case SIOCBRDELBR: |
| 411 | { |
| 412 | char buf[IFNAMSIZ]; |
| 413 | |
Nikolay Aleksandrov | 893b195 | 2021-08-05 11:29:01 +0300 | [diff] [blame] | 414 | if (!ns_capable(net->user_ns, CAP_NET_ADMIN)) { |
| 415 | ret = -EPERM; |
| 416 | break; |
| 417 | } |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 418 | |
Nikolay Aleksandrov | 893b195 | 2021-08-05 11:29:01 +0300 | [diff] [blame] | 419 | if (copy_from_user(buf, uarg, IFNAMSIZ)) { |
| 420 | ret = -EFAULT; |
| 421 | break; |
| 422 | } |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 423 | |
| 424 | buf[IFNAMSIZ-1] = 0; |
| 425 | if (cmd == SIOCBRADDBR) |
Nikolay Aleksandrov | 893b195 | 2021-08-05 11:29:01 +0300 | [diff] [blame] | 426 | ret = br_add_bridge(net, buf); |
| 427 | else |
| 428 | ret = br_del_bridge(net, buf); |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 429 | } |
Nikolay Aleksandrov | 893b195 | 2021-08-05 11:29:01 +0300 | [diff] [blame] | 430 | break; |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 431 | case SIOCBRADDIF: |
| 432 | case SIOCBRDELIF: |
Nikolay Aleksandrov | 893b195 | 2021-08-05 11:29:01 +0300 | [diff] [blame] | 433 | ret = add_del_if(br, ifr->ifr_ifindex, cmd == SIOCBRADDIF); |
| 434 | break; |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 435 | } |
Nikolay Aleksandrov | 893b195 | 2021-08-05 11:29:01 +0300 | [diff] [blame] | 436 | |
| 437 | rtnl_unlock(); |
| 438 | |
| 439 | return ret; |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 440 | } |