Thomas Gleixner | 2874c5f | 2019-05-27 08:55:01 +0200 | [diff] [blame] | 1 | /* SPDX-License-Identifier: GPL-2.0-or-later */ |
Herbert Xu | f845172 | 2010-05-24 00:12:34 -0700 | [diff] [blame] | 2 | /* |
| 3 | * cls_cgroup.h Control Group Classifier |
| 4 | * |
| 5 | * Authors: Thomas Graf <tgraf@suug.ch> |
Herbert Xu | f845172 | 2010-05-24 00:12:34 -0700 | [diff] [blame] | 6 | */ |
| 7 | |
| 8 | #ifndef _NET_CLS_CGROUP_H |
| 9 | #define _NET_CLS_CGROUP_H |
| 10 | |
| 11 | #include <linux/cgroup.h> |
| 12 | #include <linux/hardirq.h> |
| 13 | #include <linux/rcupdate.h> |
Daniel Borkmann | fe1217c | 2013-12-29 18:27:10 +0100 | [diff] [blame] | 14 | #include <net/sock.h> |
Konstantin Khlebnikov | 2309236 | 2016-04-18 14:37:10 +0300 | [diff] [blame] | 15 | #include <net/inet_sock.h> |
Herbert Xu | f845172 | 2010-05-24 00:12:34 -0700 | [diff] [blame] | 16 | |
Daniel Borkmann | fe1217c | 2013-12-29 18:27:10 +0100 | [diff] [blame] | 17 | #ifdef CONFIG_CGROUP_NET_CLASSID |
| 18 | struct cgroup_cls_state { |
Herbert Xu | f845172 | 2010-05-24 00:12:34 -0700 | [diff] [blame] | 19 | struct cgroup_subsys_state css; |
| 20 | u32 classid; |
| 21 | }; |
| 22 | |
Daniel Borkmann | fe1217c | 2013-12-29 18:27:10 +0100 | [diff] [blame] | 23 | struct cgroup_cls_state *task_cls_state(struct task_struct *p); |
Daniel Wagner | f341980 | 2012-09-12 16:12:01 +0200 | [diff] [blame] | 24 | |
Herbert Xu | f845172 | 2010-05-24 00:12:34 -0700 | [diff] [blame] | 25 | static inline u32 task_cls_classid(struct task_struct *p) |
| 26 | { |
Daniel Wagner | 920750c | 2012-10-25 04:16:56 +0000 | [diff] [blame] | 27 | u32 classid; |
Li Zefan | 3fb5a99 | 2010-09-02 15:42:43 +0000 | [diff] [blame] | 28 | |
Herbert Xu | f845172 | 2010-05-24 00:12:34 -0700 | [diff] [blame] | 29 | if (in_interrupt()) |
| 30 | return 0; |
| 31 | |
Li Zefan | 3fb5a99 | 2010-09-02 15:42:43 +0000 | [diff] [blame] | 32 | rcu_read_lock(); |
Tejun Heo | 073219e | 2014-02-08 10:36:58 -0500 | [diff] [blame] | 33 | classid = container_of(task_css(p, net_cls_cgrp_id), |
Li Zefan | 3fb5a99 | 2010-09-02 15:42:43 +0000 | [diff] [blame] | 34 | struct cgroup_cls_state, css)->classid; |
| 35 | rcu_read_unlock(); |
| 36 | |
| 37 | return classid; |
Herbert Xu | f845172 | 2010-05-24 00:12:34 -0700 | [diff] [blame] | 38 | } |
Daniel Borkmann | fe1217c | 2013-12-29 18:27:10 +0100 | [diff] [blame] | 39 | |
Tejun Heo | 2a56a1f | 2015-12-07 17:38:52 -0500 | [diff] [blame] | 40 | static inline void sock_update_classid(struct sock_cgroup_data *skcd) |
Herbert Xu | f845172 | 2010-05-24 00:12:34 -0700 | [diff] [blame] | 41 | { |
Daniel Borkmann | fe1217c | 2013-12-29 18:27:10 +0100 | [diff] [blame] | 42 | u32 classid; |
Herbert Xu | f845172 | 2010-05-24 00:12:34 -0700 | [diff] [blame] | 43 | |
Daniel Borkmann | fe1217c | 2013-12-29 18:27:10 +0100 | [diff] [blame] | 44 | classid = task_cls_classid(current); |
Tejun Heo | 2a56a1f | 2015-12-07 17:38:52 -0500 | [diff] [blame] | 45 | sock_cgroup_set_classid(skcd, classid); |
Herbert Xu | f845172 | 2010-05-24 00:12:34 -0700 | [diff] [blame] | 46 | } |
Daniel Borkmann | b87a173 | 2015-07-15 14:21:41 +0200 | [diff] [blame] | 47 | |
Daniel Borkmann | 5a52ae4 | 2020-03-27 16:58:53 +0100 | [diff] [blame] | 48 | static inline u32 __task_get_classid(struct task_struct *task) |
| 49 | { |
| 50 | return task_cls_state(task)->classid; |
| 51 | } |
| 52 | |
Daniel Borkmann | b87a173 | 2015-07-15 14:21:41 +0200 | [diff] [blame] | 53 | static inline u32 task_get_classid(const struct sk_buff *skb) |
| 54 | { |
Daniel Borkmann | 5a52ae4 | 2020-03-27 16:58:53 +0100 | [diff] [blame] | 55 | u32 classid = __task_get_classid(current); |
Daniel Borkmann | b87a173 | 2015-07-15 14:21:41 +0200 | [diff] [blame] | 56 | |
| 57 | /* Due to the nature of the classifier it is required to ignore all |
| 58 | * packets originating from softirq context as accessing `current' |
| 59 | * would lead to false results. |
| 60 | * |
| 61 | * This test assumes that all callers of dev_queue_xmit() explicitly |
| 62 | * disable bh. Knowing this, it is possible to detect softirq based |
| 63 | * calls by looking at the number of nested bh disable calls because |
| 64 | * softirqs always disables bh. |
| 65 | */ |
| 66 | if (in_serving_softirq()) { |
Konstantin Khlebnikov | 2309236 | 2016-04-18 14:37:10 +0300 | [diff] [blame] | 67 | struct sock *sk = skb_to_full_sk(skb); |
| 68 | |
Tejun Heo | 2a56a1f | 2015-12-07 17:38:52 -0500 | [diff] [blame] | 69 | /* If there is an sock_cgroup_classid we'll use that. */ |
Konstantin Khlebnikov | 2309236 | 2016-04-18 14:37:10 +0300 | [diff] [blame] | 70 | if (!sk || !sk_fullsock(sk)) |
Daniel Borkmann | b87a173 | 2015-07-15 14:21:41 +0200 | [diff] [blame] | 71 | return 0; |
| 72 | |
Konstantin Khlebnikov | 2309236 | 2016-04-18 14:37:10 +0300 | [diff] [blame] | 73 | classid = sock_cgroup_classid(&sk->sk_cgrp_data); |
Daniel Borkmann | b87a173 | 2015-07-15 14:21:41 +0200 | [diff] [blame] | 74 | } |
| 75 | |
| 76 | return classid; |
| 77 | } |
Daniel Borkmann | fe1217c | 2013-12-29 18:27:10 +0100 | [diff] [blame] | 78 | #else /* !CONFIG_CGROUP_NET_CLASSID */ |
Tejun Heo | 2a56a1f | 2015-12-07 17:38:52 -0500 | [diff] [blame] | 79 | static inline void sock_update_classid(struct sock_cgroup_data *skcd) |
Daniel Wagner | f341980 | 2012-09-12 16:12:01 +0200 | [diff] [blame] | 80 | { |
| 81 | } |
Daniel Borkmann | b87a173 | 2015-07-15 14:21:41 +0200 | [diff] [blame] | 82 | |
| 83 | static inline u32 task_get_classid(const struct sk_buff *skb) |
| 84 | { |
| 85 | return 0; |
| 86 | } |
Daniel Borkmann | fe1217c | 2013-12-29 18:27:10 +0100 | [diff] [blame] | 87 | #endif /* CONFIG_CGROUP_NET_CLASSID */ |
Herbert Xu | f845172 | 2010-05-24 00:12:34 -0700 | [diff] [blame] | 88 | #endif /* _NET_CLS_CGROUP_H */ |