Thomas Gleixner | 1ccea77 | 2019-05-19 15:51:43 +0200 | [diff] [blame] | 1 | // SPDX-License-Identifier: GPL-2.0-or-later |
Noriaki TAKAMIYA | 2c8d7ca | 2006-08-23 20:31:11 -0700 | [diff] [blame] | 2 | /* |
| 3 | * Copyright (C)2003-2006 Helsinki University of Technology |
| 4 | * Copyright (C)2003-2006 USAGI/WIDE Project |
Noriaki TAKAMIYA | 2c8d7ca | 2006-08-23 20:31:11 -0700 | [diff] [blame] | 5 | */ |
| 6 | /* |
| 7 | * Authors: |
| 8 | * Noriaki TAKAMIYA @USAGI |
| 9 | * Masahide NAKAMURA @USAGI |
| 10 | */ |
| 11 | |
Joe Perches | f321383 | 2012-05-15 14:11:53 +0000 | [diff] [blame] | 12 | #define pr_fmt(fmt) KBUILD_MODNAME ": " fmt |
| 13 | |
Noriaki TAKAMIYA | 2c8d7ca | 2006-08-23 20:31:11 -0700 | [diff] [blame] | 14 | #include <linux/module.h> |
| 15 | #include <linux/skbuff.h> |
Masahide NAKAMURA | 70182ed | 2006-08-23 20:45:55 -0700 | [diff] [blame] | 16 | #include <linux/time.h> |
Noriaki TAKAMIYA | 2c8d7ca | 2006-08-23 20:31:11 -0700 | [diff] [blame] | 17 | #include <linux/ipv6.h> |
Masahide NAKAMURA | 7be96f7 | 2006-08-23 20:35:31 -0700 | [diff] [blame] | 18 | #include <linux/icmpv6.h> |
| 19 | #include <net/sock.h> |
Noriaki TAKAMIYA | 2c8d7ca | 2006-08-23 20:31:11 -0700 | [diff] [blame] | 20 | #include <net/ipv6.h> |
Masahide NAKAMURA | 7be96f7 | 2006-08-23 20:35:31 -0700 | [diff] [blame] | 21 | #include <net/ip6_checksum.h> |
Masahide NAKAMURA | 59fbb3a6 | 2007-06-26 23:56:32 -0700 | [diff] [blame] | 22 | #include <net/rawv6.h> |
Noriaki TAKAMIYA | 2c8d7ca | 2006-08-23 20:31:11 -0700 | [diff] [blame] | 23 | #include <net/xfrm.h> |
| 24 | #include <net/mip6.h> |
| 25 | |
Noriaki TAKAMIYA | 3d12689 | 2006-08-23 20:32:34 -0700 | [diff] [blame] | 26 | static inline unsigned int calc_padlen(unsigned int len, unsigned int n) |
| 27 | { |
| 28 | return (n - len + 16) & 0x7; |
| 29 | } |
| 30 | |
| 31 | static inline void *mip6_padn(__u8 *data, __u8 padlen) |
| 32 | { |
| 33 | if (!data) |
| 34 | return NULL; |
| 35 | if (padlen == 1) { |
Eldad Zack | 1de5a71 | 2012-05-17 06:00:25 +0000 | [diff] [blame] | 36 | data[0] = IPV6_TLV_PAD1; |
Noriaki TAKAMIYA | 3d12689 | 2006-08-23 20:32:34 -0700 | [diff] [blame] | 37 | } else if (padlen > 1) { |
YOSHIFUJI Hideaki | 7f1eced | 2008-04-10 15:42:12 +0900 | [diff] [blame] | 38 | data[0] = IPV6_TLV_PADN; |
Noriaki TAKAMIYA | 3d12689 | 2006-08-23 20:32:34 -0700 | [diff] [blame] | 39 | data[1] = padlen - 2; |
| 40 | if (padlen > 2) |
| 41 | memset(data+2, 0, data[1]); |
| 42 | } |
| 43 | return data + padlen; |
| 44 | } |
| 45 | |
Brian Haley | d5fdd6b | 2009-06-23 04:31:07 -0700 | [diff] [blame] | 46 | static inline void mip6_param_prob(struct sk_buff *skb, u8 code, int pos) |
Masahide NAKAMURA | 7be96f7 | 2006-08-23 20:35:31 -0700 | [diff] [blame] | 47 | { |
Alexey Dobriyan | 3ffe533 | 2010-02-18 08:25:24 +0000 | [diff] [blame] | 48 | icmpv6_send(skb, ICMPV6_PARAMPROB, code, pos); |
Masahide NAKAMURA | 7be96f7 | 2006-08-23 20:35:31 -0700 | [diff] [blame] | 49 | } |
| 50 | |
| 51 | static int mip6_mh_len(int type) |
| 52 | { |
| 53 | int len = 0; |
| 54 | |
| 55 | switch (type) { |
| 56 | case IP6_MH_TYPE_BRR: |
| 57 | len = 0; |
| 58 | break; |
| 59 | case IP6_MH_TYPE_HOTI: |
| 60 | case IP6_MH_TYPE_COTI: |
| 61 | case IP6_MH_TYPE_BU: |
| 62 | case IP6_MH_TYPE_BACK: |
| 63 | len = 1; |
| 64 | break; |
| 65 | case IP6_MH_TYPE_HOT: |
| 66 | case IP6_MH_TYPE_COT: |
| 67 | case IP6_MH_TYPE_BERROR: |
| 68 | len = 2; |
| 69 | break; |
| 70 | } |
| 71 | return len; |
| 72 | } |
| 73 | |
Masahide NAKAMURA | 59fbb3a6 | 2007-06-26 23:56:32 -0700 | [diff] [blame] | 74 | static int mip6_mh_filter(struct sock *sk, struct sk_buff *skb) |
Masahide NAKAMURA | 7be96f7 | 2006-08-23 20:35:31 -0700 | [diff] [blame] | 75 | { |
Eric Dumazet | 96af69e | 2012-09-25 22:01:28 +0200 | [diff] [blame] | 76 | struct ip6_mh _hdr; |
| 77 | const struct ip6_mh *mh; |
Masahide NAKAMURA | 7be96f7 | 2006-08-23 20:35:31 -0700 | [diff] [blame] | 78 | |
Eric Dumazet | 96af69e | 2012-09-25 22:01:28 +0200 | [diff] [blame] | 79 | mh = skb_header_pointer(skb, skb_transport_offset(skb), |
| 80 | sizeof(_hdr), &_hdr); |
| 81 | if (!mh) |
Masahide NAKAMURA | 7be96f7 | 2006-08-23 20:35:31 -0700 | [diff] [blame] | 82 | return -1; |
| 83 | |
Eric Dumazet | 96af69e | 2012-09-25 22:01:28 +0200 | [diff] [blame] | 84 | if (((mh->ip6mh_hdrlen + 1) << 3) > skb->len) |
| 85 | return -1; |
Masahide NAKAMURA | 7be96f7 | 2006-08-23 20:35:31 -0700 | [diff] [blame] | 86 | |
| 87 | if (mh->ip6mh_hdrlen < mip6_mh_len(mh->ip6mh_type)) { |
Joe Perches | ba7a46f | 2014-11-11 10:59:17 -0800 | [diff] [blame] | 88 | net_dbg_ratelimited("mip6: MH message too short: %d vs >=%d\n", |
| 89 | mh->ip6mh_hdrlen, |
| 90 | mip6_mh_len(mh->ip6mh_type)); |
Eric Dumazet | 96af69e | 2012-09-25 22:01:28 +0200 | [diff] [blame] | 91 | mip6_param_prob(skb, 0, offsetof(struct ip6_mh, ip6mh_hdrlen) + |
| 92 | skb_network_header_len(skb)); |
Masahide NAKAMURA | 7be96f7 | 2006-08-23 20:35:31 -0700 | [diff] [blame] | 93 | return -1; |
| 94 | } |
Masahide NAKAMURA | 7be96f7 | 2006-08-23 20:35:31 -0700 | [diff] [blame] | 95 | |
| 96 | if (mh->ip6mh_proto != IPPROTO_NONE) { |
Joe Perches | ba7a46f | 2014-11-11 10:59:17 -0800 | [diff] [blame] | 97 | net_dbg_ratelimited("mip6: MH invalid payload proto = %d\n", |
| 98 | mh->ip6mh_proto); |
Eric Dumazet | 96af69e | 2012-09-25 22:01:28 +0200 | [diff] [blame] | 99 | mip6_param_prob(skb, 0, offsetof(struct ip6_mh, ip6mh_proto) + |
| 100 | skb_network_header_len(skb)); |
Masahide NAKAMURA | 7be96f7 | 2006-08-23 20:35:31 -0700 | [diff] [blame] | 101 | return -1; |
| 102 | } |
| 103 | |
| 104 | return 0; |
| 105 | } |
| 106 | |
Masahide NAKAMURA | 70182ed | 2006-08-23 20:45:55 -0700 | [diff] [blame] | 107 | struct mip6_report_rate_limiter { |
| 108 | spinlock_t lock; |
Arnd Bergmann | 3dd7669 | 2015-09-30 13:26:39 +0200 | [diff] [blame] | 109 | ktime_t stamp; |
Masahide NAKAMURA | 70182ed | 2006-08-23 20:45:55 -0700 | [diff] [blame] | 110 | int iif; |
| 111 | struct in6_addr src; |
| 112 | struct in6_addr dst; |
| 113 | }; |
| 114 | |
| 115 | static struct mip6_report_rate_limiter mip6_report_rl = { |
Milind Arun Choudhary | 4ef8d0a | 2007-04-26 01:37:44 -0700 | [diff] [blame] | 116 | .lock = __SPIN_LOCK_UNLOCKED(mip6_report_rl.lock) |
Masahide NAKAMURA | 70182ed | 2006-08-23 20:45:55 -0700 | [diff] [blame] | 117 | }; |
| 118 | |
Noriaki TAKAMIYA | 3d12689 | 2006-08-23 20:32:34 -0700 | [diff] [blame] | 119 | static int mip6_destopt_input(struct xfrm_state *x, struct sk_buff *skb) |
| 120 | { |
Eric Dumazet | b71d1d4 | 2011-04-22 04:53:02 +0000 | [diff] [blame] | 121 | const struct ipv6hdr *iph = ipv6_hdr(skb); |
Noriaki TAKAMIYA | 3d12689 | 2006-08-23 20:32:34 -0700 | [diff] [blame] | 122 | struct ipv6_destopt_hdr *destopt = (struct ipv6_destopt_hdr *)skb->data; |
Herbert Xu | 0ebea8e | 2007-11-13 21:45:58 -0800 | [diff] [blame] | 123 | int err = destopt->nexthdr; |
Noriaki TAKAMIYA | 3d12689 | 2006-08-23 20:32:34 -0700 | [diff] [blame] | 124 | |
Herbert Xu | 0ebea8e | 2007-11-13 21:45:58 -0800 | [diff] [blame] | 125 | spin_lock(&x->lock); |
Noriaki TAKAMIYA | 3d12689 | 2006-08-23 20:32:34 -0700 | [diff] [blame] | 126 | if (!ipv6_addr_equal(&iph->saddr, (struct in6_addr *)x->coaddr) && |
| 127 | !ipv6_addr_any((struct in6_addr *)x->coaddr)) |
Herbert Xu | 0ebea8e | 2007-11-13 21:45:58 -0800 | [diff] [blame] | 128 | err = -ENOENT; |
| 129 | spin_unlock(&x->lock); |
Noriaki TAKAMIYA | 3d12689 | 2006-08-23 20:32:34 -0700 | [diff] [blame] | 130 | |
Herbert Xu | 0ebea8e | 2007-11-13 21:45:58 -0800 | [diff] [blame] | 131 | return err; |
Noriaki TAKAMIYA | 3d12689 | 2006-08-23 20:32:34 -0700 | [diff] [blame] | 132 | } |
| 133 | |
| 134 | /* Destination Option Header is inserted. |
| 135 | * IP Header's src address is replaced with Home Address Option in |
| 136 | * Destination Option Header. |
| 137 | */ |
| 138 | static int mip6_destopt_output(struct xfrm_state *x, struct sk_buff *skb) |
| 139 | { |
| 140 | struct ipv6hdr *iph; |
| 141 | struct ipv6_destopt_hdr *dstopt; |
| 142 | struct ipv6_destopt_hao *hao; |
| 143 | u8 nexthdr; |
| 144 | int len; |
| 145 | |
Herbert Xu | 7b277b1 | 2007-10-10 15:44:06 -0700 | [diff] [blame] | 146 | skb_push(skb, -skb_network_offset(skb)); |
Herbert Xu | 007f021 | 2007-10-09 13:25:59 -0700 | [diff] [blame] | 147 | iph = ipv6_hdr(skb); |
Noriaki TAKAMIYA | 3d12689 | 2006-08-23 20:32:34 -0700 | [diff] [blame] | 148 | |
Herbert Xu | 007f021 | 2007-10-09 13:25:59 -0700 | [diff] [blame] | 149 | nexthdr = *skb_mac_header(skb); |
| 150 | *skb_mac_header(skb) = IPPROTO_DSTOPTS; |
Noriaki TAKAMIYA | 3d12689 | 2006-08-23 20:32:34 -0700 | [diff] [blame] | 151 | |
Arnaldo Carvalho de Melo | 9c70220 | 2007-04-25 18:04:18 -0700 | [diff] [blame] | 152 | dstopt = (struct ipv6_destopt_hdr *)skb_transport_header(skb); |
Noriaki TAKAMIYA | 3d12689 | 2006-08-23 20:32:34 -0700 | [diff] [blame] | 153 | dstopt->nexthdr = nexthdr; |
| 154 | |
| 155 | hao = mip6_padn((char *)(dstopt + 1), |
| 156 | calc_padlen(sizeof(*dstopt), 6)); |
| 157 | |
| 158 | hao->type = IPV6_TLV_HAO; |
Ilpo Järvinen | 547b792 | 2008-07-25 21:43:18 -0700 | [diff] [blame] | 159 | BUILD_BUG_ON(sizeof(*hao) != 18); |
Noriaki TAKAMIYA | 3d12689 | 2006-08-23 20:32:34 -0700 | [diff] [blame] | 160 | hao->length = sizeof(*hao) - 2; |
Noriaki TAKAMIYA | 3d12689 | 2006-08-23 20:32:34 -0700 | [diff] [blame] | 161 | |
| 162 | len = ((char *)hao - (char *)dstopt) + sizeof(*hao); |
| 163 | |
| 164 | memcpy(&hao->addr, &iph->saddr, sizeof(hao->addr)); |
Herbert Xu | b7c6538c | 2007-10-09 13:33:35 -0700 | [diff] [blame] | 165 | spin_lock_bh(&x->lock); |
Noriaki TAKAMIYA | 3d12689 | 2006-08-23 20:32:34 -0700 | [diff] [blame] | 166 | memcpy(&iph->saddr, x->coaddr, sizeof(iph->saddr)); |
Herbert Xu | b7c6538c | 2007-10-09 13:33:35 -0700 | [diff] [blame] | 167 | spin_unlock_bh(&x->lock); |
Noriaki TAKAMIYA | 3d12689 | 2006-08-23 20:32:34 -0700 | [diff] [blame] | 168 | |
Ilpo Järvinen | 547b792 | 2008-07-25 21:43:18 -0700 | [diff] [blame] | 169 | WARN_ON(len != x->props.header_len); |
Noriaki TAKAMIYA | 3d12689 | 2006-08-23 20:32:34 -0700 | [diff] [blame] | 170 | dstopt->hdrlen = (x->props.header_len >> 3) - 1; |
| 171 | |
| 172 | return 0; |
| 173 | } |
| 174 | |
Arnd Bergmann | 3dd7669 | 2015-09-30 13:26:39 +0200 | [diff] [blame] | 175 | static inline int mip6_report_rl_allow(ktime_t stamp, |
Eric Dumazet | b71d1d4 | 2011-04-22 04:53:02 +0000 | [diff] [blame] | 176 | const struct in6_addr *dst, |
| 177 | const struct in6_addr *src, int iif) |
Masahide NAKAMURA | 70182ed | 2006-08-23 20:45:55 -0700 | [diff] [blame] | 178 | { |
| 179 | int allow = 0; |
| 180 | |
| 181 | spin_lock_bh(&mip6_report_rl.lock); |
Thomas Gleixner | 1f3a8e4 | 2016-12-25 12:43:07 +0100 | [diff] [blame] | 182 | if (mip6_report_rl.stamp != stamp || |
Masahide NAKAMURA | 70182ed | 2006-08-23 20:45:55 -0700 | [diff] [blame] | 183 | mip6_report_rl.iif != iif || |
| 184 | !ipv6_addr_equal(&mip6_report_rl.src, src) || |
| 185 | !ipv6_addr_equal(&mip6_report_rl.dst, dst)) { |
Arnd Bergmann | 3dd7669 | 2015-09-30 13:26:39 +0200 | [diff] [blame] | 186 | mip6_report_rl.stamp = stamp; |
Masahide NAKAMURA | 70182ed | 2006-08-23 20:45:55 -0700 | [diff] [blame] | 187 | mip6_report_rl.iif = iif; |
Alexey Dobriyan | 4e3fd7a | 2011-11-21 03:39:03 +0000 | [diff] [blame] | 188 | mip6_report_rl.src = *src; |
| 189 | mip6_report_rl.dst = *dst; |
Masahide NAKAMURA | 70182ed | 2006-08-23 20:45:55 -0700 | [diff] [blame] | 190 | allow = 1; |
| 191 | } |
| 192 | spin_unlock_bh(&mip6_report_rl.lock); |
| 193 | return allow; |
| 194 | } |
| 195 | |
David S. Miller | 8f029de | 2011-02-22 17:59:59 -0800 | [diff] [blame] | 196 | static int mip6_destopt_reject(struct xfrm_state *x, struct sk_buff *skb, |
| 197 | const struct flowi *fl) |
Masahide NAKAMURA | 70182ed | 2006-08-23 20:45:55 -0700 | [diff] [blame] | 198 | { |
Alexey Dobriyan | db983c1 | 2008-11-25 17:51:01 -0800 | [diff] [blame] | 199 | struct net *net = xs_net(x); |
Masahide NAKAMURA | 70182ed | 2006-08-23 20:45:55 -0700 | [diff] [blame] | 200 | struct inet6_skb_parm *opt = (struct inet6_skb_parm *)skb->cb; |
David S. Miller | 4c9483b | 2011-03-12 16:22:43 -0500 | [diff] [blame] | 201 | const struct flowi6 *fl6 = &fl->u.ip6; |
Masahide NAKAMURA | 70182ed | 2006-08-23 20:45:55 -0700 | [diff] [blame] | 202 | struct ipv6_destopt_hao *hao = NULL; |
| 203 | struct xfrm_selector sel; |
| 204 | int offset; |
Arnd Bergmann | 3dd7669 | 2015-09-30 13:26:39 +0200 | [diff] [blame] | 205 | ktime_t stamp; |
Masahide NAKAMURA | 70182ed | 2006-08-23 20:45:55 -0700 | [diff] [blame] | 206 | int err = 0; |
| 207 | |
David S. Miller | 4c9483b | 2011-03-12 16:22:43 -0500 | [diff] [blame] | 208 | if (unlikely(fl6->flowi6_proto == IPPROTO_MH && |
David S. Miller | 1958b85 | 2011-03-12 16:36:19 -0500 | [diff] [blame] | 209 | fl6->fl6_mh_type <= IP6_MH_TYPE_MAX)) |
Masahide NAKAMURA | 01be8e5 | 2006-08-23 20:47:44 -0700 | [diff] [blame] | 210 | goto out; |
| 211 | |
Masahide NAKAMURA | 70182ed | 2006-08-23 20:45:55 -0700 | [diff] [blame] | 212 | if (likely(opt->dsthao)) { |
| 213 | offset = ipv6_find_tlv(skb, opt->dsthao, IPV6_TLV_HAO); |
| 214 | if (likely(offset >= 0)) |
Arnaldo Carvalho de Melo | d56f90a | 2007-04-10 20:50:43 -0700 | [diff] [blame] | 215 | hao = (struct ipv6_destopt_hao *) |
| 216 | (skb_network_header(skb) + offset); |
Masahide NAKAMURA | 70182ed | 2006-08-23 20:45:55 -0700 | [diff] [blame] | 217 | } |
| 218 | |
Arnd Bergmann | 3dd7669 | 2015-09-30 13:26:39 +0200 | [diff] [blame] | 219 | stamp = skb_get_ktime(skb); |
Masahide NAKAMURA | 70182ed | 2006-08-23 20:45:55 -0700 | [diff] [blame] | 220 | |
Arnd Bergmann | 3dd7669 | 2015-09-30 13:26:39 +0200 | [diff] [blame] | 221 | if (!mip6_report_rl_allow(stamp, &ipv6_hdr(skb)->daddr, |
Arnaldo Carvalho de Melo | 0660e03 | 2007-04-25 17:54:47 -0700 | [diff] [blame] | 222 | hao ? &hao->addr : &ipv6_hdr(skb)->saddr, |
Masahide NAKAMURA | 70182ed | 2006-08-23 20:45:55 -0700 | [diff] [blame] | 223 | opt->iif)) |
| 224 | goto out; |
| 225 | |
| 226 | memset(&sel, 0, sizeof(sel)); |
Arnaldo Carvalho de Melo | 0660e03 | 2007-04-25 17:54:47 -0700 | [diff] [blame] | 227 | memcpy(&sel.daddr, (xfrm_address_t *)&ipv6_hdr(skb)->daddr, |
Masahide NAKAMURA | 70182ed | 2006-08-23 20:45:55 -0700 | [diff] [blame] | 228 | sizeof(sel.daddr)); |
| 229 | sel.prefixlen_d = 128; |
Arnaldo Carvalho de Melo | 0660e03 | 2007-04-25 17:54:47 -0700 | [diff] [blame] | 230 | memcpy(&sel.saddr, (xfrm_address_t *)&ipv6_hdr(skb)->saddr, |
Masahide NAKAMURA | 70182ed | 2006-08-23 20:45:55 -0700 | [diff] [blame] | 231 | sizeof(sel.saddr)); |
| 232 | sel.prefixlen_s = 128; |
| 233 | sel.family = AF_INET6; |
David S. Miller | 4c9483b | 2011-03-12 16:22:43 -0500 | [diff] [blame] | 234 | sel.proto = fl6->flowi6_proto; |
| 235 | sel.dport = xfrm_flowi_dport(fl, &fl6->uli); |
Masahide NAKAMURA | 70182ed | 2006-08-23 20:45:55 -0700 | [diff] [blame] | 236 | if (sel.dport) |
Al Viro | e69a4ad | 2006-11-14 20:56:00 -0800 | [diff] [blame] | 237 | sel.dport_mask = htons(~0); |
David S. Miller | 4c9483b | 2011-03-12 16:22:43 -0500 | [diff] [blame] | 238 | sel.sport = xfrm_flowi_sport(fl, &fl6->uli); |
Masahide NAKAMURA | 70182ed | 2006-08-23 20:45:55 -0700 | [diff] [blame] | 239 | if (sel.sport) |
Al Viro | e69a4ad | 2006-11-14 20:56:00 -0800 | [diff] [blame] | 240 | sel.sport_mask = htons(~0); |
David S. Miller | 4c9483b | 2011-03-12 16:22:43 -0500 | [diff] [blame] | 241 | sel.ifindex = fl6->flowi6_oif; |
Masahide NAKAMURA | 70182ed | 2006-08-23 20:45:55 -0700 | [diff] [blame] | 242 | |
Alexey Dobriyan | db983c1 | 2008-11-25 17:51:01 -0800 | [diff] [blame] | 243 | err = km_report(net, IPPROTO_DSTOPTS, &sel, |
Masahide NAKAMURA | 70182ed | 2006-08-23 20:45:55 -0700 | [diff] [blame] | 244 | (hao ? (xfrm_address_t *)&hao->addr : NULL)); |
| 245 | |
| 246 | out: |
| 247 | return err; |
| 248 | } |
| 249 | |
Noriaki TAKAMIYA | 3d12689 | 2006-08-23 20:32:34 -0700 | [diff] [blame] | 250 | static int mip6_destopt_offset(struct xfrm_state *x, struct sk_buff *skb, |
| 251 | u8 **nexthdr) |
| 252 | { |
| 253 | u16 offset = sizeof(struct ipv6hdr); |
Arnaldo Carvalho de Melo | 0660e03 | 2007-04-25 17:54:47 -0700 | [diff] [blame] | 254 | struct ipv6_opt_hdr *exthdr = |
| 255 | (struct ipv6_opt_hdr *)(ipv6_hdr(skb) + 1); |
Arnaldo Carvalho de Melo | d56f90a | 2007-04-10 20:50:43 -0700 | [diff] [blame] | 256 | const unsigned char *nh = skb_network_header(skb); |
Simon Horman | 29a3cad | 2013-05-28 20:34:26 +0000 | [diff] [blame] | 257 | unsigned int packet_len = skb_tail_pointer(skb) - |
| 258 | skb_network_header(skb); |
Noriaki TAKAMIYA | 3d12689 | 2006-08-23 20:32:34 -0700 | [diff] [blame] | 259 | int found_rhdr = 0; |
| 260 | |
Arnaldo Carvalho de Melo | 0660e03 | 2007-04-25 17:54:47 -0700 | [diff] [blame] | 261 | *nexthdr = &ipv6_hdr(skb)->nexthdr; |
Noriaki TAKAMIYA | 3d12689 | 2006-08-23 20:32:34 -0700 | [diff] [blame] | 262 | |
| 263 | while (offset + 1 <= packet_len) { |
| 264 | |
| 265 | switch (**nexthdr) { |
| 266 | case NEXTHDR_HOP: |
| 267 | break; |
| 268 | case NEXTHDR_ROUTING: |
| 269 | found_rhdr = 1; |
| 270 | break; |
| 271 | case NEXTHDR_DEST: |
| 272 | /* |
| 273 | * HAO MUST NOT appear more than once. |
| 274 | * XXX: It is better to try to find by the end of |
| 275 | * XXX: packet if HAO exists. |
| 276 | */ |
| 277 | if (ipv6_find_tlv(skb, offset, IPV6_TLV_HAO) >= 0) { |
Joe Perches | ba7a46f | 2014-11-11 10:59:17 -0800 | [diff] [blame] | 278 | net_dbg_ratelimited("mip6: hao exists already, override\n"); |
Noriaki TAKAMIYA | 3d12689 | 2006-08-23 20:32:34 -0700 | [diff] [blame] | 279 | return offset; |
| 280 | } |
| 281 | |
| 282 | if (found_rhdr) |
| 283 | return offset; |
| 284 | |
| 285 | break; |
| 286 | default: |
| 287 | return offset; |
| 288 | } |
| 289 | |
| 290 | offset += ipv6_optlen(exthdr); |
| 291 | *nexthdr = &exthdr->nexthdr; |
Arnaldo Carvalho de Melo | d56f90a | 2007-04-10 20:50:43 -0700 | [diff] [blame] | 292 | exthdr = (struct ipv6_opt_hdr *)(nh + offset); |
Noriaki TAKAMIYA | 3d12689 | 2006-08-23 20:32:34 -0700 | [diff] [blame] | 293 | } |
| 294 | |
| 295 | return offset; |
| 296 | } |
| 297 | |
| 298 | static int mip6_destopt_init_state(struct xfrm_state *x) |
| 299 | { |
| 300 | if (x->id.spi) { |
Joe Perches | f321383 | 2012-05-15 14:11:53 +0000 | [diff] [blame] | 301 | pr_info("%s: spi is not 0: %u\n", __func__, x->id.spi); |
Noriaki TAKAMIYA | 3d12689 | 2006-08-23 20:32:34 -0700 | [diff] [blame] | 302 | return -EINVAL; |
| 303 | } |
| 304 | if (x->props.mode != XFRM_MODE_ROUTEOPTIMIZATION) { |
Joe Perches | f321383 | 2012-05-15 14:11:53 +0000 | [diff] [blame] | 305 | pr_info("%s: state's mode is not %u: %u\n", |
| 306 | __func__, XFRM_MODE_ROUTEOPTIMIZATION, x->props.mode); |
Noriaki TAKAMIYA | 3d12689 | 2006-08-23 20:32:34 -0700 | [diff] [blame] | 307 | return -EINVAL; |
| 308 | } |
| 309 | |
| 310 | x->props.header_len = sizeof(struct ipv6_destopt_hdr) + |
| 311 | calc_padlen(sizeof(struct ipv6_destopt_hdr), 6) + |
| 312 | sizeof(struct ipv6_destopt_hao); |
Ilpo Järvinen | 547b792 | 2008-07-25 21:43:18 -0700 | [diff] [blame] | 313 | WARN_ON(x->props.header_len != 24); |
Noriaki TAKAMIYA | 3d12689 | 2006-08-23 20:32:34 -0700 | [diff] [blame] | 314 | |
| 315 | return 0; |
| 316 | } |
| 317 | |
| 318 | /* |
| 319 | * Do nothing about destroying since it has no specific operation for |
| 320 | * destination options header unlike IPsec protocols. |
| 321 | */ |
| 322 | static void mip6_destopt_destroy(struct xfrm_state *x) |
| 323 | { |
| 324 | } |
| 325 | |
Ian Morris | cc24bec | 2014-08-24 21:53:11 +0100 | [diff] [blame] | 326 | static const struct xfrm_type mip6_destopt_type = { |
Noriaki TAKAMIYA | 3d12689 | 2006-08-23 20:32:34 -0700 | [diff] [blame] | 327 | .description = "MIP6DESTOPT", |
| 328 | .owner = THIS_MODULE, |
Ian Morris | cc24bec | 2014-08-24 21:53:11 +0100 | [diff] [blame] | 329 | .proto = IPPROTO_DSTOPTS, |
Herbert Xu | f04e7e8 | 2007-11-13 21:36:51 -0800 | [diff] [blame] | 330 | .flags = XFRM_TYPE_NON_FRAGMENT | XFRM_TYPE_LOCAL_COADDR, |
Noriaki TAKAMIYA | 3d12689 | 2006-08-23 20:32:34 -0700 | [diff] [blame] | 331 | .init_state = mip6_destopt_init_state, |
| 332 | .destructor = mip6_destopt_destroy, |
| 333 | .input = mip6_destopt_input, |
| 334 | .output = mip6_destopt_output, |
YOSHIFUJI Hideaki | 1ab1457 | 2007-02-09 23:24:49 +0900 | [diff] [blame] | 335 | .reject = mip6_destopt_reject, |
Noriaki TAKAMIYA | 3d12689 | 2006-08-23 20:32:34 -0700 | [diff] [blame] | 336 | .hdr_offset = mip6_destopt_offset, |
Noriaki TAKAMIYA | 3d12689 | 2006-08-23 20:32:34 -0700 | [diff] [blame] | 337 | }; |
| 338 | |
Noriaki TAKAMIYA | 2c8d7ca | 2006-08-23 20:31:11 -0700 | [diff] [blame] | 339 | static int mip6_rthdr_input(struct xfrm_state *x, struct sk_buff *skb) |
| 340 | { |
Eric Dumazet | b71d1d4 | 2011-04-22 04:53:02 +0000 | [diff] [blame] | 341 | const struct ipv6hdr *iph = ipv6_hdr(skb); |
Noriaki TAKAMIYA | 2c8d7ca | 2006-08-23 20:31:11 -0700 | [diff] [blame] | 342 | struct rt2_hdr *rt2 = (struct rt2_hdr *)skb->data; |
Herbert Xu | 0ebea8e | 2007-11-13 21:45:58 -0800 | [diff] [blame] | 343 | int err = rt2->rt_hdr.nexthdr; |
Noriaki TAKAMIYA | 2c8d7ca | 2006-08-23 20:31:11 -0700 | [diff] [blame] | 344 | |
Herbert Xu | 0ebea8e | 2007-11-13 21:45:58 -0800 | [diff] [blame] | 345 | spin_lock(&x->lock); |
Arnaud Ebalard | d9a9dc6 | 2010-07-16 00:38:44 +0000 | [diff] [blame] | 346 | if (!ipv6_addr_equal(&iph->daddr, (struct in6_addr *)x->coaddr) && |
Noriaki TAKAMIYA | 2c8d7ca | 2006-08-23 20:31:11 -0700 | [diff] [blame] | 347 | !ipv6_addr_any((struct in6_addr *)x->coaddr)) |
Herbert Xu | 0ebea8e | 2007-11-13 21:45:58 -0800 | [diff] [blame] | 348 | err = -ENOENT; |
| 349 | spin_unlock(&x->lock); |
Noriaki TAKAMIYA | 2c8d7ca | 2006-08-23 20:31:11 -0700 | [diff] [blame] | 350 | |
Herbert Xu | 0ebea8e | 2007-11-13 21:45:58 -0800 | [diff] [blame] | 351 | return err; |
Noriaki TAKAMIYA | 2c8d7ca | 2006-08-23 20:31:11 -0700 | [diff] [blame] | 352 | } |
| 353 | |
| 354 | /* Routing Header type 2 is inserted. |
| 355 | * IP Header's dst address is replaced with Routing Header's Home Address. |
| 356 | */ |
| 357 | static int mip6_rthdr_output(struct xfrm_state *x, struct sk_buff *skb) |
| 358 | { |
| 359 | struct ipv6hdr *iph; |
| 360 | struct rt2_hdr *rt2; |
| 361 | u8 nexthdr; |
| 362 | |
Herbert Xu | 7b277b1 | 2007-10-10 15:44:06 -0700 | [diff] [blame] | 363 | skb_push(skb, -skb_network_offset(skb)); |
Herbert Xu | 007f021 | 2007-10-09 13:25:59 -0700 | [diff] [blame] | 364 | iph = ipv6_hdr(skb); |
Noriaki TAKAMIYA | 2c8d7ca | 2006-08-23 20:31:11 -0700 | [diff] [blame] | 365 | |
Herbert Xu | 007f021 | 2007-10-09 13:25:59 -0700 | [diff] [blame] | 366 | nexthdr = *skb_mac_header(skb); |
| 367 | *skb_mac_header(skb) = IPPROTO_ROUTING; |
Noriaki TAKAMIYA | 2c8d7ca | 2006-08-23 20:31:11 -0700 | [diff] [blame] | 368 | |
Arnaldo Carvalho de Melo | 9c70220 | 2007-04-25 18:04:18 -0700 | [diff] [blame] | 369 | rt2 = (struct rt2_hdr *)skb_transport_header(skb); |
Noriaki TAKAMIYA | 2c8d7ca | 2006-08-23 20:31:11 -0700 | [diff] [blame] | 370 | rt2->rt_hdr.nexthdr = nexthdr; |
| 371 | rt2->rt_hdr.hdrlen = (x->props.header_len >> 3) - 1; |
| 372 | rt2->rt_hdr.type = IPV6_SRCRT_TYPE_2; |
| 373 | rt2->rt_hdr.segments_left = 1; |
| 374 | memset(&rt2->reserved, 0, sizeof(rt2->reserved)); |
| 375 | |
Ilpo Järvinen | 547b792 | 2008-07-25 21:43:18 -0700 | [diff] [blame] | 376 | WARN_ON(rt2->rt_hdr.hdrlen != 2); |
Noriaki TAKAMIYA | 2c8d7ca | 2006-08-23 20:31:11 -0700 | [diff] [blame] | 377 | |
| 378 | memcpy(&rt2->addr, &iph->daddr, sizeof(rt2->addr)); |
Herbert Xu | b7c6538c | 2007-10-09 13:33:35 -0700 | [diff] [blame] | 379 | spin_lock_bh(&x->lock); |
Noriaki TAKAMIYA | 2c8d7ca | 2006-08-23 20:31:11 -0700 | [diff] [blame] | 380 | memcpy(&iph->daddr, x->coaddr, sizeof(iph->daddr)); |
Herbert Xu | b7c6538c | 2007-10-09 13:33:35 -0700 | [diff] [blame] | 381 | spin_unlock_bh(&x->lock); |
Noriaki TAKAMIYA | 2c8d7ca | 2006-08-23 20:31:11 -0700 | [diff] [blame] | 382 | |
| 383 | return 0; |
| 384 | } |
| 385 | |
| 386 | static int mip6_rthdr_offset(struct xfrm_state *x, struct sk_buff *skb, |
| 387 | u8 **nexthdr) |
| 388 | { |
| 389 | u16 offset = sizeof(struct ipv6hdr); |
Arnaldo Carvalho de Melo | 0660e03 | 2007-04-25 17:54:47 -0700 | [diff] [blame] | 390 | struct ipv6_opt_hdr *exthdr = |
| 391 | (struct ipv6_opt_hdr *)(ipv6_hdr(skb) + 1); |
Arnaldo Carvalho de Melo | d56f90a | 2007-04-10 20:50:43 -0700 | [diff] [blame] | 392 | const unsigned char *nh = skb_network_header(skb); |
Simon Horman | 29a3cad | 2013-05-28 20:34:26 +0000 | [diff] [blame] | 393 | unsigned int packet_len = skb_tail_pointer(skb) - |
| 394 | skb_network_header(skb); |
Noriaki TAKAMIYA | 2c8d7ca | 2006-08-23 20:31:11 -0700 | [diff] [blame] | 395 | int found_rhdr = 0; |
| 396 | |
Arnaldo Carvalho de Melo | 0660e03 | 2007-04-25 17:54:47 -0700 | [diff] [blame] | 397 | *nexthdr = &ipv6_hdr(skb)->nexthdr; |
Noriaki TAKAMIYA | 2c8d7ca | 2006-08-23 20:31:11 -0700 | [diff] [blame] | 398 | |
| 399 | while (offset + 1 <= packet_len) { |
| 400 | |
| 401 | switch (**nexthdr) { |
| 402 | case NEXTHDR_HOP: |
| 403 | break; |
| 404 | case NEXTHDR_ROUTING: |
| 405 | if (offset + 3 <= packet_len) { |
| 406 | struct ipv6_rt_hdr *rt; |
Arnaldo Carvalho de Melo | d56f90a | 2007-04-10 20:50:43 -0700 | [diff] [blame] | 407 | rt = (struct ipv6_rt_hdr *)(nh + offset); |
Noriaki TAKAMIYA | 2c8d7ca | 2006-08-23 20:31:11 -0700 | [diff] [blame] | 408 | if (rt->type != 0) |
| 409 | return offset; |
| 410 | } |
| 411 | found_rhdr = 1; |
| 412 | break; |
| 413 | case NEXTHDR_DEST: |
| 414 | if (ipv6_find_tlv(skb, offset, IPV6_TLV_HAO) >= 0) |
| 415 | return offset; |
| 416 | |
| 417 | if (found_rhdr) |
| 418 | return offset; |
| 419 | |
| 420 | break; |
| 421 | default: |
| 422 | return offset; |
| 423 | } |
| 424 | |
| 425 | offset += ipv6_optlen(exthdr); |
| 426 | *nexthdr = &exthdr->nexthdr; |
Arnaldo Carvalho de Melo | d56f90a | 2007-04-10 20:50:43 -0700 | [diff] [blame] | 427 | exthdr = (struct ipv6_opt_hdr *)(nh + offset); |
Noriaki TAKAMIYA | 2c8d7ca | 2006-08-23 20:31:11 -0700 | [diff] [blame] | 428 | } |
| 429 | |
| 430 | return offset; |
| 431 | } |
| 432 | |
| 433 | static int mip6_rthdr_init_state(struct xfrm_state *x) |
| 434 | { |
| 435 | if (x->id.spi) { |
Joe Perches | f321383 | 2012-05-15 14:11:53 +0000 | [diff] [blame] | 436 | pr_info("%s: spi is not 0: %u\n", __func__, x->id.spi); |
Noriaki TAKAMIYA | 2c8d7ca | 2006-08-23 20:31:11 -0700 | [diff] [blame] | 437 | return -EINVAL; |
| 438 | } |
| 439 | if (x->props.mode != XFRM_MODE_ROUTEOPTIMIZATION) { |
Joe Perches | f321383 | 2012-05-15 14:11:53 +0000 | [diff] [blame] | 440 | pr_info("%s: state's mode is not %u: %u\n", |
| 441 | __func__, XFRM_MODE_ROUTEOPTIMIZATION, x->props.mode); |
Noriaki TAKAMIYA | 2c8d7ca | 2006-08-23 20:31:11 -0700 | [diff] [blame] | 442 | return -EINVAL; |
| 443 | } |
| 444 | |
| 445 | x->props.header_len = sizeof(struct rt2_hdr); |
| 446 | |
| 447 | return 0; |
| 448 | } |
| 449 | |
| 450 | /* |
| 451 | * Do nothing about destroying since it has no specific operation for routing |
| 452 | * header type 2 unlike IPsec protocols. |
| 453 | */ |
| 454 | static void mip6_rthdr_destroy(struct xfrm_state *x) |
| 455 | { |
| 456 | } |
| 457 | |
Ian Morris | cc24bec | 2014-08-24 21:53:11 +0100 | [diff] [blame] | 458 | static const struct xfrm_type mip6_rthdr_type = { |
Noriaki TAKAMIYA | 2c8d7ca | 2006-08-23 20:31:11 -0700 | [diff] [blame] | 459 | .description = "MIP6RT", |
| 460 | .owner = THIS_MODULE, |
Ian Morris | cc24bec | 2014-08-24 21:53:11 +0100 | [diff] [blame] | 461 | .proto = IPPROTO_ROUTING, |
Herbert Xu | f04e7e8 | 2007-11-13 21:36:51 -0800 | [diff] [blame] | 462 | .flags = XFRM_TYPE_NON_FRAGMENT | XFRM_TYPE_REMOTE_COADDR, |
Noriaki TAKAMIYA | 2c8d7ca | 2006-08-23 20:31:11 -0700 | [diff] [blame] | 463 | .init_state = mip6_rthdr_init_state, |
| 464 | .destructor = mip6_rthdr_destroy, |
| 465 | .input = mip6_rthdr_input, |
| 466 | .output = mip6_rthdr_output, |
| 467 | .hdr_offset = mip6_rthdr_offset, |
Noriaki TAKAMIYA | 2c8d7ca | 2006-08-23 20:31:11 -0700 | [diff] [blame] | 468 | }; |
| 469 | |
Masahide NAKAMURA | 59fbb3a6 | 2007-06-26 23:56:32 -0700 | [diff] [blame] | 470 | static int __init mip6_init(void) |
Noriaki TAKAMIYA | 2c8d7ca | 2006-08-23 20:31:11 -0700 | [diff] [blame] | 471 | { |
Joe Perches | f321383 | 2012-05-15 14:11:53 +0000 | [diff] [blame] | 472 | pr_info("Mobile IPv6\n"); |
Noriaki TAKAMIYA | 2c8d7ca | 2006-08-23 20:31:11 -0700 | [diff] [blame] | 473 | |
Noriaki TAKAMIYA | 3d12689 | 2006-08-23 20:32:34 -0700 | [diff] [blame] | 474 | if (xfrm_register_type(&mip6_destopt_type, AF_INET6) < 0) { |
Joe Perches | f321383 | 2012-05-15 14:11:53 +0000 | [diff] [blame] | 475 | pr_info("%s: can't add xfrm type(destopt)\n", __func__); |
Noriaki TAKAMIYA | 3d12689 | 2006-08-23 20:32:34 -0700 | [diff] [blame] | 476 | goto mip6_destopt_xfrm_fail; |
| 477 | } |
Noriaki TAKAMIYA | 2c8d7ca | 2006-08-23 20:31:11 -0700 | [diff] [blame] | 478 | if (xfrm_register_type(&mip6_rthdr_type, AF_INET6) < 0) { |
Joe Perches | f321383 | 2012-05-15 14:11:53 +0000 | [diff] [blame] | 479 | pr_info("%s: can't add xfrm type(rthdr)\n", __func__); |
Noriaki TAKAMIYA | 2c8d7ca | 2006-08-23 20:31:11 -0700 | [diff] [blame] | 480 | goto mip6_rthdr_xfrm_fail; |
| 481 | } |
Masahide NAKAMURA | 59fbb3a6 | 2007-06-26 23:56:32 -0700 | [diff] [blame] | 482 | if (rawv6_mh_filter_register(mip6_mh_filter) < 0) { |
Joe Perches | f321383 | 2012-05-15 14:11:53 +0000 | [diff] [blame] | 483 | pr_info("%s: can't add rawv6 mh filter\n", __func__); |
Masahide NAKAMURA | 59fbb3a6 | 2007-06-26 23:56:32 -0700 | [diff] [blame] | 484 | goto mip6_rawv6_mh_fail; |
| 485 | } |
| 486 | |
| 487 | |
Noriaki TAKAMIYA | 2c8d7ca | 2006-08-23 20:31:11 -0700 | [diff] [blame] | 488 | return 0; |
| 489 | |
Masahide NAKAMURA | 59fbb3a6 | 2007-06-26 23:56:32 -0700 | [diff] [blame] | 490 | mip6_rawv6_mh_fail: |
| 491 | xfrm_unregister_type(&mip6_rthdr_type, AF_INET6); |
Noriaki TAKAMIYA | 2c8d7ca | 2006-08-23 20:31:11 -0700 | [diff] [blame] | 492 | mip6_rthdr_xfrm_fail: |
Noriaki TAKAMIYA | 3d12689 | 2006-08-23 20:32:34 -0700 | [diff] [blame] | 493 | xfrm_unregister_type(&mip6_destopt_type, AF_INET6); |
| 494 | mip6_destopt_xfrm_fail: |
Noriaki TAKAMIYA | 2c8d7ca | 2006-08-23 20:31:11 -0700 | [diff] [blame] | 495 | return -EAGAIN; |
| 496 | } |
| 497 | |
Masahide NAKAMURA | 59fbb3a6 | 2007-06-26 23:56:32 -0700 | [diff] [blame] | 498 | static void __exit mip6_fini(void) |
Noriaki TAKAMIYA | 2c8d7ca | 2006-08-23 20:31:11 -0700 | [diff] [blame] | 499 | { |
Masahide NAKAMURA | 59fbb3a6 | 2007-06-26 23:56:32 -0700 | [diff] [blame] | 500 | if (rawv6_mh_filter_unregister(mip6_mh_filter) < 0) |
Joe Perches | f321383 | 2012-05-15 14:11:53 +0000 | [diff] [blame] | 501 | pr_info("%s: can't remove rawv6 mh filter\n", __func__); |
Noriaki TAKAMIYA | 2c8d7ca | 2006-08-23 20:31:11 -0700 | [diff] [blame] | 502 | if (xfrm_unregister_type(&mip6_rthdr_type, AF_INET6) < 0) |
Joe Perches | f321383 | 2012-05-15 14:11:53 +0000 | [diff] [blame] | 503 | pr_info("%s: can't remove xfrm type(rthdr)\n", __func__); |
Noriaki TAKAMIYA | 3d12689 | 2006-08-23 20:32:34 -0700 | [diff] [blame] | 504 | if (xfrm_unregister_type(&mip6_destopt_type, AF_INET6) < 0) |
Joe Perches | f321383 | 2012-05-15 14:11:53 +0000 | [diff] [blame] | 505 | pr_info("%s: can't remove xfrm type(destopt)\n", __func__); |
Noriaki TAKAMIYA | 2c8d7ca | 2006-08-23 20:31:11 -0700 | [diff] [blame] | 506 | } |
Masahide NAKAMURA | 59fbb3a6 | 2007-06-26 23:56:32 -0700 | [diff] [blame] | 507 | |
| 508 | module_init(mip6_init); |
| 509 | module_exit(mip6_fini); |
| 510 | |
| 511 | MODULE_LICENSE("GPL"); |
Masahide NAKAMURA | d3d6dd3 | 2007-06-26 23:57:49 -0700 | [diff] [blame] | 512 | MODULE_ALIAS_XFRM_TYPE(AF_INET6, XFRM_PROTO_DSTOPTS); |
| 513 | MODULE_ALIAS_XFRM_TYPE(AF_INET6, XFRM_PROTO_ROUTING); |