]> git.proxmox.com Git - mirror_ovs.git/blame - datapath/datapath.c
datapath: Remove a debugging message.
[mirror_ovs.git] / datapath / datapath.c
CommitLineData
064af421 1/*
a1c564be 2 * Copyright (c) 2007-2013 Nicira, Inc.
a14bc59f 3 *
a9a29d22
JG
4 * This program is free software; you can redistribute it and/or
5 * modify it under the terms of version 2 of the GNU General Public
6 * License as published by the Free Software Foundation.
7 *
8 * This program is distributed in the hope that it will be useful, but
9 * WITHOUT ANY WARRANTY; without even the implied warranty of
10 * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the GNU
11 * General Public License for more details.
12 *
13 * You should have received a copy of the GNU General Public License
14 * along with this program; if not, write to the Free Software
15 * Foundation, Inc., 51 Franklin Street, Fifth Floor, Boston, MA
16 * 02110-1301, USA
064af421
BP
17 */
18
dfffaef1
JP
19#define pr_fmt(fmt) KBUILD_MODNAME ": " fmt
20
064af421
BP
21#include <linux/init.h>
22#include <linux/module.h>
064af421 23#include <linux/if_arp.h>
064af421
BP
24#include <linux/if_vlan.h>
25#include <linux/in.h>
26#include <linux/ip.h>
982b8810 27#include <linux/jhash.h>
064af421
BP
28#include <linux/delay.h>
29#include <linux/time.h>
30#include <linux/etherdevice.h>
ed099e92 31#include <linux/genetlink.h>
064af421
BP
32#include <linux/kernel.h>
33#include <linux/kthread.h>
064af421
BP
34#include <linux/mutex.h>
35#include <linux/percpu.h>
36#include <linux/rcupdate.h>
37#include <linux/tcp.h>
38#include <linux/udp.h>
39#include <linux/version.h>
40#include <linux/ethtool.h>
064af421 41#include <linux/wait.h>
064af421 42#include <asm/div64.h>
656a0e37 43#include <linux/highmem.h>
064af421
BP
44#include <linux/netfilter_bridge.h>
45#include <linux/netfilter_ipv4.h>
46#include <linux/inetdevice.h>
47#include <linux/list.h>
077257b8 48#include <linux/openvswitch.h>
064af421 49#include <linux/rculist.h>
064af421 50#include <linux/dmi.h>
cd2a59e9
PS
51#include <linux/genetlink.h>
52#include <net/genetlink.h>
36956a7d 53#include <net/genetlink.h>
2a4999f3
PS
54#include <net/net_namespace.h>
55#include <net/netns/generic.h>
064af421 56
064af421 57#include "datapath.h"
064af421 58#include "flow.h"
d103f479 59#include "flow_table.h"
a097c0b2 60#include "flow_netlink.h"
303708cc 61#include "vlan.h"
f2459fe7 62#include "vport-internal_dev.h"
d5de5b0d 63#include "vport-netdev.h"
064af421 64
2a4999f3
PS
65int ovs_net_id __read_mostly;
66
e297c6b7
TG
67static void ovs_notify(struct sk_buff *skb, struct genl_info *info,
68 struct genl_multicast_group *grp)
69{
70 genl_notify(skb, genl_info_net(info), info->snd_portid,
71 grp->id, info->nlhdr, GFP_KERNEL);
72}
73
ed099e92
BP
74/**
75 * DOC: Locking:
064af421 76 *
cd2a59e9
PS
77 * All writes e.g. Writes to device state (add/remove datapath, port, set
78 * operations on vports, etc.), Writes to other state (flow table
79 * modifications, set miscellaneous datapath parameters, etc.) are protected
80 * by ovs_lock.
ed099e92
BP
81 *
82 * Reads are protected by RCU.
83 *
84 * There are a few special cases (mostly stats) that have their own
85 * synchronization but they nest under all of above and don't interact with
86 * each other.
cd2a59e9
PS
87 *
88 * The RTNL lock nests inside ovs_mutex.
064af421 89 */
ed099e92 90
cd2a59e9
PS
91static DEFINE_MUTEX(ovs_mutex);
92
93void ovs_lock(void)
94{
95 mutex_lock(&ovs_mutex);
96}
97
98void ovs_unlock(void)
99{
100 mutex_unlock(&ovs_mutex);
101}
102
103#ifdef CONFIG_LOCKDEP
104int lockdep_ovsl_is_held(void)
105{
106 if (debug_locks)
107 return lockdep_is_held(&ovs_mutex);
108 else
109 return 1;
110}
111#endif
112
c19e6535 113static struct vport *new_vport(const struct vport_parms *);
5ae440c3 114static int queue_gso_packets(struct datapath *dp, struct sk_buff *,
7257b535 115 const struct dp_upcall_info *);
5ae440c3 116static int queue_userspace_packet(struct datapath *dp, struct sk_buff *,
7257b535 117 const struct dp_upcall_info *);
064af421 118
cd2a59e9 119/* Must be called with rcu_read_lock or ovs_mutex. */
2a4999f3 120static struct datapath *get_dp(struct net *net, int dp_ifindex)
064af421 121{
254f2dc8
BP
122 struct datapath *dp = NULL;
123 struct net_device *dev;
ed099e92 124
254f2dc8 125 rcu_read_lock();
2a4999f3 126 dev = dev_get_by_index_rcu(net, dp_ifindex);
254f2dc8 127 if (dev) {
850b6b3b 128 struct vport *vport = ovs_internal_dev_get_vport(dev);
254f2dc8
BP
129 if (vport)
130 dp = vport->dp;
131 }
132 rcu_read_unlock();
133
134 return dp;
064af421 135}
064af421 136
cd2a59e9 137/* Must be called with rcu_read_lock or ovs_mutex. */
850b6b3b 138const char *ovs_dp_name(const struct datapath *dp)
f2459fe7 139{
cd2a59e9 140 struct vport *vport = ovs_vport_ovsl_rcu(dp, OVSP_LOCAL);
16b82e84 141 return vport->ops->get_name(vport);
f2459fe7
JG
142}
143
99769a40
JG
144static int get_dpifindex(struct datapath *dp)
145{
146 struct vport *local;
147 int ifindex;
148
149 rcu_read_lock();
150
95b1d73a 151 local = ovs_vport_rcu(dp, OVSP_LOCAL);
99769a40 152 if (local)
d5de5b0d 153 ifindex = netdev_vport_priv(local)->dev->ifindex;
99769a40
JG
154 else
155 ifindex = 0;
156
157 rcu_read_unlock();
158
159 return ifindex;
160}
161
46c6a11d
JG
162static void destroy_dp_rcu(struct rcu_head *rcu)
163{
164 struct datapath *dp = container_of(rcu, struct datapath, rcu);
46c6a11d 165
46c6a11d 166 free_percpu(dp->stats_percpu);
2a4999f3 167 release_net(ovs_dp_get_net(dp));
95b1d73a 168 kfree(dp->ports);
5ca1ba48 169 kfree(dp);
46c6a11d
JG
170}
171
95b1d73a
PS
172static struct hlist_head *vport_hash_bucket(const struct datapath *dp,
173 u16 port_no)
174{
175 return &dp->ports[port_no & (DP_VPORT_HASH_BUCKETS - 1)];
176}
177
178struct vport *ovs_lookup_vport(const struct datapath *dp, u16 port_no)
179{
180 struct vport *vport;
95b1d73a
PS
181 struct hlist_head *head;
182
183 head = vport_hash_bucket(dp, port_no);
f8dfbcb7 184 hlist_for_each_entry_rcu(vport, head, dp_hash_node) {
95b1d73a
PS
185 if (vport->port_no == port_no)
186 return vport;
187 }
188 return NULL;
189}
190
cd2a59e9 191/* Called with ovs_mutex. */
c19e6535 192static struct vport *new_vport(const struct vport_parms *parms)
064af421 193{
f2459fe7 194 struct vport *vport;
f2459fe7 195
850b6b3b 196 vport = ovs_vport_add(parms);
c19e6535
BP
197 if (!IS_ERR(vport)) {
198 struct datapath *dp = parms->dp;
95b1d73a 199 struct hlist_head *head = vport_hash_bucket(dp, vport->port_no);
064af421 200
95b1d73a 201 hlist_add_head_rcu(&vport->dp_hash_node, head);
c19e6535 202 }
c19e6535 203 return vport;
064af421
BP
204}
205
850b6b3b 206void ovs_dp_detach_port(struct vport *p)
064af421 207{
cd2a59e9 208 ASSERT_OVSL();
064af421 209
064af421 210 /* First drop references to device. */
95b1d73a 211 hlist_del_rcu(&p->dp_hash_node);
f2459fe7 212
7237e4f4 213 /* Then destroy it. */
850b6b3b 214 ovs_vport_del(p);
064af421
BP
215}
216
8819fac7 217/* Must be called with rcu_read_lock. */
850b6b3b 218void ovs_dp_process_received_packet(struct vport *p, struct sk_buff *skb)
064af421
BP
219{
220 struct datapath *dp = p->dp;
3544358a 221 struct sw_flow *flow;
064af421 222 struct dp_stats_percpu *stats;
52a23d92 223 struct sw_flow_key key;
e9141eec 224 u64 *stats_counter;
4fa72a95 225 u32 n_mask_hit;
4c1ad233 226 int error;
064af421 227
70dbc259 228 stats = this_cpu_ptr(dp->stats_percpu);
a063b0df 229
52a23d92 230 /* Extract flow from 'skb' into 'key'. */
a1c564be 231 error = ovs_flow_extract(skb, p->port_no, &key);
52a23d92
JG
232 if (unlikely(error)) {
233 kfree_skb(skb);
234 return;
55574bb0
BP
235 }
236
52a23d92 237 /* Look up flow. */
4f88b5e5 238 flow = ovs_flow_tbl_lookup_stats(&dp->table, &key, &n_mask_hit);
52a23d92
JG
239 if (unlikely(!flow)) {
240 struct dp_upcall_info upcall;
241
242 upcall.cmd = OVS_PACKET_CMD_MISS;
243 upcall.key = &key;
244 upcall.userdata = NULL;
245 upcall.portid = p->upcall_portid;
246 ovs_dp_upcall(dp, skb, &upcall);
247 consume_skb(skb);
248 stats_counter = &stats->n_missed;
249 goto out;
250 }
251
252 OVS_CB(skb)->flow = flow;
d1d71a36 253 OVS_CB(skb)->pkt_key = &key;
52a23d92 254
b0b906cc 255 ovs_flow_stats_update(OVS_CB(skb)->flow, skb);
850b6b3b 256 ovs_execute_actions(dp, skb);
b0b906cc 257 stats_counter = &stats->n_hit;
55574bb0 258
8819fac7 259out:
55574bb0 260 /* Update datapath statistics. */
821cb9fa 261 u64_stats_update_begin(&stats->sync);
e9141eec 262 (*stats_counter)++;
4fa72a95 263 stats->n_mask_hit += n_mask_hit;
821cb9fa 264 u64_stats_update_end(&stats->sync);
064af421
BP
265}
266
aa5a8fdc
JG
267static struct genl_family dp_packet_genl_family = {
268 .id = GENL_ID_GENERATE,
df2c07f4
JP
269 .hdrsize = sizeof(struct ovs_header),
270 .name = OVS_PACKET_FAMILY,
69685a88 271 .version = OVS_PACKET_VERSION,
2a4999f3 272 .maxattr = OVS_PACKET_ATTR_MAX,
b3dcb73c 273 .netnsok = true,
14002a59 274 SET_PARALLEL_OPS
aa5a8fdc
JG
275};
276
850b6b3b
JG
277int ovs_dp_upcall(struct datapath *dp, struct sk_buff *skb,
278 const struct dp_upcall_info *upcall_info)
aa5a8fdc
JG
279{
280 struct dp_stats_percpu *stats;
281 int err;
282
28aea917 283 if (upcall_info->portid == 0) {
b063d9f0 284 err = -ENOTCONN;
b063d9f0
JG
285 goto err;
286 }
287
7257b535 288 if (!skb_is_gso(skb))
5ae440c3 289 err = queue_userspace_packet(dp, skb, upcall_info);
7257b535 290 else
5ae440c3 291 err = queue_gso_packets(dp, skb, upcall_info);
d76195db
JG
292 if (err)
293 goto err;
294
295 return 0;
aa5a8fdc 296
aa5a8fdc 297err:
70dbc259 298 stats = this_cpu_ptr(dp->stats_percpu);
aa5a8fdc 299
821cb9fa 300 u64_stats_update_begin(&stats->sync);
aa5a8fdc 301 stats->n_lost++;
821cb9fa 302 u64_stats_update_end(&stats->sync);
aa5a8fdc 303
aa5a8fdc 304 return err;
982b8810
BP
305}
306
5ae440c3 307static int queue_gso_packets(struct datapath *dp, struct sk_buff *skb,
7257b535 308 const struct dp_upcall_info *upcall_info)
cb5087ca 309{
d4cba1f8 310 unsigned short gso_type = skb_shinfo(skb)->gso_type;
7257b535
BP
311 struct dp_upcall_info later_info;
312 struct sw_flow_key later_key;
313 struct sk_buff *segs, *nskb;
314 int err;
cb5087ca 315
1d04cd4e 316 segs = __skb_gso_segment(skb, NETIF_F_SG, false);
79089764
PS
317 if (IS_ERR(segs))
318 return PTR_ERR(segs);
99769a40 319
7257b535
BP
320 /* Queue all of the segments. */
321 skb = segs;
cb5087ca 322 do {
5ae440c3 323 err = queue_userspace_packet(dp, skb, upcall_info);
982b8810 324 if (err)
7257b535 325 break;
856081f6 326
d4cba1f8 327 if (skb == segs && gso_type & SKB_GSO_UDP) {
e1cf87ff
JG
328 /* The initial flow key extracted by ovs_flow_extract()
329 * in this case is for a first fragment, so we need to
7257b535
BP
330 * properly mark later fragments.
331 */
332 later_key = *upcall_info->key;
9e44d715 333 later_key.ip.frag = OVS_FRAG_TYPE_LATER;
7257b535
BP
334
335 later_info = *upcall_info;
336 later_info.key = &later_key;
337 upcall_info = &later_info;
338 }
36ce148c 339 } while ((skb = skb->next));
cb5087ca 340
7257b535
BP
341 /* Free all of the segments. */
342 skb = segs;
343 do {
344 nskb = skb->next;
345 if (err)
346 kfree_skb(skb);
347 else
348 consume_skb(skb);
349 } while ((skb = nskb));
350 return err;
351}
352
0afa2373
TG
353static size_t key_attr_size(void)
354{
355 return nla_total_size(4) /* OVS_KEY_ATTR_PRIORITY */
356 + nla_total_size(0) /* OVS_KEY_ATTR_TUNNEL */
357 + nla_total_size(8) /* OVS_TUNNEL_KEY_ATTR_ID */
358 + nla_total_size(4) /* OVS_TUNNEL_KEY_ATTR_IPV4_SRC */
359 + nla_total_size(4) /* OVS_TUNNEL_KEY_ATTR_IPV4_DST */
360 + nla_total_size(1) /* OVS_TUNNEL_KEY_ATTR_TOS */
361 + nla_total_size(1) /* OVS_TUNNEL_KEY_ATTR_TTL */
362 + nla_total_size(0) /* OVS_TUNNEL_KEY_ATTR_DONT_FRAGMENT */
363 + nla_total_size(0) /* OVS_TUNNEL_KEY_ATTR_CSUM */
364 + nla_total_size(4) /* OVS_KEY_ATTR_IN_PORT */
365 + nla_total_size(4) /* OVS_KEY_ATTR_SKB_MARK */
366 + nla_total_size(12) /* OVS_KEY_ATTR_ETHERNET */
367 + nla_total_size(2) /* OVS_KEY_ATTR_ETHERTYPE */
368 + nla_total_size(4) /* OVS_KEY_ATTR_8021Q */
369 + nla_total_size(0) /* OVS_KEY_ATTR_ENCAP */
370 + nla_total_size(2) /* OVS_KEY_ATTR_ETHERTYPE */
371 + nla_total_size(40) /* OVS_KEY_ATTR_IPV6 */
372 + nla_total_size(2) /* OVS_KEY_ATTR_ICMPV6 */
373 + nla_total_size(28); /* OVS_KEY_ATTR_ND */
374}
375
533bea51
TG
376static size_t upcall_msg_size(const struct nlattr *userdata,
377 unsigned int hdrlen)
0afa2373
TG
378{
379 size_t size = NLMSG_ALIGN(sizeof(struct ovs_header))
533bea51 380 + nla_total_size(hdrlen) /* OVS_PACKET_ATTR_PACKET */
0afa2373
TG
381 + nla_total_size(key_attr_size()); /* OVS_PACKET_ATTR_KEY */
382
383 /* OVS_PACKET_ATTR_USERDATA */
384 if (userdata)
385 size += NLA_ALIGN(userdata->nla_len);
386
387 return size;
388}
389
5ae440c3 390static int queue_userspace_packet(struct datapath *dp, struct sk_buff *skb,
7257b535
BP
391 const struct dp_upcall_info *upcall_info)
392{
393 struct ovs_header *upcall;
6161d3fd 394 struct sk_buff *nskb = NULL;
7257b535
BP
395 struct sk_buff *user_skb; /* to be queued to userspace */
396 struct nlattr *nla;
68eadcf0
TG
397 struct genl_info info = {
398#if LINUX_VERSION_CODE >= KERNEL_VERSION(3,14,0)
5ae440c3 399 .dst_sk = ovs_dp_get_net(dp)->genl_sock,
68eadcf0
TG
400#endif
401 .snd_portid = upcall_info->portid,
402 };
978188b2 403 size_t len;
533bea51 404 unsigned int hlen;
5ae440c3
TG
405 int err, dp_ifindex;
406
407 dp_ifindex = get_dpifindex(dp);
408 if (!dp_ifindex)
409 return -ENODEV;
7257b535 410
6161d3fd
JG
411 if (vlan_tx_tag_present(skb)) {
412 nskb = skb_clone(skb, GFP_ATOMIC);
413 if (!nskb)
414 return -ENOMEM;
07ac71ea
PS
415
416 nskb = __vlan_put_tag(nskb, nskb->vlan_proto, vlan_tx_tag_get(nskb));
417 if (!nskb)
418 return -ENOMEM;
419
420 vlan_set_tci(nskb, 0);
7257b535 421
6161d3fd
JG
422 skb = nskb;
423 }
424
425 if (nla_attr_size(skb->len) > USHRT_MAX) {
426 err = -EFBIG;
427 goto out;
428 }
7257b535 429
533bea51
TG
430 /* Complete checksum if needed */
431 if (skb->ip_summed == CHECKSUM_PARTIAL &&
432 (err = skb_checksum_help(skb)))
433 goto out;
434
435 /* Older versions of OVS user space enforce alignment of the last
436 * Netlink attribute to NLA_ALIGNTO which would require extensive
437 * padding logic. Only perform zerocopy if padding is not required.
438 */
439 if (dp->user_features & OVS_DP_F_UNALIGNED)
440 hlen = skb_zerocopy_headlen(skb);
441 else
442 hlen = skb->len;
443
444 len = upcall_msg_size(upcall_info->userdata, hlen);
68eadcf0 445 user_skb = genlmsg_new_unicast(len, &info, GFP_ATOMIC);
6161d3fd
JG
446 if (!user_skb) {
447 err = -ENOMEM;
448 goto out;
449 }
7257b535
BP
450
451 upcall = genlmsg_put(user_skb, 0, 0, &dp_packet_genl_family,
452 0, upcall_info->cmd);
453 upcall->dp_ifindex = dp_ifindex;
454
455 nla = nla_nest_start(user_skb, OVS_PACKET_ATTR_KEY);
a097c0b2 456 ovs_nla_put_flow(upcall_info->key, upcall_info->key, user_skb);
7257b535
BP
457 nla_nest_end(user_skb, nla);
458
459 if (upcall_info->userdata)
e995e3df 460 __nla_put(user_skb, OVS_PACKET_ATTR_USERDATA,
462a988b 461 nla_len(upcall_info->userdata),
e995e3df 462 nla_data(upcall_info->userdata));
7257b535 463
533bea51
TG
464 /* Only reserve room for attribute header, packet data is added
465 * in skb_zerocopy() */
466 if (!(nla = nla_reserve(user_skb, OVS_PACKET_ATTR_PACKET, 0))) {
467 err = -ENOBUFS;
468 goto out;
469 }
470 nla->nla_len = nla_attr_size(skb->len);
bed53bd1 471
533bea51 472 skb_zerocopy(user_skb, skb, skb->len, hlen);
7257b535 473
ef507cec 474 /* Pad OVS_PACKET_ATTR_PACKET if linear copy was performed */
978188b2
JG
475 if (!(dp->user_features & OVS_DP_F_UNALIGNED)) {
476 size_t plen = NLA_ALIGN(user_skb->len) - user_skb->len;
477
478 if (plen > 0)
479 memset(skb_put(user_skb, plen), 0, plen);
480 }
ef507cec 481
533bea51 482 ((struct nlmsghdr *) user_skb->data)->nlmsg_len = user_skb->len;
6161d3fd 483
533bea51 484 err = genlmsg_unicast(ovs_dp_get_net(dp), user_skb, upcall_info->portid);
6161d3fd
JG
485out:
486 kfree_skb(nskb);
487 return err;
cb5087ca
BP
488}
489
df2c07f4 490static int ovs_packet_cmd_execute(struct sk_buff *skb, struct genl_info *info)
064af421 491{
df2c07f4 492 struct ovs_header *ovs_header = info->userhdr;
982b8810 493 struct nlattr **a = info->attrs;
e0e57990 494 struct sw_flow_actions *acts;
982b8810 495 struct sk_buff *packet;
e0e57990 496 struct sw_flow *flow;
f7cd0081 497 struct datapath *dp;
d6569377 498 struct ethhdr *eth;
3f19d399 499 int len;
d6569377 500 int err;
064af421 501
f7cd0081 502 err = -EINVAL;
df2c07f4 503 if (!a[OVS_PACKET_ATTR_PACKET] || !a[OVS_PACKET_ATTR_KEY] ||
7c3072cc 504 !a[OVS_PACKET_ATTR_ACTIONS])
e5cad958 505 goto err;
064af421 506
df2c07f4 507 len = nla_len(a[OVS_PACKET_ATTR_PACKET]);
3f19d399 508 packet = __dev_alloc_skb(NET_IP_ALIGN + len, GFP_KERNEL);
f7cd0081
BP
509 err = -ENOMEM;
510 if (!packet)
e5cad958 511 goto err;
3f19d399
BP
512 skb_reserve(packet, NET_IP_ALIGN);
513
bf3d6fce 514 nla_memcpy(__skb_put(packet, len), a[OVS_PACKET_ATTR_PACKET], len);
8d5ebd83 515
f7cd0081
BP
516 skb_reset_mac_header(packet);
517 eth = eth_hdr(packet);
064af421 518
d6569377
BP
519 /* Normally, setting the skb 'protocol' field would be handled by a
520 * call to eth_type_trans(), but it assumes there's a sending
521 * device, which we may not have. */
7cd46155 522 if (ntohs(eth->h_proto) >= ETH_P_802_3_MIN)
f7cd0081 523 packet->protocol = eth->h_proto;
d6569377 524 else
f7cd0081 525 packet->protocol = htons(ETH_P_802_2);
d3c54451 526
e0e57990 527 /* Build an sw_flow for sending this packet. */
df65fec1 528 flow = ovs_flow_alloc();
e0e57990
BP
529 err = PTR_ERR(flow);
530 if (IS_ERR(flow))
e5cad958 531 goto err_kfree_skb;
064af421 532
a1c564be 533 err = ovs_flow_extract(packet, -1, &flow->key);
e0e57990 534 if (err)
9321954a 535 goto err_flow_free;
e0e57990 536
a097c0b2 537 err = ovs_nla_get_flow_metadata(flow, a[OVS_PACKET_ATTR_KEY]);
80e5eed9 538 if (err)
9321954a 539 goto err_flow_free;
a097c0b2 540 acts = ovs_nla_alloc_flow_actions(nla_len(a[OVS_PACKET_ATTR_ACTIONS]));
e0e57990
BP
541 err = PTR_ERR(acts);
542 if (IS_ERR(acts))
9321954a 543 goto err_flow_free;
9b405f1a 544
a097c0b2
PS
545 err = ovs_nla_copy_actions(a[OVS_PACKET_ATTR_ACTIONS],
546 &flow->key, 0, &acts);
e0e57990 547 rcu_assign_pointer(flow->sf_acts, acts);
9b405f1a
PS
548 if (err)
549 goto err_flow_free;
e0e57990
BP
550
551 OVS_CB(packet)->flow = flow;
d1d71a36 552 OVS_CB(packet)->pkt_key = &flow->key;
abff858b 553 packet->priority = flow->key.phy.priority;
3025a772 554 packet->mark = flow->key.phy.skb_mark;
e0e57990 555
d6569377 556 rcu_read_lock();
2a4999f3 557 dp = get_dp(sock_net(skb->sk), ovs_header->dp_ifindex);
f7cd0081 558 err = -ENODEV;
e5cad958
BP
559 if (!dp)
560 goto err_unlock;
cc4015df 561
e9141eec 562 local_bh_disable();
850b6b3b 563 err = ovs_execute_actions(dp, packet);
e9141eec 564 local_bh_enable();
d6569377 565 rcu_read_unlock();
e0e57990 566
a1c564be 567 ovs_flow_free(flow, false);
e5cad958 568 return err;
064af421 569
e5cad958
BP
570err_unlock:
571 rcu_read_unlock();
9321954a 572err_flow_free:
a1c564be 573 ovs_flow_free(flow, false);
e5cad958
BP
574err_kfree_skb:
575 kfree_skb(packet);
576err:
d6569377 577 return err;
064af421
BP
578}
579
df2c07f4 580static const struct nla_policy packet_policy[OVS_PACKET_ATTR_MAX + 1] = {
7c3072cc 581 [OVS_PACKET_ATTR_PACKET] = { .len = ETH_HLEN },
df2c07f4
JP
582 [OVS_PACKET_ATTR_KEY] = { .type = NLA_NESTED },
583 [OVS_PACKET_ATTR_ACTIONS] = { .type = NLA_NESTED },
982b8810
BP
584};
585
586static struct genl_ops dp_packet_genl_ops[] = {
df2c07f4 587 { .cmd = OVS_PACKET_CMD_EXECUTE,
982b8810
BP
588 .flags = GENL_ADMIN_PERM, /* Requires CAP_NET_ADMIN privilege. */
589 .policy = packet_policy,
df2c07f4 590 .doit = ovs_packet_cmd_execute
982b8810
BP
591 }
592};
593
4fa72a95
AZ
594static void get_dp_stats(struct datapath *dp, struct ovs_dp_stats *stats,
595 struct ovs_dp_megaflow_stats *mega_stats)
064af421 596{
d6569377 597 int i;
f180c2e2 598
4fa72a95
AZ
599 memset(mega_stats, 0, sizeof(*mega_stats));
600
994dc286 601 stats->n_flows = ovs_flow_tbl_count(&dp->table);
4fa72a95 602 mega_stats->n_masks = ovs_flow_tbl_num_masks(&dp->table);
064af421 603
7257b535 604 stats->n_hit = stats->n_missed = stats->n_lost = 0;
4fa72a95 605
d6569377
BP
606 for_each_possible_cpu(i) {
607 const struct dp_stats_percpu *percpu_stats;
608 struct dp_stats_percpu local_stats;
821cb9fa 609 unsigned int start;
44e05eca 610
d6569377 611 percpu_stats = per_cpu_ptr(dp->stats_percpu, i);
064af421 612
d6569377 613 do {
821cb9fa 614 start = u64_stats_fetch_begin_bh(&percpu_stats->sync);
d6569377 615 local_stats = *percpu_stats;
821cb9fa 616 } while (u64_stats_fetch_retry_bh(&percpu_stats->sync, start));
064af421 617
d6569377
BP
618 stats->n_hit += local_stats.n_hit;
619 stats->n_missed += local_stats.n_missed;
620 stats->n_lost += local_stats.n_lost;
4fa72a95 621 mega_stats->n_mask_hit += local_stats.n_mask_hit;
d6569377
BP
622 }
623}
064af421 624
df2c07f4
JP
625static const struct nla_policy flow_policy[OVS_FLOW_ATTR_MAX + 1] = {
626 [OVS_FLOW_ATTR_KEY] = { .type = NLA_NESTED },
627 [OVS_FLOW_ATTR_ACTIONS] = { .type = NLA_NESTED },
628 [OVS_FLOW_ATTR_CLEAR] = { .type = NLA_FLAG },
d6569377 629};
36956a7d 630
37a1300c
BP
631static struct genl_family dp_flow_genl_family = {
632 .id = GENL_ID_GENERATE,
df2c07f4
JP
633 .hdrsize = sizeof(struct ovs_header),
634 .name = OVS_FLOW_FAMILY,
69685a88 635 .version = OVS_FLOW_VERSION,
2a4999f3 636 .maxattr = OVS_FLOW_ATTR_MAX,
b3dcb73c 637 .netnsok = true,
14002a59 638 SET_PARALLEL_OPS
37a1300c 639};
ed099e92 640
850b6b3b 641static struct genl_multicast_group ovs_dp_flow_multicast_group = {
df2c07f4 642 .name = OVS_FLOW_MCGROUP
37a1300c
BP
643};
644
0afa2373
TG
645static size_t ovs_flow_cmd_msg_size(const struct sw_flow_actions *acts)
646{
647 return NLMSG_ALIGN(sizeof(struct ovs_header))
648 + nla_total_size(key_attr_size()) /* OVS_FLOW_ATTR_KEY */
a1c564be 649 + nla_total_size(key_attr_size()) /* OVS_FLOW_ATTR_MASK */
0afa2373
TG
650 + nla_total_size(sizeof(struct ovs_flow_stats)) /* OVS_FLOW_ATTR_STATS */
651 + nla_total_size(1) /* OVS_FLOW_ATTR_TCP_FLAGS */
652 + nla_total_size(8) /* OVS_FLOW_ATTR_USED */
653 + nla_total_size(acts->actions_len); /* OVS_FLOW_ATTR_ACTIONS */
654}
655
cd2a59e9 656/* Called with ovs_mutex. */
df2c07f4 657static int ovs_flow_cmd_fill_info(struct sw_flow *flow, struct datapath *dp,
28aea917 658 struct sk_buff *skb, u32 portid,
6455100f 659 u32 seq, u32 flags, u8 cmd)
d6569377 660{
37a1300c 661 const int skb_orig_len = skb->len;
9b405f1a 662 struct nlattr *start;
b0f3a2fe
PS
663 struct ovs_flow_stats stats;
664 __be16 tcp_flags;
665 unsigned long used;
df2c07f4 666 struct ovs_header *ovs_header;
d6569377 667 struct nlattr *nla;
d6569377 668 int err;
064af421 669
28aea917 670 ovs_header = genlmsg_put(skb, portid, seq, &dp_flow_genl_family, flags, cmd);
df2c07f4 671 if (!ovs_header)
37a1300c 672 return -EMSGSIZE;
d6569377 673
99769a40 674 ovs_header->dp_ifindex = get_dpifindex(dp);
d6569377 675
a1c564be 676 /* Fill flow key. */
df2c07f4 677 nla = nla_nest_start(skb, OVS_FLOW_ATTR_KEY);
d6569377
BP
678 if (!nla)
679 goto nla_put_failure;
a1c564be 680
a097c0b2 681 err = ovs_nla_put_flow(&flow->unmasked_key, &flow->unmasked_key, skb);
d6569377 682 if (err)
37a1300c 683 goto error;
d6569377
BP
684 nla_nest_end(skb, nla);
685
a1c564be
AZ
686 nla = nla_nest_start(skb, OVS_FLOW_ATTR_MASK);
687 if (!nla)
688 goto nla_put_failure;
689
a097c0b2 690 err = ovs_nla_put_flow(&flow->key, &flow->mask->key, skb);
a1c564be
AZ
691 if (err)
692 goto error;
693
694 nla_nest_end(skb, nla);
695
b0f3a2fe
PS
696 ovs_flow_stats_get(flow, &stats, &used, &tcp_flags);
697 if (used &&
698 nla_put_u64(skb, OVS_FLOW_ATTR_USED, ovs_flow_used_time(used)))
c3cc8c03 699 goto nla_put_failure;
d6569377 700
b0f3a2fe
PS
701 if (stats.n_packets &&
702 nla_put(skb, OVS_FLOW_ATTR_STATS, sizeof(struct ovs_flow_stats), &stats))
703 goto nla_put_failure;
b0b906cc 704
b0f3a2fe
PS
705 if ((u8)ntohs(tcp_flags) &&
706 nla_put_u8(skb, OVS_FLOW_ATTR_TCP_FLAGS, (u8)ntohs(tcp_flags)))
c3cc8c03 707 goto nla_put_failure;
d6569377 708
df2c07f4 709 /* If OVS_FLOW_ATTR_ACTIONS doesn't fit, skip dumping the actions if
30053024
BP
710 * this is the first flow to be dumped into 'skb'. This is unusual for
711 * Netlink but individual action lists can be longer than
712 * NLMSG_GOODSIZE and thus entirely undumpable if we didn't do this.
713 * The userspace caller can always fetch the actions separately if it
714 * really wants them. (Most userspace callers in fact don't care.)
715 *
716 * This can only fail for dump operations because the skb is always
717 * properly sized for single flows.
718 */
9b405f1a 719 start = nla_nest_start(skb, OVS_FLOW_ATTR_ACTIONS);
f6f481ee 720 if (start) {
f44ccce1
PS
721 const struct sw_flow_actions *sf_acts;
722
780ec6ae 723 sf_acts = rcu_dereference_ovsl(flow->sf_acts);
f44ccce1 724
a097c0b2
PS
725 err = ovs_nla_put_actions(sf_acts->actions,
726 sf_acts->actions_len, skb);
0a25b039
BP
727 if (!err)
728 nla_nest_end(skb, start);
729 else {
730 if (skb_orig_len)
731 goto error;
732
733 nla_nest_cancel(skb, start);
734 }
7aac03bd
JG
735 } else if (skb_orig_len)
736 goto nla_put_failure;
37a1300c 737
df2c07f4 738 return genlmsg_end(skb, ovs_header);
d6569377
BP
739
740nla_put_failure:
741 err = -EMSGSIZE;
37a1300c 742error:
df2c07f4 743 genlmsg_cancel(skb, ovs_header);
d6569377 744 return err;
44e05eca
BP
745}
746
68eadcf0
TG
747static struct sk_buff *ovs_flow_cmd_alloc_info(struct sw_flow *flow,
748 struct genl_info *info)
44e05eca 749{
68eadcf0 750 size_t len;
d6569377 751
68eadcf0 752 len = ovs_flow_cmd_msg_size(ovsl_dereference(flow->sf_acts));
d6569377 753
68eadcf0 754 return genlmsg_new_unicast(len, info, GFP_KERNEL);
37a1300c 755}
8d5ebd83 756
6455100f
PS
757static struct sk_buff *ovs_flow_cmd_build_info(struct sw_flow *flow,
758 struct datapath *dp,
68eadcf0
TG
759 struct genl_info *info,
760 u8 cmd)
37a1300c
BP
761{
762 struct sk_buff *skb;
763 int retval;
d6569377 764
68eadcf0 765 skb = ovs_flow_cmd_alloc_info(flow, info);
37a1300c
BP
766 if (!skb)
767 return ERR_PTR(-ENOMEM);
d6569377 768
68eadcf0
TG
769 retval = ovs_flow_cmd_fill_info(flow, dp, skb, info->snd_portid,
770 info->snd_seq, 0, cmd);
37a1300c 771 BUG_ON(retval < 0);
d6569377 772 return skb;
064af421
BP
773}
774
df2c07f4 775static int ovs_flow_cmd_new_or_set(struct sk_buff *skb, struct genl_info *info)
064af421 776{
37a1300c 777 struct nlattr **a = info->attrs;
df2c07f4 778 struct ovs_header *ovs_header = info->userhdr;
529db635 779 struct sw_flow_key key, masked_key;
a1c564be
AZ
780 struct sw_flow *flow = NULL;
781 struct sw_flow_mask mask;
37a1300c 782 struct sk_buff *reply;
9c52546b 783 struct datapath *dp;
9b405f1a 784 struct sw_flow_actions *acts = NULL;
a1c564be 785 struct sw_flow_match match;
bc4a05c6 786 int error;
064af421 787
37a1300c
BP
788 /* Extract key. */
789 error = -EINVAL;
df2c07f4 790 if (!a[OVS_FLOW_ATTR_KEY])
37a1300c 791 goto error;
a1c564be
AZ
792
793 ovs_match_init(&match, &key, &mask);
df65fec1 794 error = ovs_nla_get_match(&match,
a097c0b2 795 a[OVS_FLOW_ATTR_KEY], a[OVS_FLOW_ATTR_MASK]);
37a1300c
BP
796 if (error)
797 goto error;
064af421 798
37a1300c 799 /* Validate actions. */
df2c07f4 800 if (a[OVS_FLOW_ATTR_ACTIONS]) {
a097c0b2 801 acts = ovs_nla_alloc_flow_actions(nla_len(a[OVS_FLOW_ATTR_ACTIONS]));
9b405f1a
PS
802 error = PTR_ERR(acts);
803 if (IS_ERR(acts))
37a1300c 804 goto error;
9b405f1a 805
a097c0b2
PS
806 ovs_flow_mask_key(&masked_key, &key, &mask);
807 error = ovs_nla_copy_actions(a[OVS_FLOW_ATTR_ACTIONS],
808 &masked_key, 0, &acts);
529db635
JG
809 if (error) {
810 OVS_NLERR("Flow actions may not be safe on all matching packets.\n");
9b405f1a 811 goto err_kfree;
529db635 812 }
df2c07f4 813 } else if (info->genlhdr->cmd == OVS_FLOW_CMD_NEW) {
37a1300c
BP
814 error = -EINVAL;
815 goto error;
816 }
817
cd2a59e9 818 ovs_lock();
2a4999f3 819 dp = get_dp(sock_net(skb->sk), ovs_header->dp_ifindex);
d6569377 820 error = -ENODEV;
9c52546b 821 if (!dp)
cd2a59e9 822 goto err_unlock_ovs;
704a1e09 823
a1c564be 824 /* Check if this is a duplicate flow */
4f88b5e5 825 flow = ovs_flow_tbl_lookup(&dp->table, &key);
3544358a 826 if (!flow) {
d6569377
BP
827 /* Bail out if we're not allowed to create a new flow. */
828 error = -ENOENT;
df2c07f4 829 if (info->genlhdr->cmd == OVS_FLOW_CMD_SET)
cd2a59e9 830 goto err_unlock_ovs;
d6569377 831
d6569377 832 /* Allocate flow. */
df65fec1 833 flow = ovs_flow_alloc();
d6569377
BP
834 if (IS_ERR(flow)) {
835 error = PTR_ERR(flow);
cd2a59e9 836 goto err_unlock_ovs;
d6569377 837 }
d6569377 838
529db635
JG
839 flow->key = masked_key;
840 flow->unmasked_key = key;
d6569377
BP
841 rcu_assign_pointer(flow->sf_acts, acts);
842
d6569377 843 /* Put flow in bucket. */
0585f7a8
PS
844 error = ovs_flow_tbl_insert(&dp->table, flow, &mask);
845 if (error) {
846 acts = NULL;
847 goto err_flow_free;
848 }
37a1300c 849
68eadcf0 850 reply = ovs_flow_cmd_build_info(flow, dp, info, OVS_FLOW_CMD_NEW);
d6569377
BP
851 } else {
852 /* We found a matching flow. */
853 struct sw_flow_actions *old_acts;
854
855 /* Bail out if we're not allowed to modify an existing flow.
856 * We accept NLM_F_CREATE in place of the intended NLM_F_EXCL
857 * because Generic Netlink treats the latter as a dump
858 * request. We also accept NLM_F_EXCL in case that bug ever
859 * gets fixed.
860 */
861 error = -EEXIST;
df2c07f4 862 if (info->genlhdr->cmd == OVS_FLOW_CMD_NEW &&
37a1300c 863 info->nlhdr->nlmsg_flags & (NLM_F_CREATE | NLM_F_EXCL))
cd2a59e9 864 goto err_unlock_ovs;
d6569377 865
b21e5b6a 866 /* The unmasked key has to be the same for flow updates. */
a6603481 867 if (!ovs_flow_cmp_unmasked_key(flow, &match))
b21e5b6a
AZ
868 goto err_unlock_ovs;
869
d6569377 870 /* Update actions. */
cd2a59e9 871 old_acts = ovsl_dereference(flow->sf_acts);
9b405f1a 872 rcu_assign_pointer(flow->sf_acts, acts);
a097c0b2 873 ovs_nla_free_flow_actions(old_acts);
d6569377 874
68eadcf0 875 reply = ovs_flow_cmd_build_info(flow, dp, info, OVS_FLOW_CMD_NEW);
d6569377
BP
876
877 /* Clear stats. */
b0b906cc
PS
878 if (a[OVS_FLOW_ATTR_CLEAR])
879 ovs_flow_stats_clear(flow);
9c52546b 880 }
cd2a59e9 881 ovs_unlock();
37a1300c
BP
882
883 if (!IS_ERR(reply))
e297c6b7 884 ovs_notify(reply, info, &ovs_dp_flow_multicast_group);
37a1300c 885 else
b3dcb73c 886 netlink_set_err(sock_net(skb->sk)->genl_sock, 0,
2a4999f3 887 ovs_dp_flow_multicast_group.id, PTR_ERR(reply));
d6569377 888 return 0;
704a1e09 889
a1c564be
AZ
890err_flow_free:
891 ovs_flow_free(flow, false);
cd2a59e9
PS
892err_unlock_ovs:
893 ovs_unlock();
9b405f1a 894err_kfree:
ba400435 895 kfree(acts);
37a1300c 896error:
9c52546b 897 return error;
704a1e09
BP
898}
899
df2c07f4 900static int ovs_flow_cmd_get(struct sk_buff *skb, struct genl_info *info)
704a1e09 901{
37a1300c 902 struct nlattr **a = info->attrs;
df2c07f4 903 struct ovs_header *ovs_header = info->userhdr;
37a1300c 904 struct sw_flow_key key;
37a1300c 905 struct sk_buff *reply;
704a1e09 906 struct sw_flow *flow;
9c52546b 907 struct datapath *dp;
a1c564be 908 struct sw_flow_match match;
9c52546b 909 int err;
704a1e09 910
1b936472
AZ
911 if (!a[OVS_FLOW_ATTR_KEY]) {
912 OVS_NLERR("Flow get message rejected, Key attribute missing.\n");
37a1300c 913 return -EINVAL;
1b936472 914 }
a1c564be
AZ
915
916 ovs_match_init(&match, &key, NULL);
df65fec1 917 err = ovs_nla_get_match(&match, a[OVS_FLOW_ATTR_KEY], NULL);
37a1300c
BP
918 if (err)
919 return err;
704a1e09 920
cd2a59e9 921 ovs_lock();
2a4999f3 922 dp = get_dp(sock_net(skb->sk), ovs_header->dp_ifindex);
cd2a59e9
PS
923 if (!dp) {
924 err = -ENODEV;
925 goto unlock;
926 }
704a1e09 927
4f88b5e5 928 flow = ovs_flow_tbl_lookup(&dp->table, &key);
a097c0b2 929 if (!flow || !ovs_flow_cmp_unmasked_key(flow, &match)) {
cd2a59e9
PS
930 err = -ENOENT;
931 goto unlock;
932 }
d6569377 933
68eadcf0 934 reply = ovs_flow_cmd_build_info(flow, dp, info, OVS_FLOW_CMD_NEW);
cd2a59e9
PS
935 if (IS_ERR(reply)) {
936 err = PTR_ERR(reply);
937 goto unlock;
938 }
36956a7d 939
cd2a59e9 940 ovs_unlock();
37a1300c 941 return genlmsg_reply(reply, info);
cd2a59e9
PS
942unlock:
943 ovs_unlock();
944 return err;
d6569377 945}
9c52546b 946
df2c07f4 947static int ovs_flow_cmd_del(struct sk_buff *skb, struct genl_info *info)
d6569377 948{
37a1300c 949 struct nlattr **a = info->attrs;
df2c07f4 950 struct ovs_header *ovs_header = info->userhdr;
37a1300c 951 struct sw_flow_key key;
37a1300c 952 struct sk_buff *reply;
d6569377 953 struct sw_flow *flow;
d6569377 954 struct datapath *dp;
a1c564be 955 struct sw_flow_match match;
d6569377 956 int err;
36956a7d 957
cd2a59e9 958 ovs_lock();
2a4999f3 959 dp = get_dp(sock_net(skb->sk), ovs_header->dp_ifindex);
cd2a59e9
PS
960 if (!dp) {
961 err = -ENODEV;
962 goto unlock;
963 }
2a4999f3 964
cd2a59e9 965 if (!a[OVS_FLOW_ATTR_KEY]) {
994dc286 966 err = ovs_flow_tbl_flush(&dp->table);
cd2a59e9
PS
967 goto unlock;
968 }
a1c564be
AZ
969
970 ovs_match_init(&match, &key, NULL);
df65fec1 971 err = ovs_nla_get_match(&match, a[OVS_FLOW_ATTR_KEY], NULL);
37a1300c 972 if (err)
cd2a59e9 973 goto unlock;
d6569377 974
4f88b5e5 975 flow = ovs_flow_tbl_lookup(&dp->table, &key);
a097c0b2 976 if (!flow || !ovs_flow_cmp_unmasked_key(flow, &match)) {
cd2a59e9
PS
977 err = -ENOENT;
978 goto unlock;
979 }
d6569377 980
68eadcf0 981 reply = ovs_flow_cmd_alloc_info(flow, info);
cd2a59e9
PS
982 if (!reply) {
983 err = -ENOMEM;
984 goto unlock;
985 }
37a1300c 986
994dc286 987 ovs_flow_tbl_remove(&dp->table, flow);
37a1300c 988
28aea917 989 err = ovs_flow_cmd_fill_info(flow, dp, reply, info->snd_portid,
df2c07f4 990 info->snd_seq, 0, OVS_FLOW_CMD_DEL);
37a1300c
BP
991 BUG_ON(err < 0);
992
a1c564be 993 ovs_flow_free(flow, true);
cd2a59e9 994 ovs_unlock();
37a1300c 995
e297c6b7 996 ovs_notify(reply, info, &ovs_dp_flow_multicast_group);
37a1300c 997 return 0;
cd2a59e9
PS
998unlock:
999 ovs_unlock();
1000 return err;
37a1300c
BP
1001}
1002
df2c07f4 1003static int ovs_flow_cmd_dump(struct sk_buff *skb, struct netlink_callback *cb)
37a1300c 1004{
df2c07f4 1005 struct ovs_header *ovs_header = genlmsg_data(nlmsg_data(cb->nlh));
994dc286 1006 struct table_instance *ti;
37a1300c
BP
1007 struct datapath *dp;
1008
f44ccce1 1009 rcu_read_lock();
2a4999f3 1010 dp = get_dp(sock_net(skb->sk), ovs_header->dp_ifindex);
cd2a59e9 1011 if (!dp) {
f44ccce1 1012 rcu_read_unlock();
37a1300c 1013 return -ENODEV;
cd2a59e9 1014 }
37a1300c 1015
994dc286 1016 ti = rcu_dereference(dp->table.ti);
37a1300c 1017 for (;;) {
37a1300c
BP
1018 struct sw_flow *flow;
1019 u32 bucket, obj;
1020
1021 bucket = cb->args[0];
1022 obj = cb->args[1];
994dc286 1023 flow = ovs_flow_tbl_dump_next(ti, &bucket, &obj);
3544358a 1024 if (!flow)
37a1300c
BP
1025 break;
1026
6455100f 1027 if (ovs_flow_cmd_fill_info(flow, dp, skb,
28aea917 1028 NETLINK_CB(cb->skb).portid,
37a1300c 1029 cb->nlh->nlmsg_seq, NLM_F_MULTI,
df2c07f4 1030 OVS_FLOW_CMD_NEW) < 0)
37a1300c
BP
1031 break;
1032
1033 cb->args[0] = bucket;
1034 cb->args[1] = obj;
1035 }
f44ccce1 1036 rcu_read_unlock();
37a1300c 1037 return skb->len;
704a1e09
BP
1038}
1039
37a1300c 1040static struct genl_ops dp_flow_genl_ops[] = {
df2c07f4 1041 { .cmd = OVS_FLOW_CMD_NEW,
37a1300c
BP
1042 .flags = GENL_ADMIN_PERM, /* Requires CAP_NET_ADMIN privilege. */
1043 .policy = flow_policy,
df2c07f4 1044 .doit = ovs_flow_cmd_new_or_set
37a1300c 1045 },
df2c07f4 1046 { .cmd = OVS_FLOW_CMD_DEL,
37a1300c
BP
1047 .flags = GENL_ADMIN_PERM, /* Requires CAP_NET_ADMIN privilege. */
1048 .policy = flow_policy,
df2c07f4 1049 .doit = ovs_flow_cmd_del
37a1300c 1050 },
df2c07f4 1051 { .cmd = OVS_FLOW_CMD_GET,
37a1300c
BP
1052 .flags = 0, /* OK for unprivileged users. */
1053 .policy = flow_policy,
df2c07f4
JP
1054 .doit = ovs_flow_cmd_get,
1055 .dumpit = ovs_flow_cmd_dump
37a1300c 1056 },
df2c07f4 1057 { .cmd = OVS_FLOW_CMD_SET,
37a1300c
BP
1058 .flags = GENL_ADMIN_PERM, /* Requires CAP_NET_ADMIN privilege. */
1059 .policy = flow_policy,
df2c07f4 1060 .doit = ovs_flow_cmd_new_or_set,
37a1300c
BP
1061 },
1062};
1063
df2c07f4 1064static const struct nla_policy datapath_policy[OVS_DP_ATTR_MAX + 1] = {
df2c07f4 1065 [OVS_DP_ATTR_NAME] = { .type = NLA_NUL_STRING, .len = IFNAMSIZ - 1 },
b063d9f0 1066 [OVS_DP_ATTR_UPCALL_PID] = { .type = NLA_U32 },
c58cc9a4 1067 [OVS_DP_ATTR_USER_FEATURES] = { .type = NLA_U32 },
d6569377
BP
1068};
1069
aaff4b55
BP
1070static struct genl_family dp_datapath_genl_family = {
1071 .id = GENL_ID_GENERATE,
df2c07f4
JP
1072 .hdrsize = sizeof(struct ovs_header),
1073 .name = OVS_DATAPATH_FAMILY,
69685a88 1074 .version = OVS_DATAPATH_VERSION,
2a4999f3 1075 .maxattr = OVS_DP_ATTR_MAX,
b3dcb73c 1076 .netnsok = true,
14002a59 1077 SET_PARALLEL_OPS
aaff4b55
BP
1078};
1079
850b6b3b 1080static struct genl_multicast_group ovs_dp_datapath_multicast_group = {
df2c07f4 1081 .name = OVS_DATAPATH_MCGROUP
aaff4b55
BP
1082};
1083
0afa2373
TG
1084static size_t ovs_dp_cmd_msg_size(void)
1085{
1086 size_t msgsize = NLMSG_ALIGN(sizeof(struct ovs_header));
1087
1088 msgsize += nla_total_size(IFNAMSIZ);
1089 msgsize += nla_total_size(sizeof(struct ovs_dp_stats));
4fa72a95 1090 msgsize += nla_total_size(sizeof(struct ovs_dp_megaflow_stats));
300af20a 1091 msgsize += nla_total_size(sizeof(u32)); /* OVS_DP_ATTR_USER_FEATURES */
0afa2373
TG
1092
1093 return msgsize;
1094}
1095
df2c07f4 1096static int ovs_dp_cmd_fill_info(struct datapath *dp, struct sk_buff *skb,
28aea917 1097 u32 portid, u32 seq, u32 flags, u8 cmd)
064af421 1098{
df2c07f4 1099 struct ovs_header *ovs_header;
e926dfe3 1100 struct ovs_dp_stats dp_stats;
4fa72a95 1101 struct ovs_dp_megaflow_stats dp_megaflow_stats;
064af421
BP
1102 int err;
1103
28aea917 1104 ovs_header = genlmsg_put(skb, portid, seq, &dp_datapath_genl_family,
aaff4b55 1105 flags, cmd);
df2c07f4 1106 if (!ovs_header)
aaff4b55 1107 goto error;
064af421 1108
b063d9f0 1109 ovs_header->dp_ifindex = get_dpifindex(dp);
064af421 1110
d6569377 1111 rcu_read_lock();
850b6b3b 1112 err = nla_put_string(skb, OVS_DP_ATTR_NAME, ovs_dp_name(dp));
d6569377 1113 rcu_read_unlock();
064af421 1114 if (err)
d6569377 1115 goto nla_put_failure;
064af421 1116
4fa72a95
AZ
1117 get_dp_stats(dp, &dp_stats, &dp_megaflow_stats);
1118 if (nla_put(skb, OVS_DP_ATTR_STATS, sizeof(struct ovs_dp_stats),
1119 &dp_stats))
1120 goto nla_put_failure;
1121
1122 if (nla_put(skb, OVS_DP_ATTR_MEGAFLOW_STATS,
1123 sizeof(struct ovs_dp_megaflow_stats),
1124 &dp_megaflow_stats))
c3cc8c03 1125 goto nla_put_failure;
d6569377 1126
c58cc9a4
TG
1127 if (nla_put_u32(skb, OVS_DP_ATTR_USER_FEATURES, dp->user_features))
1128 goto nla_put_failure;
1129
df2c07f4 1130 return genlmsg_end(skb, ovs_header);
d6569377
BP
1131
1132nla_put_failure:
df2c07f4 1133 genlmsg_cancel(skb, ovs_header);
aaff4b55
BP
1134error:
1135 return -EMSGSIZE;
d6569377
BP
1136}
1137
68eadcf0
TG
1138static struct sk_buff *ovs_dp_cmd_build_info(struct datapath *dp,
1139 struct genl_info *info, u8 cmd)
d6569377 1140{
d6569377 1141 struct sk_buff *skb;
aaff4b55 1142 int retval;
d6569377 1143
68eadcf0 1144 skb = genlmsg_new_unicast(ovs_dp_cmd_msg_size(), info, GFP_KERNEL);
064af421 1145 if (!skb)
d6569377 1146 return ERR_PTR(-ENOMEM);
659586ef 1147
68eadcf0 1148 retval = ovs_dp_cmd_fill_info(dp, skb, info->snd_portid, info->snd_seq, 0, cmd);
aaff4b55
BP
1149 if (retval < 0) {
1150 kfree_skb(skb);
1151 return ERR_PTR(retval);
1152 }
1153 return skb;
1154}
9dca7bd5 1155
cd2a59e9 1156/* Called with ovs_mutex. */
2a4999f3
PS
1157static struct datapath *lookup_datapath(struct net *net,
1158 struct ovs_header *ovs_header,
6455100f 1159 struct nlattr *a[OVS_DP_ATTR_MAX + 1])
d6569377 1160{
254f2dc8
BP
1161 struct datapath *dp;
1162
df2c07f4 1163 if (!a[OVS_DP_ATTR_NAME])
2a4999f3 1164 dp = get_dp(net, ovs_header->dp_ifindex);
254f2dc8 1165 else {
d6569377 1166 struct vport *vport;
d6569377 1167
057dd6d2 1168 rcu_read_lock();
2a4999f3 1169 vport = ovs_vport_locate(net, nla_data(a[OVS_DP_ATTR_NAME]));
df2c07f4 1170 dp = vport && vport->port_no == OVSP_LOCAL ? vport->dp : NULL;
057dd6d2 1171 rcu_read_unlock();
d6569377 1172 }
254f2dc8 1173 return dp ? dp : ERR_PTR(-ENODEV);
d6569377
BP
1174}
1175
94358dcf
TG
1176static void ovs_dp_reset_user_features(struct sk_buff *skb, struct genl_info *info)
1177{
1178 struct datapath *dp;
1179
1180 dp = lookup_datapath(sock_net(skb->sk), info->userhdr, info->attrs);
09350a3d 1181 if (IS_ERR(dp))
94358dcf
TG
1182 return;
1183
1184 WARN(dp->user_features, "Dropping previously announced user features\n");
1185 dp->user_features = 0;
1186}
1187
c58cc9a4
TG
1188static void ovs_dp_change(struct datapath *dp, struct nlattr **a)
1189{
1190 if (a[OVS_DP_ATTR_USER_FEATURES])
1191 dp->user_features = nla_get_u32(a[OVS_DP_ATTR_USER_FEATURES]);
1192}
1193
df2c07f4 1194static int ovs_dp_cmd_new(struct sk_buff *skb, struct genl_info *info)
d6569377 1195{
aaff4b55 1196 struct nlattr **a = info->attrs;
d6569377 1197 struct vport_parms parms;
aaff4b55 1198 struct sk_buff *reply;
d6569377
BP
1199 struct datapath *dp;
1200 struct vport *vport;
2a4999f3 1201 struct ovs_net *ovs_net;
95b1d73a 1202 int err, i;
d6569377 1203
d6569377 1204 err = -EINVAL;
ea36840f 1205 if (!a[OVS_DP_ATTR_NAME] || !a[OVS_DP_ATTR_UPCALL_PID])
aaff4b55
BP
1206 goto err;
1207
cd2a59e9 1208 ovs_lock();
d6569377 1209
d6569377
BP
1210 err = -ENOMEM;
1211 dp = kzalloc(sizeof(*dp), GFP_KERNEL);
1212 if (dp == NULL)
cd2a59e9 1213 goto err_unlock_ovs;
2a4999f3 1214
0ceaa66c
JG
1215 ovs_dp_set_net(dp, hold_net(sock_net(skb->sk)));
1216
d6569377 1217 /* Allocate table. */
994dc286
PS
1218 err = ovs_flow_tbl_init(&dp->table);
1219 if (err)
d6569377
BP
1220 goto err_free_dp;
1221
99769a40
JG
1222 dp->stats_percpu = alloc_percpu(struct dp_stats_percpu);
1223 if (!dp->stats_percpu) {
1224 err = -ENOMEM;
1225 goto err_destroy_table;
1226 }
1227
95b1d73a
PS
1228 dp->ports = kmalloc(DP_VPORT_HASH_BUCKETS * sizeof(struct hlist_head),
1229 GFP_KERNEL);
1230 if (!dp->ports) {
1231 err = -ENOMEM;
1232 goto err_destroy_percpu;
1233 }
1234
1235 for (i = 0; i < DP_VPORT_HASH_BUCKETS; i++)
1236 INIT_HLIST_HEAD(&dp->ports[i]);
1237
d6569377 1238 /* Set up our datapath device. */
df2c07f4
JP
1239 parms.name = nla_data(a[OVS_DP_ATTR_NAME]);
1240 parms.type = OVS_VPORT_TYPE_INTERNAL;
d6569377
BP
1241 parms.options = NULL;
1242 parms.dp = dp;
df2c07f4 1243 parms.port_no = OVSP_LOCAL;
28aea917 1244 parms.upcall_portid = nla_get_u32(a[OVS_DP_ATTR_UPCALL_PID]);
b063d9f0 1245
c58cc9a4
TG
1246 ovs_dp_change(dp, a);
1247
d6569377
BP
1248 vport = new_vport(&parms);
1249 if (IS_ERR(vport)) {
1250 err = PTR_ERR(vport);
1251 if (err == -EBUSY)
1252 err = -EEXIST;
1253
94358dcf
TG
1254 if (err == -EEXIST) {
1255 /* An outdated user space instance that does not understand
1256 * the concept of user_features has attempted to create a new
1257 * datapath and is likely to reuse it. Drop all user features.
1258 */
1259 if (info->genlhdr->version < OVS_DP_VER_FEATURES)
1260 ovs_dp_reset_user_features(skb, info);
1261 }
1262
95b1d73a 1263 goto err_destroy_ports_array;
d6569377 1264 }
d6569377 1265
68eadcf0 1266 reply = ovs_dp_cmd_build_info(dp, info, OVS_DP_CMD_NEW);
aaff4b55
BP
1267 err = PTR_ERR(reply);
1268 if (IS_ERR(reply))
1269 goto err_destroy_local_port;
1270
2a4999f3 1271 ovs_net = net_generic(ovs_dp_get_net(dp), ovs_net_id);
fb93e9aa 1272 list_add_tail_rcu(&dp->list_node, &ovs_net->dps);
d6569377 1273
cd2a59e9 1274 ovs_unlock();
d6569377 1275
e297c6b7 1276 ovs_notify(reply, info, &ovs_dp_datapath_multicast_group);
d6569377
BP
1277 return 0;
1278
1279err_destroy_local_port:
cd2a59e9 1280 ovs_dp_detach_port(ovs_vport_ovsl(dp, OVSP_LOCAL));
95b1d73a
PS
1281err_destroy_ports_array:
1282 kfree(dp->ports);
99769a40
JG
1283err_destroy_percpu:
1284 free_percpu(dp->stats_percpu);
d6569377 1285err_destroy_table:
d103f479 1286 ovs_flow_tbl_destroy(&dp->table, false);
d6569377 1287err_free_dp:
0ceaa66c 1288 release_net(ovs_dp_get_net(dp));
d6569377 1289 kfree(dp);
cd2a59e9
PS
1290err_unlock_ovs:
1291 ovs_unlock();
d6569377 1292err:
064af421
BP
1293 return err;
1294}
1295
cd2a59e9 1296/* Called with ovs_mutex. */
2a4999f3 1297static void __dp_destroy(struct datapath *dp)
44e05eca 1298{
95b1d73a 1299 int i;
44e05eca 1300
95b1d73a
PS
1301 for (i = 0; i < DP_VPORT_HASH_BUCKETS; i++) {
1302 struct vport *vport;
f8dfbcb7 1303 struct hlist_node *n;
95b1d73a 1304
f8dfbcb7 1305 hlist_for_each_entry_safe(vport, n, &dp->ports[i], dp_hash_node)
95b1d73a
PS
1306 if (vport->port_no != OVSP_LOCAL)
1307 ovs_dp_detach_port(vport);
1308 }
ed099e92 1309
fb93e9aa 1310 list_del_rcu(&dp->list_node);
ed099e92 1311
cd2a59e9 1312 /* OVSP_LOCAL is datapath internal port. We need to make sure that
d103f479
AZ
1313 * all ports in datapath are destroyed first before freeing datapath.
1314 */
cd2a59e9 1315 ovs_dp_detach_port(ovs_vport_ovsl(dp, OVSP_LOCAL));
99620d2c 1316
d103f479
AZ
1317 /* RCU destroy the flow table */
1318 ovs_flow_tbl_destroy(&dp->table, true);
1319
ed099e92 1320 call_rcu(&dp->rcu, destroy_dp_rcu);
2a4999f3
PS
1321}
1322
1323static int ovs_dp_cmd_del(struct sk_buff *skb, struct genl_info *info)
1324{
1325 struct sk_buff *reply;
1326 struct datapath *dp;
1327 int err;
1328
cd2a59e9 1329 ovs_lock();
2a4999f3
PS
1330 dp = lookup_datapath(sock_net(skb->sk), info->userhdr, info->attrs);
1331 err = PTR_ERR(dp);
1332 if (IS_ERR(dp))
cd2a59e9 1333 goto unlock;
2a4999f3 1334
68eadcf0 1335 reply = ovs_dp_cmd_build_info(dp, info, OVS_DP_CMD_DEL);
2a4999f3
PS
1336 err = PTR_ERR(reply);
1337 if (IS_ERR(reply))
cd2a59e9 1338 goto unlock;
2a4999f3
PS
1339
1340 __dp_destroy(dp);
cd2a59e9 1341 ovs_unlock();
ed099e92 1342
e297c6b7 1343 ovs_notify(reply, info, &ovs_dp_datapath_multicast_group);
99620d2c
JG
1344
1345 return 0;
cd2a59e9
PS
1346unlock:
1347 ovs_unlock();
1348 return err;
44e05eca
BP
1349}
1350
df2c07f4 1351static int ovs_dp_cmd_set(struct sk_buff *skb, struct genl_info *info)
064af421 1352{
aaff4b55 1353 struct sk_buff *reply;
d6569377 1354 struct datapath *dp;
d6569377 1355 int err;
064af421 1356
cd2a59e9 1357 ovs_lock();
2a4999f3 1358 dp = lookup_datapath(sock_net(skb->sk), info->userhdr, info->attrs);
cd2a59e9 1359 err = PTR_ERR(dp);
d6569377 1360 if (IS_ERR(dp))
cd2a59e9 1361 goto unlock;
38c6ecbc 1362
c58cc9a4
TG
1363 ovs_dp_change(dp, info->attrs);
1364
68eadcf0 1365 reply = ovs_dp_cmd_build_info(dp, info, OVS_DP_CMD_NEW);
aaff4b55
BP
1366 if (IS_ERR(reply)) {
1367 err = PTR_ERR(reply);
b3dcb73c 1368 netlink_set_err(sock_net(skb->sk)->genl_sock, 0,
850b6b3b 1369 ovs_dp_datapath_multicast_group.id, err);
cd2a59e9
PS
1370 err = 0;
1371 goto unlock;
aaff4b55
BP
1372 }
1373
cd2a59e9 1374 ovs_unlock();
e297c6b7 1375 ovs_notify(reply, info, &ovs_dp_datapath_multicast_group);
850b6b3b 1376
aaff4b55 1377 return 0;
cd2a59e9
PS
1378unlock:
1379 ovs_unlock();
1380 return err;
064af421
BP
1381}
1382
df2c07f4 1383static int ovs_dp_cmd_get(struct sk_buff *skb, struct genl_info *info)
1dcf111b 1384{
aaff4b55 1385 struct sk_buff *reply;
d6569377 1386 struct datapath *dp;
d6569377 1387 int err;
1dcf111b 1388
cd2a59e9 1389 ovs_lock();
2a4999f3 1390 dp = lookup_datapath(sock_net(skb->sk), info->userhdr, info->attrs);
cd2a59e9
PS
1391 if (IS_ERR(dp)) {
1392 err = PTR_ERR(dp);
1393 goto unlock;
1394 }
1dcf111b 1395
68eadcf0 1396 reply = ovs_dp_cmd_build_info(dp, info, OVS_DP_CMD_NEW);
cd2a59e9
PS
1397 if (IS_ERR(reply)) {
1398 err = PTR_ERR(reply);
1399 goto unlock;
1400 }
aaff4b55 1401
cd2a59e9 1402 ovs_unlock();
aaff4b55 1403 return genlmsg_reply(reply, info);
cd2a59e9
PS
1404
1405unlock:
1406 ovs_unlock();
1407 return err;
1dcf111b
JP
1408}
1409
df2c07f4 1410static int ovs_dp_cmd_dump(struct sk_buff *skb, struct netlink_callback *cb)
a7786963 1411{
2a4999f3 1412 struct ovs_net *ovs_net = net_generic(sock_net(skb->sk), ovs_net_id);
254f2dc8
BP
1413 struct datapath *dp;
1414 int skip = cb->args[0];
1415 int i = 0;
a7786963 1416
fb93e9aa
PS
1417 rcu_read_lock();
1418 list_for_each_entry_rcu(dp, &ovs_net->dps, list_node) {
a2bab2f0 1419 if (i >= skip &&
28aea917 1420 ovs_dp_cmd_fill_info(dp, skb, NETLINK_CB(cb->skb).portid,
aaff4b55 1421 cb->nlh->nlmsg_seq, NLM_F_MULTI,
df2c07f4 1422 OVS_DP_CMD_NEW) < 0)
aaff4b55 1423 break;
254f2dc8 1424 i++;
a7786963 1425 }
fb93e9aa 1426 rcu_read_unlock();
aaff4b55 1427
254f2dc8
BP
1428 cb->args[0] = i;
1429
aaff4b55 1430 return skb->len;
c19e6535
BP
1431}
1432
aaff4b55 1433static struct genl_ops dp_datapath_genl_ops[] = {
df2c07f4 1434 { .cmd = OVS_DP_CMD_NEW,
aaff4b55
BP
1435 .flags = GENL_ADMIN_PERM, /* Requires CAP_NET_ADMIN privilege. */
1436 .policy = datapath_policy,
df2c07f4 1437 .doit = ovs_dp_cmd_new
aaff4b55 1438 },
df2c07f4 1439 { .cmd = OVS_DP_CMD_DEL,
aaff4b55
BP
1440 .flags = GENL_ADMIN_PERM, /* Requires CAP_NET_ADMIN privilege. */
1441 .policy = datapath_policy,
df2c07f4 1442 .doit = ovs_dp_cmd_del
aaff4b55 1443 },
df2c07f4 1444 { .cmd = OVS_DP_CMD_GET,
aaff4b55
BP
1445 .flags = 0, /* OK for unprivileged users. */
1446 .policy = datapath_policy,
df2c07f4
JP
1447 .doit = ovs_dp_cmd_get,
1448 .dumpit = ovs_dp_cmd_dump
aaff4b55 1449 },
df2c07f4 1450 { .cmd = OVS_DP_CMD_SET,
aaff4b55
BP
1451 .flags = GENL_ADMIN_PERM, /* Requires CAP_NET_ADMIN privilege. */
1452 .policy = datapath_policy,
df2c07f4 1453 .doit = ovs_dp_cmd_set,
aaff4b55
BP
1454 },
1455};
1456
df2c07f4 1457static const struct nla_policy vport_policy[OVS_VPORT_ATTR_MAX + 1] = {
df2c07f4 1458 [OVS_VPORT_ATTR_NAME] = { .type = NLA_NUL_STRING, .len = IFNAMSIZ - 1 },
f613a0d7 1459 [OVS_VPORT_ATTR_STATS] = { .len = sizeof(struct ovs_vport_stats) },
d48c88ec
JG
1460 [OVS_VPORT_ATTR_PORT_NO] = { .type = NLA_U32 },
1461 [OVS_VPORT_ATTR_TYPE] = { .type = NLA_U32 },
b063d9f0 1462 [OVS_VPORT_ATTR_UPCALL_PID] = { .type = NLA_U32 },
df2c07f4 1463 [OVS_VPORT_ATTR_OPTIONS] = { .type = NLA_NESTED },
c19e6535
BP
1464};
1465
f0fef760
BP
1466static struct genl_family dp_vport_genl_family = {
1467 .id = GENL_ID_GENERATE,
df2c07f4
JP
1468 .hdrsize = sizeof(struct ovs_header),
1469 .name = OVS_VPORT_FAMILY,
69685a88 1470 .version = OVS_VPORT_VERSION,
2a4999f3 1471 .maxattr = OVS_VPORT_ATTR_MAX,
b3dcb73c 1472 .netnsok = true,
14002a59 1473 SET_PARALLEL_OPS
f0fef760
BP
1474};
1475
850b6b3b 1476struct genl_multicast_group ovs_dp_vport_multicast_group = {
df2c07f4 1477 .name = OVS_VPORT_MCGROUP
f0fef760
BP
1478};
1479
cd2a59e9 1480/* Called with ovs_mutex or RCU read lock. */
df2c07f4 1481static int ovs_vport_cmd_fill_info(struct vport *vport, struct sk_buff *skb,
28aea917 1482 u32 portid, u32 seq, u32 flags, u8 cmd)
064af421 1483{
df2c07f4 1484 struct ovs_header *ovs_header;
e926dfe3 1485 struct ovs_vport_stats vport_stats;
c19e6535
BP
1486 int err;
1487
28aea917 1488 ovs_header = genlmsg_put(skb, portid, seq, &dp_vport_genl_family,
f0fef760 1489 flags, cmd);
df2c07f4 1490 if (!ovs_header)
f0fef760 1491 return -EMSGSIZE;
c19e6535 1492
99769a40 1493 ovs_header->dp_ifindex = get_dpifindex(vport->dp);
c19e6535 1494
c3cc8c03
DM
1495 if (nla_put_u32(skb, OVS_VPORT_ATTR_PORT_NO, vport->port_no) ||
1496 nla_put_u32(skb, OVS_VPORT_ATTR_TYPE, vport->ops->type) ||
1497 nla_put_string(skb, OVS_VPORT_ATTR_NAME, vport->ops->get_name(vport)) ||
28aea917 1498 nla_put_u32(skb, OVS_VPORT_ATTR_UPCALL_PID, vport->upcall_portid))
c3cc8c03 1499 goto nla_put_failure;
c19e6535 1500
850b6b3b 1501 ovs_vport_get_stats(vport, &vport_stats);
c3cc8c03
DM
1502 if (nla_put(skb, OVS_VPORT_ATTR_STATS, sizeof(struct ovs_vport_stats),
1503 &vport_stats))
1504 goto nla_put_failure;
c19e6535 1505
850b6b3b 1506 err = ovs_vport_get_options(vport, skb);
f0fef760
BP
1507 if (err == -EMSGSIZE)
1508 goto error;
c19e6535 1509
df2c07f4 1510 return genlmsg_end(skb, ovs_header);
c19e6535
BP
1511
1512nla_put_failure:
1513 err = -EMSGSIZE;
f0fef760 1514error:
df2c07f4 1515 genlmsg_cancel(skb, ovs_header);
f0fef760 1516 return err;
064af421
BP
1517}
1518
cd2a59e9 1519/* Called with ovs_mutex or RCU read lock. */
28aea917 1520struct sk_buff *ovs_vport_cmd_build_info(struct vport *vport, u32 portid,
f14d8083 1521 u32 seq, u8 cmd)
064af421 1522{
c19e6535 1523 struct sk_buff *skb;
f0fef760 1524 int retval;
c19e6535 1525
f0fef760 1526 skb = nlmsg_new(NLMSG_DEFAULT_SIZE, GFP_ATOMIC);
c19e6535
BP
1527 if (!skb)
1528 return ERR_PTR(-ENOMEM);
1529
28aea917 1530 retval = ovs_vport_cmd_fill_info(vport, skb, portid, seq, 0, cmd);
c25ea534
JG
1531 BUG_ON(retval < 0);
1532
c19e6535 1533 return skb;
f0fef760 1534}
c19e6535 1535
cd2a59e9 1536/* Called with ovs_mutex or RCU read lock. */
2a4999f3
PS
1537static struct vport *lookup_vport(struct net *net,
1538 struct ovs_header *ovs_header,
df2c07f4 1539 struct nlattr *a[OVS_VPORT_ATTR_MAX + 1])
c19e6535
BP
1540{
1541 struct datapath *dp;
1542 struct vport *vport;
1543
df2c07f4 1544 if (a[OVS_VPORT_ATTR_NAME]) {
2a4999f3 1545 vport = ovs_vport_locate(net, nla_data(a[OVS_VPORT_ATTR_NAME]));
ed099e92 1546 if (!vport)
c19e6535 1547 return ERR_PTR(-ENODEV);
24ce832d
BP
1548 if (ovs_header->dp_ifindex &&
1549 ovs_header->dp_ifindex != get_dpifindex(vport->dp))
1550 return ERR_PTR(-ENODEV);
c19e6535 1551 return vport;
df2c07f4
JP
1552 } else if (a[OVS_VPORT_ATTR_PORT_NO]) {
1553 u32 port_no = nla_get_u32(a[OVS_VPORT_ATTR_PORT_NO]);
c19e6535
BP
1554
1555 if (port_no >= DP_MAX_PORTS)
f0fef760 1556 return ERR_PTR(-EFBIG);
c19e6535 1557
2a4999f3 1558 dp = get_dp(net, ovs_header->dp_ifindex);
c19e6535
BP
1559 if (!dp)
1560 return ERR_PTR(-ENODEV);
f2459fe7 1561
cd2a59e9 1562 vport = ovs_vport_ovsl_rcu(dp, port_no);
ed099e92 1563 if (!vport)
17535c57 1564 return ERR_PTR(-ENODEV);
c19e6535
BP
1565 return vport;
1566 } else
1567 return ERR_PTR(-EINVAL);
064af421
BP
1568}
1569
df2c07f4 1570static int ovs_vport_cmd_new(struct sk_buff *skb, struct genl_info *info)
c19e6535 1571{
f0fef760 1572 struct nlattr **a = info->attrs;
df2c07f4 1573 struct ovs_header *ovs_header = info->userhdr;
c19e6535 1574 struct vport_parms parms;
ed099e92 1575 struct sk_buff *reply;
c19e6535 1576 struct vport *vport;
c19e6535 1577 struct datapath *dp;
b0ec0f27 1578 u32 port_no;
c19e6535 1579 int err;
b0ec0f27 1580
c19e6535 1581 err = -EINVAL;
ea36840f
BP
1582 if (!a[OVS_VPORT_ATTR_NAME] || !a[OVS_VPORT_ATTR_TYPE] ||
1583 !a[OVS_VPORT_ATTR_UPCALL_PID])
f0fef760
BP
1584 goto exit;
1585
cd2a59e9 1586 ovs_lock();
2a4999f3 1587 dp = get_dp(sock_net(skb->sk), ovs_header->dp_ifindex);
c19e6535
BP
1588 err = -ENODEV;
1589 if (!dp)
ed099e92 1590 goto exit_unlock;
c19e6535 1591
df2c07f4
JP
1592 if (a[OVS_VPORT_ATTR_PORT_NO]) {
1593 port_no = nla_get_u32(a[OVS_VPORT_ATTR_PORT_NO]);
c19e6535
BP
1594
1595 err = -EFBIG;
1596 if (port_no >= DP_MAX_PORTS)
ed099e92 1597 goto exit_unlock;
c19e6535 1598
cd2a59e9 1599 vport = ovs_vport_ovsl(dp, port_no);
c19e6535
BP
1600 err = -EBUSY;
1601 if (vport)
ed099e92 1602 goto exit_unlock;
c19e6535
BP
1603 } else {
1604 for (port_no = 1; ; port_no++) {
1605 if (port_no >= DP_MAX_PORTS) {
1606 err = -EFBIG;
ed099e92 1607 goto exit_unlock;
c19e6535 1608 }
cd2a59e9 1609 vport = ovs_vport_ovsl(dp, port_no);
c19e6535
BP
1610 if (!vport)
1611 break;
51d4d598 1612 }
064af421 1613 }
b0ec0f27 1614
df2c07f4
JP
1615 parms.name = nla_data(a[OVS_VPORT_ATTR_NAME]);
1616 parms.type = nla_get_u32(a[OVS_VPORT_ATTR_TYPE]);
1617 parms.options = a[OVS_VPORT_ATTR_OPTIONS];
c19e6535
BP
1618 parms.dp = dp;
1619 parms.port_no = port_no;
28aea917 1620 parms.upcall_portid = nla_get_u32(a[OVS_VPORT_ATTR_UPCALL_PID]);
c19e6535
BP
1621
1622 vport = new_vport(&parms);
1623 err = PTR_ERR(vport);
1624 if (IS_ERR(vport))
ed099e92 1625 goto exit_unlock;
c19e6535 1626
faef6d2d 1627 err = 0;
1fc7083d
JG
1628 if (a[OVS_VPORT_ATTR_STATS])
1629 ovs_vport_set_stats(vport, nla_data(a[OVS_VPORT_ATTR_STATS]));
1630
1631 reply = ovs_vport_cmd_build_info(vport, info->snd_portid, info->snd_seq,
1632 OVS_VPORT_CMD_NEW);
1633 if (IS_ERR(reply)) {
1634 err = PTR_ERR(reply);
850b6b3b 1635 ovs_dp_detach_port(vport);
ed099e92 1636 goto exit_unlock;
c19e6535 1637 }
e297c6b7
TG
1638
1639 ovs_notify(reply, info, &ovs_dp_vport_multicast_group);
c19e6535 1640
ed099e92 1641exit_unlock:
cd2a59e9 1642 ovs_unlock();
c19e6535
BP
1643exit:
1644 return err;
44e05eca
BP
1645}
1646
df2c07f4 1647static int ovs_vport_cmd_set(struct sk_buff *skb, struct genl_info *info)
44e05eca 1648{
f0fef760
BP
1649 struct nlattr **a = info->attrs;
1650 struct sk_buff *reply;
c19e6535 1651 struct vport *vport;
c19e6535 1652 int err;
44e05eca 1653
cd2a59e9 1654 ovs_lock();
2a4999f3 1655 vport = lookup_vport(sock_net(skb->sk), info->userhdr, a);
c19e6535
BP
1656 err = PTR_ERR(vport);
1657 if (IS_ERR(vport))
f0fef760 1658 goto exit_unlock;
44e05eca 1659
6455100f 1660 if (a[OVS_VPORT_ATTR_TYPE] &&
17ec1d04 1661 nla_get_u32(a[OVS_VPORT_ATTR_TYPE]) != vport->ops->type) {
4879d4c7 1662 err = -EINVAL;
17ec1d04
JG
1663 goto exit_unlock;
1664 }
6455100f 1665
c25ea534
JG
1666 reply = nlmsg_new(NLMSG_DEFAULT_SIZE, GFP_KERNEL);
1667 if (!reply) {
1668 err = -ENOMEM;
1669 goto exit_unlock;
1670 }
1671
17ec1d04 1672 if (a[OVS_VPORT_ATTR_OPTIONS]) {
850b6b3b 1673 err = ovs_vport_set_options(vport, a[OVS_VPORT_ATTR_OPTIONS]);
17ec1d04
JG
1674 if (err)
1675 goto exit_free;
1676 }
1fc7083d
JG
1677
1678 if (a[OVS_VPORT_ATTR_STATS])
1679 ovs_vport_set_stats(vport, nla_data(a[OVS_VPORT_ATTR_STATS]));
1680
1681 if (a[OVS_VPORT_ATTR_UPCALL_PID])
28aea917 1682 vport->upcall_portid = nla_get_u32(a[OVS_VPORT_ATTR_UPCALL_PID]);
c19e6535 1683
c25ea534
JG
1684 err = ovs_vport_cmd_fill_info(vport, reply, info->snd_portid,
1685 info->snd_seq, 0, OVS_VPORT_CMD_NEW);
1686 BUG_ON(err < 0);
f0fef760 1687
cd2a59e9 1688 ovs_unlock();
8680ae4d 1689 ovs_notify(reply, info, &ovs_dp_vport_multicast_group);
c25ea534
JG
1690 return 0;
1691
1692exit_free:
1693 kfree_skb(reply);
f0fef760 1694exit_unlock:
cd2a59e9 1695 ovs_unlock();
c19e6535 1696 return err;
064af421
BP
1697}
1698
df2c07f4 1699static int ovs_vport_cmd_del(struct sk_buff *skb, struct genl_info *info)
7c40efc9 1700{
f0fef760
BP
1701 struct nlattr **a = info->attrs;
1702 struct sk_buff *reply;
c19e6535 1703 struct vport *vport;
c19e6535
BP
1704 int err;
1705
cd2a59e9 1706 ovs_lock();
2a4999f3 1707 vport = lookup_vport(sock_net(skb->sk), info->userhdr, a);
c19e6535 1708 err = PTR_ERR(vport);
f0fef760
BP
1709 if (IS_ERR(vport))
1710 goto exit_unlock;
c19e6535 1711
df2c07f4 1712 if (vport->port_no == OVSP_LOCAL) {
f0fef760
BP
1713 err = -EINVAL;
1714 goto exit_unlock;
1715 }
1716
28aea917
IY
1717 reply = ovs_vport_cmd_build_info(vport, info->snd_portid,
1718 info->snd_seq, OVS_VPORT_CMD_DEL);
f0fef760
BP
1719 err = PTR_ERR(reply);
1720 if (IS_ERR(reply))
1721 goto exit_unlock;
1722
b57d5819 1723 err = 0;
850b6b3b 1724 ovs_dp_detach_port(vport);
f0fef760 1725
e297c6b7 1726 ovs_notify(reply, info, &ovs_dp_vport_multicast_group);
f0fef760
BP
1727
1728exit_unlock:
cd2a59e9 1729 ovs_unlock();
c19e6535 1730 return err;
7c40efc9
BP
1731}
1732
df2c07f4 1733static int ovs_vport_cmd_get(struct sk_buff *skb, struct genl_info *info)
7c40efc9 1734{
f0fef760 1735 struct nlattr **a = info->attrs;
df2c07f4 1736 struct ovs_header *ovs_header = info->userhdr;
ed099e92 1737 struct sk_buff *reply;
c19e6535 1738 struct vport *vport;
c19e6535
BP
1739 int err;
1740
ed099e92 1741 rcu_read_lock();
2a4999f3 1742 vport = lookup_vport(sock_net(skb->sk), ovs_header, a);
c19e6535
BP
1743 err = PTR_ERR(vport);
1744 if (IS_ERR(vport))
f0fef760 1745 goto exit_unlock;
c19e6535 1746
28aea917
IY
1747 reply = ovs_vport_cmd_build_info(vport, info->snd_portid,
1748 info->snd_seq, OVS_VPORT_CMD_NEW);
ed099e92
BP
1749 err = PTR_ERR(reply);
1750 if (IS_ERR(reply))
f0fef760 1751 goto exit_unlock;
ed099e92 1752
df2fa9b5
JG
1753 rcu_read_unlock();
1754
1755 return genlmsg_reply(reply, info);
ed099e92 1756
f0fef760 1757exit_unlock:
ed099e92 1758 rcu_read_unlock();
c19e6535
BP
1759 return err;
1760}
1761
df2c07f4 1762static int ovs_vport_cmd_dump(struct sk_buff *skb, struct netlink_callback *cb)
c19e6535 1763{
df2c07f4 1764 struct ovs_header *ovs_header = genlmsg_data(nlmsg_data(cb->nlh));
c19e6535 1765 struct datapath *dp;
95b1d73a
PS
1766 int bucket = cb->args[0], skip = cb->args[1];
1767 int i, j = 0;
c19e6535 1768
03fc2881 1769 rcu_read_lock();
2a4999f3 1770 dp = get_dp(sock_net(skb->sk), ovs_header->dp_ifindex);
03fc2881
JR
1771 if (!dp) {
1772 rcu_read_unlock();
f0fef760 1773 return -ENODEV;
03fc2881 1774 }
95b1d73a 1775 for (i = bucket; i < DP_VPORT_HASH_BUCKETS; i++) {
ed099e92 1776 struct vport *vport;
95b1d73a
PS
1777
1778 j = 0;
f8dfbcb7 1779 hlist_for_each_entry_rcu(vport, &dp->ports[i], dp_hash_node) {
95b1d73a
PS
1780 if (j >= skip &&
1781 ovs_vport_cmd_fill_info(vport, skb,
28aea917 1782 NETLINK_CB(cb->skb).portid,
95b1d73a
PS
1783 cb->nlh->nlmsg_seq,
1784 NLM_F_MULTI,
1785 OVS_VPORT_CMD_NEW) < 0)
1786 goto out;
1787
1788 j++;
1789 }
1790 skip = 0;
c19e6535 1791 }
95b1d73a 1792out:
ed099e92 1793 rcu_read_unlock();
c19e6535 1794
95b1d73a
PS
1795 cb->args[0] = i;
1796 cb->args[1] = j;
f0fef760 1797
95b1d73a 1798 return skb->len;
7c40efc9
BP
1799}
1800
f0fef760 1801static struct genl_ops dp_vport_genl_ops[] = {
df2c07f4 1802 { .cmd = OVS_VPORT_CMD_NEW,
f0fef760
BP
1803 .flags = GENL_ADMIN_PERM, /* Requires CAP_NET_ADMIN privilege. */
1804 .policy = vport_policy,
df2c07f4 1805 .doit = ovs_vport_cmd_new
f0fef760 1806 },
df2c07f4 1807 { .cmd = OVS_VPORT_CMD_DEL,
f0fef760
BP
1808 .flags = GENL_ADMIN_PERM, /* Requires CAP_NET_ADMIN privilege. */
1809 .policy = vport_policy,
df2c07f4 1810 .doit = ovs_vport_cmd_del
f0fef760 1811 },
df2c07f4 1812 { .cmd = OVS_VPORT_CMD_GET,
f0fef760
BP
1813 .flags = 0, /* OK for unprivileged users. */
1814 .policy = vport_policy,
df2c07f4
JP
1815 .doit = ovs_vport_cmd_get,
1816 .dumpit = ovs_vport_cmd_dump
f0fef760 1817 },
df2c07f4 1818 { .cmd = OVS_VPORT_CMD_SET,
f0fef760
BP
1819 .flags = GENL_ADMIN_PERM, /* Requires CAP_NET_ADMIN privilege. */
1820 .policy = vport_policy,
df2c07f4 1821 .doit = ovs_vport_cmd_set,
f0fef760
BP
1822 },
1823};
1824
982b8810
BP
1825struct genl_family_and_ops {
1826 struct genl_family *family;
1827 struct genl_ops *ops;
1828 int n_ops;
1829 struct genl_multicast_group *group;
1830};
ed099e92 1831
982b8810 1832static const struct genl_family_and_ops dp_genl_families[] = {
aaff4b55
BP
1833 { &dp_datapath_genl_family,
1834 dp_datapath_genl_ops, ARRAY_SIZE(dp_datapath_genl_ops),
850b6b3b 1835 &ovs_dp_datapath_multicast_group },
f0fef760
BP
1836 { &dp_vport_genl_family,
1837 dp_vport_genl_ops, ARRAY_SIZE(dp_vport_genl_ops),
850b6b3b 1838 &ovs_dp_vport_multicast_group },
37a1300c
BP
1839 { &dp_flow_genl_family,
1840 dp_flow_genl_ops, ARRAY_SIZE(dp_flow_genl_ops),
850b6b3b 1841 &ovs_dp_flow_multicast_group },
982b8810
BP
1842 { &dp_packet_genl_family,
1843 dp_packet_genl_ops, ARRAY_SIZE(dp_packet_genl_ops),
1844 NULL },
1845};
ed099e92 1846
982b8810
BP
1847static void dp_unregister_genl(int n_families)
1848{
1849 int i;
ed099e92 1850
b867ca75 1851 for (i = 0; i < n_families; i++)
982b8810 1852 genl_unregister_family(dp_genl_families[i].family);
ed099e92
BP
1853}
1854
982b8810 1855static int dp_register_genl(void)
064af421 1856{
982b8810
BP
1857 int n_registered;
1858 int err;
1859 int i;
064af421 1860
982b8810
BP
1861 n_registered = 0;
1862 for (i = 0; i < ARRAY_SIZE(dp_genl_families); i++) {
1863 const struct genl_family_and_ops *f = &dp_genl_families[i];
064af421 1864
982b8810
BP
1865 err = genl_register_family_with_ops(f->family, f->ops,
1866 f->n_ops);
1867 if (err)
1868 goto error;
1869 n_registered++;
e22d4953 1870
982b8810
BP
1871 if (f->group) {
1872 err = genl_register_mc_group(f->family, f->group);
1873 if (err)
1874 goto error;
1875 }
1876 }
9cc8b4e4 1877
982b8810 1878 return 0;
064af421
BP
1879
1880error:
982b8810
BP
1881 dp_unregister_genl(n_registered);
1882 return err;
064af421
BP
1883}
1884
2a4999f3
PS
1885static int __net_init ovs_init_net(struct net *net)
1886{
1887 struct ovs_net *ovs_net = net_generic(net, ovs_net_id);
1888
1889 INIT_LIST_HEAD(&ovs_net->dps);
cd2a59e9 1890 INIT_WORK(&ovs_net->dp_notify_work, ovs_dp_notify_wq);
2a4999f3
PS
1891 return 0;
1892}
1893
1894static void __net_exit ovs_exit_net(struct net *net)
1895{
cd2a59e9 1896 struct datapath *dp, *dp_next;
2a4999f3
PS
1897 struct ovs_net *ovs_net = net_generic(net, ovs_net_id);
1898
cd2a59e9
PS
1899 ovs_lock();
1900 list_for_each_entry_safe(dp, dp_next, &ovs_net->dps, list_node)
1901 __dp_destroy(dp);
1902 ovs_unlock();
1903
1904 cancel_work_sync(&ovs_net->dp_notify_work);
2a4999f3
PS
1905}
1906
1907static struct pernet_operations ovs_net_ops = {
1908 .init = ovs_init_net,
1909 .exit = ovs_exit_net,
1910 .id = &ovs_net_id,
1911 .size = sizeof(struct ovs_net),
1912};
1913
637c8268
PS
1914DEFINE_COMPAT_PNET_REG_FUNC(device);
1915
22d24ebf
BP
1916static int __init dp_init(void)
1917{
1918 int err;
1919
f3d85db3 1920 BUILD_BUG_ON(sizeof(struct ovs_skb_cb) > FIELD_SIZEOF(struct sk_buff, cb));
22d24ebf 1921
dc5f3fef 1922 pr_info("Open vSwitch switching datapath %s, built "__DATE__" "__TIME__"\n",
8a07709c 1923 VERSION);
064af421 1924
850b6b3b 1925 err = ovs_flow_init();
3544358a 1926 if (err)
533e96e7 1927 goto error;
3544358a 1928
850b6b3b 1929 err = ovs_vport_init();
064af421
BP
1930 if (err)
1931 goto error_flow_exit;
1932
2a4999f3 1933 err = register_pernet_device(&ovs_net_ops);
f2459fe7
JG
1934 if (err)
1935 goto error_vport_exit;
1936
2a4999f3
PS
1937 err = register_netdevice_notifier(&ovs_dp_device_notifier);
1938 if (err)
1939 goto error_netns_exit;
1940
982b8810
BP
1941 err = dp_register_genl();
1942 if (err < 0)
37a1300c 1943 goto error_unreg_notifier;
982b8810 1944
064af421
BP
1945 return 0;
1946
1947error_unreg_notifier:
850b6b3b 1948 unregister_netdevice_notifier(&ovs_dp_device_notifier);
2a4999f3
PS
1949error_netns_exit:
1950 unregister_pernet_device(&ovs_net_ops);
f2459fe7 1951error_vport_exit:
850b6b3b 1952 ovs_vport_exit();
064af421 1953error_flow_exit:
850b6b3b 1954 ovs_flow_exit();
064af421
BP
1955error:
1956 return err;
1957}
1958
1959static void dp_cleanup(void)
1960{
982b8810 1961 dp_unregister_genl(ARRAY_SIZE(dp_genl_families));
850b6b3b 1962 unregister_netdevice_notifier(&ovs_dp_device_notifier);
2a4999f3
PS
1963 unregister_pernet_device(&ovs_net_ops);
1964 rcu_barrier();
850b6b3b
JG
1965 ovs_vport_exit();
1966 ovs_flow_exit();
064af421
BP
1967}
1968
1969module_init(dp_init);
1970module_exit(dp_cleanup);
1971
1972MODULE_DESCRIPTION("Open vSwitch switching datapath");
1973MODULE_LICENSE("GPL");
3d0666d2 1974MODULE_VERSION(VERSION);