]> git.proxmox.com Git - mirror_ubuntu-artful-kernel.git/blame - net/ipv6/route.c
net: ipv6: Change notifications for multipath add to RTA_MULTIPATH
[mirror_ubuntu-artful-kernel.git] / net / ipv6 / route.c
CommitLineData
1da177e4
LT
1/*
2 * Linux INET6 implementation
3 * FIB front-end.
4 *
5 * Authors:
1ab1457c 6 * Pedro Roque <roque@di.fc.ul.pt>
1da177e4 7 *
1da177e4
LT
8 * This program is free software; you can redistribute it and/or
9 * modify it under the terms of the GNU General Public License
10 * as published by the Free Software Foundation; either version
11 * 2 of the License, or (at your option) any later version.
12 */
13
14/* Changes:
15 *
16 * YOSHIFUJI Hideaki @USAGI
17 * reworked default router selection.
18 * - respect outgoing interface
19 * - select from (probably) reachable routers (i.e.
20 * routers in REACHABLE, STALE, DELAY or PROBE states).
21 * - always select the same router if it is (probably)
22 * reachable. otherwise, round-robin the list.
c0bece9f
YH
23 * Ville Nuorvala
24 * Fixed routing subtrees.
1da177e4
LT
25 */
26
f3213831
JP
27#define pr_fmt(fmt) "IPv6: " fmt
28
4fc268d2 29#include <linux/capability.h>
1da177e4 30#include <linux/errno.h>
bc3b2d7f 31#include <linux/export.h>
1da177e4
LT
32#include <linux/types.h>
33#include <linux/times.h>
34#include <linux/socket.h>
35#include <linux/sockios.h>
36#include <linux/net.h>
37#include <linux/route.h>
38#include <linux/netdevice.h>
39#include <linux/in6.h>
7bc570c8 40#include <linux/mroute6.h>
1da177e4 41#include <linux/init.h>
1da177e4 42#include <linux/if_arp.h>
1da177e4
LT
43#include <linux/proc_fs.h>
44#include <linux/seq_file.h>
5b7c931d 45#include <linux/nsproxy.h>
5a0e3ad6 46#include <linux/slab.h>
457c4cbc 47#include <net/net_namespace.h>
1da177e4
LT
48#include <net/snmp.h>
49#include <net/ipv6.h>
50#include <net/ip6_fib.h>
51#include <net/ip6_route.h>
52#include <net/ndisc.h>
53#include <net/addrconf.h>
54#include <net/tcp.h>
55#include <linux/rtnetlink.h>
56#include <net/dst.h>
904af04d 57#include <net/dst_metadata.h>
1da177e4 58#include <net/xfrm.h>
8d71740c 59#include <net/netevent.h>
21713ebc 60#include <net/netlink.h>
51ebd318 61#include <net/nexthop.h>
19e42e45 62#include <net/lwtunnel.h>
904af04d 63#include <net/ip_tunnels.h>
ca254490 64#include <net/l3mdev.h>
b811580d 65#include <trace/events/fib6.h>
1da177e4 66
7c0f6ba6 67#include <linux/uaccess.h>
1da177e4
LT
68
69#ifdef CONFIG_SYSCTL
70#include <linux/sysctl.h>
71#endif
72
afc154e9 73enum rt6_nud_state {
7e980569
JB
74 RT6_NUD_FAIL_HARD = -3,
75 RT6_NUD_FAIL_PROBE = -2,
76 RT6_NUD_FAIL_DO_RR = -1,
afc154e9
HFS
77 RT6_NUD_SUCCEED = 1
78};
79
83a09abd 80static void ip6_rt_copy_init(struct rt6_info *rt, struct rt6_info *ort);
1da177e4 81static struct dst_entry *ip6_dst_check(struct dst_entry *dst, u32 cookie);
0dbaee3b 82static unsigned int ip6_default_advmss(const struct dst_entry *dst);
ebb762f2 83static unsigned int ip6_mtu(const struct dst_entry *dst);
1da177e4
LT
84static struct dst_entry *ip6_negative_advice(struct dst_entry *);
85static void ip6_dst_destroy(struct dst_entry *);
86static void ip6_dst_ifdown(struct dst_entry *,
87 struct net_device *dev, int how);
569d3645 88static int ip6_dst_gc(struct dst_ops *ops);
1da177e4
LT
89
90static int ip6_pkt_discard(struct sk_buff *skb);
ede2059d 91static int ip6_pkt_discard_out(struct net *net, struct sock *sk, struct sk_buff *skb);
7150aede 92static int ip6_pkt_prohibit(struct sk_buff *skb);
ede2059d 93static int ip6_pkt_prohibit_out(struct net *net, struct sock *sk, struct sk_buff *skb);
1da177e4 94static void ip6_link_failure(struct sk_buff *skb);
6700c270
DM
95static void ip6_rt_update_pmtu(struct dst_entry *dst, struct sock *sk,
96 struct sk_buff *skb, u32 mtu);
97static void rt6_do_redirect(struct dst_entry *dst, struct sock *sk,
98 struct sk_buff *skb);
4b32b5ad 99static void rt6_dst_from_metrics_check(struct rt6_info *rt);
52bd4c0c 100static int rt6_score_route(struct rt6_info *rt, int oif, int strict);
1da177e4 101
70ceb4f5 102#ifdef CONFIG_IPV6_ROUTE_INFO
efa2cea0 103static struct rt6_info *rt6_add_route_info(struct net *net,
b71d1d42 104 const struct in6_addr *prefix, int prefixlen,
830218c1
DA
105 const struct in6_addr *gwaddr,
106 struct net_device *dev,
95c96174 107 unsigned int pref);
efa2cea0 108static struct rt6_info *rt6_get_route_info(struct net *net,
b71d1d42 109 const struct in6_addr *prefix, int prefixlen,
830218c1
DA
110 const struct in6_addr *gwaddr,
111 struct net_device *dev);
70ceb4f5
YH
112#endif
113
8d0b94af
MKL
114struct uncached_list {
115 spinlock_t lock;
116 struct list_head head;
117};
118
119static DEFINE_PER_CPU_ALIGNED(struct uncached_list, rt6_uncached_list);
120
121static void rt6_uncached_list_add(struct rt6_info *rt)
122{
123 struct uncached_list *ul = raw_cpu_ptr(&rt6_uncached_list);
124
125 rt->dst.flags |= DST_NOCACHE;
126 rt->rt6i_uncached_list = ul;
127
128 spin_lock_bh(&ul->lock);
129 list_add_tail(&rt->rt6i_uncached, &ul->head);
130 spin_unlock_bh(&ul->lock);
131}
132
133static void rt6_uncached_list_del(struct rt6_info *rt)
134{
135 if (!list_empty(&rt->rt6i_uncached)) {
136 struct uncached_list *ul = rt->rt6i_uncached_list;
137
138 spin_lock_bh(&ul->lock);
139 list_del(&rt->rt6i_uncached);
140 spin_unlock_bh(&ul->lock);
141 }
142}
143
144static void rt6_uncached_list_flush_dev(struct net *net, struct net_device *dev)
145{
146 struct net_device *loopback_dev = net->loopback_dev;
147 int cpu;
148
e332bc67
EB
149 if (dev == loopback_dev)
150 return;
151
8d0b94af
MKL
152 for_each_possible_cpu(cpu) {
153 struct uncached_list *ul = per_cpu_ptr(&rt6_uncached_list, cpu);
154 struct rt6_info *rt;
155
156 spin_lock_bh(&ul->lock);
157 list_for_each_entry(rt, &ul->head, rt6i_uncached) {
158 struct inet6_dev *rt_idev = rt->rt6i_idev;
159 struct net_device *rt_dev = rt->dst.dev;
160
e332bc67 161 if (rt_idev->dev == dev) {
8d0b94af
MKL
162 rt->rt6i_idev = in6_dev_get(loopback_dev);
163 in6_dev_put(rt_idev);
164 }
165
e332bc67 166 if (rt_dev == dev) {
8d0b94af
MKL
167 rt->dst.dev = loopback_dev;
168 dev_hold(rt->dst.dev);
169 dev_put(rt_dev);
170 }
171 }
172 spin_unlock_bh(&ul->lock);
173 }
174}
175
d52d3997
MKL
176static u32 *rt6_pcpu_cow_metrics(struct rt6_info *rt)
177{
178 return dst_metrics_write_ptr(rt->dst.from);
179}
180
06582540
DM
181static u32 *ipv6_cow_metrics(struct dst_entry *dst, unsigned long old)
182{
4b32b5ad 183 struct rt6_info *rt = (struct rt6_info *)dst;
06582540 184
d52d3997
MKL
185 if (rt->rt6i_flags & RTF_PCPU)
186 return rt6_pcpu_cow_metrics(rt);
187 else if (rt->rt6i_flags & RTF_CACHE)
4b32b5ad
MKL
188 return NULL;
189 else
3b471175 190 return dst_cow_metrics_generic(dst, old);
06582540
DM
191}
192
f894cbf8
DM
193static inline const void *choose_neigh_daddr(struct rt6_info *rt,
194 struct sk_buff *skb,
195 const void *daddr)
39232973
DM
196{
197 struct in6_addr *p = &rt->rt6i_gateway;
198
a7563f34 199 if (!ipv6_addr_any(p))
39232973 200 return (const void *) p;
f894cbf8
DM
201 else if (skb)
202 return &ipv6_hdr(skb)->daddr;
39232973
DM
203 return daddr;
204}
205
f894cbf8
DM
206static struct neighbour *ip6_neigh_lookup(const struct dst_entry *dst,
207 struct sk_buff *skb,
208 const void *daddr)
d3aaeb38 209{
39232973
DM
210 struct rt6_info *rt = (struct rt6_info *) dst;
211 struct neighbour *n;
212
f894cbf8 213 daddr = choose_neigh_daddr(rt, skb, daddr);
8e022ee6 214 n = __ipv6_neigh_lookup(dst->dev, daddr);
f83c7790
DM
215 if (n)
216 return n;
217 return neigh_create(&nd_tbl, daddr, dst->dev);
218}
219
9a7ec3a9 220static struct dst_ops ip6_dst_ops_template = {
1da177e4 221 .family = AF_INET6,
1da177e4
LT
222 .gc = ip6_dst_gc,
223 .gc_thresh = 1024,
224 .check = ip6_dst_check,
0dbaee3b 225 .default_advmss = ip6_default_advmss,
ebb762f2 226 .mtu = ip6_mtu,
06582540 227 .cow_metrics = ipv6_cow_metrics,
1da177e4
LT
228 .destroy = ip6_dst_destroy,
229 .ifdown = ip6_dst_ifdown,
230 .negative_advice = ip6_negative_advice,
231 .link_failure = ip6_link_failure,
232 .update_pmtu = ip6_rt_update_pmtu,
6e157b6a 233 .redirect = rt6_do_redirect,
9f8955cc 234 .local_out = __ip6_local_out,
d3aaeb38 235 .neigh_lookup = ip6_neigh_lookup,
1da177e4
LT
236};
237
ebb762f2 238static unsigned int ip6_blackhole_mtu(const struct dst_entry *dst)
ec831ea7 239{
618f9bc7
SK
240 unsigned int mtu = dst_metric_raw(dst, RTAX_MTU);
241
242 return mtu ? : dst->dev->mtu;
ec831ea7
RD
243}
244
6700c270
DM
245static void ip6_rt_blackhole_update_pmtu(struct dst_entry *dst, struct sock *sk,
246 struct sk_buff *skb, u32 mtu)
14e50e57
DM
247{
248}
249
6700c270
DM
250static void ip6_rt_blackhole_redirect(struct dst_entry *dst, struct sock *sk,
251 struct sk_buff *skb)
b587ee3b
DM
252{
253}
254
14e50e57
DM
255static struct dst_ops ip6_dst_blackhole_ops = {
256 .family = AF_INET6,
14e50e57
DM
257 .destroy = ip6_dst_destroy,
258 .check = ip6_dst_check,
ebb762f2 259 .mtu = ip6_blackhole_mtu,
214f45c9 260 .default_advmss = ip6_default_advmss,
14e50e57 261 .update_pmtu = ip6_rt_blackhole_update_pmtu,
b587ee3b 262 .redirect = ip6_rt_blackhole_redirect,
0a1f5962 263 .cow_metrics = dst_cow_metrics_generic,
d3aaeb38 264 .neigh_lookup = ip6_neigh_lookup,
14e50e57
DM
265};
266
62fa8a84 267static const u32 ip6_template_metrics[RTAX_MAX] = {
14edd87d 268 [RTAX_HOPLIMIT - 1] = 0,
62fa8a84
DM
269};
270
fb0af4c7 271static const struct rt6_info ip6_null_entry_template = {
d8d1f30b
CG
272 .dst = {
273 .__refcnt = ATOMIC_INIT(1),
274 .__use = 1,
2c20cbd7 275 .obsolete = DST_OBSOLETE_FORCE_CHK,
d8d1f30b 276 .error = -ENETUNREACH,
d8d1f30b
CG
277 .input = ip6_pkt_discard,
278 .output = ip6_pkt_discard_out,
1da177e4
LT
279 },
280 .rt6i_flags = (RTF_REJECT | RTF_NONEXTHOP),
4f724279 281 .rt6i_protocol = RTPROT_KERNEL,
1da177e4
LT
282 .rt6i_metric = ~(u32) 0,
283 .rt6i_ref = ATOMIC_INIT(1),
284};
285
101367c2
TG
286#ifdef CONFIG_IPV6_MULTIPLE_TABLES
287
fb0af4c7 288static const struct rt6_info ip6_prohibit_entry_template = {
d8d1f30b
CG
289 .dst = {
290 .__refcnt = ATOMIC_INIT(1),
291 .__use = 1,
2c20cbd7 292 .obsolete = DST_OBSOLETE_FORCE_CHK,
d8d1f30b 293 .error = -EACCES,
d8d1f30b
CG
294 .input = ip6_pkt_prohibit,
295 .output = ip6_pkt_prohibit_out,
101367c2
TG
296 },
297 .rt6i_flags = (RTF_REJECT | RTF_NONEXTHOP),
4f724279 298 .rt6i_protocol = RTPROT_KERNEL,
101367c2
TG
299 .rt6i_metric = ~(u32) 0,
300 .rt6i_ref = ATOMIC_INIT(1),
301};
302
fb0af4c7 303static const struct rt6_info ip6_blk_hole_entry_template = {
d8d1f30b
CG
304 .dst = {
305 .__refcnt = ATOMIC_INIT(1),
306 .__use = 1,
2c20cbd7 307 .obsolete = DST_OBSOLETE_FORCE_CHK,
d8d1f30b 308 .error = -EINVAL,
d8d1f30b 309 .input = dst_discard,
ede2059d 310 .output = dst_discard_out,
101367c2
TG
311 },
312 .rt6i_flags = (RTF_REJECT | RTF_NONEXTHOP),
4f724279 313 .rt6i_protocol = RTPROT_KERNEL,
101367c2
TG
314 .rt6i_metric = ~(u32) 0,
315 .rt6i_ref = ATOMIC_INIT(1),
316};
317
318#endif
319
ebfa45f0
MKL
320static void rt6_info_init(struct rt6_info *rt)
321{
322 struct dst_entry *dst = &rt->dst;
323
324 memset(dst + 1, 0, sizeof(*rt) - sizeof(*dst));
325 INIT_LIST_HEAD(&rt->rt6i_siblings);
326 INIT_LIST_HEAD(&rt->rt6i_uncached);
327}
328
1da177e4 329/* allocate dst with ip6_dst_ops */
d52d3997
MKL
330static struct rt6_info *__ip6_dst_alloc(struct net *net,
331 struct net_device *dev,
ad706862 332 int flags)
1da177e4 333{
97bab73f 334 struct rt6_info *rt = dst_alloc(&net->ipv6.ip6_dst_ops, dev,
6f3118b5 335 0, DST_OBSOLETE_FORCE_CHK, flags);
cf911662 336
ebfa45f0
MKL
337 if (rt)
338 rt6_info_init(rt);
8104891b 339
cf911662 340 return rt;
1da177e4
LT
341}
342
9ab179d8
DA
343struct rt6_info *ip6_dst_alloc(struct net *net,
344 struct net_device *dev,
345 int flags)
d52d3997 346{
ad706862 347 struct rt6_info *rt = __ip6_dst_alloc(net, dev, flags);
d52d3997
MKL
348
349 if (rt) {
350 rt->rt6i_pcpu = alloc_percpu_gfp(struct rt6_info *, GFP_ATOMIC);
351 if (rt->rt6i_pcpu) {
352 int cpu;
353
354 for_each_possible_cpu(cpu) {
355 struct rt6_info **p;
356
357 p = per_cpu_ptr(rt->rt6i_pcpu, cpu);
358 /* no one shares rt */
359 *p = NULL;
360 }
361 } else {
362 dst_destroy((struct dst_entry *)rt);
363 return NULL;
364 }
365 }
366
367 return rt;
368}
9ab179d8 369EXPORT_SYMBOL(ip6_dst_alloc);
d52d3997 370
1da177e4
LT
371static void ip6_dst_destroy(struct dst_entry *dst)
372{
373 struct rt6_info *rt = (struct rt6_info *)dst;
ecd98837 374 struct dst_entry *from = dst->from;
8d0b94af 375 struct inet6_dev *idev;
1da177e4 376
4b32b5ad 377 dst_destroy_metrics_generic(dst);
87775312 378 free_percpu(rt->rt6i_pcpu);
8d0b94af
MKL
379 rt6_uncached_list_del(rt);
380
381 idev = rt->rt6i_idev;
38308473 382 if (idev) {
1da177e4
LT
383 rt->rt6i_idev = NULL;
384 in6_dev_put(idev);
1ab1457c 385 }
1716a961 386
ecd98837
YH
387 dst->from = NULL;
388 dst_release(from);
b3419363
DM
389}
390
1da177e4
LT
391static void ip6_dst_ifdown(struct dst_entry *dst, struct net_device *dev,
392 int how)
393{
394 struct rt6_info *rt = (struct rt6_info *)dst;
395 struct inet6_dev *idev = rt->rt6i_idev;
5a3e55d6 396 struct net_device *loopback_dev =
c346dca1 397 dev_net(dev)->loopback_dev;
1da177e4 398
97cac082
DM
399 if (dev != loopback_dev) {
400 if (idev && idev->dev == dev) {
401 struct inet6_dev *loopback_idev =
402 in6_dev_get(loopback_dev);
403 if (loopback_idev) {
404 rt->rt6i_idev = loopback_idev;
405 in6_dev_put(idev);
406 }
407 }
1da177e4
LT
408 }
409}
410
5973fb1e
MKL
411static bool __rt6_check_expired(const struct rt6_info *rt)
412{
413 if (rt->rt6i_flags & RTF_EXPIRES)
414 return time_after(jiffies, rt->dst.expires);
415 else
416 return false;
417}
418
a50feda5 419static bool rt6_check_expired(const struct rt6_info *rt)
1da177e4 420{
1716a961
G
421 if (rt->rt6i_flags & RTF_EXPIRES) {
422 if (time_after(jiffies, rt->dst.expires))
a50feda5 423 return true;
1716a961 424 } else if (rt->dst.from) {
3fd91fb3 425 return rt6_check_expired((struct rt6_info *) rt->dst.from);
1716a961 426 }
a50feda5 427 return false;
1da177e4
LT
428}
429
51ebd318
ND
430/* Multipath route selection:
431 * Hash based function using packet header and flowlabel.
432 * Adapted from fib_info_hashfn()
433 */
434static int rt6_info_hash_nhsfn(unsigned int candidate_count,
435 const struct flowi6 *fl6)
436{
644d0e65 437 return get_hash_from_flowi6(fl6) % candidate_count;
51ebd318
ND
438}
439
440static struct rt6_info *rt6_multipath_select(struct rt6_info *match,
52bd4c0c
ND
441 struct flowi6 *fl6, int oif,
442 int strict)
51ebd318
ND
443{
444 struct rt6_info *sibling, *next_sibling;
445 int route_choosen;
446
447 route_choosen = rt6_info_hash_nhsfn(match->rt6i_nsiblings + 1, fl6);
448 /* Don't change the route, if route_choosen == 0
449 * (siblings does not include ourself)
450 */
451 if (route_choosen)
452 list_for_each_entry_safe(sibling, next_sibling,
453 &match->rt6i_siblings, rt6i_siblings) {
454 route_choosen--;
455 if (route_choosen == 0) {
52bd4c0c
ND
456 if (rt6_score_route(sibling, oif, strict) < 0)
457 break;
51ebd318
ND
458 match = sibling;
459 break;
460 }
461 }
462 return match;
463}
464
1da177e4 465/*
c71099ac 466 * Route lookup. Any table->tb6_lock is implied.
1da177e4
LT
467 */
468
8ed67789
DL
469static inline struct rt6_info *rt6_device_match(struct net *net,
470 struct rt6_info *rt,
b71d1d42 471 const struct in6_addr *saddr,
1da177e4 472 int oif,
d420895e 473 int flags)
1da177e4
LT
474{
475 struct rt6_info *local = NULL;
476 struct rt6_info *sprt;
477
dd3abc4e
YH
478 if (!oif && ipv6_addr_any(saddr))
479 goto out;
480
d8d1f30b 481 for (sprt = rt; sprt; sprt = sprt->dst.rt6_next) {
d1918542 482 struct net_device *dev = sprt->dst.dev;
dd3abc4e
YH
483
484 if (oif) {
1da177e4
LT
485 if (dev->ifindex == oif)
486 return sprt;
487 if (dev->flags & IFF_LOOPBACK) {
38308473 488 if (!sprt->rt6i_idev ||
1da177e4 489 sprt->rt6i_idev->dev->ifindex != oif) {
17fb0b2b 490 if (flags & RT6_LOOKUP_F_IFACE)
1da177e4 491 continue;
17fb0b2b
DA
492 if (local &&
493 local->rt6i_idev->dev->ifindex == oif)
1da177e4
LT
494 continue;
495 }
496 local = sprt;
497 }
dd3abc4e
YH
498 } else {
499 if (ipv6_chk_addr(net, saddr, dev,
500 flags & RT6_LOOKUP_F_IFACE))
501 return sprt;
1da177e4 502 }
dd3abc4e 503 }
1da177e4 504
dd3abc4e 505 if (oif) {
1da177e4
LT
506 if (local)
507 return local;
508
d420895e 509 if (flags & RT6_LOOKUP_F_IFACE)
8ed67789 510 return net->ipv6.ip6_null_entry;
1da177e4 511 }
dd3abc4e 512out:
1da177e4
LT
513 return rt;
514}
515
27097255 516#ifdef CONFIG_IPV6_ROUTER_PREF
c2f17e82
HFS
517struct __rt6_probe_work {
518 struct work_struct work;
519 struct in6_addr target;
520 struct net_device *dev;
521};
522
523static void rt6_probe_deferred(struct work_struct *w)
524{
525 struct in6_addr mcaddr;
526 struct __rt6_probe_work *work =
527 container_of(w, struct __rt6_probe_work, work);
528
529 addrconf_addr_solict_mult(&work->target, &mcaddr);
adc176c5 530 ndisc_send_ns(work->dev, &work->target, &mcaddr, NULL, 0);
c2f17e82 531 dev_put(work->dev);
662f5533 532 kfree(work);
c2f17e82
HFS
533}
534
27097255
YH
535static void rt6_probe(struct rt6_info *rt)
536{
990edb42 537 struct __rt6_probe_work *work;
f2c31e32 538 struct neighbour *neigh;
27097255
YH
539 /*
540 * Okay, this does not seem to be appropriate
541 * for now, however, we need to check if it
542 * is really so; aka Router Reachability Probing.
543 *
544 * Router Reachability Probe MUST be rate-limited
545 * to no more than one per minute.
546 */
2152caea 547 if (!rt || !(rt->rt6i_flags & RTF_GATEWAY))
7ff74a59 548 return;
2152caea
YH
549 rcu_read_lock_bh();
550 neigh = __ipv6_neigh_lookup_noref(rt->dst.dev, &rt->rt6i_gateway);
551 if (neigh) {
8d6c31bf
MKL
552 if (neigh->nud_state & NUD_VALID)
553 goto out;
554
990edb42 555 work = NULL;
2152caea 556 write_lock(&neigh->lock);
990edb42
MKL
557 if (!(neigh->nud_state & NUD_VALID) &&
558 time_after(jiffies,
559 neigh->updated +
560 rt->rt6i_idev->cnf.rtr_probe_interval)) {
561 work = kmalloc(sizeof(*work), GFP_ATOMIC);
562 if (work)
563 __neigh_set_probe_once(neigh);
c2f17e82 564 }
2152caea 565 write_unlock(&neigh->lock);
990edb42
MKL
566 } else {
567 work = kmalloc(sizeof(*work), GFP_ATOMIC);
f2c31e32 568 }
990edb42
MKL
569
570 if (work) {
571 INIT_WORK(&work->work, rt6_probe_deferred);
572 work->target = rt->rt6i_gateway;
573 dev_hold(rt->dst.dev);
574 work->dev = rt->dst.dev;
575 schedule_work(&work->work);
576 }
577
8d6c31bf 578out:
2152caea 579 rcu_read_unlock_bh();
27097255
YH
580}
581#else
582static inline void rt6_probe(struct rt6_info *rt)
583{
27097255
YH
584}
585#endif
586
1da177e4 587/*
554cfb7e 588 * Default Router Selection (RFC 2461 6.3.6)
1da177e4 589 */
b6f99a21 590static inline int rt6_check_dev(struct rt6_info *rt, int oif)
554cfb7e 591{
d1918542 592 struct net_device *dev = rt->dst.dev;
161980f4 593 if (!oif || dev->ifindex == oif)
554cfb7e 594 return 2;
161980f4
DM
595 if ((dev->flags & IFF_LOOPBACK) &&
596 rt->rt6i_idev && rt->rt6i_idev->dev->ifindex == oif)
597 return 1;
598 return 0;
554cfb7e 599}
1da177e4 600
afc154e9 601static inline enum rt6_nud_state rt6_check_neigh(struct rt6_info *rt)
1da177e4 602{
f2c31e32 603 struct neighbour *neigh;
afc154e9 604 enum rt6_nud_state ret = RT6_NUD_FAIL_HARD;
f2c31e32 605
4d0c5911
YH
606 if (rt->rt6i_flags & RTF_NONEXTHOP ||
607 !(rt->rt6i_flags & RTF_GATEWAY))
afc154e9 608 return RT6_NUD_SUCCEED;
145a3621
YH
609
610 rcu_read_lock_bh();
611 neigh = __ipv6_neigh_lookup_noref(rt->dst.dev, &rt->rt6i_gateway);
612 if (neigh) {
613 read_lock(&neigh->lock);
554cfb7e 614 if (neigh->nud_state & NUD_VALID)
afc154e9 615 ret = RT6_NUD_SUCCEED;
398bcbeb 616#ifdef CONFIG_IPV6_ROUTER_PREF
a5a81f0b 617 else if (!(neigh->nud_state & NUD_FAILED))
afc154e9 618 ret = RT6_NUD_SUCCEED;
7e980569
JB
619 else
620 ret = RT6_NUD_FAIL_PROBE;
398bcbeb 621#endif
145a3621 622 read_unlock(&neigh->lock);
afc154e9
HFS
623 } else {
624 ret = IS_ENABLED(CONFIG_IPV6_ROUTER_PREF) ?
7e980569 625 RT6_NUD_SUCCEED : RT6_NUD_FAIL_DO_RR;
a5a81f0b 626 }
145a3621
YH
627 rcu_read_unlock_bh();
628
a5a81f0b 629 return ret;
1da177e4
LT
630}
631
554cfb7e
YH
632static int rt6_score_route(struct rt6_info *rt, int oif,
633 int strict)
1da177e4 634{
a5a81f0b 635 int m;
1ab1457c 636
4d0c5911 637 m = rt6_check_dev(rt, oif);
77d16f45 638 if (!m && (strict & RT6_LOOKUP_F_IFACE))
afc154e9 639 return RT6_NUD_FAIL_HARD;
ebacaaa0
YH
640#ifdef CONFIG_IPV6_ROUTER_PREF
641 m |= IPV6_DECODE_PREF(IPV6_EXTRACT_PREF(rt->rt6i_flags)) << 2;
642#endif
afc154e9
HFS
643 if (strict & RT6_LOOKUP_F_REACHABLE) {
644 int n = rt6_check_neigh(rt);
645 if (n < 0)
646 return n;
647 }
554cfb7e
YH
648 return m;
649}
650
f11e6659 651static struct rt6_info *find_match(struct rt6_info *rt, int oif, int strict,
afc154e9
HFS
652 int *mpri, struct rt6_info *match,
653 bool *do_rr)
554cfb7e 654{
f11e6659 655 int m;
afc154e9 656 bool match_do_rr = false;
35103d11
AG
657 struct inet6_dev *idev = rt->rt6i_idev;
658 struct net_device *dev = rt->dst.dev;
659
660 if (dev && !netif_carrier_ok(dev) &&
d5d32e4b
DA
661 idev->cnf.ignore_routes_with_linkdown &&
662 !(strict & RT6_LOOKUP_F_IGNORE_LINKSTATE))
35103d11 663 goto out;
f11e6659
DM
664
665 if (rt6_check_expired(rt))
666 goto out;
667
668 m = rt6_score_route(rt, oif, strict);
7e980569 669 if (m == RT6_NUD_FAIL_DO_RR) {
afc154e9
HFS
670 match_do_rr = true;
671 m = 0; /* lowest valid score */
7e980569 672 } else if (m == RT6_NUD_FAIL_HARD) {
f11e6659 673 goto out;
afc154e9
HFS
674 }
675
676 if (strict & RT6_LOOKUP_F_REACHABLE)
677 rt6_probe(rt);
f11e6659 678
7e980569 679 /* note that m can be RT6_NUD_FAIL_PROBE at this point */
f11e6659 680 if (m > *mpri) {
afc154e9 681 *do_rr = match_do_rr;
f11e6659
DM
682 *mpri = m;
683 match = rt;
f11e6659 684 }
f11e6659
DM
685out:
686 return match;
687}
688
689static struct rt6_info *find_rr_leaf(struct fib6_node *fn,
690 struct rt6_info *rr_head,
afc154e9
HFS
691 u32 metric, int oif, int strict,
692 bool *do_rr)
f11e6659 693{
9fbdcfaf 694 struct rt6_info *rt, *match, *cont;
554cfb7e 695 int mpri = -1;
1da177e4 696
f11e6659 697 match = NULL;
9fbdcfaf
SK
698 cont = NULL;
699 for (rt = rr_head; rt; rt = rt->dst.rt6_next) {
700 if (rt->rt6i_metric != metric) {
701 cont = rt;
702 break;
703 }
704
705 match = find_match(rt, oif, strict, &mpri, match, do_rr);
706 }
707
708 for (rt = fn->leaf; rt && rt != rr_head; rt = rt->dst.rt6_next) {
709 if (rt->rt6i_metric != metric) {
710 cont = rt;
711 break;
712 }
713
afc154e9 714 match = find_match(rt, oif, strict, &mpri, match, do_rr);
9fbdcfaf
SK
715 }
716
717 if (match || !cont)
718 return match;
719
720 for (rt = cont; rt; rt = rt->dst.rt6_next)
afc154e9 721 match = find_match(rt, oif, strict, &mpri, match, do_rr);
1da177e4 722
f11e6659
DM
723 return match;
724}
1da177e4 725
f11e6659
DM
726static struct rt6_info *rt6_select(struct fib6_node *fn, int oif, int strict)
727{
728 struct rt6_info *match, *rt0;
8ed67789 729 struct net *net;
afc154e9 730 bool do_rr = false;
1da177e4 731
f11e6659
DM
732 rt0 = fn->rr_ptr;
733 if (!rt0)
734 fn->rr_ptr = rt0 = fn->leaf;
1da177e4 735
afc154e9
HFS
736 match = find_rr_leaf(fn, rt0, rt0->rt6i_metric, oif, strict,
737 &do_rr);
1da177e4 738
afc154e9 739 if (do_rr) {
d8d1f30b 740 struct rt6_info *next = rt0->dst.rt6_next;
f11e6659 741
554cfb7e 742 /* no entries matched; do round-robin */
f11e6659
DM
743 if (!next || next->rt6i_metric != rt0->rt6i_metric)
744 next = fn->leaf;
745
746 if (next != rt0)
747 fn->rr_ptr = next;
1da177e4 748 }
1da177e4 749
d1918542 750 net = dev_net(rt0->dst.dev);
a02cec21 751 return match ? match : net->ipv6.ip6_null_entry;
1da177e4
LT
752}
753
8b9df265
MKL
754static bool rt6_is_gw_or_nonexthop(const struct rt6_info *rt)
755{
756 return (rt->rt6i_flags & (RTF_NONEXTHOP | RTF_GATEWAY));
757}
758
70ceb4f5
YH
759#ifdef CONFIG_IPV6_ROUTE_INFO
760int rt6_route_rcv(struct net_device *dev, u8 *opt, int len,
b71d1d42 761 const struct in6_addr *gwaddr)
70ceb4f5 762{
c346dca1 763 struct net *net = dev_net(dev);
70ceb4f5
YH
764 struct route_info *rinfo = (struct route_info *) opt;
765 struct in6_addr prefix_buf, *prefix;
766 unsigned int pref;
4bed72e4 767 unsigned long lifetime;
70ceb4f5
YH
768 struct rt6_info *rt;
769
770 if (len < sizeof(struct route_info)) {
771 return -EINVAL;
772 }
773
774 /* Sanity check for prefix_len and length */
775 if (rinfo->length > 3) {
776 return -EINVAL;
777 } else if (rinfo->prefix_len > 128) {
778 return -EINVAL;
779 } else if (rinfo->prefix_len > 64) {
780 if (rinfo->length < 2) {
781 return -EINVAL;
782 }
783 } else if (rinfo->prefix_len > 0) {
784 if (rinfo->length < 1) {
785 return -EINVAL;
786 }
787 }
788
789 pref = rinfo->route_pref;
790 if (pref == ICMPV6_ROUTER_PREF_INVALID)
3933fc95 791 return -EINVAL;
70ceb4f5 792
4bed72e4 793 lifetime = addrconf_timeout_fixup(ntohl(rinfo->lifetime), HZ);
70ceb4f5
YH
794
795 if (rinfo->length == 3)
796 prefix = (struct in6_addr *)rinfo->prefix;
797 else {
798 /* this function is safe */
799 ipv6_addr_prefix(&prefix_buf,
800 (struct in6_addr *)rinfo->prefix,
801 rinfo->prefix_len);
802 prefix = &prefix_buf;
803 }
804
f104a567
DJ
805 if (rinfo->prefix_len == 0)
806 rt = rt6_get_dflt_router(gwaddr, dev);
807 else
808 rt = rt6_get_route_info(net, prefix, rinfo->prefix_len,
830218c1 809 gwaddr, dev);
70ceb4f5
YH
810
811 if (rt && !lifetime) {
e0a1ad73 812 ip6_del_rt(rt);
70ceb4f5
YH
813 rt = NULL;
814 }
815
816 if (!rt && lifetime)
830218c1
DA
817 rt = rt6_add_route_info(net, prefix, rinfo->prefix_len, gwaddr,
818 dev, pref);
70ceb4f5
YH
819 else if (rt)
820 rt->rt6i_flags = RTF_ROUTEINFO |
821 (rt->rt6i_flags & ~RTF_PREF_MASK) | RTF_PREF(pref);
822
823 if (rt) {
1716a961
G
824 if (!addrconf_finite_timeout(lifetime))
825 rt6_clean_expires(rt);
826 else
827 rt6_set_expires(rt, jiffies + HZ * lifetime);
828
94e187c0 829 ip6_rt_put(rt);
70ceb4f5
YH
830 }
831 return 0;
832}
833#endif
834
a3c00e46
MKL
835static struct fib6_node* fib6_backtrack(struct fib6_node *fn,
836 struct in6_addr *saddr)
837{
838 struct fib6_node *pn;
839 while (1) {
840 if (fn->fn_flags & RTN_TL_ROOT)
841 return NULL;
842 pn = fn->parent;
843 if (FIB6_SUBTREE(pn) && FIB6_SUBTREE(pn) != fn)
844 fn = fib6_lookup(FIB6_SUBTREE(pn), NULL, saddr);
845 else
846 fn = pn;
847 if (fn->fn_flags & RTN_RTINFO)
848 return fn;
849 }
850}
c71099ac 851
8ed67789
DL
852static struct rt6_info *ip6_pol_route_lookup(struct net *net,
853 struct fib6_table *table,
4c9483b2 854 struct flowi6 *fl6, int flags)
1da177e4
LT
855{
856 struct fib6_node *fn;
857 struct rt6_info *rt;
858
c71099ac 859 read_lock_bh(&table->tb6_lock);
4c9483b2 860 fn = fib6_lookup(&table->tb6_root, &fl6->daddr, &fl6->saddr);
c71099ac
TG
861restart:
862 rt = fn->leaf;
4c9483b2 863 rt = rt6_device_match(net, rt, &fl6->saddr, fl6->flowi6_oif, flags);
51ebd318 864 if (rt->rt6i_nsiblings && fl6->flowi6_oif == 0)
52bd4c0c 865 rt = rt6_multipath_select(rt, fl6, fl6->flowi6_oif, flags);
a3c00e46
MKL
866 if (rt == net->ipv6.ip6_null_entry) {
867 fn = fib6_backtrack(fn, &fl6->saddr);
868 if (fn)
869 goto restart;
870 }
d8d1f30b 871 dst_use(&rt->dst, jiffies);
c71099ac 872 read_unlock_bh(&table->tb6_lock);
b811580d
DA
873
874 trace_fib6_table_lookup(net, rt, table->tb6_id, fl6);
875
c71099ac
TG
876 return rt;
877
878}
879
67ba4152 880struct dst_entry *ip6_route_lookup(struct net *net, struct flowi6 *fl6,
ea6e574e
FW
881 int flags)
882{
883 return fib6_rule_lookup(net, fl6, flags, ip6_pol_route_lookup);
884}
885EXPORT_SYMBOL_GPL(ip6_route_lookup);
886
9acd9f3a
YH
887struct rt6_info *rt6_lookup(struct net *net, const struct in6_addr *daddr,
888 const struct in6_addr *saddr, int oif, int strict)
c71099ac 889{
4c9483b2
DM
890 struct flowi6 fl6 = {
891 .flowi6_oif = oif,
892 .daddr = *daddr,
c71099ac
TG
893 };
894 struct dst_entry *dst;
77d16f45 895 int flags = strict ? RT6_LOOKUP_F_IFACE : 0;
c71099ac 896
adaa70bb 897 if (saddr) {
4c9483b2 898 memcpy(&fl6.saddr, saddr, sizeof(*saddr));
adaa70bb
TG
899 flags |= RT6_LOOKUP_F_HAS_SADDR;
900 }
901
4c9483b2 902 dst = fib6_rule_lookup(net, &fl6, flags, ip6_pol_route_lookup);
c71099ac
TG
903 if (dst->error == 0)
904 return (struct rt6_info *) dst;
905
906 dst_release(dst);
907
1da177e4
LT
908 return NULL;
909}
7159039a
YH
910EXPORT_SYMBOL(rt6_lookup);
911
c71099ac 912/* ip6_ins_rt is called with FREE table->tb6_lock.
1da177e4
LT
913 It takes new route entry, the addition fails by any reason the
914 route is freed. In any case, if caller does not hold it, it may
915 be destroyed.
916 */
917
e5fd387a 918static int __ip6_ins_rt(struct rt6_info *rt, struct nl_info *info,
e715b6d3 919 struct mx6_config *mxc)
1da177e4
LT
920{
921 int err;
c71099ac 922 struct fib6_table *table;
1da177e4 923
c71099ac
TG
924 table = rt->rt6i_table;
925 write_lock_bh(&table->tb6_lock);
e715b6d3 926 err = fib6_add(&table->tb6_root, rt, info, mxc);
c71099ac 927 write_unlock_bh(&table->tb6_lock);
1da177e4
LT
928
929 return err;
930}
931
40e22e8f
TG
932int ip6_ins_rt(struct rt6_info *rt)
933{
e715b6d3
FW
934 struct nl_info info = { .nl_net = dev_net(rt->dst.dev), };
935 struct mx6_config mxc = { .mx = NULL, };
936
937 return __ip6_ins_rt(rt, &info, &mxc);
40e22e8f
TG
938}
939
8b9df265
MKL
940static struct rt6_info *ip6_rt_cache_alloc(struct rt6_info *ort,
941 const struct in6_addr *daddr,
942 const struct in6_addr *saddr)
1da177e4 943{
1da177e4
LT
944 struct rt6_info *rt;
945
946 /*
947 * Clone the route.
948 */
949
d52d3997 950 if (ort->rt6i_flags & (RTF_CACHE | RTF_PCPU))
83a09abd 951 ort = (struct rt6_info *)ort->dst.from;
1da177e4 952
ad706862 953 rt = __ip6_dst_alloc(dev_net(ort->dst.dev), ort->dst.dev, 0);
83a09abd
MKL
954
955 if (!rt)
956 return NULL;
957
958 ip6_rt_copy_init(rt, ort);
959 rt->rt6i_flags |= RTF_CACHE;
960 rt->rt6i_metric = 0;
961 rt->dst.flags |= DST_HOST;
962 rt->rt6i_dst.addr = *daddr;
963 rt->rt6i_dst.plen = 128;
1da177e4 964
83a09abd
MKL
965 if (!rt6_is_gw_or_nonexthop(ort)) {
966 if (ort->rt6i_dst.plen != 128 &&
967 ipv6_addr_equal(&ort->rt6i_dst.addr, daddr))
968 rt->rt6i_flags |= RTF_ANYCAST;
1da177e4 969#ifdef CONFIG_IPV6_SUBTREES
83a09abd
MKL
970 if (rt->rt6i_src.plen && saddr) {
971 rt->rt6i_src.addr = *saddr;
972 rt->rt6i_src.plen = 128;
8b9df265 973 }
83a09abd 974#endif
95a9a5ba 975 }
1da177e4 976
95a9a5ba
YH
977 return rt;
978}
1da177e4 979
d52d3997
MKL
980static struct rt6_info *ip6_rt_pcpu_alloc(struct rt6_info *rt)
981{
982 struct rt6_info *pcpu_rt;
983
984 pcpu_rt = __ip6_dst_alloc(dev_net(rt->dst.dev),
ad706862 985 rt->dst.dev, rt->dst.flags);
d52d3997
MKL
986
987 if (!pcpu_rt)
988 return NULL;
989 ip6_rt_copy_init(pcpu_rt, rt);
990 pcpu_rt->rt6i_protocol = rt->rt6i_protocol;
991 pcpu_rt->rt6i_flags |= RTF_PCPU;
992 return pcpu_rt;
993}
994
995/* It should be called with read_lock_bh(&tb6_lock) acquired */
996static struct rt6_info *rt6_get_pcpu_route(struct rt6_info *rt)
997{
a73e4195 998 struct rt6_info *pcpu_rt, **p;
d52d3997
MKL
999
1000 p = this_cpu_ptr(rt->rt6i_pcpu);
1001 pcpu_rt = *p;
1002
a73e4195
MKL
1003 if (pcpu_rt) {
1004 dst_hold(&pcpu_rt->dst);
1005 rt6_dst_from_metrics_check(pcpu_rt);
1006 }
1007 return pcpu_rt;
1008}
1009
1010static struct rt6_info *rt6_make_pcpu_route(struct rt6_info *rt)
1011{
9c7370a1 1012 struct fib6_table *table = rt->rt6i_table;
a73e4195 1013 struct rt6_info *pcpu_rt, *prev, **p;
d52d3997
MKL
1014
1015 pcpu_rt = ip6_rt_pcpu_alloc(rt);
1016 if (!pcpu_rt) {
1017 struct net *net = dev_net(rt->dst.dev);
1018
9c7370a1
MKL
1019 dst_hold(&net->ipv6.ip6_null_entry->dst);
1020 return net->ipv6.ip6_null_entry;
d52d3997
MKL
1021 }
1022
9c7370a1
MKL
1023 read_lock_bh(&table->tb6_lock);
1024 if (rt->rt6i_pcpu) {
1025 p = this_cpu_ptr(rt->rt6i_pcpu);
1026 prev = cmpxchg(p, NULL, pcpu_rt);
1027 if (prev) {
1028 /* If someone did it before us, return prev instead */
1029 dst_destroy(&pcpu_rt->dst);
1030 pcpu_rt = prev;
1031 }
1032 } else {
1033 /* rt has been removed from the fib6 tree
1034 * before we have a chance to acquire the read_lock.
1035 * In this case, don't brother to create a pcpu rt
1036 * since rt is going away anyway. The next
1037 * dst_check() will trigger a re-lookup.
1038 */
d52d3997 1039 dst_destroy(&pcpu_rt->dst);
9c7370a1 1040 pcpu_rt = rt;
d52d3997 1041 }
d52d3997
MKL
1042 dst_hold(&pcpu_rt->dst);
1043 rt6_dst_from_metrics_check(pcpu_rt);
9c7370a1 1044 read_unlock_bh(&table->tb6_lock);
d52d3997
MKL
1045 return pcpu_rt;
1046}
1047
9ff74384
DA
1048struct rt6_info *ip6_pol_route(struct net *net, struct fib6_table *table,
1049 int oif, struct flowi6 *fl6, int flags)
1da177e4 1050{
367efcb9 1051 struct fib6_node *fn, *saved_fn;
45e4fd26 1052 struct rt6_info *rt;
c71099ac 1053 int strict = 0;
1da177e4 1054
77d16f45 1055 strict |= flags & RT6_LOOKUP_F_IFACE;
d5d32e4b 1056 strict |= flags & RT6_LOOKUP_F_IGNORE_LINKSTATE;
367efcb9
MKL
1057 if (net->ipv6.devconf_all->forwarding == 0)
1058 strict |= RT6_LOOKUP_F_REACHABLE;
1da177e4 1059
c71099ac 1060 read_lock_bh(&table->tb6_lock);
1da177e4 1061
4c9483b2 1062 fn = fib6_lookup(&table->tb6_root, &fl6->daddr, &fl6->saddr);
367efcb9 1063 saved_fn = fn;
1da177e4 1064
ca254490
DA
1065 if (fl6->flowi6_flags & FLOWI_FLAG_SKIP_NH_OIF)
1066 oif = 0;
1067
a3c00e46 1068redo_rt6_select:
367efcb9 1069 rt = rt6_select(fn, oif, strict);
52bd4c0c 1070 if (rt->rt6i_nsiblings)
367efcb9 1071 rt = rt6_multipath_select(rt, fl6, oif, strict);
a3c00e46
MKL
1072 if (rt == net->ipv6.ip6_null_entry) {
1073 fn = fib6_backtrack(fn, &fl6->saddr);
1074 if (fn)
1075 goto redo_rt6_select;
367efcb9
MKL
1076 else if (strict & RT6_LOOKUP_F_REACHABLE) {
1077 /* also consider unreachable route */
1078 strict &= ~RT6_LOOKUP_F_REACHABLE;
1079 fn = saved_fn;
1080 goto redo_rt6_select;
367efcb9 1081 }
a3c00e46
MKL
1082 }
1083
fb9de91e 1084
3da59bd9 1085 if (rt == net->ipv6.ip6_null_entry || (rt->rt6i_flags & RTF_CACHE)) {
d52d3997
MKL
1086 dst_use(&rt->dst, jiffies);
1087 read_unlock_bh(&table->tb6_lock);
1088
1089 rt6_dst_from_metrics_check(rt);
b811580d
DA
1090
1091 trace_fib6_table_lookup(net, rt, table->tb6_id, fl6);
d52d3997 1092 return rt;
3da59bd9
MKL
1093 } else if (unlikely((fl6->flowi6_flags & FLOWI_FLAG_KNOWN_NH) &&
1094 !(rt->rt6i_flags & RTF_GATEWAY))) {
1095 /* Create a RTF_CACHE clone which will not be
1096 * owned by the fib6 tree. It is for the special case where
1097 * the daddr in the skb during the neighbor look-up is different
1098 * from the fl6->daddr used to look-up route here.
1099 */
1100
1101 struct rt6_info *uncached_rt;
1102
d52d3997
MKL
1103 dst_use(&rt->dst, jiffies);
1104 read_unlock_bh(&table->tb6_lock);
1105
3da59bd9
MKL
1106 uncached_rt = ip6_rt_cache_alloc(rt, &fl6->daddr, NULL);
1107 dst_release(&rt->dst);
c71099ac 1108
3da59bd9 1109 if (uncached_rt)
8d0b94af 1110 rt6_uncached_list_add(uncached_rt);
3da59bd9
MKL
1111 else
1112 uncached_rt = net->ipv6.ip6_null_entry;
d52d3997 1113
3da59bd9 1114 dst_hold(&uncached_rt->dst);
b811580d
DA
1115
1116 trace_fib6_table_lookup(net, uncached_rt, table->tb6_id, fl6);
3da59bd9 1117 return uncached_rt;
3da59bd9 1118
d52d3997
MKL
1119 } else {
1120 /* Get a percpu copy */
1121
1122 struct rt6_info *pcpu_rt;
1123
1124 rt->dst.lastuse = jiffies;
1125 rt->dst.__use++;
1126 pcpu_rt = rt6_get_pcpu_route(rt);
d52d3997 1127
9c7370a1
MKL
1128 if (pcpu_rt) {
1129 read_unlock_bh(&table->tb6_lock);
1130 } else {
1131 /* We have to do the read_unlock first
1132 * because rt6_make_pcpu_route() may trigger
1133 * ip6_dst_gc() which will take the write_lock.
1134 */
1135 dst_hold(&rt->dst);
1136 read_unlock_bh(&table->tb6_lock);
a73e4195 1137 pcpu_rt = rt6_make_pcpu_route(rt);
9c7370a1
MKL
1138 dst_release(&rt->dst);
1139 }
d52d3997 1140
b811580d 1141 trace_fib6_table_lookup(net, pcpu_rt, table->tb6_id, fl6);
d52d3997 1142 return pcpu_rt;
9c7370a1 1143
d52d3997 1144 }
1da177e4 1145}
9ff74384 1146EXPORT_SYMBOL_GPL(ip6_pol_route);
1da177e4 1147
8ed67789 1148static struct rt6_info *ip6_pol_route_input(struct net *net, struct fib6_table *table,
4c9483b2 1149 struct flowi6 *fl6, int flags)
4acad72d 1150{
4c9483b2 1151 return ip6_pol_route(net, table, fl6->flowi6_iif, fl6, flags);
4acad72d
PE
1152}
1153
d409b847
MB
1154struct dst_entry *ip6_route_input_lookup(struct net *net,
1155 struct net_device *dev,
1156 struct flowi6 *fl6, int flags)
72331bc0
SL
1157{
1158 if (rt6_need_strict(&fl6->daddr) && dev->type != ARPHRD_PIMREG)
1159 flags |= RT6_LOOKUP_F_IFACE;
1160
1161 return fib6_rule_lookup(net, fl6, flags, ip6_pol_route_input);
1162}
d409b847 1163EXPORT_SYMBOL_GPL(ip6_route_input_lookup);
72331bc0 1164
c71099ac
TG
1165void ip6_route_input(struct sk_buff *skb)
1166{
b71d1d42 1167 const struct ipv6hdr *iph = ipv6_hdr(skb);
c346dca1 1168 struct net *net = dev_net(skb->dev);
adaa70bb 1169 int flags = RT6_LOOKUP_F_HAS_SADDR;
904af04d 1170 struct ip_tunnel_info *tun_info;
4c9483b2 1171 struct flowi6 fl6 = {
e0d56fdd 1172 .flowi6_iif = skb->dev->ifindex,
4c9483b2
DM
1173 .daddr = iph->daddr,
1174 .saddr = iph->saddr,
6502ca52 1175 .flowlabel = ip6_flowinfo(iph),
4c9483b2
DM
1176 .flowi6_mark = skb->mark,
1177 .flowi6_proto = iph->nexthdr,
c71099ac 1178 };
adaa70bb 1179
904af04d 1180 tun_info = skb_tunnel_info(skb);
46fa062a 1181 if (tun_info && !(tun_info->mode & IP_TUNNEL_INFO_TX))
904af04d 1182 fl6.flowi6_tun_key.tun_id = tun_info->key.tun_id;
06e9d040 1183 skb_dst_drop(skb);
72331bc0 1184 skb_dst_set(skb, ip6_route_input_lookup(net, skb->dev, &fl6, flags));
c71099ac
TG
1185}
1186
8ed67789 1187static struct rt6_info *ip6_pol_route_output(struct net *net, struct fib6_table *table,
4c9483b2 1188 struct flowi6 *fl6, int flags)
1da177e4 1189{
4c9483b2 1190 return ip6_pol_route(net, table, fl6->flowi6_oif, fl6, flags);
c71099ac
TG
1191}
1192
6f21c96a
PA
1193struct dst_entry *ip6_route_output_flags(struct net *net, const struct sock *sk,
1194 struct flowi6 *fl6, int flags)
c71099ac 1195{
d46a9d67 1196 bool any_src;
c71099ac 1197
4c1feac5
DA
1198 if (rt6_need_strict(&fl6->daddr)) {
1199 struct dst_entry *dst;
1200
1201 dst = l3mdev_link_scope_lookup(net, fl6);
1202 if (dst)
1203 return dst;
1204 }
ca254490 1205
1fb9489b 1206 fl6->flowi6_iif = LOOPBACK_IFINDEX;
4dc27d1c 1207
d46a9d67 1208 any_src = ipv6_addr_any(&fl6->saddr);
741a11d9 1209 if ((sk && sk->sk_bound_dev_if) || rt6_need_strict(&fl6->daddr) ||
d46a9d67 1210 (fl6->flowi6_oif && any_src))
77d16f45 1211 flags |= RT6_LOOKUP_F_IFACE;
c71099ac 1212
d46a9d67 1213 if (!any_src)
adaa70bb 1214 flags |= RT6_LOOKUP_F_HAS_SADDR;
0c9a2ac1
YH
1215 else if (sk)
1216 flags |= rt6_srcprefs2flags(inet6_sk(sk)->srcprefs);
adaa70bb 1217
4c9483b2 1218 return fib6_rule_lookup(net, fl6, flags, ip6_pol_route_output);
1da177e4 1219}
6f21c96a 1220EXPORT_SYMBOL_GPL(ip6_route_output_flags);
1da177e4 1221
2774c131 1222struct dst_entry *ip6_blackhole_route(struct net *net, struct dst_entry *dst_orig)
14e50e57 1223{
5c1e6aa3 1224 struct rt6_info *rt, *ort = (struct rt6_info *) dst_orig;
14e50e57
DM
1225 struct dst_entry *new = NULL;
1226
f5b0a874 1227 rt = dst_alloc(&ip6_dst_blackhole_ops, ort->dst.dev, 1, DST_OBSOLETE_NONE, 0);
14e50e57 1228 if (rt) {
0a1f5962 1229 rt6_info_init(rt);
8104891b 1230
0a1f5962 1231 new = &rt->dst;
14e50e57 1232 new->__use = 1;
352e512c 1233 new->input = dst_discard;
ede2059d 1234 new->output = dst_discard_out;
14e50e57 1235
0a1f5962 1236 dst_copy_metrics(new, &ort->dst);
14e50e57
DM
1237 rt->rt6i_idev = ort->rt6i_idev;
1238 if (rt->rt6i_idev)
1239 in6_dev_hold(rt->rt6i_idev);
14e50e57 1240
4e3fd7a0 1241 rt->rt6i_gateway = ort->rt6i_gateway;
0a1f5962 1242 rt->rt6i_flags = ort->rt6i_flags & ~RTF_PCPU;
14e50e57
DM
1243 rt->rt6i_metric = 0;
1244
1245 memcpy(&rt->rt6i_dst, &ort->rt6i_dst, sizeof(struct rt6key));
1246#ifdef CONFIG_IPV6_SUBTREES
1247 memcpy(&rt->rt6i_src, &ort->rt6i_src, sizeof(struct rt6key));
1248#endif
1249
1250 dst_free(new);
1251 }
1252
69ead7af
DM
1253 dst_release(dst_orig);
1254 return new ? new : ERR_PTR(-ENOMEM);
14e50e57 1255}
14e50e57 1256
1da177e4
LT
1257/*
1258 * Destination cache support functions
1259 */
1260
4b32b5ad
MKL
1261static void rt6_dst_from_metrics_check(struct rt6_info *rt)
1262{
1263 if (rt->dst.from &&
1264 dst_metrics_ptr(&rt->dst) != dst_metrics_ptr(rt->dst.from))
1265 dst_init_metrics(&rt->dst, dst_metrics_ptr(rt->dst.from), true);
1266}
1267
3da59bd9
MKL
1268static struct dst_entry *rt6_check(struct rt6_info *rt, u32 cookie)
1269{
1270 if (!rt->rt6i_node || (rt->rt6i_node->fn_sernum != cookie))
1271 return NULL;
1272
1273 if (rt6_check_expired(rt))
1274 return NULL;
1275
1276 return &rt->dst;
1277}
1278
1279static struct dst_entry *rt6_dst_from_check(struct rt6_info *rt, u32 cookie)
1280{
5973fb1e
MKL
1281 if (!__rt6_check_expired(rt) &&
1282 rt->dst.obsolete == DST_OBSOLETE_FORCE_CHK &&
3da59bd9
MKL
1283 rt6_check((struct rt6_info *)(rt->dst.from), cookie))
1284 return &rt->dst;
1285 else
1286 return NULL;
1287}
1288
1da177e4
LT
1289static struct dst_entry *ip6_dst_check(struct dst_entry *dst, u32 cookie)
1290{
1291 struct rt6_info *rt;
1292
1293 rt = (struct rt6_info *) dst;
1294
6f3118b5
ND
1295 /* All IPV6 dsts are created with ->obsolete set to the value
1296 * DST_OBSOLETE_FORCE_CHK which forces validation calls down
1297 * into this function always.
1298 */
e3bc10bd 1299
4b32b5ad
MKL
1300 rt6_dst_from_metrics_check(rt);
1301
02bcf4e0
MKL
1302 if (rt->rt6i_flags & RTF_PCPU ||
1303 (unlikely(dst->flags & DST_NOCACHE) && rt->dst.from))
3da59bd9
MKL
1304 return rt6_dst_from_check(rt, cookie);
1305 else
1306 return rt6_check(rt, cookie);
1da177e4
LT
1307}
1308
1309static struct dst_entry *ip6_negative_advice(struct dst_entry *dst)
1310{
1311 struct rt6_info *rt = (struct rt6_info *) dst;
1312
1313 if (rt) {
54c1a859
YH
1314 if (rt->rt6i_flags & RTF_CACHE) {
1315 if (rt6_check_expired(rt)) {
1316 ip6_del_rt(rt);
1317 dst = NULL;
1318 }
1319 } else {
1da177e4 1320 dst_release(dst);
54c1a859
YH
1321 dst = NULL;
1322 }
1da177e4 1323 }
54c1a859 1324 return dst;
1da177e4
LT
1325}
1326
1327static void ip6_link_failure(struct sk_buff *skb)
1328{
1329 struct rt6_info *rt;
1330
3ffe533c 1331 icmpv6_send(skb, ICMPV6_DEST_UNREACH, ICMPV6_ADDR_UNREACH, 0);
1da177e4 1332
adf30907 1333 rt = (struct rt6_info *) skb_dst(skb);
1da177e4 1334 if (rt) {
1eb4f758
HFS
1335 if (rt->rt6i_flags & RTF_CACHE) {
1336 dst_hold(&rt->dst);
8e3d5be7 1337 ip6_del_rt(rt);
1eb4f758 1338 } else if (rt->rt6i_node && (rt->rt6i_flags & RTF_DEFAULT)) {
1da177e4 1339 rt->rt6i_node->fn_sernum = -1;
1eb4f758 1340 }
1da177e4
LT
1341 }
1342}
1343
45e4fd26
MKL
1344static void rt6_do_update_pmtu(struct rt6_info *rt, u32 mtu)
1345{
1346 struct net *net = dev_net(rt->dst.dev);
1347
1348 rt->rt6i_flags |= RTF_MODIFIED;
1349 rt->rt6i_pmtu = mtu;
1350 rt6_update_expires(rt, net->ipv6.sysctl.ip6_rt_mtu_expires);
1351}
1352
0d3f6d29
MKL
1353static bool rt6_cache_allowed_for_pmtu(const struct rt6_info *rt)
1354{
1355 return !(rt->rt6i_flags & RTF_CACHE) &&
1356 (rt->rt6i_flags & RTF_PCPU || rt->rt6i_node);
1357}
1358
45e4fd26
MKL
1359static void __ip6_rt_update_pmtu(struct dst_entry *dst, const struct sock *sk,
1360 const struct ipv6hdr *iph, u32 mtu)
1da177e4 1361{
67ba4152 1362 struct rt6_info *rt6 = (struct rt6_info *)dst;
1da177e4 1363
45e4fd26
MKL
1364 if (rt6->rt6i_flags & RTF_LOCAL)
1365 return;
81aded24 1366
19bda36c
XL
1367 if (dst_metric_locked(dst, RTAX_MTU))
1368 return;
1369
45e4fd26
MKL
1370 dst_confirm(dst);
1371 mtu = max_t(u32, mtu, IPV6_MIN_MTU);
1372 if (mtu >= dst_mtu(dst))
1373 return;
9d289715 1374
0d3f6d29 1375 if (!rt6_cache_allowed_for_pmtu(rt6)) {
45e4fd26
MKL
1376 rt6_do_update_pmtu(rt6, mtu);
1377 } else {
1378 const struct in6_addr *daddr, *saddr;
1379 struct rt6_info *nrt6;
1380
1381 if (iph) {
1382 daddr = &iph->daddr;
1383 saddr = &iph->saddr;
1384 } else if (sk) {
1385 daddr = &sk->sk_v6_daddr;
1386 saddr = &inet6_sk(sk)->saddr;
1387 } else {
1388 return;
1389 }
1390 nrt6 = ip6_rt_cache_alloc(rt6, daddr, saddr);
1391 if (nrt6) {
1392 rt6_do_update_pmtu(nrt6, mtu);
1393
1394 /* ip6_ins_rt(nrt6) will bump the
1395 * rt6->rt6i_node->fn_sernum
1396 * which will fail the next rt6_check() and
1397 * invalidate the sk->sk_dst_cache.
1398 */
1399 ip6_ins_rt(nrt6);
1400 }
1da177e4
LT
1401 }
1402}
1403
45e4fd26
MKL
1404static void ip6_rt_update_pmtu(struct dst_entry *dst, struct sock *sk,
1405 struct sk_buff *skb, u32 mtu)
1406{
1407 __ip6_rt_update_pmtu(dst, sk, skb ? ipv6_hdr(skb) : NULL, mtu);
1408}
1409
42ae66c8 1410void ip6_update_pmtu(struct sk_buff *skb, struct net *net, __be32 mtu,
e2d118a1 1411 int oif, u32 mark, kuid_t uid)
81aded24
DM
1412{
1413 const struct ipv6hdr *iph = (struct ipv6hdr *) skb->data;
1414 struct dst_entry *dst;
1415 struct flowi6 fl6;
1416
1417 memset(&fl6, 0, sizeof(fl6));
1418 fl6.flowi6_oif = oif;
1b3c61dc 1419 fl6.flowi6_mark = mark ? mark : IP6_REPLY_MARK(net, skb->mark);
81aded24
DM
1420 fl6.daddr = iph->daddr;
1421 fl6.saddr = iph->saddr;
6502ca52 1422 fl6.flowlabel = ip6_flowinfo(iph);
e2d118a1 1423 fl6.flowi6_uid = uid;
81aded24
DM
1424
1425 dst = ip6_route_output(net, NULL, &fl6);
1426 if (!dst->error)
45e4fd26 1427 __ip6_rt_update_pmtu(dst, NULL, iph, ntohl(mtu));
81aded24
DM
1428 dst_release(dst);
1429}
1430EXPORT_SYMBOL_GPL(ip6_update_pmtu);
1431
1432void ip6_sk_update_pmtu(struct sk_buff *skb, struct sock *sk, __be32 mtu)
1433{
33c162a9
MKL
1434 struct dst_entry *dst;
1435
81aded24 1436 ip6_update_pmtu(skb, sock_net(sk), mtu,
e2d118a1 1437 sk->sk_bound_dev_if, sk->sk_mark, sk->sk_uid);
33c162a9
MKL
1438
1439 dst = __sk_dst_get(sk);
1440 if (!dst || !dst->obsolete ||
1441 dst->ops->check(dst, inet6_sk(sk)->dst_cookie))
1442 return;
1443
1444 bh_lock_sock(sk);
1445 if (!sock_owned_by_user(sk) && !ipv6_addr_v4mapped(&sk->sk_v6_daddr))
1446 ip6_datagram_dst_update(sk, false);
1447 bh_unlock_sock(sk);
81aded24
DM
1448}
1449EXPORT_SYMBOL_GPL(ip6_sk_update_pmtu);
1450
b55b76b2
DJ
1451/* Handle redirects */
1452struct ip6rd_flowi {
1453 struct flowi6 fl6;
1454 struct in6_addr gateway;
1455};
1456
1457static struct rt6_info *__ip6_route_redirect(struct net *net,
1458 struct fib6_table *table,
1459 struct flowi6 *fl6,
1460 int flags)
1461{
1462 struct ip6rd_flowi *rdfl = (struct ip6rd_flowi *)fl6;
1463 struct rt6_info *rt;
1464 struct fib6_node *fn;
1465
1466 /* Get the "current" route for this destination and
67c408cf 1467 * check if the redirect has come from appropriate router.
b55b76b2
DJ
1468 *
1469 * RFC 4861 specifies that redirects should only be
1470 * accepted if they come from the nexthop to the target.
1471 * Due to the way the routes are chosen, this notion
1472 * is a bit fuzzy and one might need to check all possible
1473 * routes.
1474 */
1475
1476 read_lock_bh(&table->tb6_lock);
1477 fn = fib6_lookup(&table->tb6_root, &fl6->daddr, &fl6->saddr);
1478restart:
1479 for (rt = fn->leaf; rt; rt = rt->dst.rt6_next) {
1480 if (rt6_check_expired(rt))
1481 continue;
1482 if (rt->dst.error)
1483 break;
1484 if (!(rt->rt6i_flags & RTF_GATEWAY))
1485 continue;
1486 if (fl6->flowi6_oif != rt->dst.dev->ifindex)
1487 continue;
1488 if (!ipv6_addr_equal(&rdfl->gateway, &rt->rt6i_gateway))
1489 continue;
1490 break;
1491 }
1492
1493 if (!rt)
1494 rt = net->ipv6.ip6_null_entry;
1495 else if (rt->dst.error) {
1496 rt = net->ipv6.ip6_null_entry;
b0a1ba59
MKL
1497 goto out;
1498 }
1499
1500 if (rt == net->ipv6.ip6_null_entry) {
a3c00e46
MKL
1501 fn = fib6_backtrack(fn, &fl6->saddr);
1502 if (fn)
1503 goto restart;
b55b76b2 1504 }
a3c00e46 1505
b0a1ba59 1506out:
b55b76b2
DJ
1507 dst_hold(&rt->dst);
1508
1509 read_unlock_bh(&table->tb6_lock);
1510
b811580d 1511 trace_fib6_table_lookup(net, rt, table->tb6_id, fl6);
b55b76b2
DJ
1512 return rt;
1513};
1514
1515static struct dst_entry *ip6_route_redirect(struct net *net,
1516 const struct flowi6 *fl6,
1517 const struct in6_addr *gateway)
1518{
1519 int flags = RT6_LOOKUP_F_HAS_SADDR;
1520 struct ip6rd_flowi rdfl;
1521
1522 rdfl.fl6 = *fl6;
1523 rdfl.gateway = *gateway;
1524
1525 return fib6_rule_lookup(net, &rdfl.fl6,
1526 flags, __ip6_route_redirect);
1527}
1528
e2d118a1
LC
1529void ip6_redirect(struct sk_buff *skb, struct net *net, int oif, u32 mark,
1530 kuid_t uid)
3a5ad2ee
DM
1531{
1532 const struct ipv6hdr *iph = (struct ipv6hdr *) skb->data;
1533 struct dst_entry *dst;
1534 struct flowi6 fl6;
1535
1536 memset(&fl6, 0, sizeof(fl6));
e374c618 1537 fl6.flowi6_iif = LOOPBACK_IFINDEX;
3a5ad2ee
DM
1538 fl6.flowi6_oif = oif;
1539 fl6.flowi6_mark = mark;
3a5ad2ee
DM
1540 fl6.daddr = iph->daddr;
1541 fl6.saddr = iph->saddr;
6502ca52 1542 fl6.flowlabel = ip6_flowinfo(iph);
e2d118a1 1543 fl6.flowi6_uid = uid;
3a5ad2ee 1544
b55b76b2
DJ
1545 dst = ip6_route_redirect(net, &fl6, &ipv6_hdr(skb)->saddr);
1546 rt6_do_redirect(dst, NULL, skb);
3a5ad2ee
DM
1547 dst_release(dst);
1548}
1549EXPORT_SYMBOL_GPL(ip6_redirect);
1550
c92a59ec
DJ
1551void ip6_redirect_no_header(struct sk_buff *skb, struct net *net, int oif,
1552 u32 mark)
1553{
1554 const struct ipv6hdr *iph = ipv6_hdr(skb);
1555 const struct rd_msg *msg = (struct rd_msg *)icmp6_hdr(skb);
1556 struct dst_entry *dst;
1557 struct flowi6 fl6;
1558
1559 memset(&fl6, 0, sizeof(fl6));
e374c618 1560 fl6.flowi6_iif = LOOPBACK_IFINDEX;
c92a59ec
DJ
1561 fl6.flowi6_oif = oif;
1562 fl6.flowi6_mark = mark;
c92a59ec
DJ
1563 fl6.daddr = msg->dest;
1564 fl6.saddr = iph->daddr;
e2d118a1 1565 fl6.flowi6_uid = sock_net_uid(net, NULL);
c92a59ec 1566
b55b76b2
DJ
1567 dst = ip6_route_redirect(net, &fl6, &iph->saddr);
1568 rt6_do_redirect(dst, NULL, skb);
c92a59ec
DJ
1569 dst_release(dst);
1570}
1571
3a5ad2ee
DM
1572void ip6_sk_redirect(struct sk_buff *skb, struct sock *sk)
1573{
e2d118a1
LC
1574 ip6_redirect(skb, sock_net(sk), sk->sk_bound_dev_if, sk->sk_mark,
1575 sk->sk_uid);
3a5ad2ee
DM
1576}
1577EXPORT_SYMBOL_GPL(ip6_sk_redirect);
1578
0dbaee3b 1579static unsigned int ip6_default_advmss(const struct dst_entry *dst)
1da177e4 1580{
0dbaee3b
DM
1581 struct net_device *dev = dst->dev;
1582 unsigned int mtu = dst_mtu(dst);
1583 struct net *net = dev_net(dev);
1584
1da177e4
LT
1585 mtu -= sizeof(struct ipv6hdr) + sizeof(struct tcphdr);
1586
5578689a
DL
1587 if (mtu < net->ipv6.sysctl.ip6_rt_min_advmss)
1588 mtu = net->ipv6.sysctl.ip6_rt_min_advmss;
1da177e4
LT
1589
1590 /*
1ab1457c
YH
1591 * Maximal non-jumbo IPv6 payload is IPV6_MAXPLEN and
1592 * corresponding MSS is IPV6_MAXPLEN - tcp_header_size.
1593 * IPV6_MAXPLEN is also valid and means: "any MSS,
1da177e4
LT
1594 * rely only on pmtu discovery"
1595 */
1596 if (mtu > IPV6_MAXPLEN - sizeof(struct tcphdr))
1597 mtu = IPV6_MAXPLEN;
1598 return mtu;
1599}
1600
ebb762f2 1601static unsigned int ip6_mtu(const struct dst_entry *dst)
d33e4553 1602{
4b32b5ad
MKL
1603 const struct rt6_info *rt = (const struct rt6_info *)dst;
1604 unsigned int mtu = rt->rt6i_pmtu;
d33e4553 1605 struct inet6_dev *idev;
618f9bc7 1606
4b32b5ad
MKL
1607 if (mtu)
1608 goto out;
1609
1610 mtu = dst_metric_raw(dst, RTAX_MTU);
618f9bc7 1611 if (mtu)
30f78d8e 1612 goto out;
618f9bc7
SK
1613
1614 mtu = IPV6_MIN_MTU;
d33e4553
DM
1615
1616 rcu_read_lock();
1617 idev = __in6_dev_get(dst->dev);
1618 if (idev)
1619 mtu = idev->cnf.mtu6;
1620 rcu_read_unlock();
1621
30f78d8e 1622out:
14972cbd
RP
1623 mtu = min_t(unsigned int, mtu, IP6_MAX_MTU);
1624
1625 return mtu - lwtunnel_headroom(dst->lwtstate, mtu);
d33e4553
DM
1626}
1627
3b00944c
YH
1628static struct dst_entry *icmp6_dst_gc_list;
1629static DEFINE_SPINLOCK(icmp6_dst_lock);
5d0bbeeb 1630
3b00944c 1631struct dst_entry *icmp6_dst_alloc(struct net_device *dev,
87a11578 1632 struct flowi6 *fl6)
1da177e4 1633{
87a11578 1634 struct dst_entry *dst;
1da177e4
LT
1635 struct rt6_info *rt;
1636 struct inet6_dev *idev = in6_dev_get(dev);
c346dca1 1637 struct net *net = dev_net(dev);
1da177e4 1638
38308473 1639 if (unlikely(!idev))
122bdf67 1640 return ERR_PTR(-ENODEV);
1da177e4 1641
ad706862 1642 rt = ip6_dst_alloc(net, dev, 0);
38308473 1643 if (unlikely(!rt)) {
1da177e4 1644 in6_dev_put(idev);
87a11578 1645 dst = ERR_PTR(-ENOMEM);
1da177e4
LT
1646 goto out;
1647 }
1648
8e2ec639
YZ
1649 rt->dst.flags |= DST_HOST;
1650 rt->dst.output = ip6_output;
d8d1f30b 1651 atomic_set(&rt->dst.__refcnt, 1);
550bab42 1652 rt->rt6i_gateway = fl6->daddr;
87a11578 1653 rt->rt6i_dst.addr = fl6->daddr;
8e2ec639
YZ
1654 rt->rt6i_dst.plen = 128;
1655 rt->rt6i_idev = idev;
14edd87d 1656 dst_metric_set(&rt->dst, RTAX_HOPLIMIT, 0);
1da177e4 1657
3b00944c 1658 spin_lock_bh(&icmp6_dst_lock);
d8d1f30b
CG
1659 rt->dst.next = icmp6_dst_gc_list;
1660 icmp6_dst_gc_list = &rt->dst;
3b00944c 1661 spin_unlock_bh(&icmp6_dst_lock);
1da177e4 1662
5578689a 1663 fib6_force_start_gc(net);
1da177e4 1664
87a11578
DM
1665 dst = xfrm_lookup(net, &rt->dst, flowi6_to_flowi(fl6), NULL, 0);
1666
1da177e4 1667out:
87a11578 1668 return dst;
1da177e4
LT
1669}
1670
3d0f24a7 1671int icmp6_dst_gc(void)
1da177e4 1672{
e9476e95 1673 struct dst_entry *dst, **pprev;
3d0f24a7 1674 int more = 0;
1da177e4 1675
3b00944c
YH
1676 spin_lock_bh(&icmp6_dst_lock);
1677 pprev = &icmp6_dst_gc_list;
5d0bbeeb 1678
1da177e4
LT
1679 while ((dst = *pprev) != NULL) {
1680 if (!atomic_read(&dst->__refcnt)) {
1681 *pprev = dst->next;
1682 dst_free(dst);
1da177e4
LT
1683 } else {
1684 pprev = &dst->next;
3d0f24a7 1685 ++more;
1da177e4
LT
1686 }
1687 }
1688
3b00944c 1689 spin_unlock_bh(&icmp6_dst_lock);
5d0bbeeb 1690
3d0f24a7 1691 return more;
1da177e4
LT
1692}
1693
1e493d19
DM
1694static void icmp6_clean_all(int (*func)(struct rt6_info *rt, void *arg),
1695 void *arg)
1696{
1697 struct dst_entry *dst, **pprev;
1698
1699 spin_lock_bh(&icmp6_dst_lock);
1700 pprev = &icmp6_dst_gc_list;
1701 while ((dst = *pprev) != NULL) {
1702 struct rt6_info *rt = (struct rt6_info *) dst;
1703 if (func(rt, arg)) {
1704 *pprev = dst->next;
1705 dst_free(dst);
1706 } else {
1707 pprev = &dst->next;
1708 }
1709 }
1710 spin_unlock_bh(&icmp6_dst_lock);
1711}
1712
569d3645 1713static int ip6_dst_gc(struct dst_ops *ops)
1da177e4 1714{
86393e52 1715 struct net *net = container_of(ops, struct net, ipv6.ip6_dst_ops);
7019b78e
DL
1716 int rt_min_interval = net->ipv6.sysctl.ip6_rt_gc_min_interval;
1717 int rt_max_size = net->ipv6.sysctl.ip6_rt_max_size;
1718 int rt_elasticity = net->ipv6.sysctl.ip6_rt_gc_elasticity;
1719 int rt_gc_timeout = net->ipv6.sysctl.ip6_rt_gc_timeout;
1720 unsigned long rt_last_gc = net->ipv6.ip6_rt_last_gc;
fc66f95c 1721 int entries;
7019b78e 1722
fc66f95c 1723 entries = dst_entries_get_fast(ops);
49a18d86 1724 if (time_after(rt_last_gc + rt_min_interval, jiffies) &&
fc66f95c 1725 entries <= rt_max_size)
1da177e4
LT
1726 goto out;
1727
6891a346 1728 net->ipv6.ip6_rt_gc_expire++;
14956643 1729 fib6_run_gc(net->ipv6.ip6_rt_gc_expire, net, true);
fc66f95c
ED
1730 entries = dst_entries_get_slow(ops);
1731 if (entries < ops->gc_thresh)
7019b78e 1732 net->ipv6.ip6_rt_gc_expire = rt_gc_timeout>>1;
1da177e4 1733out:
7019b78e 1734 net->ipv6.ip6_rt_gc_expire -= net->ipv6.ip6_rt_gc_expire>>rt_elasticity;
fc66f95c 1735 return entries > rt_max_size;
1da177e4
LT
1736}
1737
e715b6d3
FW
1738static int ip6_convert_metrics(struct mx6_config *mxc,
1739 const struct fib6_config *cfg)
1740{
c3a8d947 1741 bool ecn_ca = false;
e715b6d3
FW
1742 struct nlattr *nla;
1743 int remaining;
1744 u32 *mp;
1745
63159f29 1746 if (!cfg->fc_mx)
e715b6d3
FW
1747 return 0;
1748
1749 mp = kzalloc(sizeof(u32) * RTAX_MAX, GFP_KERNEL);
1750 if (unlikely(!mp))
1751 return -ENOMEM;
1752
1753 nla_for_each_attr(nla, cfg->fc_mx, cfg->fc_mx_len, remaining) {
1754 int type = nla_type(nla);
1bb14807 1755 u32 val;
e715b6d3 1756
1bb14807
DB
1757 if (!type)
1758 continue;
1759 if (unlikely(type > RTAX_MAX))
1760 goto err;
ea697639 1761
1bb14807
DB
1762 if (type == RTAX_CC_ALGO) {
1763 char tmp[TCP_CA_NAME_MAX];
e715b6d3 1764
1bb14807 1765 nla_strlcpy(tmp, nla, sizeof(tmp));
c3a8d947 1766 val = tcp_ca_get_key_by_name(tmp, &ecn_ca);
1bb14807
DB
1767 if (val == TCP_CA_UNSPEC)
1768 goto err;
1769 } else {
1770 val = nla_get_u32(nla);
e715b6d3 1771 }
626abd59
PA
1772 if (type == RTAX_HOPLIMIT && val > 255)
1773 val = 255;
b8d3e416
DB
1774 if (type == RTAX_FEATURES && (val & ~RTAX_FEATURE_MASK))
1775 goto err;
1bb14807
DB
1776
1777 mp[type - 1] = val;
1778 __set_bit(type - 1, mxc->mx_valid);
e715b6d3
FW
1779 }
1780
c3a8d947
DB
1781 if (ecn_ca) {
1782 __set_bit(RTAX_FEATURES - 1, mxc->mx_valid);
1783 mp[RTAX_FEATURES - 1] |= DST_FEATURE_ECN_CA;
1784 }
e715b6d3 1785
c3a8d947 1786 mxc->mx = mp;
e715b6d3
FW
1787 return 0;
1788 err:
1789 kfree(mp);
1790 return -EINVAL;
1791}
1da177e4 1792
8c14586f
DA
1793static struct rt6_info *ip6_nh_lookup_table(struct net *net,
1794 struct fib6_config *cfg,
1795 const struct in6_addr *gw_addr)
1796{
1797 struct flowi6 fl6 = {
1798 .flowi6_oif = cfg->fc_ifindex,
1799 .daddr = *gw_addr,
1800 .saddr = cfg->fc_prefsrc,
1801 };
1802 struct fib6_table *table;
1803 struct rt6_info *rt;
d5d32e4b 1804 int flags = RT6_LOOKUP_F_IFACE | RT6_LOOKUP_F_IGNORE_LINKSTATE;
8c14586f
DA
1805
1806 table = fib6_get_table(net, cfg->fc_table);
1807 if (!table)
1808 return NULL;
1809
1810 if (!ipv6_addr_any(&cfg->fc_prefsrc))
1811 flags |= RT6_LOOKUP_F_HAS_SADDR;
1812
1813 rt = ip6_pol_route(net, table, cfg->fc_ifindex, &fl6, flags);
1814
1815 /* if table lookup failed, fall back to full lookup */
1816 if (rt == net->ipv6.ip6_null_entry) {
1817 ip6_rt_put(rt);
1818 rt = NULL;
1819 }
1820
1821 return rt;
1822}
1823
8c5b83f0 1824static struct rt6_info *ip6_route_info_create(struct fib6_config *cfg)
1da177e4 1825{
5578689a 1826 struct net *net = cfg->fc_nlinfo.nl_net;
1da177e4
LT
1827 struct rt6_info *rt = NULL;
1828 struct net_device *dev = NULL;
1829 struct inet6_dev *idev = NULL;
c71099ac 1830 struct fib6_table *table;
1da177e4 1831 int addr_type;
8c5b83f0 1832 int err = -EINVAL;
1da177e4 1833
86872cb5 1834 if (cfg->fc_dst_len > 128 || cfg->fc_src_len > 128)
8c5b83f0 1835 goto out;
1da177e4 1836#ifndef CONFIG_IPV6_SUBTREES
86872cb5 1837 if (cfg->fc_src_len)
8c5b83f0 1838 goto out;
1da177e4 1839#endif
86872cb5 1840 if (cfg->fc_ifindex) {
1da177e4 1841 err = -ENODEV;
5578689a 1842 dev = dev_get_by_index(net, cfg->fc_ifindex);
1da177e4
LT
1843 if (!dev)
1844 goto out;
1845 idev = in6_dev_get(dev);
1846 if (!idev)
1847 goto out;
1848 }
1849
86872cb5
TG
1850 if (cfg->fc_metric == 0)
1851 cfg->fc_metric = IP6_RT_PRIO_USER;
1da177e4 1852
d71314b4 1853 err = -ENOBUFS;
38308473
DM
1854 if (cfg->fc_nlinfo.nlh &&
1855 !(cfg->fc_nlinfo.nlh->nlmsg_flags & NLM_F_CREATE)) {
d71314b4 1856 table = fib6_get_table(net, cfg->fc_table);
38308473 1857 if (!table) {
f3213831 1858 pr_warn("NLM_F_CREATE should be specified when creating new route\n");
d71314b4
MV
1859 table = fib6_new_table(net, cfg->fc_table);
1860 }
1861 } else {
1862 table = fib6_new_table(net, cfg->fc_table);
1863 }
38308473
DM
1864
1865 if (!table)
c71099ac 1866 goto out;
c71099ac 1867
ad706862
MKL
1868 rt = ip6_dst_alloc(net, NULL,
1869 (cfg->fc_flags & RTF_ADDRCONF) ? 0 : DST_NOCOUNT);
1da177e4 1870
38308473 1871 if (!rt) {
1da177e4
LT
1872 err = -ENOMEM;
1873 goto out;
1874 }
1875
1716a961
G
1876 if (cfg->fc_flags & RTF_EXPIRES)
1877 rt6_set_expires(rt, jiffies +
1878 clock_t_to_jiffies(cfg->fc_expires));
1879 else
1880 rt6_clean_expires(rt);
1da177e4 1881
86872cb5
TG
1882 if (cfg->fc_protocol == RTPROT_UNSPEC)
1883 cfg->fc_protocol = RTPROT_BOOT;
1884 rt->rt6i_protocol = cfg->fc_protocol;
1885
1886 addr_type = ipv6_addr_type(&cfg->fc_dst);
1da177e4
LT
1887
1888 if (addr_type & IPV6_ADDR_MULTICAST)
d8d1f30b 1889 rt->dst.input = ip6_mc_input;
ab79ad14
1890 else if (cfg->fc_flags & RTF_LOCAL)
1891 rt->dst.input = ip6_input;
1da177e4 1892 else
d8d1f30b 1893 rt->dst.input = ip6_forward;
1da177e4 1894
d8d1f30b 1895 rt->dst.output = ip6_output;
1da177e4 1896
19e42e45
RP
1897 if (cfg->fc_encap) {
1898 struct lwtunnel_state *lwtstate;
1899
30357d7d 1900 err = lwtunnel_build_state(cfg->fc_encap_type,
127eb7cd
TH
1901 cfg->fc_encap, AF_INET6, cfg,
1902 &lwtstate);
19e42e45
RP
1903 if (err)
1904 goto out;
61adedf3
JB
1905 rt->dst.lwtstate = lwtstate_get(lwtstate);
1906 if (lwtunnel_output_redirect(rt->dst.lwtstate)) {
1907 rt->dst.lwtstate->orig_output = rt->dst.output;
1908 rt->dst.output = lwtunnel_output;
25368623 1909 }
61adedf3
JB
1910 if (lwtunnel_input_redirect(rt->dst.lwtstate)) {
1911 rt->dst.lwtstate->orig_input = rt->dst.input;
1912 rt->dst.input = lwtunnel_input;
25368623 1913 }
19e42e45
RP
1914 }
1915
86872cb5
TG
1916 ipv6_addr_prefix(&rt->rt6i_dst.addr, &cfg->fc_dst, cfg->fc_dst_len);
1917 rt->rt6i_dst.plen = cfg->fc_dst_len;
afc4eef8 1918 if (rt->rt6i_dst.plen == 128)
e5fd387a 1919 rt->dst.flags |= DST_HOST;
e5fd387a 1920
1da177e4 1921#ifdef CONFIG_IPV6_SUBTREES
86872cb5
TG
1922 ipv6_addr_prefix(&rt->rt6i_src.addr, &cfg->fc_src, cfg->fc_src_len);
1923 rt->rt6i_src.plen = cfg->fc_src_len;
1da177e4
LT
1924#endif
1925
86872cb5 1926 rt->rt6i_metric = cfg->fc_metric;
1da177e4
LT
1927
1928 /* We cannot add true routes via loopback here,
1929 they would result in kernel looping; promote them to reject routes
1930 */
86872cb5 1931 if ((cfg->fc_flags & RTF_REJECT) ||
38308473
DM
1932 (dev && (dev->flags & IFF_LOOPBACK) &&
1933 !(addr_type & IPV6_ADDR_LOOPBACK) &&
1934 !(cfg->fc_flags & RTF_LOCAL))) {
1da177e4 1935 /* hold loopback dev/idev if we haven't done so. */
5578689a 1936 if (dev != net->loopback_dev) {
1da177e4
LT
1937 if (dev) {
1938 dev_put(dev);
1939 in6_dev_put(idev);
1940 }
5578689a 1941 dev = net->loopback_dev;
1da177e4
LT
1942 dev_hold(dev);
1943 idev = in6_dev_get(dev);
1944 if (!idev) {
1945 err = -ENODEV;
1946 goto out;
1947 }
1948 }
1da177e4 1949 rt->rt6i_flags = RTF_REJECT|RTF_NONEXTHOP;
ef2c7d7b
ND
1950 switch (cfg->fc_type) {
1951 case RTN_BLACKHOLE:
1952 rt->dst.error = -EINVAL;
ede2059d 1953 rt->dst.output = dst_discard_out;
7150aede 1954 rt->dst.input = dst_discard;
ef2c7d7b
ND
1955 break;
1956 case RTN_PROHIBIT:
1957 rt->dst.error = -EACCES;
7150aede
K
1958 rt->dst.output = ip6_pkt_prohibit_out;
1959 rt->dst.input = ip6_pkt_prohibit;
ef2c7d7b 1960 break;
b4949ab2 1961 case RTN_THROW:
0315e382 1962 case RTN_UNREACHABLE:
ef2c7d7b 1963 default:
7150aede 1964 rt->dst.error = (cfg->fc_type == RTN_THROW) ? -EAGAIN
0315e382
NF
1965 : (cfg->fc_type == RTN_UNREACHABLE)
1966 ? -EHOSTUNREACH : -ENETUNREACH;
7150aede
K
1967 rt->dst.output = ip6_pkt_discard_out;
1968 rt->dst.input = ip6_pkt_discard;
ef2c7d7b
ND
1969 break;
1970 }
1da177e4
LT
1971 goto install_route;
1972 }
1973
86872cb5 1974 if (cfg->fc_flags & RTF_GATEWAY) {
b71d1d42 1975 const struct in6_addr *gw_addr;
1da177e4
LT
1976 int gwa_type;
1977
86872cb5 1978 gw_addr = &cfg->fc_gateway;
330567b7 1979 gwa_type = ipv6_addr_type(gw_addr);
48ed7b26
FW
1980
1981 /* if gw_addr is local we will fail to detect this in case
1982 * address is still TENTATIVE (DAD in progress). rt6_lookup()
1983 * will return already-added prefix route via interface that
1984 * prefix route was assigned to, which might be non-loopback.
1985 */
1986 err = -EINVAL;
330567b7
FW
1987 if (ipv6_chk_addr_and_flags(net, gw_addr,
1988 gwa_type & IPV6_ADDR_LINKLOCAL ?
1989 dev : NULL, 0, 0))
48ed7b26
FW
1990 goto out;
1991
4e3fd7a0 1992 rt->rt6i_gateway = *gw_addr;
1da177e4
LT
1993
1994 if (gwa_type != (IPV6_ADDR_LINKLOCAL|IPV6_ADDR_UNICAST)) {
8c14586f 1995 struct rt6_info *grt = NULL;
1da177e4
LT
1996
1997 /* IPv6 strictly inhibits using not link-local
1998 addresses as nexthop address.
1999 Otherwise, router will not able to send redirects.
2000 It is very good, but in some (rare!) circumstances
2001 (SIT, PtP, NBMA NOARP links) it is handy to allow
2002 some exceptions. --ANK
96d5822c
EN
2003 We allow IPv4-mapped nexthops to support RFC4798-type
2004 addressing
1da177e4 2005 */
96d5822c
EN
2006 if (!(gwa_type & (IPV6_ADDR_UNICAST |
2007 IPV6_ADDR_MAPPED)))
1da177e4
LT
2008 goto out;
2009
a435a07f 2010 if (cfg->fc_table) {
8c14586f
DA
2011 grt = ip6_nh_lookup_table(net, cfg, gw_addr);
2012
a435a07f
VB
2013 if (grt) {
2014 if (grt->rt6i_flags & RTF_GATEWAY ||
2015 (dev && dev != grt->dst.dev)) {
2016 ip6_rt_put(grt);
2017 grt = NULL;
2018 }
2019 }
2020 }
2021
8c14586f
DA
2022 if (!grt)
2023 grt = rt6_lookup(net, gw_addr, NULL,
2024 cfg->fc_ifindex, 1);
1da177e4
LT
2025
2026 err = -EHOSTUNREACH;
38308473 2027 if (!grt)
1da177e4
LT
2028 goto out;
2029 if (dev) {
d1918542 2030 if (dev != grt->dst.dev) {
94e187c0 2031 ip6_rt_put(grt);
1da177e4
LT
2032 goto out;
2033 }
2034 } else {
d1918542 2035 dev = grt->dst.dev;
1da177e4
LT
2036 idev = grt->rt6i_idev;
2037 dev_hold(dev);
2038 in6_dev_hold(grt->rt6i_idev);
2039 }
38308473 2040 if (!(grt->rt6i_flags & RTF_GATEWAY))
1da177e4 2041 err = 0;
94e187c0 2042 ip6_rt_put(grt);
1da177e4
LT
2043
2044 if (err)
2045 goto out;
2046 }
2047 err = -EINVAL;
38308473 2048 if (!dev || (dev->flags & IFF_LOOPBACK))
1da177e4
LT
2049 goto out;
2050 }
2051
2052 err = -ENODEV;
38308473 2053 if (!dev)
1da177e4
LT
2054 goto out;
2055
c3968a85
DW
2056 if (!ipv6_addr_any(&cfg->fc_prefsrc)) {
2057 if (!ipv6_chk_addr(net, &cfg->fc_prefsrc, dev, 0)) {
2058 err = -EINVAL;
2059 goto out;
2060 }
4e3fd7a0 2061 rt->rt6i_prefsrc.addr = cfg->fc_prefsrc;
c3968a85
DW
2062 rt->rt6i_prefsrc.plen = 128;
2063 } else
2064 rt->rt6i_prefsrc.plen = 0;
2065
86872cb5 2066 rt->rt6i_flags = cfg->fc_flags;
1da177e4
LT
2067
2068install_route:
d8d1f30b 2069 rt->dst.dev = dev;
1da177e4 2070 rt->rt6i_idev = idev;
c71099ac 2071 rt->rt6i_table = table;
63152fc0 2072
c346dca1 2073 cfg->fc_nlinfo.nl_net = dev_net(dev);
63152fc0 2074
8c5b83f0 2075 return rt;
6b9ea5a6
RP
2076out:
2077 if (dev)
2078 dev_put(dev);
2079 if (idev)
2080 in6_dev_put(idev);
2081 if (rt)
2082 dst_free(&rt->dst);
2083
8c5b83f0 2084 return ERR_PTR(err);
6b9ea5a6
RP
2085}
2086
2087int ip6_route_add(struct fib6_config *cfg)
2088{
2089 struct mx6_config mxc = { .mx = NULL, };
8c5b83f0 2090 struct rt6_info *rt;
6b9ea5a6
RP
2091 int err;
2092
8c5b83f0
RP
2093 rt = ip6_route_info_create(cfg);
2094 if (IS_ERR(rt)) {
2095 err = PTR_ERR(rt);
2096 rt = NULL;
6b9ea5a6 2097 goto out;
8c5b83f0 2098 }
6b9ea5a6 2099
e715b6d3
FW
2100 err = ip6_convert_metrics(&mxc, cfg);
2101 if (err)
2102 goto out;
1da177e4 2103
e715b6d3
FW
2104 err = __ip6_ins_rt(rt, &cfg->fc_nlinfo, &mxc);
2105
2106 kfree(mxc.mx);
6b9ea5a6 2107
e715b6d3 2108 return err;
1da177e4 2109out:
1da177e4 2110 if (rt)
d8d1f30b 2111 dst_free(&rt->dst);
6b9ea5a6 2112
1da177e4
LT
2113 return err;
2114}
2115
86872cb5 2116static int __ip6_del_rt(struct rt6_info *rt, struct nl_info *info)
1da177e4
LT
2117{
2118 int err;
c71099ac 2119 struct fib6_table *table;
d1918542 2120 struct net *net = dev_net(rt->dst.dev);
1da177e4 2121
8e3d5be7
MKL
2122 if (rt == net->ipv6.ip6_null_entry ||
2123 rt->dst.flags & DST_NOCACHE) {
6825a26c
G
2124 err = -ENOENT;
2125 goto out;
2126 }
6c813a72 2127
c71099ac
TG
2128 table = rt->rt6i_table;
2129 write_lock_bh(&table->tb6_lock);
86872cb5 2130 err = fib6_del(rt, info);
c71099ac 2131 write_unlock_bh(&table->tb6_lock);
1da177e4 2132
6825a26c 2133out:
94e187c0 2134 ip6_rt_put(rt);
1da177e4
LT
2135 return err;
2136}
2137
e0a1ad73
TG
2138int ip6_del_rt(struct rt6_info *rt)
2139{
4d1169c1 2140 struct nl_info info = {
d1918542 2141 .nl_net = dev_net(rt->dst.dev),
4d1169c1 2142 };
528c4ceb 2143 return __ip6_del_rt(rt, &info);
e0a1ad73
TG
2144}
2145
0ae81335
DA
2146static int __ip6_del_rt_siblings(struct rt6_info *rt, struct fib6_config *cfg)
2147{
2148 struct nl_info *info = &cfg->fc_nlinfo;
2149 struct fib6_table *table;
2150 int err;
2151
2152 table = rt->rt6i_table;
2153 write_lock_bh(&table->tb6_lock);
2154
2155 if (rt->rt6i_nsiblings && cfg->fc_delete_all_nh) {
2156 struct rt6_info *sibling, *next_sibling;
2157
2158 list_for_each_entry_safe(sibling, next_sibling,
2159 &rt->rt6i_siblings,
2160 rt6i_siblings) {
2161 err = fib6_del(sibling, info);
2162 if (err)
2163 goto out;
2164 }
2165 }
2166
2167 err = fib6_del(rt, info);
2168out:
2169 write_unlock_bh(&table->tb6_lock);
2170 ip6_rt_put(rt);
2171 return err;
2172}
2173
86872cb5 2174static int ip6_route_del(struct fib6_config *cfg)
1da177e4 2175{
c71099ac 2176 struct fib6_table *table;
1da177e4
LT
2177 struct fib6_node *fn;
2178 struct rt6_info *rt;
2179 int err = -ESRCH;
2180
5578689a 2181 table = fib6_get_table(cfg->fc_nlinfo.nl_net, cfg->fc_table);
38308473 2182 if (!table)
c71099ac
TG
2183 return err;
2184
2185 read_lock_bh(&table->tb6_lock);
1da177e4 2186
c71099ac 2187 fn = fib6_locate(&table->tb6_root,
86872cb5
TG
2188 &cfg->fc_dst, cfg->fc_dst_len,
2189 &cfg->fc_src, cfg->fc_src_len);
1ab1457c 2190
1da177e4 2191 if (fn) {
d8d1f30b 2192 for (rt = fn->leaf; rt; rt = rt->dst.rt6_next) {
1f56a01f
MKL
2193 if ((rt->rt6i_flags & RTF_CACHE) &&
2194 !(cfg->fc_flags & RTF_CACHE))
2195 continue;
86872cb5 2196 if (cfg->fc_ifindex &&
d1918542
DM
2197 (!rt->dst.dev ||
2198 rt->dst.dev->ifindex != cfg->fc_ifindex))
1da177e4 2199 continue;
86872cb5
TG
2200 if (cfg->fc_flags & RTF_GATEWAY &&
2201 !ipv6_addr_equal(&cfg->fc_gateway, &rt->rt6i_gateway))
1da177e4 2202 continue;
86872cb5 2203 if (cfg->fc_metric && cfg->fc_metric != rt->rt6i_metric)
1da177e4 2204 continue;
c2ed1880
M
2205 if (cfg->fc_protocol && cfg->fc_protocol != rt->rt6i_protocol)
2206 continue;
d8d1f30b 2207 dst_hold(&rt->dst);
c71099ac 2208 read_unlock_bh(&table->tb6_lock);
1da177e4 2209
0ae81335
DA
2210 /* if gateway was specified only delete the one hop */
2211 if (cfg->fc_flags & RTF_GATEWAY)
2212 return __ip6_del_rt(rt, &cfg->fc_nlinfo);
2213
2214 return __ip6_del_rt_siblings(rt, cfg);
1da177e4
LT
2215 }
2216 }
c71099ac 2217 read_unlock_bh(&table->tb6_lock);
1da177e4
LT
2218
2219 return err;
2220}
2221
6700c270 2222static void rt6_do_redirect(struct dst_entry *dst, struct sock *sk, struct sk_buff *skb)
a6279458 2223{
a6279458 2224 struct netevent_redirect netevent;
e8599ff4 2225 struct rt6_info *rt, *nrt = NULL;
e8599ff4
DM
2226 struct ndisc_options ndopts;
2227 struct inet6_dev *in6_dev;
2228 struct neighbour *neigh;
71bcdba0 2229 struct rd_msg *msg;
6e157b6a
DM
2230 int optlen, on_link;
2231 u8 *lladdr;
e8599ff4 2232
29a3cad5 2233 optlen = skb_tail_pointer(skb) - skb_transport_header(skb);
71bcdba0 2234 optlen -= sizeof(*msg);
e8599ff4
DM
2235
2236 if (optlen < 0) {
6e157b6a 2237 net_dbg_ratelimited("rt6_do_redirect: packet too short\n");
e8599ff4
DM
2238 return;
2239 }
2240
71bcdba0 2241 msg = (struct rd_msg *)icmp6_hdr(skb);
e8599ff4 2242
71bcdba0 2243 if (ipv6_addr_is_multicast(&msg->dest)) {
6e157b6a 2244 net_dbg_ratelimited("rt6_do_redirect: destination address is multicast\n");
e8599ff4
DM
2245 return;
2246 }
2247
6e157b6a 2248 on_link = 0;
71bcdba0 2249 if (ipv6_addr_equal(&msg->dest, &msg->target)) {
e8599ff4 2250 on_link = 1;
71bcdba0 2251 } else if (ipv6_addr_type(&msg->target) !=
e8599ff4 2252 (IPV6_ADDR_UNICAST|IPV6_ADDR_LINKLOCAL)) {
6e157b6a 2253 net_dbg_ratelimited("rt6_do_redirect: target address is not link-local unicast\n");
e8599ff4
DM
2254 return;
2255 }
2256
2257 in6_dev = __in6_dev_get(skb->dev);
2258 if (!in6_dev)
2259 return;
2260 if (in6_dev->cnf.forwarding || !in6_dev->cnf.accept_redirects)
2261 return;
2262
2263 /* RFC2461 8.1:
2264 * The IP source address of the Redirect MUST be the same as the current
2265 * first-hop router for the specified ICMP Destination Address.
2266 */
2267
f997c55c 2268 if (!ndisc_parse_options(skb->dev, msg->opt, optlen, &ndopts)) {
e8599ff4
DM
2269 net_dbg_ratelimited("rt6_redirect: invalid ND options\n");
2270 return;
2271 }
6e157b6a
DM
2272
2273 lladdr = NULL;
e8599ff4
DM
2274 if (ndopts.nd_opts_tgt_lladdr) {
2275 lladdr = ndisc_opt_addr_data(ndopts.nd_opts_tgt_lladdr,
2276 skb->dev);
2277 if (!lladdr) {
2278 net_dbg_ratelimited("rt6_redirect: invalid link-layer address length\n");
2279 return;
2280 }
2281 }
2282
6e157b6a 2283 rt = (struct rt6_info *) dst;
ec13ad1d 2284 if (rt->rt6i_flags & RTF_REJECT) {
6e157b6a 2285 net_dbg_ratelimited("rt6_redirect: source isn't a valid nexthop for redirect target\n");
e8599ff4 2286 return;
6e157b6a 2287 }
e8599ff4 2288
6e157b6a
DM
2289 /* Redirect received -> path was valid.
2290 * Look, redirects are sent only in response to data packets,
2291 * so that this nexthop apparently is reachable. --ANK
2292 */
2293 dst_confirm(&rt->dst);
a6279458 2294
71bcdba0 2295 neigh = __neigh_lookup(&nd_tbl, &msg->target, skb->dev, 1);
6e157b6a
DM
2296 if (!neigh)
2297 return;
a6279458 2298
1da177e4
LT
2299 /*
2300 * We have finally decided to accept it.
2301 */
2302
f997c55c 2303 ndisc_update(skb->dev, neigh, lladdr, NUD_STALE,
1da177e4
LT
2304 NEIGH_UPDATE_F_WEAK_OVERRIDE|
2305 NEIGH_UPDATE_F_OVERRIDE|
2306 (on_link ? 0 : (NEIGH_UPDATE_F_OVERRIDE_ISROUTER|
f997c55c
AA
2307 NEIGH_UPDATE_F_ISROUTER)),
2308 NDISC_REDIRECT, &ndopts);
1da177e4 2309
83a09abd 2310 nrt = ip6_rt_cache_alloc(rt, &msg->dest, NULL);
38308473 2311 if (!nrt)
1da177e4
LT
2312 goto out;
2313
2314 nrt->rt6i_flags = RTF_GATEWAY|RTF_UP|RTF_DYNAMIC|RTF_CACHE;
2315 if (on_link)
2316 nrt->rt6i_flags &= ~RTF_GATEWAY;
2317
4e3fd7a0 2318 nrt->rt6i_gateway = *(struct in6_addr *)neigh->primary_key;
1da177e4 2319
40e22e8f 2320 if (ip6_ins_rt(nrt))
1da177e4
LT
2321 goto out;
2322
d8d1f30b
CG
2323 netevent.old = &rt->dst;
2324 netevent.new = &nrt->dst;
71bcdba0 2325 netevent.daddr = &msg->dest;
60592833 2326 netevent.neigh = neigh;
8d71740c
TT
2327 call_netevent_notifiers(NETEVENT_REDIRECT, &netevent);
2328
38308473 2329 if (rt->rt6i_flags & RTF_CACHE) {
6e157b6a 2330 rt = (struct rt6_info *) dst_clone(&rt->dst);
e0a1ad73 2331 ip6_del_rt(rt);
1da177e4
LT
2332 }
2333
2334out:
e8599ff4 2335 neigh_release(neigh);
6e157b6a
DM
2336}
2337
1da177e4
LT
2338/*
2339 * Misc support functions
2340 */
2341
4b32b5ad
MKL
2342static void rt6_set_from(struct rt6_info *rt, struct rt6_info *from)
2343{
2344 BUG_ON(from->dst.from);
2345
2346 rt->rt6i_flags &= ~RTF_EXPIRES;
2347 dst_hold(&from->dst);
2348 rt->dst.from = &from->dst;
2349 dst_init_metrics(&rt->dst, dst_metrics_ptr(&from->dst), true);
2350}
2351
83a09abd
MKL
2352static void ip6_rt_copy_init(struct rt6_info *rt, struct rt6_info *ort)
2353{
2354 rt->dst.input = ort->dst.input;
2355 rt->dst.output = ort->dst.output;
2356 rt->rt6i_dst = ort->rt6i_dst;
2357 rt->dst.error = ort->dst.error;
2358 rt->rt6i_idev = ort->rt6i_idev;
2359 if (rt->rt6i_idev)
2360 in6_dev_hold(rt->rt6i_idev);
2361 rt->dst.lastuse = jiffies;
2362 rt->rt6i_gateway = ort->rt6i_gateway;
2363 rt->rt6i_flags = ort->rt6i_flags;
2364 rt6_set_from(rt, ort);
2365 rt->rt6i_metric = ort->rt6i_metric;
1da177e4 2366#ifdef CONFIG_IPV6_SUBTREES
83a09abd 2367 rt->rt6i_src = ort->rt6i_src;
1da177e4 2368#endif
83a09abd
MKL
2369 rt->rt6i_prefsrc = ort->rt6i_prefsrc;
2370 rt->rt6i_table = ort->rt6i_table;
61adedf3 2371 rt->dst.lwtstate = lwtstate_get(ort->dst.lwtstate);
1da177e4
LT
2372}
2373
70ceb4f5 2374#ifdef CONFIG_IPV6_ROUTE_INFO
efa2cea0 2375static struct rt6_info *rt6_get_route_info(struct net *net,
b71d1d42 2376 const struct in6_addr *prefix, int prefixlen,
830218c1
DA
2377 const struct in6_addr *gwaddr,
2378 struct net_device *dev)
70ceb4f5 2379{
830218c1
DA
2380 u32 tb_id = l3mdev_fib_table(dev) ? : RT6_TABLE_INFO;
2381 int ifindex = dev->ifindex;
70ceb4f5
YH
2382 struct fib6_node *fn;
2383 struct rt6_info *rt = NULL;
c71099ac
TG
2384 struct fib6_table *table;
2385
830218c1 2386 table = fib6_get_table(net, tb_id);
38308473 2387 if (!table)
c71099ac 2388 return NULL;
70ceb4f5 2389
5744dd9b 2390 read_lock_bh(&table->tb6_lock);
67ba4152 2391 fn = fib6_locate(&table->tb6_root, prefix, prefixlen, NULL, 0);
70ceb4f5
YH
2392 if (!fn)
2393 goto out;
2394
d8d1f30b 2395 for (rt = fn->leaf; rt; rt = rt->dst.rt6_next) {
d1918542 2396 if (rt->dst.dev->ifindex != ifindex)
70ceb4f5
YH
2397 continue;
2398 if ((rt->rt6i_flags & (RTF_ROUTEINFO|RTF_GATEWAY)) != (RTF_ROUTEINFO|RTF_GATEWAY))
2399 continue;
2400 if (!ipv6_addr_equal(&rt->rt6i_gateway, gwaddr))
2401 continue;
d8d1f30b 2402 dst_hold(&rt->dst);
70ceb4f5
YH
2403 break;
2404 }
2405out:
5744dd9b 2406 read_unlock_bh(&table->tb6_lock);
70ceb4f5
YH
2407 return rt;
2408}
2409
efa2cea0 2410static struct rt6_info *rt6_add_route_info(struct net *net,
b71d1d42 2411 const struct in6_addr *prefix, int prefixlen,
830218c1
DA
2412 const struct in6_addr *gwaddr,
2413 struct net_device *dev,
95c96174 2414 unsigned int pref)
70ceb4f5 2415{
86872cb5 2416 struct fib6_config cfg = {
238fc7ea 2417 .fc_metric = IP6_RT_PRIO_USER,
830218c1 2418 .fc_ifindex = dev->ifindex,
86872cb5
TG
2419 .fc_dst_len = prefixlen,
2420 .fc_flags = RTF_GATEWAY | RTF_ADDRCONF | RTF_ROUTEINFO |
2421 RTF_UP | RTF_PREF(pref),
15e47304 2422 .fc_nlinfo.portid = 0,
efa2cea0
DL
2423 .fc_nlinfo.nlh = NULL,
2424 .fc_nlinfo.nl_net = net,
86872cb5
TG
2425 };
2426
830218c1 2427 cfg.fc_table = l3mdev_fib_table(dev) ? : RT6_TABLE_INFO,
4e3fd7a0
AD
2428 cfg.fc_dst = *prefix;
2429 cfg.fc_gateway = *gwaddr;
70ceb4f5 2430
e317da96
YH
2431 /* We should treat it as a default route if prefix length is 0. */
2432 if (!prefixlen)
86872cb5 2433 cfg.fc_flags |= RTF_DEFAULT;
70ceb4f5 2434
86872cb5 2435 ip6_route_add(&cfg);
70ceb4f5 2436
830218c1 2437 return rt6_get_route_info(net, prefix, prefixlen, gwaddr, dev);
70ceb4f5
YH
2438}
2439#endif
2440
b71d1d42 2441struct rt6_info *rt6_get_dflt_router(const struct in6_addr *addr, struct net_device *dev)
1ab1457c 2442{
830218c1 2443 u32 tb_id = l3mdev_fib_table(dev) ? : RT6_TABLE_DFLT;
1da177e4 2444 struct rt6_info *rt;
c71099ac 2445 struct fib6_table *table;
1da177e4 2446
830218c1 2447 table = fib6_get_table(dev_net(dev), tb_id);
38308473 2448 if (!table)
c71099ac 2449 return NULL;
1da177e4 2450
5744dd9b 2451 read_lock_bh(&table->tb6_lock);
67ba4152 2452 for (rt = table->tb6_root.leaf; rt; rt = rt->dst.rt6_next) {
d1918542 2453 if (dev == rt->dst.dev &&
045927ff 2454 ((rt->rt6i_flags & (RTF_ADDRCONF | RTF_DEFAULT)) == (RTF_ADDRCONF | RTF_DEFAULT)) &&
1da177e4
LT
2455 ipv6_addr_equal(&rt->rt6i_gateway, addr))
2456 break;
2457 }
2458 if (rt)
d8d1f30b 2459 dst_hold(&rt->dst);
5744dd9b 2460 read_unlock_bh(&table->tb6_lock);
1da177e4
LT
2461 return rt;
2462}
2463
b71d1d42 2464struct rt6_info *rt6_add_dflt_router(const struct in6_addr *gwaddr,
ebacaaa0
YH
2465 struct net_device *dev,
2466 unsigned int pref)
1da177e4 2467{
86872cb5 2468 struct fib6_config cfg = {
ca254490 2469 .fc_table = l3mdev_fib_table(dev) ? : RT6_TABLE_DFLT,
238fc7ea 2470 .fc_metric = IP6_RT_PRIO_USER,
86872cb5
TG
2471 .fc_ifindex = dev->ifindex,
2472 .fc_flags = RTF_GATEWAY | RTF_ADDRCONF | RTF_DEFAULT |
2473 RTF_UP | RTF_EXPIRES | RTF_PREF(pref),
15e47304 2474 .fc_nlinfo.portid = 0,
5578689a 2475 .fc_nlinfo.nlh = NULL,
c346dca1 2476 .fc_nlinfo.nl_net = dev_net(dev),
86872cb5 2477 };
1da177e4 2478
4e3fd7a0 2479 cfg.fc_gateway = *gwaddr;
1da177e4 2480
830218c1
DA
2481 if (!ip6_route_add(&cfg)) {
2482 struct fib6_table *table;
2483
2484 table = fib6_get_table(dev_net(dev), cfg.fc_table);
2485 if (table)
2486 table->flags |= RT6_TABLE_HAS_DFLT_ROUTER;
2487 }
1da177e4 2488
1da177e4
LT
2489 return rt6_get_dflt_router(gwaddr, dev);
2490}
2491
830218c1 2492static void __rt6_purge_dflt_routers(struct fib6_table *table)
1da177e4
LT
2493{
2494 struct rt6_info *rt;
2495
2496restart:
c71099ac 2497 read_lock_bh(&table->tb6_lock);
d8d1f30b 2498 for (rt = table->tb6_root.leaf; rt; rt = rt->dst.rt6_next) {
3e8b0ac3
LC
2499 if (rt->rt6i_flags & (RTF_DEFAULT | RTF_ADDRCONF) &&
2500 (!rt->rt6i_idev || rt->rt6i_idev->cnf.accept_ra != 2)) {
d8d1f30b 2501 dst_hold(&rt->dst);
c71099ac 2502 read_unlock_bh(&table->tb6_lock);
e0a1ad73 2503 ip6_del_rt(rt);
1da177e4
LT
2504 goto restart;
2505 }
2506 }
c71099ac 2507 read_unlock_bh(&table->tb6_lock);
830218c1
DA
2508
2509 table->flags &= ~RT6_TABLE_HAS_DFLT_ROUTER;
2510}
2511
2512void rt6_purge_dflt_routers(struct net *net)
2513{
2514 struct fib6_table *table;
2515 struct hlist_head *head;
2516 unsigned int h;
2517
2518 rcu_read_lock();
2519
2520 for (h = 0; h < FIB6_TABLE_HASHSZ; h++) {
2521 head = &net->ipv6.fib_table_hash[h];
2522 hlist_for_each_entry_rcu(table, head, tb6_hlist) {
2523 if (table->flags & RT6_TABLE_HAS_DFLT_ROUTER)
2524 __rt6_purge_dflt_routers(table);
2525 }
2526 }
2527
2528 rcu_read_unlock();
1da177e4
LT
2529}
2530
5578689a
DL
2531static void rtmsg_to_fib6_config(struct net *net,
2532 struct in6_rtmsg *rtmsg,
86872cb5
TG
2533 struct fib6_config *cfg)
2534{
2535 memset(cfg, 0, sizeof(*cfg));
2536
ca254490
DA
2537 cfg->fc_table = l3mdev_fib_table_by_index(net, rtmsg->rtmsg_ifindex) ?
2538 : RT6_TABLE_MAIN;
86872cb5
TG
2539 cfg->fc_ifindex = rtmsg->rtmsg_ifindex;
2540 cfg->fc_metric = rtmsg->rtmsg_metric;
2541 cfg->fc_expires = rtmsg->rtmsg_info;
2542 cfg->fc_dst_len = rtmsg->rtmsg_dst_len;
2543 cfg->fc_src_len = rtmsg->rtmsg_src_len;
2544 cfg->fc_flags = rtmsg->rtmsg_flags;
2545
5578689a 2546 cfg->fc_nlinfo.nl_net = net;
f1243c2d 2547
4e3fd7a0
AD
2548 cfg->fc_dst = rtmsg->rtmsg_dst;
2549 cfg->fc_src = rtmsg->rtmsg_src;
2550 cfg->fc_gateway = rtmsg->rtmsg_gateway;
86872cb5
TG
2551}
2552
5578689a 2553int ipv6_route_ioctl(struct net *net, unsigned int cmd, void __user *arg)
1da177e4 2554{
86872cb5 2555 struct fib6_config cfg;
1da177e4
LT
2556 struct in6_rtmsg rtmsg;
2557 int err;
2558
67ba4152 2559 switch (cmd) {
1da177e4
LT
2560 case SIOCADDRT: /* Add a route */
2561 case SIOCDELRT: /* Delete a route */
af31f412 2562 if (!ns_capable(net->user_ns, CAP_NET_ADMIN))
1da177e4
LT
2563 return -EPERM;
2564 err = copy_from_user(&rtmsg, arg,
2565 sizeof(struct in6_rtmsg));
2566 if (err)
2567 return -EFAULT;
86872cb5 2568
5578689a 2569 rtmsg_to_fib6_config(net, &rtmsg, &cfg);
86872cb5 2570
1da177e4
LT
2571 rtnl_lock();
2572 switch (cmd) {
2573 case SIOCADDRT:
86872cb5 2574 err = ip6_route_add(&cfg);
1da177e4
LT
2575 break;
2576 case SIOCDELRT:
86872cb5 2577 err = ip6_route_del(&cfg);
1da177e4
LT
2578 break;
2579 default:
2580 err = -EINVAL;
2581 }
2582 rtnl_unlock();
2583
2584 return err;
3ff50b79 2585 }
1da177e4
LT
2586
2587 return -EINVAL;
2588}
2589
2590/*
2591 * Drop the packet on the floor
2592 */
2593
d5fdd6ba 2594static int ip6_pkt_drop(struct sk_buff *skb, u8 code, int ipstats_mib_noroutes)
1da177e4 2595{
612f09e8 2596 int type;
adf30907 2597 struct dst_entry *dst = skb_dst(skb);
612f09e8
YH
2598 switch (ipstats_mib_noroutes) {
2599 case IPSTATS_MIB_INNOROUTES:
0660e03f 2600 type = ipv6_addr_type(&ipv6_hdr(skb)->daddr);
45bb0060 2601 if (type == IPV6_ADDR_ANY) {
3bd653c8
DL
2602 IP6_INC_STATS(dev_net(dst->dev), ip6_dst_idev(dst),
2603 IPSTATS_MIB_INADDRERRORS);
612f09e8
YH
2604 break;
2605 }
2606 /* FALLTHROUGH */
2607 case IPSTATS_MIB_OUTNOROUTES:
3bd653c8
DL
2608 IP6_INC_STATS(dev_net(dst->dev), ip6_dst_idev(dst),
2609 ipstats_mib_noroutes);
612f09e8
YH
2610 break;
2611 }
3ffe533c 2612 icmpv6_send(skb, ICMPV6_DEST_UNREACH, code, 0);
1da177e4
LT
2613 kfree_skb(skb);
2614 return 0;
2615}
2616
9ce8ade0
TG
2617static int ip6_pkt_discard(struct sk_buff *skb)
2618{
612f09e8 2619 return ip6_pkt_drop(skb, ICMPV6_NOROUTE, IPSTATS_MIB_INNOROUTES);
9ce8ade0
TG
2620}
2621
ede2059d 2622static int ip6_pkt_discard_out(struct net *net, struct sock *sk, struct sk_buff *skb)
1da177e4 2623{
adf30907 2624 skb->dev = skb_dst(skb)->dev;
612f09e8 2625 return ip6_pkt_drop(skb, ICMPV6_NOROUTE, IPSTATS_MIB_OUTNOROUTES);
1da177e4
LT
2626}
2627
9ce8ade0
TG
2628static int ip6_pkt_prohibit(struct sk_buff *skb)
2629{
612f09e8 2630 return ip6_pkt_drop(skb, ICMPV6_ADM_PROHIBITED, IPSTATS_MIB_INNOROUTES);
9ce8ade0
TG
2631}
2632
ede2059d 2633static int ip6_pkt_prohibit_out(struct net *net, struct sock *sk, struct sk_buff *skb)
9ce8ade0 2634{
adf30907 2635 skb->dev = skb_dst(skb)->dev;
612f09e8 2636 return ip6_pkt_drop(skb, ICMPV6_ADM_PROHIBITED, IPSTATS_MIB_OUTNOROUTES);
9ce8ade0
TG
2637}
2638
1da177e4
LT
2639/*
2640 * Allocate a dst for local (unicast / anycast) address.
2641 */
2642
2643struct rt6_info *addrconf_dst_alloc(struct inet6_dev *idev,
2644 const struct in6_addr *addr,
8f031519 2645 bool anycast)
1da177e4 2646{
ca254490 2647 u32 tb_id;
c346dca1 2648 struct net *net = dev_net(idev->dev);
5f02ce24
DA
2649 struct net_device *dev = net->loopback_dev;
2650 struct rt6_info *rt;
2651
2652 /* use L3 Master device as loopback for host routes if device
2653 * is enslaved and address is not link local or multicast
2654 */
2655 if (!rt6_need_strict(addr))
2656 dev = l3mdev_master_dev_rcu(idev->dev) ? : dev;
2657
2658 rt = ip6_dst_alloc(net, dev, DST_NOCOUNT);
a3300ef4 2659 if (!rt)
1da177e4
LT
2660 return ERR_PTR(-ENOMEM);
2661
1da177e4
LT
2662 in6_dev_hold(idev);
2663
11d53b49 2664 rt->dst.flags |= DST_HOST;
d8d1f30b
CG
2665 rt->dst.input = ip6_input;
2666 rt->dst.output = ip6_output;
1da177e4 2667 rt->rt6i_idev = idev;
1da177e4 2668
94b5e0f9 2669 rt->rt6i_protocol = RTPROT_KERNEL;
1da177e4 2670 rt->rt6i_flags = RTF_UP | RTF_NONEXTHOP;
58c4fb86
YH
2671 if (anycast)
2672 rt->rt6i_flags |= RTF_ANYCAST;
2673 else
1da177e4 2674 rt->rt6i_flags |= RTF_LOCAL;
1da177e4 2675
550bab42 2676 rt->rt6i_gateway = *addr;
4e3fd7a0 2677 rt->rt6i_dst.addr = *addr;
1da177e4 2678 rt->rt6i_dst.plen = 128;
ca254490
DA
2679 tb_id = l3mdev_fib_table(idev->dev) ? : RT6_TABLE_LOCAL;
2680 rt->rt6i_table = fib6_get_table(net, tb_id);
8e3d5be7 2681 rt->dst.flags |= DST_NOCACHE;
1da177e4 2682
d8d1f30b 2683 atomic_set(&rt->dst.__refcnt, 1);
1da177e4
LT
2684
2685 return rt;
2686}
2687
c3968a85
DW
2688/* remove deleted ip from prefsrc entries */
2689struct arg_dev_net_ip {
2690 struct net_device *dev;
2691 struct net *net;
2692 struct in6_addr *addr;
2693};
2694
2695static int fib6_remove_prefsrc(struct rt6_info *rt, void *arg)
2696{
2697 struct net_device *dev = ((struct arg_dev_net_ip *)arg)->dev;
2698 struct net *net = ((struct arg_dev_net_ip *)arg)->net;
2699 struct in6_addr *addr = ((struct arg_dev_net_ip *)arg)->addr;
2700
d1918542 2701 if (((void *)rt->dst.dev == dev || !dev) &&
c3968a85
DW
2702 rt != net->ipv6.ip6_null_entry &&
2703 ipv6_addr_equal(addr, &rt->rt6i_prefsrc.addr)) {
2704 /* remove prefsrc entry */
2705 rt->rt6i_prefsrc.plen = 0;
2706 }
2707 return 0;
2708}
2709
2710void rt6_remove_prefsrc(struct inet6_ifaddr *ifp)
2711{
2712 struct net *net = dev_net(ifp->idev->dev);
2713 struct arg_dev_net_ip adni = {
2714 .dev = ifp->idev->dev,
2715 .net = net,
2716 .addr = &ifp->addr,
2717 };
0c3584d5 2718 fib6_clean_all(net, fib6_remove_prefsrc, &adni);
c3968a85
DW
2719}
2720
be7a010d
DJ
2721#define RTF_RA_ROUTER (RTF_ADDRCONF | RTF_DEFAULT | RTF_GATEWAY)
2722#define RTF_CACHE_GATEWAY (RTF_GATEWAY | RTF_CACHE)
2723
2724/* Remove routers and update dst entries when gateway turn into host. */
2725static int fib6_clean_tohost(struct rt6_info *rt, void *arg)
2726{
2727 struct in6_addr *gateway = (struct in6_addr *)arg;
2728
2729 if ((((rt->rt6i_flags & RTF_RA_ROUTER) == RTF_RA_ROUTER) ||
2730 ((rt->rt6i_flags & RTF_CACHE_GATEWAY) == RTF_CACHE_GATEWAY)) &&
2731 ipv6_addr_equal(gateway, &rt->rt6i_gateway)) {
2732 return -1;
2733 }
2734 return 0;
2735}
2736
2737void rt6_clean_tohost(struct net *net, struct in6_addr *gateway)
2738{
2739 fib6_clean_all(net, fib6_clean_tohost, gateway);
2740}
2741
8ed67789
DL
2742struct arg_dev_net {
2743 struct net_device *dev;
2744 struct net *net;
2745};
2746
a1a22c12 2747/* called with write lock held for table with rt */
1da177e4
LT
2748static int fib6_ifdown(struct rt6_info *rt, void *arg)
2749{
bc3ef660 2750 const struct arg_dev_net *adn = arg;
2751 const struct net_device *dev = adn->dev;
8ed67789 2752
d1918542 2753 if ((rt->dst.dev == dev || !dev) &&
a1a22c12
DA
2754 rt != adn->net->ipv6.ip6_null_entry &&
2755 (rt->rt6i_nsiblings == 0 ||
2756 !rt->rt6i_idev->cnf.ignore_routes_with_linkdown))
1da177e4 2757 return -1;
c159d30c 2758
1da177e4
LT
2759 return 0;
2760}
2761
f3db4851 2762void rt6_ifdown(struct net *net, struct net_device *dev)
1da177e4 2763{
8ed67789
DL
2764 struct arg_dev_net adn = {
2765 .dev = dev,
2766 .net = net,
2767 };
2768
0c3584d5 2769 fib6_clean_all(net, fib6_ifdown, &adn);
1e493d19 2770 icmp6_clean_all(fib6_ifdown, &adn);
e332bc67
EB
2771 if (dev)
2772 rt6_uncached_list_flush_dev(net, dev);
1da177e4
LT
2773}
2774
95c96174 2775struct rt6_mtu_change_arg {
1da177e4 2776 struct net_device *dev;
95c96174 2777 unsigned int mtu;
1da177e4
LT
2778};
2779
2780static int rt6_mtu_change_route(struct rt6_info *rt, void *p_arg)
2781{
2782 struct rt6_mtu_change_arg *arg = (struct rt6_mtu_change_arg *) p_arg;
2783 struct inet6_dev *idev;
2784
2785 /* In IPv6 pmtu discovery is not optional,
2786 so that RTAX_MTU lock cannot disable it.
2787 We still use this lock to block changes
2788 caused by addrconf/ndisc.
2789 */
2790
2791 idev = __in6_dev_get(arg->dev);
38308473 2792 if (!idev)
1da177e4
LT
2793 return 0;
2794
2795 /* For administrative MTU increase, there is no way to discover
2796 IPv6 PMTU increase, so PMTU increase should be updated here.
2797 Since RFC 1981 doesn't include administrative MTU increase
2798 update PMTU increase is a MUST. (i.e. jumbo frame)
2799 */
2800 /*
2801 If new MTU is less than route PMTU, this new MTU will be the
2802 lowest MTU in the path, update the route PMTU to reflect PMTU
2803 decreases; if new MTU is greater than route PMTU, and the
2804 old MTU is the lowest MTU in the path, update the route PMTU
2805 to reflect the increase. In this case if the other nodes' MTU
2806 also have the lowest MTU, TOO BIG MESSAGE will be lead to
67c408cf 2807 PMTU discovery.
1da177e4 2808 */
d1918542 2809 if (rt->dst.dev == arg->dev &&
fb56be83 2810 dst_metric_raw(&rt->dst, RTAX_MTU) &&
4b32b5ad
MKL
2811 !dst_metric_locked(&rt->dst, RTAX_MTU)) {
2812 if (rt->rt6i_flags & RTF_CACHE) {
2813 /* For RTF_CACHE with rt6i_pmtu == 0
2814 * (i.e. a redirected route),
2815 * the metrics of its rt->dst.from has already
2816 * been updated.
2817 */
2818 if (rt->rt6i_pmtu && rt->rt6i_pmtu > arg->mtu)
2819 rt->rt6i_pmtu = arg->mtu;
2820 } else if (dst_mtu(&rt->dst) >= arg->mtu ||
2821 (dst_mtu(&rt->dst) < arg->mtu &&
2822 dst_mtu(&rt->dst) == idev->cnf.mtu6)) {
2823 dst_metric_set(&rt->dst, RTAX_MTU, arg->mtu);
2824 }
566cfd8f 2825 }
1da177e4
LT
2826 return 0;
2827}
2828
95c96174 2829void rt6_mtu_change(struct net_device *dev, unsigned int mtu)
1da177e4 2830{
c71099ac
TG
2831 struct rt6_mtu_change_arg arg = {
2832 .dev = dev,
2833 .mtu = mtu,
2834 };
1da177e4 2835
0c3584d5 2836 fib6_clean_all(dev_net(dev), rt6_mtu_change_route, &arg);
1da177e4
LT
2837}
2838
ef7c79ed 2839static const struct nla_policy rtm_ipv6_policy[RTA_MAX+1] = {
5176f91e 2840 [RTA_GATEWAY] = { .len = sizeof(struct in6_addr) },
86872cb5 2841 [RTA_OIF] = { .type = NLA_U32 },
ab364a6f 2842 [RTA_IIF] = { .type = NLA_U32 },
86872cb5
TG
2843 [RTA_PRIORITY] = { .type = NLA_U32 },
2844 [RTA_METRICS] = { .type = NLA_NESTED },
51ebd318 2845 [RTA_MULTIPATH] = { .len = sizeof(struct rtnexthop) },
c78ba6d6 2846 [RTA_PREF] = { .type = NLA_U8 },
19e42e45
RP
2847 [RTA_ENCAP_TYPE] = { .type = NLA_U16 },
2848 [RTA_ENCAP] = { .type = NLA_NESTED },
32bc201e 2849 [RTA_EXPIRES] = { .type = NLA_U32 },
622ec2c9 2850 [RTA_UID] = { .type = NLA_U32 },
86872cb5
TG
2851};
2852
2853static int rtm_to_fib6_config(struct sk_buff *skb, struct nlmsghdr *nlh,
2854 struct fib6_config *cfg)
1da177e4 2855{
86872cb5
TG
2856 struct rtmsg *rtm;
2857 struct nlattr *tb[RTA_MAX+1];
c78ba6d6 2858 unsigned int pref;
86872cb5 2859 int err;
1da177e4 2860
86872cb5
TG
2861 err = nlmsg_parse(nlh, sizeof(*rtm), tb, RTA_MAX, rtm_ipv6_policy);
2862 if (err < 0)
2863 goto errout;
1da177e4 2864
86872cb5
TG
2865 err = -EINVAL;
2866 rtm = nlmsg_data(nlh);
2867 memset(cfg, 0, sizeof(*cfg));
2868
2869 cfg->fc_table = rtm->rtm_table;
2870 cfg->fc_dst_len = rtm->rtm_dst_len;
2871 cfg->fc_src_len = rtm->rtm_src_len;
2872 cfg->fc_flags = RTF_UP;
2873 cfg->fc_protocol = rtm->rtm_protocol;
ef2c7d7b 2874 cfg->fc_type = rtm->rtm_type;
86872cb5 2875
ef2c7d7b
ND
2876 if (rtm->rtm_type == RTN_UNREACHABLE ||
2877 rtm->rtm_type == RTN_BLACKHOLE ||
b4949ab2
ND
2878 rtm->rtm_type == RTN_PROHIBIT ||
2879 rtm->rtm_type == RTN_THROW)
86872cb5
TG
2880 cfg->fc_flags |= RTF_REJECT;
2881
ab79ad14
2882 if (rtm->rtm_type == RTN_LOCAL)
2883 cfg->fc_flags |= RTF_LOCAL;
2884
1f56a01f
MKL
2885 if (rtm->rtm_flags & RTM_F_CLONED)
2886 cfg->fc_flags |= RTF_CACHE;
2887
15e47304 2888 cfg->fc_nlinfo.portid = NETLINK_CB(skb).portid;
86872cb5 2889 cfg->fc_nlinfo.nlh = nlh;
3b1e0a65 2890 cfg->fc_nlinfo.nl_net = sock_net(skb->sk);
86872cb5
TG
2891
2892 if (tb[RTA_GATEWAY]) {
67b61f6c 2893 cfg->fc_gateway = nla_get_in6_addr(tb[RTA_GATEWAY]);
86872cb5 2894 cfg->fc_flags |= RTF_GATEWAY;
1da177e4 2895 }
86872cb5
TG
2896
2897 if (tb[RTA_DST]) {
2898 int plen = (rtm->rtm_dst_len + 7) >> 3;
2899
2900 if (nla_len(tb[RTA_DST]) < plen)
2901 goto errout;
2902
2903 nla_memcpy(&cfg->fc_dst, tb[RTA_DST], plen);
1da177e4 2904 }
86872cb5
TG
2905
2906 if (tb[RTA_SRC]) {
2907 int plen = (rtm->rtm_src_len + 7) >> 3;
2908
2909 if (nla_len(tb[RTA_SRC]) < plen)
2910 goto errout;
2911
2912 nla_memcpy(&cfg->fc_src, tb[RTA_SRC], plen);
1da177e4 2913 }
86872cb5 2914
c3968a85 2915 if (tb[RTA_PREFSRC])
67b61f6c 2916 cfg->fc_prefsrc = nla_get_in6_addr(tb[RTA_PREFSRC]);
c3968a85 2917
86872cb5
TG
2918 if (tb[RTA_OIF])
2919 cfg->fc_ifindex = nla_get_u32(tb[RTA_OIF]);
2920
2921 if (tb[RTA_PRIORITY])
2922 cfg->fc_metric = nla_get_u32(tb[RTA_PRIORITY]);
2923
2924 if (tb[RTA_METRICS]) {
2925 cfg->fc_mx = nla_data(tb[RTA_METRICS]);
2926 cfg->fc_mx_len = nla_len(tb[RTA_METRICS]);
1da177e4 2927 }
86872cb5
TG
2928
2929 if (tb[RTA_TABLE])
2930 cfg->fc_table = nla_get_u32(tb[RTA_TABLE]);
2931
51ebd318
ND
2932 if (tb[RTA_MULTIPATH]) {
2933 cfg->fc_mp = nla_data(tb[RTA_MULTIPATH]);
2934 cfg->fc_mp_len = nla_len(tb[RTA_MULTIPATH]);
9ed59592
DA
2935
2936 err = lwtunnel_valid_encap_type_attr(cfg->fc_mp,
2937 cfg->fc_mp_len);
2938 if (err < 0)
2939 goto errout;
51ebd318
ND
2940 }
2941
c78ba6d6
LR
2942 if (tb[RTA_PREF]) {
2943 pref = nla_get_u8(tb[RTA_PREF]);
2944 if (pref != ICMPV6_ROUTER_PREF_LOW &&
2945 pref != ICMPV6_ROUTER_PREF_HIGH)
2946 pref = ICMPV6_ROUTER_PREF_MEDIUM;
2947 cfg->fc_flags |= RTF_PREF(pref);
2948 }
2949
19e42e45
RP
2950 if (tb[RTA_ENCAP])
2951 cfg->fc_encap = tb[RTA_ENCAP];
2952
9ed59592 2953 if (tb[RTA_ENCAP_TYPE]) {
19e42e45
RP
2954 cfg->fc_encap_type = nla_get_u16(tb[RTA_ENCAP_TYPE]);
2955
9ed59592
DA
2956 err = lwtunnel_valid_encap_type(cfg->fc_encap_type);
2957 if (err < 0)
2958 goto errout;
2959 }
2960
32bc201e
XL
2961 if (tb[RTA_EXPIRES]) {
2962 unsigned long timeout = addrconf_timeout_fixup(nla_get_u32(tb[RTA_EXPIRES]), HZ);
2963
2964 if (addrconf_finite_timeout(timeout)) {
2965 cfg->fc_expires = jiffies_to_clock_t(timeout * HZ);
2966 cfg->fc_flags |= RTF_EXPIRES;
2967 }
2968 }
2969
86872cb5
TG
2970 err = 0;
2971errout:
2972 return err;
1da177e4
LT
2973}
2974
6b9ea5a6
RP
2975struct rt6_nh {
2976 struct rt6_info *rt6_info;
2977 struct fib6_config r_cfg;
2978 struct mx6_config mxc;
2979 struct list_head next;
2980};
2981
2982static void ip6_print_replace_route_err(struct list_head *rt6_nh_list)
2983{
2984 struct rt6_nh *nh;
2985
2986 list_for_each_entry(nh, rt6_nh_list, next) {
2987 pr_warn("IPV6: multipath route replace failed (check consistency of installed routes): %pI6 nexthop %pI6 ifi %d\n",
2988 &nh->r_cfg.fc_dst, &nh->r_cfg.fc_gateway,
2989 nh->r_cfg.fc_ifindex);
2990 }
2991}
2992
2993static int ip6_route_info_append(struct list_head *rt6_nh_list,
2994 struct rt6_info *rt, struct fib6_config *r_cfg)
2995{
2996 struct rt6_nh *nh;
2997 struct rt6_info *rtnh;
2998 int err = -EEXIST;
2999
3000 list_for_each_entry(nh, rt6_nh_list, next) {
3001 /* check if rt6_info already exists */
3002 rtnh = nh->rt6_info;
3003
3004 if (rtnh->dst.dev == rt->dst.dev &&
3005 rtnh->rt6i_idev == rt->rt6i_idev &&
3006 ipv6_addr_equal(&rtnh->rt6i_gateway,
3007 &rt->rt6i_gateway))
3008 return err;
3009 }
3010
3011 nh = kzalloc(sizeof(*nh), GFP_KERNEL);
3012 if (!nh)
3013 return -ENOMEM;
3014 nh->rt6_info = rt;
3015 err = ip6_convert_metrics(&nh->mxc, r_cfg);
3016 if (err) {
3017 kfree(nh);
3018 return err;
3019 }
3020 memcpy(&nh->r_cfg, r_cfg, sizeof(*r_cfg));
3021 list_add_tail(&nh->next, rt6_nh_list);
3022
3023 return 0;
3024}
3025
3b1137fe
DA
3026static void ip6_route_mpath_notify(struct rt6_info *rt,
3027 struct rt6_info *rt_last,
3028 struct nl_info *info,
3029 __u16 nlflags)
3030{
3031 /* if this is an APPEND route, then rt points to the first route
3032 * inserted and rt_last points to last route inserted. Userspace
3033 * wants a consistent dump of the route which starts at the first
3034 * nexthop. Since sibling routes are always added at the end of
3035 * the list, find the first sibling of the last route appended
3036 */
3037 if ((nlflags & NLM_F_APPEND) && rt_last && rt_last->rt6i_nsiblings) {
3038 rt = list_first_entry(&rt_last->rt6i_siblings,
3039 struct rt6_info,
3040 rt6i_siblings);
3041 }
3042
3043 if (rt)
3044 inet6_rt_notify(RTM_NEWROUTE, rt, info, nlflags);
3045}
3046
6b9ea5a6 3047static int ip6_route_multipath_add(struct fib6_config *cfg)
51ebd318 3048{
3b1137fe
DA
3049 struct rt6_info *rt_notif = NULL, *rt_last = NULL;
3050 struct nl_info *info = &cfg->fc_nlinfo;
51ebd318
ND
3051 struct fib6_config r_cfg;
3052 struct rtnexthop *rtnh;
6b9ea5a6
RP
3053 struct rt6_info *rt;
3054 struct rt6_nh *err_nh;
3055 struct rt6_nh *nh, *nh_safe;
3b1137fe 3056 __u16 nlflags;
51ebd318
ND
3057 int remaining;
3058 int attrlen;
6b9ea5a6
RP
3059 int err = 1;
3060 int nhn = 0;
3061 int replace = (cfg->fc_nlinfo.nlh &&
3062 (cfg->fc_nlinfo.nlh->nlmsg_flags & NLM_F_REPLACE));
3063 LIST_HEAD(rt6_nh_list);
51ebd318 3064
3b1137fe
DA
3065 nlflags = replace ? NLM_F_REPLACE : NLM_F_CREATE;
3066 if (info->nlh && info->nlh->nlmsg_flags & NLM_F_APPEND)
3067 nlflags |= NLM_F_APPEND;
3068
35f1b4e9 3069 remaining = cfg->fc_mp_len;
51ebd318 3070 rtnh = (struct rtnexthop *)cfg->fc_mp;
51ebd318 3071
6b9ea5a6
RP
3072 /* Parse a Multipath Entry and build a list (rt6_nh_list) of
3073 * rt6_info structs per nexthop
3074 */
51ebd318
ND
3075 while (rtnh_ok(rtnh, remaining)) {
3076 memcpy(&r_cfg, cfg, sizeof(*cfg));
3077 if (rtnh->rtnh_ifindex)
3078 r_cfg.fc_ifindex = rtnh->rtnh_ifindex;
3079
3080 attrlen = rtnh_attrlen(rtnh);
3081 if (attrlen > 0) {
3082 struct nlattr *nla, *attrs = rtnh_attrs(rtnh);
3083
3084 nla = nla_find(attrs, attrlen, RTA_GATEWAY);
3085 if (nla) {
67b61f6c 3086 r_cfg.fc_gateway = nla_get_in6_addr(nla);
51ebd318
ND
3087 r_cfg.fc_flags |= RTF_GATEWAY;
3088 }
19e42e45
RP
3089 r_cfg.fc_encap = nla_find(attrs, attrlen, RTA_ENCAP);
3090 nla = nla_find(attrs, attrlen, RTA_ENCAP_TYPE);
3091 if (nla)
3092 r_cfg.fc_encap_type = nla_get_u16(nla);
51ebd318 3093 }
6b9ea5a6 3094
8c5b83f0
RP
3095 rt = ip6_route_info_create(&r_cfg);
3096 if (IS_ERR(rt)) {
3097 err = PTR_ERR(rt);
3098 rt = NULL;
6b9ea5a6 3099 goto cleanup;
8c5b83f0 3100 }
6b9ea5a6
RP
3101
3102 err = ip6_route_info_append(&rt6_nh_list, rt, &r_cfg);
51ebd318 3103 if (err) {
6b9ea5a6
RP
3104 dst_free(&rt->dst);
3105 goto cleanup;
3106 }
3107
3108 rtnh = rtnh_next(rtnh, &remaining);
3109 }
3110
3b1137fe
DA
3111 /* for add and replace send one notification with all nexthops.
3112 * Skip the notification in fib6_add_rt2node and send one with
3113 * the full route when done
3114 */
3115 info->skip_notify = 1;
3116
6b9ea5a6
RP
3117 err_nh = NULL;
3118 list_for_each_entry(nh, &rt6_nh_list, next) {
3b1137fe
DA
3119 rt_last = nh->rt6_info;
3120 err = __ip6_ins_rt(nh->rt6_info, info, &nh->mxc);
3121 /* save reference to first route for notification */
3122 if (!rt_notif && !err)
3123 rt_notif = nh->rt6_info;
3124
6b9ea5a6
RP
3125 /* nh->rt6_info is used or freed at this point, reset to NULL*/
3126 nh->rt6_info = NULL;
3127 if (err) {
3128 if (replace && nhn)
3129 ip6_print_replace_route_err(&rt6_nh_list);
3130 err_nh = nh;
3131 goto add_errout;
51ebd318 3132 }
6b9ea5a6 3133
1a72418b 3134 /* Because each route is added like a single route we remove
27596472
MK
3135 * these flags after the first nexthop: if there is a collision,
3136 * we have already failed to add the first nexthop:
3137 * fib6_add_rt2node() has rejected it; when replacing, old
3138 * nexthops have been replaced by first new, the rest should
3139 * be added to it.
1a72418b 3140 */
27596472
MK
3141 cfg->fc_nlinfo.nlh->nlmsg_flags &= ~(NLM_F_EXCL |
3142 NLM_F_REPLACE);
6b9ea5a6
RP
3143 nhn++;
3144 }
3145
3b1137fe
DA
3146 /* success ... tell user about new route */
3147 ip6_route_mpath_notify(rt_notif, rt_last, info, nlflags);
6b9ea5a6
RP
3148 goto cleanup;
3149
3150add_errout:
3b1137fe
DA
3151 /* send notification for routes that were added so that
3152 * the delete notifications sent by ip6_route_del are
3153 * coherent
3154 */
3155 if (rt_notif)
3156 ip6_route_mpath_notify(rt_notif, rt_last, info, nlflags);
3157
6b9ea5a6
RP
3158 /* Delete routes that were already added */
3159 list_for_each_entry(nh, &rt6_nh_list, next) {
3160 if (err_nh == nh)
3161 break;
3162 ip6_route_del(&nh->r_cfg);
3163 }
3164
3165cleanup:
3166 list_for_each_entry_safe(nh, nh_safe, &rt6_nh_list, next) {
3167 if (nh->rt6_info)
3168 dst_free(&nh->rt6_info->dst);
52fe51f8 3169 kfree(nh->mxc.mx);
6b9ea5a6
RP
3170 list_del(&nh->next);
3171 kfree(nh);
3172 }
3173
3174 return err;
3175}
3176
3177static int ip6_route_multipath_del(struct fib6_config *cfg)
3178{
3179 struct fib6_config r_cfg;
3180 struct rtnexthop *rtnh;
3181 int remaining;
3182 int attrlen;
3183 int err = 1, last_err = 0;
3184
3185 remaining = cfg->fc_mp_len;
3186 rtnh = (struct rtnexthop *)cfg->fc_mp;
3187
3188 /* Parse a Multipath Entry */
3189 while (rtnh_ok(rtnh, remaining)) {
3190 memcpy(&r_cfg, cfg, sizeof(*cfg));
3191 if (rtnh->rtnh_ifindex)
3192 r_cfg.fc_ifindex = rtnh->rtnh_ifindex;
3193
3194 attrlen = rtnh_attrlen(rtnh);
3195 if (attrlen > 0) {
3196 struct nlattr *nla, *attrs = rtnh_attrs(rtnh);
3197
3198 nla = nla_find(attrs, attrlen, RTA_GATEWAY);
3199 if (nla) {
3200 nla_memcpy(&r_cfg.fc_gateway, nla, 16);
3201 r_cfg.fc_flags |= RTF_GATEWAY;
3202 }
3203 }
3204 err = ip6_route_del(&r_cfg);
3205 if (err)
3206 last_err = err;
3207
51ebd318
ND
3208 rtnh = rtnh_next(rtnh, &remaining);
3209 }
3210
3211 return last_err;
3212}
3213
67ba4152 3214static int inet6_rtm_delroute(struct sk_buff *skb, struct nlmsghdr *nlh)
1da177e4 3215{
86872cb5
TG
3216 struct fib6_config cfg;
3217 int err;
1da177e4 3218
86872cb5
TG
3219 err = rtm_to_fib6_config(skb, nlh, &cfg);
3220 if (err < 0)
3221 return err;
3222
51ebd318 3223 if (cfg.fc_mp)
6b9ea5a6 3224 return ip6_route_multipath_del(&cfg);
0ae81335
DA
3225 else {
3226 cfg.fc_delete_all_nh = 1;
51ebd318 3227 return ip6_route_del(&cfg);
0ae81335 3228 }
1da177e4
LT
3229}
3230
67ba4152 3231static int inet6_rtm_newroute(struct sk_buff *skb, struct nlmsghdr *nlh)
1da177e4 3232{
86872cb5
TG
3233 struct fib6_config cfg;
3234 int err;
1da177e4 3235
86872cb5
TG
3236 err = rtm_to_fib6_config(skb, nlh, &cfg);
3237 if (err < 0)
3238 return err;
3239
51ebd318 3240 if (cfg.fc_mp)
6b9ea5a6 3241 return ip6_route_multipath_add(&cfg);
51ebd318
ND
3242 else
3243 return ip6_route_add(&cfg);
1da177e4
LT
3244}
3245
beb1afac 3246static size_t rt6_nlmsg_size(struct rt6_info *rt)
339bf98f 3247{
beb1afac
DA
3248 int nexthop_len = 0;
3249
3250 if (rt->rt6i_nsiblings) {
3251 nexthop_len = nla_total_size(0) /* RTA_MULTIPATH */
3252 + NLA_ALIGN(sizeof(struct rtnexthop))
3253 + nla_total_size(16) /* RTA_GATEWAY */
3254 + nla_total_size(4) /* RTA_OIF */
3255 + lwtunnel_get_encap_size(rt->dst.lwtstate);
3256
3257 nexthop_len *= rt->rt6i_nsiblings;
3258 }
3259
339bf98f
TG
3260 return NLMSG_ALIGN(sizeof(struct rtmsg))
3261 + nla_total_size(16) /* RTA_SRC */
3262 + nla_total_size(16) /* RTA_DST */
3263 + nla_total_size(16) /* RTA_GATEWAY */
3264 + nla_total_size(16) /* RTA_PREFSRC */
3265 + nla_total_size(4) /* RTA_TABLE */
3266 + nla_total_size(4) /* RTA_IIF */
3267 + nla_total_size(4) /* RTA_OIF */
3268 + nla_total_size(4) /* RTA_PRIORITY */
6a2b9ce0 3269 + RTAX_MAX * nla_total_size(4) /* RTA_METRICS */
ea697639 3270 + nla_total_size(sizeof(struct rta_cacheinfo))
c78ba6d6 3271 + nla_total_size(TCP_CA_NAME_MAX) /* RTAX_CC_ALGO */
19e42e45 3272 + nla_total_size(1) /* RTA_PREF */
beb1afac
DA
3273 + lwtunnel_get_encap_size(rt->dst.lwtstate)
3274 + nexthop_len;
3275}
3276
3277static int rt6_nexthop_info(struct sk_buff *skb, struct rt6_info *rt,
3278 unsigned int *flags)
3279{
3280 if (!netif_running(rt->dst.dev) || !netif_carrier_ok(rt->dst.dev)) {
3281 *flags |= RTNH_F_LINKDOWN;
3282 if (rt->rt6i_idev->cnf.ignore_routes_with_linkdown)
3283 *flags |= RTNH_F_DEAD;
3284 }
3285
3286 if (rt->rt6i_flags & RTF_GATEWAY) {
3287 if (nla_put_in6_addr(skb, RTA_GATEWAY, &rt->rt6i_gateway) < 0)
3288 goto nla_put_failure;
3289 }
3290
3291 if (rt->dst.dev &&
3292 nla_put_u32(skb, RTA_OIF, rt->dst.dev->ifindex))
3293 goto nla_put_failure;
3294
3295 if (rt->dst.lwtstate &&
3296 lwtunnel_fill_encap(skb, rt->dst.lwtstate) < 0)
3297 goto nla_put_failure;
3298
3299 return 0;
3300
3301nla_put_failure:
3302 return -EMSGSIZE;
3303}
3304
3305static int rt6_add_nexthop(struct sk_buff *skb, struct rt6_info *rt)
3306{
3307 struct rtnexthop *rtnh;
3308 unsigned int flags = 0;
3309
3310 rtnh = nla_reserve_nohdr(skb, sizeof(*rtnh));
3311 if (!rtnh)
3312 goto nla_put_failure;
3313
3314 rtnh->rtnh_hops = 0;
3315 rtnh->rtnh_ifindex = rt->dst.dev ? rt->dst.dev->ifindex : 0;
3316
3317 if (rt6_nexthop_info(skb, rt, &flags) < 0)
3318 goto nla_put_failure;
3319
3320 rtnh->rtnh_flags = flags;
3321
3322 /* length of rtnetlink header + attributes */
3323 rtnh->rtnh_len = nlmsg_get_pos(skb) - (void *)rtnh;
3324
3325 return 0;
3326
3327nla_put_failure:
3328 return -EMSGSIZE;
339bf98f
TG
3329}
3330
191cd582
BH
3331static int rt6_fill_node(struct net *net,
3332 struct sk_buff *skb, struct rt6_info *rt,
0d51aa80 3333 struct in6_addr *dst, struct in6_addr *src,
15e47304 3334 int iif, int type, u32 portid, u32 seq,
f8cfe2ce 3335 unsigned int flags)
1da177e4 3336{
4b32b5ad 3337 u32 metrics[RTAX_MAX];
1da177e4 3338 struct rtmsg *rtm;
2d7202bf 3339 struct nlmsghdr *nlh;
e3703b3d 3340 long expires;
9e762a4a 3341 u32 table;
1da177e4 3342
15e47304 3343 nlh = nlmsg_put(skb, portid, seq, type, sizeof(*rtm), flags);
38308473 3344 if (!nlh)
26932566 3345 return -EMSGSIZE;
2d7202bf
TG
3346
3347 rtm = nlmsg_data(nlh);
1da177e4
LT
3348 rtm->rtm_family = AF_INET6;
3349 rtm->rtm_dst_len = rt->rt6i_dst.plen;
3350 rtm->rtm_src_len = rt->rt6i_src.plen;
3351 rtm->rtm_tos = 0;
c71099ac 3352 if (rt->rt6i_table)
9e762a4a 3353 table = rt->rt6i_table->tb6_id;
c71099ac 3354 else
9e762a4a
PM
3355 table = RT6_TABLE_UNSPEC;
3356 rtm->rtm_table = table;
c78679e8
DM
3357 if (nla_put_u32(skb, RTA_TABLE, table))
3358 goto nla_put_failure;
ef2c7d7b
ND
3359 if (rt->rt6i_flags & RTF_REJECT) {
3360 switch (rt->dst.error) {
3361 case -EINVAL:
3362 rtm->rtm_type = RTN_BLACKHOLE;
3363 break;
3364 case -EACCES:
3365 rtm->rtm_type = RTN_PROHIBIT;
3366 break;
b4949ab2
ND
3367 case -EAGAIN:
3368 rtm->rtm_type = RTN_THROW;
3369 break;
ef2c7d7b
ND
3370 default:
3371 rtm->rtm_type = RTN_UNREACHABLE;
3372 break;
3373 }
3374 }
38308473 3375 else if (rt->rt6i_flags & RTF_LOCAL)
ab79ad14 3376 rtm->rtm_type = RTN_LOCAL;
d1918542 3377 else if (rt->dst.dev && (rt->dst.dev->flags & IFF_LOOPBACK))
1da177e4
LT
3378 rtm->rtm_type = RTN_LOCAL;
3379 else
3380 rtm->rtm_type = RTN_UNICAST;
3381 rtm->rtm_flags = 0;
3382 rtm->rtm_scope = RT_SCOPE_UNIVERSE;
3383 rtm->rtm_protocol = rt->rt6i_protocol;
38308473 3384 if (rt->rt6i_flags & RTF_DYNAMIC)
1da177e4 3385 rtm->rtm_protocol = RTPROT_REDIRECT;
f0396f60
DO
3386 else if (rt->rt6i_flags & RTF_ADDRCONF) {
3387 if (rt->rt6i_flags & (RTF_DEFAULT | RTF_ROUTEINFO))
3388 rtm->rtm_protocol = RTPROT_RA;
3389 else
3390 rtm->rtm_protocol = RTPROT_KERNEL;
3391 }
1da177e4 3392
38308473 3393 if (rt->rt6i_flags & RTF_CACHE)
1da177e4
LT
3394 rtm->rtm_flags |= RTM_F_CLONED;
3395
3396 if (dst) {
930345ea 3397 if (nla_put_in6_addr(skb, RTA_DST, dst))
c78679e8 3398 goto nla_put_failure;
1ab1457c 3399 rtm->rtm_dst_len = 128;
1da177e4 3400 } else if (rtm->rtm_dst_len)
930345ea 3401 if (nla_put_in6_addr(skb, RTA_DST, &rt->rt6i_dst.addr))
c78679e8 3402 goto nla_put_failure;
1da177e4
LT
3403#ifdef CONFIG_IPV6_SUBTREES
3404 if (src) {
930345ea 3405 if (nla_put_in6_addr(skb, RTA_SRC, src))
c78679e8 3406 goto nla_put_failure;
1ab1457c 3407 rtm->rtm_src_len = 128;
c78679e8 3408 } else if (rtm->rtm_src_len &&
930345ea 3409 nla_put_in6_addr(skb, RTA_SRC, &rt->rt6i_src.addr))
c78679e8 3410 goto nla_put_failure;
1da177e4 3411#endif
7bc570c8
YH
3412 if (iif) {
3413#ifdef CONFIG_IPV6_MROUTE
3414 if (ipv6_addr_is_multicast(&rt->rt6i_dst.addr)) {
fd61c6ba
DA
3415 int err = ip6mr_get_route(net, skb, rtm, portid);
3416
3417 if (err == 0)
3418 return 0;
3419 if (err < 0)
3420 goto nla_put_failure;
7bc570c8
YH
3421 } else
3422#endif
c78679e8
DM
3423 if (nla_put_u32(skb, RTA_IIF, iif))
3424 goto nla_put_failure;
7bc570c8 3425 } else if (dst) {
1da177e4 3426 struct in6_addr saddr_buf;
c78679e8 3427 if (ip6_route_get_saddr(net, rt, dst, 0, &saddr_buf) == 0 &&
930345ea 3428 nla_put_in6_addr(skb, RTA_PREFSRC, &saddr_buf))
c78679e8 3429 goto nla_put_failure;
1da177e4 3430 }
2d7202bf 3431
c3968a85
DW
3432 if (rt->rt6i_prefsrc.plen) {
3433 struct in6_addr saddr_buf;
4e3fd7a0 3434 saddr_buf = rt->rt6i_prefsrc.addr;
930345ea 3435 if (nla_put_in6_addr(skb, RTA_PREFSRC, &saddr_buf))
c78679e8 3436 goto nla_put_failure;
c3968a85
DW
3437 }
3438
4b32b5ad
MKL
3439 memcpy(metrics, dst_metrics_ptr(&rt->dst), sizeof(metrics));
3440 if (rt->rt6i_pmtu)
3441 metrics[RTAX_MTU - 1] = rt->rt6i_pmtu;
3442 if (rtnetlink_put_metrics(skb, metrics) < 0)
2d7202bf
TG
3443 goto nla_put_failure;
3444
c78679e8
DM
3445 if (nla_put_u32(skb, RTA_PRIORITY, rt->rt6i_metric))
3446 goto nla_put_failure;
8253947e 3447
beb1afac
DA
3448 /* For multipath routes, walk the siblings list and add
3449 * each as a nexthop within RTA_MULTIPATH.
3450 */
3451 if (rt->rt6i_nsiblings) {
3452 struct rt6_info *sibling, *next_sibling;
3453 struct nlattr *mp;
3454
3455 mp = nla_nest_start(skb, RTA_MULTIPATH);
3456 if (!mp)
3457 goto nla_put_failure;
3458
3459 if (rt6_add_nexthop(skb, rt) < 0)
3460 goto nla_put_failure;
3461
3462 list_for_each_entry_safe(sibling, next_sibling,
3463 &rt->rt6i_siblings, rt6i_siblings) {
3464 if (rt6_add_nexthop(skb, sibling) < 0)
3465 goto nla_put_failure;
3466 }
3467
3468 nla_nest_end(skb, mp);
3469 } else {
3470 if (rt6_nexthop_info(skb, rt, &rtm->rtm_flags) < 0)
3471 goto nla_put_failure;
3472 }
3473
8253947e 3474 expires = (rt->rt6i_flags & RTF_EXPIRES) ? rt->dst.expires - jiffies : 0;
69cdf8f9 3475
87a50699 3476 if (rtnl_put_cacheinfo(skb, &rt->dst, 0, expires, rt->dst.error) < 0)
e3703b3d 3477 goto nla_put_failure;
2d7202bf 3478
c78ba6d6
LR
3479 if (nla_put_u8(skb, RTA_PREF, IPV6_EXTRACT_PREF(rt->rt6i_flags)))
3480 goto nla_put_failure;
3481
19e42e45 3482
053c095a
JB
3483 nlmsg_end(skb, nlh);
3484 return 0;
2d7202bf
TG
3485
3486nla_put_failure:
26932566
PM
3487 nlmsg_cancel(skb, nlh);
3488 return -EMSGSIZE;
1da177e4
LT
3489}
3490
1b43af54 3491int rt6_dump_route(struct rt6_info *rt, void *p_arg)
1da177e4
LT
3492{
3493 struct rt6_rtnl_dump_arg *arg = (struct rt6_rtnl_dump_arg *) p_arg;
1f17e2f2
DA
3494 struct net *net = arg->net;
3495
3496 if (rt == net->ipv6.ip6_null_entry)
3497 return 0;
1da177e4 3498
2d7202bf
TG
3499 if (nlmsg_len(arg->cb->nlh) >= sizeof(struct rtmsg)) {
3500 struct rtmsg *rtm = nlmsg_data(arg->cb->nlh);
f8cfe2ce
DA
3501
3502 /* user wants prefix routes only */
3503 if (rtm->rtm_flags & RTM_F_PREFIX &&
3504 !(rt->rt6i_flags & RTF_PREFIX_RT)) {
3505 /* success since this is not a prefix route */
3506 return 1;
3507 }
3508 }
1da177e4 3509
1f17e2f2 3510 return rt6_fill_node(net,
191cd582 3511 arg->skb, rt, NULL, NULL, 0, RTM_NEWROUTE,
15e47304 3512 NETLINK_CB(arg->cb->skb).portid, arg->cb->nlh->nlmsg_seq,
f8cfe2ce 3513 NLM_F_MULTI);
1da177e4
LT
3514}
3515
67ba4152 3516static int inet6_rtm_getroute(struct sk_buff *in_skb, struct nlmsghdr *nlh)
1da177e4 3517{
3b1e0a65 3518 struct net *net = sock_net(in_skb->sk);
ab364a6f
TG
3519 struct nlattr *tb[RTA_MAX+1];
3520 struct rt6_info *rt;
1da177e4 3521 struct sk_buff *skb;
ab364a6f 3522 struct rtmsg *rtm;
4c9483b2 3523 struct flowi6 fl6;
72331bc0 3524 int err, iif = 0, oif = 0;
1da177e4 3525
ab364a6f
TG
3526 err = nlmsg_parse(nlh, sizeof(*rtm), tb, RTA_MAX, rtm_ipv6_policy);
3527 if (err < 0)
3528 goto errout;
1da177e4 3529
ab364a6f 3530 err = -EINVAL;
4c9483b2 3531 memset(&fl6, 0, sizeof(fl6));
38b7097b
HFS
3532 rtm = nlmsg_data(nlh);
3533 fl6.flowlabel = ip6_make_flowinfo(rtm->rtm_tos, 0);
1da177e4 3534
ab364a6f
TG
3535 if (tb[RTA_SRC]) {
3536 if (nla_len(tb[RTA_SRC]) < sizeof(struct in6_addr))
3537 goto errout;
3538
4e3fd7a0 3539 fl6.saddr = *(struct in6_addr *)nla_data(tb[RTA_SRC]);
ab364a6f
TG
3540 }
3541
3542 if (tb[RTA_DST]) {
3543 if (nla_len(tb[RTA_DST]) < sizeof(struct in6_addr))
3544 goto errout;
3545
4e3fd7a0 3546 fl6.daddr = *(struct in6_addr *)nla_data(tb[RTA_DST]);
ab364a6f
TG
3547 }
3548
3549 if (tb[RTA_IIF])
3550 iif = nla_get_u32(tb[RTA_IIF]);
3551
3552 if (tb[RTA_OIF])
72331bc0 3553 oif = nla_get_u32(tb[RTA_OIF]);
1da177e4 3554
2e47b291
LC
3555 if (tb[RTA_MARK])
3556 fl6.flowi6_mark = nla_get_u32(tb[RTA_MARK]);
3557
622ec2c9
LC
3558 if (tb[RTA_UID])
3559 fl6.flowi6_uid = make_kuid(current_user_ns(),
3560 nla_get_u32(tb[RTA_UID]));
3561 else
3562 fl6.flowi6_uid = iif ? INVALID_UID : current_uid();
3563
1da177e4
LT
3564 if (iif) {
3565 struct net_device *dev;
72331bc0
SL
3566 int flags = 0;
3567
5578689a 3568 dev = __dev_get_by_index(net, iif);
1da177e4
LT
3569 if (!dev) {
3570 err = -ENODEV;
ab364a6f 3571 goto errout;
1da177e4 3572 }
72331bc0
SL
3573
3574 fl6.flowi6_iif = iif;
3575
3576 if (!ipv6_addr_any(&fl6.saddr))
3577 flags |= RT6_LOOKUP_F_HAS_SADDR;
3578
3579 rt = (struct rt6_info *)ip6_route_input_lookup(net, dev, &fl6,
3580 flags);
3581 } else {
3582 fl6.flowi6_oif = oif;
3583
3584 rt = (struct rt6_info *)ip6_route_output(net, NULL, &fl6);
1da177e4
LT
3585 }
3586
ab364a6f 3587 skb = alloc_skb(NLMSG_GOODSIZE, GFP_KERNEL);
38308473 3588 if (!skb) {
94e187c0 3589 ip6_rt_put(rt);
ab364a6f
TG
3590 err = -ENOBUFS;
3591 goto errout;
3592 }
1da177e4 3593
d8d1f30b 3594 skb_dst_set(skb, &rt->dst);
1da177e4 3595
4c9483b2 3596 err = rt6_fill_node(net, skb, rt, &fl6.daddr, &fl6.saddr, iif,
15e47304 3597 RTM_NEWROUTE, NETLINK_CB(in_skb).portid,
f8cfe2ce 3598 nlh->nlmsg_seq, 0);
1da177e4 3599 if (err < 0) {
ab364a6f
TG
3600 kfree_skb(skb);
3601 goto errout;
1da177e4
LT
3602 }
3603
15e47304 3604 err = rtnl_unicast(skb, net, NETLINK_CB(in_skb).portid);
ab364a6f 3605errout:
1da177e4 3606 return err;
1da177e4
LT
3607}
3608
37a1d361
RP
3609void inet6_rt_notify(int event, struct rt6_info *rt, struct nl_info *info,
3610 unsigned int nlm_flags)
1da177e4
LT
3611{
3612 struct sk_buff *skb;
5578689a 3613 struct net *net = info->nl_net;
528c4ceb
DL
3614 u32 seq;
3615 int err;
3616
3617 err = -ENOBUFS;
38308473 3618 seq = info->nlh ? info->nlh->nlmsg_seq : 0;
86872cb5 3619
19e42e45 3620 skb = nlmsg_new(rt6_nlmsg_size(rt), gfp_any());
38308473 3621 if (!skb)
21713ebc
TG
3622 goto errout;
3623
191cd582 3624 err = rt6_fill_node(net, skb, rt, NULL, NULL, 0,
f8cfe2ce 3625 event, info->portid, seq, nlm_flags);
26932566
PM
3626 if (err < 0) {
3627 /* -EMSGSIZE implies BUG in rt6_nlmsg_size() */
3628 WARN_ON(err == -EMSGSIZE);
3629 kfree_skb(skb);
3630 goto errout;
3631 }
15e47304 3632 rtnl_notify(skb, net, info->portid, RTNLGRP_IPV6_ROUTE,
1ce85fe4
PNA
3633 info->nlh, gfp_any());
3634 return;
21713ebc
TG
3635errout:
3636 if (err < 0)
5578689a 3637 rtnl_set_sk_err(net, RTNLGRP_IPV6_ROUTE, err);
1da177e4
LT
3638}
3639
8ed67789 3640static int ip6_route_dev_notify(struct notifier_block *this,
351638e7 3641 unsigned long event, void *ptr)
8ed67789 3642{
351638e7 3643 struct net_device *dev = netdev_notifier_info_to_dev(ptr);
c346dca1 3644 struct net *net = dev_net(dev);
8ed67789
DL
3645
3646 if (event == NETDEV_REGISTER && (dev->flags & IFF_LOOPBACK)) {
d8d1f30b 3647 net->ipv6.ip6_null_entry->dst.dev = dev;
8ed67789
DL
3648 net->ipv6.ip6_null_entry->rt6i_idev = in6_dev_get(dev);
3649#ifdef CONFIG_IPV6_MULTIPLE_TABLES
d8d1f30b 3650 net->ipv6.ip6_prohibit_entry->dst.dev = dev;
8ed67789 3651 net->ipv6.ip6_prohibit_entry->rt6i_idev = in6_dev_get(dev);
d8d1f30b 3652 net->ipv6.ip6_blk_hole_entry->dst.dev = dev;
8ed67789
DL
3653 net->ipv6.ip6_blk_hole_entry->rt6i_idev = in6_dev_get(dev);
3654#endif
3655 }
3656
3657 return NOTIFY_OK;
3658}
3659
1da177e4
LT
3660/*
3661 * /proc
3662 */
3663
3664#ifdef CONFIG_PROC_FS
3665
33120b30
AD
3666static const struct file_operations ipv6_route_proc_fops = {
3667 .owner = THIS_MODULE,
3668 .open = ipv6_route_open,
3669 .read = seq_read,
3670 .llseek = seq_lseek,
8d2ca1d7 3671 .release = seq_release_net,
33120b30
AD
3672};
3673
1da177e4
LT
3674static int rt6_stats_seq_show(struct seq_file *seq, void *v)
3675{
69ddb805 3676 struct net *net = (struct net *)seq->private;
1da177e4 3677 seq_printf(seq, "%04x %04x %04x %04x %04x %04x %04x\n",
69ddb805
DL
3678 net->ipv6.rt6_stats->fib_nodes,
3679 net->ipv6.rt6_stats->fib_route_nodes,
3680 net->ipv6.rt6_stats->fib_rt_alloc,
3681 net->ipv6.rt6_stats->fib_rt_entries,
3682 net->ipv6.rt6_stats->fib_rt_cache,
fc66f95c 3683 dst_entries_get_slow(&net->ipv6.ip6_dst_ops),
69ddb805 3684 net->ipv6.rt6_stats->fib_discarded_routes);
1da177e4
LT
3685
3686 return 0;
3687}
3688
3689static int rt6_stats_seq_open(struct inode *inode, struct file *file)
3690{
de05c557 3691 return single_open_net(inode, file, rt6_stats_seq_show);
69ddb805
DL
3692}
3693
9a32144e 3694static const struct file_operations rt6_stats_seq_fops = {
1da177e4
LT
3695 .owner = THIS_MODULE,
3696 .open = rt6_stats_seq_open,
3697 .read = seq_read,
3698 .llseek = seq_lseek,
b6fcbdb4 3699 .release = single_release_net,
1da177e4
LT
3700};
3701#endif /* CONFIG_PROC_FS */
3702
3703#ifdef CONFIG_SYSCTL
3704
1da177e4 3705static
fe2c6338 3706int ipv6_sysctl_rtcache_flush(struct ctl_table *ctl, int write,
1da177e4
LT
3707 void __user *buffer, size_t *lenp, loff_t *ppos)
3708{
c486da34
LAG
3709 struct net *net;
3710 int delay;
3711 if (!write)
1da177e4 3712 return -EINVAL;
c486da34
LAG
3713
3714 net = (struct net *)ctl->extra1;
3715 delay = net->ipv6.sysctl.flush_delay;
3716 proc_dointvec(ctl, write, buffer, lenp, ppos);
2ac3ac8f 3717 fib6_run_gc(delay <= 0 ? 0 : (unsigned long)delay, net, delay > 0);
c486da34 3718 return 0;
1da177e4
LT
3719}
3720
fe2c6338 3721struct ctl_table ipv6_route_table_template[] = {
1ab1457c 3722 {
1da177e4 3723 .procname = "flush",
4990509f 3724 .data = &init_net.ipv6.sysctl.flush_delay,
1da177e4 3725 .maxlen = sizeof(int),
89c8b3a1 3726 .mode = 0200,
6d9f239a 3727 .proc_handler = ipv6_sysctl_rtcache_flush
1da177e4
LT
3728 },
3729 {
1da177e4 3730 .procname = "gc_thresh",
9a7ec3a9 3731 .data = &ip6_dst_ops_template.gc_thresh,
1da177e4
LT
3732 .maxlen = sizeof(int),
3733 .mode = 0644,
6d9f239a 3734 .proc_handler = proc_dointvec,
1da177e4
LT
3735 },
3736 {
1da177e4 3737 .procname = "max_size",
4990509f 3738 .data = &init_net.ipv6.sysctl.ip6_rt_max_size,
1da177e4
LT
3739 .maxlen = sizeof(int),
3740 .mode = 0644,
6d9f239a 3741 .proc_handler = proc_dointvec,
1da177e4
LT
3742 },
3743 {
1da177e4 3744 .procname = "gc_min_interval",
4990509f 3745 .data = &init_net.ipv6.sysctl.ip6_rt_gc_min_interval,
1da177e4
LT
3746 .maxlen = sizeof(int),
3747 .mode = 0644,
6d9f239a 3748 .proc_handler = proc_dointvec_jiffies,
1da177e4
LT
3749 },
3750 {
1da177e4 3751 .procname = "gc_timeout",
4990509f 3752 .data = &init_net.ipv6.sysctl.ip6_rt_gc_timeout,
1da177e4
LT
3753 .maxlen = sizeof(int),
3754 .mode = 0644,
6d9f239a 3755 .proc_handler = proc_dointvec_jiffies,
1da177e4
LT
3756 },
3757 {
1da177e4 3758 .procname = "gc_interval",
4990509f 3759 .data = &init_net.ipv6.sysctl.ip6_rt_gc_interval,
1da177e4
LT
3760 .maxlen = sizeof(int),
3761 .mode = 0644,
6d9f239a 3762 .proc_handler = proc_dointvec_jiffies,
1da177e4
LT
3763 },
3764 {
1da177e4 3765 .procname = "gc_elasticity",
4990509f 3766 .data = &init_net.ipv6.sysctl.ip6_rt_gc_elasticity,
1da177e4
LT
3767 .maxlen = sizeof(int),
3768 .mode = 0644,
f3d3f616 3769 .proc_handler = proc_dointvec,
1da177e4
LT
3770 },
3771 {
1da177e4 3772 .procname = "mtu_expires",
4990509f 3773 .data = &init_net.ipv6.sysctl.ip6_rt_mtu_expires,
1da177e4
LT
3774 .maxlen = sizeof(int),
3775 .mode = 0644,
6d9f239a 3776 .proc_handler = proc_dointvec_jiffies,
1da177e4
LT
3777 },
3778 {
1da177e4 3779 .procname = "min_adv_mss",
4990509f 3780 .data = &init_net.ipv6.sysctl.ip6_rt_min_advmss,
1da177e4
LT
3781 .maxlen = sizeof(int),
3782 .mode = 0644,
f3d3f616 3783 .proc_handler = proc_dointvec,
1da177e4
LT
3784 },
3785 {
1da177e4 3786 .procname = "gc_min_interval_ms",
4990509f 3787 .data = &init_net.ipv6.sysctl.ip6_rt_gc_min_interval,
1da177e4
LT
3788 .maxlen = sizeof(int),
3789 .mode = 0644,
6d9f239a 3790 .proc_handler = proc_dointvec_ms_jiffies,
1da177e4 3791 },
f8572d8f 3792 { }
1da177e4
LT
3793};
3794
2c8c1e72 3795struct ctl_table * __net_init ipv6_route_sysctl_init(struct net *net)
760f2d01
DL
3796{
3797 struct ctl_table *table;
3798
3799 table = kmemdup(ipv6_route_table_template,
3800 sizeof(ipv6_route_table_template),
3801 GFP_KERNEL);
5ee09105
YH
3802
3803 if (table) {
3804 table[0].data = &net->ipv6.sysctl.flush_delay;
c486da34 3805 table[0].extra1 = net;
86393e52 3806 table[1].data = &net->ipv6.ip6_dst_ops.gc_thresh;
5ee09105
YH
3807 table[2].data = &net->ipv6.sysctl.ip6_rt_max_size;
3808 table[3].data = &net->ipv6.sysctl.ip6_rt_gc_min_interval;
3809 table[4].data = &net->ipv6.sysctl.ip6_rt_gc_timeout;
3810 table[5].data = &net->ipv6.sysctl.ip6_rt_gc_interval;
3811 table[6].data = &net->ipv6.sysctl.ip6_rt_gc_elasticity;
3812 table[7].data = &net->ipv6.sysctl.ip6_rt_mtu_expires;
3813 table[8].data = &net->ipv6.sysctl.ip6_rt_min_advmss;
9c69fabe 3814 table[9].data = &net->ipv6.sysctl.ip6_rt_gc_min_interval;
464dc801
EB
3815
3816 /* Don't export sysctls to unprivileged users */
3817 if (net->user_ns != &init_user_ns)
3818 table[0].procname = NULL;
5ee09105
YH
3819 }
3820
760f2d01
DL
3821 return table;
3822}
1da177e4
LT
3823#endif
3824
2c8c1e72 3825static int __net_init ip6_route_net_init(struct net *net)
cdb18761 3826{
633d424b 3827 int ret = -ENOMEM;
8ed67789 3828
86393e52
AD
3829 memcpy(&net->ipv6.ip6_dst_ops, &ip6_dst_ops_template,
3830 sizeof(net->ipv6.ip6_dst_ops));
f2fc6a54 3831
fc66f95c
ED
3832 if (dst_entries_init(&net->ipv6.ip6_dst_ops) < 0)
3833 goto out_ip6_dst_ops;
3834
8ed67789
DL
3835 net->ipv6.ip6_null_entry = kmemdup(&ip6_null_entry_template,
3836 sizeof(*net->ipv6.ip6_null_entry),
3837 GFP_KERNEL);
3838 if (!net->ipv6.ip6_null_entry)
fc66f95c 3839 goto out_ip6_dst_entries;
d8d1f30b 3840 net->ipv6.ip6_null_entry->dst.path =
8ed67789 3841 (struct dst_entry *)net->ipv6.ip6_null_entry;
d8d1f30b 3842 net->ipv6.ip6_null_entry->dst.ops = &net->ipv6.ip6_dst_ops;
62fa8a84
DM
3843 dst_init_metrics(&net->ipv6.ip6_null_entry->dst,
3844 ip6_template_metrics, true);
8ed67789
DL
3845
3846#ifdef CONFIG_IPV6_MULTIPLE_TABLES
3847 net->ipv6.ip6_prohibit_entry = kmemdup(&ip6_prohibit_entry_template,
3848 sizeof(*net->ipv6.ip6_prohibit_entry),
3849 GFP_KERNEL);
68fffc67
PZ
3850 if (!net->ipv6.ip6_prohibit_entry)
3851 goto out_ip6_null_entry;
d8d1f30b 3852 net->ipv6.ip6_prohibit_entry->dst.path =
8ed67789 3853 (struct dst_entry *)net->ipv6.ip6_prohibit_entry;
d8d1f30b 3854 net->ipv6.ip6_prohibit_entry->dst.ops = &net->ipv6.ip6_dst_ops;
62fa8a84
DM
3855 dst_init_metrics(&net->ipv6.ip6_prohibit_entry->dst,
3856 ip6_template_metrics, true);
8ed67789
DL
3857
3858 net->ipv6.ip6_blk_hole_entry = kmemdup(&ip6_blk_hole_entry_template,
3859 sizeof(*net->ipv6.ip6_blk_hole_entry),
3860 GFP_KERNEL);
68fffc67
PZ
3861 if (!net->ipv6.ip6_blk_hole_entry)
3862 goto out_ip6_prohibit_entry;
d8d1f30b 3863 net->ipv6.ip6_blk_hole_entry->dst.path =
8ed67789 3864 (struct dst_entry *)net->ipv6.ip6_blk_hole_entry;
d8d1f30b 3865 net->ipv6.ip6_blk_hole_entry->dst.ops = &net->ipv6.ip6_dst_ops;
62fa8a84
DM
3866 dst_init_metrics(&net->ipv6.ip6_blk_hole_entry->dst,
3867 ip6_template_metrics, true);
8ed67789
DL
3868#endif
3869
b339a47c
PZ
3870 net->ipv6.sysctl.flush_delay = 0;
3871 net->ipv6.sysctl.ip6_rt_max_size = 4096;
3872 net->ipv6.sysctl.ip6_rt_gc_min_interval = HZ / 2;
3873 net->ipv6.sysctl.ip6_rt_gc_timeout = 60*HZ;
3874 net->ipv6.sysctl.ip6_rt_gc_interval = 30*HZ;
3875 net->ipv6.sysctl.ip6_rt_gc_elasticity = 9;
3876 net->ipv6.sysctl.ip6_rt_mtu_expires = 10*60*HZ;
3877 net->ipv6.sysctl.ip6_rt_min_advmss = IPV6_MIN_MTU - 20 - 40;
3878
6891a346
BT
3879 net->ipv6.ip6_rt_gc_expire = 30*HZ;
3880
8ed67789
DL
3881 ret = 0;
3882out:
3883 return ret;
f2fc6a54 3884
68fffc67
PZ
3885#ifdef CONFIG_IPV6_MULTIPLE_TABLES
3886out_ip6_prohibit_entry:
3887 kfree(net->ipv6.ip6_prohibit_entry);
3888out_ip6_null_entry:
3889 kfree(net->ipv6.ip6_null_entry);
3890#endif
fc66f95c
ED
3891out_ip6_dst_entries:
3892 dst_entries_destroy(&net->ipv6.ip6_dst_ops);
f2fc6a54 3893out_ip6_dst_ops:
f2fc6a54 3894 goto out;
cdb18761
DL
3895}
3896
2c8c1e72 3897static void __net_exit ip6_route_net_exit(struct net *net)
cdb18761 3898{
8ed67789
DL
3899 kfree(net->ipv6.ip6_null_entry);
3900#ifdef CONFIG_IPV6_MULTIPLE_TABLES
3901 kfree(net->ipv6.ip6_prohibit_entry);
3902 kfree(net->ipv6.ip6_blk_hole_entry);
3903#endif
41bb78b4 3904 dst_entries_destroy(&net->ipv6.ip6_dst_ops);
cdb18761
DL
3905}
3906
d189634e
TG
3907static int __net_init ip6_route_net_init_late(struct net *net)
3908{
3909#ifdef CONFIG_PROC_FS
d4beaa66
G
3910 proc_create("ipv6_route", 0, net->proc_net, &ipv6_route_proc_fops);
3911 proc_create("rt6_stats", S_IRUGO, net->proc_net, &rt6_stats_seq_fops);
d189634e
TG
3912#endif
3913 return 0;
3914}
3915
3916static void __net_exit ip6_route_net_exit_late(struct net *net)
3917{
3918#ifdef CONFIG_PROC_FS
ece31ffd
G
3919 remove_proc_entry("ipv6_route", net->proc_net);
3920 remove_proc_entry("rt6_stats", net->proc_net);
d189634e
TG
3921#endif
3922}
3923
cdb18761
DL
3924static struct pernet_operations ip6_route_net_ops = {
3925 .init = ip6_route_net_init,
3926 .exit = ip6_route_net_exit,
3927};
3928
c3426b47
DM
3929static int __net_init ipv6_inetpeer_init(struct net *net)
3930{
3931 struct inet_peer_base *bp = kmalloc(sizeof(*bp), GFP_KERNEL);
3932
3933 if (!bp)
3934 return -ENOMEM;
3935 inet_peer_base_init(bp);
3936 net->ipv6.peers = bp;
3937 return 0;
3938}
3939
3940static void __net_exit ipv6_inetpeer_exit(struct net *net)
3941{
3942 struct inet_peer_base *bp = net->ipv6.peers;
3943
3944 net->ipv6.peers = NULL;
56a6b248 3945 inetpeer_invalidate_tree(bp);
c3426b47
DM
3946 kfree(bp);
3947}
3948
2b823f72 3949static struct pernet_operations ipv6_inetpeer_ops = {
c3426b47
DM
3950 .init = ipv6_inetpeer_init,
3951 .exit = ipv6_inetpeer_exit,
3952};
3953
d189634e
TG
3954static struct pernet_operations ip6_route_net_late_ops = {
3955 .init = ip6_route_net_init_late,
3956 .exit = ip6_route_net_exit_late,
3957};
3958
8ed67789
DL
3959static struct notifier_block ip6_route_dev_notifier = {
3960 .notifier_call = ip6_route_dev_notify,
3961 .priority = 0,
3962};
3963
433d49c3 3964int __init ip6_route_init(void)
1da177e4 3965{
433d49c3 3966 int ret;
8d0b94af 3967 int cpu;
433d49c3 3968
9a7ec3a9
DL
3969 ret = -ENOMEM;
3970 ip6_dst_ops_template.kmem_cachep =
e5d679f3 3971 kmem_cache_create("ip6_dst_cache", sizeof(struct rt6_info), 0,
f845ab6b 3972 SLAB_HWCACHE_ALIGN, NULL);
9a7ec3a9 3973 if (!ip6_dst_ops_template.kmem_cachep)
c19a28e1 3974 goto out;
14e50e57 3975
fc66f95c 3976 ret = dst_entries_init(&ip6_dst_blackhole_ops);
8ed67789 3977 if (ret)
bdb3289f 3978 goto out_kmem_cache;
bdb3289f 3979
c3426b47
DM
3980 ret = register_pernet_subsys(&ipv6_inetpeer_ops);
3981 if (ret)
e8803b6c 3982 goto out_dst_entries;
2a0c451a 3983
7e52b33b
DM
3984 ret = register_pernet_subsys(&ip6_route_net_ops);
3985 if (ret)
3986 goto out_register_inetpeer;
c3426b47 3987
5dc121e9
AE
3988 ip6_dst_blackhole_ops.kmem_cachep = ip6_dst_ops_template.kmem_cachep;
3989
8ed67789
DL
3990 /* Registering of the loopback is done before this portion of code,
3991 * the loopback reference in rt6_info will not be taken, do it
3992 * manually for init_net */
d8d1f30b 3993 init_net.ipv6.ip6_null_entry->dst.dev = init_net.loopback_dev;
8ed67789
DL
3994 init_net.ipv6.ip6_null_entry->rt6i_idev = in6_dev_get(init_net.loopback_dev);
3995 #ifdef CONFIG_IPV6_MULTIPLE_TABLES
d8d1f30b 3996 init_net.ipv6.ip6_prohibit_entry->dst.dev = init_net.loopback_dev;
8ed67789 3997 init_net.ipv6.ip6_prohibit_entry->rt6i_idev = in6_dev_get(init_net.loopback_dev);
d8d1f30b 3998 init_net.ipv6.ip6_blk_hole_entry->dst.dev = init_net.loopback_dev;
8ed67789
DL
3999 init_net.ipv6.ip6_blk_hole_entry->rt6i_idev = in6_dev_get(init_net.loopback_dev);
4000 #endif
e8803b6c 4001 ret = fib6_init();
433d49c3 4002 if (ret)
8ed67789 4003 goto out_register_subsys;
433d49c3 4004
433d49c3
DL
4005 ret = xfrm6_init();
4006 if (ret)
e8803b6c 4007 goto out_fib6_init;
c35b7e72 4008
433d49c3
DL
4009 ret = fib6_rules_init();
4010 if (ret)
4011 goto xfrm6_init;
7e5449c2 4012
d189634e
TG
4013 ret = register_pernet_subsys(&ip6_route_net_late_ops);
4014 if (ret)
4015 goto fib6_rules_init;
4016
433d49c3 4017 ret = -ENOBUFS;
c7ac8679
GR
4018 if (__rtnl_register(PF_INET6, RTM_NEWROUTE, inet6_rtm_newroute, NULL, NULL) ||
4019 __rtnl_register(PF_INET6, RTM_DELROUTE, inet6_rtm_delroute, NULL, NULL) ||
4020 __rtnl_register(PF_INET6, RTM_GETROUTE, inet6_rtm_getroute, NULL, NULL))
d189634e 4021 goto out_register_late_subsys;
c127ea2c 4022
8ed67789 4023 ret = register_netdevice_notifier(&ip6_route_dev_notifier);
cdb18761 4024 if (ret)
d189634e 4025 goto out_register_late_subsys;
8ed67789 4026
8d0b94af
MKL
4027 for_each_possible_cpu(cpu) {
4028 struct uncached_list *ul = per_cpu_ptr(&rt6_uncached_list, cpu);
4029
4030 INIT_LIST_HEAD(&ul->head);
4031 spin_lock_init(&ul->lock);
4032 }
4033
433d49c3
DL
4034out:
4035 return ret;
4036
d189634e
TG
4037out_register_late_subsys:
4038 unregister_pernet_subsys(&ip6_route_net_late_ops);
433d49c3 4039fib6_rules_init:
433d49c3
DL
4040 fib6_rules_cleanup();
4041xfrm6_init:
433d49c3 4042 xfrm6_fini();
2a0c451a
TG
4043out_fib6_init:
4044 fib6_gc_cleanup();
8ed67789
DL
4045out_register_subsys:
4046 unregister_pernet_subsys(&ip6_route_net_ops);
7e52b33b
DM
4047out_register_inetpeer:
4048 unregister_pernet_subsys(&ipv6_inetpeer_ops);
fc66f95c
ED
4049out_dst_entries:
4050 dst_entries_destroy(&ip6_dst_blackhole_ops);
433d49c3 4051out_kmem_cache:
f2fc6a54 4052 kmem_cache_destroy(ip6_dst_ops_template.kmem_cachep);
433d49c3 4053 goto out;
1da177e4
LT
4054}
4055
4056void ip6_route_cleanup(void)
4057{
8ed67789 4058 unregister_netdevice_notifier(&ip6_route_dev_notifier);
d189634e 4059 unregister_pernet_subsys(&ip6_route_net_late_ops);
101367c2 4060 fib6_rules_cleanup();
1da177e4 4061 xfrm6_fini();
1da177e4 4062 fib6_gc_cleanup();
c3426b47 4063 unregister_pernet_subsys(&ipv6_inetpeer_ops);
8ed67789 4064 unregister_pernet_subsys(&ip6_route_net_ops);
41bb78b4 4065 dst_entries_destroy(&ip6_dst_blackhole_ops);
f2fc6a54 4066 kmem_cache_destroy(ip6_dst_ops_template.kmem_cachep);
1da177e4 4067}