]> git.proxmox.com Git - mirror_ubuntu-artful-kernel.git/blame - net/openvswitch/datapath.c
sock_diag: align nlattr properly when needed
[mirror_ubuntu-artful-kernel.git] / net / openvswitch / datapath.c
CommitLineData
ccb1352e 1/*
ad552007 2 * Copyright (c) 2007-2014 Nicira, Inc.
ccb1352e
JG
3 *
4 * This program is free software; you can redistribute it and/or
5 * modify it under the terms of version 2 of the GNU General Public
6 * License as published by the Free Software Foundation.
7 *
8 * This program is distributed in the hope that it will be useful, but
9 * WITHOUT ANY WARRANTY; without even the implied warranty of
10 * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the GNU
11 * General Public License for more details.
12 *
13 * You should have received a copy of the GNU General Public License
14 * along with this program; if not, write to the Free Software
15 * Foundation, Inc., 51 Franklin Street, Fifth Floor, Boston, MA
16 * 02110-1301, USA
17 */
18
19#define pr_fmt(fmt) KBUILD_MODNAME ": " fmt
20
21#include <linux/init.h>
22#include <linux/module.h>
23#include <linux/if_arp.h>
24#include <linux/if_vlan.h>
25#include <linux/in.h>
26#include <linux/ip.h>
27#include <linux/jhash.h>
28#include <linux/delay.h>
29#include <linux/time.h>
30#include <linux/etherdevice.h>
31#include <linux/genetlink.h>
32#include <linux/kernel.h>
33#include <linux/kthread.h>
34#include <linux/mutex.h>
35#include <linux/percpu.h>
36#include <linux/rcupdate.h>
37#include <linux/tcp.h>
38#include <linux/udp.h>
ccb1352e
JG
39#include <linux/ethtool.h>
40#include <linux/wait.h>
ccb1352e
JG
41#include <asm/div64.h>
42#include <linux/highmem.h>
43#include <linux/netfilter_bridge.h>
44#include <linux/netfilter_ipv4.h>
45#include <linux/inetdevice.h>
46#include <linux/list.h>
47#include <linux/openvswitch.h>
48#include <linux/rculist.h>
49#include <linux/dmi.h>
ccb1352e 50#include <net/genetlink.h>
46df7b81
PS
51#include <net/net_namespace.h>
52#include <net/netns/generic.h>
ccb1352e
JG
53
54#include "datapath.h"
55#include "flow.h"
e80857cc 56#include "flow_table.h"
e6445719 57#include "flow_netlink.h"
ccb1352e 58#include "vport-internal_dev.h"
cff63a52 59#include "vport-netdev.h"
ccb1352e 60
8e4e1713 61int ovs_net_id __read_mostly;
9ba559d9 62EXPORT_SYMBOL_GPL(ovs_net_id);
8e4e1713 63
0c200ef9
PS
64static struct genl_family dp_packet_genl_family;
65static struct genl_family dp_flow_genl_family;
66static struct genl_family dp_datapath_genl_family;
67
74ed7ab9
JS
68static const struct nla_policy flow_policy[];
69
48e48a70 70static const struct genl_multicast_group ovs_dp_flow_multicast_group = {
71 .name = OVS_FLOW_MCGROUP,
0c200ef9
PS
72};
73
48e48a70 74static const struct genl_multicast_group ovs_dp_datapath_multicast_group = {
75 .name = OVS_DATAPATH_MCGROUP,
0c200ef9
PS
76};
77
48e48a70 78static const struct genl_multicast_group ovs_dp_vport_multicast_group = {
79 .name = OVS_VPORT_MCGROUP,
0c200ef9
PS
80};
81
fb5d1e9e
JR
82/* Check if need to build a reply message.
83 * OVS userspace sets the NLM_F_ECHO flag if it needs the reply. */
9b67aa4a
SG
84static bool ovs_must_notify(struct genl_family *family, struct genl_info *info,
85 unsigned int group)
fb5d1e9e
JR
86{
87 return info->nlhdr->nlmsg_flags & NLM_F_ECHO ||
f8403a2e 88 genl_has_listeners(family, genl_info_net(info), group);
fb5d1e9e
JR
89}
90
68eb5503 91static void ovs_notify(struct genl_family *family,
2a94fe48 92 struct sk_buff *skb, struct genl_info *info)
ed661185 93{
92c14d9b 94 genl_notify(family, skb, info, 0, GFP_KERNEL);
ed661185
TG
95}
96
ccb1352e
JG
97/**
98 * DOC: Locking:
99 *
8e4e1713
PS
100 * All writes e.g. Writes to device state (add/remove datapath, port, set
101 * operations on vports, etc.), Writes to other state (flow table
102 * modifications, set miscellaneous datapath parameters, etc.) are protected
103 * by ovs_lock.
ccb1352e
JG
104 *
105 * Reads are protected by RCU.
106 *
107 * There are a few special cases (mostly stats) that have their own
108 * synchronization but they nest under all of above and don't interact with
109 * each other.
8e4e1713
PS
110 *
111 * The RTNL lock nests inside ovs_mutex.
ccb1352e
JG
112 */
113
8e4e1713
PS
114static DEFINE_MUTEX(ovs_mutex);
115
116void ovs_lock(void)
117{
118 mutex_lock(&ovs_mutex);
119}
120
121void ovs_unlock(void)
122{
123 mutex_unlock(&ovs_mutex);
124}
125
126#ifdef CONFIG_LOCKDEP
127int lockdep_ovsl_is_held(void)
128{
129 if (debug_locks)
130 return lockdep_is_held(&ovs_mutex);
131 else
132 return 1;
133}
9ba559d9 134EXPORT_SYMBOL_GPL(lockdep_ovsl_is_held);
8e4e1713
PS
135#endif
136
ccb1352e 137static struct vport *new_vport(const struct vport_parms *);
8055a89c 138static int queue_gso_packets(struct datapath *dp, struct sk_buff *,
e8eedb85 139 const struct sw_flow_key *,
ccb1352e 140 const struct dp_upcall_info *);
8055a89c 141static int queue_userspace_packet(struct datapath *dp, struct sk_buff *,
e8eedb85 142 const struct sw_flow_key *,
ccb1352e
JG
143 const struct dp_upcall_info *);
144
cc3a5ae6
AZ
145/* Must be called with rcu_read_lock. */
146static struct datapath *get_dp_rcu(struct net *net, int dp_ifindex)
ccb1352e 147{
cc3a5ae6 148 struct net_device *dev = dev_get_by_index_rcu(net, dp_ifindex);
ccb1352e 149
ccb1352e
JG
150 if (dev) {
151 struct vport *vport = ovs_internal_dev_get_vport(dev);
152 if (vport)
cc3a5ae6 153 return vport->dp;
ccb1352e 154 }
cc3a5ae6
AZ
155
156 return NULL;
157}
158
159/* The caller must hold either ovs_mutex or rcu_read_lock to keep the
160 * returned dp pointer valid.
161 */
162static inline struct datapath *get_dp(struct net *net, int dp_ifindex)
163{
164 struct datapath *dp;
165
166 WARN_ON_ONCE(!rcu_read_lock_held() && !lockdep_ovsl_is_held());
167 rcu_read_lock();
168 dp = get_dp_rcu(net, dp_ifindex);
ccb1352e
JG
169 rcu_read_unlock();
170
171 return dp;
172}
173
8e4e1713 174/* Must be called with rcu_read_lock or ovs_mutex. */
971427f3 175const char *ovs_dp_name(const struct datapath *dp)
ccb1352e 176{
8e4e1713 177 struct vport *vport = ovs_vport_ovsl_rcu(dp, OVSP_LOCAL);
c9db965c 178 return ovs_vport_name(vport);
ccb1352e
JG
179}
180
12eb18f7 181static int get_dpifindex(const struct datapath *dp)
ccb1352e
JG
182{
183 struct vport *local;
184 int ifindex;
185
186 rcu_read_lock();
187
15eac2a7 188 local = ovs_vport_rcu(dp, OVSP_LOCAL);
ccb1352e 189 if (local)
be4ace6e 190 ifindex = local->dev->ifindex;
ccb1352e
JG
191 else
192 ifindex = 0;
193
194 rcu_read_unlock();
195
196 return ifindex;
197}
198
199static void destroy_dp_rcu(struct rcu_head *rcu)
200{
201 struct datapath *dp = container_of(rcu, struct datapath, rcu);
202
9b996e54 203 ovs_flow_tbl_destroy(&dp->table);
ccb1352e 204 free_percpu(dp->stats_percpu);
15eac2a7 205 kfree(dp->ports);
ccb1352e
JG
206 kfree(dp);
207}
208
15eac2a7
PS
209static struct hlist_head *vport_hash_bucket(const struct datapath *dp,
210 u16 port_no)
211{
212 return &dp->ports[port_no & (DP_VPORT_HASH_BUCKETS - 1)];
213}
214
bb6f9a70 215/* Called with ovs_mutex or RCU read lock. */
15eac2a7
PS
216struct vport *ovs_lookup_vport(const struct datapath *dp, u16 port_no)
217{
218 struct vport *vport;
15eac2a7
PS
219 struct hlist_head *head;
220
221 head = vport_hash_bucket(dp, port_no);
b67bfe0d 222 hlist_for_each_entry_rcu(vport, head, dp_hash_node) {
15eac2a7
PS
223 if (vport->port_no == port_no)
224 return vport;
225 }
226 return NULL;
227}
228
8e4e1713 229/* Called with ovs_mutex. */
ccb1352e
JG
230static struct vport *new_vport(const struct vport_parms *parms)
231{
232 struct vport *vport;
233
234 vport = ovs_vport_add(parms);
235 if (!IS_ERR(vport)) {
236 struct datapath *dp = parms->dp;
15eac2a7 237 struct hlist_head *head = vport_hash_bucket(dp, vport->port_no);
ccb1352e 238
15eac2a7 239 hlist_add_head_rcu(&vport->dp_hash_node, head);
ccb1352e 240 }
ccb1352e
JG
241 return vport;
242}
243
ccb1352e
JG
244void ovs_dp_detach_port(struct vport *p)
245{
8e4e1713 246 ASSERT_OVSL();
ccb1352e
JG
247
248 /* First drop references to device. */
15eac2a7 249 hlist_del_rcu(&p->dp_hash_node);
ccb1352e
JG
250
251 /* Then destroy it. */
252 ovs_vport_del(p);
253}
254
255/* Must be called with rcu_read_lock. */
8c8b1b83 256void ovs_dp_process_packet(struct sk_buff *skb, struct sw_flow_key *key)
ccb1352e 257{
83c8df26 258 const struct vport *p = OVS_CB(skb)->input_vport;
ccb1352e
JG
259 struct datapath *dp = p->dp;
260 struct sw_flow *flow;
d98612b8 261 struct sw_flow_actions *sf_acts;
ccb1352e 262 struct dp_stats_percpu *stats;
ccb1352e 263 u64 *stats_counter;
1bd7116f 264 u32 n_mask_hit;
ccb1352e 265
404f2f10 266 stats = this_cpu_ptr(dp->stats_percpu);
ccb1352e 267
ccb1352e 268 /* Look up flow. */
8c8b1b83 269 flow = ovs_flow_tbl_lookup_stats(&dp->table, key, &n_mask_hit);
ccb1352e
JG
270 if (unlikely(!flow)) {
271 struct dp_upcall_info upcall;
8c8b1b83 272 int error;
ccb1352e 273
ccea7445 274 memset(&upcall, 0, sizeof(upcall));
ccb1352e 275 upcall.cmd = OVS_PACKET_CMD_MISS;
5cd667b0 276 upcall.portid = ovs_vport_find_upcall_portid(p, skb);
7f8a436e 277 upcall.mru = OVS_CB(skb)->mru;
e8eedb85 278 error = ovs_dp_upcall(dp, skb, key, &upcall);
c5eba0b6
LR
279 if (unlikely(error))
280 kfree_skb(skb);
281 else
282 consume_skb(skb);
ccb1352e
JG
283 stats_counter = &stats->n_missed;
284 goto out;
285 }
286
d98612b8
LJ
287 ovs_flow_stats_update(flow, key->tp.flags, skb);
288 sf_acts = rcu_dereference(flow->sf_acts);
289 ovs_execute_actions(dp, skb, sf_acts, key);
ccb1352e 290
e298e505 291 stats_counter = &stats->n_hit;
ccb1352e
JG
292
293out:
294 /* Update datapath statistics. */
df9d9fdf 295 u64_stats_update_begin(&stats->syncp);
ccb1352e 296 (*stats_counter)++;
1bd7116f 297 stats->n_mask_hit += n_mask_hit;
df9d9fdf 298 u64_stats_update_end(&stats->syncp);
ccb1352e
JG
299}
300
ccb1352e 301int ovs_dp_upcall(struct datapath *dp, struct sk_buff *skb,
e8eedb85 302 const struct sw_flow_key *key,
46df7b81 303 const struct dp_upcall_info *upcall_info)
ccb1352e
JG
304{
305 struct dp_stats_percpu *stats;
ccb1352e
JG
306 int err;
307
15e47304 308 if (upcall_info->portid == 0) {
ccb1352e
JG
309 err = -ENOTCONN;
310 goto err;
311 }
312
ccb1352e 313 if (!skb_is_gso(skb))
e8eedb85 314 err = queue_userspace_packet(dp, skb, key, upcall_info);
ccb1352e 315 else
e8eedb85 316 err = queue_gso_packets(dp, skb, key, upcall_info);
ccb1352e
JG
317 if (err)
318 goto err;
319
320 return 0;
321
322err:
404f2f10 323 stats = this_cpu_ptr(dp->stats_percpu);
ccb1352e 324
df9d9fdf 325 u64_stats_update_begin(&stats->syncp);
ccb1352e 326 stats->n_lost++;
df9d9fdf 327 u64_stats_update_end(&stats->syncp);
ccb1352e
JG
328
329 return err;
330}
331
8055a89c 332static int queue_gso_packets(struct datapath *dp, struct sk_buff *skb,
e8eedb85 333 const struct sw_flow_key *key,
ccb1352e
JG
334 const struct dp_upcall_info *upcall_info)
335{
a1b5d0dd 336 unsigned short gso_type = skb_shinfo(skb)->gso_type;
ccb1352e
JG
337 struct sw_flow_key later_key;
338 struct sk_buff *segs, *nskb;
339 int err;
340
9207f9d4 341 BUILD_BUG_ON(sizeof(*OVS_CB(skb)) > SKB_SGO_CB_OFFSET);
09c5e605 342 segs = __skb_gso_segment(skb, NETIF_F_SG, false);
92e5dfc3
PS
343 if (IS_ERR(segs))
344 return PTR_ERR(segs);
330966e5
FW
345 if (segs == NULL)
346 return -EINVAL;
ccb1352e 347
e8eedb85
PS
348 if (gso_type & SKB_GSO_UDP) {
349 /* The initial flow key extracted by ovs_flow_key_extract()
350 * in this case is for a first fragment, so we need to
351 * properly mark later fragments.
352 */
353 later_key = *key;
354 later_key.ip.frag = OVS_FRAG_TYPE_LATER;
355 }
356
ccb1352e
JG
357 /* Queue all of the segments. */
358 skb = segs;
359 do {
e8eedb85
PS
360 if (gso_type & SKB_GSO_UDP && skb != segs)
361 key = &later_key;
362
363 err = queue_userspace_packet(dp, skb, key, upcall_info);
ccb1352e
JG
364 if (err)
365 break;
366
ccb1352e
JG
367 } while ((skb = skb->next));
368
369 /* Free all of the segments. */
370 skb = segs;
371 do {
372 nskb = skb->next;
373 if (err)
374 kfree_skb(skb);
375 else
376 consume_skb(skb);
377 } while ((skb = nskb));
378 return err;
379}
380
8f0aad6f 381static size_t upcall_msg_size(const struct dp_upcall_info *upcall_info,
bda56f14 382 unsigned int hdrlen)
c3ff8cfe
TG
383{
384 size_t size = NLMSG_ALIGN(sizeof(struct ovs_header))
bda56f14 385 + nla_total_size(hdrlen) /* OVS_PACKET_ATTR_PACKET */
41af73e9 386 + nla_total_size(ovs_key_attr_size()); /* OVS_PACKET_ATTR_KEY */
c3ff8cfe
TG
387
388 /* OVS_PACKET_ATTR_USERDATA */
8f0aad6f
WZ
389 if (upcall_info->userdata)
390 size += NLA_ALIGN(upcall_info->userdata->nla_len);
391
392 /* OVS_PACKET_ATTR_EGRESS_TUN_KEY */
393 if (upcall_info->egress_tun_info)
394 size += nla_total_size(ovs_tun_key_attr_size());
c3ff8cfe 395
ccea7445
NM
396 /* OVS_PACKET_ATTR_ACTIONS */
397 if (upcall_info->actions_len)
398 size += nla_total_size(upcall_info->actions_len);
399
7f8a436e
JS
400 /* OVS_PACKET_ATTR_MRU */
401 if (upcall_info->mru)
402 size += nla_total_size(sizeof(upcall_info->mru));
403
c3ff8cfe
TG
404 return size;
405}
406
7f8a436e
JS
407static void pad_packet(struct datapath *dp, struct sk_buff *skb)
408{
409 if (!(dp->user_features & OVS_DP_F_UNALIGNED)) {
410 size_t plen = NLA_ALIGN(skb->len) - skb->len;
411
412 if (plen > 0)
413 memset(skb_put(skb, plen), 0, plen);
414 }
415}
416
8055a89c 417static int queue_userspace_packet(struct datapath *dp, struct sk_buff *skb,
e8eedb85 418 const struct sw_flow_key *key,
ccb1352e
JG
419 const struct dp_upcall_info *upcall_info)
420{
421 struct ovs_header *upcall;
422 struct sk_buff *nskb = NULL;
4ee45ea0 423 struct sk_buff *user_skb = NULL; /* to be queued to userspace */
ccb1352e 424 struct nlattr *nla;
795449d8 425 size_t len;
bda56f14 426 unsigned int hlen;
8055a89c
TG
427 int err, dp_ifindex;
428
429 dp_ifindex = get_dpifindex(dp);
430 if (!dp_ifindex)
431 return -ENODEV;
ccb1352e 432
df8a39de 433 if (skb_vlan_tag_present(skb)) {
ccb1352e
JG
434 nskb = skb_clone(skb, GFP_ATOMIC);
435 if (!nskb)
436 return -ENOMEM;
437
5968250c 438 nskb = __vlan_hwaccel_push_inside(nskb);
8aa51d64 439 if (!nskb)
ccb1352e
JG
440 return -ENOMEM;
441
ccb1352e
JG
442 skb = nskb;
443 }
444
445 if (nla_attr_size(skb->len) > USHRT_MAX) {
446 err = -EFBIG;
447 goto out;
448 }
449
bda56f14
TG
450 /* Complete checksum if needed */
451 if (skb->ip_summed == CHECKSUM_PARTIAL &&
452 (err = skb_checksum_help(skb)))
453 goto out;
454
455 /* Older versions of OVS user space enforce alignment of the last
456 * Netlink attribute to NLA_ALIGNTO which would require extensive
457 * padding logic. Only perform zerocopy if padding is not required.
458 */
459 if (dp->user_features & OVS_DP_F_UNALIGNED)
460 hlen = skb_zerocopy_headlen(skb);
461 else
462 hlen = skb->len;
463
8f0aad6f 464 len = upcall_msg_size(upcall_info, hlen);
551ddc05 465 user_skb = genlmsg_new(len, GFP_ATOMIC);
ccb1352e
JG
466 if (!user_skb) {
467 err = -ENOMEM;
468 goto out;
469 }
470
471 upcall = genlmsg_put(user_skb, 0, 0, &dp_packet_genl_family,
472 0, upcall_info->cmd);
473 upcall->dp_ifindex = dp_ifindex;
474
5b4237bb 475 err = ovs_nla_put_key(key, key, OVS_PACKET_ATTR_KEY, false, user_skb);
f53e3831 476 BUG_ON(err);
ccb1352e
JG
477
478 if (upcall_info->userdata)
4490108b
BP
479 __nla_put(user_skb, OVS_PACKET_ATTR_USERDATA,
480 nla_len(upcall_info->userdata),
481 nla_data(upcall_info->userdata));
ccb1352e 482
8f0aad6f
WZ
483 if (upcall_info->egress_tun_info) {
484 nla = nla_nest_start(user_skb, OVS_PACKET_ATTR_EGRESS_TUN_KEY);
fc4099f1
PS
485 err = ovs_nla_put_tunnel_info(user_skb,
486 upcall_info->egress_tun_info);
8f0aad6f
WZ
487 BUG_ON(err);
488 nla_nest_end(user_skb, nla);
489 }
490
ccea7445
NM
491 if (upcall_info->actions_len) {
492 nla = nla_nest_start(user_skb, OVS_PACKET_ATTR_ACTIONS);
493 err = ovs_nla_put_actions(upcall_info->actions,
494 upcall_info->actions_len,
495 user_skb);
496 if (!err)
497 nla_nest_end(user_skb, nla);
498 else
499 nla_nest_cancel(user_skb, nla);
500 }
501
7f8a436e
JS
502 /* Add OVS_PACKET_ATTR_MRU */
503 if (upcall_info->mru) {
504 if (nla_put_u16(user_skb, OVS_PACKET_ATTR_MRU,
505 upcall_info->mru)) {
506 err = -ENOBUFS;
507 goto out;
508 }
509 pad_packet(dp, user_skb);
510 }
511
bda56f14
TG
512 /* Only reserve room for attribute header, packet data is added
513 * in skb_zerocopy() */
514 if (!(nla = nla_reserve(user_skb, OVS_PACKET_ATTR_PACKET, 0))) {
515 err = -ENOBUFS;
516 goto out;
517 }
518 nla->nla_len = nla_attr_size(skb->len);
ccb1352e 519
36d5fe6a
ZK
520 err = skb_zerocopy(user_skb, skb, skb->len, hlen);
521 if (err)
522 goto out;
ccb1352e 523
aea0bb4f 524 /* Pad OVS_PACKET_ATTR_PACKET if linear copy was performed */
7f8a436e 525 pad_packet(dp, user_skb);
aea0bb4f 526
bda56f14 527 ((struct nlmsghdr *) user_skb->data)->nlmsg_len = user_skb->len;
ccb1352e 528
bda56f14 529 err = genlmsg_unicast(ovs_dp_get_net(dp), user_skb, upcall_info->portid);
4ee45ea0 530 user_skb = NULL;
ccb1352e 531out:
36d5fe6a
ZK
532 if (err)
533 skb_tx_error(skb);
4ee45ea0 534 kfree_skb(user_skb);
ccb1352e
JG
535 kfree_skb(nskb);
536 return err;
537}
538
ccb1352e
JG
539static int ovs_packet_cmd_execute(struct sk_buff *skb, struct genl_info *info)
540{
541 struct ovs_header *ovs_header = info->userhdr;
7f8a436e 542 struct net *net = sock_net(skb->sk);
ccb1352e
JG
543 struct nlattr **a = info->attrs;
544 struct sw_flow_actions *acts;
545 struct sk_buff *packet;
546 struct sw_flow *flow;
d98612b8 547 struct sw_flow_actions *sf_acts;
ccb1352e
JG
548 struct datapath *dp;
549 struct ethhdr *eth;
83c8df26 550 struct vport *input_vport;
7f8a436e 551 u16 mru = 0;
ccb1352e
JG
552 int len;
553 int err;
1ba39804 554 bool log = !a[OVS_PACKET_ATTR_PROBE];
ccb1352e
JG
555
556 err = -EINVAL;
557 if (!a[OVS_PACKET_ATTR_PACKET] || !a[OVS_PACKET_ATTR_KEY] ||
dded45fc 558 !a[OVS_PACKET_ATTR_ACTIONS])
ccb1352e
JG
559 goto err;
560
561 len = nla_len(a[OVS_PACKET_ATTR_PACKET]);
562 packet = __dev_alloc_skb(NET_IP_ALIGN + len, GFP_KERNEL);
563 err = -ENOMEM;
564 if (!packet)
565 goto err;
566 skb_reserve(packet, NET_IP_ALIGN);
567
32686a9d 568 nla_memcpy(__skb_put(packet, len), a[OVS_PACKET_ATTR_PACKET], len);
ccb1352e
JG
569
570 skb_reset_mac_header(packet);
571 eth = eth_hdr(packet);
572
573 /* Normally, setting the skb 'protocol' field would be handled by a
574 * call to eth_type_trans(), but it assumes there's a sending
575 * device, which we may not have. */
6713fc9b 576 if (eth_proto_is_802_3(eth->h_proto))
ccb1352e
JG
577 packet->protocol = eth->h_proto;
578 else
579 packet->protocol = htons(ETH_P_802_2);
580
7f8a436e
JS
581 /* Set packet's mru */
582 if (a[OVS_PACKET_ATTR_MRU]) {
583 mru = nla_get_u16(a[OVS_PACKET_ATTR_MRU]);
584 packet->ignore_df = 1;
585 }
586 OVS_CB(packet)->mru = mru;
587
ccb1352e 588 /* Build an sw_flow for sending this packet. */
23dabf88 589 flow = ovs_flow_alloc();
ccb1352e
JG
590 err = PTR_ERR(flow);
591 if (IS_ERR(flow))
592 goto err_kfree_skb;
593
c2ac6673
JS
594 err = ovs_flow_key_extract_userspace(net, a[OVS_PACKET_ATTR_KEY],
595 packet, &flow->key, log);
ccb1352e
JG
596 if (err)
597 goto err_flow_free;
598
7f8a436e 599 err = ovs_nla_copy_actions(net, a[OVS_PACKET_ATTR_ACTIONS],
05da5898 600 &flow->key, &acts, log);
74f84a57
PS
601 if (err)
602 goto err_flow_free;
ccb1352e 603
f5796684 604 rcu_assign_pointer(flow->sf_acts, acts);
ccb1352e 605 packet->priority = flow->key.phy.priority;
39c7caeb 606 packet->mark = flow->key.phy.skb_mark;
ccb1352e
JG
607
608 rcu_read_lock();
7f8a436e 609 dp = get_dp_rcu(net, ovs_header->dp_ifindex);
ccb1352e
JG
610 err = -ENODEV;
611 if (!dp)
612 goto err_unlock;
613
83c8df26
PS
614 input_vport = ovs_vport_rcu(dp, flow->key.phy.in_port);
615 if (!input_vport)
616 input_vport = ovs_vport_rcu(dp, OVSP_LOCAL);
617
618 if (!input_vport)
619 goto err_unlock;
620
7f8a436e 621 packet->dev = input_vport->dev;
83c8df26 622 OVS_CB(packet)->input_vport = input_vport;
d98612b8 623 sf_acts = rcu_dereference(flow->sf_acts);
83c8df26 624
ccb1352e 625 local_bh_disable();
d98612b8 626 err = ovs_execute_actions(dp, packet, sf_acts, &flow->key);
ccb1352e
JG
627 local_bh_enable();
628 rcu_read_unlock();
629
03f0d916 630 ovs_flow_free(flow, false);
ccb1352e
JG
631 return err;
632
633err_unlock:
634 rcu_read_unlock();
635err_flow_free:
03f0d916 636 ovs_flow_free(flow, false);
ccb1352e
JG
637err_kfree_skb:
638 kfree_skb(packet);
639err:
640 return err;
641}
642
643static const struct nla_policy packet_policy[OVS_PACKET_ATTR_MAX + 1] = {
dded45fc 644 [OVS_PACKET_ATTR_PACKET] = { .len = ETH_HLEN },
ccb1352e
JG
645 [OVS_PACKET_ATTR_KEY] = { .type = NLA_NESTED },
646 [OVS_PACKET_ATTR_ACTIONS] = { .type = NLA_NESTED },
1ba39804 647 [OVS_PACKET_ATTR_PROBE] = { .type = NLA_FLAG },
7f8a436e 648 [OVS_PACKET_ATTR_MRU] = { .type = NLA_U16 },
ccb1352e
JG
649};
650
4534de83 651static const struct genl_ops dp_packet_genl_ops[] = {
ccb1352e 652 { .cmd = OVS_PACKET_CMD_EXECUTE,
4a92602a 653 .flags = GENL_UNS_ADMIN_PERM, /* Requires CAP_NET_ADMIN privilege. */
ccb1352e
JG
654 .policy = packet_policy,
655 .doit = ovs_packet_cmd_execute
656 }
657};
658
0c200ef9
PS
659static struct genl_family dp_packet_genl_family = {
660 .id = GENL_ID_GENERATE,
661 .hdrsize = sizeof(struct ovs_header),
662 .name = OVS_PACKET_FAMILY,
663 .version = OVS_PACKET_VERSION,
664 .maxattr = OVS_PACKET_ATTR_MAX,
665 .netnsok = true,
666 .parallel_ops = true,
667 .ops = dp_packet_genl_ops,
668 .n_ops = ARRAY_SIZE(dp_packet_genl_ops),
669};
670
12eb18f7 671static void get_dp_stats(const struct datapath *dp, struct ovs_dp_stats *stats,
1bd7116f 672 struct ovs_dp_megaflow_stats *mega_stats)
ccb1352e
JG
673{
674 int i;
ccb1352e 675
1bd7116f
AZ
676 memset(mega_stats, 0, sizeof(*mega_stats));
677
b637e498 678 stats->n_flows = ovs_flow_tbl_count(&dp->table);
1bd7116f 679 mega_stats->n_masks = ovs_flow_tbl_num_masks(&dp->table);
ccb1352e
JG
680
681 stats->n_hit = stats->n_missed = stats->n_lost = 0;
1bd7116f 682
ccb1352e
JG
683 for_each_possible_cpu(i) {
684 const struct dp_stats_percpu *percpu_stats;
685 struct dp_stats_percpu local_stats;
686 unsigned int start;
687
688 percpu_stats = per_cpu_ptr(dp->stats_percpu, i);
689
690 do {
57a7744e 691 start = u64_stats_fetch_begin_irq(&percpu_stats->syncp);
ccb1352e 692 local_stats = *percpu_stats;
57a7744e 693 } while (u64_stats_fetch_retry_irq(&percpu_stats->syncp, start));
ccb1352e
JG
694
695 stats->n_hit += local_stats.n_hit;
696 stats->n_missed += local_stats.n_missed;
697 stats->n_lost += local_stats.n_lost;
1bd7116f 698 mega_stats->n_mask_hit += local_stats.n_mask_hit;
ccb1352e
JG
699 }
700}
701
74ed7ab9
JS
702static bool should_fill_key(const struct sw_flow_id *sfid, uint32_t ufid_flags)
703{
704 return ovs_identifier_is_ufid(sfid) &&
705 !(ufid_flags & OVS_UFID_F_OMIT_KEY);
706}
707
708static bool should_fill_mask(uint32_t ufid_flags)
709{
710 return !(ufid_flags & OVS_UFID_F_OMIT_MASK);
711}
712
713static bool should_fill_actions(uint32_t ufid_flags)
c3ff8cfe 714{
74ed7ab9
JS
715 return !(ufid_flags & OVS_UFID_F_OMIT_ACTIONS);
716}
717
718static size_t ovs_flow_cmd_msg_size(const struct sw_flow_actions *acts,
719 const struct sw_flow_id *sfid,
720 uint32_t ufid_flags)
721{
722 size_t len = NLMSG_ALIGN(sizeof(struct ovs_header));
723
724 /* OVS_FLOW_ATTR_UFID */
725 if (sfid && ovs_identifier_is_ufid(sfid))
726 len += nla_total_size(sfid->ufid_len);
727
728 /* OVS_FLOW_ATTR_KEY */
729 if (!sfid || should_fill_key(sfid, ufid_flags))
730 len += nla_total_size(ovs_key_attr_size());
731
732 /* OVS_FLOW_ATTR_MASK */
733 if (should_fill_mask(ufid_flags))
734 len += nla_total_size(ovs_key_attr_size());
735
736 /* OVS_FLOW_ATTR_ACTIONS */
737 if (should_fill_actions(ufid_flags))
8e2fed1c 738 len += nla_total_size(acts->orig_len);
74ed7ab9
JS
739
740 return len
c3ff8cfe
TG
741 + nla_total_size(sizeof(struct ovs_flow_stats)) /* OVS_FLOW_ATTR_STATS */
742 + nla_total_size(1) /* OVS_FLOW_ATTR_TCP_FLAGS */
74ed7ab9 743 + nla_total_size(8); /* OVS_FLOW_ATTR_USED */
c3ff8cfe
TG
744}
745
ca7105f2
JS
746/* Called with ovs_mutex or RCU read lock. */
747static int ovs_flow_cmd_fill_stats(const struct sw_flow *flow,
748 struct sk_buff *skb)
749{
750 struct ovs_flow_stats stats;
751 __be16 tcp_flags;
752 unsigned long used;
ccb1352e 753
e298e505 754 ovs_flow_stats_get(flow, &stats, &used, &tcp_flags);
0e9796b4 755
028d6a67 756 if (used &&
0238b720
ND
757 nla_put_u64_64bit(skb, OVS_FLOW_ATTR_USED, ovs_flow_used_time(used),
758 OVS_FLOW_ATTR_PAD))
ca7105f2 759 return -EMSGSIZE;
ccb1352e 760
028d6a67 761 if (stats.n_packets &&
e298e505 762 nla_put(skb, OVS_FLOW_ATTR_STATS, sizeof(struct ovs_flow_stats), &stats))
ca7105f2 763 return -EMSGSIZE;
ccb1352e 764
e298e505
PS
765 if ((u8)ntohs(tcp_flags) &&
766 nla_put_u8(skb, OVS_FLOW_ATTR_TCP_FLAGS, (u8)ntohs(tcp_flags)))
ca7105f2
JS
767 return -EMSGSIZE;
768
769 return 0;
770}
771
772/* Called with ovs_mutex or RCU read lock. */
773static int ovs_flow_cmd_fill_actions(const struct sw_flow *flow,
774 struct sk_buff *skb, int skb_orig_len)
775{
776 struct nlattr *start;
777 int err;
ccb1352e
JG
778
779 /* If OVS_FLOW_ATTR_ACTIONS doesn't fit, skip dumping the actions if
780 * this is the first flow to be dumped into 'skb'. This is unusual for
781 * Netlink but individual action lists can be longer than
782 * NLMSG_GOODSIZE and thus entirely undumpable if we didn't do this.
783 * The userspace caller can always fetch the actions separately if it
784 * really wants them. (Most userspace callers in fact don't care.)
785 *
786 * This can only fail for dump operations because the skb is always
787 * properly sized for single flows.
788 */
74f84a57
PS
789 start = nla_nest_start(skb, OVS_FLOW_ATTR_ACTIONS);
790 if (start) {
d57170b1
PS
791 const struct sw_flow_actions *sf_acts;
792
663efa36 793 sf_acts = rcu_dereference_ovsl(flow->sf_acts);
e6445719
PS
794 err = ovs_nla_put_actions(sf_acts->actions,
795 sf_acts->actions_len, skb);
0e9796b4 796
74f84a57
PS
797 if (!err)
798 nla_nest_end(skb, start);
799 else {
800 if (skb_orig_len)
ca7105f2 801 return err;
74f84a57
PS
802
803 nla_nest_cancel(skb, start);
804 }
ca7105f2
JS
805 } else if (skb_orig_len) {
806 return -EMSGSIZE;
807 }
808
809 return 0;
810}
811
812/* Called with ovs_mutex or RCU read lock. */
813static int ovs_flow_cmd_fill_info(const struct sw_flow *flow, int dp_ifindex,
814 struct sk_buff *skb, u32 portid,
74ed7ab9 815 u32 seq, u32 flags, u8 cmd, u32 ufid_flags)
ca7105f2
JS
816{
817 const int skb_orig_len = skb->len;
818 struct ovs_header *ovs_header;
819 int err;
820
821 ovs_header = genlmsg_put(skb, portid, seq, &dp_flow_genl_family,
822 flags, cmd);
823 if (!ovs_header)
824 return -EMSGSIZE;
825
826 ovs_header->dp_ifindex = dp_ifindex;
827
74ed7ab9 828 err = ovs_nla_put_identifier(flow, skb);
5b4237bb
JS
829 if (err)
830 goto error;
831
74ed7ab9
JS
832 if (should_fill_key(&flow->id, ufid_flags)) {
833 err = ovs_nla_put_masked_key(flow, skb);
834 if (err)
835 goto error;
836 }
837
838 if (should_fill_mask(ufid_flags)) {
839 err = ovs_nla_put_mask(flow, skb);
840 if (err)
841 goto error;
842 }
ca7105f2
JS
843
844 err = ovs_flow_cmd_fill_stats(flow, skb);
845 if (err)
846 goto error;
847
74ed7ab9
JS
848 if (should_fill_actions(ufid_flags)) {
849 err = ovs_flow_cmd_fill_actions(flow, skb, skb_orig_len);
850 if (err)
851 goto error;
852 }
ccb1352e 853
053c095a
JB
854 genlmsg_end(skb, ovs_header);
855 return 0;
ccb1352e 856
ccb1352e
JG
857error:
858 genlmsg_cancel(skb, ovs_header);
859 return err;
860}
861
0e9796b4
JR
862/* May not be called with RCU read lock. */
863static struct sk_buff *ovs_flow_cmd_alloc_info(const struct sw_flow_actions *acts,
74ed7ab9 864 const struct sw_flow_id *sfid,
fb5d1e9e 865 struct genl_info *info,
74ed7ab9
JS
866 bool always,
867 uint32_t ufid_flags)
ccb1352e 868{
fb5d1e9e 869 struct sk_buff *skb;
74ed7ab9 870 size_t len;
ccb1352e 871
9b67aa4a 872 if (!always && !ovs_must_notify(&dp_flow_genl_family, info, 0))
fb5d1e9e
JR
873 return NULL;
874
74ed7ab9 875 len = ovs_flow_cmd_msg_size(acts, sfid, ufid_flags);
551ddc05 876 skb = genlmsg_new(len, GFP_KERNEL);
fb5d1e9e
JR
877 if (!skb)
878 return ERR_PTR(-ENOMEM);
879
880 return skb;
ccb1352e
JG
881}
882
0e9796b4
JR
883/* Called with ovs_mutex. */
884static struct sk_buff *ovs_flow_cmd_build_info(const struct sw_flow *flow,
885 int dp_ifindex,
886 struct genl_info *info, u8 cmd,
74ed7ab9 887 bool always, u32 ufid_flags)
ccb1352e
JG
888{
889 struct sk_buff *skb;
890 int retval;
891
74ed7ab9
JS
892 skb = ovs_flow_cmd_alloc_info(ovsl_dereference(flow->sf_acts),
893 &flow->id, info, always, ufid_flags);
d0e992aa 894 if (IS_ERR_OR_NULL(skb))
fb5d1e9e 895 return skb;
ccb1352e 896
0e9796b4
JR
897 retval = ovs_flow_cmd_fill_info(flow, dp_ifindex, skb,
898 info->snd_portid, info->snd_seq, 0,
74ed7ab9 899 cmd, ufid_flags);
ccb1352e
JG
900 BUG_ON(retval < 0);
901 return skb;
902}
903
37bdc87b 904static int ovs_flow_cmd_new(struct sk_buff *skb, struct genl_info *info)
ccb1352e 905{
7f8a436e 906 struct net *net = sock_net(skb->sk);
ccb1352e
JG
907 struct nlattr **a = info->attrs;
908 struct ovs_header *ovs_header = info->userhdr;
74ed7ab9 909 struct sw_flow *flow = NULL, *new_flow;
03f0d916 910 struct sw_flow_mask mask;
ccb1352e
JG
911 struct sk_buff *reply;
912 struct datapath *dp;
74ed7ab9 913 struct sw_flow_key key;
37bdc87b 914 struct sw_flow_actions *acts;
03f0d916 915 struct sw_flow_match match;
74ed7ab9 916 u32 ufid_flags = ovs_nla_get_ufid_flags(a[OVS_FLOW_ATTR_UFID_FLAGS]);
ccb1352e 917 int error;
05da5898 918 bool log = !a[OVS_FLOW_ATTR_PROBE];
ccb1352e 919
893f139b 920 /* Must have key and actions. */
ccb1352e 921 error = -EINVAL;
426cda5c 922 if (!a[OVS_FLOW_ATTR_KEY]) {
05da5898 923 OVS_NLERR(log, "Flow key attr not present in new flow.");
ccb1352e 924 goto error;
426cda5c
JG
925 }
926 if (!a[OVS_FLOW_ATTR_ACTIONS]) {
05da5898 927 OVS_NLERR(log, "Flow actions attr not present in new flow.");
893f139b 928 goto error;
426cda5c 929 }
03f0d916 930
893f139b
JR
931 /* Most of the time we need to allocate a new flow, do it before
932 * locking.
933 */
934 new_flow = ovs_flow_alloc();
935 if (IS_ERR(new_flow)) {
936 error = PTR_ERR(new_flow);
937 goto error;
938 }
939
940 /* Extract key. */
74ed7ab9 941 ovs_match_init(&match, &key, &mask);
c2ac6673 942 error = ovs_nla_get_match(net, &match, a[OVS_FLOW_ATTR_KEY],
05da5898 943 a[OVS_FLOW_ATTR_MASK], log);
ccb1352e 944 if (error)
893f139b 945 goto err_kfree_flow;
ccb1352e 946
ae5f2fb1 947 ovs_flow_mask_key(&new_flow->key, &key, true, &mask);
74ed7ab9
JS
948
949 /* Extract flow identifier. */
950 error = ovs_nla_get_identifier(&new_flow->id, a[OVS_FLOW_ATTR_UFID],
951 &key, log);
952 if (error)
953 goto err_kfree_flow;
74f84a57 954
893f139b 955 /* Validate actions. */
7f8a436e
JS
956 error = ovs_nla_copy_actions(net, a[OVS_FLOW_ATTR_ACTIONS],
957 &new_flow->key, &acts, log);
37bdc87b 958 if (error) {
05da5898 959 OVS_NLERR(log, "Flow actions may not be safe on all matching packets.");
2fdb957d 960 goto err_kfree_flow;
893f139b
JR
961 }
962
74ed7ab9
JS
963 reply = ovs_flow_cmd_alloc_info(acts, &new_flow->id, info, false,
964 ufid_flags);
893f139b
JR
965 if (IS_ERR(reply)) {
966 error = PTR_ERR(reply);
967 goto err_kfree_acts;
ccb1352e
JG
968 }
969
8e4e1713 970 ovs_lock();
7f8a436e 971 dp = get_dp(net, ovs_header->dp_ifindex);
893f139b
JR
972 if (unlikely(!dp)) {
973 error = -ENODEV;
8e4e1713 974 goto err_unlock_ovs;
893f139b 975 }
74ed7ab9 976
03f0d916 977 /* Check if this is a duplicate flow */
74ed7ab9
JS
978 if (ovs_identifier_is_ufid(&new_flow->id))
979 flow = ovs_flow_tbl_lookup_ufid(&dp->table, &new_flow->id);
980 if (!flow)
981 flow = ovs_flow_tbl_lookup(&dp->table, &key);
893f139b
JR
982 if (likely(!flow)) {
983 rcu_assign_pointer(new_flow->sf_acts, acts);
ccb1352e
JG
984
985 /* Put flow in bucket. */
893f139b
JR
986 error = ovs_flow_tbl_insert(&dp->table, new_flow, &mask);
987 if (unlikely(error)) {
618ed0c8 988 acts = NULL;
893f139b
JR
989 goto err_unlock_ovs;
990 }
991
992 if (unlikely(reply)) {
993 error = ovs_flow_cmd_fill_info(new_flow,
994 ovs_header->dp_ifindex,
995 reply, info->snd_portid,
996 info->snd_seq, 0,
74ed7ab9
JS
997 OVS_FLOW_CMD_NEW,
998 ufid_flags);
893f139b 999 BUG_ON(error < 0);
618ed0c8 1000 }
893f139b 1001 ovs_unlock();
ccb1352e 1002 } else {
37bdc87b
JR
1003 struct sw_flow_actions *old_acts;
1004
ccb1352e
JG
1005 /* Bail out if we're not allowed to modify an existing flow.
1006 * We accept NLM_F_CREATE in place of the intended NLM_F_EXCL
1007 * because Generic Netlink treats the latter as a dump
1008 * request. We also accept NLM_F_EXCL in case that bug ever
1009 * gets fixed.
1010 */
893f139b
JR
1011 if (unlikely(info->nlhdr->nlmsg_flags & (NLM_F_CREATE
1012 | NLM_F_EXCL))) {
1013 error = -EEXIST;
8e4e1713 1014 goto err_unlock_ovs;
893f139b 1015 }
74ed7ab9
JS
1016 /* The flow identifier has to be the same for flow updates.
1017 * Look for any overlapping flow.
1018 */
1019 if (unlikely(!ovs_flow_cmp(flow, &match))) {
1020 if (ovs_identifier_is_key(&flow->id))
1021 flow = ovs_flow_tbl_lookup_exact(&dp->table,
1022 &match);
1023 else /* UFID matches but key is different */
1024 flow = NULL;
4a46b24e
AW
1025 if (!flow) {
1026 error = -ENOENT;
1027 goto err_unlock_ovs;
1028 }
893f139b 1029 }
37bdc87b
JR
1030 /* Update actions. */
1031 old_acts = ovsl_dereference(flow->sf_acts);
1032 rcu_assign_pointer(flow->sf_acts, acts);
37bdc87b 1033
893f139b
JR
1034 if (unlikely(reply)) {
1035 error = ovs_flow_cmd_fill_info(flow,
1036 ovs_header->dp_ifindex,
1037 reply, info->snd_portid,
1038 info->snd_seq, 0,
74ed7ab9
JS
1039 OVS_FLOW_CMD_NEW,
1040 ufid_flags);
893f139b
JR
1041 BUG_ON(error < 0);
1042 }
1043 ovs_unlock();
37bdc87b 1044
34ae932a 1045 ovs_nla_free_flow_actions_rcu(old_acts);
893f139b 1046 ovs_flow_free(new_flow, false);
37bdc87b 1047 }
893f139b
JR
1048
1049 if (reply)
1050 ovs_notify(&dp_flow_genl_family, reply, info);
37bdc87b
JR
1051 return 0;
1052
37bdc87b
JR
1053err_unlock_ovs:
1054 ovs_unlock();
893f139b
JR
1055 kfree_skb(reply);
1056err_kfree_acts:
34ae932a 1057 ovs_nla_free_flow_actions(acts);
893f139b
JR
1058err_kfree_flow:
1059 ovs_flow_free(new_flow, false);
37bdc87b
JR
1060error:
1061 return error;
1062}
ccb1352e 1063
2fdb957d 1064/* Factor out action copy to avoid "Wframe-larger-than=1024" warning. */
7f8a436e
JS
1065static struct sw_flow_actions *get_flow_actions(struct net *net,
1066 const struct nlattr *a,
6b205b2c 1067 const struct sw_flow_key *key,
05da5898
JR
1068 const struct sw_flow_mask *mask,
1069 bool log)
6b205b2c
JG
1070{
1071 struct sw_flow_actions *acts;
1072 struct sw_flow_key masked_key;
1073 int error;
1074
ae5f2fb1 1075 ovs_flow_mask_key(&masked_key, key, true, mask);
7f8a436e 1076 error = ovs_nla_copy_actions(net, a, &masked_key, &acts, log);
6b205b2c 1077 if (error) {
05da5898
JR
1078 OVS_NLERR(log,
1079 "Actions may not be safe on all matching packets");
6b205b2c
JG
1080 return ERR_PTR(error);
1081 }
1082
1083 return acts;
1084}
1085
37bdc87b
JR
1086static int ovs_flow_cmd_set(struct sk_buff *skb, struct genl_info *info)
1087{
7f8a436e 1088 struct net *net = sock_net(skb->sk);
37bdc87b
JR
1089 struct nlattr **a = info->attrs;
1090 struct ovs_header *ovs_header = info->userhdr;
6b205b2c 1091 struct sw_flow_key key;
37bdc87b
JR
1092 struct sw_flow *flow;
1093 struct sw_flow_mask mask;
1094 struct sk_buff *reply = NULL;
1095 struct datapath *dp;
893f139b 1096 struct sw_flow_actions *old_acts = NULL, *acts = NULL;
37bdc87b 1097 struct sw_flow_match match;
74ed7ab9
JS
1098 struct sw_flow_id sfid;
1099 u32 ufid_flags = ovs_nla_get_ufid_flags(a[OVS_FLOW_ATTR_UFID_FLAGS]);
6f15cdbf 1100 int error = 0;
05da5898 1101 bool log = !a[OVS_FLOW_ATTR_PROBE];
74ed7ab9 1102 bool ufid_present;
37bdc87b 1103
74ed7ab9 1104 ufid_present = ovs_nla_get_ufid(&sfid, a[OVS_FLOW_ATTR_UFID], log);
6f15cdbf
SG
1105 if (a[OVS_FLOW_ATTR_KEY]) {
1106 ovs_match_init(&match, &key, &mask);
1107 error = ovs_nla_get_match(net, &match, a[OVS_FLOW_ATTR_KEY],
1108 a[OVS_FLOW_ATTR_MASK], log);
1109 } else if (!ufid_present) {
1110 OVS_NLERR(log,
1111 "Flow set message rejected, Key attribute missing.");
1112 error = -EINVAL;
1113 }
37bdc87b
JR
1114 if (error)
1115 goto error;
1116
1117 /* Validate actions. */
1118 if (a[OVS_FLOW_ATTR_ACTIONS]) {
6f15cdbf
SG
1119 if (!a[OVS_FLOW_ATTR_KEY]) {
1120 OVS_NLERR(log,
1121 "Flow key attribute not present in set flow.");
1122 error = -EINVAL;
1123 goto error;
1124 }
1125
7f8a436e
JS
1126 acts = get_flow_actions(net, a[OVS_FLOW_ATTR_ACTIONS], &key,
1127 &mask, log);
6b205b2c
JG
1128 if (IS_ERR(acts)) {
1129 error = PTR_ERR(acts);
37bdc87b 1130 goto error;
893f139b 1131 }
893f139b 1132
2fdb957d 1133 /* Can allocate before locking if have acts. */
74ed7ab9
JS
1134 reply = ovs_flow_cmd_alloc_info(acts, &sfid, info, false,
1135 ufid_flags);
893f139b
JR
1136 if (IS_ERR(reply)) {
1137 error = PTR_ERR(reply);
1138 goto err_kfree_acts;
be52c9e9 1139 }
37bdc87b 1140 }
0e9796b4 1141
37bdc87b 1142 ovs_lock();
7f8a436e 1143 dp = get_dp(net, ovs_header->dp_ifindex);
893f139b
JR
1144 if (unlikely(!dp)) {
1145 error = -ENODEV;
37bdc87b 1146 goto err_unlock_ovs;
893f139b 1147 }
37bdc87b 1148 /* Check that the flow exists. */
74ed7ab9
JS
1149 if (ufid_present)
1150 flow = ovs_flow_tbl_lookup_ufid(&dp->table, &sfid);
1151 else
1152 flow = ovs_flow_tbl_lookup_exact(&dp->table, &match);
893f139b
JR
1153 if (unlikely(!flow)) {
1154 error = -ENOENT;
37bdc87b 1155 goto err_unlock_ovs;
893f139b 1156 }
4a46b24e 1157
37bdc87b 1158 /* Update actions, if present. */
893f139b 1159 if (likely(acts)) {
37bdc87b
JR
1160 old_acts = ovsl_dereference(flow->sf_acts);
1161 rcu_assign_pointer(flow->sf_acts, acts);
893f139b
JR
1162
1163 if (unlikely(reply)) {
1164 error = ovs_flow_cmd_fill_info(flow,
1165 ovs_header->dp_ifindex,
1166 reply, info->snd_portid,
1167 info->snd_seq, 0,
74ed7ab9
JS
1168 OVS_FLOW_CMD_NEW,
1169 ufid_flags);
893f139b
JR
1170 BUG_ON(error < 0);
1171 }
1172 } else {
1173 /* Could not alloc without acts before locking. */
1174 reply = ovs_flow_cmd_build_info(flow, ovs_header->dp_ifindex,
74ed7ab9
JS
1175 info, OVS_FLOW_CMD_NEW, false,
1176 ufid_flags);
1177
b5ffe634 1178 if (IS_ERR(reply)) {
893f139b
JR
1179 error = PTR_ERR(reply);
1180 goto err_unlock_ovs;
1181 }
ccb1352e 1182 }
37bdc87b 1183
37bdc87b
JR
1184 /* Clear stats. */
1185 if (a[OVS_FLOW_ATTR_CLEAR])
1186 ovs_flow_stats_clear(flow);
8e4e1713 1187 ovs_unlock();
ccb1352e 1188
893f139b
JR
1189 if (reply)
1190 ovs_notify(&dp_flow_genl_family, reply, info);
1191 if (old_acts)
34ae932a 1192 ovs_nla_free_flow_actions_rcu(old_acts);
fb5d1e9e 1193
ccb1352e
JG
1194 return 0;
1195
8e4e1713
PS
1196err_unlock_ovs:
1197 ovs_unlock();
893f139b
JR
1198 kfree_skb(reply);
1199err_kfree_acts:
34ae932a 1200 ovs_nla_free_flow_actions(acts);
ccb1352e
JG
1201error:
1202 return error;
1203}
1204
1205static int ovs_flow_cmd_get(struct sk_buff *skb, struct genl_info *info)
1206{
1207 struct nlattr **a = info->attrs;
1208 struct ovs_header *ovs_header = info->userhdr;
c2ac6673 1209 struct net *net = sock_net(skb->sk);
ccb1352e
JG
1210 struct sw_flow_key key;
1211 struct sk_buff *reply;
1212 struct sw_flow *flow;
1213 struct datapath *dp;
03f0d916 1214 struct sw_flow_match match;
74ed7ab9
JS
1215 struct sw_flow_id ufid;
1216 u32 ufid_flags = ovs_nla_get_ufid_flags(a[OVS_FLOW_ATTR_UFID_FLAGS]);
1217 int err = 0;
05da5898 1218 bool log = !a[OVS_FLOW_ATTR_PROBE];
74ed7ab9 1219 bool ufid_present;
ccb1352e 1220
74ed7ab9
JS
1221 ufid_present = ovs_nla_get_ufid(&ufid, a[OVS_FLOW_ATTR_UFID], log);
1222 if (a[OVS_FLOW_ATTR_KEY]) {
1223 ovs_match_init(&match, &key, NULL);
c2ac6673 1224 err = ovs_nla_get_match(net, &match, a[OVS_FLOW_ATTR_KEY], NULL,
74ed7ab9
JS
1225 log);
1226 } else if (!ufid_present) {
05da5898
JR
1227 OVS_NLERR(log,
1228 "Flow get message rejected, Key attribute missing.");
74ed7ab9 1229 err = -EINVAL;
03f0d916 1230 }
ccb1352e
JG
1231 if (err)
1232 return err;
1233
8e4e1713 1234 ovs_lock();
46df7b81 1235 dp = get_dp(sock_net(skb->sk), ovs_header->dp_ifindex);
8e4e1713
PS
1236 if (!dp) {
1237 err = -ENODEV;
1238 goto unlock;
1239 }
ccb1352e 1240
74ed7ab9
JS
1241 if (ufid_present)
1242 flow = ovs_flow_tbl_lookup_ufid(&dp->table, &ufid);
1243 else
1244 flow = ovs_flow_tbl_lookup_exact(&dp->table, &match);
4a46b24e 1245 if (!flow) {
8e4e1713
PS
1246 err = -ENOENT;
1247 goto unlock;
1248 }
ccb1352e 1249
0e9796b4 1250 reply = ovs_flow_cmd_build_info(flow, ovs_header->dp_ifindex, info,
74ed7ab9 1251 OVS_FLOW_CMD_NEW, true, ufid_flags);
8e4e1713
PS
1252 if (IS_ERR(reply)) {
1253 err = PTR_ERR(reply);
1254 goto unlock;
1255 }
ccb1352e 1256
8e4e1713 1257 ovs_unlock();
ccb1352e 1258 return genlmsg_reply(reply, info);
8e4e1713
PS
1259unlock:
1260 ovs_unlock();
1261 return err;
ccb1352e
JG
1262}
1263
1264static int ovs_flow_cmd_del(struct sk_buff *skb, struct genl_info *info)
1265{
1266 struct nlattr **a = info->attrs;
1267 struct ovs_header *ovs_header = info->userhdr;
c2ac6673 1268 struct net *net = sock_net(skb->sk);
ccb1352e
JG
1269 struct sw_flow_key key;
1270 struct sk_buff *reply;
74ed7ab9 1271 struct sw_flow *flow = NULL;
ccb1352e 1272 struct datapath *dp;
03f0d916 1273 struct sw_flow_match match;
74ed7ab9
JS
1274 struct sw_flow_id ufid;
1275 u32 ufid_flags = ovs_nla_get_ufid_flags(a[OVS_FLOW_ATTR_UFID_FLAGS]);
ccb1352e 1276 int err;
05da5898 1277 bool log = !a[OVS_FLOW_ATTR_PROBE];
74ed7ab9 1278 bool ufid_present;
ccb1352e 1279
74ed7ab9
JS
1280 ufid_present = ovs_nla_get_ufid(&ufid, a[OVS_FLOW_ATTR_UFID], log);
1281 if (a[OVS_FLOW_ATTR_KEY]) {
aed06778 1282 ovs_match_init(&match, &key, NULL);
c2ac6673
JS
1283 err = ovs_nla_get_match(net, &match, a[OVS_FLOW_ATTR_KEY],
1284 NULL, log);
aed06778
JR
1285 if (unlikely(err))
1286 return err;
1287 }
1288
8e4e1713 1289 ovs_lock();
46df7b81 1290 dp = get_dp(sock_net(skb->sk), ovs_header->dp_ifindex);
aed06778 1291 if (unlikely(!dp)) {
8e4e1713
PS
1292 err = -ENODEV;
1293 goto unlock;
1294 }
46df7b81 1295
74ed7ab9 1296 if (unlikely(!a[OVS_FLOW_ATTR_KEY] && !ufid_present)) {
b637e498 1297 err = ovs_flow_tbl_flush(&dp->table);
8e4e1713
PS
1298 goto unlock;
1299 }
03f0d916 1300
74ed7ab9
JS
1301 if (ufid_present)
1302 flow = ovs_flow_tbl_lookup_ufid(&dp->table, &ufid);
1303 else
1304 flow = ovs_flow_tbl_lookup_exact(&dp->table, &match);
4a46b24e 1305 if (unlikely(!flow)) {
8e4e1713
PS
1306 err = -ENOENT;
1307 goto unlock;
1308 }
ccb1352e 1309
b637e498 1310 ovs_flow_tbl_remove(&dp->table, flow);
aed06778 1311 ovs_unlock();
ccb1352e 1312
aed06778 1313 reply = ovs_flow_cmd_alloc_info((const struct sw_flow_actions __force *) flow->sf_acts,
74ed7ab9 1314 &flow->id, info, false, ufid_flags);
aed06778
JR
1315 if (likely(reply)) {
1316 if (likely(!IS_ERR(reply))) {
1317 rcu_read_lock(); /*To keep RCU checker happy. */
1318 err = ovs_flow_cmd_fill_info(flow, ovs_header->dp_ifindex,
1319 reply, info->snd_portid,
1320 info->snd_seq, 0,
74ed7ab9
JS
1321 OVS_FLOW_CMD_DEL,
1322 ufid_flags);
aed06778
JR
1323 rcu_read_unlock();
1324 BUG_ON(err < 0);
1325
1326 ovs_notify(&dp_flow_genl_family, reply, info);
1327 } else {
1328 netlink_set_err(sock_net(skb->sk)->genl_sock, 0, 0, PTR_ERR(reply));
1329 }
fb5d1e9e 1330 }
ccb1352e 1331
aed06778 1332 ovs_flow_free(flow, true);
ccb1352e 1333 return 0;
8e4e1713
PS
1334unlock:
1335 ovs_unlock();
1336 return err;
ccb1352e
JG
1337}
1338
1339static int ovs_flow_cmd_dump(struct sk_buff *skb, struct netlink_callback *cb)
1340{
74ed7ab9 1341 struct nlattr *a[__OVS_FLOW_ATTR_MAX];
ccb1352e 1342 struct ovs_header *ovs_header = genlmsg_data(nlmsg_data(cb->nlh));
b637e498 1343 struct table_instance *ti;
ccb1352e 1344 struct datapath *dp;
74ed7ab9
JS
1345 u32 ufid_flags;
1346 int err;
1347
1348 err = genlmsg_parse(cb->nlh, &dp_flow_genl_family, a,
1349 OVS_FLOW_ATTR_MAX, flow_policy);
1350 if (err)
1351 return err;
1352 ufid_flags = ovs_nla_get_ufid_flags(a[OVS_FLOW_ATTR_UFID_FLAGS]);
ccb1352e 1353
d57170b1 1354 rcu_read_lock();
cc3a5ae6 1355 dp = get_dp_rcu(sock_net(skb->sk), ovs_header->dp_ifindex);
8e4e1713 1356 if (!dp) {
d57170b1 1357 rcu_read_unlock();
ccb1352e 1358 return -ENODEV;
8e4e1713 1359 }
ccb1352e 1360
b637e498 1361 ti = rcu_dereference(dp->table.ti);
ccb1352e
JG
1362 for (;;) {
1363 struct sw_flow *flow;
1364 u32 bucket, obj;
1365
1366 bucket = cb->args[0];
1367 obj = cb->args[1];
b637e498 1368 flow = ovs_flow_tbl_dump_next(ti, &bucket, &obj);
ccb1352e
JG
1369 if (!flow)
1370 break;
1371
0e9796b4 1372 if (ovs_flow_cmd_fill_info(flow, ovs_header->dp_ifindex, skb,
15e47304 1373 NETLINK_CB(cb->skb).portid,
ccb1352e 1374 cb->nlh->nlmsg_seq, NLM_F_MULTI,
74ed7ab9 1375 OVS_FLOW_CMD_NEW, ufid_flags) < 0)
ccb1352e
JG
1376 break;
1377
1378 cb->args[0] = bucket;
1379 cb->args[1] = obj;
1380 }
d57170b1 1381 rcu_read_unlock();
ccb1352e
JG
1382 return skb->len;
1383}
1384
0c200ef9
PS
1385static const struct nla_policy flow_policy[OVS_FLOW_ATTR_MAX + 1] = {
1386 [OVS_FLOW_ATTR_KEY] = { .type = NLA_NESTED },
05da5898 1387 [OVS_FLOW_ATTR_MASK] = { .type = NLA_NESTED },
0c200ef9
PS
1388 [OVS_FLOW_ATTR_ACTIONS] = { .type = NLA_NESTED },
1389 [OVS_FLOW_ATTR_CLEAR] = { .type = NLA_FLAG },
05da5898 1390 [OVS_FLOW_ATTR_PROBE] = { .type = NLA_FLAG },
74ed7ab9
JS
1391 [OVS_FLOW_ATTR_UFID] = { .type = NLA_UNSPEC, .len = 1 },
1392 [OVS_FLOW_ATTR_UFID_FLAGS] = { .type = NLA_U32 },
0c200ef9
PS
1393};
1394
48e48a70 1395static const struct genl_ops dp_flow_genl_ops[] = {
ccb1352e 1396 { .cmd = OVS_FLOW_CMD_NEW,
4a92602a 1397 .flags = GENL_UNS_ADMIN_PERM, /* Requires CAP_NET_ADMIN privilege. */
ccb1352e 1398 .policy = flow_policy,
37bdc87b 1399 .doit = ovs_flow_cmd_new
ccb1352e
JG
1400 },
1401 { .cmd = OVS_FLOW_CMD_DEL,
4a92602a 1402 .flags = GENL_UNS_ADMIN_PERM, /* Requires CAP_NET_ADMIN privilege. */
ccb1352e
JG
1403 .policy = flow_policy,
1404 .doit = ovs_flow_cmd_del
1405 },
1406 { .cmd = OVS_FLOW_CMD_GET,
1407 .flags = 0, /* OK for unprivileged users. */
1408 .policy = flow_policy,
1409 .doit = ovs_flow_cmd_get,
1410 .dumpit = ovs_flow_cmd_dump
1411 },
1412 { .cmd = OVS_FLOW_CMD_SET,
4a92602a 1413 .flags = GENL_UNS_ADMIN_PERM, /* Requires CAP_NET_ADMIN privilege. */
ccb1352e 1414 .policy = flow_policy,
37bdc87b 1415 .doit = ovs_flow_cmd_set,
ccb1352e
JG
1416 },
1417};
1418
0c200ef9 1419static struct genl_family dp_flow_genl_family = {
ccb1352e
JG
1420 .id = GENL_ID_GENERATE,
1421 .hdrsize = sizeof(struct ovs_header),
0c200ef9
PS
1422 .name = OVS_FLOW_FAMILY,
1423 .version = OVS_FLOW_VERSION,
1424 .maxattr = OVS_FLOW_ATTR_MAX,
3a4e0d6a
PS
1425 .netnsok = true,
1426 .parallel_ops = true,
0c200ef9
PS
1427 .ops = dp_flow_genl_ops,
1428 .n_ops = ARRAY_SIZE(dp_flow_genl_ops),
1429 .mcgrps = &ovs_dp_flow_multicast_group,
1430 .n_mcgrps = 1,
ccb1352e
JG
1431};
1432
c3ff8cfe
TG
1433static size_t ovs_dp_cmd_msg_size(void)
1434{
1435 size_t msgsize = NLMSG_ALIGN(sizeof(struct ovs_header));
1436
1437 msgsize += nla_total_size(IFNAMSIZ);
1438 msgsize += nla_total_size(sizeof(struct ovs_dp_stats));
1bd7116f 1439 msgsize += nla_total_size(sizeof(struct ovs_dp_megaflow_stats));
45fb9c35 1440 msgsize += nla_total_size(sizeof(u32)); /* OVS_DP_ATTR_USER_FEATURES */
c3ff8cfe
TG
1441
1442 return msgsize;
1443}
1444
8ec609d8 1445/* Called with ovs_mutex. */
ccb1352e 1446static int ovs_dp_cmd_fill_info(struct datapath *dp, struct sk_buff *skb,
15e47304 1447 u32 portid, u32 seq, u32 flags, u8 cmd)
ccb1352e
JG
1448{
1449 struct ovs_header *ovs_header;
1450 struct ovs_dp_stats dp_stats;
1bd7116f 1451 struct ovs_dp_megaflow_stats dp_megaflow_stats;
ccb1352e
JG
1452 int err;
1453
15e47304 1454 ovs_header = genlmsg_put(skb, portid, seq, &dp_datapath_genl_family,
ccb1352e
JG
1455 flags, cmd);
1456 if (!ovs_header)
1457 goto error;
1458
1459 ovs_header->dp_ifindex = get_dpifindex(dp);
1460
ccb1352e 1461 err = nla_put_string(skb, OVS_DP_ATTR_NAME, ovs_dp_name(dp));
ccb1352e
JG
1462 if (err)
1463 goto nla_put_failure;
1464
1bd7116f
AZ
1465 get_dp_stats(dp, &dp_stats, &dp_megaflow_stats);
1466 if (nla_put(skb, OVS_DP_ATTR_STATS, sizeof(struct ovs_dp_stats),
1467 &dp_stats))
1468 goto nla_put_failure;
1469
1470 if (nla_put(skb, OVS_DP_ATTR_MEGAFLOW_STATS,
1471 sizeof(struct ovs_dp_megaflow_stats),
1472 &dp_megaflow_stats))
028d6a67 1473 goto nla_put_failure;
ccb1352e 1474
43d4be9c
TG
1475 if (nla_put_u32(skb, OVS_DP_ATTR_USER_FEATURES, dp->user_features))
1476 goto nla_put_failure;
1477
053c095a
JB
1478 genlmsg_end(skb, ovs_header);
1479 return 0;
ccb1352e
JG
1480
1481nla_put_failure:
1482 genlmsg_cancel(skb, ovs_header);
1483error:
1484 return -EMSGSIZE;
1485}
1486
263ea090 1487static struct sk_buff *ovs_dp_cmd_alloc_info(void)
ccb1352e 1488{
551ddc05 1489 return genlmsg_new(ovs_dp_cmd_msg_size(), GFP_KERNEL);
ccb1352e
JG
1490}
1491
bb6f9a70 1492/* Called with rcu_read_lock or ovs_mutex. */
46df7b81 1493static struct datapath *lookup_datapath(struct net *net,
12eb18f7 1494 const struct ovs_header *ovs_header,
ccb1352e
JG
1495 struct nlattr *a[OVS_DP_ATTR_MAX + 1])
1496{
1497 struct datapath *dp;
1498
1499 if (!a[OVS_DP_ATTR_NAME])
46df7b81 1500 dp = get_dp(net, ovs_header->dp_ifindex);
ccb1352e
JG
1501 else {
1502 struct vport *vport;
1503
46df7b81 1504 vport = ovs_vport_locate(net, nla_data(a[OVS_DP_ATTR_NAME]));
ccb1352e 1505 dp = vport && vport->port_no == OVSP_LOCAL ? vport->dp : NULL;
ccb1352e
JG
1506 }
1507 return dp ? dp : ERR_PTR(-ENODEV);
1508}
1509
44da5ae5
TG
1510static void ovs_dp_reset_user_features(struct sk_buff *skb, struct genl_info *info)
1511{
1512 struct datapath *dp;
1513
1514 dp = lookup_datapath(sock_net(skb->sk), info->userhdr, info->attrs);
3c7eacfc 1515 if (IS_ERR(dp))
44da5ae5
TG
1516 return;
1517
1518 WARN(dp->user_features, "Dropping previously announced user features\n");
1519 dp->user_features = 0;
1520}
1521
12eb18f7 1522static void ovs_dp_change(struct datapath *dp, struct nlattr *a[])
43d4be9c
TG
1523{
1524 if (a[OVS_DP_ATTR_USER_FEATURES])
1525 dp->user_features = nla_get_u32(a[OVS_DP_ATTR_USER_FEATURES]);
1526}
1527
ccb1352e
JG
1528static int ovs_dp_cmd_new(struct sk_buff *skb, struct genl_info *info)
1529{
1530 struct nlattr **a = info->attrs;
1531 struct vport_parms parms;
1532 struct sk_buff *reply;
1533 struct datapath *dp;
1534 struct vport *vport;
46df7b81 1535 struct ovs_net *ovs_net;
15eac2a7 1536 int err, i;
ccb1352e
JG
1537
1538 err = -EINVAL;
1539 if (!a[OVS_DP_ATTR_NAME] || !a[OVS_DP_ATTR_UPCALL_PID])
1540 goto err;
1541
263ea090 1542 reply = ovs_dp_cmd_alloc_info();
6093ae9a
JR
1543 if (!reply)
1544 return -ENOMEM;
ccb1352e
JG
1545
1546 err = -ENOMEM;
1547 dp = kzalloc(sizeof(*dp), GFP_KERNEL);
1548 if (dp == NULL)
6093ae9a 1549 goto err_free_reply;
46df7b81 1550
efd7ef1c 1551 ovs_dp_set_net(dp, sock_net(skb->sk));
ccb1352e
JG
1552
1553 /* Allocate table. */
b637e498
PS
1554 err = ovs_flow_tbl_init(&dp->table);
1555 if (err)
ccb1352e
JG
1556 goto err_free_dp;
1557
1c213bd2 1558 dp->stats_percpu = netdev_alloc_pcpu_stats(struct dp_stats_percpu);
ccb1352e
JG
1559 if (!dp->stats_percpu) {
1560 err = -ENOMEM;
1561 goto err_destroy_table;
1562 }
1563
15eac2a7 1564 dp->ports = kmalloc(DP_VPORT_HASH_BUCKETS * sizeof(struct hlist_head),
e6445719 1565 GFP_KERNEL);
15eac2a7
PS
1566 if (!dp->ports) {
1567 err = -ENOMEM;
1568 goto err_destroy_percpu;
1569 }
1570
1571 for (i = 0; i < DP_VPORT_HASH_BUCKETS; i++)
1572 INIT_HLIST_HEAD(&dp->ports[i]);
1573
ccb1352e
JG
1574 /* Set up our datapath device. */
1575 parms.name = nla_data(a[OVS_DP_ATTR_NAME]);
1576 parms.type = OVS_VPORT_TYPE_INTERNAL;
1577 parms.options = NULL;
1578 parms.dp = dp;
1579 parms.port_no = OVSP_LOCAL;
5cd667b0 1580 parms.upcall_portids = a[OVS_DP_ATTR_UPCALL_PID];
ccb1352e 1581
43d4be9c
TG
1582 ovs_dp_change(dp, a);
1583
6093ae9a
JR
1584 /* So far only local changes have been made, now need the lock. */
1585 ovs_lock();
1586
ccb1352e
JG
1587 vport = new_vport(&parms);
1588 if (IS_ERR(vport)) {
1589 err = PTR_ERR(vport);
1590 if (err == -EBUSY)
1591 err = -EEXIST;
1592
44da5ae5
TG
1593 if (err == -EEXIST) {
1594 /* An outdated user space instance that does not understand
1595 * the concept of user_features has attempted to create a new
1596 * datapath and is likely to reuse it. Drop all user features.
1597 */
1598 if (info->genlhdr->version < OVS_DP_VER_FEATURES)
1599 ovs_dp_reset_user_features(skb, info);
1600 }
1601
15eac2a7 1602 goto err_destroy_ports_array;
ccb1352e
JG
1603 }
1604
6093ae9a
JR
1605 err = ovs_dp_cmd_fill_info(dp, reply, info->snd_portid,
1606 info->snd_seq, 0, OVS_DP_CMD_NEW);
1607 BUG_ON(err < 0);
ccb1352e 1608
46df7b81 1609 ovs_net = net_generic(ovs_dp_get_net(dp), ovs_net_id);
59a35d60 1610 list_add_tail_rcu(&dp->list_node, &ovs_net->dps);
8e4e1713
PS
1611
1612 ovs_unlock();
ccb1352e 1613
2a94fe48 1614 ovs_notify(&dp_datapath_genl_family, reply, info);
ccb1352e
JG
1615 return 0;
1616
15eac2a7 1617err_destroy_ports_array:
6093ae9a 1618 ovs_unlock();
15eac2a7 1619 kfree(dp->ports);
ccb1352e
JG
1620err_destroy_percpu:
1621 free_percpu(dp->stats_percpu);
1622err_destroy_table:
9b996e54 1623 ovs_flow_tbl_destroy(&dp->table);
ccb1352e
JG
1624err_free_dp:
1625 kfree(dp);
6093ae9a
JR
1626err_free_reply:
1627 kfree_skb(reply);
ccb1352e
JG
1628err:
1629 return err;
1630}
1631
8e4e1713 1632/* Called with ovs_mutex. */
46df7b81 1633static void __dp_destroy(struct datapath *dp)
ccb1352e 1634{
15eac2a7 1635 int i;
ccb1352e 1636
15eac2a7
PS
1637 for (i = 0; i < DP_VPORT_HASH_BUCKETS; i++) {
1638 struct vport *vport;
b67bfe0d 1639 struct hlist_node *n;
15eac2a7 1640
b67bfe0d 1641 hlist_for_each_entry_safe(vport, n, &dp->ports[i], dp_hash_node)
15eac2a7
PS
1642 if (vport->port_no != OVSP_LOCAL)
1643 ovs_dp_detach_port(vport);
1644 }
ccb1352e 1645
59a35d60 1646 list_del_rcu(&dp->list_node);
ccb1352e 1647
8e4e1713 1648 /* OVSP_LOCAL is datapath internal port. We need to make sure that
e80857cc 1649 * all ports in datapath are destroyed first before freeing datapath.
ccb1352e 1650 */
8e4e1713 1651 ovs_dp_detach_port(ovs_vport_ovsl(dp, OVSP_LOCAL));
ccb1352e 1652
e80857cc 1653 /* RCU destroy the flow table */
ccb1352e 1654 call_rcu(&dp->rcu, destroy_dp_rcu);
46df7b81
PS
1655}
1656
1657static int ovs_dp_cmd_del(struct sk_buff *skb, struct genl_info *info)
1658{
1659 struct sk_buff *reply;
1660 struct datapath *dp;
1661 int err;
1662
263ea090 1663 reply = ovs_dp_cmd_alloc_info();
6093ae9a
JR
1664 if (!reply)
1665 return -ENOMEM;
1666
8e4e1713 1667 ovs_lock();
46df7b81
PS
1668 dp = lookup_datapath(sock_net(skb->sk), info->userhdr, info->attrs);
1669 err = PTR_ERR(dp);
1670 if (IS_ERR(dp))
6093ae9a 1671 goto err_unlock_free;
46df7b81 1672
6093ae9a
JR
1673 err = ovs_dp_cmd_fill_info(dp, reply, info->snd_portid,
1674 info->snd_seq, 0, OVS_DP_CMD_DEL);
1675 BUG_ON(err < 0);
46df7b81
PS
1676
1677 __dp_destroy(dp);
8e4e1713 1678 ovs_unlock();
ccb1352e 1679
2a94fe48 1680 ovs_notify(&dp_datapath_genl_family, reply, info);
ccb1352e
JG
1681
1682 return 0;
6093ae9a
JR
1683
1684err_unlock_free:
8e4e1713 1685 ovs_unlock();
6093ae9a 1686 kfree_skb(reply);
8e4e1713 1687 return err;
ccb1352e
JG
1688}
1689
1690static int ovs_dp_cmd_set(struct sk_buff *skb, struct genl_info *info)
1691{
1692 struct sk_buff *reply;
1693 struct datapath *dp;
1694 int err;
1695
263ea090 1696 reply = ovs_dp_cmd_alloc_info();
6093ae9a
JR
1697 if (!reply)
1698 return -ENOMEM;
1699
8e4e1713 1700 ovs_lock();
46df7b81 1701 dp = lookup_datapath(sock_net(skb->sk), info->userhdr, info->attrs);
8e4e1713 1702 err = PTR_ERR(dp);
ccb1352e 1703 if (IS_ERR(dp))
6093ae9a 1704 goto err_unlock_free;
ccb1352e 1705
43d4be9c
TG
1706 ovs_dp_change(dp, info->attrs);
1707
6093ae9a
JR
1708 err = ovs_dp_cmd_fill_info(dp, reply, info->snd_portid,
1709 info->snd_seq, 0, OVS_DP_CMD_NEW);
1710 BUG_ON(err < 0);
ccb1352e 1711
8e4e1713 1712 ovs_unlock();
2a94fe48 1713 ovs_notify(&dp_datapath_genl_family, reply, info);
ccb1352e
JG
1714
1715 return 0;
6093ae9a
JR
1716
1717err_unlock_free:
8e4e1713 1718 ovs_unlock();
6093ae9a 1719 kfree_skb(reply);
8e4e1713 1720 return err;
ccb1352e
JG
1721}
1722
1723static int ovs_dp_cmd_get(struct sk_buff *skb, struct genl_info *info)
1724{
1725 struct sk_buff *reply;
1726 struct datapath *dp;
8e4e1713 1727 int err;
ccb1352e 1728
263ea090 1729 reply = ovs_dp_cmd_alloc_info();
6093ae9a
JR
1730 if (!reply)
1731 return -ENOMEM;
1732
8ec609d8 1733 ovs_lock();
46df7b81 1734 dp = lookup_datapath(sock_net(skb->sk), info->userhdr, info->attrs);
8e4e1713
PS
1735 if (IS_ERR(dp)) {
1736 err = PTR_ERR(dp);
6093ae9a 1737 goto err_unlock_free;
8e4e1713 1738 }
6093ae9a
JR
1739 err = ovs_dp_cmd_fill_info(dp, reply, info->snd_portid,
1740 info->snd_seq, 0, OVS_DP_CMD_NEW);
1741 BUG_ON(err < 0);
8ec609d8 1742 ovs_unlock();
ccb1352e
JG
1743
1744 return genlmsg_reply(reply, info);
8e4e1713 1745
6093ae9a 1746err_unlock_free:
8ec609d8 1747 ovs_unlock();
6093ae9a 1748 kfree_skb(reply);
8e4e1713 1749 return err;
ccb1352e
JG
1750}
1751
1752static int ovs_dp_cmd_dump(struct sk_buff *skb, struct netlink_callback *cb)
1753{
46df7b81 1754 struct ovs_net *ovs_net = net_generic(sock_net(skb->sk), ovs_net_id);
ccb1352e
JG
1755 struct datapath *dp;
1756 int skip = cb->args[0];
1757 int i = 0;
1758
8ec609d8
PS
1759 ovs_lock();
1760 list_for_each_entry(dp, &ovs_net->dps, list_node) {
77676fdb 1761 if (i >= skip &&
15e47304 1762 ovs_dp_cmd_fill_info(dp, skb, NETLINK_CB(cb->skb).portid,
ccb1352e
JG
1763 cb->nlh->nlmsg_seq, NLM_F_MULTI,
1764 OVS_DP_CMD_NEW) < 0)
1765 break;
1766 i++;
1767 }
8ec609d8 1768 ovs_unlock();
ccb1352e
JG
1769
1770 cb->args[0] = i;
1771
1772 return skb->len;
1773}
1774
0c200ef9
PS
1775static const struct nla_policy datapath_policy[OVS_DP_ATTR_MAX + 1] = {
1776 [OVS_DP_ATTR_NAME] = { .type = NLA_NUL_STRING, .len = IFNAMSIZ - 1 },
1777 [OVS_DP_ATTR_UPCALL_PID] = { .type = NLA_U32 },
1778 [OVS_DP_ATTR_USER_FEATURES] = { .type = NLA_U32 },
1779};
1780
48e48a70 1781static const struct genl_ops dp_datapath_genl_ops[] = {
ccb1352e 1782 { .cmd = OVS_DP_CMD_NEW,
4a92602a 1783 .flags = GENL_UNS_ADMIN_PERM, /* Requires CAP_NET_ADMIN privilege. */
ccb1352e
JG
1784 .policy = datapath_policy,
1785 .doit = ovs_dp_cmd_new
1786 },
1787 { .cmd = OVS_DP_CMD_DEL,
4a92602a 1788 .flags = GENL_UNS_ADMIN_PERM, /* Requires CAP_NET_ADMIN privilege. */
ccb1352e
JG
1789 .policy = datapath_policy,
1790 .doit = ovs_dp_cmd_del
1791 },
1792 { .cmd = OVS_DP_CMD_GET,
1793 .flags = 0, /* OK for unprivileged users. */
1794 .policy = datapath_policy,
1795 .doit = ovs_dp_cmd_get,
1796 .dumpit = ovs_dp_cmd_dump
1797 },
1798 { .cmd = OVS_DP_CMD_SET,
4a92602a 1799 .flags = GENL_UNS_ADMIN_PERM, /* Requires CAP_NET_ADMIN privilege. */
ccb1352e
JG
1800 .policy = datapath_policy,
1801 .doit = ovs_dp_cmd_set,
1802 },
1803};
1804
0c200ef9 1805static struct genl_family dp_datapath_genl_family = {
ccb1352e
JG
1806 .id = GENL_ID_GENERATE,
1807 .hdrsize = sizeof(struct ovs_header),
0c200ef9
PS
1808 .name = OVS_DATAPATH_FAMILY,
1809 .version = OVS_DATAPATH_VERSION,
1810 .maxattr = OVS_DP_ATTR_MAX,
3a4e0d6a
PS
1811 .netnsok = true,
1812 .parallel_ops = true,
0c200ef9
PS
1813 .ops = dp_datapath_genl_ops,
1814 .n_ops = ARRAY_SIZE(dp_datapath_genl_ops),
1815 .mcgrps = &ovs_dp_datapath_multicast_group,
1816 .n_mcgrps = 1,
ccb1352e
JG
1817};
1818
8e4e1713 1819/* Called with ovs_mutex or RCU read lock. */
ccb1352e 1820static int ovs_vport_cmd_fill_info(struct vport *vport, struct sk_buff *skb,
15e47304 1821 u32 portid, u32 seq, u32 flags, u8 cmd)
ccb1352e
JG
1822{
1823 struct ovs_header *ovs_header;
1824 struct ovs_vport_stats vport_stats;
1825 int err;
1826
15e47304 1827 ovs_header = genlmsg_put(skb, portid, seq, &dp_vport_genl_family,
ccb1352e
JG
1828 flags, cmd);
1829 if (!ovs_header)
1830 return -EMSGSIZE;
1831
1832 ovs_header->dp_ifindex = get_dpifindex(vport->dp);
1833
028d6a67
DM
1834 if (nla_put_u32(skb, OVS_VPORT_ATTR_PORT_NO, vport->port_no) ||
1835 nla_put_u32(skb, OVS_VPORT_ATTR_TYPE, vport->ops->type) ||
5cd667b0 1836 nla_put_string(skb, OVS_VPORT_ATTR_NAME,
c9db965c 1837 ovs_vport_name(vport)))
028d6a67 1838 goto nla_put_failure;
ccb1352e
JG
1839
1840 ovs_vport_get_stats(vport, &vport_stats);
028d6a67
DM
1841 if (nla_put(skb, OVS_VPORT_ATTR_STATS, sizeof(struct ovs_vport_stats),
1842 &vport_stats))
1843 goto nla_put_failure;
ccb1352e 1844
5cd667b0
AW
1845 if (ovs_vport_get_upcall_portids(vport, skb))
1846 goto nla_put_failure;
1847
ccb1352e
JG
1848 err = ovs_vport_get_options(vport, skb);
1849 if (err == -EMSGSIZE)
1850 goto error;
1851
053c095a
JB
1852 genlmsg_end(skb, ovs_header);
1853 return 0;
ccb1352e
JG
1854
1855nla_put_failure:
1856 err = -EMSGSIZE;
1857error:
1858 genlmsg_cancel(skb, ovs_header);
1859 return err;
1860}
1861
6093ae9a
JR
1862static struct sk_buff *ovs_vport_cmd_alloc_info(void)
1863{
1864 return nlmsg_new(NLMSG_DEFAULT_SIZE, GFP_KERNEL);
1865}
1866
1867/* Called with ovs_mutex, only via ovs_dp_notify_wq(). */
15e47304 1868struct sk_buff *ovs_vport_cmd_build_info(struct vport *vport, u32 portid,
ccb1352e
JG
1869 u32 seq, u8 cmd)
1870{
1871 struct sk_buff *skb;
1872 int retval;
1873
1874 skb = nlmsg_new(NLMSG_DEFAULT_SIZE, GFP_ATOMIC);
1875 if (!skb)
1876 return ERR_PTR(-ENOMEM);
1877
15e47304 1878 retval = ovs_vport_cmd_fill_info(vport, skb, portid, seq, 0, cmd);
a9341512
JG
1879 BUG_ON(retval < 0);
1880
ccb1352e
JG
1881 return skb;
1882}
1883
8e4e1713 1884/* Called with ovs_mutex or RCU read lock. */
46df7b81 1885static struct vport *lookup_vport(struct net *net,
12eb18f7 1886 const struct ovs_header *ovs_header,
ccb1352e
JG
1887 struct nlattr *a[OVS_VPORT_ATTR_MAX + 1])
1888{
1889 struct datapath *dp;
1890 struct vport *vport;
1891
1892 if (a[OVS_VPORT_ATTR_NAME]) {
46df7b81 1893 vport = ovs_vport_locate(net, nla_data(a[OVS_VPORT_ATTR_NAME]));
ccb1352e
JG
1894 if (!vport)
1895 return ERR_PTR(-ENODEV);
651a68ea
BP
1896 if (ovs_header->dp_ifindex &&
1897 ovs_header->dp_ifindex != get_dpifindex(vport->dp))
1898 return ERR_PTR(-ENODEV);
ccb1352e
JG
1899 return vport;
1900 } else if (a[OVS_VPORT_ATTR_PORT_NO]) {
1901 u32 port_no = nla_get_u32(a[OVS_VPORT_ATTR_PORT_NO]);
1902
1903 if (port_no >= DP_MAX_PORTS)
1904 return ERR_PTR(-EFBIG);
1905
46df7b81 1906 dp = get_dp(net, ovs_header->dp_ifindex);
ccb1352e
JG
1907 if (!dp)
1908 return ERR_PTR(-ENODEV);
1909
8e4e1713 1910 vport = ovs_vport_ovsl_rcu(dp, port_no);
ccb1352e 1911 if (!vport)
14408dba 1912 return ERR_PTR(-ENODEV);
ccb1352e
JG
1913 return vport;
1914 } else
1915 return ERR_PTR(-EINVAL);
1916}
1917
3a927bc7
PA
1918/* Called with ovs_mutex */
1919static void update_headroom(struct datapath *dp)
1920{
1921 unsigned dev_headroom, max_headroom = 0;
1922 struct net_device *dev;
1923 struct vport *vport;
1924 int i;
1925
1926 for (i = 0; i < DP_VPORT_HASH_BUCKETS; i++) {
1927 hlist_for_each_entry_rcu(vport, &dp->ports[i], dp_hash_node) {
1928 dev = vport->dev;
1929 dev_headroom = netdev_get_fwd_headroom(dev);
1930 if (dev_headroom > max_headroom)
1931 max_headroom = dev_headroom;
1932 }
1933 }
1934
1935 dp->max_headroom = max_headroom;
1936 for (i = 0; i < DP_VPORT_HASH_BUCKETS; i++)
1937 hlist_for_each_entry_rcu(vport, &dp->ports[i], dp_hash_node)
1938 netdev_set_rx_headroom(vport->dev, max_headroom);
1939}
1940
ccb1352e
JG
1941static int ovs_vport_cmd_new(struct sk_buff *skb, struct genl_info *info)
1942{
1943 struct nlattr **a = info->attrs;
1944 struct ovs_header *ovs_header = info->userhdr;
1945 struct vport_parms parms;
1946 struct sk_buff *reply;
1947 struct vport *vport;
1948 struct datapath *dp;
1949 u32 port_no;
1950 int err;
1951
ccb1352e
JG
1952 if (!a[OVS_VPORT_ATTR_NAME] || !a[OVS_VPORT_ATTR_TYPE] ||
1953 !a[OVS_VPORT_ATTR_UPCALL_PID])
6093ae9a
JR
1954 return -EINVAL;
1955
1956 port_no = a[OVS_VPORT_ATTR_PORT_NO]
1957 ? nla_get_u32(a[OVS_VPORT_ATTR_PORT_NO]) : 0;
1958 if (port_no >= DP_MAX_PORTS)
1959 return -EFBIG;
1960
1961 reply = ovs_vport_cmd_alloc_info();
1962 if (!reply)
1963 return -ENOMEM;
ccb1352e 1964
8e4e1713 1965 ovs_lock();
62b9c8d0 1966restart:
46df7b81 1967 dp = get_dp(sock_net(skb->sk), ovs_header->dp_ifindex);
ccb1352e
JG
1968 err = -ENODEV;
1969 if (!dp)
6093ae9a 1970 goto exit_unlock_free;
ccb1352e 1971
6093ae9a 1972 if (port_no) {
8e4e1713 1973 vport = ovs_vport_ovsl(dp, port_no);
ccb1352e
JG
1974 err = -EBUSY;
1975 if (vport)
6093ae9a 1976 goto exit_unlock_free;
ccb1352e
JG
1977 } else {
1978 for (port_no = 1; ; port_no++) {
1979 if (port_no >= DP_MAX_PORTS) {
1980 err = -EFBIG;
6093ae9a 1981 goto exit_unlock_free;
ccb1352e 1982 }
8e4e1713 1983 vport = ovs_vport_ovsl(dp, port_no);
ccb1352e
JG
1984 if (!vport)
1985 break;
1986 }
1987 }
1988
1989 parms.name = nla_data(a[OVS_VPORT_ATTR_NAME]);
1990 parms.type = nla_get_u32(a[OVS_VPORT_ATTR_TYPE]);
1991 parms.options = a[OVS_VPORT_ATTR_OPTIONS];
1992 parms.dp = dp;
1993 parms.port_no = port_no;
5cd667b0 1994 parms.upcall_portids = a[OVS_VPORT_ATTR_UPCALL_PID];
ccb1352e
JG
1995
1996 vport = new_vport(&parms);
1997 err = PTR_ERR(vport);
62b9c8d0
TG
1998 if (IS_ERR(vport)) {
1999 if (err == -EAGAIN)
2000 goto restart;
6093ae9a 2001 goto exit_unlock_free;
62b9c8d0 2002 }
ccb1352e 2003
6093ae9a
JR
2004 err = ovs_vport_cmd_fill_info(vport, reply, info->snd_portid,
2005 info->snd_seq, 0, OVS_VPORT_CMD_NEW);
3a927bc7
PA
2006
2007 if (netdev_get_fwd_headroom(vport->dev) > dp->max_headroom)
2008 update_headroom(dp);
2009 else
2010 netdev_set_rx_headroom(vport->dev, dp->max_headroom);
2011
6093ae9a
JR
2012 BUG_ON(err < 0);
2013 ovs_unlock();
ed661185 2014
2a94fe48 2015 ovs_notify(&dp_vport_genl_family, reply, info);
6093ae9a 2016 return 0;
ccb1352e 2017
6093ae9a 2018exit_unlock_free:
8e4e1713 2019 ovs_unlock();
6093ae9a 2020 kfree_skb(reply);
ccb1352e
JG
2021 return err;
2022}
2023
2024static int ovs_vport_cmd_set(struct sk_buff *skb, struct genl_info *info)
2025{
2026 struct nlattr **a = info->attrs;
2027 struct sk_buff *reply;
2028 struct vport *vport;
2029 int err;
2030
6093ae9a
JR
2031 reply = ovs_vport_cmd_alloc_info();
2032 if (!reply)
2033 return -ENOMEM;
2034
8e4e1713 2035 ovs_lock();
46df7b81 2036 vport = lookup_vport(sock_net(skb->sk), info->userhdr, a);
ccb1352e
JG
2037 err = PTR_ERR(vport);
2038 if (IS_ERR(vport))
6093ae9a 2039 goto exit_unlock_free;
ccb1352e 2040
ccb1352e 2041 if (a[OVS_VPORT_ATTR_TYPE] &&
f44f3408 2042 nla_get_u32(a[OVS_VPORT_ATTR_TYPE]) != vport->ops->type) {
ccb1352e 2043 err = -EINVAL;
6093ae9a 2044 goto exit_unlock_free;
a9341512
JG
2045 }
2046
f44f3408 2047 if (a[OVS_VPORT_ATTR_OPTIONS]) {
ccb1352e 2048 err = ovs_vport_set_options(vport, a[OVS_VPORT_ATTR_OPTIONS]);
f44f3408 2049 if (err)
6093ae9a 2050 goto exit_unlock_free;
f44f3408 2051 }
a9341512 2052
5cd667b0
AW
2053
2054 if (a[OVS_VPORT_ATTR_UPCALL_PID]) {
2055 struct nlattr *ids = a[OVS_VPORT_ATTR_UPCALL_PID];
2056
2057 err = ovs_vport_set_upcall_portids(vport, ids);
2058 if (err)
2059 goto exit_unlock_free;
2060 }
ccb1352e 2061
a9341512
JG
2062 err = ovs_vport_cmd_fill_info(vport, reply, info->snd_portid,
2063 info->snd_seq, 0, OVS_VPORT_CMD_NEW);
2064 BUG_ON(err < 0);
ccb1352e 2065
8e4e1713 2066 ovs_unlock();
2a94fe48 2067 ovs_notify(&dp_vport_genl_family, reply, info);
8e4e1713 2068 return 0;
ccb1352e 2069
6093ae9a 2070exit_unlock_free:
8e4e1713 2071 ovs_unlock();
6093ae9a 2072 kfree_skb(reply);
ccb1352e
JG
2073 return err;
2074}
2075
2076static int ovs_vport_cmd_del(struct sk_buff *skb, struct genl_info *info)
2077{
3a927bc7 2078 bool must_update_headroom = false;
ccb1352e
JG
2079 struct nlattr **a = info->attrs;
2080 struct sk_buff *reply;
3a927bc7 2081 struct datapath *dp;
ccb1352e
JG
2082 struct vport *vport;
2083 int err;
2084
6093ae9a
JR
2085 reply = ovs_vport_cmd_alloc_info();
2086 if (!reply)
2087 return -ENOMEM;
2088
8e4e1713 2089 ovs_lock();
46df7b81 2090 vport = lookup_vport(sock_net(skb->sk), info->userhdr, a);
ccb1352e
JG
2091 err = PTR_ERR(vport);
2092 if (IS_ERR(vport))
6093ae9a 2093 goto exit_unlock_free;
ccb1352e
JG
2094
2095 if (vport->port_no == OVSP_LOCAL) {
2096 err = -EINVAL;
6093ae9a 2097 goto exit_unlock_free;
ccb1352e
JG
2098 }
2099
6093ae9a
JR
2100 err = ovs_vport_cmd_fill_info(vport, reply, info->snd_portid,
2101 info->snd_seq, 0, OVS_VPORT_CMD_DEL);
2102 BUG_ON(err < 0);
3a927bc7
PA
2103
2104 /* the vport deletion may trigger dp headroom update */
2105 dp = vport->dp;
2106 if (netdev_get_fwd_headroom(vport->dev) == dp->max_headroom)
2107 must_update_headroom = true;
2108 netdev_reset_rx_headroom(vport->dev);
ccb1352e 2109 ovs_dp_detach_port(vport);
3a927bc7
PA
2110
2111 if (must_update_headroom)
2112 update_headroom(dp);
6093ae9a 2113 ovs_unlock();
ccb1352e 2114
2a94fe48 2115 ovs_notify(&dp_vport_genl_family, reply, info);
6093ae9a 2116 return 0;
ccb1352e 2117
6093ae9a 2118exit_unlock_free:
8e4e1713 2119 ovs_unlock();
6093ae9a 2120 kfree_skb(reply);
ccb1352e
JG
2121 return err;
2122}
2123
2124static int ovs_vport_cmd_get(struct sk_buff *skb, struct genl_info *info)
2125{
2126 struct nlattr **a = info->attrs;
2127 struct ovs_header *ovs_header = info->userhdr;
2128 struct sk_buff *reply;
2129 struct vport *vport;
2130 int err;
2131
6093ae9a
JR
2132 reply = ovs_vport_cmd_alloc_info();
2133 if (!reply)
2134 return -ENOMEM;
2135
ccb1352e 2136 rcu_read_lock();
46df7b81 2137 vport = lookup_vport(sock_net(skb->sk), ovs_header, a);
ccb1352e
JG
2138 err = PTR_ERR(vport);
2139 if (IS_ERR(vport))
6093ae9a
JR
2140 goto exit_unlock_free;
2141 err = ovs_vport_cmd_fill_info(vport, reply, info->snd_portid,
2142 info->snd_seq, 0, OVS_VPORT_CMD_NEW);
2143 BUG_ON(err < 0);
ccb1352e
JG
2144 rcu_read_unlock();
2145
2146 return genlmsg_reply(reply, info);
2147
6093ae9a 2148exit_unlock_free:
ccb1352e 2149 rcu_read_unlock();
6093ae9a 2150 kfree_skb(reply);
ccb1352e
JG
2151 return err;
2152}
2153
2154static int ovs_vport_cmd_dump(struct sk_buff *skb, struct netlink_callback *cb)
2155{
2156 struct ovs_header *ovs_header = genlmsg_data(nlmsg_data(cb->nlh));
2157 struct datapath *dp;
15eac2a7
PS
2158 int bucket = cb->args[0], skip = cb->args[1];
2159 int i, j = 0;
ccb1352e 2160
42ee19e2 2161 rcu_read_lock();
cc3a5ae6 2162 dp = get_dp_rcu(sock_net(skb->sk), ovs_header->dp_ifindex);
42ee19e2
JR
2163 if (!dp) {
2164 rcu_read_unlock();
ccb1352e 2165 return -ENODEV;
42ee19e2 2166 }
15eac2a7 2167 for (i = bucket; i < DP_VPORT_HASH_BUCKETS; i++) {
ccb1352e 2168 struct vport *vport;
15eac2a7
PS
2169
2170 j = 0;
b67bfe0d 2171 hlist_for_each_entry_rcu(vport, &dp->ports[i], dp_hash_node) {
15eac2a7
PS
2172 if (j >= skip &&
2173 ovs_vport_cmd_fill_info(vport, skb,
15e47304 2174 NETLINK_CB(cb->skb).portid,
15eac2a7
PS
2175 cb->nlh->nlmsg_seq,
2176 NLM_F_MULTI,
2177 OVS_VPORT_CMD_NEW) < 0)
2178 goto out;
2179
2180 j++;
2181 }
2182 skip = 0;
ccb1352e 2183 }
15eac2a7 2184out:
ccb1352e
JG
2185 rcu_read_unlock();
2186
15eac2a7
PS
2187 cb->args[0] = i;
2188 cb->args[1] = j;
ccb1352e 2189
15eac2a7 2190 return skb->len;
ccb1352e
JG
2191}
2192
0c200ef9
PS
2193static const struct nla_policy vport_policy[OVS_VPORT_ATTR_MAX + 1] = {
2194 [OVS_VPORT_ATTR_NAME] = { .type = NLA_NUL_STRING, .len = IFNAMSIZ - 1 },
2195 [OVS_VPORT_ATTR_STATS] = { .len = sizeof(struct ovs_vport_stats) },
2196 [OVS_VPORT_ATTR_PORT_NO] = { .type = NLA_U32 },
2197 [OVS_VPORT_ATTR_TYPE] = { .type = NLA_U32 },
2198 [OVS_VPORT_ATTR_UPCALL_PID] = { .type = NLA_U32 },
2199 [OVS_VPORT_ATTR_OPTIONS] = { .type = NLA_NESTED },
2200};
2201
48e48a70 2202static const struct genl_ops dp_vport_genl_ops[] = {
ccb1352e 2203 { .cmd = OVS_VPORT_CMD_NEW,
4a92602a 2204 .flags = GENL_UNS_ADMIN_PERM, /* Requires CAP_NET_ADMIN privilege. */
ccb1352e
JG
2205 .policy = vport_policy,
2206 .doit = ovs_vport_cmd_new
2207 },
2208 { .cmd = OVS_VPORT_CMD_DEL,
4a92602a 2209 .flags = GENL_UNS_ADMIN_PERM, /* Requires CAP_NET_ADMIN privilege. */
ccb1352e
JG
2210 .policy = vport_policy,
2211 .doit = ovs_vport_cmd_del
2212 },
2213 { .cmd = OVS_VPORT_CMD_GET,
2214 .flags = 0, /* OK for unprivileged users. */
2215 .policy = vport_policy,
2216 .doit = ovs_vport_cmd_get,
2217 .dumpit = ovs_vport_cmd_dump
2218 },
2219 { .cmd = OVS_VPORT_CMD_SET,
4a92602a 2220 .flags = GENL_UNS_ADMIN_PERM, /* Requires CAP_NET_ADMIN privilege. */
ccb1352e
JG
2221 .policy = vport_policy,
2222 .doit = ovs_vport_cmd_set,
2223 },
2224};
2225
0c200ef9
PS
2226struct genl_family dp_vport_genl_family = {
2227 .id = GENL_ID_GENERATE,
2228 .hdrsize = sizeof(struct ovs_header),
2229 .name = OVS_VPORT_FAMILY,
2230 .version = OVS_VPORT_VERSION,
2231 .maxattr = OVS_VPORT_ATTR_MAX,
2232 .netnsok = true,
2233 .parallel_ops = true,
2234 .ops = dp_vport_genl_ops,
2235 .n_ops = ARRAY_SIZE(dp_vport_genl_ops),
2236 .mcgrps = &ovs_dp_vport_multicast_group,
2237 .n_mcgrps = 1,
ccb1352e
JG
2238};
2239
0c200ef9
PS
2240static struct genl_family * const dp_genl_families[] = {
2241 &dp_datapath_genl_family,
2242 &dp_vport_genl_family,
2243 &dp_flow_genl_family,
2244 &dp_packet_genl_family,
ccb1352e
JG
2245};
2246
2247static void dp_unregister_genl(int n_families)
2248{
2249 int i;
2250
2251 for (i = 0; i < n_families; i++)
0c200ef9 2252 genl_unregister_family(dp_genl_families[i]);
ccb1352e
JG
2253}
2254
2255static int dp_register_genl(void)
2256{
ccb1352e
JG
2257 int err;
2258 int i;
2259
ccb1352e 2260 for (i = 0; i < ARRAY_SIZE(dp_genl_families); i++) {
ccb1352e 2261
0c200ef9 2262 err = genl_register_family(dp_genl_families[i]);
ccb1352e
JG
2263 if (err)
2264 goto error;
ccb1352e
JG
2265 }
2266
2267 return 0;
2268
2269error:
0c200ef9 2270 dp_unregister_genl(i);
ccb1352e
JG
2271 return err;
2272}
2273
46df7b81
PS
2274static int __net_init ovs_init_net(struct net *net)
2275{
2276 struct ovs_net *ovs_net = net_generic(net, ovs_net_id);
2277
2278 INIT_LIST_HEAD(&ovs_net->dps);
8e4e1713 2279 INIT_WORK(&ovs_net->dp_notify_work, ovs_dp_notify_wq);
c2ac6673 2280 ovs_ct_init(net);
46df7b81
PS
2281 return 0;
2282}
2283
7b4577a9
PS
2284static void __net_exit list_vports_from_net(struct net *net, struct net *dnet,
2285 struct list_head *head)
46df7b81 2286{
8e4e1713 2287 struct ovs_net *ovs_net = net_generic(net, ovs_net_id);
7b4577a9
PS
2288 struct datapath *dp;
2289
2290 list_for_each_entry(dp, &ovs_net->dps, list_node) {
2291 int i;
2292
2293 for (i = 0; i < DP_VPORT_HASH_BUCKETS; i++) {
2294 struct vport *vport;
2295
2296 hlist_for_each_entry(vport, &dp->ports[i], dp_hash_node) {
7b4577a9
PS
2297 if (vport->ops->type != OVS_VPORT_TYPE_INTERNAL)
2298 continue;
2299
be4ace6e 2300 if (dev_net(vport->dev) == dnet)
7b4577a9
PS
2301 list_add(&vport->detach_list, head);
2302 }
2303 }
2304 }
2305}
2306
2307static void __net_exit ovs_exit_net(struct net *dnet)
2308{
2309 struct datapath *dp, *dp_next;
2310 struct ovs_net *ovs_net = net_generic(dnet, ovs_net_id);
2311 struct vport *vport, *vport_next;
2312 struct net *net;
2313 LIST_HEAD(head);
46df7b81 2314
c2ac6673 2315 ovs_ct_exit(dnet);
8e4e1713 2316 ovs_lock();
46df7b81
PS
2317 list_for_each_entry_safe(dp, dp_next, &ovs_net->dps, list_node)
2318 __dp_destroy(dp);
7b4577a9
PS
2319
2320 rtnl_lock();
2321 for_each_net(net)
2322 list_vports_from_net(net, dnet, &head);
2323 rtnl_unlock();
2324
2325 /* Detach all vports from given namespace. */
2326 list_for_each_entry_safe(vport, vport_next, &head, detach_list) {
2327 list_del(&vport->detach_list);
2328 ovs_dp_detach_port(vport);
2329 }
2330
8e4e1713
PS
2331 ovs_unlock();
2332
2333 cancel_work_sync(&ovs_net->dp_notify_work);
46df7b81
PS
2334}
2335
2336static struct pernet_operations ovs_net_ops = {
2337 .init = ovs_init_net,
2338 .exit = ovs_exit_net,
2339 .id = &ovs_net_id,
2340 .size = sizeof(struct ovs_net),
2341};
2342
ccb1352e
JG
2343static int __init dp_init(void)
2344{
ccb1352e
JG
2345 int err;
2346
3523b29b 2347 BUILD_BUG_ON(sizeof(struct ovs_skb_cb) > FIELD_SIZEOF(struct sk_buff, cb));
ccb1352e
JG
2348
2349 pr_info("Open vSwitch switching datapath\n");
2350
971427f3 2351 err = action_fifos_init();
ccb1352e
JG
2352 if (err)
2353 goto error;
2354
971427f3
AZ
2355 err = ovs_internal_dev_rtnl_link_register();
2356 if (err)
2357 goto error_action_fifos_exit;
2358
5b9e7e16
JP
2359 err = ovs_flow_init();
2360 if (err)
2361 goto error_unreg_rtnl_link;
2362
ccb1352e
JG
2363 err = ovs_vport_init();
2364 if (err)
2365 goto error_flow_exit;
2366
46df7b81 2367 err = register_pernet_device(&ovs_net_ops);
ccb1352e
JG
2368 if (err)
2369 goto error_vport_exit;
2370
46df7b81
PS
2371 err = register_netdevice_notifier(&ovs_dp_device_notifier);
2372 if (err)
2373 goto error_netns_exit;
2374
62b9c8d0
TG
2375 err = ovs_netdev_init();
2376 if (err)
2377 goto error_unreg_notifier;
2378
ccb1352e
JG
2379 err = dp_register_genl();
2380 if (err < 0)
62b9c8d0 2381 goto error_unreg_netdev;
ccb1352e 2382
ccb1352e
JG
2383 return 0;
2384
62b9c8d0
TG
2385error_unreg_netdev:
2386 ovs_netdev_exit();
ccb1352e
JG
2387error_unreg_notifier:
2388 unregister_netdevice_notifier(&ovs_dp_device_notifier);
46df7b81
PS
2389error_netns_exit:
2390 unregister_pernet_device(&ovs_net_ops);
ccb1352e
JG
2391error_vport_exit:
2392 ovs_vport_exit();
2393error_flow_exit:
2394 ovs_flow_exit();
5b9e7e16
JP
2395error_unreg_rtnl_link:
2396 ovs_internal_dev_rtnl_link_unregister();
971427f3
AZ
2397error_action_fifos_exit:
2398 action_fifos_exit();
ccb1352e
JG
2399error:
2400 return err;
2401}
2402
2403static void dp_cleanup(void)
2404{
ccb1352e 2405 dp_unregister_genl(ARRAY_SIZE(dp_genl_families));
62b9c8d0 2406 ovs_netdev_exit();
ccb1352e 2407 unregister_netdevice_notifier(&ovs_dp_device_notifier);
46df7b81
PS
2408 unregister_pernet_device(&ovs_net_ops);
2409 rcu_barrier();
ccb1352e
JG
2410 ovs_vport_exit();
2411 ovs_flow_exit();
5b9e7e16 2412 ovs_internal_dev_rtnl_link_unregister();
971427f3 2413 action_fifos_exit();
ccb1352e
JG
2414}
2415
2416module_init(dp_init);
2417module_exit(dp_cleanup);
2418
2419MODULE_DESCRIPTION("Open vSwitch switching datapath");
2420MODULE_LICENSE("GPL");