]>
Commit | Line | Data |
---|---|---|
0b58b8a1 DH |
1 | /* AF_RXRPC sendmsg() implementation. |
2 | * | |
3 | * Copyright (C) 2007, 2016 Red Hat, Inc. All Rights Reserved. | |
4 | * Written by David Howells (dhowells@redhat.com) | |
5 | * | |
6 | * This program is free software; you can redistribute it and/or | |
7 | * modify it under the terms of the GNU General Public Licence | |
8 | * as published by the Free Software Foundation; either version | |
9 | * 2 of the Licence, or (at your option) any later version. | |
10 | */ | |
11 | ||
12 | #define pr_fmt(fmt) KBUILD_MODNAME ": " fmt | |
13 | ||
14 | #include <linux/net.h> | |
15 | #include <linux/gfp.h> | |
16 | #include <linux/skbuff.h> | |
17 | #include <linux/export.h> | |
174cd4b1 IM |
18 | #include <linux/sched/signal.h> |
19 | ||
0b58b8a1 DH |
20 | #include <net/sock.h> |
21 | #include <net/af_rxrpc.h> | |
22 | #include "ar-internal.h" | |
23 | ||
3dc20f09 DH |
24 | enum rxrpc_command { |
25 | RXRPC_CMD_SEND_DATA, /* send data message */ | |
26 | RXRPC_CMD_SEND_ABORT, /* request abort generation */ | |
27 | RXRPC_CMD_ACCEPT, /* [server] accept incoming call */ | |
28 | RXRPC_CMD_REJECT_BUSY, /* [server] reject a call as busy */ | |
29 | }; | |
30 | ||
3ab26a6f | 31 | struct rxrpc_send_params { |
e754eba6 | 32 | s64 tx_total_len; /* Total Tx data length (if send data) */ |
3ab26a6f DH |
33 | unsigned long user_call_ID; /* User's call ID */ |
34 | u32 abort_code; /* Abort code to Tx (if abort) */ | |
35 | enum rxrpc_command command : 8; /* The command to implement */ | |
36 | bool exclusive; /* Shared or exclusive call */ | |
37 | bool upgrade; /* If the connection is upgradeable */ | |
38 | }; | |
39 | ||
bc5e3a54 DH |
40 | /* |
41 | * Wait for space to appear in the Tx queue or a signal to occur. | |
42 | */ | |
43 | static int rxrpc_wait_for_tx_window_intr(struct rxrpc_sock *rx, | |
44 | struct rxrpc_call *call, | |
45 | long *timeo) | |
46 | { | |
47 | for (;;) { | |
48 | set_current_state(TASK_INTERRUPTIBLE); | |
49 | if (call->tx_top - call->tx_hard_ack < | |
50 | min_t(unsigned int, call->tx_winsize, | |
51 | call->cong_cwnd + call->cong_extra)) | |
52 | return 0; | |
53 | ||
54 | if (call->state >= RXRPC_CALL_COMPLETE) | |
55 | return call->error; | |
56 | ||
57 | if (signal_pending(current)) | |
58 | return sock_intr_errno(*timeo); | |
59 | ||
60 | trace_rxrpc_transmit(call, rxrpc_transmit_wait); | |
61 | mutex_unlock(&call->user_mutex); | |
62 | *timeo = schedule_timeout(*timeo); | |
63 | if (mutex_lock_interruptible(&call->user_mutex) < 0) | |
64 | return sock_intr_errno(*timeo); | |
65 | } | |
66 | } | |
67 | ||
68 | /* | |
69 | * Wait for space to appear in the Tx queue uninterruptibly, but with | |
70 | * a timeout of 2*RTT if no progress was made and a signal occurred. | |
71 | */ | |
72 | static int rxrpc_wait_for_tx_window_nonintr(struct rxrpc_sock *rx, | |
73 | struct rxrpc_call *call) | |
74 | { | |
75 | rxrpc_seq_t tx_start, tx_win; | |
76 | signed long rtt2, timeout; | |
77 | u64 rtt; | |
78 | ||
79 | rtt = READ_ONCE(call->peer->rtt); | |
80 | rtt2 = nsecs_to_jiffies64(rtt) * 2; | |
81 | if (rtt2 < 1) | |
82 | rtt2 = 1; | |
83 | ||
84 | timeout = rtt2; | |
85 | tx_start = READ_ONCE(call->tx_hard_ack); | |
86 | ||
87 | for (;;) { | |
88 | set_current_state(TASK_UNINTERRUPTIBLE); | |
89 | ||
90 | tx_win = READ_ONCE(call->tx_hard_ack); | |
91 | if (call->tx_top - tx_win < | |
92 | min_t(unsigned int, call->tx_winsize, | |
93 | call->cong_cwnd + call->cong_extra)) | |
94 | return 0; | |
95 | ||
96 | if (call->state >= RXRPC_CALL_COMPLETE) | |
97 | return call->error; | |
98 | ||
99 | if (timeout == 0 && | |
100 | tx_win == tx_start && signal_pending(current)) | |
101 | return -EINTR; | |
102 | ||
103 | if (tx_win != tx_start) { | |
104 | timeout = rtt2; | |
105 | tx_start = tx_win; | |
106 | } | |
107 | ||
108 | trace_rxrpc_transmit(call, rxrpc_transmit_wait); | |
109 | timeout = schedule_timeout(timeout); | |
110 | } | |
111 | } | |
112 | ||
0b58b8a1 | 113 | /* |
df423a4a DH |
114 | * wait for space to appear in the transmit/ACK window |
115 | * - caller holds the socket locked | |
0b58b8a1 | 116 | */ |
df423a4a DH |
117 | static int rxrpc_wait_for_tx_window(struct rxrpc_sock *rx, |
118 | struct rxrpc_call *call, | |
bc5e3a54 DH |
119 | long *timeo, |
120 | bool waitall) | |
0b58b8a1 | 121 | { |
df423a4a DH |
122 | DECLARE_WAITQUEUE(myself, current); |
123 | int ret; | |
0b58b8a1 | 124 | |
248f219c DH |
125 | _enter(",{%u,%u,%u}", |
126 | call->tx_hard_ack, call->tx_top, call->tx_winsize); | |
0b58b8a1 | 127 | |
df423a4a | 128 | add_wait_queue(&call->waitq, &myself); |
0b58b8a1 | 129 | |
bc5e3a54 DH |
130 | if (waitall) |
131 | ret = rxrpc_wait_for_tx_window_nonintr(rx, call); | |
132 | else | |
133 | ret = rxrpc_wait_for_tx_window_intr(rx, call, timeo); | |
0b58b8a1 | 134 | |
df423a4a DH |
135 | remove_wait_queue(&call->waitq, &myself); |
136 | set_current_state(TASK_RUNNING); | |
137 | _leave(" = %d", ret); | |
138 | return ret; | |
0b58b8a1 DH |
139 | } |
140 | ||
141 | /* | |
248f219c | 142 | * Schedule an instant Tx resend. |
0b58b8a1 | 143 | */ |
248f219c | 144 | static inline void rxrpc_instant_resend(struct rxrpc_call *call, int ix) |
0b58b8a1 | 145 | { |
248f219c DH |
146 | spin_lock_bh(&call->lock); |
147 | ||
148 | if (call->state < RXRPC_CALL_COMPLETE) { | |
149 | call->rxtx_annotations[ix] = RXRPC_TX_ANNO_RETRANS; | |
150 | if (!test_and_set_bit(RXRPC_CALL_EV_RESEND, &call->events)) | |
df423a4a | 151 | rxrpc_queue_call(call); |
0b58b8a1 | 152 | } |
248f219c DH |
153 | |
154 | spin_unlock_bh(&call->lock); | |
0b58b8a1 DH |
155 | } |
156 | ||
e833251a DH |
157 | /* |
158 | * Notify the owner of the call that the transmit phase is ended and the last | |
159 | * packet has been queued. | |
160 | */ | |
161 | static void rxrpc_notify_end_tx(struct rxrpc_sock *rx, struct rxrpc_call *call, | |
162 | rxrpc_notify_end_tx_t notify_end_tx) | |
163 | { | |
164 | if (notify_end_tx) | |
165 | notify_end_tx(&rx->sk, call, call->user_call_ID); | |
166 | } | |
167 | ||
0b58b8a1 | 168 | /* |
248f219c DH |
169 | * Queue a DATA packet for transmission, set the resend timeout and send the |
170 | * packet immediately | |
0b58b8a1 | 171 | */ |
e833251a DH |
172 | static void rxrpc_queue_packet(struct rxrpc_sock *rx, struct rxrpc_call *call, |
173 | struct sk_buff *skb, bool last, | |
174 | rxrpc_notify_end_tx_t notify_end_tx) | |
0b58b8a1 | 175 | { |
df423a4a | 176 | struct rxrpc_skb_priv *sp = rxrpc_skb(skb); |
248f219c DH |
177 | rxrpc_seq_t seq = sp->hdr.seq; |
178 | int ret, ix; | |
70790dbe | 179 | u8 annotation = RXRPC_TX_ANNO_UNACK; |
248f219c DH |
180 | |
181 | _net("queue skb %p [%d]", skb, seq); | |
0b58b8a1 | 182 | |
248f219c | 183 | ASSERTCMP(seq, ==, call->tx_top + 1); |
0b58b8a1 | 184 | |
c038a58c | 185 | if (last) { |
70790dbe | 186 | annotation |= RXRPC_TX_ANNO_LAST; |
c038a58c DH |
187 | set_bit(RXRPC_CALL_TX_LASTQ, &call->flags); |
188 | } | |
70790dbe | 189 | |
b24d2891 DH |
190 | /* We have to set the timestamp before queueing as the retransmit |
191 | * algorithm can see the packet as soon as we queue it. | |
192 | */ | |
193 | skb->tstamp = ktime_get_real(); | |
194 | ||
248f219c | 195 | ix = seq & RXRPC_RXTX_BUFF_MASK; |
71f3ca40 | 196 | rxrpc_get_skb(skb, rxrpc_skb_tx_got); |
70790dbe | 197 | call->rxtx_annotations[ix] = annotation; |
df423a4a | 198 | smp_wmb(); |
248f219c DH |
199 | call->rxtx_buffer[ix] = skb; |
200 | call->tx_top = seq; | |
70790dbe | 201 | if (last) |
a124fe3e | 202 | trace_rxrpc_transmit(call, rxrpc_transmit_queue_last); |
70790dbe | 203 | else |
a124fe3e | 204 | trace_rxrpc_transmit(call, rxrpc_transmit_queue); |
0b58b8a1 | 205 | |
df423a4a DH |
206 | if (last || call->state == RXRPC_CALL_SERVER_ACK_REQUEST) { |
207 | _debug("________awaiting reply/ACK__________"); | |
208 | write_lock_bh(&call->state_lock); | |
209 | switch (call->state) { | |
210 | case RXRPC_CALL_CLIENT_SEND_REQUEST: | |
211 | call->state = RXRPC_CALL_CLIENT_AWAIT_REPLY; | |
e833251a | 212 | rxrpc_notify_end_tx(rx, call, notify_end_tx); |
df423a4a DH |
213 | break; |
214 | case RXRPC_CALL_SERVER_ACK_REQUEST: | |
215 | call->state = RXRPC_CALL_SERVER_SEND_REPLY; | |
9749fd2b DH |
216 | call->ack_at = call->expire_at; |
217 | if (call->ackr_reason == RXRPC_ACK_DELAY) | |
218 | call->ackr_reason = 0; | |
219 | __rxrpc_set_timer(call, rxrpc_timer_init_for_send_reply, | |
220 | ktime_get_real()); | |
df423a4a DH |
221 | if (!last) |
222 | break; | |
e3cf3970 | 223 | /* Fall through */ |
df423a4a DH |
224 | case RXRPC_CALL_SERVER_SEND_REPLY: |
225 | call->state = RXRPC_CALL_SERVER_AWAIT_ACK; | |
e833251a | 226 | rxrpc_notify_end_tx(rx, call, notify_end_tx); |
df423a4a DH |
227 | break; |
228 | default: | |
229 | break; | |
230 | } | |
231 | write_unlock_bh(&call->state_lock); | |
232 | } | |
0b58b8a1 | 233 | |
248f219c DH |
234 | if (seq == 1 && rxrpc_is_client_call(call)) |
235 | rxrpc_expose_client_call(call); | |
df423a4a | 236 | |
a1767077 | 237 | ret = rxrpc_send_data_packet(call, skb, false); |
df423a4a DH |
238 | if (ret < 0) { |
239 | _debug("need instant resend %d", ret); | |
248f219c | 240 | rxrpc_instant_resend(call, ix); |
dfc3da44 | 241 | } else { |
df0adc78 | 242 | ktime_t now = ktime_get_real(), resend_at; |
dfc3da44 | 243 | |
df0adc78 | 244 | resend_at = ktime_add_ms(now, rxrpc_resend_timeout); |
dfc3da44 | 245 | |
df0adc78 | 246 | if (ktime_before(resend_at, call->resend_at)) { |
dfc3da44 | 247 | call->resend_at = resend_at; |
df0adc78 | 248 | rxrpc_set_timer(call, rxrpc_timer_set_for_send, now); |
dfc3da44 | 249 | } |
df423a4a DH |
250 | } |
251 | ||
71f3ca40 | 252 | rxrpc_free_skb(skb, rxrpc_skb_tx_freed); |
df423a4a | 253 | _leave(""); |
0b58b8a1 DH |
254 | } |
255 | ||
df423a4a DH |
256 | /* |
257 | * send data through a socket | |
258 | * - must be called in process context | |
540b1c48 | 259 | * - The caller holds the call user access mutex, but not the socket lock. |
0b58b8a1 | 260 | */ |
df423a4a DH |
261 | static int rxrpc_send_data(struct rxrpc_sock *rx, |
262 | struct rxrpc_call *call, | |
e833251a DH |
263 | struct msghdr *msg, size_t len, |
264 | rxrpc_notify_end_tx_t notify_end_tx) | |
0b58b8a1 | 265 | { |
df423a4a DH |
266 | struct rxrpc_skb_priv *sp; |
267 | struct sk_buff *skb; | |
268 | struct sock *sk = &rx->sk; | |
269 | long timeo; | |
270 | bool more; | |
271 | int ret, copied; | |
0b58b8a1 | 272 | |
df423a4a | 273 | timeo = sock_sndtimeo(sk, msg->msg_flags & MSG_DONTWAIT); |
0b58b8a1 | 274 | |
df423a4a DH |
275 | /* this should be in poll */ |
276 | sk_clear_bit(SOCKWQ_ASYNC_NOSPACE, sk); | |
0b58b8a1 | 277 | |
df423a4a DH |
278 | if (sk->sk_err || (sk->sk_shutdown & SEND_SHUTDOWN)) |
279 | return -EPIPE; | |
0b58b8a1 | 280 | |
df423a4a | 281 | more = msg->msg_flags & MSG_MORE; |
0b58b8a1 | 282 | |
e754eba6 DH |
283 | if (call->tx_total_len != -1) { |
284 | if (len > call->tx_total_len) | |
285 | return -EMSGSIZE; | |
286 | if (!more && len != call->tx_total_len) | |
287 | return -EMSGSIZE; | |
288 | } | |
289 | ||
df423a4a DH |
290 | skb = call->tx_pending; |
291 | call->tx_pending = NULL; | |
71f3ca40 | 292 | rxrpc_see_skb(skb, rxrpc_skb_tx_seen); |
0b58b8a1 | 293 | |
df423a4a DH |
294 | copied = 0; |
295 | do { | |
7aa51da7 DH |
296 | /* Check to see if there's a ping ACK to reply to. */ |
297 | if (call->ackr_reason == RXRPC_ACK_PING_RESPONSE) | |
a5af7e1f | 298 | rxrpc_send_ack_packet(call, false); |
7aa51da7 | 299 | |
df423a4a DH |
300 | if (!skb) { |
301 | size_t size, chunk, max, space; | |
0b58b8a1 | 302 | |
df423a4a | 303 | _debug("alloc"); |
0b58b8a1 | 304 | |
248f219c | 305 | if (call->tx_top - call->tx_hard_ack >= |
57494343 DH |
306 | min_t(unsigned int, call->tx_winsize, |
307 | call->cong_cwnd + call->cong_extra)) { | |
df423a4a DH |
308 | ret = -EAGAIN; |
309 | if (msg->msg_flags & MSG_DONTWAIT) | |
310 | goto maybe_error; | |
311 | ret = rxrpc_wait_for_tx_window(rx, call, | |
bc5e3a54 DH |
312 | &timeo, |
313 | msg->msg_flags & MSG_WAITALL); | |
df423a4a DH |
314 | if (ret < 0) |
315 | goto maybe_error; | |
316 | } | |
0b58b8a1 | 317 | |
182f5056 | 318 | max = RXRPC_JUMBO_DATALEN; |
df423a4a DH |
319 | max -= call->conn->security_size; |
320 | max &= ~(call->conn->size_align - 1UL); | |
0b58b8a1 | 321 | |
df423a4a DH |
322 | chunk = max; |
323 | if (chunk > msg_data_left(msg) && !more) | |
324 | chunk = msg_data_left(msg); | |
0b58b8a1 | 325 | |
df423a4a DH |
326 | space = chunk + call->conn->size_align; |
327 | space &= ~(call->conn->size_align - 1UL); | |
0b58b8a1 | 328 | |
5a924b89 | 329 | size = space + call->conn->security_size; |
0b58b8a1 | 330 | |
df423a4a | 331 | _debug("SIZE: %zu/%zu/%zu", chunk, space, size); |
0b58b8a1 | 332 | |
df423a4a DH |
333 | /* create a buffer that we can retain until it's ACK'd */ |
334 | skb = sock_alloc_send_skb( | |
335 | sk, size, msg->msg_flags & MSG_DONTWAIT, &ret); | |
336 | if (!skb) | |
337 | goto maybe_error; | |
0b58b8a1 | 338 | |
71f3ca40 | 339 | rxrpc_new_skb(skb, rxrpc_skb_tx_new); |
0b58b8a1 | 340 | |
df423a4a | 341 | _debug("ALLOC SEND %p", skb); |
0b58b8a1 | 342 | |
df423a4a | 343 | ASSERTCMP(skb->mark, ==, 0); |
0b58b8a1 | 344 | |
5a924b89 DH |
345 | _debug("HS: %u", call->conn->security_size); |
346 | skb_reserve(skb, call->conn->security_size); | |
347 | skb->len += call->conn->security_size; | |
0b58b8a1 | 348 | |
df423a4a DH |
349 | sp = rxrpc_skb(skb); |
350 | sp->remain = chunk; | |
351 | if (sp->remain > skb_tailroom(skb)) | |
352 | sp->remain = skb_tailroom(skb); | |
0b58b8a1 | 353 | |
df423a4a DH |
354 | _net("skb: hr %d, tr %d, hl %d, rm %d", |
355 | skb_headroom(skb), | |
356 | skb_tailroom(skb), | |
357 | skb_headlen(skb), | |
358 | sp->remain); | |
0b58b8a1 | 359 | |
df423a4a DH |
360 | skb->ip_summed = CHECKSUM_UNNECESSARY; |
361 | } | |
0b58b8a1 | 362 | |
df423a4a DH |
363 | _debug("append"); |
364 | sp = rxrpc_skb(skb); | |
0b58b8a1 | 365 | |
df423a4a DH |
366 | /* append next segment of data to the current buffer */ |
367 | if (msg_data_left(msg) > 0) { | |
368 | int copy = skb_tailroom(skb); | |
369 | ASSERTCMP(copy, >, 0); | |
370 | if (copy > msg_data_left(msg)) | |
371 | copy = msg_data_left(msg); | |
372 | if (copy > sp->remain) | |
373 | copy = sp->remain; | |
0b58b8a1 | 374 | |
df423a4a DH |
375 | _debug("add"); |
376 | ret = skb_add_data(skb, &msg->msg_iter, copy); | |
377 | _debug("added"); | |
378 | if (ret < 0) | |
379 | goto efault; | |
380 | sp->remain -= copy; | |
381 | skb->mark += copy; | |
382 | copied += copy; | |
e754eba6 DH |
383 | if (call->tx_total_len != -1) |
384 | call->tx_total_len -= copy; | |
0b58b8a1 DH |
385 | } |
386 | ||
df423a4a DH |
387 | /* add the packet to the send queue if it's now full */ |
388 | if (sp->remain <= 0 || | |
389 | (msg_data_left(msg) == 0 && !more)) { | |
390 | struct rxrpc_connection *conn = call->conn; | |
391 | uint32_t seq; | |
392 | size_t pad; | |
0b58b8a1 | 393 | |
df423a4a DH |
394 | /* pad out if we're using security */ |
395 | if (conn->security_ix) { | |
396 | pad = conn->security_size + skb->mark; | |
397 | pad = conn->size_align - pad; | |
398 | pad &= conn->size_align - 1; | |
399 | _debug("pad %zu", pad); | |
400 | if (pad) | |
b080db58 | 401 | skb_put_zero(skb, pad); |
df423a4a | 402 | } |
0b58b8a1 | 403 | |
248f219c | 404 | seq = call->tx_top + 1; |
0b58b8a1 | 405 | |
df423a4a | 406 | sp->hdr.seq = seq; |
df423a4a | 407 | sp->hdr._rsvd = 0; |
5a924b89 | 408 | sp->hdr.flags = conn->out_clientflag; |
0b58b8a1 | 409 | |
df423a4a DH |
410 | if (msg_data_left(msg) == 0 && !more) |
411 | sp->hdr.flags |= RXRPC_LAST_PACKET; | |
248f219c DH |
412 | else if (call->tx_top - call->tx_hard_ack < |
413 | call->tx_winsize) | |
df423a4a | 414 | sp->hdr.flags |= RXRPC_MORE_PACKETS; |
0b58b8a1 | 415 | |
df423a4a | 416 | ret = conn->security->secure_packet( |
5a924b89 | 417 | call, skb, skb->mark, skb->head); |
df423a4a DH |
418 | if (ret < 0) |
419 | goto out; | |
0b58b8a1 | 420 | |
e833251a DH |
421 | rxrpc_queue_packet(rx, call, skb, |
422 | !msg_data_left(msg) && !more, | |
423 | notify_end_tx); | |
df423a4a DH |
424 | skb = NULL; |
425 | } | |
c038a58c DH |
426 | |
427 | /* Check for the far side aborting the call or a network error | |
428 | * occurring. If this happens, save any packet that was under | |
429 | * construction so that in the case of a network error, the | |
430 | * call can be retried or redirected. | |
431 | */ | |
432 | if (call->state == RXRPC_CALL_COMPLETE) { | |
433 | ret = call->error; | |
434 | goto out; | |
435 | } | |
df423a4a | 436 | } while (msg_data_left(msg) > 0); |
0b58b8a1 | 437 | |
df423a4a DH |
438 | success: |
439 | ret = copied; | |
440 | out: | |
441 | call->tx_pending = skb; | |
442 | _leave(" = %d", ret); | |
443 | return ret; | |
0b58b8a1 | 444 | |
df423a4a DH |
445 | maybe_error: |
446 | if (copied) | |
447 | goto success; | |
448 | goto out; | |
0b58b8a1 | 449 | |
df423a4a DH |
450 | efault: |
451 | ret = -EFAULT; | |
452 | goto out; | |
0b58b8a1 DH |
453 | } |
454 | ||
455 | /* | |
df423a4a | 456 | * extract control messages from the sendmsg() control buffer |
0b58b8a1 | 457 | */ |
3ab26a6f | 458 | static int rxrpc_sendmsg_cmsg(struct msghdr *msg, struct rxrpc_send_params *p) |
0b58b8a1 | 459 | { |
df423a4a DH |
460 | struct cmsghdr *cmsg; |
461 | bool got_user_ID = false; | |
462 | int len; | |
0b58b8a1 | 463 | |
df423a4a DH |
464 | if (msg->msg_controllen == 0) |
465 | return -EINVAL; | |
0b58b8a1 | 466 | |
df423a4a DH |
467 | for_each_cmsghdr(cmsg, msg) { |
468 | if (!CMSG_OK(msg, cmsg)) | |
469 | return -EINVAL; | |
0b58b8a1 | 470 | |
1ff8cebf | 471 | len = cmsg->cmsg_len - sizeof(struct cmsghdr); |
df423a4a DH |
472 | _debug("CMSG %d, %d, %d", |
473 | cmsg->cmsg_level, cmsg->cmsg_type, len); | |
0b58b8a1 | 474 | |
df423a4a DH |
475 | if (cmsg->cmsg_level != SOL_RXRPC) |
476 | continue; | |
0b58b8a1 | 477 | |
df423a4a DH |
478 | switch (cmsg->cmsg_type) { |
479 | case RXRPC_USER_CALL_ID: | |
480 | if (msg->msg_flags & MSG_CMSG_COMPAT) { | |
481 | if (len != sizeof(u32)) | |
482 | return -EINVAL; | |
3ab26a6f | 483 | p->user_call_ID = *(u32 *)CMSG_DATA(cmsg); |
df423a4a DH |
484 | } else { |
485 | if (len != sizeof(unsigned long)) | |
486 | return -EINVAL; | |
3ab26a6f | 487 | p->user_call_ID = *(unsigned long *) |
df423a4a DH |
488 | CMSG_DATA(cmsg); |
489 | } | |
df423a4a DH |
490 | got_user_ID = true; |
491 | break; | |
0b58b8a1 | 492 | |
df423a4a | 493 | case RXRPC_ABORT: |
3ab26a6f | 494 | if (p->command != RXRPC_CMD_SEND_DATA) |
df423a4a | 495 | return -EINVAL; |
3ab26a6f DH |
496 | p->command = RXRPC_CMD_SEND_ABORT; |
497 | if (len != sizeof(p->abort_code)) | |
df423a4a | 498 | return -EINVAL; |
3ab26a6f DH |
499 | p->abort_code = *(unsigned int *)CMSG_DATA(cmsg); |
500 | if (p->abort_code == 0) | |
df423a4a DH |
501 | return -EINVAL; |
502 | break; | |
0b58b8a1 | 503 | |
df423a4a | 504 | case RXRPC_ACCEPT: |
3ab26a6f | 505 | if (p->command != RXRPC_CMD_SEND_DATA) |
df423a4a | 506 | return -EINVAL; |
3ab26a6f | 507 | p->command = RXRPC_CMD_ACCEPT; |
df423a4a DH |
508 | if (len != 0) |
509 | return -EINVAL; | |
510 | break; | |
0b58b8a1 | 511 | |
df423a4a | 512 | case RXRPC_EXCLUSIVE_CALL: |
3ab26a6f | 513 | p->exclusive = true; |
df423a4a DH |
514 | if (len != 0) |
515 | return -EINVAL; | |
516 | break; | |
4e255721 DH |
517 | |
518 | case RXRPC_UPGRADE_SERVICE: | |
3ab26a6f | 519 | p->upgrade = true; |
4e255721 DH |
520 | if (len != 0) |
521 | return -EINVAL; | |
522 | break; | |
523 | ||
e754eba6 DH |
524 | case RXRPC_TX_LENGTH: |
525 | if (p->tx_total_len != -1 || len != sizeof(__s64)) | |
526 | return -EINVAL; | |
527 | p->tx_total_len = *(__s64 *)CMSG_DATA(cmsg); | |
528 | if (p->tx_total_len < 0) | |
529 | return -EINVAL; | |
530 | break; | |
531 | ||
df423a4a DH |
532 | default: |
533 | return -EINVAL; | |
534 | } | |
535 | } | |
0b58b8a1 | 536 | |
df423a4a DH |
537 | if (!got_user_ID) |
538 | return -EINVAL; | |
e754eba6 DH |
539 | if (p->tx_total_len != -1 && p->command != RXRPC_CMD_SEND_DATA) |
540 | return -EINVAL; | |
df423a4a DH |
541 | _leave(" = 0"); |
542 | return 0; | |
543 | } | |
0b58b8a1 | 544 | |
df423a4a DH |
545 | /* |
546 | * Create a new client call for sendmsg(). | |
540b1c48 DH |
547 | * - Called with the socket lock held, which it must release. |
548 | * - If it returns a call, the call's lock will need releasing by the caller. | |
df423a4a DH |
549 | */ |
550 | static struct rxrpc_call * | |
551 | rxrpc_new_client_call_for_sendmsg(struct rxrpc_sock *rx, struct msghdr *msg, | |
3ab26a6f | 552 | struct rxrpc_send_params *p) |
540b1c48 | 553 | __releases(&rx->sk.sk_lock.slock) |
df423a4a DH |
554 | { |
555 | struct rxrpc_conn_parameters cp; | |
556 | struct rxrpc_call *call; | |
557 | struct key *key; | |
0b58b8a1 | 558 | |
df423a4a | 559 | DECLARE_SOCKADDR(struct sockaddr_rxrpc *, srx, msg->msg_name); |
0b58b8a1 | 560 | |
df423a4a | 561 | _enter(""); |
0b58b8a1 | 562 | |
540b1c48 DH |
563 | if (!msg->msg_name) { |
564 | release_sock(&rx->sk); | |
df423a4a | 565 | return ERR_PTR(-EDESTADDRREQ); |
540b1c48 | 566 | } |
0b58b8a1 | 567 | |
df423a4a DH |
568 | key = rx->key; |
569 | if (key && !rx->key->payload.data[0]) | |
570 | key = NULL; | |
0b58b8a1 | 571 | |
df423a4a DH |
572 | memset(&cp, 0, sizeof(cp)); |
573 | cp.local = rx->local; | |
574 | cp.key = rx->key; | |
575 | cp.security_level = rx->min_sec_level; | |
3ab26a6f DH |
576 | cp.exclusive = rx->exclusive | p->exclusive; |
577 | cp.upgrade = p->upgrade; | |
df423a4a | 578 | cp.service_id = srx->srx_service; |
e754eba6 DH |
579 | call = rxrpc_new_client_call(rx, &cp, srx, p->user_call_ID, |
580 | p->tx_total_len, GFP_KERNEL); | |
540b1c48 | 581 | /* The socket is now unlocked */ |
0b58b8a1 | 582 | |
df423a4a DH |
583 | _leave(" = %p\n", call); |
584 | return call; | |
585 | } | |
0b58b8a1 | 586 | |
df423a4a DH |
587 | /* |
588 | * send a message forming part of a client call through an RxRPC socket | |
589 | * - caller holds the socket locked | |
590 | * - the socket may be either a client socket or a server socket | |
591 | */ | |
592 | int rxrpc_do_sendmsg(struct rxrpc_sock *rx, struct msghdr *msg, size_t len) | |
540b1c48 | 593 | __releases(&rx->sk.sk_lock.slock) |
df423a4a | 594 | { |
146d8fef | 595 | enum rxrpc_call_state state; |
df423a4a | 596 | struct rxrpc_call *call; |
df423a4a | 597 | int ret; |
0b58b8a1 | 598 | |
3ab26a6f | 599 | struct rxrpc_send_params p = { |
e754eba6 | 600 | .tx_total_len = -1, |
3ab26a6f DH |
601 | .user_call_ID = 0, |
602 | .abort_code = 0, | |
603 | .command = RXRPC_CMD_SEND_DATA, | |
604 | .exclusive = false, | |
48ca2463 | 605 | .upgrade = false, |
3ab26a6f DH |
606 | }; |
607 | ||
df423a4a | 608 | _enter(""); |
0b58b8a1 | 609 | |
3ab26a6f | 610 | ret = rxrpc_sendmsg_cmsg(msg, &p); |
df423a4a | 611 | if (ret < 0) |
540b1c48 | 612 | goto error_release_sock; |
0b58b8a1 | 613 | |
3ab26a6f | 614 | if (p.command == RXRPC_CMD_ACCEPT) { |
540b1c48 | 615 | ret = -EINVAL; |
df423a4a | 616 | if (rx->sk.sk_state != RXRPC_SERVER_LISTENING) |
540b1c48 | 617 | goto error_release_sock; |
3ab26a6f | 618 | call = rxrpc_accept_call(rx, p.user_call_ID, NULL); |
540b1c48 | 619 | /* The socket is now unlocked. */ |
df423a4a DH |
620 | if (IS_ERR(call)) |
621 | return PTR_ERR(call); | |
03a6c822 DH |
622 | ret = 0; |
623 | goto out_put_unlock; | |
df423a4a | 624 | } |
0b58b8a1 | 625 | |
3ab26a6f | 626 | call = rxrpc_find_call_by_user_ID(rx, p.user_call_ID); |
df423a4a | 627 | if (!call) { |
540b1c48 | 628 | ret = -EBADSLT; |
3ab26a6f | 629 | if (p.command != RXRPC_CMD_SEND_DATA) |
540b1c48 | 630 | goto error_release_sock; |
3ab26a6f | 631 | call = rxrpc_new_client_call_for_sendmsg(rx, msg, &p); |
540b1c48 | 632 | /* The socket is now unlocked... */ |
df423a4a DH |
633 | if (IS_ERR(call)) |
634 | return PTR_ERR(call); | |
540b1c48 DH |
635 | /* ... and we have the call lock. */ |
636 | } else { | |
146d8fef DH |
637 | switch (READ_ONCE(call->state)) { |
638 | case RXRPC_CALL_UNINITIALISED: | |
639 | case RXRPC_CALL_CLIENT_AWAIT_CONN: | |
640 | case RXRPC_CALL_SERVER_PREALLOC: | |
641 | case RXRPC_CALL_SERVER_SECURING: | |
642 | case RXRPC_CALL_SERVER_ACCEPTING: | |
643 | ret = -EBUSY; | |
37411cad | 644 | goto error_release_sock; |
146d8fef DH |
645 | default: |
646 | break; | |
647 | } | |
37411cad | 648 | |
540b1c48 DH |
649 | ret = mutex_lock_interruptible(&call->user_mutex); |
650 | release_sock(&rx->sk); | |
651 | if (ret < 0) { | |
652 | ret = -ERESTARTSYS; | |
653 | goto error_put; | |
654 | } | |
e754eba6 DH |
655 | |
656 | if (p.tx_total_len != -1) { | |
657 | ret = -EINVAL; | |
658 | if (call->tx_total_len != -1 || | |
659 | call->tx_pending || | |
660 | call->tx_top != 0) | |
661 | goto error_put; | |
662 | call->tx_total_len = p.tx_total_len; | |
663 | } | |
df423a4a | 664 | } |
0b58b8a1 | 665 | |
146d8fef | 666 | state = READ_ONCE(call->state); |
df423a4a | 667 | _debug("CALL %d USR %lx ST %d on CONN %p", |
146d8fef | 668 | call->debug_id, call->user_call_ID, state, call->conn); |
0b58b8a1 | 669 | |
146d8fef | 670 | if (state >= RXRPC_CALL_COMPLETE) { |
df423a4a DH |
671 | /* it's too late for this call */ |
672 | ret = -ESHUTDOWN; | |
3ab26a6f | 673 | } else if (p.command == RXRPC_CMD_SEND_ABORT) { |
df423a4a | 674 | ret = 0; |
3ab26a6f | 675 | if (rxrpc_abort_call("CMD", call, 0, p.abort_code, -ECONNABORTED)) |
26cb02aa | 676 | ret = rxrpc_send_abort_packet(call); |
3ab26a6f | 677 | } else if (p.command != RXRPC_CMD_SEND_DATA) { |
df423a4a DH |
678 | ret = -EINVAL; |
679 | } else if (rxrpc_is_client_call(call) && | |
146d8fef | 680 | state != RXRPC_CALL_CLIENT_SEND_REQUEST) { |
df423a4a DH |
681 | /* request phase complete for this client call */ |
682 | ret = -EPROTO; | |
683 | } else if (rxrpc_is_service_call(call) && | |
146d8fef DH |
684 | state != RXRPC_CALL_SERVER_ACK_REQUEST && |
685 | state != RXRPC_CALL_SERVER_SEND_REPLY) { | |
df423a4a DH |
686 | /* Reply phase not begun or not complete for service call. */ |
687 | ret = -EPROTO; | |
688 | } else { | |
e833251a | 689 | ret = rxrpc_send_data(rx, call, msg, len, NULL); |
df423a4a | 690 | } |
0b58b8a1 | 691 | |
03a6c822 | 692 | out_put_unlock: |
540b1c48 DH |
693 | mutex_unlock(&call->user_mutex); |
694 | error_put: | |
fff72429 | 695 | rxrpc_put_call(call, rxrpc_call_put); |
df423a4a DH |
696 | _leave(" = %d", ret); |
697 | return ret; | |
540b1c48 DH |
698 | |
699 | error_release_sock: | |
700 | release_sock(&rx->sk); | |
701 | return ret; | |
df423a4a | 702 | } |
0b58b8a1 | 703 | |
df423a4a DH |
704 | /** |
705 | * rxrpc_kernel_send_data - Allow a kernel service to send data on a call | |
706 | * @sock: The socket the call is on | |
707 | * @call: The call to send data through | |
708 | * @msg: The data to send | |
709 | * @len: The amount of data to send | |
e833251a | 710 | * @notify_end_tx: Notification that the last packet is queued. |
df423a4a DH |
711 | * |
712 | * Allow a kernel service to send data on a call. The call must be in an state | |
713 | * appropriate to sending data. No control data should be supplied in @msg, | |
714 | * nor should an address be supplied. MSG_MORE should be flagged if there's | |
715 | * more data to come, otherwise this data will end the transmission phase. | |
716 | */ | |
717 | int rxrpc_kernel_send_data(struct socket *sock, struct rxrpc_call *call, | |
e833251a DH |
718 | struct msghdr *msg, size_t len, |
719 | rxrpc_notify_end_tx_t notify_end_tx) | |
df423a4a DH |
720 | { |
721 | int ret; | |
0b58b8a1 | 722 | |
df423a4a | 723 | _enter("{%d,%s},", call->debug_id, rxrpc_call_states[call->state]); |
0b58b8a1 | 724 | |
df423a4a DH |
725 | ASSERTCMP(msg->msg_name, ==, NULL); |
726 | ASSERTCMP(msg->msg_control, ==, NULL); | |
0b58b8a1 | 727 | |
540b1c48 | 728 | mutex_lock(&call->user_mutex); |
0b58b8a1 | 729 | |
df423a4a DH |
730 | _debug("CALL %d USR %lx ST %d on CONN %p", |
731 | call->debug_id, call->user_call_ID, call->state, call->conn); | |
0b58b8a1 | 732 | |
146d8fef DH |
733 | switch (READ_ONCE(call->state)) { |
734 | case RXRPC_CALL_CLIENT_SEND_REQUEST: | |
735 | case RXRPC_CALL_SERVER_ACK_REQUEST: | |
736 | case RXRPC_CALL_SERVER_SEND_REPLY: | |
e833251a DH |
737 | ret = rxrpc_send_data(rxrpc_sk(sock->sk), call, msg, len, |
738 | notify_end_tx); | |
146d8fef DH |
739 | break; |
740 | case RXRPC_CALL_COMPLETE: | |
6fc166d6 | 741 | read_lock_bh(&call->state_lock); |
bd2db2d2 | 742 | ret = call->error; |
6fc166d6 | 743 | read_unlock_bh(&call->state_lock); |
146d8fef DH |
744 | break; |
745 | default: | |
fb46f6ee DH |
746 | /* Request phase complete for this client call */ |
747 | trace_rxrpc_rx_eproto(call, 0, tracepoint_string("late_send")); | |
146d8fef DH |
748 | ret = -EPROTO; |
749 | break; | |
df423a4a DH |
750 | } |
751 | ||
540b1c48 | 752 | mutex_unlock(&call->user_mutex); |
0b58b8a1 DH |
753 | _leave(" = %d", ret); |
754 | return ret; | |
df423a4a DH |
755 | } |
756 | EXPORT_SYMBOL(rxrpc_kernel_send_data); | |
0b58b8a1 | 757 | |
df423a4a DH |
758 | /** |
759 | * rxrpc_kernel_abort_call - Allow a kernel service to abort a call | |
760 | * @sock: The socket the call is on | |
761 | * @call: The call to be aborted | |
762 | * @abort_code: The abort code to stick into the ABORT packet | |
5a42976d DH |
763 | * @error: Local error value |
764 | * @why: 3-char string indicating why. | |
df423a4a | 765 | * |
84a4c09c DH |
766 | * Allow a kernel service to abort a call, if it's still in an abortable state |
767 | * and return true if the call was aborted, false if it was already complete. | |
df423a4a | 768 | */ |
84a4c09c | 769 | bool rxrpc_kernel_abort_call(struct socket *sock, struct rxrpc_call *call, |
5a42976d | 770 | u32 abort_code, int error, const char *why) |
df423a4a | 771 | { |
84a4c09c DH |
772 | bool aborted; |
773 | ||
5a42976d | 774 | _enter("{%d},%d,%d,%s", call->debug_id, abort_code, error, why); |
0b58b8a1 | 775 | |
540b1c48 | 776 | mutex_lock(&call->user_mutex); |
0b58b8a1 | 777 | |
84a4c09c DH |
778 | aborted = rxrpc_abort_call(why, call, 0, abort_code, error); |
779 | if (aborted) | |
26cb02aa | 780 | rxrpc_send_abort_packet(call); |
df423a4a | 781 | |
540b1c48 | 782 | mutex_unlock(&call->user_mutex); |
84a4c09c | 783 | return aborted; |
0b58b8a1 | 784 | } |
df423a4a | 785 | EXPORT_SYMBOL(rxrpc_kernel_abort_call); |
e754eba6 DH |
786 | |
787 | /** | |
788 | * rxrpc_kernel_set_tx_length - Set the total Tx length on a call | |
789 | * @sock: The socket the call is on | |
790 | * @call: The call to be informed | |
791 | * @tx_total_len: The amount of data to be transmitted for this call | |
792 | * | |
793 | * Allow a kernel service to set the total transmit length on a call. This | |
794 | * allows buffer-to-packet encrypt-and-copy to be performed. | |
795 | * | |
796 | * This function is primarily for use for setting the reply length since the | |
797 | * request length can be set when beginning the call. | |
798 | */ | |
799 | void rxrpc_kernel_set_tx_length(struct socket *sock, struct rxrpc_call *call, | |
800 | s64 tx_total_len) | |
801 | { | |
802 | WARN_ON(call->tx_total_len != -1); | |
803 | call->tx_total_len = tx_total_len; | |
804 | } | |
805 | EXPORT_SYMBOL(rxrpc_kernel_set_tx_length); |