]> git.proxmox.com Git - mirror_ubuntu-bionic-kernel.git/blame - net/sched/cls_cgroup.c
Merge branch 'stable-4.11' of git://git.infradead.org/users/pcmoore/audit
[mirror_ubuntu-bionic-kernel.git] / net / sched / cls_cgroup.c
CommitLineData
f4009237
TG
1/*
2 * net/sched/cls_cgroup.c Control Group Classifier
3 *
4 * This program is free software; you can redistribute it and/or
5 * modify it under the terms of the GNU General Public License
6 * as published by the Free Software Foundation; either version
7 * 2 of the License, or (at your option) any later version.
8 *
9 * Authors: Thomas Graf <tgraf@suug.ch>
10 */
11
12#include <linux/module.h>
5a0e3ad6 13#include <linux/slab.h>
f4009237 14#include <linux/skbuff.h>
f8451725 15#include <linux/rcupdate.h>
f4009237
TG
16#include <net/rtnetlink.h>
17#include <net/pkt_cls.h>
f8451725
HX
18#include <net/sock.h>
19#include <net/cls_cgroup.h>
f4009237 20
cc7ec456 21struct cls_cgroup_head {
f4009237
TG
22 u32 handle;
23 struct tcf_exts exts;
24 struct tcf_ematch_tree ematches;
952313bd
JF
25 struct tcf_proto *tp;
26 struct rcu_head rcu;
f4009237
TG
27};
28
dc7f9f6e 29static int cls_cgroup_classify(struct sk_buff *skb, const struct tcf_proto *tp,
f4009237
TG
30 struct tcf_result *res)
31{
952313bd 32 struct cls_cgroup_head *head = rcu_dereference_bh(tp->root);
b87a173e 33 u32 classid = task_get_classid(skb);
f4009237 34
e65fcfd6
PM
35 if (!classid)
36 return -1;
e65fcfd6
PM
37 if (!tcf_em_tree_match(skb, &head->ematches, NULL))
38 return -1;
39
40 res->classid = classid;
41 res->class = 0;
b87a173e 42
e65fcfd6 43 return tcf_exts_exec(skb, &head->exts, res);
f4009237
TG
44}
45
46static unsigned long cls_cgroup_get(struct tcf_proto *tp, u32 handle)
47{
48 return 0UL;
49}
50
f4009237
TG
51static int cls_cgroup_init(struct tcf_proto *tp)
52{
53 return 0;
54}
55
f4009237
TG
56static const struct nla_policy cgroup_policy[TCA_CGROUP_MAX + 1] = {
57 [TCA_CGROUP_EMATCHES] = { .type = NLA_NESTED },
58};
59
952313bd
JF
60static void cls_cgroup_destroy_rcu(struct rcu_head *root)
61{
62 struct cls_cgroup_head *head = container_of(root,
63 struct cls_cgroup_head,
64 rcu);
65
18d0264f 66 tcf_exts_destroy(&head->exts);
82a470f1 67 tcf_em_tree_destroy(&head->ematches);
952313bd
JF
68 kfree(head);
69}
70
c1b52739 71static int cls_cgroup_change(struct net *net, struct sk_buff *in_skb,
af4c6641 72 struct tcf_proto *tp, unsigned long base,
f4009237 73 u32 handle, struct nlattr **tca,
2f7ef2f8 74 unsigned long *arg, bool ovr)
f4009237 75{
cc7ec456 76 struct nlattr *tb[TCA_CGROUP_MAX + 1];
952313bd
JF
77 struct cls_cgroup_head *head = rtnl_dereference(tp->root);
78 struct cls_cgroup_head *new;
f4009237
TG
79 struct tcf_ematch_tree t;
80 struct tcf_exts e;
81 int err;
82
52ea3a56
MU
83 if (!tca[TCA_OPTIONS])
84 return -EINVAL;
85
952313bd
JF
86 if (!head && !handle)
87 return -EINVAL;
f4009237 88
952313bd
JF
89 if (head && handle != head->handle)
90 return -ENOENT;
f4009237 91
952313bd
JF
92 new = kzalloc(sizeof(*head), GFP_KERNEL);
93 if (!new)
94 return -ENOBUFS;
f4009237 95
b9a24bb7
WC
96 err = tcf_exts_init(&new->exts, TCA_CGROUP_ACT, TCA_CGROUP_POLICE);
97 if (err < 0)
98 goto errout;
18b5427a 99 new->handle = handle;
952313bd 100 new->tp = tp;
f4009237
TG
101 err = nla_parse_nested(tb, TCA_CGROUP_MAX, tca[TCA_OPTIONS],
102 cgroup_policy);
103 if (err < 0)
d14cbfc8 104 goto errout;
f4009237 105
b9a24bb7 106 err = tcf_exts_init(&e, TCA_CGROUP_ACT, TCA_CGROUP_POLICE);
f4009237 107 if (err < 0)
d14cbfc8 108 goto errout;
b9a24bb7
WC
109 err = tcf_exts_validate(net, tp, tb, tca[TCA_RATE], &e, ovr);
110 if (err < 0) {
111 tcf_exts_destroy(&e);
112 goto errout;
113 }
f4009237
TG
114
115 err = tcf_em_tree_validate(tp, tb[TCA_CGROUP_EMATCHES], &t);
d14cbfc8 116 if (err < 0) {
18d0264f 117 tcf_exts_destroy(&e);
d14cbfc8
JF
118 goto errout;
119 }
f4009237 120
952313bd
JF
121 tcf_exts_change(tp, &new->exts, &e);
122 tcf_em_tree_change(tp, &new->ematches, &t);
f4009237 123
952313bd
JF
124 rcu_assign_pointer(tp->root, new);
125 if (head)
126 call_rcu(&head->rcu, cls_cgroup_destroy_rcu);
f4009237 127 return 0;
d14cbfc8 128errout:
b9a24bb7 129 tcf_exts_destroy(&new->exts);
d14cbfc8
JF
130 kfree(new);
131 return err;
f4009237
TG
132}
133
1e052be6 134static bool cls_cgroup_destroy(struct tcf_proto *tp, bool force)
f4009237 135{
952313bd 136 struct cls_cgroup_head *head = rtnl_dereference(tp->root);
f4009237 137
1e052be6
CW
138 if (!force)
139 return false;
d9363774
DB
140 /* Head can still be NULL due to cls_cgroup_init(). */
141 if (head)
13990f81 142 call_rcu(&head->rcu, cls_cgroup_destroy_rcu);
d9363774 143
1e052be6 144 return true;
f4009237
TG
145}
146
147static int cls_cgroup_delete(struct tcf_proto *tp, unsigned long arg)
148{
149 return -EOPNOTSUPP;
150}
151
152static void cls_cgroup_walk(struct tcf_proto *tp, struct tcf_walker *arg)
153{
952313bd 154 struct cls_cgroup_head *head = rtnl_dereference(tp->root);
f4009237
TG
155
156 if (arg->count < arg->skip)
157 goto skip;
158
159 if (arg->fn(tp, (unsigned long) head, arg) < 0) {
160 arg->stop = 1;
161 return;
162 }
163skip:
164 arg->count++;
165}
166
832d1d5b 167static int cls_cgroup_dump(struct net *net, struct tcf_proto *tp, unsigned long fh,
f4009237
TG
168 struct sk_buff *skb, struct tcmsg *t)
169{
952313bd 170 struct cls_cgroup_head *head = rtnl_dereference(tp->root);
f4009237
TG
171 struct nlattr *nest;
172
173 t->tcm_handle = head->handle;
174
175 nest = nla_nest_start(skb, TCA_OPTIONS);
176 if (nest == NULL)
177 goto nla_put_failure;
178
5da57f42 179 if (tcf_exts_dump(skb, &head->exts) < 0 ||
f4009237
TG
180 tcf_em_tree_dump(skb, &head->ematches, TCA_CGROUP_EMATCHES) < 0)
181 goto nla_put_failure;
182
183 nla_nest_end(skb, nest);
184
5da57f42 185 if (tcf_exts_dump_stats(skb, &head->exts) < 0)
f4009237
TG
186 goto nla_put_failure;
187
188 return skb->len;
189
190nla_put_failure:
6ea3b446 191 nla_nest_cancel(skb, nest);
f4009237
TG
192 return -1;
193}
194
195static struct tcf_proto_ops cls_cgroup_ops __read_mostly = {
196 .kind = "cgroup",
197 .init = cls_cgroup_init,
198 .change = cls_cgroup_change,
199 .classify = cls_cgroup_classify,
200 .destroy = cls_cgroup_destroy,
201 .get = cls_cgroup_get,
f4009237
TG
202 .delete = cls_cgroup_delete,
203 .walk = cls_cgroup_walk,
204 .dump = cls_cgroup_dump,
205 .owner = THIS_MODULE,
206};
207
208static int __init init_cgroup_cls(void)
209{
fe1217c4 210 return register_tcf_proto_ops(&cls_cgroup_ops);
f4009237
TG
211}
212
213static void __exit exit_cgroup_cls(void)
214{
215 unregister_tcf_proto_ops(&cls_cgroup_ops);
216}
217
218module_init(init_cgroup_cls);
219module_exit(exit_cgroup_cls);
220MODULE_LICENSE("GPL");