blob: 9cc00f8a6ee5822d021974b353ffbf7dba00d7d7 [file] [log] [blame]
Linus Torvalds1da177e2005-04-16 15:20:36 -07001/*
2 * INET An implementation of the TCP/IP protocol suite for the LINUX
3 * operating system. INET is implemented using the BSD Socket
4 * interface as the means of communication with the user level.
5 *
6 * ROUTE - implementation of the IP router.
7 *
Jesper Juhl02c30a82005-05-05 16:16:16 -07008 * Authors: Ross Biro
Linus Torvalds1da177e2005-04-16 15:20:36 -07009 * Fred N. van Kempen, <waltje@uWalt.NL.Mugnet.ORG>
10 * Alan Cox, <gw4pts@gw4pts.ampr.org>
11 * Linus Torvalds, <Linus.Torvalds@helsinki.fi>
12 * Alexey Kuznetsov, <kuznet@ms2.inr.ac.ru>
13 *
14 * Fixes:
15 * Alan Cox : Verify area fixes.
16 * Alan Cox : cli() protects routing changes
17 * Rui Oliveira : ICMP routing table updates
18 * (rco@di.uminho.pt) Routing table insertion and update
19 * Linus Torvalds : Rewrote bits to be sensible
20 * Alan Cox : Added BSD route gw semantics
YOSHIFUJI Hideakie905a9e2007-02-09 23:24:47 +090021 * Alan Cox : Super /proc >4K
Linus Torvalds1da177e2005-04-16 15:20:36 -070022 * Alan Cox : MTU in route table
23 * Alan Cox : MSS actually. Also added the window
24 * clamper.
25 * Sam Lantinga : Fixed route matching in rt_del()
26 * Alan Cox : Routing cache support.
27 * Alan Cox : Removed compatibility cruft.
28 * Alan Cox : RTF_REJECT support.
29 * Alan Cox : TCP irtt support.
30 * Jonathan Naylor : Added Metric support.
31 * Miquel van Smoorenburg : BSD API fixes.
32 * Miquel van Smoorenburg : Metrics.
33 * Alan Cox : Use __u32 properly
34 * Alan Cox : Aligned routing errors more closely with BSD
35 * our system is still very different.
36 * Alan Cox : Faster /proc handling
37 * Alexey Kuznetsov : Massive rework to support tree based routing,
38 * routing caches and better behaviour.
YOSHIFUJI Hideakie905a9e2007-02-09 23:24:47 +090039 *
Linus Torvalds1da177e2005-04-16 15:20:36 -070040 * Olaf Erb : irtt wasn't being copied right.
41 * Bjorn Ekwall : Kerneld route support.
42 * Alan Cox : Multicast fixed (I hope)
43 * Pavel Krauz : Limited broadcast fixed
44 * Mike McLagan : Routing by source
45 * Alexey Kuznetsov : End of old history. Split to fib.c and
46 * route.c and rewritten from scratch.
47 * Andi Kleen : Load-limit warning messages.
48 * Vitaly E. Lavrov : Transparent proxy revived after year coma.
49 * Vitaly E. Lavrov : Race condition in ip_route_input_slow.
50 * Tobias Ringstrom : Uninitialized res.type in ip_route_output_slow.
51 * Vladimir V. Ivanov : IP rule info (flowid) is really useful.
52 * Marc Boucher : routing by fwmark
53 * Robert Olsson : Added rt_cache statistics
54 * Arnaldo C. Melo : Convert proc stuff to seq_file
Eric Dumazetbb1d23b2005-07-05 15:00:32 -070055 * Eric Dumazet : hashed spinlocks and rt_check_expire() fixes.
Ilia Sotnikovcef26852006-03-25 01:38:55 -080056 * Ilia Sotnikov : Ignore TOS on PMTUD and Redirect
57 * Ilia Sotnikov : Removed TOS from hash calculations
Linus Torvalds1da177e2005-04-16 15:20:36 -070058 *
59 * This program is free software; you can redistribute it and/or
60 * modify it under the terms of the GNU General Public License
61 * as published by the Free Software Foundation; either version
62 * 2 of the License, or (at your option) any later version.
63 */
64
Joe Perchesafd465032012-03-12 07:03:32 +000065#define pr_fmt(fmt) "IPv4: " fmt
66
Linus Torvalds1da177e2005-04-16 15:20:36 -070067#include <linux/module.h>
68#include <asm/uaccess.h>
Linus Torvalds1da177e2005-04-16 15:20:36 -070069#include <linux/bitops.h>
70#include <linux/types.h>
71#include <linux/kernel.h>
Linus Torvalds1da177e2005-04-16 15:20:36 -070072#include <linux/mm.h>
Eric Dumazet424c4b72005-07-05 14:58:19 -070073#include <linux/bootmem.h>
Linus Torvalds1da177e2005-04-16 15:20:36 -070074#include <linux/string.h>
75#include <linux/socket.h>
76#include <linux/sockios.h>
77#include <linux/errno.h>
78#include <linux/in.h>
79#include <linux/inet.h>
80#include <linux/netdevice.h>
81#include <linux/proc_fs.h>
82#include <linux/init.h>
Eric Dumazet39c90ec2007-09-15 10:55:54 -070083#include <linux/workqueue.h>
Linus Torvalds1da177e2005-04-16 15:20:36 -070084#include <linux/skbuff.h>
Linus Torvalds1da177e2005-04-16 15:20:36 -070085#include <linux/inetdevice.h>
86#include <linux/igmp.h>
87#include <linux/pkt_sched.h>
88#include <linux/mroute.h>
89#include <linux/netfilter_ipv4.h>
90#include <linux/random.h>
91#include <linux/jhash.h>
92#include <linux/rcupdate.h>
93#include <linux/times.h>
Tejun Heo5a0e3ad2010-03-24 17:04:11 +090094#include <linux/slab.h>
Stephen Rothwellb9eda062011-12-22 17:03:29 +110095#include <linux/prefetch.h>
Herbert Xu352e5122007-11-13 21:34:06 -080096#include <net/dst.h>
Eric W. Biederman457c4cb2007-09-12 12:01:34 +020097#include <net/net_namespace.h>
Linus Torvalds1da177e2005-04-16 15:20:36 -070098#include <net/protocol.h>
99#include <net/ip.h>
100#include <net/route.h>
101#include <net/inetpeer.h>
102#include <net/sock.h>
103#include <net/ip_fib.h>
104#include <net/arp.h>
105#include <net/tcp.h>
106#include <net/icmp.h>
107#include <net/xfrm.h>
Tom Tucker8d717402006-07-30 20:43:36 -0700108#include <net/netevent.h>
Thomas Graf63f34442007-03-22 11:55:17 -0700109#include <net/rtnetlink.h>
Linus Torvalds1da177e2005-04-16 15:20:36 -0700110#ifdef CONFIG_SYSCTL
111#include <linux/sysctl.h>
Shan Wei7426a562012-04-18 18:05:46 +0000112#include <linux/kmemleak.h>
Linus Torvalds1da177e2005-04-16 15:20:36 -0700113#endif
David S. Miller6e5714e2011-08-03 20:50:44 -0700114#include <net/secure_seq.h>
Linus Torvalds1da177e2005-04-16 15:20:36 -0700115
David S. Miller68a5e3d2011-03-11 20:07:33 -0500116#define RT_FL_TOS(oldflp4) \
Julian Anastasovf61759e2011-12-02 11:39:42 +0000117 ((oldflp4)->flowi4_tos & (IPTOS_RT_MASK | RTO_ONLINK))
Linus Torvalds1da177e2005-04-16 15:20:36 -0700118
119#define IP_MAX_MTU 0xFFF0
120
121#define RT_GC_TIMEOUT (300*HZ)
122
Linus Torvalds1da177e2005-04-16 15:20:36 -0700123static int ip_rt_max_size;
Stephen Hemminger817bc4d2008-03-22 17:43:59 -0700124static int ip_rt_gc_timeout __read_mostly = RT_GC_TIMEOUT;
Eric Dumazet9f28a2f2011-12-21 15:47:16 -0500125static int ip_rt_gc_interval __read_mostly = 60 * HZ;
Stephen Hemminger817bc4d2008-03-22 17:43:59 -0700126static int ip_rt_gc_min_interval __read_mostly = HZ / 2;
127static int ip_rt_redirect_number __read_mostly = 9;
128static int ip_rt_redirect_load __read_mostly = HZ / 50;
129static int ip_rt_redirect_silence __read_mostly = ((HZ / 50) << (9 + 1));
130static int ip_rt_error_cost __read_mostly = HZ;
131static int ip_rt_error_burst __read_mostly = 5 * HZ;
132static int ip_rt_gc_elasticity __read_mostly = 8;
133static int ip_rt_mtu_expires __read_mostly = 10 * 60 * HZ;
134static int ip_rt_min_pmtu __read_mostly = 512 + 20 + 20;
135static int ip_rt_min_advmss __read_mostly = 256;
Neil Horman1080d702008-10-27 12:28:25 -0700136static int rt_chain_length_max __read_mostly = 20;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700137
Eric Dumazet9f28a2f2011-12-21 15:47:16 -0500138static struct delayed_work expires_work;
139static unsigned long expires_ljiffies;
140
Linus Torvalds1da177e2005-04-16 15:20:36 -0700141/*
142 * Interface to generic destination cache.
143 */
144
145static struct dst_entry *ipv4_dst_check(struct dst_entry *dst, u32 cookie);
David S. Miller0dbaee32010-12-13 12:52:14 -0800146static unsigned int ipv4_default_advmss(const struct dst_entry *dst);
Steffen Klassertebb762f2011-11-23 02:12:51 +0000147static unsigned int ipv4_mtu(const struct dst_entry *dst);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700148static void ipv4_dst_destroy(struct dst_entry *dst);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700149static struct dst_entry *ipv4_negative_advice(struct dst_entry *dst);
150static void ipv4_link_failure(struct sk_buff *skb);
151static void ip_rt_update_pmtu(struct dst_entry *dst, u32 mtu);
Daniel Lezcano569d3642008-01-18 03:56:57 -0800152static int rt_garbage_collect(struct dst_ops *ops);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700153
Eric Dumazet72cdd1d2010-11-11 07:14:07 +0000154static void ipv4_dst_ifdown(struct dst_entry *dst, struct net_device *dev,
155 int how)
156{
157}
Linus Torvalds1da177e2005-04-16 15:20:36 -0700158
David S. Miller62fa8a82011-01-26 20:51:05 -0800159static u32 *ipv4_cow_metrics(struct dst_entry *dst, unsigned long old)
160{
David S. Miller31248732012-07-10 07:08:18 -0700161 WARN_ON(1);
162 return NULL;
David S. Miller62fa8a82011-01-26 20:51:05 -0800163}
164
David S. Millerf894cbf2012-07-02 21:52:24 -0700165static struct neighbour *ipv4_neigh_lookup(const struct dst_entry *dst,
166 struct sk_buff *skb,
167 const void *daddr);
David S. Millerd3aaeb32011-07-18 00:40:17 -0700168
Linus Torvalds1da177e2005-04-16 15:20:36 -0700169static struct dst_ops ipv4_dst_ops = {
170 .family = AF_INET,
Harvey Harrison09640e62009-02-01 00:45:17 -0800171 .protocol = cpu_to_be16(ETH_P_IP),
Linus Torvalds1da177e2005-04-16 15:20:36 -0700172 .gc = rt_garbage_collect,
173 .check = ipv4_dst_check,
David S. Miller0dbaee32010-12-13 12:52:14 -0800174 .default_advmss = ipv4_default_advmss,
Steffen Klassertebb762f2011-11-23 02:12:51 +0000175 .mtu = ipv4_mtu,
David S. Miller62fa8a82011-01-26 20:51:05 -0800176 .cow_metrics = ipv4_cow_metrics,
Linus Torvalds1da177e2005-04-16 15:20:36 -0700177 .destroy = ipv4_dst_destroy,
178 .ifdown = ipv4_dst_ifdown,
179 .negative_advice = ipv4_negative_advice,
180 .link_failure = ipv4_link_failure,
181 .update_pmtu = ip_rt_update_pmtu,
Herbert Xu1ac06e02008-05-20 14:32:14 -0700182 .local_out = __ip_local_out,
David S. Millerd3aaeb32011-07-18 00:40:17 -0700183 .neigh_lookup = ipv4_neigh_lookup,
Linus Torvalds1da177e2005-04-16 15:20:36 -0700184};
185
186#define ECN_OR_COST(class) TC_PRIO_##class
187
Philippe De Muyter4839c522007-07-09 15:32:57 -0700188const __u8 ip_tos2prio[16] = {
Linus Torvalds1da177e2005-04-16 15:20:36 -0700189 TC_PRIO_BESTEFFORT,
Dan Siemon4a2b9c32011-03-15 13:56:07 +0000190 ECN_OR_COST(BESTEFFORT),
Linus Torvalds1da177e2005-04-16 15:20:36 -0700191 TC_PRIO_BESTEFFORT,
192 ECN_OR_COST(BESTEFFORT),
193 TC_PRIO_BULK,
194 ECN_OR_COST(BULK),
195 TC_PRIO_BULK,
196 ECN_OR_COST(BULK),
197 TC_PRIO_INTERACTIVE,
198 ECN_OR_COST(INTERACTIVE),
199 TC_PRIO_INTERACTIVE,
200 ECN_OR_COST(INTERACTIVE),
201 TC_PRIO_INTERACTIVE_BULK,
202 ECN_OR_COST(INTERACTIVE_BULK),
203 TC_PRIO_INTERACTIVE_BULK,
204 ECN_OR_COST(INTERACTIVE_BULK)
205};
Amir Vadaid4a96862012-04-04 21:33:28 +0000206EXPORT_SYMBOL(ip_tos2prio);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700207
208/*
209 * Route cache.
210 */
211
212/* The locking scheme is rather straight forward:
213 *
214 * 1) Read-Copy Update protects the buckets of the central route hash.
215 * 2) Only writers remove entries, and they hold the lock
216 * as they look at rtable reference counts.
217 * 3) Only readers acquire references to rtable entries,
218 * they do so with atomic increments and with the
219 * lock held.
220 */
221
222struct rt_hash_bucket {
Eric Dumazet1c317202010-10-25 21:02:07 +0000223 struct rtable __rcu *chain;
Eric Dumazet22c047c2005-07-05 14:55:24 -0700224};
Neil Horman1080d702008-10-27 12:28:25 -0700225
Ingo Molnar8a25d5d2006-07-03 00:24:54 -0700226#if defined(CONFIG_SMP) || defined(CONFIG_DEBUG_SPINLOCK) || \
227 defined(CONFIG_PROVE_LOCKING)
Eric Dumazet22c047c2005-07-05 14:55:24 -0700228/*
229 * Instead of using one spinlock for each rt_hash_bucket, we use a table of spinlocks
230 * The size of this table is a power of two and depends on the number of CPUS.
Ingo Molnar62051202006-07-03 00:24:59 -0700231 * (on lockdep we have a quite big spinlock_t, so keep the size down there)
Eric Dumazet22c047c2005-07-05 14:55:24 -0700232 */
Ingo Molnar62051202006-07-03 00:24:59 -0700233#ifdef CONFIG_LOCKDEP
234# define RT_HASH_LOCK_SZ 256
Eric Dumazet22c047c2005-07-05 14:55:24 -0700235#else
Ingo Molnar62051202006-07-03 00:24:59 -0700236# if NR_CPUS >= 32
237# define RT_HASH_LOCK_SZ 4096
238# elif NR_CPUS >= 16
239# define RT_HASH_LOCK_SZ 2048
240# elif NR_CPUS >= 8
241# define RT_HASH_LOCK_SZ 1024
242# elif NR_CPUS >= 4
243# define RT_HASH_LOCK_SZ 512
244# else
245# define RT_HASH_LOCK_SZ 256
246# endif
Eric Dumazet22c047c2005-07-05 14:55:24 -0700247#endif
248
249static spinlock_t *rt_hash_locks;
250# define rt_hash_lock_addr(slot) &rt_hash_locks[(slot) & (RT_HASH_LOCK_SZ - 1)]
Pavel Emelyanov1ff1cc22007-12-05 21:15:05 -0800251
252static __init void rt_hash_lock_init(void)
253{
254 int i;
255
256 rt_hash_locks = kmalloc(sizeof(spinlock_t) * RT_HASH_LOCK_SZ,
257 GFP_KERNEL);
258 if (!rt_hash_locks)
259 panic("IP: failed to allocate rt_hash_locks\n");
260
261 for (i = 0; i < RT_HASH_LOCK_SZ; i++)
262 spin_lock_init(&rt_hash_locks[i]);
263}
Eric Dumazet22c047c2005-07-05 14:55:24 -0700264#else
265# define rt_hash_lock_addr(slot) NULL
Pavel Emelyanov1ff1cc22007-12-05 21:15:05 -0800266
267static inline void rt_hash_lock_init(void)
268{
269}
Eric Dumazet22c047c2005-07-05 14:55:24 -0700270#endif
Linus Torvalds1da177e2005-04-16 15:20:36 -0700271
Stephen Hemminger817bc4d2008-03-22 17:43:59 -0700272static struct rt_hash_bucket *rt_hash_table __read_mostly;
Eric Dumazet95c96172012-04-15 05:58:06 +0000273static unsigned int rt_hash_mask __read_mostly;
Stephen Hemminger817bc4d2008-03-22 17:43:59 -0700274static unsigned int rt_hash_log __read_mostly;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700275
Eric Dumazet2f970d82006-01-17 02:54:36 -0800276static DEFINE_PER_CPU(struct rt_cache_stat, rt_cache_stat);
Eric Dumazet27f39c72010-05-19 22:07:23 +0000277#define RT_CACHE_STAT_INC(field) __this_cpu_inc(rt_cache_stat.field)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700278
Denis V. Lunevb00180d2008-07-05 19:04:09 -0700279static inline unsigned int rt_hash(__be32 daddr, __be32 saddr, int idx,
Eric Dumazet0eae88f2010-04-20 19:06:52 -0700280 int genid)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700281{
Eric Dumazet0eae88f2010-04-20 19:06:52 -0700282 return jhash_3words((__force u32)daddr, (__force u32)saddr,
Denis V. Lunevb00180d2008-07-05 19:04:09 -0700283 idx, genid)
Eric Dumazet29e75252008-01-31 17:05:09 -0800284 & rt_hash_mask;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700285}
286
Denis V. Luneve84f84f2008-07-05 19:04:32 -0700287static inline int rt_genid(struct net *net)
288{
289 return atomic_read(&net->ipv4.rt_genid);
290}
291
Linus Torvalds1da177e2005-04-16 15:20:36 -0700292#ifdef CONFIG_PROC_FS
293struct rt_cache_iter_state {
Denis V. Luneva75e9362008-02-28 20:50:55 -0800294 struct seq_net_private p;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700295 int bucket;
Eric Dumazet29e75252008-01-31 17:05:09 -0800296 int genid;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700297};
298
YOSHIFUJI Hideaki12188542008-03-26 02:36:06 +0900299static struct rtable *rt_cache_get_first(struct seq_file *seq)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700300{
YOSHIFUJI Hideaki12188542008-03-26 02:36:06 +0900301 struct rt_cache_iter_state *st = seq->private;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700302 struct rtable *r = NULL;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700303
304 for (st->bucket = rt_hash_mask; st->bucket >= 0; --st->bucket) {
Eric Dumazet33d480c2011-08-11 19:30:52 +0000305 if (!rcu_access_pointer(rt_hash_table[st->bucket].chain))
Eric Dumazeta6272662008-08-28 01:11:25 -0700306 continue;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700307 rcu_read_lock_bh();
Paul E. McKenneya898def2010-02-22 17:04:49 -0800308 r = rcu_dereference_bh(rt_hash_table[st->bucket].chain);
Eric Dumazet29e75252008-01-31 17:05:09 -0800309 while (r) {
Changli Gaod8d1f302010-06-10 23:31:35 -0700310 if (dev_net(r->dst.dev) == seq_file_net(seq) &&
Denis V. Luneva75e9362008-02-28 20:50:55 -0800311 r->rt_genid == st->genid)
Eric Dumazet29e75252008-01-31 17:05:09 -0800312 return r;
Changli Gaod8d1f302010-06-10 23:31:35 -0700313 r = rcu_dereference_bh(r->dst.rt_next);
Eric Dumazet29e75252008-01-31 17:05:09 -0800314 }
Linus Torvalds1da177e2005-04-16 15:20:36 -0700315 rcu_read_unlock_bh();
316 }
Eric Dumazet29e75252008-01-31 17:05:09 -0800317 return r;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700318}
319
YOSHIFUJI Hideaki12188542008-03-26 02:36:06 +0900320static struct rtable *__rt_cache_get_next(struct seq_file *seq,
Denis V. Lunev642d6312008-02-28 20:50:33 -0800321 struct rtable *r)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700322{
YOSHIFUJI Hideaki12188542008-03-26 02:36:06 +0900323 struct rt_cache_iter_state *st = seq->private;
Eric Dumazeta6272662008-08-28 01:11:25 -0700324
Eric Dumazet1c317202010-10-25 21:02:07 +0000325 r = rcu_dereference_bh(r->dst.rt_next);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700326 while (!r) {
327 rcu_read_unlock_bh();
Eric Dumazeta6272662008-08-28 01:11:25 -0700328 do {
329 if (--st->bucket < 0)
330 return NULL;
Eric Dumazet33d480c2011-08-11 19:30:52 +0000331 } while (!rcu_access_pointer(rt_hash_table[st->bucket].chain));
Linus Torvalds1da177e2005-04-16 15:20:36 -0700332 rcu_read_lock_bh();
Eric Dumazet1c317202010-10-25 21:02:07 +0000333 r = rcu_dereference_bh(rt_hash_table[st->bucket].chain);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700334 }
Eric Dumazet1c317202010-10-25 21:02:07 +0000335 return r;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700336}
337
YOSHIFUJI Hideaki12188542008-03-26 02:36:06 +0900338static struct rtable *rt_cache_get_next(struct seq_file *seq,
Denis V. Lunev642d6312008-02-28 20:50:33 -0800339 struct rtable *r)
340{
YOSHIFUJI Hideaki12188542008-03-26 02:36:06 +0900341 struct rt_cache_iter_state *st = seq->private;
342 while ((r = __rt_cache_get_next(seq, r)) != NULL) {
Changli Gaod8d1f302010-06-10 23:31:35 -0700343 if (dev_net(r->dst.dev) != seq_file_net(seq))
Denis V. Luneva75e9362008-02-28 20:50:55 -0800344 continue;
Denis V. Lunev642d6312008-02-28 20:50:33 -0800345 if (r->rt_genid == st->genid)
346 break;
347 }
348 return r;
349}
350
YOSHIFUJI Hideaki12188542008-03-26 02:36:06 +0900351static struct rtable *rt_cache_get_idx(struct seq_file *seq, loff_t pos)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700352{
YOSHIFUJI Hideaki12188542008-03-26 02:36:06 +0900353 struct rtable *r = rt_cache_get_first(seq);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700354
355 if (r)
YOSHIFUJI Hideaki12188542008-03-26 02:36:06 +0900356 while (pos && (r = rt_cache_get_next(seq, r)))
Linus Torvalds1da177e2005-04-16 15:20:36 -0700357 --pos;
358 return pos ? NULL : r;
359}
360
361static void *rt_cache_seq_start(struct seq_file *seq, loff_t *pos)
362{
Eric Dumazet29e75252008-01-31 17:05:09 -0800363 struct rt_cache_iter_state *st = seq->private;
Eric Dumazet29e75252008-01-31 17:05:09 -0800364 if (*pos)
YOSHIFUJI Hideaki12188542008-03-26 02:36:06 +0900365 return rt_cache_get_idx(seq, *pos - 1);
Denis V. Luneve84f84f2008-07-05 19:04:32 -0700366 st->genid = rt_genid(seq_file_net(seq));
Eric Dumazet29e75252008-01-31 17:05:09 -0800367 return SEQ_START_TOKEN;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700368}
369
370static void *rt_cache_seq_next(struct seq_file *seq, void *v, loff_t *pos)
371{
Eric Dumazet29e75252008-01-31 17:05:09 -0800372 struct rtable *r;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700373
374 if (v == SEQ_START_TOKEN)
YOSHIFUJI Hideaki12188542008-03-26 02:36:06 +0900375 r = rt_cache_get_first(seq);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700376 else
YOSHIFUJI Hideaki12188542008-03-26 02:36:06 +0900377 r = rt_cache_get_next(seq, v);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700378 ++*pos;
379 return r;
380}
381
382static void rt_cache_seq_stop(struct seq_file *seq, void *v)
383{
384 if (v && v != SEQ_START_TOKEN)
385 rcu_read_unlock_bh();
386}
387
388static int rt_cache_seq_show(struct seq_file *seq, void *v)
389{
390 if (v == SEQ_START_TOKEN)
391 seq_printf(seq, "%-127s\n",
392 "Iface\tDestination\tGateway \tFlags\t\tRefCnt\tUse\t"
393 "Metric\tSource\t\tMTU\tWindow\tIRTT\tTOS\tHHRef\t"
394 "HHUptod\tSpecDst");
395 else {
396 struct rtable *r = v;
David S. Miller3c521f22012-07-02 02:04:13 -0700397 int len;
Eric Dumazet218fa902011-11-29 20:05:55 +0000398
Eric Dumazet0eae88f2010-04-20 19:06:52 -0700399 seq_printf(seq, "%s\t%08X\t%08X\t%8X\t%d\t%u\t%d\t"
David S. Miller794785b2012-07-10 00:52:56 -0700400 "%08X\t%d\t%u\t%u\t%02X\t%d\t%1d\t%08X%n",
401 r->dst.dev ? r->dst.dev->name : "*",
402 (__force u32)r->rt_dst,
403 (__force u32)r->rt_gateway,
404 r->rt_flags, atomic_read(&r->dst.__refcnt),
405 r->dst.__use, 0, (__force u32)r->rt_src,
406 dst_metric_advmss(&r->dst) + 40,
407 dst_metric(&r->dst, RTAX_WINDOW), 0,
408 r->rt_key_tos,
409 -1, 0, 0, &len);
Pavel Emelyanov5e659e42008-04-24 01:02:16 -0700410
411 seq_printf(seq, "%*s\n", 127 - len, "");
YOSHIFUJI Hideakie905a9e2007-02-09 23:24:47 +0900412 }
413 return 0;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700414}
415
Stephen Hemmingerf6908082007-03-12 14:34:29 -0700416static const struct seq_operations rt_cache_seq_ops = {
Linus Torvalds1da177e2005-04-16 15:20:36 -0700417 .start = rt_cache_seq_start,
418 .next = rt_cache_seq_next,
419 .stop = rt_cache_seq_stop,
420 .show = rt_cache_seq_show,
421};
422
423static int rt_cache_seq_open(struct inode *inode, struct file *file)
424{
Denis V. Luneva75e9362008-02-28 20:50:55 -0800425 return seq_open_net(inode, file, &rt_cache_seq_ops,
Pavel Emelyanovcf7732e2007-10-10 02:29:29 -0700426 sizeof(struct rt_cache_iter_state));
Linus Torvalds1da177e2005-04-16 15:20:36 -0700427}
428
Arjan van de Ven9a321442007-02-12 00:55:35 -0800429static const struct file_operations rt_cache_seq_fops = {
Linus Torvalds1da177e2005-04-16 15:20:36 -0700430 .owner = THIS_MODULE,
431 .open = rt_cache_seq_open,
432 .read = seq_read,
433 .llseek = seq_lseek,
Denis V. Luneva75e9362008-02-28 20:50:55 -0800434 .release = seq_release_net,
Linus Torvalds1da177e2005-04-16 15:20:36 -0700435};
436
437
438static void *rt_cpu_seq_start(struct seq_file *seq, loff_t *pos)
439{
440 int cpu;
441
442 if (*pos == 0)
443 return SEQ_START_TOKEN;
444
Rusty Russell0f23174a2008-12-29 12:23:42 +0000445 for (cpu = *pos-1; cpu < nr_cpu_ids; ++cpu) {
Linus Torvalds1da177e2005-04-16 15:20:36 -0700446 if (!cpu_possible(cpu))
447 continue;
448 *pos = cpu+1;
Eric Dumazet2f970d82006-01-17 02:54:36 -0800449 return &per_cpu(rt_cache_stat, cpu);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700450 }
451 return NULL;
452}
453
454static void *rt_cpu_seq_next(struct seq_file *seq, void *v, loff_t *pos)
455{
456 int cpu;
457
Rusty Russell0f23174a2008-12-29 12:23:42 +0000458 for (cpu = *pos; cpu < nr_cpu_ids; ++cpu) {
Linus Torvalds1da177e2005-04-16 15:20:36 -0700459 if (!cpu_possible(cpu))
460 continue;
461 *pos = cpu+1;
Eric Dumazet2f970d82006-01-17 02:54:36 -0800462 return &per_cpu(rt_cache_stat, cpu);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700463 }
464 return NULL;
YOSHIFUJI Hideakie905a9e2007-02-09 23:24:47 +0900465
Linus Torvalds1da177e2005-04-16 15:20:36 -0700466}
467
468static void rt_cpu_seq_stop(struct seq_file *seq, void *v)
469{
470
471}
472
473static int rt_cpu_seq_show(struct seq_file *seq, void *v)
474{
475 struct rt_cache_stat *st = v;
476
477 if (v == SEQ_START_TOKEN) {
Olaf Rempel5bec0032005-04-28 12:16:08 -0700478 seq_printf(seq, "entries in_hit in_slow_tot in_slow_mc in_no_route in_brd in_martian_dst in_martian_src out_hit out_slow_tot out_slow_mc gc_total gc_ignored gc_goal_miss gc_dst_overflow in_hlist_search out_hlist_search\n");
Linus Torvalds1da177e2005-04-16 15:20:36 -0700479 return 0;
480 }
YOSHIFUJI Hideakie905a9e2007-02-09 23:24:47 +0900481
Linus Torvalds1da177e2005-04-16 15:20:36 -0700482 seq_printf(seq,"%08x %08x %08x %08x %08x %08x %08x %08x "
483 " %08x %08x %08x %08x %08x %08x %08x %08x %08x \n",
Eric Dumazetfc66f952010-10-08 06:37:34 +0000484 dst_entries_get_slow(&ipv4_dst_ops),
Linus Torvalds1da177e2005-04-16 15:20:36 -0700485 st->in_hit,
486 st->in_slow_tot,
487 st->in_slow_mc,
488 st->in_no_route,
489 st->in_brd,
490 st->in_martian_dst,
491 st->in_martian_src,
492
493 st->out_hit,
494 st->out_slow_tot,
YOSHIFUJI Hideakie905a9e2007-02-09 23:24:47 +0900495 st->out_slow_mc,
Linus Torvalds1da177e2005-04-16 15:20:36 -0700496
497 st->gc_total,
498 st->gc_ignored,
499 st->gc_goal_miss,
500 st->gc_dst_overflow,
501 st->in_hlist_search,
502 st->out_hlist_search
503 );
504 return 0;
505}
506
Stephen Hemmingerf6908082007-03-12 14:34:29 -0700507static const struct seq_operations rt_cpu_seq_ops = {
Linus Torvalds1da177e2005-04-16 15:20:36 -0700508 .start = rt_cpu_seq_start,
509 .next = rt_cpu_seq_next,
510 .stop = rt_cpu_seq_stop,
511 .show = rt_cpu_seq_show,
512};
513
514
515static int rt_cpu_seq_open(struct inode *inode, struct file *file)
516{
517 return seq_open(file, &rt_cpu_seq_ops);
518}
519
Arjan van de Ven9a321442007-02-12 00:55:35 -0800520static const struct file_operations rt_cpu_seq_fops = {
Linus Torvalds1da177e2005-04-16 15:20:36 -0700521 .owner = THIS_MODULE,
522 .open = rt_cpu_seq_open,
523 .read = seq_read,
524 .llseek = seq_lseek,
525 .release = seq_release,
526};
527
Patrick McHardyc7066f72011-01-14 13:36:42 +0100528#ifdef CONFIG_IP_ROUTE_CLASSID
Alexey Dobriyana661c412009-11-25 15:40:35 -0800529static int rt_acct_proc_show(struct seq_file *m, void *v)
Pavel Emelyanov78c686e2007-12-05 21:13:48 -0800530{
Alexey Dobriyana661c412009-11-25 15:40:35 -0800531 struct ip_rt_acct *dst, *src;
532 unsigned int i, j;
Pavel Emelyanov78c686e2007-12-05 21:13:48 -0800533
Alexey Dobriyana661c412009-11-25 15:40:35 -0800534 dst = kcalloc(256, sizeof(struct ip_rt_acct), GFP_KERNEL);
535 if (!dst)
536 return -ENOMEM;
Pavel Emelyanov78c686e2007-12-05 21:13:48 -0800537
Alexey Dobriyana661c412009-11-25 15:40:35 -0800538 for_each_possible_cpu(i) {
539 src = (struct ip_rt_acct *)per_cpu_ptr(ip_rt_acct, i);
540 for (j = 0; j < 256; j++) {
541 dst[j].o_bytes += src[j].o_bytes;
542 dst[j].o_packets += src[j].o_packets;
543 dst[j].i_bytes += src[j].i_bytes;
544 dst[j].i_packets += src[j].i_packets;
Pavel Emelyanov78c686e2007-12-05 21:13:48 -0800545 }
546 }
Alexey Dobriyana661c412009-11-25 15:40:35 -0800547
548 seq_write(m, dst, 256 * sizeof(struct ip_rt_acct));
549 kfree(dst);
550 return 0;
Pavel Emelyanov78c686e2007-12-05 21:13:48 -0800551}
Alexey Dobriyana661c412009-11-25 15:40:35 -0800552
553static int rt_acct_proc_open(struct inode *inode, struct file *file)
554{
555 return single_open(file, rt_acct_proc_show, NULL);
556}
557
558static const struct file_operations rt_acct_proc_fops = {
559 .owner = THIS_MODULE,
560 .open = rt_acct_proc_open,
561 .read = seq_read,
562 .llseek = seq_lseek,
563 .release = single_release,
564};
Pavel Emelyanov78c686e2007-12-05 21:13:48 -0800565#endif
Pavel Emelyanov107f1632007-12-05 21:14:28 -0800566
Denis V. Lunev73b38712008-02-28 20:51:18 -0800567static int __net_init ip_rt_do_proc_init(struct net *net)
Pavel Emelyanov107f1632007-12-05 21:14:28 -0800568{
569 struct proc_dir_entry *pde;
570
571 pde = proc_net_fops_create(net, "rt_cache", S_IRUGO,
572 &rt_cache_seq_fops);
573 if (!pde)
574 goto err1;
575
Wang Chen77020722008-02-28 14:14:25 -0800576 pde = proc_create("rt_cache", S_IRUGO,
577 net->proc_net_stat, &rt_cpu_seq_fops);
Pavel Emelyanov107f1632007-12-05 21:14:28 -0800578 if (!pde)
579 goto err2;
580
Patrick McHardyc7066f72011-01-14 13:36:42 +0100581#ifdef CONFIG_IP_ROUTE_CLASSID
Alexey Dobriyana661c412009-11-25 15:40:35 -0800582 pde = proc_create("rt_acct", 0, net->proc_net, &rt_acct_proc_fops);
Pavel Emelyanov107f1632007-12-05 21:14:28 -0800583 if (!pde)
584 goto err3;
585#endif
586 return 0;
587
Patrick McHardyc7066f72011-01-14 13:36:42 +0100588#ifdef CONFIG_IP_ROUTE_CLASSID
Pavel Emelyanov107f1632007-12-05 21:14:28 -0800589err3:
590 remove_proc_entry("rt_cache", net->proc_net_stat);
591#endif
592err2:
593 remove_proc_entry("rt_cache", net->proc_net);
594err1:
595 return -ENOMEM;
596}
Denis V. Lunev73b38712008-02-28 20:51:18 -0800597
598static void __net_exit ip_rt_do_proc_exit(struct net *net)
599{
600 remove_proc_entry("rt_cache", net->proc_net_stat);
601 remove_proc_entry("rt_cache", net->proc_net);
Patrick McHardyc7066f72011-01-14 13:36:42 +0100602#ifdef CONFIG_IP_ROUTE_CLASSID
Denis V. Lunev73b38712008-02-28 20:51:18 -0800603 remove_proc_entry("rt_acct", net->proc_net);
Alexey Dobriyan0a931ac2010-01-17 03:32:50 +0000604#endif
Denis V. Lunev73b38712008-02-28 20:51:18 -0800605}
606
607static struct pernet_operations ip_rt_proc_ops __net_initdata = {
608 .init = ip_rt_do_proc_init,
609 .exit = ip_rt_do_proc_exit,
610};
611
612static int __init ip_rt_proc_init(void)
613{
614 return register_pernet_subsys(&ip_rt_proc_ops);
615}
616
Pavel Emelyanov107f1632007-12-05 21:14:28 -0800617#else
Denis V. Lunev73b38712008-02-28 20:51:18 -0800618static inline int ip_rt_proc_init(void)
Pavel Emelyanov107f1632007-12-05 21:14:28 -0800619{
620 return 0;
621}
Linus Torvalds1da177e2005-04-16 15:20:36 -0700622#endif /* CONFIG_PROC_FS */
YOSHIFUJI Hideakie905a9e2007-02-09 23:24:47 +0900623
Stephen Hemminger5969f712008-04-10 01:52:09 -0700624static inline void rt_free(struct rtable *rt)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700625{
Changli Gaod8d1f302010-06-10 23:31:35 -0700626 call_rcu_bh(&rt->dst.rcu_head, dst_rcu_free);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700627}
628
Stephen Hemminger5969f712008-04-10 01:52:09 -0700629static inline void rt_drop(struct rtable *rt)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700630{
Linus Torvalds1da177e2005-04-16 15:20:36 -0700631 ip_rt_put(rt);
Changli Gaod8d1f302010-06-10 23:31:35 -0700632 call_rcu_bh(&rt->dst.rcu_head, dst_rcu_free);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700633}
634
Stephen Hemminger5969f712008-04-10 01:52:09 -0700635static inline int rt_fast_clean(struct rtable *rth)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700636{
637 /* Kill broadcast/multicast entries very aggresively, if they
638 collide in hash table with more useful entries */
639 return (rth->rt_flags & (RTCF_BROADCAST | RTCF_MULTICAST)) &&
David S. Millerc7537962010-11-11 17:07:48 -0800640 rt_is_input_route(rth) && rth->dst.rt_next;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700641}
642
Stephen Hemminger5969f712008-04-10 01:52:09 -0700643static inline int rt_valuable(struct rtable *rth)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700644{
645 return (rth->rt_flags & (RTCF_REDIRECTED | RTCF_NOTIFY)) ||
David S. Miller59436342012-07-10 06:58:42 -0700646 rth->dst.expires;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700647}
648
649static int rt_may_expire(struct rtable *rth, unsigned long tmo1, unsigned long tmo2)
650{
651 unsigned long age;
652 int ret = 0;
653
Changli Gaod8d1f302010-06-10 23:31:35 -0700654 if (atomic_read(&rth->dst.__refcnt))
Linus Torvalds1da177e2005-04-16 15:20:36 -0700655 goto out;
656
Changli Gaod8d1f302010-06-10 23:31:35 -0700657 age = jiffies - rth->dst.lastuse;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700658 if ((age <= tmo1 && !rt_fast_clean(rth)) ||
659 (age <= tmo2 && rt_valuable(rth)))
660 goto out;
661 ret = 1;
662out: return ret;
663}
664
665/* Bits of score are:
666 * 31: very valuable
667 * 30: not quite useless
668 * 29..0: usage counter
669 */
670static inline u32 rt_score(struct rtable *rt)
671{
Changli Gaod8d1f302010-06-10 23:31:35 -0700672 u32 score = jiffies - rt->dst.lastuse;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700673
674 score = ~score & ~(3<<30);
675
676 if (rt_valuable(rt))
677 score |= (1<<31);
678
David S. Millerc7537962010-11-11 17:07:48 -0800679 if (rt_is_output_route(rt) ||
Linus Torvalds1da177e2005-04-16 15:20:36 -0700680 !(rt->rt_flags & (RTCF_BROADCAST|RTCF_MULTICAST|RTCF_LOCAL)))
681 score |= (1<<30);
682
683 return score;
684}
685
Neil Horman1080d702008-10-27 12:28:25 -0700686static inline bool rt_caching(const struct net *net)
687{
688 return net->ipv4.current_rt_cache_rebuild_count <=
689 net->ipv4.sysctl_rt_cache_rebuild_count;
690}
691
David S. Miller5e2b61f2011-03-04 21:47:09 -0800692static inline bool compare_hash_inputs(const struct rtable *rt1,
693 const struct rtable *rt2)
Neil Horman1080d702008-10-27 12:28:25 -0700694{
David S. Miller5e2b61f2011-03-04 21:47:09 -0800695 return ((((__force u32)rt1->rt_key_dst ^ (__force u32)rt2->rt_key_dst) |
696 ((__force u32)rt1->rt_key_src ^ (__force u32)rt2->rt_key_src) |
Julian Anastasov97a80412011-08-09 04:01:16 +0000697 (rt1->rt_route_iif ^ rt2->rt_route_iif)) == 0);
Neil Horman1080d702008-10-27 12:28:25 -0700698}
699
David S. Miller5e2b61f2011-03-04 21:47:09 -0800700static inline int compare_keys(struct rtable *rt1, struct rtable *rt2)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700701{
David S. Miller5e2b61f2011-03-04 21:47:09 -0800702 return (((__force u32)rt1->rt_key_dst ^ (__force u32)rt2->rt_key_dst) |
703 ((__force u32)rt1->rt_key_src ^ (__force u32)rt2->rt_key_src) |
704 (rt1->rt_mark ^ rt2->rt_mark) |
David S. Miller475949d2011-05-03 19:45:15 -0700705 (rt1->rt_key_tos ^ rt2->rt_key_tos) |
Julian Anastasovd547f722011-08-07 22:20:20 -0700706 (rt1->rt_route_iif ^ rt2->rt_route_iif) |
Julian Anastasov97a80412011-08-09 04:01:16 +0000707 (rt1->rt_oif ^ rt2->rt_oif)) == 0;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700708}
709
Denis V. Lunevb5921912008-01-22 23:50:25 -0800710static inline int compare_netns(struct rtable *rt1, struct rtable *rt2)
711{
Changli Gaod8d1f302010-06-10 23:31:35 -0700712 return net_eq(dev_net(rt1->dst.dev), dev_net(rt2->dst.dev));
Denis V. Lunevb5921912008-01-22 23:50:25 -0800713}
714
Denis V. Luneve84f84f2008-07-05 19:04:32 -0700715static inline int rt_is_expired(struct rtable *rth)
716{
Changli Gaod8d1f302010-06-10 23:31:35 -0700717 return rth->rt_genid != rt_genid(dev_net(rth->dst.dev));
Denis V. Luneve84f84f2008-07-05 19:04:32 -0700718}
719
Eric Dumazetbeb659b2007-11-19 22:43:37 -0800720/*
721 * Perform a full scan of hash table and free all entries.
722 * Can be called by a softirq or a process.
723 * In the later case, we want to be reschedule if necessary
724 */
David S. Miller6561a3b2010-12-19 21:11:20 -0800725static void rt_do_flush(struct net *net, int process_context)
Eric Dumazetbeb659b2007-11-19 22:43:37 -0800726{
727 unsigned int i;
728 struct rtable *rth, *next;
729
730 for (i = 0; i <= rt_hash_mask; i++) {
David S. Miller6561a3b2010-12-19 21:11:20 -0800731 struct rtable __rcu **pprev;
732 struct rtable *list;
733
Eric Dumazetbeb659b2007-11-19 22:43:37 -0800734 if (process_context && need_resched())
735 cond_resched();
Eric Dumazet33d480c2011-08-11 19:30:52 +0000736 rth = rcu_access_pointer(rt_hash_table[i].chain);
Eric Dumazetbeb659b2007-11-19 22:43:37 -0800737 if (!rth)
738 continue;
739
740 spin_lock_bh(rt_hash_lock_addr(i));
Denis V. Lunev32cb5b42008-07-05 19:06:12 -0700741
David S. Miller6561a3b2010-12-19 21:11:20 -0800742 list = NULL;
743 pprev = &rt_hash_table[i].chain;
744 rth = rcu_dereference_protected(*pprev,
Eric Dumazet1c317202010-10-25 21:02:07 +0000745 lockdep_is_held(rt_hash_lock_addr(i)));
Denis V. Lunev32cb5b42008-07-05 19:06:12 -0700746
David S. Miller6561a3b2010-12-19 21:11:20 -0800747 while (rth) {
748 next = rcu_dereference_protected(rth->dst.rt_next,
749 lockdep_is_held(rt_hash_lock_addr(i)));
Denis V. Lunev32cb5b42008-07-05 19:06:12 -0700750
David S. Miller6561a3b2010-12-19 21:11:20 -0800751 if (!net ||
752 net_eq(dev_net(rth->dst.dev), net)) {
753 rcu_assign_pointer(*pprev, next);
754 rcu_assign_pointer(rth->dst.rt_next, list);
755 list = rth;
Denis V. Lunev32cb5b42008-07-05 19:06:12 -0700756 } else {
David S. Miller6561a3b2010-12-19 21:11:20 -0800757 pprev = &rth->dst.rt_next;
Denis V. Lunev32cb5b42008-07-05 19:06:12 -0700758 }
David S. Miller6561a3b2010-12-19 21:11:20 -0800759 rth = next;
Denis V. Lunev32cb5b42008-07-05 19:06:12 -0700760 }
David S. Miller6561a3b2010-12-19 21:11:20 -0800761
Eric Dumazetbeb659b2007-11-19 22:43:37 -0800762 spin_unlock_bh(rt_hash_lock_addr(i));
763
David S. Miller6561a3b2010-12-19 21:11:20 -0800764 for (; list; list = next) {
765 next = rcu_dereference_protected(list->dst.rt_next, 1);
766 rt_free(list);
Eric Dumazetbeb659b2007-11-19 22:43:37 -0800767 }
768 }
769}
770
Neil Horman1080d702008-10-27 12:28:25 -0700771/*
772 * While freeing expired entries, we compute average chain length
773 * and standard deviation, using fixed-point arithmetic.
774 * This to have an estimation of rt_chain_length_max
775 * rt_chain_length_max = max(elasticity, AVG + 4*SD)
776 * We use 3 bits for frational part, and 29 (or 61) for magnitude.
777 */
778
779#define FRACT_BITS 3
780#define ONE (1UL << FRACT_BITS)
781
Eric Dumazet98376382010-03-08 03:20:00 +0000782/*
783 * Given a hash chain and an item in this hash chain,
784 * find if a previous entry has the same hash_inputs
785 * (but differs on tos, mark or oif)
786 * Returns 0 if an alias is found.
787 * Returns ONE if rth has no alias before itself.
788 */
789static int has_noalias(const struct rtable *head, const struct rtable *rth)
790{
791 const struct rtable *aux = head;
792
793 while (aux != rth) {
David S. Miller5e2b61f2011-03-04 21:47:09 -0800794 if (compare_hash_inputs(aux, rth))
Eric Dumazet98376382010-03-08 03:20:00 +0000795 return 0;
Eric Dumazet1c317202010-10-25 21:02:07 +0000796 aux = rcu_dereference_protected(aux->dst.rt_next, 1);
Eric Dumazet98376382010-03-08 03:20:00 +0000797 }
798 return ONE;
799}
800
Eric Dumazet9f28a2f2011-12-21 15:47:16 -0500801static void rt_check_expire(void)
802{
803 static unsigned int rover;
804 unsigned int i = rover, goal;
805 struct rtable *rth;
806 struct rtable __rcu **rthp;
807 unsigned long samples = 0;
808 unsigned long sum = 0, sum2 = 0;
809 unsigned long delta;
810 u64 mult;
811
812 delta = jiffies - expires_ljiffies;
813 expires_ljiffies = jiffies;
814 mult = ((u64)delta) << rt_hash_log;
815 if (ip_rt_gc_timeout > 1)
816 do_div(mult, ip_rt_gc_timeout);
817 goal = (unsigned int)mult;
818 if (goal > rt_hash_mask)
819 goal = rt_hash_mask + 1;
820 for (; goal > 0; goal--) {
821 unsigned long tmo = ip_rt_gc_timeout;
822 unsigned long length;
823
824 i = (i + 1) & rt_hash_mask;
825 rthp = &rt_hash_table[i].chain;
826
827 if (need_resched())
828 cond_resched();
829
830 samples++;
831
832 if (rcu_dereference_raw(*rthp) == NULL)
833 continue;
834 length = 0;
835 spin_lock_bh(rt_hash_lock_addr(i));
836 while ((rth = rcu_dereference_protected(*rthp,
837 lockdep_is_held(rt_hash_lock_addr(i)))) != NULL) {
838 prefetch(rth->dst.rt_next);
David S. Millerdf67e6c2012-06-26 00:10:09 -0700839 if (rt_is_expired(rth) ||
840 rt_may_expire(rth, tmo, ip_rt_gc_timeout)) {
Eric Dumazet9f28a2f2011-12-21 15:47:16 -0500841 *rthp = rth->dst.rt_next;
842 rt_free(rth);
843 continue;
844 }
Eric Dumazet9f28a2f2011-12-21 15:47:16 -0500845
David S. Millerdf67e6c2012-06-26 00:10:09 -0700846 /* We only count entries on a chain with equal
847 * hash inputs once so that entries for
848 * different QOS levels, and other non-hash
849 * input attributes don't unfairly skew the
850 * length computation
851 */
852 tmo >>= 1;
853 rthp = &rth->dst.rt_next;
854 length += has_noalias(rt_hash_table[i].chain, rth);
Eric Dumazet9f28a2f2011-12-21 15:47:16 -0500855 }
856 spin_unlock_bh(rt_hash_lock_addr(i));
857 sum += length;
858 sum2 += length*length;
859 }
860 if (samples) {
861 unsigned long avg = sum / samples;
862 unsigned long sd = int_sqrt(sum2 / samples - avg*avg);
863 rt_chain_length_max = max_t(unsigned long,
864 ip_rt_gc_elasticity,
865 (avg + 4*sd) >> FRACT_BITS);
866 }
867 rover = i;
868}
869
870/*
871 * rt_worker_func() is run in process context.
872 * we call rt_check_expire() to scan part of the hash table
873 */
874static void rt_worker_func(struct work_struct *work)
875{
876 rt_check_expire();
877 schedule_delayed_work(&expires_work, ip_rt_gc_interval);
878}
879
Eric Dumazet29e75252008-01-31 17:05:09 -0800880/*
Lucas De Marchi25985ed2011-03-30 22:57:33 -0300881 * Perturbation of rt_genid by a small quantity [1..256]
Eric Dumazet29e75252008-01-31 17:05:09 -0800882 * Using 8 bits of shuffling ensure we can call rt_cache_invalidate()
883 * many times (2^24) without giving recent rt_genid.
884 * Jenkins hash is strong enough that litle changes of rt_genid are OK.
Linus Torvalds1da177e2005-04-16 15:20:36 -0700885 */
Denis V. Lunev86c657f2008-07-05 19:03:31 -0700886static void rt_cache_invalidate(struct net *net)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700887{
Eric Dumazet29e75252008-01-31 17:05:09 -0800888 unsigned char shuffle;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700889
Eric Dumazet29e75252008-01-31 17:05:09 -0800890 get_random_bytes(&shuffle, sizeof(shuffle));
Denis V. Luneve84f84f2008-07-05 19:04:32 -0700891 atomic_add(shuffle + 1U, &net->ipv4.rt_genid);
David S. Millerb48c80e2012-06-10 00:24:21 -0700892 inetpeer_invalidate_family(AF_INET);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700893}
894
Eric Dumazetbeb659b2007-11-19 22:43:37 -0800895/*
Eric Dumazet29e75252008-01-31 17:05:09 -0800896 * delay < 0 : invalidate cache (fast : entries will be deleted later)
897 * delay >= 0 : invalidate & flush cache (can be long)
898 */
Denis V. Lunev76e6ebf2008-07-05 19:00:44 -0700899void rt_cache_flush(struct net *net, int delay)
Eric Dumazet29e75252008-01-31 17:05:09 -0800900{
Denis V. Lunev86c657f2008-07-05 19:03:31 -0700901 rt_cache_invalidate(net);
Eric Dumazet29e75252008-01-31 17:05:09 -0800902 if (delay >= 0)
David S. Miller6561a3b2010-12-19 21:11:20 -0800903 rt_do_flush(net, !in_softirq());
Eric Dumazet29e75252008-01-31 17:05:09 -0800904}
905
Eric W. Biedermana5ee1552009-11-29 15:45:58 +0000906/* Flush previous cache invalidated entries from the cache */
David S. Miller6561a3b2010-12-19 21:11:20 -0800907void rt_cache_flush_batch(struct net *net)
Eric W. Biedermana5ee1552009-11-29 15:45:58 +0000908{
David S. Miller6561a3b2010-12-19 21:11:20 -0800909 rt_do_flush(net, !in_softirq());
Eric W. Biedermana5ee1552009-11-29 15:45:58 +0000910}
911
Neil Horman1080d702008-10-27 12:28:25 -0700912static void rt_emergency_hash_rebuild(struct net *net)
913{
Joe Perchese87cc472012-05-13 21:56:26 +0000914 net_warn_ratelimited("Route hash chain too long!\n");
Neil Horman3ee94372010-05-08 01:57:52 -0700915 rt_cache_invalidate(net);
Neil Horman1080d702008-10-27 12:28:25 -0700916}
917
Linus Torvalds1da177e2005-04-16 15:20:36 -0700918/*
919 Short description of GC goals.
920
921 We want to build algorithm, which will keep routing cache
922 at some equilibrium point, when number of aged off entries
923 is kept approximately equal to newly generated ones.
924
925 Current expiration strength is variable "expire".
926 We try to adjust it dynamically, so that if networking
927 is idle expires is large enough to keep enough of warm entries,
928 and when load increases it reduces to limit cache size.
929 */
930
Daniel Lezcano569d3642008-01-18 03:56:57 -0800931static int rt_garbage_collect(struct dst_ops *ops)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700932{
933 static unsigned long expire = RT_GC_TIMEOUT;
934 static unsigned long last_gc;
935 static int rover;
936 static int equilibrium;
Eric Dumazet1c317202010-10-25 21:02:07 +0000937 struct rtable *rth;
938 struct rtable __rcu **rthp;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700939 unsigned long now = jiffies;
940 int goal;
Eric Dumazetfc66f952010-10-08 06:37:34 +0000941 int entries = dst_entries_get_fast(&ipv4_dst_ops);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700942
943 /*
944 * Garbage collection is pretty expensive,
945 * do not make it too frequently.
946 */
947
948 RT_CACHE_STAT_INC(gc_total);
949
950 if (now - last_gc < ip_rt_gc_min_interval &&
Eric Dumazetfc66f952010-10-08 06:37:34 +0000951 entries < ip_rt_max_size) {
Linus Torvalds1da177e2005-04-16 15:20:36 -0700952 RT_CACHE_STAT_INC(gc_ignored);
953 goto out;
954 }
955
Eric Dumazetfc66f952010-10-08 06:37:34 +0000956 entries = dst_entries_get_slow(&ipv4_dst_ops);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700957 /* Calculate number of entries, which we want to expire now. */
Eric Dumazetfc66f952010-10-08 06:37:34 +0000958 goal = entries - (ip_rt_gc_elasticity << rt_hash_log);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700959 if (goal <= 0) {
960 if (equilibrium < ipv4_dst_ops.gc_thresh)
961 equilibrium = ipv4_dst_ops.gc_thresh;
Eric Dumazetfc66f952010-10-08 06:37:34 +0000962 goal = entries - equilibrium;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700963 if (goal > 0) {
Eric Dumazetb790ced2007-12-21 01:49:07 -0800964 equilibrium += min_t(unsigned int, goal >> 1, rt_hash_mask + 1);
Eric Dumazetfc66f952010-10-08 06:37:34 +0000965 goal = entries - equilibrium;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700966 }
967 } else {
968 /* We are in dangerous area. Try to reduce cache really
969 * aggressively.
970 */
Eric Dumazetb790ced2007-12-21 01:49:07 -0800971 goal = max_t(unsigned int, goal >> 1, rt_hash_mask + 1);
Eric Dumazetfc66f952010-10-08 06:37:34 +0000972 equilibrium = entries - goal;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700973 }
974
975 if (now - last_gc >= ip_rt_gc_min_interval)
976 last_gc = now;
977
978 if (goal <= 0) {
979 equilibrium += goal;
980 goto work_done;
981 }
982
983 do {
984 int i, k;
985
986 for (i = rt_hash_mask, k = rover; i >= 0; i--) {
987 unsigned long tmo = expire;
988
989 k = (k + 1) & rt_hash_mask;
990 rthp = &rt_hash_table[k].chain;
Eric Dumazet22c047c2005-07-05 14:55:24 -0700991 spin_lock_bh(rt_hash_lock_addr(k));
Eric Dumazet1c317202010-10-25 21:02:07 +0000992 while ((rth = rcu_dereference_protected(*rthp,
993 lockdep_is_held(rt_hash_lock_addr(k)))) != NULL) {
Denis V. Luneve84f84f2008-07-05 19:04:32 -0700994 if (!rt_is_expired(rth) &&
Eric Dumazet29e75252008-01-31 17:05:09 -0800995 !rt_may_expire(rth, tmo, expire)) {
Linus Torvalds1da177e2005-04-16 15:20:36 -0700996 tmo >>= 1;
Changli Gaod8d1f302010-06-10 23:31:35 -0700997 rthp = &rth->dst.rt_next;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700998 continue;
999 }
Changli Gaod8d1f302010-06-10 23:31:35 -07001000 *rthp = rth->dst.rt_next;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001001 rt_free(rth);
1002 goal--;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001003 }
Eric Dumazet22c047c2005-07-05 14:55:24 -07001004 spin_unlock_bh(rt_hash_lock_addr(k));
Linus Torvalds1da177e2005-04-16 15:20:36 -07001005 if (goal <= 0)
1006 break;
1007 }
1008 rover = k;
1009
1010 if (goal <= 0)
1011 goto work_done;
1012
1013 /* Goal is not achieved. We stop process if:
1014
1015 - if expire reduced to zero. Otherwise, expire is halfed.
1016 - if table is not full.
1017 - if we are called from interrupt.
1018 - jiffies check is just fallback/debug loop breaker.
1019 We will not spin here for long time in any case.
1020 */
1021
1022 RT_CACHE_STAT_INC(gc_goal_miss);
1023
1024 if (expire == 0)
1025 break;
1026
1027 expire >>= 1;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001028
Eric Dumazetfc66f952010-10-08 06:37:34 +00001029 if (dst_entries_get_fast(&ipv4_dst_ops) < ip_rt_max_size)
Linus Torvalds1da177e2005-04-16 15:20:36 -07001030 goto out;
1031 } while (!in_softirq() && time_before_eq(jiffies, now));
1032
Eric Dumazetfc66f952010-10-08 06:37:34 +00001033 if (dst_entries_get_fast(&ipv4_dst_ops) < ip_rt_max_size)
1034 goto out;
1035 if (dst_entries_get_slow(&ipv4_dst_ops) < ip_rt_max_size)
Linus Torvalds1da177e2005-04-16 15:20:36 -07001036 goto out;
Joe Perchese87cc472012-05-13 21:56:26 +00001037 net_warn_ratelimited("dst cache overflow\n");
Linus Torvalds1da177e2005-04-16 15:20:36 -07001038 RT_CACHE_STAT_INC(gc_dst_overflow);
1039 return 1;
1040
1041work_done:
1042 expire += ip_rt_gc_min_interval;
1043 if (expire > ip_rt_gc_timeout ||
Eric Dumazetfc66f952010-10-08 06:37:34 +00001044 dst_entries_get_fast(&ipv4_dst_ops) < ipv4_dst_ops.gc_thresh ||
1045 dst_entries_get_slow(&ipv4_dst_ops) < ipv4_dst_ops.gc_thresh)
Linus Torvalds1da177e2005-04-16 15:20:36 -07001046 expire = ip_rt_gc_timeout;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001047out: return 0;
1048}
1049
Eric Dumazet98376382010-03-08 03:20:00 +00001050/*
1051 * Returns number of entries in a hash chain that have different hash_inputs
1052 */
1053static int slow_chain_length(const struct rtable *head)
1054{
1055 int length = 0;
1056 const struct rtable *rth = head;
1057
1058 while (rth) {
1059 length += has_noalias(head, rth);
Eric Dumazet1c317202010-10-25 21:02:07 +00001060 rth = rcu_dereference_protected(rth->dst.rt_next, 1);
Eric Dumazet98376382010-03-08 03:20:00 +00001061 }
1062 return length >> FRACT_BITS;
1063}
1064
David S. Millerf894cbf2012-07-02 21:52:24 -07001065static struct neighbour *ipv4_neigh_lookup(const struct dst_entry *dst,
1066 struct sk_buff *skb,
1067 const void *daddr)
David Miller3769cff2011-07-11 22:44:24 +00001068{
David S. Millerd3aaeb32011-07-18 00:40:17 -07001069 struct net_device *dev = dst->dev;
1070 const __be32 *pkey = daddr;
David S. Miller39232972012-01-26 15:22:32 -05001071 const struct rtable *rt;
David Miller3769cff2011-07-11 22:44:24 +00001072 struct neighbour *n;
1073
David S. Miller39232972012-01-26 15:22:32 -05001074 rt = (const struct rtable *) dst;
David S. Millera263b302012-07-02 02:02:15 -07001075 if (rt->rt_gateway)
David S. Miller39232972012-01-26 15:22:32 -05001076 pkey = (const __be32 *) &rt->rt_gateway;
David S. Millerf894cbf2012-07-02 21:52:24 -07001077 else if (skb)
1078 pkey = &ip_hdr(skb)->daddr;
David S. Millerd3aaeb32011-07-18 00:40:17 -07001079
David S. Miller80703d22012-02-15 17:48:35 -05001080 n = __ipv4_neigh_lookup(dev, *(__force u32 *)pkey);
David S. Millerd3aaeb32011-07-18 00:40:17 -07001081 if (n)
1082 return n;
David Miller32092ec2011-07-25 00:01:41 +00001083 return neigh_create(&arp_tbl, pkey, dev);
David S. Millerd3aaeb32011-07-18 00:40:17 -07001084}
1085
Eric Dumazet95c96172012-04-15 05:58:06 +00001086static struct rtable *rt_intern_hash(unsigned int hash, struct rtable *rt,
David S. Millerb23dd4f2011-03-02 14:31:35 -08001087 struct sk_buff *skb, int ifindex)
Linus Torvalds1da177e2005-04-16 15:20:36 -07001088{
Eric Dumazet1c317202010-10-25 21:02:07 +00001089 struct rtable *rth, *cand;
1090 struct rtable __rcu **rthp, **candp;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001091 unsigned long now;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001092 u32 min_score;
1093 int chain_length;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001094
1095restart:
1096 chain_length = 0;
1097 min_score = ~(u32)0;
1098 cand = NULL;
1099 candp = NULL;
1100 now = jiffies;
1101
Eric Dumazet7586ece2012-06-20 05:02:19 +00001102 if (!rt_caching(dev_net(rt->dst.dev)) || (rt->dst.flags & DST_NOCACHE)) {
Neil Horman73e42892009-06-20 01:15:16 -07001103 /*
1104 * If we're not caching, just tell the caller we
1105 * were successful and don't touch the route. The
1106 * caller hold the sole reference to the cache entry, and
1107 * it will be released when the caller is done with it.
1108 * If we drop it here, the callers have no way to resolve routes
1109 * when we're not caching. Instead, just point *rp at rt, so
1110 * the caller gets a single use out of the route
Neil Hormanb6280b42009-06-22 10:18:53 +00001111 * Note that we do rt_free on this new route entry, so that
1112 * once its refcount hits zero, we are still able to reap it
1113 * (Thanks Alexey)
Eric Dumazet27b75c92010-10-15 05:44:11 +00001114 * Note: To avoid expensive rcu stuff for this uncached dst,
1115 * we set DST_NOCACHE so that dst_release() can free dst without
1116 * waiting a grace period.
Neil Horman73e42892009-06-20 01:15:16 -07001117 */
Neil Hormanb6280b42009-06-22 10:18:53 +00001118
Eric Dumazetc7d44262010-10-03 22:17:54 -07001119 rt->dst.flags |= DST_NOCACHE;
Neil Hormanb6280b42009-06-22 10:18:53 +00001120 goto skip_hashing;
Neil Horman1080d702008-10-27 12:28:25 -07001121 }
1122
Linus Torvalds1da177e2005-04-16 15:20:36 -07001123 rthp = &rt_hash_table[hash].chain;
1124
Eric Dumazet22c047c2005-07-05 14:55:24 -07001125 spin_lock_bh(rt_hash_lock_addr(hash));
Eric Dumazet1c317202010-10-25 21:02:07 +00001126 while ((rth = rcu_dereference_protected(*rthp,
1127 lockdep_is_held(rt_hash_lock_addr(hash)))) != NULL) {
Denis V. Luneve84f84f2008-07-05 19:04:32 -07001128 if (rt_is_expired(rth)) {
Changli Gaod8d1f302010-06-10 23:31:35 -07001129 *rthp = rth->dst.rt_next;
Eric Dumazet29e75252008-01-31 17:05:09 -08001130 rt_free(rth);
1131 continue;
1132 }
David S. Miller5e2b61f2011-03-04 21:47:09 -08001133 if (compare_keys(rth, rt) && compare_netns(rth, rt)) {
Linus Torvalds1da177e2005-04-16 15:20:36 -07001134 /* Put it first */
Changli Gaod8d1f302010-06-10 23:31:35 -07001135 *rthp = rth->dst.rt_next;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001136 /*
1137 * Since lookup is lockfree, the deletion
1138 * must be visible to another weakly ordered CPU before
1139 * the insertion at the start of the hash chain.
1140 */
Changli Gaod8d1f302010-06-10 23:31:35 -07001141 rcu_assign_pointer(rth->dst.rt_next,
Linus Torvalds1da177e2005-04-16 15:20:36 -07001142 rt_hash_table[hash].chain);
1143 /*
1144 * Since lookup is lockfree, the update writes
1145 * must be ordered for consistency on SMP.
1146 */
1147 rcu_assign_pointer(rt_hash_table[hash].chain, rth);
1148
Changli Gaod8d1f302010-06-10 23:31:35 -07001149 dst_use(&rth->dst, now);
Eric Dumazet22c047c2005-07-05 14:55:24 -07001150 spin_unlock_bh(rt_hash_lock_addr(hash));
Linus Torvalds1da177e2005-04-16 15:20:36 -07001151
1152 rt_drop(rt);
David S. Millerb23dd4f2011-03-02 14:31:35 -08001153 if (skb)
Changli Gaod8d1f302010-06-10 23:31:35 -07001154 skb_dst_set(skb, &rth->dst);
David S. Millerb23dd4f2011-03-02 14:31:35 -08001155 return rth;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001156 }
1157
Changli Gaod8d1f302010-06-10 23:31:35 -07001158 if (!atomic_read(&rth->dst.__refcnt)) {
Linus Torvalds1da177e2005-04-16 15:20:36 -07001159 u32 score = rt_score(rth);
1160
1161 if (score <= min_score) {
1162 cand = rth;
1163 candp = rthp;
1164 min_score = score;
1165 }
1166 }
1167
1168 chain_length++;
1169
Changli Gaod8d1f302010-06-10 23:31:35 -07001170 rthp = &rth->dst.rt_next;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001171 }
1172
1173 if (cand) {
1174 /* ip_rt_gc_elasticity used to be average length of chain
1175 * length, when exceeded gc becomes really aggressive.
1176 *
1177 * The second limit is less certain. At the moment it allows
1178 * only 2 entries per bucket. We will see.
1179 */
1180 if (chain_length > ip_rt_gc_elasticity) {
Changli Gaod8d1f302010-06-10 23:31:35 -07001181 *candp = cand->dst.rt_next;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001182 rt_free(cand);
1183 }
Neil Horman1080d702008-10-27 12:28:25 -07001184 } else {
Eric Dumazet98376382010-03-08 03:20:00 +00001185 if (chain_length > rt_chain_length_max &&
1186 slow_chain_length(rt_hash_table[hash].chain) > rt_chain_length_max) {
Changli Gaod8d1f302010-06-10 23:31:35 -07001187 struct net *net = dev_net(rt->dst.dev);
Neil Horman1080d702008-10-27 12:28:25 -07001188 int num = ++net->ipv4.current_rt_cache_rebuild_count;
Pavel Emelyanovb35ecb52010-03-24 07:43:17 +00001189 if (!rt_caching(net)) {
Joe Perches058bd4d2012-03-11 18:36:11 +00001190 pr_warn("%s: %d rebuilds is over limit, route caching disabled\n",
Changli Gaod8d1f302010-06-10 23:31:35 -07001191 rt->dst.dev->name, num);
Neil Horman1080d702008-10-27 12:28:25 -07001192 }
Pavel Emelyanovb35ecb52010-03-24 07:43:17 +00001193 rt_emergency_hash_rebuild(net);
Pavel Emelyanov6a2bad72010-03-24 21:51:22 +00001194 spin_unlock_bh(rt_hash_lock_addr(hash));
1195
David S. Miller5e2b61f2011-03-04 21:47:09 -08001196 hash = rt_hash(rt->rt_key_dst, rt->rt_key_src,
Pavel Emelyanov6a2bad72010-03-24 21:51:22 +00001197 ifindex, rt_genid(net));
1198 goto restart;
Neil Horman1080d702008-10-27 12:28:25 -07001199 }
Linus Torvalds1da177e2005-04-16 15:20:36 -07001200 }
1201
Changli Gaod8d1f302010-06-10 23:31:35 -07001202 rt->dst.rt_next = rt_hash_table[hash].chain;
Neil Horman1080d702008-10-27 12:28:25 -07001203
Eric Dumazet00269b52008-10-16 14:18:29 -07001204 /*
1205 * Since lookup is lockfree, we must make sure
Lucas De Marchi25985ed2011-03-30 22:57:33 -03001206 * previous writes to rt are committed to memory
Eric Dumazet00269b52008-10-16 14:18:29 -07001207 * before making rt visible to other CPUS.
1208 */
Eric Dumazet1ddbcb02009-05-19 20:14:28 +00001209 rcu_assign_pointer(rt_hash_table[hash].chain, rt);
Neil Horman1080d702008-10-27 12:28:25 -07001210
Eric Dumazet22c047c2005-07-05 14:55:24 -07001211 spin_unlock_bh(rt_hash_lock_addr(hash));
Neil Horman73e42892009-06-20 01:15:16 -07001212
Neil Hormanb6280b42009-06-22 10:18:53 +00001213skip_hashing:
David S. Millerb23dd4f2011-03-02 14:31:35 -08001214 if (skb)
Changli Gaod8d1f302010-06-10 23:31:35 -07001215 skb_dst_set(skb, &rt->dst);
David S. Millerb23dd4f2011-03-02 14:31:35 -08001216 return rt;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001217}
1218
David S. Millera48eff12011-05-18 18:42:43 -04001219void rt_bind_peer(struct rtable *rt, __be32 daddr, int create)
Linus Torvalds1da177e2005-04-16 15:20:36 -07001220{
David S. Miller97bab732012-06-09 22:36:36 -07001221 struct inet_peer_base *base;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001222 struct inet_peer *peer;
1223
David S. Miller97bab732012-06-09 22:36:36 -07001224 base = inetpeer_base_ptr(rt->_peer);
1225 if (!base)
1226 return;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001227
David S. Miller97bab732012-06-09 22:36:36 -07001228 peer = inet_getpeer_v4(base, daddr, create);
David S. Miller7b34ca22012-06-11 04:13:57 -07001229 if (peer) {
1230 if (!rt_set_peer(rt, peer))
1231 inet_putpeer(peer);
David S. Miller7b34ca22012-06-11 04:13:57 -07001232 }
Linus Torvalds1da177e2005-04-16 15:20:36 -07001233}
1234
1235/*
1236 * Peer allocation may fail only in serious out-of-memory conditions. However
1237 * we still can generate some output.
1238 * Random ID selection looks a bit dangerous because we have no chances to
1239 * select ID being unique in a reasonable period of time.
1240 * But broken packet identifier may be better than no packet at all.
1241 */
1242static void ip_select_fb_ident(struct iphdr *iph)
1243{
1244 static DEFINE_SPINLOCK(ip_fb_id_lock);
1245 static u32 ip_fallback_id;
1246 u32 salt;
1247
1248 spin_lock_bh(&ip_fb_id_lock);
Al Viroe4485152006-09-26 22:15:01 -07001249 salt = secure_ip_id((__force __be32)ip_fallback_id ^ iph->daddr);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001250 iph->id = htons(salt & 0xFFFF);
1251 ip_fallback_id = salt;
1252 spin_unlock_bh(&ip_fb_id_lock);
1253}
1254
1255void __ip_select_ident(struct iphdr *iph, struct dst_entry *dst, int more)
1256{
David S. Miller1d861aa2012-07-10 03:58:16 -07001257 struct net *net = dev_net(dst->dev);
1258 struct inet_peer *peer;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001259
David S. Miller1d861aa2012-07-10 03:58:16 -07001260 peer = inet_getpeer_v4(net->ipv4.peers, iph->daddr, 1);
1261 if (peer) {
1262 iph->id = htons(inet_getid(peer, more));
1263 inet_putpeer(peer);
1264 return;
1265 }
Linus Torvalds1da177e2005-04-16 15:20:36 -07001266
1267 ip_select_fb_ident(iph);
1268}
Eric Dumazet4bc2f182010-07-09 21:22:10 +00001269EXPORT_SYMBOL(__ip_select_ident);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001270
Eric Dumazet95c96172012-04-15 05:58:06 +00001271static void rt_del(unsigned int hash, struct rtable *rt)
Linus Torvalds1da177e2005-04-16 15:20:36 -07001272{
Eric Dumazet1c317202010-10-25 21:02:07 +00001273 struct rtable __rcu **rthp;
1274 struct rtable *aux;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001275
Eric Dumazet29e75252008-01-31 17:05:09 -08001276 rthp = &rt_hash_table[hash].chain;
Eric Dumazet22c047c2005-07-05 14:55:24 -07001277 spin_lock_bh(rt_hash_lock_addr(hash));
Linus Torvalds1da177e2005-04-16 15:20:36 -07001278 ip_rt_put(rt);
Eric Dumazet1c317202010-10-25 21:02:07 +00001279 while ((aux = rcu_dereference_protected(*rthp,
1280 lockdep_is_held(rt_hash_lock_addr(hash)))) != NULL) {
Denis V. Luneve84f84f2008-07-05 19:04:32 -07001281 if (aux == rt || rt_is_expired(aux)) {
Changli Gaod8d1f302010-06-10 23:31:35 -07001282 *rthp = aux->dst.rt_next;
Eric Dumazet29e75252008-01-31 17:05:09 -08001283 rt_free(aux);
1284 continue;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001285 }
Changli Gaod8d1f302010-06-10 23:31:35 -07001286 rthp = &aux->dst.rt_next;
Eric Dumazet29e75252008-01-31 17:05:09 -08001287 }
Eric Dumazet22c047c2005-07-05 14:55:24 -07001288 spin_unlock_bh(rt_hash_lock_addr(hash));
Linus Torvalds1da177e2005-04-16 15:20:36 -07001289}
1290
Eric Dumazeted7865a42010-06-07 21:49:44 -07001291/* called in rcu_read_lock() section */
Al Virof7655222006-09-26 21:25:43 -07001292void ip_rt_redirect(__be32 old_gw, __be32 daddr, __be32 new_gw,
1293 __be32 saddr, struct net_device *dev)
Linus Torvalds1da177e2005-04-16 15:20:36 -07001294{
Flavio Leitner7cc91502011-10-24 02:56:38 -04001295 int s, i;
Eric Dumazeted7865a42010-06-07 21:49:44 -07001296 struct in_device *in_dev = __in_dev_get_rcu(dev);
Flavio Leitner7cc91502011-10-24 02:56:38 -04001297 __be32 skeys[2] = { saddr, 0 };
1298 int ikeys[2] = { dev->ifindex, 0 };
Denis V. Lunev317805b2008-02-28 20:50:06 -08001299 struct net *net;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001300
Linus Torvalds1da177e2005-04-16 15:20:36 -07001301 if (!in_dev)
1302 return;
1303
YOSHIFUJI Hideakic346dca2008-03-25 21:47:49 +09001304 net = dev_net(dev);
Joe Perches9d4fb272009-11-23 10:41:23 -08001305 if (new_gw == old_gw || !IN_DEV_RX_REDIRECTS(in_dev) ||
1306 ipv4_is_multicast(new_gw) || ipv4_is_lbcast(new_gw) ||
1307 ipv4_is_zeronet(new_gw))
Linus Torvalds1da177e2005-04-16 15:20:36 -07001308 goto reject_redirect;
1309
1310 if (!IN_DEV_SHARED_MEDIA(in_dev)) {
1311 if (!inet_addr_onlink(in_dev, new_gw, old_gw))
1312 goto reject_redirect;
1313 if (IN_DEV_SEC_REDIRECTS(in_dev) && ip_fib_check_default(new_gw, dev))
1314 goto reject_redirect;
1315 } else {
Denis V. Lunev317805b2008-02-28 20:50:06 -08001316 if (inet_addr_type(net, new_gw) != RTN_UNICAST)
Linus Torvalds1da177e2005-04-16 15:20:36 -07001317 goto reject_redirect;
1318 }
1319
Flavio Leitner7cc91502011-10-24 02:56:38 -04001320 for (s = 0; s < 2; s++) {
1321 for (i = 0; i < 2; i++) {
Eric Dumazet9cc20b22011-11-18 15:24:32 -05001322 unsigned int hash;
1323 struct rtable __rcu **rthp;
1324 struct rtable *rt;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001325
Eric Dumazet9cc20b22011-11-18 15:24:32 -05001326 hash = rt_hash(daddr, skeys[s], ikeys[i], rt_genid(net));
1327
1328 rthp = &rt_hash_table[hash].chain;
1329
1330 while ((rt = rcu_dereference(*rthp)) != NULL) {
David S. Miller59436342012-07-10 06:58:42 -07001331 struct neighbour *n;
1332
Eric Dumazet9cc20b22011-11-18 15:24:32 -05001333 rthp = &rt->dst.rt_next;
1334
1335 if (rt->rt_key_dst != daddr ||
1336 rt->rt_key_src != skeys[s] ||
1337 rt->rt_oif != ikeys[i] ||
1338 rt_is_input_route(rt) ||
1339 rt_is_expired(rt) ||
1340 !net_eq(dev_net(rt->dst.dev), net) ||
1341 rt->dst.error ||
1342 rt->dst.dev != dev ||
1343 rt->rt_gateway != old_gw)
1344 continue;
1345
David S. Miller59436342012-07-10 06:58:42 -07001346 n = ipv4_neigh_lookup(&rt->dst, NULL, &new_gw);
1347 if (n) {
1348 if (!(n->nud_state & NUD_VALID)) {
1349 neigh_event_send(n, NULL);
1350 } else {
1351 rt->rt_gateway = new_gw;
1352 rt->rt_flags |= RTCF_REDIRECTED;
1353 call_netevent_notifiers(NETEVENT_NEIGH_UPDATE, n);
Eric Dumazet9cc20b22011-11-18 15:24:32 -05001354 }
David S. Miller59436342012-07-10 06:58:42 -07001355 neigh_release(n);
Eric Dumazet9cc20b22011-11-18 15:24:32 -05001356 }
Flavio Leitner7cc91502011-10-24 02:56:38 -04001357 }
Flavio Leitner7cc91502011-10-24 02:56:38 -04001358 }
Linus Torvalds1da177e2005-04-16 15:20:36 -07001359 }
Linus Torvalds1da177e2005-04-16 15:20:36 -07001360 return;
1361
1362reject_redirect:
1363#ifdef CONFIG_IP_ROUTE_VERBOSE
Joe Perchese87cc472012-05-13 21:56:26 +00001364 if (IN_DEV_LOG_MARTIANS(in_dev))
1365 net_info_ratelimited("Redirect from %pI4 on %s about %pI4 ignored\n"
1366 " Advised path = %pI4 -> %pI4\n",
1367 &old_gw, dev->name, &new_gw,
1368 &saddr, &daddr);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001369#endif
Eric Dumazeted7865a42010-06-07 21:49:44 -07001370 ;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001371}
1372
1373static struct dst_entry *ipv4_negative_advice(struct dst_entry *dst)
1374{
Eric Dumazetee6b9672008-03-05 18:30:47 -08001375 struct rtable *rt = (struct rtable *)dst;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001376 struct dst_entry *ret = dst;
1377
1378 if (rt) {
Timo Teräsd11a4dc2010-03-18 23:20:20 +00001379 if (dst->obsolete > 0) {
Linus Torvalds1da177e2005-04-16 15:20:36 -07001380 ip_rt_put(rt);
1381 ret = NULL;
David S. Miller59436342012-07-10 06:58:42 -07001382 } else if ((rt->rt_flags & RTCF_REDIRECTED) ||
1383 rt->dst.expires) {
Eric Dumazet95c96172012-04-15 05:58:06 +00001384 unsigned int hash = rt_hash(rt->rt_key_dst, rt->rt_key_src,
David S. Miller5e2b61f2011-03-04 21:47:09 -08001385 rt->rt_oif,
Denis V. Luneve84f84f2008-07-05 19:04:32 -07001386 rt_genid(dev_net(dst->dev)));
Linus Torvalds1da177e2005-04-16 15:20:36 -07001387 rt_del(hash, rt);
1388 ret = NULL;
1389 }
1390 }
1391 return ret;
1392}
1393
1394/*
1395 * Algorithm:
1396 * 1. The first ip_rt_redirect_number redirects are sent
1397 * with exponential backoff, then we stop sending them at all,
1398 * assuming that the host ignores our redirects.
1399 * 2. If we did not see packets requiring redirects
1400 * during ip_rt_redirect_silence, we assume that the host
1401 * forgot redirected route and start to send redirects again.
1402 *
1403 * This algorithm is much cheaper and more intelligent than dumb load limiting
1404 * in icmp.c.
1405 *
1406 * NOTE. Do not forget to inhibit load limiting for redirects (redundant)
1407 * and "frag. need" (breaks PMTU discovery) in icmp.c.
1408 */
1409
1410void ip_rt_send_redirect(struct sk_buff *skb)
1411{
Eric Dumazet511c3f92009-06-02 05:14:27 +00001412 struct rtable *rt = skb_rtable(skb);
Eric Dumazet30038fc2009-08-28 23:52:01 -07001413 struct in_device *in_dev;
David S. Miller92d86822011-02-04 15:55:25 -08001414 struct inet_peer *peer;
David S. Miller1d861aa2012-07-10 03:58:16 -07001415 struct net *net;
Eric Dumazet30038fc2009-08-28 23:52:01 -07001416 int log_martians;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001417
Eric Dumazet30038fc2009-08-28 23:52:01 -07001418 rcu_read_lock();
Changli Gaod8d1f302010-06-10 23:31:35 -07001419 in_dev = __in_dev_get_rcu(rt->dst.dev);
Eric Dumazet30038fc2009-08-28 23:52:01 -07001420 if (!in_dev || !IN_DEV_TX_REDIRECTS(in_dev)) {
1421 rcu_read_unlock();
Linus Torvalds1da177e2005-04-16 15:20:36 -07001422 return;
Eric Dumazet30038fc2009-08-28 23:52:01 -07001423 }
1424 log_martians = IN_DEV_LOG_MARTIANS(in_dev);
1425 rcu_read_unlock();
Linus Torvalds1da177e2005-04-16 15:20:36 -07001426
David S. Miller1d861aa2012-07-10 03:58:16 -07001427 net = dev_net(rt->dst.dev);
1428 peer = inet_getpeer_v4(net->ipv4.peers, ip_hdr(skb)->saddr, 1);
David S. Miller92d86822011-02-04 15:55:25 -08001429 if (!peer) {
1430 icmp_send(skb, ICMP_REDIRECT, ICMP_REDIR_HOST, rt->rt_gateway);
1431 return;
1432 }
1433
Linus Torvalds1da177e2005-04-16 15:20:36 -07001434 /* No redirected packets during ip_rt_redirect_silence;
1435 * reset the algorithm.
1436 */
David S. Miller92d86822011-02-04 15:55:25 -08001437 if (time_after(jiffies, peer->rate_last + ip_rt_redirect_silence))
1438 peer->rate_tokens = 0;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001439
1440 /* Too many ignored redirects; do not send anything
Changli Gaod8d1f302010-06-10 23:31:35 -07001441 * set dst.rate_last to the last seen redirected packet.
Linus Torvalds1da177e2005-04-16 15:20:36 -07001442 */
David S. Miller92d86822011-02-04 15:55:25 -08001443 if (peer->rate_tokens >= ip_rt_redirect_number) {
1444 peer->rate_last = jiffies;
David S. Miller1d861aa2012-07-10 03:58:16 -07001445 goto out_put_peer;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001446 }
1447
1448 /* Check for load limit; set rate_last to the latest sent
1449 * redirect.
1450 */
David S. Miller92d86822011-02-04 15:55:25 -08001451 if (peer->rate_tokens == 0 ||
Li Yewang14fb8a72006-12-18 00:26:35 -08001452 time_after(jiffies,
David S. Miller92d86822011-02-04 15:55:25 -08001453 (peer->rate_last +
1454 (ip_rt_redirect_load << peer->rate_tokens)))) {
Linus Torvalds1da177e2005-04-16 15:20:36 -07001455 icmp_send(skb, ICMP_REDIRECT, ICMP_REDIR_HOST, rt->rt_gateway);
David S. Miller92d86822011-02-04 15:55:25 -08001456 peer->rate_last = jiffies;
1457 ++peer->rate_tokens;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001458#ifdef CONFIG_IP_ROUTE_VERBOSE
Eric Dumazet30038fc2009-08-28 23:52:01 -07001459 if (log_martians &&
Joe Perchese87cc472012-05-13 21:56:26 +00001460 peer->rate_tokens == ip_rt_redirect_number)
1461 net_warn_ratelimited("host %pI4/if%d ignores redirects for %pI4 to %pI4\n",
1462 &ip_hdr(skb)->saddr, rt->rt_iif,
1463 &rt->rt_dst, &rt->rt_gateway);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001464#endif
1465 }
David S. Miller1d861aa2012-07-10 03:58:16 -07001466out_put_peer:
1467 inet_putpeer(peer);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001468}
1469
1470static int ip_error(struct sk_buff *skb)
1471{
David S. Miller251da412012-06-26 16:27:09 -07001472 struct in_device *in_dev = __in_dev_get_rcu(skb->dev);
Eric Dumazet511c3f92009-06-02 05:14:27 +00001473 struct rtable *rt = skb_rtable(skb);
David S. Miller92d86822011-02-04 15:55:25 -08001474 struct inet_peer *peer;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001475 unsigned long now;
David S. Miller251da412012-06-26 16:27:09 -07001476 struct net *net;
David S. Miller92d86822011-02-04 15:55:25 -08001477 bool send;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001478 int code;
1479
David S. Miller251da412012-06-26 16:27:09 -07001480 net = dev_net(rt->dst.dev);
1481 if (!IN_DEV_FORWARD(in_dev)) {
1482 switch (rt->dst.error) {
1483 case EHOSTUNREACH:
1484 IP_INC_STATS_BH(net, IPSTATS_MIB_INADDRERRORS);
1485 break;
1486
1487 case ENETUNREACH:
1488 IP_INC_STATS_BH(net, IPSTATS_MIB_INNOROUTES);
1489 break;
1490 }
1491 goto out;
1492 }
1493
Changli Gaod8d1f302010-06-10 23:31:35 -07001494 switch (rt->dst.error) {
Joe Perches4500ebf2011-07-01 09:43:07 +00001495 case EINVAL:
1496 default:
1497 goto out;
1498 case EHOSTUNREACH:
1499 code = ICMP_HOST_UNREACH;
1500 break;
1501 case ENETUNREACH:
1502 code = ICMP_NET_UNREACH;
David S. Miller251da412012-06-26 16:27:09 -07001503 IP_INC_STATS_BH(net, IPSTATS_MIB_INNOROUTES);
Joe Perches4500ebf2011-07-01 09:43:07 +00001504 break;
1505 case EACCES:
1506 code = ICMP_PKT_FILTERED;
1507 break;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001508 }
1509
David S. Miller1d861aa2012-07-10 03:58:16 -07001510 peer = inet_getpeer_v4(net->ipv4.peers, ip_hdr(skb)->saddr, 1);
David S. Miller92d86822011-02-04 15:55:25 -08001511
1512 send = true;
1513 if (peer) {
1514 now = jiffies;
1515 peer->rate_tokens += now - peer->rate_last;
1516 if (peer->rate_tokens > ip_rt_error_burst)
1517 peer->rate_tokens = ip_rt_error_burst;
1518 peer->rate_last = now;
1519 if (peer->rate_tokens >= ip_rt_error_cost)
1520 peer->rate_tokens -= ip_rt_error_cost;
1521 else
1522 send = false;
David S. Miller1d861aa2012-07-10 03:58:16 -07001523 inet_putpeer(peer);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001524 }
David S. Miller92d86822011-02-04 15:55:25 -08001525 if (send)
1526 icmp_send(skb, ICMP_DEST_UNREACH, code, 0);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001527
1528out: kfree_skb(skb);
1529 return 0;
YOSHIFUJI Hideakie905a9e2007-02-09 23:24:47 +09001530}
Linus Torvalds1da177e2005-04-16 15:20:36 -07001531
Linus Torvalds1da177e2005-04-16 15:20:36 -07001532static void ip_rt_update_pmtu(struct dst_entry *dst, u32 mtu)
1533{
David S. Miller2c8cec52011-02-09 20:42:07 -08001534 struct rtable *rt = (struct rtable *) dst;
David S. Miller2c8cec52011-02-09 20:42:07 -08001535
1536 dst_confirm(dst);
1537
David S. Miller59436342012-07-10 06:58:42 -07001538 if (mtu < ip_rt_min_pmtu)
1539 mtu = ip_rt_min_pmtu;
Eric Dumazetfe6fe792011-06-08 06:07:07 +00001540
David S. Miller59436342012-07-10 06:58:42 -07001541 rt->rt_pmtu = mtu;
1542 dst_set_expires(&rt->dst, ip_rt_mtu_expires);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001543}
1544
David S. Miller36393392012-06-14 22:21:46 -07001545void ipv4_update_pmtu(struct sk_buff *skb, struct net *net, u32 mtu,
1546 int oif, u32 mark, u8 protocol, int flow_flags)
1547{
1548 const struct iphdr *iph = (const struct iphdr *)skb->data;
1549 struct flowi4 fl4;
1550 struct rtable *rt;
1551
1552 flowi4_init_output(&fl4, oif, mark, RT_TOS(iph->tos), RT_SCOPE_UNIVERSE,
David S. Miller3e129392012-07-10 04:01:57 -07001553 protocol, flow_flags,
David S. Miller36393392012-06-14 22:21:46 -07001554 iph->daddr, iph->saddr, 0, 0);
1555 rt = __ip_route_output_key(net, &fl4);
1556 if (!IS_ERR(rt)) {
1557 ip_rt_update_pmtu(&rt->dst, mtu);
1558 ip_rt_put(rt);
1559 }
1560}
1561EXPORT_SYMBOL_GPL(ipv4_update_pmtu);
1562
1563void ipv4_sk_update_pmtu(struct sk_buff *skb, struct sock *sk, u32 mtu)
1564{
1565 const struct inet_sock *inet = inet_sk(sk);
1566
1567 return ipv4_update_pmtu(skb, sock_net(sk), mtu,
1568 sk->sk_bound_dev_if, sk->sk_mark,
1569 inet->hdrincl ? IPPROTO_RAW : sk->sk_protocol,
1570 inet_sk_flowi_flags(sk));
1571}
1572EXPORT_SYMBOL_GPL(ipv4_sk_update_pmtu);
David S. Millerf39925d2011-02-09 22:00:16 -08001573
David S. Millerefbc3682011-12-01 13:38:59 -05001574static struct dst_entry *ipv4_dst_check(struct dst_entry *dst, u32 cookie)
1575{
1576 struct rtable *rt = (struct rtable *) dst;
1577
1578 if (rt_is_expired(rt))
1579 return NULL;
Timo Teräsd11a4dc2010-03-18 23:20:20 +00001580 return dst;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001581}
1582
1583static void ipv4_dst_destroy(struct dst_entry *dst)
1584{
1585 struct rtable *rt = (struct rtable *) dst;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001586
David S. Miller62fa8a82011-01-26 20:51:05 -08001587 if (rt->fi) {
1588 fib_info_put(rt->fi);
1589 rt->fi = NULL;
1590 }
David S. Miller97bab732012-06-09 22:36:36 -07001591 if (rt_has_peer(rt)) {
1592 struct inet_peer *peer = rt_peer_ptr(rt);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001593 inet_putpeer(peer);
1594 }
Linus Torvalds1da177e2005-04-16 15:20:36 -07001595}
1596
Linus Torvalds1da177e2005-04-16 15:20:36 -07001597
1598static void ipv4_link_failure(struct sk_buff *skb)
1599{
1600 struct rtable *rt;
1601
1602 icmp_send(skb, ICMP_DEST_UNREACH, ICMP_HOST_UNREACH, 0);
1603
Eric Dumazet511c3f92009-06-02 05:14:27 +00001604 rt = skb_rtable(skb);
David S. Miller59436342012-07-10 06:58:42 -07001605 if (rt)
1606 dst_set_expires(&rt->dst, 0);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001607}
1608
1609static int ip_rt_bug(struct sk_buff *skb)
1610{
Joe Perches91df42b2012-05-15 14:11:54 +00001611 pr_debug("%s: %pI4 -> %pI4, %s\n",
1612 __func__, &ip_hdr(skb)->saddr, &ip_hdr(skb)->daddr,
1613 skb->dev ? skb->dev->name : "?");
Linus Torvalds1da177e2005-04-16 15:20:36 -07001614 kfree_skb(skb);
Dave Jonesc378a9c2011-05-21 07:16:42 +00001615 WARN_ON(1);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001616 return 0;
1617}
1618
1619/*
1620 We do not cache source address of outgoing interface,
1621 because it is used only by IP RR, TS and SRR options,
1622 so that it out of fast path.
1623
1624 BTW remember: "addr" is allowed to be not aligned
1625 in IP options!
1626 */
1627
David S. Miller8e363602011-05-13 17:29:41 -04001628void ip_rt_get_source(u8 *addr, struct sk_buff *skb, struct rtable *rt)
Linus Torvalds1da177e2005-04-16 15:20:36 -07001629{
Al Viroa61ced52006-09-26 21:27:54 -07001630 __be32 src;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001631
David S. Millerc7537962010-11-11 17:07:48 -08001632 if (rt_is_output_route(rt))
David S. Millerc5be24f2011-05-13 18:01:21 -04001633 src = ip_hdr(skb)->saddr;
Eric Dumazetebc0ffa2010-10-05 10:41:36 +00001634 else {
David S. Miller8e363602011-05-13 17:29:41 -04001635 struct fib_result res;
1636 struct flowi4 fl4;
1637 struct iphdr *iph;
1638
1639 iph = ip_hdr(skb);
1640
1641 memset(&fl4, 0, sizeof(fl4));
1642 fl4.daddr = iph->daddr;
1643 fl4.saddr = iph->saddr;
Julian Anastasovb0fe4a32011-07-23 02:00:41 +00001644 fl4.flowi4_tos = RT_TOS(iph->tos);
David S. Miller8e363602011-05-13 17:29:41 -04001645 fl4.flowi4_oif = rt->dst.dev->ifindex;
1646 fl4.flowi4_iif = skb->dev->ifindex;
1647 fl4.flowi4_mark = skb->mark;
David S. Miller5e2b61f2011-03-04 21:47:09 -08001648
Eric Dumazetebc0ffa2010-10-05 10:41:36 +00001649 rcu_read_lock();
David S. Miller68a5e3d2011-03-11 20:07:33 -05001650 if (fib_lookup(dev_net(rt->dst.dev), &fl4, &res) == 0)
David S. Miller436c3b62011-03-24 17:42:21 -07001651 src = FIB_RES_PREFSRC(dev_net(rt->dst.dev), res);
Eric Dumazetebc0ffa2010-10-05 10:41:36 +00001652 else
1653 src = inet_select_addr(rt->dst.dev, rt->rt_gateway,
Linus Torvalds1da177e2005-04-16 15:20:36 -07001654 RT_SCOPE_UNIVERSE);
Eric Dumazetebc0ffa2010-10-05 10:41:36 +00001655 rcu_read_unlock();
1656 }
Linus Torvalds1da177e2005-04-16 15:20:36 -07001657 memcpy(addr, &src, 4);
1658}
1659
Patrick McHardyc7066f72011-01-14 13:36:42 +01001660#ifdef CONFIG_IP_ROUTE_CLASSID
Linus Torvalds1da177e2005-04-16 15:20:36 -07001661static void set_class_tag(struct rtable *rt, u32 tag)
1662{
Changli Gaod8d1f302010-06-10 23:31:35 -07001663 if (!(rt->dst.tclassid & 0xFFFF))
1664 rt->dst.tclassid |= tag & 0xFFFF;
1665 if (!(rt->dst.tclassid & 0xFFFF0000))
1666 rt->dst.tclassid |= tag & 0xFFFF0000;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001667}
1668#endif
1669
David S. Miller0dbaee32010-12-13 12:52:14 -08001670static unsigned int ipv4_default_advmss(const struct dst_entry *dst)
1671{
1672 unsigned int advmss = dst_metric_raw(dst, RTAX_ADVMSS);
1673
1674 if (advmss == 0) {
1675 advmss = max_t(unsigned int, dst->dev->mtu - 40,
1676 ip_rt_min_advmss);
1677 if (advmss > 65535 - 40)
1678 advmss = 65535 - 40;
1679 }
1680 return advmss;
1681}
1682
Steffen Klassertebb762f2011-11-23 02:12:51 +00001683static unsigned int ipv4_mtu(const struct dst_entry *dst)
David S. Millerd33e4552010-12-14 13:01:14 -08001684{
Steffen Klassert261663b2011-11-23 02:14:50 +00001685 const struct rtable *rt = (const struct rtable *) dst;
David S. Miller59436342012-07-10 06:58:42 -07001686 unsigned int mtu = rt->rt_pmtu;
1687
1688 if (mtu && time_after_eq(jiffies, rt->dst.expires))
1689 mtu = 0;
1690
1691 if (!mtu)
1692 mtu = dst_metric_raw(dst, RTAX_MTU);
Steffen Klassert618f9bc2011-11-23 02:13:31 +00001693
Steffen Klassert261663b2011-11-23 02:14:50 +00001694 if (mtu && rt_is_output_route(rt))
Steffen Klassert618f9bc2011-11-23 02:13:31 +00001695 return mtu;
1696
1697 mtu = dst->dev->mtu;
David S. Millerd33e4552010-12-14 13:01:14 -08001698
1699 if (unlikely(dst_metric_locked(dst, RTAX_MTU))) {
David S. Millerd33e4552010-12-14 13:01:14 -08001700
1701 if (rt->rt_gateway != rt->rt_dst && mtu > 576)
1702 mtu = 576;
1703 }
1704
1705 if (mtu > IP_MAX_MTU)
1706 mtu = IP_MAX_MTU;
1707
1708 return mtu;
1709}
1710
David S. Miller813b3b52011-04-28 14:48:42 -07001711static void rt_init_metrics(struct rtable *rt, const struct flowi4 *fl4,
David S. Miller5e2b61f2011-03-04 21:47:09 -08001712 struct fib_info *fi)
David S. Millera4daad62011-01-27 22:01:53 -08001713{
David S. Miller97bab732012-06-09 22:36:36 -07001714 struct inet_peer_base *base;
David S. Miller0131ba452011-02-04 14:37:30 -08001715 struct inet_peer *peer;
David S. Miller0131ba452011-02-04 14:37:30 -08001716
David S. Miller97bab732012-06-09 22:36:36 -07001717 base = inetpeer_base_ptr(rt->_peer);
1718 BUG_ON(!base);
1719
David S. Miller3e129392012-07-10 04:01:57 -07001720 peer = inet_getpeer_v4(base, rt->rt_dst, 0);
David S. Miller0131ba452011-02-04 14:37:30 -08001721 if (peer) {
David S. Miller97bab732012-06-09 22:36:36 -07001722 __rt_set_peer(rt, peer);
David S. Miller0131ba452011-02-04 14:37:30 -08001723 if (inet_metrics_new(peer))
1724 memcpy(peer->metrics, fi->fib_metrics,
1725 sizeof(u32) * RTAX_MAX);
1726 dst_init_metrics(&rt->dst, peer->metrics, false);
1727 } else {
David S. Millerb8dad612011-01-28 14:07:16 -08001728 if (fi->fib_metrics != (u32 *) dst_default_metrics) {
1729 rt->fi = fi;
1730 atomic_inc(&fi->fib_clntref);
1731 }
David S. Millera4daad62011-01-27 22:01:53 -08001732 dst_init_metrics(&rt->dst, fi->fib_metrics, true);
David S. Millera4daad62011-01-27 22:01:53 -08001733 }
1734}
1735
David S. Miller813b3b52011-04-28 14:48:42 -07001736static void rt_set_nexthop(struct rtable *rt, const struct flowi4 *fl4,
David S. Miller5e2b61f2011-03-04 21:47:09 -08001737 const struct fib_result *res,
David S. Miller982721f2011-02-16 21:44:24 -08001738 struct fib_info *fi, u16 type, u32 itag)
Linus Torvalds1da177e2005-04-16 15:20:36 -07001739{
Linus Torvalds1da177e2005-04-16 15:20:36 -07001740 if (fi) {
1741 if (FIB_RES_GW(*res) &&
1742 FIB_RES_NH(*res).nh_scope == RT_SCOPE_LINK)
1743 rt->rt_gateway = FIB_RES_GW(*res);
David S. Miller813b3b52011-04-28 14:48:42 -07001744 rt_init_metrics(rt, fl4, fi);
Patrick McHardyc7066f72011-01-14 13:36:42 +01001745#ifdef CONFIG_IP_ROUTE_CLASSID
David S. Miller710ab6c2012-07-10 07:02:09 -07001746 rt->dst.tclassid = FIB_RES_NH(*res).nh_tclassid;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001747#endif
David S. Millerd33e4552010-12-14 13:01:14 -08001748 }
Linus Torvalds1da177e2005-04-16 15:20:36 -07001749
Patrick McHardyc7066f72011-01-14 13:36:42 +01001750#ifdef CONFIG_IP_ROUTE_CLASSID
Linus Torvalds1da177e2005-04-16 15:20:36 -07001751#ifdef CONFIG_IP_MULTIPLE_TABLES
1752 set_class_tag(rt, fib_rules_tclass(res));
1753#endif
1754 set_class_tag(rt, itag);
1755#endif
Linus Torvalds1da177e2005-04-16 15:20:36 -07001756}
1757
David S. Miller5c1e6aa2011-04-28 14:13:38 -07001758static struct rtable *rt_dst_alloc(struct net_device *dev,
1759 bool nopolicy, bool noxfrm)
David S. Miller0c4dcd52011-02-17 15:42:37 -08001760{
David S. Miller5c1e6aa2011-04-28 14:13:38 -07001761 return dst_alloc(&ipv4_dst_ops, dev, 1, -1,
1762 DST_HOST |
1763 (nopolicy ? DST_NOPOLICY : 0) |
1764 (noxfrm ? DST_NOXFRM : 0));
David S. Miller0c4dcd52011-02-17 15:42:37 -08001765}
1766
Eric Dumazet96d36222010-06-02 19:21:31 +00001767/* called in rcu_read_lock() section */
Al Viro9e12bb22006-09-26 21:25:20 -07001768static int ip_route_input_mc(struct sk_buff *skb, __be32 daddr, __be32 saddr,
Linus Torvalds1da177e2005-04-16 15:20:36 -07001769 u8 tos, struct net_device *dev, int our)
1770{
Eric Dumazet96d36222010-06-02 19:21:31 +00001771 unsigned int hash;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001772 struct rtable *rth;
Eric Dumazet96d36222010-06-02 19:21:31 +00001773 struct in_device *in_dev = __in_dev_get_rcu(dev);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001774 u32 itag = 0;
Eric Dumazetb5f7e752010-06-02 12:05:27 +00001775 int err;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001776
1777 /* Primary sanity checks. */
1778
1779 if (in_dev == NULL)
1780 return -EINVAL;
1781
Jan Engelhardt1e637c72008-01-21 03:18:08 -08001782 if (ipv4_is_multicast(saddr) || ipv4_is_lbcast(saddr) ||
Thomas Grafd0daebc32012-06-12 00:44:01 +00001783 skb->protocol != htons(ETH_P_IP))
Linus Torvalds1da177e2005-04-16 15:20:36 -07001784 goto e_inval;
1785
Thomas Grafd0daebc32012-06-12 00:44:01 +00001786 if (likely(!IN_DEV_ROUTE_LOCALNET(in_dev)))
1787 if (ipv4_is_loopback(saddr))
1788 goto e_inval;
1789
Joe Perchesf97c1e02007-12-16 13:45:43 -08001790 if (ipv4_is_zeronet(saddr)) {
1791 if (!ipv4_is_local_multicast(daddr))
Linus Torvalds1da177e2005-04-16 15:20:36 -07001792 goto e_inval;
Eric Dumazetb5f7e752010-06-02 12:05:27 +00001793 } else {
David S. Miller9e56e382012-06-28 18:54:02 -07001794 err = fib_validate_source(skb, saddr, 0, tos, 0, dev,
1795 in_dev, &itag);
Eric Dumazetb5f7e752010-06-02 12:05:27 +00001796 if (err < 0)
1797 goto e_err;
1798 }
Benjamin LaHaise4e7b2f12012-03-27 15:55:32 +00001799 rth = rt_dst_alloc(dev_net(dev)->loopback_dev,
David S. Miller5c1e6aa2011-04-28 14:13:38 -07001800 IN_DEV_CONF_GET(in_dev, NOPOLICY), false);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001801 if (!rth)
1802 goto e_nobufs;
1803
Patrick McHardyc7066f72011-01-14 13:36:42 +01001804#ifdef CONFIG_IP_ROUTE_CLASSID
Changli Gaod8d1f302010-06-10 23:31:35 -07001805 rth->dst.tclassid = itag;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001806#endif
David S. Millercf911662011-04-28 14:31:47 -07001807 rth->dst.output = ip_rt_bug;
1808
1809 rth->rt_key_dst = daddr;
1810 rth->rt_key_src = saddr;
Denis V. Luneve84f84f2008-07-05 19:04:32 -07001811 rth->rt_genid = rt_genid(dev_net(dev));
Linus Torvalds1da177e2005-04-16 15:20:36 -07001812 rth->rt_flags = RTCF_MULTICAST;
Eric Dumazet29e75252008-01-31 17:05:09 -08001813 rth->rt_type = RTN_MULTICAST;
David S. Miller475949d2011-05-03 19:45:15 -07001814 rth->rt_key_tos = tos;
David S. Millercf911662011-04-28 14:31:47 -07001815 rth->rt_dst = daddr;
1816 rth->rt_src = saddr;
1817 rth->rt_route_iif = dev->ifindex;
1818 rth->rt_iif = dev->ifindex;
1819 rth->rt_oif = 0;
1820 rth->rt_mark = skb->mark;
David S. Miller59436342012-07-10 06:58:42 -07001821 rth->rt_pmtu = 0;
David S. Millercf911662011-04-28 14:31:47 -07001822 rth->rt_gateway = daddr;
David S. Miller97bab732012-06-09 22:36:36 -07001823 rt_init_peer(rth, dev_net(dev)->ipv4.peers);
David S. Millercf911662011-04-28 14:31:47 -07001824 rth->fi = NULL;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001825 if (our) {
Changli Gaod8d1f302010-06-10 23:31:35 -07001826 rth->dst.input= ip_local_deliver;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001827 rth->rt_flags |= RTCF_LOCAL;
1828 }
1829
1830#ifdef CONFIG_IP_MROUTE
Joe Perchesf97c1e02007-12-16 13:45:43 -08001831 if (!ipv4_is_local_multicast(daddr) && IN_DEV_MFORWARD(in_dev))
Changli Gaod8d1f302010-06-10 23:31:35 -07001832 rth->dst.input = ip_mr_input;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001833#endif
1834 RT_CACHE_STAT_INC(in_slow_mc);
1835
Denis V. Luneve84f84f2008-07-05 19:04:32 -07001836 hash = rt_hash(daddr, saddr, dev->ifindex, rt_genid(dev_net(dev)));
David S. Millerb23dd4f2011-03-02 14:31:35 -08001837 rth = rt_intern_hash(hash, rth, skb, dev->ifindex);
Eric Dumazet9aa3c942011-06-18 11:59:18 -07001838 return IS_ERR(rth) ? PTR_ERR(rth) : 0;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001839
1840e_nobufs:
Linus Torvalds1da177e2005-04-16 15:20:36 -07001841 return -ENOBUFS;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001842e_inval:
Eric Dumazet96d36222010-06-02 19:21:31 +00001843 return -EINVAL;
Eric Dumazetb5f7e752010-06-02 12:05:27 +00001844e_err:
Eric Dumazetb5f7e752010-06-02 12:05:27 +00001845 return err;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001846}
1847
1848
1849static void ip_handle_martian_source(struct net_device *dev,
1850 struct in_device *in_dev,
1851 struct sk_buff *skb,
Al Viro9e12bb22006-09-26 21:25:20 -07001852 __be32 daddr,
1853 __be32 saddr)
Linus Torvalds1da177e2005-04-16 15:20:36 -07001854{
1855 RT_CACHE_STAT_INC(in_martian_src);
1856#ifdef CONFIG_IP_ROUTE_VERBOSE
1857 if (IN_DEV_LOG_MARTIANS(in_dev) && net_ratelimit()) {
1858 /*
1859 * RFC1812 recommendation, if source is martian,
1860 * the only hint is MAC header.
1861 */
Joe Perches058bd4d2012-03-11 18:36:11 +00001862 pr_warn("martian source %pI4 from %pI4, on dev %s\n",
Harvey Harrison673d57e2008-10-31 00:53:57 -07001863 &daddr, &saddr, dev->name);
Arnaldo Carvalho de Melo98e399f2007-03-19 15:33:04 -07001864 if (dev->hard_header_len && skb_mac_header_was_set(skb)) {
Joe Perches058bd4d2012-03-11 18:36:11 +00001865 print_hex_dump(KERN_WARNING, "ll header: ",
1866 DUMP_PREFIX_OFFSET, 16, 1,
1867 skb_mac_header(skb),
1868 dev->hard_header_len, true);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001869 }
1870 }
1871#endif
1872}
1873
Eric Dumazet47360222010-06-03 04:13:21 +00001874/* called in rcu_read_lock() section */
Stephen Hemminger5969f712008-04-10 01:52:09 -07001875static int __mkroute_input(struct sk_buff *skb,
David S. Miller982721f2011-02-16 21:44:24 -08001876 const struct fib_result *res,
Stephen Hemminger5969f712008-04-10 01:52:09 -07001877 struct in_device *in_dev,
1878 __be32 daddr, __be32 saddr, u32 tos,
1879 struct rtable **result)
Linus Torvalds1da177e2005-04-16 15:20:36 -07001880{
Linus Torvalds1da177e2005-04-16 15:20:36 -07001881 struct rtable *rth;
1882 int err;
1883 struct in_device *out_dev;
Eric Dumazet47360222010-06-03 04:13:21 +00001884 unsigned int flags = 0;
Al Virod9c9df82006-09-26 21:28:14 -07001885 u32 itag;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001886
1887 /* get a working reference to the output device */
Eric Dumazet47360222010-06-03 04:13:21 +00001888 out_dev = __in_dev_get_rcu(FIB_RES_DEV(*res));
Linus Torvalds1da177e2005-04-16 15:20:36 -07001889 if (out_dev == NULL) {
Joe Perchese87cc472012-05-13 21:56:26 +00001890 net_crit_ratelimited("Bug in ip_route_input_slow(). Please report.\n");
Linus Torvalds1da177e2005-04-16 15:20:36 -07001891 return -EINVAL;
1892 }
1893
1894
Michael Smith5c04c812011-04-07 04:51:50 +00001895 err = fib_validate_source(skb, saddr, daddr, tos, FIB_RES_OIF(*res),
David S. Miller9e56e382012-06-28 18:54:02 -07001896 in_dev->dev, in_dev, &itag);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001897 if (err < 0) {
YOSHIFUJI Hideakie905a9e2007-02-09 23:24:47 +09001898 ip_handle_martian_source(in_dev->dev, in_dev, skb, daddr,
Linus Torvalds1da177e2005-04-16 15:20:36 -07001899 saddr);
YOSHIFUJI Hideakie905a9e2007-02-09 23:24:47 +09001900
Linus Torvalds1da177e2005-04-16 15:20:36 -07001901 goto cleanup;
1902 }
1903
1904 if (err)
1905 flags |= RTCF_DIRECTSRC;
1906
Thomas Graf51b77ca2008-06-03 16:36:01 -07001907 if (out_dev == in_dev && err &&
Linus Torvalds1da177e2005-04-16 15:20:36 -07001908 (IN_DEV_SHARED_MEDIA(out_dev) ||
1909 inet_addr_onlink(out_dev, saddr, FIB_RES_GW(*res))))
1910 flags |= RTCF_DOREDIRECT;
1911
1912 if (skb->protocol != htons(ETH_P_IP)) {
1913 /* Not IP (i.e. ARP). Do not create route, if it is
1914 * invalid for proxy arp. DNAT routes are always valid.
Jesper Dangaard Brouer65324142010-01-05 05:50:47 +00001915 *
1916 * Proxy arp feature have been extended to allow, ARP
1917 * replies back to the same interface, to support
1918 * Private VLAN switch technologies. See arp.c.
Linus Torvalds1da177e2005-04-16 15:20:36 -07001919 */
Jesper Dangaard Brouer65324142010-01-05 05:50:47 +00001920 if (out_dev == in_dev &&
1921 IN_DEV_PROXY_ARP_PVLAN(in_dev) == 0) {
Linus Torvalds1da177e2005-04-16 15:20:36 -07001922 err = -EINVAL;
1923 goto cleanup;
1924 }
1925 }
1926
David S. Miller5c1e6aa2011-04-28 14:13:38 -07001927 rth = rt_dst_alloc(out_dev->dev,
1928 IN_DEV_CONF_GET(in_dev, NOPOLICY),
David S. Miller0c4dcd52011-02-17 15:42:37 -08001929 IN_DEV_CONF_GET(out_dev, NOXFRM));
Linus Torvalds1da177e2005-04-16 15:20:36 -07001930 if (!rth) {
1931 err = -ENOBUFS;
1932 goto cleanup;
1933 }
1934
David S. Miller5e2b61f2011-03-04 21:47:09 -08001935 rth->rt_key_dst = daddr;
David S. Miller5e2b61f2011-03-04 21:47:09 -08001936 rth->rt_key_src = saddr;
David S. Millercf911662011-04-28 14:31:47 -07001937 rth->rt_genid = rt_genid(dev_net(rth->dst.dev));
1938 rth->rt_flags = flags;
1939 rth->rt_type = res->type;
David S. Miller475949d2011-05-03 19:45:15 -07001940 rth->rt_key_tos = tos;
David S. Millercf911662011-04-28 14:31:47 -07001941 rth->rt_dst = daddr;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001942 rth->rt_src = saddr;
OGAWA Hirofumi1b86a582011-04-07 14:04:08 -07001943 rth->rt_route_iif = in_dev->dev->ifindex;
David S. Miller5e2b61f2011-03-04 21:47:09 -08001944 rth->rt_iif = in_dev->dev->ifindex;
David S. Miller5e2b61f2011-03-04 21:47:09 -08001945 rth->rt_oif = 0;
David S. Millercf911662011-04-28 14:31:47 -07001946 rth->rt_mark = skb->mark;
David S. Miller59436342012-07-10 06:58:42 -07001947 rth->rt_pmtu = 0;
David S. Millercf911662011-04-28 14:31:47 -07001948 rth->rt_gateway = daddr;
David S. Miller8b96d222012-06-11 02:01:56 -07001949 rt_init_peer(rth, &res->table->tb_peers);
David S. Millercf911662011-04-28 14:31:47 -07001950 rth->fi = NULL;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001951
Changli Gaod8d1f302010-06-10 23:31:35 -07001952 rth->dst.input = ip_forward;
1953 rth->dst.output = ip_output;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001954
David S. Miller5e2b61f2011-03-04 21:47:09 -08001955 rt_set_nexthop(rth, NULL, res, res->fi, res->type, itag);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001956
Linus Torvalds1da177e2005-04-16 15:20:36 -07001957 *result = rth;
1958 err = 0;
1959 cleanup:
Linus Torvalds1da177e2005-04-16 15:20:36 -07001960 return err;
YOSHIFUJI Hideakie905a9e2007-02-09 23:24:47 +09001961}
Linus Torvalds1da177e2005-04-16 15:20:36 -07001962
Stephen Hemminger5969f712008-04-10 01:52:09 -07001963static int ip_mkroute_input(struct sk_buff *skb,
1964 struct fib_result *res,
David S. Miller68a5e3d2011-03-11 20:07:33 -05001965 const struct flowi4 *fl4,
Stephen Hemminger5969f712008-04-10 01:52:09 -07001966 struct in_device *in_dev,
1967 __be32 daddr, __be32 saddr, u32 tos)
Linus Torvalds1da177e2005-04-16 15:20:36 -07001968{
Daniel Baluta5e73ea12012-04-15 01:34:41 +00001969 struct rtable *rth = NULL;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001970 int err;
Eric Dumazet95c96172012-04-15 05:58:06 +00001971 unsigned int hash;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001972
1973#ifdef CONFIG_IP_ROUTE_MULTIPATH
David S. Millerff3fccb2011-03-10 16:23:24 -08001974 if (res->fi && res->fi->fib_nhs > 1)
David S. Miller1b7fe5932011-03-10 17:01:16 -08001975 fib_select_multipath(res);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001976#endif
1977
1978 /* create a routing cache entry */
1979 err = __mkroute_input(skb, res, in_dev, daddr, saddr, tos, &rth);
1980 if (err)
1981 return err;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001982
1983 /* put it into the cache */
David S. Miller68a5e3d2011-03-11 20:07:33 -05001984 hash = rt_hash(daddr, saddr, fl4->flowi4_iif,
Changli Gaod8d1f302010-06-10 23:31:35 -07001985 rt_genid(dev_net(rth->dst.dev)));
David S. Miller68a5e3d2011-03-11 20:07:33 -05001986 rth = rt_intern_hash(hash, rth, skb, fl4->flowi4_iif);
David S. Millerb23dd4f2011-03-02 14:31:35 -08001987 if (IS_ERR(rth))
1988 return PTR_ERR(rth);
1989 return 0;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001990}
1991
Linus Torvalds1da177e2005-04-16 15:20:36 -07001992/*
1993 * NOTE. We drop all the packets that has local source
1994 * addresses, because every properly looped back packet
1995 * must have correct destination already attached by output routine.
1996 *
1997 * Such approach solves two big problems:
1998 * 1. Not simplex devices are handled properly.
1999 * 2. IP spoofing attempts are filtered with 100% of guarantee.
Eric Dumazetebc0ffa2010-10-05 10:41:36 +00002000 * called with rcu_read_lock()
Linus Torvalds1da177e2005-04-16 15:20:36 -07002001 */
2002
Al Viro9e12bb22006-09-26 21:25:20 -07002003static int ip_route_input_slow(struct sk_buff *skb, __be32 daddr, __be32 saddr,
David S. Millerc10237e2012-06-27 17:05:06 -07002004 u8 tos, struct net_device *dev)
Linus Torvalds1da177e2005-04-16 15:20:36 -07002005{
2006 struct fib_result res;
Eric Dumazet96d36222010-06-02 19:21:31 +00002007 struct in_device *in_dev = __in_dev_get_rcu(dev);
David S. Miller68a5e3d2011-03-11 20:07:33 -05002008 struct flowi4 fl4;
Eric Dumazet95c96172012-04-15 05:58:06 +00002009 unsigned int flags = 0;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002010 u32 itag = 0;
Eric Dumazet95c96172012-04-15 05:58:06 +00002011 struct rtable *rth;
2012 unsigned int hash;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002013 int err = -EINVAL;
Daniel Baluta5e73ea12012-04-15 01:34:41 +00002014 struct net *net = dev_net(dev);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002015
2016 /* IP on this device is disabled. */
2017
2018 if (!in_dev)
2019 goto out;
2020
2021 /* Check for the most weird martians, which can be not detected
2022 by fib_lookup.
2023 */
2024
Thomas Grafd0daebc32012-06-12 00:44:01 +00002025 if (ipv4_is_multicast(saddr) || ipv4_is_lbcast(saddr))
Linus Torvalds1da177e2005-04-16 15:20:36 -07002026 goto martian_source;
2027
Andy Walls27a954b2010-10-17 15:11:22 +00002028 if (ipv4_is_lbcast(daddr) || (saddr == 0 && daddr == 0))
Linus Torvalds1da177e2005-04-16 15:20:36 -07002029 goto brd_input;
2030
2031 /* Accept zero addresses only to limited broadcast;
2032 * I even do not know to fix it or not. Waiting for complains :-)
2033 */
Joe Perchesf97c1e02007-12-16 13:45:43 -08002034 if (ipv4_is_zeronet(saddr))
Linus Torvalds1da177e2005-04-16 15:20:36 -07002035 goto martian_source;
2036
Thomas Grafd0daebc32012-06-12 00:44:01 +00002037 if (ipv4_is_zeronet(daddr))
Linus Torvalds1da177e2005-04-16 15:20:36 -07002038 goto martian_destination;
2039
Thomas Grafd0daebc32012-06-12 00:44:01 +00002040 if (likely(!IN_DEV_ROUTE_LOCALNET(in_dev))) {
2041 if (ipv4_is_loopback(daddr))
2042 goto martian_destination;
2043
2044 if (ipv4_is_loopback(saddr))
2045 goto martian_source;
2046 }
2047
Linus Torvalds1da177e2005-04-16 15:20:36 -07002048 /*
2049 * Now we are ready to route packet.
2050 */
David S. Miller68a5e3d2011-03-11 20:07:33 -05002051 fl4.flowi4_oif = 0;
2052 fl4.flowi4_iif = dev->ifindex;
2053 fl4.flowi4_mark = skb->mark;
2054 fl4.flowi4_tos = tos;
2055 fl4.flowi4_scope = RT_SCOPE_UNIVERSE;
2056 fl4.daddr = daddr;
2057 fl4.saddr = saddr;
2058 err = fib_lookup(net, &fl4, &res);
David S. Miller251da412012-06-26 16:27:09 -07002059 if (err != 0)
Linus Torvalds1da177e2005-04-16 15:20:36 -07002060 goto no_route;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002061
2062 RT_CACHE_STAT_INC(in_slow_tot);
2063
2064 if (res.type == RTN_BROADCAST)
2065 goto brd_input;
2066
2067 if (res.type == RTN_LOCAL) {
Michael Smith5c04c812011-04-07 04:51:50 +00002068 err = fib_validate_source(skb, saddr, daddr, tos,
Eric Dumazetebc0ffa2010-10-05 10:41:36 +00002069 net->loopback_dev->ifindex,
David S. Miller9e56e382012-06-28 18:54:02 -07002070 dev, in_dev, &itag);
Eric Dumazetb5f7e752010-06-02 12:05:27 +00002071 if (err < 0)
2072 goto martian_source_keep_err;
2073 if (err)
Linus Torvalds1da177e2005-04-16 15:20:36 -07002074 flags |= RTCF_DIRECTSRC;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002075 goto local_input;
2076 }
2077
2078 if (!IN_DEV_FORWARD(in_dev))
David S. Miller251da412012-06-26 16:27:09 -07002079 goto no_route;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002080 if (res.type != RTN_UNICAST)
2081 goto martian_destination;
2082
David S. Miller68a5e3d2011-03-11 20:07:33 -05002083 err = ip_mkroute_input(skb, &res, &fl4, in_dev, daddr, saddr, tos);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002084out: return err;
2085
2086brd_input:
2087 if (skb->protocol != htons(ETH_P_IP))
2088 goto e_inval;
2089
David S. Miller41347dc2012-06-28 04:05:27 -07002090 if (!ipv4_is_zeronet(saddr)) {
David S. Miller9e56e382012-06-28 18:54:02 -07002091 err = fib_validate_source(skb, saddr, 0, tos, 0, dev,
2092 in_dev, &itag);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002093 if (err < 0)
Eric Dumazetb5f7e752010-06-02 12:05:27 +00002094 goto martian_source_keep_err;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002095 if (err)
2096 flags |= RTCF_DIRECTSRC;
2097 }
2098 flags |= RTCF_BROADCAST;
2099 res.type = RTN_BROADCAST;
2100 RT_CACHE_STAT_INC(in_brd);
2101
2102local_input:
David S. Miller5c1e6aa2011-04-28 14:13:38 -07002103 rth = rt_dst_alloc(net->loopback_dev,
2104 IN_DEV_CONF_GET(in_dev, NOPOLICY), false);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002105 if (!rth)
2106 goto e_nobufs;
2107
David S. Millercf911662011-04-28 14:31:47 -07002108 rth->dst.input= ip_local_deliver;
Changli Gaod8d1f302010-06-10 23:31:35 -07002109 rth->dst.output= ip_rt_bug;
David S. Millercf911662011-04-28 14:31:47 -07002110#ifdef CONFIG_IP_ROUTE_CLASSID
2111 rth->dst.tclassid = itag;
2112#endif
Linus Torvalds1da177e2005-04-16 15:20:36 -07002113
David S. Miller5e2b61f2011-03-04 21:47:09 -08002114 rth->rt_key_dst = daddr;
David S. Miller5e2b61f2011-03-04 21:47:09 -08002115 rth->rt_key_src = saddr;
David S. Millercf911662011-04-28 14:31:47 -07002116 rth->rt_genid = rt_genid(net);
2117 rth->rt_flags = flags|RTCF_LOCAL;
2118 rth->rt_type = res.type;
David S. Miller475949d2011-05-03 19:45:15 -07002119 rth->rt_key_tos = tos;
David S. Millercf911662011-04-28 14:31:47 -07002120 rth->rt_dst = daddr;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002121 rth->rt_src = saddr;
OGAWA Hirofumi1b86a582011-04-07 14:04:08 -07002122 rth->rt_route_iif = dev->ifindex;
David S. Miller5e2b61f2011-03-04 21:47:09 -08002123 rth->rt_iif = dev->ifindex;
David S. Millercf911662011-04-28 14:31:47 -07002124 rth->rt_oif = 0;
2125 rth->rt_mark = skb->mark;
David S. Miller59436342012-07-10 06:58:42 -07002126 rth->rt_pmtu = 0;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002127 rth->rt_gateway = daddr;
David S. Miller97bab732012-06-09 22:36:36 -07002128 rt_init_peer(rth, net->ipv4.peers);
David S. Millercf911662011-04-28 14:31:47 -07002129 rth->fi = NULL;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002130 if (res.type == RTN_UNREACHABLE) {
Changli Gaod8d1f302010-06-10 23:31:35 -07002131 rth->dst.input= ip_error;
2132 rth->dst.error= -err;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002133 rth->rt_flags &= ~RTCF_LOCAL;
2134 }
David S. Miller68a5e3d2011-03-11 20:07:33 -05002135 hash = rt_hash(daddr, saddr, fl4.flowi4_iif, rt_genid(net));
2136 rth = rt_intern_hash(hash, rth, skb, fl4.flowi4_iif);
David S. Millerb23dd4f2011-03-02 14:31:35 -08002137 err = 0;
2138 if (IS_ERR(rth))
2139 err = PTR_ERR(rth);
Eric Dumazetebc0ffa2010-10-05 10:41:36 +00002140 goto out;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002141
2142no_route:
2143 RT_CACHE_STAT_INC(in_no_route);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002144 res.type = RTN_UNREACHABLE;
Mitsuru Chinen7f538782007-12-07 01:07:24 -08002145 if (err == -ESRCH)
2146 err = -ENETUNREACH;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002147 goto local_input;
2148
2149 /*
2150 * Do not cache martian addresses: they should be logged (RFC1812)
2151 */
2152martian_destination:
2153 RT_CACHE_STAT_INC(in_martian_dst);
2154#ifdef CONFIG_IP_ROUTE_VERBOSE
Joe Perchese87cc472012-05-13 21:56:26 +00002155 if (IN_DEV_LOG_MARTIANS(in_dev))
2156 net_warn_ratelimited("martian destination %pI4 from %pI4, dev %s\n",
2157 &daddr, &saddr, dev->name);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002158#endif
Dietmar Eggemann2c2910a2005-06-28 13:06:23 -07002159
Linus Torvalds1da177e2005-04-16 15:20:36 -07002160e_inval:
2161 err = -EINVAL;
Eric Dumazetebc0ffa2010-10-05 10:41:36 +00002162 goto out;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002163
2164e_nobufs:
2165 err = -ENOBUFS;
Eric Dumazetebc0ffa2010-10-05 10:41:36 +00002166 goto out;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002167
2168martian_source:
Eric Dumazetb5f7e752010-06-02 12:05:27 +00002169 err = -EINVAL;
2170martian_source_keep_err:
Linus Torvalds1da177e2005-04-16 15:20:36 -07002171 ip_handle_martian_source(dev, in_dev, skb, daddr, saddr);
Eric Dumazetebc0ffa2010-10-05 10:41:36 +00002172 goto out;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002173}
2174
Eric Dumazet407eadd2010-05-10 11:32:55 +00002175int ip_route_input_common(struct sk_buff *skb, __be32 daddr, __be32 saddr,
David S. Millerc10237e2012-06-27 17:05:06 -07002176 u8 tos, struct net_device *dev, bool noref)
Linus Torvalds1da177e2005-04-16 15:20:36 -07002177{
Eric Dumazet95c96172012-04-15 05:58:06 +00002178 struct rtable *rth;
2179 unsigned int hash;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002180 int iif = dev->ifindex;
Denis V. Lunevb5921912008-01-22 23:50:25 -08002181 struct net *net;
Eric Dumazet96d36222010-06-02 19:21:31 +00002182 int res;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002183
YOSHIFUJI Hideakic346dca2008-03-25 21:47:49 +09002184 net = dev_net(dev);
Neil Horman1080d702008-10-27 12:28:25 -07002185
Eric Dumazet96d36222010-06-02 19:21:31 +00002186 rcu_read_lock();
2187
Neil Horman1080d702008-10-27 12:28:25 -07002188 if (!rt_caching(net))
2189 goto skip_cache;
2190
Linus Torvalds1da177e2005-04-16 15:20:36 -07002191 tos &= IPTOS_RT_MASK;
Denis V. Luneve84f84f2008-07-05 19:04:32 -07002192 hash = rt_hash(daddr, saddr, iif, rt_genid(net));
Linus Torvalds1da177e2005-04-16 15:20:36 -07002193
Linus Torvalds1da177e2005-04-16 15:20:36 -07002194 for (rth = rcu_dereference(rt_hash_table[hash].chain); rth;
Changli Gaod8d1f302010-06-10 23:31:35 -07002195 rth = rcu_dereference(rth->dst.rt_next)) {
David S. Miller5e2b61f2011-03-04 21:47:09 -08002196 if ((((__force u32)rth->rt_key_dst ^ (__force u32)daddr) |
2197 ((__force u32)rth->rt_key_src ^ (__force u32)saddr) |
Julian Anastasov97a80412011-08-09 04:01:16 +00002198 (rth->rt_route_iif ^ iif) |
David S. Miller475949d2011-05-03 19:45:15 -07002199 (rth->rt_key_tos ^ tos)) == 0 &&
David S. Miller5e2b61f2011-03-04 21:47:09 -08002200 rth->rt_mark == skb->mark &&
Changli Gaod8d1f302010-06-10 23:31:35 -07002201 net_eq(dev_net(rth->dst.dev), net) &&
Denis V. Luneve84f84f2008-07-05 19:04:32 -07002202 !rt_is_expired(rth)) {
Eric Dumazet407eadd2010-05-10 11:32:55 +00002203 if (noref) {
Changli Gaod8d1f302010-06-10 23:31:35 -07002204 dst_use_noref(&rth->dst, jiffies);
2205 skb_dst_set_noref(skb, &rth->dst);
Eric Dumazet407eadd2010-05-10 11:32:55 +00002206 } else {
Changli Gaod8d1f302010-06-10 23:31:35 -07002207 dst_use(&rth->dst, jiffies);
2208 skb_dst_set(skb, &rth->dst);
Eric Dumazet407eadd2010-05-10 11:32:55 +00002209 }
Linus Torvalds1da177e2005-04-16 15:20:36 -07002210 RT_CACHE_STAT_INC(in_hit);
2211 rcu_read_unlock();
Linus Torvalds1da177e2005-04-16 15:20:36 -07002212 return 0;
2213 }
2214 RT_CACHE_STAT_INC(in_hlist_search);
2215 }
Linus Torvalds1da177e2005-04-16 15:20:36 -07002216
Neil Horman1080d702008-10-27 12:28:25 -07002217skip_cache:
Linus Torvalds1da177e2005-04-16 15:20:36 -07002218 /* Multicast recognition logic is moved from route cache to here.
2219 The problem was that too many Ethernet cards have broken/missing
2220 hardware multicast filters :-( As result the host on multicasting
2221 network acquires a lot of useless route cache entries, sort of
2222 SDR messages from all the world. Now we try to get rid of them.
2223 Really, provided software IP multicast filter is organized
2224 reasonably (at least, hashed), it does not result in a slowdown
2225 comparing with route cache reject entries.
2226 Note, that multicast routers are not affected, because
2227 route cache entry is created eventually.
2228 */
Joe Perchesf97c1e02007-12-16 13:45:43 -08002229 if (ipv4_is_multicast(daddr)) {
Eric Dumazet96d36222010-06-02 19:21:31 +00002230 struct in_device *in_dev = __in_dev_get_rcu(dev);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002231
Eric Dumazet96d36222010-06-02 19:21:31 +00002232 if (in_dev) {
David S. Millerdbdd9a52011-03-10 16:34:38 -08002233 int our = ip_check_mc_rcu(in_dev, daddr, saddr,
2234 ip_hdr(skb)->protocol);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002235 if (our
2236#ifdef CONFIG_IP_MROUTE
Joe Perches9d4fb272009-11-23 10:41:23 -08002237 ||
2238 (!ipv4_is_local_multicast(daddr) &&
2239 IN_DEV_MFORWARD(in_dev))
Linus Torvalds1da177e2005-04-16 15:20:36 -07002240#endif
Joe Perches9d4fb272009-11-23 10:41:23 -08002241 ) {
Eric Dumazet96d36222010-06-02 19:21:31 +00002242 int res = ip_route_input_mc(skb, daddr, saddr,
2243 tos, dev, our);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002244 rcu_read_unlock();
Eric Dumazet96d36222010-06-02 19:21:31 +00002245 return res;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002246 }
2247 }
2248 rcu_read_unlock();
2249 return -EINVAL;
2250 }
David S. Millerc10237e2012-06-27 17:05:06 -07002251 res = ip_route_input_slow(skb, daddr, saddr, tos, dev);
Eric Dumazet96d36222010-06-02 19:21:31 +00002252 rcu_read_unlock();
2253 return res;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002254}
Eric Dumazet407eadd2010-05-10 11:32:55 +00002255EXPORT_SYMBOL(ip_route_input_common);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002256
Eric Dumazetebc0ffa2010-10-05 10:41:36 +00002257/* called with rcu_read_lock() */
David S. Miller982721f2011-02-16 21:44:24 -08002258static struct rtable *__mkroute_output(const struct fib_result *res,
David S. Miller68a5e3d2011-03-11 20:07:33 -05002259 const struct flowi4 *fl4,
David S. Miller813b3b52011-04-28 14:48:42 -07002260 __be32 orig_daddr, __be32 orig_saddr,
Julian Anastasovf61759e2011-12-02 11:39:42 +00002261 int orig_oif, __u8 orig_rtos,
2262 struct net_device *dev_out,
David S. Miller5ada5522011-02-17 15:29:00 -08002263 unsigned int flags)
Linus Torvalds1da177e2005-04-16 15:20:36 -07002264{
David S. Miller982721f2011-02-16 21:44:24 -08002265 struct fib_info *fi = res->fi;
David S. Miller5ada5522011-02-17 15:29:00 -08002266 struct in_device *in_dev;
David S. Miller982721f2011-02-16 21:44:24 -08002267 u16 type = res->type;
David S. Miller5ada5522011-02-17 15:29:00 -08002268 struct rtable *rth;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002269
Thomas Grafd0daebc32012-06-12 00:44:01 +00002270 in_dev = __in_dev_get_rcu(dev_out);
2271 if (!in_dev)
David S. Miller5ada5522011-02-17 15:29:00 -08002272 return ERR_PTR(-EINVAL);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002273
Thomas Grafd0daebc32012-06-12 00:44:01 +00002274 if (likely(!IN_DEV_ROUTE_LOCALNET(in_dev)))
2275 if (ipv4_is_loopback(fl4->saddr) && !(dev_out->flags & IFF_LOOPBACK))
2276 return ERR_PTR(-EINVAL);
2277
David S. Miller68a5e3d2011-03-11 20:07:33 -05002278 if (ipv4_is_lbcast(fl4->daddr))
David S. Miller982721f2011-02-16 21:44:24 -08002279 type = RTN_BROADCAST;
David S. Miller68a5e3d2011-03-11 20:07:33 -05002280 else if (ipv4_is_multicast(fl4->daddr))
David S. Miller982721f2011-02-16 21:44:24 -08002281 type = RTN_MULTICAST;
David S. Miller68a5e3d2011-03-11 20:07:33 -05002282 else if (ipv4_is_zeronet(fl4->daddr))
David S. Miller5ada5522011-02-17 15:29:00 -08002283 return ERR_PTR(-EINVAL);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002284
2285 if (dev_out->flags & IFF_LOOPBACK)
2286 flags |= RTCF_LOCAL;
2287
David S. Miller982721f2011-02-16 21:44:24 -08002288 if (type == RTN_BROADCAST) {
Linus Torvalds1da177e2005-04-16 15:20:36 -07002289 flags |= RTCF_BROADCAST | RTCF_LOCAL;
David S. Miller982721f2011-02-16 21:44:24 -08002290 fi = NULL;
2291 } else if (type == RTN_MULTICAST) {
Eric Dumazetdd28d1a2010-09-29 11:53:50 +00002292 flags |= RTCF_MULTICAST | RTCF_LOCAL;
David S. Miller813b3b52011-04-28 14:48:42 -07002293 if (!ip_check_mc_rcu(in_dev, fl4->daddr, fl4->saddr,
2294 fl4->flowi4_proto))
Linus Torvalds1da177e2005-04-16 15:20:36 -07002295 flags &= ~RTCF_LOCAL;
2296 /* If multicast route do not exist use
Eric Dumazetdd28d1a2010-09-29 11:53:50 +00002297 * default one, but do not gateway in this case.
2298 * Yes, it is hack.
Linus Torvalds1da177e2005-04-16 15:20:36 -07002299 */
David S. Miller982721f2011-02-16 21:44:24 -08002300 if (fi && res->prefixlen < 4)
2301 fi = NULL;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002302 }
2303
David S. Miller5c1e6aa2011-04-28 14:13:38 -07002304 rth = rt_dst_alloc(dev_out,
2305 IN_DEV_CONF_GET(in_dev, NOPOLICY),
David S. Miller0c4dcd52011-02-17 15:42:37 -08002306 IN_DEV_CONF_GET(in_dev, NOXFRM));
Dimitris Michailidis8391d072010-10-07 14:48:38 +00002307 if (!rth)
David S. Miller5ada5522011-02-17 15:29:00 -08002308 return ERR_PTR(-ENOBUFS);
Dimitris Michailidis8391d072010-10-07 14:48:38 +00002309
David S. Millercf911662011-04-28 14:31:47 -07002310 rth->dst.output = ip_output;
2311
David S. Miller813b3b52011-04-28 14:48:42 -07002312 rth->rt_key_dst = orig_daddr;
2313 rth->rt_key_src = orig_saddr;
David S. Millercf911662011-04-28 14:31:47 -07002314 rth->rt_genid = rt_genid(dev_net(dev_out));
2315 rth->rt_flags = flags;
2316 rth->rt_type = type;
Julian Anastasovf61759e2011-12-02 11:39:42 +00002317 rth->rt_key_tos = orig_rtos;
David S. Miller68a5e3d2011-03-11 20:07:33 -05002318 rth->rt_dst = fl4->daddr;
2319 rth->rt_src = fl4->saddr;
OGAWA Hirofumi1b86a582011-04-07 14:04:08 -07002320 rth->rt_route_iif = 0;
David S. Miller813b3b52011-04-28 14:48:42 -07002321 rth->rt_iif = orig_oif ? : dev_out->ifindex;
2322 rth->rt_oif = orig_oif;
2323 rth->rt_mark = fl4->flowi4_mark;
David S. Miller59436342012-07-10 06:58:42 -07002324 rth->rt_pmtu = 0;
David S. Miller68a5e3d2011-03-11 20:07:33 -05002325 rth->rt_gateway = fl4->daddr;
David S. Miller8b96d222012-06-11 02:01:56 -07002326 rt_init_peer(rth, (res->table ?
2327 &res->table->tb_peers :
2328 dev_net(dev_out)->ipv4.peers));
David S. Millercf911662011-04-28 14:31:47 -07002329 rth->fi = NULL;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002330
2331 RT_CACHE_STAT_INC(out_slow_tot);
2332
David S. Miller41347dc2012-06-28 04:05:27 -07002333 if (flags & RTCF_LOCAL)
Changli Gaod8d1f302010-06-10 23:31:35 -07002334 rth->dst.input = ip_local_deliver;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002335 if (flags & (RTCF_BROADCAST | RTCF_MULTICAST)) {
YOSHIFUJI Hideakie905a9e2007-02-09 23:24:47 +09002336 if (flags & RTCF_LOCAL &&
Linus Torvalds1da177e2005-04-16 15:20:36 -07002337 !(dev_out->flags & IFF_LOOPBACK)) {
Changli Gaod8d1f302010-06-10 23:31:35 -07002338 rth->dst.output = ip_mc_output;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002339 RT_CACHE_STAT_INC(out_slow_mc);
2340 }
2341#ifdef CONFIG_IP_MROUTE
David S. Miller982721f2011-02-16 21:44:24 -08002342 if (type == RTN_MULTICAST) {
Linus Torvalds1da177e2005-04-16 15:20:36 -07002343 if (IN_DEV_MFORWARD(in_dev) &&
David S. Miller813b3b52011-04-28 14:48:42 -07002344 !ipv4_is_local_multicast(fl4->daddr)) {
Changli Gaod8d1f302010-06-10 23:31:35 -07002345 rth->dst.input = ip_mr_input;
2346 rth->dst.output = ip_mc_output;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002347 }
2348 }
2349#endif
2350 }
2351
David S. Miller813b3b52011-04-28 14:48:42 -07002352 rt_set_nexthop(rth, fl4, res, fi, type, 0);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002353
Eric Dumazet7586ece2012-06-20 05:02:19 +00002354 if (fl4->flowi4_flags & FLOWI_FLAG_RT_NOCACHE)
2355 rth->dst.flags |= DST_NOCACHE;
2356
David S. Miller5ada5522011-02-17 15:29:00 -08002357 return rth;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002358}
2359
Linus Torvalds1da177e2005-04-16 15:20:36 -07002360/*
2361 * Major route resolver routine.
Eric Dumazet0197aa32010-09-30 03:33:58 +00002362 * called with rcu_read_lock();
Linus Torvalds1da177e2005-04-16 15:20:36 -07002363 */
2364
David S. Miller813b3b52011-04-28 14:48:42 -07002365static struct rtable *ip_route_output_slow(struct net *net, struct flowi4 *fl4)
Linus Torvalds1da177e2005-04-16 15:20:36 -07002366{
Linus Torvalds1da177e2005-04-16 15:20:36 -07002367 struct net_device *dev_out = NULL;
Julian Anastasovf61759e2011-12-02 11:39:42 +00002368 __u8 tos = RT_FL_TOS(fl4);
David S. Miller813b3b52011-04-28 14:48:42 -07002369 unsigned int flags = 0;
2370 struct fib_result res;
David S. Miller5ada5522011-02-17 15:29:00 -08002371 struct rtable *rth;
David S. Miller813b3b52011-04-28 14:48:42 -07002372 __be32 orig_daddr;
2373 __be32 orig_saddr;
2374 int orig_oif;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002375
2376 res.fi = NULL;
David S. Miller8b96d222012-06-11 02:01:56 -07002377 res.table = NULL;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002378#ifdef CONFIG_IP_MULTIPLE_TABLES
2379 res.r = NULL;
2380#endif
2381
David S. Miller813b3b52011-04-28 14:48:42 -07002382 orig_daddr = fl4->daddr;
2383 orig_saddr = fl4->saddr;
2384 orig_oif = fl4->flowi4_oif;
2385
2386 fl4->flowi4_iif = net->loopback_dev->ifindex;
2387 fl4->flowi4_tos = tos & IPTOS_RT_MASK;
2388 fl4->flowi4_scope = ((tos & RTO_ONLINK) ?
2389 RT_SCOPE_LINK : RT_SCOPE_UNIVERSE);
David S. Miller44713b62011-03-04 21:24:47 -08002390
David S. Miller010c2702011-02-17 15:37:09 -08002391 rcu_read_lock();
David S. Miller813b3b52011-04-28 14:48:42 -07002392 if (fl4->saddr) {
David S. Millerb23dd4f2011-03-02 14:31:35 -08002393 rth = ERR_PTR(-EINVAL);
David S. Miller813b3b52011-04-28 14:48:42 -07002394 if (ipv4_is_multicast(fl4->saddr) ||
2395 ipv4_is_lbcast(fl4->saddr) ||
2396 ipv4_is_zeronet(fl4->saddr))
Linus Torvalds1da177e2005-04-16 15:20:36 -07002397 goto out;
2398
Linus Torvalds1da177e2005-04-16 15:20:36 -07002399 /* I removed check for oif == dev_out->oif here.
2400 It was wrong for two reasons:
Denis V. Lunev1ab35272008-01-22 22:04:30 -08002401 1. ip_dev_find(net, saddr) can return wrong iface, if saddr
2402 is assigned to multiple interfaces.
Linus Torvalds1da177e2005-04-16 15:20:36 -07002403 2. Moreover, we are allowed to send packets with saddr
2404 of another iface. --ANK
2405 */
2406
David S. Miller813b3b52011-04-28 14:48:42 -07002407 if (fl4->flowi4_oif == 0 &&
2408 (ipv4_is_multicast(fl4->daddr) ||
2409 ipv4_is_lbcast(fl4->daddr))) {
Julian Anastasova210d012008-10-01 07:28:28 -07002410 /* It is equivalent to inet_addr_type(saddr) == RTN_LOCAL */
David S. Miller813b3b52011-04-28 14:48:42 -07002411 dev_out = __ip_dev_find(net, fl4->saddr, false);
Julian Anastasova210d012008-10-01 07:28:28 -07002412 if (dev_out == NULL)
2413 goto out;
2414
Linus Torvalds1da177e2005-04-16 15:20:36 -07002415 /* Special hack: user can direct multicasts
2416 and limited broadcast via necessary interface
2417 without fiddling with IP_MULTICAST_IF or IP_PKTINFO.
2418 This hack is not just for fun, it allows
2419 vic,vat and friends to work.
2420 They bind socket to loopback, set ttl to zero
2421 and expect that it will work.
2422 From the viewpoint of routing cache they are broken,
2423 because we are not allowed to build multicast path
2424 with loopback source addr (look, routing cache
2425 cannot know, that ttl is zero, so that packet
2426 will not leave this host and route is valid).
2427 Luckily, this hack is good workaround.
2428 */
2429
David S. Miller813b3b52011-04-28 14:48:42 -07002430 fl4->flowi4_oif = dev_out->ifindex;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002431 goto make_route;
2432 }
Julian Anastasova210d012008-10-01 07:28:28 -07002433
David S. Miller813b3b52011-04-28 14:48:42 -07002434 if (!(fl4->flowi4_flags & FLOWI_FLAG_ANYSRC)) {
Julian Anastasova210d012008-10-01 07:28:28 -07002435 /* It is equivalent to inet_addr_type(saddr) == RTN_LOCAL */
David S. Miller813b3b52011-04-28 14:48:42 -07002436 if (!__ip_dev_find(net, fl4->saddr, false))
Julian Anastasova210d012008-10-01 07:28:28 -07002437 goto out;
Julian Anastasova210d012008-10-01 07:28:28 -07002438 }
Linus Torvalds1da177e2005-04-16 15:20:36 -07002439 }
2440
2441
David S. Miller813b3b52011-04-28 14:48:42 -07002442 if (fl4->flowi4_oif) {
2443 dev_out = dev_get_by_index_rcu(net, fl4->flowi4_oif);
David S. Millerb23dd4f2011-03-02 14:31:35 -08002444 rth = ERR_PTR(-ENODEV);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002445 if (dev_out == NULL)
2446 goto out;
Herbert Xue5ed6392005-10-03 14:35:55 -07002447
2448 /* RACE: Check return value of inet_select_addr instead. */
Eric Dumazetfc75fc82010-12-22 04:39:39 +00002449 if (!(dev_out->flags & IFF_UP) || !__in_dev_get_rcu(dev_out)) {
David S. Millerb23dd4f2011-03-02 14:31:35 -08002450 rth = ERR_PTR(-ENETUNREACH);
Eric Dumazetfc75fc82010-12-22 04:39:39 +00002451 goto out;
2452 }
David S. Miller813b3b52011-04-28 14:48:42 -07002453 if (ipv4_is_local_multicast(fl4->daddr) ||
2454 ipv4_is_lbcast(fl4->daddr)) {
2455 if (!fl4->saddr)
2456 fl4->saddr = inet_select_addr(dev_out, 0,
2457 RT_SCOPE_LINK);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002458 goto make_route;
2459 }
David S. Miller813b3b52011-04-28 14:48:42 -07002460 if (fl4->saddr) {
2461 if (ipv4_is_multicast(fl4->daddr))
2462 fl4->saddr = inet_select_addr(dev_out, 0,
2463 fl4->flowi4_scope);
2464 else if (!fl4->daddr)
2465 fl4->saddr = inet_select_addr(dev_out, 0,
2466 RT_SCOPE_HOST);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002467 }
2468 }
2469
David S. Miller813b3b52011-04-28 14:48:42 -07002470 if (!fl4->daddr) {
2471 fl4->daddr = fl4->saddr;
2472 if (!fl4->daddr)
2473 fl4->daddr = fl4->saddr = htonl(INADDR_LOOPBACK);
Denis V. Lunevb40afd02008-01-22 22:06:19 -08002474 dev_out = net->loopback_dev;
David S. Miller813b3b52011-04-28 14:48:42 -07002475 fl4->flowi4_oif = net->loopback_dev->ifindex;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002476 res.type = RTN_LOCAL;
2477 flags |= RTCF_LOCAL;
2478 goto make_route;
2479 }
2480
David S. Miller813b3b52011-04-28 14:48:42 -07002481 if (fib_lookup(net, fl4, &res)) {
Linus Torvalds1da177e2005-04-16 15:20:36 -07002482 res.fi = NULL;
David S. Miller8b96d222012-06-11 02:01:56 -07002483 res.table = NULL;
David S. Miller813b3b52011-04-28 14:48:42 -07002484 if (fl4->flowi4_oif) {
Linus Torvalds1da177e2005-04-16 15:20:36 -07002485 /* Apparently, routing tables are wrong. Assume,
2486 that the destination is on link.
2487
2488 WHY? DW.
2489 Because we are allowed to send to iface
2490 even if it has NO routes and NO assigned
2491 addresses. When oif is specified, routing
2492 tables are looked up with only one purpose:
2493 to catch if destination is gatewayed, rather than
2494 direct. Moreover, if MSG_DONTROUTE is set,
2495 we send packet, ignoring both routing tables
2496 and ifaddr state. --ANK
2497
2498
2499 We could make it even if oif is unknown,
2500 likely IPv6, but we do not.
2501 */
2502
David S. Miller813b3b52011-04-28 14:48:42 -07002503 if (fl4->saddr == 0)
2504 fl4->saddr = inet_select_addr(dev_out, 0,
2505 RT_SCOPE_LINK);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002506 res.type = RTN_UNICAST;
2507 goto make_route;
2508 }
David S. Millerb23dd4f2011-03-02 14:31:35 -08002509 rth = ERR_PTR(-ENETUNREACH);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002510 goto out;
2511 }
Linus Torvalds1da177e2005-04-16 15:20:36 -07002512
2513 if (res.type == RTN_LOCAL) {
David S. Miller813b3b52011-04-28 14:48:42 -07002514 if (!fl4->saddr) {
Joel Sing9fc3bbb2011-01-03 20:24:20 +00002515 if (res.fi->fib_prefsrc)
David S. Miller813b3b52011-04-28 14:48:42 -07002516 fl4->saddr = res.fi->fib_prefsrc;
Joel Sing9fc3bbb2011-01-03 20:24:20 +00002517 else
David S. Miller813b3b52011-04-28 14:48:42 -07002518 fl4->saddr = fl4->daddr;
Joel Sing9fc3bbb2011-01-03 20:24:20 +00002519 }
Denis V. Lunevb40afd02008-01-22 22:06:19 -08002520 dev_out = net->loopback_dev;
David S. Miller813b3b52011-04-28 14:48:42 -07002521 fl4->flowi4_oif = dev_out->ifindex;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002522 res.fi = NULL;
2523 flags |= RTCF_LOCAL;
2524 goto make_route;
2525 }
2526
2527#ifdef CONFIG_IP_ROUTE_MULTIPATH
David S. Miller813b3b52011-04-28 14:48:42 -07002528 if (res.fi->fib_nhs > 1 && fl4->flowi4_oif == 0)
David S. Miller1b7fe5932011-03-10 17:01:16 -08002529 fib_select_multipath(&res);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002530 else
2531#endif
David S. Miller21d8c492011-04-14 14:49:37 -07002532 if (!res.prefixlen &&
2533 res.table->tb_num_default > 1 &&
David S. Miller813b3b52011-04-28 14:48:42 -07002534 res.type == RTN_UNICAST && !fl4->flowi4_oif)
David S. Miller0c838ff2011-01-31 16:16:50 -08002535 fib_select_default(&res);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002536
David S. Miller813b3b52011-04-28 14:48:42 -07002537 if (!fl4->saddr)
2538 fl4->saddr = FIB_RES_PREFSRC(net, res);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002539
Linus Torvalds1da177e2005-04-16 15:20:36 -07002540 dev_out = FIB_RES_DEV(res);
David S. Miller813b3b52011-04-28 14:48:42 -07002541 fl4->flowi4_oif = dev_out->ifindex;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002542
2543
2544make_route:
David S. Miller813b3b52011-04-28 14:48:42 -07002545 rth = __mkroute_output(&res, fl4, orig_daddr, orig_saddr, orig_oif,
Julian Anastasovf61759e2011-12-02 11:39:42 +00002546 tos, dev_out, flags);
David S. Millerb23dd4f2011-03-02 14:31:35 -08002547 if (!IS_ERR(rth)) {
David S. Miller5ada5522011-02-17 15:29:00 -08002548 unsigned int hash;
2549
David S. Miller813b3b52011-04-28 14:48:42 -07002550 hash = rt_hash(orig_daddr, orig_saddr, orig_oif,
David S. Miller5ada5522011-02-17 15:29:00 -08002551 rt_genid(dev_net(dev_out)));
David S. Miller813b3b52011-04-28 14:48:42 -07002552 rth = rt_intern_hash(hash, rth, NULL, orig_oif);
David S. Miller5ada5522011-02-17 15:29:00 -08002553 }
Linus Torvalds1da177e2005-04-16 15:20:36 -07002554
David S. Miller010c2702011-02-17 15:37:09 -08002555out:
2556 rcu_read_unlock();
David S. Millerb23dd4f2011-03-02 14:31:35 -08002557 return rth;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002558}
2559
David S. Miller813b3b52011-04-28 14:48:42 -07002560struct rtable *__ip_route_output_key(struct net *net, struct flowi4 *flp4)
Linus Torvalds1da177e2005-04-16 15:20:36 -07002561{
Linus Torvalds1da177e2005-04-16 15:20:36 -07002562 struct rtable *rth;
David S. Miller010c2702011-02-17 15:37:09 -08002563 unsigned int hash;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002564
Neil Horman1080d702008-10-27 12:28:25 -07002565 if (!rt_caching(net))
2566 goto slow_output;
2567
David S. Miller9d6ec932011-03-12 01:12:47 -05002568 hash = rt_hash(flp4->daddr, flp4->saddr, flp4->flowi4_oif, rt_genid(net));
Linus Torvalds1da177e2005-04-16 15:20:36 -07002569
2570 rcu_read_lock_bh();
Paul E. McKenneya898def2010-02-22 17:04:49 -08002571 for (rth = rcu_dereference_bh(rt_hash_table[hash].chain); rth;
Changli Gaod8d1f302010-06-10 23:31:35 -07002572 rth = rcu_dereference_bh(rth->dst.rt_next)) {
David S. Miller9d6ec932011-03-12 01:12:47 -05002573 if (rth->rt_key_dst == flp4->daddr &&
2574 rth->rt_key_src == flp4->saddr &&
David S. Millerc7537962010-11-11 17:07:48 -08002575 rt_is_output_route(rth) &&
David S. Miller9d6ec932011-03-12 01:12:47 -05002576 rth->rt_oif == flp4->flowi4_oif &&
2577 rth->rt_mark == flp4->flowi4_mark &&
David S. Miller475949d2011-05-03 19:45:15 -07002578 !((rth->rt_key_tos ^ flp4->flowi4_tos) &
Denis V. Lunevb5921912008-01-22 23:50:25 -08002579 (IPTOS_RT_MASK | RTO_ONLINK)) &&
Changli Gaod8d1f302010-06-10 23:31:35 -07002580 net_eq(dev_net(rth->dst.dev), net) &&
Denis V. Luneve84f84f2008-07-05 19:04:32 -07002581 !rt_is_expired(rth)) {
Changli Gaod8d1f302010-06-10 23:31:35 -07002582 dst_use(&rth->dst, jiffies);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002583 RT_CACHE_STAT_INC(out_hit);
2584 rcu_read_unlock_bh();
David S. Miller56157872011-05-02 14:37:45 -07002585 if (!flp4->saddr)
2586 flp4->saddr = rth->rt_src;
2587 if (!flp4->daddr)
2588 flp4->daddr = rth->rt_dst;
David S. Millerb23dd4f2011-03-02 14:31:35 -08002589 return rth;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002590 }
2591 RT_CACHE_STAT_INC(out_hlist_search);
2592 }
2593 rcu_read_unlock_bh();
2594
Neil Horman1080d702008-10-27 12:28:25 -07002595slow_output:
David S. Miller9d6ec932011-03-12 01:12:47 -05002596 return ip_route_output_slow(net, flp4);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002597}
Arnaldo Carvalho de Melod8c97a92005-08-09 20:12:12 -07002598EXPORT_SYMBOL_GPL(__ip_route_output_key);
2599
Jianzhao Wangae2688d2010-09-08 14:35:43 -07002600static struct dst_entry *ipv4_blackhole_dst_check(struct dst_entry *dst, u32 cookie)
2601{
2602 return NULL;
2603}
2604
Steffen Klassertebb762f2011-11-23 02:12:51 +00002605static unsigned int ipv4_blackhole_mtu(const struct dst_entry *dst)
Roland Dreierec831ea2011-01-31 13:16:00 -08002606{
Steffen Klassert618f9bc2011-11-23 02:13:31 +00002607 unsigned int mtu = dst_metric_raw(dst, RTAX_MTU);
2608
2609 return mtu ? : dst->dev->mtu;
Roland Dreierec831ea2011-01-31 13:16:00 -08002610}
2611
David S. Miller14e50e52007-05-24 18:17:54 -07002612static void ipv4_rt_blackhole_update_pmtu(struct dst_entry *dst, u32 mtu)
2613{
2614}
2615
Held Bernhard0972ddb2011-04-24 22:07:32 +00002616static u32 *ipv4_rt_blackhole_cow_metrics(struct dst_entry *dst,
2617 unsigned long old)
2618{
2619 return NULL;
2620}
2621
David S. Miller14e50e52007-05-24 18:17:54 -07002622static struct dst_ops ipv4_dst_blackhole_ops = {
2623 .family = AF_INET,
Harvey Harrison09640e62009-02-01 00:45:17 -08002624 .protocol = cpu_to_be16(ETH_P_IP),
David S. Miller14e50e52007-05-24 18:17:54 -07002625 .destroy = ipv4_dst_destroy,
Jianzhao Wangae2688d2010-09-08 14:35:43 -07002626 .check = ipv4_blackhole_dst_check,
Steffen Klassertebb762f2011-11-23 02:12:51 +00002627 .mtu = ipv4_blackhole_mtu,
Eric Dumazet214f45c2011-02-18 11:39:01 -08002628 .default_advmss = ipv4_default_advmss,
David S. Miller14e50e52007-05-24 18:17:54 -07002629 .update_pmtu = ipv4_rt_blackhole_update_pmtu,
Held Bernhard0972ddb2011-04-24 22:07:32 +00002630 .cow_metrics = ipv4_rt_blackhole_cow_metrics,
David S. Millerd3aaeb32011-07-18 00:40:17 -07002631 .neigh_lookup = ipv4_neigh_lookup,
David S. Miller14e50e52007-05-24 18:17:54 -07002632};
2633
David S. Miller2774c132011-03-01 14:59:04 -08002634struct dst_entry *ipv4_blackhole_route(struct net *net, struct dst_entry *dst_orig)
David S. Miller14e50e52007-05-24 18:17:54 -07002635{
David S. Miller5c1e6aa2011-04-28 14:13:38 -07002636 struct rtable *rt = dst_alloc(&ipv4_dst_blackhole_ops, NULL, 1, 0, 0);
David S. Miller2774c132011-03-01 14:59:04 -08002637 struct rtable *ort = (struct rtable *) dst_orig;
David S. Miller14e50e52007-05-24 18:17:54 -07002638
2639 if (rt) {
Changli Gaod8d1f302010-06-10 23:31:35 -07002640 struct dst_entry *new = &rt->dst;
David S. Miller14e50e52007-05-24 18:17:54 -07002641
David S. Miller14e50e52007-05-24 18:17:54 -07002642 new->__use = 1;
Herbert Xu352e5122007-11-13 21:34:06 -08002643 new->input = dst_discard;
2644 new->output = dst_discard;
David S. Miller14e50e52007-05-24 18:17:54 -07002645
Changli Gaod8d1f302010-06-10 23:31:35 -07002646 new->dev = ort->dst.dev;
David S. Miller14e50e52007-05-24 18:17:54 -07002647 if (new->dev)
2648 dev_hold(new->dev);
2649
David S. Miller5e2b61f2011-03-04 21:47:09 -08002650 rt->rt_key_dst = ort->rt_key_dst;
2651 rt->rt_key_src = ort->rt_key_src;
David S. Miller475949d2011-05-03 19:45:15 -07002652 rt->rt_key_tos = ort->rt_key_tos;
OGAWA Hirofumi1b86a582011-04-07 14:04:08 -07002653 rt->rt_route_iif = ort->rt_route_iif;
David S. Miller5e2b61f2011-03-04 21:47:09 -08002654 rt->rt_iif = ort->rt_iif;
2655 rt->rt_oif = ort->rt_oif;
2656 rt->rt_mark = ort->rt_mark;
David S. Miller59436342012-07-10 06:58:42 -07002657 rt->rt_pmtu = ort->rt_pmtu;
David S. Miller14e50e52007-05-24 18:17:54 -07002658
Denis V. Luneve84f84f2008-07-05 19:04:32 -07002659 rt->rt_genid = rt_genid(net);
David S. Miller14e50e52007-05-24 18:17:54 -07002660 rt->rt_flags = ort->rt_flags;
2661 rt->rt_type = ort->rt_type;
2662 rt->rt_dst = ort->rt_dst;
2663 rt->rt_src = ort->rt_src;
David S. Miller14e50e52007-05-24 18:17:54 -07002664 rt->rt_gateway = ort->rt_gateway;
David S. Miller97bab732012-06-09 22:36:36 -07002665 rt_transfer_peer(rt, ort);
David S. Miller62fa8a82011-01-26 20:51:05 -08002666 rt->fi = ort->fi;
2667 if (rt->fi)
2668 atomic_inc(&rt->fi->fib_clntref);
David S. Miller14e50e52007-05-24 18:17:54 -07002669
2670 dst_free(new);
2671 }
2672
David S. Miller2774c132011-03-01 14:59:04 -08002673 dst_release(dst_orig);
2674
2675 return rt ? &rt->dst : ERR_PTR(-ENOMEM);
David S. Miller14e50e52007-05-24 18:17:54 -07002676}
2677
David S. Miller9d6ec932011-03-12 01:12:47 -05002678struct rtable *ip_route_output_flow(struct net *net, struct flowi4 *flp4,
David S. Millerb23dd4f2011-03-02 14:31:35 -08002679 struct sock *sk)
Linus Torvalds1da177e2005-04-16 15:20:36 -07002680{
David S. Miller9d6ec932011-03-12 01:12:47 -05002681 struct rtable *rt = __ip_route_output_key(net, flp4);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002682
David S. Millerb23dd4f2011-03-02 14:31:35 -08002683 if (IS_ERR(rt))
2684 return rt;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002685
David S. Miller56157872011-05-02 14:37:45 -07002686 if (flp4->flowi4_proto)
David S. Miller9d6ec932011-03-12 01:12:47 -05002687 rt = (struct rtable *) xfrm_lookup(net, &rt->dst,
2688 flowi4_to_flowi(flp4),
2689 sk, 0);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002690
David S. Millerb23dd4f2011-03-02 14:31:35 -08002691 return rt;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002692}
Arnaldo Carvalho de Melod8c97a92005-08-09 20:12:12 -07002693EXPORT_SYMBOL_GPL(ip_route_output_flow);
2694
Benjamin Thery4feb88e2009-01-22 04:56:23 +00002695static int rt_fill_info(struct net *net,
2696 struct sk_buff *skb, u32 pid, u32 seq, int event,
Jamal Hadi Salimb6544c02005-06-18 22:54:12 -07002697 int nowait, unsigned int flags)
Linus Torvalds1da177e2005-04-16 15:20:36 -07002698{
Eric Dumazet511c3f92009-06-02 05:14:27 +00002699 struct rtable *rt = skb_rtable(skb);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002700 struct rtmsg *r;
Thomas Grafbe403ea2006-08-17 18:15:17 -07002701 struct nlmsghdr *nlh;
Steffen Klassert2bc8ca42011-10-11 01:12:02 +00002702 unsigned long expires = 0;
David S. Miller81166dd2012-07-10 03:14:24 -07002703 u32 id = 0, error;
Thomas Grafbe403ea2006-08-17 18:15:17 -07002704
2705 nlh = nlmsg_put(skb, pid, seq, event, sizeof(*r), flags);
2706 if (nlh == NULL)
Patrick McHardy26932562007-01-31 23:16:40 -08002707 return -EMSGSIZE;
Thomas Grafbe403ea2006-08-17 18:15:17 -07002708
2709 r = nlmsg_data(nlh);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002710 r->rtm_family = AF_INET;
2711 r->rtm_dst_len = 32;
2712 r->rtm_src_len = 0;
David S. Miller475949d2011-05-03 19:45:15 -07002713 r->rtm_tos = rt->rt_key_tos;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002714 r->rtm_table = RT_TABLE_MAIN;
David S. Millerf3756b72012-04-01 20:39:02 -04002715 if (nla_put_u32(skb, RTA_TABLE, RT_TABLE_MAIN))
2716 goto nla_put_failure;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002717 r->rtm_type = rt->rt_type;
2718 r->rtm_scope = RT_SCOPE_UNIVERSE;
2719 r->rtm_protocol = RTPROT_UNSPEC;
2720 r->rtm_flags = (rt->rt_flags & ~0xFFFF) | RTM_F_CLONED;
2721 if (rt->rt_flags & RTCF_NOTIFY)
2722 r->rtm_flags |= RTM_F_NOTIFY;
Thomas Grafbe403ea2006-08-17 18:15:17 -07002723
David S. Millerf3756b72012-04-01 20:39:02 -04002724 if (nla_put_be32(skb, RTA_DST, rt->rt_dst))
2725 goto nla_put_failure;
David S. Miller5e2b61f2011-03-04 21:47:09 -08002726 if (rt->rt_key_src) {
Linus Torvalds1da177e2005-04-16 15:20:36 -07002727 r->rtm_src_len = 32;
David S. Millerf3756b72012-04-01 20:39:02 -04002728 if (nla_put_be32(skb, RTA_SRC, rt->rt_key_src))
2729 goto nla_put_failure;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002730 }
David S. Millerf3756b72012-04-01 20:39:02 -04002731 if (rt->dst.dev &&
2732 nla_put_u32(skb, RTA_OIF, rt->dst.dev->ifindex))
2733 goto nla_put_failure;
Patrick McHardyc7066f72011-01-14 13:36:42 +01002734#ifdef CONFIG_IP_ROUTE_CLASSID
David S. Millerf3756b72012-04-01 20:39:02 -04002735 if (rt->dst.tclassid &&
2736 nla_put_u32(skb, RTA_FLOW, rt->dst.tclassid))
2737 goto nla_put_failure;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002738#endif
David S. Miller41347dc2012-06-28 04:05:27 -07002739 if (!rt_is_input_route(rt) &&
2740 rt->rt_src != rt->rt_key_src) {
David S. Millerf3756b72012-04-01 20:39:02 -04002741 if (nla_put_be32(skb, RTA_PREFSRC, rt->rt_src))
2742 goto nla_put_failure;
2743 }
2744 if (rt->rt_dst != rt->rt_gateway &&
2745 nla_put_be32(skb, RTA_GATEWAY, rt->rt_gateway))
2746 goto nla_put_failure;
Thomas Grafbe403ea2006-08-17 18:15:17 -07002747
David S. Millerdefb3512010-12-08 21:16:57 -08002748 if (rtnetlink_put_metrics(skb, dst_metrics_ptr(&rt->dst)) < 0)
Thomas Grafbe403ea2006-08-17 18:15:17 -07002749 goto nla_put_failure;
2750
David S. Millerf3756b72012-04-01 20:39:02 -04002751 if (rt->rt_mark &&
2752 nla_put_be32(skb, RTA_MARK, rt->rt_mark))
2753 goto nla_put_failure;
Eric Dumazet963bfee2010-07-20 22:03:14 +00002754
Changli Gaod8d1f302010-06-10 23:31:35 -07002755 error = rt->dst.error;
David S. Miller97bab732012-06-09 22:36:36 -07002756 if (rt_has_peer(rt)) {
2757 const struct inet_peer *peer = rt_peer_ptr(rt);
2758 inet_peer_refcheck(peer);
Eric Dumazetfe6fe792011-06-08 06:07:07 +00002759 id = atomic_read(&peer->ip_id_count) & 0xffff;
David S. Miller59436342012-07-10 06:58:42 -07002760 }
2761 expires = rt->dst.expires;
2762 if (expires) {
2763 if (time_before(jiffies, expires))
2764 expires -= jiffies;
2765 else
2766 expires = 0;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002767 }
Thomas Grafbe403ea2006-08-17 18:15:17 -07002768
David S. Millerc7537962010-11-11 17:07:48 -08002769 if (rt_is_input_route(rt)) {
Linus Torvalds1da177e2005-04-16 15:20:36 -07002770#ifdef CONFIG_IP_MROUTE
Al Viroe4485152006-09-26 22:15:01 -07002771 __be32 dst = rt->rt_dst;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002772
Joe Perchesf97c1e02007-12-16 13:45:43 -08002773 if (ipv4_is_multicast(dst) && !ipv4_is_local_multicast(dst) &&
Benjamin Thery4feb88e2009-01-22 04:56:23 +00002774 IPV4_DEVCONF_ALL(net, MC_FORWARDING)) {
David S. Miller9a1b9492011-05-04 12:18:54 -07002775 int err = ipmr_get_route(net, skb,
2776 rt->rt_src, rt->rt_dst,
2777 r, nowait);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002778 if (err <= 0) {
2779 if (!nowait) {
2780 if (err == 0)
2781 return 0;
Thomas Grafbe403ea2006-08-17 18:15:17 -07002782 goto nla_put_failure;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002783 } else {
2784 if (err == -EMSGSIZE)
Thomas Grafbe403ea2006-08-17 18:15:17 -07002785 goto nla_put_failure;
Thomas Grafe3703b32006-11-27 09:27:07 -08002786 error = err;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002787 }
2788 }
2789 } else
2790#endif
David S. Millerf3756b72012-04-01 20:39:02 -04002791 if (nla_put_u32(skb, RTA_IIF, rt->rt_iif))
2792 goto nla_put_failure;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002793 }
2794
David S. Miller87a50692012-07-10 05:06:14 -07002795 if (rtnl_put_cacheinfo(skb, &rt->dst, id, expires, error) < 0)
Thomas Grafe3703b32006-11-27 09:27:07 -08002796 goto nla_put_failure;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002797
Thomas Grafbe403ea2006-08-17 18:15:17 -07002798 return nlmsg_end(skb, nlh);
2799
2800nla_put_failure:
Patrick McHardy26932562007-01-31 23:16:40 -08002801 nlmsg_cancel(skb, nlh);
2802 return -EMSGSIZE;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002803}
2804
Daniel Baluta5e73ea12012-04-15 01:34:41 +00002805static int inet_rtm_getroute(struct sk_buff *in_skb, struct nlmsghdr *nlh, void *arg)
Linus Torvalds1da177e2005-04-16 15:20:36 -07002806{
YOSHIFUJI Hideaki3b1e0a62008-03-26 02:26:21 +09002807 struct net *net = sock_net(in_skb->sk);
Thomas Grafd889ce32006-08-17 18:15:44 -07002808 struct rtmsg *rtm;
2809 struct nlattr *tb[RTA_MAX+1];
Linus Torvalds1da177e2005-04-16 15:20:36 -07002810 struct rtable *rt = NULL;
Al Viro9e12bb22006-09-26 21:25:20 -07002811 __be32 dst = 0;
2812 __be32 src = 0;
2813 u32 iif;
Thomas Grafd889ce32006-08-17 18:15:44 -07002814 int err;
Eric Dumazet963bfee2010-07-20 22:03:14 +00002815 int mark;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002816 struct sk_buff *skb;
2817
Thomas Grafd889ce32006-08-17 18:15:44 -07002818 err = nlmsg_parse(nlh, sizeof(*rtm), tb, RTA_MAX, rtm_ipv4_policy);
2819 if (err < 0)
2820 goto errout;
2821
2822 rtm = nlmsg_data(nlh);
2823
Linus Torvalds1da177e2005-04-16 15:20:36 -07002824 skb = alloc_skb(NLMSG_GOODSIZE, GFP_KERNEL);
Thomas Grafd889ce32006-08-17 18:15:44 -07002825 if (skb == NULL) {
2826 err = -ENOBUFS;
2827 goto errout;
2828 }
Linus Torvalds1da177e2005-04-16 15:20:36 -07002829
2830 /* Reserve room for dummy headers, this skb can pass
2831 through good chunk of routing engine.
2832 */
Arnaldo Carvalho de Melo459a98e2007-03-19 15:30:44 -07002833 skb_reset_mac_header(skb);
Arnaldo Carvalho de Meloc1d2bbe2007-04-10 20:45:18 -07002834 skb_reset_network_header(skb);
Stephen Hemmingerd2c962b2006-04-17 17:27:11 -07002835
2836 /* Bugfix: need to give ip_route_input enough of an IP header to not gag. */
Arnaldo Carvalho de Meloeddc9ec2007-04-20 22:47:35 -07002837 ip_hdr(skb)->protocol = IPPROTO_ICMP;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002838 skb_reserve(skb, MAX_HEADER + sizeof(struct iphdr));
2839
Al Viro17fb2c62006-09-26 22:15:25 -07002840 src = tb[RTA_SRC] ? nla_get_be32(tb[RTA_SRC]) : 0;
2841 dst = tb[RTA_DST] ? nla_get_be32(tb[RTA_DST]) : 0;
Thomas Grafd889ce32006-08-17 18:15:44 -07002842 iif = tb[RTA_IIF] ? nla_get_u32(tb[RTA_IIF]) : 0;
Eric Dumazet963bfee2010-07-20 22:03:14 +00002843 mark = tb[RTA_MARK] ? nla_get_u32(tb[RTA_MARK]) : 0;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002844
2845 if (iif) {
Thomas Grafd889ce32006-08-17 18:15:44 -07002846 struct net_device *dev;
2847
Denis V. Lunev19375042008-02-28 20:52:04 -08002848 dev = __dev_get_by_index(net, iif);
Thomas Grafd889ce32006-08-17 18:15:44 -07002849 if (dev == NULL) {
2850 err = -ENODEV;
2851 goto errout_free;
2852 }
2853
Linus Torvalds1da177e2005-04-16 15:20:36 -07002854 skb->protocol = htons(ETH_P_IP);
2855 skb->dev = dev;
Eric Dumazet963bfee2010-07-20 22:03:14 +00002856 skb->mark = mark;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002857 local_bh_disable();
2858 err = ip_route_input(skb, dst, src, rtm->rtm_tos, dev);
2859 local_bh_enable();
Thomas Grafd889ce32006-08-17 18:15:44 -07002860
Eric Dumazet511c3f92009-06-02 05:14:27 +00002861 rt = skb_rtable(skb);
Changli Gaod8d1f302010-06-10 23:31:35 -07002862 if (err == 0 && rt->dst.error)
2863 err = -rt->dst.error;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002864 } else {
David S. Miller68a5e3d2011-03-11 20:07:33 -05002865 struct flowi4 fl4 = {
2866 .daddr = dst,
2867 .saddr = src,
2868 .flowi4_tos = rtm->rtm_tos,
2869 .flowi4_oif = tb[RTA_OIF] ? nla_get_u32(tb[RTA_OIF]) : 0,
2870 .flowi4_mark = mark,
Thomas Grafd889ce32006-08-17 18:15:44 -07002871 };
David S. Miller9d6ec932011-03-12 01:12:47 -05002872 rt = ip_route_output_key(net, &fl4);
David S. Millerb23dd4f2011-03-02 14:31:35 -08002873
2874 err = 0;
2875 if (IS_ERR(rt))
2876 err = PTR_ERR(rt);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002877 }
Thomas Grafd889ce32006-08-17 18:15:44 -07002878
Linus Torvalds1da177e2005-04-16 15:20:36 -07002879 if (err)
Thomas Grafd889ce32006-08-17 18:15:44 -07002880 goto errout_free;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002881
Changli Gaod8d1f302010-06-10 23:31:35 -07002882 skb_dst_set(skb, &rt->dst);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002883 if (rtm->rtm_flags & RTM_F_NOTIFY)
2884 rt->rt_flags |= RTCF_NOTIFY;
2885
Benjamin Thery4feb88e2009-01-22 04:56:23 +00002886 err = rt_fill_info(net, skb, NETLINK_CB(in_skb).pid, nlh->nlmsg_seq,
Denis V. Lunev19375042008-02-28 20:52:04 -08002887 RTM_NEWROUTE, 0, 0);
Thomas Grafd889ce32006-08-17 18:15:44 -07002888 if (err <= 0)
2889 goto errout_free;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002890
Denis V. Lunev19375042008-02-28 20:52:04 -08002891 err = rtnl_unicast(skb, net, NETLINK_CB(in_skb).pid);
Thomas Grafd889ce32006-08-17 18:15:44 -07002892errout:
Thomas Graf2942e902006-08-15 00:30:25 -07002893 return err;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002894
Thomas Grafd889ce32006-08-17 18:15:44 -07002895errout_free:
Linus Torvalds1da177e2005-04-16 15:20:36 -07002896 kfree_skb(skb);
Thomas Grafd889ce32006-08-17 18:15:44 -07002897 goto errout;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002898}
2899
2900int ip_rt_dump(struct sk_buff *skb, struct netlink_callback *cb)
2901{
2902 struct rtable *rt;
2903 int h, s_h;
2904 int idx, s_idx;
Denis V. Lunev19375042008-02-28 20:52:04 -08002905 struct net *net;
2906
YOSHIFUJI Hideaki3b1e0a62008-03-26 02:26:21 +09002907 net = sock_net(skb->sk);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002908
2909 s_h = cb->args[0];
Eric Dumazetd8c92832008-01-07 21:52:14 -08002910 if (s_h < 0)
2911 s_h = 0;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002912 s_idx = idx = cb->args[1];
Eric Dumazeta6272662008-08-28 01:11:25 -07002913 for (h = s_h; h <= rt_hash_mask; h++, s_idx = 0) {
2914 if (!rt_hash_table[h].chain)
2915 continue;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002916 rcu_read_lock_bh();
Paul E. McKenneya898def2010-02-22 17:04:49 -08002917 for (rt = rcu_dereference_bh(rt_hash_table[h].chain), idx = 0; rt;
Changli Gaod8d1f302010-06-10 23:31:35 -07002918 rt = rcu_dereference_bh(rt->dst.rt_next), idx++) {
2919 if (!net_eq(dev_net(rt->dst.dev), net) || idx < s_idx)
Linus Torvalds1da177e2005-04-16 15:20:36 -07002920 continue;
Denis V. Luneve84f84f2008-07-05 19:04:32 -07002921 if (rt_is_expired(rt))
Eric Dumazet29e75252008-01-31 17:05:09 -08002922 continue;
Changli Gaod8d1f302010-06-10 23:31:35 -07002923 skb_dst_set_noref(skb, &rt->dst);
Benjamin Thery4feb88e2009-01-22 04:56:23 +00002924 if (rt_fill_info(net, skb, NETLINK_CB(cb->skb).pid,
YOSHIFUJI Hideakie905a9e2007-02-09 23:24:47 +09002925 cb->nlh->nlmsg_seq, RTM_NEWROUTE,
Jamal Hadi Salimb6544c02005-06-18 22:54:12 -07002926 1, NLM_F_MULTI) <= 0) {
Eric Dumazetadf30902009-06-02 05:19:30 +00002927 skb_dst_drop(skb);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002928 rcu_read_unlock_bh();
2929 goto done;
2930 }
Eric Dumazetadf30902009-06-02 05:19:30 +00002931 skb_dst_drop(skb);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002932 }
2933 rcu_read_unlock_bh();
2934 }
2935
2936done:
2937 cb->args[0] = h;
2938 cb->args[1] = idx;
2939 return skb->len;
2940}
2941
2942void ip_rt_multicast_event(struct in_device *in_dev)
2943{
Denis V. Lunev76e6ebf2008-07-05 19:00:44 -07002944 rt_cache_flush(dev_net(in_dev->dev), 0);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002945}
2946
2947#ifdef CONFIG_SYSCTL
Denis V. Lunev81c684d2008-07-08 03:05:28 -07002948static int ipv4_sysctl_rtcache_flush(ctl_table *__ctl, int write,
Alexey Dobriyan8d65af72009-09-23 15:57:19 -07002949 void __user *buffer,
Linus Torvalds1da177e2005-04-16 15:20:36 -07002950 size_t *lenp, loff_t *ppos)
2951{
2952 if (write) {
Denis V. Lunev639e1042008-07-05 19:02:06 -07002953 int flush_delay;
Denis V. Lunev81c684d2008-07-08 03:05:28 -07002954 ctl_table ctl;
Denis V. Lunev39a23e72008-07-05 19:02:33 -07002955 struct net *net;
Denis V. Lunev639e1042008-07-05 19:02:06 -07002956
Denis V. Lunev81c684d2008-07-08 03:05:28 -07002957 memcpy(&ctl, __ctl, sizeof(ctl));
2958 ctl.data = &flush_delay;
Alexey Dobriyan8d65af72009-09-23 15:57:19 -07002959 proc_dointvec(&ctl, write, buffer, lenp, ppos);
Denis V. Lunev639e1042008-07-05 19:02:06 -07002960
Denis V. Lunev81c684d2008-07-08 03:05:28 -07002961 net = (struct net *)__ctl->extra1;
Denis V. Lunev39a23e72008-07-05 19:02:33 -07002962 rt_cache_flush(net, flush_delay);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002963 return 0;
YOSHIFUJI Hideakie905a9e2007-02-09 23:24:47 +09002964 }
Linus Torvalds1da177e2005-04-16 15:20:36 -07002965
2966 return -EINVAL;
2967}
2968
Al Viroeeb61f72008-07-27 08:59:33 +01002969static ctl_table ipv4_route_table[] = {
YOSHIFUJI Hideakie905a9e2007-02-09 23:24:47 +09002970 {
Linus Torvalds1da177e2005-04-16 15:20:36 -07002971 .procname = "gc_thresh",
2972 .data = &ipv4_dst_ops.gc_thresh,
2973 .maxlen = sizeof(int),
2974 .mode = 0644,
Alexey Dobriyan6d9f2392008-11-03 18:21:05 -08002975 .proc_handler = proc_dointvec,
Linus Torvalds1da177e2005-04-16 15:20:36 -07002976 },
2977 {
Linus Torvalds1da177e2005-04-16 15:20:36 -07002978 .procname = "max_size",
2979 .data = &ip_rt_max_size,
2980 .maxlen = sizeof(int),
2981 .mode = 0644,
Alexey Dobriyan6d9f2392008-11-03 18:21:05 -08002982 .proc_handler = proc_dointvec,
Linus Torvalds1da177e2005-04-16 15:20:36 -07002983 },
2984 {
2985 /* Deprecated. Use gc_min_interval_ms */
YOSHIFUJI Hideakie905a9e2007-02-09 23:24:47 +09002986
Linus Torvalds1da177e2005-04-16 15:20:36 -07002987 .procname = "gc_min_interval",
2988 .data = &ip_rt_gc_min_interval,
2989 .maxlen = sizeof(int),
2990 .mode = 0644,
Alexey Dobriyan6d9f2392008-11-03 18:21:05 -08002991 .proc_handler = proc_dointvec_jiffies,
Linus Torvalds1da177e2005-04-16 15:20:36 -07002992 },
2993 {
Linus Torvalds1da177e2005-04-16 15:20:36 -07002994 .procname = "gc_min_interval_ms",
2995 .data = &ip_rt_gc_min_interval,
2996 .maxlen = sizeof(int),
2997 .mode = 0644,
Alexey Dobriyan6d9f2392008-11-03 18:21:05 -08002998 .proc_handler = proc_dointvec_ms_jiffies,
Linus Torvalds1da177e2005-04-16 15:20:36 -07002999 },
3000 {
Linus Torvalds1da177e2005-04-16 15:20:36 -07003001 .procname = "gc_timeout",
3002 .data = &ip_rt_gc_timeout,
3003 .maxlen = sizeof(int),
3004 .mode = 0644,
Alexey Dobriyan6d9f2392008-11-03 18:21:05 -08003005 .proc_handler = proc_dointvec_jiffies,
Linus Torvalds1da177e2005-04-16 15:20:36 -07003006 },
3007 {
Eric Dumazet9f28a2f2011-12-21 15:47:16 -05003008 .procname = "gc_interval",
3009 .data = &ip_rt_gc_interval,
3010 .maxlen = sizeof(int),
3011 .mode = 0644,
3012 .proc_handler = proc_dointvec_jiffies,
3013 },
3014 {
Linus Torvalds1da177e2005-04-16 15:20:36 -07003015 .procname = "redirect_load",
3016 .data = &ip_rt_redirect_load,
3017 .maxlen = sizeof(int),
3018 .mode = 0644,
Alexey Dobriyan6d9f2392008-11-03 18:21:05 -08003019 .proc_handler = proc_dointvec,
Linus Torvalds1da177e2005-04-16 15:20:36 -07003020 },
3021 {
Linus Torvalds1da177e2005-04-16 15:20:36 -07003022 .procname = "redirect_number",
3023 .data = &ip_rt_redirect_number,
3024 .maxlen = sizeof(int),
3025 .mode = 0644,
Alexey Dobriyan6d9f2392008-11-03 18:21:05 -08003026 .proc_handler = proc_dointvec,
Linus Torvalds1da177e2005-04-16 15:20:36 -07003027 },
3028 {
Linus Torvalds1da177e2005-04-16 15:20:36 -07003029 .procname = "redirect_silence",
3030 .data = &ip_rt_redirect_silence,
3031 .maxlen = sizeof(int),
3032 .mode = 0644,
Alexey Dobriyan6d9f2392008-11-03 18:21:05 -08003033 .proc_handler = proc_dointvec,
Linus Torvalds1da177e2005-04-16 15:20:36 -07003034 },
3035 {
Linus Torvalds1da177e2005-04-16 15:20:36 -07003036 .procname = "error_cost",
3037 .data = &ip_rt_error_cost,
3038 .maxlen = sizeof(int),
3039 .mode = 0644,
Alexey Dobriyan6d9f2392008-11-03 18:21:05 -08003040 .proc_handler = proc_dointvec,
Linus Torvalds1da177e2005-04-16 15:20:36 -07003041 },
3042 {
Linus Torvalds1da177e2005-04-16 15:20:36 -07003043 .procname = "error_burst",
3044 .data = &ip_rt_error_burst,
3045 .maxlen = sizeof(int),
3046 .mode = 0644,
Alexey Dobriyan6d9f2392008-11-03 18:21:05 -08003047 .proc_handler = proc_dointvec,
Linus Torvalds1da177e2005-04-16 15:20:36 -07003048 },
3049 {
Linus Torvalds1da177e2005-04-16 15:20:36 -07003050 .procname = "gc_elasticity",
3051 .data = &ip_rt_gc_elasticity,
3052 .maxlen = sizeof(int),
3053 .mode = 0644,
Alexey Dobriyan6d9f2392008-11-03 18:21:05 -08003054 .proc_handler = proc_dointvec,
Linus Torvalds1da177e2005-04-16 15:20:36 -07003055 },
3056 {
Linus Torvalds1da177e2005-04-16 15:20:36 -07003057 .procname = "mtu_expires",
3058 .data = &ip_rt_mtu_expires,
3059 .maxlen = sizeof(int),
3060 .mode = 0644,
Alexey Dobriyan6d9f2392008-11-03 18:21:05 -08003061 .proc_handler = proc_dointvec_jiffies,
Linus Torvalds1da177e2005-04-16 15:20:36 -07003062 },
3063 {
Linus Torvalds1da177e2005-04-16 15:20:36 -07003064 .procname = "min_pmtu",
3065 .data = &ip_rt_min_pmtu,
3066 .maxlen = sizeof(int),
3067 .mode = 0644,
Alexey Dobriyan6d9f2392008-11-03 18:21:05 -08003068 .proc_handler = proc_dointvec,
Linus Torvalds1da177e2005-04-16 15:20:36 -07003069 },
3070 {
Linus Torvalds1da177e2005-04-16 15:20:36 -07003071 .procname = "min_adv_mss",
3072 .data = &ip_rt_min_advmss,
3073 .maxlen = sizeof(int),
3074 .mode = 0644,
Alexey Dobriyan6d9f2392008-11-03 18:21:05 -08003075 .proc_handler = proc_dointvec,
Linus Torvalds1da177e2005-04-16 15:20:36 -07003076 },
Eric W. Biedermanf8572d82009-11-05 13:32:03 -08003077 { }
Linus Torvalds1da177e2005-04-16 15:20:36 -07003078};
Denis V. Lunev39a23e72008-07-05 19:02:33 -07003079
Denis V. Lunev39a23e72008-07-05 19:02:33 -07003080static struct ctl_table ipv4_route_flush_table[] = {
3081 {
Denis V. Lunev39a23e72008-07-05 19:02:33 -07003082 .procname = "flush",
3083 .maxlen = sizeof(int),
3084 .mode = 0200,
Alexey Dobriyan6d9f2392008-11-03 18:21:05 -08003085 .proc_handler = ipv4_sysctl_rtcache_flush,
Denis V. Lunev39a23e72008-07-05 19:02:33 -07003086 },
Eric W. Biedermanf8572d82009-11-05 13:32:03 -08003087 { },
Denis V. Lunev39a23e72008-07-05 19:02:33 -07003088};
3089
3090static __net_init int sysctl_route_net_init(struct net *net)
3091{
3092 struct ctl_table *tbl;
3093
3094 tbl = ipv4_route_flush_table;
Octavian Purdila09ad9bc2009-11-25 15:14:13 -08003095 if (!net_eq(net, &init_net)) {
Denis V. Lunev39a23e72008-07-05 19:02:33 -07003096 tbl = kmemdup(tbl, sizeof(ipv4_route_flush_table), GFP_KERNEL);
3097 if (tbl == NULL)
3098 goto err_dup;
3099 }
3100 tbl[0].extra1 = net;
3101
Eric W. Biedermanec8f23c2012-04-19 13:44:49 +00003102 net->ipv4.route_hdr = register_net_sysctl(net, "net/ipv4/route", tbl);
Denis V. Lunev39a23e72008-07-05 19:02:33 -07003103 if (net->ipv4.route_hdr == NULL)
3104 goto err_reg;
3105 return 0;
3106
3107err_reg:
3108 if (tbl != ipv4_route_flush_table)
3109 kfree(tbl);
3110err_dup:
3111 return -ENOMEM;
3112}
3113
3114static __net_exit void sysctl_route_net_exit(struct net *net)
3115{
3116 struct ctl_table *tbl;
3117
3118 tbl = net->ipv4.route_hdr->ctl_table_arg;
3119 unregister_net_sysctl_table(net->ipv4.route_hdr);
3120 BUG_ON(tbl == ipv4_route_flush_table);
3121 kfree(tbl);
3122}
3123
3124static __net_initdata struct pernet_operations sysctl_route_ops = {
3125 .init = sysctl_route_net_init,
3126 .exit = sysctl_route_net_exit,
3127};
Linus Torvalds1da177e2005-04-16 15:20:36 -07003128#endif
3129
Neil Horman3ee94372010-05-08 01:57:52 -07003130static __net_init int rt_genid_init(struct net *net)
Denis V. Lunev9f5e97e2008-07-05 19:02:59 -07003131{
Neil Horman3ee94372010-05-08 01:57:52 -07003132 get_random_bytes(&net->ipv4.rt_genid,
3133 sizeof(net->ipv4.rt_genid));
David S. Miller436c3b62011-03-24 17:42:21 -07003134 get_random_bytes(&net->ipv4.dev_addr_genid,
3135 sizeof(net->ipv4.dev_addr_genid));
Denis V. Lunev9f5e97e2008-07-05 19:02:59 -07003136 return 0;
3137}
3138
Neil Horman3ee94372010-05-08 01:57:52 -07003139static __net_initdata struct pernet_operations rt_genid_ops = {
3140 .init = rt_genid_init,
Denis V. Lunev9f5e97e2008-07-05 19:02:59 -07003141};
3142
David S. Millerc3426b42012-06-09 16:27:05 -07003143static int __net_init ipv4_inetpeer_init(struct net *net)
3144{
3145 struct inet_peer_base *bp = kmalloc(sizeof(*bp), GFP_KERNEL);
3146
3147 if (!bp)
3148 return -ENOMEM;
3149 inet_peer_base_init(bp);
3150 net->ipv4.peers = bp;
3151 return 0;
3152}
3153
3154static void __net_exit ipv4_inetpeer_exit(struct net *net)
3155{
3156 struct inet_peer_base *bp = net->ipv4.peers;
3157
3158 net->ipv4.peers = NULL;
David S. Miller56a6b242012-06-09 16:32:41 -07003159 inetpeer_invalidate_tree(bp);
David S. Millerc3426b42012-06-09 16:27:05 -07003160 kfree(bp);
3161}
3162
3163static __net_initdata struct pernet_operations ipv4_inetpeer_ops = {
3164 .init = ipv4_inetpeer_init,
3165 .exit = ipv4_inetpeer_exit,
3166};
Denis V. Lunev9f5e97e2008-07-05 19:02:59 -07003167
Patrick McHardyc7066f72011-01-14 13:36:42 +01003168#ifdef CONFIG_IP_ROUTE_CLASSID
Tejun Heo7d720c32010-02-16 15:20:26 +00003169struct ip_rt_acct __percpu *ip_rt_acct __read_mostly;
Patrick McHardyc7066f72011-01-14 13:36:42 +01003170#endif /* CONFIG_IP_ROUTE_CLASSID */
Linus Torvalds1da177e2005-04-16 15:20:36 -07003171
3172static __initdata unsigned long rhash_entries;
3173static int __init set_rhash_entries(char *str)
3174{
Eldad Zack413c27d2012-05-19 14:13:18 +00003175 ssize_t ret;
3176
Linus Torvalds1da177e2005-04-16 15:20:36 -07003177 if (!str)
3178 return 0;
Eldad Zack413c27d2012-05-19 14:13:18 +00003179
3180 ret = kstrtoul(str, 0, &rhash_entries);
3181 if (ret)
3182 return 0;
3183
Linus Torvalds1da177e2005-04-16 15:20:36 -07003184 return 1;
3185}
3186__setup("rhash_entries=", set_rhash_entries);
3187
3188int __init ip_rt_init(void)
3189{
Eric Dumazet424c4b72005-07-05 14:58:19 -07003190 int rc = 0;
Linus Torvalds1da177e2005-04-16 15:20:36 -07003191
Patrick McHardyc7066f72011-01-14 13:36:42 +01003192#ifdef CONFIG_IP_ROUTE_CLASSID
Ingo Molnar0dcec8c2009-02-25 14:07:33 +01003193 ip_rt_acct = __alloc_percpu(256 * sizeof(struct ip_rt_acct), __alignof__(struct ip_rt_acct));
Linus Torvalds1da177e2005-04-16 15:20:36 -07003194 if (!ip_rt_acct)
3195 panic("IP: failed to allocate ip_rt_acct\n");
Linus Torvalds1da177e2005-04-16 15:20:36 -07003196#endif
3197
Alexey Dobriyane5d679f2006-08-26 19:25:52 -07003198 ipv4_dst_ops.kmem_cachep =
3199 kmem_cache_create("ip_dst_cache", sizeof(struct rtable), 0,
Paul Mundt20c2df82007-07-20 10:11:58 +09003200 SLAB_HWCACHE_ALIGN|SLAB_PANIC, NULL);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003201
David S. Miller14e50e52007-05-24 18:17:54 -07003202 ipv4_dst_blackhole_ops.kmem_cachep = ipv4_dst_ops.kmem_cachep;
3203
Eric Dumazetfc66f952010-10-08 06:37:34 +00003204 if (dst_entries_init(&ipv4_dst_ops) < 0)
3205 panic("IP: failed to allocate ipv4_dst_ops counter\n");
3206
3207 if (dst_entries_init(&ipv4_dst_blackhole_ops) < 0)
3208 panic("IP: failed to allocate ipv4_dst_blackhole_ops counter\n");
3209
Eric Dumazet424c4b72005-07-05 14:58:19 -07003210 rt_hash_table = (struct rt_hash_bucket *)
3211 alloc_large_system_hash("IP route cache",
3212 sizeof(struct rt_hash_bucket),
3213 rhash_entries,
Jan Beulich44813742009-09-21 17:03:05 -07003214 (totalram_pages >= 128 * 1024) ?
Mike Stroyan18955cf2005-11-29 16:12:55 -08003215 15 : 17,
Kirill Korotaev8d1502d2006-08-07 20:44:22 -07003216 0,
Eric Dumazet424c4b72005-07-05 14:58:19 -07003217 &rt_hash_log,
3218 &rt_hash_mask,
Tim Bird31fe62b2012-05-23 13:33:35 +00003219 0,
Anton Blanchardc9503e02009-04-27 05:42:24 -07003220 rhash_entries ? 0 : 512 * 1024);
Eric Dumazet22c047c2005-07-05 14:55:24 -07003221 memset(rt_hash_table, 0, (rt_hash_mask + 1) * sizeof(struct rt_hash_bucket));
3222 rt_hash_lock_init();
Linus Torvalds1da177e2005-04-16 15:20:36 -07003223
3224 ipv4_dst_ops.gc_thresh = (rt_hash_mask + 1);
3225 ip_rt_max_size = (rt_hash_mask + 1) * 16;
3226
Linus Torvalds1da177e2005-04-16 15:20:36 -07003227 devinet_init();
3228 ip_fib_init();
3229
Eric Dumazet9f28a2f2011-12-21 15:47:16 -05003230 INIT_DELAYED_WORK_DEFERRABLE(&expires_work, rt_worker_func);
3231 expires_ljiffies = jiffies;
3232 schedule_delayed_work(&expires_work,
3233 net_random() % ip_rt_gc_interval + ip_rt_gc_interval);
3234
Denis V. Lunev73b38712008-02-28 20:51:18 -08003235 if (ip_rt_proc_init())
Joe Perches058bd4d2012-03-11 18:36:11 +00003236 pr_err("Unable to create route proc files\n");
Linus Torvalds1da177e2005-04-16 15:20:36 -07003237#ifdef CONFIG_XFRM
3238 xfrm_init();
Neil Hormana33bc5c2009-07-30 18:52:15 -07003239 xfrm4_init(ip_rt_max_size);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003240#endif
Greg Rosec7ac8672011-06-10 01:27:09 +00003241 rtnl_register(PF_INET, RTM_GETROUTE, inet_rtm_getroute, NULL, NULL);
Thomas Graf63f34442007-03-22 11:55:17 -07003242
Denis V. Lunev39a23e72008-07-05 19:02:33 -07003243#ifdef CONFIG_SYSCTL
3244 register_pernet_subsys(&sysctl_route_ops);
3245#endif
Neil Horman3ee94372010-05-08 01:57:52 -07003246 register_pernet_subsys(&rt_genid_ops);
David S. Millerc3426b42012-06-09 16:27:05 -07003247 register_pernet_subsys(&ipv4_inetpeer_ops);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003248 return rc;
3249}
3250
Al Viroa1bc6eb2008-07-30 06:32:52 -04003251#ifdef CONFIG_SYSCTL
Al Viroeeb61f72008-07-27 08:59:33 +01003252/*
3253 * We really need to sanitize the damn ipv4 init order, then all
3254 * this nonsense will go away.
3255 */
3256void __init ip_static_sysctl_init(void)
3257{
Eric W. Biederman4e5ca782012-04-19 13:32:39 +00003258 register_net_sysctl(&init_net, "net/ipv4/route", ipv4_route_table);
Al Viroeeb61f72008-07-27 08:59:33 +01003259}
Al Viroa1bc6eb2008-07-30 06:32:52 -04003260#endif