blob: f67e70236728cac0b560f971a7eb279e63551f3e [file] [log] [blame]
Linus Torvalds1da177e2005-04-16 15:20:36 -07001/*
2 * INET An implementation of the TCP/IP protocol suite for the LINUX
3 * operating system. INET is implemented using the BSD Socket
4 * interface as the means of communication with the user level.
5 *
6 * ROUTE - implementation of the IP router.
7 *
Jesper Juhl02c30a82005-05-05 16:16:16 -07008 * Authors: Ross Biro
Linus Torvalds1da177e2005-04-16 15:20:36 -07009 * Fred N. van Kempen, <waltje@uWalt.NL.Mugnet.ORG>
10 * Alan Cox, <gw4pts@gw4pts.ampr.org>
11 * Linus Torvalds, <Linus.Torvalds@helsinki.fi>
12 * Alexey Kuznetsov, <kuznet@ms2.inr.ac.ru>
13 *
14 * Fixes:
15 * Alan Cox : Verify area fixes.
16 * Alan Cox : cli() protects routing changes
17 * Rui Oliveira : ICMP routing table updates
18 * (rco@di.uminho.pt) Routing table insertion and update
19 * Linus Torvalds : Rewrote bits to be sensible
20 * Alan Cox : Added BSD route gw semantics
YOSHIFUJI Hideakie905a9e2007-02-09 23:24:47 +090021 * Alan Cox : Super /proc >4K
Linus Torvalds1da177e2005-04-16 15:20:36 -070022 * Alan Cox : MTU in route table
23 * Alan Cox : MSS actually. Also added the window
24 * clamper.
25 * Sam Lantinga : Fixed route matching in rt_del()
26 * Alan Cox : Routing cache support.
27 * Alan Cox : Removed compatibility cruft.
28 * Alan Cox : RTF_REJECT support.
29 * Alan Cox : TCP irtt support.
30 * Jonathan Naylor : Added Metric support.
31 * Miquel van Smoorenburg : BSD API fixes.
32 * Miquel van Smoorenburg : Metrics.
33 * Alan Cox : Use __u32 properly
34 * Alan Cox : Aligned routing errors more closely with BSD
35 * our system is still very different.
36 * Alan Cox : Faster /proc handling
37 * Alexey Kuznetsov : Massive rework to support tree based routing,
38 * routing caches and better behaviour.
YOSHIFUJI Hideakie905a9e2007-02-09 23:24:47 +090039 *
Linus Torvalds1da177e2005-04-16 15:20:36 -070040 * Olaf Erb : irtt wasn't being copied right.
41 * Bjorn Ekwall : Kerneld route support.
42 * Alan Cox : Multicast fixed (I hope)
43 * Pavel Krauz : Limited broadcast fixed
44 * Mike McLagan : Routing by source
45 * Alexey Kuznetsov : End of old history. Split to fib.c and
46 * route.c and rewritten from scratch.
47 * Andi Kleen : Load-limit warning messages.
48 * Vitaly E. Lavrov : Transparent proxy revived after year coma.
49 * Vitaly E. Lavrov : Race condition in ip_route_input_slow.
50 * Tobias Ringstrom : Uninitialized res.type in ip_route_output_slow.
51 * Vladimir V. Ivanov : IP rule info (flowid) is really useful.
52 * Marc Boucher : routing by fwmark
53 * Robert Olsson : Added rt_cache statistics
54 * Arnaldo C. Melo : Convert proc stuff to seq_file
Eric Dumazetbb1d23b2005-07-05 15:00:32 -070055 * Eric Dumazet : hashed spinlocks and rt_check_expire() fixes.
Ilia Sotnikovcef26852006-03-25 01:38:55 -080056 * Ilia Sotnikov : Ignore TOS on PMTUD and Redirect
57 * Ilia Sotnikov : Removed TOS from hash calculations
Linus Torvalds1da177e2005-04-16 15:20:36 -070058 *
59 * This program is free software; you can redistribute it and/or
60 * modify it under the terms of the GNU General Public License
61 * as published by the Free Software Foundation; either version
62 * 2 of the License, or (at your option) any later version.
63 */
64
Joe Perchesafd465032012-03-12 07:03:32 +000065#define pr_fmt(fmt) "IPv4: " fmt
66
Linus Torvalds1da177e2005-04-16 15:20:36 -070067#include <linux/module.h>
68#include <asm/uaccess.h>
Linus Torvalds1da177e2005-04-16 15:20:36 -070069#include <linux/bitops.h>
70#include <linux/types.h>
71#include <linux/kernel.h>
Linus Torvalds1da177e2005-04-16 15:20:36 -070072#include <linux/mm.h>
Eric Dumazet424c4b72005-07-05 14:58:19 -070073#include <linux/bootmem.h>
Linus Torvalds1da177e2005-04-16 15:20:36 -070074#include <linux/string.h>
75#include <linux/socket.h>
76#include <linux/sockios.h>
77#include <linux/errno.h>
78#include <linux/in.h>
79#include <linux/inet.h>
80#include <linux/netdevice.h>
81#include <linux/proc_fs.h>
82#include <linux/init.h>
Eric Dumazet39c90ec2007-09-15 10:55:54 -070083#include <linux/workqueue.h>
Linus Torvalds1da177e2005-04-16 15:20:36 -070084#include <linux/skbuff.h>
Linus Torvalds1da177e2005-04-16 15:20:36 -070085#include <linux/inetdevice.h>
86#include <linux/igmp.h>
87#include <linux/pkt_sched.h>
88#include <linux/mroute.h>
89#include <linux/netfilter_ipv4.h>
90#include <linux/random.h>
91#include <linux/jhash.h>
92#include <linux/rcupdate.h>
93#include <linux/times.h>
Tejun Heo5a0e3ad2010-03-24 17:04:11 +090094#include <linux/slab.h>
Stephen Rothwellb9eda062011-12-22 17:03:29 +110095#include <linux/prefetch.h>
Herbert Xu352e5122007-11-13 21:34:06 -080096#include <net/dst.h>
Eric W. Biederman457c4cb2007-09-12 12:01:34 +020097#include <net/net_namespace.h>
Linus Torvalds1da177e2005-04-16 15:20:36 -070098#include <net/protocol.h>
99#include <net/ip.h>
100#include <net/route.h>
101#include <net/inetpeer.h>
102#include <net/sock.h>
103#include <net/ip_fib.h>
104#include <net/arp.h>
105#include <net/tcp.h>
106#include <net/icmp.h>
107#include <net/xfrm.h>
Tom Tucker8d717402006-07-30 20:43:36 -0700108#include <net/netevent.h>
Thomas Graf63f34442007-03-22 11:55:17 -0700109#include <net/rtnetlink.h>
Linus Torvalds1da177e2005-04-16 15:20:36 -0700110#ifdef CONFIG_SYSCTL
111#include <linux/sysctl.h>
Shan Wei7426a562012-04-18 18:05:46 +0000112#include <linux/kmemleak.h>
Linus Torvalds1da177e2005-04-16 15:20:36 -0700113#endif
David S. Miller6e5714e2011-08-03 20:50:44 -0700114#include <net/secure_seq.h>
Linus Torvalds1da177e2005-04-16 15:20:36 -0700115
David S. Miller68a5e3d2011-03-11 20:07:33 -0500116#define RT_FL_TOS(oldflp4) \
Julian Anastasovf61759e2011-12-02 11:39:42 +0000117 ((oldflp4)->flowi4_tos & (IPTOS_RT_MASK | RTO_ONLINK))
Linus Torvalds1da177e2005-04-16 15:20:36 -0700118
119#define IP_MAX_MTU 0xFFF0
120
121#define RT_GC_TIMEOUT (300*HZ)
122
Linus Torvalds1da177e2005-04-16 15:20:36 -0700123static int ip_rt_max_size;
Stephen Hemminger817bc4d2008-03-22 17:43:59 -0700124static int ip_rt_gc_timeout __read_mostly = RT_GC_TIMEOUT;
Eric Dumazet9f28a2f2011-12-21 15:47:16 -0500125static int ip_rt_gc_interval __read_mostly = 60 * HZ;
Stephen Hemminger817bc4d2008-03-22 17:43:59 -0700126static int ip_rt_gc_min_interval __read_mostly = HZ / 2;
127static int ip_rt_redirect_number __read_mostly = 9;
128static int ip_rt_redirect_load __read_mostly = HZ / 50;
129static int ip_rt_redirect_silence __read_mostly = ((HZ / 50) << (9 + 1));
130static int ip_rt_error_cost __read_mostly = HZ;
131static int ip_rt_error_burst __read_mostly = 5 * HZ;
132static int ip_rt_gc_elasticity __read_mostly = 8;
133static int ip_rt_mtu_expires __read_mostly = 10 * 60 * HZ;
134static int ip_rt_min_pmtu __read_mostly = 512 + 20 + 20;
135static int ip_rt_min_advmss __read_mostly = 256;
Neil Horman1080d702008-10-27 12:28:25 -0700136static int rt_chain_length_max __read_mostly = 20;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700137
Eric Dumazet9f28a2f2011-12-21 15:47:16 -0500138static struct delayed_work expires_work;
139static unsigned long expires_ljiffies;
140
Linus Torvalds1da177e2005-04-16 15:20:36 -0700141/*
142 * Interface to generic destination cache.
143 */
144
145static struct dst_entry *ipv4_dst_check(struct dst_entry *dst, u32 cookie);
David S. Miller0dbaee32010-12-13 12:52:14 -0800146static unsigned int ipv4_default_advmss(const struct dst_entry *dst);
Steffen Klassertebb762f2011-11-23 02:12:51 +0000147static unsigned int ipv4_mtu(const struct dst_entry *dst);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700148static void ipv4_dst_destroy(struct dst_entry *dst);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700149static struct dst_entry *ipv4_negative_advice(struct dst_entry *dst);
150static void ipv4_link_failure(struct sk_buff *skb);
David S. Miller6700c272012-07-17 03:29:28 -0700151static void ip_rt_update_pmtu(struct dst_entry *dst, struct sock *sk,
152 struct sk_buff *skb, u32 mtu);
153static void ip_do_redirect(struct dst_entry *dst, struct sock *sk,
154 struct sk_buff *skb);
Daniel Lezcano569d3642008-01-18 03:56:57 -0800155static int rt_garbage_collect(struct dst_ops *ops);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700156
Eric Dumazet72cdd1d2010-11-11 07:14:07 +0000157static void ipv4_dst_ifdown(struct dst_entry *dst, struct net_device *dev,
158 int how)
159{
160}
Linus Torvalds1da177e2005-04-16 15:20:36 -0700161
David S. Miller62fa8a82011-01-26 20:51:05 -0800162static u32 *ipv4_cow_metrics(struct dst_entry *dst, unsigned long old)
163{
David S. Miller31248732012-07-10 07:08:18 -0700164 WARN_ON(1);
165 return NULL;
David S. Miller62fa8a82011-01-26 20:51:05 -0800166}
167
David S. Millerf894cbf2012-07-02 21:52:24 -0700168static struct neighbour *ipv4_neigh_lookup(const struct dst_entry *dst,
169 struct sk_buff *skb,
170 const void *daddr);
David S. Millerd3aaeb32011-07-18 00:40:17 -0700171
Linus Torvalds1da177e2005-04-16 15:20:36 -0700172static struct dst_ops ipv4_dst_ops = {
173 .family = AF_INET,
Harvey Harrison09640e62009-02-01 00:45:17 -0800174 .protocol = cpu_to_be16(ETH_P_IP),
Linus Torvalds1da177e2005-04-16 15:20:36 -0700175 .gc = rt_garbage_collect,
176 .check = ipv4_dst_check,
David S. Miller0dbaee32010-12-13 12:52:14 -0800177 .default_advmss = ipv4_default_advmss,
Steffen Klassertebb762f2011-11-23 02:12:51 +0000178 .mtu = ipv4_mtu,
David S. Miller62fa8a82011-01-26 20:51:05 -0800179 .cow_metrics = ipv4_cow_metrics,
Linus Torvalds1da177e2005-04-16 15:20:36 -0700180 .destroy = ipv4_dst_destroy,
181 .ifdown = ipv4_dst_ifdown,
182 .negative_advice = ipv4_negative_advice,
183 .link_failure = ipv4_link_failure,
184 .update_pmtu = ip_rt_update_pmtu,
David S. Millere47a1852012-07-11 20:55:47 -0700185 .redirect = ip_do_redirect,
Herbert Xu1ac06e02008-05-20 14:32:14 -0700186 .local_out = __ip_local_out,
David S. Millerd3aaeb32011-07-18 00:40:17 -0700187 .neigh_lookup = ipv4_neigh_lookup,
Linus Torvalds1da177e2005-04-16 15:20:36 -0700188};
189
190#define ECN_OR_COST(class) TC_PRIO_##class
191
Philippe De Muyter4839c522007-07-09 15:32:57 -0700192const __u8 ip_tos2prio[16] = {
Linus Torvalds1da177e2005-04-16 15:20:36 -0700193 TC_PRIO_BESTEFFORT,
Dan Siemon4a2b9c32011-03-15 13:56:07 +0000194 ECN_OR_COST(BESTEFFORT),
Linus Torvalds1da177e2005-04-16 15:20:36 -0700195 TC_PRIO_BESTEFFORT,
196 ECN_OR_COST(BESTEFFORT),
197 TC_PRIO_BULK,
198 ECN_OR_COST(BULK),
199 TC_PRIO_BULK,
200 ECN_OR_COST(BULK),
201 TC_PRIO_INTERACTIVE,
202 ECN_OR_COST(INTERACTIVE),
203 TC_PRIO_INTERACTIVE,
204 ECN_OR_COST(INTERACTIVE),
205 TC_PRIO_INTERACTIVE_BULK,
206 ECN_OR_COST(INTERACTIVE_BULK),
207 TC_PRIO_INTERACTIVE_BULK,
208 ECN_OR_COST(INTERACTIVE_BULK)
209};
Amir Vadaid4a96862012-04-04 21:33:28 +0000210EXPORT_SYMBOL(ip_tos2prio);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700211
212/*
213 * Route cache.
214 */
215
216/* The locking scheme is rather straight forward:
217 *
218 * 1) Read-Copy Update protects the buckets of the central route hash.
219 * 2) Only writers remove entries, and they hold the lock
220 * as they look at rtable reference counts.
221 * 3) Only readers acquire references to rtable entries,
222 * they do so with atomic increments and with the
223 * lock held.
224 */
225
226struct rt_hash_bucket {
Eric Dumazet1c317202010-10-25 21:02:07 +0000227 struct rtable __rcu *chain;
Eric Dumazet22c047c2005-07-05 14:55:24 -0700228};
Neil Horman1080d702008-10-27 12:28:25 -0700229
Ingo Molnar8a25d5d2006-07-03 00:24:54 -0700230#if defined(CONFIG_SMP) || defined(CONFIG_DEBUG_SPINLOCK) || \
231 defined(CONFIG_PROVE_LOCKING)
Eric Dumazet22c047c2005-07-05 14:55:24 -0700232/*
233 * Instead of using one spinlock for each rt_hash_bucket, we use a table of spinlocks
234 * The size of this table is a power of two and depends on the number of CPUS.
Ingo Molnar62051202006-07-03 00:24:59 -0700235 * (on lockdep we have a quite big spinlock_t, so keep the size down there)
Eric Dumazet22c047c2005-07-05 14:55:24 -0700236 */
Ingo Molnar62051202006-07-03 00:24:59 -0700237#ifdef CONFIG_LOCKDEP
238# define RT_HASH_LOCK_SZ 256
Eric Dumazet22c047c2005-07-05 14:55:24 -0700239#else
Ingo Molnar62051202006-07-03 00:24:59 -0700240# if NR_CPUS >= 32
241# define RT_HASH_LOCK_SZ 4096
242# elif NR_CPUS >= 16
243# define RT_HASH_LOCK_SZ 2048
244# elif NR_CPUS >= 8
245# define RT_HASH_LOCK_SZ 1024
246# elif NR_CPUS >= 4
247# define RT_HASH_LOCK_SZ 512
248# else
249# define RT_HASH_LOCK_SZ 256
250# endif
Eric Dumazet22c047c2005-07-05 14:55:24 -0700251#endif
252
253static spinlock_t *rt_hash_locks;
254# define rt_hash_lock_addr(slot) &rt_hash_locks[(slot) & (RT_HASH_LOCK_SZ - 1)]
Pavel Emelyanov1ff1cc22007-12-05 21:15:05 -0800255
256static __init void rt_hash_lock_init(void)
257{
258 int i;
259
260 rt_hash_locks = kmalloc(sizeof(spinlock_t) * RT_HASH_LOCK_SZ,
261 GFP_KERNEL);
262 if (!rt_hash_locks)
263 panic("IP: failed to allocate rt_hash_locks\n");
264
265 for (i = 0; i < RT_HASH_LOCK_SZ; i++)
266 spin_lock_init(&rt_hash_locks[i]);
267}
Eric Dumazet22c047c2005-07-05 14:55:24 -0700268#else
269# define rt_hash_lock_addr(slot) NULL
Pavel Emelyanov1ff1cc22007-12-05 21:15:05 -0800270
271static inline void rt_hash_lock_init(void)
272{
273}
Eric Dumazet22c047c2005-07-05 14:55:24 -0700274#endif
Linus Torvalds1da177e2005-04-16 15:20:36 -0700275
Stephen Hemminger817bc4d2008-03-22 17:43:59 -0700276static struct rt_hash_bucket *rt_hash_table __read_mostly;
Eric Dumazet95c96172012-04-15 05:58:06 +0000277static unsigned int rt_hash_mask __read_mostly;
Stephen Hemminger817bc4d2008-03-22 17:43:59 -0700278static unsigned int rt_hash_log __read_mostly;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700279
Eric Dumazet2f970d82006-01-17 02:54:36 -0800280static DEFINE_PER_CPU(struct rt_cache_stat, rt_cache_stat);
Eric Dumazet27f39c72010-05-19 22:07:23 +0000281#define RT_CACHE_STAT_INC(field) __this_cpu_inc(rt_cache_stat.field)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700282
Denis V. Lunevb00180d2008-07-05 19:04:09 -0700283static inline unsigned int rt_hash(__be32 daddr, __be32 saddr, int idx,
Eric Dumazet0eae88f2010-04-20 19:06:52 -0700284 int genid)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700285{
Eric Dumazet0eae88f2010-04-20 19:06:52 -0700286 return jhash_3words((__force u32)daddr, (__force u32)saddr,
Denis V. Lunevb00180d2008-07-05 19:04:09 -0700287 idx, genid)
Eric Dumazet29e75252008-01-31 17:05:09 -0800288 & rt_hash_mask;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700289}
290
Denis V. Luneve84f84f2008-07-05 19:04:32 -0700291static inline int rt_genid(struct net *net)
292{
293 return atomic_read(&net->ipv4.rt_genid);
294}
295
Linus Torvalds1da177e2005-04-16 15:20:36 -0700296#ifdef CONFIG_PROC_FS
297struct rt_cache_iter_state {
Denis V. Luneva75e9362008-02-28 20:50:55 -0800298 struct seq_net_private p;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700299 int bucket;
Eric Dumazet29e75252008-01-31 17:05:09 -0800300 int genid;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700301};
302
YOSHIFUJI Hideaki12188542008-03-26 02:36:06 +0900303static struct rtable *rt_cache_get_first(struct seq_file *seq)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700304{
YOSHIFUJI Hideaki12188542008-03-26 02:36:06 +0900305 struct rt_cache_iter_state *st = seq->private;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700306 struct rtable *r = NULL;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700307
308 for (st->bucket = rt_hash_mask; st->bucket >= 0; --st->bucket) {
Eric Dumazet33d480c2011-08-11 19:30:52 +0000309 if (!rcu_access_pointer(rt_hash_table[st->bucket].chain))
Eric Dumazeta6272662008-08-28 01:11:25 -0700310 continue;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700311 rcu_read_lock_bh();
Paul E. McKenneya898def2010-02-22 17:04:49 -0800312 r = rcu_dereference_bh(rt_hash_table[st->bucket].chain);
Eric Dumazet29e75252008-01-31 17:05:09 -0800313 while (r) {
Changli Gaod8d1f302010-06-10 23:31:35 -0700314 if (dev_net(r->dst.dev) == seq_file_net(seq) &&
Denis V. Luneva75e9362008-02-28 20:50:55 -0800315 r->rt_genid == st->genid)
Eric Dumazet29e75252008-01-31 17:05:09 -0800316 return r;
Changli Gaod8d1f302010-06-10 23:31:35 -0700317 r = rcu_dereference_bh(r->dst.rt_next);
Eric Dumazet29e75252008-01-31 17:05:09 -0800318 }
Linus Torvalds1da177e2005-04-16 15:20:36 -0700319 rcu_read_unlock_bh();
320 }
Eric Dumazet29e75252008-01-31 17:05:09 -0800321 return r;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700322}
323
YOSHIFUJI Hideaki12188542008-03-26 02:36:06 +0900324static struct rtable *__rt_cache_get_next(struct seq_file *seq,
Denis V. Lunev642d6312008-02-28 20:50:33 -0800325 struct rtable *r)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700326{
YOSHIFUJI Hideaki12188542008-03-26 02:36:06 +0900327 struct rt_cache_iter_state *st = seq->private;
Eric Dumazeta6272662008-08-28 01:11:25 -0700328
Eric Dumazet1c317202010-10-25 21:02:07 +0000329 r = rcu_dereference_bh(r->dst.rt_next);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700330 while (!r) {
331 rcu_read_unlock_bh();
Eric Dumazeta6272662008-08-28 01:11:25 -0700332 do {
333 if (--st->bucket < 0)
334 return NULL;
Eric Dumazet33d480c2011-08-11 19:30:52 +0000335 } while (!rcu_access_pointer(rt_hash_table[st->bucket].chain));
Linus Torvalds1da177e2005-04-16 15:20:36 -0700336 rcu_read_lock_bh();
Eric Dumazet1c317202010-10-25 21:02:07 +0000337 r = rcu_dereference_bh(rt_hash_table[st->bucket].chain);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700338 }
Eric Dumazet1c317202010-10-25 21:02:07 +0000339 return r;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700340}
341
YOSHIFUJI Hideaki12188542008-03-26 02:36:06 +0900342static struct rtable *rt_cache_get_next(struct seq_file *seq,
Denis V. Lunev642d6312008-02-28 20:50:33 -0800343 struct rtable *r)
344{
YOSHIFUJI Hideaki12188542008-03-26 02:36:06 +0900345 struct rt_cache_iter_state *st = seq->private;
346 while ((r = __rt_cache_get_next(seq, r)) != NULL) {
Changli Gaod8d1f302010-06-10 23:31:35 -0700347 if (dev_net(r->dst.dev) != seq_file_net(seq))
Denis V. Luneva75e9362008-02-28 20:50:55 -0800348 continue;
Denis V. Lunev642d6312008-02-28 20:50:33 -0800349 if (r->rt_genid == st->genid)
350 break;
351 }
352 return r;
353}
354
YOSHIFUJI Hideaki12188542008-03-26 02:36:06 +0900355static struct rtable *rt_cache_get_idx(struct seq_file *seq, loff_t pos)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700356{
YOSHIFUJI Hideaki12188542008-03-26 02:36:06 +0900357 struct rtable *r = rt_cache_get_first(seq);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700358
359 if (r)
YOSHIFUJI Hideaki12188542008-03-26 02:36:06 +0900360 while (pos && (r = rt_cache_get_next(seq, r)))
Linus Torvalds1da177e2005-04-16 15:20:36 -0700361 --pos;
362 return pos ? NULL : r;
363}
364
365static void *rt_cache_seq_start(struct seq_file *seq, loff_t *pos)
366{
Eric Dumazet29e75252008-01-31 17:05:09 -0800367 struct rt_cache_iter_state *st = seq->private;
Eric Dumazet29e75252008-01-31 17:05:09 -0800368 if (*pos)
YOSHIFUJI Hideaki12188542008-03-26 02:36:06 +0900369 return rt_cache_get_idx(seq, *pos - 1);
Denis V. Luneve84f84f2008-07-05 19:04:32 -0700370 st->genid = rt_genid(seq_file_net(seq));
Eric Dumazet29e75252008-01-31 17:05:09 -0800371 return SEQ_START_TOKEN;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700372}
373
374static void *rt_cache_seq_next(struct seq_file *seq, void *v, loff_t *pos)
375{
Eric Dumazet29e75252008-01-31 17:05:09 -0800376 struct rtable *r;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700377
378 if (v == SEQ_START_TOKEN)
YOSHIFUJI Hideaki12188542008-03-26 02:36:06 +0900379 r = rt_cache_get_first(seq);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700380 else
YOSHIFUJI Hideaki12188542008-03-26 02:36:06 +0900381 r = rt_cache_get_next(seq, v);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700382 ++*pos;
383 return r;
384}
385
386static void rt_cache_seq_stop(struct seq_file *seq, void *v)
387{
388 if (v && v != SEQ_START_TOKEN)
389 rcu_read_unlock_bh();
390}
391
392static int rt_cache_seq_show(struct seq_file *seq, void *v)
393{
394 if (v == SEQ_START_TOKEN)
395 seq_printf(seq, "%-127s\n",
396 "Iface\tDestination\tGateway \tFlags\t\tRefCnt\tUse\t"
397 "Metric\tSource\t\tMTU\tWindow\tIRTT\tTOS\tHHRef\t"
398 "HHUptod\tSpecDst");
399 else {
400 struct rtable *r = v;
David S. Miller3c521f22012-07-02 02:04:13 -0700401 int len;
Eric Dumazet218fa902011-11-29 20:05:55 +0000402
Eric Dumazet0eae88f2010-04-20 19:06:52 -0700403 seq_printf(seq, "%s\t%08X\t%08X\t%8X\t%d\t%u\t%d\t"
David S. Miller794785b2012-07-10 00:52:56 -0700404 "%08X\t%d\t%u\t%u\t%02X\t%d\t%1d\t%08X%n",
405 r->dst.dev ? r->dst.dev->name : "*",
406 (__force u32)r->rt_dst,
407 (__force u32)r->rt_gateway,
408 r->rt_flags, atomic_read(&r->dst.__refcnt),
409 r->dst.__use, 0, (__force u32)r->rt_src,
410 dst_metric_advmss(&r->dst) + 40,
411 dst_metric(&r->dst, RTAX_WINDOW), 0,
412 r->rt_key_tos,
413 -1, 0, 0, &len);
Pavel Emelyanov5e659e42008-04-24 01:02:16 -0700414
415 seq_printf(seq, "%*s\n", 127 - len, "");
YOSHIFUJI Hideakie905a9e2007-02-09 23:24:47 +0900416 }
417 return 0;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700418}
419
Stephen Hemmingerf6908082007-03-12 14:34:29 -0700420static const struct seq_operations rt_cache_seq_ops = {
Linus Torvalds1da177e2005-04-16 15:20:36 -0700421 .start = rt_cache_seq_start,
422 .next = rt_cache_seq_next,
423 .stop = rt_cache_seq_stop,
424 .show = rt_cache_seq_show,
425};
426
427static int rt_cache_seq_open(struct inode *inode, struct file *file)
428{
Denis V. Luneva75e9362008-02-28 20:50:55 -0800429 return seq_open_net(inode, file, &rt_cache_seq_ops,
Pavel Emelyanovcf7732e2007-10-10 02:29:29 -0700430 sizeof(struct rt_cache_iter_state));
Linus Torvalds1da177e2005-04-16 15:20:36 -0700431}
432
Arjan van de Ven9a321442007-02-12 00:55:35 -0800433static const struct file_operations rt_cache_seq_fops = {
Linus Torvalds1da177e2005-04-16 15:20:36 -0700434 .owner = THIS_MODULE,
435 .open = rt_cache_seq_open,
436 .read = seq_read,
437 .llseek = seq_lseek,
Denis V. Luneva75e9362008-02-28 20:50:55 -0800438 .release = seq_release_net,
Linus Torvalds1da177e2005-04-16 15:20:36 -0700439};
440
441
442static void *rt_cpu_seq_start(struct seq_file *seq, loff_t *pos)
443{
444 int cpu;
445
446 if (*pos == 0)
447 return SEQ_START_TOKEN;
448
Rusty Russell0f23174a2008-12-29 12:23:42 +0000449 for (cpu = *pos-1; cpu < nr_cpu_ids; ++cpu) {
Linus Torvalds1da177e2005-04-16 15:20:36 -0700450 if (!cpu_possible(cpu))
451 continue;
452 *pos = cpu+1;
Eric Dumazet2f970d82006-01-17 02:54:36 -0800453 return &per_cpu(rt_cache_stat, cpu);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700454 }
455 return NULL;
456}
457
458static void *rt_cpu_seq_next(struct seq_file *seq, void *v, loff_t *pos)
459{
460 int cpu;
461
Rusty Russell0f23174a2008-12-29 12:23:42 +0000462 for (cpu = *pos; cpu < nr_cpu_ids; ++cpu) {
Linus Torvalds1da177e2005-04-16 15:20:36 -0700463 if (!cpu_possible(cpu))
464 continue;
465 *pos = cpu+1;
Eric Dumazet2f970d82006-01-17 02:54:36 -0800466 return &per_cpu(rt_cache_stat, cpu);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700467 }
468 return NULL;
YOSHIFUJI Hideakie905a9e2007-02-09 23:24:47 +0900469
Linus Torvalds1da177e2005-04-16 15:20:36 -0700470}
471
472static void rt_cpu_seq_stop(struct seq_file *seq, void *v)
473{
474
475}
476
477static int rt_cpu_seq_show(struct seq_file *seq, void *v)
478{
479 struct rt_cache_stat *st = v;
480
481 if (v == SEQ_START_TOKEN) {
Olaf Rempel5bec0032005-04-28 12:16:08 -0700482 seq_printf(seq, "entries in_hit in_slow_tot in_slow_mc in_no_route in_brd in_martian_dst in_martian_src out_hit out_slow_tot out_slow_mc gc_total gc_ignored gc_goal_miss gc_dst_overflow in_hlist_search out_hlist_search\n");
Linus Torvalds1da177e2005-04-16 15:20:36 -0700483 return 0;
484 }
YOSHIFUJI Hideakie905a9e2007-02-09 23:24:47 +0900485
Linus Torvalds1da177e2005-04-16 15:20:36 -0700486 seq_printf(seq,"%08x %08x %08x %08x %08x %08x %08x %08x "
487 " %08x %08x %08x %08x %08x %08x %08x %08x %08x \n",
Eric Dumazetfc66f952010-10-08 06:37:34 +0000488 dst_entries_get_slow(&ipv4_dst_ops),
Linus Torvalds1da177e2005-04-16 15:20:36 -0700489 st->in_hit,
490 st->in_slow_tot,
491 st->in_slow_mc,
492 st->in_no_route,
493 st->in_brd,
494 st->in_martian_dst,
495 st->in_martian_src,
496
497 st->out_hit,
498 st->out_slow_tot,
YOSHIFUJI Hideakie905a9e2007-02-09 23:24:47 +0900499 st->out_slow_mc,
Linus Torvalds1da177e2005-04-16 15:20:36 -0700500
501 st->gc_total,
502 st->gc_ignored,
503 st->gc_goal_miss,
504 st->gc_dst_overflow,
505 st->in_hlist_search,
506 st->out_hlist_search
507 );
508 return 0;
509}
510
Stephen Hemmingerf6908082007-03-12 14:34:29 -0700511static const struct seq_operations rt_cpu_seq_ops = {
Linus Torvalds1da177e2005-04-16 15:20:36 -0700512 .start = rt_cpu_seq_start,
513 .next = rt_cpu_seq_next,
514 .stop = rt_cpu_seq_stop,
515 .show = rt_cpu_seq_show,
516};
517
518
519static int rt_cpu_seq_open(struct inode *inode, struct file *file)
520{
521 return seq_open(file, &rt_cpu_seq_ops);
522}
523
Arjan van de Ven9a321442007-02-12 00:55:35 -0800524static const struct file_operations rt_cpu_seq_fops = {
Linus Torvalds1da177e2005-04-16 15:20:36 -0700525 .owner = THIS_MODULE,
526 .open = rt_cpu_seq_open,
527 .read = seq_read,
528 .llseek = seq_lseek,
529 .release = seq_release,
530};
531
Patrick McHardyc7066f72011-01-14 13:36:42 +0100532#ifdef CONFIG_IP_ROUTE_CLASSID
Alexey Dobriyana661c412009-11-25 15:40:35 -0800533static int rt_acct_proc_show(struct seq_file *m, void *v)
Pavel Emelyanov78c686e2007-12-05 21:13:48 -0800534{
Alexey Dobriyana661c412009-11-25 15:40:35 -0800535 struct ip_rt_acct *dst, *src;
536 unsigned int i, j;
Pavel Emelyanov78c686e2007-12-05 21:13:48 -0800537
Alexey Dobriyana661c412009-11-25 15:40:35 -0800538 dst = kcalloc(256, sizeof(struct ip_rt_acct), GFP_KERNEL);
539 if (!dst)
540 return -ENOMEM;
Pavel Emelyanov78c686e2007-12-05 21:13:48 -0800541
Alexey Dobriyana661c412009-11-25 15:40:35 -0800542 for_each_possible_cpu(i) {
543 src = (struct ip_rt_acct *)per_cpu_ptr(ip_rt_acct, i);
544 for (j = 0; j < 256; j++) {
545 dst[j].o_bytes += src[j].o_bytes;
546 dst[j].o_packets += src[j].o_packets;
547 dst[j].i_bytes += src[j].i_bytes;
548 dst[j].i_packets += src[j].i_packets;
Pavel Emelyanov78c686e2007-12-05 21:13:48 -0800549 }
550 }
Alexey Dobriyana661c412009-11-25 15:40:35 -0800551
552 seq_write(m, dst, 256 * sizeof(struct ip_rt_acct));
553 kfree(dst);
554 return 0;
Pavel Emelyanov78c686e2007-12-05 21:13:48 -0800555}
Alexey Dobriyana661c412009-11-25 15:40:35 -0800556
557static int rt_acct_proc_open(struct inode *inode, struct file *file)
558{
559 return single_open(file, rt_acct_proc_show, NULL);
560}
561
562static const struct file_operations rt_acct_proc_fops = {
563 .owner = THIS_MODULE,
564 .open = rt_acct_proc_open,
565 .read = seq_read,
566 .llseek = seq_lseek,
567 .release = single_release,
568};
Pavel Emelyanov78c686e2007-12-05 21:13:48 -0800569#endif
Pavel Emelyanov107f1632007-12-05 21:14:28 -0800570
Denis V. Lunev73b38712008-02-28 20:51:18 -0800571static int __net_init ip_rt_do_proc_init(struct net *net)
Pavel Emelyanov107f1632007-12-05 21:14:28 -0800572{
573 struct proc_dir_entry *pde;
574
575 pde = proc_net_fops_create(net, "rt_cache", S_IRUGO,
576 &rt_cache_seq_fops);
577 if (!pde)
578 goto err1;
579
Wang Chen77020722008-02-28 14:14:25 -0800580 pde = proc_create("rt_cache", S_IRUGO,
581 net->proc_net_stat, &rt_cpu_seq_fops);
Pavel Emelyanov107f1632007-12-05 21:14:28 -0800582 if (!pde)
583 goto err2;
584
Patrick McHardyc7066f72011-01-14 13:36:42 +0100585#ifdef CONFIG_IP_ROUTE_CLASSID
Alexey Dobriyana661c412009-11-25 15:40:35 -0800586 pde = proc_create("rt_acct", 0, net->proc_net, &rt_acct_proc_fops);
Pavel Emelyanov107f1632007-12-05 21:14:28 -0800587 if (!pde)
588 goto err3;
589#endif
590 return 0;
591
Patrick McHardyc7066f72011-01-14 13:36:42 +0100592#ifdef CONFIG_IP_ROUTE_CLASSID
Pavel Emelyanov107f1632007-12-05 21:14:28 -0800593err3:
594 remove_proc_entry("rt_cache", net->proc_net_stat);
595#endif
596err2:
597 remove_proc_entry("rt_cache", net->proc_net);
598err1:
599 return -ENOMEM;
600}
Denis V. Lunev73b38712008-02-28 20:51:18 -0800601
602static void __net_exit ip_rt_do_proc_exit(struct net *net)
603{
604 remove_proc_entry("rt_cache", net->proc_net_stat);
605 remove_proc_entry("rt_cache", net->proc_net);
Patrick McHardyc7066f72011-01-14 13:36:42 +0100606#ifdef CONFIG_IP_ROUTE_CLASSID
Denis V. Lunev73b38712008-02-28 20:51:18 -0800607 remove_proc_entry("rt_acct", net->proc_net);
Alexey Dobriyan0a931ac2010-01-17 03:32:50 +0000608#endif
Denis V. Lunev73b38712008-02-28 20:51:18 -0800609}
610
611static struct pernet_operations ip_rt_proc_ops __net_initdata = {
612 .init = ip_rt_do_proc_init,
613 .exit = ip_rt_do_proc_exit,
614};
615
616static int __init ip_rt_proc_init(void)
617{
618 return register_pernet_subsys(&ip_rt_proc_ops);
619}
620
Pavel Emelyanov107f1632007-12-05 21:14:28 -0800621#else
Denis V. Lunev73b38712008-02-28 20:51:18 -0800622static inline int ip_rt_proc_init(void)
Pavel Emelyanov107f1632007-12-05 21:14:28 -0800623{
624 return 0;
625}
Linus Torvalds1da177e2005-04-16 15:20:36 -0700626#endif /* CONFIG_PROC_FS */
YOSHIFUJI Hideakie905a9e2007-02-09 23:24:47 +0900627
Stephen Hemminger5969f712008-04-10 01:52:09 -0700628static inline void rt_free(struct rtable *rt)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700629{
Changli Gaod8d1f302010-06-10 23:31:35 -0700630 call_rcu_bh(&rt->dst.rcu_head, dst_rcu_free);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700631}
632
Stephen Hemminger5969f712008-04-10 01:52:09 -0700633static inline void rt_drop(struct rtable *rt)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700634{
Linus Torvalds1da177e2005-04-16 15:20:36 -0700635 ip_rt_put(rt);
Changli Gaod8d1f302010-06-10 23:31:35 -0700636 call_rcu_bh(&rt->dst.rcu_head, dst_rcu_free);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700637}
638
Stephen Hemminger5969f712008-04-10 01:52:09 -0700639static inline int rt_fast_clean(struct rtable *rth)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700640{
641 /* Kill broadcast/multicast entries very aggresively, if they
642 collide in hash table with more useful entries */
643 return (rth->rt_flags & (RTCF_BROADCAST | RTCF_MULTICAST)) &&
David S. Millerc7537962010-11-11 17:07:48 -0800644 rt_is_input_route(rth) && rth->dst.rt_next;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700645}
646
Stephen Hemminger5969f712008-04-10 01:52:09 -0700647static inline int rt_valuable(struct rtable *rth)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700648{
649 return (rth->rt_flags & (RTCF_REDIRECTED | RTCF_NOTIFY)) ||
David S. Miller59436342012-07-10 06:58:42 -0700650 rth->dst.expires;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700651}
652
653static int rt_may_expire(struct rtable *rth, unsigned long tmo1, unsigned long tmo2)
654{
655 unsigned long age;
656 int ret = 0;
657
Changli Gaod8d1f302010-06-10 23:31:35 -0700658 if (atomic_read(&rth->dst.__refcnt))
Linus Torvalds1da177e2005-04-16 15:20:36 -0700659 goto out;
660
Changli Gaod8d1f302010-06-10 23:31:35 -0700661 age = jiffies - rth->dst.lastuse;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700662 if ((age <= tmo1 && !rt_fast_clean(rth)) ||
663 (age <= tmo2 && rt_valuable(rth)))
664 goto out;
665 ret = 1;
666out: return ret;
667}
668
669/* Bits of score are:
670 * 31: very valuable
671 * 30: not quite useless
672 * 29..0: usage counter
673 */
674static inline u32 rt_score(struct rtable *rt)
675{
Changli Gaod8d1f302010-06-10 23:31:35 -0700676 u32 score = jiffies - rt->dst.lastuse;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700677
678 score = ~score & ~(3<<30);
679
680 if (rt_valuable(rt))
681 score |= (1<<31);
682
David S. Millerc7537962010-11-11 17:07:48 -0800683 if (rt_is_output_route(rt) ||
Linus Torvalds1da177e2005-04-16 15:20:36 -0700684 !(rt->rt_flags & (RTCF_BROADCAST|RTCF_MULTICAST|RTCF_LOCAL)))
685 score |= (1<<30);
686
687 return score;
688}
689
Neil Horman1080d702008-10-27 12:28:25 -0700690static inline bool rt_caching(const struct net *net)
691{
692 return net->ipv4.current_rt_cache_rebuild_count <=
693 net->ipv4.sysctl_rt_cache_rebuild_count;
694}
695
David S. Miller5e2b61f2011-03-04 21:47:09 -0800696static inline bool compare_hash_inputs(const struct rtable *rt1,
697 const struct rtable *rt2)
Neil Horman1080d702008-10-27 12:28:25 -0700698{
David S. Miller5e2b61f2011-03-04 21:47:09 -0800699 return ((((__force u32)rt1->rt_key_dst ^ (__force u32)rt2->rt_key_dst) |
700 ((__force u32)rt1->rt_key_src ^ (__force u32)rt2->rt_key_src) |
Julian Anastasov97a80412011-08-09 04:01:16 +0000701 (rt1->rt_route_iif ^ rt2->rt_route_iif)) == 0);
Neil Horman1080d702008-10-27 12:28:25 -0700702}
703
David S. Miller5e2b61f2011-03-04 21:47:09 -0800704static inline int compare_keys(struct rtable *rt1, struct rtable *rt2)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700705{
David S. Miller5e2b61f2011-03-04 21:47:09 -0800706 return (((__force u32)rt1->rt_key_dst ^ (__force u32)rt2->rt_key_dst) |
707 ((__force u32)rt1->rt_key_src ^ (__force u32)rt2->rt_key_src) |
708 (rt1->rt_mark ^ rt2->rt_mark) |
David S. Miller475949d2011-05-03 19:45:15 -0700709 (rt1->rt_key_tos ^ rt2->rt_key_tos) |
Julian Anastasovd547f722011-08-07 22:20:20 -0700710 (rt1->rt_route_iif ^ rt2->rt_route_iif) |
Julian Anastasov97a80412011-08-09 04:01:16 +0000711 (rt1->rt_oif ^ rt2->rt_oif)) == 0;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700712}
713
Denis V. Lunevb5921912008-01-22 23:50:25 -0800714static inline int compare_netns(struct rtable *rt1, struct rtable *rt2)
715{
Changli Gaod8d1f302010-06-10 23:31:35 -0700716 return net_eq(dev_net(rt1->dst.dev), dev_net(rt2->dst.dev));
Denis V. Lunevb5921912008-01-22 23:50:25 -0800717}
718
Denis V. Luneve84f84f2008-07-05 19:04:32 -0700719static inline int rt_is_expired(struct rtable *rth)
720{
Changli Gaod8d1f302010-06-10 23:31:35 -0700721 return rth->rt_genid != rt_genid(dev_net(rth->dst.dev));
Denis V. Luneve84f84f2008-07-05 19:04:32 -0700722}
723
Eric Dumazetbeb659b2007-11-19 22:43:37 -0800724/*
725 * Perform a full scan of hash table and free all entries.
726 * Can be called by a softirq or a process.
727 * In the later case, we want to be reschedule if necessary
728 */
David S. Miller6561a3b2010-12-19 21:11:20 -0800729static void rt_do_flush(struct net *net, int process_context)
Eric Dumazetbeb659b2007-11-19 22:43:37 -0800730{
731 unsigned int i;
732 struct rtable *rth, *next;
733
734 for (i = 0; i <= rt_hash_mask; i++) {
David S. Miller6561a3b2010-12-19 21:11:20 -0800735 struct rtable __rcu **pprev;
736 struct rtable *list;
737
Eric Dumazetbeb659b2007-11-19 22:43:37 -0800738 if (process_context && need_resched())
739 cond_resched();
Eric Dumazet33d480c2011-08-11 19:30:52 +0000740 rth = rcu_access_pointer(rt_hash_table[i].chain);
Eric Dumazetbeb659b2007-11-19 22:43:37 -0800741 if (!rth)
742 continue;
743
744 spin_lock_bh(rt_hash_lock_addr(i));
Denis V. Lunev32cb5b42008-07-05 19:06:12 -0700745
David S. Miller6561a3b2010-12-19 21:11:20 -0800746 list = NULL;
747 pprev = &rt_hash_table[i].chain;
748 rth = rcu_dereference_protected(*pprev,
Eric Dumazet1c317202010-10-25 21:02:07 +0000749 lockdep_is_held(rt_hash_lock_addr(i)));
Denis V. Lunev32cb5b42008-07-05 19:06:12 -0700750
David S. Miller6561a3b2010-12-19 21:11:20 -0800751 while (rth) {
752 next = rcu_dereference_protected(rth->dst.rt_next,
753 lockdep_is_held(rt_hash_lock_addr(i)));
Denis V. Lunev32cb5b42008-07-05 19:06:12 -0700754
David S. Miller6561a3b2010-12-19 21:11:20 -0800755 if (!net ||
756 net_eq(dev_net(rth->dst.dev), net)) {
757 rcu_assign_pointer(*pprev, next);
758 rcu_assign_pointer(rth->dst.rt_next, list);
759 list = rth;
Denis V. Lunev32cb5b42008-07-05 19:06:12 -0700760 } else {
David S. Miller6561a3b2010-12-19 21:11:20 -0800761 pprev = &rth->dst.rt_next;
Denis V. Lunev32cb5b42008-07-05 19:06:12 -0700762 }
David S. Miller6561a3b2010-12-19 21:11:20 -0800763 rth = next;
Denis V. Lunev32cb5b42008-07-05 19:06:12 -0700764 }
David S. Miller6561a3b2010-12-19 21:11:20 -0800765
Eric Dumazetbeb659b2007-11-19 22:43:37 -0800766 spin_unlock_bh(rt_hash_lock_addr(i));
767
David S. Miller6561a3b2010-12-19 21:11:20 -0800768 for (; list; list = next) {
769 next = rcu_dereference_protected(list->dst.rt_next, 1);
770 rt_free(list);
Eric Dumazetbeb659b2007-11-19 22:43:37 -0800771 }
772 }
773}
774
Neil Horman1080d702008-10-27 12:28:25 -0700775/*
776 * While freeing expired entries, we compute average chain length
777 * and standard deviation, using fixed-point arithmetic.
778 * This to have an estimation of rt_chain_length_max
779 * rt_chain_length_max = max(elasticity, AVG + 4*SD)
780 * We use 3 bits for frational part, and 29 (or 61) for magnitude.
781 */
782
783#define FRACT_BITS 3
784#define ONE (1UL << FRACT_BITS)
785
Eric Dumazet98376382010-03-08 03:20:00 +0000786/*
787 * Given a hash chain and an item in this hash chain,
788 * find if a previous entry has the same hash_inputs
789 * (but differs on tos, mark or oif)
790 * Returns 0 if an alias is found.
791 * Returns ONE if rth has no alias before itself.
792 */
793static int has_noalias(const struct rtable *head, const struct rtable *rth)
794{
795 const struct rtable *aux = head;
796
797 while (aux != rth) {
David S. Miller5e2b61f2011-03-04 21:47:09 -0800798 if (compare_hash_inputs(aux, rth))
Eric Dumazet98376382010-03-08 03:20:00 +0000799 return 0;
Eric Dumazet1c317202010-10-25 21:02:07 +0000800 aux = rcu_dereference_protected(aux->dst.rt_next, 1);
Eric Dumazet98376382010-03-08 03:20:00 +0000801 }
802 return ONE;
803}
804
Eric Dumazet9f28a2f2011-12-21 15:47:16 -0500805static void rt_check_expire(void)
806{
807 static unsigned int rover;
808 unsigned int i = rover, goal;
809 struct rtable *rth;
810 struct rtable __rcu **rthp;
811 unsigned long samples = 0;
812 unsigned long sum = 0, sum2 = 0;
813 unsigned long delta;
814 u64 mult;
815
816 delta = jiffies - expires_ljiffies;
817 expires_ljiffies = jiffies;
818 mult = ((u64)delta) << rt_hash_log;
819 if (ip_rt_gc_timeout > 1)
820 do_div(mult, ip_rt_gc_timeout);
821 goal = (unsigned int)mult;
822 if (goal > rt_hash_mask)
823 goal = rt_hash_mask + 1;
824 for (; goal > 0; goal--) {
825 unsigned long tmo = ip_rt_gc_timeout;
826 unsigned long length;
827
828 i = (i + 1) & rt_hash_mask;
829 rthp = &rt_hash_table[i].chain;
830
831 if (need_resched())
832 cond_resched();
833
834 samples++;
835
836 if (rcu_dereference_raw(*rthp) == NULL)
837 continue;
838 length = 0;
839 spin_lock_bh(rt_hash_lock_addr(i));
840 while ((rth = rcu_dereference_protected(*rthp,
841 lockdep_is_held(rt_hash_lock_addr(i)))) != NULL) {
842 prefetch(rth->dst.rt_next);
David S. Millerdf67e6c2012-06-26 00:10:09 -0700843 if (rt_is_expired(rth) ||
844 rt_may_expire(rth, tmo, ip_rt_gc_timeout)) {
Eric Dumazet9f28a2f2011-12-21 15:47:16 -0500845 *rthp = rth->dst.rt_next;
846 rt_free(rth);
847 continue;
848 }
Eric Dumazet9f28a2f2011-12-21 15:47:16 -0500849
David S. Millerdf67e6c2012-06-26 00:10:09 -0700850 /* We only count entries on a chain with equal
851 * hash inputs once so that entries for
852 * different QOS levels, and other non-hash
853 * input attributes don't unfairly skew the
854 * length computation
855 */
856 tmo >>= 1;
857 rthp = &rth->dst.rt_next;
858 length += has_noalias(rt_hash_table[i].chain, rth);
Eric Dumazet9f28a2f2011-12-21 15:47:16 -0500859 }
860 spin_unlock_bh(rt_hash_lock_addr(i));
861 sum += length;
862 sum2 += length*length;
863 }
864 if (samples) {
865 unsigned long avg = sum / samples;
866 unsigned long sd = int_sqrt(sum2 / samples - avg*avg);
867 rt_chain_length_max = max_t(unsigned long,
868 ip_rt_gc_elasticity,
869 (avg + 4*sd) >> FRACT_BITS);
870 }
871 rover = i;
872}
873
874/*
875 * rt_worker_func() is run in process context.
876 * we call rt_check_expire() to scan part of the hash table
877 */
878static void rt_worker_func(struct work_struct *work)
879{
880 rt_check_expire();
881 schedule_delayed_work(&expires_work, ip_rt_gc_interval);
882}
883
Eric Dumazet29e75252008-01-31 17:05:09 -0800884/*
Lucas De Marchi25985ed2011-03-30 22:57:33 -0300885 * Perturbation of rt_genid by a small quantity [1..256]
Eric Dumazet29e75252008-01-31 17:05:09 -0800886 * Using 8 bits of shuffling ensure we can call rt_cache_invalidate()
887 * many times (2^24) without giving recent rt_genid.
888 * Jenkins hash is strong enough that litle changes of rt_genid are OK.
Linus Torvalds1da177e2005-04-16 15:20:36 -0700889 */
Denis V. Lunev86c657f2008-07-05 19:03:31 -0700890static void rt_cache_invalidate(struct net *net)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700891{
Eric Dumazet29e75252008-01-31 17:05:09 -0800892 unsigned char shuffle;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700893
Eric Dumazet29e75252008-01-31 17:05:09 -0800894 get_random_bytes(&shuffle, sizeof(shuffle));
Denis V. Luneve84f84f2008-07-05 19:04:32 -0700895 atomic_add(shuffle + 1U, &net->ipv4.rt_genid);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700896}
897
Eric Dumazetbeb659b2007-11-19 22:43:37 -0800898/*
Eric Dumazet29e75252008-01-31 17:05:09 -0800899 * delay < 0 : invalidate cache (fast : entries will be deleted later)
900 * delay >= 0 : invalidate & flush cache (can be long)
901 */
Denis V. Lunev76e6ebf2008-07-05 19:00:44 -0700902void rt_cache_flush(struct net *net, int delay)
Eric Dumazet29e75252008-01-31 17:05:09 -0800903{
Denis V. Lunev86c657f2008-07-05 19:03:31 -0700904 rt_cache_invalidate(net);
Eric Dumazet29e75252008-01-31 17:05:09 -0800905 if (delay >= 0)
David S. Miller6561a3b2010-12-19 21:11:20 -0800906 rt_do_flush(net, !in_softirq());
Eric Dumazet29e75252008-01-31 17:05:09 -0800907}
908
Eric W. Biedermana5ee1552009-11-29 15:45:58 +0000909/* Flush previous cache invalidated entries from the cache */
David S. Miller6561a3b2010-12-19 21:11:20 -0800910void rt_cache_flush_batch(struct net *net)
Eric W. Biedermana5ee1552009-11-29 15:45:58 +0000911{
David S. Miller6561a3b2010-12-19 21:11:20 -0800912 rt_do_flush(net, !in_softirq());
Eric W. Biedermana5ee1552009-11-29 15:45:58 +0000913}
914
Neil Horman1080d702008-10-27 12:28:25 -0700915static void rt_emergency_hash_rebuild(struct net *net)
916{
Joe Perchese87cc472012-05-13 21:56:26 +0000917 net_warn_ratelimited("Route hash chain too long!\n");
Neil Horman3ee94372010-05-08 01:57:52 -0700918 rt_cache_invalidate(net);
Neil Horman1080d702008-10-27 12:28:25 -0700919}
920
Linus Torvalds1da177e2005-04-16 15:20:36 -0700921/*
922 Short description of GC goals.
923
924 We want to build algorithm, which will keep routing cache
925 at some equilibrium point, when number of aged off entries
926 is kept approximately equal to newly generated ones.
927
928 Current expiration strength is variable "expire".
929 We try to adjust it dynamically, so that if networking
930 is idle expires is large enough to keep enough of warm entries,
931 and when load increases it reduces to limit cache size.
932 */
933
Daniel Lezcano569d3642008-01-18 03:56:57 -0800934static int rt_garbage_collect(struct dst_ops *ops)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700935{
936 static unsigned long expire = RT_GC_TIMEOUT;
937 static unsigned long last_gc;
938 static int rover;
939 static int equilibrium;
Eric Dumazet1c317202010-10-25 21:02:07 +0000940 struct rtable *rth;
941 struct rtable __rcu **rthp;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700942 unsigned long now = jiffies;
943 int goal;
Eric Dumazetfc66f952010-10-08 06:37:34 +0000944 int entries = dst_entries_get_fast(&ipv4_dst_ops);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700945
946 /*
947 * Garbage collection is pretty expensive,
948 * do not make it too frequently.
949 */
950
951 RT_CACHE_STAT_INC(gc_total);
952
953 if (now - last_gc < ip_rt_gc_min_interval &&
Eric Dumazetfc66f952010-10-08 06:37:34 +0000954 entries < ip_rt_max_size) {
Linus Torvalds1da177e2005-04-16 15:20:36 -0700955 RT_CACHE_STAT_INC(gc_ignored);
956 goto out;
957 }
958
Eric Dumazetfc66f952010-10-08 06:37:34 +0000959 entries = dst_entries_get_slow(&ipv4_dst_ops);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700960 /* Calculate number of entries, which we want to expire now. */
Eric Dumazetfc66f952010-10-08 06:37:34 +0000961 goal = entries - (ip_rt_gc_elasticity << rt_hash_log);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700962 if (goal <= 0) {
963 if (equilibrium < ipv4_dst_ops.gc_thresh)
964 equilibrium = ipv4_dst_ops.gc_thresh;
Eric Dumazetfc66f952010-10-08 06:37:34 +0000965 goal = entries - equilibrium;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700966 if (goal > 0) {
Eric Dumazetb790ced2007-12-21 01:49:07 -0800967 equilibrium += min_t(unsigned int, goal >> 1, rt_hash_mask + 1);
Eric Dumazetfc66f952010-10-08 06:37:34 +0000968 goal = entries - equilibrium;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700969 }
970 } else {
971 /* We are in dangerous area. Try to reduce cache really
972 * aggressively.
973 */
Eric Dumazetb790ced2007-12-21 01:49:07 -0800974 goal = max_t(unsigned int, goal >> 1, rt_hash_mask + 1);
Eric Dumazetfc66f952010-10-08 06:37:34 +0000975 equilibrium = entries - goal;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700976 }
977
978 if (now - last_gc >= ip_rt_gc_min_interval)
979 last_gc = now;
980
981 if (goal <= 0) {
982 equilibrium += goal;
983 goto work_done;
984 }
985
986 do {
987 int i, k;
988
989 for (i = rt_hash_mask, k = rover; i >= 0; i--) {
990 unsigned long tmo = expire;
991
992 k = (k + 1) & rt_hash_mask;
993 rthp = &rt_hash_table[k].chain;
Eric Dumazet22c047c2005-07-05 14:55:24 -0700994 spin_lock_bh(rt_hash_lock_addr(k));
Eric Dumazet1c317202010-10-25 21:02:07 +0000995 while ((rth = rcu_dereference_protected(*rthp,
996 lockdep_is_held(rt_hash_lock_addr(k)))) != NULL) {
Denis V. Luneve84f84f2008-07-05 19:04:32 -0700997 if (!rt_is_expired(rth) &&
Eric Dumazet29e75252008-01-31 17:05:09 -0800998 !rt_may_expire(rth, tmo, expire)) {
Linus Torvalds1da177e2005-04-16 15:20:36 -0700999 tmo >>= 1;
Changli Gaod8d1f302010-06-10 23:31:35 -07001000 rthp = &rth->dst.rt_next;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001001 continue;
1002 }
Changli Gaod8d1f302010-06-10 23:31:35 -07001003 *rthp = rth->dst.rt_next;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001004 rt_free(rth);
1005 goal--;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001006 }
Eric Dumazet22c047c2005-07-05 14:55:24 -07001007 spin_unlock_bh(rt_hash_lock_addr(k));
Linus Torvalds1da177e2005-04-16 15:20:36 -07001008 if (goal <= 0)
1009 break;
1010 }
1011 rover = k;
1012
1013 if (goal <= 0)
1014 goto work_done;
1015
1016 /* Goal is not achieved. We stop process if:
1017
1018 - if expire reduced to zero. Otherwise, expire is halfed.
1019 - if table is not full.
1020 - if we are called from interrupt.
1021 - jiffies check is just fallback/debug loop breaker.
1022 We will not spin here for long time in any case.
1023 */
1024
1025 RT_CACHE_STAT_INC(gc_goal_miss);
1026
1027 if (expire == 0)
1028 break;
1029
1030 expire >>= 1;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001031
Eric Dumazetfc66f952010-10-08 06:37:34 +00001032 if (dst_entries_get_fast(&ipv4_dst_ops) < ip_rt_max_size)
Linus Torvalds1da177e2005-04-16 15:20:36 -07001033 goto out;
1034 } while (!in_softirq() && time_before_eq(jiffies, now));
1035
Eric Dumazetfc66f952010-10-08 06:37:34 +00001036 if (dst_entries_get_fast(&ipv4_dst_ops) < ip_rt_max_size)
1037 goto out;
1038 if (dst_entries_get_slow(&ipv4_dst_ops) < ip_rt_max_size)
Linus Torvalds1da177e2005-04-16 15:20:36 -07001039 goto out;
Joe Perchese87cc472012-05-13 21:56:26 +00001040 net_warn_ratelimited("dst cache overflow\n");
Linus Torvalds1da177e2005-04-16 15:20:36 -07001041 RT_CACHE_STAT_INC(gc_dst_overflow);
1042 return 1;
1043
1044work_done:
1045 expire += ip_rt_gc_min_interval;
1046 if (expire > ip_rt_gc_timeout ||
Eric Dumazetfc66f952010-10-08 06:37:34 +00001047 dst_entries_get_fast(&ipv4_dst_ops) < ipv4_dst_ops.gc_thresh ||
1048 dst_entries_get_slow(&ipv4_dst_ops) < ipv4_dst_ops.gc_thresh)
Linus Torvalds1da177e2005-04-16 15:20:36 -07001049 expire = ip_rt_gc_timeout;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001050out: return 0;
1051}
1052
Eric Dumazet98376382010-03-08 03:20:00 +00001053/*
1054 * Returns number of entries in a hash chain that have different hash_inputs
1055 */
1056static int slow_chain_length(const struct rtable *head)
1057{
1058 int length = 0;
1059 const struct rtable *rth = head;
1060
1061 while (rth) {
1062 length += has_noalias(head, rth);
Eric Dumazet1c317202010-10-25 21:02:07 +00001063 rth = rcu_dereference_protected(rth->dst.rt_next, 1);
Eric Dumazet98376382010-03-08 03:20:00 +00001064 }
1065 return length >> FRACT_BITS;
1066}
1067
David S. Millerf894cbf2012-07-02 21:52:24 -07001068static struct neighbour *ipv4_neigh_lookup(const struct dst_entry *dst,
1069 struct sk_buff *skb,
1070 const void *daddr)
David Miller3769cff2011-07-11 22:44:24 +00001071{
David S. Millerd3aaeb32011-07-18 00:40:17 -07001072 struct net_device *dev = dst->dev;
1073 const __be32 *pkey = daddr;
David S. Miller39232972012-01-26 15:22:32 -05001074 const struct rtable *rt;
David Miller3769cff2011-07-11 22:44:24 +00001075 struct neighbour *n;
1076
David S. Miller39232972012-01-26 15:22:32 -05001077 rt = (const struct rtable *) dst;
David S. Millera263b302012-07-02 02:02:15 -07001078 if (rt->rt_gateway)
David S. Miller39232972012-01-26 15:22:32 -05001079 pkey = (const __be32 *) &rt->rt_gateway;
David S. Millerf894cbf2012-07-02 21:52:24 -07001080 else if (skb)
1081 pkey = &ip_hdr(skb)->daddr;
David S. Millerd3aaeb32011-07-18 00:40:17 -07001082
David S. Miller80703d22012-02-15 17:48:35 -05001083 n = __ipv4_neigh_lookup(dev, *(__force u32 *)pkey);
David S. Millerd3aaeb32011-07-18 00:40:17 -07001084 if (n)
1085 return n;
David Miller32092ec2011-07-25 00:01:41 +00001086 return neigh_create(&arp_tbl, pkey, dev);
David S. Millerd3aaeb32011-07-18 00:40:17 -07001087}
1088
Eric Dumazet95c96172012-04-15 05:58:06 +00001089static struct rtable *rt_intern_hash(unsigned int hash, struct rtable *rt,
David S. Millerb23dd4f2011-03-02 14:31:35 -08001090 struct sk_buff *skb, int ifindex)
Linus Torvalds1da177e2005-04-16 15:20:36 -07001091{
Eric Dumazet1c317202010-10-25 21:02:07 +00001092 struct rtable *rth, *cand;
1093 struct rtable __rcu **rthp, **candp;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001094 unsigned long now;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001095 u32 min_score;
1096 int chain_length;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001097
1098restart:
1099 chain_length = 0;
1100 min_score = ~(u32)0;
1101 cand = NULL;
1102 candp = NULL;
1103 now = jiffies;
1104
Eric Dumazet7586ece2012-06-20 05:02:19 +00001105 if (!rt_caching(dev_net(rt->dst.dev)) || (rt->dst.flags & DST_NOCACHE)) {
Neil Horman73e42892009-06-20 01:15:16 -07001106 /*
1107 * If we're not caching, just tell the caller we
1108 * were successful and don't touch the route. The
1109 * caller hold the sole reference to the cache entry, and
1110 * it will be released when the caller is done with it.
1111 * If we drop it here, the callers have no way to resolve routes
1112 * when we're not caching. Instead, just point *rp at rt, so
1113 * the caller gets a single use out of the route
Neil Hormanb6280b42009-06-22 10:18:53 +00001114 * Note that we do rt_free on this new route entry, so that
1115 * once its refcount hits zero, we are still able to reap it
1116 * (Thanks Alexey)
Eric Dumazet27b75c92010-10-15 05:44:11 +00001117 * Note: To avoid expensive rcu stuff for this uncached dst,
1118 * we set DST_NOCACHE so that dst_release() can free dst without
1119 * waiting a grace period.
Neil Horman73e42892009-06-20 01:15:16 -07001120 */
Neil Hormanb6280b42009-06-22 10:18:53 +00001121
Eric Dumazetc7d44262010-10-03 22:17:54 -07001122 rt->dst.flags |= DST_NOCACHE;
Neil Hormanb6280b42009-06-22 10:18:53 +00001123 goto skip_hashing;
Neil Horman1080d702008-10-27 12:28:25 -07001124 }
1125
Linus Torvalds1da177e2005-04-16 15:20:36 -07001126 rthp = &rt_hash_table[hash].chain;
1127
Eric Dumazet22c047c2005-07-05 14:55:24 -07001128 spin_lock_bh(rt_hash_lock_addr(hash));
Eric Dumazet1c317202010-10-25 21:02:07 +00001129 while ((rth = rcu_dereference_protected(*rthp,
1130 lockdep_is_held(rt_hash_lock_addr(hash)))) != NULL) {
Denis V. Luneve84f84f2008-07-05 19:04:32 -07001131 if (rt_is_expired(rth)) {
Changli Gaod8d1f302010-06-10 23:31:35 -07001132 *rthp = rth->dst.rt_next;
Eric Dumazet29e75252008-01-31 17:05:09 -08001133 rt_free(rth);
1134 continue;
1135 }
David S. Miller5e2b61f2011-03-04 21:47:09 -08001136 if (compare_keys(rth, rt) && compare_netns(rth, rt)) {
Linus Torvalds1da177e2005-04-16 15:20:36 -07001137 /* Put it first */
Changli Gaod8d1f302010-06-10 23:31:35 -07001138 *rthp = rth->dst.rt_next;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001139 /*
1140 * Since lookup is lockfree, the deletion
1141 * must be visible to another weakly ordered CPU before
1142 * the insertion at the start of the hash chain.
1143 */
Changli Gaod8d1f302010-06-10 23:31:35 -07001144 rcu_assign_pointer(rth->dst.rt_next,
Linus Torvalds1da177e2005-04-16 15:20:36 -07001145 rt_hash_table[hash].chain);
1146 /*
1147 * Since lookup is lockfree, the update writes
1148 * must be ordered for consistency on SMP.
1149 */
1150 rcu_assign_pointer(rt_hash_table[hash].chain, rth);
1151
Changli Gaod8d1f302010-06-10 23:31:35 -07001152 dst_use(&rth->dst, now);
Eric Dumazet22c047c2005-07-05 14:55:24 -07001153 spin_unlock_bh(rt_hash_lock_addr(hash));
Linus Torvalds1da177e2005-04-16 15:20:36 -07001154
1155 rt_drop(rt);
David S. Millerb23dd4f2011-03-02 14:31:35 -08001156 if (skb)
Changli Gaod8d1f302010-06-10 23:31:35 -07001157 skb_dst_set(skb, &rth->dst);
David S. Millerb23dd4f2011-03-02 14:31:35 -08001158 return rth;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001159 }
1160
Changli Gaod8d1f302010-06-10 23:31:35 -07001161 if (!atomic_read(&rth->dst.__refcnt)) {
Linus Torvalds1da177e2005-04-16 15:20:36 -07001162 u32 score = rt_score(rth);
1163
1164 if (score <= min_score) {
1165 cand = rth;
1166 candp = rthp;
1167 min_score = score;
1168 }
1169 }
1170
1171 chain_length++;
1172
Changli Gaod8d1f302010-06-10 23:31:35 -07001173 rthp = &rth->dst.rt_next;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001174 }
1175
1176 if (cand) {
1177 /* ip_rt_gc_elasticity used to be average length of chain
1178 * length, when exceeded gc becomes really aggressive.
1179 *
1180 * The second limit is less certain. At the moment it allows
1181 * only 2 entries per bucket. We will see.
1182 */
1183 if (chain_length > ip_rt_gc_elasticity) {
Changli Gaod8d1f302010-06-10 23:31:35 -07001184 *candp = cand->dst.rt_next;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001185 rt_free(cand);
1186 }
Neil Horman1080d702008-10-27 12:28:25 -07001187 } else {
Eric Dumazet98376382010-03-08 03:20:00 +00001188 if (chain_length > rt_chain_length_max &&
1189 slow_chain_length(rt_hash_table[hash].chain) > rt_chain_length_max) {
Changli Gaod8d1f302010-06-10 23:31:35 -07001190 struct net *net = dev_net(rt->dst.dev);
Neil Horman1080d702008-10-27 12:28:25 -07001191 int num = ++net->ipv4.current_rt_cache_rebuild_count;
Pavel Emelyanovb35ecb52010-03-24 07:43:17 +00001192 if (!rt_caching(net)) {
Joe Perches058bd4d2012-03-11 18:36:11 +00001193 pr_warn("%s: %d rebuilds is over limit, route caching disabled\n",
Changli Gaod8d1f302010-06-10 23:31:35 -07001194 rt->dst.dev->name, num);
Neil Horman1080d702008-10-27 12:28:25 -07001195 }
Pavel Emelyanovb35ecb52010-03-24 07:43:17 +00001196 rt_emergency_hash_rebuild(net);
Pavel Emelyanov6a2bad72010-03-24 21:51:22 +00001197 spin_unlock_bh(rt_hash_lock_addr(hash));
1198
David S. Miller5e2b61f2011-03-04 21:47:09 -08001199 hash = rt_hash(rt->rt_key_dst, rt->rt_key_src,
Pavel Emelyanov6a2bad72010-03-24 21:51:22 +00001200 ifindex, rt_genid(net));
1201 goto restart;
Neil Horman1080d702008-10-27 12:28:25 -07001202 }
Linus Torvalds1da177e2005-04-16 15:20:36 -07001203 }
1204
Changli Gaod8d1f302010-06-10 23:31:35 -07001205 rt->dst.rt_next = rt_hash_table[hash].chain;
Neil Horman1080d702008-10-27 12:28:25 -07001206
Eric Dumazet00269b52008-10-16 14:18:29 -07001207 /*
1208 * Since lookup is lockfree, we must make sure
Lucas De Marchi25985ed2011-03-30 22:57:33 -03001209 * previous writes to rt are committed to memory
Eric Dumazet00269b52008-10-16 14:18:29 -07001210 * before making rt visible to other CPUS.
1211 */
Eric Dumazet1ddbcb02009-05-19 20:14:28 +00001212 rcu_assign_pointer(rt_hash_table[hash].chain, rt);
Neil Horman1080d702008-10-27 12:28:25 -07001213
Eric Dumazet22c047c2005-07-05 14:55:24 -07001214 spin_unlock_bh(rt_hash_lock_addr(hash));
Neil Horman73e42892009-06-20 01:15:16 -07001215
Neil Hormanb6280b42009-06-22 10:18:53 +00001216skip_hashing:
David S. Millerb23dd4f2011-03-02 14:31:35 -08001217 if (skb)
Changli Gaod8d1f302010-06-10 23:31:35 -07001218 skb_dst_set(skb, &rt->dst);
David S. Millerb23dd4f2011-03-02 14:31:35 -08001219 return rt;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001220}
1221
Linus Torvalds1da177e2005-04-16 15:20:36 -07001222/*
1223 * Peer allocation may fail only in serious out-of-memory conditions. However
1224 * we still can generate some output.
1225 * Random ID selection looks a bit dangerous because we have no chances to
1226 * select ID being unique in a reasonable period of time.
1227 * But broken packet identifier may be better than no packet at all.
1228 */
1229static void ip_select_fb_ident(struct iphdr *iph)
1230{
1231 static DEFINE_SPINLOCK(ip_fb_id_lock);
1232 static u32 ip_fallback_id;
1233 u32 salt;
1234
1235 spin_lock_bh(&ip_fb_id_lock);
Al Viroe4485152006-09-26 22:15:01 -07001236 salt = secure_ip_id((__force __be32)ip_fallback_id ^ iph->daddr);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001237 iph->id = htons(salt & 0xFFFF);
1238 ip_fallback_id = salt;
1239 spin_unlock_bh(&ip_fb_id_lock);
1240}
1241
1242void __ip_select_ident(struct iphdr *iph, struct dst_entry *dst, int more)
1243{
David S. Miller1d861aa2012-07-10 03:58:16 -07001244 struct net *net = dev_net(dst->dev);
1245 struct inet_peer *peer;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001246
David S. Miller1d861aa2012-07-10 03:58:16 -07001247 peer = inet_getpeer_v4(net->ipv4.peers, iph->daddr, 1);
1248 if (peer) {
1249 iph->id = htons(inet_getid(peer, more));
1250 inet_putpeer(peer);
1251 return;
1252 }
Linus Torvalds1da177e2005-04-16 15:20:36 -07001253
1254 ip_select_fb_ident(iph);
1255}
Eric Dumazet4bc2f182010-07-09 21:22:10 +00001256EXPORT_SYMBOL(__ip_select_ident);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001257
Eric Dumazet95c96172012-04-15 05:58:06 +00001258static void rt_del(unsigned int hash, struct rtable *rt)
Linus Torvalds1da177e2005-04-16 15:20:36 -07001259{
Eric Dumazet1c317202010-10-25 21:02:07 +00001260 struct rtable __rcu **rthp;
1261 struct rtable *aux;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001262
Eric Dumazet29e75252008-01-31 17:05:09 -08001263 rthp = &rt_hash_table[hash].chain;
Eric Dumazet22c047c2005-07-05 14:55:24 -07001264 spin_lock_bh(rt_hash_lock_addr(hash));
Linus Torvalds1da177e2005-04-16 15:20:36 -07001265 ip_rt_put(rt);
Eric Dumazet1c317202010-10-25 21:02:07 +00001266 while ((aux = rcu_dereference_protected(*rthp,
1267 lockdep_is_held(rt_hash_lock_addr(hash)))) != NULL) {
Denis V. Luneve84f84f2008-07-05 19:04:32 -07001268 if (aux == rt || rt_is_expired(aux)) {
Changli Gaod8d1f302010-06-10 23:31:35 -07001269 *rthp = aux->dst.rt_next;
Eric Dumazet29e75252008-01-31 17:05:09 -08001270 rt_free(aux);
1271 continue;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001272 }
Changli Gaod8d1f302010-06-10 23:31:35 -07001273 rthp = &aux->dst.rt_next;
Eric Dumazet29e75252008-01-31 17:05:09 -08001274 }
Eric Dumazet22c047c2005-07-05 14:55:24 -07001275 spin_unlock_bh(rt_hash_lock_addr(hash));
Linus Torvalds1da177e2005-04-16 15:20:36 -07001276}
1277
Eric Dumazet5abf7f72012-07-17 22:42:13 +02001278static void __build_flow_key(struct flowi4 *fl4, const struct sock *sk,
David S. Miller4895c772012-07-17 04:19:00 -07001279 const struct iphdr *iph,
1280 int oif, u8 tos,
1281 u8 prot, u32 mark, int flow_flags)
1282{
1283 if (sk) {
1284 const struct inet_sock *inet = inet_sk(sk);
1285
1286 oif = sk->sk_bound_dev_if;
1287 mark = sk->sk_mark;
1288 tos = RT_CONN_FLAGS(sk);
1289 prot = inet->hdrincl ? IPPROTO_RAW : sk->sk_protocol;
1290 }
1291 flowi4_init_output(fl4, oif, mark, tos,
1292 RT_SCOPE_UNIVERSE, prot,
1293 flow_flags,
1294 iph->daddr, iph->saddr, 0, 0);
1295}
1296
Eric Dumazet5abf7f72012-07-17 22:42:13 +02001297static void build_skb_flow_key(struct flowi4 *fl4, const struct sk_buff *skb,
1298 const struct sock *sk)
David S. Miller4895c772012-07-17 04:19:00 -07001299{
1300 const struct iphdr *iph = ip_hdr(skb);
1301 int oif = skb->dev->ifindex;
1302 u8 tos = RT_TOS(iph->tos);
1303 u8 prot = iph->protocol;
1304 u32 mark = skb->mark;
1305
1306 __build_flow_key(fl4, sk, iph, oif, tos, prot, mark, 0);
1307}
1308
Eric Dumazet5abf7f72012-07-17 22:42:13 +02001309static void build_sk_flow_key(struct flowi4 *fl4, const struct sock *sk)
David S. Miller4895c772012-07-17 04:19:00 -07001310{
1311 const struct inet_sock *inet = inet_sk(sk);
Eric Dumazet5abf7f72012-07-17 22:42:13 +02001312 const struct ip_options_rcu *inet_opt;
David S. Miller4895c772012-07-17 04:19:00 -07001313 __be32 daddr = inet->inet_daddr;
1314
1315 rcu_read_lock();
1316 inet_opt = rcu_dereference(inet->inet_opt);
1317 if (inet_opt && inet_opt->opt.srr)
1318 daddr = inet_opt->opt.faddr;
1319 flowi4_init_output(fl4, sk->sk_bound_dev_if, sk->sk_mark,
1320 RT_CONN_FLAGS(sk), RT_SCOPE_UNIVERSE,
1321 inet->hdrincl ? IPPROTO_RAW : sk->sk_protocol,
1322 inet_sk_flowi_flags(sk),
1323 daddr, inet->inet_saddr, 0, 0);
1324 rcu_read_unlock();
1325}
1326
Eric Dumazet5abf7f72012-07-17 22:42:13 +02001327static void ip_rt_build_flow_key(struct flowi4 *fl4, const struct sock *sk,
1328 const struct sk_buff *skb)
David S. Miller4895c772012-07-17 04:19:00 -07001329{
1330 if (skb)
1331 build_skb_flow_key(fl4, skb, sk);
1332 else
1333 build_sk_flow_key(fl4, sk);
1334}
1335
1336static DEFINE_SPINLOCK(fnhe_lock);
1337
1338static struct fib_nh_exception *fnhe_oldest(struct fnhe_hash_bucket *hash, __be32 daddr)
1339{
1340 struct fib_nh_exception *fnhe, *oldest;
1341
1342 oldest = rcu_dereference(hash->chain);
1343 for (fnhe = rcu_dereference(oldest->fnhe_next); fnhe;
1344 fnhe = rcu_dereference(fnhe->fnhe_next)) {
1345 if (time_before(fnhe->fnhe_stamp, oldest->fnhe_stamp))
1346 oldest = fnhe;
1347 }
1348 return oldest;
1349}
1350
David S. Millerd3a25c92012-07-17 13:23:08 -07001351static inline u32 fnhe_hashfun(__be32 daddr)
1352{
1353 u32 hval;
1354
1355 hval = (__force u32) daddr;
1356 hval ^= (hval >> 11) ^ (hval >> 22);
1357
1358 return hval & (FNHE_HASH_SIZE - 1);
1359}
1360
David S. Miller4895c772012-07-17 04:19:00 -07001361static struct fib_nh_exception *find_or_create_fnhe(struct fib_nh *nh, __be32 daddr)
1362{
1363 struct fnhe_hash_bucket *hash = nh->nh_exceptions;
1364 struct fib_nh_exception *fnhe;
1365 int depth;
1366 u32 hval;
1367
1368 if (!hash) {
1369 hash = nh->nh_exceptions = kzalloc(FNHE_HASH_SIZE * sizeof(*hash),
1370 GFP_ATOMIC);
1371 if (!hash)
1372 return NULL;
1373 }
1374
David S. Millerd3a25c92012-07-17 13:23:08 -07001375 hval = fnhe_hashfun(daddr);
David S. Miller4895c772012-07-17 04:19:00 -07001376 hash += hval;
1377
1378 depth = 0;
1379 for (fnhe = rcu_dereference(hash->chain); fnhe;
1380 fnhe = rcu_dereference(fnhe->fnhe_next)) {
1381 if (fnhe->fnhe_daddr == daddr)
1382 goto out;
1383 depth++;
1384 }
1385
1386 if (depth > FNHE_RECLAIM_DEPTH) {
1387 fnhe = fnhe_oldest(hash + hval, daddr);
1388 goto out_daddr;
1389 }
1390 fnhe = kzalloc(sizeof(*fnhe), GFP_ATOMIC);
1391 if (!fnhe)
1392 return NULL;
1393
1394 fnhe->fnhe_next = hash->chain;
1395 rcu_assign_pointer(hash->chain, fnhe);
1396
1397out_daddr:
1398 fnhe->fnhe_daddr = daddr;
1399out:
1400 fnhe->fnhe_stamp = jiffies;
1401 return fnhe;
1402}
1403
1404static void __ip_do_redirect(struct rtable *rt, struct sk_buff *skb, struct flowi4 *fl4)
Linus Torvalds1da177e2005-04-16 15:20:36 -07001405{
David S. Millere47a1852012-07-11 20:55:47 -07001406 __be32 new_gw = icmp_hdr(skb)->un.gateway;
David S. Miller94206122012-07-11 20:38:08 -07001407 __be32 old_gw = ip_hdr(skb)->saddr;
David S. Millere47a1852012-07-11 20:55:47 -07001408 struct net_device *dev = skb->dev;
David S. Millere47a1852012-07-11 20:55:47 -07001409 struct in_device *in_dev;
David S. Miller4895c772012-07-17 04:19:00 -07001410 struct fib_result res;
David S. Millere47a1852012-07-11 20:55:47 -07001411 struct neighbour *n;
Denis V. Lunev317805b2008-02-28 20:50:06 -08001412 struct net *net;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001413
David S. Miller94206122012-07-11 20:38:08 -07001414 switch (icmp_hdr(skb)->code & 7) {
1415 case ICMP_REDIR_NET:
1416 case ICMP_REDIR_NETTOS:
1417 case ICMP_REDIR_HOST:
1418 case ICMP_REDIR_HOSTTOS:
1419 break;
1420
1421 default:
1422 return;
1423 }
1424
David S. Millere47a1852012-07-11 20:55:47 -07001425 if (rt->rt_gateway != old_gw)
1426 return;
1427
1428 in_dev = __in_dev_get_rcu(dev);
1429 if (!in_dev)
1430 return;
1431
YOSHIFUJI Hideakic346dca2008-03-25 21:47:49 +09001432 net = dev_net(dev);
Joe Perches9d4fb272009-11-23 10:41:23 -08001433 if (new_gw == old_gw || !IN_DEV_RX_REDIRECTS(in_dev) ||
1434 ipv4_is_multicast(new_gw) || ipv4_is_lbcast(new_gw) ||
1435 ipv4_is_zeronet(new_gw))
Linus Torvalds1da177e2005-04-16 15:20:36 -07001436 goto reject_redirect;
1437
1438 if (!IN_DEV_SHARED_MEDIA(in_dev)) {
1439 if (!inet_addr_onlink(in_dev, new_gw, old_gw))
1440 goto reject_redirect;
1441 if (IN_DEV_SEC_REDIRECTS(in_dev) && ip_fib_check_default(new_gw, dev))
1442 goto reject_redirect;
1443 } else {
Denis V. Lunev317805b2008-02-28 20:50:06 -08001444 if (inet_addr_type(net, new_gw) != RTN_UNICAST)
Linus Torvalds1da177e2005-04-16 15:20:36 -07001445 goto reject_redirect;
1446 }
1447
David S. Miller4895c772012-07-17 04:19:00 -07001448 n = ipv4_neigh_lookup(&rt->dst, NULL, &new_gw);
David S. Millere47a1852012-07-11 20:55:47 -07001449 if (n) {
1450 if (!(n->nud_state & NUD_VALID)) {
1451 neigh_event_send(n, NULL);
1452 } else {
David S. Miller4895c772012-07-17 04:19:00 -07001453 if (fib_lookup(net, fl4, &res) == 0) {
1454 struct fib_nh *nh = &FIB_RES_NH(res);
1455 struct fib_nh_exception *fnhe;
1456
1457 spin_lock_bh(&fnhe_lock);
1458 fnhe = find_or_create_fnhe(nh, fl4->daddr);
1459 if (fnhe)
1460 fnhe->fnhe_gw = new_gw;
1461 spin_unlock_bh(&fnhe_lock);
1462 }
David S. Millere47a1852012-07-11 20:55:47 -07001463 rt->rt_gateway = new_gw;
1464 rt->rt_flags |= RTCF_REDIRECTED;
1465 call_netevent_notifiers(NETEVENT_NEIGH_UPDATE, n);
1466 }
1467 neigh_release(n);
1468 }
1469 return;
1470
1471reject_redirect:
1472#ifdef CONFIG_IP_ROUTE_VERBOSE
David S. Miller99ee0382012-07-12 07:40:05 -07001473 if (IN_DEV_LOG_MARTIANS(in_dev)) {
1474 const struct iphdr *iph = (const struct iphdr *) skb->data;
1475 __be32 daddr = iph->daddr;
1476 __be32 saddr = iph->saddr;
1477
David S. Millere47a1852012-07-11 20:55:47 -07001478 net_info_ratelimited("Redirect from %pI4 on %s about %pI4 ignored\n"
1479 " Advised path = %pI4 -> %pI4\n",
1480 &old_gw, dev->name, &new_gw,
1481 &saddr, &daddr);
David S. Miller99ee0382012-07-12 07:40:05 -07001482 }
David S. Millere47a1852012-07-11 20:55:47 -07001483#endif
1484 ;
1485}
1486
David S. Miller4895c772012-07-17 04:19:00 -07001487static void ip_do_redirect(struct dst_entry *dst, struct sock *sk, struct sk_buff *skb)
1488{
1489 struct rtable *rt;
1490 struct flowi4 fl4;
1491
1492 rt = (struct rtable *) dst;
1493
1494 ip_rt_build_flow_key(&fl4, sk, skb);
1495 __ip_do_redirect(rt, skb, &fl4);
1496}
1497
Linus Torvalds1da177e2005-04-16 15:20:36 -07001498static struct dst_entry *ipv4_negative_advice(struct dst_entry *dst)
1499{
Eric Dumazetee6b9672008-03-05 18:30:47 -08001500 struct rtable *rt = (struct rtable *)dst;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001501 struct dst_entry *ret = dst;
1502
1503 if (rt) {
Timo Teräsd11a4dc2010-03-18 23:20:20 +00001504 if (dst->obsolete > 0) {
Linus Torvalds1da177e2005-04-16 15:20:36 -07001505 ip_rt_put(rt);
1506 ret = NULL;
David S. Miller59436342012-07-10 06:58:42 -07001507 } else if ((rt->rt_flags & RTCF_REDIRECTED) ||
1508 rt->dst.expires) {
Eric Dumazet95c96172012-04-15 05:58:06 +00001509 unsigned int hash = rt_hash(rt->rt_key_dst, rt->rt_key_src,
David S. Miller5e2b61f2011-03-04 21:47:09 -08001510 rt->rt_oif,
Denis V. Luneve84f84f2008-07-05 19:04:32 -07001511 rt_genid(dev_net(dst->dev)));
Linus Torvalds1da177e2005-04-16 15:20:36 -07001512 rt_del(hash, rt);
1513 ret = NULL;
1514 }
1515 }
1516 return ret;
1517}
1518
1519/*
1520 * Algorithm:
1521 * 1. The first ip_rt_redirect_number redirects are sent
1522 * with exponential backoff, then we stop sending them at all,
1523 * assuming that the host ignores our redirects.
1524 * 2. If we did not see packets requiring redirects
1525 * during ip_rt_redirect_silence, we assume that the host
1526 * forgot redirected route and start to send redirects again.
1527 *
1528 * This algorithm is much cheaper and more intelligent than dumb load limiting
1529 * in icmp.c.
1530 *
1531 * NOTE. Do not forget to inhibit load limiting for redirects (redundant)
1532 * and "frag. need" (breaks PMTU discovery) in icmp.c.
1533 */
1534
1535void ip_rt_send_redirect(struct sk_buff *skb)
1536{
Eric Dumazet511c3f92009-06-02 05:14:27 +00001537 struct rtable *rt = skb_rtable(skb);
Eric Dumazet30038fc2009-08-28 23:52:01 -07001538 struct in_device *in_dev;
David S. Miller92d86822011-02-04 15:55:25 -08001539 struct inet_peer *peer;
David S. Miller1d861aa2012-07-10 03:58:16 -07001540 struct net *net;
Eric Dumazet30038fc2009-08-28 23:52:01 -07001541 int log_martians;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001542
Eric Dumazet30038fc2009-08-28 23:52:01 -07001543 rcu_read_lock();
Changli Gaod8d1f302010-06-10 23:31:35 -07001544 in_dev = __in_dev_get_rcu(rt->dst.dev);
Eric Dumazet30038fc2009-08-28 23:52:01 -07001545 if (!in_dev || !IN_DEV_TX_REDIRECTS(in_dev)) {
1546 rcu_read_unlock();
Linus Torvalds1da177e2005-04-16 15:20:36 -07001547 return;
Eric Dumazet30038fc2009-08-28 23:52:01 -07001548 }
1549 log_martians = IN_DEV_LOG_MARTIANS(in_dev);
1550 rcu_read_unlock();
Linus Torvalds1da177e2005-04-16 15:20:36 -07001551
David S. Miller1d861aa2012-07-10 03:58:16 -07001552 net = dev_net(rt->dst.dev);
1553 peer = inet_getpeer_v4(net->ipv4.peers, ip_hdr(skb)->saddr, 1);
David S. Miller92d86822011-02-04 15:55:25 -08001554 if (!peer) {
1555 icmp_send(skb, ICMP_REDIRECT, ICMP_REDIR_HOST, rt->rt_gateway);
1556 return;
1557 }
1558
Linus Torvalds1da177e2005-04-16 15:20:36 -07001559 /* No redirected packets during ip_rt_redirect_silence;
1560 * reset the algorithm.
1561 */
David S. Miller92d86822011-02-04 15:55:25 -08001562 if (time_after(jiffies, peer->rate_last + ip_rt_redirect_silence))
1563 peer->rate_tokens = 0;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001564
1565 /* Too many ignored redirects; do not send anything
Changli Gaod8d1f302010-06-10 23:31:35 -07001566 * set dst.rate_last to the last seen redirected packet.
Linus Torvalds1da177e2005-04-16 15:20:36 -07001567 */
David S. Miller92d86822011-02-04 15:55:25 -08001568 if (peer->rate_tokens >= ip_rt_redirect_number) {
1569 peer->rate_last = jiffies;
David S. Miller1d861aa2012-07-10 03:58:16 -07001570 goto out_put_peer;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001571 }
1572
1573 /* Check for load limit; set rate_last to the latest sent
1574 * redirect.
1575 */
David S. Miller92d86822011-02-04 15:55:25 -08001576 if (peer->rate_tokens == 0 ||
Li Yewang14fb8a72006-12-18 00:26:35 -08001577 time_after(jiffies,
David S. Miller92d86822011-02-04 15:55:25 -08001578 (peer->rate_last +
1579 (ip_rt_redirect_load << peer->rate_tokens)))) {
Linus Torvalds1da177e2005-04-16 15:20:36 -07001580 icmp_send(skb, ICMP_REDIRECT, ICMP_REDIR_HOST, rt->rt_gateway);
David S. Miller92d86822011-02-04 15:55:25 -08001581 peer->rate_last = jiffies;
1582 ++peer->rate_tokens;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001583#ifdef CONFIG_IP_ROUTE_VERBOSE
Eric Dumazet30038fc2009-08-28 23:52:01 -07001584 if (log_martians &&
Joe Perchese87cc472012-05-13 21:56:26 +00001585 peer->rate_tokens == ip_rt_redirect_number)
1586 net_warn_ratelimited("host %pI4/if%d ignores redirects for %pI4 to %pI4\n",
1587 &ip_hdr(skb)->saddr, rt->rt_iif,
1588 &rt->rt_dst, &rt->rt_gateway);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001589#endif
1590 }
David S. Miller1d861aa2012-07-10 03:58:16 -07001591out_put_peer:
1592 inet_putpeer(peer);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001593}
1594
1595static int ip_error(struct sk_buff *skb)
1596{
David S. Miller251da412012-06-26 16:27:09 -07001597 struct in_device *in_dev = __in_dev_get_rcu(skb->dev);
Eric Dumazet511c3f92009-06-02 05:14:27 +00001598 struct rtable *rt = skb_rtable(skb);
David S. Miller92d86822011-02-04 15:55:25 -08001599 struct inet_peer *peer;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001600 unsigned long now;
David S. Miller251da412012-06-26 16:27:09 -07001601 struct net *net;
David S. Miller92d86822011-02-04 15:55:25 -08001602 bool send;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001603 int code;
1604
David S. Miller251da412012-06-26 16:27:09 -07001605 net = dev_net(rt->dst.dev);
1606 if (!IN_DEV_FORWARD(in_dev)) {
1607 switch (rt->dst.error) {
1608 case EHOSTUNREACH:
1609 IP_INC_STATS_BH(net, IPSTATS_MIB_INADDRERRORS);
1610 break;
1611
1612 case ENETUNREACH:
1613 IP_INC_STATS_BH(net, IPSTATS_MIB_INNOROUTES);
1614 break;
1615 }
1616 goto out;
1617 }
1618
Changli Gaod8d1f302010-06-10 23:31:35 -07001619 switch (rt->dst.error) {
Joe Perches4500ebf2011-07-01 09:43:07 +00001620 case EINVAL:
1621 default:
1622 goto out;
1623 case EHOSTUNREACH:
1624 code = ICMP_HOST_UNREACH;
1625 break;
1626 case ENETUNREACH:
1627 code = ICMP_NET_UNREACH;
David S. Miller251da412012-06-26 16:27:09 -07001628 IP_INC_STATS_BH(net, IPSTATS_MIB_INNOROUTES);
Joe Perches4500ebf2011-07-01 09:43:07 +00001629 break;
1630 case EACCES:
1631 code = ICMP_PKT_FILTERED;
1632 break;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001633 }
1634
David S. Miller1d861aa2012-07-10 03:58:16 -07001635 peer = inet_getpeer_v4(net->ipv4.peers, ip_hdr(skb)->saddr, 1);
David S. Miller92d86822011-02-04 15:55:25 -08001636
1637 send = true;
1638 if (peer) {
1639 now = jiffies;
1640 peer->rate_tokens += now - peer->rate_last;
1641 if (peer->rate_tokens > ip_rt_error_burst)
1642 peer->rate_tokens = ip_rt_error_burst;
1643 peer->rate_last = now;
1644 if (peer->rate_tokens >= ip_rt_error_cost)
1645 peer->rate_tokens -= ip_rt_error_cost;
1646 else
1647 send = false;
David S. Miller1d861aa2012-07-10 03:58:16 -07001648 inet_putpeer(peer);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001649 }
David S. Miller92d86822011-02-04 15:55:25 -08001650 if (send)
1651 icmp_send(skb, ICMP_DEST_UNREACH, code, 0);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001652
1653out: kfree_skb(skb);
1654 return 0;
YOSHIFUJI Hideakie905a9e2007-02-09 23:24:47 +09001655}
Linus Torvalds1da177e2005-04-16 15:20:36 -07001656
David S. Miller4895c772012-07-17 04:19:00 -07001657static void __ip_rt_update_pmtu(struct rtable *rt, struct flowi4 *fl4, u32 mtu)
Linus Torvalds1da177e2005-04-16 15:20:36 -07001658{
David S. Miller4895c772012-07-17 04:19:00 -07001659 struct fib_result res;
David S. Miller2c8cec52011-02-09 20:42:07 -08001660
David S. Miller59436342012-07-10 06:58:42 -07001661 if (mtu < ip_rt_min_pmtu)
1662 mtu = ip_rt_min_pmtu;
Eric Dumazetfe6fe792011-06-08 06:07:07 +00001663
David S. Miller4895c772012-07-17 04:19:00 -07001664 if (fib_lookup(dev_net(rt->dst.dev), fl4, &res) == 0) {
1665 struct fib_nh *nh = &FIB_RES_NH(res);
1666 struct fib_nh_exception *fnhe;
1667
1668 spin_lock_bh(&fnhe_lock);
1669 fnhe = find_or_create_fnhe(nh, fl4->daddr);
1670 if (fnhe) {
1671 fnhe->fnhe_pmtu = mtu;
1672 fnhe->fnhe_expires = jiffies + ip_rt_mtu_expires;
1673 }
1674 spin_unlock_bh(&fnhe_lock);
1675 }
David S. Miller59436342012-07-10 06:58:42 -07001676 rt->rt_pmtu = mtu;
1677 dst_set_expires(&rt->dst, ip_rt_mtu_expires);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001678}
1679
David S. Miller4895c772012-07-17 04:19:00 -07001680static void ip_rt_update_pmtu(struct dst_entry *dst, struct sock *sk,
1681 struct sk_buff *skb, u32 mtu)
1682{
1683 struct rtable *rt = (struct rtable *) dst;
1684 struct flowi4 fl4;
1685
1686 ip_rt_build_flow_key(&fl4, sk, skb);
1687 __ip_rt_update_pmtu(rt, &fl4, mtu);
1688}
1689
David S. Miller36393392012-06-14 22:21:46 -07001690void ipv4_update_pmtu(struct sk_buff *skb, struct net *net, u32 mtu,
1691 int oif, u32 mark, u8 protocol, int flow_flags)
1692{
David S. Miller4895c772012-07-17 04:19:00 -07001693 const struct iphdr *iph = (const struct iphdr *) skb->data;
David S. Miller36393392012-06-14 22:21:46 -07001694 struct flowi4 fl4;
1695 struct rtable *rt;
1696
David S. Miller4895c772012-07-17 04:19:00 -07001697 __build_flow_key(&fl4, NULL, iph, oif,
1698 RT_TOS(iph->tos), protocol, mark, flow_flags);
David S. Miller36393392012-06-14 22:21:46 -07001699 rt = __ip_route_output_key(net, &fl4);
1700 if (!IS_ERR(rt)) {
David S. Miller4895c772012-07-17 04:19:00 -07001701 __ip_rt_update_pmtu(rt, &fl4, mtu);
David S. Miller36393392012-06-14 22:21:46 -07001702 ip_rt_put(rt);
1703 }
1704}
1705EXPORT_SYMBOL_GPL(ipv4_update_pmtu);
1706
1707void ipv4_sk_update_pmtu(struct sk_buff *skb, struct sock *sk, u32 mtu)
1708{
David S. Miller4895c772012-07-17 04:19:00 -07001709 const struct iphdr *iph = (const struct iphdr *) skb->data;
1710 struct flowi4 fl4;
1711 struct rtable *rt;
David S. Miller36393392012-06-14 22:21:46 -07001712
David S. Miller4895c772012-07-17 04:19:00 -07001713 __build_flow_key(&fl4, sk, iph, 0, 0, 0, 0, 0);
1714 rt = __ip_route_output_key(sock_net(sk), &fl4);
1715 if (!IS_ERR(rt)) {
1716 __ip_rt_update_pmtu(rt, &fl4, mtu);
1717 ip_rt_put(rt);
1718 }
David S. Miller36393392012-06-14 22:21:46 -07001719}
1720EXPORT_SYMBOL_GPL(ipv4_sk_update_pmtu);
David S. Millerf39925d2011-02-09 22:00:16 -08001721
David S. Millerb42597e2012-07-11 21:25:45 -07001722void ipv4_redirect(struct sk_buff *skb, struct net *net,
1723 int oif, u32 mark, u8 protocol, int flow_flags)
1724{
David S. Miller4895c772012-07-17 04:19:00 -07001725 const struct iphdr *iph = (const struct iphdr *) skb->data;
David S. Millerb42597e2012-07-11 21:25:45 -07001726 struct flowi4 fl4;
1727 struct rtable *rt;
1728
David S. Miller4895c772012-07-17 04:19:00 -07001729 __build_flow_key(&fl4, NULL, iph, oif,
1730 RT_TOS(iph->tos), protocol, mark, flow_flags);
David S. Millerb42597e2012-07-11 21:25:45 -07001731 rt = __ip_route_output_key(net, &fl4);
1732 if (!IS_ERR(rt)) {
David S. Miller4895c772012-07-17 04:19:00 -07001733 __ip_do_redirect(rt, skb, &fl4);
David S. Millerb42597e2012-07-11 21:25:45 -07001734 ip_rt_put(rt);
1735 }
1736}
1737EXPORT_SYMBOL_GPL(ipv4_redirect);
1738
1739void ipv4_sk_redirect(struct sk_buff *skb, struct sock *sk)
1740{
David S. Miller4895c772012-07-17 04:19:00 -07001741 const struct iphdr *iph = (const struct iphdr *) skb->data;
1742 struct flowi4 fl4;
1743 struct rtable *rt;
David S. Millerb42597e2012-07-11 21:25:45 -07001744
David S. Miller4895c772012-07-17 04:19:00 -07001745 __build_flow_key(&fl4, sk, iph, 0, 0, 0, 0, 0);
1746 rt = __ip_route_output_key(sock_net(sk), &fl4);
1747 if (!IS_ERR(rt)) {
1748 __ip_do_redirect(rt, skb, &fl4);
1749 ip_rt_put(rt);
1750 }
David S. Millerb42597e2012-07-11 21:25:45 -07001751}
1752EXPORT_SYMBOL_GPL(ipv4_sk_redirect);
1753
David S. Millerefbc3682011-12-01 13:38:59 -05001754static struct dst_entry *ipv4_dst_check(struct dst_entry *dst, u32 cookie)
1755{
1756 struct rtable *rt = (struct rtable *) dst;
1757
1758 if (rt_is_expired(rt))
1759 return NULL;
Timo Teräsd11a4dc2010-03-18 23:20:20 +00001760 return dst;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001761}
1762
1763static void ipv4_dst_destroy(struct dst_entry *dst)
1764{
1765 struct rtable *rt = (struct rtable *) dst;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001766
David S. Miller62fa8a82011-01-26 20:51:05 -08001767 if (rt->fi) {
1768 fib_info_put(rt->fi);
1769 rt->fi = NULL;
1770 }
Linus Torvalds1da177e2005-04-16 15:20:36 -07001771}
1772
Linus Torvalds1da177e2005-04-16 15:20:36 -07001773
1774static void ipv4_link_failure(struct sk_buff *skb)
1775{
1776 struct rtable *rt;
1777
1778 icmp_send(skb, ICMP_DEST_UNREACH, ICMP_HOST_UNREACH, 0);
1779
Eric Dumazet511c3f92009-06-02 05:14:27 +00001780 rt = skb_rtable(skb);
David S. Miller59436342012-07-10 06:58:42 -07001781 if (rt)
1782 dst_set_expires(&rt->dst, 0);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001783}
1784
1785static int ip_rt_bug(struct sk_buff *skb)
1786{
Joe Perches91df42b2012-05-15 14:11:54 +00001787 pr_debug("%s: %pI4 -> %pI4, %s\n",
1788 __func__, &ip_hdr(skb)->saddr, &ip_hdr(skb)->daddr,
1789 skb->dev ? skb->dev->name : "?");
Linus Torvalds1da177e2005-04-16 15:20:36 -07001790 kfree_skb(skb);
Dave Jonesc378a9c2011-05-21 07:16:42 +00001791 WARN_ON(1);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001792 return 0;
1793}
1794
1795/*
1796 We do not cache source address of outgoing interface,
1797 because it is used only by IP RR, TS and SRR options,
1798 so that it out of fast path.
1799
1800 BTW remember: "addr" is allowed to be not aligned
1801 in IP options!
1802 */
1803
David S. Miller8e363602011-05-13 17:29:41 -04001804void ip_rt_get_source(u8 *addr, struct sk_buff *skb, struct rtable *rt)
Linus Torvalds1da177e2005-04-16 15:20:36 -07001805{
Al Viroa61ced52006-09-26 21:27:54 -07001806 __be32 src;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001807
David S. Millerc7537962010-11-11 17:07:48 -08001808 if (rt_is_output_route(rt))
David S. Millerc5be24f2011-05-13 18:01:21 -04001809 src = ip_hdr(skb)->saddr;
Eric Dumazetebc0ffa2010-10-05 10:41:36 +00001810 else {
David S. Miller8e363602011-05-13 17:29:41 -04001811 struct fib_result res;
1812 struct flowi4 fl4;
1813 struct iphdr *iph;
1814
1815 iph = ip_hdr(skb);
1816
1817 memset(&fl4, 0, sizeof(fl4));
1818 fl4.daddr = iph->daddr;
1819 fl4.saddr = iph->saddr;
Julian Anastasovb0fe4a32011-07-23 02:00:41 +00001820 fl4.flowi4_tos = RT_TOS(iph->tos);
David S. Miller8e363602011-05-13 17:29:41 -04001821 fl4.flowi4_oif = rt->dst.dev->ifindex;
1822 fl4.flowi4_iif = skb->dev->ifindex;
1823 fl4.flowi4_mark = skb->mark;
David S. Miller5e2b61f2011-03-04 21:47:09 -08001824
Eric Dumazetebc0ffa2010-10-05 10:41:36 +00001825 rcu_read_lock();
David S. Miller68a5e3d2011-03-11 20:07:33 -05001826 if (fib_lookup(dev_net(rt->dst.dev), &fl4, &res) == 0)
David S. Miller436c3b62011-03-24 17:42:21 -07001827 src = FIB_RES_PREFSRC(dev_net(rt->dst.dev), res);
Eric Dumazetebc0ffa2010-10-05 10:41:36 +00001828 else
1829 src = inet_select_addr(rt->dst.dev, rt->rt_gateway,
Linus Torvalds1da177e2005-04-16 15:20:36 -07001830 RT_SCOPE_UNIVERSE);
Eric Dumazetebc0ffa2010-10-05 10:41:36 +00001831 rcu_read_unlock();
1832 }
Linus Torvalds1da177e2005-04-16 15:20:36 -07001833 memcpy(addr, &src, 4);
1834}
1835
Patrick McHardyc7066f72011-01-14 13:36:42 +01001836#ifdef CONFIG_IP_ROUTE_CLASSID
Linus Torvalds1da177e2005-04-16 15:20:36 -07001837static void set_class_tag(struct rtable *rt, u32 tag)
1838{
Changli Gaod8d1f302010-06-10 23:31:35 -07001839 if (!(rt->dst.tclassid & 0xFFFF))
1840 rt->dst.tclassid |= tag & 0xFFFF;
1841 if (!(rt->dst.tclassid & 0xFFFF0000))
1842 rt->dst.tclassid |= tag & 0xFFFF0000;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001843}
1844#endif
1845
David S. Miller0dbaee32010-12-13 12:52:14 -08001846static unsigned int ipv4_default_advmss(const struct dst_entry *dst)
1847{
1848 unsigned int advmss = dst_metric_raw(dst, RTAX_ADVMSS);
1849
1850 if (advmss == 0) {
1851 advmss = max_t(unsigned int, dst->dev->mtu - 40,
1852 ip_rt_min_advmss);
1853 if (advmss > 65535 - 40)
1854 advmss = 65535 - 40;
1855 }
1856 return advmss;
1857}
1858
Steffen Klassertebb762f2011-11-23 02:12:51 +00001859static unsigned int ipv4_mtu(const struct dst_entry *dst)
David S. Millerd33e4552010-12-14 13:01:14 -08001860{
Steffen Klassert261663b2011-11-23 02:14:50 +00001861 const struct rtable *rt = (const struct rtable *) dst;
David S. Miller59436342012-07-10 06:58:42 -07001862 unsigned int mtu = rt->rt_pmtu;
1863
1864 if (mtu && time_after_eq(jiffies, rt->dst.expires))
1865 mtu = 0;
1866
1867 if (!mtu)
1868 mtu = dst_metric_raw(dst, RTAX_MTU);
Steffen Klassert618f9bc2011-11-23 02:13:31 +00001869
Steffen Klassert261663b2011-11-23 02:14:50 +00001870 if (mtu && rt_is_output_route(rt))
Steffen Klassert618f9bc2011-11-23 02:13:31 +00001871 return mtu;
1872
1873 mtu = dst->dev->mtu;
David S. Millerd33e4552010-12-14 13:01:14 -08001874
1875 if (unlikely(dst_metric_locked(dst, RTAX_MTU))) {
David S. Millerd33e4552010-12-14 13:01:14 -08001876
1877 if (rt->rt_gateway != rt->rt_dst && mtu > 576)
1878 mtu = 576;
1879 }
1880
1881 if (mtu > IP_MAX_MTU)
1882 mtu = IP_MAX_MTU;
1883
1884 return mtu;
1885}
1886
David S. Miller813b3b52011-04-28 14:48:42 -07001887static void rt_init_metrics(struct rtable *rt, const struct flowi4 *fl4,
David S. Miller5e2b61f2011-03-04 21:47:09 -08001888 struct fib_info *fi)
David S. Millera4daad62011-01-27 22:01:53 -08001889{
David S. Millerf1850712012-07-10 07:26:01 -07001890 if (fi->fib_metrics != (u32 *) dst_default_metrics) {
1891 rt->fi = fi;
1892 atomic_inc(&fi->fib_clntref);
David S. Millera4daad62011-01-27 22:01:53 -08001893 }
David S. Millerf1850712012-07-10 07:26:01 -07001894 dst_init_metrics(&rt->dst, fi->fib_metrics, true);
David S. Millera4daad62011-01-27 22:01:53 -08001895}
1896
David S. Miller4895c772012-07-17 04:19:00 -07001897static void rt_bind_exception(struct rtable *rt, struct fib_nh *nh, __be32 daddr)
1898{
1899 struct fnhe_hash_bucket *hash = nh->nh_exceptions;
1900 struct fib_nh_exception *fnhe;
1901 u32 hval;
1902
David S. Millerd3a25c92012-07-17 13:23:08 -07001903 hval = fnhe_hashfun(daddr);
David S. Miller4895c772012-07-17 04:19:00 -07001904
1905 for (fnhe = rcu_dereference(hash[hval].chain); fnhe;
1906 fnhe = rcu_dereference(fnhe->fnhe_next)) {
1907 if (fnhe->fnhe_daddr == daddr) {
1908 if (fnhe->fnhe_pmtu) {
1909 unsigned long expires = fnhe->fnhe_expires;
1910 unsigned long diff = jiffies - expires;
1911
1912 if (time_before(jiffies, expires)) {
1913 rt->rt_pmtu = fnhe->fnhe_pmtu;
1914 dst_set_expires(&rt->dst, diff);
1915 }
1916 }
1917 if (fnhe->fnhe_gw)
1918 rt->rt_gateway = fnhe->fnhe_gw;
1919 fnhe->fnhe_stamp = jiffies;
1920 break;
1921 }
1922 }
1923}
1924
David S. Miller813b3b52011-04-28 14:48:42 -07001925static void rt_set_nexthop(struct rtable *rt, const struct flowi4 *fl4,
David S. Miller5e2b61f2011-03-04 21:47:09 -08001926 const struct fib_result *res,
David S. Miller982721f2011-02-16 21:44:24 -08001927 struct fib_info *fi, u16 type, u32 itag)
Linus Torvalds1da177e2005-04-16 15:20:36 -07001928{
Linus Torvalds1da177e2005-04-16 15:20:36 -07001929 if (fi) {
David S. Miller4895c772012-07-17 04:19:00 -07001930 struct fib_nh *nh = &FIB_RES_NH(*res);
1931
1932 if (nh->nh_gw && nh->nh_scope == RT_SCOPE_LINK)
1933 rt->rt_gateway = nh->nh_gw;
1934 if (unlikely(nh->nh_exceptions))
1935 rt_bind_exception(rt, nh, fl4->daddr);
David S. Miller813b3b52011-04-28 14:48:42 -07001936 rt_init_metrics(rt, fl4, fi);
Patrick McHardyc7066f72011-01-14 13:36:42 +01001937#ifdef CONFIG_IP_ROUTE_CLASSID
David S. Miller710ab6c2012-07-10 07:02:09 -07001938 rt->dst.tclassid = FIB_RES_NH(*res).nh_tclassid;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001939#endif
David S. Millerd33e4552010-12-14 13:01:14 -08001940 }
Linus Torvalds1da177e2005-04-16 15:20:36 -07001941
Patrick McHardyc7066f72011-01-14 13:36:42 +01001942#ifdef CONFIG_IP_ROUTE_CLASSID
Linus Torvalds1da177e2005-04-16 15:20:36 -07001943#ifdef CONFIG_IP_MULTIPLE_TABLES
David S. Miller85b91b02012-07-13 08:21:29 -07001944 set_class_tag(rt, res->tclassid);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001945#endif
1946 set_class_tag(rt, itag);
1947#endif
Linus Torvalds1da177e2005-04-16 15:20:36 -07001948}
1949
David S. Miller5c1e6aa2011-04-28 14:13:38 -07001950static struct rtable *rt_dst_alloc(struct net_device *dev,
1951 bool nopolicy, bool noxfrm)
David S. Miller0c4dcd52011-02-17 15:42:37 -08001952{
David S. Miller5c1e6aa2011-04-28 14:13:38 -07001953 return dst_alloc(&ipv4_dst_ops, dev, 1, -1,
1954 DST_HOST |
1955 (nopolicy ? DST_NOPOLICY : 0) |
1956 (noxfrm ? DST_NOXFRM : 0));
David S. Miller0c4dcd52011-02-17 15:42:37 -08001957}
1958
Eric Dumazet96d36222010-06-02 19:21:31 +00001959/* called in rcu_read_lock() section */
Al Viro9e12bb22006-09-26 21:25:20 -07001960static int ip_route_input_mc(struct sk_buff *skb, __be32 daddr, __be32 saddr,
Linus Torvalds1da177e2005-04-16 15:20:36 -07001961 u8 tos, struct net_device *dev, int our)
1962{
Eric Dumazet96d36222010-06-02 19:21:31 +00001963 unsigned int hash;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001964 struct rtable *rth;
Eric Dumazet96d36222010-06-02 19:21:31 +00001965 struct in_device *in_dev = __in_dev_get_rcu(dev);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001966 u32 itag = 0;
Eric Dumazetb5f7e752010-06-02 12:05:27 +00001967 int err;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001968
1969 /* Primary sanity checks. */
1970
1971 if (in_dev == NULL)
1972 return -EINVAL;
1973
Jan Engelhardt1e637c72008-01-21 03:18:08 -08001974 if (ipv4_is_multicast(saddr) || ipv4_is_lbcast(saddr) ||
Thomas Grafd0daebc32012-06-12 00:44:01 +00001975 skb->protocol != htons(ETH_P_IP))
Linus Torvalds1da177e2005-04-16 15:20:36 -07001976 goto e_inval;
1977
Thomas Grafd0daebc32012-06-12 00:44:01 +00001978 if (likely(!IN_DEV_ROUTE_LOCALNET(in_dev)))
1979 if (ipv4_is_loopback(saddr))
1980 goto e_inval;
1981
Joe Perchesf97c1e02007-12-16 13:45:43 -08001982 if (ipv4_is_zeronet(saddr)) {
1983 if (!ipv4_is_local_multicast(daddr))
Linus Torvalds1da177e2005-04-16 15:20:36 -07001984 goto e_inval;
Eric Dumazetb5f7e752010-06-02 12:05:27 +00001985 } else {
David S. Miller9e56e382012-06-28 18:54:02 -07001986 err = fib_validate_source(skb, saddr, 0, tos, 0, dev,
1987 in_dev, &itag);
Eric Dumazetb5f7e752010-06-02 12:05:27 +00001988 if (err < 0)
1989 goto e_err;
1990 }
Benjamin LaHaise4e7b2f12012-03-27 15:55:32 +00001991 rth = rt_dst_alloc(dev_net(dev)->loopback_dev,
David S. Miller5c1e6aa2011-04-28 14:13:38 -07001992 IN_DEV_CONF_GET(in_dev, NOPOLICY), false);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001993 if (!rth)
1994 goto e_nobufs;
1995
Patrick McHardyc7066f72011-01-14 13:36:42 +01001996#ifdef CONFIG_IP_ROUTE_CLASSID
Changli Gaod8d1f302010-06-10 23:31:35 -07001997 rth->dst.tclassid = itag;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001998#endif
David S. Millercf911662011-04-28 14:31:47 -07001999 rth->dst.output = ip_rt_bug;
2000
2001 rth->rt_key_dst = daddr;
2002 rth->rt_key_src = saddr;
Denis V. Luneve84f84f2008-07-05 19:04:32 -07002003 rth->rt_genid = rt_genid(dev_net(dev));
Linus Torvalds1da177e2005-04-16 15:20:36 -07002004 rth->rt_flags = RTCF_MULTICAST;
Eric Dumazet29e75252008-01-31 17:05:09 -08002005 rth->rt_type = RTN_MULTICAST;
David S. Miller475949d2011-05-03 19:45:15 -07002006 rth->rt_key_tos = tos;
David S. Millercf911662011-04-28 14:31:47 -07002007 rth->rt_dst = daddr;
2008 rth->rt_src = saddr;
2009 rth->rt_route_iif = dev->ifindex;
2010 rth->rt_iif = dev->ifindex;
2011 rth->rt_oif = 0;
2012 rth->rt_mark = skb->mark;
David S. Miller59436342012-07-10 06:58:42 -07002013 rth->rt_pmtu = 0;
David S. Millercf911662011-04-28 14:31:47 -07002014 rth->rt_gateway = daddr;
David S. Millercf911662011-04-28 14:31:47 -07002015 rth->fi = NULL;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002016 if (our) {
Changli Gaod8d1f302010-06-10 23:31:35 -07002017 rth->dst.input= ip_local_deliver;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002018 rth->rt_flags |= RTCF_LOCAL;
2019 }
2020
2021#ifdef CONFIG_IP_MROUTE
Joe Perchesf97c1e02007-12-16 13:45:43 -08002022 if (!ipv4_is_local_multicast(daddr) && IN_DEV_MFORWARD(in_dev))
Changli Gaod8d1f302010-06-10 23:31:35 -07002023 rth->dst.input = ip_mr_input;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002024#endif
2025 RT_CACHE_STAT_INC(in_slow_mc);
2026
Denis V. Luneve84f84f2008-07-05 19:04:32 -07002027 hash = rt_hash(daddr, saddr, dev->ifindex, rt_genid(dev_net(dev)));
David S. Millerb23dd4f2011-03-02 14:31:35 -08002028 rth = rt_intern_hash(hash, rth, skb, dev->ifindex);
Eric Dumazet9aa3c942011-06-18 11:59:18 -07002029 return IS_ERR(rth) ? PTR_ERR(rth) : 0;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002030
2031e_nobufs:
Linus Torvalds1da177e2005-04-16 15:20:36 -07002032 return -ENOBUFS;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002033e_inval:
Eric Dumazet96d36222010-06-02 19:21:31 +00002034 return -EINVAL;
Eric Dumazetb5f7e752010-06-02 12:05:27 +00002035e_err:
Eric Dumazetb5f7e752010-06-02 12:05:27 +00002036 return err;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002037}
2038
2039
2040static void ip_handle_martian_source(struct net_device *dev,
2041 struct in_device *in_dev,
2042 struct sk_buff *skb,
Al Viro9e12bb22006-09-26 21:25:20 -07002043 __be32 daddr,
2044 __be32 saddr)
Linus Torvalds1da177e2005-04-16 15:20:36 -07002045{
2046 RT_CACHE_STAT_INC(in_martian_src);
2047#ifdef CONFIG_IP_ROUTE_VERBOSE
2048 if (IN_DEV_LOG_MARTIANS(in_dev) && net_ratelimit()) {
2049 /*
2050 * RFC1812 recommendation, if source is martian,
2051 * the only hint is MAC header.
2052 */
Joe Perches058bd4d2012-03-11 18:36:11 +00002053 pr_warn("martian source %pI4 from %pI4, on dev %s\n",
Harvey Harrison673d57e2008-10-31 00:53:57 -07002054 &daddr, &saddr, dev->name);
Arnaldo Carvalho de Melo98e399f2007-03-19 15:33:04 -07002055 if (dev->hard_header_len && skb_mac_header_was_set(skb)) {
Joe Perches058bd4d2012-03-11 18:36:11 +00002056 print_hex_dump(KERN_WARNING, "ll header: ",
2057 DUMP_PREFIX_OFFSET, 16, 1,
2058 skb_mac_header(skb),
2059 dev->hard_header_len, true);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002060 }
2061 }
2062#endif
2063}
2064
Eric Dumazet47360222010-06-03 04:13:21 +00002065/* called in rcu_read_lock() section */
Stephen Hemminger5969f712008-04-10 01:52:09 -07002066static int __mkroute_input(struct sk_buff *skb,
David S. Miller982721f2011-02-16 21:44:24 -08002067 const struct fib_result *res,
Stephen Hemminger5969f712008-04-10 01:52:09 -07002068 struct in_device *in_dev,
2069 __be32 daddr, __be32 saddr, u32 tos,
2070 struct rtable **result)
Linus Torvalds1da177e2005-04-16 15:20:36 -07002071{
Linus Torvalds1da177e2005-04-16 15:20:36 -07002072 struct rtable *rth;
2073 int err;
2074 struct in_device *out_dev;
Eric Dumazet47360222010-06-03 04:13:21 +00002075 unsigned int flags = 0;
Al Virod9c9df82006-09-26 21:28:14 -07002076 u32 itag;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002077
2078 /* get a working reference to the output device */
Eric Dumazet47360222010-06-03 04:13:21 +00002079 out_dev = __in_dev_get_rcu(FIB_RES_DEV(*res));
Linus Torvalds1da177e2005-04-16 15:20:36 -07002080 if (out_dev == NULL) {
Joe Perchese87cc472012-05-13 21:56:26 +00002081 net_crit_ratelimited("Bug in ip_route_input_slow(). Please report.\n");
Linus Torvalds1da177e2005-04-16 15:20:36 -07002082 return -EINVAL;
2083 }
2084
2085
Michael Smith5c04c812011-04-07 04:51:50 +00002086 err = fib_validate_source(skb, saddr, daddr, tos, FIB_RES_OIF(*res),
David S. Miller9e56e382012-06-28 18:54:02 -07002087 in_dev->dev, in_dev, &itag);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002088 if (err < 0) {
YOSHIFUJI Hideakie905a9e2007-02-09 23:24:47 +09002089 ip_handle_martian_source(in_dev->dev, in_dev, skb, daddr,
Linus Torvalds1da177e2005-04-16 15:20:36 -07002090 saddr);
YOSHIFUJI Hideakie905a9e2007-02-09 23:24:47 +09002091
Linus Torvalds1da177e2005-04-16 15:20:36 -07002092 goto cleanup;
2093 }
2094
2095 if (err)
2096 flags |= RTCF_DIRECTSRC;
2097
Thomas Graf51b77ca2008-06-03 16:36:01 -07002098 if (out_dev == in_dev && err &&
Linus Torvalds1da177e2005-04-16 15:20:36 -07002099 (IN_DEV_SHARED_MEDIA(out_dev) ||
2100 inet_addr_onlink(out_dev, saddr, FIB_RES_GW(*res))))
2101 flags |= RTCF_DOREDIRECT;
2102
2103 if (skb->protocol != htons(ETH_P_IP)) {
2104 /* Not IP (i.e. ARP). Do not create route, if it is
2105 * invalid for proxy arp. DNAT routes are always valid.
Jesper Dangaard Brouer65324142010-01-05 05:50:47 +00002106 *
2107 * Proxy arp feature have been extended to allow, ARP
2108 * replies back to the same interface, to support
2109 * Private VLAN switch technologies. See arp.c.
Linus Torvalds1da177e2005-04-16 15:20:36 -07002110 */
Jesper Dangaard Brouer65324142010-01-05 05:50:47 +00002111 if (out_dev == in_dev &&
2112 IN_DEV_PROXY_ARP_PVLAN(in_dev) == 0) {
Linus Torvalds1da177e2005-04-16 15:20:36 -07002113 err = -EINVAL;
2114 goto cleanup;
2115 }
2116 }
2117
David S. Miller5c1e6aa2011-04-28 14:13:38 -07002118 rth = rt_dst_alloc(out_dev->dev,
2119 IN_DEV_CONF_GET(in_dev, NOPOLICY),
David S. Miller0c4dcd52011-02-17 15:42:37 -08002120 IN_DEV_CONF_GET(out_dev, NOXFRM));
Linus Torvalds1da177e2005-04-16 15:20:36 -07002121 if (!rth) {
2122 err = -ENOBUFS;
2123 goto cleanup;
2124 }
2125
David S. Miller5e2b61f2011-03-04 21:47:09 -08002126 rth->rt_key_dst = daddr;
David S. Miller5e2b61f2011-03-04 21:47:09 -08002127 rth->rt_key_src = saddr;
David S. Millercf911662011-04-28 14:31:47 -07002128 rth->rt_genid = rt_genid(dev_net(rth->dst.dev));
2129 rth->rt_flags = flags;
2130 rth->rt_type = res->type;
David S. Miller475949d2011-05-03 19:45:15 -07002131 rth->rt_key_tos = tos;
David S. Millercf911662011-04-28 14:31:47 -07002132 rth->rt_dst = daddr;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002133 rth->rt_src = saddr;
OGAWA Hirofumi1b86a582011-04-07 14:04:08 -07002134 rth->rt_route_iif = in_dev->dev->ifindex;
David S. Miller5e2b61f2011-03-04 21:47:09 -08002135 rth->rt_iif = in_dev->dev->ifindex;
David S. Miller5e2b61f2011-03-04 21:47:09 -08002136 rth->rt_oif = 0;
David S. Millercf911662011-04-28 14:31:47 -07002137 rth->rt_mark = skb->mark;
David S. Miller59436342012-07-10 06:58:42 -07002138 rth->rt_pmtu = 0;
David S. Millercf911662011-04-28 14:31:47 -07002139 rth->rt_gateway = daddr;
David S. Millercf911662011-04-28 14:31:47 -07002140 rth->fi = NULL;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002141
Changli Gaod8d1f302010-06-10 23:31:35 -07002142 rth->dst.input = ip_forward;
2143 rth->dst.output = ip_output;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002144
David S. Miller5e2b61f2011-03-04 21:47:09 -08002145 rt_set_nexthop(rth, NULL, res, res->fi, res->type, itag);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002146
Linus Torvalds1da177e2005-04-16 15:20:36 -07002147 *result = rth;
2148 err = 0;
2149 cleanup:
Linus Torvalds1da177e2005-04-16 15:20:36 -07002150 return err;
YOSHIFUJI Hideakie905a9e2007-02-09 23:24:47 +09002151}
Linus Torvalds1da177e2005-04-16 15:20:36 -07002152
Stephen Hemminger5969f712008-04-10 01:52:09 -07002153static int ip_mkroute_input(struct sk_buff *skb,
2154 struct fib_result *res,
David S. Miller68a5e3d2011-03-11 20:07:33 -05002155 const struct flowi4 *fl4,
Stephen Hemminger5969f712008-04-10 01:52:09 -07002156 struct in_device *in_dev,
2157 __be32 daddr, __be32 saddr, u32 tos)
Linus Torvalds1da177e2005-04-16 15:20:36 -07002158{
Daniel Baluta5e73ea12012-04-15 01:34:41 +00002159 struct rtable *rth = NULL;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002160 int err;
Eric Dumazet95c96172012-04-15 05:58:06 +00002161 unsigned int hash;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002162
2163#ifdef CONFIG_IP_ROUTE_MULTIPATH
David S. Millerff3fccb2011-03-10 16:23:24 -08002164 if (res->fi && res->fi->fib_nhs > 1)
David S. Miller1b7fe5932011-03-10 17:01:16 -08002165 fib_select_multipath(res);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002166#endif
2167
2168 /* create a routing cache entry */
2169 err = __mkroute_input(skb, res, in_dev, daddr, saddr, tos, &rth);
2170 if (err)
2171 return err;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002172
2173 /* put it into the cache */
David S. Miller68a5e3d2011-03-11 20:07:33 -05002174 hash = rt_hash(daddr, saddr, fl4->flowi4_iif,
Changli Gaod8d1f302010-06-10 23:31:35 -07002175 rt_genid(dev_net(rth->dst.dev)));
David S. Miller68a5e3d2011-03-11 20:07:33 -05002176 rth = rt_intern_hash(hash, rth, skb, fl4->flowi4_iif);
David S. Millerb23dd4f2011-03-02 14:31:35 -08002177 if (IS_ERR(rth))
2178 return PTR_ERR(rth);
2179 return 0;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002180}
2181
Linus Torvalds1da177e2005-04-16 15:20:36 -07002182/*
2183 * NOTE. We drop all the packets that has local source
2184 * addresses, because every properly looped back packet
2185 * must have correct destination already attached by output routine.
2186 *
2187 * Such approach solves two big problems:
2188 * 1. Not simplex devices are handled properly.
2189 * 2. IP spoofing attempts are filtered with 100% of guarantee.
Eric Dumazetebc0ffa2010-10-05 10:41:36 +00002190 * called with rcu_read_lock()
Linus Torvalds1da177e2005-04-16 15:20:36 -07002191 */
2192
Al Viro9e12bb22006-09-26 21:25:20 -07002193static int ip_route_input_slow(struct sk_buff *skb, __be32 daddr, __be32 saddr,
David S. Millerc10237e2012-06-27 17:05:06 -07002194 u8 tos, struct net_device *dev)
Linus Torvalds1da177e2005-04-16 15:20:36 -07002195{
2196 struct fib_result res;
Eric Dumazet96d36222010-06-02 19:21:31 +00002197 struct in_device *in_dev = __in_dev_get_rcu(dev);
David S. Miller68a5e3d2011-03-11 20:07:33 -05002198 struct flowi4 fl4;
Eric Dumazet95c96172012-04-15 05:58:06 +00002199 unsigned int flags = 0;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002200 u32 itag = 0;
Eric Dumazet95c96172012-04-15 05:58:06 +00002201 struct rtable *rth;
2202 unsigned int hash;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002203 int err = -EINVAL;
Daniel Baluta5e73ea12012-04-15 01:34:41 +00002204 struct net *net = dev_net(dev);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002205
2206 /* IP on this device is disabled. */
2207
2208 if (!in_dev)
2209 goto out;
2210
2211 /* Check for the most weird martians, which can be not detected
2212 by fib_lookup.
2213 */
2214
Thomas Grafd0daebc32012-06-12 00:44:01 +00002215 if (ipv4_is_multicast(saddr) || ipv4_is_lbcast(saddr))
Linus Torvalds1da177e2005-04-16 15:20:36 -07002216 goto martian_source;
2217
Andy Walls27a954b2010-10-17 15:11:22 +00002218 if (ipv4_is_lbcast(daddr) || (saddr == 0 && daddr == 0))
Linus Torvalds1da177e2005-04-16 15:20:36 -07002219 goto brd_input;
2220
2221 /* Accept zero addresses only to limited broadcast;
2222 * I even do not know to fix it or not. Waiting for complains :-)
2223 */
Joe Perchesf97c1e02007-12-16 13:45:43 -08002224 if (ipv4_is_zeronet(saddr))
Linus Torvalds1da177e2005-04-16 15:20:36 -07002225 goto martian_source;
2226
Thomas Grafd0daebc32012-06-12 00:44:01 +00002227 if (ipv4_is_zeronet(daddr))
Linus Torvalds1da177e2005-04-16 15:20:36 -07002228 goto martian_destination;
2229
Thomas Grafd0daebc32012-06-12 00:44:01 +00002230 if (likely(!IN_DEV_ROUTE_LOCALNET(in_dev))) {
2231 if (ipv4_is_loopback(daddr))
2232 goto martian_destination;
2233
2234 if (ipv4_is_loopback(saddr))
2235 goto martian_source;
2236 }
2237
Linus Torvalds1da177e2005-04-16 15:20:36 -07002238 /*
2239 * Now we are ready to route packet.
2240 */
David S. Miller68a5e3d2011-03-11 20:07:33 -05002241 fl4.flowi4_oif = 0;
2242 fl4.flowi4_iif = dev->ifindex;
2243 fl4.flowi4_mark = skb->mark;
2244 fl4.flowi4_tos = tos;
2245 fl4.flowi4_scope = RT_SCOPE_UNIVERSE;
2246 fl4.daddr = daddr;
2247 fl4.saddr = saddr;
2248 err = fib_lookup(net, &fl4, &res);
David S. Miller251da412012-06-26 16:27:09 -07002249 if (err != 0)
Linus Torvalds1da177e2005-04-16 15:20:36 -07002250 goto no_route;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002251
2252 RT_CACHE_STAT_INC(in_slow_tot);
2253
2254 if (res.type == RTN_BROADCAST)
2255 goto brd_input;
2256
2257 if (res.type == RTN_LOCAL) {
Michael Smith5c04c812011-04-07 04:51:50 +00002258 err = fib_validate_source(skb, saddr, daddr, tos,
Eric Dumazetebc0ffa2010-10-05 10:41:36 +00002259 net->loopback_dev->ifindex,
David S. Miller9e56e382012-06-28 18:54:02 -07002260 dev, in_dev, &itag);
Eric Dumazetb5f7e752010-06-02 12:05:27 +00002261 if (err < 0)
2262 goto martian_source_keep_err;
2263 if (err)
Linus Torvalds1da177e2005-04-16 15:20:36 -07002264 flags |= RTCF_DIRECTSRC;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002265 goto local_input;
2266 }
2267
2268 if (!IN_DEV_FORWARD(in_dev))
David S. Miller251da412012-06-26 16:27:09 -07002269 goto no_route;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002270 if (res.type != RTN_UNICAST)
2271 goto martian_destination;
2272
David S. Miller68a5e3d2011-03-11 20:07:33 -05002273 err = ip_mkroute_input(skb, &res, &fl4, in_dev, daddr, saddr, tos);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002274out: return err;
2275
2276brd_input:
2277 if (skb->protocol != htons(ETH_P_IP))
2278 goto e_inval;
2279
David S. Miller41347dc2012-06-28 04:05:27 -07002280 if (!ipv4_is_zeronet(saddr)) {
David S. Miller9e56e382012-06-28 18:54:02 -07002281 err = fib_validate_source(skb, saddr, 0, tos, 0, dev,
2282 in_dev, &itag);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002283 if (err < 0)
Eric Dumazetb5f7e752010-06-02 12:05:27 +00002284 goto martian_source_keep_err;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002285 if (err)
2286 flags |= RTCF_DIRECTSRC;
2287 }
2288 flags |= RTCF_BROADCAST;
2289 res.type = RTN_BROADCAST;
2290 RT_CACHE_STAT_INC(in_brd);
2291
2292local_input:
David S. Miller5c1e6aa2011-04-28 14:13:38 -07002293 rth = rt_dst_alloc(net->loopback_dev,
2294 IN_DEV_CONF_GET(in_dev, NOPOLICY), false);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002295 if (!rth)
2296 goto e_nobufs;
2297
David S. Millercf911662011-04-28 14:31:47 -07002298 rth->dst.input= ip_local_deliver;
Changli Gaod8d1f302010-06-10 23:31:35 -07002299 rth->dst.output= ip_rt_bug;
David S. Millercf911662011-04-28 14:31:47 -07002300#ifdef CONFIG_IP_ROUTE_CLASSID
2301 rth->dst.tclassid = itag;
2302#endif
Linus Torvalds1da177e2005-04-16 15:20:36 -07002303
David S. Miller5e2b61f2011-03-04 21:47:09 -08002304 rth->rt_key_dst = daddr;
David S. Miller5e2b61f2011-03-04 21:47:09 -08002305 rth->rt_key_src = saddr;
David S. Millercf911662011-04-28 14:31:47 -07002306 rth->rt_genid = rt_genid(net);
2307 rth->rt_flags = flags|RTCF_LOCAL;
2308 rth->rt_type = res.type;
David S. Miller475949d2011-05-03 19:45:15 -07002309 rth->rt_key_tos = tos;
David S. Millercf911662011-04-28 14:31:47 -07002310 rth->rt_dst = daddr;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002311 rth->rt_src = saddr;
OGAWA Hirofumi1b86a582011-04-07 14:04:08 -07002312 rth->rt_route_iif = dev->ifindex;
David S. Miller5e2b61f2011-03-04 21:47:09 -08002313 rth->rt_iif = dev->ifindex;
David S. Millercf911662011-04-28 14:31:47 -07002314 rth->rt_oif = 0;
2315 rth->rt_mark = skb->mark;
David S. Miller59436342012-07-10 06:58:42 -07002316 rth->rt_pmtu = 0;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002317 rth->rt_gateway = daddr;
David S. Millercf911662011-04-28 14:31:47 -07002318 rth->fi = NULL;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002319 if (res.type == RTN_UNREACHABLE) {
Changli Gaod8d1f302010-06-10 23:31:35 -07002320 rth->dst.input= ip_error;
2321 rth->dst.error= -err;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002322 rth->rt_flags &= ~RTCF_LOCAL;
2323 }
David S. Miller68a5e3d2011-03-11 20:07:33 -05002324 hash = rt_hash(daddr, saddr, fl4.flowi4_iif, rt_genid(net));
2325 rth = rt_intern_hash(hash, rth, skb, fl4.flowi4_iif);
David S. Millerb23dd4f2011-03-02 14:31:35 -08002326 err = 0;
2327 if (IS_ERR(rth))
2328 err = PTR_ERR(rth);
Eric Dumazetebc0ffa2010-10-05 10:41:36 +00002329 goto out;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002330
2331no_route:
2332 RT_CACHE_STAT_INC(in_no_route);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002333 res.type = RTN_UNREACHABLE;
Mitsuru Chinen7f538782007-12-07 01:07:24 -08002334 if (err == -ESRCH)
2335 err = -ENETUNREACH;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002336 goto local_input;
2337
2338 /*
2339 * Do not cache martian addresses: they should be logged (RFC1812)
2340 */
2341martian_destination:
2342 RT_CACHE_STAT_INC(in_martian_dst);
2343#ifdef CONFIG_IP_ROUTE_VERBOSE
Joe Perchese87cc472012-05-13 21:56:26 +00002344 if (IN_DEV_LOG_MARTIANS(in_dev))
2345 net_warn_ratelimited("martian destination %pI4 from %pI4, dev %s\n",
2346 &daddr, &saddr, dev->name);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002347#endif
Dietmar Eggemann2c2910a2005-06-28 13:06:23 -07002348
Linus Torvalds1da177e2005-04-16 15:20:36 -07002349e_inval:
2350 err = -EINVAL;
Eric Dumazetebc0ffa2010-10-05 10:41:36 +00002351 goto out;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002352
2353e_nobufs:
2354 err = -ENOBUFS;
Eric Dumazetebc0ffa2010-10-05 10:41:36 +00002355 goto out;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002356
2357martian_source:
Eric Dumazetb5f7e752010-06-02 12:05:27 +00002358 err = -EINVAL;
2359martian_source_keep_err:
Linus Torvalds1da177e2005-04-16 15:20:36 -07002360 ip_handle_martian_source(dev, in_dev, skb, daddr, saddr);
Eric Dumazetebc0ffa2010-10-05 10:41:36 +00002361 goto out;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002362}
2363
Eric Dumazet407eadd2010-05-10 11:32:55 +00002364int ip_route_input_common(struct sk_buff *skb, __be32 daddr, __be32 saddr,
David S. Millerc10237e2012-06-27 17:05:06 -07002365 u8 tos, struct net_device *dev, bool noref)
Linus Torvalds1da177e2005-04-16 15:20:36 -07002366{
Eric Dumazet95c96172012-04-15 05:58:06 +00002367 struct rtable *rth;
2368 unsigned int hash;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002369 int iif = dev->ifindex;
Denis V. Lunevb5921912008-01-22 23:50:25 -08002370 struct net *net;
Eric Dumazet96d36222010-06-02 19:21:31 +00002371 int res;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002372
YOSHIFUJI Hideakic346dca2008-03-25 21:47:49 +09002373 net = dev_net(dev);
Neil Horman1080d702008-10-27 12:28:25 -07002374
Eric Dumazet96d36222010-06-02 19:21:31 +00002375 rcu_read_lock();
2376
Neil Horman1080d702008-10-27 12:28:25 -07002377 if (!rt_caching(net))
2378 goto skip_cache;
2379
Linus Torvalds1da177e2005-04-16 15:20:36 -07002380 tos &= IPTOS_RT_MASK;
Denis V. Luneve84f84f2008-07-05 19:04:32 -07002381 hash = rt_hash(daddr, saddr, iif, rt_genid(net));
Linus Torvalds1da177e2005-04-16 15:20:36 -07002382
Linus Torvalds1da177e2005-04-16 15:20:36 -07002383 for (rth = rcu_dereference(rt_hash_table[hash].chain); rth;
Changli Gaod8d1f302010-06-10 23:31:35 -07002384 rth = rcu_dereference(rth->dst.rt_next)) {
David S. Miller5e2b61f2011-03-04 21:47:09 -08002385 if ((((__force u32)rth->rt_key_dst ^ (__force u32)daddr) |
2386 ((__force u32)rth->rt_key_src ^ (__force u32)saddr) |
Julian Anastasov97a80412011-08-09 04:01:16 +00002387 (rth->rt_route_iif ^ iif) |
David S. Miller475949d2011-05-03 19:45:15 -07002388 (rth->rt_key_tos ^ tos)) == 0 &&
David S. Miller5e2b61f2011-03-04 21:47:09 -08002389 rth->rt_mark == skb->mark &&
Changli Gaod8d1f302010-06-10 23:31:35 -07002390 net_eq(dev_net(rth->dst.dev), net) &&
Denis V. Luneve84f84f2008-07-05 19:04:32 -07002391 !rt_is_expired(rth)) {
Eric Dumazet407eadd2010-05-10 11:32:55 +00002392 if (noref) {
Changli Gaod8d1f302010-06-10 23:31:35 -07002393 dst_use_noref(&rth->dst, jiffies);
2394 skb_dst_set_noref(skb, &rth->dst);
Eric Dumazet407eadd2010-05-10 11:32:55 +00002395 } else {
Changli Gaod8d1f302010-06-10 23:31:35 -07002396 dst_use(&rth->dst, jiffies);
2397 skb_dst_set(skb, &rth->dst);
Eric Dumazet407eadd2010-05-10 11:32:55 +00002398 }
Linus Torvalds1da177e2005-04-16 15:20:36 -07002399 RT_CACHE_STAT_INC(in_hit);
2400 rcu_read_unlock();
Linus Torvalds1da177e2005-04-16 15:20:36 -07002401 return 0;
2402 }
2403 RT_CACHE_STAT_INC(in_hlist_search);
2404 }
Linus Torvalds1da177e2005-04-16 15:20:36 -07002405
Neil Horman1080d702008-10-27 12:28:25 -07002406skip_cache:
Linus Torvalds1da177e2005-04-16 15:20:36 -07002407 /* Multicast recognition logic is moved from route cache to here.
2408 The problem was that too many Ethernet cards have broken/missing
2409 hardware multicast filters :-( As result the host on multicasting
2410 network acquires a lot of useless route cache entries, sort of
2411 SDR messages from all the world. Now we try to get rid of them.
2412 Really, provided software IP multicast filter is organized
2413 reasonably (at least, hashed), it does not result in a slowdown
2414 comparing with route cache reject entries.
2415 Note, that multicast routers are not affected, because
2416 route cache entry is created eventually.
2417 */
Joe Perchesf97c1e02007-12-16 13:45:43 -08002418 if (ipv4_is_multicast(daddr)) {
Eric Dumazet96d36222010-06-02 19:21:31 +00002419 struct in_device *in_dev = __in_dev_get_rcu(dev);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002420
Eric Dumazet96d36222010-06-02 19:21:31 +00002421 if (in_dev) {
David S. Millerdbdd9a52011-03-10 16:34:38 -08002422 int our = ip_check_mc_rcu(in_dev, daddr, saddr,
2423 ip_hdr(skb)->protocol);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002424 if (our
2425#ifdef CONFIG_IP_MROUTE
Joe Perches9d4fb272009-11-23 10:41:23 -08002426 ||
2427 (!ipv4_is_local_multicast(daddr) &&
2428 IN_DEV_MFORWARD(in_dev))
Linus Torvalds1da177e2005-04-16 15:20:36 -07002429#endif
Joe Perches9d4fb272009-11-23 10:41:23 -08002430 ) {
Eric Dumazet96d36222010-06-02 19:21:31 +00002431 int res = ip_route_input_mc(skb, daddr, saddr,
2432 tos, dev, our);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002433 rcu_read_unlock();
Eric Dumazet96d36222010-06-02 19:21:31 +00002434 return res;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002435 }
2436 }
2437 rcu_read_unlock();
2438 return -EINVAL;
2439 }
David S. Millerc10237e2012-06-27 17:05:06 -07002440 res = ip_route_input_slow(skb, daddr, saddr, tos, dev);
Eric Dumazet96d36222010-06-02 19:21:31 +00002441 rcu_read_unlock();
2442 return res;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002443}
Eric Dumazet407eadd2010-05-10 11:32:55 +00002444EXPORT_SYMBOL(ip_route_input_common);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002445
Eric Dumazetebc0ffa2010-10-05 10:41:36 +00002446/* called with rcu_read_lock() */
David S. Miller982721f2011-02-16 21:44:24 -08002447static struct rtable *__mkroute_output(const struct fib_result *res,
David S. Miller68a5e3d2011-03-11 20:07:33 -05002448 const struct flowi4 *fl4,
David S. Miller813b3b52011-04-28 14:48:42 -07002449 __be32 orig_daddr, __be32 orig_saddr,
Julian Anastasovf61759e2011-12-02 11:39:42 +00002450 int orig_oif, __u8 orig_rtos,
2451 struct net_device *dev_out,
David S. Miller5ada5522011-02-17 15:29:00 -08002452 unsigned int flags)
Linus Torvalds1da177e2005-04-16 15:20:36 -07002453{
David S. Miller982721f2011-02-16 21:44:24 -08002454 struct fib_info *fi = res->fi;
David S. Miller5ada5522011-02-17 15:29:00 -08002455 struct in_device *in_dev;
David S. Miller982721f2011-02-16 21:44:24 -08002456 u16 type = res->type;
David S. Miller5ada5522011-02-17 15:29:00 -08002457 struct rtable *rth;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002458
Thomas Grafd0daebc32012-06-12 00:44:01 +00002459 in_dev = __in_dev_get_rcu(dev_out);
2460 if (!in_dev)
David S. Miller5ada5522011-02-17 15:29:00 -08002461 return ERR_PTR(-EINVAL);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002462
Thomas Grafd0daebc32012-06-12 00:44:01 +00002463 if (likely(!IN_DEV_ROUTE_LOCALNET(in_dev)))
2464 if (ipv4_is_loopback(fl4->saddr) && !(dev_out->flags & IFF_LOOPBACK))
2465 return ERR_PTR(-EINVAL);
2466
David S. Miller68a5e3d2011-03-11 20:07:33 -05002467 if (ipv4_is_lbcast(fl4->daddr))
David S. Miller982721f2011-02-16 21:44:24 -08002468 type = RTN_BROADCAST;
David S. Miller68a5e3d2011-03-11 20:07:33 -05002469 else if (ipv4_is_multicast(fl4->daddr))
David S. Miller982721f2011-02-16 21:44:24 -08002470 type = RTN_MULTICAST;
David S. Miller68a5e3d2011-03-11 20:07:33 -05002471 else if (ipv4_is_zeronet(fl4->daddr))
David S. Miller5ada5522011-02-17 15:29:00 -08002472 return ERR_PTR(-EINVAL);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002473
2474 if (dev_out->flags & IFF_LOOPBACK)
2475 flags |= RTCF_LOCAL;
2476
David S. Miller982721f2011-02-16 21:44:24 -08002477 if (type == RTN_BROADCAST) {
Linus Torvalds1da177e2005-04-16 15:20:36 -07002478 flags |= RTCF_BROADCAST | RTCF_LOCAL;
David S. Miller982721f2011-02-16 21:44:24 -08002479 fi = NULL;
2480 } else if (type == RTN_MULTICAST) {
Eric Dumazetdd28d1a2010-09-29 11:53:50 +00002481 flags |= RTCF_MULTICAST | RTCF_LOCAL;
David S. Miller813b3b52011-04-28 14:48:42 -07002482 if (!ip_check_mc_rcu(in_dev, fl4->daddr, fl4->saddr,
2483 fl4->flowi4_proto))
Linus Torvalds1da177e2005-04-16 15:20:36 -07002484 flags &= ~RTCF_LOCAL;
2485 /* If multicast route do not exist use
Eric Dumazetdd28d1a2010-09-29 11:53:50 +00002486 * default one, but do not gateway in this case.
2487 * Yes, it is hack.
Linus Torvalds1da177e2005-04-16 15:20:36 -07002488 */
David S. Miller982721f2011-02-16 21:44:24 -08002489 if (fi && res->prefixlen < 4)
2490 fi = NULL;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002491 }
2492
David S. Miller5c1e6aa2011-04-28 14:13:38 -07002493 rth = rt_dst_alloc(dev_out,
2494 IN_DEV_CONF_GET(in_dev, NOPOLICY),
David S. Miller0c4dcd52011-02-17 15:42:37 -08002495 IN_DEV_CONF_GET(in_dev, NOXFRM));
Dimitris Michailidis8391d072010-10-07 14:48:38 +00002496 if (!rth)
David S. Miller5ada5522011-02-17 15:29:00 -08002497 return ERR_PTR(-ENOBUFS);
Dimitris Michailidis8391d072010-10-07 14:48:38 +00002498
David S. Millercf911662011-04-28 14:31:47 -07002499 rth->dst.output = ip_output;
2500
David S. Miller813b3b52011-04-28 14:48:42 -07002501 rth->rt_key_dst = orig_daddr;
2502 rth->rt_key_src = orig_saddr;
David S. Millercf911662011-04-28 14:31:47 -07002503 rth->rt_genid = rt_genid(dev_net(dev_out));
2504 rth->rt_flags = flags;
2505 rth->rt_type = type;
Julian Anastasovf61759e2011-12-02 11:39:42 +00002506 rth->rt_key_tos = orig_rtos;
David S. Miller68a5e3d2011-03-11 20:07:33 -05002507 rth->rt_dst = fl4->daddr;
2508 rth->rt_src = fl4->saddr;
OGAWA Hirofumi1b86a582011-04-07 14:04:08 -07002509 rth->rt_route_iif = 0;
David S. Miller813b3b52011-04-28 14:48:42 -07002510 rth->rt_iif = orig_oif ? : dev_out->ifindex;
2511 rth->rt_oif = orig_oif;
2512 rth->rt_mark = fl4->flowi4_mark;
David S. Miller59436342012-07-10 06:58:42 -07002513 rth->rt_pmtu = 0;
David S. Miller68a5e3d2011-03-11 20:07:33 -05002514 rth->rt_gateway = fl4->daddr;
David S. Millercf911662011-04-28 14:31:47 -07002515 rth->fi = NULL;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002516
2517 RT_CACHE_STAT_INC(out_slow_tot);
2518
David S. Miller41347dc2012-06-28 04:05:27 -07002519 if (flags & RTCF_LOCAL)
Changli Gaod8d1f302010-06-10 23:31:35 -07002520 rth->dst.input = ip_local_deliver;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002521 if (flags & (RTCF_BROADCAST | RTCF_MULTICAST)) {
YOSHIFUJI Hideakie905a9e2007-02-09 23:24:47 +09002522 if (flags & RTCF_LOCAL &&
Linus Torvalds1da177e2005-04-16 15:20:36 -07002523 !(dev_out->flags & IFF_LOOPBACK)) {
Changli Gaod8d1f302010-06-10 23:31:35 -07002524 rth->dst.output = ip_mc_output;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002525 RT_CACHE_STAT_INC(out_slow_mc);
2526 }
2527#ifdef CONFIG_IP_MROUTE
David S. Miller982721f2011-02-16 21:44:24 -08002528 if (type == RTN_MULTICAST) {
Linus Torvalds1da177e2005-04-16 15:20:36 -07002529 if (IN_DEV_MFORWARD(in_dev) &&
David S. Miller813b3b52011-04-28 14:48:42 -07002530 !ipv4_is_local_multicast(fl4->daddr)) {
Changli Gaod8d1f302010-06-10 23:31:35 -07002531 rth->dst.input = ip_mr_input;
2532 rth->dst.output = ip_mc_output;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002533 }
2534 }
2535#endif
2536 }
2537
David S. Miller813b3b52011-04-28 14:48:42 -07002538 rt_set_nexthop(rth, fl4, res, fi, type, 0);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002539
Eric Dumazet7586ece2012-06-20 05:02:19 +00002540 if (fl4->flowi4_flags & FLOWI_FLAG_RT_NOCACHE)
2541 rth->dst.flags |= DST_NOCACHE;
2542
David S. Miller5ada5522011-02-17 15:29:00 -08002543 return rth;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002544}
2545
Linus Torvalds1da177e2005-04-16 15:20:36 -07002546/*
2547 * Major route resolver routine.
Eric Dumazet0197aa32010-09-30 03:33:58 +00002548 * called with rcu_read_lock();
Linus Torvalds1da177e2005-04-16 15:20:36 -07002549 */
2550
David S. Miller813b3b52011-04-28 14:48:42 -07002551static struct rtable *ip_route_output_slow(struct net *net, struct flowi4 *fl4)
Linus Torvalds1da177e2005-04-16 15:20:36 -07002552{
Linus Torvalds1da177e2005-04-16 15:20:36 -07002553 struct net_device *dev_out = NULL;
Julian Anastasovf61759e2011-12-02 11:39:42 +00002554 __u8 tos = RT_FL_TOS(fl4);
David S. Miller813b3b52011-04-28 14:48:42 -07002555 unsigned int flags = 0;
2556 struct fib_result res;
David S. Miller5ada5522011-02-17 15:29:00 -08002557 struct rtable *rth;
David S. Miller813b3b52011-04-28 14:48:42 -07002558 __be32 orig_daddr;
2559 __be32 orig_saddr;
2560 int orig_oif;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002561
David S. Miller85b91b02012-07-13 08:21:29 -07002562 res.tclassid = 0;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002563 res.fi = NULL;
David S. Miller8b96d222012-06-11 02:01:56 -07002564 res.table = NULL;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002565
David S. Miller813b3b52011-04-28 14:48:42 -07002566 orig_daddr = fl4->daddr;
2567 orig_saddr = fl4->saddr;
2568 orig_oif = fl4->flowi4_oif;
2569
2570 fl4->flowi4_iif = net->loopback_dev->ifindex;
2571 fl4->flowi4_tos = tos & IPTOS_RT_MASK;
2572 fl4->flowi4_scope = ((tos & RTO_ONLINK) ?
2573 RT_SCOPE_LINK : RT_SCOPE_UNIVERSE);
David S. Miller44713b62011-03-04 21:24:47 -08002574
David S. Miller010c2702011-02-17 15:37:09 -08002575 rcu_read_lock();
David S. Miller813b3b52011-04-28 14:48:42 -07002576 if (fl4->saddr) {
David S. Millerb23dd4f2011-03-02 14:31:35 -08002577 rth = ERR_PTR(-EINVAL);
David S. Miller813b3b52011-04-28 14:48:42 -07002578 if (ipv4_is_multicast(fl4->saddr) ||
2579 ipv4_is_lbcast(fl4->saddr) ||
2580 ipv4_is_zeronet(fl4->saddr))
Linus Torvalds1da177e2005-04-16 15:20:36 -07002581 goto out;
2582
Linus Torvalds1da177e2005-04-16 15:20:36 -07002583 /* I removed check for oif == dev_out->oif here.
2584 It was wrong for two reasons:
Denis V. Lunev1ab35272008-01-22 22:04:30 -08002585 1. ip_dev_find(net, saddr) can return wrong iface, if saddr
2586 is assigned to multiple interfaces.
Linus Torvalds1da177e2005-04-16 15:20:36 -07002587 2. Moreover, we are allowed to send packets with saddr
2588 of another iface. --ANK
2589 */
2590
David S. Miller813b3b52011-04-28 14:48:42 -07002591 if (fl4->flowi4_oif == 0 &&
2592 (ipv4_is_multicast(fl4->daddr) ||
2593 ipv4_is_lbcast(fl4->daddr))) {
Julian Anastasova210d012008-10-01 07:28:28 -07002594 /* It is equivalent to inet_addr_type(saddr) == RTN_LOCAL */
David S. Miller813b3b52011-04-28 14:48:42 -07002595 dev_out = __ip_dev_find(net, fl4->saddr, false);
Julian Anastasova210d012008-10-01 07:28:28 -07002596 if (dev_out == NULL)
2597 goto out;
2598
Linus Torvalds1da177e2005-04-16 15:20:36 -07002599 /* Special hack: user can direct multicasts
2600 and limited broadcast via necessary interface
2601 without fiddling with IP_MULTICAST_IF or IP_PKTINFO.
2602 This hack is not just for fun, it allows
2603 vic,vat and friends to work.
2604 They bind socket to loopback, set ttl to zero
2605 and expect that it will work.
2606 From the viewpoint of routing cache they are broken,
2607 because we are not allowed to build multicast path
2608 with loopback source addr (look, routing cache
2609 cannot know, that ttl is zero, so that packet
2610 will not leave this host and route is valid).
2611 Luckily, this hack is good workaround.
2612 */
2613
David S. Miller813b3b52011-04-28 14:48:42 -07002614 fl4->flowi4_oif = dev_out->ifindex;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002615 goto make_route;
2616 }
Julian Anastasova210d012008-10-01 07:28:28 -07002617
David S. Miller813b3b52011-04-28 14:48:42 -07002618 if (!(fl4->flowi4_flags & FLOWI_FLAG_ANYSRC)) {
Julian Anastasova210d012008-10-01 07:28:28 -07002619 /* It is equivalent to inet_addr_type(saddr) == RTN_LOCAL */
David S. Miller813b3b52011-04-28 14:48:42 -07002620 if (!__ip_dev_find(net, fl4->saddr, false))
Julian Anastasova210d012008-10-01 07:28:28 -07002621 goto out;
Julian Anastasova210d012008-10-01 07:28:28 -07002622 }
Linus Torvalds1da177e2005-04-16 15:20:36 -07002623 }
2624
2625
David S. Miller813b3b52011-04-28 14:48:42 -07002626 if (fl4->flowi4_oif) {
2627 dev_out = dev_get_by_index_rcu(net, fl4->flowi4_oif);
David S. Millerb23dd4f2011-03-02 14:31:35 -08002628 rth = ERR_PTR(-ENODEV);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002629 if (dev_out == NULL)
2630 goto out;
Herbert Xue5ed6392005-10-03 14:35:55 -07002631
2632 /* RACE: Check return value of inet_select_addr instead. */
Eric Dumazetfc75fc82010-12-22 04:39:39 +00002633 if (!(dev_out->flags & IFF_UP) || !__in_dev_get_rcu(dev_out)) {
David S. Millerb23dd4f2011-03-02 14:31:35 -08002634 rth = ERR_PTR(-ENETUNREACH);
Eric Dumazetfc75fc82010-12-22 04:39:39 +00002635 goto out;
2636 }
David S. Miller813b3b52011-04-28 14:48:42 -07002637 if (ipv4_is_local_multicast(fl4->daddr) ||
2638 ipv4_is_lbcast(fl4->daddr)) {
2639 if (!fl4->saddr)
2640 fl4->saddr = inet_select_addr(dev_out, 0,
2641 RT_SCOPE_LINK);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002642 goto make_route;
2643 }
David S. Miller813b3b52011-04-28 14:48:42 -07002644 if (fl4->saddr) {
2645 if (ipv4_is_multicast(fl4->daddr))
2646 fl4->saddr = inet_select_addr(dev_out, 0,
2647 fl4->flowi4_scope);
2648 else if (!fl4->daddr)
2649 fl4->saddr = inet_select_addr(dev_out, 0,
2650 RT_SCOPE_HOST);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002651 }
2652 }
2653
David S. Miller813b3b52011-04-28 14:48:42 -07002654 if (!fl4->daddr) {
2655 fl4->daddr = fl4->saddr;
2656 if (!fl4->daddr)
2657 fl4->daddr = fl4->saddr = htonl(INADDR_LOOPBACK);
Denis V. Lunevb40afd02008-01-22 22:06:19 -08002658 dev_out = net->loopback_dev;
David S. Miller813b3b52011-04-28 14:48:42 -07002659 fl4->flowi4_oif = net->loopback_dev->ifindex;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002660 res.type = RTN_LOCAL;
2661 flags |= RTCF_LOCAL;
2662 goto make_route;
2663 }
2664
David S. Miller813b3b52011-04-28 14:48:42 -07002665 if (fib_lookup(net, fl4, &res)) {
Linus Torvalds1da177e2005-04-16 15:20:36 -07002666 res.fi = NULL;
David S. Miller8b96d222012-06-11 02:01:56 -07002667 res.table = NULL;
David S. Miller813b3b52011-04-28 14:48:42 -07002668 if (fl4->flowi4_oif) {
Linus Torvalds1da177e2005-04-16 15:20:36 -07002669 /* Apparently, routing tables are wrong. Assume,
2670 that the destination is on link.
2671
2672 WHY? DW.
2673 Because we are allowed to send to iface
2674 even if it has NO routes and NO assigned
2675 addresses. When oif is specified, routing
2676 tables are looked up with only one purpose:
2677 to catch if destination is gatewayed, rather than
2678 direct. Moreover, if MSG_DONTROUTE is set,
2679 we send packet, ignoring both routing tables
2680 and ifaddr state. --ANK
2681
2682
2683 We could make it even if oif is unknown,
2684 likely IPv6, but we do not.
2685 */
2686
David S. Miller813b3b52011-04-28 14:48:42 -07002687 if (fl4->saddr == 0)
2688 fl4->saddr = inet_select_addr(dev_out, 0,
2689 RT_SCOPE_LINK);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002690 res.type = RTN_UNICAST;
2691 goto make_route;
2692 }
David S. Millerb23dd4f2011-03-02 14:31:35 -08002693 rth = ERR_PTR(-ENETUNREACH);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002694 goto out;
2695 }
Linus Torvalds1da177e2005-04-16 15:20:36 -07002696
2697 if (res.type == RTN_LOCAL) {
David S. Miller813b3b52011-04-28 14:48:42 -07002698 if (!fl4->saddr) {
Joel Sing9fc3bbb2011-01-03 20:24:20 +00002699 if (res.fi->fib_prefsrc)
David S. Miller813b3b52011-04-28 14:48:42 -07002700 fl4->saddr = res.fi->fib_prefsrc;
Joel Sing9fc3bbb2011-01-03 20:24:20 +00002701 else
David S. Miller813b3b52011-04-28 14:48:42 -07002702 fl4->saddr = fl4->daddr;
Joel Sing9fc3bbb2011-01-03 20:24:20 +00002703 }
Denis V. Lunevb40afd02008-01-22 22:06:19 -08002704 dev_out = net->loopback_dev;
David S. Miller813b3b52011-04-28 14:48:42 -07002705 fl4->flowi4_oif = dev_out->ifindex;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002706 res.fi = NULL;
2707 flags |= RTCF_LOCAL;
2708 goto make_route;
2709 }
2710
2711#ifdef CONFIG_IP_ROUTE_MULTIPATH
David S. Miller813b3b52011-04-28 14:48:42 -07002712 if (res.fi->fib_nhs > 1 && fl4->flowi4_oif == 0)
David S. Miller1b7fe5932011-03-10 17:01:16 -08002713 fib_select_multipath(&res);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002714 else
2715#endif
David S. Miller21d8c492011-04-14 14:49:37 -07002716 if (!res.prefixlen &&
2717 res.table->tb_num_default > 1 &&
David S. Miller813b3b52011-04-28 14:48:42 -07002718 res.type == RTN_UNICAST && !fl4->flowi4_oif)
David S. Miller0c838ff2011-01-31 16:16:50 -08002719 fib_select_default(&res);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002720
David S. Miller813b3b52011-04-28 14:48:42 -07002721 if (!fl4->saddr)
2722 fl4->saddr = FIB_RES_PREFSRC(net, res);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002723
Linus Torvalds1da177e2005-04-16 15:20:36 -07002724 dev_out = FIB_RES_DEV(res);
David S. Miller813b3b52011-04-28 14:48:42 -07002725 fl4->flowi4_oif = dev_out->ifindex;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002726
2727
2728make_route:
David S. Miller813b3b52011-04-28 14:48:42 -07002729 rth = __mkroute_output(&res, fl4, orig_daddr, orig_saddr, orig_oif,
Julian Anastasovf61759e2011-12-02 11:39:42 +00002730 tos, dev_out, flags);
David S. Millerb23dd4f2011-03-02 14:31:35 -08002731 if (!IS_ERR(rth)) {
David S. Miller5ada5522011-02-17 15:29:00 -08002732 unsigned int hash;
2733
David S. Miller813b3b52011-04-28 14:48:42 -07002734 hash = rt_hash(orig_daddr, orig_saddr, orig_oif,
David S. Miller5ada5522011-02-17 15:29:00 -08002735 rt_genid(dev_net(dev_out)));
David S. Miller813b3b52011-04-28 14:48:42 -07002736 rth = rt_intern_hash(hash, rth, NULL, orig_oif);
David S. Miller5ada5522011-02-17 15:29:00 -08002737 }
Linus Torvalds1da177e2005-04-16 15:20:36 -07002738
David S. Miller010c2702011-02-17 15:37:09 -08002739out:
2740 rcu_read_unlock();
David S. Millerb23dd4f2011-03-02 14:31:35 -08002741 return rth;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002742}
2743
David S. Miller813b3b52011-04-28 14:48:42 -07002744struct rtable *__ip_route_output_key(struct net *net, struct flowi4 *flp4)
Linus Torvalds1da177e2005-04-16 15:20:36 -07002745{
Linus Torvalds1da177e2005-04-16 15:20:36 -07002746 struct rtable *rth;
David S. Miller010c2702011-02-17 15:37:09 -08002747 unsigned int hash;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002748
Neil Horman1080d702008-10-27 12:28:25 -07002749 if (!rt_caching(net))
2750 goto slow_output;
2751
David S. Miller9d6ec932011-03-12 01:12:47 -05002752 hash = rt_hash(flp4->daddr, flp4->saddr, flp4->flowi4_oif, rt_genid(net));
Linus Torvalds1da177e2005-04-16 15:20:36 -07002753
2754 rcu_read_lock_bh();
Paul E. McKenneya898def2010-02-22 17:04:49 -08002755 for (rth = rcu_dereference_bh(rt_hash_table[hash].chain); rth;
Changli Gaod8d1f302010-06-10 23:31:35 -07002756 rth = rcu_dereference_bh(rth->dst.rt_next)) {
David S. Miller9d6ec932011-03-12 01:12:47 -05002757 if (rth->rt_key_dst == flp4->daddr &&
2758 rth->rt_key_src == flp4->saddr &&
David S. Millerc7537962010-11-11 17:07:48 -08002759 rt_is_output_route(rth) &&
David S. Miller9d6ec932011-03-12 01:12:47 -05002760 rth->rt_oif == flp4->flowi4_oif &&
2761 rth->rt_mark == flp4->flowi4_mark &&
David S. Miller475949d2011-05-03 19:45:15 -07002762 !((rth->rt_key_tos ^ flp4->flowi4_tos) &
Denis V. Lunevb5921912008-01-22 23:50:25 -08002763 (IPTOS_RT_MASK | RTO_ONLINK)) &&
Changli Gaod8d1f302010-06-10 23:31:35 -07002764 net_eq(dev_net(rth->dst.dev), net) &&
Denis V. Luneve84f84f2008-07-05 19:04:32 -07002765 !rt_is_expired(rth)) {
Changli Gaod8d1f302010-06-10 23:31:35 -07002766 dst_use(&rth->dst, jiffies);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002767 RT_CACHE_STAT_INC(out_hit);
2768 rcu_read_unlock_bh();
David S. Miller56157872011-05-02 14:37:45 -07002769 if (!flp4->saddr)
2770 flp4->saddr = rth->rt_src;
2771 if (!flp4->daddr)
2772 flp4->daddr = rth->rt_dst;
David S. Millerb23dd4f2011-03-02 14:31:35 -08002773 return rth;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002774 }
2775 RT_CACHE_STAT_INC(out_hlist_search);
2776 }
2777 rcu_read_unlock_bh();
2778
Neil Horman1080d702008-10-27 12:28:25 -07002779slow_output:
David S. Miller9d6ec932011-03-12 01:12:47 -05002780 return ip_route_output_slow(net, flp4);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002781}
Arnaldo Carvalho de Melod8c97a92005-08-09 20:12:12 -07002782EXPORT_SYMBOL_GPL(__ip_route_output_key);
2783
Jianzhao Wangae2688d2010-09-08 14:35:43 -07002784static struct dst_entry *ipv4_blackhole_dst_check(struct dst_entry *dst, u32 cookie)
2785{
2786 return NULL;
2787}
2788
Steffen Klassertebb762f2011-11-23 02:12:51 +00002789static unsigned int ipv4_blackhole_mtu(const struct dst_entry *dst)
Roland Dreierec831ea2011-01-31 13:16:00 -08002790{
Steffen Klassert618f9bc2011-11-23 02:13:31 +00002791 unsigned int mtu = dst_metric_raw(dst, RTAX_MTU);
2792
2793 return mtu ? : dst->dev->mtu;
Roland Dreierec831ea2011-01-31 13:16:00 -08002794}
2795
David S. Miller6700c272012-07-17 03:29:28 -07002796static void ipv4_rt_blackhole_update_pmtu(struct dst_entry *dst, struct sock *sk,
2797 struct sk_buff *skb, u32 mtu)
David S. Miller14e50e52007-05-24 18:17:54 -07002798{
2799}
2800
David S. Miller6700c272012-07-17 03:29:28 -07002801static void ipv4_rt_blackhole_redirect(struct dst_entry *dst, struct sock *sk,
2802 struct sk_buff *skb)
David S. Millerb587ee32012-07-12 00:39:24 -07002803{
2804}
2805
Held Bernhard0972ddb2011-04-24 22:07:32 +00002806static u32 *ipv4_rt_blackhole_cow_metrics(struct dst_entry *dst,
2807 unsigned long old)
2808{
2809 return NULL;
2810}
2811
David S. Miller14e50e52007-05-24 18:17:54 -07002812static struct dst_ops ipv4_dst_blackhole_ops = {
2813 .family = AF_INET,
Harvey Harrison09640e62009-02-01 00:45:17 -08002814 .protocol = cpu_to_be16(ETH_P_IP),
David S. Miller14e50e52007-05-24 18:17:54 -07002815 .destroy = ipv4_dst_destroy,
Jianzhao Wangae2688d2010-09-08 14:35:43 -07002816 .check = ipv4_blackhole_dst_check,
Steffen Klassertebb762f2011-11-23 02:12:51 +00002817 .mtu = ipv4_blackhole_mtu,
Eric Dumazet214f45c2011-02-18 11:39:01 -08002818 .default_advmss = ipv4_default_advmss,
David S. Miller14e50e52007-05-24 18:17:54 -07002819 .update_pmtu = ipv4_rt_blackhole_update_pmtu,
David S. Millerb587ee32012-07-12 00:39:24 -07002820 .redirect = ipv4_rt_blackhole_redirect,
Held Bernhard0972ddb2011-04-24 22:07:32 +00002821 .cow_metrics = ipv4_rt_blackhole_cow_metrics,
David S. Millerd3aaeb32011-07-18 00:40:17 -07002822 .neigh_lookup = ipv4_neigh_lookup,
David S. Miller14e50e52007-05-24 18:17:54 -07002823};
2824
David S. Miller2774c132011-03-01 14:59:04 -08002825struct dst_entry *ipv4_blackhole_route(struct net *net, struct dst_entry *dst_orig)
David S. Miller14e50e52007-05-24 18:17:54 -07002826{
David S. Miller5c1e6aa2011-04-28 14:13:38 -07002827 struct rtable *rt = dst_alloc(&ipv4_dst_blackhole_ops, NULL, 1, 0, 0);
David S. Miller2774c132011-03-01 14:59:04 -08002828 struct rtable *ort = (struct rtable *) dst_orig;
David S. Miller14e50e52007-05-24 18:17:54 -07002829
2830 if (rt) {
Changli Gaod8d1f302010-06-10 23:31:35 -07002831 struct dst_entry *new = &rt->dst;
David S. Miller14e50e52007-05-24 18:17:54 -07002832
David S. Miller14e50e52007-05-24 18:17:54 -07002833 new->__use = 1;
Herbert Xu352e5122007-11-13 21:34:06 -08002834 new->input = dst_discard;
2835 new->output = dst_discard;
David S. Miller14e50e52007-05-24 18:17:54 -07002836
Changli Gaod8d1f302010-06-10 23:31:35 -07002837 new->dev = ort->dst.dev;
David S. Miller14e50e52007-05-24 18:17:54 -07002838 if (new->dev)
2839 dev_hold(new->dev);
2840
David S. Miller5e2b61f2011-03-04 21:47:09 -08002841 rt->rt_key_dst = ort->rt_key_dst;
2842 rt->rt_key_src = ort->rt_key_src;
David S. Miller475949d2011-05-03 19:45:15 -07002843 rt->rt_key_tos = ort->rt_key_tos;
OGAWA Hirofumi1b86a582011-04-07 14:04:08 -07002844 rt->rt_route_iif = ort->rt_route_iif;
David S. Miller5e2b61f2011-03-04 21:47:09 -08002845 rt->rt_iif = ort->rt_iif;
2846 rt->rt_oif = ort->rt_oif;
2847 rt->rt_mark = ort->rt_mark;
David S. Miller59436342012-07-10 06:58:42 -07002848 rt->rt_pmtu = ort->rt_pmtu;
David S. Miller14e50e52007-05-24 18:17:54 -07002849
Denis V. Luneve84f84f2008-07-05 19:04:32 -07002850 rt->rt_genid = rt_genid(net);
David S. Miller14e50e52007-05-24 18:17:54 -07002851 rt->rt_flags = ort->rt_flags;
2852 rt->rt_type = ort->rt_type;
2853 rt->rt_dst = ort->rt_dst;
2854 rt->rt_src = ort->rt_src;
David S. Miller14e50e52007-05-24 18:17:54 -07002855 rt->rt_gateway = ort->rt_gateway;
David S. Miller62fa8a82011-01-26 20:51:05 -08002856 rt->fi = ort->fi;
2857 if (rt->fi)
2858 atomic_inc(&rt->fi->fib_clntref);
David S. Miller14e50e52007-05-24 18:17:54 -07002859
2860 dst_free(new);
2861 }
2862
David S. Miller2774c132011-03-01 14:59:04 -08002863 dst_release(dst_orig);
2864
2865 return rt ? &rt->dst : ERR_PTR(-ENOMEM);
David S. Miller14e50e52007-05-24 18:17:54 -07002866}
2867
David S. Miller9d6ec932011-03-12 01:12:47 -05002868struct rtable *ip_route_output_flow(struct net *net, struct flowi4 *flp4,
David S. Millerb23dd4f2011-03-02 14:31:35 -08002869 struct sock *sk)
Linus Torvalds1da177e2005-04-16 15:20:36 -07002870{
David S. Miller9d6ec932011-03-12 01:12:47 -05002871 struct rtable *rt = __ip_route_output_key(net, flp4);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002872
David S. Millerb23dd4f2011-03-02 14:31:35 -08002873 if (IS_ERR(rt))
2874 return rt;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002875
David S. Miller56157872011-05-02 14:37:45 -07002876 if (flp4->flowi4_proto)
David S. Miller9d6ec932011-03-12 01:12:47 -05002877 rt = (struct rtable *) xfrm_lookup(net, &rt->dst,
2878 flowi4_to_flowi(flp4),
2879 sk, 0);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002880
David S. Millerb23dd4f2011-03-02 14:31:35 -08002881 return rt;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002882}
Arnaldo Carvalho de Melod8c97a92005-08-09 20:12:12 -07002883EXPORT_SYMBOL_GPL(ip_route_output_flow);
2884
Benjamin Thery4feb88e2009-01-22 04:56:23 +00002885static int rt_fill_info(struct net *net,
2886 struct sk_buff *skb, u32 pid, u32 seq, int event,
Jamal Hadi Salimb6544c02005-06-18 22:54:12 -07002887 int nowait, unsigned int flags)
Linus Torvalds1da177e2005-04-16 15:20:36 -07002888{
Eric Dumazet511c3f92009-06-02 05:14:27 +00002889 struct rtable *rt = skb_rtable(skb);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002890 struct rtmsg *r;
Thomas Grafbe403ea2006-08-17 18:15:17 -07002891 struct nlmsghdr *nlh;
Steffen Klassert2bc8ca42011-10-11 01:12:02 +00002892 unsigned long expires = 0;
David S. Millerf1850712012-07-10 07:26:01 -07002893 u32 error;
Thomas Grafbe403ea2006-08-17 18:15:17 -07002894
2895 nlh = nlmsg_put(skb, pid, seq, event, sizeof(*r), flags);
2896 if (nlh == NULL)
Patrick McHardy26932562007-01-31 23:16:40 -08002897 return -EMSGSIZE;
Thomas Grafbe403ea2006-08-17 18:15:17 -07002898
2899 r = nlmsg_data(nlh);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002900 r->rtm_family = AF_INET;
2901 r->rtm_dst_len = 32;
2902 r->rtm_src_len = 0;
David S. Miller475949d2011-05-03 19:45:15 -07002903 r->rtm_tos = rt->rt_key_tos;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002904 r->rtm_table = RT_TABLE_MAIN;
David S. Millerf3756b72012-04-01 20:39:02 -04002905 if (nla_put_u32(skb, RTA_TABLE, RT_TABLE_MAIN))
2906 goto nla_put_failure;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002907 r->rtm_type = rt->rt_type;
2908 r->rtm_scope = RT_SCOPE_UNIVERSE;
2909 r->rtm_protocol = RTPROT_UNSPEC;
2910 r->rtm_flags = (rt->rt_flags & ~0xFFFF) | RTM_F_CLONED;
2911 if (rt->rt_flags & RTCF_NOTIFY)
2912 r->rtm_flags |= RTM_F_NOTIFY;
Thomas Grafbe403ea2006-08-17 18:15:17 -07002913
David S. Millerf3756b72012-04-01 20:39:02 -04002914 if (nla_put_be32(skb, RTA_DST, rt->rt_dst))
2915 goto nla_put_failure;
David S. Miller5e2b61f2011-03-04 21:47:09 -08002916 if (rt->rt_key_src) {
Linus Torvalds1da177e2005-04-16 15:20:36 -07002917 r->rtm_src_len = 32;
David S. Millerf3756b72012-04-01 20:39:02 -04002918 if (nla_put_be32(skb, RTA_SRC, rt->rt_key_src))
2919 goto nla_put_failure;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002920 }
David S. Millerf3756b72012-04-01 20:39:02 -04002921 if (rt->dst.dev &&
2922 nla_put_u32(skb, RTA_OIF, rt->dst.dev->ifindex))
2923 goto nla_put_failure;
Patrick McHardyc7066f72011-01-14 13:36:42 +01002924#ifdef CONFIG_IP_ROUTE_CLASSID
David S. Millerf3756b72012-04-01 20:39:02 -04002925 if (rt->dst.tclassid &&
2926 nla_put_u32(skb, RTA_FLOW, rt->dst.tclassid))
2927 goto nla_put_failure;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002928#endif
David S. Miller41347dc2012-06-28 04:05:27 -07002929 if (!rt_is_input_route(rt) &&
2930 rt->rt_src != rt->rt_key_src) {
David S. Millerf3756b72012-04-01 20:39:02 -04002931 if (nla_put_be32(skb, RTA_PREFSRC, rt->rt_src))
2932 goto nla_put_failure;
2933 }
2934 if (rt->rt_dst != rt->rt_gateway &&
2935 nla_put_be32(skb, RTA_GATEWAY, rt->rt_gateway))
2936 goto nla_put_failure;
Thomas Grafbe403ea2006-08-17 18:15:17 -07002937
David S. Millerdefb3512010-12-08 21:16:57 -08002938 if (rtnetlink_put_metrics(skb, dst_metrics_ptr(&rt->dst)) < 0)
Thomas Grafbe403ea2006-08-17 18:15:17 -07002939 goto nla_put_failure;
2940
David S. Millerf3756b72012-04-01 20:39:02 -04002941 if (rt->rt_mark &&
2942 nla_put_be32(skb, RTA_MARK, rt->rt_mark))
2943 goto nla_put_failure;
Eric Dumazet963bfee2010-07-20 22:03:14 +00002944
Changli Gaod8d1f302010-06-10 23:31:35 -07002945 error = rt->dst.error;
David S. Miller59436342012-07-10 06:58:42 -07002946 expires = rt->dst.expires;
2947 if (expires) {
2948 if (time_before(jiffies, expires))
2949 expires -= jiffies;
2950 else
2951 expires = 0;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002952 }
Thomas Grafbe403ea2006-08-17 18:15:17 -07002953
David S. Millerc7537962010-11-11 17:07:48 -08002954 if (rt_is_input_route(rt)) {
Linus Torvalds1da177e2005-04-16 15:20:36 -07002955#ifdef CONFIG_IP_MROUTE
Al Viroe4485152006-09-26 22:15:01 -07002956 __be32 dst = rt->rt_dst;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002957
Joe Perchesf97c1e02007-12-16 13:45:43 -08002958 if (ipv4_is_multicast(dst) && !ipv4_is_local_multicast(dst) &&
Benjamin Thery4feb88e2009-01-22 04:56:23 +00002959 IPV4_DEVCONF_ALL(net, MC_FORWARDING)) {
David S. Miller9a1b9492011-05-04 12:18:54 -07002960 int err = ipmr_get_route(net, skb,
2961 rt->rt_src, rt->rt_dst,
2962 r, nowait);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002963 if (err <= 0) {
2964 if (!nowait) {
2965 if (err == 0)
2966 return 0;
Thomas Grafbe403ea2006-08-17 18:15:17 -07002967 goto nla_put_failure;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002968 } else {
2969 if (err == -EMSGSIZE)
Thomas Grafbe403ea2006-08-17 18:15:17 -07002970 goto nla_put_failure;
Thomas Grafe3703b32006-11-27 09:27:07 -08002971 error = err;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002972 }
2973 }
2974 } else
2975#endif
David S. Millerf3756b72012-04-01 20:39:02 -04002976 if (nla_put_u32(skb, RTA_IIF, rt->rt_iif))
2977 goto nla_put_failure;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002978 }
2979
David S. Millerf1850712012-07-10 07:26:01 -07002980 if (rtnl_put_cacheinfo(skb, &rt->dst, 0, expires, error) < 0)
Thomas Grafe3703b32006-11-27 09:27:07 -08002981 goto nla_put_failure;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002982
Thomas Grafbe403ea2006-08-17 18:15:17 -07002983 return nlmsg_end(skb, nlh);
2984
2985nla_put_failure:
Patrick McHardy26932562007-01-31 23:16:40 -08002986 nlmsg_cancel(skb, nlh);
2987 return -EMSGSIZE;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002988}
2989
Daniel Baluta5e73ea12012-04-15 01:34:41 +00002990static int inet_rtm_getroute(struct sk_buff *in_skb, struct nlmsghdr *nlh, void *arg)
Linus Torvalds1da177e2005-04-16 15:20:36 -07002991{
YOSHIFUJI Hideaki3b1e0a62008-03-26 02:26:21 +09002992 struct net *net = sock_net(in_skb->sk);
Thomas Grafd889ce32006-08-17 18:15:44 -07002993 struct rtmsg *rtm;
2994 struct nlattr *tb[RTA_MAX+1];
Linus Torvalds1da177e2005-04-16 15:20:36 -07002995 struct rtable *rt = NULL;
Al Viro9e12bb22006-09-26 21:25:20 -07002996 __be32 dst = 0;
2997 __be32 src = 0;
2998 u32 iif;
Thomas Grafd889ce32006-08-17 18:15:44 -07002999 int err;
Eric Dumazet963bfee2010-07-20 22:03:14 +00003000 int mark;
Linus Torvalds1da177e2005-04-16 15:20:36 -07003001 struct sk_buff *skb;
3002
Thomas Grafd889ce32006-08-17 18:15:44 -07003003 err = nlmsg_parse(nlh, sizeof(*rtm), tb, RTA_MAX, rtm_ipv4_policy);
3004 if (err < 0)
3005 goto errout;
3006
3007 rtm = nlmsg_data(nlh);
3008
Linus Torvalds1da177e2005-04-16 15:20:36 -07003009 skb = alloc_skb(NLMSG_GOODSIZE, GFP_KERNEL);
Thomas Grafd889ce32006-08-17 18:15:44 -07003010 if (skb == NULL) {
3011 err = -ENOBUFS;
3012 goto errout;
3013 }
Linus Torvalds1da177e2005-04-16 15:20:36 -07003014
3015 /* Reserve room for dummy headers, this skb can pass
3016 through good chunk of routing engine.
3017 */
Arnaldo Carvalho de Melo459a98e2007-03-19 15:30:44 -07003018 skb_reset_mac_header(skb);
Arnaldo Carvalho de Meloc1d2bbe2007-04-10 20:45:18 -07003019 skb_reset_network_header(skb);
Stephen Hemmingerd2c962b2006-04-17 17:27:11 -07003020
3021 /* Bugfix: need to give ip_route_input enough of an IP header to not gag. */
Arnaldo Carvalho de Meloeddc9ec2007-04-20 22:47:35 -07003022 ip_hdr(skb)->protocol = IPPROTO_ICMP;
Linus Torvalds1da177e2005-04-16 15:20:36 -07003023 skb_reserve(skb, MAX_HEADER + sizeof(struct iphdr));
3024
Al Viro17fb2c62006-09-26 22:15:25 -07003025 src = tb[RTA_SRC] ? nla_get_be32(tb[RTA_SRC]) : 0;
3026 dst = tb[RTA_DST] ? nla_get_be32(tb[RTA_DST]) : 0;
Thomas Grafd889ce32006-08-17 18:15:44 -07003027 iif = tb[RTA_IIF] ? nla_get_u32(tb[RTA_IIF]) : 0;
Eric Dumazet963bfee2010-07-20 22:03:14 +00003028 mark = tb[RTA_MARK] ? nla_get_u32(tb[RTA_MARK]) : 0;
Linus Torvalds1da177e2005-04-16 15:20:36 -07003029
3030 if (iif) {
Thomas Grafd889ce32006-08-17 18:15:44 -07003031 struct net_device *dev;
3032
Denis V. Lunev19375042008-02-28 20:52:04 -08003033 dev = __dev_get_by_index(net, iif);
Thomas Grafd889ce32006-08-17 18:15:44 -07003034 if (dev == NULL) {
3035 err = -ENODEV;
3036 goto errout_free;
3037 }
3038
Linus Torvalds1da177e2005-04-16 15:20:36 -07003039 skb->protocol = htons(ETH_P_IP);
3040 skb->dev = dev;
Eric Dumazet963bfee2010-07-20 22:03:14 +00003041 skb->mark = mark;
Linus Torvalds1da177e2005-04-16 15:20:36 -07003042 local_bh_disable();
3043 err = ip_route_input(skb, dst, src, rtm->rtm_tos, dev);
3044 local_bh_enable();
Thomas Grafd889ce32006-08-17 18:15:44 -07003045
Eric Dumazet511c3f92009-06-02 05:14:27 +00003046 rt = skb_rtable(skb);
Changli Gaod8d1f302010-06-10 23:31:35 -07003047 if (err == 0 && rt->dst.error)
3048 err = -rt->dst.error;
Linus Torvalds1da177e2005-04-16 15:20:36 -07003049 } else {
David S. Miller68a5e3d2011-03-11 20:07:33 -05003050 struct flowi4 fl4 = {
3051 .daddr = dst,
3052 .saddr = src,
3053 .flowi4_tos = rtm->rtm_tos,
3054 .flowi4_oif = tb[RTA_OIF] ? nla_get_u32(tb[RTA_OIF]) : 0,
3055 .flowi4_mark = mark,
Thomas Grafd889ce32006-08-17 18:15:44 -07003056 };
David S. Miller9d6ec932011-03-12 01:12:47 -05003057 rt = ip_route_output_key(net, &fl4);
David S. Millerb23dd4f2011-03-02 14:31:35 -08003058
3059 err = 0;
3060 if (IS_ERR(rt))
3061 err = PTR_ERR(rt);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003062 }
Thomas Grafd889ce32006-08-17 18:15:44 -07003063
Linus Torvalds1da177e2005-04-16 15:20:36 -07003064 if (err)
Thomas Grafd889ce32006-08-17 18:15:44 -07003065 goto errout_free;
Linus Torvalds1da177e2005-04-16 15:20:36 -07003066
Changli Gaod8d1f302010-06-10 23:31:35 -07003067 skb_dst_set(skb, &rt->dst);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003068 if (rtm->rtm_flags & RTM_F_NOTIFY)
3069 rt->rt_flags |= RTCF_NOTIFY;
3070
Benjamin Thery4feb88e2009-01-22 04:56:23 +00003071 err = rt_fill_info(net, skb, NETLINK_CB(in_skb).pid, nlh->nlmsg_seq,
Denis V. Lunev19375042008-02-28 20:52:04 -08003072 RTM_NEWROUTE, 0, 0);
Thomas Grafd889ce32006-08-17 18:15:44 -07003073 if (err <= 0)
3074 goto errout_free;
Linus Torvalds1da177e2005-04-16 15:20:36 -07003075
Denis V. Lunev19375042008-02-28 20:52:04 -08003076 err = rtnl_unicast(skb, net, NETLINK_CB(in_skb).pid);
Thomas Grafd889ce32006-08-17 18:15:44 -07003077errout:
Thomas Graf2942e902006-08-15 00:30:25 -07003078 return err;
Linus Torvalds1da177e2005-04-16 15:20:36 -07003079
Thomas Grafd889ce32006-08-17 18:15:44 -07003080errout_free:
Linus Torvalds1da177e2005-04-16 15:20:36 -07003081 kfree_skb(skb);
Thomas Grafd889ce32006-08-17 18:15:44 -07003082 goto errout;
Linus Torvalds1da177e2005-04-16 15:20:36 -07003083}
3084
3085int ip_rt_dump(struct sk_buff *skb, struct netlink_callback *cb)
3086{
3087 struct rtable *rt;
3088 int h, s_h;
3089 int idx, s_idx;
Denis V. Lunev19375042008-02-28 20:52:04 -08003090 struct net *net;
3091
YOSHIFUJI Hideaki3b1e0a62008-03-26 02:26:21 +09003092 net = sock_net(skb->sk);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003093
3094 s_h = cb->args[0];
Eric Dumazetd8c92832008-01-07 21:52:14 -08003095 if (s_h < 0)
3096 s_h = 0;
Linus Torvalds1da177e2005-04-16 15:20:36 -07003097 s_idx = idx = cb->args[1];
Eric Dumazeta6272662008-08-28 01:11:25 -07003098 for (h = s_h; h <= rt_hash_mask; h++, s_idx = 0) {
3099 if (!rt_hash_table[h].chain)
3100 continue;
Linus Torvalds1da177e2005-04-16 15:20:36 -07003101 rcu_read_lock_bh();
Paul E. McKenneya898def2010-02-22 17:04:49 -08003102 for (rt = rcu_dereference_bh(rt_hash_table[h].chain), idx = 0; rt;
Changli Gaod8d1f302010-06-10 23:31:35 -07003103 rt = rcu_dereference_bh(rt->dst.rt_next), idx++) {
3104 if (!net_eq(dev_net(rt->dst.dev), net) || idx < s_idx)
Linus Torvalds1da177e2005-04-16 15:20:36 -07003105 continue;
Denis V. Luneve84f84f2008-07-05 19:04:32 -07003106 if (rt_is_expired(rt))
Eric Dumazet29e75252008-01-31 17:05:09 -08003107 continue;
Changli Gaod8d1f302010-06-10 23:31:35 -07003108 skb_dst_set_noref(skb, &rt->dst);
Benjamin Thery4feb88e2009-01-22 04:56:23 +00003109 if (rt_fill_info(net, skb, NETLINK_CB(cb->skb).pid,
YOSHIFUJI Hideakie905a9e2007-02-09 23:24:47 +09003110 cb->nlh->nlmsg_seq, RTM_NEWROUTE,
Jamal Hadi Salimb6544c02005-06-18 22:54:12 -07003111 1, NLM_F_MULTI) <= 0) {
Eric Dumazetadf30902009-06-02 05:19:30 +00003112 skb_dst_drop(skb);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003113 rcu_read_unlock_bh();
3114 goto done;
3115 }
Eric Dumazetadf30902009-06-02 05:19:30 +00003116 skb_dst_drop(skb);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003117 }
3118 rcu_read_unlock_bh();
3119 }
3120
3121done:
3122 cb->args[0] = h;
3123 cb->args[1] = idx;
3124 return skb->len;
3125}
3126
3127void ip_rt_multicast_event(struct in_device *in_dev)
3128{
Denis V. Lunev76e6ebf2008-07-05 19:00:44 -07003129 rt_cache_flush(dev_net(in_dev->dev), 0);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003130}
3131
3132#ifdef CONFIG_SYSCTL
Denis V. Lunev81c684d2008-07-08 03:05:28 -07003133static int ipv4_sysctl_rtcache_flush(ctl_table *__ctl, int write,
Alexey Dobriyan8d65af72009-09-23 15:57:19 -07003134 void __user *buffer,
Linus Torvalds1da177e2005-04-16 15:20:36 -07003135 size_t *lenp, loff_t *ppos)
3136{
3137 if (write) {
Denis V. Lunev639e1042008-07-05 19:02:06 -07003138 int flush_delay;
Denis V. Lunev81c684d2008-07-08 03:05:28 -07003139 ctl_table ctl;
Denis V. Lunev39a23e72008-07-05 19:02:33 -07003140 struct net *net;
Denis V. Lunev639e1042008-07-05 19:02:06 -07003141
Denis V. Lunev81c684d2008-07-08 03:05:28 -07003142 memcpy(&ctl, __ctl, sizeof(ctl));
3143 ctl.data = &flush_delay;
Alexey Dobriyan8d65af72009-09-23 15:57:19 -07003144 proc_dointvec(&ctl, write, buffer, lenp, ppos);
Denis V. Lunev639e1042008-07-05 19:02:06 -07003145
Denis V. Lunev81c684d2008-07-08 03:05:28 -07003146 net = (struct net *)__ctl->extra1;
Denis V. Lunev39a23e72008-07-05 19:02:33 -07003147 rt_cache_flush(net, flush_delay);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003148 return 0;
YOSHIFUJI Hideakie905a9e2007-02-09 23:24:47 +09003149 }
Linus Torvalds1da177e2005-04-16 15:20:36 -07003150
3151 return -EINVAL;
3152}
3153
Al Viroeeb61f72008-07-27 08:59:33 +01003154static ctl_table ipv4_route_table[] = {
YOSHIFUJI Hideakie905a9e2007-02-09 23:24:47 +09003155 {
Linus Torvalds1da177e2005-04-16 15:20:36 -07003156 .procname = "gc_thresh",
3157 .data = &ipv4_dst_ops.gc_thresh,
3158 .maxlen = sizeof(int),
3159 .mode = 0644,
Alexey Dobriyan6d9f2392008-11-03 18:21:05 -08003160 .proc_handler = proc_dointvec,
Linus Torvalds1da177e2005-04-16 15:20:36 -07003161 },
3162 {
Linus Torvalds1da177e2005-04-16 15:20:36 -07003163 .procname = "max_size",
3164 .data = &ip_rt_max_size,
3165 .maxlen = sizeof(int),
3166 .mode = 0644,
Alexey Dobriyan6d9f2392008-11-03 18:21:05 -08003167 .proc_handler = proc_dointvec,
Linus Torvalds1da177e2005-04-16 15:20:36 -07003168 },
3169 {
3170 /* Deprecated. Use gc_min_interval_ms */
YOSHIFUJI Hideakie905a9e2007-02-09 23:24:47 +09003171
Linus Torvalds1da177e2005-04-16 15:20:36 -07003172 .procname = "gc_min_interval",
3173 .data = &ip_rt_gc_min_interval,
3174 .maxlen = sizeof(int),
3175 .mode = 0644,
Alexey Dobriyan6d9f2392008-11-03 18:21:05 -08003176 .proc_handler = proc_dointvec_jiffies,
Linus Torvalds1da177e2005-04-16 15:20:36 -07003177 },
3178 {
Linus Torvalds1da177e2005-04-16 15:20:36 -07003179 .procname = "gc_min_interval_ms",
3180 .data = &ip_rt_gc_min_interval,
3181 .maxlen = sizeof(int),
3182 .mode = 0644,
Alexey Dobriyan6d9f2392008-11-03 18:21:05 -08003183 .proc_handler = proc_dointvec_ms_jiffies,
Linus Torvalds1da177e2005-04-16 15:20:36 -07003184 },
3185 {
Linus Torvalds1da177e2005-04-16 15:20:36 -07003186 .procname = "gc_timeout",
3187 .data = &ip_rt_gc_timeout,
3188 .maxlen = sizeof(int),
3189 .mode = 0644,
Alexey Dobriyan6d9f2392008-11-03 18:21:05 -08003190 .proc_handler = proc_dointvec_jiffies,
Linus Torvalds1da177e2005-04-16 15:20:36 -07003191 },
3192 {
Eric Dumazet9f28a2f2011-12-21 15:47:16 -05003193 .procname = "gc_interval",
3194 .data = &ip_rt_gc_interval,
3195 .maxlen = sizeof(int),
3196 .mode = 0644,
3197 .proc_handler = proc_dointvec_jiffies,
3198 },
3199 {
Linus Torvalds1da177e2005-04-16 15:20:36 -07003200 .procname = "redirect_load",
3201 .data = &ip_rt_redirect_load,
3202 .maxlen = sizeof(int),
3203 .mode = 0644,
Alexey Dobriyan6d9f2392008-11-03 18:21:05 -08003204 .proc_handler = proc_dointvec,
Linus Torvalds1da177e2005-04-16 15:20:36 -07003205 },
3206 {
Linus Torvalds1da177e2005-04-16 15:20:36 -07003207 .procname = "redirect_number",
3208 .data = &ip_rt_redirect_number,
3209 .maxlen = sizeof(int),
3210 .mode = 0644,
Alexey Dobriyan6d9f2392008-11-03 18:21:05 -08003211 .proc_handler = proc_dointvec,
Linus Torvalds1da177e2005-04-16 15:20:36 -07003212 },
3213 {
Linus Torvalds1da177e2005-04-16 15:20:36 -07003214 .procname = "redirect_silence",
3215 .data = &ip_rt_redirect_silence,
3216 .maxlen = sizeof(int),
3217 .mode = 0644,
Alexey Dobriyan6d9f2392008-11-03 18:21:05 -08003218 .proc_handler = proc_dointvec,
Linus Torvalds1da177e2005-04-16 15:20:36 -07003219 },
3220 {
Linus Torvalds1da177e2005-04-16 15:20:36 -07003221 .procname = "error_cost",
3222 .data = &ip_rt_error_cost,
3223 .maxlen = sizeof(int),
3224 .mode = 0644,
Alexey Dobriyan6d9f2392008-11-03 18:21:05 -08003225 .proc_handler = proc_dointvec,
Linus Torvalds1da177e2005-04-16 15:20:36 -07003226 },
3227 {
Linus Torvalds1da177e2005-04-16 15:20:36 -07003228 .procname = "error_burst",
3229 .data = &ip_rt_error_burst,
3230 .maxlen = sizeof(int),
3231 .mode = 0644,
Alexey Dobriyan6d9f2392008-11-03 18:21:05 -08003232 .proc_handler = proc_dointvec,
Linus Torvalds1da177e2005-04-16 15:20:36 -07003233 },
3234 {
Linus Torvalds1da177e2005-04-16 15:20:36 -07003235 .procname = "gc_elasticity",
3236 .data = &ip_rt_gc_elasticity,
3237 .maxlen = sizeof(int),
3238 .mode = 0644,
Alexey Dobriyan6d9f2392008-11-03 18:21:05 -08003239 .proc_handler = proc_dointvec,
Linus Torvalds1da177e2005-04-16 15:20:36 -07003240 },
3241 {
Linus Torvalds1da177e2005-04-16 15:20:36 -07003242 .procname = "mtu_expires",
3243 .data = &ip_rt_mtu_expires,
3244 .maxlen = sizeof(int),
3245 .mode = 0644,
Alexey Dobriyan6d9f2392008-11-03 18:21:05 -08003246 .proc_handler = proc_dointvec_jiffies,
Linus Torvalds1da177e2005-04-16 15:20:36 -07003247 },
3248 {
Linus Torvalds1da177e2005-04-16 15:20:36 -07003249 .procname = "min_pmtu",
3250 .data = &ip_rt_min_pmtu,
3251 .maxlen = sizeof(int),
3252 .mode = 0644,
Alexey Dobriyan6d9f2392008-11-03 18:21:05 -08003253 .proc_handler = proc_dointvec,
Linus Torvalds1da177e2005-04-16 15:20:36 -07003254 },
3255 {
Linus Torvalds1da177e2005-04-16 15:20:36 -07003256 .procname = "min_adv_mss",
3257 .data = &ip_rt_min_advmss,
3258 .maxlen = sizeof(int),
3259 .mode = 0644,
Alexey Dobriyan6d9f2392008-11-03 18:21:05 -08003260 .proc_handler = proc_dointvec,
Linus Torvalds1da177e2005-04-16 15:20:36 -07003261 },
Eric W. Biedermanf8572d82009-11-05 13:32:03 -08003262 { }
Linus Torvalds1da177e2005-04-16 15:20:36 -07003263};
Denis V. Lunev39a23e72008-07-05 19:02:33 -07003264
Denis V. Lunev39a23e72008-07-05 19:02:33 -07003265static struct ctl_table ipv4_route_flush_table[] = {
3266 {
Denis V. Lunev39a23e72008-07-05 19:02:33 -07003267 .procname = "flush",
3268 .maxlen = sizeof(int),
3269 .mode = 0200,
Alexey Dobriyan6d9f2392008-11-03 18:21:05 -08003270 .proc_handler = ipv4_sysctl_rtcache_flush,
Denis V. Lunev39a23e72008-07-05 19:02:33 -07003271 },
Eric W. Biedermanf8572d82009-11-05 13:32:03 -08003272 { },
Denis V. Lunev39a23e72008-07-05 19:02:33 -07003273};
3274
3275static __net_init int sysctl_route_net_init(struct net *net)
3276{
3277 struct ctl_table *tbl;
3278
3279 tbl = ipv4_route_flush_table;
Octavian Purdila09ad9bc2009-11-25 15:14:13 -08003280 if (!net_eq(net, &init_net)) {
Denis V. Lunev39a23e72008-07-05 19:02:33 -07003281 tbl = kmemdup(tbl, sizeof(ipv4_route_flush_table), GFP_KERNEL);
3282 if (tbl == NULL)
3283 goto err_dup;
3284 }
3285 tbl[0].extra1 = net;
3286
Eric W. Biedermanec8f23c2012-04-19 13:44:49 +00003287 net->ipv4.route_hdr = register_net_sysctl(net, "net/ipv4/route", tbl);
Denis V. Lunev39a23e72008-07-05 19:02:33 -07003288 if (net->ipv4.route_hdr == NULL)
3289 goto err_reg;
3290 return 0;
3291
3292err_reg:
3293 if (tbl != ipv4_route_flush_table)
3294 kfree(tbl);
3295err_dup:
3296 return -ENOMEM;
3297}
3298
3299static __net_exit void sysctl_route_net_exit(struct net *net)
3300{
3301 struct ctl_table *tbl;
3302
3303 tbl = net->ipv4.route_hdr->ctl_table_arg;
3304 unregister_net_sysctl_table(net->ipv4.route_hdr);
3305 BUG_ON(tbl == ipv4_route_flush_table);
3306 kfree(tbl);
3307}
3308
3309static __net_initdata struct pernet_operations sysctl_route_ops = {
3310 .init = sysctl_route_net_init,
3311 .exit = sysctl_route_net_exit,
3312};
Linus Torvalds1da177e2005-04-16 15:20:36 -07003313#endif
3314
Neil Horman3ee94372010-05-08 01:57:52 -07003315static __net_init int rt_genid_init(struct net *net)
Denis V. Lunev9f5e97e2008-07-05 19:02:59 -07003316{
Neil Horman3ee94372010-05-08 01:57:52 -07003317 get_random_bytes(&net->ipv4.rt_genid,
3318 sizeof(net->ipv4.rt_genid));
David S. Miller436c3b62011-03-24 17:42:21 -07003319 get_random_bytes(&net->ipv4.dev_addr_genid,
3320 sizeof(net->ipv4.dev_addr_genid));
Denis V. Lunev9f5e97e2008-07-05 19:02:59 -07003321 return 0;
3322}
3323
Neil Horman3ee94372010-05-08 01:57:52 -07003324static __net_initdata struct pernet_operations rt_genid_ops = {
3325 .init = rt_genid_init,
Denis V. Lunev9f5e97e2008-07-05 19:02:59 -07003326};
3327
David S. Millerc3426b42012-06-09 16:27:05 -07003328static int __net_init ipv4_inetpeer_init(struct net *net)
3329{
3330 struct inet_peer_base *bp = kmalloc(sizeof(*bp), GFP_KERNEL);
3331
3332 if (!bp)
3333 return -ENOMEM;
3334 inet_peer_base_init(bp);
3335 net->ipv4.peers = bp;
3336 return 0;
3337}
3338
3339static void __net_exit ipv4_inetpeer_exit(struct net *net)
3340{
3341 struct inet_peer_base *bp = net->ipv4.peers;
3342
3343 net->ipv4.peers = NULL;
David S. Miller56a6b242012-06-09 16:32:41 -07003344 inetpeer_invalidate_tree(bp);
David S. Millerc3426b42012-06-09 16:27:05 -07003345 kfree(bp);
3346}
3347
3348static __net_initdata struct pernet_operations ipv4_inetpeer_ops = {
3349 .init = ipv4_inetpeer_init,
3350 .exit = ipv4_inetpeer_exit,
3351};
Denis V. Lunev9f5e97e2008-07-05 19:02:59 -07003352
Patrick McHardyc7066f72011-01-14 13:36:42 +01003353#ifdef CONFIG_IP_ROUTE_CLASSID
Tejun Heo7d720c32010-02-16 15:20:26 +00003354struct ip_rt_acct __percpu *ip_rt_acct __read_mostly;
Patrick McHardyc7066f72011-01-14 13:36:42 +01003355#endif /* CONFIG_IP_ROUTE_CLASSID */
Linus Torvalds1da177e2005-04-16 15:20:36 -07003356
3357static __initdata unsigned long rhash_entries;
3358static int __init set_rhash_entries(char *str)
3359{
Eldad Zack413c27d2012-05-19 14:13:18 +00003360 ssize_t ret;
3361
Linus Torvalds1da177e2005-04-16 15:20:36 -07003362 if (!str)
3363 return 0;
Eldad Zack413c27d2012-05-19 14:13:18 +00003364
3365 ret = kstrtoul(str, 0, &rhash_entries);
3366 if (ret)
3367 return 0;
3368
Linus Torvalds1da177e2005-04-16 15:20:36 -07003369 return 1;
3370}
3371__setup("rhash_entries=", set_rhash_entries);
3372
3373int __init ip_rt_init(void)
3374{
Eric Dumazet424c4b72005-07-05 14:58:19 -07003375 int rc = 0;
Linus Torvalds1da177e2005-04-16 15:20:36 -07003376
Patrick McHardyc7066f72011-01-14 13:36:42 +01003377#ifdef CONFIG_IP_ROUTE_CLASSID
Ingo Molnar0dcec8c2009-02-25 14:07:33 +01003378 ip_rt_acct = __alloc_percpu(256 * sizeof(struct ip_rt_acct), __alignof__(struct ip_rt_acct));
Linus Torvalds1da177e2005-04-16 15:20:36 -07003379 if (!ip_rt_acct)
3380 panic("IP: failed to allocate ip_rt_acct\n");
Linus Torvalds1da177e2005-04-16 15:20:36 -07003381#endif
3382
Alexey Dobriyane5d679f2006-08-26 19:25:52 -07003383 ipv4_dst_ops.kmem_cachep =
3384 kmem_cache_create("ip_dst_cache", sizeof(struct rtable), 0,
Paul Mundt20c2df82007-07-20 10:11:58 +09003385 SLAB_HWCACHE_ALIGN|SLAB_PANIC, NULL);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003386
David S. Miller14e50e52007-05-24 18:17:54 -07003387 ipv4_dst_blackhole_ops.kmem_cachep = ipv4_dst_ops.kmem_cachep;
3388
Eric Dumazetfc66f952010-10-08 06:37:34 +00003389 if (dst_entries_init(&ipv4_dst_ops) < 0)
3390 panic("IP: failed to allocate ipv4_dst_ops counter\n");
3391
3392 if (dst_entries_init(&ipv4_dst_blackhole_ops) < 0)
3393 panic("IP: failed to allocate ipv4_dst_blackhole_ops counter\n");
3394
Eric Dumazet424c4b72005-07-05 14:58:19 -07003395 rt_hash_table = (struct rt_hash_bucket *)
3396 alloc_large_system_hash("IP route cache",
3397 sizeof(struct rt_hash_bucket),
3398 rhash_entries,
Jan Beulich44813742009-09-21 17:03:05 -07003399 (totalram_pages >= 128 * 1024) ?
Mike Stroyan18955cf2005-11-29 16:12:55 -08003400 15 : 17,
Kirill Korotaev8d1502d2006-08-07 20:44:22 -07003401 0,
Eric Dumazet424c4b72005-07-05 14:58:19 -07003402 &rt_hash_log,
3403 &rt_hash_mask,
Tim Bird31fe62b2012-05-23 13:33:35 +00003404 0,
Anton Blanchardc9503e02009-04-27 05:42:24 -07003405 rhash_entries ? 0 : 512 * 1024);
Eric Dumazet22c047c2005-07-05 14:55:24 -07003406 memset(rt_hash_table, 0, (rt_hash_mask + 1) * sizeof(struct rt_hash_bucket));
3407 rt_hash_lock_init();
Linus Torvalds1da177e2005-04-16 15:20:36 -07003408
3409 ipv4_dst_ops.gc_thresh = (rt_hash_mask + 1);
3410 ip_rt_max_size = (rt_hash_mask + 1) * 16;
3411
Linus Torvalds1da177e2005-04-16 15:20:36 -07003412 devinet_init();
3413 ip_fib_init();
3414
Eric Dumazet9f28a2f2011-12-21 15:47:16 -05003415 INIT_DELAYED_WORK_DEFERRABLE(&expires_work, rt_worker_func);
3416 expires_ljiffies = jiffies;
3417 schedule_delayed_work(&expires_work,
3418 net_random() % ip_rt_gc_interval + ip_rt_gc_interval);
3419
Denis V. Lunev73b38712008-02-28 20:51:18 -08003420 if (ip_rt_proc_init())
Joe Perches058bd4d2012-03-11 18:36:11 +00003421 pr_err("Unable to create route proc files\n");
Linus Torvalds1da177e2005-04-16 15:20:36 -07003422#ifdef CONFIG_XFRM
3423 xfrm_init();
Neil Hormana33bc5c2009-07-30 18:52:15 -07003424 xfrm4_init(ip_rt_max_size);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003425#endif
Greg Rosec7ac8672011-06-10 01:27:09 +00003426 rtnl_register(PF_INET, RTM_GETROUTE, inet_rtm_getroute, NULL, NULL);
Thomas Graf63f34442007-03-22 11:55:17 -07003427
Denis V. Lunev39a23e72008-07-05 19:02:33 -07003428#ifdef CONFIG_SYSCTL
3429 register_pernet_subsys(&sysctl_route_ops);
3430#endif
Neil Horman3ee94372010-05-08 01:57:52 -07003431 register_pernet_subsys(&rt_genid_ops);
David S. Millerc3426b42012-06-09 16:27:05 -07003432 register_pernet_subsys(&ipv4_inetpeer_ops);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003433 return rc;
3434}
3435
Al Viroa1bc6eb2008-07-30 06:32:52 -04003436#ifdef CONFIG_SYSCTL
Al Viroeeb61f72008-07-27 08:59:33 +01003437/*
3438 * We really need to sanitize the damn ipv4 init order, then all
3439 * this nonsense will go away.
3440 */
3441void __init ip_static_sysctl_init(void)
3442{
Eric W. Biederman4e5ca782012-04-19 13:32:39 +00003443 register_net_sysctl(&init_net, "net/ipv4/route", ipv4_route_table);
Al Viroeeb61f72008-07-27 08:59:33 +01003444}
Al Viroa1bc6eb2008-07-30 06:32:52 -04003445#endif