blob: aad21819316df6a1e90e8953854d965abf03fe46 [file] [log] [blame]
Linus Torvalds1da177e2005-04-16 15:20:36 -07001/*
2 * INET An implementation of the TCP/IP protocol suite for the LINUX
3 * operating system. INET is implemented using the BSD Socket
4 * interface as the means of communication with the user level.
5 *
6 * ROUTE - implementation of the IP router.
7 *
Jesper Juhl02c30a82005-05-05 16:16:16 -07008 * Authors: Ross Biro
Linus Torvalds1da177e2005-04-16 15:20:36 -07009 * Fred N. van Kempen, <waltje@uWalt.NL.Mugnet.ORG>
10 * Alan Cox, <gw4pts@gw4pts.ampr.org>
11 * Linus Torvalds, <Linus.Torvalds@helsinki.fi>
12 * Alexey Kuznetsov, <kuznet@ms2.inr.ac.ru>
13 *
14 * Fixes:
15 * Alan Cox : Verify area fixes.
16 * Alan Cox : cli() protects routing changes
17 * Rui Oliveira : ICMP routing table updates
18 * (rco@di.uminho.pt) Routing table insertion and update
19 * Linus Torvalds : Rewrote bits to be sensible
20 * Alan Cox : Added BSD route gw semantics
YOSHIFUJI Hideakie905a9e2007-02-09 23:24:47 +090021 * Alan Cox : Super /proc >4K
Linus Torvalds1da177e2005-04-16 15:20:36 -070022 * Alan Cox : MTU in route table
23 * Alan Cox : MSS actually. Also added the window
24 * clamper.
25 * Sam Lantinga : Fixed route matching in rt_del()
26 * Alan Cox : Routing cache support.
27 * Alan Cox : Removed compatibility cruft.
28 * Alan Cox : RTF_REJECT support.
29 * Alan Cox : TCP irtt support.
30 * Jonathan Naylor : Added Metric support.
31 * Miquel van Smoorenburg : BSD API fixes.
32 * Miquel van Smoorenburg : Metrics.
33 * Alan Cox : Use __u32 properly
34 * Alan Cox : Aligned routing errors more closely with BSD
35 * our system is still very different.
36 * Alan Cox : Faster /proc handling
37 * Alexey Kuznetsov : Massive rework to support tree based routing,
38 * routing caches and better behaviour.
YOSHIFUJI Hideakie905a9e2007-02-09 23:24:47 +090039 *
Linus Torvalds1da177e2005-04-16 15:20:36 -070040 * Olaf Erb : irtt wasn't being copied right.
41 * Bjorn Ekwall : Kerneld route support.
42 * Alan Cox : Multicast fixed (I hope)
43 * Pavel Krauz : Limited broadcast fixed
44 * Mike McLagan : Routing by source
45 * Alexey Kuznetsov : End of old history. Split to fib.c and
46 * route.c and rewritten from scratch.
47 * Andi Kleen : Load-limit warning messages.
48 * Vitaly E. Lavrov : Transparent proxy revived after year coma.
49 * Vitaly E. Lavrov : Race condition in ip_route_input_slow.
50 * Tobias Ringstrom : Uninitialized res.type in ip_route_output_slow.
51 * Vladimir V. Ivanov : IP rule info (flowid) is really useful.
52 * Marc Boucher : routing by fwmark
53 * Robert Olsson : Added rt_cache statistics
54 * Arnaldo C. Melo : Convert proc stuff to seq_file
Eric Dumazetbb1d23b2005-07-05 15:00:32 -070055 * Eric Dumazet : hashed spinlocks and rt_check_expire() fixes.
Ilia Sotnikovcef26852006-03-25 01:38:55 -080056 * Ilia Sotnikov : Ignore TOS on PMTUD and Redirect
57 * Ilia Sotnikov : Removed TOS from hash calculations
Linus Torvalds1da177e2005-04-16 15:20:36 -070058 *
59 * This program is free software; you can redistribute it and/or
60 * modify it under the terms of the GNU General Public License
61 * as published by the Free Software Foundation; either version
62 * 2 of the License, or (at your option) any later version.
63 */
64
Joe Perchesafd465032012-03-12 07:03:32 +000065#define pr_fmt(fmt) "IPv4: " fmt
66
Linus Torvalds1da177e2005-04-16 15:20:36 -070067#include <linux/module.h>
68#include <asm/uaccess.h>
Linus Torvalds1da177e2005-04-16 15:20:36 -070069#include <linux/bitops.h>
70#include <linux/types.h>
71#include <linux/kernel.h>
Linus Torvalds1da177e2005-04-16 15:20:36 -070072#include <linux/mm.h>
Eric Dumazet424c4b72005-07-05 14:58:19 -070073#include <linux/bootmem.h>
Linus Torvalds1da177e2005-04-16 15:20:36 -070074#include <linux/string.h>
75#include <linux/socket.h>
76#include <linux/sockios.h>
77#include <linux/errno.h>
78#include <linux/in.h>
79#include <linux/inet.h>
80#include <linux/netdevice.h>
81#include <linux/proc_fs.h>
82#include <linux/init.h>
Eric Dumazet39c90ec2007-09-15 10:55:54 -070083#include <linux/workqueue.h>
Linus Torvalds1da177e2005-04-16 15:20:36 -070084#include <linux/skbuff.h>
Linus Torvalds1da177e2005-04-16 15:20:36 -070085#include <linux/inetdevice.h>
86#include <linux/igmp.h>
87#include <linux/pkt_sched.h>
88#include <linux/mroute.h>
89#include <linux/netfilter_ipv4.h>
90#include <linux/random.h>
91#include <linux/jhash.h>
92#include <linux/rcupdate.h>
93#include <linux/times.h>
Tejun Heo5a0e3ad2010-03-24 17:04:11 +090094#include <linux/slab.h>
Stephen Rothwellb9eda062011-12-22 17:03:29 +110095#include <linux/prefetch.h>
Herbert Xu352e5122007-11-13 21:34:06 -080096#include <net/dst.h>
Eric W. Biederman457c4cb2007-09-12 12:01:34 +020097#include <net/net_namespace.h>
Linus Torvalds1da177e2005-04-16 15:20:36 -070098#include <net/protocol.h>
99#include <net/ip.h>
100#include <net/route.h>
101#include <net/inetpeer.h>
102#include <net/sock.h>
103#include <net/ip_fib.h>
104#include <net/arp.h>
105#include <net/tcp.h>
106#include <net/icmp.h>
107#include <net/xfrm.h>
Tom Tucker8d717402006-07-30 20:43:36 -0700108#include <net/netevent.h>
Thomas Graf63f34442007-03-22 11:55:17 -0700109#include <net/rtnetlink.h>
Linus Torvalds1da177e2005-04-16 15:20:36 -0700110#ifdef CONFIG_SYSCTL
111#include <linux/sysctl.h>
Shan Wei7426a562012-04-18 18:05:46 +0000112#include <linux/kmemleak.h>
Linus Torvalds1da177e2005-04-16 15:20:36 -0700113#endif
David S. Miller6e5714e2011-08-03 20:50:44 -0700114#include <net/secure_seq.h>
Linus Torvalds1da177e2005-04-16 15:20:36 -0700115
David S. Miller68a5e3d2011-03-11 20:07:33 -0500116#define RT_FL_TOS(oldflp4) \
Julian Anastasovf61759e2011-12-02 11:39:42 +0000117 ((oldflp4)->flowi4_tos & (IPTOS_RT_MASK | RTO_ONLINK))
Linus Torvalds1da177e2005-04-16 15:20:36 -0700118
119#define IP_MAX_MTU 0xFFF0
120
121#define RT_GC_TIMEOUT (300*HZ)
122
Linus Torvalds1da177e2005-04-16 15:20:36 -0700123static int ip_rt_max_size;
Stephen Hemminger817bc4d2008-03-22 17:43:59 -0700124static int ip_rt_gc_timeout __read_mostly = RT_GC_TIMEOUT;
Eric Dumazet9f28a2f2011-12-21 15:47:16 -0500125static int ip_rt_gc_interval __read_mostly = 60 * HZ;
Stephen Hemminger817bc4d2008-03-22 17:43:59 -0700126static int ip_rt_gc_min_interval __read_mostly = HZ / 2;
127static int ip_rt_redirect_number __read_mostly = 9;
128static int ip_rt_redirect_load __read_mostly = HZ / 50;
129static int ip_rt_redirect_silence __read_mostly = ((HZ / 50) << (9 + 1));
130static int ip_rt_error_cost __read_mostly = HZ;
131static int ip_rt_error_burst __read_mostly = 5 * HZ;
132static int ip_rt_gc_elasticity __read_mostly = 8;
133static int ip_rt_mtu_expires __read_mostly = 10 * 60 * HZ;
134static int ip_rt_min_pmtu __read_mostly = 512 + 20 + 20;
135static int ip_rt_min_advmss __read_mostly = 256;
Neil Horman1080d702008-10-27 12:28:25 -0700136static int rt_chain_length_max __read_mostly = 20;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700137
Eric Dumazet9f28a2f2011-12-21 15:47:16 -0500138static struct delayed_work expires_work;
139static unsigned long expires_ljiffies;
140
Linus Torvalds1da177e2005-04-16 15:20:36 -0700141/*
142 * Interface to generic destination cache.
143 */
144
145static struct dst_entry *ipv4_dst_check(struct dst_entry *dst, u32 cookie);
David S. Miller0dbaee32010-12-13 12:52:14 -0800146static unsigned int ipv4_default_advmss(const struct dst_entry *dst);
Steffen Klassertebb762f2011-11-23 02:12:51 +0000147static unsigned int ipv4_mtu(const struct dst_entry *dst);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700148static void ipv4_dst_destroy(struct dst_entry *dst);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700149static struct dst_entry *ipv4_negative_advice(struct dst_entry *dst);
150static void ipv4_link_failure(struct sk_buff *skb);
151static void ip_rt_update_pmtu(struct dst_entry *dst, u32 mtu);
David S. Millere47a1852012-07-11 20:55:47 -0700152static void ip_do_redirect(struct dst_entry *dst, struct sk_buff *skb);
Daniel Lezcano569d3642008-01-18 03:56:57 -0800153static int rt_garbage_collect(struct dst_ops *ops);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700154
Eric Dumazet72cdd1d2010-11-11 07:14:07 +0000155static void ipv4_dst_ifdown(struct dst_entry *dst, struct net_device *dev,
156 int how)
157{
158}
Linus Torvalds1da177e2005-04-16 15:20:36 -0700159
David S. Miller62fa8a82011-01-26 20:51:05 -0800160static u32 *ipv4_cow_metrics(struct dst_entry *dst, unsigned long old)
161{
David S. Miller31248732012-07-10 07:08:18 -0700162 WARN_ON(1);
163 return NULL;
David S. Miller62fa8a82011-01-26 20:51:05 -0800164}
165
David S. Millerf894cbf2012-07-02 21:52:24 -0700166static struct neighbour *ipv4_neigh_lookup(const struct dst_entry *dst,
167 struct sk_buff *skb,
168 const void *daddr);
David S. Millerd3aaeb32011-07-18 00:40:17 -0700169
Linus Torvalds1da177e2005-04-16 15:20:36 -0700170static struct dst_ops ipv4_dst_ops = {
171 .family = AF_INET,
Harvey Harrison09640e62009-02-01 00:45:17 -0800172 .protocol = cpu_to_be16(ETH_P_IP),
Linus Torvalds1da177e2005-04-16 15:20:36 -0700173 .gc = rt_garbage_collect,
174 .check = ipv4_dst_check,
David S. Miller0dbaee32010-12-13 12:52:14 -0800175 .default_advmss = ipv4_default_advmss,
Steffen Klassertebb762f2011-11-23 02:12:51 +0000176 .mtu = ipv4_mtu,
David S. Miller62fa8a82011-01-26 20:51:05 -0800177 .cow_metrics = ipv4_cow_metrics,
Linus Torvalds1da177e2005-04-16 15:20:36 -0700178 .destroy = ipv4_dst_destroy,
179 .ifdown = ipv4_dst_ifdown,
180 .negative_advice = ipv4_negative_advice,
181 .link_failure = ipv4_link_failure,
182 .update_pmtu = ip_rt_update_pmtu,
David S. Millere47a1852012-07-11 20:55:47 -0700183 .redirect = ip_do_redirect,
Herbert Xu1ac06e02008-05-20 14:32:14 -0700184 .local_out = __ip_local_out,
David S. Millerd3aaeb32011-07-18 00:40:17 -0700185 .neigh_lookup = ipv4_neigh_lookup,
Linus Torvalds1da177e2005-04-16 15:20:36 -0700186};
187
188#define ECN_OR_COST(class) TC_PRIO_##class
189
Philippe De Muyter4839c522007-07-09 15:32:57 -0700190const __u8 ip_tos2prio[16] = {
Linus Torvalds1da177e2005-04-16 15:20:36 -0700191 TC_PRIO_BESTEFFORT,
Dan Siemon4a2b9c32011-03-15 13:56:07 +0000192 ECN_OR_COST(BESTEFFORT),
Linus Torvalds1da177e2005-04-16 15:20:36 -0700193 TC_PRIO_BESTEFFORT,
194 ECN_OR_COST(BESTEFFORT),
195 TC_PRIO_BULK,
196 ECN_OR_COST(BULK),
197 TC_PRIO_BULK,
198 ECN_OR_COST(BULK),
199 TC_PRIO_INTERACTIVE,
200 ECN_OR_COST(INTERACTIVE),
201 TC_PRIO_INTERACTIVE,
202 ECN_OR_COST(INTERACTIVE),
203 TC_PRIO_INTERACTIVE_BULK,
204 ECN_OR_COST(INTERACTIVE_BULK),
205 TC_PRIO_INTERACTIVE_BULK,
206 ECN_OR_COST(INTERACTIVE_BULK)
207};
Amir Vadaid4a96862012-04-04 21:33:28 +0000208EXPORT_SYMBOL(ip_tos2prio);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700209
210/*
211 * Route cache.
212 */
213
214/* The locking scheme is rather straight forward:
215 *
216 * 1) Read-Copy Update protects the buckets of the central route hash.
217 * 2) Only writers remove entries, and they hold the lock
218 * as they look at rtable reference counts.
219 * 3) Only readers acquire references to rtable entries,
220 * they do so with atomic increments and with the
221 * lock held.
222 */
223
224struct rt_hash_bucket {
Eric Dumazet1c317202010-10-25 21:02:07 +0000225 struct rtable __rcu *chain;
Eric Dumazet22c047c2005-07-05 14:55:24 -0700226};
Neil Horman1080d702008-10-27 12:28:25 -0700227
Ingo Molnar8a25d5d2006-07-03 00:24:54 -0700228#if defined(CONFIG_SMP) || defined(CONFIG_DEBUG_SPINLOCK) || \
229 defined(CONFIG_PROVE_LOCKING)
Eric Dumazet22c047c2005-07-05 14:55:24 -0700230/*
231 * Instead of using one spinlock for each rt_hash_bucket, we use a table of spinlocks
232 * The size of this table is a power of two and depends on the number of CPUS.
Ingo Molnar62051202006-07-03 00:24:59 -0700233 * (on lockdep we have a quite big spinlock_t, so keep the size down there)
Eric Dumazet22c047c2005-07-05 14:55:24 -0700234 */
Ingo Molnar62051202006-07-03 00:24:59 -0700235#ifdef CONFIG_LOCKDEP
236# define RT_HASH_LOCK_SZ 256
Eric Dumazet22c047c2005-07-05 14:55:24 -0700237#else
Ingo Molnar62051202006-07-03 00:24:59 -0700238# if NR_CPUS >= 32
239# define RT_HASH_LOCK_SZ 4096
240# elif NR_CPUS >= 16
241# define RT_HASH_LOCK_SZ 2048
242# elif NR_CPUS >= 8
243# define RT_HASH_LOCK_SZ 1024
244# elif NR_CPUS >= 4
245# define RT_HASH_LOCK_SZ 512
246# else
247# define RT_HASH_LOCK_SZ 256
248# endif
Eric Dumazet22c047c2005-07-05 14:55:24 -0700249#endif
250
251static spinlock_t *rt_hash_locks;
252# define rt_hash_lock_addr(slot) &rt_hash_locks[(slot) & (RT_HASH_LOCK_SZ - 1)]
Pavel Emelyanov1ff1cc22007-12-05 21:15:05 -0800253
254static __init void rt_hash_lock_init(void)
255{
256 int i;
257
258 rt_hash_locks = kmalloc(sizeof(spinlock_t) * RT_HASH_LOCK_SZ,
259 GFP_KERNEL);
260 if (!rt_hash_locks)
261 panic("IP: failed to allocate rt_hash_locks\n");
262
263 for (i = 0; i < RT_HASH_LOCK_SZ; i++)
264 spin_lock_init(&rt_hash_locks[i]);
265}
Eric Dumazet22c047c2005-07-05 14:55:24 -0700266#else
267# define rt_hash_lock_addr(slot) NULL
Pavel Emelyanov1ff1cc22007-12-05 21:15:05 -0800268
269static inline void rt_hash_lock_init(void)
270{
271}
Eric Dumazet22c047c2005-07-05 14:55:24 -0700272#endif
Linus Torvalds1da177e2005-04-16 15:20:36 -0700273
Stephen Hemminger817bc4d2008-03-22 17:43:59 -0700274static struct rt_hash_bucket *rt_hash_table __read_mostly;
Eric Dumazet95c96172012-04-15 05:58:06 +0000275static unsigned int rt_hash_mask __read_mostly;
Stephen Hemminger817bc4d2008-03-22 17:43:59 -0700276static unsigned int rt_hash_log __read_mostly;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700277
Eric Dumazet2f970d82006-01-17 02:54:36 -0800278static DEFINE_PER_CPU(struct rt_cache_stat, rt_cache_stat);
Eric Dumazet27f39c72010-05-19 22:07:23 +0000279#define RT_CACHE_STAT_INC(field) __this_cpu_inc(rt_cache_stat.field)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700280
Denis V. Lunevb00180d2008-07-05 19:04:09 -0700281static inline unsigned int rt_hash(__be32 daddr, __be32 saddr, int idx,
Eric Dumazet0eae88f2010-04-20 19:06:52 -0700282 int genid)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700283{
Eric Dumazet0eae88f2010-04-20 19:06:52 -0700284 return jhash_3words((__force u32)daddr, (__force u32)saddr,
Denis V. Lunevb00180d2008-07-05 19:04:09 -0700285 idx, genid)
Eric Dumazet29e75252008-01-31 17:05:09 -0800286 & rt_hash_mask;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700287}
288
Denis V. Luneve84f84f2008-07-05 19:04:32 -0700289static inline int rt_genid(struct net *net)
290{
291 return atomic_read(&net->ipv4.rt_genid);
292}
293
Linus Torvalds1da177e2005-04-16 15:20:36 -0700294#ifdef CONFIG_PROC_FS
295struct rt_cache_iter_state {
Denis V. Luneva75e9362008-02-28 20:50:55 -0800296 struct seq_net_private p;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700297 int bucket;
Eric Dumazet29e75252008-01-31 17:05:09 -0800298 int genid;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700299};
300
YOSHIFUJI Hideaki12188542008-03-26 02:36:06 +0900301static struct rtable *rt_cache_get_first(struct seq_file *seq)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700302{
YOSHIFUJI Hideaki12188542008-03-26 02:36:06 +0900303 struct rt_cache_iter_state *st = seq->private;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700304 struct rtable *r = NULL;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700305
306 for (st->bucket = rt_hash_mask; st->bucket >= 0; --st->bucket) {
Eric Dumazet33d480c2011-08-11 19:30:52 +0000307 if (!rcu_access_pointer(rt_hash_table[st->bucket].chain))
Eric Dumazeta6272662008-08-28 01:11:25 -0700308 continue;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700309 rcu_read_lock_bh();
Paul E. McKenneya898def2010-02-22 17:04:49 -0800310 r = rcu_dereference_bh(rt_hash_table[st->bucket].chain);
Eric Dumazet29e75252008-01-31 17:05:09 -0800311 while (r) {
Changli Gaod8d1f302010-06-10 23:31:35 -0700312 if (dev_net(r->dst.dev) == seq_file_net(seq) &&
Denis V. Luneva75e9362008-02-28 20:50:55 -0800313 r->rt_genid == st->genid)
Eric Dumazet29e75252008-01-31 17:05:09 -0800314 return r;
Changli Gaod8d1f302010-06-10 23:31:35 -0700315 r = rcu_dereference_bh(r->dst.rt_next);
Eric Dumazet29e75252008-01-31 17:05:09 -0800316 }
Linus Torvalds1da177e2005-04-16 15:20:36 -0700317 rcu_read_unlock_bh();
318 }
Eric Dumazet29e75252008-01-31 17:05:09 -0800319 return r;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700320}
321
YOSHIFUJI Hideaki12188542008-03-26 02:36:06 +0900322static struct rtable *__rt_cache_get_next(struct seq_file *seq,
Denis V. Lunev642d6312008-02-28 20:50:33 -0800323 struct rtable *r)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700324{
YOSHIFUJI Hideaki12188542008-03-26 02:36:06 +0900325 struct rt_cache_iter_state *st = seq->private;
Eric Dumazeta6272662008-08-28 01:11:25 -0700326
Eric Dumazet1c317202010-10-25 21:02:07 +0000327 r = rcu_dereference_bh(r->dst.rt_next);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700328 while (!r) {
329 rcu_read_unlock_bh();
Eric Dumazeta6272662008-08-28 01:11:25 -0700330 do {
331 if (--st->bucket < 0)
332 return NULL;
Eric Dumazet33d480c2011-08-11 19:30:52 +0000333 } while (!rcu_access_pointer(rt_hash_table[st->bucket].chain));
Linus Torvalds1da177e2005-04-16 15:20:36 -0700334 rcu_read_lock_bh();
Eric Dumazet1c317202010-10-25 21:02:07 +0000335 r = rcu_dereference_bh(rt_hash_table[st->bucket].chain);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700336 }
Eric Dumazet1c317202010-10-25 21:02:07 +0000337 return r;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700338}
339
YOSHIFUJI Hideaki12188542008-03-26 02:36:06 +0900340static struct rtable *rt_cache_get_next(struct seq_file *seq,
Denis V. Lunev642d6312008-02-28 20:50:33 -0800341 struct rtable *r)
342{
YOSHIFUJI Hideaki12188542008-03-26 02:36:06 +0900343 struct rt_cache_iter_state *st = seq->private;
344 while ((r = __rt_cache_get_next(seq, r)) != NULL) {
Changli Gaod8d1f302010-06-10 23:31:35 -0700345 if (dev_net(r->dst.dev) != seq_file_net(seq))
Denis V. Luneva75e9362008-02-28 20:50:55 -0800346 continue;
Denis V. Lunev642d6312008-02-28 20:50:33 -0800347 if (r->rt_genid == st->genid)
348 break;
349 }
350 return r;
351}
352
YOSHIFUJI Hideaki12188542008-03-26 02:36:06 +0900353static struct rtable *rt_cache_get_idx(struct seq_file *seq, loff_t pos)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700354{
YOSHIFUJI Hideaki12188542008-03-26 02:36:06 +0900355 struct rtable *r = rt_cache_get_first(seq);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700356
357 if (r)
YOSHIFUJI Hideaki12188542008-03-26 02:36:06 +0900358 while (pos && (r = rt_cache_get_next(seq, r)))
Linus Torvalds1da177e2005-04-16 15:20:36 -0700359 --pos;
360 return pos ? NULL : r;
361}
362
363static void *rt_cache_seq_start(struct seq_file *seq, loff_t *pos)
364{
Eric Dumazet29e75252008-01-31 17:05:09 -0800365 struct rt_cache_iter_state *st = seq->private;
Eric Dumazet29e75252008-01-31 17:05:09 -0800366 if (*pos)
YOSHIFUJI Hideaki12188542008-03-26 02:36:06 +0900367 return rt_cache_get_idx(seq, *pos - 1);
Denis V. Luneve84f84f2008-07-05 19:04:32 -0700368 st->genid = rt_genid(seq_file_net(seq));
Eric Dumazet29e75252008-01-31 17:05:09 -0800369 return SEQ_START_TOKEN;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700370}
371
372static void *rt_cache_seq_next(struct seq_file *seq, void *v, loff_t *pos)
373{
Eric Dumazet29e75252008-01-31 17:05:09 -0800374 struct rtable *r;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700375
376 if (v == SEQ_START_TOKEN)
YOSHIFUJI Hideaki12188542008-03-26 02:36:06 +0900377 r = rt_cache_get_first(seq);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700378 else
YOSHIFUJI Hideaki12188542008-03-26 02:36:06 +0900379 r = rt_cache_get_next(seq, v);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700380 ++*pos;
381 return r;
382}
383
384static void rt_cache_seq_stop(struct seq_file *seq, void *v)
385{
386 if (v && v != SEQ_START_TOKEN)
387 rcu_read_unlock_bh();
388}
389
390static int rt_cache_seq_show(struct seq_file *seq, void *v)
391{
392 if (v == SEQ_START_TOKEN)
393 seq_printf(seq, "%-127s\n",
394 "Iface\tDestination\tGateway \tFlags\t\tRefCnt\tUse\t"
395 "Metric\tSource\t\tMTU\tWindow\tIRTT\tTOS\tHHRef\t"
396 "HHUptod\tSpecDst");
397 else {
398 struct rtable *r = v;
David S. Miller3c521f22012-07-02 02:04:13 -0700399 int len;
Eric Dumazet218fa902011-11-29 20:05:55 +0000400
Eric Dumazet0eae88f2010-04-20 19:06:52 -0700401 seq_printf(seq, "%s\t%08X\t%08X\t%8X\t%d\t%u\t%d\t"
David S. Miller794785b2012-07-10 00:52:56 -0700402 "%08X\t%d\t%u\t%u\t%02X\t%d\t%1d\t%08X%n",
403 r->dst.dev ? r->dst.dev->name : "*",
404 (__force u32)r->rt_dst,
405 (__force u32)r->rt_gateway,
406 r->rt_flags, atomic_read(&r->dst.__refcnt),
407 r->dst.__use, 0, (__force u32)r->rt_src,
408 dst_metric_advmss(&r->dst) + 40,
409 dst_metric(&r->dst, RTAX_WINDOW), 0,
410 r->rt_key_tos,
411 -1, 0, 0, &len);
Pavel Emelyanov5e659e42008-04-24 01:02:16 -0700412
413 seq_printf(seq, "%*s\n", 127 - len, "");
YOSHIFUJI Hideakie905a9e2007-02-09 23:24:47 +0900414 }
415 return 0;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700416}
417
Stephen Hemmingerf6908082007-03-12 14:34:29 -0700418static const struct seq_operations rt_cache_seq_ops = {
Linus Torvalds1da177e2005-04-16 15:20:36 -0700419 .start = rt_cache_seq_start,
420 .next = rt_cache_seq_next,
421 .stop = rt_cache_seq_stop,
422 .show = rt_cache_seq_show,
423};
424
425static int rt_cache_seq_open(struct inode *inode, struct file *file)
426{
Denis V. Luneva75e9362008-02-28 20:50:55 -0800427 return seq_open_net(inode, file, &rt_cache_seq_ops,
Pavel Emelyanovcf7732e2007-10-10 02:29:29 -0700428 sizeof(struct rt_cache_iter_state));
Linus Torvalds1da177e2005-04-16 15:20:36 -0700429}
430
Arjan van de Ven9a321442007-02-12 00:55:35 -0800431static const struct file_operations rt_cache_seq_fops = {
Linus Torvalds1da177e2005-04-16 15:20:36 -0700432 .owner = THIS_MODULE,
433 .open = rt_cache_seq_open,
434 .read = seq_read,
435 .llseek = seq_lseek,
Denis V. Luneva75e9362008-02-28 20:50:55 -0800436 .release = seq_release_net,
Linus Torvalds1da177e2005-04-16 15:20:36 -0700437};
438
439
440static void *rt_cpu_seq_start(struct seq_file *seq, loff_t *pos)
441{
442 int cpu;
443
444 if (*pos == 0)
445 return SEQ_START_TOKEN;
446
Rusty Russell0f23174a2008-12-29 12:23:42 +0000447 for (cpu = *pos-1; cpu < nr_cpu_ids; ++cpu) {
Linus Torvalds1da177e2005-04-16 15:20:36 -0700448 if (!cpu_possible(cpu))
449 continue;
450 *pos = cpu+1;
Eric Dumazet2f970d82006-01-17 02:54:36 -0800451 return &per_cpu(rt_cache_stat, cpu);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700452 }
453 return NULL;
454}
455
456static void *rt_cpu_seq_next(struct seq_file *seq, void *v, loff_t *pos)
457{
458 int cpu;
459
Rusty Russell0f23174a2008-12-29 12:23:42 +0000460 for (cpu = *pos; cpu < nr_cpu_ids; ++cpu) {
Linus Torvalds1da177e2005-04-16 15:20:36 -0700461 if (!cpu_possible(cpu))
462 continue;
463 *pos = cpu+1;
Eric Dumazet2f970d82006-01-17 02:54:36 -0800464 return &per_cpu(rt_cache_stat, cpu);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700465 }
466 return NULL;
YOSHIFUJI Hideakie905a9e2007-02-09 23:24:47 +0900467
Linus Torvalds1da177e2005-04-16 15:20:36 -0700468}
469
470static void rt_cpu_seq_stop(struct seq_file *seq, void *v)
471{
472
473}
474
475static int rt_cpu_seq_show(struct seq_file *seq, void *v)
476{
477 struct rt_cache_stat *st = v;
478
479 if (v == SEQ_START_TOKEN) {
Olaf Rempel5bec0032005-04-28 12:16:08 -0700480 seq_printf(seq, "entries in_hit in_slow_tot in_slow_mc in_no_route in_brd in_martian_dst in_martian_src out_hit out_slow_tot out_slow_mc gc_total gc_ignored gc_goal_miss gc_dst_overflow in_hlist_search out_hlist_search\n");
Linus Torvalds1da177e2005-04-16 15:20:36 -0700481 return 0;
482 }
YOSHIFUJI Hideakie905a9e2007-02-09 23:24:47 +0900483
Linus Torvalds1da177e2005-04-16 15:20:36 -0700484 seq_printf(seq,"%08x %08x %08x %08x %08x %08x %08x %08x "
485 " %08x %08x %08x %08x %08x %08x %08x %08x %08x \n",
Eric Dumazetfc66f952010-10-08 06:37:34 +0000486 dst_entries_get_slow(&ipv4_dst_ops),
Linus Torvalds1da177e2005-04-16 15:20:36 -0700487 st->in_hit,
488 st->in_slow_tot,
489 st->in_slow_mc,
490 st->in_no_route,
491 st->in_brd,
492 st->in_martian_dst,
493 st->in_martian_src,
494
495 st->out_hit,
496 st->out_slow_tot,
YOSHIFUJI Hideakie905a9e2007-02-09 23:24:47 +0900497 st->out_slow_mc,
Linus Torvalds1da177e2005-04-16 15:20:36 -0700498
499 st->gc_total,
500 st->gc_ignored,
501 st->gc_goal_miss,
502 st->gc_dst_overflow,
503 st->in_hlist_search,
504 st->out_hlist_search
505 );
506 return 0;
507}
508
Stephen Hemmingerf6908082007-03-12 14:34:29 -0700509static const struct seq_operations rt_cpu_seq_ops = {
Linus Torvalds1da177e2005-04-16 15:20:36 -0700510 .start = rt_cpu_seq_start,
511 .next = rt_cpu_seq_next,
512 .stop = rt_cpu_seq_stop,
513 .show = rt_cpu_seq_show,
514};
515
516
517static int rt_cpu_seq_open(struct inode *inode, struct file *file)
518{
519 return seq_open(file, &rt_cpu_seq_ops);
520}
521
Arjan van de Ven9a321442007-02-12 00:55:35 -0800522static const struct file_operations rt_cpu_seq_fops = {
Linus Torvalds1da177e2005-04-16 15:20:36 -0700523 .owner = THIS_MODULE,
524 .open = rt_cpu_seq_open,
525 .read = seq_read,
526 .llseek = seq_lseek,
527 .release = seq_release,
528};
529
Patrick McHardyc7066f72011-01-14 13:36:42 +0100530#ifdef CONFIG_IP_ROUTE_CLASSID
Alexey Dobriyana661c412009-11-25 15:40:35 -0800531static int rt_acct_proc_show(struct seq_file *m, void *v)
Pavel Emelyanov78c686e2007-12-05 21:13:48 -0800532{
Alexey Dobriyana661c412009-11-25 15:40:35 -0800533 struct ip_rt_acct *dst, *src;
534 unsigned int i, j;
Pavel Emelyanov78c686e2007-12-05 21:13:48 -0800535
Alexey Dobriyana661c412009-11-25 15:40:35 -0800536 dst = kcalloc(256, sizeof(struct ip_rt_acct), GFP_KERNEL);
537 if (!dst)
538 return -ENOMEM;
Pavel Emelyanov78c686e2007-12-05 21:13:48 -0800539
Alexey Dobriyana661c412009-11-25 15:40:35 -0800540 for_each_possible_cpu(i) {
541 src = (struct ip_rt_acct *)per_cpu_ptr(ip_rt_acct, i);
542 for (j = 0; j < 256; j++) {
543 dst[j].o_bytes += src[j].o_bytes;
544 dst[j].o_packets += src[j].o_packets;
545 dst[j].i_bytes += src[j].i_bytes;
546 dst[j].i_packets += src[j].i_packets;
Pavel Emelyanov78c686e2007-12-05 21:13:48 -0800547 }
548 }
Alexey Dobriyana661c412009-11-25 15:40:35 -0800549
550 seq_write(m, dst, 256 * sizeof(struct ip_rt_acct));
551 kfree(dst);
552 return 0;
Pavel Emelyanov78c686e2007-12-05 21:13:48 -0800553}
Alexey Dobriyana661c412009-11-25 15:40:35 -0800554
555static int rt_acct_proc_open(struct inode *inode, struct file *file)
556{
557 return single_open(file, rt_acct_proc_show, NULL);
558}
559
560static const struct file_operations rt_acct_proc_fops = {
561 .owner = THIS_MODULE,
562 .open = rt_acct_proc_open,
563 .read = seq_read,
564 .llseek = seq_lseek,
565 .release = single_release,
566};
Pavel Emelyanov78c686e2007-12-05 21:13:48 -0800567#endif
Pavel Emelyanov107f1632007-12-05 21:14:28 -0800568
Denis V. Lunev73b38712008-02-28 20:51:18 -0800569static int __net_init ip_rt_do_proc_init(struct net *net)
Pavel Emelyanov107f1632007-12-05 21:14:28 -0800570{
571 struct proc_dir_entry *pde;
572
573 pde = proc_net_fops_create(net, "rt_cache", S_IRUGO,
574 &rt_cache_seq_fops);
575 if (!pde)
576 goto err1;
577
Wang Chen77020722008-02-28 14:14:25 -0800578 pde = proc_create("rt_cache", S_IRUGO,
579 net->proc_net_stat, &rt_cpu_seq_fops);
Pavel Emelyanov107f1632007-12-05 21:14:28 -0800580 if (!pde)
581 goto err2;
582
Patrick McHardyc7066f72011-01-14 13:36:42 +0100583#ifdef CONFIG_IP_ROUTE_CLASSID
Alexey Dobriyana661c412009-11-25 15:40:35 -0800584 pde = proc_create("rt_acct", 0, net->proc_net, &rt_acct_proc_fops);
Pavel Emelyanov107f1632007-12-05 21:14:28 -0800585 if (!pde)
586 goto err3;
587#endif
588 return 0;
589
Patrick McHardyc7066f72011-01-14 13:36:42 +0100590#ifdef CONFIG_IP_ROUTE_CLASSID
Pavel Emelyanov107f1632007-12-05 21:14:28 -0800591err3:
592 remove_proc_entry("rt_cache", net->proc_net_stat);
593#endif
594err2:
595 remove_proc_entry("rt_cache", net->proc_net);
596err1:
597 return -ENOMEM;
598}
Denis V. Lunev73b38712008-02-28 20:51:18 -0800599
600static void __net_exit ip_rt_do_proc_exit(struct net *net)
601{
602 remove_proc_entry("rt_cache", net->proc_net_stat);
603 remove_proc_entry("rt_cache", net->proc_net);
Patrick McHardyc7066f72011-01-14 13:36:42 +0100604#ifdef CONFIG_IP_ROUTE_CLASSID
Denis V. Lunev73b38712008-02-28 20:51:18 -0800605 remove_proc_entry("rt_acct", net->proc_net);
Alexey Dobriyan0a931ac2010-01-17 03:32:50 +0000606#endif
Denis V. Lunev73b38712008-02-28 20:51:18 -0800607}
608
609static struct pernet_operations ip_rt_proc_ops __net_initdata = {
610 .init = ip_rt_do_proc_init,
611 .exit = ip_rt_do_proc_exit,
612};
613
614static int __init ip_rt_proc_init(void)
615{
616 return register_pernet_subsys(&ip_rt_proc_ops);
617}
618
Pavel Emelyanov107f1632007-12-05 21:14:28 -0800619#else
Denis V. Lunev73b38712008-02-28 20:51:18 -0800620static inline int ip_rt_proc_init(void)
Pavel Emelyanov107f1632007-12-05 21:14:28 -0800621{
622 return 0;
623}
Linus Torvalds1da177e2005-04-16 15:20:36 -0700624#endif /* CONFIG_PROC_FS */
YOSHIFUJI Hideakie905a9e2007-02-09 23:24:47 +0900625
Stephen Hemminger5969f712008-04-10 01:52:09 -0700626static inline void rt_free(struct rtable *rt)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700627{
Changli Gaod8d1f302010-06-10 23:31:35 -0700628 call_rcu_bh(&rt->dst.rcu_head, dst_rcu_free);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700629}
630
Stephen Hemminger5969f712008-04-10 01:52:09 -0700631static inline void rt_drop(struct rtable *rt)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700632{
Linus Torvalds1da177e2005-04-16 15:20:36 -0700633 ip_rt_put(rt);
Changli Gaod8d1f302010-06-10 23:31:35 -0700634 call_rcu_bh(&rt->dst.rcu_head, dst_rcu_free);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700635}
636
Stephen Hemminger5969f712008-04-10 01:52:09 -0700637static inline int rt_fast_clean(struct rtable *rth)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700638{
639 /* Kill broadcast/multicast entries very aggresively, if they
640 collide in hash table with more useful entries */
641 return (rth->rt_flags & (RTCF_BROADCAST | RTCF_MULTICAST)) &&
David S. Millerc7537962010-11-11 17:07:48 -0800642 rt_is_input_route(rth) && rth->dst.rt_next;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700643}
644
Stephen Hemminger5969f712008-04-10 01:52:09 -0700645static inline int rt_valuable(struct rtable *rth)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700646{
647 return (rth->rt_flags & (RTCF_REDIRECTED | RTCF_NOTIFY)) ||
David S. Miller59436342012-07-10 06:58:42 -0700648 rth->dst.expires;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700649}
650
651static int rt_may_expire(struct rtable *rth, unsigned long tmo1, unsigned long tmo2)
652{
653 unsigned long age;
654 int ret = 0;
655
Changli Gaod8d1f302010-06-10 23:31:35 -0700656 if (atomic_read(&rth->dst.__refcnt))
Linus Torvalds1da177e2005-04-16 15:20:36 -0700657 goto out;
658
Changli Gaod8d1f302010-06-10 23:31:35 -0700659 age = jiffies - rth->dst.lastuse;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700660 if ((age <= tmo1 && !rt_fast_clean(rth)) ||
661 (age <= tmo2 && rt_valuable(rth)))
662 goto out;
663 ret = 1;
664out: return ret;
665}
666
667/* Bits of score are:
668 * 31: very valuable
669 * 30: not quite useless
670 * 29..0: usage counter
671 */
672static inline u32 rt_score(struct rtable *rt)
673{
Changli Gaod8d1f302010-06-10 23:31:35 -0700674 u32 score = jiffies - rt->dst.lastuse;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700675
676 score = ~score & ~(3<<30);
677
678 if (rt_valuable(rt))
679 score |= (1<<31);
680
David S. Millerc7537962010-11-11 17:07:48 -0800681 if (rt_is_output_route(rt) ||
Linus Torvalds1da177e2005-04-16 15:20:36 -0700682 !(rt->rt_flags & (RTCF_BROADCAST|RTCF_MULTICAST|RTCF_LOCAL)))
683 score |= (1<<30);
684
685 return score;
686}
687
Neil Horman1080d702008-10-27 12:28:25 -0700688static inline bool rt_caching(const struct net *net)
689{
690 return net->ipv4.current_rt_cache_rebuild_count <=
691 net->ipv4.sysctl_rt_cache_rebuild_count;
692}
693
David S. Miller5e2b61f2011-03-04 21:47:09 -0800694static inline bool compare_hash_inputs(const struct rtable *rt1,
695 const struct rtable *rt2)
Neil Horman1080d702008-10-27 12:28:25 -0700696{
David S. Miller5e2b61f2011-03-04 21:47:09 -0800697 return ((((__force u32)rt1->rt_key_dst ^ (__force u32)rt2->rt_key_dst) |
698 ((__force u32)rt1->rt_key_src ^ (__force u32)rt2->rt_key_src) |
Julian Anastasov97a80412011-08-09 04:01:16 +0000699 (rt1->rt_route_iif ^ rt2->rt_route_iif)) == 0);
Neil Horman1080d702008-10-27 12:28:25 -0700700}
701
David S. Miller5e2b61f2011-03-04 21:47:09 -0800702static inline int compare_keys(struct rtable *rt1, struct rtable *rt2)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700703{
David S. Miller5e2b61f2011-03-04 21:47:09 -0800704 return (((__force u32)rt1->rt_key_dst ^ (__force u32)rt2->rt_key_dst) |
705 ((__force u32)rt1->rt_key_src ^ (__force u32)rt2->rt_key_src) |
706 (rt1->rt_mark ^ rt2->rt_mark) |
David S. Miller475949d2011-05-03 19:45:15 -0700707 (rt1->rt_key_tos ^ rt2->rt_key_tos) |
Julian Anastasovd547f722011-08-07 22:20:20 -0700708 (rt1->rt_route_iif ^ rt2->rt_route_iif) |
Julian Anastasov97a80412011-08-09 04:01:16 +0000709 (rt1->rt_oif ^ rt2->rt_oif)) == 0;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700710}
711
Denis V. Lunevb5921912008-01-22 23:50:25 -0800712static inline int compare_netns(struct rtable *rt1, struct rtable *rt2)
713{
Changli Gaod8d1f302010-06-10 23:31:35 -0700714 return net_eq(dev_net(rt1->dst.dev), dev_net(rt2->dst.dev));
Denis V. Lunevb5921912008-01-22 23:50:25 -0800715}
716
Denis V. Luneve84f84f2008-07-05 19:04:32 -0700717static inline int rt_is_expired(struct rtable *rth)
718{
Changli Gaod8d1f302010-06-10 23:31:35 -0700719 return rth->rt_genid != rt_genid(dev_net(rth->dst.dev));
Denis V. Luneve84f84f2008-07-05 19:04:32 -0700720}
721
Eric Dumazetbeb659b2007-11-19 22:43:37 -0800722/*
723 * Perform a full scan of hash table and free all entries.
724 * Can be called by a softirq or a process.
725 * In the later case, we want to be reschedule if necessary
726 */
David S. Miller6561a3b2010-12-19 21:11:20 -0800727static void rt_do_flush(struct net *net, int process_context)
Eric Dumazetbeb659b2007-11-19 22:43:37 -0800728{
729 unsigned int i;
730 struct rtable *rth, *next;
731
732 for (i = 0; i <= rt_hash_mask; i++) {
David S. Miller6561a3b2010-12-19 21:11:20 -0800733 struct rtable __rcu **pprev;
734 struct rtable *list;
735
Eric Dumazetbeb659b2007-11-19 22:43:37 -0800736 if (process_context && need_resched())
737 cond_resched();
Eric Dumazet33d480c2011-08-11 19:30:52 +0000738 rth = rcu_access_pointer(rt_hash_table[i].chain);
Eric Dumazetbeb659b2007-11-19 22:43:37 -0800739 if (!rth)
740 continue;
741
742 spin_lock_bh(rt_hash_lock_addr(i));
Denis V. Lunev32cb5b42008-07-05 19:06:12 -0700743
David S. Miller6561a3b2010-12-19 21:11:20 -0800744 list = NULL;
745 pprev = &rt_hash_table[i].chain;
746 rth = rcu_dereference_protected(*pprev,
Eric Dumazet1c317202010-10-25 21:02:07 +0000747 lockdep_is_held(rt_hash_lock_addr(i)));
Denis V. Lunev32cb5b42008-07-05 19:06:12 -0700748
David S. Miller6561a3b2010-12-19 21:11:20 -0800749 while (rth) {
750 next = rcu_dereference_protected(rth->dst.rt_next,
751 lockdep_is_held(rt_hash_lock_addr(i)));
Denis V. Lunev32cb5b42008-07-05 19:06:12 -0700752
David S. Miller6561a3b2010-12-19 21:11:20 -0800753 if (!net ||
754 net_eq(dev_net(rth->dst.dev), net)) {
755 rcu_assign_pointer(*pprev, next);
756 rcu_assign_pointer(rth->dst.rt_next, list);
757 list = rth;
Denis V. Lunev32cb5b42008-07-05 19:06:12 -0700758 } else {
David S. Miller6561a3b2010-12-19 21:11:20 -0800759 pprev = &rth->dst.rt_next;
Denis V. Lunev32cb5b42008-07-05 19:06:12 -0700760 }
David S. Miller6561a3b2010-12-19 21:11:20 -0800761 rth = next;
Denis V. Lunev32cb5b42008-07-05 19:06:12 -0700762 }
David S. Miller6561a3b2010-12-19 21:11:20 -0800763
Eric Dumazetbeb659b2007-11-19 22:43:37 -0800764 spin_unlock_bh(rt_hash_lock_addr(i));
765
David S. Miller6561a3b2010-12-19 21:11:20 -0800766 for (; list; list = next) {
767 next = rcu_dereference_protected(list->dst.rt_next, 1);
768 rt_free(list);
Eric Dumazetbeb659b2007-11-19 22:43:37 -0800769 }
770 }
771}
772
Neil Horman1080d702008-10-27 12:28:25 -0700773/*
774 * While freeing expired entries, we compute average chain length
775 * and standard deviation, using fixed-point arithmetic.
776 * This to have an estimation of rt_chain_length_max
777 * rt_chain_length_max = max(elasticity, AVG + 4*SD)
778 * We use 3 bits for frational part, and 29 (or 61) for magnitude.
779 */
780
781#define FRACT_BITS 3
782#define ONE (1UL << FRACT_BITS)
783
Eric Dumazet98376382010-03-08 03:20:00 +0000784/*
785 * Given a hash chain and an item in this hash chain,
786 * find if a previous entry has the same hash_inputs
787 * (but differs on tos, mark or oif)
788 * Returns 0 if an alias is found.
789 * Returns ONE if rth has no alias before itself.
790 */
791static int has_noalias(const struct rtable *head, const struct rtable *rth)
792{
793 const struct rtable *aux = head;
794
795 while (aux != rth) {
David S. Miller5e2b61f2011-03-04 21:47:09 -0800796 if (compare_hash_inputs(aux, rth))
Eric Dumazet98376382010-03-08 03:20:00 +0000797 return 0;
Eric Dumazet1c317202010-10-25 21:02:07 +0000798 aux = rcu_dereference_protected(aux->dst.rt_next, 1);
Eric Dumazet98376382010-03-08 03:20:00 +0000799 }
800 return ONE;
801}
802
Eric Dumazet9f28a2f2011-12-21 15:47:16 -0500803static void rt_check_expire(void)
804{
805 static unsigned int rover;
806 unsigned int i = rover, goal;
807 struct rtable *rth;
808 struct rtable __rcu **rthp;
809 unsigned long samples = 0;
810 unsigned long sum = 0, sum2 = 0;
811 unsigned long delta;
812 u64 mult;
813
814 delta = jiffies - expires_ljiffies;
815 expires_ljiffies = jiffies;
816 mult = ((u64)delta) << rt_hash_log;
817 if (ip_rt_gc_timeout > 1)
818 do_div(mult, ip_rt_gc_timeout);
819 goal = (unsigned int)mult;
820 if (goal > rt_hash_mask)
821 goal = rt_hash_mask + 1;
822 for (; goal > 0; goal--) {
823 unsigned long tmo = ip_rt_gc_timeout;
824 unsigned long length;
825
826 i = (i + 1) & rt_hash_mask;
827 rthp = &rt_hash_table[i].chain;
828
829 if (need_resched())
830 cond_resched();
831
832 samples++;
833
834 if (rcu_dereference_raw(*rthp) == NULL)
835 continue;
836 length = 0;
837 spin_lock_bh(rt_hash_lock_addr(i));
838 while ((rth = rcu_dereference_protected(*rthp,
839 lockdep_is_held(rt_hash_lock_addr(i)))) != NULL) {
840 prefetch(rth->dst.rt_next);
David S. Millerdf67e6c2012-06-26 00:10:09 -0700841 if (rt_is_expired(rth) ||
842 rt_may_expire(rth, tmo, ip_rt_gc_timeout)) {
Eric Dumazet9f28a2f2011-12-21 15:47:16 -0500843 *rthp = rth->dst.rt_next;
844 rt_free(rth);
845 continue;
846 }
Eric Dumazet9f28a2f2011-12-21 15:47:16 -0500847
David S. Millerdf67e6c2012-06-26 00:10:09 -0700848 /* We only count entries on a chain with equal
849 * hash inputs once so that entries for
850 * different QOS levels, and other non-hash
851 * input attributes don't unfairly skew the
852 * length computation
853 */
854 tmo >>= 1;
855 rthp = &rth->dst.rt_next;
856 length += has_noalias(rt_hash_table[i].chain, rth);
Eric Dumazet9f28a2f2011-12-21 15:47:16 -0500857 }
858 spin_unlock_bh(rt_hash_lock_addr(i));
859 sum += length;
860 sum2 += length*length;
861 }
862 if (samples) {
863 unsigned long avg = sum / samples;
864 unsigned long sd = int_sqrt(sum2 / samples - avg*avg);
865 rt_chain_length_max = max_t(unsigned long,
866 ip_rt_gc_elasticity,
867 (avg + 4*sd) >> FRACT_BITS);
868 }
869 rover = i;
870}
871
872/*
873 * rt_worker_func() is run in process context.
874 * we call rt_check_expire() to scan part of the hash table
875 */
876static void rt_worker_func(struct work_struct *work)
877{
878 rt_check_expire();
879 schedule_delayed_work(&expires_work, ip_rt_gc_interval);
880}
881
Eric Dumazet29e75252008-01-31 17:05:09 -0800882/*
Lucas De Marchi25985ed2011-03-30 22:57:33 -0300883 * Perturbation of rt_genid by a small quantity [1..256]
Eric Dumazet29e75252008-01-31 17:05:09 -0800884 * Using 8 bits of shuffling ensure we can call rt_cache_invalidate()
885 * many times (2^24) without giving recent rt_genid.
886 * Jenkins hash is strong enough that litle changes of rt_genid are OK.
Linus Torvalds1da177e2005-04-16 15:20:36 -0700887 */
Denis V. Lunev86c657f2008-07-05 19:03:31 -0700888static void rt_cache_invalidate(struct net *net)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700889{
Eric Dumazet29e75252008-01-31 17:05:09 -0800890 unsigned char shuffle;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700891
Eric Dumazet29e75252008-01-31 17:05:09 -0800892 get_random_bytes(&shuffle, sizeof(shuffle));
Denis V. Luneve84f84f2008-07-05 19:04:32 -0700893 atomic_add(shuffle + 1U, &net->ipv4.rt_genid);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700894}
895
Eric Dumazetbeb659b2007-11-19 22:43:37 -0800896/*
Eric Dumazet29e75252008-01-31 17:05:09 -0800897 * delay < 0 : invalidate cache (fast : entries will be deleted later)
898 * delay >= 0 : invalidate & flush cache (can be long)
899 */
Denis V. Lunev76e6ebf2008-07-05 19:00:44 -0700900void rt_cache_flush(struct net *net, int delay)
Eric Dumazet29e75252008-01-31 17:05:09 -0800901{
Denis V. Lunev86c657f2008-07-05 19:03:31 -0700902 rt_cache_invalidate(net);
Eric Dumazet29e75252008-01-31 17:05:09 -0800903 if (delay >= 0)
David S. Miller6561a3b2010-12-19 21:11:20 -0800904 rt_do_flush(net, !in_softirq());
Eric Dumazet29e75252008-01-31 17:05:09 -0800905}
906
Eric W. Biedermana5ee1552009-11-29 15:45:58 +0000907/* Flush previous cache invalidated entries from the cache */
David S. Miller6561a3b2010-12-19 21:11:20 -0800908void rt_cache_flush_batch(struct net *net)
Eric W. Biedermana5ee1552009-11-29 15:45:58 +0000909{
David S. Miller6561a3b2010-12-19 21:11:20 -0800910 rt_do_flush(net, !in_softirq());
Eric W. Biedermana5ee1552009-11-29 15:45:58 +0000911}
912
Neil Horman1080d702008-10-27 12:28:25 -0700913static void rt_emergency_hash_rebuild(struct net *net)
914{
Joe Perchese87cc472012-05-13 21:56:26 +0000915 net_warn_ratelimited("Route hash chain too long!\n");
Neil Horman3ee94372010-05-08 01:57:52 -0700916 rt_cache_invalidate(net);
Neil Horman1080d702008-10-27 12:28:25 -0700917}
918
Linus Torvalds1da177e2005-04-16 15:20:36 -0700919/*
920 Short description of GC goals.
921
922 We want to build algorithm, which will keep routing cache
923 at some equilibrium point, when number of aged off entries
924 is kept approximately equal to newly generated ones.
925
926 Current expiration strength is variable "expire".
927 We try to adjust it dynamically, so that if networking
928 is idle expires is large enough to keep enough of warm entries,
929 and when load increases it reduces to limit cache size.
930 */
931
Daniel Lezcano569d3642008-01-18 03:56:57 -0800932static int rt_garbage_collect(struct dst_ops *ops)
Linus Torvalds1da177e2005-04-16 15:20:36 -0700933{
934 static unsigned long expire = RT_GC_TIMEOUT;
935 static unsigned long last_gc;
936 static int rover;
937 static int equilibrium;
Eric Dumazet1c317202010-10-25 21:02:07 +0000938 struct rtable *rth;
939 struct rtable __rcu **rthp;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700940 unsigned long now = jiffies;
941 int goal;
Eric Dumazetfc66f952010-10-08 06:37:34 +0000942 int entries = dst_entries_get_fast(&ipv4_dst_ops);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700943
944 /*
945 * Garbage collection is pretty expensive,
946 * do not make it too frequently.
947 */
948
949 RT_CACHE_STAT_INC(gc_total);
950
951 if (now - last_gc < ip_rt_gc_min_interval &&
Eric Dumazetfc66f952010-10-08 06:37:34 +0000952 entries < ip_rt_max_size) {
Linus Torvalds1da177e2005-04-16 15:20:36 -0700953 RT_CACHE_STAT_INC(gc_ignored);
954 goto out;
955 }
956
Eric Dumazetfc66f952010-10-08 06:37:34 +0000957 entries = dst_entries_get_slow(&ipv4_dst_ops);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700958 /* Calculate number of entries, which we want to expire now. */
Eric Dumazetfc66f952010-10-08 06:37:34 +0000959 goal = entries - (ip_rt_gc_elasticity << rt_hash_log);
Linus Torvalds1da177e2005-04-16 15:20:36 -0700960 if (goal <= 0) {
961 if (equilibrium < ipv4_dst_ops.gc_thresh)
962 equilibrium = ipv4_dst_ops.gc_thresh;
Eric Dumazetfc66f952010-10-08 06:37:34 +0000963 goal = entries - equilibrium;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700964 if (goal > 0) {
Eric Dumazetb790ced2007-12-21 01:49:07 -0800965 equilibrium += min_t(unsigned int, goal >> 1, rt_hash_mask + 1);
Eric Dumazetfc66f952010-10-08 06:37:34 +0000966 goal = entries - equilibrium;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700967 }
968 } else {
969 /* We are in dangerous area. Try to reduce cache really
970 * aggressively.
971 */
Eric Dumazetb790ced2007-12-21 01:49:07 -0800972 goal = max_t(unsigned int, goal >> 1, rt_hash_mask + 1);
Eric Dumazetfc66f952010-10-08 06:37:34 +0000973 equilibrium = entries - goal;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700974 }
975
976 if (now - last_gc >= ip_rt_gc_min_interval)
977 last_gc = now;
978
979 if (goal <= 0) {
980 equilibrium += goal;
981 goto work_done;
982 }
983
984 do {
985 int i, k;
986
987 for (i = rt_hash_mask, k = rover; i >= 0; i--) {
988 unsigned long tmo = expire;
989
990 k = (k + 1) & rt_hash_mask;
991 rthp = &rt_hash_table[k].chain;
Eric Dumazet22c047c2005-07-05 14:55:24 -0700992 spin_lock_bh(rt_hash_lock_addr(k));
Eric Dumazet1c317202010-10-25 21:02:07 +0000993 while ((rth = rcu_dereference_protected(*rthp,
994 lockdep_is_held(rt_hash_lock_addr(k)))) != NULL) {
Denis V. Luneve84f84f2008-07-05 19:04:32 -0700995 if (!rt_is_expired(rth) &&
Eric Dumazet29e75252008-01-31 17:05:09 -0800996 !rt_may_expire(rth, tmo, expire)) {
Linus Torvalds1da177e2005-04-16 15:20:36 -0700997 tmo >>= 1;
Changli Gaod8d1f302010-06-10 23:31:35 -0700998 rthp = &rth->dst.rt_next;
Linus Torvalds1da177e2005-04-16 15:20:36 -0700999 continue;
1000 }
Changli Gaod8d1f302010-06-10 23:31:35 -07001001 *rthp = rth->dst.rt_next;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001002 rt_free(rth);
1003 goal--;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001004 }
Eric Dumazet22c047c2005-07-05 14:55:24 -07001005 spin_unlock_bh(rt_hash_lock_addr(k));
Linus Torvalds1da177e2005-04-16 15:20:36 -07001006 if (goal <= 0)
1007 break;
1008 }
1009 rover = k;
1010
1011 if (goal <= 0)
1012 goto work_done;
1013
1014 /* Goal is not achieved. We stop process if:
1015
1016 - if expire reduced to zero. Otherwise, expire is halfed.
1017 - if table is not full.
1018 - if we are called from interrupt.
1019 - jiffies check is just fallback/debug loop breaker.
1020 We will not spin here for long time in any case.
1021 */
1022
1023 RT_CACHE_STAT_INC(gc_goal_miss);
1024
1025 if (expire == 0)
1026 break;
1027
1028 expire >>= 1;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001029
Eric Dumazetfc66f952010-10-08 06:37:34 +00001030 if (dst_entries_get_fast(&ipv4_dst_ops) < ip_rt_max_size)
Linus Torvalds1da177e2005-04-16 15:20:36 -07001031 goto out;
1032 } while (!in_softirq() && time_before_eq(jiffies, now));
1033
Eric Dumazetfc66f952010-10-08 06:37:34 +00001034 if (dst_entries_get_fast(&ipv4_dst_ops) < ip_rt_max_size)
1035 goto out;
1036 if (dst_entries_get_slow(&ipv4_dst_ops) < ip_rt_max_size)
Linus Torvalds1da177e2005-04-16 15:20:36 -07001037 goto out;
Joe Perchese87cc472012-05-13 21:56:26 +00001038 net_warn_ratelimited("dst cache overflow\n");
Linus Torvalds1da177e2005-04-16 15:20:36 -07001039 RT_CACHE_STAT_INC(gc_dst_overflow);
1040 return 1;
1041
1042work_done:
1043 expire += ip_rt_gc_min_interval;
1044 if (expire > ip_rt_gc_timeout ||
Eric Dumazetfc66f952010-10-08 06:37:34 +00001045 dst_entries_get_fast(&ipv4_dst_ops) < ipv4_dst_ops.gc_thresh ||
1046 dst_entries_get_slow(&ipv4_dst_ops) < ipv4_dst_ops.gc_thresh)
Linus Torvalds1da177e2005-04-16 15:20:36 -07001047 expire = ip_rt_gc_timeout;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001048out: return 0;
1049}
1050
Eric Dumazet98376382010-03-08 03:20:00 +00001051/*
1052 * Returns number of entries in a hash chain that have different hash_inputs
1053 */
1054static int slow_chain_length(const struct rtable *head)
1055{
1056 int length = 0;
1057 const struct rtable *rth = head;
1058
1059 while (rth) {
1060 length += has_noalias(head, rth);
Eric Dumazet1c317202010-10-25 21:02:07 +00001061 rth = rcu_dereference_protected(rth->dst.rt_next, 1);
Eric Dumazet98376382010-03-08 03:20:00 +00001062 }
1063 return length >> FRACT_BITS;
1064}
1065
David S. Millerf894cbf2012-07-02 21:52:24 -07001066static struct neighbour *ipv4_neigh_lookup(const struct dst_entry *dst,
1067 struct sk_buff *skb,
1068 const void *daddr)
David Miller3769cff2011-07-11 22:44:24 +00001069{
David S. Millerd3aaeb32011-07-18 00:40:17 -07001070 struct net_device *dev = dst->dev;
1071 const __be32 *pkey = daddr;
David S. Miller39232972012-01-26 15:22:32 -05001072 const struct rtable *rt;
David Miller3769cff2011-07-11 22:44:24 +00001073 struct neighbour *n;
1074
David S. Miller39232972012-01-26 15:22:32 -05001075 rt = (const struct rtable *) dst;
David S. Millera263b302012-07-02 02:02:15 -07001076 if (rt->rt_gateway)
David S. Miller39232972012-01-26 15:22:32 -05001077 pkey = (const __be32 *) &rt->rt_gateway;
David S. Millerf894cbf2012-07-02 21:52:24 -07001078 else if (skb)
1079 pkey = &ip_hdr(skb)->daddr;
David S. Millerd3aaeb32011-07-18 00:40:17 -07001080
David S. Miller80703d22012-02-15 17:48:35 -05001081 n = __ipv4_neigh_lookup(dev, *(__force u32 *)pkey);
David S. Millerd3aaeb32011-07-18 00:40:17 -07001082 if (n)
1083 return n;
David Miller32092ec2011-07-25 00:01:41 +00001084 return neigh_create(&arp_tbl, pkey, dev);
David S. Millerd3aaeb32011-07-18 00:40:17 -07001085}
1086
Eric Dumazet95c96172012-04-15 05:58:06 +00001087static struct rtable *rt_intern_hash(unsigned int hash, struct rtable *rt,
David S. Millerb23dd4f2011-03-02 14:31:35 -08001088 struct sk_buff *skb, int ifindex)
Linus Torvalds1da177e2005-04-16 15:20:36 -07001089{
Eric Dumazet1c317202010-10-25 21:02:07 +00001090 struct rtable *rth, *cand;
1091 struct rtable __rcu **rthp, **candp;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001092 unsigned long now;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001093 u32 min_score;
1094 int chain_length;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001095
1096restart:
1097 chain_length = 0;
1098 min_score = ~(u32)0;
1099 cand = NULL;
1100 candp = NULL;
1101 now = jiffies;
1102
Eric Dumazet7586ece2012-06-20 05:02:19 +00001103 if (!rt_caching(dev_net(rt->dst.dev)) || (rt->dst.flags & DST_NOCACHE)) {
Neil Horman73e42892009-06-20 01:15:16 -07001104 /*
1105 * If we're not caching, just tell the caller we
1106 * were successful and don't touch the route. The
1107 * caller hold the sole reference to the cache entry, and
1108 * it will be released when the caller is done with it.
1109 * If we drop it here, the callers have no way to resolve routes
1110 * when we're not caching. Instead, just point *rp at rt, so
1111 * the caller gets a single use out of the route
Neil Hormanb6280b42009-06-22 10:18:53 +00001112 * Note that we do rt_free on this new route entry, so that
1113 * once its refcount hits zero, we are still able to reap it
1114 * (Thanks Alexey)
Eric Dumazet27b75c92010-10-15 05:44:11 +00001115 * Note: To avoid expensive rcu stuff for this uncached dst,
1116 * we set DST_NOCACHE so that dst_release() can free dst without
1117 * waiting a grace period.
Neil Horman73e42892009-06-20 01:15:16 -07001118 */
Neil Hormanb6280b42009-06-22 10:18:53 +00001119
Eric Dumazetc7d44262010-10-03 22:17:54 -07001120 rt->dst.flags |= DST_NOCACHE;
Neil Hormanb6280b42009-06-22 10:18:53 +00001121 goto skip_hashing;
Neil Horman1080d702008-10-27 12:28:25 -07001122 }
1123
Linus Torvalds1da177e2005-04-16 15:20:36 -07001124 rthp = &rt_hash_table[hash].chain;
1125
Eric Dumazet22c047c2005-07-05 14:55:24 -07001126 spin_lock_bh(rt_hash_lock_addr(hash));
Eric Dumazet1c317202010-10-25 21:02:07 +00001127 while ((rth = rcu_dereference_protected(*rthp,
1128 lockdep_is_held(rt_hash_lock_addr(hash)))) != NULL) {
Denis V. Luneve84f84f2008-07-05 19:04:32 -07001129 if (rt_is_expired(rth)) {
Changli Gaod8d1f302010-06-10 23:31:35 -07001130 *rthp = rth->dst.rt_next;
Eric Dumazet29e75252008-01-31 17:05:09 -08001131 rt_free(rth);
1132 continue;
1133 }
David S. Miller5e2b61f2011-03-04 21:47:09 -08001134 if (compare_keys(rth, rt) && compare_netns(rth, rt)) {
Linus Torvalds1da177e2005-04-16 15:20:36 -07001135 /* Put it first */
Changli Gaod8d1f302010-06-10 23:31:35 -07001136 *rthp = rth->dst.rt_next;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001137 /*
1138 * Since lookup is lockfree, the deletion
1139 * must be visible to another weakly ordered CPU before
1140 * the insertion at the start of the hash chain.
1141 */
Changli Gaod8d1f302010-06-10 23:31:35 -07001142 rcu_assign_pointer(rth->dst.rt_next,
Linus Torvalds1da177e2005-04-16 15:20:36 -07001143 rt_hash_table[hash].chain);
1144 /*
1145 * Since lookup is lockfree, the update writes
1146 * must be ordered for consistency on SMP.
1147 */
1148 rcu_assign_pointer(rt_hash_table[hash].chain, rth);
1149
Changli Gaod8d1f302010-06-10 23:31:35 -07001150 dst_use(&rth->dst, now);
Eric Dumazet22c047c2005-07-05 14:55:24 -07001151 spin_unlock_bh(rt_hash_lock_addr(hash));
Linus Torvalds1da177e2005-04-16 15:20:36 -07001152
1153 rt_drop(rt);
David S. Millerb23dd4f2011-03-02 14:31:35 -08001154 if (skb)
Changli Gaod8d1f302010-06-10 23:31:35 -07001155 skb_dst_set(skb, &rth->dst);
David S. Millerb23dd4f2011-03-02 14:31:35 -08001156 return rth;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001157 }
1158
Changli Gaod8d1f302010-06-10 23:31:35 -07001159 if (!atomic_read(&rth->dst.__refcnt)) {
Linus Torvalds1da177e2005-04-16 15:20:36 -07001160 u32 score = rt_score(rth);
1161
1162 if (score <= min_score) {
1163 cand = rth;
1164 candp = rthp;
1165 min_score = score;
1166 }
1167 }
1168
1169 chain_length++;
1170
Changli Gaod8d1f302010-06-10 23:31:35 -07001171 rthp = &rth->dst.rt_next;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001172 }
1173
1174 if (cand) {
1175 /* ip_rt_gc_elasticity used to be average length of chain
1176 * length, when exceeded gc becomes really aggressive.
1177 *
1178 * The second limit is less certain. At the moment it allows
1179 * only 2 entries per bucket. We will see.
1180 */
1181 if (chain_length > ip_rt_gc_elasticity) {
Changli Gaod8d1f302010-06-10 23:31:35 -07001182 *candp = cand->dst.rt_next;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001183 rt_free(cand);
1184 }
Neil Horman1080d702008-10-27 12:28:25 -07001185 } else {
Eric Dumazet98376382010-03-08 03:20:00 +00001186 if (chain_length > rt_chain_length_max &&
1187 slow_chain_length(rt_hash_table[hash].chain) > rt_chain_length_max) {
Changli Gaod8d1f302010-06-10 23:31:35 -07001188 struct net *net = dev_net(rt->dst.dev);
Neil Horman1080d702008-10-27 12:28:25 -07001189 int num = ++net->ipv4.current_rt_cache_rebuild_count;
Pavel Emelyanovb35ecb52010-03-24 07:43:17 +00001190 if (!rt_caching(net)) {
Joe Perches058bd4d2012-03-11 18:36:11 +00001191 pr_warn("%s: %d rebuilds is over limit, route caching disabled\n",
Changli Gaod8d1f302010-06-10 23:31:35 -07001192 rt->dst.dev->name, num);
Neil Horman1080d702008-10-27 12:28:25 -07001193 }
Pavel Emelyanovb35ecb52010-03-24 07:43:17 +00001194 rt_emergency_hash_rebuild(net);
Pavel Emelyanov6a2bad72010-03-24 21:51:22 +00001195 spin_unlock_bh(rt_hash_lock_addr(hash));
1196
David S. Miller5e2b61f2011-03-04 21:47:09 -08001197 hash = rt_hash(rt->rt_key_dst, rt->rt_key_src,
Pavel Emelyanov6a2bad72010-03-24 21:51:22 +00001198 ifindex, rt_genid(net));
1199 goto restart;
Neil Horman1080d702008-10-27 12:28:25 -07001200 }
Linus Torvalds1da177e2005-04-16 15:20:36 -07001201 }
1202
Changli Gaod8d1f302010-06-10 23:31:35 -07001203 rt->dst.rt_next = rt_hash_table[hash].chain;
Neil Horman1080d702008-10-27 12:28:25 -07001204
Eric Dumazet00269b52008-10-16 14:18:29 -07001205 /*
1206 * Since lookup is lockfree, we must make sure
Lucas De Marchi25985ed2011-03-30 22:57:33 -03001207 * previous writes to rt are committed to memory
Eric Dumazet00269b52008-10-16 14:18:29 -07001208 * before making rt visible to other CPUS.
1209 */
Eric Dumazet1ddbcb02009-05-19 20:14:28 +00001210 rcu_assign_pointer(rt_hash_table[hash].chain, rt);
Neil Horman1080d702008-10-27 12:28:25 -07001211
Eric Dumazet22c047c2005-07-05 14:55:24 -07001212 spin_unlock_bh(rt_hash_lock_addr(hash));
Neil Horman73e42892009-06-20 01:15:16 -07001213
Neil Hormanb6280b42009-06-22 10:18:53 +00001214skip_hashing:
David S. Millerb23dd4f2011-03-02 14:31:35 -08001215 if (skb)
Changli Gaod8d1f302010-06-10 23:31:35 -07001216 skb_dst_set(skb, &rt->dst);
David S. Millerb23dd4f2011-03-02 14:31:35 -08001217 return rt;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001218}
1219
Linus Torvalds1da177e2005-04-16 15:20:36 -07001220/*
1221 * Peer allocation may fail only in serious out-of-memory conditions. However
1222 * we still can generate some output.
1223 * Random ID selection looks a bit dangerous because we have no chances to
1224 * select ID being unique in a reasonable period of time.
1225 * But broken packet identifier may be better than no packet at all.
1226 */
1227static void ip_select_fb_ident(struct iphdr *iph)
1228{
1229 static DEFINE_SPINLOCK(ip_fb_id_lock);
1230 static u32 ip_fallback_id;
1231 u32 salt;
1232
1233 spin_lock_bh(&ip_fb_id_lock);
Al Viroe4485152006-09-26 22:15:01 -07001234 salt = secure_ip_id((__force __be32)ip_fallback_id ^ iph->daddr);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001235 iph->id = htons(salt & 0xFFFF);
1236 ip_fallback_id = salt;
1237 spin_unlock_bh(&ip_fb_id_lock);
1238}
1239
1240void __ip_select_ident(struct iphdr *iph, struct dst_entry *dst, int more)
1241{
David S. Miller1d861aa2012-07-10 03:58:16 -07001242 struct net *net = dev_net(dst->dev);
1243 struct inet_peer *peer;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001244
David S. Miller1d861aa2012-07-10 03:58:16 -07001245 peer = inet_getpeer_v4(net->ipv4.peers, iph->daddr, 1);
1246 if (peer) {
1247 iph->id = htons(inet_getid(peer, more));
1248 inet_putpeer(peer);
1249 return;
1250 }
Linus Torvalds1da177e2005-04-16 15:20:36 -07001251
1252 ip_select_fb_ident(iph);
1253}
Eric Dumazet4bc2f182010-07-09 21:22:10 +00001254EXPORT_SYMBOL(__ip_select_ident);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001255
Eric Dumazet95c96172012-04-15 05:58:06 +00001256static void rt_del(unsigned int hash, struct rtable *rt)
Linus Torvalds1da177e2005-04-16 15:20:36 -07001257{
Eric Dumazet1c317202010-10-25 21:02:07 +00001258 struct rtable __rcu **rthp;
1259 struct rtable *aux;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001260
Eric Dumazet29e75252008-01-31 17:05:09 -08001261 rthp = &rt_hash_table[hash].chain;
Eric Dumazet22c047c2005-07-05 14:55:24 -07001262 spin_lock_bh(rt_hash_lock_addr(hash));
Linus Torvalds1da177e2005-04-16 15:20:36 -07001263 ip_rt_put(rt);
Eric Dumazet1c317202010-10-25 21:02:07 +00001264 while ((aux = rcu_dereference_protected(*rthp,
1265 lockdep_is_held(rt_hash_lock_addr(hash)))) != NULL) {
Denis V. Luneve84f84f2008-07-05 19:04:32 -07001266 if (aux == rt || rt_is_expired(aux)) {
Changli Gaod8d1f302010-06-10 23:31:35 -07001267 *rthp = aux->dst.rt_next;
Eric Dumazet29e75252008-01-31 17:05:09 -08001268 rt_free(aux);
1269 continue;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001270 }
Changli Gaod8d1f302010-06-10 23:31:35 -07001271 rthp = &aux->dst.rt_next;
Eric Dumazet29e75252008-01-31 17:05:09 -08001272 }
Eric Dumazet22c047c2005-07-05 14:55:24 -07001273 spin_unlock_bh(rt_hash_lock_addr(hash));
Linus Torvalds1da177e2005-04-16 15:20:36 -07001274}
1275
David S. Millere47a1852012-07-11 20:55:47 -07001276static void ip_do_redirect(struct dst_entry *dst, struct sk_buff *skb)
Linus Torvalds1da177e2005-04-16 15:20:36 -07001277{
David S. Millere47a1852012-07-11 20:55:47 -07001278 __be32 new_gw = icmp_hdr(skb)->un.gateway;
David S. Miller94206122012-07-11 20:38:08 -07001279 __be32 old_gw = ip_hdr(skb)->saddr;
David S. Millere47a1852012-07-11 20:55:47 -07001280 struct net_device *dev = skb->dev;
David S. Millere47a1852012-07-11 20:55:47 -07001281 struct in_device *in_dev;
1282 struct neighbour *n;
1283 struct rtable *rt;
Denis V. Lunev317805b2008-02-28 20:50:06 -08001284 struct net *net;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001285
David S. Miller94206122012-07-11 20:38:08 -07001286 switch (icmp_hdr(skb)->code & 7) {
1287 case ICMP_REDIR_NET:
1288 case ICMP_REDIR_NETTOS:
1289 case ICMP_REDIR_HOST:
1290 case ICMP_REDIR_HOSTTOS:
1291 break;
1292
1293 default:
1294 return;
1295 }
1296
David S. Millere47a1852012-07-11 20:55:47 -07001297 rt = (struct rtable *) dst;
1298 if (rt->rt_gateway != old_gw)
1299 return;
1300
1301 in_dev = __in_dev_get_rcu(dev);
1302 if (!in_dev)
1303 return;
1304
YOSHIFUJI Hideakic346dca2008-03-25 21:47:49 +09001305 net = dev_net(dev);
Joe Perches9d4fb272009-11-23 10:41:23 -08001306 if (new_gw == old_gw || !IN_DEV_RX_REDIRECTS(in_dev) ||
1307 ipv4_is_multicast(new_gw) || ipv4_is_lbcast(new_gw) ||
1308 ipv4_is_zeronet(new_gw))
Linus Torvalds1da177e2005-04-16 15:20:36 -07001309 goto reject_redirect;
1310
1311 if (!IN_DEV_SHARED_MEDIA(in_dev)) {
1312 if (!inet_addr_onlink(in_dev, new_gw, old_gw))
1313 goto reject_redirect;
1314 if (IN_DEV_SEC_REDIRECTS(in_dev) && ip_fib_check_default(new_gw, dev))
1315 goto reject_redirect;
1316 } else {
Denis V. Lunev317805b2008-02-28 20:50:06 -08001317 if (inet_addr_type(net, new_gw) != RTN_UNICAST)
Linus Torvalds1da177e2005-04-16 15:20:36 -07001318 goto reject_redirect;
1319 }
1320
David S. Millere47a1852012-07-11 20:55:47 -07001321 n = ipv4_neigh_lookup(dst, NULL, &new_gw);
1322 if (n) {
1323 if (!(n->nud_state & NUD_VALID)) {
1324 neigh_event_send(n, NULL);
1325 } else {
1326 rt->rt_gateway = new_gw;
1327 rt->rt_flags |= RTCF_REDIRECTED;
1328 call_netevent_notifiers(NETEVENT_NEIGH_UPDATE, n);
1329 }
1330 neigh_release(n);
1331 }
1332 return;
1333
1334reject_redirect:
1335#ifdef CONFIG_IP_ROUTE_VERBOSE
David S. Miller99ee0382012-07-12 07:40:05 -07001336 if (IN_DEV_LOG_MARTIANS(in_dev)) {
1337 const struct iphdr *iph = (const struct iphdr *) skb->data;
1338 __be32 daddr = iph->daddr;
1339 __be32 saddr = iph->saddr;
1340
David S. Millere47a1852012-07-11 20:55:47 -07001341 net_info_ratelimited("Redirect from %pI4 on %s about %pI4 ignored\n"
1342 " Advised path = %pI4 -> %pI4\n",
1343 &old_gw, dev->name, &new_gw,
1344 &saddr, &daddr);
David S. Miller99ee0382012-07-12 07:40:05 -07001345 }
David S. Millere47a1852012-07-11 20:55:47 -07001346#endif
1347 ;
1348}
1349
Linus Torvalds1da177e2005-04-16 15:20:36 -07001350static struct dst_entry *ipv4_negative_advice(struct dst_entry *dst)
1351{
Eric Dumazetee6b9672008-03-05 18:30:47 -08001352 struct rtable *rt = (struct rtable *)dst;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001353 struct dst_entry *ret = dst;
1354
1355 if (rt) {
Timo Teräsd11a4dc2010-03-18 23:20:20 +00001356 if (dst->obsolete > 0) {
Linus Torvalds1da177e2005-04-16 15:20:36 -07001357 ip_rt_put(rt);
1358 ret = NULL;
David S. Miller59436342012-07-10 06:58:42 -07001359 } else if ((rt->rt_flags & RTCF_REDIRECTED) ||
1360 rt->dst.expires) {
Eric Dumazet95c96172012-04-15 05:58:06 +00001361 unsigned int hash = rt_hash(rt->rt_key_dst, rt->rt_key_src,
David S. Miller5e2b61f2011-03-04 21:47:09 -08001362 rt->rt_oif,
Denis V. Luneve84f84f2008-07-05 19:04:32 -07001363 rt_genid(dev_net(dst->dev)));
Linus Torvalds1da177e2005-04-16 15:20:36 -07001364 rt_del(hash, rt);
1365 ret = NULL;
1366 }
1367 }
1368 return ret;
1369}
1370
1371/*
1372 * Algorithm:
1373 * 1. The first ip_rt_redirect_number redirects are sent
1374 * with exponential backoff, then we stop sending them at all,
1375 * assuming that the host ignores our redirects.
1376 * 2. If we did not see packets requiring redirects
1377 * during ip_rt_redirect_silence, we assume that the host
1378 * forgot redirected route and start to send redirects again.
1379 *
1380 * This algorithm is much cheaper and more intelligent than dumb load limiting
1381 * in icmp.c.
1382 *
1383 * NOTE. Do not forget to inhibit load limiting for redirects (redundant)
1384 * and "frag. need" (breaks PMTU discovery) in icmp.c.
1385 */
1386
1387void ip_rt_send_redirect(struct sk_buff *skb)
1388{
Eric Dumazet511c3f92009-06-02 05:14:27 +00001389 struct rtable *rt = skb_rtable(skb);
Eric Dumazet30038fc2009-08-28 23:52:01 -07001390 struct in_device *in_dev;
David S. Miller92d86822011-02-04 15:55:25 -08001391 struct inet_peer *peer;
David S. Miller1d861aa2012-07-10 03:58:16 -07001392 struct net *net;
Eric Dumazet30038fc2009-08-28 23:52:01 -07001393 int log_martians;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001394
Eric Dumazet30038fc2009-08-28 23:52:01 -07001395 rcu_read_lock();
Changli Gaod8d1f302010-06-10 23:31:35 -07001396 in_dev = __in_dev_get_rcu(rt->dst.dev);
Eric Dumazet30038fc2009-08-28 23:52:01 -07001397 if (!in_dev || !IN_DEV_TX_REDIRECTS(in_dev)) {
1398 rcu_read_unlock();
Linus Torvalds1da177e2005-04-16 15:20:36 -07001399 return;
Eric Dumazet30038fc2009-08-28 23:52:01 -07001400 }
1401 log_martians = IN_DEV_LOG_MARTIANS(in_dev);
1402 rcu_read_unlock();
Linus Torvalds1da177e2005-04-16 15:20:36 -07001403
David S. Miller1d861aa2012-07-10 03:58:16 -07001404 net = dev_net(rt->dst.dev);
1405 peer = inet_getpeer_v4(net->ipv4.peers, ip_hdr(skb)->saddr, 1);
David S. Miller92d86822011-02-04 15:55:25 -08001406 if (!peer) {
1407 icmp_send(skb, ICMP_REDIRECT, ICMP_REDIR_HOST, rt->rt_gateway);
1408 return;
1409 }
1410
Linus Torvalds1da177e2005-04-16 15:20:36 -07001411 /* No redirected packets during ip_rt_redirect_silence;
1412 * reset the algorithm.
1413 */
David S. Miller92d86822011-02-04 15:55:25 -08001414 if (time_after(jiffies, peer->rate_last + ip_rt_redirect_silence))
1415 peer->rate_tokens = 0;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001416
1417 /* Too many ignored redirects; do not send anything
Changli Gaod8d1f302010-06-10 23:31:35 -07001418 * set dst.rate_last to the last seen redirected packet.
Linus Torvalds1da177e2005-04-16 15:20:36 -07001419 */
David S. Miller92d86822011-02-04 15:55:25 -08001420 if (peer->rate_tokens >= ip_rt_redirect_number) {
1421 peer->rate_last = jiffies;
David S. Miller1d861aa2012-07-10 03:58:16 -07001422 goto out_put_peer;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001423 }
1424
1425 /* Check for load limit; set rate_last to the latest sent
1426 * redirect.
1427 */
David S. Miller92d86822011-02-04 15:55:25 -08001428 if (peer->rate_tokens == 0 ||
Li Yewang14fb8a72006-12-18 00:26:35 -08001429 time_after(jiffies,
David S. Miller92d86822011-02-04 15:55:25 -08001430 (peer->rate_last +
1431 (ip_rt_redirect_load << peer->rate_tokens)))) {
Linus Torvalds1da177e2005-04-16 15:20:36 -07001432 icmp_send(skb, ICMP_REDIRECT, ICMP_REDIR_HOST, rt->rt_gateway);
David S. Miller92d86822011-02-04 15:55:25 -08001433 peer->rate_last = jiffies;
1434 ++peer->rate_tokens;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001435#ifdef CONFIG_IP_ROUTE_VERBOSE
Eric Dumazet30038fc2009-08-28 23:52:01 -07001436 if (log_martians &&
Joe Perchese87cc472012-05-13 21:56:26 +00001437 peer->rate_tokens == ip_rt_redirect_number)
1438 net_warn_ratelimited("host %pI4/if%d ignores redirects for %pI4 to %pI4\n",
1439 &ip_hdr(skb)->saddr, rt->rt_iif,
1440 &rt->rt_dst, &rt->rt_gateway);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001441#endif
1442 }
David S. Miller1d861aa2012-07-10 03:58:16 -07001443out_put_peer:
1444 inet_putpeer(peer);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001445}
1446
1447static int ip_error(struct sk_buff *skb)
1448{
David S. Miller251da412012-06-26 16:27:09 -07001449 struct in_device *in_dev = __in_dev_get_rcu(skb->dev);
Eric Dumazet511c3f92009-06-02 05:14:27 +00001450 struct rtable *rt = skb_rtable(skb);
David S. Miller92d86822011-02-04 15:55:25 -08001451 struct inet_peer *peer;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001452 unsigned long now;
David S. Miller251da412012-06-26 16:27:09 -07001453 struct net *net;
David S. Miller92d86822011-02-04 15:55:25 -08001454 bool send;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001455 int code;
1456
David S. Miller251da412012-06-26 16:27:09 -07001457 net = dev_net(rt->dst.dev);
1458 if (!IN_DEV_FORWARD(in_dev)) {
1459 switch (rt->dst.error) {
1460 case EHOSTUNREACH:
1461 IP_INC_STATS_BH(net, IPSTATS_MIB_INADDRERRORS);
1462 break;
1463
1464 case ENETUNREACH:
1465 IP_INC_STATS_BH(net, IPSTATS_MIB_INNOROUTES);
1466 break;
1467 }
1468 goto out;
1469 }
1470
Changli Gaod8d1f302010-06-10 23:31:35 -07001471 switch (rt->dst.error) {
Joe Perches4500ebf2011-07-01 09:43:07 +00001472 case EINVAL:
1473 default:
1474 goto out;
1475 case EHOSTUNREACH:
1476 code = ICMP_HOST_UNREACH;
1477 break;
1478 case ENETUNREACH:
1479 code = ICMP_NET_UNREACH;
David S. Miller251da412012-06-26 16:27:09 -07001480 IP_INC_STATS_BH(net, IPSTATS_MIB_INNOROUTES);
Joe Perches4500ebf2011-07-01 09:43:07 +00001481 break;
1482 case EACCES:
1483 code = ICMP_PKT_FILTERED;
1484 break;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001485 }
1486
David S. Miller1d861aa2012-07-10 03:58:16 -07001487 peer = inet_getpeer_v4(net->ipv4.peers, ip_hdr(skb)->saddr, 1);
David S. Miller92d86822011-02-04 15:55:25 -08001488
1489 send = true;
1490 if (peer) {
1491 now = jiffies;
1492 peer->rate_tokens += now - peer->rate_last;
1493 if (peer->rate_tokens > ip_rt_error_burst)
1494 peer->rate_tokens = ip_rt_error_burst;
1495 peer->rate_last = now;
1496 if (peer->rate_tokens >= ip_rt_error_cost)
1497 peer->rate_tokens -= ip_rt_error_cost;
1498 else
1499 send = false;
David S. Miller1d861aa2012-07-10 03:58:16 -07001500 inet_putpeer(peer);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001501 }
David S. Miller92d86822011-02-04 15:55:25 -08001502 if (send)
1503 icmp_send(skb, ICMP_DEST_UNREACH, code, 0);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001504
1505out: kfree_skb(skb);
1506 return 0;
YOSHIFUJI Hideakie905a9e2007-02-09 23:24:47 +09001507}
Linus Torvalds1da177e2005-04-16 15:20:36 -07001508
Linus Torvalds1da177e2005-04-16 15:20:36 -07001509static void ip_rt_update_pmtu(struct dst_entry *dst, u32 mtu)
1510{
David S. Miller2c8cec52011-02-09 20:42:07 -08001511 struct rtable *rt = (struct rtable *) dst;
David S. Miller2c8cec52011-02-09 20:42:07 -08001512
1513 dst_confirm(dst);
1514
David S. Miller59436342012-07-10 06:58:42 -07001515 if (mtu < ip_rt_min_pmtu)
1516 mtu = ip_rt_min_pmtu;
Eric Dumazetfe6fe792011-06-08 06:07:07 +00001517
David S. Miller59436342012-07-10 06:58:42 -07001518 rt->rt_pmtu = mtu;
1519 dst_set_expires(&rt->dst, ip_rt_mtu_expires);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001520}
1521
David S. Miller36393392012-06-14 22:21:46 -07001522void ipv4_update_pmtu(struct sk_buff *skb, struct net *net, u32 mtu,
1523 int oif, u32 mark, u8 protocol, int flow_flags)
1524{
1525 const struct iphdr *iph = (const struct iphdr *)skb->data;
1526 struct flowi4 fl4;
1527 struct rtable *rt;
1528
1529 flowi4_init_output(&fl4, oif, mark, RT_TOS(iph->tos), RT_SCOPE_UNIVERSE,
David S. Miller3e129392012-07-10 04:01:57 -07001530 protocol, flow_flags,
David S. Miller36393392012-06-14 22:21:46 -07001531 iph->daddr, iph->saddr, 0, 0);
1532 rt = __ip_route_output_key(net, &fl4);
1533 if (!IS_ERR(rt)) {
1534 ip_rt_update_pmtu(&rt->dst, mtu);
1535 ip_rt_put(rt);
1536 }
1537}
1538EXPORT_SYMBOL_GPL(ipv4_update_pmtu);
1539
1540void ipv4_sk_update_pmtu(struct sk_buff *skb, struct sock *sk, u32 mtu)
1541{
1542 const struct inet_sock *inet = inet_sk(sk);
1543
1544 return ipv4_update_pmtu(skb, sock_net(sk), mtu,
1545 sk->sk_bound_dev_if, sk->sk_mark,
1546 inet->hdrincl ? IPPROTO_RAW : sk->sk_protocol,
1547 inet_sk_flowi_flags(sk));
1548}
1549EXPORT_SYMBOL_GPL(ipv4_sk_update_pmtu);
David S. Millerf39925d2011-02-09 22:00:16 -08001550
David S. Millerb42597e2012-07-11 21:25:45 -07001551void ipv4_redirect(struct sk_buff *skb, struct net *net,
1552 int oif, u32 mark, u8 protocol, int flow_flags)
1553{
1554 const struct iphdr *iph = (const struct iphdr *)skb->data;
1555 struct flowi4 fl4;
1556 struct rtable *rt;
1557
1558 flowi4_init_output(&fl4, oif, mark, RT_TOS(iph->tos), RT_SCOPE_UNIVERSE,
1559 protocol, flow_flags, iph->daddr, iph->saddr, 0, 0);
1560 rt = __ip_route_output_key(net, &fl4);
1561 if (!IS_ERR(rt)) {
1562 ip_do_redirect(&rt->dst, skb);
1563 ip_rt_put(rt);
1564 }
1565}
1566EXPORT_SYMBOL_GPL(ipv4_redirect);
1567
1568void ipv4_sk_redirect(struct sk_buff *skb, struct sock *sk)
1569{
1570 const struct inet_sock *inet = inet_sk(sk);
1571
1572 return ipv4_redirect(skb, sock_net(sk), sk->sk_bound_dev_if,
1573 sk->sk_mark,
1574 inet->hdrincl ? IPPROTO_RAW : sk->sk_protocol,
1575 inet_sk_flowi_flags(sk));
1576}
1577EXPORT_SYMBOL_GPL(ipv4_sk_redirect);
1578
David S. Millerefbc3682011-12-01 13:38:59 -05001579static struct dst_entry *ipv4_dst_check(struct dst_entry *dst, u32 cookie)
1580{
1581 struct rtable *rt = (struct rtable *) dst;
1582
1583 if (rt_is_expired(rt))
1584 return NULL;
Timo Teräsd11a4dc2010-03-18 23:20:20 +00001585 return dst;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001586}
1587
1588static void ipv4_dst_destroy(struct dst_entry *dst)
1589{
1590 struct rtable *rt = (struct rtable *) dst;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001591
David S. Miller62fa8a82011-01-26 20:51:05 -08001592 if (rt->fi) {
1593 fib_info_put(rt->fi);
1594 rt->fi = NULL;
1595 }
Linus Torvalds1da177e2005-04-16 15:20:36 -07001596}
1597
Linus Torvalds1da177e2005-04-16 15:20:36 -07001598
1599static void ipv4_link_failure(struct sk_buff *skb)
1600{
1601 struct rtable *rt;
1602
1603 icmp_send(skb, ICMP_DEST_UNREACH, ICMP_HOST_UNREACH, 0);
1604
Eric Dumazet511c3f92009-06-02 05:14:27 +00001605 rt = skb_rtable(skb);
David S. Miller59436342012-07-10 06:58:42 -07001606 if (rt)
1607 dst_set_expires(&rt->dst, 0);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001608}
1609
1610static int ip_rt_bug(struct sk_buff *skb)
1611{
Joe Perches91df42b2012-05-15 14:11:54 +00001612 pr_debug("%s: %pI4 -> %pI4, %s\n",
1613 __func__, &ip_hdr(skb)->saddr, &ip_hdr(skb)->daddr,
1614 skb->dev ? skb->dev->name : "?");
Linus Torvalds1da177e2005-04-16 15:20:36 -07001615 kfree_skb(skb);
Dave Jonesc378a9c2011-05-21 07:16:42 +00001616 WARN_ON(1);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001617 return 0;
1618}
1619
1620/*
1621 We do not cache source address of outgoing interface,
1622 because it is used only by IP RR, TS and SRR options,
1623 so that it out of fast path.
1624
1625 BTW remember: "addr" is allowed to be not aligned
1626 in IP options!
1627 */
1628
David S. Miller8e363602011-05-13 17:29:41 -04001629void ip_rt_get_source(u8 *addr, struct sk_buff *skb, struct rtable *rt)
Linus Torvalds1da177e2005-04-16 15:20:36 -07001630{
Al Viroa61ced52006-09-26 21:27:54 -07001631 __be32 src;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001632
David S. Millerc7537962010-11-11 17:07:48 -08001633 if (rt_is_output_route(rt))
David S. Millerc5be24f2011-05-13 18:01:21 -04001634 src = ip_hdr(skb)->saddr;
Eric Dumazetebc0ffa2010-10-05 10:41:36 +00001635 else {
David S. Miller8e363602011-05-13 17:29:41 -04001636 struct fib_result res;
1637 struct flowi4 fl4;
1638 struct iphdr *iph;
1639
1640 iph = ip_hdr(skb);
1641
1642 memset(&fl4, 0, sizeof(fl4));
1643 fl4.daddr = iph->daddr;
1644 fl4.saddr = iph->saddr;
Julian Anastasovb0fe4a32011-07-23 02:00:41 +00001645 fl4.flowi4_tos = RT_TOS(iph->tos);
David S. Miller8e363602011-05-13 17:29:41 -04001646 fl4.flowi4_oif = rt->dst.dev->ifindex;
1647 fl4.flowi4_iif = skb->dev->ifindex;
1648 fl4.flowi4_mark = skb->mark;
David S. Miller5e2b61f2011-03-04 21:47:09 -08001649
Eric Dumazetebc0ffa2010-10-05 10:41:36 +00001650 rcu_read_lock();
David S. Miller68a5e3d2011-03-11 20:07:33 -05001651 if (fib_lookup(dev_net(rt->dst.dev), &fl4, &res) == 0)
David S. Miller436c3b62011-03-24 17:42:21 -07001652 src = FIB_RES_PREFSRC(dev_net(rt->dst.dev), res);
Eric Dumazetebc0ffa2010-10-05 10:41:36 +00001653 else
1654 src = inet_select_addr(rt->dst.dev, rt->rt_gateway,
Linus Torvalds1da177e2005-04-16 15:20:36 -07001655 RT_SCOPE_UNIVERSE);
Eric Dumazetebc0ffa2010-10-05 10:41:36 +00001656 rcu_read_unlock();
1657 }
Linus Torvalds1da177e2005-04-16 15:20:36 -07001658 memcpy(addr, &src, 4);
1659}
1660
Patrick McHardyc7066f72011-01-14 13:36:42 +01001661#ifdef CONFIG_IP_ROUTE_CLASSID
Linus Torvalds1da177e2005-04-16 15:20:36 -07001662static void set_class_tag(struct rtable *rt, u32 tag)
1663{
Changli Gaod8d1f302010-06-10 23:31:35 -07001664 if (!(rt->dst.tclassid & 0xFFFF))
1665 rt->dst.tclassid |= tag & 0xFFFF;
1666 if (!(rt->dst.tclassid & 0xFFFF0000))
1667 rt->dst.tclassid |= tag & 0xFFFF0000;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001668}
1669#endif
1670
David S. Miller0dbaee32010-12-13 12:52:14 -08001671static unsigned int ipv4_default_advmss(const struct dst_entry *dst)
1672{
1673 unsigned int advmss = dst_metric_raw(dst, RTAX_ADVMSS);
1674
1675 if (advmss == 0) {
1676 advmss = max_t(unsigned int, dst->dev->mtu - 40,
1677 ip_rt_min_advmss);
1678 if (advmss > 65535 - 40)
1679 advmss = 65535 - 40;
1680 }
1681 return advmss;
1682}
1683
Steffen Klassertebb762f2011-11-23 02:12:51 +00001684static unsigned int ipv4_mtu(const struct dst_entry *dst)
David S. Millerd33e4552010-12-14 13:01:14 -08001685{
Steffen Klassert261663b2011-11-23 02:14:50 +00001686 const struct rtable *rt = (const struct rtable *) dst;
David S. Miller59436342012-07-10 06:58:42 -07001687 unsigned int mtu = rt->rt_pmtu;
1688
1689 if (mtu && time_after_eq(jiffies, rt->dst.expires))
1690 mtu = 0;
1691
1692 if (!mtu)
1693 mtu = dst_metric_raw(dst, RTAX_MTU);
Steffen Klassert618f9bc2011-11-23 02:13:31 +00001694
Steffen Klassert261663b2011-11-23 02:14:50 +00001695 if (mtu && rt_is_output_route(rt))
Steffen Klassert618f9bc2011-11-23 02:13:31 +00001696 return mtu;
1697
1698 mtu = dst->dev->mtu;
David S. Millerd33e4552010-12-14 13:01:14 -08001699
1700 if (unlikely(dst_metric_locked(dst, RTAX_MTU))) {
David S. Millerd33e4552010-12-14 13:01:14 -08001701
1702 if (rt->rt_gateway != rt->rt_dst && mtu > 576)
1703 mtu = 576;
1704 }
1705
1706 if (mtu > IP_MAX_MTU)
1707 mtu = IP_MAX_MTU;
1708
1709 return mtu;
1710}
1711
David S. Miller813b3b52011-04-28 14:48:42 -07001712static void rt_init_metrics(struct rtable *rt, const struct flowi4 *fl4,
David S. Miller5e2b61f2011-03-04 21:47:09 -08001713 struct fib_info *fi)
David S. Millera4daad62011-01-27 22:01:53 -08001714{
David S. Millerf1850712012-07-10 07:26:01 -07001715 if (fi->fib_metrics != (u32 *) dst_default_metrics) {
1716 rt->fi = fi;
1717 atomic_inc(&fi->fib_clntref);
David S. Millera4daad62011-01-27 22:01:53 -08001718 }
David S. Millerf1850712012-07-10 07:26:01 -07001719 dst_init_metrics(&rt->dst, fi->fib_metrics, true);
David S. Millera4daad62011-01-27 22:01:53 -08001720}
1721
David S. Miller813b3b52011-04-28 14:48:42 -07001722static void rt_set_nexthop(struct rtable *rt, const struct flowi4 *fl4,
David S. Miller5e2b61f2011-03-04 21:47:09 -08001723 const struct fib_result *res,
David S. Miller982721f2011-02-16 21:44:24 -08001724 struct fib_info *fi, u16 type, u32 itag)
Linus Torvalds1da177e2005-04-16 15:20:36 -07001725{
Linus Torvalds1da177e2005-04-16 15:20:36 -07001726 if (fi) {
1727 if (FIB_RES_GW(*res) &&
1728 FIB_RES_NH(*res).nh_scope == RT_SCOPE_LINK)
1729 rt->rt_gateway = FIB_RES_GW(*res);
David S. Miller813b3b52011-04-28 14:48:42 -07001730 rt_init_metrics(rt, fl4, fi);
Patrick McHardyc7066f72011-01-14 13:36:42 +01001731#ifdef CONFIG_IP_ROUTE_CLASSID
David S. Miller710ab6c2012-07-10 07:02:09 -07001732 rt->dst.tclassid = FIB_RES_NH(*res).nh_tclassid;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001733#endif
David S. Millerd33e4552010-12-14 13:01:14 -08001734 }
Linus Torvalds1da177e2005-04-16 15:20:36 -07001735
Patrick McHardyc7066f72011-01-14 13:36:42 +01001736#ifdef CONFIG_IP_ROUTE_CLASSID
Linus Torvalds1da177e2005-04-16 15:20:36 -07001737#ifdef CONFIG_IP_MULTIPLE_TABLES
David S. Miller85b91b02012-07-13 08:21:29 -07001738 set_class_tag(rt, res->tclassid);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001739#endif
1740 set_class_tag(rt, itag);
1741#endif
Linus Torvalds1da177e2005-04-16 15:20:36 -07001742}
1743
David S. Miller5c1e6aa2011-04-28 14:13:38 -07001744static struct rtable *rt_dst_alloc(struct net_device *dev,
1745 bool nopolicy, bool noxfrm)
David S. Miller0c4dcd52011-02-17 15:42:37 -08001746{
David S. Miller5c1e6aa2011-04-28 14:13:38 -07001747 return dst_alloc(&ipv4_dst_ops, dev, 1, -1,
1748 DST_HOST |
1749 (nopolicy ? DST_NOPOLICY : 0) |
1750 (noxfrm ? DST_NOXFRM : 0));
David S. Miller0c4dcd52011-02-17 15:42:37 -08001751}
1752
Eric Dumazet96d36222010-06-02 19:21:31 +00001753/* called in rcu_read_lock() section */
Al Viro9e12bb22006-09-26 21:25:20 -07001754static int ip_route_input_mc(struct sk_buff *skb, __be32 daddr, __be32 saddr,
Linus Torvalds1da177e2005-04-16 15:20:36 -07001755 u8 tos, struct net_device *dev, int our)
1756{
Eric Dumazet96d36222010-06-02 19:21:31 +00001757 unsigned int hash;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001758 struct rtable *rth;
Eric Dumazet96d36222010-06-02 19:21:31 +00001759 struct in_device *in_dev = __in_dev_get_rcu(dev);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001760 u32 itag = 0;
Eric Dumazetb5f7e752010-06-02 12:05:27 +00001761 int err;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001762
1763 /* Primary sanity checks. */
1764
1765 if (in_dev == NULL)
1766 return -EINVAL;
1767
Jan Engelhardt1e637c72008-01-21 03:18:08 -08001768 if (ipv4_is_multicast(saddr) || ipv4_is_lbcast(saddr) ||
Thomas Grafd0daebc32012-06-12 00:44:01 +00001769 skb->protocol != htons(ETH_P_IP))
Linus Torvalds1da177e2005-04-16 15:20:36 -07001770 goto e_inval;
1771
Thomas Grafd0daebc32012-06-12 00:44:01 +00001772 if (likely(!IN_DEV_ROUTE_LOCALNET(in_dev)))
1773 if (ipv4_is_loopback(saddr))
1774 goto e_inval;
1775
Joe Perchesf97c1e02007-12-16 13:45:43 -08001776 if (ipv4_is_zeronet(saddr)) {
1777 if (!ipv4_is_local_multicast(daddr))
Linus Torvalds1da177e2005-04-16 15:20:36 -07001778 goto e_inval;
Eric Dumazetb5f7e752010-06-02 12:05:27 +00001779 } else {
David S. Miller9e56e382012-06-28 18:54:02 -07001780 err = fib_validate_source(skb, saddr, 0, tos, 0, dev,
1781 in_dev, &itag);
Eric Dumazetb5f7e752010-06-02 12:05:27 +00001782 if (err < 0)
1783 goto e_err;
1784 }
Benjamin LaHaise4e7b2f12012-03-27 15:55:32 +00001785 rth = rt_dst_alloc(dev_net(dev)->loopback_dev,
David S. Miller5c1e6aa2011-04-28 14:13:38 -07001786 IN_DEV_CONF_GET(in_dev, NOPOLICY), false);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001787 if (!rth)
1788 goto e_nobufs;
1789
Patrick McHardyc7066f72011-01-14 13:36:42 +01001790#ifdef CONFIG_IP_ROUTE_CLASSID
Changli Gaod8d1f302010-06-10 23:31:35 -07001791 rth->dst.tclassid = itag;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001792#endif
David S. Millercf911662011-04-28 14:31:47 -07001793 rth->dst.output = ip_rt_bug;
1794
1795 rth->rt_key_dst = daddr;
1796 rth->rt_key_src = saddr;
Denis V. Luneve84f84f2008-07-05 19:04:32 -07001797 rth->rt_genid = rt_genid(dev_net(dev));
Linus Torvalds1da177e2005-04-16 15:20:36 -07001798 rth->rt_flags = RTCF_MULTICAST;
Eric Dumazet29e75252008-01-31 17:05:09 -08001799 rth->rt_type = RTN_MULTICAST;
David S. Miller475949d2011-05-03 19:45:15 -07001800 rth->rt_key_tos = tos;
David S. Millercf911662011-04-28 14:31:47 -07001801 rth->rt_dst = daddr;
1802 rth->rt_src = saddr;
1803 rth->rt_route_iif = dev->ifindex;
1804 rth->rt_iif = dev->ifindex;
1805 rth->rt_oif = 0;
1806 rth->rt_mark = skb->mark;
David S. Miller59436342012-07-10 06:58:42 -07001807 rth->rt_pmtu = 0;
David S. Millercf911662011-04-28 14:31:47 -07001808 rth->rt_gateway = daddr;
David S. Millercf911662011-04-28 14:31:47 -07001809 rth->fi = NULL;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001810 if (our) {
Changli Gaod8d1f302010-06-10 23:31:35 -07001811 rth->dst.input= ip_local_deliver;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001812 rth->rt_flags |= RTCF_LOCAL;
1813 }
1814
1815#ifdef CONFIG_IP_MROUTE
Joe Perchesf97c1e02007-12-16 13:45:43 -08001816 if (!ipv4_is_local_multicast(daddr) && IN_DEV_MFORWARD(in_dev))
Changli Gaod8d1f302010-06-10 23:31:35 -07001817 rth->dst.input = ip_mr_input;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001818#endif
1819 RT_CACHE_STAT_INC(in_slow_mc);
1820
Denis V. Luneve84f84f2008-07-05 19:04:32 -07001821 hash = rt_hash(daddr, saddr, dev->ifindex, rt_genid(dev_net(dev)));
David S. Millerb23dd4f2011-03-02 14:31:35 -08001822 rth = rt_intern_hash(hash, rth, skb, dev->ifindex);
Eric Dumazet9aa3c942011-06-18 11:59:18 -07001823 return IS_ERR(rth) ? PTR_ERR(rth) : 0;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001824
1825e_nobufs:
Linus Torvalds1da177e2005-04-16 15:20:36 -07001826 return -ENOBUFS;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001827e_inval:
Eric Dumazet96d36222010-06-02 19:21:31 +00001828 return -EINVAL;
Eric Dumazetb5f7e752010-06-02 12:05:27 +00001829e_err:
Eric Dumazetb5f7e752010-06-02 12:05:27 +00001830 return err;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001831}
1832
1833
1834static void ip_handle_martian_source(struct net_device *dev,
1835 struct in_device *in_dev,
1836 struct sk_buff *skb,
Al Viro9e12bb22006-09-26 21:25:20 -07001837 __be32 daddr,
1838 __be32 saddr)
Linus Torvalds1da177e2005-04-16 15:20:36 -07001839{
1840 RT_CACHE_STAT_INC(in_martian_src);
1841#ifdef CONFIG_IP_ROUTE_VERBOSE
1842 if (IN_DEV_LOG_MARTIANS(in_dev) && net_ratelimit()) {
1843 /*
1844 * RFC1812 recommendation, if source is martian,
1845 * the only hint is MAC header.
1846 */
Joe Perches058bd4d2012-03-11 18:36:11 +00001847 pr_warn("martian source %pI4 from %pI4, on dev %s\n",
Harvey Harrison673d57e2008-10-31 00:53:57 -07001848 &daddr, &saddr, dev->name);
Arnaldo Carvalho de Melo98e399f2007-03-19 15:33:04 -07001849 if (dev->hard_header_len && skb_mac_header_was_set(skb)) {
Joe Perches058bd4d2012-03-11 18:36:11 +00001850 print_hex_dump(KERN_WARNING, "ll header: ",
1851 DUMP_PREFIX_OFFSET, 16, 1,
1852 skb_mac_header(skb),
1853 dev->hard_header_len, true);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001854 }
1855 }
1856#endif
1857}
1858
Eric Dumazet47360222010-06-03 04:13:21 +00001859/* called in rcu_read_lock() section */
Stephen Hemminger5969f712008-04-10 01:52:09 -07001860static int __mkroute_input(struct sk_buff *skb,
David S. Miller982721f2011-02-16 21:44:24 -08001861 const struct fib_result *res,
Stephen Hemminger5969f712008-04-10 01:52:09 -07001862 struct in_device *in_dev,
1863 __be32 daddr, __be32 saddr, u32 tos,
1864 struct rtable **result)
Linus Torvalds1da177e2005-04-16 15:20:36 -07001865{
Linus Torvalds1da177e2005-04-16 15:20:36 -07001866 struct rtable *rth;
1867 int err;
1868 struct in_device *out_dev;
Eric Dumazet47360222010-06-03 04:13:21 +00001869 unsigned int flags = 0;
Al Virod9c9df82006-09-26 21:28:14 -07001870 u32 itag;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001871
1872 /* get a working reference to the output device */
Eric Dumazet47360222010-06-03 04:13:21 +00001873 out_dev = __in_dev_get_rcu(FIB_RES_DEV(*res));
Linus Torvalds1da177e2005-04-16 15:20:36 -07001874 if (out_dev == NULL) {
Joe Perchese87cc472012-05-13 21:56:26 +00001875 net_crit_ratelimited("Bug in ip_route_input_slow(). Please report.\n");
Linus Torvalds1da177e2005-04-16 15:20:36 -07001876 return -EINVAL;
1877 }
1878
1879
Michael Smith5c04c812011-04-07 04:51:50 +00001880 err = fib_validate_source(skb, saddr, daddr, tos, FIB_RES_OIF(*res),
David S. Miller9e56e382012-06-28 18:54:02 -07001881 in_dev->dev, in_dev, &itag);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001882 if (err < 0) {
YOSHIFUJI Hideakie905a9e2007-02-09 23:24:47 +09001883 ip_handle_martian_source(in_dev->dev, in_dev, skb, daddr,
Linus Torvalds1da177e2005-04-16 15:20:36 -07001884 saddr);
YOSHIFUJI Hideakie905a9e2007-02-09 23:24:47 +09001885
Linus Torvalds1da177e2005-04-16 15:20:36 -07001886 goto cleanup;
1887 }
1888
1889 if (err)
1890 flags |= RTCF_DIRECTSRC;
1891
Thomas Graf51b77ca2008-06-03 16:36:01 -07001892 if (out_dev == in_dev && err &&
Linus Torvalds1da177e2005-04-16 15:20:36 -07001893 (IN_DEV_SHARED_MEDIA(out_dev) ||
1894 inet_addr_onlink(out_dev, saddr, FIB_RES_GW(*res))))
1895 flags |= RTCF_DOREDIRECT;
1896
1897 if (skb->protocol != htons(ETH_P_IP)) {
1898 /* Not IP (i.e. ARP). Do not create route, if it is
1899 * invalid for proxy arp. DNAT routes are always valid.
Jesper Dangaard Brouer65324142010-01-05 05:50:47 +00001900 *
1901 * Proxy arp feature have been extended to allow, ARP
1902 * replies back to the same interface, to support
1903 * Private VLAN switch technologies. See arp.c.
Linus Torvalds1da177e2005-04-16 15:20:36 -07001904 */
Jesper Dangaard Brouer65324142010-01-05 05:50:47 +00001905 if (out_dev == in_dev &&
1906 IN_DEV_PROXY_ARP_PVLAN(in_dev) == 0) {
Linus Torvalds1da177e2005-04-16 15:20:36 -07001907 err = -EINVAL;
1908 goto cleanup;
1909 }
1910 }
1911
David S. Miller5c1e6aa2011-04-28 14:13:38 -07001912 rth = rt_dst_alloc(out_dev->dev,
1913 IN_DEV_CONF_GET(in_dev, NOPOLICY),
David S. Miller0c4dcd52011-02-17 15:42:37 -08001914 IN_DEV_CONF_GET(out_dev, NOXFRM));
Linus Torvalds1da177e2005-04-16 15:20:36 -07001915 if (!rth) {
1916 err = -ENOBUFS;
1917 goto cleanup;
1918 }
1919
David S. Miller5e2b61f2011-03-04 21:47:09 -08001920 rth->rt_key_dst = daddr;
David S. Miller5e2b61f2011-03-04 21:47:09 -08001921 rth->rt_key_src = saddr;
David S. Millercf911662011-04-28 14:31:47 -07001922 rth->rt_genid = rt_genid(dev_net(rth->dst.dev));
1923 rth->rt_flags = flags;
1924 rth->rt_type = res->type;
David S. Miller475949d2011-05-03 19:45:15 -07001925 rth->rt_key_tos = tos;
David S. Millercf911662011-04-28 14:31:47 -07001926 rth->rt_dst = daddr;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001927 rth->rt_src = saddr;
OGAWA Hirofumi1b86a582011-04-07 14:04:08 -07001928 rth->rt_route_iif = in_dev->dev->ifindex;
David S. Miller5e2b61f2011-03-04 21:47:09 -08001929 rth->rt_iif = in_dev->dev->ifindex;
David S. Miller5e2b61f2011-03-04 21:47:09 -08001930 rth->rt_oif = 0;
David S. Millercf911662011-04-28 14:31:47 -07001931 rth->rt_mark = skb->mark;
David S. Miller59436342012-07-10 06:58:42 -07001932 rth->rt_pmtu = 0;
David S. Millercf911662011-04-28 14:31:47 -07001933 rth->rt_gateway = daddr;
David S. Millercf911662011-04-28 14:31:47 -07001934 rth->fi = NULL;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001935
Changli Gaod8d1f302010-06-10 23:31:35 -07001936 rth->dst.input = ip_forward;
1937 rth->dst.output = ip_output;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001938
David S. Miller5e2b61f2011-03-04 21:47:09 -08001939 rt_set_nexthop(rth, NULL, res, res->fi, res->type, itag);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001940
Linus Torvalds1da177e2005-04-16 15:20:36 -07001941 *result = rth;
1942 err = 0;
1943 cleanup:
Linus Torvalds1da177e2005-04-16 15:20:36 -07001944 return err;
YOSHIFUJI Hideakie905a9e2007-02-09 23:24:47 +09001945}
Linus Torvalds1da177e2005-04-16 15:20:36 -07001946
Stephen Hemminger5969f712008-04-10 01:52:09 -07001947static int ip_mkroute_input(struct sk_buff *skb,
1948 struct fib_result *res,
David S. Miller68a5e3d2011-03-11 20:07:33 -05001949 const struct flowi4 *fl4,
Stephen Hemminger5969f712008-04-10 01:52:09 -07001950 struct in_device *in_dev,
1951 __be32 daddr, __be32 saddr, u32 tos)
Linus Torvalds1da177e2005-04-16 15:20:36 -07001952{
Daniel Baluta5e73ea12012-04-15 01:34:41 +00001953 struct rtable *rth = NULL;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001954 int err;
Eric Dumazet95c96172012-04-15 05:58:06 +00001955 unsigned int hash;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001956
1957#ifdef CONFIG_IP_ROUTE_MULTIPATH
David S. Millerff3fccb2011-03-10 16:23:24 -08001958 if (res->fi && res->fi->fib_nhs > 1)
David S. Miller1b7fe5932011-03-10 17:01:16 -08001959 fib_select_multipath(res);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001960#endif
1961
1962 /* create a routing cache entry */
1963 err = __mkroute_input(skb, res, in_dev, daddr, saddr, tos, &rth);
1964 if (err)
1965 return err;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001966
1967 /* put it into the cache */
David S. Miller68a5e3d2011-03-11 20:07:33 -05001968 hash = rt_hash(daddr, saddr, fl4->flowi4_iif,
Changli Gaod8d1f302010-06-10 23:31:35 -07001969 rt_genid(dev_net(rth->dst.dev)));
David S. Miller68a5e3d2011-03-11 20:07:33 -05001970 rth = rt_intern_hash(hash, rth, skb, fl4->flowi4_iif);
David S. Millerb23dd4f2011-03-02 14:31:35 -08001971 if (IS_ERR(rth))
1972 return PTR_ERR(rth);
1973 return 0;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001974}
1975
Linus Torvalds1da177e2005-04-16 15:20:36 -07001976/*
1977 * NOTE. We drop all the packets that has local source
1978 * addresses, because every properly looped back packet
1979 * must have correct destination already attached by output routine.
1980 *
1981 * Such approach solves two big problems:
1982 * 1. Not simplex devices are handled properly.
1983 * 2. IP spoofing attempts are filtered with 100% of guarantee.
Eric Dumazetebc0ffa2010-10-05 10:41:36 +00001984 * called with rcu_read_lock()
Linus Torvalds1da177e2005-04-16 15:20:36 -07001985 */
1986
Al Viro9e12bb22006-09-26 21:25:20 -07001987static int ip_route_input_slow(struct sk_buff *skb, __be32 daddr, __be32 saddr,
David S. Millerc10237e2012-06-27 17:05:06 -07001988 u8 tos, struct net_device *dev)
Linus Torvalds1da177e2005-04-16 15:20:36 -07001989{
1990 struct fib_result res;
Eric Dumazet96d36222010-06-02 19:21:31 +00001991 struct in_device *in_dev = __in_dev_get_rcu(dev);
David S. Miller68a5e3d2011-03-11 20:07:33 -05001992 struct flowi4 fl4;
Eric Dumazet95c96172012-04-15 05:58:06 +00001993 unsigned int flags = 0;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001994 u32 itag = 0;
Eric Dumazet95c96172012-04-15 05:58:06 +00001995 struct rtable *rth;
1996 unsigned int hash;
Linus Torvalds1da177e2005-04-16 15:20:36 -07001997 int err = -EINVAL;
Daniel Baluta5e73ea12012-04-15 01:34:41 +00001998 struct net *net = dev_net(dev);
Linus Torvalds1da177e2005-04-16 15:20:36 -07001999
2000 /* IP on this device is disabled. */
2001
2002 if (!in_dev)
2003 goto out;
2004
2005 /* Check for the most weird martians, which can be not detected
2006 by fib_lookup.
2007 */
2008
Thomas Grafd0daebc32012-06-12 00:44:01 +00002009 if (ipv4_is_multicast(saddr) || ipv4_is_lbcast(saddr))
Linus Torvalds1da177e2005-04-16 15:20:36 -07002010 goto martian_source;
2011
Andy Walls27a954b2010-10-17 15:11:22 +00002012 if (ipv4_is_lbcast(daddr) || (saddr == 0 && daddr == 0))
Linus Torvalds1da177e2005-04-16 15:20:36 -07002013 goto brd_input;
2014
2015 /* Accept zero addresses only to limited broadcast;
2016 * I even do not know to fix it or not. Waiting for complains :-)
2017 */
Joe Perchesf97c1e02007-12-16 13:45:43 -08002018 if (ipv4_is_zeronet(saddr))
Linus Torvalds1da177e2005-04-16 15:20:36 -07002019 goto martian_source;
2020
Thomas Grafd0daebc32012-06-12 00:44:01 +00002021 if (ipv4_is_zeronet(daddr))
Linus Torvalds1da177e2005-04-16 15:20:36 -07002022 goto martian_destination;
2023
Thomas Grafd0daebc32012-06-12 00:44:01 +00002024 if (likely(!IN_DEV_ROUTE_LOCALNET(in_dev))) {
2025 if (ipv4_is_loopback(daddr))
2026 goto martian_destination;
2027
2028 if (ipv4_is_loopback(saddr))
2029 goto martian_source;
2030 }
2031
Linus Torvalds1da177e2005-04-16 15:20:36 -07002032 /*
2033 * Now we are ready to route packet.
2034 */
David S. Miller68a5e3d2011-03-11 20:07:33 -05002035 fl4.flowi4_oif = 0;
2036 fl4.flowi4_iif = dev->ifindex;
2037 fl4.flowi4_mark = skb->mark;
2038 fl4.flowi4_tos = tos;
2039 fl4.flowi4_scope = RT_SCOPE_UNIVERSE;
2040 fl4.daddr = daddr;
2041 fl4.saddr = saddr;
2042 err = fib_lookup(net, &fl4, &res);
David S. Miller251da412012-06-26 16:27:09 -07002043 if (err != 0)
Linus Torvalds1da177e2005-04-16 15:20:36 -07002044 goto no_route;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002045
2046 RT_CACHE_STAT_INC(in_slow_tot);
2047
2048 if (res.type == RTN_BROADCAST)
2049 goto brd_input;
2050
2051 if (res.type == RTN_LOCAL) {
Michael Smith5c04c812011-04-07 04:51:50 +00002052 err = fib_validate_source(skb, saddr, daddr, tos,
Eric Dumazetebc0ffa2010-10-05 10:41:36 +00002053 net->loopback_dev->ifindex,
David S. Miller9e56e382012-06-28 18:54:02 -07002054 dev, in_dev, &itag);
Eric Dumazetb5f7e752010-06-02 12:05:27 +00002055 if (err < 0)
2056 goto martian_source_keep_err;
2057 if (err)
Linus Torvalds1da177e2005-04-16 15:20:36 -07002058 flags |= RTCF_DIRECTSRC;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002059 goto local_input;
2060 }
2061
2062 if (!IN_DEV_FORWARD(in_dev))
David S. Miller251da412012-06-26 16:27:09 -07002063 goto no_route;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002064 if (res.type != RTN_UNICAST)
2065 goto martian_destination;
2066
David S. Miller68a5e3d2011-03-11 20:07:33 -05002067 err = ip_mkroute_input(skb, &res, &fl4, in_dev, daddr, saddr, tos);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002068out: return err;
2069
2070brd_input:
2071 if (skb->protocol != htons(ETH_P_IP))
2072 goto e_inval;
2073
David S. Miller41347dc2012-06-28 04:05:27 -07002074 if (!ipv4_is_zeronet(saddr)) {
David S. Miller9e56e382012-06-28 18:54:02 -07002075 err = fib_validate_source(skb, saddr, 0, tos, 0, dev,
2076 in_dev, &itag);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002077 if (err < 0)
Eric Dumazetb5f7e752010-06-02 12:05:27 +00002078 goto martian_source_keep_err;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002079 if (err)
2080 flags |= RTCF_DIRECTSRC;
2081 }
2082 flags |= RTCF_BROADCAST;
2083 res.type = RTN_BROADCAST;
2084 RT_CACHE_STAT_INC(in_brd);
2085
2086local_input:
David S. Miller5c1e6aa2011-04-28 14:13:38 -07002087 rth = rt_dst_alloc(net->loopback_dev,
2088 IN_DEV_CONF_GET(in_dev, NOPOLICY), false);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002089 if (!rth)
2090 goto e_nobufs;
2091
David S. Millercf911662011-04-28 14:31:47 -07002092 rth->dst.input= ip_local_deliver;
Changli Gaod8d1f302010-06-10 23:31:35 -07002093 rth->dst.output= ip_rt_bug;
David S. Millercf911662011-04-28 14:31:47 -07002094#ifdef CONFIG_IP_ROUTE_CLASSID
2095 rth->dst.tclassid = itag;
2096#endif
Linus Torvalds1da177e2005-04-16 15:20:36 -07002097
David S. Miller5e2b61f2011-03-04 21:47:09 -08002098 rth->rt_key_dst = daddr;
David S. Miller5e2b61f2011-03-04 21:47:09 -08002099 rth->rt_key_src = saddr;
David S. Millercf911662011-04-28 14:31:47 -07002100 rth->rt_genid = rt_genid(net);
2101 rth->rt_flags = flags|RTCF_LOCAL;
2102 rth->rt_type = res.type;
David S. Miller475949d2011-05-03 19:45:15 -07002103 rth->rt_key_tos = tos;
David S. Millercf911662011-04-28 14:31:47 -07002104 rth->rt_dst = daddr;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002105 rth->rt_src = saddr;
OGAWA Hirofumi1b86a582011-04-07 14:04:08 -07002106 rth->rt_route_iif = dev->ifindex;
David S. Miller5e2b61f2011-03-04 21:47:09 -08002107 rth->rt_iif = dev->ifindex;
David S. Millercf911662011-04-28 14:31:47 -07002108 rth->rt_oif = 0;
2109 rth->rt_mark = skb->mark;
David S. Miller59436342012-07-10 06:58:42 -07002110 rth->rt_pmtu = 0;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002111 rth->rt_gateway = daddr;
David S. Millercf911662011-04-28 14:31:47 -07002112 rth->fi = NULL;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002113 if (res.type == RTN_UNREACHABLE) {
Changli Gaod8d1f302010-06-10 23:31:35 -07002114 rth->dst.input= ip_error;
2115 rth->dst.error= -err;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002116 rth->rt_flags &= ~RTCF_LOCAL;
2117 }
David S. Miller68a5e3d2011-03-11 20:07:33 -05002118 hash = rt_hash(daddr, saddr, fl4.flowi4_iif, rt_genid(net));
2119 rth = rt_intern_hash(hash, rth, skb, fl4.flowi4_iif);
David S. Millerb23dd4f2011-03-02 14:31:35 -08002120 err = 0;
2121 if (IS_ERR(rth))
2122 err = PTR_ERR(rth);
Eric Dumazetebc0ffa2010-10-05 10:41:36 +00002123 goto out;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002124
2125no_route:
2126 RT_CACHE_STAT_INC(in_no_route);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002127 res.type = RTN_UNREACHABLE;
Mitsuru Chinen7f538782007-12-07 01:07:24 -08002128 if (err == -ESRCH)
2129 err = -ENETUNREACH;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002130 goto local_input;
2131
2132 /*
2133 * Do not cache martian addresses: they should be logged (RFC1812)
2134 */
2135martian_destination:
2136 RT_CACHE_STAT_INC(in_martian_dst);
2137#ifdef CONFIG_IP_ROUTE_VERBOSE
Joe Perchese87cc472012-05-13 21:56:26 +00002138 if (IN_DEV_LOG_MARTIANS(in_dev))
2139 net_warn_ratelimited("martian destination %pI4 from %pI4, dev %s\n",
2140 &daddr, &saddr, dev->name);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002141#endif
Dietmar Eggemann2c2910a2005-06-28 13:06:23 -07002142
Linus Torvalds1da177e2005-04-16 15:20:36 -07002143e_inval:
2144 err = -EINVAL;
Eric Dumazetebc0ffa2010-10-05 10:41:36 +00002145 goto out;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002146
2147e_nobufs:
2148 err = -ENOBUFS;
Eric Dumazetebc0ffa2010-10-05 10:41:36 +00002149 goto out;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002150
2151martian_source:
Eric Dumazetb5f7e752010-06-02 12:05:27 +00002152 err = -EINVAL;
2153martian_source_keep_err:
Linus Torvalds1da177e2005-04-16 15:20:36 -07002154 ip_handle_martian_source(dev, in_dev, skb, daddr, saddr);
Eric Dumazetebc0ffa2010-10-05 10:41:36 +00002155 goto out;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002156}
2157
Eric Dumazet407eadd2010-05-10 11:32:55 +00002158int ip_route_input_common(struct sk_buff *skb, __be32 daddr, __be32 saddr,
David S. Millerc10237e2012-06-27 17:05:06 -07002159 u8 tos, struct net_device *dev, bool noref)
Linus Torvalds1da177e2005-04-16 15:20:36 -07002160{
Eric Dumazet95c96172012-04-15 05:58:06 +00002161 struct rtable *rth;
2162 unsigned int hash;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002163 int iif = dev->ifindex;
Denis V. Lunevb5921912008-01-22 23:50:25 -08002164 struct net *net;
Eric Dumazet96d36222010-06-02 19:21:31 +00002165 int res;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002166
YOSHIFUJI Hideakic346dca2008-03-25 21:47:49 +09002167 net = dev_net(dev);
Neil Horman1080d702008-10-27 12:28:25 -07002168
Eric Dumazet96d36222010-06-02 19:21:31 +00002169 rcu_read_lock();
2170
Neil Horman1080d702008-10-27 12:28:25 -07002171 if (!rt_caching(net))
2172 goto skip_cache;
2173
Linus Torvalds1da177e2005-04-16 15:20:36 -07002174 tos &= IPTOS_RT_MASK;
Denis V. Luneve84f84f2008-07-05 19:04:32 -07002175 hash = rt_hash(daddr, saddr, iif, rt_genid(net));
Linus Torvalds1da177e2005-04-16 15:20:36 -07002176
Linus Torvalds1da177e2005-04-16 15:20:36 -07002177 for (rth = rcu_dereference(rt_hash_table[hash].chain); rth;
Changli Gaod8d1f302010-06-10 23:31:35 -07002178 rth = rcu_dereference(rth->dst.rt_next)) {
David S. Miller5e2b61f2011-03-04 21:47:09 -08002179 if ((((__force u32)rth->rt_key_dst ^ (__force u32)daddr) |
2180 ((__force u32)rth->rt_key_src ^ (__force u32)saddr) |
Julian Anastasov97a80412011-08-09 04:01:16 +00002181 (rth->rt_route_iif ^ iif) |
David S. Miller475949d2011-05-03 19:45:15 -07002182 (rth->rt_key_tos ^ tos)) == 0 &&
David S. Miller5e2b61f2011-03-04 21:47:09 -08002183 rth->rt_mark == skb->mark &&
Changli Gaod8d1f302010-06-10 23:31:35 -07002184 net_eq(dev_net(rth->dst.dev), net) &&
Denis V. Luneve84f84f2008-07-05 19:04:32 -07002185 !rt_is_expired(rth)) {
Eric Dumazet407eadd2010-05-10 11:32:55 +00002186 if (noref) {
Changli Gaod8d1f302010-06-10 23:31:35 -07002187 dst_use_noref(&rth->dst, jiffies);
2188 skb_dst_set_noref(skb, &rth->dst);
Eric Dumazet407eadd2010-05-10 11:32:55 +00002189 } else {
Changli Gaod8d1f302010-06-10 23:31:35 -07002190 dst_use(&rth->dst, jiffies);
2191 skb_dst_set(skb, &rth->dst);
Eric Dumazet407eadd2010-05-10 11:32:55 +00002192 }
Linus Torvalds1da177e2005-04-16 15:20:36 -07002193 RT_CACHE_STAT_INC(in_hit);
2194 rcu_read_unlock();
Linus Torvalds1da177e2005-04-16 15:20:36 -07002195 return 0;
2196 }
2197 RT_CACHE_STAT_INC(in_hlist_search);
2198 }
Linus Torvalds1da177e2005-04-16 15:20:36 -07002199
Neil Horman1080d702008-10-27 12:28:25 -07002200skip_cache:
Linus Torvalds1da177e2005-04-16 15:20:36 -07002201 /* Multicast recognition logic is moved from route cache to here.
2202 The problem was that too many Ethernet cards have broken/missing
2203 hardware multicast filters :-( As result the host on multicasting
2204 network acquires a lot of useless route cache entries, sort of
2205 SDR messages from all the world. Now we try to get rid of them.
2206 Really, provided software IP multicast filter is organized
2207 reasonably (at least, hashed), it does not result in a slowdown
2208 comparing with route cache reject entries.
2209 Note, that multicast routers are not affected, because
2210 route cache entry is created eventually.
2211 */
Joe Perchesf97c1e02007-12-16 13:45:43 -08002212 if (ipv4_is_multicast(daddr)) {
Eric Dumazet96d36222010-06-02 19:21:31 +00002213 struct in_device *in_dev = __in_dev_get_rcu(dev);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002214
Eric Dumazet96d36222010-06-02 19:21:31 +00002215 if (in_dev) {
David S. Millerdbdd9a52011-03-10 16:34:38 -08002216 int our = ip_check_mc_rcu(in_dev, daddr, saddr,
2217 ip_hdr(skb)->protocol);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002218 if (our
2219#ifdef CONFIG_IP_MROUTE
Joe Perches9d4fb272009-11-23 10:41:23 -08002220 ||
2221 (!ipv4_is_local_multicast(daddr) &&
2222 IN_DEV_MFORWARD(in_dev))
Linus Torvalds1da177e2005-04-16 15:20:36 -07002223#endif
Joe Perches9d4fb272009-11-23 10:41:23 -08002224 ) {
Eric Dumazet96d36222010-06-02 19:21:31 +00002225 int res = ip_route_input_mc(skb, daddr, saddr,
2226 tos, dev, our);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002227 rcu_read_unlock();
Eric Dumazet96d36222010-06-02 19:21:31 +00002228 return res;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002229 }
2230 }
2231 rcu_read_unlock();
2232 return -EINVAL;
2233 }
David S. Millerc10237e2012-06-27 17:05:06 -07002234 res = ip_route_input_slow(skb, daddr, saddr, tos, dev);
Eric Dumazet96d36222010-06-02 19:21:31 +00002235 rcu_read_unlock();
2236 return res;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002237}
Eric Dumazet407eadd2010-05-10 11:32:55 +00002238EXPORT_SYMBOL(ip_route_input_common);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002239
Eric Dumazetebc0ffa2010-10-05 10:41:36 +00002240/* called with rcu_read_lock() */
David S. Miller982721f2011-02-16 21:44:24 -08002241static struct rtable *__mkroute_output(const struct fib_result *res,
David S. Miller68a5e3d2011-03-11 20:07:33 -05002242 const struct flowi4 *fl4,
David S. Miller813b3b52011-04-28 14:48:42 -07002243 __be32 orig_daddr, __be32 orig_saddr,
Julian Anastasovf61759e2011-12-02 11:39:42 +00002244 int orig_oif, __u8 orig_rtos,
2245 struct net_device *dev_out,
David S. Miller5ada5522011-02-17 15:29:00 -08002246 unsigned int flags)
Linus Torvalds1da177e2005-04-16 15:20:36 -07002247{
David S. Miller982721f2011-02-16 21:44:24 -08002248 struct fib_info *fi = res->fi;
David S. Miller5ada5522011-02-17 15:29:00 -08002249 struct in_device *in_dev;
David S. Miller982721f2011-02-16 21:44:24 -08002250 u16 type = res->type;
David S. Miller5ada5522011-02-17 15:29:00 -08002251 struct rtable *rth;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002252
Thomas Grafd0daebc32012-06-12 00:44:01 +00002253 in_dev = __in_dev_get_rcu(dev_out);
2254 if (!in_dev)
David S. Miller5ada5522011-02-17 15:29:00 -08002255 return ERR_PTR(-EINVAL);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002256
Thomas Grafd0daebc32012-06-12 00:44:01 +00002257 if (likely(!IN_DEV_ROUTE_LOCALNET(in_dev)))
2258 if (ipv4_is_loopback(fl4->saddr) && !(dev_out->flags & IFF_LOOPBACK))
2259 return ERR_PTR(-EINVAL);
2260
David S. Miller68a5e3d2011-03-11 20:07:33 -05002261 if (ipv4_is_lbcast(fl4->daddr))
David S. Miller982721f2011-02-16 21:44:24 -08002262 type = RTN_BROADCAST;
David S. Miller68a5e3d2011-03-11 20:07:33 -05002263 else if (ipv4_is_multicast(fl4->daddr))
David S. Miller982721f2011-02-16 21:44:24 -08002264 type = RTN_MULTICAST;
David S. Miller68a5e3d2011-03-11 20:07:33 -05002265 else if (ipv4_is_zeronet(fl4->daddr))
David S. Miller5ada5522011-02-17 15:29:00 -08002266 return ERR_PTR(-EINVAL);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002267
2268 if (dev_out->flags & IFF_LOOPBACK)
2269 flags |= RTCF_LOCAL;
2270
David S. Miller982721f2011-02-16 21:44:24 -08002271 if (type == RTN_BROADCAST) {
Linus Torvalds1da177e2005-04-16 15:20:36 -07002272 flags |= RTCF_BROADCAST | RTCF_LOCAL;
David S. Miller982721f2011-02-16 21:44:24 -08002273 fi = NULL;
2274 } else if (type == RTN_MULTICAST) {
Eric Dumazetdd28d1a2010-09-29 11:53:50 +00002275 flags |= RTCF_MULTICAST | RTCF_LOCAL;
David S. Miller813b3b52011-04-28 14:48:42 -07002276 if (!ip_check_mc_rcu(in_dev, fl4->daddr, fl4->saddr,
2277 fl4->flowi4_proto))
Linus Torvalds1da177e2005-04-16 15:20:36 -07002278 flags &= ~RTCF_LOCAL;
2279 /* If multicast route do not exist use
Eric Dumazetdd28d1a2010-09-29 11:53:50 +00002280 * default one, but do not gateway in this case.
2281 * Yes, it is hack.
Linus Torvalds1da177e2005-04-16 15:20:36 -07002282 */
David S. Miller982721f2011-02-16 21:44:24 -08002283 if (fi && res->prefixlen < 4)
2284 fi = NULL;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002285 }
2286
David S. Miller5c1e6aa2011-04-28 14:13:38 -07002287 rth = rt_dst_alloc(dev_out,
2288 IN_DEV_CONF_GET(in_dev, NOPOLICY),
David S. Miller0c4dcd52011-02-17 15:42:37 -08002289 IN_DEV_CONF_GET(in_dev, NOXFRM));
Dimitris Michailidis8391d072010-10-07 14:48:38 +00002290 if (!rth)
David S. Miller5ada5522011-02-17 15:29:00 -08002291 return ERR_PTR(-ENOBUFS);
Dimitris Michailidis8391d072010-10-07 14:48:38 +00002292
David S. Millercf911662011-04-28 14:31:47 -07002293 rth->dst.output = ip_output;
2294
David S. Miller813b3b52011-04-28 14:48:42 -07002295 rth->rt_key_dst = orig_daddr;
2296 rth->rt_key_src = orig_saddr;
David S. Millercf911662011-04-28 14:31:47 -07002297 rth->rt_genid = rt_genid(dev_net(dev_out));
2298 rth->rt_flags = flags;
2299 rth->rt_type = type;
Julian Anastasovf61759e2011-12-02 11:39:42 +00002300 rth->rt_key_tos = orig_rtos;
David S. Miller68a5e3d2011-03-11 20:07:33 -05002301 rth->rt_dst = fl4->daddr;
2302 rth->rt_src = fl4->saddr;
OGAWA Hirofumi1b86a582011-04-07 14:04:08 -07002303 rth->rt_route_iif = 0;
David S. Miller813b3b52011-04-28 14:48:42 -07002304 rth->rt_iif = orig_oif ? : dev_out->ifindex;
2305 rth->rt_oif = orig_oif;
2306 rth->rt_mark = fl4->flowi4_mark;
David S. Miller59436342012-07-10 06:58:42 -07002307 rth->rt_pmtu = 0;
David S. Miller68a5e3d2011-03-11 20:07:33 -05002308 rth->rt_gateway = fl4->daddr;
David S. Millercf911662011-04-28 14:31:47 -07002309 rth->fi = NULL;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002310
2311 RT_CACHE_STAT_INC(out_slow_tot);
2312
David S. Miller41347dc2012-06-28 04:05:27 -07002313 if (flags & RTCF_LOCAL)
Changli Gaod8d1f302010-06-10 23:31:35 -07002314 rth->dst.input = ip_local_deliver;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002315 if (flags & (RTCF_BROADCAST | RTCF_MULTICAST)) {
YOSHIFUJI Hideakie905a9e2007-02-09 23:24:47 +09002316 if (flags & RTCF_LOCAL &&
Linus Torvalds1da177e2005-04-16 15:20:36 -07002317 !(dev_out->flags & IFF_LOOPBACK)) {
Changli Gaod8d1f302010-06-10 23:31:35 -07002318 rth->dst.output = ip_mc_output;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002319 RT_CACHE_STAT_INC(out_slow_mc);
2320 }
2321#ifdef CONFIG_IP_MROUTE
David S. Miller982721f2011-02-16 21:44:24 -08002322 if (type == RTN_MULTICAST) {
Linus Torvalds1da177e2005-04-16 15:20:36 -07002323 if (IN_DEV_MFORWARD(in_dev) &&
David S. Miller813b3b52011-04-28 14:48:42 -07002324 !ipv4_is_local_multicast(fl4->daddr)) {
Changli Gaod8d1f302010-06-10 23:31:35 -07002325 rth->dst.input = ip_mr_input;
2326 rth->dst.output = ip_mc_output;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002327 }
2328 }
2329#endif
2330 }
2331
David S. Miller813b3b52011-04-28 14:48:42 -07002332 rt_set_nexthop(rth, fl4, res, fi, type, 0);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002333
Eric Dumazet7586ece2012-06-20 05:02:19 +00002334 if (fl4->flowi4_flags & FLOWI_FLAG_RT_NOCACHE)
2335 rth->dst.flags |= DST_NOCACHE;
2336
David S. Miller5ada5522011-02-17 15:29:00 -08002337 return rth;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002338}
2339
Linus Torvalds1da177e2005-04-16 15:20:36 -07002340/*
2341 * Major route resolver routine.
Eric Dumazet0197aa32010-09-30 03:33:58 +00002342 * called with rcu_read_lock();
Linus Torvalds1da177e2005-04-16 15:20:36 -07002343 */
2344
David S. Miller813b3b52011-04-28 14:48:42 -07002345static struct rtable *ip_route_output_slow(struct net *net, struct flowi4 *fl4)
Linus Torvalds1da177e2005-04-16 15:20:36 -07002346{
Linus Torvalds1da177e2005-04-16 15:20:36 -07002347 struct net_device *dev_out = NULL;
Julian Anastasovf61759e2011-12-02 11:39:42 +00002348 __u8 tos = RT_FL_TOS(fl4);
David S. Miller813b3b52011-04-28 14:48:42 -07002349 unsigned int flags = 0;
2350 struct fib_result res;
David S. Miller5ada5522011-02-17 15:29:00 -08002351 struct rtable *rth;
David S. Miller813b3b52011-04-28 14:48:42 -07002352 __be32 orig_daddr;
2353 __be32 orig_saddr;
2354 int orig_oif;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002355
David S. Miller85b91b02012-07-13 08:21:29 -07002356 res.tclassid = 0;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002357 res.fi = NULL;
David S. Miller8b96d222012-06-11 02:01:56 -07002358 res.table = NULL;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002359
David S. Miller813b3b52011-04-28 14:48:42 -07002360 orig_daddr = fl4->daddr;
2361 orig_saddr = fl4->saddr;
2362 orig_oif = fl4->flowi4_oif;
2363
2364 fl4->flowi4_iif = net->loopback_dev->ifindex;
2365 fl4->flowi4_tos = tos & IPTOS_RT_MASK;
2366 fl4->flowi4_scope = ((tos & RTO_ONLINK) ?
2367 RT_SCOPE_LINK : RT_SCOPE_UNIVERSE);
David S. Miller44713b62011-03-04 21:24:47 -08002368
David S. Miller010c2702011-02-17 15:37:09 -08002369 rcu_read_lock();
David S. Miller813b3b52011-04-28 14:48:42 -07002370 if (fl4->saddr) {
David S. Millerb23dd4f2011-03-02 14:31:35 -08002371 rth = ERR_PTR(-EINVAL);
David S. Miller813b3b52011-04-28 14:48:42 -07002372 if (ipv4_is_multicast(fl4->saddr) ||
2373 ipv4_is_lbcast(fl4->saddr) ||
2374 ipv4_is_zeronet(fl4->saddr))
Linus Torvalds1da177e2005-04-16 15:20:36 -07002375 goto out;
2376
Linus Torvalds1da177e2005-04-16 15:20:36 -07002377 /* I removed check for oif == dev_out->oif here.
2378 It was wrong for two reasons:
Denis V. Lunev1ab35272008-01-22 22:04:30 -08002379 1. ip_dev_find(net, saddr) can return wrong iface, if saddr
2380 is assigned to multiple interfaces.
Linus Torvalds1da177e2005-04-16 15:20:36 -07002381 2. Moreover, we are allowed to send packets with saddr
2382 of another iface. --ANK
2383 */
2384
David S. Miller813b3b52011-04-28 14:48:42 -07002385 if (fl4->flowi4_oif == 0 &&
2386 (ipv4_is_multicast(fl4->daddr) ||
2387 ipv4_is_lbcast(fl4->daddr))) {
Julian Anastasova210d012008-10-01 07:28:28 -07002388 /* It is equivalent to inet_addr_type(saddr) == RTN_LOCAL */
David S. Miller813b3b52011-04-28 14:48:42 -07002389 dev_out = __ip_dev_find(net, fl4->saddr, false);
Julian Anastasova210d012008-10-01 07:28:28 -07002390 if (dev_out == NULL)
2391 goto out;
2392
Linus Torvalds1da177e2005-04-16 15:20:36 -07002393 /* Special hack: user can direct multicasts
2394 and limited broadcast via necessary interface
2395 without fiddling with IP_MULTICAST_IF or IP_PKTINFO.
2396 This hack is not just for fun, it allows
2397 vic,vat and friends to work.
2398 They bind socket to loopback, set ttl to zero
2399 and expect that it will work.
2400 From the viewpoint of routing cache they are broken,
2401 because we are not allowed to build multicast path
2402 with loopback source addr (look, routing cache
2403 cannot know, that ttl is zero, so that packet
2404 will not leave this host and route is valid).
2405 Luckily, this hack is good workaround.
2406 */
2407
David S. Miller813b3b52011-04-28 14:48:42 -07002408 fl4->flowi4_oif = dev_out->ifindex;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002409 goto make_route;
2410 }
Julian Anastasova210d012008-10-01 07:28:28 -07002411
David S. Miller813b3b52011-04-28 14:48:42 -07002412 if (!(fl4->flowi4_flags & FLOWI_FLAG_ANYSRC)) {
Julian Anastasova210d012008-10-01 07:28:28 -07002413 /* It is equivalent to inet_addr_type(saddr) == RTN_LOCAL */
David S. Miller813b3b52011-04-28 14:48:42 -07002414 if (!__ip_dev_find(net, fl4->saddr, false))
Julian Anastasova210d012008-10-01 07:28:28 -07002415 goto out;
Julian Anastasova210d012008-10-01 07:28:28 -07002416 }
Linus Torvalds1da177e2005-04-16 15:20:36 -07002417 }
2418
2419
David S. Miller813b3b52011-04-28 14:48:42 -07002420 if (fl4->flowi4_oif) {
2421 dev_out = dev_get_by_index_rcu(net, fl4->flowi4_oif);
David S. Millerb23dd4f2011-03-02 14:31:35 -08002422 rth = ERR_PTR(-ENODEV);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002423 if (dev_out == NULL)
2424 goto out;
Herbert Xue5ed6392005-10-03 14:35:55 -07002425
2426 /* RACE: Check return value of inet_select_addr instead. */
Eric Dumazetfc75fc82010-12-22 04:39:39 +00002427 if (!(dev_out->flags & IFF_UP) || !__in_dev_get_rcu(dev_out)) {
David S. Millerb23dd4f2011-03-02 14:31:35 -08002428 rth = ERR_PTR(-ENETUNREACH);
Eric Dumazetfc75fc82010-12-22 04:39:39 +00002429 goto out;
2430 }
David S. Miller813b3b52011-04-28 14:48:42 -07002431 if (ipv4_is_local_multicast(fl4->daddr) ||
2432 ipv4_is_lbcast(fl4->daddr)) {
2433 if (!fl4->saddr)
2434 fl4->saddr = inet_select_addr(dev_out, 0,
2435 RT_SCOPE_LINK);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002436 goto make_route;
2437 }
David S. Miller813b3b52011-04-28 14:48:42 -07002438 if (fl4->saddr) {
2439 if (ipv4_is_multicast(fl4->daddr))
2440 fl4->saddr = inet_select_addr(dev_out, 0,
2441 fl4->flowi4_scope);
2442 else if (!fl4->daddr)
2443 fl4->saddr = inet_select_addr(dev_out, 0,
2444 RT_SCOPE_HOST);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002445 }
2446 }
2447
David S. Miller813b3b52011-04-28 14:48:42 -07002448 if (!fl4->daddr) {
2449 fl4->daddr = fl4->saddr;
2450 if (!fl4->daddr)
2451 fl4->daddr = fl4->saddr = htonl(INADDR_LOOPBACK);
Denis V. Lunevb40afd02008-01-22 22:06:19 -08002452 dev_out = net->loopback_dev;
David S. Miller813b3b52011-04-28 14:48:42 -07002453 fl4->flowi4_oif = net->loopback_dev->ifindex;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002454 res.type = RTN_LOCAL;
2455 flags |= RTCF_LOCAL;
2456 goto make_route;
2457 }
2458
David S. Miller813b3b52011-04-28 14:48:42 -07002459 if (fib_lookup(net, fl4, &res)) {
Linus Torvalds1da177e2005-04-16 15:20:36 -07002460 res.fi = NULL;
David S. Miller8b96d222012-06-11 02:01:56 -07002461 res.table = NULL;
David S. Miller813b3b52011-04-28 14:48:42 -07002462 if (fl4->flowi4_oif) {
Linus Torvalds1da177e2005-04-16 15:20:36 -07002463 /* Apparently, routing tables are wrong. Assume,
2464 that the destination is on link.
2465
2466 WHY? DW.
2467 Because we are allowed to send to iface
2468 even if it has NO routes and NO assigned
2469 addresses. When oif is specified, routing
2470 tables are looked up with only one purpose:
2471 to catch if destination is gatewayed, rather than
2472 direct. Moreover, if MSG_DONTROUTE is set,
2473 we send packet, ignoring both routing tables
2474 and ifaddr state. --ANK
2475
2476
2477 We could make it even if oif is unknown,
2478 likely IPv6, but we do not.
2479 */
2480
David S. Miller813b3b52011-04-28 14:48:42 -07002481 if (fl4->saddr == 0)
2482 fl4->saddr = inet_select_addr(dev_out, 0,
2483 RT_SCOPE_LINK);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002484 res.type = RTN_UNICAST;
2485 goto make_route;
2486 }
David S. Millerb23dd4f2011-03-02 14:31:35 -08002487 rth = ERR_PTR(-ENETUNREACH);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002488 goto out;
2489 }
Linus Torvalds1da177e2005-04-16 15:20:36 -07002490
2491 if (res.type == RTN_LOCAL) {
David S. Miller813b3b52011-04-28 14:48:42 -07002492 if (!fl4->saddr) {
Joel Sing9fc3bbb2011-01-03 20:24:20 +00002493 if (res.fi->fib_prefsrc)
David S. Miller813b3b52011-04-28 14:48:42 -07002494 fl4->saddr = res.fi->fib_prefsrc;
Joel Sing9fc3bbb2011-01-03 20:24:20 +00002495 else
David S. Miller813b3b52011-04-28 14:48:42 -07002496 fl4->saddr = fl4->daddr;
Joel Sing9fc3bbb2011-01-03 20:24:20 +00002497 }
Denis V. Lunevb40afd02008-01-22 22:06:19 -08002498 dev_out = net->loopback_dev;
David S. Miller813b3b52011-04-28 14:48:42 -07002499 fl4->flowi4_oif = dev_out->ifindex;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002500 res.fi = NULL;
2501 flags |= RTCF_LOCAL;
2502 goto make_route;
2503 }
2504
2505#ifdef CONFIG_IP_ROUTE_MULTIPATH
David S. Miller813b3b52011-04-28 14:48:42 -07002506 if (res.fi->fib_nhs > 1 && fl4->flowi4_oif == 0)
David S. Miller1b7fe5932011-03-10 17:01:16 -08002507 fib_select_multipath(&res);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002508 else
2509#endif
David S. Miller21d8c492011-04-14 14:49:37 -07002510 if (!res.prefixlen &&
2511 res.table->tb_num_default > 1 &&
David S. Miller813b3b52011-04-28 14:48:42 -07002512 res.type == RTN_UNICAST && !fl4->flowi4_oif)
David S. Miller0c838ff2011-01-31 16:16:50 -08002513 fib_select_default(&res);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002514
David S. Miller813b3b52011-04-28 14:48:42 -07002515 if (!fl4->saddr)
2516 fl4->saddr = FIB_RES_PREFSRC(net, res);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002517
Linus Torvalds1da177e2005-04-16 15:20:36 -07002518 dev_out = FIB_RES_DEV(res);
David S. Miller813b3b52011-04-28 14:48:42 -07002519 fl4->flowi4_oif = dev_out->ifindex;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002520
2521
2522make_route:
David S. Miller813b3b52011-04-28 14:48:42 -07002523 rth = __mkroute_output(&res, fl4, orig_daddr, orig_saddr, orig_oif,
Julian Anastasovf61759e2011-12-02 11:39:42 +00002524 tos, dev_out, flags);
David S. Millerb23dd4f2011-03-02 14:31:35 -08002525 if (!IS_ERR(rth)) {
David S. Miller5ada5522011-02-17 15:29:00 -08002526 unsigned int hash;
2527
David S. Miller813b3b52011-04-28 14:48:42 -07002528 hash = rt_hash(orig_daddr, orig_saddr, orig_oif,
David S. Miller5ada5522011-02-17 15:29:00 -08002529 rt_genid(dev_net(dev_out)));
David S. Miller813b3b52011-04-28 14:48:42 -07002530 rth = rt_intern_hash(hash, rth, NULL, orig_oif);
David S. Miller5ada5522011-02-17 15:29:00 -08002531 }
Linus Torvalds1da177e2005-04-16 15:20:36 -07002532
David S. Miller010c2702011-02-17 15:37:09 -08002533out:
2534 rcu_read_unlock();
David S. Millerb23dd4f2011-03-02 14:31:35 -08002535 return rth;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002536}
2537
David S. Miller813b3b52011-04-28 14:48:42 -07002538struct rtable *__ip_route_output_key(struct net *net, struct flowi4 *flp4)
Linus Torvalds1da177e2005-04-16 15:20:36 -07002539{
Linus Torvalds1da177e2005-04-16 15:20:36 -07002540 struct rtable *rth;
David S. Miller010c2702011-02-17 15:37:09 -08002541 unsigned int hash;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002542
Neil Horman1080d702008-10-27 12:28:25 -07002543 if (!rt_caching(net))
2544 goto slow_output;
2545
David S. Miller9d6ec932011-03-12 01:12:47 -05002546 hash = rt_hash(flp4->daddr, flp4->saddr, flp4->flowi4_oif, rt_genid(net));
Linus Torvalds1da177e2005-04-16 15:20:36 -07002547
2548 rcu_read_lock_bh();
Paul E. McKenneya898def2010-02-22 17:04:49 -08002549 for (rth = rcu_dereference_bh(rt_hash_table[hash].chain); rth;
Changli Gaod8d1f302010-06-10 23:31:35 -07002550 rth = rcu_dereference_bh(rth->dst.rt_next)) {
David S. Miller9d6ec932011-03-12 01:12:47 -05002551 if (rth->rt_key_dst == flp4->daddr &&
2552 rth->rt_key_src == flp4->saddr &&
David S. Millerc7537962010-11-11 17:07:48 -08002553 rt_is_output_route(rth) &&
David S. Miller9d6ec932011-03-12 01:12:47 -05002554 rth->rt_oif == flp4->flowi4_oif &&
2555 rth->rt_mark == flp4->flowi4_mark &&
David S. Miller475949d2011-05-03 19:45:15 -07002556 !((rth->rt_key_tos ^ flp4->flowi4_tos) &
Denis V. Lunevb5921912008-01-22 23:50:25 -08002557 (IPTOS_RT_MASK | RTO_ONLINK)) &&
Changli Gaod8d1f302010-06-10 23:31:35 -07002558 net_eq(dev_net(rth->dst.dev), net) &&
Denis V. Luneve84f84f2008-07-05 19:04:32 -07002559 !rt_is_expired(rth)) {
Changli Gaod8d1f302010-06-10 23:31:35 -07002560 dst_use(&rth->dst, jiffies);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002561 RT_CACHE_STAT_INC(out_hit);
2562 rcu_read_unlock_bh();
David S. Miller56157872011-05-02 14:37:45 -07002563 if (!flp4->saddr)
2564 flp4->saddr = rth->rt_src;
2565 if (!flp4->daddr)
2566 flp4->daddr = rth->rt_dst;
David S. Millerb23dd4f2011-03-02 14:31:35 -08002567 return rth;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002568 }
2569 RT_CACHE_STAT_INC(out_hlist_search);
2570 }
2571 rcu_read_unlock_bh();
2572
Neil Horman1080d702008-10-27 12:28:25 -07002573slow_output:
David S. Miller9d6ec932011-03-12 01:12:47 -05002574 return ip_route_output_slow(net, flp4);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002575}
Arnaldo Carvalho de Melod8c97a92005-08-09 20:12:12 -07002576EXPORT_SYMBOL_GPL(__ip_route_output_key);
2577
Jianzhao Wangae2688d2010-09-08 14:35:43 -07002578static struct dst_entry *ipv4_blackhole_dst_check(struct dst_entry *dst, u32 cookie)
2579{
2580 return NULL;
2581}
2582
Steffen Klassertebb762f2011-11-23 02:12:51 +00002583static unsigned int ipv4_blackhole_mtu(const struct dst_entry *dst)
Roland Dreierec831ea2011-01-31 13:16:00 -08002584{
Steffen Klassert618f9bc2011-11-23 02:13:31 +00002585 unsigned int mtu = dst_metric_raw(dst, RTAX_MTU);
2586
2587 return mtu ? : dst->dev->mtu;
Roland Dreierec831ea2011-01-31 13:16:00 -08002588}
2589
David S. Miller14e50e52007-05-24 18:17:54 -07002590static void ipv4_rt_blackhole_update_pmtu(struct dst_entry *dst, u32 mtu)
2591{
2592}
2593
David S. Millerb587ee32012-07-12 00:39:24 -07002594static void ipv4_rt_blackhole_redirect(struct dst_entry *dst, struct sk_buff *skb)
2595{
2596}
2597
Held Bernhard0972ddb2011-04-24 22:07:32 +00002598static u32 *ipv4_rt_blackhole_cow_metrics(struct dst_entry *dst,
2599 unsigned long old)
2600{
2601 return NULL;
2602}
2603
David S. Miller14e50e52007-05-24 18:17:54 -07002604static struct dst_ops ipv4_dst_blackhole_ops = {
2605 .family = AF_INET,
Harvey Harrison09640e62009-02-01 00:45:17 -08002606 .protocol = cpu_to_be16(ETH_P_IP),
David S. Miller14e50e52007-05-24 18:17:54 -07002607 .destroy = ipv4_dst_destroy,
Jianzhao Wangae2688d2010-09-08 14:35:43 -07002608 .check = ipv4_blackhole_dst_check,
Steffen Klassertebb762f2011-11-23 02:12:51 +00002609 .mtu = ipv4_blackhole_mtu,
Eric Dumazet214f45c2011-02-18 11:39:01 -08002610 .default_advmss = ipv4_default_advmss,
David S. Miller14e50e52007-05-24 18:17:54 -07002611 .update_pmtu = ipv4_rt_blackhole_update_pmtu,
David S. Millerb587ee32012-07-12 00:39:24 -07002612 .redirect = ipv4_rt_blackhole_redirect,
Held Bernhard0972ddb2011-04-24 22:07:32 +00002613 .cow_metrics = ipv4_rt_blackhole_cow_metrics,
David S. Millerd3aaeb32011-07-18 00:40:17 -07002614 .neigh_lookup = ipv4_neigh_lookup,
David S. Miller14e50e52007-05-24 18:17:54 -07002615};
2616
David S. Miller2774c132011-03-01 14:59:04 -08002617struct dst_entry *ipv4_blackhole_route(struct net *net, struct dst_entry *dst_orig)
David S. Miller14e50e52007-05-24 18:17:54 -07002618{
David S. Miller5c1e6aa2011-04-28 14:13:38 -07002619 struct rtable *rt = dst_alloc(&ipv4_dst_blackhole_ops, NULL, 1, 0, 0);
David S. Miller2774c132011-03-01 14:59:04 -08002620 struct rtable *ort = (struct rtable *) dst_orig;
David S. Miller14e50e52007-05-24 18:17:54 -07002621
2622 if (rt) {
Changli Gaod8d1f302010-06-10 23:31:35 -07002623 struct dst_entry *new = &rt->dst;
David S. Miller14e50e52007-05-24 18:17:54 -07002624
David S. Miller14e50e52007-05-24 18:17:54 -07002625 new->__use = 1;
Herbert Xu352e5122007-11-13 21:34:06 -08002626 new->input = dst_discard;
2627 new->output = dst_discard;
David S. Miller14e50e52007-05-24 18:17:54 -07002628
Changli Gaod8d1f302010-06-10 23:31:35 -07002629 new->dev = ort->dst.dev;
David S. Miller14e50e52007-05-24 18:17:54 -07002630 if (new->dev)
2631 dev_hold(new->dev);
2632
David S. Miller5e2b61f2011-03-04 21:47:09 -08002633 rt->rt_key_dst = ort->rt_key_dst;
2634 rt->rt_key_src = ort->rt_key_src;
David S. Miller475949d2011-05-03 19:45:15 -07002635 rt->rt_key_tos = ort->rt_key_tos;
OGAWA Hirofumi1b86a582011-04-07 14:04:08 -07002636 rt->rt_route_iif = ort->rt_route_iif;
David S. Miller5e2b61f2011-03-04 21:47:09 -08002637 rt->rt_iif = ort->rt_iif;
2638 rt->rt_oif = ort->rt_oif;
2639 rt->rt_mark = ort->rt_mark;
David S. Miller59436342012-07-10 06:58:42 -07002640 rt->rt_pmtu = ort->rt_pmtu;
David S. Miller14e50e52007-05-24 18:17:54 -07002641
Denis V. Luneve84f84f2008-07-05 19:04:32 -07002642 rt->rt_genid = rt_genid(net);
David S. Miller14e50e52007-05-24 18:17:54 -07002643 rt->rt_flags = ort->rt_flags;
2644 rt->rt_type = ort->rt_type;
2645 rt->rt_dst = ort->rt_dst;
2646 rt->rt_src = ort->rt_src;
David S. Miller14e50e52007-05-24 18:17:54 -07002647 rt->rt_gateway = ort->rt_gateway;
David S. Miller62fa8a82011-01-26 20:51:05 -08002648 rt->fi = ort->fi;
2649 if (rt->fi)
2650 atomic_inc(&rt->fi->fib_clntref);
David S. Miller14e50e52007-05-24 18:17:54 -07002651
2652 dst_free(new);
2653 }
2654
David S. Miller2774c132011-03-01 14:59:04 -08002655 dst_release(dst_orig);
2656
2657 return rt ? &rt->dst : ERR_PTR(-ENOMEM);
David S. Miller14e50e52007-05-24 18:17:54 -07002658}
2659
David S. Miller9d6ec932011-03-12 01:12:47 -05002660struct rtable *ip_route_output_flow(struct net *net, struct flowi4 *flp4,
David S. Millerb23dd4f2011-03-02 14:31:35 -08002661 struct sock *sk)
Linus Torvalds1da177e2005-04-16 15:20:36 -07002662{
David S. Miller9d6ec932011-03-12 01:12:47 -05002663 struct rtable *rt = __ip_route_output_key(net, flp4);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002664
David S. Millerb23dd4f2011-03-02 14:31:35 -08002665 if (IS_ERR(rt))
2666 return rt;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002667
David S. Miller56157872011-05-02 14:37:45 -07002668 if (flp4->flowi4_proto)
David S. Miller9d6ec932011-03-12 01:12:47 -05002669 rt = (struct rtable *) xfrm_lookup(net, &rt->dst,
2670 flowi4_to_flowi(flp4),
2671 sk, 0);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002672
David S. Millerb23dd4f2011-03-02 14:31:35 -08002673 return rt;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002674}
Arnaldo Carvalho de Melod8c97a92005-08-09 20:12:12 -07002675EXPORT_SYMBOL_GPL(ip_route_output_flow);
2676
Benjamin Thery4feb88e2009-01-22 04:56:23 +00002677static int rt_fill_info(struct net *net,
2678 struct sk_buff *skb, u32 pid, u32 seq, int event,
Jamal Hadi Salimb6544c02005-06-18 22:54:12 -07002679 int nowait, unsigned int flags)
Linus Torvalds1da177e2005-04-16 15:20:36 -07002680{
Eric Dumazet511c3f92009-06-02 05:14:27 +00002681 struct rtable *rt = skb_rtable(skb);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002682 struct rtmsg *r;
Thomas Grafbe403ea2006-08-17 18:15:17 -07002683 struct nlmsghdr *nlh;
Steffen Klassert2bc8ca42011-10-11 01:12:02 +00002684 unsigned long expires = 0;
David S. Millerf1850712012-07-10 07:26:01 -07002685 u32 error;
Thomas Grafbe403ea2006-08-17 18:15:17 -07002686
2687 nlh = nlmsg_put(skb, pid, seq, event, sizeof(*r), flags);
2688 if (nlh == NULL)
Patrick McHardy26932562007-01-31 23:16:40 -08002689 return -EMSGSIZE;
Thomas Grafbe403ea2006-08-17 18:15:17 -07002690
2691 r = nlmsg_data(nlh);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002692 r->rtm_family = AF_INET;
2693 r->rtm_dst_len = 32;
2694 r->rtm_src_len = 0;
David S. Miller475949d2011-05-03 19:45:15 -07002695 r->rtm_tos = rt->rt_key_tos;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002696 r->rtm_table = RT_TABLE_MAIN;
David S. Millerf3756b72012-04-01 20:39:02 -04002697 if (nla_put_u32(skb, RTA_TABLE, RT_TABLE_MAIN))
2698 goto nla_put_failure;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002699 r->rtm_type = rt->rt_type;
2700 r->rtm_scope = RT_SCOPE_UNIVERSE;
2701 r->rtm_protocol = RTPROT_UNSPEC;
2702 r->rtm_flags = (rt->rt_flags & ~0xFFFF) | RTM_F_CLONED;
2703 if (rt->rt_flags & RTCF_NOTIFY)
2704 r->rtm_flags |= RTM_F_NOTIFY;
Thomas Grafbe403ea2006-08-17 18:15:17 -07002705
David S. Millerf3756b72012-04-01 20:39:02 -04002706 if (nla_put_be32(skb, RTA_DST, rt->rt_dst))
2707 goto nla_put_failure;
David S. Miller5e2b61f2011-03-04 21:47:09 -08002708 if (rt->rt_key_src) {
Linus Torvalds1da177e2005-04-16 15:20:36 -07002709 r->rtm_src_len = 32;
David S. Millerf3756b72012-04-01 20:39:02 -04002710 if (nla_put_be32(skb, RTA_SRC, rt->rt_key_src))
2711 goto nla_put_failure;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002712 }
David S. Millerf3756b72012-04-01 20:39:02 -04002713 if (rt->dst.dev &&
2714 nla_put_u32(skb, RTA_OIF, rt->dst.dev->ifindex))
2715 goto nla_put_failure;
Patrick McHardyc7066f72011-01-14 13:36:42 +01002716#ifdef CONFIG_IP_ROUTE_CLASSID
David S. Millerf3756b72012-04-01 20:39:02 -04002717 if (rt->dst.tclassid &&
2718 nla_put_u32(skb, RTA_FLOW, rt->dst.tclassid))
2719 goto nla_put_failure;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002720#endif
David S. Miller41347dc2012-06-28 04:05:27 -07002721 if (!rt_is_input_route(rt) &&
2722 rt->rt_src != rt->rt_key_src) {
David S. Millerf3756b72012-04-01 20:39:02 -04002723 if (nla_put_be32(skb, RTA_PREFSRC, rt->rt_src))
2724 goto nla_put_failure;
2725 }
2726 if (rt->rt_dst != rt->rt_gateway &&
2727 nla_put_be32(skb, RTA_GATEWAY, rt->rt_gateway))
2728 goto nla_put_failure;
Thomas Grafbe403ea2006-08-17 18:15:17 -07002729
David S. Millerdefb3512010-12-08 21:16:57 -08002730 if (rtnetlink_put_metrics(skb, dst_metrics_ptr(&rt->dst)) < 0)
Thomas Grafbe403ea2006-08-17 18:15:17 -07002731 goto nla_put_failure;
2732
David S. Millerf3756b72012-04-01 20:39:02 -04002733 if (rt->rt_mark &&
2734 nla_put_be32(skb, RTA_MARK, rt->rt_mark))
2735 goto nla_put_failure;
Eric Dumazet963bfee2010-07-20 22:03:14 +00002736
Changli Gaod8d1f302010-06-10 23:31:35 -07002737 error = rt->dst.error;
David S. Miller59436342012-07-10 06:58:42 -07002738 expires = rt->dst.expires;
2739 if (expires) {
2740 if (time_before(jiffies, expires))
2741 expires -= jiffies;
2742 else
2743 expires = 0;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002744 }
Thomas Grafbe403ea2006-08-17 18:15:17 -07002745
David S. Millerc7537962010-11-11 17:07:48 -08002746 if (rt_is_input_route(rt)) {
Linus Torvalds1da177e2005-04-16 15:20:36 -07002747#ifdef CONFIG_IP_MROUTE
Al Viroe4485152006-09-26 22:15:01 -07002748 __be32 dst = rt->rt_dst;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002749
Joe Perchesf97c1e02007-12-16 13:45:43 -08002750 if (ipv4_is_multicast(dst) && !ipv4_is_local_multicast(dst) &&
Benjamin Thery4feb88e2009-01-22 04:56:23 +00002751 IPV4_DEVCONF_ALL(net, MC_FORWARDING)) {
David S. Miller9a1b9492011-05-04 12:18:54 -07002752 int err = ipmr_get_route(net, skb,
2753 rt->rt_src, rt->rt_dst,
2754 r, nowait);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002755 if (err <= 0) {
2756 if (!nowait) {
2757 if (err == 0)
2758 return 0;
Thomas Grafbe403ea2006-08-17 18:15:17 -07002759 goto nla_put_failure;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002760 } else {
2761 if (err == -EMSGSIZE)
Thomas Grafbe403ea2006-08-17 18:15:17 -07002762 goto nla_put_failure;
Thomas Grafe3703b32006-11-27 09:27:07 -08002763 error = err;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002764 }
2765 }
2766 } else
2767#endif
David S. Millerf3756b72012-04-01 20:39:02 -04002768 if (nla_put_u32(skb, RTA_IIF, rt->rt_iif))
2769 goto nla_put_failure;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002770 }
2771
David S. Millerf1850712012-07-10 07:26:01 -07002772 if (rtnl_put_cacheinfo(skb, &rt->dst, 0, expires, error) < 0)
Thomas Grafe3703b32006-11-27 09:27:07 -08002773 goto nla_put_failure;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002774
Thomas Grafbe403ea2006-08-17 18:15:17 -07002775 return nlmsg_end(skb, nlh);
2776
2777nla_put_failure:
Patrick McHardy26932562007-01-31 23:16:40 -08002778 nlmsg_cancel(skb, nlh);
2779 return -EMSGSIZE;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002780}
2781
Daniel Baluta5e73ea12012-04-15 01:34:41 +00002782static int inet_rtm_getroute(struct sk_buff *in_skb, struct nlmsghdr *nlh, void *arg)
Linus Torvalds1da177e2005-04-16 15:20:36 -07002783{
YOSHIFUJI Hideaki3b1e0a62008-03-26 02:26:21 +09002784 struct net *net = sock_net(in_skb->sk);
Thomas Grafd889ce32006-08-17 18:15:44 -07002785 struct rtmsg *rtm;
2786 struct nlattr *tb[RTA_MAX+1];
Linus Torvalds1da177e2005-04-16 15:20:36 -07002787 struct rtable *rt = NULL;
Al Viro9e12bb22006-09-26 21:25:20 -07002788 __be32 dst = 0;
2789 __be32 src = 0;
2790 u32 iif;
Thomas Grafd889ce32006-08-17 18:15:44 -07002791 int err;
Eric Dumazet963bfee2010-07-20 22:03:14 +00002792 int mark;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002793 struct sk_buff *skb;
2794
Thomas Grafd889ce32006-08-17 18:15:44 -07002795 err = nlmsg_parse(nlh, sizeof(*rtm), tb, RTA_MAX, rtm_ipv4_policy);
2796 if (err < 0)
2797 goto errout;
2798
2799 rtm = nlmsg_data(nlh);
2800
Linus Torvalds1da177e2005-04-16 15:20:36 -07002801 skb = alloc_skb(NLMSG_GOODSIZE, GFP_KERNEL);
Thomas Grafd889ce32006-08-17 18:15:44 -07002802 if (skb == NULL) {
2803 err = -ENOBUFS;
2804 goto errout;
2805 }
Linus Torvalds1da177e2005-04-16 15:20:36 -07002806
2807 /* Reserve room for dummy headers, this skb can pass
2808 through good chunk of routing engine.
2809 */
Arnaldo Carvalho de Melo459a98e2007-03-19 15:30:44 -07002810 skb_reset_mac_header(skb);
Arnaldo Carvalho de Meloc1d2bbe2007-04-10 20:45:18 -07002811 skb_reset_network_header(skb);
Stephen Hemmingerd2c962b2006-04-17 17:27:11 -07002812
2813 /* Bugfix: need to give ip_route_input enough of an IP header to not gag. */
Arnaldo Carvalho de Meloeddc9ec2007-04-20 22:47:35 -07002814 ip_hdr(skb)->protocol = IPPROTO_ICMP;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002815 skb_reserve(skb, MAX_HEADER + sizeof(struct iphdr));
2816
Al Viro17fb2c62006-09-26 22:15:25 -07002817 src = tb[RTA_SRC] ? nla_get_be32(tb[RTA_SRC]) : 0;
2818 dst = tb[RTA_DST] ? nla_get_be32(tb[RTA_DST]) : 0;
Thomas Grafd889ce32006-08-17 18:15:44 -07002819 iif = tb[RTA_IIF] ? nla_get_u32(tb[RTA_IIF]) : 0;
Eric Dumazet963bfee2010-07-20 22:03:14 +00002820 mark = tb[RTA_MARK] ? nla_get_u32(tb[RTA_MARK]) : 0;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002821
2822 if (iif) {
Thomas Grafd889ce32006-08-17 18:15:44 -07002823 struct net_device *dev;
2824
Denis V. Lunev19375042008-02-28 20:52:04 -08002825 dev = __dev_get_by_index(net, iif);
Thomas Grafd889ce32006-08-17 18:15:44 -07002826 if (dev == NULL) {
2827 err = -ENODEV;
2828 goto errout_free;
2829 }
2830
Linus Torvalds1da177e2005-04-16 15:20:36 -07002831 skb->protocol = htons(ETH_P_IP);
2832 skb->dev = dev;
Eric Dumazet963bfee2010-07-20 22:03:14 +00002833 skb->mark = mark;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002834 local_bh_disable();
2835 err = ip_route_input(skb, dst, src, rtm->rtm_tos, dev);
2836 local_bh_enable();
Thomas Grafd889ce32006-08-17 18:15:44 -07002837
Eric Dumazet511c3f92009-06-02 05:14:27 +00002838 rt = skb_rtable(skb);
Changli Gaod8d1f302010-06-10 23:31:35 -07002839 if (err == 0 && rt->dst.error)
2840 err = -rt->dst.error;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002841 } else {
David S. Miller68a5e3d2011-03-11 20:07:33 -05002842 struct flowi4 fl4 = {
2843 .daddr = dst,
2844 .saddr = src,
2845 .flowi4_tos = rtm->rtm_tos,
2846 .flowi4_oif = tb[RTA_OIF] ? nla_get_u32(tb[RTA_OIF]) : 0,
2847 .flowi4_mark = mark,
Thomas Grafd889ce32006-08-17 18:15:44 -07002848 };
David S. Miller9d6ec932011-03-12 01:12:47 -05002849 rt = ip_route_output_key(net, &fl4);
David S. Millerb23dd4f2011-03-02 14:31:35 -08002850
2851 err = 0;
2852 if (IS_ERR(rt))
2853 err = PTR_ERR(rt);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002854 }
Thomas Grafd889ce32006-08-17 18:15:44 -07002855
Linus Torvalds1da177e2005-04-16 15:20:36 -07002856 if (err)
Thomas Grafd889ce32006-08-17 18:15:44 -07002857 goto errout_free;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002858
Changli Gaod8d1f302010-06-10 23:31:35 -07002859 skb_dst_set(skb, &rt->dst);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002860 if (rtm->rtm_flags & RTM_F_NOTIFY)
2861 rt->rt_flags |= RTCF_NOTIFY;
2862
Benjamin Thery4feb88e2009-01-22 04:56:23 +00002863 err = rt_fill_info(net, skb, NETLINK_CB(in_skb).pid, nlh->nlmsg_seq,
Denis V. Lunev19375042008-02-28 20:52:04 -08002864 RTM_NEWROUTE, 0, 0);
Thomas Grafd889ce32006-08-17 18:15:44 -07002865 if (err <= 0)
2866 goto errout_free;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002867
Denis V. Lunev19375042008-02-28 20:52:04 -08002868 err = rtnl_unicast(skb, net, NETLINK_CB(in_skb).pid);
Thomas Grafd889ce32006-08-17 18:15:44 -07002869errout:
Thomas Graf2942e902006-08-15 00:30:25 -07002870 return err;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002871
Thomas Grafd889ce32006-08-17 18:15:44 -07002872errout_free:
Linus Torvalds1da177e2005-04-16 15:20:36 -07002873 kfree_skb(skb);
Thomas Grafd889ce32006-08-17 18:15:44 -07002874 goto errout;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002875}
2876
2877int ip_rt_dump(struct sk_buff *skb, struct netlink_callback *cb)
2878{
2879 struct rtable *rt;
2880 int h, s_h;
2881 int idx, s_idx;
Denis V. Lunev19375042008-02-28 20:52:04 -08002882 struct net *net;
2883
YOSHIFUJI Hideaki3b1e0a62008-03-26 02:26:21 +09002884 net = sock_net(skb->sk);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002885
2886 s_h = cb->args[0];
Eric Dumazetd8c92832008-01-07 21:52:14 -08002887 if (s_h < 0)
2888 s_h = 0;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002889 s_idx = idx = cb->args[1];
Eric Dumazeta6272662008-08-28 01:11:25 -07002890 for (h = s_h; h <= rt_hash_mask; h++, s_idx = 0) {
2891 if (!rt_hash_table[h].chain)
2892 continue;
Linus Torvalds1da177e2005-04-16 15:20:36 -07002893 rcu_read_lock_bh();
Paul E. McKenneya898def2010-02-22 17:04:49 -08002894 for (rt = rcu_dereference_bh(rt_hash_table[h].chain), idx = 0; rt;
Changli Gaod8d1f302010-06-10 23:31:35 -07002895 rt = rcu_dereference_bh(rt->dst.rt_next), idx++) {
2896 if (!net_eq(dev_net(rt->dst.dev), net) || idx < s_idx)
Linus Torvalds1da177e2005-04-16 15:20:36 -07002897 continue;
Denis V. Luneve84f84f2008-07-05 19:04:32 -07002898 if (rt_is_expired(rt))
Eric Dumazet29e75252008-01-31 17:05:09 -08002899 continue;
Changli Gaod8d1f302010-06-10 23:31:35 -07002900 skb_dst_set_noref(skb, &rt->dst);
Benjamin Thery4feb88e2009-01-22 04:56:23 +00002901 if (rt_fill_info(net, skb, NETLINK_CB(cb->skb).pid,
YOSHIFUJI Hideakie905a9e2007-02-09 23:24:47 +09002902 cb->nlh->nlmsg_seq, RTM_NEWROUTE,
Jamal Hadi Salimb6544c02005-06-18 22:54:12 -07002903 1, NLM_F_MULTI) <= 0) {
Eric Dumazetadf30902009-06-02 05:19:30 +00002904 skb_dst_drop(skb);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002905 rcu_read_unlock_bh();
2906 goto done;
2907 }
Eric Dumazetadf30902009-06-02 05:19:30 +00002908 skb_dst_drop(skb);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002909 }
2910 rcu_read_unlock_bh();
2911 }
2912
2913done:
2914 cb->args[0] = h;
2915 cb->args[1] = idx;
2916 return skb->len;
2917}
2918
2919void ip_rt_multicast_event(struct in_device *in_dev)
2920{
Denis V. Lunev76e6ebf2008-07-05 19:00:44 -07002921 rt_cache_flush(dev_net(in_dev->dev), 0);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002922}
2923
2924#ifdef CONFIG_SYSCTL
Denis V. Lunev81c684d2008-07-08 03:05:28 -07002925static int ipv4_sysctl_rtcache_flush(ctl_table *__ctl, int write,
Alexey Dobriyan8d65af72009-09-23 15:57:19 -07002926 void __user *buffer,
Linus Torvalds1da177e2005-04-16 15:20:36 -07002927 size_t *lenp, loff_t *ppos)
2928{
2929 if (write) {
Denis V. Lunev639e1042008-07-05 19:02:06 -07002930 int flush_delay;
Denis V. Lunev81c684d2008-07-08 03:05:28 -07002931 ctl_table ctl;
Denis V. Lunev39a23e72008-07-05 19:02:33 -07002932 struct net *net;
Denis V. Lunev639e1042008-07-05 19:02:06 -07002933
Denis V. Lunev81c684d2008-07-08 03:05:28 -07002934 memcpy(&ctl, __ctl, sizeof(ctl));
2935 ctl.data = &flush_delay;
Alexey Dobriyan8d65af72009-09-23 15:57:19 -07002936 proc_dointvec(&ctl, write, buffer, lenp, ppos);
Denis V. Lunev639e1042008-07-05 19:02:06 -07002937
Denis V. Lunev81c684d2008-07-08 03:05:28 -07002938 net = (struct net *)__ctl->extra1;
Denis V. Lunev39a23e72008-07-05 19:02:33 -07002939 rt_cache_flush(net, flush_delay);
Linus Torvalds1da177e2005-04-16 15:20:36 -07002940 return 0;
YOSHIFUJI Hideakie905a9e2007-02-09 23:24:47 +09002941 }
Linus Torvalds1da177e2005-04-16 15:20:36 -07002942
2943 return -EINVAL;
2944}
2945
Al Viroeeb61f72008-07-27 08:59:33 +01002946static ctl_table ipv4_route_table[] = {
YOSHIFUJI Hideakie905a9e2007-02-09 23:24:47 +09002947 {
Linus Torvalds1da177e2005-04-16 15:20:36 -07002948 .procname = "gc_thresh",
2949 .data = &ipv4_dst_ops.gc_thresh,
2950 .maxlen = sizeof(int),
2951 .mode = 0644,
Alexey Dobriyan6d9f2392008-11-03 18:21:05 -08002952 .proc_handler = proc_dointvec,
Linus Torvalds1da177e2005-04-16 15:20:36 -07002953 },
2954 {
Linus Torvalds1da177e2005-04-16 15:20:36 -07002955 .procname = "max_size",
2956 .data = &ip_rt_max_size,
2957 .maxlen = sizeof(int),
2958 .mode = 0644,
Alexey Dobriyan6d9f2392008-11-03 18:21:05 -08002959 .proc_handler = proc_dointvec,
Linus Torvalds1da177e2005-04-16 15:20:36 -07002960 },
2961 {
2962 /* Deprecated. Use gc_min_interval_ms */
YOSHIFUJI Hideakie905a9e2007-02-09 23:24:47 +09002963
Linus Torvalds1da177e2005-04-16 15:20:36 -07002964 .procname = "gc_min_interval",
2965 .data = &ip_rt_gc_min_interval,
2966 .maxlen = sizeof(int),
2967 .mode = 0644,
Alexey Dobriyan6d9f2392008-11-03 18:21:05 -08002968 .proc_handler = proc_dointvec_jiffies,
Linus Torvalds1da177e2005-04-16 15:20:36 -07002969 },
2970 {
Linus Torvalds1da177e2005-04-16 15:20:36 -07002971 .procname = "gc_min_interval_ms",
2972 .data = &ip_rt_gc_min_interval,
2973 .maxlen = sizeof(int),
2974 .mode = 0644,
Alexey Dobriyan6d9f2392008-11-03 18:21:05 -08002975 .proc_handler = proc_dointvec_ms_jiffies,
Linus Torvalds1da177e2005-04-16 15:20:36 -07002976 },
2977 {
Linus Torvalds1da177e2005-04-16 15:20:36 -07002978 .procname = "gc_timeout",
2979 .data = &ip_rt_gc_timeout,
2980 .maxlen = sizeof(int),
2981 .mode = 0644,
Alexey Dobriyan6d9f2392008-11-03 18:21:05 -08002982 .proc_handler = proc_dointvec_jiffies,
Linus Torvalds1da177e2005-04-16 15:20:36 -07002983 },
2984 {
Eric Dumazet9f28a2f2011-12-21 15:47:16 -05002985 .procname = "gc_interval",
2986 .data = &ip_rt_gc_interval,
2987 .maxlen = sizeof(int),
2988 .mode = 0644,
2989 .proc_handler = proc_dointvec_jiffies,
2990 },
2991 {
Linus Torvalds1da177e2005-04-16 15:20:36 -07002992 .procname = "redirect_load",
2993 .data = &ip_rt_redirect_load,
2994 .maxlen = sizeof(int),
2995 .mode = 0644,
Alexey Dobriyan6d9f2392008-11-03 18:21:05 -08002996 .proc_handler = proc_dointvec,
Linus Torvalds1da177e2005-04-16 15:20:36 -07002997 },
2998 {
Linus Torvalds1da177e2005-04-16 15:20:36 -07002999 .procname = "redirect_number",
3000 .data = &ip_rt_redirect_number,
3001 .maxlen = sizeof(int),
3002 .mode = 0644,
Alexey Dobriyan6d9f2392008-11-03 18:21:05 -08003003 .proc_handler = proc_dointvec,
Linus Torvalds1da177e2005-04-16 15:20:36 -07003004 },
3005 {
Linus Torvalds1da177e2005-04-16 15:20:36 -07003006 .procname = "redirect_silence",
3007 .data = &ip_rt_redirect_silence,
3008 .maxlen = sizeof(int),
3009 .mode = 0644,
Alexey Dobriyan6d9f2392008-11-03 18:21:05 -08003010 .proc_handler = proc_dointvec,
Linus Torvalds1da177e2005-04-16 15:20:36 -07003011 },
3012 {
Linus Torvalds1da177e2005-04-16 15:20:36 -07003013 .procname = "error_cost",
3014 .data = &ip_rt_error_cost,
3015 .maxlen = sizeof(int),
3016 .mode = 0644,
Alexey Dobriyan6d9f2392008-11-03 18:21:05 -08003017 .proc_handler = proc_dointvec,
Linus Torvalds1da177e2005-04-16 15:20:36 -07003018 },
3019 {
Linus Torvalds1da177e2005-04-16 15:20:36 -07003020 .procname = "error_burst",
3021 .data = &ip_rt_error_burst,
3022 .maxlen = sizeof(int),
3023 .mode = 0644,
Alexey Dobriyan6d9f2392008-11-03 18:21:05 -08003024 .proc_handler = proc_dointvec,
Linus Torvalds1da177e2005-04-16 15:20:36 -07003025 },
3026 {
Linus Torvalds1da177e2005-04-16 15:20:36 -07003027 .procname = "gc_elasticity",
3028 .data = &ip_rt_gc_elasticity,
3029 .maxlen = sizeof(int),
3030 .mode = 0644,
Alexey Dobriyan6d9f2392008-11-03 18:21:05 -08003031 .proc_handler = proc_dointvec,
Linus Torvalds1da177e2005-04-16 15:20:36 -07003032 },
3033 {
Linus Torvalds1da177e2005-04-16 15:20:36 -07003034 .procname = "mtu_expires",
3035 .data = &ip_rt_mtu_expires,
3036 .maxlen = sizeof(int),
3037 .mode = 0644,
Alexey Dobriyan6d9f2392008-11-03 18:21:05 -08003038 .proc_handler = proc_dointvec_jiffies,
Linus Torvalds1da177e2005-04-16 15:20:36 -07003039 },
3040 {
Linus Torvalds1da177e2005-04-16 15:20:36 -07003041 .procname = "min_pmtu",
3042 .data = &ip_rt_min_pmtu,
3043 .maxlen = sizeof(int),
3044 .mode = 0644,
Alexey Dobriyan6d9f2392008-11-03 18:21:05 -08003045 .proc_handler = proc_dointvec,
Linus Torvalds1da177e2005-04-16 15:20:36 -07003046 },
3047 {
Linus Torvalds1da177e2005-04-16 15:20:36 -07003048 .procname = "min_adv_mss",
3049 .data = &ip_rt_min_advmss,
3050 .maxlen = sizeof(int),
3051 .mode = 0644,
Alexey Dobriyan6d9f2392008-11-03 18:21:05 -08003052 .proc_handler = proc_dointvec,
Linus Torvalds1da177e2005-04-16 15:20:36 -07003053 },
Eric W. Biedermanf8572d82009-11-05 13:32:03 -08003054 { }
Linus Torvalds1da177e2005-04-16 15:20:36 -07003055};
Denis V. Lunev39a23e72008-07-05 19:02:33 -07003056
Denis V. Lunev39a23e72008-07-05 19:02:33 -07003057static struct ctl_table ipv4_route_flush_table[] = {
3058 {
Denis V. Lunev39a23e72008-07-05 19:02:33 -07003059 .procname = "flush",
3060 .maxlen = sizeof(int),
3061 .mode = 0200,
Alexey Dobriyan6d9f2392008-11-03 18:21:05 -08003062 .proc_handler = ipv4_sysctl_rtcache_flush,
Denis V. Lunev39a23e72008-07-05 19:02:33 -07003063 },
Eric W. Biedermanf8572d82009-11-05 13:32:03 -08003064 { },
Denis V. Lunev39a23e72008-07-05 19:02:33 -07003065};
3066
3067static __net_init int sysctl_route_net_init(struct net *net)
3068{
3069 struct ctl_table *tbl;
3070
3071 tbl = ipv4_route_flush_table;
Octavian Purdila09ad9bc2009-11-25 15:14:13 -08003072 if (!net_eq(net, &init_net)) {
Denis V. Lunev39a23e72008-07-05 19:02:33 -07003073 tbl = kmemdup(tbl, sizeof(ipv4_route_flush_table), GFP_KERNEL);
3074 if (tbl == NULL)
3075 goto err_dup;
3076 }
3077 tbl[0].extra1 = net;
3078
Eric W. Biedermanec8f23c2012-04-19 13:44:49 +00003079 net->ipv4.route_hdr = register_net_sysctl(net, "net/ipv4/route", tbl);
Denis V. Lunev39a23e72008-07-05 19:02:33 -07003080 if (net->ipv4.route_hdr == NULL)
3081 goto err_reg;
3082 return 0;
3083
3084err_reg:
3085 if (tbl != ipv4_route_flush_table)
3086 kfree(tbl);
3087err_dup:
3088 return -ENOMEM;
3089}
3090
3091static __net_exit void sysctl_route_net_exit(struct net *net)
3092{
3093 struct ctl_table *tbl;
3094
3095 tbl = net->ipv4.route_hdr->ctl_table_arg;
3096 unregister_net_sysctl_table(net->ipv4.route_hdr);
3097 BUG_ON(tbl == ipv4_route_flush_table);
3098 kfree(tbl);
3099}
3100
3101static __net_initdata struct pernet_operations sysctl_route_ops = {
3102 .init = sysctl_route_net_init,
3103 .exit = sysctl_route_net_exit,
3104};
Linus Torvalds1da177e2005-04-16 15:20:36 -07003105#endif
3106
Neil Horman3ee94372010-05-08 01:57:52 -07003107static __net_init int rt_genid_init(struct net *net)
Denis V. Lunev9f5e97e2008-07-05 19:02:59 -07003108{
Neil Horman3ee94372010-05-08 01:57:52 -07003109 get_random_bytes(&net->ipv4.rt_genid,
3110 sizeof(net->ipv4.rt_genid));
David S. Miller436c3b62011-03-24 17:42:21 -07003111 get_random_bytes(&net->ipv4.dev_addr_genid,
3112 sizeof(net->ipv4.dev_addr_genid));
Denis V. Lunev9f5e97e2008-07-05 19:02:59 -07003113 return 0;
3114}
3115
Neil Horman3ee94372010-05-08 01:57:52 -07003116static __net_initdata struct pernet_operations rt_genid_ops = {
3117 .init = rt_genid_init,
Denis V. Lunev9f5e97e2008-07-05 19:02:59 -07003118};
3119
David S. Millerc3426b42012-06-09 16:27:05 -07003120static int __net_init ipv4_inetpeer_init(struct net *net)
3121{
3122 struct inet_peer_base *bp = kmalloc(sizeof(*bp), GFP_KERNEL);
3123
3124 if (!bp)
3125 return -ENOMEM;
3126 inet_peer_base_init(bp);
3127 net->ipv4.peers = bp;
3128 return 0;
3129}
3130
3131static void __net_exit ipv4_inetpeer_exit(struct net *net)
3132{
3133 struct inet_peer_base *bp = net->ipv4.peers;
3134
3135 net->ipv4.peers = NULL;
David S. Miller56a6b242012-06-09 16:32:41 -07003136 inetpeer_invalidate_tree(bp);
David S. Millerc3426b42012-06-09 16:27:05 -07003137 kfree(bp);
3138}
3139
3140static __net_initdata struct pernet_operations ipv4_inetpeer_ops = {
3141 .init = ipv4_inetpeer_init,
3142 .exit = ipv4_inetpeer_exit,
3143};
Denis V. Lunev9f5e97e2008-07-05 19:02:59 -07003144
Patrick McHardyc7066f72011-01-14 13:36:42 +01003145#ifdef CONFIG_IP_ROUTE_CLASSID
Tejun Heo7d720c32010-02-16 15:20:26 +00003146struct ip_rt_acct __percpu *ip_rt_acct __read_mostly;
Patrick McHardyc7066f72011-01-14 13:36:42 +01003147#endif /* CONFIG_IP_ROUTE_CLASSID */
Linus Torvalds1da177e2005-04-16 15:20:36 -07003148
3149static __initdata unsigned long rhash_entries;
3150static int __init set_rhash_entries(char *str)
3151{
Eldad Zack413c27d2012-05-19 14:13:18 +00003152 ssize_t ret;
3153
Linus Torvalds1da177e2005-04-16 15:20:36 -07003154 if (!str)
3155 return 0;
Eldad Zack413c27d2012-05-19 14:13:18 +00003156
3157 ret = kstrtoul(str, 0, &rhash_entries);
3158 if (ret)
3159 return 0;
3160
Linus Torvalds1da177e2005-04-16 15:20:36 -07003161 return 1;
3162}
3163__setup("rhash_entries=", set_rhash_entries);
3164
3165int __init ip_rt_init(void)
3166{
Eric Dumazet424c4b72005-07-05 14:58:19 -07003167 int rc = 0;
Linus Torvalds1da177e2005-04-16 15:20:36 -07003168
Patrick McHardyc7066f72011-01-14 13:36:42 +01003169#ifdef CONFIG_IP_ROUTE_CLASSID
Ingo Molnar0dcec8c2009-02-25 14:07:33 +01003170 ip_rt_acct = __alloc_percpu(256 * sizeof(struct ip_rt_acct), __alignof__(struct ip_rt_acct));
Linus Torvalds1da177e2005-04-16 15:20:36 -07003171 if (!ip_rt_acct)
3172 panic("IP: failed to allocate ip_rt_acct\n");
Linus Torvalds1da177e2005-04-16 15:20:36 -07003173#endif
3174
Alexey Dobriyane5d679f2006-08-26 19:25:52 -07003175 ipv4_dst_ops.kmem_cachep =
3176 kmem_cache_create("ip_dst_cache", sizeof(struct rtable), 0,
Paul Mundt20c2df82007-07-20 10:11:58 +09003177 SLAB_HWCACHE_ALIGN|SLAB_PANIC, NULL);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003178
David S. Miller14e50e52007-05-24 18:17:54 -07003179 ipv4_dst_blackhole_ops.kmem_cachep = ipv4_dst_ops.kmem_cachep;
3180
Eric Dumazetfc66f952010-10-08 06:37:34 +00003181 if (dst_entries_init(&ipv4_dst_ops) < 0)
3182 panic("IP: failed to allocate ipv4_dst_ops counter\n");
3183
3184 if (dst_entries_init(&ipv4_dst_blackhole_ops) < 0)
3185 panic("IP: failed to allocate ipv4_dst_blackhole_ops counter\n");
3186
Eric Dumazet424c4b72005-07-05 14:58:19 -07003187 rt_hash_table = (struct rt_hash_bucket *)
3188 alloc_large_system_hash("IP route cache",
3189 sizeof(struct rt_hash_bucket),
3190 rhash_entries,
Jan Beulich44813742009-09-21 17:03:05 -07003191 (totalram_pages >= 128 * 1024) ?
Mike Stroyan18955cf2005-11-29 16:12:55 -08003192 15 : 17,
Kirill Korotaev8d1502d2006-08-07 20:44:22 -07003193 0,
Eric Dumazet424c4b72005-07-05 14:58:19 -07003194 &rt_hash_log,
3195 &rt_hash_mask,
Tim Bird31fe62b2012-05-23 13:33:35 +00003196 0,
Anton Blanchardc9503e02009-04-27 05:42:24 -07003197 rhash_entries ? 0 : 512 * 1024);
Eric Dumazet22c047c2005-07-05 14:55:24 -07003198 memset(rt_hash_table, 0, (rt_hash_mask + 1) * sizeof(struct rt_hash_bucket));
3199 rt_hash_lock_init();
Linus Torvalds1da177e2005-04-16 15:20:36 -07003200
3201 ipv4_dst_ops.gc_thresh = (rt_hash_mask + 1);
3202 ip_rt_max_size = (rt_hash_mask + 1) * 16;
3203
Linus Torvalds1da177e2005-04-16 15:20:36 -07003204 devinet_init();
3205 ip_fib_init();
3206
Eric Dumazet9f28a2f2011-12-21 15:47:16 -05003207 INIT_DELAYED_WORK_DEFERRABLE(&expires_work, rt_worker_func);
3208 expires_ljiffies = jiffies;
3209 schedule_delayed_work(&expires_work,
3210 net_random() % ip_rt_gc_interval + ip_rt_gc_interval);
3211
Denis V. Lunev73b38712008-02-28 20:51:18 -08003212 if (ip_rt_proc_init())
Joe Perches058bd4d2012-03-11 18:36:11 +00003213 pr_err("Unable to create route proc files\n");
Linus Torvalds1da177e2005-04-16 15:20:36 -07003214#ifdef CONFIG_XFRM
3215 xfrm_init();
Neil Hormana33bc5c2009-07-30 18:52:15 -07003216 xfrm4_init(ip_rt_max_size);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003217#endif
Greg Rosec7ac8672011-06-10 01:27:09 +00003218 rtnl_register(PF_INET, RTM_GETROUTE, inet_rtm_getroute, NULL, NULL);
Thomas Graf63f34442007-03-22 11:55:17 -07003219
Denis V. Lunev39a23e72008-07-05 19:02:33 -07003220#ifdef CONFIG_SYSCTL
3221 register_pernet_subsys(&sysctl_route_ops);
3222#endif
Neil Horman3ee94372010-05-08 01:57:52 -07003223 register_pernet_subsys(&rt_genid_ops);
David S. Millerc3426b42012-06-09 16:27:05 -07003224 register_pernet_subsys(&ipv4_inetpeer_ops);
Linus Torvalds1da177e2005-04-16 15:20:36 -07003225 return rc;
3226}
3227
Al Viroa1bc6eb2008-07-30 06:32:52 -04003228#ifdef CONFIG_SYSCTL
Al Viroeeb61f72008-07-27 08:59:33 +01003229/*
3230 * We really need to sanitize the damn ipv4 init order, then all
3231 * this nonsense will go away.
3232 */
3233void __init ip_static_sysctl_init(void)
3234{
Eric W. Biederman4e5ca782012-04-19 13:32:39 +00003235 register_net_sysctl(&init_net, "net/ipv4/route", ipv4_route_table);
Al Viroeeb61f72008-07-27 08:59:33 +01003236}
Al Viroa1bc6eb2008-07-30 06:32:52 -04003237#endif