• Home
  • Line#
  • Scopes#
  • Navigate#
  • Raw
  • Download
1 #include <linux/stat.h>
2 #include <linux/sysctl.h>
3 #include "../fs/xfs/xfs_sysctl.h"
4 #include <linux/sunrpc/debug.h>
5 #include <linux/string.h>
6 #include <linux/syscalls.h>
7 #include <linux/namei.h>
8 #include <linux/mount.h>
9 #include <linux/fs.h>
10 #include <linux/nsproxy.h>
11 #include <linux/pid_namespace.h>
12 #include <linux/file.h>
13 #include <linux/ctype.h>
14 #include <linux/netdevice.h>
15 #include <linux/kernel.h>
16 #include <linux/slab.h>
17 #include <linux/compat.h>
18 
19 #ifdef CONFIG_SYSCTL_SYSCALL
20 
21 struct bin_table;
22 typedef ssize_t bin_convert_t(struct file *file,
23 	void __user *oldval, size_t oldlen, void __user *newval, size_t newlen);
24 
25 static bin_convert_t bin_dir;
26 static bin_convert_t bin_string;
27 static bin_convert_t bin_intvec;
28 static bin_convert_t bin_ulongvec;
29 static bin_convert_t bin_uuid;
30 static bin_convert_t bin_dn_node_address;
31 
32 #define CTL_DIR   bin_dir
33 #define CTL_STR   bin_string
34 #define CTL_INT   bin_intvec
35 #define CTL_ULONG bin_ulongvec
36 #define CTL_UUID  bin_uuid
37 #define CTL_DNADR bin_dn_node_address
38 
39 #define BUFSZ 256
40 
41 struct bin_table {
42 	bin_convert_t		*convert;
43 	int			ctl_name;
44 	const char		*procname;
45 	const struct bin_table	*child;
46 };
47 
48 static const struct bin_table bin_random_table[] = {
49 	{ CTL_INT,	RANDOM_POOLSIZE,	"poolsize" },
50 	{ CTL_INT,	RANDOM_ENTROPY_COUNT,	"entropy_avail" },
51 	{ CTL_INT,	RANDOM_READ_THRESH,	"read_wakeup_threshold" },
52 	{ CTL_INT,	RANDOM_WRITE_THRESH,	"write_wakeup_threshold" },
53 	{ CTL_UUID,	RANDOM_BOOT_ID,		"boot_id" },
54 	{ CTL_UUID,	RANDOM_UUID,		"uuid" },
55 	{}
56 };
57 
58 static const struct bin_table bin_pty_table[] = {
59 	{ CTL_INT,	PTY_MAX,	"max" },
60 	{ CTL_INT,	PTY_NR,		"nr" },
61 	{}
62 };
63 
64 static const struct bin_table bin_kern_table[] = {
65 	{ CTL_STR,	KERN_OSTYPE,			"ostype" },
66 	{ CTL_STR,	KERN_OSRELEASE,			"osrelease" },
67 	/* KERN_OSREV not used */
68 	{ CTL_STR,	KERN_VERSION,			"version" },
69 	/* KERN_SECUREMASK not used */
70 	/* KERN_PROF not used */
71 	{ CTL_STR,	KERN_NODENAME,			"hostname" },
72 	{ CTL_STR,	KERN_DOMAINNAME,		"domainname" },
73 
74 	{ CTL_INT,	KERN_PANIC,			"panic" },
75 	{ CTL_INT,	KERN_REALROOTDEV,		"real-root-dev" },
76 
77 	{ CTL_STR,	KERN_SPARC_REBOOT,		"reboot-cmd" },
78 	{ CTL_INT,	KERN_CTLALTDEL,			"ctrl-alt-del" },
79 	{ CTL_INT,	KERN_PRINTK,			"printk" },
80 
81 	/* KERN_NAMETRANS not used */
82 	/* KERN_PPC_HTABRECLAIM not used */
83 	/* KERN_PPC_ZEROPAGED not used */
84 	{ CTL_INT,	KERN_PPC_POWERSAVE_NAP,		"powersave-nap" },
85 
86 	{ CTL_STR,	KERN_MODPROBE,			"modprobe" },
87 	{ CTL_INT,	KERN_SG_BIG_BUFF,		"sg-big-buff" },
88 	{ CTL_INT,	KERN_ACCT,			"acct" },
89 	/* KERN_PPC_L2CR "l2cr" no longer used */
90 
91 	/* KERN_RTSIGNR not used */
92 	/* KERN_RTSIGMAX not used */
93 
94 	{ CTL_ULONG,	KERN_SHMMAX,			"shmmax" },
95 	{ CTL_INT,	KERN_MSGMAX,			"msgmax" },
96 	{ CTL_INT,	KERN_MSGMNB,			"msgmnb" },
97 	/* KERN_MSGPOOL not used*/
98 	{ CTL_INT,	KERN_SYSRQ,			"sysrq" },
99 	{ CTL_INT,	KERN_MAX_THREADS,		"threads-max" },
100 	{ CTL_DIR,	KERN_RANDOM,			"random",	bin_random_table },
101 	{ CTL_ULONG,	KERN_SHMALL,			"shmall" },
102 	{ CTL_INT,	KERN_MSGMNI,			"msgmni" },
103 	{ CTL_INT,	KERN_SEM,			"sem" },
104 	{ CTL_INT,	KERN_SPARC_STOP_A,		"stop-a" },
105 	{ CTL_INT,	KERN_SHMMNI,			"shmmni" },
106 
107 	{ CTL_INT,	KERN_OVERFLOWUID,		"overflowuid" },
108 	{ CTL_INT,	KERN_OVERFLOWGID,		"overflowgid" },
109 
110 	{ CTL_STR,	KERN_HOTPLUG,			"hotplug", },
111 	{ CTL_INT,	KERN_IEEE_EMULATION_WARNINGS,	"ieee_emulation_warnings" },
112 
113 	{ CTL_INT,	KERN_S390_USER_DEBUG_LOGGING,	"userprocess_debug" },
114 	{ CTL_INT,	KERN_CORE_USES_PID,		"core_uses_pid" },
115 	/* KERN_TAINTED "tainted" no longer used */
116 	{ CTL_INT,	KERN_CADPID,			"cad_pid" },
117 	{ CTL_INT,	KERN_PIDMAX,			"pid_max" },
118 	{ CTL_STR,	KERN_CORE_PATTERN,		"core_pattern" },
119 	{ CTL_INT,	KERN_PANIC_ON_OOPS,		"panic_on_oops" },
120 	{ CTL_INT,	KERN_HPPA_PWRSW,		"soft-power" },
121 	{ CTL_INT,	KERN_HPPA_UNALIGNED,		"unaligned-trap" },
122 
123 	{ CTL_INT,	KERN_PRINTK_RATELIMIT,		"printk_ratelimit" },
124 	{ CTL_INT,	KERN_PRINTK_RATELIMIT_BURST,	"printk_ratelimit_burst" },
125 
126 	{ CTL_DIR,	KERN_PTY,			"pty",		bin_pty_table },
127 	{ CTL_INT,	KERN_NGROUPS_MAX,		"ngroups_max" },
128 	{ CTL_INT,	KERN_SPARC_SCONS_PWROFF,	"scons-poweroff" },
129 	/* KERN_HZ_TIMER "hz_timer" no longer used */
130 	{ CTL_INT,	KERN_UNKNOWN_NMI_PANIC,		"unknown_nmi_panic" },
131 	{ CTL_INT,	KERN_BOOTLOADER_TYPE,		"bootloader_type" },
132 	{ CTL_INT,	KERN_RANDOMIZE,			"randomize_va_space" },
133 
134 	{ CTL_INT,	KERN_SPIN_RETRY,		"spin_retry" },
135 	/* KERN_ACPI_VIDEO_FLAGS "acpi_video_flags" no longer used */
136 	{ CTL_INT,	KERN_IA64_UNALIGNED,		"ignore-unaligned-usertrap" },
137 	{ CTL_INT,	KERN_COMPAT_LOG,		"compat-log" },
138 	{ CTL_INT,	KERN_MAX_LOCK_DEPTH,		"max_lock_depth" },
139 	{ CTL_INT,	KERN_PANIC_ON_NMI,		"panic_on_unrecovered_nmi" },
140 	{}
141 };
142 
143 static const struct bin_table bin_vm_table[] = {
144 	{ CTL_INT,	VM_OVERCOMMIT_MEMORY,		"overcommit_memory" },
145 	{ CTL_INT,	VM_PAGE_CLUSTER,		"page-cluster" },
146 	{ CTL_INT,	VM_DIRTY_BACKGROUND,		"dirty_background_ratio" },
147 	{ CTL_INT,	VM_DIRTY_RATIO,			"dirty_ratio" },
148 	/* VM_DIRTY_WB_CS "dirty_writeback_centisecs" no longer used */
149 	/* VM_DIRTY_EXPIRE_CS "dirty_expire_centisecs" no longer used */
150 	/* VM_NR_PDFLUSH_THREADS "nr_pdflush_threads" no longer used */
151 	{ CTL_INT,	VM_OVERCOMMIT_RATIO,		"overcommit_ratio" },
152 	/* VM_PAGEBUF unused */
153 	/* VM_HUGETLB_PAGES "nr_hugepages" no longer used */
154 	{ CTL_INT,	VM_SWAPPINESS,			"swappiness" },
155 	{ CTL_INT,	VM_LOWMEM_RESERVE_RATIO,	"lowmem_reserve_ratio" },
156 	{ CTL_INT,	VM_MIN_FREE_KBYTES,		"min_free_kbytes" },
157 	{ CTL_INT,	VM_MAX_MAP_COUNT,		"max_map_count" },
158 	{ CTL_INT,	VM_LAPTOP_MODE,			"laptop_mode" },
159 	{ CTL_INT,	VM_BLOCK_DUMP,			"block_dump" },
160 	{ CTL_INT,	VM_HUGETLB_GROUP,		"hugetlb_shm_group" },
161 	{ CTL_INT,	VM_VFS_CACHE_PRESSURE,	"vfs_cache_pressure" },
162 	{ CTL_INT,	VM_LEGACY_VA_LAYOUT,		"legacy_va_layout" },
163 	/* VM_SWAP_TOKEN_TIMEOUT unused */
164 	{ CTL_INT,	VM_DROP_PAGECACHE,		"drop_caches" },
165 	{ CTL_INT,	VM_PERCPU_PAGELIST_FRACTION,	"percpu_pagelist_fraction" },
166 	{ CTL_INT,	VM_ZONE_RECLAIM_MODE,		"zone_reclaim_mode" },
167 	{ CTL_INT,	VM_MIN_UNMAPPED,		"min_unmapped_ratio" },
168 	{ CTL_INT,	VM_PANIC_ON_OOM,		"panic_on_oom" },
169 	{ CTL_INT,	VM_VDSO_ENABLED,		"vdso_enabled" },
170 	{ CTL_INT,	VM_MIN_SLAB,			"min_slab_ratio" },
171 
172 	{}
173 };
174 
175 static const struct bin_table bin_net_core_table[] = {
176 	{ CTL_INT,	NET_CORE_WMEM_MAX,	"wmem_max" },
177 	{ CTL_INT,	NET_CORE_RMEM_MAX,	"rmem_max" },
178 	{ CTL_INT,	NET_CORE_WMEM_DEFAULT,	"wmem_default" },
179 	{ CTL_INT,	NET_CORE_RMEM_DEFAULT,	"rmem_default" },
180 	/* NET_CORE_DESTROY_DELAY unused */
181 	{ CTL_INT,	NET_CORE_MAX_BACKLOG,	"netdev_max_backlog" },
182 	/* NET_CORE_FASTROUTE unused */
183 	{ CTL_INT,	NET_CORE_MSG_COST,	"message_cost" },
184 	{ CTL_INT,	NET_CORE_MSG_BURST,	"message_burst" },
185 	{ CTL_INT,	NET_CORE_OPTMEM_MAX,	"optmem_max" },
186 	/* NET_CORE_HOT_LIST_LENGTH unused */
187 	/* NET_CORE_DIVERT_VERSION unused */
188 	/* NET_CORE_NO_CONG_THRESH unused */
189 	/* NET_CORE_NO_CONG unused */
190 	/* NET_CORE_LO_CONG unused */
191 	/* NET_CORE_MOD_CONG unused */
192 	{ CTL_INT,	NET_CORE_DEV_WEIGHT,	"dev_weight" },
193 	{ CTL_INT,	NET_CORE_SOMAXCONN,	"somaxconn" },
194 	{ CTL_INT,	NET_CORE_BUDGET,	"netdev_budget" },
195 	{ CTL_INT,	NET_CORE_AEVENT_ETIME,	"xfrm_aevent_etime" },
196 	{ CTL_INT,	NET_CORE_AEVENT_RSEQTH,	"xfrm_aevent_rseqth" },
197 	{ CTL_INT,	NET_CORE_WARNINGS,	"warnings" },
198 	{},
199 };
200 
201 static const struct bin_table bin_net_unix_table[] = {
202 	/* NET_UNIX_DESTROY_DELAY unused */
203 	/* NET_UNIX_DELETE_DELAY unused */
204 	{ CTL_INT,	NET_UNIX_MAX_DGRAM_QLEN,	"max_dgram_qlen" },
205 	{}
206 };
207 
208 static const struct bin_table bin_net_ipv4_route_table[] = {
209 	{ CTL_INT,	NET_IPV4_ROUTE_FLUSH,			"flush" },
210 	/* NET_IPV4_ROUTE_MIN_DELAY "min_delay" no longer used */
211 	/* NET_IPV4_ROUTE_MAX_DELAY "max_delay" no longer used */
212 	{ CTL_INT,	NET_IPV4_ROUTE_GC_THRESH,		"gc_thresh" },
213 	{ CTL_INT,	NET_IPV4_ROUTE_MAX_SIZE,		"max_size" },
214 	{ CTL_INT,	NET_IPV4_ROUTE_GC_MIN_INTERVAL,		"gc_min_interval" },
215 	{ CTL_INT,	NET_IPV4_ROUTE_GC_MIN_INTERVAL_MS,	"gc_min_interval_ms" },
216 	{ CTL_INT,	NET_IPV4_ROUTE_GC_TIMEOUT,		"gc_timeout" },
217 	/* NET_IPV4_ROUTE_GC_INTERVAL "gc_interval" no longer used */
218 	{ CTL_INT,	NET_IPV4_ROUTE_REDIRECT_LOAD,		"redirect_load" },
219 	{ CTL_INT,	NET_IPV4_ROUTE_REDIRECT_NUMBER,		"redirect_number" },
220 	{ CTL_INT,	NET_IPV4_ROUTE_REDIRECT_SILENCE,	"redirect_silence" },
221 	{ CTL_INT,	NET_IPV4_ROUTE_ERROR_COST,		"error_cost" },
222 	{ CTL_INT,	NET_IPV4_ROUTE_ERROR_BURST,		"error_burst" },
223 	{ CTL_INT,	NET_IPV4_ROUTE_GC_ELASTICITY,		"gc_elasticity" },
224 	{ CTL_INT,	NET_IPV4_ROUTE_MTU_EXPIRES,		"mtu_expires" },
225 	{ CTL_INT,	NET_IPV4_ROUTE_MIN_PMTU,		"min_pmtu" },
226 	{ CTL_INT,	NET_IPV4_ROUTE_MIN_ADVMSS,		"min_adv_mss" },
227 	{}
228 };
229 
230 static const struct bin_table bin_net_ipv4_conf_vars_table[] = {
231 	{ CTL_INT,	NET_IPV4_CONF_FORWARDING,		"forwarding" },
232 	{ CTL_INT,	NET_IPV4_CONF_MC_FORWARDING,		"mc_forwarding" },
233 
234 	{ CTL_INT,	NET_IPV4_CONF_ACCEPT_REDIRECTS,		"accept_redirects" },
235 	{ CTL_INT,	NET_IPV4_CONF_SECURE_REDIRECTS,		"secure_redirects" },
236 	{ CTL_INT,	NET_IPV4_CONF_SEND_REDIRECTS,		"send_redirects" },
237 	{ CTL_INT,	NET_IPV4_CONF_SHARED_MEDIA,		"shared_media" },
238 	{ CTL_INT,	NET_IPV4_CONF_RP_FILTER,		"rp_filter" },
239 	{ CTL_INT,	NET_IPV4_CONF_ACCEPT_SOURCE_ROUTE,	"accept_source_route" },
240 	{ CTL_INT,	NET_IPV4_CONF_PROXY_ARP,		"proxy_arp" },
241 	{ CTL_INT,	NET_IPV4_CONF_MEDIUM_ID,		"medium_id" },
242 	{ CTL_INT,	NET_IPV4_CONF_BOOTP_RELAY,		"bootp_relay" },
243 	{ CTL_INT,	NET_IPV4_CONF_LOG_MARTIANS,		"log_martians" },
244 	{ CTL_INT,	NET_IPV4_CONF_TAG,			"tag" },
245 	{ CTL_INT,	NET_IPV4_CONF_ARPFILTER,		"arp_filter" },
246 	{ CTL_INT,	NET_IPV4_CONF_ARP_ANNOUNCE,		"arp_announce" },
247 	{ CTL_INT,	NET_IPV4_CONF_ARP_IGNORE,		"arp_ignore" },
248 	{ CTL_INT,	NET_IPV4_CONF_ARP_ACCEPT,		"arp_accept" },
249 	{ CTL_INT,	NET_IPV4_CONF_ARP_NOTIFY,		"arp_notify" },
250 
251 	{ CTL_INT,	NET_IPV4_CONF_NOXFRM,			"disable_xfrm" },
252 	{ CTL_INT,	NET_IPV4_CONF_NOPOLICY,			"disable_policy" },
253 	{ CTL_INT,	NET_IPV4_CONF_FORCE_IGMP_VERSION,	"force_igmp_version" },
254 	{ CTL_INT,	NET_IPV4_CONF_PROMOTE_SECONDARIES,	"promote_secondaries" },
255 	{}
256 };
257 
258 static const struct bin_table bin_net_ipv4_conf_table[] = {
259 	{ CTL_DIR,	NET_PROTO_CONF_ALL,	"all",		bin_net_ipv4_conf_vars_table },
260 	{ CTL_DIR,	NET_PROTO_CONF_DEFAULT,	"default",	bin_net_ipv4_conf_vars_table },
261 	{ CTL_DIR,	0, NULL, bin_net_ipv4_conf_vars_table },
262 	{}
263 };
264 
265 static const struct bin_table bin_net_neigh_vars_table[] = {
266 	{ CTL_INT,	NET_NEIGH_MCAST_SOLICIT,	"mcast_solicit" },
267 	{ CTL_INT,	NET_NEIGH_UCAST_SOLICIT,	"ucast_solicit" },
268 	{ CTL_INT,	NET_NEIGH_APP_SOLICIT,		"app_solicit" },
269 	/* NET_NEIGH_RETRANS_TIME "retrans_time" no longer used */
270 	{ CTL_INT,	NET_NEIGH_REACHABLE_TIME,	"base_reachable_time" },
271 	{ CTL_INT,	NET_NEIGH_DELAY_PROBE_TIME,	"delay_first_probe_time" },
272 	{ CTL_INT,	NET_NEIGH_GC_STALE_TIME,	"gc_stale_time" },
273 	{ CTL_INT,	NET_NEIGH_UNRES_QLEN,		"unres_qlen" },
274 	{ CTL_INT,	NET_NEIGH_PROXY_QLEN,		"proxy_qlen" },
275 	/* NET_NEIGH_ANYCAST_DELAY "anycast_delay" no longer used */
276 	/* NET_NEIGH_PROXY_DELAY "proxy_delay" no longer used */
277 	/* NET_NEIGH_LOCKTIME "locktime" no longer used */
278 	{ CTL_INT,	NET_NEIGH_GC_INTERVAL,		"gc_interval" },
279 	{ CTL_INT,	NET_NEIGH_GC_THRESH1,		"gc_thresh1" },
280 	{ CTL_INT,	NET_NEIGH_GC_THRESH2,		"gc_thresh2" },
281 	{ CTL_INT,	NET_NEIGH_GC_THRESH3,		"gc_thresh3" },
282 	{ CTL_INT,	NET_NEIGH_RETRANS_TIME_MS,	"retrans_time_ms" },
283 	{ CTL_INT,	NET_NEIGH_REACHABLE_TIME_MS,	"base_reachable_time_ms" },
284 	{}
285 };
286 
287 static const struct bin_table bin_net_neigh_table[] = {
288 	{ CTL_DIR,	NET_PROTO_CONF_DEFAULT, "default", bin_net_neigh_vars_table },
289 	{ CTL_DIR,	0, NULL, bin_net_neigh_vars_table },
290 	{}
291 };
292 
293 static const struct bin_table bin_net_ipv4_netfilter_table[] = {
294 	{ CTL_INT,	NET_IPV4_NF_CONNTRACK_MAX,		"ip_conntrack_max" },
295 
296 	/* NET_IPV4_NF_CONNTRACK_TCP_TIMEOUT_SYN_SENT "ip_conntrack_tcp_timeout_syn_sent" no longer used */
297 	/* NET_IPV4_NF_CONNTRACK_TCP_TIMEOUT_SYN_RECV "ip_conntrack_tcp_timeout_syn_recv" no longer used */
298 	/* NET_IPV4_NF_CONNTRACK_TCP_TIMEOUT_ESTABLISHED "ip_conntrack_tcp_timeout_established" no longer used */
299 	/* NET_IPV4_NF_CONNTRACK_TCP_TIMEOUT_FIN_WAIT "ip_conntrack_tcp_timeout_fin_wait" no longer used */
300 	/* NET_IPV4_NF_CONNTRACK_TCP_TIMEOUT_CLOSE_WAIT	"ip_conntrack_tcp_timeout_close_wait" no longer used */
301 	/* NET_IPV4_NF_CONNTRACK_TCP_TIMEOUT_LAST_ACK "ip_conntrack_tcp_timeout_last_ack" no longer used */
302 	/* NET_IPV4_NF_CONNTRACK_TCP_TIMEOUT_TIME_WAIT "ip_conntrack_tcp_timeout_time_wait" no longer used */
303 	/* NET_IPV4_NF_CONNTRACK_TCP_TIMEOUT_CLOSE "ip_conntrack_tcp_timeout_close" no longer used */
304 
305 	/* NET_IPV4_NF_CONNTRACK_UDP_TIMEOUT "ip_conntrack_udp_timeout" no longer used */
306 	/* NET_IPV4_NF_CONNTRACK_UDP_TIMEOUT_STREAM "ip_conntrack_udp_timeout_stream" no longer used */
307 	/* NET_IPV4_NF_CONNTRACK_ICMP_TIMEOUT "ip_conntrack_icmp_timeout" no longer used */
308 	/* NET_IPV4_NF_CONNTRACK_GENERIC_TIMEOUT "ip_conntrack_generic_timeout" no longer used */
309 
310 	{ CTL_INT,	NET_IPV4_NF_CONNTRACK_BUCKETS,		"ip_conntrack_buckets" },
311 	{ CTL_INT,	NET_IPV4_NF_CONNTRACK_LOG_INVALID,	"ip_conntrack_log_invalid" },
312 	/* NET_IPV4_NF_CONNTRACK_TCP_TIMEOUT_MAX_RETRANS "ip_conntrack_tcp_timeout_max_retrans" no longer used */
313 	{ CTL_INT,	NET_IPV4_NF_CONNTRACK_TCP_LOOSE,	"ip_conntrack_tcp_loose" },
314 	{ CTL_INT,	NET_IPV4_NF_CONNTRACK_TCP_BE_LIBERAL,	"ip_conntrack_tcp_be_liberal" },
315 	{ CTL_INT,	NET_IPV4_NF_CONNTRACK_TCP_MAX_RETRANS,	"ip_conntrack_tcp_max_retrans" },
316 
317 	/* NET_IPV4_NF_CONNTRACK_SCTP_TIMEOUT_CLOSED "ip_conntrack_sctp_timeout_closed" no longer used */
318 	/* NET_IPV4_NF_CONNTRACK_SCTP_TIMEOUT_COOKIE_WAIT "ip_conntrack_sctp_timeout_cookie_wait" no longer used */
319 	/* NET_IPV4_NF_CONNTRACK_SCTP_TIMEOUT_COOKIE_ECHOED "ip_conntrack_sctp_timeout_cookie_echoed" no longer used */
320 	/* NET_IPV4_NF_CONNTRACK_SCTP_TIMEOUT_ESTABLISHED "ip_conntrack_sctp_timeout_established" no longer used */
321 	/* NET_IPV4_NF_CONNTRACK_SCTP_TIMEOUT_SHUTDOWN_SENT "ip_conntrack_sctp_timeout_shutdown_sent" no longer used */
322 	/* NET_IPV4_NF_CONNTRACK_SCTP_TIMEOUT_SHUTDOWN_RECD "ip_conntrack_sctp_timeout_shutdown_recd" no longer used */
323 	/* NET_IPV4_NF_CONNTRACK_SCTP_TIMEOUT_SHUTDOWN_ACK_SENT "ip_conntrack_sctp_timeout_shutdown_ack_sent" no longer used */
324 
325 	{ CTL_INT,	NET_IPV4_NF_CONNTRACK_COUNT,		"ip_conntrack_count" },
326 	{ CTL_INT,	NET_IPV4_NF_CONNTRACK_CHECKSUM,		"ip_conntrack_checksum" },
327 	{}
328 };
329 
330 static const struct bin_table bin_net_ipv4_table[] = {
331 	{CTL_INT,	NET_IPV4_FORWARD,			"ip_forward" },
332 
333 	{ CTL_DIR,	NET_IPV4_CONF,		"conf",		bin_net_ipv4_conf_table },
334 	{ CTL_DIR,	NET_IPV4_NEIGH,		"neigh",	bin_net_neigh_table },
335 	{ CTL_DIR,	NET_IPV4_ROUTE,		"route",	bin_net_ipv4_route_table },
336 	/* NET_IPV4_FIB_HASH unused */
337 	{ CTL_DIR,	NET_IPV4_NETFILTER,	"netfilter",	bin_net_ipv4_netfilter_table },
338 
339 	{ CTL_INT,	NET_IPV4_TCP_TIMESTAMPS,		"tcp_timestamps" },
340 	{ CTL_INT,	NET_IPV4_TCP_WINDOW_SCALING,		"tcp_window_scaling" },
341 	{ CTL_INT,	NET_IPV4_TCP_SACK,			"tcp_sack" },
342 	{ CTL_INT,	NET_IPV4_TCP_RETRANS_COLLAPSE,		"tcp_retrans_collapse" },
343 	{ CTL_INT,	NET_IPV4_DEFAULT_TTL,			"ip_default_ttl" },
344 	/* NET_IPV4_AUTOCONFIG unused */
345 	{ CTL_INT,	NET_IPV4_NO_PMTU_DISC,			"ip_no_pmtu_disc" },
346 	{ CTL_INT,	NET_IPV4_NONLOCAL_BIND,			"ip_nonlocal_bind" },
347 	{ CTL_INT,	NET_IPV4_TCP_SYN_RETRIES,		"tcp_syn_retries" },
348 	{ CTL_INT,	NET_TCP_SYNACK_RETRIES,			"tcp_synack_retries" },
349 	{ CTL_INT,	NET_TCP_MAX_ORPHANS,			"tcp_max_orphans" },
350 	{ CTL_INT,	NET_TCP_MAX_TW_BUCKETS,			"tcp_max_tw_buckets" },
351 	{ CTL_INT,	NET_IPV4_DYNADDR,			"ip_dynaddr" },
352 	{ CTL_INT,	NET_IPV4_TCP_KEEPALIVE_TIME,		"tcp_keepalive_time" },
353 	{ CTL_INT,	NET_IPV4_TCP_KEEPALIVE_PROBES,		"tcp_keepalive_probes" },
354 	{ CTL_INT,	NET_IPV4_TCP_KEEPALIVE_INTVL,		"tcp_keepalive_intvl" },
355 	{ CTL_INT,	NET_IPV4_TCP_RETRIES1,			"tcp_retries1" },
356 	{ CTL_INT,	NET_IPV4_TCP_RETRIES2,			"tcp_retries2" },
357 	{ CTL_INT,	NET_IPV4_TCP_FIN_TIMEOUT,		"tcp_fin_timeout" },
358 	{ CTL_INT,	NET_TCP_SYNCOOKIES,			"tcp_syncookies" },
359 	{ CTL_INT,	NET_TCP_TW_RECYCLE,			"tcp_tw_recycle" },
360 	{ CTL_INT,	NET_TCP_ABORT_ON_OVERFLOW,		"tcp_abort_on_overflow" },
361 	{ CTL_INT,	NET_TCP_STDURG,				"tcp_stdurg" },
362 	{ CTL_INT,	NET_TCP_RFC1337,			"tcp_rfc1337" },
363 	{ CTL_INT,	NET_TCP_MAX_SYN_BACKLOG,		"tcp_max_syn_backlog" },
364 	{ CTL_INT,	NET_IPV4_LOCAL_PORT_RANGE,		"ip_local_port_range" },
365 	{ CTL_INT,	NET_IPV4_IGMP_MAX_MEMBERSHIPS,		"igmp_max_memberships" },
366 	{ CTL_INT,	NET_IPV4_IGMP_MAX_MSF,			"igmp_max_msf" },
367 	{ CTL_INT,	NET_IPV4_INET_PEER_THRESHOLD,		"inet_peer_threshold" },
368 	{ CTL_INT,	NET_IPV4_INET_PEER_MINTTL,		"inet_peer_minttl" },
369 	{ CTL_INT,	NET_IPV4_INET_PEER_MAXTTL,		"inet_peer_maxttl" },
370 	{ CTL_INT,	NET_IPV4_INET_PEER_GC_MINTIME,		"inet_peer_gc_mintime" },
371 	{ CTL_INT,	NET_IPV4_INET_PEER_GC_MAXTIME,		"inet_peer_gc_maxtime" },
372 	{ CTL_INT,	NET_TCP_ORPHAN_RETRIES,			"tcp_orphan_retries" },
373 	{ CTL_INT,	NET_TCP_FACK,				"tcp_fack" },
374 	{ CTL_INT,	NET_TCP_REORDERING,			"tcp_reordering" },
375 	{ CTL_INT,	NET_TCP_ECN,				"tcp_ecn" },
376 	{ CTL_INT,	NET_TCP_DSACK,				"tcp_dsack" },
377 	{ CTL_INT,	NET_TCP_MEM,				"tcp_mem" },
378 	{ CTL_INT,	NET_TCP_WMEM,				"tcp_wmem" },
379 	{ CTL_INT,	NET_TCP_RMEM,				"tcp_rmem" },
380 	{ CTL_INT,	NET_TCP_APP_WIN,			"tcp_app_win" },
381 	{ CTL_INT,	NET_TCP_ADV_WIN_SCALE,			"tcp_adv_win_scale" },
382 	{ CTL_INT,	NET_TCP_TW_REUSE,			"tcp_tw_reuse" },
383 	{ CTL_INT,	NET_TCP_FRTO,				"tcp_frto" },
384 	{ CTL_INT,	NET_TCP_FRTO_RESPONSE,			"tcp_frto_response" },
385 	{ CTL_INT,	NET_TCP_LOW_LATENCY,			"tcp_low_latency" },
386 	{ CTL_INT,	NET_TCP_NO_METRICS_SAVE,		"tcp_no_metrics_save" },
387 	{ CTL_INT,	NET_TCP_MODERATE_RCVBUF,		"tcp_moderate_rcvbuf" },
388 	{ CTL_INT,	NET_TCP_TSO_WIN_DIVISOR,		"tcp_tso_win_divisor" },
389 	{ CTL_STR,	NET_TCP_CONG_CONTROL,			"tcp_congestion_control" },
390 	{ CTL_INT,	NET_TCP_MTU_PROBING,			"tcp_mtu_probing" },
391 	{ CTL_INT,	NET_TCP_BASE_MSS,			"tcp_base_mss" },
392 	{ CTL_INT,	NET_IPV4_TCP_WORKAROUND_SIGNED_WINDOWS,	"tcp_workaround_signed_windows" },
393 	{ CTL_INT,	NET_TCP_SLOW_START_AFTER_IDLE,		"tcp_slow_start_after_idle" },
394 	{ CTL_INT,	NET_CIPSOV4_CACHE_ENABLE,		"cipso_cache_enable" },
395 	{ CTL_INT,	NET_CIPSOV4_CACHE_BUCKET_SIZE,		"cipso_cache_bucket_size" },
396 	{ CTL_INT,	NET_CIPSOV4_RBM_OPTFMT,			"cipso_rbm_optfmt" },
397 	{ CTL_INT,	NET_CIPSOV4_RBM_STRICTVALID,		"cipso_rbm_strictvalid" },
398 	/* NET_TCP_AVAIL_CONG_CONTROL "tcp_available_congestion_control" no longer used */
399 	{ CTL_STR,	NET_TCP_ALLOWED_CONG_CONTROL,		"tcp_allowed_congestion_control" },
400 	{ CTL_INT,	NET_TCP_MAX_SSTHRESH,			"tcp_max_ssthresh" },
401 
402 	{ CTL_INT,	NET_IPV4_ICMP_ECHO_IGNORE_ALL,		"icmp_echo_ignore_all" },
403 	{ CTL_INT,	NET_IPV4_ICMP_ECHO_IGNORE_BROADCASTS,	"icmp_echo_ignore_broadcasts" },
404 	{ CTL_INT,	NET_IPV4_ICMP_IGNORE_BOGUS_ERROR_RESPONSES,	"icmp_ignore_bogus_error_responses" },
405 	{ CTL_INT,	NET_IPV4_ICMP_ERRORS_USE_INBOUND_IFADDR,	"icmp_errors_use_inbound_ifaddr" },
406 	{ CTL_INT,	NET_IPV4_ICMP_RATELIMIT,		"icmp_ratelimit" },
407 	{ CTL_INT,	NET_IPV4_ICMP_RATEMASK,			"icmp_ratemask" },
408 
409 	{ CTL_INT,	NET_IPV4_IPFRAG_HIGH_THRESH,		"ipfrag_high_thresh" },
410 	{ CTL_INT,	NET_IPV4_IPFRAG_LOW_THRESH,		"ipfrag_low_thresh" },
411 	{ CTL_INT,	NET_IPV4_IPFRAG_TIME,			"ipfrag_time" },
412 
413 	{ CTL_INT,	NET_IPV4_IPFRAG_SECRET_INTERVAL,	"ipfrag_secret_interval" },
414 	/* NET_IPV4_IPFRAG_MAX_DIST "ipfrag_max_dist" no longer used */
415 
416 	{ CTL_INT,	2088 /* NET_IPQ_QMAX */,		"ip_queue_maxlen" },
417 
418 	/* NET_TCP_DEFAULT_WIN_SCALE unused */
419 	/* NET_TCP_BIC_BETA unused */
420 	/* NET_IPV4_TCP_MAX_KA_PROBES unused */
421 	/* NET_IPV4_IP_MASQ_DEBUG unused */
422 	/* NET_TCP_SYN_TAILDROP unused */
423 	/* NET_IPV4_ICMP_SOURCEQUENCH_RATE unused */
424 	/* NET_IPV4_ICMP_DESTUNREACH_RATE unused */
425 	/* NET_IPV4_ICMP_TIMEEXCEED_RATE unused */
426 	/* NET_IPV4_ICMP_PARAMPROB_RATE unused */
427 	/* NET_IPV4_ICMP_ECHOREPLY_RATE unused */
428 	/* NET_IPV4_ALWAYS_DEFRAG unused */
429 	{}
430 };
431 
432 static const struct bin_table bin_net_ipx_table[] = {
433 	{ CTL_INT,	NET_IPX_PPROP_BROADCASTING,	"ipx_pprop_broadcasting" },
434 	/* NET_IPX_FORWARDING unused */
435 	{}
436 };
437 
438 static const struct bin_table bin_net_atalk_table[] = {
439 	{ CTL_INT,	NET_ATALK_AARP_EXPIRY_TIME,		"aarp-expiry-time" },
440 	{ CTL_INT,	NET_ATALK_AARP_TICK_TIME,		"aarp-tick-time" },
441 	{ CTL_INT,	NET_ATALK_AARP_RETRANSMIT_LIMIT,	"aarp-retransmit-limit" },
442 	{ CTL_INT,	NET_ATALK_AARP_RESOLVE_TIME,		"aarp-resolve-time" },
443 	{},
444 };
445 
446 static const struct bin_table bin_net_netrom_table[] = {
447 	{ CTL_INT,	NET_NETROM_DEFAULT_PATH_QUALITY,		"default_path_quality" },
448 	{ CTL_INT,	NET_NETROM_OBSOLESCENCE_COUNT_INITIALISER,	"obsolescence_count_initialiser" },
449 	{ CTL_INT,	NET_NETROM_NETWORK_TTL_INITIALISER,		"network_ttl_initialiser" },
450 	{ CTL_INT,	NET_NETROM_TRANSPORT_TIMEOUT,			"transport_timeout" },
451 	{ CTL_INT,	NET_NETROM_TRANSPORT_MAXIMUM_TRIES,		"transport_maximum_tries" },
452 	{ CTL_INT,	NET_NETROM_TRANSPORT_ACKNOWLEDGE_DELAY,		"transport_acknowledge_delay" },
453 	{ CTL_INT,	NET_NETROM_TRANSPORT_BUSY_DELAY,		"transport_busy_delay" },
454 	{ CTL_INT,	NET_NETROM_TRANSPORT_REQUESTED_WINDOW_SIZE,	"transport_requested_window_size" },
455 	{ CTL_INT,	NET_NETROM_TRANSPORT_NO_ACTIVITY_TIMEOUT,	"transport_no_activity_timeout" },
456 	{ CTL_INT,	NET_NETROM_ROUTING_CONTROL,			"routing_control" },
457 	{ CTL_INT,	NET_NETROM_LINK_FAILS_COUNT,			"link_fails_count" },
458 	{ CTL_INT,	NET_NETROM_RESET,				"reset" },
459 	{}
460 };
461 
462 static const struct bin_table bin_net_ax25_param_table[] = {
463 	{ CTL_INT,	NET_AX25_IP_DEFAULT_MODE,	"ip_default_mode" },
464 	{ CTL_INT,	NET_AX25_DEFAULT_MODE,		"ax25_default_mode" },
465 	{ CTL_INT,	NET_AX25_BACKOFF_TYPE,		"backoff_type" },
466 	{ CTL_INT,	NET_AX25_CONNECT_MODE,		"connect_mode" },
467 	{ CTL_INT,	NET_AX25_STANDARD_WINDOW,	"standard_window_size" },
468 	{ CTL_INT,	NET_AX25_EXTENDED_WINDOW,	"extended_window_size" },
469 	{ CTL_INT,	NET_AX25_T1_TIMEOUT,		"t1_timeout" },
470 	{ CTL_INT,	NET_AX25_T2_TIMEOUT,		"t2_timeout" },
471 	{ CTL_INT,	NET_AX25_T3_TIMEOUT,		"t3_timeout" },
472 	{ CTL_INT,	NET_AX25_IDLE_TIMEOUT,		"idle_timeout" },
473 	{ CTL_INT,	NET_AX25_N2,			"maximum_retry_count" },
474 	{ CTL_INT,	NET_AX25_PACLEN,		"maximum_packet_length" },
475 	{ CTL_INT,	NET_AX25_PROTOCOL,		"protocol" },
476 	{ CTL_INT,	NET_AX25_DAMA_SLAVE_TIMEOUT,	"dama_slave_timeout" },
477 	{}
478 };
479 
480 static const struct bin_table bin_net_ax25_table[] = {
481 	{ CTL_DIR,	0, NULL, bin_net_ax25_param_table },
482 	{}
483 };
484 
485 static const struct bin_table bin_net_rose_table[] = {
486 	{ CTL_INT,	NET_ROSE_RESTART_REQUEST_TIMEOUT,	"restart_request_timeout" },
487 	{ CTL_INT,	NET_ROSE_CALL_REQUEST_TIMEOUT,		"call_request_timeout" },
488 	{ CTL_INT,	NET_ROSE_RESET_REQUEST_TIMEOUT,		"reset_request_timeout" },
489 	{ CTL_INT,	NET_ROSE_CLEAR_REQUEST_TIMEOUT,		"clear_request_timeout" },
490 	{ CTL_INT,	NET_ROSE_ACK_HOLD_BACK_TIMEOUT,		"acknowledge_hold_back_timeout" },
491 	{ CTL_INT,	NET_ROSE_ROUTING_CONTROL,		"routing_control" },
492 	{ CTL_INT,	NET_ROSE_LINK_FAIL_TIMEOUT,		"link_fail_timeout" },
493 	{ CTL_INT,	NET_ROSE_MAX_VCS,			"maximum_virtual_circuits" },
494 	{ CTL_INT,	NET_ROSE_WINDOW_SIZE,			"window_size" },
495 	{ CTL_INT,	NET_ROSE_NO_ACTIVITY_TIMEOUT,		"no_activity_timeout" },
496 	{}
497 };
498 
499 static const struct bin_table bin_net_ipv6_conf_var_table[] = {
500 	{ CTL_INT,	NET_IPV6_FORWARDING,			"forwarding" },
501 	{ CTL_INT,	NET_IPV6_HOP_LIMIT,			"hop_limit" },
502 	{ CTL_INT,	NET_IPV6_MTU,				"mtu" },
503 	{ CTL_INT,	NET_IPV6_ACCEPT_RA,			"accept_ra" },
504 	{ CTL_INT,	NET_IPV6_ACCEPT_REDIRECTS,		"accept_redirects" },
505 	{ CTL_INT,	NET_IPV6_AUTOCONF,			"autoconf" },
506 	{ CTL_INT,	NET_IPV6_DAD_TRANSMITS,			"dad_transmits" },
507 	{ CTL_INT,	NET_IPV6_RTR_SOLICITS,			"router_solicitations" },
508 	{ CTL_INT,	NET_IPV6_RTR_SOLICIT_INTERVAL,		"router_solicitation_interval" },
509 	{ CTL_INT,	NET_IPV6_RTR_SOLICIT_DELAY,		"router_solicitation_delay" },
510 	{ CTL_INT,	NET_IPV6_USE_TEMPADDR,			"use_tempaddr" },
511 	{ CTL_INT,	NET_IPV6_TEMP_VALID_LFT,		"temp_valid_lft" },
512 	{ CTL_INT,	NET_IPV6_TEMP_PREFERED_LFT,		"temp_prefered_lft" },
513 	{ CTL_INT,	NET_IPV6_REGEN_MAX_RETRY,		"regen_max_retry" },
514 	{ CTL_INT,	NET_IPV6_MAX_DESYNC_FACTOR,		"max_desync_factor" },
515 	{ CTL_INT,	NET_IPV6_MAX_ADDRESSES,			"max_addresses" },
516 	{ CTL_INT,	NET_IPV6_FORCE_MLD_VERSION,		"force_mld_version" },
517 	{ CTL_INT,	NET_IPV6_ACCEPT_RA_DEFRTR,		"accept_ra_defrtr" },
518 	{ CTL_INT,	NET_IPV6_ACCEPT_RA_PINFO,		"accept_ra_pinfo" },
519 	{ CTL_INT,	NET_IPV6_ACCEPT_RA_RTR_PREF,		"accept_ra_rtr_pref" },
520 	{ CTL_INT,	NET_IPV6_RTR_PROBE_INTERVAL,		"router_probe_interval" },
521 	{ CTL_INT,	NET_IPV6_ACCEPT_RA_RT_INFO_MAX_PLEN,	"accept_ra_rt_info_max_plen" },
522 	{ CTL_INT,	NET_IPV6_PROXY_NDP,			"proxy_ndp" },
523 	{ CTL_INT,	NET_IPV6_ACCEPT_SOURCE_ROUTE,		"accept_source_route" },
524 	{ CTL_INT,	NET_IPV6_ACCEPT_RA_FROM_LOCAL,		"accept_ra_from_local" },
525 	{}
526 };
527 
528 static const struct bin_table bin_net_ipv6_conf_table[] = {
529 	{ CTL_DIR,	NET_PROTO_CONF_ALL,		"all",	bin_net_ipv6_conf_var_table },
530 	{ CTL_DIR,	NET_PROTO_CONF_DEFAULT, 	"default", bin_net_ipv6_conf_var_table },
531 	{ CTL_DIR,	0, NULL, bin_net_ipv6_conf_var_table },
532 	{}
533 };
534 
535 static const struct bin_table bin_net_ipv6_route_table[] = {
536 	/* NET_IPV6_ROUTE_FLUSH	"flush"  no longer used */
537 	{ CTL_INT,	NET_IPV6_ROUTE_GC_THRESH,		"gc_thresh" },
538 	{ CTL_INT,	NET_IPV6_ROUTE_MAX_SIZE,		"max_size" },
539 	{ CTL_INT,	NET_IPV6_ROUTE_GC_MIN_INTERVAL,		"gc_min_interval" },
540 	{ CTL_INT,	NET_IPV6_ROUTE_GC_TIMEOUT,		"gc_timeout" },
541 	{ CTL_INT,	NET_IPV6_ROUTE_GC_INTERVAL,		"gc_interval" },
542 	{ CTL_INT,	NET_IPV6_ROUTE_GC_ELASTICITY,		"gc_elasticity" },
543 	{ CTL_INT,	NET_IPV6_ROUTE_MTU_EXPIRES,		"mtu_expires" },
544 	{ CTL_INT,	NET_IPV6_ROUTE_MIN_ADVMSS,		"min_adv_mss" },
545 	{ CTL_INT,	NET_IPV6_ROUTE_GC_MIN_INTERVAL_MS,	"gc_min_interval_ms" },
546 	{}
547 };
548 
549 static const struct bin_table bin_net_ipv6_icmp_table[] = {
550 	{ CTL_INT,	NET_IPV6_ICMP_RATELIMIT,	"ratelimit" },
551 	{}
552 };
553 
554 static const struct bin_table bin_net_ipv6_table[] = {
555 	{ CTL_DIR,	NET_IPV6_CONF,		"conf",		bin_net_ipv6_conf_table },
556 	{ CTL_DIR,	NET_IPV6_NEIGH,		"neigh",	bin_net_neigh_table },
557 	{ CTL_DIR,	NET_IPV6_ROUTE,		"route",	bin_net_ipv6_route_table },
558 	{ CTL_DIR,	NET_IPV6_ICMP,		"icmp",		bin_net_ipv6_icmp_table },
559 	{ CTL_INT,	NET_IPV6_BINDV6ONLY,		"bindv6only" },
560 	{ CTL_INT,	NET_IPV6_IP6FRAG_HIGH_THRESH,	"ip6frag_high_thresh" },
561 	{ CTL_INT,	NET_IPV6_IP6FRAG_LOW_THRESH,	"ip6frag_low_thresh" },
562 	{ CTL_INT,	NET_IPV6_IP6FRAG_TIME,		"ip6frag_time" },
563 	{ CTL_INT,	NET_IPV6_IP6FRAG_SECRET_INTERVAL,	"ip6frag_secret_interval" },
564 	{ CTL_INT,	NET_IPV6_MLD_MAX_MSF,		"mld_max_msf" },
565 	{ CTL_INT,	2088 /* IPQ_QMAX */,		"ip6_queue_maxlen" },
566 	{}
567 };
568 
569 static const struct bin_table bin_net_x25_table[] = {
570 	{ CTL_INT,	NET_X25_RESTART_REQUEST_TIMEOUT,	"restart_request_timeout" },
571 	{ CTL_INT,	NET_X25_CALL_REQUEST_TIMEOUT,		"call_request_timeout" },
572 	{ CTL_INT,	NET_X25_RESET_REQUEST_TIMEOUT,	"reset_request_timeout" },
573 	{ CTL_INT,	NET_X25_CLEAR_REQUEST_TIMEOUT,	"clear_request_timeout" },
574 	{ CTL_INT,	NET_X25_ACK_HOLD_BACK_TIMEOUT,	"acknowledgement_hold_back_timeout" },
575 	{ CTL_INT,	NET_X25_FORWARD,			"x25_forward" },
576 	{}
577 };
578 
579 static const struct bin_table bin_net_tr_table[] = {
580 	{ CTL_INT,	NET_TR_RIF_TIMEOUT,	"rif_timeout" },
581 	{}
582 };
583 
584 
585 static const struct bin_table bin_net_decnet_conf_vars[] = {
586 	{ CTL_INT,	NET_DECNET_CONF_DEV_FORWARDING,	"forwarding" },
587 	{ CTL_INT,	NET_DECNET_CONF_DEV_PRIORITY,	"priority" },
588 	{ CTL_INT,	NET_DECNET_CONF_DEV_T2,		"t2" },
589 	{ CTL_INT,	NET_DECNET_CONF_DEV_T3,		"t3" },
590 	{}
591 };
592 
593 static const struct bin_table bin_net_decnet_conf[] = {
594 	{ CTL_DIR, NET_DECNET_CONF_ETHER,    "ethernet", bin_net_decnet_conf_vars },
595 	{ CTL_DIR, NET_DECNET_CONF_GRE,	     "ipgre",    bin_net_decnet_conf_vars },
596 	{ CTL_DIR, NET_DECNET_CONF_X25,	     "x25",      bin_net_decnet_conf_vars },
597 	{ CTL_DIR, NET_DECNET_CONF_PPP,	     "ppp",      bin_net_decnet_conf_vars },
598 	{ CTL_DIR, NET_DECNET_CONF_DDCMP,    "ddcmp",    bin_net_decnet_conf_vars },
599 	{ CTL_DIR, NET_DECNET_CONF_LOOPBACK, "loopback", bin_net_decnet_conf_vars },
600 	{ CTL_DIR, 0,			     NULL,	 bin_net_decnet_conf_vars },
601 	{}
602 };
603 
604 static const struct bin_table bin_net_decnet_table[] = {
605 	{ CTL_DIR,	NET_DECNET_CONF,		"conf",	bin_net_decnet_conf },
606 	{ CTL_DNADR,	NET_DECNET_NODE_ADDRESS,	"node_address" },
607 	{ CTL_STR,	NET_DECNET_NODE_NAME,		"node_name" },
608 	{ CTL_STR,	NET_DECNET_DEFAULT_DEVICE,	"default_device" },
609 	{ CTL_INT,	NET_DECNET_TIME_WAIT,		"time_wait" },
610 	{ CTL_INT,	NET_DECNET_DN_COUNT,		"dn_count" },
611 	{ CTL_INT,	NET_DECNET_DI_COUNT,		"di_count" },
612 	{ CTL_INT,	NET_DECNET_DR_COUNT,		"dr_count" },
613 	{ CTL_INT,	NET_DECNET_DST_GC_INTERVAL,	"dst_gc_interval" },
614 	{ CTL_INT,	NET_DECNET_NO_FC_MAX_CWND,	"no_fc_max_cwnd" },
615 	{ CTL_INT,	NET_DECNET_MEM,		"decnet_mem" },
616 	{ CTL_INT,	NET_DECNET_RMEM,		"decnet_rmem" },
617 	{ CTL_INT,	NET_DECNET_WMEM,		"decnet_wmem" },
618 	{ CTL_INT,	NET_DECNET_DEBUG_LEVEL,	"debug" },
619 	{}
620 };
621 
622 static const struct bin_table bin_net_sctp_table[] = {
623 	{ CTL_INT,	NET_SCTP_RTO_INITIAL,		"rto_initial" },
624 	{ CTL_INT,	NET_SCTP_RTO_MIN,		"rto_min" },
625 	{ CTL_INT,	NET_SCTP_RTO_MAX,		"rto_max" },
626 	{ CTL_INT,	NET_SCTP_RTO_ALPHA,		"rto_alpha_exp_divisor" },
627 	{ CTL_INT,	NET_SCTP_RTO_BETA,		"rto_beta_exp_divisor" },
628 	{ CTL_INT,	NET_SCTP_VALID_COOKIE_LIFE,	"valid_cookie_life" },
629 	{ CTL_INT,	NET_SCTP_ASSOCIATION_MAX_RETRANS,	"association_max_retrans" },
630 	{ CTL_INT,	NET_SCTP_PATH_MAX_RETRANS,	"path_max_retrans" },
631 	{ CTL_INT,	NET_SCTP_MAX_INIT_RETRANSMITS,	"max_init_retransmits" },
632 	{ CTL_INT,	NET_SCTP_HB_INTERVAL,		"hb_interval" },
633 	{ CTL_INT,	NET_SCTP_PRESERVE_ENABLE,	"cookie_preserve_enable" },
634 	{ CTL_INT,	NET_SCTP_MAX_BURST,		"max_burst" },
635 	{ CTL_INT,	NET_SCTP_ADDIP_ENABLE,		"addip_enable" },
636 	{ CTL_INT,	NET_SCTP_PRSCTP_ENABLE,		"prsctp_enable" },
637 	{ CTL_INT,	NET_SCTP_SNDBUF_POLICY,		"sndbuf_policy" },
638 	{ CTL_INT,	NET_SCTP_SACK_TIMEOUT,		"sack_timeout" },
639 	{ CTL_INT,	NET_SCTP_RCVBUF_POLICY,		"rcvbuf_policy" },
640 	{}
641 };
642 
643 static const struct bin_table bin_net_llc_llc2_timeout_table[] = {
644 	{ CTL_INT,	NET_LLC2_ACK_TIMEOUT,	"ack" },
645 	{ CTL_INT,	NET_LLC2_P_TIMEOUT,	"p" },
646 	{ CTL_INT,	NET_LLC2_REJ_TIMEOUT,	"rej" },
647 	{ CTL_INT,	NET_LLC2_BUSY_TIMEOUT,	"busy" },
648 	{}
649 };
650 
651 static const struct bin_table bin_net_llc_station_table[] = {
652 	{ CTL_INT,	NET_LLC_STATION_ACK_TIMEOUT,	"ack_timeout" },
653 	{}
654 };
655 
656 static const struct bin_table bin_net_llc_llc2_table[] = {
657 	{ CTL_DIR,	NET_LLC2,		"timeout",	bin_net_llc_llc2_timeout_table },
658 	{}
659 };
660 
661 static const struct bin_table bin_net_llc_table[] = {
662 	{ CTL_DIR,	NET_LLC2,		"llc2",		bin_net_llc_llc2_table },
663 	{ CTL_DIR,	NET_LLC_STATION,	"station",	bin_net_llc_station_table },
664 	{}
665 };
666 
667 static const struct bin_table bin_net_netfilter_table[] = {
668 	{ CTL_INT,	NET_NF_CONNTRACK_MAX,			"nf_conntrack_max" },
669 	/* NET_NF_CONNTRACK_TCP_TIMEOUT_SYN_SENT "nf_conntrack_tcp_timeout_syn_sent" no longer used */
670 	/* NET_NF_CONNTRACK_TCP_TIMEOUT_SYN_RECV "nf_conntrack_tcp_timeout_syn_recv" no longer used */
671 	/* NET_NF_CONNTRACK_TCP_TIMEOUT_ESTABLISHED "nf_conntrack_tcp_timeout_established" no longer used */
672 	/* NET_NF_CONNTRACK_TCP_TIMEOUT_FIN_WAIT "nf_conntrack_tcp_timeout_fin_wait" no longer used */
673 	/* NET_NF_CONNTRACK_TCP_TIMEOUT_CLOSE_WAIT "nf_conntrack_tcp_timeout_close_wait" no longer used */
674 	/* NET_NF_CONNTRACK_TCP_TIMEOUT_LAST_ACK "nf_conntrack_tcp_timeout_last_ack" no longer used */
675 	/* NET_NF_CONNTRACK_TCP_TIMEOUT_TIME_WAIT "nf_conntrack_tcp_timeout_time_wait" no longer used */
676 	/* NET_NF_CONNTRACK_TCP_TIMEOUT_CLOSE "nf_conntrack_tcp_timeout_close" no longer used */
677 	/* NET_NF_CONNTRACK_UDP_TIMEOUT	"nf_conntrack_udp_timeout" no longer used */
678 	/* NET_NF_CONNTRACK_UDP_TIMEOUT_STREAM "nf_conntrack_udp_timeout_stream" no longer used */
679 	/* NET_NF_CONNTRACK_ICMP_TIMEOUT "nf_conntrack_icmp_timeout" no longer used */
680 	/* NET_NF_CONNTRACK_GENERIC_TIMEOUT "nf_conntrack_generic_timeout" no longer used */
681 	{ CTL_INT,	NET_NF_CONNTRACK_BUCKETS,		"nf_conntrack_buckets" },
682 	{ CTL_INT,	NET_NF_CONNTRACK_LOG_INVALID,		"nf_conntrack_log_invalid" },
683 	/* NET_NF_CONNTRACK_TCP_TIMEOUT_MAX_RETRANS "nf_conntrack_tcp_timeout_max_retrans" no longer used */
684 	{ CTL_INT,	NET_NF_CONNTRACK_TCP_LOOSE,		"nf_conntrack_tcp_loose" },
685 	{ CTL_INT,	NET_NF_CONNTRACK_TCP_BE_LIBERAL,	"nf_conntrack_tcp_be_liberal" },
686 	{ CTL_INT,	NET_NF_CONNTRACK_TCP_MAX_RETRANS,	"nf_conntrack_tcp_max_retrans" },
687 	/* NET_NF_CONNTRACK_SCTP_TIMEOUT_CLOSED "nf_conntrack_sctp_timeout_closed" no longer used */
688 	/* NET_NF_CONNTRACK_SCTP_TIMEOUT_COOKIE_WAIT "nf_conntrack_sctp_timeout_cookie_wait" no longer used */
689 	/* NET_NF_CONNTRACK_SCTP_TIMEOUT_COOKIE_ECHOED "nf_conntrack_sctp_timeout_cookie_echoed" no longer used */
690 	/* NET_NF_CONNTRACK_SCTP_TIMEOUT_ESTABLISHED "nf_conntrack_sctp_timeout_established" no longer used */
691 	/* NET_NF_CONNTRACK_SCTP_TIMEOUT_SHUTDOWN_SENT "nf_conntrack_sctp_timeout_shutdown_sent" no longer used */
692 	/* NET_NF_CONNTRACK_SCTP_TIMEOUT_SHUTDOWN_RECD "nf_conntrack_sctp_timeout_shutdown_recd" no longer used */
693 	/* NET_NF_CONNTRACK_SCTP_TIMEOUT_SHUTDOWN_ACK_SENT "nf_conntrack_sctp_timeout_shutdown_ack_sent" no longer used */
694 	{ CTL_INT,	NET_NF_CONNTRACK_COUNT,			"nf_conntrack_count" },
695 	/* NET_NF_CONNTRACK_ICMPV6_TIMEOUT "nf_conntrack_icmpv6_timeout" no longer used */
696 	/* NET_NF_CONNTRACK_FRAG6_TIMEOUT "nf_conntrack_frag6_timeout" no longer used */
697 	{ CTL_INT,	NET_NF_CONNTRACK_FRAG6_LOW_THRESH,	"nf_conntrack_frag6_low_thresh" },
698 	{ CTL_INT,	NET_NF_CONNTRACK_FRAG6_HIGH_THRESH,	"nf_conntrack_frag6_high_thresh" },
699 	{ CTL_INT,	NET_NF_CONNTRACK_CHECKSUM,		"nf_conntrack_checksum" },
700 
701 	{}
702 };
703 
704 static const struct bin_table bin_net_irda_table[] = {
705 	{ CTL_INT,	NET_IRDA_DISCOVERY,		"discovery" },
706 	{ CTL_STR,	NET_IRDA_DEVNAME,		"devname" },
707 	{ CTL_INT,	NET_IRDA_DEBUG,			"debug" },
708 	{ CTL_INT,	NET_IRDA_FAST_POLL,		"fast_poll_increase" },
709 	{ CTL_INT,	NET_IRDA_DISCOVERY_SLOTS,	"discovery_slots" },
710 	{ CTL_INT,	NET_IRDA_DISCOVERY_TIMEOUT,	"discovery_timeout" },
711 	{ CTL_INT,	NET_IRDA_SLOT_TIMEOUT,		"slot_timeout" },
712 	{ CTL_INT,	NET_IRDA_MAX_BAUD_RATE,		"max_baud_rate" },
713 	{ CTL_INT,	NET_IRDA_MIN_TX_TURN_TIME,	"min_tx_turn_time" },
714 	{ CTL_INT,	NET_IRDA_MAX_TX_DATA_SIZE,	"max_tx_data_size" },
715 	{ CTL_INT,	NET_IRDA_MAX_TX_WINDOW,		"max_tx_window" },
716 	{ CTL_INT,	NET_IRDA_MAX_NOREPLY_TIME,	"max_noreply_time" },
717 	{ CTL_INT,	NET_IRDA_WARN_NOREPLY_TIME,	"warn_noreply_time" },
718 	{ CTL_INT,	NET_IRDA_LAP_KEEPALIVE_TIME,	"lap_keepalive_time" },
719 	{}
720 };
721 
722 static const struct bin_table bin_net_table[] = {
723 	{ CTL_DIR,	NET_CORE,		"core",		bin_net_core_table },
724 	/* NET_ETHER not used */
725 	/* NET_802 not used */
726 	{ CTL_DIR,	NET_UNIX,		"unix",		bin_net_unix_table },
727 	{ CTL_DIR,	NET_IPV4,		"ipv4",		bin_net_ipv4_table },
728 	{ CTL_DIR,	NET_IPX,		"ipx",		bin_net_ipx_table },
729 	{ CTL_DIR,	NET_ATALK,		"appletalk",	bin_net_atalk_table },
730 	{ CTL_DIR,	NET_NETROM,		"netrom",	bin_net_netrom_table },
731 	{ CTL_DIR,	NET_AX25,		"ax25",		bin_net_ax25_table },
732 	/*  NET_BRIDGE "bridge" no longer used */
733 	{ CTL_DIR,	NET_ROSE,		"rose",		bin_net_rose_table },
734 	{ CTL_DIR,	NET_IPV6,		"ipv6",		bin_net_ipv6_table },
735 	{ CTL_DIR,	NET_X25,		"x25",		bin_net_x25_table },
736 	{ CTL_DIR,	NET_TR,			"token-ring",	bin_net_tr_table },
737 	{ CTL_DIR,	NET_DECNET,		"decnet",	bin_net_decnet_table },
738 	/*  NET_ECONET not used */
739 	{ CTL_DIR,	NET_SCTP,		"sctp",		bin_net_sctp_table },
740 	{ CTL_DIR,	NET_LLC,		"llc",		bin_net_llc_table },
741 	{ CTL_DIR,	NET_NETFILTER,		"netfilter",	bin_net_netfilter_table },
742 	/* NET_DCCP "dccp" no longer used */
743 	{ CTL_DIR,	NET_IRDA,		"irda",		bin_net_irda_table },
744 	{ CTL_INT,	2089,			"nf_conntrack_max" },
745 	{}
746 };
747 
748 static const struct bin_table bin_fs_quota_table[] = {
749 	{ CTL_INT,	FS_DQ_LOOKUPS,		"lookups" },
750 	{ CTL_INT,	FS_DQ_DROPS,		"drops" },
751 	{ CTL_INT,	FS_DQ_READS,		"reads" },
752 	{ CTL_INT,	FS_DQ_WRITES,		"writes" },
753 	{ CTL_INT,	FS_DQ_CACHE_HITS,	"cache_hits" },
754 	{ CTL_INT,	FS_DQ_ALLOCATED,	"allocated_dquots" },
755 	{ CTL_INT,	FS_DQ_FREE,		"free_dquots" },
756 	{ CTL_INT,	FS_DQ_SYNCS,		"syncs" },
757 	{ CTL_INT,	FS_DQ_WARNINGS,		"warnings" },
758 	{}
759 };
760 
761 static const struct bin_table bin_fs_xfs_table[] = {
762 	{ CTL_INT,	XFS_SGID_INHERIT,	"irix_sgid_inherit" },
763 	{ CTL_INT,	XFS_SYMLINK_MODE,	"irix_symlink_mode" },
764 	{ CTL_INT,	XFS_PANIC_MASK,		"panic_mask" },
765 
766 	{ CTL_INT,	XFS_ERRLEVEL,		"error_level" },
767 	{ CTL_INT,	XFS_SYNCD_TIMER,	"xfssyncd_centisecs" },
768 	{ CTL_INT,	XFS_INHERIT_SYNC,	"inherit_sync" },
769 	{ CTL_INT,	XFS_INHERIT_NODUMP,	"inherit_nodump" },
770 	{ CTL_INT,	XFS_INHERIT_NOATIME,	"inherit_noatime" },
771 	{ CTL_INT,	XFS_BUF_TIMER,		"xfsbufd_centisecs" },
772 	{ CTL_INT,	XFS_BUF_AGE,		"age_buffer_centisecs" },
773 	{ CTL_INT,	XFS_INHERIT_NOSYM,	"inherit_nosymlinks" },
774 	{ CTL_INT,	XFS_ROTORSTEP,	"rotorstep" },
775 	{ CTL_INT,	XFS_INHERIT_NODFRG,	"inherit_nodefrag" },
776 	{ CTL_INT,	XFS_FILESTREAM_TIMER,	"filestream_centisecs" },
777 	{ CTL_INT,	XFS_STATS_CLEAR,	"stats_clear" },
778 	{}
779 };
780 
781 static const struct bin_table bin_fs_ocfs2_nm_table[] = {
782 	{ CTL_STR,	1, "hb_ctl_path" },
783 	{}
784 };
785 
786 static const struct bin_table bin_fs_ocfs2_table[] = {
787 	{ CTL_DIR,	1,	"nm",	bin_fs_ocfs2_nm_table },
788 	{}
789 };
790 
791 static const struct bin_table bin_inotify_table[] = {
792 	{ CTL_INT,	INOTIFY_MAX_USER_INSTANCES,	"max_user_instances" },
793 	{ CTL_INT,	INOTIFY_MAX_USER_WATCHES,	"max_user_watches" },
794 	{ CTL_INT,	INOTIFY_MAX_QUEUED_EVENTS,	"max_queued_events" },
795 	{}
796 };
797 
798 static const struct bin_table bin_fs_table[] = {
799 	{ CTL_INT,	FS_NRINODE,		"inode-nr" },
800 	{ CTL_INT,	FS_STATINODE,		"inode-state" },
801 	/* FS_MAXINODE unused */
802 	/* FS_NRDQUOT unused */
803 	/* FS_MAXDQUOT unused */
804 	/* FS_NRFILE "file-nr" no longer used */
805 	{ CTL_INT,	FS_MAXFILE,		"file-max" },
806 	{ CTL_INT,	FS_DENTRY,		"dentry-state" },
807 	/* FS_NRSUPER unused */
808 	/* FS_MAXUPSER unused */
809 	{ CTL_INT,	FS_OVERFLOWUID,		"overflowuid" },
810 	{ CTL_INT,	FS_OVERFLOWGID,		"overflowgid" },
811 	{ CTL_INT,	FS_LEASES,		"leases-enable" },
812 	{ CTL_INT,	FS_DIR_NOTIFY,		"dir-notify-enable" },
813 	{ CTL_INT,	FS_LEASE_TIME,		"lease-break-time" },
814 	{ CTL_DIR,	FS_DQSTATS,		"quota",	bin_fs_quota_table },
815 	{ CTL_DIR,	FS_XFS,			"xfs",		bin_fs_xfs_table },
816 	{ CTL_ULONG,	FS_AIO_NR,		"aio-nr" },
817 	{ CTL_ULONG,	FS_AIO_MAX_NR,		"aio-max-nr" },
818 	{ CTL_DIR,	FS_INOTIFY,		"inotify",	bin_inotify_table },
819 	{ CTL_DIR,	FS_OCFS2,		"ocfs2",	bin_fs_ocfs2_table },
820 	{ CTL_INT,	KERN_SETUID_DUMPABLE,	"suid_dumpable" },
821 	{}
822 };
823 
824 static const struct bin_table bin_ipmi_table[] = {
825 	{ CTL_INT,	DEV_IPMI_POWEROFF_POWERCYCLE,	"poweroff_powercycle" },
826 	{}
827 };
828 
829 static const struct bin_table bin_mac_hid_files[] = {
830 	/* DEV_MAC_HID_KEYBOARD_SENDS_LINUX_KEYCODES unused */
831 	/* DEV_MAC_HID_KEYBOARD_LOCK_KEYCODES unused */
832 	{ CTL_INT,	DEV_MAC_HID_MOUSE_BUTTON_EMULATION,	"mouse_button_emulation" },
833 	{ CTL_INT,	DEV_MAC_HID_MOUSE_BUTTON2_KEYCODE,	"mouse_button2_keycode" },
834 	{ CTL_INT,	DEV_MAC_HID_MOUSE_BUTTON3_KEYCODE,	"mouse_button3_keycode" },
835 	/* DEV_MAC_HID_ADB_MOUSE_SENDS_KEYCODES unused */
836 	{}
837 };
838 
839 static const struct bin_table bin_raid_table[] = {
840 	{ CTL_INT,	DEV_RAID_SPEED_LIMIT_MIN,	"speed_limit_min" },
841 	{ CTL_INT,	DEV_RAID_SPEED_LIMIT_MAX,	"speed_limit_max" },
842 	{}
843 };
844 
845 static const struct bin_table bin_scsi_table[] = {
846 	{ CTL_INT, DEV_SCSI_LOGGING_LEVEL, "logging_level" },
847 	{}
848 };
849 
850 static const struct bin_table bin_dev_table[] = {
851 	/* DEV_CDROM	"cdrom" no longer used */
852 	/* DEV_HWMON unused */
853 	/* DEV_PARPORT	"parport" no longer used */
854 	{ CTL_DIR,	DEV_RAID,	"raid",		bin_raid_table },
855 	{ CTL_DIR,	DEV_MAC_HID,	"mac_hid",	bin_mac_hid_files },
856 	{ CTL_DIR,	DEV_SCSI,	"scsi",		bin_scsi_table },
857 	{ CTL_DIR,	DEV_IPMI,	"ipmi",		bin_ipmi_table },
858 	{}
859 };
860 
861 static const struct bin_table bin_bus_isa_table[] = {
862 	{ CTL_INT,	BUS_ISA_MEM_BASE,	"membase" },
863 	{ CTL_INT,	BUS_ISA_PORT_BASE,	"portbase" },
864 	{ CTL_INT,	BUS_ISA_PORT_SHIFT,	"portshift" },
865 	{}
866 };
867 
868 static const struct bin_table bin_bus_table[] = {
869 	{ CTL_DIR,	CTL_BUS_ISA,	"isa",	bin_bus_isa_table },
870 	{}
871 };
872 
873 
874 static const struct bin_table bin_s390dbf_table[] = {
875 	{ CTL_INT,	5678 /* CTL_S390DBF_STOPPABLE */, "debug_stoppable" },
876 	{ CTL_INT,	5679 /* CTL_S390DBF_ACTIVE */,	  "debug_active" },
877 	{}
878 };
879 
880 static const struct bin_table bin_sunrpc_table[] = {
881 	/* CTL_RPCDEBUG	"rpc_debug"  no longer used */
882 	/* CTL_NFSDEBUG "nfs_debug"  no longer used */
883 	/* CTL_NFSDDEBUG "nfsd_debug" no longer used  */
884 	/* CTL_NLMDEBUG "nlm_debug" no longer used */
885 
886 	{ CTL_INT,	CTL_SLOTTABLE_UDP,	"udp_slot_table_entries" },
887 	{ CTL_INT,	CTL_SLOTTABLE_TCP,	"tcp_slot_table_entries" },
888 	{ CTL_INT,	CTL_MIN_RESVPORT,	"min_resvport" },
889 	{ CTL_INT,	CTL_MAX_RESVPORT,	"max_resvport" },
890 	{}
891 };
892 
893 static const struct bin_table bin_pm_table[] = {
894 	/* frv specific */
895 	/* 1 == CTL_PM_SUSPEND	"suspend"  no longer used" */
896 	{ CTL_INT,	2 /* CTL_PM_CMODE */,		"cmode" },
897 	{ CTL_INT,	3 /* CTL_PM_P0 */,		"p0" },
898 	{ CTL_INT,	4 /* CTL_PM_CM */,		"cm" },
899 	{}
900 };
901 
902 static const struct bin_table bin_root_table[] = {
903 	{ CTL_DIR,	CTL_KERN,	"kernel",	bin_kern_table },
904 	{ CTL_DIR,	CTL_VM,		"vm",		bin_vm_table },
905 	{ CTL_DIR,	CTL_NET,	"net",		bin_net_table },
906 	/* CTL_PROC not used */
907 	{ CTL_DIR,	CTL_FS,		"fs",		bin_fs_table },
908 	/* CTL_DEBUG "debug" no longer used */
909 	{ CTL_DIR,	CTL_DEV,	"dev",		bin_dev_table },
910 	{ CTL_DIR,	CTL_BUS,	"bus",		bin_bus_table },
911 	{ CTL_DIR,	CTL_ABI,	"abi" },
912 	/* CTL_CPU not used */
913 	/* CTL_ARLAN "arlan" no longer used */
914 	{ CTL_DIR,	CTL_S390DBF,	"s390dbf",	bin_s390dbf_table },
915 	{ CTL_DIR,	CTL_SUNRPC,	"sunrpc",	bin_sunrpc_table },
916 	{ CTL_DIR,	CTL_PM,		"pm",		bin_pm_table },
917 	{}
918 };
919 
bin_dir(struct file * file,void __user * oldval,size_t oldlen,void __user * newval,size_t newlen)920 static ssize_t bin_dir(struct file *file,
921 	void __user *oldval, size_t oldlen, void __user *newval, size_t newlen)
922 {
923 	return -ENOTDIR;
924 }
925 
926 
bin_string(struct file * file,void __user * oldval,size_t oldlen,void __user * newval,size_t newlen)927 static ssize_t bin_string(struct file *file,
928 	void __user *oldval, size_t oldlen, void __user *newval, size_t newlen)
929 {
930 	ssize_t result, copied = 0;
931 
932 	if (oldval && oldlen) {
933 		char __user *lastp;
934 		loff_t pos = 0;
935 		int ch;
936 
937 		result = vfs_read(file, oldval, oldlen, &pos);
938 		if (result < 0)
939 			goto out;
940 
941 		copied = result;
942 		lastp = oldval + copied - 1;
943 
944 		result = -EFAULT;
945 		if (get_user(ch, lastp))
946 			goto out;
947 
948 		/* Trim off the trailing newline */
949 		if (ch == '\n') {
950 			result = -EFAULT;
951 			if (put_user('\0', lastp))
952 				goto out;
953 			copied -= 1;
954 		}
955 	}
956 
957 	if (newval && newlen) {
958 		loff_t pos = 0;
959 
960 		result = vfs_write(file, newval, newlen, &pos);
961 		if (result < 0)
962 			goto out;
963 	}
964 
965 	result = copied;
966 out:
967 	return result;
968 }
969 
bin_intvec(struct file * file,void __user * oldval,size_t oldlen,void __user * newval,size_t newlen)970 static ssize_t bin_intvec(struct file *file,
971 	void __user *oldval, size_t oldlen, void __user *newval, size_t newlen)
972 {
973 	ssize_t copied = 0;
974 	char *buffer;
975 	ssize_t result;
976 
977 	result = -ENOMEM;
978 	buffer = kmalloc(BUFSZ, GFP_KERNEL);
979 	if (!buffer)
980 		goto out;
981 
982 	if (oldval && oldlen) {
983 		unsigned __user *vec = oldval;
984 		size_t length = oldlen / sizeof(*vec);
985 		char *str, *end;
986 		int i;
987 
988 		result = kernel_read(file, 0, buffer, BUFSZ - 1);
989 		if (result < 0)
990 			goto out_kfree;
991 
992 		str = buffer;
993 		end = str + result;
994 		*end++ = '\0';
995 		for (i = 0; i < length; i++) {
996 			unsigned long value;
997 
998 			value = simple_strtoul(str, &str, 10);
999 			while (isspace(*str))
1000 				str++;
1001 
1002 			result = -EFAULT;
1003 			if (put_user(value, vec + i))
1004 				goto out_kfree;
1005 
1006 			copied += sizeof(*vec);
1007 			if (!isdigit(*str))
1008 				break;
1009 		}
1010 	}
1011 
1012 	if (newval && newlen) {
1013 		unsigned __user *vec = newval;
1014 		size_t length = newlen / sizeof(*vec);
1015 		char *str, *end;
1016 		int i;
1017 
1018 		str = buffer;
1019 		end = str + BUFSZ;
1020 		for (i = 0; i < length; i++) {
1021 			unsigned long value;
1022 
1023 			result = -EFAULT;
1024 			if (get_user(value, vec + i))
1025 				goto out_kfree;
1026 
1027 			str += scnprintf(str, end - str, "%lu\t", value);
1028 		}
1029 
1030 		result = kernel_write(file, buffer, str - buffer, 0);
1031 		if (result < 0)
1032 			goto out_kfree;
1033 	}
1034 	result = copied;
1035 out_kfree:
1036 	kfree(buffer);
1037 out:
1038 	return result;
1039 }
1040 
bin_ulongvec(struct file * file,void __user * oldval,size_t oldlen,void __user * newval,size_t newlen)1041 static ssize_t bin_ulongvec(struct file *file,
1042 	void __user *oldval, size_t oldlen, void __user *newval, size_t newlen)
1043 {
1044 	ssize_t copied = 0;
1045 	char *buffer;
1046 	ssize_t result;
1047 
1048 	result = -ENOMEM;
1049 	buffer = kmalloc(BUFSZ, GFP_KERNEL);
1050 	if (!buffer)
1051 		goto out;
1052 
1053 	if (oldval && oldlen) {
1054 		unsigned long __user *vec = oldval;
1055 		size_t length = oldlen / sizeof(*vec);
1056 		char *str, *end;
1057 		int i;
1058 
1059 		result = kernel_read(file, 0, buffer, BUFSZ - 1);
1060 		if (result < 0)
1061 			goto out_kfree;
1062 
1063 		str = buffer;
1064 		end = str + result;
1065 		*end++ = '\0';
1066 		for (i = 0; i < length; i++) {
1067 			unsigned long value;
1068 
1069 			value = simple_strtoul(str, &str, 10);
1070 			while (isspace(*str))
1071 				str++;
1072 
1073 			result = -EFAULT;
1074 			if (put_user(value, vec + i))
1075 				goto out_kfree;
1076 
1077 			copied += sizeof(*vec);
1078 			if (!isdigit(*str))
1079 				break;
1080 		}
1081 	}
1082 
1083 	if (newval && newlen) {
1084 		unsigned long __user *vec = newval;
1085 		size_t length = newlen / sizeof(*vec);
1086 		char *str, *end;
1087 		int i;
1088 
1089 		str = buffer;
1090 		end = str + BUFSZ;
1091 		for (i = 0; i < length; i++) {
1092 			unsigned long value;
1093 
1094 			result = -EFAULT;
1095 			if (get_user(value, vec + i))
1096 				goto out_kfree;
1097 
1098 			str += scnprintf(str, end - str, "%lu\t", value);
1099 		}
1100 
1101 		result = kernel_write(file, buffer, str - buffer, 0);
1102 		if (result < 0)
1103 			goto out_kfree;
1104 	}
1105 	result = copied;
1106 out_kfree:
1107 	kfree(buffer);
1108 out:
1109 	return result;
1110 }
1111 
bin_uuid(struct file * file,void __user * oldval,size_t oldlen,void __user * newval,size_t newlen)1112 static ssize_t bin_uuid(struct file *file,
1113 	void __user *oldval, size_t oldlen, void __user *newval, size_t newlen)
1114 {
1115 	ssize_t result, copied = 0;
1116 
1117 	/* Only supports reads */
1118 	if (oldval && oldlen) {
1119 		char buf[40], *str = buf;
1120 		unsigned char uuid[16];
1121 		int i;
1122 
1123 		result = kernel_read(file, 0, buf, sizeof(buf) - 1);
1124 		if (result < 0)
1125 			goto out;
1126 
1127 		buf[result] = '\0';
1128 
1129 		/* Convert the uuid to from a string to binary */
1130 		for (i = 0; i < 16; i++) {
1131 			result = -EIO;
1132 			if (!isxdigit(str[0]) || !isxdigit(str[1]))
1133 				goto out;
1134 
1135 			uuid[i] = (hex_to_bin(str[0]) << 4) |
1136 					hex_to_bin(str[1]);
1137 			str += 2;
1138 			if (*str == '-')
1139 				str++;
1140 		}
1141 
1142 		if (oldlen > 16)
1143 			oldlen = 16;
1144 
1145 		result = -EFAULT;
1146 		if (copy_to_user(oldval, uuid, oldlen))
1147 			goto out;
1148 
1149 		copied = oldlen;
1150 	}
1151 	result = copied;
1152 out:
1153 	return result;
1154 }
1155 
bin_dn_node_address(struct file * file,void __user * oldval,size_t oldlen,void __user * newval,size_t newlen)1156 static ssize_t bin_dn_node_address(struct file *file,
1157 	void __user *oldval, size_t oldlen, void __user *newval, size_t newlen)
1158 {
1159 	ssize_t result, copied = 0;
1160 
1161 	if (oldval && oldlen) {
1162 		char buf[15], *nodep;
1163 		unsigned long area, node;
1164 		__le16 dnaddr;
1165 
1166 		result = kernel_read(file, 0, buf, sizeof(buf) - 1);
1167 		if (result < 0)
1168 			goto out;
1169 
1170 		buf[result] = '\0';
1171 
1172 		/* Convert the decnet address to binary */
1173 		result = -EIO;
1174 		nodep = strchr(buf, '.');
1175 		if (!nodep)
1176 			goto out;
1177 		++nodep;
1178 
1179 		area = simple_strtoul(buf, NULL, 10);
1180 		node = simple_strtoul(nodep, NULL, 10);
1181 
1182 		result = -EIO;
1183 		if ((area > 63)||(node > 1023))
1184 			goto out;
1185 
1186 		dnaddr = cpu_to_le16((area << 10) | node);
1187 
1188 		result = -EFAULT;
1189 		if (put_user(dnaddr, (__le16 __user *)oldval))
1190 			goto out;
1191 
1192 		copied = sizeof(dnaddr);
1193 	}
1194 
1195 	if (newval && newlen) {
1196 		__le16 dnaddr;
1197 		char buf[15];
1198 		int len;
1199 
1200 		result = -EINVAL;
1201 		if (newlen != sizeof(dnaddr))
1202 			goto out;
1203 
1204 		result = -EFAULT;
1205 		if (get_user(dnaddr, (__le16 __user *)newval))
1206 			goto out;
1207 
1208 		len = scnprintf(buf, sizeof(buf), "%hu.%hu",
1209 				le16_to_cpu(dnaddr) >> 10,
1210 				le16_to_cpu(dnaddr) & 0x3ff);
1211 
1212 		result = kernel_write(file, buf, len, 0);
1213 		if (result < 0)
1214 			goto out;
1215 	}
1216 
1217 	result = copied;
1218 out:
1219 	return result;
1220 }
1221 
get_sysctl(const int * name,int nlen,char * path)1222 static const struct bin_table *get_sysctl(const int *name, int nlen, char *path)
1223 {
1224 	const struct bin_table *table = &bin_root_table[0];
1225 	int ctl_name;
1226 
1227 	/* The binary sysctl tables have a small maximum depth so
1228 	 * there is no danger of overflowing our path as it PATH_MAX
1229 	 * bytes long.
1230 	 */
1231 	memcpy(path, "sys/", 4);
1232 	path += 4;
1233 
1234 repeat:
1235 	if (!nlen)
1236 		return ERR_PTR(-ENOTDIR);
1237 	ctl_name = *name;
1238 	name++;
1239 	nlen--;
1240 	for ( ; table->convert; table++) {
1241 		int len = 0;
1242 
1243 		/*
1244 		 * For a wild card entry map from ifindex to network
1245 		 * device name.
1246 		 */
1247 		if (!table->ctl_name) {
1248 #ifdef CONFIG_NET
1249 			struct net *net = current->nsproxy->net_ns;
1250 			struct net_device *dev;
1251 			dev = dev_get_by_index(net, ctl_name);
1252 			if (dev) {
1253 				len = strlen(dev->name);
1254 				memcpy(path, dev->name, len);
1255 				dev_put(dev);
1256 			}
1257 #endif
1258 		/* Use the well known sysctl number to proc name mapping */
1259 		} else if (ctl_name == table->ctl_name) {
1260 			len = strlen(table->procname);
1261 			memcpy(path, table->procname, len);
1262 		}
1263 		if (len) {
1264 			path += len;
1265 			if (table->child) {
1266 				*path++ = '/';
1267 				table = table->child;
1268 				goto repeat;
1269 			}
1270 			*path = '\0';
1271 			return table;
1272 		}
1273 	}
1274 	return ERR_PTR(-ENOTDIR);
1275 }
1276 
sysctl_getname(const int * name,int nlen,const struct bin_table ** tablep)1277 static char *sysctl_getname(const int *name, int nlen, const struct bin_table **tablep)
1278 {
1279 	char *tmp, *result;
1280 
1281 	result = ERR_PTR(-ENOMEM);
1282 	tmp = __getname();
1283 	if (tmp) {
1284 		const struct bin_table *table = get_sysctl(name, nlen, tmp);
1285 		result = tmp;
1286 		*tablep = table;
1287 		if (IS_ERR(table)) {
1288 			__putname(tmp);
1289 			result = ERR_CAST(table);
1290 		}
1291 	}
1292 	return result;
1293 }
1294 
binary_sysctl(const int * name,int nlen,void __user * oldval,size_t oldlen,void __user * newval,size_t newlen)1295 static ssize_t binary_sysctl(const int *name, int nlen,
1296 	void __user *oldval, size_t oldlen, void __user *newval, size_t newlen)
1297 {
1298 	const struct bin_table *table = NULL;
1299 	struct vfsmount *mnt;
1300 	struct file *file;
1301 	ssize_t result;
1302 	char *pathname;
1303 	int flags;
1304 
1305 	pathname = sysctl_getname(name, nlen, &table);
1306 	result = PTR_ERR(pathname);
1307 	if (IS_ERR(pathname))
1308 		goto out;
1309 
1310 	/* How should the sysctl be accessed? */
1311 	if (oldval && oldlen && newval && newlen) {
1312 		flags = O_RDWR;
1313 	} else if (newval && newlen) {
1314 		flags = O_WRONLY;
1315 	} else if (oldval && oldlen) {
1316 		flags = O_RDONLY;
1317 	} else {
1318 		result = 0;
1319 		goto out_putname;
1320 	}
1321 
1322 	mnt = task_active_pid_ns(current)->proc_mnt;
1323 	file = file_open_root(mnt->mnt_root, mnt, pathname, flags, 0);
1324 	result = PTR_ERR(file);
1325 	if (IS_ERR(file))
1326 		goto out_putname;
1327 
1328 	result = table->convert(file, oldval, oldlen, newval, newlen);
1329 
1330 	fput(file);
1331 out_putname:
1332 	__putname(pathname);
1333 out:
1334 	return result;
1335 }
1336 
1337 
1338 #else /* CONFIG_SYSCTL_SYSCALL */
1339 
binary_sysctl(const int * name,int nlen,void __user * oldval,size_t oldlen,void __user * newval,size_t newlen)1340 static ssize_t binary_sysctl(const int *name, int nlen,
1341 	void __user *oldval, size_t oldlen, void __user *newval, size_t newlen)
1342 {
1343 	return -ENOSYS;
1344 }
1345 
1346 #endif /* CONFIG_SYSCTL_SYSCALL */
1347 
1348 
deprecated_sysctl_warning(const int * name,int nlen)1349 static void deprecated_sysctl_warning(const int *name, int nlen)
1350 {
1351 	int i;
1352 
1353 	/*
1354 	 * CTL_KERN/KERN_VERSION is used by older glibc and cannot
1355 	 * ever go away.
1356 	 */
1357 	if (name[0] == CTL_KERN && name[1] == KERN_VERSION)
1358 		return;
1359 
1360 	if (printk_ratelimit()) {
1361 		printk(KERN_INFO
1362 			"warning: process `%s' used the deprecated sysctl "
1363 			"system call with ", current->comm);
1364 		for (i = 0; i < nlen; i++)
1365 			printk("%d.", name[i]);
1366 		printk("\n");
1367 	}
1368 	return;
1369 }
1370 
1371 #define WARN_ONCE_HASH_BITS 8
1372 #define WARN_ONCE_HASH_SIZE (1<<WARN_ONCE_HASH_BITS)
1373 
1374 static DECLARE_BITMAP(warn_once_bitmap, WARN_ONCE_HASH_SIZE);
1375 
1376 #define FNV32_OFFSET 2166136261U
1377 #define FNV32_PRIME 0x01000193
1378 
1379 /*
1380  * Print each legacy sysctl (approximately) only once.
1381  * To avoid making the tables non-const use a external
1382  * hash-table instead.
1383  * Worst case hash collision: 6, but very rarely.
1384  * NOTE! We don't use the SMP-safe bit tests. We simply
1385  * don't care enough.
1386  */
warn_on_bintable(const int * name,int nlen)1387 static void warn_on_bintable(const int *name, int nlen)
1388 {
1389 	int i;
1390 	u32 hash = FNV32_OFFSET;
1391 
1392 	for (i = 0; i < nlen; i++)
1393 		hash = (hash ^ name[i]) * FNV32_PRIME;
1394 	hash %= WARN_ONCE_HASH_SIZE;
1395 	if (__test_and_set_bit(hash, warn_once_bitmap))
1396 		return;
1397 	deprecated_sysctl_warning(name, nlen);
1398 }
1399 
do_sysctl(int __user * args_name,int nlen,void __user * oldval,size_t oldlen,void __user * newval,size_t newlen)1400 static ssize_t do_sysctl(int __user *args_name, int nlen,
1401 	void __user *oldval, size_t oldlen, void __user *newval, size_t newlen)
1402 {
1403 	int name[CTL_MAXNAME];
1404 	int i;
1405 
1406 	/* Check args->nlen. */
1407 	if (nlen < 0 || nlen > CTL_MAXNAME)
1408 		return -ENOTDIR;
1409 	/* Read in the sysctl name for simplicity */
1410 	for (i = 0; i < nlen; i++)
1411 		if (get_user(name[i], args_name + i))
1412 			return -EFAULT;
1413 
1414 	warn_on_bintable(name, nlen);
1415 
1416 	return binary_sysctl(name, nlen, oldval, oldlen, newval, newlen);
1417 }
1418 
SYSCALL_DEFINE1(sysctl,struct __sysctl_args __user *,args)1419 SYSCALL_DEFINE1(sysctl, struct __sysctl_args __user *, args)
1420 {
1421 	struct __sysctl_args tmp;
1422 	size_t oldlen = 0;
1423 	ssize_t result;
1424 
1425 	if (copy_from_user(&tmp, args, sizeof(tmp)))
1426 		return -EFAULT;
1427 
1428 	if (tmp.oldval && !tmp.oldlenp)
1429 		return -EFAULT;
1430 
1431 	if (tmp.oldlenp && get_user(oldlen, tmp.oldlenp))
1432 		return -EFAULT;
1433 
1434 	result = do_sysctl(tmp.name, tmp.nlen, tmp.oldval, oldlen,
1435 			   tmp.newval, tmp.newlen);
1436 
1437 	if (result >= 0) {
1438 		oldlen = result;
1439 		result = 0;
1440 	}
1441 
1442 	if (tmp.oldlenp && put_user(oldlen, tmp.oldlenp))
1443 		return -EFAULT;
1444 
1445 	return result;
1446 }
1447 
1448 
1449 #ifdef CONFIG_COMPAT
1450 
1451 struct compat_sysctl_args {
1452 	compat_uptr_t	name;
1453 	int		nlen;
1454 	compat_uptr_t	oldval;
1455 	compat_uptr_t	oldlenp;
1456 	compat_uptr_t	newval;
1457 	compat_size_t	newlen;
1458 	compat_ulong_t	__unused[4];
1459 };
1460 
COMPAT_SYSCALL_DEFINE1(sysctl,struct compat_sysctl_args __user *,args)1461 COMPAT_SYSCALL_DEFINE1(sysctl, struct compat_sysctl_args __user *, args)
1462 {
1463 	struct compat_sysctl_args tmp;
1464 	compat_size_t __user *compat_oldlenp;
1465 	size_t oldlen = 0;
1466 	ssize_t result;
1467 
1468 	if (copy_from_user(&tmp, args, sizeof(tmp)))
1469 		return -EFAULT;
1470 
1471 	if (tmp.oldval && !tmp.oldlenp)
1472 		return -EFAULT;
1473 
1474 	compat_oldlenp = compat_ptr(tmp.oldlenp);
1475 	if (compat_oldlenp && get_user(oldlen, compat_oldlenp))
1476 		return -EFAULT;
1477 
1478 	result = do_sysctl(compat_ptr(tmp.name), tmp.nlen,
1479 			   compat_ptr(tmp.oldval), oldlen,
1480 			   compat_ptr(tmp.newval), tmp.newlen);
1481 
1482 	if (result >= 0) {
1483 		oldlen = result;
1484 		result = 0;
1485 	}
1486 
1487 	if (compat_oldlenp && put_user(oldlen, compat_oldlenp))
1488 		return -EFAULT;
1489 
1490 	return result;
1491 }
1492 
1493 #endif /* CONFIG_COMPAT */
1494