• Home
  • Line#
  • Scopes#
  • Navigate#
  • Raw
  • Download
1 /*
2  * INET        An implementation of the TCP/IP protocol suite for the LINUX
3  *             operating system.  INET is implemented using the  BSD Socket
4  *             interface as the means of communication with the user level.
5  *
6  *             Support for INET6 connection oriented protocols.
7  *
8  * Authors:    See the TCPv6 sources
9  *
10  *             This program is free software; you can redistribute it and/or
11  *             modify it under the terms of the GNU General Public License
12  *             as published by the Free Software Foundation; either version
13  *             2 of the License, or(at your option) any later version.
14  */
15 
16 #include <linux/module.h>
17 #include <linux/in6.h>
18 #include <linux/ipv6.h>
19 #include <linux/jhash.h>
20 #include <linux/slab.h>
21 
22 #include <net/addrconf.h>
23 #include <net/inet_connection_sock.h>
24 #include <net/inet_ecn.h>
25 #include <net/inet_hashtables.h>
26 #include <net/ip6_route.h>
27 #include <net/sock.h>
28 #include <net/inet6_connection_sock.h>
29 
inet6_csk_bind_conflict(const struct sock * sk,const struct inet_bind_bucket * tb,bool relax)30 int inet6_csk_bind_conflict(const struct sock *sk,
31 			    const struct inet_bind_bucket *tb, bool relax)
32 {
33 	const struct sock *sk2;
34 	int reuse = sk->sk_reuse;
35 	int reuseport = sk->sk_reuseport;
36 	kuid_t uid = sock_i_uid((struct sock *)sk);
37 
38 	/* We must walk the whole port owner list in this case. -DaveM */
39 	/*
40 	 * See comment in inet_csk_bind_conflict about sock lookup
41 	 * vs net namespaces issues.
42 	 */
43 	sk_for_each_bound(sk2, &tb->owners) {
44 		if (sk != sk2 &&
45 		    (!sk->sk_bound_dev_if ||
46 		     !sk2->sk_bound_dev_if ||
47 		     sk->sk_bound_dev_if == sk2->sk_bound_dev_if)) {
48 			if ((!reuse || !sk2->sk_reuse ||
49 			     sk2->sk_state == TCP_LISTEN) &&
50 			    (!reuseport || !sk2->sk_reuseport ||
51 			     (sk2->sk_state != TCP_TIME_WAIT &&
52 			      !uid_eq(uid,
53 				      sock_i_uid((struct sock *)sk2))))) {
54 				if (ipv6_rcv_saddr_equal(sk, sk2))
55 					break;
56 			}
57 			if (!relax && reuse && sk2->sk_reuse &&
58 			    sk2->sk_state != TCP_LISTEN &&
59 			    ipv6_rcv_saddr_equal(sk, sk2))
60 				break;
61 		}
62 	}
63 
64 	return sk2 != NULL;
65 }
66 EXPORT_SYMBOL_GPL(inet6_csk_bind_conflict);
67 
inet6_csk_route_req(struct sock * sk,struct flowi6 * fl6,const struct request_sock * req)68 struct dst_entry *inet6_csk_route_req(struct sock *sk,
69 				      struct flowi6 *fl6,
70 				      const struct request_sock *req)
71 {
72 	struct inet_request_sock *ireq = inet_rsk(req);
73 	struct ipv6_pinfo *np = inet6_sk(sk);
74 	struct in6_addr *final_p, final;
75 	struct dst_entry *dst;
76 
77 	memset(fl6, 0, sizeof(*fl6));
78 	fl6->flowi6_proto = IPPROTO_TCP;
79 	fl6->daddr = ireq->ir_v6_rmt_addr;
80 	rcu_read_lock();
81 	final_p = fl6_update_dst(fl6, rcu_dereference(np->opt), &final);
82 	rcu_read_unlock();
83 	fl6->saddr = ireq->ir_v6_loc_addr;
84 	fl6->flowi6_oif = ireq->ir_iif;
85 	fl6->flowi6_mark = ireq->ir_mark;
86 	fl6->fl6_dport = ireq->ir_rmt_port;
87 	fl6->fl6_sport = htons(ireq->ir_num);
88 	fl6->flowi6_uid = sk->sk_uid;
89 	security_req_classify_flow(req, flowi6_to_flowi(fl6));
90 
91 	dst = ip6_dst_lookup_flow(sk, fl6, final_p);
92 	if (IS_ERR(dst))
93 		return NULL;
94 
95 	return dst;
96 }
97 
98 /*
99  * request_sock (formerly open request) hash tables.
100  */
inet6_synq_hash(const struct in6_addr * raddr,const __be16 rport,const u32 rnd,const u32 synq_hsize)101 static u32 inet6_synq_hash(const struct in6_addr *raddr, const __be16 rport,
102 			   const u32 rnd, const u32 synq_hsize)
103 {
104 	u32 c;
105 
106 	c = jhash_3words((__force u32)raddr->s6_addr32[0],
107 			 (__force u32)raddr->s6_addr32[1],
108 			 (__force u32)raddr->s6_addr32[2],
109 			 rnd);
110 
111 	c = jhash_2words((__force u32)raddr->s6_addr32[3],
112 			 (__force u32)rport,
113 			 c);
114 
115 	return c & (synq_hsize - 1);
116 }
117 
inet6_csk_search_req(const struct sock * sk,struct request_sock *** prevp,const __be16 rport,const struct in6_addr * raddr,const struct in6_addr * laddr,const int iif)118 struct request_sock *inet6_csk_search_req(const struct sock *sk,
119 					  struct request_sock ***prevp,
120 					  const __be16 rport,
121 					  const struct in6_addr *raddr,
122 					  const struct in6_addr *laddr,
123 					  const int iif)
124 {
125 	const struct inet_connection_sock *icsk = inet_csk(sk);
126 	struct listen_sock *lopt = icsk->icsk_accept_queue.listen_opt;
127 	struct request_sock *req, **prev;
128 
129 	for (prev = &lopt->syn_table[inet6_synq_hash(raddr, rport,
130 						     lopt->hash_rnd,
131 						     lopt->nr_table_entries)];
132 	     (req = *prev) != NULL;
133 	     prev = &req->dl_next) {
134 		const struct inet_request_sock *ireq = inet_rsk(req);
135 
136 		if (ireq->ir_rmt_port == rport &&
137 		    req->rsk_ops->family == AF_INET6 &&
138 		    ipv6_addr_equal(&ireq->ir_v6_rmt_addr, raddr) &&
139 		    ipv6_addr_equal(&ireq->ir_v6_loc_addr, laddr) &&
140 		    (!ireq->ir_iif || ireq->ir_iif == iif)) {
141 			WARN_ON(req->sk != NULL);
142 			*prevp = prev;
143 			return req;
144 		}
145 	}
146 
147 	return NULL;
148 }
149 EXPORT_SYMBOL_GPL(inet6_csk_search_req);
150 
inet6_csk_reqsk_queue_hash_add(struct sock * sk,struct request_sock * req,const unsigned long timeout)151 void inet6_csk_reqsk_queue_hash_add(struct sock *sk,
152 				    struct request_sock *req,
153 				    const unsigned long timeout)
154 {
155 	struct inet_connection_sock *icsk = inet_csk(sk);
156 	struct listen_sock *lopt = icsk->icsk_accept_queue.listen_opt;
157 	const u32 h = inet6_synq_hash(&inet_rsk(req)->ir_v6_rmt_addr,
158 				      inet_rsk(req)->ir_rmt_port,
159 				      lopt->hash_rnd, lopt->nr_table_entries);
160 
161 	reqsk_queue_hash_req(&icsk->icsk_accept_queue, h, req, timeout);
162 	inet_csk_reqsk_queue_added(sk, timeout);
163 }
164 EXPORT_SYMBOL_GPL(inet6_csk_reqsk_queue_hash_add);
165 
inet6_csk_addr2sockaddr(struct sock * sk,struct sockaddr * uaddr)166 void inet6_csk_addr2sockaddr(struct sock *sk, struct sockaddr *uaddr)
167 {
168 	struct sockaddr_in6 *sin6 = (struct sockaddr_in6 *) uaddr;
169 
170 	sin6->sin6_family = AF_INET6;
171 	sin6->sin6_addr = sk->sk_v6_daddr;
172 	sin6->sin6_port	= inet_sk(sk)->inet_dport;
173 	/* We do not store received flowlabel for TCP */
174 	sin6->sin6_flowinfo = 0;
175 	sin6->sin6_scope_id = ipv6_iface_scope_id(&sin6->sin6_addr,
176 						  sk->sk_bound_dev_if);
177 }
178 EXPORT_SYMBOL_GPL(inet6_csk_addr2sockaddr);
179 
180 static inline
__inet6_csk_dst_store(struct sock * sk,struct dst_entry * dst,const struct in6_addr * daddr,const struct in6_addr * saddr)181 void __inet6_csk_dst_store(struct sock *sk, struct dst_entry *dst,
182 			   const struct in6_addr *daddr,
183 			   const struct in6_addr *saddr)
184 {
185 	__ip6_dst_store(sk, dst, daddr, saddr);
186 }
187 
188 static inline
__inet6_csk_dst_check(struct sock * sk,u32 cookie)189 struct dst_entry *__inet6_csk_dst_check(struct sock *sk, u32 cookie)
190 {
191 	return __sk_dst_check(sk, cookie);
192 }
193 
inet6_csk_route_socket(struct sock * sk,struct flowi6 * fl6)194 static struct dst_entry *inet6_csk_route_socket(struct sock *sk,
195 						struct flowi6 *fl6)
196 {
197 	struct inet_sock *inet = inet_sk(sk);
198 	struct ipv6_pinfo *np = inet6_sk(sk);
199 	struct in6_addr *final_p, final;
200 	struct dst_entry *dst;
201 
202 	memset(fl6, 0, sizeof(*fl6));
203 	fl6->flowi6_proto = sk->sk_protocol;
204 	fl6->daddr = sk->sk_v6_daddr;
205 	fl6->saddr = np->saddr;
206 	fl6->flowlabel = np->flow_label;
207 	IP6_ECN_flow_xmit(sk, fl6->flowlabel);
208 	fl6->flowi6_oif = sk->sk_bound_dev_if;
209 	fl6->flowi6_mark = sk->sk_mark;
210 	fl6->fl6_sport = inet->inet_sport;
211 	fl6->fl6_dport = inet->inet_dport;
212 	fl6->flowi6_uid = sk->sk_uid;
213 	security_sk_classify_flow(sk, flowi6_to_flowi(fl6));
214 
215 	rcu_read_lock();
216 	final_p = fl6_update_dst(fl6, rcu_dereference(np->opt), &final);
217 	rcu_read_unlock();
218 
219 	dst = __inet6_csk_dst_check(sk, np->dst_cookie);
220 	if (!dst) {
221 		dst = ip6_dst_lookup_flow(sk, fl6, final_p);
222 
223 		if (!IS_ERR(dst))
224 			__inet6_csk_dst_store(sk, dst, NULL, NULL);
225 	}
226 	return dst;
227 }
228 
inet6_csk_xmit(struct sock * sk,struct sk_buff * skb,struct flowi * fl_unused)229 int inet6_csk_xmit(struct sock *sk, struct sk_buff *skb, struct flowi *fl_unused)
230 {
231 	struct ipv6_pinfo *np = inet6_sk(sk);
232 	struct flowi6 fl6;
233 	struct dst_entry *dst;
234 	int res;
235 
236 	dst = inet6_csk_route_socket(sk, &fl6);
237 	if (IS_ERR(dst)) {
238 		sk->sk_err_soft = -PTR_ERR(dst);
239 		sk->sk_route_caps = 0;
240 		kfree_skb(skb);
241 		return PTR_ERR(dst);
242 	}
243 
244 	rcu_read_lock();
245 	skb_dst_set_noref(skb, dst);
246 
247 	/* Restore final destination back after routing done */
248 	fl6.daddr = sk->sk_v6_daddr;
249 
250 	res = ip6_xmit(sk, skb, &fl6, rcu_dereference(np->opt),
251 		       np->tclass);
252 	rcu_read_unlock();
253 	return res;
254 }
255 EXPORT_SYMBOL_GPL(inet6_csk_xmit);
256 
inet6_csk_update_pmtu(struct sock * sk,u32 mtu)257 struct dst_entry *inet6_csk_update_pmtu(struct sock *sk, u32 mtu)
258 {
259 	struct flowi6 fl6;
260 	struct dst_entry *dst = inet6_csk_route_socket(sk, &fl6);
261 
262 	if (IS_ERR(dst))
263 		return NULL;
264 	dst->ops->update_pmtu(dst, sk, NULL, mtu);
265 
266 	dst = inet6_csk_route_socket(sk, &fl6);
267 	return IS_ERR(dst) ? NULL : dst;
268 }
269 EXPORT_SYMBOL_GPL(inet6_csk_update_pmtu);
270