• Home
  • Line#
  • Scopes#
  • Navigate#
  • Raw
  • Download
1 /*
2  *
3  *	Generic internet FLOW.
4  *
5  */
6 
7 #ifndef _NET_FLOW_H
8 #define _NET_FLOW_H
9 
10 #include <linux/socket.h>
11 #include <linux/in6.h>
12 #include <linux/atomic.h>
13 #include <net/flow_dissector.h>
14 #include <linux/uidgid.h>
15 
16 /*
17  * ifindex generation is per-net namespace, and loopback is
18  * always the 1st device in ns (see net_dev_init), thus any
19  * loopback device should get ifindex 1
20  */
21 
22 #define LOOPBACK_IFINDEX	1
23 
24 struct flowi_tunnel {
25 	__be64			tun_id;
26 };
27 
28 struct flowi_common {
29 	int	flowic_oif;
30 	int	flowic_iif;
31 	__u32	flowic_mark;
32 	__u8	flowic_tos;
33 	__u8	flowic_scope;
34 	__u8	flowic_proto;
35 	__u8	flowic_flags;
36 #define FLOWI_FLAG_ANYSRC		0x01
37 #define FLOWI_FLAG_KNOWN_NH		0x02
38 #define FLOWI_FLAG_L3MDEV_SRC		0x04
39 #define FLOWI_FLAG_SKIP_NH_OIF		0x08
40 	__u32	flowic_secid;
41 	struct flowi_tunnel flowic_tun_key;
42 	kuid_t  flowic_uid;
43 };
44 
45 union flowi_uli {
46 	struct {
47 		__be16	dport;
48 		__be16	sport;
49 	} ports;
50 
51 	struct {
52 		__u8	type;
53 		__u8	code;
54 	} icmpt;
55 
56 	struct {
57 		__le16	dport;
58 		__le16	sport;
59 	} dnports;
60 
61 	__be32		spi;
62 	__be32		gre_key;
63 
64 	struct {
65 		__u8	type;
66 	} mht;
67 };
68 
69 struct flowi4 {
70 	struct flowi_common	__fl_common;
71 #define flowi4_oif		__fl_common.flowic_oif
72 #define flowi4_iif		__fl_common.flowic_iif
73 #define flowi4_mark		__fl_common.flowic_mark
74 #define flowi4_tos		__fl_common.flowic_tos
75 #define flowi4_scope		__fl_common.flowic_scope
76 #define flowi4_proto		__fl_common.flowic_proto
77 #define flowi4_flags		__fl_common.flowic_flags
78 #define flowi4_secid		__fl_common.flowic_secid
79 #define flowi4_tun_key		__fl_common.flowic_tun_key
80 #define flowi4_uid		__fl_common.flowic_uid
81 
82 	/* (saddr,daddr) must be grouped, same order as in IP header */
83 	__be32			saddr;
84 	__be32			daddr;
85 
86 	union flowi_uli		uli;
87 #define fl4_sport		uli.ports.sport
88 #define fl4_dport		uli.ports.dport
89 #define fl4_icmp_type		uli.icmpt.type
90 #define fl4_icmp_code		uli.icmpt.code
91 #define fl4_ipsec_spi		uli.spi
92 #define fl4_mh_type		uli.mht.type
93 #define fl4_gre_key		uli.gre_key
94 } __attribute__((__aligned__(BITS_PER_LONG/8)));
95 
flowi4_init_output(struct flowi4 * fl4,int oif,__u32 mark,__u8 tos,__u8 scope,__u8 proto,__u8 flags,__be32 daddr,__be32 saddr,__be16 dport,__be16 sport,kuid_t uid)96 static inline void flowi4_init_output(struct flowi4 *fl4, int oif,
97 				      __u32 mark, __u8 tos, __u8 scope,
98 				      __u8 proto, __u8 flags,
99 				      __be32 daddr, __be32 saddr,
100 				      __be16 dport, __be16 sport,
101 				      kuid_t uid)
102 {
103 	fl4->flowi4_oif = oif;
104 	fl4->flowi4_iif = LOOPBACK_IFINDEX;
105 	fl4->flowi4_mark = mark;
106 	fl4->flowi4_tos = tos;
107 	fl4->flowi4_scope = scope;
108 	fl4->flowi4_proto = proto;
109 	fl4->flowi4_flags = flags;
110 	fl4->flowi4_secid = 0;
111 	fl4->flowi4_tun_key.tun_id = 0;
112 	fl4->flowi4_uid = uid;
113 	fl4->daddr = daddr;
114 	fl4->saddr = saddr;
115 	fl4->fl4_dport = dport;
116 	fl4->fl4_sport = sport;
117 }
118 
119 /* Reset some input parameters after previous lookup */
flowi4_update_output(struct flowi4 * fl4,int oif,__u8 tos,__be32 daddr,__be32 saddr)120 static inline void flowi4_update_output(struct flowi4 *fl4, int oif, __u8 tos,
121 					__be32 daddr, __be32 saddr)
122 {
123 	fl4->flowi4_oif = oif;
124 	fl4->flowi4_tos = tos;
125 	fl4->daddr = daddr;
126 	fl4->saddr = saddr;
127 }
128 
129 
130 struct flowi6 {
131 	struct flowi_common	__fl_common;
132 #define flowi6_oif		__fl_common.flowic_oif
133 #define flowi6_iif		__fl_common.flowic_iif
134 #define flowi6_mark		__fl_common.flowic_mark
135 #define flowi6_tos		__fl_common.flowic_tos
136 #define flowi6_scope		__fl_common.flowic_scope
137 #define flowi6_proto		__fl_common.flowic_proto
138 #define flowi6_flags		__fl_common.flowic_flags
139 #define flowi6_secid		__fl_common.flowic_secid
140 #define flowi6_tun_key		__fl_common.flowic_tun_key
141 #define flowi6_uid		__fl_common.flowic_uid
142 	struct in6_addr		daddr;
143 	struct in6_addr		saddr;
144 	__be32			flowlabel;
145 	union flowi_uli		uli;
146 #define fl6_sport		uli.ports.sport
147 #define fl6_dport		uli.ports.dport
148 #define fl6_icmp_type		uli.icmpt.type
149 #define fl6_icmp_code		uli.icmpt.code
150 #define fl6_ipsec_spi		uli.spi
151 #define fl6_mh_type		uli.mht.type
152 #define fl6_gre_key		uli.gre_key
153 } __attribute__((__aligned__(BITS_PER_LONG/8)));
154 
155 struct flowidn {
156 	struct flowi_common	__fl_common;
157 #define flowidn_oif		__fl_common.flowic_oif
158 #define flowidn_iif		__fl_common.flowic_iif
159 #define flowidn_mark		__fl_common.flowic_mark
160 #define flowidn_scope		__fl_common.flowic_scope
161 #define flowidn_proto		__fl_common.flowic_proto
162 #define flowidn_flags		__fl_common.flowic_flags
163 	__le16			daddr;
164 	__le16			saddr;
165 	union flowi_uli		uli;
166 #define fld_sport		uli.ports.sport
167 #define fld_dport		uli.ports.dport
168 } __attribute__((__aligned__(BITS_PER_LONG/8)));
169 
170 struct flowi {
171 	union {
172 		struct flowi_common	__fl_common;
173 		struct flowi4		ip4;
174 		struct flowi6		ip6;
175 		struct flowidn		dn;
176 	} u;
177 #define flowi_oif	u.__fl_common.flowic_oif
178 #define flowi_iif	u.__fl_common.flowic_iif
179 #define flowi_mark	u.__fl_common.flowic_mark
180 #define flowi_tos	u.__fl_common.flowic_tos
181 #define flowi_scope	u.__fl_common.flowic_scope
182 #define flowi_proto	u.__fl_common.flowic_proto
183 #define flowi_flags	u.__fl_common.flowic_flags
184 #define flowi_secid	u.__fl_common.flowic_secid
185 #define flowi_tun_key	u.__fl_common.flowic_tun_key
186 #define flowi_uid	u.__fl_common.flowic_uid
187 } __attribute__((__aligned__(BITS_PER_LONG/8)));
188 
flowi4_to_flowi(struct flowi4 * fl4)189 static inline struct flowi *flowi4_to_flowi(struct flowi4 *fl4)
190 {
191 	return container_of(fl4, struct flowi, u.ip4);
192 }
193 
flowi6_to_flowi(struct flowi6 * fl6)194 static inline struct flowi *flowi6_to_flowi(struct flowi6 *fl6)
195 {
196 	return container_of(fl6, struct flowi, u.ip6);
197 }
198 
flowidn_to_flowi(struct flowidn * fldn)199 static inline struct flowi *flowidn_to_flowi(struct flowidn *fldn)
200 {
201 	return container_of(fldn, struct flowi, u.dn);
202 }
203 
204 typedef unsigned long flow_compare_t;
205 
flow_key_size(u16 family)206 static inline size_t flow_key_size(u16 family)
207 {
208 	switch (family) {
209 	case AF_INET:
210 		BUILD_BUG_ON(sizeof(struct flowi4) % sizeof(flow_compare_t));
211 		return sizeof(struct flowi4) / sizeof(flow_compare_t);
212 	case AF_INET6:
213 		BUILD_BUG_ON(sizeof(struct flowi6) % sizeof(flow_compare_t));
214 		return sizeof(struct flowi6) / sizeof(flow_compare_t);
215 	case AF_DECnet:
216 		BUILD_BUG_ON(sizeof(struct flowidn) % sizeof(flow_compare_t));
217 		return sizeof(struct flowidn) / sizeof(flow_compare_t);
218 	}
219 	return 0;
220 }
221 
222 #define FLOW_DIR_IN	0
223 #define FLOW_DIR_OUT	1
224 #define FLOW_DIR_FWD	2
225 
226 struct net;
227 struct sock;
228 struct flow_cache_ops;
229 
230 struct flow_cache_object {
231 	const struct flow_cache_ops *ops;
232 };
233 
234 struct flow_cache_ops {
235 	struct flow_cache_object *(*get)(struct flow_cache_object *);
236 	int (*check)(struct flow_cache_object *);
237 	void (*delete)(struct flow_cache_object *);
238 };
239 
240 typedef struct flow_cache_object *(*flow_resolve_t)(
241 		struct net *net, const struct flowi *key, u16 family,
242 		u8 dir, struct flow_cache_object *oldobj, void *ctx);
243 
244 struct flow_cache_object *flow_cache_lookup(struct net *net,
245 					    const struct flowi *key, u16 family,
246 					    u8 dir, flow_resolve_t resolver,
247 					    void *ctx);
248 int flow_cache_init(struct net *net);
249 void flow_cache_fini(struct net *net);
250 
251 void flow_cache_flush(struct net *net);
252 void flow_cache_flush_deferred(struct net *net);
253 extern atomic_t flow_cache_genid;
254 
255 __u32 __get_hash_from_flowi6(const struct flowi6 *fl6, struct flow_keys *keys);
256 
get_hash_from_flowi6(const struct flowi6 * fl6)257 static inline __u32 get_hash_from_flowi6(const struct flowi6 *fl6)
258 {
259 	struct flow_keys keys;
260 
261 	return __get_hash_from_flowi6(fl6, &keys);
262 }
263 
264 __u32 __get_hash_from_flowi4(const struct flowi4 *fl4, struct flow_keys *keys);
265 
get_hash_from_flowi4(const struct flowi4 * fl4)266 static inline __u32 get_hash_from_flowi4(const struct flowi4 *fl4)
267 {
268 	struct flow_keys keys;
269 
270 	return __get_hash_from_flowi4(fl4, &keys);
271 }
272 
273 #endif
274