• Home
  • Line#
  • Scopes#
  • Navigate#
  • Raw
  • Download
1 #include <linux/stat.h>
2 #include <linux/sysctl.h>
3 #include "../fs/xfs/xfs_sysctl.h"
4 #include <linux/sunrpc/debug.h>
5 #include <linux/string.h>
6 #include <linux/syscalls.h>
7 #include <linux/namei.h>
8 #include <linux/mount.h>
9 #include <linux/fs.h>
10 #include <linux/nsproxy.h>
11 #include <linux/pid_namespace.h>
12 #include <linux/file.h>
13 #include <linux/ctype.h>
14 #include <linux/netdevice.h>
15 #include <linux/kernel.h>
16 #include <linux/uuid.h>
17 #include <linux/slab.h>
18 #include <linux/compat.h>
19 
20 #ifdef CONFIG_SYSCTL_SYSCALL
21 
22 struct bin_table;
23 typedef ssize_t bin_convert_t(struct file *file,
24 	void __user *oldval, size_t oldlen, void __user *newval, size_t newlen);
25 
26 static bin_convert_t bin_dir;
27 static bin_convert_t bin_string;
28 static bin_convert_t bin_intvec;
29 static bin_convert_t bin_ulongvec;
30 static bin_convert_t bin_uuid;
31 static bin_convert_t bin_dn_node_address;
32 
33 #define CTL_DIR   bin_dir
34 #define CTL_STR   bin_string
35 #define CTL_INT   bin_intvec
36 #define CTL_ULONG bin_ulongvec
37 #define CTL_UUID  bin_uuid
38 #define CTL_DNADR bin_dn_node_address
39 
40 #define BUFSZ 256
41 
42 struct bin_table {
43 	bin_convert_t		*convert;
44 	int			ctl_name;
45 	const char		*procname;
46 	const struct bin_table	*child;
47 };
48 
49 static const struct bin_table bin_random_table[] = {
50 	{ CTL_INT,	RANDOM_POOLSIZE,	"poolsize" },
51 	{ CTL_INT,	RANDOM_ENTROPY_COUNT,	"entropy_avail" },
52 	{ CTL_INT,	RANDOM_READ_THRESH,	"read_wakeup_threshold" },
53 	{ CTL_INT,	RANDOM_WRITE_THRESH,	"write_wakeup_threshold" },
54 	{ CTL_UUID,	RANDOM_BOOT_ID,		"boot_id" },
55 	{ CTL_UUID,	RANDOM_UUID,		"uuid" },
56 	{}
57 };
58 
59 static const struct bin_table bin_pty_table[] = {
60 	{ CTL_INT,	PTY_MAX,	"max" },
61 	{ CTL_INT,	PTY_NR,		"nr" },
62 	{}
63 };
64 
65 static const struct bin_table bin_kern_table[] = {
66 	{ CTL_STR,	KERN_OSTYPE,			"ostype" },
67 	{ CTL_STR,	KERN_OSRELEASE,			"osrelease" },
68 	/* KERN_OSREV not used */
69 	{ CTL_STR,	KERN_VERSION,			"version" },
70 	/* KERN_SECUREMASK not used */
71 	/* KERN_PROF not used */
72 	{ CTL_STR,	KERN_NODENAME,			"hostname" },
73 	{ CTL_STR,	KERN_DOMAINNAME,		"domainname" },
74 
75 	{ CTL_INT,	KERN_PANIC,			"panic" },
76 	{ CTL_INT,	KERN_REALROOTDEV,		"real-root-dev" },
77 
78 	{ CTL_STR,	KERN_SPARC_REBOOT,		"reboot-cmd" },
79 	{ CTL_INT,	KERN_CTLALTDEL,			"ctrl-alt-del" },
80 	{ CTL_INT,	KERN_PRINTK,			"printk" },
81 
82 	/* KERN_NAMETRANS not used */
83 	/* KERN_PPC_HTABRECLAIM not used */
84 	/* KERN_PPC_ZEROPAGED not used */
85 	{ CTL_INT,	KERN_PPC_POWERSAVE_NAP,		"powersave-nap" },
86 
87 	{ CTL_STR,	KERN_MODPROBE,			"modprobe" },
88 	{ CTL_INT,	KERN_SG_BIG_BUFF,		"sg-big-buff" },
89 	{ CTL_INT,	KERN_ACCT,			"acct" },
90 	/* KERN_PPC_L2CR "l2cr" no longer used */
91 
92 	/* KERN_RTSIGNR not used */
93 	/* KERN_RTSIGMAX not used */
94 
95 	{ CTL_ULONG,	KERN_SHMMAX,			"shmmax" },
96 	{ CTL_INT,	KERN_MSGMAX,			"msgmax" },
97 	{ CTL_INT,	KERN_MSGMNB,			"msgmnb" },
98 	/* KERN_MSGPOOL not used*/
99 	{ CTL_INT,	KERN_SYSRQ,			"sysrq" },
100 	{ CTL_INT,	KERN_MAX_THREADS,		"threads-max" },
101 	{ CTL_DIR,	KERN_RANDOM,			"random",	bin_random_table },
102 	{ CTL_ULONG,	KERN_SHMALL,			"shmall" },
103 	{ CTL_INT,	KERN_MSGMNI,			"msgmni" },
104 	{ CTL_INT,	KERN_SEM,			"sem" },
105 	{ CTL_INT,	KERN_SPARC_STOP_A,		"stop-a" },
106 	{ CTL_INT,	KERN_SHMMNI,			"shmmni" },
107 
108 	{ CTL_INT,	KERN_OVERFLOWUID,		"overflowuid" },
109 	{ CTL_INT,	KERN_OVERFLOWGID,		"overflowgid" },
110 
111 	{ CTL_STR,	KERN_HOTPLUG,			"hotplug", },
112 	{ CTL_INT,	KERN_IEEE_EMULATION_WARNINGS,	"ieee_emulation_warnings" },
113 
114 	{ CTL_INT,	KERN_S390_USER_DEBUG_LOGGING,	"userprocess_debug" },
115 	{ CTL_INT,	KERN_CORE_USES_PID,		"core_uses_pid" },
116 	/* KERN_TAINTED "tainted" no longer used */
117 	{ CTL_INT,	KERN_CADPID,			"cad_pid" },
118 	{ CTL_INT,	KERN_PIDMAX,			"pid_max" },
119 	{ CTL_STR,	KERN_CORE_PATTERN,		"core_pattern" },
120 	{ CTL_INT,	KERN_PANIC_ON_OOPS,		"panic_on_oops" },
121 	{ CTL_INT,	KERN_HPPA_PWRSW,		"soft-power" },
122 	{ CTL_INT,	KERN_HPPA_UNALIGNED,		"unaligned-trap" },
123 
124 	{ CTL_INT,	KERN_PRINTK_RATELIMIT,		"printk_ratelimit" },
125 	{ CTL_INT,	KERN_PRINTK_RATELIMIT_BURST,	"printk_ratelimit_burst" },
126 
127 	{ CTL_DIR,	KERN_PTY,			"pty",		bin_pty_table },
128 	{ CTL_INT,	KERN_NGROUPS_MAX,		"ngroups_max" },
129 	{ CTL_INT,	KERN_SPARC_SCONS_PWROFF,	"scons-poweroff" },
130 	/* KERN_HZ_TIMER "hz_timer" no longer used */
131 	{ CTL_INT,	KERN_UNKNOWN_NMI_PANIC,		"unknown_nmi_panic" },
132 	{ CTL_INT,	KERN_BOOTLOADER_TYPE,		"bootloader_type" },
133 	{ CTL_INT,	KERN_RANDOMIZE,			"randomize_va_space" },
134 
135 	{ CTL_INT,	KERN_SPIN_RETRY,		"spin_retry" },
136 	/* KERN_ACPI_VIDEO_FLAGS "acpi_video_flags" no longer used */
137 	{ CTL_INT,	KERN_IA64_UNALIGNED,		"ignore-unaligned-usertrap" },
138 	{ CTL_INT,	KERN_COMPAT_LOG,		"compat-log" },
139 	{ CTL_INT,	KERN_MAX_LOCK_DEPTH,		"max_lock_depth" },
140 	{ CTL_INT,	KERN_PANIC_ON_NMI,		"panic_on_unrecovered_nmi" },
141 	{ CTL_INT,	KERN_PANIC_ON_WARN,		"panic_on_warn" },
142 	{}
143 };
144 
145 static const struct bin_table bin_vm_table[] = {
146 	{ CTL_INT,	VM_OVERCOMMIT_MEMORY,		"overcommit_memory" },
147 	{ CTL_INT,	VM_PAGE_CLUSTER,		"page-cluster" },
148 	{ CTL_INT,	VM_DIRTY_BACKGROUND,		"dirty_background_ratio" },
149 	{ CTL_INT,	VM_DIRTY_RATIO,			"dirty_ratio" },
150 	/* VM_DIRTY_WB_CS "dirty_writeback_centisecs" no longer used */
151 	/* VM_DIRTY_EXPIRE_CS "dirty_expire_centisecs" no longer used */
152 	/* VM_NR_PDFLUSH_THREADS "nr_pdflush_threads" no longer used */
153 	{ CTL_INT,	VM_OVERCOMMIT_RATIO,		"overcommit_ratio" },
154 	/* VM_PAGEBUF unused */
155 	/* VM_HUGETLB_PAGES "nr_hugepages" no longer used */
156 	{ CTL_INT,	VM_SWAPPINESS,			"swappiness" },
157 	{ CTL_INT,	VM_LOWMEM_RESERVE_RATIO,	"lowmem_reserve_ratio" },
158 	{ CTL_INT,	VM_MIN_FREE_KBYTES,		"min_free_kbytes" },
159 	{ CTL_INT,	VM_MAX_MAP_COUNT,		"max_map_count" },
160 	{ CTL_INT,	VM_LAPTOP_MODE,			"laptop_mode" },
161 	{ CTL_INT,	VM_BLOCK_DUMP,			"block_dump" },
162 	{ CTL_INT,	VM_HUGETLB_GROUP,		"hugetlb_shm_group" },
163 	{ CTL_INT,	VM_VFS_CACHE_PRESSURE,	"vfs_cache_pressure" },
164 	{ CTL_INT,	VM_LEGACY_VA_LAYOUT,		"legacy_va_layout" },
165 	/* VM_SWAP_TOKEN_TIMEOUT unused */
166 	{ CTL_INT,	VM_DROP_PAGECACHE,		"drop_caches" },
167 	{ CTL_INT,	VM_PERCPU_PAGELIST_FRACTION,	"percpu_pagelist_fraction" },
168 	{ CTL_INT,	VM_ZONE_RECLAIM_MODE,		"zone_reclaim_mode" },
169 	{ CTL_INT,	VM_MIN_UNMAPPED,		"min_unmapped_ratio" },
170 	{ CTL_INT,	VM_PANIC_ON_OOM,		"panic_on_oom" },
171 	{ CTL_INT,	VM_VDSO_ENABLED,		"vdso_enabled" },
172 	{ CTL_INT,	VM_MIN_SLAB,			"min_slab_ratio" },
173 
174 	{}
175 };
176 
177 static const struct bin_table bin_net_core_table[] = {
178 	{ CTL_INT,	NET_CORE_WMEM_MAX,	"wmem_max" },
179 	{ CTL_INT,	NET_CORE_RMEM_MAX,	"rmem_max" },
180 	{ CTL_INT,	NET_CORE_WMEM_DEFAULT,	"wmem_default" },
181 	{ CTL_INT,	NET_CORE_RMEM_DEFAULT,	"rmem_default" },
182 	/* NET_CORE_DESTROY_DELAY unused */
183 	{ CTL_INT,	NET_CORE_MAX_BACKLOG,	"netdev_max_backlog" },
184 	/* NET_CORE_FASTROUTE unused */
185 	{ CTL_INT,	NET_CORE_MSG_COST,	"message_cost" },
186 	{ CTL_INT,	NET_CORE_MSG_BURST,	"message_burst" },
187 	{ CTL_INT,	NET_CORE_OPTMEM_MAX,	"optmem_max" },
188 	/* NET_CORE_HOT_LIST_LENGTH unused */
189 	/* NET_CORE_DIVERT_VERSION unused */
190 	/* NET_CORE_NO_CONG_THRESH unused */
191 	/* NET_CORE_NO_CONG unused */
192 	/* NET_CORE_LO_CONG unused */
193 	/* NET_CORE_MOD_CONG unused */
194 	{ CTL_INT,	NET_CORE_DEV_WEIGHT,	"dev_weight" },
195 	{ CTL_INT,	NET_CORE_SOMAXCONN,	"somaxconn" },
196 	{ CTL_INT,	NET_CORE_BUDGET,	"netdev_budget" },
197 	{ CTL_INT,	NET_CORE_AEVENT_ETIME,	"xfrm_aevent_etime" },
198 	{ CTL_INT,	NET_CORE_AEVENT_RSEQTH,	"xfrm_aevent_rseqth" },
199 	{ CTL_INT,	NET_CORE_WARNINGS,	"warnings" },
200 	{},
201 };
202 
203 static const struct bin_table bin_net_unix_table[] = {
204 	/* NET_UNIX_DESTROY_DELAY unused */
205 	/* NET_UNIX_DELETE_DELAY unused */
206 	{ CTL_INT,	NET_UNIX_MAX_DGRAM_QLEN,	"max_dgram_qlen" },
207 	{}
208 };
209 
210 static const struct bin_table bin_net_ipv4_route_table[] = {
211 	{ CTL_INT,	NET_IPV4_ROUTE_FLUSH,			"flush" },
212 	/* NET_IPV4_ROUTE_MIN_DELAY "min_delay" no longer used */
213 	/* NET_IPV4_ROUTE_MAX_DELAY "max_delay" no longer used */
214 	{ CTL_INT,	NET_IPV4_ROUTE_GC_THRESH,		"gc_thresh" },
215 	{ CTL_INT,	NET_IPV4_ROUTE_MAX_SIZE,		"max_size" },
216 	{ CTL_INT,	NET_IPV4_ROUTE_GC_MIN_INTERVAL,		"gc_min_interval" },
217 	{ CTL_INT,	NET_IPV4_ROUTE_GC_MIN_INTERVAL_MS,	"gc_min_interval_ms" },
218 	{ CTL_INT,	NET_IPV4_ROUTE_GC_TIMEOUT,		"gc_timeout" },
219 	/* NET_IPV4_ROUTE_GC_INTERVAL "gc_interval" no longer used */
220 	{ CTL_INT,	NET_IPV4_ROUTE_REDIRECT_LOAD,		"redirect_load" },
221 	{ CTL_INT,	NET_IPV4_ROUTE_REDIRECT_NUMBER,		"redirect_number" },
222 	{ CTL_INT,	NET_IPV4_ROUTE_REDIRECT_SILENCE,	"redirect_silence" },
223 	{ CTL_INT,	NET_IPV4_ROUTE_ERROR_COST,		"error_cost" },
224 	{ CTL_INT,	NET_IPV4_ROUTE_ERROR_BURST,		"error_burst" },
225 	{ CTL_INT,	NET_IPV4_ROUTE_GC_ELASTICITY,		"gc_elasticity" },
226 	{ CTL_INT,	NET_IPV4_ROUTE_MTU_EXPIRES,		"mtu_expires" },
227 	{ CTL_INT,	NET_IPV4_ROUTE_MIN_PMTU,		"min_pmtu" },
228 	{ CTL_INT,	NET_IPV4_ROUTE_MIN_ADVMSS,		"min_adv_mss" },
229 	{}
230 };
231 
232 static const struct bin_table bin_net_ipv4_conf_vars_table[] = {
233 	{ CTL_INT,	NET_IPV4_CONF_FORWARDING,		"forwarding" },
234 	{ CTL_INT,	NET_IPV4_CONF_MC_FORWARDING,		"mc_forwarding" },
235 
236 	{ CTL_INT,	NET_IPV4_CONF_ACCEPT_REDIRECTS,		"accept_redirects" },
237 	{ CTL_INT,	NET_IPV4_CONF_SECURE_REDIRECTS,		"secure_redirects" },
238 	{ CTL_INT,	NET_IPV4_CONF_SEND_REDIRECTS,		"send_redirects" },
239 	{ CTL_INT,	NET_IPV4_CONF_SHARED_MEDIA,		"shared_media" },
240 	{ CTL_INT,	NET_IPV4_CONF_RP_FILTER,		"rp_filter" },
241 	{ CTL_INT,	NET_IPV4_CONF_ACCEPT_SOURCE_ROUTE,	"accept_source_route" },
242 	{ CTL_INT,	NET_IPV4_CONF_PROXY_ARP,		"proxy_arp" },
243 	{ CTL_INT,	NET_IPV4_CONF_MEDIUM_ID,		"medium_id" },
244 	{ CTL_INT,	NET_IPV4_CONF_BOOTP_RELAY,		"bootp_relay" },
245 	{ CTL_INT,	NET_IPV4_CONF_LOG_MARTIANS,		"log_martians" },
246 	{ CTL_INT,	NET_IPV4_CONF_TAG,			"tag" },
247 	{ CTL_INT,	NET_IPV4_CONF_ARPFILTER,		"arp_filter" },
248 	{ CTL_INT,	NET_IPV4_CONF_ARP_ANNOUNCE,		"arp_announce" },
249 	{ CTL_INT,	NET_IPV4_CONF_ARP_IGNORE,		"arp_ignore" },
250 	{ CTL_INT,	NET_IPV4_CONF_ARP_ACCEPT,		"arp_accept" },
251 	{ CTL_INT,	NET_IPV4_CONF_ARP_NOTIFY,		"arp_notify" },
252 
253 	{ CTL_INT,	NET_IPV4_CONF_NOXFRM,			"disable_xfrm" },
254 	{ CTL_INT,	NET_IPV4_CONF_NOPOLICY,			"disable_policy" },
255 	{ CTL_INT,	NET_IPV4_CONF_FORCE_IGMP_VERSION,	"force_igmp_version" },
256 	{ CTL_INT,	NET_IPV4_CONF_PROMOTE_SECONDARIES,	"promote_secondaries" },
257 	{}
258 };
259 
260 static const struct bin_table bin_net_ipv4_conf_table[] = {
261 	{ CTL_DIR,	NET_PROTO_CONF_ALL,	"all",		bin_net_ipv4_conf_vars_table },
262 	{ CTL_DIR,	NET_PROTO_CONF_DEFAULT,	"default",	bin_net_ipv4_conf_vars_table },
263 	{ CTL_DIR,	0, NULL, bin_net_ipv4_conf_vars_table },
264 	{}
265 };
266 
267 static const struct bin_table bin_net_neigh_vars_table[] = {
268 	{ CTL_INT,	NET_NEIGH_MCAST_SOLICIT,	"mcast_solicit" },
269 	{ CTL_INT,	NET_NEIGH_UCAST_SOLICIT,	"ucast_solicit" },
270 	{ CTL_INT,	NET_NEIGH_APP_SOLICIT,		"app_solicit" },
271 	/* NET_NEIGH_RETRANS_TIME "retrans_time" no longer used */
272 	{ CTL_INT,	NET_NEIGH_REACHABLE_TIME,	"base_reachable_time" },
273 	{ CTL_INT,	NET_NEIGH_DELAY_PROBE_TIME,	"delay_first_probe_time" },
274 	{ CTL_INT,	NET_NEIGH_GC_STALE_TIME,	"gc_stale_time" },
275 	{ CTL_INT,	NET_NEIGH_UNRES_QLEN,		"unres_qlen" },
276 	{ CTL_INT,	NET_NEIGH_PROXY_QLEN,		"proxy_qlen" },
277 	/* NET_NEIGH_ANYCAST_DELAY "anycast_delay" no longer used */
278 	/* NET_NEIGH_PROXY_DELAY "proxy_delay" no longer used */
279 	/* NET_NEIGH_LOCKTIME "locktime" no longer used */
280 	{ CTL_INT,	NET_NEIGH_GC_INTERVAL,		"gc_interval" },
281 	{ CTL_INT,	NET_NEIGH_GC_THRESH1,		"gc_thresh1" },
282 	{ CTL_INT,	NET_NEIGH_GC_THRESH2,		"gc_thresh2" },
283 	{ CTL_INT,	NET_NEIGH_GC_THRESH3,		"gc_thresh3" },
284 	{ CTL_INT,	NET_NEIGH_RETRANS_TIME_MS,	"retrans_time_ms" },
285 	{ CTL_INT,	NET_NEIGH_REACHABLE_TIME_MS,	"base_reachable_time_ms" },
286 	{}
287 };
288 
289 static const struct bin_table bin_net_neigh_table[] = {
290 	{ CTL_DIR,	NET_PROTO_CONF_DEFAULT, "default", bin_net_neigh_vars_table },
291 	{ CTL_DIR,	0, NULL, bin_net_neigh_vars_table },
292 	{}
293 };
294 
295 static const struct bin_table bin_net_ipv4_netfilter_table[] = {
296 	{ CTL_INT,	NET_IPV4_NF_CONNTRACK_MAX,		"ip_conntrack_max" },
297 
298 	/* NET_IPV4_NF_CONNTRACK_TCP_TIMEOUT_SYN_SENT "ip_conntrack_tcp_timeout_syn_sent" no longer used */
299 	/* NET_IPV4_NF_CONNTRACK_TCP_TIMEOUT_SYN_RECV "ip_conntrack_tcp_timeout_syn_recv" no longer used */
300 	/* NET_IPV4_NF_CONNTRACK_TCP_TIMEOUT_ESTABLISHED "ip_conntrack_tcp_timeout_established" no longer used */
301 	/* NET_IPV4_NF_CONNTRACK_TCP_TIMEOUT_FIN_WAIT "ip_conntrack_tcp_timeout_fin_wait" no longer used */
302 	/* NET_IPV4_NF_CONNTRACK_TCP_TIMEOUT_CLOSE_WAIT	"ip_conntrack_tcp_timeout_close_wait" no longer used */
303 	/* NET_IPV4_NF_CONNTRACK_TCP_TIMEOUT_LAST_ACK "ip_conntrack_tcp_timeout_last_ack" no longer used */
304 	/* NET_IPV4_NF_CONNTRACK_TCP_TIMEOUT_TIME_WAIT "ip_conntrack_tcp_timeout_time_wait" no longer used */
305 	/* NET_IPV4_NF_CONNTRACK_TCP_TIMEOUT_CLOSE "ip_conntrack_tcp_timeout_close" no longer used */
306 
307 	/* NET_IPV4_NF_CONNTRACK_UDP_TIMEOUT "ip_conntrack_udp_timeout" no longer used */
308 	/* NET_IPV4_NF_CONNTRACK_UDP_TIMEOUT_STREAM "ip_conntrack_udp_timeout_stream" no longer used */
309 	/* NET_IPV4_NF_CONNTRACK_ICMP_TIMEOUT "ip_conntrack_icmp_timeout" no longer used */
310 	/* NET_IPV4_NF_CONNTRACK_GENERIC_TIMEOUT "ip_conntrack_generic_timeout" no longer used */
311 
312 	{ CTL_INT,	NET_IPV4_NF_CONNTRACK_BUCKETS,		"ip_conntrack_buckets" },
313 	{ CTL_INT,	NET_IPV4_NF_CONNTRACK_LOG_INVALID,	"ip_conntrack_log_invalid" },
314 	/* NET_IPV4_NF_CONNTRACK_TCP_TIMEOUT_MAX_RETRANS "ip_conntrack_tcp_timeout_max_retrans" no longer used */
315 	{ CTL_INT,	NET_IPV4_NF_CONNTRACK_TCP_LOOSE,	"ip_conntrack_tcp_loose" },
316 	{ CTL_INT,	NET_IPV4_NF_CONNTRACK_TCP_BE_LIBERAL,	"ip_conntrack_tcp_be_liberal" },
317 	{ CTL_INT,	NET_IPV4_NF_CONNTRACK_TCP_MAX_RETRANS,	"ip_conntrack_tcp_max_retrans" },
318 
319 	/* NET_IPV4_NF_CONNTRACK_SCTP_TIMEOUT_CLOSED "ip_conntrack_sctp_timeout_closed" no longer used */
320 	/* NET_IPV4_NF_CONNTRACK_SCTP_TIMEOUT_COOKIE_WAIT "ip_conntrack_sctp_timeout_cookie_wait" no longer used */
321 	/* NET_IPV4_NF_CONNTRACK_SCTP_TIMEOUT_COOKIE_ECHOED "ip_conntrack_sctp_timeout_cookie_echoed" no longer used */
322 	/* NET_IPV4_NF_CONNTRACK_SCTP_TIMEOUT_ESTABLISHED "ip_conntrack_sctp_timeout_established" no longer used */
323 	/* NET_IPV4_NF_CONNTRACK_SCTP_TIMEOUT_SHUTDOWN_SENT "ip_conntrack_sctp_timeout_shutdown_sent" no longer used */
324 	/* NET_IPV4_NF_CONNTRACK_SCTP_TIMEOUT_SHUTDOWN_RECD "ip_conntrack_sctp_timeout_shutdown_recd" no longer used */
325 	/* NET_IPV4_NF_CONNTRACK_SCTP_TIMEOUT_SHUTDOWN_ACK_SENT "ip_conntrack_sctp_timeout_shutdown_ack_sent" no longer used */
326 
327 	{ CTL_INT,	NET_IPV4_NF_CONNTRACK_COUNT,		"ip_conntrack_count" },
328 	{ CTL_INT,	NET_IPV4_NF_CONNTRACK_CHECKSUM,		"ip_conntrack_checksum" },
329 	{}
330 };
331 
332 static const struct bin_table bin_net_ipv4_table[] = {
333 	{CTL_INT,	NET_IPV4_FORWARD,			"ip_forward" },
334 
335 	{ CTL_DIR,	NET_IPV4_CONF,		"conf",		bin_net_ipv4_conf_table },
336 	{ CTL_DIR,	NET_IPV4_NEIGH,		"neigh",	bin_net_neigh_table },
337 	{ CTL_DIR,	NET_IPV4_ROUTE,		"route",	bin_net_ipv4_route_table },
338 	/* NET_IPV4_FIB_HASH unused */
339 	{ CTL_DIR,	NET_IPV4_NETFILTER,	"netfilter",	bin_net_ipv4_netfilter_table },
340 
341 	{ CTL_INT,	NET_IPV4_TCP_TIMESTAMPS,		"tcp_timestamps" },
342 	{ CTL_INT,	NET_IPV4_TCP_WINDOW_SCALING,		"tcp_window_scaling" },
343 	{ CTL_INT,	NET_IPV4_TCP_SACK,			"tcp_sack" },
344 	{ CTL_INT,	NET_IPV4_TCP_RETRANS_COLLAPSE,		"tcp_retrans_collapse" },
345 	{ CTL_INT,	NET_IPV4_DEFAULT_TTL,			"ip_default_ttl" },
346 	/* NET_IPV4_AUTOCONFIG unused */
347 	{ CTL_INT,	NET_IPV4_NO_PMTU_DISC,			"ip_no_pmtu_disc" },
348 	{ CTL_INT,	NET_IPV4_NONLOCAL_BIND,			"ip_nonlocal_bind" },
349 	{ CTL_INT,	NET_IPV4_TCP_SYN_RETRIES,		"tcp_syn_retries" },
350 	{ CTL_INT,	NET_TCP_SYNACK_RETRIES,			"tcp_synack_retries" },
351 	{ CTL_INT,	NET_TCP_MAX_ORPHANS,			"tcp_max_orphans" },
352 	{ CTL_INT,	NET_TCP_MAX_TW_BUCKETS,			"tcp_max_tw_buckets" },
353 	{ CTL_INT,	NET_IPV4_DYNADDR,			"ip_dynaddr" },
354 	{ CTL_INT,	NET_IPV4_TCP_KEEPALIVE_TIME,		"tcp_keepalive_time" },
355 	{ CTL_INT,	NET_IPV4_TCP_KEEPALIVE_PROBES,		"tcp_keepalive_probes" },
356 	{ CTL_INT,	NET_IPV4_TCP_KEEPALIVE_INTVL,		"tcp_keepalive_intvl" },
357 	{ CTL_INT,	NET_IPV4_TCP_RETRIES1,			"tcp_retries1" },
358 	{ CTL_INT,	NET_IPV4_TCP_RETRIES2,			"tcp_retries2" },
359 	{ CTL_INT,	NET_IPV4_TCP_FIN_TIMEOUT,		"tcp_fin_timeout" },
360 	{ CTL_INT,	NET_TCP_SYNCOOKIES,			"tcp_syncookies" },
361 	{ CTL_INT,	NET_TCP_TW_RECYCLE,			"tcp_tw_recycle" },
362 	{ CTL_INT,	NET_TCP_ABORT_ON_OVERFLOW,		"tcp_abort_on_overflow" },
363 	{ CTL_INT,	NET_TCP_STDURG,				"tcp_stdurg" },
364 	{ CTL_INT,	NET_TCP_RFC1337,			"tcp_rfc1337" },
365 	{ CTL_INT,	NET_TCP_MAX_SYN_BACKLOG,		"tcp_max_syn_backlog" },
366 	{ CTL_INT,	NET_IPV4_LOCAL_PORT_RANGE,		"ip_local_port_range" },
367 	{ CTL_INT,	NET_IPV4_IGMP_MAX_MEMBERSHIPS,		"igmp_max_memberships" },
368 	{ CTL_INT,	NET_IPV4_IGMP_MAX_MSF,			"igmp_max_msf" },
369 	{ CTL_INT,	NET_IPV4_INET_PEER_THRESHOLD,		"inet_peer_threshold" },
370 	{ CTL_INT,	NET_IPV4_INET_PEER_MINTTL,		"inet_peer_minttl" },
371 	{ CTL_INT,	NET_IPV4_INET_PEER_MAXTTL,		"inet_peer_maxttl" },
372 	{ CTL_INT,	NET_IPV4_INET_PEER_GC_MINTIME,		"inet_peer_gc_mintime" },
373 	{ CTL_INT,	NET_IPV4_INET_PEER_GC_MAXTIME,		"inet_peer_gc_maxtime" },
374 	{ CTL_INT,	NET_TCP_ORPHAN_RETRIES,			"tcp_orphan_retries" },
375 	{ CTL_INT,	NET_TCP_FACK,				"tcp_fack" },
376 	{ CTL_INT,	NET_TCP_REORDERING,			"tcp_reordering" },
377 	{ CTL_INT,	NET_TCP_ECN,				"tcp_ecn" },
378 	{ CTL_INT,	NET_TCP_DSACK,				"tcp_dsack" },
379 	{ CTL_INT,	NET_TCP_MEM,				"tcp_mem" },
380 	{ CTL_INT,	NET_TCP_WMEM,				"tcp_wmem" },
381 	{ CTL_INT,	NET_TCP_RMEM,				"tcp_rmem" },
382 	{ CTL_INT,	NET_TCP_APP_WIN,			"tcp_app_win" },
383 	{ CTL_INT,	NET_TCP_ADV_WIN_SCALE,			"tcp_adv_win_scale" },
384 	{ CTL_INT,	NET_TCP_TW_REUSE,			"tcp_tw_reuse" },
385 	{ CTL_INT,	NET_TCP_FRTO,				"tcp_frto" },
386 	{ CTL_INT,	NET_TCP_FRTO_RESPONSE,			"tcp_frto_response" },
387 	{ CTL_INT,	NET_TCP_LOW_LATENCY,			"tcp_low_latency" },
388 	{ CTL_INT,	NET_TCP_NO_METRICS_SAVE,		"tcp_no_metrics_save" },
389 	{ CTL_INT,	NET_TCP_MODERATE_RCVBUF,		"tcp_moderate_rcvbuf" },
390 	{ CTL_INT,	NET_TCP_TSO_WIN_DIVISOR,		"tcp_tso_win_divisor" },
391 	{ CTL_STR,	NET_TCP_CONG_CONTROL,			"tcp_congestion_control" },
392 	{ CTL_INT,	NET_TCP_MTU_PROBING,			"tcp_mtu_probing" },
393 	{ CTL_INT,	NET_TCP_BASE_MSS,			"tcp_base_mss" },
394 	{ CTL_INT,	NET_IPV4_TCP_WORKAROUND_SIGNED_WINDOWS,	"tcp_workaround_signed_windows" },
395 	{ CTL_INT,	NET_TCP_SLOW_START_AFTER_IDLE,		"tcp_slow_start_after_idle" },
396 	{ CTL_INT,	NET_CIPSOV4_CACHE_ENABLE,		"cipso_cache_enable" },
397 	{ CTL_INT,	NET_CIPSOV4_CACHE_BUCKET_SIZE,		"cipso_cache_bucket_size" },
398 	{ CTL_INT,	NET_CIPSOV4_RBM_OPTFMT,			"cipso_rbm_optfmt" },
399 	{ CTL_INT,	NET_CIPSOV4_RBM_STRICTVALID,		"cipso_rbm_strictvalid" },
400 	/* NET_TCP_AVAIL_CONG_CONTROL "tcp_available_congestion_control" no longer used */
401 	{ CTL_STR,	NET_TCP_ALLOWED_CONG_CONTROL,		"tcp_allowed_congestion_control" },
402 	{ CTL_INT,	NET_TCP_MAX_SSTHRESH,			"tcp_max_ssthresh" },
403 
404 	{ CTL_INT,	NET_IPV4_ICMP_ECHO_IGNORE_ALL,		"icmp_echo_ignore_all" },
405 	{ CTL_INT,	NET_IPV4_ICMP_ECHO_IGNORE_BROADCASTS,	"icmp_echo_ignore_broadcasts" },
406 	{ CTL_INT,	NET_IPV4_ICMP_IGNORE_BOGUS_ERROR_RESPONSES,	"icmp_ignore_bogus_error_responses" },
407 	{ CTL_INT,	NET_IPV4_ICMP_ERRORS_USE_INBOUND_IFADDR,	"icmp_errors_use_inbound_ifaddr" },
408 	{ CTL_INT,	NET_IPV4_ICMP_RATELIMIT,		"icmp_ratelimit" },
409 	{ CTL_INT,	NET_IPV4_ICMP_RATEMASK,			"icmp_ratemask" },
410 
411 	{ CTL_INT,	NET_IPV4_IPFRAG_HIGH_THRESH,		"ipfrag_high_thresh" },
412 	{ CTL_INT,	NET_IPV4_IPFRAG_LOW_THRESH,		"ipfrag_low_thresh" },
413 	{ CTL_INT,	NET_IPV4_IPFRAG_TIME,			"ipfrag_time" },
414 
415 	{ CTL_INT,	NET_IPV4_IPFRAG_SECRET_INTERVAL,	"ipfrag_secret_interval" },
416 	/* NET_IPV4_IPFRAG_MAX_DIST "ipfrag_max_dist" no longer used */
417 
418 	{ CTL_INT,	2088 /* NET_IPQ_QMAX */,		"ip_queue_maxlen" },
419 
420 	/* NET_TCP_DEFAULT_WIN_SCALE unused */
421 	/* NET_TCP_BIC_BETA unused */
422 	/* NET_IPV4_TCP_MAX_KA_PROBES unused */
423 	/* NET_IPV4_IP_MASQ_DEBUG unused */
424 	/* NET_TCP_SYN_TAILDROP unused */
425 	/* NET_IPV4_ICMP_SOURCEQUENCH_RATE unused */
426 	/* NET_IPV4_ICMP_DESTUNREACH_RATE unused */
427 	/* NET_IPV4_ICMP_TIMEEXCEED_RATE unused */
428 	/* NET_IPV4_ICMP_PARAMPROB_RATE unused */
429 	/* NET_IPV4_ICMP_ECHOREPLY_RATE unused */
430 	/* NET_IPV4_ALWAYS_DEFRAG unused */
431 	{}
432 };
433 
434 static const struct bin_table bin_net_ipx_table[] = {
435 	{ CTL_INT,	NET_IPX_PPROP_BROADCASTING,	"ipx_pprop_broadcasting" },
436 	/* NET_IPX_FORWARDING unused */
437 	{}
438 };
439 
440 static const struct bin_table bin_net_atalk_table[] = {
441 	{ CTL_INT,	NET_ATALK_AARP_EXPIRY_TIME,		"aarp-expiry-time" },
442 	{ CTL_INT,	NET_ATALK_AARP_TICK_TIME,		"aarp-tick-time" },
443 	{ CTL_INT,	NET_ATALK_AARP_RETRANSMIT_LIMIT,	"aarp-retransmit-limit" },
444 	{ CTL_INT,	NET_ATALK_AARP_RESOLVE_TIME,		"aarp-resolve-time" },
445 	{},
446 };
447 
448 static const struct bin_table bin_net_netrom_table[] = {
449 	{ CTL_INT,	NET_NETROM_DEFAULT_PATH_QUALITY,		"default_path_quality" },
450 	{ CTL_INT,	NET_NETROM_OBSOLESCENCE_COUNT_INITIALISER,	"obsolescence_count_initialiser" },
451 	{ CTL_INT,	NET_NETROM_NETWORK_TTL_INITIALISER,		"network_ttl_initialiser" },
452 	{ CTL_INT,	NET_NETROM_TRANSPORT_TIMEOUT,			"transport_timeout" },
453 	{ CTL_INT,	NET_NETROM_TRANSPORT_MAXIMUM_TRIES,		"transport_maximum_tries" },
454 	{ CTL_INT,	NET_NETROM_TRANSPORT_ACKNOWLEDGE_DELAY,		"transport_acknowledge_delay" },
455 	{ CTL_INT,	NET_NETROM_TRANSPORT_BUSY_DELAY,		"transport_busy_delay" },
456 	{ CTL_INT,	NET_NETROM_TRANSPORT_REQUESTED_WINDOW_SIZE,	"transport_requested_window_size" },
457 	{ CTL_INT,	NET_NETROM_TRANSPORT_NO_ACTIVITY_TIMEOUT,	"transport_no_activity_timeout" },
458 	{ CTL_INT,	NET_NETROM_ROUTING_CONTROL,			"routing_control" },
459 	{ CTL_INT,	NET_NETROM_LINK_FAILS_COUNT,			"link_fails_count" },
460 	{ CTL_INT,	NET_NETROM_RESET,				"reset" },
461 	{}
462 };
463 
464 static const struct bin_table bin_net_ax25_param_table[] = {
465 	{ CTL_INT,	NET_AX25_IP_DEFAULT_MODE,	"ip_default_mode" },
466 	{ CTL_INT,	NET_AX25_DEFAULT_MODE,		"ax25_default_mode" },
467 	{ CTL_INT,	NET_AX25_BACKOFF_TYPE,		"backoff_type" },
468 	{ CTL_INT,	NET_AX25_CONNECT_MODE,		"connect_mode" },
469 	{ CTL_INT,	NET_AX25_STANDARD_WINDOW,	"standard_window_size" },
470 	{ CTL_INT,	NET_AX25_EXTENDED_WINDOW,	"extended_window_size" },
471 	{ CTL_INT,	NET_AX25_T1_TIMEOUT,		"t1_timeout" },
472 	{ CTL_INT,	NET_AX25_T2_TIMEOUT,		"t2_timeout" },
473 	{ CTL_INT,	NET_AX25_T3_TIMEOUT,		"t3_timeout" },
474 	{ CTL_INT,	NET_AX25_IDLE_TIMEOUT,		"idle_timeout" },
475 	{ CTL_INT,	NET_AX25_N2,			"maximum_retry_count" },
476 	{ CTL_INT,	NET_AX25_PACLEN,		"maximum_packet_length" },
477 	{ CTL_INT,	NET_AX25_PROTOCOL,		"protocol" },
478 	{ CTL_INT,	NET_AX25_DAMA_SLAVE_TIMEOUT,	"dama_slave_timeout" },
479 	{}
480 };
481 
482 static const struct bin_table bin_net_ax25_table[] = {
483 	{ CTL_DIR,	0, NULL, bin_net_ax25_param_table },
484 	{}
485 };
486 
487 static const struct bin_table bin_net_rose_table[] = {
488 	{ CTL_INT,	NET_ROSE_RESTART_REQUEST_TIMEOUT,	"restart_request_timeout" },
489 	{ CTL_INT,	NET_ROSE_CALL_REQUEST_TIMEOUT,		"call_request_timeout" },
490 	{ CTL_INT,	NET_ROSE_RESET_REQUEST_TIMEOUT,		"reset_request_timeout" },
491 	{ CTL_INT,	NET_ROSE_CLEAR_REQUEST_TIMEOUT,		"clear_request_timeout" },
492 	{ CTL_INT,	NET_ROSE_ACK_HOLD_BACK_TIMEOUT,		"acknowledge_hold_back_timeout" },
493 	{ CTL_INT,	NET_ROSE_ROUTING_CONTROL,		"routing_control" },
494 	{ CTL_INT,	NET_ROSE_LINK_FAIL_TIMEOUT,		"link_fail_timeout" },
495 	{ CTL_INT,	NET_ROSE_MAX_VCS,			"maximum_virtual_circuits" },
496 	{ CTL_INT,	NET_ROSE_WINDOW_SIZE,			"window_size" },
497 	{ CTL_INT,	NET_ROSE_NO_ACTIVITY_TIMEOUT,		"no_activity_timeout" },
498 	{}
499 };
500 
501 static const struct bin_table bin_net_ipv6_conf_var_table[] = {
502 	{ CTL_INT,	NET_IPV6_FORWARDING,			"forwarding" },
503 	{ CTL_INT,	NET_IPV6_HOP_LIMIT,			"hop_limit" },
504 	{ CTL_INT,	NET_IPV6_MTU,				"mtu" },
505 	{ CTL_INT,	NET_IPV6_ACCEPT_RA,			"accept_ra" },
506 	{ CTL_INT,	NET_IPV6_ACCEPT_REDIRECTS,		"accept_redirects" },
507 	{ CTL_INT,	NET_IPV6_AUTOCONF,			"autoconf" },
508 	{ CTL_INT,	NET_IPV6_DAD_TRANSMITS,			"dad_transmits" },
509 	{ CTL_INT,	NET_IPV6_RTR_SOLICITS,			"router_solicitations" },
510 	{ CTL_INT,	NET_IPV6_RTR_SOLICIT_INTERVAL,		"router_solicitation_interval" },
511 	{ CTL_INT,	NET_IPV6_RTR_SOLICIT_DELAY,		"router_solicitation_delay" },
512 	{ CTL_INT,	NET_IPV6_USE_TEMPADDR,			"use_tempaddr" },
513 	{ CTL_INT,	NET_IPV6_TEMP_VALID_LFT,		"temp_valid_lft" },
514 	{ CTL_INT,	NET_IPV6_TEMP_PREFERED_LFT,		"temp_prefered_lft" },
515 	{ CTL_INT,	NET_IPV6_REGEN_MAX_RETRY,		"regen_max_retry" },
516 	{ CTL_INT,	NET_IPV6_MAX_DESYNC_FACTOR,		"max_desync_factor" },
517 	{ CTL_INT,	NET_IPV6_MAX_ADDRESSES,			"max_addresses" },
518 	{ CTL_INT,	NET_IPV6_FORCE_MLD_VERSION,		"force_mld_version" },
519 	{ CTL_INT,	NET_IPV6_ACCEPT_RA_DEFRTR,		"accept_ra_defrtr" },
520 	{ CTL_INT,	NET_IPV6_ACCEPT_RA_PINFO,		"accept_ra_pinfo" },
521 	{ CTL_INT,	NET_IPV6_ACCEPT_RA_RTR_PREF,		"accept_ra_rtr_pref" },
522 	{ CTL_INT,	NET_IPV6_RTR_PROBE_INTERVAL,		"router_probe_interval" },
523 	{ CTL_INT,	NET_IPV6_ACCEPT_RA_RT_INFO_MAX_PLEN,	"accept_ra_rt_info_max_plen" },
524 	{ CTL_INT,	NET_IPV6_PROXY_NDP,			"proxy_ndp" },
525 	{ CTL_INT,	NET_IPV6_ACCEPT_SOURCE_ROUTE,		"accept_source_route" },
526 	{ CTL_INT,	NET_IPV6_ACCEPT_RA_FROM_LOCAL,		"accept_ra_from_local" },
527 	{}
528 };
529 
530 static const struct bin_table bin_net_ipv6_conf_table[] = {
531 	{ CTL_DIR,	NET_PROTO_CONF_ALL,		"all",	bin_net_ipv6_conf_var_table },
532 	{ CTL_DIR,	NET_PROTO_CONF_DEFAULT, 	"default", bin_net_ipv6_conf_var_table },
533 	{ CTL_DIR,	0, NULL, bin_net_ipv6_conf_var_table },
534 	{}
535 };
536 
537 static const struct bin_table bin_net_ipv6_route_table[] = {
538 	/* NET_IPV6_ROUTE_FLUSH	"flush"  no longer used */
539 	{ CTL_INT,	NET_IPV6_ROUTE_GC_THRESH,		"gc_thresh" },
540 	{ CTL_INT,	NET_IPV6_ROUTE_MAX_SIZE,		"max_size" },
541 	{ CTL_INT,	NET_IPV6_ROUTE_GC_MIN_INTERVAL,		"gc_min_interval" },
542 	{ CTL_INT,	NET_IPV6_ROUTE_GC_TIMEOUT,		"gc_timeout" },
543 	{ CTL_INT,	NET_IPV6_ROUTE_GC_INTERVAL,		"gc_interval" },
544 	{ CTL_INT,	NET_IPV6_ROUTE_GC_ELASTICITY,		"gc_elasticity" },
545 	{ CTL_INT,	NET_IPV6_ROUTE_MTU_EXPIRES,		"mtu_expires" },
546 	{ CTL_INT,	NET_IPV6_ROUTE_MIN_ADVMSS,		"min_adv_mss" },
547 	{ CTL_INT,	NET_IPV6_ROUTE_GC_MIN_INTERVAL_MS,	"gc_min_interval_ms" },
548 	{}
549 };
550 
551 static const struct bin_table bin_net_ipv6_icmp_table[] = {
552 	{ CTL_INT,	NET_IPV6_ICMP_RATELIMIT,	"ratelimit" },
553 	{}
554 };
555 
556 static const struct bin_table bin_net_ipv6_table[] = {
557 	{ CTL_DIR,	NET_IPV6_CONF,		"conf",		bin_net_ipv6_conf_table },
558 	{ CTL_DIR,	NET_IPV6_NEIGH,		"neigh",	bin_net_neigh_table },
559 	{ CTL_DIR,	NET_IPV6_ROUTE,		"route",	bin_net_ipv6_route_table },
560 	{ CTL_DIR,	NET_IPV6_ICMP,		"icmp",		bin_net_ipv6_icmp_table },
561 	{ CTL_INT,	NET_IPV6_BINDV6ONLY,		"bindv6only" },
562 	{ CTL_INT,	NET_IPV6_IP6FRAG_HIGH_THRESH,	"ip6frag_high_thresh" },
563 	{ CTL_INT,	NET_IPV6_IP6FRAG_LOW_THRESH,	"ip6frag_low_thresh" },
564 	{ CTL_INT,	NET_IPV6_IP6FRAG_TIME,		"ip6frag_time" },
565 	{ CTL_INT,	NET_IPV6_IP6FRAG_SECRET_INTERVAL,	"ip6frag_secret_interval" },
566 	{ CTL_INT,	NET_IPV6_MLD_MAX_MSF,		"mld_max_msf" },
567 	{ CTL_INT,	2088 /* IPQ_QMAX */,		"ip6_queue_maxlen" },
568 	{}
569 };
570 
571 static const struct bin_table bin_net_x25_table[] = {
572 	{ CTL_INT,	NET_X25_RESTART_REQUEST_TIMEOUT,	"restart_request_timeout" },
573 	{ CTL_INT,	NET_X25_CALL_REQUEST_TIMEOUT,		"call_request_timeout" },
574 	{ CTL_INT,	NET_X25_RESET_REQUEST_TIMEOUT,	"reset_request_timeout" },
575 	{ CTL_INT,	NET_X25_CLEAR_REQUEST_TIMEOUT,	"clear_request_timeout" },
576 	{ CTL_INT,	NET_X25_ACK_HOLD_BACK_TIMEOUT,	"acknowledgement_hold_back_timeout" },
577 	{ CTL_INT,	NET_X25_FORWARD,			"x25_forward" },
578 	{}
579 };
580 
581 static const struct bin_table bin_net_tr_table[] = {
582 	{ CTL_INT,	NET_TR_RIF_TIMEOUT,	"rif_timeout" },
583 	{}
584 };
585 
586 
587 static const struct bin_table bin_net_decnet_conf_vars[] = {
588 	{ CTL_INT,	NET_DECNET_CONF_DEV_FORWARDING,	"forwarding" },
589 	{ CTL_INT,	NET_DECNET_CONF_DEV_PRIORITY,	"priority" },
590 	{ CTL_INT,	NET_DECNET_CONF_DEV_T2,		"t2" },
591 	{ CTL_INT,	NET_DECNET_CONF_DEV_T3,		"t3" },
592 	{}
593 };
594 
595 static const struct bin_table bin_net_decnet_conf[] = {
596 	{ CTL_DIR, NET_DECNET_CONF_ETHER,    "ethernet", bin_net_decnet_conf_vars },
597 	{ CTL_DIR, NET_DECNET_CONF_GRE,	     "ipgre",    bin_net_decnet_conf_vars },
598 	{ CTL_DIR, NET_DECNET_CONF_X25,	     "x25",      bin_net_decnet_conf_vars },
599 	{ CTL_DIR, NET_DECNET_CONF_PPP,	     "ppp",      bin_net_decnet_conf_vars },
600 	{ CTL_DIR, NET_DECNET_CONF_DDCMP,    "ddcmp",    bin_net_decnet_conf_vars },
601 	{ CTL_DIR, NET_DECNET_CONF_LOOPBACK, "loopback", bin_net_decnet_conf_vars },
602 	{ CTL_DIR, 0,			     NULL,	 bin_net_decnet_conf_vars },
603 	{}
604 };
605 
606 static const struct bin_table bin_net_decnet_table[] = {
607 	{ CTL_DIR,	NET_DECNET_CONF,		"conf",	bin_net_decnet_conf },
608 	{ CTL_DNADR,	NET_DECNET_NODE_ADDRESS,	"node_address" },
609 	{ CTL_STR,	NET_DECNET_NODE_NAME,		"node_name" },
610 	{ CTL_STR,	NET_DECNET_DEFAULT_DEVICE,	"default_device" },
611 	{ CTL_INT,	NET_DECNET_TIME_WAIT,		"time_wait" },
612 	{ CTL_INT,	NET_DECNET_DN_COUNT,		"dn_count" },
613 	{ CTL_INT,	NET_DECNET_DI_COUNT,		"di_count" },
614 	{ CTL_INT,	NET_DECNET_DR_COUNT,		"dr_count" },
615 	{ CTL_INT,	NET_DECNET_DST_GC_INTERVAL,	"dst_gc_interval" },
616 	{ CTL_INT,	NET_DECNET_NO_FC_MAX_CWND,	"no_fc_max_cwnd" },
617 	{ CTL_INT,	NET_DECNET_MEM,		"decnet_mem" },
618 	{ CTL_INT,	NET_DECNET_RMEM,		"decnet_rmem" },
619 	{ CTL_INT,	NET_DECNET_WMEM,		"decnet_wmem" },
620 	{ CTL_INT,	NET_DECNET_DEBUG_LEVEL,	"debug" },
621 	{}
622 };
623 
624 static const struct bin_table bin_net_sctp_table[] = {
625 	{ CTL_INT,	NET_SCTP_RTO_INITIAL,		"rto_initial" },
626 	{ CTL_INT,	NET_SCTP_RTO_MIN,		"rto_min" },
627 	{ CTL_INT,	NET_SCTP_RTO_MAX,		"rto_max" },
628 	{ CTL_INT,	NET_SCTP_RTO_ALPHA,		"rto_alpha_exp_divisor" },
629 	{ CTL_INT,	NET_SCTP_RTO_BETA,		"rto_beta_exp_divisor" },
630 	{ CTL_INT,	NET_SCTP_VALID_COOKIE_LIFE,	"valid_cookie_life" },
631 	{ CTL_INT,	NET_SCTP_ASSOCIATION_MAX_RETRANS,	"association_max_retrans" },
632 	{ CTL_INT,	NET_SCTP_PATH_MAX_RETRANS,	"path_max_retrans" },
633 	{ CTL_INT,	NET_SCTP_MAX_INIT_RETRANSMITS,	"max_init_retransmits" },
634 	{ CTL_INT,	NET_SCTP_HB_INTERVAL,		"hb_interval" },
635 	{ CTL_INT,	NET_SCTP_PRESERVE_ENABLE,	"cookie_preserve_enable" },
636 	{ CTL_INT,	NET_SCTP_MAX_BURST,		"max_burst" },
637 	{ CTL_INT,	NET_SCTP_ADDIP_ENABLE,		"addip_enable" },
638 	{ CTL_INT,	NET_SCTP_PRSCTP_ENABLE,		"prsctp_enable" },
639 	{ CTL_INT,	NET_SCTP_SNDBUF_POLICY,		"sndbuf_policy" },
640 	{ CTL_INT,	NET_SCTP_SACK_TIMEOUT,		"sack_timeout" },
641 	{ CTL_INT,	NET_SCTP_RCVBUF_POLICY,		"rcvbuf_policy" },
642 	{}
643 };
644 
645 static const struct bin_table bin_net_llc_llc2_timeout_table[] = {
646 	{ CTL_INT,	NET_LLC2_ACK_TIMEOUT,	"ack" },
647 	{ CTL_INT,	NET_LLC2_P_TIMEOUT,	"p" },
648 	{ CTL_INT,	NET_LLC2_REJ_TIMEOUT,	"rej" },
649 	{ CTL_INT,	NET_LLC2_BUSY_TIMEOUT,	"busy" },
650 	{}
651 };
652 
653 static const struct bin_table bin_net_llc_station_table[] = {
654 	{ CTL_INT,	NET_LLC_STATION_ACK_TIMEOUT,	"ack_timeout" },
655 	{}
656 };
657 
658 static const struct bin_table bin_net_llc_llc2_table[] = {
659 	{ CTL_DIR,	NET_LLC2,		"timeout",	bin_net_llc_llc2_timeout_table },
660 	{}
661 };
662 
663 static const struct bin_table bin_net_llc_table[] = {
664 	{ CTL_DIR,	NET_LLC2,		"llc2",		bin_net_llc_llc2_table },
665 	{ CTL_DIR,	NET_LLC_STATION,	"station",	bin_net_llc_station_table },
666 	{}
667 };
668 
669 static const struct bin_table bin_net_netfilter_table[] = {
670 	{ CTL_INT,	NET_NF_CONNTRACK_MAX,			"nf_conntrack_max" },
671 	/* NET_NF_CONNTRACK_TCP_TIMEOUT_SYN_SENT "nf_conntrack_tcp_timeout_syn_sent" no longer used */
672 	/* NET_NF_CONNTRACK_TCP_TIMEOUT_SYN_RECV "nf_conntrack_tcp_timeout_syn_recv" no longer used */
673 	/* NET_NF_CONNTRACK_TCP_TIMEOUT_ESTABLISHED "nf_conntrack_tcp_timeout_established" no longer used */
674 	/* NET_NF_CONNTRACK_TCP_TIMEOUT_FIN_WAIT "nf_conntrack_tcp_timeout_fin_wait" no longer used */
675 	/* NET_NF_CONNTRACK_TCP_TIMEOUT_CLOSE_WAIT "nf_conntrack_tcp_timeout_close_wait" no longer used */
676 	/* NET_NF_CONNTRACK_TCP_TIMEOUT_LAST_ACK "nf_conntrack_tcp_timeout_last_ack" no longer used */
677 	/* NET_NF_CONNTRACK_TCP_TIMEOUT_TIME_WAIT "nf_conntrack_tcp_timeout_time_wait" no longer used */
678 	/* NET_NF_CONNTRACK_TCP_TIMEOUT_CLOSE "nf_conntrack_tcp_timeout_close" no longer used */
679 	/* NET_NF_CONNTRACK_UDP_TIMEOUT	"nf_conntrack_udp_timeout" no longer used */
680 	/* NET_NF_CONNTRACK_UDP_TIMEOUT_STREAM "nf_conntrack_udp_timeout_stream" no longer used */
681 	/* NET_NF_CONNTRACK_ICMP_TIMEOUT "nf_conntrack_icmp_timeout" no longer used */
682 	/* NET_NF_CONNTRACK_GENERIC_TIMEOUT "nf_conntrack_generic_timeout" no longer used */
683 	{ CTL_INT,	NET_NF_CONNTRACK_BUCKETS,		"nf_conntrack_buckets" },
684 	{ CTL_INT,	NET_NF_CONNTRACK_LOG_INVALID,		"nf_conntrack_log_invalid" },
685 	/* NET_NF_CONNTRACK_TCP_TIMEOUT_MAX_RETRANS "nf_conntrack_tcp_timeout_max_retrans" no longer used */
686 	{ CTL_INT,	NET_NF_CONNTRACK_TCP_LOOSE,		"nf_conntrack_tcp_loose" },
687 	{ CTL_INT,	NET_NF_CONNTRACK_TCP_BE_LIBERAL,	"nf_conntrack_tcp_be_liberal" },
688 	{ CTL_INT,	NET_NF_CONNTRACK_TCP_MAX_RETRANS,	"nf_conntrack_tcp_max_retrans" },
689 	/* NET_NF_CONNTRACK_SCTP_TIMEOUT_CLOSED "nf_conntrack_sctp_timeout_closed" no longer used */
690 	/* NET_NF_CONNTRACK_SCTP_TIMEOUT_COOKIE_WAIT "nf_conntrack_sctp_timeout_cookie_wait" no longer used */
691 	/* NET_NF_CONNTRACK_SCTP_TIMEOUT_COOKIE_ECHOED "nf_conntrack_sctp_timeout_cookie_echoed" no longer used */
692 	/* NET_NF_CONNTRACK_SCTP_TIMEOUT_ESTABLISHED "nf_conntrack_sctp_timeout_established" no longer used */
693 	/* NET_NF_CONNTRACK_SCTP_TIMEOUT_SHUTDOWN_SENT "nf_conntrack_sctp_timeout_shutdown_sent" no longer used */
694 	/* NET_NF_CONNTRACK_SCTP_TIMEOUT_SHUTDOWN_RECD "nf_conntrack_sctp_timeout_shutdown_recd" no longer used */
695 	/* NET_NF_CONNTRACK_SCTP_TIMEOUT_SHUTDOWN_ACK_SENT "nf_conntrack_sctp_timeout_shutdown_ack_sent" no longer used */
696 	{ CTL_INT,	NET_NF_CONNTRACK_COUNT,			"nf_conntrack_count" },
697 	/* NET_NF_CONNTRACK_ICMPV6_TIMEOUT "nf_conntrack_icmpv6_timeout" no longer used */
698 	/* NET_NF_CONNTRACK_FRAG6_TIMEOUT "nf_conntrack_frag6_timeout" no longer used */
699 	{ CTL_INT,	NET_NF_CONNTRACK_FRAG6_LOW_THRESH,	"nf_conntrack_frag6_low_thresh" },
700 	{ CTL_INT,	NET_NF_CONNTRACK_FRAG6_HIGH_THRESH,	"nf_conntrack_frag6_high_thresh" },
701 	{ CTL_INT,	NET_NF_CONNTRACK_CHECKSUM,		"nf_conntrack_checksum" },
702 
703 	{}
704 };
705 
706 static const struct bin_table bin_net_irda_table[] = {
707 	{ CTL_INT,	NET_IRDA_DISCOVERY,		"discovery" },
708 	{ CTL_STR,	NET_IRDA_DEVNAME,		"devname" },
709 	{ CTL_INT,	NET_IRDA_DEBUG,			"debug" },
710 	{ CTL_INT,	NET_IRDA_FAST_POLL,		"fast_poll_increase" },
711 	{ CTL_INT,	NET_IRDA_DISCOVERY_SLOTS,	"discovery_slots" },
712 	{ CTL_INT,	NET_IRDA_DISCOVERY_TIMEOUT,	"discovery_timeout" },
713 	{ CTL_INT,	NET_IRDA_SLOT_TIMEOUT,		"slot_timeout" },
714 	{ CTL_INT,	NET_IRDA_MAX_BAUD_RATE,		"max_baud_rate" },
715 	{ CTL_INT,	NET_IRDA_MIN_TX_TURN_TIME,	"min_tx_turn_time" },
716 	{ CTL_INT,	NET_IRDA_MAX_TX_DATA_SIZE,	"max_tx_data_size" },
717 	{ CTL_INT,	NET_IRDA_MAX_TX_WINDOW,		"max_tx_window" },
718 	{ CTL_INT,	NET_IRDA_MAX_NOREPLY_TIME,	"max_noreply_time" },
719 	{ CTL_INT,	NET_IRDA_WARN_NOREPLY_TIME,	"warn_noreply_time" },
720 	{ CTL_INT,	NET_IRDA_LAP_KEEPALIVE_TIME,	"lap_keepalive_time" },
721 	{}
722 };
723 
724 static const struct bin_table bin_net_table[] = {
725 	{ CTL_DIR,	NET_CORE,		"core",		bin_net_core_table },
726 	/* NET_ETHER not used */
727 	/* NET_802 not used */
728 	{ CTL_DIR,	NET_UNIX,		"unix",		bin_net_unix_table },
729 	{ CTL_DIR,	NET_IPV4,		"ipv4",		bin_net_ipv4_table },
730 	{ CTL_DIR,	NET_IPX,		"ipx",		bin_net_ipx_table },
731 	{ CTL_DIR,	NET_ATALK,		"appletalk",	bin_net_atalk_table },
732 	{ CTL_DIR,	NET_NETROM,		"netrom",	bin_net_netrom_table },
733 	{ CTL_DIR,	NET_AX25,		"ax25",		bin_net_ax25_table },
734 	/*  NET_BRIDGE "bridge" no longer used */
735 	{ CTL_DIR,	NET_ROSE,		"rose",		bin_net_rose_table },
736 	{ CTL_DIR,	NET_IPV6,		"ipv6",		bin_net_ipv6_table },
737 	{ CTL_DIR,	NET_X25,		"x25",		bin_net_x25_table },
738 	{ CTL_DIR,	NET_TR,			"token-ring",	bin_net_tr_table },
739 	{ CTL_DIR,	NET_DECNET,		"decnet",	bin_net_decnet_table },
740 	/*  NET_ECONET not used */
741 	{ CTL_DIR,	NET_SCTP,		"sctp",		bin_net_sctp_table },
742 	{ CTL_DIR,	NET_LLC,		"llc",		bin_net_llc_table },
743 	{ CTL_DIR,	NET_NETFILTER,		"netfilter",	bin_net_netfilter_table },
744 	/* NET_DCCP "dccp" no longer used */
745 	{ CTL_DIR,	NET_IRDA,		"irda",		bin_net_irda_table },
746 	{ CTL_INT,	2089,			"nf_conntrack_max" },
747 	{}
748 };
749 
750 static const struct bin_table bin_fs_quota_table[] = {
751 	{ CTL_INT,	FS_DQ_LOOKUPS,		"lookups" },
752 	{ CTL_INT,	FS_DQ_DROPS,		"drops" },
753 	{ CTL_INT,	FS_DQ_READS,		"reads" },
754 	{ CTL_INT,	FS_DQ_WRITES,		"writes" },
755 	{ CTL_INT,	FS_DQ_CACHE_HITS,	"cache_hits" },
756 	{ CTL_INT,	FS_DQ_ALLOCATED,	"allocated_dquots" },
757 	{ CTL_INT,	FS_DQ_FREE,		"free_dquots" },
758 	{ CTL_INT,	FS_DQ_SYNCS,		"syncs" },
759 	{ CTL_INT,	FS_DQ_WARNINGS,		"warnings" },
760 	{}
761 };
762 
763 static const struct bin_table bin_fs_xfs_table[] = {
764 	{ CTL_INT,	XFS_SGID_INHERIT,	"irix_sgid_inherit" },
765 	{ CTL_INT,	XFS_SYMLINK_MODE,	"irix_symlink_mode" },
766 	{ CTL_INT,	XFS_PANIC_MASK,		"panic_mask" },
767 
768 	{ CTL_INT,	XFS_ERRLEVEL,		"error_level" },
769 	{ CTL_INT,	XFS_SYNCD_TIMER,	"xfssyncd_centisecs" },
770 	{ CTL_INT,	XFS_INHERIT_SYNC,	"inherit_sync" },
771 	{ CTL_INT,	XFS_INHERIT_NODUMP,	"inherit_nodump" },
772 	{ CTL_INT,	XFS_INHERIT_NOATIME,	"inherit_noatime" },
773 	{ CTL_INT,	XFS_BUF_TIMER,		"xfsbufd_centisecs" },
774 	{ CTL_INT,	XFS_BUF_AGE,		"age_buffer_centisecs" },
775 	{ CTL_INT,	XFS_INHERIT_NOSYM,	"inherit_nosymlinks" },
776 	{ CTL_INT,	XFS_ROTORSTEP,	"rotorstep" },
777 	{ CTL_INT,	XFS_INHERIT_NODFRG,	"inherit_nodefrag" },
778 	{ CTL_INT,	XFS_FILESTREAM_TIMER,	"filestream_centisecs" },
779 	{ CTL_INT,	XFS_STATS_CLEAR,	"stats_clear" },
780 	{}
781 };
782 
783 static const struct bin_table bin_fs_ocfs2_nm_table[] = {
784 	{ CTL_STR,	1, "hb_ctl_path" },
785 	{}
786 };
787 
788 static const struct bin_table bin_fs_ocfs2_table[] = {
789 	{ CTL_DIR,	1,	"nm",	bin_fs_ocfs2_nm_table },
790 	{}
791 };
792 
793 static const struct bin_table bin_inotify_table[] = {
794 	{ CTL_INT,	INOTIFY_MAX_USER_INSTANCES,	"max_user_instances" },
795 	{ CTL_INT,	INOTIFY_MAX_USER_WATCHES,	"max_user_watches" },
796 	{ CTL_INT,	INOTIFY_MAX_QUEUED_EVENTS,	"max_queued_events" },
797 	{}
798 };
799 
800 static const struct bin_table bin_fs_table[] = {
801 	{ CTL_INT,	FS_NRINODE,		"inode-nr" },
802 	{ CTL_INT,	FS_STATINODE,		"inode-state" },
803 	/* FS_MAXINODE unused */
804 	/* FS_NRDQUOT unused */
805 	/* FS_MAXDQUOT unused */
806 	/* FS_NRFILE "file-nr" no longer used */
807 	{ CTL_INT,	FS_MAXFILE,		"file-max" },
808 	{ CTL_INT,	FS_DENTRY,		"dentry-state" },
809 	/* FS_NRSUPER unused */
810 	/* FS_MAXUPSER unused */
811 	{ CTL_INT,	FS_OVERFLOWUID,		"overflowuid" },
812 	{ CTL_INT,	FS_OVERFLOWGID,		"overflowgid" },
813 	{ CTL_INT,	FS_LEASES,		"leases-enable" },
814 	{ CTL_INT,	FS_DIR_NOTIFY,		"dir-notify-enable" },
815 	{ CTL_INT,	FS_LEASE_TIME,		"lease-break-time" },
816 	{ CTL_DIR,	FS_DQSTATS,		"quota",	bin_fs_quota_table },
817 	{ CTL_DIR,	FS_XFS,			"xfs",		bin_fs_xfs_table },
818 	{ CTL_ULONG,	FS_AIO_NR,		"aio-nr" },
819 	{ CTL_ULONG,	FS_AIO_MAX_NR,		"aio-max-nr" },
820 	{ CTL_DIR,	FS_INOTIFY,		"inotify",	bin_inotify_table },
821 	{ CTL_DIR,	FS_OCFS2,		"ocfs2",	bin_fs_ocfs2_table },
822 	{ CTL_INT,	KERN_SETUID_DUMPABLE,	"suid_dumpable" },
823 	{}
824 };
825 
826 static const struct bin_table bin_ipmi_table[] = {
827 	{ CTL_INT,	DEV_IPMI_POWEROFF_POWERCYCLE,	"poweroff_powercycle" },
828 	{}
829 };
830 
831 static const struct bin_table bin_mac_hid_files[] = {
832 	/* DEV_MAC_HID_KEYBOARD_SENDS_LINUX_KEYCODES unused */
833 	/* DEV_MAC_HID_KEYBOARD_LOCK_KEYCODES unused */
834 	{ CTL_INT,	DEV_MAC_HID_MOUSE_BUTTON_EMULATION,	"mouse_button_emulation" },
835 	{ CTL_INT,	DEV_MAC_HID_MOUSE_BUTTON2_KEYCODE,	"mouse_button2_keycode" },
836 	{ CTL_INT,	DEV_MAC_HID_MOUSE_BUTTON3_KEYCODE,	"mouse_button3_keycode" },
837 	/* DEV_MAC_HID_ADB_MOUSE_SENDS_KEYCODES unused */
838 	{}
839 };
840 
841 static const struct bin_table bin_raid_table[] = {
842 	{ CTL_INT,	DEV_RAID_SPEED_LIMIT_MIN,	"speed_limit_min" },
843 	{ CTL_INT,	DEV_RAID_SPEED_LIMIT_MAX,	"speed_limit_max" },
844 	{}
845 };
846 
847 static const struct bin_table bin_scsi_table[] = {
848 	{ CTL_INT, DEV_SCSI_LOGGING_LEVEL, "logging_level" },
849 	{}
850 };
851 
852 static const struct bin_table bin_dev_table[] = {
853 	/* DEV_CDROM	"cdrom" no longer used */
854 	/* DEV_HWMON unused */
855 	/* DEV_PARPORT	"parport" no longer used */
856 	{ CTL_DIR,	DEV_RAID,	"raid",		bin_raid_table },
857 	{ CTL_DIR,	DEV_MAC_HID,	"mac_hid",	bin_mac_hid_files },
858 	{ CTL_DIR,	DEV_SCSI,	"scsi",		bin_scsi_table },
859 	{ CTL_DIR,	DEV_IPMI,	"ipmi",		bin_ipmi_table },
860 	{}
861 };
862 
863 static const struct bin_table bin_bus_isa_table[] = {
864 	{ CTL_INT,	BUS_ISA_MEM_BASE,	"membase" },
865 	{ CTL_INT,	BUS_ISA_PORT_BASE,	"portbase" },
866 	{ CTL_INT,	BUS_ISA_PORT_SHIFT,	"portshift" },
867 	{}
868 };
869 
870 static const struct bin_table bin_bus_table[] = {
871 	{ CTL_DIR,	CTL_BUS_ISA,	"isa",	bin_bus_isa_table },
872 	{}
873 };
874 
875 
876 static const struct bin_table bin_s390dbf_table[] = {
877 	{ CTL_INT,	5678 /* CTL_S390DBF_STOPPABLE */, "debug_stoppable" },
878 	{ CTL_INT,	5679 /* CTL_S390DBF_ACTIVE */,	  "debug_active" },
879 	{}
880 };
881 
882 static const struct bin_table bin_sunrpc_table[] = {
883 	/* CTL_RPCDEBUG	"rpc_debug"  no longer used */
884 	/* CTL_NFSDEBUG "nfs_debug"  no longer used */
885 	/* CTL_NFSDDEBUG "nfsd_debug" no longer used  */
886 	/* CTL_NLMDEBUG "nlm_debug" no longer used */
887 
888 	{ CTL_INT,	CTL_SLOTTABLE_UDP,	"udp_slot_table_entries" },
889 	{ CTL_INT,	CTL_SLOTTABLE_TCP,	"tcp_slot_table_entries" },
890 	{ CTL_INT,	CTL_MIN_RESVPORT,	"min_resvport" },
891 	{ CTL_INT,	CTL_MAX_RESVPORT,	"max_resvport" },
892 	{}
893 };
894 
895 static const struct bin_table bin_pm_table[] = {
896 	/* frv specific */
897 	/* 1 == CTL_PM_SUSPEND	"suspend"  no longer used" */
898 	{ CTL_INT,	2 /* CTL_PM_CMODE */,		"cmode" },
899 	{ CTL_INT,	3 /* CTL_PM_P0 */,		"p0" },
900 	{ CTL_INT,	4 /* CTL_PM_CM */,		"cm" },
901 	{}
902 };
903 
904 static const struct bin_table bin_root_table[] = {
905 	{ CTL_DIR,	CTL_KERN,	"kernel",	bin_kern_table },
906 	{ CTL_DIR,	CTL_VM,		"vm",		bin_vm_table },
907 	{ CTL_DIR,	CTL_NET,	"net",		bin_net_table },
908 	/* CTL_PROC not used */
909 	{ CTL_DIR,	CTL_FS,		"fs",		bin_fs_table },
910 	/* CTL_DEBUG "debug" no longer used */
911 	{ CTL_DIR,	CTL_DEV,	"dev",		bin_dev_table },
912 	{ CTL_DIR,	CTL_BUS,	"bus",		bin_bus_table },
913 	{ CTL_DIR,	CTL_ABI,	"abi" },
914 	/* CTL_CPU not used */
915 	/* CTL_ARLAN "arlan" no longer used */
916 	{ CTL_DIR,	CTL_S390DBF,	"s390dbf",	bin_s390dbf_table },
917 	{ CTL_DIR,	CTL_SUNRPC,	"sunrpc",	bin_sunrpc_table },
918 	{ CTL_DIR,	CTL_PM,		"pm",		bin_pm_table },
919 	{}
920 };
921 
bin_dir(struct file * file,void __user * oldval,size_t oldlen,void __user * newval,size_t newlen)922 static ssize_t bin_dir(struct file *file,
923 	void __user *oldval, size_t oldlen, void __user *newval, size_t newlen)
924 {
925 	return -ENOTDIR;
926 }
927 
928 
bin_string(struct file * file,void __user * oldval,size_t oldlen,void __user * newval,size_t newlen)929 static ssize_t bin_string(struct file *file,
930 	void __user *oldval, size_t oldlen, void __user *newval, size_t newlen)
931 {
932 	ssize_t result, copied = 0;
933 
934 	if (oldval && oldlen) {
935 		char __user *lastp;
936 		loff_t pos = 0;
937 		int ch;
938 
939 		result = vfs_read(file, oldval, oldlen, &pos);
940 		if (result < 0)
941 			goto out;
942 
943 		copied = result;
944 		lastp = oldval + copied - 1;
945 
946 		result = -EFAULT;
947 		if (get_user(ch, lastp))
948 			goto out;
949 
950 		/* Trim off the trailing newline */
951 		if (ch == '\n') {
952 			result = -EFAULT;
953 			if (put_user('\0', lastp))
954 				goto out;
955 			copied -= 1;
956 		}
957 	}
958 
959 	if (newval && newlen) {
960 		loff_t pos = 0;
961 
962 		result = vfs_write(file, newval, newlen, &pos);
963 		if (result < 0)
964 			goto out;
965 	}
966 
967 	result = copied;
968 out:
969 	return result;
970 }
971 
bin_intvec(struct file * file,void __user * oldval,size_t oldlen,void __user * newval,size_t newlen)972 static ssize_t bin_intvec(struct file *file,
973 	void __user *oldval, size_t oldlen, void __user *newval, size_t newlen)
974 {
975 	ssize_t copied = 0;
976 	char *buffer;
977 	ssize_t result;
978 
979 	result = -ENOMEM;
980 	buffer = kmalloc(BUFSZ, GFP_KERNEL);
981 	if (!buffer)
982 		goto out;
983 
984 	if (oldval && oldlen) {
985 		unsigned __user *vec = oldval;
986 		size_t length = oldlen / sizeof(*vec);
987 		char *str, *end;
988 		int i;
989 
990 		result = kernel_read(file, 0, buffer, BUFSZ - 1);
991 		if (result < 0)
992 			goto out_kfree;
993 
994 		str = buffer;
995 		end = str + result;
996 		*end++ = '\0';
997 		for (i = 0; i < length; i++) {
998 			unsigned long value;
999 
1000 			value = simple_strtoul(str, &str, 10);
1001 			while (isspace(*str))
1002 				str++;
1003 
1004 			result = -EFAULT;
1005 			if (put_user(value, vec + i))
1006 				goto out_kfree;
1007 
1008 			copied += sizeof(*vec);
1009 			if (!isdigit(*str))
1010 				break;
1011 		}
1012 	}
1013 
1014 	if (newval && newlen) {
1015 		unsigned __user *vec = newval;
1016 		size_t length = newlen / sizeof(*vec);
1017 		char *str, *end;
1018 		int i;
1019 
1020 		str = buffer;
1021 		end = str + BUFSZ;
1022 		for (i = 0; i < length; i++) {
1023 			unsigned long value;
1024 
1025 			result = -EFAULT;
1026 			if (get_user(value, vec + i))
1027 				goto out_kfree;
1028 
1029 			str += scnprintf(str, end - str, "%lu\t", value);
1030 		}
1031 
1032 		result = kernel_write(file, buffer, str - buffer, 0);
1033 		if (result < 0)
1034 			goto out_kfree;
1035 	}
1036 	result = copied;
1037 out_kfree:
1038 	kfree(buffer);
1039 out:
1040 	return result;
1041 }
1042 
bin_ulongvec(struct file * file,void __user * oldval,size_t oldlen,void __user * newval,size_t newlen)1043 static ssize_t bin_ulongvec(struct file *file,
1044 	void __user *oldval, size_t oldlen, void __user *newval, size_t newlen)
1045 {
1046 	ssize_t copied = 0;
1047 	char *buffer;
1048 	ssize_t result;
1049 
1050 	result = -ENOMEM;
1051 	buffer = kmalloc(BUFSZ, GFP_KERNEL);
1052 	if (!buffer)
1053 		goto out;
1054 
1055 	if (oldval && oldlen) {
1056 		unsigned long __user *vec = oldval;
1057 		size_t length = oldlen / sizeof(*vec);
1058 		char *str, *end;
1059 		int i;
1060 
1061 		result = kernel_read(file, 0, buffer, BUFSZ - 1);
1062 		if (result < 0)
1063 			goto out_kfree;
1064 
1065 		str = buffer;
1066 		end = str + result;
1067 		*end++ = '\0';
1068 		for (i = 0; i < length; i++) {
1069 			unsigned long value;
1070 
1071 			value = simple_strtoul(str, &str, 10);
1072 			while (isspace(*str))
1073 				str++;
1074 
1075 			result = -EFAULT;
1076 			if (put_user(value, vec + i))
1077 				goto out_kfree;
1078 
1079 			copied += sizeof(*vec);
1080 			if (!isdigit(*str))
1081 				break;
1082 		}
1083 	}
1084 
1085 	if (newval && newlen) {
1086 		unsigned long __user *vec = newval;
1087 		size_t length = newlen / sizeof(*vec);
1088 		char *str, *end;
1089 		int i;
1090 
1091 		str = buffer;
1092 		end = str + BUFSZ;
1093 		for (i = 0; i < length; i++) {
1094 			unsigned long value;
1095 
1096 			result = -EFAULT;
1097 			if (get_user(value, vec + i))
1098 				goto out_kfree;
1099 
1100 			str += scnprintf(str, end - str, "%lu\t", value);
1101 		}
1102 
1103 		result = kernel_write(file, buffer, str - buffer, 0);
1104 		if (result < 0)
1105 			goto out_kfree;
1106 	}
1107 	result = copied;
1108 out_kfree:
1109 	kfree(buffer);
1110 out:
1111 	return result;
1112 }
1113 
bin_uuid(struct file * file,void __user * oldval,size_t oldlen,void __user * newval,size_t newlen)1114 static ssize_t bin_uuid(struct file *file,
1115 	void __user *oldval, size_t oldlen, void __user *newval, size_t newlen)
1116 {
1117 	ssize_t result, copied = 0;
1118 
1119 	/* Only supports reads */
1120 	if (oldval && oldlen) {
1121 		char buf[UUID_STRING_LEN + 1];
1122 		uuid_be uuid;
1123 
1124 		result = kernel_read(file, 0, buf, sizeof(buf) - 1);
1125 		if (result < 0)
1126 			goto out;
1127 
1128 		buf[result] = '\0';
1129 
1130 		result = -EIO;
1131 		if (uuid_be_to_bin(buf, &uuid))
1132 			goto out;
1133 
1134 		if (oldlen > 16)
1135 			oldlen = 16;
1136 
1137 		result = -EFAULT;
1138 		if (copy_to_user(oldval, &uuid, oldlen))
1139 			goto out;
1140 
1141 		copied = oldlen;
1142 	}
1143 	result = copied;
1144 out:
1145 	return result;
1146 }
1147 
bin_dn_node_address(struct file * file,void __user * oldval,size_t oldlen,void __user * newval,size_t newlen)1148 static ssize_t bin_dn_node_address(struct file *file,
1149 	void __user *oldval, size_t oldlen, void __user *newval, size_t newlen)
1150 {
1151 	ssize_t result, copied = 0;
1152 
1153 	if (oldval && oldlen) {
1154 		char buf[15], *nodep;
1155 		unsigned long area, node;
1156 		__le16 dnaddr;
1157 
1158 		result = kernel_read(file, 0, buf, sizeof(buf) - 1);
1159 		if (result < 0)
1160 			goto out;
1161 
1162 		buf[result] = '\0';
1163 
1164 		/* Convert the decnet address to binary */
1165 		result = -EIO;
1166 		nodep = strchr(buf, '.');
1167 		if (!nodep)
1168 			goto out;
1169 		++nodep;
1170 
1171 		area = simple_strtoul(buf, NULL, 10);
1172 		node = simple_strtoul(nodep, NULL, 10);
1173 
1174 		result = -EIO;
1175 		if ((area > 63)||(node > 1023))
1176 			goto out;
1177 
1178 		dnaddr = cpu_to_le16((area << 10) | node);
1179 
1180 		result = -EFAULT;
1181 		if (put_user(dnaddr, (__le16 __user *)oldval))
1182 			goto out;
1183 
1184 		copied = sizeof(dnaddr);
1185 	}
1186 
1187 	if (newval && newlen) {
1188 		__le16 dnaddr;
1189 		char buf[15];
1190 		int len;
1191 
1192 		result = -EINVAL;
1193 		if (newlen != sizeof(dnaddr))
1194 			goto out;
1195 
1196 		result = -EFAULT;
1197 		if (get_user(dnaddr, (__le16 __user *)newval))
1198 			goto out;
1199 
1200 		len = scnprintf(buf, sizeof(buf), "%hu.%hu",
1201 				le16_to_cpu(dnaddr) >> 10,
1202 				le16_to_cpu(dnaddr) & 0x3ff);
1203 
1204 		result = kernel_write(file, buf, len, 0);
1205 		if (result < 0)
1206 			goto out;
1207 	}
1208 
1209 	result = copied;
1210 out:
1211 	return result;
1212 }
1213 
get_sysctl(const int * name,int nlen,char * path)1214 static const struct bin_table *get_sysctl(const int *name, int nlen, char *path)
1215 {
1216 	const struct bin_table *table = &bin_root_table[0];
1217 	int ctl_name;
1218 
1219 	/* The binary sysctl tables have a small maximum depth so
1220 	 * there is no danger of overflowing our path as it PATH_MAX
1221 	 * bytes long.
1222 	 */
1223 	memcpy(path, "sys/", 4);
1224 	path += 4;
1225 
1226 repeat:
1227 	if (!nlen)
1228 		return ERR_PTR(-ENOTDIR);
1229 	ctl_name = *name;
1230 	name++;
1231 	nlen--;
1232 	for ( ; table->convert; table++) {
1233 		int len = 0;
1234 
1235 		/*
1236 		 * For a wild card entry map from ifindex to network
1237 		 * device name.
1238 		 */
1239 		if (!table->ctl_name) {
1240 #ifdef CONFIG_NET
1241 			struct net *net = current->nsproxy->net_ns;
1242 			struct net_device *dev;
1243 			dev = dev_get_by_index(net, ctl_name);
1244 			if (dev) {
1245 				len = strlen(dev->name);
1246 				memcpy(path, dev->name, len);
1247 				dev_put(dev);
1248 			}
1249 #endif
1250 		/* Use the well known sysctl number to proc name mapping */
1251 		} else if (ctl_name == table->ctl_name) {
1252 			len = strlen(table->procname);
1253 			memcpy(path, table->procname, len);
1254 		}
1255 		if (len) {
1256 			path += len;
1257 			if (table->child) {
1258 				*path++ = '/';
1259 				table = table->child;
1260 				goto repeat;
1261 			}
1262 			*path = '\0';
1263 			return table;
1264 		}
1265 	}
1266 	return ERR_PTR(-ENOTDIR);
1267 }
1268 
sysctl_getname(const int * name,int nlen,const struct bin_table ** tablep)1269 static char *sysctl_getname(const int *name, int nlen, const struct bin_table **tablep)
1270 {
1271 	char *tmp, *result;
1272 
1273 	result = ERR_PTR(-ENOMEM);
1274 	tmp = __getname();
1275 	if (tmp) {
1276 		const struct bin_table *table = get_sysctl(name, nlen, tmp);
1277 		result = tmp;
1278 		*tablep = table;
1279 		if (IS_ERR(table)) {
1280 			__putname(tmp);
1281 			result = ERR_CAST(table);
1282 		}
1283 	}
1284 	return result;
1285 }
1286 
binary_sysctl(const int * name,int nlen,void __user * oldval,size_t oldlen,void __user * newval,size_t newlen)1287 static ssize_t binary_sysctl(const int *name, int nlen,
1288 	void __user *oldval, size_t oldlen, void __user *newval, size_t newlen)
1289 {
1290 	const struct bin_table *table = NULL;
1291 	struct vfsmount *mnt;
1292 	struct file *file;
1293 	ssize_t result;
1294 	char *pathname;
1295 	int flags;
1296 
1297 	pathname = sysctl_getname(name, nlen, &table);
1298 	result = PTR_ERR(pathname);
1299 	if (IS_ERR(pathname))
1300 		goto out;
1301 
1302 	/* How should the sysctl be accessed? */
1303 	if (oldval && oldlen && newval && newlen) {
1304 		flags = O_RDWR;
1305 	} else if (newval && newlen) {
1306 		flags = O_WRONLY;
1307 	} else if (oldval && oldlen) {
1308 		flags = O_RDONLY;
1309 	} else {
1310 		result = 0;
1311 		goto out_putname;
1312 	}
1313 
1314 	mnt = task_active_pid_ns(current)->proc_mnt;
1315 	file = file_open_root(mnt->mnt_root, mnt, pathname, flags, 0);
1316 	result = PTR_ERR(file);
1317 	if (IS_ERR(file))
1318 		goto out_putname;
1319 
1320 	result = table->convert(file, oldval, oldlen, newval, newlen);
1321 
1322 	fput(file);
1323 out_putname:
1324 	__putname(pathname);
1325 out:
1326 	return result;
1327 }
1328 
1329 
1330 #else /* CONFIG_SYSCTL_SYSCALL */
1331 
binary_sysctl(const int * name,int nlen,void __user * oldval,size_t oldlen,void __user * newval,size_t newlen)1332 static ssize_t binary_sysctl(const int *name, int nlen,
1333 	void __user *oldval, size_t oldlen, void __user *newval, size_t newlen)
1334 {
1335 	return -ENOSYS;
1336 }
1337 
1338 #endif /* CONFIG_SYSCTL_SYSCALL */
1339 
1340 
deprecated_sysctl_warning(const int * name,int nlen)1341 static void deprecated_sysctl_warning(const int *name, int nlen)
1342 {
1343 	int i;
1344 
1345 	/*
1346 	 * CTL_KERN/KERN_VERSION is used by older glibc and cannot
1347 	 * ever go away.
1348 	 */
1349 	if (name[0] == CTL_KERN && name[1] == KERN_VERSION)
1350 		return;
1351 
1352 	if (printk_ratelimit()) {
1353 		printk(KERN_INFO
1354 			"warning: process `%s' used the deprecated sysctl "
1355 			"system call with ", current->comm);
1356 		for (i = 0; i < nlen; i++)
1357 			printk("%d.", name[i]);
1358 		printk("\n");
1359 	}
1360 	return;
1361 }
1362 
1363 #define WARN_ONCE_HASH_BITS 8
1364 #define WARN_ONCE_HASH_SIZE (1<<WARN_ONCE_HASH_BITS)
1365 
1366 static DECLARE_BITMAP(warn_once_bitmap, WARN_ONCE_HASH_SIZE);
1367 
1368 #define FNV32_OFFSET 2166136261U
1369 #define FNV32_PRIME 0x01000193
1370 
1371 /*
1372  * Print each legacy sysctl (approximately) only once.
1373  * To avoid making the tables non-const use a external
1374  * hash-table instead.
1375  * Worst case hash collision: 6, but very rarely.
1376  * NOTE! We don't use the SMP-safe bit tests. We simply
1377  * don't care enough.
1378  */
warn_on_bintable(const int * name,int nlen)1379 static void warn_on_bintable(const int *name, int nlen)
1380 {
1381 	int i;
1382 	u32 hash = FNV32_OFFSET;
1383 
1384 	for (i = 0; i < nlen; i++)
1385 		hash = (hash ^ name[i]) * FNV32_PRIME;
1386 	hash %= WARN_ONCE_HASH_SIZE;
1387 	if (__test_and_set_bit(hash, warn_once_bitmap))
1388 		return;
1389 	deprecated_sysctl_warning(name, nlen);
1390 }
1391 
do_sysctl(int __user * args_name,int nlen,void __user * oldval,size_t oldlen,void __user * newval,size_t newlen)1392 static ssize_t do_sysctl(int __user *args_name, int nlen,
1393 	void __user *oldval, size_t oldlen, void __user *newval, size_t newlen)
1394 {
1395 	int name[CTL_MAXNAME];
1396 	int i;
1397 
1398 	/* Check args->nlen. */
1399 	if (nlen < 0 || nlen > CTL_MAXNAME)
1400 		return -ENOTDIR;
1401 	/* Read in the sysctl name for simplicity */
1402 	for (i = 0; i < nlen; i++)
1403 		if (get_user(name[i], args_name + i))
1404 			return -EFAULT;
1405 
1406 	warn_on_bintable(name, nlen);
1407 
1408 	return binary_sysctl(name, nlen, oldval, oldlen, newval, newlen);
1409 }
1410 
SYSCALL_DEFINE1(sysctl,struct __sysctl_args __user *,args)1411 SYSCALL_DEFINE1(sysctl, struct __sysctl_args __user *, args)
1412 {
1413 	struct __sysctl_args tmp;
1414 	size_t oldlen = 0;
1415 	ssize_t result;
1416 
1417 	if (copy_from_user(&tmp, args, sizeof(tmp)))
1418 		return -EFAULT;
1419 
1420 	if (tmp.oldval && !tmp.oldlenp)
1421 		return -EFAULT;
1422 
1423 	if (tmp.oldlenp && get_user(oldlen, tmp.oldlenp))
1424 		return -EFAULT;
1425 
1426 	result = do_sysctl(tmp.name, tmp.nlen, tmp.oldval, oldlen,
1427 			   tmp.newval, tmp.newlen);
1428 
1429 	if (result >= 0) {
1430 		oldlen = result;
1431 		result = 0;
1432 	}
1433 
1434 	if (tmp.oldlenp && put_user(oldlen, tmp.oldlenp))
1435 		return -EFAULT;
1436 
1437 	return result;
1438 }
1439 
1440 
1441 #ifdef CONFIG_COMPAT
1442 
1443 struct compat_sysctl_args {
1444 	compat_uptr_t	name;
1445 	int		nlen;
1446 	compat_uptr_t	oldval;
1447 	compat_uptr_t	oldlenp;
1448 	compat_uptr_t	newval;
1449 	compat_size_t	newlen;
1450 	compat_ulong_t	__unused[4];
1451 };
1452 
COMPAT_SYSCALL_DEFINE1(sysctl,struct compat_sysctl_args __user *,args)1453 COMPAT_SYSCALL_DEFINE1(sysctl, struct compat_sysctl_args __user *, args)
1454 {
1455 	struct compat_sysctl_args tmp;
1456 	compat_size_t __user *compat_oldlenp;
1457 	size_t oldlen = 0;
1458 	ssize_t result;
1459 
1460 	if (copy_from_user(&tmp, args, sizeof(tmp)))
1461 		return -EFAULT;
1462 
1463 	if (tmp.oldval && !tmp.oldlenp)
1464 		return -EFAULT;
1465 
1466 	compat_oldlenp = compat_ptr(tmp.oldlenp);
1467 	if (compat_oldlenp && get_user(oldlen, compat_oldlenp))
1468 		return -EFAULT;
1469 
1470 	result = do_sysctl(compat_ptr(tmp.name), tmp.nlen,
1471 			   compat_ptr(tmp.oldval), oldlen,
1472 			   compat_ptr(tmp.newval), tmp.newlen);
1473 
1474 	if (result >= 0) {
1475 		oldlen = result;
1476 		result = 0;
1477 	}
1478 
1479 	if (compat_oldlenp && put_user(oldlen, compat_oldlenp))
1480 		return -EFAULT;
1481 
1482 	return result;
1483 }
1484 
1485 #endif /* CONFIG_COMPAT */
1486