devinet.c 63 KB

1234567891011121314151617181920212223242526272829303132333435363738394041424344454647484950515253545556575859606162636465666768697071727374757677787980818283848586878889909192939495969798991001011021031041051061071081091101111121131141151161171181191201211221231241251261271281291301311321331341351361371381391401411421431441451461471481491501511521531541551561571581591601611621631641651661671681691701711721731741751761771781791801811821831841851861871881891901911921931941951961971981992002012022032042052062072082092102112122132142152162172182192202212222232242252262272282292302312322332342352362372382392402412422432442452462472482492502512522532542552562572582592602612622632642652662672682692702712722732742752762772782792802812822832842852862872882892902912922932942952962972982993003013023033043053063073083093103113123133143153163173183193203213223233243253263273283293303313323333343353363373383393403413423433443453463473483493503513523533543553563573583593603613623633643653663673683693703713723733743753763773783793803813823833843853863873883893903913923933943953963973983994004014024034044054064074084094104114124134144154164174184194204214224234244254264274284294304314324334344354364374384394404414424434444454464474484494504514524534544554564574584594604614624634644654664674684694704714724734744754764774784794804814824834844854864874884894904914924934944954964974984995005015025035045055065075085095105115125135145155165175185195205215225235245255265275285295305315325335345355365375385395405415425435445455465475485495505515525535545555565575585595605615625635645655665675685695705715725735745755765775785795805815825835845855865875885895905915925935945955965975985996006016026036046056066076086096106116126136146156166176186196206216226236246256266276286296306316326336346356366376386396406416426436446456466476486496506516526536546556566576586596606616626636646656666676686696706716726736746756766776786796806816826836846856866876886896906916926936946956966976986997007017027037047057067077087097107117127137147157167177187197207217227237247257267277287297307317327337347357367377387397407417427437447457467477487497507517527537547557567577587597607617627637647657667677687697707717727737747757767777787797807817827837847857867877887897907917927937947957967977987998008018028038048058068078088098108118128138148158168178188198208218228238248258268278288298308318328338348358368378388398408418428438448458468478488498508518528538548558568578588598608618628638648658668678688698708718728738748758768778788798808818828838848858868878888898908918928938948958968978988999009019029039049059069079089099109119129139149159169179189199209219229239249259269279289299309319329339349359369379389399409419429439449459469479489499509519529539549559569579589599609619629639649659669679689699709719729739749759769779789799809819829839849859869879889899909919929939949959969979989991000100110021003100410051006100710081009101010111012101310141015101610171018101910201021102210231024102510261027102810291030103110321033103410351036103710381039104010411042104310441045104610471048104910501051105210531054105510561057105810591060106110621063106410651066106710681069107010711072107310741075107610771078107910801081108210831084108510861087108810891090109110921093109410951096109710981099110011011102110311041105110611071108110911101111111211131114111511161117111811191120112111221123112411251126112711281129113011311132113311341135113611371138113911401141114211431144114511461147114811491150115111521153115411551156115711581159116011611162116311641165116611671168116911701171117211731174117511761177117811791180118111821183118411851186118711881189119011911192119311941195119611971198119912001201120212031204120512061207120812091210121112121213121412151216121712181219122012211222122312241225122612271228122912301231123212331234123512361237123812391240124112421243124412451246124712481249125012511252125312541255125612571258125912601261126212631264126512661267126812691270127112721273127412751276127712781279128012811282128312841285128612871288128912901291129212931294129512961297129812991300130113021303130413051306130713081309131013111312131313141315131613171318131913201321132213231324132513261327132813291330133113321333133413351336133713381339134013411342134313441345134613471348134913501351135213531354135513561357135813591360136113621363136413651366136713681369137013711372137313741375137613771378137913801381138213831384138513861387138813891390139113921393139413951396139713981399140014011402140314041405140614071408140914101411141214131414141514161417141814191420142114221423142414251426142714281429143014311432143314341435143614371438143914401441144214431444144514461447144814491450145114521453145414551456145714581459146014611462146314641465146614671468146914701471147214731474147514761477147814791480148114821483148414851486148714881489149014911492149314941495149614971498149915001501150215031504150515061507150815091510151115121513151415151516151715181519152015211522152315241525152615271528152915301531153215331534153515361537153815391540154115421543154415451546154715481549155015511552155315541555155615571558155915601561156215631564156515661567156815691570157115721573157415751576157715781579158015811582158315841585158615871588158915901591159215931594159515961597159815991600160116021603160416051606160716081609161016111612161316141615161616171618161916201621162216231624162516261627162816291630163116321633163416351636163716381639164016411642164316441645164616471648164916501651165216531654165516561657165816591660166116621663166416651666166716681669167016711672167316741675167616771678167916801681168216831684168516861687168816891690169116921693169416951696169716981699170017011702170317041705170617071708170917101711171217131714171517161717171817191720172117221723172417251726172717281729173017311732173317341735173617371738173917401741174217431744174517461747174817491750175117521753175417551756175717581759176017611762176317641765176617671768176917701771177217731774177517761777177817791780178117821783178417851786178717881789179017911792179317941795179617971798179918001801180218031804180518061807180818091810181118121813181418151816181718181819182018211822182318241825182618271828182918301831183218331834183518361837183818391840184118421843184418451846184718481849185018511852185318541855185618571858185918601861186218631864186518661867186818691870187118721873187418751876187718781879188018811882188318841885188618871888188918901891189218931894189518961897189818991900190119021903190419051906190719081909191019111912191319141915191619171918191919201921192219231924192519261927192819291930193119321933193419351936193719381939194019411942194319441945194619471948194919501951195219531954195519561957195819591960196119621963196419651966196719681969197019711972197319741975197619771978197919801981198219831984198519861987198819891990199119921993199419951996199719981999200020012002200320042005200620072008200920102011201220132014201520162017201820192020202120222023202420252026202720282029203020312032203320342035203620372038203920402041204220432044204520462047204820492050205120522053205420552056205720582059206020612062206320642065206620672068206920702071207220732074207520762077207820792080208120822083208420852086208720882089209020912092209320942095209620972098209921002101210221032104210521062107210821092110211121122113211421152116211721182119212021212122212321242125212621272128212921302131213221332134213521362137213821392140214121422143214421452146214721482149215021512152215321542155215621572158215921602161216221632164216521662167216821692170217121722173217421752176217721782179218021812182218321842185218621872188218921902191219221932194219521962197219821992200220122022203220422052206220722082209221022112212221322142215221622172218221922202221222222232224222522262227222822292230223122322233223422352236223722382239224022412242224322442245224622472248224922502251225222532254225522562257225822592260226122622263226422652266226722682269227022712272227322742275227622772278227922802281228222832284228522862287228822892290229122922293229422952296229722982299230023012302230323042305230623072308230923102311231223132314231523162317231823192320232123222323232423252326232723282329233023312332233323342335233623372338233923402341234223432344234523462347234823492350235123522353235423552356235723582359236023612362236323642365236623672368236923702371237223732374237523762377237823792380238123822383238423852386238723882389239023912392239323942395239623972398239924002401240224032404240524062407240824092410241124122413241424152416241724182419242024212422242324242425242624272428242924302431243224332434243524362437243824392440244124422443244424452446244724482449245024512452245324542455245624572458245924602461246224632464246524662467246824692470247124722473247424752476247724782479248024812482248324842485248624872488248924902491249224932494249524962497249824992500250125022503250425052506250725082509251025112512251325142515251625172518251925202521252225232524252525262527252825292530253125322533
  1. /*
  2. * NET3 IP device support routines.
  3. *
  4. * This program is free software; you can redistribute it and/or
  5. * modify it under the terms of the GNU General Public License
  6. * as published by the Free Software Foundation; either version
  7. * 2 of the License, or (at your option) any later version.
  8. *
  9. * Derived from the IP parts of dev.c 1.0.19
  10. * Authors: Ross Biro
  11. * Fred N. van Kempen, <waltje@uWalt.NL.Mugnet.ORG>
  12. * Mark Evans, <evansmp@uhura.aston.ac.uk>
  13. *
  14. * Additional Authors:
  15. * Alan Cox, <gw4pts@gw4pts.ampr.org>
  16. * Alexey Kuznetsov, <kuznet@ms2.inr.ac.ru>
  17. *
  18. * Changes:
  19. * Alexey Kuznetsov: pa_* fields are replaced with ifaddr
  20. * lists.
  21. * Cyrus Durgin: updated for kmod
  22. * Matthias Andree: in devinet_ioctl, compare label and
  23. * address (4.4BSD alias style support),
  24. * fall back to comparing just the label
  25. * if no match found.
  26. */
  27. #include <linux/uaccess.h>
  28. #include <linux/bitops.h>
  29. #include <linux/capability.h>
  30. #include <linux/module.h>
  31. #include <linux/types.h>
  32. #include <linux/kernel.h>
  33. #include <linux/sched/signal.h>
  34. #include <linux/string.h>
  35. #include <linux/mm.h>
  36. #include <linux/socket.h>
  37. #include <linux/sockios.h>
  38. #include <linux/in.h>
  39. #include <linux/errno.h>
  40. #include <linux/interrupt.h>
  41. #include <linux/if_addr.h>
  42. #include <linux/if_ether.h>
  43. #include <linux/inet.h>
  44. #include <linux/netdevice.h>
  45. #include <linux/etherdevice.h>
  46. #include <linux/skbuff.h>
  47. #include <linux/init.h>
  48. #include <linux/notifier.h>
  49. #include <linux/inetdevice.h>
  50. #include <linux/igmp.h>
  51. #include <linux/slab.h>
  52. #include <linux/hash.h>
  53. #ifdef CONFIG_SYSCTL
  54. #include <linux/sysctl.h>
  55. #endif
  56. #include <linux/kmod.h>
  57. #include <linux/netconf.h>
  58. #include <net/arp.h>
  59. #include <net/ip.h>
  60. #include <net/route.h>
  61. #include <net/ip_fib.h>
  62. #include <net/rtnetlink.h>
  63. #include <net/net_namespace.h>
  64. #include <net/addrconf.h>
  65. #define IPV6ONLY_FLAGS \
  66. (IFA_F_NODAD | IFA_F_OPTIMISTIC | IFA_F_DADFAILED | \
  67. IFA_F_HOMEADDRESS | IFA_F_TENTATIVE | \
  68. IFA_F_MANAGETEMPADDR | IFA_F_STABLE_PRIVACY)
  69. static struct ipv4_devconf ipv4_devconf = {
  70. .data = {
  71. [IPV4_DEVCONF_ACCEPT_REDIRECTS - 1] = 1,
  72. [IPV4_DEVCONF_SEND_REDIRECTS - 1] = 1,
  73. [IPV4_DEVCONF_SECURE_REDIRECTS - 1] = 1,
  74. [IPV4_DEVCONF_SHARED_MEDIA - 1] = 1,
  75. [IPV4_DEVCONF_IGMPV2_UNSOLICITED_REPORT_INTERVAL - 1] = 10000 /*ms*/,
  76. [IPV4_DEVCONF_IGMPV3_UNSOLICITED_REPORT_INTERVAL - 1] = 1000 /*ms*/,
  77. },
  78. };
  79. static struct ipv4_devconf ipv4_devconf_dflt = {
  80. .data = {
  81. [IPV4_DEVCONF_ACCEPT_REDIRECTS - 1] = 1,
  82. [IPV4_DEVCONF_SEND_REDIRECTS - 1] = 1,
  83. [IPV4_DEVCONF_SECURE_REDIRECTS - 1] = 1,
  84. [IPV4_DEVCONF_SHARED_MEDIA - 1] = 1,
  85. [IPV4_DEVCONF_ACCEPT_SOURCE_ROUTE - 1] = 1,
  86. [IPV4_DEVCONF_IGMPV2_UNSOLICITED_REPORT_INTERVAL - 1] = 10000 /*ms*/,
  87. [IPV4_DEVCONF_IGMPV3_UNSOLICITED_REPORT_INTERVAL - 1] = 1000 /*ms*/,
  88. },
  89. };
  90. #define IPV4_DEVCONF_DFLT(net, attr) \
  91. IPV4_DEVCONF((*net->ipv4.devconf_dflt), attr)
  92. static const struct nla_policy ifa_ipv4_policy[IFA_MAX+1] = {
  93. [IFA_LOCAL] = { .type = NLA_U32 },
  94. [IFA_ADDRESS] = { .type = NLA_U32 },
  95. [IFA_BROADCAST] = { .type = NLA_U32 },
  96. [IFA_LABEL] = { .type = NLA_STRING, .len = IFNAMSIZ - 1 },
  97. [IFA_CACHEINFO] = { .len = sizeof(struct ifa_cacheinfo) },
  98. [IFA_FLAGS] = { .type = NLA_U32 },
  99. [IFA_RT_PRIORITY] = { .type = NLA_U32 },
  100. };
  101. #define IN4_ADDR_HSIZE_SHIFT 8
  102. #define IN4_ADDR_HSIZE (1U << IN4_ADDR_HSIZE_SHIFT)
  103. static struct hlist_head inet_addr_lst[IN4_ADDR_HSIZE];
  104. static u32 inet_addr_hash(const struct net *net, __be32 addr)
  105. {
  106. u32 val = (__force u32) addr ^ net_hash_mix(net);
  107. return hash_32(val, IN4_ADDR_HSIZE_SHIFT);
  108. }
  109. static void inet_hash_insert(struct net *net, struct in_ifaddr *ifa)
  110. {
  111. u32 hash = inet_addr_hash(net, ifa->ifa_local);
  112. ASSERT_RTNL();
  113. hlist_add_head_rcu(&ifa->hash, &inet_addr_lst[hash]);
  114. }
  115. static void inet_hash_remove(struct in_ifaddr *ifa)
  116. {
  117. ASSERT_RTNL();
  118. hlist_del_init_rcu(&ifa->hash);
  119. }
  120. /**
  121. * __ip_dev_find - find the first device with a given source address.
  122. * @net: the net namespace
  123. * @addr: the source address
  124. * @devref: if true, take a reference on the found device
  125. *
  126. * If a caller uses devref=false, it should be protected by RCU, or RTNL
  127. */
  128. struct net_device *__ip_dev_find(struct net *net, __be32 addr, bool devref)
  129. {
  130. struct net_device *result = NULL;
  131. struct in_ifaddr *ifa;
  132. rcu_read_lock();
  133. ifa = inet_lookup_ifaddr_rcu(net, addr);
  134. if (!ifa) {
  135. struct flowi4 fl4 = { .daddr = addr };
  136. struct fib_result res = { 0 };
  137. struct fib_table *local;
  138. /* Fallback to FIB local table so that communication
  139. * over loopback subnets work.
  140. */
  141. local = fib_get_table(net, RT_TABLE_LOCAL);
  142. if (local &&
  143. !fib_table_lookup(local, &fl4, &res, FIB_LOOKUP_NOREF) &&
  144. res.type == RTN_LOCAL)
  145. result = FIB_RES_DEV(res);
  146. } else {
  147. result = ifa->ifa_dev->dev;
  148. }
  149. if (result && devref)
  150. dev_hold(result);
  151. rcu_read_unlock();
  152. return result;
  153. }
  154. EXPORT_SYMBOL(__ip_dev_find);
  155. /* called under RCU lock */
  156. struct in_ifaddr *inet_lookup_ifaddr_rcu(struct net *net, __be32 addr)
  157. {
  158. u32 hash = inet_addr_hash(net, addr);
  159. struct in_ifaddr *ifa;
  160. hlist_for_each_entry_rcu(ifa, &inet_addr_lst[hash], hash)
  161. if (ifa->ifa_local == addr &&
  162. net_eq(dev_net(ifa->ifa_dev->dev), net))
  163. return ifa;
  164. return NULL;
  165. }
  166. static void rtmsg_ifa(int event, struct in_ifaddr *, struct nlmsghdr *, u32);
  167. static BLOCKING_NOTIFIER_HEAD(inetaddr_chain);
  168. static BLOCKING_NOTIFIER_HEAD(inetaddr_validator_chain);
  169. static void inet_del_ifa(struct in_device *in_dev, struct in_ifaddr **ifap,
  170. int destroy);
  171. #ifdef CONFIG_SYSCTL
  172. static int devinet_sysctl_register(struct in_device *idev);
  173. static void devinet_sysctl_unregister(struct in_device *idev);
  174. #else
  175. static int devinet_sysctl_register(struct in_device *idev)
  176. {
  177. return 0;
  178. }
  179. static void devinet_sysctl_unregister(struct in_device *idev)
  180. {
  181. }
  182. #endif
  183. /* Locks all the inet devices. */
  184. static struct in_ifaddr *inet_alloc_ifa(void)
  185. {
  186. return kzalloc(sizeof(struct in_ifaddr), GFP_KERNEL);
  187. }
  188. static void inet_rcu_free_ifa(struct rcu_head *head)
  189. {
  190. struct in_ifaddr *ifa = container_of(head, struct in_ifaddr, rcu_head);
  191. if (ifa->ifa_dev)
  192. in_dev_put(ifa->ifa_dev);
  193. kfree(ifa);
  194. }
  195. static void inet_free_ifa(struct in_ifaddr *ifa)
  196. {
  197. call_rcu(&ifa->rcu_head, inet_rcu_free_ifa);
  198. }
  199. void in_dev_finish_destroy(struct in_device *idev)
  200. {
  201. struct net_device *dev = idev->dev;
  202. WARN_ON(idev->ifa_list);
  203. WARN_ON(idev->mc_list);
  204. kfree(rcu_dereference_protected(idev->mc_hash, 1));
  205. #ifdef NET_REFCNT_DEBUG
  206. pr_debug("%s: %p=%s\n", __func__, idev, dev ? dev->name : "NIL");
  207. #endif
  208. dev_put(dev);
  209. if (!idev->dead)
  210. pr_err("Freeing alive in_device %p\n", idev);
  211. else
  212. kfree(idev);
  213. }
  214. EXPORT_SYMBOL(in_dev_finish_destroy);
  215. static struct in_device *inetdev_init(struct net_device *dev)
  216. {
  217. struct in_device *in_dev;
  218. int err = -ENOMEM;
  219. ASSERT_RTNL();
  220. in_dev = kzalloc(sizeof(*in_dev), GFP_KERNEL);
  221. if (!in_dev)
  222. goto out;
  223. memcpy(&in_dev->cnf, dev_net(dev)->ipv4.devconf_dflt,
  224. sizeof(in_dev->cnf));
  225. in_dev->cnf.sysctl = NULL;
  226. in_dev->dev = dev;
  227. in_dev->arp_parms = neigh_parms_alloc(dev, &arp_tbl);
  228. if (!in_dev->arp_parms)
  229. goto out_kfree;
  230. if (IPV4_DEVCONF(in_dev->cnf, FORWARDING))
  231. dev_disable_lro(dev);
  232. /* Reference in_dev->dev */
  233. dev_hold(dev);
  234. /* Account for reference dev->ip_ptr (below) */
  235. refcount_set(&in_dev->refcnt, 1);
  236. err = devinet_sysctl_register(in_dev);
  237. if (err) {
  238. in_dev->dead = 1;
  239. in_dev_put(in_dev);
  240. in_dev = NULL;
  241. goto out;
  242. }
  243. ip_mc_init_dev(in_dev);
  244. if (dev->flags & IFF_UP)
  245. ip_mc_up(in_dev);
  246. /* we can receive as soon as ip_ptr is set -- do this last */
  247. rcu_assign_pointer(dev->ip_ptr, in_dev);
  248. out:
  249. return in_dev ?: ERR_PTR(err);
  250. out_kfree:
  251. kfree(in_dev);
  252. in_dev = NULL;
  253. goto out;
  254. }
  255. static void in_dev_rcu_put(struct rcu_head *head)
  256. {
  257. struct in_device *idev = container_of(head, struct in_device, rcu_head);
  258. in_dev_put(idev);
  259. }
  260. static void inetdev_destroy(struct in_device *in_dev)
  261. {
  262. struct in_ifaddr *ifa;
  263. struct net_device *dev;
  264. ASSERT_RTNL();
  265. dev = in_dev->dev;
  266. in_dev->dead = 1;
  267. ip_mc_destroy_dev(in_dev);
  268. while ((ifa = in_dev->ifa_list) != NULL) {
  269. inet_del_ifa(in_dev, &in_dev->ifa_list, 0);
  270. inet_free_ifa(ifa);
  271. }
  272. RCU_INIT_POINTER(dev->ip_ptr, NULL);
  273. devinet_sysctl_unregister(in_dev);
  274. neigh_parms_release(&arp_tbl, in_dev->arp_parms);
  275. arp_ifdown(dev);
  276. call_rcu(&in_dev->rcu_head, in_dev_rcu_put);
  277. }
  278. int inet_addr_onlink(struct in_device *in_dev, __be32 a, __be32 b)
  279. {
  280. rcu_read_lock();
  281. for_primary_ifa(in_dev) {
  282. if (inet_ifa_match(a, ifa)) {
  283. if (!b || inet_ifa_match(b, ifa)) {
  284. rcu_read_unlock();
  285. return 1;
  286. }
  287. }
  288. } endfor_ifa(in_dev);
  289. rcu_read_unlock();
  290. return 0;
  291. }
  292. static void __inet_del_ifa(struct in_device *in_dev, struct in_ifaddr **ifap,
  293. int destroy, struct nlmsghdr *nlh, u32 portid)
  294. {
  295. struct in_ifaddr *promote = NULL;
  296. struct in_ifaddr *ifa, *ifa1 = *ifap;
  297. struct in_ifaddr *last_prim = in_dev->ifa_list;
  298. struct in_ifaddr *prev_prom = NULL;
  299. int do_promote = IN_DEV_PROMOTE_SECONDARIES(in_dev);
  300. ASSERT_RTNL();
  301. if (in_dev->dead)
  302. goto no_promotions;
  303. /* 1. Deleting primary ifaddr forces deletion all secondaries
  304. * unless alias promotion is set
  305. **/
  306. if (!(ifa1->ifa_flags & IFA_F_SECONDARY)) {
  307. struct in_ifaddr **ifap1 = &ifa1->ifa_next;
  308. while ((ifa = *ifap1) != NULL) {
  309. if (!(ifa->ifa_flags & IFA_F_SECONDARY) &&
  310. ifa1->ifa_scope <= ifa->ifa_scope)
  311. last_prim = ifa;
  312. if (!(ifa->ifa_flags & IFA_F_SECONDARY) ||
  313. ifa1->ifa_mask != ifa->ifa_mask ||
  314. !inet_ifa_match(ifa1->ifa_address, ifa)) {
  315. ifap1 = &ifa->ifa_next;
  316. prev_prom = ifa;
  317. continue;
  318. }
  319. if (!do_promote) {
  320. inet_hash_remove(ifa);
  321. *ifap1 = ifa->ifa_next;
  322. rtmsg_ifa(RTM_DELADDR, ifa, nlh, portid);
  323. blocking_notifier_call_chain(&inetaddr_chain,
  324. NETDEV_DOWN, ifa);
  325. inet_free_ifa(ifa);
  326. } else {
  327. promote = ifa;
  328. break;
  329. }
  330. }
  331. }
  332. /* On promotion all secondaries from subnet are changing
  333. * the primary IP, we must remove all their routes silently
  334. * and later to add them back with new prefsrc. Do this
  335. * while all addresses are on the device list.
  336. */
  337. for (ifa = promote; ifa; ifa = ifa->ifa_next) {
  338. if (ifa1->ifa_mask == ifa->ifa_mask &&
  339. inet_ifa_match(ifa1->ifa_address, ifa))
  340. fib_del_ifaddr(ifa, ifa1);
  341. }
  342. no_promotions:
  343. /* 2. Unlink it */
  344. *ifap = ifa1->ifa_next;
  345. inet_hash_remove(ifa1);
  346. /* 3. Announce address deletion */
  347. /* Send message first, then call notifier.
  348. At first sight, FIB update triggered by notifier
  349. will refer to already deleted ifaddr, that could confuse
  350. netlink listeners. It is not true: look, gated sees
  351. that route deleted and if it still thinks that ifaddr
  352. is valid, it will try to restore deleted routes... Grr.
  353. So that, this order is correct.
  354. */
  355. rtmsg_ifa(RTM_DELADDR, ifa1, nlh, portid);
  356. blocking_notifier_call_chain(&inetaddr_chain, NETDEV_DOWN, ifa1);
  357. if (promote) {
  358. struct in_ifaddr *next_sec = promote->ifa_next;
  359. if (prev_prom) {
  360. prev_prom->ifa_next = promote->ifa_next;
  361. promote->ifa_next = last_prim->ifa_next;
  362. last_prim->ifa_next = promote;
  363. }
  364. promote->ifa_flags &= ~IFA_F_SECONDARY;
  365. rtmsg_ifa(RTM_NEWADDR, promote, nlh, portid);
  366. blocking_notifier_call_chain(&inetaddr_chain,
  367. NETDEV_UP, promote);
  368. for (ifa = next_sec; ifa; ifa = ifa->ifa_next) {
  369. if (ifa1->ifa_mask != ifa->ifa_mask ||
  370. !inet_ifa_match(ifa1->ifa_address, ifa))
  371. continue;
  372. fib_add_ifaddr(ifa);
  373. }
  374. }
  375. if (destroy)
  376. inet_free_ifa(ifa1);
  377. }
  378. static void inet_del_ifa(struct in_device *in_dev, struct in_ifaddr **ifap,
  379. int destroy)
  380. {
  381. __inet_del_ifa(in_dev, ifap, destroy, NULL, 0);
  382. }
  383. static void check_lifetime(struct work_struct *work);
  384. static DECLARE_DELAYED_WORK(check_lifetime_work, check_lifetime);
  385. static int __inet_insert_ifa(struct in_ifaddr *ifa, struct nlmsghdr *nlh,
  386. u32 portid, struct netlink_ext_ack *extack)
  387. {
  388. struct in_device *in_dev = ifa->ifa_dev;
  389. struct in_ifaddr *ifa1, **ifap, **last_primary;
  390. struct in_validator_info ivi;
  391. int ret;
  392. ASSERT_RTNL();
  393. if (!ifa->ifa_local) {
  394. inet_free_ifa(ifa);
  395. return 0;
  396. }
  397. ifa->ifa_flags &= ~IFA_F_SECONDARY;
  398. last_primary = &in_dev->ifa_list;
  399. /* Don't set IPv6 only flags to IPv4 addresses */
  400. ifa->ifa_flags &= ~IPV6ONLY_FLAGS;
  401. for (ifap = &in_dev->ifa_list; (ifa1 = *ifap) != NULL;
  402. ifap = &ifa1->ifa_next) {
  403. if (!(ifa1->ifa_flags & IFA_F_SECONDARY) &&
  404. ifa->ifa_scope <= ifa1->ifa_scope)
  405. last_primary = &ifa1->ifa_next;
  406. if (ifa1->ifa_mask == ifa->ifa_mask &&
  407. inet_ifa_match(ifa1->ifa_address, ifa)) {
  408. if (ifa1->ifa_local == ifa->ifa_local) {
  409. inet_free_ifa(ifa);
  410. return -EEXIST;
  411. }
  412. if (ifa1->ifa_scope != ifa->ifa_scope) {
  413. inet_free_ifa(ifa);
  414. return -EINVAL;
  415. }
  416. ifa->ifa_flags |= IFA_F_SECONDARY;
  417. }
  418. }
  419. /* Allow any devices that wish to register ifaddr validtors to weigh
  420. * in now, before changes are committed. The rntl lock is serializing
  421. * access here, so the state should not change between a validator call
  422. * and a final notify on commit. This isn't invoked on promotion under
  423. * the assumption that validators are checking the address itself, and
  424. * not the flags.
  425. */
  426. ivi.ivi_addr = ifa->ifa_address;
  427. ivi.ivi_dev = ifa->ifa_dev;
  428. ivi.extack = extack;
  429. ret = blocking_notifier_call_chain(&inetaddr_validator_chain,
  430. NETDEV_UP, &ivi);
  431. ret = notifier_to_errno(ret);
  432. if (ret) {
  433. inet_free_ifa(ifa);
  434. return ret;
  435. }
  436. if (!(ifa->ifa_flags & IFA_F_SECONDARY)) {
  437. prandom_seed((__force u32) ifa->ifa_local);
  438. ifap = last_primary;
  439. }
  440. ifa->ifa_next = *ifap;
  441. *ifap = ifa;
  442. inet_hash_insert(dev_net(in_dev->dev), ifa);
  443. cancel_delayed_work(&check_lifetime_work);
  444. queue_delayed_work(system_power_efficient_wq, &check_lifetime_work, 0);
  445. /* Send message first, then call notifier.
  446. Notifier will trigger FIB update, so that
  447. listeners of netlink will know about new ifaddr */
  448. rtmsg_ifa(RTM_NEWADDR, ifa, nlh, portid);
  449. blocking_notifier_call_chain(&inetaddr_chain, NETDEV_UP, ifa);
  450. return 0;
  451. }
  452. static int inet_insert_ifa(struct in_ifaddr *ifa)
  453. {
  454. return __inet_insert_ifa(ifa, NULL, 0, NULL);
  455. }
  456. static int inet_set_ifa(struct net_device *dev, struct in_ifaddr *ifa)
  457. {
  458. struct in_device *in_dev = __in_dev_get_rtnl(dev);
  459. ASSERT_RTNL();
  460. if (!in_dev) {
  461. inet_free_ifa(ifa);
  462. return -ENOBUFS;
  463. }
  464. ipv4_devconf_setall(in_dev);
  465. neigh_parms_data_state_setall(in_dev->arp_parms);
  466. if (ifa->ifa_dev != in_dev) {
  467. WARN_ON(ifa->ifa_dev);
  468. in_dev_hold(in_dev);
  469. ifa->ifa_dev = in_dev;
  470. }
  471. if (ipv4_is_loopback(ifa->ifa_local))
  472. ifa->ifa_scope = RT_SCOPE_HOST;
  473. return inet_insert_ifa(ifa);
  474. }
  475. /* Caller must hold RCU or RTNL :
  476. * We dont take a reference on found in_device
  477. */
  478. struct in_device *inetdev_by_index(struct net *net, int ifindex)
  479. {
  480. struct net_device *dev;
  481. struct in_device *in_dev = NULL;
  482. rcu_read_lock();
  483. dev = dev_get_by_index_rcu(net, ifindex);
  484. if (dev)
  485. in_dev = rcu_dereference_rtnl(dev->ip_ptr);
  486. rcu_read_unlock();
  487. return in_dev;
  488. }
  489. EXPORT_SYMBOL(inetdev_by_index);
  490. /* Called only from RTNL semaphored context. No locks. */
  491. struct in_ifaddr *inet_ifa_byprefix(struct in_device *in_dev, __be32 prefix,
  492. __be32 mask)
  493. {
  494. ASSERT_RTNL();
  495. for_primary_ifa(in_dev) {
  496. if (ifa->ifa_mask == mask && inet_ifa_match(prefix, ifa))
  497. return ifa;
  498. } endfor_ifa(in_dev);
  499. return NULL;
  500. }
  501. static int ip_mc_config(struct sock *sk, bool join, const struct in_ifaddr *ifa)
  502. {
  503. struct ip_mreqn mreq = {
  504. .imr_multiaddr.s_addr = ifa->ifa_address,
  505. .imr_ifindex = ifa->ifa_dev->dev->ifindex,
  506. };
  507. int ret;
  508. ASSERT_RTNL();
  509. lock_sock(sk);
  510. if (join)
  511. ret = ip_mc_join_group(sk, &mreq);
  512. else
  513. ret = ip_mc_leave_group(sk, &mreq);
  514. release_sock(sk);
  515. return ret;
  516. }
  517. static int inet_rtm_deladdr(struct sk_buff *skb, struct nlmsghdr *nlh,
  518. struct netlink_ext_ack *extack)
  519. {
  520. struct net *net = sock_net(skb->sk);
  521. struct nlattr *tb[IFA_MAX+1];
  522. struct in_device *in_dev;
  523. struct ifaddrmsg *ifm;
  524. struct in_ifaddr *ifa, **ifap;
  525. int err = -EINVAL;
  526. ASSERT_RTNL();
  527. err = nlmsg_parse(nlh, sizeof(*ifm), tb, IFA_MAX, ifa_ipv4_policy,
  528. extack);
  529. if (err < 0)
  530. goto errout;
  531. ifm = nlmsg_data(nlh);
  532. in_dev = inetdev_by_index(net, ifm->ifa_index);
  533. if (!in_dev) {
  534. err = -ENODEV;
  535. goto errout;
  536. }
  537. for (ifap = &in_dev->ifa_list; (ifa = *ifap) != NULL;
  538. ifap = &ifa->ifa_next) {
  539. if (tb[IFA_LOCAL] &&
  540. ifa->ifa_local != nla_get_in_addr(tb[IFA_LOCAL]))
  541. continue;
  542. if (tb[IFA_LABEL] && nla_strcmp(tb[IFA_LABEL], ifa->ifa_label))
  543. continue;
  544. if (tb[IFA_ADDRESS] &&
  545. (ifm->ifa_prefixlen != ifa->ifa_prefixlen ||
  546. !inet_ifa_match(nla_get_in_addr(tb[IFA_ADDRESS]), ifa)))
  547. continue;
  548. if (ipv4_is_multicast(ifa->ifa_address))
  549. ip_mc_config(net->ipv4.mc_autojoin_sk, false, ifa);
  550. __inet_del_ifa(in_dev, ifap, 1, nlh, NETLINK_CB(skb).portid);
  551. return 0;
  552. }
  553. err = -EADDRNOTAVAIL;
  554. errout:
  555. return err;
  556. }
  557. #define INFINITY_LIFE_TIME 0xFFFFFFFF
  558. static void check_lifetime(struct work_struct *work)
  559. {
  560. unsigned long now, next, next_sec, next_sched;
  561. struct in_ifaddr *ifa;
  562. struct hlist_node *n;
  563. int i;
  564. now = jiffies;
  565. next = round_jiffies_up(now + ADDR_CHECK_FREQUENCY);
  566. for (i = 0; i < IN4_ADDR_HSIZE; i++) {
  567. bool change_needed = false;
  568. rcu_read_lock();
  569. hlist_for_each_entry_rcu(ifa, &inet_addr_lst[i], hash) {
  570. unsigned long age;
  571. if (ifa->ifa_flags & IFA_F_PERMANENT)
  572. continue;
  573. /* We try to batch several events at once. */
  574. age = (now - ifa->ifa_tstamp +
  575. ADDRCONF_TIMER_FUZZ_MINUS) / HZ;
  576. if (ifa->ifa_valid_lft != INFINITY_LIFE_TIME &&
  577. age >= ifa->ifa_valid_lft) {
  578. change_needed = true;
  579. } else if (ifa->ifa_preferred_lft ==
  580. INFINITY_LIFE_TIME) {
  581. continue;
  582. } else if (age >= ifa->ifa_preferred_lft) {
  583. if (time_before(ifa->ifa_tstamp +
  584. ifa->ifa_valid_lft * HZ, next))
  585. next = ifa->ifa_tstamp +
  586. ifa->ifa_valid_lft * HZ;
  587. if (!(ifa->ifa_flags & IFA_F_DEPRECATED))
  588. change_needed = true;
  589. } else if (time_before(ifa->ifa_tstamp +
  590. ifa->ifa_preferred_lft * HZ,
  591. next)) {
  592. next = ifa->ifa_tstamp +
  593. ifa->ifa_preferred_lft * HZ;
  594. }
  595. }
  596. rcu_read_unlock();
  597. if (!change_needed)
  598. continue;
  599. rtnl_lock();
  600. hlist_for_each_entry_safe(ifa, n, &inet_addr_lst[i], hash) {
  601. unsigned long age;
  602. if (ifa->ifa_flags & IFA_F_PERMANENT)
  603. continue;
  604. /* We try to batch several events at once. */
  605. age = (now - ifa->ifa_tstamp +
  606. ADDRCONF_TIMER_FUZZ_MINUS) / HZ;
  607. if (ifa->ifa_valid_lft != INFINITY_LIFE_TIME &&
  608. age >= ifa->ifa_valid_lft) {
  609. struct in_ifaddr **ifap;
  610. for (ifap = &ifa->ifa_dev->ifa_list;
  611. *ifap != NULL; ifap = &(*ifap)->ifa_next) {
  612. if (*ifap == ifa) {
  613. inet_del_ifa(ifa->ifa_dev,
  614. ifap, 1);
  615. break;
  616. }
  617. }
  618. } else if (ifa->ifa_preferred_lft !=
  619. INFINITY_LIFE_TIME &&
  620. age >= ifa->ifa_preferred_lft &&
  621. !(ifa->ifa_flags & IFA_F_DEPRECATED)) {
  622. ifa->ifa_flags |= IFA_F_DEPRECATED;
  623. rtmsg_ifa(RTM_NEWADDR, ifa, NULL, 0);
  624. }
  625. }
  626. rtnl_unlock();
  627. }
  628. next_sec = round_jiffies_up(next);
  629. next_sched = next;
  630. /* If rounded timeout is accurate enough, accept it. */
  631. if (time_before(next_sec, next + ADDRCONF_TIMER_FUZZ))
  632. next_sched = next_sec;
  633. now = jiffies;
  634. /* And minimum interval is ADDRCONF_TIMER_FUZZ_MAX. */
  635. if (time_before(next_sched, now + ADDRCONF_TIMER_FUZZ_MAX))
  636. next_sched = now + ADDRCONF_TIMER_FUZZ_MAX;
  637. queue_delayed_work(system_power_efficient_wq, &check_lifetime_work,
  638. next_sched - now);
  639. }
  640. static void set_ifa_lifetime(struct in_ifaddr *ifa, __u32 valid_lft,
  641. __u32 prefered_lft)
  642. {
  643. unsigned long timeout;
  644. ifa->ifa_flags &= ~(IFA_F_PERMANENT | IFA_F_DEPRECATED);
  645. timeout = addrconf_timeout_fixup(valid_lft, HZ);
  646. if (addrconf_finite_timeout(timeout))
  647. ifa->ifa_valid_lft = timeout;
  648. else
  649. ifa->ifa_flags |= IFA_F_PERMANENT;
  650. timeout = addrconf_timeout_fixup(prefered_lft, HZ);
  651. if (addrconf_finite_timeout(timeout)) {
  652. if (timeout == 0)
  653. ifa->ifa_flags |= IFA_F_DEPRECATED;
  654. ifa->ifa_preferred_lft = timeout;
  655. }
  656. ifa->ifa_tstamp = jiffies;
  657. if (!ifa->ifa_cstamp)
  658. ifa->ifa_cstamp = ifa->ifa_tstamp;
  659. }
  660. static struct in_ifaddr *rtm_to_ifaddr(struct net *net, struct nlmsghdr *nlh,
  661. __u32 *pvalid_lft, __u32 *pprefered_lft)
  662. {
  663. struct nlattr *tb[IFA_MAX+1];
  664. struct in_ifaddr *ifa;
  665. struct ifaddrmsg *ifm;
  666. struct net_device *dev;
  667. struct in_device *in_dev;
  668. int err;
  669. err = nlmsg_parse(nlh, sizeof(*ifm), tb, IFA_MAX, ifa_ipv4_policy,
  670. NULL);
  671. if (err < 0)
  672. goto errout;
  673. ifm = nlmsg_data(nlh);
  674. err = -EINVAL;
  675. if (ifm->ifa_prefixlen > 32 || !tb[IFA_LOCAL])
  676. goto errout;
  677. dev = __dev_get_by_index(net, ifm->ifa_index);
  678. err = -ENODEV;
  679. if (!dev)
  680. goto errout;
  681. in_dev = __in_dev_get_rtnl(dev);
  682. err = -ENOBUFS;
  683. if (!in_dev)
  684. goto errout;
  685. ifa = inet_alloc_ifa();
  686. if (!ifa)
  687. /*
  688. * A potential indev allocation can be left alive, it stays
  689. * assigned to its device and is destroy with it.
  690. */
  691. goto errout;
  692. ipv4_devconf_setall(in_dev);
  693. neigh_parms_data_state_setall(in_dev->arp_parms);
  694. in_dev_hold(in_dev);
  695. if (!tb[IFA_ADDRESS])
  696. tb[IFA_ADDRESS] = tb[IFA_LOCAL];
  697. INIT_HLIST_NODE(&ifa->hash);
  698. ifa->ifa_prefixlen = ifm->ifa_prefixlen;
  699. ifa->ifa_mask = inet_make_mask(ifm->ifa_prefixlen);
  700. ifa->ifa_flags = tb[IFA_FLAGS] ? nla_get_u32(tb[IFA_FLAGS]) :
  701. ifm->ifa_flags;
  702. ifa->ifa_scope = ifm->ifa_scope;
  703. ifa->ifa_dev = in_dev;
  704. ifa->ifa_local = nla_get_in_addr(tb[IFA_LOCAL]);
  705. ifa->ifa_address = nla_get_in_addr(tb[IFA_ADDRESS]);
  706. if (tb[IFA_BROADCAST])
  707. ifa->ifa_broadcast = nla_get_in_addr(tb[IFA_BROADCAST]);
  708. if (tb[IFA_LABEL])
  709. nla_strlcpy(ifa->ifa_label, tb[IFA_LABEL], IFNAMSIZ);
  710. else
  711. memcpy(ifa->ifa_label, dev->name, IFNAMSIZ);
  712. if (tb[IFA_RT_PRIORITY])
  713. ifa->ifa_rt_priority = nla_get_u32(tb[IFA_RT_PRIORITY]);
  714. if (tb[IFA_CACHEINFO]) {
  715. struct ifa_cacheinfo *ci;
  716. ci = nla_data(tb[IFA_CACHEINFO]);
  717. if (!ci->ifa_valid || ci->ifa_prefered > ci->ifa_valid) {
  718. err = -EINVAL;
  719. goto errout_free;
  720. }
  721. *pvalid_lft = ci->ifa_valid;
  722. *pprefered_lft = ci->ifa_prefered;
  723. }
  724. return ifa;
  725. errout_free:
  726. inet_free_ifa(ifa);
  727. errout:
  728. return ERR_PTR(err);
  729. }
  730. static struct in_ifaddr *find_matching_ifa(struct in_ifaddr *ifa)
  731. {
  732. struct in_device *in_dev = ifa->ifa_dev;
  733. struct in_ifaddr *ifa1, **ifap;
  734. if (!ifa->ifa_local)
  735. return NULL;
  736. for (ifap = &in_dev->ifa_list; (ifa1 = *ifap) != NULL;
  737. ifap = &ifa1->ifa_next) {
  738. if (ifa1->ifa_mask == ifa->ifa_mask &&
  739. inet_ifa_match(ifa1->ifa_address, ifa) &&
  740. ifa1->ifa_local == ifa->ifa_local)
  741. return ifa1;
  742. }
  743. return NULL;
  744. }
  745. static int inet_rtm_newaddr(struct sk_buff *skb, struct nlmsghdr *nlh,
  746. struct netlink_ext_ack *extack)
  747. {
  748. struct net *net = sock_net(skb->sk);
  749. struct in_ifaddr *ifa;
  750. struct in_ifaddr *ifa_existing;
  751. __u32 valid_lft = INFINITY_LIFE_TIME;
  752. __u32 prefered_lft = INFINITY_LIFE_TIME;
  753. ASSERT_RTNL();
  754. ifa = rtm_to_ifaddr(net, nlh, &valid_lft, &prefered_lft);
  755. if (IS_ERR(ifa))
  756. return PTR_ERR(ifa);
  757. ifa_existing = find_matching_ifa(ifa);
  758. if (!ifa_existing) {
  759. /* It would be best to check for !NLM_F_CREATE here but
  760. * userspace already relies on not having to provide this.
  761. */
  762. set_ifa_lifetime(ifa, valid_lft, prefered_lft);
  763. if (ifa->ifa_flags & IFA_F_MCAUTOJOIN) {
  764. int ret = ip_mc_config(net->ipv4.mc_autojoin_sk,
  765. true, ifa);
  766. if (ret < 0) {
  767. inet_free_ifa(ifa);
  768. return ret;
  769. }
  770. }
  771. return __inet_insert_ifa(ifa, nlh, NETLINK_CB(skb).portid,
  772. extack);
  773. } else {
  774. u32 new_metric = ifa->ifa_rt_priority;
  775. inet_free_ifa(ifa);
  776. if (nlh->nlmsg_flags & NLM_F_EXCL ||
  777. !(nlh->nlmsg_flags & NLM_F_REPLACE))
  778. return -EEXIST;
  779. ifa = ifa_existing;
  780. if (ifa->ifa_rt_priority != new_metric) {
  781. fib_modify_prefix_metric(ifa, new_metric);
  782. ifa->ifa_rt_priority = new_metric;
  783. }
  784. set_ifa_lifetime(ifa, valid_lft, prefered_lft);
  785. cancel_delayed_work(&check_lifetime_work);
  786. queue_delayed_work(system_power_efficient_wq,
  787. &check_lifetime_work, 0);
  788. rtmsg_ifa(RTM_NEWADDR, ifa, nlh, NETLINK_CB(skb).portid);
  789. }
  790. return 0;
  791. }
  792. /*
  793. * Determine a default network mask, based on the IP address.
  794. */
  795. static int inet_abc_len(__be32 addr)
  796. {
  797. int rc = -1; /* Something else, probably a multicast. */
  798. if (ipv4_is_zeronet(addr))
  799. rc = 0;
  800. else {
  801. __u32 haddr = ntohl(addr);
  802. if (IN_CLASSA(haddr))
  803. rc = 8;
  804. else if (IN_CLASSB(haddr))
  805. rc = 16;
  806. else if (IN_CLASSC(haddr))
  807. rc = 24;
  808. }
  809. return rc;
  810. }
  811. int devinet_ioctl(struct net *net, unsigned int cmd, struct ifreq *ifr)
  812. {
  813. struct sockaddr_in sin_orig;
  814. struct sockaddr_in *sin = (struct sockaddr_in *)&ifr->ifr_addr;
  815. struct in_device *in_dev;
  816. struct in_ifaddr **ifap = NULL;
  817. struct in_ifaddr *ifa = NULL;
  818. struct net_device *dev;
  819. char *colon;
  820. int ret = -EFAULT;
  821. int tryaddrmatch = 0;
  822. ifr->ifr_name[IFNAMSIZ - 1] = 0;
  823. /* save original address for comparison */
  824. memcpy(&sin_orig, sin, sizeof(*sin));
  825. colon = strchr(ifr->ifr_name, ':');
  826. if (colon)
  827. *colon = 0;
  828. dev_load(net, ifr->ifr_name);
  829. switch (cmd) {
  830. case SIOCGIFADDR: /* Get interface address */
  831. case SIOCGIFBRDADDR: /* Get the broadcast address */
  832. case SIOCGIFDSTADDR: /* Get the destination address */
  833. case SIOCGIFNETMASK: /* Get the netmask for the interface */
  834. /* Note that these ioctls will not sleep,
  835. so that we do not impose a lock.
  836. One day we will be forced to put shlock here (I mean SMP)
  837. */
  838. tryaddrmatch = (sin_orig.sin_family == AF_INET);
  839. memset(sin, 0, sizeof(*sin));
  840. sin->sin_family = AF_INET;
  841. break;
  842. case SIOCSIFFLAGS:
  843. ret = -EPERM;
  844. if (!ns_capable(net->user_ns, CAP_NET_ADMIN))
  845. goto out;
  846. break;
  847. case SIOCSIFADDR: /* Set interface address (and family) */
  848. case SIOCSIFBRDADDR: /* Set the broadcast address */
  849. case SIOCSIFDSTADDR: /* Set the destination address */
  850. case SIOCSIFNETMASK: /* Set the netmask for the interface */
  851. ret = -EPERM;
  852. if (!ns_capable(net->user_ns, CAP_NET_ADMIN))
  853. goto out;
  854. ret = -EINVAL;
  855. if (sin->sin_family != AF_INET)
  856. goto out;
  857. break;
  858. default:
  859. ret = -EINVAL;
  860. goto out;
  861. }
  862. rtnl_lock();
  863. ret = -ENODEV;
  864. dev = __dev_get_by_name(net, ifr->ifr_name);
  865. if (!dev)
  866. goto done;
  867. if (colon)
  868. *colon = ':';
  869. in_dev = __in_dev_get_rtnl(dev);
  870. if (in_dev) {
  871. if (tryaddrmatch) {
  872. /* Matthias Andree */
  873. /* compare label and address (4.4BSD style) */
  874. /* note: we only do this for a limited set of ioctls
  875. and only if the original address family was AF_INET.
  876. This is checked above. */
  877. for (ifap = &in_dev->ifa_list; (ifa = *ifap) != NULL;
  878. ifap = &ifa->ifa_next) {
  879. if (!strcmp(ifr->ifr_name, ifa->ifa_label) &&
  880. sin_orig.sin_addr.s_addr ==
  881. ifa->ifa_local) {
  882. break; /* found */
  883. }
  884. }
  885. }
  886. /* we didn't get a match, maybe the application is
  887. 4.3BSD-style and passed in junk so we fall back to
  888. comparing just the label */
  889. if (!ifa) {
  890. for (ifap = &in_dev->ifa_list; (ifa = *ifap) != NULL;
  891. ifap = &ifa->ifa_next)
  892. if (!strcmp(ifr->ifr_name, ifa->ifa_label))
  893. break;
  894. }
  895. }
  896. ret = -EADDRNOTAVAIL;
  897. if (!ifa && cmd != SIOCSIFADDR && cmd != SIOCSIFFLAGS)
  898. goto done;
  899. switch (cmd) {
  900. case SIOCGIFADDR: /* Get interface address */
  901. ret = 0;
  902. sin->sin_addr.s_addr = ifa->ifa_local;
  903. break;
  904. case SIOCGIFBRDADDR: /* Get the broadcast address */
  905. ret = 0;
  906. sin->sin_addr.s_addr = ifa->ifa_broadcast;
  907. break;
  908. case SIOCGIFDSTADDR: /* Get the destination address */
  909. ret = 0;
  910. sin->sin_addr.s_addr = ifa->ifa_address;
  911. break;
  912. case SIOCGIFNETMASK: /* Get the netmask for the interface */
  913. ret = 0;
  914. sin->sin_addr.s_addr = ifa->ifa_mask;
  915. break;
  916. case SIOCSIFFLAGS:
  917. if (colon) {
  918. ret = -EADDRNOTAVAIL;
  919. if (!ifa)
  920. break;
  921. ret = 0;
  922. if (!(ifr->ifr_flags & IFF_UP))
  923. inet_del_ifa(in_dev, ifap, 1);
  924. break;
  925. }
  926. ret = dev_change_flags(dev, ifr->ifr_flags);
  927. break;
  928. case SIOCSIFADDR: /* Set interface address (and family) */
  929. ret = -EINVAL;
  930. if (inet_abc_len(sin->sin_addr.s_addr) < 0)
  931. break;
  932. if (!ifa) {
  933. ret = -ENOBUFS;
  934. ifa = inet_alloc_ifa();
  935. if (!ifa)
  936. break;
  937. INIT_HLIST_NODE(&ifa->hash);
  938. if (colon)
  939. memcpy(ifa->ifa_label, ifr->ifr_name, IFNAMSIZ);
  940. else
  941. memcpy(ifa->ifa_label, dev->name, IFNAMSIZ);
  942. } else {
  943. ret = 0;
  944. if (ifa->ifa_local == sin->sin_addr.s_addr)
  945. break;
  946. inet_del_ifa(in_dev, ifap, 0);
  947. ifa->ifa_broadcast = 0;
  948. ifa->ifa_scope = 0;
  949. }
  950. ifa->ifa_address = ifa->ifa_local = sin->sin_addr.s_addr;
  951. if (!(dev->flags & IFF_POINTOPOINT)) {
  952. ifa->ifa_prefixlen = inet_abc_len(ifa->ifa_address);
  953. ifa->ifa_mask = inet_make_mask(ifa->ifa_prefixlen);
  954. if ((dev->flags & IFF_BROADCAST) &&
  955. ifa->ifa_prefixlen < 31)
  956. ifa->ifa_broadcast = ifa->ifa_address |
  957. ~ifa->ifa_mask;
  958. } else {
  959. ifa->ifa_prefixlen = 32;
  960. ifa->ifa_mask = inet_make_mask(32);
  961. }
  962. set_ifa_lifetime(ifa, INFINITY_LIFE_TIME, INFINITY_LIFE_TIME);
  963. ret = inet_set_ifa(dev, ifa);
  964. break;
  965. case SIOCSIFBRDADDR: /* Set the broadcast address */
  966. ret = 0;
  967. if (ifa->ifa_broadcast != sin->sin_addr.s_addr) {
  968. inet_del_ifa(in_dev, ifap, 0);
  969. ifa->ifa_broadcast = sin->sin_addr.s_addr;
  970. inet_insert_ifa(ifa);
  971. }
  972. break;
  973. case SIOCSIFDSTADDR: /* Set the destination address */
  974. ret = 0;
  975. if (ifa->ifa_address == sin->sin_addr.s_addr)
  976. break;
  977. ret = -EINVAL;
  978. if (inet_abc_len(sin->sin_addr.s_addr) < 0)
  979. break;
  980. ret = 0;
  981. inet_del_ifa(in_dev, ifap, 0);
  982. ifa->ifa_address = sin->sin_addr.s_addr;
  983. inet_insert_ifa(ifa);
  984. break;
  985. case SIOCSIFNETMASK: /* Set the netmask for the interface */
  986. /*
  987. * The mask we set must be legal.
  988. */
  989. ret = -EINVAL;
  990. if (bad_mask(sin->sin_addr.s_addr, 0))
  991. break;
  992. ret = 0;
  993. if (ifa->ifa_mask != sin->sin_addr.s_addr) {
  994. __be32 old_mask = ifa->ifa_mask;
  995. inet_del_ifa(in_dev, ifap, 0);
  996. ifa->ifa_mask = sin->sin_addr.s_addr;
  997. ifa->ifa_prefixlen = inet_mask_len(ifa->ifa_mask);
  998. /* See if current broadcast address matches
  999. * with current netmask, then recalculate
  1000. * the broadcast address. Otherwise it's a
  1001. * funny address, so don't touch it since
  1002. * the user seems to know what (s)he's doing...
  1003. */
  1004. if ((dev->flags & IFF_BROADCAST) &&
  1005. (ifa->ifa_prefixlen < 31) &&
  1006. (ifa->ifa_broadcast ==
  1007. (ifa->ifa_local|~old_mask))) {
  1008. ifa->ifa_broadcast = (ifa->ifa_local |
  1009. ~sin->sin_addr.s_addr);
  1010. }
  1011. inet_insert_ifa(ifa);
  1012. }
  1013. break;
  1014. }
  1015. done:
  1016. rtnl_unlock();
  1017. out:
  1018. return ret;
  1019. }
  1020. static int inet_gifconf(struct net_device *dev, char __user *buf, int len, int size)
  1021. {
  1022. struct in_device *in_dev = __in_dev_get_rtnl(dev);
  1023. struct in_ifaddr *ifa;
  1024. struct ifreq ifr;
  1025. int done = 0;
  1026. if (WARN_ON(size > sizeof(struct ifreq)))
  1027. goto out;
  1028. if (!in_dev)
  1029. goto out;
  1030. for (ifa = in_dev->ifa_list; ifa; ifa = ifa->ifa_next) {
  1031. if (!buf) {
  1032. done += size;
  1033. continue;
  1034. }
  1035. if (len < size)
  1036. break;
  1037. memset(&ifr, 0, sizeof(struct ifreq));
  1038. strcpy(ifr.ifr_name, ifa->ifa_label);
  1039. (*(struct sockaddr_in *)&ifr.ifr_addr).sin_family = AF_INET;
  1040. (*(struct sockaddr_in *)&ifr.ifr_addr).sin_addr.s_addr =
  1041. ifa->ifa_local;
  1042. if (copy_to_user(buf + done, &ifr, size)) {
  1043. done = -EFAULT;
  1044. break;
  1045. }
  1046. len -= size;
  1047. done += size;
  1048. }
  1049. out:
  1050. return done;
  1051. }
  1052. static __be32 in_dev_select_addr(const struct in_device *in_dev,
  1053. int scope)
  1054. {
  1055. for_primary_ifa(in_dev) {
  1056. if (ifa->ifa_scope != RT_SCOPE_LINK &&
  1057. ifa->ifa_scope <= scope)
  1058. return ifa->ifa_local;
  1059. } endfor_ifa(in_dev);
  1060. return 0;
  1061. }
  1062. __be32 inet_select_addr(const struct net_device *dev, __be32 dst, int scope)
  1063. {
  1064. __be32 addr = 0;
  1065. struct in_device *in_dev;
  1066. struct net *net = dev_net(dev);
  1067. int master_idx;
  1068. rcu_read_lock();
  1069. in_dev = __in_dev_get_rcu(dev);
  1070. if (!in_dev)
  1071. goto no_in_dev;
  1072. for_primary_ifa(in_dev) {
  1073. if (ifa->ifa_scope > scope)
  1074. continue;
  1075. if (!dst || inet_ifa_match(dst, ifa)) {
  1076. addr = ifa->ifa_local;
  1077. break;
  1078. }
  1079. if (!addr)
  1080. addr = ifa->ifa_local;
  1081. } endfor_ifa(in_dev);
  1082. if (addr)
  1083. goto out_unlock;
  1084. no_in_dev:
  1085. master_idx = l3mdev_master_ifindex_rcu(dev);
  1086. /* For VRFs, the VRF device takes the place of the loopback device,
  1087. * with addresses on it being preferred. Note in such cases the
  1088. * loopback device will be among the devices that fail the master_idx
  1089. * equality check in the loop below.
  1090. */
  1091. if (master_idx &&
  1092. (dev = dev_get_by_index_rcu(net, master_idx)) &&
  1093. (in_dev = __in_dev_get_rcu(dev))) {
  1094. addr = in_dev_select_addr(in_dev, scope);
  1095. if (addr)
  1096. goto out_unlock;
  1097. }
  1098. /* Not loopback addresses on loopback should be preferred
  1099. in this case. It is important that lo is the first interface
  1100. in dev_base list.
  1101. */
  1102. for_each_netdev_rcu(net, dev) {
  1103. if (l3mdev_master_ifindex_rcu(dev) != master_idx)
  1104. continue;
  1105. in_dev = __in_dev_get_rcu(dev);
  1106. if (!in_dev)
  1107. continue;
  1108. addr = in_dev_select_addr(in_dev, scope);
  1109. if (addr)
  1110. goto out_unlock;
  1111. }
  1112. out_unlock:
  1113. rcu_read_unlock();
  1114. return addr;
  1115. }
  1116. EXPORT_SYMBOL(inet_select_addr);
  1117. static __be32 confirm_addr_indev(struct in_device *in_dev, __be32 dst,
  1118. __be32 local, int scope)
  1119. {
  1120. int same = 0;
  1121. __be32 addr = 0;
  1122. for_ifa(in_dev) {
  1123. if (!addr &&
  1124. (local == ifa->ifa_local || !local) &&
  1125. ifa->ifa_scope <= scope) {
  1126. addr = ifa->ifa_local;
  1127. if (same)
  1128. break;
  1129. }
  1130. if (!same) {
  1131. same = (!local || inet_ifa_match(local, ifa)) &&
  1132. (!dst || inet_ifa_match(dst, ifa));
  1133. if (same && addr) {
  1134. if (local || !dst)
  1135. break;
  1136. /* Is the selected addr into dst subnet? */
  1137. if (inet_ifa_match(addr, ifa))
  1138. break;
  1139. /* No, then can we use new local src? */
  1140. if (ifa->ifa_scope <= scope) {
  1141. addr = ifa->ifa_local;
  1142. break;
  1143. }
  1144. /* search for large dst subnet for addr */
  1145. same = 0;
  1146. }
  1147. }
  1148. } endfor_ifa(in_dev);
  1149. return same ? addr : 0;
  1150. }
  1151. /*
  1152. * Confirm that local IP address exists using wildcards:
  1153. * - net: netns to check, cannot be NULL
  1154. * - in_dev: only on this interface, NULL=any interface
  1155. * - dst: only in the same subnet as dst, 0=any dst
  1156. * - local: address, 0=autoselect the local address
  1157. * - scope: maximum allowed scope value for the local address
  1158. */
  1159. __be32 inet_confirm_addr(struct net *net, struct in_device *in_dev,
  1160. __be32 dst, __be32 local, int scope)
  1161. {
  1162. __be32 addr = 0;
  1163. struct net_device *dev;
  1164. if (in_dev)
  1165. return confirm_addr_indev(in_dev, dst, local, scope);
  1166. rcu_read_lock();
  1167. for_each_netdev_rcu(net, dev) {
  1168. in_dev = __in_dev_get_rcu(dev);
  1169. if (in_dev) {
  1170. addr = confirm_addr_indev(in_dev, dst, local, scope);
  1171. if (addr)
  1172. break;
  1173. }
  1174. }
  1175. rcu_read_unlock();
  1176. return addr;
  1177. }
  1178. EXPORT_SYMBOL(inet_confirm_addr);
  1179. /*
  1180. * Device notifier
  1181. */
  1182. int register_inetaddr_notifier(struct notifier_block *nb)
  1183. {
  1184. return blocking_notifier_chain_register(&inetaddr_chain, nb);
  1185. }
  1186. EXPORT_SYMBOL(register_inetaddr_notifier);
  1187. int unregister_inetaddr_notifier(struct notifier_block *nb)
  1188. {
  1189. return blocking_notifier_chain_unregister(&inetaddr_chain, nb);
  1190. }
  1191. EXPORT_SYMBOL(unregister_inetaddr_notifier);
  1192. int register_inetaddr_validator_notifier(struct notifier_block *nb)
  1193. {
  1194. return blocking_notifier_chain_register(&inetaddr_validator_chain, nb);
  1195. }
  1196. EXPORT_SYMBOL(register_inetaddr_validator_notifier);
  1197. int unregister_inetaddr_validator_notifier(struct notifier_block *nb)
  1198. {
  1199. return blocking_notifier_chain_unregister(&inetaddr_validator_chain,
  1200. nb);
  1201. }
  1202. EXPORT_SYMBOL(unregister_inetaddr_validator_notifier);
  1203. /* Rename ifa_labels for a device name change. Make some effort to preserve
  1204. * existing alias numbering and to create unique labels if possible.
  1205. */
  1206. static void inetdev_changename(struct net_device *dev, struct in_device *in_dev)
  1207. {
  1208. struct in_ifaddr *ifa;
  1209. int named = 0;
  1210. for (ifa = in_dev->ifa_list; ifa; ifa = ifa->ifa_next) {
  1211. char old[IFNAMSIZ], *dot;
  1212. memcpy(old, ifa->ifa_label, IFNAMSIZ);
  1213. memcpy(ifa->ifa_label, dev->name, IFNAMSIZ);
  1214. if (named++ == 0)
  1215. goto skip;
  1216. dot = strchr(old, ':');
  1217. if (!dot) {
  1218. sprintf(old, ":%d", named);
  1219. dot = old;
  1220. }
  1221. if (strlen(dot) + strlen(dev->name) < IFNAMSIZ)
  1222. strcat(ifa->ifa_label, dot);
  1223. else
  1224. strcpy(ifa->ifa_label + (IFNAMSIZ - strlen(dot) - 1), dot);
  1225. skip:
  1226. rtmsg_ifa(RTM_NEWADDR, ifa, NULL, 0);
  1227. }
  1228. }
  1229. static void inetdev_send_gratuitous_arp(struct net_device *dev,
  1230. struct in_device *in_dev)
  1231. {
  1232. struct in_ifaddr *ifa;
  1233. for (ifa = in_dev->ifa_list; ifa;
  1234. ifa = ifa->ifa_next) {
  1235. arp_send(ARPOP_REQUEST, ETH_P_ARP,
  1236. ifa->ifa_local, dev,
  1237. ifa->ifa_local, NULL,
  1238. dev->dev_addr, NULL);
  1239. }
  1240. }
  1241. /* Called only under RTNL semaphore */
  1242. static int inetdev_event(struct notifier_block *this, unsigned long event,
  1243. void *ptr)
  1244. {
  1245. struct net_device *dev = netdev_notifier_info_to_dev(ptr);
  1246. struct in_device *in_dev = __in_dev_get_rtnl(dev);
  1247. ASSERT_RTNL();
  1248. if (!in_dev) {
  1249. if (event == NETDEV_REGISTER) {
  1250. in_dev = inetdev_init(dev);
  1251. if (IS_ERR(in_dev))
  1252. return notifier_from_errno(PTR_ERR(in_dev));
  1253. if (dev->flags & IFF_LOOPBACK) {
  1254. IN_DEV_CONF_SET(in_dev, NOXFRM, 1);
  1255. IN_DEV_CONF_SET(in_dev, NOPOLICY, 1);
  1256. }
  1257. } else if (event == NETDEV_CHANGEMTU) {
  1258. /* Re-enabling IP */
  1259. if (inetdev_valid_mtu(dev->mtu))
  1260. in_dev = inetdev_init(dev);
  1261. }
  1262. goto out;
  1263. }
  1264. switch (event) {
  1265. case NETDEV_REGISTER:
  1266. pr_debug("%s: bug\n", __func__);
  1267. RCU_INIT_POINTER(dev->ip_ptr, NULL);
  1268. break;
  1269. case NETDEV_UP:
  1270. if (!inetdev_valid_mtu(dev->mtu))
  1271. break;
  1272. if (dev->flags & IFF_LOOPBACK) {
  1273. struct in_ifaddr *ifa = inet_alloc_ifa();
  1274. if (ifa) {
  1275. INIT_HLIST_NODE(&ifa->hash);
  1276. ifa->ifa_local =
  1277. ifa->ifa_address = htonl(INADDR_LOOPBACK);
  1278. ifa->ifa_prefixlen = 8;
  1279. ifa->ifa_mask = inet_make_mask(8);
  1280. in_dev_hold(in_dev);
  1281. ifa->ifa_dev = in_dev;
  1282. ifa->ifa_scope = RT_SCOPE_HOST;
  1283. memcpy(ifa->ifa_label, dev->name, IFNAMSIZ);
  1284. set_ifa_lifetime(ifa, INFINITY_LIFE_TIME,
  1285. INFINITY_LIFE_TIME);
  1286. ipv4_devconf_setall(in_dev);
  1287. neigh_parms_data_state_setall(in_dev->arp_parms);
  1288. inet_insert_ifa(ifa);
  1289. }
  1290. }
  1291. ip_mc_up(in_dev);
  1292. /* fall through */
  1293. case NETDEV_CHANGEADDR:
  1294. if (!IN_DEV_ARP_NOTIFY(in_dev))
  1295. break;
  1296. /* fall through */
  1297. case NETDEV_NOTIFY_PEERS:
  1298. /* Send gratuitous ARP to notify of link change */
  1299. inetdev_send_gratuitous_arp(dev, in_dev);
  1300. break;
  1301. case NETDEV_DOWN:
  1302. ip_mc_down(in_dev);
  1303. break;
  1304. case NETDEV_PRE_TYPE_CHANGE:
  1305. ip_mc_unmap(in_dev);
  1306. break;
  1307. case NETDEV_POST_TYPE_CHANGE:
  1308. ip_mc_remap(in_dev);
  1309. break;
  1310. case NETDEV_CHANGEMTU:
  1311. if (inetdev_valid_mtu(dev->mtu))
  1312. break;
  1313. /* disable IP when MTU is not enough */
  1314. /* fall through */
  1315. case NETDEV_UNREGISTER:
  1316. inetdev_destroy(in_dev);
  1317. break;
  1318. case NETDEV_CHANGENAME:
  1319. /* Do not notify about label change, this event is
  1320. * not interesting to applications using netlink.
  1321. */
  1322. inetdev_changename(dev, in_dev);
  1323. devinet_sysctl_unregister(in_dev);
  1324. devinet_sysctl_register(in_dev);
  1325. break;
  1326. }
  1327. out:
  1328. return NOTIFY_DONE;
  1329. }
  1330. static struct notifier_block ip_netdev_notifier = {
  1331. .notifier_call = inetdev_event,
  1332. };
  1333. static size_t inet_nlmsg_size(void)
  1334. {
  1335. return NLMSG_ALIGN(sizeof(struct ifaddrmsg))
  1336. + nla_total_size(4) /* IFA_ADDRESS */
  1337. + nla_total_size(4) /* IFA_LOCAL */
  1338. + nla_total_size(4) /* IFA_BROADCAST */
  1339. + nla_total_size(IFNAMSIZ) /* IFA_LABEL */
  1340. + nla_total_size(4) /* IFA_FLAGS */
  1341. + nla_total_size(4) /* IFA_RT_PRIORITY */
  1342. + nla_total_size(sizeof(struct ifa_cacheinfo)); /* IFA_CACHEINFO */
  1343. }
  1344. static inline u32 cstamp_delta(unsigned long cstamp)
  1345. {
  1346. return (cstamp - INITIAL_JIFFIES) * 100UL / HZ;
  1347. }
  1348. static int put_cacheinfo(struct sk_buff *skb, unsigned long cstamp,
  1349. unsigned long tstamp, u32 preferred, u32 valid)
  1350. {
  1351. struct ifa_cacheinfo ci;
  1352. ci.cstamp = cstamp_delta(cstamp);
  1353. ci.tstamp = cstamp_delta(tstamp);
  1354. ci.ifa_prefered = preferred;
  1355. ci.ifa_valid = valid;
  1356. return nla_put(skb, IFA_CACHEINFO, sizeof(ci), &ci);
  1357. }
  1358. static int inet_fill_ifaddr(struct sk_buff *skb, struct in_ifaddr *ifa,
  1359. u32 portid, u32 seq, int event, unsigned int flags)
  1360. {
  1361. struct ifaddrmsg *ifm;
  1362. struct nlmsghdr *nlh;
  1363. u32 preferred, valid;
  1364. nlh = nlmsg_put(skb, portid, seq, event, sizeof(*ifm), flags);
  1365. if (!nlh)
  1366. return -EMSGSIZE;
  1367. ifm = nlmsg_data(nlh);
  1368. ifm->ifa_family = AF_INET;
  1369. ifm->ifa_prefixlen = ifa->ifa_prefixlen;
  1370. ifm->ifa_flags = ifa->ifa_flags;
  1371. ifm->ifa_scope = ifa->ifa_scope;
  1372. ifm->ifa_index = ifa->ifa_dev->dev->ifindex;
  1373. if (!(ifm->ifa_flags & IFA_F_PERMANENT)) {
  1374. preferred = ifa->ifa_preferred_lft;
  1375. valid = ifa->ifa_valid_lft;
  1376. if (preferred != INFINITY_LIFE_TIME) {
  1377. long tval = (jiffies - ifa->ifa_tstamp) / HZ;
  1378. if (preferred > tval)
  1379. preferred -= tval;
  1380. else
  1381. preferred = 0;
  1382. if (valid != INFINITY_LIFE_TIME) {
  1383. if (valid > tval)
  1384. valid -= tval;
  1385. else
  1386. valid = 0;
  1387. }
  1388. }
  1389. } else {
  1390. preferred = INFINITY_LIFE_TIME;
  1391. valid = INFINITY_LIFE_TIME;
  1392. }
  1393. if ((ifa->ifa_address &&
  1394. nla_put_in_addr(skb, IFA_ADDRESS, ifa->ifa_address)) ||
  1395. (ifa->ifa_local &&
  1396. nla_put_in_addr(skb, IFA_LOCAL, ifa->ifa_local)) ||
  1397. (ifa->ifa_broadcast &&
  1398. nla_put_in_addr(skb, IFA_BROADCAST, ifa->ifa_broadcast)) ||
  1399. (ifa->ifa_label[0] &&
  1400. nla_put_string(skb, IFA_LABEL, ifa->ifa_label)) ||
  1401. nla_put_u32(skb, IFA_FLAGS, ifa->ifa_flags) ||
  1402. (ifa->ifa_rt_priority &&
  1403. nla_put_u32(skb, IFA_RT_PRIORITY, ifa->ifa_rt_priority)) ||
  1404. put_cacheinfo(skb, ifa->ifa_cstamp, ifa->ifa_tstamp,
  1405. preferred, valid))
  1406. goto nla_put_failure;
  1407. nlmsg_end(skb, nlh);
  1408. return 0;
  1409. nla_put_failure:
  1410. nlmsg_cancel(skb, nlh);
  1411. return -EMSGSIZE;
  1412. }
  1413. static int inet_dump_ifaddr(struct sk_buff *skb, struct netlink_callback *cb)
  1414. {
  1415. struct net *net = sock_net(skb->sk);
  1416. int h, s_h;
  1417. int idx, s_idx;
  1418. int ip_idx, s_ip_idx;
  1419. struct net_device *dev;
  1420. struct in_device *in_dev;
  1421. struct in_ifaddr *ifa;
  1422. struct hlist_head *head;
  1423. s_h = cb->args[0];
  1424. s_idx = idx = cb->args[1];
  1425. s_ip_idx = ip_idx = cb->args[2];
  1426. for (h = s_h; h < NETDEV_HASHENTRIES; h++, s_idx = 0) {
  1427. idx = 0;
  1428. head = &net->dev_index_head[h];
  1429. rcu_read_lock();
  1430. cb->seq = atomic_read(&net->ipv4.dev_addr_genid) ^
  1431. net->dev_base_seq;
  1432. hlist_for_each_entry_rcu(dev, head, index_hlist) {
  1433. if (idx < s_idx)
  1434. goto cont;
  1435. if (h > s_h || idx > s_idx)
  1436. s_ip_idx = 0;
  1437. in_dev = __in_dev_get_rcu(dev);
  1438. if (!in_dev)
  1439. goto cont;
  1440. for (ifa = in_dev->ifa_list, ip_idx = 0; ifa;
  1441. ifa = ifa->ifa_next, ip_idx++) {
  1442. if (ip_idx < s_ip_idx)
  1443. continue;
  1444. if (inet_fill_ifaddr(skb, ifa,
  1445. NETLINK_CB(cb->skb).portid,
  1446. cb->nlh->nlmsg_seq,
  1447. RTM_NEWADDR, NLM_F_MULTI) < 0) {
  1448. rcu_read_unlock();
  1449. goto done;
  1450. }
  1451. nl_dump_check_consistent(cb, nlmsg_hdr(skb));
  1452. }
  1453. cont:
  1454. idx++;
  1455. }
  1456. rcu_read_unlock();
  1457. }
  1458. done:
  1459. cb->args[0] = h;
  1460. cb->args[1] = idx;
  1461. cb->args[2] = ip_idx;
  1462. return skb->len;
  1463. }
  1464. static void rtmsg_ifa(int event, struct in_ifaddr *ifa, struct nlmsghdr *nlh,
  1465. u32 portid)
  1466. {
  1467. struct sk_buff *skb;
  1468. u32 seq = nlh ? nlh->nlmsg_seq : 0;
  1469. int err = -ENOBUFS;
  1470. struct net *net;
  1471. net = dev_net(ifa->ifa_dev->dev);
  1472. skb = nlmsg_new(inet_nlmsg_size(), GFP_KERNEL);
  1473. if (!skb)
  1474. goto errout;
  1475. err = inet_fill_ifaddr(skb, ifa, portid, seq, event, 0);
  1476. if (err < 0) {
  1477. /* -EMSGSIZE implies BUG in inet_nlmsg_size() */
  1478. WARN_ON(err == -EMSGSIZE);
  1479. kfree_skb(skb);
  1480. goto errout;
  1481. }
  1482. rtnl_notify(skb, net, portid, RTNLGRP_IPV4_IFADDR, nlh, GFP_KERNEL);
  1483. return;
  1484. errout:
  1485. if (err < 0)
  1486. rtnl_set_sk_err(net, RTNLGRP_IPV4_IFADDR, err);
  1487. }
  1488. static size_t inet_get_link_af_size(const struct net_device *dev,
  1489. u32 ext_filter_mask)
  1490. {
  1491. struct in_device *in_dev = rcu_dereference_rtnl(dev->ip_ptr);
  1492. if (!in_dev)
  1493. return 0;
  1494. return nla_total_size(IPV4_DEVCONF_MAX * 4); /* IFLA_INET_CONF */
  1495. }
  1496. static int inet_fill_link_af(struct sk_buff *skb, const struct net_device *dev,
  1497. u32 ext_filter_mask)
  1498. {
  1499. struct in_device *in_dev = rcu_dereference_rtnl(dev->ip_ptr);
  1500. struct nlattr *nla;
  1501. int i;
  1502. if (!in_dev)
  1503. return -ENODATA;
  1504. nla = nla_reserve(skb, IFLA_INET_CONF, IPV4_DEVCONF_MAX * 4);
  1505. if (!nla)
  1506. return -EMSGSIZE;
  1507. for (i = 0; i < IPV4_DEVCONF_MAX; i++)
  1508. ((u32 *) nla_data(nla))[i] = in_dev->cnf.data[i];
  1509. return 0;
  1510. }
  1511. static const struct nla_policy inet_af_policy[IFLA_INET_MAX+1] = {
  1512. [IFLA_INET_CONF] = { .type = NLA_NESTED },
  1513. };
  1514. static int inet_validate_link_af(const struct net_device *dev,
  1515. const struct nlattr *nla)
  1516. {
  1517. struct nlattr *a, *tb[IFLA_INET_MAX+1];
  1518. int err, rem;
  1519. if (dev && !__in_dev_get_rcu(dev))
  1520. return -EAFNOSUPPORT;
  1521. err = nla_parse_nested(tb, IFLA_INET_MAX, nla, inet_af_policy, NULL);
  1522. if (err < 0)
  1523. return err;
  1524. if (tb[IFLA_INET_CONF]) {
  1525. nla_for_each_nested(a, tb[IFLA_INET_CONF], rem) {
  1526. int cfgid = nla_type(a);
  1527. if (nla_len(a) < 4)
  1528. return -EINVAL;
  1529. if (cfgid <= 0 || cfgid > IPV4_DEVCONF_MAX)
  1530. return -EINVAL;
  1531. }
  1532. }
  1533. return 0;
  1534. }
  1535. static int inet_set_link_af(struct net_device *dev, const struct nlattr *nla)
  1536. {
  1537. struct in_device *in_dev = __in_dev_get_rcu(dev);
  1538. struct nlattr *a, *tb[IFLA_INET_MAX+1];
  1539. int rem;
  1540. if (!in_dev)
  1541. return -EAFNOSUPPORT;
  1542. if (nla_parse_nested(tb, IFLA_INET_MAX, nla, NULL, NULL) < 0)
  1543. BUG();
  1544. if (tb[IFLA_INET_CONF]) {
  1545. nla_for_each_nested(a, tb[IFLA_INET_CONF], rem)
  1546. ipv4_devconf_set(in_dev, nla_type(a), nla_get_u32(a));
  1547. }
  1548. return 0;
  1549. }
  1550. static int inet_netconf_msgsize_devconf(int type)
  1551. {
  1552. int size = NLMSG_ALIGN(sizeof(struct netconfmsg))
  1553. + nla_total_size(4); /* NETCONFA_IFINDEX */
  1554. bool all = false;
  1555. if (type == NETCONFA_ALL)
  1556. all = true;
  1557. if (all || type == NETCONFA_FORWARDING)
  1558. size += nla_total_size(4);
  1559. if (all || type == NETCONFA_RP_FILTER)
  1560. size += nla_total_size(4);
  1561. if (all || type == NETCONFA_MC_FORWARDING)
  1562. size += nla_total_size(4);
  1563. if (all || type == NETCONFA_BC_FORWARDING)
  1564. size += nla_total_size(4);
  1565. if (all || type == NETCONFA_PROXY_NEIGH)
  1566. size += nla_total_size(4);
  1567. if (all || type == NETCONFA_IGNORE_ROUTES_WITH_LINKDOWN)
  1568. size += nla_total_size(4);
  1569. return size;
  1570. }
  1571. static int inet_netconf_fill_devconf(struct sk_buff *skb, int ifindex,
  1572. struct ipv4_devconf *devconf, u32 portid,
  1573. u32 seq, int event, unsigned int flags,
  1574. int type)
  1575. {
  1576. struct nlmsghdr *nlh;
  1577. struct netconfmsg *ncm;
  1578. bool all = false;
  1579. nlh = nlmsg_put(skb, portid, seq, event, sizeof(struct netconfmsg),
  1580. flags);
  1581. if (!nlh)
  1582. return -EMSGSIZE;
  1583. if (type == NETCONFA_ALL)
  1584. all = true;
  1585. ncm = nlmsg_data(nlh);
  1586. ncm->ncm_family = AF_INET;
  1587. if (nla_put_s32(skb, NETCONFA_IFINDEX, ifindex) < 0)
  1588. goto nla_put_failure;
  1589. if (!devconf)
  1590. goto out;
  1591. if ((all || type == NETCONFA_FORWARDING) &&
  1592. nla_put_s32(skb, NETCONFA_FORWARDING,
  1593. IPV4_DEVCONF(*devconf, FORWARDING)) < 0)
  1594. goto nla_put_failure;
  1595. if ((all || type == NETCONFA_RP_FILTER) &&
  1596. nla_put_s32(skb, NETCONFA_RP_FILTER,
  1597. IPV4_DEVCONF(*devconf, RP_FILTER)) < 0)
  1598. goto nla_put_failure;
  1599. if ((all || type == NETCONFA_MC_FORWARDING) &&
  1600. nla_put_s32(skb, NETCONFA_MC_FORWARDING,
  1601. IPV4_DEVCONF(*devconf, MC_FORWARDING)) < 0)
  1602. goto nla_put_failure;
  1603. if ((all || type == NETCONFA_BC_FORWARDING) &&
  1604. nla_put_s32(skb, NETCONFA_BC_FORWARDING,
  1605. IPV4_DEVCONF(*devconf, BC_FORWARDING)) < 0)
  1606. goto nla_put_failure;
  1607. if ((all || type == NETCONFA_PROXY_NEIGH) &&
  1608. nla_put_s32(skb, NETCONFA_PROXY_NEIGH,
  1609. IPV4_DEVCONF(*devconf, PROXY_ARP)) < 0)
  1610. goto nla_put_failure;
  1611. if ((all || type == NETCONFA_IGNORE_ROUTES_WITH_LINKDOWN) &&
  1612. nla_put_s32(skb, NETCONFA_IGNORE_ROUTES_WITH_LINKDOWN,
  1613. IPV4_DEVCONF(*devconf, IGNORE_ROUTES_WITH_LINKDOWN)) < 0)
  1614. goto nla_put_failure;
  1615. out:
  1616. nlmsg_end(skb, nlh);
  1617. return 0;
  1618. nla_put_failure:
  1619. nlmsg_cancel(skb, nlh);
  1620. return -EMSGSIZE;
  1621. }
  1622. void inet_netconf_notify_devconf(struct net *net, int event, int type,
  1623. int ifindex, struct ipv4_devconf *devconf)
  1624. {
  1625. struct sk_buff *skb;
  1626. int err = -ENOBUFS;
  1627. skb = nlmsg_new(inet_netconf_msgsize_devconf(type), GFP_KERNEL);
  1628. if (!skb)
  1629. goto errout;
  1630. err = inet_netconf_fill_devconf(skb, ifindex, devconf, 0, 0,
  1631. event, 0, type);
  1632. if (err < 0) {
  1633. /* -EMSGSIZE implies BUG in inet_netconf_msgsize_devconf() */
  1634. WARN_ON(err == -EMSGSIZE);
  1635. kfree_skb(skb);
  1636. goto errout;
  1637. }
  1638. rtnl_notify(skb, net, 0, RTNLGRP_IPV4_NETCONF, NULL, GFP_KERNEL);
  1639. return;
  1640. errout:
  1641. if (err < 0)
  1642. rtnl_set_sk_err(net, RTNLGRP_IPV4_NETCONF, err);
  1643. }
  1644. static const struct nla_policy devconf_ipv4_policy[NETCONFA_MAX+1] = {
  1645. [NETCONFA_IFINDEX] = { .len = sizeof(int) },
  1646. [NETCONFA_FORWARDING] = { .len = sizeof(int) },
  1647. [NETCONFA_RP_FILTER] = { .len = sizeof(int) },
  1648. [NETCONFA_PROXY_NEIGH] = { .len = sizeof(int) },
  1649. [NETCONFA_IGNORE_ROUTES_WITH_LINKDOWN] = { .len = sizeof(int) },
  1650. };
  1651. static int inet_netconf_get_devconf(struct sk_buff *in_skb,
  1652. struct nlmsghdr *nlh,
  1653. struct netlink_ext_ack *extack)
  1654. {
  1655. struct net *net = sock_net(in_skb->sk);
  1656. struct nlattr *tb[NETCONFA_MAX+1];
  1657. struct netconfmsg *ncm;
  1658. struct sk_buff *skb;
  1659. struct ipv4_devconf *devconf;
  1660. struct in_device *in_dev;
  1661. struct net_device *dev;
  1662. int ifindex;
  1663. int err;
  1664. err = nlmsg_parse(nlh, sizeof(*ncm), tb, NETCONFA_MAX,
  1665. devconf_ipv4_policy, extack);
  1666. if (err < 0)
  1667. goto errout;
  1668. err = -EINVAL;
  1669. if (!tb[NETCONFA_IFINDEX])
  1670. goto errout;
  1671. ifindex = nla_get_s32(tb[NETCONFA_IFINDEX]);
  1672. switch (ifindex) {
  1673. case NETCONFA_IFINDEX_ALL:
  1674. devconf = net->ipv4.devconf_all;
  1675. break;
  1676. case NETCONFA_IFINDEX_DEFAULT:
  1677. devconf = net->ipv4.devconf_dflt;
  1678. break;
  1679. default:
  1680. dev = __dev_get_by_index(net, ifindex);
  1681. if (!dev)
  1682. goto errout;
  1683. in_dev = __in_dev_get_rtnl(dev);
  1684. if (!in_dev)
  1685. goto errout;
  1686. devconf = &in_dev->cnf;
  1687. break;
  1688. }
  1689. err = -ENOBUFS;
  1690. skb = nlmsg_new(inet_netconf_msgsize_devconf(NETCONFA_ALL), GFP_KERNEL);
  1691. if (!skb)
  1692. goto errout;
  1693. err = inet_netconf_fill_devconf(skb, ifindex, devconf,
  1694. NETLINK_CB(in_skb).portid,
  1695. nlh->nlmsg_seq, RTM_NEWNETCONF, 0,
  1696. NETCONFA_ALL);
  1697. if (err < 0) {
  1698. /* -EMSGSIZE implies BUG in inet_netconf_msgsize_devconf() */
  1699. WARN_ON(err == -EMSGSIZE);
  1700. kfree_skb(skb);
  1701. goto errout;
  1702. }
  1703. err = rtnl_unicast(skb, net, NETLINK_CB(in_skb).portid);
  1704. errout:
  1705. return err;
  1706. }
  1707. static int inet_netconf_dump_devconf(struct sk_buff *skb,
  1708. struct netlink_callback *cb)
  1709. {
  1710. struct net *net = sock_net(skb->sk);
  1711. int h, s_h;
  1712. int idx, s_idx;
  1713. struct net_device *dev;
  1714. struct in_device *in_dev;
  1715. struct hlist_head *head;
  1716. s_h = cb->args[0];
  1717. s_idx = idx = cb->args[1];
  1718. for (h = s_h; h < NETDEV_HASHENTRIES; h++, s_idx = 0) {
  1719. idx = 0;
  1720. head = &net->dev_index_head[h];
  1721. rcu_read_lock();
  1722. cb->seq = atomic_read(&net->ipv4.dev_addr_genid) ^
  1723. net->dev_base_seq;
  1724. hlist_for_each_entry_rcu(dev, head, index_hlist) {
  1725. if (idx < s_idx)
  1726. goto cont;
  1727. in_dev = __in_dev_get_rcu(dev);
  1728. if (!in_dev)
  1729. goto cont;
  1730. if (inet_netconf_fill_devconf(skb, dev->ifindex,
  1731. &in_dev->cnf,
  1732. NETLINK_CB(cb->skb).portid,
  1733. cb->nlh->nlmsg_seq,
  1734. RTM_NEWNETCONF,
  1735. NLM_F_MULTI,
  1736. NETCONFA_ALL) < 0) {
  1737. rcu_read_unlock();
  1738. goto done;
  1739. }
  1740. nl_dump_check_consistent(cb, nlmsg_hdr(skb));
  1741. cont:
  1742. idx++;
  1743. }
  1744. rcu_read_unlock();
  1745. }
  1746. if (h == NETDEV_HASHENTRIES) {
  1747. if (inet_netconf_fill_devconf(skb, NETCONFA_IFINDEX_ALL,
  1748. net->ipv4.devconf_all,
  1749. NETLINK_CB(cb->skb).portid,
  1750. cb->nlh->nlmsg_seq,
  1751. RTM_NEWNETCONF, NLM_F_MULTI,
  1752. NETCONFA_ALL) < 0)
  1753. goto done;
  1754. else
  1755. h++;
  1756. }
  1757. if (h == NETDEV_HASHENTRIES + 1) {
  1758. if (inet_netconf_fill_devconf(skb, NETCONFA_IFINDEX_DEFAULT,
  1759. net->ipv4.devconf_dflt,
  1760. NETLINK_CB(cb->skb).portid,
  1761. cb->nlh->nlmsg_seq,
  1762. RTM_NEWNETCONF, NLM_F_MULTI,
  1763. NETCONFA_ALL) < 0)
  1764. goto done;
  1765. else
  1766. h++;
  1767. }
  1768. done:
  1769. cb->args[0] = h;
  1770. cb->args[1] = idx;
  1771. return skb->len;
  1772. }
  1773. #ifdef CONFIG_SYSCTL
  1774. static void devinet_copy_dflt_conf(struct net *net, int i)
  1775. {
  1776. struct net_device *dev;
  1777. rcu_read_lock();
  1778. for_each_netdev_rcu(net, dev) {
  1779. struct in_device *in_dev;
  1780. in_dev = __in_dev_get_rcu(dev);
  1781. if (in_dev && !test_bit(i, in_dev->cnf.state))
  1782. in_dev->cnf.data[i] = net->ipv4.devconf_dflt->data[i];
  1783. }
  1784. rcu_read_unlock();
  1785. }
  1786. /* called with RTNL locked */
  1787. static void inet_forward_change(struct net *net)
  1788. {
  1789. struct net_device *dev;
  1790. int on = IPV4_DEVCONF_ALL(net, FORWARDING);
  1791. IPV4_DEVCONF_ALL(net, ACCEPT_REDIRECTS) = !on;
  1792. IPV4_DEVCONF_DFLT(net, FORWARDING) = on;
  1793. inet_netconf_notify_devconf(net, RTM_NEWNETCONF,
  1794. NETCONFA_FORWARDING,
  1795. NETCONFA_IFINDEX_ALL,
  1796. net->ipv4.devconf_all);
  1797. inet_netconf_notify_devconf(net, RTM_NEWNETCONF,
  1798. NETCONFA_FORWARDING,
  1799. NETCONFA_IFINDEX_DEFAULT,
  1800. net->ipv4.devconf_dflt);
  1801. for_each_netdev(net, dev) {
  1802. struct in_device *in_dev;
  1803. if (on)
  1804. dev_disable_lro(dev);
  1805. in_dev = __in_dev_get_rtnl(dev);
  1806. if (in_dev) {
  1807. IN_DEV_CONF_SET(in_dev, FORWARDING, on);
  1808. inet_netconf_notify_devconf(net, RTM_NEWNETCONF,
  1809. NETCONFA_FORWARDING,
  1810. dev->ifindex, &in_dev->cnf);
  1811. }
  1812. }
  1813. }
  1814. static int devinet_conf_ifindex(struct net *net, struct ipv4_devconf *cnf)
  1815. {
  1816. if (cnf == net->ipv4.devconf_dflt)
  1817. return NETCONFA_IFINDEX_DEFAULT;
  1818. else if (cnf == net->ipv4.devconf_all)
  1819. return NETCONFA_IFINDEX_ALL;
  1820. else {
  1821. struct in_device *idev
  1822. = container_of(cnf, struct in_device, cnf);
  1823. return idev->dev->ifindex;
  1824. }
  1825. }
  1826. static int devinet_conf_proc(struct ctl_table *ctl, int write,
  1827. void __user *buffer,
  1828. size_t *lenp, loff_t *ppos)
  1829. {
  1830. int old_value = *(int *)ctl->data;
  1831. int ret = proc_dointvec(ctl, write, buffer, lenp, ppos);
  1832. int new_value = *(int *)ctl->data;
  1833. if (write) {
  1834. struct ipv4_devconf *cnf = ctl->extra1;
  1835. struct net *net = ctl->extra2;
  1836. int i = (int *)ctl->data - cnf->data;
  1837. int ifindex;
  1838. set_bit(i, cnf->state);
  1839. if (cnf == net->ipv4.devconf_dflt)
  1840. devinet_copy_dflt_conf(net, i);
  1841. if (i == IPV4_DEVCONF_ACCEPT_LOCAL - 1 ||
  1842. i == IPV4_DEVCONF_ROUTE_LOCALNET - 1)
  1843. if ((new_value == 0) && (old_value != 0))
  1844. rt_cache_flush(net);
  1845. if (i == IPV4_DEVCONF_BC_FORWARDING - 1 &&
  1846. new_value != old_value)
  1847. rt_cache_flush(net);
  1848. if (i == IPV4_DEVCONF_RP_FILTER - 1 &&
  1849. new_value != old_value) {
  1850. ifindex = devinet_conf_ifindex(net, cnf);
  1851. inet_netconf_notify_devconf(net, RTM_NEWNETCONF,
  1852. NETCONFA_RP_FILTER,
  1853. ifindex, cnf);
  1854. }
  1855. if (i == IPV4_DEVCONF_PROXY_ARP - 1 &&
  1856. new_value != old_value) {
  1857. ifindex = devinet_conf_ifindex(net, cnf);
  1858. inet_netconf_notify_devconf(net, RTM_NEWNETCONF,
  1859. NETCONFA_PROXY_NEIGH,
  1860. ifindex, cnf);
  1861. }
  1862. if (i == IPV4_DEVCONF_IGNORE_ROUTES_WITH_LINKDOWN - 1 &&
  1863. new_value != old_value) {
  1864. ifindex = devinet_conf_ifindex(net, cnf);
  1865. inet_netconf_notify_devconf(net, RTM_NEWNETCONF,
  1866. NETCONFA_IGNORE_ROUTES_WITH_LINKDOWN,
  1867. ifindex, cnf);
  1868. }
  1869. }
  1870. return ret;
  1871. }
  1872. static int devinet_sysctl_forward(struct ctl_table *ctl, int write,
  1873. void __user *buffer,
  1874. size_t *lenp, loff_t *ppos)
  1875. {
  1876. int *valp = ctl->data;
  1877. int val = *valp;
  1878. loff_t pos = *ppos;
  1879. int ret = proc_dointvec(ctl, write, buffer, lenp, ppos);
  1880. if (write && *valp != val) {
  1881. struct net *net = ctl->extra2;
  1882. if (valp != &IPV4_DEVCONF_DFLT(net, FORWARDING)) {
  1883. if (!rtnl_trylock()) {
  1884. /* Restore the original values before restarting */
  1885. *valp = val;
  1886. *ppos = pos;
  1887. return restart_syscall();
  1888. }
  1889. if (valp == &IPV4_DEVCONF_ALL(net, FORWARDING)) {
  1890. inet_forward_change(net);
  1891. } else {
  1892. struct ipv4_devconf *cnf = ctl->extra1;
  1893. struct in_device *idev =
  1894. container_of(cnf, struct in_device, cnf);
  1895. if (*valp)
  1896. dev_disable_lro(idev->dev);
  1897. inet_netconf_notify_devconf(net, RTM_NEWNETCONF,
  1898. NETCONFA_FORWARDING,
  1899. idev->dev->ifindex,
  1900. cnf);
  1901. }
  1902. rtnl_unlock();
  1903. rt_cache_flush(net);
  1904. } else
  1905. inet_netconf_notify_devconf(net, RTM_NEWNETCONF,
  1906. NETCONFA_FORWARDING,
  1907. NETCONFA_IFINDEX_DEFAULT,
  1908. net->ipv4.devconf_dflt);
  1909. }
  1910. return ret;
  1911. }
  1912. static int ipv4_doint_and_flush(struct ctl_table *ctl, int write,
  1913. void __user *buffer,
  1914. size_t *lenp, loff_t *ppos)
  1915. {
  1916. int *valp = ctl->data;
  1917. int val = *valp;
  1918. int ret = proc_dointvec(ctl, write, buffer, lenp, ppos);
  1919. struct net *net = ctl->extra2;
  1920. if (write && *valp != val)
  1921. rt_cache_flush(net);
  1922. return ret;
  1923. }
  1924. #define DEVINET_SYSCTL_ENTRY(attr, name, mval, proc) \
  1925. { \
  1926. .procname = name, \
  1927. .data = ipv4_devconf.data + \
  1928. IPV4_DEVCONF_ ## attr - 1, \
  1929. .maxlen = sizeof(int), \
  1930. .mode = mval, \
  1931. .proc_handler = proc, \
  1932. .extra1 = &ipv4_devconf, \
  1933. }
  1934. #define DEVINET_SYSCTL_RW_ENTRY(attr, name) \
  1935. DEVINET_SYSCTL_ENTRY(attr, name, 0644, devinet_conf_proc)
  1936. #define DEVINET_SYSCTL_RO_ENTRY(attr, name) \
  1937. DEVINET_SYSCTL_ENTRY(attr, name, 0444, devinet_conf_proc)
  1938. #define DEVINET_SYSCTL_COMPLEX_ENTRY(attr, name, proc) \
  1939. DEVINET_SYSCTL_ENTRY(attr, name, 0644, proc)
  1940. #define DEVINET_SYSCTL_FLUSHING_ENTRY(attr, name) \
  1941. DEVINET_SYSCTL_COMPLEX_ENTRY(attr, name, ipv4_doint_and_flush)
  1942. static struct devinet_sysctl_table {
  1943. struct ctl_table_header *sysctl_header;
  1944. struct ctl_table devinet_vars[__IPV4_DEVCONF_MAX];
  1945. } devinet_sysctl = {
  1946. .devinet_vars = {
  1947. DEVINET_SYSCTL_COMPLEX_ENTRY(FORWARDING, "forwarding",
  1948. devinet_sysctl_forward),
  1949. DEVINET_SYSCTL_RO_ENTRY(MC_FORWARDING, "mc_forwarding"),
  1950. DEVINET_SYSCTL_RW_ENTRY(BC_FORWARDING, "bc_forwarding"),
  1951. DEVINET_SYSCTL_RW_ENTRY(ACCEPT_REDIRECTS, "accept_redirects"),
  1952. DEVINET_SYSCTL_RW_ENTRY(SECURE_REDIRECTS, "secure_redirects"),
  1953. DEVINET_SYSCTL_RW_ENTRY(SHARED_MEDIA, "shared_media"),
  1954. DEVINET_SYSCTL_RW_ENTRY(RP_FILTER, "rp_filter"),
  1955. DEVINET_SYSCTL_RW_ENTRY(SEND_REDIRECTS, "send_redirects"),
  1956. DEVINET_SYSCTL_RW_ENTRY(ACCEPT_SOURCE_ROUTE,
  1957. "accept_source_route"),
  1958. DEVINET_SYSCTL_RW_ENTRY(ACCEPT_LOCAL, "accept_local"),
  1959. DEVINET_SYSCTL_RW_ENTRY(SRC_VMARK, "src_valid_mark"),
  1960. DEVINET_SYSCTL_RW_ENTRY(PROXY_ARP, "proxy_arp"),
  1961. DEVINET_SYSCTL_RW_ENTRY(MEDIUM_ID, "medium_id"),
  1962. DEVINET_SYSCTL_RW_ENTRY(BOOTP_RELAY, "bootp_relay"),
  1963. DEVINET_SYSCTL_RW_ENTRY(LOG_MARTIANS, "log_martians"),
  1964. DEVINET_SYSCTL_RW_ENTRY(TAG, "tag"),
  1965. DEVINET_SYSCTL_RW_ENTRY(ARPFILTER, "arp_filter"),
  1966. DEVINET_SYSCTL_RW_ENTRY(ARP_ANNOUNCE, "arp_announce"),
  1967. DEVINET_SYSCTL_RW_ENTRY(ARP_IGNORE, "arp_ignore"),
  1968. DEVINET_SYSCTL_RW_ENTRY(ARP_ACCEPT, "arp_accept"),
  1969. DEVINET_SYSCTL_RW_ENTRY(ARP_NOTIFY, "arp_notify"),
  1970. DEVINET_SYSCTL_RW_ENTRY(PROXY_ARP_PVLAN, "proxy_arp_pvlan"),
  1971. DEVINET_SYSCTL_RW_ENTRY(FORCE_IGMP_VERSION,
  1972. "force_igmp_version"),
  1973. DEVINET_SYSCTL_RW_ENTRY(IGMPV2_UNSOLICITED_REPORT_INTERVAL,
  1974. "igmpv2_unsolicited_report_interval"),
  1975. DEVINET_SYSCTL_RW_ENTRY(IGMPV3_UNSOLICITED_REPORT_INTERVAL,
  1976. "igmpv3_unsolicited_report_interval"),
  1977. DEVINET_SYSCTL_RW_ENTRY(IGNORE_ROUTES_WITH_LINKDOWN,
  1978. "ignore_routes_with_linkdown"),
  1979. DEVINET_SYSCTL_RW_ENTRY(DROP_GRATUITOUS_ARP,
  1980. "drop_gratuitous_arp"),
  1981. DEVINET_SYSCTL_FLUSHING_ENTRY(NOXFRM, "disable_xfrm"),
  1982. DEVINET_SYSCTL_FLUSHING_ENTRY(NOPOLICY, "disable_policy"),
  1983. DEVINET_SYSCTL_FLUSHING_ENTRY(PROMOTE_SECONDARIES,
  1984. "promote_secondaries"),
  1985. DEVINET_SYSCTL_FLUSHING_ENTRY(ROUTE_LOCALNET,
  1986. "route_localnet"),
  1987. DEVINET_SYSCTL_FLUSHING_ENTRY(DROP_UNICAST_IN_L2_MULTICAST,
  1988. "drop_unicast_in_l2_multicast"),
  1989. },
  1990. };
  1991. static int __devinet_sysctl_register(struct net *net, char *dev_name,
  1992. int ifindex, struct ipv4_devconf *p)
  1993. {
  1994. int i;
  1995. struct devinet_sysctl_table *t;
  1996. char path[sizeof("net/ipv4/conf/") + IFNAMSIZ];
  1997. t = kmemdup(&devinet_sysctl, sizeof(*t), GFP_KERNEL);
  1998. if (!t)
  1999. goto out;
  2000. for (i = 0; i < ARRAY_SIZE(t->devinet_vars) - 1; i++) {
  2001. t->devinet_vars[i].data += (char *)p - (char *)&ipv4_devconf;
  2002. t->devinet_vars[i].extra1 = p;
  2003. t->devinet_vars[i].extra2 = net;
  2004. }
  2005. snprintf(path, sizeof(path), "net/ipv4/conf/%s", dev_name);
  2006. t->sysctl_header = register_net_sysctl(net, path, t->devinet_vars);
  2007. if (!t->sysctl_header)
  2008. goto free;
  2009. p->sysctl = t;
  2010. inet_netconf_notify_devconf(net, RTM_NEWNETCONF, NETCONFA_ALL,
  2011. ifindex, p);
  2012. return 0;
  2013. free:
  2014. kfree(t);
  2015. out:
  2016. return -ENOBUFS;
  2017. }
  2018. static void __devinet_sysctl_unregister(struct net *net,
  2019. struct ipv4_devconf *cnf, int ifindex)
  2020. {
  2021. struct devinet_sysctl_table *t = cnf->sysctl;
  2022. if (t) {
  2023. cnf->sysctl = NULL;
  2024. unregister_net_sysctl_table(t->sysctl_header);
  2025. kfree(t);
  2026. }
  2027. inet_netconf_notify_devconf(net, RTM_DELNETCONF, 0, ifindex, NULL);
  2028. }
  2029. static int devinet_sysctl_register(struct in_device *idev)
  2030. {
  2031. int err;
  2032. if (!sysctl_dev_name_is_allowed(idev->dev->name))
  2033. return -EINVAL;
  2034. err = neigh_sysctl_register(idev->dev, idev->arp_parms, NULL);
  2035. if (err)
  2036. return err;
  2037. err = __devinet_sysctl_register(dev_net(idev->dev), idev->dev->name,
  2038. idev->dev->ifindex, &idev->cnf);
  2039. if (err)
  2040. neigh_sysctl_unregister(idev->arp_parms);
  2041. return err;
  2042. }
  2043. static void devinet_sysctl_unregister(struct in_device *idev)
  2044. {
  2045. struct net *net = dev_net(idev->dev);
  2046. __devinet_sysctl_unregister(net, &idev->cnf, idev->dev->ifindex);
  2047. neigh_sysctl_unregister(idev->arp_parms);
  2048. }
  2049. static struct ctl_table ctl_forward_entry[] = {
  2050. {
  2051. .procname = "ip_forward",
  2052. .data = &ipv4_devconf.data[
  2053. IPV4_DEVCONF_FORWARDING - 1],
  2054. .maxlen = sizeof(int),
  2055. .mode = 0644,
  2056. .proc_handler = devinet_sysctl_forward,
  2057. .extra1 = &ipv4_devconf,
  2058. .extra2 = &init_net,
  2059. },
  2060. { },
  2061. };
  2062. #endif
  2063. static __net_init int devinet_init_net(struct net *net)
  2064. {
  2065. int err;
  2066. struct ipv4_devconf *all, *dflt;
  2067. #ifdef CONFIG_SYSCTL
  2068. struct ctl_table *tbl = ctl_forward_entry;
  2069. struct ctl_table_header *forw_hdr;
  2070. #endif
  2071. err = -ENOMEM;
  2072. all = &ipv4_devconf;
  2073. dflt = &ipv4_devconf_dflt;
  2074. if (!net_eq(net, &init_net)) {
  2075. all = kmemdup(all, sizeof(ipv4_devconf), GFP_KERNEL);
  2076. if (!all)
  2077. goto err_alloc_all;
  2078. dflt = kmemdup(dflt, sizeof(ipv4_devconf_dflt), GFP_KERNEL);
  2079. if (!dflt)
  2080. goto err_alloc_dflt;
  2081. #ifdef CONFIG_SYSCTL
  2082. tbl = kmemdup(tbl, sizeof(ctl_forward_entry), GFP_KERNEL);
  2083. if (!tbl)
  2084. goto err_alloc_ctl;
  2085. tbl[0].data = &all->data[IPV4_DEVCONF_FORWARDING - 1];
  2086. tbl[0].extra1 = all;
  2087. tbl[0].extra2 = net;
  2088. #endif
  2089. }
  2090. #ifdef CONFIG_SYSCTL
  2091. err = __devinet_sysctl_register(net, "all", NETCONFA_IFINDEX_ALL, all);
  2092. if (err < 0)
  2093. goto err_reg_all;
  2094. err = __devinet_sysctl_register(net, "default",
  2095. NETCONFA_IFINDEX_DEFAULT, dflt);
  2096. if (err < 0)
  2097. goto err_reg_dflt;
  2098. err = -ENOMEM;
  2099. forw_hdr = register_net_sysctl(net, "net/ipv4", tbl);
  2100. if (!forw_hdr)
  2101. goto err_reg_ctl;
  2102. net->ipv4.forw_hdr = forw_hdr;
  2103. #endif
  2104. net->ipv4.devconf_all = all;
  2105. net->ipv4.devconf_dflt = dflt;
  2106. return 0;
  2107. #ifdef CONFIG_SYSCTL
  2108. err_reg_ctl:
  2109. __devinet_sysctl_unregister(net, dflt, NETCONFA_IFINDEX_DEFAULT);
  2110. err_reg_dflt:
  2111. __devinet_sysctl_unregister(net, all, NETCONFA_IFINDEX_ALL);
  2112. err_reg_all:
  2113. if (tbl != ctl_forward_entry)
  2114. kfree(tbl);
  2115. err_alloc_ctl:
  2116. #endif
  2117. if (dflt != &ipv4_devconf_dflt)
  2118. kfree(dflt);
  2119. err_alloc_dflt:
  2120. if (all != &ipv4_devconf)
  2121. kfree(all);
  2122. err_alloc_all:
  2123. return err;
  2124. }
  2125. static __net_exit void devinet_exit_net(struct net *net)
  2126. {
  2127. #ifdef CONFIG_SYSCTL
  2128. struct ctl_table *tbl;
  2129. tbl = net->ipv4.forw_hdr->ctl_table_arg;
  2130. unregister_net_sysctl_table(net->ipv4.forw_hdr);
  2131. __devinet_sysctl_unregister(net, net->ipv4.devconf_dflt,
  2132. NETCONFA_IFINDEX_DEFAULT);
  2133. __devinet_sysctl_unregister(net, net->ipv4.devconf_all,
  2134. NETCONFA_IFINDEX_ALL);
  2135. kfree(tbl);
  2136. #endif
  2137. kfree(net->ipv4.devconf_dflt);
  2138. kfree(net->ipv4.devconf_all);
  2139. }
  2140. static __net_initdata struct pernet_operations devinet_ops = {
  2141. .init = devinet_init_net,
  2142. .exit = devinet_exit_net,
  2143. };
  2144. static struct rtnl_af_ops inet_af_ops __read_mostly = {
  2145. .family = AF_INET,
  2146. .fill_link_af = inet_fill_link_af,
  2147. .get_link_af_size = inet_get_link_af_size,
  2148. .validate_link_af = inet_validate_link_af,
  2149. .set_link_af = inet_set_link_af,
  2150. };
  2151. void __init devinet_init(void)
  2152. {
  2153. int i;
  2154. for (i = 0; i < IN4_ADDR_HSIZE; i++)
  2155. INIT_HLIST_HEAD(&inet_addr_lst[i]);
  2156. register_pernet_subsys(&devinet_ops);
  2157. register_gifconf(PF_INET, inet_gifconf);
  2158. register_netdevice_notifier(&ip_netdev_notifier);
  2159. queue_delayed_work(system_power_efficient_wq, &check_lifetime_work, 0);
  2160. rtnl_af_register(&inet_af_ops);
  2161. rtnl_register(PF_INET, RTM_NEWADDR, inet_rtm_newaddr, NULL, 0);
  2162. rtnl_register(PF_INET, RTM_DELADDR, inet_rtm_deladdr, NULL, 0);
  2163. rtnl_register(PF_INET, RTM_GETADDR, NULL, inet_dump_ifaddr, 0);
  2164. rtnl_register(PF_INET, RTM_GETNETCONF, inet_netconf_get_devconf,
  2165. inet_netconf_dump_devconf, 0);
  2166. }