]>
Commit | Line | Data |
---|---|---|
1da177e4 LT |
1 | /* |
2 | * net/sched/act_api.c Packet action API. | |
3 | * | |
4 | * This program is free software; you can redistribute it and/or | |
5 | * modify it under the terms of the GNU General Public License | |
6 | * as published by the Free Software Foundation; either version | |
7 | * 2 of the License, or (at your option) any later version. | |
8 | * | |
9 | * Author: Jamal Hadi Salim | |
10 | * | |
11 | * | |
12 | */ | |
13 | ||
1da177e4 LT |
14 | #include <linux/types.h> |
15 | #include <linux/kernel.h> | |
1da177e4 | 16 | #include <linux/string.h> |
1da177e4 | 17 | #include <linux/errno.h> |
5a0e3ad6 | 18 | #include <linux/slab.h> |
1da177e4 | 19 | #include <linux/skbuff.h> |
1da177e4 LT |
20 | #include <linux/init.h> |
21 | #include <linux/kmod.h> | |
ab27cfb8 | 22 | #include <linux/err.h> |
3a9a231d | 23 | #include <linux/module.h> |
b854272b DL |
24 | #include <net/net_namespace.h> |
25 | #include <net/sock.h> | |
1da177e4 | 26 | #include <net/sch_generic.h> |
1045ba77 | 27 | #include <net/pkt_cls.h> |
1da177e4 | 28 | #include <net/act_api.h> |
dc5fc579 | 29 | #include <net/netlink.h> |
1da177e4 | 30 | |
db50514f JP |
31 | static void tcf_action_goto_chain_exec(const struct tc_action *a, |
32 | struct tcf_result *res) | |
33 | { | |
ee3bbfe8 | 34 | const struct tcf_chain *chain = rcu_dereference_bh(a->goto_chain); |
db50514f JP |
35 | |
36 | res->goto_tp = rcu_dereference_bh(chain->filter_chain); | |
37 | } | |
38 | ||
eec94fdb VB |
39 | static void tcf_free_cookie_rcu(struct rcu_head *p) |
40 | { | |
41 | struct tc_cookie *cookie = container_of(p, struct tc_cookie, rcu); | |
42 | ||
43 | kfree(cookie->data); | |
44 | kfree(cookie); | |
45 | } | |
46 | ||
47 | static void tcf_set_action_cookie(struct tc_cookie __rcu **old_cookie, | |
48 | struct tc_cookie *new_cookie) | |
49 | { | |
50 | struct tc_cookie *old; | |
51 | ||
0dbc81ea | 52 | old = xchg((__force struct tc_cookie **)old_cookie, new_cookie); |
eec94fdb VB |
53 | if (old) |
54 | call_rcu(&old->rcu, tcf_free_cookie_rcu); | |
55 | } | |
56 | ||
85d0966f DC |
57 | int tcf_action_check_ctrlact(int action, struct tcf_proto *tp, |
58 | struct tcf_chain **newchain, | |
59 | struct netlink_ext_ack *extack) | |
60 | { | |
61 | int opcode = TC_ACT_EXT_OPCODE(action), ret = -EINVAL; | |
62 | u32 chain_index; | |
63 | ||
64 | if (!opcode) | |
65 | ret = action > TC_ACT_VALUE_MAX ? -EINVAL : 0; | |
66 | else if (opcode <= TC_ACT_EXT_OPCODE_MAX || action == TC_ACT_UNSPEC) | |
67 | ret = 0; | |
68 | if (ret) { | |
69 | NL_SET_ERR_MSG(extack, "invalid control action"); | |
70 | goto end; | |
71 | } | |
72 | ||
73 | if (TC_ACT_EXT_CMP(action, TC_ACT_GOTO_CHAIN)) { | |
74 | chain_index = action & TC_ACT_EXT_VAL_MASK; | |
75 | if (!tp || !newchain) { | |
76 | ret = -EINVAL; | |
77 | NL_SET_ERR_MSG(extack, | |
78 | "can't goto NULL proto/chain"); | |
79 | goto end; | |
80 | } | |
81 | *newchain = tcf_chain_get_by_act(tp->chain->block, chain_index); | |
82 | if (!*newchain) { | |
83 | ret = -ENOMEM; | |
84 | NL_SET_ERR_MSG(extack, | |
85 | "can't allocate goto_chain"); | |
86 | } | |
87 | } | |
88 | end: | |
89 | return ret; | |
90 | } | |
91 | EXPORT_SYMBOL(tcf_action_check_ctrlact); | |
92 | ||
93 | struct tcf_chain *tcf_action_set_ctrlact(struct tc_action *a, int action, | |
ee3bbfe8 | 94 | struct tcf_chain *goto_chain) |
85d0966f | 95 | { |
85d0966f | 96 | a->tcfa_action = action; |
ee3bbfe8 DC |
97 | rcu_swap_protected(a->goto_chain, goto_chain, 1); |
98 | return goto_chain; | |
85d0966f DC |
99 | } |
100 | EXPORT_SYMBOL(tcf_action_set_ctrlact); | |
101 | ||
d7fb60b9 CW |
102 | /* XXX: For standalone actions, we don't need a RCU grace period either, because |
103 | * actions are always connected to filters and filters are already destroyed in | |
104 | * RCU callbacks, so after a RCU grace period actions are already disconnected | |
105 | * from filters. Readers later can not find us. | |
106 | */ | |
107 | static void free_tcf(struct tc_action *p) | |
519c818e | 108 | { |
ee3bbfe8 | 109 | struct tcf_chain *chain = rcu_dereference_protected(p->goto_chain, 1); |
85d0966f | 110 | |
519c818e | 111 | free_percpu(p->cpu_bstats); |
28169aba | 112 | free_percpu(p->cpu_bstats_hw); |
519c818e | 113 | free_percpu(p->cpu_qstats); |
1045ba77 | 114 | |
eec94fdb | 115 | tcf_set_action_cookie(&p->act_cookie, NULL); |
85d0966f DC |
116 | if (chain) |
117 | tcf_chain_put_by_act(chain); | |
1045ba77 | 118 | |
519c818e ED |
119 | kfree(p); |
120 | } | |
121 | ||
16af6067 | 122 | static void tcf_action_cleanup(struct tc_action *p) |
e9ce1cd3 | 123 | { |
16af6067 VB |
124 | if (p->ops->cleanup) |
125 | p->ops->cleanup(p); | |
126 | ||
1c0d32fd | 127 | gen_kill_estimator(&p->tcfa_rate_est); |
d7fb60b9 | 128 | free_tcf(p); |
e9ce1cd3 | 129 | } |
e9ce1cd3 | 130 | |
16af6067 VB |
131 | static int __tcf_action_put(struct tc_action *p, bool bind) |
132 | { | |
133 | struct tcf_idrinfo *idrinfo = p->idrinfo; | |
134 | ||
95278dda | 135 | if (refcount_dec_and_mutex_lock(&p->tcfa_refcnt, &idrinfo->lock)) { |
16af6067 VB |
136 | if (bind) |
137 | atomic_dec(&p->tcfa_bindcnt); | |
138 | idr_remove(&idrinfo->action_idr, p->tcfa_index); | |
95278dda | 139 | mutex_unlock(&idrinfo->lock); |
16af6067 VB |
140 | |
141 | tcf_action_cleanup(p); | |
142 | return 1; | |
143 | } | |
144 | ||
145 | if (bind) | |
146 | atomic_dec(&p->tcfa_bindcnt); | |
147 | ||
148 | return 0; | |
149 | } | |
150 | ||
65a206c0 | 151 | int __tcf_idr_release(struct tc_action *p, bool bind, bool strict) |
e9ce1cd3 DM |
152 | { |
153 | int ret = 0; | |
154 | ||
036bb443 VB |
155 | /* Release with strict==1 and bind==0 is only called through act API |
156 | * interface (classifiers always bind). Only case when action with | |
157 | * positive reference count and zero bind count can exist is when it was | |
158 | * also created with act API (unbinding last classifier will destroy the | |
159 | * action if it was created by classifier). So only case when bind count | |
160 | * can be changed after initial check is when unbound action is | |
161 | * destroyed by act API while classifier binds to action with same id | |
162 | * concurrently. This result either creation of new action(same behavior | |
163 | * as before), or reusing existing action if concurrent process | |
164 | * increments reference count before action is deleted. Both scenarios | |
165 | * are acceptable. | |
166 | */ | |
e9ce1cd3 | 167 | if (p) { |
16af6067 | 168 | if (!bind && strict && atomic_read(&p->tcfa_bindcnt) > 0) |
55334a5d | 169 | return -EPERM; |
e9ce1cd3 | 170 | |
16af6067 | 171 | if (__tcf_action_put(p, bind)) |
1d4150c0 | 172 | ret = ACT_P_DELETED; |
e9ce1cd3 | 173 | } |
28e6b67f | 174 | |
e9ce1cd3 DM |
175 | return ret; |
176 | } | |
65a206c0 | 177 | EXPORT_SYMBOL(__tcf_idr_release); |
e9ce1cd3 | 178 | |
4e76e75d RM |
179 | static size_t tcf_action_shared_attrs_size(const struct tc_action *act) |
180 | { | |
e0479b67 | 181 | struct tc_cookie *act_cookie; |
4e76e75d RM |
182 | u32 cookie_len = 0; |
183 | ||
e0479b67 VB |
184 | rcu_read_lock(); |
185 | act_cookie = rcu_dereference(act->act_cookie); | |
186 | ||
187 | if (act_cookie) | |
188 | cookie_len = nla_total_size(act_cookie->len); | |
189 | rcu_read_unlock(); | |
4e76e75d RM |
190 | |
191 | return nla_total_size(0) /* action number nested */ | |
192 | + nla_total_size(IFNAMSIZ) /* TCA_ACT_KIND */ | |
193 | + cookie_len /* TCA_ACT_COOKIE */ | |
194 | + nla_total_size(0) /* TCA_ACT_STATS nested */ | |
195 | /* TCA_STATS_BASIC */ | |
196 | + nla_total_size_64bit(sizeof(struct gnet_stats_basic)) | |
197 | /* TCA_STATS_QUEUE */ | |
198 | + nla_total_size_64bit(sizeof(struct gnet_stats_queue)) | |
199 | + nla_total_size(0) /* TCA_OPTIONS nested */ | |
200 | + nla_total_size(sizeof(struct tcf_t)); /* TCA_GACT_TM */ | |
201 | } | |
202 | ||
203 | static size_t tcf_action_full_attrs_size(size_t sz) | |
204 | { | |
205 | return NLMSG_HDRLEN /* struct nlmsghdr */ | |
206 | + sizeof(struct tcamsg) | |
207 | + nla_total_size(0) /* TCA_ACT_TAB nested */ | |
208 | + sz; | |
209 | } | |
210 | ||
211 | static size_t tcf_action_fill_size(const struct tc_action *act) | |
212 | { | |
213 | size_t sz = tcf_action_shared_attrs_size(act); | |
214 | ||
215 | if (act->ops->get_fill_size) | |
216 | return act->ops->get_fill_size(act) + sz; | |
217 | return sz; | |
218 | } | |
219 | ||
65a206c0 | 220 | static int tcf_dump_walker(struct tcf_idrinfo *idrinfo, struct sk_buff *skb, |
a85a970a | 221 | struct netlink_callback *cb) |
e9ce1cd3 | 222 | { |
65a206c0 | 223 | int err = 0, index = -1, s_i = 0, n_i = 0; |
90825b23 | 224 | u32 act_flags = cb->args[2]; |
e62e484d | 225 | unsigned long jiffy_since = cb->args[3]; |
4b3550ef | 226 | struct nlattr *nest; |
65a206c0 CM |
227 | struct idr *idr = &idrinfo->action_idr; |
228 | struct tc_action *p; | |
229 | unsigned long id = 1; | |
e9ce1cd3 | 230 | |
95278dda | 231 | mutex_lock(&idrinfo->lock); |
e9ce1cd3 DM |
232 | |
233 | s_i = cb->args[0]; | |
234 | ||
7a457577 | 235 | idr_for_each_entry_ul(idr, p, id) { |
65a206c0 CM |
236 | index++; |
237 | if (index < s_i) | |
238 | continue; | |
239 | ||
240 | if (jiffy_since && | |
241 | time_after(jiffy_since, | |
242 | (unsigned long)p->tcfa_tm.lastuse)) | |
243 | continue; | |
244 | ||
ae0be8de | 245 | nest = nla_nest_start_noflag(skb, n_i); |
734549eb CD |
246 | if (!nest) { |
247 | index--; | |
65a206c0 | 248 | goto nla_put_failure; |
734549eb | 249 | } |
65a206c0 CM |
250 | err = tcf_action_dump_1(skb, p, 0, 0); |
251 | if (err < 0) { | |
252 | index--; | |
253 | nlmsg_trim(skb, nest); | |
254 | goto done; | |
e9ce1cd3 | 255 | } |
65a206c0 CM |
256 | nla_nest_end(skb, nest); |
257 | n_i++; | |
258 | if (!(act_flags & TCA_FLAG_LARGE_DUMP_ON) && | |
259 | n_i >= TCA_ACT_MAX_PRIO) | |
260 | goto done; | |
e9ce1cd3 DM |
261 | } |
262 | done: | |
e62e484d JHS |
263 | if (index >= 0) |
264 | cb->args[0] = index + 1; | |
265 | ||
95278dda | 266 | mutex_unlock(&idrinfo->lock); |
90825b23 | 267 | if (n_i) { |
90825b23 JHS |
268 | if (act_flags & TCA_FLAG_LARGE_DUMP_ON) |
269 | cb->args[1] = n_i; | |
270 | } | |
e9ce1cd3 DM |
271 | return n_i; |
272 | ||
7ba699c6 | 273 | nla_put_failure: |
4b3550ef | 274 | nla_nest_cancel(skb, nest); |
e9ce1cd3 DM |
275 | goto done; |
276 | } | |
277 | ||
ec3ed293 VB |
278 | static int tcf_idr_release_unsafe(struct tc_action *p) |
279 | { | |
280 | if (atomic_read(&p->tcfa_bindcnt) > 0) | |
281 | return -EPERM; | |
282 | ||
283 | if (refcount_dec_and_test(&p->tcfa_refcnt)) { | |
284 | idr_remove(&p->idrinfo->action_idr, p->tcfa_index); | |
285 | tcf_action_cleanup(p); | |
286 | return ACT_P_DELETED; | |
287 | } | |
288 | ||
289 | return 0; | |
290 | } | |
291 | ||
65a206c0 | 292 | static int tcf_del_walker(struct tcf_idrinfo *idrinfo, struct sk_buff *skb, |
a85a970a | 293 | const struct tc_action_ops *ops) |
e9ce1cd3 | 294 | { |
4b3550ef | 295 | struct nlattr *nest; |
65a206c0 | 296 | int n_i = 0; |
55334a5d | 297 | int ret = -EINVAL; |
65a206c0 CM |
298 | struct idr *idr = &idrinfo->action_idr; |
299 | struct tc_action *p; | |
300 | unsigned long id = 1; | |
e9ce1cd3 | 301 | |
ae0be8de | 302 | nest = nla_nest_start_noflag(skb, 0); |
4b3550ef PM |
303 | if (nest == NULL) |
304 | goto nla_put_failure; | |
a85a970a | 305 | if (nla_put_string(skb, TCA_KIND, ops->kind)) |
1b34ec43 | 306 | goto nla_put_failure; |
65a206c0 | 307 | |
95278dda | 308 | mutex_lock(&idrinfo->lock); |
7a457577 | 309 | idr_for_each_entry_ul(idr, p, id) { |
ec3ed293 | 310 | ret = tcf_idr_release_unsafe(p); |
65a206c0 | 311 | if (ret == ACT_P_DELETED) { |
255cd50f | 312 | module_put(ops->owner); |
65a206c0 CM |
313 | n_i++; |
314 | } else if (ret < 0) { | |
95278dda | 315 | mutex_unlock(&idrinfo->lock); |
65a206c0 | 316 | goto nla_put_failure; |
e9ce1cd3 DM |
317 | } |
318 | } | |
95278dda | 319 | mutex_unlock(&idrinfo->lock); |
ec3ed293 | 320 | |
1b34ec43 DM |
321 | if (nla_put_u32(skb, TCA_FCNT, n_i)) |
322 | goto nla_put_failure; | |
4b3550ef | 323 | nla_nest_end(skb, nest); |
e9ce1cd3 DM |
324 | |
325 | return n_i; | |
7ba699c6 | 326 | nla_put_failure: |
4b3550ef | 327 | nla_nest_cancel(skb, nest); |
55334a5d | 328 | return ret; |
e9ce1cd3 DM |
329 | } |
330 | ||
ddf97ccd WC |
331 | int tcf_generic_walker(struct tc_action_net *tn, struct sk_buff *skb, |
332 | struct netlink_callback *cb, int type, | |
b3620145 AA |
333 | const struct tc_action_ops *ops, |
334 | struct netlink_ext_ack *extack) | |
e9ce1cd3 | 335 | { |
65a206c0 | 336 | struct tcf_idrinfo *idrinfo = tn->idrinfo; |
ddf97ccd | 337 | |
e9ce1cd3 | 338 | if (type == RTM_DELACTION) { |
65a206c0 | 339 | return tcf_del_walker(idrinfo, skb, ops); |
e9ce1cd3 | 340 | } else if (type == RTM_GETACTION) { |
65a206c0 | 341 | return tcf_dump_walker(idrinfo, skb, cb); |
e9ce1cd3 | 342 | } else { |
b3620145 AA |
343 | WARN(1, "tcf_generic_walker: unknown command %d\n", type); |
344 | NL_SET_ERR_MSG(extack, "tcf_generic_walker: unknown command"); | |
e9ce1cd3 DM |
345 | return -EINVAL; |
346 | } | |
347 | } | |
ddf97ccd | 348 | EXPORT_SYMBOL(tcf_generic_walker); |
e9ce1cd3 | 349 | |
7d485c45 | 350 | int tcf_idr_search(struct tc_action_net *tn, struct tc_action **a, u32 index) |
e9ce1cd3 | 351 | { |
3f7c72bc VB |
352 | struct tcf_idrinfo *idrinfo = tn->idrinfo; |
353 | struct tc_action *p; | |
e9ce1cd3 | 354 | |
95278dda | 355 | mutex_lock(&idrinfo->lock); |
322d884b | 356 | p = idr_find(&idrinfo->action_idr, index); |
7d485c45 | 357 | if (IS_ERR(p)) |
0190c1d4 | 358 | p = NULL; |
7d485c45 | 359 | else if (p) |
3f7c72bc | 360 | refcount_inc(&p->tcfa_refcnt); |
95278dda | 361 | mutex_unlock(&idrinfo->lock); |
e9ce1cd3 | 362 | |
3f7c72bc VB |
363 | if (p) { |
364 | *a = p; | |
365 | return true; | |
366 | } | |
367 | return false; | |
e9ce1cd3 | 368 | } |
65a206c0 | 369 | EXPORT_SYMBOL(tcf_idr_search); |
e9ce1cd3 | 370 | |
97a3f84f | 371 | static int tcf_idr_delete_index(struct tcf_idrinfo *idrinfo, u32 index) |
2a2ea349 | 372 | { |
2a2ea349 VB |
373 | struct tc_action *p; |
374 | int ret = 0; | |
375 | ||
95278dda | 376 | mutex_lock(&idrinfo->lock); |
2a2ea349 VB |
377 | p = idr_find(&idrinfo->action_idr, index); |
378 | if (!p) { | |
95278dda | 379 | mutex_unlock(&idrinfo->lock); |
2a2ea349 VB |
380 | return -ENOENT; |
381 | } | |
382 | ||
383 | if (!atomic_read(&p->tcfa_bindcnt)) { | |
384 | if (refcount_dec_and_test(&p->tcfa_refcnt)) { | |
385 | struct module *owner = p->ops->owner; | |
386 | ||
387 | WARN_ON(p != idr_remove(&idrinfo->action_idr, | |
388 | p->tcfa_index)); | |
95278dda | 389 | mutex_unlock(&idrinfo->lock); |
2a2ea349 | 390 | |
16af6067 | 391 | tcf_action_cleanup(p); |
2a2ea349 VB |
392 | module_put(owner); |
393 | return 0; | |
394 | } | |
395 | ret = 0; | |
396 | } else { | |
397 | ret = -EPERM; | |
398 | } | |
399 | ||
95278dda | 400 | mutex_unlock(&idrinfo->lock); |
2a2ea349 VB |
401 | return ret; |
402 | } | |
2a2ea349 | 403 | |
65a206c0 CM |
404 | int tcf_idr_create(struct tc_action_net *tn, u32 index, struct nlattr *est, |
405 | struct tc_action **a, const struct tc_action_ops *ops, | |
406 | int bind, bool cpustats) | |
e9ce1cd3 | 407 | { |
ec0595cc | 408 | struct tc_action *p = kzalloc(ops->size, GFP_KERNEL); |
65a206c0 | 409 | struct tcf_idrinfo *idrinfo = tn->idrinfo; |
519c818e | 410 | int err = -ENOMEM; |
e9ce1cd3 DM |
411 | |
412 | if (unlikely(!p)) | |
86062033 | 413 | return -ENOMEM; |
036bb443 | 414 | refcount_set(&p->tcfa_refcnt, 1); |
e9ce1cd3 | 415 | if (bind) |
036bb443 | 416 | atomic_set(&p->tcfa_bindcnt, 1); |
e9ce1cd3 | 417 | |
519c818e ED |
418 | if (cpustats) { |
419 | p->cpu_bstats = netdev_alloc_pcpu_stats(struct gnet_stats_basic_cpu); | |
339913a8 | 420 | if (!p->cpu_bstats) |
519c818e | 421 | goto err1; |
28169aba EC |
422 | p->cpu_bstats_hw = netdev_alloc_pcpu_stats(struct gnet_stats_basic_cpu); |
423 | if (!p->cpu_bstats_hw) | |
424 | goto err2; | |
339913a8 MW |
425 | p->cpu_qstats = alloc_percpu(struct gnet_stats_queue); |
426 | if (!p->cpu_qstats) | |
28169aba | 427 | goto err3; |
519c818e | 428 | } |
ec0595cc | 429 | spin_lock_init(&p->tcfa_lock); |
339913a8 | 430 | p->tcfa_index = index; |
ec0595cc WC |
431 | p->tcfa_tm.install = jiffies; |
432 | p->tcfa_tm.lastuse = jiffies; | |
433 | p->tcfa_tm.firstuse = 0; | |
0e991ec6 | 434 | if (est) { |
ec0595cc WC |
435 | err = gen_new_estimator(&p->tcfa_bstats, p->cpu_bstats, |
436 | &p->tcfa_rate_est, | |
437 | &p->tcfa_lock, NULL, est); | |
339913a8 | 438 | if (err) |
28169aba | 439 | goto err4; |
0e991ec6 SH |
440 | } |
441 | ||
65a206c0 | 442 | p->idrinfo = idrinfo; |
ec0595cc | 443 | p->ops = ops; |
ec0595cc | 444 | *a = p; |
86062033 | 445 | return 0; |
28169aba | 446 | err4: |
339913a8 | 447 | free_percpu(p->cpu_qstats); |
28169aba EC |
448 | err3: |
449 | free_percpu(p->cpu_bstats_hw); | |
339913a8 MW |
450 | err2: |
451 | free_percpu(p->cpu_bstats); | |
452 | err1: | |
453 | kfree(p); | |
454 | return err; | |
e9ce1cd3 | 455 | } |
65a206c0 | 456 | EXPORT_SYMBOL(tcf_idr_create); |
e9ce1cd3 | 457 | |
65a206c0 | 458 | void tcf_idr_insert(struct tc_action_net *tn, struct tc_action *a) |
e9ce1cd3 | 459 | { |
65a206c0 | 460 | struct tcf_idrinfo *idrinfo = tn->idrinfo; |
e9ce1cd3 | 461 | |
95278dda | 462 | mutex_lock(&idrinfo->lock); |
0190c1d4 VB |
463 | /* Replace ERR_PTR(-EBUSY) allocated by tcf_idr_check_alloc */ |
464 | WARN_ON(!IS_ERR(idr_replace(&idrinfo->action_idr, a, a->tcfa_index))); | |
95278dda | 465 | mutex_unlock(&idrinfo->lock); |
e9ce1cd3 | 466 | } |
65a206c0 | 467 | EXPORT_SYMBOL(tcf_idr_insert); |
1da177e4 | 468 | |
0190c1d4 VB |
469 | /* Cleanup idr index that was allocated but not initialized. */ |
470 | ||
471 | void tcf_idr_cleanup(struct tc_action_net *tn, u32 index) | |
472 | { | |
473 | struct tcf_idrinfo *idrinfo = tn->idrinfo; | |
474 | ||
95278dda | 475 | mutex_lock(&idrinfo->lock); |
0190c1d4 VB |
476 | /* Remove ERR_PTR(-EBUSY) allocated by tcf_idr_check_alloc */ |
477 | WARN_ON(!IS_ERR(idr_remove(&idrinfo->action_idr, index))); | |
95278dda | 478 | mutex_unlock(&idrinfo->lock); |
0190c1d4 VB |
479 | } |
480 | EXPORT_SYMBOL(tcf_idr_cleanup); | |
481 | ||
482 | /* Check if action with specified index exists. If actions is found, increments | |
483 | * its reference and bind counters, and return 1. Otherwise insert temporary | |
484 | * error pointer (to prevent concurrent users from inserting actions with same | |
485 | * index) and return 0. | |
486 | */ | |
487 | ||
488 | int tcf_idr_check_alloc(struct tc_action_net *tn, u32 *index, | |
489 | struct tc_action **a, int bind) | |
490 | { | |
491 | struct tcf_idrinfo *idrinfo = tn->idrinfo; | |
492 | struct tc_action *p; | |
493 | int ret; | |
494 | ||
495 | again: | |
95278dda | 496 | mutex_lock(&idrinfo->lock); |
0190c1d4 VB |
497 | if (*index) { |
498 | p = idr_find(&idrinfo->action_idr, *index); | |
499 | if (IS_ERR(p)) { | |
500 | /* This means that another process allocated | |
501 | * index but did not assign the pointer yet. | |
502 | */ | |
95278dda | 503 | mutex_unlock(&idrinfo->lock); |
0190c1d4 VB |
504 | goto again; |
505 | } | |
506 | ||
507 | if (p) { | |
508 | refcount_inc(&p->tcfa_refcnt); | |
509 | if (bind) | |
510 | atomic_inc(&p->tcfa_bindcnt); | |
511 | *a = p; | |
512 | ret = 1; | |
513 | } else { | |
514 | *a = NULL; | |
515 | ret = idr_alloc_u32(&idrinfo->action_idr, NULL, index, | |
95278dda | 516 | *index, GFP_KERNEL); |
0190c1d4 VB |
517 | if (!ret) |
518 | idr_replace(&idrinfo->action_idr, | |
519 | ERR_PTR(-EBUSY), *index); | |
520 | } | |
521 | } else { | |
522 | *index = 1; | |
523 | *a = NULL; | |
524 | ret = idr_alloc_u32(&idrinfo->action_idr, NULL, index, | |
95278dda | 525 | UINT_MAX, GFP_KERNEL); |
0190c1d4 VB |
526 | if (!ret) |
527 | idr_replace(&idrinfo->action_idr, ERR_PTR(-EBUSY), | |
528 | *index); | |
529 | } | |
95278dda | 530 | mutex_unlock(&idrinfo->lock); |
0190c1d4 VB |
531 | return ret; |
532 | } | |
533 | EXPORT_SYMBOL(tcf_idr_check_alloc); | |
534 | ||
65a206c0 CM |
535 | void tcf_idrinfo_destroy(const struct tc_action_ops *ops, |
536 | struct tcf_idrinfo *idrinfo) | |
1d4150c0 | 537 | { |
65a206c0 CM |
538 | struct idr *idr = &idrinfo->action_idr; |
539 | struct tc_action *p; | |
540 | int ret; | |
541 | unsigned long id = 1; | |
1d4150c0 | 542 | |
7a457577 | 543 | idr_for_each_entry_ul(idr, p, id) { |
65a206c0 CM |
544 | ret = __tcf_idr_release(p, false, true); |
545 | if (ret == ACT_P_DELETED) | |
546 | module_put(ops->owner); | |
547 | else if (ret < 0) | |
548 | return; | |
1d4150c0 | 549 | } |
65a206c0 | 550 | idr_destroy(&idrinfo->action_idr); |
1d4150c0 | 551 | } |
65a206c0 | 552 | EXPORT_SYMBOL(tcf_idrinfo_destroy); |
1d4150c0 | 553 | |
1f747c26 | 554 | static LIST_HEAD(act_base); |
1da177e4 LT |
555 | static DEFINE_RWLOCK(act_mod_lock); |
556 | ||
ddf97ccd WC |
557 | int tcf_register_action(struct tc_action_ops *act, |
558 | struct pernet_operations *ops) | |
1da177e4 | 559 | { |
1f747c26 | 560 | struct tc_action_ops *a; |
ddf97ccd | 561 | int ret; |
1da177e4 | 562 | |
ddf97ccd | 563 | if (!act->act || !act->dump || !act->init || !act->walk || !act->lookup) |
76c82d7a JHS |
564 | return -EINVAL; |
565 | ||
ab102b80 WC |
566 | /* We have to register pernet ops before making the action ops visible, |
567 | * otherwise tcf_action_init_1() could get a partially initialized | |
568 | * netns. | |
569 | */ | |
570 | ret = register_pernet_subsys(ops); | |
571 | if (ret) | |
572 | return ret; | |
573 | ||
1da177e4 | 574 | write_lock(&act_mod_lock); |
1f747c26 | 575 | list_for_each_entry(a, &act_base, head) { |
eddd2cf1 | 576 | if (act->id == a->id || (strcmp(act->kind, a->kind) == 0)) { |
1da177e4 | 577 | write_unlock(&act_mod_lock); |
ab102b80 | 578 | unregister_pernet_subsys(ops); |
1da177e4 LT |
579 | return -EEXIST; |
580 | } | |
581 | } | |
1f747c26 | 582 | list_add_tail(&act->head, &act_base); |
1da177e4 | 583 | write_unlock(&act_mod_lock); |
ddf97ccd | 584 | |
1da177e4 LT |
585 | return 0; |
586 | } | |
62e3ba1b | 587 | EXPORT_SYMBOL(tcf_register_action); |
1da177e4 | 588 | |
ddf97ccd WC |
589 | int tcf_unregister_action(struct tc_action_ops *act, |
590 | struct pernet_operations *ops) | |
1da177e4 | 591 | { |
1f747c26 | 592 | struct tc_action_ops *a; |
1da177e4 LT |
593 | int err = -ENOENT; |
594 | ||
595 | write_lock(&act_mod_lock); | |
a792866a ED |
596 | list_for_each_entry(a, &act_base, head) { |
597 | if (a == act) { | |
598 | list_del(&act->head); | |
599 | err = 0; | |
1da177e4 | 600 | break; |
a792866a | 601 | } |
1da177e4 LT |
602 | } |
603 | write_unlock(&act_mod_lock); | |
ab102b80 WC |
604 | if (!err) |
605 | unregister_pernet_subsys(ops); | |
1da177e4 LT |
606 | return err; |
607 | } | |
62e3ba1b | 608 | EXPORT_SYMBOL(tcf_unregister_action); |
1da177e4 LT |
609 | |
610 | /* lookup by name */ | |
611 | static struct tc_action_ops *tc_lookup_action_n(char *kind) | |
612 | { | |
a792866a | 613 | struct tc_action_ops *a, *res = NULL; |
1da177e4 LT |
614 | |
615 | if (kind) { | |
616 | read_lock(&act_mod_lock); | |
1f747c26 | 617 | list_for_each_entry(a, &act_base, head) { |
1da177e4 | 618 | if (strcmp(kind, a->kind) == 0) { |
a792866a ED |
619 | if (try_module_get(a->owner)) |
620 | res = a; | |
1da177e4 LT |
621 | break; |
622 | } | |
623 | } | |
624 | read_unlock(&act_mod_lock); | |
625 | } | |
a792866a | 626 | return res; |
1da177e4 LT |
627 | } |
628 | ||
7ba699c6 PM |
629 | /* lookup by nlattr */ |
630 | static struct tc_action_ops *tc_lookup_action(struct nlattr *kind) | |
1da177e4 | 631 | { |
a792866a | 632 | struct tc_action_ops *a, *res = NULL; |
1da177e4 LT |
633 | |
634 | if (kind) { | |
635 | read_lock(&act_mod_lock); | |
1f747c26 | 636 | list_for_each_entry(a, &act_base, head) { |
7ba699c6 | 637 | if (nla_strcmp(kind, a->kind) == 0) { |
a792866a ED |
638 | if (try_module_get(a->owner)) |
639 | res = a; | |
1da177e4 LT |
640 | break; |
641 | } | |
642 | } | |
643 | read_unlock(&act_mod_lock); | |
644 | } | |
a792866a | 645 | return res; |
1da177e4 | 646 | } |
1da177e4 | 647 | |
e0ee84de JHS |
648 | /*TCA_ACT_MAX_PRIO is 32, there count upto 32 */ |
649 | #define TCA_ACT_MAX_PRIO_MASK 0x1FF | |
22dc13c8 WC |
650 | int tcf_action_exec(struct sk_buff *skb, struct tc_action **actions, |
651 | int nr_actions, struct tcf_result *res) | |
1da177e4 | 652 | { |
e0ee84de JHS |
653 | u32 jmp_prgcnt = 0; |
654 | u32 jmp_ttl = TCA_ACT_MAX_PRIO; /*matches actions per filter */ | |
ec1a9cca JP |
655 | int i; |
656 | int ret = TC_ACT_OK; | |
1da177e4 | 657 | |
e7246e12 WB |
658 | if (skb_skip_tc_classify(skb)) |
659 | return TC_ACT_OK; | |
660 | ||
e0ee84de | 661 | restart_act_graph: |
22dc13c8 WC |
662 | for (i = 0; i < nr_actions; i++) { |
663 | const struct tc_action *a = actions[i]; | |
664 | ||
e0ee84de JHS |
665 | if (jmp_prgcnt > 0) { |
666 | jmp_prgcnt -= 1; | |
667 | continue; | |
668 | } | |
1da177e4 | 669 | repeat: |
63acd680 | 670 | ret = a->ops->act(skb, a, res); |
63acd680 JHS |
671 | if (ret == TC_ACT_REPEAT) |
672 | goto repeat; /* we need a ttl - JHS */ | |
e0ee84de | 673 | |
9da3242e | 674 | if (TC_ACT_EXT_CMP(ret, TC_ACT_JUMP)) { |
e0ee84de JHS |
675 | jmp_prgcnt = ret & TCA_ACT_MAX_PRIO_MASK; |
676 | if (!jmp_prgcnt || (jmp_prgcnt > nr_actions)) { | |
677 | /* faulty opcode, stop pipeline */ | |
678 | return TC_ACT_OK; | |
679 | } else { | |
680 | jmp_ttl -= 1; | |
681 | if (jmp_ttl > 0) | |
682 | goto restart_act_graph; | |
683 | else /* faulty graph, stop pipeline */ | |
684 | return TC_ACT_OK; | |
685 | } | |
db50514f | 686 | } else if (TC_ACT_EXT_CMP(ret, TC_ACT_GOTO_CHAIN)) { |
ee3bbfe8 DC |
687 | if (unlikely(!rcu_access_pointer(a->goto_chain))) { |
688 | net_warn_ratelimited("can't go to NULL chain!\n"); | |
689 | return TC_ACT_SHOT; | |
690 | } | |
db50514f | 691 | tcf_action_goto_chain_exec(a, res); |
e0ee84de JHS |
692 | } |
693 | ||
63acd680 | 694 | if (ret != TC_ACT_PIPE) |
e7246e12 | 695 | break; |
1da177e4 | 696 | } |
e0ee84de | 697 | |
1da177e4 LT |
698 | return ret; |
699 | } | |
62e3ba1b | 700 | EXPORT_SYMBOL(tcf_action_exec); |
1da177e4 | 701 | |
90b73b77 | 702 | int tcf_action_destroy(struct tc_action *actions[], int bind) |
1da177e4 | 703 | { |
255cd50f | 704 | const struct tc_action_ops *ops; |
90b73b77 VB |
705 | struct tc_action *a; |
706 | int ret = 0, i; | |
1da177e4 | 707 | |
90b73b77 VB |
708 | for (i = 0; i < TCA_ACT_MAX_PRIO && actions[i]; i++) { |
709 | a = actions[i]; | |
710 | actions[i] = NULL; | |
255cd50f | 711 | ops = a->ops; |
65a206c0 | 712 | ret = __tcf_idr_release(a, bind, true); |
55334a5d | 713 | if (ret == ACT_P_DELETED) |
255cd50f | 714 | module_put(ops->owner); |
55334a5d WC |
715 | else if (ret < 0) |
716 | return ret; | |
1da177e4 | 717 | } |
55334a5d | 718 | return ret; |
1da177e4 LT |
719 | } |
720 | ||
97763dc0 PA |
721 | static int tcf_action_destroy_1(struct tc_action *a, int bind) |
722 | { | |
723 | struct tc_action *actions[] = { a, NULL }; | |
724 | ||
725 | return tcf_action_destroy(actions, bind); | |
726 | } | |
727 | ||
16af6067 VB |
728 | static int tcf_action_put(struct tc_action *p) |
729 | { | |
730 | return __tcf_action_put(p, false); | |
731 | } | |
732 | ||
edfaf94f | 733 | /* Put all actions in this array, skip those NULL's. */ |
90b73b77 | 734 | static void tcf_action_put_many(struct tc_action *actions[]) |
cae422f3 | 735 | { |
90b73b77 | 736 | int i; |
cae422f3 | 737 | |
edfaf94f | 738 | for (i = 0; i < TCA_ACT_MAX_PRIO; i++) { |
90b73b77 | 739 | struct tc_action *a = actions[i]; |
edfaf94f | 740 | const struct tc_action_ops *ops; |
cae422f3 | 741 | |
edfaf94f CW |
742 | if (!a) |
743 | continue; | |
744 | ops = a->ops; | |
cae422f3 VB |
745 | if (tcf_action_put(a)) |
746 | module_put(ops->owner); | |
747 | } | |
748 | } | |
749 | ||
1da177e4 LT |
750 | int |
751 | tcf_action_dump_old(struct sk_buff *skb, struct tc_action *a, int bind, int ref) | |
752 | { | |
1da177e4 LT |
753 | return a->ops->dump(skb, a, bind, ref); |
754 | } | |
755 | ||
756 | int | |
757 | tcf_action_dump_1(struct sk_buff *skb, struct tc_action *a, int bind, int ref) | |
758 | { | |
759 | int err = -EINVAL; | |
27a884dc | 760 | unsigned char *b = skb_tail_pointer(skb); |
4b3550ef | 761 | struct nlattr *nest; |
eec94fdb | 762 | struct tc_cookie *cookie; |
1da177e4 | 763 | |
1b34ec43 DM |
764 | if (nla_put_string(skb, TCA_KIND, a->ops->kind)) |
765 | goto nla_put_failure; | |
1da177e4 | 766 | if (tcf_action_copy_stats(skb, a, 0)) |
7ba699c6 | 767 | goto nla_put_failure; |
eec94fdb VB |
768 | |
769 | rcu_read_lock(); | |
770 | cookie = rcu_dereference(a->act_cookie); | |
771 | if (cookie) { | |
772 | if (nla_put(skb, TCA_ACT_COOKIE, cookie->len, cookie->data)) { | |
773 | rcu_read_unlock(); | |
1045ba77 | 774 | goto nla_put_failure; |
eec94fdb | 775 | } |
1045ba77 | 776 | } |
eec94fdb | 777 | rcu_read_unlock(); |
1045ba77 | 778 | |
ae0be8de | 779 | nest = nla_nest_start_noflag(skb, TCA_OPTIONS); |
4b3550ef PM |
780 | if (nest == NULL) |
781 | goto nla_put_failure; | |
cc7ec456 ED |
782 | err = tcf_action_dump_old(skb, a, bind, ref); |
783 | if (err > 0) { | |
4b3550ef | 784 | nla_nest_end(skb, nest); |
1da177e4 LT |
785 | return err; |
786 | } | |
787 | ||
7ba699c6 | 788 | nla_put_failure: |
dc5fc579 | 789 | nlmsg_trim(skb, b); |
1da177e4 LT |
790 | return -1; |
791 | } | |
62e3ba1b | 792 | EXPORT_SYMBOL(tcf_action_dump_1); |
1da177e4 | 793 | |
90b73b77 | 794 | int tcf_action_dump(struct sk_buff *skb, struct tc_action *actions[], |
0b0f43fe | 795 | int bind, int ref) |
1da177e4 LT |
796 | { |
797 | struct tc_action *a; | |
90b73b77 | 798 | int err = -EINVAL, i; |
4b3550ef | 799 | struct nlattr *nest; |
1da177e4 | 800 | |
90b73b77 VB |
801 | for (i = 0; i < TCA_ACT_MAX_PRIO && actions[i]; i++) { |
802 | a = actions[i]; | |
ae0be8de | 803 | nest = nla_nest_start_noflag(skb, a->order); |
4b3550ef PM |
804 | if (nest == NULL) |
805 | goto nla_put_failure; | |
1da177e4 LT |
806 | err = tcf_action_dump_1(skb, a, bind, ref); |
807 | if (err < 0) | |
4fe683f5 | 808 | goto errout; |
4b3550ef | 809 | nla_nest_end(skb, nest); |
1da177e4 LT |
810 | } |
811 | ||
812 | return 0; | |
813 | ||
7ba699c6 | 814 | nla_put_failure: |
4fe683f5 TG |
815 | err = -EINVAL; |
816 | errout: | |
4b3550ef | 817 | nla_nest_cancel(skb, nest); |
4fe683f5 | 818 | return err; |
1da177e4 LT |
819 | } |
820 | ||
e0535ce5 | 821 | static struct tc_cookie *nla_memdup_cookie(struct nlattr **tb) |
1045ba77 | 822 | { |
e0535ce5 WB |
823 | struct tc_cookie *c = kzalloc(sizeof(*c), GFP_KERNEL); |
824 | if (!c) | |
825 | return NULL; | |
826 | ||
827 | c->data = nla_memdup(tb[TCA_ACT_COOKIE], GFP_KERNEL); | |
828 | if (!c->data) { | |
829 | kfree(c); | |
830 | return NULL; | |
1045ba77 | 831 | } |
e0535ce5 | 832 | c->len = nla_len(tb[TCA_ACT_COOKIE]); |
1045ba77 | 833 | |
e0535ce5 | 834 | return c; |
1045ba77 JHS |
835 | } |
836 | ||
9fb9f251 JP |
837 | struct tc_action *tcf_action_init_1(struct net *net, struct tcf_proto *tp, |
838 | struct nlattr *nla, struct nlattr *est, | |
aea0d727 | 839 | char *name, int ovr, int bind, |
789871bb | 840 | bool rtnl_held, |
aea0d727 | 841 | struct netlink_ext_ack *extack) |
1da177e4 LT |
842 | { |
843 | struct tc_action *a; | |
844 | struct tc_action_ops *a_o; | |
e0535ce5 | 845 | struct tc_cookie *cookie = NULL; |
1da177e4 | 846 | char act_name[IFNAMSIZ]; |
cc7ec456 | 847 | struct nlattr *tb[TCA_ACT_MAX + 1]; |
7ba699c6 | 848 | struct nlattr *kind; |
ab27cfb8 | 849 | int err; |
1da177e4 | 850 | |
1da177e4 | 851 | if (name == NULL) { |
84ae017a | 852 | err = nla_parse_nested(tb, TCA_ACT_MAX, nla, NULL, extack); |
cee63723 | 853 | if (err < 0) |
1da177e4 | 854 | goto err_out; |
cee63723 | 855 | err = -EINVAL; |
7ba699c6 | 856 | kind = tb[TCA_ACT_KIND]; |
84ae017a AA |
857 | if (!kind) { |
858 | NL_SET_ERR_MSG(extack, "TC action kind must be specified"); | |
1da177e4 | 859 | goto err_out; |
84ae017a AA |
860 | } |
861 | if (nla_strlcpy(act_name, kind, IFNAMSIZ) >= IFNAMSIZ) { | |
862 | NL_SET_ERR_MSG(extack, "TC action name too long"); | |
1da177e4 | 863 | goto err_out; |
84ae017a | 864 | } |
e0535ce5 WB |
865 | if (tb[TCA_ACT_COOKIE]) { |
866 | int cklen = nla_len(tb[TCA_ACT_COOKIE]); | |
867 | ||
84ae017a AA |
868 | if (cklen > TC_COOKIE_MAX_SIZE) { |
869 | NL_SET_ERR_MSG(extack, "TC cookie size above the maximum"); | |
e0535ce5 | 870 | goto err_out; |
84ae017a | 871 | } |
e0535ce5 WB |
872 | |
873 | cookie = nla_memdup_cookie(tb); | |
874 | if (!cookie) { | |
84ae017a | 875 | NL_SET_ERR_MSG(extack, "No memory to generate TC cookie"); |
e0535ce5 WB |
876 | err = -ENOMEM; |
877 | goto err_out; | |
878 | } | |
879 | } | |
1da177e4 | 880 | } else { |
84ae017a AA |
881 | if (strlcpy(act_name, name, IFNAMSIZ) >= IFNAMSIZ) { |
882 | NL_SET_ERR_MSG(extack, "TC action name too long"); | |
883 | err = -EINVAL; | |
1da177e4 | 884 | goto err_out; |
84ae017a | 885 | } |
1da177e4 LT |
886 | } |
887 | ||
888 | a_o = tc_lookup_action_n(act_name); | |
889 | if (a_o == NULL) { | |
95a5afca | 890 | #ifdef CONFIG_MODULES |
789871bb VB |
891 | if (rtnl_held) |
892 | rtnl_unlock(); | |
4bba3925 | 893 | request_module("act_%s", act_name); |
789871bb VB |
894 | if (rtnl_held) |
895 | rtnl_lock(); | |
1da177e4 LT |
896 | |
897 | a_o = tc_lookup_action_n(act_name); | |
898 | ||
899 | /* We dropped the RTNL semaphore in order to | |
900 | * perform the module load. So, even if we | |
901 | * succeeded in loading the module we have to | |
902 | * tell the caller to replay the request. We | |
903 | * indicate this using -EAGAIN. | |
904 | */ | |
905 | if (a_o != NULL) { | |
ab27cfb8 | 906 | err = -EAGAIN; |
1da177e4 LT |
907 | goto err_mod; |
908 | } | |
909 | #endif | |
84ae017a | 910 | NL_SET_ERR_MSG(extack, "Failed to load TC action module"); |
ab27cfb8 | 911 | err = -ENOENT; |
1da177e4 LT |
912 | goto err_out; |
913 | } | |
914 | ||
1da177e4 LT |
915 | /* backward compatibility for policer */ |
916 | if (name == NULL) | |
589dad6d | 917 | err = a_o->init(net, tb[TCA_ACT_OPTIONS], est, &a, ovr, bind, |
85d0966f | 918 | rtnl_held, tp, extack); |
1da177e4 | 919 | else |
789871bb | 920 | err = a_o->init(net, nla, est, &a, ovr, bind, rtnl_held, |
85d0966f | 921 | tp, extack); |
ab27cfb8 | 922 | if (err < 0) |
a85a970a | 923 | goto err_mod; |
1da177e4 | 924 | |
eec94fdb VB |
925 | if (!name && tb[TCA_ACT_COOKIE]) |
926 | tcf_set_action_cookie(&a->act_cookie, cookie); | |
1045ba77 | 927 | |
1da177e4 | 928 | /* module count goes up only when brand new policy is created |
cc7ec456 ED |
929 | * if it exists and is only bound to in a_o->init() then |
930 | * ACT_P_CREATED is not returned (a zero is). | |
931 | */ | |
ab27cfb8 | 932 | if (err != ACT_P_CREATED) |
1da177e4 | 933 | module_put(a_o->owner); |
1da177e4 | 934 | |
85d0966f | 935 | if (TC_ACT_EXT_CMP(a->tcfa_action, TC_ACT_GOTO_CHAIN) && |
ee3bbfe8 | 936 | !rcu_access_pointer(a->goto_chain)) { |
97763dc0 | 937 | tcf_action_destroy_1(a, bind); |
85d0966f | 938 | NL_SET_ERR_MSG(extack, "can't use goto chain with NULL chain"); |
97763dc0 | 939 | return ERR_PTR(-EINVAL); |
802bfb19 PA |
940 | } |
941 | ||
1da177e4 LT |
942 | return a; |
943 | ||
1da177e4 LT |
944 | err_mod: |
945 | module_put(a_o->owner); | |
946 | err_out: | |
e0535ce5 WB |
947 | if (cookie) { |
948 | kfree(cookie->data); | |
949 | kfree(cookie); | |
950 | } | |
ab27cfb8 | 951 | return ERR_PTR(err); |
1da177e4 LT |
952 | } |
953 | ||
90b73b77 VB |
954 | /* Returns numbers of initialized actions or negative error. */ |
955 | ||
9fb9f251 JP |
956 | int tcf_action_init(struct net *net, struct tcf_proto *tp, struct nlattr *nla, |
957 | struct nlattr *est, char *name, int ovr, int bind, | |
90b73b77 | 958 | struct tc_action *actions[], size_t *attr_size, |
789871bb | 959 | bool rtnl_held, struct netlink_ext_ack *extack) |
1da177e4 | 960 | { |
cc7ec456 | 961 | struct nlattr *tb[TCA_ACT_MAX_PRIO + 1]; |
33be6271 | 962 | struct tc_action *act; |
4e76e75d | 963 | size_t sz = 0; |
cee63723 | 964 | int err; |
1da177e4 LT |
965 | int i; |
966 | ||
84ae017a | 967 | err = nla_parse_nested(tb, TCA_ACT_MAX_PRIO, nla, NULL, extack); |
cee63723 | 968 | if (err < 0) |
33be6271 | 969 | return err; |
1da177e4 | 970 | |
7ba699c6 | 971 | for (i = 1; i <= TCA_ACT_MAX_PRIO && tb[i]; i++) { |
aea0d727 | 972 | act = tcf_action_init_1(net, tp, tb[i], est, name, ovr, bind, |
789871bb | 973 | rtnl_held, extack); |
33be6271 WC |
974 | if (IS_ERR(act)) { |
975 | err = PTR_ERR(act); | |
1da177e4 | 976 | goto err; |
33be6271 | 977 | } |
7ba699c6 | 978 | act->order = i; |
4e76e75d | 979 | sz += tcf_action_fill_size(act); |
90b73b77 VB |
980 | /* Start from index 0 */ |
981 | actions[i - 1] = act; | |
1da177e4 | 982 | } |
aecc5cef | 983 | |
4e76e75d | 984 | *attr_size = tcf_action_full_attrs_size(sz); |
90b73b77 | 985 | return i - 1; |
1da177e4 LT |
986 | |
987 | err: | |
33be6271 WC |
988 | tcf_action_destroy(actions, bind); |
989 | return err; | |
1da177e4 LT |
990 | } |
991 | ||
ec0595cc | 992 | int tcf_action_copy_stats(struct sk_buff *skb, struct tc_action *p, |
1da177e4 LT |
993 | int compat_mode) |
994 | { | |
995 | int err = 0; | |
996 | struct gnet_dump d; | |
10297b99 | 997 | |
7eb8896d | 998 | if (p == NULL) |
1da177e4 LT |
999 | goto errout; |
1000 | ||
1001 | /* compat_mode being true specifies a call that is supposed | |
06fe9fb4 | 1002 | * to add additional backward compatibility statistic TLVs. |
1da177e4 LT |
1003 | */ |
1004 | if (compat_mode) { | |
ec0595cc | 1005 | if (p->type == TCA_OLD_COMPAT) |
1da177e4 | 1006 | err = gnet_stats_start_copy_compat(skb, 0, |
9854518e ND |
1007 | TCA_STATS, |
1008 | TCA_XSTATS, | |
ec0595cc | 1009 | &p->tcfa_lock, &d, |
9854518e | 1010 | TCA_PAD); |
1da177e4 LT |
1011 | else |
1012 | return 0; | |
1013 | } else | |
1014 | err = gnet_stats_start_copy(skb, TCA_ACT_STATS, | |
ec0595cc | 1015 | &p->tcfa_lock, &d, TCA_ACT_PAD); |
1da177e4 LT |
1016 | |
1017 | if (err < 0) | |
1018 | goto errout; | |
1019 | ||
ec0595cc | 1020 | if (gnet_stats_copy_basic(NULL, &d, p->cpu_bstats, &p->tcfa_bstats) < 0 || |
28169aba EC |
1021 | gnet_stats_copy_basic_hw(NULL, &d, p->cpu_bstats_hw, |
1022 | &p->tcfa_bstats_hw) < 0 || | |
1c0d32fd | 1023 | gnet_stats_copy_rate_est(&d, &p->tcfa_rate_est) < 0 || |
519c818e | 1024 | gnet_stats_copy_queue(&d, p->cpu_qstats, |
ec0595cc WC |
1025 | &p->tcfa_qstats, |
1026 | p->tcfa_qstats.qlen) < 0) | |
1da177e4 LT |
1027 | goto errout; |
1028 | ||
1029 | if (gnet_stats_finish_copy(&d) < 0) | |
1030 | goto errout; | |
1031 | ||
1032 | return 0; | |
1033 | ||
1034 | errout: | |
1035 | return -1; | |
1036 | } | |
1037 | ||
90b73b77 | 1038 | static int tca_get_fill(struct sk_buff *skb, struct tc_action *actions[], |
0b0f43fe JHS |
1039 | u32 portid, u32 seq, u16 flags, int event, int bind, |
1040 | int ref) | |
1da177e4 LT |
1041 | { |
1042 | struct tcamsg *t; | |
1043 | struct nlmsghdr *nlh; | |
27a884dc | 1044 | unsigned char *b = skb_tail_pointer(skb); |
4b3550ef | 1045 | struct nlattr *nest; |
1da177e4 | 1046 | |
15e47304 | 1047 | nlh = nlmsg_put(skb, portid, seq, event, sizeof(*t), flags); |
8b00a53c DM |
1048 | if (!nlh) |
1049 | goto out_nlmsg_trim; | |
1050 | t = nlmsg_data(nlh); | |
1da177e4 | 1051 | t->tca_family = AF_UNSPEC; |
9ef1d4c7 PM |
1052 | t->tca__pad1 = 0; |
1053 | t->tca__pad2 = 0; | |
10297b99 | 1054 | |
ae0be8de | 1055 | nest = nla_nest_start_noflag(skb, TCA_ACT_TAB); |
1af85155 | 1056 | if (!nest) |
8b00a53c | 1057 | goto out_nlmsg_trim; |
1da177e4 | 1058 | |
33be6271 | 1059 | if (tcf_action_dump(skb, actions, bind, ref) < 0) |
8b00a53c | 1060 | goto out_nlmsg_trim; |
1da177e4 | 1061 | |
4b3550ef | 1062 | nla_nest_end(skb, nest); |
10297b99 | 1063 | |
27a884dc | 1064 | nlh->nlmsg_len = skb_tail_pointer(skb) - b; |
1da177e4 LT |
1065 | return skb->len; |
1066 | ||
8b00a53c | 1067 | out_nlmsg_trim: |
dc5fc579 | 1068 | nlmsg_trim(skb, b); |
1da177e4 LT |
1069 | return -1; |
1070 | } | |
1071 | ||
1072 | static int | |
c4c4290c | 1073 | tcf_get_notify(struct net *net, u32 portid, struct nlmsghdr *n, |
90b73b77 | 1074 | struct tc_action *actions[], int event, |
84ae017a | 1075 | struct netlink_ext_ack *extack) |
1da177e4 LT |
1076 | { |
1077 | struct sk_buff *skb; | |
1da177e4 LT |
1078 | |
1079 | skb = alloc_skb(NLMSG_GOODSIZE, GFP_KERNEL); | |
1080 | if (!skb) | |
1081 | return -ENOBUFS; | |
0b0f43fe | 1082 | if (tca_get_fill(skb, actions, portid, n->nlmsg_seq, 0, event, |
3f7c72bc | 1083 | 0, 1) <= 0) { |
84ae017a | 1084 | NL_SET_ERR_MSG(extack, "Failed to fill netlink attributes while adding TC action"); |
1da177e4 LT |
1085 | kfree_skb(skb); |
1086 | return -EINVAL; | |
1087 | } | |
2942e900 | 1088 | |
15e47304 | 1089 | return rtnl_unicast(skb, net, portid); |
1da177e4 LT |
1090 | } |
1091 | ||
ddf97ccd | 1092 | static struct tc_action *tcf_action_get_1(struct net *net, struct nlattr *nla, |
84ae017a AA |
1093 | struct nlmsghdr *n, u32 portid, |
1094 | struct netlink_ext_ack *extack) | |
1da177e4 | 1095 | { |
cc7ec456 | 1096 | struct nlattr *tb[TCA_ACT_MAX + 1]; |
a85a970a | 1097 | const struct tc_action_ops *ops; |
1da177e4 LT |
1098 | struct tc_action *a; |
1099 | int index; | |
ab27cfb8 | 1100 | int err; |
1da177e4 | 1101 | |
84ae017a | 1102 | err = nla_parse_nested(tb, TCA_ACT_MAX, nla, NULL, extack); |
cee63723 | 1103 | if (err < 0) |
ab27cfb8 | 1104 | goto err_out; |
1da177e4 | 1105 | |
cee63723 | 1106 | err = -EINVAL; |
7ba699c6 | 1107 | if (tb[TCA_ACT_INDEX] == NULL || |
84ae017a AA |
1108 | nla_len(tb[TCA_ACT_INDEX]) < sizeof(index)) { |
1109 | NL_SET_ERR_MSG(extack, "Invalid TC action index value"); | |
ab27cfb8 | 1110 | goto err_out; |
84ae017a | 1111 | } |
1587bac4 | 1112 | index = nla_get_u32(tb[TCA_ACT_INDEX]); |
1da177e4 | 1113 | |
ab27cfb8 | 1114 | err = -EINVAL; |
a85a970a | 1115 | ops = tc_lookup_action(tb[TCA_ACT_KIND]); |
84ae017a | 1116 | if (!ops) { /* could happen in batch of actions */ |
f061b48c | 1117 | NL_SET_ERR_MSG(extack, "Specified TC action kind not found"); |
a85a970a | 1118 | goto err_out; |
84ae017a | 1119 | } |
ab27cfb8 | 1120 | err = -ENOENT; |
f061b48c CW |
1121 | if (ops->lookup(net, &a, index) == 0) { |
1122 | NL_SET_ERR_MSG(extack, "TC action with specified index not found"); | |
1da177e4 | 1123 | goto err_mod; |
f061b48c | 1124 | } |
1da177e4 | 1125 | |
a85a970a | 1126 | module_put(ops->owner); |
1da177e4 | 1127 | return a; |
ab27cfb8 | 1128 | |
1da177e4 | 1129 | err_mod: |
a85a970a | 1130 | module_put(ops->owner); |
ab27cfb8 PM |
1131 | err_out: |
1132 | return ERR_PTR(err); | |
1da177e4 LT |
1133 | } |
1134 | ||
7316ae88 | 1135 | static int tca_action_flush(struct net *net, struct nlattr *nla, |
84ae017a AA |
1136 | struct nlmsghdr *n, u32 portid, |
1137 | struct netlink_ext_ack *extack) | |
1da177e4 LT |
1138 | { |
1139 | struct sk_buff *skb; | |
1140 | unsigned char *b; | |
1141 | struct nlmsghdr *nlh; | |
1142 | struct tcamsg *t; | |
1143 | struct netlink_callback dcb; | |
4b3550ef | 1144 | struct nlattr *nest; |
cc7ec456 | 1145 | struct nlattr *tb[TCA_ACT_MAX + 1]; |
a85a970a | 1146 | const struct tc_action_ops *ops; |
7ba699c6 | 1147 | struct nlattr *kind; |
36723873 | 1148 | int err = -ENOMEM; |
1da177e4 | 1149 | |
1da177e4 | 1150 | skb = alloc_skb(NLMSG_GOODSIZE, GFP_KERNEL); |
84ae017a | 1151 | if (!skb) |
36723873 | 1152 | return err; |
1da177e4 | 1153 | |
27a884dc | 1154 | b = skb_tail_pointer(skb); |
1da177e4 | 1155 | |
84ae017a | 1156 | err = nla_parse_nested(tb, TCA_ACT_MAX, nla, NULL, extack); |
cee63723 | 1157 | if (err < 0) |
1da177e4 LT |
1158 | goto err_out; |
1159 | ||
cee63723 | 1160 | err = -EINVAL; |
7ba699c6 | 1161 | kind = tb[TCA_ACT_KIND]; |
a85a970a | 1162 | ops = tc_lookup_action(kind); |
84ae017a AA |
1163 | if (!ops) { /*some idjot trying to flush unknown action */ |
1164 | NL_SET_ERR_MSG(extack, "Cannot flush unknown TC action"); | |
1da177e4 | 1165 | goto err_out; |
84ae017a | 1166 | } |
1da177e4 | 1167 | |
0b0f43fe JHS |
1168 | nlh = nlmsg_put(skb, portid, n->nlmsg_seq, RTM_DELACTION, |
1169 | sizeof(*t), 0); | |
84ae017a AA |
1170 | if (!nlh) { |
1171 | NL_SET_ERR_MSG(extack, "Failed to create TC action flush notification"); | |
8b00a53c | 1172 | goto out_module_put; |
84ae017a | 1173 | } |
8b00a53c | 1174 | t = nlmsg_data(nlh); |
1da177e4 | 1175 | t->tca_family = AF_UNSPEC; |
9ef1d4c7 PM |
1176 | t->tca__pad1 = 0; |
1177 | t->tca__pad2 = 0; | |
1da177e4 | 1178 | |
ae0be8de | 1179 | nest = nla_nest_start_noflag(skb, TCA_ACT_TAB); |
84ae017a AA |
1180 | if (!nest) { |
1181 | NL_SET_ERR_MSG(extack, "Failed to add new netlink message"); | |
8b00a53c | 1182 | goto out_module_put; |
84ae017a | 1183 | } |
1da177e4 | 1184 | |
41780105 | 1185 | err = ops->walk(net, skb, &dcb, RTM_DELACTION, ops, extack); |
66dede2d DC |
1186 | if (err <= 0) { |
1187 | nla_nest_cancel(skb, nest); | |
8b00a53c | 1188 | goto out_module_put; |
66dede2d | 1189 | } |
1da177e4 | 1190 | |
4b3550ef | 1191 | nla_nest_end(skb, nest); |
1da177e4 | 1192 | |
27a884dc | 1193 | nlh->nlmsg_len = skb_tail_pointer(skb) - b; |
1da177e4 | 1194 | nlh->nlmsg_flags |= NLM_F_ROOT; |
a85a970a | 1195 | module_put(ops->owner); |
15e47304 | 1196 | err = rtnetlink_send(skb, net, portid, RTNLGRP_TC, |
cc7ec456 | 1197 | n->nlmsg_flags & NLM_F_ECHO); |
1da177e4 LT |
1198 | if (err > 0) |
1199 | return 0; | |
84ae017a AA |
1200 | if (err < 0) |
1201 | NL_SET_ERR_MSG(extack, "Failed to send TC action flush notification"); | |
1da177e4 LT |
1202 | |
1203 | return err; | |
1204 | ||
8b00a53c | 1205 | out_module_put: |
a85a970a | 1206 | module_put(ops->owner); |
1da177e4 LT |
1207 | err_out: |
1208 | kfree_skb(skb); | |
1da177e4 LT |
1209 | return err; |
1210 | } | |
1211 | ||
b144e7ec | 1212 | static int tcf_action_delete(struct net *net, struct tc_action *actions[]) |
16af6067 | 1213 | { |
97a3f84f | 1214 | int i; |
16af6067 | 1215 | |
90b73b77 VB |
1216 | for (i = 0; i < TCA_ACT_MAX_PRIO && actions[i]; i++) { |
1217 | struct tc_action *a = actions[i]; | |
16af6067 | 1218 | const struct tc_action_ops *ops = a->ops; |
16af6067 VB |
1219 | /* Actions can be deleted concurrently so we must save their |
1220 | * type and id to search again after reference is released. | |
1221 | */ | |
97a3f84f CW |
1222 | struct tcf_idrinfo *idrinfo = a->idrinfo; |
1223 | u32 act_index = a->tcfa_index; | |
16af6067 | 1224 | |
c10bbfae | 1225 | actions[i] = NULL; |
16af6067 VB |
1226 | if (tcf_action_put(a)) { |
1227 | /* last reference, action was deleted concurrently */ | |
1228 | module_put(ops->owner); | |
1229 | } else { | |
97a3f84f CW |
1230 | int ret; |
1231 | ||
16af6067 | 1232 | /* now do the delete */ |
97a3f84f | 1233 | ret = tcf_idr_delete_index(idrinfo, act_index); |
edfaf94f | 1234 | if (ret < 0) |
16af6067 VB |
1235 | return ret; |
1236 | } | |
1237 | } | |
1238 | return 0; | |
1239 | } | |
1240 | ||
a56e1953 | 1241 | static int |
90b73b77 | 1242 | tcf_del_notify(struct net *net, struct nlmsghdr *n, struct tc_action *actions[], |
edfaf94f | 1243 | u32 portid, size_t attr_size, struct netlink_ext_ack *extack) |
a56e1953 WC |
1244 | { |
1245 | int ret; | |
1246 | struct sk_buff *skb; | |
1247 | ||
d04e6990 RM |
1248 | skb = alloc_skb(attr_size <= NLMSG_GOODSIZE ? NLMSG_GOODSIZE : attr_size, |
1249 | GFP_KERNEL); | |
a56e1953 WC |
1250 | if (!skb) |
1251 | return -ENOBUFS; | |
1252 | ||
1253 | if (tca_get_fill(skb, actions, portid, n->nlmsg_seq, 0, RTM_DELACTION, | |
3f7c72bc | 1254 | 0, 2) <= 0) { |
84ae017a | 1255 | NL_SET_ERR_MSG(extack, "Failed to fill netlink TC action attributes"); |
a56e1953 WC |
1256 | kfree_skb(skb); |
1257 | return -EINVAL; | |
1258 | } | |
1259 | ||
1260 | /* now do the delete */ | |
b144e7ec | 1261 | ret = tcf_action_delete(net, actions); |
55334a5d | 1262 | if (ret < 0) { |
84ae017a | 1263 | NL_SET_ERR_MSG(extack, "Failed to delete TC action"); |
55334a5d WC |
1264 | kfree_skb(skb); |
1265 | return ret; | |
1266 | } | |
a56e1953 WC |
1267 | |
1268 | ret = rtnetlink_send(skb, net, portid, RTNLGRP_TC, | |
1269 | n->nlmsg_flags & NLM_F_ECHO); | |
1270 | if (ret > 0) | |
1271 | return 0; | |
1272 | return ret; | |
1273 | } | |
1274 | ||
1da177e4 | 1275 | static int |
7316ae88 | 1276 | tca_action_gd(struct net *net, struct nlattr *nla, struct nlmsghdr *n, |
84ae017a | 1277 | u32 portid, int event, struct netlink_ext_ack *extack) |
1da177e4 | 1278 | { |
cee63723 | 1279 | int i, ret; |
cc7ec456 | 1280 | struct nlattr *tb[TCA_ACT_MAX_PRIO + 1]; |
33be6271 | 1281 | struct tc_action *act; |
d04e6990 | 1282 | size_t attr_size = 0; |
edfaf94f | 1283 | struct tc_action *actions[TCA_ACT_MAX_PRIO] = {}; |
1da177e4 | 1284 | |
84ae017a | 1285 | ret = nla_parse_nested(tb, TCA_ACT_MAX_PRIO, nla, NULL, extack); |
cee63723 PM |
1286 | if (ret < 0) |
1287 | return ret; | |
1da177e4 | 1288 | |
cc7ec456 | 1289 | if (event == RTM_DELACTION && n->nlmsg_flags & NLM_F_ROOT) { |
1af85155 | 1290 | if (tb[1]) |
84ae017a | 1291 | return tca_action_flush(net, tb[1], n, portid, extack); |
1af85155 | 1292 | |
84ae017a | 1293 | NL_SET_ERR_MSG(extack, "Invalid netlink attributes while flushing TC action"); |
1af85155 | 1294 | return -EINVAL; |
1da177e4 LT |
1295 | } |
1296 | ||
7ba699c6 | 1297 | for (i = 1; i <= TCA_ACT_MAX_PRIO && tb[i]; i++) { |
84ae017a | 1298 | act = tcf_action_get_1(net, tb[i], n, portid, extack); |
ab27cfb8 PM |
1299 | if (IS_ERR(act)) { |
1300 | ret = PTR_ERR(act); | |
1da177e4 | 1301 | goto err; |
ab27cfb8 | 1302 | } |
7ba699c6 | 1303 | act->order = i; |
4e76e75d | 1304 | attr_size += tcf_action_fill_size(act); |
90b73b77 | 1305 | actions[i - 1] = act; |
1da177e4 | 1306 | } |
4e76e75d RM |
1307 | |
1308 | attr_size = tcf_action_full_attrs_size(attr_size); | |
1da177e4 LT |
1309 | |
1310 | if (event == RTM_GETACTION) | |
90b73b77 | 1311 | ret = tcf_get_notify(net, portid, n, actions, event, extack); |
1da177e4 | 1312 | else { /* delete */ |
edfaf94f | 1313 | ret = tcf_del_notify(net, n, actions, portid, attr_size, extack); |
a56e1953 | 1314 | if (ret) |
1da177e4 | 1315 | goto err; |
edfaf94f | 1316 | return 0; |
1da177e4 LT |
1317 | } |
1318 | err: | |
edfaf94f | 1319 | tcf_action_put_many(actions); |
1da177e4 LT |
1320 | return ret; |
1321 | } | |
1322 | ||
a56e1953 | 1323 | static int |
90b73b77 | 1324 | tcf_add_notify(struct net *net, struct nlmsghdr *n, struct tc_action *actions[], |
d04e6990 | 1325 | u32 portid, size_t attr_size, struct netlink_ext_ack *extack) |
1da177e4 | 1326 | { |
1da177e4 | 1327 | struct sk_buff *skb; |
1da177e4 LT |
1328 | int err = 0; |
1329 | ||
d04e6990 RM |
1330 | skb = alloc_skb(attr_size <= NLMSG_GOODSIZE ? NLMSG_GOODSIZE : attr_size, |
1331 | GFP_KERNEL); | |
1da177e4 LT |
1332 | if (!skb) |
1333 | return -ENOBUFS; | |
1334 | ||
a56e1953 WC |
1335 | if (tca_get_fill(skb, actions, portid, n->nlmsg_seq, n->nlmsg_flags, |
1336 | RTM_NEWACTION, 0, 0) <= 0) { | |
d143b9e3 | 1337 | NL_SET_ERR_MSG(extack, "Failed to fill netlink attributes while adding TC action"); |
a56e1953 WC |
1338 | kfree_skb(skb); |
1339 | return -EINVAL; | |
1340 | } | |
10297b99 | 1341 | |
a56e1953 WC |
1342 | err = rtnetlink_send(skb, net, portid, RTNLGRP_TC, |
1343 | n->nlmsg_flags & NLM_F_ECHO); | |
1da177e4 LT |
1344 | if (err > 0) |
1345 | err = 0; | |
1346 | return err; | |
1da177e4 LT |
1347 | } |
1348 | ||
5a7a5555 | 1349 | static int tcf_action_add(struct net *net, struct nlattr *nla, |
aea0d727 AA |
1350 | struct nlmsghdr *n, u32 portid, int ovr, |
1351 | struct netlink_ext_ack *extack) | |
1da177e4 | 1352 | { |
d04e6990 | 1353 | size_t attr_size = 0; |
1da177e4 | 1354 | int ret = 0; |
90b73b77 | 1355 | struct tc_action *actions[TCA_ACT_MAX_PRIO] = {}; |
1da177e4 | 1356 | |
90b73b77 | 1357 | ret = tcf_action_init(net, NULL, nla, NULL, NULL, ovr, 0, actions, |
789871bb | 1358 | &attr_size, true, extack); |
90b73b77 | 1359 | if (ret < 0) |
f07fed82 | 1360 | return ret; |
90b73b77 | 1361 | ret = tcf_add_notify(net, n, actions, portid, attr_size, extack); |
cae422f3 | 1362 | if (ovr) |
90b73b77 | 1363 | tcf_action_put_many(actions); |
1da177e4 | 1364 | |
cae422f3 | 1365 | return ret; |
1da177e4 LT |
1366 | } |
1367 | ||
90825b23 JHS |
1368 | static u32 tcaa_root_flags_allowed = TCA_FLAG_LARGE_DUMP_ON; |
1369 | static const struct nla_policy tcaa_policy[TCA_ROOT_MAX + 1] = { | |
1370 | [TCA_ROOT_FLAGS] = { .type = NLA_BITFIELD32, | |
1371 | .validation_data = &tcaa_root_flags_allowed }, | |
e62e484d | 1372 | [TCA_ROOT_TIME_DELTA] = { .type = NLA_U32 }, |
90825b23 JHS |
1373 | }; |
1374 | ||
c21ef3e3 DA |
1375 | static int tc_ctl_action(struct sk_buff *skb, struct nlmsghdr *n, |
1376 | struct netlink_ext_ack *extack) | |
1da177e4 | 1377 | { |
3b1e0a65 | 1378 | struct net *net = sock_net(skb->sk); |
90825b23 | 1379 | struct nlattr *tca[TCA_ROOT_MAX + 1]; |
15e47304 | 1380 | u32 portid = skb ? NETLINK_CB(skb).portid : 0; |
1da177e4 LT |
1381 | int ret = 0, ovr = 0; |
1382 | ||
0b0f43fe JHS |
1383 | if ((n->nlmsg_type != RTM_GETACTION) && |
1384 | !netlink_capable(skb, CAP_NET_ADMIN)) | |
dfc47ef8 EB |
1385 | return -EPERM; |
1386 | ||
90825b23 | 1387 | ret = nlmsg_parse(n, sizeof(struct tcamsg), tca, TCA_ROOT_MAX, NULL, |
c21ef3e3 | 1388 | extack); |
7ba699c6 PM |
1389 | if (ret < 0) |
1390 | return ret; | |
1391 | ||
1392 | if (tca[TCA_ACT_TAB] == NULL) { | |
84ae017a | 1393 | NL_SET_ERR_MSG(extack, "Netlink action attributes missing"); |
1da177e4 LT |
1394 | return -EINVAL; |
1395 | } | |
1396 | ||
cc7ec456 | 1397 | /* n->nlmsg_flags & NLM_F_CREATE */ |
1da177e4 LT |
1398 | switch (n->nlmsg_type) { |
1399 | case RTM_NEWACTION: | |
1400 | /* we are going to assume all other flags | |
25985edc | 1401 | * imply create only if it doesn't exist |
1da177e4 LT |
1402 | * Note that CREATE | EXCL implies that |
1403 | * but since we want avoid ambiguity (eg when flags | |
1404 | * is zero) then just set this | |
1405 | */ | |
cc7ec456 | 1406 | if (n->nlmsg_flags & NLM_F_REPLACE) |
1da177e4 LT |
1407 | ovr = 1; |
1408 | replay: | |
aea0d727 AA |
1409 | ret = tcf_action_add(net, tca[TCA_ACT_TAB], n, portid, ovr, |
1410 | extack); | |
1da177e4 LT |
1411 | if (ret == -EAGAIN) |
1412 | goto replay; | |
1413 | break; | |
1414 | case RTM_DELACTION: | |
7316ae88 | 1415 | ret = tca_action_gd(net, tca[TCA_ACT_TAB], n, |
84ae017a | 1416 | portid, RTM_DELACTION, extack); |
1da177e4 LT |
1417 | break; |
1418 | case RTM_GETACTION: | |
7316ae88 | 1419 | ret = tca_action_gd(net, tca[TCA_ACT_TAB], n, |
84ae017a | 1420 | portid, RTM_GETACTION, extack); |
1da177e4 LT |
1421 | break; |
1422 | default: | |
1423 | BUG(); | |
1424 | } | |
1425 | ||
1426 | return ret; | |
1427 | } | |
1428 | ||
90825b23 | 1429 | static struct nlattr *find_dump_kind(struct nlattr **nla) |
1da177e4 | 1430 | { |
cc7ec456 | 1431 | struct nlattr *tb1, *tb2[TCA_ACT_MAX + 1]; |
7ba699c6 | 1432 | struct nlattr *tb[TCA_ACT_MAX_PRIO + 1]; |
7ba699c6 | 1433 | struct nlattr *kind; |
1da177e4 | 1434 | |
7ba699c6 | 1435 | tb1 = nla[TCA_ACT_TAB]; |
1da177e4 LT |
1436 | if (tb1 == NULL) |
1437 | return NULL; | |
1438 | ||
7ba699c6 | 1439 | if (nla_parse(tb, TCA_ACT_MAX_PRIO, nla_data(tb1), |
fceb6435 | 1440 | NLMSG_ALIGN(nla_len(tb1)), NULL, NULL) < 0) |
1da177e4 | 1441 | return NULL; |
1da177e4 | 1442 | |
6d834e04 PM |
1443 | if (tb[1] == NULL) |
1444 | return NULL; | |
fceb6435 | 1445 | if (nla_parse_nested(tb2, TCA_ACT_MAX, tb[1], NULL, NULL) < 0) |
1da177e4 | 1446 | return NULL; |
7ba699c6 | 1447 | kind = tb2[TCA_ACT_KIND]; |
1da177e4 | 1448 | |
26dab893 | 1449 | return kind; |
1da177e4 LT |
1450 | } |
1451 | ||
5a7a5555 | 1452 | static int tc_dump_action(struct sk_buff *skb, struct netlink_callback *cb) |
1da177e4 | 1453 | { |
ddf97ccd | 1454 | struct net *net = sock_net(skb->sk); |
1da177e4 | 1455 | struct nlmsghdr *nlh; |
27a884dc | 1456 | unsigned char *b = skb_tail_pointer(skb); |
4b3550ef | 1457 | struct nlattr *nest; |
1da177e4 | 1458 | struct tc_action_ops *a_o; |
1da177e4 | 1459 | int ret = 0; |
8b00a53c | 1460 | struct tcamsg *t = (struct tcamsg *) nlmsg_data(cb->nlh); |
90825b23 JHS |
1461 | struct nlattr *tb[TCA_ROOT_MAX + 1]; |
1462 | struct nlattr *count_attr = NULL; | |
e62e484d | 1463 | unsigned long jiffy_since = 0; |
90825b23 JHS |
1464 | struct nlattr *kind = NULL; |
1465 | struct nla_bitfield32 bf; | |
e62e484d | 1466 | u32 msecs_since = 0; |
90825b23 JHS |
1467 | u32 act_count = 0; |
1468 | ||
1469 | ret = nlmsg_parse(cb->nlh, sizeof(struct tcamsg), tb, TCA_ROOT_MAX, | |
dac9c979 | 1470 | tcaa_policy, cb->extack); |
90825b23 JHS |
1471 | if (ret < 0) |
1472 | return ret; | |
1da177e4 | 1473 | |
90825b23 | 1474 | kind = find_dump_kind(tb); |
1da177e4 | 1475 | if (kind == NULL) { |
6ff9c364 | 1476 | pr_info("tc_dump_action: action bad kind\n"); |
1da177e4 LT |
1477 | return 0; |
1478 | } | |
1479 | ||
26dab893 | 1480 | a_o = tc_lookup_action(kind); |
cc7ec456 | 1481 | if (a_o == NULL) |
1da177e4 | 1482 | return 0; |
1da177e4 | 1483 | |
90825b23 JHS |
1484 | cb->args[2] = 0; |
1485 | if (tb[TCA_ROOT_FLAGS]) { | |
1486 | bf = nla_get_bitfield32(tb[TCA_ROOT_FLAGS]); | |
1487 | cb->args[2] = bf.value; | |
1488 | } | |
1489 | ||
e62e484d JHS |
1490 | if (tb[TCA_ROOT_TIME_DELTA]) { |
1491 | msecs_since = nla_get_u32(tb[TCA_ROOT_TIME_DELTA]); | |
1492 | } | |
1493 | ||
15e47304 | 1494 | nlh = nlmsg_put(skb, NETLINK_CB(cb->skb).portid, cb->nlh->nlmsg_seq, |
8b00a53c DM |
1495 | cb->nlh->nlmsg_type, sizeof(*t), 0); |
1496 | if (!nlh) | |
1497 | goto out_module_put; | |
90825b23 | 1498 | |
e62e484d JHS |
1499 | if (msecs_since) |
1500 | jiffy_since = jiffies - msecs_to_jiffies(msecs_since); | |
1501 | ||
8b00a53c | 1502 | t = nlmsg_data(nlh); |
1da177e4 | 1503 | t->tca_family = AF_UNSPEC; |
9ef1d4c7 PM |
1504 | t->tca__pad1 = 0; |
1505 | t->tca__pad2 = 0; | |
e62e484d | 1506 | cb->args[3] = jiffy_since; |
90825b23 JHS |
1507 | count_attr = nla_reserve(skb, TCA_ROOT_COUNT, sizeof(u32)); |
1508 | if (!count_attr) | |
1509 | goto out_module_put; | |
1da177e4 | 1510 | |
ae0be8de | 1511 | nest = nla_nest_start_noflag(skb, TCA_ACT_TAB); |
4b3550ef | 1512 | if (nest == NULL) |
8b00a53c | 1513 | goto out_module_put; |
1da177e4 | 1514 | |
41780105 | 1515 | ret = a_o->walk(net, skb, cb, RTM_GETACTION, a_o, NULL); |
1da177e4 | 1516 | if (ret < 0) |
8b00a53c | 1517 | goto out_module_put; |
1da177e4 LT |
1518 | |
1519 | if (ret > 0) { | |
4b3550ef | 1520 | nla_nest_end(skb, nest); |
1da177e4 | 1521 | ret = skb->len; |
90825b23 JHS |
1522 | act_count = cb->args[1]; |
1523 | memcpy(nla_data(count_attr), &act_count, sizeof(u32)); | |
1524 | cb->args[1] = 0; | |
1da177e4 | 1525 | } else |
ebecaa66 | 1526 | nlmsg_trim(skb, b); |
1da177e4 | 1527 | |
27a884dc | 1528 | nlh->nlmsg_len = skb_tail_pointer(skb) - b; |
15e47304 | 1529 | if (NETLINK_CB(cb->skb).portid && ret) |
1da177e4 LT |
1530 | nlh->nlmsg_flags |= NLM_F_MULTI; |
1531 | module_put(a_o->owner); | |
1532 | return skb->len; | |
1533 | ||
8b00a53c | 1534 | out_module_put: |
1da177e4 | 1535 | module_put(a_o->owner); |
dc5fc579 | 1536 | nlmsg_trim(skb, b); |
1da177e4 LT |
1537 | return skb->len; |
1538 | } | |
1539 | ||
1540 | static int __init tc_action_init(void) | |
1541 | { | |
b97bac64 FW |
1542 | rtnl_register(PF_UNSPEC, RTM_NEWACTION, tc_ctl_action, NULL, 0); |
1543 | rtnl_register(PF_UNSPEC, RTM_DELACTION, tc_ctl_action, NULL, 0); | |
c7ac8679 | 1544 | rtnl_register(PF_UNSPEC, RTM_GETACTION, tc_ctl_action, tc_dump_action, |
b97bac64 | 1545 | 0); |
1da177e4 | 1546 | |
1da177e4 LT |
1547 | return 0; |
1548 | } | |
1549 | ||
1550 | subsys_initcall(tc_action_init); |