]>
Commit | Line | Data |
---|---|---|
09c434b8 | 1 | // SPDX-License-Identifier: GPL-2.0-only |
20d29d7a | 2 | #include <linux/etherdevice.h> |
6fe3faf8 | 3 | #include <linux/if_tap.h> |
f09e2249 | 4 | #include <linux/if_vlan.h> |
20d29d7a AB |
5 | #include <linux/interrupt.h> |
6 | #include <linux/nsproxy.h> | |
7 | #include <linux/compat.h> | |
8 | #include <linux/if_tun.h> | |
9 | #include <linux/module.h> | |
10 | #include <linux/skbuff.h> | |
11 | #include <linux/cache.h> | |
c3edc401 | 12 | #include <linux/sched/signal.h> |
20d29d7a | 13 | #include <linux/types.h> |
5a0e3ad6 | 14 | #include <linux/slab.h> |
20d29d7a AB |
15 | #include <linux/wait.h> |
16 | #include <linux/cdev.h> | |
40401530 | 17 | #include <linux/idr.h> |
20d29d7a | 18 | #include <linux/fs.h> |
6c36d2e2 | 19 | #include <linux/uio.h> |
20d29d7a AB |
20 | |
21 | #include <net/net_namespace.h> | |
22 | #include <net/rtnetlink.h> | |
23 | #include <net/sock.h> | |
b9fb9ee0 | 24 | #include <linux/virtio_net.h> |
362899b8 | 25 | #include <linux/skb_array.h> |
20d29d7a | 26 | |
635b8c8e | 27 | #define TAP_IFFEATURES (IFF_VNET_HDR | IFF_MULTI_QUEUE) |
01b07fb3 | 28 | |
635b8c8e SG |
29 | #define TAP_VNET_LE 0x80000000 |
30 | #define TAP_VNET_BE 0x40000000 | |
8b8e658b GK |
31 | |
32 | #ifdef CONFIG_TUN_VNET_CROSS_LE | |
635b8c8e | 33 | static inline bool tap_legacy_is_little_endian(struct tap_queue *q) |
8b8e658b | 34 | { |
635b8c8e | 35 | return q->flags & TAP_VNET_BE ? false : |
8b8e658b GK |
36 | virtio_legacy_is_little_endian(); |
37 | } | |
38 | ||
635b8c8e | 39 | static long tap_get_vnet_be(struct tap_queue *q, int __user *sp) |
8b8e658b | 40 | { |
635b8c8e | 41 | int s = !!(q->flags & TAP_VNET_BE); |
8b8e658b GK |
42 | |
43 | if (put_user(s, sp)) | |
44 | return -EFAULT; | |
45 | ||
46 | return 0; | |
47 | } | |
48 | ||
635b8c8e | 49 | static long tap_set_vnet_be(struct tap_queue *q, int __user *sp) |
8b8e658b GK |
50 | { |
51 | int s; | |
52 | ||
53 | if (get_user(s, sp)) | |
54 | return -EFAULT; | |
55 | ||
56 | if (s) | |
635b8c8e | 57 | q->flags |= TAP_VNET_BE; |
8b8e658b | 58 | else |
635b8c8e | 59 | q->flags &= ~TAP_VNET_BE; |
8b8e658b GK |
60 | |
61 | return 0; | |
62 | } | |
63 | #else | |
635b8c8e | 64 | static inline bool tap_legacy_is_little_endian(struct tap_queue *q) |
8b8e658b GK |
65 | { |
66 | return virtio_legacy_is_little_endian(); | |
67 | } | |
68 | ||
635b8c8e | 69 | static long tap_get_vnet_be(struct tap_queue *q, int __user *argp) |
8b8e658b GK |
70 | { |
71 | return -EINVAL; | |
72 | } | |
73 | ||
635b8c8e | 74 | static long tap_set_vnet_be(struct tap_queue *q, int __user *argp) |
8b8e658b GK |
75 | { |
76 | return -EINVAL; | |
77 | } | |
78 | #endif /* CONFIG_TUN_VNET_CROSS_LE */ | |
6ae7feb3 | 79 | |
635b8c8e | 80 | static inline bool tap_is_little_endian(struct tap_queue *q) |
5b11e15f | 81 | { |
635b8c8e SG |
82 | return q->flags & TAP_VNET_LE || |
83 | tap_legacy_is_little_endian(q); | |
5b11e15f | 84 | } |
6ae7feb3 | 85 | |
635b8c8e | 86 | static inline u16 tap16_to_cpu(struct tap_queue *q, __virtio16 val) |
6ae7feb3 | 87 | { |
635b8c8e | 88 | return __virtio16_to_cpu(tap_is_little_endian(q), val); |
6ae7feb3 MT |
89 | } |
90 | ||
635b8c8e | 91 | static inline __virtio16 cpu_to_tap16(struct tap_queue *q, u16 val) |
6ae7feb3 | 92 | { |
635b8c8e | 93 | return __cpu_to_virtio16(tap_is_little_endian(q), val); |
6ae7feb3 MT |
94 | } |
95 | ||
635b8c8e SG |
96 | static struct proto tap_proto = { |
97 | .name = "tap", | |
20d29d7a | 98 | .owner = THIS_MODULE, |
635b8c8e | 99 | .obj_size = sizeof(struct tap_queue), |
20d29d7a AB |
100 | }; |
101 | ||
635b8c8e | 102 | #define TAP_NUM_DEVS (1U << MINORBITS) |
d9f1f61c SG |
103 | |
104 | static LIST_HEAD(major_list); | |
105 | ||
ebc05ba7 | 106 | struct major_info { |
d9f1f61c | 107 | struct rcu_head rcu; |
ebc05ba7 SG |
108 | dev_t major; |
109 | struct idr minor_idr; | |
ffa423fb | 110 | spinlock_t minor_lock; |
ebc05ba7 | 111 | const char *device_name; |
d9f1f61c SG |
112 | struct list_head next; |
113 | }; | |
e09eff7f | 114 | |
97bc3633 | 115 | #define GOODCOPY_LEN 128 |
20d29d7a | 116 | |
635b8c8e | 117 | static const struct proto_ops tap_socket_ops; |
501c774c | 118 | |
2be5c767 | 119 | #define RX_OFFLOADS (NETIF_F_GRO | NETIF_F_LRO) |
f23d538b | 120 | #define TAP_FEATURES (NETIF_F_GSO | NETIF_F_SG | NETIF_F_FRAGLIST) |
a567dd62 | 121 | |
6fe3faf8 | 122 | static struct tap_dev *tap_dev_get_rcu(const struct net_device *dev) |
6acf54f1 VY |
123 | { |
124 | return rcu_dereference(dev->rx_handler_data); | |
125 | } | |
126 | ||
20d29d7a AB |
127 | /* |
128 | * RCU usage: | |
635b8c8e | 129 | * The tap_queue and the macvlan_dev are loosely coupled, the |
02df55d2 | 130 | * pointers from one to the other can only be read while rcu_read_lock |
441ac0fc | 131 | * or rtnl is held. |
20d29d7a | 132 | * |
635b8c8e | 133 | * Both the file and the macvlan_dev hold a reference on the tap_queue |
02df55d2 AB |
134 | * through sock_hold(&q->sk). When the macvlan_dev goes away first, |
135 | * q->vlan becomes inaccessible. When the files gets closed, | |
635b8c8e | 136 | * tap_get_queue() fails. |
20d29d7a | 137 | * |
02df55d2 AB |
138 | * There may still be references to the struct sock inside of the |
139 | * queue from outbound SKBs, but these never reference back to the | |
140 | * file or the dev. The data structure is freed through __sk_free | |
141 | * when both our references and any pending SKBs are gone. | |
20d29d7a | 142 | */ |
20d29d7a | 143 | |
6fe3faf8 | 144 | static int tap_enable_queue(struct tap_dev *tap, struct file *file, |
635b8c8e | 145 | struct tap_queue *q) |
815f236d | 146 | { |
815f236d JW |
147 | int err = -EINVAL; |
148 | ||
441ac0fc | 149 | ASSERT_RTNL(); |
815f236d JW |
150 | |
151 | if (q->enabled) | |
152 | goto out; | |
153 | ||
154 | err = 0; | |
6fe3faf8 SG |
155 | rcu_assign_pointer(tap->taps[tap->numvtaps], q); |
156 | q->queue_index = tap->numvtaps; | |
815f236d JW |
157 | q->enabled = true; |
158 | ||
6fe3faf8 | 159 | tap->numvtaps++; |
815f236d | 160 | out: |
815f236d JW |
161 | return err; |
162 | } | |
163 | ||
40b8fe45 | 164 | /* Requires RTNL */ |
6fe3faf8 | 165 | static int tap_set_queue(struct tap_dev *tap, struct file *file, |
635b8c8e | 166 | struct tap_queue *q) |
20d29d7a | 167 | { |
6fe3faf8 | 168 | if (tap->numqueues == MAX_TAP_QUEUES) |
40b8fe45 | 169 | return -EBUSY; |
20d29d7a | 170 | |
6fe3faf8 SG |
171 | rcu_assign_pointer(q->tap, tap); |
172 | rcu_assign_pointer(tap->taps[tap->numvtaps], q); | |
02df55d2 | 173 | sock_hold(&q->sk); |
20d29d7a AB |
174 | |
175 | q->file = file; | |
6fe3faf8 | 176 | q->queue_index = tap->numvtaps; |
815f236d | 177 | q->enabled = true; |
02df55d2 | 178 | file->private_data = q; |
6fe3faf8 | 179 | list_add_tail(&q->next, &tap->queue_list); |
20d29d7a | 180 | |
6fe3faf8 SG |
181 | tap->numvtaps++; |
182 | tap->numqueues++; | |
1565c7c1 | 183 | |
40b8fe45 | 184 | return 0; |
20d29d7a AB |
185 | } |
186 | ||
635b8c8e | 187 | static int tap_disable_queue(struct tap_queue *q) |
815f236d | 188 | { |
6fe3faf8 | 189 | struct tap_dev *tap; |
635b8c8e | 190 | struct tap_queue *nq; |
815f236d | 191 | |
441ac0fc | 192 | ASSERT_RTNL(); |
815f236d JW |
193 | if (!q->enabled) |
194 | return -EINVAL; | |
195 | ||
6fe3faf8 | 196 | tap = rtnl_dereference(q->tap); |
441ac0fc | 197 | |
6fe3faf8 | 198 | if (tap) { |
815f236d | 199 | int index = q->queue_index; |
6fe3faf8 SG |
200 | BUG_ON(index >= tap->numvtaps); |
201 | nq = rtnl_dereference(tap->taps[tap->numvtaps - 1]); | |
815f236d JW |
202 | nq->queue_index = index; |
203 | ||
6fe3faf8 SG |
204 | rcu_assign_pointer(tap->taps[index], nq); |
205 | RCU_INIT_POINTER(tap->taps[tap->numvtaps - 1], NULL); | |
815f236d JW |
206 | q->enabled = false; |
207 | ||
6fe3faf8 | 208 | tap->numvtaps--; |
815f236d JW |
209 | } |
210 | ||
211 | return 0; | |
212 | } | |
213 | ||
20d29d7a | 214 | /* |
02df55d2 AB |
215 | * The file owning the queue got closed, give up both |
216 | * the reference that the files holds as well as the | |
217 | * one from the macvlan_dev if that still exists. | |
20d29d7a AB |
218 | * |
219 | * Using the spinlock makes sure that we don't get | |
220 | * to the queue again after destroying it. | |
20d29d7a | 221 | */ |
635b8c8e | 222 | static void tap_put_queue(struct tap_queue *q) |
20d29d7a | 223 | { |
6fe3faf8 | 224 | struct tap_dev *tap; |
20d29d7a | 225 | |
441ac0fc | 226 | rtnl_lock(); |
6fe3faf8 | 227 | tap = rtnl_dereference(q->tap); |
441ac0fc | 228 | |
6fe3faf8 | 229 | if (tap) { |
815f236d | 230 | if (q->enabled) |
635b8c8e | 231 | BUG_ON(tap_disable_queue(q)); |
376b1aab | 232 | |
6fe3faf8 SG |
233 | tap->numqueues--; |
234 | RCU_INIT_POINTER(q->tap, NULL); | |
02df55d2 | 235 | sock_put(&q->sk); |
815f236d | 236 | list_del_init(&q->next); |
20d29d7a AB |
237 | } |
238 | ||
441ac0fc | 239 | rtnl_unlock(); |
20d29d7a AB |
240 | |
241 | synchronize_rcu(); | |
242 | sock_put(&q->sk); | |
243 | } | |
244 | ||
245 | /* | |
1565c7c1 KK |
246 | * Select a queue based on the rxq of the device on which this packet |
247 | * arrived. If the incoming device is not mq, calculate a flow hash | |
248 | * to select a queue. If all fails, find the first available queue. | |
249 | * Cache vlan->numvtaps since it can become zero during the execution | |
250 | * of this function. | |
20d29d7a | 251 | */ |
6fe3faf8 | 252 | static struct tap_queue *tap_get_queue(struct tap_dev *tap, |
635b8c8e | 253 | struct sk_buff *skb) |
20d29d7a | 254 | { |
6fe3faf8 | 255 | struct tap_queue *queue = NULL; |
815f236d JW |
256 | /* Access to taps array is protected by rcu, but access to numvtaps |
257 | * isn't. Below we use it to lookup a queue, but treat it as a hint | |
258 | * and validate that the result isn't NULL - in case we are | |
259 | * racing against queue removal. | |
260 | */ | |
6aa7de05 | 261 | int numvtaps = READ_ONCE(tap->numvtaps); |
1565c7c1 KK |
262 | __u32 rxq; |
263 | ||
264 | if (!numvtaps) | |
265 | goto out; | |
266 | ||
1b16bf42 JW |
267 | if (numvtaps == 1) |
268 | goto single; | |
269 | ||
ef0002b5 | 270 | /* Check if we can use flow to select a queue */ |
3958afa1 | 271 | rxq = skb_get_hash(skb); |
ef0002b5 | 272 | if (rxq) { |
6fe3faf8 | 273 | queue = rcu_dereference(tap->taps[rxq % numvtaps]); |
376b1aab | 274 | goto out; |
ef0002b5 KK |
275 | } |
276 | ||
1565c7c1 KK |
277 | if (likely(skb_rx_queue_recorded(skb))) { |
278 | rxq = skb_get_rx_queue(skb); | |
20d29d7a | 279 | |
1565c7c1 KK |
280 | while (unlikely(rxq >= numvtaps)) |
281 | rxq -= numvtaps; | |
282 | ||
6fe3faf8 | 283 | queue = rcu_dereference(tap->taps[rxq]); |
376b1aab | 284 | goto out; |
1565c7c1 KK |
285 | } |
286 | ||
1b16bf42 | 287 | single: |
6fe3faf8 | 288 | queue = rcu_dereference(tap->taps[0]); |
1565c7c1 | 289 | out: |
6fe3faf8 | 290 | return queue; |
20d29d7a AB |
291 | } |
292 | ||
02df55d2 AB |
293 | /* |
294 | * The net_device is going away, give up the reference | |
1565c7c1 KK |
295 | * that it holds on all queues and safely set the pointer |
296 | * from the queues to NULL. | |
02df55d2 | 297 | */ |
6fe3faf8 | 298 | void tap_del_queues(struct tap_dev *tap) |
20d29d7a | 299 | { |
635b8c8e | 300 | struct tap_queue *q, *tmp; |
02df55d2 | 301 | |
441ac0fc | 302 | ASSERT_RTNL(); |
6fe3faf8 | 303 | list_for_each_entry_safe(q, tmp, &tap->queue_list, next) { |
815f236d | 304 | list_del_init(&q->next); |
6fe3faf8 | 305 | RCU_INIT_POINTER(q->tap, NULL); |
815f236d | 306 | if (q->enabled) |
6fe3faf8 SG |
307 | tap->numvtaps--; |
308 | tap->numqueues--; | |
dfe816c5 | 309 | sock_put(&q->sk); |
564517e8 | 310 | } |
6fe3faf8 SG |
311 | BUG_ON(tap->numvtaps); |
312 | BUG_ON(tap->numqueues); | |
635b8c8e | 313 | /* guarantee that any future tap_set_queue will fail */ |
6fe3faf8 | 314 | tap->numvtaps = MAX_TAP_QUEUES; |
20d29d7a | 315 | } |
9a393b5d | 316 | EXPORT_SYMBOL_GPL(tap_del_queues); |
20d29d7a | 317 | |
635b8c8e | 318 | rx_handler_result_t tap_handle_frame(struct sk_buff **pskb) |
20d29d7a | 319 | { |
6acf54f1 VY |
320 | struct sk_buff *skb = *pskb; |
321 | struct net_device *dev = skb->dev; | |
6fe3faf8 | 322 | struct tap_dev *tap; |
635b8c8e | 323 | struct tap_queue *q; |
a567dd62 VY |
324 | netdev_features_t features = TAP_FEATURES; |
325 | ||
6fe3faf8 SG |
326 | tap = tap_dev_get_rcu(dev); |
327 | if (!tap) | |
6acf54f1 VY |
328 | return RX_HANDLER_PASS; |
329 | ||
6fe3faf8 | 330 | q = tap_get_queue(tap, skb); |
20d29d7a | 331 | if (!q) |
6acf54f1 | 332 | return RX_HANDLER_PASS; |
8a35747a | 333 | |
6acf54f1 VY |
334 | skb_push(skb, ETH_HLEN); |
335 | ||
3e4f8b78 | 336 | /* Apply the forward feature mask so that we perform segmentation |
e5733321 VY |
337 | * according to users wishes. This only works if VNET_HDR is |
338 | * enabled. | |
3e4f8b78 | 339 | */ |
e5733321 | 340 | if (q->flags & IFF_VNET_HDR) |
6fe3faf8 | 341 | features |= tap->tap_features; |
8b86a61d | 342 | if (netif_needs_gso(skb, features)) { |
3e4f8b78 VY |
343 | struct sk_buff *segs = __skb_gso_segment(skb, features, false); |
344 | ||
345 | if (IS_ERR(segs)) | |
346 | goto drop; | |
347 | ||
348 | if (!segs) { | |
5990a305 | 349 | if (ptr_ring_produce(&q->ring, skb)) |
362899b8 | 350 | goto drop; |
3e4f8b78 VY |
351 | goto wake_up; |
352 | } | |
353 | ||
be0bd316 | 354 | consume_skb(skb); |
3e4f8b78 VY |
355 | while (segs) { |
356 | struct sk_buff *nskb = segs->next; | |
357 | ||
358 | segs->next = NULL; | |
5990a305 | 359 | if (ptr_ring_produce(&q->ring, segs)) { |
362899b8 JW |
360 | kfree_skb(segs); |
361 | kfree_skb_list(nskb); | |
362 | break; | |
363 | } | |
3e4f8b78 VY |
364 | segs = nskb; |
365 | } | |
366 | } else { | |
cbdb0427 VY |
367 | /* If we receive a partial checksum and the tap side |
368 | * doesn't support checksum offload, compute the checksum. | |
369 | * Note: it doesn't matter which checksum feature to | |
a8e04698 | 370 | * check, we either support them all or none. |
cbdb0427 VY |
371 | */ |
372 | if (skb->ip_summed == CHECKSUM_PARTIAL && | |
a188222b | 373 | !(features & NETIF_F_CSUM_MASK) && |
cbdb0427 VY |
374 | skb_checksum_help(skb)) |
375 | goto drop; | |
5990a305 | 376 | if (ptr_ring_produce(&q->ring, skb)) |
362899b8 | 377 | goto drop; |
3e4f8b78 VY |
378 | } |
379 | ||
380 | wake_up: | |
a9a08845 | 381 | wake_up_interruptible_poll(sk_sleep(&q->sk), EPOLLIN | EPOLLRDNORM | EPOLLRDBAND); |
6acf54f1 | 382 | return RX_HANDLER_CONSUMED; |
8a35747a HX |
383 | |
384 | drop: | |
6acf54f1 | 385 | /* Count errors/drops only here, thus don't care about args. */ |
6fe3faf8 SG |
386 | if (tap->count_rx_dropped) |
387 | tap->count_rx_dropped(tap); | |
8a35747a | 388 | kfree_skb(skb); |
6acf54f1 | 389 | return RX_HANDLER_CONSUMED; |
20d29d7a | 390 | } |
9a393b5d | 391 | EXPORT_SYMBOL_GPL(tap_handle_frame); |
20d29d7a | 392 | |
d9f1f61c SG |
393 | static struct major_info *tap_get_major(int major) |
394 | { | |
395 | struct major_info *tap_major; | |
396 | ||
397 | list_for_each_entry_rcu(tap_major, &major_list, next) { | |
398 | if (tap_major->major == major) | |
399 | return tap_major; | |
400 | } | |
401 | ||
402 | return NULL; | |
403 | } | |
404 | ||
405 | int tap_get_minor(dev_t major, struct tap_dev *tap) | |
e09eff7f EB |
406 | { |
407 | int retval = -ENOMEM; | |
d9f1f61c SG |
408 | struct major_info *tap_major; |
409 | ||
410 | rcu_read_lock(); | |
411 | tap_major = tap_get_major(MAJOR(major)); | |
412 | if (!tap_major) { | |
413 | retval = -EINVAL; | |
414 | goto unlock; | |
415 | } | |
e09eff7f | 416 | |
ffa423fb WC |
417 | spin_lock(&tap_major->minor_lock); |
418 | retval = idr_alloc(&tap_major->minor_idr, tap, 1, TAP_NUM_DEVS, GFP_ATOMIC); | |
ec09ebc1 | 419 | if (retval >= 0) { |
6fe3faf8 | 420 | tap->minor = retval; |
ec09ebc1 | 421 | } else if (retval == -ENOSPC) { |
6fe3faf8 | 422 | netdev_err(tap->dev, "Too many tap devices\n"); |
e09eff7f | 423 | retval = -EINVAL; |
e09eff7f | 424 | } |
ffa423fb | 425 | spin_unlock(&tap_major->minor_lock); |
d9f1f61c SG |
426 | |
427 | unlock: | |
428 | rcu_read_unlock(); | |
ec09ebc1 | 429 | return retval < 0 ? retval : 0; |
e09eff7f | 430 | } |
9a393b5d | 431 | EXPORT_SYMBOL_GPL(tap_get_minor); |
e09eff7f | 432 | |
d9f1f61c | 433 | void tap_free_minor(dev_t major, struct tap_dev *tap) |
e09eff7f | 434 | { |
d9f1f61c SG |
435 | struct major_info *tap_major; |
436 | ||
437 | rcu_read_lock(); | |
438 | tap_major = tap_get_major(MAJOR(major)); | |
439 | if (!tap_major) { | |
440 | goto unlock; | |
441 | } | |
442 | ||
ffa423fb | 443 | spin_lock(&tap_major->minor_lock); |
6fe3faf8 | 444 | if (tap->minor) { |
d9f1f61c | 445 | idr_remove(&tap_major->minor_idr, tap->minor); |
6fe3faf8 | 446 | tap->minor = 0; |
e09eff7f | 447 | } |
ffa423fb | 448 | spin_unlock(&tap_major->minor_lock); |
d9f1f61c SG |
449 | |
450 | unlock: | |
451 | rcu_read_unlock(); | |
e09eff7f | 452 | } |
9a393b5d | 453 | EXPORT_SYMBOL_GPL(tap_free_minor); |
e09eff7f | 454 | |
d9f1f61c | 455 | static struct tap_dev *dev_get_by_tap_file(int major, int minor) |
e09eff7f EB |
456 | { |
457 | struct net_device *dev = NULL; | |
6fe3faf8 | 458 | struct tap_dev *tap; |
d9f1f61c | 459 | struct major_info *tap_major; |
e09eff7f | 460 | |
d9f1f61c SG |
461 | rcu_read_lock(); |
462 | tap_major = tap_get_major(major); | |
463 | if (!tap_major) { | |
464 | tap = NULL; | |
465 | goto unlock; | |
466 | } | |
467 | ||
ffa423fb | 468 | spin_lock(&tap_major->minor_lock); |
d9f1f61c | 469 | tap = idr_find(&tap_major->minor_idr, minor); |
6fe3faf8 SG |
470 | if (tap) { |
471 | dev = tap->dev; | |
e09eff7f EB |
472 | dev_hold(dev); |
473 | } | |
ffa423fb | 474 | spin_unlock(&tap_major->minor_lock); |
d9f1f61c SG |
475 | |
476 | unlock: | |
477 | rcu_read_unlock(); | |
6fe3faf8 | 478 | return tap; |
e09eff7f EB |
479 | } |
480 | ||
635b8c8e | 481 | static void tap_sock_write_space(struct sock *sk) |
20d29d7a | 482 | { |
43815482 ED |
483 | wait_queue_head_t *wqueue; |
484 | ||
20d29d7a | 485 | if (!sock_writeable(sk) || |
9cd3e072 | 486 | !test_and_clear_bit(SOCKWQ_ASYNC_NOSPACE, &sk->sk_socket->flags)) |
20d29d7a AB |
487 | return; |
488 | ||
43815482 ED |
489 | wqueue = sk_sleep(sk); |
490 | if (wqueue && waitqueue_active(wqueue)) | |
a9a08845 | 491 | wake_up_interruptible_poll(wqueue, EPOLLOUT | EPOLLWRNORM | EPOLLWRBAND); |
20d29d7a AB |
492 | } |
493 | ||
635b8c8e | 494 | static void tap_sock_destruct(struct sock *sk) |
2259fef0 | 495 | { |
635b8c8e | 496 | struct tap_queue *q = container_of(sk, struct tap_queue, sk); |
362899b8 | 497 | |
5990a305 | 498 | ptr_ring_cleanup(&q->ring, __skb_array_destroy_skb); |
2259fef0 EB |
499 | } |
500 | ||
635b8c8e | 501 | static int tap_open(struct inode *inode, struct file *file) |
20d29d7a AB |
502 | { |
503 | struct net *net = current->nsproxy->net_ns; | |
6fe3faf8 | 504 | struct tap_dev *tap; |
635b8c8e | 505 | struct tap_queue *q; |
40b8fe45 | 506 | int err = -ENODEV; |
20d29d7a | 507 | |
40b8fe45 | 508 | rtnl_lock(); |
d9f1f61c | 509 | tap = dev_get_by_tap_file(imajor(inode), iminor(inode)); |
6fe3faf8 | 510 | if (!tap) |
362899b8 | 511 | goto err; |
20d29d7a | 512 | |
20d29d7a | 513 | err = -ENOMEM; |
635b8c8e SG |
514 | q = (struct tap_queue *)sk_alloc(net, AF_UNSPEC, GFP_KERNEL, |
515 | &tap_proto, 0); | |
20d29d7a | 516 | if (!q) |
362899b8 | 517 | goto err; |
5990a305 | 518 | if (ptr_ring_init(&q->ring, tap->dev->tx_queue_len, GFP_KERNEL)) { |
78e0ea67 GM |
519 | sk_free(&q->sk); |
520 | goto err; | |
521 | } | |
20d29d7a | 522 | |
333f7909 | 523 | init_waitqueue_head(&q->sock.wq.wait); |
20d29d7a AB |
524 | q->sock.type = SOCK_RAW; |
525 | q->sock.state = SS_CONNECTED; | |
501c774c | 526 | q->sock.file = file; |
635b8c8e | 527 | q->sock.ops = &tap_socket_ops; |
20d29d7a | 528 | sock_init_data(&q->sock, &q->sk); |
635b8c8e SG |
529 | q->sk.sk_write_space = tap_sock_write_space; |
530 | q->sk.sk_destruct = tap_sock_destruct; | |
b9fb9ee0 | 531 | q->flags = IFF_VNET_HDR | IFF_NO_PI | IFF_TAP; |
55afbd08 | 532 | q->vnet_hdr_sz = sizeof(struct virtio_net_hdr); |
20d29d7a | 533 | |
97bc3633 | 534 | /* |
635b8c8e | 535 | * so far only KVM virtio_net uses tap, enable zero copy between |
97bc3633 | 536 | * guest kernel and host kernel when lower device supports zerocopy |
047af9cf EB |
537 | * |
538 | * The macvlan supports zerocopy iff the lower device supports zero | |
539 | * copy so we don't have to look at the lower device directly. | |
97bc3633 | 540 | */ |
6fe3faf8 | 541 | if ((tap->dev->features & NETIF_F_HIGHDMA) && (tap->dev->features & NETIF_F_SG)) |
047af9cf | 542 | sock_set_flag(&q->sk, SOCK_ZEROCOPY); |
97bc3633 | 543 | |
6fe3faf8 | 544 | err = tap_set_queue(tap, file, q); |
78e0ea67 | 545 | if (err) { |
5990a305 | 546 | /* tap_sock_destruct() will take care of freeing ptr_ring */ |
78e0ea67 GM |
547 | goto err_put; |
548 | } | |
20d29d7a | 549 | |
6fe3faf8 | 550 | dev_put(tap->dev); |
362899b8 JW |
551 | |
552 | rtnl_unlock(); | |
553 | return err; | |
554 | ||
78e0ea67 | 555 | err_put: |
362899b8 JW |
556 | sock_put(&q->sk); |
557 | err: | |
6fe3faf8 SG |
558 | if (tap) |
559 | dev_put(tap->dev); | |
20d29d7a | 560 | |
40b8fe45 | 561 | rtnl_unlock(); |
20d29d7a AB |
562 | return err; |
563 | } | |
564 | ||
635b8c8e | 565 | static int tap_release(struct inode *inode, struct file *file) |
20d29d7a | 566 | { |
635b8c8e SG |
567 | struct tap_queue *q = file->private_data; |
568 | tap_put_queue(q); | |
20d29d7a AB |
569 | return 0; |
570 | } | |
571 | ||
afc9a42b | 572 | static __poll_t tap_poll(struct file *file, poll_table *wait) |
20d29d7a | 573 | { |
635b8c8e | 574 | struct tap_queue *q = file->private_data; |
a9a08845 | 575 | __poll_t mask = EPOLLERR; |
20d29d7a AB |
576 | |
577 | if (!q) | |
578 | goto out; | |
579 | ||
580 | mask = 0; | |
333f7909 | 581 | poll_wait(file, &q->sock.wq.wait, wait); |
20d29d7a | 582 | |
5990a305 | 583 | if (!ptr_ring_empty(&q->ring)) |
a9a08845 | 584 | mask |= EPOLLIN | EPOLLRDNORM; |
20d29d7a AB |
585 | |
586 | if (sock_writeable(&q->sk) || | |
9cd3e072 | 587 | (!test_and_set_bit(SOCKWQ_ASYNC_NOSPACE, &q->sock.flags) && |
20d29d7a | 588 | sock_writeable(&q->sk))) |
a9a08845 | 589 | mask |= EPOLLOUT | EPOLLWRNORM; |
20d29d7a AB |
590 | |
591 | out: | |
20d29d7a AB |
592 | return mask; |
593 | } | |
594 | ||
635b8c8e SG |
595 | static inline struct sk_buff *tap_alloc_skb(struct sock *sk, size_t prepad, |
596 | size_t len, size_t linear, | |
b9fb9ee0 AB |
597 | int noblock, int *err) |
598 | { | |
599 | struct sk_buff *skb; | |
600 | ||
601 | /* Under a page? Don't bother with paged skb. */ | |
602 | if (prepad + len < PAGE_SIZE || !linear) | |
603 | linear = len; | |
604 | ||
605 | skb = sock_alloc_send_pskb(sk, prepad + linear, len - linear, noblock, | |
28d64271 | 606 | err, 0); |
b9fb9ee0 AB |
607 | if (!skb) |
608 | return NULL; | |
609 | ||
610 | skb_reserve(skb, prepad); | |
611 | skb_put(skb, linear); | |
612 | skb->data_len = len - linear; | |
613 | skb->len += len - linear; | |
614 | ||
615 | return skb; | |
616 | } | |
617 | ||
2f1d8b9e | 618 | /* Neighbour code has some assumptions on HH_DATA_MOD alignment */ |
635b8c8e | 619 | #define TAP_RESERVE HH_DATA_OFF(ETH_HLEN) |
2f1d8b9e | 620 | |
20d29d7a | 621 | /* Get packet from user space buffer */ |
fe8dd45b | 622 | static ssize_t tap_get_user(struct tap_queue *q, void *msg_control, |
635b8c8e | 623 | struct iov_iter *from, int noblock) |
20d29d7a | 624 | { |
635b8c8e | 625 | int good_linear = SKB_MAX_HEAD(TAP_RESERVE); |
20d29d7a | 626 | struct sk_buff *skb; |
6fe3faf8 | 627 | struct tap_dev *tap; |
f5ff53b4 | 628 | unsigned long total_len = iov_iter_count(from); |
97bc3633 | 629 | unsigned long len = total_len; |
20d29d7a | 630 | int err; |
b9fb9ee0 AB |
631 | struct virtio_net_hdr vnet_hdr = { 0 }; |
632 | int vnet_hdr_len = 0; | |
b92946e2 | 633 | int copylen = 0; |
c5c62f1b | 634 | int depth; |
97bc3633 | 635 | bool zerocopy = false; |
61d46bf9 | 636 | size_t linear; |
b9fb9ee0 AB |
637 | |
638 | if (q->flags & IFF_VNET_HDR) { | |
837585a5 | 639 | vnet_hdr_len = READ_ONCE(q->vnet_hdr_sz); |
b9fb9ee0 AB |
640 | |
641 | err = -EINVAL; | |
ce3c8692 | 642 | if (len < vnet_hdr_len) |
b9fb9ee0 | 643 | goto err; |
ce3c8692 | 644 | len -= vnet_hdr_len; |
b9fb9ee0 | 645 | |
f5ff53b4 | 646 | err = -EFAULT; |
cbbd26b8 | 647 | if (!copy_from_iter_full(&vnet_hdr, sizeof(vnet_hdr), from)) |
b9fb9ee0 | 648 | goto err; |
f5ff53b4 | 649 | iov_iter_advance(from, vnet_hdr_len - sizeof(vnet_hdr)); |
b9fb9ee0 | 650 | if ((vnet_hdr.flags & VIRTIO_NET_HDR_F_NEEDS_CSUM) && |
635b8c8e SG |
651 | tap16_to_cpu(q, vnet_hdr.csum_start) + |
652 | tap16_to_cpu(q, vnet_hdr.csum_offset) + 2 > | |
653 | tap16_to_cpu(q, vnet_hdr.hdr_len)) | |
654 | vnet_hdr.hdr_len = cpu_to_tap16(q, | |
655 | tap16_to_cpu(q, vnet_hdr.csum_start) + | |
656 | tap16_to_cpu(q, vnet_hdr.csum_offset) + 2); | |
b9fb9ee0 | 657 | err = -EINVAL; |
635b8c8e | 658 | if (tap16_to_cpu(q, vnet_hdr.hdr_len) > len) |
b9fb9ee0 AB |
659 | goto err; |
660 | } | |
20d29d7a | 661 | |
b9fb9ee0 | 662 | err = -EINVAL; |
20d29d7a | 663 | if (unlikely(len < ETH_HLEN)) |
b9fb9ee0 | 664 | goto err; |
20d29d7a | 665 | |
fe8dd45b | 666 | if (msg_control && sock_flag(&q->sk, SOCK_ZEROCOPY)) { |
f5ff53b4 AV |
667 | struct iov_iter i; |
668 | ||
6ae7feb3 | 669 | copylen = vnet_hdr.hdr_len ? |
635b8c8e | 670 | tap16_to_cpu(q, vnet_hdr.hdr_len) : GOODCOPY_LEN; |
16a3fa28 JW |
671 | if (copylen > good_linear) |
672 | copylen = good_linear; | |
8e2ad411 WB |
673 | else if (copylen < ETH_HLEN) |
674 | copylen = ETH_HLEN; | |
61d46bf9 | 675 | linear = copylen; |
f5ff53b4 AV |
676 | i = *from; |
677 | iov_iter_advance(&i, copylen); | |
678 | if (iov_iter_npages(&i, INT_MAX) <= MAX_SKB_FRAGS) | |
ece793fc JW |
679 | zerocopy = true; |
680 | } | |
681 | ||
682 | if (!zerocopy) { | |
97bc3633 | 683 | copylen = len; |
635b8c8e | 684 | linear = tap16_to_cpu(q, vnet_hdr.hdr_len); |
8e2ad411 | 685 | if (linear > good_linear) |
16a3fa28 | 686 | linear = good_linear; |
8e2ad411 WB |
687 | else if (linear < ETH_HLEN) |
688 | linear = ETH_HLEN; | |
61d46bf9 | 689 | } |
97bc3633 | 690 | |
635b8c8e SG |
691 | skb = tap_alloc_skb(&q->sk, TAP_RESERVE, copylen, |
692 | linear, noblock, &err); | |
02df55d2 AB |
693 | if (!skb) |
694 | goto err; | |
20d29d7a | 695 | |
01d6657b | 696 | if (zerocopy) |
f5ff53b4 | 697 | err = zerocopy_sg_from_iter(skb, from); |
aa196eed | 698 | else |
f5ff53b4 | 699 | err = skb_copy_datagram_from_iter(skb, 0, from, len); |
ece793fc | 700 | |
02df55d2 | 701 | if (err) |
b9fb9ee0 | 702 | goto err_kfree; |
20d29d7a AB |
703 | |
704 | skb_set_network_header(skb, ETH_HLEN); | |
b9fb9ee0 AB |
705 | skb_reset_mac_header(skb); |
706 | skb->protocol = eth_hdr(skb)->h_proto; | |
707 | ||
708 | if (vnet_hdr_len) { | |
fd88d68b | 709 | err = virtio_net_hdr_to_skb(skb, &vnet_hdr, |
635b8c8e | 710 | tap_is_little_endian(q)); |
b9fb9ee0 AB |
711 | if (err) |
712 | goto err_kfree; | |
713 | } | |
714 | ||
d2aa125d | 715 | skb_probe_transport_header(skb); |
9b4d669b | 716 | |
c5c62f1b IV |
717 | /* Move network header to the right position for VLAN tagged packets */ |
718 | if ((skb->protocol == htons(ETH_P_8021Q) || | |
719 | skb->protocol == htons(ETH_P_8021AD)) && | |
720 | __vlan_get_protocol(skb, skb->protocol, &depth) != 0) | |
721 | skb_set_network_header(skb, depth); | |
722 | ||
ac4e4af1 | 723 | rcu_read_lock(); |
6fe3faf8 | 724 | tap = rcu_dereference(q->tap); |
97bc3633 | 725 | /* copy skb_ubuf_info for callback when skb has no error */ |
01d6657b | 726 | if (zerocopy) { |
fe8dd45b | 727 | skb_shinfo(skb)->destructor_arg = msg_control; |
01d6657b | 728 | skb_shinfo(skb)->tx_flags |= SKBTX_DEV_ZEROCOPY; |
c9af6db4 | 729 | skb_shinfo(skb)->tx_flags |= SKBTX_SHARED_FRAG; |
fe8dd45b JW |
730 | } else if (msg_control) { |
731 | struct ubuf_info *uarg = msg_control; | |
aa196eed | 732 | uarg->callback(uarg, false); |
01d6657b | 733 | } |
aa196eed | 734 | |
6fe3faf8 SG |
735 | if (tap) { |
736 | skb->dev = tap->dev; | |
6acf54f1 | 737 | dev_queue_xmit(skb); |
29d79196 | 738 | } else { |
02df55d2 | 739 | kfree_skb(skb); |
29d79196 | 740 | } |
ac4e4af1 | 741 | rcu_read_unlock(); |
20d29d7a | 742 | |
97bc3633 | 743 | return total_len; |
02df55d2 | 744 | |
b9fb9ee0 AB |
745 | err_kfree: |
746 | kfree_skb(skb); | |
747 | ||
02df55d2 | 748 | err: |
ac4e4af1 | 749 | rcu_read_lock(); |
6fe3faf8 SG |
750 | tap = rcu_dereference(q->tap); |
751 | if (tap && tap->count_tx_dropped) | |
752 | tap->count_tx_dropped(tap); | |
ac4e4af1 | 753 | rcu_read_unlock(); |
02df55d2 | 754 | |
02df55d2 | 755 | return err; |
20d29d7a AB |
756 | } |
757 | ||
635b8c8e | 758 | static ssize_t tap_write_iter(struct kiocb *iocb, struct iov_iter *from) |
20d29d7a AB |
759 | { |
760 | struct file *file = iocb->ki_filp; | |
635b8c8e | 761 | struct tap_queue *q = file->private_data; |
20d29d7a | 762 | |
635b8c8e | 763 | return tap_get_user(q, NULL, from, file->f_flags & O_NONBLOCK); |
20d29d7a AB |
764 | } |
765 | ||
766 | /* Put packet to the user space buffer */ | |
635b8c8e SG |
767 | static ssize_t tap_put_user(struct tap_queue *q, |
768 | const struct sk_buff *skb, | |
769 | struct iov_iter *iter) | |
20d29d7a | 770 | { |
20d29d7a | 771 | int ret; |
b9fb9ee0 | 772 | int vnet_hdr_len = 0; |
f09e2249 | 773 | int vlan_offset = 0; |
6c36d2e2 | 774 | int total; |
b9fb9ee0 AB |
775 | |
776 | if (q->flags & IFF_VNET_HDR) { | |
fd3a8862 | 777 | int vlan_hlen = skb_vlan_tag_present(skb) ? VLAN_HLEN : 0; |
b9fb9ee0 | 778 | struct virtio_net_hdr vnet_hdr; |
fd3a8862 | 779 | |
837585a5 | 780 | vnet_hdr_len = READ_ONCE(q->vnet_hdr_sz); |
6c36d2e2 | 781 | if (iov_iter_count(iter) < vnet_hdr_len) |
b9fb9ee0 AB |
782 | return -EINVAL; |
783 | ||
3e9e40e7 | 784 | if (virtio_net_hdr_from_skb(skb, &vnet_hdr, |
fd3a8862 WB |
785 | tap_is_little_endian(q), true, |
786 | vlan_hlen)) | |
fd88d68b | 787 | BUG(); |
b9fb9ee0 | 788 | |
6c36d2e2 HX |
789 | if (copy_to_iter(&vnet_hdr, sizeof(vnet_hdr), iter) != |
790 | sizeof(vnet_hdr)) | |
b9fb9ee0 | 791 | return -EFAULT; |
7cc76f51 JW |
792 | |
793 | iov_iter_advance(iter, vnet_hdr_len - sizeof(vnet_hdr)); | |
b9fb9ee0 | 794 | } |
6c36d2e2 | 795 | total = vnet_hdr_len; |
ce232ce0 | 796 | total += skb->len; |
f09e2249 | 797 | |
df8a39de | 798 | if (skb_vlan_tag_present(skb)) { |
f09e2249 BG |
799 | struct { |
800 | __be16 h_vlan_proto; | |
801 | __be16 h_vlan_TCI; | |
802 | } veth; | |
0fbe0d47 | 803 | veth.h_vlan_proto = skb->vlan_proto; |
df8a39de | 804 | veth.h_vlan_TCI = htons(skb_vlan_tag_get(skb)); |
f09e2249 BG |
805 | |
806 | vlan_offset = offsetof(struct vlan_ethhdr, h_vlan_proto); | |
ce232ce0 | 807 | total += VLAN_HLEN; |
f09e2249 | 808 | |
6c36d2e2 HX |
809 | ret = skb_copy_datagram_iter(skb, 0, iter, vlan_offset); |
810 | if (ret || !iov_iter_count(iter)) | |
f09e2249 BG |
811 | goto done; |
812 | ||
6c36d2e2 HX |
813 | ret = copy_to_iter(&veth, sizeof(veth), iter); |
814 | if (ret != sizeof(veth) || !iov_iter_count(iter)) | |
f09e2249 BG |
815 | goto done; |
816 | } | |
20d29d7a | 817 | |
6c36d2e2 HX |
818 | ret = skb_copy_datagram_iter(skb, vlan_offset, iter, |
819 | skb->len - vlan_offset); | |
20d29d7a | 820 | |
f09e2249 | 821 | done: |
ce232ce0 | 822 | return ret ? ret : total; |
20d29d7a AB |
823 | } |
824 | ||
635b8c8e SG |
825 | static ssize_t tap_do_read(struct tap_queue *q, |
826 | struct iov_iter *to, | |
3b4ba04a | 827 | int noblock, struct sk_buff *skb) |
20d29d7a | 828 | { |
ccf7e72b | 829 | DEFINE_WAIT(wait); |
501c774c | 830 | ssize_t ret = 0; |
20d29d7a | 831 | |
61d78537 | 832 | if (!iov_iter_count(to)) { |
144a6adf | 833 | kfree_skb(skb); |
3af0bfe5 | 834 | return 0; |
61d78537 | 835 | } |
3af0bfe5 | 836 | |
3b4ba04a JW |
837 | if (skb) |
838 | goto put; | |
839 | ||
3af0bfe5 | 840 | while (1) { |
89cee917 JW |
841 | if (!noblock) |
842 | prepare_to_wait(sk_sleep(&q->sk), &wait, | |
843 | TASK_INTERRUPTIBLE); | |
20d29d7a AB |
844 | |
845 | /* Read frames from the queue */ | |
5990a305 | 846 | skb = ptr_ring_consume(&q->ring); |
3af0bfe5 AV |
847 | if (skb) |
848 | break; | |
849 | if (noblock) { | |
850 | ret = -EAGAIN; | |
851 | break; | |
20d29d7a | 852 | } |
3af0bfe5 AV |
853 | if (signal_pending(current)) { |
854 | ret = -ERESTARTSYS; | |
855 | break; | |
856 | } | |
857 | /* Nothing to read, let's sleep */ | |
858 | schedule(); | |
859 | } | |
a499a2e9 VY |
860 | if (!noblock) |
861 | finish_wait(sk_sleep(&q->sk), &wait); | |
862 | ||
3b4ba04a | 863 | put: |
3af0bfe5 | 864 | if (skb) { |
635b8c8e | 865 | ret = tap_put_user(q, skb, to); |
f51a5e82 JW |
866 | if (unlikely(ret < 0)) |
867 | kfree_skb(skb); | |
868 | else | |
869 | consume_skb(skb); | |
20d29d7a | 870 | } |
501c774c AB |
871 | return ret; |
872 | } | |
873 | ||
635b8c8e | 874 | static ssize_t tap_read_iter(struct kiocb *iocb, struct iov_iter *to) |
501c774c AB |
875 | { |
876 | struct file *file = iocb->ki_filp; | |
635b8c8e | 877 | struct tap_queue *q = file->private_data; |
3af0bfe5 | 878 | ssize_t len = iov_iter_count(to), ret; |
20d29d7a | 879 | |
3b4ba04a | 880 | ret = tap_do_read(q, to, file->f_flags & O_NONBLOCK, NULL); |
ce232ce0 | 881 | ret = min_t(ssize_t, ret, len); |
e6ebc7f1 ZYW |
882 | if (ret > 0) |
883 | iocb->ki_pos = ret; | |
20d29d7a AB |
884 | return ret; |
885 | } | |
886 | ||
6fe3faf8 | 887 | static struct tap_dev *tap_get_tap_dev(struct tap_queue *q) |
8f475a31 | 888 | { |
6fe3faf8 | 889 | struct tap_dev *tap; |
8f475a31 | 890 | |
441ac0fc | 891 | ASSERT_RTNL(); |
6fe3faf8 SG |
892 | tap = rtnl_dereference(q->tap); |
893 | if (tap) | |
894 | dev_hold(tap->dev); | |
8f475a31 | 895 | |
6fe3faf8 | 896 | return tap; |
8f475a31 JW |
897 | } |
898 | ||
6fe3faf8 | 899 | static void tap_put_tap_dev(struct tap_dev *tap) |
8f475a31 | 900 | { |
6fe3faf8 | 901 | dev_put(tap->dev); |
8f475a31 JW |
902 | } |
903 | ||
635b8c8e | 904 | static int tap_ioctl_set_queue(struct file *file, unsigned int flags) |
815f236d | 905 | { |
635b8c8e | 906 | struct tap_queue *q = file->private_data; |
6fe3faf8 | 907 | struct tap_dev *tap; |
815f236d JW |
908 | int ret; |
909 | ||
6fe3faf8 SG |
910 | tap = tap_get_tap_dev(q); |
911 | if (!tap) | |
815f236d JW |
912 | return -EINVAL; |
913 | ||
914 | if (flags & IFF_ATTACH_QUEUE) | |
6fe3faf8 | 915 | ret = tap_enable_queue(tap, file, q); |
815f236d | 916 | else if (flags & IFF_DETACH_QUEUE) |
635b8c8e | 917 | ret = tap_disable_queue(q); |
f57855a5 JW |
918 | else |
919 | ret = -EINVAL; | |
815f236d | 920 | |
6fe3faf8 | 921 | tap_put_tap_dev(tap); |
815f236d JW |
922 | return ret; |
923 | } | |
924 | ||
635b8c8e | 925 | static int set_offload(struct tap_queue *q, unsigned long arg) |
2be5c767 | 926 | { |
6fe3faf8 | 927 | struct tap_dev *tap; |
2be5c767 VY |
928 | netdev_features_t features; |
929 | netdev_features_t feature_mask = 0; | |
930 | ||
6fe3faf8 SG |
931 | tap = rtnl_dereference(q->tap); |
932 | if (!tap) | |
2be5c767 VY |
933 | return -ENOLINK; |
934 | ||
6fe3faf8 | 935 | features = tap->dev->features; |
2be5c767 VY |
936 | |
937 | if (arg & TUN_F_CSUM) { | |
938 | feature_mask = NETIF_F_HW_CSUM; | |
939 | ||
940 | if (arg & (TUN_F_TSO4 | TUN_F_TSO6)) { | |
941 | if (arg & TUN_F_TSO_ECN) | |
942 | feature_mask |= NETIF_F_TSO_ECN; | |
943 | if (arg & TUN_F_TSO4) | |
944 | feature_mask |= NETIF_F_TSO; | |
945 | if (arg & TUN_F_TSO6) | |
946 | feature_mask |= NETIF_F_TSO6; | |
947 | } | |
2be5c767 VY |
948 | } |
949 | ||
950 | /* tun/tap driver inverts the usage for TSO offloads, where | |
951 | * setting the TSO bit means that the userspace wants to | |
952 | * accept TSO frames and turning it off means that user space | |
953 | * does not support TSO. | |
635b8c8e | 954 | * For tap, we have to invert it to mean the same thing. |
2be5c767 VY |
955 | * When user space turns off TSO, we turn off GSO/LRO so that |
956 | * user-space will not receive TSO frames. | |
957 | */ | |
d591a1f3 | 958 | if (feature_mask & (NETIF_F_TSO | NETIF_F_TSO6)) |
2be5c767 VY |
959 | features |= RX_OFFLOADS; |
960 | else | |
961 | features &= ~RX_OFFLOADS; | |
962 | ||
963 | /* tap_features are the same as features on tun/tap and | |
964 | * reflect user expectations. | |
965 | */ | |
6fe3faf8 SG |
966 | tap->tap_features = feature_mask; |
967 | if (tap->update_features) | |
968 | tap->update_features(tap, features); | |
2be5c767 VY |
969 | |
970 | return 0; | |
971 | } | |
972 | ||
20d29d7a AB |
973 | /* |
974 | * provide compatibility with generic tun/tap interface | |
975 | */ | |
635b8c8e SG |
976 | static long tap_ioctl(struct file *file, unsigned int cmd, |
977 | unsigned long arg) | |
20d29d7a | 978 | { |
635b8c8e | 979 | struct tap_queue *q = file->private_data; |
6fe3faf8 | 980 | struct tap_dev *tap; |
20d29d7a AB |
981 | void __user *argp = (void __user *)arg; |
982 | struct ifreq __user *ifr = argp; | |
983 | unsigned int __user *up = argp; | |
39ec7de7 | 984 | unsigned short u; |
55afbd08 | 985 | int __user *sp = argp; |
7f460d30 | 986 | struct sockaddr sa; |
55afbd08 | 987 | int s; |
02df55d2 | 988 | int ret; |
20d29d7a AB |
989 | |
990 | switch (cmd) { | |
991 | case TUNSETIFF: | |
992 | /* ignore the name, just look at flags */ | |
993 | if (get_user(u, &ifr->ifr_flags)) | |
994 | return -EFAULT; | |
b9fb9ee0 AB |
995 | |
996 | ret = 0; | |
635b8c8e | 997 | if ((u & ~TAP_IFFEATURES) != (IFF_NO_PI | IFF_TAP)) |
b9fb9ee0 AB |
998 | ret = -EINVAL; |
999 | else | |
635b8c8e | 1000 | q->flags = (q->flags & ~TAP_IFFEATURES) | u; |
b9fb9ee0 AB |
1001 | |
1002 | return ret; | |
20d29d7a AB |
1003 | |
1004 | case TUNGETIFF: | |
441ac0fc | 1005 | rtnl_lock(); |
6fe3faf8 SG |
1006 | tap = tap_get_tap_dev(q); |
1007 | if (!tap) { | |
441ac0fc | 1008 | rtnl_unlock(); |
20d29d7a | 1009 | return -ENOLINK; |
441ac0fc | 1010 | } |
20d29d7a | 1011 | |
02df55d2 | 1012 | ret = 0; |
39ec7de7 | 1013 | u = q->flags; |
6fe3faf8 | 1014 | if (copy_to_user(&ifr->ifr_name, tap->dev->name, IFNAMSIZ) || |
39ec7de7 | 1015 | put_user(u, &ifr->ifr_flags)) |
02df55d2 | 1016 | ret = -EFAULT; |
6fe3faf8 | 1017 | tap_put_tap_dev(tap); |
441ac0fc | 1018 | rtnl_unlock(); |
02df55d2 | 1019 | return ret; |
20d29d7a | 1020 | |
815f236d JW |
1021 | case TUNSETQUEUE: |
1022 | if (get_user(u, &ifr->ifr_flags)) | |
1023 | return -EFAULT; | |
441ac0fc | 1024 | rtnl_lock(); |
635b8c8e | 1025 | ret = tap_ioctl_set_queue(file, u); |
441ac0fc | 1026 | rtnl_unlock(); |
82a19eb8 | 1027 | return ret; |
815f236d | 1028 | |
20d29d7a | 1029 | case TUNGETFEATURES: |
635b8c8e | 1030 | if (put_user(IFF_TAP | IFF_NO_PI | TAP_IFFEATURES, up)) |
20d29d7a AB |
1031 | return -EFAULT; |
1032 | return 0; | |
1033 | ||
1034 | case TUNSETSNDBUF: | |
3ea79249 | 1035 | if (get_user(s, sp)) |
20d29d7a | 1036 | return -EFAULT; |
93161922 CG |
1037 | if (s <= 0) |
1038 | return -EINVAL; | |
20d29d7a | 1039 | |
3ea79249 | 1040 | q->sk.sk_sndbuf = s; |
20d29d7a AB |
1041 | return 0; |
1042 | ||
55afbd08 MT |
1043 | case TUNGETVNETHDRSZ: |
1044 | s = q->vnet_hdr_sz; | |
1045 | if (put_user(s, sp)) | |
1046 | return -EFAULT; | |
1047 | return 0; | |
1048 | ||
1049 | case TUNSETVNETHDRSZ: | |
1050 | if (get_user(s, sp)) | |
1051 | return -EFAULT; | |
1052 | if (s < (int)sizeof(struct virtio_net_hdr)) | |
1053 | return -EINVAL; | |
1054 | ||
1055 | q->vnet_hdr_sz = s; | |
1056 | return 0; | |
1057 | ||
01b07fb3 | 1058 | case TUNGETVNETLE: |
635b8c8e | 1059 | s = !!(q->flags & TAP_VNET_LE); |
01b07fb3 MT |
1060 | if (put_user(s, sp)) |
1061 | return -EFAULT; | |
1062 | return 0; | |
1063 | ||
1064 | case TUNSETVNETLE: | |
1065 | if (get_user(s, sp)) | |
1066 | return -EFAULT; | |
1067 | if (s) | |
635b8c8e | 1068 | q->flags |= TAP_VNET_LE; |
01b07fb3 | 1069 | else |
635b8c8e | 1070 | q->flags &= ~TAP_VNET_LE; |
01b07fb3 MT |
1071 | return 0; |
1072 | ||
8b8e658b | 1073 | case TUNGETVNETBE: |
635b8c8e | 1074 | return tap_get_vnet_be(q, sp); |
8b8e658b GK |
1075 | |
1076 | case TUNSETVNETBE: | |
635b8c8e | 1077 | return tap_set_vnet_be(q, sp); |
8b8e658b | 1078 | |
20d29d7a AB |
1079 | case TUNSETOFFLOAD: |
1080 | /* let the user check for future flags */ | |
1081 | if (arg & ~(TUN_F_CSUM | TUN_F_TSO4 | TUN_F_TSO6 | | |
0c19f846 | 1082 | TUN_F_TSO_ECN | TUN_F_UFO)) |
20d29d7a AB |
1083 | return -EINVAL; |
1084 | ||
2be5c767 VY |
1085 | rtnl_lock(); |
1086 | ret = set_offload(q, arg); | |
1087 | rtnl_unlock(); | |
1088 | return ret; | |
20d29d7a | 1089 | |
b5082083 JC |
1090 | case SIOCGIFHWADDR: |
1091 | rtnl_lock(); | |
6fe3faf8 SG |
1092 | tap = tap_get_tap_dev(q); |
1093 | if (!tap) { | |
b5082083 JC |
1094 | rtnl_unlock(); |
1095 | return -ENOLINK; | |
1096 | } | |
1097 | ret = 0; | |
6fe3faf8 SG |
1098 | u = tap->dev->type; |
1099 | if (copy_to_user(&ifr->ifr_name, tap->dev->name, IFNAMSIZ) || | |
1100 | copy_to_user(&ifr->ifr_hwaddr.sa_data, tap->dev->dev_addr, ETH_ALEN) || | |
b5082083 JC |
1101 | put_user(u, &ifr->ifr_hwaddr.sa_family)) |
1102 | ret = -EFAULT; | |
6fe3faf8 | 1103 | tap_put_tap_dev(tap); |
b5082083 JC |
1104 | rtnl_unlock(); |
1105 | return ret; | |
1106 | ||
1107 | case SIOCSIFHWADDR: | |
7f460d30 JC |
1108 | if (copy_from_user(&sa, &ifr->ifr_hwaddr, sizeof(sa))) |
1109 | return -EFAULT; | |
b5082083 | 1110 | rtnl_lock(); |
6fe3faf8 SG |
1111 | tap = tap_get_tap_dev(q); |
1112 | if (!tap) { | |
b5082083 JC |
1113 | rtnl_unlock(); |
1114 | return -ENOLINK; | |
1115 | } | |
3a37a963 | 1116 | ret = dev_set_mac_address(tap->dev, &sa, NULL); |
6fe3faf8 | 1117 | tap_put_tap_dev(tap); |
b5082083 JC |
1118 | rtnl_unlock(); |
1119 | return ret; | |
1120 | ||
20d29d7a AB |
1121 | default: |
1122 | return -EINVAL; | |
1123 | } | |
1124 | } | |
1125 | ||
1126 | #ifdef CONFIG_COMPAT | |
635b8c8e SG |
1127 | static long tap_compat_ioctl(struct file *file, unsigned int cmd, |
1128 | unsigned long arg) | |
20d29d7a | 1129 | { |
635b8c8e | 1130 | return tap_ioctl(file, cmd, (unsigned long)compat_ptr(arg)); |
20d29d7a AB |
1131 | } |
1132 | #endif | |
1133 | ||
d17eb73b | 1134 | static const struct file_operations tap_fops = { |
20d29d7a | 1135 | .owner = THIS_MODULE, |
635b8c8e SG |
1136 | .open = tap_open, |
1137 | .release = tap_release, | |
1138 | .read_iter = tap_read_iter, | |
1139 | .write_iter = tap_write_iter, | |
1140 | .poll = tap_poll, | |
20d29d7a | 1141 | .llseek = no_llseek, |
635b8c8e | 1142 | .unlocked_ioctl = tap_ioctl, |
20d29d7a | 1143 | #ifdef CONFIG_COMPAT |
635b8c8e | 1144 | .compat_ioctl = tap_compat_ioctl, |
20d29d7a AB |
1145 | #endif |
1146 | }; | |
1147 | ||
0efac277 JW |
1148 | static int tap_get_user_xdp(struct tap_queue *q, struct xdp_buff *xdp) |
1149 | { | |
1150 | struct tun_xdp_hdr *hdr = xdp->data_hard_start; | |
1151 | struct virtio_net_hdr *gso = &hdr->gso; | |
1152 | int buflen = hdr->buflen; | |
1153 | int vnet_hdr_len = 0; | |
1154 | struct tap_dev *tap; | |
1155 | struct sk_buff *skb; | |
1156 | int err, depth; | |
1157 | ||
1158 | if (q->flags & IFF_VNET_HDR) | |
1159 | vnet_hdr_len = READ_ONCE(q->vnet_hdr_sz); | |
1160 | ||
1161 | skb = build_skb(xdp->data_hard_start, buflen); | |
1162 | if (!skb) { | |
1163 | err = -ENOMEM; | |
1164 | goto err; | |
1165 | } | |
1166 | ||
1167 | skb_reserve(skb, xdp->data - xdp->data_hard_start); | |
1168 | skb_put(skb, xdp->data_end - xdp->data); | |
1169 | ||
1170 | skb_set_network_header(skb, ETH_HLEN); | |
1171 | skb_reset_mac_header(skb); | |
1172 | skb->protocol = eth_hdr(skb)->h_proto; | |
1173 | ||
1174 | if (vnet_hdr_len) { | |
1175 | err = virtio_net_hdr_to_skb(skb, gso, tap_is_little_endian(q)); | |
1176 | if (err) | |
1177 | goto err_kfree; | |
1178 | } | |
1179 | ||
0efac277 JW |
1180 | /* Move network header to the right position for VLAN tagged packets */ |
1181 | if ((skb->protocol == htons(ETH_P_8021Q) || | |
1182 | skb->protocol == htons(ETH_P_8021AD)) && | |
1183 | __vlan_get_protocol(skb, skb->protocol, &depth) != 0) | |
1184 | skb_set_network_header(skb, depth); | |
1185 | ||
1186 | rcu_read_lock(); | |
1187 | tap = rcu_dereference(q->tap); | |
1188 | if (tap) { | |
1189 | skb->dev = tap->dev; | |
d2aa125d | 1190 | skb_probe_transport_header(skb); |
0efac277 JW |
1191 | dev_queue_xmit(skb); |
1192 | } else { | |
1193 | kfree_skb(skb); | |
1194 | } | |
1195 | rcu_read_unlock(); | |
1196 | ||
1197 | return 0; | |
1198 | ||
1199 | err_kfree: | |
1200 | kfree_skb(skb); | |
1201 | err: | |
1202 | rcu_read_lock(); | |
1203 | tap = rcu_dereference(q->tap); | |
1204 | if (tap && tap->count_tx_dropped) | |
1205 | tap->count_tx_dropped(tap); | |
1206 | rcu_read_unlock(); | |
1207 | return err; | |
1208 | } | |
1209 | ||
635b8c8e SG |
1210 | static int tap_sendmsg(struct socket *sock, struct msghdr *m, |
1211 | size_t total_len) | |
501c774c | 1212 | { |
635b8c8e | 1213 | struct tap_queue *q = container_of(sock, struct tap_queue, sock); |
fe8dd45b | 1214 | struct tun_msg_ctl *ctl = m->msg_control; |
0efac277 JW |
1215 | struct xdp_buff *xdp; |
1216 | int i; | |
fe8dd45b | 1217 | |
0efac277 JW |
1218 | if (ctl && (ctl->type == TUN_MSG_PTR)) { |
1219 | for (i = 0; i < ctl->num; i++) { | |
1220 | xdp = &((struct xdp_buff *)ctl->ptr)[i]; | |
1221 | tap_get_user_xdp(q, xdp); | |
1222 | } | |
1223 | return 0; | |
1224 | } | |
fe8dd45b JW |
1225 | |
1226 | return tap_get_user(q, ctl ? ctl->ptr : NULL, &m->msg_iter, | |
1227 | m->msg_flags & MSG_DONTWAIT); | |
501c774c AB |
1228 | } |
1229 | ||
635b8c8e SG |
1230 | static int tap_recvmsg(struct socket *sock, struct msghdr *m, |
1231 | size_t total_len, int flags) | |
501c774c | 1232 | { |
635b8c8e | 1233 | struct tap_queue *q = container_of(sock, struct tap_queue, sock); |
61d78537 | 1234 | struct sk_buff *skb = m->msg_control; |
501c774c | 1235 | int ret; |
61d78537 | 1236 | if (flags & ~(MSG_DONTWAIT|MSG_TRUNC)) { |
144a6adf | 1237 | kfree_skb(skb); |
501c774c | 1238 | return -EINVAL; |
61d78537 WX |
1239 | } |
1240 | ret = tap_do_read(q, &m->msg_iter, flags & MSG_DONTWAIT, skb); | |
de2aa476 DM |
1241 | if (ret > total_len) { |
1242 | m->msg_flags |= MSG_TRUNC; | |
1243 | ret = flags & MSG_TRUNC ? ret : total_len; | |
1244 | } | |
501c774c AB |
1245 | return ret; |
1246 | } | |
1247 | ||
635b8c8e | 1248 | static int tap_peek_len(struct socket *sock) |
362899b8 | 1249 | { |
635b8c8e | 1250 | struct tap_queue *q = container_of(sock, struct tap_queue, |
362899b8 | 1251 | sock); |
5990a305 | 1252 | return PTR_RING_PEEK_CALL(&q->ring, __skb_array_len_with_tag); |
362899b8 JW |
1253 | } |
1254 | ||
501c774c | 1255 | /* Ops structure to mimic raw sockets with tun */ |
635b8c8e SG |
1256 | static const struct proto_ops tap_socket_ops = { |
1257 | .sendmsg = tap_sendmsg, | |
1258 | .recvmsg = tap_recvmsg, | |
1259 | .peek_len = tap_peek_len, | |
501c774c AB |
1260 | }; |
1261 | ||
1262 | /* Get an underlying socket object from tun file. Returns error unless file is | |
1263 | * attached to a device. The returned object works like a packet socket, it | |
1264 | * can be used for sock_sendmsg/sock_recvmsg. The caller is responsible for | |
1265 | * holding a reference to the file for as long as the socket is in use. */ | |
635b8c8e | 1266 | struct socket *tap_get_socket(struct file *file) |
501c774c | 1267 | { |
635b8c8e SG |
1268 | struct tap_queue *q; |
1269 | if (file->f_op != &tap_fops) | |
501c774c AB |
1270 | return ERR_PTR(-EINVAL); |
1271 | q = file->private_data; | |
1272 | if (!q) | |
1273 | return ERR_PTR(-EBADFD); | |
1274 | return &q->sock; | |
1275 | } | |
635b8c8e | 1276 | EXPORT_SYMBOL_GPL(tap_get_socket); |
501c774c | 1277 | |
5990a305 | 1278 | struct ptr_ring *tap_get_ptr_ring(struct file *file) |
49f96fd0 JW |
1279 | { |
1280 | struct tap_queue *q; | |
1281 | ||
1282 | if (file->f_op != &tap_fops) | |
1283 | return ERR_PTR(-EINVAL); | |
1284 | q = file->private_data; | |
1285 | if (!q) | |
1286 | return ERR_PTR(-EBADFD); | |
5990a305 | 1287 | return &q->ring; |
49f96fd0 | 1288 | } |
5990a305 | 1289 | EXPORT_SYMBOL_GPL(tap_get_ptr_ring); |
49f96fd0 | 1290 | |
6fe3faf8 | 1291 | int tap_queue_resize(struct tap_dev *tap) |
362899b8 | 1292 | { |
6fe3faf8 | 1293 | struct net_device *dev = tap->dev; |
635b8c8e | 1294 | struct tap_queue *q; |
5990a305 | 1295 | struct ptr_ring **rings; |
6fe3faf8 | 1296 | int n = tap->numqueues; |
362899b8 JW |
1297 | int ret, i = 0; |
1298 | ||
5990a305 JW |
1299 | rings = kmalloc_array(n, sizeof(*rings), GFP_KERNEL); |
1300 | if (!rings) | |
362899b8 JW |
1301 | return -ENOMEM; |
1302 | ||
6fe3faf8 | 1303 | list_for_each_entry(q, &tap->queue_list, next) |
5990a305 | 1304 | rings[i++] = &q->ring; |
362899b8 | 1305 | |
5990a305 JW |
1306 | ret = ptr_ring_resize_multiple(rings, n, |
1307 | dev->tx_queue_len, GFP_KERNEL, | |
1308 | __skb_array_destroy_skb); | |
362899b8 | 1309 | |
5990a305 | 1310 | kfree(rings); |
362899b8 JW |
1311 | return ret; |
1312 | } | |
9a393b5d | 1313 | EXPORT_SYMBOL_GPL(tap_queue_resize); |
ebc05ba7 | 1314 | |
d9f1f61c SG |
1315 | static int tap_list_add(dev_t major, const char *device_name) |
1316 | { | |
1317 | struct major_info *tap_major; | |
1318 | ||
1319 | tap_major = kzalloc(sizeof(*tap_major), GFP_ATOMIC); | |
1320 | if (!tap_major) | |
1321 | return -ENOMEM; | |
1322 | ||
1323 | tap_major->major = MAJOR(major); | |
1324 | ||
1325 | idr_init(&tap_major->minor_idr); | |
ffa423fb | 1326 | spin_lock_init(&tap_major->minor_lock); |
d9f1f61c SG |
1327 | |
1328 | tap_major->device_name = device_name; | |
1329 | ||
1330 | list_add_tail_rcu(&tap_major->next, &major_list); | |
1331 | return 0; | |
1332 | } | |
1333 | ||
dea6e19f GM |
1334 | int tap_create_cdev(struct cdev *tap_cdev, dev_t *tap_major, |
1335 | const char *device_name, struct module *module) | |
ebc05ba7 SG |
1336 | { |
1337 | int err; | |
1338 | ||
1339 | err = alloc_chrdev_region(tap_major, 0, TAP_NUM_DEVS, device_name); | |
1340 | if (err) | |
1341 | goto out1; | |
1342 | ||
1343 | cdev_init(tap_cdev, &tap_fops); | |
dea6e19f | 1344 | tap_cdev->owner = module; |
ebc05ba7 SG |
1345 | err = cdev_add(tap_cdev, *tap_major, TAP_NUM_DEVS); |
1346 | if (err) | |
1347 | goto out2; | |
1348 | ||
d9f1f61c SG |
1349 | err = tap_list_add(*tap_major, device_name); |
1350 | if (err) | |
1351 | goto out3; | |
ebc05ba7 SG |
1352 | |
1353 | return 0; | |
1354 | ||
d9f1f61c SG |
1355 | out3: |
1356 | cdev_del(tap_cdev); | |
ebc05ba7 SG |
1357 | out2: |
1358 | unregister_chrdev_region(*tap_major, TAP_NUM_DEVS); | |
1359 | out1: | |
1360 | return err; | |
1361 | } | |
9a393b5d | 1362 | EXPORT_SYMBOL_GPL(tap_create_cdev); |
ebc05ba7 SG |
1363 | |
1364 | void tap_destroy_cdev(dev_t major, struct cdev *tap_cdev) | |
1365 | { | |
d9f1f61c SG |
1366 | struct major_info *tap_major, *tmp; |
1367 | ||
ebc05ba7 SG |
1368 | cdev_del(tap_cdev); |
1369 | unregister_chrdev_region(major, TAP_NUM_DEVS); | |
d9f1f61c SG |
1370 | list_for_each_entry_safe(tap_major, tmp, &major_list, next) { |
1371 | if (tap_major->major == MAJOR(major)) { | |
1372 | idr_destroy(&tap_major->minor_idr); | |
1373 | list_del_rcu(&tap_major->next); | |
1374 | kfree_rcu(tap_major, rcu); | |
1375 | } | |
1376 | } | |
ebc05ba7 | 1377 | } |
9a393b5d SG |
1378 | EXPORT_SYMBOL_GPL(tap_destroy_cdev); |
1379 | ||
1380 | MODULE_AUTHOR("Arnd Bergmann <[email protected]>"); | |
1381 | MODULE_AUTHOR("Sainath Grandhi <[email protected]>"); | |
1382 | MODULE_LICENSE("GPL"); |