]>
Commit | Line | Data |
---|---|---|
1da177e4 LT |
1 | /* |
2 | * net/sched/act_api.c Packet action API. | |
3 | * | |
4 | * This program is free software; you can redistribute it and/or | |
5 | * modify it under the terms of the GNU General Public License | |
6 | * as published by the Free Software Foundation; either version | |
7 | * 2 of the License, or (at your option) any later version. | |
8 | * | |
9 | * Author: Jamal Hadi Salim | |
10 | * | |
11 | * | |
12 | */ | |
13 | ||
1da177e4 LT |
14 | #include <linux/types.h> |
15 | #include <linux/kernel.h> | |
1da177e4 | 16 | #include <linux/string.h> |
1da177e4 | 17 | #include <linux/errno.h> |
5a0e3ad6 | 18 | #include <linux/slab.h> |
1da177e4 | 19 | #include <linux/skbuff.h> |
1da177e4 LT |
20 | #include <linux/init.h> |
21 | #include <linux/kmod.h> | |
ab27cfb8 | 22 | #include <linux/err.h> |
3a9a231d | 23 | #include <linux/module.h> |
b854272b DL |
24 | #include <net/net_namespace.h> |
25 | #include <net/sock.h> | |
1da177e4 | 26 | #include <net/sch_generic.h> |
1045ba77 | 27 | #include <net/pkt_cls.h> |
1da177e4 | 28 | #include <net/act_api.h> |
dc5fc579 | 29 | #include <net/netlink.h> |
1da177e4 | 30 | |
db50514f JP |
31 | static void tcf_action_goto_chain_exec(const struct tc_action *a, |
32 | struct tcf_result *res) | |
33 | { | |
ee3bbfe8 | 34 | const struct tcf_chain *chain = rcu_dereference_bh(a->goto_chain); |
db50514f JP |
35 | |
36 | res->goto_tp = rcu_dereference_bh(chain->filter_chain); | |
37 | } | |
38 | ||
eec94fdb VB |
39 | static void tcf_free_cookie_rcu(struct rcu_head *p) |
40 | { | |
41 | struct tc_cookie *cookie = container_of(p, struct tc_cookie, rcu); | |
42 | ||
43 | kfree(cookie->data); | |
44 | kfree(cookie); | |
45 | } | |
46 | ||
47 | static void tcf_set_action_cookie(struct tc_cookie __rcu **old_cookie, | |
48 | struct tc_cookie *new_cookie) | |
49 | { | |
50 | struct tc_cookie *old; | |
51 | ||
0dbc81ea | 52 | old = xchg((__force struct tc_cookie **)old_cookie, new_cookie); |
eec94fdb VB |
53 | if (old) |
54 | call_rcu(&old->rcu, tcf_free_cookie_rcu); | |
55 | } | |
56 | ||
85d0966f DC |
57 | int tcf_action_check_ctrlact(int action, struct tcf_proto *tp, |
58 | struct tcf_chain **newchain, | |
59 | struct netlink_ext_ack *extack) | |
60 | { | |
61 | int opcode = TC_ACT_EXT_OPCODE(action), ret = -EINVAL; | |
62 | u32 chain_index; | |
63 | ||
64 | if (!opcode) | |
65 | ret = action > TC_ACT_VALUE_MAX ? -EINVAL : 0; | |
66 | else if (opcode <= TC_ACT_EXT_OPCODE_MAX || action == TC_ACT_UNSPEC) | |
67 | ret = 0; | |
68 | if (ret) { | |
69 | NL_SET_ERR_MSG(extack, "invalid control action"); | |
70 | goto end; | |
71 | } | |
72 | ||
73 | if (TC_ACT_EXT_CMP(action, TC_ACT_GOTO_CHAIN)) { | |
74 | chain_index = action & TC_ACT_EXT_VAL_MASK; | |
75 | if (!tp || !newchain) { | |
76 | ret = -EINVAL; | |
77 | NL_SET_ERR_MSG(extack, | |
78 | "can't goto NULL proto/chain"); | |
79 | goto end; | |
80 | } | |
81 | *newchain = tcf_chain_get_by_act(tp->chain->block, chain_index); | |
82 | if (!*newchain) { | |
83 | ret = -ENOMEM; | |
84 | NL_SET_ERR_MSG(extack, | |
85 | "can't allocate goto_chain"); | |
86 | } | |
87 | } | |
88 | end: | |
89 | return ret; | |
90 | } | |
91 | EXPORT_SYMBOL(tcf_action_check_ctrlact); | |
92 | ||
93 | struct tcf_chain *tcf_action_set_ctrlact(struct tc_action *a, int action, | |
ee3bbfe8 | 94 | struct tcf_chain *goto_chain) |
85d0966f | 95 | { |
85d0966f | 96 | a->tcfa_action = action; |
ee3bbfe8 DC |
97 | rcu_swap_protected(a->goto_chain, goto_chain, 1); |
98 | return goto_chain; | |
85d0966f DC |
99 | } |
100 | EXPORT_SYMBOL(tcf_action_set_ctrlact); | |
101 | ||
d7fb60b9 CW |
102 | /* XXX: For standalone actions, we don't need a RCU grace period either, because |
103 | * actions are always connected to filters and filters are already destroyed in | |
104 | * RCU callbacks, so after a RCU grace period actions are already disconnected | |
105 | * from filters. Readers later can not find us. | |
106 | */ | |
107 | static void free_tcf(struct tc_action *p) | |
519c818e | 108 | { |
ee3bbfe8 | 109 | struct tcf_chain *chain = rcu_dereference_protected(p->goto_chain, 1); |
85d0966f | 110 | |
519c818e | 111 | free_percpu(p->cpu_bstats); |
28169aba | 112 | free_percpu(p->cpu_bstats_hw); |
519c818e | 113 | free_percpu(p->cpu_qstats); |
1045ba77 | 114 | |
eec94fdb | 115 | tcf_set_action_cookie(&p->act_cookie, NULL); |
85d0966f DC |
116 | if (chain) |
117 | tcf_chain_put_by_act(chain); | |
1045ba77 | 118 | |
519c818e ED |
119 | kfree(p); |
120 | } | |
121 | ||
16af6067 | 122 | static void tcf_action_cleanup(struct tc_action *p) |
e9ce1cd3 | 123 | { |
16af6067 VB |
124 | if (p->ops->cleanup) |
125 | p->ops->cleanup(p); | |
126 | ||
1c0d32fd | 127 | gen_kill_estimator(&p->tcfa_rate_est); |
d7fb60b9 | 128 | free_tcf(p); |
e9ce1cd3 | 129 | } |
e9ce1cd3 | 130 | |
16af6067 VB |
131 | static int __tcf_action_put(struct tc_action *p, bool bind) |
132 | { | |
133 | struct tcf_idrinfo *idrinfo = p->idrinfo; | |
134 | ||
95278dda | 135 | if (refcount_dec_and_mutex_lock(&p->tcfa_refcnt, &idrinfo->lock)) { |
16af6067 VB |
136 | if (bind) |
137 | atomic_dec(&p->tcfa_bindcnt); | |
138 | idr_remove(&idrinfo->action_idr, p->tcfa_index); | |
95278dda | 139 | mutex_unlock(&idrinfo->lock); |
16af6067 VB |
140 | |
141 | tcf_action_cleanup(p); | |
142 | return 1; | |
143 | } | |
144 | ||
145 | if (bind) | |
146 | atomic_dec(&p->tcfa_bindcnt); | |
147 | ||
148 | return 0; | |
149 | } | |
150 | ||
65a206c0 | 151 | int __tcf_idr_release(struct tc_action *p, bool bind, bool strict) |
e9ce1cd3 DM |
152 | { |
153 | int ret = 0; | |
154 | ||
036bb443 VB |
155 | /* Release with strict==1 and bind==0 is only called through act API |
156 | * interface (classifiers always bind). Only case when action with | |
157 | * positive reference count and zero bind count can exist is when it was | |
158 | * also created with act API (unbinding last classifier will destroy the | |
159 | * action if it was created by classifier). So only case when bind count | |
160 | * can be changed after initial check is when unbound action is | |
161 | * destroyed by act API while classifier binds to action with same id | |
162 | * concurrently. This result either creation of new action(same behavior | |
163 | * as before), or reusing existing action if concurrent process | |
164 | * increments reference count before action is deleted. Both scenarios | |
165 | * are acceptable. | |
166 | */ | |
e9ce1cd3 | 167 | if (p) { |
16af6067 | 168 | if (!bind && strict && atomic_read(&p->tcfa_bindcnt) > 0) |
55334a5d | 169 | return -EPERM; |
e9ce1cd3 | 170 | |
16af6067 | 171 | if (__tcf_action_put(p, bind)) |
1d4150c0 | 172 | ret = ACT_P_DELETED; |
e9ce1cd3 | 173 | } |
28e6b67f | 174 | |
e9ce1cd3 DM |
175 | return ret; |
176 | } | |
65a206c0 | 177 | EXPORT_SYMBOL(__tcf_idr_release); |
e9ce1cd3 | 178 | |
4e76e75d RM |
179 | static size_t tcf_action_shared_attrs_size(const struct tc_action *act) |
180 | { | |
e0479b67 | 181 | struct tc_cookie *act_cookie; |
4e76e75d RM |
182 | u32 cookie_len = 0; |
183 | ||
e0479b67 VB |
184 | rcu_read_lock(); |
185 | act_cookie = rcu_dereference(act->act_cookie); | |
186 | ||
187 | if (act_cookie) | |
188 | cookie_len = nla_total_size(act_cookie->len); | |
189 | rcu_read_unlock(); | |
4e76e75d RM |
190 | |
191 | return nla_total_size(0) /* action number nested */ | |
192 | + nla_total_size(IFNAMSIZ) /* TCA_ACT_KIND */ | |
193 | + cookie_len /* TCA_ACT_COOKIE */ | |
194 | + nla_total_size(0) /* TCA_ACT_STATS nested */ | |
195 | /* TCA_STATS_BASIC */ | |
196 | + nla_total_size_64bit(sizeof(struct gnet_stats_basic)) | |
197 | /* TCA_STATS_QUEUE */ | |
198 | + nla_total_size_64bit(sizeof(struct gnet_stats_queue)) | |
199 | + nla_total_size(0) /* TCA_OPTIONS nested */ | |
200 | + nla_total_size(sizeof(struct tcf_t)); /* TCA_GACT_TM */ | |
201 | } | |
202 | ||
203 | static size_t tcf_action_full_attrs_size(size_t sz) | |
204 | { | |
205 | return NLMSG_HDRLEN /* struct nlmsghdr */ | |
206 | + sizeof(struct tcamsg) | |
207 | + nla_total_size(0) /* TCA_ACT_TAB nested */ | |
208 | + sz; | |
209 | } | |
210 | ||
211 | static size_t tcf_action_fill_size(const struct tc_action *act) | |
212 | { | |
213 | size_t sz = tcf_action_shared_attrs_size(act); | |
214 | ||
215 | if (act->ops->get_fill_size) | |
216 | return act->ops->get_fill_size(act) + sz; | |
217 | return sz; | |
218 | } | |
219 | ||
65a206c0 | 220 | static int tcf_dump_walker(struct tcf_idrinfo *idrinfo, struct sk_buff *skb, |
a85a970a | 221 | struct netlink_callback *cb) |
e9ce1cd3 | 222 | { |
65a206c0 | 223 | int err = 0, index = -1, s_i = 0, n_i = 0; |
90825b23 | 224 | u32 act_flags = cb->args[2]; |
e62e484d | 225 | unsigned long jiffy_since = cb->args[3]; |
4b3550ef | 226 | struct nlattr *nest; |
65a206c0 CM |
227 | struct idr *idr = &idrinfo->action_idr; |
228 | struct tc_action *p; | |
229 | unsigned long id = 1; | |
e9ce1cd3 | 230 | |
95278dda | 231 | mutex_lock(&idrinfo->lock); |
e9ce1cd3 DM |
232 | |
233 | s_i = cb->args[0]; | |
234 | ||
7a457577 | 235 | idr_for_each_entry_ul(idr, p, id) { |
65a206c0 CM |
236 | index++; |
237 | if (index < s_i) | |
238 | continue; | |
239 | ||
240 | if (jiffy_since && | |
241 | time_after(jiffy_since, | |
242 | (unsigned long)p->tcfa_tm.lastuse)) | |
243 | continue; | |
244 | ||
ae0be8de | 245 | nest = nla_nest_start_noflag(skb, n_i); |
734549eb CD |
246 | if (!nest) { |
247 | index--; | |
65a206c0 | 248 | goto nla_put_failure; |
734549eb | 249 | } |
65a206c0 CM |
250 | err = tcf_action_dump_1(skb, p, 0, 0); |
251 | if (err < 0) { | |
252 | index--; | |
253 | nlmsg_trim(skb, nest); | |
254 | goto done; | |
e9ce1cd3 | 255 | } |
65a206c0 CM |
256 | nla_nest_end(skb, nest); |
257 | n_i++; | |
258 | if (!(act_flags & TCA_FLAG_LARGE_DUMP_ON) && | |
259 | n_i >= TCA_ACT_MAX_PRIO) | |
260 | goto done; | |
e9ce1cd3 DM |
261 | } |
262 | done: | |
e62e484d JHS |
263 | if (index >= 0) |
264 | cb->args[0] = index + 1; | |
265 | ||
95278dda | 266 | mutex_unlock(&idrinfo->lock); |
90825b23 | 267 | if (n_i) { |
90825b23 JHS |
268 | if (act_flags & TCA_FLAG_LARGE_DUMP_ON) |
269 | cb->args[1] = n_i; | |
270 | } | |
e9ce1cd3 DM |
271 | return n_i; |
272 | ||
7ba699c6 | 273 | nla_put_failure: |
4b3550ef | 274 | nla_nest_cancel(skb, nest); |
e9ce1cd3 DM |
275 | goto done; |
276 | } | |
277 | ||
ec3ed293 VB |
278 | static int tcf_idr_release_unsafe(struct tc_action *p) |
279 | { | |
280 | if (atomic_read(&p->tcfa_bindcnt) > 0) | |
281 | return -EPERM; | |
282 | ||
283 | if (refcount_dec_and_test(&p->tcfa_refcnt)) { | |
284 | idr_remove(&p->idrinfo->action_idr, p->tcfa_index); | |
285 | tcf_action_cleanup(p); | |
286 | return ACT_P_DELETED; | |
287 | } | |
288 | ||
289 | return 0; | |
290 | } | |
291 | ||
65a206c0 | 292 | static int tcf_del_walker(struct tcf_idrinfo *idrinfo, struct sk_buff *skb, |
a85a970a | 293 | const struct tc_action_ops *ops) |
e9ce1cd3 | 294 | { |
4b3550ef | 295 | struct nlattr *nest; |
65a206c0 | 296 | int n_i = 0; |
55334a5d | 297 | int ret = -EINVAL; |
65a206c0 CM |
298 | struct idr *idr = &idrinfo->action_idr; |
299 | struct tc_action *p; | |
300 | unsigned long id = 1; | |
e9ce1cd3 | 301 | |
ae0be8de | 302 | nest = nla_nest_start_noflag(skb, 0); |
4b3550ef PM |
303 | if (nest == NULL) |
304 | goto nla_put_failure; | |
a85a970a | 305 | if (nla_put_string(skb, TCA_KIND, ops->kind)) |
1b34ec43 | 306 | goto nla_put_failure; |
65a206c0 | 307 | |
95278dda | 308 | mutex_lock(&idrinfo->lock); |
7a457577 | 309 | idr_for_each_entry_ul(idr, p, id) { |
ec3ed293 | 310 | ret = tcf_idr_release_unsafe(p); |
65a206c0 | 311 | if (ret == ACT_P_DELETED) { |
255cd50f | 312 | module_put(ops->owner); |
65a206c0 CM |
313 | n_i++; |
314 | } else if (ret < 0) { | |
95278dda | 315 | mutex_unlock(&idrinfo->lock); |
65a206c0 | 316 | goto nla_put_failure; |
e9ce1cd3 DM |
317 | } |
318 | } | |
95278dda | 319 | mutex_unlock(&idrinfo->lock); |
ec3ed293 | 320 | |
1b34ec43 DM |
321 | if (nla_put_u32(skb, TCA_FCNT, n_i)) |
322 | goto nla_put_failure; | |
4b3550ef | 323 | nla_nest_end(skb, nest); |
e9ce1cd3 DM |
324 | |
325 | return n_i; | |
7ba699c6 | 326 | nla_put_failure: |
4b3550ef | 327 | nla_nest_cancel(skb, nest); |
55334a5d | 328 | return ret; |
e9ce1cd3 DM |
329 | } |
330 | ||
ddf97ccd WC |
331 | int tcf_generic_walker(struct tc_action_net *tn, struct sk_buff *skb, |
332 | struct netlink_callback *cb, int type, | |
b3620145 AA |
333 | const struct tc_action_ops *ops, |
334 | struct netlink_ext_ack *extack) | |
e9ce1cd3 | 335 | { |
65a206c0 | 336 | struct tcf_idrinfo *idrinfo = tn->idrinfo; |
ddf97ccd | 337 | |
e9ce1cd3 | 338 | if (type == RTM_DELACTION) { |
65a206c0 | 339 | return tcf_del_walker(idrinfo, skb, ops); |
e9ce1cd3 | 340 | } else if (type == RTM_GETACTION) { |
65a206c0 | 341 | return tcf_dump_walker(idrinfo, skb, cb); |
e9ce1cd3 | 342 | } else { |
b3620145 AA |
343 | WARN(1, "tcf_generic_walker: unknown command %d\n", type); |
344 | NL_SET_ERR_MSG(extack, "tcf_generic_walker: unknown command"); | |
e9ce1cd3 DM |
345 | return -EINVAL; |
346 | } | |
347 | } | |
ddf97ccd | 348 | EXPORT_SYMBOL(tcf_generic_walker); |
e9ce1cd3 | 349 | |
7d485c45 | 350 | int tcf_idr_search(struct tc_action_net *tn, struct tc_action **a, u32 index) |
e9ce1cd3 | 351 | { |
3f7c72bc VB |
352 | struct tcf_idrinfo *idrinfo = tn->idrinfo; |
353 | struct tc_action *p; | |
e9ce1cd3 | 354 | |
95278dda | 355 | mutex_lock(&idrinfo->lock); |
322d884b | 356 | p = idr_find(&idrinfo->action_idr, index); |
7d485c45 | 357 | if (IS_ERR(p)) |
0190c1d4 | 358 | p = NULL; |
7d485c45 | 359 | else if (p) |
3f7c72bc | 360 | refcount_inc(&p->tcfa_refcnt); |
95278dda | 361 | mutex_unlock(&idrinfo->lock); |
e9ce1cd3 | 362 | |
3f7c72bc VB |
363 | if (p) { |
364 | *a = p; | |
365 | return true; | |
366 | } | |
367 | return false; | |
e9ce1cd3 | 368 | } |
65a206c0 | 369 | EXPORT_SYMBOL(tcf_idr_search); |
e9ce1cd3 | 370 | |
97a3f84f | 371 | static int tcf_idr_delete_index(struct tcf_idrinfo *idrinfo, u32 index) |
2a2ea349 | 372 | { |
2a2ea349 VB |
373 | struct tc_action *p; |
374 | int ret = 0; | |
375 | ||
95278dda | 376 | mutex_lock(&idrinfo->lock); |
2a2ea349 VB |
377 | p = idr_find(&idrinfo->action_idr, index); |
378 | if (!p) { | |
95278dda | 379 | mutex_unlock(&idrinfo->lock); |
2a2ea349 VB |
380 | return -ENOENT; |
381 | } | |
382 | ||
383 | if (!atomic_read(&p->tcfa_bindcnt)) { | |
384 | if (refcount_dec_and_test(&p->tcfa_refcnt)) { | |
385 | struct module *owner = p->ops->owner; | |
386 | ||
387 | WARN_ON(p != idr_remove(&idrinfo->action_idr, | |
388 | p->tcfa_index)); | |
95278dda | 389 | mutex_unlock(&idrinfo->lock); |
2a2ea349 | 390 | |
16af6067 | 391 | tcf_action_cleanup(p); |
2a2ea349 VB |
392 | module_put(owner); |
393 | return 0; | |
394 | } | |
395 | ret = 0; | |
396 | } else { | |
397 | ret = -EPERM; | |
398 | } | |
399 | ||
95278dda | 400 | mutex_unlock(&idrinfo->lock); |
2a2ea349 VB |
401 | return ret; |
402 | } | |
2a2ea349 | 403 | |
65a206c0 CM |
404 | int tcf_idr_create(struct tc_action_net *tn, u32 index, struct nlattr *est, |
405 | struct tc_action **a, const struct tc_action_ops *ops, | |
406 | int bind, bool cpustats) | |
e9ce1cd3 | 407 | { |
ec0595cc | 408 | struct tc_action *p = kzalloc(ops->size, GFP_KERNEL); |
65a206c0 | 409 | struct tcf_idrinfo *idrinfo = tn->idrinfo; |
519c818e | 410 | int err = -ENOMEM; |
e9ce1cd3 DM |
411 | |
412 | if (unlikely(!p)) | |
86062033 | 413 | return -ENOMEM; |
036bb443 | 414 | refcount_set(&p->tcfa_refcnt, 1); |
e9ce1cd3 | 415 | if (bind) |
036bb443 | 416 | atomic_set(&p->tcfa_bindcnt, 1); |
e9ce1cd3 | 417 | |
519c818e ED |
418 | if (cpustats) { |
419 | p->cpu_bstats = netdev_alloc_pcpu_stats(struct gnet_stats_basic_cpu); | |
339913a8 | 420 | if (!p->cpu_bstats) |
519c818e | 421 | goto err1; |
28169aba EC |
422 | p->cpu_bstats_hw = netdev_alloc_pcpu_stats(struct gnet_stats_basic_cpu); |
423 | if (!p->cpu_bstats_hw) | |
424 | goto err2; | |
339913a8 MW |
425 | p->cpu_qstats = alloc_percpu(struct gnet_stats_queue); |
426 | if (!p->cpu_qstats) | |
28169aba | 427 | goto err3; |
519c818e | 428 | } |
ec0595cc | 429 | spin_lock_init(&p->tcfa_lock); |
339913a8 | 430 | p->tcfa_index = index; |
ec0595cc WC |
431 | p->tcfa_tm.install = jiffies; |
432 | p->tcfa_tm.lastuse = jiffies; | |
433 | p->tcfa_tm.firstuse = 0; | |
0e991ec6 | 434 | if (est) { |
ec0595cc WC |
435 | err = gen_new_estimator(&p->tcfa_bstats, p->cpu_bstats, |
436 | &p->tcfa_rate_est, | |
437 | &p->tcfa_lock, NULL, est); | |
339913a8 | 438 | if (err) |
28169aba | 439 | goto err4; |
0e991ec6 SH |
440 | } |
441 | ||
65a206c0 | 442 | p->idrinfo = idrinfo; |
ec0595cc | 443 | p->ops = ops; |
ec0595cc | 444 | *a = p; |
86062033 | 445 | return 0; |
28169aba | 446 | err4: |
339913a8 | 447 | free_percpu(p->cpu_qstats); |
28169aba EC |
448 | err3: |
449 | free_percpu(p->cpu_bstats_hw); | |
339913a8 MW |
450 | err2: |
451 | free_percpu(p->cpu_bstats); | |
452 | err1: | |
453 | kfree(p); | |
454 | return err; | |
e9ce1cd3 | 455 | } |
65a206c0 | 456 | EXPORT_SYMBOL(tcf_idr_create); |
e9ce1cd3 | 457 | |
65a206c0 | 458 | void tcf_idr_insert(struct tc_action_net *tn, struct tc_action *a) |
e9ce1cd3 | 459 | { |
65a206c0 | 460 | struct tcf_idrinfo *idrinfo = tn->idrinfo; |
e9ce1cd3 | 461 | |
95278dda | 462 | mutex_lock(&idrinfo->lock); |
0190c1d4 VB |
463 | /* Replace ERR_PTR(-EBUSY) allocated by tcf_idr_check_alloc */ |
464 | WARN_ON(!IS_ERR(idr_replace(&idrinfo->action_idr, a, a->tcfa_index))); | |
95278dda | 465 | mutex_unlock(&idrinfo->lock); |
e9ce1cd3 | 466 | } |
65a206c0 | 467 | EXPORT_SYMBOL(tcf_idr_insert); |
1da177e4 | 468 | |
0190c1d4 VB |
469 | /* Cleanup idr index that was allocated but not initialized. */ |
470 | ||
471 | void tcf_idr_cleanup(struct tc_action_net *tn, u32 index) | |
472 | { | |
473 | struct tcf_idrinfo *idrinfo = tn->idrinfo; | |
474 | ||
95278dda | 475 | mutex_lock(&idrinfo->lock); |
0190c1d4 VB |
476 | /* Remove ERR_PTR(-EBUSY) allocated by tcf_idr_check_alloc */ |
477 | WARN_ON(!IS_ERR(idr_remove(&idrinfo->action_idr, index))); | |
95278dda | 478 | mutex_unlock(&idrinfo->lock); |
0190c1d4 VB |
479 | } |
480 | EXPORT_SYMBOL(tcf_idr_cleanup); | |
481 | ||
482 | /* Check if action with specified index exists. If actions is found, increments | |
483 | * its reference and bind counters, and return 1. Otherwise insert temporary | |
484 | * error pointer (to prevent concurrent users from inserting actions with same | |
485 | * index) and return 0. | |
486 | */ | |
487 | ||
488 | int tcf_idr_check_alloc(struct tc_action_net *tn, u32 *index, | |
489 | struct tc_action **a, int bind) | |
490 | { | |
491 | struct tcf_idrinfo *idrinfo = tn->idrinfo; | |
492 | struct tc_action *p; | |
493 | int ret; | |
494 | ||
495 | again: | |
95278dda | 496 | mutex_lock(&idrinfo->lock); |
0190c1d4 VB |
497 | if (*index) { |
498 | p = idr_find(&idrinfo->action_idr, *index); | |
499 | if (IS_ERR(p)) { | |
500 | /* This means that another process allocated | |
501 | * index but did not assign the pointer yet. | |
502 | */ | |
95278dda | 503 | mutex_unlock(&idrinfo->lock); |
0190c1d4 VB |
504 | goto again; |
505 | } | |
506 | ||
507 | if (p) { | |
508 | refcount_inc(&p->tcfa_refcnt); | |
509 | if (bind) | |
510 | atomic_inc(&p->tcfa_bindcnt); | |
511 | *a = p; | |
512 | ret = 1; | |
513 | } else { | |
514 | *a = NULL; | |
515 | ret = idr_alloc_u32(&idrinfo->action_idr, NULL, index, | |
95278dda | 516 | *index, GFP_KERNEL); |
0190c1d4 VB |
517 | if (!ret) |
518 | idr_replace(&idrinfo->action_idr, | |
519 | ERR_PTR(-EBUSY), *index); | |
520 | } | |
521 | } else { | |
522 | *index = 1; | |
523 | *a = NULL; | |
524 | ret = idr_alloc_u32(&idrinfo->action_idr, NULL, index, | |
95278dda | 525 | UINT_MAX, GFP_KERNEL); |
0190c1d4 VB |
526 | if (!ret) |
527 | idr_replace(&idrinfo->action_idr, ERR_PTR(-EBUSY), | |
528 | *index); | |
529 | } | |
95278dda | 530 | mutex_unlock(&idrinfo->lock); |
0190c1d4 VB |
531 | return ret; |
532 | } | |
533 | EXPORT_SYMBOL(tcf_idr_check_alloc); | |
534 | ||
65a206c0 CM |
535 | void tcf_idrinfo_destroy(const struct tc_action_ops *ops, |
536 | struct tcf_idrinfo *idrinfo) | |
1d4150c0 | 537 | { |
65a206c0 CM |
538 | struct idr *idr = &idrinfo->action_idr; |
539 | struct tc_action *p; | |
540 | int ret; | |
541 | unsigned long id = 1; | |
1d4150c0 | 542 | |
7a457577 | 543 | idr_for_each_entry_ul(idr, p, id) { |
65a206c0 CM |
544 | ret = __tcf_idr_release(p, false, true); |
545 | if (ret == ACT_P_DELETED) | |
546 | module_put(ops->owner); | |
547 | else if (ret < 0) | |
548 | return; | |
1d4150c0 | 549 | } |
65a206c0 | 550 | idr_destroy(&idrinfo->action_idr); |
1d4150c0 | 551 | } |
65a206c0 | 552 | EXPORT_SYMBOL(tcf_idrinfo_destroy); |
1d4150c0 | 553 | |
1f747c26 | 554 | static LIST_HEAD(act_base); |
1da177e4 LT |
555 | static DEFINE_RWLOCK(act_mod_lock); |
556 | ||
ddf97ccd WC |
557 | int tcf_register_action(struct tc_action_ops *act, |
558 | struct pernet_operations *ops) | |
1da177e4 | 559 | { |
1f747c26 | 560 | struct tc_action_ops *a; |
ddf97ccd | 561 | int ret; |
1da177e4 | 562 | |
ddf97ccd | 563 | if (!act->act || !act->dump || !act->init || !act->walk || !act->lookup) |
76c82d7a JHS |
564 | return -EINVAL; |
565 | ||
ab102b80 WC |
566 | /* We have to register pernet ops before making the action ops visible, |
567 | * otherwise tcf_action_init_1() could get a partially initialized | |
568 | * netns. | |
569 | */ | |
570 | ret = register_pernet_subsys(ops); | |
571 | if (ret) | |
572 | return ret; | |
573 | ||
1da177e4 | 574 | write_lock(&act_mod_lock); |
1f747c26 | 575 | list_for_each_entry(a, &act_base, head) { |
eddd2cf1 | 576 | if (act->id == a->id || (strcmp(act->kind, a->kind) == 0)) { |
1da177e4 | 577 | write_unlock(&act_mod_lock); |
ab102b80 | 578 | unregister_pernet_subsys(ops); |
1da177e4 LT |
579 | return -EEXIST; |
580 | } | |
581 | } | |
1f747c26 | 582 | list_add_tail(&act->head, &act_base); |
1da177e4 | 583 | write_unlock(&act_mod_lock); |
ddf97ccd | 584 | |
1da177e4 LT |
585 | return 0; |
586 | } | |
62e3ba1b | 587 | EXPORT_SYMBOL(tcf_register_action); |
1da177e4 | 588 | |
ddf97ccd WC |
589 | int tcf_unregister_action(struct tc_action_ops *act, |
590 | struct pernet_operations *ops) | |
1da177e4 | 591 | { |
1f747c26 | 592 | struct tc_action_ops *a; |
1da177e4 LT |
593 | int err = -ENOENT; |
594 | ||
595 | write_lock(&act_mod_lock); | |
a792866a ED |
596 | list_for_each_entry(a, &act_base, head) { |
597 | if (a == act) { | |
598 | list_del(&act->head); | |
599 | err = 0; | |
1da177e4 | 600 | break; |
a792866a | 601 | } |
1da177e4 LT |
602 | } |
603 | write_unlock(&act_mod_lock); | |
ab102b80 WC |
604 | if (!err) |
605 | unregister_pernet_subsys(ops); | |
1da177e4 LT |
606 | return err; |
607 | } | |
62e3ba1b | 608 | EXPORT_SYMBOL(tcf_unregister_action); |
1da177e4 LT |
609 | |
610 | /* lookup by name */ | |
611 | static struct tc_action_ops *tc_lookup_action_n(char *kind) | |
612 | { | |
a792866a | 613 | struct tc_action_ops *a, *res = NULL; |
1da177e4 LT |
614 | |
615 | if (kind) { | |
616 | read_lock(&act_mod_lock); | |
1f747c26 | 617 | list_for_each_entry(a, &act_base, head) { |
1da177e4 | 618 | if (strcmp(kind, a->kind) == 0) { |
a792866a ED |
619 | if (try_module_get(a->owner)) |
620 | res = a; | |
1da177e4 LT |
621 | break; |
622 | } | |
623 | } | |
624 | read_unlock(&act_mod_lock); | |
625 | } | |
a792866a | 626 | return res; |
1da177e4 LT |
627 | } |
628 | ||
7ba699c6 PM |
629 | /* lookup by nlattr */ |
630 | static struct tc_action_ops *tc_lookup_action(struct nlattr *kind) | |
1da177e4 | 631 | { |
a792866a | 632 | struct tc_action_ops *a, *res = NULL; |
1da177e4 LT |
633 | |
634 | if (kind) { | |
635 | read_lock(&act_mod_lock); | |
1f747c26 | 636 | list_for_each_entry(a, &act_base, head) { |
7ba699c6 | 637 | if (nla_strcmp(kind, a->kind) == 0) { |
a792866a ED |
638 | if (try_module_get(a->owner)) |
639 | res = a; | |
1da177e4 LT |
640 | break; |
641 | } | |
642 | } | |
643 | read_unlock(&act_mod_lock); | |
644 | } | |
a792866a | 645 | return res; |
1da177e4 | 646 | } |
1da177e4 | 647 | |
e0ee84de JHS |
648 | /*TCA_ACT_MAX_PRIO is 32, there count upto 32 */ |
649 | #define TCA_ACT_MAX_PRIO_MASK 0x1FF | |
22dc13c8 WC |
650 | int tcf_action_exec(struct sk_buff *skb, struct tc_action **actions, |
651 | int nr_actions, struct tcf_result *res) | |
1da177e4 | 652 | { |
e0ee84de JHS |
653 | u32 jmp_prgcnt = 0; |
654 | u32 jmp_ttl = TCA_ACT_MAX_PRIO; /*matches actions per filter */ | |
ec1a9cca JP |
655 | int i; |
656 | int ret = TC_ACT_OK; | |
1da177e4 | 657 | |
e7246e12 WB |
658 | if (skb_skip_tc_classify(skb)) |
659 | return TC_ACT_OK; | |
660 | ||
e0ee84de | 661 | restart_act_graph: |
22dc13c8 WC |
662 | for (i = 0; i < nr_actions; i++) { |
663 | const struct tc_action *a = actions[i]; | |
664 | ||
e0ee84de JHS |
665 | if (jmp_prgcnt > 0) { |
666 | jmp_prgcnt -= 1; | |
667 | continue; | |
668 | } | |
1da177e4 | 669 | repeat: |
63acd680 | 670 | ret = a->ops->act(skb, a, res); |
63acd680 JHS |
671 | if (ret == TC_ACT_REPEAT) |
672 | goto repeat; /* we need a ttl - JHS */ | |
e0ee84de | 673 | |
9da3242e | 674 | if (TC_ACT_EXT_CMP(ret, TC_ACT_JUMP)) { |
e0ee84de JHS |
675 | jmp_prgcnt = ret & TCA_ACT_MAX_PRIO_MASK; |
676 | if (!jmp_prgcnt || (jmp_prgcnt > nr_actions)) { | |
677 | /* faulty opcode, stop pipeline */ | |
678 | return TC_ACT_OK; | |
679 | } else { | |
680 | jmp_ttl -= 1; | |
681 | if (jmp_ttl > 0) | |
682 | goto restart_act_graph; | |
683 | else /* faulty graph, stop pipeline */ | |
684 | return TC_ACT_OK; | |
685 | } | |
db50514f | 686 | } else if (TC_ACT_EXT_CMP(ret, TC_ACT_GOTO_CHAIN)) { |
ee3bbfe8 DC |
687 | if (unlikely(!rcu_access_pointer(a->goto_chain))) { |
688 | net_warn_ratelimited("can't go to NULL chain!\n"); | |
689 | return TC_ACT_SHOT; | |
690 | } | |
db50514f | 691 | tcf_action_goto_chain_exec(a, res); |
e0ee84de JHS |
692 | } |
693 | ||
63acd680 | 694 | if (ret != TC_ACT_PIPE) |
e7246e12 | 695 | break; |
1da177e4 | 696 | } |
e0ee84de | 697 | |
1da177e4 LT |
698 | return ret; |
699 | } | |
62e3ba1b | 700 | EXPORT_SYMBOL(tcf_action_exec); |
1da177e4 | 701 | |
90b73b77 | 702 | int tcf_action_destroy(struct tc_action *actions[], int bind) |
1da177e4 | 703 | { |
255cd50f | 704 | const struct tc_action_ops *ops; |
90b73b77 VB |
705 | struct tc_action *a; |
706 | int ret = 0, i; | |
1da177e4 | 707 | |
90b73b77 VB |
708 | for (i = 0; i < TCA_ACT_MAX_PRIO && actions[i]; i++) { |
709 | a = actions[i]; | |
710 | actions[i] = NULL; | |
255cd50f | 711 | ops = a->ops; |
65a206c0 | 712 | ret = __tcf_idr_release(a, bind, true); |
55334a5d | 713 | if (ret == ACT_P_DELETED) |
255cd50f | 714 | module_put(ops->owner); |
55334a5d WC |
715 | else if (ret < 0) |
716 | return ret; | |
1da177e4 | 717 | } |
55334a5d | 718 | return ret; |
1da177e4 LT |
719 | } |
720 | ||
97763dc0 PA |
721 | static int tcf_action_destroy_1(struct tc_action *a, int bind) |
722 | { | |
723 | struct tc_action *actions[] = { a, NULL }; | |
724 | ||
725 | return tcf_action_destroy(actions, bind); | |
726 | } | |
727 | ||
16af6067 VB |
728 | static int tcf_action_put(struct tc_action *p) |
729 | { | |
730 | return __tcf_action_put(p, false); | |
731 | } | |
732 | ||
edfaf94f | 733 | /* Put all actions in this array, skip those NULL's. */ |
90b73b77 | 734 | static void tcf_action_put_many(struct tc_action *actions[]) |
cae422f3 | 735 | { |
90b73b77 | 736 | int i; |
cae422f3 | 737 | |
edfaf94f | 738 | for (i = 0; i < TCA_ACT_MAX_PRIO; i++) { |
90b73b77 | 739 | struct tc_action *a = actions[i]; |
edfaf94f | 740 | const struct tc_action_ops *ops; |
cae422f3 | 741 | |
edfaf94f CW |
742 | if (!a) |
743 | continue; | |
744 | ops = a->ops; | |
cae422f3 VB |
745 | if (tcf_action_put(a)) |
746 | module_put(ops->owner); | |
747 | } | |
748 | } | |
749 | ||
1da177e4 LT |
750 | int |
751 | tcf_action_dump_old(struct sk_buff *skb, struct tc_action *a, int bind, int ref) | |
752 | { | |
1da177e4 LT |
753 | return a->ops->dump(skb, a, bind, ref); |
754 | } | |
755 | ||
756 | int | |
757 | tcf_action_dump_1(struct sk_buff *skb, struct tc_action *a, int bind, int ref) | |
758 | { | |
759 | int err = -EINVAL; | |
27a884dc | 760 | unsigned char *b = skb_tail_pointer(skb); |
4b3550ef | 761 | struct nlattr *nest; |
eec94fdb | 762 | struct tc_cookie *cookie; |
1da177e4 | 763 | |
1b34ec43 DM |
764 | if (nla_put_string(skb, TCA_KIND, a->ops->kind)) |
765 | goto nla_put_failure; | |
1da177e4 | 766 | if (tcf_action_copy_stats(skb, a, 0)) |
7ba699c6 | 767 | goto nla_put_failure; |
eec94fdb VB |
768 | |
769 | rcu_read_lock(); | |
770 | cookie = rcu_dereference(a->act_cookie); | |
771 | if (cookie) { | |
772 | if (nla_put(skb, TCA_ACT_COOKIE, cookie->len, cookie->data)) { | |
773 | rcu_read_unlock(); | |
1045ba77 | 774 | goto nla_put_failure; |
eec94fdb | 775 | } |
1045ba77 | 776 | } |
eec94fdb | 777 | rcu_read_unlock(); |
1045ba77 | 778 | |
ae0be8de | 779 | nest = nla_nest_start_noflag(skb, TCA_OPTIONS); |
4b3550ef PM |
780 | if (nest == NULL) |
781 | goto nla_put_failure; | |
cc7ec456 ED |
782 | err = tcf_action_dump_old(skb, a, bind, ref); |
783 | if (err > 0) { | |
4b3550ef | 784 | nla_nest_end(skb, nest); |
1da177e4 LT |
785 | return err; |
786 | } | |
787 | ||
7ba699c6 | 788 | nla_put_failure: |
dc5fc579 | 789 | nlmsg_trim(skb, b); |
1da177e4 LT |
790 | return -1; |
791 | } | |
62e3ba1b | 792 | EXPORT_SYMBOL(tcf_action_dump_1); |
1da177e4 | 793 | |
90b73b77 | 794 | int tcf_action_dump(struct sk_buff *skb, struct tc_action *actions[], |
0b0f43fe | 795 | int bind, int ref) |
1da177e4 LT |
796 | { |
797 | struct tc_action *a; | |
90b73b77 | 798 | int err = -EINVAL, i; |
4b3550ef | 799 | struct nlattr *nest; |
1da177e4 | 800 | |
90b73b77 VB |
801 | for (i = 0; i < TCA_ACT_MAX_PRIO && actions[i]; i++) { |
802 | a = actions[i]; | |
ae0be8de | 803 | nest = nla_nest_start_noflag(skb, a->order); |
4b3550ef PM |
804 | if (nest == NULL) |
805 | goto nla_put_failure; | |
1da177e4 LT |
806 | err = tcf_action_dump_1(skb, a, bind, ref); |
807 | if (err < 0) | |
4fe683f5 | 808 | goto errout; |
4b3550ef | 809 | nla_nest_end(skb, nest); |
1da177e4 LT |
810 | } |
811 | ||
812 | return 0; | |
813 | ||
7ba699c6 | 814 | nla_put_failure: |
4fe683f5 TG |
815 | err = -EINVAL; |
816 | errout: | |
4b3550ef | 817 | nla_nest_cancel(skb, nest); |
4fe683f5 | 818 | return err; |
1da177e4 LT |
819 | } |
820 | ||
e0535ce5 | 821 | static struct tc_cookie *nla_memdup_cookie(struct nlattr **tb) |
1045ba77 | 822 | { |
e0535ce5 WB |
823 | struct tc_cookie *c = kzalloc(sizeof(*c), GFP_KERNEL); |
824 | if (!c) | |
825 | return NULL; | |
826 | ||
827 | c->data = nla_memdup(tb[TCA_ACT_COOKIE], GFP_KERNEL); | |
828 | if (!c->data) { | |
829 | kfree(c); | |
830 | return NULL; | |
1045ba77 | 831 | } |
e0535ce5 | 832 | c->len = nla_len(tb[TCA_ACT_COOKIE]); |
1045ba77 | 833 | |
e0535ce5 | 834 | return c; |
1045ba77 JHS |
835 | } |
836 | ||
9fb9f251 JP |
837 | struct tc_action *tcf_action_init_1(struct net *net, struct tcf_proto *tp, |
838 | struct nlattr *nla, struct nlattr *est, | |
aea0d727 | 839 | char *name, int ovr, int bind, |
789871bb | 840 | bool rtnl_held, |
aea0d727 | 841 | struct netlink_ext_ack *extack) |
1da177e4 LT |
842 | { |
843 | struct tc_action *a; | |
844 | struct tc_action_ops *a_o; | |
e0535ce5 | 845 | struct tc_cookie *cookie = NULL; |
1da177e4 | 846 | char act_name[IFNAMSIZ]; |
cc7ec456 | 847 | struct nlattr *tb[TCA_ACT_MAX + 1]; |
7ba699c6 | 848 | struct nlattr *kind; |
ab27cfb8 | 849 | int err; |
1da177e4 | 850 | |
1da177e4 | 851 | if (name == NULL) { |
8cb08174 JB |
852 | err = nla_parse_nested_deprecated(tb, TCA_ACT_MAX, nla, NULL, |
853 | extack); | |
cee63723 | 854 | if (err < 0) |
1da177e4 | 855 | goto err_out; |
cee63723 | 856 | err = -EINVAL; |
7ba699c6 | 857 | kind = tb[TCA_ACT_KIND]; |
84ae017a AA |
858 | if (!kind) { |
859 | NL_SET_ERR_MSG(extack, "TC action kind must be specified"); | |
1da177e4 | 860 | goto err_out; |
84ae017a AA |
861 | } |
862 | if (nla_strlcpy(act_name, kind, IFNAMSIZ) >= IFNAMSIZ) { | |
863 | NL_SET_ERR_MSG(extack, "TC action name too long"); | |
1da177e4 | 864 | goto err_out; |
84ae017a | 865 | } |
e0535ce5 WB |
866 | if (tb[TCA_ACT_COOKIE]) { |
867 | int cklen = nla_len(tb[TCA_ACT_COOKIE]); | |
868 | ||
84ae017a AA |
869 | if (cklen > TC_COOKIE_MAX_SIZE) { |
870 | NL_SET_ERR_MSG(extack, "TC cookie size above the maximum"); | |
e0535ce5 | 871 | goto err_out; |
84ae017a | 872 | } |
e0535ce5 WB |
873 | |
874 | cookie = nla_memdup_cookie(tb); | |
875 | if (!cookie) { | |
84ae017a | 876 | NL_SET_ERR_MSG(extack, "No memory to generate TC cookie"); |
e0535ce5 WB |
877 | err = -ENOMEM; |
878 | goto err_out; | |
879 | } | |
880 | } | |
1da177e4 | 881 | } else { |
84ae017a AA |
882 | if (strlcpy(act_name, name, IFNAMSIZ) >= IFNAMSIZ) { |
883 | NL_SET_ERR_MSG(extack, "TC action name too long"); | |
884 | err = -EINVAL; | |
1da177e4 | 885 | goto err_out; |
84ae017a | 886 | } |
1da177e4 LT |
887 | } |
888 | ||
889 | a_o = tc_lookup_action_n(act_name); | |
890 | if (a_o == NULL) { | |
95a5afca | 891 | #ifdef CONFIG_MODULES |
789871bb VB |
892 | if (rtnl_held) |
893 | rtnl_unlock(); | |
4bba3925 | 894 | request_module("act_%s", act_name); |
789871bb VB |
895 | if (rtnl_held) |
896 | rtnl_lock(); | |
1da177e4 LT |
897 | |
898 | a_o = tc_lookup_action_n(act_name); | |
899 | ||
900 | /* We dropped the RTNL semaphore in order to | |
901 | * perform the module load. So, even if we | |
902 | * succeeded in loading the module we have to | |
903 | * tell the caller to replay the request. We | |
904 | * indicate this using -EAGAIN. | |
905 | */ | |
906 | if (a_o != NULL) { | |
ab27cfb8 | 907 | err = -EAGAIN; |
1da177e4 LT |
908 | goto err_mod; |
909 | } | |
910 | #endif | |
84ae017a | 911 | NL_SET_ERR_MSG(extack, "Failed to load TC action module"); |
ab27cfb8 | 912 | err = -ENOENT; |
1da177e4 LT |
913 | goto err_out; |
914 | } | |
915 | ||
1da177e4 LT |
916 | /* backward compatibility for policer */ |
917 | if (name == NULL) | |
589dad6d | 918 | err = a_o->init(net, tb[TCA_ACT_OPTIONS], est, &a, ovr, bind, |
85d0966f | 919 | rtnl_held, tp, extack); |
1da177e4 | 920 | else |
789871bb | 921 | err = a_o->init(net, nla, est, &a, ovr, bind, rtnl_held, |
85d0966f | 922 | tp, extack); |
ab27cfb8 | 923 | if (err < 0) |
a85a970a | 924 | goto err_mod; |
1da177e4 | 925 | |
eec94fdb VB |
926 | if (!name && tb[TCA_ACT_COOKIE]) |
927 | tcf_set_action_cookie(&a->act_cookie, cookie); | |
1045ba77 | 928 | |
1da177e4 | 929 | /* module count goes up only when brand new policy is created |
cc7ec456 ED |
930 | * if it exists and is only bound to in a_o->init() then |
931 | * ACT_P_CREATED is not returned (a zero is). | |
932 | */ | |
ab27cfb8 | 933 | if (err != ACT_P_CREATED) |
1da177e4 | 934 | module_put(a_o->owner); |
1da177e4 | 935 | |
85d0966f | 936 | if (TC_ACT_EXT_CMP(a->tcfa_action, TC_ACT_GOTO_CHAIN) && |
ee3bbfe8 | 937 | !rcu_access_pointer(a->goto_chain)) { |
97763dc0 | 938 | tcf_action_destroy_1(a, bind); |
85d0966f | 939 | NL_SET_ERR_MSG(extack, "can't use goto chain with NULL chain"); |
97763dc0 | 940 | return ERR_PTR(-EINVAL); |
802bfb19 PA |
941 | } |
942 | ||
1da177e4 LT |
943 | return a; |
944 | ||
1da177e4 LT |
945 | err_mod: |
946 | module_put(a_o->owner); | |
947 | err_out: | |
e0535ce5 WB |
948 | if (cookie) { |
949 | kfree(cookie->data); | |
950 | kfree(cookie); | |
951 | } | |
ab27cfb8 | 952 | return ERR_PTR(err); |
1da177e4 LT |
953 | } |
954 | ||
90b73b77 VB |
955 | /* Returns numbers of initialized actions or negative error. */ |
956 | ||
9fb9f251 JP |
957 | int tcf_action_init(struct net *net, struct tcf_proto *tp, struct nlattr *nla, |
958 | struct nlattr *est, char *name, int ovr, int bind, | |
90b73b77 | 959 | struct tc_action *actions[], size_t *attr_size, |
789871bb | 960 | bool rtnl_held, struct netlink_ext_ack *extack) |
1da177e4 | 961 | { |
cc7ec456 | 962 | struct nlattr *tb[TCA_ACT_MAX_PRIO + 1]; |
33be6271 | 963 | struct tc_action *act; |
4e76e75d | 964 | size_t sz = 0; |
cee63723 | 965 | int err; |
1da177e4 LT |
966 | int i; |
967 | ||
8cb08174 JB |
968 | err = nla_parse_nested_deprecated(tb, TCA_ACT_MAX_PRIO, nla, NULL, |
969 | extack); | |
cee63723 | 970 | if (err < 0) |
33be6271 | 971 | return err; |
1da177e4 | 972 | |
7ba699c6 | 973 | for (i = 1; i <= TCA_ACT_MAX_PRIO && tb[i]; i++) { |
aea0d727 | 974 | act = tcf_action_init_1(net, tp, tb[i], est, name, ovr, bind, |
789871bb | 975 | rtnl_held, extack); |
33be6271 WC |
976 | if (IS_ERR(act)) { |
977 | err = PTR_ERR(act); | |
1da177e4 | 978 | goto err; |
33be6271 | 979 | } |
7ba699c6 | 980 | act->order = i; |
4e76e75d | 981 | sz += tcf_action_fill_size(act); |
90b73b77 VB |
982 | /* Start from index 0 */ |
983 | actions[i - 1] = act; | |
1da177e4 | 984 | } |
aecc5cef | 985 | |
4e76e75d | 986 | *attr_size = tcf_action_full_attrs_size(sz); |
90b73b77 | 987 | return i - 1; |
1da177e4 LT |
988 | |
989 | err: | |
33be6271 WC |
990 | tcf_action_destroy(actions, bind); |
991 | return err; | |
1da177e4 LT |
992 | } |
993 | ||
ec0595cc | 994 | int tcf_action_copy_stats(struct sk_buff *skb, struct tc_action *p, |
1da177e4 LT |
995 | int compat_mode) |
996 | { | |
997 | int err = 0; | |
998 | struct gnet_dump d; | |
10297b99 | 999 | |
7eb8896d | 1000 | if (p == NULL) |
1da177e4 LT |
1001 | goto errout; |
1002 | ||
1003 | /* compat_mode being true specifies a call that is supposed | |
06fe9fb4 | 1004 | * to add additional backward compatibility statistic TLVs. |
1da177e4 LT |
1005 | */ |
1006 | if (compat_mode) { | |
ec0595cc | 1007 | if (p->type == TCA_OLD_COMPAT) |
1da177e4 | 1008 | err = gnet_stats_start_copy_compat(skb, 0, |
9854518e ND |
1009 | TCA_STATS, |
1010 | TCA_XSTATS, | |
ec0595cc | 1011 | &p->tcfa_lock, &d, |
9854518e | 1012 | TCA_PAD); |
1da177e4 LT |
1013 | else |
1014 | return 0; | |
1015 | } else | |
1016 | err = gnet_stats_start_copy(skb, TCA_ACT_STATS, | |
ec0595cc | 1017 | &p->tcfa_lock, &d, TCA_ACT_PAD); |
1da177e4 LT |
1018 | |
1019 | if (err < 0) | |
1020 | goto errout; | |
1021 | ||
ec0595cc | 1022 | if (gnet_stats_copy_basic(NULL, &d, p->cpu_bstats, &p->tcfa_bstats) < 0 || |
28169aba EC |
1023 | gnet_stats_copy_basic_hw(NULL, &d, p->cpu_bstats_hw, |
1024 | &p->tcfa_bstats_hw) < 0 || | |
1c0d32fd | 1025 | gnet_stats_copy_rate_est(&d, &p->tcfa_rate_est) < 0 || |
519c818e | 1026 | gnet_stats_copy_queue(&d, p->cpu_qstats, |
ec0595cc WC |
1027 | &p->tcfa_qstats, |
1028 | p->tcfa_qstats.qlen) < 0) | |
1da177e4 LT |
1029 | goto errout; |
1030 | ||
1031 | if (gnet_stats_finish_copy(&d) < 0) | |
1032 | goto errout; | |
1033 | ||
1034 | return 0; | |
1035 | ||
1036 | errout: | |
1037 | return -1; | |
1038 | } | |
1039 | ||
90b73b77 | 1040 | static int tca_get_fill(struct sk_buff *skb, struct tc_action *actions[], |
0b0f43fe JHS |
1041 | u32 portid, u32 seq, u16 flags, int event, int bind, |
1042 | int ref) | |
1da177e4 LT |
1043 | { |
1044 | struct tcamsg *t; | |
1045 | struct nlmsghdr *nlh; | |
27a884dc | 1046 | unsigned char *b = skb_tail_pointer(skb); |
4b3550ef | 1047 | struct nlattr *nest; |
1da177e4 | 1048 | |
15e47304 | 1049 | nlh = nlmsg_put(skb, portid, seq, event, sizeof(*t), flags); |
8b00a53c DM |
1050 | if (!nlh) |
1051 | goto out_nlmsg_trim; | |
1052 | t = nlmsg_data(nlh); | |
1da177e4 | 1053 | t->tca_family = AF_UNSPEC; |
9ef1d4c7 PM |
1054 | t->tca__pad1 = 0; |
1055 | t->tca__pad2 = 0; | |
10297b99 | 1056 | |
ae0be8de | 1057 | nest = nla_nest_start_noflag(skb, TCA_ACT_TAB); |
1af85155 | 1058 | if (!nest) |
8b00a53c | 1059 | goto out_nlmsg_trim; |
1da177e4 | 1060 | |
33be6271 | 1061 | if (tcf_action_dump(skb, actions, bind, ref) < 0) |
8b00a53c | 1062 | goto out_nlmsg_trim; |
1da177e4 | 1063 | |
4b3550ef | 1064 | nla_nest_end(skb, nest); |
10297b99 | 1065 | |
27a884dc | 1066 | nlh->nlmsg_len = skb_tail_pointer(skb) - b; |
1da177e4 LT |
1067 | return skb->len; |
1068 | ||
8b00a53c | 1069 | out_nlmsg_trim: |
dc5fc579 | 1070 | nlmsg_trim(skb, b); |
1da177e4 LT |
1071 | return -1; |
1072 | } | |
1073 | ||
1074 | static int | |
c4c4290c | 1075 | tcf_get_notify(struct net *net, u32 portid, struct nlmsghdr *n, |
90b73b77 | 1076 | struct tc_action *actions[], int event, |
84ae017a | 1077 | struct netlink_ext_ack *extack) |
1da177e4 LT |
1078 | { |
1079 | struct sk_buff *skb; | |
1da177e4 LT |
1080 | |
1081 | skb = alloc_skb(NLMSG_GOODSIZE, GFP_KERNEL); | |
1082 | if (!skb) | |
1083 | return -ENOBUFS; | |
0b0f43fe | 1084 | if (tca_get_fill(skb, actions, portid, n->nlmsg_seq, 0, event, |
3f7c72bc | 1085 | 0, 1) <= 0) { |
84ae017a | 1086 | NL_SET_ERR_MSG(extack, "Failed to fill netlink attributes while adding TC action"); |
1da177e4 LT |
1087 | kfree_skb(skb); |
1088 | return -EINVAL; | |
1089 | } | |
2942e900 | 1090 | |
15e47304 | 1091 | return rtnl_unicast(skb, net, portid); |
1da177e4 LT |
1092 | } |
1093 | ||
ddf97ccd | 1094 | static struct tc_action *tcf_action_get_1(struct net *net, struct nlattr *nla, |
84ae017a AA |
1095 | struct nlmsghdr *n, u32 portid, |
1096 | struct netlink_ext_ack *extack) | |
1da177e4 | 1097 | { |
cc7ec456 | 1098 | struct nlattr *tb[TCA_ACT_MAX + 1]; |
a85a970a | 1099 | const struct tc_action_ops *ops; |
1da177e4 LT |
1100 | struct tc_action *a; |
1101 | int index; | |
ab27cfb8 | 1102 | int err; |
1da177e4 | 1103 | |
8cb08174 | 1104 | err = nla_parse_nested_deprecated(tb, TCA_ACT_MAX, nla, NULL, extack); |
cee63723 | 1105 | if (err < 0) |
ab27cfb8 | 1106 | goto err_out; |
1da177e4 | 1107 | |
cee63723 | 1108 | err = -EINVAL; |
7ba699c6 | 1109 | if (tb[TCA_ACT_INDEX] == NULL || |
84ae017a AA |
1110 | nla_len(tb[TCA_ACT_INDEX]) < sizeof(index)) { |
1111 | NL_SET_ERR_MSG(extack, "Invalid TC action index value"); | |
ab27cfb8 | 1112 | goto err_out; |
84ae017a | 1113 | } |
1587bac4 | 1114 | index = nla_get_u32(tb[TCA_ACT_INDEX]); |
1da177e4 | 1115 | |
ab27cfb8 | 1116 | err = -EINVAL; |
a85a970a | 1117 | ops = tc_lookup_action(tb[TCA_ACT_KIND]); |
84ae017a | 1118 | if (!ops) { /* could happen in batch of actions */ |
f061b48c | 1119 | NL_SET_ERR_MSG(extack, "Specified TC action kind not found"); |
a85a970a | 1120 | goto err_out; |
84ae017a | 1121 | } |
ab27cfb8 | 1122 | err = -ENOENT; |
f061b48c CW |
1123 | if (ops->lookup(net, &a, index) == 0) { |
1124 | NL_SET_ERR_MSG(extack, "TC action with specified index not found"); | |
1da177e4 | 1125 | goto err_mod; |
f061b48c | 1126 | } |
1da177e4 | 1127 | |
a85a970a | 1128 | module_put(ops->owner); |
1da177e4 | 1129 | return a; |
ab27cfb8 | 1130 | |
1da177e4 | 1131 | err_mod: |
a85a970a | 1132 | module_put(ops->owner); |
ab27cfb8 PM |
1133 | err_out: |
1134 | return ERR_PTR(err); | |
1da177e4 LT |
1135 | } |
1136 | ||
7316ae88 | 1137 | static int tca_action_flush(struct net *net, struct nlattr *nla, |
84ae017a AA |
1138 | struct nlmsghdr *n, u32 portid, |
1139 | struct netlink_ext_ack *extack) | |
1da177e4 LT |
1140 | { |
1141 | struct sk_buff *skb; | |
1142 | unsigned char *b; | |
1143 | struct nlmsghdr *nlh; | |
1144 | struct tcamsg *t; | |
1145 | struct netlink_callback dcb; | |
4b3550ef | 1146 | struct nlattr *nest; |
cc7ec456 | 1147 | struct nlattr *tb[TCA_ACT_MAX + 1]; |
a85a970a | 1148 | const struct tc_action_ops *ops; |
7ba699c6 | 1149 | struct nlattr *kind; |
36723873 | 1150 | int err = -ENOMEM; |
1da177e4 | 1151 | |
1da177e4 | 1152 | skb = alloc_skb(NLMSG_GOODSIZE, GFP_KERNEL); |
84ae017a | 1153 | if (!skb) |
36723873 | 1154 | return err; |
1da177e4 | 1155 | |
27a884dc | 1156 | b = skb_tail_pointer(skb); |
1da177e4 | 1157 | |
8cb08174 | 1158 | err = nla_parse_nested_deprecated(tb, TCA_ACT_MAX, nla, NULL, extack); |
cee63723 | 1159 | if (err < 0) |
1da177e4 LT |
1160 | goto err_out; |
1161 | ||
cee63723 | 1162 | err = -EINVAL; |
7ba699c6 | 1163 | kind = tb[TCA_ACT_KIND]; |
a85a970a | 1164 | ops = tc_lookup_action(kind); |
84ae017a AA |
1165 | if (!ops) { /*some idjot trying to flush unknown action */ |
1166 | NL_SET_ERR_MSG(extack, "Cannot flush unknown TC action"); | |
1da177e4 | 1167 | goto err_out; |
84ae017a | 1168 | } |
1da177e4 | 1169 | |
0b0f43fe JHS |
1170 | nlh = nlmsg_put(skb, portid, n->nlmsg_seq, RTM_DELACTION, |
1171 | sizeof(*t), 0); | |
84ae017a AA |
1172 | if (!nlh) { |
1173 | NL_SET_ERR_MSG(extack, "Failed to create TC action flush notification"); | |
8b00a53c | 1174 | goto out_module_put; |
84ae017a | 1175 | } |
8b00a53c | 1176 | t = nlmsg_data(nlh); |
1da177e4 | 1177 | t->tca_family = AF_UNSPEC; |
9ef1d4c7 PM |
1178 | t->tca__pad1 = 0; |
1179 | t->tca__pad2 = 0; | |
1da177e4 | 1180 | |
ae0be8de | 1181 | nest = nla_nest_start_noflag(skb, TCA_ACT_TAB); |
84ae017a AA |
1182 | if (!nest) { |
1183 | NL_SET_ERR_MSG(extack, "Failed to add new netlink message"); | |
8b00a53c | 1184 | goto out_module_put; |
84ae017a | 1185 | } |
1da177e4 | 1186 | |
41780105 | 1187 | err = ops->walk(net, skb, &dcb, RTM_DELACTION, ops, extack); |
66dede2d DC |
1188 | if (err <= 0) { |
1189 | nla_nest_cancel(skb, nest); | |
8b00a53c | 1190 | goto out_module_put; |
66dede2d | 1191 | } |
1da177e4 | 1192 | |
4b3550ef | 1193 | nla_nest_end(skb, nest); |
1da177e4 | 1194 | |
27a884dc | 1195 | nlh->nlmsg_len = skb_tail_pointer(skb) - b; |
1da177e4 | 1196 | nlh->nlmsg_flags |= NLM_F_ROOT; |
a85a970a | 1197 | module_put(ops->owner); |
15e47304 | 1198 | err = rtnetlink_send(skb, net, portid, RTNLGRP_TC, |
cc7ec456 | 1199 | n->nlmsg_flags & NLM_F_ECHO); |
1da177e4 LT |
1200 | if (err > 0) |
1201 | return 0; | |
84ae017a AA |
1202 | if (err < 0) |
1203 | NL_SET_ERR_MSG(extack, "Failed to send TC action flush notification"); | |
1da177e4 LT |
1204 | |
1205 | return err; | |
1206 | ||
8b00a53c | 1207 | out_module_put: |
a85a970a | 1208 | module_put(ops->owner); |
1da177e4 LT |
1209 | err_out: |
1210 | kfree_skb(skb); | |
1da177e4 LT |
1211 | return err; |
1212 | } | |
1213 | ||
b144e7ec | 1214 | static int tcf_action_delete(struct net *net, struct tc_action *actions[]) |
16af6067 | 1215 | { |
97a3f84f | 1216 | int i; |
16af6067 | 1217 | |
90b73b77 VB |
1218 | for (i = 0; i < TCA_ACT_MAX_PRIO && actions[i]; i++) { |
1219 | struct tc_action *a = actions[i]; | |
16af6067 | 1220 | const struct tc_action_ops *ops = a->ops; |
16af6067 VB |
1221 | /* Actions can be deleted concurrently so we must save their |
1222 | * type and id to search again after reference is released. | |
1223 | */ | |
97a3f84f CW |
1224 | struct tcf_idrinfo *idrinfo = a->idrinfo; |
1225 | u32 act_index = a->tcfa_index; | |
16af6067 | 1226 | |
c10bbfae | 1227 | actions[i] = NULL; |
16af6067 VB |
1228 | if (tcf_action_put(a)) { |
1229 | /* last reference, action was deleted concurrently */ | |
1230 | module_put(ops->owner); | |
1231 | } else { | |
97a3f84f CW |
1232 | int ret; |
1233 | ||
16af6067 | 1234 | /* now do the delete */ |
97a3f84f | 1235 | ret = tcf_idr_delete_index(idrinfo, act_index); |
edfaf94f | 1236 | if (ret < 0) |
16af6067 VB |
1237 | return ret; |
1238 | } | |
1239 | } | |
1240 | return 0; | |
1241 | } | |
1242 | ||
a56e1953 | 1243 | static int |
90b73b77 | 1244 | tcf_del_notify(struct net *net, struct nlmsghdr *n, struct tc_action *actions[], |
edfaf94f | 1245 | u32 portid, size_t attr_size, struct netlink_ext_ack *extack) |
a56e1953 WC |
1246 | { |
1247 | int ret; | |
1248 | struct sk_buff *skb; | |
1249 | ||
d04e6990 RM |
1250 | skb = alloc_skb(attr_size <= NLMSG_GOODSIZE ? NLMSG_GOODSIZE : attr_size, |
1251 | GFP_KERNEL); | |
a56e1953 WC |
1252 | if (!skb) |
1253 | return -ENOBUFS; | |
1254 | ||
1255 | if (tca_get_fill(skb, actions, portid, n->nlmsg_seq, 0, RTM_DELACTION, | |
3f7c72bc | 1256 | 0, 2) <= 0) { |
84ae017a | 1257 | NL_SET_ERR_MSG(extack, "Failed to fill netlink TC action attributes"); |
a56e1953 WC |
1258 | kfree_skb(skb); |
1259 | return -EINVAL; | |
1260 | } | |
1261 | ||
1262 | /* now do the delete */ | |
b144e7ec | 1263 | ret = tcf_action_delete(net, actions); |
55334a5d | 1264 | if (ret < 0) { |
84ae017a | 1265 | NL_SET_ERR_MSG(extack, "Failed to delete TC action"); |
55334a5d WC |
1266 | kfree_skb(skb); |
1267 | return ret; | |
1268 | } | |
a56e1953 WC |
1269 | |
1270 | ret = rtnetlink_send(skb, net, portid, RTNLGRP_TC, | |
1271 | n->nlmsg_flags & NLM_F_ECHO); | |
1272 | if (ret > 0) | |
1273 | return 0; | |
1274 | return ret; | |
1275 | } | |
1276 | ||
1da177e4 | 1277 | static int |
7316ae88 | 1278 | tca_action_gd(struct net *net, struct nlattr *nla, struct nlmsghdr *n, |
84ae017a | 1279 | u32 portid, int event, struct netlink_ext_ack *extack) |
1da177e4 | 1280 | { |
cee63723 | 1281 | int i, ret; |
cc7ec456 | 1282 | struct nlattr *tb[TCA_ACT_MAX_PRIO + 1]; |
33be6271 | 1283 | struct tc_action *act; |
d04e6990 | 1284 | size_t attr_size = 0; |
edfaf94f | 1285 | struct tc_action *actions[TCA_ACT_MAX_PRIO] = {}; |
1da177e4 | 1286 | |
8cb08174 JB |
1287 | ret = nla_parse_nested_deprecated(tb, TCA_ACT_MAX_PRIO, nla, NULL, |
1288 | extack); | |
cee63723 PM |
1289 | if (ret < 0) |
1290 | return ret; | |
1da177e4 | 1291 | |
cc7ec456 | 1292 | if (event == RTM_DELACTION && n->nlmsg_flags & NLM_F_ROOT) { |
1af85155 | 1293 | if (tb[1]) |
84ae017a | 1294 | return tca_action_flush(net, tb[1], n, portid, extack); |
1af85155 | 1295 | |
84ae017a | 1296 | NL_SET_ERR_MSG(extack, "Invalid netlink attributes while flushing TC action"); |
1af85155 | 1297 | return -EINVAL; |
1da177e4 LT |
1298 | } |
1299 | ||
7ba699c6 | 1300 | for (i = 1; i <= TCA_ACT_MAX_PRIO && tb[i]; i++) { |
84ae017a | 1301 | act = tcf_action_get_1(net, tb[i], n, portid, extack); |
ab27cfb8 PM |
1302 | if (IS_ERR(act)) { |
1303 | ret = PTR_ERR(act); | |
1da177e4 | 1304 | goto err; |
ab27cfb8 | 1305 | } |
7ba699c6 | 1306 | act->order = i; |
4e76e75d | 1307 | attr_size += tcf_action_fill_size(act); |
90b73b77 | 1308 | actions[i - 1] = act; |
1da177e4 | 1309 | } |
4e76e75d RM |
1310 | |
1311 | attr_size = tcf_action_full_attrs_size(attr_size); | |
1da177e4 LT |
1312 | |
1313 | if (event == RTM_GETACTION) | |
90b73b77 | 1314 | ret = tcf_get_notify(net, portid, n, actions, event, extack); |
1da177e4 | 1315 | else { /* delete */ |
edfaf94f | 1316 | ret = tcf_del_notify(net, n, actions, portid, attr_size, extack); |
a56e1953 | 1317 | if (ret) |
1da177e4 | 1318 | goto err; |
edfaf94f | 1319 | return 0; |
1da177e4 LT |
1320 | } |
1321 | err: | |
edfaf94f | 1322 | tcf_action_put_many(actions); |
1da177e4 LT |
1323 | return ret; |
1324 | } | |
1325 | ||
a56e1953 | 1326 | static int |
90b73b77 | 1327 | tcf_add_notify(struct net *net, struct nlmsghdr *n, struct tc_action *actions[], |
d04e6990 | 1328 | u32 portid, size_t attr_size, struct netlink_ext_ack *extack) |
1da177e4 | 1329 | { |
1da177e4 | 1330 | struct sk_buff *skb; |
1da177e4 LT |
1331 | int err = 0; |
1332 | ||
d04e6990 RM |
1333 | skb = alloc_skb(attr_size <= NLMSG_GOODSIZE ? NLMSG_GOODSIZE : attr_size, |
1334 | GFP_KERNEL); | |
1da177e4 LT |
1335 | if (!skb) |
1336 | return -ENOBUFS; | |
1337 | ||
a56e1953 WC |
1338 | if (tca_get_fill(skb, actions, portid, n->nlmsg_seq, n->nlmsg_flags, |
1339 | RTM_NEWACTION, 0, 0) <= 0) { | |
d143b9e3 | 1340 | NL_SET_ERR_MSG(extack, "Failed to fill netlink attributes while adding TC action"); |
a56e1953 WC |
1341 | kfree_skb(skb); |
1342 | return -EINVAL; | |
1343 | } | |
10297b99 | 1344 | |
a56e1953 WC |
1345 | err = rtnetlink_send(skb, net, portid, RTNLGRP_TC, |
1346 | n->nlmsg_flags & NLM_F_ECHO); | |
1da177e4 LT |
1347 | if (err > 0) |
1348 | err = 0; | |
1349 | return err; | |
1da177e4 LT |
1350 | } |
1351 | ||
5a7a5555 | 1352 | static int tcf_action_add(struct net *net, struct nlattr *nla, |
aea0d727 AA |
1353 | struct nlmsghdr *n, u32 portid, int ovr, |
1354 | struct netlink_ext_ack *extack) | |
1da177e4 | 1355 | { |
d04e6990 | 1356 | size_t attr_size = 0; |
1da177e4 | 1357 | int ret = 0; |
90b73b77 | 1358 | struct tc_action *actions[TCA_ACT_MAX_PRIO] = {}; |
1da177e4 | 1359 | |
90b73b77 | 1360 | ret = tcf_action_init(net, NULL, nla, NULL, NULL, ovr, 0, actions, |
789871bb | 1361 | &attr_size, true, extack); |
90b73b77 | 1362 | if (ret < 0) |
f07fed82 | 1363 | return ret; |
90b73b77 | 1364 | ret = tcf_add_notify(net, n, actions, portid, attr_size, extack); |
cae422f3 | 1365 | if (ovr) |
90b73b77 | 1366 | tcf_action_put_many(actions); |
1da177e4 | 1367 | |
cae422f3 | 1368 | return ret; |
1da177e4 LT |
1369 | } |
1370 | ||
90825b23 JHS |
1371 | static u32 tcaa_root_flags_allowed = TCA_FLAG_LARGE_DUMP_ON; |
1372 | static const struct nla_policy tcaa_policy[TCA_ROOT_MAX + 1] = { | |
1373 | [TCA_ROOT_FLAGS] = { .type = NLA_BITFIELD32, | |
1374 | .validation_data = &tcaa_root_flags_allowed }, | |
e62e484d | 1375 | [TCA_ROOT_TIME_DELTA] = { .type = NLA_U32 }, |
90825b23 JHS |
1376 | }; |
1377 | ||
c21ef3e3 DA |
1378 | static int tc_ctl_action(struct sk_buff *skb, struct nlmsghdr *n, |
1379 | struct netlink_ext_ack *extack) | |
1da177e4 | 1380 | { |
3b1e0a65 | 1381 | struct net *net = sock_net(skb->sk); |
90825b23 | 1382 | struct nlattr *tca[TCA_ROOT_MAX + 1]; |
15e47304 | 1383 | u32 portid = skb ? NETLINK_CB(skb).portid : 0; |
1da177e4 LT |
1384 | int ret = 0, ovr = 0; |
1385 | ||
0b0f43fe JHS |
1386 | if ((n->nlmsg_type != RTM_GETACTION) && |
1387 | !netlink_capable(skb, CAP_NET_ADMIN)) | |
dfc47ef8 EB |
1388 | return -EPERM; |
1389 | ||
8cb08174 JB |
1390 | ret = nlmsg_parse_deprecated(n, sizeof(struct tcamsg), tca, |
1391 | TCA_ROOT_MAX, NULL, extack); | |
7ba699c6 PM |
1392 | if (ret < 0) |
1393 | return ret; | |
1394 | ||
1395 | if (tca[TCA_ACT_TAB] == NULL) { | |
84ae017a | 1396 | NL_SET_ERR_MSG(extack, "Netlink action attributes missing"); |
1da177e4 LT |
1397 | return -EINVAL; |
1398 | } | |
1399 | ||
cc7ec456 | 1400 | /* n->nlmsg_flags & NLM_F_CREATE */ |
1da177e4 LT |
1401 | switch (n->nlmsg_type) { |
1402 | case RTM_NEWACTION: | |
1403 | /* we are going to assume all other flags | |
25985edc | 1404 | * imply create only if it doesn't exist |
1da177e4 LT |
1405 | * Note that CREATE | EXCL implies that |
1406 | * but since we want avoid ambiguity (eg when flags | |
1407 | * is zero) then just set this | |
1408 | */ | |
cc7ec456 | 1409 | if (n->nlmsg_flags & NLM_F_REPLACE) |
1da177e4 LT |
1410 | ovr = 1; |
1411 | replay: | |
aea0d727 AA |
1412 | ret = tcf_action_add(net, tca[TCA_ACT_TAB], n, portid, ovr, |
1413 | extack); | |
1da177e4 LT |
1414 | if (ret == -EAGAIN) |
1415 | goto replay; | |
1416 | break; | |
1417 | case RTM_DELACTION: | |
7316ae88 | 1418 | ret = tca_action_gd(net, tca[TCA_ACT_TAB], n, |
84ae017a | 1419 | portid, RTM_DELACTION, extack); |
1da177e4 LT |
1420 | break; |
1421 | case RTM_GETACTION: | |
7316ae88 | 1422 | ret = tca_action_gd(net, tca[TCA_ACT_TAB], n, |
84ae017a | 1423 | portid, RTM_GETACTION, extack); |
1da177e4 LT |
1424 | break; |
1425 | default: | |
1426 | BUG(); | |
1427 | } | |
1428 | ||
1429 | return ret; | |
1430 | } | |
1431 | ||
90825b23 | 1432 | static struct nlattr *find_dump_kind(struct nlattr **nla) |
1da177e4 | 1433 | { |
cc7ec456 | 1434 | struct nlattr *tb1, *tb2[TCA_ACT_MAX + 1]; |
7ba699c6 | 1435 | struct nlattr *tb[TCA_ACT_MAX_PRIO + 1]; |
7ba699c6 | 1436 | struct nlattr *kind; |
1da177e4 | 1437 | |
7ba699c6 | 1438 | tb1 = nla[TCA_ACT_TAB]; |
1da177e4 LT |
1439 | if (tb1 == NULL) |
1440 | return NULL; | |
1441 | ||
8cb08174 | 1442 | if (nla_parse_deprecated(tb, TCA_ACT_MAX_PRIO, nla_data(tb1), NLMSG_ALIGN(nla_len(tb1)), NULL, NULL) < 0) |
1da177e4 | 1443 | return NULL; |
1da177e4 | 1444 | |
6d834e04 PM |
1445 | if (tb[1] == NULL) |
1446 | return NULL; | |
8cb08174 | 1447 | if (nla_parse_nested_deprecated(tb2, TCA_ACT_MAX, tb[1], NULL, NULL) < 0) |
1da177e4 | 1448 | return NULL; |
7ba699c6 | 1449 | kind = tb2[TCA_ACT_KIND]; |
1da177e4 | 1450 | |
26dab893 | 1451 | return kind; |
1da177e4 LT |
1452 | } |
1453 | ||
5a7a5555 | 1454 | static int tc_dump_action(struct sk_buff *skb, struct netlink_callback *cb) |
1da177e4 | 1455 | { |
ddf97ccd | 1456 | struct net *net = sock_net(skb->sk); |
1da177e4 | 1457 | struct nlmsghdr *nlh; |
27a884dc | 1458 | unsigned char *b = skb_tail_pointer(skb); |
4b3550ef | 1459 | struct nlattr *nest; |
1da177e4 | 1460 | struct tc_action_ops *a_o; |
1da177e4 | 1461 | int ret = 0; |
8b00a53c | 1462 | struct tcamsg *t = (struct tcamsg *) nlmsg_data(cb->nlh); |
90825b23 JHS |
1463 | struct nlattr *tb[TCA_ROOT_MAX + 1]; |
1464 | struct nlattr *count_attr = NULL; | |
e62e484d | 1465 | unsigned long jiffy_since = 0; |
90825b23 JHS |
1466 | struct nlattr *kind = NULL; |
1467 | struct nla_bitfield32 bf; | |
e62e484d | 1468 | u32 msecs_since = 0; |
90825b23 JHS |
1469 | u32 act_count = 0; |
1470 | ||
8cb08174 JB |
1471 | ret = nlmsg_parse_deprecated(cb->nlh, sizeof(struct tcamsg), tb, |
1472 | TCA_ROOT_MAX, tcaa_policy, cb->extack); | |
90825b23 JHS |
1473 | if (ret < 0) |
1474 | return ret; | |
1da177e4 | 1475 | |
90825b23 | 1476 | kind = find_dump_kind(tb); |
1da177e4 | 1477 | if (kind == NULL) { |
6ff9c364 | 1478 | pr_info("tc_dump_action: action bad kind\n"); |
1da177e4 LT |
1479 | return 0; |
1480 | } | |
1481 | ||
26dab893 | 1482 | a_o = tc_lookup_action(kind); |
cc7ec456 | 1483 | if (a_o == NULL) |
1da177e4 | 1484 | return 0; |
1da177e4 | 1485 | |
90825b23 JHS |
1486 | cb->args[2] = 0; |
1487 | if (tb[TCA_ROOT_FLAGS]) { | |
1488 | bf = nla_get_bitfield32(tb[TCA_ROOT_FLAGS]); | |
1489 | cb->args[2] = bf.value; | |
1490 | } | |
1491 | ||
e62e484d JHS |
1492 | if (tb[TCA_ROOT_TIME_DELTA]) { |
1493 | msecs_since = nla_get_u32(tb[TCA_ROOT_TIME_DELTA]); | |
1494 | } | |
1495 | ||
15e47304 | 1496 | nlh = nlmsg_put(skb, NETLINK_CB(cb->skb).portid, cb->nlh->nlmsg_seq, |
8b00a53c DM |
1497 | cb->nlh->nlmsg_type, sizeof(*t), 0); |
1498 | if (!nlh) | |
1499 | goto out_module_put; | |
90825b23 | 1500 | |
e62e484d JHS |
1501 | if (msecs_since) |
1502 | jiffy_since = jiffies - msecs_to_jiffies(msecs_since); | |
1503 | ||
8b00a53c | 1504 | t = nlmsg_data(nlh); |
1da177e4 | 1505 | t->tca_family = AF_UNSPEC; |
9ef1d4c7 PM |
1506 | t->tca__pad1 = 0; |
1507 | t->tca__pad2 = 0; | |
e62e484d | 1508 | cb->args[3] = jiffy_since; |
90825b23 JHS |
1509 | count_attr = nla_reserve(skb, TCA_ROOT_COUNT, sizeof(u32)); |
1510 | if (!count_attr) | |
1511 | goto out_module_put; | |
1da177e4 | 1512 | |
ae0be8de | 1513 | nest = nla_nest_start_noflag(skb, TCA_ACT_TAB); |
4b3550ef | 1514 | if (nest == NULL) |
8b00a53c | 1515 | goto out_module_put; |
1da177e4 | 1516 | |
41780105 | 1517 | ret = a_o->walk(net, skb, cb, RTM_GETACTION, a_o, NULL); |
1da177e4 | 1518 | if (ret < 0) |
8b00a53c | 1519 | goto out_module_put; |
1da177e4 LT |
1520 | |
1521 | if (ret > 0) { | |
4b3550ef | 1522 | nla_nest_end(skb, nest); |
1da177e4 | 1523 | ret = skb->len; |
90825b23 JHS |
1524 | act_count = cb->args[1]; |
1525 | memcpy(nla_data(count_attr), &act_count, sizeof(u32)); | |
1526 | cb->args[1] = 0; | |
1da177e4 | 1527 | } else |
ebecaa66 | 1528 | nlmsg_trim(skb, b); |
1da177e4 | 1529 | |
27a884dc | 1530 | nlh->nlmsg_len = skb_tail_pointer(skb) - b; |
15e47304 | 1531 | if (NETLINK_CB(cb->skb).portid && ret) |
1da177e4 LT |
1532 | nlh->nlmsg_flags |= NLM_F_MULTI; |
1533 | module_put(a_o->owner); | |
1534 | return skb->len; | |
1535 | ||
8b00a53c | 1536 | out_module_put: |
1da177e4 | 1537 | module_put(a_o->owner); |
dc5fc579 | 1538 | nlmsg_trim(skb, b); |
1da177e4 LT |
1539 | return skb->len; |
1540 | } | |
1541 | ||
1542 | static int __init tc_action_init(void) | |
1543 | { | |
b97bac64 FW |
1544 | rtnl_register(PF_UNSPEC, RTM_NEWACTION, tc_ctl_action, NULL, 0); |
1545 | rtnl_register(PF_UNSPEC, RTM_DELACTION, tc_ctl_action, NULL, 0); | |
c7ac8679 | 1546 | rtnl_register(PF_UNSPEC, RTM_GETACTION, tc_ctl_action, tc_dump_action, |
b97bac64 | 1547 | 0); |
1da177e4 | 1548 | |
1da177e4 LT |
1549 | return 0; |
1550 | } | |
1551 | ||
1552 | subsys_initcall(tc_action_init); |