]>
Commit | Line | Data |
---|---|---|
2874c5fd | 1 | // SPDX-License-Identifier: GPL-2.0-or-later |
1da177e4 LT |
2 | /* |
3 | * RAW sockets for IPv6 | |
1ab1457c | 4 | * Linux INET6 implementation |
1da177e4 LT |
5 | * |
6 | * Authors: | |
1ab1457c | 7 | * Pedro Roque <[email protected]> |
1da177e4 LT |
8 | * |
9 | * Adapted from linux/net/ipv4/raw.c | |
10 | * | |
1da177e4 LT |
11 | * Fixes: |
12 | * Hideaki YOSHIFUJI : sin6_scope_id support | |
1ab1457c | 13 | * YOSHIFUJI,H.@USAGI : raw checksum (RFC2292(bis) compliance) |
1da177e4 | 14 | * Kazunori MIYAZAWA @USAGI: change process style to use ip6_append_data |
1da177e4 LT |
15 | */ |
16 | ||
17 | #include <linux/errno.h> | |
18 | #include <linux/types.h> | |
19 | #include <linux/socket.h> | |
5a0e3ad6 | 20 | #include <linux/slab.h> |
1da177e4 | 21 | #include <linux/sockios.h> |
1da177e4 LT |
22 | #include <linux/net.h> |
23 | #include <linux/in6.h> | |
24 | #include <linux/netdevice.h> | |
25 | #include <linux/if_arp.h> | |
26 | #include <linux/icmpv6.h> | |
27 | #include <linux/netfilter.h> | |
28 | #include <linux/netfilter_ipv6.h> | |
3305b80c | 29 | #include <linux/skbuff.h> |
e2d57766 | 30 | #include <linux/compat.h> |
29778bec | 31 | #include <linux/uaccess.h> |
1da177e4 LT |
32 | #include <asm/ioctls.h> |
33 | ||
457c4cbc | 34 | #include <net/net_namespace.h> |
1da177e4 LT |
35 | #include <net/ip.h> |
36 | #include <net/sock.h> | |
37 | #include <net/snmp.h> | |
38 | ||
39 | #include <net/ipv6.h> | |
40 | #include <net/ndisc.h> | |
41 | #include <net/protocol.h> | |
42 | #include <net/ip6_route.h> | |
43 | #include <net/ip6_checksum.h> | |
44 | #include <net/addrconf.h> | |
45 | #include <net/transp_v6.h> | |
46 | #include <net/udp.h> | |
47 | #include <net/inet_common.h> | |
c752f073 | 48 | #include <net/tcp_states.h> |
07a93626 | 49 | #if IS_ENABLED(CONFIG_IPV6_MIP6) |
7be96f76 MN |
50 | #include <net/mip6.h> |
51 | #endif | |
7bc570c8 | 52 | #include <linux/mroute6.h> |
1da177e4 | 53 | |
b673e4df | 54 | #include <net/raw.h> |
1da177e4 LT |
55 | #include <net/rawv6.h> |
56 | #include <net/xfrm.h> | |
57 | ||
58 | #include <linux/proc_fs.h> | |
59 | #include <linux/seq_file.h> | |
bc3b2d7f | 60 | #include <linux/export.h> |
1da177e4 | 61 | |
d1c53c8e WA |
62 | #define ICMPV6_HDRLEN 4 /* ICMPv6 header, RFC 4443 Section 2.1 */ |
63 | ||
432490f9 | 64 | struct raw_hashinfo raw_v6_hashinfo = { |
938b93ad | 65 | .lock = __RW_LOCK_UNLOCKED(raw_v6_hashinfo.lock), |
b673e4df | 66 | }; |
432490f9 | 67 | EXPORT_SYMBOL_GPL(raw_v6_hashinfo); |
1da177e4 | 68 | |
432490f9 | 69 | struct sock *__raw_v6_lookup(struct net *net, struct sock *sk, |
b71d1d42 | 70 | unsigned short num, const struct in6_addr *loc_addr, |
5108ab4b | 71 | const struct in6_addr *rmt_addr, int dif, int sdif) |
1da177e4 | 72 | { |
a50feda5 | 73 | bool is_multicast = ipv6_addr_is_multicast(loc_addr); |
1da177e4 | 74 | |
b67bfe0d | 75 | sk_for_each_from(sk) |
c720c7e8 | 76 | if (inet_sk(sk)->inet_num == num) { |
1da177e4 | 77 | |
878628fb | 78 | if (!net_eq(sock_net(sk), net)) |
be185884 PE |
79 | continue; |
80 | ||
efe4208f ED |
81 | if (!ipv6_addr_any(&sk->sk_v6_daddr) && |
82 | !ipv6_addr_equal(&sk->sk_v6_daddr, rmt_addr)) | |
1da177e4 LT |
83 | continue; |
84 | ||
7055420f DE |
85 | if (!raw_sk_bound_dev_eq(net, sk->sk_bound_dev_if, |
86 | dif, sdif)) | |
0bd1b59b AM |
87 | continue; |
88 | ||
efe4208f ED |
89 | if (!ipv6_addr_any(&sk->sk_v6_rcv_saddr)) { |
90 | if (ipv6_addr_equal(&sk->sk_v6_rcv_saddr, loc_addr)) | |
1da177e4 LT |
91 | goto found; |
92 | if (is_multicast && | |
93 | inet6_mc_check(sk, loc_addr, rmt_addr)) | |
94 | goto found; | |
95 | continue; | |
96 | } | |
97 | goto found; | |
98 | } | |
99 | sk = NULL; | |
100 | found: | |
101 | return sk; | |
102 | } | |
432490f9 | 103 | EXPORT_SYMBOL_GPL(__raw_v6_lookup); |
1da177e4 LT |
104 | |
105 | /* | |
106 | * 0 - deliver | |
107 | * 1 - block | |
108 | */ | |
1b05c4b5 | 109 | static int icmpv6_filter(const struct sock *sk, const struct sk_buff *skb) |
1da177e4 | 110 | { |
9cc08af3 | 111 | struct icmp6hdr _hdr; |
1b05c4b5 | 112 | const struct icmp6hdr *hdr; |
1da177e4 | 113 | |
d1c53c8e WA |
114 | /* We require only the four bytes of the ICMPv6 header, not any |
115 | * additional bytes of message body in "struct icmp6hdr". | |
116 | */ | |
1b05c4b5 | 117 | hdr = skb_header_pointer(skb, skb_transport_offset(skb), |
d1c53c8e | 118 | ICMPV6_HDRLEN, &_hdr); |
1b05c4b5 ED |
119 | if (hdr) { |
120 | const __u32 *data = &raw6_sk(sk)->filter.data[0]; | |
121 | unsigned int type = hdr->icmp6_type; | |
1da177e4 | 122 | |
1b05c4b5 | 123 | return (data[type >> 5] & (1U << (type & 31))) != 0; |
1da177e4 | 124 | } |
1b05c4b5 | 125 | return 1; |
1da177e4 LT |
126 | } |
127 | ||
07a93626 | 128 | #if IS_ENABLED(CONFIG_IPV6_MIP6) |
f2eda47d | 129 | typedef int mh_filter_t(struct sock *sock, struct sk_buff *skb); |
59fbb3a6 | 130 | |
f2eda47d ED |
131 | static mh_filter_t __rcu *mh_filter __read_mostly; |
132 | ||
133 | int rawv6_mh_filter_register(mh_filter_t filter) | |
59fbb3a6 | 134 | { |
cf778b00 | 135 | rcu_assign_pointer(mh_filter, filter); |
59fbb3a6 MN |
136 | return 0; |
137 | } | |
138 | EXPORT_SYMBOL(rawv6_mh_filter_register); | |
139 | ||
f2eda47d | 140 | int rawv6_mh_filter_unregister(mh_filter_t filter) |
59fbb3a6 | 141 | { |
a9b3cd7f | 142 | RCU_INIT_POINTER(mh_filter, NULL); |
59fbb3a6 MN |
143 | synchronize_rcu(); |
144 | return 0; | |
145 | } | |
146 | EXPORT_SYMBOL(rawv6_mh_filter_unregister); | |
147 | ||
148 | #endif | |
149 | ||
1da177e4 LT |
150 | /* |
151 | * demultiplex raw sockets. | |
152 | * (should consider queueing the skb in the sock receive_queue | |
153 | * without calling rawv6.c) | |
154 | * | |
155 | * Caller owns SKB so we must make clones. | |
156 | */ | |
a50feda5 | 157 | static bool ipv6_raw_deliver(struct sk_buff *skb, int nexthdr) |
1da177e4 | 158 | { |
b71d1d42 ED |
159 | const struct in6_addr *saddr; |
160 | const struct in6_addr *daddr; | |
1da177e4 | 161 | struct sock *sk; |
a50feda5 | 162 | bool delivered = false; |
1da177e4 | 163 | __u8 hash; |
be185884 | 164 | struct net *net; |
1da177e4 | 165 | |
0660e03f | 166 | saddr = &ipv6_hdr(skb)->saddr; |
1da177e4 LT |
167 | daddr = saddr + 1; |
168 | ||
f9242b6b | 169 | hash = nexthdr & (RAW_HTABLE_SIZE - 1); |
1da177e4 | 170 | |
b673e4df PE |
171 | read_lock(&raw_v6_hashinfo.lock); |
172 | sk = sk_head(&raw_v6_hashinfo.ht[hash]); | |
1da177e4 | 173 | |
63159f29 | 174 | if (!sk) |
1da177e4 LT |
175 | goto out; |
176 | ||
c346dca1 | 177 | net = dev_net(skb->dev); |
5108ab4b DA |
178 | sk = __raw_v6_lookup(net, sk, nexthdr, daddr, saddr, |
179 | inet6_iif(skb), inet6_sdif(skb)); | |
1da177e4 LT |
180 | |
181 | while (sk) { | |
7be96f76 MN |
182 | int filtered; |
183 | ||
a50feda5 | 184 | delivered = true; |
7be96f76 MN |
185 | switch (nexthdr) { |
186 | case IPPROTO_ICMPV6: | |
187 | filtered = icmpv6_filter(sk, skb); | |
188 | break; | |
59fbb3a6 | 189 | |
07a93626 | 190 | #if IS_ENABLED(CONFIG_IPV6_MIP6) |
7be96f76 | 191 | case IPPROTO_MH: |
59fbb3a6 | 192 | { |
7be96f76 MN |
193 | /* XXX: To validate MH only once for each packet, |
194 | * this is placed here. It should be after checking | |
195 | * xfrm policy, however it doesn't. The checking xfrm | |
196 | * policy is placed in rawv6_rcv() because it is | |
197 | * required for each socket. | |
198 | */ | |
f2eda47d | 199 | mh_filter_t *filter; |
59fbb3a6 MN |
200 | |
201 | filter = rcu_dereference(mh_filter); | |
f2eda47d | 202 | filtered = filter ? (*filter)(sk, skb) : 0; |
7be96f76 | 203 | break; |
59fbb3a6 | 204 | } |
7be96f76 MN |
205 | #endif |
206 | default: | |
207 | filtered = 0; | |
208 | break; | |
209 | } | |
210 | ||
211 | if (filtered < 0) | |
212 | break; | |
213 | if (filtered == 0) { | |
1da177e4 LT |
214 | struct sk_buff *clone = skb_clone(skb, GFP_ATOMIC); |
215 | ||
216 | /* Not releasing hash table! */ | |
9fb9cbb1 | 217 | if (clone) { |
895b5c9f | 218 | nf_reset_ct(clone); |
1da177e4 | 219 | rawv6_rcv(sk, clone); |
9fb9cbb1 | 220 | } |
1da177e4 | 221 | } |
be185884 | 222 | sk = __raw_v6_lookup(net, sk_next(sk), nexthdr, daddr, saddr, |
5108ab4b | 223 | inet6_iif(skb), inet6_sdif(skb)); |
1da177e4 LT |
224 | } |
225 | out: | |
b673e4df | 226 | read_unlock(&raw_v6_hashinfo.lock); |
d13964f4 | 227 | return delivered; |
1da177e4 LT |
228 | } |
229 | ||
a50feda5 | 230 | bool raw6_local_deliver(struct sk_buff *skb, int nexthdr) |
69d6da0b PE |
231 | { |
232 | struct sock *raw_sk; | |
233 | ||
f9242b6b | 234 | raw_sk = sk_head(&raw_v6_hashinfo.ht[nexthdr & (RAW_HTABLE_SIZE - 1)]); |
69d6da0b PE |
235 | if (raw_sk && !ipv6_raw_deliver(skb, nexthdr)) |
236 | raw_sk = NULL; | |
237 | ||
238 | return raw_sk != NULL; | |
239 | } | |
240 | ||
1da177e4 LT |
241 | /* This cleans up af_inet6 a bit. -DaveM */ |
242 | static int rawv6_bind(struct sock *sk, struct sockaddr *uaddr, int addr_len) | |
243 | { | |
244 | struct inet_sock *inet = inet_sk(sk); | |
245 | struct ipv6_pinfo *np = inet6_sk(sk); | |
246 | struct sockaddr_in6 *addr = (struct sockaddr_in6 *) uaddr; | |
e69a4adc | 247 | __be32 v4addr = 0; |
1da177e4 LT |
248 | int addr_type; |
249 | int err; | |
250 | ||
251 | if (addr_len < SIN6_LEN_RFC2133) | |
252 | return -EINVAL; | |
82b276cd HFS |
253 | |
254 | if (addr->sin6_family != AF_INET6) | |
255 | return -EINVAL; | |
256 | ||
1da177e4 LT |
257 | addr_type = ipv6_addr_type(&addr->sin6_addr); |
258 | ||
259 | /* Raw sockets are IPv6 only */ | |
260 | if (addr_type == IPV6_ADDR_MAPPED) | |
fd5c0027 | 261 | return -EADDRNOTAVAIL; |
1da177e4 LT |
262 | |
263 | lock_sock(sk); | |
264 | ||
265 | err = -EINVAL; | |
266 | if (sk->sk_state != TCP_CLOSE) | |
267 | goto out; | |
268 | ||
fd5c0027 | 269 | rcu_read_lock(); |
1da177e4 LT |
270 | /* Check if the address belongs to the host. */ |
271 | if (addr_type != IPV6_ADDR_ANY) { | |
272 | struct net_device *dev = NULL; | |
273 | ||
842df073 | 274 | if (__ipv6_addr_needs_scope_id(addr_type)) { |
1da177e4 LT |
275 | if (addr_len >= sizeof(struct sockaddr_in6) && |
276 | addr->sin6_scope_id) { | |
277 | /* Override any existing binding, if another | |
278 | * one is supplied by user. | |
279 | */ | |
280 | sk->sk_bound_dev_if = addr->sin6_scope_id; | |
281 | } | |
1ab1457c | 282 | |
1da177e4 LT |
283 | /* Binding to link-local address requires an interface */ |
284 | if (!sk->sk_bound_dev_if) | |
fd5c0027 | 285 | goto out_unlock; |
72f7cfab | 286 | } |
1da177e4 | 287 | |
72f7cfab | 288 | if (sk->sk_bound_dev_if) { |
fd5c0027 ED |
289 | err = -ENODEV; |
290 | dev = dev_get_by_index_rcu(sock_net(sk), | |
291 | sk->sk_bound_dev_if); | |
292 | if (!dev) | |
293 | goto out_unlock; | |
1da177e4 | 294 | } |
1ab1457c | 295 | |
1da177e4 LT |
296 | /* ipv4 addr of the socket is invalid. Only the |
297 | * unspecified and mapped address have a v4 equivalent. | |
298 | */ | |
299 | v4addr = LOOPBACK4_IPV6; | |
35a256fe TH |
300 | if (!(addr_type & IPV6_ADDR_MULTICAST) && |
301 | !sock_net(sk)->ipv6.sysctl.ip_nonlocal_bind) { | |
1da177e4 | 302 | err = -EADDRNOTAVAIL; |
3b1e0a65 | 303 | if (!ipv6_chk_addr(sock_net(sk), &addr->sin6_addr, |
bfeade08 | 304 | dev, 0)) { |
fd5c0027 | 305 | goto out_unlock; |
1da177e4 LT |
306 | } |
307 | } | |
1da177e4 LT |
308 | } |
309 | ||
c720c7e8 | 310 | inet->inet_rcv_saddr = inet->inet_saddr = v4addr; |
efe4208f | 311 | sk->sk_v6_rcv_saddr = addr->sin6_addr; |
1da177e4 | 312 | if (!(addr_type & IPV6_ADDR_MULTICAST)) |
4e3fd7a0 | 313 | np->saddr = addr->sin6_addr; |
1da177e4 | 314 | err = 0; |
fd5c0027 ED |
315 | out_unlock: |
316 | rcu_read_unlock(); | |
1da177e4 LT |
317 | out: |
318 | release_sock(sk); | |
319 | return err; | |
320 | } | |
321 | ||
69d6da0b | 322 | static void rawv6_err(struct sock *sk, struct sk_buff *skb, |
1da177e4 | 323 | struct inet6_skb_parm *opt, |
d5fdd6ba | 324 | u8 type, u8 code, int offset, __be32 info) |
1da177e4 LT |
325 | { |
326 | struct inet_sock *inet = inet_sk(sk); | |
327 | struct ipv6_pinfo *np = inet6_sk(sk); | |
328 | int err; | |
329 | int harderr; | |
330 | ||
331 | /* Report error on raw socket, if: | |
332 | 1. User requested recverr. | |
333 | 2. Socket is connected (otherwise the error indication | |
334 | is useless without recverr and error is hard. | |
335 | */ | |
336 | if (!np->recverr && sk->sk_state != TCP_ESTABLISHED) | |
337 | return; | |
338 | ||
339 | harderr = icmpv6_err_convert(type, code, &err); | |
81aded24 DM |
340 | if (type == ICMPV6_PKT_TOOBIG) { |
341 | ip6_sk_update_pmtu(skb, sk, info); | |
1da177e4 | 342 | harderr = (np->pmtudisc == IPV6_PMTUDISC_DO); |
81aded24 | 343 | } |
8d65b119 | 344 | if (type == NDISC_REDIRECT) { |
ec18d9a2 | 345 | ip6_sk_redirect(skb, sk); |
8d65b119 DJ |
346 | return; |
347 | } | |
1da177e4 LT |
348 | if (np->recverr) { |
349 | u8 *payload = skb->data; | |
350 | if (!inet->hdrincl) | |
351 | payload += offset; | |
352 | ipv6_icmp_error(sk, skb, err, 0, ntohl(info), payload); | |
353 | } | |
354 | ||
355 | if (np->recverr || harderr) { | |
356 | sk->sk_err = err; | |
357 | sk->sk_error_report(sk); | |
358 | } | |
359 | } | |
360 | ||
69d6da0b | 361 | void raw6_icmp_error(struct sk_buff *skb, int nexthdr, |
d5fdd6ba | 362 | u8 type, u8 code, int inner_offset, __be32 info) |
69d6da0b PE |
363 | { |
364 | struct sock *sk; | |
365 | int hash; | |
b71d1d42 | 366 | const struct in6_addr *saddr, *daddr; |
be185884 | 367 | struct net *net; |
69d6da0b | 368 | |
b673e4df | 369 | hash = nexthdr & (RAW_HTABLE_SIZE - 1); |
69d6da0b | 370 | |
b673e4df PE |
371 | read_lock(&raw_v6_hashinfo.lock); |
372 | sk = sk_head(&raw_v6_hashinfo.ht[hash]); | |
53b24b8f | 373 | if (sk) { |
05f175cd | 374 | /* Note: ipv6_hdr(skb) != skb->data */ |
b71d1d42 | 375 | const struct ipv6hdr *ip6h = (const struct ipv6hdr *)skb->data; |
05f175cd YH |
376 | saddr = &ip6h->saddr; |
377 | daddr = &ip6h->daddr; | |
c346dca1 | 378 | net = dev_net(skb->dev); |
69d6da0b | 379 | |
be185884 | 380 | while ((sk = __raw_v6_lookup(net, sk, nexthdr, saddr, daddr, |
5108ab4b | 381 | inet6_iif(skb), inet6_iif(skb)))) { |
69d6da0b PE |
382 | rawv6_err(sk, skb, NULL, type, code, |
383 | inner_offset, info); | |
384 | sk = sk_next(sk); | |
385 | } | |
386 | } | |
b673e4df | 387 | read_unlock(&raw_v6_hashinfo.lock); |
69d6da0b PE |
388 | } |
389 | ||
33d480ce | 390 | static inline int rawv6_rcv_skb(struct sock *sk, struct sk_buff *skb) |
1da177e4 | 391 | { |
33d480ce | 392 | if ((raw6_sk(sk)->checksum || rcu_access_pointer(sk->sk_filter)) && |
fb286bb2 | 393 | skb_checksum_complete(skb)) { |
a92aa318 | 394 | atomic_inc(&sk->sk_drops); |
fb286bb2 | 395 | kfree_skb(skb); |
3cc76caa | 396 | return NET_RX_DROP; |
1da177e4 LT |
397 | } |
398 | ||
399 | /* Charge it to the socket. */ | |
d826eb14 ED |
400 | skb_dst_drop(skb); |
401 | if (sock_queue_rcv_skb(sk, skb) < 0) { | |
1da177e4 | 402 | kfree_skb(skb); |
3cc76caa | 403 | return NET_RX_DROP; |
1da177e4 LT |
404 | } |
405 | ||
406 | return 0; | |
407 | } | |
408 | ||
409 | /* | |
1ab1457c | 410 | * This is next to useless... |
1da177e4 | 411 | * if we demultiplex in network layer we don't need the extra call |
1ab1457c YH |
412 | * just to queue the skb... |
413 | * maybe we could have the network decide upon a hint if it | |
1da177e4 LT |
414 | * should call raw_rcv for demultiplexing |
415 | */ | |
416 | int rawv6_rcv(struct sock *sk, struct sk_buff *skb) | |
417 | { | |
418 | struct inet_sock *inet = inet_sk(sk); | |
419 | struct raw6_sock *rp = raw6_sk(sk); | |
420 | ||
1ab1457c | 421 | if (!xfrm6_policy_check(sk, XFRM_POLICY_IN, skb)) { |
a92aa318 | 422 | atomic_inc(&sk->sk_drops); |
1ab1457c YH |
423 | kfree_skb(skb); |
424 | return NET_RX_DROP; | |
425 | } | |
1da177e4 LT |
426 | |
427 | if (!rp->checksum) | |
428 | skb->ip_summed = CHECKSUM_UNNECESSARY; | |
429 | ||
84fa7933 | 430 | if (skb->ip_summed == CHECKSUM_COMPLETE) { |
d56f90a7 | 431 | skb_postpull_rcsum(skb, skb_network_header(skb), |
cfe1fc77 | 432 | skb_network_header_len(skb)); |
0660e03f ACM |
433 | if (!csum_ipv6_magic(&ipv6_hdr(skb)->saddr, |
434 | &ipv6_hdr(skb)->daddr, | |
c720c7e8 | 435 | skb->len, inet->inet_num, skb->csum)) |
1da177e4 | 436 | skb->ip_summed = CHECKSUM_UNNECESSARY; |
1da177e4 | 437 | } |
60476372 | 438 | if (!skb_csum_unnecessary(skb)) |
0660e03f ACM |
439 | skb->csum = ~csum_unfold(csum_ipv6_magic(&ipv6_hdr(skb)->saddr, |
440 | &ipv6_hdr(skb)->daddr, | |
441 | skb->len, | |
c720c7e8 | 442 | inet->inet_num, 0)); |
1da177e4 LT |
443 | |
444 | if (inet->hdrincl) { | |
fb286bb2 | 445 | if (skb_checksum_complete(skb)) { |
a92aa318 | 446 | atomic_inc(&sk->sk_drops); |
1da177e4 | 447 | kfree_skb(skb); |
3cc76caa | 448 | return NET_RX_DROP; |
1da177e4 | 449 | } |
1da177e4 LT |
450 | } |
451 | ||
452 | rawv6_rcv_skb(sk, skb); | |
453 | return 0; | |
454 | } | |
455 | ||
456 | ||
457 | /* | |
458 | * This should be easy, if there is something there | |
459 | * we return it, otherwise we block. | |
460 | */ | |
461 | ||
1b784140 YX |
462 | static int rawv6_recvmsg(struct sock *sk, struct msghdr *msg, size_t len, |
463 | int noblock, int flags, int *addr_len) | |
1da177e4 LT |
464 | { |
465 | struct ipv6_pinfo *np = inet6_sk(sk); | |
342dfc30 | 466 | DECLARE_SOCKADDR(struct sockaddr_in6 *, sin6, msg->msg_name); |
1da177e4 LT |
467 | struct sk_buff *skb; |
468 | size_t copied; | |
469 | int err; | |
470 | ||
471 | if (flags & MSG_OOB) | |
472 | return -EOPNOTSUPP; | |
1ab1457c | 473 | |
1da177e4 | 474 | if (flags & MSG_ERRQUEUE) |
85fbaa75 | 475 | return ipv6_recv_error(sk, msg, len, addr_len); |
1da177e4 | 476 | |
4b340ae2 | 477 | if (np->rxpmtu && np->rxopt.bits.rxpmtu) |
85fbaa75 | 478 | return ipv6_recv_rxpmtu(sk, msg, len, addr_len); |
4b340ae2 | 479 | |
1da177e4 LT |
480 | skb = skb_recv_datagram(sk, flags, noblock, &err); |
481 | if (!skb) | |
482 | goto out; | |
483 | ||
484 | copied = skb->len; | |
1ab1457c YH |
485 | if (copied > len) { |
486 | copied = len; | |
487 | msg->msg_flags |= MSG_TRUNC; | |
488 | } | |
1da177e4 | 489 | |
60476372 | 490 | if (skb_csum_unnecessary(skb)) { |
51f3d02b | 491 | err = skb_copy_datagram_msg(skb, 0, msg, copied); |
1da177e4 | 492 | } else if (msg->msg_flags&MSG_TRUNC) { |
fb286bb2 | 493 | if (__skb_checksum_complete(skb)) |
1da177e4 | 494 | goto csum_copy_err; |
51f3d02b | 495 | err = skb_copy_datagram_msg(skb, 0, msg, copied); |
1da177e4 | 496 | } else { |
227158db | 497 | err = skb_copy_and_csum_datagram_msg(skb, 0, msg); |
1da177e4 LT |
498 | if (err == -EINVAL) |
499 | goto csum_copy_err; | |
500 | } | |
501 | if (err) | |
502 | goto out_free; | |
503 | ||
504 | /* Copy the address. */ | |
505 | if (sin6) { | |
506 | sin6->sin6_family = AF_INET6; | |
f59fc7f3 | 507 | sin6->sin6_port = 0; |
4e3fd7a0 | 508 | sin6->sin6_addr = ipv6_hdr(skb)->saddr; |
1da177e4 | 509 | sin6->sin6_flowinfo = 0; |
842df073 | 510 | sin6->sin6_scope_id = ipv6_iface_scope_id(&sin6->sin6_addr, |
4330487a | 511 | inet6_iif(skb)); |
bceaa902 | 512 | *addr_len = sizeof(*sin6); |
1da177e4 LT |
513 | } |
514 | ||
3b885787 | 515 | sock_recv_ts_and_drops(msg, sk, skb); |
1da177e4 LT |
516 | |
517 | if (np->rxopt.all) | |
73df66f8 | 518 | ip6_datagram_recv_ctl(sk, msg, skb); |
1da177e4 LT |
519 | |
520 | err = copied; | |
521 | if (flags & MSG_TRUNC) | |
522 | err = skb->len; | |
523 | ||
524 | out_free: | |
525 | skb_free_datagram(sk, skb); | |
526 | out: | |
527 | return err; | |
528 | ||
529 | csum_copy_err: | |
3305b80c | 530 | skb_kill_datagram(sk, skb, flags); |
1da177e4 LT |
531 | |
532 | /* Error for blocking case is chosen to masquerade | |
533 | as some normal condition. | |
534 | */ | |
535 | err = (flags&MSG_DONTWAIT) ? -EAGAIN : -EHOSTUNREACH; | |
3305b80c | 536 | goto out; |
1da177e4 LT |
537 | } |
538 | ||
4c9483b2 | 539 | static int rawv6_push_pending_frames(struct sock *sk, struct flowi6 *fl6, |
357b40a1 | 540 | struct raw6_sock *rp) |
1da177e4 LT |
541 | { |
542 | struct sk_buff *skb; | |
543 | int err = 0; | |
357b40a1 HX |
544 | int offset; |
545 | int len; | |
679a8738 | 546 | int total_len; |
868c86bc AV |
547 | __wsum tmp_csum; |
548 | __sum16 csum; | |
1da177e4 LT |
549 | |
550 | if (!rp->checksum) | |
551 | goto send; | |
552 | ||
43728fa5 FF |
553 | skb = skb_peek(&sk->sk_write_queue); |
554 | if (!skb) | |
1da177e4 LT |
555 | goto out; |
556 | ||
357b40a1 | 557 | offset = rp->offset; |
299b0767 | 558 | total_len = inet_sk(sk)->cork.base.length; |
679a8738 | 559 | if (offset >= total_len - 1) { |
1da177e4 | 560 | err = -EINVAL; |
357b40a1 | 561 | ip6_flush_pending_frames(sk); |
1da177e4 LT |
562 | goto out; |
563 | } | |
564 | ||
565 | /* should be check HW csum miyazawa */ | |
566 | if (skb_queue_len(&sk->sk_write_queue) == 1) { | |
567 | /* | |
568 | * Only one fragment on the socket. | |
569 | */ | |
570 | tmp_csum = skb->csum; | |
571 | } else { | |
357b40a1 | 572 | struct sk_buff *csum_skb = NULL; |
1da177e4 LT |
573 | tmp_csum = 0; |
574 | ||
575 | skb_queue_walk(&sk->sk_write_queue, skb) { | |
576 | tmp_csum = csum_add(tmp_csum, skb->csum); | |
357b40a1 HX |
577 | |
578 | if (csum_skb) | |
579 | continue; | |
580 | ||
ea2ae17d | 581 | len = skb->len - skb_transport_offset(skb); |
357b40a1 HX |
582 | if (offset >= len) { |
583 | offset -= len; | |
584 | continue; | |
585 | } | |
586 | ||
587 | csum_skb = skb; | |
1da177e4 | 588 | } |
357b40a1 HX |
589 | |
590 | skb = csum_skb; | |
1da177e4 LT |
591 | } |
592 | ||
ea2ae17d | 593 | offset += skb_transport_offset(skb); |
a98f9175 DJ |
594 | err = skb_copy_bits(skb, offset, &csum, 2); |
595 | if (err < 0) { | |
596 | ip6_flush_pending_frames(sk); | |
597 | goto out; | |
598 | } | |
357b40a1 | 599 | |
1da177e4 | 600 | /* in case cksum was not initialized */ |
357b40a1 | 601 | if (unlikely(csum)) |
5f92a738 | 602 | tmp_csum = csum_sub(tmp_csum, csum_unfold(csum)); |
357b40a1 | 603 | |
4c9483b2 DM |
604 | csum = csum_ipv6_magic(&fl6->saddr, &fl6->daddr, |
605 | total_len, fl6->flowi6_proto, tmp_csum); | |
357b40a1 | 606 | |
4c9483b2 | 607 | if (csum == 0 && fl6->flowi6_proto == IPPROTO_UDP) |
f6ab0288 | 608 | csum = CSUM_MANGLED_0; |
1da177e4 | 609 | |
8242fc33 | 610 | BUG_ON(skb_store_bits(skb, offset, &csum, 2)); |
1da177e4 | 611 | |
1da177e4 LT |
612 | send: |
613 | err = ip6_push_pending_frames(sk); | |
614 | out: | |
615 | return err; | |
616 | } | |
617 | ||
c3c1a7db | 618 | static int rawv6_send_hdrinc(struct sock *sk, struct msghdr *msg, int length, |
4c9483b2 | 619 | struct flowi6 *fl6, struct dst_entry **dstp, |
a818f75e | 620 | unsigned int flags, const struct sockcm_cookie *sockc) |
1da177e4 | 621 | { |
3320da89 | 622 | struct ipv6_pinfo *np = inet6_sk(sk); |
adb28c9d | 623 | struct net *net = sock_net(sk); |
1da177e4 LT |
624 | struct ipv6hdr *iph; |
625 | struct sk_buff *skb; | |
1da177e4 | 626 | int err; |
1789a640 | 627 | struct rt6_info *rt = (struct rt6_info *)*dstp; |
a7ae1992 HX |
628 | int hlen = LL_RESERVED_SPACE(rt->dst.dev); |
629 | int tlen = rt->dst.dev->needed_tailroom; | |
1da177e4 | 630 | |
d8d1f30b | 631 | if (length > rt->dst.dev->mtu) { |
4c9483b2 | 632 | ipv6_local_error(sk, EMSGSIZE, fl6, rt->dst.dev->mtu); |
1da177e4 LT |
633 | return -EMSGSIZE; |
634 | } | |
86f4c90a AP |
635 | if (length < sizeof(struct ipv6hdr)) |
636 | return -EINVAL; | |
1da177e4 LT |
637 | if (flags&MSG_PROBE) |
638 | goto out; | |
639 | ||
f5184d26 | 640 | skb = sock_alloc_send_skb(sk, |
a7ae1992 | 641 | length + hlen + tlen + 15, |
f5184d26 | 642 | flags & MSG_DONTWAIT, &err); |
63159f29 | 643 | if (!skb) |
1ab1457c | 644 | goto error; |
a7ae1992 | 645 | skb_reserve(skb, hlen); |
1da177e4 | 646 | |
9c9c9ad5 | 647 | skb->protocol = htons(ETH_P_IPV6); |
1da177e4 | 648 | skb->priority = sk->sk_priority; |
c6af0c22 | 649 | skb->mark = sockc->mark; |
a818f75e | 650 | skb->tstamp = sockc->transmit_time; |
1da177e4 | 651 | |
1ced98e8 ACM |
652 | skb_put(skb, length); |
653 | skb_reset_network_header(skb); | |
0660e03f | 654 | iph = ipv6_hdr(skb); |
1da177e4 LT |
655 | |
656 | skb->ip_summed = CHECKSUM_NONE; | |
657 | ||
8f932f76 | 658 | skb_setup_tx_timestamp(skb, sockc->tsflags); |
fbfb2321 | 659 | |
0dec879f JA |
660 | if (flags & MSG_CONFIRM) |
661 | skb_set_dst_pending_confirm(skb, 1); | |
662 | ||
b0e380b1 | 663 | skb->transport_header = skb->network_header; |
21226abb | 664 | err = memcpy_from_msg(iph, msg, length); |
a688caa3 WW |
665 | if (err) { |
666 | err = -EFAULT; | |
667 | kfree_skb(skb); | |
668 | goto error; | |
669 | } | |
670 | ||
671 | skb_dst_set(skb, &rt->dst); | |
672 | *dstp = NULL; | |
1da177e4 | 673 | |
a8e3e1a9 DA |
674 | /* if egress device is enslaved to an L3 master device pass the |
675 | * skb to its handler for processing | |
676 | */ | |
677 | skb = l3mdev_ip6_out(sk, skb); | |
678 | if (unlikely(!skb)) | |
679 | return 0; | |
680 | ||
a688caa3 WW |
681 | /* Acquire rcu_read_lock() in case we need to use rt->rt6i_idev |
682 | * in the error path. Since skb has been freed, the dst could | |
683 | * have been queued for deletion. | |
684 | */ | |
685 | rcu_read_lock(); | |
adb28c9d | 686 | IP6_UPD_PO_STATS(net, rt->rt6i_idev, IPSTATS_MIB_OUT, skb->len); |
29a26a56 | 687 | err = NF_HOOK(NFPROTO_IPV6, NF_INET_LOCAL_OUT, net, sk, skb, |
13206b6b | 688 | NULL, rt->dst.dev, dst_output); |
1da177e4 | 689 | if (err > 0) |
6ce9e7b5 | 690 | err = net_xmit_errno(err); |
a688caa3 WW |
691 | if (err) { |
692 | IP6_INC_STATS(net, rt->rt6i_idev, IPSTATS_MIB_OUTDISCARDS); | |
693 | rcu_read_unlock(); | |
694 | goto error_check; | |
695 | } | |
696 | rcu_read_unlock(); | |
1da177e4 LT |
697 | out: |
698 | return 0; | |
699 | ||
1da177e4 | 700 | error: |
adb28c9d | 701 | IP6_INC_STATS(net, rt->rt6i_idev, IPSTATS_MIB_OUTDISCARDS); |
a688caa3 | 702 | error_check: |
6ce9e7b5 ED |
703 | if (err == -ENOBUFS && !np->recverr) |
704 | err = 0; | |
1ab1457c | 705 | return err; |
1da177e4 LT |
706 | } |
707 | ||
19e3c66b AV |
708 | struct raw6_frag_vec { |
709 | struct msghdr *msg; | |
710 | int hlen; | |
711 | char c[4]; | |
712 | }; | |
713 | ||
714 | static int rawv6_probe_proto_opt(struct raw6_frag_vec *rfv, struct flowi6 *fl6) | |
1da177e4 | 715 | { |
19e3c66b AV |
716 | int err = 0; |
717 | switch (fl6->flowi6_proto) { | |
718 | case IPPROTO_ICMPV6: | |
719 | rfv->hlen = 2; | |
720 | err = memcpy_from_msg(rfv->c, rfv->msg, rfv->hlen); | |
721 | if (!err) { | |
722 | fl6->fl6_icmp_type = rfv->c[0]; | |
723 | fl6->fl6_icmp_code = rfv->c[1]; | |
724 | } | |
725 | break; | |
726 | case IPPROTO_MH: | |
727 | rfv->hlen = 4; | |
728 | err = memcpy_from_msg(rfv->c, rfv->msg, rfv->hlen); | |
729 | if (!err) | |
730 | fl6->fl6_mh_type = rfv->c[2]; | |
731 | } | |
732 | return err; | |
733 | } | |
1da177e4 | 734 | |
19e3c66b AV |
735 | static int raw6_getfrag(void *from, char *to, int offset, int len, int odd, |
736 | struct sk_buff *skb) | |
737 | { | |
738 | struct raw6_frag_vec *rfv = from; | |
739 | ||
740 | if (offset < rfv->hlen) { | |
741 | int copy = min(rfv->hlen - offset, len); | |
742 | ||
743 | if (skb->ip_summed == CHECKSUM_PARTIAL) | |
744 | memcpy(to, rfv->c + offset, copy); | |
745 | else | |
746 | skb->csum = csum_block_add( | |
747 | skb->csum, | |
748 | csum_partial_copy_nocheck(rfv->c + offset, | |
cc44c17b | 749 | to, copy), |
19e3c66b AV |
750 | odd); |
751 | ||
752 | odd = 0; | |
753 | offset += copy; | |
754 | to += copy; | |
755 | len -= copy; | |
756 | ||
757 | if (!len) | |
758 | return 0; | |
759 | } | |
1da177e4 | 760 | |
19e3c66b | 761 | offset -= rfv->hlen; |
6e8f4d48 | 762 | |
f69e6d13 | 763 | return ip_generic_getfrag(rfv->msg, to, offset, len, odd, skb); |
1da177e4 LT |
764 | } |
765 | ||
1b784140 | 766 | static int rawv6_sendmsg(struct sock *sk, struct msghdr *msg, size_t len) |
1da177e4 | 767 | { |
45f6fad8 | 768 | struct ipv6_txoptions *opt_to_free = NULL; |
1da177e4 | 769 | struct ipv6_txoptions opt_space; |
342dfc30 | 770 | DECLARE_SOCKADDR(struct sockaddr_in6 *, sin6, msg->msg_name); |
20c59de2 | 771 | struct in6_addr *daddr, *final_p, final; |
1da177e4 LT |
772 | struct inet_sock *inet = inet_sk(sk); |
773 | struct ipv6_pinfo *np = inet6_sk(sk); | |
774 | struct raw6_sock *rp = raw6_sk(sk); | |
775 | struct ipv6_txoptions *opt = NULL; | |
776 | struct ip6_flowlabel *flowlabel = NULL; | |
777 | struct dst_entry *dst = NULL; | |
19e3c66b | 778 | struct raw6_frag_vec rfv; |
4c9483b2 | 779 | struct flowi6 fl6; |
26879da5 | 780 | struct ipcm6_cookie ipc6; |
1da177e4 | 781 | int addr_len = msg->msg_namelen; |
59e3e4b5 | 782 | int hdrincl; |
1da177e4 LT |
783 | u16 proto; |
784 | int err; | |
785 | ||
786 | /* Rough check on arithmetic overflow, | |
b59e139b | 787 | better check is made in ip6_append_data(). |
1da177e4 | 788 | */ |
b59e139b | 789 | if (len > INT_MAX) |
1da177e4 LT |
790 | return -EMSGSIZE; |
791 | ||
792 | /* Mirror BSD error message compatibility */ | |
1ab1457c | 793 | if (msg->msg_flags & MSG_OOB) |
1da177e4 LT |
794 | return -EOPNOTSUPP; |
795 | ||
59e3e4b5 OM |
796 | /* hdrincl should be READ_ONCE(inet->hdrincl) |
797 | * but READ_ONCE() doesn't work with bit fields. | |
798 | * Doing this indirectly yields the same result. | |
799 | */ | |
800 | hdrincl = inet->hdrincl; | |
801 | hdrincl = READ_ONCE(hdrincl); | |
802 | ||
1da177e4 | 803 | /* |
1ab1457c | 804 | * Get and verify the address. |
1da177e4 | 805 | */ |
4c9483b2 | 806 | memset(&fl6, 0, sizeof(fl6)); |
1da177e4 | 807 | |
4c9483b2 | 808 | fl6.flowi6_mark = sk->sk_mark; |
e2d118a1 | 809 | fl6.flowi6_uid = sk->sk_uid; |
4a19ec58 | 810 | |
b515430a | 811 | ipcm6_init(&ipc6); |
5fdaa88d | 812 | ipc6.sockc.tsflags = sk->sk_tsflags; |
c6af0c22 | 813 | ipc6.sockc.mark = sk->sk_mark; |
26879da5 | 814 | |
1da177e4 | 815 | if (sin6) { |
1ab1457c | 816 | if (addr_len < SIN6_LEN_RFC2133) |
1da177e4 LT |
817 | return -EINVAL; |
818 | ||
1ab1457c | 819 | if (sin6->sin6_family && sin6->sin6_family != AF_INET6) |
a02cec21 | 820 | return -EAFNOSUPPORT; |
1da177e4 LT |
821 | |
822 | /* port is the proto value [0..255] carried in nexthdr */ | |
823 | proto = ntohs(sin6->sin6_port); | |
824 | ||
825 | if (!proto) | |
c720c7e8 ED |
826 | proto = inet->inet_num; |
827 | else if (proto != inet->inet_num) | |
a02cec21 | 828 | return -EINVAL; |
1da177e4 LT |
829 | |
830 | if (proto > 255) | |
a02cec21 | 831 | return -EINVAL; |
1da177e4 LT |
832 | |
833 | daddr = &sin6->sin6_addr; | |
834 | if (np->sndflow) { | |
4c9483b2 DM |
835 | fl6.flowlabel = sin6->sin6_flowinfo&IPV6_FLOWINFO_MASK; |
836 | if (fl6.flowlabel&IPV6_FLOWLABEL_MASK) { | |
837 | flowlabel = fl6_sock_lookup(sk, fl6.flowlabel); | |
59c820b2 | 838 | if (IS_ERR(flowlabel)) |
1da177e4 | 839 | return -EINVAL; |
1da177e4 LT |
840 | } |
841 | } | |
842 | ||
843 | /* | |
844 | * Otherwise it will be difficult to maintain | |
845 | * sk->sk_dst_cache. | |
846 | */ | |
847 | if (sk->sk_state == TCP_ESTABLISHED && | |
efe4208f ED |
848 | ipv6_addr_equal(daddr, &sk->sk_v6_daddr)) |
849 | daddr = &sk->sk_v6_daddr; | |
1da177e4 LT |
850 | |
851 | if (addr_len >= sizeof(struct sockaddr_in6) && | |
852 | sin6->sin6_scope_id && | |
842df073 | 853 | __ipv6_addr_needs_scope_id(__ipv6_addr_type(daddr))) |
4c9483b2 | 854 | fl6.flowi6_oif = sin6->sin6_scope_id; |
1da177e4 | 855 | } else { |
1ab1457c | 856 | if (sk->sk_state != TCP_ESTABLISHED) |
1da177e4 | 857 | return -EDESTADDRREQ; |
1ab1457c | 858 | |
c720c7e8 | 859 | proto = inet->inet_num; |
efe4208f | 860 | daddr = &sk->sk_v6_daddr; |
4c9483b2 | 861 | fl6.flowlabel = np->flow_label; |
1da177e4 LT |
862 | } |
863 | ||
4c9483b2 DM |
864 | if (fl6.flowi6_oif == 0) |
865 | fl6.flowi6_oif = sk->sk_bound_dev_if; | |
1da177e4 LT |
866 | |
867 | if (msg->msg_controllen) { | |
868 | opt = &opt_space; | |
869 | memset(opt, 0, sizeof(struct ipv6_txoptions)); | |
870 | opt->tot_len = sizeof(struct ipv6_txoptions); | |
26879da5 | 871 | ipc6.opt = opt; |
1da177e4 | 872 | |
5fdaa88d | 873 | err = ip6_datagram_send_ctl(sock_net(sk), sk, msg, &fl6, &ipc6); |
1da177e4 LT |
874 | if (err < 0) { |
875 | fl6_sock_release(flowlabel); | |
876 | return err; | |
877 | } | |
4c9483b2 DM |
878 | if ((fl6.flowlabel&IPV6_FLOWLABEL_MASK) && !flowlabel) { |
879 | flowlabel = fl6_sock_lookup(sk, fl6.flowlabel); | |
59c820b2 | 880 | if (IS_ERR(flowlabel)) |
1da177e4 LT |
881 | return -EINVAL; |
882 | } | |
883 | if (!(opt->opt_nflen|opt->opt_flen)) | |
884 | opt = NULL; | |
885 | } | |
45f6fad8 ED |
886 | if (!opt) { |
887 | opt = txopt_get(np); | |
888 | opt_to_free = opt; | |
26879da5 | 889 | } |
df9890c3 YH |
890 | if (flowlabel) |
891 | opt = fl6_merge_options(&opt_space, flowlabel, opt); | |
892 | opt = ipv6_fixup_options(&opt_space, opt); | |
1da177e4 | 893 | |
4c9483b2 | 894 | fl6.flowi6_proto = proto; |
c6af0c22 | 895 | fl6.flowi6_mark = ipc6.sockc.mark; |
b9aa52c4 OM |
896 | |
897 | if (!hdrincl) { | |
898 | rfv.msg = msg; | |
899 | rfv.hlen = 0; | |
900 | err = rawv6_probe_proto_opt(&rfv, &fl6); | |
901 | if (err) | |
902 | goto out; | |
903 | } | |
1ab1457c | 904 | |
876c7f41 | 905 | if (!ipv6_addr_any(daddr)) |
4e3fd7a0 | 906 | fl6.daddr = *daddr; |
876c7f41 | 907 | else |
4c9483b2 DM |
908 | fl6.daddr.s6_addr[15] = 0x1; /* :: means loopback (BSD'ism) */ |
909 | if (ipv6_addr_any(&fl6.saddr) && !ipv6_addr_any(&np->saddr)) | |
4e3fd7a0 | 910 | fl6.saddr = np->saddr; |
1da177e4 | 911 | |
4c9483b2 | 912 | final_p = fl6_update_dst(&fl6, opt, &final); |
1da177e4 | 913 | |
4c9483b2 DM |
914 | if (!fl6.flowi6_oif && ipv6_addr_is_multicast(&fl6.daddr)) |
915 | fl6.flowi6_oif = np->mcast_oif; | |
c4062dfc EH |
916 | else if (!fl6.flowi6_oif) |
917 | fl6.flowi6_oif = np->ucast_oif; | |
3df98d79 | 918 | security_sk_classify_flow(sk, flowi6_to_flowi_common(&fl6)); |
1da177e4 | 919 | |
59e3e4b5 | 920 | if (hdrincl) |
48e8aa6e MKL |
921 | fl6.flowi6_flags |= FLOWI_FLAG_KNOWN_NH; |
922 | ||
38b7097b HFS |
923 | if (ipc6.tclass < 0) |
924 | ipc6.tclass = np->tclass; | |
925 | ||
926 | fl6.flowlabel = ip6_make_flowinfo(ipc6.tclass, fl6.flowlabel); | |
927 | ||
c4e85f73 | 928 | dst = ip6_dst_lookup_flow(sock_net(sk), sk, &fl6, final_p); |
68d0c6d3 DM |
929 | if (IS_ERR(dst)) { |
930 | err = PTR_ERR(dst); | |
1da177e4 | 931 | goto out; |
14e50e57 | 932 | } |
26879da5 WW |
933 | if (ipc6.hlimit < 0) |
934 | ipc6.hlimit = ip6_sk_dst_hoplimit(np, &fl6, dst); | |
1da177e4 | 935 | |
26879da5 WW |
936 | if (ipc6.dontfrag < 0) |
937 | ipc6.dontfrag = np->dontfrag; | |
13b52cd4 | 938 | |
1da177e4 LT |
939 | if (msg->msg_flags&MSG_CONFIRM) |
940 | goto do_confirm; | |
941 | ||
942 | back_from_confirm: | |
59e3e4b5 | 943 | if (hdrincl) |
a818f75e | 944 | err = rawv6_send_hdrinc(sk, msg, len, &fl6, &dst, |
5fdaa88d | 945 | msg->msg_flags, &ipc6.sockc); |
1789a640 | 946 | else { |
26879da5 | 947 | ipc6.opt = opt; |
1da177e4 | 948 | lock_sock(sk); |
19e3c66b | 949 | err = ip6_append_data(sk, raw6_getfrag, &rfv, |
26879da5 | 950 | len, 0, &ipc6, &fl6, (struct rt6_info *)dst, |
5fdaa88d | 951 | msg->msg_flags); |
1da177e4 LT |
952 | |
953 | if (err) | |
954 | ip6_flush_pending_frames(sk); | |
955 | else if (!(msg->msg_flags & MSG_MORE)) | |
4c9483b2 | 956 | err = rawv6_push_pending_frames(sk, &fl6, rp); |
3ef9d943 | 957 | release_sock(sk); |
1da177e4 LT |
958 | } |
959 | done: | |
6d3e85ec | 960 | dst_release(dst); |
1ab1457c | 961 | out: |
1da177e4 | 962 | fl6_sock_release(flowlabel); |
45f6fad8 | 963 | txopt_put(opt_to_free); |
67ba4152 | 964 | return err < 0 ? err : len; |
1da177e4 | 965 | do_confirm: |
0dec879f JA |
966 | if (msg->msg_flags & MSG_PROBE) |
967 | dst_confirm_neigh(dst, &fl6.daddr); | |
1da177e4 LT |
968 | if (!(msg->msg_flags & MSG_PROBE) || len) |
969 | goto back_from_confirm; | |
970 | err = 0; | |
971 | goto done; | |
972 | } | |
973 | ||
1ab1457c | 974 | static int rawv6_seticmpfilter(struct sock *sk, int level, int optname, |
a7b75c5a | 975 | sockptr_t optval, int optlen) |
1da177e4 LT |
976 | { |
977 | switch (optname) { | |
978 | case ICMPV6_FILTER: | |
979 | if (optlen > sizeof(struct icmp6_filter)) | |
980 | optlen = sizeof(struct icmp6_filter); | |
a7b75c5a | 981 | if (copy_from_sockptr(&raw6_sk(sk)->filter, optval, optlen)) |
1da177e4 LT |
982 | return -EFAULT; |
983 | return 0; | |
984 | default: | |
985 | return -ENOPROTOOPT; | |
3ff50b79 | 986 | } |
1da177e4 LT |
987 | |
988 | return 0; | |
989 | } | |
990 | ||
1ab1457c | 991 | static int rawv6_geticmpfilter(struct sock *sk, int level, int optname, |
1da177e4 LT |
992 | char __user *optval, int __user *optlen) |
993 | { | |
994 | int len; | |
995 | ||
996 | switch (optname) { | |
997 | case ICMPV6_FILTER: | |
998 | if (get_user(len, optlen)) | |
999 | return -EFAULT; | |
1000 | if (len < 0) | |
1001 | return -EINVAL; | |
1002 | if (len > sizeof(struct icmp6_filter)) | |
1003 | len = sizeof(struct icmp6_filter); | |
1004 | if (put_user(len, optlen)) | |
1005 | return -EFAULT; | |
1006 | if (copy_to_user(optval, &raw6_sk(sk)->filter, len)) | |
1007 | return -EFAULT; | |
1008 | return 0; | |
1009 | default: | |
1010 | return -ENOPROTOOPT; | |
3ff50b79 | 1011 | } |
1da177e4 LT |
1012 | |
1013 | return 0; | |
1014 | } | |
1015 | ||
1016 | ||
3fdadf7d | 1017 | static int do_rawv6_setsockopt(struct sock *sk, int level, int optname, |
a7b75c5a | 1018 | sockptr_t optval, unsigned int optlen) |
1da177e4 LT |
1019 | { |
1020 | struct raw6_sock *rp = raw6_sk(sk); | |
1021 | int val; | |
1022 | ||
a7b75c5a | 1023 | if (copy_from_sockptr(&val, optval, sizeof(val))) |
1da177e4 LT |
1024 | return -EFAULT; |
1025 | ||
1026 | switch (optname) { | |
715f504b HFS |
1027 | case IPV6_HDRINCL: |
1028 | if (sk->sk_type != SOCK_RAW) | |
1029 | return -EINVAL; | |
1030 | inet_sk(sk)->hdrincl = !!val; | |
1031 | return 0; | |
207ec0ab JP |
1032 | case IPV6_CHECKSUM: |
1033 | if (inet_sk(sk)->inet_num == IPPROTO_ICMPV6 && | |
1034 | level == IPPROTO_IPV6) { | |
1035 | /* | |
1036 | * RFC3542 tells that IPV6_CHECKSUM socket | |
1037 | * option in the IPPROTO_IPV6 level is not | |
1038 | * allowed on ICMPv6 sockets. | |
1039 | * If you want to set it, use IPPROTO_RAW | |
1040 | * level IPV6_CHECKSUM socket option | |
1041 | * (Linux extension). | |
1042 | */ | |
1043 | return -EINVAL; | |
1044 | } | |
1a98d05f | 1045 | |
207ec0ab JP |
1046 | /* You may get strange result with a positive odd offset; |
1047 | RFC2292bis agrees with me. */ | |
1048 | if (val > 0 && (val&1)) | |
1049 | return -EINVAL; | |
1050 | if (val < 0) { | |
1051 | rp->checksum = 0; | |
1052 | } else { | |
1053 | rp->checksum = 1; | |
1054 | rp->offset = val; | |
1055 | } | |
1da177e4 | 1056 | |
207ec0ab | 1057 | return 0; |
1da177e4 | 1058 | |
207ec0ab JP |
1059 | default: |
1060 | return -ENOPROTOOPT; | |
1da177e4 LT |
1061 | } |
1062 | } | |
1063 | ||
3fdadf7d | 1064 | static int rawv6_setsockopt(struct sock *sk, int level, int optname, |
a7b75c5a | 1065 | sockptr_t optval, unsigned int optlen) |
1da177e4 | 1066 | { |
207ec0ab JP |
1067 | switch (level) { |
1068 | case SOL_RAW: | |
1069 | break; | |
1da177e4 | 1070 | |
207ec0ab JP |
1071 | case SOL_ICMPV6: |
1072 | if (inet_sk(sk)->inet_num != IPPROTO_ICMPV6) | |
1073 | return -EOPNOTSUPP; | |
1074 | return rawv6_seticmpfilter(sk, level, optname, optval, optlen); | |
1075 | case SOL_IPV6: | |
715f504b HFS |
1076 | if (optname == IPV6_CHECKSUM || |
1077 | optname == IPV6_HDRINCL) | |
207ec0ab | 1078 | break; |
a8eceea8 | 1079 | fallthrough; |
207ec0ab JP |
1080 | default: |
1081 | return ipv6_setsockopt(sk, level, optname, optval, optlen); | |
3ff50b79 SH |
1082 | } |
1083 | ||
3fdadf7d DM |
1084 | return do_rawv6_setsockopt(sk, level, optname, optval, optlen); |
1085 | } | |
1086 | ||
3fdadf7d DM |
1087 | static int do_rawv6_getsockopt(struct sock *sk, int level, int optname, |
1088 | char __user *optval, int __user *optlen) | |
1089 | { | |
1090 | struct raw6_sock *rp = raw6_sk(sk); | |
1091 | int val, len; | |
1da177e4 | 1092 | |
67ba4152 | 1093 | if (get_user(len, optlen)) |
1da177e4 LT |
1094 | return -EFAULT; |
1095 | ||
1096 | switch (optname) { | |
715f504b HFS |
1097 | case IPV6_HDRINCL: |
1098 | val = inet_sk(sk)->hdrincl; | |
1099 | break; | |
1da177e4 | 1100 | case IPV6_CHECKSUM: |
1a98d05f YH |
1101 | /* |
1102 | * We allow getsockopt() for IPPROTO_IPV6-level | |
1103 | * IPV6_CHECKSUM socket option on ICMPv6 sockets | |
1104 | * since RFC3542 is silent about it. | |
1105 | */ | |
1da177e4 LT |
1106 | if (rp->checksum == 0) |
1107 | val = -1; | |
1108 | else | |
1109 | val = rp->offset; | |
1110 | break; | |
1111 | ||
1112 | default: | |
1113 | return -ENOPROTOOPT; | |
1114 | } | |
1115 | ||
1116 | len = min_t(unsigned int, sizeof(int), len); | |
1117 | ||
1118 | if (put_user(len, optlen)) | |
1119 | return -EFAULT; | |
67ba4152 | 1120 | if (copy_to_user(optval, &val, len)) |
1da177e4 LT |
1121 | return -EFAULT; |
1122 | return 0; | |
1123 | } | |
1124 | ||
3fdadf7d DM |
1125 | static int rawv6_getsockopt(struct sock *sk, int level, int optname, |
1126 | char __user *optval, int __user *optlen) | |
1127 | { | |
207ec0ab JP |
1128 | switch (level) { |
1129 | case SOL_RAW: | |
1130 | break; | |
3fdadf7d | 1131 | |
207ec0ab JP |
1132 | case SOL_ICMPV6: |
1133 | if (inet_sk(sk)->inet_num != IPPROTO_ICMPV6) | |
1134 | return -EOPNOTSUPP; | |
1135 | return rawv6_geticmpfilter(sk, level, optname, optval, optlen); | |
1136 | case SOL_IPV6: | |
715f504b HFS |
1137 | if (optname == IPV6_CHECKSUM || |
1138 | optname == IPV6_HDRINCL) | |
207ec0ab | 1139 | break; |
a8eceea8 | 1140 | fallthrough; |
207ec0ab JP |
1141 | default: |
1142 | return ipv6_getsockopt(sk, level, optname, optval, optlen); | |
3ff50b79 SH |
1143 | } |
1144 | ||
3fdadf7d DM |
1145 | return do_rawv6_getsockopt(sk, level, optname, optval, optlen); |
1146 | } | |
1147 | ||
1da177e4 LT |
1148 | static int rawv6_ioctl(struct sock *sk, int cmd, unsigned long arg) |
1149 | { | |
207ec0ab JP |
1150 | switch (cmd) { |
1151 | case SIOCOUTQ: { | |
1152 | int amount = sk_wmem_alloc_get(sk); | |
31e6d363 | 1153 | |
207ec0ab JP |
1154 | return put_user(amount, (int __user *)arg); |
1155 | } | |
1156 | case SIOCINQ: { | |
1157 | struct sk_buff *skb; | |
1158 | int amount = 0; | |
1159 | ||
1160 | spin_lock_bh(&sk->sk_receive_queue.lock); | |
1161 | skb = skb_peek(&sk->sk_receive_queue); | |
53b24b8f | 1162 | if (skb) |
105f5528 | 1163 | amount = skb->len; |
207ec0ab JP |
1164 | spin_unlock_bh(&sk->sk_receive_queue.lock); |
1165 | return put_user(amount, (int __user *)arg); | |
1166 | } | |
1da177e4 | 1167 | |
207ec0ab | 1168 | default: |
7bc570c8 | 1169 | #ifdef CONFIG_IPV6_MROUTE |
207ec0ab | 1170 | return ip6mr_ioctl(sk, cmd, (void __user *)arg); |
7bc570c8 | 1171 | #else |
207ec0ab | 1172 | return -ENOIOCTLCMD; |
7bc570c8 | 1173 | #endif |
1da177e4 LT |
1174 | } |
1175 | } | |
1176 | ||
e2d57766 DM |
1177 | #ifdef CONFIG_COMPAT |
1178 | static int compat_rawv6_ioctl(struct sock *sk, unsigned int cmd, unsigned long arg) | |
1179 | { | |
1180 | switch (cmd) { | |
1181 | case SIOCOUTQ: | |
1182 | case SIOCINQ: | |
1183 | return -ENOIOCTLCMD; | |
1184 | default: | |
1185 | #ifdef CONFIG_IPV6_MROUTE | |
1186 | return ip6mr_compat_ioctl(sk, cmd, compat_ptr(arg)); | |
1187 | #else | |
1188 | return -ENOIOCTLCMD; | |
1189 | #endif | |
1190 | } | |
1191 | } | |
1192 | #endif | |
1193 | ||
1da177e4 LT |
1194 | static void rawv6_close(struct sock *sk, long timeout) |
1195 | { | |
c720c7e8 | 1196 | if (inet_sk(sk)->inet_num == IPPROTO_RAW) |
725a8ff0 | 1197 | ip6_ra_control(sk, -1); |
7bc570c8 | 1198 | ip6mr_sk_done(sk); |
1da177e4 LT |
1199 | sk_common_release(sk); |
1200 | } | |
1201 | ||
7d06b2e0 | 1202 | static void raw6_destroy(struct sock *sk) |
22dd4850 DL |
1203 | { |
1204 | lock_sock(sk); | |
1205 | ip6_flush_pending_frames(sk); | |
1206 | release_sock(sk); | |
f23d60de | 1207 | |
7d06b2e0 | 1208 | inet6_destroy_sock(sk); |
22dd4850 DL |
1209 | } |
1210 | ||
1da177e4 LT |
1211 | static int rawv6_init_sk(struct sock *sk) |
1212 | { | |
f48d5ff1 MN |
1213 | struct raw6_sock *rp = raw6_sk(sk); |
1214 | ||
c720c7e8 | 1215 | switch (inet_sk(sk)->inet_num) { |
f48d5ff1 | 1216 | case IPPROTO_ICMPV6: |
1da177e4 LT |
1217 | rp->checksum = 1; |
1218 | rp->offset = 2; | |
f48d5ff1 MN |
1219 | break; |
1220 | case IPPROTO_MH: | |
1221 | rp->checksum = 1; | |
1222 | rp->offset = 4; | |
1223 | break; | |
1224 | default: | |
1225 | break; | |
1da177e4 | 1226 | } |
a02cec21 | 1227 | return 0; |
1da177e4 LT |
1228 | } |
1229 | ||
1230 | struct proto rawv6_prot = { | |
543d9cfe ACM |
1231 | .name = "RAWv6", |
1232 | .owner = THIS_MODULE, | |
1233 | .close = rawv6_close, | |
22dd4850 | 1234 | .destroy = raw6_destroy, |
82b276cd | 1235 | .connect = ip6_datagram_connect_v6_only, |
286c72de | 1236 | .disconnect = __udp_disconnect, |
543d9cfe ACM |
1237 | .ioctl = rawv6_ioctl, |
1238 | .init = rawv6_init_sk, | |
543d9cfe ACM |
1239 | .setsockopt = rawv6_setsockopt, |
1240 | .getsockopt = rawv6_getsockopt, | |
1241 | .sendmsg = rawv6_sendmsg, | |
1242 | .recvmsg = rawv6_recvmsg, | |
1243 | .bind = rawv6_bind, | |
1244 | .backlog_rcv = rawv6_rcv_skb, | |
fc8717ba PE |
1245 | .hash = raw_hash_sk, |
1246 | .unhash = raw_unhash_sk, | |
543d9cfe | 1247 | .obj_size = sizeof(struct raw6_sock), |
8c2bc895 DW |
1248 | .useroffset = offsetof(struct raw6_sock, filter), |
1249 | .usersize = sizeof_field(struct raw6_sock, filter), | |
fc8717ba | 1250 | .h.raw_hash = &raw_v6_hashinfo, |
3fdadf7d | 1251 | #ifdef CONFIG_COMPAT |
e2d57766 | 1252 | .compat_ioctl = compat_rawv6_ioctl, |
3fdadf7d | 1253 | #endif |
432490f9 | 1254 | .diag_destroy = raw_abort, |
1da177e4 LT |
1255 | }; |
1256 | ||
1257 | #ifdef CONFIG_PROC_FS | |
1da177e4 LT |
1258 | static int raw6_seq_show(struct seq_file *seq, void *v) |
1259 | { | |
17ef66af LC |
1260 | if (v == SEQ_START_TOKEN) { |
1261 | seq_puts(seq, IPV6_SEQ_DGRAM_HEADER); | |
1262 | } else { | |
1263 | struct sock *sp = v; | |
1264 | __u16 srcp = inet_sk(sp)->inet_num; | |
1265 | ip6_dgram_sock_seq_show(seq, v, srcp, 0, | |
1266 | raw_seq_private(seq)->bucket); | |
1267 | } | |
1da177e4 LT |
1268 | return 0; |
1269 | } | |
1270 | ||
56b3d975 | 1271 | static const struct seq_operations raw6_seq_ops = { |
42a73808 PE |
1272 | .start = raw_seq_start, |
1273 | .next = raw_seq_next, | |
1274 | .stop = raw_seq_stop, | |
1da177e4 LT |
1275 | .show = raw6_seq_show, |
1276 | }; | |
1277 | ||
2c8c1e72 | 1278 | static int __net_init raw6_init_net(struct net *net) |
1da177e4 | 1279 | { |
c3506372 CH |
1280 | if (!proc_create_net_data("raw6", 0444, net->proc_net, &raw6_seq_ops, |
1281 | sizeof(struct raw_iter_state), &raw_v6_hashinfo)) | |
1da177e4 | 1282 | return -ENOMEM; |
a308da16 | 1283 | |
1da177e4 LT |
1284 | return 0; |
1285 | } | |
1286 | ||
2c8c1e72 | 1287 | static void __net_exit raw6_exit_net(struct net *net) |
a308da16 | 1288 | { |
ece31ffd | 1289 | remove_proc_entry("raw6", net->proc_net); |
a308da16 PE |
1290 | } |
1291 | ||
1292 | static struct pernet_operations raw6_net_ops = { | |
1293 | .init = raw6_init_net, | |
1294 | .exit = raw6_exit_net, | |
1295 | }; | |
1296 | ||
1297 | int __init raw6_proc_init(void) | |
1298 | { | |
1299 | return register_pernet_subsys(&raw6_net_ops); | |
1300 | } | |
1301 | ||
1da177e4 LT |
1302 | void raw6_proc_exit(void) |
1303 | { | |
a308da16 | 1304 | unregister_pernet_subsys(&raw6_net_ops); |
1da177e4 LT |
1305 | } |
1306 | #endif /* CONFIG_PROC_FS */ | |
7f4e4868 | 1307 | |
a11e1d43 | 1308 | /* Same as inet6_dgram_ops, sans udp_poll. */ |
77d4b1d3 | 1309 | const struct proto_ops inet6_sockraw_ops = { |
7f4e4868 DL |
1310 | .family = PF_INET6, |
1311 | .owner = THIS_MODULE, | |
1312 | .release = inet6_release, | |
1313 | .bind = inet6_bind, | |
1314 | .connect = inet_dgram_connect, /* ok */ | |
1315 | .socketpair = sock_no_socketpair, /* a do nothing */ | |
1316 | .accept = sock_no_accept, /* a do nothing */ | |
1317 | .getname = inet6_getname, | |
a11e1d43 | 1318 | .poll = datagram_poll, /* ok */ |
7f4e4868 | 1319 | .ioctl = inet6_ioctl, /* must change */ |
c7cbdbf2 | 1320 | .gettstamp = sock_gettstamp, |
7f4e4868 DL |
1321 | .listen = sock_no_listen, /* ok */ |
1322 | .shutdown = inet_shutdown, /* ok */ | |
1323 | .setsockopt = sock_common_setsockopt, /* ok */ | |
1324 | .getsockopt = sock_common_getsockopt, /* ok */ | |
1325 | .sendmsg = inet_sendmsg, /* ok */ | |
1326 | .recvmsg = sock_common_recvmsg, /* ok */ | |
1327 | .mmap = sock_no_mmap, | |
1328 | .sendpage = sock_no_sendpage, | |
1329 | #ifdef CONFIG_COMPAT | |
3986912f | 1330 | .compat_ioctl = inet6_compat_ioctl, |
7f4e4868 DL |
1331 | #endif |
1332 | }; | |
1333 | ||
1334 | static struct inet_protosw rawv6_protosw = { | |
1335 | .type = SOCK_RAW, | |
1336 | .protocol = IPPROTO_IP, /* wild card */ | |
1337 | .prot = &rawv6_prot, | |
1338 | .ops = &inet6_sockraw_ops, | |
7f4e4868 DL |
1339 | .flags = INET_PROTOSW_REUSE, |
1340 | }; | |
1341 | ||
1342 | int __init rawv6_init(void) | |
1343 | { | |
3d2f6d41 | 1344 | return inet6_register_protosw(&rawv6_protosw); |
7f4e4868 DL |
1345 | } |
1346 | ||
09f7709f | 1347 | void rawv6_exit(void) |
7f4e4868 DL |
1348 | { |
1349 | inet6_unregister_protosw(&rawv6_protosw); | |
1350 | } |