Commit | Line | Data |
---|---|---|
5f256bec EB |
1 | /* |
2 | * Operations on the network namespace | |
3 | */ | |
4 | #ifndef __NET_NET_NAMESPACE_H | |
5 | #define __NET_NET_NAMESPACE_H | |
6 | ||
7 | #include <asm/atomic.h> | |
8 | #include <linux/workqueue.h> | |
9 | #include <linux/list.h> | |
10 | ||
8efa6e93 | 11 | #include <net/netns/core.h> |
852566f5 | 12 | #include <net/netns/mib.h> |
a0a53c8b | 13 | #include <net/netns/unix.h> |
2aaef4e4 | 14 | #include <net/netns/packet.h> |
8afd351c | 15 | #include <net/netns/ipv4.h> |
b0f159db | 16 | #include <net/netns/ipv6.h> |
67019cc9 | 17 | #include <net/netns/dccp.h> |
8d870052 | 18 | #include <net/netns/x_tables.h> |
dfdb8d79 AD |
19 | #if defined(CONFIG_NF_CONNTRACK) || defined(CONFIG_NF_CONNTRACK_MODULE) |
20 | #include <net/netns/conntrack.h> | |
21 | #endif | |
d62ddc21 | 22 | #include <net/netns/xfrm.h> |
a0a53c8b | 23 | |
457c4cbc | 24 | struct proc_dir_entry; |
2774c7ab | 25 | struct net_device; |
97c53cac | 26 | struct sock; |
1597fbc0 | 27 | struct ctl_table_header; |
dec827d1 | 28 | struct net_generic; |
134e6375 | 29 | struct sock; |
1597fbc0 | 30 | |
7c28bd0b ED |
31 | |
32 | #define NETDEV_HASHBITS 8 | |
33 | #define NETDEV_HASHENTRIES (1 << NETDEV_HASHBITS) | |
34 | ||
5f256bec EB |
35 | struct net { |
36 | atomic_t count; /* To decided when the network | |
37 | * namespace should be freed. | |
38 | */ | |
5d1e4468 | 39 | #ifdef NETNS_REFCNT_DEBUG |
5f256bec EB |
40 | atomic_t use_count; /* To track references we |
41 | * destroy on demand | |
42 | */ | |
5d1e4468 | 43 | #endif |
5f256bec | 44 | struct list_head list; /* list of network namespaces */ |
2b035b39 | 45 | struct list_head cleanup_list; /* namespaces on death row */ |
72ad937a | 46 | struct list_head exit_list; /* Use only net_mutex */ |
457c4cbc EB |
47 | |
48 | struct proc_dir_entry *proc_net; | |
49 | struct proc_dir_entry *proc_net_stat; | |
881d966b | 50 | |
73455092 AV |
51 | #ifdef CONFIG_SYSCTL |
52 | struct ctl_table_set sysctls; | |
53 | #endif | |
95bdfccb | 54 | |
2774c7ab EB |
55 | struct net_device *loopback_dev; /* The loopback */ |
56 | ||
881d966b EB |
57 | struct list_head dev_base_head; |
58 | struct hlist_head *dev_name_head; | |
59 | struct hlist_head *dev_index_head; | |
97c53cac | 60 | |
5fd30ee7 DL |
61 | /* core fib_rules */ |
62 | struct list_head rules_ops; | |
63 | spinlock_t rules_mod_lock; | |
64 | ||
97c53cac | 65 | struct sock *rtnl; /* rtnetlink socket */ |
134e6375 | 66 | struct sock *genl_sock; |
d12d01d6 | 67 | |
8efa6e93 | 68 | struct netns_core core; |
852566f5 | 69 | struct netns_mib mib; |
2aaef4e4 | 70 | struct netns_packet packet; |
a0a53c8b | 71 | struct netns_unix unx; |
8afd351c | 72 | struct netns_ipv4 ipv4; |
b0f159db DL |
73 | #if defined(CONFIG_IPV6) || defined(CONFIG_IPV6_MODULE) |
74 | struct netns_ipv6 ipv6; | |
75 | #endif | |
67019cc9 PE |
76 | #if defined(CONFIG_IP_DCCP) || defined(CONFIG_IP_DCCP_MODULE) |
77 | struct netns_dccp dccp; | |
78 | #endif | |
8d870052 AD |
79 | #ifdef CONFIG_NETFILTER |
80 | struct netns_xt xt; | |
dfdb8d79 AD |
81 | #if defined(CONFIG_NF_CONNTRACK) || defined(CONFIG_NF_CONNTRACK_MODULE) |
82 | struct netns_ct ct; | |
83 | #endif | |
cd8c20b6 AD |
84 | struct sock *nfnl; |
85 | struct sock *nfnl_stash; | |
d62ddc21 AD |
86 | #endif |
87 | #ifdef CONFIG_XFRM | |
88 | struct netns_xfrm xfrm; | |
b333b3d2 | 89 | #endif |
3d23e349 | 90 | #ifdef CONFIG_WEXT_CORE |
b333b3d2 | 91 | struct sk_buff_head wext_nlevents; |
8d870052 | 92 | #endif |
dec827d1 | 93 | struct net_generic *gen; |
5f256bec EB |
94 | }; |
95 | ||
225c0a01 | 96 | |
c0f39322 DL |
97 | #include <linux/seq_file_net.h> |
98 | ||
4fabcd71 | 99 | /* Init's network namespace */ |
5f256bec | 100 | extern struct net init_net; |
a4aa834a DL |
101 | |
102 | #ifdef CONFIG_NET | |
9dd776b6 | 103 | extern struct net *copy_net_ns(unsigned long flags, struct net *net_ns); |
225c0a01 DL |
104 | |
105 | #else /* CONFIG_NET */ | |
9dd776b6 EB |
106 | static inline struct net *copy_net_ns(unsigned long flags, struct net *net_ns) |
107 | { | |
108 | /* There is nothing to copy so this is a noop */ | |
109 | return net_ns; | |
110 | } | |
225c0a01 DL |
111 | #endif /* CONFIG_NET */ |
112 | ||
113 | ||
114 | extern struct list_head net_namespace_list; | |
9dd776b6 | 115 | |
30ffee84 JB |
116 | extern struct net *get_net_ns_by_pid(pid_t pid); |
117 | ||
d4655795 | 118 | #ifdef CONFIG_NET_NS |
5f256bec EB |
119 | extern void __put_net(struct net *net); |
120 | ||
121 | static inline struct net *get_net(struct net *net) | |
122 | { | |
123 | atomic_inc(&net->count); | |
124 | return net; | |
125 | } | |
126 | ||
077130c0 EB |
127 | static inline struct net *maybe_get_net(struct net *net) |
128 | { | |
129 | /* Used when we know struct net exists but we | |
130 | * aren't guaranteed a previous reference count | |
131 | * exists. If the reference count is zero this | |
132 | * function fails and returns NULL. | |
133 | */ | |
134 | if (!atomic_inc_not_zero(&net->count)) | |
135 | net = NULL; | |
136 | return net; | |
137 | } | |
138 | ||
5f256bec EB |
139 | static inline void put_net(struct net *net) |
140 | { | |
141 | if (atomic_dec_and_test(&net->count)) | |
142 | __put_net(net); | |
143 | } | |
144 | ||
878628fb YH |
145 | static inline |
146 | int net_eq(const struct net *net1, const struct net *net2) | |
147 | { | |
148 | return net1 == net2; | |
149 | } | |
d4655795 | 150 | #else |
b9f75f45 | 151 | |
d4655795 PE |
152 | static inline struct net *get_net(struct net *net) |
153 | { | |
154 | return net; | |
155 | } | |
156 | ||
157 | static inline void put_net(struct net *net) | |
158 | { | |
159 | } | |
160 | ||
5d1e4468 DL |
161 | static inline struct net *maybe_get_net(struct net *net) |
162 | { | |
163 | return net; | |
164 | } | |
165 | ||
166 | static inline | |
167 | int net_eq(const struct net *net1, const struct net *net2) | |
168 | { | |
169 | return 1; | |
170 | } | |
171 | #endif | |
172 | ||
173 | ||
174 | #ifdef NETNS_REFCNT_DEBUG | |
d4655795 PE |
175 | static inline struct net *hold_net(struct net *net) |
176 | { | |
5d1e4468 DL |
177 | if (net) |
178 | atomic_inc(&net->use_count); | |
d4655795 PE |
179 | return net; |
180 | } | |
181 | ||
182 | static inline void release_net(struct net *net) | |
183 | { | |
5d1e4468 DL |
184 | if (net) |
185 | atomic_dec(&net->use_count); | |
d4655795 | 186 | } |
5d1e4468 DL |
187 | #else |
188 | static inline struct net *hold_net(struct net *net) | |
d4655795 PE |
189 | { |
190 | return net; | |
191 | } | |
878628fb | 192 | |
5d1e4468 | 193 | static inline void release_net(struct net *net) |
878628fb | 194 | { |
878628fb | 195 | } |
d4655795 | 196 | #endif |
5f256bec | 197 | |
8f424b5f ED |
198 | #ifdef CONFIG_NET_NS |
199 | ||
200 | static inline void write_pnet(struct net **pnet, struct net *net) | |
201 | { | |
202 | *pnet = net; | |
203 | } | |
204 | ||
205 | static inline struct net *read_pnet(struct net * const *pnet) | |
206 | { | |
207 | return *pnet; | |
208 | } | |
209 | ||
210 | #else | |
211 | ||
212 | #define write_pnet(pnet, net) do { (void)(net);} while (0) | |
213 | #define read_pnet(pnet) (&init_net) | |
214 | ||
215 | #endif | |
5d1e4468 | 216 | |
5f256bec EB |
217 | #define for_each_net(VAR) \ |
218 | list_for_each_entry(VAR, &net_namespace_list, list) | |
219 | ||
11a28d37 JB |
220 | #define for_each_net_rcu(VAR) \ |
221 | list_for_each_entry_rcu(VAR, &net_namespace_list, list) | |
222 | ||
4665079c PE |
223 | #ifdef CONFIG_NET_NS |
224 | #define __net_init | |
225 | #define __net_exit | |
022cbae6 | 226 | #define __net_initdata |
4665079c PE |
227 | #else |
228 | #define __net_init __init | |
229 | #define __net_exit __exit_refok | |
022cbae6 | 230 | #define __net_initdata __initdata |
4665079c | 231 | #endif |
5f256bec EB |
232 | |
233 | struct pernet_operations { | |
234 | struct list_head list; | |
235 | int (*init)(struct net *net); | |
236 | void (*exit)(struct net *net); | |
72ad937a | 237 | void (*exit_batch)(struct list_head *net_exit_list); |
f875bae0 EB |
238 | int *id; |
239 | size_t size; | |
5f256bec EB |
240 | }; |
241 | ||
17edde52 EB |
242 | /* |
243 | * Use these carefully. If you implement a network device and it | |
244 | * needs per network namespace operations use device pernet operations, | |
245 | * otherwise use pernet subsys operations. | |
246 | * | |
4edf547b JB |
247 | * Network interfaces need to be removed from a dying netns _before_ |
248 | * subsys notifiers can be called, as most of the network code cleanup | |
249 | * (which is done from subsys notifiers) runs with the assumption that | |
250 | * dev_remove_pack has been called so no new packets will arrive during | |
251 | * and after the cleanup functions have been called. dev_remove_pack | |
252 | * is not per namespace so instead the guarantee of no more packets | |
253 | * arriving in a network namespace is provided by ensuring that all | |
254 | * network devices and all sockets have left the network namespace | |
255 | * before the cleanup methods are called. | |
17edde52 EB |
256 | * |
257 | * For the longest time the ipv4 icmp code was registered as a pernet | |
258 | * device which caused kernel oops, and panics during network | |
259 | * namespace cleanup. So please don't get this wrong. | |
260 | */ | |
5f256bec EB |
261 | extern int register_pernet_subsys(struct pernet_operations *); |
262 | extern void unregister_pernet_subsys(struct pernet_operations *); | |
263 | extern int register_pernet_device(struct pernet_operations *); | |
264 | extern void unregister_pernet_device(struct pernet_operations *); | |
f875bae0 | 265 | |
95bdfccb EB |
266 | struct ctl_path; |
267 | struct ctl_table; | |
268 | struct ctl_table_header; | |
d62c612e | 269 | |
95bdfccb EB |
270 | extern struct ctl_table_header *register_net_sysctl_table(struct net *net, |
271 | const struct ctl_path *path, struct ctl_table *table); | |
d62c612e PE |
272 | extern struct ctl_table_header *register_net_sysctl_rotable( |
273 | const struct ctl_path *path, struct ctl_table *table); | |
95bdfccb EB |
274 | extern void unregister_net_sysctl_table(struct ctl_table_header *header); |
275 | ||
5f256bec | 276 | #endif /* __NET_NET_NAMESPACE_H */ |