netfilter: nf_conntrack: allow to register bridge support
[linux-block.git] / net / bridge / br_device.c
CommitLineData
1da177e4
LT
1/*
2 * Device handling code
3 * Linux ethernet bridge
4 *
5 * Authors:
6 * Lennert Buytenhek <buytenh@gnu.org>
7 *
1da177e4
LT
8 * This program is free software; you can redistribute it and/or
9 * modify it under the terms of the GNU General Public License
10 * as published by the Free Software Foundation; either version
11 * 2 of the License, or (at your option) any later version.
12 */
13
14#include <linux/kernel.h>
15#include <linux/netdevice.h>
c06ee961 16#include <linux/netpoll.h>
4505a3ef 17#include <linux/etherdevice.h>
edb5e46f 18#include <linux/ethtool.h>
c06ee961 19#include <linux/list.h>
ea2d9b41 20#include <linux/netfilter_bridge.h>
4505a3ef 21
7c0f6ba6 22#include <linux/uaccess.h>
1da177e4
LT
23#include "br_private.h"
24
161f65ba
VY
25#define COMMON_FEATURES (NETIF_F_SG | NETIF_F_FRAGLIST | NETIF_F_HIGHDMA | \
26 NETIF_F_GSO_MASK | NETIF_F_HW_CSUM)
27
1a4ba64d
PNA
28const struct nf_br_ops __rcu *nf_br_ops __read_mostly;
29EXPORT_SYMBOL_GPL(nf_br_ops);
30
c6894dec
NA
31static struct lock_class_key bridge_netdev_addr_lock_key;
32
eeaf61d8 33/* net device transmit always called with BH disabled */
6fef4c0c 34netdev_tx_t br_dev_xmit(struct sk_buff *skb, struct net_device *dev)
1da177e4
LT
35{
36 struct net_bridge *br = netdev_priv(dev);
1da177e4 37 struct net_bridge_fdb_entry *dst;
c4fcb78c 38 struct net_bridge_mdb_entry *mdst;
8f84985f 39 struct pcpu_sw_netstats *brstats = this_cpu_ptr(br->stats);
1a4ba64d 40 const struct nf_br_ops *nf_ops;
31a4562d 41 const unsigned char *dest;
057658cb 42 struct ethhdr *eth;
78851988 43 u16 vid = 0;
1da177e4 44
c03307ea 45 rcu_read_lock();
1a4ba64d
PNA
46 nf_ops = rcu_dereference(nf_br_ops);
47 if (nf_ops && nf_ops->br_dev_xmit_hook(skb)) {
c03307ea 48 rcu_read_unlock();
ea2d9b41
BDS
49 return NETDEV_TX_OK;
50 }
ea2d9b41 51
406818ff 52 u64_stats_update_begin(&brstats->syncp);
14bb4789 53 brstats->tx_packets++;
54 brstats->tx_bytes += skb->len;
406818ff 55 u64_stats_update_end(&brstats->syncp);
6088a539 56
f1c2eddf 57 br_switchdev_frame_unmark(skb);
14bb4789 58 BR_INPUT_SKB_CB(skb)->brdev = dev;
1da177e4 59
459a98ed 60 skb_reset_mac_header(skb);
057658cb 61 eth = eth_hdr(skb);
1da177e4
LT
62 skb_pull(skb, ETH_HLEN);
63
907b1e6e 64 if (!br_allowed_ingress(br, br_vlan_group_rcu(br), skb, &vid))
12464bb8
TM
65 goto out;
66
057658cb
RP
67 if (IS_ENABLED(CONFIG_INET) &&
68 (eth->h_proto == htons(ETH_P_ARP) ||
69 eth->h_proto == htons(ETH_P_RARP)) &&
c69c2cd4 70 br_opt_get(br, BROPT_NEIGH_SUPPRESS_ENABLED)) {
057658cb 71 br_do_proxy_suppress_arp(skb, br, vid, NULL);
ed842fae
RP
72 } else if (IS_ENABLED(CONFIG_IPV6) &&
73 skb->protocol == htons(ETH_P_IPV6) &&
c69c2cd4 74 br_opt_get(br, BROPT_NEIGH_SUPPRESS_ENABLED) &&
ed842fae
RP
75 pskb_may_pull(skb, sizeof(struct ipv6hdr) +
76 sizeof(struct nd_msg)) &&
77 ipv6_hdr(skb)->nexthdr == IPPROTO_ICMPV6) {
78 struct nd_msg *msg, _msg;
79
80 msg = br_is_nd_neigh_msg(skb, &_msg);
81 if (msg)
82 br_do_suppress_nd(skb, br, vid, NULL, msg);
057658cb
RP
83 }
84
31a4562d 85 dest = eth_hdr(skb)->h_dest;
37b090e6 86 if (is_broadcast_ether_addr(dest)) {
8addd5e7 87 br_flood(br, skb, BR_PKT_BROADCAST, false, true);
37b090e6 88 } else if (is_multicast_ether_addr(dest)) {
91d2c34a 89 if (unlikely(netpoll_tx_running(dev))) {
8addd5e7 90 br_flood(br, skb, BR_PKT_MULTICAST, false, true);
91d2c34a
HX
91 goto out;
92 }
06499098 93 if (br_multicast_rcv(br, NULL, skb, vid)) {
6d1d1d39 94 kfree_skb(skb);
c4fcb78c 95 goto out;
6d1d1d39 96 }
c4fcb78c 97
fbca58a2 98 mdst = br_mdb_get(br, skb, vid);
b00589af 99 if ((mdst || BR_INPUT_SKB_CB_MROUTERS_ONLY(skb)) &&
cc0fdd80 100 br_multicast_querier_exists(br, eth_hdr(skb)))
37b090e6 101 br_multicast_flood(mdst, skb, false, true);
c4fcb78c 102 else
8addd5e7 103 br_flood(br, skb, BR_PKT_MULTICAST, false, true);
bfd0aeac 104 } else if ((dst = br_fdb_find_rcu(br, dest, vid)) != NULL) {
37b090e6
NA
105 br_forward(dst->dst, skb, false, true);
106 } else {
8addd5e7 107 br_flood(br, skb, BR_PKT_UNICAST, false, true);
37b090e6 108 }
c4fcb78c 109out:
eeaf61d8 110 rcu_read_unlock();
6ed10654 111 return NETDEV_TX_OK;
1da177e4
LT
112}
113
c6894dec
NA
114static void br_set_lockdep_class(struct net_device *dev)
115{
116 lockdep_set_class(&dev->addr_list_lock, &bridge_netdev_addr_lock_key);
117}
118
bb900b27 119static int br_dev_init(struct net_device *dev)
120{
121 struct net_bridge *br = netdev_priv(dev);
5be5a2df 122 int err;
bb900b27 123
1c213bd2 124 br->stats = netdev_alloc_pcpu_stats(struct pcpu_sw_netstats);
bb900b27 125 if (!br->stats)
126 return -ENOMEM;
127
eb793583
NA
128 err = br_fdb_hash_init(br);
129 if (err) {
130 free_percpu(br->stats);
131 return err;
132 }
133
19e3a9c9
NA
134 err = br_mdb_hash_init(br);
135 if (err) {
136 free_percpu(br->stats);
137 br_fdb_hash_fini(br);
138 return err;
139 }
140
5be5a2df 141 err = br_vlan_init(br);
1080ab95 142 if (err) {
5be5a2df 143 free_percpu(br->stats);
19e3a9c9 144 br_mdb_hash_fini(br);
eb793583 145 br_fdb_hash_fini(br);
1080ab95
NA
146 return err;
147 }
148
149 err = br_multicast_init_stats(br);
150 if (err) {
151 free_percpu(br->stats);
152 br_vlan_flush(br);
19e3a9c9 153 br_mdb_hash_fini(br);
eb793583 154 br_fdb_hash_fini(br);
1080ab95 155 }
c6894dec 156 br_set_lockdep_class(dev);
5be5a2df
VY
157
158 return err;
bb900b27 159}
160
b6fe0440
IS
161static void br_dev_uninit(struct net_device *dev)
162{
163 struct net_bridge *br = netdev_priv(dev);
164
b1b9d366 165 br_multicast_dev_del(br);
b6fe0440
IS
166 br_multicast_uninit_stats(br);
167 br_vlan_flush(br);
19e3a9c9 168 br_mdb_hash_fini(br);
eb793583 169 br_fdb_hash_fini(br);
b6fe0440
IS
170 free_percpu(br->stats);
171}
172
1da177e4
LT
173static int br_dev_open(struct net_device *dev)
174{
81d35307 175 struct net_bridge *br = netdev_priv(dev);
1da177e4 176
c4d27ef9 177 netdev_update_features(dev);
81d35307
SH
178 netif_start_queue(dev);
179 br_stp_enable_bridge(br);
3fe2d7c7 180 br_multicast_open(br);
1da177e4
LT
181
182 return 0;
183}
184
185static void br_dev_set_multicast_list(struct net_device *dev)
186{
187}
188
2796d0c6
VY
189static void br_dev_change_rx_flags(struct net_device *dev, int change)
190{
191 if (change & IFF_PROMISC)
192 br_manage_promisc(netdev_priv(dev));
193}
194
1da177e4
LT
195static int br_dev_stop(struct net_device *dev)
196{
3fe2d7c7
HX
197 struct net_bridge *br = netdev_priv(dev);
198
199 br_stp_disable_bridge(br);
200 br_multicast_stop(br);
1da177e4
LT
201
202 netif_stop_queue(dev);
203
204 return 0;
205}
206
bc1f4470 207static void br_get_stats64(struct net_device *dev,
208 struct rtnl_link_stats64 *stats)
14bb4789 209{
210 struct net_bridge *br = netdev_priv(dev);
8f84985f 211 struct pcpu_sw_netstats tmp, sum = { 0 };
14bb4789 212 unsigned int cpu;
213
214 for_each_possible_cpu(cpu) {
406818ff 215 unsigned int start;
8f84985f 216 const struct pcpu_sw_netstats *bstats
14bb4789 217 = per_cpu_ptr(br->stats, cpu);
406818ff 218 do {
57a7744e 219 start = u64_stats_fetch_begin_irq(&bstats->syncp);
406818ff 220 memcpy(&tmp, bstats, sizeof(tmp));
57a7744e 221 } while (u64_stats_fetch_retry_irq(&bstats->syncp, start));
406818ff
ED
222 sum.tx_bytes += tmp.tx_bytes;
223 sum.tx_packets += tmp.tx_packets;
224 sum.rx_bytes += tmp.rx_bytes;
225 sum.rx_packets += tmp.rx_packets;
14bb4789 226 }
227
228 stats->tx_bytes = sum.tx_bytes;
229 stats->tx_packets = sum.tx_packets;
230 stats->rx_bytes = sum.rx_bytes;
231 stats->rx_packets = sum.rx_packets;
14bb4789 232}
233
1da177e4
LT
234static int br_change_mtu(struct net_device *dev, int new_mtu)
235{
4adf0af6 236 struct net_bridge *br = netdev_priv(dev);
f40aa233 237
1da177e4 238 dev->mtu = new_mtu;
4adf0af6 239
804b854d 240 /* this flag will be cleared if the MTU was automatically adjusted */
3341d917 241 br_opt_toggle(br, BROPT_MTU_SET_BY_USER, true);
34666d46 242#if IS_ENABLED(CONFIG_BRIDGE_NETFILTER)
4adf0af6 243 /* remember the MTU in the rtable for PMTU */
defb3519 244 dst_metric_set(&br->fake_rtable.dst, RTAX_MTU, new_mtu);
4adf0af6
SW
245#endif
246
1da177e4
LT
247 return 0;
248}
249
ffe1d49c 250/* Allow setting mac address to any valid ethernet address. */
4505a3ef
SH
251static int br_set_mac_address(struct net_device *dev, void *p)
252{
253 struct net_bridge *br = netdev_priv(dev);
254 struct sockaddr *addr = p;
ffe1d49c
SH
255
256 if (!is_valid_ether_addr(addr->sa_data))
7ca1e11a 257 return -EADDRNOTAVAIL;
4505a3ef
SH
258
259 spin_lock_bh(&br->lock);
9a7b6ef9 260 if (!ether_addr_equal(dev->dev_addr, addr->sa_data)) {
a3ebb7ef 261 /* Mac address will be changed in br_stp_change_bridge_id(). */
43598813 262 br_stp_change_bridge_id(br, addr->sa_data);
263 }
4505a3ef
SH
264 spin_unlock_bh(&br->lock);
265
ffe1d49c 266 return 0;
4505a3ef
SH
267}
268
edb5e46f
SH
269static void br_getinfo(struct net_device *dev, struct ethtool_drvinfo *info)
270{
7826d43f
JP
271 strlcpy(info->driver, "bridge", sizeof(info->driver));
272 strlcpy(info->version, BR_VERSION, sizeof(info->version));
273 strlcpy(info->fw_version, "N/A", sizeof(info->fw_version));
274 strlcpy(info->bus_info, "N/A", sizeof(info->bus_info));
edb5e46f
SH
275}
276
c8f44aff
MM
277static netdev_features_t br_fix_features(struct net_device *dev,
278 netdev_features_t features)
edb5e46f
SH
279{
280 struct net_bridge *br = netdev_priv(dev);
281
c4d27ef9 282 return br_features_recompute(br, features);
361ff8a6
JG
283}
284
c06ee961 285#ifdef CONFIG_NET_POLL_CONTROLLER
91d2c34a 286static void br_poll_controller(struct net_device *br_dev)
c06ee961 287{
c06ee961
WC
288}
289
91d2c34a 290static void br_netpoll_cleanup(struct net_device *dev)
c06ee961 291{
91d2c34a 292 struct net_bridge *br = netdev_priv(dev);
4e3828c4 293 struct net_bridge_port *p;
c06ee961 294
4e3828c4 295 list_for_each_entry(p, &br->port_list, list)
91d2c34a 296 br_netpoll_disable(p);
c06ee961
WC
297}
298
a8779ec1 299static int __br_netpoll_enable(struct net_bridge_port *p)
dbe17307
CW
300{
301 struct netpoll *np;
302 int err;
303
a8779ec1 304 np = kzalloc(sizeof(*p->np), GFP_KERNEL);
dbe17307
CW
305 if (!np)
306 return -ENOMEM;
307
a8779ec1 308 err = __netpoll_setup(np, p->dev);
dbe17307
CW
309 if (err) {
310 kfree(np);
311 return err;
312 }
313
314 p->np = np;
315 return err;
316}
317
a8779ec1 318int br_netpoll_enable(struct net_bridge_port *p)
dbe17307
CW
319{
320 if (!p->br->dev->npinfo)
321 return 0;
322
a8779ec1 323 return __br_netpoll_enable(p);
dbe17307
CW
324}
325
a8779ec1 326static int br_netpoll_setup(struct net_device *dev, struct netpoll_info *ni)
c06ee961 327{
cfb478da 328 struct net_bridge *br = netdev_priv(dev);
4e3828c4 329 struct net_bridge_port *p;
91d2c34a 330 int err = 0;
c06ee961 331
4e3828c4 332 list_for_each_entry(p, &br->port_list, list) {
91d2c34a
HX
333 if (!p->dev)
334 continue;
a8779ec1 335 err = __br_netpoll_enable(p);
91d2c34a
HX
336 if (err)
337 goto fail;
c06ee961 338 }
91d2c34a
HX
339
340out:
341 return err;
342
343fail:
344 br_netpoll_cleanup(dev);
345 goto out;
c06ee961
WC
346}
347
91d2c34a 348void br_netpoll_disable(struct net_bridge_port *p)
c06ee961 349{
91d2c34a
HX
350 struct netpoll *np = p->np;
351
352 if (!np)
353 return;
354
355 p->np = NULL;
356
c9fbd71f 357 __netpoll_free(np);
c06ee961
WC
358}
359
360#endif
361
33eaf2a6
DA
362static int br_add_slave(struct net_device *dev, struct net_device *slave_dev,
363 struct netlink_ext_ack *extack)
afc6151a
JP
364
365{
366 struct net_bridge *br = netdev_priv(dev);
367
ca752be0 368 return br_add_if(br, slave_dev, extack);
afc6151a
JP
369}
370
371static int br_del_slave(struct net_device *dev, struct net_device *slave_dev)
372{
373 struct net_bridge *br = netdev_priv(dev);
374
375 return br_del_if(br, slave_dev);
376}
377
a2dbb882 378static const struct ethtool_ops br_ethtool_ops = {
e4119a43
SH
379 .get_drvinfo = br_getinfo,
380 .get_link = ethtool_op_get_link,
edb5e46f
SH
381};
382
a2dbb882
SH
383static const struct net_device_ops br_netdev_ops = {
384 .ndo_open = br_dev_open,
385 .ndo_stop = br_dev_stop,
bb900b27 386 .ndo_init = br_dev_init,
b6fe0440 387 .ndo_uninit = br_dev_uninit,
00829823 388 .ndo_start_xmit = br_dev_xmit,
406818ff 389 .ndo_get_stats64 = br_get_stats64,
00829823 390 .ndo_set_mac_address = br_set_mac_address,
afc4b13d 391 .ndo_set_rx_mode = br_dev_set_multicast_list,
2796d0c6 392 .ndo_change_rx_flags = br_dev_change_rx_flags,
00829823
SH
393 .ndo_change_mtu = br_change_mtu,
394 .ndo_do_ioctl = br_dev_ioctl,
c06ee961 395#ifdef CONFIG_NET_POLL_CONTROLLER
91d2c34a 396 .ndo_netpoll_setup = br_netpoll_setup,
c06ee961
WC
397 .ndo_netpoll_cleanup = br_netpoll_cleanup,
398 .ndo_poll_controller = br_poll_controller,
399#endif
afc6151a
JP
400 .ndo_add_slave = br_add_slave,
401 .ndo_del_slave = br_del_slave,
c4d27ef9 402 .ndo_fix_features = br_fix_features,
77162022
JF
403 .ndo_fdb_add = br_fdb_add,
404 .ndo_fdb_del = br_fdb_delete,
405 .ndo_fdb_dump = br_fdb_dump,
47674562 406 .ndo_fdb_get = br_fdb_get,
e5a55a89
JF
407 .ndo_bridge_getlink = br_getlink,
408 .ndo_bridge_setlink = br_setlink,
407af329 409 .ndo_bridge_dellink = br_dellink,
66780530 410 .ndo_features_check = passthru_features_check,
a2dbb882
SH
411};
412
bb900b27 413static struct device_type br_type = {
414 .name = "bridge",
415};
416
1da177e4
LT
417void br_dev_setup(struct net_device *dev)
418{
bb900b27 419 struct net_bridge *br = netdev_priv(dev);
420
7ce5d222 421 eth_hw_addr_random(dev);
1da177e4
LT
422 ether_setup(dev);
423
a2dbb882 424 dev->netdev_ops = &br_netdev_ops;
cf124db5 425 dev->needs_free_netdev = true;
7ad24ea4 426 dev->ethtool_ops = &br_ethtool_ops;
bb900b27 427 SET_NETDEV_DEVTYPE(dev, &br_type);
ccecb2a4 428 dev->priv_flags = IFF_EBRIDGE | IFF_NO_QUEUE;
edb5e46f 429
161f65ba 430 dev->features = COMMON_FEATURES | NETIF_F_LLTX | NETIF_F_NETNS_LOCAL |
1c5abb6c
TM
431 NETIF_F_HW_VLAN_CTAG_TX | NETIF_F_HW_VLAN_STAG_TX;
432 dev->hw_features = COMMON_FEATURES | NETIF_F_HW_VLAN_CTAG_TX |
433 NETIF_F_HW_VLAN_STAG_TX;
161f65ba 434 dev->vlan_features = COMMON_FEATURES;
bb900b27 435
436 br->dev = dev;
437 spin_lock_init(&br->lock);
438 INIT_LIST_HEAD(&br->port_list);
eb793583 439 INIT_HLIST_HEAD(&br->fdb_list);
bb900b27 440 spin_lock_init(&br->hash_lock);
441
442 br->bridge_id.prio[0] = 0x80;
443 br->bridge_id.prio[1] = 0x00;
444
05428729 445 ether_addr_copy(br->group_addr, eth_stp_addr);
bb900b27 446
bb900b27 447 br->stp_enabled = BR_NO_STP;
515853cc 448 br->group_fwd_mask = BR_GROUPFWD_DEFAULT;
f2808d22 449 br->group_fwd_mask_required = BR_GROUPFWD_DEFAULT;
515853cc 450
bb900b27 451 br->designated_root = br->bridge_id;
452 br->bridge_max_age = br->max_age = 20 * HZ;
453 br->bridge_hello_time = br->hello_time = 2 * HZ;
454 br->bridge_forward_delay = br->forward_delay = 15 * HZ;
34d8acd8 455 br->bridge_ageing_time = br->ageing_time = BR_DEFAULT_AGEING_TIME;
91572088 456 dev->max_mtu = ETH_MAX_MTU;
bb900b27 457
458 br_netfilter_rtable_init(br);
459 br_stp_timer_init(br);
460 br_multicast_init(br);
f7cdee8a 461 INIT_DELAYED_WORK(&br->gc_work, br_fdb_cleanup);
1da177e4 462}