Commit | Line | Data |
---|---|---|
2874c5fd | 1 | // SPDX-License-Identifier: GPL-2.0-or-later |
c319b4d7 VK |
2 | /* |
3 | * INET An implementation of the TCP/IP protocol suite for the LINUX | |
4 | * operating system. INET is implemented using the BSD Socket | |
5 | * interface as the means of communication with the user level. | |
6 | * | |
7 | * "Ping" sockets | |
8 | * | |
c319b4d7 VK |
9 | * Based on ipv4/udp.c code. |
10 | * | |
11 | * Authors: Vasiliy Kulikov / Openwall (for Linux 2.6), | |
12 | * Pavel Kankovsky (for Linux 2.4.32) | |
13 | * | |
14 | * Pavel gave all rights to bugs to Vasiliy, | |
15 | * none of the bugs are Pavel's now. | |
c319b4d7 VK |
16 | */ |
17 | ||
c319b4d7 | 18 | #include <linux/uaccess.h> |
c319b4d7 VK |
19 | #include <linux/types.h> |
20 | #include <linux/fcntl.h> | |
21 | #include <linux/socket.h> | |
22 | #include <linux/sockios.h> | |
23 | #include <linux/in.h> | |
24 | #include <linux/errno.h> | |
25 | #include <linux/timer.h> | |
26 | #include <linux/mm.h> | |
27 | #include <linux/inet.h> | |
28 | #include <linux/netdevice.h> | |
29 | #include <net/snmp.h> | |
30 | #include <net/ip.h> | |
c319b4d7 VK |
31 | #include <net/icmp.h> |
32 | #include <net/protocol.h> | |
33 | #include <linux/skbuff.h> | |
34 | #include <linux/proc_fs.h> | |
bc3b2d7f | 35 | #include <linux/export.h> |
0ffe2412 | 36 | #include <linux/bpf-cgroup.h> |
c319b4d7 VK |
37 | #include <net/sock.h> |
38 | #include <net/ping.h> | |
c319b4d7 VK |
39 | #include <net/udp.h> |
40 | #include <net/route.h> | |
41 | #include <net/inet_common.h> | |
42 | #include <net/checksum.h> | |
43 | ||
6d0bfe22 LC |
44 | #if IS_ENABLED(CONFIG_IPV6) |
45 | #include <linux/in6.h> | |
46 | #include <linux/icmpv6.h> | |
47 | #include <net/addrconf.h> | |
48 | #include <net/ipv6.h> | |
49 | #include <net/transp_v6.h> | |
50 | #endif | |
51 | ||
ea074b34 | 52 | struct ping_table { |
f1b5dfe6 | 53 | struct hlist_head hash[PING_HTABLE_SIZE]; |
dbca1596 | 54 | spinlock_t lock; |
ea074b34 | 55 | }; |
c319b4d7 | 56 | |
ea074b34 | 57 | static struct ping_table ping_table; |
6d0bfe22 LC |
58 | struct pingv6_ops pingv6_ops; |
59 | EXPORT_SYMBOL_GPL(pingv6_ops); | |
c319b4d7 | 60 | |
1b1cb1f7 | 61 | static u16 ping_port_rover; |
c319b4d7 | 62 | |
6eada011 | 63 | static inline u32 ping_hashfn(const struct net *net, u32 num, u32 mask) |
c319b4d7 | 64 | { |
6eada011 | 65 | u32 res = (num + net_hash_mix(net)) & mask; |
95c96174 | 66 | |
6eada011 | 67 | pr_debug("hash(%u) = %u\n", num, res); |
c319b4d7 VK |
68 | return res; |
69 | } | |
6d0bfe22 | 70 | EXPORT_SYMBOL_GPL(ping_hash); |
c319b4d7 | 71 | |
f1b5dfe6 KI |
72 | static inline struct hlist_head *ping_hashslot(struct ping_table *table, |
73 | struct net *net, unsigned int num) | |
c319b4d7 VK |
74 | { |
75 | return &table->hash[ping_hashfn(net, num, PING_HTABLE_MASK)]; | |
76 | } | |
77 | ||
6d0bfe22 | 78 | int ping_get_port(struct sock *sk, unsigned short ident) |
c319b4d7 | 79 | { |
c319b4d7 | 80 | struct inet_sock *isk, *isk2; |
f1b5dfe6 | 81 | struct hlist_head *hlist; |
c319b4d7 VK |
82 | struct sock *sk2 = NULL; |
83 | ||
84 | isk = inet_sk(sk); | |
dbca1596 | 85 | spin_lock(&ping_table.lock); |
c319b4d7 VK |
86 | if (ident == 0) { |
87 | u32 i; | |
88 | u16 result = ping_port_rover + 1; | |
89 | ||
90 | for (i = 0; i < (1L << 16); i++, result++) { | |
91 | if (!result) | |
92 | result++; /* avoid zero */ | |
93 | hlist = ping_hashslot(&ping_table, sock_net(sk), | |
94 | result); | |
f1b5dfe6 | 95 | sk_for_each(sk2, hlist) { |
c319b4d7 VK |
96 | isk2 = inet_sk(sk2); |
97 | ||
98 | if (isk2->inet_num == result) | |
99 | goto next_port; | |
100 | } | |
101 | ||
102 | /* found */ | |
103 | ping_port_rover = ident = result; | |
104 | break; | |
105 | next_port: | |
106 | ; | |
107 | } | |
108 | if (i >= (1L << 16)) | |
109 | goto fail; | |
110 | } else { | |
111 | hlist = ping_hashslot(&ping_table, sock_net(sk), ident); | |
f1b5dfe6 | 112 | sk_for_each(sk2, hlist) { |
c319b4d7 VK |
113 | isk2 = inet_sk(sk2); |
114 | ||
6d0bfe22 LC |
115 | /* BUG? Why is this reuse and not reuseaddr? ping.c |
116 | * doesn't turn off SO_REUSEADDR, and it doesn't expect | |
117 | * that other ping processes can steal its packets. | |
118 | */ | |
c319b4d7 VK |
119 | if ((isk2->inet_num == ident) && |
120 | (sk2 != sk) && | |
121 | (!sk2->sk_reuse || !sk->sk_reuse)) | |
122 | goto fail; | |
123 | } | |
124 | } | |
125 | ||
126 | pr_debug("found port/ident = %d\n", ident); | |
127 | isk->inet_num = ident; | |
128 | if (sk_unhashed(sk)) { | |
129 | pr_debug("was not hashed\n"); | |
f1b5dfe6 | 130 | sk_add_node_rcu(sk, hlist); |
dbca1596 | 131 | sock_set_flag(sk, SOCK_RCU_FREE); |
c319b4d7 VK |
132 | sock_prot_inuse_add(sock_net(sk), sk->sk_prot, 1); |
133 | } | |
dbca1596 | 134 | spin_unlock(&ping_table.lock); |
c319b4d7 VK |
135 | return 0; |
136 | ||
137 | fail: | |
dbca1596 | 138 | spin_unlock(&ping_table.lock); |
7a7160ed | 139 | return -EADDRINUSE; |
c319b4d7 | 140 | } |
6d0bfe22 | 141 | EXPORT_SYMBOL_GPL(ping_get_port); |
c319b4d7 | 142 | |
086c653f | 143 | int ping_hash(struct sock *sk) |
c319b4d7 | 144 | { |
6d0bfe22 | 145 | pr_debug("ping_hash(sk->port=%u)\n", inet_sk(sk)->inet_num); |
c319b4d7 | 146 | BUG(); /* "Please do not press this button again." */ |
086c653f CG |
147 | |
148 | return 0; | |
c319b4d7 VK |
149 | } |
150 | ||
6d0bfe22 | 151 | void ping_unhash(struct sock *sk) |
c319b4d7 VK |
152 | { |
153 | struct inet_sock *isk = inet_sk(sk); | |
43a66845 | 154 | |
6d0bfe22 | 155 | pr_debug("ping_unhash(isk=%p,isk->num=%u)\n", isk, isk->inet_num); |
dbca1596 | 156 | spin_lock(&ping_table.lock); |
f1b5dfe6 | 157 | if (sk_del_node_init_rcu(sk)) { |
747465ef ED |
158 | isk->inet_num = 0; |
159 | isk->inet_sport = 0; | |
c319b4d7 | 160 | sock_prot_inuse_add(sock_net(sk), sk->sk_prot, -1); |
c319b4d7 | 161 | } |
dbca1596 | 162 | spin_unlock(&ping_table.lock); |
c319b4d7 | 163 | } |
6d0bfe22 | 164 | EXPORT_SYMBOL_GPL(ping_unhash); |
c319b4d7 | 165 | |
dbca1596 | 166 | /* Called under rcu_read_lock() */ |
6d0bfe22 | 167 | static struct sock *ping_lookup(struct net *net, struct sk_buff *skb, u16 ident) |
c319b4d7 | 168 | { |
f1b5dfe6 | 169 | struct hlist_head *hslot = ping_hashslot(&ping_table, net, ident); |
c319b4d7 VK |
170 | struct sock *sk = NULL; |
171 | struct inet_sock *isk; | |
35a79e64 | 172 | int dif, sdif; |
6d0bfe22 LC |
173 | |
174 | if (skb->protocol == htons(ETH_P_IP)) { | |
35a79e64 XL |
175 | dif = inet_iif(skb); |
176 | sdif = inet_sdif(skb); | |
6d0bfe22 LC |
177 | pr_debug("try to find: num = %d, daddr = %pI4, dif = %d\n", |
178 | (int)ident, &ip_hdr(skb)->daddr, dif); | |
179 | #if IS_ENABLED(CONFIG_IPV6) | |
180 | } else if (skb->protocol == htons(ETH_P_IPV6)) { | |
35a79e64 XL |
181 | dif = inet6_iif(skb); |
182 | sdif = inet6_sdif(skb); | |
6d0bfe22 LC |
183 | pr_debug("try to find: num = %d, daddr = %pI6c, dif = %d\n", |
184 | (int)ident, &ipv6_hdr(skb)->daddr, dif); | |
185 | #endif | |
35a79e64 | 186 | } else { |
35a79e64 | 187 | return NULL; |
6d0bfe22 | 188 | } |
c319b4d7 | 189 | |
f1b5dfe6 | 190 | sk_for_each_rcu(sk, hslot) { |
c319b4d7 VK |
191 | isk = inet_sk(sk); |
192 | ||
c319b4d7 VK |
193 | pr_debug("iterate\n"); |
194 | if (isk->inet_num != ident) | |
195 | continue; | |
6d0bfe22 LC |
196 | |
197 | if (skb->protocol == htons(ETH_P_IP) && | |
198 | sk->sk_family == AF_INET) { | |
199 | pr_debug("found: %p: num=%d, daddr=%pI4, dif=%d\n", sk, | |
200 | (int) isk->inet_num, &isk->inet_rcv_saddr, | |
201 | sk->sk_bound_dev_if); | |
202 | ||
203 | if (isk->inet_rcv_saddr && | |
204 | isk->inet_rcv_saddr != ip_hdr(skb)->daddr) | |
205 | continue; | |
206 | #if IS_ENABLED(CONFIG_IPV6) | |
207 | } else if (skb->protocol == htons(ETH_P_IPV6) && | |
208 | sk->sk_family == AF_INET6) { | |
6d0bfe22 LC |
209 | |
210 | pr_debug("found: %p: num=%d, daddr=%pI6c, dif=%d\n", sk, | |
211 | (int) isk->inet_num, | |
efe4208f | 212 | &sk->sk_v6_rcv_saddr, |
6d0bfe22 LC |
213 | sk->sk_bound_dev_if); |
214 | ||
efe4208f ED |
215 | if (!ipv6_addr_any(&sk->sk_v6_rcv_saddr) && |
216 | !ipv6_addr_equal(&sk->sk_v6_rcv_saddr, | |
6d0bfe22 LC |
217 | &ipv6_hdr(skb)->daddr)) |
218 | continue; | |
219 | #endif | |
91a0b603 JZ |
220 | } else { |
221 | continue; | |
6d0bfe22 LC |
222 | } |
223 | ||
2afc3b5a | 224 | if (sk->sk_bound_dev_if && sk->sk_bound_dev_if != dif && |
35a79e64 | 225 | sk->sk_bound_dev_if != sdif) |
c319b4d7 VK |
226 | continue; |
227 | ||
c319b4d7 VK |
228 | goto exit; |
229 | } | |
230 | ||
231 | sk = NULL; | |
232 | exit: | |
c319b4d7 VK |
233 | |
234 | return sk; | |
235 | } | |
236 | ||
7064d16e EB |
237 | static void inet_get_ping_group_range_net(struct net *net, kgid_t *low, |
238 | kgid_t *high) | |
f56e03e8 | 239 | { |
ba6b918a | 240 | kgid_t *data = net->ipv4.ping_group_range.range; |
95c96174 ED |
241 | unsigned int seq; |
242 | ||
f56e03e8 | 243 | do { |
ba6b918a | 244 | seq = read_seqbegin(&net->ipv4.ping_group_range.lock); |
f56e03e8 VK |
245 | |
246 | *low = data[0]; | |
247 | *high = data[1]; | |
ba6b918a | 248 | } while (read_seqretry(&net->ipv4.ping_group_range.lock, seq)); |
f56e03e8 VK |
249 | } |
250 | ||
251 | ||
6d0bfe22 | 252 | int ping_init_sock(struct sock *sk) |
c319b4d7 VK |
253 | { |
254 | struct net *net = sock_net(sk); | |
7064d16e | 255 | kgid_t group = current_egid(); |
b04c4619 | 256 | struct group_info *group_info; |
81243eac | 257 | int i; |
ae2975bc | 258 | kgid_t low, high; |
b04c4619 | 259 | int ret = 0; |
c319b4d7 | 260 | |
9145736d LC |
261 | if (sk->sk_family == AF_INET6) |
262 | sk->sk_ipv6only = 1; | |
263 | ||
7064d16e EB |
264 | inet_get_ping_group_range_net(net, &low, &high); |
265 | if (gid_lte(low, group) && gid_lte(group, high)) | |
c319b4d7 VK |
266 | return 0; |
267 | ||
b04c4619 | 268 | group_info = get_current_groups(); |
81243eac AD |
269 | for (i = 0; i < group_info->ngroups; i++) { |
270 | kgid_t gid = group_info->gid[i]; | |
c319b4d7 | 271 | |
81243eac AD |
272 | if (gid_lte(low, gid) && gid_lte(gid, high)) |
273 | goto out_release_group; | |
c319b4d7 VK |
274 | } |
275 | ||
b04c4619 WX |
276 | ret = -EACCES; |
277 | ||
278 | out_release_group: | |
279 | put_group_info(group_info); | |
280 | return ret; | |
c319b4d7 | 281 | } |
6d0bfe22 | 282 | EXPORT_SYMBOL_GPL(ping_init_sock); |
c319b4d7 | 283 | |
6d0bfe22 | 284 | void ping_close(struct sock *sk, long timeout) |
c319b4d7 VK |
285 | { |
286 | pr_debug("ping_close(sk=%p,sk->num=%u)\n", | |
058bd4d2 | 287 | inet_sk(sk), inet_sk(sk)->inet_num); |
41c6d650 | 288 | pr_debug("isk->refcnt = %d\n", refcount_read(&sk->sk_refcnt)); |
c319b4d7 VK |
289 | |
290 | sk_common_release(sk); | |
291 | } | |
6d0bfe22 LC |
292 | EXPORT_SYMBOL_GPL(ping_close); |
293 | ||
0ffe2412 YZ |
294 | static int ping_pre_connect(struct sock *sk, struct sockaddr *uaddr, |
295 | int addr_len) | |
296 | { | |
297 | /* This check is replicated from __ip4_datagram_connect() and | |
298 | * intended to prevent BPF program called below from accessing bytes | |
299 | * that are out of the bound specified by user in addr_len. | |
300 | */ | |
301 | if (addr_len < sizeof(struct sockaddr_in)) | |
302 | return -EINVAL; | |
303 | ||
fefba7d1 | 304 | return BPF_CGROUP_RUN_PROG_INET4_CONNECT_LOCK(sk, uaddr, &addr_len); |
0ffe2412 YZ |
305 | } |
306 | ||
6d0bfe22 | 307 | /* Checks the bind address and possibly modifies sk->sk_bound_dev_if. */ |
a06a2d37 | 308 | static int ping_check_bind_addr(struct sock *sk, struct inet_sock *isk, |
5af68891 ML |
309 | struct sockaddr *uaddr, int addr_len) |
310 | { | |
6d0bfe22 LC |
311 | struct net *net = sock_net(sk); |
312 | if (sk->sk_family == AF_INET) { | |
313 | struct sockaddr_in *addr = (struct sockaddr_in *) uaddr; | |
e1a7ac6f | 314 | u32 tb_id = RT_TABLE_LOCAL; |
6d0bfe22 LC |
315 | int chk_addr_ret; |
316 | ||
317 | if (addr_len < sizeof(*addr)) | |
318 | return -EINVAL; | |
319 | ||
9145736d LC |
320 | if (addr->sin_family != AF_INET && |
321 | !(addr->sin_family == AF_UNSPEC && | |
322 | addr->sin_addr.s_addr == htonl(INADDR_ANY))) | |
323 | return -EAFNOSUPPORT; | |
324 | ||
6d0bfe22 LC |
325 | pr_debug("ping_check_bind_addr(sk=%p,addr=%pI4,port=%d)\n", |
326 | sk, &addr->sin_addr.s_addr, ntohs(addr->sin_port)); | |
327 | ||
b4a028c4 RPB |
328 | if (addr->sin_addr.s_addr == htonl(INADDR_ANY)) |
329 | return 0; | |
330 | ||
e1a7ac6f ND |
331 | tb_id = l3mdev_fib_table_by_index(net, sk->sk_bound_dev_if) ? : tb_id; |
332 | chk_addr_ret = inet_addr_type_table(net, addr->sin_addr.s_addr, tb_id); | |
8ff978b8 | 333 | |
b4a028c4 RPB |
334 | if (chk_addr_ret == RTN_MULTICAST || |
335 | chk_addr_ret == RTN_BROADCAST || | |
336 | (chk_addr_ret != RTN_LOCAL && | |
337 | !inet_can_nonlocal_bind(net, isk))) | |
6d0bfe22 LC |
338 | return -EADDRNOTAVAIL; |
339 | ||
340 | #if IS_ENABLED(CONFIG_IPV6) | |
341 | } else if (sk->sk_family == AF_INET6) { | |
342 | struct sockaddr_in6 *addr = (struct sockaddr_in6 *) uaddr; | |
343 | int addr_type, scoped, has_addr; | |
344 | struct net_device *dev = NULL; | |
345 | ||
346 | if (addr_len < sizeof(*addr)) | |
347 | return -EINVAL; | |
348 | ||
82b276cd | 349 | if (addr->sin6_family != AF_INET6) |
9145736d | 350 | return -EAFNOSUPPORT; |
82b276cd | 351 | |
6d0bfe22 LC |
352 | pr_debug("ping_check_bind_addr(sk=%p,addr=%pI6c,port=%d)\n", |
353 | sk, addr->sin6_addr.s6_addr, ntohs(addr->sin6_port)); | |
354 | ||
355 | addr_type = ipv6_addr_type(&addr->sin6_addr); | |
356 | scoped = __ipv6_addr_needs_scope_id(addr_type); | |
357 | if ((addr_type != IPV6_ADDR_ANY && | |
358 | !(addr_type & IPV6_ADDR_UNICAST)) || | |
359 | (scoped && !addr->sin6_scope_id)) | |
360 | return -EINVAL; | |
361 | ||
362 | rcu_read_lock(); | |
363 | if (addr->sin6_scope_id) { | |
364 | dev = dev_get_by_index_rcu(net, addr->sin6_scope_id); | |
365 | if (!dev) { | |
366 | rcu_read_unlock(); | |
367 | return -ENODEV; | |
368 | } | |
369 | } | |
e1a7ac6f ND |
370 | |
371 | if (!dev && sk->sk_bound_dev_if) { | |
372 | dev = dev_get_by_index_rcu(net, sk->sk_bound_dev_if); | |
373 | if (!dev) { | |
374 | rcu_read_unlock(); | |
375 | return -ENODEV; | |
376 | } | |
377 | } | |
6d0bfe22 LC |
378 | has_addr = pingv6_ops.ipv6_chk_addr(net, &addr->sin6_addr, dev, |
379 | scoped); | |
380 | rcu_read_unlock(); | |
381 | ||
83ba4645 | 382 | if (!(ipv6_can_nonlocal_bind(net, isk) || has_addr || |
6d0bfe22 LC |
383 | addr_type == IPV6_ADDR_ANY)) |
384 | return -EADDRNOTAVAIL; | |
385 | ||
386 | if (scoped) | |
387 | sk->sk_bound_dev_if = addr->sin6_scope_id; | |
388 | #endif | |
389 | } else { | |
390 | return -EAFNOSUPPORT; | |
391 | } | |
392 | return 0; | |
393 | } | |
394 | ||
a06a2d37 | 395 | static void ping_set_saddr(struct sock *sk, struct sockaddr *saddr) |
6d0bfe22 LC |
396 | { |
397 | if (saddr->sa_family == AF_INET) { | |
398 | struct inet_sock *isk = inet_sk(sk); | |
399 | struct sockaddr_in *addr = (struct sockaddr_in *) saddr; | |
400 | isk->inet_rcv_saddr = isk->inet_saddr = addr->sin_addr.s_addr; | |
401 | #if IS_ENABLED(CONFIG_IPV6) | |
402 | } else if (saddr->sa_family == AF_INET6) { | |
403 | struct sockaddr_in6 *addr = (struct sockaddr_in6 *) saddr; | |
404 | struct ipv6_pinfo *np = inet6_sk(sk); | |
efe4208f | 405 | sk->sk_v6_rcv_saddr = np->saddr = addr->sin6_addr; |
6d0bfe22 LC |
406 | #endif |
407 | } | |
408 | } | |
c319b4d7 VK |
409 | |
410 | /* | |
411 | * We need our own bind because there are no privileged id's == local ports. | |
412 | * Moreover, we don't allow binding to multi- and broadcast addresses. | |
413 | */ | |
414 | ||
6d0bfe22 | 415 | int ping_bind(struct sock *sk, struct sockaddr *uaddr, int addr_len) |
c319b4d7 | 416 | { |
c319b4d7 VK |
417 | struct inet_sock *isk = inet_sk(sk); |
418 | unsigned short snum; | |
c319b4d7 | 419 | int err; |
6d0bfe22 | 420 | int dif = sk->sk_bound_dev_if; |
c319b4d7 | 421 | |
6d0bfe22 LC |
422 | err = ping_check_bind_addr(sk, isk, uaddr, addr_len); |
423 | if (err) | |
424 | return err; | |
c319b4d7 VK |
425 | |
426 | lock_sock(sk); | |
427 | ||
428 | err = -EINVAL; | |
429 | if (isk->inet_num != 0) | |
430 | goto out; | |
431 | ||
432 | err = -EADDRINUSE; | |
6d0bfe22 LC |
433 | snum = ntohs(((struct sockaddr_in *)uaddr)->sin_port); |
434 | if (ping_get_port(sk, snum) != 0) { | |
0316a211 ML |
435 | /* Restore possibly modified sk->sk_bound_dev_if by ping_check_bind_addr(). */ |
436 | sk->sk_bound_dev_if = dif; | |
c319b4d7 VK |
437 | goto out; |
438 | } | |
0316a211 | 439 | ping_set_saddr(sk, uaddr); |
c319b4d7 | 440 | |
a7ef6715 GF |
441 | pr_debug("after bind(): num = %hu, dif = %d\n", |
442 | isk->inet_num, | |
443 | sk->sk_bound_dev_if); | |
c319b4d7 VK |
444 | |
445 | err = 0; | |
c2bb06db | 446 | if (sk->sk_family == AF_INET && isk->inet_rcv_saddr) |
c319b4d7 | 447 | sk->sk_userlocks |= SOCK_BINDADDR_LOCK; |
c2bb06db ED |
448 | #if IS_ENABLED(CONFIG_IPV6) |
449 | if (sk->sk_family == AF_INET6 && !ipv6_addr_any(&sk->sk_v6_rcv_saddr)) | |
450 | sk->sk_userlocks |= SOCK_BINDADDR_LOCK; | |
451 | #endif | |
6d0bfe22 | 452 | |
c319b4d7 VK |
453 | if (snum) |
454 | sk->sk_userlocks |= SOCK_BINDPORT_LOCK; | |
455 | isk->inet_sport = htons(isk->inet_num); | |
456 | isk->inet_daddr = 0; | |
457 | isk->inet_dport = 0; | |
6d0bfe22 LC |
458 | |
459 | #if IS_ENABLED(CONFIG_IPV6) | |
460 | if (sk->sk_family == AF_INET6) | |
efe4208f | 461 | memset(&sk->sk_v6_daddr, 0, sizeof(sk->sk_v6_daddr)); |
6d0bfe22 LC |
462 | #endif |
463 | ||
c319b4d7 VK |
464 | sk_dst_reset(sk); |
465 | out: | |
466 | release_sock(sk); | |
467 | pr_debug("ping_v4_bind -> %d\n", err); | |
468 | return err; | |
469 | } | |
6d0bfe22 | 470 | EXPORT_SYMBOL_GPL(ping_bind); |
c319b4d7 VK |
471 | |
472 | /* | |
473 | * Is this a supported type of ICMP message? | |
474 | */ | |
475 | ||
6d0bfe22 | 476 | static inline int ping_supported(int family, int type, int code) |
c319b4d7 | 477 | { |
6d0bfe22 | 478 | return (family == AF_INET && type == ICMP_ECHO && code == 0) || |
08baf54f AR |
479 | (family == AF_INET && type == ICMP_EXT_ECHO && code == 0) || |
480 | (family == AF_INET6 && type == ICMPV6_ECHO_REQUEST && code == 0) || | |
481 | (family == AF_INET6 && type == ICMPV6_EXT_ECHO_REQUEST && code == 0); | |
c319b4d7 VK |
482 | } |
483 | ||
484 | /* | |
485 | * This routine is called by the ICMP module when it gets some | |
486 | * sort of error condition. | |
487 | */ | |
488 | ||
6d0bfe22 | 489 | void ping_err(struct sk_buff *skb, int offset, u32 info) |
c319b4d7 | 490 | { |
6d0bfe22 LC |
491 | int family; |
492 | struct icmphdr *icmph; | |
c319b4d7 | 493 | struct inet_sock *inet_sock; |
6d0bfe22 LC |
494 | int type; |
495 | int code; | |
c319b4d7 VK |
496 | struct net *net = dev_net(skb->dev); |
497 | struct sock *sk; | |
498 | int harderr; | |
499 | int err; | |
500 | ||
6d0bfe22 LC |
501 | if (skb->protocol == htons(ETH_P_IP)) { |
502 | family = AF_INET; | |
503 | type = icmp_hdr(skb)->type; | |
504 | code = icmp_hdr(skb)->code; | |
505 | icmph = (struct icmphdr *)(skb->data + offset); | |
506 | } else if (skb->protocol == htons(ETH_P_IPV6)) { | |
507 | family = AF_INET6; | |
508 | type = icmp6_hdr(skb)->icmp6_type; | |
509 | code = icmp6_hdr(skb)->icmp6_code; | |
510 | icmph = (struct icmphdr *) (skb->data + offset); | |
511 | } else { | |
512 | BUG(); | |
513 | } | |
514 | ||
c319b4d7 VK |
515 | /* We assume the packet has already been checked by icmp_unreach */ |
516 | ||
6d0bfe22 | 517 | if (!ping_supported(family, icmph->type, icmph->code)) |
c319b4d7 VK |
518 | return; |
519 | ||
6d0bfe22 LC |
520 | pr_debug("ping_err(proto=0x%x,type=%d,code=%d,id=%04x,seq=%04x)\n", |
521 | skb->protocol, type, code, ntohs(icmph->un.echo.id), | |
522 | ntohs(icmph->un.echo.sequence)); | |
c319b4d7 | 523 | |
6d0bfe22 | 524 | sk = ping_lookup(net, skb, ntohs(icmph->un.echo.id)); |
51456b29 | 525 | if (!sk) { |
c319b4d7 VK |
526 | pr_debug("no socket, dropping\n"); |
527 | return; /* No socket for error */ | |
528 | } | |
529 | pr_debug("err on socket %p\n", sk); | |
530 | ||
531 | err = 0; | |
532 | harderr = 0; | |
533 | inet_sock = inet_sk(sk); | |
534 | ||
6d0bfe22 LC |
535 | if (skb->protocol == htons(ETH_P_IP)) { |
536 | switch (type) { | |
537 | default: | |
538 | case ICMP_TIME_EXCEEDED: | |
539 | err = EHOSTUNREACH; | |
540 | break; | |
541 | case ICMP_SOURCE_QUENCH: | |
542 | /* This is not a real error but ping wants to see it. | |
543 | * Report it with some fake errno. | |
544 | */ | |
545 | err = EREMOTEIO; | |
546 | break; | |
547 | case ICMP_PARAMETERPROB: | |
548 | err = EPROTO; | |
549 | harderr = 1; | |
550 | break; | |
551 | case ICMP_DEST_UNREACH: | |
552 | if (code == ICMP_FRAG_NEEDED) { /* Path MTU discovery */ | |
553 | ipv4_sk_update_pmtu(skb, sk, info); | |
ceaa7141 | 554 | if (READ_ONCE(inet_sock->pmtudisc) != IP_PMTUDISC_DONT) { |
6d0bfe22 LC |
555 | err = EMSGSIZE; |
556 | harderr = 1; | |
557 | break; | |
558 | } | |
559 | goto out; | |
c319b4d7 | 560 | } |
6d0bfe22 LC |
561 | err = EHOSTUNREACH; |
562 | if (code <= NR_ICMP_UNREACH) { | |
563 | harderr = icmp_err_convert[code].fatal; | |
564 | err = icmp_err_convert[code].errno; | |
565 | } | |
566 | break; | |
567 | case ICMP_REDIRECT: | |
568 | /* See ICMP_SOURCE_QUENCH */ | |
569 | ipv4_sk_redirect(skb, sk); | |
570 | err = EREMOTEIO; | |
571 | break; | |
c319b4d7 | 572 | } |
6d0bfe22 LC |
573 | #if IS_ENABLED(CONFIG_IPV6) |
574 | } else if (skb->protocol == htons(ETH_P_IPV6)) { | |
575 | harderr = pingv6_ops.icmpv6_err_convert(type, code, &err); | |
576 | #endif | |
c319b4d7 VK |
577 | } |
578 | ||
579 | /* | |
580 | * RFC1122: OK. Passes ICMP errors back to application, as per | |
581 | * 4.1.3.3. | |
582 | */ | |
6b5f43ea | 583 | if ((family == AF_INET && !inet_test_bit(RECVERR, sk)) || |
3fa29971 | 584 | (family == AF_INET6 && !inet6_test_bit(RECVERR6, sk))) { |
c319b4d7 VK |
585 | if (!harderr || sk->sk_state != TCP_ESTABLISHED) |
586 | goto out; | |
587 | } else { | |
6d0bfe22 LC |
588 | if (family == AF_INET) { |
589 | ip_icmp_error(sk, skb, err, 0 /* no remote port */, | |
590 | info, (u8 *)icmph); | |
591 | #if IS_ENABLED(CONFIG_IPV6) | |
592 | } else if (family == AF_INET6) { | |
593 | pingv6_ops.ipv6_icmp_error(sk, skb, err, 0, | |
594 | info, (u8 *)icmph); | |
595 | #endif | |
596 | } | |
c319b4d7 VK |
597 | } |
598 | sk->sk_err = err; | |
e3ae2365 | 599 | sk_error_report(sk); |
c319b4d7 | 600 | out: |
dbca1596 | 601 | return; |
c319b4d7 | 602 | } |
6d0bfe22 | 603 | EXPORT_SYMBOL_GPL(ping_err); |
c319b4d7 VK |
604 | |
605 | /* | |
6d0bfe22 LC |
606 | * Copy and checksum an ICMP Echo packet from user space into a buffer |
607 | * starting from the payload. | |
c319b4d7 VK |
608 | */ |
609 | ||
6d0bfe22 LC |
610 | int ping_getfrag(void *from, char *to, |
611 | int offset, int fraglen, int odd, struct sk_buff *skb) | |
c319b4d7 | 612 | { |
2e47eece | 613 | struct pingfakehdr *pfh = from; |
c319b4d7 | 614 | |
0d24148b ED |
615 | if (!csum_and_copy_from_iter_full(to, fraglen, &pfh->wcheck, |
616 | &pfh->msg->msg_iter)) | |
617 | return -EFAULT; | |
c319b4d7 | 618 | |
6d0bfe22 LC |
619 | #if IS_ENABLED(CONFIG_IPV6) |
620 | /* For IPv6, checksum each skb as we go along, as expected by | |
621 | * icmpv6_push_pending_frames. For IPv4, accumulate the checksum in | |
622 | * wcheck, it will be finalized in ping_v4_push_pending_frames. | |
623 | */ | |
624 | if (pfh->family == AF_INET6) { | |
87445f36 | 625 | skb->csum = csum_block_add(skb->csum, pfh->wcheck, odd); |
6d0bfe22 LC |
626 | skb->ip_summed = CHECKSUM_NONE; |
627 | pfh->wcheck = 0; | |
c319b4d7 | 628 | } |
6d0bfe22 LC |
629 | #endif |
630 | ||
c319b4d7 VK |
631 | return 0; |
632 | } | |
6d0bfe22 | 633 | EXPORT_SYMBOL_GPL(ping_getfrag); |
c319b4d7 | 634 | |
6d0bfe22 LC |
635 | static int ping_v4_push_pending_frames(struct sock *sk, struct pingfakehdr *pfh, |
636 | struct flowi4 *fl4) | |
c319b4d7 VK |
637 | { |
638 | struct sk_buff *skb = skb_peek(&sk->sk_write_queue); | |
639 | ||
73d2c667 WC |
640 | if (!skb) |
641 | return 0; | |
c319b4d7 VK |
642 | pfh->wcheck = csum_partial((char *)&pfh->icmph, |
643 | sizeof(struct icmphdr), pfh->wcheck); | |
644 | pfh->icmph.checksum = csum_fold(pfh->wcheck); | |
645 | memcpy(icmp_hdr(skb), &pfh->icmph, sizeof(struct icmphdr)); | |
646 | skb->ip_summed = CHECKSUM_NONE; | |
647 | return ip_push_pending_frames(sk, fl4); | |
648 | } | |
649 | ||
6d0bfe22 | 650 | int ping_common_sendmsg(int family, struct msghdr *msg, size_t len, |
5af68891 ML |
651 | void *user_icmph, size_t icmph_len) |
652 | { | |
6d0bfe22 | 653 | u8 type, code; |
c319b4d7 VK |
654 | |
655 | if (len > 0xFFFF) | |
656 | return -EMSGSIZE; | |
657 | ||
0eab121e KC |
658 | /* Must have at least a full ICMP header. */ |
659 | if (len < icmph_len) | |
660 | return -EINVAL; | |
661 | ||
c319b4d7 VK |
662 | /* |
663 | * Check the flags. | |
664 | */ | |
665 | ||
666 | /* Mirror BSD error message compatibility */ | |
667 | if (msg->msg_flags & MSG_OOB) | |
668 | return -EOPNOTSUPP; | |
669 | ||
670 | /* | |
671 | * Fetch the ICMP header provided by the userland. | |
6d0bfe22 | 672 | * iovec is modified! The ICMP header is consumed. |
c319b4d7 | 673 | */ |
6ce8e9ce | 674 | if (memcpy_from_msg(user_icmph, msg, icmph_len)) |
c319b4d7 | 675 | return -EFAULT; |
6d0bfe22 LC |
676 | |
677 | if (family == AF_INET) { | |
678 | type = ((struct icmphdr *) user_icmph)->type; | |
679 | code = ((struct icmphdr *) user_icmph)->code; | |
680 | #if IS_ENABLED(CONFIG_IPV6) | |
681 | } else if (family == AF_INET6) { | |
682 | type = ((struct icmp6hdr *) user_icmph)->icmp6_type; | |
683 | code = ((struct icmp6hdr *) user_icmph)->icmp6_code; | |
684 | #endif | |
685 | } else { | |
686 | BUG(); | |
687 | } | |
688 | ||
689 | if (!ping_supported(family, type, code)) | |
c319b4d7 VK |
690 | return -EINVAL; |
691 | ||
6d0bfe22 LC |
692 | return 0; |
693 | } | |
694 | EXPORT_SYMBOL_GPL(ping_common_sendmsg); | |
695 | ||
1b784140 | 696 | static int ping_v4_sendmsg(struct sock *sk, struct msghdr *msg, size_t len) |
6d0bfe22 LC |
697 | { |
698 | struct net *net = sock_net(sk); | |
699 | struct flowi4 fl4; | |
700 | struct inet_sock *inet = inet_sk(sk); | |
701 | struct ipcm_cookie ipc; | |
702 | struct icmphdr user_icmph; | |
703 | struct pingfakehdr pfh; | |
704 | struct rtable *rt = NULL; | |
705 | struct ip_options_data opt_copy; | |
706 | int free = 0; | |
707 | __be32 saddr, daddr, faddr; | |
9329b583 | 708 | u8 scope; |
6d0bfe22 LC |
709 | int err; |
710 | ||
711 | pr_debug("ping_v4_sendmsg(sk=%p,sk->num=%u)\n", inet, inet->inet_num); | |
712 | ||
713 | err = ping_common_sendmsg(AF_INET, msg, len, &user_icmph, | |
714 | sizeof(user_icmph)); | |
715 | if (err) | |
716 | return err; | |
717 | ||
c319b4d7 VK |
718 | /* |
719 | * Get and verify the address. | |
720 | */ | |
721 | ||
722 | if (msg->msg_name) { | |
342dfc30 | 723 | DECLARE_SOCKADDR(struct sockaddr_in *, usin, msg->msg_name); |
c319b4d7 VK |
724 | if (msg->msg_namelen < sizeof(*usin)) |
725 | return -EINVAL; | |
726 | if (usin->sin_family != AF_INET) | |
9145736d | 727 | return -EAFNOSUPPORT; |
c319b4d7 VK |
728 | daddr = usin->sin_addr.s_addr; |
729 | /* no remote port */ | |
730 | } else { | |
731 | if (sk->sk_state != TCP_ESTABLISHED) | |
732 | return -EDESTADDRREQ; | |
733 | daddr = inet->inet_daddr; | |
734 | /* no remote port */ | |
735 | } | |
736 | ||
35178206 | 737 | ipcm_init_sk(&ipc, inet); |
bf84a010 | 738 | |
c319b4d7 | 739 | if (msg->msg_controllen) { |
24025c46 | 740 | err = ip_cmsg_send(sk, msg, &ipc, false); |
91948309 ED |
741 | if (unlikely(err)) { |
742 | kfree(ipc.opt); | |
c319b4d7 | 743 | return err; |
91948309 | 744 | } |
c319b4d7 VK |
745 | if (ipc.opt) |
746 | free = 1; | |
747 | } | |
748 | if (!ipc.opt) { | |
749 | struct ip_options_rcu *inet_opt; | |
750 | ||
751 | rcu_read_lock(); | |
752 | inet_opt = rcu_dereference(inet->inet_opt); | |
753 | if (inet_opt) { | |
754 | memcpy(&opt_copy, inet_opt, | |
755 | sizeof(*inet_opt) + inet_opt->opt.optlen); | |
756 | ipc.opt = &opt_copy.opt; | |
757 | } | |
758 | rcu_read_unlock(); | |
759 | } | |
760 | ||
761 | saddr = ipc.addr; | |
762 | ipc.addr = faddr = daddr; | |
763 | ||
764 | if (ipc.opt && ipc.opt->opt.srr) { | |
1b97013b AI |
765 | if (!daddr) { |
766 | err = -EINVAL; | |
767 | goto out_free; | |
768 | } | |
c319b4d7 VK |
769 | faddr = ipc.opt->opt.faddr; |
770 | } | |
726de790 | 771 | scope = ip_sendmsg_scope(inet, &ipc, msg); |
c319b4d7 VK |
772 | |
773 | if (ipv4_is_multicast(daddr)) { | |
854da991 | 774 | if (!ipc.oif || netif_index_is_l3_master(sock_net(sk), ipc.oif)) |
02715925 | 775 | ipc.oif = READ_ONCE(inet->mc_index); |
c319b4d7 | 776 | if (!saddr) |
02715925 | 777 | saddr = READ_ONCE(inet->mc_addr); |
76e21053 | 778 | } else if (!ipc.oif) |
959d5c11 | 779 | ipc.oif = READ_ONCE(inet->uc_index); |
c319b4d7 | 780 | |
9329b583 WB |
781 | flowi4_init_output(&fl4, ipc.oif, ipc.sockc.mark, |
782 | ipc.tos & INET_DSCP_MASK, scope, | |
726de790 GN |
783 | sk->sk_protocol, inet_sk_flowi_flags(sk), faddr, |
784 | saddr, 0, 0, sk->sk_uid); | |
c319b4d7 | 785 | |
5eff0690 SD |
786 | fl4.fl4_icmp_type = user_icmph.type; |
787 | fl4.fl4_icmp_code = user_icmph.code; | |
788 | ||
3df98d79 | 789 | security_sk_classify_flow(sk, flowi4_to_flowi_common(&fl4)); |
c319b4d7 VK |
790 | rt = ip_route_output_flow(net, &fl4, sk); |
791 | if (IS_ERR(rt)) { | |
792 | err = PTR_ERR(rt); | |
793 | rt = NULL; | |
794 | if (err == -ENETUNREACH) | |
f1d8cba6 | 795 | IP_INC_STATS(net, IPSTATS_MIB_OUTNOROUTES); |
c319b4d7 VK |
796 | goto out; |
797 | } | |
798 | ||
799 | err = -EACCES; | |
800 | if ((rt->rt_flags & RTCF_BROADCAST) && | |
801 | !sock_flag(sk, SOCK_BROADCAST)) | |
802 | goto out; | |
803 | ||
804 | if (msg->msg_flags & MSG_CONFIRM) | |
805 | goto do_confirm; | |
806 | back_from_confirm: | |
807 | ||
808 | if (!ipc.addr) | |
809 | ipc.addr = fl4.daddr; | |
810 | ||
811 | lock_sock(sk); | |
812 | ||
813 | pfh.icmph.type = user_icmph.type; /* already checked */ | |
814 | pfh.icmph.code = user_icmph.code; /* ditto */ | |
815 | pfh.icmph.checksum = 0; | |
816 | pfh.icmph.un.echo.id = inet->inet_sport; | |
817 | pfh.icmph.un.echo.sequence = user_icmph.un.echo.sequence; | |
cacdc7d2 | 818 | pfh.msg = msg; |
c319b4d7 | 819 | pfh.wcheck = 0; |
6d0bfe22 | 820 | pfh.family = AF_INET; |
c319b4d7 VK |
821 | |
822 | err = ip_append_data(sk, &fl4, ping_getfrag, &pfh, len, | |
0d24148b ED |
823 | sizeof(struct icmphdr), &ipc, &rt, |
824 | msg->msg_flags); | |
c319b4d7 VK |
825 | if (err) |
826 | ip_flush_pending_frames(sk); | |
827 | else | |
6d0bfe22 | 828 | err = ping_v4_push_pending_frames(sk, &pfh, &fl4); |
c319b4d7 VK |
829 | release_sock(sk); |
830 | ||
831 | out: | |
832 | ip_rt_put(rt); | |
1b97013b | 833 | out_free: |
c319b4d7 VK |
834 | if (free) |
835 | kfree(ipc.opt); | |
836 | if (!err) { | |
837 | icmp_out_count(sock_net(sk), user_icmph.type); | |
838 | return len; | |
839 | } | |
840 | return err; | |
841 | ||
842 | do_confirm: | |
0dec879f JA |
843 | if (msg->msg_flags & MSG_PROBE) |
844 | dst_confirm_neigh(&rt->dst, &fl4.daddr); | |
c319b4d7 VK |
845 | if (!(msg->msg_flags & MSG_PROBE) || len) |
846 | goto back_from_confirm; | |
847 | err = 0; | |
848 | goto out; | |
849 | } | |
850 | ||
ec095263 OH |
851 | int ping_recvmsg(struct sock *sk, struct msghdr *msg, size_t len, int flags, |
852 | int *addr_len) | |
c319b4d7 VK |
853 | { |
854 | struct inet_sock *isk = inet_sk(sk); | |
6d0bfe22 | 855 | int family = sk->sk_family; |
c319b4d7 VK |
856 | struct sk_buff *skb; |
857 | int copied, err; | |
858 | ||
859 | pr_debug("ping_recvmsg(sk=%p,sk->num=%u)\n", isk, isk->inet_num); | |
860 | ||
a5e7424d | 861 | err = -EOPNOTSUPP; |
c319b4d7 VK |
862 | if (flags & MSG_OOB) |
863 | goto out; | |
864 | ||
f4713a3d WB |
865 | if (flags & MSG_ERRQUEUE) |
866 | return inet_recv_error(sk, msg, len, addr_len); | |
c319b4d7 | 867 | |
f4b41f06 | 868 | skb = skb_recv_datagram(sk, flags, &err); |
c319b4d7 VK |
869 | if (!skb) |
870 | goto out; | |
871 | ||
872 | copied = skb->len; | |
873 | if (copied > len) { | |
874 | msg->msg_flags |= MSG_TRUNC; | |
875 | copied = len; | |
876 | } | |
877 | ||
878 | /* Don't bother checking the checksum */ | |
51f3d02b | 879 | err = skb_copy_datagram_msg(skb, 0, msg, copied); |
c319b4d7 VK |
880 | if (err) |
881 | goto done; | |
882 | ||
883 | sock_recv_timestamp(msg, sk, skb); | |
884 | ||
6d0bfe22 LC |
885 | /* Copy the address and add cmsg data. */ |
886 | if (family == AF_INET) { | |
342dfc30 | 887 | DECLARE_SOCKADDR(struct sockaddr_in *, sin, msg->msg_name); |
bceaa902 | 888 | |
cf970c00 HFS |
889 | if (sin) { |
890 | sin->sin_family = AF_INET; | |
891 | sin->sin_port = 0 /* skb->h.uh->source */; | |
892 | sin->sin_addr.s_addr = ip_hdr(skb)->saddr; | |
893 | memset(sin->sin_zero, 0, sizeof(sin->sin_zero)); | |
894 | *addr_len = sizeof(*sin); | |
895 | } | |
6d0bfe22 | 896 | |
c274af22 | 897 | if (inet_cmsg_flags(isk)) |
6d0bfe22 LC |
898 | ip_cmsg_recv(msg, skb); |
899 | ||
900 | #if IS_ENABLED(CONFIG_IPV6) | |
901 | } else if (family == AF_INET6) { | |
6d0bfe22 | 902 | struct ipv6hdr *ip6 = ipv6_hdr(skb); |
342dfc30 | 903 | DECLARE_SOCKADDR(struct sockaddr_in6 *, sin6, msg->msg_name); |
bceaa902 | 904 | |
cf970c00 HFS |
905 | if (sin6) { |
906 | sin6->sin6_family = AF_INET6; | |
907 | sin6->sin6_port = 0; | |
908 | sin6->sin6_addr = ip6->saddr; | |
909 | sin6->sin6_flowinfo = 0; | |
859f8b26 | 910 | if (inet6_test_bit(SNDFLOW, sk)) |
cf970c00 HFS |
911 | sin6->sin6_flowinfo = ip6_flowinfo(ip6); |
912 | sin6->sin6_scope_id = | |
913 | ipv6_iface_scope_id(&sin6->sin6_addr, | |
4330487a | 914 | inet6_iif(skb)); |
cf970c00 HFS |
915 | *addr_len = sizeof(*sin6); |
916 | } | |
6d0bfe22 LC |
917 | |
918 | if (inet6_sk(sk)->rxopt.all) | |
4b261c75 HFS |
919 | pingv6_ops.ip6_datagram_recv_common_ctl(sk, msg, skb); |
920 | if (skb->protocol == htons(ETH_P_IPV6) && | |
921 | inet6_sk(sk)->rxopt.all) | |
922 | pingv6_ops.ip6_datagram_recv_specific_ctl(sk, msg, skb); | |
c274af22 ED |
923 | else if (skb->protocol == htons(ETH_P_IP) && |
924 | inet_cmsg_flags(isk)) | |
4b261c75 | 925 | ip_cmsg_recv(msg, skb); |
6d0bfe22 LC |
926 | #endif |
927 | } else { | |
928 | BUG(); | |
c319b4d7 | 929 | } |
6d0bfe22 | 930 | |
c319b4d7 VK |
931 | err = copied; |
932 | ||
933 | done: | |
934 | skb_free_datagram(sk, skb); | |
935 | out: | |
936 | pr_debug("ping_recvmsg -> %d\n", err); | |
937 | return err; | |
938 | } | |
6d0bfe22 | 939 | EXPORT_SYMBOL_GPL(ping_recvmsg); |
c319b4d7 | 940 | |
41a95a00 MD |
941 | static enum skb_drop_reason __ping_queue_rcv_skb(struct sock *sk, |
942 | struct sk_buff *skb) | |
c319b4d7 | 943 | { |
41a95a00 MD |
944 | enum skb_drop_reason reason; |
945 | ||
c319b4d7 | 946 | pr_debug("ping_queue_rcv_skb(sk=%p,sk->num=%d,skb=%p)\n", |
058bd4d2 | 947 | inet_sk(sk), inet_sk(sk)->inet_num, skb); |
41a95a00 | 948 | if (sock_queue_rcv_skb_reason(sk, skb, &reason) < 0) { |
7467de17 | 949 | sk_skb_reason_drop(sk, skb, reason); |
c319b4d7 | 950 | pr_debug("ping_queue_rcv_skb -> failed\n"); |
41a95a00 | 951 | return reason; |
c319b4d7 | 952 | } |
41a95a00 MD |
953 | return SKB_NOT_DROPPED_YET; |
954 | } | |
955 | ||
956 | int ping_queue_rcv_skb(struct sock *sk, struct sk_buff *skb) | |
957 | { | |
958 | return __ping_queue_rcv_skb(sk, skb) ? -1 : 0; | |
c319b4d7 | 959 | } |
6d0bfe22 | 960 | EXPORT_SYMBOL_GPL(ping_queue_rcv_skb); |
c319b4d7 VK |
961 | |
962 | ||
963 | /* | |
964 | * All we need to do is get the socket. | |
965 | */ | |
966 | ||
b384c95a | 967 | enum skb_drop_reason ping_rcv(struct sk_buff *skb) |
c319b4d7 | 968 | { |
c319b4d7 | 969 | struct net *net = dev_net(skb->dev); |
c319b4d7 | 970 | struct icmphdr *icmph = icmp_hdr(skb); |
a7e38208 | 971 | struct sock *sk; |
c319b4d7 VK |
972 | |
973 | /* We assume the packet has already been checked by icmp_rcv */ | |
974 | ||
975 | pr_debug("ping_rcv(skb=%p,id=%04x,seq=%04x)\n", | |
058bd4d2 | 976 | skb, ntohs(icmph->un.echo.id), ntohs(icmph->un.echo.sequence)); |
c319b4d7 VK |
977 | |
978 | /* Push ICMP header back */ | |
979 | skb_push(skb, skb->data - (u8 *)icmph); | |
980 | ||
6d0bfe22 | 981 | sk = ping_lookup(net, skb, ntohs(icmph->un.echo.id)); |
a7e38208 ED |
982 | if (sk) |
983 | return __ping_queue_rcv_skb(sk, skb); | |
9d44fa3e | 984 | |
a7e38208 ED |
985 | kfree_skb_reason(skb, SKB_DROP_REASON_NO_SOCKET); |
986 | return SKB_DROP_REASON_NO_SOCKET; | |
c319b4d7 | 987 | } |
6d0bfe22 | 988 | EXPORT_SYMBOL_GPL(ping_rcv); |
c319b4d7 VK |
989 | |
990 | struct proto ping_prot = { | |
991 | .name = "PING", | |
992 | .owner = THIS_MODULE, | |
993 | .init = ping_init_sock, | |
994 | .close = ping_close, | |
0ffe2412 | 995 | .pre_connect = ping_pre_connect, |
c319b4d7 | 996 | .connect = ip4_datagram_connect, |
286c72de | 997 | .disconnect = __udp_disconnect, |
c319b4d7 VK |
998 | .setsockopt = ip_setsockopt, |
999 | .getsockopt = ip_getsockopt, | |
6d0bfe22 | 1000 | .sendmsg = ping_v4_sendmsg, |
c319b4d7 VK |
1001 | .recvmsg = ping_recvmsg, |
1002 | .bind = ping_bind, | |
1003 | .backlog_rcv = ping_queue_rcv_skb, | |
8141ed9f | 1004 | .release_cb = ip4_datagram_release_cb, |
6d0bfe22 LC |
1005 | .hash = ping_hash, |
1006 | .unhash = ping_unhash, | |
1007 | .get_port = ping_get_port, | |
91a760b2 | 1008 | .put_port = ping_unhash, |
c319b4d7 VK |
1009 | .obj_size = sizeof(struct inet_sock), |
1010 | }; | |
1011 | EXPORT_SYMBOL(ping_prot); | |
1012 | ||
1013 | #ifdef CONFIG_PROC_FS | |
1014 | ||
1015 | static struct sock *ping_get_first(struct seq_file *seq, int start) | |
1016 | { | |
1017 | struct sock *sk; | |
1018 | struct ping_iter_state *state = seq->private; | |
1019 | struct net *net = seq_file_net(seq); | |
1020 | ||
1021 | for (state->bucket = start; state->bucket < PING_HTABLE_SIZE; | |
1022 | ++state->bucket) { | |
f1b5dfe6 | 1023 | struct hlist_head *hslot; |
75e308c8 CG |
1024 | |
1025 | hslot = &ping_table.hash[state->bucket]; | |
c319b4d7 | 1026 | |
f1b5dfe6 | 1027 | if (hlist_empty(hslot)) |
c319b4d7 VK |
1028 | continue; |
1029 | ||
f1b5dfe6 | 1030 | sk_for_each(sk, hslot) { |
8cc785f6 LC |
1031 | if (net_eq(sock_net(sk), net) && |
1032 | sk->sk_family == state->family) | |
c319b4d7 VK |
1033 | goto found; |
1034 | } | |
1035 | } | |
1036 | sk = NULL; | |
1037 | found: | |
1038 | return sk; | |
1039 | } | |
1040 | ||
1041 | static struct sock *ping_get_next(struct seq_file *seq, struct sock *sk) | |
1042 | { | |
1043 | struct ping_iter_state *state = seq->private; | |
1044 | struct net *net = seq_file_net(seq); | |
1045 | ||
1046 | do { | |
f1b5dfe6 | 1047 | sk = sk_next(sk); |
c319b4d7 VK |
1048 | } while (sk && (!net_eq(sock_net(sk), net))); |
1049 | ||
1050 | if (!sk) | |
1051 | return ping_get_first(seq, state->bucket + 1); | |
1052 | return sk; | |
1053 | } | |
1054 | ||
1055 | static struct sock *ping_get_idx(struct seq_file *seq, loff_t pos) | |
1056 | { | |
1057 | struct sock *sk = ping_get_first(seq, 0); | |
1058 | ||
1059 | if (sk) | |
1060 | while (pos && (sk = ping_get_next(seq, sk)) != NULL) | |
1061 | --pos; | |
1062 | return pos ? NULL : sk; | |
1063 | } | |
1064 | ||
d862e546 | 1065 | void *ping_seq_start(struct seq_file *seq, loff_t *pos, sa_family_t family) |
ab5fb73f | 1066 | __acquires(ping_table.lock) |
c319b4d7 VK |
1067 | { |
1068 | struct ping_iter_state *state = seq->private; | |
1069 | state->bucket = 0; | |
8cc785f6 | 1070 | state->family = family; |
c319b4d7 | 1071 | |
ab5fb73f | 1072 | spin_lock(&ping_table.lock); |
c319b4d7 VK |
1073 | |
1074 | return *pos ? ping_get_idx(seq, *pos-1) : SEQ_START_TOKEN; | |
1075 | } | |
d862e546 | 1076 | EXPORT_SYMBOL_GPL(ping_seq_start); |
c319b4d7 | 1077 | |
8cc785f6 LC |
1078 | static void *ping_v4_seq_start(struct seq_file *seq, loff_t *pos) |
1079 | { | |
1080 | return ping_seq_start(seq, pos, AF_INET); | |
1081 | } | |
1082 | ||
d862e546 | 1083 | void *ping_seq_next(struct seq_file *seq, void *v, loff_t *pos) |
c319b4d7 VK |
1084 | { |
1085 | struct sock *sk; | |
1086 | ||
1087 | if (v == SEQ_START_TOKEN) | |
1088 | sk = ping_get_idx(seq, 0); | |
1089 | else | |
1090 | sk = ping_get_next(seq, v); | |
1091 | ||
1092 | ++*pos; | |
1093 | return sk; | |
1094 | } | |
d862e546 | 1095 | EXPORT_SYMBOL_GPL(ping_seq_next); |
c319b4d7 | 1096 | |
d862e546 | 1097 | void ping_seq_stop(struct seq_file *seq, void *v) |
ab5fb73f | 1098 | __releases(ping_table.lock) |
c319b4d7 | 1099 | { |
ab5fb73f | 1100 | spin_unlock(&ping_table.lock); |
c319b4d7 | 1101 | } |
d862e546 | 1102 | EXPORT_SYMBOL_GPL(ping_seq_stop); |
c319b4d7 | 1103 | |
8cc785f6 | 1104 | static void ping_v4_format_sock(struct sock *sp, struct seq_file *f, |
652586df | 1105 | int bucket) |
c319b4d7 VK |
1106 | { |
1107 | struct inet_sock *inet = inet_sk(sp); | |
1108 | __be32 dest = inet->inet_daddr; | |
1109 | __be32 src = inet->inet_rcv_saddr; | |
1110 | __u16 destp = ntohs(inet->inet_dport); | |
1111 | __u16 srcp = ntohs(inet->inet_sport); | |
1112 | ||
1113 | seq_printf(f, "%5d: %08X:%04X %08X:%04X" | |
ea9a0379 | 1114 | " %02X %08X:%08X %02X:%08lX %08X %5u %8d %lu %d %pK %u", |
c319b4d7 VK |
1115 | bucket, src, srcp, dest, destp, sp->sk_state, |
1116 | sk_wmem_alloc_get(sp), | |
1117 | sk_rmem_alloc_get(sp), | |
a7cb5a49 EB |
1118 | 0, 0L, 0, |
1119 | from_kuid_munged(seq_user_ns(f), sock_i_uid(sp)), | |
1120 | 0, sock_i_ino(sp), | |
41c6d650 | 1121 | refcount_read(&sp->sk_refcnt), sp, |
652586df | 1122 | atomic_read(&sp->sk_drops)); |
c319b4d7 VK |
1123 | } |
1124 | ||
8cc785f6 | 1125 | static int ping_v4_seq_show(struct seq_file *seq, void *v) |
c319b4d7 | 1126 | { |
652586df | 1127 | seq_setwidth(seq, 127); |
c319b4d7 | 1128 | if (v == SEQ_START_TOKEN) |
652586df | 1129 | seq_puts(seq, " sl local_address rem_address st tx_queue " |
c319b4d7 VK |
1130 | "rx_queue tr tm->when retrnsmt uid timeout " |
1131 | "inode ref pointer drops"); | |
1132 | else { | |
1133 | struct ping_iter_state *state = seq->private; | |
c319b4d7 | 1134 | |
652586df | 1135 | ping_v4_format_sock(v, seq, state->bucket); |
c319b4d7 | 1136 | } |
652586df | 1137 | seq_pad(seq, '\n'); |
c319b4d7 VK |
1138 | return 0; |
1139 | } | |
1140 | ||
f4550221 CH |
1141 | static const struct seq_operations ping_v4_seq_ops = { |
1142 | .start = ping_v4_seq_start, | |
1143 | .show = ping_v4_seq_show, | |
1144 | .next = ping_seq_next, | |
1145 | .stop = ping_seq_stop, | |
1146 | }; | |
1147 | ||
f4550221 | 1148 | static int __net_init ping_v4_proc_init_net(struct net *net) |
c319b4d7 | 1149 | { |
c3506372 CH |
1150 | if (!proc_create_net("icmp", 0444, net->proc_net, &ping_v4_seq_ops, |
1151 | sizeof(struct ping_iter_state))) | |
8cc785f6 LC |
1152 | return -ENOMEM; |
1153 | return 0; | |
c319b4d7 | 1154 | } |
c319b4d7 | 1155 | |
8cc785f6 | 1156 | static void __net_exit ping_v4_proc_exit_net(struct net *net) |
c319b4d7 | 1157 | { |
f4550221 | 1158 | remove_proc_entry("icmp", net->proc_net); |
c319b4d7 VK |
1159 | } |
1160 | ||
8cc785f6 LC |
1161 | static struct pernet_operations ping_v4_net_ops = { |
1162 | .init = ping_v4_proc_init_net, | |
1163 | .exit = ping_v4_proc_exit_net, | |
c319b4d7 VK |
1164 | }; |
1165 | ||
1166 | int __init ping_proc_init(void) | |
1167 | { | |
8cc785f6 | 1168 | return register_pernet_subsys(&ping_v4_net_ops); |
c319b4d7 VK |
1169 | } |
1170 | ||
1171 | void ping_proc_exit(void) | |
1172 | { | |
8cc785f6 | 1173 | unregister_pernet_subsys(&ping_v4_net_ops); |
c319b4d7 VK |
1174 | } |
1175 | ||
1176 | #endif | |
1177 | ||
1178 | void __init ping_init(void) | |
1179 | { | |
1180 | int i; | |
1181 | ||
1182 | for (i = 0; i < PING_HTABLE_SIZE; i++) | |
f1b5dfe6 | 1183 | INIT_HLIST_HEAD(&ping_table.hash[i]); |
dbca1596 | 1184 | spin_lock_init(&ping_table.lock); |
c319b4d7 | 1185 | } |