Commit | Line | Data |
---|---|---|
2874c5fd | 1 | // SPDX-License-Identifier: GPL-2.0-or-later |
1da177e4 LT |
2 | /* |
3 | * RAW sockets for IPv6 | |
1ab1457c | 4 | * Linux INET6 implementation |
1da177e4 LT |
5 | * |
6 | * Authors: | |
1ab1457c | 7 | * Pedro Roque <roque@di.fc.ul.pt> |
1da177e4 LT |
8 | * |
9 | * Adapted from linux/net/ipv4/raw.c | |
10 | * | |
1da177e4 LT |
11 | * Fixes: |
12 | * Hideaki YOSHIFUJI : sin6_scope_id support | |
1ab1457c | 13 | * YOSHIFUJI,H.@USAGI : raw checksum (RFC2292(bis) compliance) |
1da177e4 | 14 | * Kazunori MIYAZAWA @USAGI: change process style to use ip6_append_data |
1da177e4 LT |
15 | */ |
16 | ||
17 | #include <linux/errno.h> | |
18 | #include <linux/types.h> | |
19 | #include <linux/socket.h> | |
5a0e3ad6 | 20 | #include <linux/slab.h> |
1da177e4 | 21 | #include <linux/sockios.h> |
1da177e4 LT |
22 | #include <linux/net.h> |
23 | #include <linux/in6.h> | |
24 | #include <linux/netdevice.h> | |
25 | #include <linux/if_arp.h> | |
26 | #include <linux/icmpv6.h> | |
27 | #include <linux/netfilter.h> | |
28 | #include <linux/netfilter_ipv6.h> | |
3305b80c | 29 | #include <linux/skbuff.h> |
e2d57766 | 30 | #include <linux/compat.h> |
29778bec | 31 | #include <linux/uaccess.h> |
1da177e4 LT |
32 | #include <asm/ioctls.h> |
33 | ||
457c4cbc | 34 | #include <net/net_namespace.h> |
1da177e4 LT |
35 | #include <net/ip.h> |
36 | #include <net/sock.h> | |
37 | #include <net/snmp.h> | |
38 | ||
39 | #include <net/ipv6.h> | |
40 | #include <net/ndisc.h> | |
41 | #include <net/protocol.h> | |
42 | #include <net/ip6_route.h> | |
43 | #include <net/ip6_checksum.h> | |
44 | #include <net/addrconf.h> | |
45 | #include <net/transp_v6.h> | |
46 | #include <net/udp.h> | |
47 | #include <net/inet_common.h> | |
c752f073 | 48 | #include <net/tcp_states.h> |
07a93626 | 49 | #if IS_ENABLED(CONFIG_IPV6_MIP6) |
7be96f76 MN |
50 | #include <net/mip6.h> |
51 | #endif | |
7bc570c8 | 52 | #include <linux/mroute6.h> |
1da177e4 | 53 | |
b673e4df | 54 | #include <net/raw.h> |
1da177e4 LT |
55 | #include <net/rawv6.h> |
56 | #include <net/xfrm.h> | |
57 | ||
58 | #include <linux/proc_fs.h> | |
59 | #include <linux/seq_file.h> | |
bc3b2d7f | 60 | #include <linux/export.h> |
1da177e4 | 61 | |
d1c53c8e WA |
62 | #define ICMPV6_HDRLEN 4 /* ICMPv6 header, RFC 4443 Section 2.1 */ |
63 | ||
0daf07e5 | 64 | struct raw_hashinfo raw_v6_hashinfo; |
432490f9 | 65 | EXPORT_SYMBOL_GPL(raw_v6_hashinfo); |
1da177e4 | 66 | |
ba44f818 ED |
67 | bool raw_v6_match(struct net *net, struct sock *sk, unsigned short num, |
68 | const struct in6_addr *loc_addr, | |
69 | const struct in6_addr *rmt_addr, int dif, int sdif) | |
1da177e4 | 70 | { |
ba44f818 ED |
71 | if (inet_sk(sk)->inet_num != num || |
72 | !net_eq(sock_net(sk), net) || | |
73 | (!ipv6_addr_any(&sk->sk_v6_daddr) && | |
74 | !ipv6_addr_equal(&sk->sk_v6_daddr, rmt_addr)) || | |
75 | !raw_sk_bound_dev_eq(net, sk->sk_bound_dev_if, | |
76 | dif, sdif)) | |
77 | return false; | |
78 | ||
79 | if (ipv6_addr_any(&sk->sk_v6_rcv_saddr) || | |
80 | ipv6_addr_equal(&sk->sk_v6_rcv_saddr, loc_addr) || | |
81 | (ipv6_addr_is_multicast(loc_addr) && | |
82 | inet6_mc_check(sk, loc_addr, rmt_addr))) | |
83 | return true; | |
84 | ||
85 | return false; | |
1da177e4 | 86 | } |
ba44f818 | 87 | EXPORT_SYMBOL_GPL(raw_v6_match); |
1da177e4 LT |
88 | |
89 | /* | |
90 | * 0 - deliver | |
91 | * 1 - block | |
92 | */ | |
1b05c4b5 | 93 | static int icmpv6_filter(const struct sock *sk, const struct sk_buff *skb) |
1da177e4 | 94 | { |
9cc08af3 | 95 | struct icmp6hdr _hdr; |
1b05c4b5 | 96 | const struct icmp6hdr *hdr; |
1da177e4 | 97 | |
d1c53c8e WA |
98 | /* We require only the four bytes of the ICMPv6 header, not any |
99 | * additional bytes of message body in "struct icmp6hdr". | |
100 | */ | |
1b05c4b5 | 101 | hdr = skb_header_pointer(skb, skb_transport_offset(skb), |
d1c53c8e | 102 | ICMPV6_HDRLEN, &_hdr); |
1b05c4b5 ED |
103 | if (hdr) { |
104 | const __u32 *data = &raw6_sk(sk)->filter.data[0]; | |
105 | unsigned int type = hdr->icmp6_type; | |
1da177e4 | 106 | |
1b05c4b5 | 107 | return (data[type >> 5] & (1U << (type & 31))) != 0; |
1da177e4 | 108 | } |
1b05c4b5 | 109 | return 1; |
1da177e4 LT |
110 | } |
111 | ||
07a93626 | 112 | #if IS_ENABLED(CONFIG_IPV6_MIP6) |
f2eda47d | 113 | typedef int mh_filter_t(struct sock *sock, struct sk_buff *skb); |
59fbb3a6 | 114 | |
f2eda47d ED |
115 | static mh_filter_t __rcu *mh_filter __read_mostly; |
116 | ||
117 | int rawv6_mh_filter_register(mh_filter_t filter) | |
59fbb3a6 | 118 | { |
cf778b00 | 119 | rcu_assign_pointer(mh_filter, filter); |
59fbb3a6 MN |
120 | return 0; |
121 | } | |
122 | EXPORT_SYMBOL(rawv6_mh_filter_register); | |
123 | ||
f2eda47d | 124 | int rawv6_mh_filter_unregister(mh_filter_t filter) |
59fbb3a6 | 125 | { |
a9b3cd7f | 126 | RCU_INIT_POINTER(mh_filter, NULL); |
59fbb3a6 MN |
127 | synchronize_rcu(); |
128 | return 0; | |
129 | } | |
130 | EXPORT_SYMBOL(rawv6_mh_filter_unregister); | |
131 | ||
132 | #endif | |
133 | ||
1da177e4 LT |
134 | /* |
135 | * demultiplex raw sockets. | |
136 | * (should consider queueing the skb in the sock receive_queue | |
137 | * without calling rawv6.c) | |
138 | * | |
139 | * Caller owns SKB so we must make clones. | |
140 | */ | |
a50feda5 | 141 | static bool ipv6_raw_deliver(struct sk_buff *skb, int nexthdr) |
1da177e4 | 142 | { |
ba44f818 | 143 | struct net *net = dev_net(skb->dev); |
0daf07e5 ED |
144 | struct hlist_nulls_head *hlist; |
145 | struct hlist_nulls_node *hnode; | |
b71d1d42 ED |
146 | const struct in6_addr *saddr; |
147 | const struct in6_addr *daddr; | |
1da177e4 | 148 | struct sock *sk; |
a50feda5 | 149 | bool delivered = false; |
1da177e4 LT |
150 | __u8 hash; |
151 | ||
0660e03f | 152 | saddr = &ipv6_hdr(skb)->saddr; |
1da177e4 LT |
153 | daddr = saddr + 1; |
154 | ||
6579f5ba | 155 | hash = raw_hashfunc(net, nexthdr); |
0daf07e5 ED |
156 | hlist = &raw_v6_hashinfo.ht[hash]; |
157 | rcu_read_lock(); | |
f289c02b | 158 | sk_nulls_for_each(sk, hnode, hlist) { |
7be96f76 MN |
159 | int filtered; |
160 | ||
ba44f818 ED |
161 | if (!raw_v6_match(net, sk, nexthdr, daddr, saddr, |
162 | inet6_iif(skb), inet6_sdif(skb))) | |
163 | continue; | |
a50feda5 | 164 | delivered = true; |
7be96f76 MN |
165 | switch (nexthdr) { |
166 | case IPPROTO_ICMPV6: | |
167 | filtered = icmpv6_filter(sk, skb); | |
168 | break; | |
59fbb3a6 | 169 | |
07a93626 | 170 | #if IS_ENABLED(CONFIG_IPV6_MIP6) |
7be96f76 | 171 | case IPPROTO_MH: |
59fbb3a6 | 172 | { |
7be96f76 MN |
173 | /* XXX: To validate MH only once for each packet, |
174 | * this is placed here. It should be after checking | |
175 | * xfrm policy, however it doesn't. The checking xfrm | |
176 | * policy is placed in rawv6_rcv() because it is | |
177 | * required for each socket. | |
178 | */ | |
f2eda47d | 179 | mh_filter_t *filter; |
59fbb3a6 MN |
180 | |
181 | filter = rcu_dereference(mh_filter); | |
f2eda47d | 182 | filtered = filter ? (*filter)(sk, skb) : 0; |
7be96f76 | 183 | break; |
59fbb3a6 | 184 | } |
7be96f76 MN |
185 | #endif |
186 | default: | |
187 | filtered = 0; | |
188 | break; | |
189 | } | |
190 | ||
191 | if (filtered < 0) | |
192 | break; | |
193 | if (filtered == 0) { | |
1da177e4 LT |
194 | struct sk_buff *clone = skb_clone(skb, GFP_ATOMIC); |
195 | ||
196 | /* Not releasing hash table! */ | |
9fb9cbb1 | 197 | if (clone) { |
895b5c9f | 198 | nf_reset_ct(clone); |
1da177e4 | 199 | rawv6_rcv(sk, clone); |
9fb9cbb1 | 200 | } |
1da177e4 | 201 | } |
1da177e4 | 202 | } |
0daf07e5 | 203 | rcu_read_unlock(); |
d13964f4 | 204 | return delivered; |
1da177e4 LT |
205 | } |
206 | ||
a50feda5 | 207 | bool raw6_local_deliver(struct sk_buff *skb, int nexthdr) |
69d6da0b | 208 | { |
ba44f818 | 209 | return ipv6_raw_deliver(skb, nexthdr); |
69d6da0b PE |
210 | } |
211 | ||
1da177e4 LT |
212 | /* This cleans up af_inet6 a bit. -DaveM */ |
213 | static int rawv6_bind(struct sock *sk, struct sockaddr *uaddr, int addr_len) | |
214 | { | |
215 | struct inet_sock *inet = inet_sk(sk); | |
216 | struct ipv6_pinfo *np = inet6_sk(sk); | |
217 | struct sockaddr_in6 *addr = (struct sockaddr_in6 *) uaddr; | |
e69a4adc | 218 | __be32 v4addr = 0; |
1da177e4 LT |
219 | int addr_type; |
220 | int err; | |
221 | ||
222 | if (addr_len < SIN6_LEN_RFC2133) | |
223 | return -EINVAL; | |
82b276cd HFS |
224 | |
225 | if (addr->sin6_family != AF_INET6) | |
226 | return -EINVAL; | |
227 | ||
1da177e4 LT |
228 | addr_type = ipv6_addr_type(&addr->sin6_addr); |
229 | ||
230 | /* Raw sockets are IPv6 only */ | |
231 | if (addr_type == IPV6_ADDR_MAPPED) | |
fd5c0027 | 232 | return -EADDRNOTAVAIL; |
1da177e4 LT |
233 | |
234 | lock_sock(sk); | |
235 | ||
236 | err = -EINVAL; | |
237 | if (sk->sk_state != TCP_CLOSE) | |
238 | goto out; | |
239 | ||
fd5c0027 | 240 | rcu_read_lock(); |
1da177e4 LT |
241 | /* Check if the address belongs to the host. */ |
242 | if (addr_type != IPV6_ADDR_ANY) { | |
243 | struct net_device *dev = NULL; | |
244 | ||
842df073 | 245 | if (__ipv6_addr_needs_scope_id(addr_type)) { |
1da177e4 LT |
246 | if (addr_len >= sizeof(struct sockaddr_in6) && |
247 | addr->sin6_scope_id) { | |
248 | /* Override any existing binding, if another | |
249 | * one is supplied by user. | |
250 | */ | |
251 | sk->sk_bound_dev_if = addr->sin6_scope_id; | |
252 | } | |
1ab1457c | 253 | |
1da177e4 LT |
254 | /* Binding to link-local address requires an interface */ |
255 | if (!sk->sk_bound_dev_if) | |
fd5c0027 | 256 | goto out_unlock; |
72f7cfab | 257 | } |
1da177e4 | 258 | |
72f7cfab | 259 | if (sk->sk_bound_dev_if) { |
fd5c0027 ED |
260 | err = -ENODEV; |
261 | dev = dev_get_by_index_rcu(sock_net(sk), | |
262 | sk->sk_bound_dev_if); | |
263 | if (!dev) | |
264 | goto out_unlock; | |
1da177e4 | 265 | } |
1ab1457c | 266 | |
1da177e4 LT |
267 | /* ipv4 addr of the socket is invalid. Only the |
268 | * unspecified and mapped address have a v4 equivalent. | |
269 | */ | |
270 | v4addr = LOOPBACK4_IPV6; | |
35a256fe | 271 | if (!(addr_type & IPV6_ADDR_MULTICAST) && |
630e4576 | 272 | !ipv6_can_nonlocal_bind(sock_net(sk), inet)) { |
1da177e4 | 273 | err = -EADDRNOTAVAIL; |
3b1e0a65 | 274 | if (!ipv6_chk_addr(sock_net(sk), &addr->sin6_addr, |
bfeade08 | 275 | dev, 0)) { |
fd5c0027 | 276 | goto out_unlock; |
1da177e4 LT |
277 | } |
278 | } | |
1da177e4 LT |
279 | } |
280 | ||
c720c7e8 | 281 | inet->inet_rcv_saddr = inet->inet_saddr = v4addr; |
efe4208f | 282 | sk->sk_v6_rcv_saddr = addr->sin6_addr; |
1da177e4 | 283 | if (!(addr_type & IPV6_ADDR_MULTICAST)) |
4e3fd7a0 | 284 | np->saddr = addr->sin6_addr; |
1da177e4 | 285 | err = 0; |
fd5c0027 ED |
286 | out_unlock: |
287 | rcu_read_unlock(); | |
1da177e4 LT |
288 | out: |
289 | release_sock(sk); | |
290 | return err; | |
291 | } | |
292 | ||
69d6da0b | 293 | static void rawv6_err(struct sock *sk, struct sk_buff *skb, |
1da177e4 | 294 | struct inet6_skb_parm *opt, |
d5fdd6ba | 295 | u8 type, u8 code, int offset, __be32 info) |
1da177e4 LT |
296 | { |
297 | struct inet_sock *inet = inet_sk(sk); | |
298 | struct ipv6_pinfo *np = inet6_sk(sk); | |
299 | int err; | |
300 | int harderr; | |
301 | ||
302 | /* Report error on raw socket, if: | |
303 | 1. User requested recverr. | |
304 | 2. Socket is connected (otherwise the error indication | |
305 | is useless without recverr and error is hard. | |
306 | */ | |
307 | if (!np->recverr && sk->sk_state != TCP_ESTABLISHED) | |
308 | return; | |
309 | ||
310 | harderr = icmpv6_err_convert(type, code, &err); | |
81aded24 DM |
311 | if (type == ICMPV6_PKT_TOOBIG) { |
312 | ip6_sk_update_pmtu(skb, sk, info); | |
1da177e4 | 313 | harderr = (np->pmtudisc == IPV6_PMTUDISC_DO); |
81aded24 | 314 | } |
8d65b119 | 315 | if (type == NDISC_REDIRECT) { |
ec18d9a2 | 316 | ip6_sk_redirect(skb, sk); |
8d65b119 DJ |
317 | return; |
318 | } | |
1da177e4 LT |
319 | if (np->recverr) { |
320 | u8 *payload = skb->data; | |
321 | if (!inet->hdrincl) | |
322 | payload += offset; | |
323 | ipv6_icmp_error(sk, skb, err, 0, ntohl(info), payload); | |
324 | } | |
325 | ||
326 | if (np->recverr || harderr) { | |
327 | sk->sk_err = err; | |
e3ae2365 | 328 | sk_error_report(sk); |
1da177e4 LT |
329 | } |
330 | } | |
331 | ||
69d6da0b | 332 | void raw6_icmp_error(struct sk_buff *skb, int nexthdr, |
d5fdd6ba | 333 | u8 type, u8 code, int inner_offset, __be32 info) |
69d6da0b | 334 | { |
ba44f818 | 335 | struct net *net = dev_net(skb->dev); |
0daf07e5 ED |
336 | struct hlist_nulls_head *hlist; |
337 | struct hlist_nulls_node *hnode; | |
69d6da0b PE |
338 | struct sock *sk; |
339 | int hash; | |
69d6da0b | 340 | |
6579f5ba | 341 | hash = raw_hashfunc(net, nexthdr); |
0daf07e5 ED |
342 | hlist = &raw_v6_hashinfo.ht[hash]; |
343 | rcu_read_lock(); | |
f289c02b | 344 | sk_nulls_for_each(sk, hnode, hlist) { |
05f175cd | 345 | /* Note: ipv6_hdr(skb) != skb->data */ |
b71d1d42 | 346 | const struct ipv6hdr *ip6h = (const struct ipv6hdr *)skb->data; |
69d6da0b | 347 | |
ba44f818 ED |
348 | if (!raw_v6_match(net, sk, nexthdr, &ip6h->saddr, &ip6h->daddr, |
349 | inet6_iif(skb), inet6_iif(skb))) | |
350 | continue; | |
351 | rawv6_err(sk, skb, NULL, type, code, inner_offset, info); | |
69d6da0b | 352 | } |
0daf07e5 | 353 | rcu_read_unlock(); |
69d6da0b PE |
354 | } |
355 | ||
33d480ce | 356 | static inline int rawv6_rcv_skb(struct sock *sk, struct sk_buff *skb) |
1da177e4 | 357 | { |
8d8ebd77 ED |
358 | enum skb_drop_reason reason; |
359 | ||
33d480ce | 360 | if ((raw6_sk(sk)->checksum || rcu_access_pointer(sk->sk_filter)) && |
fb286bb2 | 361 | skb_checksum_complete(skb)) { |
a92aa318 | 362 | atomic_inc(&sk->sk_drops); |
8d8ebd77 | 363 | kfree_skb_reason(skb, SKB_DROP_REASON_SKB_CSUM); |
3cc76caa | 364 | return NET_RX_DROP; |
1da177e4 LT |
365 | } |
366 | ||
367 | /* Charge it to the socket. */ | |
d826eb14 | 368 | skb_dst_drop(skb); |
8d8ebd77 ED |
369 | if (sock_queue_rcv_skb_reason(sk, skb, &reason) < 0) { |
370 | kfree_skb_reason(skb, reason); | |
3cc76caa | 371 | return NET_RX_DROP; |
1da177e4 LT |
372 | } |
373 | ||
374 | return 0; | |
375 | } | |
376 | ||
377 | /* | |
1ab1457c | 378 | * This is next to useless... |
1da177e4 | 379 | * if we demultiplex in network layer we don't need the extra call |
1ab1457c YH |
380 | * just to queue the skb... |
381 | * maybe we could have the network decide upon a hint if it | |
1da177e4 LT |
382 | * should call raw_rcv for demultiplexing |
383 | */ | |
384 | int rawv6_rcv(struct sock *sk, struct sk_buff *skb) | |
385 | { | |
386 | struct inet_sock *inet = inet_sk(sk); | |
387 | struct raw6_sock *rp = raw6_sk(sk); | |
388 | ||
1ab1457c | 389 | if (!xfrm6_policy_check(sk, XFRM_POLICY_IN, skb)) { |
a92aa318 | 390 | atomic_inc(&sk->sk_drops); |
8d8ebd77 | 391 | kfree_skb_reason(skb, SKB_DROP_REASON_XFRM_POLICY); |
1ab1457c YH |
392 | return NET_RX_DROP; |
393 | } | |
1da177e4 LT |
394 | |
395 | if (!rp->checksum) | |
396 | skb->ip_summed = CHECKSUM_UNNECESSARY; | |
397 | ||
84fa7933 | 398 | if (skb->ip_summed == CHECKSUM_COMPLETE) { |
d56f90a7 | 399 | skb_postpull_rcsum(skb, skb_network_header(skb), |
cfe1fc77 | 400 | skb_network_header_len(skb)); |
0660e03f ACM |
401 | if (!csum_ipv6_magic(&ipv6_hdr(skb)->saddr, |
402 | &ipv6_hdr(skb)->daddr, | |
c720c7e8 | 403 | skb->len, inet->inet_num, skb->csum)) |
1da177e4 | 404 | skb->ip_summed = CHECKSUM_UNNECESSARY; |
1da177e4 | 405 | } |
60476372 | 406 | if (!skb_csum_unnecessary(skb)) |
0660e03f ACM |
407 | skb->csum = ~csum_unfold(csum_ipv6_magic(&ipv6_hdr(skb)->saddr, |
408 | &ipv6_hdr(skb)->daddr, | |
409 | skb->len, | |
c720c7e8 | 410 | inet->inet_num, 0)); |
1da177e4 LT |
411 | |
412 | if (inet->hdrincl) { | |
fb286bb2 | 413 | if (skb_checksum_complete(skb)) { |
a92aa318 | 414 | atomic_inc(&sk->sk_drops); |
8d8ebd77 | 415 | kfree_skb_reason(skb, SKB_DROP_REASON_SKB_CSUM); |
3cc76caa | 416 | return NET_RX_DROP; |
1da177e4 | 417 | } |
1da177e4 LT |
418 | } |
419 | ||
420 | rawv6_rcv_skb(sk, skb); | |
421 | return 0; | |
422 | } | |
423 | ||
424 | ||
425 | /* | |
426 | * This should be easy, if there is something there | |
427 | * we return it, otherwise we block. | |
428 | */ | |
429 | ||
1b784140 | 430 | static int rawv6_recvmsg(struct sock *sk, struct msghdr *msg, size_t len, |
ec095263 | 431 | int flags, int *addr_len) |
1da177e4 LT |
432 | { |
433 | struct ipv6_pinfo *np = inet6_sk(sk); | |
342dfc30 | 434 | DECLARE_SOCKADDR(struct sockaddr_in6 *, sin6, msg->msg_name); |
1da177e4 LT |
435 | struct sk_buff *skb; |
436 | size_t copied; | |
437 | int err; | |
438 | ||
439 | if (flags & MSG_OOB) | |
440 | return -EOPNOTSUPP; | |
1ab1457c | 441 | |
1da177e4 | 442 | if (flags & MSG_ERRQUEUE) |
85fbaa75 | 443 | return ipv6_recv_error(sk, msg, len, addr_len); |
1da177e4 | 444 | |
4b340ae2 | 445 | if (np->rxpmtu && np->rxopt.bits.rxpmtu) |
85fbaa75 | 446 | return ipv6_recv_rxpmtu(sk, msg, len, addr_len); |
4b340ae2 | 447 | |
f4b41f06 | 448 | skb = skb_recv_datagram(sk, flags, &err); |
1da177e4 LT |
449 | if (!skb) |
450 | goto out; | |
451 | ||
452 | copied = skb->len; | |
1ab1457c YH |
453 | if (copied > len) { |
454 | copied = len; | |
455 | msg->msg_flags |= MSG_TRUNC; | |
456 | } | |
1da177e4 | 457 | |
60476372 | 458 | if (skb_csum_unnecessary(skb)) { |
51f3d02b | 459 | err = skb_copy_datagram_msg(skb, 0, msg, copied); |
1da177e4 | 460 | } else if (msg->msg_flags&MSG_TRUNC) { |
fb286bb2 | 461 | if (__skb_checksum_complete(skb)) |
1da177e4 | 462 | goto csum_copy_err; |
51f3d02b | 463 | err = skb_copy_datagram_msg(skb, 0, msg, copied); |
1da177e4 | 464 | } else { |
227158db | 465 | err = skb_copy_and_csum_datagram_msg(skb, 0, msg); |
1da177e4 LT |
466 | if (err == -EINVAL) |
467 | goto csum_copy_err; | |
468 | } | |
469 | if (err) | |
470 | goto out_free; | |
471 | ||
472 | /* Copy the address. */ | |
473 | if (sin6) { | |
474 | sin6->sin6_family = AF_INET6; | |
f59fc7f3 | 475 | sin6->sin6_port = 0; |
4e3fd7a0 | 476 | sin6->sin6_addr = ipv6_hdr(skb)->saddr; |
1da177e4 | 477 | sin6->sin6_flowinfo = 0; |
842df073 | 478 | sin6->sin6_scope_id = ipv6_iface_scope_id(&sin6->sin6_addr, |
4330487a | 479 | inet6_iif(skb)); |
bceaa902 | 480 | *addr_len = sizeof(*sin6); |
1da177e4 LT |
481 | } |
482 | ||
6fd1d51c | 483 | sock_recv_cmsgs(msg, sk, skb); |
1da177e4 LT |
484 | |
485 | if (np->rxopt.all) | |
73df66f8 | 486 | ip6_datagram_recv_ctl(sk, msg, skb); |
1da177e4 LT |
487 | |
488 | err = copied; | |
489 | if (flags & MSG_TRUNC) | |
490 | err = skb->len; | |
491 | ||
492 | out_free: | |
493 | skb_free_datagram(sk, skb); | |
494 | out: | |
495 | return err; | |
496 | ||
497 | csum_copy_err: | |
3305b80c | 498 | skb_kill_datagram(sk, skb, flags); |
1da177e4 LT |
499 | |
500 | /* Error for blocking case is chosen to masquerade | |
501 | as some normal condition. | |
502 | */ | |
503 | err = (flags&MSG_DONTWAIT) ? -EAGAIN : -EHOSTUNREACH; | |
3305b80c | 504 | goto out; |
1da177e4 LT |
505 | } |
506 | ||
4c9483b2 | 507 | static int rawv6_push_pending_frames(struct sock *sk, struct flowi6 *fl6, |
357b40a1 | 508 | struct raw6_sock *rp) |
1da177e4 | 509 | { |
cb3e9864 | 510 | struct ipv6_txoptions *opt; |
1da177e4 LT |
511 | struct sk_buff *skb; |
512 | int err = 0; | |
357b40a1 HX |
513 | int offset; |
514 | int len; | |
679a8738 | 515 | int total_len; |
868c86bc AV |
516 | __wsum tmp_csum; |
517 | __sum16 csum; | |
1da177e4 LT |
518 | |
519 | if (!rp->checksum) | |
520 | goto send; | |
521 | ||
43728fa5 FF |
522 | skb = skb_peek(&sk->sk_write_queue); |
523 | if (!skb) | |
1da177e4 LT |
524 | goto out; |
525 | ||
357b40a1 | 526 | offset = rp->offset; |
299b0767 | 527 | total_len = inet_sk(sk)->cork.base.length; |
cb3e9864 HX |
528 | opt = inet6_sk(sk)->cork.opt; |
529 | total_len -= opt ? opt->opt_flen : 0; | |
530 | ||
679a8738 | 531 | if (offset >= total_len - 1) { |
1da177e4 | 532 | err = -EINVAL; |
357b40a1 | 533 | ip6_flush_pending_frames(sk); |
1da177e4 LT |
534 | goto out; |
535 | } | |
536 | ||
537 | /* should be check HW csum miyazawa */ | |
538 | if (skb_queue_len(&sk->sk_write_queue) == 1) { | |
539 | /* | |
540 | * Only one fragment on the socket. | |
541 | */ | |
542 | tmp_csum = skb->csum; | |
543 | } else { | |
357b40a1 | 544 | struct sk_buff *csum_skb = NULL; |
1da177e4 LT |
545 | tmp_csum = 0; |
546 | ||
547 | skb_queue_walk(&sk->sk_write_queue, skb) { | |
548 | tmp_csum = csum_add(tmp_csum, skb->csum); | |
357b40a1 HX |
549 | |
550 | if (csum_skb) | |
551 | continue; | |
552 | ||
ea2ae17d | 553 | len = skb->len - skb_transport_offset(skb); |
357b40a1 HX |
554 | if (offset >= len) { |
555 | offset -= len; | |
556 | continue; | |
557 | } | |
558 | ||
559 | csum_skb = skb; | |
1da177e4 | 560 | } |
357b40a1 HX |
561 | |
562 | skb = csum_skb; | |
1da177e4 LT |
563 | } |
564 | ||
ea2ae17d | 565 | offset += skb_transport_offset(skb); |
a98f9175 DJ |
566 | err = skb_copy_bits(skb, offset, &csum, 2); |
567 | if (err < 0) { | |
568 | ip6_flush_pending_frames(sk); | |
569 | goto out; | |
570 | } | |
357b40a1 | 571 | |
1da177e4 | 572 | /* in case cksum was not initialized */ |
357b40a1 | 573 | if (unlikely(csum)) |
5f92a738 | 574 | tmp_csum = csum_sub(tmp_csum, csum_unfold(csum)); |
357b40a1 | 575 | |
4c9483b2 DM |
576 | csum = csum_ipv6_magic(&fl6->saddr, &fl6->daddr, |
577 | total_len, fl6->flowi6_proto, tmp_csum); | |
357b40a1 | 578 | |
4c9483b2 | 579 | if (csum == 0 && fl6->flowi6_proto == IPPROTO_UDP) |
f6ab0288 | 580 | csum = CSUM_MANGLED_0; |
1da177e4 | 581 | |
8242fc33 | 582 | BUG_ON(skb_store_bits(skb, offset, &csum, 2)); |
1da177e4 | 583 | |
1da177e4 LT |
584 | send: |
585 | err = ip6_push_pending_frames(sk); | |
586 | out: | |
587 | return err; | |
588 | } | |
589 | ||
c3c1a7db | 590 | static int rawv6_send_hdrinc(struct sock *sk, struct msghdr *msg, int length, |
4c9483b2 | 591 | struct flowi6 *fl6, struct dst_entry **dstp, |
a818f75e | 592 | unsigned int flags, const struct sockcm_cookie *sockc) |
1da177e4 | 593 | { |
3320da89 | 594 | struct ipv6_pinfo *np = inet6_sk(sk); |
adb28c9d | 595 | struct net *net = sock_net(sk); |
1da177e4 LT |
596 | struct ipv6hdr *iph; |
597 | struct sk_buff *skb; | |
1da177e4 | 598 | int err; |
1789a640 | 599 | struct rt6_info *rt = (struct rt6_info *)*dstp; |
a7ae1992 HX |
600 | int hlen = LL_RESERVED_SPACE(rt->dst.dev); |
601 | int tlen = rt->dst.dev->needed_tailroom; | |
1da177e4 | 602 | |
d8d1f30b | 603 | if (length > rt->dst.dev->mtu) { |
4c9483b2 | 604 | ipv6_local_error(sk, EMSGSIZE, fl6, rt->dst.dev->mtu); |
1da177e4 LT |
605 | return -EMSGSIZE; |
606 | } | |
86f4c90a AP |
607 | if (length < sizeof(struct ipv6hdr)) |
608 | return -EINVAL; | |
1da177e4 LT |
609 | if (flags&MSG_PROBE) |
610 | goto out; | |
611 | ||
f5184d26 | 612 | skb = sock_alloc_send_skb(sk, |
a7ae1992 | 613 | length + hlen + tlen + 15, |
f5184d26 | 614 | flags & MSG_DONTWAIT, &err); |
63159f29 | 615 | if (!skb) |
1ab1457c | 616 | goto error; |
a7ae1992 | 617 | skb_reserve(skb, hlen); |
1da177e4 | 618 | |
9c9c9ad5 | 619 | skb->protocol = htons(ETH_P_IPV6); |
1da177e4 | 620 | skb->priority = sk->sk_priority; |
c6af0c22 | 621 | skb->mark = sockc->mark; |
a818f75e | 622 | skb->tstamp = sockc->transmit_time; |
1da177e4 | 623 | |
1ced98e8 ACM |
624 | skb_put(skb, length); |
625 | skb_reset_network_header(skb); | |
0660e03f | 626 | iph = ipv6_hdr(skb); |
1da177e4 LT |
627 | |
628 | skb->ip_summed = CHECKSUM_NONE; | |
629 | ||
8f932f76 | 630 | skb_setup_tx_timestamp(skb, sockc->tsflags); |
fbfb2321 | 631 | |
0dec879f JA |
632 | if (flags & MSG_CONFIRM) |
633 | skb_set_dst_pending_confirm(skb, 1); | |
634 | ||
b0e380b1 | 635 | skb->transport_header = skb->network_header; |
21226abb | 636 | err = memcpy_from_msg(iph, msg, length); |
a688caa3 WW |
637 | if (err) { |
638 | err = -EFAULT; | |
639 | kfree_skb(skb); | |
640 | goto error; | |
641 | } | |
642 | ||
643 | skb_dst_set(skb, &rt->dst); | |
644 | *dstp = NULL; | |
1da177e4 | 645 | |
a8e3e1a9 DA |
646 | /* if egress device is enslaved to an L3 master device pass the |
647 | * skb to its handler for processing | |
648 | */ | |
649 | skb = l3mdev_ip6_out(sk, skb); | |
650 | if (unlikely(!skb)) | |
651 | return 0; | |
652 | ||
a688caa3 WW |
653 | /* Acquire rcu_read_lock() in case we need to use rt->rt6i_idev |
654 | * in the error path. Since skb has been freed, the dst could | |
655 | * have been queued for deletion. | |
656 | */ | |
657 | rcu_read_lock(); | |
adb28c9d | 658 | IP6_UPD_PO_STATS(net, rt->rt6i_idev, IPSTATS_MIB_OUT, skb->len); |
29a26a56 | 659 | err = NF_HOOK(NFPROTO_IPV6, NF_INET_LOCAL_OUT, net, sk, skb, |
13206b6b | 660 | NULL, rt->dst.dev, dst_output); |
1da177e4 | 661 | if (err > 0) |
6ce9e7b5 | 662 | err = net_xmit_errno(err); |
a688caa3 WW |
663 | if (err) { |
664 | IP6_INC_STATS(net, rt->rt6i_idev, IPSTATS_MIB_OUTDISCARDS); | |
665 | rcu_read_unlock(); | |
666 | goto error_check; | |
667 | } | |
668 | rcu_read_unlock(); | |
1da177e4 LT |
669 | out: |
670 | return 0; | |
671 | ||
1da177e4 | 672 | error: |
adb28c9d | 673 | IP6_INC_STATS(net, rt->rt6i_idev, IPSTATS_MIB_OUTDISCARDS); |
a688caa3 | 674 | error_check: |
6ce9e7b5 ED |
675 | if (err == -ENOBUFS && !np->recverr) |
676 | err = 0; | |
1ab1457c | 677 | return err; |
1da177e4 LT |
678 | } |
679 | ||
19e3c66b AV |
680 | struct raw6_frag_vec { |
681 | struct msghdr *msg; | |
682 | int hlen; | |
683 | char c[4]; | |
684 | }; | |
685 | ||
686 | static int rawv6_probe_proto_opt(struct raw6_frag_vec *rfv, struct flowi6 *fl6) | |
1da177e4 | 687 | { |
19e3c66b AV |
688 | int err = 0; |
689 | switch (fl6->flowi6_proto) { | |
690 | case IPPROTO_ICMPV6: | |
691 | rfv->hlen = 2; | |
692 | err = memcpy_from_msg(rfv->c, rfv->msg, rfv->hlen); | |
693 | if (!err) { | |
694 | fl6->fl6_icmp_type = rfv->c[0]; | |
695 | fl6->fl6_icmp_code = rfv->c[1]; | |
696 | } | |
697 | break; | |
698 | case IPPROTO_MH: | |
699 | rfv->hlen = 4; | |
700 | err = memcpy_from_msg(rfv->c, rfv->msg, rfv->hlen); | |
701 | if (!err) | |
702 | fl6->fl6_mh_type = rfv->c[2]; | |
703 | } | |
704 | return err; | |
705 | } | |
1da177e4 | 706 | |
19e3c66b AV |
707 | static int raw6_getfrag(void *from, char *to, int offset, int len, int odd, |
708 | struct sk_buff *skb) | |
709 | { | |
710 | struct raw6_frag_vec *rfv = from; | |
711 | ||
712 | if (offset < rfv->hlen) { | |
713 | int copy = min(rfv->hlen - offset, len); | |
714 | ||
715 | if (skb->ip_summed == CHECKSUM_PARTIAL) | |
716 | memcpy(to, rfv->c + offset, copy); | |
717 | else | |
718 | skb->csum = csum_block_add( | |
719 | skb->csum, | |
720 | csum_partial_copy_nocheck(rfv->c + offset, | |
cc44c17b | 721 | to, copy), |
19e3c66b AV |
722 | odd); |
723 | ||
724 | odd = 0; | |
725 | offset += copy; | |
726 | to += copy; | |
727 | len -= copy; | |
728 | ||
729 | if (!len) | |
730 | return 0; | |
731 | } | |
1da177e4 | 732 | |
19e3c66b | 733 | offset -= rfv->hlen; |
6e8f4d48 | 734 | |
f69e6d13 | 735 | return ip_generic_getfrag(rfv->msg, to, offset, len, odd, skb); |
1da177e4 LT |
736 | } |
737 | ||
1b784140 | 738 | static int rawv6_sendmsg(struct sock *sk, struct msghdr *msg, size_t len) |
1da177e4 | 739 | { |
45f6fad8 | 740 | struct ipv6_txoptions *opt_to_free = NULL; |
1da177e4 | 741 | struct ipv6_txoptions opt_space; |
342dfc30 | 742 | DECLARE_SOCKADDR(struct sockaddr_in6 *, sin6, msg->msg_name); |
20c59de2 | 743 | struct in6_addr *daddr, *final_p, final; |
1da177e4 LT |
744 | struct inet_sock *inet = inet_sk(sk); |
745 | struct ipv6_pinfo *np = inet6_sk(sk); | |
746 | struct raw6_sock *rp = raw6_sk(sk); | |
747 | struct ipv6_txoptions *opt = NULL; | |
748 | struct ip6_flowlabel *flowlabel = NULL; | |
749 | struct dst_entry *dst = NULL; | |
19e3c66b | 750 | struct raw6_frag_vec rfv; |
4c9483b2 | 751 | struct flowi6 fl6; |
26879da5 | 752 | struct ipcm6_cookie ipc6; |
1da177e4 | 753 | int addr_len = msg->msg_namelen; |
59e3e4b5 | 754 | int hdrincl; |
1da177e4 LT |
755 | u16 proto; |
756 | int err; | |
757 | ||
758 | /* Rough check on arithmetic overflow, | |
b59e139b | 759 | better check is made in ip6_append_data(). |
1da177e4 | 760 | */ |
b59e139b | 761 | if (len > INT_MAX) |
1da177e4 LT |
762 | return -EMSGSIZE; |
763 | ||
764 | /* Mirror BSD error message compatibility */ | |
1ab1457c | 765 | if (msg->msg_flags & MSG_OOB) |
1da177e4 LT |
766 | return -EOPNOTSUPP; |
767 | ||
59e3e4b5 OM |
768 | /* hdrincl should be READ_ONCE(inet->hdrincl) |
769 | * but READ_ONCE() doesn't work with bit fields. | |
770 | * Doing this indirectly yields the same result. | |
771 | */ | |
772 | hdrincl = inet->hdrincl; | |
773 | hdrincl = READ_ONCE(hdrincl); | |
774 | ||
1da177e4 | 775 | /* |
1ab1457c | 776 | * Get and verify the address. |
1da177e4 | 777 | */ |
4c9483b2 | 778 | memset(&fl6, 0, sizeof(fl6)); |
1da177e4 | 779 | |
4c9483b2 | 780 | fl6.flowi6_mark = sk->sk_mark; |
e2d118a1 | 781 | fl6.flowi6_uid = sk->sk_uid; |
4a19ec58 | 782 | |
b515430a | 783 | ipcm6_init(&ipc6); |
5fdaa88d | 784 | ipc6.sockc.tsflags = sk->sk_tsflags; |
c6af0c22 | 785 | ipc6.sockc.mark = sk->sk_mark; |
26879da5 | 786 | |
1da177e4 | 787 | if (sin6) { |
1ab1457c | 788 | if (addr_len < SIN6_LEN_RFC2133) |
1da177e4 LT |
789 | return -EINVAL; |
790 | ||
1ab1457c | 791 | if (sin6->sin6_family && sin6->sin6_family != AF_INET6) |
a02cec21 | 792 | return -EAFNOSUPPORT; |
1da177e4 LT |
793 | |
794 | /* port is the proto value [0..255] carried in nexthdr */ | |
795 | proto = ntohs(sin6->sin6_port); | |
796 | ||
797 | if (!proto) | |
c720c7e8 ED |
798 | proto = inet->inet_num; |
799 | else if (proto != inet->inet_num) | |
a02cec21 | 800 | return -EINVAL; |
1da177e4 LT |
801 | |
802 | if (proto > 255) | |
a02cec21 | 803 | return -EINVAL; |
1da177e4 LT |
804 | |
805 | daddr = &sin6->sin6_addr; | |
806 | if (np->sndflow) { | |
4c9483b2 DM |
807 | fl6.flowlabel = sin6->sin6_flowinfo&IPV6_FLOWINFO_MASK; |
808 | if (fl6.flowlabel&IPV6_FLOWLABEL_MASK) { | |
809 | flowlabel = fl6_sock_lookup(sk, fl6.flowlabel); | |
59c820b2 | 810 | if (IS_ERR(flowlabel)) |
1da177e4 | 811 | return -EINVAL; |
1da177e4 LT |
812 | } |
813 | } | |
814 | ||
815 | /* | |
816 | * Otherwise it will be difficult to maintain | |
817 | * sk->sk_dst_cache. | |
818 | */ | |
819 | if (sk->sk_state == TCP_ESTABLISHED && | |
efe4208f ED |
820 | ipv6_addr_equal(daddr, &sk->sk_v6_daddr)) |
821 | daddr = &sk->sk_v6_daddr; | |
1da177e4 LT |
822 | |
823 | if (addr_len >= sizeof(struct sockaddr_in6) && | |
824 | sin6->sin6_scope_id && | |
842df073 | 825 | __ipv6_addr_needs_scope_id(__ipv6_addr_type(daddr))) |
4c9483b2 | 826 | fl6.flowi6_oif = sin6->sin6_scope_id; |
1da177e4 | 827 | } else { |
1ab1457c | 828 | if (sk->sk_state != TCP_ESTABLISHED) |
1da177e4 | 829 | return -EDESTADDRREQ; |
1ab1457c | 830 | |
c720c7e8 | 831 | proto = inet->inet_num; |
efe4208f | 832 | daddr = &sk->sk_v6_daddr; |
4c9483b2 | 833 | fl6.flowlabel = np->flow_label; |
1da177e4 LT |
834 | } |
835 | ||
4c9483b2 DM |
836 | if (fl6.flowi6_oif == 0) |
837 | fl6.flowi6_oif = sk->sk_bound_dev_if; | |
1da177e4 LT |
838 | |
839 | if (msg->msg_controllen) { | |
840 | opt = &opt_space; | |
841 | memset(opt, 0, sizeof(struct ipv6_txoptions)); | |
842 | opt->tot_len = sizeof(struct ipv6_txoptions); | |
26879da5 | 843 | ipc6.opt = opt; |
1da177e4 | 844 | |
5fdaa88d | 845 | err = ip6_datagram_send_ctl(sock_net(sk), sk, msg, &fl6, &ipc6); |
1da177e4 LT |
846 | if (err < 0) { |
847 | fl6_sock_release(flowlabel); | |
848 | return err; | |
849 | } | |
4c9483b2 DM |
850 | if ((fl6.flowlabel&IPV6_FLOWLABEL_MASK) && !flowlabel) { |
851 | flowlabel = fl6_sock_lookup(sk, fl6.flowlabel); | |
59c820b2 | 852 | if (IS_ERR(flowlabel)) |
1da177e4 LT |
853 | return -EINVAL; |
854 | } | |
855 | if (!(opt->opt_nflen|opt->opt_flen)) | |
856 | opt = NULL; | |
857 | } | |
45f6fad8 ED |
858 | if (!opt) { |
859 | opt = txopt_get(np); | |
860 | opt_to_free = opt; | |
26879da5 | 861 | } |
df9890c3 YH |
862 | if (flowlabel) |
863 | opt = fl6_merge_options(&opt_space, flowlabel, opt); | |
864 | opt = ipv6_fixup_options(&opt_space, opt); | |
1da177e4 | 865 | |
4c9483b2 | 866 | fl6.flowi6_proto = proto; |
c6af0c22 | 867 | fl6.flowi6_mark = ipc6.sockc.mark; |
b9aa52c4 OM |
868 | |
869 | if (!hdrincl) { | |
870 | rfv.msg = msg; | |
871 | rfv.hlen = 0; | |
872 | err = rawv6_probe_proto_opt(&rfv, &fl6); | |
873 | if (err) | |
874 | goto out; | |
875 | } | |
1ab1457c | 876 | |
876c7f41 | 877 | if (!ipv6_addr_any(daddr)) |
4e3fd7a0 | 878 | fl6.daddr = *daddr; |
876c7f41 | 879 | else |
4c9483b2 DM |
880 | fl6.daddr.s6_addr[15] = 0x1; /* :: means loopback (BSD'ism) */ |
881 | if (ipv6_addr_any(&fl6.saddr) && !ipv6_addr_any(&np->saddr)) | |
4e3fd7a0 | 882 | fl6.saddr = np->saddr; |
1da177e4 | 883 | |
4c9483b2 | 884 | final_p = fl6_update_dst(&fl6, opt, &final); |
1da177e4 | 885 | |
4c9483b2 DM |
886 | if (!fl6.flowi6_oif && ipv6_addr_is_multicast(&fl6.daddr)) |
887 | fl6.flowi6_oif = np->mcast_oif; | |
c4062dfc EH |
888 | else if (!fl6.flowi6_oif) |
889 | fl6.flowi6_oif = np->ucast_oif; | |
3df98d79 | 890 | security_sk_classify_flow(sk, flowi6_to_flowi_common(&fl6)); |
1da177e4 | 891 | |
59e3e4b5 | 892 | if (hdrincl) |
48e8aa6e MKL |
893 | fl6.flowi6_flags |= FLOWI_FLAG_KNOWN_NH; |
894 | ||
38b7097b HFS |
895 | if (ipc6.tclass < 0) |
896 | ipc6.tclass = np->tclass; | |
897 | ||
898 | fl6.flowlabel = ip6_make_flowinfo(ipc6.tclass, fl6.flowlabel); | |
899 | ||
c4e85f73 | 900 | dst = ip6_dst_lookup_flow(sock_net(sk), sk, &fl6, final_p); |
68d0c6d3 DM |
901 | if (IS_ERR(dst)) { |
902 | err = PTR_ERR(dst); | |
1da177e4 | 903 | goto out; |
14e50e57 | 904 | } |
26879da5 WW |
905 | if (ipc6.hlimit < 0) |
906 | ipc6.hlimit = ip6_sk_dst_hoplimit(np, &fl6, dst); | |
1da177e4 | 907 | |
26879da5 WW |
908 | if (ipc6.dontfrag < 0) |
909 | ipc6.dontfrag = np->dontfrag; | |
13b52cd4 | 910 | |
1da177e4 LT |
911 | if (msg->msg_flags&MSG_CONFIRM) |
912 | goto do_confirm; | |
913 | ||
914 | back_from_confirm: | |
59e3e4b5 | 915 | if (hdrincl) |
a818f75e | 916 | err = rawv6_send_hdrinc(sk, msg, len, &fl6, &dst, |
5fdaa88d | 917 | msg->msg_flags, &ipc6.sockc); |
1789a640 | 918 | else { |
26879da5 | 919 | ipc6.opt = opt; |
1da177e4 | 920 | lock_sock(sk); |
19e3c66b | 921 | err = ip6_append_data(sk, raw6_getfrag, &rfv, |
26879da5 | 922 | len, 0, &ipc6, &fl6, (struct rt6_info *)dst, |
5fdaa88d | 923 | msg->msg_flags); |
1da177e4 LT |
924 | |
925 | if (err) | |
926 | ip6_flush_pending_frames(sk); | |
927 | else if (!(msg->msg_flags & MSG_MORE)) | |
4c9483b2 | 928 | err = rawv6_push_pending_frames(sk, &fl6, rp); |
3ef9d943 | 929 | release_sock(sk); |
1da177e4 LT |
930 | } |
931 | done: | |
6d3e85ec | 932 | dst_release(dst); |
1ab1457c | 933 | out: |
1da177e4 | 934 | fl6_sock_release(flowlabel); |
45f6fad8 | 935 | txopt_put(opt_to_free); |
67ba4152 | 936 | return err < 0 ? err : len; |
1da177e4 | 937 | do_confirm: |
0dec879f JA |
938 | if (msg->msg_flags & MSG_PROBE) |
939 | dst_confirm_neigh(dst, &fl6.daddr); | |
1da177e4 LT |
940 | if (!(msg->msg_flags & MSG_PROBE) || len) |
941 | goto back_from_confirm; | |
942 | err = 0; | |
943 | goto done; | |
944 | } | |
945 | ||
1ab1457c | 946 | static int rawv6_seticmpfilter(struct sock *sk, int level, int optname, |
a7b75c5a | 947 | sockptr_t optval, int optlen) |
1da177e4 LT |
948 | { |
949 | switch (optname) { | |
950 | case ICMPV6_FILTER: | |
951 | if (optlen > sizeof(struct icmp6_filter)) | |
952 | optlen = sizeof(struct icmp6_filter); | |
a7b75c5a | 953 | if (copy_from_sockptr(&raw6_sk(sk)->filter, optval, optlen)) |
1da177e4 LT |
954 | return -EFAULT; |
955 | return 0; | |
956 | default: | |
957 | return -ENOPROTOOPT; | |
3ff50b79 | 958 | } |
1da177e4 LT |
959 | |
960 | return 0; | |
961 | } | |
962 | ||
1ab1457c | 963 | static int rawv6_geticmpfilter(struct sock *sk, int level, int optname, |
1da177e4 LT |
964 | char __user *optval, int __user *optlen) |
965 | { | |
966 | int len; | |
967 | ||
968 | switch (optname) { | |
969 | case ICMPV6_FILTER: | |
970 | if (get_user(len, optlen)) | |
971 | return -EFAULT; | |
972 | if (len < 0) | |
973 | return -EINVAL; | |
974 | if (len > sizeof(struct icmp6_filter)) | |
975 | len = sizeof(struct icmp6_filter); | |
976 | if (put_user(len, optlen)) | |
977 | return -EFAULT; | |
978 | if (copy_to_user(optval, &raw6_sk(sk)->filter, len)) | |
979 | return -EFAULT; | |
980 | return 0; | |
981 | default: | |
982 | return -ENOPROTOOPT; | |
3ff50b79 | 983 | } |
1da177e4 LT |
984 | |
985 | return 0; | |
986 | } | |
987 | ||
988 | ||
3fdadf7d | 989 | static int do_rawv6_setsockopt(struct sock *sk, int level, int optname, |
a7b75c5a | 990 | sockptr_t optval, unsigned int optlen) |
1da177e4 LT |
991 | { |
992 | struct raw6_sock *rp = raw6_sk(sk); | |
993 | int val; | |
994 | ||
fb7bc920 TD |
995 | if (optlen < sizeof(val)) |
996 | return -EINVAL; | |
997 | ||
a7b75c5a | 998 | if (copy_from_sockptr(&val, optval, sizeof(val))) |
1da177e4 LT |
999 | return -EFAULT; |
1000 | ||
1001 | switch (optname) { | |
715f504b HFS |
1002 | case IPV6_HDRINCL: |
1003 | if (sk->sk_type != SOCK_RAW) | |
1004 | return -EINVAL; | |
1005 | inet_sk(sk)->hdrincl = !!val; | |
1006 | return 0; | |
207ec0ab JP |
1007 | case IPV6_CHECKSUM: |
1008 | if (inet_sk(sk)->inet_num == IPPROTO_ICMPV6 && | |
1009 | level == IPPROTO_IPV6) { | |
1010 | /* | |
1011 | * RFC3542 tells that IPV6_CHECKSUM socket | |
1012 | * option in the IPPROTO_IPV6 level is not | |
1013 | * allowed on ICMPv6 sockets. | |
1014 | * If you want to set it, use IPPROTO_RAW | |
1015 | * level IPV6_CHECKSUM socket option | |
1016 | * (Linux extension). | |
1017 | */ | |
1018 | return -EINVAL; | |
1019 | } | |
1a98d05f | 1020 | |
207ec0ab JP |
1021 | /* You may get strange result with a positive odd offset; |
1022 | RFC2292bis agrees with me. */ | |
1023 | if (val > 0 && (val&1)) | |
1024 | return -EINVAL; | |
1025 | if (val < 0) { | |
1026 | rp->checksum = 0; | |
1027 | } else { | |
1028 | rp->checksum = 1; | |
1029 | rp->offset = val; | |
1030 | } | |
1da177e4 | 1031 | |
207ec0ab | 1032 | return 0; |
1da177e4 | 1033 | |
207ec0ab JP |
1034 | default: |
1035 | return -ENOPROTOOPT; | |
1da177e4 LT |
1036 | } |
1037 | } | |
1038 | ||
3fdadf7d | 1039 | static int rawv6_setsockopt(struct sock *sk, int level, int optname, |
a7b75c5a | 1040 | sockptr_t optval, unsigned int optlen) |
1da177e4 | 1041 | { |
207ec0ab JP |
1042 | switch (level) { |
1043 | case SOL_RAW: | |
1044 | break; | |
1da177e4 | 1045 | |
207ec0ab JP |
1046 | case SOL_ICMPV6: |
1047 | if (inet_sk(sk)->inet_num != IPPROTO_ICMPV6) | |
1048 | return -EOPNOTSUPP; | |
1049 | return rawv6_seticmpfilter(sk, level, optname, optval, optlen); | |
1050 | case SOL_IPV6: | |
715f504b HFS |
1051 | if (optname == IPV6_CHECKSUM || |
1052 | optname == IPV6_HDRINCL) | |
207ec0ab | 1053 | break; |
a8eceea8 | 1054 | fallthrough; |
207ec0ab JP |
1055 | default: |
1056 | return ipv6_setsockopt(sk, level, optname, optval, optlen); | |
3ff50b79 SH |
1057 | } |
1058 | ||
3fdadf7d DM |
1059 | return do_rawv6_setsockopt(sk, level, optname, optval, optlen); |
1060 | } | |
1061 | ||
3fdadf7d DM |
1062 | static int do_rawv6_getsockopt(struct sock *sk, int level, int optname, |
1063 | char __user *optval, int __user *optlen) | |
1064 | { | |
1065 | struct raw6_sock *rp = raw6_sk(sk); | |
1066 | int val, len; | |
1da177e4 | 1067 | |
67ba4152 | 1068 | if (get_user(len, optlen)) |
1da177e4 LT |
1069 | return -EFAULT; |
1070 | ||
1071 | switch (optname) { | |
715f504b HFS |
1072 | case IPV6_HDRINCL: |
1073 | val = inet_sk(sk)->hdrincl; | |
1074 | break; | |
1da177e4 | 1075 | case IPV6_CHECKSUM: |
1a98d05f YH |
1076 | /* |
1077 | * We allow getsockopt() for IPPROTO_IPV6-level | |
1078 | * IPV6_CHECKSUM socket option on ICMPv6 sockets | |
1079 | * since RFC3542 is silent about it. | |
1080 | */ | |
1da177e4 LT |
1081 | if (rp->checksum == 0) |
1082 | val = -1; | |
1083 | else | |
1084 | val = rp->offset; | |
1085 | break; | |
1086 | ||
1087 | default: | |
1088 | return -ENOPROTOOPT; | |
1089 | } | |
1090 | ||
1091 | len = min_t(unsigned int, sizeof(int), len); | |
1092 | ||
1093 | if (put_user(len, optlen)) | |
1094 | return -EFAULT; | |
67ba4152 | 1095 | if (copy_to_user(optval, &val, len)) |
1da177e4 LT |
1096 | return -EFAULT; |
1097 | return 0; | |
1098 | } | |
1099 | ||
3fdadf7d DM |
1100 | static int rawv6_getsockopt(struct sock *sk, int level, int optname, |
1101 | char __user *optval, int __user *optlen) | |
1102 | { | |
207ec0ab JP |
1103 | switch (level) { |
1104 | case SOL_RAW: | |
1105 | break; | |
3fdadf7d | 1106 | |
207ec0ab JP |
1107 | case SOL_ICMPV6: |
1108 | if (inet_sk(sk)->inet_num != IPPROTO_ICMPV6) | |
1109 | return -EOPNOTSUPP; | |
1110 | return rawv6_geticmpfilter(sk, level, optname, optval, optlen); | |
1111 | case SOL_IPV6: | |
715f504b HFS |
1112 | if (optname == IPV6_CHECKSUM || |
1113 | optname == IPV6_HDRINCL) | |
207ec0ab | 1114 | break; |
a8eceea8 | 1115 | fallthrough; |
207ec0ab JP |
1116 | default: |
1117 | return ipv6_getsockopt(sk, level, optname, optval, optlen); | |
3ff50b79 SH |
1118 | } |
1119 | ||
3fdadf7d DM |
1120 | return do_rawv6_getsockopt(sk, level, optname, optval, optlen); |
1121 | } | |
1122 | ||
1da177e4 LT |
1123 | static int rawv6_ioctl(struct sock *sk, int cmd, unsigned long arg) |
1124 | { | |
207ec0ab JP |
1125 | switch (cmd) { |
1126 | case SIOCOUTQ: { | |
1127 | int amount = sk_wmem_alloc_get(sk); | |
31e6d363 | 1128 | |
207ec0ab JP |
1129 | return put_user(amount, (int __user *)arg); |
1130 | } | |
1131 | case SIOCINQ: { | |
1132 | struct sk_buff *skb; | |
1133 | int amount = 0; | |
1134 | ||
1135 | spin_lock_bh(&sk->sk_receive_queue.lock); | |
1136 | skb = skb_peek(&sk->sk_receive_queue); | |
53b24b8f | 1137 | if (skb) |
105f5528 | 1138 | amount = skb->len; |
207ec0ab JP |
1139 | spin_unlock_bh(&sk->sk_receive_queue.lock); |
1140 | return put_user(amount, (int __user *)arg); | |
1141 | } | |
1da177e4 | 1142 | |
207ec0ab | 1143 | default: |
7bc570c8 | 1144 | #ifdef CONFIG_IPV6_MROUTE |
207ec0ab | 1145 | return ip6mr_ioctl(sk, cmd, (void __user *)arg); |
7bc570c8 | 1146 | #else |
207ec0ab | 1147 | return -ENOIOCTLCMD; |
7bc570c8 | 1148 | #endif |
1da177e4 LT |
1149 | } |
1150 | } | |
1151 | ||
e2d57766 DM |
1152 | #ifdef CONFIG_COMPAT |
1153 | static int compat_rawv6_ioctl(struct sock *sk, unsigned int cmd, unsigned long arg) | |
1154 | { | |
1155 | switch (cmd) { | |
1156 | case SIOCOUTQ: | |
1157 | case SIOCINQ: | |
1158 | return -ENOIOCTLCMD; | |
1159 | default: | |
1160 | #ifdef CONFIG_IPV6_MROUTE | |
1161 | return ip6mr_compat_ioctl(sk, cmd, compat_ptr(arg)); | |
1162 | #else | |
1163 | return -ENOIOCTLCMD; | |
1164 | #endif | |
1165 | } | |
1166 | } | |
1167 | #endif | |
1168 | ||
1da177e4 LT |
1169 | static void rawv6_close(struct sock *sk, long timeout) |
1170 | { | |
c720c7e8 | 1171 | if (inet_sk(sk)->inet_num == IPPROTO_RAW) |
725a8ff0 | 1172 | ip6_ra_control(sk, -1); |
7bc570c8 | 1173 | ip6mr_sk_done(sk); |
1da177e4 LT |
1174 | sk_common_release(sk); |
1175 | } | |
1176 | ||
7d06b2e0 | 1177 | static void raw6_destroy(struct sock *sk) |
22dd4850 DL |
1178 | { |
1179 | lock_sock(sk); | |
1180 | ip6_flush_pending_frames(sk); | |
1181 | release_sock(sk); | |
22dd4850 DL |
1182 | } |
1183 | ||
1da177e4 LT |
1184 | static int rawv6_init_sk(struct sock *sk) |
1185 | { | |
f48d5ff1 MN |
1186 | struct raw6_sock *rp = raw6_sk(sk); |
1187 | ||
c720c7e8 | 1188 | switch (inet_sk(sk)->inet_num) { |
f48d5ff1 | 1189 | case IPPROTO_ICMPV6: |
1da177e4 LT |
1190 | rp->checksum = 1; |
1191 | rp->offset = 2; | |
f48d5ff1 MN |
1192 | break; |
1193 | case IPPROTO_MH: | |
1194 | rp->checksum = 1; | |
1195 | rp->offset = 4; | |
1196 | break; | |
1197 | default: | |
1198 | break; | |
1da177e4 | 1199 | } |
a02cec21 | 1200 | return 0; |
1da177e4 LT |
1201 | } |
1202 | ||
1203 | struct proto rawv6_prot = { | |
543d9cfe ACM |
1204 | .name = "RAWv6", |
1205 | .owner = THIS_MODULE, | |
1206 | .close = rawv6_close, | |
22dd4850 | 1207 | .destroy = raw6_destroy, |
82b276cd | 1208 | .connect = ip6_datagram_connect_v6_only, |
286c72de | 1209 | .disconnect = __udp_disconnect, |
543d9cfe ACM |
1210 | .ioctl = rawv6_ioctl, |
1211 | .init = rawv6_init_sk, | |
543d9cfe ACM |
1212 | .setsockopt = rawv6_setsockopt, |
1213 | .getsockopt = rawv6_getsockopt, | |
1214 | .sendmsg = rawv6_sendmsg, | |
1215 | .recvmsg = rawv6_recvmsg, | |
1216 | .bind = rawv6_bind, | |
1217 | .backlog_rcv = rawv6_rcv_skb, | |
fc8717ba PE |
1218 | .hash = raw_hash_sk, |
1219 | .unhash = raw_unhash_sk, | |
543d9cfe | 1220 | .obj_size = sizeof(struct raw6_sock), |
8c2bc895 DW |
1221 | .useroffset = offsetof(struct raw6_sock, filter), |
1222 | .usersize = sizeof_field(struct raw6_sock, filter), | |
fc8717ba | 1223 | .h.raw_hash = &raw_v6_hashinfo, |
3fdadf7d | 1224 | #ifdef CONFIG_COMPAT |
e2d57766 | 1225 | .compat_ioctl = compat_rawv6_ioctl, |
3fdadf7d | 1226 | #endif |
432490f9 | 1227 | .diag_destroy = raw_abort, |
1da177e4 LT |
1228 | }; |
1229 | ||
1230 | #ifdef CONFIG_PROC_FS | |
1da177e4 LT |
1231 | static int raw6_seq_show(struct seq_file *seq, void *v) |
1232 | { | |
17ef66af LC |
1233 | if (v == SEQ_START_TOKEN) { |
1234 | seq_puts(seq, IPV6_SEQ_DGRAM_HEADER); | |
1235 | } else { | |
1236 | struct sock *sp = v; | |
1237 | __u16 srcp = inet_sk(sp)->inet_num; | |
1238 | ip6_dgram_sock_seq_show(seq, v, srcp, 0, | |
1239 | raw_seq_private(seq)->bucket); | |
1240 | } | |
1da177e4 LT |
1241 | return 0; |
1242 | } | |
1243 | ||
56b3d975 | 1244 | static const struct seq_operations raw6_seq_ops = { |
42a73808 PE |
1245 | .start = raw_seq_start, |
1246 | .next = raw_seq_next, | |
1247 | .stop = raw_seq_stop, | |
1da177e4 LT |
1248 | .show = raw6_seq_show, |
1249 | }; | |
1250 | ||
2c8c1e72 | 1251 | static int __net_init raw6_init_net(struct net *net) |
1da177e4 | 1252 | { |
c3506372 CH |
1253 | if (!proc_create_net_data("raw6", 0444, net->proc_net, &raw6_seq_ops, |
1254 | sizeof(struct raw_iter_state), &raw_v6_hashinfo)) | |
1da177e4 | 1255 | return -ENOMEM; |
a308da16 | 1256 | |
1da177e4 LT |
1257 | return 0; |
1258 | } | |
1259 | ||
2c8c1e72 | 1260 | static void __net_exit raw6_exit_net(struct net *net) |
a308da16 | 1261 | { |
ece31ffd | 1262 | remove_proc_entry("raw6", net->proc_net); |
a308da16 PE |
1263 | } |
1264 | ||
1265 | static struct pernet_operations raw6_net_ops = { | |
1266 | .init = raw6_init_net, | |
1267 | .exit = raw6_exit_net, | |
1268 | }; | |
1269 | ||
1270 | int __init raw6_proc_init(void) | |
1271 | { | |
1272 | return register_pernet_subsys(&raw6_net_ops); | |
1273 | } | |
1274 | ||
1da177e4 LT |
1275 | void raw6_proc_exit(void) |
1276 | { | |
a308da16 | 1277 | unregister_pernet_subsys(&raw6_net_ops); |
1da177e4 LT |
1278 | } |
1279 | #endif /* CONFIG_PROC_FS */ | |
7f4e4868 | 1280 | |
a11e1d43 | 1281 | /* Same as inet6_dgram_ops, sans udp_poll. */ |
77d4b1d3 | 1282 | const struct proto_ops inet6_sockraw_ops = { |
7f4e4868 DL |
1283 | .family = PF_INET6, |
1284 | .owner = THIS_MODULE, | |
1285 | .release = inet6_release, | |
1286 | .bind = inet6_bind, | |
1287 | .connect = inet_dgram_connect, /* ok */ | |
1288 | .socketpair = sock_no_socketpair, /* a do nothing */ | |
1289 | .accept = sock_no_accept, /* a do nothing */ | |
1290 | .getname = inet6_getname, | |
a11e1d43 | 1291 | .poll = datagram_poll, /* ok */ |
7f4e4868 | 1292 | .ioctl = inet6_ioctl, /* must change */ |
c7cbdbf2 | 1293 | .gettstamp = sock_gettstamp, |
7f4e4868 DL |
1294 | .listen = sock_no_listen, /* ok */ |
1295 | .shutdown = inet_shutdown, /* ok */ | |
1296 | .setsockopt = sock_common_setsockopt, /* ok */ | |
1297 | .getsockopt = sock_common_getsockopt, /* ok */ | |
1298 | .sendmsg = inet_sendmsg, /* ok */ | |
1299 | .recvmsg = sock_common_recvmsg, /* ok */ | |
1300 | .mmap = sock_no_mmap, | |
1301 | .sendpage = sock_no_sendpage, | |
1302 | #ifdef CONFIG_COMPAT | |
3986912f | 1303 | .compat_ioctl = inet6_compat_ioctl, |
7f4e4868 DL |
1304 | #endif |
1305 | }; | |
1306 | ||
1307 | static struct inet_protosw rawv6_protosw = { | |
1308 | .type = SOCK_RAW, | |
1309 | .protocol = IPPROTO_IP, /* wild card */ | |
1310 | .prot = &rawv6_prot, | |
1311 | .ops = &inet6_sockraw_ops, | |
7f4e4868 DL |
1312 | .flags = INET_PROTOSW_REUSE, |
1313 | }; | |
1314 | ||
1315 | int __init rawv6_init(void) | |
1316 | { | |
3d2f6d41 | 1317 | return inet6_register_protosw(&rawv6_protosw); |
7f4e4868 DL |
1318 | } |
1319 | ||
09f7709f | 1320 | void rawv6_exit(void) |
7f4e4868 DL |
1321 | { |
1322 | inet6_unregister_protosw(&rawv6_protosw); | |
1323 | } |