l2tp: fix races in tunnel creation
[linux-block.git] / net / l2tp / l2tp_netlink.c
CommitLineData
309795f4
JC
1/*
2 * L2TP netlink layer, for management
3 *
4 * Copyright (c) 2008,2009,2010 Katalix Systems Ltd
5 *
6 * Partly based on the IrDA nelink implementation
7 * (see net/irda/irnetlink.c) which is:
8 * Copyright (c) 2007 Samuel Ortiz <samuel@sortiz.org>
9 * which is in turn partly based on the wireless netlink code:
10 * Copyright 2006 Johannes Berg <johannes@sipsolutions.net>
11 *
12 * This program is free software; you can redistribute it and/or modify
13 * it under the terms of the GNU General Public License version 2 as
14 * published by the Free Software Foundation.
15 */
16
a4ca44fa
JP
17#define pr_fmt(fmt) KBUILD_MODNAME ": " fmt
18
309795f4
JC
19#include <net/sock.h>
20#include <net/genetlink.h>
21#include <net/udp.h>
22#include <linux/in.h>
23#include <linux/udp.h>
24#include <linux/socket.h>
25#include <linux/module.h>
26#include <linux/list.h>
27#include <net/net_namespace.h>
28
29#include <linux/l2tp.h>
30
31#include "l2tp_core.h"
32
33
489111e5 34static struct genl_family l2tp_nl_family;
309795f4 35
33f72e6f
BH
36static const struct genl_multicast_group l2tp_multicast_group[] = {
37 {
38 .name = L2TP_GENL_MCGROUP,
39 },
40};
41
42static int l2tp_nl_tunnel_send(struct sk_buff *skb, u32 portid, u32 seq,
43 int flags, struct l2tp_tunnel *tunnel, u8 cmd);
44static int l2tp_nl_session_send(struct sk_buff *skb, u32 portid, u32 seq,
45 int flags, struct l2tp_session *session,
46 u8 cmd);
47
309795f4
JC
48/* Accessed under genl lock */
49static const struct l2tp_nl_cmd_ops *l2tp_nl_cmd_ops[__L2TP_PWTYPE_MAX];
50
a4346210 51static struct l2tp_session *l2tp_nl_session_get(struct genl_info *info)
309795f4
JC
52{
53 u32 tunnel_id;
54 u32 session_id;
55 char *ifname;
56 struct l2tp_tunnel *tunnel;
57 struct l2tp_session *session = NULL;
58 struct net *net = genl_info_net(info);
59
60 if (info->attrs[L2TP_ATTR_IFNAME]) {
61 ifname = nla_data(info->attrs[L2TP_ATTR_IFNAME]);
a4346210 62 session = l2tp_session_get_by_ifname(net, ifname);
309795f4
JC
63 } else if ((info->attrs[L2TP_ATTR_SESSION_ID]) &&
64 (info->attrs[L2TP_ATTR_CONN_ID])) {
65 tunnel_id = nla_get_u32(info->attrs[L2TP_ATTR_CONN_ID]);
66 session_id = nla_get_u32(info->attrs[L2TP_ATTR_SESSION_ID]);
54652eb1
GN
67 tunnel = l2tp_tunnel_get(net, tunnel_id);
68 if (tunnel) {
a4346210 69 session = l2tp_session_get(net, tunnel, session_id);
54652eb1
GN
70 l2tp_tunnel_dec_refcount(tunnel);
71 }
309795f4
JC
72 }
73
74 return session;
75}
76
77static int l2tp_nl_cmd_noop(struct sk_buff *skb, struct genl_info *info)
78{
79 struct sk_buff *msg;
80 void *hdr;
81 int ret = -ENOBUFS;
82
58050fce 83 msg = nlmsg_new(NLMSG_DEFAULT_SIZE, GFP_KERNEL);
309795f4
JC
84 if (!msg) {
85 ret = -ENOMEM;
86 goto out;
87 }
88
15e47304 89 hdr = genlmsg_put(msg, info->snd_portid, info->snd_seq,
309795f4 90 &l2tp_nl_family, 0, L2TP_CMD_NOOP);
7f8436a1
WY
91 if (!hdr) {
92 ret = -EMSGSIZE;
309795f4
JC
93 goto err_out;
94 }
95
96 genlmsg_end(msg, hdr);
97
15e47304 98 return genlmsg_unicast(genl_info_net(info), msg, info->snd_portid);
309795f4
JC
99
100err_out:
101 nlmsg_free(msg);
102
103out:
104 return ret;
105}
106
33f72e6f
BH
107static int l2tp_tunnel_notify(struct genl_family *family,
108 struct genl_info *info,
109 struct l2tp_tunnel *tunnel,
110 u8 cmd)
111{
112 struct sk_buff *msg;
113 int ret;
114
115 msg = nlmsg_new(NLMSG_DEFAULT_SIZE, GFP_KERNEL);
116 if (!msg)
117 return -ENOMEM;
118
119 ret = l2tp_nl_tunnel_send(msg, info->snd_portid, info->snd_seq,
120 NLM_F_ACK, tunnel, cmd);
121
853effc5
MT
122 if (ret >= 0) {
123 ret = genlmsg_multicast_allns(family, msg, 0, 0, GFP_ATOMIC);
124 /* We don't care if no one is listening */
125 if (ret == -ESRCH)
126 ret = 0;
127 return ret;
128 }
33f72e6f
BH
129
130 nlmsg_free(msg);
131
132 return ret;
133}
134
135static int l2tp_session_notify(struct genl_family *family,
136 struct genl_info *info,
137 struct l2tp_session *session,
138 u8 cmd)
139{
140 struct sk_buff *msg;
141 int ret;
142
143 msg = nlmsg_new(NLMSG_DEFAULT_SIZE, GFP_KERNEL);
144 if (!msg)
145 return -ENOMEM;
146
147 ret = l2tp_nl_session_send(msg, info->snd_portid, info->snd_seq,
148 NLM_F_ACK, session, cmd);
149
853effc5
MT
150 if (ret >= 0) {
151 ret = genlmsg_multicast_allns(family, msg, 0, 0, GFP_ATOMIC);
152 /* We don't care if no one is listening */
153 if (ret == -ESRCH)
154 ret = 0;
155 return ret;
156 }
33f72e6f
BH
157
158 nlmsg_free(msg);
159
160 return ret;
161}
162
309795f4
JC
163static int l2tp_nl_cmd_tunnel_create(struct sk_buff *skb, struct genl_info *info)
164{
165 u32 tunnel_id;
166 u32 peer_tunnel_id;
167 int proto_version;
168 int fd;
169 int ret = 0;
170 struct l2tp_tunnel_cfg cfg = { 0, };
171 struct l2tp_tunnel *tunnel;
172 struct net *net = genl_info_net(info);
173
174 if (!info->attrs[L2TP_ATTR_CONN_ID]) {
175 ret = -EINVAL;
176 goto out;
177 }
178 tunnel_id = nla_get_u32(info->attrs[L2TP_ATTR_CONN_ID]);
179
180 if (!info->attrs[L2TP_ATTR_PEER_CONN_ID]) {
181 ret = -EINVAL;
182 goto out;
183 }
184 peer_tunnel_id = nla_get_u32(info->attrs[L2TP_ATTR_PEER_CONN_ID]);
185
186 if (!info->attrs[L2TP_ATTR_PROTO_VERSION]) {
187 ret = -EINVAL;
188 goto out;
189 }
190 proto_version = nla_get_u8(info->attrs[L2TP_ATTR_PROTO_VERSION]);
191
192 if (!info->attrs[L2TP_ATTR_ENCAP_TYPE]) {
193 ret = -EINVAL;
194 goto out;
195 }
196 cfg.encap = nla_get_u16(info->attrs[L2TP_ATTR_ENCAP_TYPE]);
197
789a4a2c
JC
198 fd = -1;
199 if (info->attrs[L2TP_ATTR_FD]) {
200 fd = nla_get_u32(info->attrs[L2TP_ATTR_FD]);
201 } else {
f9bac8df
CE
202#if IS_ENABLED(CONFIG_IPV6)
203 if (info->attrs[L2TP_ATTR_IP6_SADDR] &&
204 info->attrs[L2TP_ATTR_IP6_DADDR]) {
205 cfg.local_ip6 = nla_data(
206 info->attrs[L2TP_ATTR_IP6_SADDR]);
207 cfg.peer_ip6 = nla_data(
208 info->attrs[L2TP_ATTR_IP6_DADDR]);
209 } else
210#endif
211 if (info->attrs[L2TP_ATTR_IP_SADDR] &&
212 info->attrs[L2TP_ATTR_IP_DADDR]) {
67b61f6c 213 cfg.local_ip.s_addr = nla_get_in_addr(
f9bac8df 214 info->attrs[L2TP_ATTR_IP_SADDR]);
67b61f6c 215 cfg.peer_ip.s_addr = nla_get_in_addr(
f9bac8df
CE
216 info->attrs[L2TP_ATTR_IP_DADDR]);
217 } else {
218 ret = -EINVAL;
219 goto out;
220 }
789a4a2c
JC
221 if (info->attrs[L2TP_ATTR_UDP_SPORT])
222 cfg.local_udp_port = nla_get_u16(info->attrs[L2TP_ATTR_UDP_SPORT]);
223 if (info->attrs[L2TP_ATTR_UDP_DPORT])
224 cfg.peer_udp_port = nla_get_u16(info->attrs[L2TP_ATTR_UDP_DPORT]);
57ceb861
AST
225 cfg.use_udp_checksums = nla_get_flag(
226 info->attrs[L2TP_ATTR_UDP_CSUM]);
6b649fea
TH
227
228#if IS_ENABLED(CONFIG_IPV6)
57ceb861
AST
229 cfg.udp6_zero_tx_checksums = nla_get_flag(
230 info->attrs[L2TP_ATTR_UDP_ZERO_CSUM6_TX]);
231 cfg.udp6_zero_rx_checksums = nla_get_flag(
232 info->attrs[L2TP_ATTR_UDP_ZERO_CSUM6_RX]);
6b649fea 233#endif
309795f4 234 }
309795f4
JC
235
236 if (info->attrs[L2TP_ATTR_DEBUG])
237 cfg.debug = nla_get_u32(info->attrs[L2TP_ATTR_DEBUG]);
238
239 tunnel = l2tp_tunnel_find(net, tunnel_id);
240 if (tunnel != NULL) {
241 ret = -EEXIST;
242 goto out;
243 }
244
245 ret = -EINVAL;
246 switch (cfg.encap) {
247 case L2TP_ENCAPTYPE_UDP:
248 case L2TP_ENCAPTYPE_IP:
249 ret = l2tp_tunnel_create(net, fd, proto_version, tunnel_id,
250 peer_tunnel_id, &cfg, &tunnel);
251 break;
252 }
253
6b9f3423
GN
254 if (ret < 0)
255 goto out;
256
257 l2tp_tunnel_inc_refcount(tunnel);
258 ret = l2tp_tunnel_register(tunnel, net, &cfg);
259 if (ret < 0) {
260 kfree(tunnel);
261 goto out;
262 }
263 ret = l2tp_tunnel_notify(&l2tp_nl_family, info, tunnel,
264 L2TP_CMD_TUNNEL_CREATE);
265 l2tp_tunnel_dec_refcount(tunnel);
266
309795f4
JC
267out:
268 return ret;
269}
270
271static int l2tp_nl_cmd_tunnel_delete(struct sk_buff *skb, struct genl_info *info)
272{
273 struct l2tp_tunnel *tunnel;
274 u32 tunnel_id;
275 int ret = 0;
276 struct net *net = genl_info_net(info);
277
278 if (!info->attrs[L2TP_ATTR_CONN_ID]) {
279 ret = -EINVAL;
280 goto out;
281 }
282 tunnel_id = nla_get_u32(info->attrs[L2TP_ATTR_CONN_ID]);
283
bb0a32ce
GN
284 tunnel = l2tp_tunnel_get(net, tunnel_id);
285 if (!tunnel) {
309795f4
JC
286 ret = -ENODEV;
287 goto out;
288 }
289
33f72e6f
BH
290 l2tp_tunnel_notify(&l2tp_nl_family, info,
291 tunnel, L2TP_CMD_TUNNEL_DELETE);
292
4dc12ffe 293 l2tp_tunnel_delete(tunnel);
309795f4 294
bb0a32ce
GN
295 l2tp_tunnel_dec_refcount(tunnel);
296
309795f4
JC
297out:
298 return ret;
299}
300
301static int l2tp_nl_cmd_tunnel_modify(struct sk_buff *skb, struct genl_info *info)
302{
303 struct l2tp_tunnel *tunnel;
304 u32 tunnel_id;
305 int ret = 0;
306 struct net *net = genl_info_net(info);
307
308 if (!info->attrs[L2TP_ATTR_CONN_ID]) {
309 ret = -EINVAL;
310 goto out;
311 }
312 tunnel_id = nla_get_u32(info->attrs[L2TP_ATTR_CONN_ID]);
313
8c0e4215
GN
314 tunnel = l2tp_tunnel_get(net, tunnel_id);
315 if (!tunnel) {
309795f4
JC
316 ret = -ENODEV;
317 goto out;
318 }
319
320 if (info->attrs[L2TP_ATTR_DEBUG])
321 tunnel->debug = nla_get_u32(info->attrs[L2TP_ATTR_DEBUG]);
322
33f72e6f
BH
323 ret = l2tp_tunnel_notify(&l2tp_nl_family, info,
324 tunnel, L2TP_CMD_TUNNEL_MODIFY);
325
8c0e4215
GN
326 l2tp_tunnel_dec_refcount(tunnel);
327
309795f4
JC
328out:
329 return ret;
330}
331
15e47304 332static int l2tp_nl_tunnel_send(struct sk_buff *skb, u32 portid, u32 seq, int flags,
33f72e6f 333 struct l2tp_tunnel *tunnel, u8 cmd)
309795f4
JC
334{
335 void *hdr;
336 struct nlattr *nest;
337 struct sock *sk = NULL;
338 struct inet_sock *inet;
f9bac8df
CE
339#if IS_ENABLED(CONFIG_IPV6)
340 struct ipv6_pinfo *np = NULL;
341#endif
309795f4 342
33f72e6f 343 hdr = genlmsg_put(skb, portid, seq, &l2tp_nl_family, flags, cmd);
7f8436a1
WY
344 if (!hdr)
345 return -EMSGSIZE;
309795f4 346
60aed2ab
DM
347 if (nla_put_u8(skb, L2TP_ATTR_PROTO_VERSION, tunnel->version) ||
348 nla_put_u32(skb, L2TP_ATTR_CONN_ID, tunnel->tunnel_id) ||
349 nla_put_u32(skb, L2TP_ATTR_PEER_CONN_ID, tunnel->peer_tunnel_id) ||
350 nla_put_u32(skb, L2TP_ATTR_DEBUG, tunnel->debug) ||
351 nla_put_u16(skb, L2TP_ATTR_ENCAP_TYPE, tunnel->encap))
352 goto nla_put_failure;
309795f4
JC
353
354 nest = nla_nest_start(skb, L2TP_ATTR_STATS);
355 if (nest == NULL)
356 goto nla_put_failure;
357
1c714a92
ND
358 if (nla_put_u64_64bit(skb, L2TP_ATTR_TX_PACKETS,
359 atomic_long_read(&tunnel->stats.tx_packets),
360 L2TP_ATTR_STATS_PAD) ||
361 nla_put_u64_64bit(skb, L2TP_ATTR_TX_BYTES,
362 atomic_long_read(&tunnel->stats.tx_bytes),
363 L2TP_ATTR_STATS_PAD) ||
364 nla_put_u64_64bit(skb, L2TP_ATTR_TX_ERRORS,
365 atomic_long_read(&tunnel->stats.tx_errors),
366 L2TP_ATTR_STATS_PAD) ||
367 nla_put_u64_64bit(skb, L2TP_ATTR_RX_PACKETS,
368 atomic_long_read(&tunnel->stats.rx_packets),
369 L2TP_ATTR_STATS_PAD) ||
370 nla_put_u64_64bit(skb, L2TP_ATTR_RX_BYTES,
371 atomic_long_read(&tunnel->stats.rx_bytes),
372 L2TP_ATTR_STATS_PAD) ||
373 nla_put_u64_64bit(skb, L2TP_ATTR_RX_SEQ_DISCARDS,
374 atomic_long_read(&tunnel->stats.rx_seq_discards),
375 L2TP_ATTR_STATS_PAD) ||
376 nla_put_u64_64bit(skb, L2TP_ATTR_RX_OOS_PACKETS,
377 atomic_long_read(&tunnel->stats.rx_oos_packets),
378 L2TP_ATTR_STATS_PAD) ||
379 nla_put_u64_64bit(skb, L2TP_ATTR_RX_ERRORS,
380 atomic_long_read(&tunnel->stats.rx_errors),
381 L2TP_ATTR_STATS_PAD))
60aed2ab 382 goto nla_put_failure;
309795f4
JC
383 nla_nest_end(skb, nest);
384
385 sk = tunnel->sock;
386 if (!sk)
387 goto out;
388
f9bac8df
CE
389#if IS_ENABLED(CONFIG_IPV6)
390 if (sk->sk_family == AF_INET6)
391 np = inet6_sk(sk);
392#endif
393
309795f4
JC
394 inet = inet_sk(sk);
395
396 switch (tunnel->encap) {
397 case L2TP_ENCAPTYPE_UDP:
7ff516ff
AST
398 switch (sk->sk_family) {
399 case AF_INET:
400 if (nla_put_u8(skb, L2TP_ATTR_UDP_CSUM, !sk->sk_no_check_tx))
401 goto nla_put_failure;
402 break;
97b7af09
AST
403#if IS_ENABLED(CONFIG_IPV6)
404 case AF_INET6:
405 if (udp_get_no_check6_tx(sk) &&
406 nla_put_flag(skb, L2TP_ATTR_UDP_ZERO_CSUM6_TX))
407 goto nla_put_failure;
408 if (udp_get_no_check6_rx(sk) &&
409 nla_put_flag(skb, L2TP_ATTR_UDP_ZERO_CSUM6_RX))
410 goto nla_put_failure;
411 break;
412#endif
7ff516ff 413 }
60aed2ab 414 if (nla_put_u16(skb, L2TP_ATTR_UDP_SPORT, ntohs(inet->inet_sport)) ||
7ff516ff 415 nla_put_u16(skb, L2TP_ATTR_UDP_DPORT, ntohs(inet->inet_dport)))
60aed2ab 416 goto nla_put_failure;
be070c77 417 /* fall through */
309795f4 418 case L2TP_ENCAPTYPE_IP:
f9bac8df
CE
419#if IS_ENABLED(CONFIG_IPV6)
420 if (np) {
930345ea
JB
421 if (nla_put_in6_addr(skb, L2TP_ATTR_IP6_SADDR,
422 &np->saddr) ||
423 nla_put_in6_addr(skb, L2TP_ATTR_IP6_DADDR,
424 &sk->sk_v6_daddr))
f9bac8df
CE
425 goto nla_put_failure;
426 } else
427#endif
930345ea
JB
428 if (nla_put_in_addr(skb, L2TP_ATTR_IP_SADDR,
429 inet->inet_saddr) ||
430 nla_put_in_addr(skb, L2TP_ATTR_IP_DADDR,
431 inet->inet_daddr))
60aed2ab 432 goto nla_put_failure;
309795f4
JC
433 break;
434 }
435
436out:
053c095a
JB
437 genlmsg_end(skb, hdr);
438 return 0;
309795f4
JC
439
440nla_put_failure:
441 genlmsg_cancel(skb, hdr);
442 return -1;
443}
444
445static int l2tp_nl_cmd_tunnel_get(struct sk_buff *skb, struct genl_info *info)
446{
447 struct l2tp_tunnel *tunnel;
448 struct sk_buff *msg;
449 u32 tunnel_id;
450 int ret = -ENOBUFS;
451 struct net *net = genl_info_net(info);
452
453 if (!info->attrs[L2TP_ATTR_CONN_ID]) {
454 ret = -EINVAL;
4e4b21da 455 goto err;
309795f4
JC
456 }
457
458 tunnel_id = nla_get_u32(info->attrs[L2TP_ATTR_CONN_ID]);
459
58050fce 460 msg = nlmsg_new(NLMSG_DEFAULT_SIZE, GFP_KERNEL);
309795f4
JC
461 if (!msg) {
462 ret = -ENOMEM;
4e4b21da
GN
463 goto err;
464 }
465
466 tunnel = l2tp_tunnel_get(net, tunnel_id);
467 if (!tunnel) {
468 ret = -ENODEV;
469 goto err_nlmsg;
309795f4
JC
470 }
471
15e47304 472 ret = l2tp_nl_tunnel_send(msg, info->snd_portid, info->snd_seq,
33f72e6f 473 NLM_F_ACK, tunnel, L2TP_CMD_TUNNEL_GET);
309795f4 474 if (ret < 0)
4e4b21da
GN
475 goto err_nlmsg_tunnel;
476
477 l2tp_tunnel_dec_refcount(tunnel);
309795f4 478
15e47304 479 return genlmsg_unicast(net, msg, info->snd_portid);
309795f4 480
4e4b21da
GN
481err_nlmsg_tunnel:
482 l2tp_tunnel_dec_refcount(tunnel);
483err_nlmsg:
309795f4 484 nlmsg_free(msg);
4e4b21da 485err:
309795f4
JC
486 return ret;
487}
488
489static int l2tp_nl_cmd_tunnel_dump(struct sk_buff *skb, struct netlink_callback *cb)
490{
491 int ti = cb->args[0];
492 struct l2tp_tunnel *tunnel;
493 struct net *net = sock_net(skb->sk);
494
495 for (;;) {
496 tunnel = l2tp_tunnel_find_nth(net, ti);
497 if (tunnel == NULL)
498 goto out;
499
15e47304 500 if (l2tp_nl_tunnel_send(skb, NETLINK_CB(cb->skb).portid,
309795f4 501 cb->nlh->nlmsg_seq, NLM_F_MULTI,
053c095a 502 tunnel, L2TP_CMD_TUNNEL_GET) < 0)
309795f4
JC
503 goto out;
504
505 ti++;
506 }
507
508out:
509 cb->args[0] = ti;
510
511 return skb->len;
512}
513
514static int l2tp_nl_cmd_session_create(struct sk_buff *skb, struct genl_info *info)
515{
516 u32 tunnel_id = 0;
517 u32 session_id;
518 u32 peer_session_id;
519 int ret = 0;
520 struct l2tp_tunnel *tunnel;
521 struct l2tp_session *session;
522 struct l2tp_session_cfg cfg = { 0, };
523 struct net *net = genl_info_net(info);
524
525 if (!info->attrs[L2TP_ATTR_CONN_ID]) {
526 ret = -EINVAL;
527 goto out;
528 }
e702c120 529
309795f4 530 tunnel_id = nla_get_u32(info->attrs[L2TP_ATTR_CONN_ID]);
e702c120 531 tunnel = l2tp_tunnel_get(net, tunnel_id);
309795f4
JC
532 if (!tunnel) {
533 ret = -ENODEV;
534 goto out;
535 }
536
537 if (!info->attrs[L2TP_ATTR_SESSION_ID]) {
538 ret = -EINVAL;
e702c120 539 goto out_tunnel;
309795f4
JC
540 }
541 session_id = nla_get_u32(info->attrs[L2TP_ATTR_SESSION_ID]);
309795f4
JC
542
543 if (!info->attrs[L2TP_ATTR_PEER_SESSION_ID]) {
544 ret = -EINVAL;
e702c120 545 goto out_tunnel;
309795f4
JC
546 }
547 peer_session_id = nla_get_u32(info->attrs[L2TP_ATTR_PEER_SESSION_ID]);
548
549 if (!info->attrs[L2TP_ATTR_PW_TYPE]) {
550 ret = -EINVAL;
e702c120 551 goto out_tunnel;
309795f4
JC
552 }
553 cfg.pw_type = nla_get_u16(info->attrs[L2TP_ATTR_PW_TYPE]);
554 if (cfg.pw_type >= __L2TP_PWTYPE_MAX) {
555 ret = -EINVAL;
e702c120 556 goto out_tunnel;
309795f4
JC
557 }
558
559 if (tunnel->version > 2) {
309795f4
JC
560 if (info->attrs[L2TP_ATTR_DATA_SEQ])
561 cfg.data_seq = nla_get_u8(info->attrs[L2TP_ATTR_DATA_SEQ]);
562
dfffc97d 563 if (info->attrs[L2TP_ATTR_L2SPEC_TYPE]) {
309795f4 564 cfg.l2specific_type = nla_get_u8(info->attrs[L2TP_ATTR_L2SPEC_TYPE]);
dfffc97d
LB
565 if (cfg.l2specific_type != L2TP_L2SPECTYPE_DEFAULT &&
566 cfg.l2specific_type != L2TP_L2SPECTYPE_NONE) {
567 ret = -EINVAL;
568 goto out_tunnel;
569 }
570 } else {
571 cfg.l2specific_type = L2TP_L2SPECTYPE_DEFAULT;
572 }
309795f4 573
309795f4
JC
574 if (info->attrs[L2TP_ATTR_COOKIE]) {
575 u16 len = nla_len(info->attrs[L2TP_ATTR_COOKIE]);
576 if (len > 8) {
577 ret = -EINVAL;
e702c120 578 goto out_tunnel;
309795f4
JC
579 }
580 cfg.cookie_len = len;
581 memcpy(&cfg.cookie[0], nla_data(info->attrs[L2TP_ATTR_COOKIE]), len);
582 }
583 if (info->attrs[L2TP_ATTR_PEER_COOKIE]) {
584 u16 len = nla_len(info->attrs[L2TP_ATTR_PEER_COOKIE]);
585 if (len > 8) {
586 ret = -EINVAL;
e702c120 587 goto out_tunnel;
309795f4
JC
588 }
589 cfg.peer_cookie_len = len;
590 memcpy(&cfg.peer_cookie[0], nla_data(info->attrs[L2TP_ATTR_PEER_COOKIE]), len);
591 }
592 if (info->attrs[L2TP_ATTR_IFNAME])
593 cfg.ifname = nla_data(info->attrs[L2TP_ATTR_IFNAME]);
594
595 if (info->attrs[L2TP_ATTR_VLAN_ID])
596 cfg.vlan_id = nla_get_u16(info->attrs[L2TP_ATTR_VLAN_ID]);
597 }
598
599 if (info->attrs[L2TP_ATTR_DEBUG])
600 cfg.debug = nla_get_u32(info->attrs[L2TP_ATTR_DEBUG]);
601
602 if (info->attrs[L2TP_ATTR_RECV_SEQ])
603 cfg.recv_seq = nla_get_u8(info->attrs[L2TP_ATTR_RECV_SEQ]);
604
605 if (info->attrs[L2TP_ATTR_SEND_SEQ])
606 cfg.send_seq = nla_get_u8(info->attrs[L2TP_ATTR_SEND_SEQ]);
607
608 if (info->attrs[L2TP_ATTR_LNS_MODE])
609 cfg.lns_mode = nla_get_u8(info->attrs[L2TP_ATTR_LNS_MODE]);
610
611 if (info->attrs[L2TP_ATTR_RECV_TIMEOUT])
612 cfg.reorder_timeout = nla_get_msecs(info->attrs[L2TP_ATTR_RECV_TIMEOUT]);
613
614 if (info->attrs[L2TP_ATTR_MTU])
615 cfg.mtu = nla_get_u16(info->attrs[L2TP_ATTR_MTU]);
616
617 if (info->attrs[L2TP_ATTR_MRU])
618 cfg.mru = nla_get_u16(info->attrs[L2TP_ATTR_MRU]);
619
f1f39f91 620#ifdef CONFIG_MODULES
621 if (l2tp_nl_cmd_ops[cfg.pw_type] == NULL) {
622 genl_unlock();
623 request_module("net-l2tp-type-%u", cfg.pw_type);
624 genl_lock();
625 }
626#endif
309795f4
JC
627 if ((l2tp_nl_cmd_ops[cfg.pw_type] == NULL) ||
628 (l2tp_nl_cmd_ops[cfg.pw_type]->session_create == NULL)) {
629 ret = -EPROTONOSUPPORT;
e702c120 630 goto out_tunnel;
309795f4
JC
631 }
632
f026bc29
GN
633 ret = l2tp_nl_cmd_ops[cfg.pw_type]->session_create(net, tunnel,
634 session_id,
635 peer_session_id,
636 &cfg);
309795f4 637
33f72e6f 638 if (ret >= 0) {
a4346210 639 session = l2tp_session_get(net, tunnel, session_id);
5e6a9e5a 640 if (session) {
33f72e6f
BH
641 ret = l2tp_session_notify(&l2tp_nl_family, info, session,
642 L2TP_CMD_SESSION_CREATE);
5e6a9e5a
GN
643 l2tp_session_dec_refcount(session);
644 }
33f72e6f
BH
645 }
646
e702c120
GN
647out_tunnel:
648 l2tp_tunnel_dec_refcount(tunnel);
309795f4
JC
649out:
650 return ret;
651}
652
653static int l2tp_nl_cmd_session_delete(struct sk_buff *skb, struct genl_info *info)
654{
655 int ret = 0;
656 struct l2tp_session *session;
657 u16 pw_type;
658
a4346210 659 session = l2tp_nl_session_get(info);
309795f4
JC
660 if (session == NULL) {
661 ret = -ENODEV;
662 goto out;
663 }
664
33f72e6f
BH
665 l2tp_session_notify(&l2tp_nl_family, info,
666 session, L2TP_CMD_SESSION_DELETE);
667
309795f4
JC
668 pw_type = session->pwtype;
669 if (pw_type < __L2TP_PWTYPE_MAX)
670 if (l2tp_nl_cmd_ops[pw_type] && l2tp_nl_cmd_ops[pw_type]->session_delete)
671 ret = (*l2tp_nl_cmd_ops[pw_type]->session_delete)(session);
672
2777e2ab
GN
673 l2tp_session_dec_refcount(session);
674
309795f4
JC
675out:
676 return ret;
677}
678
679static int l2tp_nl_cmd_session_modify(struct sk_buff *skb, struct genl_info *info)
680{
681 int ret = 0;
682 struct l2tp_session *session;
683
a4346210 684 session = l2tp_nl_session_get(info);
309795f4
JC
685 if (session == NULL) {
686 ret = -ENODEV;
687 goto out;
688 }
689
690 if (info->attrs[L2TP_ATTR_DEBUG])
691 session->debug = nla_get_u32(info->attrs[L2TP_ATTR_DEBUG]);
692
693 if (info->attrs[L2TP_ATTR_DATA_SEQ])
694 session->data_seq = nla_get_u8(info->attrs[L2TP_ATTR_DATA_SEQ]);
695
696 if (info->attrs[L2TP_ATTR_RECV_SEQ])
697 session->recv_seq = nla_get_u8(info->attrs[L2TP_ATTR_RECV_SEQ]);
698
bb5016ea 699 if (info->attrs[L2TP_ATTR_SEND_SEQ]) {
309795f4 700 session->send_seq = nla_get_u8(info->attrs[L2TP_ATTR_SEND_SEQ]);
bb5016ea
GN
701 l2tp_session_set_header_len(session, session->tunnel->version);
702 }
309795f4
JC
703
704 if (info->attrs[L2TP_ATTR_LNS_MODE])
705 session->lns_mode = nla_get_u8(info->attrs[L2TP_ATTR_LNS_MODE]);
706
707 if (info->attrs[L2TP_ATTR_RECV_TIMEOUT])
708 session->reorder_timeout = nla_get_msecs(info->attrs[L2TP_ATTR_RECV_TIMEOUT]);
709
710 if (info->attrs[L2TP_ATTR_MTU])
711 session->mtu = nla_get_u16(info->attrs[L2TP_ATTR_MTU]);
712
713 if (info->attrs[L2TP_ATTR_MRU])
714 session->mru = nla_get_u16(info->attrs[L2TP_ATTR_MRU]);
715
33f72e6f
BH
716 ret = l2tp_session_notify(&l2tp_nl_family, info,
717 session, L2TP_CMD_SESSION_MODIFY);
718
2777e2ab
GN
719 l2tp_session_dec_refcount(session);
720
309795f4
JC
721out:
722 return ret;
723}
724
15e47304 725static int l2tp_nl_session_send(struct sk_buff *skb, u32 portid, u32 seq, int flags,
33f72e6f 726 struct l2tp_session *session, u8 cmd)
309795f4
JC
727{
728 void *hdr;
729 struct nlattr *nest;
730 struct l2tp_tunnel *tunnel = session->tunnel;
731 struct sock *sk = NULL;
732
733 sk = tunnel->sock;
734
33f72e6f 735 hdr = genlmsg_put(skb, portid, seq, &l2tp_nl_family, flags, cmd);
7f8436a1
WY
736 if (!hdr)
737 return -EMSGSIZE;
309795f4 738
60aed2ab
DM
739 if (nla_put_u32(skb, L2TP_ATTR_CONN_ID, tunnel->tunnel_id) ||
740 nla_put_u32(skb, L2TP_ATTR_SESSION_ID, session->session_id) ||
741 nla_put_u32(skb, L2TP_ATTR_PEER_CONN_ID, tunnel->peer_tunnel_id) ||
742 nla_put_u32(skb, L2TP_ATTR_PEER_SESSION_ID,
743 session->peer_session_id) ||
744 nla_put_u32(skb, L2TP_ATTR_DEBUG, session->debug) ||
745 nla_put_u16(skb, L2TP_ATTR_PW_TYPE, session->pwtype) ||
746 nla_put_u16(skb, L2TP_ATTR_MTU, session->mtu) ||
747 (session->mru &&
748 nla_put_u16(skb, L2TP_ATTR_MRU, session->mru)))
749 goto nla_put_failure;
750
e269ed26 751 if ((session->ifname[0] &&
60aed2ab
DM
752 nla_put_string(skb, L2TP_ATTR_IFNAME, session->ifname)) ||
753 (session->cookie_len &&
754 nla_put(skb, L2TP_ATTR_COOKIE, session->cookie_len,
755 &session->cookie[0])) ||
756 (session->peer_cookie_len &&
757 nla_put(skb, L2TP_ATTR_PEER_COOKIE, session->peer_cookie_len,
758 &session->peer_cookie[0])) ||
759 nla_put_u8(skb, L2TP_ATTR_RECV_SEQ, session->recv_seq) ||
760 nla_put_u8(skb, L2TP_ATTR_SEND_SEQ, session->send_seq) ||
761 nla_put_u8(skb, L2TP_ATTR_LNS_MODE, session->lns_mode) ||
309795f4 762#ifdef CONFIG_XFRM
60aed2ab
DM
763 (((sk) && (sk->sk_policy[0] || sk->sk_policy[1])) &&
764 nla_put_u8(skb, L2TP_ATTR_USING_IPSEC, 1)) ||
309795f4 765#endif
60aed2ab 766 (session->reorder_timeout &&
2175d87c
ND
767 nla_put_msecs(skb, L2TP_ATTR_RECV_TIMEOUT,
768 session->reorder_timeout, L2TP_ATTR_PAD)))
60aed2ab 769 goto nla_put_failure;
5de7aee5 770
309795f4
JC
771 nest = nla_nest_start(skb, L2TP_ATTR_STATS);
772 if (nest == NULL)
773 goto nla_put_failure;
5de7aee5 774
1c714a92
ND
775 if (nla_put_u64_64bit(skb, L2TP_ATTR_TX_PACKETS,
776 atomic_long_read(&session->stats.tx_packets),
777 L2TP_ATTR_STATS_PAD) ||
778 nla_put_u64_64bit(skb, L2TP_ATTR_TX_BYTES,
779 atomic_long_read(&session->stats.tx_bytes),
780 L2TP_ATTR_STATS_PAD) ||
781 nla_put_u64_64bit(skb, L2TP_ATTR_TX_ERRORS,
782 atomic_long_read(&session->stats.tx_errors),
783 L2TP_ATTR_STATS_PAD) ||
784 nla_put_u64_64bit(skb, L2TP_ATTR_RX_PACKETS,
785 atomic_long_read(&session->stats.rx_packets),
786 L2TP_ATTR_STATS_PAD) ||
787 nla_put_u64_64bit(skb, L2TP_ATTR_RX_BYTES,
788 atomic_long_read(&session->stats.rx_bytes),
789 L2TP_ATTR_STATS_PAD) ||
790 nla_put_u64_64bit(skb, L2TP_ATTR_RX_SEQ_DISCARDS,
791 atomic_long_read(&session->stats.rx_seq_discards),
792 L2TP_ATTR_STATS_PAD) ||
793 nla_put_u64_64bit(skb, L2TP_ATTR_RX_OOS_PACKETS,
794 atomic_long_read(&session->stats.rx_oos_packets),
795 L2TP_ATTR_STATS_PAD) ||
796 nla_put_u64_64bit(skb, L2TP_ATTR_RX_ERRORS,
797 atomic_long_read(&session->stats.rx_errors),
798 L2TP_ATTR_STATS_PAD))
60aed2ab 799 goto nla_put_failure;
309795f4
JC
800 nla_nest_end(skb, nest);
801
053c095a
JB
802 genlmsg_end(skb, hdr);
803 return 0;
309795f4
JC
804
805 nla_put_failure:
806 genlmsg_cancel(skb, hdr);
807 return -1;
808}
809
810static int l2tp_nl_cmd_session_get(struct sk_buff *skb, struct genl_info *info)
811{
812 struct l2tp_session *session;
813 struct sk_buff *msg;
814 int ret;
815
a4346210 816 session = l2tp_nl_session_get(info);
309795f4
JC
817 if (session == NULL) {
818 ret = -ENODEV;
2777e2ab 819 goto err;
309795f4
JC
820 }
821
58050fce 822 msg = nlmsg_new(NLMSG_DEFAULT_SIZE, GFP_KERNEL);
309795f4
JC
823 if (!msg) {
824 ret = -ENOMEM;
2777e2ab 825 goto err_ref;
309795f4
JC
826 }
827
15e47304 828 ret = l2tp_nl_session_send(msg, info->snd_portid, info->snd_seq,
33f72e6f 829 0, session, L2TP_CMD_SESSION_GET);
309795f4 830 if (ret < 0)
2777e2ab 831 goto err_ref_msg;
309795f4 832
2777e2ab 833 ret = genlmsg_unicast(genl_info_net(info), msg, info->snd_portid);
309795f4 834
2777e2ab 835 l2tp_session_dec_refcount(session);
309795f4 836
2777e2ab
GN
837 return ret;
838
839err_ref_msg:
840 nlmsg_free(msg);
841err_ref:
842 l2tp_session_dec_refcount(session);
843err:
309795f4
JC
844 return ret;
845}
846
847static int l2tp_nl_cmd_session_dump(struct sk_buff *skb, struct netlink_callback *cb)
848{
849 struct net *net = sock_net(skb->sk);
850 struct l2tp_session *session;
851 struct l2tp_tunnel *tunnel = NULL;
852 int ti = cb->args[0];
853 int si = cb->args[1];
854
855 for (;;) {
856 if (tunnel == NULL) {
857 tunnel = l2tp_tunnel_find_nth(net, ti);
858 if (tunnel == NULL)
859 goto out;
860 }
861
a4346210 862 session = l2tp_session_get_nth(tunnel, si);
309795f4
JC
863 if (session == NULL) {
864 ti++;
865 tunnel = NULL;
866 si = 0;
867 continue;
868 }
869
15e47304 870 if (l2tp_nl_session_send(skb, NETLINK_CB(cb->skb).portid,
309795f4 871 cb->nlh->nlmsg_seq, NLM_F_MULTI,
e08293a4
GN
872 session, L2TP_CMD_SESSION_GET) < 0) {
873 l2tp_session_dec_refcount(session);
309795f4 874 break;
e08293a4
GN
875 }
876 l2tp_session_dec_refcount(session);
309795f4
JC
877
878 si++;
879 }
880
881out:
882 cb->args[0] = ti;
883 cb->args[1] = si;
884
885 return skb->len;
886}
887
f5bb341e 888static const struct nla_policy l2tp_nl_policy[L2TP_ATTR_MAX + 1] = {
309795f4
JC
889 [L2TP_ATTR_NONE] = { .type = NLA_UNSPEC, },
890 [L2TP_ATTR_PW_TYPE] = { .type = NLA_U16, },
891 [L2TP_ATTR_ENCAP_TYPE] = { .type = NLA_U16, },
892 [L2TP_ATTR_OFFSET] = { .type = NLA_U16, },
893 [L2TP_ATTR_DATA_SEQ] = { .type = NLA_U8, },
894 [L2TP_ATTR_L2SPEC_TYPE] = { .type = NLA_U8, },
895 [L2TP_ATTR_L2SPEC_LEN] = { .type = NLA_U8, },
896 [L2TP_ATTR_PROTO_VERSION] = { .type = NLA_U8, },
897 [L2TP_ATTR_CONN_ID] = { .type = NLA_U32, },
898 [L2TP_ATTR_PEER_CONN_ID] = { .type = NLA_U32, },
899 [L2TP_ATTR_SESSION_ID] = { .type = NLA_U32, },
900 [L2TP_ATTR_PEER_SESSION_ID] = { .type = NLA_U32, },
901 [L2TP_ATTR_UDP_CSUM] = { .type = NLA_U8, },
902 [L2TP_ATTR_VLAN_ID] = { .type = NLA_U16, },
903 [L2TP_ATTR_DEBUG] = { .type = NLA_U32, },
904 [L2TP_ATTR_RECV_SEQ] = { .type = NLA_U8, },
905 [L2TP_ATTR_SEND_SEQ] = { .type = NLA_U8, },
906 [L2TP_ATTR_LNS_MODE] = { .type = NLA_U8, },
907 [L2TP_ATTR_USING_IPSEC] = { .type = NLA_U8, },
908 [L2TP_ATTR_RECV_TIMEOUT] = { .type = NLA_MSECS, },
909 [L2TP_ATTR_FD] = { .type = NLA_U32, },
910 [L2TP_ATTR_IP_SADDR] = { .type = NLA_U32, },
911 [L2TP_ATTR_IP_DADDR] = { .type = NLA_U32, },
912 [L2TP_ATTR_UDP_SPORT] = { .type = NLA_U16, },
913 [L2TP_ATTR_UDP_DPORT] = { .type = NLA_U16, },
914 [L2TP_ATTR_MTU] = { .type = NLA_U16, },
915 [L2TP_ATTR_MRU] = { .type = NLA_U16, },
916 [L2TP_ATTR_STATS] = { .type = NLA_NESTED, },
f9bac8df
CE
917 [L2TP_ATTR_IP6_SADDR] = {
918 .type = NLA_BINARY,
919 .len = sizeof(struct in6_addr),
920 },
921 [L2TP_ATTR_IP6_DADDR] = {
922 .type = NLA_BINARY,
923 .len = sizeof(struct in6_addr),
924 },
309795f4
JC
925 [L2TP_ATTR_IFNAME] = {
926 .type = NLA_NUL_STRING,
927 .len = IFNAMSIZ - 1,
928 },
929 [L2TP_ATTR_COOKIE] = {
930 .type = NLA_BINARY,
931 .len = 8,
932 },
933 [L2TP_ATTR_PEER_COOKIE] = {
934 .type = NLA_BINARY,
935 .len = 8,
936 },
937};
938
4534de83 939static const struct genl_ops l2tp_nl_ops[] = {
309795f4
JC
940 {
941 .cmd = L2TP_CMD_NOOP,
942 .doit = l2tp_nl_cmd_noop,
943 .policy = l2tp_nl_policy,
944 /* can be retrieved by unprivileged users */
945 },
946 {
947 .cmd = L2TP_CMD_TUNNEL_CREATE,
948 .doit = l2tp_nl_cmd_tunnel_create,
949 .policy = l2tp_nl_policy,
950 .flags = GENL_ADMIN_PERM,
951 },
952 {
953 .cmd = L2TP_CMD_TUNNEL_DELETE,
954 .doit = l2tp_nl_cmd_tunnel_delete,
955 .policy = l2tp_nl_policy,
956 .flags = GENL_ADMIN_PERM,
957 },
958 {
959 .cmd = L2TP_CMD_TUNNEL_MODIFY,
960 .doit = l2tp_nl_cmd_tunnel_modify,
961 .policy = l2tp_nl_policy,
962 .flags = GENL_ADMIN_PERM,
963 },
964 {
965 .cmd = L2TP_CMD_TUNNEL_GET,
966 .doit = l2tp_nl_cmd_tunnel_get,
967 .dumpit = l2tp_nl_cmd_tunnel_dump,
968 .policy = l2tp_nl_policy,
969 .flags = GENL_ADMIN_PERM,
970 },
971 {
972 .cmd = L2TP_CMD_SESSION_CREATE,
973 .doit = l2tp_nl_cmd_session_create,
974 .policy = l2tp_nl_policy,
975 .flags = GENL_ADMIN_PERM,
976 },
977 {
978 .cmd = L2TP_CMD_SESSION_DELETE,
979 .doit = l2tp_nl_cmd_session_delete,
980 .policy = l2tp_nl_policy,
981 .flags = GENL_ADMIN_PERM,
982 },
983 {
984 .cmd = L2TP_CMD_SESSION_MODIFY,
985 .doit = l2tp_nl_cmd_session_modify,
986 .policy = l2tp_nl_policy,
987 .flags = GENL_ADMIN_PERM,
988 },
989 {
990 .cmd = L2TP_CMD_SESSION_GET,
991 .doit = l2tp_nl_cmd_session_get,
992 .dumpit = l2tp_nl_cmd_session_dump,
993 .policy = l2tp_nl_policy,
994 .flags = GENL_ADMIN_PERM,
995 },
996};
997
56989f6d 998static struct genl_family l2tp_nl_family __ro_after_init = {
489111e5
JB
999 .name = L2TP_GENL_NAME,
1000 .version = L2TP_GENL_VERSION,
1001 .hdrsize = 0,
1002 .maxattr = L2TP_ATTR_MAX,
1003 .netnsok = true,
1004 .module = THIS_MODULE,
1005 .ops = l2tp_nl_ops,
1006 .n_ops = ARRAY_SIZE(l2tp_nl_ops),
1007 .mcgrps = l2tp_multicast_group,
1008 .n_mcgrps = ARRAY_SIZE(l2tp_multicast_group),
1009};
1010
309795f4
JC
1011int l2tp_nl_register_ops(enum l2tp_pwtype pw_type, const struct l2tp_nl_cmd_ops *ops)
1012{
1013 int ret;
1014
1015 ret = -EINVAL;
1016 if (pw_type >= __L2TP_PWTYPE_MAX)
1017 goto err;
1018
1019 genl_lock();
1020 ret = -EBUSY;
1021 if (l2tp_nl_cmd_ops[pw_type])
1022 goto out;
1023
1024 l2tp_nl_cmd_ops[pw_type] = ops;
8cb49014 1025 ret = 0;
309795f4
JC
1026
1027out:
1028 genl_unlock();
1029err:
8cb49014 1030 return ret;
309795f4
JC
1031}
1032EXPORT_SYMBOL_GPL(l2tp_nl_register_ops);
1033
1034void l2tp_nl_unregister_ops(enum l2tp_pwtype pw_type)
1035{
1036 if (pw_type < __L2TP_PWTYPE_MAX) {
1037 genl_lock();
1038 l2tp_nl_cmd_ops[pw_type] = NULL;
1039 genl_unlock();
1040 }
1041}
1042EXPORT_SYMBOL_GPL(l2tp_nl_unregister_ops);
1043
56989f6d 1044static int __init l2tp_nl_init(void)
309795f4 1045{
a4ca44fa 1046 pr_info("L2TP netlink interface\n");
489111e5 1047 return genl_register_family(&l2tp_nl_family);
309795f4
JC
1048}
1049
1050static void l2tp_nl_cleanup(void)
1051{
1052 genl_unregister_family(&l2tp_nl_family);
1053}
1054
1055module_init(l2tp_nl_init);
1056module_exit(l2tp_nl_cleanup);
1057
1058MODULE_AUTHOR("James Chapman <jchapman@katalix.com>");
1059MODULE_DESCRIPTION("L2TP netlink");
1060MODULE_LICENSE("GPL");
1061MODULE_VERSION("1.0");
e9412c37 1062MODULE_ALIAS_GENL_FAMILY("l2tp");