1 // SPDX-License-Identifier: GPL-2.0
2 #include <linux/kernel.h>
3 #include <linux/list.h>
4 #include <linux/netdevice.h>
5 #include <linux/rtnetlink.h>
6 #include <linux/skbuff.h>
8 #include <net/switchdev.h>
10 #include "br_private.h"
12 static struct static_key_false br_switchdev_tx_fwd_offload;
14 static bool nbp_switchdev_can_offload_tx_fwd(const struct net_bridge_port *p,
15 const struct sk_buff *skb)
17 if (!static_branch_unlikely(&br_switchdev_tx_fwd_offload))
20 return (p->flags & BR_TX_FWD_OFFLOAD) &&
21 (p->hwdom != BR_INPUT_SKB_CB(skb)->src_hwdom);
24 bool br_switchdev_frame_uses_tx_fwd_offload(struct sk_buff *skb)
26 if (!static_branch_unlikely(&br_switchdev_tx_fwd_offload))
29 return BR_INPUT_SKB_CB(skb)->tx_fwd_offload;
32 void br_switchdev_frame_set_offload_fwd_mark(struct sk_buff *skb)
34 skb->offload_fwd_mark = br_switchdev_frame_uses_tx_fwd_offload(skb);
37 /* Mark the frame for TX forwarding offload if this egress port supports it */
38 void nbp_switchdev_frame_mark_tx_fwd_offload(const struct net_bridge_port *p,
41 if (nbp_switchdev_can_offload_tx_fwd(p, skb))
42 BR_INPUT_SKB_CB(skb)->tx_fwd_offload = true;
45 /* Lazily adds the hwdom of the egress bridge port to the bit mask of hwdoms
46 * that the skb has been already forwarded to, to avoid further cloning to
47 * other ports in the same hwdom by making nbp_switchdev_allowed_egress()
50 void nbp_switchdev_frame_mark_tx_fwd_to_hwdom(const struct net_bridge_port *p,
53 if (nbp_switchdev_can_offload_tx_fwd(p, skb))
54 set_bit(p->hwdom, &BR_INPUT_SKB_CB(skb)->fwd_hwdoms);
57 void nbp_switchdev_frame_mark(const struct net_bridge_port *p,
61 BR_INPUT_SKB_CB(skb)->src_hwdom = p->hwdom;
64 bool nbp_switchdev_allowed_egress(const struct net_bridge_port *p,
65 const struct sk_buff *skb)
67 struct br_input_skb_cb *cb = BR_INPUT_SKB_CB(skb);
69 return !test_bit(p->hwdom, &cb->fwd_hwdoms) &&
70 (!skb->offload_fwd_mark || cb->src_hwdom != p->hwdom);
73 /* Flags that can be offloaded to hardware */
74 #define BR_PORT_FLAGS_HW_OFFLOAD (BR_LEARNING | BR_FLOOD | BR_PORT_MAB | \
75 BR_MCAST_FLOOD | BR_BCAST_FLOOD | BR_PORT_LOCKED | \
76 BR_HAIRPIN_MODE | BR_ISOLATED | BR_MULTICAST_TO_UNICAST)
78 int br_switchdev_set_port_flag(struct net_bridge_port *p,
81 struct netlink_ext_ack *extack)
83 struct switchdev_attr attr = {
86 struct switchdev_notifier_port_attr_info info = {
91 mask &= BR_PORT_FLAGS_HW_OFFLOAD;
95 attr.id = SWITCHDEV_ATTR_ID_PORT_PRE_BRIDGE_FLAGS;
96 attr.u.brport_flags.val = flags;
97 attr.u.brport_flags.mask = mask;
99 /* We run from atomic context here */
100 err = call_switchdev_notifiers(SWITCHDEV_PORT_ATTR_SET, p->dev,
102 err = notifier_to_errno(err);
103 if (err == -EOPNOTSUPP)
107 NL_SET_ERR_MSG_WEAK_MOD(extack,
108 "bridge flag offload is not supported");
112 attr.id = SWITCHDEV_ATTR_ID_PORT_BRIDGE_FLAGS;
113 attr.flags = SWITCHDEV_F_DEFER;
115 err = switchdev_port_attr_set(p->dev, &attr, extack);
117 NL_SET_ERR_MSG_WEAK_MOD(extack,
118 "error setting offload flag on port");
125 static void br_switchdev_fdb_populate(struct net_bridge *br,
126 struct switchdev_notifier_fdb_info *item,
127 const struct net_bridge_fdb_entry *fdb,
130 const struct net_bridge_port *p = READ_ONCE(fdb->dst);
132 item->addr = fdb->key.addr.addr;
133 item->vid = fdb->key.vlan_id;
134 item->added_by_user = test_bit(BR_FDB_ADDED_BY_USER, &fdb->flags);
135 item->offloaded = test_bit(BR_FDB_OFFLOADED, &fdb->flags);
136 item->is_local = test_bit(BR_FDB_LOCAL, &fdb->flags);
137 item->locked = false;
138 item->info.dev = (!p || item->is_local) ? br->dev : p->dev;
139 item->info.ctx = ctx;
143 br_switchdev_fdb_notify(struct net_bridge *br,
144 const struct net_bridge_fdb_entry *fdb, int type)
146 struct switchdev_notifier_fdb_info item;
148 if (test_bit(BR_FDB_LOCKED, &fdb->flags))
151 /* Entries with these flags were created using ndm_state == NUD_REACHABLE,
152 * ndm_flags == NTF_MASTER( | NTF_STICKY), ext_flags == 0 by something
153 * equivalent to 'bridge fdb add ... master dynamic (sticky)'.
154 * Drivers don't know how to deal with these, so don't notify them to
155 * avoid confusing them.
157 if (test_bit(BR_FDB_ADDED_BY_USER, &fdb->flags) &&
158 !test_bit(BR_FDB_STATIC, &fdb->flags) &&
159 !test_bit(BR_FDB_ADDED_BY_EXT_LEARN, &fdb->flags))
162 br_switchdev_fdb_populate(br, &item, fdb, NULL);
166 call_switchdev_notifiers(SWITCHDEV_FDB_DEL_TO_DEVICE,
167 item.info.dev, &item.info, NULL);
170 call_switchdev_notifiers(SWITCHDEV_FDB_ADD_TO_DEVICE,
171 item.info.dev, &item.info, NULL);
176 int br_switchdev_port_vlan_add(struct net_device *dev, u16 vid, u16 flags,
177 bool changed, struct netlink_ext_ack *extack)
179 struct switchdev_obj_port_vlan v = {
181 .obj.id = SWITCHDEV_OBJ_ID_PORT_VLAN,
187 return switchdev_port_obj_add(dev, &v.obj, extack);
190 int br_switchdev_port_vlan_del(struct net_device *dev, u16 vid)
192 struct switchdev_obj_port_vlan v = {
194 .obj.id = SWITCHDEV_OBJ_ID_PORT_VLAN,
198 return switchdev_port_obj_del(dev, &v.obj);
201 static int nbp_switchdev_hwdom_set(struct net_bridge_port *joining)
203 struct net_bridge *br = joining->br;
204 struct net_bridge_port *p;
207 /* joining is yet to be added to the port list. */
208 list_for_each_entry(p, &br->port_list, list) {
209 if (netdev_phys_item_id_same(&joining->ppid, &p->ppid)) {
210 joining->hwdom = p->hwdom;
215 hwdom = find_next_zero_bit(&br->busy_hwdoms, BR_HWDOM_MAX, 1);
216 if (hwdom >= BR_HWDOM_MAX)
219 set_bit(hwdom, &br->busy_hwdoms);
220 joining->hwdom = hwdom;
224 static void nbp_switchdev_hwdom_put(struct net_bridge_port *leaving)
226 struct net_bridge *br = leaving->br;
227 struct net_bridge_port *p;
229 /* leaving is no longer in the port list. */
230 list_for_each_entry(p, &br->port_list, list) {
231 if (p->hwdom == leaving->hwdom)
235 clear_bit(leaving->hwdom, &br->busy_hwdoms);
238 static int nbp_switchdev_add(struct net_bridge_port *p,
239 struct netdev_phys_item_id ppid,
241 struct netlink_ext_ack *extack)
245 if (p->offload_count) {
246 /* Prevent unsupported configurations such as a bridge port
247 * which is a bonding interface, and the member ports are from
248 * different hardware switches.
250 if (!netdev_phys_item_id_same(&p->ppid, &ppid)) {
251 NL_SET_ERR_MSG_MOD(extack,
252 "Same bridge port cannot be offloaded by two physical switches");
256 /* Tolerate drivers that call switchdev_bridge_port_offload()
257 * more than once for the same bridge port, such as when the
258 * bridge port is an offloaded bonding/team interface.
266 p->offload_count = 1;
268 err = nbp_switchdev_hwdom_set(p);
272 if (tx_fwd_offload) {
273 p->flags |= BR_TX_FWD_OFFLOAD;
274 static_branch_inc(&br_switchdev_tx_fwd_offload);
280 static void nbp_switchdev_del(struct net_bridge_port *p)
282 if (WARN_ON(!p->offload_count))
287 if (p->offload_count)
291 nbp_switchdev_hwdom_put(p);
293 if (p->flags & BR_TX_FWD_OFFLOAD) {
294 p->flags &= ~BR_TX_FWD_OFFLOAD;
295 static_branch_dec(&br_switchdev_tx_fwd_offload);
300 br_switchdev_fdb_replay_one(struct net_bridge *br, struct notifier_block *nb,
301 const struct net_bridge_fdb_entry *fdb,
302 unsigned long action, const void *ctx)
304 struct switchdev_notifier_fdb_info item;
307 br_switchdev_fdb_populate(br, &item, fdb, ctx);
309 err = nb->notifier_call(nb, action, &item);
310 return notifier_to_errno(err);
314 br_switchdev_fdb_replay(const struct net_device *br_dev, const void *ctx,
315 bool adding, struct notifier_block *nb)
317 struct net_bridge_fdb_entry *fdb;
318 struct net_bridge *br;
319 unsigned long action;
325 if (!netif_is_bridge_master(br_dev))
328 br = netdev_priv(br_dev);
331 action = SWITCHDEV_FDB_ADD_TO_DEVICE;
333 action = SWITCHDEV_FDB_DEL_TO_DEVICE;
337 hlist_for_each_entry_rcu(fdb, &br->fdb_list, fdb_node) {
338 err = br_switchdev_fdb_replay_one(br, nb, fdb, action, ctx);
348 static int br_switchdev_vlan_attr_replay(struct net_device *br_dev,
350 struct notifier_block *nb,
351 struct netlink_ext_ack *extack)
353 struct switchdev_notifier_port_attr_info attr_info = {
360 struct net_bridge *br = netdev_priv(br_dev);
361 struct net_bridge_vlan_group *vg;
362 struct switchdev_attr attr;
363 struct net_bridge_vlan *v;
366 attr_info.attr = &attr;
367 attr.orig_dev = br_dev;
369 vg = br_vlan_group(br);
373 list_for_each_entry(v, &vg->vlan_list, vlist) {
375 attr.id = SWITCHDEV_ATTR_ID_VLAN_MSTI;
376 attr.u.vlan_msti.vid = v->vid;
377 attr.u.vlan_msti.msti = v->msti;
379 err = nb->notifier_call(nb, SWITCHDEV_PORT_ATTR_SET,
381 err = notifier_to_errno(err);
391 br_switchdev_vlan_replay_one(struct notifier_block *nb,
392 struct net_device *dev,
393 struct switchdev_obj_port_vlan *vlan,
394 const void *ctx, unsigned long action,
395 struct netlink_ext_ack *extack)
397 struct switchdev_notifier_port_obj_info obj_info = {
407 err = nb->notifier_call(nb, action, &obj_info);
408 return notifier_to_errno(err);
411 static int br_switchdev_vlan_replay_group(struct notifier_block *nb,
412 struct net_device *dev,
413 struct net_bridge_vlan_group *vg,
414 const void *ctx, unsigned long action,
415 struct netlink_ext_ack *extack)
417 struct net_bridge_vlan *v;
424 pvid = br_get_pvid(vg);
426 list_for_each_entry(v, &vg->vlan_list, vlist) {
427 struct switchdev_obj_port_vlan vlan = {
429 .obj.id = SWITCHDEV_OBJ_ID_PORT_VLAN,
430 .flags = br_vlan_flags(v, pvid),
434 if (!br_vlan_should_use(v))
437 err = br_switchdev_vlan_replay_one(nb, dev, &vlan, ctx,
446 static int br_switchdev_vlan_replay(struct net_device *br_dev,
447 const void *ctx, bool adding,
448 struct notifier_block *nb,
449 struct netlink_ext_ack *extack)
451 struct net_bridge *br = netdev_priv(br_dev);
452 struct net_bridge_port *p;
453 unsigned long action;
461 if (!netif_is_bridge_master(br_dev))
465 action = SWITCHDEV_PORT_OBJ_ADD;
467 action = SWITCHDEV_PORT_OBJ_DEL;
469 err = br_switchdev_vlan_replay_group(nb, br_dev, br_vlan_group(br),
470 ctx, action, extack);
474 list_for_each_entry(p, &br->port_list, list) {
475 struct net_device *dev = p->dev;
477 err = br_switchdev_vlan_replay_group(nb, dev,
479 ctx, action, extack);
485 err = br_switchdev_vlan_attr_replay(br_dev, ctx, nb, extack);
493 #ifdef CONFIG_BRIDGE_IGMP_SNOOPING
494 struct br_switchdev_mdb_complete_info {
495 struct net_bridge_port *port;
499 static void br_switchdev_mdb_complete(struct net_device *dev, int err, void *priv)
501 struct br_switchdev_mdb_complete_info *data = priv;
502 struct net_bridge_port_group __rcu **pp;
503 struct net_bridge_port_group *p;
504 struct net_bridge_mdb_entry *mp;
505 struct net_bridge_port *port = data->port;
506 struct net_bridge *br = port->br;
509 if (err == -EOPNOTSUPP)
512 spin_lock_bh(&br->multicast_lock);
513 mp = br_mdb_ip_get(br, &data->ip);
516 for (pp = &mp->ports; (p = mlock_dereference(*pp, br)) != NULL;
518 if (p->key.port != port)
521 old_flags = p->flags;
522 br_multicast_set_pg_offload_flags(p, !err);
523 if (br_mdb_should_notify(br, old_flags ^ p->flags))
524 br_mdb_flag_change_notify(br->dev, mp, p);
527 spin_unlock_bh(&br->multicast_lock);
532 static void br_switchdev_mdb_populate(struct switchdev_obj_port_mdb *mdb,
533 const struct net_bridge_mdb_entry *mp)
535 if (mp->addr.proto == htons(ETH_P_IP))
536 ip_eth_mc_map(mp->addr.dst.ip4, mdb->addr);
537 #if IS_ENABLED(CONFIG_IPV6)
538 else if (mp->addr.proto == htons(ETH_P_IPV6))
539 ipv6_eth_mc_map(&mp->addr.dst.ip6, mdb->addr);
542 ether_addr_copy(mdb->addr, mp->addr.dst.mac_addr);
544 mdb->vid = mp->addr.vid;
547 static void br_switchdev_host_mdb_one(struct net_device *dev,
548 struct net_device *lower_dev,
549 struct net_bridge_mdb_entry *mp,
552 struct switchdev_obj_port_mdb mdb = {
554 .id = SWITCHDEV_OBJ_ID_HOST_MDB,
555 .flags = SWITCHDEV_F_DEFER,
560 br_switchdev_mdb_populate(&mdb, mp);
564 switchdev_port_obj_add(lower_dev, &mdb.obj, NULL);
567 switchdev_port_obj_del(lower_dev, &mdb.obj);
572 static void br_switchdev_host_mdb(struct net_device *dev,
573 struct net_bridge_mdb_entry *mp, int type)
575 struct net_device *lower_dev;
576 struct list_head *iter;
578 netdev_for_each_lower_dev(dev, lower_dev, iter)
579 br_switchdev_host_mdb_one(dev, lower_dev, mp, type);
583 br_switchdev_mdb_replay_one(struct notifier_block *nb, struct net_device *dev,
584 const struct switchdev_obj_port_mdb *mdb,
585 unsigned long action, const void *ctx,
586 struct netlink_ext_ack *extack)
588 struct switchdev_notifier_port_obj_info obj_info = {
598 err = nb->notifier_call(nb, action, &obj_info);
599 return notifier_to_errno(err);
602 static int br_switchdev_mdb_queue_one(struct list_head *mdb_list,
603 struct net_device *dev,
604 unsigned long action,
605 enum switchdev_obj_id id,
606 const struct net_bridge_mdb_entry *mp,
607 struct net_device *orig_dev)
609 struct switchdev_obj_port_mdb mdb = {
612 .orig_dev = orig_dev,
615 struct switchdev_obj_port_mdb *pmdb;
617 br_switchdev_mdb_populate(&mdb, mp);
619 if (action == SWITCHDEV_PORT_OBJ_ADD &&
620 switchdev_port_obj_act_is_deferred(dev, action, &mdb.obj)) {
621 /* This event is already in the deferred queue of
622 * events, so this replay must be elided, lest the
623 * driver receives duplicate events for it. This can
624 * only happen when replaying additions, since
625 * modifications are always immediately visible in
626 * br->mdb_list, whereas actual event delivery may be
632 pmdb = kmemdup(&mdb, sizeof(mdb), GFP_ATOMIC);
636 list_add_tail(&pmdb->obj.list, mdb_list);
640 void br_switchdev_mdb_notify(struct net_device *dev,
641 struct net_bridge_mdb_entry *mp,
642 struct net_bridge_port_group *pg,
645 struct br_switchdev_mdb_complete_info *complete_info;
646 struct switchdev_obj_port_mdb mdb = {
648 .id = SWITCHDEV_OBJ_ID_PORT_MDB,
649 .flags = SWITCHDEV_F_DEFER,
654 return br_switchdev_host_mdb(dev, mp, type);
656 br_switchdev_mdb_populate(&mdb, mp);
658 mdb.obj.orig_dev = pg->key.port->dev;
661 complete_info = kmalloc(sizeof(*complete_info), GFP_ATOMIC);
664 complete_info->port = pg->key.port;
665 complete_info->ip = mp->addr;
666 mdb.obj.complete_priv = complete_info;
667 mdb.obj.complete = br_switchdev_mdb_complete;
668 if (switchdev_port_obj_add(pg->key.port->dev, &mdb.obj, NULL))
669 kfree(complete_info);
672 switchdev_port_obj_del(pg->key.port->dev, &mdb.obj);
679 br_switchdev_mdb_replay(struct net_device *br_dev, struct net_device *dev,
680 const void *ctx, bool adding, struct notifier_block *nb,
681 struct netlink_ext_ack *extack)
683 #ifdef CONFIG_BRIDGE_IGMP_SNOOPING
684 const struct net_bridge_mdb_entry *mp;
685 struct switchdev_obj *obj, *tmp;
686 struct net_bridge *br;
687 unsigned long action;
696 if (!netif_is_bridge_master(br_dev) || !netif_is_bridge_port(dev))
699 br = netdev_priv(br_dev);
701 if (!br_opt_get(br, BROPT_MULTICAST_ENABLED))
705 action = SWITCHDEV_PORT_OBJ_ADD;
707 action = SWITCHDEV_PORT_OBJ_DEL;
709 /* br_switchdev_mdb_queue_one() will take care to not queue a
710 * replay of an event that is already pending in the switchdev
711 * deferred queue. In order to safely determine that, there
712 * must be no new deferred MDB notifications enqueued for the
713 * duration of the MDB scan. Therefore, grab the write-side
714 * lock to avoid racing with any concurrent IGMP/MLD snooping.
716 spin_lock_bh(&br->multicast_lock);
718 hlist_for_each_entry(mp, &br->mdb_list, mdb_node) {
719 struct net_bridge_port_group __rcu * const *pp;
720 const struct net_bridge_port_group *p;
722 if (mp->host_joined) {
723 err = br_switchdev_mdb_queue_one(&mdb_list, dev, action,
724 SWITCHDEV_OBJ_ID_HOST_MDB,
727 spin_unlock_bh(&br->multicast_lock);
732 for (pp = &mp->ports; (p = mlock_dereference(*pp, br)) != NULL;
734 if (p->key.port->dev != dev)
737 err = br_switchdev_mdb_queue_one(&mdb_list, dev, action,
738 SWITCHDEV_OBJ_ID_PORT_MDB,
741 spin_unlock_bh(&br->multicast_lock);
747 spin_unlock_bh(&br->multicast_lock);
749 list_for_each_entry(obj, &mdb_list, list) {
750 err = br_switchdev_mdb_replay_one(nb, dev,
751 SWITCHDEV_OBJ_PORT_MDB(obj),
752 action, ctx, extack);
753 if (err == -EOPNOTSUPP)
760 list_for_each_entry_safe(obj, tmp, &mdb_list, list) {
761 list_del(&obj->list);
762 kfree(SWITCHDEV_OBJ_PORT_MDB(obj));
772 static int nbp_switchdev_sync_objs(struct net_bridge_port *p, const void *ctx,
773 struct notifier_block *atomic_nb,
774 struct notifier_block *blocking_nb,
775 struct netlink_ext_ack *extack)
777 struct net_device *br_dev = p->br->dev;
778 struct net_device *dev = p->dev;
781 err = br_switchdev_vlan_replay(br_dev, ctx, true, blocking_nb, extack);
782 if (err && err != -EOPNOTSUPP)
785 err = br_switchdev_mdb_replay(br_dev, dev, ctx, true, blocking_nb,
788 /* -EOPNOTSUPP not propagated from MDB replay. */
792 err = br_switchdev_fdb_replay(br_dev, ctx, true, atomic_nb);
793 if (err && err != -EOPNOTSUPP)
799 static void nbp_switchdev_unsync_objs(struct net_bridge_port *p,
801 struct notifier_block *atomic_nb,
802 struct notifier_block *blocking_nb)
804 struct net_device *br_dev = p->br->dev;
805 struct net_device *dev = p->dev;
807 br_switchdev_fdb_replay(br_dev, ctx, false, atomic_nb);
809 br_switchdev_mdb_replay(br_dev, dev, ctx, false, blocking_nb, NULL);
811 br_switchdev_vlan_replay(br_dev, ctx, false, blocking_nb, NULL);
813 /* Make sure that the device leaving this bridge has seen all
814 * relevant events before it is disassociated. In the normal
815 * case, when the device is directly attached to the bridge,
816 * this is covered by del_nbp(). If the association was indirect
817 * however, e.g. via a team or bond, and the device is leaving
818 * that intermediate device, then the bridge port remains in
821 switchdev_deferred_process();
824 /* Let the bridge know that this port is offloaded, so that it can assign a
825 * switchdev hardware domain to it.
827 int br_switchdev_port_offload(struct net_bridge_port *p,
828 struct net_device *dev, const void *ctx,
829 struct notifier_block *atomic_nb,
830 struct notifier_block *blocking_nb,
832 struct netlink_ext_ack *extack)
834 struct netdev_phys_item_id ppid;
837 err = dev_get_port_parent_id(dev, &ppid, false);
841 err = nbp_switchdev_add(p, ppid, tx_fwd_offload, extack);
845 err = nbp_switchdev_sync_objs(p, ctx, atomic_nb, blocking_nb, extack);
847 goto out_switchdev_del;
852 nbp_switchdev_del(p);
857 void br_switchdev_port_unoffload(struct net_bridge_port *p, const void *ctx,
858 struct notifier_block *atomic_nb,
859 struct notifier_block *blocking_nb)
861 nbp_switchdev_unsync_objs(p, ctx, atomic_nb, blocking_nb);
863 nbp_switchdev_del(p);
866 int br_switchdev_port_replay(struct net_bridge_port *p,
867 struct net_device *dev, const void *ctx,
868 struct notifier_block *atomic_nb,
869 struct notifier_block *blocking_nb,
870 struct netlink_ext_ack *extack)
872 return nbp_switchdev_sync_objs(p, ctx, atomic_nb, blocking_nb, extack);