nfp: flower: validate encapsulation control flags
authorAsbjørn Sloth Tønnesen <ast@fiberby.net>
Sun, 9 Jun 2024 17:33:54 +0000 (17:33 +0000)
committerJakub Kicinski <kuba@kernel.org>
Thu, 13 Jun 2024 00:56:01 +0000 (17:56 -0700)
Encapsulation control flags are currently not used anywhere,
so all flags are currently unsupported by all drivers.

This patch adds validation of this assumption, so that
encapsulation flags may be used in the future.

In case any encapsulation control flags are masked,
flow_rule_match_has_enc_control_flags() sets a NL extended
error message, and we return -EOPNOTSUPP.

Only compile tested.

Signed-off-by: Asbjørn Sloth Tønnesen <ast@fiberby.net>
Signed-off-by: Louis Peens <louis.peens@corigine.com>
Reviewed-by: Davide Caratti <dcaratti@redhat.com>
Link: https://lore.kernel.org/r/20240609173358.193178-5-ast@fiberby.net
Signed-off-by: Jakub Kicinski <kuba@kernel.org>
drivers/net/ethernet/netronome/nfp/flower/offload.c

index 8e0a890381b60e29a3d507983940076a543edb82..46ffc2c2089301d21bf24f92b85fb807e146a436 100644 (file)
@@ -321,6 +321,10 @@ nfp_flower_calculate_key_layers(struct nfp_app *app,
 
                flow_rule_match_enc_control(rule, &enc_ctl);
 
+               if (flow_rule_has_enc_control_flags(enc_ctl.mask->flags,
+                                                   extack))
+                       return -EOPNOTSUPP;
+
                if (enc_ctl.mask->addr_type != 0xffff) {
                        NL_SET_ERR_MSG_MOD(extack, "unsupported offload: wildcarded protocols on tunnels are not supported");
                        return -EOPNOTSUPP;