af_inet.c 51.1 KB
Newer Older
1
// SPDX-License-Identifier: GPL-2.0-or-later
Linus Torvalds's avatar
Linus Torvalds committed
2 3 4 5 6 7 8
/*
 * INET		An implementation of the TCP/IP protocol suite for the LINUX
 *		operating system.  INET is implemented using the  BSD Socket
 *		interface as the means of communication with the user level.
 *
 *		PF_INET protocol family socket handler.
 *
9
 * Authors:	Ross Biro
Linus Torvalds's avatar
Linus Torvalds committed
10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46 47 48 49 50 51 52 53 54 55 56 57 58 59 60 61 62 63
 *		Fred N. van Kempen, <waltje@uWalt.NL.Mugnet.ORG>
 *		Florian La Roche, <flla@stud.uni-sb.de>
 *		Alan Cox, <A.Cox@swansea.ac.uk>
 *
 * Changes (see also sock.c)
 *
 *		piggy,
 *		Karl Knutson	:	Socket protocol table
 *		A.N.Kuznetsov	:	Socket death error in accept().
 *		John Richardson :	Fix non blocking error in connect()
 *					so sockets that fail to connect
 *					don't return -EINPROGRESS.
 *		Alan Cox	:	Asynchronous I/O support
 *		Alan Cox	:	Keep correct socket pointer on sock
 *					structures
 *					when accept() ed
 *		Alan Cox	:	Semantics of SO_LINGER aren't state
 *					moved to close when you look carefully.
 *					With this fixed and the accept bug fixed
 *					some RPC stuff seems happier.
 *		Niibe Yutaka	:	4.4BSD style write async I/O
 *		Alan Cox,
 *		Tony Gale 	:	Fixed reuse semantics.
 *		Alan Cox	:	bind() shouldn't abort existing but dead
 *					sockets. Stops FTP netin:.. I hope.
 *		Alan Cox	:	bind() works correctly for RAW sockets.
 *					Note that FreeBSD at least was broken
 *					in this respect so be careful with
 *					compatibility tests...
 *		Alan Cox	:	routing cache support
 *		Alan Cox	:	memzero the socket structure for
 *					compactness.
 *		Matt Day	:	nonblock connect error handler
 *		Alan Cox	:	Allow large numbers of pending sockets
 *					(eg for big web sites), but only if
 *					specifically application requested.
 *		Alan Cox	:	New buffering throughout IP. Used
 *					dumbly.
 *		Alan Cox	:	New buffering now used smartly.
 *		Alan Cox	:	BSD rather than common sense
 *					interpretation of listen.
 *		Germano Caronni	:	Assorted small races.
 *		Alan Cox	:	sendmsg/recvmsg basic support.
 *		Alan Cox	:	Only sendmsg/recvmsg now supported.
 *		Alan Cox	:	Locked down bind (see security list).
 *		Alan Cox	:	Loosened bind a little.
 *		Mike McLagan	:	ADD/DEL DLCI Ioctls
 *	Willy Konynenberg	:	Transparent proxying support.
 *		David S. Miller	:	New socket lookup architecture.
 *					Some other random speedups.
 *		Cyrus Durgin	:	Cleaned up file for kmod hacks.
 *		Andi Kleen	:	Fix inet_stream_connect TCP race.
 */

64 65
#define pr_fmt(fmt) "IPv4: " fmt

Herbert Xu's avatar
Herbert Xu committed
66
#include <linux/err.h>
Linus Torvalds's avatar
Linus Torvalds committed
67 68 69 70 71
#include <linux/errno.h>
#include <linux/types.h>
#include <linux/socket.h>
#include <linux/in.h>
#include <linux/kernel.h>
72
#include <linux/kmod.h>
Linus Torvalds's avatar
Linus Torvalds committed
73 74 75 76 77
#include <linux/sched.h>
#include <linux/timer.h>
#include <linux/string.h>
#include <linux/sockios.h>
#include <linux/net.h>
78
#include <linux/capability.h>
Linus Torvalds's avatar
Linus Torvalds committed
79 80 81 82 83 84 85
#include <linux/fcntl.h>
#include <linux/mm.h>
#include <linux/interrupt.h>
#include <linux/stat.h>
#include <linux/init.h>
#include <linux/poll.h>
#include <linux/netfilter_ipv4.h>
86
#include <linux/random.h>
87
#include <linux/slab.h>
Linus Torvalds's avatar
Linus Torvalds committed
88

89
#include <linux/uaccess.h>
Linus Torvalds's avatar
Linus Torvalds committed
90 91 92

#include <linux/inet.h>
#include <linux/igmp.h>
93
#include <linux/inetdevice.h>
Linus Torvalds's avatar
Linus Torvalds committed
94
#include <linux/netdevice.h>
Herbert Xu's avatar
Herbert Xu committed
95
#include <net/checksum.h>
Linus Torvalds's avatar
Linus Torvalds committed
96 97 98 99 100
#include <net/ip.h>
#include <net/protocol.h>
#include <net/arp.h>
#include <net/route.h>
#include <net/ip_fib.h>
101
#include <net/inet_connection_sock.h>
102
#include <net/gro.h>
Linus Torvalds's avatar
Linus Torvalds committed
103 104
#include <net/tcp.h>
#include <net/udp.h>
105
#include <net/udplite.h>
106
#include <net/ping.h>
Linus Torvalds's avatar
Linus Torvalds committed
107 108 109 110 111
#include <linux/skbuff.h>
#include <net/sock.h>
#include <net/raw.h>
#include <net/icmp.h>
#include <net/inet_common.h>
112
#include <net/ip_tunnels.h>
Linus Torvalds's avatar
Linus Torvalds committed
113
#include <net/xfrm.h>
114
#include <net/net_namespace.h>
115
#include <net/secure_seq.h>
Linus Torvalds's avatar
Linus Torvalds committed
116 117 118
#ifdef CONFIG_IP_MROUTE
#include <linux/mroute.h>
#endif
119
#include <net/l3mdev.h>
120
#include <net/compat.h>
Linus Torvalds's avatar
Linus Torvalds committed
121

122
#include <trace/events/sock.h>
Linus Torvalds's avatar
Linus Torvalds committed
123 124 125 126 127 128 129 130 131 132 133 134 135 136 137 138

/* The inetsw table contains everything that inet_create needs to
 * build a new socket.
 */
static struct list_head inetsw[SOCK_MAX];
static DEFINE_SPINLOCK(inetsw_lock);

/* New destruction routine */

void inet_sock_destruct(struct sock *sk)
{
	struct inet_sock *inet = inet_sk(sk);

	__skb_queue_purge(&sk->sk_receive_queue);
	__skb_queue_purge(&sk->sk_error_queue);

139
	sk_mem_reclaim_final(sk);
Hideo Aoki's avatar
Hideo Aoki committed
140

Linus Torvalds's avatar
Linus Torvalds committed
141
	if (sk->sk_type == SOCK_STREAM && sk->sk_state != TCP_CLOSE) {
Eric Dumazet's avatar
Eric Dumazet committed
142
		pr_err("Attempt to release TCP socket in state %d %p\n",
Linus Torvalds's avatar
Linus Torvalds committed
143 144 145 146
		       sk->sk_state, sk);
		return;
	}
	if (!sock_flag(sk, SOCK_DEAD)) {
Eric Dumazet's avatar
Eric Dumazet committed
147
		pr_err("Attempt to release alive inet socket %p\n", sk);
Linus Torvalds's avatar
Linus Torvalds committed
148 149 150
		return;
	}

151 152 153 154
	WARN_ON_ONCE(atomic_read(&sk->sk_rmem_alloc));
	WARN_ON_ONCE(refcount_read(&sk->sk_wmem_alloc));
	WARN_ON_ONCE(sk->sk_wmem_queued);
	WARN_ON_ONCE(sk_forward_alloc_get(sk));
Linus Torvalds's avatar
Linus Torvalds committed
155

156
	kfree(rcu_dereference_protected(inet->inet_opt, 1));
157
	dst_release(rcu_dereference_protected(sk->sk_dst_cache, 1));
158
	dst_release(rcu_dereference_protected(sk->sk_rx_dst, 1));
159
	sk_refcnt_debug_dec(sk);
Linus Torvalds's avatar
Linus Torvalds committed
160
}
Eric Dumazet's avatar
Eric Dumazet committed
161
EXPORT_SYMBOL(inet_sock_destruct);
Linus Torvalds's avatar
Linus Torvalds committed
162 163 164 165 166 167 168 169 170 171 172 173 174 175 176 177 178

/*
 *	The routines beyond this point handle the behaviour of an AF_INET
 *	socket object. Mostly it punts to the subprotocols of IP to do
 *	the work.
 */

/*
 *	Automatically bind an unbound socket.
 */

static int inet_autobind(struct sock *sk)
{
	struct inet_sock *inet;
	/* We may need to bind the socket. */
	lock_sock(sk);
	inet = inet_sk(sk);
179
	if (!inet->inet_num) {
Linus Torvalds's avatar
Linus Torvalds committed
180 181 182 183
		if (sk->sk_prot->get_port(sk, 0)) {
			release_sock(sk);
			return -EAGAIN;
		}
184
		inet->inet_sport = htons(inet->inet_num);
Linus Torvalds's avatar
Linus Torvalds committed
185 186 187 188 189 190 191 192 193 194 195 196
	}
	release_sock(sk);
	return 0;
}

/*
 *	Move a socket into listening state.
 */
int inet_listen(struct socket *sock, int backlog)
{
	struct sock *sk = sock->sk;
	unsigned char old_state;
197
	int err, tcp_fastopen;
Linus Torvalds's avatar
Linus Torvalds committed
198 199 200 201 202 203 204 205 206 207 208

	lock_sock(sk);

	err = -EINVAL;
	if (sock->state != SS_UNCONNECTED || sock->type != SOCK_STREAM)
		goto out;

	old_state = sk->sk_state;
	if (!((1 << old_state) & (TCPF_CLOSE | TCPF_LISTEN)))
		goto out;

209
	WRITE_ONCE(sk->sk_max_ack_backlog, backlog);
Linus Torvalds's avatar
Linus Torvalds committed
210 211 212 213
	/* Really, if the socket is already in listen state
	 * we can only allow the backlog to be adjusted.
	 */
	if (old_state != TCP_LISTEN) {
214
		/* Enable TFO w/o requiring TCP_FASTOPEN socket option.
215
		 * Note that only TCP sockets (SOCK_STREAM) will reach here.
216 217 218
		 * Also fastopen backlog may already been set via the option
		 * because the socket was in TCP_LISTEN state previously but
		 * was shutdown() rather than close().
219
		 */
220 221 222
		tcp_fastopen = sock_net(sk)->ipv4.sysctl_tcp_fastopen;
		if ((tcp_fastopen & TFO_SERVER_WO_SOCKOPT1) &&
		    (tcp_fastopen & TFO_SERVER_ENABLE) &&
223
		    !inet_csk(sk)->icsk_accept_queue.fastopenq.max_qlen) {
224
			fastopen_queue_tune(sk, backlog);
225
			tcp_fastopen_init_key_once(sock_net(sk));
226
		}
227

228
		err = inet_csk_listen_start(sk);
Linus Torvalds's avatar
Linus Torvalds committed
229 230
		if (err)
			goto out;
231
		tcp_call_bpf(sk, BPF_SOCK_OPS_TCP_LISTEN_CB, 0, NULL);
Linus Torvalds's avatar
Linus Torvalds committed
232 233 234 235 236 237 238
	}
	err = 0;

out:
	release_sock(sk);
	return err;
}
Eric Dumazet's avatar
Eric Dumazet committed
239
EXPORT_SYMBOL(inet_listen);
Linus Torvalds's avatar
Linus Torvalds committed
240 241 242 243 244

/*
 *	Create an inet socket.
 */

245 246
static int inet_create(struct net *net, struct socket *sock, int protocol,
		       int kern)
Linus Torvalds's avatar
Linus Torvalds committed
247 248 249 250 251 252
{
	struct sock *sk;
	struct inet_protosw *answer;
	struct inet_sock *inet;
	struct proto *answer_prot;
	unsigned char answer_flags;
253
	int try_loading_module = 0;
254
	int err;
Linus Torvalds's avatar
Linus Torvalds committed
255

256 257 258
	if (protocol < 0 || protocol >= IPPROTO_MAX)
		return -EINVAL;

Linus Torvalds's avatar
Linus Torvalds committed
259 260 261
	sock->state = SS_UNCONNECTED;

	/* Look for the requested type/protocol pair. */
262
lookup_protocol:
263
	err = -ESOCKTNOSUPPORT;
Linus Torvalds's avatar
Linus Torvalds committed
264
	rcu_read_lock();
265
	list_for_each_entry_rcu(answer, &inetsw[sock->type], list) {
Linus Torvalds's avatar
Linus Torvalds committed
266

267
		err = 0;
Linus Torvalds's avatar
Linus Torvalds committed
268 269 270 271 272 273 274 275 276 277 278 279 280
		/* Check the non-wild match. */
		if (protocol == answer->protocol) {
			if (protocol != IPPROTO_IP)
				break;
		} else {
			/* Check for the two wild cases. */
			if (IPPROTO_IP == protocol) {
				protocol = answer->protocol;
				break;
			}
			if (IPPROTO_IP == answer->protocol)
				break;
		}
281
		err = -EPROTONOSUPPORT;
Linus Torvalds's avatar
Linus Torvalds committed
282 283
	}

284
	if (unlikely(err)) {
285 286 287 288 289 290 291 292 293 294 295 296 297 298 299 300 301 302 303 304 305
		if (try_loading_module < 2) {
			rcu_read_unlock();
			/*
			 * Be more specific, e.g. net-pf-2-proto-132-type-1
			 * (net-pf-PF_INET-proto-IPPROTO_SCTP-type-SOCK_STREAM)
			 */
			if (++try_loading_module == 1)
				request_module("net-pf-%d-proto-%d-type-%d",
					       PF_INET, protocol, sock->type);
			/*
			 * Fall back to generic, e.g. net-pf-2-proto-132
			 * (net-pf-PF_INET-proto-IPPROTO_SCTP)
			 */
			else
				request_module("net-pf-%d-proto-%d",
					       PF_INET, protocol);
			goto lookup_protocol;
		} else
			goto out_rcu_unlock;
	}

Linus Torvalds's avatar
Linus Torvalds committed
306
	err = -EPERM;
307 308
	if (sock->type == SOCK_RAW && !kern &&
	    !ns_capable(net->user_ns, CAP_NET_RAW))
Linus Torvalds's avatar
Linus Torvalds committed
309 310 311 312 313 314 315
		goto out_rcu_unlock;

	sock->ops = answer->ops;
	answer_prot = answer->prot;
	answer_flags = answer->flags;
	rcu_read_unlock();

316
	WARN_ON(!answer_prot->slab);
Linus Torvalds's avatar
Linus Torvalds committed
317

318
	err = -ENOMEM;
319
	sk = sk_alloc(net, PF_INET, GFP_KERNEL, answer_prot, kern);
320
	if (!sk)
Linus Torvalds's avatar
Linus Torvalds committed
321 322 323 324
		goto out;

	err = 0;
	if (INET_PROTOSW_REUSE & answer_flags)
325
		sk->sk_reuse = SK_CAN_REUSE;
Linus Torvalds's avatar
Linus Torvalds committed
326 327

	inet = inet_sk(sk);
328
	inet->is_icsk = (INET_PROTOSW_ICSK & answer_flags) != 0;
Linus Torvalds's avatar
Linus Torvalds committed
329

330 331
	inet->nodefrag = 0;

Linus Torvalds's avatar
Linus Torvalds committed
332
	if (SOCK_RAW == sock->type) {
333
		inet->inet_num = protocol;
Linus Torvalds's avatar
Linus Torvalds committed
334 335 336 337
		if (IPPROTO_RAW == protocol)
			inet->hdrincl = 1;
	}

338
	if (net->ipv4.sysctl_ip_no_pmtu_disc)
Linus Torvalds's avatar
Linus Torvalds committed
339 340 341 342
		inet->pmtudisc = IP_PMTUDISC_DONT;
	else
		inet->pmtudisc = IP_PMTUDISC_WANT;

343
	inet->inet_id = 0;
Linus Torvalds's avatar
Linus Torvalds committed
344 345 346 347 348 349 350 351 352 353

	sock_init_data(sock, sk);

	sk->sk_destruct	   = inet_sock_destruct;
	sk->sk_protocol	   = protocol;
	sk->sk_backlog_rcv = sk->sk_prot->backlog_rcv;

	inet->uc_ttl	= -1;
	inet->mc_loop	= 1;
	inet->mc_ttl	= 1;
354
	inet->mc_all	= 1;
Linus Torvalds's avatar
Linus Torvalds committed
355 356
	inet->mc_index	= 0;
	inet->mc_list	= NULL;
357
	inet->rcv_tos	= 0;
Linus Torvalds's avatar
Linus Torvalds committed
358

359
	sk_refcnt_debug_inc(sk);
Linus Torvalds's avatar
Linus Torvalds committed
360

361
	if (inet->inet_num) {
Linus Torvalds's avatar
Linus Torvalds committed
362 363 364 365 366
		/* It assumes that any protocol which allows
		 * the user to assign a number at socket
		 * creation time automatically
		 * shares.
		 */
367
		inet->inet_sport = htons(inet->inet_num);
Linus Torvalds's avatar
Linus Torvalds committed
368
		/* Add to protocol hash chains. */
369 370 371 372 373
		err = sk->sk_prot->hash(sk);
		if (err) {
			sk_common_release(sk);
			goto out;
		}
Linus Torvalds's avatar
Linus Torvalds committed
374 375 376 377
	}

	if (sk->sk_prot->init) {
		err = sk->sk_prot->init(sk);
378 379 380 381 382 383 384 385 386
		if (err) {
			sk_common_release(sk);
			goto out;
		}
	}

	if (!kern) {
		err = BPF_CGROUP_RUN_PROG_INET_SOCK(sk);
		if (err) {
Linus Torvalds's avatar
Linus Torvalds committed
387
			sk_common_release(sk);
388 389
			goto out;
		}
Linus Torvalds's avatar
Linus Torvalds committed
390 391 392 393 394 395 396 397 398 399 400 401 402 403 404 405 406 407 408 409 410
	}
out:
	return err;
out_rcu_unlock:
	rcu_read_unlock();
	goto out;
}


/*
 *	The peer socket should always be NULL (or else). When we call this
 *	function we are destroying the object and from then on nobody
 *	should refer to it.
 */
int inet_release(struct socket *sock)
{
	struct sock *sk = sock->sk;

	if (sk) {
		long timeout;

411 412 413
		if (!sk->sk_kern_sock)
			BPF_CGROUP_RUN_PROG_INET_SOCK_RELEASE(sk);

Linus Torvalds's avatar
Linus Torvalds committed
414 415 416 417 418 419 420 421 422 423 424 425 426 427 428
		/* Applications forget to leave groups before exiting */
		ip_mc_drop_socket(sk);

		/* If linger is set, we don't return until the close
		 * is complete.  Otherwise we return immediately. The
		 * actually closing is done the same either way.
		 *
		 * If the close is due to the process exiting, we never
		 * linger..
		 */
		timeout = 0;
		if (sock_flag(sk, SOCK_LINGER) &&
		    !(current->flags & PF_EXITING))
			timeout = sk->sk_lingertime;
		sk->sk_prot->close(sk, timeout);
429
		sock->sk = NULL;
Linus Torvalds's avatar
Linus Torvalds committed
430 431 432
	}
	return 0;
}
Eric Dumazet's avatar
Eric Dumazet committed
433
EXPORT_SYMBOL(inet_release);
Linus Torvalds's avatar
Linus Torvalds committed
434 435 436 437

int inet_bind(struct socket *sock, struct sockaddr *uaddr, int addr_len)
{
	struct sock *sk = sock->sk;
438
	u32 flags = BIND_WITH_LOCK;
Linus Torvalds's avatar
Linus Torvalds committed
439 440 441 442
	int err;

	/* If the socket has its own bind function then use it. (RAW) */
	if (sk->sk_prot->bind) {
443
		return sk->sk_prot->bind(sk, uaddr, addr_len);
Linus Torvalds's avatar
Linus Torvalds committed
444 445
	}
	if (addr_len < sizeof(struct sockaddr_in))
446
		return -EINVAL;
Andrey Ignatov's avatar
Andrey Ignatov committed
447 448 449 450

	/* BPF prog is run before any checks are done so that if the prog
	 * changes context in a wrong way it will be caught.
	 */
451
	err = BPF_CGROUP_RUN_PROG_INET_BIND_LOCK(sk, uaddr,
452
						 CGROUP_INET4_BIND, &flags);
Andrey Ignatov's avatar
Andrey Ignatov committed
453
	if (err)
454 455
		return err;

456
	return __inet_bind(sk, uaddr, addr_len, flags);
457 458 459 460
}
EXPORT_SYMBOL(inet_bind);

int __inet_bind(struct sock *sk, struct sockaddr *uaddr, int addr_len,
461
		u32 flags)
462 463 464 465 466 467 468 469
{
	struct sockaddr_in *addr = (struct sockaddr_in *)uaddr;
	struct inet_sock *inet = inet_sk(sk);
	struct net *net = sock_net(sk);
	unsigned short snum;
	int chk_addr_ret;
	u32 tb_id = RT_TABLE_LOCAL;
	int err;
Linus Torvalds's avatar
Linus Torvalds committed
470

471
	if (addr->sin_family != AF_INET) {
472 473 474
		/* Compatibility games : accept AF_UNSPEC (mapped to AF_INET)
		 * only if s_addr is INADDR_ANY.
		 */
475
		err = -EAFNOSUPPORT;
476 477 478
		if (addr->sin_family != AF_UNSPEC ||
		    addr->sin_addr.s_addr != htonl(INADDR_ANY))
			goto out;
479
	}
480

481
	tb_id = l3mdev_fib_table_by_index(net, sk->sk_bound_dev_if) ? : tb_id;
482
	chk_addr_ret = inet_addr_type_table(net, addr->sin_addr.s_addr, tb_id);
Linus Torvalds's avatar
Linus Torvalds committed
483 484 485 486 487 488 489 490 491

	/* Not specified by any standard per-se, however it breaks too
	 * many applications when removed.  It is unfortunate since
	 * allowing applications to make a non-local bind solves
	 * several problems with systems using dynamic addressing.
	 * (ie. your servers still start up even if your ISDN link
	 *  is temporarily down)
	 */
	err = -EADDRNOTAVAIL;
492 493
	if (!inet_addr_valid_or_nonlocal(net, inet, addr->sin_addr.s_addr,
	                                 chk_addr_ret))
Linus Torvalds's avatar
Linus Torvalds committed
494 495 496 497
		goto out;

	snum = ntohs(addr->sin_port);
	err = -EACCES;
498 499
	if (!(flags & BIND_NO_CAP_NET_BIND_SERVICE) &&
	    snum && inet_port_requires_bind_service(net, snum) &&
500
	    !ns_capable(net->user_ns, CAP_NET_BIND_SERVICE))
Linus Torvalds's avatar
Linus Torvalds committed
501 502 503 504 505 506 507 508 509
		goto out;

	/*      We keep a pair of addresses. rcv_saddr is the one
	 *      used by hash lookups, and saddr is used for transmit.
	 *
	 *      In the BSD API these are the same except where it
	 *      would be illegal to use them (multicast/broadcast) in
	 *      which case the sending device address is used.
	 */
510
	if (flags & BIND_WITH_LOCK)
511
		lock_sock(sk);
Linus Torvalds's avatar
Linus Torvalds committed
512 513 514

	/* Check these errors (active socket, double bind). */
	err = -EINVAL;
515
	if (sk->sk_state != TCP_CLOSE || inet->inet_num)
Linus Torvalds's avatar
Linus Torvalds committed
516 517
		goto out_release_sock;

518
	inet->inet_rcv_saddr = inet->inet_saddr = addr->sin_addr.s_addr;
Linus Torvalds's avatar
Linus Torvalds committed
519
	if (chk_addr_ret == RTN_MULTICAST || chk_addr_ret == RTN_BROADCAST)
520
		inet->inet_saddr = 0;  /* Use device */
Linus Torvalds's avatar
Linus Torvalds committed
521 522

	/* Make sure we are allowed to bind here. */
523
	if (snum || !(inet->bind_address_no_port ||
524
		      (flags & BIND_FORCE_ADDRESS_NO_PORT))) {
525 526 527 528 529
		if (sk->sk_prot->get_port(sk, snum)) {
			inet->inet_saddr = inet->inet_rcv_saddr = 0;
			err = -EADDRINUSE;
			goto out_release_sock;
		}
530 531 532 533
		if (!(flags & BIND_FROM_BPF)) {
			err = BPF_CGROUP_RUN_PROG_INET4_POST_BIND(sk);
			if (err) {
				inet->inet_saddr = inet->inet_rcv_saddr = 0;
534 535
				if (sk->sk_prot->put_port)
					sk->sk_prot->put_port(sk);
536 537
				goto out_release_sock;
			}
538
		}
Linus Torvalds's avatar
Linus Torvalds committed
539 540
	}

541
	if (inet->inet_rcv_saddr)
Linus Torvalds's avatar
Linus Torvalds committed
542 543 544
		sk->sk_userlocks |= SOCK_BINDADDR_LOCK;
	if (snum)
		sk->sk_userlocks |= SOCK_BINDPORT_LOCK;
545 546 547
	inet->inet_sport = htons(inet->inet_num);
	inet->inet_daddr = 0;
	inet->inet_dport = 0;
Linus Torvalds's avatar
Linus Torvalds committed
548 549 550
	sk_dst_reset(sk);
	err = 0;
out_release_sock:
551
	if (flags & BIND_WITH_LOCK)
552
		release_sock(sk);
Linus Torvalds's avatar
Linus Torvalds committed
553 554 555 556
out:
	return err;
}

Daniel Baluta's avatar
Daniel Baluta committed
557
int inet_dgram_connect(struct socket *sock, struct sockaddr *uaddr,
Linus Torvalds's avatar
Linus Torvalds committed
558 559 560
		       int addr_len, int flags)
{
	struct sock *sk = sock->sk;
561
	int err;
Linus Torvalds's avatar
Linus Torvalds committed
562

563 564
	if (addr_len < sizeof(uaddr->sa_family))
		return -EINVAL;
Linus Torvalds's avatar
Linus Torvalds committed
565 566 567
	if (uaddr->sa_family == AF_UNSPEC)
		return sk->sk_prot->disconnect(sk, flags);

568 569 570 571 572 573
	if (BPF_CGROUP_PRE_CONNECT_ENABLED(sk)) {
		err = sk->sk_prot->pre_connect(sk, uaddr, addr_len);
		if (err)
			return err;
	}

574
	if (data_race(!inet_sk(sk)->inet_num) && inet_autobind(sk))
Linus Torvalds's avatar
Linus Torvalds committed
575
		return -EAGAIN;
Joe Perches's avatar
Joe Perches committed
576
	return sk->sk_prot->connect(sk, uaddr, addr_len);
Linus Torvalds's avatar
Linus Torvalds committed
577
}
Eric Dumazet's avatar
Eric Dumazet committed
578
EXPORT_SYMBOL(inet_dgram_connect);
Linus Torvalds's avatar
Linus Torvalds committed
579

580
static long inet_wait_for_connect(struct sock *sk, long timeo, int writebias)
Linus Torvalds's avatar
Linus Torvalds committed
581
{
582
	DEFINE_WAIT_FUNC(wait, woken_wake_function);
Linus Torvalds's avatar
Linus Torvalds committed
583

584
	add_wait_queue(sk_sleep(sk), &wait);
585
	sk->sk_write_pending += writebias;
Linus Torvalds's avatar
Linus Torvalds committed
586 587 588 589 590 591 592 593

	/* Basic assumption: if someone sets sk->sk_err, he _must_
	 * change state of the socket from TCP_SYN_*.
	 * Connect() does not allow to get error notifications
	 * without closing the socket.
	 */
	while ((1 << sk->sk_state) & (TCPF_SYN_SENT | TCPF_SYN_RECV)) {
		release_sock(sk);
594
		timeo = wait_woken(&wait, TASK_INTERRUPTIBLE, timeo);
Linus Torvalds's avatar
Linus Torvalds committed
595 596 597 598
		lock_sock(sk);
		if (signal_pending(current) || !timeo)
			break;
	}
599
	remove_wait_queue(sk_sleep(sk), &wait);
600
	sk->sk_write_pending -= writebias;
Linus Torvalds's avatar
Linus Torvalds committed
601 602 603 604 605 606 607
	return timeo;
}

/*
 *	Connect to a remote host. There is regrettably still a little
 *	TCP 'magic' in here.
 */
608
int __inet_stream_connect(struct socket *sock, struct sockaddr *uaddr,
609
			  int addr_len, int flags, int is_sendmsg)
Linus Torvalds's avatar
Linus Torvalds committed
610 611 612 613 614
{
	struct sock *sk = sock->sk;
	int err;
	long timeo;

615 616 617 618 619 620 621 622 623 624 625 626
	/*
	 * uaddr can be NULL and addr_len can be 0 if:
	 * sk is a TCP fastopen active socket and
	 * TCP_FASTOPEN_CONNECT sockopt is set and
	 * we already have a valid cookie for this socket.
	 * In this case, user can call write() after connect().
	 * write() will invoke tcp_sendmsg_fastopen() which calls
	 * __inet_stream_connect().
	 */
	if (uaddr) {
		if (addr_len < sizeof(uaddr->sa_family))
			return -EINVAL;
627

628 629 630 631 632
		if (uaddr->sa_family == AF_UNSPEC) {
			err = sk->sk_prot->disconnect(sk, flags);
			sock->state = err ? SS_DISCONNECTING : SS_UNCONNECTED;
			goto out;
		}
Linus Torvalds's avatar
Linus Torvalds committed
633 634 635 636 637 638 639 640 641 642
	}

	switch (sock->state) {
	default:
		err = -EINVAL;
		goto out;
	case SS_CONNECTED:
		err = -EISCONN;
		goto out;
	case SS_CONNECTING:
643
		if (inet_sk(sk)->defer_connect)
644
			err = is_sendmsg ? -EINPROGRESS : -EISCONN;
645 646
		else
			err = -EALREADY;
Linus Torvalds's avatar
Linus Torvalds committed
647 648 649 650 651 652 653
		/* Fall out of switch with err, set for this state */
		break;
	case SS_UNCONNECTED:
		err = -EISCONN;
		if (sk->sk_state != TCP_CLOSE)
			goto out;

654 655 656 657 658 659
		if (BPF_CGROUP_PRE_CONNECT_ENABLED(sk)) {
			err = sk->sk_prot->pre_connect(sk, uaddr, addr_len);
			if (err)
				goto out;
		}

Linus Torvalds's avatar
Linus Torvalds committed
660 661 662 663
		err = sk->sk_prot->connect(sk, uaddr, addr_len);
		if (err < 0)
			goto out;

664
		sock->state = SS_CONNECTING;
Linus Torvalds's avatar
Linus Torvalds committed
665

666 667 668
		if (!err && inet_sk(sk)->defer_connect)
			goto out;

Linus Torvalds's avatar
Linus Torvalds committed
669 670 671 672 673 674 675 676 677 678 679
		/* Just entered SS_CONNECTING state; the only
		 * difference is that return value in non-blocking
		 * case is EINPROGRESS, rather than EALREADY.
		 */
		err = -EINPROGRESS;
		break;
	}

	timeo = sock_sndtimeo(sk, flags & O_NONBLOCK);

	if ((1 << sk->sk_state) & (TCPF_SYN_SENT | TCPF_SYN_RECV)) {
680 681 682 683
		int writebias = (sk->sk_protocol == IPPROTO_TCP) &&
				tcp_sk(sk)->fastopen_req &&
				tcp_sk(sk)->fastopen_req->data ? 1 : 0;

Linus Torvalds's avatar
Linus Torvalds committed
684
		/* Error code is set above */
685
		if (!timeo || !inet_wait_for_connect(sk, timeo, writebias))
Linus Torvalds's avatar
Linus Torvalds committed
686 687 688 689 690 691 692 693 694 695 696 697 698 699 700 701 702 703 704 705 706 707 708 709 710 711 712 713 714 715
			goto out;

		err = sock_intr_errno(timeo);
		if (signal_pending(current))
			goto out;
	}

	/* Connection was closed by RST, timeout, ICMP error
	 * or another process disconnected us.
	 */
	if (sk->sk_state == TCP_CLOSE)
		goto sock_error;

	/* sk->sk_err may be not zero now, if RECVERR was ordered by user
	 * and error was received after socket entered established state.
	 * Hence, it is handled normally after connect() return successfully.
	 */

	sock->state = SS_CONNECTED;
	err = 0;
out:
	return err;

sock_error:
	err = sock_error(sk) ? : -ECONNABORTED;
	sock->state = SS_UNCONNECTED;
	if (sk->sk_prot->disconnect(sk, flags))
		sock->state = SS_DISCONNECTING;
	goto out;
}
716 717 718 719 720 721 722 723
EXPORT_SYMBOL(__inet_stream_connect);

int inet_stream_connect(struct socket *sock, struct sockaddr *uaddr,
			int addr_len, int flags)
{
	int err;

	lock_sock(sock->sk);
724
	err = __inet_stream_connect(sock, uaddr, addr_len, flags, 0);
725 726 727
	release_sock(sock->sk);
	return err;
}
Eric Dumazet's avatar
Eric Dumazet committed
728
EXPORT_SYMBOL(inet_stream_connect);
Linus Torvalds's avatar
Linus Torvalds committed
729 730 731 732 733

/*
 *	Accept a pending connection. The TCP layer now gives BSD semantics.
 */

734 735
int inet_accept(struct socket *sock, struct socket *newsock, int flags,
		bool kern)
Linus Torvalds's avatar
Linus Torvalds committed
736 737 738
{
	struct sock *sk1 = sock->sk;
	int err = -EINVAL;
739
	struct sock *sk2 = sk1->sk_prot->accept(sk1, flags, &err, kern);
Linus Torvalds's avatar
Linus Torvalds committed
740 741 742 743 744 745

	if (!sk2)
		goto do_err;

	lock_sock(sk2);

746
	sock_rps_record_flow(sk2);
747
	WARN_ON(!((1 << sk2->sk_state) &
748 749
		  (TCPF_ESTABLISHED | TCPF_SYN_RECV |
		  TCPF_CLOSE_WAIT | TCPF_CLOSE)));
Linus Torvalds's avatar
Linus Torvalds committed
750 751 752 753 754 755 756 757 758

	sock_graft(sk2, newsock);

	newsock->state = SS_CONNECTED;
	err = 0;
	release_sock(sk2);
do_err:
	return err;
}
Eric Dumazet's avatar
Eric Dumazet committed
759
EXPORT_SYMBOL(inet_accept);
Linus Torvalds's avatar
Linus Torvalds committed
760 761 762 763 764

/*
 *	This does both peername and sockname.
 */
int inet_getname(struct socket *sock, struct sockaddr *uaddr,
765
		 int peer)
Linus Torvalds's avatar
Linus Torvalds committed
766 767 768
{
	struct sock *sk		= sock->sk;
	struct inet_sock *inet	= inet_sk(sk);
769
	DECLARE_SOCKADDR(struct sockaddr_in *, sin, uaddr);
Linus Torvalds's avatar
Linus Torvalds committed
770 771

	sin->sin_family = AF_INET;
772
	lock_sock(sk);
Linus Torvalds's avatar
Linus Torvalds committed
773
	if (peer) {
774
		if (!inet->inet_dport ||
Linus Torvalds's avatar
Linus Torvalds committed
775
		    (((1 << sk->sk_state) & (TCPF_CLOSE | TCPF_SYN_SENT)) &&
776 777
		     peer == 1)) {
			release_sock(sk);
Linus Torvalds's avatar
Linus Torvalds committed
778
			return -ENOTCONN;
779
		}
780 781
		sin->sin_port = inet->inet_dport;
		sin->sin_addr.s_addr = inet->inet_daddr;
782 783
		BPF_CGROUP_RUN_SA_PROG(sk, (struct sockaddr *)sin,
				       CGROUP_INET4_GETPEERNAME);
Linus Torvalds's avatar
Linus Torvalds committed
784
	} else {
785
		__be32 addr = inet->inet_rcv_saddr;
Linus Torvalds's avatar
Linus Torvalds committed
786
		if (!addr)
787 788
			addr = inet->inet_saddr;
		sin->sin_port = inet->inet_sport;
Linus Torvalds's avatar
Linus Torvalds committed
789
		sin->sin_addr.s_addr = addr;
790 791
		BPF_CGROUP_RUN_SA_PROG(sk, (struct sockaddr *)sin,
				       CGROUP_INET4_GETSOCKNAME);
792
	}
793
	release_sock(sk);
Linus Torvalds's avatar
Linus Torvalds committed
794
	memset(sin->sin_zero, 0, sizeof(sin->sin_zero));
795
	return sizeof(*sin);
Linus Torvalds's avatar
Linus Torvalds committed
796
}
Eric Dumazet's avatar
Eric Dumazet committed
797
EXPORT_SYMBOL(inet_getname);
Linus Torvalds's avatar
Linus Torvalds committed
798

799
int inet_send_prepare(struct sock *sk)
Linus Torvalds's avatar
Linus Torvalds committed
800
{
801
	sock_rps_record_flow(sk);
Tom Herbert's avatar
Tom Herbert committed
802

Linus Torvalds's avatar
Linus Torvalds committed
803
	/* We may need to bind the socket. */
804
	if (data_race(!inet_sk(sk)->inet_num) && !sk->sk_prot->no_autobind &&
805
	    inet_autobind(sk))
Linus Torvalds's avatar
Linus Torvalds committed
806 807
		return -EAGAIN;

808 809 810 811 812 813 814 815 816 817 818
	return 0;
}
EXPORT_SYMBOL_GPL(inet_send_prepare);

int inet_sendmsg(struct socket *sock, struct msghdr *msg, size_t size)
{
	struct sock *sk = sock->sk;

	if (unlikely(inet_send_prepare(sk)))
		return -EAGAIN;

819 820
	return INDIRECT_CALL_2(sk->sk_prot->sendmsg, tcp_sendmsg, udp_sendmsg,
			       sk, msg, size);
Linus Torvalds's avatar
Linus Torvalds committed
821
}
Eric Dumazet's avatar
Eric Dumazet committed
822
EXPORT_SYMBOL(inet_sendmsg);
Linus Torvalds's avatar
Linus Torvalds committed
823

824 825
ssize_t inet_sendpage(struct socket *sock, struct page *page, int offset,
		      size_t size, int flags)
Linus Torvalds's avatar
Linus Torvalds committed
826 827 828
{
	struct sock *sk = sock->sk;

829
	if (unlikely(inet_send_prepare(sk)))
Linus Torvalds's avatar
Linus Torvalds committed
830 831 832 833 834 835
		return -EAGAIN;

	if (sk->sk_prot->sendpage)
		return sk->sk_prot->sendpage(sk, page, offset, size, flags);
	return sock_no_sendpage(sock, page, offset, size, flags);
}
836
EXPORT_SYMBOL(inet_sendpage);
Linus Torvalds's avatar
Linus Torvalds committed
837

838
INDIRECT_CALLABLE_DECLARE(int udp_recvmsg(struct sock *, struct msghdr *,
839
					  size_t, int, int *));
840 841
int inet_recvmsg(struct socket *sock, struct msghdr *msg, size_t size,
		 int flags)
Tom Herbert's avatar
Tom Herbert committed
842 843 844 845 846
{
	struct sock *sk = sock->sk;
	int addr_len = 0;
	int err;

847 848
	if (likely(!(flags & MSG_ERRQUEUE)))
		sock_rps_record_flow(sk);
Tom Herbert's avatar
Tom Herbert committed
849

850
	err = INDIRECT_CALL_2(sk->sk_prot->recvmsg, tcp_recvmsg, udp_recvmsg,
851
			      sk, msg, size, flags, &addr_len);
Tom Herbert's avatar
Tom Herbert committed
852 853 854 855 856
	if (err >= 0)
		msg->msg_namelen = addr_len;
	return err;
}
EXPORT_SYMBOL(inet_recvmsg);
Linus Torvalds's avatar
Linus Torvalds committed
857 858 859 860 861 862 863 864 865 866 867 868 869 870 871 872 873 874 875 876 877 878 879 880 881 882 883 884

int inet_shutdown(struct socket *sock, int how)
{
	struct sock *sk = sock->sk;
	int err = 0;

	/* This should really check to make sure
	 * the socket is a TCP socket. (WHY AC...)
	 */
	how++; /* maps 0->1 has the advantage of making bit 1 rcvs and
		       1->2 bit 2 snds.
		       2->3 */
	if ((how & ~SHUTDOWN_MASK) || !how)	/* MAXINT->0 */
		return -EINVAL;

	lock_sock(sk);
	if (sock->state == SS_CONNECTING) {
		if ((1 << sk->sk_state) &
		    (TCPF_SYN_SENT | TCPF_SYN_RECV | TCPF_CLOSE))
			sock->state = SS_DISCONNECTING;
		else
			sock->state = SS_CONNECTED;
	}

	switch (sk->sk_state) {
	case TCP_CLOSE:
		err = -ENOTCONN;
		/* Hack to wake up other listeners, who can poll for
885
		   EPOLLHUP, even on eg. unconnected UDP sockets -- RR */
Joe Perches's avatar
Joe Perches committed
886
		fallthrough;
Linus Torvalds's avatar
Linus Torvalds committed
887 888 889 890 891 892 893 894 895 896 897 898 899
	default:
		sk->sk_shutdown |= how;
		if (sk->sk_prot->shutdown)
			sk->sk_prot->shutdown(sk, how);
		break;

	/* Remaining two branches are temporary solution for missing
	 * close() in multithreaded environment. It is _not_ a good idea,
	 * but we have no choice until close() is repaired at VFS level.
	 */
	case TCP_LISTEN:
		if (!(how & RCV_SHUTDOWN))
			break;
Joe Perches's avatar
Joe Perches committed
900
		fallthrough;
Linus Torvalds's avatar
Linus Torvalds committed
901 902 903 904 905 906 907 908 909 910 911
	case TCP_SYN_SENT:
		err = sk->sk_prot->disconnect(sk, O_NONBLOCK);
		sock->state = err ? SS_DISCONNECTING : SS_UNCONNECTED;
		break;
	}

	/* Wake up anyone sleeping in poll. */
	sk->sk_state_change(sk);
	release_sock(sk);
	return err;
}
Eric Dumazet's avatar
Eric Dumazet committed
912
EXPORT_SYMBOL(inet_shutdown);
Linus Torvalds's avatar
Linus Torvalds committed
913 914 915 916 917 918 919 920 921 922 923 924 925 926 927

/*
 *	ioctl() calls you can issue on an INET socket. Most of these are
 *	device configuration and stuff and very rarely used. Some ioctls
 *	pass on to the socket itself.
 *
 *	NOTE: I like the idea of a module for the config stuff. ie ifconfig
 *	loads the devconfigure module does its configuring and unloads it.
 *	There's a good 20K of config code hanging around the kernel.
 */

int inet_ioctl(struct socket *sock, unsigned int cmd, unsigned long arg)
{
	struct sock *sk = sock->sk;
	int err = 0;
928
	struct net *net = sock_net(sk);
929 930
	void __user *p = (void __user *)arg;
	struct ifreq ifr;
931
	struct rtentry rt;
Linus Torvalds's avatar
Linus Torvalds committed
932 933

	switch (cmd) {
Eric Dumazet's avatar
Eric Dumazet committed
934 935
	case SIOCADDRT:
	case SIOCDELRT:
936 937 938 939
		if (copy_from_user(&rt, p, sizeof(struct rtentry)))
			return -EFAULT;
		err = ip_rt_ioctl(net, cmd, &rt);
		break;
Eric Dumazet's avatar
Eric Dumazet committed
940
	case SIOCRTMSG:
941
		err = -EINVAL;
Eric Dumazet's avatar
Eric Dumazet committed
942 943 944 945 946 947 948 949 950 951
		break;
	case SIOCDARP:
	case SIOCGARP:
	case SIOCSARP:
		err = arp_ioctl(net, cmd, (void __user *)arg);
		break;
	case SIOCGIFADDR:
	case SIOCGIFBRDADDR:
	case SIOCGIFNETMASK:
	case SIOCGIFDSTADDR:
952
	case SIOCGIFPFLAGS:
953
		if (get_user_ifreq(&ifr, NULL, p))
954 955
			return -EFAULT;
		err = devinet_ioctl(net, cmd, &ifr);
956
		if (!err && put_user_ifreq(&ifr, p))
957 958 959 960 961 962
			err = -EFAULT;
		break;

	case SIOCSIFADDR:
	case SIOCSIFBRDADDR:
	case SIOCSIFNETMASK:
Eric Dumazet's avatar
Eric Dumazet committed
963 964 965
	case SIOCSIFDSTADDR:
	case SIOCSIFPFLAGS:
	case SIOCSIFFLAGS:
966
		if (get_user_ifreq(&ifr, NULL, p))
967 968
			return -EFAULT;
		err = devinet_ioctl(net, cmd, &ifr);
Eric Dumazet's avatar
Eric Dumazet committed
969 970 971 972 973 974 975
		break;
	default:
		if (sk->sk_prot->ioctl)
			err = sk->sk_prot->ioctl(sk, cmd, arg);
		else
			err = -ENOIOCTLCMD;
		break;
Linus Torvalds's avatar
Linus Torvalds committed
976 977 978
	}
	return err;
}
Eric Dumazet's avatar
Eric Dumazet committed
979
EXPORT_SYMBOL(inet_ioctl);
Linus Torvalds's avatar
Linus Torvalds committed
980

981
#ifdef CONFIG_COMPAT
982 983 984 985 986 987 988 989 990 991 992 993 994 995 996 997 998 999 1000 1001
static int inet_compat_routing_ioctl(struct sock *sk, unsigned int cmd,
		struct compat_rtentry __user *ur)
{
	compat_uptr_t rtdev;
	struct rtentry rt;

	if (copy_from_user(&rt.rt_dst, &ur->rt_dst,
			3 * sizeof(struct sockaddr)) ||
	    get_user(rt.rt_flags, &ur->rt_flags) ||
	    get_user(rt.rt_metric, &ur->rt_metric) ||
	    get_user(rt.rt_mtu, &ur->rt_mtu) ||
	    get_user(rt.rt_window, &ur->rt_window) ||
	    get_user(rt.rt_irtt, &ur->rt_irtt) ||
	    get_user(rtdev, &ur->rt_dev))
		return -EFAULT;

	rt.rt_dev = compat_ptr(rtdev);
	return ip_rt_ioctl(sock_net(sk), cmd, &rt);
}

1002
static int inet_compat_ioctl(struct socket *sock, unsigned int cmd, unsigned long arg)
1003
{
1004
	void __user *argp = compat_ptr(arg);
1005 1006
	struct sock *sk = sock->sk;

1007 1008 1009 1010 1011 1012 1013 1014 1015
	switch (cmd) {
	case SIOCADDRT:
	case SIOCDELRT:
		return inet_compat_routing_ioctl(sk, cmd, argp);
	default:
		if (!sk->sk_prot->compat_ioctl)
			return -ENOIOCTLCMD;
		return sk->sk_prot->compat_ioctl(sk, cmd, arg);
	}
1016
}
1017
#endif /* CONFIG_COMPAT */
1018

1019
const struct proto_ops inet_stream_ops = {
1020 1021 1022 1023 1024 1025 1026 1027
	.family		   = PF_INET,
	.owner		   = THIS_MODULE,
	.release	   = inet_release,
	.bind		   = inet_bind,
	.connect	   = inet_stream_connect,
	.socketpair	   = sock_no_socketpair,
	.accept		   = inet_accept,
	.getname	   = inet_getname,
1028
	.poll		   = tcp_poll,
1029
	.ioctl		   = inet_ioctl,
1030
	.gettstamp	   = sock_gettstamp,
1031 1032 1033 1034
	.listen		   = inet_listen,
	.shutdown	   = inet_shutdown,
	.setsockopt	   = sock_common_setsockopt,
	.getsockopt	   = sock_common_getsockopt,
1035
	.sendmsg	   = inet_sendmsg,
Tom Herbert's avatar
Tom Herbert committed
1036
	.recvmsg	   = inet_recvmsg,
1037
#ifdef CONFIG_MMU
1038
	.mmap		   = tcp_mmap,
1039
#endif
1040
	.sendpage	   = inet_sendpage,
Jens Axboe's avatar
Jens Axboe committed
1041
	.splice_read	   = tcp_splice_read,
1042
	.read_sock	   = tcp_read_sock,
1043 1044
	.sendmsg_locked    = tcp_sendmsg_locked,
	.sendpage_locked   = tcp_sendpage_locked,
1045
	.peek_len	   = tcp_peek_len,
1046
#ifdef CONFIG_COMPAT
1047
	.compat_ioctl	   = inet_compat_ioctl,
1048
#endif
1049
	.set_rcvlowat	   = tcp_set_rcvlowat,
Linus Torvalds's avatar
Linus Torvalds committed
1050
};
Eric Dumazet's avatar
Eric Dumazet committed
1051
EXPORT_SYMBOL(inet_stream_ops);
Linus Torvalds's avatar
Linus Torvalds committed
1052

1053
const struct proto_ops inet_dgram_ops = {
1054 1055 1056 1057 1058 1059 1060 1061
	.family		   = PF_INET,
	.owner		   = THIS_MODULE,
	.release	   = inet_release,
	.bind		   = inet_bind,
	.connect	   = inet_dgram_connect,
	.socketpair	   = sock_no_socketpair,
	.accept		   = sock_no_accept,
	.getname	   = inet_getname,
1062
	.poll		   = udp_poll,
1063
	.ioctl		   = inet_ioctl,
1064
	.gettstamp	   = sock_gettstamp,
1065 1066 1067 1068 1069
	.listen		   = sock_no_listen,
	.shutdown	   = inet_shutdown,
	.setsockopt	   = sock_common_setsockopt,
	.getsockopt	   = sock_common_getsockopt,
	.sendmsg	   = inet_sendmsg,
1070
	.read_sock	   = udp_read_sock,
Tom Herbert's avatar
Tom Herbert committed
1071
	.recvmsg	   = inet_recvmsg,
1072 1073
	.mmap		   = sock_no_mmap,
	.sendpage	   = inet_sendpage,
1074
	.set_peek_off	   = sk_set_peek_off,
1075
#ifdef CONFIG_COMPAT
1076
	.compat_ioctl	   = inet_compat_ioctl,
1077
#endif
Linus Torvalds's avatar
Linus Torvalds committed
1078
};
Eric Dumazet's avatar
Eric Dumazet committed
1079
EXPORT_SYMBOL(inet_dgram_ops);
Linus Torvalds's avatar
Linus Torvalds committed
1080 1081 1082

/*
 * For SOCK_RAW sockets; should be the same as inet_dgram_ops but without
1083
 * udp_poll
Linus Torvalds's avatar
Linus Torvalds committed
1084
 */
1085
static const struct proto_ops inet_sockraw_ops = {
1086 1087 1088 1089 1090 1091 1092 1093
	.family		   = PF_INET,
	.owner		   = THIS_MODULE,
	.release	   = inet_release,
	.bind		   = inet_bind,
	.connect	   = inet_dgram_connect,
	.socketpair	   = sock_no_socketpair,
	.accept		   = sock_no_accept,
	.getname	   = inet_getname,
1094
	.poll		   = datagram_poll,
1095
	.ioctl		   = inet_ioctl,
1096
	.gettstamp	   = sock_gettstamp,
1097 1098 1099 1100 1101
	.listen		   = sock_no_listen,
	.shutdown	   = inet_shutdown,
	.setsockopt	   = sock_common_setsockopt,
	.getsockopt	   = sock_common_getsockopt,
	.sendmsg	   = inet_sendmsg,
Tom Herbert's avatar
Tom Herbert committed
1102
	.recvmsg	   = inet_recvmsg,
1103 1104
	.mmap		   = sock_no_mmap,
	.sendpage	   = inet_sendpage,
1105
#ifdef CONFIG_COMPAT
1106
	.compat_ioctl	   = inet_compat_ioctl,
1107
#endif
Linus Torvalds's avatar
Linus Torvalds committed
1108 1109
};

1110
static const struct net_proto_family inet_family_ops = {
Linus Torvalds's avatar
Linus Torvalds committed
1111 1112 1113 1114 1115 1116 1117 1118 1119 1120
	.family = PF_INET,
	.create = inet_create,
	.owner	= THIS_MODULE,
};

/* Upon startup we insert all the elements in inetsw_array[] into
 * the linked list inetsw.
 */
static struct inet_protosw inetsw_array[] =
{
1121 1122 1123 1124 1125 1126
	{
		.type =       SOCK_STREAM,
		.protocol =   IPPROTO_TCP,
		.prot =       &tcp_prot,
		.ops =        &inet_stream_ops,
		.flags =      INET_PROTOSW_PERMANENT |
1127
			      INET_PROTOSW_ICSK,
1128 1129 1130 1131 1132 1133 1134 1135
	},

	{
		.type =       SOCK_DGRAM,
		.protocol =   IPPROTO_UDP,
		.prot =       &udp_prot,
		.ops =        &inet_dgram_ops,
		.flags =      INET_PROTOSW_PERMANENT,
Linus Torvalds's avatar
Linus Torvalds committed
1136
       },
1137

1138 1139 1140 1141
       {
		.type =       SOCK_DGRAM,
		.protocol =   IPPROTO_ICMP,
		.prot =       &ping_prot,
1142
		.ops =        &inet_sockraw_ops,
1143 1144
		.flags =      INET_PROTOSW_REUSE,
       },
Linus Torvalds's avatar
Linus Torvalds committed
1145 1146

       {
1147 1148 1149 1150 1151
	       .type =       SOCK_RAW,
	       .protocol =   IPPROTO_IP,	/* wild card */
	       .prot =       &raw_prot,
	       .ops =        &inet_sockraw_ops,
	       .flags =      INET_PROTOSW_REUSE,
Linus Torvalds's avatar
Linus Torvalds committed
1152 1153 1154
       }
};

1155
#define INETSW_ARRAY_LEN ARRAY_SIZE(inetsw_array)
Linus Torvalds's avatar
Linus Torvalds committed
1156 1157 1158 1159 1160 1161 1162 1163 1164 1165 1166 1167 1168 1169 1170 1171 1172 1173

void inet_register_protosw(struct inet_protosw *p)
{
	struct list_head *lh;
	struct inet_protosw *answer;
	int protocol = p->protocol;
	struct list_head *last_perm;

	spin_lock_bh(&inetsw_lock);

	if (p->type >= SOCK_MAX)
		goto out_illegal;

	/* If we are trying to override a permanent protocol, bail. */
	last_perm = &inetsw[p->type];
	list_for_each(lh, &inetsw[p->type]) {
		answer = list_entry(lh, struct inet_protosw, list);
		/* Check only the non-wild match. */
1174 1175 1176 1177 1178
		if ((INET_PROTOSW_PERMANENT & answer->flags) == 0)
			break;
		if (protocol == answer->protocol)
			goto out_permanent;
		last_perm = lh;
Linus Torvalds's avatar
Linus Torvalds committed
1179 1180 1181 1182 1183
	}

	/* Add the new entry after the last permanent entry if any, so that
	 * the new entry does not override a permanent entry when matched with
	 * a wild-card protocol. But it is allowed to override any existing
1184
	 * non-permanent entry.  This means that when we remove this entry, the
Linus Torvalds's avatar
Linus Torvalds committed
1185 1186 1187 1188 1189 1190 1191 1192 1193
	 * system automatically returns to the old behavior.
	 */
	list_add_rcu(&p->list, last_perm);
out:
	spin_unlock_bh(&inetsw_lock);

	return;

out_permanent:
1194
	pr_err("Attempt to override permanent protocol %d\n", protocol);
Linus Torvalds's avatar
Linus Torvalds committed
1195 1196 1197
	goto out;

out_illegal:
1198
	pr_err("Ignoring attempt to register invalid socket type %d\n",
Linus Torvalds's avatar
Linus Torvalds committed
1199 1200 1201
	       p->type);
	goto out;
}
Eric Dumazet's avatar
Eric Dumazet committed
1202
EXPORT_SYMBOL(inet_register_protosw);
Linus Torvalds's avatar
Linus Torvalds committed
1203 1204 1205 1206

void inet_unregister_protosw(struct inet_protosw *p)
{
	if (INET_PROTOSW_PERMANENT & p->flags) {
1207
		pr_err("Attempt to unregister permanent protocol %d\n",
Linus Torvalds's avatar
Linus Torvalds committed
1208 1209 1210 1211 1212 1213 1214 1215 1216
		       p->protocol);
	} else {
		spin_lock_bh(&inetsw_lock);
		list_del_rcu(&p->list);
		spin_unlock_bh(&inetsw_lock);

		synchronize_net();
	}
}
Eric Dumazet's avatar
Eric Dumazet committed
1217
EXPORT_SYMBOL(inet_unregister_protosw);
Linus Torvalds's avatar
Linus Torvalds committed
1218

1219 1220 1221
static int inet_sk_reselect_saddr(struct sock *sk)
{
	struct inet_sock *inet = inet_sk(sk);
1222 1223
	__be32 old_saddr = inet->inet_saddr;
	__be32 daddr = inet->inet_daddr;
1224
	struct flowi4 *fl4;
1225 1226
	struct rtable *rt;
	__be32 new_saddr;
1227
	struct ip_options_rcu *inet_opt;
1228

1229
	inet_opt = rcu_dereference_protected(inet->inet_opt,
1230
					     lockdep_sock_is_held(sk));
1231 1232
	if (inet_opt && inet_opt->opt.srr)
		daddr = inet_opt->opt.faddr;
1233 1234

	/* Query new route. */
1235
	fl4 = &inet->cork.fl.u.ip4;
1236 1237 1238
	rt = ip_route_connect(fl4, daddr, 0, sk->sk_bound_dev_if,
			      sk->sk_protocol, inet->inet_sport,
			      inet->inet_dport, sk);
1239 1240
	if (IS_ERR(rt))
		return PTR_ERR(rt);
1241

1242
	sk_setup_caps(sk, &rt->dst);
1243

1244
	new_saddr = fl4->saddr;
1245 1246 1247 1248

	if (new_saddr == old_saddr)
		return 0;

1249
	if (sock_net(sk)->ipv4.sysctl_ip_dynaddr > 1) {
1250 1251
		pr_info("%s(): shifting inet->saddr from %pI4 to %pI4\n",
			__func__, &old_saddr, &new_saddr);
1252 1253
	}

1254
	inet->inet_saddr = inet->inet_rcv_saddr = new_saddr;
1255 1256 1257 1258 1259 1260 1261 1262 1263

	/*
	 * XXX The only one ugly spot where we need to
	 * XXX really change the sockets identity after
	 * XXX it has entered the hashes. -DaveM
	 *
	 * Besides that, it does not check for connection
	 * uniqueness. Wait for troubles.
	 */
1264
	return __sk_prot_rehash(sk);
1265 1266 1267 1268 1269 1270
}

int inet_sk_rebuild_header(struct sock *sk)
{
	struct inet_sock *inet = inet_sk(sk);
	struct rtable *rt = (struct rtable *)__sk_dst_check(sk, 0);
1271
	__be32 daddr;
1272
	struct ip_options_rcu *inet_opt;
1273
	struct flowi4 *fl4;
1274 1275 1276 1277 1278 1279 1280
	int err;

	/* Route is OK, nothing to do. */
	if (rt)
		return 0;

	/* Reroute. */
1281 1282
	rcu_read_lock();
	inet_opt = rcu_dereference(inet->inet_opt);
1283
	daddr = inet->inet_daddr;
1284 1285 1286
	if (inet_opt && inet_opt->opt.srr)
		daddr = inet_opt->opt.faddr;
	rcu_read_unlock();
1287 1288
	fl4 = &inet->cork.fl.u.ip4;
	rt = ip_route_output_ports(sock_net(sk), fl4, sk, daddr, inet->inet_saddr,
1289 1290 1291
				   inet->inet_dport, inet->inet_sport,
				   sk->sk_protocol, RT_CONN_FLAGS(sk),
				   sk->sk_bound_dev_if);
1292 1293
	if (!IS_ERR(rt)) {
		err = 0;
1294
		sk_setup_caps(sk, &rt->dst);
1295 1296 1297
	} else {
		err = PTR_ERR(rt);

1298 1299 1300 1301 1302 1303
		/* Routing failed... */
		sk->sk_route_caps = 0;
		/*
		 * Other protocols have to map its equivalent state to TCP_SYN_SENT.
		 * DCCP maps its DCCP_REQUESTING state to TCP_SYN_SENT. -acme
		 */
1304
		if (!sock_net(sk)->ipv4.sysctl_ip_dynaddr ||
1305 1306 1307 1308 1309 1310 1311 1312 1313 1314
		    sk->sk_state != TCP_SYN_SENT ||
		    (sk->sk_userlocks & SOCK_BINDADDR_LOCK) ||
		    (err = inet_sk_reselect_saddr(sk)) != 0)
			sk->sk_err_soft = -err;
	}

	return err;
}
EXPORT_SYMBOL(inet_sk_rebuild_header);

1315 1316 1317 1318 1319 1320 1321 1322 1323 1324 1325 1326 1327
void inet_sk_set_state(struct sock *sk, int state)
{
	trace_inet_sock_set_state(sk, sk->sk_state, state);
	sk->sk_state = state;
}
EXPORT_SYMBOL(inet_sk_set_state);

void inet_sk_state_store(struct sock *sk, int newstate)
{
	trace_inet_sock_set_state(sk, sk->sk_state, newstate);
	smp_store_release(&sk->sk_state, newstate);
}

Tom Herbert's avatar
Tom Herbert committed
1328 1329
struct sk_buff *inet_gso_segment(struct sk_buff *skb,
				 netdev_features_t features)
Herbert Xu's avatar
Herbert Xu committed
1330
{
1331
	bool udpfrag = false, fixedid = false, gso_partial, encap;
Herbert Xu's avatar
Herbert Xu committed
1332
	struct sk_buff *segs = ERR_PTR(-EINVAL);
1333
	const struct net_offload *ops;
1334
	unsigned int offset = 0;
1335
	struct iphdr *iph;
1336
	int proto, tot_len;
1337
	int nhoff;
Herbert Xu's avatar
Herbert Xu committed
1338 1339 1340
	int ihl;
	int id;

1341 1342
	skb_reset_network_header(skb);
	nhoff = skb_network_header(skb) - skb_mac_header(skb);
1343
	if (unlikely(!pskb_may_pull(skb, sizeof(*iph))))
Herbert Xu's avatar
Herbert Xu committed
1344 1345
		goto out;

1346
	iph = ip_hdr(skb);
Herbert Xu's avatar
Herbert Xu committed
1347 1348 1349 1350
	ihl = iph->ihl * 4;
	if (ihl < sizeof(*iph))
		goto out;

1351 1352 1353 1354
	id = ntohs(iph->id);
	proto = iph->protocol;

	/* Warning: after this point, iph might be no longer valid */
1355
	if (unlikely(!pskb_may_pull(skb, ihl)))
Herbert Xu's avatar
Herbert Xu committed
1356
		goto out;
1357
	__skb_pull(skb, ihl);
Herbert Xu's avatar
Herbert Xu committed
1358

Eric Dumazet's avatar
Eric Dumazet committed
1359 1360
	encap = SKB_GSO_CB(skb)->encap_level > 0;
	if (encap)
1361
		features &= skb->dev->hw_enc_features;
1362
	SKB_GSO_CB(skb)->encap_level += ihl;
1363

1364
	skb_reset_transport_header(skb);
1365

Herbert Xu's avatar
Herbert Xu committed
1366 1367
	segs = ERR_PTR(-EPROTONOSUPPORT);

1368
	if (!skb->encapsulation || encap) {
1369
		udpfrag = !!(skb_shinfo(skb)->gso_type & SKB_GSO_UDP);
1370 1371 1372
		fixedid = !!(skb_shinfo(skb)->gso_type & SKB_GSO_TCP_FIXEDID);

		/* fixed ID is invalid if DF bit is not set */
1373
		if (fixedid && !(ip_hdr(skb)->frag_off & htons(IP_DF)))
1374 1375
			goto out;
	}
Eric Dumazet's avatar
Eric Dumazet committed
1376

1377
	ops = rcu_dereference(inet_offloads[proto]);
1378
	if (likely(ops && ops->callbacks.gso_segment)) {
1379
		segs = ops->callbacks.gso_segment(skb, features);
1380 1381 1382
		if (!segs)
			skb->network_header = skb_mac_header(skb) + nhoff - skb->head;
	}
Herbert Xu's avatar
Herbert Xu committed
1383

1384
	if (IS_ERR_OR_NULL(segs))
Herbert Xu's avatar
Herbert Xu committed
1385 1386
		goto out;

1387 1388
	gso_partial = !!(skb_shinfo(segs)->gso_type & SKB_GSO_PARTIAL);

Herbert Xu's avatar
Herbert Xu committed
1389 1390
	skb = segs;
	do {
1391
		iph = (struct iphdr *)(skb_mac_header(skb) + nhoff);
1392 1393 1394 1395 1396 1397 1398
		if (udpfrag) {
			iph->frag_off = htons(offset >> 3);
			if (skb->next)
				iph->frag_off |= htons(IP_MF);
			offset += skb->len - nhoff - ihl;
			tot_len = skb->len - nhoff;
		} else if (skb_is_gso(skb)) {
1399 1400 1401 1402
			if (!fixedid) {
				iph->id = htons(id);
				id += skb_shinfo(skb)->gso_segs;
			}
1403 1404 1405 1406 1407 1408 1409

			if (gso_partial)
				tot_len = skb_shinfo(skb)->gso_size +
					  SKB_GSO_CB(skb)->data_offset +
					  skb->head - (unsigned char *)iph;
			else
				tot_len = skb->len - nhoff;
1410 1411 1412 1413
		} else {
			if (!fixedid)
				iph->id = htons(id++);
			tot_len = skb->len - nhoff;
1414
		}
1415
		iph->tot_len = htons(tot_len);
1416
		ip_send_check(iph);
Eric Dumazet's avatar
Eric Dumazet committed
1417
		if (encap)
1418 1419
			skb_reset_inner_headers(skb);
		skb->network_header = (u8 *)iph - skb->head;
1420
		skb_reset_mac_len(skb);
Herbert Xu's avatar
Herbert Xu committed
1421 1422 1423 1424 1425 1426
	} while ((skb = skb->next));

out:
	return segs;
}

1427 1428 1429 1430 1431 1432 1433 1434 1435
static struct sk_buff *ipip_gso_segment(struct sk_buff *skb,
					netdev_features_t features)
{
	if (!(skb_shinfo(skb)->gso_type & SKB_GSO_IPXIP4))
		return ERR_PTR(-EINVAL);

	return inet_gso_segment(skb, features);
}

1436
struct sk_buff *inet_gro_receive(struct list_head *head, struct sk_buff *skb)
Herbert Xu's avatar
Herbert Xu committed
1437
{
1438
	const struct net_offload *ops;
1439
	struct sk_buff *pp = NULL;
1440
	const struct iphdr *iph;
1441
	struct sk_buff *p;
1442 1443
	unsigned int hlen;
	unsigned int off;
1444
	unsigned int id;
Herbert Xu's avatar
Herbert Xu committed
1445 1446 1447
	int flush = 1;
	int proto;

1448 1449 1450 1451 1452 1453 1454 1455
	off = skb_gro_offset(skb);
	hlen = off + sizeof(*iph);
	iph = skb_gro_header_fast(skb, off);
	if (skb_gro_header_hard(skb, hlen)) {
		iph = skb_gro_header_slow(skb, hlen, off);
		if (unlikely(!iph))
			goto out;
	}
Herbert Xu's avatar
Herbert Xu committed
1456

1457
	proto = iph->protocol;
Herbert Xu's avatar
Herbert Xu committed
1458

1459
	ops = rcu_dereference(inet_offloads[proto]);
1460
	if (!ops || !ops->callbacks.gro_receive)
1461
		goto out;
Herbert Xu's avatar
Herbert Xu committed
1462

1463
	if (*(u8 *)iph != 0x45)
1464
		goto out;
Herbert Xu's avatar
Herbert Xu committed
1465

1466
	if (ip_is_fragment(iph))
1467
		goto out;
1468

1469
	if (unlikely(ip_fast_csum((u8 *)iph, 5)))
1470
		goto out;
Herbert Xu's avatar
Herbert Xu committed
1471

1472
	id = ntohl(*(__be32 *)&iph->id);
1473
	flush = (u16)((ntohl(*(__be32 *)iph) ^ skb_gro_len(skb)) | (id & ~IP_DF));
1474
	id >>= 16;
Herbert Xu's avatar
Herbert Xu committed
1475

1476
	list_for_each_entry(p, head, list) {
Herbert Xu's avatar
Herbert Xu committed
1477
		struct iphdr *iph2;
1478
		u16 flush_id;
Herbert Xu's avatar
Herbert Xu committed
1479 1480 1481 1482

		if (!NAPI_GRO_CB(p)->same_flow)
			continue;

1483 1484 1485 1486 1487 1488
		iph2 = (struct iphdr *)(p->data + off);
		/* The above works because, with the exception of the top
		 * (inner most) layer, we only aggregate pkts with the same
		 * hdr length so all the hdrs we'll need to verify will start
		 * at the same offset.
		 */
1489
		if ((iph->protocol ^ iph2->protocol) |
1490 1491
		    ((__force u32)iph->saddr ^ (__force u32)iph2->saddr) |
		    ((__force u32)iph->daddr ^ (__force u32)iph2->daddr)) {
Herbert Xu's avatar
Herbert Xu committed
1492 1493 1494 1495 1496 1497
			NAPI_GRO_CB(p)->same_flow = 0;
			continue;
		}

		/* All fields must match except length and checksum. */
		NAPI_GRO_CB(p)->flush |=
1498
			(iph->ttl ^ iph2->ttl) |
1499
			(iph->tos ^ iph2->tos) |
1500
			((iph->frag_off ^ iph2->frag_off) & htons(IP_DF));
Herbert Xu's avatar
Herbert Xu committed
1501 1502

		NAPI_GRO_CB(p)->flush |= flush;
1503 1504 1505 1506 1507 1508 1509 1510 1511 1512 1513 1514 1515 1516 1517 1518 1519 1520 1521 1522 1523 1524 1525 1526 1527 1528

		/* We need to store of the IP ID check to be included later
		 * when we can verify that this packet does in fact belong
		 * to a given flow.
		 */
		flush_id = (u16)(id - ntohs(iph2->id));

		/* This bit of code makes it much easier for us to identify
		 * the cases where we are doing atomic vs non-atomic IP ID
		 * checks.  Specifically an atomic check can return IP ID
		 * values 0 - 0xFFFF, while a non-atomic check can only
		 * return 0 or 0xFFFF.
		 */
		if (!NAPI_GRO_CB(p)->is_atomic ||
		    !(iph->frag_off & htons(IP_DF))) {
			flush_id ^= NAPI_GRO_CB(p)->count;
			flush_id = flush_id ? 0xFFFF : 0;
		}

		/* If the previous IP ID value was based on an atomic
		 * datagram we can overwrite the value and ignore it.
		 */
		if (NAPI_GRO_CB(skb)->is_atomic)
			NAPI_GRO_CB(p)->flush_id = flush_id;
		else
			NAPI_GRO_CB(p)->flush_id |= flush_id;
Herbert Xu's avatar
Herbert Xu committed
1529 1530
	}

1531
	NAPI_GRO_CB(skb)->is_atomic = !!(iph->frag_off & htons(IP_DF));
Herbert Xu's avatar
Herbert Xu committed
1532
	NAPI_GRO_CB(skb)->flush |= flush;
1533 1534 1535 1536 1537
	skb_set_network_header(skb, off);
	/* The above will be needed by the transport layer if there is one
	 * immediately following this IP hdr.
	 */

1538 1539 1540
	/* Note : No need to call skb_gro_postpull_rcsum() here,
	 * as we already checked checksum over ipv4 header was 0
	 */
1541 1542
	skb_gro_pull(skb, sizeof(*iph));
	skb_set_transport_header(skb, skb_gro_offset(skb));
Herbert Xu's avatar
Herbert Xu committed
1543

1544 1545
	pp = indirect_call_gro_receive(tcp4_gro_receive, udp4_gro_receive,
				       ops->callbacks.gro_receive, head, skb);
Herbert Xu's avatar
Herbert Xu committed
1546 1547

out:
1548
	skb_gro_flush_final(skb, pp, flush);
Herbert Xu's avatar
Herbert Xu committed
1549 1550 1551 1552

	return pp;
}

1553 1554
static struct sk_buff *ipip_gro_receive(struct list_head *head,
					struct sk_buff *skb)
1555 1556 1557 1558 1559 1560 1561 1562 1563 1564 1565
{
	if (NAPI_GRO_CB(skb)->encap_mark) {
		NAPI_GRO_CB(skb)->flush = 1;
		return NULL;
	}

	NAPI_GRO_CB(skb)->encap_mark = 1;

	return inet_gro_receive(head, skb);
}

1566 1567 1568 1569 1570 1571 1572 1573 1574 1575 1576 1577 1578 1579 1580 1581 1582 1583 1584 1585 1586 1587
#define SECONDS_PER_DAY	86400

/* inet_current_timestamp - Return IP network timestamp
 *
 * Return milliseconds since midnight in network byte order.
 */
__be32 inet_current_timestamp(void)
{
	u32 secs;
	u32 msecs;
	struct timespec64 ts;

	ktime_get_real_ts64(&ts);

	/* Get secs since midnight. */
	(void)div_u64_rem(ts.tv_sec, SECONDS_PER_DAY, &secs);
	/* Convert to msecs. */
	msecs = secs * MSEC_PER_SEC;
	/* Convert nsec to msec. */
	msecs += (u32)ts.tv_nsec / NSEC_PER_MSEC;

	/* Convert to network byte order. */
1588
	return htonl(msecs);
1589 1590 1591
}
EXPORT_SYMBOL(inet_current_timestamp);

1592 1593 1594 1595 1596 1597 1598 1599 1600 1601 1602
int inet_recv_error(struct sock *sk, struct msghdr *msg, int len, int *addr_len)
{
	if (sk->sk_family == AF_INET)
		return ip_recv_error(sk, msg, len, addr_len);
#if IS_ENABLED(CONFIG_IPV6)
	if (sk->sk_family == AF_INET6)
		return pingv6_ops.ipv6_recv_error(sk, msg, len, addr_len);
#endif
	return -EINVAL;
}

Tom Herbert's avatar
Tom Herbert committed
1603
int inet_gro_complete(struct sk_buff *skb, int nhoff)
Herbert Xu's avatar
Herbert Xu committed
1604
{
1605 1606
	__be16 newlen = htons(skb->len - nhoff);
	struct iphdr *iph = (struct iphdr *)(skb->data + nhoff);
1607
	const struct net_offload *ops;
1608
	int proto = iph->protocol;
Herbert Xu's avatar
Herbert Xu committed
1609 1610
	int err = -ENOSYS;

1611 1612
	if (skb->encapsulation) {
		skb_set_inner_protocol(skb, cpu_to_be16(ETH_P_IP));
1613
		skb_set_inner_network_header(skb, nhoff);
1614
	}
1615

Herbert Xu's avatar
Herbert Xu committed
1616 1617 1618
	csum_replace2(&iph->check, iph->tot_len, newlen);
	iph->tot_len = newlen;

1619
	ops = rcu_dereference(inet_offloads[proto]);
1620
	if (WARN_ON(!ops || !ops->callbacks.gro_complete))
1621
		goto out;
Herbert Xu's avatar
Herbert Xu committed
1622

1623 1624 1625 1626
	/* Only need to add sizeof(*iph) to get to the next hdr below
	 * because any hdr with option will have been flushed in
	 * inet_gro_receive().
	 */
1627 1628 1629
	err = INDIRECT_CALL_2(ops->callbacks.gro_complete,
			      tcp4_gro_complete, udp4_gro_complete,
			      skb, nhoff + sizeof(*iph));
Herbert Xu's avatar
Herbert Xu committed
1630

1631
out:
Herbert Xu's avatar
Herbert Xu committed
1632 1633 1634
	return err;
}

1635 1636 1637
static int ipip_gro_complete(struct sk_buff *skb, int nhoff)
{
	skb->encapsulation = 1;
1638
	skb_shinfo(skb)->gso_type |= SKB_GSO_IPXIP4;
1639 1640 1641
	return inet_gro_complete(skb, nhoff);
}

1642
int inet_ctl_sock_create(struct sock **sk, unsigned short family,
1643 1644
			 unsigned short type, unsigned char protocol,
			 struct net *net)
1645
{
1646
	struct socket *sock;
1647
	int rc = sock_create_kern(net, family, type, protocol, &sock);
1648 1649

	if (rc == 0) {
1650 1651
		*sk = sock->sk;
		(*sk)->sk_allocation = GFP_ATOMIC;
1652 1653 1654 1655
		/*
		 * Unhash it so that IP input processing does not even see it,
		 * we do not wish this socket to see incoming packets.
		 */
1656
		(*sk)->sk_prot->unhash(*sk);
1657 1658 1659 1660 1661
	}
	return rc;
}
EXPORT_SYMBOL_GPL(inet_ctl_sock_create);

WANG Cong's avatar
WANG Cong committed
1662
unsigned long snmp_fold_field(void __percpu *mib, int offt)
1663 1664
{
	unsigned long res = 0;
WANG Cong's avatar
WANG Cong committed
1665
	int i;
1666

WANG Cong's avatar
WANG Cong committed
1667
	for_each_possible_cpu(i)
1668
		res += snmp_get_cpu_field(mib, i, offt);
1669 1670 1671 1672
	return res;
}
EXPORT_SYMBOL_GPL(snmp_fold_field);

1673 1674
#if BITS_PER_LONG==32

David S. Miller's avatar
David S. Miller committed
1675
u64 snmp_get_cpu_field64(void __percpu *mib, int cpu, int offt,
1676 1677 1678 1679 1680 1681 1682 1683 1684 1685 1686 1687 1688 1689 1690 1691 1692 1693
			 size_t syncp_offset)
{
	void *bhptr;
	struct u64_stats_sync *syncp;
	u64 v;
	unsigned int start;

	bhptr = per_cpu_ptr(mib, cpu);
	syncp = (struct u64_stats_sync *)(bhptr + syncp_offset);
	do {
		start = u64_stats_fetch_begin_irq(syncp);
		v = *(((u64 *)bhptr) + offt);
	} while (u64_stats_fetch_retry_irq(syncp, start));

	return v;
}
EXPORT_SYMBOL_GPL(snmp_get_cpu_field64);

WANG Cong's avatar
WANG Cong committed
1694
u64 snmp_fold_field64(void __percpu *mib, int offt, size_t syncp_offset)
1695 1696 1697 1698 1699
{
	u64 res = 0;
	int cpu;

	for_each_possible_cpu(cpu) {
Madalin Bucur's avatar
Madalin Bucur committed
1700
		res += snmp_get_cpu_field64(mib, cpu, offt, syncp_offset);
1701 1702 1703 1704 1705 1706
	}
	return res;
}
EXPORT_SYMBOL_GPL(snmp_fold_field64);
#endif

Linus Torvalds's avatar
Linus Torvalds committed
1707
#ifdef CONFIG_IP_MULTICAST
1708
static const struct net_protocol igmp_protocol = {
Linus Torvalds's avatar
Linus Torvalds committed
1709 1710 1711 1712
	.handler =	igmp_rcv,
};
#endif

1713 1714 1715
/* thinking of making this const? Don't.
 * early_demux can change based on sysctl.
 */
1716
static struct net_protocol tcp_protocol = {
1717
	.early_demux	=	tcp_v4_early_demux,
1718
	.early_demux_handler =  tcp_v4_early_demux,
1719 1720 1721
	.handler	=	tcp_v4_rcv,
	.err_handler	=	tcp_v4_err,
	.no_policy	=	1,
1722
	.icmp_strict_tag_validation = 1,
Linus Torvalds's avatar
Linus Torvalds committed
1723 1724
};

1725 1726 1727
/* thinking of making this const? Don't.
 * early_demux can change based on sysctl.
 */
1728
static struct net_protocol udp_protocol = {
1729
	.early_demux =	udp_v4_early_demux,
1730
	.early_demux_handler =	udp_v4_early_demux,
Linus Torvalds's avatar
Linus Torvalds committed
1731 1732 1733 1734 1735
	.handler =	udp_rcv,
	.err_handler =	udp_err,
	.no_policy =	1,
};

1736
static const struct net_protocol icmp_protocol = {
Linus Torvalds's avatar
Linus Torvalds committed
1737
	.handler =	icmp_rcv,
1738
	.err_handler =	icmp_err,
1739
	.no_policy =	1,
Linus Torvalds's avatar
Linus Torvalds committed
1740 1741
};

1742 1743
static __net_init int ipv4_mib_init_net(struct net *net)
{
1744 1745
	int i;

WANG Cong's avatar
WANG Cong committed
1746 1747
	net->mib.tcp_statistics = alloc_percpu(struct tcp_mib);
	if (!net->mib.tcp_statistics)
1748
		goto err_tcp_mib;
WANG Cong's avatar
WANG Cong committed
1749 1750
	net->mib.ip_statistics = alloc_percpu(struct ipstats_mib);
	if (!net->mib.ip_statistics)
1751
		goto err_ip_mib;
1752 1753 1754

	for_each_possible_cpu(i) {
		struct ipstats_mib *af_inet_stats;
WANG Cong's avatar
WANG Cong committed
1755
		af_inet_stats = per_cpu_ptr(net->mib.ip_statistics, i);
1756 1757 1758
		u64_stats_init(&af_inet_stats->syncp);
	}

WANG Cong's avatar
WANG Cong committed
1759 1760
	net->mib.net_statistics = alloc_percpu(struct linux_mib);
	if (!net->mib.net_statistics)
1761
		goto err_net_mib;
WANG Cong's avatar
WANG Cong committed
1762 1763
	net->mib.udp_statistics = alloc_percpu(struct udp_mib);
	if (!net->mib.udp_statistics)
1764
		goto err_udp_mib;
WANG Cong's avatar
WANG Cong committed
1765 1766
	net->mib.udplite_statistics = alloc_percpu(struct udp_mib);
	if (!net->mib.udplite_statistics)
1767
		goto err_udplite_mib;
WANG Cong's avatar
WANG Cong committed
1768 1769
	net->mib.icmp_statistics = alloc_percpu(struct icmp_mib);
	if (!net->mib.icmp_statistics)
1770
		goto err_icmp_mib;
1771 1772 1773
	net->mib.icmpmsg_statistics = kzalloc(sizeof(struct icmpmsg_mib),
					      GFP_KERNEL);
	if (!net->mib.icmpmsg_statistics)
1774
		goto err_icmpmsg_mib;
1775 1776

	tcp_mib_init(net);
1777
	return 0;
1778

1779
err_icmpmsg_mib:
WANG Cong's avatar
WANG Cong committed
1780
	free_percpu(net->mib.icmp_statistics);
1781
err_icmp_mib:
WANG Cong's avatar
WANG Cong committed
1782
	free_percpu(net->mib.udplite_statistics);
1783
err_udplite_mib:
WANG Cong's avatar
WANG Cong committed
1784
	free_percpu(net->mib.udp_statistics);
1785
err_udp_mib:
WANG Cong's avatar
WANG Cong committed
1786
	free_percpu(net->mib.net_statistics);
1787
err_net_mib:
WANG Cong's avatar
WANG Cong committed
1788
	free_percpu(net->mib.ip_statistics);
1789
err_ip_mib:
WANG Cong's avatar
WANG Cong committed
1790
	free_percpu(net->mib.tcp_statistics);
1791 1792
err_tcp_mib:
	return -ENOMEM;
1793 1794 1795 1796
}

static __net_exit void ipv4_mib_exit_net(struct net *net)
{
1797
	kfree(net->mib.icmpmsg_statistics);
WANG Cong's avatar
WANG Cong committed
1798 1799 1800 1801 1802 1803
	free_percpu(net->mib.icmp_statistics);
	free_percpu(net->mib.udplite_statistics);
	free_percpu(net->mib.udp_statistics);
	free_percpu(net->mib.net_statistics);
	free_percpu(net->mib.ip_statistics);
	free_percpu(net->mib.tcp_statistics);
1804 1805 1806 1807
#ifdef CONFIG_MPTCP
	/* allocated on demand, see mptcp_init_sock() */
	free_percpu(net->mib.mptcp_statistics);
#endif
1808 1809 1810 1811 1812 1813 1814
}

static __net_initdata struct pernet_operations ipv4_mib_ops = {
	.init = ipv4_mib_init_net,
	.exit = ipv4_mib_exit_net,
};

Linus Torvalds's avatar
Linus Torvalds committed
1815 1816
static int __init init_ipv4_mibs(void)
{
1817
	return register_pernet_subsys(&ipv4_mib_ops);
Linus Torvalds's avatar
Linus Torvalds committed
1818 1819
}

1820 1821 1822 1823 1824 1825 1826
static __net_init int inet_init_net(struct net *net)
{
	/*
	 * Set defaults for local port range
	 */
	seqlock_init(&net->ipv4.ip_local_ports.lock);
	net->ipv4.ip_local_ports.range[0] =  32768;
1827
	net->ipv4.ip_local_ports.range[1] =  60999;
1828 1829 1830 1831 1832 1833 1834 1835

	seqlock_init(&net->ipv4.ping_group_range.lock);
	/*
	 * Sane defaults - nobody may create ping sockets.
	 * Boot scripts should set this to distro-specific group.
	 */
	net->ipv4.ping_group_range.range[0] = make_kgid(&init_user_ns, 1);
	net->ipv4.ping_group_range.range[1] = make_kgid(&init_user_ns, 0);
1836 1837 1838 1839 1840

	/* Default values for sysctl-controlled parameters.
	 * We set them here, in case sysctl is not compiled.
	 */
	net->ipv4.sysctl_ip_default_ttl = IPDEFTTL;
1841
	net->ipv4.sysctl_ip_fwd_update_priority = 1;
1842 1843
	net->ipv4.sysctl_ip_dynaddr = 0;
	net->ipv4.sysctl_ip_early_demux = 1;
1844 1845
	net->ipv4.sysctl_udp_early_demux = 1;
	net->ipv4.sysctl_tcp_early_demux = 1;
1846
	net->ipv4.sysctl_nexthop_compat_mode = 1;
1847 1848 1849
#ifdef CONFIG_SYSCTL
	net->ipv4.sysctl_ip_prot_sock = PROT_SOCK;
#endif
1850

1851 1852 1853 1854 1855 1856 1857
	/* Some igmp sysctl, whose values are always used */
	net->ipv4.sysctl_igmp_max_memberships = 20;
	net->ipv4.sysctl_igmp_max_msf = 10;
	/* IGMP reports for link-local multicast groups are enabled by default */
	net->ipv4.sysctl_igmp_llm_reports = 1;
	net->ipv4.sysctl_igmp_qrv = 2;

1858 1859
	net->ipv4.sysctl_fib_notify_on_flag_change = 0;

1860 1861 1862 1863 1864 1865 1866 1867 1868 1869 1870 1871
	return 0;
}

static __net_initdata struct pernet_operations af_inet_ops = {
	.init = inet_init_net,
};

static int __init init_inet_pernet_ops(void)
{
	return register_pernet_subsys(&af_inet_ops);
}

Linus Torvalds's avatar
Linus Torvalds committed
1872 1873
static int ipv4_proc_init(void);

1874 1875 1876 1877
/*
 *	IP protocol layer initialiser
 */

1878 1879
static struct packet_offload ip_packet_offload __read_mostly = {
	.type = cpu_to_be16(ETH_P_IP),
1880 1881 1882 1883 1884
	.callbacks = {
		.gso_segment = inet_gso_segment,
		.gro_receive = inet_gro_receive,
		.gro_complete = inet_gro_complete,
	},
1885 1886
};

Eric Dumazet's avatar
Eric Dumazet committed
1887 1888
static const struct net_offload ipip_offload = {
	.callbacks = {
1889
		.gso_segment	= ipip_gso_segment,
1890
		.gro_receive	= ipip_gro_receive,
1891
		.gro_complete	= ipip_gro_complete,
Eric Dumazet's avatar
Eric Dumazet committed
1892 1893 1894
	},
};

1895 1896 1897 1898 1899
static int __init ipip_offload_init(void)
{
	return inet_add_offload(&ipip_offload, IPPROTO_IPIP);
}

1900 1901 1902 1903 1904
static int __init ipv4_offload_init(void)
{
	/*
	 * Add offloads
	 */
1905
	if (udpv4_offload_init() < 0)
1906
		pr_crit("%s: Cannot add UDP protocol offload\n", __func__);
1907 1908
	if (tcpv4_offload_init() < 0)
		pr_crit("%s: Cannot add TCP protocol offload\n", __func__);
1909 1910
	if (ipip_offload_init() < 0)
		pr_crit("%s: Cannot add IPIP protocol offload\n", __func__);
1911 1912 1913 1914 1915 1916 1917 1918 1919 1920

	dev_add_offload(&ip_packet_offload);
	return 0;
}

fs_initcall(ipv4_offload_init);

static struct packet_type ip_packet_type __read_mostly = {
	.type = cpu_to_be16(ETH_P_IP),
	.func = ip_rcv,
1921
	.list_func = ip_list_rcv,
1922 1923
};

Linus Torvalds's avatar
Linus Torvalds committed
1924 1925 1926 1927
static int __init inet_init(void)
{
	struct inet_protosw *q;
	struct list_head *r;
1928
	int rc;
Linus Torvalds's avatar
Linus Torvalds committed
1929

1930
	sock_skb_cb_check_size(sizeof(struct inet_skb_parm));
Linus Torvalds's avatar
Linus Torvalds committed
1931

1932 1933
	raw_hashinfo_init(&raw_v4_hashinfo);

Linus Torvalds's avatar
Linus Torvalds committed
1934 1935
	rc = proto_register(&tcp_prot, 1);
	if (rc)
1936
		goto out;
Linus Torvalds's avatar
Linus Torvalds committed
1937 1938 1939 1940 1941 1942 1943 1944 1945

	rc = proto_register(&udp_prot, 1);
	if (rc)
		goto out_unregister_tcp_proto;

	rc = proto_register(&raw_prot, 1);
	if (rc)
		goto out_unregister_udp_proto;

1946 1947 1948 1949
	rc = proto_register(&ping_prot, 1);
	if (rc)
		goto out_unregister_raw_proto;

Linus Torvalds's avatar
Linus Torvalds committed
1950
	/*
1951
	 *	Tell SOCKET that we are alive...
Linus Torvalds's avatar
Linus Torvalds committed
1952 1953
	 */

1954
	(void)sock_register(&inet_family_ops);
Linus Torvalds's avatar
Linus Torvalds committed
1955

1956 1957 1958 1959
#ifdef CONFIG_SYSCTL
	ip_static_sysctl_init();
#endif

Linus Torvalds's avatar
Linus Torvalds committed
1960 1961 1962 1963 1964
	/*
	 *	Add all the base protocols.
	 */

	if (inet_add_protocol(&icmp_protocol, IPPROTO_ICMP) < 0)
1965
		pr_crit("%s: Cannot add ICMP protocol\n", __func__);
Linus Torvalds's avatar
Linus Torvalds committed
1966
	if (inet_add_protocol(&udp_protocol, IPPROTO_UDP) < 0)
1967
		pr_crit("%s: Cannot add UDP protocol\n", __func__);
Linus Torvalds's avatar
Linus Torvalds committed
1968
	if (inet_add_protocol(&tcp_protocol, IPPROTO_TCP) < 0)
1969
		pr_crit("%s: Cannot add TCP protocol\n", __func__);
Linus Torvalds's avatar
Linus Torvalds committed
1970 1971
#ifdef CONFIG_IP_MULTICAST
	if (inet_add_protocol(&igmp_protocol, IPPROTO_IGMP) < 0)
1972
		pr_crit("%s: Cannot add IGMP protocol\n", __func__);
Linus Torvalds's avatar
Linus Torvalds committed
1973 1974 1975 1976 1977 1978 1979 1980 1981 1982 1983 1984 1985 1986 1987
#endif

	/* Register the socket-side information for inet_create. */
	for (r = &inetsw[0]; r < &inetsw[SOCK_MAX]; ++r)
		INIT_LIST_HEAD(r);

	for (q = inetsw_array; q < &inetsw_array[INETSW_ARRAY_LEN]; ++q)
		inet_register_protosw(q);

	/*
	 *	Set the ARP module up
	 */

	arp_init();

1988 1989 1990
	/*
	 *	Set the IP module up
	 */
Linus Torvalds's avatar
Linus Torvalds committed
1991 1992 1993

	ip_init();

1994 1995 1996 1997
	/* Initialise per-cpu ipv4 mibs */
	if (init_ipv4_mibs())
		panic("%s: Cannot init ipv4 mibs\n", __func__);

Linus Torvalds's avatar
Linus Torvalds committed
1998 1999 2000
	/* Setup TCP slab cache for open requests. */
	tcp_init();

Hideo Aoki's avatar
Hideo Aoki committed
2001 2002 2003
	/* Setup UDP memory threshold */
	udp_init();

2004 2005
	/* Add UDP-Lite (RFC 3828) */
	udplite4_register();
Linus Torvalds's avatar
Linus Torvalds committed
2006

2007 2008
	raw_init();

2009 2010
	ping_init();

Linus Torvalds's avatar
Linus Torvalds committed
2011 2012 2013 2014
	/*
	 *	Set the ICMP layer up
	 */

2015 2016
	if (icmp_init() < 0)
		panic("Failed to create the ICMP control socket.\n");
Linus Torvalds's avatar
Linus Torvalds committed
2017 2018 2019 2020 2021

	/*
	 *	Initialise the multicast router
	 */
#if defined(CONFIG_IP_MROUTE)
Wang Chen's avatar
Wang Chen committed
2022
	if (ip_mr_init())
2023
		pr_crit("%s: Cannot init ipv4 mroute\n", __func__);
Linus Torvalds's avatar
Linus Torvalds committed
2024
#endif
2025 2026 2027

	if (init_inet_pernet_ops())
		pr_crit("%s: Cannot init ipv4 inet pernet ops\n", __func__);
2028

Linus Torvalds's avatar
Linus Torvalds committed
2029 2030 2031 2032
	ipv4_proc_init();

	ipfrag_init();

2033 2034
	dev_add_pack(&ip_packet_type);

2035 2036
	ip_tunnel_core_init();

Linus Torvalds's avatar
Linus Torvalds committed
2037 2038 2039
	rc = 0;
out:
	return rc;
2040 2041
out_unregister_raw_proto:
	proto_unregister(&raw_prot);
Linus Torvalds's avatar
Linus Torvalds committed
2042 2043
out_unregister_udp_proto:
	proto_unregister(&udp_prot);
2044 2045
out_unregister_tcp_proto:
	proto_unregister(&tcp_prot);
Linus Torvalds's avatar
Linus Torvalds committed
2046 2047 2048
	goto out;
}

2049
fs_initcall(inet_init);
Linus Torvalds's avatar
Linus Torvalds committed
2050 2051 2052 2053 2054 2055 2056 2057 2058 2059 2060 2061 2062 2063

/* ------------------------------------------------------------------------ */

#ifdef CONFIG_PROC_FS
static int __init ipv4_proc_init(void)
{
	int rc = 0;

	if (raw_proc_init())
		goto out_raw;
	if (tcp4_proc_init())
		goto out_tcp;
	if (udp4_proc_init())
		goto out_udp;
2064 2065
	if (ping_proc_init())
		goto out_ping;
Linus Torvalds's avatar
Linus Torvalds committed
2066 2067 2068 2069 2070
	if (ip_misc_proc_init())
		goto out_misc;
out:
	return rc;
out_misc:
2071 2072
	ping_proc_exit();
out_ping:
Linus Torvalds's avatar
Linus Torvalds committed
2073 2074 2075 2076 2077 2078 2079 2080 2081 2082 2083 2084 2085 2086 2087 2088
	udp4_proc_exit();
out_udp:
	tcp4_proc_exit();
out_tcp:
	raw_proc_exit();
out_raw:
	rc = -ENOMEM;
	goto out;
}

#else /* CONFIG_PROC_FS */
static int __init ipv4_proc_init(void)
{
	return 0;
}
#endif /* CONFIG_PROC_FS */