br_stp_bpdu.c 5.4 KB
Newer Older
L
Linus Torvalds 已提交
1 2 3 4 5 6 7 8 9 10 11 12 13 14 15
/*
 *	Spanning tree protocol; BPDU handling
 *	Linux ethernet bridge
 *
 *	Authors:
 *	Lennert Buytenhek		<buytenh@gnu.org>
 *
 *	This program is free software; you can redistribute it and/or
 *	modify it under the terms of the GNU General Public License
 *	as published by the Free Software Foundation; either version
 *	2 of the License, or (at your option) any later version.
 */

#include <linux/kernel.h>
#include <linux/netfilter_bridge.h>
16 17
#include <linux/etherdevice.h>
#include <linux/llc.h>
18
#include <linux/slab.h>
19
#include <net/net_namespace.h>
20
#include <net/llc.h>
21
#include <net/llc_pdu.h>
P
Patrick McHardy 已提交
22
#include <net/stp.h>
23
#include <asm/unaligned.h>
L
Linus Torvalds 已提交
24 25 26 27

#include "br_private.h"
#include "br_private_stp.h"

28
#define STP_HZ		256
L
Linus Torvalds 已提交
29

30 31 32
#define LLC_RESERVE sizeof(struct llc_pdu_un)

static void br_send_bpdu(struct net_bridge_port *p,
33
			 const unsigned char *data, int length)
L
Linus Torvalds 已提交
34 35 36
{
	struct sk_buff *skb;

37 38
	skb = dev_alloc_skb(length+LLC_RESERVE);
	if (!skb)
L
Linus Torvalds 已提交
39 40
		return;

41
	skb->dev = p->dev;
L
Linus Torvalds 已提交
42
	skb->protocol = htons(ETH_P_802_2);
43 44 45 46 47 48 49 50 51

	skb_reserve(skb, LLC_RESERVE);
	memcpy(__skb_put(skb, length), data, length);

	llc_pdu_header_init(skb, LLC_PDU_TYPE_U, LLC_SAP_BSPAN,
			    LLC_SAP_BSPAN, LLC_PDU_CMD);
	llc_pdu_init_as_ui_cmd(skb);

	llc_mac_hdr_init(skb, p->dev->dev_addr, p->br->group_addr);
L
Linus Torvalds 已提交
52

53 54
	skb_reset_mac_header(skb);

55
	NF_HOOK(NFPROTO_BRIDGE, NF_BR_LOCAL_OUT, skb, NULL, skb->dev,
L
Linus Torvalds 已提交
56 57 58
		dev_queue_xmit);
}

59
static inline void br_set_ticks(unsigned char *dest, int j)
L
Linus Torvalds 已提交
60
{
61
	unsigned long ticks = (STP_HZ * j)/ HZ;
L
Linus Torvalds 已提交
62

63
	put_unaligned_be16(ticks, dest);
L
Linus Torvalds 已提交
64 65
}

66
static inline int br_get_ticks(const unsigned char *src)
L
Linus Torvalds 已提交
67
{
68
	unsigned long ticks = get_unaligned_be16(src);
69

70
	return DIV_ROUND_UP(ticks * HZ, STP_HZ);
L
Linus Torvalds 已提交
71 72 73 74 75
}

/* called under bridge lock */
void br_send_config_bpdu(struct net_bridge_port *p, struct br_config_bpdu *bpdu)
{
76 77
	unsigned char buf[35];

78 79 80
	if (p->br->stp_enabled != BR_KERNEL_STP)
		return;

81 82 83 84 85
	buf[0] = 0;
	buf[1] = 0;
	buf[2] = 0;
	buf[3] = BPDU_TYPE_CONFIG;
	buf[4] = (bpdu->topology_change ? 0x01 : 0) |
L
Linus Torvalds 已提交
86
		(bpdu->topology_change_ack ? 0x80 : 0);
87 88 89 90 91 92 93 94 95 96 97 98 99 100 101 102 103 104 105 106 107 108 109 110 111 112 113 114 115
	buf[5] = bpdu->root.prio[0];
	buf[6] = bpdu->root.prio[1];
	buf[7] = bpdu->root.addr[0];
	buf[8] = bpdu->root.addr[1];
	buf[9] = bpdu->root.addr[2];
	buf[10] = bpdu->root.addr[3];
	buf[11] = bpdu->root.addr[4];
	buf[12] = bpdu->root.addr[5];
	buf[13] = (bpdu->root_path_cost >> 24) & 0xFF;
	buf[14] = (bpdu->root_path_cost >> 16) & 0xFF;
	buf[15] = (bpdu->root_path_cost >> 8) & 0xFF;
	buf[16] = bpdu->root_path_cost & 0xFF;
	buf[17] = bpdu->bridge_id.prio[0];
	buf[18] = bpdu->bridge_id.prio[1];
	buf[19] = bpdu->bridge_id.addr[0];
	buf[20] = bpdu->bridge_id.addr[1];
	buf[21] = bpdu->bridge_id.addr[2];
	buf[22] = bpdu->bridge_id.addr[3];
	buf[23] = bpdu->bridge_id.addr[4];
	buf[24] = bpdu->bridge_id.addr[5];
	buf[25] = (bpdu->port_id >> 8) & 0xFF;
	buf[26] = bpdu->port_id & 0xFF;

	br_set_ticks(buf+27, bpdu->message_age);
	br_set_ticks(buf+29, bpdu->max_age);
	br_set_ticks(buf+31, bpdu->hello_time);
	br_set_ticks(buf+33, bpdu->forward_delay);

	br_send_bpdu(p, buf, 35);
L
Linus Torvalds 已提交
116 117 118 119 120
}

/* called under bridge lock */
void br_send_tcn_bpdu(struct net_bridge_port *p)
{
121 122
	unsigned char buf[4];

123 124 125
	if (p->br->stp_enabled != BR_KERNEL_STP)
		return;

126 127 128 129
	buf[0] = 0;
	buf[1] = 0;
	buf[2] = 0;
	buf[3] = BPDU_TYPE_TCN;
130
	br_send_bpdu(p, buf, 4);
L
Linus Torvalds 已提交
131 132
}

133 134 135
/*
 * Called from llc.
 *
136
 * NO locks, but rcu_read_lock
137
 */
P
Patrick McHardy 已提交
138 139
void br_stp_rcv(const struct stp_proto *proto, struct sk_buff *skb,
		struct net_device *dev)
L
Linus Torvalds 已提交
140
{
141
	const unsigned char *dest = eth_hdr(skb)->h_dest;
142
	struct net_bridge_port *p;
143
	struct net_bridge *br;
144
	const unsigned char *buf;
L
Linus Torvalds 已提交
145

146 147 148 149 150 151 152
	if (!pskb_may_pull(skb, 4))
		goto err;

	/* compare of protocol id and version */
	buf = skb->data;
	if (buf[0] != 0 || buf[1] != 0 || buf[2] != 0)
		goto err;
153

154 155 156 157
	p = br_port_get_rcu(dev);
	if (!p)
		goto err;

158 159
	br = p->br;
	spin_lock(&br->lock);
160

161 162 163 164 165 166 167
	if (br->stp_enabled != BR_KERNEL_STP)
		goto out;

	if (!(br->dev->flags & IFF_UP))
		goto out;

	if (p->state == BR_STATE_DISABLED)
168
		goto out;
169

170
	if (compare_ether_addr(dest, br->group_addr) != 0)
171
		goto out;
L
Linus Torvalds 已提交
172

173
	buf = skb_pull(skb, 3);
L
Linus Torvalds 已提交
174 175 176 177 178

	if (buf[0] == BPDU_TYPE_CONFIG) {
		struct br_config_bpdu bpdu;

		if (!pskb_may_pull(skb, 32))
179
			goto out;
L
Linus Torvalds 已提交
180 181 182 183 184 185 186 187 188 189 190 191 192 193 194 195 196 197 198 199 200 201 202 203 204 205 206 207 208 209 210 211 212

		buf = skb->data;
		bpdu.topology_change = (buf[1] & 0x01) ? 1 : 0;
		bpdu.topology_change_ack = (buf[1] & 0x80) ? 1 : 0;

		bpdu.root.prio[0] = buf[2];
		bpdu.root.prio[1] = buf[3];
		bpdu.root.addr[0] = buf[4];
		bpdu.root.addr[1] = buf[5];
		bpdu.root.addr[2] = buf[6];
		bpdu.root.addr[3] = buf[7];
		bpdu.root.addr[4] = buf[8];
		bpdu.root.addr[5] = buf[9];
		bpdu.root_path_cost =
			(buf[10] << 24) |
			(buf[11] << 16) |
			(buf[12] << 8) |
			buf[13];
		bpdu.bridge_id.prio[0] = buf[14];
		bpdu.bridge_id.prio[1] = buf[15];
		bpdu.bridge_id.addr[0] = buf[16];
		bpdu.bridge_id.addr[1] = buf[17];
		bpdu.bridge_id.addr[2] = buf[18];
		bpdu.bridge_id.addr[3] = buf[19];
		bpdu.bridge_id.addr[4] = buf[20];
		bpdu.bridge_id.addr[5] = buf[21];
		bpdu.port_id = (buf[22] << 8) | buf[23];

		bpdu.message_age = br_get_ticks(buf+24);
		bpdu.max_age = br_get_ticks(buf+26);
		bpdu.hello_time = br_get_ticks(buf+28);
		bpdu.forward_delay = br_get_ticks(buf+30);

213 214 215 216 217 218 219 220 221 222 223
		if (bpdu.message_age > bpdu.max_age) {
			if (net_ratelimit())
				br_notice(p->br,
					  "port %u config from %pM"
					  " (message_age %ul > max_age %ul)\n",
					  p->port_no,
					  eth_hdr(skb)->h_source,
					  bpdu.message_age, bpdu.max_age);
			goto out;
		}

L
Linus Torvalds 已提交
224
		br_received_config_bpdu(p, &bpdu);
S
stephen hemminger 已提交
225
	} else if (buf[0] == BPDU_TYPE_TCN) {
L
Linus Torvalds 已提交
226 227 228
		br_received_tcn_bpdu(p);
	}
 out:
229
	spin_unlock(&br->lock);
L
Linus Torvalds 已提交
230 231 232
 err:
	kfree_skb(skb);
}