ip_fib.h 11.6 KB
Newer Older
L
Linus Torvalds 已提交
1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20
/*
 * INET		An implementation of the TCP/IP protocol suite for the LINUX
 *		operating system.  INET  is implemented using the  BSD Socket
 *		interface as the means of communication with the user level.
 *
 *		Definitions for the Forwarding Information Base.
 *
 * Authors:	A.N.Kuznetsov, <kuznet@ms2.inr.ac.ru>
 *
 *		This program is free software; you can redistribute it and/or
 *		modify it under the terms of the GNU General Public License
 *		as published by the Free Software Foundation; either version
 *		2 of the License, or (at your option) any later version.
 */

#ifndef _NET_IP_FIB_H
#define _NET_IP_FIB_H

#include <net/flow.h>
#include <linux/seq_file.h>
21
#include <linux/rcupdate.h>
22
#include <net/fib_notifier.h>
23
#include <net/fib_rules.h>
24
#include <net/inetpeer.h>
E
Eric Dumazet 已提交
25
#include <linux/percpu.h>
26
#include <linux/notifier.h>
27
#include <linux/refcount.h>
L
Linus Torvalds 已提交
28

29 30 31 32 33 34
struct fib_config {
	u8			fc_dst_len;
	u8			fc_tos;
	u8			fc_protocol;
	u8			fc_scope;
	u8			fc_type;
35
	/* 3 bytes unused */
36
	u32			fc_table;
37 38
	__be32			fc_dst;
	__be32			fc_gw;
39 40 41
	int			fc_oif;
	u32			fc_flags;
	u32			fc_priority;
42
	__be32			fc_prefsrc;
43 44 45 46 47 48 49
	struct nlattr		*fc_mx;
	struct rtnexthop	*fc_mp;
	int			fc_mx_len;
	int			fc_mp_len;
	u32			fc_flow;
	u32			fc_nlflags;
	struct nl_info		fc_nlinfo;
50 51 52
	struct nlattr		*fc_encap;
	u16			fc_encap_type;
};
L
Linus Torvalds 已提交
53 54

struct fib_info;
55
struct rtable;
L
Linus Torvalds 已提交
56

57 58
struct fib_nh_exception {
	struct fib_nh_exception __rcu	*fnhe_next;
59
	int				fnhe_genid;
60 61
	__be32				fnhe_daddr;
	u32				fnhe_pmtu;
62
	bool				fnhe_mtu_locked;
63
	__be32				fnhe_gw;
64
	unsigned long			fnhe_expires;
65 66
	struct rtable __rcu		*fnhe_rth_input;
	struct rtable __rcu		*fnhe_rth_output;
67
	unsigned long			fnhe_stamp;
68
	struct rcu_head			rcu;
69 70 71 72 73 74
};

struct fnhe_hash_bucket {
	struct fib_nh_exception __rcu	*chain;
};

E
Eric Dumazet 已提交
75 76
#define FNHE_HASH_SHIFT		11
#define FNHE_HASH_SIZE		(1 << FNHE_HASH_SHIFT)
77 78
#define FNHE_RECLAIM_DEPTH	5

L
Linus Torvalds 已提交
79 80 81 82
struct fib_nh {
	struct net_device	*nh_dev;
	struct hlist_node	nh_hash;
	struct fib_info		*nh_parent;
83
	unsigned int		nh_flags;
L
Linus Torvalds 已提交
84 85 86
	unsigned char		nh_scope;
#ifdef CONFIG_IP_ROUTE_MULTIPATH
	int			nh_weight;
P
Peter Nørlund 已提交
87
	atomic_t		nh_upper_bound;
L
Linus Torvalds 已提交
88
#endif
89
#ifdef CONFIG_IP_ROUTE_CLASSID
L
Linus Torvalds 已提交
90 91 92
	__u32			nh_tclassid;
#endif
	int			nh_oif;
A
Al Viro 已提交
93
	__be32			nh_gw;
94
	__be32			nh_saddr;
95
	int			nh_saddr_genid;
E
Eric Dumazet 已提交
96
	struct rtable __rcu * __percpu *nh_pcpu_rth_output;
97
	struct rtable __rcu	*nh_rth_input;
98
	struct fnhe_hash_bucket	__rcu *nh_exceptions;
99
	struct lwtunnel_state	*nh_lwtstate;
L
Linus Torvalds 已提交
100 101 102 103 104 105 106 107 108
};

/*
 * This structure contains data shared by many of routes.
 */

struct fib_info {
	struct hlist_node	fib_hash;
	struct hlist_node	fib_lhash;
109
	struct net		*fib_net;
L
Linus Torvalds 已提交
110
	int			fib_treeref;
111
	refcount_t		fib_clntref;
112
	unsigned int		fib_flags;
113 114 115
	unsigned char		fib_dead;
	unsigned char		fib_protocol;
	unsigned char		fib_scope;
E
Eric Dumazet 已提交
116
	unsigned char		fib_type;
A
Al Viro 已提交
117
	__be32			fib_prefsrc;
118
	u32			fib_tb_id;
L
Linus Torvalds 已提交
119
	u32			fib_priority;
120 121 122 123 124
	struct dst_metrics	*fib_metrics;
#define fib_mtu fib_metrics->metrics[RTAX_MTU-1]
#define fib_window fib_metrics->metrics[RTAX_WINDOW-1]
#define fib_rtt fib_metrics->metrics[RTAX_RTT-1]
#define fib_advmss fib_metrics->metrics[RTAX_ADVMSS-1]
L
Linus Torvalds 已提交
125
	int			fib_nhs;
E
Eric Dumazet 已提交
126
	struct rcu_head		rcu;
L
Linus Torvalds 已提交
127 128 129 130 131 132 133 134 135
	struct fib_nh		fib_nh[0];
#define fib_dev		fib_nh[0].nh_dev
};


#ifdef CONFIG_IP_MULTIPLE_TABLES
struct fib_rule;
#endif

136
struct fib_table;
L
Linus Torvalds 已提交
137
struct fib_result {
138
	__be32		prefix;
L
Linus Torvalds 已提交
139 140 141 142
	unsigned char	prefixlen;
	unsigned char	nh_sel;
	unsigned char	type;
	unsigned char	scope;
143
	u32		tclassid;
L
Linus Torvalds 已提交
144
	struct fib_info *fi;
145
	struct fib_table *table;
146
	struct hlist_head *fa_head;
L
Linus Torvalds 已提交
147 148
};

149
struct fib_result_nl {
150
	__be32		fl_addr;   /* To be looked up*/
151
	u32		fl_mark;
152 153 154 155 156 157 158 159 160
	unsigned char	fl_tos;
	unsigned char   fl_scope;
	unsigned char   tb_id_in;

	unsigned char   tb_id;      /* Results */
	unsigned char	prefixlen;
	unsigned char	nh_sel;
	unsigned char	type;
	unsigned char	scope;
S
Stephen Hemminger 已提交
161
	int             err;
162
};
L
Linus Torvalds 已提交
163 164 165 166 167

#ifdef CONFIG_IP_ROUTE_MULTIPATH
#define FIB_RES_NH(res)		((res).fi->fib_nh[(res).nh_sel])
#else /* CONFIG_IP_ROUTE_MULTIPATH */
#define FIB_RES_NH(res)		((res).fi->fib_nh[0])
168
#endif /* CONFIG_IP_ROUTE_MULTIPATH */
L
Linus Torvalds 已提交
169

170
#ifdef CONFIG_IP_MULTIPLE_TABLES
171
#define FIB_TABLE_HASHSZ 256
172 173 174
#else
#define FIB_TABLE_HASHSZ 2
#endif
L
Linus Torvalds 已提交
175

176
__be32 fib_info_update_nh_saddr(struct net *net, struct fib_nh *nh);
177 178 179 180 181 182

#define FIB_RES_SADDR(net, res)				\
	((FIB_RES_NH(res).nh_saddr_genid ==		\
	  atomic_read(&(net)->ipv4.dev_addr_genid)) ?	\
	 FIB_RES_NH(res).nh_saddr :			\
	 fib_info_update_nh_saddr((net), &FIB_RES_NH(res)))
L
Linus Torvalds 已提交
183 184 185 186
#define FIB_RES_GW(res)			(FIB_RES_NH(res).nh_gw)
#define FIB_RES_DEV(res)		(FIB_RES_NH(res).nh_dev)
#define FIB_RES_OIF(res)		(FIB_RES_NH(res).nh_oif)

187 188
#define FIB_RES_PREFSRC(net, res)	((res).fi->fib_prefsrc ? : \
					 FIB_RES_SADDR(net, res))
189

190 191 192 193 194 195 196 197 198 199
struct fib_entry_notifier_info {
	struct fib_notifier_info info; /* must be first */
	u32 dst;
	int dst_len;
	struct fib_info *fi;
	u8 tos;
	u8 type;
	u32 tb_id;
};

200 201 202 203 204
struct fib_nh_notifier_info {
	struct fib_notifier_info info; /* must be first */
	struct fib_nh *fib_nh;
};

205 206
int call_fib4_notifier(struct notifier_block *nb, struct net *net,
		       enum fib_event_type event_type,
207
		       struct fib_notifier_info *info);
208 209 210 211 212
int call_fib4_notifiers(struct net *net, enum fib_event_type event_type,
			struct fib_notifier_info *info);

int __net_init fib4_notifier_init(struct net *net);
void __net_exit fib4_notifier_exit(struct net *net);
213

214
void fib_notify(struct net *net, struct notifier_block *nb);
215

L
Linus Torvalds 已提交
216
struct fib_table {
217 218 219
	struct hlist_node	tb_hlist;
	u32			tb_id;
	int			tb_num_default;
220
	struct rcu_head		rcu;
221 222
	unsigned long 		*tb_data;
	unsigned long		__data[0];
L
Linus Torvalds 已提交
223 224
};

225 226
int fib_table_lookup(struct fib_table *tb, const struct flowi4 *flp,
		     struct fib_result *res, int fib_flags);
227 228
int fib_table_insert(struct net *, struct fib_table *, struct fib_config *,
		     struct netlink_ext_ack *extack);
229 230
int fib_table_delete(struct net *, struct fib_table *, struct fib_config *,
		     struct netlink_ext_ack *extack);
231 232
int fib_table_dump(struct fib_table *table, struct sk_buff *skb,
		   struct netlink_callback *cb);
233
int fib_table_flush(struct net *net, struct fib_table *table);
234
struct fib_table *fib_trie_unmerge(struct fib_table *main_tb);
235
void fib_table_flush_external(struct fib_table *table);
236
void fib_free_table(struct fib_table *tb);
237

L
Linus Torvalds 已提交
238 239
#ifndef CONFIG_IP_MULTIPLE_TABLES

240 241
#define TABLE_LOCAL_INDEX	(RT_TABLE_LOCAL & (FIB_TABLE_HASHSZ - 1))
#define TABLE_MAIN_INDEX	(RT_TABLE_MAIN  & (FIB_TABLE_HASHSZ - 1))
L
Linus Torvalds 已提交
242

243
static inline struct fib_table *fib_get_table(struct net *net, u32 id)
L
Linus Torvalds 已提交
244
{
245
	struct hlist_node *tb_hlist;
246 247 248
	struct hlist_head *ptr;

	ptr = id == RT_TABLE_LOCAL ?
249 250
		&net->ipv4.fib_table_hash[TABLE_LOCAL_INDEX] :
		&net->ipv4.fib_table_hash[TABLE_MAIN_INDEX];
251 252 253 254

	tb_hlist = rcu_dereference_rtnl(hlist_first_rcu(ptr));

	return hlist_entry(tb_hlist, struct fib_table, tb_hlist);
L
Linus Torvalds 已提交
255 256
}

257
static inline struct fib_table *fib_new_table(struct net *net, u32 id)
L
Linus Torvalds 已提交
258
{
259
	return fib_get_table(net, id);
L
Linus Torvalds 已提交
260 261
}

262
static inline int fib_lookup(struct net *net, const struct flowi4 *flp,
263
			     struct fib_result *res, unsigned int flags)
L
Linus Torvalds 已提交
264
{
265
	struct fib_table *tb;
266
	int err = -ENETUNREACH;
267 268 269

	rcu_read_lock();

270
	tb = fib_get_table(net, RT_TABLE_MAIN);
271 272 273 274 275
	if (tb)
		err = fib_table_lookup(tb, flp, res, flags | FIB_LOOKUP_NOREF);

	if (err == -EAGAIN)
		err = -ENETUNREACH;
276

277
	rcu_read_unlock();
278

279
	return err;
L
Linus Torvalds 已提交
280 281
}

282 283 284 285 286
static inline bool fib4_rule_default(const struct fib_rule *rule)
{
	return true;
}

287 288 289 290 291 292 293 294 295 296
static inline int fib4_rules_dump(struct net *net, struct notifier_block *nb)
{
	return 0;
}

static inline unsigned int fib4_rules_seq_read(struct net *net)
{
	return 0;
}

297 298 299 300 301 302 303
static inline bool fib4_rules_early_flow_dissect(struct net *net,
						 struct sk_buff *skb,
						 struct flowi4 *fl4,
						 struct flow_keys *flkeys)
{
	return false;
}
L
Linus Torvalds 已提交
304
#else /* CONFIG_IP_MULTIPLE_TABLES */
305 306
int __net_init fib4_rules_init(struct net *net);
void __net_exit fib4_rules_exit(struct net *net);
307

308 309
struct fib_table *fib_new_table(struct net *net, u32 id);
struct fib_table *fib_get_table(struct net *net, u32 id);
L
Linus Torvalds 已提交
310

311 312
int __fib_lookup(struct net *net, struct flowi4 *flp,
		 struct fib_result *res, unsigned int flags);
313 314

static inline int fib_lookup(struct net *net, struct flowi4 *flp,
315
			     struct fib_result *res, unsigned int flags)
316
{
317
	struct fib_table *tb;
318
	int err = -ENETUNREACH;
319

320
	flags |= FIB_LOOKUP_NOREF;
321
	if (net->ipv4.fib_has_custom_rules)
322
		return __fib_lookup(net, flp, res, flags);
323 324 325 326 327

	rcu_read_lock();

	res->tclassid = 0;

328 329 330 331 332 333 334 335 336 337
	tb = rcu_dereference_rtnl(net->ipv4.fib_main);
	if (tb)
		err = fib_table_lookup(tb, flp, res, flags);

	if (!err)
		goto out;

	tb = rcu_dereference_rtnl(net->ipv4.fib_default);
	if (tb)
		err = fib_table_lookup(tb, flp, res, flags);
338

339 340 341
out:
	if (err == -EAGAIN)
		err = -ENETUNREACH;
342 343 344 345

	rcu_read_unlock();

	return err;
346 347
}

348
bool fib4_rule_default(const struct fib_rule *rule);
349 350
int fib4_rules_dump(struct net *net, struct notifier_block *nb);
unsigned int fib4_rules_seq_read(struct net *net);
351

352 353 354 355 356 357 358 359 360 361 362 363 364 365 366 367 368 369
static inline bool fib4_rules_early_flow_dissect(struct net *net,
						 struct sk_buff *skb,
						 struct flowi4 *fl4,
						 struct flow_keys *flkeys)
{
	unsigned int flag = FLOW_DISSECTOR_F_STOP_AT_ENCAP;

	if (!net->ipv4.fib_rules_require_fldissect)
		return false;

	skb_flow_dissect_flow_keys(skb, flkeys, flag);
	fl4->fl4_sport = flkeys->ports.src;
	fl4->fl4_dport = flkeys->ports.dst;
	fl4->flowi4_proto = flkeys->basic.ip_proto;

	return true;
}

L
Linus Torvalds 已提交
370 371 372
#endif /* CONFIG_IP_MULTIPLE_TABLES */

/* Exported by fib_frontend.c */
373
extern const struct nla_policy rtm_ipv4_policy[];
374 375
void ip_fib_init(void);
__be32 fib_compute_spec_dst(struct sk_buff *skb);
376
bool fib_info_nh_uses_dev(struct fib_info *fi, const struct net_device *dev);
377 378 379
int fib_validate_source(struct sk_buff *skb, __be32 src, __be32 dst,
			u8 tos, int oif, struct net_device *dev,
			struct in_device *idev, u32 *itag);
380
#ifdef CONFIG_IP_ROUTE_CLASSID
381 382 383 384
static inline int fib_num_tclassid_users(struct net *net)
{
	return net->ipv4.fib_num_tclassid_users;
}
385
#else
386 387 388 389
static inline int fib_num_tclassid_users(struct net *net)
{
	return 0;
}
390
#endif
391
int fib_unmerge(struct net *net);
392

L
Linus Torvalds 已提交
393
/* Exported by fib_semantics.c */
394
int ip_fib_check_default(__be32 gw, struct net_device *dev);
395
int fib_sync_down_dev(struct net_device *dev, unsigned long event, bool force);
396
int fib_sync_down_addr(struct net_device *dev, __be32 local);
397
int fib_sync_up(struct net_device *dev, unsigned int nh_flags);
398
void fib_sync_mtu(struct net_device *dev, u32 orig_mtu);
P
Peter Nørlund 已提交
399

400
#ifdef CONFIG_IP_ROUTE_MULTIPATH
401
int fib_multipath_hash(const struct net *net, const struct flowi4 *fl4,
402
		       const struct sk_buff *skb, struct flow_keys *flkeys);
403
#endif
P
Peter Nørlund 已提交
404
void fib_select_multipath(struct fib_result *res, int hash);
405
void fib_select_path(struct net *net, struct fib_result *res,
406
		     struct flowi4 *fl4, const struct sk_buff *skb);
L
Linus Torvalds 已提交
407

408
/* Exported by fib_trie.c */
409
void fib_trie_init(void);
410
struct fib_table *fib_trie_table(u32 id, struct fib_table *alias);
L
Linus Torvalds 已提交
411

412
static inline void fib_combine_itag(u32 *itag, const struct fib_result *res)
L
Linus Torvalds 已提交
413
{
414
#ifdef CONFIG_IP_ROUTE_CLASSID
L
Linus Torvalds 已提交
415 416 417 418 419
#ifdef CONFIG_IP_MULTIPLE_TABLES
	u32 rtag;
#endif
	*itag = FIB_RES_NH(*res).nh_tclassid<<16;
#ifdef CONFIG_IP_MULTIPLE_TABLES
420
	rtag = res->tclassid;
L
Linus Torvalds 已提交
421 422 423 424 425 426 427
	if (*itag == 0)
		*itag = (rtag<<16);
	*itag |= (rtag>>16);
#endif
#endif
}

428
void free_fib_info(struct fib_info *fi);
L
Linus Torvalds 已提交
429

430 431
static inline void fib_info_hold(struct fib_info *fi)
{
432
	refcount_inc(&fi->fib_clntref);
433 434
}

L
Linus Torvalds 已提交
435 436
static inline void fib_info_put(struct fib_info *fi)
{
437
	if (refcount_dec_and_test(&fi->fib_clntref))
L
Linus Torvalds 已提交
438 439 440
		free_fib_info(fi);
}

441
#ifdef CONFIG_PROC_FS
442 443
int __net_init fib_proc_init(struct net *net);
void __net_exit fib_proc_exit(struct net *net);
444 445 446 447 448 449 450 451
#else
static inline int fib_proc_init(struct net *net)
{
	return 0;
}
static inline void fib_proc_exit(struct net *net)
{
}
452 453
#endif

454 455
u32 ip_mtu_from_fib_result(struct fib_result *res, __be32 daddr);

456 457
int ip_valid_fib_dump_req(const struct nlmsghdr *nlh,
			  struct netlink_ext_ack *extack);
L
Linus Torvalds 已提交
458
#endif  /* _NET_FIB_H */