ipv6.c 32.5 KB
Newer Older
1 2
/*
 *	DCCP over IPv6
A
Arnaldo Carvalho de Melo 已提交
3
 *	Linux INET6 implementation
4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21
 *
 *	Based on net/dccp6/ipv6.c
 *
 *	Arnaldo Carvalho de Melo <acme@ghostprotocols.net>
 *
 *	This program is free software; you can redistribute it and/or
 *      modify it under the terms of the GNU General Public License
 *      as published by the Free Software Foundation; either version
 *      2 of the License, or (at your option) any later version.
 */

#include <linux/module.h>
#include <linux/random.h>
#include <linux/xfrm.h>

#include <net/addrconf.h>
#include <net/inet_common.h>
#include <net/inet_hashtables.h>
22
#include <net/inet_sock.h>
23 24 25 26 27 28
#include <net/inet6_connection_sock.h>
#include <net/inet6_hashtables.h>
#include <net/ip6_route.h>
#include <net/ipv6.h>
#include <net/protocol.h>
#include <net/transp_v6.h>
29
#include <net/ip6_checksum.h>
30 31 32 33
#include <net/xfrm.h>

#include "dccp.h"
#include "ipv6.h"
34
#include "feat.h"
35

36
/* The per-net dccp.v6_ctl_sk is used for sending RSTs and ACKs */
37

38 39
static const struct inet_connection_sock_af_ops dccp_ipv6_mapped;
static const struct inet_connection_sock_af_ops dccp_ipv6_af_ops;
40 41 42 43 44

static void dccp_v6_hash(struct sock *sk)
{
	if (sk->sk_state != DCCP_CLOSED) {
		if (inet_csk(sk)->icsk_af_ops == &dccp_ipv6_mapped) {
45
			inet_hash(sk);
46 47 48
			return;
		}
		local_bh_disable();
49
		__inet6_hash(sk, NULL);
50 51 52 53
		local_bh_enable();
	}
}

54
/* add pseudo-header to DCCP checksum stored in skb->csum */
55
static inline __sum16 dccp_v6_csum_finish(struct sk_buff *skb,
56 57
				      struct in6_addr *saddr,
				      struct in6_addr *daddr)
58
{
59 60 61 62 63 64 65 66 67 68 69
	return csum_ipv6_magic(saddr, daddr, skb->len, IPPROTO_DCCP, skb->csum);
}

static inline void dccp_v6_send_check(struct sock *sk, int unused_value,
				      struct sk_buff *skb)
{
	struct ipv6_pinfo *np = inet6_sk(sk);
	struct dccp_hdr *dh = dccp_hdr(skb);

	dccp_csum_outgoing(skb);
	dh->dccph_checksum = dccp_v6_csum_finish(skb, &np->saddr, &np->daddr);
70 71
}

A
Al Viro 已提交
72
static inline __u32 secure_dccpv6_sequence_number(__be32 *saddr, __be32 *daddr,
73
						  __be16 sport, __be16 dport   )
74
{
75 76 77 78 79
	return secure_tcpv6_sequence_number(saddr, daddr, sport, dport);
}

static inline __u32 dccp_v6_init_sequence(struct sk_buff *skb)
{
80 81
	return secure_dccpv6_sequence_number(ipv6_hdr(skb)->daddr.s6_addr32,
					     ipv6_hdr(skb)->saddr.s6_addr32,
82 83 84
					     dccp_hdr(skb)->dccph_dport,
					     dccp_hdr(skb)->dccph_sport     );

85 86 87
}

static void dccp_v6_err(struct sk_buff *skb, struct inet6_skb_parm *opt,
88
			u8 type, u8 code, int offset, __be32 info)
89 90 91
{
	struct ipv6hdr *hdr = (struct ipv6hdr *)skb->data;
	const struct dccp_hdr *dh = (struct dccp_hdr *)(skb->data + offset);
92
	struct dccp_sock *dp;
93 94 95 96
	struct ipv6_pinfo *np;
	struct sock *sk;
	int err;
	__u64 seq;
97
	struct net *net = dev_net(skb->dev);
98

99 100
	if (skb->len < offset + sizeof(*dh) ||
	    skb->len < offset + __dccp_basic_hdr_len(dh)) {
101 102
		ICMP6_INC_STATS_BH(net, __in6_dev_get(skb->dev),
				   ICMP6_MIB_INERRORS);
103 104 105
		return;
	}

106
	sk = inet6_lookup(net, &dccp_hashinfo,
107
			&hdr->daddr, dh->dccph_dport,
108
			&hdr->saddr, dh->dccph_sport, inet6_iif(skb));
109 110

	if (sk == NULL) {
111 112
		ICMP6_INC_STATS_BH(net, __in6_dev_get(skb->dev),
				   ICMP6_MIB_INERRORS);
113 114 115 116
		return;
	}

	if (sk->sk_state == DCCP_TIME_WAIT) {
117
		inet_twsk_put(inet_twsk(sk));
118 119 120 121 122
		return;
	}

	bh_lock_sock(sk);
	if (sock_owned_by_user(sk))
123
		NET_INC_STATS_BH(net, LINUX_MIB_LOCKDROPPEDICMPS);
124 125 126 127

	if (sk->sk_state == DCCP_CLOSED)
		goto out;

128 129 130 131 132 133 134 135
	dp = dccp_sk(sk);
	seq = dccp_hdr_seq(dh);
	if ((1 << sk->sk_state) & ~(DCCPF_REQUESTING | DCCPF_LISTEN) &&
	    !between48(seq, dp->dccps_awl, dp->dccps_awh)) {
		NET_INC_STATS_BH(net, LINUX_MIB_OUTOFWINDOWICMPS);
		goto out;
	}

136 137 138 139 140 141 142 143 144 145 146 147 148 149 150 151 152 153 154 155 156 157 158 159 160
	np = inet6_sk(sk);

	if (type == ICMPV6_PKT_TOOBIG) {
		struct dst_entry *dst = NULL;

		if (sock_owned_by_user(sk))
			goto out;
		if ((1 << sk->sk_state) & (DCCPF_LISTEN | DCCPF_CLOSED))
			goto out;

		/* icmp should have updated the destination cache entry */
		dst = __sk_dst_check(sk, np->dst_cookie);
		if (dst == NULL) {
			struct inet_sock *inet = inet_sk(sk);
			struct flowi fl;

			/* BUGGG_FUTURE: Again, it is not clear how
			   to handle rthdr case. Ignore this complexity
			   for now.
			 */
			memset(&fl, 0, sizeof(fl));
			fl.proto = IPPROTO_DCCP;
			ipv6_addr_copy(&fl.fl6_dst, &np->daddr);
			ipv6_addr_copy(&fl.fl6_src, &np->saddr);
			fl.oif = sk->sk_bound_dev_if;
E
Eric Dumazet 已提交
161 162
			fl.fl_ip_dport = inet->inet_dport;
			fl.fl_ip_sport = inet->inet_sport;
V
Venkat Yekkirala 已提交
163
			security_sk_classify_flow(sk, &fl);
164

A
Arnaldo Carvalho de Melo 已提交
165 166
			err = ip6_dst_lookup(sk, &dst, &fl);
			if (err) {
167 168 169 170
				sk->sk_err_soft = -err;
				goto out;
			}

A
Alexey Dobriyan 已提交
171
			err = xfrm_lookup(net, &dst, &fl, sk, 0);
A
Arnaldo Carvalho de Melo 已提交
172
			if (err < 0) {
173 174 175 176 177 178
				sk->sk_err_soft = -err;
				goto out;
			}
		} else
			dst_hold(dst);

179
		if (inet_csk(sk)->icsk_pmtu_cookie > dst_mtu(dst)) {
180 181 182 183 184 185 186 187 188 189 190 191 192 193 194 195 196 197
			dccp_sync_mss(sk, dst_mtu(dst));
		} /* else let the usual retransmit timer handle it */
		dst_release(dst);
		goto out;
	}

	icmpv6_err_convert(type, code, &err);

	/* Might be for an request_sock */
	switch (sk->sk_state) {
		struct request_sock *req, **prev;
	case DCCP_LISTEN:
		if (sock_owned_by_user(sk))
			goto out;

		req = inet6_csk_search_req(sk, &prev, dh->dccph_dport,
					   &hdr->daddr, &hdr->saddr,
					   inet6_iif(skb));
A
Arnaldo Carvalho de Melo 已提交
198
		if (req == NULL)
199 200
			goto out;

A
Arnaldo Carvalho de Melo 已提交
201 202 203
		/*
		 * ICMPs are not backlogged, hence we cannot get an established
		 * socket here.
204
		 */
205
		WARN_ON(req->sk != NULL);
206 207

		if (seq != dccp_rsk(req)->dreq_iss) {
208
			NET_INC_STATS_BH(net, LINUX_MIB_OUTOFWINDOWICMPS);
209 210 211 212 213 214 215 216
			goto out;
		}

		inet_csk_reqsk_queue_drop(sk, req, prev);
		goto out;

	case DCCP_REQUESTING:
	case DCCP_RESPOND:  /* Cannot happen.
A
Arnaldo Carvalho de Melo 已提交
217
			       It can, it SYNs are crossed. --ANK */
218 219 220 221 222 223 224 225 226 227 228 229 230 231 232 233 234 235 236 237 238 239 240 241 242 243
		if (!sock_owned_by_user(sk)) {
			DCCP_INC_STATS_BH(DCCP_MIB_ATTEMPTFAILS);
			sk->sk_err = err;
			/*
			 * Wake people up to see the error
			 * (see connect in sock.c)
			 */
			sk->sk_error_report(sk);
			dccp_done(sk);
		} else
			sk->sk_err_soft = err;
		goto out;
	}

	if (!sock_owned_by_user(sk) && np->recverr) {
		sk->sk_err = err;
		sk->sk_error_report(sk);
	} else
		sk->sk_err_soft = err;

out:
	bh_unlock_sock(sk);
	sock_put(sk);
}


244 245
static int dccp_v6_send_response(struct sock *sk, struct request_sock *req,
				 struct request_values *rv_unused)
246 247 248 249 250 251 252 253
{
	struct inet6_request_sock *ireq6 = inet6_rsk(req);
	struct ipv6_pinfo *np = inet6_sk(sk);
	struct sk_buff *skb;
	struct ipv6_txoptions *opt = NULL;
	struct in6_addr *final_p = NULL, final;
	struct flowi fl;
	int err = -1;
254
	struct dst_entry *dst;
255 256 257 258 259 260 261 262

	memset(&fl, 0, sizeof(fl));
	fl.proto = IPPROTO_DCCP;
	ipv6_addr_copy(&fl.fl6_dst, &ireq6->rmt_addr);
	ipv6_addr_copy(&fl.fl6_src, &ireq6->loc_addr);
	fl.fl6_flowlabel = 0;
	fl.oif = ireq6->iif;
	fl.fl_ip_dport = inet_rsk(req)->rmt_port;
263
	fl.fl_ip_sport = inet_rsk(req)->loc_port;
264
	security_req_classify_flow(req, &fl);
265

266
	opt = np->opt;
267

268 269
	if (opt != NULL && opt->srcrt != NULL) {
		const struct rt0_hdr *rt0 = (struct rt0_hdr *)opt->srcrt;
A
Arnaldo Carvalho de Melo 已提交
270

271 272 273 274
		ipv6_addr_copy(&final, &fl.fl6_dst);
		ipv6_addr_copy(&fl.fl6_dst, rt0->addr);
		final_p = &final;
	}
275

276 277 278
	err = ip6_dst_lookup(sk, &dst, &fl);
	if (err)
		goto done;
A
Arnaldo Carvalho de Melo 已提交
279

280 281
	if (final_p)
		ipv6_addr_copy(&fl.fl6_dst, final_p);
A
Arnaldo Carvalho de Melo 已提交
282

A
Alexey Dobriyan 已提交
283
	err = xfrm_lookup(sock_net(sk), &dst, &fl, sk, 0);
284 285
	if (err < 0)
		goto done;
286 287 288 289

	skb = dccp_make_response(sk, dst, req);
	if (skb != NULL) {
		struct dccp_hdr *dh = dccp_hdr(skb);
A
Arnaldo Carvalho de Melo 已提交
290

291 292 293
		dh->dccph_checksum = dccp_v6_csum_finish(skb,
							 &ireq6->loc_addr,
							 &ireq6->rmt_addr);
294 295
		ipv6_addr_copy(&fl.fl6_dst, &ireq6->rmt_addr);
		err = ip6_xmit(sk, skb, &fl, opt, 0);
296
		err = net_xmit_eval(err);
297 298 299
	}

done:
A
Arnaldo Carvalho de Melo 已提交
300
	if (opt != NULL && opt != np->opt)
301
		sock_kfree_s(sk, opt, opt->tot_len);
302
	dst_release(dst);
303 304 305 306 307
	return err;
}

static void dccp_v6_reqsk_destructor(struct request_sock *req)
{
308
	dccp_feat_list_purge(&dccp_rsk(req)->dreq_featneg);
309 310 311 312
	if (inet6_rsk(req)->pktopts != NULL)
		kfree_skb(inet6_rsk(req)->pktopts);
}

313
static void dccp_v6_ctl_send_reset(struct sock *sk, struct sk_buff *rxskb)
314
{
315
	struct ipv6hdr *rxip6h;
316 317
	struct sk_buff *skb;
	struct flowi fl;
E
Eric Dumazet 已提交
318
	struct net *net = dev_net(skb_dst(rxskb)->dev);
319
	struct sock *ctl_sk = net->dccp.v6_ctl_sk;
E
Eric Dumazet 已提交
320
	struct dst_entry *dst;
321

322
	if (dccp_hdr(rxskb)->dccph_type == DCCP_PKT_RESET)
323 324 325
		return;

	if (!ipv6_unicast_destination(rxskb))
A
Arnaldo Carvalho de Melo 已提交
326
		return;
327

328
	skb = dccp_ctl_make_reset(ctl_sk, rxskb);
A
Arnaldo Carvalho de Melo 已提交
329
	if (skb == NULL)
330
		return;
331

332
	rxip6h = ipv6_hdr(rxskb);
333 334
	dccp_hdr(skb)->dccph_checksum = dccp_v6_csum_finish(skb, &rxip6h->saddr,
							    &rxip6h->daddr);
335

336
	memset(&fl, 0, sizeof(fl));
337 338
	ipv6_addr_copy(&fl.fl6_dst, &rxip6h->saddr);
	ipv6_addr_copy(&fl.fl6_src, &rxip6h->daddr);
339

340 341
	fl.proto = IPPROTO_DCCP;
	fl.oif = inet6_iif(rxskb);
342 343
	fl.fl_ip_dport = dccp_hdr(skb)->dccph_dport;
	fl.fl_ip_sport = dccp_hdr(skb)->dccph_sport;
V
Venkat Yekkirala 已提交
344
	security_skb_classify_flow(rxskb, &fl);
345 346

	/* sk = NULL, but it is safe for now. RST socket required. */
E
Eric Dumazet 已提交
347 348 349
	if (!ip6_dst_lookup(ctl_sk, &dst, &fl)) {
		if (xfrm_lookup(net, &dst, &fl, NULL, 0) >= 0) {
			skb_dst_set(skb, dst);
350
			ip6_xmit(ctl_sk, skb, &fl, NULL, 0);
351 352 353 354 355 356 357 358 359
			DCCP_INC_STATS_BH(DCCP_MIB_OUTSEGS);
			DCCP_INC_STATS_BH(DCCP_MIB_OUTRSTS);
			return;
		}
	}

	kfree_skb(skb);
}

360 361 362 363 364 365 366 367 368
static struct request_sock_ops dccp6_request_sock_ops = {
	.family		= AF_INET6,
	.obj_size	= sizeof(struct dccp6_request_sock),
	.rtx_syn_ack	= dccp_v6_send_response,
	.send_ack	= dccp_reqsk_send_ack,
	.destructor	= dccp_v6_reqsk_destructor,
	.send_reset	= dccp_v6_ctl_send_reset,
};

369 370 371
static struct sock *dccp_v6_hnd_req(struct sock *sk,struct sk_buff *skb)
{
	const struct dccp_hdr *dh = dccp_hdr(skb);
372
	const struct ipv6hdr *iph = ipv6_hdr(skb);
373 374 375 376 377 378 379 380 381 382 383
	struct sock *nsk;
	struct request_sock **prev;
	/* Find possible connection requests. */
	struct request_sock *req = inet6_csk_search_req(sk, &prev,
							dh->dccph_sport,
							&iph->saddr,
							&iph->daddr,
							inet6_iif(skb));
	if (req != NULL)
		return dccp_check_req(sk, skb, req, prev);

384
	nsk = __inet6_lookup_established(sock_net(sk), &dccp_hashinfo,
385 386 387 388 389 390 391 392
					 &iph->saddr, dh->dccph_sport,
					 &iph->daddr, ntohs(dh->dccph_dport),
					 inet6_iif(skb));
	if (nsk != NULL) {
		if (nsk->sk_state != DCCP_TIME_WAIT) {
			bh_lock_sock(nsk);
			return nsk;
		}
393
		inet_twsk_put(inet_twsk(nsk));
394 395 396 397 398 399 400 401 402 403 404 405
		return NULL;
	}

	return sk;
}

static int dccp_v6_conn_request(struct sock *sk, struct sk_buff *skb)
{
	struct request_sock *req;
	struct dccp_request_sock *dreq;
	struct inet6_request_sock *ireq6;
	struct ipv6_pinfo *np = inet6_sk(sk);
406
	const __be32 service = dccp_hdr_request(skb)->dccph_req_service;
407 408 409 410 411 412
	struct dccp_skb_cb *dcb = DCCP_SKB_CB(skb);

	if (skb->protocol == htons(ETH_P_IP))
		return dccp_v4_conn_request(sk, skb);

	if (!ipv6_unicast_destination(skb))
413
		return 0;	/* discard, don't send a reset here */
414 415

	if (dccp_bad_service_code(sk, service)) {
416
		dcb->dccpd_reset_code = DCCP_RESET_CODE_BAD_SERVICE_CODE;
417
		goto drop;
418
	}
419
	/*
A
Arnaldo Carvalho de Melo 已提交
420
	 * There are no SYN attacks on IPv6, yet...
421
	 */
422
	dcb->dccpd_reset_code = DCCP_RESET_CODE_TOO_BUSY;
423
	if (inet_csk_reqsk_queue_is_full(sk))
A
Arnaldo Carvalho de Melo 已提交
424
		goto drop;
425 426 427 428

	if (sk_acceptq_is_full(sk) && inet_csk_reqsk_queue_young(sk) > 1)
		goto drop;

G
Gerrit Renker 已提交
429
	req = inet6_reqsk_alloc(&dccp6_request_sock_ops);
430 431 432
	if (req == NULL)
		goto drop;

433 434
	if (dccp_reqsk_init(req, dccp_sk(sk), skb))
		goto drop_and_free;
435

436 437 438 439
	dreq = dccp_rsk(req);
	if (dccp_parse_options(sk, dreq, skb))
		goto drop_and_free;

440 441 442
	if (security_inet_conn_request(sk, skb, req))
		goto drop_and_free;

443
	ireq6 = inet6_rsk(req);
444 445
	ipv6_addr_copy(&ireq6->rmt_addr, &ipv6_hdr(skb)->saddr);
	ipv6_addr_copy(&ireq6->loc_addr, &ipv6_hdr(skb)->daddr);
446 447 448 449 450 451 452 453 454 455 456 457 458 459

	if (ipv6_opt_accepted(sk, skb) ||
	    np->rxopt.bits.rxinfo || np->rxopt.bits.rxoinfo ||
	    np->rxopt.bits.rxhlim || np->rxopt.bits.rxohlim) {
		atomic_inc(&skb->users);
		ireq6->pktopts = skb;
	}
	ireq6->iif = sk->sk_bound_dev_if;

	/* So that link locals have meaning */
	if (!sk->sk_bound_dev_if &&
	    ipv6_addr_type(&ireq6->rmt_addr) & IPV6_ADDR_LINKLOCAL)
		ireq6->iif = inet6_iif(skb);

A
Arnaldo Carvalho de Melo 已提交
460
	/*
461 462
	 * Step 3: Process LISTEN state
	 *
463
	 *   Set S.ISR, S.GSR, S.SWL, S.SWH from packet or Init Cookie
464
	 *
465 466
	 *   In fact we defer setting S.GSR, S.SWL, S.SWH to
	 *   dccp_create_openreq_child.
467 468
	 */
	dreq->dreq_isr	   = dcb->dccpd_seq;
469
	dreq->dreq_iss	   = dccp_v6_init_sequence(skb);
470 471
	dreq->dreq_service = service;

472
	if (dccp_v6_send_response(sk, req, NULL))
473 474 475 476 477 478 479 480 481 482 483 484 485 486 487 488 489 490 491 492 493 494 495 496 497 498 499 500 501 502
		goto drop_and_free;

	inet6_csk_reqsk_queue_hash_add(sk, req, DCCP_TIMEOUT_INIT);
	return 0;

drop_and_free:
	reqsk_free(req);
drop:
	DCCP_INC_STATS_BH(DCCP_MIB_ATTEMPTFAILS);
	return -1;
}

static struct sock *dccp_v6_request_recv_sock(struct sock *sk,
					      struct sk_buff *skb,
					      struct request_sock *req,
					      struct dst_entry *dst)
{
	struct inet6_request_sock *ireq6 = inet6_rsk(req);
	struct ipv6_pinfo *newnp, *np = inet6_sk(sk);
	struct inet_sock *newinet;
	struct dccp_sock *newdp;
	struct dccp6_sock *newdp6;
	struct sock *newsk;
	struct ipv6_txoptions *opt;

	if (skb->protocol == htons(ETH_P_IP)) {
		/*
		 *	v6 mapped
		 */
		newsk = dccp_v4_request_recv_sock(sk, skb, req, dst);
A
Arnaldo Carvalho de Melo 已提交
503
		if (newsk == NULL)
504 505 506 507 508 509 510 511 512 513
			return NULL;

		newdp6 = (struct dccp6_sock *)newsk;
		newdp = dccp_sk(newsk);
		newinet = inet_sk(newsk);
		newinet->pinet6 = &newdp6->inet6;
		newnp = inet6_sk(newsk);

		memcpy(newnp, np, sizeof(struct ipv6_pinfo));

E
Eric Dumazet 已提交
514
		ipv6_addr_set_v4mapped(newinet->inet_daddr, &newnp->daddr);
515

E
Eric Dumazet 已提交
516
		ipv6_addr_set_v4mapped(newinet->inet_saddr, &newnp->saddr);
517 518 519 520 521 522 523 524

		ipv6_addr_copy(&newnp->rcv_saddr, &newnp->saddr);

		inet_csk(newsk)->icsk_af_ops = &dccp_ipv6_mapped;
		newsk->sk_backlog_rcv = dccp_v4_do_rcv;
		newnp->pktoptions  = NULL;
		newnp->opt	   = NULL;
		newnp->mcast_oif   = inet6_iif(skb);
525
		newnp->mcast_hops  = ipv6_hdr(skb)->hop_limit;
526 527 528 529 530 531 532 533 534 535 536

		/*
		 * No need to charge this sock to the relevant IPv6 refcnt debug socks count
		 * here, dccp_create_openreq_child now does this for us, see the comment in
		 * that function for the gory details. -acme
		 */

		/* It is tricky place. Until this moment IPv4 tcp
		   worked with IPv6 icsk.icsk_af_ops.
		   Sync it now.
		 */
537
		dccp_sync_mss(newsk, inet_csk(newsk)->icsk_pmtu_cookie);
538 539 540 541 542 543 544 545 546 547 548 549 550 551 552 553

		return newsk;
	}

	opt = np->opt;

	if (sk_acceptq_is_full(sk))
		goto out_overflow;

	if (dst == NULL) {
		struct in6_addr *final_p = NULL, final;
		struct flowi fl;

		memset(&fl, 0, sizeof(fl));
		fl.proto = IPPROTO_DCCP;
		ipv6_addr_copy(&fl.fl6_dst, &ireq6->rmt_addr);
A
Arnaldo Carvalho de Melo 已提交
554 555 556
		if (opt != NULL && opt->srcrt != NULL) {
			const struct rt0_hdr *rt0 = (struct rt0_hdr *)opt->srcrt;

557 558 559 560 561 562 563
			ipv6_addr_copy(&final, &fl.fl6_dst);
			ipv6_addr_copy(&fl.fl6_dst, rt0->addr);
			final_p = &final;
		}
		ipv6_addr_copy(&fl.fl6_src, &ireq6->loc_addr);
		fl.oif = sk->sk_bound_dev_if;
		fl.fl_ip_dport = inet_rsk(req)->rmt_port;
564
		fl.fl_ip_sport = inet_rsk(req)->loc_port;
V
Venkat Yekkirala 已提交
565
		security_sk_classify_flow(sk, &fl);
566 567 568 569 570 571 572

		if (ip6_dst_lookup(sk, &dst, &fl))
			goto out;

		if (final_p)
			ipv6_addr_copy(&fl.fl6_dst, final_p);

A
Alexey Dobriyan 已提交
573
		if ((xfrm_lookup(sock_net(sk), &dst, &fl, sk, 0)) < 0)
574
			goto out;
A
Arnaldo Carvalho de Melo 已提交
575
	}
576 577 578 579 580 581 582 583 584 585 586

	newsk = dccp_create_openreq_child(sk, req, skb);
	if (newsk == NULL)
		goto out;

	/*
	 * No need to charge this sock to the relevant IPv6 refcnt debug socks
	 * count here, dccp_create_openreq_child now does this for us, see the
	 * comment in that function for the gory details. -acme
	 */

587
	__ip6_dst_store(newsk, dst, NULL, NULL);
A
Arnaldo Carvalho de Melo 已提交
588 589
	newsk->sk_route_caps = dst->dev->features & ~(NETIF_F_IP_CSUM |
						      NETIF_F_TSO);
590 591 592 593 594 595 596 597 598 599 600 601 602
	newdp6 = (struct dccp6_sock *)newsk;
	newinet = inet_sk(newsk);
	newinet->pinet6 = &newdp6->inet6;
	newdp = dccp_sk(newsk);
	newnp = inet6_sk(newsk);

	memcpy(newnp, np, sizeof(struct ipv6_pinfo));

	ipv6_addr_copy(&newnp->daddr, &ireq6->rmt_addr);
	ipv6_addr_copy(&newnp->saddr, &ireq6->loc_addr);
	ipv6_addr_copy(&newnp->rcv_saddr, &ireq6->loc_addr);
	newsk->sk_bound_dev_if = ireq6->iif;

A
Arnaldo Carvalho de Melo 已提交
603
	/* Now IPv6 options...
604 605 606 607 608 609 610 611 612 613 614 615 616 617 618 619 620 621 622

	   First: no IPv4 options.
	 */
	newinet->opt = NULL;

	/* Clone RX bits */
	newnp->rxopt.all = np->rxopt.all;

	/* Clone pktoptions received with SYN */
	newnp->pktoptions = NULL;
	if (ireq6->pktopts != NULL) {
		newnp->pktoptions = skb_clone(ireq6->pktopts, GFP_ATOMIC);
		kfree_skb(ireq6->pktopts);
		ireq6->pktopts = NULL;
		if (newnp->pktoptions)
			skb_set_owner_r(newnp->pktoptions, newsk);
	}
	newnp->opt	  = NULL;
	newnp->mcast_oif  = inet6_iif(skb);
623
	newnp->mcast_hops = ipv6_hdr(skb)->hop_limit;
624

A
Arnaldo Carvalho de Melo 已提交
625 626 627 628 629
	/*
	 * Clone native IPv6 options from listening socket (if any)
	 *
	 * Yes, keeping reference count would be much more clever, but we make
	 * one more one thing there: reattach optmem to newsk.
630
	 */
A
Arnaldo Carvalho de Melo 已提交
631
	if (opt != NULL) {
632 633 634 635 636
		newnp->opt = ipv6_dup_options(newsk, opt);
		if (opt != np->opt)
			sock_kfree_s(sk, opt, opt->tot_len);
	}

637
	inet_csk(newsk)->icsk_ext_hdr_len = 0;
A
Arnaldo Carvalho de Melo 已提交
638
	if (newnp->opt != NULL)
639 640
		inet_csk(newsk)->icsk_ext_hdr_len = (newnp->opt->opt_nflen +
						     newnp->opt->opt_flen);
641 642 643

	dccp_sync_mss(newsk, dst_mtu(dst));

E
Eric Dumazet 已提交
644 645
	newinet->inet_daddr = newinet->inet_saddr = LOOPBACK4_IPV6;
	newinet->inet_rcv_saddr = LOOPBACK4_IPV6;
646

647
	__inet6_hash(newsk, NULL);
648
	__inet_inherit_port(sk, newsk);
649 650 651 652

	return newsk;

out_overflow:
653
	NET_INC_STATS_BH(sock_net(sk), LINUX_MIB_LISTENOVERFLOWS);
654
out:
655
	NET_INC_STATS_BH(sock_net(sk), LINUX_MIB_LISTENDROPS);
A
Arnaldo Carvalho de Melo 已提交
656
	if (opt != NULL && opt != np->opt)
657 658 659 660 661 662 663 664 665 666 667 668 669 670 671 672 673 674 675 676 677 678 679 680 681 682 683 684 685
		sock_kfree_s(sk, opt, opt->tot_len);
	dst_release(dst);
	return NULL;
}

/* The socket must have it's spinlock held when we get
 * here.
 *
 * We have a potential double-lock case here, so even when
 * doing backlog processing we use the BH locking scheme.
 * This is because we cannot sleep with the original spinlock
 * held.
 */
static int dccp_v6_do_rcv(struct sock *sk, struct sk_buff *skb)
{
	struct ipv6_pinfo *np = inet6_sk(sk);
	struct sk_buff *opt_skb = NULL;

	/* Imagine: socket is IPv6. IPv4 packet arrives,
	   goes to IPv4 receive handler and backlogged.
	   From backlog it always goes here. Kerboom...
	   Fortunately, dccp_rcv_established and rcv_established
	   handle them correctly, but it is not case with
	   dccp_v6_hnd_req and dccp_v6_ctl_send_reset().   --ANK
	 */

	if (skb->protocol == htons(ETH_P_IP))
		return dccp_v4_do_rcv(sk, skb);

686
	if (sk_filter(sk, skb))
687 688 689
		goto discard;

	/*
A
Arnaldo Carvalho de Melo 已提交
690 691
	 * socket locking is here for SMP purposes as backlog rcv is currently
	 * called with bh processing disabled.
692 693 694 695 696 697 698 699 700 701 702 703 704
	 */

	/* Do Stevens' IPV6_PKTOPTIONS.

	   Yes, guys, it is the only place in our code, where we
	   may make it not affecting IPv4.
	   The rest of code is protocol independent,
	   and I do not like idea to uglify IPv4.

	   Actually, all the idea behind IPV6_PKTOPTIONS
	   looks not very well thought. For now we latch
	   options, received in the last packet, enqueued
	   by tcp. Feel free to propose better solution.
705
					       --ANK (980728)
706 707
	 */
	if (np->rxopt.all)
708 709 710 711
	/*
	 * FIXME: Add handling of IPV6_PKTOPTIONS skb. See the comments below
	 *        (wrt ipv6_pktopions) and net/ipv6/tcp_ipv6.c for an example.
	 */
712 713 714 715 716
		opt_skb = skb_clone(skb, GFP_ATOMIC);

	if (sk->sk_state == DCCP_OPEN) { /* Fast path */
		if (dccp_rcv_established(sk, skb, dccp_hdr(skb), skb->len))
			goto reset;
D
David S. Miller 已提交
717
		if (opt_skb) {
718
			/* XXX This is where we would goto ipv6_pktoptions. */
D
David S. Miller 已提交
719 720
			__kfree_skb(opt_skb);
		}
721 722 723
		return 0;
	}

724 725 726 727 728 729 730 731 732 733 734 735 736 737 738 739 740 741 742 743 744 745 746 747
	/*
	 *  Step 3: Process LISTEN state
	 *     If S.state == LISTEN,
	 *	 If P.type == Request or P contains a valid Init Cookie option,
	 *	      (* Must scan the packet's options to check for Init
	 *		 Cookies.  Only Init Cookies are processed here,
	 *		 however; other options are processed in Step 8.  This
	 *		 scan need only be performed if the endpoint uses Init
	 *		 Cookies *)
	 *	      (* Generate a new socket and switch to that socket *)
	 *	      Set S := new socket for this port pair
	 *	      S.state = RESPOND
	 *	      Choose S.ISS (initial seqno) or set from Init Cookies
	 *	      Initialize S.GAR := S.ISS
	 *	      Set S.ISR, S.GSR, S.SWL, S.SWH from packet or Init Cookies
	 *	      Continue with S.state == RESPOND
	 *	      (* A Response packet will be generated in Step 11 *)
	 *	 Otherwise,
	 *	      Generate Reset(No Connection) unless P.type == Reset
	 *	      Drop packet and return
	 *
	 * NOTE: the check for the packet types is done in
	 *	 dccp_rcv_state_process
	 */
A
Arnaldo Carvalho de Melo 已提交
748
	if (sk->sk_state == DCCP_LISTEN) {
749 750
		struct sock *nsk = dccp_v6_hnd_req(sk, skb);

A
Arnaldo Carvalho de Melo 已提交
751 752
		if (nsk == NULL)
			goto discard;
753 754 755 756 757
		/*
		 * Queue it on the new socket if the new socket is active,
		 * otherwise we just shortcircuit this and continue with
		 * the new socket..
		 */
758
		if (nsk != sk) {
759 760
			if (dccp_child_process(sk, nsk, skb))
				goto reset;
A
Arnaldo Carvalho de Melo 已提交
761
			if (opt_skb != NULL)
762 763 764 765 766 767 768
				__kfree_skb(opt_skb);
			return 0;
		}
	}

	if (dccp_rcv_state_process(sk, skb, dccp_hdr(skb), skb->len))
		goto reset;
D
David S. Miller 已提交
769
	if (opt_skb) {
770
		/* XXX This is where we would goto ipv6_pktoptions. */
D
David S. Miller 已提交
771 772
		__kfree_skb(opt_skb);
	}
773 774 775
	return 0;

reset:
776
	dccp_v6_ctl_send_reset(sk, skb);
777
discard:
A
Arnaldo Carvalho de Melo 已提交
778
	if (opt_skb != NULL)
779 780 781 782 783
		__kfree_skb(opt_skb);
	kfree_skb(skb);
	return 0;
}

784
static int dccp_v6_rcv(struct sk_buff *skb)
785 786 787
{
	const struct dccp_hdr *dh;
	struct sock *sk;
788
	int min_cov;
789

790
	/* Step 1: Check header basics */
791 792 793 794

	if (dccp_invalid_packet(skb))
		goto discard_it;

795
	/* Step 1: If header checksum is incorrect, drop packet and return. */
796 797
	if (dccp_v6_csum_finish(skb, &ipv6_hdr(skb)->saddr,
				     &ipv6_hdr(skb)->daddr)) {
798
		DCCP_WARN("dropped packet with invalid checksum\n");
799 800 801
		goto discard_it;
	}

802 803
	dh = dccp_hdr(skb);

804
	DCCP_SKB_CB(skb)->dccpd_seq  = dccp_hdr_seq(dh);
805 806 807 808 809 810 811 812
	DCCP_SKB_CB(skb)->dccpd_type = dh->dccph_type;

	if (dccp_packet_without_ack(skb))
		DCCP_SKB_CB(skb)->dccpd_ack_seq = DCCP_PKT_WITHOUT_ACK_SEQ;
	else
		DCCP_SKB_CB(skb)->dccpd_ack_seq = dccp_hdr_ack_seq(skb);

	/* Step 2:
813
	 *	Look up flow ID in table and get corresponding socket */
814 815
	sk = __inet6_lookup_skb(&dccp_hashinfo, skb,
			        dh->dccph_sport, dh->dccph_dport);
A
Arnaldo Carvalho de Melo 已提交
816
	/*
817
	 * Step 2:
818
	 *	If no socket ...
819
	 */
820 821 822
	if (sk == NULL) {
		dccp_pr_debug("failed to look up flow ID in table and "
			      "get corresponding socket\n");
823
		goto no_dccp_socket;
824
	}
825

A
Arnaldo Carvalho de Melo 已提交
826
	/*
827
	 * Step 2:
828
	 *	... or S.state == TIMEWAIT,
829 830 831
	 *		Generate Reset(No Connection) unless P.type == Reset
	 *		Drop packet and return
	 */
832 833 834 835 836
	if (sk->sk_state == DCCP_TIME_WAIT) {
		dccp_pr_debug("sk->sk_state == DCCP_TIME_WAIT: do_time_wait\n");
		inet_twsk_put(inet_twsk(sk));
		goto no_dccp_socket;
	}
837

838 839
	/*
	 * RFC 4340, sec. 9.2.1: Minimum Checksum Coverage
840 841
	 *	o if MinCsCov = 0, only packets with CsCov = 0 are accepted
	 *	o if MinCsCov > 0, also accept packets with CsCov >= MinCsCov
842 843 844 845 846 847 848 849 850
	 */
	min_cov = dccp_sk(sk)->dccps_pcrlen;
	if (dh->dccph_cscov  &&  (min_cov == 0 || dh->dccph_cscov < min_cov))  {
		dccp_pr_debug("Packet CsCov %d does not satisfy MinCsCov %d\n",
			      dh->dccph_cscov, min_cov);
		/* FIXME: send Data Dropped option (see also dccp_v4_rcv) */
		goto discard_and_relse;
	}

851 852 853
	if (!xfrm6_policy_check(sk, XFRM_POLICY_IN, skb))
		goto discard_and_relse;

854
	return sk_receive_skb(sk, skb, 1) ? -1 : 0;
855 856 857 858 859 860

no_dccp_socket:
	if (!xfrm6_policy_check(NULL, XFRM_POLICY_IN, skb))
		goto discard_it;
	/*
	 * Step 2:
861
	 *	If no socket ...
862 863 864 865 866 867
	 *		Generate Reset(No Connection) unless P.type == Reset
	 *		Drop packet and return
	 */
	if (dh->dccph_type != DCCP_PKT_RESET) {
		DCCP_SKB_CB(skb)->dccpd_reset_code =
					DCCP_RESET_CODE_NO_CONNECTION;
868
		dccp_v6_ctl_send_reset(sk, skb);
869 870
	}

871
discard_it:
872 873 874 875 876 877 878 879
	kfree_skb(skb);
	return 0;

discard_and_relse:
	sock_put(sk);
	goto discard_it;
}

880 881 882 883 884 885 886 887 888 889 890 891 892 893 894 895 896 897 898 899 900 901 902 903 904 905 906 907 908 909 910 911 912 913 914 915 916 917 918 919 920 921 922 923 924 925 926 927 928 929 930 931 932 933 934 935 936 937 938 939 940 941 942 943 944 945 946 947 948 949 950 951 952 953 954 955 956 957 958 959 960 961 962 963 964 965 966 967 968 969 970 971 972 973
static int dccp_v6_connect(struct sock *sk, struct sockaddr *uaddr,
			   int addr_len)
{
	struct sockaddr_in6 *usin = (struct sockaddr_in6 *)uaddr;
	struct inet_connection_sock *icsk = inet_csk(sk);
	struct inet_sock *inet = inet_sk(sk);
	struct ipv6_pinfo *np = inet6_sk(sk);
	struct dccp_sock *dp = dccp_sk(sk);
	struct in6_addr *saddr = NULL, *final_p = NULL, final;
	struct flowi fl;
	struct dst_entry *dst;
	int addr_type;
	int err;

	dp->dccps_role = DCCP_ROLE_CLIENT;

	if (addr_len < SIN6_LEN_RFC2133)
		return -EINVAL;

	if (usin->sin6_family != AF_INET6)
		return -EAFNOSUPPORT;

	memset(&fl, 0, sizeof(fl));

	if (np->sndflow) {
		fl.fl6_flowlabel = usin->sin6_flowinfo & IPV6_FLOWINFO_MASK;
		IP6_ECN_flow_init(fl.fl6_flowlabel);
		if (fl.fl6_flowlabel & IPV6_FLOWLABEL_MASK) {
			struct ip6_flowlabel *flowlabel;
			flowlabel = fl6_sock_lookup(sk, fl.fl6_flowlabel);
			if (flowlabel == NULL)
				return -EINVAL;
			ipv6_addr_copy(&usin->sin6_addr, &flowlabel->dst);
			fl6_sock_release(flowlabel);
		}
	}
	/*
	 * connect() to INADDR_ANY means loopback (BSD'ism).
	 */
	if (ipv6_addr_any(&usin->sin6_addr))
		usin->sin6_addr.s6_addr[15] = 1;

	addr_type = ipv6_addr_type(&usin->sin6_addr);

	if (addr_type & IPV6_ADDR_MULTICAST)
		return -ENETUNREACH;

	if (addr_type & IPV6_ADDR_LINKLOCAL) {
		if (addr_len >= sizeof(struct sockaddr_in6) &&
		    usin->sin6_scope_id) {
			/* If interface is set while binding, indices
			 * must coincide.
			 */
			if (sk->sk_bound_dev_if &&
			    sk->sk_bound_dev_if != usin->sin6_scope_id)
				return -EINVAL;

			sk->sk_bound_dev_if = usin->sin6_scope_id;
		}

		/* Connect to link-local address requires an interface */
		if (!sk->sk_bound_dev_if)
			return -EINVAL;
	}

	ipv6_addr_copy(&np->daddr, &usin->sin6_addr);
	np->flow_label = fl.fl6_flowlabel;

	/*
	 * DCCP over IPv4
	 */
	if (addr_type == IPV6_ADDR_MAPPED) {
		u32 exthdrlen = icsk->icsk_ext_hdr_len;
		struct sockaddr_in sin;

		SOCK_DEBUG(sk, "connect: ipv4 mapped\n");

		if (__ipv6_only_sock(sk))
			return -ENETUNREACH;

		sin.sin_family = AF_INET;
		sin.sin_port = usin->sin6_port;
		sin.sin_addr.s_addr = usin->sin6_addr.s6_addr32[3];

		icsk->icsk_af_ops = &dccp_ipv6_mapped;
		sk->sk_backlog_rcv = dccp_v4_do_rcv;

		err = dccp_v4_connect(sk, (struct sockaddr *)&sin, sizeof(sin));
		if (err) {
			icsk->icsk_ext_hdr_len = exthdrlen;
			icsk->icsk_af_ops = &dccp_ipv6_af_ops;
			sk->sk_backlog_rcv = dccp_v6_do_rcv;
			goto failure;
		}
E
Eric Dumazet 已提交
974 975
		ipv6_addr_set_v4mapped(inet->inet_saddr, &np->saddr);
		ipv6_addr_set_v4mapped(inet->inet_rcv_saddr, &np->rcv_saddr);
976 977 978 979 980 981 982 983 984 985 986 987

		return err;
	}

	if (!ipv6_addr_any(&np->rcv_saddr))
		saddr = &np->rcv_saddr;

	fl.proto = IPPROTO_DCCP;
	ipv6_addr_copy(&fl.fl6_dst, &np->daddr);
	ipv6_addr_copy(&fl.fl6_src, saddr ? saddr : &np->saddr);
	fl.oif = sk->sk_bound_dev_if;
	fl.fl_ip_dport = usin->sin6_port;
E
Eric Dumazet 已提交
988
	fl.fl_ip_sport = inet->inet_sport;
989 990 991 992 993 994 995 996 997 998 999 1000 1001 1002 1003 1004 1005
	security_sk_classify_flow(sk, &fl);

	if (np->opt != NULL && np->opt->srcrt != NULL) {
		const struct rt0_hdr *rt0 = (struct rt0_hdr *)np->opt->srcrt;

		ipv6_addr_copy(&final, &fl.fl6_dst);
		ipv6_addr_copy(&fl.fl6_dst, rt0->addr);
		final_p = &final;
	}

	err = ip6_dst_lookup(sk, &dst, &fl);
	if (err)
		goto failure;

	if (final_p)
		ipv6_addr_copy(&fl.fl6_dst, final_p);

A
Alexey Dobriyan 已提交
1006
	err = __xfrm_lookup(sock_net(sk), &dst, &fl, sk, XFRM_LOOKUP_WAIT);
1007 1008 1009 1010 1011 1012
	if (err < 0) {
		if (err == -EREMOTE)
			err = ip6_dst_blackhole(sk, &dst, &fl);
		if (err < 0)
			goto failure;
	}
1013 1014 1015 1016 1017 1018 1019 1020

	if (saddr == NULL) {
		saddr = &fl.fl6_src;
		ipv6_addr_copy(&np->rcv_saddr, saddr);
	}

	/* set the source address */
	ipv6_addr_copy(&np->saddr, saddr);
E
Eric Dumazet 已提交
1021
	inet->inet_rcv_saddr = LOOPBACK4_IPV6;
1022 1023 1024 1025 1026 1027 1028 1029

	__ip6_dst_store(sk, dst, NULL, NULL);

	icsk->icsk_ext_hdr_len = 0;
	if (np->opt != NULL)
		icsk->icsk_ext_hdr_len = (np->opt->opt_flen +
					  np->opt->opt_nflen);

E
Eric Dumazet 已提交
1030
	inet->inet_dport = usin->sin6_port;
1031 1032 1033 1034 1035

	dccp_set_state(sk, DCCP_REQUESTING);
	err = inet6_hash_connect(&dccp_death_row, sk);
	if (err)
		goto late_failure;
1036 1037 1038

	dp->dccps_iss = secure_dccpv6_sequence_number(np->saddr.s6_addr32,
						      np->daddr.s6_addr32,
E
Eric Dumazet 已提交
1039 1040
						      inet->inet_sport,
						      inet->inet_dport);
1041 1042 1043 1044 1045 1046 1047 1048 1049 1050
	err = dccp_connect(sk);
	if (err)
		goto late_failure;

	return 0;

late_failure:
	dccp_set_state(sk, DCCP_CLOSED);
	__sk_dst_reset(sk);
failure:
E
Eric Dumazet 已提交
1051
	inet->inet_dport = 0;
1052 1053 1054 1055
	sk->sk_route_caps = 0;
	return err;
}

1056
static const struct inet_connection_sock_af_ops dccp_ipv6_af_ops = {
1057 1058 1059 1060 1061 1062 1063 1064 1065 1066
	.queue_xmit	   = inet6_csk_xmit,
	.send_check	   = dccp_v6_send_check,
	.rebuild_header	   = inet6_sk_rebuild_header,
	.conn_request	   = dccp_v6_conn_request,
	.syn_recv_sock	   = dccp_v6_request_recv_sock,
	.net_header_len	   = sizeof(struct ipv6hdr),
	.setsockopt	   = ipv6_setsockopt,
	.getsockopt	   = ipv6_getsockopt,
	.addr2sockaddr	   = inet6_csk_addr2sockaddr,
	.sockaddr_len	   = sizeof(struct sockaddr_in6),
1067
	.bind_conflict	   = inet6_csk_bind_conflict,
1068
#ifdef CONFIG_COMPAT
1069 1070
	.compat_setsockopt = compat_ipv6_setsockopt,
	.compat_getsockopt = compat_ipv6_getsockopt,
1071
#endif
1072 1073 1074 1075 1076
};

/*
 *	DCCP over IPv4 via INET6 API
 */
1077
static const struct inet_connection_sock_af_ops dccp_ipv6_mapped = {
1078 1079 1080 1081 1082 1083 1084 1085 1086 1087
	.queue_xmit	   = ip_queue_xmit,
	.send_check	   = dccp_v4_send_check,
	.rebuild_header	   = inet_sk_rebuild_header,
	.conn_request	   = dccp_v6_conn_request,
	.syn_recv_sock	   = dccp_v6_request_recv_sock,
	.net_header_len	   = sizeof(struct iphdr),
	.setsockopt	   = ipv6_setsockopt,
	.getsockopt	   = ipv6_getsockopt,
	.addr2sockaddr	   = inet6_csk_addr2sockaddr,
	.sockaddr_len	   = sizeof(struct sockaddr_in6),
1088
#ifdef CONFIG_COMPAT
1089 1090
	.compat_setsockopt = compat_ipv6_setsockopt,
	.compat_getsockopt = compat_ipv6_getsockopt,
1091
#endif
1092 1093 1094 1095 1096 1097 1098
};

/* NOTE: A lot of things set to zero explicitly by call to
 *       sk_alloc() so need not be done here.
 */
static int dccp_v6_init_sock(struct sock *sk)
{
1099 1100
	static __u8 dccp_v6_ctl_sock_initialized;
	int err = dccp_init_sock(sk, dccp_v6_ctl_sock_initialized);
1101

1102 1103 1104
	if (err == 0) {
		if (unlikely(!dccp_v6_ctl_sock_initialized))
			dccp_v6_ctl_sock_initialized = 1;
1105
		inet_csk(sk)->icsk_af_ops = &dccp_ipv6_af_ops;
1106
	}
1107 1108 1109 1110

	return err;
}

1111
static void dccp_v6_destroy_sock(struct sock *sk)
1112
{
1113
	dccp_destroy_sock(sk);
1114
	inet6_destroy_sock(sk);
1115 1116
}

1117 1118 1119 1120
static struct timewait_sock_ops dccp6_timewait_sock_ops = {
	.twsk_obj_size	= sizeof(struct dccp6_timewait_sock),
};

1121
static struct proto dccp_v6_prot = {
1122 1123 1124 1125 1126 1127 1128 1129 1130 1131 1132 1133 1134
	.name		   = "DCCPv6",
	.owner		   = THIS_MODULE,
	.close		   = dccp_close,
	.connect	   = dccp_v6_connect,
	.disconnect	   = dccp_disconnect,
	.ioctl		   = dccp_ioctl,
	.init		   = dccp_v6_init_sock,
	.setsockopt	   = dccp_setsockopt,
	.getsockopt	   = dccp_getsockopt,
	.sendmsg	   = dccp_sendmsg,
	.recvmsg	   = dccp_recvmsg,
	.backlog_rcv	   = dccp_v6_do_rcv,
	.hash		   = dccp_v6_hash,
1135
	.unhash		   = inet_unhash,
1136
	.accept		   = inet_csk_accept,
1137
	.get_port	   = inet_csk_get_port,
1138 1139 1140 1141 1142
	.shutdown	   = dccp_shutdown,
	.destroy	   = dccp_v6_destroy_sock,
	.orphan_count	   = &dccp_orphan_count,
	.max_header	   = MAX_DCCP_HEADER,
	.obj_size	   = sizeof(struct dccp6_sock),
1143
	.slab_flags	   = SLAB_DESTROY_BY_RCU,
1144 1145
	.rsk_prot	   = &dccp6_request_sock_ops,
	.twsk_prot	   = &dccp6_timewait_sock_ops,
1146
	.h.hashinfo	   = &dccp_hashinfo,
1147
#ifdef CONFIG_COMPAT
1148 1149
	.compat_setsockopt = compat_dccp_setsockopt,
	.compat_getsockopt = compat_dccp_getsockopt,
1150
#endif
1151 1152
};

1153
static const struct inet6_protocol dccp_v6_protocol = {
A
Arnaldo Carvalho de Melo 已提交
1154 1155 1156
	.handler	= dccp_v6_rcv,
	.err_handler	= dccp_v6_err,
	.flags		= INET6_PROTO_NOPOLICY | INET6_PROTO_FINAL,
1157 1158
};

1159
static const struct proto_ops inet6_dccp_ops = {
1160 1161 1162 1163 1164 1165 1166 1167 1168 1169 1170 1171 1172 1173 1174 1175 1176 1177
	.family		   = PF_INET6,
	.owner		   = THIS_MODULE,
	.release	   = inet6_release,
	.bind		   = inet6_bind,
	.connect	   = inet_stream_connect,
	.socketpair	   = sock_no_socketpair,
	.accept		   = inet_accept,
	.getname	   = inet6_getname,
	.poll		   = dccp_poll,
	.ioctl		   = inet6_ioctl,
	.listen		   = inet_dccp_listen,
	.shutdown	   = inet_shutdown,
	.setsockopt	   = sock_common_setsockopt,
	.getsockopt	   = sock_common_getsockopt,
	.sendmsg	   = inet_sendmsg,
	.recvmsg	   = sock_common_recvmsg,
	.mmap		   = sock_no_mmap,
	.sendpage	   = sock_no_sendpage,
1178
#ifdef CONFIG_COMPAT
1179 1180
	.compat_setsockopt = compat_sock_common_setsockopt,
	.compat_getsockopt = compat_sock_common_getsockopt,
1181
#endif
1182 1183 1184 1185 1186 1187 1188
};

static struct inet_protosw dccp_v6_protosw = {
	.type		= SOCK_DCCP,
	.protocol	= IPPROTO_DCCP,
	.prot		= &dccp_v6_prot,
	.ops		= &inet6_dccp_ops,
1189
	.flags		= INET_PROTOSW_ICSK,
1190 1191
};

1192 1193
static int dccp_v6_init_net(struct net *net)
{
1194 1195 1196 1197 1198
	int err;

	err = inet_ctl_sock_create(&net->dccp.v6_ctl_sk, PF_INET6,
				   SOCK_DCCP, IPPROTO_DCCP, net);
	return err;
1199 1200 1201 1202
}

static void dccp_v6_exit_net(struct net *net)
{
1203
	inet_ctl_sock_destroy(net->dccp.v6_ctl_sk);
1204 1205 1206 1207 1208 1209 1210
}

static struct pernet_operations dccp_v6_ops = {
	.init   = dccp_v6_init_net,
	.exit   = dccp_v6_exit_net,
};

1211 1212 1213 1214 1215 1216 1217 1218 1219 1220 1221 1222
static int __init dccp_v6_init(void)
{
	int err = proto_register(&dccp_v6_prot, 1);

	if (err != 0)
		goto out;

	err = inet6_add_protocol(&dccp_v6_protocol, IPPROTO_DCCP);
	if (err != 0)
		goto out_unregister_proto;

	inet6_register_protosw(&dccp_v6_protosw);
1223

1224 1225 1226
	err = register_pernet_subsys(&dccp_v6_ops);
	if (err != 0)
		goto out_destroy_ctl_sock;
1227 1228
out:
	return err;
1229 1230

out_destroy_ctl_sock:
1231 1232
	inet6_del_protocol(&dccp_v6_protocol, IPPROTO_DCCP);
	inet6_unregister_protosw(&dccp_v6_protosw);
1233 1234 1235 1236 1237 1238 1239
out_unregister_proto:
	proto_unregister(&dccp_v6_prot);
	goto out;
}

static void __exit dccp_v6_exit(void)
{
1240
	unregister_pernet_subsys(&dccp_v6_ops);
1241 1242 1243 1244 1245 1246 1247 1248 1249 1250 1251 1252 1253
	inet6_del_protocol(&dccp_v6_protocol, IPPROTO_DCCP);
	inet6_unregister_protosw(&dccp_v6_protosw);
	proto_unregister(&dccp_v6_prot);
}

module_init(dccp_v6_init);
module_exit(dccp_v6_exit);

/*
 * __stringify doesn't likes enums, so use SOCK_DCCP (6) and IPPROTO_DCCP (33)
 * values directly, Also cover the case where the protocol is not specified,
 * i.e. net-pf-PF_INET6-proto-0-type-SOCK_DCCP
 */
1254 1255
MODULE_ALIAS_NET_PF_PROTO_TYPE(PF_INET6, 33, 6);
MODULE_ALIAS_NET_PF_PROTO_TYPE(PF_INET6, 0, 6);
1256 1257 1258
MODULE_LICENSE("GPL");
MODULE_AUTHOR("Arnaldo Carvalho de Melo <acme@mandriva.com>");
MODULE_DESCRIPTION("DCCPv6 - Datagram Congestion Controlled Protocol");