addrconf.h 14.2 KB
Newer Older
1
/* SPDX-License-Identifier: GPL-2.0 */
L
Linus Torvalds 已提交
2 3 4
#ifndef _ADDRCONF_H
#define _ADDRCONF_H

5
#define MAX_RTR_SOLICITATIONS		-1		/* unlimited */
L
Linus Torvalds 已提交
6
#define RTR_SOLICITATION_INTERVAL	(4*HZ)
7
#define RTR_SOLICITATION_MAX_INTERVAL	(3600*HZ)	/* 1 hour */
L
Linus Torvalds 已提交
8 9 10 11 12

#define MIN_VALID_LIFETIME		(2*3600)	/* 2 hours */

#define TEMP_VALID_LIFETIME		(7*86400)
#define TEMP_PREFERRED_LIFETIME		(86400)
13
#define REGEN_MAX_RETRY			(3)
L
Linus Torvalds 已提交
14 15 16 17 18 19
#define MAX_DESYNC_FACTOR		(600)

#define ADDR_CHECK_FREQUENCY		(120*HZ)

#define IPV6_MAX_ADDRESSES		16

J
Jiri Pirko 已提交
20 21 22 23
#define ADDRCONF_TIMER_FUZZ_MINUS	(HZ > 50 ? HZ / 50 : 1)
#define ADDRCONF_TIMER_FUZZ		(HZ / 4)
#define ADDRCONF_TIMER_FUZZ_MAX		(HZ)

24 25
#define ADDRCONF_NOTIFY_PRIORITY	0

F
Fred L. Templin 已提交
26
#include <linux/in.h>
27 28
#include <linux/in6.h>

L
Linus Torvalds 已提交
29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44
struct prefix_info {
	__u8			type;
	__u8			length;
	__u8			prefix_len;

#if defined(__BIG_ENDIAN_BITFIELD)
	__u8			onlink : 1,
			 	autoconf : 1,
				reserved : 6;
#elif defined(__LITTLE_ENDIAN_BITFIELD)
	__u8			reserved : 6,
				autoconf : 1,
				onlink : 1;
#else
#error "Please fix <asm/byteorder.h>"
#endif
A
Al Viro 已提交
45 46 47
	__be32			valid;
	__be32			prefered;
	__be32			reserved2;
L
Linus Torvalds 已提交
48 49 50 51 52 53

	struct in6_addr		prefix;
};

#include <linux/netdevice.h>
#include <net/if_inet6.h>
54
#include <net/ipv6.h>
L
Linus Torvalds 已提交
55

56 57 58
struct in6_validator_info {
	struct in6_addr		i6vi_addr;
	struct inet6_dev	*i6vi_dev;
59
	struct netlink_ext_ack	*extack;
60 61
};

62 63 64 65 66 67
struct ifa6_config {
	const struct in6_addr	*pfx;
	unsigned int		plen;

	const struct in6_addr	*peer_pfx;

68
	u32			rt_priority;
69 70 71 72 73 74
	u32			ifa_flags;
	u32			preferred_lft;
	u32			valid_lft;
	u16			scope;
};

75 76
int addrconf_init(void);
void addrconf_cleanup(void);
L
Linus Torvalds 已提交
77

78 79 80
int addrconf_add_ifaddr(struct net *net, void __user *arg);
int addrconf_del_ifaddr(struct net *net, void __user *arg);
int addrconf_set_dstaddr(struct net *net, void __user *arg);
L
Linus Torvalds 已提交
81

82 83
int ipv6_chk_addr(struct net *net, const struct in6_addr *addr,
		  const struct net_device *dev, int strict);
84
int ipv6_chk_addr_and_flags(struct net *net, const struct in6_addr *addr,
85 86
			    const struct net_device *dev, bool skip_dev_check,
			    int strict, u32 banned_flags);
87

88
#if defined(CONFIG_IPV6_MIP6) || defined(CONFIG_IPV6_MIP6_MODULE)
89
int ipv6_chk_home_addr(struct net *net, const struct in6_addr *addr);
90
#endif
91

92 93 94 95
bool ipv6_chk_custom_prefix(const struct in6_addr *addr,
				   const unsigned int prefix_len,
				   struct net_device *dev);

96 97 98 99 100 101 102 103 104 105
int ipv6_chk_prefix(const struct in6_addr *addr, struct net_device *dev);

struct inet6_ifaddr *ipv6_get_ifaddr(struct net *net,
				     const struct in6_addr *addr,
				     struct net_device *dev, int strict);

int ipv6_dev_get_saddr(struct net *net, const struct net_device *dev,
		       const struct in6_addr *daddr, unsigned int srcprefs,
		       struct in6_addr *saddr);
int __ipv6_get_lladdr(struct inet6_dev *idev, struct in6_addr *addr,
106
		      u32 banned_flags);
107
int ipv6_get_lladdr(struct net_device *dev, struct in6_addr *addr,
108
		    u32 banned_flags);
J
Joe Perches 已提交
109 110
bool inet_rcv_saddr_equal(const struct sock *sk, const struct sock *sk2,
			  bool match_wildcard);
111
bool inet_rcv_saddr_any(const struct sock *sk);
112 113
void addrconf_join_solict(struct net_device *dev, const struct in6_addr *addr);
void addrconf_leave_solict(struct inet6_dev *idev, const struct in6_addr *addr);
L
Linus Torvalds 已提交
114

115 116 117
void addrconf_add_linklocal(struct inet6_dev *idev,
			    const struct in6_addr *addr, u32 flags);

A
Alexander Aring 已提交
118 119 120 121 122 123 124
int addrconf_prefix_rcv_add_addr(struct net *net, struct net_device *dev,
				 const struct prefix_info *pinfo,
				 struct inet6_dev *in6_dev,
				 const struct in6_addr *addr, int addr_type,
				 u32 addr_flags, bool sllao, bool tokenized,
				 __u32 valid_lft, u32 prefered_lft);

125 126 127 128 129 130 131 132 133 134 135 136 137 138
static inline void addrconf_addr_eui48_base(u8 *eui, const char *const addr)
{
	memcpy(eui, addr, 3);
	eui[3] = 0xFF;
	eui[4] = 0xFE;
	memcpy(eui + 5, addr + 3, 3);
}

static inline void addrconf_addr_eui48(u8 *eui, const char *const addr)
{
	addrconf_addr_eui48_base(eui, addr);
	eui[0] ^= 2;
}

139 140 141 142 143 144 145 146 147 148 149 150 151 152 153 154 155 156
static inline int addrconf_ifid_eui48(u8 *eui, struct net_device *dev)
{
	if (dev->addr_len != ETH_ALEN)
		return -1;

	/*
	 * The zSeries OSA network cards can be shared among various
	 * OS instances, but the OSA cards have only one MAC address.
	 * This leads to duplicate address conflicts in conjunction
	 * with IPv6 if more than one instance uses the same card.
	 *
	 * The driver for these cards can deliver a unique 16-bit
	 * identifier for each instance sharing the same card.  It is
	 * placed instead of 0xFFFE in the interface identifier.  The
	 * "u" bit of the interface identifier is not inverted in this
	 * case.  Hence the resulting interface identifier has local
	 * scope according to RFC2373.
	 */
157 158 159

	addrconf_addr_eui48_base(eui, dev->dev_addr);

160 161 162 163 164 165
	if (dev->dev_id) {
		eui[3] = (dev->dev_id >> 8) & 0xFF;
		eui[4] = dev->dev_id & 0xFF;
	} else {
		eui[0] ^= 2;
	}
166

167 168 169
	return 0;
}

170
static inline unsigned long addrconf_timeout_fixup(u32 timeout,
171
						   unsigned int unit)
172 173 174 175 176 177 178 179 180 181 182 183 184 185 186 187 188 189 190 191
{
	if (timeout == 0xffffffff)
		return ~0UL;

	/*
	 * Avoid arithmetic overflow.
	 * Assuming unit is constant and non-zero, this "if" statement
	 * will go away on 64bit archs.
	 */
	if (0xfffffffe > LONG_MAX / unit && timeout > LONG_MAX / unit)
		return LONG_MAX / unit;

	return timeout;
}

static inline int addrconf_finite_timeout(unsigned long timeout)
{
	return ~timeout;
}

192 193 194
/*
 *	IPv6 Address Label subsystem (addrlabel.c)
 */
195 196
int ipv6_addr_label_init(void);
void ipv6_addr_label_cleanup(void);
197
int ipv6_addr_label_rtnl_register(void);
198 199
u32 ipv6_addr_label(struct net *net, const struct in6_addr *addr,
		    int type, int ifindex);
200

L
Linus Torvalds 已提交
201 202 203
/*
 *	multicast prototypes (mcast.c)
 */
204 205 206 207
int ipv6_sock_mc_join(struct sock *sk, int ifindex,
		      const struct in6_addr *addr);
int ipv6_sock_mc_drop(struct sock *sk, int ifindex,
		      const struct in6_addr *addr);
208
void __ipv6_sock_mc_close(struct sock *sk);
209 210 211 212 213 214 215 216 217 218 219 220 221
void ipv6_sock_mc_close(struct sock *sk);
bool inet6_mc_check(struct sock *sk, const struct in6_addr *mc_addr,
		    const struct in6_addr *src_addr);

int ipv6_dev_mc_inc(struct net_device *dev, const struct in6_addr *addr);
int __ipv6_dev_mc_dec(struct inet6_dev *idev, const struct in6_addr *addr);
int ipv6_dev_mc_dec(struct net_device *dev, const struct in6_addr *addr);
void ipv6_mc_up(struct inet6_dev *idev);
void ipv6_mc_down(struct inet6_dev *idev);
void ipv6_mc_unmap(struct inet6_dev *idev);
void ipv6_mc_remap(struct inet6_dev *idev);
void ipv6_mc_init_dev(struct inet6_dev *idev);
void ipv6_mc_destroy_dev(struct inet6_dev *idev);
222
int ipv6_mc_check_mld(struct sk_buff *skb, struct sk_buff **skb_trimmed);
223
void addrconf_dad_failure(struct sk_buff *skb, struct inet6_ifaddr *ifp);
224 225 226 227 228

bool ipv6_chk_mcast_addr(struct net_device *dev, const struct in6_addr *group,
			 const struct in6_addr *src_addr);

void ipv6_mc_dad_complete(struct inet6_dev *idev);
229 230 231 232 233 234 235 236 237

/* A stub used by vxlan module. This is ugly, ideally these
 * symbols should be built into the core kernel.
 */
struct ipv6_stub {
	int (*ipv6_sock_mc_join)(struct sock *sk, int ifindex,
				 const struct in6_addr *addr);
	int (*ipv6_sock_mc_drop)(struct sock *sk, int ifindex,
				 const struct in6_addr *addr);
238 239
	int (*ipv6_dst_lookup)(struct net *net, struct sock *sk,
			       struct dst_entry **dst, struct flowi6 *fl6);
240 241 242 243 244 245 246 247 248 249 250 251 252

	struct fib6_table *(*fib6_get_table)(struct net *net, u32 id);
	struct fib6_info *(*fib6_lookup)(struct net *net, int oif,
					 struct flowi6 *fl6, int flags);
	struct fib6_info *(*fib6_table_lookup)(struct net *net,
					      struct fib6_table *table,
					      int oif, struct flowi6 *fl6,
					      int flags);
	struct fib6_info *(*fib6_multipath_select)(const struct net *net,
						   struct fib6_info *f6i,
						   struct flowi6 *fl6, int oif,
						   const struct sk_buff *skb,
						   int strict);
253 254
	u32 (*ip6_mtu_from_fib6)(struct fib6_info *f6i, struct in6_addr *daddr,
				 struct in6_addr *saddr);
255

256
	void (*udpv6_encap_enable)(void);
257
	void (*ndisc_send_na)(struct net_device *dev, const struct in6_addr *daddr,
C
Cong Wang 已提交
258 259
			      const struct in6_addr *solicited_addr,
			      bool router, bool solicited, bool override, bool inc_opt);
260
	struct neigh_table *nd_tbl;
261 262 263
};
extern const struct ipv6_stub *ipv6_stub __read_mostly;

A
Andrey Ignatov 已提交
264 265 266 267
/* A stub used by bpf helpers. Similarly ugly as ipv6_stub */
struct ipv6_bpf_stub {
	int (*inet6_bind)(struct sock *sk, struct sockaddr *uaddr, int addr_len,
			  bool force_bind_address_no_port, bool with_lock);
268 269 270 271 272
	struct sock *(*udp6_lib_lookup)(struct net *net,
					const struct in6_addr *saddr, __be16 sport,
					const struct in6_addr *daddr, __be16 dport,
					int dif, int sdif, struct udp_table *tbl,
					struct sk_buff *skb);
A
Andrey Ignatov 已提交
273 274 275
};
extern const struct ipv6_bpf_stub *ipv6_bpf_stub __read_mostly;

276 277 278 279 280 281 282 283 284 285 286 287 288 289 290 291 292 293 294 295 296 297 298 299
/*
 * identify MLD packets for MLD filter exceptions
 */
static inline bool ipv6_is_mld(struct sk_buff *skb, int nexthdr, int offset)
{
	struct icmp6hdr *hdr;

	if (nexthdr != IPPROTO_ICMPV6 ||
	    !pskb_network_may_pull(skb, offset + sizeof(struct icmp6hdr)))
		return false;

	hdr = (struct icmp6hdr *)(skb_network_header(skb) + offset);

	switch (hdr->icmp6_type) {
	case ICMPV6_MGM_QUERY:
	case ICMPV6_MGM_REPORT:
	case ICMPV6_MGM_REDUCTION:
	case ICMPV6_MLD2_REPORT:
		return true;
	default:
		break;
	}
	return false;
}
L
Linus Torvalds 已提交
300

301 302
void addrconf_prefix_rcv(struct net_device *dev,
			 u8 *opt, int len, bool sllao);
L
Linus Torvalds 已提交
303 304 305 306

/*
 *	anycast prototypes (anycast.c)
 */
307 308 309 310 311 312
int ipv6_sock_ac_join(struct sock *sk, int ifindex,
		      const struct in6_addr *addr);
int ipv6_sock_ac_drop(struct sock *sk, int ifindex,
		      const struct in6_addr *addr);
void ipv6_sock_ac_close(struct sock *sk);

W
WANG Cong 已提交
313
int __ipv6_dev_ac_inc(struct inet6_dev *idev, const struct in6_addr *addr);
314
int __ipv6_dev_ac_dec(struct inet6_dev *idev, const struct in6_addr *addr);
315
void ipv6_ac_destroy_dev(struct inet6_dev *idev);
316
bool ipv6_chk_acast_addr(struct net *net, struct net_device *dev,
317 318 319
			 const struct in6_addr *addr);
bool ipv6_chk_acast_addr_src(struct net *net, struct net_device *dev,
			     const struct in6_addr *addr);
L
Linus Torvalds 已提交
320 321

/* Device notifier */
322 323 324
int register_inet6addr_notifier(struct notifier_block *nb);
int unregister_inet6addr_notifier(struct notifier_block *nb);
int inet6addr_notifier_call_chain(unsigned long val, void *v);
L
Linus Torvalds 已提交
325

326 327 328 329
int register_inet6addr_validator_notifier(struct notifier_block *nb);
int unregister_inet6addr_validator_notifier(struct notifier_block *nb);
int inet6addr_validator_notifier_call_chain(unsigned long val, void *v);

330 331
void inet6_netconf_notify_devconf(struct net *net, int event, int type,
				  int ifindex, struct ipv6_devconf *devconf);
332

E
Eric Dumazet 已提交
333 334 335 336 337 338 339 340
/**
 * __in6_dev_get - get inet6_dev pointer from netdevice
 * @dev: network device
 *
 * Caller must hold rcu_read_lock or RTNL, because this function
 * does not take a reference on the inet6_dev.
 */
static inline struct inet6_dev *__in6_dev_get(const struct net_device *dev)
L
Linus Torvalds 已提交
341
{
E
Eric Dumazet 已提交
342
	return rcu_dereference_rtnl(dev->ip6_ptr);
L
Linus Torvalds 已提交
343 344
}

345 346 347 348 349 350 351 352 353 354 355 356 357 358
/**
 * __in6_dev_get_safely - get inet6_dev pointer from netdevice
 * @dev: network device
 *
 * This is a safer version of __in6_dev_get
 */
static inline struct inet6_dev *__in6_dev_get_safely(const struct net_device *dev)
{
	if (likely(dev))
		return rcu_dereference_rtnl(dev->ip6_ptr);
	else
		return NULL;
}

E
Eric Dumazet 已提交
359 360 361 362 363 364 365 366 367
/**
 * in6_dev_get - get inet6_dev pointer from netdevice
 * @dev: network device
 *
 * This version can be used in any context, and takes a reference
 * on the inet6_dev. Callers must use in6_dev_put() later to
 * release this reference.
 */
static inline struct inet6_dev *in6_dev_get(const struct net_device *dev)
L
Linus Torvalds 已提交
368
{
E
Eric Dumazet 已提交
369 370
	struct inet6_dev *idev;

371
	rcu_read_lock();
E
Eric Dumazet 已提交
372
	idev = rcu_dereference(dev->ip6_ptr);
L
Linus Torvalds 已提交
373
	if (idev)
374
		refcount_inc(&idev->refcnt);
375
	rcu_read_unlock();
L
Linus Torvalds 已提交
376 377 378
	return idev;
}

379 380 381 382 383 384 385
static inline struct neigh_parms *__in6_dev_nd_parms_get_rcu(const struct net_device *dev)
{
	struct inet6_dev *idev = __in6_dev_get(dev);

	return idev ? idev->nd_parms : NULL;
}

386
void in6_dev_finish_destroy(struct inet6_dev *idev);
L
Linus Torvalds 已提交
387

E
Eric Dumazet 已提交
388
static inline void in6_dev_put(struct inet6_dev *idev)
L
Linus Torvalds 已提交
389
{
390
	if (refcount_dec_and_test(&idev->refcnt))
L
Linus Torvalds 已提交
391 392 393
		in6_dev_finish_destroy(idev);
}

394 395 396 397 398 399 400 401 402 403
static inline void in6_dev_put_clear(struct inet6_dev **pidev)
{
	struct inet6_dev *idev = *pidev;

	if (idev) {
		in6_dev_put(idev);
		*pidev = NULL;
	}
}

E
Eric Dumazet 已提交
404 405
static inline void __in6_dev_put(struct inet6_dev *idev)
{
406
	refcount_dec(&idev->refcnt);
E
Eric Dumazet 已提交
407
}
L
Linus Torvalds 已提交
408

E
Eric Dumazet 已提交
409 410
static inline void in6_dev_hold(struct inet6_dev *idev)
{
411
	refcount_inc(&idev->refcnt);
E
Eric Dumazet 已提交
412
}
L
Linus Torvalds 已提交
413

414
void inet6_ifa_finish_destroy(struct inet6_ifaddr *ifp);
L
Linus Torvalds 已提交
415 416 417

static inline void in6_ifa_put(struct inet6_ifaddr *ifp)
{
418
	if (refcount_dec_and_test(&ifp->refcnt))
L
Linus Torvalds 已提交
419 420 421
		inet6_ifa_finish_destroy(ifp);
}

E
Eric Dumazet 已提交
422 423
static inline void __in6_ifa_put(struct inet6_ifaddr *ifp)
{
424
	refcount_dec(&ifp->refcnt);
E
Eric Dumazet 已提交
425
}
L
Linus Torvalds 已提交
426

E
Eric Dumazet 已提交
427 428
static inline void in6_ifa_hold(struct inet6_ifaddr *ifp)
{
429
	refcount_inc(&ifp->refcnt);
E
Eric Dumazet 已提交
430
}
L
Linus Torvalds 已提交
431 432 433 434 435 436 437 438 439 440


/*
 *	compute link-local solicited-node multicast address
 */

static inline void addrconf_addr_solict_mult(const struct in6_addr *addr,
					     struct in6_addr *solicited)
{
	ipv6_addr_set(solicited,
441 442 443
		      htonl(0xFF020000), 0,
		      htonl(0x1),
		      htonl(0xFF000000) | addr->s6_addr32[3]);
L
Linus Torvalds 已提交
444 445
}

446
static inline bool ipv6_addr_is_ll_all_nodes(const struct in6_addr *addr)
L
Linus Torvalds 已提交
447
{
448
#if defined(CONFIG_HAVE_EFFICIENT_UNALIGNED_ACCESS) && BITS_PER_LONG == 64
449
	__be64 *p = (__be64 *)addr;
450 451
	return ((p[0] ^ cpu_to_be64(0xff02000000000000UL)) | (p[1] ^ cpu_to_be64(1))) == 0UL;
#else
E
Eric Dumazet 已提交
452
	return ((addr->s6_addr32[0] ^ htonl(0xff020000)) |
453
		addr->s6_addr32[1] | addr->s6_addr32[2] |
E
Eric Dumazet 已提交
454
		(addr->s6_addr32[3] ^ htonl(0x00000001))) == 0;
455
#endif
L
Linus Torvalds 已提交
456 457
}

458
static inline bool ipv6_addr_is_ll_all_routers(const struct in6_addr *addr)
L
Linus Torvalds 已提交
459
{
460
#if defined(CONFIG_HAVE_EFFICIENT_UNALIGNED_ACCESS) && BITS_PER_LONG == 64
461
	__be64 *p = (__be64 *)addr;
462 463
	return ((p[0] ^ cpu_to_be64(0xff02000000000000UL)) | (p[1] ^ cpu_to_be64(2))) == 0UL;
#else
E
Eric Dumazet 已提交
464
	return ((addr->s6_addr32[0] ^ htonl(0xff020000)) |
465
		addr->s6_addr32[1] | addr->s6_addr32[2] |
E
Eric Dumazet 已提交
466
		(addr->s6_addr32[3] ^ htonl(0x00000002))) == 0;
467
#endif
L
Linus Torvalds 已提交
468 469
}

470
static inline bool ipv6_addr_is_isatap(const struct in6_addr *addr)
F
Fred L. Templin 已提交
471
{
E
Eric Dumazet 已提交
472
	return (addr->s6_addr32[2] | htonl(0x02000000)) == htonl(0x02005EFE);
F
Fred L. Templin 已提交
473 474
}

475 476
static inline bool ipv6_addr_is_solict_mult(const struct in6_addr *addr)
{
477
#if defined(CONFIG_HAVE_EFFICIENT_UNALIGNED_ACCESS) && BITS_PER_LONG == 64
478
	__be64 *p = (__be64 *)addr;
479 480 481 482 483 484 485 486 487
	return ((p[0] ^ cpu_to_be64(0xff02000000000000UL)) |
		((p[1] ^ cpu_to_be64(0x00000001ff000000UL)) &
		 cpu_to_be64(0xffffffffff000000UL))) == 0UL;
#else
	return ((addr->s6_addr32[0] ^ htonl(0xff020000)) |
		addr->s6_addr32[1] |
		(addr->s6_addr32[2] ^ htonl(0x00000001)) |
		(addr->s6_addr[12] ^ 0xff)) == 0;
#endif
488 489
}

490
#ifdef CONFIG_PROC_FS
491 492
int if6_proc_init(void);
void if6_proc_exit(void);
493 494
#endif

L
Linus Torvalds 已提交
495
#endif