icmp.c 26.3 KB
Newer Older
L
Linus Torvalds 已提交
1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31
/*
 *	Internet Control Message Protocol (ICMPv6)
 *	Linux INET6 implementation
 *
 *	Authors:
 *	Pedro Roque		<roque@di.fc.ul.pt>
 *
 *	Based on net/ipv4/icmp.c
 *
 *	RFC 1885
 *
 *	This program is free software; you can redistribute it and/or
 *      modify it under the terms of the GNU General Public License
 *      as published by the Free Software Foundation; either version
 *      2 of the License, or (at your option) any later version.
 */

/*
 *	Changes:
 *
 *	Andi Kleen		:	exception handling
 *	Andi Kleen			add rate limits. never reply to a icmp.
 *					add more length checks and other fixes.
 *	yoshfuji		:	ensure to sent parameter problem for
 *					fragments.
 *	YOSHIFUJI Hideaki @USAGI:	added sysctl for icmp rate limit.
 *	Randy Dunlap and
 *	YOSHIFUJI Hideaki @USAGI:	Per-interface statistics support
 *	Kazunori MIYAZAWA @USAGI:       change output process to use ip6_append_data
 */

32 33
#define pr_fmt(fmt) "IPv6: " fmt

L
Linus Torvalds 已提交
34 35 36 37 38 39 40 41 42 43
#include <linux/module.h>
#include <linux/errno.h>
#include <linux/types.h>
#include <linux/socket.h>
#include <linux/in.h>
#include <linux/kernel.h>
#include <linux/sockios.h>
#include <linux/net.h>
#include <linux/skbuff.h>
#include <linux/init.h>
44
#include <linux/netfilter.h>
45
#include <linux/slab.h>
L
Linus Torvalds 已提交
46 47 48 49 50 51 52 53 54 55 56 57 58 59

#ifdef CONFIG_SYSCTL
#include <linux/sysctl.h>
#endif

#include <linux/inet.h>
#include <linux/netdevice.h>
#include <linux/icmpv6.h>

#include <net/ip.h>
#include <net/sock.h>

#include <net/ipv6.h>
#include <net/ip6_checksum.h>
60
#include <net/ping.h>
L
Linus Torvalds 已提交
61 62 63 64 65 66 67
#include <net/protocol.h>
#include <net/raw.h>
#include <net/rawv6.h>
#include <net/transp_v6.h>
#include <net/ip6_route.h>
#include <net/addrconf.h>
#include <net/icmp.h>
68
#include <net/xfrm.h>
69
#include <net/inet_common.h>
70
#include <net/dsfield.h>
D
David Ahern 已提交
71
#include <net/l3mdev.h>
L
Linus Torvalds 已提交
72

73
#include <linux/uaccess.h>
L
Linus Torvalds 已提交
74 75 76 77 78 79 80 81

/*
 *	The ICMP socket(s). This is the most convenient way to flow control
 *	our ICMP output as well as maintain a clean interface throughout
 *	all layers. All Socketless IP sends will soon be gone.
 *
 *	On SMP we have one ICMP socket per-cpu.
 */
82 83 84 85
static inline struct sock *icmpv6_sk(struct net *net)
{
	return net->ipv6.icmp_sk[smp_processor_id()];
}
L
Linus Torvalds 已提交
86

87
static int icmpv6_err(struct sk_buff *skb, struct inet6_skb_parm *opt,
88 89
		       u8 type, u8 code, int offset, __be32 info)
{
90 91
	/* icmpv6_notify checks 8 bytes can be pulled, icmp6hdr is 8 bytes */
	struct icmp6hdr *icmp6 = (struct icmp6hdr *) (skb->data + offset);
92 93 94
	struct net *net = dev_net(skb->dev);

	if (type == ICMPV6_PKT_TOOBIG)
95
		ip6_update_pmtu(skb, net, info, skb->dev->ifindex, 0, sock_net_uid(net, NULL));
96
	else if (type == NDISC_REDIRECT)
97 98
		ip6_redirect(skb, net, skb->dev->ifindex, 0,
			     sock_net_uid(net, NULL));
99 100 101

	if (!(type & ICMPV6_INFOMSG_MASK))
		if (icmp6->icmp6_type == ICMPV6_ECHO_REQUEST)
102
			ping_err(skb, offset, ntohl(info));
103 104

	return 0;
105 106
}

107
static int icmpv6_rcv(struct sk_buff *skb);
L
Linus Torvalds 已提交
108

109
static const struct inet6_protocol icmpv6_protocol = {
L
Linus Torvalds 已提交
110
	.handler	=	icmpv6_rcv,
111
	.err_handler	=	icmpv6_err,
112
	.flags		=	INET6_PROTO_NOPOLICY|INET6_PROTO_FINAL,
L
Linus Torvalds 已提交
113 114
};

115
/* Called with BH disabled */
116
static __inline__ struct sock *icmpv6_xmit_lock(struct net *net)
L
Linus Torvalds 已提交
117
{
118 119 120
	struct sock *sk;

	sk = icmpv6_sk(net);
121
	if (unlikely(!spin_trylock(&sk->sk_lock.slock))) {
L
Linus Torvalds 已提交
122 123 124 125
		/* This can happen if the output path (f.e. SIT or
		 * ip6ip6 tunnel) signals dst_link_failure() for an
		 * outgoing ICMP6 packet.
		 */
126
		return NULL;
L
Linus Torvalds 已提交
127
	}
128
	return sk;
L
Linus Torvalds 已提交
129 130
}

131
static __inline__ void icmpv6_xmit_unlock(struct sock *sk)
L
Linus Torvalds 已提交
132
{
133
	spin_unlock(&sk->sk_lock.slock);
L
Linus Torvalds 已提交
134 135 136 137 138 139 140 141 142 143 144 145 146
}

/*
 * Figure out, may we reply to this packet with icmp error.
 *
 * We do not reply, if:
 *	- it was icmp error message.
 *	- it is truncated, so that it is known, that protocol is ICMPV6
 *	  (i.e. in the middle of some exthdr)
 *
 *	--ANK (980726)
 */

147
static bool is_ineligible(const struct sk_buff *skb)
L
Linus Torvalds 已提交
148
{
149
	int ptr = (u8 *)(ipv6_hdr(skb) + 1) - skb->data;
L
Linus Torvalds 已提交
150
	int len = skb->len - ptr;
151
	__u8 nexthdr = ipv6_hdr(skb)->nexthdr;
152
	__be16 frag_off;
L
Linus Torvalds 已提交
153 154

	if (len < 0)
155
		return true;
L
Linus Torvalds 已提交
156

157
	ptr = ipv6_skip_exthdr(skb, ptr, &nexthdr, &frag_off);
L
Linus Torvalds 已提交
158
	if (ptr < 0)
159
		return false;
L
Linus Torvalds 已提交
160 161 162 163 164
	if (nexthdr == IPPROTO_ICMPV6) {
		u8 _type, *tp;
		tp = skb_header_pointer(skb,
			ptr+offsetof(struct icmp6hdr, icmp6_type),
			sizeof(_type), &_type);
165
		if (!tp || !(*tp & ICMPV6_INFOMSG_MASK))
166
			return true;
L
Linus Torvalds 已提交
167
	}
168
	return false;
L
Linus Torvalds 已提交
169 170
}

171 172 173 174 175 176 177 178 179 180 181 182 183 184 185 186 187 188 189 190 191 192 193 194
static bool icmpv6_mask_allow(int type)
{
	/* Informational messages are not limited. */
	if (type & ICMPV6_INFOMSG_MASK)
		return true;

	/* Do not limit pmtu discovery, it would break it. */
	if (type == ICMPV6_PKT_TOOBIG)
		return true;

	return false;
}

static bool icmpv6_global_allow(int type)
{
	if (icmpv6_mask_allow(type))
		return true;

	if (icmp_global_allow())
		return true;

	return false;
}

195 196
/*
 * Check the ICMP output rate limit
L
Linus Torvalds 已提交
197
 */
198 199
static bool icmpv6_xrlim_allow(struct sock *sk, u8 type,
			       struct flowi6 *fl6)
L
Linus Torvalds 已提交
200
{
201
	struct net *net = sock_net(sk);
202
	struct dst_entry *dst;
203
	bool res = false;
L
Linus Torvalds 已提交
204

205
	if (icmpv6_mask_allow(type))
206
		return true;
L
Linus Torvalds 已提交
207

208
	/*
L
Linus Torvalds 已提交
209 210 211 212
	 * Look up the output route.
	 * XXX: perhaps the expire for routing entries cloned by
	 * this lookup should be more aggressive (not longer than timeout).
	 */
213
	dst = ip6_route_output(net, sk, fl6);
L
Linus Torvalds 已提交
214
	if (dst->error) {
215
		IP6_INC_STATS(net, ip6_dst_idev(dst),
216
			      IPSTATS_MIB_OUTNOROUTES);
L
Linus Torvalds 已提交
217
	} else if (dst->dev && (dst->dev->flags&IFF_LOOPBACK)) {
218
		res = true;
L
Linus Torvalds 已提交
219 220
	} else {
		struct rt6_info *rt = (struct rt6_info *)dst;
221
		int tmo = net->ipv6.sysctl.icmpv6_time;
222
		struct inet_peer *peer;
L
Linus Torvalds 已提交
223 224 225 226 227

		/* Give more bandwidth to wider prefixes. */
		if (rt->rt6i_dst.plen < 128)
			tmo >>= ((128 - rt->rt6i_dst.plen)>>5);

228 229 230 231
		peer = inet_getpeer_v6(net->ipv6.peers, &fl6->daddr, 1);
		res = inet_peer_xrlim_allow(peer, tmo);
		if (peer)
			inet_putpeer(peer);
L
Linus Torvalds 已提交
232 233 234 235 236 237 238 239
	}
	dst_release(dst);
	return res;
}

/*
 *	an inline helper for the "simple" if statement below
 *	checks if parameter problem report is caused by an
240
 *	unrecognized IPv6 option that has the Option Type
L
Linus Torvalds 已提交
241 242 243
 *	highest-order two bits set to 10
 */

244
static bool opt_unrec(struct sk_buff *skb, __u32 offset)
L
Linus Torvalds 已提交
245 246 247
{
	u8 _optval, *op;

248
	offset += skb_network_offset(skb);
L
Linus Torvalds 已提交
249
	op = skb_header_pointer(skb, offset, sizeof(_optval), &_optval);
250
	if (!op)
251
		return true;
L
Linus Torvalds 已提交
252 253 254
	return (*op & 0xC0) == 0x80;
}

255 256
void icmpv6_push_pending_frames(struct sock *sk, struct flowi6 *fl6,
				struct icmp6hdr *thdr, int len)
L
Linus Torvalds 已提交
257 258 259 260
{
	struct sk_buff *skb;
	struct icmp6hdr *icmp6h;

261
	skb = skb_peek(&sk->sk_write_queue);
262
	if (!skb)
263
		return;
L
Linus Torvalds 已提交
264

265
	icmp6h = icmp6_hdr(skb);
L
Linus Torvalds 已提交
266 267 268 269
	memcpy(icmp6h, thdr, sizeof(struct icmp6hdr));
	icmp6h->icmp6_cksum = 0;

	if (skb_queue_len(&sk->sk_write_queue) == 1) {
270
		skb->csum = csum_partial(icmp6h,
L
Linus Torvalds 已提交
271
					sizeof(struct icmp6hdr), skb->csum);
272 273 274
		icmp6h->icmp6_cksum = csum_ipv6_magic(&fl6->saddr,
						      &fl6->daddr,
						      len, fl6->flowi6_proto,
L
Linus Torvalds 已提交
275 276
						      skb->csum);
	} else {
277
		__wsum tmp_csum = 0;
L
Linus Torvalds 已提交
278 279 280 281 282

		skb_queue_walk(&sk->sk_write_queue, skb) {
			tmp_csum = csum_add(tmp_csum, skb->csum);
		}

283
		tmp_csum = csum_partial(icmp6h,
L
Linus Torvalds 已提交
284
					sizeof(struct icmp6hdr), tmp_csum);
285 286 287
		icmp6h->icmp6_cksum = csum_ipv6_magic(&fl6->saddr,
						      &fl6->daddr,
						      len, fl6->flowi6_proto,
288
						      tmp_csum);
L
Linus Torvalds 已提交
289 290 291 292 293 294 295
	}
	ip6_push_pending_frames(sk);
}

struct icmpv6_msg {
	struct sk_buff	*skb;
	int		offset;
296
	uint8_t		type;
L
Linus Torvalds 已提交
297 298 299 300 301 302
};

static int icmpv6_getfrag(void *from, char *to, int offset, int len, int odd, struct sk_buff *skb)
{
	struct icmpv6_msg *msg = (struct icmpv6_msg *) from;
	struct sk_buff *org_skb = msg->skb;
303
	__wsum csum = 0;
L
Linus Torvalds 已提交
304 305 306 307

	csum = skb_copy_and_csum_bits(org_skb, msg->offset + offset,
				      to, len, csum);
	skb->csum = csum_block_add(skb->csum, csum, odd);
308 309
	if (!(msg->type & ICMPV6_INFOMSG_MASK))
		nf_ct_attach(skb, org_skb);
L
Linus Torvalds 已提交
310 311 312
	return 0;
}

A
Amerigo Wang 已提交
313
#if IS_ENABLED(CONFIG_IPV6_MIP6)
314 315
static void mip6_addr_swap(struct sk_buff *skb)
{
316
	struct ipv6hdr *iph = ipv6_hdr(skb);
317 318 319 320 321 322 323 324
	struct inet6_skb_parm *opt = IP6CB(skb);
	struct ipv6_destopt_hao *hao;
	struct in6_addr tmp;
	int off;

	if (opt->dsthao) {
		off = ipv6_find_tlv(skb, opt->dsthao, IPV6_TLV_HAO);
		if (likely(off >= 0)) {
325 326
			hao = (struct ipv6_destopt_hao *)
					(skb_network_header(skb) + off);
A
Alexey Dobriyan 已提交
327 328 329
			tmp = iph->saddr;
			iph->saddr = hao->addr;
			hao->addr = tmp;
330 331 332 333 334 335 336
		}
	}
}
#else
static inline void mip6_addr_swap(struct sk_buff *skb) {}
#endif

S
stephen hemminger 已提交
337 338 339 340
static struct dst_entry *icmpv6_route_lookup(struct net *net,
					     struct sk_buff *skb,
					     struct sock *sk,
					     struct flowi6 *fl6)
341 342
{
	struct dst_entry *dst, *dst2;
343
	struct flowi6 fl2;
344 345
	int err;

346
	err = ip6_dst_lookup(net, sk, &dst, fl6);
347 348 349 350 351 352 353
	if (err)
		return ERR_PTR(err);

	/*
	 * We won't send icmp if the destination is known
	 * anycast.
	 */
354
	if (ipv6_anycast_destination(dst, &fl6->daddr)) {
355
		net_dbg_ratelimited("icmp6_send: acast source\n");
356 357 358 359 360 361 362
		dst_release(dst);
		return ERR_PTR(-EINVAL);
	}

	/* No need to clone since we're just using its address. */
	dst2 = dst;

363
	dst = xfrm_lookup(net, dst, flowi6_to_flowi(fl6), sk, 0);
364
	if (!IS_ERR(dst)) {
365 366
		if (dst != dst2)
			return dst;
367 368 369 370 371
	} else {
		if (PTR_ERR(dst) == -EPERM)
			dst = NULL;
		else
			return dst;
372 373
	}

374
	err = xfrm_decode_session_reverse(skb, flowi6_to_flowi(&fl2), AF_INET6);
375 376 377
	if (err)
		goto relookup_failed;

378
	err = ip6_dst_lookup(net, sk, &dst2, &fl2);
379 380 381
	if (err)
		goto relookup_failed;

382
	dst2 = xfrm_lookup(net, dst2, flowi6_to_flowi(&fl2), sk, XFRM_LOOKUP_ICMP);
383
	if (!IS_ERR(dst2)) {
384 385
		dst_release(dst);
		dst = dst2;
386 387 388 389 390 391 392
	} else {
		err = PTR_ERR(dst2);
		if (err == -EPERM) {
			dst_release(dst);
			return dst2;
		} else
			goto relookup_failed;
393 394 395 396 397 398 399 400
	}

relookup_failed:
	if (dst)
		return dst;
	return ERR_PTR(err);
}

401 402 403 404 405 406
static int icmp6_iif(const struct sk_buff *skb)
{
	int iif = skb->dev->ifindex;

	/* for local traffic to local address, skb dev is the loopback
	 * device. Check if there is a dst attached to the skb and if so
407 408
	 * get the real device index. Same is needed for replies to a link
	 * local address on a device enslaved to an L3 master device
409
	 */
410
	if (unlikely(iif == LOOPBACK_IFINDEX || netif_is_l3_master(skb->dev))) {
411 412 413 414 415 416 417 418 419
		const struct rt6_info *rt6 = skb_rt6_info(skb);

		if (rt6)
			iif = rt6->rt6i_idev->dev->ifindex;
	}

	return iif;
}

L
Linus Torvalds 已提交
420 421 422
/*
 *	Send an ICMP message in response to a packet in error
 */
423 424
static void icmp6_send(struct sk_buff *skb, u8 type, u8 code, __u32 info,
		       const struct in6_addr *force_saddr)
L
Linus Torvalds 已提交
425 426
{
	struct inet6_dev *idev = NULL;
427
	struct ipv6hdr *hdr = ipv6_hdr(skb);
428
	struct sock *sk;
429
	struct net *net;
430
	struct ipv6_pinfo *np;
431
	const struct in6_addr *saddr = NULL;
L
Linus Torvalds 已提交
432 433
	struct dst_entry *dst;
	struct icmp6hdr tmp_hdr;
434
	struct flowi6 fl6;
L
Linus Torvalds 已提交
435
	struct icmpv6_msg msg;
W
Wei Wang 已提交
436
	struct ipcm6_cookie ipc6;
L
Linus Torvalds 已提交
437 438 439
	int iif = 0;
	int addr_type = 0;
	int len;
440
	u32 mark;
L
Linus Torvalds 已提交
441

442
	if ((u8 *)hdr < skb->head ||
443
	    (skb_network_header(skb) + sizeof(*hdr)) > skb_tail_pointer(skb))
L
Linus Torvalds 已提交
444 445
		return;

446 447 448 449
	if (!skb->dev)
		return;
	net = dev_net(skb->dev);
	mark = IP6_REPLY_MARK(net, skb->mark);
L
Linus Torvalds 已提交
450
	/*
451
	 *	Make sure we respect the rules
L
Linus Torvalds 已提交
452
	 *	i.e. RFC 1885 2.4(e)
453
	 *	Rule (e.1) is enforced by not using icmp6_send
L
Linus Torvalds 已提交
454 455 456 457
	 *	in any code that processes icmp errors.
	 */
	addr_type = ipv6_addr_type(&hdr->daddr);

458
	if (ipv6_chk_addr(net, &hdr->daddr, skb->dev, 0) ||
459
	    ipv6_chk_acast_addr_src(net, skb->dev, &hdr->daddr))
L
Linus Torvalds 已提交
460 461 462 463 464 465
		saddr = &hdr->daddr;

	/*
	 *	Dest addr check
	 */

Z
zhuyj 已提交
466
	if (addr_type & IPV6_ADDR_MULTICAST || skb->pkt_type != PACKET_HOST) {
L
Linus Torvalds 已提交
467
		if (type != ICMPV6_PKT_TOOBIG &&
468 469
		    !(type == ICMPV6_PARAMPROB &&
		      code == ICMPV6_UNK_OPTION &&
L
Linus Torvalds 已提交
470 471 472 473 474 475 476 477 478 479 480 481
		      (opt_unrec(skb, info))))
			return;

		saddr = NULL;
	}

	addr_type = ipv6_addr_type(&hdr->saddr);

	/*
	 *	Source addr check
	 */

482
	if (__ipv6_addr_needs_scope_id(addr_type)) {
483
		iif = icmp6_iif(skb);
484
	} else {
485 486 487
		dst = skb_dst(skb);
		iif = l3mdev_master_ifindex(dst ? dst->dev : skb->dev);
	}
L
Linus Torvalds 已提交
488 489

	/*
490 491 492 493
	 *	Must not send error if the source does not uniquely
	 *	identify a single node (RFC2463 Section 2.4).
	 *	We check unspecified / multicast addresses here,
	 *	and anycast addresses will be checked later.
L
Linus Torvalds 已提交
494 495
	 */
	if ((addr_type == IPV6_ADDR_ANY) || (addr_type & IPV6_ADDR_MULTICAST)) {
496 497
		net_dbg_ratelimited("icmp6_send: addr_any/mcast source [%pI6c > %pI6c]\n",
				    &hdr->saddr, &hdr->daddr);
L
Linus Torvalds 已提交
498 499 500
		return;
	}

501
	/*
L
Linus Torvalds 已提交
502 503 504
	 *	Never answer to a ICMP packet.
	 */
	if (is_ineligible(skb)) {
505 506
		net_dbg_ratelimited("icmp6_send: no reply to icmp error [%pI6c > %pI6c]\n",
				    &hdr->saddr, &hdr->daddr);
L
Linus Torvalds 已提交
507 508 509
		return;
	}

510 511 512 513
	/* Needed by both icmp_global_allow and icmpv6_xmit_lock */
	local_bh_disable();

	/* Check global sysctl_icmp_msgs_per_sec ratelimit */
514
	if (!(skb->dev->flags&IFF_LOOPBACK) && !icmpv6_global_allow(type))
515 516
		goto out_bh_enable;

517 518
	mip6_addr_swap(skb);

519 520
	memset(&fl6, 0, sizeof(fl6));
	fl6.flowi6_proto = IPPROTO_ICMPV6;
A
Alexey Dobriyan 已提交
521
	fl6.daddr = hdr->saddr;
522 523
	if (force_saddr)
		saddr = force_saddr;
L
Linus Torvalds 已提交
524
	if (saddr)
A
Alexey Dobriyan 已提交
525
		fl6.saddr = *saddr;
526
	fl6.flowi6_mark = mark;
527
	fl6.flowi6_oif = iif;
528 529
	fl6.fl6_icmp_type = type;
	fl6.fl6_icmp_code = code;
530
	fl6.flowi6_uid = sock_net_uid(net, NULL);
531
	fl6.mp_hash = rt6_multipath_hash(net, &fl6, skb, NULL);
532
	security_skb_classify_flow(skb, flowi6_to_flowi(&fl6));
L
Linus Torvalds 已提交
533

534
	sk = icmpv6_xmit_lock(net);
535
	if (!sk)
536
		goto out_bh_enable;
537

538
	sk->sk_mark = mark;
539
	np = inet6_sk(sk);
540

541
	if (!icmpv6_xrlim_allow(sk, type, &fl6))
L
Linus Torvalds 已提交
542 543 544 545 546 547 548
		goto out;

	tmp_hdr.icmp6_type = type;
	tmp_hdr.icmp6_code = code;
	tmp_hdr.icmp6_cksum = 0;
	tmp_hdr.icmp6_pointer = htonl(info);

549 550
	if (!fl6.flowi6_oif && ipv6_addr_is_multicast(&fl6.daddr))
		fl6.flowi6_oif = np->mcast_oif;
551 552
	else if (!fl6.flowi6_oif)
		fl6.flowi6_oif = np->ucast_oif;
L
Linus Torvalds 已提交
553

554
	ipcm6_init_sk(&ipc6, np);
555 556
	fl6.flowlabel = ip6_make_flowinfo(ipc6.tclass, fl6.flowlabel);

557
	dst = icmpv6_route_lookup(net, skb, sk, &fl6);
558
	if (IS_ERR(dst))
L
Linus Torvalds 已提交
559
		goto out;
560

W
Wei Wang 已提交
561
	ipc6.hlimit = ip6_sk_dst_hoplimit(np, &fl6, dst);
L
Linus Torvalds 已提交
562 563

	msg.skb = skb;
564
	msg.offset = skb_network_offset(skb);
565
	msg.type = type;
L
Linus Torvalds 已提交
566 567

	len = skb->len - msg.offset;
568
	len = min_t(unsigned int, len, IPV6_MIN_MTU - sizeof(struct ipv6hdr) - sizeof(struct icmp6hdr));
L
Linus Torvalds 已提交
569
	if (len < 0) {
570 571
		net_dbg_ratelimited("icmp: len problem [%pI6c > %pI6c]\n",
				    &hdr->saddr, &hdr->daddr);
L
Linus Torvalds 已提交
572 573 574
		goto out_dst_release;
	}

E
Eric Dumazet 已提交
575 576
	rcu_read_lock();
	idev = __in6_dev_get(skb->dev);
L
Linus Torvalds 已提交
577

578 579 580 581
	if (ip6_append_data(sk, icmpv6_getfrag, &msg,
			    len + sizeof(struct icmp6hdr),
			    sizeof(struct icmp6hdr),
			    &ipc6, &fl6, (struct rt6_info *)dst,
582
			    MSG_DONTWAIT)) {
583
		ICMP6_INC_STATS(net, idev, ICMP6_MIB_OUTERRORS);
L
Linus Torvalds 已提交
584
		ip6_flush_pending_frames(sk);
E
Eric Dumazet 已提交
585
	} else {
586 587
		icmpv6_push_pending_frames(sk, &fl6, &tmp_hdr,
					   len + sizeof(struct icmp6hdr));
L
Linus Torvalds 已提交
588
	}
E
Eric Dumazet 已提交
589
	rcu_read_unlock();
L
Linus Torvalds 已提交
590 591 592
out_dst_release:
	dst_release(dst);
out:
593
	icmpv6_xmit_unlock(sk);
594 595
out_bh_enable:
	local_bh_enable();
L
Linus Torvalds 已提交
596
}
597 598 599 600 601

/* Slightly more convenient version of icmp6_send.
 */
void icmpv6_param_prob(struct sk_buff *skb, u8 code, int pos)
{
602
	icmp6_send(skb, ICMPV6_PARAMPROB, code, pos, NULL);
603 604
	kfree_skb(skb);
}
605

606 607 608 609 610 611
/* Generate icmpv6 with type/code ICMPV6_DEST_UNREACH/ICMPV6_ADDR_UNREACH
 * if sufficient data bytes are available
 * @nhs is the size of the tunnel header(s) :
 *  Either an IPv4 header for SIT encap
 *         an IPv4 header + GRE header for GRE encap
 */
612 613
int ip6_err_gen_icmpv6_unreach(struct sk_buff *skb, int nhs, int type,
			       unsigned int data_len)
614
{
615
	struct in6_addr temp_saddr;
616 617
	struct rt6_info *rt;
	struct sk_buff *skb2;
618
	u32 info = 0;
619 620 621 622

	if (!pskb_may_pull(skb, nhs + sizeof(struct ipv6hdr) + 8))
		return 1;

623 624 625 626 627
	/* RFC 4884 (partial) support for ICMP extensions */
	if (data_len < 128 || (data_len & 7) || skb->len < data_len)
		data_len = 0;

	skb2 = data_len ? skb_copy(skb, GFP_ATOMIC) : skb_clone(skb, GFP_ATOMIC);
628 629 630 631 632 633 634 635

	if (!skb2)
		return 1;

	skb_dst_drop(skb2);
	skb_pull(skb2, nhs);
	skb_reset_network_header(skb2);

D
David Ahern 已提交
636 637
	rt = rt6_lookup(dev_net(skb->dev), &ipv6_hdr(skb2)->saddr, NULL, 0,
			skb, 0);
638 639 640 641

	if (rt && rt->dst.dev)
		skb2->dev = rt->dst.dev;

642
	ipv6_addr_set_v4mapped(ip_hdr(skb)->saddr, &temp_saddr);
643 644 645 646 647 648 649 650 651 652 653 654 655 656

	if (data_len) {
		/* RFC 4884 (partial) support :
		 * insert 0 padding at the end, before the extensions
		 */
		__skb_push(skb2, nhs);
		skb_reset_network_header(skb2);
		memmove(skb2->data, skb2->data + nhs, data_len - nhs);
		memset(skb2->data + data_len - nhs, 0, nhs);
		/* RFC 4884 4.5 : Length is measured in 64-bit words,
		 * and stored in reserved[0]
		 */
		info = (data_len/8) << 24;
	}
657 658
	if (type == ICMP_TIME_EXCEEDED)
		icmp6_send(skb2, ICMPV6_TIME_EXCEED, ICMPV6_EXC_HOPLIMIT,
659
			   info, &temp_saddr);
660 661
	else
		icmp6_send(skb2, ICMPV6_DEST_UNREACH, ICMPV6_ADDR_UNREACH,
662
			   info, &temp_saddr);
663 664 665 666 667 668 669 670 671
	if (rt)
		ip6_rt_put(rt);

	kfree_skb(skb2);

	return 0;
}
EXPORT_SYMBOL(ip6_err_gen_icmpv6_unreach);

L
Linus Torvalds 已提交
672 673
static void icmpv6_echo_reply(struct sk_buff *skb)
{
674
	struct net *net = dev_net(skb->dev);
675
	struct sock *sk;
L
Linus Torvalds 已提交
676
	struct inet6_dev *idev;
677
	struct ipv6_pinfo *np;
678
	const struct in6_addr *saddr = NULL;
679
	struct icmp6hdr *icmph = icmp6_hdr(skb);
L
Linus Torvalds 已提交
680
	struct icmp6hdr tmp_hdr;
681
	struct flowi6 fl6;
L
Linus Torvalds 已提交
682 683
	struct icmpv6_msg msg;
	struct dst_entry *dst;
W
Wei Wang 已提交
684
	struct ipcm6_cookie ipc6;
685
	u32 mark = IP6_REPLY_MARK(net, skb->mark);
L
Linus Torvalds 已提交
686

687
	saddr = &ipv6_hdr(skb)->daddr;
L
Linus Torvalds 已提交
688

689
	if (!ipv6_unicast_destination(skb) &&
690
	    !(net->ipv6.sysctl.anycast_src_echo_reply &&
691
	      ipv6_anycast_destination(skb_dst(skb), saddr)))
L
Linus Torvalds 已提交
692 693 694 695 696
		saddr = NULL;

	memcpy(&tmp_hdr, icmph, sizeof(tmp_hdr));
	tmp_hdr.icmp6_type = ICMPV6_ECHO_REPLY;

697 698
	memset(&fl6, 0, sizeof(fl6));
	fl6.flowi6_proto = IPPROTO_ICMPV6;
A
Alexey Dobriyan 已提交
699
	fl6.daddr = ipv6_hdr(skb)->saddr;
L
Linus Torvalds 已提交
700
	if (saddr)
A
Alexey Dobriyan 已提交
701
		fl6.saddr = *saddr;
702
	fl6.flowi6_oif = icmp6_iif(skb);
703
	fl6.fl6_icmp_type = ICMPV6_ECHO_REPLY;
704
	fl6.flowi6_mark = mark;
705
	fl6.flowi6_uid = sock_net_uid(net, NULL);
706
	security_skb_classify_flow(skb, flowi6_to_flowi(&fl6));
L
Linus Torvalds 已提交
707

708
	local_bh_disable();
709
	sk = icmpv6_xmit_lock(net);
710
	if (!sk)
711
		goto out_bh_enable;
712
	sk->sk_mark = mark;
713
	np = inet6_sk(sk);
714

715 716
	if (!fl6.flowi6_oif && ipv6_addr_is_multicast(&fl6.daddr))
		fl6.flowi6_oif = np->mcast_oif;
717 718
	else if (!fl6.flowi6_oif)
		fl6.flowi6_oif = np->ucast_oif;
L
Linus Torvalds 已提交
719

720
	if (ip6_dst_lookup(net, sk, &dst, &fl6))
L
Linus Torvalds 已提交
721
		goto out;
722
	dst = xfrm_lookup(net, dst, flowi6_to_flowi(&fl6), sk, 0);
723
	if (IS_ERR(dst))
724
		goto out;
L
Linus Torvalds 已提交
725

E
Eric Dumazet 已提交
726
	idev = __in6_dev_get(skb->dev);
L
Linus Torvalds 已提交
727 728 729

	msg.skb = skb;
	msg.offset = 0;
730
	msg.type = ICMPV6_ECHO_REPLY;
L
Linus Torvalds 已提交
731

732
	ipcm6_init_sk(&ipc6, np);
W
Wei Wang 已提交
733 734 735
	ipc6.hlimit = ip6_sk_dst_hoplimit(np, &fl6, dst);
	ipc6.tclass = ipv6_get_dsfield(ipv6_hdr(skb));

736 737 738
	if (ip6_append_data(sk, icmpv6_getfrag, &msg,
			    skb->len + sizeof(struct icmp6hdr),
			    sizeof(struct icmp6hdr), &ipc6, &fl6,
739
			    (struct rt6_info *)dst, MSG_DONTWAIT)) {
E
Eric Dumazet 已提交
740
		__ICMP6_INC_STATS(net, idev, ICMP6_MIB_OUTERRORS);
L
Linus Torvalds 已提交
741
		ip6_flush_pending_frames(sk);
E
Eric Dumazet 已提交
742
	} else {
743 744
		icmpv6_push_pending_frames(sk, &fl6, &tmp_hdr,
					   skb->len + sizeof(struct icmp6hdr));
L
Linus Torvalds 已提交
745 746
	}
	dst_release(dst);
747
out:
748
	icmpv6_xmit_unlock(sk);
749 750
out_bh_enable:
	local_bh_enable();
L
Linus Torvalds 已提交
751 752
}

753
void icmpv6_notify(struct sk_buff *skb, u8 type, u8 code, __be32 info)
L
Linus Torvalds 已提交
754
{
755
	const struct inet6_protocol *ipprot;
L
Linus Torvalds 已提交
756
	int inner_offset;
757
	__be16 frag_off;
758
	u8 nexthdr;
759
	struct net *net = dev_net(skb->dev);
L
Linus Torvalds 已提交
760 761

	if (!pskb_may_pull(skb, sizeof(struct ipv6hdr)))
762
		goto out;
L
Linus Torvalds 已提交
763 764 765 766

	nexthdr = ((struct ipv6hdr *)skb->data)->nexthdr;
	if (ipv6_ext_hdr(nexthdr)) {
		/* now skip over extension headers */
767 768
		inner_offset = ipv6_skip_exthdr(skb, sizeof(struct ipv6hdr),
						&nexthdr, &frag_off);
769
		if (inner_offset < 0)
770
			goto out;
L
Linus Torvalds 已提交
771 772 773 774 775 776
	} else {
		inner_offset = sizeof(struct ipv6hdr);
	}

	/* Checkin header including 8 bytes of inner protocol header. */
	if (!pskb_may_pull(skb, inner_offset+8))
777
		goto out;
L
Linus Torvalds 已提交
778 779 780 781 782 783 784 785

	/* BUGGG_FUTURE: we should try to parse exthdrs in this packet.
	   Without this we will not able f.e. to make source routed
	   pmtu discovery.
	   Corresponding argument (opt) to notifiers is already added.
	   --ANK (980726)
	 */

786
	ipprot = rcu_dereference(inet6_protos[nexthdr]);
L
Linus Torvalds 已提交
787 788 789
	if (ipprot && ipprot->err_handler)
		ipprot->err_handler(skb, NULL, type, code, inner_offset, info);

790
	raw6_icmp_error(skb, nexthdr, type, code, inner_offset, info);
791 792 793
	return;

out:
E
Eric Dumazet 已提交
794
	__ICMP6_INC_STATS(net, __in6_dev_get(skb->dev), ICMP6_MIB_INERRORS);
L
Linus Torvalds 已提交
795
}
796

L
Linus Torvalds 已提交
797 798 799 800
/*
 *	Handle icmp messages
 */

801
static int icmpv6_rcv(struct sk_buff *skb)
L
Linus Torvalds 已提交
802
{
803
	struct net *net = dev_net(skb->dev);
L
Linus Torvalds 已提交
804 805
	struct net_device *dev = skb->dev;
	struct inet6_dev *idev = __in6_dev_get(dev);
806
	const struct in6_addr *saddr, *daddr;
L
Linus Torvalds 已提交
807
	struct icmp6hdr *hdr;
808
	u8 type;
809
	bool success = false;
L
Linus Torvalds 已提交
810

811
	if (!xfrm6_policy_check(NULL, XFRM_POLICY_IN, skb)) {
812
		struct sec_path *sp = skb_sec_path(skb);
813 814
		int nh;

815
		if (!(sp && sp->xvec[sp->len - 1]->props.flags &
816 817 818
				 XFRM_STATE_ICMP))
			goto drop_no_count;

819
		if (!pskb_may_pull(skb, sizeof(*hdr) + sizeof(struct ipv6hdr)))
820 821 822 823 824 825 826 827 828 829 830
			goto drop_no_count;

		nh = skb_network_offset(skb);
		skb_set_network_header(skb, sizeof(*hdr));

		if (!xfrm6_policy_check_reverse(NULL, XFRM_POLICY_IN, skb))
			goto drop_no_count;

		skb_set_network_header(skb, nh);
	}

E
Eric Dumazet 已提交
831
	__ICMP6_INC_STATS(dev_net(dev), idev, ICMP6_MIB_INMSGS);
L
Linus Torvalds 已提交
832

833 834
	saddr = &ipv6_hdr(skb)->saddr;
	daddr = &ipv6_hdr(skb)->daddr;
L
Linus Torvalds 已提交
835

T
Tom Herbert 已提交
836
	if (skb_checksum_validate(skb, IPPROTO_ICMPV6, ip6_compute_pseudo)) {
837 838
		net_dbg_ratelimited("ICMPv6 checksum failed [%pI6c > %pI6c]\n",
				    saddr, daddr);
T
Tom Herbert 已提交
839
		goto csum_error;
L
Linus Torvalds 已提交
840 841
	}

842 843
	if (!pskb_pull(skb, sizeof(*hdr)))
		goto discard_it;
L
Linus Torvalds 已提交
844

845
	hdr = icmp6_hdr(skb);
L
Linus Torvalds 已提交
846 847 848

	type = hdr->icmp6_type;

849
	ICMP6MSGIN_INC_STATS(dev_net(dev), idev, type);
L
Linus Torvalds 已提交
850 851 852

	switch (type) {
	case ICMPV6_ECHO_REQUEST:
853 854
		if (!net->ipv6.sysctl.icmpv6_echo_ignore_all)
			icmpv6_echo_reply(skb);
L
Linus Torvalds 已提交
855 856 857
		break;

	case ICMPV6_ECHO_REPLY:
858
		success = ping_rcv(skb);
L
Linus Torvalds 已提交
859 860 861 862 863 864 865 866 867 868
		break;

	case ICMPV6_PKT_TOOBIG:
		/* BUGGG_FUTURE: if packet contains rthdr, we cannot update
		   standard destination cache. Seems, only "advanced"
		   destination cache will allow to solve this problem
		   --ANK (980726)
		 */
		if (!pskb_may_pull(skb, sizeof(struct ipv6hdr)))
			goto discard_it;
869
		hdr = icmp6_hdr(skb);
L
Linus Torvalds 已提交
870

871 872
		/* to notify */
		/* fall through */
L
Linus Torvalds 已提交
873 874 875 876 877 878 879 880 881 882 883 884 885 886 887 888 889 890 891 892 893 894 895 896 897 898 899 900 901 902 903 904 905 906 907 908 909
	case ICMPV6_DEST_UNREACH:
	case ICMPV6_TIME_EXCEED:
	case ICMPV6_PARAMPROB:
		icmpv6_notify(skb, type, hdr->icmp6_code, hdr->icmp6_mtu);
		break;

	case NDISC_ROUTER_SOLICITATION:
	case NDISC_ROUTER_ADVERTISEMENT:
	case NDISC_NEIGHBOUR_SOLICITATION:
	case NDISC_NEIGHBOUR_ADVERTISEMENT:
	case NDISC_REDIRECT:
		ndisc_rcv(skb);
		break;

	case ICMPV6_MGM_QUERY:
		igmp6_event_query(skb);
		break;

	case ICMPV6_MGM_REPORT:
		igmp6_event_report(skb);
		break;

	case ICMPV6_MGM_REDUCTION:
	case ICMPV6_NI_QUERY:
	case ICMPV6_NI_REPLY:
	case ICMPV6_MLD2_REPORT:
	case ICMPV6_DHAAD_REQUEST:
	case ICMPV6_DHAAD_REPLY:
	case ICMPV6_MOBILE_PREFIX_SOL:
	case ICMPV6_MOBILE_PREFIX_ADV:
		break;

	default:
		/* informational */
		if (type & ICMPV6_INFOMSG_MASK)
			break;

910 911
		net_dbg_ratelimited("icmpv6: msg of unknown type [%pI6c > %pI6c]\n",
				    saddr, daddr);
912

913 914 915
		/*
		 * error of unknown type.
		 * must pass to upper level
L
Linus Torvalds 已提交
916 917 918
		 */

		icmpv6_notify(skb, type, hdr->icmp6_code, hdr->icmp6_mtu);
919 920
	}

921 922 923 924 925 926 927 928
	/* until the v6 path can be better sorted assume failure and
	 * preserve the status quo behaviour for the rest of the paths to here
	 */
	if (success)
		consume_skb(skb);
	else
		kfree_skb(skb);

L
Linus Torvalds 已提交
929 930
	return 0;

931
csum_error:
E
Eric Dumazet 已提交
932
	__ICMP6_INC_STATS(dev_net(dev), idev, ICMP6_MIB_CSUMERRORS);
L
Linus Torvalds 已提交
933
discard_it:
E
Eric Dumazet 已提交
934
	__ICMP6_INC_STATS(dev_net(dev), idev, ICMP6_MIB_INERRORS);
935
drop_no_count:
L
Linus Torvalds 已提交
936 937 938 939
	kfree_skb(skb);
	return 0;
}

940
void icmpv6_flow_init(struct sock *sk, struct flowi6 *fl6,
941 942 943 944 945
		      u8 type,
		      const struct in6_addr *saddr,
		      const struct in6_addr *daddr,
		      int oif)
{
946
	memset(fl6, 0, sizeof(*fl6));
A
Alexey Dobriyan 已提交
947 948
	fl6->saddr = *saddr;
	fl6->daddr = *daddr;
949
	fl6->flowi6_proto	= IPPROTO_ICMPV6;
950 951
	fl6->fl6_icmp_type	= type;
	fl6->fl6_icmp_code	= 0;
952 953
	fl6->flowi6_oif		= oif;
	security_sk_classify_flow(sk, flowi6_to_flowi(fl6));
954 955
}

956
static int __net_init icmpv6_sk_init(struct net *net)
L
Linus Torvalds 已提交
957 958 959 960
{
	struct sock *sk;
	int err, i, j;

961
	net->ipv6.icmp_sk =
K
Kees Cook 已提交
962
		kcalloc(nr_cpu_ids, sizeof(struct sock *), GFP_KERNEL);
963
	if (!net->ipv6.icmp_sk)
964 965
		return -ENOMEM;

966
	for_each_possible_cpu(i) {
967 968
		err = inet_ctl_sock_create(&sk, PF_INET6,
					   SOCK_RAW, IPPROTO_ICMPV6, net);
L
Linus Torvalds 已提交
969
		if (err < 0) {
970
			pr_err("Failed to initialize the ICMP6 control socket (err %d)\n",
L
Linus Torvalds 已提交
971 972 973 974
			       err);
			goto fail;
		}

975
		net->ipv6.icmp_sk[i] = sk;
976

L
Linus Torvalds 已提交
977 978 979
		/* Enough space for 2 64K ICMP packets, including
		 * sk_buff struct overhead.
		 */
E
Eric Dumazet 已提交
980
		sk->sk_sndbuf = 2 * SKB_TRUESIZE(64 * 1024);
L
Linus Torvalds 已提交
981 982 983 984
	}
	return 0;

 fail:
985
	for (j = 0; j < i; j++)
986
		inet_ctl_sock_destroy(net->ipv6.icmp_sk[j]);
987
	kfree(net->ipv6.icmp_sk);
L
Linus Torvalds 已提交
988 989 990
	return err;
}

991
static void __net_exit icmpv6_sk_exit(struct net *net)
L
Linus Torvalds 已提交
992 993 994
{
	int i;

995
	for_each_possible_cpu(i) {
996
		inet_ctl_sock_destroy(net->ipv6.icmp_sk[i]);
L
Linus Torvalds 已提交
997
	}
998 999 1000
	kfree(net->ipv6.icmp_sk);
}

1001
static struct pernet_operations icmpv6_sk_ops = {
1002 1003
	.init = icmpv6_sk_init,
	.exit = icmpv6_sk_exit,
1004 1005 1006 1007 1008 1009 1010 1011 1012 1013 1014 1015 1016
};

int __init icmpv6_init(void)
{
	int err;

	err = register_pernet_subsys(&icmpv6_sk_ops);
	if (err < 0)
		return err;

	err = -EAGAIN;
	if (inet6_add_protocol(&icmpv6_protocol, IPPROTO_ICMPV6) < 0)
		goto fail;
1017 1018 1019 1020

	err = inet6_register_icmp_sender(icmp6_send);
	if (err)
		goto sender_reg_err;
1021 1022
	return 0;

1023 1024
sender_reg_err:
	inet6_del_protocol(&icmpv6_protocol, IPPROTO_ICMPV6);
1025
fail:
1026
	pr_err("Failed to register ICMP6 protocol\n");
1027 1028 1029 1030
	unregister_pernet_subsys(&icmpv6_sk_ops);
	return err;
}

1031
void icmpv6_cleanup(void)
1032
{
1033
	inet6_unregister_icmp_sender(icmp6_send);
1034
	unregister_pernet_subsys(&icmpv6_sk_ops);
L
Linus Torvalds 已提交
1035 1036 1037
	inet6_del_protocol(&icmpv6_protocol, IPPROTO_ICMPV6);
}

1038

1039
static const struct icmp6_err {
L
Linus Torvalds 已提交
1040 1041 1042 1043 1044 1045 1046 1047 1048 1049 1050 1051 1052 1053 1054 1055 1056 1057 1058 1059 1060 1061 1062
	int err;
	int fatal;
} tab_unreach[] = {
	{	/* NOROUTE */
		.err	= ENETUNREACH,
		.fatal	= 0,
	},
	{	/* ADM_PROHIBITED */
		.err	= EACCES,
		.fatal	= 1,
	},
	{	/* Was NOT_NEIGHBOUR, now reserved */
		.err	= EHOSTUNREACH,
		.fatal	= 0,
	},
	{	/* ADDR_UNREACH	*/
		.err	= EHOSTUNREACH,
		.fatal	= 0,
	},
	{	/* PORT_UNREACH	*/
		.err	= ECONNREFUSED,
		.fatal	= 1,
	},
1063 1064 1065 1066 1067 1068 1069 1070
	{	/* POLICY_FAIL */
		.err	= EACCES,
		.fatal	= 1,
	},
	{	/* REJECT_ROUTE	*/
		.err	= EACCES,
		.fatal	= 1,
	},
L
Linus Torvalds 已提交
1071 1072
};

1073
int icmpv6_err_convert(u8 type, u8 code, int *err)
L
Linus Torvalds 已提交
1074 1075 1076 1077 1078 1079 1080 1081
{
	int fatal = 0;

	*err = EPROTO;

	switch (type) {
	case ICMPV6_DEST_UNREACH:
		fatal = 1;
1082
		if (code < ARRAY_SIZE(tab_unreach)) {
L
Linus Torvalds 已提交
1083 1084 1085 1086 1087 1088 1089 1090
			*err  = tab_unreach[code].err;
			fatal = tab_unreach[code].fatal;
		}
		break;

	case ICMPV6_PKT_TOOBIG:
		*err = EMSGSIZE;
		break;
1091

L
Linus Torvalds 已提交
1092 1093 1094 1095 1096 1097 1098 1099
	case ICMPV6_PARAMPROB:
		*err = EPROTO;
		fatal = 1;
		break;

	case ICMPV6_TIME_EXCEED:
		*err = EHOSTUNREACH;
		break;
1100
	}
L
Linus Torvalds 已提交
1101 1102 1103

	return fatal;
}
1104 1105
EXPORT_SYMBOL(icmpv6_err_convert);

L
Linus Torvalds 已提交
1106
#ifdef CONFIG_SYSCTL
S
stephen hemminger 已提交
1107
static struct ctl_table ipv6_icmp_table_template[] = {
L
Linus Torvalds 已提交
1108 1109
	{
		.procname	= "ratelimit",
1110
		.data		= &init_net.ipv6.sysctl.icmpv6_time,
L
Linus Torvalds 已提交
1111 1112
		.maxlen		= sizeof(int),
		.mode		= 0644,
A
Alexey Dobriyan 已提交
1113
		.proc_handler	= proc_dointvec_ms_jiffies,
L
Linus Torvalds 已提交
1114
	},
1115 1116 1117 1118 1119 1120 1121
	{
		.procname	= "echo_ignore_all",
		.data		= &init_net.ipv6.sysctl.icmpv6_echo_ignore_all,
		.maxlen		= sizeof(int),
		.mode		= 0644,
		.proc_handler = proc_dointvec,
	},
1122
	{ },
L
Linus Torvalds 已提交
1123
};
1124

1125
struct ctl_table * __net_init ipv6_icmp_sysctl_init(struct net *net)
1126 1127 1128 1129 1130 1131
{
	struct ctl_table *table;

	table = kmemdup(ipv6_icmp_table_template,
			sizeof(ipv6_icmp_table_template),
			GFP_KERNEL);
1132

1133
	if (table) {
1134
		table[0].data = &net->ipv6.sysctl.icmpv6_time;
1135 1136
		table[1].data = &net->ipv6.sysctl.icmpv6_echo_ignore_all;
	}
1137 1138
	return table;
}
L
Linus Torvalds 已提交
1139
#endif