macvlan.c 23.8 KB
Newer Older
P
Patrick McHardy 已提交
1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22
/*
 * Copyright (c) 2007 Patrick McHardy <kaber@trash.net>
 *
 * This program is free software; you can redistribute it and/or
 * modify it under the terms of the GNU General Public License as
 * published by the Free Software Foundation; either version 2 of
 * the License, or (at your option) any later version.
 *
 * The code this is based on carried the following copyright notice:
 * ---
 * (C) Copyright 2001-2006
 * Alex Zeffertt, Cambridge Broadband Ltd, ajz@cambridgebroadband.com
 * Re-worked by Ben Greear <greearb@candelatech.com>
 * ---
 */
#include <linux/kernel.h>
#include <linux/types.h>
#include <linux/module.h>
#include <linux/init.h>
#include <linux/errno.h>
#include <linux/slab.h>
#include <linux/string.h>
23
#include <linux/rculist.h>
P
Patrick McHardy 已提交
24 25 26 27 28
#include <linux/notifier.h>
#include <linux/netdevice.h>
#include <linux/etherdevice.h>
#include <linux/ethtool.h>
#include <linux/if_arp.h>
29
#include <linux/if_vlan.h>
P
Patrick McHardy 已提交
30 31 32
#include <linux/if_link.h>
#include <linux/if_macvlan.h>
#include <net/rtnetlink.h>
33
#include <net/xfrm.h>
P
Patrick McHardy 已提交
34 35 36 37 38 39 40

#define MACVLAN_HASH_SIZE	(1 << BITS_PER_BYTE)

struct macvlan_port {
	struct net_device	*dev;
	struct hlist_head	vlan_hash[MACVLAN_HASH_SIZE];
	struct list_head	vlans;
J
Jiri Pirko 已提交
41
	struct rcu_head		rcu;
42
	bool 			passthru;
43
	int			count;
P
Patrick McHardy 已提交
44 45
};

46 47
static void macvlan_port_destroy(struct net_device *dev);

48 49 50 51 52
#define macvlan_port_get_rcu(dev) \
	((struct macvlan_port *) rcu_dereference(dev->rx_handler_data))
#define macvlan_port_get(dev) ((struct macvlan_port *) dev->rx_handler_data)
#define macvlan_port_exists(dev) (dev->priv_flags & IFF_MACVLAN_PORT)

P
Patrick McHardy 已提交
53 54 55 56 57 58 59
static struct macvlan_dev *macvlan_hash_lookup(const struct macvlan_port *port,
					       const unsigned char *addr)
{
	struct macvlan_dev *vlan;
	struct hlist_node *n;

	hlist_for_each_entry_rcu(vlan, n, &port->vlan_hash[addr[5]], hlist) {
60
		if (!compare_ether_addr_64bits(vlan->dev->dev_addr, addr))
P
Patrick McHardy 已提交
61 62 63 64 65
			return vlan;
	}
	return NULL;
}

66 67 68 69 70 71 72 73
static void macvlan_hash_add(struct macvlan_dev *vlan)
{
	struct macvlan_port *port = vlan->port;
	const unsigned char *addr = vlan->dev->dev_addr;

	hlist_add_head_rcu(&vlan->hlist, &port->vlan_hash[addr[5]]);
}

74
static void macvlan_hash_del(struct macvlan_dev *vlan, bool sync)
75 76
{
	hlist_del_rcu(&vlan->hlist);
77 78
	if (sync)
		synchronize_rcu();
79 80 81 82 83
}

static void macvlan_hash_change_addr(struct macvlan_dev *vlan,
					const unsigned char *addr)
{
84
	macvlan_hash_del(vlan, true);
85 86 87 88 89 90 91 92 93 94 95 96 97 98
	/* Now that we are unhashed it is safe to change the device
	 * address without confusing packet delivery.
	 */
	memcpy(vlan->dev->dev_addr, addr, ETH_ALEN);
	macvlan_hash_add(vlan);
}

static int macvlan_addr_busy(const struct macvlan_port *port,
				const unsigned char *addr)
{
	/* Test to see if the specified multicast address is
	 * currently in use by the underlying device or
	 * another macvlan.
	 */
99
	if (!compare_ether_addr_64bits(port->dev->dev_addr, addr))
100 101 102 103 104 105 106 107
		return 1;

	if (macvlan_hash_lookup(port, addr))
		return 1;

	return 0;
}

A
Arnd Bergmann 已提交
108

109 110
static int macvlan_broadcast_one(struct sk_buff *skb,
				 const struct macvlan_dev *vlan,
111
				 const struct ethhdr *eth, bool local)
A
Arnd Bergmann 已提交
112
{
113
	struct net_device *dev = vlan->dev;
A
Arnd Bergmann 已提交
114 115 116
	if (!skb)
		return NET_RX_DROP;

117
	if (local)
118
		return vlan->forward(dev, skb);
119

A
Arnd Bergmann 已提交
120 121 122 123 124 125 126
	skb->dev = dev;
	if (!compare_ether_addr_64bits(eth->h_dest,
				       dev->broadcast))
		skb->pkt_type = PACKET_BROADCAST;
	else
		skb->pkt_type = PACKET_MULTICAST;

127
	return vlan->receive(skb);
A
Arnd Bergmann 已提交
128 129
}

P
Patrick McHardy 已提交
130
static void macvlan_broadcast(struct sk_buff *skb,
131 132 133
			      const struct macvlan_port *port,
			      struct net_device *src,
			      enum macvlan_mode mode)
P
Patrick McHardy 已提交
134 135 136 137 138 139
{
	const struct ethhdr *eth = eth_hdr(skb);
	const struct macvlan_dev *vlan;
	struct hlist_node *n;
	struct sk_buff *nskb;
	unsigned int i;
A
Arnd Bergmann 已提交
140
	int err;
P
Patrick McHardy 已提交
141

142 143 144
	if (skb->protocol == htons(ETH_P_PAUSE))
		return;

P
Patrick McHardy 已提交
145 146
	for (i = 0; i < MACVLAN_HASH_SIZE; i++) {
		hlist_for_each_entry_rcu(vlan, n, &port->vlan_hash[i], hlist) {
147 148 149
			if (vlan->dev == src || !(vlan->mode & mode))
				continue;

P
Patrick McHardy 已提交
150
			nskb = skb_clone(skb, GFP_ATOMIC);
151
			err = macvlan_broadcast_one(nskb, vlan, eth,
152
					 mode == MACVLAN_MODE_BRIDGE);
A
Arnd Bergmann 已提交
153 154
			macvlan_count_rx(vlan, skb->len + ETH_HLEN,
					 err == NET_RX_SUCCESS, 1);
P
Patrick McHardy 已提交
155 156 157 158 159
		}
	}
}

/* called under rcu_read_lock() from netif_receive_skb */
160
static rx_handler_result_t macvlan_handle_frame(struct sk_buff **pskb)
P
Patrick McHardy 已提交
161
{
162
	struct macvlan_port *port;
163
	struct sk_buff *skb = *pskb;
P
Patrick McHardy 已提交
164 165
	const struct ethhdr *eth = eth_hdr(skb);
	const struct macvlan_dev *vlan;
166
	const struct macvlan_dev *src;
P
Patrick McHardy 已提交
167
	struct net_device *dev;
168 169
	unsigned int len = 0;
	int ret = NET_RX_DROP;
P
Patrick McHardy 已提交
170

171
	port = macvlan_port_get_rcu(skb->dev);
P
Patrick McHardy 已提交
172
	if (is_multicast_ether_addr(eth->h_dest)) {
173 174 175
		skb = ip_check_defrag(skb, IP_DEFRAG_MACVLAN);
		if (!skb)
			return RX_HANDLER_CONSUMED;
176
		eth = eth_hdr(skb);
177 178 179 180 181 182
		src = macvlan_hash_lookup(port, eth->h_source);
		if (!src)
			/* frame comes from an external address */
			macvlan_broadcast(skb, port, NULL,
					  MACVLAN_MODE_PRIVATE |
					  MACVLAN_MODE_VEPA    |
183
					  MACVLAN_MODE_PASSTHRU|
184 185 186 187 188 189 190 191 192 193 194 195 196
					  MACVLAN_MODE_BRIDGE);
		else if (src->mode == MACVLAN_MODE_VEPA)
			/* flood to everyone except source */
			macvlan_broadcast(skb, port, src->dev,
					  MACVLAN_MODE_VEPA |
					  MACVLAN_MODE_BRIDGE);
		else if (src->mode == MACVLAN_MODE_BRIDGE)
			/*
			 * flood only to VEPA ports, bridge ports
			 * already saw the frame on the way out.
			 */
			macvlan_broadcast(skb, port, src->dev,
					  MACVLAN_MODE_VEPA);
197 198 199 200 201 202 203
		else {
			/* forward to original port. */
			vlan = src;
			ret = macvlan_broadcast_one(skb, vlan, eth, 0);
			goto out;
		}

204
		return RX_HANDLER_PASS;
P
Patrick McHardy 已提交
205 206
	}

207 208 209 210
	if (port->passthru)
		vlan = list_first_entry(&port->vlans, struct macvlan_dev, list);
	else
		vlan = macvlan_hash_lookup(port, eth->h_dest);
P
Patrick McHardy 已提交
211
	if (vlan == NULL)
212
		return RX_HANDLER_PASS;
P
Patrick McHardy 已提交
213 214 215 216

	dev = vlan->dev;
	if (unlikely(!(dev->flags & IFF_UP))) {
		kfree_skb(skb);
217
		return RX_HANDLER_CONSUMED;
P
Patrick McHardy 已提交
218
	}
A
Arnd Bergmann 已提交
219
	len = skb->len + ETH_HLEN;
P
Patrick McHardy 已提交
220
	skb = skb_share_check(skb, GFP_ATOMIC);
A
Arnd Bergmann 已提交
221
	if (!skb)
222
		goto out;
P
Patrick McHardy 已提交
223 224 225 226

	skb->dev = dev;
	skb->pkt_type = PACKET_HOST;

227 228 229 230
	ret = vlan->receive(skb);

out:
	macvlan_count_rx(vlan, len, ret == NET_RX_SUCCESS, 0);
231
	return RX_HANDLER_CONSUMED;
P
Patrick McHardy 已提交
232 233
}

234 235 236 237 238
static int macvlan_queue_xmit(struct sk_buff *skb, struct net_device *dev)
{
	const struct macvlan_dev *vlan = netdev_priv(dev);
	const struct macvlan_port *port = vlan->port;
	const struct macvlan_dev *dest;
239
	__u8 ip_summed = skb->ip_summed;
240 241 242

	if (vlan->mode == MACVLAN_MODE_BRIDGE) {
		const struct ethhdr *eth = (void *)skb->data;
243
		skb->ip_summed = CHECKSUM_UNNECESSARY;
244 245 246 247 248 249 250 251 252

		/* send to other bridge ports directly */
		if (is_multicast_ether_addr(eth->h_dest)) {
			macvlan_broadcast(skb, port, dev, MACVLAN_MODE_BRIDGE);
			goto xmit_world;
		}

		dest = macvlan_hash_lookup(port, eth->h_dest);
		if (dest && dest->mode == MACVLAN_MODE_BRIDGE) {
253
			/* send to lowerdev first for its network taps */
254
			dev_forward_skb(vlan->lowerdev, skb);
255 256 257 258 259 260

			return NET_XMIT_SUCCESS;
		}
	}

xmit_world:
261
	skb->ip_summed = ip_summed;
262
	skb_set_dev(skb, vlan->lowerdev);
263 264 265
	return dev_queue_xmit(skb);
}

266 267
netdev_tx_t macvlan_start_xmit(struct sk_buff *skb,
			       struct net_device *dev)
P
Patrick McHardy 已提交
268 269 270
{
	unsigned int len = skb->len;
	int ret;
E
Eric Dumazet 已提交
271
	const struct macvlan_dev *vlan = netdev_priv(dev);
P
Patrick McHardy 已提交
272

273
	ret = macvlan_queue_xmit(skb, dev);
274
	if (likely(ret == NET_XMIT_SUCCESS || ret == NET_XMIT_CN)) {
E
Eric Dumazet 已提交
275
		struct macvlan_pcpu_stats *pcpu_stats;
276

E
Eric Dumazet 已提交
277 278 279 280 281 282 283 284
		pcpu_stats = this_cpu_ptr(vlan->pcpu_stats);
		u64_stats_update_begin(&pcpu_stats->syncp);
		pcpu_stats->tx_packets++;
		pcpu_stats->tx_bytes += len;
		u64_stats_update_end(&pcpu_stats->syncp);
	} else {
		this_cpu_inc(vlan->pcpu_stats->tx_dropped);
	}
285
	return ret;
P
Patrick McHardy 已提交
286
}
287
EXPORT_SYMBOL_GPL(macvlan_start_xmit);
P
Patrick McHardy 已提交
288 289

static int macvlan_hard_header(struct sk_buff *skb, struct net_device *dev,
290 291
			       unsigned short type, const void *daddr,
			       const void *saddr, unsigned len)
P
Patrick McHardy 已提交
292 293 294 295
{
	const struct macvlan_dev *vlan = netdev_priv(dev);
	struct net_device *lowerdev = vlan->lowerdev;

296 297
	return dev_hard_header(skb, lowerdev, type, daddr,
			       saddr ? : dev->dev_addr, len);
P
Patrick McHardy 已提交
298 299
}

300 301 302 303 304 305 306 307
static const struct header_ops macvlan_hard_header_ops = {
	.create  	= macvlan_hard_header,
	.rebuild	= eth_rebuild_header,
	.parse		= eth_header_parse,
	.cache		= eth_header_cache,
	.cache_update	= eth_header_cache_update,
};

P
Patrick McHardy 已提交
308 309 310 311 312 313
static int macvlan_open(struct net_device *dev)
{
	struct macvlan_dev *vlan = netdev_priv(dev);
	struct net_device *lowerdev = vlan->lowerdev;
	int err;

314
	if (vlan->port->passthru) {
315 316
		if (!(vlan->flags & MACVLAN_FLAG_NOPROMISC))
			dev_set_promiscuity(lowerdev, 1);
317 318 319
		goto hash_add;
	}

320 321 322 323
	err = -EBUSY;
	if (macvlan_addr_busy(vlan->port, dev->dev_addr))
		goto out;

324
	err = dev_uc_add(lowerdev, dev->dev_addr);
P
Patrick McHardy 已提交
325
	if (err < 0)
326 327 328 329 330 331
		goto out;
	if (dev->flags & IFF_ALLMULTI) {
		err = dev_set_allmulti(lowerdev, 1);
		if (err < 0)
			goto del_unicast;
	}
332 333

hash_add:
334
	macvlan_hash_add(vlan);
P
Patrick McHardy 已提交
335
	return 0;
336 337

del_unicast:
338
	dev_uc_del(lowerdev, dev->dev_addr);
339 340
out:
	return err;
P
Patrick McHardy 已提交
341 342 343 344 345 346 347
}

static int macvlan_stop(struct net_device *dev)
{
	struct macvlan_dev *vlan = netdev_priv(dev);
	struct net_device *lowerdev = vlan->lowerdev;

348 349 350
	dev_uc_unsync(lowerdev, dev);
	dev_mc_unsync(lowerdev, dev);

351
	if (vlan->port->passthru) {
352 353
		if (!(vlan->flags & MACVLAN_FLAG_NOPROMISC))
			dev_set_promiscuity(lowerdev, -1);
354 355 356
		goto hash_del;
	}

P
Patrick McHardy 已提交
357 358 359
	if (dev->flags & IFF_ALLMULTI)
		dev_set_allmulti(lowerdev, -1);

360
	dev_uc_del(lowerdev, dev->dev_addr);
P
Patrick McHardy 已提交
361

362
hash_del:
363
	macvlan_hash_del(vlan, !dev->dismantle);
P
Patrick McHardy 已提交
364 365 366
	return 0;
}

367 368 369 370 371 372 373 374 375 376
static int macvlan_set_mac_address(struct net_device *dev, void *p)
{
	struct macvlan_dev *vlan = netdev_priv(dev);
	struct net_device *lowerdev = vlan->lowerdev;
	struct sockaddr *addr = p;
	int err;

	if (!is_valid_ether_addr(addr->sa_data))
		return -EADDRNOTAVAIL;

377 378
	if (!(dev->flags & IFF_UP)) {
		/* Just copy in the new address */
379
		dev->addr_assign_type &= ~NET_ADDR_RANDOM;
380 381 382 383 384
		memcpy(dev->dev_addr, addr->sa_data, ETH_ALEN);
	} else {
		/* Rehash and update the device filters */
		if (macvlan_addr_busy(vlan->port, addr->sa_data))
			return -EBUSY;
385

386
		err = dev_uc_add(lowerdev, addr->sa_data);
J
Jiri Pirko 已提交
387
		if (err)
388
			return err;
389

390
		dev_uc_del(lowerdev, dev->dev_addr);
391 392 393

		macvlan_hash_change_addr(vlan, addr->sa_data);
	}
394 395 396
	return 0;
}

P
Patrick McHardy 已提交
397 398 399 400 401 402 403 404 405
static void macvlan_change_rx_flags(struct net_device *dev, int change)
{
	struct macvlan_dev *vlan = netdev_priv(dev);
	struct net_device *lowerdev = vlan->lowerdev;

	if (change & IFF_ALLMULTI)
		dev_set_allmulti(lowerdev, dev->flags & IFF_ALLMULTI ? 1 : -1);
}

406
static void macvlan_set_mac_lists(struct net_device *dev)
P
Patrick McHardy 已提交
407 408 409
{
	struct macvlan_dev *vlan = netdev_priv(dev);

410
	dev_uc_sync(vlan->lowerdev, dev);
P
Patrick McHardy 已提交
411 412 413 414 415 416 417 418 419 420 421 422 423 424 425 426 427 428 429
	dev_mc_sync(vlan->lowerdev, dev);
}

static int macvlan_change_mtu(struct net_device *dev, int new_mtu)
{
	struct macvlan_dev *vlan = netdev_priv(dev);

	if (new_mtu < 68 || vlan->lowerdev->mtu < new_mtu)
		return -EINVAL;
	dev->mtu = new_mtu;
	return 0;
}

/*
 * macvlan network devices have devices nesting below it and are a special
 * "super class" of normal network devices; split their locks off into a
 * separate class since they always nest.
 */
static struct lock_class_key macvlan_netdev_xmit_lock_key;
430
static struct lock_class_key macvlan_netdev_addr_lock_key;
P
Patrick McHardy 已提交
431 432 433 434

#define MACVLAN_FEATURES \
	(NETIF_F_SG | NETIF_F_ALL_CSUM | NETIF_F_HIGHDMA | NETIF_F_FRAGLIST | \
	 NETIF_F_GSO | NETIF_F_TSO | NETIF_F_UFO | NETIF_F_GSO_ROBUST | \
435 436
	 NETIF_F_TSO_ECN | NETIF_F_TSO6 | NETIF_F_GRO | NETIF_F_RXCSUM | \
	 NETIF_F_HW_VLAN_FILTER)
P
Patrick McHardy 已提交
437 438 439 440

#define MACVLAN_STATE_MASK \
	((1<<__LINK_STATE_NOCARRIER) | (1<<__LINK_STATE_DORMANT))

441 442 443
static void macvlan_set_lockdep_class_one(struct net_device *dev,
					  struct netdev_queue *txq,
					  void *_unused)
444 445 446 447 448 449 450
{
	lockdep_set_class(&txq->_xmit_lock,
			  &macvlan_netdev_xmit_lock_key);
}

static void macvlan_set_lockdep_class(struct net_device *dev)
{
451 452
	lockdep_set_class(&dev->addr_list_lock,
			  &macvlan_netdev_addr_lock_key);
453
	netdev_for_each_tx_queue(dev, macvlan_set_lockdep_class_one, NULL);
454 455
}

P
Patrick McHardy 已提交
456 457 458 459 460 461 462 463
static int macvlan_init(struct net_device *dev)
{
	struct macvlan_dev *vlan = netdev_priv(dev);
	const struct net_device *lowerdev = vlan->lowerdev;

	dev->state		= (dev->state & ~MACVLAN_STATE_MASK) |
				  (lowerdev->state & MACVLAN_STATE_MASK);
	dev->features 		= lowerdev->features & MACVLAN_FEATURES;
E
Eric Dumazet 已提交
464
	dev->features		|= NETIF_F_LLTX;
465
	dev->gso_max_size	= lowerdev->gso_max_size;
P
Patrick McHardy 已提交
466
	dev->iflink		= lowerdev->ifindex;
467
	dev->hard_header_len	= lowerdev->hard_header_len;
P
Patrick McHardy 已提交
468

469 470
	macvlan_set_lockdep_class(dev);

E
Eric Dumazet 已提交
471 472
	vlan->pcpu_stats = alloc_percpu(struct macvlan_pcpu_stats);
	if (!vlan->pcpu_stats)
473 474
		return -ENOMEM;

P
Patrick McHardy 已提交
475 476 477
	return 0;
}

478 479 480
static void macvlan_uninit(struct net_device *dev)
{
	struct macvlan_dev *vlan = netdev_priv(dev);
481
	struct macvlan_port *port = vlan->port;
482

E
Eric Dumazet 已提交
483
	free_percpu(vlan->pcpu_stats);
484 485 486 487

	port->count -= 1;
	if (!port->count)
		macvlan_port_destroy(port->dev);
488 489
}

490 491
static struct rtnl_link_stats64 *macvlan_dev_get_stats64(struct net_device *dev,
							 struct rtnl_link_stats64 *stats)
492 493 494
{
	struct macvlan_dev *vlan = netdev_priv(dev);

E
Eric Dumazet 已提交
495 496 497 498
	if (vlan->pcpu_stats) {
		struct macvlan_pcpu_stats *p;
		u64 rx_packets, rx_bytes, rx_multicast, tx_packets, tx_bytes;
		u32 rx_errors = 0, tx_dropped = 0;
E
Eric Dumazet 已提交
499
		unsigned int start;
500 501 502
		int i;

		for_each_possible_cpu(i) {
E
Eric Dumazet 已提交
503
			p = per_cpu_ptr(vlan->pcpu_stats, i);
E
Eric Dumazet 已提交
504 505 506 507 508
			do {
				start = u64_stats_fetch_begin_bh(&p->syncp);
				rx_packets	= p->rx_packets;
				rx_bytes	= p->rx_bytes;
				rx_multicast	= p->rx_multicast;
E
Eric Dumazet 已提交
509 510
				tx_packets	= p->tx_packets;
				tx_bytes	= p->tx_bytes;
E
Eric Dumazet 已提交
511
			} while (u64_stats_fetch_retry_bh(&p->syncp, start));
E
Eric Dumazet 已提交
512 513 514 515 516 517 518 519 520 521 522

			stats->rx_packets	+= rx_packets;
			stats->rx_bytes		+= rx_bytes;
			stats->multicast	+= rx_multicast;
			stats->tx_packets	+= tx_packets;
			stats->tx_bytes		+= tx_bytes;
			/* rx_errors & tx_dropped are u32, updated
			 * without syncp protection.
			 */
			rx_errors	+= p->rx_errors;
			tx_dropped	+= p->tx_dropped;
523
		}
E
Eric Dumazet 已提交
524 525 526
		stats->rx_errors	= rx_errors;
		stats->rx_dropped	= rx_errors;
		stats->tx_dropped	= tx_dropped;
527 528 529 530
	}
	return stats;
}

531
static int macvlan_vlan_rx_add_vid(struct net_device *dev,
532 533 534 535 536
				    unsigned short vid)
{
	struct macvlan_dev *vlan = netdev_priv(dev);
	struct net_device *lowerdev = vlan->lowerdev;

537
	return vlan_vid_add(lowerdev, vid);
538 539
}

540
static int macvlan_vlan_rx_kill_vid(struct net_device *dev,
541 542 543 544 545
				     unsigned short vid)
{
	struct macvlan_dev *vlan = netdev_priv(dev);
	struct net_device *lowerdev = vlan->lowerdev;

546
	vlan_vid_del(lowerdev, vid);
547
	return 0;
548 549
}

550 551 552 553 554 555 556 557 558 559 560 561 562 563 564 565 566 567 568 569 570 571 572 573 574 575 576 577 578 579 580 581 582 583 584 585 586
static int macvlan_fdb_add(struct ndmsg *ndm,
			   struct net_device *dev,
			   unsigned char *addr,
			   u16 flags)
{
	struct macvlan_dev *vlan = netdev_priv(dev);
	int err = -EINVAL;

	if (!vlan->port->passthru)
		return -EOPNOTSUPP;

	if (is_unicast_ether_addr(addr))
		err = dev_uc_add_excl(dev, addr);
	else if (is_multicast_ether_addr(addr))
		err = dev_mc_add_excl(dev, addr);

	return err;
}

static int macvlan_fdb_del(struct ndmsg *ndm,
			   struct net_device *dev,
			   unsigned char *addr)
{
	struct macvlan_dev *vlan = netdev_priv(dev);
	int err = -EINVAL;

	if (!vlan->port->passthru)
		return -EOPNOTSUPP;

	if (is_unicast_ether_addr(addr))
		err = dev_uc_del(dev, addr);
	else if (is_multicast_ether_addr(addr))
		err = dev_mc_del(dev, addr);

	return err;
}

P
Patrick McHardy 已提交
587 588 589 590 591 592 593
static void macvlan_ethtool_get_drvinfo(struct net_device *dev,
					struct ethtool_drvinfo *drvinfo)
{
	snprintf(drvinfo->driver, 32, "macvlan");
	snprintf(drvinfo->version, 32, "0.1");
}

594 595 596 597
static int macvlan_ethtool_get_settings(struct net_device *dev,
					struct ethtool_cmd *cmd)
{
	const struct macvlan_dev *vlan = netdev_priv(dev);
598 599

	return __ethtool_get_settings(vlan->lowerdev, cmd);
600 601
}

P
Patrick McHardy 已提交
602 603
static const struct ethtool_ops macvlan_ethtool_ops = {
	.get_link		= ethtool_op_get_link,
604
	.get_settings		= macvlan_ethtool_get_settings,
P
Patrick McHardy 已提交
605 606 607
	.get_drvinfo		= macvlan_ethtool_get_drvinfo,
};

608 609
static const struct net_device_ops macvlan_netdev_ops = {
	.ndo_init		= macvlan_init,
610
	.ndo_uninit		= macvlan_uninit,
611 612
	.ndo_open		= macvlan_open,
	.ndo_stop		= macvlan_stop,
613
	.ndo_start_xmit		= macvlan_start_xmit,
614 615 616
	.ndo_change_mtu		= macvlan_change_mtu,
	.ndo_change_rx_flags	= macvlan_change_rx_flags,
	.ndo_set_mac_address	= macvlan_set_mac_address,
617
	.ndo_set_rx_mode	= macvlan_set_mac_lists,
E
Eric Dumazet 已提交
618
	.ndo_get_stats64	= macvlan_dev_get_stats64,
619
	.ndo_validate_addr	= eth_validate_addr,
620 621
	.ndo_vlan_rx_add_vid	= macvlan_vlan_rx_add_vid,
	.ndo_vlan_rx_kill_vid	= macvlan_vlan_rx_kill_vid,
622 623 624
	.ndo_fdb_add		= macvlan_fdb_add,
	.ndo_fdb_del		= macvlan_fdb_del,
	.ndo_fdb_dump		= ndo_dflt_fdb_dump,
625 626
};

H
Herbert Xu 已提交
627
void macvlan_common_setup(struct net_device *dev)
P
Patrick McHardy 已提交
628 629 630
{
	ether_setup(dev);

631
	dev->priv_flags	       &= ~(IFF_XMIT_DST_RELEASE | IFF_TX_SKB_SHARING);
632
	dev->netdev_ops		= &macvlan_netdev_ops;
P
Patrick McHardy 已提交
633
	dev->destructor		= free_netdev;
634
	dev->header_ops		= &macvlan_hard_header_ops,
P
Patrick McHardy 已提交
635
	dev->ethtool_ops	= &macvlan_ethtool_ops;
H
Herbert Xu 已提交
636 637 638 639 640 641
}
EXPORT_SYMBOL_GPL(macvlan_common_setup);

static void macvlan_setup(struct net_device *dev)
{
	macvlan_common_setup(dev);
P
Patrick McHardy 已提交
642 643 644 645 646 647 648
	dev->tx_queue_len	= 0;
}

static int macvlan_port_create(struct net_device *dev)
{
	struct macvlan_port *port;
	unsigned int i;
649
	int err;
P
Patrick McHardy 已提交
650 651 652 653 654 655 656 657

	if (dev->type != ARPHRD_ETHER || dev->flags & IFF_LOOPBACK)
		return -EINVAL;

	port = kzalloc(sizeof(*port), GFP_KERNEL);
	if (port == NULL)
		return -ENOMEM;

658
	port->passthru = false;
P
Patrick McHardy 已提交
659 660 661 662
	port->dev = dev;
	INIT_LIST_HEAD(&port->vlans);
	for (i = 0; i < MACVLAN_HASH_SIZE; i++)
		INIT_HLIST_HEAD(&port->vlan_hash[i]);
663

664 665
	err = netdev_rx_handler_register(dev, macvlan_handle_frame, port);
	if (err)
666
		kfree(port);
667 668
	else
		dev->priv_flags |= IFF_MACVLAN_PORT;
669
	return err;
P
Patrick McHardy 已提交
670 671 672 673
}

static void macvlan_port_destroy(struct net_device *dev)
{
674
	struct macvlan_port *port = macvlan_port_get(dev);
P
Patrick McHardy 已提交
675

676
	dev->priv_flags &= ~IFF_MACVLAN_PORT;
677
	netdev_rx_handler_unregister(dev);
678
	kfree_rcu(port, rcu);
P
Patrick McHardy 已提交
679 680 681 682 683 684 685 686 687 688
}

static int macvlan_validate(struct nlattr *tb[], struct nlattr *data[])
{
	if (tb[IFLA_ADDRESS]) {
		if (nla_len(tb[IFLA_ADDRESS]) != ETH_ALEN)
			return -EINVAL;
		if (!is_valid_ether_addr(nla_data(tb[IFLA_ADDRESS])))
			return -EADDRNOTAVAIL;
	}
689 690 691 692 693 694

	if (data && data[IFLA_MACVLAN_MODE]) {
		switch (nla_get_u32(data[IFLA_MACVLAN_MODE])) {
		case MACVLAN_MODE_PRIVATE:
		case MACVLAN_MODE_VEPA:
		case MACVLAN_MODE_BRIDGE:
695
		case MACVLAN_MODE_PASSTHRU:
696 697 698 699 700
			break;
		default:
			return -EINVAL;
		}
	}
P
Patrick McHardy 已提交
701 702 703
	return 0;
}

704 705 706 707 708
int macvlan_common_newlink(struct net *src_net, struct net_device *dev,
			   struct nlattr *tb[], struct nlattr *data[],
			   int (*receive)(struct sk_buff *skb),
			   int (*forward)(struct net_device *dev,
					  struct sk_buff *skb))
P
Patrick McHardy 已提交
709 710 711 712 713 714 715 716 717
{
	struct macvlan_dev *vlan = netdev_priv(dev);
	struct macvlan_port *port;
	struct net_device *lowerdev;
	int err;

	if (!tb[IFLA_LINK])
		return -EINVAL;

718
	lowerdev = __dev_get_by_index(src_net, nla_get_u32(tb[IFLA_LINK]));
P
Patrick McHardy 已提交
719 720 721
	if (lowerdev == NULL)
		return -ENODEV;

722 723
	/* When creating macvlans on top of other macvlans - use
	 * the real device as the lowerdev.
724
	 */
725 726 727 728
	if (lowerdev->rtnl_link_ops == dev->rtnl_link_ops) {
		struct macvlan_dev *lowervlan = netdev_priv(lowerdev);
		lowerdev = lowervlan->lowerdev;
	}
729

P
Patrick McHardy 已提交
730 731 732 733 734 735
	if (!tb[IFLA_MTU])
		dev->mtu = lowerdev->mtu;
	else if (dev->mtu > lowerdev->mtu)
		return -EINVAL;

	if (!tb[IFLA_ADDRESS])
736
		eth_hw_addr_random(dev);
P
Patrick McHardy 已提交
737

738
	if (!macvlan_port_exists(lowerdev)) {
P
Patrick McHardy 已提交
739 740 741 742
		err = macvlan_port_create(lowerdev);
		if (err < 0)
			return err;
	}
743
	port = macvlan_port_get(lowerdev);
P
Patrick McHardy 已提交
744

745 746 747 748
	/* Only 1 macvlan device can be created in passthru mode */
	if (port->passthru)
		return -EINVAL;

P
Patrick McHardy 已提交
749 750 751
	vlan->lowerdev = lowerdev;
	vlan->dev      = dev;
	vlan->port     = port;
752 753
	vlan->receive  = receive;
	vlan->forward  = forward;
P
Patrick McHardy 已提交
754

755 756 757 758
	vlan->mode     = MACVLAN_MODE_VEPA;
	if (data && data[IFLA_MACVLAN_MODE])
		vlan->mode = nla_get_u32(data[IFLA_MACVLAN_MODE]);

759 760 761
	if (data && data[IFLA_MACVLAN_FLAGS])
		vlan->flags = nla_get_u16(data[IFLA_MACVLAN_FLAGS]);

762
	if (vlan->mode == MACVLAN_MODE_PASSTHRU) {
763
		if (port->count)
764 765 766 767 768
			return -EINVAL;
		port->passthru = true;
		memcpy(dev->dev_addr, lowerdev->dev_addr, ETH_ALEN);
	}

769
	port->count += 1;
P
Patrick McHardy 已提交
770 771
	err = register_netdevice(dev);
	if (err < 0)
772
		goto destroy_port;
P
Patrick McHardy 已提交
773 774

	list_add_tail(&vlan->list, &port->vlans);
775
	netif_stacked_transfer_operstate(lowerdev, dev);
776

P
Patrick McHardy 已提交
777
	return 0;
778 779

destroy_port:
780 781
	port->count -= 1;
	if (!port->count)
782 783 784
		macvlan_port_destroy(lowerdev);

	return err;
P
Patrick McHardy 已提交
785
}
786
EXPORT_SYMBOL_GPL(macvlan_common_newlink);
P
Patrick McHardy 已提交
787

788 789 790 791 792 793 794 795 796
static int macvlan_newlink(struct net *src_net, struct net_device *dev,
			   struct nlattr *tb[], struct nlattr *data[])
{
	return macvlan_common_newlink(src_net, dev, tb, data,
				      netif_rx,
				      dev_forward_skb);
}

void macvlan_dellink(struct net_device *dev, struct list_head *head)
P
Patrick McHardy 已提交
797 798 799 800
{
	struct macvlan_dev *vlan = netdev_priv(dev);

	list_del(&vlan->list);
801
	unregister_netdevice_queue(dev, head);
P
Patrick McHardy 已提交
802
}
803
EXPORT_SYMBOL_GPL(macvlan_dellink);
P
Patrick McHardy 已提交
804

805 806 807 808 809 810
static int macvlan_changelink(struct net_device *dev,
		struct nlattr *tb[], struct nlattr *data[])
{
	struct macvlan_dev *vlan = netdev_priv(dev);
	if (data && data[IFLA_MACVLAN_MODE])
		vlan->mode = nla_get_u32(data[IFLA_MACVLAN_MODE]);
811 812 813 814 815 816 817 818 819 820
	if (data && data[IFLA_MACVLAN_FLAGS]) {
		__u16 flags = nla_get_u16(data[IFLA_MACVLAN_FLAGS]);
		bool promisc = (flags ^ vlan->flags) & MACVLAN_FLAG_NOPROMISC;

		if (promisc && (flags & MACVLAN_FLAG_NOPROMISC))
			dev_set_promiscuity(vlan->lowerdev, -1);
		else if (promisc && !(flags & MACVLAN_FLAG_NOPROMISC))
			dev_set_promiscuity(vlan->lowerdev, 1);
		vlan->flags = flags;
	}
821 822 823 824 825 826 827 828 829 830 831 832 833
	return 0;
}

static size_t macvlan_get_size(const struct net_device *dev)
{
	return nla_total_size(4);
}

static int macvlan_fill_info(struct sk_buff *skb,
				const struct net_device *dev)
{
	struct macvlan_dev *vlan = netdev_priv(dev);

834 835
	if (nla_put_u32(skb, IFLA_MACVLAN_MODE, vlan->mode))
		goto nla_put_failure;
836 837
	if (nla_put_u16(skb, IFLA_MACVLAN_FLAGS, vlan->flags))
		goto nla_put_failure;
838 839 840 841 842 843 844
	return 0;

nla_put_failure:
	return -EMSGSIZE;
}

static const struct nla_policy macvlan_policy[IFLA_MACVLAN_MAX + 1] = {
845 846
	[IFLA_MACVLAN_MODE]  = { .type = NLA_U32 },
	[IFLA_MACVLAN_FLAGS] = { .type = NLA_U16 },
847 848
};

849 850 851 852 853 854 855 856 857 858 859 860 861 862 863 864
int macvlan_link_register(struct rtnl_link_ops *ops)
{
	/* common fields */
	ops->priv_size		= sizeof(struct macvlan_dev);
	ops->validate		= macvlan_validate;
	ops->maxtype		= IFLA_MACVLAN_MAX;
	ops->policy		= macvlan_policy;
	ops->changelink		= macvlan_changelink;
	ops->get_size		= macvlan_get_size;
	ops->fill_info		= macvlan_fill_info;

	return rtnl_link_register(ops);
};
EXPORT_SYMBOL_GPL(macvlan_link_register);

static struct rtnl_link_ops macvlan_link_ops = {
P
Patrick McHardy 已提交
865
	.kind		= "macvlan",
H
Herbert Xu 已提交
866
	.setup		= macvlan_setup,
P
Patrick McHardy 已提交
867 868 869 870 871 872 873 874 875 876
	.newlink	= macvlan_newlink,
	.dellink	= macvlan_dellink,
};

static int macvlan_device_event(struct notifier_block *unused,
				unsigned long event, void *ptr)
{
	struct net_device *dev = ptr;
	struct macvlan_dev *vlan, *next;
	struct macvlan_port *port;
877
	LIST_HEAD(list_kill);
P
Patrick McHardy 已提交
878

879
	if (!macvlan_port_exists(dev))
P
Patrick McHardy 已提交
880 881
		return NOTIFY_DONE;

882 883
	port = macvlan_port_get(dev);

P
Patrick McHardy 已提交
884 885 886
	switch (event) {
	case NETDEV_CHANGE:
		list_for_each_entry(vlan, &port->vlans, list)
887 888
			netif_stacked_transfer_operstate(vlan->lowerdev,
							 vlan->dev);
P
Patrick McHardy 已提交
889 890 891 892
		break;
	case NETDEV_FEAT_CHANGE:
		list_for_each_entry(vlan, &port->vlans, list) {
			vlan->dev->features = dev->features & MACVLAN_FEATURES;
893
			vlan->dev->gso_max_size = dev->gso_max_size;
P
Patrick McHardy 已提交
894 895 896 897
			netdev_features_change(vlan->dev);
		}
		break;
	case NETDEV_UNREGISTER:
898 899 900 901
		/* twiddle thumbs on netns device moves */
		if (dev->reg_state != NETREG_UNREGISTERING)
			break;

P
Patrick McHardy 已提交
902
		list_for_each_entry_safe(vlan, next, &port->vlans, list)
903 904 905
			vlan->dev->rtnl_link_ops->dellink(vlan->dev, &list_kill);
		unregister_netdevice_many(&list_kill);
		list_del(&list_kill);
P
Patrick McHardy 已提交
906
		break;
907 908 909
	case NETDEV_PRE_TYPE_CHANGE:
		/* Forbid underlaying device to change its type. */
		return NOTIFY_BAD;
P
Patrick McHardy 已提交
910 911 912 913 914 915 916 917 918 919 920 921 922 923
	}
	return NOTIFY_DONE;
}

static struct notifier_block macvlan_notifier_block __read_mostly = {
	.notifier_call	= macvlan_device_event,
};

static int __init macvlan_init_module(void)
{
	int err;

	register_netdevice_notifier(&macvlan_notifier_block);

924
	err = macvlan_link_register(&macvlan_link_ops);
P
Patrick McHardy 已提交
925 926 927 928 929 930 931 932 933 934 935 936 937 938 939 940 941 942 943 944 945
	if (err < 0)
		goto err1;
	return 0;
err1:
	unregister_netdevice_notifier(&macvlan_notifier_block);
	return err;
}

static void __exit macvlan_cleanup_module(void)
{
	rtnl_link_unregister(&macvlan_link_ops);
	unregister_netdevice_notifier(&macvlan_notifier_block);
}

module_init(macvlan_init_module);
module_exit(macvlan_cleanup_module);

MODULE_LICENSE("GPL");
MODULE_AUTHOR("Patrick McHardy <kaber@trash.net>");
MODULE_DESCRIPTION("Driver for MAC address based VLANs");
MODULE_ALIAS_RTNL_LINK("macvlan");