fib_semantics.c 41.9 KB
Newer Older
L
Linus Torvalds 已提交
1 2 3 4 5 6 7 8 9 10 11 12 13 14 15
/*
 * INET		An implementation of the TCP/IP protocol suite for the LINUX
 *		operating system.  INET is implemented using the  BSD Socket
 *		interface as the means of communication with the user level.
 *
 *		IPv4 Forwarding Information Base: semantics.
 *
 * Authors:	Alexey Kuznetsov, <kuznet@ms2.inr.ac.ru>
 *
 *		This program is free software; you can redistribute it and/or
 *		modify it under the terms of the GNU General Public License
 *		as published by the Free Software Foundation; either version
 *		2 of the License, or (at your option) any later version.
 */

16
#include <linux/uaccess.h>
L
Linus Torvalds 已提交
17 18 19 20 21 22 23 24 25 26 27
#include <linux/bitops.h>
#include <linux/types.h>
#include <linux/kernel.h>
#include <linux/jiffies.h>
#include <linux/mm.h>
#include <linux/string.h>
#include <linux/socket.h>
#include <linux/sockios.h>
#include <linux/errno.h>
#include <linux/in.h>
#include <linux/inet.h>
28
#include <linux/inetdevice.h>
L
Linus Torvalds 已提交
29 30 31 32 33
#include <linux/netdevice.h>
#include <linux/if_arp.h>
#include <linux/proc_fs.h>
#include <linux/skbuff.h>
#include <linux/init.h>
34
#include <linux/slab.h>
35
#include <linux/netlink.h>
L
Linus Torvalds 已提交
36

37
#include <net/arp.h>
L
Linus Torvalds 已提交
38 39 40 41 42 43
#include <net/ip.h>
#include <net/protocol.h>
#include <net/route.h>
#include <net/tcp.h>
#include <net/sock.h>
#include <net/ip_fib.h>
44
#include <net/netlink.h>
45
#include <net/nexthop.h>
46
#include <net/lwtunnel.h>
47
#include <net/fib_notifier.h>
L
Linus Torvalds 已提交
48 49 50

#include "fib_lookup.h"

51
static DEFINE_SPINLOCK(fib_info_lock);
L
Linus Torvalds 已提交
52 53
static struct hlist_head *fib_info_hash;
static struct hlist_head *fib_info_laddrhash;
54
static unsigned int fib_info_hash_size;
L
Linus Torvalds 已提交
55 56 57 58 59 60 61 62
static unsigned int fib_info_cnt;

#define DEVINDEX_HASHBITS 8
#define DEVINDEX_HASHSIZE (1U << DEVINDEX_HASHBITS)
static struct hlist_head fib_info_devhash[DEVINDEX_HASHSIZE];

#ifdef CONFIG_IP_ROUTE_MULTIPATH

E
Eric Dumazet 已提交
63 64 65 66 67 68 69 70 71 72 73
#define for_nexthops(fi) {						\
	int nhsel; const struct fib_nh *nh;				\
	for (nhsel = 0, nh = (fi)->fib_nh;				\
	     nhsel < (fi)->fib_nhs;					\
	     nh++, nhsel++)

#define change_nexthops(fi) {						\
	int nhsel; struct fib_nh *nexthop_nh;				\
	for (nhsel = 0,	nexthop_nh = (struct fib_nh *)((fi)->fib_nh);	\
	     nhsel < (fi)->fib_nhs;					\
	     nexthop_nh++, nhsel++)
L
Linus Torvalds 已提交
74 75 76 77 78

#else /* CONFIG_IP_ROUTE_MULTIPATH */

/* Hope, that gcc will optimize it to get rid of dummy loop */

E
Eric Dumazet 已提交
79 80 81
#define for_nexthops(fi) {						\
	int nhsel; const struct fib_nh *nh = (fi)->fib_nh;		\
	for (nhsel = 0; nhsel < 1; nhsel++)
L
Linus Torvalds 已提交
82

E
Eric Dumazet 已提交
83 84 85 86
#define change_nexthops(fi) {						\
	int nhsel;							\
	struct fib_nh *nexthop_nh = (struct fib_nh *)((fi)->fib_nh);	\
	for (nhsel = 0; nhsel < 1; nhsel++)
L
Linus Torvalds 已提交
87 88 89 90 91 92

#endif /* CONFIG_IP_ROUTE_MULTIPATH */

#define endfor_nexthops(fi) }


93
const struct fib_prop fib_props[RTN_MAX + 1] = {
E
Eric Dumazet 已提交
94
	[RTN_UNSPEC] = {
L
Linus Torvalds 已提交
95 96
		.error	= 0,
		.scope	= RT_SCOPE_NOWHERE,
E
Eric Dumazet 已提交
97 98
	},
	[RTN_UNICAST] = {
L
Linus Torvalds 已提交
99 100
		.error	= 0,
		.scope	= RT_SCOPE_UNIVERSE,
E
Eric Dumazet 已提交
101 102
	},
	[RTN_LOCAL] = {
L
Linus Torvalds 已提交
103 104
		.error	= 0,
		.scope	= RT_SCOPE_HOST,
E
Eric Dumazet 已提交
105 106
	},
	[RTN_BROADCAST] = {
L
Linus Torvalds 已提交
107 108
		.error	= 0,
		.scope	= RT_SCOPE_LINK,
E
Eric Dumazet 已提交
109 110
	},
	[RTN_ANYCAST] = {
L
Linus Torvalds 已提交
111 112
		.error	= 0,
		.scope	= RT_SCOPE_LINK,
E
Eric Dumazet 已提交
113 114
	},
	[RTN_MULTICAST] = {
L
Linus Torvalds 已提交
115 116
		.error	= 0,
		.scope	= RT_SCOPE_UNIVERSE,
E
Eric Dumazet 已提交
117 118
	},
	[RTN_BLACKHOLE] = {
L
Linus Torvalds 已提交
119 120
		.error	= -EINVAL,
		.scope	= RT_SCOPE_UNIVERSE,
E
Eric Dumazet 已提交
121 122
	},
	[RTN_UNREACHABLE] = {
L
Linus Torvalds 已提交
123 124
		.error	= -EHOSTUNREACH,
		.scope	= RT_SCOPE_UNIVERSE,
E
Eric Dumazet 已提交
125 126
	},
	[RTN_PROHIBIT] = {
L
Linus Torvalds 已提交
127 128
		.error	= -EACCES,
		.scope	= RT_SCOPE_UNIVERSE,
E
Eric Dumazet 已提交
129 130
	},
	[RTN_THROW] = {
L
Linus Torvalds 已提交
131 132
		.error	= -EAGAIN,
		.scope	= RT_SCOPE_UNIVERSE,
E
Eric Dumazet 已提交
133 134
	},
	[RTN_NAT] = {
L
Linus Torvalds 已提交
135 136
		.error	= -EINVAL,
		.scope	= RT_SCOPE_NOWHERE,
E
Eric Dumazet 已提交
137 138
	},
	[RTN_XRESOLVE] = {
L
Linus Torvalds 已提交
139 140
		.error	= -EINVAL,
		.scope	= RT_SCOPE_NOWHERE,
E
Eric Dumazet 已提交
141
	},
L
Linus Torvalds 已提交
142 143
};

144 145 146 147 148 149 150 151 152 153 154 155
static void rt_fibinfo_free(struct rtable __rcu **rtp)
{
	struct rtable *rt = rcu_dereference_protected(*rtp, 1);

	if (!rt)
		return;

	/* Not even needed : RCU_INIT_POINTER(*rtp, NULL);
	 * because we waited an RCU grace period before calling
	 * free_fib_info_rcu()
	 */

W
Wei Wang 已提交
156
	dst_dev_put(&rt->dst);
157
	dst_release_immediate(&rt->dst);
158 159
}

160 161
static void free_nh_exceptions(struct fib_nh *nh)
{
162
	struct fnhe_hash_bucket *hash;
163 164
	int i;

165 166 167
	hash = rcu_dereference_protected(nh->nh_exceptions, 1);
	if (!hash)
		return;
168 169 170
	for (i = 0; i < FNHE_HASH_SIZE; i++) {
		struct fib_nh_exception *fnhe;

E
Eric Dumazet 已提交
171
		fnhe = rcu_dereference_protected(hash[i].chain, 1);
172 173
		while (fnhe) {
			struct fib_nh_exception *next;
S
Stephen Hemminger 已提交
174

E
Eric Dumazet 已提交
175
			next = rcu_dereference_protected(fnhe->fnhe_next, 1);
176

177 178
			rt_fibinfo_free(&fnhe->fnhe_rth_input);
			rt_fibinfo_free(&fnhe->fnhe_rth_output);
179

180 181 182 183 184 185 186 187
			kfree(fnhe);

			fnhe = next;
		}
	}
	kfree(hash);
}

188
static void rt_fibinfo_free_cpus(struct rtable __rcu * __percpu *rtp)
E
Eric Dumazet 已提交
189 190 191 192 193 194 195 196 197 198
{
	int cpu;

	if (!rtp)
		return;

	for_each_possible_cpu(cpu) {
		struct rtable *rt;

		rt = rcu_dereference_protected(*per_cpu_ptr(rtp, cpu), 1);
199
		if (rt) {
W
Wei Wang 已提交
200
			dst_dev_put(&rt->dst);
201
			dst_release_immediate(&rt->dst);
202
		}
E
Eric Dumazet 已提交
203 204 205 206
	}
	free_percpu(rtp);
}

L
Linus Torvalds 已提交
207
/* Release a nexthop info record */
208 209 210 211
static void free_fib_info_rcu(struct rcu_head *head)
{
	struct fib_info *fi = container_of(head, struct fib_info, rcu);

212 213 214
	change_nexthops(fi) {
		if (nexthop_nh->nh_dev)
			dev_put(nexthop_nh->nh_dev);
215
		lwtstate_put(nexthop_nh->nh_lwtstate);
216
		free_nh_exceptions(nexthop_nh);
217 218
		rt_fibinfo_free_cpus(nexthop_nh->nh_pcpu_rth_output);
		rt_fibinfo_free(&nexthop_nh->nh_rth_input);
219 220
	} endfor_nexthops(fi);

221 222
	ip_fib_metrics_put(fi->fib_metrics);

223 224
	kfree(fi);
}
L
Linus Torvalds 已提交
225 226 227 228

void free_fib_info(struct fib_info *fi)
{
	if (fi->fib_dead == 0) {
J
Joe Perches 已提交
229
		pr_warn("Freeing alive fib_info %p\n", fi);
L
Linus Torvalds 已提交
230 231 232
		return;
	}
	fib_info_cnt--;
233 234 235
#ifdef CONFIG_IP_ROUTE_CLASSID
	change_nexthops(fi) {
		if (nexthop_nh->nh_tclassid)
236
			fi->fib_net->ipv4.fib_num_tclassid_users--;
237 238
	} endfor_nexthops(fi);
#endif
239
	call_rcu(&fi->rcu, free_fib_info_rcu);
L
Linus Torvalds 已提交
240
}
I
Ido Schimmel 已提交
241
EXPORT_SYMBOL_GPL(free_fib_info);
L
Linus Torvalds 已提交
242 243 244

void fib_release_info(struct fib_info *fi)
{
245
	spin_lock_bh(&fib_info_lock);
L
Linus Torvalds 已提交
246 247 248 249 250
	if (fi && --fi->fib_treeref == 0) {
		hlist_del(&fi->fib_hash);
		if (fi->fib_prefsrc)
			hlist_del(&fi->fib_lhash);
		change_nexthops(fi) {
251
			if (!nexthop_nh->nh_dev)
L
Linus Torvalds 已提交
252
				continue;
253
			hlist_del(&nexthop_nh->nh_hash);
L
Linus Torvalds 已提交
254 255 256 257
		} endfor_nexthops(fi)
		fi->fib_dead = 1;
		fib_info_put(fi);
	}
258
	spin_unlock_bh(&fib_info_lock);
L
Linus Torvalds 已提交
259 260
}

E
Eric Dumazet 已提交
261
static inline int nh_comp(const struct fib_info *fi, const struct fib_info *ofi)
L
Linus Torvalds 已提交
262 263 264 265 266 267 268 269 270 271
{
	const struct fib_nh *onh = ofi->fib_nh;

	for_nexthops(fi) {
		if (nh->nh_oif != onh->nh_oif ||
		    nh->nh_gw  != onh->nh_gw ||
		    nh->nh_scope != onh->nh_scope ||
#ifdef CONFIG_IP_ROUTE_MULTIPATH
		    nh->nh_weight != onh->nh_weight ||
#endif
272
#ifdef CONFIG_IP_ROUTE_CLASSID
L
Linus Torvalds 已提交
273 274
		    nh->nh_tclassid != onh->nh_tclassid ||
#endif
275
		    lwtunnel_cmp_encap(nh->nh_lwtstate, onh->nh_lwtstate) ||
276
		    ((nh->nh_flags ^ onh->nh_flags) & ~RTNH_COMPARE_MASK))
L
Linus Torvalds 已提交
277 278 279 280 281 282
			return -1;
		onh++;
	} endfor_nexthops(fi);
	return 0;
}

283 284 285 286 287 288 289 290 291
static inline unsigned int fib_devindex_hashfn(unsigned int val)
{
	unsigned int mask = DEVINDEX_HASHSIZE - 1;

	return (val ^
		(val >> DEVINDEX_HASHBITS) ^
		(val >> (DEVINDEX_HASHBITS * 2))) & mask;
}

L
Linus Torvalds 已提交
292 293
static inline unsigned int fib_info_hashfn(const struct fib_info *fi)
{
294
	unsigned int mask = (fib_info_hash_size - 1);
L
Linus Torvalds 已提交
295 296
	unsigned int val = fi->fib_nhs;

297
	val ^= (fi->fib_protocol << 8) | fi->fib_scope;
A
Al Viro 已提交
298
	val ^= (__force u32)fi->fib_prefsrc;
L
Linus Torvalds 已提交
299
	val ^= fi->fib_priority;
300 301 302
	for_nexthops(fi) {
		val ^= fib_devindex_hashfn(nh->nh_oif);
	} endfor_nexthops(fi)
L
Linus Torvalds 已提交
303 304 305 306 307 308 309 310 311 312 313 314 315

	return (val ^ (val >> 7) ^ (val >> 12)) & mask;
}

static struct fib_info *fib_find_info(const struct fib_info *nfi)
{
	struct hlist_head *head;
	struct fib_info *fi;
	unsigned int hash;

	hash = fib_info_hashfn(nfi);
	head = &fib_info_hash[hash];

316
	hlist_for_each_entry(fi, head, fib_hash) {
O
Octavian Purdila 已提交
317
		if (!net_eq(fi->fib_net, nfi->fib_net))
318
			continue;
L
Linus Torvalds 已提交
319 320 321
		if (fi->fib_nhs != nfi->fib_nhs)
			continue;
		if (nfi->fib_protocol == fi->fib_protocol &&
322
		    nfi->fib_scope == fi->fib_scope &&
L
Linus Torvalds 已提交
323 324
		    nfi->fib_prefsrc == fi->fib_prefsrc &&
		    nfi->fib_priority == fi->fib_priority &&
E
Eric Dumazet 已提交
325
		    nfi->fib_type == fi->fib_type &&
L
Linus Torvalds 已提交
326
		    memcmp(nfi->fib_metrics, fi->fib_metrics,
E
Eric Dumazet 已提交
327
			   sizeof(u32) * RTAX_MAX) == 0 &&
328
		    !((nfi->fib_flags ^ fi->fib_flags) & ~RTNH_COMPARE_MASK) &&
L
Linus Torvalds 已提交
329 330 331 332 333 334 335 336
		    (nfi->fib_nhs == 0 || nh_comp(fi, nfi) == 0))
			return fi;
	}

	return NULL;
}

/* Check, that the gateway is already configured.
E
Eric Dumazet 已提交
337
 * Used only by redirect accept routine.
L
Linus Torvalds 已提交
338
 */
339
int ip_fib_check_default(__be32 gw, struct net_device *dev)
L
Linus Torvalds 已提交
340 341 342 343 344
{
	struct hlist_head *head;
	struct fib_nh *nh;
	unsigned int hash;

345
	spin_lock(&fib_info_lock);
L
Linus Torvalds 已提交
346 347 348

	hash = fib_devindex_hashfn(dev->ifindex);
	head = &fib_info_devhash[hash];
349
	hlist_for_each_entry(nh, head, nh_hash) {
L
Linus Torvalds 已提交
350 351
		if (nh->nh_dev == dev &&
		    nh->nh_gw == gw &&
E
Eric Dumazet 已提交
352
		    !(nh->nh_flags & RTNH_F_DEAD)) {
353
			spin_unlock(&fib_info_lock);
L
Linus Torvalds 已提交
354 355 356 357
			return 0;
		}
	}

358
	spin_unlock(&fib_info_lock);
L
Linus Torvalds 已提交
359 360 361 362

	return -1;
}

363 364 365 366 367 368
static inline size_t fib_nlmsg_size(struct fib_info *fi)
{
	size_t payload = NLMSG_ALIGN(sizeof(struct rtmsg))
			 + nla_total_size(4) /* RTA_TABLE */
			 + nla_total_size(4) /* RTA_DST */
			 + nla_total_size(4) /* RTA_PRIORITY */
369 370
			 + nla_total_size(4) /* RTA_PREFSRC */
			 + nla_total_size(TCP_CA_NAME_MAX); /* RTAX_CC_ALGO */
371 372 373 374 375

	/* space for nested metrics */
	payload += nla_total_size((RTAX_MAX * nla_total_size(4)));

	if (fi->fib_nhs) {
376
		size_t nh_encapsize = 0;
377 378 379 380 381 382 383 384
		/* Also handles the special case fib_nhs == 1 */

		/* each nexthop is packed in an attribute */
		size_t nhsize = nla_total_size(sizeof(struct rtnexthop));

		/* may contain flow and gateway attribute */
		nhsize += 2 * nla_total_size(4);

385 386 387 388 389 390 391 392 393 394 395
		/* grab encap info */
		for_nexthops(fi) {
			if (nh->nh_lwtstate) {
				/* RTA_ENCAP_TYPE */
				nh_encapsize += lwtunnel_get_encap_size(
						nh->nh_lwtstate);
				/* RTA_ENCAP */
				nh_encapsize +=  nla_total_size(2);
			}
		} endfor_nexthops(fi);

396
		/* all nexthops are packed in a nested attribute */
397 398 399
		payload += nla_total_size((fi->fib_nhs * nhsize) +
					  nh_encapsize);

400 401 402 403 404
	}

	return payload;
}

A
Al Viro 已提交
405
void rtmsg_fib(int event, __be32 key, struct fib_alias *fa,
406
	       int dst_len, u32 tb_id, const struct nl_info *info,
407
	       unsigned int nlm_flags)
L
Linus Torvalds 已提交
408 409
{
	struct sk_buff *skb;
410
	u32 seq = info->nlh ? info->nlh->nlmsg_seq : 0;
411
	int err = -ENOBUFS;
L
Linus Torvalds 已提交
412

413
	skb = nlmsg_new(fib_nlmsg_size(fa->fa_info), GFP_KERNEL);
414
	if (!skb)
415
		goto errout;
L
Linus Torvalds 已提交
416

417
	err = fib_dump_info(skb, info->portid, seq, event, tb_id,
418
			    fa->fa_type, key, dst_len,
419
			    fa->fa_tos, fa->fa_info, nlm_flags);
420 421 422 423 424 425
	if (err < 0) {
		/* -EMSGSIZE implies BUG in fib_nlmsg_size() */
		WARN_ON(err == -EMSGSIZE);
		kfree_skb(skb);
		goto errout;
	}
426
	rtnl_notify(skb, info->nl_net, info->portid, RTNLGRP_IPV4_ROUTE,
427 428
		    info->nlh, GFP_KERNEL);
	return;
429 430
errout:
	if (err < 0)
431
		rtnl_set_sk_err(info->nl_net, RTNLGRP_IPV4_ROUTE, err);
L
Linus Torvalds 已提交
432 433
}

434 435 436
static int fib_detect_death(struct fib_info *fi, int order,
			    struct fib_info **last_resort, int *last_idx,
			    int dflt)
L
Linus Torvalds 已提交
437 438 439 440 441 442 443 444
{
	struct neighbour *n;
	int state = NUD_NONE;

	n = neigh_lookup(&arp_tbl, &fi->fib_nh[0].nh_gw, fi->fib_dev);
	if (n) {
		state = n->nud_state;
		neigh_release(n);
445 446
	} else {
		return 0;
L
Linus Torvalds 已提交
447
	}
448
	if (state == NUD_REACHABLE)
L
Linus Torvalds 已提交
449
		return 0;
E
Eric Dumazet 已提交
450
	if ((state & NUD_VALID) && order != dflt)
L
Linus Torvalds 已提交
451
		return 0;
E
Eric Dumazet 已提交
452
	if ((state & NUD_VALID) ||
453
	    (*last_idx < 0 && order > dflt && state != NUD_INCOMPLETE)) {
L
Linus Torvalds 已提交
454 455 456 457 458 459
		*last_resort = fi;
		*last_idx = order;
	}
	return 1;
}

460 461 462 463 464 465 466 467 468 469 470 471 472 473 474 475 476 477 478 479 480 481 482 483 484 485 486 487 488 489 490 491 492 493 494 495 496 497 498 499 500 501 502 503 504 505 506 507
int fib_nh_init(struct net *net, struct fib_nh *nh,
		struct fib_config *cfg, int nh_weight,
		struct netlink_ext_ack *extack)
{
	int err = -ENOMEM;

	nh->nh_pcpu_rth_output = alloc_percpu(struct rtable __rcu *);
	if (!nh->nh_pcpu_rth_output)
		goto err_out;

	if (cfg->fc_encap) {
		struct lwtunnel_state *lwtstate;

		err = -EINVAL;
		if (cfg->fc_encap_type == LWTUNNEL_ENCAP_NONE) {
			NL_SET_ERR_MSG(extack, "LWT encap type not specified");
			goto lwt_failure;
		}
		err = lwtunnel_build_state(cfg->fc_encap_type,
					   cfg->fc_encap, AF_INET, cfg,
					   &lwtstate, extack);
		if (err)
			goto lwt_failure;

		nh->nh_lwtstate = lwtstate_get(lwtstate);
	}

	nh->nh_oif = cfg->fc_oif;
	nh->nh_gw = cfg->fc_gw;
	nh->nh_flags = cfg->fc_flags;

#ifdef CONFIG_IP_ROUTE_CLASSID
	nh->nh_tclassid = cfg->fc_flow;
	if (nh->nh_tclassid)
		net->ipv4.fib_num_tclassid_users++;
#endif
#ifdef CONFIG_IP_ROUTE_MULTIPATH
	nh->nh_weight = nh_weight;
#endif
	return 0;

lwt_failure:
	rt_fibinfo_free_cpus(nh->nh_pcpu_rth_output);
	nh->nh_pcpu_rth_output = NULL;
err_out:
	return err;
}

L
Linus Torvalds 已提交
508 509
#ifdef CONFIG_IP_ROUTE_MULTIPATH

510 511
static int fib_count_nexthops(struct rtnexthop *rtnh, int remaining,
			      struct netlink_ext_ack *extack)
L
Linus Torvalds 已提交
512 513 514
{
	int nhs = 0;

515
	while (rtnh_ok(rtnh, remaining)) {
L
Linus Torvalds 已提交
516
		nhs++;
517 518 519 520
		rtnh = rtnh_next(rtnh, &remaining);
	}

	/* leftover implies invalid nexthop configuration, discard it */
521 522 523 524 525 526 527
	if (remaining > 0) {
		NL_SET_ERR_MSG(extack,
			       "Invalid nexthop configuration - extra data after nexthops");
		nhs = 0;
	}

	return nhs;
L
Linus Torvalds 已提交
528 529
}

530
static int fib_get_nhs(struct fib_info *fi, struct rtnexthop *rtnh,
531 532
		       int remaining, struct fib_config *cfg,
		       struct netlink_ext_ack *extack)
L
Linus Torvalds 已提交
533
{
534 535
	struct net *net = fi->fib_net;
	struct fib_config fib_cfg;
536 537
	int ret;

L
Linus Torvalds 已提交
538
	change_nexthops(fi) {
539 540
		int attrlen;

541 542
		memset(&fib_cfg, 0, sizeof(fib_cfg));

543 544 545
		if (!rtnh_ok(rtnh, remaining)) {
			NL_SET_ERR_MSG(extack,
				       "Invalid nexthop configuration - extra data after nexthop");
L
Linus Torvalds 已提交
546
			return -EINVAL;
547
		}
548

549 550 551
		if (rtnh->rtnh_flags & (RTNH_F_DEAD | RTNH_F_LINKDOWN)) {
			NL_SET_ERR_MSG(extack,
				       "Invalid flags for nexthop - can not contain DEAD or LINKDOWN");
552
			return -EINVAL;
553
		}
554

555 556
		fib_cfg.fc_flags = (cfg->fc_flags & ~0xFF) | rtnh->rtnh_flags;
		fib_cfg.fc_oif = rtnh->rtnh_ifindex;
557 558 559 560 561 562

		attrlen = rtnh_attrlen(rtnh);
		if (attrlen > 0) {
			struct nlattr *nla, *attrs = rtnh_attrs(rtnh);

			nla = nla_find(attrs, attrlen, RTA_GATEWAY);
563 564 565
			if (nla)
				fib_cfg.fc_gw = nla_get_in_addr(nla);

566
			nla = nla_find(attrs, attrlen, RTA_FLOW);
567 568 569 570 571 572 573
			if (nla)
				fib_cfg.fc_flow = nla_get_u32(nla);

			fib_cfg.fc_encap = nla_find(attrs, attrlen, RTA_ENCAP);
			nla = nla_find(attrs, attrlen, RTA_ENCAP_TYPE);
			if (nla)
				fib_cfg.fc_encap_type = nla_get_u16(nla);
L
Linus Torvalds 已提交
574
		}
575

576 577 578 579 580
		ret = fib_nh_init(net, nexthop_nh, &fib_cfg,
				  rtnh->rtnh_hops + 1, extack);
		if (ret)
			goto errout;

581
		rtnh = rtnh_next(rtnh, &remaining);
L
Linus Torvalds 已提交
582
	} endfor_nexthops(fi);
583

584
	ret = -EINVAL;
585 586 587 588 589 590 591 592 593 594 595 596 597 598 599 600 601 602
	if (cfg->fc_oif && fi->fib_nh->nh_oif != cfg->fc_oif) {
		NL_SET_ERR_MSG(extack,
			       "Nexthop device index does not match RTA_OIF");
		goto errout;
	}
	if (cfg->fc_gw && fi->fib_nh->nh_gw != cfg->fc_gw) {
		NL_SET_ERR_MSG(extack,
			       "Nexthop gateway does not match RTA_GATEWAY");
		goto errout;
	}
#ifdef CONFIG_IP_ROUTE_CLASSID
	if (cfg->fc_flow && fi->fib_nh->nh_tclassid != cfg->fc_flow) {
		NL_SET_ERR_MSG(extack,
			       "Nexthop class id does not match RTA_FLOW");
		goto errout;
	}
#endif
	ret = 0;
603 604
errout:
	return ret;
L
Linus Torvalds 已提交
605 606
}

P
Peter Nørlund 已提交
607 608 609 610 611 612 613 614 615 616 617 618 619
static void fib_rebalance(struct fib_info *fi)
{
	int total;
	int w;

	if (fi->fib_nhs < 2)
		return;

	total = 0;
	for_nexthops(fi) {
		if (nh->nh_flags & RTNH_F_DEAD)
			continue;

620
		if (ip_ignore_linkdown(nh->nh_dev) &&
P
Peter Nørlund 已提交
621 622 623 624 625 626 627 628 629 630 631 632
		    nh->nh_flags & RTNH_F_LINKDOWN)
			continue;

		total += nh->nh_weight;
	} endfor_nexthops(fi);

	w = 0;
	change_nexthops(fi) {
		int upper_bound;

		if (nexthop_nh->nh_flags & RTNH_F_DEAD) {
			upper_bound = -1;
633
		} else if (ip_ignore_linkdown(nexthop_nh->nh_dev) &&
P
Peter Nørlund 已提交
634 635 636 637
			   nexthop_nh->nh_flags & RTNH_F_LINKDOWN) {
			upper_bound = -1;
		} else {
			w += nexthop_nh->nh_weight;
638 639
			upper_bound = DIV_ROUND_CLOSEST_ULL((u64)w << 31,
							    total) - 1;
P
Peter Nørlund 已提交
640 641 642 643 644 645 646
		}

		atomic_set(&nexthop_nh->nh_upper_bound, upper_bound);
	} endfor_nexthops(fi);
}
#else /* CONFIG_IP_ROUTE_MULTIPATH */

647 648 649 650 651 652 653 654 655
static int fib_get_nhs(struct fib_info *fi, struct rtnexthop *rtnh,
		       int remaining, struct fib_config *cfg,
		       struct netlink_ext_ack *extack)
{
	NL_SET_ERR_MSG(extack, "Multipath support not enabled in kernel");

	return -EINVAL;
}

P
Peter Nørlund 已提交
656 657 658
#define fib_rebalance(fi) do { } while (0)

#endif /* CONFIG_IP_ROUTE_MULTIPATH */
L
Linus Torvalds 已提交
659

660
static int fib_encap_match(u16 encap_type,
Y
Ying Xue 已提交
661
			   struct nlattr *encap,
662
			   const struct fib_nh *nh,
663 664
			   const struct fib_config *cfg,
			   struct netlink_ext_ack *extack)
665 666
{
	struct lwtunnel_state *lwtstate;
J
Jiri Benc 已提交
667
	int ret, result = 0;
668 669 670 671

	if (encap_type == LWTUNNEL_ENCAP_NONE)
		return 0;

672 673
	ret = lwtunnel_build_state(encap_type, encap, AF_INET,
				   cfg, &lwtstate, extack);
J
Jiri Benc 已提交
674 675 676 677
	if (!ret) {
		result = lwtunnel_cmp_encap(lwtstate, nh->nh_lwtstate);
		lwtstate_free(lwtstate);
	}
678

J
Jiri Benc 已提交
679
	return result;
680 681
}

682 683
int fib_nh_match(struct fib_config *cfg, struct fib_info *fi,
		 struct netlink_ext_ack *extack)
L
Linus Torvalds 已提交
684 685
{
#ifdef CONFIG_IP_ROUTE_MULTIPATH
686 687
	struct rtnexthop *rtnh;
	int remaining;
L
Linus Torvalds 已提交
688 689
#endif

690
	if (cfg->fc_priority && cfg->fc_priority != fi->fib_priority)
L
Linus Torvalds 已提交
691 692
		return 1;

693
	if (cfg->fc_oif || cfg->fc_gw) {
694
		if (cfg->fc_encap) {
695 696 697
			if (fib_encap_match(cfg->fc_encap_type, cfg->fc_encap,
					    fi->fib_nh, cfg, extack))
				return 1;
698
		}
699 700 701 702 703
#ifdef CONFIG_IP_ROUTE_CLASSID
		if (cfg->fc_flow &&
		    cfg->fc_flow != fi->fib_nh->nh_tclassid)
			return 1;
#endif
704 705
		if ((!cfg->fc_oif || cfg->fc_oif == fi->fib_nh->nh_oif) &&
		    (!cfg->fc_gw  || cfg->fc_gw == fi->fib_nh->nh_gw))
L
Linus Torvalds 已提交
706 707 708 709 710
			return 0;
		return 1;
	}

#ifdef CONFIG_IP_ROUTE_MULTIPATH
711
	if (!cfg->fc_mp)
L
Linus Torvalds 已提交
712
		return 0;
713 714 715

	rtnh = cfg->fc_mp;
	remaining = cfg->fc_mp_len;
716

L
Linus Torvalds 已提交
717
	for_nexthops(fi) {
718
		int attrlen;
L
Linus Torvalds 已提交
719

720
		if (!rtnh_ok(rtnh, remaining))
L
Linus Torvalds 已提交
721
			return -EINVAL;
722 723

		if (rtnh->rtnh_ifindex && rtnh->rtnh_ifindex != nh->nh_oif)
L
Linus Torvalds 已提交
724
			return 1;
725 726

		attrlen = rtnh_attrlen(rtnh);
727
		if (attrlen > 0) {
728 729 730
			struct nlattr *nla, *attrs = rtnh_attrs(rtnh);

			nla = nla_find(attrs, attrlen, RTA_GATEWAY);
731
			if (nla && nla_get_in_addr(nla) != nh->nh_gw)
L
Linus Torvalds 已提交
732
				return 1;
733
#ifdef CONFIG_IP_ROUTE_CLASSID
734 735
			nla = nla_find(attrs, attrlen, RTA_FLOW);
			if (nla && nla_get_u32(nla) != nh->nh_tclassid)
L
Linus Torvalds 已提交
736 737 738
				return 1;
#endif
		}
739 740

		rtnh = rtnh_next(rtnh, &remaining);
L
Linus Torvalds 已提交
741 742 743 744 745
	} endfor_nexthops(fi);
#endif
	return 0;
}

746 747 748 749 750 751 752 753 754 755
bool fib_metrics_match(struct fib_config *cfg, struct fib_info *fi)
{
	struct nlattr *nla;
	int remaining;

	if (!cfg->fc_mx)
		return true;

	nla_for_each_attr(nla, cfg->fc_mx, cfg->fc_mx_len, remaining) {
		int type = nla_type(nla);
756
		u32 fi_val, val;
757 758 759 760 761 762 763 764 765 766 767

		if (!type)
			continue;
		if (type > RTAX_MAX)
			return false;

		if (type == RTAX_CC_ALGO) {
			char tmp[TCP_CA_NAME_MAX];
			bool ecn_ca = false;

			nla_strlcpy(tmp, nla, sizeof(tmp));
768
			val = tcp_ca_get_key_by_name(fi->fib_net, tmp, &ecn_ca);
769
		} else {
770 771
			if (nla_len(nla) != sizeof(u32))
				return false;
772 773 774
			val = nla_get_u32(nla);
		}

775 776 777 778 779
		fi_val = fi->fib_metrics->metrics[type - 1];
		if (type == RTAX_FEATURES)
			fi_val &= ~DST_FEATURE_ECN_CA;

		if (fi_val != val)
780 781 782 783 784 785
			return false;
	}

	return true;
}

L
Linus Torvalds 已提交
786 787

/*
E
Eric Dumazet 已提交
788 789 790 791 792 793 794 795 796 797 798 799 800 801 802 803 804 805 806 807 808 809 810 811 812 813 814 815 816 817 818 819 820 821 822 823 824 825 826 827 828
 * Picture
 * -------
 *
 * Semantics of nexthop is very messy by historical reasons.
 * We have to take into account, that:
 * a) gateway can be actually local interface address,
 *    so that gatewayed route is direct.
 * b) gateway must be on-link address, possibly
 *    described not by an ifaddr, but also by a direct route.
 * c) If both gateway and interface are specified, they should not
 *    contradict.
 * d) If we use tunnel routes, gateway could be not on-link.
 *
 * Attempt to reconcile all of these (alas, self-contradictory) conditions
 * results in pretty ugly and hairy code with obscure logic.
 *
 * I chose to generalized it instead, so that the size
 * of code does not increase practically, but it becomes
 * much more general.
 * Every prefix is assigned a "scope" value: "host" is local address,
 * "link" is direct route,
 * [ ... "site" ... "interior" ... ]
 * and "universe" is true gateway route with global meaning.
 *
 * Every prefix refers to a set of "nexthop"s (gw, oif),
 * where gw must have narrower scope. This recursion stops
 * when gw has LOCAL scope or if "nexthop" is declared ONLINK,
 * which means that gw is forced to be on link.
 *
 * Code is still hairy, but now it is apparently logically
 * consistent and very flexible. F.e. as by-product it allows
 * to co-exists in peace independent exterior and interior
 * routing processes.
 *
 * Normally it looks as following.
 *
 * {universe prefix}  -> (gw, oif) [scope link]
 *		  |
 *		  |-> {link prefix} -> (gw, oif) [scope local]
 *					|
 *					|-> {local prefix} (terminal node)
L
Linus Torvalds 已提交
829
 */
830 831
static int fib_check_nh(struct fib_config *cfg, struct fib_nh *nh,
			struct netlink_ext_ack *extack)
L
Linus Torvalds 已提交
832
{
833
	int err = 0;
834
	struct net *net;
E
Eric Dumazet 已提交
835
	struct net_device *dev;
L
Linus Torvalds 已提交
836

837
	net = cfg->fc_nlinfo.nl_net;
L
Linus Torvalds 已提交
838 839 840
	if (nh->nh_gw) {
		struct fib_result res;

E
Eric Dumazet 已提交
841
		if (nh->nh_flags & RTNH_F_ONLINK) {
D
David Ahern 已提交
842
			unsigned int addr_type;
L
Linus Torvalds 已提交
843

844 845 846
			if (cfg->fc_scope >= RT_SCOPE_LINK) {
				NL_SET_ERR_MSG(extack,
					       "Nexthop has invalid scope");
L
Linus Torvalds 已提交
847
				return -EINVAL;
848
			}
E
Eric Dumazet 已提交
849
			dev = __dev_get_by_index(net, nh->nh_oif);
850 851
			if (!dev) {
				NL_SET_ERR_MSG(extack, "Nexthop device required for onlink");
L
Linus Torvalds 已提交
852
				return -ENODEV;
853
			}
854 855 856
			if (!(dev->flags & IFF_UP)) {
				NL_SET_ERR_MSG(extack,
					       "Nexthop device is not up");
L
Linus Torvalds 已提交
857
				return -ENETDOWN;
858
			}
D
David Ahern 已提交
859
			addr_type = inet_addr_type_dev_table(net, dev, nh->nh_gw);
860 861 862
			if (addr_type != RTN_UNICAST) {
				NL_SET_ERR_MSG(extack,
					       "Nexthop has invalid gateway");
D
David Ahern 已提交
863
				return -EINVAL;
864
			}
865 866
			if (!netif_carrier_ok(dev))
				nh->nh_flags |= RTNH_F_LINKDOWN;
L
Linus Torvalds 已提交
867 868 869 870 871
			nh->nh_dev = dev;
			dev_hold(dev);
			nh->nh_scope = RT_SCOPE_LINK;
			return 0;
		}
E
Eric Dumazet 已提交
872
		rcu_read_lock();
L
Linus Torvalds 已提交
873
		{
874
			struct fib_table *tbl = NULL;
D
David S. Miller 已提交
875 876 877 878
			struct flowi4 fl4 = {
				.daddr = nh->nh_gw,
				.flowi4_scope = cfg->fc_scope + 1,
				.flowi4_oif = nh->nh_oif,
879
				.flowi4_iif = LOOPBACK_IFINDEX,
880
			};
L
Linus Torvalds 已提交
881 882

			/* It is not necessary, but requires a bit of thinking */
D
David S. Miller 已提交
883 884
			if (fl4.flowi4_scope < RT_SCOPE_LINK)
				fl4.flowi4_scope = RT_SCOPE_LINK;
885 886 887 888 889 890

			if (cfg->fc_table)
				tbl = fib_get_table(net, cfg->fc_table);

			if (tbl)
				err = fib_table_lookup(tbl, &fl4, &res,
891 892
						       FIB_LOOKUP_IGNORE_LINKSTATE |
						       FIB_LOOKUP_NOREF);
D
David Ahern 已提交
893 894 895 896 897 898

			/* on error or if no table given do full lookup. This
			 * is needed for example when nexthops are in the local
			 * table rather than the given table
			 */
			if (!tbl || err) {
899 900
				err = fib_lookup(net, &fl4, &res,
						 FIB_LOOKUP_IGNORE_LINKSTATE);
D
David Ahern 已提交
901 902
			}

E
Eric Dumazet 已提交
903
			if (err) {
904 905
				NL_SET_ERR_MSG(extack,
					       "Nexthop has invalid gateway");
E
Eric Dumazet 已提交
906
				rcu_read_unlock();
L
Linus Torvalds 已提交
907
				return err;
E
Eric Dumazet 已提交
908
			}
L
Linus Torvalds 已提交
909 910
		}
		err = -EINVAL;
911 912
		if (res.type != RTN_UNICAST && res.type != RTN_LOCAL) {
			NL_SET_ERR_MSG(extack, "Nexthop has invalid gateway");
L
Linus Torvalds 已提交
913
			goto out;
914
		}
L
Linus Torvalds 已提交
915 916
		nh->nh_scope = res.scope;
		nh->nh_oif = FIB_RES_OIF(res);
E
Eric Dumazet 已提交
917
		nh->nh_dev = dev = FIB_RES_DEV(res);
918 919 920
		if (!dev) {
			NL_SET_ERR_MSG(extack,
				       "No egress device for nexthop gateway");
L
Linus Torvalds 已提交
921
			goto out;
922
		}
E
Eric Dumazet 已提交
923
		dev_hold(dev);
924 925
		if (!netif_carrier_ok(dev))
			nh->nh_flags |= RTNH_F_LINKDOWN;
926
		err = (dev->flags & IFF_UP) ? 0 : -ENETDOWN;
L
Linus Torvalds 已提交
927 928 929
	} else {
		struct in_device *in_dev;

930 931 932
		if (nh->nh_flags & (RTNH_F_PERVASIVE | RTNH_F_ONLINK)) {
			NL_SET_ERR_MSG(extack,
				       "Invalid flags for nexthop - PERVASIVE and ONLINK can not be set");
L
Linus Torvalds 已提交
933
			return -EINVAL;
934
		}
935 936
		rcu_read_lock();
		err = -ENODEV;
937
		in_dev = inetdev_by_index(net, nh->nh_oif);
938
		if (!in_dev)
939 940
			goto out;
		err = -ENETDOWN;
941 942
		if (!(in_dev->dev->flags & IFF_UP)) {
			NL_SET_ERR_MSG(extack, "Device for nexthop is not up");
943
			goto out;
944
		}
L
Linus Torvalds 已提交
945 946 947
		nh->nh_dev = in_dev->dev;
		dev_hold(nh->nh_dev);
		nh->nh_scope = RT_SCOPE_HOST;
948 949
		if (!netif_carrier_ok(nh->nh_dev))
			nh->nh_flags |= RTNH_F_LINKDOWN;
950
		err = 0;
L
Linus Torvalds 已提交
951
	}
952 953 954
out:
	rcu_read_unlock();
	return err;
L
Linus Torvalds 已提交
955 956
}

A
Al Viro 已提交
957
static inline unsigned int fib_laddr_hashfn(__be32 val)
L
Linus Torvalds 已提交
958
{
959
	unsigned int mask = (fib_info_hash_size - 1);
L
Linus Torvalds 已提交
960

E
Eric Dumazet 已提交
961 962 963
	return ((__force u32)val ^
		((__force u32)val >> 7) ^
		((__force u32)val >> 14)) & mask;
L
Linus Torvalds 已提交
964 965
}

966
static struct hlist_head *fib_info_hash_alloc(int bytes)
L
Linus Torvalds 已提交
967 968
{
	if (bytes <= PAGE_SIZE)
969
		return kzalloc(bytes, GFP_KERNEL);
L
Linus Torvalds 已提交
970 971
	else
		return (struct hlist_head *)
E
Eric Dumazet 已提交
972 973
			__get_free_pages(GFP_KERNEL | __GFP_ZERO,
					 get_order(bytes));
L
Linus Torvalds 已提交
974 975
}

976
static void fib_info_hash_free(struct hlist_head *hash, int bytes)
L
Linus Torvalds 已提交
977 978 979 980 981 982 983 984 985 986
{
	if (!hash)
		return;

	if (bytes <= PAGE_SIZE)
		kfree(hash);
	else
		free_pages((unsigned long) hash, get_order(bytes));
}

987 988 989
static void fib_info_hash_move(struct hlist_head *new_info_hash,
			       struct hlist_head *new_laddrhash,
			       unsigned int new_size)
L
Linus Torvalds 已提交
990
{
991
	struct hlist_head *old_info_hash, *old_laddrhash;
992
	unsigned int old_size = fib_info_hash_size;
993
	unsigned int i, bytes;
L
Linus Torvalds 已提交
994

995
	spin_lock_bh(&fib_info_lock);
996 997
	old_info_hash = fib_info_hash;
	old_laddrhash = fib_info_laddrhash;
998
	fib_info_hash_size = new_size;
L
Linus Torvalds 已提交
999 1000 1001

	for (i = 0; i < old_size; i++) {
		struct hlist_head *head = &fib_info_hash[i];
1002
		struct hlist_node *n;
L
Linus Torvalds 已提交
1003 1004
		struct fib_info *fi;

1005
		hlist_for_each_entry_safe(fi, n, head, fib_hash) {
L
Linus Torvalds 已提交
1006 1007 1008 1009 1010 1011 1012 1013 1014 1015 1016 1017
			struct hlist_head *dest;
			unsigned int new_hash;

			new_hash = fib_info_hashfn(fi);
			dest = &new_info_hash[new_hash];
			hlist_add_head(&fi->fib_hash, dest);
		}
	}
	fib_info_hash = new_info_hash;

	for (i = 0; i < old_size; i++) {
		struct hlist_head *lhead = &fib_info_laddrhash[i];
1018
		struct hlist_node *n;
L
Linus Torvalds 已提交
1019 1020
		struct fib_info *fi;

1021
		hlist_for_each_entry_safe(fi, n, lhead, fib_lhash) {
L
Linus Torvalds 已提交
1022 1023 1024 1025 1026 1027 1028 1029 1030 1031
			struct hlist_head *ldest;
			unsigned int new_hash;

			new_hash = fib_laddr_hashfn(fi->fib_prefsrc);
			ldest = &new_laddrhash[new_hash];
			hlist_add_head(&fi->fib_lhash, ldest);
		}
	}
	fib_info_laddrhash = new_laddrhash;

1032
	spin_unlock_bh(&fib_info_lock);
1033 1034

	bytes = old_size * sizeof(struct hlist_head *);
1035 1036
	fib_info_hash_free(old_info_hash, bytes);
	fib_info_hash_free(old_laddrhash, bytes);
L
Linus Torvalds 已提交
1037 1038
}

1039 1040 1041 1042
__be32 fib_info_update_nh_saddr(struct net *net, struct fib_nh *nh)
{
	nh->nh_saddr = inet_select_addr(nh->nh_dev,
					nh->nh_gw,
1043
					nh->nh_parent->fib_scope);
1044 1045 1046 1047 1048
	nh->nh_saddr_genid = atomic_read(&net->ipv4.dev_addr_genid);

	return nh->nh_saddr;
}

1049 1050 1051 1052
static bool fib_valid_prefsrc(struct fib_config *cfg, __be32 fib_prefsrc)
{
	if (cfg->fc_type != RTN_LOCAL || !cfg->fc_dst ||
	    fib_prefsrc != cfg->fc_dst) {
D
David Ahern 已提交
1053
		u32 tb_id = cfg->fc_table;
D
David Ahern 已提交
1054
		int rc;
1055 1056 1057 1058

		if (tb_id == RT_TABLE_MAIN)
			tb_id = RT_TABLE_LOCAL;

D
David Ahern 已提交
1059 1060 1061 1062 1063 1064
		rc = inet_addr_type_table(cfg->fc_nlinfo.nl_net,
					  fib_prefsrc, tb_id);

		if (rc != RTN_LOCAL && tb_id != RT_TABLE_LOCAL) {
			rc = inet_addr_type_table(cfg->fc_nlinfo.nl_net,
						  fib_prefsrc, RT_TABLE_LOCAL);
1065
		}
D
David Ahern 已提交
1066 1067 1068

		if (rc != RTN_LOCAL)
			return false;
1069 1070 1071 1072
	}
	return true;
}

1073 1074
struct fib_info *fib_create_info(struct fib_config *cfg,
				 struct netlink_ext_ack *extack)
L
Linus Torvalds 已提交
1075 1076 1077 1078 1079
{
	int err;
	struct fib_info *fi = NULL;
	struct fib_info *ofi;
	int nhs = 1;
1080
	struct net *net = cfg->fc_nlinfo.nl_net;
L
Linus Torvalds 已提交
1081

1082 1083 1084
	if (cfg->fc_type > RTN_MAX)
		goto err_inval;

L
Linus Torvalds 已提交
1085
	/* Fast check to catch the most weird cases */
1086 1087
	if (fib_props[cfg->fc_type].scope > cfg->fc_scope) {
		NL_SET_ERR_MSG(extack, "Invalid scope");
L
Linus Torvalds 已提交
1088
		goto err_inval;
1089
	}
L
Linus Torvalds 已提交
1090

1091 1092 1093
	if (cfg->fc_flags & (RTNH_F_DEAD | RTNH_F_LINKDOWN)) {
		NL_SET_ERR_MSG(extack,
			       "Invalid rtm_flags - can not contain DEAD or LINKDOWN");
1094
		goto err_inval;
1095
	}
1096

L
Linus Torvalds 已提交
1097
#ifdef CONFIG_IP_ROUTE_MULTIPATH
1098
	if (cfg->fc_mp) {
1099
		nhs = fib_count_nexthops(cfg->fc_mp, cfg->fc_mp_len, extack);
L
Linus Torvalds 已提交
1100 1101 1102 1103 1104 1105
		if (nhs == 0)
			goto err_inval;
	}
#endif

	err = -ENOBUFS;
1106 1107
	if (fib_info_cnt >= fib_info_hash_size) {
		unsigned int new_size = fib_info_hash_size << 1;
L
Linus Torvalds 已提交
1108 1109 1110 1111 1112
		struct hlist_head *new_info_hash;
		struct hlist_head *new_laddrhash;
		unsigned int bytes;

		if (!new_size)
1113
			new_size = 16;
L
Linus Torvalds 已提交
1114
		bytes = new_size * sizeof(struct hlist_head *);
1115 1116
		new_info_hash = fib_info_hash_alloc(bytes);
		new_laddrhash = fib_info_hash_alloc(bytes);
L
Linus Torvalds 已提交
1117
		if (!new_info_hash || !new_laddrhash) {
1118 1119
			fib_info_hash_free(new_info_hash, bytes);
			fib_info_hash_free(new_laddrhash, bytes);
1120
		} else
1121
			fib_info_hash_move(new_info_hash, new_laddrhash, new_size);
L
Linus Torvalds 已提交
1122

1123
		if (!fib_info_hash_size)
L
Linus Torvalds 已提交
1124 1125 1126
			goto failure;
	}

1127
	fi = kzalloc(struct_size(fi, fib_nh, nhs), GFP_KERNEL);
1128
	if (!fi)
L
Linus Torvalds 已提交
1129
		goto failure;
1130
	fi->fib_metrics = ip_fib_metrics_init(fi->fib_net, cfg->fc_mx,
1131
					      cfg->fc_mx_len, extack);
1132 1133 1134 1135
	if (unlikely(IS_ERR(fi->fib_metrics))) {
		err = PTR_ERR(fi->fib_metrics);
		kfree(fi);
		return ERR_PTR(err);
1136
	}
1137

1138
	fib_info_cnt++;
1139
	fi->fib_net = net;
1140
	fi->fib_protocol = cfg->fc_protocol;
1141
	fi->fib_scope = cfg->fc_scope;
1142 1143 1144
	fi->fib_flags = cfg->fc_flags;
	fi->fib_priority = cfg->fc_priority;
	fi->fib_prefsrc = cfg->fc_prefsrc;
E
Eric Dumazet 已提交
1145
	fi->fib_type = cfg->fc_type;
1146
	fi->fib_tb_id = cfg->fc_table;
L
Linus Torvalds 已提交
1147 1148 1149

	fi->fib_nhs = nhs;
	change_nexthops(fi) {
1150
		nexthop_nh->nh_parent = fi;
L
Linus Torvalds 已提交
1151 1152
	} endfor_nexthops(fi)

1153
	if (cfg->fc_mp)
1154
		err = fib_get_nhs(fi, cfg->fc_mp, cfg->fc_mp_len, cfg, extack);
1155 1156
	else
		err = fib_nh_init(net, fi->fib_nh, cfg, 1, extack);
1157

1158 1159
	if (err != 0)
		goto failure;
L
Linus Torvalds 已提交
1160

1161
	if (fib_props[cfg->fc_type].error) {
1162 1163 1164
		if (cfg->fc_gw || cfg->fc_oif || cfg->fc_mp) {
			NL_SET_ERR_MSG(extack,
				       "Gateway, device and multipath can not be specified for this route type");
L
Linus Torvalds 已提交
1165
			goto err_inval;
1166
		}
L
Linus Torvalds 已提交
1167
		goto link_it;
1168 1169 1170 1171 1172 1173 1174 1175 1176
	} else {
		switch (cfg->fc_type) {
		case RTN_UNICAST:
		case RTN_LOCAL:
		case RTN_BROADCAST:
		case RTN_ANYCAST:
		case RTN_MULTICAST:
			break;
		default:
1177
			NL_SET_ERR_MSG(extack, "Invalid route type");
1178 1179
			goto err_inval;
		}
L
Linus Torvalds 已提交
1180 1181
	}

1182 1183
	if (cfg->fc_scope > RT_SCOPE_HOST) {
		NL_SET_ERR_MSG(extack, "Invalid scope");
L
Linus Torvalds 已提交
1184
		goto err_inval;
1185
	}
L
Linus Torvalds 已提交
1186

1187
	if (cfg->fc_scope == RT_SCOPE_HOST) {
L
Linus Torvalds 已提交
1188 1189 1190
		struct fib_nh *nh = fi->fib_nh;

		/* Local address is added. */
1191 1192 1193
		if (nhs != 1) {
			NL_SET_ERR_MSG(extack,
				       "Route with host scope can not have multiple nexthops");
1194
			goto err_inval;
1195 1196 1197 1198
		}
		if (nh->nh_gw) {
			NL_SET_ERR_MSG(extack,
				       "Route with host scope can not have a gateway");
L
Linus Torvalds 已提交
1199
			goto err_inval;
1200
		}
L
Linus Torvalds 已提交
1201
		nh->nh_scope = RT_SCOPE_NOWHERE;
1202
		nh->nh_dev = dev_get_by_index(net, fi->fib_nh->nh_oif);
L
Linus Torvalds 已提交
1203
		err = -ENODEV;
1204
		if (!nh->nh_dev)
L
Linus Torvalds 已提交
1205 1206
			goto failure;
	} else {
1207 1208
		int linkdown = 0;

L
Linus Torvalds 已提交
1209
		change_nexthops(fi) {
1210
			err = fib_check_nh(cfg, nexthop_nh, extack);
E
Eric Dumazet 已提交
1211
			if (err != 0)
L
Linus Torvalds 已提交
1212
				goto failure;
1213 1214
			if (nexthop_nh->nh_flags & RTNH_F_LINKDOWN)
				linkdown++;
L
Linus Torvalds 已提交
1215
		} endfor_nexthops(fi)
1216 1217
		if (linkdown == fi->fib_nhs)
			fi->fib_flags |= RTNH_F_LINKDOWN;
L
Linus Torvalds 已提交
1218 1219
	}

1220 1221
	if (fi->fib_prefsrc && !fib_valid_prefsrc(cfg, fi->fib_prefsrc)) {
		NL_SET_ERR_MSG(extack, "Invalid prefsrc address");
1222
		goto err_inval;
1223
	}
L
Linus Torvalds 已提交
1224

1225
	change_nexthops(fi) {
1226
		fib_info_update_nh_saddr(net, nexthop_nh);
1227 1228
	} endfor_nexthops(fi)

P
Peter Nørlund 已提交
1229 1230
	fib_rebalance(fi);

L
Linus Torvalds 已提交
1231
link_it:
E
Eric Dumazet 已提交
1232 1233
	ofi = fib_find_info(fi);
	if (ofi) {
L
Linus Torvalds 已提交
1234 1235 1236 1237 1238 1239 1240
		fi->fib_dead = 1;
		free_fib_info(fi);
		ofi->fib_treeref++;
		return ofi;
	}

	fi->fib_treeref++;
1241
	refcount_set(&fi->fib_clntref, 1);
1242
	spin_lock_bh(&fib_info_lock);
L
Linus Torvalds 已提交
1243 1244 1245 1246 1247 1248 1249 1250 1251 1252 1253 1254
	hlist_add_head(&fi->fib_hash,
		       &fib_info_hash[fib_info_hashfn(fi)]);
	if (fi->fib_prefsrc) {
		struct hlist_head *head;

		head = &fib_info_laddrhash[fib_laddr_hashfn(fi->fib_prefsrc)];
		hlist_add_head(&fi->fib_lhash, head);
	}
	change_nexthops(fi) {
		struct hlist_head *head;
		unsigned int hash;

1255
		if (!nexthop_nh->nh_dev)
L
Linus Torvalds 已提交
1256
			continue;
1257
		hash = fib_devindex_hashfn(nexthop_nh->nh_dev->ifindex);
L
Linus Torvalds 已提交
1258
		head = &fib_info_devhash[hash];
1259
		hlist_add_head(&nexthop_nh->nh_hash, head);
L
Linus Torvalds 已提交
1260
	} endfor_nexthops(fi)
1261
	spin_unlock_bh(&fib_info_lock);
L
Linus Torvalds 已提交
1262 1263 1264 1265 1266 1267
	return fi;

err_inval:
	err = -EINVAL;

failure:
1268
	if (fi) {
L
Linus Torvalds 已提交
1269 1270 1271
		fi->fib_dead = 1;
		free_fib_info(fi);
	}
1272 1273

	return ERR_PTR(err);
L
Linus Torvalds 已提交
1274 1275
}

1276
int fib_dump_info(struct sk_buff *skb, u32 portid, u32 seq, int event,
1277
		  u32 tb_id, u8 type, __be32 dst, int dst_len, u8 tos,
1278
		  struct fib_info *fi, unsigned int flags)
L
Linus Torvalds 已提交
1279
{
1280
	struct nlmsghdr *nlh;
L
Linus Torvalds 已提交
1281 1282
	struct rtmsg *rtm;

1283
	nlh = nlmsg_put(skb, portid, seq, event, sizeof(*rtm), flags);
1284
	if (!nlh)
1285
		return -EMSGSIZE;
1286 1287

	rtm = nlmsg_data(nlh);
L
Linus Torvalds 已提交
1288 1289 1290 1291
	rtm->rtm_family = AF_INET;
	rtm->rtm_dst_len = dst_len;
	rtm->rtm_src_len = 0;
	rtm->rtm_tos = tos;
1292 1293 1294 1295
	if (tb_id < 256)
		rtm->rtm_table = tb_id;
	else
		rtm->rtm_table = RT_TABLE_COMPAT;
D
David S. Miller 已提交
1296 1297
	if (nla_put_u32(skb, RTA_TABLE, tb_id))
		goto nla_put_failure;
L
Linus Torvalds 已提交
1298 1299
	rtm->rtm_type = type;
	rtm->rtm_flags = fi->fib_flags;
1300
	rtm->rtm_scope = fi->fib_scope;
L
Linus Torvalds 已提交
1301
	rtm->rtm_protocol = fi->fib_protocol;
1302

D
David S. Miller 已提交
1303
	if (rtm->rtm_dst_len &&
1304
	    nla_put_in_addr(skb, RTA_DST, dst))
D
David S. Miller 已提交
1305 1306 1307 1308
		goto nla_put_failure;
	if (fi->fib_priority &&
	    nla_put_u32(skb, RTA_PRIORITY, fi->fib_priority))
		goto nla_put_failure;
1309
	if (rtnetlink_put_metrics(skb, fi->fib_metrics->metrics) < 0)
1310 1311
		goto nla_put_failure;

D
David S. Miller 已提交
1312
	if (fi->fib_prefsrc &&
1313
	    nla_put_in_addr(skb, RTA_PREFSRC, fi->fib_prefsrc))
D
David S. Miller 已提交
1314
		goto nla_put_failure;
L
Linus Torvalds 已提交
1315
	if (fi->fib_nhs == 1) {
D
David S. Miller 已提交
1316
		if (fi->fib_nh->nh_gw &&
1317
		    nla_put_in_addr(skb, RTA_GATEWAY, fi->fib_nh->nh_gw))
D
David S. Miller 已提交
1318 1319 1320 1321
			goto nla_put_failure;
		if (fi->fib_nh->nh_oif &&
		    nla_put_u32(skb, RTA_OIF, fi->fib_nh->nh_oif))
			goto nla_put_failure;
1322
		if (fi->fib_nh->nh_flags & RTNH_F_LINKDOWN) {
1323
			rcu_read_lock();
1324
			if (ip_ignore_linkdown(fi->fib_nh->nh_dev))
1325
				rtm->rtm_flags |= RTNH_F_DEAD;
1326
			rcu_read_unlock();
1327
		}
1328 1329
		if (fi->fib_nh->nh_flags & RTNH_F_OFFLOAD)
			rtm->rtm_flags |= RTNH_F_OFFLOAD;
1330
#ifdef CONFIG_IP_ROUTE_CLASSID
D
David S. Miller 已提交
1331 1332 1333
		if (fi->fib_nh[0].nh_tclassid &&
		    nla_put_u32(skb, RTA_FLOW, fi->fib_nh[0].nh_tclassid))
			goto nla_put_failure;
1334
#endif
1335 1336 1337
		if (fi->fib_nh->nh_lwtstate &&
		    lwtunnel_fill_encap(skb, fi->fib_nh->nh_lwtstate) < 0)
			goto nla_put_failure;
L
Linus Torvalds 已提交
1338 1339 1340
	}
#ifdef CONFIG_IP_ROUTE_MULTIPATH
	if (fi->fib_nhs > 1) {
1341 1342 1343 1344
		struct rtnexthop *rtnh;
		struct nlattr *mp;

		mp = nla_nest_start(skb, RTA_MULTIPATH);
1345
		if (!mp)
1346
			goto nla_put_failure;
L
Linus Torvalds 已提交
1347 1348

		for_nexthops(fi) {
1349
			rtnh = nla_reserve_nohdr(skb, sizeof(*rtnh));
1350
			if (!rtnh)
1351 1352 1353
				goto nla_put_failure;

			rtnh->rtnh_flags = nh->nh_flags & 0xFF;
1354
			if (nh->nh_flags & RTNH_F_LINKDOWN) {
1355
				rcu_read_lock();
1356
				if (ip_ignore_linkdown(nh->nh_dev))
1357
					rtnh->rtnh_flags |= RTNH_F_DEAD;
1358
				rcu_read_unlock();
1359
			}
1360 1361 1362
			rtnh->rtnh_hops = nh->nh_weight - 1;
			rtnh->rtnh_ifindex = nh->nh_oif;

D
David S. Miller 已提交
1363
			if (nh->nh_gw &&
1364
			    nla_put_in_addr(skb, RTA_GATEWAY, nh->nh_gw))
D
David S. Miller 已提交
1365
				goto nla_put_failure;
1366
#ifdef CONFIG_IP_ROUTE_CLASSID
D
David S. Miller 已提交
1367 1368 1369
			if (nh->nh_tclassid &&
			    nla_put_u32(skb, RTA_FLOW, nh->nh_tclassid))
				goto nla_put_failure;
1370
#endif
1371 1372 1373 1374
			if (nh->nh_lwtstate &&
			    lwtunnel_fill_encap(skb, nh->nh_lwtstate) < 0)
				goto nla_put_failure;

1375 1376
			/* length of rtnetlink header + attributes */
			rtnh->rtnh_len = nlmsg_get_pos(skb) - (void *) rtnh;
L
Linus Torvalds 已提交
1377
		} endfor_nexthops(fi);
1378 1379

		nla_nest_end(skb, mp);
L
Linus Torvalds 已提交
1380 1381
	}
#endif
1382 1383
	nlmsg_end(skb, nlh);
	return 0;
L
Linus Torvalds 已提交
1384

1385
nla_put_failure:
1386 1387
	nlmsg_cancel(skb, nlh);
	return -EMSGSIZE;
L
Linus Torvalds 已提交
1388 1389 1390
}

/*
E
Eric Dumazet 已提交
1391 1392 1393 1394
 * Update FIB if:
 * - local address disappeared -> we must delete all the entries
 *   referring to it.
 * - device went down -> we must shutdown all nexthops going via it.
L
Linus Torvalds 已提交
1395
 */
1396
int fib_sync_down_addr(struct net_device *dev, __be32 local)
L
Linus Torvalds 已提交
1397 1398
{
	int ret = 0;
D
Denis V. Lunev 已提交
1399 1400
	unsigned int hash = fib_laddr_hashfn(local);
	struct hlist_head *head = &fib_info_laddrhash[hash];
1401 1402
	struct net *net = dev_net(dev);
	int tb_id = l3mdev_fib_table(dev);
D
Denis V. Lunev 已提交
1403
	struct fib_info *fi;
L
Linus Torvalds 已提交
1404

1405
	if (!fib_info_laddrhash || local == 0)
D
Denis V. Lunev 已提交
1406
		return 0;
L
Linus Torvalds 已提交
1407

1408
	hlist_for_each_entry(fi, head, fib_lhash) {
1409 1410
		if (!net_eq(fi->fib_net, net) ||
		    fi->fib_tb_id != tb_id)
1411
			continue;
D
Denis V. Lunev 已提交
1412 1413 1414
		if (fi->fib_prefsrc == local) {
			fi->fib_flags |= RTNH_F_DEAD;
			ret++;
L
Linus Torvalds 已提交
1415 1416
		}
	}
D
Denis V. Lunev 已提交
1417 1418 1419
	return ret;
}

1420 1421 1422
static int call_fib_nh_notifiers(struct fib_nh *fib_nh,
				 enum fib_event_type event_type)
{
1423
	bool ignore_link_down = ip_ignore_linkdown(fib_nh->nh_dev);
1424 1425 1426 1427 1428 1429 1430 1431
	struct fib_nh_notifier_info info = {
		.fib_nh = fib_nh,
	};

	switch (event_type) {
	case FIB_EVENT_NH_ADD:
		if (fib_nh->nh_flags & RTNH_F_DEAD)
			break;
1432
		if (ignore_link_down && fib_nh->nh_flags & RTNH_F_LINKDOWN)
1433
			break;
1434 1435
		return call_fib4_notifiers(dev_net(fib_nh->nh_dev), event_type,
					   &info.info);
1436
	case FIB_EVENT_NH_DEL:
1437
		if ((ignore_link_down && fib_nh->nh_flags & RTNH_F_LINKDOWN) ||
1438
		    (fib_nh->nh_flags & RTNH_F_DEAD))
1439 1440
			return call_fib4_notifiers(dev_net(fib_nh->nh_dev),
						   event_type, &info.info);
1441 1442 1443 1444 1445 1446 1447
	default:
		break;
	}

	return NOTIFY_DONE;
}

1448 1449 1450 1451 1452 1453 1454 1455 1456 1457 1458 1459 1460 1461 1462 1463 1464 1465 1466 1467 1468 1469 1470 1471 1472 1473 1474 1475 1476 1477 1478 1479 1480 1481 1482 1483 1484 1485 1486 1487 1488 1489 1490 1491 1492 1493 1494 1495 1496 1497
/* Update the PMTU of exceptions when:
 * - the new MTU of the first hop becomes smaller than the PMTU
 * - the old MTU was the same as the PMTU, and it limited discovery of
 *   larger MTUs on the path. With that limit raised, we can now
 *   discover larger MTUs
 * A special case is locked exceptions, for which the PMTU is smaller
 * than the minimal accepted PMTU:
 * - if the new MTU is greater than the PMTU, don't make any change
 * - otherwise, unlock and set PMTU
 */
static void nh_update_mtu(struct fib_nh *nh, u32 new, u32 orig)
{
	struct fnhe_hash_bucket *bucket;
	int i;

	bucket = rcu_dereference_protected(nh->nh_exceptions, 1);
	if (!bucket)
		return;

	for (i = 0; i < FNHE_HASH_SIZE; i++) {
		struct fib_nh_exception *fnhe;

		for (fnhe = rcu_dereference_protected(bucket[i].chain, 1);
		     fnhe;
		     fnhe = rcu_dereference_protected(fnhe->fnhe_next, 1)) {
			if (fnhe->fnhe_mtu_locked) {
				if (new <= fnhe->fnhe_pmtu) {
					fnhe->fnhe_pmtu = new;
					fnhe->fnhe_mtu_locked = false;
				}
			} else if (new < fnhe->fnhe_pmtu ||
				   orig == fnhe->fnhe_pmtu) {
				fnhe->fnhe_pmtu = new;
			}
		}
	}
}

void fib_sync_mtu(struct net_device *dev, u32 orig_mtu)
{
	unsigned int hash = fib_devindex_hashfn(dev->ifindex);
	struct hlist_head *head = &fib_info_devhash[hash];
	struct fib_nh *nh;

	hlist_for_each_entry(nh, head, nh_hash) {
		if (nh->nh_dev == dev)
			nh_update_mtu(nh, dev->mtu, orig_mtu);
	}
}

1498 1499 1500 1501 1502 1503 1504
/* Event              force Flags           Description
 * NETDEV_CHANGE      0     LINKDOWN        Carrier OFF, not for scope host
 * NETDEV_DOWN        0     LINKDOWN|DEAD   Link down, not for scope host
 * NETDEV_DOWN        1     LINKDOWN|DEAD   Last address removed
 * NETDEV_UNREGISTER  1     LINKDOWN|DEAD   Device removed
 */
int fib_sync_down_dev(struct net_device *dev, unsigned long event, bool force)
D
Denis V. Lunev 已提交
1505 1506 1507 1508 1509 1510 1511
{
	int ret = 0;
	int scope = RT_SCOPE_NOWHERE;
	struct fib_info *prev_fi = NULL;
	unsigned int hash = fib_devindex_hashfn(dev->ifindex);
	struct hlist_head *head = &fib_info_devhash[hash];
	struct fib_nh *nh;
L
Linus Torvalds 已提交
1512

1513
	if (force)
D
Denis V. Lunev 已提交
1514
		scope = -1;
L
Linus Torvalds 已提交
1515

1516
	hlist_for_each_entry(nh, head, nh_hash) {
D
Denis V. Lunev 已提交
1517 1518
		struct fib_info *fi = nh->nh_parent;
		int dead;
L
Linus Torvalds 已提交
1519

D
Denis V. Lunev 已提交
1520 1521 1522 1523 1524 1525
		BUG_ON(!fi->fib_nhs);
		if (nh->nh_dev != dev || fi == prev_fi)
			continue;
		prev_fi = fi;
		dead = 0;
		change_nexthops(fi) {
E
Eric Dumazet 已提交
1526
			if (nexthop_nh->nh_flags & RTNH_F_DEAD)
D
Denis V. Lunev 已提交
1527
				dead++;
1528 1529
			else if (nexthop_nh->nh_dev == dev &&
				 nexthop_nh->nh_scope != scope) {
1530 1531 1532 1533 1534 1535 1536 1537 1538
				switch (event) {
				case NETDEV_DOWN:
				case NETDEV_UNREGISTER:
					nexthop_nh->nh_flags |= RTNH_F_DEAD;
					/* fall through */
				case NETDEV_CHANGE:
					nexthop_nh->nh_flags |= RTNH_F_LINKDOWN;
					break;
				}
1539 1540
				call_fib_nh_notifiers(nexthop_nh,
						      FIB_EVENT_NH_DEL);
D
Denis V. Lunev 已提交
1541 1542
				dead++;
			}
L
Linus Torvalds 已提交
1543
#ifdef CONFIG_IP_ROUTE_MULTIPATH
1544 1545
			if (event == NETDEV_UNREGISTER &&
			    nexthop_nh->nh_dev == dev) {
D
Denis V. Lunev 已提交
1546 1547
				dead = fi->fib_nhs;
				break;
L
Linus Torvalds 已提交
1548
			}
D
Denis V. Lunev 已提交
1549 1550 1551
#endif
		} endfor_nexthops(fi)
		if (dead == fi->fib_nhs) {
1552 1553 1554 1555 1556 1557 1558 1559 1560
			switch (event) {
			case NETDEV_DOWN:
			case NETDEV_UNREGISTER:
				fi->fib_flags |= RTNH_F_DEAD;
				/* fall through */
			case NETDEV_CHANGE:
				fi->fib_flags |= RTNH_F_LINKDOWN;
				break;
			}
D
Denis V. Lunev 已提交
1561
			ret++;
L
Linus Torvalds 已提交
1562
		}
P
Peter Nørlund 已提交
1563 1564

		fib_rebalance(fi);
L
Linus Torvalds 已提交
1565 1566 1567 1568 1569
	}

	return ret;
}

1570
/* Must be invoked inside of an RCU protected region.  */
1571
static void fib_select_default(const struct flowi4 *flp, struct fib_result *res)
1572 1573
{
	struct fib_info *fi = NULL, *last_resort = NULL;
1574
	struct hlist_head *fa_head = res->fa_head;
1575
	struct fib_table *tb = res->table;
1576
	u8 slen = 32 - res->prefixlen;
1577
	int order = -1, last_idx = -1;
1578 1579 1580
	struct fib_alias *fa, *fa1 = NULL;
	u32 last_prio = res->fi->fib_priority;
	u8 last_tos = 0;
1581

1582
	hlist_for_each_entry_rcu(fa, fa_head, fa_list) {
1583 1584
		struct fib_info *next_fi = fa->fa_info;

1585 1586
		if (fa->fa_slen != slen)
			continue;
1587 1588
		if (fa->fa_tos && fa->fa_tos != flp->flowi4_tos)
			continue;
1589 1590
		if (fa->tb_id != tb->tb_id)
			continue;
1591 1592 1593 1594 1595 1596 1597 1598 1599 1600 1601
		if (next_fi->fib_priority > last_prio &&
		    fa->fa_tos == last_tos) {
			if (last_tos)
				continue;
			break;
		}
		if (next_fi->fib_flags & RTNH_F_DEAD)
			continue;
		last_tos = fa->fa_tos;
		last_prio = next_fi->fib_priority;

1602
		if (next_fi->fib_scope != res->scope ||
1603 1604 1605 1606 1607 1608 1609 1610
		    fa->fa_type != RTN_UNICAST)
			continue;
		if (!next_fi->fib_nh[0].nh_gw ||
		    next_fi->fib_nh[0].nh_scope != RT_SCOPE_LINK)
			continue;

		fib_alias_accessed(fa);

1611
		if (!fi) {
1612 1613
			if (next_fi != res->fi)
				break;
1614
			fa1 = fa;
1615
		} else if (!fib_detect_death(fi, order, &last_resort,
1616
					     &last_idx, fa1->fa_default)) {
1617
			fib_result_assign(res, fi);
1618
			fa1->fa_default = order;
1619 1620 1621 1622 1623 1624
			goto out;
		}
		fi = next_fi;
		order++;
	}

1625
	if (order <= 0 || !fi) {
1626 1627
		if (fa1)
			fa1->fa_default = -1;
1628 1629 1630 1631
		goto out;
	}

	if (!fib_detect_death(fi, order, &last_resort, &last_idx,
1632
			      fa1->fa_default)) {
1633
		fib_result_assign(res, fi);
1634
		fa1->fa_default = order;
1635 1636 1637 1638 1639
		goto out;
	}

	if (last_idx >= 0)
		fib_result_assign(res, last_resort);
1640
	fa1->fa_default = last_idx;
1641
out:
1642
	return;
1643 1644
}

L
Linus Torvalds 已提交
1645
/*
E
Eric Dumazet 已提交
1646 1647
 * Dead device goes up. We wake up dead nexthops.
 * It takes sense only on multipath routes.
L
Linus Torvalds 已提交
1648
 */
1649
int fib_sync_up(struct net_device *dev, unsigned int nh_flags)
L
Linus Torvalds 已提交
1650 1651 1652 1653 1654 1655 1656
{
	struct fib_info *prev_fi;
	unsigned int hash;
	struct hlist_head *head;
	struct fib_nh *nh;
	int ret;

E
Eric Dumazet 已提交
1657
	if (!(dev->flags & IFF_UP))
L
Linus Torvalds 已提交
1658 1659
		return 0;

1660 1661 1662 1663 1664 1665 1666
	if (nh_flags & RTNH_F_DEAD) {
		unsigned int flags = dev_get_flags(dev);

		if (flags & (IFF_RUNNING | IFF_LOWER_UP))
			nh_flags |= RTNH_F_LINKDOWN;
	}

L
Linus Torvalds 已提交
1667 1668 1669 1670 1671
	prev_fi = NULL;
	hash = fib_devindex_hashfn(dev->ifindex);
	head = &fib_info_devhash[hash];
	ret = 0;

1672
	hlist_for_each_entry(nh, head, nh_hash) {
L
Linus Torvalds 已提交
1673 1674 1675 1676 1677 1678 1679 1680 1681 1682
		struct fib_info *fi = nh->nh_parent;
		int alive;

		BUG_ON(!fi->fib_nhs);
		if (nh->nh_dev != dev || fi == prev_fi)
			continue;

		prev_fi = fi;
		alive = 0;
		change_nexthops(fi) {
1683
			if (!(nexthop_nh->nh_flags & nh_flags)) {
L
Linus Torvalds 已提交
1684 1685 1686
				alive++;
				continue;
			}
1687
			if (!nexthop_nh->nh_dev ||
E
Eric Dumazet 已提交
1688
			    !(nexthop_nh->nh_dev->flags & IFF_UP))
L
Linus Torvalds 已提交
1689
				continue;
1690 1691
			if (nexthop_nh->nh_dev != dev ||
			    !__in_dev_get_rtnl(dev))
L
Linus Torvalds 已提交
1692 1693
				continue;
			alive++;
1694
			nexthop_nh->nh_flags &= ~nh_flags;
1695
			call_fib_nh_notifiers(nexthop_nh, FIB_EVENT_NH_ADD);
L
Linus Torvalds 已提交
1696 1697 1698
		} endfor_nexthops(fi)

		if (alive > 0) {
1699
			fi->fib_flags &= ~nh_flags;
L
Linus Torvalds 已提交
1700 1701
			ret++;
		}
P
Peter Nørlund 已提交
1702 1703

		fib_rebalance(fi);
L
Linus Torvalds 已提交
1704 1705 1706 1707 1708
	}

	return ret;
}

1709
#ifdef CONFIG_IP_ROUTE_MULTIPATH
1710 1711 1712 1713 1714 1715 1716 1717 1718
static bool fib_good_nh(const struct fib_nh *nh)
{
	int state = NUD_REACHABLE;

	if (nh->nh_scope == RT_SCOPE_LINK) {
		struct neighbour *n;

		rcu_read_lock_bh();

1719 1720
		n = __ipv4_neigh_lookup_noref(nh->nh_dev,
					      (__force u32)nh->nh_gw);
1721 1722 1723 1724 1725 1726 1727 1728
		if (n)
			state = n->nud_state;

		rcu_read_unlock_bh();
	}

	return !!(state & NUD_VALID);
}
1729

P
Peter Nørlund 已提交
1730
void fib_select_multipath(struct fib_result *res, int hash)
L
Linus Torvalds 已提交
1731 1732
{
	struct fib_info *fi = res->fi;
1733 1734
	struct net *net = fi->fib_net;
	bool first = false;
L
Linus Torvalds 已提交
1735

P
Peter Nørlund 已提交
1736
	for_nexthops(fi) {
1737 1738 1739 1740 1741 1742 1743 1744 1745
		if (net->ipv4.sysctl_fib_multipath_use_neigh) {
			if (!fib_good_nh(nh))
				continue;
			if (!first) {
				res->nh_sel = nhsel;
				first = true;
			}
		}

P
Peter Nørlund 已提交
1746 1747
		if (hash > atomic_read(&nh->nh_upper_bound))
			continue;
L
Linus Torvalds 已提交
1748

1749 1750
		res->nh_sel = nhsel;
		return;
L
Linus Torvalds 已提交
1751 1752 1753
	} endfor_nexthops(fi);
}
#endif
1754 1755

void fib_select_path(struct net *net, struct fib_result *res,
1756
		     struct flowi4 *fl4, const struct sk_buff *skb)
1757
{
D
David Ahern 已提交
1758 1759
	if (fl4->flowi4_oif && !(fl4->flowi4_flags & FLOWI_FLAG_SKIP_NH_OIF))
		goto check_saddr;
1760

1761
#ifdef CONFIG_IP_ROUTE_MULTIPATH
D
David Ahern 已提交
1762
	if (res->fi->fib_nhs > 1) {
1763
		int h = fib_multipath_hash(net, fl4, skb, NULL);
1764

1765
		fib_select_multipath(res, h);
1766 1767 1768 1769 1770
	}
	else
#endif
	if (!res->prefixlen &&
	    res->table->tb_num_default > 1 &&
D
David Ahern 已提交
1771
	    res->type == RTN_UNICAST)
1772 1773
		fib_select_default(fl4, res);

D
David Ahern 已提交
1774
check_saddr:
1775 1776 1777
	if (!fl4->saddr)
		fl4->saddr = FIB_RES_PREFSRC(net, *res);
}