ip_fib.h 11.3 KB
Newer Older
L
Linus Torvalds 已提交
1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20
/*
 * INET		An implementation of the TCP/IP protocol suite for the LINUX
 *		operating system.  INET  is implemented using the  BSD Socket
 *		interface as the means of communication with the user level.
 *
 *		Definitions for the Forwarding Information Base.
 *
 * Authors:	A.N.Kuznetsov, <kuznet@ms2.inr.ac.ru>
 *
 *		This program is free software; you can redistribute it and/or
 *		modify it under the terms of the GNU General Public License
 *		as published by the Free Software Foundation; either version
 *		2 of the License, or (at your option) any later version.
 */

#ifndef _NET_IP_FIB_H
#define _NET_IP_FIB_H

#include <net/flow.h>
#include <linux/seq_file.h>
21
#include <linux/rcupdate.h>
22
#include <net/fib_notifier.h>
23
#include <net/fib_rules.h>
24
#include <net/inetpeer.h>
E
Eric Dumazet 已提交
25
#include <linux/percpu.h>
26
#include <linux/notifier.h>
27
#include <linux/refcount.h>
L
Linus Torvalds 已提交
28

29 30 31 32 33 34
struct fib_config {
	u8			fc_dst_len;
	u8			fc_tos;
	u8			fc_protocol;
	u8			fc_scope;
	u8			fc_type;
35
	/* 3 bytes unused */
36
	u32			fc_table;
37 38
	__be32			fc_dst;
	__be32			fc_gw;
39 40 41
	int			fc_oif;
	u32			fc_flags;
	u32			fc_priority;
42
	__be32			fc_prefsrc;
43 44 45 46 47 48 49
	struct nlattr		*fc_mx;
	struct rtnexthop	*fc_mp;
	int			fc_mx_len;
	int			fc_mp_len;
	u32			fc_flow;
	u32			fc_nlflags;
	struct nl_info		fc_nlinfo;
50 51 52
	struct nlattr		*fc_encap;
	u16			fc_encap_type;
};
L
Linus Torvalds 已提交
53 54

struct fib_info;
55
struct rtable;
L
Linus Torvalds 已提交
56

57 58
struct fib_nh_exception {
	struct fib_nh_exception __rcu	*fnhe_next;
59
	int				fnhe_genid;
60 61
	__be32				fnhe_daddr;
	u32				fnhe_pmtu;
62
	__be32				fnhe_gw;
63
	unsigned long			fnhe_expires;
64 65
	struct rtable __rcu		*fnhe_rth_input;
	struct rtable __rcu		*fnhe_rth_output;
66
	unsigned long			fnhe_stamp;
67
	struct rcu_head			rcu;
68 69 70 71 72 73
};

struct fnhe_hash_bucket {
	struct fib_nh_exception __rcu	*chain;
};

E
Eric Dumazet 已提交
74 75
#define FNHE_HASH_SHIFT		11
#define FNHE_HASH_SIZE		(1 << FNHE_HASH_SHIFT)
76 77
#define FNHE_RECLAIM_DEPTH	5

L
Linus Torvalds 已提交
78 79 80 81
struct fib_nh {
	struct net_device	*nh_dev;
	struct hlist_node	nh_hash;
	struct fib_info		*nh_parent;
82
	unsigned int		nh_flags;
L
Linus Torvalds 已提交
83 84 85
	unsigned char		nh_scope;
#ifdef CONFIG_IP_ROUTE_MULTIPATH
	int			nh_weight;
P
Peter Nørlund 已提交
86
	atomic_t		nh_upper_bound;
L
Linus Torvalds 已提交
87
#endif
88
#ifdef CONFIG_IP_ROUTE_CLASSID
L
Linus Torvalds 已提交
89 90 91
	__u32			nh_tclassid;
#endif
	int			nh_oif;
A
Al Viro 已提交
92
	__be32			nh_gw;
93
	__be32			nh_saddr;
94
	int			nh_saddr_genid;
E
Eric Dumazet 已提交
95
	struct rtable __rcu * __percpu *nh_pcpu_rth_output;
96
	struct rtable __rcu	*nh_rth_input;
97
	struct fnhe_hash_bucket	__rcu *nh_exceptions;
98
	struct lwtunnel_state	*nh_lwtstate;
L
Linus Torvalds 已提交
99 100 101 102 103 104 105 106 107
};

/*
 * This structure contains data shared by many of routes.
 */

struct fib_info {
	struct hlist_node	fib_hash;
	struct hlist_node	fib_lhash;
108
	struct net		*fib_net;
L
Linus Torvalds 已提交
109
	int			fib_treeref;
110
	refcount_t		fib_clntref;
111
	unsigned int		fib_flags;
112 113 114
	unsigned char		fib_dead;
	unsigned char		fib_protocol;
	unsigned char		fib_scope;
E
Eric Dumazet 已提交
115
	unsigned char		fib_type;
A
Al Viro 已提交
116
	__be32			fib_prefsrc;
117
	u32			fib_tb_id;
L
Linus Torvalds 已提交
118
	u32			fib_priority;
119 120 121 122 123
	struct dst_metrics	*fib_metrics;
#define fib_mtu fib_metrics->metrics[RTAX_MTU-1]
#define fib_window fib_metrics->metrics[RTAX_WINDOW-1]
#define fib_rtt fib_metrics->metrics[RTAX_RTT-1]
#define fib_advmss fib_metrics->metrics[RTAX_ADVMSS-1]
L
Linus Torvalds 已提交
124
	int			fib_nhs;
E
Eric Dumazet 已提交
125
	struct rcu_head		rcu;
L
Linus Torvalds 已提交
126 127 128 129 130 131 132 133 134
	struct fib_nh		fib_nh[0];
#define fib_dev		fib_nh[0].nh_dev
};


#ifdef CONFIG_IP_MULTIPLE_TABLES
struct fib_rule;
#endif

135
struct fib_table;
L
Linus Torvalds 已提交
136
struct fib_result {
137
	__be32		prefix;
L
Linus Torvalds 已提交
138 139 140 141
	unsigned char	prefixlen;
	unsigned char	nh_sel;
	unsigned char	type;
	unsigned char	scope;
142
	u32		tclassid;
L
Linus Torvalds 已提交
143
	struct fib_info *fi;
144
	struct fib_table *table;
145
	struct hlist_head *fa_head;
L
Linus Torvalds 已提交
146 147
};

148
struct fib_result_nl {
149
	__be32		fl_addr;   /* To be looked up*/
150
	u32		fl_mark;
151 152 153 154 155 156 157 158 159
	unsigned char	fl_tos;
	unsigned char   fl_scope;
	unsigned char   tb_id_in;

	unsigned char   tb_id;      /* Results */
	unsigned char	prefixlen;
	unsigned char	nh_sel;
	unsigned char	type;
	unsigned char	scope;
S
Stephen Hemminger 已提交
160
	int             err;
161
};
L
Linus Torvalds 已提交
162 163 164 165 166

#ifdef CONFIG_IP_ROUTE_MULTIPATH
#define FIB_RES_NH(res)		((res).fi->fib_nh[(res).nh_sel])
#else /* CONFIG_IP_ROUTE_MULTIPATH */
#define FIB_RES_NH(res)		((res).fi->fib_nh[0])
167
#endif /* CONFIG_IP_ROUTE_MULTIPATH */
L
Linus Torvalds 已提交
168

169
#ifdef CONFIG_IP_MULTIPLE_TABLES
170
#define FIB_TABLE_HASHSZ 256
171 172 173
#else
#define FIB_TABLE_HASHSZ 2
#endif
L
Linus Torvalds 已提交
174

175
__be32 fib_info_update_nh_saddr(struct net *net, struct fib_nh *nh);
176 177 178 179 180 181

#define FIB_RES_SADDR(net, res)				\
	((FIB_RES_NH(res).nh_saddr_genid ==		\
	  atomic_read(&(net)->ipv4.dev_addr_genid)) ?	\
	 FIB_RES_NH(res).nh_saddr :			\
	 fib_info_update_nh_saddr((net), &FIB_RES_NH(res)))
L
Linus Torvalds 已提交
182 183 184 185
#define FIB_RES_GW(res)			(FIB_RES_NH(res).nh_gw)
#define FIB_RES_DEV(res)		(FIB_RES_NH(res).nh_dev)
#define FIB_RES_OIF(res)		(FIB_RES_NH(res).nh_oif)

186 187
#define FIB_RES_PREFSRC(net, res)	((res).fi->fib_prefsrc ? : \
					 FIB_RES_SADDR(net, res))
188

189 190 191 192 193 194 195 196 197 198
struct fib_entry_notifier_info {
	struct fib_notifier_info info; /* must be first */
	u32 dst;
	int dst_len;
	struct fib_info *fi;
	u8 tos;
	u8 type;
	u32 tb_id;
};

199 200 201 202 203
struct fib_nh_notifier_info {
	struct fib_notifier_info info; /* must be first */
	struct fib_nh *fib_nh;
};

204 205
int call_fib4_notifier(struct notifier_block *nb, struct net *net,
		       enum fib_event_type event_type,
206
		       struct fib_notifier_info *info);
207 208 209 210 211
int call_fib4_notifiers(struct net *net, enum fib_event_type event_type,
			struct fib_notifier_info *info);

int __net_init fib4_notifier_init(struct net *net);
void __net_exit fib4_notifier_exit(struct net *net);
212

213
void fib_notify(struct net *net, struct notifier_block *nb);
214

L
Linus Torvalds 已提交
215
struct fib_table {
216 217 218
	struct hlist_node	tb_hlist;
	u32			tb_id;
	int			tb_num_default;
219
	struct rcu_head		rcu;
220 221
	unsigned long 		*tb_data;
	unsigned long		__data[0];
L
Linus Torvalds 已提交
222 223
};

224 225
int fib_table_lookup(struct fib_table *tb, const struct flowi4 *flp,
		     struct fib_result *res, int fib_flags);
226 227
int fib_table_insert(struct net *, struct fib_table *, struct fib_config *,
		     struct netlink_ext_ack *extack);
228 229
int fib_table_delete(struct net *, struct fib_table *, struct fib_config *,
		     struct netlink_ext_ack *extack);
230 231
int fib_table_dump(struct fib_table *table, struct sk_buff *skb,
		   struct netlink_callback *cb);
232
int fib_table_flush(struct net *net, struct fib_table *table);
233
struct fib_table *fib_trie_unmerge(struct fib_table *main_tb);
234
void fib_table_flush_external(struct fib_table *table);
235
void fib_free_table(struct fib_table *tb);
236

L
Linus Torvalds 已提交
237 238
#ifndef CONFIG_IP_MULTIPLE_TABLES

239 240
#define TABLE_LOCAL_INDEX	(RT_TABLE_LOCAL & (FIB_TABLE_HASHSZ - 1))
#define TABLE_MAIN_INDEX	(RT_TABLE_MAIN  & (FIB_TABLE_HASHSZ - 1))
L
Linus Torvalds 已提交
241

242
static inline struct fib_table *fib_get_table(struct net *net, u32 id)
L
Linus Torvalds 已提交
243
{
244
	struct hlist_node *tb_hlist;
245 246 247
	struct hlist_head *ptr;

	ptr = id == RT_TABLE_LOCAL ?
248 249
		&net->ipv4.fib_table_hash[TABLE_LOCAL_INDEX] :
		&net->ipv4.fib_table_hash[TABLE_MAIN_INDEX];
250 251 252 253

	tb_hlist = rcu_dereference_rtnl(hlist_first_rcu(ptr));

	return hlist_entry(tb_hlist, struct fib_table, tb_hlist);
L
Linus Torvalds 已提交
254 255
}

256
static inline struct fib_table *fib_new_table(struct net *net, u32 id)
L
Linus Torvalds 已提交
257
{
258
	return fib_get_table(net, id);
L
Linus Torvalds 已提交
259 260
}

261
static inline int fib_lookup(struct net *net, const struct flowi4 *flp,
262
			     struct fib_result *res, unsigned int flags)
L
Linus Torvalds 已提交
263
{
264
	struct fib_table *tb;
265
	int err = -ENETUNREACH;
266 267 268

	rcu_read_lock();

269
	tb = fib_get_table(net, RT_TABLE_MAIN);
270 271 272 273 274
	if (tb)
		err = fib_table_lookup(tb, flp, res, flags | FIB_LOOKUP_NOREF);

	if (err == -EAGAIN)
		err = -ENETUNREACH;
275

276
	rcu_read_unlock();
277

278
	return err;
L
Linus Torvalds 已提交
279 280
}

281 282 283 284 285
static inline bool fib4_rule_default(const struct fib_rule *rule)
{
	return true;
}

286 287 288 289 290 291 292 293 294 295
static inline int fib4_rules_dump(struct net *net, struct notifier_block *nb)
{
	return 0;
}

static inline unsigned int fib4_rules_seq_read(struct net *net)
{
	return 0;
}

296 297 298 299 300 301 302
static inline bool fib4_rules_early_flow_dissect(struct net *net,
						 struct sk_buff *skb,
						 struct flowi4 *fl4,
						 struct flow_keys *flkeys)
{
	return false;
}
L
Linus Torvalds 已提交
303
#else /* CONFIG_IP_MULTIPLE_TABLES */
304 305
int __net_init fib4_rules_init(struct net *net);
void __net_exit fib4_rules_exit(struct net *net);
306

307 308
struct fib_table *fib_new_table(struct net *net, u32 id);
struct fib_table *fib_get_table(struct net *net, u32 id);
L
Linus Torvalds 已提交
309

310 311
int __fib_lookup(struct net *net, struct flowi4 *flp,
		 struct fib_result *res, unsigned int flags);
312 313

static inline int fib_lookup(struct net *net, struct flowi4 *flp,
314
			     struct fib_result *res, unsigned int flags)
315
{
316
	struct fib_table *tb;
317
	int err = -ENETUNREACH;
318

319
	flags |= FIB_LOOKUP_NOREF;
320
	if (net->ipv4.fib_has_custom_rules)
321
		return __fib_lookup(net, flp, res, flags);
322 323 324 325 326

	rcu_read_lock();

	res->tclassid = 0;

327 328 329 330 331 332 333 334 335 336
	tb = rcu_dereference_rtnl(net->ipv4.fib_main);
	if (tb)
		err = fib_table_lookup(tb, flp, res, flags);

	if (!err)
		goto out;

	tb = rcu_dereference_rtnl(net->ipv4.fib_default);
	if (tb)
		err = fib_table_lookup(tb, flp, res, flags);
337

338 339 340
out:
	if (err == -EAGAIN)
		err = -ENETUNREACH;
341 342 343 344

	rcu_read_unlock();

	return err;
345 346
}

347
bool fib4_rule_default(const struct fib_rule *rule);
348 349
int fib4_rules_dump(struct net *net, struct notifier_block *nb);
unsigned int fib4_rules_seq_read(struct net *net);
350

351 352 353 354 355 356 357 358 359 360 361 362 363 364 365 366 367 368
static inline bool fib4_rules_early_flow_dissect(struct net *net,
						 struct sk_buff *skb,
						 struct flowi4 *fl4,
						 struct flow_keys *flkeys)
{
	unsigned int flag = FLOW_DISSECTOR_F_STOP_AT_ENCAP;

	if (!net->ipv4.fib_rules_require_fldissect)
		return false;

	skb_flow_dissect_flow_keys(skb, flkeys, flag);
	fl4->fl4_sport = flkeys->ports.src;
	fl4->fl4_dport = flkeys->ports.dst;
	fl4->flowi4_proto = flkeys->basic.ip_proto;

	return true;
}

L
Linus Torvalds 已提交
369 370 371
#endif /* CONFIG_IP_MULTIPLE_TABLES */

/* Exported by fib_frontend.c */
372
extern const struct nla_policy rtm_ipv4_policy[];
373 374 375 376 377
void ip_fib_init(void);
__be32 fib_compute_spec_dst(struct sk_buff *skb);
int fib_validate_source(struct sk_buff *skb, __be32 src, __be32 dst,
			u8 tos, int oif, struct net_device *dev,
			struct in_device *idev, u32 *itag);
378
#ifdef CONFIG_IP_ROUTE_CLASSID
379 380 381 382
static inline int fib_num_tclassid_users(struct net *net)
{
	return net->ipv4.fib_num_tclassid_users;
}
383
#else
384 385 386 387
static inline int fib_num_tclassid_users(struct net *net)
{
	return 0;
}
388
#endif
389
int fib_unmerge(struct net *net);
390

L
Linus Torvalds 已提交
391
/* Exported by fib_semantics.c */
392
int ip_fib_check_default(__be32 gw, struct net_device *dev);
393
int fib_sync_down_dev(struct net_device *dev, unsigned long event, bool force);
394
int fib_sync_down_addr(struct net_device *dev, __be32 local);
395
int fib_sync_up(struct net_device *dev, unsigned int nh_flags);
P
Peter Nørlund 已提交
396

397 398
#ifdef CONFIG_IP_ROUTE_MULTIPATH
int fib_multipath_hash(const struct fib_info *fi, const struct flowi4 *fl4,
399
		       const struct sk_buff *skb, struct flow_keys *flkeys);
400
#endif
P
Peter Nørlund 已提交
401
void fib_select_multipath(struct fib_result *res, int hash);
402
void fib_select_path(struct net *net, struct fib_result *res,
403
		     struct flowi4 *fl4, const struct sk_buff *skb);
L
Linus Torvalds 已提交
404

405
/* Exported by fib_trie.c */
406
void fib_trie_init(void);
407
struct fib_table *fib_trie_table(u32 id, struct fib_table *alias);
L
Linus Torvalds 已提交
408

409
static inline void fib_combine_itag(u32 *itag, const struct fib_result *res)
L
Linus Torvalds 已提交
410
{
411
#ifdef CONFIG_IP_ROUTE_CLASSID
L
Linus Torvalds 已提交
412 413 414 415 416
#ifdef CONFIG_IP_MULTIPLE_TABLES
	u32 rtag;
#endif
	*itag = FIB_RES_NH(*res).nh_tclassid<<16;
#ifdef CONFIG_IP_MULTIPLE_TABLES
417
	rtag = res->tclassid;
L
Linus Torvalds 已提交
418 419 420 421 422 423 424
	if (*itag == 0)
		*itag = (rtag<<16);
	*itag |= (rtag>>16);
#endif
#endif
}

425
void free_fib_info(struct fib_info *fi);
L
Linus Torvalds 已提交
426

427 428
static inline void fib_info_hold(struct fib_info *fi)
{
429
	refcount_inc(&fi->fib_clntref);
430 431
}

L
Linus Torvalds 已提交
432 433
static inline void fib_info_put(struct fib_info *fi)
{
434
	if (refcount_dec_and_test(&fi->fib_clntref))
L
Linus Torvalds 已提交
435 436 437
		free_fib_info(fi);
}

438
#ifdef CONFIG_PROC_FS
439 440
int __net_init fib_proc_init(struct net *net);
void __net_exit fib_proc_exit(struct net *net);
441 442 443 444 445 446 447 448
#else
static inline int fib_proc_init(struct net *net)
{
	return 0;
}
static inline void fib_proc_exit(struct net *net)
{
}
449 450
#endif

L
Linus Torvalds 已提交
451
#endif  /* _NET_FIB_H */