ip_fib.h 11.9 KB
Newer Older
L
Linus Torvalds 已提交
1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20
/*
 * INET		An implementation of the TCP/IP protocol suite for the LINUX
 *		operating system.  INET  is implemented using the  BSD Socket
 *		interface as the means of communication with the user level.
 *
 *		Definitions for the Forwarding Information Base.
 *
 * Authors:	A.N.Kuznetsov, <kuznet@ms2.inr.ac.ru>
 *
 *		This program is free software; you can redistribute it and/or
 *		modify it under the terms of the GNU General Public License
 *		as published by the Free Software Foundation; either version
 *		2 of the License, or (at your option) any later version.
 */

#ifndef _NET_IP_FIB_H
#define _NET_IP_FIB_H

#include <net/flow.h>
#include <linux/seq_file.h>
21
#include <linux/rcupdate.h>
22
#include <net/fib_notifier.h>
23
#include <net/fib_rules.h>
24
#include <net/inetpeer.h>
E
Eric Dumazet 已提交
25
#include <linux/percpu.h>
26
#include <linux/notifier.h>
27
#include <linux/refcount.h>
L
Linus Torvalds 已提交
28

29 30 31 32 33 34
struct fib_config {
	u8			fc_dst_len;
	u8			fc_tos;
	u8			fc_protocol;
	u8			fc_scope;
	u8			fc_type;
35
	/* 3 bytes unused */
36
	u32			fc_table;
37 38
	__be32			fc_dst;
	__be32			fc_gw;
39 40 41
	int			fc_oif;
	u32			fc_flags;
	u32			fc_priority;
42
	__be32			fc_prefsrc;
43 44 45 46 47 48 49
	struct nlattr		*fc_mx;
	struct rtnexthop	*fc_mp;
	int			fc_mx_len;
	int			fc_mp_len;
	u32			fc_flow;
	u32			fc_nlflags;
	struct nl_info		fc_nlinfo;
50 51 52
	struct nlattr		*fc_encap;
	u16			fc_encap_type;
};
L
Linus Torvalds 已提交
53 54

struct fib_info;
55
struct rtable;
L
Linus Torvalds 已提交
56

57 58
struct fib_nh_exception {
	struct fib_nh_exception __rcu	*fnhe_next;
59
	int				fnhe_genid;
60 61
	__be32				fnhe_daddr;
	u32				fnhe_pmtu;
62
	bool				fnhe_mtu_locked;
63
	__be32				fnhe_gw;
64
	unsigned long			fnhe_expires;
65 66
	struct rtable __rcu		*fnhe_rth_input;
	struct rtable __rcu		*fnhe_rth_output;
67
	unsigned long			fnhe_stamp;
68
	struct rcu_head			rcu;
69 70 71 72 73 74
};

struct fnhe_hash_bucket {
	struct fib_nh_exception __rcu	*chain;
};

E
Eric Dumazet 已提交
75 76
#define FNHE_HASH_SHIFT		11
#define FNHE_HASH_SIZE		(1 << FNHE_HASH_SHIFT)
77 78
#define FNHE_RECLAIM_DEPTH	5

L
Linus Torvalds 已提交
79 80 81 82
struct fib_nh {
	struct net_device	*nh_dev;
	struct hlist_node	nh_hash;
	struct fib_info		*nh_parent;
83
	unsigned int		nh_flags;
L
Linus Torvalds 已提交
84 85 86
	unsigned char		nh_scope;
#ifdef CONFIG_IP_ROUTE_MULTIPATH
	int			nh_weight;
P
Peter Nørlund 已提交
87
	atomic_t		nh_upper_bound;
L
Linus Torvalds 已提交
88
#endif
89
#ifdef CONFIG_IP_ROUTE_CLASSID
L
Linus Torvalds 已提交
90 91 92
	__u32			nh_tclassid;
#endif
	int			nh_oif;
A
Al Viro 已提交
93
	__be32			nh_gw;
94
	__be32			nh_saddr;
95
	int			nh_saddr_genid;
E
Eric Dumazet 已提交
96
	struct rtable __rcu * __percpu *nh_pcpu_rth_output;
97
	struct rtable __rcu	*nh_rth_input;
98
	struct fnhe_hash_bucket	__rcu *nh_exceptions;
99
	struct lwtunnel_state	*nh_lwtstate;
L
Linus Torvalds 已提交
100 101 102 103 104 105 106 107 108
};

/*
 * This structure contains data shared by many of routes.
 */

struct fib_info {
	struct hlist_node	fib_hash;
	struct hlist_node	fib_lhash;
109
	struct net		*fib_net;
L
Linus Torvalds 已提交
110
	int			fib_treeref;
111
	refcount_t		fib_clntref;
112
	unsigned int		fib_flags;
113 114 115
	unsigned char		fib_dead;
	unsigned char		fib_protocol;
	unsigned char		fib_scope;
E
Eric Dumazet 已提交
116
	unsigned char		fib_type;
A
Al Viro 已提交
117
	__be32			fib_prefsrc;
118
	u32			fib_tb_id;
L
Linus Torvalds 已提交
119
	u32			fib_priority;
120 121 122 123 124
	struct dst_metrics	*fib_metrics;
#define fib_mtu fib_metrics->metrics[RTAX_MTU-1]
#define fib_window fib_metrics->metrics[RTAX_WINDOW-1]
#define fib_rtt fib_metrics->metrics[RTAX_RTT-1]
#define fib_advmss fib_metrics->metrics[RTAX_ADVMSS-1]
L
Linus Torvalds 已提交
125
	int			fib_nhs;
E
Eric Dumazet 已提交
126
	struct rcu_head		rcu;
L
Linus Torvalds 已提交
127 128 129 130 131 132 133 134 135
	struct fib_nh		fib_nh[0];
#define fib_dev		fib_nh[0].nh_dev
};


#ifdef CONFIG_IP_MULTIPLE_TABLES
struct fib_rule;
#endif

136
struct fib_table;
L
Linus Torvalds 已提交
137
struct fib_result {
138
	__be32		prefix;
L
Linus Torvalds 已提交
139 140 141 142
	unsigned char	prefixlen;
	unsigned char	nh_sel;
	unsigned char	type;
	unsigned char	scope;
143
	u32		tclassid;
L
Linus Torvalds 已提交
144
	struct fib_info *fi;
145
	struct fib_table *table;
146
	struct hlist_head *fa_head;
L
Linus Torvalds 已提交
147 148
};

149
struct fib_result_nl {
150
	__be32		fl_addr;   /* To be looked up*/
151
	u32		fl_mark;
152 153 154 155 156 157 158 159 160
	unsigned char	fl_tos;
	unsigned char   fl_scope;
	unsigned char   tb_id_in;

	unsigned char   tb_id;      /* Results */
	unsigned char	prefixlen;
	unsigned char	nh_sel;
	unsigned char	type;
	unsigned char	scope;
S
Stephen Hemminger 已提交
161
	int             err;
162
};
L
Linus Torvalds 已提交
163 164 165 166 167

#ifdef CONFIG_IP_ROUTE_MULTIPATH
#define FIB_RES_NH(res)		((res).fi->fib_nh[(res).nh_sel])
#else /* CONFIG_IP_ROUTE_MULTIPATH */
#define FIB_RES_NH(res)		((res).fi->fib_nh[0])
168
#endif /* CONFIG_IP_ROUTE_MULTIPATH */
L
Linus Torvalds 已提交
169

170
#ifdef CONFIG_IP_MULTIPLE_TABLES
171
#define FIB_TABLE_HASHSZ 256
172 173 174
#else
#define FIB_TABLE_HASHSZ 2
#endif
L
Linus Torvalds 已提交
175

176
__be32 fib_info_update_nh_saddr(struct net *net, struct fib_nh *nh);
177 178 179 180 181 182

#define FIB_RES_SADDR(net, res)				\
	((FIB_RES_NH(res).nh_saddr_genid ==		\
	  atomic_read(&(net)->ipv4.dev_addr_genid)) ?	\
	 FIB_RES_NH(res).nh_saddr :			\
	 fib_info_update_nh_saddr((net), &FIB_RES_NH(res)))
L
Linus Torvalds 已提交
183 184 185 186
#define FIB_RES_GW(res)			(FIB_RES_NH(res).nh_gw)
#define FIB_RES_DEV(res)		(FIB_RES_NH(res).nh_dev)
#define FIB_RES_OIF(res)		(FIB_RES_NH(res).nh_oif)

187 188
#define FIB_RES_PREFSRC(net, res)	((res).fi->fib_prefsrc ? : \
					 FIB_RES_SADDR(net, res))
189

190 191 192 193 194 195 196 197 198 199
struct fib_entry_notifier_info {
	struct fib_notifier_info info; /* must be first */
	u32 dst;
	int dst_len;
	struct fib_info *fi;
	u8 tos;
	u8 type;
	u32 tb_id;
};

200 201 202 203 204
struct fib_nh_notifier_info {
	struct fib_notifier_info info; /* must be first */
	struct fib_nh *fib_nh;
};

205 206
int call_fib4_notifier(struct notifier_block *nb, struct net *net,
		       enum fib_event_type event_type,
207
		       struct fib_notifier_info *info);
208 209 210 211 212
int call_fib4_notifiers(struct net *net, enum fib_event_type event_type,
			struct fib_notifier_info *info);

int __net_init fib4_notifier_init(struct net *net);
void __net_exit fib4_notifier_exit(struct net *net);
213

214
void fib_notify(struct net *net, struct notifier_block *nb);
215

L
Linus Torvalds 已提交
216
struct fib_table {
217 218 219
	struct hlist_node	tb_hlist;
	u32			tb_id;
	int			tb_num_default;
220
	struct rcu_head		rcu;
221 222
	unsigned long 		*tb_data;
	unsigned long		__data[0];
L
Linus Torvalds 已提交
223 224
};

D
David Ahern 已提交
225 226 227 228 229 230 231 232 233 234
struct fib_dump_filter {
	u32			table_id;
	/* filter_set is an optimization that an entry is set */
	bool			filter_set;
	unsigned char		protocol;
	unsigned char		rt_type;
	unsigned int		flags;
	struct net_device	*dev;
};

235 236
int fib_table_lookup(struct fib_table *tb, const struct flowi4 *flp,
		     struct fib_result *res, int fib_flags);
237 238
int fib_table_insert(struct net *, struct fib_table *, struct fib_config *,
		     struct netlink_ext_ack *extack);
239 240
int fib_table_delete(struct net *, struct fib_table *, struct fib_config *,
		     struct netlink_ext_ack *extack);
241
int fib_table_dump(struct fib_table *table, struct sk_buff *skb,
242
		   struct netlink_callback *cb, struct fib_dump_filter *filter);
243
int fib_table_flush(struct net *net, struct fib_table *table);
244
struct fib_table *fib_trie_unmerge(struct fib_table *main_tb);
245
void fib_table_flush_external(struct fib_table *table);
246
void fib_free_table(struct fib_table *tb);
247

L
Linus Torvalds 已提交
248 249
#ifndef CONFIG_IP_MULTIPLE_TABLES

250 251
#define TABLE_LOCAL_INDEX	(RT_TABLE_LOCAL & (FIB_TABLE_HASHSZ - 1))
#define TABLE_MAIN_INDEX	(RT_TABLE_MAIN  & (FIB_TABLE_HASHSZ - 1))
L
Linus Torvalds 已提交
252

253
static inline struct fib_table *fib_get_table(struct net *net, u32 id)
L
Linus Torvalds 已提交
254
{
255
	struct hlist_node *tb_hlist;
256 257 258
	struct hlist_head *ptr;

	ptr = id == RT_TABLE_LOCAL ?
259 260
		&net->ipv4.fib_table_hash[TABLE_LOCAL_INDEX] :
		&net->ipv4.fib_table_hash[TABLE_MAIN_INDEX];
261 262 263 264

	tb_hlist = rcu_dereference_rtnl(hlist_first_rcu(ptr));

	return hlist_entry(tb_hlist, struct fib_table, tb_hlist);
L
Linus Torvalds 已提交
265 266
}

267
static inline struct fib_table *fib_new_table(struct net *net, u32 id)
L
Linus Torvalds 已提交
268
{
269
	return fib_get_table(net, id);
L
Linus Torvalds 已提交
270 271
}

272
static inline int fib_lookup(struct net *net, const struct flowi4 *flp,
273
			     struct fib_result *res, unsigned int flags)
L
Linus Torvalds 已提交
274
{
275
	struct fib_table *tb;
276
	int err = -ENETUNREACH;
277 278 279

	rcu_read_lock();

280
	tb = fib_get_table(net, RT_TABLE_MAIN);
281 282 283 284 285
	if (tb)
		err = fib_table_lookup(tb, flp, res, flags | FIB_LOOKUP_NOREF);

	if (err == -EAGAIN)
		err = -ENETUNREACH;
286

287
	rcu_read_unlock();
288

289
	return err;
L
Linus Torvalds 已提交
290 291
}

292 293 294 295 296
static inline bool fib4_rule_default(const struct fib_rule *rule)
{
	return true;
}

297 298 299 300 301 302 303 304 305 306
static inline int fib4_rules_dump(struct net *net, struct notifier_block *nb)
{
	return 0;
}

static inline unsigned int fib4_rules_seq_read(struct net *net)
{
	return 0;
}

307 308 309 310 311 312 313
static inline bool fib4_rules_early_flow_dissect(struct net *net,
						 struct sk_buff *skb,
						 struct flowi4 *fl4,
						 struct flow_keys *flkeys)
{
	return false;
}
L
Linus Torvalds 已提交
314
#else /* CONFIG_IP_MULTIPLE_TABLES */
315 316
int __net_init fib4_rules_init(struct net *net);
void __net_exit fib4_rules_exit(struct net *net);
317

318 319
struct fib_table *fib_new_table(struct net *net, u32 id);
struct fib_table *fib_get_table(struct net *net, u32 id);
L
Linus Torvalds 已提交
320

321 322
int __fib_lookup(struct net *net, struct flowi4 *flp,
		 struct fib_result *res, unsigned int flags);
323 324

static inline int fib_lookup(struct net *net, struct flowi4 *flp,
325
			     struct fib_result *res, unsigned int flags)
326
{
327
	struct fib_table *tb;
328
	int err = -ENETUNREACH;
329

330
	flags |= FIB_LOOKUP_NOREF;
331
	if (net->ipv4.fib_has_custom_rules)
332
		return __fib_lookup(net, flp, res, flags);
333 334 335 336 337

	rcu_read_lock();

	res->tclassid = 0;

338 339 340 341 342 343 344 345 346 347
	tb = rcu_dereference_rtnl(net->ipv4.fib_main);
	if (tb)
		err = fib_table_lookup(tb, flp, res, flags);

	if (!err)
		goto out;

	tb = rcu_dereference_rtnl(net->ipv4.fib_default);
	if (tb)
		err = fib_table_lookup(tb, flp, res, flags);
348

349 350 351
out:
	if (err == -EAGAIN)
		err = -ENETUNREACH;
352 353 354 355

	rcu_read_unlock();

	return err;
356 357
}

358
bool fib4_rule_default(const struct fib_rule *rule);
359 360
int fib4_rules_dump(struct net *net, struct notifier_block *nb);
unsigned int fib4_rules_seq_read(struct net *net);
361

362 363 364 365 366 367 368 369 370 371 372 373 374 375 376 377 378 379
static inline bool fib4_rules_early_flow_dissect(struct net *net,
						 struct sk_buff *skb,
						 struct flowi4 *fl4,
						 struct flow_keys *flkeys)
{
	unsigned int flag = FLOW_DISSECTOR_F_STOP_AT_ENCAP;

	if (!net->ipv4.fib_rules_require_fldissect)
		return false;

	skb_flow_dissect_flow_keys(skb, flkeys, flag);
	fl4->fl4_sport = flkeys->ports.src;
	fl4->fl4_dport = flkeys->ports.dst;
	fl4->flowi4_proto = flkeys->basic.ip_proto;

	return true;
}

L
Linus Torvalds 已提交
380 381 382
#endif /* CONFIG_IP_MULTIPLE_TABLES */

/* Exported by fib_frontend.c */
383
extern const struct nla_policy rtm_ipv4_policy[];
384 385
void ip_fib_init(void);
__be32 fib_compute_spec_dst(struct sk_buff *skb);
386
bool fib_info_nh_uses_dev(struct fib_info *fi, const struct net_device *dev);
387 388 389
int fib_validate_source(struct sk_buff *skb, __be32 src, __be32 dst,
			u8 tos, int oif, struct net_device *dev,
			struct in_device *idev, u32 *itag);
390
#ifdef CONFIG_IP_ROUTE_CLASSID
391 392 393 394
static inline int fib_num_tclassid_users(struct net *net)
{
	return net->ipv4.fib_num_tclassid_users;
}
395
#else
396 397 398 399
static inline int fib_num_tclassid_users(struct net *net)
{
	return 0;
}
400
#endif
401
int fib_unmerge(struct net *net);
402

L
Linus Torvalds 已提交
403
/* Exported by fib_semantics.c */
404
int ip_fib_check_default(__be32 gw, struct net_device *dev);
405
int fib_sync_down_dev(struct net_device *dev, unsigned long event, bool force);
406
int fib_sync_down_addr(struct net_device *dev, __be32 local);
407
int fib_sync_up(struct net_device *dev, unsigned int nh_flags);
408
void fib_sync_mtu(struct net_device *dev, u32 orig_mtu);
P
Peter Nørlund 已提交
409

410
#ifdef CONFIG_IP_ROUTE_MULTIPATH
411
int fib_multipath_hash(const struct net *net, const struct flowi4 *fl4,
412
		       const struct sk_buff *skb, struct flow_keys *flkeys);
413
#endif
P
Peter Nørlund 已提交
414
void fib_select_multipath(struct fib_result *res, int hash);
415
void fib_select_path(struct net *net, struct fib_result *res,
416
		     struct flowi4 *fl4, const struct sk_buff *skb);
L
Linus Torvalds 已提交
417

418
/* Exported by fib_trie.c */
419
void fib_trie_init(void);
420
struct fib_table *fib_trie_table(u32 id, struct fib_table *alias);
L
Linus Torvalds 已提交
421

422
static inline void fib_combine_itag(u32 *itag, const struct fib_result *res)
L
Linus Torvalds 已提交
423
{
424
#ifdef CONFIG_IP_ROUTE_CLASSID
L
Linus Torvalds 已提交
425 426 427 428 429
#ifdef CONFIG_IP_MULTIPLE_TABLES
	u32 rtag;
#endif
	*itag = FIB_RES_NH(*res).nh_tclassid<<16;
#ifdef CONFIG_IP_MULTIPLE_TABLES
430
	rtag = res->tclassid;
L
Linus Torvalds 已提交
431 432 433 434 435 436 437
	if (*itag == 0)
		*itag = (rtag<<16);
	*itag |= (rtag>>16);
#endif
#endif
}

438
void free_fib_info(struct fib_info *fi);
L
Linus Torvalds 已提交
439

440 441
static inline void fib_info_hold(struct fib_info *fi)
{
442
	refcount_inc(&fi->fib_clntref);
443 444
}

L
Linus Torvalds 已提交
445 446
static inline void fib_info_put(struct fib_info *fi)
{
447
	if (refcount_dec_and_test(&fi->fib_clntref))
L
Linus Torvalds 已提交
448 449 450
		free_fib_info(fi);
}

451
#ifdef CONFIG_PROC_FS
452 453
int __net_init fib_proc_init(struct net *net);
void __net_exit fib_proc_exit(struct net *net);
454 455 456 457 458 459 460 461
#else
static inline int fib_proc_init(struct net *net)
{
	return 0;
}
static inline void fib_proc_exit(struct net *net)
{
}
462 463
#endif

464 465
u32 ip_mtu_from_fib_result(struct fib_result *res, __be32 daddr);

D
David Ahern 已提交
466 467
int ip_valid_fib_dump_req(struct net *net, const struct nlmsghdr *nlh,
			  struct fib_dump_filter *filter,
468
			  struct netlink_callback *cb);
L
Linus Torvalds 已提交
469
#endif  /* _NET_FIB_H */