macvlan.c 24.7 KB
Newer Older
P
Patrick McHardy 已提交
1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22
/*
 * Copyright (c) 2007 Patrick McHardy <kaber@trash.net>
 *
 * This program is free software; you can redistribute it and/or
 * modify it under the terms of the GNU General Public License as
 * published by the Free Software Foundation; either version 2 of
 * the License, or (at your option) any later version.
 *
 * The code this is based on carried the following copyright notice:
 * ---
 * (C) Copyright 2001-2006
 * Alex Zeffertt, Cambridge Broadband Ltd, ajz@cambridgebroadband.com
 * Re-worked by Ben Greear <greearb@candelatech.com>
 * ---
 */
#include <linux/kernel.h>
#include <linux/types.h>
#include <linux/module.h>
#include <linux/init.h>
#include <linux/errno.h>
#include <linux/slab.h>
#include <linux/string.h>
23
#include <linux/rculist.h>
P
Patrick McHardy 已提交
24 25 26 27 28
#include <linux/notifier.h>
#include <linux/netdevice.h>
#include <linux/etherdevice.h>
#include <linux/ethtool.h>
#include <linux/if_arp.h>
29
#include <linux/if_vlan.h>
P
Patrick McHardy 已提交
30 31
#include <linux/if_link.h>
#include <linux/if_macvlan.h>
E
Eric Dumazet 已提交
32
#include <linux/hash.h>
P
Patrick McHardy 已提交
33
#include <net/rtnetlink.h>
34
#include <net/xfrm.h>
P
Patrick McHardy 已提交
35 36 37 38 39 40 41

#define MACVLAN_HASH_SIZE	(1 << BITS_PER_BYTE)

struct macvlan_port {
	struct net_device	*dev;
	struct hlist_head	vlan_hash[MACVLAN_HASH_SIZE];
	struct list_head	vlans;
J
Jiri Pirko 已提交
42
	struct rcu_head		rcu;
43
	bool 			passthru;
44
	int			count;
P
Patrick McHardy 已提交
45 46
};

47 48
static void macvlan_port_destroy(struct net_device *dev);

49 50 51 52 53
#define macvlan_port_get_rcu(dev) \
	((struct macvlan_port *) rcu_dereference(dev->rx_handler_data))
#define macvlan_port_get(dev) ((struct macvlan_port *) dev->rx_handler_data)
#define macvlan_port_exists(dev) (dev->priv_flags & IFF_MACVLAN_PORT)

P
Patrick McHardy 已提交
54 55 56 57 58 59 60
static struct macvlan_dev *macvlan_hash_lookup(const struct macvlan_port *port,
					       const unsigned char *addr)
{
	struct macvlan_dev *vlan;
	struct hlist_node *n;

	hlist_for_each_entry_rcu(vlan, n, &port->vlan_hash[addr[5]], hlist) {
61
		if (ether_addr_equal_64bits(vlan->dev->dev_addr, addr))
P
Patrick McHardy 已提交
62 63 64 65 66
			return vlan;
	}
	return NULL;
}

67 68 69 70 71 72 73 74
static void macvlan_hash_add(struct macvlan_dev *vlan)
{
	struct macvlan_port *port = vlan->port;
	const unsigned char *addr = vlan->dev->dev_addr;

	hlist_add_head_rcu(&vlan->hlist, &port->vlan_hash[addr[5]]);
}

75
static void macvlan_hash_del(struct macvlan_dev *vlan, bool sync)
76 77
{
	hlist_del_rcu(&vlan->hlist);
78 79
	if (sync)
		synchronize_rcu();
80 81 82 83 84
}

static void macvlan_hash_change_addr(struct macvlan_dev *vlan,
					const unsigned char *addr)
{
85
	macvlan_hash_del(vlan, true);
86 87 88 89 90 91 92 93 94 95 96 97 98 99
	/* Now that we are unhashed it is safe to change the device
	 * address without confusing packet delivery.
	 */
	memcpy(vlan->dev->dev_addr, addr, ETH_ALEN);
	macvlan_hash_add(vlan);
}

static int macvlan_addr_busy(const struct macvlan_port *port,
				const unsigned char *addr)
{
	/* Test to see if the specified multicast address is
	 * currently in use by the underlying device or
	 * another macvlan.
	 */
100
	if (ether_addr_equal_64bits(port->dev->dev_addr, addr))
101 102 103 104 105 106 107 108
		return 1;

	if (macvlan_hash_lookup(port, addr))
		return 1;

	return 0;
}

A
Arnd Bergmann 已提交
109

110 111
static int macvlan_broadcast_one(struct sk_buff *skb,
				 const struct macvlan_dev *vlan,
112
				 const struct ethhdr *eth, bool local)
A
Arnd Bergmann 已提交
113
{
114
	struct net_device *dev = vlan->dev;
A
Arnd Bergmann 已提交
115 116 117
	if (!skb)
		return NET_RX_DROP;

118
	if (local)
119
		return vlan->forward(dev, skb);
120

A
Arnd Bergmann 已提交
121
	skb->dev = dev;
122
	if (ether_addr_equal_64bits(eth->h_dest, dev->broadcast))
A
Arnd Bergmann 已提交
123 124 125 126
		skb->pkt_type = PACKET_BROADCAST;
	else
		skb->pkt_type = PACKET_MULTICAST;

127
	return vlan->receive(skb);
A
Arnd Bergmann 已提交
128 129
}

E
Eric Dumazet 已提交
130 131 132 133 134 135 136
static unsigned int mc_hash(const unsigned char *addr)
{
	u32 val = __get_unaligned_cpu32(addr + 2);

	return hash_32(val, MACVLAN_MC_FILTER_BITS);
}

P
Patrick McHardy 已提交
137
static void macvlan_broadcast(struct sk_buff *skb,
138 139 140
			      const struct macvlan_port *port,
			      struct net_device *src,
			      enum macvlan_mode mode)
P
Patrick McHardy 已提交
141 142 143 144 145 146
{
	const struct ethhdr *eth = eth_hdr(skb);
	const struct macvlan_dev *vlan;
	struct hlist_node *n;
	struct sk_buff *nskb;
	unsigned int i;
A
Arnd Bergmann 已提交
147
	int err;
E
Eric Dumazet 已提交
148
	unsigned int hash = mc_hash(eth->h_dest);
P
Patrick McHardy 已提交
149

150 151 152
	if (skb->protocol == htons(ETH_P_PAUSE))
		return;

P
Patrick McHardy 已提交
153 154
	for (i = 0; i < MACVLAN_HASH_SIZE; i++) {
		hlist_for_each_entry_rcu(vlan, n, &port->vlan_hash[i], hlist) {
155 156 157
			if (vlan->dev == src || !(vlan->mode & mode))
				continue;

E
Eric Dumazet 已提交
158 159
			if (!test_bit(hash, vlan->mc_filter))
				continue;
P
Patrick McHardy 已提交
160
			nskb = skb_clone(skb, GFP_ATOMIC);
161
			err = macvlan_broadcast_one(nskb, vlan, eth,
162
					 mode == MACVLAN_MODE_BRIDGE);
A
Arnd Bergmann 已提交
163 164
			macvlan_count_rx(vlan, skb->len + ETH_HLEN,
					 err == NET_RX_SUCCESS, 1);
P
Patrick McHardy 已提交
165 166 167 168 169
		}
	}
}

/* called under rcu_read_lock() from netif_receive_skb */
170
static rx_handler_result_t macvlan_handle_frame(struct sk_buff **pskb)
P
Patrick McHardy 已提交
171
{
172
	struct macvlan_port *port;
173
	struct sk_buff *skb = *pskb;
P
Patrick McHardy 已提交
174 175
	const struct ethhdr *eth = eth_hdr(skb);
	const struct macvlan_dev *vlan;
176
	const struct macvlan_dev *src;
P
Patrick McHardy 已提交
177
	struct net_device *dev;
178 179
	unsigned int len = 0;
	int ret = NET_RX_DROP;
P
Patrick McHardy 已提交
180

181
	port = macvlan_port_get_rcu(skb->dev);
P
Patrick McHardy 已提交
182
	if (is_multicast_ether_addr(eth->h_dest)) {
183 184 185
		skb = ip_check_defrag(skb, IP_DEFRAG_MACVLAN);
		if (!skb)
			return RX_HANDLER_CONSUMED;
186
		eth = eth_hdr(skb);
187 188 189 190 191 192
		src = macvlan_hash_lookup(port, eth->h_source);
		if (!src)
			/* frame comes from an external address */
			macvlan_broadcast(skb, port, NULL,
					  MACVLAN_MODE_PRIVATE |
					  MACVLAN_MODE_VEPA    |
193
					  MACVLAN_MODE_PASSTHRU|
194 195 196 197 198 199 200 201 202 203 204 205 206
					  MACVLAN_MODE_BRIDGE);
		else if (src->mode == MACVLAN_MODE_VEPA)
			/* flood to everyone except source */
			macvlan_broadcast(skb, port, src->dev,
					  MACVLAN_MODE_VEPA |
					  MACVLAN_MODE_BRIDGE);
		else if (src->mode == MACVLAN_MODE_BRIDGE)
			/*
			 * flood only to VEPA ports, bridge ports
			 * already saw the frame on the way out.
			 */
			macvlan_broadcast(skb, port, src->dev,
					  MACVLAN_MODE_VEPA);
207 208 209 210 211 212 213
		else {
			/* forward to original port. */
			vlan = src;
			ret = macvlan_broadcast_one(skb, vlan, eth, 0);
			goto out;
		}

214
		return RX_HANDLER_PASS;
P
Patrick McHardy 已提交
215 216
	}

217 218 219 220
	if (port->passthru)
		vlan = list_first_entry(&port->vlans, struct macvlan_dev, list);
	else
		vlan = macvlan_hash_lookup(port, eth->h_dest);
P
Patrick McHardy 已提交
221
	if (vlan == NULL)
222
		return RX_HANDLER_PASS;
P
Patrick McHardy 已提交
223 224 225 226

	dev = vlan->dev;
	if (unlikely(!(dev->flags & IFF_UP))) {
		kfree_skb(skb);
227
		return RX_HANDLER_CONSUMED;
P
Patrick McHardy 已提交
228
	}
A
Arnd Bergmann 已提交
229
	len = skb->len + ETH_HLEN;
P
Patrick McHardy 已提交
230
	skb = skb_share_check(skb, GFP_ATOMIC);
A
Arnd Bergmann 已提交
231
	if (!skb)
232
		goto out;
P
Patrick McHardy 已提交
233 234 235 236

	skb->dev = dev;
	skb->pkt_type = PACKET_HOST;

237 238 239 240
	ret = vlan->receive(skb);

out:
	macvlan_count_rx(vlan, len, ret == NET_RX_SUCCESS, 0);
241
	return RX_HANDLER_CONSUMED;
P
Patrick McHardy 已提交
242 243
}

244 245 246 247 248
static int macvlan_queue_xmit(struct sk_buff *skb, struct net_device *dev)
{
	const struct macvlan_dev *vlan = netdev_priv(dev);
	const struct macvlan_port *port = vlan->port;
	const struct macvlan_dev *dest;
249
	__u8 ip_summed = skb->ip_summed;
250 251 252

	if (vlan->mode == MACVLAN_MODE_BRIDGE) {
		const struct ethhdr *eth = (void *)skb->data;
253
		skb->ip_summed = CHECKSUM_UNNECESSARY;
254 255 256 257 258 259 260 261 262

		/* send to other bridge ports directly */
		if (is_multicast_ether_addr(eth->h_dest)) {
			macvlan_broadcast(skb, port, dev, MACVLAN_MODE_BRIDGE);
			goto xmit_world;
		}

		dest = macvlan_hash_lookup(port, eth->h_dest);
		if (dest && dest->mode == MACVLAN_MODE_BRIDGE) {
263
			/* send to lowerdev first for its network taps */
264
			dev_forward_skb(vlan->lowerdev, skb);
265 266 267 268 269 270

			return NET_XMIT_SUCCESS;
		}
	}

xmit_world:
271
	skb->ip_summed = ip_summed;
272
	skb->dev = vlan->lowerdev;
273 274 275
	return dev_queue_xmit(skb);
}

276 277
netdev_tx_t macvlan_start_xmit(struct sk_buff *skb,
			       struct net_device *dev)
P
Patrick McHardy 已提交
278 279 280
{
	unsigned int len = skb->len;
	int ret;
E
Eric Dumazet 已提交
281
	const struct macvlan_dev *vlan = netdev_priv(dev);
P
Patrick McHardy 已提交
282

283
	ret = macvlan_queue_xmit(skb, dev);
284
	if (likely(ret == NET_XMIT_SUCCESS || ret == NET_XMIT_CN)) {
E
Eric Dumazet 已提交
285
		struct macvlan_pcpu_stats *pcpu_stats;
286

E
Eric Dumazet 已提交
287 288 289 290 291 292 293 294
		pcpu_stats = this_cpu_ptr(vlan->pcpu_stats);
		u64_stats_update_begin(&pcpu_stats->syncp);
		pcpu_stats->tx_packets++;
		pcpu_stats->tx_bytes += len;
		u64_stats_update_end(&pcpu_stats->syncp);
	} else {
		this_cpu_inc(vlan->pcpu_stats->tx_dropped);
	}
295
	return ret;
P
Patrick McHardy 已提交
296
}
297
EXPORT_SYMBOL_GPL(macvlan_start_xmit);
P
Patrick McHardy 已提交
298 299

static int macvlan_hard_header(struct sk_buff *skb, struct net_device *dev,
300 301
			       unsigned short type, const void *daddr,
			       const void *saddr, unsigned len)
P
Patrick McHardy 已提交
302 303 304 305
{
	const struct macvlan_dev *vlan = netdev_priv(dev);
	struct net_device *lowerdev = vlan->lowerdev;

306 307
	return dev_hard_header(skb, lowerdev, type, daddr,
			       saddr ? : dev->dev_addr, len);
P
Patrick McHardy 已提交
308 309
}

310 311 312 313 314 315 316 317
static const struct header_ops macvlan_hard_header_ops = {
	.create  	= macvlan_hard_header,
	.rebuild	= eth_rebuild_header,
	.parse		= eth_header_parse,
	.cache		= eth_header_cache,
	.cache_update	= eth_header_cache_update,
};

P
Patrick McHardy 已提交
318 319 320 321 322 323
static int macvlan_open(struct net_device *dev)
{
	struct macvlan_dev *vlan = netdev_priv(dev);
	struct net_device *lowerdev = vlan->lowerdev;
	int err;

324
	if (vlan->port->passthru) {
325 326
		if (!(vlan->flags & MACVLAN_FLAG_NOPROMISC))
			dev_set_promiscuity(lowerdev, 1);
327 328 329
		goto hash_add;
	}

330 331 332 333
	err = -EBUSY;
	if (macvlan_addr_busy(vlan->port, dev->dev_addr))
		goto out;

334
	err = dev_uc_add(lowerdev, dev->dev_addr);
P
Patrick McHardy 已提交
335
	if (err < 0)
336 337 338 339 340 341
		goto out;
	if (dev->flags & IFF_ALLMULTI) {
		err = dev_set_allmulti(lowerdev, 1);
		if (err < 0)
			goto del_unicast;
	}
342 343

hash_add:
344
	macvlan_hash_add(vlan);
P
Patrick McHardy 已提交
345
	return 0;
346 347

del_unicast:
348
	dev_uc_del(lowerdev, dev->dev_addr);
349 350
out:
	return err;
P
Patrick McHardy 已提交
351 352 353 354 355 356 357
}

static int macvlan_stop(struct net_device *dev)
{
	struct macvlan_dev *vlan = netdev_priv(dev);
	struct net_device *lowerdev = vlan->lowerdev;

358 359 360
	dev_uc_unsync(lowerdev, dev);
	dev_mc_unsync(lowerdev, dev);

361
	if (vlan->port->passthru) {
362 363
		if (!(vlan->flags & MACVLAN_FLAG_NOPROMISC))
			dev_set_promiscuity(lowerdev, -1);
364 365 366
		goto hash_del;
	}

P
Patrick McHardy 已提交
367 368 369
	if (dev->flags & IFF_ALLMULTI)
		dev_set_allmulti(lowerdev, -1);

370
	dev_uc_del(lowerdev, dev->dev_addr);
P
Patrick McHardy 已提交
371

372
hash_del:
373
	macvlan_hash_del(vlan, !dev->dismantle);
P
Patrick McHardy 已提交
374 375 376
	return 0;
}

377 378 379 380 381 382 383 384 385 386
static int macvlan_set_mac_address(struct net_device *dev, void *p)
{
	struct macvlan_dev *vlan = netdev_priv(dev);
	struct net_device *lowerdev = vlan->lowerdev;
	struct sockaddr *addr = p;
	int err;

	if (!is_valid_ether_addr(addr->sa_data))
		return -EADDRNOTAVAIL;

387 388 389 390 391 392 393
	if (!(dev->flags & IFF_UP)) {
		/* Just copy in the new address */
		memcpy(dev->dev_addr, addr->sa_data, ETH_ALEN);
	} else {
		/* Rehash and update the device filters */
		if (macvlan_addr_busy(vlan->port, addr->sa_data))
			return -EBUSY;
394

395
		err = dev_uc_add(lowerdev, addr->sa_data);
J
Jiri Pirko 已提交
396
		if (err)
397
			return err;
398

399
		dev_uc_del(lowerdev, dev->dev_addr);
400 401 402

		macvlan_hash_change_addr(vlan, addr->sa_data);
	}
403 404 405
	return 0;
}

P
Patrick McHardy 已提交
406 407 408 409 410 411 412 413 414
static void macvlan_change_rx_flags(struct net_device *dev, int change)
{
	struct macvlan_dev *vlan = netdev_priv(dev);
	struct net_device *lowerdev = vlan->lowerdev;

	if (change & IFF_ALLMULTI)
		dev_set_allmulti(lowerdev, dev->flags & IFF_ALLMULTI ? 1 : -1);
}

415
static void macvlan_set_mac_lists(struct net_device *dev)
P
Patrick McHardy 已提交
416 417 418
{
	struct macvlan_dev *vlan = netdev_priv(dev);

E
Eric Dumazet 已提交
419 420 421 422 423 424 425 426 427 428 429 430
	if (dev->flags & (IFF_PROMISC | IFF_ALLMULTI)) {
		bitmap_fill(vlan->mc_filter, MACVLAN_MC_FILTER_SZ);
	} else {
		struct netdev_hw_addr *ha;
		DECLARE_BITMAP(filter, MACVLAN_MC_FILTER_SZ);

		bitmap_zero(filter, MACVLAN_MC_FILTER_SZ);
		netdev_for_each_mc_addr(ha, dev) {
			__set_bit(mc_hash(ha->addr), filter);
		}
		bitmap_copy(vlan->mc_filter, filter, MACVLAN_MC_FILTER_SZ);
	}
431
	dev_uc_sync(vlan->lowerdev, dev);
P
Patrick McHardy 已提交
432 433 434 435 436 437 438 439 440 441 442 443 444 445 446 447 448 449 450
	dev_mc_sync(vlan->lowerdev, dev);
}

static int macvlan_change_mtu(struct net_device *dev, int new_mtu)
{
	struct macvlan_dev *vlan = netdev_priv(dev);

	if (new_mtu < 68 || vlan->lowerdev->mtu < new_mtu)
		return -EINVAL;
	dev->mtu = new_mtu;
	return 0;
}

/*
 * macvlan network devices have devices nesting below it and are a special
 * "super class" of normal network devices; split their locks off into a
 * separate class since they always nest.
 */
static struct lock_class_key macvlan_netdev_xmit_lock_key;
451
static struct lock_class_key macvlan_netdev_addr_lock_key;
P
Patrick McHardy 已提交
452 453 454 455

#define MACVLAN_FEATURES \
	(NETIF_F_SG | NETIF_F_ALL_CSUM | NETIF_F_HIGHDMA | NETIF_F_FRAGLIST | \
	 NETIF_F_GSO | NETIF_F_TSO | NETIF_F_UFO | NETIF_F_GSO_ROBUST | \
456 457
	 NETIF_F_TSO_ECN | NETIF_F_TSO6 | NETIF_F_GRO | NETIF_F_RXCSUM | \
	 NETIF_F_HW_VLAN_FILTER)
P
Patrick McHardy 已提交
458 459 460 461

#define MACVLAN_STATE_MASK \
	((1<<__LINK_STATE_NOCARRIER) | (1<<__LINK_STATE_DORMANT))

462 463 464
static void macvlan_set_lockdep_class_one(struct net_device *dev,
					  struct netdev_queue *txq,
					  void *_unused)
465 466 467 468 469 470 471
{
	lockdep_set_class(&txq->_xmit_lock,
			  &macvlan_netdev_xmit_lock_key);
}

static void macvlan_set_lockdep_class(struct net_device *dev)
{
472 473
	lockdep_set_class(&dev->addr_list_lock,
			  &macvlan_netdev_addr_lock_key);
474
	netdev_for_each_tx_queue(dev, macvlan_set_lockdep_class_one, NULL);
475 476
}

P
Patrick McHardy 已提交
477 478 479 480 481 482 483 484
static int macvlan_init(struct net_device *dev)
{
	struct macvlan_dev *vlan = netdev_priv(dev);
	const struct net_device *lowerdev = vlan->lowerdev;

	dev->state		= (dev->state & ~MACVLAN_STATE_MASK) |
				  (lowerdev->state & MACVLAN_STATE_MASK);
	dev->features 		= lowerdev->features & MACVLAN_FEATURES;
E
Eric Dumazet 已提交
485
	dev->features		|= NETIF_F_LLTX;
486
	dev->gso_max_size	= lowerdev->gso_max_size;
P
Patrick McHardy 已提交
487
	dev->iflink		= lowerdev->ifindex;
488
	dev->hard_header_len	= lowerdev->hard_header_len;
P
Patrick McHardy 已提交
489

490 491
	macvlan_set_lockdep_class(dev);

E
Eric Dumazet 已提交
492 493
	vlan->pcpu_stats = alloc_percpu(struct macvlan_pcpu_stats);
	if (!vlan->pcpu_stats)
494 495
		return -ENOMEM;

P
Patrick McHardy 已提交
496 497 498
	return 0;
}

499 500 501
static void macvlan_uninit(struct net_device *dev)
{
	struct macvlan_dev *vlan = netdev_priv(dev);
502
	struct macvlan_port *port = vlan->port;
503

E
Eric Dumazet 已提交
504
	free_percpu(vlan->pcpu_stats);
505 506 507 508

	port->count -= 1;
	if (!port->count)
		macvlan_port_destroy(port->dev);
509 510
}

511 512
static struct rtnl_link_stats64 *macvlan_dev_get_stats64(struct net_device *dev,
							 struct rtnl_link_stats64 *stats)
513 514 515
{
	struct macvlan_dev *vlan = netdev_priv(dev);

E
Eric Dumazet 已提交
516 517 518 519
	if (vlan->pcpu_stats) {
		struct macvlan_pcpu_stats *p;
		u64 rx_packets, rx_bytes, rx_multicast, tx_packets, tx_bytes;
		u32 rx_errors = 0, tx_dropped = 0;
E
Eric Dumazet 已提交
520
		unsigned int start;
521 522 523
		int i;

		for_each_possible_cpu(i) {
E
Eric Dumazet 已提交
524
			p = per_cpu_ptr(vlan->pcpu_stats, i);
E
Eric Dumazet 已提交
525 526 527 528 529
			do {
				start = u64_stats_fetch_begin_bh(&p->syncp);
				rx_packets	= p->rx_packets;
				rx_bytes	= p->rx_bytes;
				rx_multicast	= p->rx_multicast;
E
Eric Dumazet 已提交
530 531
				tx_packets	= p->tx_packets;
				tx_bytes	= p->tx_bytes;
E
Eric Dumazet 已提交
532
			} while (u64_stats_fetch_retry_bh(&p->syncp, start));
E
Eric Dumazet 已提交
533 534 535 536 537 538 539 540 541 542 543

			stats->rx_packets	+= rx_packets;
			stats->rx_bytes		+= rx_bytes;
			stats->multicast	+= rx_multicast;
			stats->tx_packets	+= tx_packets;
			stats->tx_bytes		+= tx_bytes;
			/* rx_errors & tx_dropped are u32, updated
			 * without syncp protection.
			 */
			rx_errors	+= p->rx_errors;
			tx_dropped	+= p->tx_dropped;
544
		}
E
Eric Dumazet 已提交
545 546 547
		stats->rx_errors	= rx_errors;
		stats->rx_dropped	= rx_errors;
		stats->tx_dropped	= tx_dropped;
548 549 550 551
	}
	return stats;
}

552
static int macvlan_vlan_rx_add_vid(struct net_device *dev,
553 554 555 556 557
				    unsigned short vid)
{
	struct macvlan_dev *vlan = netdev_priv(dev);
	struct net_device *lowerdev = vlan->lowerdev;

558
	return vlan_vid_add(lowerdev, vid);
559 560
}

561
static int macvlan_vlan_rx_kill_vid(struct net_device *dev,
562 563 564 565 566
				     unsigned short vid)
{
	struct macvlan_dev *vlan = netdev_priv(dev);
	struct net_device *lowerdev = vlan->lowerdev;

567
	vlan_vid_del(lowerdev, vid);
568
	return 0;
569 570
}

571
static int macvlan_fdb_add(struct ndmsg *ndm, struct nlattr *tb[],
572
			   struct net_device *dev,
573
			   const unsigned char *addr,
574 575 576 577 578 579 580 581 582 583 584 585 586 587 588 589 590 591
			   u16 flags)
{
	struct macvlan_dev *vlan = netdev_priv(dev);
	int err = -EINVAL;

	if (!vlan->port->passthru)
		return -EOPNOTSUPP;

	if (is_unicast_ether_addr(addr))
		err = dev_uc_add_excl(dev, addr);
	else if (is_multicast_ether_addr(addr))
		err = dev_mc_add_excl(dev, addr);

	return err;
}

static int macvlan_fdb_del(struct ndmsg *ndm,
			   struct net_device *dev,
592
			   const unsigned char *addr)
593 594 595 596 597 598 599 600 601 602 603 604 605 606 607
{
	struct macvlan_dev *vlan = netdev_priv(dev);
	int err = -EINVAL;

	if (!vlan->port->passthru)
		return -EOPNOTSUPP;

	if (is_unicast_ether_addr(addr))
		err = dev_uc_del(dev, addr);
	else if (is_multicast_ether_addr(addr))
		err = dev_mc_del(dev, addr);

	return err;
}

P
Patrick McHardy 已提交
608 609 610
static void macvlan_ethtool_get_drvinfo(struct net_device *dev,
					struct ethtool_drvinfo *drvinfo)
{
611 612
	strlcpy(drvinfo->driver, "macvlan", sizeof(drvinfo->driver));
	strlcpy(drvinfo->version, "0.1", sizeof(drvinfo->version));
P
Patrick McHardy 已提交
613 614
}

615 616 617 618
static int macvlan_ethtool_get_settings(struct net_device *dev,
					struct ethtool_cmd *cmd)
{
	const struct macvlan_dev *vlan = netdev_priv(dev);
619 620

	return __ethtool_get_settings(vlan->lowerdev, cmd);
621 622
}

P
Patrick McHardy 已提交
623 624
static const struct ethtool_ops macvlan_ethtool_ops = {
	.get_link		= ethtool_op_get_link,
625
	.get_settings		= macvlan_ethtool_get_settings,
P
Patrick McHardy 已提交
626 627 628
	.get_drvinfo		= macvlan_ethtool_get_drvinfo,
};

629 630
static const struct net_device_ops macvlan_netdev_ops = {
	.ndo_init		= macvlan_init,
631
	.ndo_uninit		= macvlan_uninit,
632 633
	.ndo_open		= macvlan_open,
	.ndo_stop		= macvlan_stop,
634
	.ndo_start_xmit		= macvlan_start_xmit,
635 636 637
	.ndo_change_mtu		= macvlan_change_mtu,
	.ndo_change_rx_flags	= macvlan_change_rx_flags,
	.ndo_set_mac_address	= macvlan_set_mac_address,
638
	.ndo_set_rx_mode	= macvlan_set_mac_lists,
E
Eric Dumazet 已提交
639
	.ndo_get_stats64	= macvlan_dev_get_stats64,
640
	.ndo_validate_addr	= eth_validate_addr,
641 642
	.ndo_vlan_rx_add_vid	= macvlan_vlan_rx_add_vid,
	.ndo_vlan_rx_kill_vid	= macvlan_vlan_rx_kill_vid,
643 644 645
	.ndo_fdb_add		= macvlan_fdb_add,
	.ndo_fdb_del		= macvlan_fdb_del,
	.ndo_fdb_dump		= ndo_dflt_fdb_dump,
646 647
};

H
Herbert Xu 已提交
648
void macvlan_common_setup(struct net_device *dev)
P
Patrick McHardy 已提交
649 650 651
{
	ether_setup(dev);

652
	dev->priv_flags	       &= ~(IFF_XMIT_DST_RELEASE | IFF_TX_SKB_SHARING);
653
	dev->netdev_ops		= &macvlan_netdev_ops;
P
Patrick McHardy 已提交
654
	dev->destructor		= free_netdev;
655
	dev->header_ops		= &macvlan_hard_header_ops,
P
Patrick McHardy 已提交
656
	dev->ethtool_ops	= &macvlan_ethtool_ops;
H
Herbert Xu 已提交
657 658 659 660 661 662
}
EXPORT_SYMBOL_GPL(macvlan_common_setup);

static void macvlan_setup(struct net_device *dev)
{
	macvlan_common_setup(dev);
P
Patrick McHardy 已提交
663 664 665 666 667 668 669
	dev->tx_queue_len	= 0;
}

static int macvlan_port_create(struct net_device *dev)
{
	struct macvlan_port *port;
	unsigned int i;
670
	int err;
P
Patrick McHardy 已提交
671 672 673 674 675 676 677 678

	if (dev->type != ARPHRD_ETHER || dev->flags & IFF_LOOPBACK)
		return -EINVAL;

	port = kzalloc(sizeof(*port), GFP_KERNEL);
	if (port == NULL)
		return -ENOMEM;

679
	port->passthru = false;
P
Patrick McHardy 已提交
680 681 682 683
	port->dev = dev;
	INIT_LIST_HEAD(&port->vlans);
	for (i = 0; i < MACVLAN_HASH_SIZE; i++)
		INIT_HLIST_HEAD(&port->vlan_hash[i]);
684

685 686
	err = netdev_rx_handler_register(dev, macvlan_handle_frame, port);
	if (err)
687
		kfree(port);
688 689
	else
		dev->priv_flags |= IFF_MACVLAN_PORT;
690
	return err;
P
Patrick McHardy 已提交
691 692 693 694
}

static void macvlan_port_destroy(struct net_device *dev)
{
695
	struct macvlan_port *port = macvlan_port_get(dev);
P
Patrick McHardy 已提交
696

697
	dev->priv_flags &= ~IFF_MACVLAN_PORT;
698
	netdev_rx_handler_unregister(dev);
699
	kfree_rcu(port, rcu);
P
Patrick McHardy 已提交
700 701 702 703 704 705 706 707 708 709
}

static int macvlan_validate(struct nlattr *tb[], struct nlattr *data[])
{
	if (tb[IFLA_ADDRESS]) {
		if (nla_len(tb[IFLA_ADDRESS]) != ETH_ALEN)
			return -EINVAL;
		if (!is_valid_ether_addr(nla_data(tb[IFLA_ADDRESS])))
			return -EADDRNOTAVAIL;
	}
710 711 712 713 714 715

	if (data && data[IFLA_MACVLAN_MODE]) {
		switch (nla_get_u32(data[IFLA_MACVLAN_MODE])) {
		case MACVLAN_MODE_PRIVATE:
		case MACVLAN_MODE_VEPA:
		case MACVLAN_MODE_BRIDGE:
716
		case MACVLAN_MODE_PASSTHRU:
717 718 719 720 721
			break;
		default:
			return -EINVAL;
		}
	}
P
Patrick McHardy 已提交
722 723 724
	return 0;
}

725 726 727 728 729
int macvlan_common_newlink(struct net *src_net, struct net_device *dev,
			   struct nlattr *tb[], struct nlattr *data[],
			   int (*receive)(struct sk_buff *skb),
			   int (*forward)(struct net_device *dev,
					  struct sk_buff *skb))
P
Patrick McHardy 已提交
730 731 732 733 734 735 736 737 738
{
	struct macvlan_dev *vlan = netdev_priv(dev);
	struct macvlan_port *port;
	struct net_device *lowerdev;
	int err;

	if (!tb[IFLA_LINK])
		return -EINVAL;

739
	lowerdev = __dev_get_by_index(src_net, nla_get_u32(tb[IFLA_LINK]));
P
Patrick McHardy 已提交
740 741 742
	if (lowerdev == NULL)
		return -ENODEV;

743 744
	/* When creating macvlans on top of other macvlans - use
	 * the real device as the lowerdev.
745
	 */
746 747 748 749
	if (lowerdev->rtnl_link_ops == dev->rtnl_link_ops) {
		struct macvlan_dev *lowervlan = netdev_priv(lowerdev);
		lowerdev = lowervlan->lowerdev;
	}
750

P
Patrick McHardy 已提交
751 752 753 754 755 756
	if (!tb[IFLA_MTU])
		dev->mtu = lowerdev->mtu;
	else if (dev->mtu > lowerdev->mtu)
		return -EINVAL;

	if (!tb[IFLA_ADDRESS])
757
		eth_hw_addr_random(dev);
P
Patrick McHardy 已提交
758

759
	if (!macvlan_port_exists(lowerdev)) {
P
Patrick McHardy 已提交
760 761 762 763
		err = macvlan_port_create(lowerdev);
		if (err < 0)
			return err;
	}
764
	port = macvlan_port_get(lowerdev);
P
Patrick McHardy 已提交
765

766 767 768 769
	/* Only 1 macvlan device can be created in passthru mode */
	if (port->passthru)
		return -EINVAL;

P
Patrick McHardy 已提交
770 771 772
	vlan->lowerdev = lowerdev;
	vlan->dev      = dev;
	vlan->port     = port;
773 774
	vlan->receive  = receive;
	vlan->forward  = forward;
P
Patrick McHardy 已提交
775

776 777 778 779
	vlan->mode     = MACVLAN_MODE_VEPA;
	if (data && data[IFLA_MACVLAN_MODE])
		vlan->mode = nla_get_u32(data[IFLA_MACVLAN_MODE]);

780 781 782
	if (data && data[IFLA_MACVLAN_FLAGS])
		vlan->flags = nla_get_u16(data[IFLA_MACVLAN_FLAGS]);

783
	if (vlan->mode == MACVLAN_MODE_PASSTHRU) {
784
		if (port->count)
785 786 787 788 789
			return -EINVAL;
		port->passthru = true;
		memcpy(dev->dev_addr, lowerdev->dev_addr, ETH_ALEN);
	}

J
Jiri Pirko 已提交
790 791 792 793
	err = netdev_upper_dev_link(lowerdev, dev);
	if (err)
		goto destroy_port;

794
	port->count += 1;
P
Patrick McHardy 已提交
795 796
	err = register_netdevice(dev);
	if (err < 0)
J
Jiri Pirko 已提交
797
		goto upper_dev_unlink;
P
Patrick McHardy 已提交
798 799

	list_add_tail(&vlan->list, &port->vlans);
800
	netif_stacked_transfer_operstate(lowerdev, dev);
801

P
Patrick McHardy 已提交
802
	return 0;
803

J
Jiri Pirko 已提交
804 805
upper_dev_unlink:
	netdev_upper_dev_unlink(lowerdev, dev);
806
destroy_port:
807 808
	port->count -= 1;
	if (!port->count)
809 810 811
		macvlan_port_destroy(lowerdev);

	return err;
P
Patrick McHardy 已提交
812
}
813
EXPORT_SYMBOL_GPL(macvlan_common_newlink);
P
Patrick McHardy 已提交
814

815 816 817 818 819 820 821 822 823
static int macvlan_newlink(struct net *src_net, struct net_device *dev,
			   struct nlattr *tb[], struct nlattr *data[])
{
	return macvlan_common_newlink(src_net, dev, tb, data,
				      netif_rx,
				      dev_forward_skb);
}

void macvlan_dellink(struct net_device *dev, struct list_head *head)
P
Patrick McHardy 已提交
824 825 826 827
{
	struct macvlan_dev *vlan = netdev_priv(dev);

	list_del(&vlan->list);
828
	unregister_netdevice_queue(dev, head);
J
Jiri Pirko 已提交
829
	netdev_upper_dev_unlink(vlan->lowerdev, dev);
P
Patrick McHardy 已提交
830
}
831
EXPORT_SYMBOL_GPL(macvlan_dellink);
P
Patrick McHardy 已提交
832

833 834 835 836 837 838
static int macvlan_changelink(struct net_device *dev,
		struct nlattr *tb[], struct nlattr *data[])
{
	struct macvlan_dev *vlan = netdev_priv(dev);
	if (data && data[IFLA_MACVLAN_MODE])
		vlan->mode = nla_get_u32(data[IFLA_MACVLAN_MODE]);
839 840 841 842 843 844 845 846 847 848
	if (data && data[IFLA_MACVLAN_FLAGS]) {
		__u16 flags = nla_get_u16(data[IFLA_MACVLAN_FLAGS]);
		bool promisc = (flags ^ vlan->flags) & MACVLAN_FLAG_NOPROMISC;

		if (promisc && (flags & MACVLAN_FLAG_NOPROMISC))
			dev_set_promiscuity(vlan->lowerdev, -1);
		else if (promisc && !(flags & MACVLAN_FLAG_NOPROMISC))
			dev_set_promiscuity(vlan->lowerdev, 1);
		vlan->flags = flags;
	}
849 850 851 852 853
	return 0;
}

static size_t macvlan_get_size(const struct net_device *dev)
{
E
Eric Dumazet 已提交
854 855 856 857
	return (0
		+ nla_total_size(4) /* IFLA_MACVLAN_MODE */
		+ nla_total_size(2) /* IFLA_MACVLAN_FLAGS */
		);
858 859 860 861 862 863 864
}

static int macvlan_fill_info(struct sk_buff *skb,
				const struct net_device *dev)
{
	struct macvlan_dev *vlan = netdev_priv(dev);

865 866
	if (nla_put_u32(skb, IFLA_MACVLAN_MODE, vlan->mode))
		goto nla_put_failure;
867 868
	if (nla_put_u16(skb, IFLA_MACVLAN_FLAGS, vlan->flags))
		goto nla_put_failure;
869 870 871 872 873 874 875
	return 0;

nla_put_failure:
	return -EMSGSIZE;
}

static const struct nla_policy macvlan_policy[IFLA_MACVLAN_MAX + 1] = {
876 877
	[IFLA_MACVLAN_MODE]  = { .type = NLA_U32 },
	[IFLA_MACVLAN_FLAGS] = { .type = NLA_U16 },
878 879
};

880 881 882 883 884 885 886 887 888 889 890 891 892 893 894 895
int macvlan_link_register(struct rtnl_link_ops *ops)
{
	/* common fields */
	ops->priv_size		= sizeof(struct macvlan_dev);
	ops->validate		= macvlan_validate;
	ops->maxtype		= IFLA_MACVLAN_MAX;
	ops->policy		= macvlan_policy;
	ops->changelink		= macvlan_changelink;
	ops->get_size		= macvlan_get_size;
	ops->fill_info		= macvlan_fill_info;

	return rtnl_link_register(ops);
};
EXPORT_SYMBOL_GPL(macvlan_link_register);

static struct rtnl_link_ops macvlan_link_ops = {
P
Patrick McHardy 已提交
896
	.kind		= "macvlan",
H
Herbert Xu 已提交
897
	.setup		= macvlan_setup,
P
Patrick McHardy 已提交
898 899 900 901 902 903 904 905 906 907
	.newlink	= macvlan_newlink,
	.dellink	= macvlan_dellink,
};

static int macvlan_device_event(struct notifier_block *unused,
				unsigned long event, void *ptr)
{
	struct net_device *dev = ptr;
	struct macvlan_dev *vlan, *next;
	struct macvlan_port *port;
908
	LIST_HEAD(list_kill);
P
Patrick McHardy 已提交
909

910
	if (!macvlan_port_exists(dev))
P
Patrick McHardy 已提交
911 912
		return NOTIFY_DONE;

913 914
	port = macvlan_port_get(dev);

P
Patrick McHardy 已提交
915 916 917
	switch (event) {
	case NETDEV_CHANGE:
		list_for_each_entry(vlan, &port->vlans, list)
918 919
			netif_stacked_transfer_operstate(vlan->lowerdev,
							 vlan->dev);
P
Patrick McHardy 已提交
920 921 922 923
		break;
	case NETDEV_FEAT_CHANGE:
		list_for_each_entry(vlan, &port->vlans, list) {
			vlan->dev->features = dev->features & MACVLAN_FEATURES;
924
			vlan->dev->gso_max_size = dev->gso_max_size;
P
Patrick McHardy 已提交
925 926 927 928
			netdev_features_change(vlan->dev);
		}
		break;
	case NETDEV_UNREGISTER:
929 930 931 932
		/* twiddle thumbs on netns device moves */
		if (dev->reg_state != NETREG_UNREGISTERING)
			break;

P
Patrick McHardy 已提交
933
		list_for_each_entry_safe(vlan, next, &port->vlans, list)
934 935 936
			vlan->dev->rtnl_link_ops->dellink(vlan->dev, &list_kill);
		unregister_netdevice_many(&list_kill);
		list_del(&list_kill);
P
Patrick McHardy 已提交
937
		break;
938 939 940
	case NETDEV_PRE_TYPE_CHANGE:
		/* Forbid underlaying device to change its type. */
		return NOTIFY_BAD;
P
Patrick McHardy 已提交
941 942 943 944 945 946 947 948 949 950 951 952 953 954
	}
	return NOTIFY_DONE;
}

static struct notifier_block macvlan_notifier_block __read_mostly = {
	.notifier_call	= macvlan_device_event,
};

static int __init macvlan_init_module(void)
{
	int err;

	register_netdevice_notifier(&macvlan_notifier_block);

955
	err = macvlan_link_register(&macvlan_link_ops);
P
Patrick McHardy 已提交
956 957 958 959 960 961 962 963 964 965 966 967 968 969 970 971 972 973 974 975 976
	if (err < 0)
		goto err1;
	return 0;
err1:
	unregister_netdevice_notifier(&macvlan_notifier_block);
	return err;
}

static void __exit macvlan_cleanup_module(void)
{
	rtnl_link_unregister(&macvlan_link_ops);
	unregister_netdevice_notifier(&macvlan_notifier_block);
}

module_init(macvlan_init_module);
module_exit(macvlan_cleanup_module);

MODULE_LICENSE("GPL");
MODULE_AUTHOR("Patrick McHardy <kaber@trash.net>");
MODULE_DESCRIPTION("Driver for MAC address based VLANs");
MODULE_ALIAS_RTNL_LINK("macvlan");