socket.c 41.6 KB
Newer Older
P
Per Liden 已提交
1 2
/*
 * net/tipc/socket.c: TIPC socket API
3
 *
4 5
 * Copyright (c) 2001-2007, Ericsson AB
 * Copyright (c) 2004-2007, Wind River Systems
P
Per Liden 已提交
6 7
 * All rights reserved.
 *
P
Per Liden 已提交
8
 * Redistribution and use in source and binary forms, with or without
P
Per Liden 已提交
9 10
 * modification, are permitted provided that the following conditions are met:
 *
P
Per Liden 已提交
11 12 13 14 15 16 17 18
 * 1. Redistributions of source code must retain the above copyright
 *    notice, this list of conditions and the following disclaimer.
 * 2. Redistributions in binary form must reproduce the above copyright
 *    notice, this list of conditions and the following disclaimer in the
 *    documentation and/or other materials provided with the distribution.
 * 3. Neither the names of the copyright holders nor the names of its
 *    contributors may be used to endorse or promote products derived from
 *    this software without specific prior written permission.
P
Per Liden 已提交
19
 *
P
Per Liden 已提交
20 21 22 23 24 25 26 27 28 29 30 31 32 33
 * Alternatively, this software may be distributed under the terms of the
 * GNU General Public License ("GPL") version 2 as published by the Free
 * Software Foundation.
 *
 * THIS SOFTWARE IS PROVIDED BY THE COPYRIGHT HOLDERS AND CONTRIBUTORS "AS IS"
 * AND ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE
 * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE
 * ARE DISCLAIMED. IN NO EVENT SHALL THE COPYRIGHT OWNER OR CONTRIBUTORS BE
 * LIABLE FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR
 * CONSEQUENTIAL DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF
 * SUBSTITUTE GOODS OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS
 * INTERRUPTION) HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN
 * CONTRACT, STRICT LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE)
 * ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE
P
Per Liden 已提交
34 35 36 37 38 39 40 41 42 43 44 45
 * POSSIBILITY OF SUCH DAMAGE.
 */

#include <linux/module.h>
#include <linux/types.h>
#include <linux/net.h>
#include <linux/socket.h>
#include <linux/errno.h>
#include <linux/mm.h>
#include <linux/slab.h>
#include <linux/poll.h>
#include <linux/fcntl.h>
46
#include <linux/mutex.h>
P
Per Liden 已提交
47 48 49 50 51
#include <asm/string.h>
#include <asm/atomic.h>
#include <net/sock.h>

#include <linux/tipc.h>
52
#include <linux/tipc_config.h>
P
Per Liden 已提交
53 54 55 56 57 58 59 60
#include <net/tipc/tipc_msg.h>
#include <net/tipc/tipc_port.h>

#include "core.h"

#define SS_LISTENING	-1	/* socket is listening */
#define SS_READY	-2	/* socket is connectionless */

61 62
#define OVERLOAD_LIMIT_BASE	5000
#define CONN_TIMEOUT_DEFAULT	8000	/* default connect timeout = 8s */
P
Per Liden 已提交
63 64 65 66

struct tipc_sock {
	struct sock sk;
	struct tipc_port *p;
67
	struct mutex lock;
P
Per Liden 已提交
68 69 70 71 72 73 74
};

#define tipc_sk(sk) ((struct tipc_sock*)sk)

static u32 dispatch(struct tipc_port *tport, struct sk_buff *buf);
static void wakeupdispatch(struct tipc_port *tport);

75 76 77
static const struct proto_ops packet_ops;
static const struct proto_ops stream_ops;
static const struct proto_ops msg_ops;
P
Per Liden 已提交
78 79 80 81 82 83 84 85

static struct proto tipc_proto;

static int sockets_enabled = 0;

static atomic_t tipc_queue_size = ATOMIC_INIT(0);


86 87 88
/*
 * sock_lock(): Lock a port/socket pair. lock_sock() can
 * not be used here, since the same lock must protect ports
P
Per Liden 已提交
89 90 91
 * with non-socket interfaces.
 * See net.c for description of locking policy.
 */
S
Sam Ravnborg 已提交
92
static void sock_lock(struct tipc_sock* tsock)
P
Per Liden 已提交
93
{
94
	spin_lock_bh(tsock->p->lock);
P
Per Liden 已提交
95 96
}

97
/*
P
Per Liden 已提交
98 99
 * sock_unlock(): Unlock a port/socket pair
 */
S
Sam Ravnborg 已提交
100
static void sock_unlock(struct tipc_sock* tsock)
P
Per Liden 已提交
101
{
102
	spin_unlock_bh(tsock->p->lock);
P
Per Liden 已提交
103 104 105 106 107 108 109
}

/**
 * advance_queue - discard first buffer in queue
 * @tsock: TIPC socket
 */

S
Sam Ravnborg 已提交
110
static void advance_queue(struct tipc_sock *tsock)
P
Per Liden 已提交
111
{
112
	sock_lock(tsock);
P
Per Liden 已提交
113
	buf_discard(skb_dequeue(&tsock->sk.sk_receive_queue));
114
	sock_unlock(tsock);
P
Per Liden 已提交
115 116 117 118 119 120 121
	atomic_dec(&tipc_queue_size);
}

/**
 * tipc_create - create a TIPC socket
 * @sock: pre-allocated socket structure
 * @protocol: protocol indicator (must be 0)
122
 *
P
Per Liden 已提交
123 124 125 126 127
 * This routine creates and attaches a 'struct sock' to the 'struct socket',
 * then create and attaches a TIPC port to the 'struct sock' part.
 *
 * Returns 0 on success, errno otherwise
 */
128
static int tipc_create(struct net *net, struct socket *sock, int protocol)
P
Per Liden 已提交
129 130 131 132
{
	struct tipc_sock *tsock;
	struct tipc_port *port;
	struct sock *sk;
133
	u32 ref;
P
Per Liden 已提交
134

135 136 137
	if (net != &init_net)
		return -EAFNOSUPPORT;

P
Per Liden 已提交
138 139 140
	if (unlikely(protocol != 0))
		return -EPROTONOSUPPORT;

141
	ref = tipc_createport_raw(NULL, &dispatch, &wakeupdispatch, TIPC_LOW_IMPORTANCE);
P
Per Liden 已提交
142 143 144 145 146 147 148 149 150 151 152 153 154 155 156 157 158 159 160 161
	if (unlikely(!ref))
		return -ENOMEM;

	sock->state = SS_UNCONNECTED;

	switch (sock->type) {
	case SOCK_STREAM:
		sock->ops = &stream_ops;
		break;
	case SOCK_SEQPACKET:
		sock->ops = &packet_ops;
		break;
	case SOCK_DGRAM:
		tipc_set_portunreliable(ref, 1);
		/* fall through */
	case SOCK_RDM:
		tipc_set_portunreturnable(ref, 1);
		sock->ops = &msg_ops;
		sock->state = SS_READY;
		break;
162 163 164
	default:
		tipc_deleteport(ref);
		return -EPROTOTYPE;
P
Per Liden 已提交
165 166
	}

167
	sk = sk_alloc(net, AF_TIPC, GFP_KERNEL, &tipc_proto);
P
Per Liden 已提交
168 169 170 171 172 173
	if (!sk) {
		tipc_deleteport(ref);
		return -ENOMEM;
	}

	sock_init_data(sock, sk);
174
	sk->sk_rcvtimeo = msecs_to_jiffies(CONN_TIMEOUT_DEFAULT);
P
Per Liden 已提交
175 176 177 178 179 180 181

	tsock = tipc_sk(sk);
	port = tipc_get_port(ref);

	tsock->p = port;
	port->usr_handle = tsock;

182
	mutex_init(&tsock->lock);
P
Per Liden 已提交
183 184 185 186 187 188 189 190 191 192 193 194 195 196 197 198 199

	dbg("sock_create: %x\n",tsock);

	atomic_inc(&tipc_user_count);

	return 0;
}

/**
 * release - destroy a TIPC socket
 * @sock: socket to destroy
 *
 * This routine cleans up any messages that are still queued on the socket.
 * For DGRAM and RDM socket types, all queued messages are rejected.
 * For SEQPACKET and STREAM socket types, the first message is rejected
 * and any others are discarded.  (If the first message on a STREAM socket
 * is partially-read, it is discarded and the next one is rejected instead.)
200
 *
P
Per Liden 已提交
201 202 203 204 205 206 207 208 209 210 211 212 213 214
 * NOTE: Rejected messages are not necessarily returned to the sender!  They
 * are returned or discarded according to the "destination droppable" setting
 * specified for the message by the sender.
 *
 * Returns 0 on success, errno otherwise
 */

static int release(struct socket *sock)
{
	struct tipc_sock *tsock = tipc_sk(sock->sk);
	struct sock *sk = sock->sk;
	int res = TIPC_OK;
	struct sk_buff *buf;

215
	dbg("sock_delete: %x\n",tsock);
P
Per Liden 已提交
216 217
	if (!tsock)
		return 0;
218
	mutex_lock(&tsock->lock);
P
Per Liden 已提交
219
	if (!sock->sk) {
220
		mutex_unlock(&tsock->lock);
P
Per Liden 已提交
221 222
		return 0;
	}
223

P
Per Liden 已提交
224 225 226 227 228 229
	/* Reject unreceived messages, unless no longer connected */

	while (sock->state != SS_DISCONNECTING) {
		sock_lock(tsock);
		buf = skb_dequeue(&sk->sk_receive_queue);
		if (!buf)
230
			tsock->p->usr_handle = NULL;
P
Per Liden 已提交
231 232 233 234 235 236 237 238 239 240 241 242 243 244 245 246 247 248 249 250 251 252
		sock_unlock(tsock);
		if (!buf)
			break;
		if (TIPC_SKB_CB(buf)->handle != msg_data(buf_msg(buf)))
			buf_discard(buf);
		else
			tipc_reject_msg(buf, TIPC_ERR_NO_PORT);
		atomic_dec(&tipc_queue_size);
	}

	/* Delete TIPC port */

	res = tipc_deleteport(tsock->p->ref);
	sock->sk = NULL;

	/* Discard any remaining messages */

	while ((buf = skb_dequeue(&sk->sk_receive_queue))) {
		buf_discard(buf);
		atomic_dec(&tipc_queue_size);
	}

253
	mutex_unlock(&tsock->lock);
P
Per Liden 已提交
254 255 256

	sock_put(sk);

257
	atomic_dec(&tipc_user_count);
P
Per Liden 已提交
258 259 260 261 262 263 264 265
	return res;
}

/**
 * bind - associate or disassocate TIPC name(s) with a socket
 * @sock: socket structure
 * @uaddr: socket address describing name(s) and desired operation
 * @uaddr_len: size of socket address data structure
266
 *
P
Per Liden 已提交
267 268 269
 * Name and name sequence binding is indicated using a positive scope value;
 * a negative scope value unbinds the specified name.  Specifying no name
 * (i.e. a socket address length of 0) unbinds all names from the socket.
270
 *
P
Per Liden 已提交
271 272 273 274 275 276 277 278 279
 * Returns 0 on success, errno otherwise
 */

static int bind(struct socket *sock, struct sockaddr *uaddr, int uaddr_len)
{
	struct tipc_sock *tsock = tipc_sk(sock->sk);
	struct sockaddr_tipc *addr = (struct sockaddr_tipc *)uaddr;
	int res;

280
	if (mutex_lock_interruptible(&tsock->lock))
P
Per Liden 已提交
281
		return -ERESTARTSYS;
282

P
Per Liden 已提交
283
	if (unlikely(!uaddr_len)) {
284
		res = tipc_withdraw(tsock->p->ref, 0, NULL);
P
Per Liden 已提交
285 286 287 288 289 290 291 292 293 294 295 296 297 298 299 300 301 302
		goto exit;
	}

	if (uaddr_len < sizeof(struct sockaddr_tipc)) {
		res = -EINVAL;
		goto exit;
	}

	if (addr->family != AF_TIPC) {
		res = -EAFNOSUPPORT;
		goto exit;
	}
	if (addr->addrtype == TIPC_ADDR_NAME)
		addr->addr.nameseq.upper = addr->addr.nameseq.lower;
	else if (addr->addrtype != TIPC_ADDR_NAMESEQ) {
		res = -EAFNOSUPPORT;
		goto exit;
	}
303 304

	if (addr->scope > 0)
P
Per Liden 已提交
305 306 307 308 309 310
		res = tipc_publish(tsock->p->ref, addr->scope,
				   &addr->addr.nameseq);
	else
		res = tipc_withdraw(tsock->p->ref, -addr->scope,
				    &addr->addr.nameseq);
exit:
311
	mutex_unlock(&tsock->lock);
P
Per Liden 已提交
312 313 314
	return res;
}

315
/**
P
Per Liden 已提交
316 317 318 319 320
 * get_name - get port ID of socket or peer socket
 * @sock: socket structure
 * @uaddr: area for returned socket address
 * @uaddr_len: area for returned length of socket address
 * @peer: 0 to obtain socket name, 1 to obtain peer socket name
321
 *
P
Per Liden 已提交
322 323 324
 * Returns 0 on success, errno otherwise
 */

325
static int get_name(struct socket *sock, struct sockaddr *uaddr,
P
Per Liden 已提交
326 327 328 329 330 331
		    int *uaddr_len, int peer)
{
	struct tipc_sock *tsock = tipc_sk(sock->sk);
	struct sockaddr_tipc *addr = (struct sockaddr_tipc *)uaddr;
	u32 res;

332
	if (mutex_lock_interruptible(&tsock->lock))
P
Per Liden 已提交
333 334 335 336 337 338 339 340 341 342 343 344
		return -ERESTARTSYS;

	*uaddr_len = sizeof(*addr);
	addr->addrtype = TIPC_ADDR_ID;
	addr->family = AF_TIPC;
	addr->scope = 0;
	if (peer)
		res = tipc_peer(tsock->p->ref, &addr->addr.id);
	else
		res = tipc_ownidentity(tsock->p->ref, &addr->addr.id);
	addr->addr.name.domain = 0;

345
	mutex_unlock(&tsock->lock);
P
Per Liden 已提交
346 347 348 349 350 351 352 353 354
	return res;
}

/**
 * poll - read and possibly block on pollmask
 * @file: file structure associated with the socket
 * @sock: socket for which to calculate the poll bits
 * @wait: ???
 *
355 356 357 358 359 360 361 362 363 364 365 366 367 368 369 370 371 372
 * Returns pollmask value
 *
 * COMMENTARY:
 * It appears that the usual socket locking mechanisms are not useful here
 * since the pollmask info is potentially out-of-date the moment this routine
 * exits.  TCP and other protocols seem to rely on higher level poll routines
 * to handle any preventable race conditions, so TIPC will do the same ...
 *
 * TIPC sets the returned events as follows:
 * a) POLLRDNORM and POLLIN are set if the socket's receive queue is non-empty
 *    or if a connection-oriented socket is does not have an active connection
 *    (i.e. a read operation will not block).
 * b) POLLOUT is set except when a socket's connection has been terminated
 *    (i.e. a write operation will not block).
 * c) POLLHUP is set when a socket's connection has been terminated.
 *
 * IMPORTANT: The fact that a read or write operation will not block does NOT
 * imply that the operation will succeed!
P
Per Liden 已提交
373 374
 */

375
static unsigned int poll(struct file *file, struct socket *sock,
P
Per Liden 已提交
376 377
			 poll_table *wait)
{
378 379 380 381 382 383 384 385 386 387 388 389 390 391 392 393 394 395
	struct sock *sk = sock->sk;
	u32 mask;

	poll_wait(file, sk->sk_sleep, wait);

	if (!skb_queue_empty(&sk->sk_receive_queue) ||
	    (sock->state == SS_UNCONNECTED) ||
	    (sock->state == SS_DISCONNECTING))
		mask = (POLLRDNORM | POLLIN);
	else
		mask = 0;

	if (sock->state == SS_DISCONNECTING)
		mask |= POLLHUP;
	else
		mask |= POLLOUT;

	return mask;
P
Per Liden 已提交
396 397
}

398
/**
P
Per Liden 已提交
399 400 401
 * dest_name_check - verify user is permitted to send to specified port name
 * @dest: destination address
 * @m: descriptor for message to be sent
402
 *
P
Per Liden 已提交
403 404
 * Prevents restricted configuration commands from being issued by
 * unauthorized users.
405
 *
P
Per Liden 已提交
406 407 408
 * Returns 0 if permission is granted, otherwise errno
 */

S
Sam Ravnborg 已提交
409
static int dest_name_check(struct sockaddr_tipc *dest, struct msghdr *m)
P
Per Liden 已提交
410 411 412
{
	struct tipc_cfg_msg_hdr hdr;

413 414 415 416
	if (likely(dest->addr.name.name.type >= TIPC_RESERVED_TYPES))
		return 0;
	if (likely(dest->addr.name.name.type == TIPC_TOP_SRV))
		return 0;
P
Per Liden 已提交
417

418 419
	if (likely(dest->addr.name.name.type != TIPC_CFG_SRV))
		return -EACCES;
P
Per Liden 已提交
420

421
	if (copy_from_user(&hdr, m->msg_iov[0].iov_base, sizeof(hdr)))
P
Per Liden 已提交
422
		return -EFAULT;
423
	if ((ntohs(hdr.tcm_type) & 0xC000) && (!capable(CAP_NET_ADMIN)))
P
Per Liden 已提交
424
		return -EACCES;
425

P
Per Liden 已提交
426 427 428 429 430 431 432 433
	return 0;
}

/**
 * send_msg - send message in connectionless manner
 * @iocb: (unused)
 * @sock: socket structure
 * @m: message to send
434
 * @total_len: length of message
435
 *
P
Per Liden 已提交
436
 * Message must have an destination specified explicitly.
437
 * Used for SOCK_RDM and SOCK_DGRAM messages,
P
Per Liden 已提交
438 439
 * and for 'SYN' messages on SOCK_SEQPACKET and SOCK_STREAM connections.
 * (Note: 'SYN+' is prohibited on SOCK_STREAM.)
440
 *
P
Per Liden 已提交
441 442 443 444 445 446 447
 * Returns the number of bytes sent on success, or errno otherwise
 */

static int send_msg(struct kiocb *iocb, struct socket *sock,
		    struct msghdr *m, size_t total_len)
{
	struct tipc_sock *tsock = tipc_sk(sock->sk);
448
	struct sockaddr_tipc *dest = (struct sockaddr_tipc *)m->msg_name;
P
Per Liden 已提交
449 450 451 452 453 454
	struct sk_buff *buf;
	int needs_conn;
	int res = -EINVAL;

	if (unlikely(!dest))
		return -EDESTADDRREQ;
455 456
	if (unlikely((m->msg_namelen < sizeof(*dest)) ||
		     (dest->family != AF_TIPC)))
P
Per Liden 已提交
457 458 459 460 461 462 463 464 465 466 467
		return -EINVAL;

	needs_conn = (sock->state != SS_READY);
	if (unlikely(needs_conn)) {
		if (sock->state == SS_LISTENING)
			return -EPIPE;
		if (sock->state != SS_UNCONNECTED)
			return -EISCONN;
		if ((tsock->p->published) ||
		    ((sock->type == SOCK_STREAM) && (total_len != 0)))
			return -EOPNOTSUPP;
468 469 470 471
		if (dest->addrtype == TIPC_ADDR_NAME) {
			tsock->p->conn_type = dest->addr.name.name.type;
			tsock->p->conn_instance = dest->addr.name.name.instance;
		}
P
Per Liden 已提交
472 473
	}

474
	if (mutex_lock_interruptible(&tsock->lock))
P
Per Liden 已提交
475 476 477 478 479 480 481 482 483 484 485 486 487 488
		return -ERESTARTSYS;

	if (needs_conn) {

		/* Abort any pending connection attempts (very unlikely) */

		while ((buf = skb_dequeue(&sock->sk->sk_receive_queue))) {
			tipc_reject_msg(buf, TIPC_ERR_NO_PORT);
			atomic_dec(&tipc_queue_size);
		}

		sock->state = SS_CONNECTING;
	}

489 490 491 492 493 494 495 496 497 498 499 500 501 502 503 504 505
	do {
		if (dest->addrtype == TIPC_ADDR_NAME) {
			if ((res = dest_name_check(dest, m)))
				goto exit;
			res = tipc_send2name(tsock->p->ref,
					     &dest->addr.name.name,
					     dest->addr.name.domain,
					     m->msg_iovlen,
					     m->msg_iov);
		}
		else if (dest->addrtype == TIPC_ADDR_ID) {
			res = tipc_send2port(tsock->p->ref,
					     &dest->addr.id,
					     m->msg_iovlen,
					     m->msg_iov);
		}
		else if (dest->addrtype == TIPC_ADDR_MCAST) {
P
Per Liden 已提交
506 507 508 509
			if (needs_conn) {
				res = -EOPNOTSUPP;
				goto exit;
			}
510 511 512 513 514 515 516 517 518 519
			if ((res = dest_name_check(dest, m)))
				goto exit;
			res = tipc_multicast(tsock->p->ref,
					     &dest->addr.nameseq,
					     0,
					     m->msg_iovlen,
					     m->msg_iov);
		}
		if (likely(res != -ELINKCONG)) {
exit:
520
			mutex_unlock(&tsock->lock);
521 522
			return res;
		}
P
Per Liden 已提交
523 524 525 526
		if (m->msg_flags & MSG_DONTWAIT) {
			res = -EWOULDBLOCK;
			goto exit;
		}
527 528 529 530 531 532
		if (wait_event_interruptible(*sock->sk->sk_sleep,
					     !tsock->p->congested)) {
		    res = -ERESTARTSYS;
		    goto exit;
		}
	} while (1);
P
Per Liden 已提交
533 534
}

535
/**
P
Per Liden 已提交
536 537 538 539
 * send_packet - send a connection-oriented message
 * @iocb: (unused)
 * @sock: socket structure
 * @m: message to send
540
 * @total_len: length of message
541
 *
P
Per Liden 已提交
542
 * Used for SOCK_SEQPACKET messages and SOCK_STREAM data.
543
 *
P
Per Liden 已提交
544 545 546 547 548 549 550
 * Returns the number of bytes sent on success, or errno otherwise
 */

static int send_packet(struct kiocb *iocb, struct socket *sock,
		       struct msghdr *m, size_t total_len)
{
	struct tipc_sock *tsock = tipc_sk(sock->sk);
551
	struct sockaddr_tipc *dest = (struct sockaddr_tipc *)m->msg_name;
P
Per Liden 已提交
552 553 554 555 556 557 558
	int res;

	/* Handle implied connection establishment */

	if (unlikely(dest))
		return send_msg(iocb, sock, m, total_len);

559
	if (mutex_lock_interruptible(&tsock->lock)) {
P
Per Liden 已提交
560
		return -ERESTARTSYS;
561
	}
P
Per Liden 已提交
562

563
	do {
564 565
		if (unlikely(sock->state != SS_CONNECTED)) {
			if (sock->state == SS_DISCONNECTING)
566
				res = -EPIPE;
567 568 569 570 571
			else
				res = -ENOTCONN;
			goto exit;
		}

572 573
		res = tipc_send(tsock->p->ref, m->msg_iovlen, m->msg_iov);
		if (likely(res != -ELINKCONG)) {
P
Per Liden 已提交
574
exit:
575
			mutex_unlock(&tsock->lock);
576 577
			return res;
		}
P
Per Liden 已提交
578 579 580 581
		if (m->msg_flags & MSG_DONTWAIT) {
			res = -EWOULDBLOCK;
			goto exit;
		}
582 583 584 585 586 587
		if (wait_event_interruptible(*sock->sk->sk_sleep,
					     !tsock->p->congested)) {
		    res = -ERESTARTSYS;
		    goto exit;
		}
	} while (1);
P
Per Liden 已提交
588 589
}

590
/**
P
Per Liden 已提交
591 592 593 594 595
 * send_stream - send stream-oriented data
 * @iocb: (unused)
 * @sock: socket structure
 * @m: data to send
 * @total_len: total length of data to be sent
596
 *
P
Per Liden 已提交
597
 * Used for SOCK_STREAM data.
598 599
 *
 * Returns the number of bytes sent on success (or partial success),
600
 * or errno if no data sent
P
Per Liden 已提交
601 602 603 604 605 606
 */


static int send_stream(struct kiocb *iocb, struct socket *sock,
		       struct msghdr *m, size_t total_len)
{
607
	struct tipc_port *tport;
P
Per Liden 已提交
608 609 610 611 612
	struct msghdr my_msg;
	struct iovec my_iov;
	struct iovec *curr_iov;
	int curr_iovlen;
	char __user *curr_start;
613
	u32 hdr_size;
P
Per Liden 已提交
614 615
	int curr_left;
	int bytes_to_send;
616
	int bytes_sent;
P
Per Liden 已提交
617
	int res;
618

619
	/* Handle special cases where there is no connection */
P
Per Liden 已提交
620

621
	if (unlikely(sock->state != SS_CONNECTED)) {
622 623 624
		if (sock->state == SS_UNCONNECTED)
			return send_packet(iocb, sock, m, total_len);
		else if (sock->state == SS_DISCONNECTING)
625 626 627 628
			return -EPIPE;
		else
			return -ENOTCONN;
	}
P
Per Liden 已提交
629

630 631 632
	if (unlikely(m->msg_name))
		return -EISCONN;

633
	/*
P
Per Liden 已提交
634 635
	 * Send each iovec entry using one or more messages
	 *
636
	 * Note: This algorithm is good for the most likely case
P
Per Liden 已提交
637 638 639 640
	 * (i.e. one large iovec entry), but could be improved to pass sets
	 * of small iovec entries into send_packet().
	 */

641 642
	curr_iov = m->msg_iov;
	curr_iovlen = m->msg_iovlen;
P
Per Liden 已提交
643 644
	my_msg.msg_iov = &my_iov;
	my_msg.msg_iovlen = 1;
645 646
	my_msg.msg_flags = m->msg_flags;
	my_msg.msg_name = NULL;
647
	bytes_sent = 0;
P
Per Liden 已提交
648

649 650 651
	tport = tipc_sk(sock->sk)->p;
	hdr_size = msg_hdr_sz(&tport->phdr);

P
Per Liden 已提交
652 653 654 655 656
	while (curr_iovlen--) {
		curr_start = curr_iov->iov_base;
		curr_left = curr_iov->iov_len;

		while (curr_left) {
657 658 659 660 661
			bytes_to_send = tport->max_pkt - hdr_size;
			if (bytes_to_send > TIPC_MAX_USER_MSG_SIZE)
				bytes_to_send = TIPC_MAX_USER_MSG_SIZE;
			if (curr_left < bytes_to_send)
				bytes_to_send = curr_left;
P
Per Liden 已提交
662 663
			my_iov.iov_base = curr_start;
			my_iov.iov_len = bytes_to_send;
664
			if ((res = send_packet(iocb, sock, &my_msg, 0)) < 0) {
665 666 667
				if (bytes_sent != 0)
					res = bytes_sent;
				return res;
668
			}
P
Per Liden 已提交
669 670
			curr_left -= bytes_to_send;
			curr_start += bytes_to_send;
671
			bytes_sent += bytes_to_send;
P
Per Liden 已提交
672 673 674 675 676
		}

		curr_iov++;
	}

677
	return bytes_sent;
P
Per Liden 已提交
678 679 680 681 682 683 684
}

/**
 * auto_connect - complete connection setup to a remote port
 * @sock: socket structure
 * @tsock: TIPC-specific socket structure
 * @msg: peer's response message
685
 *
P
Per Liden 已提交
686 687 688
 * Returns 0 on success, errno otherwise
 */

689
static int auto_connect(struct socket *sock, struct tipc_sock *tsock,
P
Per Liden 已提交
690 691 692 693 694 695 696 697 698 699 700 701 702 703 704 705 706 707 708 709 710
			struct tipc_msg *msg)
{
	struct tipc_portid peer;

	if (msg_errcode(msg)) {
		sock->state = SS_DISCONNECTING;
		return -ECONNREFUSED;
	}

	peer.ref = msg_origport(msg);
	peer.node = msg_orignode(msg);
	tipc_connect2port(tsock->p->ref, &peer);
	tipc_set_portimportance(tsock->p->ref, msg_importance(msg));
	sock->state = SS_CONNECTED;
	return 0;
}

/**
 * set_orig_addr - capture sender's address for received message
 * @m: descriptor for message info
 * @msg: received message header
711
 *
P
Per Liden 已提交
712 713 714
 * Note: Address is not captured if not requested by receiver.
 */

S
Sam Ravnborg 已提交
715
static void set_orig_addr(struct msghdr *m, struct tipc_msg *msg)
P
Per Liden 已提交
716
{
717
	struct sockaddr_tipc *addr = (struct sockaddr_tipc *)m->msg_name;
P
Per Liden 已提交
718

719
	if (addr) {
P
Per Liden 已提交
720 721 722 723 724 725 726 727 728 729 730
		addr->family = AF_TIPC;
		addr->addrtype = TIPC_ADDR_ID;
		addr->addr.id.ref = msg_origport(msg);
		addr->addr.id.node = msg_orignode(msg);
		addr->addr.name.domain = 0;   	/* could leave uninitialized */
		addr->scope = 0;   		/* could leave uninitialized */
		m->msg_namelen = sizeof(struct sockaddr_tipc);
	}
}

/**
731
 * anc_data_recv - optionally capture ancillary data for received message
P
Per Liden 已提交
732 733 734
 * @m: descriptor for message info
 * @msg: received message header
 * @tport: TIPC port associated with message
735
 *
P
Per Liden 已提交
736
 * Note: Ancillary data is not captured if not requested by receiver.
737
 *
P
Per Liden 已提交
738 739 740
 * Returns 0 if successful, otherwise errno
 */

S
Sam Ravnborg 已提交
741
static int anc_data_recv(struct msghdr *m, struct tipc_msg *msg,
P
Per Liden 已提交
742 743 744 745 746
				struct tipc_port *tport)
{
	u32 anc_data[3];
	u32 err;
	u32 dest_type;
747
	int has_name;
P
Per Liden 已提交
748 749 750 751 752 753 754 755 756 757 758
	int res;

	if (likely(m->msg_controllen == 0))
		return 0;

	/* Optionally capture errored message object(s) */

	err = msg ? msg_errcode(msg) : 0;
	if (unlikely(err)) {
		anc_data[0] = err;
		anc_data[1] = msg_data_sz(msg);
759
		if ((res = put_cmsg(m, SOL_TIPC, TIPC_ERRINFO, 8, anc_data)))
P
Per Liden 已提交
760 761
			return res;
		if (anc_data[1] &&
762
		    (res = put_cmsg(m, SOL_TIPC, TIPC_RETDATA, anc_data[1],
P
Per Liden 已提交
763 764 765 766 767 768 769 770 771
				    msg_data(msg))))
			return res;
	}

	/* Optionally capture message destination object */

	dest_type = msg ? msg_type(msg) : TIPC_DIRECT_MSG;
	switch (dest_type) {
	case TIPC_NAMED_MSG:
772
		has_name = 1;
P
Per Liden 已提交
773 774 775 776 777
		anc_data[0] = msg_nametype(msg);
		anc_data[1] = msg_namelower(msg);
		anc_data[2] = msg_namelower(msg);
		break;
	case TIPC_MCAST_MSG:
778
		has_name = 1;
P
Per Liden 已提交
779 780 781 782 783
		anc_data[0] = msg_nametype(msg);
		anc_data[1] = msg_namelower(msg);
		anc_data[2] = msg_nameupper(msg);
		break;
	case TIPC_CONN_MSG:
784
		has_name = (tport->conn_type != 0);
P
Per Liden 已提交
785 786 787 788 789
		anc_data[0] = tport->conn_type;
		anc_data[1] = tport->conn_instance;
		anc_data[2] = tport->conn_instance;
		break;
	default:
790
		has_name = 0;
P
Per Liden 已提交
791
	}
792
	if (has_name &&
793
	    (res = put_cmsg(m, SOL_TIPC, TIPC_DESTNAME, 12, anc_data)))
P
Per Liden 已提交
794 795 796 797 798
		return res;

	return 0;
}

799
/**
P
Per Liden 已提交
800 801 802 803 804
 * recv_msg - receive packet-oriented message
 * @iocb: (unused)
 * @m: descriptor for message info
 * @buf_len: total size of user buffer area
 * @flags: receive flags
805
 *
P
Per Liden 已提交
806 807 808 809 810 811 812 813 814 815 816 817 818 819 820 821 822 823 824 825 826 827 828 829 830 831 832 833 834 835
 * Used for SOCK_DGRAM, SOCK_RDM, and SOCK_SEQPACKET messages.
 * If the complete message doesn't fit in user area, truncate it.
 *
 * Returns size of returned message data, errno otherwise
 */

static int recv_msg(struct kiocb *iocb, struct socket *sock,
		    struct msghdr *m, size_t buf_len, int flags)
{
	struct tipc_sock *tsock = tipc_sk(sock->sk);
	struct sk_buff *buf;
	struct tipc_msg *msg;
	unsigned int q_len;
	unsigned int sz;
	u32 err;
	int res;

	/* Currently doesn't support receiving into multiple iovec entries */

	if (m->msg_iovlen != 1)
		return -EOPNOTSUPP;

	/* Catch invalid receive attempts */

	if (unlikely(!buf_len))
		return -EINVAL;

	if (sock->type == SOCK_SEQPACKET) {
		if (unlikely(sock->state == SS_UNCONNECTED))
			return -ENOTCONN;
836
		if (unlikely((sock->state == SS_DISCONNECTING) &&
P
Per Liden 已提交
837
			     (skb_queue_len(&sock->sk->sk_receive_queue) == 0)))
838
			return -ENOTCONN;
P
Per Liden 已提交
839 840 841 842
	}

	/* Look for a message in receive queue; wait if necessary */

843
	if (unlikely(mutex_lock_interruptible(&tsock->lock)))
P
Per Liden 已提交
844 845 846 847 848 849 850 851 852 853
		return -ERESTARTSYS;

restart:
	if (unlikely((skb_queue_len(&sock->sk->sk_receive_queue) == 0) &&
		     (flags & MSG_DONTWAIT))) {
		res = -EWOULDBLOCK;
		goto exit;
	}

	if ((res = wait_event_interruptible(
854
		*sock->sk->sk_sleep,
P
Per Liden 已提交
855 856 857 858 859 860 861 862 863 864 865 866 867 868 869 870 871 872 873 874 875 876 877 878 879 880 881 882 883 884 885 886 887 888 889 890 891 892 893 894 895 896 897 898
		((q_len = skb_queue_len(&sock->sk->sk_receive_queue)) ||
		 (sock->state == SS_DISCONNECTING))) )) {
		goto exit;
	}

	/* Catch attempt to receive on an already terminated connection */
	/* [THIS CHECK MAY OVERLAP WITH AN EARLIER CHECK] */

	if (!q_len) {
		res = -ENOTCONN;
		goto exit;
	}

	/* Get access to first message in receive queue */

	buf = skb_peek(&sock->sk->sk_receive_queue);
	msg = buf_msg(buf);
	sz = msg_data_sz(msg);
	err = msg_errcode(msg);

	/* Complete connection setup for an implied connect */

	if (unlikely(sock->state == SS_CONNECTING)) {
		if ((res = auto_connect(sock, tsock, msg)))
			goto exit;
	}

	/* Discard an empty non-errored message & try again */

	if ((!sz) && (!err)) {
		advance_queue(tsock);
		goto restart;
	}

	/* Capture sender's address (optional) */

	set_orig_addr(m, msg);

	/* Capture ancillary data (optional) */

	if ((res = anc_data_recv(m, msg, tsock->p)))
		goto exit;

	/* Capture message data (if valid) & compute return value (always) */
899

P
Per Liden 已提交
900 901 902 903 904 905 906 907 908 909 910 911 912 913 914 915 916 917 918 919 920 921
	if (!err) {
		if (unlikely(buf_len < sz)) {
			sz = buf_len;
			m->msg_flags |= MSG_TRUNC;
		}
		if (unlikely(copy_to_user(m->msg_iov->iov_base, msg_data(msg),
					  sz))) {
			res = -EFAULT;
			goto exit;
		}
		res = sz;
	} else {
		if ((sock->state == SS_READY) ||
		    ((err == TIPC_CONN_SHUTDOWN) || m->msg_control))
			res = 0;
		else
			res = -ECONNRESET;
	}

	/* Consume received message (optional) */

	if (likely(!(flags & MSG_PEEK))) {
922 923
		if ((sock->state != SS_READY) &&
		    (++tsock->p->conn_unacked >= TIPC_FLOW_CONTROL_WIN))
924
			tipc_acknowledge(tsock->p->ref, tsock->p->conn_unacked);
P
Per Liden 已提交
925
		advance_queue(tsock);
926
	}
P
Per Liden 已提交
927
exit:
928
	mutex_unlock(&tsock->lock);
P
Per Liden 已提交
929 930 931
	return res;
}

932
/**
P
Per Liden 已提交
933 934 935 936 937
 * recv_stream - receive stream-oriented data
 * @iocb: (unused)
 * @m: descriptor for message info
 * @buf_len: total size of user buffer area
 * @flags: receive flags
938 939
 *
 * Used for SOCK_STREAM messages only.  If not enough data is available
P
Per Liden 已提交
940 941 942 943 944 945 946 947 948 949 950 951 952 953 954 955
 * will optionally wait for more; never truncates data.
 *
 * Returns size of returned message data, errno otherwise
 */

static int recv_stream(struct kiocb *iocb, struct socket *sock,
		       struct msghdr *m, size_t buf_len, int flags)
{
	struct tipc_sock *tsock = tipc_sk(sock->sk);
	struct sk_buff *buf;
	struct tipc_msg *msg;
	unsigned int q_len;
	unsigned int sz;
	int sz_to_copy;
	int sz_copied = 0;
	int needed;
A
Al Viro 已提交
956
	char __user *crs = m->msg_iov->iov_base;
P
Per Liden 已提交
957 958 959 960 961 962 963 964 965 966 967 968 969 970 971 972 973 974 975 976 977 978
	unsigned char *buf_crs;
	u32 err;
	int res;

	/* Currently doesn't support receiving into multiple iovec entries */

	if (m->msg_iovlen != 1)
		return -EOPNOTSUPP;

	/* Catch invalid receive attempts */

	if (unlikely(!buf_len))
		return -EINVAL;

	if (unlikely(sock->state == SS_DISCONNECTING)) {
		if (skb_queue_len(&sock->sk->sk_receive_queue) == 0)
			return -ENOTCONN;
	} else if (unlikely(sock->state != SS_CONNECTED))
		return -ENOTCONN;

	/* Look for a message in receive queue; wait if necessary */

979
	if (unlikely(mutex_lock_interruptible(&tsock->lock)))
P
Per Liden 已提交
980 981 982 983 984
		return -ERESTARTSYS;

restart:
	if (unlikely((skb_queue_len(&sock->sk->sk_receive_queue) == 0) &&
		     (flags & MSG_DONTWAIT))) {
985
		res = -EWOULDBLOCK;
P
Per Liden 已提交
986 987 988 989
		goto exit;
	}

	if ((res = wait_event_interruptible(
990
		*sock->sk->sk_sleep,
P
Per Liden 已提交
991 992 993 994 995 996 997 998 999 1000 1001 1002 1003 1004 1005 1006 1007 1008 1009 1010 1011 1012 1013 1014 1015 1016 1017 1018 1019 1020 1021 1022 1023 1024 1025 1026
		((q_len = skb_queue_len(&sock->sk->sk_receive_queue)) ||
		 (sock->state == SS_DISCONNECTING))) )) {
		goto exit;
	}

	/* Catch attempt to receive on an already terminated connection */
	/* [THIS CHECK MAY OVERLAP WITH AN EARLIER CHECK] */

	if (!q_len) {
		res = -ENOTCONN;
		goto exit;
	}

	/* Get access to first message in receive queue */

	buf = skb_peek(&sock->sk->sk_receive_queue);
	msg = buf_msg(buf);
	sz = msg_data_sz(msg);
	err = msg_errcode(msg);

	/* Discard an empty non-errored message & try again */

	if ((!sz) && (!err)) {
		advance_queue(tsock);
		goto restart;
	}

	/* Optionally capture sender's address & ancillary data of first msg */

	if (sz_copied == 0) {
		set_orig_addr(m, msg);
		if ((res = anc_data_recv(m, msg, tsock->p)))
			goto exit;
	}

	/* Capture message data (if valid) & compute return value (always) */
1027

P
Per Liden 已提交
1028 1029
	if (!err) {
		buf_crs = (unsigned char *)(TIPC_SKB_CB(buf)->handle);
1030
		sz = skb_tail_pointer(buf) - buf_crs;
P
Per Liden 已提交
1031 1032 1033 1034 1035 1036 1037 1038 1039 1040 1041 1042 1043 1044 1045 1046 1047 1048 1049 1050 1051 1052 1053 1054 1055 1056 1057 1058 1059

		needed = (buf_len - sz_copied);
		sz_to_copy = (sz <= needed) ? sz : needed;
		if (unlikely(copy_to_user(crs, buf_crs, sz_to_copy))) {
			res = -EFAULT;
			goto exit;
		}
		sz_copied += sz_to_copy;

		if (sz_to_copy < sz) {
			if (!(flags & MSG_PEEK))
				TIPC_SKB_CB(buf)->handle = buf_crs + sz_to_copy;
			goto exit;
		}

		crs += sz_to_copy;
	} else {
		if (sz_copied != 0)
			goto exit; /* can't add error msg to valid data */

		if ((err == TIPC_CONN_SHUTDOWN) || m->msg_control)
			res = 0;
		else
			res = -ECONNRESET;
	}

	/* Consume received message (optional) */

	if (likely(!(flags & MSG_PEEK))) {
1060 1061
		if (unlikely(++tsock->p->conn_unacked >= TIPC_FLOW_CONTROL_WIN))
			tipc_acknowledge(tsock->p->ref, tsock->p->conn_unacked);
P
Per Liden 已提交
1062
		advance_queue(tsock);
1063
	}
P
Per Liden 已提交
1064 1065 1066

	/* Loop around if more data is required */

1067
	if ((sz_copied < buf_len)    /* didn't get all requested data */
1068 1069 1070
	    && (!skb_queue_empty(&sock->sk->sk_receive_queue) ||
		(flags & MSG_WAITALL))
				     /* ... and more is ready or required */
P
Per Liden 已提交
1071 1072 1073 1074 1075 1076
	    && (!(flags & MSG_PEEK)) /* ... and aren't just peeking at data */
	    && (!err)                /* ... and haven't reached a FIN */
	    )
		goto restart;

exit:
1077
	mutex_unlock(&tsock->lock);
1078
	return sz_copied ? sz_copied : res;
P
Per Liden 已提交
1079 1080 1081 1082 1083 1084 1085
}

/**
 * queue_overloaded - test if queue overload condition exists
 * @queue_size: current size of queue
 * @base: nominal maximum size of queue
 * @msg: message to be added to queue
1086
 *
P
Per Liden 已提交
1087 1088 1089 1090 1091 1092 1093 1094 1095 1096 1097 1098 1099 1100 1101 1102 1103 1104 1105 1106 1107 1108 1109
 * Returns 1 if queue is currently overloaded, 0 otherwise
 */

static int queue_overloaded(u32 queue_size, u32 base, struct tipc_msg *msg)
{
	u32 threshold;
	u32 imp = msg_importance(msg);

	if (imp == TIPC_LOW_IMPORTANCE)
		threshold = base;
	else if (imp == TIPC_MEDIUM_IMPORTANCE)
		threshold = base * 2;
	else if (imp == TIPC_HIGH_IMPORTANCE)
		threshold = base * 100;
	else
		return 0;

	if (msg_connected(msg))
		threshold *= 4;

	return (queue_size > threshold);
}

1110
/**
P
Per Liden 已提交
1111 1112 1113 1114 1115 1116 1117 1118 1119
 * async_disconnect - wrapper function used to disconnect port
 * @portref: TIPC port reference (passed as pointer-sized value)
 */

static void async_disconnect(unsigned long portref)
{
	tipc_disconnect((u32)portref);
}

1120
/**
P
Per Liden 已提交
1121 1122 1123
 * dispatch - handle arriving message
 * @tport: TIPC port that received message
 * @buf: message
1124
 *
P
Per Liden 已提交
1125
 * Called with port locked.  Must not take socket lock to avoid deadlock risk.
1126
 *
P
Per Liden 已提交
1127 1128 1129 1130 1131 1132 1133 1134 1135 1136 1137 1138 1139 1140 1141 1142 1143 1144 1145 1146 1147 1148 1149 1150 1151 1152 1153 1154 1155 1156 1157 1158 1159 1160 1161 1162 1163 1164 1165 1166 1167 1168 1169 1170
 * Returns TIPC error status code (TIPC_OK if message is not to be rejected)
 */

static u32 dispatch(struct tipc_port *tport, struct sk_buff *buf)
{
	struct tipc_msg *msg = buf_msg(buf);
	struct tipc_sock *tsock = (struct tipc_sock *)tport->usr_handle;
	struct socket *sock;
	u32 recv_q_len;

	/* Reject message if socket is closing */

	if (!tsock)
		return TIPC_ERR_NO_PORT;

	/* Reject message if it is wrong sort of message for socket */

	/*
	 * WOULD IT BE BETTER TO JUST DISCARD THESE MESSAGES INSTEAD?
	 * "NO PORT" ISN'T REALLY THE RIGHT ERROR CODE, AND THERE MAY
	 * BE SECURITY IMPLICATIONS INHERENT IN REJECTING INVALID TRAFFIC
	 */
	sock = tsock->sk.sk_socket;
	if (sock->state == SS_READY) {
		if (msg_connected(msg)) {
			msg_dbg(msg, "dispatch filter 1\n");
			return TIPC_ERR_NO_PORT;
		}
	} else {
		if (msg_mcast(msg)) {
			msg_dbg(msg, "dispatch filter 2\n");
			return TIPC_ERR_NO_PORT;
		}
		if (sock->state == SS_CONNECTED) {
			if (!msg_connected(msg)) {
				msg_dbg(msg, "dispatch filter 3\n");
				return TIPC_ERR_NO_PORT;
			}
		}
		else if (sock->state == SS_CONNECTING) {
			if (!msg_connected(msg) && (msg_errcode(msg) == 0)) {
				msg_dbg(msg, "dispatch filter 4\n");
				return TIPC_ERR_NO_PORT;
			}
1171
		}
P
Per Liden 已提交
1172 1173 1174 1175 1176
		else if (sock->state == SS_LISTENING) {
			if (msg_connected(msg) || msg_errcode(msg)) {
				msg_dbg(msg, "dispatch filter 5\n");
				return TIPC_ERR_NO_PORT;
			}
1177
		}
P
Per Liden 已提交
1178 1179 1180 1181 1182 1183 1184 1185 1186 1187 1188 1189 1190 1191
		else if (sock->state == SS_DISCONNECTING) {
			msg_dbg(msg, "dispatch filter 6\n");
			return TIPC_ERR_NO_PORT;
		}
		else /* (sock->state == SS_UNCONNECTED) */ {
			if (msg_connected(msg) || msg_errcode(msg)) {
				msg_dbg(msg, "dispatch filter 7\n");
				return TIPC_ERR_NO_PORT;
			}
		}
	}

	/* Reject message if there isn't room to queue it */

1192
	if (unlikely((u32)atomic_read(&tipc_queue_size) >
P
Per Liden 已提交
1193
		     OVERLOAD_LIMIT_BASE)) {
1194
		if (queue_overloaded(atomic_read(&tipc_queue_size),
P
Per Liden 已提交
1195 1196
				     OVERLOAD_LIMIT_BASE, msg))
			return TIPC_ERR_OVERLOAD;
1197
	}
P
Per Liden 已提交
1198 1199
	recv_q_len = skb_queue_len(&tsock->sk.sk_receive_queue);
	if (unlikely(recv_q_len > (OVERLOAD_LIMIT_BASE / 2))) {
1200 1201
		if (queue_overloaded(recv_q_len,
				     OVERLOAD_LIMIT_BASE / 2, msg))
P
Per Liden 已提交
1202
			return TIPC_ERR_OVERLOAD;
1203
	}
P
Per Liden 已提交
1204 1205 1206 1207 1208 1209

	/* Initiate connection termination for an incoming 'FIN' */

	if (unlikely(msg_errcode(msg) && (sock->state == SS_CONNECTED))) {
		sock->state = SS_DISCONNECTING;
		/* Note: Use signal since port lock is already taken! */
1210
		tipc_k_signal((Handler)async_disconnect, tport->ref);
P
Per Liden 已提交
1211 1212 1213 1214 1215 1216 1217 1218 1219
	}

	/* Enqueue message (finally!) */

	msg_dbg(msg,"<DISP<: ");
	TIPC_SKB_CB(buf)->handle = msg_data(msg);
	atomic_inc(&tipc_queue_size);
	skb_queue_tail(&sock->sk->sk_receive_queue, buf);

1220 1221
	if (waitqueue_active(sock->sk->sk_sleep))
		wake_up_interruptible(sock->sk->sk_sleep);
P
Per Liden 已提交
1222 1223 1224
	return TIPC_OK;
}

1225
/**
P
Per Liden 已提交
1226 1227
 * wakeupdispatch - wake up port after congestion
 * @tport: port to wakeup
1228
 *
P
Per Liden 已提交
1229 1230 1231 1232 1233 1234 1235
 * Called with port lock on.
 */

static void wakeupdispatch(struct tipc_port *tport)
{
	struct tipc_sock *tsock = (struct tipc_sock *)tport->usr_handle;

1236 1237
	if (waitqueue_active(tsock->sk.sk_sleep))
		wake_up_interruptible(tsock->sk.sk_sleep);
P
Per Liden 已提交
1238 1239 1240 1241 1242 1243 1244 1245 1246 1247 1248 1249
}

/**
 * connect - establish a connection to another TIPC port
 * @sock: socket structure
 * @dest: socket address for destination port
 * @destlen: size of socket address data structure
 * @flags: (unused)
 *
 * Returns 0 on success, errno otherwise
 */

1250
static int connect(struct socket *sock, struct sockaddr *dest, int destlen,
P
Per Liden 已提交
1251 1252 1253 1254
		   int flags)
{
   struct tipc_sock *tsock = tipc_sk(sock->sk);
   struct sockaddr_tipc *dst = (struct sockaddr_tipc *)dest;
1255
   struct msghdr m = {NULL,};
P
Per Liden 已提交
1256 1257 1258 1259 1260 1261 1262 1263 1264
   struct sk_buff *buf;
   struct tipc_msg *msg;
   int res;

   /* For now, TIPC does not allow use of connect() with DGRAM or RDM types */

   if (sock->state == SS_READY)
	   return -EOPNOTSUPP;

1265 1266
   /* Issue Posix-compliant error code if socket is in the wrong state */

P
Per Liden 已提交
1267 1268 1269 1270 1271
   if (sock->state == SS_LISTENING)
	   return -EOPNOTSUPP;
   if (sock->state == SS_CONNECTING)
	   return -EALREADY;
   if (sock->state != SS_UNCONNECTED)
1272
	   return -EISCONN;
P
Per Liden 已提交
1273

1274 1275 1276 1277 1278 1279 1280 1281
   /*
    * Reject connection attempt using multicast address
    *
    * Note: send_msg() validates the rest of the address fields,
    *       so there's no need to do it here
    */

   if (dst->addrtype == TIPC_ADDR_MCAST)
1282
	   return -EINVAL;
P
Per Liden 已提交
1283 1284 1285 1286

   /* Send a 'SYN-' to destination */

   m.msg_name = dest;
1287
   m.msg_namelen = destlen;
1288
   if ((res = send_msg(NULL, sock, &m, 0)) < 0) {
P
Per Liden 已提交
1289 1290 1291 1292
	   sock->state = SS_DISCONNECTING;
	   return res;
   }

1293
   if (mutex_lock_interruptible(&tsock->lock))
1294 1295
	   return -ERESTARTSYS;

P
Per Liden 已提交
1296 1297 1298
   /* Wait for destination's 'ACK' response */

   res = wait_event_interruptible_timeout(*sock->sk->sk_sleep,
1299
					  skb_queue_len(&sock->sk->sk_receive_queue),
P
Per Liden 已提交
1300 1301 1302 1303
					  sock->sk->sk_rcvtimeo);
   buf = skb_peek(&sock->sk->sk_receive_queue);
   if (res > 0) {
	   msg = buf_msg(buf);
1304 1305
	   res = auto_connect(sock, tsock, msg);
	   if (!res) {
P
Per Liden 已提交
1306 1307 1308 1309 1310 1311 1312
		   if (!msg_data_sz(msg))
			   advance_queue(tsock);
	   }
   } else {
	   if (res == 0) {
		   res = -ETIMEDOUT;
	   } else
1313
		   { /* leave "res" unchanged */ }
P
Per Liden 已提交
1314 1315 1316
	   sock->state = SS_DISCONNECTING;
   }

1317
   mutex_unlock(&tsock->lock);
P
Per Liden 已提交
1318 1319 1320
   return res;
}

1321
/**
P
Per Liden 已提交
1322 1323 1324
 * listen - allow socket to listen for incoming connections
 * @sock: socket structure
 * @len: (unused)
1325
 *
P
Per Liden 已提交
1326 1327 1328 1329 1330 1331 1332 1333 1334 1335 1336 1337
 * Returns 0 on success, errno otherwise
 */

static int listen(struct socket *sock, int len)
{
	/* REQUIRES SOCKET LOCKING OF SOME SORT? */

	if (sock->state == SS_READY)
		return -EOPNOTSUPP;
	if (sock->state != SS_UNCONNECTED)
		return -EINVAL;
	sock->state = SS_LISTENING;
1338
	return 0;
P
Per Liden 已提交
1339 1340
}

1341
/**
P
Per Liden 已提交
1342 1343 1344 1345
 * accept - wait for connection request
 * @sock: listening socket
 * @newsock: new socket that is to be connected
 * @flags: file-related flags associated with socket
1346
 *
P
Per Liden 已提交
1347 1348 1349 1350 1351 1352 1353 1354 1355 1356 1357 1358 1359
 * Returns 0 on success, errno otherwise
 */

static int accept(struct socket *sock, struct socket *newsock, int flags)
{
	struct tipc_sock *tsock = tipc_sk(sock->sk);
	struct sk_buff *buf;
	int res = -EFAULT;

	if (sock->state == SS_READY)
		return -EOPNOTSUPP;
	if (sock->state != SS_LISTENING)
		return -EINVAL;
1360 1361

	if (unlikely((skb_queue_len(&sock->sk->sk_receive_queue) == 0) &&
P
Per Liden 已提交
1362 1363 1364
		     (flags & O_NONBLOCK)))
		return -EWOULDBLOCK;

1365
	if (mutex_lock_interruptible(&tsock->lock))
P
Per Liden 已提交
1366 1367
		return -ERESTARTSYS;

1368
	if (wait_event_interruptible(*sock->sk->sk_sleep,
P
Per Liden 已提交
1369 1370 1371 1372 1373 1374
				     skb_queue_len(&sock->sk->sk_receive_queue))) {
		res = -ERESTARTSYS;
		goto exit;
	}
	buf = skb_peek(&sock->sk->sk_receive_queue);

1375
	res = tipc_create(sock_net(sock->sk), newsock, 0);
P
Per Liden 已提交
1376 1377 1378 1379 1380 1381 1382 1383 1384 1385 1386 1387 1388 1389 1390 1391 1392
	if (!res) {
		struct tipc_sock *new_tsock = tipc_sk(newsock->sk);
		struct tipc_portid id;
		struct tipc_msg *msg = buf_msg(buf);
		u32 new_ref = new_tsock->p->ref;

		id.ref = msg_origport(msg);
		id.node = msg_orignode(msg);
		tipc_connect2port(new_ref, &id);
		newsock->state = SS_CONNECTED;

		tipc_set_portimportance(new_ref, msg_importance(msg));
		if (msg_named(msg)) {
			new_tsock->p->conn_type = msg_nametype(msg);
			new_tsock->p->conn_instance = msg_nameinst(msg);
		}

1393
	       /*
P
Per Liden 已提交
1394 1395 1396 1397 1398
		 * Respond to 'SYN-' by discarding it & returning 'ACK'-.
		 * Respond to 'SYN+' by queuing it on new socket.
		 */

		msg_dbg(msg,"<ACC<: ");
1399 1400
		if (!msg_data_sz(msg)) {
			struct msghdr m = {NULL,};
P
Per Liden 已提交
1401

1402 1403 1404
			send_packet(NULL, newsock, &m, 0);
			advance_queue(tsock);
		} else {
P
Per Liden 已提交
1405 1406 1407 1408 1409 1410 1411
			sock_lock(tsock);
			skb_dequeue(&sock->sk->sk_receive_queue);
			sock_unlock(tsock);
			skb_queue_head(&newsock->sk->sk_receive_queue, buf);
		}
	}
exit:
1412
	mutex_unlock(&tsock->lock);
P
Per Liden 已提交
1413 1414 1415 1416 1417 1418
	return res;
}

/**
 * shutdown - shutdown socket connection
 * @sock: socket structure
1419
 * @how: direction to close (must be SHUT_RDWR)
P
Per Liden 已提交
1420 1421
 *
 * Terminates connection (if necessary), then purges socket's receive queue.
1422
 *
P
Per Liden 已提交
1423 1424 1425 1426 1427 1428 1429 1430 1431
 * Returns 0 on success, errno otherwise
 */

static int shutdown(struct socket *sock, int how)
{
	struct tipc_sock* tsock = tipc_sk(sock->sk);
	struct sk_buff *buf;
	int res;

1432 1433
	if (how != SHUT_RDWR)
		return -EINVAL;
P
Per Liden 已提交
1434

1435
	if (mutex_lock_interruptible(&tsock->lock))
P
Per Liden 已提交
1436 1437 1438 1439 1440 1441 1442 1443 1444 1445 1446 1447 1448 1449 1450 1451 1452 1453 1454 1455 1456 1457 1458 1459 1460 1461 1462 1463 1464 1465 1466 1467 1468 1469 1470 1471 1472 1473 1474 1475 1476 1477 1478 1479 1480 1481 1482 1483 1484
		return -ERESTARTSYS;

	sock_lock(tsock);

	switch (sock->state) {
	case SS_CONNECTED:

		/* Send 'FIN+' or 'FIN-' message to peer */

		sock_unlock(tsock);
restart:
		if ((buf = skb_dequeue(&sock->sk->sk_receive_queue))) {
			atomic_dec(&tipc_queue_size);
			if (TIPC_SKB_CB(buf)->handle != msg_data(buf_msg(buf))) {
				buf_discard(buf);
				goto restart;
			}
			tipc_reject_msg(buf, TIPC_CONN_SHUTDOWN);
		}
		else {
			tipc_shutdown(tsock->p->ref);
		}
		sock_lock(tsock);

		/* fall through */

	case SS_DISCONNECTING:

		/* Discard any unreceived messages */

		while ((buf = skb_dequeue(&sock->sk->sk_receive_queue))) {
			atomic_dec(&tipc_queue_size);
			buf_discard(buf);
		}
		tsock->p->conn_unacked = 0;

		/* fall through */

	case SS_CONNECTING:
		sock->state = SS_DISCONNECTING;
		res = 0;
		break;

	default:
		res = -ENOTCONN;
	}

	sock_unlock(tsock);

1485
	mutex_unlock(&tsock->lock);
P
Per Liden 已提交
1486 1487 1488 1489 1490 1491 1492 1493 1494 1495
	return res;
}

/**
 * setsockopt - set socket option
 * @sock: socket structure
 * @lvl: option level
 * @opt: option identifier
 * @ov: pointer to new option value
 * @ol: length of option value
1496 1497
 *
 * For stream sockets only, accepts and ignores all IPPROTO_TCP options
P
Per Liden 已提交
1498
 * (to ease compatibility).
1499
 *
P
Per Liden 已提交
1500 1501 1502
 * Returns 0 on success, errno otherwise
 */

1503
static int setsockopt(struct socket *sock,
1504
		      int lvl, int opt, char __user *ov, int ol)
P
Per Liden 已提交
1505 1506 1507 1508 1509
{
	struct tipc_sock *tsock = tipc_sk(sock->sk);
	u32 value;
	int res;

1510 1511
	if ((lvl == IPPROTO_TCP) && (sock->type == SOCK_STREAM))
		return 0;
P
Per Liden 已提交
1512 1513 1514 1515
	if (lvl != SOL_TIPC)
		return -ENOPROTOOPT;
	if (ol < sizeof(value))
		return -EINVAL;
1516
	if ((res = get_user(value, (u32 __user *)ov)))
P
Per Liden 已提交
1517 1518
		return res;

1519
	if (mutex_lock_interruptible(&tsock->lock))
P
Per Liden 已提交
1520
		return -ERESTARTSYS;
1521

P
Per Liden 已提交
1522 1523 1524 1525 1526 1527 1528
	switch (opt) {
	case TIPC_IMPORTANCE:
		res = tipc_set_portimportance(tsock->p->ref, value);
		break;
	case TIPC_SRC_DROPPABLE:
		if (sock->type != SOCK_STREAM)
			res = tipc_set_portunreliable(tsock->p->ref, value);
1529
		else
P
Per Liden 已提交
1530 1531 1532 1533 1534 1535
			res = -ENOPROTOOPT;
		break;
	case TIPC_DEST_DROPPABLE:
		res = tipc_set_portunreturnable(tsock->p->ref, value);
		break;
	case TIPC_CONN_TIMEOUT:
1536
		sock->sk->sk_rcvtimeo = msecs_to_jiffies(value);
P
Per Liden 已提交
1537 1538 1539 1540 1541
		break;
	default:
		res = -EINVAL;
	}

1542
	mutex_unlock(&tsock->lock);
P
Per Liden 已提交
1543 1544 1545 1546 1547 1548 1549 1550 1551 1552
	return res;
}

/**
 * getsockopt - get socket option
 * @sock: socket structure
 * @lvl: option level
 * @opt: option identifier
 * @ov: receptacle for option value
 * @ol: receptacle for length of option value
1553 1554
 *
 * For stream sockets only, returns 0 length result for all IPPROTO_TCP options
P
Per Liden 已提交
1555
 * (to ease compatibility).
1556
 *
P
Per Liden 已提交
1557 1558 1559
 * Returns 0 on success, errno otherwise
 */

1560
static int getsockopt(struct socket *sock,
A
Al Viro 已提交
1561
		      int lvl, int opt, char __user *ov, int __user *ol)
P
Per Liden 已提交
1562 1563
{
	struct tipc_sock *tsock = tipc_sk(sock->sk);
1564
	int len;
P
Per Liden 已提交
1565
	u32 value;
1566
	int res;
P
Per Liden 已提交
1567

1568 1569
	if ((lvl == IPPROTO_TCP) && (sock->type == SOCK_STREAM))
		return put_user(0, ol);
P
Per Liden 已提交
1570 1571
	if (lvl != SOL_TIPC)
		return -ENOPROTOOPT;
1572 1573
	if ((res = get_user(len, ol)))
		return res;
P
Per Liden 已提交
1574

1575
	if (mutex_lock_interruptible(&tsock->lock))
P
Per Liden 已提交
1576 1577 1578 1579 1580 1581 1582 1583 1584 1585 1586 1587 1588
		return -ERESTARTSYS;

	switch (opt) {
	case TIPC_IMPORTANCE:
		res = tipc_portimportance(tsock->p->ref, &value);
		break;
	case TIPC_SRC_DROPPABLE:
		res = tipc_portunreliable(tsock->p->ref, &value);
		break;
	case TIPC_DEST_DROPPABLE:
		res = tipc_portunreturnable(tsock->p->ref, &value);
		break;
	case TIPC_CONN_TIMEOUT:
1589
		value = jiffies_to_msecs(sock->sk->sk_rcvtimeo);
P
Per Liden 已提交
1590 1591 1592 1593 1594 1595 1596 1597 1598 1599 1600 1601 1602 1603 1604 1605 1606 1607
		break;
	default:
		res = -EINVAL;
	}

	if (res) {
		/* "get" failed */
	}
	else if (len < sizeof(value)) {
		res = -EINVAL;
	}
	else if ((res = copy_to_user(ov, &value, sizeof(value)))) {
		/* couldn't return value */
	}
	else {
		res = put_user(sizeof(value), ol);
	}

1608
	mutex_unlock(&tsock->lock);
P
Per Liden 已提交
1609 1610 1611 1612 1613 1614 1615
	return res;
}

/**
 * Protocol switches for the various types of TIPC sockets
 */

1616
static const struct proto_ops msg_ops = {
P
Per Liden 已提交
1617 1618 1619 1620 1621
	.owner 		= THIS_MODULE,
	.family		= AF_TIPC,
	.release	= release,
	.bind		= bind,
	.connect	= connect,
1622
	.socketpair	= sock_no_socketpair,
P
Per Liden 已提交
1623 1624 1625
	.accept		= accept,
	.getname	= get_name,
	.poll		= poll,
1626
	.ioctl		= sock_no_ioctl,
P
Per Liden 已提交
1627 1628 1629 1630 1631 1632
	.listen		= listen,
	.shutdown	= shutdown,
	.setsockopt	= setsockopt,
	.getsockopt	= getsockopt,
	.sendmsg	= send_msg,
	.recvmsg	= recv_msg,
1633 1634
	.mmap		= sock_no_mmap,
	.sendpage	= sock_no_sendpage
P
Per Liden 已提交
1635 1636
};

1637
static const struct proto_ops packet_ops = {
P
Per Liden 已提交
1638 1639 1640 1641 1642
	.owner 		= THIS_MODULE,
	.family		= AF_TIPC,
	.release	= release,
	.bind		= bind,
	.connect	= connect,
1643
	.socketpair	= sock_no_socketpair,
P
Per Liden 已提交
1644 1645 1646
	.accept		= accept,
	.getname	= get_name,
	.poll		= poll,
1647
	.ioctl		= sock_no_ioctl,
P
Per Liden 已提交
1648 1649 1650 1651 1652 1653
	.listen		= listen,
	.shutdown	= shutdown,
	.setsockopt	= setsockopt,
	.getsockopt	= getsockopt,
	.sendmsg	= send_packet,
	.recvmsg	= recv_msg,
1654 1655
	.mmap		= sock_no_mmap,
	.sendpage	= sock_no_sendpage
P
Per Liden 已提交
1656 1657
};

1658
static const struct proto_ops stream_ops = {
P
Per Liden 已提交
1659 1660 1661 1662 1663
	.owner 		= THIS_MODULE,
	.family		= AF_TIPC,
	.release	= release,
	.bind		= bind,
	.connect	= connect,
1664
	.socketpair	= sock_no_socketpair,
P
Per Liden 已提交
1665 1666 1667
	.accept		= accept,
	.getname	= get_name,
	.poll		= poll,
1668
	.ioctl		= sock_no_ioctl,
P
Per Liden 已提交
1669 1670 1671 1672 1673 1674
	.listen		= listen,
	.shutdown	= shutdown,
	.setsockopt	= setsockopt,
	.getsockopt	= getsockopt,
	.sendmsg	= send_stream,
	.recvmsg	= recv_stream,
1675 1676
	.mmap		= sock_no_mmap,
	.sendpage	= sock_no_sendpage
P
Per Liden 已提交
1677 1678
};

1679
static const struct net_proto_family tipc_family_ops = {
P
Per Liden 已提交
1680 1681 1682 1683 1684 1685 1686 1687 1688 1689 1690 1691
	.owner 		= THIS_MODULE,
	.family		= AF_TIPC,
	.create		= tipc_create
};

static struct proto tipc_proto = {
	.name		= "TIPC",
	.owner		= THIS_MODULE,
	.obj_size	= sizeof(struct tipc_sock)
};

/**
1692
 * tipc_socket_init - initialize TIPC socket interface
1693
 *
P
Per Liden 已提交
1694 1695
 * Returns 0 on success, errno otherwise
 */
1696
int tipc_socket_init(void)
P
Per Liden 已提交
1697 1698 1699
{
	int res;

1700
	res = proto_register(&tipc_proto, 1);
P
Per Liden 已提交
1701
	if (res) {
1702
		err("Failed to register TIPC protocol type\n");
P
Per Liden 已提交
1703 1704 1705 1706 1707
		goto out;
	}

	res = sock_register(&tipc_family_ops);
	if (res) {
1708
		err("Failed to register TIPC socket type\n");
P
Per Liden 已提交
1709 1710 1711 1712 1713 1714 1715 1716 1717 1718
		proto_unregister(&tipc_proto);
		goto out;
	}

	sockets_enabled = 1;
 out:
	return res;
}

/**
1719
 * tipc_socket_stop - stop TIPC socket interface
P
Per Liden 已提交
1720
 */
1721
void tipc_socket_stop(void)
P
Per Liden 已提交
1722 1723 1724 1725 1726 1727 1728 1729 1730
{
	if (!sockets_enabled)
		return;

	sockets_enabled = 0;
	sock_unregister(tipc_family_ops.family);
	proto_unregister(&tipc_proto);
}