act_pedit.c 6.9 KB
Newer Older
L
Linus Torvalds 已提交
1
/*
2
 * net/sched/act_pedit.c	Generic packet editor
L
Linus Torvalds 已提交
3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19
 *
 *		This program is free software; you can redistribute it and/or
 *		modify it under the terms of the GNU General Public License
 *		as published by the Free Software Foundation; either version
 *		2 of the License, or (at your option) any later version.
 *
 * Authors:	Jamal Hadi Salim (2002-4)
 */

#include <linux/types.h>
#include <linux/kernel.h>
#include <linux/string.h>
#include <linux/errno.h>
#include <linux/skbuff.h>
#include <linux/rtnetlink.h>
#include <linux/module.h>
#include <linux/init.h>
20
#include <linux/slab.h>
21
#include <net/netlink.h>
L
Linus Torvalds 已提交
22 23 24 25
#include <net/pkt_sched.h>
#include <linux/tc_act/tc_pedit.h>
#include <net/tc_act/tc_pedit.h>

26
#define PEDIT_TAB_MASK	15
L
Linus Torvalds 已提交
27

28
static unsigned int pedit_net_id;
29
static struct tc_action_ops act_pedit_ops;
30

31
static const struct nla_policy pedit_policy[TCA_PEDIT_MAX + 1] = {
J
jamal 已提交
32
	[TCA_PEDIT_PARMS]	= { .len = sizeof(struct tc_pedit) },
33 34
};

35
static int tcf_pedit_init(struct net *net, struct nlattr *nla,
36
			  struct nlattr *est, struct tc_action **a,
37
			  int ovr, int bind)
L
Linus Torvalds 已提交
38
{
39
	struct tc_action_net *tn = net_generic(net, pedit_net_id);
40
	struct nlattr *tb[TCA_PEDIT_MAX + 1];
L
Linus Torvalds 已提交
41
	struct tc_pedit *parm;
42
	int ret = 0, err;
L
Linus Torvalds 已提交
43 44 45 46
	struct tcf_pedit *p;
	struct tc_pedit_key *keys = NULL;
	int ksize;

47
	if (nla == NULL)
L
Linus Torvalds 已提交
48 49
		return -EINVAL;

50
	err = nla_parse_nested(tb, TCA_PEDIT_MAX, nla, pedit_policy);
51 52 53
	if (err < 0)
		return err;

54
	if (tb[TCA_PEDIT_PARMS] == NULL)
L
Linus Torvalds 已提交
55
		return -EINVAL;
56
	parm = nla_data(tb[TCA_PEDIT_PARMS]);
L
Linus Torvalds 已提交
57
	ksize = parm->nkeys * sizeof(struct tc_pedit_key);
58
	if (nla_len(tb[TCA_PEDIT_PARMS]) < sizeof(*parm) + ksize)
L
Linus Torvalds 已提交
59 60
		return -EINVAL;

61
	if (!tcf_hash_check(tn, parm->index, a, bind)) {
L
Linus Torvalds 已提交
62 63
		if (!parm->nkeys)
			return -EINVAL;
64
		ret = tcf_hash_create(tn, parm->index, est, a,
65
				      &act_pedit_ops, bind, false);
66 67
		if (ret)
			return ret;
68
		p = to_pedit(*a);
L
Linus Torvalds 已提交
69 70
		keys = kmalloc(ksize, GFP_KERNEL);
		if (keys == NULL) {
71
			tcf_hash_cleanup(*a, est);
L
Linus Torvalds 已提交
72 73 74 75
			return -ENOMEM;
		}
		ret = ACT_P_CREATED;
	} else {
76 77
		if (bind)
			return 0;
78
		tcf_hash_release(*a, bind);
79
		if (!ovr)
L
Linus Torvalds 已提交
80
			return -EEXIST;
81
		p = to_pedit(*a);
82
		if (p->tcfp_nkeys && p->tcfp_nkeys != parm->nkeys) {
L
Linus Torvalds 已提交
83 84 85 86 87 88
			keys = kmalloc(ksize, GFP_KERNEL);
			if (keys == NULL)
				return -ENOMEM;
		}
	}

89 90 91
	spin_lock_bh(&p->tcf_lock);
	p->tcfp_flags = parm->flags;
	p->tcf_action = parm->action;
L
Linus Torvalds 已提交
92
	if (keys) {
93 94 95
		kfree(p->tcfp_keys);
		p->tcfp_keys = keys;
		p->tcfp_nkeys = parm->nkeys;
L
Linus Torvalds 已提交
96
	}
97 98
	memcpy(p->tcfp_keys, parm->keys, ksize);
	spin_unlock_bh(&p->tcf_lock);
L
Linus Torvalds 已提交
99
	if (ret == ACT_P_CREATED)
100
		tcf_hash_insert(tn, *a);
L
Linus Torvalds 已提交
101 102 103
	return ret;
}

W
WANG Cong 已提交
104
static void tcf_pedit_cleanup(struct tc_action *a, int bind)
L
Linus Torvalds 已提交
105
{
106
	struct tcf_pedit *p = to_pedit(a);
W
WANG Cong 已提交
107 108
	struct tc_pedit_key *keys = p->tcfp_keys;
	kfree(keys);
L
Linus Torvalds 已提交
109 110
}

111 112 113 114 115 116 117 118 119 120 121
static bool offset_valid(struct sk_buff *skb, int offset)
{
	if (offset > 0 && offset > skb->len)
		return false;

	if  (offset < 0 && -offset > skb_headroom(skb))
		return false;

	return true;
}

122
static int tcf_pedit(struct sk_buff *skb, const struct tc_action *a,
123
		     struct tcf_result *res)
L
Linus Torvalds 已提交
124
{
125
	struct tcf_pedit *p = to_pedit(a);
126
	int i;
C
Changli Gao 已提交
127
	unsigned int off;
L
Linus Torvalds 已提交
128

129
	if (skb_unclone(skb, GFP_ATOMIC))
E
Eric Dumazet 已提交
130
		return p->tcf_action;
L
Linus Torvalds 已提交
131

C
Changli Gao 已提交
132
	off = skb_network_offset(skb);
L
Linus Torvalds 已提交
133

134
	spin_lock(&p->tcf_lock);
L
Linus Torvalds 已提交
135

136
	tcf_lastuse_update(&p->tcf_tm);
L
Linus Torvalds 已提交
137

138 139
	if (p->tcfp_nkeys > 0) {
		struct tc_pedit_key *tkey = p->tcfp_keys;
L
Linus Torvalds 已提交
140

141
		for (i = p->tcfp_nkeys; i > 0; i--, tkey++) {
C
Changli Gao 已提交
142
			u32 *ptr, _data;
L
Linus Torvalds 已提交
143 144 145
			int offset = tkey->off;

			if (tkey->offmask) {
C
Changli Gao 已提交
146 147
				char *d, _d;

148 149 150 151 152
				if (!offset_valid(skb, off + tkey->at)) {
					pr_info("tc filter pedit 'at' offset %d out of bounds\n",
						off + tkey->at);
					goto bad;
				}
C
Changli Gao 已提交
153 154 155
				d = skb_header_pointer(skb, off + tkey->at, 1,
						       &_d);
				if (!d)
L
Linus Torvalds 已提交
156
					goto bad;
C
Changli Gao 已提交
157
				offset += (*d & tkey->offmask) >> tkey->shift;
L
Linus Torvalds 已提交
158 159 160
			}

			if (offset % 4) {
161 162
				pr_info("tc filter pedit"
					" offset must be on 32 bit boundaries\n");
L
Linus Torvalds 已提交
163 164
				goto bad;
			}
165 166 167 168

			if (!offset_valid(skb, off + offset)) {
				pr_info("tc filter pedit offset %d out of bounds\n",
					offset);
L
Linus Torvalds 已提交
169 170 171
				goto bad;
			}

C
Changli Gao 已提交
172 173 174
			ptr = skb_header_pointer(skb, off + offset, 4, &_data);
			if (!ptr)
				goto bad;
L
Linus Torvalds 已提交
175 176
			/* just do it, baby */
			*ptr = ((*ptr & tkey->mask) ^ tkey->val);
C
Changli Gao 已提交
177 178
			if (ptr == &_data)
				skb_store_bits(skb, off + offset, ptr, 4);
L
Linus Torvalds 已提交
179
		}
180

L
Linus Torvalds 已提交
181
		goto done;
182 183
	} else
		WARN(1, "pedit BUG: index %d\n", p->tcf_index);
L
Linus Torvalds 已提交
184 185

bad:
186
	p->tcf_qstats.overlimits++;
L
Linus Torvalds 已提交
187
done:
188
	bstats_update(&p->tcf_bstats, skb);
189 190
	spin_unlock(&p->tcf_lock);
	return p->tcf_action;
L
Linus Torvalds 已提交
191 192
}

193 194
static int tcf_pedit_dump(struct sk_buff *skb, struct tc_action *a,
			  int bind, int ref)
L
Linus Torvalds 已提交
195
{
196
	unsigned char *b = skb_tail_pointer(skb);
197
	struct tcf_pedit *p = to_pedit(a);
L
Linus Torvalds 已提交
198 199
	struct tc_pedit *opt;
	struct tcf_t t;
200 201
	int s;

202
	s = sizeof(*opt) + p->tcfp_nkeys * sizeof(struct tc_pedit_key);
L
Linus Torvalds 已提交
203 204

	/* netlink spinlocks held above us - must use ATOMIC */
205
	opt = kzalloc(s, GFP_ATOMIC);
206
	if (unlikely(!opt))
L
Linus Torvalds 已提交
207 208
		return -ENOBUFS;

209 210 211 212 213 214 215 216
	memcpy(opt->keys, p->tcfp_keys,
	       p->tcfp_nkeys * sizeof(struct tc_pedit_key));
	opt->index = p->tcf_index;
	opt->nkeys = p->tcfp_nkeys;
	opt->flags = p->tcfp_flags;
	opt->action = p->tcf_action;
	opt->refcnt = p->tcf_refcnt - ref;
	opt->bindcnt = p->tcf_bindcnt - bind;
L
Linus Torvalds 已提交
217

218 219
	if (nla_put(skb, TCA_PEDIT_PARMS, s, opt))
		goto nla_put_failure;
220 221

	tcf_tm_dump(&t, &p->tcf_tm);
222
	if (nla_put_64bit(skb, TCA_PEDIT_TM, sizeof(t), &t, TCA_PEDIT_PAD))
223
		goto nla_put_failure;
224

225
	kfree(opt);
L
Linus Torvalds 已提交
226 227
	return skb->len;

228
nla_put_failure:
229
	nlmsg_trim(skb, b);
230
	kfree(opt);
L
Linus Torvalds 已提交
231 232 233
	return -1;
}

234 235
static int tcf_pedit_walker(struct net *net, struct sk_buff *skb,
			    struct netlink_callback *cb, int type,
236
			    const struct tc_action_ops *ops)
237 238 239
{
	struct tc_action_net *tn = net_generic(net, pedit_net_id);

240
	return tcf_generic_walker(tn, skb, cb, type, ops);
241 242
}

243
static int tcf_pedit_search(struct net *net, struct tc_action **a, u32 index)
244 245 246 247 248 249
{
	struct tc_action_net *tn = net_generic(net, pedit_net_id);

	return tcf_hash_search(tn, a, index);
}

250
static struct tc_action_ops act_pedit_ops = {
L
Linus Torvalds 已提交
251 252 253 254 255 256 257
	.kind		=	"pedit",
	.type		=	TCA_ACT_PEDIT,
	.owner		=	THIS_MODULE,
	.act		=	tcf_pedit,
	.dump		=	tcf_pedit_dump,
	.cleanup	=	tcf_pedit_cleanup,
	.init		=	tcf_pedit_init,
258 259
	.walk		=	tcf_pedit_walker,
	.lookup		=	tcf_pedit_search,
260
	.size		=	sizeof(struct tcf_pedit),
261 262 263 264 265 266 267 268 269 270 271 272 273 274 275 276 277 278 279 280 281
};

static __net_init int pedit_init_net(struct net *net)
{
	struct tc_action_net *tn = net_generic(net, pedit_net_id);

	return tc_action_net_init(tn, &act_pedit_ops, PEDIT_TAB_MASK);
}

static void __net_exit pedit_exit_net(struct net *net)
{
	struct tc_action_net *tn = net_generic(net, pedit_net_id);

	tc_action_net_exit(tn);
}

static struct pernet_operations pedit_net_ops = {
	.init = pedit_init_net,
	.exit = pedit_exit_net,
	.id   = &pedit_net_id,
	.size = sizeof(struct tc_action_net),
L
Linus Torvalds 已提交
282 283 284 285 286 287
};

MODULE_AUTHOR("Jamal Hadi Salim(2002-4)");
MODULE_DESCRIPTION("Generic Packet Editor actions");
MODULE_LICENSE("GPL");

288
static int __init pedit_init_module(void)
L
Linus Torvalds 已提交
289
{
290
	return tcf_register_action(&act_pedit_ops, &pedit_net_ops);
L
Linus Torvalds 已提交
291 292
}

293
static void __exit pedit_cleanup_module(void)
L
Linus Torvalds 已提交
294
{
295
	tcf_unregister_action(&act_pedit_ops, &pedit_net_ops);
L
Linus Torvalds 已提交
296 297 298 299 300
}

module_init(pedit_init_module);
module_exit(pedit_cleanup_module);