Commit | Line | Data |
---|---|---|
1da177e4 LT |
1 | /* |
2 | * Ioctl handler | |
3 | * Linux ethernet bridge | |
4 | * | |
5 | * Authors: | |
6 | * Lennert Buytenhek <buytenh@gnu.org> | |
7 | * | |
1da177e4 LT |
8 | * This program is free software; you can redistribute it and/or |
9 | * modify it under the terms of the GNU General Public License | |
10 | * as published by the Free Software Foundation; either version | |
11 | * 2 of the License, or (at your option) any later version. | |
12 | */ | |
13 | ||
4fc268d2 | 14 | #include <linux/capability.h> |
1da177e4 LT |
15 | #include <linux/kernel.h> |
16 | #include <linux/if_bridge.h> | |
17 | #include <linux/netdevice.h> | |
5a0e3ad6 | 18 | #include <linux/slab.h> |
1da177e4 | 19 | #include <linux/times.h> |
881d966b | 20 | #include <net/net_namespace.h> |
1da177e4 LT |
21 | #include <asm/uaccess.h> |
22 | #include "br_private.h" | |
23 | ||
4aa678ba | 24 | static int get_bridge_ifindices(struct net *net, int *indices, int num) |
1da177e4 LT |
25 | { |
26 | struct net_device *dev; | |
27 | int i = 0; | |
28 | ||
31ca0458 NA |
29 | rcu_read_lock(); |
30 | for_each_netdev_rcu(net, dev) { | |
7562f876 PE |
31 | if (i >= num) |
32 | break; | |
9d6f229f | 33 | if (dev->priv_flags & IFF_EBRIDGE) |
1da177e4 LT |
34 | indices[i++] = dev->ifindex; |
35 | } | |
31ca0458 | 36 | rcu_read_unlock(); |
1da177e4 LT |
37 | |
38 | return i; | |
39 | } | |
40 | ||
41 | /* called with RTNL */ | |
42 | static void get_port_ifindices(struct net_bridge *br, int *ifindices, int num) | |
43 | { | |
44 | struct net_bridge_port *p; | |
45 | ||
46 | list_for_each_entry(p, &br->port_list, list) { | |
47 | if (p->port_no < num) | |
48 | ifindices[p->port_no] = p->dev->ifindex; | |
49 | } | |
50 | } | |
51 | ||
52 | /* | |
53 | * Format up to a page worth of forwarding table entries | |
54 | * userbuf -- where to copy result | |
55 | * maxnum -- maximum number of entries desired | |
56 | * (limited to a page for sanity) | |
57 | * offset -- number of records to skip | |
58 | */ | |
9d6f229f | 59 | static int get_fdb_entries(struct net_bridge *br, void __user *userbuf, |
1da177e4 LT |
60 | unsigned long maxnum, unsigned long offset) |
61 | { | |
62 | int num; | |
63 | void *buf; | |
ba8379b2 | 64 | size_t size; |
1da177e4 | 65 | |
ba8379b2 CW |
66 | /* Clamp size to PAGE_SIZE, test maxnum to avoid overflow */ |
67 | if (maxnum > PAGE_SIZE/sizeof(struct __fdb_entry)) | |
1da177e4 | 68 | maxnum = PAGE_SIZE/sizeof(struct __fdb_entry); |
ba8379b2 CW |
69 | |
70 | size = maxnum * sizeof(struct __fdb_entry); | |
1da177e4 LT |
71 | |
72 | buf = kmalloc(size, GFP_USER); | |
73 | if (!buf) | |
74 | return -ENOMEM; | |
9d6f229f | 75 | |
1da177e4 LT |
76 | num = br_fdb_fillbuf(br, buf, maxnum, offset); |
77 | if (num > 0) { | |
78 | if (copy_to_user(userbuf, buf, num*sizeof(struct __fdb_entry))) | |
79 | num = -EFAULT; | |
80 | } | |
81 | kfree(buf); | |
82 | ||
83 | return num; | |
84 | } | |
85 | ||
31ef30c7 | 86 | /* called with RTNL */ |
1da177e4 LT |
87 | static int add_del_if(struct net_bridge *br, int ifindex, int isadd) |
88 | { | |
cb990503 | 89 | struct net *net = dev_net(br->dev); |
1da177e4 LT |
90 | struct net_device *dev; |
91 | int ret; | |
92 | ||
cb990503 | 93 | if (!ns_capable(net->user_ns, CAP_NET_ADMIN)) |
1da177e4 LT |
94 | return -EPERM; |
95 | ||
cb990503 | 96 | dev = __dev_get_by_index(net, ifindex); |
1da177e4 LT |
97 | if (dev == NULL) |
98 | return -EINVAL; | |
9d6f229f | 99 | |
1da177e4 LT |
100 | if (isadd) |
101 | ret = br_add_if(br, dev); | |
102 | else | |
103 | ret = br_del_if(br, dev); | |
104 | ||
1da177e4 LT |
105 | return ret; |
106 | } | |
107 | ||
108 | /* | |
109 | * Legacy ioctl's through SIOCDEVPRIVATE | |
110 | * This interface is deprecated because it was too difficult to | |
25985edc | 111 | * to do the translation for 32/64bit ioctl compatibility. |
1da177e4 LT |
112 | */ |
113 | static int old_dev_ioctl(struct net_device *dev, struct ifreq *rq, int cmd) | |
114 | { | |
115 | struct net_bridge *br = netdev_priv(dev); | |
116 | unsigned long args[4]; | |
9d6f229f | 117 | |
1da177e4 LT |
118 | if (copy_from_user(args, rq->ifr_data, sizeof(args))) |
119 | return -EFAULT; | |
120 | ||
121 | switch (args[0]) { | |
122 | case BRCTL_ADD_IF: | |
123 | case BRCTL_DEL_IF: | |
124 | return add_del_if(br, args[1], args[0] == BRCTL_ADD_IF); | |
125 | ||
126 | case BRCTL_GET_BRIDGE_INFO: | |
127 | { | |
128 | struct __bridge_info b; | |
129 | ||
130 | memset(&b, 0, sizeof(struct __bridge_info)); | |
131 | rcu_read_lock(); | |
132 | memcpy(&b.designated_root, &br->designated_root, 8); | |
133 | memcpy(&b.bridge_id, &br->bridge_id, 8); | |
134 | b.root_path_cost = br->root_path_cost; | |
135 | b.max_age = jiffies_to_clock_t(br->max_age); | |
136 | b.hello_time = jiffies_to_clock_t(br->hello_time); | |
137 | b.forward_delay = br->forward_delay; | |
138 | b.bridge_max_age = br->bridge_max_age; | |
139 | b.bridge_hello_time = br->bridge_hello_time; | |
140 | b.bridge_forward_delay = jiffies_to_clock_t(br->bridge_forward_delay); | |
141 | b.topology_change = br->topology_change; | |
142 | b.topology_change_detected = br->topology_change_detected; | |
143 | b.root_port = br->root_port; | |
9cde0708 SH |
144 | |
145 | b.stp_enabled = (br->stp_enabled != BR_NO_STP); | |
1da177e4 LT |
146 | b.ageing_time = jiffies_to_clock_t(br->ageing_time); |
147 | b.hello_timer_value = br_timer_value(&br->hello_timer); | |
148 | b.tcn_timer_value = br_timer_value(&br->tcn_timer); | |
149 | b.topology_change_timer_value = br_timer_value(&br->topology_change_timer); | |
150 | b.gc_timer_value = br_timer_value(&br->gc_timer); | |
9d6f229f | 151 | rcu_read_unlock(); |
1da177e4 LT |
152 | |
153 | if (copy_to_user((void __user *)args[1], &b, sizeof(b))) | |
154 | return -EFAULT; | |
155 | ||
156 | return 0; | |
157 | } | |
158 | ||
159 | case BRCTL_GET_PORT_LIST: | |
160 | { | |
161 | int num, *indices; | |
162 | ||
163 | num = args[2]; | |
164 | if (num < 0) | |
165 | return -EINVAL; | |
166 | if (num == 0) | |
167 | num = 256; | |
168 | if (num > BR_MAX_PORTS) | |
169 | num = BR_MAX_PORTS; | |
170 | ||
0da974f4 | 171 | indices = kcalloc(num, sizeof(int), GFP_KERNEL); |
1da177e4 LT |
172 | if (indices == NULL) |
173 | return -ENOMEM; | |
174 | ||
1da177e4 LT |
175 | get_port_ifindices(br, indices, num); |
176 | if (copy_to_user((void __user *)args[1], indices, num*sizeof(int))) | |
177 | num = -EFAULT; | |
178 | kfree(indices); | |
179 | return num; | |
180 | } | |
181 | ||
182 | case BRCTL_SET_BRIDGE_FORWARD_DELAY: | |
cb990503 | 183 | if (!ns_capable(dev_net(dev)->user_ns, CAP_NET_ADMIN)) |
1da177e4 LT |
184 | return -EPERM; |
185 | ||
14f98f25 | 186 | return br_set_forward_delay(br, args[1]); |
1da177e4 LT |
187 | |
188 | case BRCTL_SET_BRIDGE_HELLO_TIME: | |
cb990503 | 189 | if (!ns_capable(dev_net(dev)->user_ns, CAP_NET_ADMIN)) |
1da177e4 LT |
190 | return -EPERM; |
191 | ||
14f98f25 | 192 | return br_set_hello_time(br, args[1]); |
1da177e4 LT |
193 | |
194 | case BRCTL_SET_BRIDGE_MAX_AGE: | |
cb990503 | 195 | if (!ns_capable(dev_net(dev)->user_ns, CAP_NET_ADMIN)) |
1da177e4 LT |
196 | return -EPERM; |
197 | ||
14f98f25 | 198 | return br_set_max_age(br, args[1]); |
1da177e4 LT |
199 | |
200 | case BRCTL_SET_AGEING_TIME: | |
cb990503 | 201 | if (!ns_capable(dev_net(dev)->user_ns, CAP_NET_ADMIN)) |
1da177e4 LT |
202 | return -EPERM; |
203 | ||
c62987bb | 204 | return br_set_ageing_time(br, args[1]); |
1da177e4 LT |
205 | |
206 | case BRCTL_GET_PORT_INFO: | |
207 | { | |
208 | struct __port_info p; | |
209 | struct net_bridge_port *pt; | |
210 | ||
211 | rcu_read_lock(); | |
212 | if ((pt = br_get_port(br, args[2])) == NULL) { | |
213 | rcu_read_unlock(); | |
214 | return -EINVAL; | |
215 | } | |
216 | ||
217 | memset(&p, 0, sizeof(struct __port_info)); | |
218 | memcpy(&p.designated_root, &pt->designated_root, 8); | |
219 | memcpy(&p.designated_bridge, &pt->designated_bridge, 8); | |
220 | p.port_id = pt->port_id; | |
221 | p.designated_port = pt->designated_port; | |
222 | p.path_cost = pt->path_cost; | |
223 | p.designated_cost = pt->designated_cost; | |
224 | p.state = pt->state; | |
225 | p.top_change_ack = pt->topology_change_ack; | |
226 | p.config_pending = pt->config_pending; | |
227 | p.message_age_timer_value = br_timer_value(&pt->message_age_timer); | |
228 | p.forward_delay_timer_value = br_timer_value(&pt->forward_delay_timer); | |
229 | p.hold_timer_value = br_timer_value(&pt->hold_timer); | |
230 | ||
231 | rcu_read_unlock(); | |
232 | ||
233 | if (copy_to_user((void __user *)args[1], &p, sizeof(p))) | |
234 | return -EFAULT; | |
235 | ||
236 | return 0; | |
237 | } | |
238 | ||
239 | case BRCTL_SET_BRIDGE_STP_STATE: | |
cb990503 | 240 | if (!ns_capable(dev_net(dev)->user_ns, CAP_NET_ADMIN)) |
1da177e4 LT |
241 | return -EPERM; |
242 | ||
9cde0708 | 243 | br_stp_set_enabled(br, args[1]); |
1da177e4 LT |
244 | return 0; |
245 | ||
246 | case BRCTL_SET_BRIDGE_PRIORITY: | |
cb990503 | 247 | if (!ns_capable(dev_net(dev)->user_ns, CAP_NET_ADMIN)) |
1da177e4 LT |
248 | return -EPERM; |
249 | ||
1da177e4 | 250 | br_stp_set_bridge_priority(br, args[1]); |
1da177e4 LT |
251 | return 0; |
252 | ||
253 | case BRCTL_SET_PORT_PRIORITY: | |
254 | { | |
255 | struct net_bridge_port *p; | |
14f98f25 | 256 | int ret; |
1da177e4 | 257 | |
cb990503 | 258 | if (!ns_capable(dev_net(dev)->user_ns, CAP_NET_ADMIN)) |
1da177e4 LT |
259 | return -EPERM; |
260 | ||
1da177e4 | 261 | spin_lock_bh(&br->lock); |
9d6f229f | 262 | if ((p = br_get_port(br, args[1])) == NULL) |
1da177e4 LT |
263 | ret = -EINVAL; |
264 | else | |
14f98f25 | 265 | ret = br_stp_set_port_priority(p, args[2]); |
1da177e4 LT |
266 | spin_unlock_bh(&br->lock); |
267 | return ret; | |
268 | } | |
269 | ||
270 | case BRCTL_SET_PATH_COST: | |
271 | { | |
272 | struct net_bridge_port *p; | |
14f98f25 | 273 | int ret; |
1da177e4 | 274 | |
cb990503 | 275 | if (!ns_capable(dev_net(dev)->user_ns, CAP_NET_ADMIN)) |
1da177e4 LT |
276 | return -EPERM; |
277 | ||
14f98f25 | 278 | spin_lock_bh(&br->lock); |
1da177e4 LT |
279 | if ((p = br_get_port(br, args[1])) == NULL) |
280 | ret = -EINVAL; | |
281 | else | |
14f98f25 | 282 | ret = br_stp_set_path_cost(p, args[2]); |
283 | spin_unlock_bh(&br->lock); | |
6548cda2 | 284 | |
1da177e4 LT |
285 | return ret; |
286 | } | |
287 | ||
288 | case BRCTL_GET_FDB_ENTRIES: | |
9d6f229f | 289 | return get_fdb_entries(br, (void __user *)args[1], |
1da177e4 LT |
290 | args[2], args[3]); |
291 | } | |
292 | ||
293 | return -EOPNOTSUPP; | |
294 | } | |
295 | ||
4aa678ba | 296 | static int old_deviceless(struct net *net, void __user *uarg) |
1da177e4 LT |
297 | { |
298 | unsigned long args[3]; | |
299 | ||
300 | if (copy_from_user(args, uarg, sizeof(args))) | |
301 | return -EFAULT; | |
302 | ||
303 | switch (args[0]) { | |
304 | case BRCTL_GET_VERSION: | |
305 | return BRCTL_VERSION; | |
306 | ||
307 | case BRCTL_GET_BRIDGES: | |
308 | { | |
309 | int *indices; | |
310 | int ret = 0; | |
311 | ||
312 | if (args[2] >= 2048) | |
313 | return -ENOMEM; | |
0da974f4 | 314 | indices = kcalloc(args[2], sizeof(int), GFP_KERNEL); |
1da177e4 LT |
315 | if (indices == NULL) |
316 | return -ENOMEM; | |
317 | ||
4aa678ba | 318 | args[2] = get_bridge_ifindices(net, indices, args[2]); |
1da177e4 LT |
319 | |
320 | ret = copy_to_user((void __user *)args[1], indices, args[2]*sizeof(int)) | |
321 | ? -EFAULT : args[2]; | |
322 | ||
323 | kfree(indices); | |
324 | return ret; | |
325 | } | |
326 | ||
327 | case BRCTL_ADD_BRIDGE: | |
328 | case BRCTL_DEL_BRIDGE: | |
329 | { | |
330 | char buf[IFNAMSIZ]; | |
331 | ||
cb990503 | 332 | if (!ns_capable(net->user_ns, CAP_NET_ADMIN)) |
1da177e4 LT |
333 | return -EPERM; |
334 | ||
335 | if (copy_from_user(buf, (void __user *)args[1], IFNAMSIZ)) | |
336 | return -EFAULT; | |
337 | ||
338 | buf[IFNAMSIZ-1] = 0; | |
339 | ||
340 | if (args[0] == BRCTL_ADD_BRIDGE) | |
4aa678ba | 341 | return br_add_bridge(net, buf); |
1da177e4 | 342 | |
4aa678ba | 343 | return br_del_bridge(net, buf); |
1da177e4 LT |
344 | } |
345 | } | |
346 | ||
347 | return -EOPNOTSUPP; | |
348 | } | |
349 | ||
881d966b | 350 | int br_ioctl_deviceless_stub(struct net *net, unsigned int cmd, void __user *uarg) |
1da177e4 LT |
351 | { |
352 | switch (cmd) { | |
353 | case SIOCGIFBR: | |
354 | case SIOCSIFBR: | |
4aa678ba | 355 | return old_deviceless(net, uarg); |
9d6f229f | 356 | |
1da177e4 LT |
357 | case SIOCBRADDBR: |
358 | case SIOCBRDELBR: | |
359 | { | |
360 | char buf[IFNAMSIZ]; | |
361 | ||
cb990503 | 362 | if (!ns_capable(net->user_ns, CAP_NET_ADMIN)) |
1da177e4 LT |
363 | return -EPERM; |
364 | ||
365 | if (copy_from_user(buf, uarg, IFNAMSIZ)) | |
366 | return -EFAULT; | |
367 | ||
368 | buf[IFNAMSIZ-1] = 0; | |
369 | if (cmd == SIOCBRADDBR) | |
4aa678ba | 370 | return br_add_bridge(net, buf); |
1da177e4 | 371 | |
4aa678ba | 372 | return br_del_bridge(net, buf); |
1da177e4 LT |
373 | } |
374 | } | |
375 | return -EOPNOTSUPP; | |
376 | } | |
377 | ||
378 | int br_dev_ioctl(struct net_device *dev, struct ifreq *rq, int cmd) | |
379 | { | |
380 | struct net_bridge *br = netdev_priv(dev); | |
381 | ||
31a5b837 | 382 | switch (cmd) { |
1da177e4 LT |
383 | case SIOCDEVPRIVATE: |
384 | return old_dev_ioctl(dev, rq, cmd); | |
385 | ||
386 | case SIOCBRADDIF: | |
387 | case SIOCBRDELIF: | |
388 | return add_del_if(br, rq->ifr_ifindex, cmd == SIOCBRADDIF); | |
389 | ||
390 | } | |
391 | ||
28a16c97 | 392 | br_debug(br, "Bridge does not support ioctl 0x%x\n", cmd); |
1da177e4 LT |
393 | return -EOPNOTSUPP; |
394 | } |