ipv6: Add new offload registration infrastructure.
[deliverable/linux.git] / net / ipv6 / tcp_ipv6.c
CommitLineData
1da177e4
LT
1/*
2 * TCP over IPv6
1ab1457c 3 * Linux INET6 implementation
1da177e4
LT
4 *
5 * Authors:
1ab1457c 6 * Pedro Roque <roque@di.fc.ul.pt>
1da177e4 7 *
1ab1457c 8 * Based on:
1da177e4
LT
9 * linux/net/ipv4/tcp.c
10 * linux/net/ipv4/tcp_input.c
11 * linux/net/ipv4/tcp_output.c
12 *
13 * Fixes:
14 * Hideaki YOSHIFUJI : sin6_scope_id support
15 * YOSHIFUJI Hideaki @USAGI and: Support IPV6_V6ONLY socket option, which
16 * Alexey Kuznetsov allow both IPv4 and IPv6 sockets to bind
17 * a single port at the same time.
18 * YOSHIFUJI Hideaki @USAGI: convert /proc/net/tcp6 to seq_file.
19 *
20 * This program is free software; you can redistribute it and/or
21 * modify it under the terms of the GNU General Public License
22 * as published by the Free Software Foundation; either version
23 * 2 of the License, or (at your option) any later version.
24 */
25
eb4dea58 26#include <linux/bottom_half.h>
1da177e4 27#include <linux/module.h>
1da177e4
LT
28#include <linux/errno.h>
29#include <linux/types.h>
30#include <linux/socket.h>
31#include <linux/sockios.h>
32#include <linux/net.h>
33#include <linux/jiffies.h>
34#include <linux/in.h>
35#include <linux/in6.h>
36#include <linux/netdevice.h>
37#include <linux/init.h>
38#include <linux/jhash.h>
39#include <linux/ipsec.h>
40#include <linux/times.h>
5a0e3ad6 41#include <linux/slab.h>
1da177e4
LT
42
43#include <linux/ipv6.h>
44#include <linux/icmpv6.h>
45#include <linux/random.h>
46
47#include <net/tcp.h>
48#include <net/ndisc.h>
5324a040 49#include <net/inet6_hashtables.h>
8129765a 50#include <net/inet6_connection_sock.h>
1da177e4
LT
51#include <net/ipv6.h>
52#include <net/transp_v6.h>
53#include <net/addrconf.h>
54#include <net/ip6_route.h>
55#include <net/ip6_checksum.h>
56#include <net/inet_ecn.h>
57#include <net/protocol.h>
58#include <net/xfrm.h>
1da177e4
LT
59#include <net/snmp.h>
60#include <net/dsfield.h>
6d6ee43e 61#include <net/timewait_sock.h>
18134bed 62#include <net/netdma.h>
3d58b5fa 63#include <net/inet_common.h>
6e5714ea 64#include <net/secure_seq.h>
d1a4c0b3 65#include <net/tcp_memcontrol.h>
1da177e4
LT
66
67#include <asm/uaccess.h>
68
69#include <linux/proc_fs.h>
70#include <linux/seq_file.h>
71
cfb6eeb4
YH
72#include <linux/crypto.h>
73#include <linux/scatterlist.h>
74
cfb6eeb4 75static void tcp_v6_send_reset(struct sock *sk, struct sk_buff *skb);
6edafaaf
GJ
76static void tcp_v6_reqsk_send_ack(struct sock *sk, struct sk_buff *skb,
77 struct request_sock *req);
1da177e4
LT
78
79static int tcp_v6_do_rcv(struct sock *sk, struct sk_buff *skb);
8ad50d96 80static void __tcp_v6_send_check(struct sk_buff *skb,
b71d1d42
ED
81 const struct in6_addr *saddr,
82 const struct in6_addr *daddr);
1da177e4 83
3b401a81
SH
84static const struct inet_connection_sock_af_ops ipv6_mapped;
85static const struct inet_connection_sock_af_ops ipv6_specific;
a928630a 86#ifdef CONFIG_TCP_MD5SIG
b2e4b3de
SH
87static const struct tcp_sock_af_ops tcp_sock_ipv6_specific;
88static const struct tcp_sock_af_ops tcp_sock_ipv6_mapped_specific;
9501f972
YH
89#else
90static struct tcp_md5sig_key *tcp_v6_md5_do_lookup(struct sock *sk,
b71d1d42 91 const struct in6_addr *addr)
9501f972
YH
92{
93 return NULL;
94}
a928630a 95#endif
1da177e4 96
fae6ef87
NC
97static void inet6_sk_rx_dst_set(struct sock *sk, const struct sk_buff *skb)
98{
99 struct dst_entry *dst = skb_dst(skb);
100 const struct rt6_info *rt = (const struct rt6_info *)dst;
101
102 dst_hold(dst);
103 sk->sk_rx_dst = dst;
104 inet_sk(sk)->rx_dst_ifindex = skb->skb_iif;
105 if (rt->rt6i_node)
106 inet6_sk(sk)->rx_dst_cookie = rt->rt6i_node->fn_sernum;
107}
108
1da177e4
LT
109static void tcp_v6_hash(struct sock *sk)
110{
111 if (sk->sk_state != TCP_CLOSE) {
8292a17a 112 if (inet_csk(sk)->icsk_af_ops == &ipv6_mapped) {
1da177e4
LT
113 tcp_prot.hash(sk);
114 return;
115 }
116 local_bh_disable();
9327f705 117 __inet6_hash(sk, NULL);
1da177e4
LT
118 local_bh_enable();
119 }
120}
121
684f2176 122static __inline__ __sum16 tcp_v6_check(int len,
b71d1d42
ED
123 const struct in6_addr *saddr,
124 const struct in6_addr *daddr,
868c86bc 125 __wsum base)
1da177e4
LT
126{
127 return csum_ipv6_magic(saddr, daddr, len, IPPROTO_TCP, base);
128}
129
cf533ea5 130static __u32 tcp_v6_init_sequence(const struct sk_buff *skb)
1da177e4 131{
0660e03f
ACM
132 return secure_tcpv6_sequence_number(ipv6_hdr(skb)->daddr.s6_addr32,
133 ipv6_hdr(skb)->saddr.s6_addr32,
aa8223c7
ACM
134 tcp_hdr(skb)->dest,
135 tcp_hdr(skb)->source);
1da177e4
LT
136}
137
1ab1457c 138static int tcp_v6_connect(struct sock *sk, struct sockaddr *uaddr,
1da177e4
LT
139 int addr_len)
140{
141 struct sockaddr_in6 *usin = (struct sockaddr_in6 *) uaddr;
1ab1457c 142 struct inet_sock *inet = inet_sk(sk);
d83d8461 143 struct inet_connection_sock *icsk = inet_csk(sk);
1da177e4
LT
144 struct ipv6_pinfo *np = inet6_sk(sk);
145 struct tcp_sock *tp = tcp_sk(sk);
20c59de2 146 struct in6_addr *saddr = NULL, *final_p, final;
493f377d 147 struct rt6_info *rt;
4c9483b2 148 struct flowi6 fl6;
1da177e4
LT
149 struct dst_entry *dst;
150 int addr_type;
151 int err;
152
1ab1457c 153 if (addr_len < SIN6_LEN_RFC2133)
1da177e4
LT
154 return -EINVAL;
155
1ab1457c 156 if (usin->sin6_family != AF_INET6)
a02cec21 157 return -EAFNOSUPPORT;
1da177e4 158
4c9483b2 159 memset(&fl6, 0, sizeof(fl6));
1da177e4
LT
160
161 if (np->sndflow) {
4c9483b2
DM
162 fl6.flowlabel = usin->sin6_flowinfo&IPV6_FLOWINFO_MASK;
163 IP6_ECN_flow_init(fl6.flowlabel);
164 if (fl6.flowlabel&IPV6_FLOWLABEL_MASK) {
1da177e4 165 struct ip6_flowlabel *flowlabel;
4c9483b2 166 flowlabel = fl6_sock_lookup(sk, fl6.flowlabel);
1da177e4
LT
167 if (flowlabel == NULL)
168 return -EINVAL;
4e3fd7a0 169 usin->sin6_addr = flowlabel->dst;
1da177e4
LT
170 fl6_sock_release(flowlabel);
171 }
172 }
173
174 /*
1ab1457c
YH
175 * connect() to INADDR_ANY means loopback (BSD'ism).
176 */
177
178 if(ipv6_addr_any(&usin->sin6_addr))
179 usin->sin6_addr.s6_addr[15] = 0x1;
1da177e4
LT
180
181 addr_type = ipv6_addr_type(&usin->sin6_addr);
182
183 if(addr_type & IPV6_ADDR_MULTICAST)
184 return -ENETUNREACH;
185
186 if (addr_type&IPV6_ADDR_LINKLOCAL) {
187 if (addr_len >= sizeof(struct sockaddr_in6) &&
188 usin->sin6_scope_id) {
189 /* If interface is set while binding, indices
190 * must coincide.
191 */
192 if (sk->sk_bound_dev_if &&
193 sk->sk_bound_dev_if != usin->sin6_scope_id)
194 return -EINVAL;
195
196 sk->sk_bound_dev_if = usin->sin6_scope_id;
197 }
198
199 /* Connect to link-local address requires an interface */
200 if (!sk->sk_bound_dev_if)
201 return -EINVAL;
202 }
203
204 if (tp->rx_opt.ts_recent_stamp &&
205 !ipv6_addr_equal(&np->daddr, &usin->sin6_addr)) {
206 tp->rx_opt.ts_recent = 0;
207 tp->rx_opt.ts_recent_stamp = 0;
208 tp->write_seq = 0;
209 }
210
4e3fd7a0 211 np->daddr = usin->sin6_addr;
4c9483b2 212 np->flow_label = fl6.flowlabel;
1da177e4
LT
213
214 /*
215 * TCP over IPv4
216 */
217
218 if (addr_type == IPV6_ADDR_MAPPED) {
d83d8461 219 u32 exthdrlen = icsk->icsk_ext_hdr_len;
1da177e4
LT
220 struct sockaddr_in sin;
221
222 SOCK_DEBUG(sk, "connect: ipv4 mapped\n");
223
224 if (__ipv6_only_sock(sk))
225 return -ENETUNREACH;
226
227 sin.sin_family = AF_INET;
228 sin.sin_port = usin->sin6_port;
229 sin.sin_addr.s_addr = usin->sin6_addr.s6_addr32[3];
230
d83d8461 231 icsk->icsk_af_ops = &ipv6_mapped;
1da177e4 232 sk->sk_backlog_rcv = tcp_v4_do_rcv;
cfb6eeb4
YH
233#ifdef CONFIG_TCP_MD5SIG
234 tp->af_specific = &tcp_sock_ipv6_mapped_specific;
235#endif
1da177e4
LT
236
237 err = tcp_v4_connect(sk, (struct sockaddr *)&sin, sizeof(sin));
238
239 if (err) {
d83d8461
ACM
240 icsk->icsk_ext_hdr_len = exthdrlen;
241 icsk->icsk_af_ops = &ipv6_specific;
1da177e4 242 sk->sk_backlog_rcv = tcp_v6_do_rcv;
cfb6eeb4
YH
243#ifdef CONFIG_TCP_MD5SIG
244 tp->af_specific = &tcp_sock_ipv6_specific;
245#endif
1da177e4
LT
246 goto failure;
247 } else {
c720c7e8
ED
248 ipv6_addr_set_v4mapped(inet->inet_saddr, &np->saddr);
249 ipv6_addr_set_v4mapped(inet->inet_rcv_saddr,
250 &np->rcv_saddr);
1da177e4
LT
251 }
252
253 return err;
254 }
255
256 if (!ipv6_addr_any(&np->rcv_saddr))
257 saddr = &np->rcv_saddr;
258
4c9483b2 259 fl6.flowi6_proto = IPPROTO_TCP;
4e3fd7a0
AD
260 fl6.daddr = np->daddr;
261 fl6.saddr = saddr ? *saddr : np->saddr;
4c9483b2
DM
262 fl6.flowi6_oif = sk->sk_bound_dev_if;
263 fl6.flowi6_mark = sk->sk_mark;
1958b856
DM
264 fl6.fl6_dport = usin->sin6_port;
265 fl6.fl6_sport = inet->inet_sport;
1da177e4 266
4c9483b2 267 final_p = fl6_update_dst(&fl6, np->opt, &final);
1da177e4 268
4c9483b2 269 security_sk_classify_flow(sk, flowi6_to_flowi(&fl6));
beb8d13b 270
4c9483b2 271 dst = ip6_dst_lookup_flow(sk, &fl6, final_p, true);
68d0c6d3
DM
272 if (IS_ERR(dst)) {
273 err = PTR_ERR(dst);
1da177e4 274 goto failure;
14e50e57 275 }
1da177e4
LT
276
277 if (saddr == NULL) {
4c9483b2 278 saddr = &fl6.saddr;
4e3fd7a0 279 np->rcv_saddr = *saddr;
1da177e4
LT
280 }
281
282 /* set the source address */
4e3fd7a0 283 np->saddr = *saddr;
c720c7e8 284 inet->inet_rcv_saddr = LOOPBACK4_IPV6;
1da177e4 285
f83ef8c0 286 sk->sk_gso_type = SKB_GSO_TCPV6;
8e1ef0a9 287 __ip6_dst_store(sk, dst, NULL, NULL);
1da177e4 288
493f377d
DM
289 rt = (struct rt6_info *) dst;
290 if (tcp_death_row.sysctl_tw_recycle &&
291 !tp->rx_opt.ts_recent_stamp &&
81166dd6
DM
292 ipv6_addr_equal(&rt->rt6i_dst.addr, &np->daddr))
293 tcp_fetch_timewait_stamp(sk, dst);
493f377d 294
d83d8461 295 icsk->icsk_ext_hdr_len = 0;
1da177e4 296 if (np->opt)
d83d8461
ACM
297 icsk->icsk_ext_hdr_len = (np->opt->opt_flen +
298 np->opt->opt_nflen);
1da177e4
LT
299
300 tp->rx_opt.mss_clamp = IPV6_MIN_MTU - sizeof(struct tcphdr) - sizeof(struct ipv6hdr);
301
c720c7e8 302 inet->inet_dport = usin->sin6_port;
1da177e4
LT
303
304 tcp_set_state(sk, TCP_SYN_SENT);
d8313f5c 305 err = inet6_hash_connect(&tcp_death_row, sk);
1da177e4
LT
306 if (err)
307 goto late_failure;
308
309 if (!tp->write_seq)
310 tp->write_seq = secure_tcpv6_sequence_number(np->saddr.s6_addr32,
311 np->daddr.s6_addr32,
c720c7e8
ED
312 inet->inet_sport,
313 inet->inet_dport);
1da177e4
LT
314
315 err = tcp_connect(sk);
316 if (err)
317 goto late_failure;
318
319 return 0;
320
321late_failure:
322 tcp_set_state(sk, TCP_CLOSE);
323 __sk_dst_reset(sk);
324failure:
c720c7e8 325 inet->inet_dport = 0;
1da177e4
LT
326 sk->sk_route_caps = 0;
327 return err;
328}
329
563d34d0
ED
330static void tcp_v6_mtu_reduced(struct sock *sk)
331{
332 struct dst_entry *dst;
333
334 if ((1 << sk->sk_state) & (TCPF_LISTEN | TCPF_CLOSE))
335 return;
336
337 dst = inet6_csk_update_pmtu(sk, tcp_sk(sk)->mtu_info);
338 if (!dst)
339 return;
340
341 if (inet_csk(sk)->icsk_pmtu_cookie > dst_mtu(dst)) {
342 tcp_sync_mss(sk, dst_mtu(dst));
343 tcp_simple_retransmit(sk);
344 }
345}
346
1da177e4 347static void tcp_v6_err(struct sk_buff *skb, struct inet6_skb_parm *opt,
d5fdd6ba 348 u8 type, u8 code, int offset, __be32 info)
1da177e4 349{
b71d1d42 350 const struct ipv6hdr *hdr = (const struct ipv6hdr*)skb->data;
505cbfc5 351 const struct tcphdr *th = (struct tcphdr *)(skb->data+offset);
1da177e4
LT
352 struct ipv6_pinfo *np;
353 struct sock *sk;
354 int err;
1ab1457c 355 struct tcp_sock *tp;
1da177e4 356 __u32 seq;
ca12a1a4 357 struct net *net = dev_net(skb->dev);
1da177e4 358
ca12a1a4 359 sk = inet6_lookup(net, &tcp_hashinfo, &hdr->daddr,
d86e0dac 360 th->dest, &hdr->saddr, th->source, skb->dev->ifindex);
1da177e4
LT
361
362 if (sk == NULL) {
e41b5368
DL
363 ICMP6_INC_STATS_BH(net, __in6_dev_get(skb->dev),
364 ICMP6_MIB_INERRORS);
1da177e4
LT
365 return;
366 }
367
368 if (sk->sk_state == TCP_TIME_WAIT) {
9469c7b4 369 inet_twsk_put(inet_twsk(sk));
1da177e4
LT
370 return;
371 }
372
373 bh_lock_sock(sk);
563d34d0 374 if (sock_owned_by_user(sk) && type != ICMPV6_PKT_TOOBIG)
de0744af 375 NET_INC_STATS_BH(net, LINUX_MIB_LOCKDROPPEDICMPS);
1da177e4
LT
376
377 if (sk->sk_state == TCP_CLOSE)
378 goto out;
379
e802af9c
SH
380 if (ipv6_hdr(skb)->hop_limit < inet6_sk(sk)->min_hopcount) {
381 NET_INC_STATS_BH(net, LINUX_MIB_TCPMINTTLDROP);
382 goto out;
383 }
384
1da177e4 385 tp = tcp_sk(sk);
1ab1457c 386 seq = ntohl(th->seq);
1da177e4
LT
387 if (sk->sk_state != TCP_LISTEN &&
388 !between(seq, tp->snd_una, tp->snd_nxt)) {
de0744af 389 NET_INC_STATS_BH(net, LINUX_MIB_OUTOFWINDOWICMPS);
1da177e4
LT
390 goto out;
391 }
392
393 np = inet6_sk(sk);
394
ec18d9a2
DM
395 if (type == NDISC_REDIRECT) {
396 struct dst_entry *dst = __sk_dst_check(sk, np->dst_cookie);
397
1ed5c48f 398 if (dst)
6700c270 399 dst->ops->redirect(dst, sk, skb);
ec18d9a2
DM
400 }
401
1da177e4 402 if (type == ICMPV6_PKT_TOOBIG) {
563d34d0
ED
403 tp->mtu_info = ntohl(info);
404 if (!sock_owned_by_user(sk))
405 tcp_v6_mtu_reduced(sk);
d013ef2a
JA
406 else if (!test_and_set_bit(TCP_MTU_REDUCED_DEFERRED,
407 &tp->tsq_flags))
408 sock_hold(sk);
1da177e4
LT
409 goto out;
410 }
411
412 icmpv6_err_convert(type, code, &err);
413
60236fdd 414 /* Might be for an request_sock */
1da177e4 415 switch (sk->sk_state) {
60236fdd 416 struct request_sock *req, **prev;
1da177e4
LT
417 case TCP_LISTEN:
418 if (sock_owned_by_user(sk))
419 goto out;
420
8129765a
ACM
421 req = inet6_csk_search_req(sk, &prev, th->dest, &hdr->daddr,
422 &hdr->saddr, inet6_iif(skb));
1da177e4
LT
423 if (!req)
424 goto out;
425
426 /* ICMPs are not backlogged, hence we cannot get
427 * an established socket here.
428 */
547b792c 429 WARN_ON(req->sk != NULL);
1da177e4 430
2e6599cb 431 if (seq != tcp_rsk(req)->snt_isn) {
de0744af 432 NET_INC_STATS_BH(net, LINUX_MIB_OUTOFWINDOWICMPS);
1da177e4
LT
433 goto out;
434 }
435
463c84b9 436 inet_csk_reqsk_queue_drop(sk, req, prev);
1da177e4
LT
437 goto out;
438
439 case TCP_SYN_SENT:
440 case TCP_SYN_RECV: /* Cannot happen.
1ab1457c 441 It can, it SYNs are crossed. --ANK */
1da177e4 442 if (!sock_owned_by_user(sk)) {
1da177e4
LT
443 sk->sk_err = err;
444 sk->sk_error_report(sk); /* Wake people up to see the error (see connect in sock.c) */
445
446 tcp_done(sk);
447 } else
448 sk->sk_err_soft = err;
449 goto out;
450 }
451
452 if (!sock_owned_by_user(sk) && np->recverr) {
453 sk->sk_err = err;
454 sk->sk_error_report(sk);
455 } else
456 sk->sk_err_soft = err;
457
458out:
459 bh_unlock_sock(sk);
460 sock_put(sk);
461}
462
463
9f10d3f6
NC
464static int tcp_v6_send_synack(struct sock *sk, struct dst_entry *dst,
465 struct flowi6 *fl6,
3840a06e 466 struct request_sock *req,
fff32699
ED
467 struct request_values *rvp,
468 u16 queue_mapping)
1da177e4 469{
ca304b61 470 struct inet6_request_sock *treq = inet6_rsk(req);
1da177e4
LT
471 struct ipv6_pinfo *np = inet6_sk(sk);
472 struct sk_buff * skb;
9494218f 473 int err = -ENOMEM;
1da177e4 474
9f10d3f6
NC
475 /* First, grab a route. */
476 if (!dst && (dst = inet6_csk_route_req(sk, fl6, req)) == NULL)
fd80eb94 477 goto done;
9494218f 478
8336886f 479 skb = tcp_make_synack(sk, dst, req, rvp, NULL);
9494218f 480
1da177e4 481 if (skb) {
8ad50d96 482 __tcp_v6_send_check(skb, &treq->loc_addr, &treq->rmt_addr);
1da177e4 483
9f10d3f6 484 fl6->daddr = treq->rmt_addr;
fff32699 485 skb_set_queue_mapping(skb, queue_mapping);
43264e0b 486 err = ip6_xmit(sk, skb, fl6, np->opt, np->tclass);
b9df3cb8 487 err = net_xmit_eval(err);
1da177e4
LT
488 }
489
490done:
1da177e4
LT
491 return err;
492}
493
72659ecc
OP
494static int tcp_v6_rtx_synack(struct sock *sk, struct request_sock *req,
495 struct request_values *rvp)
496{
9f10d3f6 497 struct flowi6 fl6;
e6c022a4 498 int res;
9f10d3f6 499
e6c022a4
ED
500 res = tcp_v6_send_synack(sk, NULL, &fl6, req, rvp, 0);
501 if (!res)
502 TCP_INC_STATS_BH(sock_net(sk), TCP_MIB_RETRANSSEGS);
503 return res;
72659ecc
OP
504}
505
60236fdd 506static void tcp_v6_reqsk_destructor(struct request_sock *req)
1da177e4 507{
800d55f1 508 kfree_skb(inet6_rsk(req)->pktopts);
1da177e4
LT
509}
510
cfb6eeb4
YH
511#ifdef CONFIG_TCP_MD5SIG
512static struct tcp_md5sig_key *tcp_v6_md5_do_lookup(struct sock *sk,
b71d1d42 513 const struct in6_addr *addr)
cfb6eeb4 514{
a915da9b 515 return tcp_md5_do_lookup(sk, (union tcp_md5_addr *)addr, AF_INET6);
cfb6eeb4
YH
516}
517
518static struct tcp_md5sig_key *tcp_v6_md5_lookup(struct sock *sk,
519 struct sock *addr_sk)
520{
521 return tcp_v6_md5_do_lookup(sk, &inet6_sk(addr_sk)->daddr);
522}
523
524static struct tcp_md5sig_key *tcp_v6_reqsk_md5_lookup(struct sock *sk,
525 struct request_sock *req)
526{
527 return tcp_v6_md5_do_lookup(sk, &inet6_rsk(req)->rmt_addr);
528}
529
cfb6eeb4
YH
530static int tcp_v6_parse_md5_keys (struct sock *sk, char __user *optval,
531 int optlen)
532{
533 struct tcp_md5sig cmd;
534 struct sockaddr_in6 *sin6 = (struct sockaddr_in6 *)&cmd.tcpm_addr;
cfb6eeb4
YH
535
536 if (optlen < sizeof(cmd))
537 return -EINVAL;
538
539 if (copy_from_user(&cmd, optval, sizeof(cmd)))
540 return -EFAULT;
541
542 if (sin6->sin6_family != AF_INET6)
543 return -EINVAL;
544
545 if (!cmd.tcpm_keylen) {
e773e4fa 546 if (ipv6_addr_v4mapped(&sin6->sin6_addr))
a915da9b
ED
547 return tcp_md5_do_del(sk, (union tcp_md5_addr *)&sin6->sin6_addr.s6_addr32[3],
548 AF_INET);
549 return tcp_md5_do_del(sk, (union tcp_md5_addr *)&sin6->sin6_addr,
550 AF_INET6);
cfb6eeb4
YH
551 }
552
553 if (cmd.tcpm_keylen > TCP_MD5SIG_MAXKEYLEN)
554 return -EINVAL;
555
a915da9b
ED
556 if (ipv6_addr_v4mapped(&sin6->sin6_addr))
557 return tcp_md5_do_add(sk, (union tcp_md5_addr *)&sin6->sin6_addr.s6_addr32[3],
558 AF_INET, cmd.tcpm_key, cmd.tcpm_keylen, GFP_KERNEL);
cfb6eeb4 559
a915da9b
ED
560 return tcp_md5_do_add(sk, (union tcp_md5_addr *)&sin6->sin6_addr,
561 AF_INET6, cmd.tcpm_key, cmd.tcpm_keylen, GFP_KERNEL);
cfb6eeb4
YH
562}
563
49a72dfb 564static int tcp_v6_md5_hash_pseudoheader(struct tcp_md5sig_pool *hp,
b71d1d42
ED
565 const struct in6_addr *daddr,
566 const struct in6_addr *saddr, int nbytes)
cfb6eeb4 567{
cfb6eeb4 568 struct tcp6_pseudohdr *bp;
49a72dfb 569 struct scatterlist sg;
8d26d76d 570
cfb6eeb4 571 bp = &hp->md5_blk.ip6;
cfb6eeb4 572 /* 1. TCP pseudo-header (RFC2460) */
4e3fd7a0
AD
573 bp->saddr = *saddr;
574 bp->daddr = *daddr;
49a72dfb 575 bp->protocol = cpu_to_be32(IPPROTO_TCP);
00b1304c 576 bp->len = cpu_to_be32(nbytes);
cfb6eeb4 577
49a72dfb
AL
578 sg_init_one(&sg, bp, sizeof(*bp));
579 return crypto_hash_update(&hp->md5_desc, &sg, sizeof(*bp));
580}
c7da57a1 581
49a72dfb 582static int tcp_v6_md5_hash_hdr(char *md5_hash, struct tcp_md5sig_key *key,
b71d1d42 583 const struct in6_addr *daddr, struct in6_addr *saddr,
318cf7aa 584 const struct tcphdr *th)
49a72dfb
AL
585{
586 struct tcp_md5sig_pool *hp;
587 struct hash_desc *desc;
588
589 hp = tcp_get_md5sig_pool();
590 if (!hp)
591 goto clear_hash_noput;
592 desc = &hp->md5_desc;
593
594 if (crypto_hash_init(desc))
595 goto clear_hash;
596 if (tcp_v6_md5_hash_pseudoheader(hp, daddr, saddr, th->doff << 2))
597 goto clear_hash;
598 if (tcp_md5_hash_header(hp, th))
599 goto clear_hash;
600 if (tcp_md5_hash_key(hp, key))
601 goto clear_hash;
602 if (crypto_hash_final(desc, md5_hash))
cfb6eeb4 603 goto clear_hash;
cfb6eeb4 604
cfb6eeb4 605 tcp_put_md5sig_pool();
cfb6eeb4 606 return 0;
49a72dfb 607
cfb6eeb4
YH
608clear_hash:
609 tcp_put_md5sig_pool();
610clear_hash_noput:
611 memset(md5_hash, 0, 16);
49a72dfb 612 return 1;
cfb6eeb4
YH
613}
614
49a72dfb 615static int tcp_v6_md5_hash_skb(char *md5_hash, struct tcp_md5sig_key *key,
318cf7aa
ED
616 const struct sock *sk,
617 const struct request_sock *req,
618 const struct sk_buff *skb)
cfb6eeb4 619{
b71d1d42 620 const struct in6_addr *saddr, *daddr;
49a72dfb
AL
621 struct tcp_md5sig_pool *hp;
622 struct hash_desc *desc;
318cf7aa 623 const struct tcphdr *th = tcp_hdr(skb);
cfb6eeb4
YH
624
625 if (sk) {
626 saddr = &inet6_sk(sk)->saddr;
627 daddr = &inet6_sk(sk)->daddr;
49a72dfb 628 } else if (req) {
cfb6eeb4
YH
629 saddr = &inet6_rsk(req)->loc_addr;
630 daddr = &inet6_rsk(req)->rmt_addr;
49a72dfb 631 } else {
b71d1d42 632 const struct ipv6hdr *ip6h = ipv6_hdr(skb);
49a72dfb
AL
633 saddr = &ip6h->saddr;
634 daddr = &ip6h->daddr;
cfb6eeb4 635 }
49a72dfb
AL
636
637 hp = tcp_get_md5sig_pool();
638 if (!hp)
639 goto clear_hash_noput;
640 desc = &hp->md5_desc;
641
642 if (crypto_hash_init(desc))
643 goto clear_hash;
644
645 if (tcp_v6_md5_hash_pseudoheader(hp, daddr, saddr, skb->len))
646 goto clear_hash;
647 if (tcp_md5_hash_header(hp, th))
648 goto clear_hash;
649 if (tcp_md5_hash_skb_data(hp, skb, th->doff << 2))
650 goto clear_hash;
651 if (tcp_md5_hash_key(hp, key))
652 goto clear_hash;
653 if (crypto_hash_final(desc, md5_hash))
654 goto clear_hash;
655
656 tcp_put_md5sig_pool();
657 return 0;
658
659clear_hash:
660 tcp_put_md5sig_pool();
661clear_hash_noput:
662 memset(md5_hash, 0, 16);
663 return 1;
cfb6eeb4
YH
664}
665
318cf7aa 666static int tcp_v6_inbound_md5_hash(struct sock *sk, const struct sk_buff *skb)
cfb6eeb4 667{
cf533ea5 668 const __u8 *hash_location = NULL;
cfb6eeb4 669 struct tcp_md5sig_key *hash_expected;
b71d1d42 670 const struct ipv6hdr *ip6h = ipv6_hdr(skb);
318cf7aa 671 const struct tcphdr *th = tcp_hdr(skb);
cfb6eeb4 672 int genhash;
cfb6eeb4
YH
673 u8 newhash[16];
674
675 hash_expected = tcp_v6_md5_do_lookup(sk, &ip6h->saddr);
7d5d5525 676 hash_location = tcp_parse_md5sig_option(th);
cfb6eeb4 677
785957d3
DM
678 /* We've parsed the options - do we have a hash? */
679 if (!hash_expected && !hash_location)
680 return 0;
681
682 if (hash_expected && !hash_location) {
683 NET_INC_STATS_BH(sock_net(sk), LINUX_MIB_TCPMD5NOTFOUND);
cfb6eeb4
YH
684 return 1;
685 }
686
785957d3
DM
687 if (!hash_expected && hash_location) {
688 NET_INC_STATS_BH(sock_net(sk), LINUX_MIB_TCPMD5UNEXPECTED);
cfb6eeb4
YH
689 return 1;
690 }
691
692 /* check the signature */
49a72dfb
AL
693 genhash = tcp_v6_md5_hash_skb(newhash,
694 hash_expected,
695 NULL, NULL, skb);
696
cfb6eeb4 697 if (genhash || memcmp(hash_location, newhash, 16) != 0) {
e87cc472
JP
698 net_info_ratelimited("MD5 Hash %s for [%pI6c]:%u->[%pI6c]:%u\n",
699 genhash ? "failed" : "mismatch",
700 &ip6h->saddr, ntohs(th->source),
701 &ip6h->daddr, ntohs(th->dest));
cfb6eeb4
YH
702 return 1;
703 }
704 return 0;
705}
706#endif
707
c6aefafb 708struct request_sock_ops tcp6_request_sock_ops __read_mostly = {
1da177e4 709 .family = AF_INET6,
2e6599cb 710 .obj_size = sizeof(struct tcp6_request_sock),
72659ecc 711 .rtx_syn_ack = tcp_v6_rtx_synack,
60236fdd
ACM
712 .send_ack = tcp_v6_reqsk_send_ack,
713 .destructor = tcp_v6_reqsk_destructor,
72659ecc
OP
714 .send_reset = tcp_v6_send_reset,
715 .syn_ack_timeout = tcp_syn_ack_timeout,
1da177e4
LT
716};
717
cfb6eeb4 718#ifdef CONFIG_TCP_MD5SIG
b2e4b3de 719static const struct tcp_request_sock_ops tcp_request_sock_ipv6_ops = {
cfb6eeb4 720 .md5_lookup = tcp_v6_reqsk_md5_lookup,
e3afe7b7 721 .calc_md5_hash = tcp_v6_md5_hash_skb,
cfb6eeb4 722};
b6332e6c 723#endif
cfb6eeb4 724
8ad50d96 725static void __tcp_v6_send_check(struct sk_buff *skb,
b71d1d42 726 const struct in6_addr *saddr, const struct in6_addr *daddr)
1da177e4 727{
aa8223c7 728 struct tcphdr *th = tcp_hdr(skb);
1da177e4 729
84fa7933 730 if (skb->ip_summed == CHECKSUM_PARTIAL) {
8ad50d96 731 th->check = ~tcp_v6_check(skb->len, saddr, daddr, 0);
663ead3b 732 skb->csum_start = skb_transport_header(skb) - skb->head;
ff1dcadb 733 skb->csum_offset = offsetof(struct tcphdr, check);
1da177e4 734 } else {
8ad50d96
HX
735 th->check = tcp_v6_check(skb->len, saddr, daddr,
736 csum_partial(th, th->doff << 2,
737 skb->csum));
1da177e4
LT
738 }
739}
740
bb296246 741static void tcp_v6_send_check(struct sock *sk, struct sk_buff *skb)
8ad50d96
HX
742{
743 struct ipv6_pinfo *np = inet6_sk(sk);
744
745 __tcp_v6_send_check(skb, &np->saddr, &np->daddr);
746}
747
a430a43d
HX
748static int tcp_v6_gso_send_check(struct sk_buff *skb)
749{
b71d1d42 750 const struct ipv6hdr *ipv6h;
a430a43d
HX
751 struct tcphdr *th;
752
753 if (!pskb_may_pull(skb, sizeof(*th)))
754 return -EINVAL;
755
0660e03f 756 ipv6h = ipv6_hdr(skb);
aa8223c7 757 th = tcp_hdr(skb);
a430a43d
HX
758
759 th->check = 0;
84fa7933 760 skb->ip_summed = CHECKSUM_PARTIAL;
8ad50d96 761 __tcp_v6_send_check(skb, &ipv6h->saddr, &ipv6h->daddr);
a430a43d
HX
762 return 0;
763}
1da177e4 764
36990673
HX
765static struct sk_buff **tcp6_gro_receive(struct sk_buff **head,
766 struct sk_buff *skb)
684f2176 767{
b71d1d42 768 const struct ipv6hdr *iph = skb_gro_network_header(skb);
861b6501
ED
769 __wsum wsum;
770 __sum16 sum;
684f2176
HX
771
772 switch (skb->ip_summed) {
773 case CHECKSUM_COMPLETE:
86911732 774 if (!tcp_v6_check(skb_gro_len(skb), &iph->saddr, &iph->daddr,
684f2176
HX
775 skb->csum)) {
776 skb->ip_summed = CHECKSUM_UNNECESSARY;
777 break;
778 }
861b6501 779flush:
684f2176
HX
780 NAPI_GRO_CB(skb)->flush = 1;
781 return NULL;
861b6501
ED
782
783 case CHECKSUM_NONE:
784 wsum = ~csum_unfold(csum_ipv6_magic(&iph->saddr, &iph->daddr,
785 skb_gro_len(skb),
786 IPPROTO_TCP, 0));
787 sum = csum_fold(skb_checksum(skb,
788 skb_gro_offset(skb),
789 skb_gro_len(skb),
790 wsum));
791 if (sum)
792 goto flush;
793
794 skb->ip_summed = CHECKSUM_UNNECESSARY;
795 break;
684f2176
HX
796 }
797
798 return tcp_gro_receive(head, skb);
799}
684f2176 800
36990673 801static int tcp6_gro_complete(struct sk_buff *skb)
684f2176 802{
b71d1d42 803 const struct ipv6hdr *iph = ipv6_hdr(skb);
684f2176
HX
804 struct tcphdr *th = tcp_hdr(skb);
805
806 th->check = ~tcp_v6_check(skb->len - skb_transport_offset(skb),
807 &iph->saddr, &iph->daddr, 0);
808 skb_shinfo(skb)->gso_type = SKB_GSO_TCPV6;
809
810 return tcp_gro_complete(skb);
811}
684f2176 812
626e264d 813static void tcp_v6_send_response(struct sk_buff *skb, u32 seq, u32 ack, u32 win,
b903d324 814 u32 ts, struct tcp_md5sig_key *key, int rst, u8 tclass)
1da177e4 815{
cf533ea5
ED
816 const struct tcphdr *th = tcp_hdr(skb);
817 struct tcphdr *t1;
1da177e4 818 struct sk_buff *buff;
4c9483b2 819 struct flowi6 fl6;
adf30907 820 struct net *net = dev_net(skb_dst(skb)->dev);
e5047992 821 struct sock *ctl_sk = net->ipv6.tcp_sk;
77c676da 822 unsigned int tot_len = sizeof(struct tcphdr);
adf30907 823 struct dst_entry *dst;
81ada62d 824 __be32 *topt;
1da177e4 825
626e264d
IJ
826 if (ts)
827 tot_len += TCPOLEN_TSTAMP_ALIGNED;
cfb6eeb4 828#ifdef CONFIG_TCP_MD5SIG
cfb6eeb4
YH
829 if (key)
830 tot_len += TCPOLEN_MD5SIG_ALIGNED;
831#endif
832
cfb6eeb4 833 buff = alloc_skb(MAX_HEADER + sizeof(struct ipv6hdr) + tot_len,
1da177e4 834 GFP_ATOMIC);
1ab1457c
YH
835 if (buff == NULL)
836 return;
1da177e4 837
cfb6eeb4 838 skb_reserve(buff, MAX_HEADER + sizeof(struct ipv6hdr) + tot_len);
1da177e4 839
cfb6eeb4 840 t1 = (struct tcphdr *) skb_push(buff, tot_len);
6651ffc8 841 skb_reset_transport_header(buff);
1da177e4
LT
842
843 /* Swap the send and the receive. */
844 memset(t1, 0, sizeof(*t1));
845 t1->dest = th->source;
846 t1->source = th->dest;
cfb6eeb4 847 t1->doff = tot_len / 4;
626e264d
IJ
848 t1->seq = htonl(seq);
849 t1->ack_seq = htonl(ack);
850 t1->ack = !rst || !th->ack;
851 t1->rst = rst;
852 t1->window = htons(win);
1da177e4 853
81ada62d
IJ
854 topt = (__be32 *)(t1 + 1);
855
626e264d
IJ
856 if (ts) {
857 *topt++ = htonl((TCPOPT_NOP << 24) | (TCPOPT_NOP << 16) |
858 (TCPOPT_TIMESTAMP << 8) | TCPOLEN_TIMESTAMP);
859 *topt++ = htonl(tcp_time_stamp);
860 *topt++ = htonl(ts);
861 }
862
cfb6eeb4
YH
863#ifdef CONFIG_TCP_MD5SIG
864 if (key) {
81ada62d
IJ
865 *topt++ = htonl((TCPOPT_NOP << 24) | (TCPOPT_NOP << 16) |
866 (TCPOPT_MD5SIG << 8) | TCPOLEN_MD5SIG);
867 tcp_v6_md5_hash_hdr((__u8 *)topt, key,
78e645cb
IJ
868 &ipv6_hdr(skb)->saddr,
869 &ipv6_hdr(skb)->daddr, t1);
cfb6eeb4
YH
870 }
871#endif
872
4c9483b2 873 memset(&fl6, 0, sizeof(fl6));
4e3fd7a0
AD
874 fl6.daddr = ipv6_hdr(skb)->saddr;
875 fl6.saddr = ipv6_hdr(skb)->daddr;
1da177e4 876
e5700aff
DM
877 buff->ip_summed = CHECKSUM_PARTIAL;
878 buff->csum = 0;
879
4c9483b2 880 __tcp_v6_send_check(buff, &fl6.saddr, &fl6.daddr);
1da177e4 881
4c9483b2 882 fl6.flowi6_proto = IPPROTO_TCP;
4c675258
AK
883 if (ipv6_addr_type(&fl6.daddr) & IPV6_ADDR_LINKLOCAL)
884 fl6.flowi6_oif = inet6_iif(skb);
1958b856
DM
885 fl6.fl6_dport = t1->dest;
886 fl6.fl6_sport = t1->source;
4c9483b2 887 security_skb_classify_flow(skb, flowi6_to_flowi(&fl6));
1da177e4 888
c20121ae
DL
889 /* Pass a socket to ip6_dst_lookup either it is for RST
890 * Underlying function will use this to retrieve the network
891 * namespace
892 */
4c9483b2 893 dst = ip6_dst_lookup_flow(ctl_sk, &fl6, NULL, false);
68d0c6d3
DM
894 if (!IS_ERR(dst)) {
895 skb_dst_set(buff, dst);
b903d324 896 ip6_xmit(ctl_sk, buff, &fl6, NULL, tclass);
68d0c6d3
DM
897 TCP_INC_STATS_BH(net, TCP_MIB_OUTSEGS);
898 if (rst)
899 TCP_INC_STATS_BH(net, TCP_MIB_OUTRSTS);
900 return;
1da177e4
LT
901 }
902
903 kfree_skb(buff);
904}
905
626e264d 906static void tcp_v6_send_reset(struct sock *sk, struct sk_buff *skb)
1da177e4 907{
cf533ea5 908 const struct tcphdr *th = tcp_hdr(skb);
626e264d 909 u32 seq = 0, ack_seq = 0;
fa3e5b4e 910 struct tcp_md5sig_key *key = NULL;
658ddaaf
SL
911#ifdef CONFIG_TCP_MD5SIG
912 const __u8 *hash_location = NULL;
913 struct ipv6hdr *ipv6h = ipv6_hdr(skb);
914 unsigned char newhash[16];
915 int genhash;
916 struct sock *sk1 = NULL;
917#endif
1da177e4 918
626e264d 919 if (th->rst)
1da177e4
LT
920 return;
921
626e264d
IJ
922 if (!ipv6_unicast_destination(skb))
923 return;
1da177e4 924
cfb6eeb4 925#ifdef CONFIG_TCP_MD5SIG
658ddaaf
SL
926 hash_location = tcp_parse_md5sig_option(th);
927 if (!sk && hash_location) {
928 /*
929 * active side is lost. Try to find listening socket through
930 * source port, and then find md5 key through listening socket.
931 * we are not loose security here:
932 * Incoming packet is checked with md5 hash with finding key,
933 * no RST generated if md5 hash doesn't match.
934 */
935 sk1 = inet6_lookup_listener(dev_net(skb_dst(skb)->dev),
936 &tcp_hashinfo, &ipv6h->daddr,
937 ntohs(th->source), inet6_iif(skb));
938 if (!sk1)
939 return;
940
941 rcu_read_lock();
942 key = tcp_v6_md5_do_lookup(sk1, &ipv6h->saddr);
943 if (!key)
944 goto release_sk1;
945
946 genhash = tcp_v6_md5_hash_skb(newhash, key, NULL, NULL, skb);
947 if (genhash || memcmp(hash_location, newhash, 16) != 0)
948 goto release_sk1;
949 } else {
950 key = sk ? tcp_v6_md5_do_lookup(sk, &ipv6h->saddr) : NULL;
951 }
cfb6eeb4
YH
952#endif
953
626e264d
IJ
954 if (th->ack)
955 seq = ntohl(th->ack_seq);
956 else
957 ack_seq = ntohl(th->seq) + th->syn + th->fin + skb->len -
958 (th->doff << 2);
1da177e4 959
b903d324 960 tcp_v6_send_response(skb, seq, ack_seq, 0, 0, key, 1, 0);
658ddaaf
SL
961
962#ifdef CONFIG_TCP_MD5SIG
963release_sk1:
964 if (sk1) {
965 rcu_read_unlock();
966 sock_put(sk1);
967 }
968#endif
626e264d 969}
1da177e4 970
626e264d 971static void tcp_v6_send_ack(struct sk_buff *skb, u32 seq, u32 ack, u32 win, u32 ts,
b903d324 972 struct tcp_md5sig_key *key, u8 tclass)
626e264d 973{
b903d324 974 tcp_v6_send_response(skb, seq, ack, win, ts, key, 0, tclass);
1da177e4
LT
975}
976
977static void tcp_v6_timewait_ack(struct sock *sk, struct sk_buff *skb)
978{
8feaf0c0 979 struct inet_timewait_sock *tw = inet_twsk(sk);
cfb6eeb4 980 struct tcp_timewait_sock *tcptw = tcp_twsk(sk);
1da177e4 981
9501f972 982 tcp_v6_send_ack(skb, tcptw->tw_snd_nxt, tcptw->tw_rcv_nxt,
8feaf0c0 983 tcptw->tw_rcv_wnd >> tw->tw_rcv_wscale,
b903d324
ED
984 tcptw->tw_ts_recent, tcp_twsk_md5_key(tcptw),
985 tw->tw_tclass);
1da177e4 986
8feaf0c0 987 inet_twsk_put(tw);
1da177e4
LT
988}
989
6edafaaf
GJ
990static void tcp_v6_reqsk_send_ack(struct sock *sk, struct sk_buff *skb,
991 struct request_sock *req)
1da177e4 992{
9501f972 993 tcp_v6_send_ack(skb, tcp_rsk(req)->snt_isn + 1, tcp_rsk(req)->rcv_isn + 1, req->rcv_wnd, req->ts_recent,
b903d324 994 tcp_v6_md5_do_lookup(sk, &ipv6_hdr(skb)->daddr), 0);
1da177e4
LT
995}
996
997
998static struct sock *tcp_v6_hnd_req(struct sock *sk,struct sk_buff *skb)
999{
60236fdd 1000 struct request_sock *req, **prev;
aa8223c7 1001 const struct tcphdr *th = tcp_hdr(skb);
1da177e4
LT
1002 struct sock *nsk;
1003
1004 /* Find possible connection requests. */
8129765a 1005 req = inet6_csk_search_req(sk, &prev, th->source,
0660e03f
ACM
1006 &ipv6_hdr(skb)->saddr,
1007 &ipv6_hdr(skb)->daddr, inet6_iif(skb));
1da177e4 1008 if (req)
8336886f 1009 return tcp_check_req(sk, skb, req, prev, false);
1da177e4 1010
3b1e0a65 1011 nsk = __inet6_lookup_established(sock_net(sk), &tcp_hashinfo,
d86e0dac
PE
1012 &ipv6_hdr(skb)->saddr, th->source,
1013 &ipv6_hdr(skb)->daddr, ntohs(th->dest), inet6_iif(skb));
1da177e4
LT
1014
1015 if (nsk) {
1016 if (nsk->sk_state != TCP_TIME_WAIT) {
1017 bh_lock_sock(nsk);
1018 return nsk;
1019 }
9469c7b4 1020 inet_twsk_put(inet_twsk(nsk));
1da177e4
LT
1021 return NULL;
1022 }
1023
c6aefafb 1024#ifdef CONFIG_SYN_COOKIES
af9b4738 1025 if (!th->syn)
c6aefafb 1026 sk = cookie_v6_check(sk, skb);
1da177e4
LT
1027#endif
1028 return sk;
1029}
1030
1da177e4
LT
1031/* FIXME: this is substantially similar to the ipv4 code.
1032 * Can some kind of merge be done? -- erics
1033 */
1034static int tcp_v6_conn_request(struct sock *sk, struct sk_buff *skb)
1035{
4957faad 1036 struct tcp_extend_values tmp_ext;
e6b4d113 1037 struct tcp_options_received tmp_opt;
cf533ea5 1038 const u8 *hash_location;
e6b4d113 1039 struct request_sock *req;
ca304b61 1040 struct inet6_request_sock *treq;
1da177e4 1041 struct ipv6_pinfo *np = inet6_sk(sk);
1da177e4 1042 struct tcp_sock *tp = tcp_sk(sk);
e6b4d113 1043 __u32 isn = TCP_SKB_CB(skb)->when;
493f377d 1044 struct dst_entry *dst = NULL;
3840a06e 1045 struct flowi6 fl6;
a2a385d6 1046 bool want_cookie = false;
1da177e4
LT
1047
1048 if (skb->protocol == htons(ETH_P_IP))
1049 return tcp_v4_conn_request(sk, skb);
1050
1051 if (!ipv6_unicast_destination(skb))
1ab1457c 1052 goto drop;
1da177e4 1053
463c84b9 1054 if (inet_csk_reqsk_queue_is_full(sk) && !isn) {
946cedcc
ED
1055 want_cookie = tcp_syn_flood_action(sk, skb, "TCPv6");
1056 if (!want_cookie)
1057 goto drop;
1da177e4
LT
1058 }
1059
463c84b9 1060 if (sk_acceptq_is_full(sk) && inet_csk_reqsk_queue_young(sk) > 1)
1da177e4
LT
1061 goto drop;
1062
ca304b61 1063 req = inet6_reqsk_alloc(&tcp6_request_sock_ops);
1da177e4
LT
1064 if (req == NULL)
1065 goto drop;
1066
cfb6eeb4
YH
1067#ifdef CONFIG_TCP_MD5SIG
1068 tcp_rsk(req)->af_specific = &tcp_request_sock_ipv6_ops;
1069#endif
1070
1da177e4
LT
1071 tcp_clear_options(&tmp_opt);
1072 tmp_opt.mss_clamp = IPV6_MIN_MTU - sizeof(struct tcphdr) - sizeof(struct ipv6hdr);
1073 tmp_opt.user_mss = tp->rx_opt.user_mss;
2100c8d2 1074 tcp_parse_options(skb, &tmp_opt, &hash_location, 0, NULL);
4957faad
WAS
1075
1076 if (tmp_opt.cookie_plus > 0 &&
1077 tmp_opt.saw_tstamp &&
1078 !tp->rx_opt.cookie_out_never &&
1079 (sysctl_tcp_cookie_size > 0 ||
1080 (tp->cookie_values != NULL &&
1081 tp->cookie_values->cookie_desired > 0))) {
1082 u8 *c;
1083 u32 *d;
1084 u32 *mess = &tmp_ext.cookie_bakery[COOKIE_DIGEST_WORDS];
1085 int l = tmp_opt.cookie_plus - TCPOLEN_COOKIE_BASE;
1086
1087 if (tcp_cookie_generator(&tmp_ext.cookie_bakery[0]) != 0)
1088 goto drop_and_free;
1089
1090 /* Secret recipe starts with IP addresses */
0eae88f3 1091 d = (__force u32 *)&ipv6_hdr(skb)->daddr.s6_addr32[0];
4957faad
WAS
1092 *mess++ ^= *d++;
1093 *mess++ ^= *d++;
1094 *mess++ ^= *d++;
1095 *mess++ ^= *d++;
0eae88f3 1096 d = (__force u32 *)&ipv6_hdr(skb)->saddr.s6_addr32[0];
4957faad
WAS
1097 *mess++ ^= *d++;
1098 *mess++ ^= *d++;
1099 *mess++ ^= *d++;
1100 *mess++ ^= *d++;
1101
1102 /* plus variable length Initiator Cookie */
1103 c = (u8 *)mess;
1104 while (l-- > 0)
1105 *c++ ^= *hash_location++;
1da177e4 1106
a2a385d6 1107 want_cookie = false; /* not our kind of cookie */
4957faad
WAS
1108 tmp_ext.cookie_out_never = 0; /* false */
1109 tmp_ext.cookie_plus = tmp_opt.cookie_plus;
1110 } else if (!tp->rx_opt.cookie_in_always) {
1111 /* redundant indications, but ensure initialization. */
1112 tmp_ext.cookie_out_never = 1; /* true */
1113 tmp_ext.cookie_plus = 0;
1114 } else {
1115 goto drop_and_free;
1116 }
1117 tmp_ext.cookie_in_always = tp->rx_opt.cookie_in_always;
1da177e4 1118
4dfc2817 1119 if (want_cookie && !tmp_opt.saw_tstamp)
c6aefafb 1120 tcp_clear_options(&tmp_opt);
c6aefafb 1121
1da177e4
LT
1122 tmp_opt.tstamp_ok = tmp_opt.saw_tstamp;
1123 tcp_openreq_init(req, &tmp_opt, skb);
1124
ca304b61 1125 treq = inet6_rsk(req);
4e3fd7a0
AD
1126 treq->rmt_addr = ipv6_hdr(skb)->saddr;
1127 treq->loc_addr = ipv6_hdr(skb)->daddr;
172d69e6 1128 if (!want_cookie || tmp_opt.tstamp_ok)
bd14b1b2 1129 TCP_ECN_create_request(req, skb);
c6aefafb 1130
4d0fe50c
ED
1131 treq->iif = sk->sk_bound_dev_if;
1132
1133 /* So that link locals have meaning */
1134 if (!sk->sk_bound_dev_if &&
1135 ipv6_addr_type(&treq->rmt_addr) & IPV6_ADDR_LINKLOCAL)
1136 treq->iif = inet6_iif(skb);
1137
2bbdf389 1138 if (!isn) {
c6aefafb
GG
1139 if (ipv6_opt_accepted(sk, skb) ||
1140 np->rxopt.bits.rxinfo || np->rxopt.bits.rxoinfo ||
1141 np->rxopt.bits.rxhlim || np->rxopt.bits.rxohlim) {
1142 atomic_inc(&skb->users);
1143 treq->pktopts = skb;
1144 }
493f377d
DM
1145
1146 if (want_cookie) {
2bbdf389
FW
1147 isn = cookie_v6_init_sequence(sk, skb, &req->mss);
1148 req->cookie_ts = tmp_opt.tstamp_ok;
493f377d
DM
1149 goto have_isn;
1150 }
1151
1152 /* VJ's idea. We save last timestamp seen
1153 * from the destination in peer table, when entering
1154 * state TIME-WAIT, and check against it before
1155 * accepting new connection request.
1156 *
1157 * If "isn" is not zero, this request hit alive
1158 * timewait bucket, so that all the necessary checks
1159 * are made in the function processing timewait state.
1160 */
1161 if (tmp_opt.saw_tstamp &&
1162 tcp_death_row.sysctl_tw_recycle &&
81166dd6
DM
1163 (dst = inet6_csk_route_req(sk, &fl6, req)) != NULL) {
1164 if (!tcp_peer_is_proven(req, dst, true)) {
493f377d
DM
1165 NET_INC_STATS_BH(sock_net(sk), LINUX_MIB_PAWSPASSIVEREJECTED);
1166 goto drop_and_release;
1167 }
1168 }
1169 /* Kill the following clause, if you dislike this way. */
1170 else if (!sysctl_tcp_syncookies &&
1171 (sysctl_max_syn_backlog - inet_csk_reqsk_queue_len(sk) <
1172 (sysctl_max_syn_backlog >> 2)) &&
81166dd6 1173 !tcp_peer_is_proven(req, dst, false)) {
493f377d
DM
1174 /* Without syncookies last quarter of
1175 * backlog is filled with destinations,
1176 * proven to be alive.
1177 * It means that we continue to communicate
1178 * to destinations, already remembered
1179 * to the moment of synflood.
1180 */
1181 LIMIT_NETDEBUG(KERN_DEBUG "TCP: drop open request from %pI6/%u\n",
1182 &treq->rmt_addr, ntohs(tcp_hdr(skb)->source));
1183 goto drop_and_release;
2bbdf389 1184 }
493f377d
DM
1185
1186 isn = tcp_v6_init_sequence(skb);
c6aefafb 1187 }
493f377d 1188have_isn:
2e6599cb 1189 tcp_rsk(req)->snt_isn = isn;
1da177e4 1190
437c5b53
NC
1191 if (security_inet_conn_request(sk, skb, req))
1192 goto drop_and_release;
4237c75c 1193
9f10d3f6 1194 if (tcp_v6_send_synack(sk, dst, &fl6, req,
fff32699
ED
1195 (struct request_values *)&tmp_ext,
1196 skb_get_queue_mapping(skb)) ||
4957faad 1197 want_cookie)
e6b4d113 1198 goto drop_and_free;
1da177e4 1199
016818d0 1200 tcp_rsk(req)->snt_synack = tcp_time_stamp;
8336886f 1201 tcp_rsk(req)->listener = NULL;
e6b4d113
WAS
1202 inet6_csk_reqsk_queue_hash_add(sk, req, TCP_TIMEOUT_INIT);
1203 return 0;
1da177e4 1204
493f377d
DM
1205drop_and_release:
1206 dst_release(dst);
e6b4d113
WAS
1207drop_and_free:
1208 reqsk_free(req);
1da177e4 1209drop:
1da177e4
LT
1210 return 0; /* don't send reset */
1211}
1212
1213static struct sock * tcp_v6_syn_recv_sock(struct sock *sk, struct sk_buff *skb,
60236fdd 1214 struct request_sock *req,
1da177e4
LT
1215 struct dst_entry *dst)
1216{
78d15e82 1217 struct inet6_request_sock *treq;
1da177e4
LT
1218 struct ipv6_pinfo *newnp, *np = inet6_sk(sk);
1219 struct tcp6_sock *newtcp6sk;
1220 struct inet_sock *newinet;
1221 struct tcp_sock *newtp;
1222 struct sock *newsk;
cfb6eeb4
YH
1223#ifdef CONFIG_TCP_MD5SIG
1224 struct tcp_md5sig_key *key;
1225#endif
3840a06e 1226 struct flowi6 fl6;
1da177e4
LT
1227
1228 if (skb->protocol == htons(ETH_P_IP)) {
1229 /*
1230 * v6 mapped
1231 */
1232
1233 newsk = tcp_v4_syn_recv_sock(sk, skb, req, dst);
1234
1ab1457c 1235 if (newsk == NULL)
1da177e4
LT
1236 return NULL;
1237
1238 newtcp6sk = (struct tcp6_sock *)newsk;
1239 inet_sk(newsk)->pinet6 = &newtcp6sk->inet6;
1240
1241 newinet = inet_sk(newsk);
1242 newnp = inet6_sk(newsk);
1243 newtp = tcp_sk(newsk);
1244
1245 memcpy(newnp, np, sizeof(struct ipv6_pinfo));
1246
c720c7e8 1247 ipv6_addr_set_v4mapped(newinet->inet_daddr, &newnp->daddr);
1da177e4 1248
c720c7e8 1249 ipv6_addr_set_v4mapped(newinet->inet_saddr, &newnp->saddr);
1da177e4 1250
4e3fd7a0 1251 newnp->rcv_saddr = newnp->saddr;
1da177e4 1252
8292a17a 1253 inet_csk(newsk)->icsk_af_ops = &ipv6_mapped;
1da177e4 1254 newsk->sk_backlog_rcv = tcp_v4_do_rcv;
cfb6eeb4
YH
1255#ifdef CONFIG_TCP_MD5SIG
1256 newtp->af_specific = &tcp_sock_ipv6_mapped_specific;
1257#endif
1258
676a1184
YZ
1259 newnp->ipv6_ac_list = NULL;
1260 newnp->ipv6_fl_list = NULL;
1da177e4
LT
1261 newnp->pktoptions = NULL;
1262 newnp->opt = NULL;
505cbfc5 1263 newnp->mcast_oif = inet6_iif(skb);
0660e03f 1264 newnp->mcast_hops = ipv6_hdr(skb)->hop_limit;
4c507d28 1265 newnp->rcv_tclass = ipv6_tclass(ipv6_hdr(skb));
1da177e4 1266
e6848976
ACM
1267 /*
1268 * No need to charge this sock to the relevant IPv6 refcnt debug socks count
1269 * here, tcp_create_openreq_child now does this for us, see the comment in
1270 * that function for the gory details. -acme
1da177e4 1271 */
1da177e4
LT
1272
1273 /* It is tricky place. Until this moment IPv4 tcp
8292a17a 1274 worked with IPv6 icsk.icsk_af_ops.
1da177e4
LT
1275 Sync it now.
1276 */
d83d8461 1277 tcp_sync_mss(newsk, inet_csk(newsk)->icsk_pmtu_cookie);
1da177e4
LT
1278
1279 return newsk;
1280 }
1281
78d15e82 1282 treq = inet6_rsk(req);
1da177e4
LT
1283
1284 if (sk_acceptq_is_full(sk))
1285 goto out_overflow;
1286
493f377d 1287 if (!dst) {
3840a06e 1288 dst = inet6_csk_route_req(sk, &fl6, req);
493f377d 1289 if (!dst)
1da177e4 1290 goto out;
1ab1457c 1291 }
1da177e4
LT
1292
1293 newsk = tcp_create_openreq_child(sk, req, skb);
1294 if (newsk == NULL)
093d2823 1295 goto out_nonewsk;
1da177e4 1296
e6848976
ACM
1297 /*
1298 * No need to charge this sock to the relevant IPv6 refcnt debug socks
1299 * count here, tcp_create_openreq_child now does this for us, see the
1300 * comment in that function for the gory details. -acme
1301 */
1da177e4 1302
59eed279 1303 newsk->sk_gso_type = SKB_GSO_TCPV6;
8e1ef0a9 1304 __ip6_dst_store(newsk, dst, NULL, NULL);
fae6ef87 1305 inet6_sk_rx_dst_set(newsk, skb);
1da177e4
LT
1306
1307 newtcp6sk = (struct tcp6_sock *)newsk;
1308 inet_sk(newsk)->pinet6 = &newtcp6sk->inet6;
1309
1310 newtp = tcp_sk(newsk);
1311 newinet = inet_sk(newsk);
1312 newnp = inet6_sk(newsk);
1313
1314 memcpy(newnp, np, sizeof(struct ipv6_pinfo));
1315
4e3fd7a0
AD
1316 newnp->daddr = treq->rmt_addr;
1317 newnp->saddr = treq->loc_addr;
1318 newnp->rcv_saddr = treq->loc_addr;
2e6599cb 1319 newsk->sk_bound_dev_if = treq->iif;
1da177e4 1320
1ab1457c 1321 /* Now IPv6 options...
1da177e4
LT
1322
1323 First: no IPv4 options.
1324 */
f6d8bd05 1325 newinet->inet_opt = NULL;
676a1184 1326 newnp->ipv6_ac_list = NULL;
d35690be 1327 newnp->ipv6_fl_list = NULL;
1da177e4
LT
1328
1329 /* Clone RX bits */
1330 newnp->rxopt.all = np->rxopt.all;
1331
1332 /* Clone pktoptions received with SYN */
1333 newnp->pktoptions = NULL;
2e6599cb 1334 if (treq->pktopts != NULL) {
99a1dec7
MG
1335 newnp->pktoptions = skb_clone(treq->pktopts,
1336 sk_gfp_atomic(sk, GFP_ATOMIC));
ab185d7b 1337 consume_skb(treq->pktopts);
2e6599cb 1338 treq->pktopts = NULL;
1da177e4
LT
1339 if (newnp->pktoptions)
1340 skb_set_owner_r(newnp->pktoptions, newsk);
1341 }
1342 newnp->opt = NULL;
505cbfc5 1343 newnp->mcast_oif = inet6_iif(skb);
0660e03f 1344 newnp->mcast_hops = ipv6_hdr(skb)->hop_limit;
4c507d28 1345 newnp->rcv_tclass = ipv6_tclass(ipv6_hdr(skb));
1da177e4
LT
1346
1347 /* Clone native IPv6 options from listening socket (if any)
1348
1349 Yes, keeping reference count would be much more clever,
1350 but we make one more one thing there: reattach optmem
1351 to newsk.
1352 */
43264e0b
RL
1353 if (np->opt)
1354 newnp->opt = ipv6_dup_options(newsk, np->opt);
1da177e4 1355
d83d8461 1356 inet_csk(newsk)->icsk_ext_hdr_len = 0;
1da177e4 1357 if (newnp->opt)
d83d8461
ACM
1358 inet_csk(newsk)->icsk_ext_hdr_len = (newnp->opt->opt_nflen +
1359 newnp->opt->opt_flen);
1da177e4 1360
5d424d5a 1361 tcp_mtup_init(newsk);
1da177e4 1362 tcp_sync_mss(newsk, dst_mtu(dst));
0dbaee3b 1363 newtp->advmss = dst_metric_advmss(dst);
d135c522
NC
1364 if (tcp_sk(sk)->rx_opt.user_mss &&
1365 tcp_sk(sk)->rx_opt.user_mss < newtp->advmss)
1366 newtp->advmss = tcp_sk(sk)->rx_opt.user_mss;
1367
1da177e4 1368 tcp_initialize_rcv_mss(newsk);
623df484 1369 tcp_synack_rtt_meas(newsk, req);
e6c022a4 1370 newtp->total_retrans = req->num_retrans;
1da177e4 1371
c720c7e8
ED
1372 newinet->inet_daddr = newinet->inet_saddr = LOOPBACK4_IPV6;
1373 newinet->inet_rcv_saddr = LOOPBACK4_IPV6;
1da177e4 1374
cfb6eeb4
YH
1375#ifdef CONFIG_TCP_MD5SIG
1376 /* Copy over the MD5 key from the original socket */
1377 if ((key = tcp_v6_md5_do_lookup(sk, &newnp->daddr)) != NULL) {
1378 /* We're using one, so create a matching key
1379 * on the newsk structure. If we fail to get
1380 * memory, then we end up not copying the key
1381 * across. Shucks.
1382 */
a915da9b 1383 tcp_md5_do_add(newsk, (union tcp_md5_addr *)&newnp->daddr,
99a1dec7
MG
1384 AF_INET6, key->key, key->keylen,
1385 sk_gfp_atomic(sk, GFP_ATOMIC));
cfb6eeb4
YH
1386 }
1387#endif
1388
093d2823
BS
1389 if (__inet_inherit_port(sk, newsk) < 0) {
1390 sock_put(newsk);
1391 goto out;
1392 }
9327f705 1393 __inet6_hash(newsk, NULL);
1da177e4
LT
1394
1395 return newsk;
1396
1397out_overflow:
de0744af 1398 NET_INC_STATS_BH(sock_net(sk), LINUX_MIB_LISTENOVERFLOWS);
093d2823 1399out_nonewsk:
1da177e4 1400 dst_release(dst);
093d2823
BS
1401out:
1402 NET_INC_STATS_BH(sock_net(sk), LINUX_MIB_LISTENDROPS);
1da177e4
LT
1403 return NULL;
1404}
1405
b51655b9 1406static __sum16 tcp_v6_checksum_init(struct sk_buff *skb)
1da177e4 1407{
84fa7933 1408 if (skb->ip_summed == CHECKSUM_COMPLETE) {
684f2176 1409 if (!tcp_v6_check(skb->len, &ipv6_hdr(skb)->saddr,
0660e03f 1410 &ipv6_hdr(skb)->daddr, skb->csum)) {
fb286bb2 1411 skb->ip_summed = CHECKSUM_UNNECESSARY;
1da177e4 1412 return 0;
fb286bb2 1413 }
1da177e4 1414 }
fb286bb2 1415
684f2176 1416 skb->csum = ~csum_unfold(tcp_v6_check(skb->len,
0660e03f
ACM
1417 &ipv6_hdr(skb)->saddr,
1418 &ipv6_hdr(skb)->daddr, 0));
fb286bb2 1419
1da177e4 1420 if (skb->len <= 76) {
fb286bb2 1421 return __skb_checksum_complete(skb);
1da177e4
LT
1422 }
1423 return 0;
1424}
1425
1426/* The socket must have it's spinlock held when we get
1427 * here.
1428 *
1429 * We have a potential double-lock case here, so even when
1430 * doing backlog processing we use the BH locking scheme.
1431 * This is because we cannot sleep with the original spinlock
1432 * held.
1433 */
1434static int tcp_v6_do_rcv(struct sock *sk, struct sk_buff *skb)
1435{
1436 struct ipv6_pinfo *np = inet6_sk(sk);
1437 struct tcp_sock *tp;
1438 struct sk_buff *opt_skb = NULL;
1439
1440 /* Imagine: socket is IPv6. IPv4 packet arrives,
1441 goes to IPv4 receive handler and backlogged.
1442 From backlog it always goes here. Kerboom...
1443 Fortunately, tcp_rcv_established and rcv_established
1444 handle them correctly, but it is not case with
1445 tcp_v6_hnd_req and tcp_v6_send_reset(). --ANK
1446 */
1447
1448 if (skb->protocol == htons(ETH_P_IP))
1449 return tcp_v4_do_rcv(sk, skb);
1450
cfb6eeb4
YH
1451#ifdef CONFIG_TCP_MD5SIG
1452 if (tcp_v6_inbound_md5_hash (sk, skb))
1453 goto discard;
1454#endif
1455
fda9ef5d 1456 if (sk_filter(sk, skb))
1da177e4
LT
1457 goto discard;
1458
1459 /*
1460 * socket locking is here for SMP purposes as backlog rcv
1461 * is currently called with bh processing disabled.
1462 */
1463
1464 /* Do Stevens' IPV6_PKTOPTIONS.
1465
1466 Yes, guys, it is the only place in our code, where we
1467 may make it not affecting IPv4.
1468 The rest of code is protocol independent,
1469 and I do not like idea to uglify IPv4.
1470
1471 Actually, all the idea behind IPV6_PKTOPTIONS
1472 looks not very well thought. For now we latch
1473 options, received in the last packet, enqueued
1474 by tcp. Feel free to propose better solution.
1ab1457c 1475 --ANK (980728)
1da177e4
LT
1476 */
1477 if (np->rxopt.all)
99a1dec7 1478 opt_skb = skb_clone(skb, sk_gfp_atomic(sk, GFP_ATOMIC));
1da177e4
LT
1479
1480 if (sk->sk_state == TCP_ESTABLISHED) { /* Fast path */
5d299f3d
ED
1481 struct dst_entry *dst = sk->sk_rx_dst;
1482
bdeab991 1483 sock_rps_save_rxhash(sk, skb);
5d299f3d
ED
1484 if (dst) {
1485 if (inet_sk(sk)->rx_dst_ifindex != skb->skb_iif ||
1486 dst->ops->check(dst, np->rx_dst_cookie) == NULL) {
1487 dst_release(dst);
1488 sk->sk_rx_dst = NULL;
1489 }
1490 }
1491
aa8223c7 1492 if (tcp_rcv_established(sk, skb, tcp_hdr(skb), skb->len))
1da177e4 1493 goto reset;
1da177e4
LT
1494 if (opt_skb)
1495 goto ipv6_pktoptions;
1496 return 0;
1497 }
1498
ab6a5bb6 1499 if (skb->len < tcp_hdrlen(skb) || tcp_checksum_complete(skb))
1da177e4
LT
1500 goto csum_err;
1501
1ab1457c 1502 if (sk->sk_state == TCP_LISTEN) {
1da177e4
LT
1503 struct sock *nsk = tcp_v6_hnd_req(sk, skb);
1504 if (!nsk)
1505 goto discard;
1506
1507 /*
1508 * Queue it on the new socket if the new socket is active,
1509 * otherwise we just shortcircuit this and continue with
1510 * the new socket..
1511 */
1ab1457c 1512 if(nsk != sk) {
bdeab991 1513 sock_rps_save_rxhash(nsk, skb);
1da177e4
LT
1514 if (tcp_child_process(sk, nsk, skb))
1515 goto reset;
1516 if (opt_skb)
1517 __kfree_skb(opt_skb);
1518 return 0;
1519 }
47482f13 1520 } else
bdeab991 1521 sock_rps_save_rxhash(sk, skb);
1da177e4 1522
aa8223c7 1523 if (tcp_rcv_state_process(sk, skb, tcp_hdr(skb), skb->len))
1da177e4 1524 goto reset;
1da177e4
LT
1525 if (opt_skb)
1526 goto ipv6_pktoptions;
1527 return 0;
1528
1529reset:
cfb6eeb4 1530 tcp_v6_send_reset(sk, skb);
1da177e4
LT
1531discard:
1532 if (opt_skb)
1533 __kfree_skb(opt_skb);
1534 kfree_skb(skb);
1535 return 0;
1536csum_err:
63231bdd 1537 TCP_INC_STATS_BH(sock_net(sk), TCP_MIB_INERRS);
1da177e4
LT
1538 goto discard;
1539
1540
1541ipv6_pktoptions:
1542 /* Do you ask, what is it?
1543
1544 1. skb was enqueued by tcp.
1545 2. skb is added to tail of read queue, rather than out of order.
1546 3. socket is not in passive state.
1547 4. Finally, it really contains options, which user wants to receive.
1548 */
1549 tp = tcp_sk(sk);
1550 if (TCP_SKB_CB(opt_skb)->end_seq == tp->rcv_nxt &&
1551 !((1 << sk->sk_state) & (TCPF_CLOSE | TCPF_LISTEN))) {
333fad53 1552 if (np->rxopt.bits.rxinfo || np->rxopt.bits.rxoinfo)
505cbfc5 1553 np->mcast_oif = inet6_iif(opt_skb);
333fad53 1554 if (np->rxopt.bits.rxhlim || np->rxopt.bits.rxohlim)
0660e03f 1555 np->mcast_hops = ipv6_hdr(opt_skb)->hop_limit;
4c507d28
JB
1556 if (np->rxopt.bits.rxtclass)
1557 np->rcv_tclass = ipv6_tclass(ipv6_hdr(skb));
1da177e4
LT
1558 if (ipv6_opt_accepted(sk, opt_skb)) {
1559 skb_set_owner_r(opt_skb, sk);
1560 opt_skb = xchg(&np->pktoptions, opt_skb);
1561 } else {
1562 __kfree_skb(opt_skb);
1563 opt_skb = xchg(&np->pktoptions, NULL);
1564 }
1565 }
1566
800d55f1 1567 kfree_skb(opt_skb);
1da177e4
LT
1568 return 0;
1569}
1570
e5bbef20 1571static int tcp_v6_rcv(struct sk_buff *skb)
1da177e4 1572{
cf533ea5 1573 const struct tcphdr *th;
b71d1d42 1574 const struct ipv6hdr *hdr;
1da177e4
LT
1575 struct sock *sk;
1576 int ret;
a86b1e30 1577 struct net *net = dev_net(skb->dev);
1da177e4
LT
1578
1579 if (skb->pkt_type != PACKET_HOST)
1580 goto discard_it;
1581
1582 /*
1583 * Count it even if it's bad.
1584 */
63231bdd 1585 TCP_INC_STATS_BH(net, TCP_MIB_INSEGS);
1da177e4
LT
1586
1587 if (!pskb_may_pull(skb, sizeof(struct tcphdr)))
1588 goto discard_it;
1589
aa8223c7 1590 th = tcp_hdr(skb);
1da177e4
LT
1591
1592 if (th->doff < sizeof(struct tcphdr)/4)
1593 goto bad_packet;
1594 if (!pskb_may_pull(skb, th->doff*4))
1595 goto discard_it;
1596
60476372 1597 if (!skb_csum_unnecessary(skb) && tcp_v6_checksum_init(skb))
1da177e4
LT
1598 goto bad_packet;
1599
aa8223c7 1600 th = tcp_hdr(skb);
e802af9c 1601 hdr = ipv6_hdr(skb);
1da177e4
LT
1602 TCP_SKB_CB(skb)->seq = ntohl(th->seq);
1603 TCP_SKB_CB(skb)->end_seq = (TCP_SKB_CB(skb)->seq + th->syn + th->fin +
1604 skb->len - th->doff*4);
1605 TCP_SKB_CB(skb)->ack_seq = ntohl(th->ack_seq);
1606 TCP_SKB_CB(skb)->when = 0;
b82d1bb4 1607 TCP_SKB_CB(skb)->ip_dsfield = ipv6_get_dsfield(hdr);
1da177e4
LT
1608 TCP_SKB_CB(skb)->sacked = 0;
1609
9a1f27c4 1610 sk = __inet6_lookup_skb(&tcp_hashinfo, skb, th->source, th->dest);
1da177e4
LT
1611 if (!sk)
1612 goto no_tcp_socket;
1613
1614process:
1615 if (sk->sk_state == TCP_TIME_WAIT)
1616 goto do_time_wait;
1617
e802af9c
SH
1618 if (hdr->hop_limit < inet6_sk(sk)->min_hopcount) {
1619 NET_INC_STATS_BH(net, LINUX_MIB_TCPMINTTLDROP);
1620 goto discard_and_relse;
1621 }
1622
1da177e4
LT
1623 if (!xfrm6_policy_check(sk, XFRM_POLICY_IN, skb))
1624 goto discard_and_relse;
1625
fda9ef5d 1626 if (sk_filter(sk, skb))
1da177e4
LT
1627 goto discard_and_relse;
1628
1629 skb->dev = NULL;
1630
293b9c42 1631 bh_lock_sock_nested(sk);
1da177e4
LT
1632 ret = 0;
1633 if (!sock_owned_by_user(sk)) {
1a2449a8 1634#ifdef CONFIG_NET_DMA
1ab1457c 1635 struct tcp_sock *tp = tcp_sk(sk);
b4caea8a 1636 if (!tp->ucopy.dma_chan && tp->ucopy.pinned_list)
a2bd1140 1637 tp->ucopy.dma_chan = net_dma_find_channel();
1ab1457c
YH
1638 if (tp->ucopy.dma_chan)
1639 ret = tcp_v6_do_rcv(sk, skb);
1640 else
1a2449a8
CL
1641#endif
1642 {
1643 if (!tcp_prequeue(sk, skb))
1644 ret = tcp_v6_do_rcv(sk, skb);
1645 }
da882c1f
ED
1646 } else if (unlikely(sk_add_backlog(sk, skb,
1647 sk->sk_rcvbuf + sk->sk_sndbuf))) {
6b03a53a 1648 bh_unlock_sock(sk);
6cce09f8 1649 NET_INC_STATS_BH(net, LINUX_MIB_TCPBACKLOGDROP);
6b03a53a
ZY
1650 goto discard_and_relse;
1651 }
1da177e4
LT
1652 bh_unlock_sock(sk);
1653
1654 sock_put(sk);
1655 return ret ? -1 : 0;
1656
1657no_tcp_socket:
1658 if (!xfrm6_policy_check(NULL, XFRM_POLICY_IN, skb))
1659 goto discard_it;
1660
1661 if (skb->len < (th->doff<<2) || tcp_checksum_complete(skb)) {
1662bad_packet:
63231bdd 1663 TCP_INC_STATS_BH(net, TCP_MIB_INERRS);
1da177e4 1664 } else {
cfb6eeb4 1665 tcp_v6_send_reset(NULL, skb);
1da177e4
LT
1666 }
1667
1668discard_it:
1669
1670 /*
1671 * Discard frame
1672 */
1673
1674 kfree_skb(skb);
1675 return 0;
1676
1677discard_and_relse:
1678 sock_put(sk);
1679 goto discard_it;
1680
1681do_time_wait:
1682 if (!xfrm6_policy_check(NULL, XFRM_POLICY_IN, skb)) {
9469c7b4 1683 inet_twsk_put(inet_twsk(sk));
1da177e4
LT
1684 goto discard_it;
1685 }
1686
1687 if (skb->len < (th->doff<<2) || tcp_checksum_complete(skb)) {
63231bdd 1688 TCP_INC_STATS_BH(net, TCP_MIB_INERRS);
9469c7b4 1689 inet_twsk_put(inet_twsk(sk));
1da177e4
LT
1690 goto discard_it;
1691 }
1692
9469c7b4 1693 switch (tcp_timewait_state_process(inet_twsk(sk), skb, th)) {
1da177e4
LT
1694 case TCP_TW_SYN:
1695 {
1696 struct sock *sk2;
1697
c346dca1 1698 sk2 = inet6_lookup_listener(dev_net(skb->dev), &tcp_hashinfo,
0660e03f 1699 &ipv6_hdr(skb)->daddr,
505cbfc5 1700 ntohs(th->dest), inet6_iif(skb));
1da177e4 1701 if (sk2 != NULL) {
295ff7ed
ACM
1702 struct inet_timewait_sock *tw = inet_twsk(sk);
1703 inet_twsk_deschedule(tw, &tcp_death_row);
1704 inet_twsk_put(tw);
1da177e4
LT
1705 sk = sk2;
1706 goto process;
1707 }
1708 /* Fall through to ACK */
1709 }
1710 case TCP_TW_ACK:
1711 tcp_v6_timewait_ack(sk, skb);
1712 break;
1713 case TCP_TW_RST:
1714 goto no_tcp_socket;
1715 case TCP_TW_SUCCESS:;
1716 }
1717 goto discard_it;
1718}
1719
c7109986
ED
1720static void tcp_v6_early_demux(struct sk_buff *skb)
1721{
1722 const struct ipv6hdr *hdr;
1723 const struct tcphdr *th;
1724 struct sock *sk;
1725
1726 if (skb->pkt_type != PACKET_HOST)
1727 return;
1728
1729 if (!pskb_may_pull(skb, skb_transport_offset(skb) + sizeof(struct tcphdr)))
1730 return;
1731
1732 hdr = ipv6_hdr(skb);
1733 th = tcp_hdr(skb);
1734
1735 if (th->doff < sizeof(struct tcphdr) / 4)
1736 return;
1737
1738 sk = __inet6_lookup_established(dev_net(skb->dev), &tcp_hashinfo,
1739 &hdr->saddr, th->source,
1740 &hdr->daddr, ntohs(th->dest),
1741 inet6_iif(skb));
1742 if (sk) {
1743 skb->sk = sk;
1744 skb->destructor = sock_edemux;
1745 if (sk->sk_state != TCP_TIME_WAIT) {
1746 struct dst_entry *dst = sk->sk_rx_dst;
f3f12135 1747
c7109986 1748 if (dst)
5d299f3d 1749 dst = dst_check(dst, inet6_sk(sk)->rx_dst_cookie);
c7109986 1750 if (dst &&
f3f12135 1751 inet_sk(sk)->rx_dst_ifindex == skb->skb_iif)
c7109986
ED
1752 skb_dst_set_noref(skb, dst);
1753 }
1754 }
1755}
1756
ccb7c410
DM
1757static struct timewait_sock_ops tcp6_timewait_sock_ops = {
1758 .twsk_obj_size = sizeof(struct tcp6_timewait_sock),
1759 .twsk_unique = tcp_twsk_unique,
1760 .twsk_destructor= tcp_twsk_destructor,
ccb7c410
DM
1761};
1762
3b401a81 1763static const struct inet_connection_sock_af_ops ipv6_specific = {
543d9cfe
ACM
1764 .queue_xmit = inet6_csk_xmit,
1765 .send_check = tcp_v6_send_check,
1766 .rebuild_header = inet6_sk_rebuild_header,
5d299f3d 1767 .sk_rx_dst_set = inet6_sk_rx_dst_set,
543d9cfe
ACM
1768 .conn_request = tcp_v6_conn_request,
1769 .syn_recv_sock = tcp_v6_syn_recv_sock,
543d9cfe 1770 .net_header_len = sizeof(struct ipv6hdr),
67469601 1771 .net_frag_header_len = sizeof(struct frag_hdr),
543d9cfe
ACM
1772 .setsockopt = ipv6_setsockopt,
1773 .getsockopt = ipv6_getsockopt,
1774 .addr2sockaddr = inet6_csk_addr2sockaddr,
1775 .sockaddr_len = sizeof(struct sockaddr_in6),
ab1e0a13 1776 .bind_conflict = inet6_csk_bind_conflict,
3fdadf7d 1777#ifdef CONFIG_COMPAT
543d9cfe
ACM
1778 .compat_setsockopt = compat_ipv6_setsockopt,
1779 .compat_getsockopt = compat_ipv6_getsockopt,
3fdadf7d 1780#endif
1da177e4
LT
1781};
1782
cfb6eeb4 1783#ifdef CONFIG_TCP_MD5SIG
b2e4b3de 1784static const struct tcp_sock_af_ops tcp_sock_ipv6_specific = {
cfb6eeb4 1785 .md5_lookup = tcp_v6_md5_lookup,
49a72dfb 1786 .calc_md5_hash = tcp_v6_md5_hash_skb,
cfb6eeb4 1787 .md5_parse = tcp_v6_parse_md5_keys,
cfb6eeb4 1788};
a928630a 1789#endif
cfb6eeb4 1790
1da177e4
LT
1791/*
1792 * TCP over IPv4 via INET6 API
1793 */
1794
3b401a81 1795static const struct inet_connection_sock_af_ops ipv6_mapped = {
543d9cfe
ACM
1796 .queue_xmit = ip_queue_xmit,
1797 .send_check = tcp_v4_send_check,
1798 .rebuild_header = inet_sk_rebuild_header,
63d02d15 1799 .sk_rx_dst_set = inet_sk_rx_dst_set,
543d9cfe
ACM
1800 .conn_request = tcp_v6_conn_request,
1801 .syn_recv_sock = tcp_v6_syn_recv_sock,
543d9cfe
ACM
1802 .net_header_len = sizeof(struct iphdr),
1803 .setsockopt = ipv6_setsockopt,
1804 .getsockopt = ipv6_getsockopt,
1805 .addr2sockaddr = inet6_csk_addr2sockaddr,
1806 .sockaddr_len = sizeof(struct sockaddr_in6),
ab1e0a13 1807 .bind_conflict = inet6_csk_bind_conflict,
3fdadf7d 1808#ifdef CONFIG_COMPAT
543d9cfe
ACM
1809 .compat_setsockopt = compat_ipv6_setsockopt,
1810 .compat_getsockopt = compat_ipv6_getsockopt,
3fdadf7d 1811#endif
1da177e4
LT
1812};
1813
cfb6eeb4 1814#ifdef CONFIG_TCP_MD5SIG
b2e4b3de 1815static const struct tcp_sock_af_ops tcp_sock_ipv6_mapped_specific = {
cfb6eeb4 1816 .md5_lookup = tcp_v4_md5_lookup,
49a72dfb 1817 .calc_md5_hash = tcp_v4_md5_hash_skb,
cfb6eeb4 1818 .md5_parse = tcp_v6_parse_md5_keys,
cfb6eeb4 1819};
a928630a 1820#endif
cfb6eeb4 1821
1da177e4
LT
1822/* NOTE: A lot of things set to zero explicitly by call to
1823 * sk_alloc() so need not be done here.
1824 */
1825static int tcp_v6_init_sock(struct sock *sk)
1826{
6687e988 1827 struct inet_connection_sock *icsk = inet_csk(sk);
1da177e4 1828
900f65d3 1829 tcp_init_sock(sk);
1da177e4 1830
8292a17a 1831 icsk->icsk_af_ops = &ipv6_specific;
1da177e4 1832
cfb6eeb4 1833#ifdef CONFIG_TCP_MD5SIG
ac807fa8 1834 tcp_sk(sk)->af_specific = &tcp_sock_ipv6_specific;
cfb6eeb4
YH
1835#endif
1836
1da177e4
LT
1837 return 0;
1838}
1839
7d06b2e0 1840static void tcp_v6_destroy_sock(struct sock *sk)
1da177e4 1841{
1da177e4 1842 tcp_v4_destroy_sock(sk);
7d06b2e0 1843 inet6_destroy_sock(sk);
1da177e4
LT
1844}
1845
952a10be 1846#ifdef CONFIG_PROC_FS
1da177e4 1847/* Proc filesystem TCPv6 sock list dumping. */
1ab1457c 1848static void get_openreq6(struct seq_file *seq,
a7cb5a49 1849 const struct sock *sk, struct request_sock *req, int i, kuid_t uid)
1da177e4 1850{
1da177e4 1851 int ttd = req->expires - jiffies;
b71d1d42
ED
1852 const struct in6_addr *src = &inet6_rsk(req)->loc_addr;
1853 const struct in6_addr *dest = &inet6_rsk(req)->rmt_addr;
1da177e4
LT
1854
1855 if (ttd < 0)
1856 ttd = 0;
1857
1da177e4
LT
1858 seq_printf(seq,
1859 "%4d: %08X%08X%08X%08X:%04X %08X%08X%08X%08X:%04X "
71338aa7 1860 "%02X %08X:%08X %02X:%08lX %08X %5d %8d %d %d %pK\n",
1da177e4
LT
1861 i,
1862 src->s6_addr32[0], src->s6_addr32[1],
1863 src->s6_addr32[2], src->s6_addr32[3],
fd507037 1864 ntohs(inet_rsk(req)->loc_port),
1da177e4
LT
1865 dest->s6_addr32[0], dest->s6_addr32[1],
1866 dest->s6_addr32[2], dest->s6_addr32[3],
2e6599cb 1867 ntohs(inet_rsk(req)->rmt_port),
1da177e4
LT
1868 TCP_SYN_RECV,
1869 0,0, /* could print option size, but that is af dependent. */
1ab1457c
YH
1870 1, /* timers active (only the expire timer) */
1871 jiffies_to_clock_t(ttd),
e6c022a4 1872 req->num_timeout,
a7cb5a49 1873 from_kuid_munged(seq_user_ns(seq), uid),
1ab1457c 1874 0, /* non standard timer */
1da177e4
LT
1875 0, /* open_requests have no inode */
1876 0, req);
1877}
1878
1879static void get_tcp6_sock(struct seq_file *seq, struct sock *sp, int i)
1880{
b71d1d42 1881 const struct in6_addr *dest, *src;
1da177e4
LT
1882 __u16 destp, srcp;
1883 int timer_active;
1884 unsigned long timer_expires;
cf533ea5
ED
1885 const struct inet_sock *inet = inet_sk(sp);
1886 const struct tcp_sock *tp = tcp_sk(sp);
463c84b9 1887 const struct inet_connection_sock *icsk = inet_csk(sp);
cf533ea5 1888 const struct ipv6_pinfo *np = inet6_sk(sp);
1da177e4
LT
1889
1890 dest = &np->daddr;
1891 src = &np->rcv_saddr;
c720c7e8
ED
1892 destp = ntohs(inet->inet_dport);
1893 srcp = ntohs(inet->inet_sport);
463c84b9
ACM
1894
1895 if (icsk->icsk_pending == ICSK_TIME_RETRANS) {
1da177e4 1896 timer_active = 1;
463c84b9
ACM
1897 timer_expires = icsk->icsk_timeout;
1898 } else if (icsk->icsk_pending == ICSK_TIME_PROBE0) {
1da177e4 1899 timer_active = 4;
463c84b9 1900 timer_expires = icsk->icsk_timeout;
1da177e4
LT
1901 } else if (timer_pending(&sp->sk_timer)) {
1902 timer_active = 2;
1903 timer_expires = sp->sk_timer.expires;
1904 } else {
1905 timer_active = 0;
1906 timer_expires = jiffies;
1907 }
1908
1909 seq_printf(seq,
1910 "%4d: %08X%08X%08X%08X:%04X %08X%08X%08X%08X:%04X "
71338aa7 1911 "%02X %08X:%08X %02X:%08lX %08X %5d %8d %lu %d %pK %lu %lu %u %u %d\n",
1da177e4
LT
1912 i,
1913 src->s6_addr32[0], src->s6_addr32[1],
1914 src->s6_addr32[2], src->s6_addr32[3], srcp,
1915 dest->s6_addr32[0], dest->s6_addr32[1],
1916 dest->s6_addr32[2], dest->s6_addr32[3], destp,
1ab1457c 1917 sp->sk_state,
47da8ee6
SS
1918 tp->write_seq-tp->snd_una,
1919 (sp->sk_state == TCP_LISTEN) ? sp->sk_ack_backlog : (tp->rcv_nxt - tp->copied_seq),
1da177e4 1920 timer_active,
a399a805 1921 jiffies_delta_to_clock_t(timer_expires - jiffies),
463c84b9 1922 icsk->icsk_retransmits,
a7cb5a49 1923 from_kuid_munged(seq_user_ns(seq), sock_i_uid(sp)),
6687e988 1924 icsk->icsk_probes_out,
1da177e4
LT
1925 sock_i_ino(sp),
1926 atomic_read(&sp->sk_refcnt), sp,
7be87351
SH
1927 jiffies_to_clock_t(icsk->icsk_rto),
1928 jiffies_to_clock_t(icsk->icsk_ack.ato),
463c84b9 1929 (icsk->icsk_ack.quick << 1 ) | icsk->icsk_ack.pingpong,
0b6a05c1
IJ
1930 tp->snd_cwnd,
1931 tcp_in_initial_slowstart(tp) ? -1 : tp->snd_ssthresh
1da177e4
LT
1932 );
1933}
1934
1ab1457c 1935static void get_timewait6_sock(struct seq_file *seq,
8feaf0c0 1936 struct inet_timewait_sock *tw, int i)
1da177e4 1937{
b71d1d42 1938 const struct in6_addr *dest, *src;
1da177e4 1939 __u16 destp, srcp;
cf533ea5 1940 const struct inet6_timewait_sock *tw6 = inet6_twsk((struct sock *)tw);
a399a805 1941 long delta = tw->tw_ttd - jiffies;
1da177e4 1942
0fa1a53e
ACM
1943 dest = &tw6->tw_v6_daddr;
1944 src = &tw6->tw_v6_rcv_saddr;
1da177e4
LT
1945 destp = ntohs(tw->tw_dport);
1946 srcp = ntohs(tw->tw_sport);
1947
1948 seq_printf(seq,
1949 "%4d: %08X%08X%08X%08X:%04X %08X%08X%08X%08X:%04X "
71338aa7 1950 "%02X %08X:%08X %02X:%08lX %08X %5d %8d %d %d %pK\n",
1da177e4
LT
1951 i,
1952 src->s6_addr32[0], src->s6_addr32[1],
1953 src->s6_addr32[2], src->s6_addr32[3], srcp,
1954 dest->s6_addr32[0], dest->s6_addr32[1],
1955 dest->s6_addr32[2], dest->s6_addr32[3], destp,
1956 tw->tw_substate, 0, 0,
a399a805 1957 3, jiffies_delta_to_clock_t(delta), 0, 0, 0, 0,
1da177e4
LT
1958 atomic_read(&tw->tw_refcnt), tw);
1959}
1960
1da177e4
LT
1961static int tcp6_seq_show(struct seq_file *seq, void *v)
1962{
1963 struct tcp_iter_state *st;
1964
1965 if (v == SEQ_START_TOKEN) {
1966 seq_puts(seq,
1967 " sl "
1968 "local_address "
1969 "remote_address "
1970 "st tx_queue rx_queue tr tm->when retrnsmt"
1971 " uid timeout inode\n");
1972 goto out;
1973 }
1974 st = seq->private;
1975
1976 switch (st->state) {
1977 case TCP_SEQ_STATE_LISTENING:
1978 case TCP_SEQ_STATE_ESTABLISHED:
1979 get_tcp6_sock(seq, v, st->num);
1980 break;
1981 case TCP_SEQ_STATE_OPENREQ:
1982 get_openreq6(seq, st->syn_wait_sk, v, st->num, st->uid);
1983 break;
1984 case TCP_SEQ_STATE_TIME_WAIT:
1985 get_timewait6_sock(seq, v, st->num);
1986 break;
1987 }
1988out:
1989 return 0;
1990}
1991
73cb88ec
AV
1992static const struct file_operations tcp6_afinfo_seq_fops = {
1993 .owner = THIS_MODULE,
1994 .open = tcp_seq_open,
1995 .read = seq_read,
1996 .llseek = seq_lseek,
1997 .release = seq_release_net
1998};
1999
1da177e4 2000static struct tcp_seq_afinfo tcp6_seq_afinfo = {
1da177e4
LT
2001 .name = "tcp6",
2002 .family = AF_INET6,
73cb88ec 2003 .seq_fops = &tcp6_afinfo_seq_fops,
9427c4b3
DL
2004 .seq_ops = {
2005 .show = tcp6_seq_show,
2006 },
1da177e4
LT
2007};
2008
2c8c1e72 2009int __net_init tcp6_proc_init(struct net *net)
1da177e4 2010{
6f8b13bc 2011 return tcp_proc_register(net, &tcp6_seq_afinfo);
1da177e4
LT
2012}
2013
6f8b13bc 2014void tcp6_proc_exit(struct net *net)
1da177e4 2015{
6f8b13bc 2016 tcp_proc_unregister(net, &tcp6_seq_afinfo);
1da177e4
LT
2017}
2018#endif
2019
2020struct proto tcpv6_prot = {
2021 .name = "TCPv6",
2022 .owner = THIS_MODULE,
2023 .close = tcp_close,
2024 .connect = tcp_v6_connect,
2025 .disconnect = tcp_disconnect,
463c84b9 2026 .accept = inet_csk_accept,
1da177e4
LT
2027 .ioctl = tcp_ioctl,
2028 .init = tcp_v6_init_sock,
2029 .destroy = tcp_v6_destroy_sock,
2030 .shutdown = tcp_shutdown,
2031 .setsockopt = tcp_setsockopt,
2032 .getsockopt = tcp_getsockopt,
1da177e4 2033 .recvmsg = tcp_recvmsg,
7ba42910
CG
2034 .sendmsg = tcp_sendmsg,
2035 .sendpage = tcp_sendpage,
1da177e4 2036 .backlog_rcv = tcp_v6_do_rcv,
46d3ceab 2037 .release_cb = tcp_release_cb,
563d34d0 2038 .mtu_reduced = tcp_v6_mtu_reduced,
1da177e4 2039 .hash = tcp_v6_hash,
ab1e0a13
ACM
2040 .unhash = inet_unhash,
2041 .get_port = inet_csk_get_port,
1da177e4
LT
2042 .enter_memory_pressure = tcp_enter_memory_pressure,
2043 .sockets_allocated = &tcp_sockets_allocated,
2044 .memory_allocated = &tcp_memory_allocated,
2045 .memory_pressure = &tcp_memory_pressure,
0a5578cf 2046 .orphan_count = &tcp_orphan_count,
1da177e4
LT
2047 .sysctl_wmem = sysctl_tcp_wmem,
2048 .sysctl_rmem = sysctl_tcp_rmem,
2049 .max_header = MAX_TCP_HEADER,
2050 .obj_size = sizeof(struct tcp6_sock),
3ab5aee7 2051 .slab_flags = SLAB_DESTROY_BY_RCU,
6d6ee43e 2052 .twsk_prot = &tcp6_timewait_sock_ops,
60236fdd 2053 .rsk_prot = &tcp6_request_sock_ops,
39d8cda7 2054 .h.hashinfo = &tcp_hashinfo,
7ba42910 2055 .no_autobind = true,
543d9cfe
ACM
2056#ifdef CONFIG_COMPAT
2057 .compat_setsockopt = compat_tcp_setsockopt,
2058 .compat_getsockopt = compat_tcp_getsockopt,
2059#endif
c255a458 2060#ifdef CONFIG_MEMCG_KMEM
d1a4c0b3
GC
2061 .proto_cgroup = tcp_proto_cgroup,
2062#endif
1da177e4
LT
2063};
2064
41135cc8 2065static const struct inet6_protocol tcpv6_protocol = {
c7109986 2066 .early_demux = tcp_v6_early_demux,
1da177e4
LT
2067 .handler = tcp_v6_rcv,
2068 .err_handler = tcp_v6_err,
a430a43d 2069 .gso_send_check = tcp_v6_gso_send_check,
adcfc7d0 2070 .gso_segment = tcp_tso_segment,
684f2176
HX
2071 .gro_receive = tcp6_gro_receive,
2072 .gro_complete = tcp6_gro_complete,
1da177e4
LT
2073 .flags = INET6_PROTO_NOPOLICY|INET6_PROTO_FINAL,
2074};
2075
8ca896cf
VY
2076static const struct net_offload tcpv6_offload = {
2077 .gso_send_check = tcp_v6_gso_send_check,
2078 .gso_segment = tcp_tso_segment,
2079 .gro_receive = tcp6_gro_receive,
2080 .gro_complete = tcp6_gro_complete,
2081};
2082
1da177e4
LT
2083static struct inet_protosw tcpv6_protosw = {
2084 .type = SOCK_STREAM,
2085 .protocol = IPPROTO_TCP,
2086 .prot = &tcpv6_prot,
2087 .ops = &inet6_stream_ops,
1da177e4 2088 .no_check = 0,
d83d8461
ACM
2089 .flags = INET_PROTOSW_PERMANENT |
2090 INET_PROTOSW_ICSK,
1da177e4
LT
2091};
2092
2c8c1e72 2093static int __net_init tcpv6_net_init(struct net *net)
93ec926b 2094{
5677242f
DL
2095 return inet_ctl_sock_create(&net->ipv6.tcp_sk, PF_INET6,
2096 SOCK_RAW, IPPROTO_TCP, net);
93ec926b
DL
2097}
2098
2c8c1e72 2099static void __net_exit tcpv6_net_exit(struct net *net)
93ec926b 2100{
5677242f 2101 inet_ctl_sock_destroy(net->ipv6.tcp_sk);
b099ce26
EB
2102}
2103
2c8c1e72 2104static void __net_exit tcpv6_net_exit_batch(struct list_head *net_exit_list)
b099ce26
EB
2105{
2106 inet_twsk_purge(&tcp_hashinfo, &tcp_death_row, AF_INET6);
93ec926b
DL
2107}
2108
2109static struct pernet_operations tcpv6_net_ops = {
b099ce26
EB
2110 .init = tcpv6_net_init,
2111 .exit = tcpv6_net_exit,
2112 .exit_batch = tcpv6_net_exit_batch,
93ec926b
DL
2113};
2114
7f4e4868 2115int __init tcpv6_init(void)
1da177e4 2116{
7f4e4868
DL
2117 int ret;
2118
2119 ret = inet6_add_protocol(&tcpv6_protocol, IPPROTO_TCP);
2120 if (ret)
2121 goto out;
2122
1da177e4 2123 /* register inet6 protocol */
7f4e4868
DL
2124 ret = inet6_register_protosw(&tcpv6_protosw);
2125 if (ret)
2126 goto out_tcpv6_protocol;
2127
93ec926b 2128 ret = register_pernet_subsys(&tcpv6_net_ops);
7f4e4868
DL
2129 if (ret)
2130 goto out_tcpv6_protosw;
2131out:
2132 return ret;
ae0f7d5f 2133
7f4e4868
DL
2134out_tcpv6_protocol:
2135 inet6_del_protocol(&tcpv6_protocol, IPPROTO_TCP);
2136out_tcpv6_protosw:
2137 inet6_unregister_protosw(&tcpv6_protosw);
2138 goto out;
2139}
2140
09f7709f 2141void tcpv6_exit(void)
7f4e4868 2142{
93ec926b 2143 unregister_pernet_subsys(&tcpv6_net_ops);
7f4e4868
DL
2144 inet6_unregister_protosw(&tcpv6_protosw);
2145 inet6_del_protocol(&tcpv6_protocol, IPPROTO_TCP);
1da177e4 2146}
This page took 1.625875 seconds and 5 git commands to generate.