xref: /linux/include/net/netns/ipv6.h (revision de8c12110a130337c8e7e7b8250de0580e644dee)
1 /* SPDX-License-Identifier: GPL-2.0 */
2 /*
3  * ipv6 in net namespaces
4  */
5 
6 #include <net/inet_frag.h>
7 
8 #ifndef __NETNS_IPV6_H__
9 #define __NETNS_IPV6_H__
10 #include <net/dst_ops.h>
11 #include <uapi/linux/icmpv6.h>
12 
13 struct ctl_table_header;
14 
15 struct netns_sysctl_ipv6 {
16 #ifdef CONFIG_SYSCTL
17 	struct ctl_table_header *hdr;
18 	struct ctl_table_header *route_hdr;
19 	struct ctl_table_header *icmp_hdr;
20 	struct ctl_table_header *frags_hdr;
21 	struct ctl_table_header *xfrm6_hdr;
22 #endif
23 	int flush_delay;
24 	int ip6_rt_max_size;
25 	int ip6_rt_gc_min_interval;
26 	int ip6_rt_gc_timeout;
27 	int ip6_rt_gc_interval;
28 	int ip6_rt_gc_elasticity;
29 	int ip6_rt_mtu_expires;
30 	int ip6_rt_min_advmss;
31 	u8 bindv6only;
32 	u8 multipath_hash_policy;
33 	u8 flowlabel_consistency;
34 	u8 auto_flowlabels;
35 	int icmpv6_time;
36 	u8 icmpv6_echo_ignore_all;
37 	u8 icmpv6_echo_ignore_multicast;
38 	u8 icmpv6_echo_ignore_anycast;
39 	DECLARE_BITMAP(icmpv6_ratemask, ICMPV6_MSG_MAX + 1);
40 	unsigned long *icmpv6_ratemask_ptr;
41 	u8 anycast_src_echo_reply;
42 	u8 ip_nonlocal_bind;
43 	u8 fwmark_reflect;
44 	u8 flowlabel_state_ranges;
45 	int idgen_retries;
46 	int idgen_delay;
47 	int flowlabel_reflect;
48 	int max_dst_opts_cnt;
49 	int max_hbh_opts_cnt;
50 	int max_dst_opts_len;
51 	int max_hbh_opts_len;
52 	int seg6_flowlabel;
53 	bool skip_notify_on_dev_down;
54 	u8 fib_notify_on_flag_change;
55 };
56 
57 struct netns_ipv6 {
58 	/* Keep ip6_dst_ops at the beginning of netns_sysctl_ipv6 */
59 	struct dst_ops		ip6_dst_ops;
60 
61 	struct netns_sysctl_ipv6 sysctl;
62 	struct ipv6_devconf	*devconf_all;
63 	struct ipv6_devconf	*devconf_dflt;
64 	struct inet_peer_base	*peers;
65 	struct fqdir		*fqdir;
66 #ifdef CONFIG_NETFILTER
67 	struct xt_table		*ip6table_filter;
68 	struct xt_table		*ip6table_mangle;
69 	struct xt_table		*ip6table_raw;
70 #ifdef CONFIG_SECURITY
71 	struct xt_table		*ip6table_security;
72 #endif
73 	struct xt_table		*ip6table_nat;
74 #endif
75 	struct fib6_info	*fib6_null_entry;
76 	struct rt6_info		*ip6_null_entry;
77 	struct rt6_statistics   *rt6_stats;
78 	struct timer_list       ip6_fib_timer;
79 	struct hlist_head       *fib_table_hash;
80 	struct fib6_table       *fib6_main_tbl;
81 	struct list_head	fib6_walkers;
82 	rwlock_t		fib6_walker_lock;
83 	spinlock_t		fib6_gc_lock;
84 	unsigned int		 ip6_rt_gc_expire;
85 	unsigned long		 ip6_rt_last_gc;
86 #ifdef CONFIG_IPV6_MULTIPLE_TABLES
87 	unsigned int		fib6_rules_require_fldissect;
88 	bool			fib6_has_custom_rules;
89 #ifdef CONFIG_IPV6_SUBTREES
90 	unsigned int		fib6_routes_require_src;
91 #endif
92 	struct rt6_info         *ip6_prohibit_entry;
93 	struct rt6_info         *ip6_blk_hole_entry;
94 	struct fib6_table       *fib6_local_tbl;
95 	struct fib_rules_ops    *fib6_rules_ops;
96 #endif
97 	struct sock * __percpu	*icmp_sk;
98 	struct sock             *ndisc_sk;
99 	struct sock             *tcp_sk;
100 	struct sock             *igmp_sk;
101 	struct sock		*mc_autojoin_sk;
102 #ifdef CONFIG_IPV6_MROUTE
103 #ifndef CONFIG_IPV6_MROUTE_MULTIPLE_TABLES
104 	struct mr_table		*mrt6;
105 #else
106 	struct list_head	mr6_tables;
107 	struct fib_rules_ops	*mr6_rules_ops;
108 #endif
109 #endif
110 	atomic_t		dev_addr_genid;
111 	atomic_t		fib6_sernum;
112 	struct seg6_pernet_data *seg6_data;
113 	struct fib_notifier_ops	*notifier_ops;
114 	struct fib_notifier_ops	*ip6mr_notifier_ops;
115 	unsigned int ipmr_seq; /* protected by rtnl_mutex */
116 	struct {
117 		struct hlist_head head;
118 		spinlock_t	lock;
119 		u32		seq;
120 	} ip6addrlbl_table;
121 };
122 
123 #if IS_ENABLED(CONFIG_NF_DEFRAG_IPV6)
124 struct netns_nf_frag {
125 	struct fqdir	*fqdir;
126 };
127 #endif
128 
129 #endif
130