xref: /linux/net/core/xdp.c (revision 3186a8e55ae3428ec1e06af09075e20885376e4e)
1 // SPDX-License-Identifier: GPL-2.0-only
2 /* net/core/xdp.c
3  *
4  * Copyright (c) 2017 Jesper Dangaard Brouer, Red Hat Inc.
5  */
6 #include <linux/bpf.h>
7 #include <linux/btf.h>
8 #include <linux/btf_ids.h>
9 #include <linux/filter.h>
10 #include <linux/types.h>
11 #include <linux/mm.h>
12 #include <linux/netdevice.h>
13 #include <linux/slab.h>
14 #include <linux/idr.h>
15 #include <linux/rhashtable.h>
16 #include <linux/bug.h>
17 #include <net/page_pool/helpers.h>
18 
19 #include <net/hotdata.h>
20 #include <net/netdev_lock.h>
21 #include <net/xdp.h>
22 #include <net/xdp_priv.h> /* struct xdp_mem_allocator */
23 #include <trace/events/xdp.h>
24 #include <net/xdp_sock_drv.h>
25 
26 #define REG_STATE_NEW		0x0
27 #define REG_STATE_REGISTERED	0x1
28 #define REG_STATE_UNREGISTERED	0x2
29 #define REG_STATE_UNUSED	0x3
30 
31 static DEFINE_IDA(mem_id_pool);
32 static DEFINE_MUTEX(mem_id_lock);
33 #define MEM_ID_MAX 0xFFFE
34 #define MEM_ID_MIN 1
35 static int mem_id_next = MEM_ID_MIN;
36 
37 static bool mem_id_init; /* false */
38 static struct rhashtable *mem_id_ht;
39 
40 static u32 xdp_mem_id_hashfn(const void *data, u32 len, u32 seed)
41 {
42 	const u32 *k = data;
43 	const u32 key = *k;
44 
45 	BUILD_BUG_ON(sizeof_field(struct xdp_mem_allocator, mem.id)
46 		     != sizeof(u32));
47 
48 	/* Use cyclic increasing ID as direct hash key */
49 	return key;
50 }
51 
52 static int xdp_mem_id_cmp(struct rhashtable_compare_arg *arg,
53 			  const void *ptr)
54 {
55 	const struct xdp_mem_allocator *xa = ptr;
56 	u32 mem_id = *(u32 *)arg->key;
57 
58 	return xa->mem.id != mem_id;
59 }
60 
61 static const struct rhashtable_params mem_id_rht_params = {
62 	.nelem_hint = 64,
63 	.head_offset = offsetof(struct xdp_mem_allocator, node),
64 	.key_offset  = offsetof(struct xdp_mem_allocator, mem.id),
65 	.key_len = sizeof_field(struct xdp_mem_allocator, mem.id),
66 	.max_size = MEM_ID_MAX,
67 	.min_size = 8,
68 	.automatic_shrinking = true,
69 	.hashfn    = xdp_mem_id_hashfn,
70 	.obj_cmpfn = xdp_mem_id_cmp,
71 };
72 
73 static void __xdp_mem_allocator_rcu_free(struct rcu_head *rcu)
74 {
75 	struct xdp_mem_allocator *xa;
76 
77 	xa = container_of(rcu, struct xdp_mem_allocator, rcu);
78 
79 	/* Allow this ID to be reused */
80 	ida_free(&mem_id_pool, xa->mem.id);
81 
82 	kfree(xa);
83 }
84 
85 static void mem_xa_remove(struct xdp_mem_allocator *xa)
86 {
87 	trace_mem_disconnect(xa);
88 
89 	if (!rhashtable_remove_fast(mem_id_ht, &xa->node, mem_id_rht_params))
90 		call_rcu(&xa->rcu, __xdp_mem_allocator_rcu_free);
91 }
92 
93 static void mem_allocator_disconnect(void *allocator)
94 {
95 	struct xdp_mem_allocator *xa;
96 	struct rhashtable_iter iter;
97 
98 	mutex_lock(&mem_id_lock);
99 
100 	rhashtable_walk_enter(mem_id_ht, &iter);
101 	do {
102 		rhashtable_walk_start(&iter);
103 
104 		while ((xa = rhashtable_walk_next(&iter)) && !IS_ERR(xa)) {
105 			if (xa->allocator == allocator)
106 				mem_xa_remove(xa);
107 		}
108 
109 		rhashtable_walk_stop(&iter);
110 
111 	} while (xa == ERR_PTR(-EAGAIN));
112 	rhashtable_walk_exit(&iter);
113 
114 	mutex_unlock(&mem_id_lock);
115 }
116 
117 void xdp_unreg_mem_model(struct xdp_mem_info *mem)
118 {
119 	struct xdp_mem_allocator *xa;
120 	int type = mem->type;
121 	int id = mem->id;
122 
123 	/* Reset mem info to defaults */
124 	mem->id = 0;
125 	mem->type = 0;
126 
127 	if (id == 0)
128 		return;
129 
130 	if (type == MEM_TYPE_PAGE_POOL) {
131 		xa = rhashtable_lookup_fast(mem_id_ht, &id, mem_id_rht_params);
132 		page_pool_destroy(xa->page_pool);
133 	}
134 }
135 EXPORT_SYMBOL_GPL(xdp_unreg_mem_model);
136 
137 void xdp_rxq_info_unreg_mem_model(struct xdp_rxq_info *xdp_rxq)
138 {
139 	if (xdp_rxq->reg_state != REG_STATE_REGISTERED) {
140 		WARN(1, "Missing register, driver bug");
141 		return;
142 	}
143 
144 	xdp_unreg_mem_model(&xdp_rxq->mem);
145 }
146 EXPORT_SYMBOL_GPL(xdp_rxq_info_unreg_mem_model);
147 
148 void xdp_rxq_info_unreg(struct xdp_rxq_info *xdp_rxq)
149 {
150 	/* Simplify driver cleanup code paths, allow unreg "unused" */
151 	if (xdp_rxq->reg_state == REG_STATE_UNUSED)
152 		return;
153 
154 	xdp_rxq_info_unreg_mem_model(xdp_rxq);
155 
156 	xdp_rxq->reg_state = REG_STATE_UNREGISTERED;
157 	xdp_rxq->dev = NULL;
158 }
159 EXPORT_SYMBOL_GPL(xdp_rxq_info_unreg);
160 
161 static void xdp_rxq_info_init(struct xdp_rxq_info *xdp_rxq)
162 {
163 	memset(xdp_rxq, 0, sizeof(*xdp_rxq));
164 }
165 
166 /* Returns 0 on success, negative on failure */
167 int __xdp_rxq_info_reg(struct xdp_rxq_info *xdp_rxq,
168 		       struct net_device *dev, u32 queue_index,
169 		       unsigned int napi_id, u32 frag_size)
170 {
171 	if (!dev) {
172 		WARN(1, "Missing net_device from driver");
173 		return -ENODEV;
174 	}
175 
176 	if (xdp_rxq->reg_state == REG_STATE_UNUSED) {
177 		WARN(1, "Driver promised not to register this");
178 		return -EINVAL;
179 	}
180 
181 	if (xdp_rxq->reg_state == REG_STATE_REGISTERED) {
182 		WARN(1, "Missing unregister, handled but fix driver");
183 		xdp_rxq_info_unreg(xdp_rxq);
184 	}
185 
186 	/* State either UNREGISTERED or NEW */
187 	xdp_rxq_info_init(xdp_rxq);
188 	xdp_rxq->dev = dev;
189 	xdp_rxq->queue_index = queue_index;
190 	xdp_rxq->frag_size = frag_size;
191 
192 	xdp_rxq->reg_state = REG_STATE_REGISTERED;
193 	return 0;
194 }
195 EXPORT_SYMBOL_GPL(__xdp_rxq_info_reg);
196 
197 void xdp_rxq_info_unused(struct xdp_rxq_info *xdp_rxq)
198 {
199 	xdp_rxq->reg_state = REG_STATE_UNUSED;
200 }
201 EXPORT_SYMBOL_GPL(xdp_rxq_info_unused);
202 
203 bool xdp_rxq_info_is_reg(struct xdp_rxq_info *xdp_rxq)
204 {
205 	return (xdp_rxq->reg_state == REG_STATE_REGISTERED);
206 }
207 EXPORT_SYMBOL_GPL(xdp_rxq_info_is_reg);
208 
209 static int __mem_id_init_hash_table(void)
210 {
211 	struct rhashtable *rht;
212 	int ret;
213 
214 	if (unlikely(mem_id_init))
215 		return 0;
216 
217 	rht = kzalloc(sizeof(*rht), GFP_KERNEL);
218 	if (!rht)
219 		return -ENOMEM;
220 
221 	ret = rhashtable_init(rht, &mem_id_rht_params);
222 	if (ret < 0) {
223 		kfree(rht);
224 		return ret;
225 	}
226 	mem_id_ht = rht;
227 	smp_mb(); /* mutex lock should provide enough pairing */
228 	mem_id_init = true;
229 
230 	return 0;
231 }
232 
233 /* Allocate a cyclic ID that maps to allocator pointer.
234  * See: https://www.kernel.org/doc/html/latest/core-api/idr.html
235  *
236  * Caller must lock mem_id_lock.
237  */
238 static int __mem_id_cyclic_get(gfp_t gfp)
239 {
240 	int retries = 1;
241 	int id;
242 
243 again:
244 	id = ida_alloc_range(&mem_id_pool, mem_id_next, MEM_ID_MAX - 1, gfp);
245 	if (id < 0) {
246 		if (id == -ENOSPC) {
247 			/* Cyclic allocator, reset next id */
248 			if (retries--) {
249 				mem_id_next = MEM_ID_MIN;
250 				goto again;
251 			}
252 		}
253 		return id; /* errno */
254 	}
255 	mem_id_next = id + 1;
256 
257 	return id;
258 }
259 
260 static bool __is_supported_mem_type(enum xdp_mem_type type)
261 {
262 	if (type == MEM_TYPE_PAGE_POOL)
263 		return is_page_pool_compiled_in();
264 
265 	if (type >= MEM_TYPE_MAX)
266 		return false;
267 
268 	return true;
269 }
270 
271 static struct xdp_mem_allocator *__xdp_reg_mem_model(struct xdp_mem_info *mem,
272 						     enum xdp_mem_type type,
273 						     void *allocator)
274 {
275 	struct xdp_mem_allocator *xdp_alloc;
276 	gfp_t gfp = GFP_KERNEL;
277 	int id, errno, ret;
278 	void *ptr;
279 
280 	if (!__is_supported_mem_type(type))
281 		return ERR_PTR(-EOPNOTSUPP);
282 
283 	mem->type = type;
284 
285 	if (!allocator) {
286 		if (type == MEM_TYPE_PAGE_POOL)
287 			return ERR_PTR(-EINVAL); /* Setup time check page_pool req */
288 		return NULL;
289 	}
290 
291 	/* Delay init of rhashtable to save memory if feature isn't used */
292 	if (!mem_id_init) {
293 		mutex_lock(&mem_id_lock);
294 		ret = __mem_id_init_hash_table();
295 		mutex_unlock(&mem_id_lock);
296 		if (ret < 0)
297 			return ERR_PTR(ret);
298 	}
299 
300 	xdp_alloc = kzalloc(sizeof(*xdp_alloc), gfp);
301 	if (!xdp_alloc)
302 		return ERR_PTR(-ENOMEM);
303 
304 	mutex_lock(&mem_id_lock);
305 	id = __mem_id_cyclic_get(gfp);
306 	if (id < 0) {
307 		errno = id;
308 		goto err;
309 	}
310 	mem->id = id;
311 	xdp_alloc->mem = *mem;
312 	xdp_alloc->allocator = allocator;
313 
314 	/* Insert allocator into ID lookup table */
315 	ptr = rhashtable_insert_slow(mem_id_ht, &id, &xdp_alloc->node);
316 	if (IS_ERR(ptr)) {
317 		ida_free(&mem_id_pool, mem->id);
318 		mem->id = 0;
319 		errno = PTR_ERR(ptr);
320 		goto err;
321 	}
322 
323 	if (type == MEM_TYPE_PAGE_POOL)
324 		page_pool_use_xdp_mem(allocator, mem_allocator_disconnect, mem);
325 
326 	mutex_unlock(&mem_id_lock);
327 
328 	return xdp_alloc;
329 err:
330 	mutex_unlock(&mem_id_lock);
331 	kfree(xdp_alloc);
332 	return ERR_PTR(errno);
333 }
334 
335 int xdp_reg_mem_model(struct xdp_mem_info *mem,
336 		      enum xdp_mem_type type, void *allocator)
337 {
338 	struct xdp_mem_allocator *xdp_alloc;
339 
340 	xdp_alloc = __xdp_reg_mem_model(mem, type, allocator);
341 	if (IS_ERR(xdp_alloc))
342 		return PTR_ERR(xdp_alloc);
343 	return 0;
344 }
345 EXPORT_SYMBOL_GPL(xdp_reg_mem_model);
346 
347 int xdp_rxq_info_reg_mem_model(struct xdp_rxq_info *xdp_rxq,
348 			       enum xdp_mem_type type, void *allocator)
349 {
350 	struct xdp_mem_allocator *xdp_alloc;
351 
352 	if (xdp_rxq->reg_state != REG_STATE_REGISTERED) {
353 		WARN(1, "Missing register, driver bug");
354 		return -EFAULT;
355 	}
356 
357 	xdp_alloc = __xdp_reg_mem_model(&xdp_rxq->mem, type, allocator);
358 	if (IS_ERR(xdp_alloc))
359 		return PTR_ERR(xdp_alloc);
360 
361 	if (type == MEM_TYPE_XSK_BUFF_POOL && allocator)
362 		xsk_pool_set_rxq_info(allocator, xdp_rxq);
363 
364 	if (trace_mem_connect_enabled() && xdp_alloc)
365 		trace_mem_connect(xdp_alloc, xdp_rxq);
366 	return 0;
367 }
368 
369 EXPORT_SYMBOL_GPL(xdp_rxq_info_reg_mem_model);
370 
371 /**
372  * xdp_reg_page_pool - register &page_pool as a memory provider for XDP
373  * @pool: &page_pool to register
374  *
375  * Can be used to register pools manually without connecting to any XDP RxQ
376  * info, so that the XDP layer will be aware of them. Then, they can be
377  * attached to an RxQ info manually via xdp_rxq_info_attach_page_pool().
378  *
379  * Return: %0 on success, -errno on error.
380  */
381 int xdp_reg_page_pool(struct page_pool *pool)
382 {
383 	struct xdp_mem_info mem;
384 
385 	return xdp_reg_mem_model(&mem, MEM_TYPE_PAGE_POOL, pool);
386 }
387 EXPORT_SYMBOL_GPL(xdp_reg_page_pool);
388 
389 /**
390  * xdp_unreg_page_pool - unregister &page_pool from the memory providers list
391  * @pool: &page_pool to unregister
392  *
393  * A shorthand for manual unregistering page pools. If the pool was previously
394  * attached to an RxQ info, it must be detached first.
395  */
396 void xdp_unreg_page_pool(const struct page_pool *pool)
397 {
398 	struct xdp_mem_info mem = {
399 		.type	= MEM_TYPE_PAGE_POOL,
400 		.id	= pool->xdp_mem_id,
401 	};
402 
403 	xdp_unreg_mem_model(&mem);
404 }
405 EXPORT_SYMBOL_GPL(xdp_unreg_page_pool);
406 
407 /**
408  * xdp_rxq_info_attach_page_pool - attach registered pool to RxQ info
409  * @xdp_rxq: XDP RxQ info to attach the pool to
410  * @pool: pool to attach
411  *
412  * If the pool was registered manually, this function must be called instead
413  * of xdp_rxq_info_reg_mem_model() to connect it to the RxQ info.
414  */
415 void xdp_rxq_info_attach_page_pool(struct xdp_rxq_info *xdp_rxq,
416 				   const struct page_pool *pool)
417 {
418 	struct xdp_mem_info mem = {
419 		.type	= MEM_TYPE_PAGE_POOL,
420 		.id	= pool->xdp_mem_id,
421 	};
422 
423 	xdp_rxq_info_attach_mem_model(xdp_rxq, &mem);
424 }
425 EXPORT_SYMBOL_GPL(xdp_rxq_info_attach_page_pool);
426 
427 /* XDP RX runs under NAPI protection, and in different delivery error
428  * scenarios (e.g. queue full), it is possible to return the xdp_frame
429  * while still leveraging this protection.  The @napi_direct boolean
430  * is used for those calls sites.  Thus, allowing for faster recycling
431  * of xdp_frames/pages in those cases.
432  */
433 void __xdp_return(netmem_ref netmem, enum xdp_mem_type mem_type,
434 		  bool napi_direct, struct xdp_buff *xdp)
435 {
436 	switch (mem_type) {
437 	case MEM_TYPE_PAGE_POOL:
438 		netmem = netmem_compound_head(netmem);
439 		if (napi_direct && xdp_return_frame_no_direct())
440 			napi_direct = false;
441 		/* No need to check netmem_is_pp() as mem->type knows this a
442 		 * page_pool page
443 		 */
444 		page_pool_put_full_netmem(netmem_get_pp(netmem), netmem,
445 					  napi_direct);
446 		break;
447 	case MEM_TYPE_PAGE_SHARED:
448 		page_frag_free(__netmem_address(netmem));
449 		break;
450 	case MEM_TYPE_PAGE_ORDER0:
451 		put_page(__netmem_to_page(netmem));
452 		break;
453 	case MEM_TYPE_XSK_BUFF_POOL:
454 		/* NB! Only valid from an xdp_buff! */
455 		xsk_buff_free(xdp);
456 		break;
457 	default:
458 		/* Not possible, checked in xdp_rxq_info_reg_mem_model() */
459 		WARN(1, "Incorrect XDP memory type (%d) usage", mem_type);
460 		break;
461 	}
462 }
463 
464 void xdp_return_frame(struct xdp_frame *xdpf)
465 {
466 	struct skb_shared_info *sinfo;
467 
468 	if (likely(!xdp_frame_has_frags(xdpf)))
469 		goto out;
470 
471 	sinfo = xdp_get_shared_info_from_frame(xdpf);
472 	for (u32 i = 0; i < sinfo->nr_frags; i++)
473 		__xdp_return(skb_frag_netmem(&sinfo->frags[i]), xdpf->mem_type,
474 			     false, NULL);
475 
476 out:
477 	__xdp_return(virt_to_netmem(xdpf->data), xdpf->mem_type, false, NULL);
478 }
479 EXPORT_SYMBOL_GPL(xdp_return_frame);
480 
481 void xdp_return_frame_rx_napi(struct xdp_frame *xdpf)
482 {
483 	struct skb_shared_info *sinfo;
484 
485 	if (likely(!xdp_frame_has_frags(xdpf)))
486 		goto out;
487 
488 	sinfo = xdp_get_shared_info_from_frame(xdpf);
489 	for (u32 i = 0; i < sinfo->nr_frags; i++)
490 		__xdp_return(skb_frag_netmem(&sinfo->frags[i]), xdpf->mem_type,
491 			     true, NULL);
492 
493 out:
494 	__xdp_return(virt_to_netmem(xdpf->data), xdpf->mem_type, true, NULL);
495 }
496 EXPORT_SYMBOL_GPL(xdp_return_frame_rx_napi);
497 
498 /* XDP bulk APIs introduce a defer/flush mechanism to return
499  * pages belonging to the same xdp_mem_allocator object
500  * (identified via the mem.id field) in bulk to optimize
501  * I-cache and D-cache.
502  * The bulk queue size is set to 16 to be aligned to how
503  * XDP_REDIRECT bulking works. The bulk is flushed when
504  * it is full or when mem.id changes.
505  * xdp_frame_bulk is usually stored/allocated on the function
506  * call-stack to avoid locking penalties.
507  */
508 
509 /* Must be called with rcu_read_lock held */
510 void xdp_return_frame_bulk(struct xdp_frame *xdpf,
511 			   struct xdp_frame_bulk *bq)
512 {
513 	if (xdpf->mem_type != MEM_TYPE_PAGE_POOL) {
514 		xdp_return_frame(xdpf);
515 		return;
516 	}
517 
518 	if (bq->count == XDP_BULK_QUEUE_SIZE)
519 		xdp_flush_frame_bulk(bq);
520 
521 	if (unlikely(xdp_frame_has_frags(xdpf))) {
522 		struct skb_shared_info *sinfo;
523 		int i;
524 
525 		sinfo = xdp_get_shared_info_from_frame(xdpf);
526 		for (i = 0; i < sinfo->nr_frags; i++) {
527 			skb_frag_t *frag = &sinfo->frags[i];
528 
529 			bq->q[bq->count++] = skb_frag_netmem(frag);
530 			if (bq->count == XDP_BULK_QUEUE_SIZE)
531 				xdp_flush_frame_bulk(bq);
532 		}
533 	}
534 	bq->q[bq->count++] = virt_to_netmem(xdpf->data);
535 }
536 EXPORT_SYMBOL_GPL(xdp_return_frame_bulk);
537 
538 /**
539  * xdp_return_frag -- free one XDP frag or decrement its refcount
540  * @netmem: network memory reference to release
541  * @xdp: &xdp_buff to release the frag for
542  */
543 void xdp_return_frag(netmem_ref netmem, const struct xdp_buff *xdp)
544 {
545 	__xdp_return(netmem, xdp->rxq->mem.type, true, NULL);
546 }
547 EXPORT_SYMBOL_GPL(xdp_return_frag);
548 
549 void xdp_return_buff(struct xdp_buff *xdp)
550 {
551 	struct skb_shared_info *sinfo;
552 
553 	if (likely(!xdp_buff_has_frags(xdp)))
554 		goto out;
555 
556 	sinfo = xdp_get_shared_info_from_buff(xdp);
557 	for (u32 i = 0; i < sinfo->nr_frags; i++)
558 		__xdp_return(skb_frag_netmem(&sinfo->frags[i]),
559 			     xdp->rxq->mem.type, true, xdp);
560 
561 out:
562 	__xdp_return(virt_to_netmem(xdp->data), xdp->rxq->mem.type, true, xdp);
563 }
564 EXPORT_SYMBOL_GPL(xdp_return_buff);
565 
566 void xdp_attachment_setup(struct xdp_attachment_info *info,
567 			  struct netdev_bpf *bpf)
568 {
569 	if (info->prog)
570 		bpf_prog_put(info->prog);
571 	info->prog = bpf->prog;
572 	info->flags = bpf->flags;
573 }
574 EXPORT_SYMBOL_GPL(xdp_attachment_setup);
575 
576 struct xdp_frame *xdp_convert_zc_to_xdp_frame(struct xdp_buff *xdp)
577 {
578 	unsigned int metasize, totsize;
579 	void *addr, *data_to_copy;
580 	struct xdp_frame *xdpf;
581 	struct page *page;
582 
583 	/* Clone into a MEM_TYPE_PAGE_ORDER0 xdp_frame. */
584 	metasize = xdp_data_meta_unsupported(xdp) ? 0 :
585 		   xdp->data - xdp->data_meta;
586 	totsize = xdp->data_end - xdp->data + metasize;
587 
588 	if (sizeof(*xdpf) + totsize > PAGE_SIZE)
589 		return NULL;
590 
591 	page = dev_alloc_page();
592 	if (!page)
593 		return NULL;
594 
595 	addr = page_to_virt(page);
596 	xdpf = addr;
597 	memset(xdpf, 0, sizeof(*xdpf));
598 
599 	addr += sizeof(*xdpf);
600 	data_to_copy = metasize ? xdp->data_meta : xdp->data;
601 	memcpy(addr, data_to_copy, totsize);
602 
603 	xdpf->data = addr + metasize;
604 	xdpf->len = totsize - metasize;
605 	xdpf->headroom = 0;
606 	xdpf->metasize = metasize;
607 	xdpf->frame_sz = PAGE_SIZE;
608 	xdpf->mem_type = MEM_TYPE_PAGE_ORDER0;
609 
610 	xsk_buff_free(xdp);
611 	return xdpf;
612 }
613 EXPORT_SYMBOL_GPL(xdp_convert_zc_to_xdp_frame);
614 
615 /* Used by XDP_WARN macro, to avoid inlining WARN() in fast-path */
616 void xdp_warn(const char *msg, const char *func, const int line)
617 {
618 	WARN(1, "XDP_WARN: %s(line:%d): %s\n", func, line, msg);
619 };
620 EXPORT_SYMBOL_GPL(xdp_warn);
621 
622 /**
623  * xdp_build_skb_from_buff - create an skb from &xdp_buff
624  * @xdp: &xdp_buff to convert to an skb
625  *
626  * Perform common operations to create a new skb to pass up the stack from
627  * &xdp_buff: allocate an skb head from the NAPI percpu cache, initialize
628  * skb data pointers and offsets, set the recycle bit if the buff is
629  * PP-backed, Rx queue index, protocol and update frags info.
630  *
631  * Return: new &sk_buff on success, %NULL on error.
632  */
633 struct sk_buff *xdp_build_skb_from_buff(const struct xdp_buff *xdp)
634 {
635 	const struct xdp_rxq_info *rxq = xdp->rxq;
636 	const struct skb_shared_info *sinfo;
637 	struct sk_buff *skb;
638 	u32 nr_frags = 0;
639 	int metalen;
640 
641 	if (unlikely(xdp_buff_has_frags(xdp))) {
642 		sinfo = xdp_get_shared_info_from_buff(xdp);
643 		nr_frags = sinfo->nr_frags;
644 	}
645 
646 	skb = napi_build_skb(xdp->data_hard_start, xdp->frame_sz);
647 	if (unlikely(!skb))
648 		return NULL;
649 
650 	skb_reserve(skb, xdp->data - xdp->data_hard_start);
651 	__skb_put(skb, xdp->data_end - xdp->data);
652 
653 	metalen = xdp->data - xdp->data_meta;
654 	if (metalen > 0)
655 		skb_metadata_set(skb, metalen);
656 
657 	if (rxq->mem.type == MEM_TYPE_PAGE_POOL)
658 		skb_mark_for_recycle(skb);
659 
660 	skb_record_rx_queue(skb, rxq->queue_index);
661 
662 	if (unlikely(nr_frags)) {
663 		u32 tsize;
664 
665 		tsize = sinfo->xdp_frags_truesize ? : nr_frags * xdp->frame_sz;
666 		xdp_update_skb_shared_info(skb, nr_frags,
667 					   sinfo->xdp_frags_size, tsize,
668 					   xdp_buff_is_frag_pfmemalloc(xdp));
669 	}
670 
671 	skb->protocol = eth_type_trans(skb, rxq->dev);
672 
673 	return skb;
674 }
675 EXPORT_SYMBOL_GPL(xdp_build_skb_from_buff);
676 
677 /**
678  * xdp_copy_frags_from_zc - copy frags from XSk buff to skb
679  * @skb: skb to copy frags to
680  * @xdp: XSk &xdp_buff from which the frags will be copied
681  * @pp: &page_pool backing page allocation, if available
682  *
683  * Copy all frags from XSk &xdp_buff to the skb to pass it up the stack.
684  * Allocate a new buffer for each frag, copy it and attach to the skb.
685  *
686  * Return: true on success, false on netmem allocation fail.
687  */
688 static noinline bool xdp_copy_frags_from_zc(struct sk_buff *skb,
689 					    const struct xdp_buff *xdp,
690 					    struct page_pool *pp)
691 {
692 	struct skb_shared_info *sinfo = skb_shinfo(skb);
693 	const struct skb_shared_info *xinfo;
694 	u32 nr_frags, tsize = 0;
695 	bool pfmemalloc = false;
696 
697 	xinfo = xdp_get_shared_info_from_buff(xdp);
698 	nr_frags = xinfo->nr_frags;
699 
700 	for (u32 i = 0; i < nr_frags; i++) {
701 		const skb_frag_t *frag = &xinfo->frags[i];
702 		u32 len = skb_frag_size(frag);
703 		u32 offset, truesize = len;
704 		struct page *page;
705 
706 		page = page_pool_dev_alloc(pp, &offset, &truesize);
707 		if (unlikely(!page)) {
708 			sinfo->nr_frags = i;
709 			return false;
710 		}
711 
712 		memcpy(page_address(page) + offset,
713 		       skb_frag_page(frag) + skb_frag_off(frag),
714 		       LARGEST_ALIGN(len));
715 		__skb_fill_page_desc_noacc(sinfo, i, page, offset, len);
716 
717 		tsize += truesize;
718 		pfmemalloc |= page_is_pfmemalloc(page);
719 	}
720 
721 	xdp_update_skb_shared_info(skb, nr_frags, xinfo->xdp_frags_size,
722 				   tsize, pfmemalloc);
723 
724 	return true;
725 }
726 
727 /**
728  * xdp_build_skb_from_zc - create an skb from XSk &xdp_buff
729  * @xdp: source XSk buff
730  *
731  * Similar to xdp_build_skb_from_buff(), but for XSk frames. Allocate an skb
732  * head, new buffer for the head, copy the data and initialize the skb fields.
733  * If there are frags, allocate new buffers for them and copy.
734  * Buffers are allocated from the system percpu pools to try recycling them.
735  * If new skb was built successfully, @xdp is returned to XSk pool's freelist.
736  * On error, it remains untouched and the caller must take care of this.
737  *
738  * Return: new &sk_buff on success, %NULL on error.
739  */
740 struct sk_buff *xdp_build_skb_from_zc(struct xdp_buff *xdp)
741 {
742 	const struct xdp_rxq_info *rxq = xdp->rxq;
743 	u32 len = xdp->data_end - xdp->data_meta;
744 	u32 truesize = xdp->frame_sz;
745 	struct sk_buff *skb = NULL;
746 	struct page_pool *pp;
747 	int metalen;
748 	void *data;
749 
750 	if (!IS_ENABLED(CONFIG_PAGE_POOL))
751 		return NULL;
752 
753 	local_lock_nested_bh(&system_page_pool.bh_lock);
754 	pp = this_cpu_read(system_page_pool.pool);
755 	data = page_pool_dev_alloc_va(pp, &truesize);
756 	if (unlikely(!data))
757 		goto out;
758 
759 	skb = napi_build_skb(data, truesize);
760 	if (unlikely(!skb)) {
761 		page_pool_free_va(pp, data, true);
762 		goto out;
763 	}
764 
765 	skb_mark_for_recycle(skb);
766 	skb_reserve(skb, xdp->data_meta - xdp->data_hard_start);
767 
768 	memcpy(__skb_put(skb, len), xdp->data_meta, LARGEST_ALIGN(len));
769 
770 	metalen = xdp->data - xdp->data_meta;
771 	if (metalen > 0) {
772 		skb_metadata_set(skb, metalen);
773 		__skb_pull(skb, metalen);
774 	}
775 
776 	skb_record_rx_queue(skb, rxq->queue_index);
777 
778 	if (unlikely(xdp_buff_has_frags(xdp)) &&
779 	    unlikely(!xdp_copy_frags_from_zc(skb, xdp, pp))) {
780 		napi_consume_skb(skb, true);
781 		skb = NULL;
782 		goto out;
783 	}
784 
785 	xsk_buff_free(xdp);
786 
787 	skb->protocol = eth_type_trans(skb, rxq->dev);
788 
789 out:
790 	local_unlock_nested_bh(&system_page_pool.bh_lock);
791 	return skb;
792 }
793 EXPORT_SYMBOL_GPL(xdp_build_skb_from_zc);
794 
795 struct sk_buff *__xdp_build_skb_from_frame(struct xdp_frame *xdpf,
796 					   struct sk_buff *skb,
797 					   struct net_device *dev)
798 {
799 	struct skb_shared_info *sinfo = xdp_get_shared_info_from_frame(xdpf);
800 	unsigned int headroom, frame_size;
801 	void *hard_start;
802 	u8 nr_frags;
803 
804 	/* xdp frags frame */
805 	if (unlikely(xdp_frame_has_frags(xdpf)))
806 		nr_frags = sinfo->nr_frags;
807 
808 	/* Part of headroom was reserved to xdpf */
809 	headroom = sizeof(*xdpf) + xdpf->headroom;
810 
811 	/* Memory size backing xdp_frame data already have reserved
812 	 * room for build_skb to place skb_shared_info in tailroom.
813 	 */
814 	frame_size = xdpf->frame_sz;
815 
816 	hard_start = xdpf->data - headroom;
817 	skb = build_skb_around(skb, hard_start, frame_size);
818 	if (unlikely(!skb))
819 		return NULL;
820 
821 	skb_reserve(skb, headroom);
822 	__skb_put(skb, xdpf->len);
823 	if (xdpf->metasize)
824 		skb_metadata_set(skb, xdpf->metasize);
825 
826 	if (unlikely(xdp_frame_has_frags(xdpf)))
827 		xdp_update_skb_shared_info(skb, nr_frags,
828 					   sinfo->xdp_frags_size,
829 					   nr_frags * xdpf->frame_sz,
830 					   xdp_frame_is_frag_pfmemalloc(xdpf));
831 
832 	/* Essential SKB info: protocol and skb->dev */
833 	skb->protocol = eth_type_trans(skb, dev);
834 
835 	/* Optional SKB info, currently missing:
836 	 * - HW checksum info		(skb->ip_summed)
837 	 * - HW RX hash			(skb_set_hash)
838 	 * - RX ring dev queue index	(skb_record_rx_queue)
839 	 */
840 
841 	if (xdpf->mem_type == MEM_TYPE_PAGE_POOL)
842 		skb_mark_for_recycle(skb);
843 
844 	/* Allow SKB to reuse area used by xdp_frame */
845 	xdp_scrub_frame(xdpf);
846 
847 	return skb;
848 }
849 EXPORT_SYMBOL_GPL(__xdp_build_skb_from_frame);
850 
851 struct sk_buff *xdp_build_skb_from_frame(struct xdp_frame *xdpf,
852 					 struct net_device *dev)
853 {
854 	struct sk_buff *skb;
855 
856 	skb = kmem_cache_alloc(net_hotdata.skbuff_cache, GFP_ATOMIC);
857 	if (unlikely(!skb))
858 		return NULL;
859 
860 	memset(skb, 0, offsetof(struct sk_buff, tail));
861 
862 	return __xdp_build_skb_from_frame(xdpf, skb, dev);
863 }
864 EXPORT_SYMBOL_GPL(xdp_build_skb_from_frame);
865 
866 struct xdp_frame *xdpf_clone(struct xdp_frame *xdpf)
867 {
868 	unsigned int headroom, totalsize;
869 	struct xdp_frame *nxdpf;
870 	struct page *page;
871 	void *addr;
872 
873 	headroom = xdpf->headroom + sizeof(*xdpf);
874 	totalsize = headroom + xdpf->len;
875 
876 	if (unlikely(totalsize > PAGE_SIZE))
877 		return NULL;
878 	page = dev_alloc_page();
879 	if (!page)
880 		return NULL;
881 	addr = page_to_virt(page);
882 
883 	memcpy(addr, xdpf, totalsize);
884 
885 	nxdpf = addr;
886 	nxdpf->data = addr + headroom;
887 	nxdpf->frame_sz = PAGE_SIZE;
888 	nxdpf->mem_type = MEM_TYPE_PAGE_ORDER0;
889 
890 	return nxdpf;
891 }
892 
893 __bpf_kfunc_start_defs();
894 
895 /**
896  * bpf_xdp_metadata_rx_timestamp - Read XDP frame RX timestamp.
897  * @ctx: XDP context pointer.
898  * @timestamp: Return value pointer.
899  *
900  * Return:
901  * * Returns 0 on success or ``-errno`` on error.
902  * * ``-EOPNOTSUPP`` : means device driver does not implement kfunc
903  * * ``-ENODATA``    : means no RX-timestamp available for this frame
904  */
905 __bpf_kfunc int bpf_xdp_metadata_rx_timestamp(const struct xdp_md *ctx, u64 *timestamp)
906 {
907 	return -EOPNOTSUPP;
908 }
909 
910 /**
911  * bpf_xdp_metadata_rx_hash - Read XDP frame RX hash.
912  * @ctx: XDP context pointer.
913  * @hash: Return value pointer.
914  * @rss_type: Return value pointer for RSS type.
915  *
916  * The RSS hash type (@rss_type) specifies what portion of packet headers NIC
917  * hardware used when calculating RSS hash value.  The RSS type can be decoded
918  * via &enum xdp_rss_hash_type either matching on individual L3/L4 bits
919  * ``XDP_RSS_L*`` or by combined traditional *RSS Hashing Types*
920  * ``XDP_RSS_TYPE_L*``.
921  *
922  * Return:
923  * * Returns 0 on success or ``-errno`` on error.
924  * * ``-EOPNOTSUPP`` : means device driver doesn't implement kfunc
925  * * ``-ENODATA``    : means no RX-hash available for this frame
926  */
927 __bpf_kfunc int bpf_xdp_metadata_rx_hash(const struct xdp_md *ctx, u32 *hash,
928 					 enum xdp_rss_hash_type *rss_type)
929 {
930 	return -EOPNOTSUPP;
931 }
932 
933 /**
934  * bpf_xdp_metadata_rx_vlan_tag - Get XDP packet outermost VLAN tag
935  * @ctx: XDP context pointer.
936  * @vlan_proto: Destination pointer for VLAN Tag protocol identifier (TPID).
937  * @vlan_tci: Destination pointer for VLAN TCI (VID + DEI + PCP)
938  *
939  * In case of success, ``vlan_proto`` contains *Tag protocol identifier (TPID)*,
940  * usually ``ETH_P_8021Q`` or ``ETH_P_8021AD``, but some networks can use
941  * custom TPIDs. ``vlan_proto`` is stored in **network byte order (BE)**
942  * and should be used as follows:
943  * ``if (vlan_proto == bpf_htons(ETH_P_8021Q)) do_something();``
944  *
945  * ``vlan_tci`` contains the remaining 16 bits of a VLAN tag.
946  * Driver is expected to provide those in **host byte order (usually LE)**,
947  * so the bpf program should not perform byte conversion.
948  * According to 802.1Q standard, *VLAN TCI (Tag control information)*
949  * is a bit field that contains:
950  * *VLAN identifier (VID)* that can be read with ``vlan_tci & 0xfff``,
951  * *Drop eligible indicator (DEI)* - 1 bit,
952  * *Priority code point (PCP)* - 3 bits.
953  * For detailed meaning of DEI and PCP, please refer to other sources.
954  *
955  * Return:
956  * * Returns 0 on success or ``-errno`` on error.
957  * * ``-EOPNOTSUPP`` : device driver doesn't implement kfunc
958  * * ``-ENODATA``    : VLAN tag was not stripped or is not available
959  */
960 __bpf_kfunc int bpf_xdp_metadata_rx_vlan_tag(const struct xdp_md *ctx,
961 					     __be16 *vlan_proto, u16 *vlan_tci)
962 {
963 	return -EOPNOTSUPP;
964 }
965 
966 __bpf_kfunc_end_defs();
967 
968 BTF_KFUNCS_START(xdp_metadata_kfunc_ids)
969 #define XDP_METADATA_KFUNC(_, __, name, ___) BTF_ID_FLAGS(func, name, KF_TRUSTED_ARGS)
970 XDP_METADATA_KFUNC_xxx
971 #undef XDP_METADATA_KFUNC
972 BTF_KFUNCS_END(xdp_metadata_kfunc_ids)
973 
974 static const struct btf_kfunc_id_set xdp_metadata_kfunc_set = {
975 	.owner = THIS_MODULE,
976 	.set   = &xdp_metadata_kfunc_ids,
977 };
978 
979 BTF_ID_LIST(xdp_metadata_kfunc_ids_unsorted)
980 #define XDP_METADATA_KFUNC(name, _, str, __) BTF_ID(func, str)
981 XDP_METADATA_KFUNC_xxx
982 #undef XDP_METADATA_KFUNC
983 
984 u32 bpf_xdp_metadata_kfunc_id(int id)
985 {
986 	/* xdp_metadata_kfunc_ids is sorted and can't be used */
987 	return xdp_metadata_kfunc_ids_unsorted[id];
988 }
989 
990 bool bpf_dev_bound_kfunc_id(u32 btf_id)
991 {
992 	return btf_id_set8_contains(&xdp_metadata_kfunc_ids, btf_id);
993 }
994 
995 static int __init xdp_metadata_init(void)
996 {
997 	return register_btf_kfunc_id_set(BPF_PROG_TYPE_XDP, &xdp_metadata_kfunc_set);
998 }
999 late_initcall(xdp_metadata_init);
1000 
1001 void xdp_set_features_flag_locked(struct net_device *dev, xdp_features_t val)
1002 {
1003 	val &= NETDEV_XDP_ACT_MASK;
1004 	if (dev->xdp_features == val)
1005 		return;
1006 
1007 	netdev_assert_locked_or_invisible(dev);
1008 	dev->xdp_features = val;
1009 
1010 	if (dev->reg_state == NETREG_REGISTERED)
1011 		call_netdevice_notifiers(NETDEV_XDP_FEAT_CHANGE, dev);
1012 }
1013 EXPORT_SYMBOL_GPL(xdp_set_features_flag_locked);
1014 
1015 void xdp_set_features_flag(struct net_device *dev, xdp_features_t val)
1016 {
1017 	netdev_lock(dev);
1018 	xdp_set_features_flag_locked(dev, val);
1019 	netdev_unlock(dev);
1020 }
1021 EXPORT_SYMBOL_GPL(xdp_set_features_flag);
1022 
1023 void xdp_features_set_redirect_target_locked(struct net_device *dev,
1024 					     bool support_sg)
1025 {
1026 	xdp_features_t val = (dev->xdp_features | NETDEV_XDP_ACT_NDO_XMIT);
1027 
1028 	if (support_sg)
1029 		val |= NETDEV_XDP_ACT_NDO_XMIT_SG;
1030 	xdp_set_features_flag_locked(dev, val);
1031 }
1032 EXPORT_SYMBOL_GPL(xdp_features_set_redirect_target_locked);
1033 
1034 void xdp_features_set_redirect_target(struct net_device *dev, bool support_sg)
1035 {
1036 	netdev_lock(dev);
1037 	xdp_features_set_redirect_target_locked(dev, support_sg);
1038 	netdev_unlock(dev);
1039 }
1040 EXPORT_SYMBOL_GPL(xdp_features_set_redirect_target);
1041 
1042 void xdp_features_clear_redirect_target_locked(struct net_device *dev)
1043 {
1044 	xdp_features_t val = dev->xdp_features;
1045 
1046 	val &= ~(NETDEV_XDP_ACT_NDO_XMIT | NETDEV_XDP_ACT_NDO_XMIT_SG);
1047 	xdp_set_features_flag_locked(dev, val);
1048 }
1049 EXPORT_SYMBOL_GPL(xdp_features_clear_redirect_target_locked);
1050 
1051 void xdp_features_clear_redirect_target(struct net_device *dev)
1052 {
1053 	netdev_lock(dev);
1054 	xdp_features_clear_redirect_target_locked(dev);
1055 	netdev_unlock(dev);
1056 }
1057 EXPORT_SYMBOL_GPL(xdp_features_clear_redirect_target);
1058