1457c8996SThomas Gleixner // SPDX-License-Identifier: GPL-2.0-only 21da177e4SLinus Torvalds /* 31da177e4SLinus Torvalds * INET An implementation of the TCP/IP protocol suite for the LINUX 41da177e4SLinus Torvalds * operating system. INET is implemented using the BSD Socket 51da177e4SLinus Torvalds * interface as the means of communication with the user level. 61da177e4SLinus Torvalds * 71da177e4SLinus Torvalds * The Internet Protocol (IP) output module. 81da177e4SLinus Torvalds * 902c30a84SJesper Juhl * Authors: Ross Biro 101da177e4SLinus Torvalds * Fred N. van Kempen, <waltje@uWalt.NL.Mugnet.ORG> 111da177e4SLinus Torvalds * Donald Becker, <becker@super.org> 121da177e4SLinus Torvalds * Alan Cox, <Alan.Cox@linux.org> 131da177e4SLinus Torvalds * Richard Underwood 141da177e4SLinus Torvalds * Stefan Becker, <stefanb@yello.ping.de> 151da177e4SLinus Torvalds * Jorge Cwik, <jorge@laser.satlink.net> 161da177e4SLinus Torvalds * Arnt Gulbrandsen, <agulbra@nvg.unit.no> 171da177e4SLinus Torvalds * Hirokazu Takahashi, <taka@valinux.co.jp> 181da177e4SLinus Torvalds * 191da177e4SLinus Torvalds * See ip_input.c for original log 201da177e4SLinus Torvalds * 211da177e4SLinus Torvalds * Fixes: 221da177e4SLinus Torvalds * Alan Cox : Missing nonblock feature in ip_build_xmit. 231da177e4SLinus Torvalds * Mike Kilburn : htons() missing in ip_build_xmit. 241da177e4SLinus Torvalds * Bradford Johnson: Fix faulty handling of some frames when 251da177e4SLinus Torvalds * no route is found. 261da177e4SLinus Torvalds * Alexander Demenshin: Missing sk/skb free in ip_queue_xmit 271da177e4SLinus Torvalds * (in case if packet not accepted by 281da177e4SLinus Torvalds * output firewall rules) 291da177e4SLinus Torvalds * Mike McLagan : Routing by source 301da177e4SLinus Torvalds * Alexey Kuznetsov: use new route cache 311da177e4SLinus Torvalds * Andi Kleen: Fix broken PMTU recovery and remove 321da177e4SLinus Torvalds * some redundant tests. 331da177e4SLinus Torvalds * Vitaly E. Lavrov : Transparent proxy revived after year coma. 341da177e4SLinus Torvalds * Andi Kleen : Replace ip_reply with ip_send_reply. 351da177e4SLinus Torvalds * Andi Kleen : Split fast and slow ip_build_xmit path 361da177e4SLinus Torvalds * for decreased register pressure on x86 37a66e04ceSBhaskar Chowdhury * and more readability. 381da177e4SLinus Torvalds * Marc Boucher : When call_out_firewall returns FW_QUEUE, 391da177e4SLinus Torvalds * silently drop skb instead of failing with -EPERM. 401da177e4SLinus Torvalds * Detlev Wengorz : Copy protocol for fragments. 411da177e4SLinus Torvalds * Hirokazu Takahashi: HW checksumming for outgoing UDP 421da177e4SLinus Torvalds * datagrams. 431da177e4SLinus Torvalds * Hirokazu Takahashi: sendfile() on UDP works now. 441da177e4SLinus Torvalds */ 451da177e4SLinus Torvalds 467c0f6ba6SLinus Torvalds #include <linux/uaccess.h> 471da177e4SLinus Torvalds #include <linux/module.h> 481da177e4SLinus Torvalds #include <linux/types.h> 491da177e4SLinus Torvalds #include <linux/kernel.h> 501da177e4SLinus Torvalds #include <linux/mm.h> 511da177e4SLinus Torvalds #include <linux/string.h> 521da177e4SLinus Torvalds #include <linux/errno.h> 53a1f8e7f7SAl Viro #include <linux/highmem.h> 545a0e3ad6STejun Heo #include <linux/slab.h> 551da177e4SLinus Torvalds 561da177e4SLinus Torvalds #include <linux/socket.h> 571da177e4SLinus Torvalds #include <linux/sockios.h> 581da177e4SLinus Torvalds #include <linux/in.h> 591da177e4SLinus Torvalds #include <linux/inet.h> 601da177e4SLinus Torvalds #include <linux/netdevice.h> 611da177e4SLinus Torvalds #include <linux/etherdevice.h> 621da177e4SLinus Torvalds #include <linux/proc_fs.h> 631da177e4SLinus Torvalds #include <linux/stat.h> 641da177e4SLinus Torvalds #include <linux/init.h> 651da177e4SLinus Torvalds 661da177e4SLinus Torvalds #include <net/snmp.h> 671da177e4SLinus Torvalds #include <net/ip.h> 681da177e4SLinus Torvalds #include <net/protocol.h> 691da177e4SLinus Torvalds #include <net/route.h> 70cfacb057SPatrick McHardy #include <net/xfrm.h> 711da177e4SLinus Torvalds #include <linux/skbuff.h> 721da177e4SLinus Torvalds #include <net/sock.h> 731da177e4SLinus Torvalds #include <net/arp.h> 741da177e4SLinus Torvalds #include <net/icmp.h> 751da177e4SLinus Torvalds #include <net/checksum.h> 761da177e4SLinus Torvalds #include <net/inetpeer.h> 77ba9e04a7SWei Wang #include <net/inet_ecn.h> 7814972cbdSRoopa Prabhu #include <net/lwtunnel.h> 7933b48679SDaniel Mack #include <linux/bpf-cgroup.h> 801da177e4SLinus Torvalds #include <linux/igmp.h> 811da177e4SLinus Torvalds #include <linux/netfilter_ipv4.h> 821da177e4SLinus Torvalds #include <linux/netfilter_bridge.h> 831da177e4SLinus Torvalds #include <linux/netlink.h> 846cbb0df7SArnaldo Carvalho de Melo #include <linux/tcp.h> 851da177e4SLinus Torvalds 86694869b3SEric W. Biederman static int 87694869b3SEric W. Biederman ip_fragment(struct net *net, struct sock *sk, struct sk_buff *skb, 88c5501eb3SFlorian Westphal unsigned int mtu, 89694869b3SEric W. Biederman int (*output)(struct net *, struct sock *, struct sk_buff *)); 9049d16b23SAndy Zhou 911da177e4SLinus Torvalds /* Generate a checksum for an outgoing IP datagram. */ 922fbd9679SDenis Efremov void ip_send_check(struct iphdr *iph) 931da177e4SLinus Torvalds { 941da177e4SLinus Torvalds iph->check = 0; 951da177e4SLinus Torvalds iph->check = ip_fast_csum((unsigned char *)iph, iph->ihl); 961da177e4SLinus Torvalds } 974bc2f18bSEric Dumazet EXPORT_SYMBOL(ip_send_check); 981da177e4SLinus Torvalds 99cf91a99dSEric W. Biederman int __ip_local_out(struct net *net, struct sock *sk, struct sk_buff *skb) 100c439cb2eSHerbert Xu { 101c439cb2eSHerbert Xu struct iphdr *iph = ip_hdr(skb); 102c439cb2eSHerbert Xu 103c439cb2eSHerbert Xu iph->tot_len = htons(skb->len); 104c439cb2eSHerbert Xu ip_send_check(iph); 105a8e3e1a9SDavid Ahern 106a8e3e1a9SDavid Ahern /* if egress device is enslaved to an L3 master device pass the 107a8e3e1a9SDavid Ahern * skb to its handler for processing 108a8e3e1a9SDavid Ahern */ 109a8e3e1a9SDavid Ahern skb = l3mdev_ip_out(sk, skb); 110a8e3e1a9SDavid Ahern if (unlikely(!skb)) 111a8e3e1a9SDavid Ahern return 0; 112a8e3e1a9SDavid Ahern 113f4180439SEli Cooper skb->protocol = htons(ETH_P_IP); 114f4180439SEli Cooper 11529a26a56SEric W. Biederman return nf_hook(NFPROTO_IPV4, NF_INET_LOCAL_OUT, 11629a26a56SEric W. Biederman net, sk, skb, NULL, skb_dst(skb)->dev, 11713206b6bSEric W. Biederman dst_output); 1187026b1ddSDavid Miller } 1197026b1ddSDavid Miller 12033224b16SEric W. Biederman int ip_local_out(struct net *net, struct sock *sk, struct sk_buff *skb) 121c439cb2eSHerbert Xu { 122c439cb2eSHerbert Xu int err; 123c439cb2eSHerbert Xu 124cf91a99dSEric W. Biederman err = __ip_local_out(net, sk, skb); 125c439cb2eSHerbert Xu if (likely(err == 1)) 12613206b6bSEric W. Biederman err = dst_output(net, sk, skb); 127c439cb2eSHerbert Xu 128c439cb2eSHerbert Xu return err; 129c439cb2eSHerbert Xu } 130e2cb77dbSEric W. Biederman EXPORT_SYMBOL_GPL(ip_local_out); 131c439cb2eSHerbert Xu 1321da177e4SLinus Torvalds static inline int ip_select_ttl(struct inet_sock *inet, struct dst_entry *dst) 1331da177e4SLinus Torvalds { 1341da177e4SLinus Torvalds int ttl = inet->uc_ttl; 1351da177e4SLinus Torvalds 1361da177e4SLinus Torvalds if (ttl < 0) 137323e126fSDavid S. Miller ttl = ip4_dst_hoplimit(dst); 1381da177e4SLinus Torvalds return ttl; 1391da177e4SLinus Torvalds } 1401da177e4SLinus Torvalds 1411da177e4SLinus Torvalds /* 1421da177e4SLinus Torvalds * Add an ip header to a skbuff and send it out. 1431da177e4SLinus Torvalds * 1441da177e4SLinus Torvalds */ 145cfe673b0SEric Dumazet int ip_build_and_send_pkt(struct sk_buff *skb, const struct sock *sk, 146de033b7dSWei Wang __be32 saddr, __be32 daddr, struct ip_options_rcu *opt, 147de033b7dSWei Wang u8 tos) 1481da177e4SLinus Torvalds { 1491da177e4SLinus Torvalds struct inet_sock *inet = inet_sk(sk); 150511c3f92SEric Dumazet struct rtable *rt = skb_rtable(skb); 15177589ce0SEric W. Biederman struct net *net = sock_net(sk); 1521da177e4SLinus Torvalds struct iphdr *iph; 1531da177e4SLinus Torvalds 1541da177e4SLinus Torvalds /* Build the IP header. */ 155f6d8bd05SEric Dumazet skb_push(skb, sizeof(struct iphdr) + (opt ? opt->opt.optlen : 0)); 1568856dfa3SArnaldo Carvalho de Melo skb_reset_network_header(skb); 157eddc9ec5SArnaldo Carvalho de Melo iph = ip_hdr(skb); 1581da177e4SLinus Torvalds iph->version = 4; 1591da177e4SLinus Torvalds iph->ihl = 5; 160de033b7dSWei Wang iph->tos = tos; 161d8d1f30bSChangli Gao iph->ttl = ip_select_ttl(inet, &rt->dst); 162dd927a26SDavid S. Miller iph->daddr = (opt && opt->opt.srr ? opt->opt.faddr : daddr); 163dd927a26SDavid S. Miller iph->saddr = saddr; 1641da177e4SLinus Torvalds iph->protocol = sk->sk_protocol; 165970a5a3eSEric Dumazet /* Do not bother generating IPID for small packets (eg SYNACK) */ 166970a5a3eSEric Dumazet if (skb->len <= IPV4_MIN_MTU || ip_dont_fragment(sk, &rt->dst)) { 167cfe673b0SEric Dumazet iph->frag_off = htons(IP_DF); 168cfe673b0SEric Dumazet iph->id = 0; 169cfe673b0SEric Dumazet } else { 170cfe673b0SEric Dumazet iph->frag_off = 0; 171970a5a3eSEric Dumazet /* TCP packets here are SYNACK with fat IPv4/TCP options. 172970a5a3eSEric Dumazet * Avoid using the hashed IP ident generator. 173970a5a3eSEric Dumazet */ 174970a5a3eSEric Dumazet if (sk->sk_protocol == IPPROTO_TCP) 175970a5a3eSEric Dumazet iph->id = (__force __be16)prandom_u32(); 176970a5a3eSEric Dumazet else 17777589ce0SEric W. Biederman __ip_select_ident(net, iph, 1); 178cfe673b0SEric Dumazet } 1791da177e4SLinus Torvalds 180f6d8bd05SEric Dumazet if (opt && opt->opt.optlen) { 181f6d8bd05SEric Dumazet iph->ihl += opt->opt.optlen>>2; 1824f0e3040SJakub Kicinski ip_options_build(skb, &opt->opt, daddr, rt); 1831da177e4SLinus Torvalds } 1841da177e4SLinus Torvalds 1851da177e4SLinus Torvalds skb->priority = sk->sk_priority; 186e05a90ecSJamal Hadi Salim if (!skb->mark) 1874a19ec58SLaszlo Attila Toth skb->mark = sk->sk_mark; 1881da177e4SLinus Torvalds 1891da177e4SLinus Torvalds /* Send it out. */ 19033224b16SEric W. Biederman return ip_local_out(net, skb->sk, skb); 1911da177e4SLinus Torvalds } 192d8c97a94SArnaldo Carvalho de Melo EXPORT_SYMBOL_GPL(ip_build_and_send_pkt); 193d8c97a94SArnaldo Carvalho de Melo 194694869b3SEric W. Biederman static int ip_finish_output2(struct net *net, struct sock *sk, struct sk_buff *skb) 1951da177e4SLinus Torvalds { 196adf30907SEric Dumazet struct dst_entry *dst = skb_dst(skb); 19780787ebcSMitsuru Chinen struct rtable *rt = (struct rtable *)dst; 1981da177e4SLinus Torvalds struct net_device *dev = dst->dev; 199c2636b4dSChuck Lever unsigned int hh_len = LL_RESERVED_SPACE(dev); 200f6b72b62SDavid S. Miller struct neighbour *neigh; 2015c9f7c1dSDavid Ahern bool is_v6gw = false; 2021da177e4SLinus Torvalds 203edf391ffSNeil Horman if (rt->rt_type == RTN_MULTICAST) { 2044ba1bf42SEric W. Biederman IP_UPD_PO_STATS(net, IPSTATS_MIB_OUTMCAST, skb->len); 205edf391ffSNeil Horman } else if (rt->rt_type == RTN_BROADCAST) 2064ba1bf42SEric W. Biederman IP_UPD_PO_STATS(net, IPSTATS_MIB_OUTBCAST, skb->len); 20780787ebcSMitsuru Chinen 2083b04dddeSStephen Hemminger if (unlikely(skb_headroom(skb) < hh_len && dev->header_ops)) { 2095678a595SVasily Averin skb = skb_expand_head(skb, hh_len); 2105678a595SVasily Averin if (!skb) 2111da177e4SLinus Torvalds return -ENOMEM; 2121da177e4SLinus Torvalds } 2131da177e4SLinus Torvalds 21414972cbdSRoopa Prabhu if (lwtunnel_xmit_redirect(dst->lwtstate)) { 21514972cbdSRoopa Prabhu int res = lwtunnel_xmit(skb); 21614972cbdSRoopa Prabhu 21714972cbdSRoopa Prabhu if (res < 0 || res == LWTUNNEL_XMIT_DONE) 21814972cbdSRoopa Prabhu return res; 21914972cbdSRoopa Prabhu } 22014972cbdSRoopa Prabhu 221a263b309SDavid S. Miller rcu_read_lock_bh(); 2225c9f7c1dSDavid Ahern neigh = ip_neigh_for_gw(rt, skb, &is_v6gw); 2239871f1adSVasiliy Kulikov if (!IS_ERR(neigh)) { 2244ff06203SJulian Anastasov int res; 2254ff06203SJulian Anastasov 2264ff06203SJulian Anastasov sock_confirm_neigh(skb, neigh); 2275c9f7c1dSDavid Ahern /* if crossing protocols, can not use the cached header */ 2285c9f7c1dSDavid Ahern res = neigh_output(neigh, skb, is_v6gw); 229a263b309SDavid S. Miller rcu_read_unlock_bh(); 230f2c31e32SEric Dumazet return res; 231f2c31e32SEric Dumazet } 232a263b309SDavid S. Miller rcu_read_unlock_bh(); 23305e3aa09SDavid S. Miller 234e87cc472SJoe Perches net_dbg_ratelimited("%s: No header cache and no neighbour!\n", 235e87cc472SJoe Perches __func__); 2365e187189SMenglong Dong kfree_skb_reason(skb, SKB_DROP_REASON_NEIGH_CREATEFAIL); 2371da177e4SLinus Torvalds return -EINVAL; 2381da177e4SLinus Torvalds } 2391da177e4SLinus Torvalds 240694869b3SEric W. Biederman static int ip_finish_output_gso(struct net *net, struct sock *sk, 241694869b3SEric W. Biederman struct sk_buff *skb, unsigned int mtu) 242c7ba65d7SFlorian Westphal { 24388bebdf5SJason A. Donenfeld struct sk_buff *segs, *nskb; 244c7ba65d7SFlorian Westphal netdev_features_t features; 245c7ba65d7SFlorian Westphal int ret = 0; 246c7ba65d7SFlorian Westphal 2479ee6c5dcSLance Richardson /* common case: seglen is <= mtu 248359ebda2SShmulik Ladkani */ 249779b7931SDaniel Axtens if (skb_gso_validate_network_len(skb, mtu)) 250694869b3SEric W. Biederman return ip_finish_output2(net, sk, skb); 251c7ba65d7SFlorian Westphal 2520ace81ecSLance Richardson /* Slowpath - GSO segment length exceeds the egress MTU. 253c7ba65d7SFlorian Westphal * 2540ace81ecSLance Richardson * This can happen in several cases: 2550ace81ecSLance Richardson * - Forwarding of a TCP GRO skb, when DF flag is not set. 2560ace81ecSLance Richardson * - Forwarding of an skb that arrived on a virtualization interface 2570ace81ecSLance Richardson * (virtio-net/vhost/tap) with TSO/GSO size set by other network 2580ace81ecSLance Richardson * stack. 2590ace81ecSLance Richardson * - Local GSO skb transmitted on an NETIF_F_TSO tunnel stacked over an 2600ace81ecSLance Richardson * interface with a smaller MTU. 2610ace81ecSLance Richardson * - Arriving GRO skb (or GSO skb in a virtualized environment) that is 2620ace81ecSLance Richardson * bridged to a NETIF_F_TSO tunnel stacked over an interface with an 263a66e04ceSBhaskar Chowdhury * insufficient MTU. 264c7ba65d7SFlorian Westphal */ 265c7ba65d7SFlorian Westphal features = netif_skb_features(skb); 266a08e7fd9SCambda Zhu BUILD_BUG_ON(sizeof(*IPCB(skb)) > SKB_GSO_CB_OFFSET); 267c7ba65d7SFlorian Westphal segs = skb_gso_segment(skb, features & ~NETIF_F_GSO_MASK); 268330966e5SFlorian Westphal if (IS_ERR_OR_NULL(segs)) { 269c7ba65d7SFlorian Westphal kfree_skb(skb); 270c7ba65d7SFlorian Westphal return -ENOMEM; 271c7ba65d7SFlorian Westphal } 272c7ba65d7SFlorian Westphal 273c7ba65d7SFlorian Westphal consume_skb(skb); 274c7ba65d7SFlorian Westphal 27588bebdf5SJason A. Donenfeld skb_list_walk_safe(segs, segs, nskb) { 276c7ba65d7SFlorian Westphal int err; 277c7ba65d7SFlorian Westphal 278a8305bffSDavid S. Miller skb_mark_not_on_list(segs); 279694869b3SEric W. Biederman err = ip_fragment(net, sk, segs, mtu, ip_finish_output2); 280c7ba65d7SFlorian Westphal 281c7ba65d7SFlorian Westphal if (err && ret == 0) 282c7ba65d7SFlorian Westphal ret = err; 28388bebdf5SJason A. Donenfeld } 284c7ba65d7SFlorian Westphal 285c7ba65d7SFlorian Westphal return ret; 286c7ba65d7SFlorian Westphal } 287c7ba65d7SFlorian Westphal 288956fe219Sbrakmo static int __ip_finish_output(struct net *net, struct sock *sk, struct sk_buff *skb) 2891da177e4SLinus Torvalds { 290c5501eb3SFlorian Westphal unsigned int mtu; 291c5501eb3SFlorian Westphal 2925c901daaSPatrick McHardy #if defined(CONFIG_NETFILTER) && defined(CONFIG_XFRM) 2935c901daaSPatrick McHardy /* Policy lookup after SNAT yielded a new policy */ 29400db4124SIan Morris if (skb_dst(skb)->xfrm) { 29548d5cad8SPatrick McHardy IPCB(skb)->flags |= IPSKB_REROUTED; 29613206b6bSEric W. Biederman return dst_output(net, sk, skb); 29748d5cad8SPatrick McHardy } 2985c901daaSPatrick McHardy #endif 299fedbb6b4SShmulik Ladkani mtu = ip_skb_dst_mtu(sk, skb); 300c7ba65d7SFlorian Westphal if (skb_is_gso(skb)) 301694869b3SEric W. Biederman return ip_finish_output_gso(net, sk, skb, mtu); 302c7ba65d7SFlorian Westphal 303bb4cc1a1SFlorian Westphal if (skb->len > mtu || IPCB(skb)->frag_max_size) 304694869b3SEric W. Biederman return ip_fragment(net, sk, skb, mtu, ip_finish_output2); 305c7ba65d7SFlorian Westphal 306694869b3SEric W. Biederman return ip_finish_output2(net, sk, skb); 3071da177e4SLinus Torvalds } 3081da177e4SLinus Torvalds 309956fe219Sbrakmo static int ip_finish_output(struct net *net, struct sock *sk, struct sk_buff *skb) 310956fe219Sbrakmo { 311956fe219Sbrakmo int ret; 312956fe219Sbrakmo 313956fe219Sbrakmo ret = BPF_CGROUP_RUN_PROG_INET_EGRESS(sk, skb); 314956fe219Sbrakmo switch (ret) { 315956fe219Sbrakmo case NET_XMIT_SUCCESS: 316956fe219Sbrakmo return __ip_finish_output(net, sk, skb); 317956fe219Sbrakmo case NET_XMIT_CN: 318956fe219Sbrakmo return __ip_finish_output(net, sk, skb) ? : ret; 319956fe219Sbrakmo default: 3205e187189SMenglong Dong kfree_skb_reason(skb, SKB_DROP_REASON_BPF_CGROUP_EGRESS); 321956fe219Sbrakmo return ret; 322956fe219Sbrakmo } 323956fe219Sbrakmo } 324956fe219Sbrakmo 32533b48679SDaniel Mack static int ip_mc_finish_output(struct net *net, struct sock *sk, 32633b48679SDaniel Mack struct sk_buff *skb) 32733b48679SDaniel Mack { 3285b18f128SStephen Suryaputra struct rtable *new_rt; 329d96ff269SDavid S. Miller bool do_cn = false; 330d96ff269SDavid S. Miller int ret, err; 33133b48679SDaniel Mack 33233b48679SDaniel Mack ret = BPF_CGROUP_RUN_PROG_INET_EGRESS(sk, skb); 333956fe219Sbrakmo switch (ret) { 334956fe219Sbrakmo case NET_XMIT_CN: 335d96ff269SDavid S. Miller do_cn = true; 336a8eceea8SJoe Perches fallthrough; 337d96ff269SDavid S. Miller case NET_XMIT_SUCCESS: 338d96ff269SDavid S. Miller break; 339956fe219Sbrakmo default: 3405e187189SMenglong Dong kfree_skb_reason(skb, SKB_DROP_REASON_BPF_CGROUP_EGRESS); 34133b48679SDaniel Mack return ret; 34233b48679SDaniel Mack } 34333b48679SDaniel Mack 3445b18f128SStephen Suryaputra /* Reset rt_iif so that inet_iif() will return skb->skb_iif. Setting 3455b18f128SStephen Suryaputra * this to non-zero causes ipi_ifindex in in_pktinfo to be overwritten, 3465b18f128SStephen Suryaputra * see ipv4_pktinfo_prepare(). 3475b18f128SStephen Suryaputra */ 3485b18f128SStephen Suryaputra new_rt = rt_dst_clone(net->loopback_dev, skb_rtable(skb)); 3495b18f128SStephen Suryaputra if (new_rt) { 3505b18f128SStephen Suryaputra new_rt->rt_iif = 0; 3515b18f128SStephen Suryaputra skb_dst_drop(skb); 3525b18f128SStephen Suryaputra skb_dst_set(skb, &new_rt->dst); 3535b18f128SStephen Suryaputra } 3545b18f128SStephen Suryaputra 355d96ff269SDavid S. Miller err = dev_loopback_xmit(net, sk, skb); 356d96ff269SDavid S. Miller return (do_cn && err) ? ret : err; 35733b48679SDaniel Mack } 35833b48679SDaniel Mack 359ede2059dSEric W. Biederman int ip_mc_output(struct net *net, struct sock *sk, struct sk_buff *skb) 3601da177e4SLinus Torvalds { 361511c3f92SEric Dumazet struct rtable *rt = skb_rtable(skb); 362d8d1f30bSChangli Gao struct net_device *dev = rt->dst.dev; 3631da177e4SLinus Torvalds 3641da177e4SLinus Torvalds /* 3651da177e4SLinus Torvalds * If the indicated interface is up and running, send the packet. 3661da177e4SLinus Torvalds */ 36788f5cc24SEric W. Biederman IP_UPD_PO_STATS(net, IPSTATS_MIB_OUT, skb->len); 3681da177e4SLinus Torvalds 3691da177e4SLinus Torvalds skb->dev = dev; 3701da177e4SLinus Torvalds skb->protocol = htons(ETH_P_IP); 3711da177e4SLinus Torvalds 3721da177e4SLinus Torvalds /* 3731da177e4SLinus Torvalds * Multicasts are looped back for other local users 3741da177e4SLinus Torvalds */ 3751da177e4SLinus Torvalds 3761da177e4SLinus Torvalds if (rt->rt_flags&RTCF_MULTICAST) { 3777ad6848cSOctavian Purdila if (sk_mc_loop(sk) 3781da177e4SLinus Torvalds #ifdef CONFIG_IP_MROUTE 3791da177e4SLinus Torvalds /* Small optimization: do not loopback not local frames, 3801da177e4SLinus Torvalds which returned after forwarding; they will be dropped 3811da177e4SLinus Torvalds by ip_mr_input in any case. 3821da177e4SLinus Torvalds Note, that local frames are looped back to be delivered 3831da177e4SLinus Torvalds to local recipients. 3841da177e4SLinus Torvalds 3851da177e4SLinus Torvalds This check is duplicated in ip_mr_input at the moment. 3861da177e4SLinus Torvalds */ 3879d4fb27dSJoe Perches && 3889d4fb27dSJoe Perches ((rt->rt_flags & RTCF_LOCAL) || 3899d4fb27dSJoe Perches !(IPCB(skb)->flags & IPSKB_FORWARDED)) 3901da177e4SLinus Torvalds #endif 3911da177e4SLinus Torvalds ) { 3921da177e4SLinus Torvalds struct sk_buff *newskb = skb_clone(skb, GFP_ATOMIC); 3931da177e4SLinus Torvalds if (newskb) 3949bbc768aSJan Engelhardt NF_HOOK(NFPROTO_IPV4, NF_INET_POST_ROUTING, 39529a26a56SEric W. Biederman net, sk, newskb, NULL, newskb->dev, 39633b48679SDaniel Mack ip_mc_finish_output); 3971da177e4SLinus Torvalds } 3981da177e4SLinus Torvalds 3991da177e4SLinus Torvalds /* Multicasts with ttl 0 must not go beyond the host */ 4001da177e4SLinus Torvalds 401eddc9ec5SArnaldo Carvalho de Melo if (ip_hdr(skb)->ttl == 0) { 4021da177e4SLinus Torvalds kfree_skb(skb); 4031da177e4SLinus Torvalds return 0; 4041da177e4SLinus Torvalds } 4051da177e4SLinus Torvalds } 4061da177e4SLinus Torvalds 4071da177e4SLinus Torvalds if (rt->rt_flags&RTCF_BROADCAST) { 4081da177e4SLinus Torvalds struct sk_buff *newskb = skb_clone(skb, GFP_ATOMIC); 4091da177e4SLinus Torvalds if (newskb) 41029a26a56SEric W. Biederman NF_HOOK(NFPROTO_IPV4, NF_INET_POST_ROUTING, 41129a26a56SEric W. Biederman net, sk, newskb, NULL, newskb->dev, 41233b48679SDaniel Mack ip_mc_finish_output); 4131da177e4SLinus Torvalds } 4141da177e4SLinus Torvalds 41529a26a56SEric W. Biederman return NF_HOOK_COND(NFPROTO_IPV4, NF_INET_POST_ROUTING, 41629a26a56SEric W. Biederman net, sk, skb, NULL, skb->dev, 41729a26a56SEric W. Biederman ip_finish_output, 41848d5cad8SPatrick McHardy !(IPCB(skb)->flags & IPSKB_REROUTED)); 4191da177e4SLinus Torvalds } 4201da177e4SLinus Torvalds 421ede2059dSEric W. Biederman int ip_output(struct net *net, struct sock *sk, struct sk_buff *skb) 4221da177e4SLinus Torvalds { 42328f8bfd1SPhil Sutter struct net_device *dev = skb_dst(skb)->dev, *indev = skb->dev; 4241bd9bef6SPatrick McHardy 42588f5cc24SEric W. Biederman IP_UPD_PO_STATS(net, IPSTATS_MIB_OUT, skb->len); 4261da177e4SLinus Torvalds 4271bd9bef6SPatrick McHardy skb->dev = dev; 4281bd9bef6SPatrick McHardy skb->protocol = htons(ETH_P_IP); 4291bd9bef6SPatrick McHardy 43029a26a56SEric W. Biederman return NF_HOOK_COND(NFPROTO_IPV4, NF_INET_POST_ROUTING, 43128f8bfd1SPhil Sutter net, sk, skb, indev, dev, 43248d5cad8SPatrick McHardy ip_finish_output, 43348d5cad8SPatrick McHardy !(IPCB(skb)->flags & IPSKB_REROUTED)); 4341da177e4SLinus Torvalds } 4356585d7dcSBrian Vazquez EXPORT_SYMBOL(ip_output); 4361da177e4SLinus Torvalds 43784f9307cSEric Dumazet /* 43884f9307cSEric Dumazet * copy saddr and daddr, possibly using 64bit load/stores 43984f9307cSEric Dumazet * Equivalent to : 44084f9307cSEric Dumazet * iph->saddr = fl4->saddr; 44184f9307cSEric Dumazet * iph->daddr = fl4->daddr; 44284f9307cSEric Dumazet */ 44384f9307cSEric Dumazet static void ip_copy_addrs(struct iphdr *iph, const struct flowi4 *fl4) 44484f9307cSEric Dumazet { 44584f9307cSEric Dumazet BUILD_BUG_ON(offsetof(typeof(*fl4), daddr) != 44684f9307cSEric Dumazet offsetof(typeof(*fl4), saddr) + sizeof(fl4->saddr)); 4476321c7acSGustavo A. R. Silva 4486321c7acSGustavo A. R. Silva iph->saddr = fl4->saddr; 4496321c7acSGustavo A. R. Silva iph->daddr = fl4->daddr; 45084f9307cSEric Dumazet } 45184f9307cSEric Dumazet 452b0270e91SEric Dumazet /* Note: skb->sk can be different from sk, in case of tunnels */ 45369b9e1e0SXin Long int __ip_queue_xmit(struct sock *sk, struct sk_buff *skb, struct flowi *fl, 45469b9e1e0SXin Long __u8 tos) 4551da177e4SLinus Torvalds { 4561da177e4SLinus Torvalds struct inet_sock *inet = inet_sk(sk); 45777589ce0SEric W. Biederman struct net *net = sock_net(sk); 458f6d8bd05SEric Dumazet struct ip_options_rcu *inet_opt; 459b57ae01aSDavid S. Miller struct flowi4 *fl4; 4601da177e4SLinus Torvalds struct rtable *rt; 4611da177e4SLinus Torvalds struct iphdr *iph; 462ab6e3febSEric Dumazet int res; 4631da177e4SLinus Torvalds 4641da177e4SLinus Torvalds /* Skip all of this if the packet is already routed, 4651da177e4SLinus Torvalds * f.e. by something like SCTP. 4661da177e4SLinus Torvalds */ 467ab6e3febSEric Dumazet rcu_read_lock(); 468f6d8bd05SEric Dumazet inet_opt = rcu_dereference(inet->inet_opt); 469ea4fc0d6SDavid S. Miller fl4 = &fl->u.ip4; 470511c3f92SEric Dumazet rt = skb_rtable(skb); 47100db4124SIan Morris if (rt) 4721da177e4SLinus Torvalds goto packet_routed; 4731da177e4SLinus Torvalds 4741da177e4SLinus Torvalds /* Make sure we can route this packet. */ 4751da177e4SLinus Torvalds rt = (struct rtable *)__sk_dst_check(sk, 0); 47651456b29SIan Morris if (!rt) { 4773ca3c68eSAl Viro __be32 daddr; 4781da177e4SLinus Torvalds 4791da177e4SLinus Torvalds /* Use correct destination address if we have options. */ 480c720c7e8SEric Dumazet daddr = inet->inet_daddr; 481f6d8bd05SEric Dumazet if (inet_opt && inet_opt->opt.srr) 482f6d8bd05SEric Dumazet daddr = inet_opt->opt.faddr; 4831da177e4SLinus Torvalds 4841da177e4SLinus Torvalds /* If this fails, retransmit mechanism of transport layer will 4851da177e4SLinus Torvalds * keep trying until route appears or the connection times 4861da177e4SLinus Torvalds * itself out. 4871da177e4SLinus Torvalds */ 48877589ce0SEric W. Biederman rt = ip_route_output_ports(net, fl4, sk, 48978fbfd8aSDavid S. Miller daddr, inet->inet_saddr, 49078fbfd8aSDavid S. Miller inet->inet_dport, 49178fbfd8aSDavid S. Miller inet->inet_sport, 49278fbfd8aSDavid S. Miller sk->sk_protocol, 49369b9e1e0SXin Long RT_CONN_FLAGS_TOS(sk, tos), 49478fbfd8aSDavid S. Miller sk->sk_bound_dev_if); 495b23dd4feSDavid S. Miller if (IS_ERR(rt)) 4961da177e4SLinus Torvalds goto no_route; 497d8d1f30bSChangli Gao sk_setup_caps(sk, &rt->dst); 4981da177e4SLinus Torvalds } 499d8d1f30bSChangli Gao skb_dst_set_noref(skb, &rt->dst); 5001da177e4SLinus Torvalds 5011da177e4SLinus Torvalds packet_routed: 50277d5bc7eSDavid Ahern if (inet_opt && inet_opt->opt.is_strictroute && rt->rt_uses_gateway) 5031da177e4SLinus Torvalds goto no_route; 5041da177e4SLinus Torvalds 5051da177e4SLinus Torvalds /* OK, we know where to send it, allocate and build IP header. */ 506f6d8bd05SEric Dumazet skb_push(skb, sizeof(struct iphdr) + (inet_opt ? inet_opt->opt.optlen : 0)); 5078856dfa3SArnaldo Carvalho de Melo skb_reset_network_header(skb); 508eddc9ec5SArnaldo Carvalho de Melo iph = ip_hdr(skb); 50969b9e1e0SXin Long *((__be16 *)iph) = htons((4 << 12) | (5 << 8) | (tos & 0xff)); 51060ff7467SWANG Cong if (ip_dont_fragment(sk, &rt->dst) && !skb->ignore_df) 5111da177e4SLinus Torvalds iph->frag_off = htons(IP_DF); 5121da177e4SLinus Torvalds else 5131da177e4SLinus Torvalds iph->frag_off = 0; 514d8d1f30bSChangli Gao iph->ttl = ip_select_ttl(inet, &rt->dst); 5151da177e4SLinus Torvalds iph->protocol = sk->sk_protocol; 51684f9307cSEric Dumazet ip_copy_addrs(iph, fl4); 51784f9307cSEric Dumazet 5181da177e4SLinus Torvalds /* Transport layer set skb->h.foo itself. */ 5191da177e4SLinus Torvalds 520f6d8bd05SEric Dumazet if (inet_opt && inet_opt->opt.optlen) { 521f6d8bd05SEric Dumazet iph->ihl += inet_opt->opt.optlen >> 2; 5224f0e3040SJakub Kicinski ip_options_build(skb, &inet_opt->opt, inet->inet_daddr, rt); 5231da177e4SLinus Torvalds } 5241da177e4SLinus Torvalds 52577589ce0SEric W. Biederman ip_select_ident_segs(net, skb, sk, 526b6a7719aSHannes Frederic Sowa skb_shinfo(skb)->gso_segs ?: 1); 5271da177e4SLinus Torvalds 528b0270e91SEric Dumazet /* TODO : should we use skb->sk here instead of sk ? */ 5291da177e4SLinus Torvalds skb->priority = sk->sk_priority; 5304a19ec58SLaszlo Attila Toth skb->mark = sk->sk_mark; 5311da177e4SLinus Torvalds 53233224b16SEric W. Biederman res = ip_local_out(net, sk, skb); 533ab6e3febSEric Dumazet rcu_read_unlock(); 534ab6e3febSEric Dumazet return res; 5351da177e4SLinus Torvalds 5361da177e4SLinus Torvalds no_route: 537ab6e3febSEric Dumazet rcu_read_unlock(); 53877589ce0SEric W. Biederman IP_INC_STATS(net, IPSTATS_MIB_OUTNOROUTES); 5395e187189SMenglong Dong kfree_skb_reason(skb, SKB_DROP_REASON_IP_OUTNOROUTES); 5401da177e4SLinus Torvalds return -EHOSTUNREACH; 5411da177e4SLinus Torvalds } 54269b9e1e0SXin Long EXPORT_SYMBOL(__ip_queue_xmit); 5431da177e4SLinus Torvalds 54405e22e83SEric Dumazet int ip_queue_xmit(struct sock *sk, struct sk_buff *skb, struct flowi *fl) 54505e22e83SEric Dumazet { 54605e22e83SEric Dumazet return __ip_queue_xmit(sk, skb, fl, inet_sk(sk)->tos); 54705e22e83SEric Dumazet } 54805e22e83SEric Dumazet EXPORT_SYMBOL(ip_queue_xmit); 54905e22e83SEric Dumazet 5501da177e4SLinus Torvalds static void ip_copy_metadata(struct sk_buff *to, struct sk_buff *from) 5511da177e4SLinus Torvalds { 5521da177e4SLinus Torvalds to->pkt_type = from->pkt_type; 5531da177e4SLinus Torvalds to->priority = from->priority; 5541da177e4SLinus Torvalds to->protocol = from->protocol; 555d2f0c961SShmulik Ladkani to->skb_iif = from->skb_iif; 556adf30907SEric Dumazet skb_dst_drop(to); 557fe76cda3SEric Dumazet skb_dst_copy(to, from); 5581da177e4SLinus Torvalds to->dev = from->dev; 55982e91ffeSThomas Graf to->mark = from->mark; 5601da177e4SLinus Torvalds 5613dd1c9a1SPaolo Abeni skb_copy_hash(to, from); 5623dd1c9a1SPaolo Abeni 5631da177e4SLinus Torvalds #ifdef CONFIG_NET_SCHED 5641da177e4SLinus Torvalds to->tc_index = from->tc_index; 5651da177e4SLinus Torvalds #endif 566e7ac05f3SYasuyuki Kozakai nf_copy(to, from); 567df5042f4SFlorian Westphal skb_ext_copy(to, from); 5686ca40d4eSJavier Martinez Canillas #if IS_ENABLED(CONFIG_IP_VS) 569c98d80edSJulian Anastasov to->ipvs_property = from->ipvs_property; 570c98d80edSJulian Anastasov #endif 571984bc16cSJames Morris skb_copy_secmark(to, from); 5721da177e4SLinus Torvalds } 5731da177e4SLinus Torvalds 574694869b3SEric W. Biederman static int ip_fragment(struct net *net, struct sock *sk, struct sk_buff *skb, 575c5501eb3SFlorian Westphal unsigned int mtu, 576694869b3SEric W. Biederman int (*output)(struct net *, struct sock *, struct sk_buff *)) 57749d16b23SAndy Zhou { 57849d16b23SAndy Zhou struct iphdr *iph = ip_hdr(skb); 57949d16b23SAndy Zhou 580d6b915e2SFlorian Westphal if ((iph->frag_off & htons(IP_DF)) == 0) 581694869b3SEric W. Biederman return ip_do_fragment(net, sk, skb, output); 582d6b915e2SFlorian Westphal 583d6b915e2SFlorian Westphal if (unlikely(!skb->ignore_df || 58449d16b23SAndy Zhou (IPCB(skb)->frag_max_size && 58549d16b23SAndy Zhou IPCB(skb)->frag_max_size > mtu))) { 5869479b0afSEric W. Biederman IP_INC_STATS(net, IPSTATS_MIB_FRAGFAILS); 58749d16b23SAndy Zhou icmp_send(skb, ICMP_DEST_UNREACH, ICMP_FRAG_NEEDED, 58849d16b23SAndy Zhou htonl(mtu)); 58949d16b23SAndy Zhou kfree_skb(skb); 59049d16b23SAndy Zhou return -EMSGSIZE; 59149d16b23SAndy Zhou } 59249d16b23SAndy Zhou 593694869b3SEric W. Biederman return ip_do_fragment(net, sk, skb, output); 59449d16b23SAndy Zhou } 59549d16b23SAndy Zhou 596c8b17be0SPablo Neira Ayuso void ip_fraglist_init(struct sk_buff *skb, struct iphdr *iph, 597c8b17be0SPablo Neira Ayuso unsigned int hlen, struct ip_fraglist_iter *iter) 598c8b17be0SPablo Neira Ayuso { 599c8b17be0SPablo Neira Ayuso unsigned int first_len = skb_pagelen(skb); 600c8b17be0SPablo Neira Ayuso 601b7034146SEric Dumazet iter->frag = skb_shinfo(skb)->frag_list; 602c8b17be0SPablo Neira Ayuso skb_frag_list_init(skb); 603c8b17be0SPablo Neira Ayuso 604c8b17be0SPablo Neira Ayuso iter->offset = 0; 605c8b17be0SPablo Neira Ayuso iter->iph = iph; 606c8b17be0SPablo Neira Ayuso iter->hlen = hlen; 607c8b17be0SPablo Neira Ayuso 608c8b17be0SPablo Neira Ayuso skb->data_len = first_len - skb_headlen(skb); 609c8b17be0SPablo Neira Ayuso skb->len = first_len; 610c8b17be0SPablo Neira Ayuso iph->tot_len = htons(first_len); 611c8b17be0SPablo Neira Ayuso iph->frag_off = htons(IP_MF); 612c8b17be0SPablo Neira Ayuso ip_send_check(iph); 613c8b17be0SPablo Neira Ayuso } 614c8b17be0SPablo Neira Ayuso EXPORT_SYMBOL(ip_fraglist_init); 615c8b17be0SPablo Neira Ayuso 616c8b17be0SPablo Neira Ayuso void ip_fraglist_prepare(struct sk_buff *skb, struct ip_fraglist_iter *iter) 617c8b17be0SPablo Neira Ayuso { 618c8b17be0SPablo Neira Ayuso unsigned int hlen = iter->hlen; 619c8b17be0SPablo Neira Ayuso struct iphdr *iph = iter->iph; 620c8b17be0SPablo Neira Ayuso struct sk_buff *frag; 621c8b17be0SPablo Neira Ayuso 622c8b17be0SPablo Neira Ayuso frag = iter->frag; 623c8b17be0SPablo Neira Ayuso frag->ip_summed = CHECKSUM_NONE; 624c8b17be0SPablo Neira Ayuso skb_reset_transport_header(frag); 625c8b17be0SPablo Neira Ayuso __skb_push(frag, hlen); 626c8b17be0SPablo Neira Ayuso skb_reset_network_header(frag); 627c8b17be0SPablo Neira Ayuso memcpy(skb_network_header(frag), iph, hlen); 628c8b17be0SPablo Neira Ayuso iter->iph = ip_hdr(frag); 629c8b17be0SPablo Neira Ayuso iph = iter->iph; 630c8b17be0SPablo Neira Ayuso iph->tot_len = htons(frag->len); 631c8b17be0SPablo Neira Ayuso ip_copy_metadata(frag, skb); 632c8b17be0SPablo Neira Ayuso iter->offset += skb->len - hlen; 633c8b17be0SPablo Neira Ayuso iph->frag_off = htons(iter->offset >> 3); 634c8b17be0SPablo Neira Ayuso if (frag->next) 635c8b17be0SPablo Neira Ayuso iph->frag_off |= htons(IP_MF); 636c8b17be0SPablo Neira Ayuso /* Ready, complete checksum */ 637c8b17be0SPablo Neira Ayuso ip_send_check(iph); 638c8b17be0SPablo Neira Ayuso } 639c8b17be0SPablo Neira Ayuso EXPORT_SYMBOL(ip_fraglist_prepare); 640c8b17be0SPablo Neira Ayuso 641065ff79fSPablo Neira Ayuso void ip_frag_init(struct sk_buff *skb, unsigned int hlen, 642e7a409c3SEric Dumazet unsigned int ll_rs, unsigned int mtu, bool DF, 643065ff79fSPablo Neira Ayuso struct ip_frag_state *state) 644065ff79fSPablo Neira Ayuso { 645065ff79fSPablo Neira Ayuso struct iphdr *iph = ip_hdr(skb); 646065ff79fSPablo Neira Ayuso 647e7a409c3SEric Dumazet state->DF = DF; 648065ff79fSPablo Neira Ayuso state->hlen = hlen; 649065ff79fSPablo Neira Ayuso state->ll_rs = ll_rs; 650065ff79fSPablo Neira Ayuso state->mtu = mtu; 651065ff79fSPablo Neira Ayuso 652065ff79fSPablo Neira Ayuso state->left = skb->len - hlen; /* Space per frame */ 653065ff79fSPablo Neira Ayuso state->ptr = hlen; /* Where to start from */ 654065ff79fSPablo Neira Ayuso 655065ff79fSPablo Neira Ayuso state->offset = (ntohs(iph->frag_off) & IP_OFFSET) << 3; 656065ff79fSPablo Neira Ayuso state->not_last_frag = iph->frag_off & htons(IP_MF); 657065ff79fSPablo Neira Ayuso } 658065ff79fSPablo Neira Ayuso EXPORT_SYMBOL(ip_frag_init); 659065ff79fSPablo Neira Ayuso 66019c3401aSPablo Neira Ayuso static void ip_frag_ipcb(struct sk_buff *from, struct sk_buff *to, 661faf482caSYajun Deng bool first_frag) 66219c3401aSPablo Neira Ayuso { 66319c3401aSPablo Neira Ayuso /* Copy the flags to each fragment. */ 66419c3401aSPablo Neira Ayuso IPCB(to)->flags = IPCB(from)->flags; 66519c3401aSPablo Neira Ayuso 66619c3401aSPablo Neira Ayuso /* ANK: dirty, but effective trick. Upgrade options only if 66719c3401aSPablo Neira Ayuso * the segment to be fragmented was THE FIRST (otherwise, 66819c3401aSPablo Neira Ayuso * options are already fixed) and make it ONCE 66919c3401aSPablo Neira Ayuso * on the initial skb, so that all the following fragments 67019c3401aSPablo Neira Ayuso * will inherit fixed options. 67119c3401aSPablo Neira Ayuso */ 67219c3401aSPablo Neira Ayuso if (first_frag) 67319c3401aSPablo Neira Ayuso ip_options_fragment(from); 67419c3401aSPablo Neira Ayuso } 67519c3401aSPablo Neira Ayuso 676065ff79fSPablo Neira Ayuso struct sk_buff *ip_frag_next(struct sk_buff *skb, struct ip_frag_state *state) 677065ff79fSPablo Neira Ayuso { 678065ff79fSPablo Neira Ayuso unsigned int len = state->left; 679065ff79fSPablo Neira Ayuso struct sk_buff *skb2; 680065ff79fSPablo Neira Ayuso struct iphdr *iph; 681065ff79fSPablo Neira Ayuso 682065ff79fSPablo Neira Ayuso /* IF: it doesn't fit, use 'mtu' - the data space left */ 683065ff79fSPablo Neira Ayuso if (len > state->mtu) 684065ff79fSPablo Neira Ayuso len = state->mtu; 685065ff79fSPablo Neira Ayuso /* IF: we are not sending up to and including the packet end 686065ff79fSPablo Neira Ayuso then align the next start on an eight byte boundary */ 687065ff79fSPablo Neira Ayuso if (len < state->left) { 688065ff79fSPablo Neira Ayuso len &= ~7; 689065ff79fSPablo Neira Ayuso } 690065ff79fSPablo Neira Ayuso 691065ff79fSPablo Neira Ayuso /* Allocate buffer */ 692065ff79fSPablo Neira Ayuso skb2 = alloc_skb(len + state->hlen + state->ll_rs, GFP_ATOMIC); 693065ff79fSPablo Neira Ayuso if (!skb2) 694065ff79fSPablo Neira Ayuso return ERR_PTR(-ENOMEM); 695065ff79fSPablo Neira Ayuso 696065ff79fSPablo Neira Ayuso /* 697065ff79fSPablo Neira Ayuso * Set up data on packet 698065ff79fSPablo Neira Ayuso */ 699065ff79fSPablo Neira Ayuso 700065ff79fSPablo Neira Ayuso ip_copy_metadata(skb2, skb); 701065ff79fSPablo Neira Ayuso skb_reserve(skb2, state->ll_rs); 702065ff79fSPablo Neira Ayuso skb_put(skb2, len + state->hlen); 703065ff79fSPablo Neira Ayuso skb_reset_network_header(skb2); 704065ff79fSPablo Neira Ayuso skb2->transport_header = skb2->network_header + state->hlen; 705065ff79fSPablo Neira Ayuso 706065ff79fSPablo Neira Ayuso /* 707065ff79fSPablo Neira Ayuso * Charge the memory for the fragment to any owner 708065ff79fSPablo Neira Ayuso * it might possess 709065ff79fSPablo Neira Ayuso */ 710065ff79fSPablo Neira Ayuso 711065ff79fSPablo Neira Ayuso if (skb->sk) 712065ff79fSPablo Neira Ayuso skb_set_owner_w(skb2, skb->sk); 713065ff79fSPablo Neira Ayuso 714065ff79fSPablo Neira Ayuso /* 715065ff79fSPablo Neira Ayuso * Copy the packet header into the new buffer. 716065ff79fSPablo Neira Ayuso */ 717065ff79fSPablo Neira Ayuso 718065ff79fSPablo Neira Ayuso skb_copy_from_linear_data(skb, skb_network_header(skb2), state->hlen); 719065ff79fSPablo Neira Ayuso 720065ff79fSPablo Neira Ayuso /* 721065ff79fSPablo Neira Ayuso * Copy a block of the IP datagram. 722065ff79fSPablo Neira Ayuso */ 723065ff79fSPablo Neira Ayuso if (skb_copy_bits(skb, state->ptr, skb_transport_header(skb2), len)) 724065ff79fSPablo Neira Ayuso BUG(); 725065ff79fSPablo Neira Ayuso state->left -= len; 726065ff79fSPablo Neira Ayuso 727065ff79fSPablo Neira Ayuso /* 728065ff79fSPablo Neira Ayuso * Fill in the new header fields. 729065ff79fSPablo Neira Ayuso */ 730065ff79fSPablo Neira Ayuso iph = ip_hdr(skb2); 731065ff79fSPablo Neira Ayuso iph->frag_off = htons((state->offset >> 3)); 732e7a409c3SEric Dumazet if (state->DF) 733e7a409c3SEric Dumazet iph->frag_off |= htons(IP_DF); 734065ff79fSPablo Neira Ayuso 735065ff79fSPablo Neira Ayuso /* 736065ff79fSPablo Neira Ayuso * Added AC : If we are fragmenting a fragment that's not the 737065ff79fSPablo Neira Ayuso * last fragment then keep MF on each bit 738065ff79fSPablo Neira Ayuso */ 739065ff79fSPablo Neira Ayuso if (state->left > 0 || state->not_last_frag) 740065ff79fSPablo Neira Ayuso iph->frag_off |= htons(IP_MF); 741065ff79fSPablo Neira Ayuso state->ptr += len; 742065ff79fSPablo Neira Ayuso state->offset += len; 743065ff79fSPablo Neira Ayuso 744065ff79fSPablo Neira Ayuso iph->tot_len = htons(len + state->hlen); 745065ff79fSPablo Neira Ayuso 746065ff79fSPablo Neira Ayuso ip_send_check(iph); 747065ff79fSPablo Neira Ayuso 748065ff79fSPablo Neira Ayuso return skb2; 749065ff79fSPablo Neira Ayuso } 750065ff79fSPablo Neira Ayuso EXPORT_SYMBOL(ip_frag_next); 751065ff79fSPablo Neira Ayuso 7521da177e4SLinus Torvalds /* 7531da177e4SLinus Torvalds * This IP datagram is too large to be sent in one piece. Break it up into 7541da177e4SLinus Torvalds * smaller pieces (each of size equal to IP header plus 7551da177e4SLinus Torvalds * a block of the data of the original IP data part) that will yet fit in a 7561da177e4SLinus Torvalds * single device frame, and queue such a frame for sending. 7571da177e4SLinus Torvalds */ 7581da177e4SLinus Torvalds 759694869b3SEric W. Biederman int ip_do_fragment(struct net *net, struct sock *sk, struct sk_buff *skb, 760694869b3SEric W. Biederman int (*output)(struct net *, struct sock *, struct sk_buff *)) 7611da177e4SLinus Torvalds { 7621da177e4SLinus Torvalds struct iphdr *iph; 7631da177e4SLinus Torvalds struct sk_buff *skb2; 764a1ac9c8aSMartin KaFai Lau bool mono_delivery_time = skb->mono_delivery_time; 765511c3f92SEric Dumazet struct rtable *rt = skb_rtable(skb); 766065ff79fSPablo Neira Ayuso unsigned int mtu, hlen, ll_rs; 767c8b17be0SPablo Neira Ayuso struct ip_fraglist_iter iter; 7689669fffcSEric Dumazet ktime_t tstamp = skb->tstamp; 769065ff79fSPablo Neira Ayuso struct ip_frag_state state; 7701da177e4SLinus Torvalds int err = 0; 7711da177e4SLinus Torvalds 772dbd3393cSHannes Frederic Sowa /* for offloaded checksums cleanup checksum before fragmentation */ 773dbd3393cSHannes Frederic Sowa if (skb->ip_summed == CHECKSUM_PARTIAL && 774dbd3393cSHannes Frederic Sowa (err = skb_checksum_help(skb))) 775dbd3393cSHannes Frederic Sowa goto fail; 776dbd3393cSHannes Frederic Sowa 7771da177e4SLinus Torvalds /* 7781da177e4SLinus Torvalds * Point into the IP datagram header. 7791da177e4SLinus Torvalds */ 7801da177e4SLinus Torvalds 781eddc9ec5SArnaldo Carvalho de Melo iph = ip_hdr(skb); 7821da177e4SLinus Torvalds 783fedbb6b4SShmulik Ladkani mtu = ip_skb_dst_mtu(sk, skb); 784d6b915e2SFlorian Westphal if (IPCB(skb)->frag_max_size && IPCB(skb)->frag_max_size < mtu) 785d6b915e2SFlorian Westphal mtu = IPCB(skb)->frag_max_size; 7861da177e4SLinus Torvalds 7871da177e4SLinus Torvalds /* 7881da177e4SLinus Torvalds * Setup starting values. 7891da177e4SLinus Torvalds */ 7901da177e4SLinus Torvalds 7911da177e4SLinus Torvalds hlen = iph->ihl * 4; 792f87c10a8SHannes Frederic Sowa mtu = mtu - hlen; /* Size of data space */ 79389cee8b1SHerbert Xu IPCB(skb)->flags |= IPSKB_FRAG_COMPLETE; 794254d900bSVasily Averin ll_rs = LL_RESERVED_SPACE(rt->dst.dev); 7951da177e4SLinus Torvalds 7961da177e4SLinus Torvalds /* When frag_list is given, use it. First, check its validity: 7971da177e4SLinus Torvalds * some transformers could create wrong frag_list or break existing 7981da177e4SLinus Torvalds * one, it is not prohibited. In this case fall back to copying. 7991da177e4SLinus Torvalds * 8001da177e4SLinus Torvalds * LATER: this step can be merged to real generation of fragments, 8011da177e4SLinus Torvalds * we can switch to copy when see the first bad fragment. 8021da177e4SLinus Torvalds */ 80321dc3301SDavid S. Miller if (skb_has_frag_list(skb)) { 8043d13008eSEric Dumazet struct sk_buff *frag, *frag2; 805c72d8cdaSAlexey Dobriyan unsigned int first_len = skb_pagelen(skb); 8061da177e4SLinus Torvalds 8071da177e4SLinus Torvalds if (first_len - hlen > mtu || 8081da177e4SLinus Torvalds ((first_len - hlen) & 7) || 80956f8a75cSPaul Gortmaker ip_is_fragment(iph) || 810254d900bSVasily Averin skb_cloned(skb) || 811254d900bSVasily Averin skb_headroom(skb) < ll_rs) 8121da177e4SLinus Torvalds goto slow_path; 8131da177e4SLinus Torvalds 814d7fcf1a5SDavid S. Miller skb_walk_frags(skb, frag) { 8151da177e4SLinus Torvalds /* Correct geometry. */ 8161da177e4SLinus Torvalds if (frag->len > mtu || 8171da177e4SLinus Torvalds ((frag->len & 7) && frag->next) || 818254d900bSVasily Averin skb_headroom(frag) < hlen + ll_rs) 8193d13008eSEric Dumazet goto slow_path_clean; 8201da177e4SLinus Torvalds 8211da177e4SLinus Torvalds /* Partially cloned skb? */ 8221da177e4SLinus Torvalds if (skb_shared(frag)) 8233d13008eSEric Dumazet goto slow_path_clean; 8242fdba6b0SHerbert Xu 8252fdba6b0SHerbert Xu BUG_ON(frag->sk); 8262fdba6b0SHerbert Xu if (skb->sk) { 8272fdba6b0SHerbert Xu frag->sk = skb->sk; 8282fdba6b0SHerbert Xu frag->destructor = sock_wfree; 8292fdba6b0SHerbert Xu } 8303d13008eSEric Dumazet skb->truesize -= frag->truesize; 8311da177e4SLinus Torvalds } 8321da177e4SLinus Torvalds 8331da177e4SLinus Torvalds /* Everything is OK. Generate! */ 834c8b17be0SPablo Neira Ayuso ip_fraglist_init(skb, iph, hlen, &iter); 8351b9fbe81SYajun Deng 8361da177e4SLinus Torvalds for (;;) { 8371da177e4SLinus Torvalds /* Prepare header of the next frame, 8381da177e4SLinus Torvalds * before previous one went down. */ 83919c3401aSPablo Neira Ayuso if (iter.frag) { 84027a8caa5SJakub Kicinski bool first_frag = (iter.offset == 0); 84127a8caa5SJakub Kicinski 842faf482caSYajun Deng IPCB(iter.frag)->flags = IPCB(skb)->flags; 843c8b17be0SPablo Neira Ayuso ip_fraglist_prepare(skb, &iter); 84427a8caa5SJakub Kicinski if (first_frag && IPCB(skb)->opt.optlen) { 84527a8caa5SJakub Kicinski /* ipcb->opt is not populated for frags 84627a8caa5SJakub Kicinski * coming from __ip_make_skb(), 84727a8caa5SJakub Kicinski * ip_options_fragment() needs optlen 84827a8caa5SJakub Kicinski */ 84927a8caa5SJakub Kicinski IPCB(iter.frag)->opt.optlen = 85027a8caa5SJakub Kicinski IPCB(skb)->opt.optlen; 85127a8caa5SJakub Kicinski ip_options_fragment(iter.frag); 85227a8caa5SJakub Kicinski ip_send_check(iter.iph); 85327a8caa5SJakub Kicinski } 85419c3401aSPablo Neira Ayuso } 8551da177e4SLinus Torvalds 856a1ac9c8aSMartin KaFai Lau skb_set_delivery_time(skb, tstamp, mono_delivery_time); 857694869b3SEric W. Biederman err = output(net, sk, skb); 8581da177e4SLinus Torvalds 859dafee490SWei Dong if (!err) 86026a949dbSEric W. Biederman IP_INC_STATS(net, IPSTATS_MIB_FRAGCREATES); 861c8b17be0SPablo Neira Ayuso if (err || !iter.frag) 8621da177e4SLinus Torvalds break; 8631da177e4SLinus Torvalds 864c8b17be0SPablo Neira Ayuso skb = ip_fraglist_next(&iter); 8651da177e4SLinus Torvalds } 8661da177e4SLinus Torvalds 8671da177e4SLinus Torvalds if (err == 0) { 86826a949dbSEric W. Biederman IP_INC_STATS(net, IPSTATS_MIB_FRAGOKS); 8691da177e4SLinus Torvalds return 0; 8701da177e4SLinus Torvalds } 8711da177e4SLinus Torvalds 872b7034146SEric Dumazet kfree_skb_list(iter.frag); 873942f146aSPablo Neira Ayuso 87426a949dbSEric W. Biederman IP_INC_STATS(net, IPSTATS_MIB_FRAGFAILS); 8751da177e4SLinus Torvalds return err; 8763d13008eSEric Dumazet 8773d13008eSEric Dumazet slow_path_clean: 8783d13008eSEric Dumazet skb_walk_frags(skb, frag2) { 8793d13008eSEric Dumazet if (frag2 == frag) 8803d13008eSEric Dumazet break; 8813d13008eSEric Dumazet frag2->sk = NULL; 8823d13008eSEric Dumazet frag2->destructor = NULL; 8833d13008eSEric Dumazet skb->truesize += frag2->truesize; 8843d13008eSEric Dumazet } 8851da177e4SLinus Torvalds } 8861da177e4SLinus Torvalds 8871da177e4SLinus Torvalds slow_path: 8881da177e4SLinus Torvalds /* 8891da177e4SLinus Torvalds * Fragment the datagram. 8901da177e4SLinus Torvalds */ 8911da177e4SLinus Torvalds 892e7a409c3SEric Dumazet ip_frag_init(skb, hlen, ll_rs, mtu, IPCB(skb)->flags & IPSKB_FRAG_PMTU, 893e7a409c3SEric Dumazet &state); 8941da177e4SLinus Torvalds 8951da177e4SLinus Torvalds /* 8961da177e4SLinus Torvalds * Keep copying data until we run out. 8971da177e4SLinus Torvalds */ 8981da177e4SLinus Torvalds 899065ff79fSPablo Neira Ayuso while (state.left > 0) { 90019c3401aSPablo Neira Ayuso bool first_frag = (state.offset == 0); 90119c3401aSPablo Neira Ayuso 902065ff79fSPablo Neira Ayuso skb2 = ip_frag_next(skb, &state); 903065ff79fSPablo Neira Ayuso if (IS_ERR(skb2)) { 904065ff79fSPablo Neira Ayuso err = PTR_ERR(skb2); 9051da177e4SLinus Torvalds goto fail; 9061da177e4SLinus Torvalds } 907faf482caSYajun Deng ip_frag_ipcb(skb, skb2, first_frag); 9081da177e4SLinus Torvalds 9091da177e4SLinus Torvalds /* 9101da177e4SLinus Torvalds * Put this fragment into the sending queue. 9111da177e4SLinus Torvalds */ 912a1ac9c8aSMartin KaFai Lau skb_set_delivery_time(skb2, tstamp, mono_delivery_time); 913694869b3SEric W. Biederman err = output(net, sk, skb2); 9141da177e4SLinus Torvalds if (err) 9151da177e4SLinus Torvalds goto fail; 916dafee490SWei Dong 91726a949dbSEric W. Biederman IP_INC_STATS(net, IPSTATS_MIB_FRAGCREATES); 9181da177e4SLinus Torvalds } 9195d0ba55bSEric Dumazet consume_skb(skb); 92026a949dbSEric W. Biederman IP_INC_STATS(net, IPSTATS_MIB_FRAGOKS); 9211da177e4SLinus Torvalds return err; 9221da177e4SLinus Torvalds 9231da177e4SLinus Torvalds fail: 9241da177e4SLinus Torvalds kfree_skb(skb); 92526a949dbSEric W. Biederman IP_INC_STATS(net, IPSTATS_MIB_FRAGFAILS); 9261da177e4SLinus Torvalds return err; 9271da177e4SLinus Torvalds } 92849d16b23SAndy Zhou EXPORT_SYMBOL(ip_do_fragment); 9292e2f7aefSPatrick McHardy 9301da177e4SLinus Torvalds int 9311da177e4SLinus Torvalds ip_generic_getfrag(void *from, char *to, int offset, int len, int odd, struct sk_buff *skb) 9321da177e4SLinus Torvalds { 933f69e6d13SAl Viro struct msghdr *msg = from; 9341da177e4SLinus Torvalds 93584fa7933SPatrick McHardy if (skb->ip_summed == CHECKSUM_PARTIAL) { 9360b62fca2SAl Viro if (!copy_from_iter_full(to, len, &msg->msg_iter)) 9371da177e4SLinus Torvalds return -EFAULT; 9381da177e4SLinus Torvalds } else { 93944bb9363SAl Viro __wsum csum = 0; 9400b62fca2SAl Viro if (!csum_and_copy_from_iter_full(to, len, &csum, &msg->msg_iter)) 9411da177e4SLinus Torvalds return -EFAULT; 9421da177e4SLinus Torvalds skb->csum = csum_block_add(skb->csum, csum, odd); 9431da177e4SLinus Torvalds } 9441da177e4SLinus Torvalds return 0; 9451da177e4SLinus Torvalds } 9464bc2f18bSEric Dumazet EXPORT_SYMBOL(ip_generic_getfrag); 9471da177e4SLinus Torvalds 94844bb9363SAl Viro static inline __wsum 9491da177e4SLinus Torvalds csum_page(struct page *page, int offset, int copy) 9501da177e4SLinus Torvalds { 9511da177e4SLinus Torvalds char *kaddr; 95244bb9363SAl Viro __wsum csum; 9531da177e4SLinus Torvalds kaddr = kmap(page); 9541da177e4SLinus Torvalds csum = csum_partial(kaddr + offset, copy, 0); 9551da177e4SLinus Torvalds kunmap(page); 9561da177e4SLinus Torvalds return csum; 9571da177e4SLinus Torvalds } 9581da177e4SLinus Torvalds 959f5fca608SDavid S. Miller static int __ip_append_data(struct sock *sk, 960f5fca608SDavid S. Miller struct flowi4 *fl4, 961f5fca608SDavid S. Miller struct sk_buff_head *queue, 9621470ddf7SHerbert Xu struct inet_cork *cork, 9635640f768SEric Dumazet struct page_frag *pfrag, 9641470ddf7SHerbert Xu int getfrag(void *from, char *to, int offset, 9651470ddf7SHerbert Xu int len, int odd, struct sk_buff *skb), 9661da177e4SLinus Torvalds void *from, int length, int transhdrlen, 9671da177e4SLinus Torvalds unsigned int flags) 9681da177e4SLinus Torvalds { 9691da177e4SLinus Torvalds struct inet_sock *inet = inet_sk(sk); 970b5947e5dSWillem de Bruijn struct ubuf_info *uarg = NULL; 9711da177e4SLinus Torvalds struct sk_buff *skb; 97207df5294SHerbert Xu struct ip_options *opt = cork->opt; 9731da177e4SLinus Torvalds int hh_len; 9741da177e4SLinus Torvalds int exthdrlen; 9751da177e4SLinus Torvalds int mtu; 9761da177e4SLinus Torvalds int copy; 9771da177e4SLinus Torvalds int err; 9781da177e4SLinus Torvalds int offset = 0; 9798eb77cc7SPavel Begunkov bool zc = false; 980daba287bSHannes Frederic Sowa unsigned int maxfraglen, fragheaderlen, maxnonfragsize; 9811da177e4SLinus Torvalds int csummode = CHECKSUM_NONE; 9821470ddf7SHerbert Xu struct rtable *rt = (struct rtable *)cork->dst; 983694aba69SEric Dumazet unsigned int wmem_alloc_delta = 0; 984100f6d8eSWillem de Bruijn bool paged, extra_uref = false; 98509c2d251SWillem de Bruijn u32 tskey = 0; 9861da177e4SLinus Torvalds 98796d7303eSSteffen Klassert skb = skb_peek_tail(queue); 98896d7303eSSteffen Klassert 98996d7303eSSteffen Klassert exthdrlen = !skb ? rt->dst.header_len : 0; 990bec1f6f6SWillem de Bruijn mtu = cork->gso_size ? IP_MAX_MTU : cork->fragsize; 99115e36f5bSWillem de Bruijn paged = !!cork->gso_size; 992bec1f6f6SWillem de Bruijn 99309c2d251SWillem de Bruijn if (cork->tx_flags & SKBTX_ANY_SW_TSTAMP && 99409c2d251SWillem de Bruijn sk->sk_tsflags & SOF_TIMESTAMPING_OPT_ID) 995a1cdec57SEric Dumazet tskey = atomic_inc_return(&sk->sk_tskey) - 1; 9961470ddf7SHerbert Xu 997d8d1f30bSChangli Gao hh_len = LL_RESERVED_SPACE(rt->dst.dev); 9981da177e4SLinus Torvalds 9991da177e4SLinus Torvalds fragheaderlen = sizeof(struct iphdr) + (opt ? opt->optlen : 0); 10001da177e4SLinus Torvalds maxfraglen = ((mtu - fragheaderlen) & ~7) + fragheaderlen; 1001cbc08a33SMiaohe Lin maxnonfragsize = ip_sk_ignore_df(sk) ? IP_MAX_MTU : mtu; 10021da177e4SLinus Torvalds 1003daba287bSHannes Frederic Sowa if (cork->length + length > maxnonfragsize - fragheaderlen) { 1004f5fca608SDavid S. Miller ip_local_error(sk, EMSGSIZE, fl4->daddr, inet->inet_dport, 100561e7f09dSHannes Frederic Sowa mtu - (opt ? opt->optlen : 0)); 10061da177e4SLinus Torvalds return -EMSGSIZE; 10071da177e4SLinus Torvalds } 10081da177e4SLinus Torvalds 10091da177e4SLinus Torvalds /* 10101da177e4SLinus Torvalds * transhdrlen > 0 means that this is the first fragment and we wish 10111da177e4SLinus Torvalds * it won't be fragmented in the future. 10121da177e4SLinus Torvalds */ 10131da177e4SLinus Torvalds if (transhdrlen && 10141da177e4SLinus Torvalds length + fragheaderlen <= mtu && 1015c8cd0989STom Herbert rt->dst.dev->features & (NETIF_F_HW_CSUM | NETIF_F_IP_CSUM) && 1016bec1f6f6SWillem de Bruijn (!(flags & MSG_MORE) || cork->gso_size) && 1017cd027a54SJacek Kalwas (!exthdrlen || (rt->dst.dev->features & NETIF_F_HW_ESP_TX_CSUM))) 101884fa7933SPatrick McHardy csummode = CHECKSUM_PARTIAL; 10191da177e4SLinus Torvalds 1020c445f31bSPavel Begunkov if ((flags & MSG_ZEROCOPY) && length) { 1021c445f31bSPavel Begunkov struct msghdr *msg = from; 1022c445f31bSPavel Begunkov 1023c445f31bSPavel Begunkov if (getfrag == ip_generic_getfrag && msg->msg_ubuf) { 1024c445f31bSPavel Begunkov if (skb_zcopy(skb) && msg->msg_ubuf != skb_zcopy(skb)) 1025c445f31bSPavel Begunkov return -EINVAL; 1026c445f31bSPavel Begunkov 1027c445f31bSPavel Begunkov /* Leave uarg NULL if can't zerocopy, callers should 1028c445f31bSPavel Begunkov * be able to handle it. 1029c445f31bSPavel Begunkov */ 1030c445f31bSPavel Begunkov if ((rt->dst.dev->features & NETIF_F_SG) && 1031c445f31bSPavel Begunkov csummode == CHECKSUM_PARTIAL) { 1032c445f31bSPavel Begunkov paged = true; 1033c445f31bSPavel Begunkov zc = true; 1034c445f31bSPavel Begunkov uarg = msg->msg_ubuf; 1035c445f31bSPavel Begunkov } 1036c445f31bSPavel Begunkov } else if (sock_flag(sk, SOCK_ZEROCOPY)) { 10378c793822SJonathan Lemon uarg = msg_zerocopy_realloc(sk, length, skb_zcopy(skb)); 1038b5947e5dSWillem de Bruijn if (!uarg) 1039b5947e5dSWillem de Bruijn return -ENOBUFS; 1040522924b5SWillem de Bruijn extra_uref = !skb_zcopy(skb); /* only ref on new uarg */ 1041b5947e5dSWillem de Bruijn if (rt->dst.dev->features & NETIF_F_SG && 1042b5947e5dSWillem de Bruijn csummode == CHECKSUM_PARTIAL) { 1043b5947e5dSWillem de Bruijn paged = true; 10448eb77cc7SPavel Begunkov zc = true; 1045b5947e5dSWillem de Bruijn } else { 1046b5947e5dSWillem de Bruijn uarg->zerocopy = 0; 104752900d22SWillem de Bruijn skb_zcopy_set(skb, uarg, &extra_uref); 1048b5947e5dSWillem de Bruijn } 1049b5947e5dSWillem de Bruijn } 1050c445f31bSPavel Begunkov } 1051b5947e5dSWillem de Bruijn 10521470ddf7SHerbert Xu cork->length += length; 10531da177e4SLinus Torvalds 10541da177e4SLinus Torvalds /* So, what's going on in the loop below? 10551da177e4SLinus Torvalds * 10561da177e4SLinus Torvalds * We use calculated fragment length to generate chained skb, 10571da177e4SLinus Torvalds * each of segments is IP fragment ready for sending to network after 10581da177e4SLinus Torvalds * adding appropriate IP header. 10591da177e4SLinus Torvalds */ 10601da177e4SLinus Torvalds 106126cde9f7SHerbert Xu if (!skb) 10621da177e4SLinus Torvalds goto alloc_new_skb; 10631da177e4SLinus Torvalds 10641da177e4SLinus Torvalds while (length > 0) { 10651da177e4SLinus Torvalds /* Check if the remaining data fits into current packet. */ 10661da177e4SLinus Torvalds copy = mtu - skb->len; 10671da177e4SLinus Torvalds if (copy < length) 10681da177e4SLinus Torvalds copy = maxfraglen - skb->len; 10691da177e4SLinus Torvalds if (copy <= 0) { 10701da177e4SLinus Torvalds char *data; 10711da177e4SLinus Torvalds unsigned int datalen; 10721da177e4SLinus Torvalds unsigned int fraglen; 10731da177e4SLinus Torvalds unsigned int fraggap; 10746d123b81SJakub Kicinski unsigned int alloclen, alloc_extra; 1075aba36930SWillem de Bruijn unsigned int pagedlen; 10761da177e4SLinus Torvalds struct sk_buff *skb_prev; 10771da177e4SLinus Torvalds alloc_new_skb: 10781da177e4SLinus Torvalds skb_prev = skb; 10791da177e4SLinus Torvalds if (skb_prev) 10801da177e4SLinus Torvalds fraggap = skb_prev->len - maxfraglen; 10811da177e4SLinus Torvalds else 10821da177e4SLinus Torvalds fraggap = 0; 10831da177e4SLinus Torvalds 10841da177e4SLinus Torvalds /* 10851da177e4SLinus Torvalds * If remaining data exceeds the mtu, 10861da177e4SLinus Torvalds * we know we need more fragment(s). 10871da177e4SLinus Torvalds */ 10881da177e4SLinus Torvalds datalen = length + fraggap; 10891da177e4SLinus Torvalds if (datalen > mtu - fragheaderlen) 10901da177e4SLinus Torvalds datalen = maxfraglen - fragheaderlen; 10911da177e4SLinus Torvalds fraglen = datalen + fragheaderlen; 1092aba36930SWillem de Bruijn pagedlen = 0; 10931da177e4SLinus Torvalds 10946d123b81SJakub Kicinski alloc_extra = hh_len + 15; 10956d123b81SJakub Kicinski alloc_extra += exthdrlen; 1096353e5c9aSSteffen Klassert 10971da177e4SLinus Torvalds /* The last fragment gets additional space at tail. 10981da177e4SLinus Torvalds * Note, with MSG_MORE we overallocate on fragments, 10991da177e4SLinus Torvalds * because we have no idea what fragment will be 11001da177e4SLinus Torvalds * the last. 11011da177e4SLinus Torvalds */ 110233f99dc7SSteffen Klassert if (datalen == length + fraggap) 11036d123b81SJakub Kicinski alloc_extra += rt->dst.trailer_len; 11046d123b81SJakub Kicinski 11056d123b81SJakub Kicinski if ((flags & MSG_MORE) && 11066d123b81SJakub Kicinski !(rt->dst.dev->features&NETIF_F_SG)) 11076d123b81SJakub Kicinski alloclen = mtu; 11086d123b81SJakub Kicinski else if (!paged && 11096d123b81SJakub Kicinski (fraglen + alloc_extra < SKB_MAX_ALLOC || 11106d123b81SJakub Kicinski !(rt->dst.dev->features & NETIF_F_SG))) 11116d123b81SJakub Kicinski alloclen = fraglen; 11128eb77cc7SPavel Begunkov else if (!zc) { 11136d123b81SJakub Kicinski alloclen = min_t(int, fraglen, MAX_HEADER); 11146d123b81SJakub Kicinski pagedlen = fraglen - alloclen; 11158eb77cc7SPavel Begunkov } else { 11168eb77cc7SPavel Begunkov alloclen = fragheaderlen + transhdrlen; 11178eb77cc7SPavel Begunkov pagedlen = datalen - transhdrlen; 11186d123b81SJakub Kicinski } 11196d123b81SJakub Kicinski 11206d123b81SJakub Kicinski alloclen += alloc_extra; 112133f99dc7SSteffen Klassert 11221da177e4SLinus Torvalds if (transhdrlen) { 11236d123b81SJakub Kicinski skb = sock_alloc_send_skb(sk, alloclen, 11241da177e4SLinus Torvalds (flags & MSG_DONTWAIT), &err); 11251da177e4SLinus Torvalds } else { 11261da177e4SLinus Torvalds skb = NULL; 1127694aba69SEric Dumazet if (refcount_read(&sk->sk_wmem_alloc) + wmem_alloc_delta <= 11281da177e4SLinus Torvalds 2 * sk->sk_sndbuf) 11296d123b81SJakub Kicinski skb = alloc_skb(alloclen, 11301da177e4SLinus Torvalds sk->sk_allocation); 113151456b29SIan Morris if (unlikely(!skb)) 11321da177e4SLinus Torvalds err = -ENOBUFS; 11331da177e4SLinus Torvalds } 113451456b29SIan Morris if (!skb) 11351da177e4SLinus Torvalds goto error; 11361da177e4SLinus Torvalds 11371da177e4SLinus Torvalds /* 11381da177e4SLinus Torvalds * Fill in the control structures 11391da177e4SLinus Torvalds */ 11401da177e4SLinus Torvalds skb->ip_summed = csummode; 11411da177e4SLinus Torvalds skb->csum = 0; 11421da177e4SLinus Torvalds skb_reserve(skb, hh_len); 114311878b40SWillem de Bruijn 11441da177e4SLinus Torvalds /* 11451da177e4SLinus Torvalds * Find where to start putting bytes. 11461da177e4SLinus Torvalds */ 114715e36f5bSWillem de Bruijn data = skb_put(skb, fraglen + exthdrlen - pagedlen); 1148c14d2450SArnaldo Carvalho de Melo skb_set_network_header(skb, exthdrlen); 1149b0e380b1SArnaldo Carvalho de Melo skb->transport_header = (skb->network_header + 1150b0e380b1SArnaldo Carvalho de Melo fragheaderlen); 1151353e5c9aSSteffen Klassert data += fragheaderlen + exthdrlen; 11521da177e4SLinus Torvalds 11531da177e4SLinus Torvalds if (fraggap) { 11541da177e4SLinus Torvalds skb->csum = skb_copy_and_csum_bits( 11551da177e4SLinus Torvalds skb_prev, maxfraglen, 11568d5930dfSAl Viro data + transhdrlen, fraggap); 11571da177e4SLinus Torvalds skb_prev->csum = csum_sub(skb_prev->csum, 11581da177e4SLinus Torvalds skb->csum); 11591da177e4SLinus Torvalds data += fraggap; 1160e9fa4f7bSHerbert Xu pskb_trim_unique(skb_prev, maxfraglen); 11611da177e4SLinus Torvalds } 11621da177e4SLinus Torvalds 116315e36f5bSWillem de Bruijn copy = datalen - transhdrlen - fraggap - pagedlen; 11641da177e4SLinus Torvalds if (copy > 0 && getfrag(from, data + transhdrlen, offset, copy, fraggap, skb) < 0) { 11651da177e4SLinus Torvalds err = -EFAULT; 11661da177e4SLinus Torvalds kfree_skb(skb); 11671da177e4SLinus Torvalds goto error; 11681da177e4SLinus Torvalds } 11691da177e4SLinus Torvalds 11701da177e4SLinus Torvalds offset += copy; 117115e36f5bSWillem de Bruijn length -= copy + transhdrlen; 11721da177e4SLinus Torvalds transhdrlen = 0; 11731da177e4SLinus Torvalds exthdrlen = 0; 11741da177e4SLinus Torvalds csummode = CHECKSUM_NONE; 11751da177e4SLinus Torvalds 117652900d22SWillem de Bruijn /* only the initial fragment is time stamped */ 117752900d22SWillem de Bruijn skb_shinfo(skb)->tx_flags = cork->tx_flags; 117852900d22SWillem de Bruijn cork->tx_flags = 0; 117952900d22SWillem de Bruijn skb_shinfo(skb)->tskey = tskey; 118052900d22SWillem de Bruijn tskey = 0; 118152900d22SWillem de Bruijn skb_zcopy_set(skb, uarg, &extra_uref); 118252900d22SWillem de Bruijn 11830dec879fSJulian Anastasov if ((flags & MSG_CONFIRM) && !skb_prev) 11840dec879fSJulian Anastasov skb_set_dst_pending_confirm(skb, 1); 11850dec879fSJulian Anastasov 11861da177e4SLinus Torvalds /* 11871da177e4SLinus Torvalds * Put the packet on the pending queue. 11881da177e4SLinus Torvalds */ 1189694aba69SEric Dumazet if (!skb->destructor) { 1190694aba69SEric Dumazet skb->destructor = sock_wfree; 1191694aba69SEric Dumazet skb->sk = sk; 1192694aba69SEric Dumazet wmem_alloc_delta += skb->truesize; 1193694aba69SEric Dumazet } 11941470ddf7SHerbert Xu __skb_queue_tail(queue, skb); 11951da177e4SLinus Torvalds continue; 11961da177e4SLinus Torvalds } 11971da177e4SLinus Torvalds 11981da177e4SLinus Torvalds if (copy > length) 11991da177e4SLinus Torvalds copy = length; 12001da177e4SLinus Torvalds 1201113f99c3SWillem de Bruijn if (!(rt->dst.dev->features&NETIF_F_SG) && 1202113f99c3SWillem de Bruijn skb_tailroom(skb) >= copy) { 12031da177e4SLinus Torvalds unsigned int off; 12041da177e4SLinus Torvalds 12051da177e4SLinus Torvalds off = skb->len; 12061da177e4SLinus Torvalds if (getfrag(from, skb_put(skb, copy), 12071da177e4SLinus Torvalds offset, copy, off, skb) < 0) { 12081da177e4SLinus Torvalds __skb_trim(skb, off); 12091da177e4SLinus Torvalds err = -EFAULT; 12101da177e4SLinus Torvalds goto error; 12111da177e4SLinus Torvalds } 1212c445f31bSPavel Begunkov } else if (!zc) { 12131da177e4SLinus Torvalds int i = skb_shinfo(skb)->nr_frags; 12141da177e4SLinus Torvalds 12151da177e4SLinus Torvalds err = -ENOMEM; 12165640f768SEric Dumazet if (!sk_page_frag_refill(sk, pfrag)) 12171da177e4SLinus Torvalds goto error; 12181da177e4SLinus Torvalds 1219c445f31bSPavel Begunkov skb_zcopy_downgrade_managed(skb); 12205640f768SEric Dumazet if (!skb_can_coalesce(skb, i, pfrag->page, 12215640f768SEric Dumazet pfrag->offset)) { 12221da177e4SLinus Torvalds err = -EMSGSIZE; 12235640f768SEric Dumazet if (i == MAX_SKB_FRAGS) 12241da177e4SLinus Torvalds goto error; 12255640f768SEric Dumazet 12265640f768SEric Dumazet __skb_fill_page_desc(skb, i, pfrag->page, 12275640f768SEric Dumazet pfrag->offset, 0); 12285640f768SEric Dumazet skb_shinfo(skb)->nr_frags = ++i; 12295640f768SEric Dumazet get_page(pfrag->page); 12301da177e4SLinus Torvalds } 12315640f768SEric Dumazet copy = min_t(int, copy, pfrag->size - pfrag->offset); 12325640f768SEric Dumazet if (getfrag(from, 12335640f768SEric Dumazet page_address(pfrag->page) + pfrag->offset, 12345640f768SEric Dumazet offset, copy, skb->len, skb) < 0) 12355640f768SEric Dumazet goto error_efault; 12365640f768SEric Dumazet 12375640f768SEric Dumazet pfrag->offset += copy; 12385640f768SEric Dumazet skb_frag_size_add(&skb_shinfo(skb)->frags[i - 1], copy); 1239ede57d58SRichard Gobert skb_len_add(skb, copy); 1240694aba69SEric Dumazet wmem_alloc_delta += copy; 1241b5947e5dSWillem de Bruijn } else { 1242b5947e5dSWillem de Bruijn err = skb_zerocopy_iter_dgram(skb, from, copy); 1243b5947e5dSWillem de Bruijn if (err < 0) 1244b5947e5dSWillem de Bruijn goto error; 12451da177e4SLinus Torvalds } 12461da177e4SLinus Torvalds offset += copy; 12471da177e4SLinus Torvalds length -= copy; 12481da177e4SLinus Torvalds } 12491da177e4SLinus Torvalds 12509e8445a5SPaolo Abeni if (wmem_alloc_delta) 1251694aba69SEric Dumazet refcount_add(wmem_alloc_delta, &sk->sk_wmem_alloc); 12521da177e4SLinus Torvalds return 0; 12531da177e4SLinus Torvalds 12545640f768SEric Dumazet error_efault: 12555640f768SEric Dumazet err = -EFAULT; 12561da177e4SLinus Torvalds error: 12578e044917SJonathan Lemon net_zcopy_put_abort(uarg, extra_uref); 12581470ddf7SHerbert Xu cork->length -= length; 12595e38e270SPavel Emelyanov IP_INC_STATS(sock_net(sk), IPSTATS_MIB_OUTDISCARDS); 1260694aba69SEric Dumazet refcount_add(wmem_alloc_delta, &sk->sk_wmem_alloc); 12611da177e4SLinus Torvalds return err; 12621da177e4SLinus Torvalds } 12631da177e4SLinus Torvalds 12641470ddf7SHerbert Xu static int ip_setup_cork(struct sock *sk, struct inet_cork *cork, 12651470ddf7SHerbert Xu struct ipcm_cookie *ipc, struct rtable **rtp) 12661470ddf7SHerbert Xu { 1267f6d8bd05SEric Dumazet struct ip_options_rcu *opt; 12681470ddf7SHerbert Xu struct rtable *rt; 12691470ddf7SHerbert Xu 12709783ccd0SGao Feng rt = *rtp; 12719783ccd0SGao Feng if (unlikely(!rt)) 12729783ccd0SGao Feng return -EFAULT; 12739783ccd0SGao Feng 12741470ddf7SHerbert Xu /* 12751470ddf7SHerbert Xu * setup for corking. 12761470ddf7SHerbert Xu */ 12771470ddf7SHerbert Xu opt = ipc->opt; 12781470ddf7SHerbert Xu if (opt) { 127951456b29SIan Morris if (!cork->opt) { 12801470ddf7SHerbert Xu cork->opt = kmalloc(sizeof(struct ip_options) + 40, 12811470ddf7SHerbert Xu sk->sk_allocation); 128251456b29SIan Morris if (unlikely(!cork->opt)) 12831470ddf7SHerbert Xu return -ENOBUFS; 12841470ddf7SHerbert Xu } 1285f6d8bd05SEric Dumazet memcpy(cork->opt, &opt->opt, sizeof(struct ip_options) + opt->opt.optlen); 12861470ddf7SHerbert Xu cork->flags |= IPCORK_OPT; 12871470ddf7SHerbert Xu cork->addr = ipc->addr; 12881470ddf7SHerbert Xu } 12899783ccd0SGao Feng 1290482fc609SHannes Frederic Sowa cork->fragsize = ip_sk_use_pmtu(sk) ? 1291501a90c9SEric Dumazet dst_mtu(&rt->dst) : READ_ONCE(rt->dst.dev->mtu); 1292501a90c9SEric Dumazet 1293501a90c9SEric Dumazet if (!inetdev_valid_mtu(cork->fragsize)) 1294501a90c9SEric Dumazet return -ENETUNREACH; 1295bec1f6f6SWillem de Bruijn 1296fbf47813SWillem de Bruijn cork->gso_size = ipc->gso_size; 1297501a90c9SEric Dumazet 12981470ddf7SHerbert Xu cork->dst = &rt->dst; 1299501a90c9SEric Dumazet /* We stole this route, caller should not release it. */ 1300501a90c9SEric Dumazet *rtp = NULL; 1301501a90c9SEric Dumazet 13021470ddf7SHerbert Xu cork->length = 0; 1303aa661581SFrancesco Fusco cork->ttl = ipc->ttl; 1304aa661581SFrancesco Fusco cork->tos = ipc->tos; 1305c6af0c22SWillem de Bruijn cork->mark = ipc->sockc.mark; 1306aa661581SFrancesco Fusco cork->priority = ipc->priority; 1307bc969a97SJesus Sanchez-Palencia cork->transmit_time = ipc->sockc.transmit_time; 1308678ca42dSWillem de Bruijn cork->tx_flags = 0; 1309678ca42dSWillem de Bruijn sock_tx_timestamp(sk, ipc->sockc.tsflags, &cork->tx_flags); 13101470ddf7SHerbert Xu 13111470ddf7SHerbert Xu return 0; 13121470ddf7SHerbert Xu } 13131470ddf7SHerbert Xu 13141470ddf7SHerbert Xu /* 13151470ddf7SHerbert Xu * ip_append_data() and ip_append_page() can make one large IP datagram 13161470ddf7SHerbert Xu * from many pieces of data. Each pieces will be holded on the socket 13171470ddf7SHerbert Xu * until ip_push_pending_frames() is called. Each piece can be a page 13181470ddf7SHerbert Xu * or non-page data. 13191470ddf7SHerbert Xu * 13201470ddf7SHerbert Xu * Not only UDP, other transport protocols - e.g. raw sockets - can use 13211470ddf7SHerbert Xu * this interface potentially. 13221470ddf7SHerbert Xu * 13231470ddf7SHerbert Xu * LATER: length must be adjusted by pad at tail, when it is required. 13241470ddf7SHerbert Xu */ 1325f5fca608SDavid S. Miller int ip_append_data(struct sock *sk, struct flowi4 *fl4, 13261470ddf7SHerbert Xu int getfrag(void *from, char *to, int offset, int len, 13271470ddf7SHerbert Xu int odd, struct sk_buff *skb), 13281470ddf7SHerbert Xu void *from, int length, int transhdrlen, 13291470ddf7SHerbert Xu struct ipcm_cookie *ipc, struct rtable **rtp, 13301470ddf7SHerbert Xu unsigned int flags) 13311470ddf7SHerbert Xu { 13321470ddf7SHerbert Xu struct inet_sock *inet = inet_sk(sk); 13331470ddf7SHerbert Xu int err; 13341470ddf7SHerbert Xu 13351470ddf7SHerbert Xu if (flags&MSG_PROBE) 13361470ddf7SHerbert Xu return 0; 13371470ddf7SHerbert Xu 13381470ddf7SHerbert Xu if (skb_queue_empty(&sk->sk_write_queue)) { 1339bdc712b4SDavid S. Miller err = ip_setup_cork(sk, &inet->cork.base, ipc, rtp); 13401470ddf7SHerbert Xu if (err) 13411470ddf7SHerbert Xu return err; 13421470ddf7SHerbert Xu } else { 13431470ddf7SHerbert Xu transhdrlen = 0; 13441470ddf7SHerbert Xu } 13451470ddf7SHerbert Xu 13465640f768SEric Dumazet return __ip_append_data(sk, fl4, &sk->sk_write_queue, &inet->cork.base, 13475640f768SEric Dumazet sk_page_frag(sk), getfrag, 13481470ddf7SHerbert Xu from, length, transhdrlen, flags); 13491470ddf7SHerbert Xu } 13501470ddf7SHerbert Xu 1351f5fca608SDavid S. Miller ssize_t ip_append_page(struct sock *sk, struct flowi4 *fl4, struct page *page, 13521da177e4SLinus Torvalds int offset, size_t size, int flags) 13531da177e4SLinus Torvalds { 13541da177e4SLinus Torvalds struct inet_sock *inet = inet_sk(sk); 13551da177e4SLinus Torvalds struct sk_buff *skb; 13561da177e4SLinus Torvalds struct rtable *rt; 13571da177e4SLinus Torvalds struct ip_options *opt = NULL; 1358bdc712b4SDavid S. Miller struct inet_cork *cork; 13591da177e4SLinus Torvalds int hh_len; 13601da177e4SLinus Torvalds int mtu; 13611da177e4SLinus Torvalds int len; 13621da177e4SLinus Torvalds int err; 1363daba287bSHannes Frederic Sowa unsigned int maxfraglen, fragheaderlen, fraggap, maxnonfragsize; 13641da177e4SLinus Torvalds 13651da177e4SLinus Torvalds if (inet->hdrincl) 13661da177e4SLinus Torvalds return -EPERM; 13671da177e4SLinus Torvalds 13681da177e4SLinus Torvalds if (flags&MSG_PROBE) 13691da177e4SLinus Torvalds return 0; 13701da177e4SLinus Torvalds 13711da177e4SLinus Torvalds if (skb_queue_empty(&sk->sk_write_queue)) 13721da177e4SLinus Torvalds return -EINVAL; 13731da177e4SLinus Torvalds 1374bdc712b4SDavid S. Miller cork = &inet->cork.base; 1375bdc712b4SDavid S. Miller rt = (struct rtable *)cork->dst; 1376bdc712b4SDavid S. Miller if (cork->flags & IPCORK_OPT) 1377bdc712b4SDavid S. Miller opt = cork->opt; 13781da177e4SLinus Torvalds 1379d8d1f30bSChangli Gao if (!(rt->dst.dev->features & NETIF_F_SG)) 13801da177e4SLinus Torvalds return -EOPNOTSUPP; 13811da177e4SLinus Torvalds 1382d8d1f30bSChangli Gao hh_len = LL_RESERVED_SPACE(rt->dst.dev); 1383bec1f6f6SWillem de Bruijn mtu = cork->gso_size ? IP_MAX_MTU : cork->fragsize; 13841da177e4SLinus Torvalds 13851da177e4SLinus Torvalds fragheaderlen = sizeof(struct iphdr) + (opt ? opt->optlen : 0); 13861da177e4SLinus Torvalds maxfraglen = ((mtu - fragheaderlen) & ~7) + fragheaderlen; 138760ff7467SWANG Cong maxnonfragsize = ip_sk_ignore_df(sk) ? 0xFFFF : mtu; 13881da177e4SLinus Torvalds 1389daba287bSHannes Frederic Sowa if (cork->length + size > maxnonfragsize - fragheaderlen) { 139061e7f09dSHannes Frederic Sowa ip_local_error(sk, EMSGSIZE, fl4->daddr, inet->inet_dport, 139161e7f09dSHannes Frederic Sowa mtu - (opt ? opt->optlen : 0)); 13921da177e4SLinus Torvalds return -EMSGSIZE; 13931da177e4SLinus Torvalds } 13941da177e4SLinus Torvalds 139551456b29SIan Morris skb = skb_peek_tail(&sk->sk_write_queue); 139651456b29SIan Morris if (!skb) 13971da177e4SLinus Torvalds return -EINVAL; 13981da177e4SLinus Torvalds 1399a8c4a252SHannes Frederic Sowa cork->length += size; 1400e89e9cf5SAnanda Raju 14011da177e4SLinus Torvalds while (size > 0) { 14021da177e4SLinus Torvalds /* Check if the remaining data fits into current packet. */ 14031da177e4SLinus Torvalds len = mtu - skb->len; 14041da177e4SLinus Torvalds if (len < size) 14051da177e4SLinus Torvalds len = maxfraglen - skb->len; 1406ab2fb7e3SWillem de Bruijn 14071da177e4SLinus Torvalds if (len <= 0) { 14081da177e4SLinus Torvalds struct sk_buff *skb_prev; 14091da177e4SLinus Torvalds int alloclen; 14101da177e4SLinus Torvalds 14111da177e4SLinus Torvalds skb_prev = skb; 14121da177e4SLinus Torvalds fraggap = skb_prev->len - maxfraglen; 14131da177e4SLinus Torvalds 14141da177e4SLinus Torvalds alloclen = fragheaderlen + hh_len + fraggap + 15; 14151da177e4SLinus Torvalds skb = sock_wmalloc(sk, alloclen, 1, sk->sk_allocation); 14161da177e4SLinus Torvalds if (unlikely(!skb)) { 14171da177e4SLinus Torvalds err = -ENOBUFS; 14181da177e4SLinus Torvalds goto error; 14191da177e4SLinus Torvalds } 14201da177e4SLinus Torvalds 14211da177e4SLinus Torvalds /* 14221da177e4SLinus Torvalds * Fill in the control structures 14231da177e4SLinus Torvalds */ 14241da177e4SLinus Torvalds skb->ip_summed = CHECKSUM_NONE; 14251da177e4SLinus Torvalds skb->csum = 0; 14261da177e4SLinus Torvalds skb_reserve(skb, hh_len); 14271da177e4SLinus Torvalds 14281da177e4SLinus Torvalds /* 14291da177e4SLinus Torvalds * Find where to start putting bytes. 14301da177e4SLinus Torvalds */ 1431967b05f6SArnaldo Carvalho de Melo skb_put(skb, fragheaderlen + fraggap); 14322ca9e6f2SArnaldo Carvalho de Melo skb_reset_network_header(skb); 1433b0e380b1SArnaldo Carvalho de Melo skb->transport_header = (skb->network_header + 1434b0e380b1SArnaldo Carvalho de Melo fragheaderlen); 14351da177e4SLinus Torvalds if (fraggap) { 1436967b05f6SArnaldo Carvalho de Melo skb->csum = skb_copy_and_csum_bits(skb_prev, 1437967b05f6SArnaldo Carvalho de Melo maxfraglen, 14389c70220bSArnaldo Carvalho de Melo skb_transport_header(skb), 14398d5930dfSAl Viro fraggap); 14401da177e4SLinus Torvalds skb_prev->csum = csum_sub(skb_prev->csum, 14411da177e4SLinus Torvalds skb->csum); 1442e9fa4f7bSHerbert Xu pskb_trim_unique(skb_prev, maxfraglen); 14431da177e4SLinus Torvalds } 14441da177e4SLinus Torvalds 14451da177e4SLinus Torvalds /* 14461da177e4SLinus Torvalds * Put the packet on the pending queue. 14471da177e4SLinus Torvalds */ 14481da177e4SLinus Torvalds __skb_queue_tail(&sk->sk_write_queue, skb); 14491da177e4SLinus Torvalds continue; 14501da177e4SLinus Torvalds } 14511da177e4SLinus Torvalds 14521da177e4SLinus Torvalds if (len > size) 14531da177e4SLinus Torvalds len = size; 1454be12a1feSHannes Frederic Sowa 1455be12a1feSHannes Frederic Sowa if (skb_append_pagefrags(skb, page, offset, len)) { 14561da177e4SLinus Torvalds err = -EMSGSIZE; 14571da177e4SLinus Torvalds goto error; 14581da177e4SLinus Torvalds } 14591da177e4SLinus Torvalds 14601da177e4SLinus Torvalds if (skb->ip_summed == CHECKSUM_NONE) { 146144bb9363SAl Viro __wsum csum; 14621da177e4SLinus Torvalds csum = csum_page(page, offset, len); 14631da177e4SLinus Torvalds skb->csum = csum_block_add(skb->csum, csum, skb->len); 14641da177e4SLinus Torvalds } 14651da177e4SLinus Torvalds 1466ede57d58SRichard Gobert skb_len_add(skb, len); 146714afee4bSReshetova, Elena refcount_add(len, &sk->sk_wmem_alloc); 14681da177e4SLinus Torvalds offset += len; 14691da177e4SLinus Torvalds size -= len; 14701da177e4SLinus Torvalds } 14711da177e4SLinus Torvalds return 0; 14721da177e4SLinus Torvalds 14731da177e4SLinus Torvalds error: 1474bdc712b4SDavid S. Miller cork->length -= size; 14755e38e270SPavel Emelyanov IP_INC_STATS(sock_net(sk), IPSTATS_MIB_OUTDISCARDS); 14761da177e4SLinus Torvalds return err; 14771da177e4SLinus Torvalds } 14781da177e4SLinus Torvalds 14791470ddf7SHerbert Xu static void ip_cork_release(struct inet_cork *cork) 1480429f08e9SPavel Emelyanov { 14811470ddf7SHerbert Xu cork->flags &= ~IPCORK_OPT; 14821470ddf7SHerbert Xu kfree(cork->opt); 14831470ddf7SHerbert Xu cork->opt = NULL; 14841470ddf7SHerbert Xu dst_release(cork->dst); 14851470ddf7SHerbert Xu cork->dst = NULL; 1486429f08e9SPavel Emelyanov } 1487429f08e9SPavel Emelyanov 14881da177e4SLinus Torvalds /* 14891da177e4SLinus Torvalds * Combined all pending IP fragments on the socket as one IP datagram 14901da177e4SLinus Torvalds * and push them out. 14911da177e4SLinus Torvalds */ 14921c32c5adSHerbert Xu struct sk_buff *__ip_make_skb(struct sock *sk, 149377968b78SDavid S. Miller struct flowi4 *fl4, 14941470ddf7SHerbert Xu struct sk_buff_head *queue, 14951470ddf7SHerbert Xu struct inet_cork *cork) 14961da177e4SLinus Torvalds { 14971da177e4SLinus Torvalds struct sk_buff *skb, *tmp_skb; 14981da177e4SLinus Torvalds struct sk_buff **tail_skb; 14991da177e4SLinus Torvalds struct inet_sock *inet = inet_sk(sk); 15000388b004SPavel Emelyanov struct net *net = sock_net(sk); 15011da177e4SLinus Torvalds struct ip_options *opt = NULL; 15021470ddf7SHerbert Xu struct rtable *rt = (struct rtable *)cork->dst; 15031da177e4SLinus Torvalds struct iphdr *iph; 150476ab608dSAlexey Dobriyan __be16 df = 0; 15051da177e4SLinus Torvalds __u8 ttl; 15061da177e4SLinus Torvalds 150751456b29SIan Morris skb = __skb_dequeue(queue); 150851456b29SIan Morris if (!skb) 15091da177e4SLinus Torvalds goto out; 15101da177e4SLinus Torvalds tail_skb = &(skb_shinfo(skb)->frag_list); 15111da177e4SLinus Torvalds 15121da177e4SLinus Torvalds /* move skb->data to ip header from ext header */ 1513d56f90a7SArnaldo Carvalho de Melo if (skb->data < skb_network_header(skb)) 1514bbe735e4SArnaldo Carvalho de Melo __skb_pull(skb, skb_network_offset(skb)); 15151470ddf7SHerbert Xu while ((tmp_skb = __skb_dequeue(queue)) != NULL) { 1516cfe1fc77SArnaldo Carvalho de Melo __skb_pull(tmp_skb, skb_network_header_len(skb)); 15171da177e4SLinus Torvalds *tail_skb = tmp_skb; 15181da177e4SLinus Torvalds tail_skb = &(tmp_skb->next); 15191da177e4SLinus Torvalds skb->len += tmp_skb->len; 15201da177e4SLinus Torvalds skb->data_len += tmp_skb->len; 15211da177e4SLinus Torvalds skb->truesize += tmp_skb->truesize; 15221da177e4SLinus Torvalds tmp_skb->destructor = NULL; 15231da177e4SLinus Torvalds tmp_skb->sk = NULL; 15241da177e4SLinus Torvalds } 15251da177e4SLinus Torvalds 15261da177e4SLinus Torvalds /* Unless user demanded real pmtu discovery (IP_PMTUDISC_DO), we allow 15271da177e4SLinus Torvalds * to fragment the frame generated here. No matter, what transforms 15281da177e4SLinus Torvalds * how transforms change size of the packet, it will come out. 15291da177e4SLinus Torvalds */ 153060ff7467SWANG Cong skb->ignore_df = ip_sk_ignore_df(sk); 15311da177e4SLinus Torvalds 15321da177e4SLinus Torvalds /* DF bit is set when we want to see DF on outgoing frames. 153360ff7467SWANG Cong * If ignore_df is set too, we still allow to fragment this frame 15341da177e4SLinus Torvalds * locally. */ 1535482fc609SHannes Frederic Sowa if (inet->pmtudisc == IP_PMTUDISC_DO || 1536482fc609SHannes Frederic Sowa inet->pmtudisc == IP_PMTUDISC_PROBE || 1537d8d1f30bSChangli Gao (skb->len <= dst_mtu(&rt->dst) && 1538d8d1f30bSChangli Gao ip_dont_fragment(sk, &rt->dst))) 15391da177e4SLinus Torvalds df = htons(IP_DF); 15401da177e4SLinus Torvalds 15411470ddf7SHerbert Xu if (cork->flags & IPCORK_OPT) 15421470ddf7SHerbert Xu opt = cork->opt; 15431da177e4SLinus Torvalds 1544aa661581SFrancesco Fusco if (cork->ttl != 0) 1545aa661581SFrancesco Fusco ttl = cork->ttl; 1546aa661581SFrancesco Fusco else if (rt->rt_type == RTN_MULTICAST) 15471da177e4SLinus Torvalds ttl = inet->mc_ttl; 15481da177e4SLinus Torvalds else 1549d8d1f30bSChangli Gao ttl = ip_select_ttl(inet, &rt->dst); 15501da177e4SLinus Torvalds 1551749154aaSAnsis Atteka iph = ip_hdr(skb); 15521da177e4SLinus Torvalds iph->version = 4; 15531da177e4SLinus Torvalds iph->ihl = 5; 1554aa661581SFrancesco Fusco iph->tos = (cork->tos != -1) ? cork->tos : inet->tos; 15551da177e4SLinus Torvalds iph->frag_off = df; 15561da177e4SLinus Torvalds iph->ttl = ttl; 15571da177e4SLinus Torvalds iph->protocol = sk->sk_protocol; 155884f9307cSEric Dumazet ip_copy_addrs(iph, fl4); 1559b6a7719aSHannes Frederic Sowa ip_select_ident(net, skb, sk); 15601da177e4SLinus Torvalds 156122f728f8SDavid S. Miller if (opt) { 156222f728f8SDavid S. Miller iph->ihl += opt->optlen >> 2; 15634f0e3040SJakub Kicinski ip_options_build(skb, opt, cork->addr, rt); 156422f728f8SDavid S. Miller } 156522f728f8SDavid S. Miller 1566aa661581SFrancesco Fusco skb->priority = (cork->tos != -1) ? cork->priority: sk->sk_priority; 1567c6af0c22SWillem de Bruijn skb->mark = cork->mark; 1568bc969a97SJesus Sanchez-Palencia skb->tstamp = cork->transmit_time; 1569a21bba94SEric Dumazet /* 1570a21bba94SEric Dumazet * Steal rt from cork.dst to avoid a pair of atomic_inc/atomic_dec 1571a21bba94SEric Dumazet * on dst refcount 1572a21bba94SEric Dumazet */ 15731470ddf7SHerbert Xu cork->dst = NULL; 1574d8d1f30bSChangli Gao skb_dst_set(skb, &rt->dst); 15751da177e4SLinus Torvalds 157696793b48SDavid L Stevens if (iph->protocol == IPPROTO_ICMP) 15770388b004SPavel Emelyanov icmp_out_count(net, ((struct icmphdr *) 157896793b48SDavid L Stevens skb_transport_header(skb))->type); 157996793b48SDavid L Stevens 15801c32c5adSHerbert Xu ip_cork_release(cork); 15811c32c5adSHerbert Xu out: 15821c32c5adSHerbert Xu return skb; 15831c32c5adSHerbert Xu } 15841c32c5adSHerbert Xu 1585b5ec8eeaSEric Dumazet int ip_send_skb(struct net *net, struct sk_buff *skb) 15861c32c5adSHerbert Xu { 15871c32c5adSHerbert Xu int err; 15881c32c5adSHerbert Xu 158933224b16SEric W. Biederman err = ip_local_out(net, skb->sk, skb); 15901da177e4SLinus Torvalds if (err) { 15911da177e4SLinus Torvalds if (err > 0) 15926ce9e7b5SEric Dumazet err = net_xmit_errno(err); 15931da177e4SLinus Torvalds if (err) 15941c32c5adSHerbert Xu IP_INC_STATS(net, IPSTATS_MIB_OUTDISCARDS); 15951da177e4SLinus Torvalds } 15961da177e4SLinus Torvalds 15971da177e4SLinus Torvalds return err; 15981da177e4SLinus Torvalds } 15991da177e4SLinus Torvalds 160077968b78SDavid S. Miller int ip_push_pending_frames(struct sock *sk, struct flowi4 *fl4) 16011470ddf7SHerbert Xu { 16021c32c5adSHerbert Xu struct sk_buff *skb; 16031c32c5adSHerbert Xu 160477968b78SDavid S. Miller skb = ip_finish_skb(sk, fl4); 16051c32c5adSHerbert Xu if (!skb) 16061c32c5adSHerbert Xu return 0; 16071c32c5adSHerbert Xu 16081c32c5adSHerbert Xu /* Netfilter gets whole the not fragmented skb. */ 1609b5ec8eeaSEric Dumazet return ip_send_skb(sock_net(sk), skb); 16101470ddf7SHerbert Xu } 16111470ddf7SHerbert Xu 16121da177e4SLinus Torvalds /* 16131da177e4SLinus Torvalds * Throw away all pending data on the socket. 16141da177e4SLinus Torvalds */ 16151470ddf7SHerbert Xu static void __ip_flush_pending_frames(struct sock *sk, 16161470ddf7SHerbert Xu struct sk_buff_head *queue, 16171470ddf7SHerbert Xu struct inet_cork *cork) 16181da177e4SLinus Torvalds { 16191da177e4SLinus Torvalds struct sk_buff *skb; 16201da177e4SLinus Torvalds 16211470ddf7SHerbert Xu while ((skb = __skb_dequeue_tail(queue)) != NULL) 16221da177e4SLinus Torvalds kfree_skb(skb); 16231da177e4SLinus Torvalds 16241470ddf7SHerbert Xu ip_cork_release(cork); 16251470ddf7SHerbert Xu } 16261470ddf7SHerbert Xu 16271470ddf7SHerbert Xu void ip_flush_pending_frames(struct sock *sk) 16281470ddf7SHerbert Xu { 1629bdc712b4SDavid S. Miller __ip_flush_pending_frames(sk, &sk->sk_write_queue, &inet_sk(sk)->cork.base); 16301da177e4SLinus Torvalds } 16311da177e4SLinus Torvalds 16321c32c5adSHerbert Xu struct sk_buff *ip_make_skb(struct sock *sk, 163377968b78SDavid S. Miller struct flowi4 *fl4, 16341c32c5adSHerbert Xu int getfrag(void *from, char *to, int offset, 16351c32c5adSHerbert Xu int len, int odd, struct sk_buff *skb), 16361c32c5adSHerbert Xu void *from, int length, int transhdrlen, 16371c32c5adSHerbert Xu struct ipcm_cookie *ipc, struct rtable **rtp, 16381cd7884dSWillem de Bruijn struct inet_cork *cork, unsigned int flags) 16391c32c5adSHerbert Xu { 16401c32c5adSHerbert Xu struct sk_buff_head queue; 16411c32c5adSHerbert Xu int err; 16421c32c5adSHerbert Xu 16431c32c5adSHerbert Xu if (flags & MSG_PROBE) 16441c32c5adSHerbert Xu return NULL; 16451c32c5adSHerbert Xu 16461c32c5adSHerbert Xu __skb_queue_head_init(&queue); 16471c32c5adSHerbert Xu 16481cd7884dSWillem de Bruijn cork->flags = 0; 16491cd7884dSWillem de Bruijn cork->addr = 0; 16501cd7884dSWillem de Bruijn cork->opt = NULL; 16511cd7884dSWillem de Bruijn err = ip_setup_cork(sk, cork, ipc, rtp); 16521c32c5adSHerbert Xu if (err) 16531c32c5adSHerbert Xu return ERR_PTR(err); 16541c32c5adSHerbert Xu 16551cd7884dSWillem de Bruijn err = __ip_append_data(sk, fl4, &queue, cork, 16565640f768SEric Dumazet ¤t->task_frag, getfrag, 16571c32c5adSHerbert Xu from, length, transhdrlen, flags); 16581c32c5adSHerbert Xu if (err) { 16591cd7884dSWillem de Bruijn __ip_flush_pending_frames(sk, &queue, cork); 16601c32c5adSHerbert Xu return ERR_PTR(err); 16611c32c5adSHerbert Xu } 16621c32c5adSHerbert Xu 16631cd7884dSWillem de Bruijn return __ip_make_skb(sk, fl4, &queue, cork); 16641c32c5adSHerbert Xu } 16651da177e4SLinus Torvalds 16661da177e4SLinus Torvalds /* 16671da177e4SLinus Torvalds * Fetch data from kernel space and fill in checksum if needed. 16681da177e4SLinus Torvalds */ 16691da177e4SLinus Torvalds static int ip_reply_glue_bits(void *dptr, char *to, int offset, 16701da177e4SLinus Torvalds int len, int odd, struct sk_buff *skb) 16711da177e4SLinus Torvalds { 16725084205fSAl Viro __wsum csum; 16731da177e4SLinus Torvalds 1674cc44c17bSAl Viro csum = csum_partial_copy_nocheck(dptr+offset, to, len); 16751da177e4SLinus Torvalds skb->csum = csum_block_add(skb->csum, csum, odd); 16761da177e4SLinus Torvalds return 0; 16771da177e4SLinus Torvalds } 16781da177e4SLinus Torvalds 16791da177e4SLinus Torvalds /* 16801da177e4SLinus Torvalds * Generic function to send a packet as reply to another packet. 1681be9f4a44SEric Dumazet * Used to send some TCP resets/acks so far. 16821da177e4SLinus Torvalds */ 1683bdbbb852SEric Dumazet void ip_send_unicast_reply(struct sock *sk, struct sk_buff *skb, 168424a2d43dSEric Dumazet const struct ip_options *sopt, 168524a2d43dSEric Dumazet __be32 daddr, __be32 saddr, 168624a2d43dSEric Dumazet const struct ip_reply_arg *arg, 1687d6fb396cSEric Dumazet unsigned int len, u64 transmit_time) 16881da177e4SLinus Torvalds { 1689f6d8bd05SEric Dumazet struct ip_options_data replyopts; 16901da177e4SLinus Torvalds struct ipcm_cookie ipc; 169177968b78SDavid S. Miller struct flowi4 fl4; 1692511c3f92SEric Dumazet struct rtable *rt = skb_rtable(skb); 1693bdbbb852SEric Dumazet struct net *net = sock_net(sk); 1694be9f4a44SEric Dumazet struct sk_buff *nskb; 16954062090eSVasily Averin int err; 1696f7ba868bSDavid Ahern int oif; 16971da177e4SLinus Torvalds 169891ed1e66SPaolo Abeni if (__ip_options_echo(net, &replyopts.opt.opt, skb, sopt)) 16991da177e4SLinus Torvalds return; 17001da177e4SLinus Torvalds 170135178206SWillem de Bruijn ipcm_init(&ipc); 17020a5ebb80SDavid S. Miller ipc.addr = daddr; 1703d6fb396cSEric Dumazet ipc.sockc.transmit_time = transmit_time; 17041da177e4SLinus Torvalds 1705f6d8bd05SEric Dumazet if (replyopts.opt.opt.optlen) { 17061da177e4SLinus Torvalds ipc.opt = &replyopts.opt; 17071da177e4SLinus Torvalds 1708f6d8bd05SEric Dumazet if (replyopts.opt.opt.srr) 1709f6d8bd05SEric Dumazet daddr = replyopts.opt.opt.faddr; 17101da177e4SLinus Torvalds } 17111da177e4SLinus Torvalds 1712f7ba868bSDavid Ahern oif = arg->bound_dev_if; 17139b6c14d5SDavid Ahern if (!oif && netif_index_is_l3_master(net, skb->skb_iif)) 17149b6c14d5SDavid Ahern oif = skb->skb_iif; 1715f7ba868bSDavid Ahern 1716f7ba868bSDavid Ahern flowi4_init_output(&fl4, oif, 171700483690SJon Maxwell IP4_REPLY_MARK(net, skb->mark) ?: sk->sk_mark, 171866b13d99SEric Dumazet RT_TOS(arg->tos), 1719be9f4a44SEric Dumazet RT_SCOPE_UNIVERSE, ip_hdr(skb)->protocol, 1720538de0e0SDavid S. Miller ip_reply_arg_flowi_flags(arg), 172170e73416SDavid S. Miller daddr, saddr, 1722e2d118a1SLorenzo Colitti tcp_hdr(skb)->source, tcp_hdr(skb)->dest, 1723e2d118a1SLorenzo Colitti arg->uid); 17243df98d79SPaul Moore security_skb_classify_flow(skb, flowi4_to_flowi_common(&fl4)); 1725e22aa148Ssewookseo rt = ip_route_output_flow(net, &fl4, sk); 1726b23dd4feSDavid S. Miller if (IS_ERR(rt)) 17271da177e4SLinus Torvalds return; 17281da177e4SLinus Torvalds 1729ba9e04a7SWei Wang inet_sk(sk)->tos = arg->tos & ~INET_ECN_MASK; 17301da177e4SLinus Torvalds 1731eddc9ec5SArnaldo Carvalho de Melo sk->sk_protocol = ip_hdr(skb)->protocol; 1732f0e48dbfSPatrick McHardy sk->sk_bound_dev_if = arg->bound_dev_if; 1733*1227c177SKuniyuki Iwashima sk->sk_sndbuf = READ_ONCE(sysctl_wmem_default); 17340da7536fSWillem de Bruijn ipc.sockc.mark = fl4.flowi4_mark; 17354062090eSVasily Averin err = ip_append_data(sk, &fl4, ip_reply_glue_bits, arg->iov->iov_base, 17364062090eSVasily Averin len, 0, &ipc, &rt, MSG_DONTWAIT); 17374062090eSVasily Averin if (unlikely(err)) { 17384062090eSVasily Averin ip_flush_pending_frames(sk); 17394062090eSVasily Averin goto out; 17404062090eSVasily Averin } 17414062090eSVasily Averin 1742be9f4a44SEric Dumazet nskb = skb_peek(&sk->sk_write_queue); 1743be9f4a44SEric Dumazet if (nskb) { 17441da177e4SLinus Torvalds if (arg->csumoffset >= 0) 1745be9f4a44SEric Dumazet *((__sum16 *)skb_transport_header(nskb) + 1746be9f4a44SEric Dumazet arg->csumoffset) = csum_fold(csum_add(nskb->csum, 17479c70220bSArnaldo Carvalho de Melo arg->csum)); 1748be9f4a44SEric Dumazet nskb->ip_summed = CHECKSUM_NONE; 1749d98d58a0SMartin KaFai Lau nskb->mono_delivery_time = !!transmit_time; 175077968b78SDavid S. Miller ip_push_pending_frames(sk, &fl4); 17511da177e4SLinus Torvalds } 17524062090eSVasily Averin out: 17531da177e4SLinus Torvalds ip_rt_put(rt); 17541da177e4SLinus Torvalds } 17551da177e4SLinus Torvalds 17561da177e4SLinus Torvalds void __init ip_init(void) 17571da177e4SLinus Torvalds { 17581da177e4SLinus Torvalds ip_rt_init(); 17591da177e4SLinus Torvalds inet_initpeers(); 17601da177e4SLinus Torvalds 176172c1d3bdSWANG Cong #if defined(CONFIG_IP_MULTICAST) 176272c1d3bdSWANG Cong igmp_mc_init(); 17631da177e4SLinus Torvalds #endif 17641da177e4SLinus Torvalds } 1765