11da177e4SLinus Torvalds /* 21da177e4SLinus Torvalds * INET An implementation of the TCP/IP protocol suite for the LINUX 31da177e4SLinus Torvalds * operating system. INET is implemented using the BSD Socket 41da177e4SLinus Torvalds * interface as the means of communication with the user level. 51da177e4SLinus Torvalds * 61da177e4SLinus Torvalds * Implementation of the Transmission Control Protocol(TCP). 71da177e4SLinus Torvalds * 81da177e4SLinus Torvalds * Version: $Id: tcp.c,v 1.216 2002/02/01 22:01:04 davem Exp $ 91da177e4SLinus Torvalds * 1002c30a84SJesper Juhl * Authors: Ross Biro 111da177e4SLinus Torvalds * Fred N. van Kempen, <waltje@uWalt.NL.Mugnet.ORG> 121da177e4SLinus Torvalds * Mark Evans, <evansmp@uhura.aston.ac.uk> 131da177e4SLinus Torvalds * Corey Minyard <wf-rch!minyard@relay.EU.net> 141da177e4SLinus Torvalds * Florian La Roche, <flla@stud.uni-sb.de> 151da177e4SLinus Torvalds * Charles Hedrick, <hedrick@klinzhai.rutgers.edu> 161da177e4SLinus Torvalds * Linus Torvalds, <torvalds@cs.helsinki.fi> 171da177e4SLinus Torvalds * Alan Cox, <gw4pts@gw4pts.ampr.org> 181da177e4SLinus Torvalds * Matthew Dillon, <dillon@apollo.west.oic.com> 191da177e4SLinus Torvalds * Arnt Gulbrandsen, <agulbra@nvg.unit.no> 201da177e4SLinus Torvalds * Jorge Cwik, <jorge@laser.satlink.net> 211da177e4SLinus Torvalds * 221da177e4SLinus Torvalds * Fixes: 231da177e4SLinus Torvalds * Alan Cox : Numerous verify_area() calls 241da177e4SLinus Torvalds * Alan Cox : Set the ACK bit on a reset 251da177e4SLinus Torvalds * Alan Cox : Stopped it crashing if it closed while 261da177e4SLinus Torvalds * sk->inuse=1 and was trying to connect 271da177e4SLinus Torvalds * (tcp_err()). 281da177e4SLinus Torvalds * Alan Cox : All icmp error handling was broken 291da177e4SLinus Torvalds * pointers passed where wrong and the 301da177e4SLinus Torvalds * socket was looked up backwards. Nobody 311da177e4SLinus Torvalds * tested any icmp error code obviously. 321da177e4SLinus Torvalds * Alan Cox : tcp_err() now handled properly. It 331da177e4SLinus Torvalds * wakes people on errors. poll 341da177e4SLinus Torvalds * behaves and the icmp error race 351da177e4SLinus Torvalds * has gone by moving it into sock.c 361da177e4SLinus Torvalds * Alan Cox : tcp_send_reset() fixed to work for 371da177e4SLinus Torvalds * everything not just packets for 381da177e4SLinus Torvalds * unknown sockets. 391da177e4SLinus Torvalds * Alan Cox : tcp option processing. 401da177e4SLinus Torvalds * Alan Cox : Reset tweaked (still not 100%) [Had 411da177e4SLinus Torvalds * syn rule wrong] 421da177e4SLinus Torvalds * Herp Rosmanith : More reset fixes 431da177e4SLinus Torvalds * Alan Cox : No longer acks invalid rst frames. 441da177e4SLinus Torvalds * Acking any kind of RST is right out. 451da177e4SLinus Torvalds * Alan Cox : Sets an ignore me flag on an rst 461da177e4SLinus Torvalds * receive otherwise odd bits of prattle 471da177e4SLinus Torvalds * escape still 481da177e4SLinus Torvalds * Alan Cox : Fixed another acking RST frame bug. 491da177e4SLinus Torvalds * Should stop LAN workplace lockups. 501da177e4SLinus Torvalds * Alan Cox : Some tidyups using the new skb list 511da177e4SLinus Torvalds * facilities 521da177e4SLinus Torvalds * Alan Cox : sk->keepopen now seems to work 531da177e4SLinus Torvalds * Alan Cox : Pulls options out correctly on accepts 541da177e4SLinus Torvalds * Alan Cox : Fixed assorted sk->rqueue->next errors 551da177e4SLinus Torvalds * Alan Cox : PSH doesn't end a TCP read. Switched a 561da177e4SLinus Torvalds * bit to skb ops. 571da177e4SLinus Torvalds * Alan Cox : Tidied tcp_data to avoid a potential 581da177e4SLinus Torvalds * nasty. 591da177e4SLinus Torvalds * Alan Cox : Added some better commenting, as the 601da177e4SLinus Torvalds * tcp is hard to follow 611da177e4SLinus Torvalds * Alan Cox : Removed incorrect check for 20 * psh 621da177e4SLinus Torvalds * Michael O'Reilly : ack < copied bug fix. 631da177e4SLinus Torvalds * Johannes Stille : Misc tcp fixes (not all in yet). 641da177e4SLinus Torvalds * Alan Cox : FIN with no memory -> CRASH 651da177e4SLinus Torvalds * Alan Cox : Added socket option proto entries. 661da177e4SLinus Torvalds * Also added awareness of them to accept. 671da177e4SLinus Torvalds * Alan Cox : Added TCP options (SOL_TCP) 681da177e4SLinus Torvalds * Alan Cox : Switched wakeup calls to callbacks, 691da177e4SLinus Torvalds * so the kernel can layer network 701da177e4SLinus Torvalds * sockets. 711da177e4SLinus Torvalds * Alan Cox : Use ip_tos/ip_ttl settings. 721da177e4SLinus Torvalds * Alan Cox : Handle FIN (more) properly (we hope). 731da177e4SLinus Torvalds * Alan Cox : RST frames sent on unsynchronised 741da177e4SLinus Torvalds * state ack error. 751da177e4SLinus Torvalds * Alan Cox : Put in missing check for SYN bit. 761da177e4SLinus Torvalds * Alan Cox : Added tcp_select_window() aka NET2E 771da177e4SLinus Torvalds * window non shrink trick. 781da177e4SLinus Torvalds * Alan Cox : Added a couple of small NET2E timer 791da177e4SLinus Torvalds * fixes 801da177e4SLinus Torvalds * Charles Hedrick : TCP fixes 811da177e4SLinus Torvalds * Toomas Tamm : TCP window fixes 821da177e4SLinus Torvalds * Alan Cox : Small URG fix to rlogin ^C ack fight 831da177e4SLinus Torvalds * Charles Hedrick : Rewrote most of it to actually work 841da177e4SLinus Torvalds * Linus : Rewrote tcp_read() and URG handling 851da177e4SLinus Torvalds * completely 861da177e4SLinus Torvalds * Gerhard Koerting: Fixed some missing timer handling 871da177e4SLinus Torvalds * Matthew Dillon : Reworked TCP machine states as per RFC 881da177e4SLinus Torvalds * Gerhard Koerting: PC/TCP workarounds 891da177e4SLinus Torvalds * Adam Caldwell : Assorted timer/timing errors 901da177e4SLinus Torvalds * Matthew Dillon : Fixed another RST bug 911da177e4SLinus Torvalds * Alan Cox : Move to kernel side addressing changes. 921da177e4SLinus Torvalds * Alan Cox : Beginning work on TCP fastpathing 931da177e4SLinus Torvalds * (not yet usable) 941da177e4SLinus Torvalds * Arnt Gulbrandsen: Turbocharged tcp_check() routine. 951da177e4SLinus Torvalds * Alan Cox : TCP fast path debugging 961da177e4SLinus Torvalds * Alan Cox : Window clamping 971da177e4SLinus Torvalds * Michael Riepe : Bug in tcp_check() 981da177e4SLinus Torvalds * Matt Dillon : More TCP improvements and RST bug fixes 991da177e4SLinus Torvalds * Matt Dillon : Yet more small nasties remove from the 1001da177e4SLinus Torvalds * TCP code (Be very nice to this man if 1011da177e4SLinus Torvalds * tcp finally works 100%) 8) 1021da177e4SLinus Torvalds * Alan Cox : BSD accept semantics. 1031da177e4SLinus Torvalds * Alan Cox : Reset on closedown bug. 1041da177e4SLinus Torvalds * Peter De Schrijver : ENOTCONN check missing in tcp_sendto(). 1051da177e4SLinus Torvalds * Michael Pall : Handle poll() after URG properly in 1061da177e4SLinus Torvalds * all cases. 1071da177e4SLinus Torvalds * Michael Pall : Undo the last fix in tcp_read_urg() 1081da177e4SLinus Torvalds * (multi URG PUSH broke rlogin). 1091da177e4SLinus Torvalds * Michael Pall : Fix the multi URG PUSH problem in 1101da177e4SLinus Torvalds * tcp_readable(), poll() after URG 1111da177e4SLinus Torvalds * works now. 1121da177e4SLinus Torvalds * Michael Pall : recv(...,MSG_OOB) never blocks in the 1131da177e4SLinus Torvalds * BSD api. 1141da177e4SLinus Torvalds * Alan Cox : Changed the semantics of sk->socket to 1151da177e4SLinus Torvalds * fix a race and a signal problem with 1161da177e4SLinus Torvalds * accept() and async I/O. 1171da177e4SLinus Torvalds * Alan Cox : Relaxed the rules on tcp_sendto(). 1181da177e4SLinus Torvalds * Yury Shevchuk : Really fixed accept() blocking problem. 1191da177e4SLinus Torvalds * Craig I. Hagan : Allow for BSD compatible TIME_WAIT for 1201da177e4SLinus Torvalds * clients/servers which listen in on 1211da177e4SLinus Torvalds * fixed ports. 1221da177e4SLinus Torvalds * Alan Cox : Cleaned the above up and shrank it to 1231da177e4SLinus Torvalds * a sensible code size. 1241da177e4SLinus Torvalds * Alan Cox : Self connect lockup fix. 1251da177e4SLinus Torvalds * Alan Cox : No connect to multicast. 1261da177e4SLinus Torvalds * Ross Biro : Close unaccepted children on master 1271da177e4SLinus Torvalds * socket close. 1281da177e4SLinus Torvalds * Alan Cox : Reset tracing code. 1291da177e4SLinus Torvalds * Alan Cox : Spurious resets on shutdown. 1301da177e4SLinus Torvalds * Alan Cox : Giant 15 minute/60 second timer error 1311da177e4SLinus Torvalds * Alan Cox : Small whoops in polling before an 1321da177e4SLinus Torvalds * accept. 1331da177e4SLinus Torvalds * Alan Cox : Kept the state trace facility since 1341da177e4SLinus Torvalds * it's handy for debugging. 1351da177e4SLinus Torvalds * Alan Cox : More reset handler fixes. 1361da177e4SLinus Torvalds * Alan Cox : Started rewriting the code based on 1371da177e4SLinus Torvalds * the RFC's for other useful protocol 1381da177e4SLinus Torvalds * references see: Comer, KA9Q NOS, and 1391da177e4SLinus Torvalds * for a reference on the difference 1401da177e4SLinus Torvalds * between specifications and how BSD 1411da177e4SLinus Torvalds * works see the 4.4lite source. 1421da177e4SLinus Torvalds * A.N.Kuznetsov : Don't time wait on completion of tidy 1431da177e4SLinus Torvalds * close. 1441da177e4SLinus Torvalds * Linus Torvalds : Fin/Shutdown & copied_seq changes. 1451da177e4SLinus Torvalds * Linus Torvalds : Fixed BSD port reuse to work first syn 1461da177e4SLinus Torvalds * Alan Cox : Reimplemented timers as per the RFC 1471da177e4SLinus Torvalds * and using multiple timers for sanity. 1481da177e4SLinus Torvalds * Alan Cox : Small bug fixes, and a lot of new 1491da177e4SLinus Torvalds * comments. 1501da177e4SLinus Torvalds * Alan Cox : Fixed dual reader crash by locking 1511da177e4SLinus Torvalds * the buffers (much like datagram.c) 1521da177e4SLinus Torvalds * Alan Cox : Fixed stuck sockets in probe. A probe 1531da177e4SLinus Torvalds * now gets fed up of retrying without 1541da177e4SLinus Torvalds * (even a no space) answer. 1551da177e4SLinus Torvalds * Alan Cox : Extracted closing code better 1561da177e4SLinus Torvalds * Alan Cox : Fixed the closing state machine to 1571da177e4SLinus Torvalds * resemble the RFC. 1581da177e4SLinus Torvalds * Alan Cox : More 'per spec' fixes. 1591da177e4SLinus Torvalds * Jorge Cwik : Even faster checksumming. 1601da177e4SLinus Torvalds * Alan Cox : tcp_data() doesn't ack illegal PSH 1611da177e4SLinus Torvalds * only frames. At least one pc tcp stack 1621da177e4SLinus Torvalds * generates them. 1631da177e4SLinus Torvalds * Alan Cox : Cache last socket. 1641da177e4SLinus Torvalds * Alan Cox : Per route irtt. 1651da177e4SLinus Torvalds * Matt Day : poll()->select() match BSD precisely on error 1661da177e4SLinus Torvalds * Alan Cox : New buffers 1671da177e4SLinus Torvalds * Marc Tamsky : Various sk->prot->retransmits and 1681da177e4SLinus Torvalds * sk->retransmits misupdating fixed. 1691da177e4SLinus Torvalds * Fixed tcp_write_timeout: stuck close, 1701da177e4SLinus Torvalds * and TCP syn retries gets used now. 1711da177e4SLinus Torvalds * Mark Yarvis : In tcp_read_wakeup(), don't send an 1721da177e4SLinus Torvalds * ack if state is TCP_CLOSED. 1731da177e4SLinus Torvalds * Alan Cox : Look up device on a retransmit - routes may 1741da177e4SLinus Torvalds * change. Doesn't yet cope with MSS shrink right 1751da177e4SLinus Torvalds * but it's a start! 1761da177e4SLinus Torvalds * Marc Tamsky : Closing in closing fixes. 1771da177e4SLinus Torvalds * Mike Shaver : RFC1122 verifications. 1781da177e4SLinus Torvalds * Alan Cox : rcv_saddr errors. 1791da177e4SLinus Torvalds * Alan Cox : Block double connect(). 1801da177e4SLinus Torvalds * Alan Cox : Small hooks for enSKIP. 1811da177e4SLinus Torvalds * Alexey Kuznetsov: Path MTU discovery. 1821da177e4SLinus Torvalds * Alan Cox : Support soft errors. 1831da177e4SLinus Torvalds * Alan Cox : Fix MTU discovery pathological case 1841da177e4SLinus Torvalds * when the remote claims no mtu! 1851da177e4SLinus Torvalds * Marc Tamsky : TCP_CLOSE fix. 1861da177e4SLinus Torvalds * Colin (G3TNE) : Send a reset on syn ack replies in 1871da177e4SLinus Torvalds * window but wrong (fixes NT lpd problems) 1881da177e4SLinus Torvalds * Pedro Roque : Better TCP window handling, delayed ack. 1891da177e4SLinus Torvalds * Joerg Reuter : No modification of locked buffers in 1901da177e4SLinus Torvalds * tcp_do_retransmit() 1911da177e4SLinus Torvalds * Eric Schenk : Changed receiver side silly window 1921da177e4SLinus Torvalds * avoidance algorithm to BSD style 1931da177e4SLinus Torvalds * algorithm. This doubles throughput 1941da177e4SLinus Torvalds * against machines running Solaris, 1951da177e4SLinus Torvalds * and seems to result in general 1961da177e4SLinus Torvalds * improvement. 1971da177e4SLinus Torvalds * Stefan Magdalinski : adjusted tcp_readable() to fix FIONREAD 1981da177e4SLinus Torvalds * Willy Konynenberg : Transparent proxying support. 1991da177e4SLinus Torvalds * Mike McLagan : Routing by source 2001da177e4SLinus Torvalds * Keith Owens : Do proper merging with partial SKB's in 2011da177e4SLinus Torvalds * tcp_do_sendmsg to avoid burstiness. 2021da177e4SLinus Torvalds * Eric Schenk : Fix fast close down bug with 2031da177e4SLinus Torvalds * shutdown() followed by close(). 2041da177e4SLinus Torvalds * Andi Kleen : Make poll agree with SIGIO 2051da177e4SLinus Torvalds * Salvatore Sanfilippo : Support SO_LINGER with linger == 1 and 2061da177e4SLinus Torvalds * lingertime == 0 (RFC 793 ABORT Call) 2071da177e4SLinus Torvalds * Hirokazu Takahashi : Use copy_from_user() instead of 2081da177e4SLinus Torvalds * csum_and_copy_from_user() if possible. 2091da177e4SLinus Torvalds * 2101da177e4SLinus Torvalds * This program is free software; you can redistribute it and/or 2111da177e4SLinus Torvalds * modify it under the terms of the GNU General Public License 2121da177e4SLinus Torvalds * as published by the Free Software Foundation; either version 2131da177e4SLinus Torvalds * 2 of the License, or(at your option) any later version. 2141da177e4SLinus Torvalds * 2151da177e4SLinus Torvalds * Description of States: 2161da177e4SLinus Torvalds * 2171da177e4SLinus Torvalds * TCP_SYN_SENT sent a connection request, waiting for ack 2181da177e4SLinus Torvalds * 2191da177e4SLinus Torvalds * TCP_SYN_RECV received a connection request, sent ack, 2201da177e4SLinus Torvalds * waiting for final ack in three-way handshake. 2211da177e4SLinus Torvalds * 2221da177e4SLinus Torvalds * TCP_ESTABLISHED connection established 2231da177e4SLinus Torvalds * 2241da177e4SLinus Torvalds * TCP_FIN_WAIT1 our side has shutdown, waiting to complete 2251da177e4SLinus Torvalds * transmission of remaining buffered data 2261da177e4SLinus Torvalds * 2271da177e4SLinus Torvalds * TCP_FIN_WAIT2 all buffered data sent, waiting for remote 2281da177e4SLinus Torvalds * to shutdown 2291da177e4SLinus Torvalds * 2301da177e4SLinus Torvalds * TCP_CLOSING both sides have shutdown but we still have 2311da177e4SLinus Torvalds * data we have to finish sending 2321da177e4SLinus Torvalds * 2331da177e4SLinus Torvalds * TCP_TIME_WAIT timeout to catch resent junk before entering 2341da177e4SLinus Torvalds * closed, can only be entered from FIN_WAIT2 2351da177e4SLinus Torvalds * or CLOSING. Required because the other end 2361da177e4SLinus Torvalds * may not have gotten our last ACK causing it 2371da177e4SLinus Torvalds * to retransmit the data packet (which we ignore) 2381da177e4SLinus Torvalds * 2391da177e4SLinus Torvalds * TCP_CLOSE_WAIT remote side has shutdown and is waiting for 2401da177e4SLinus Torvalds * us to finish writing our data and to shutdown 2411da177e4SLinus Torvalds * (we have to close() to move on to LAST_ACK) 2421da177e4SLinus Torvalds * 2431da177e4SLinus Torvalds * TCP_LAST_ACK out side has shutdown after remote has 2441da177e4SLinus Torvalds * shutdown. There may still be data in our 2451da177e4SLinus Torvalds * buffer that we have to finish sending 2461da177e4SLinus Torvalds * 2471da177e4SLinus Torvalds * TCP_CLOSE socket is finished 2481da177e4SLinus Torvalds */ 2491da177e4SLinus Torvalds 2501da177e4SLinus Torvalds #include <linux/module.h> 2511da177e4SLinus Torvalds #include <linux/types.h> 2521da177e4SLinus Torvalds #include <linux/fcntl.h> 2531da177e4SLinus Torvalds #include <linux/poll.h> 2541da177e4SLinus Torvalds #include <linux/init.h> 2551da177e4SLinus Torvalds #include <linux/smp_lock.h> 2561da177e4SLinus Torvalds #include <linux/fs.h> 2571da177e4SLinus Torvalds #include <linux/random.h> 2581da177e4SLinus Torvalds #include <linux/bootmem.h> 259b8059eadSDavid S. Miller #include <linux/cache.h> 260f4c50d99SHerbert Xu #include <linux/err.h> 2611da177e4SLinus Torvalds 2621da177e4SLinus Torvalds #include <net/icmp.h> 2631da177e4SLinus Torvalds #include <net/tcp.h> 2641da177e4SLinus Torvalds #include <net/xfrm.h> 2651da177e4SLinus Torvalds #include <net/ip.h> 2661a2449a8SChris Leech #include <net/netdma.h> 2671da177e4SLinus Torvalds 2681da177e4SLinus Torvalds #include <asm/uaccess.h> 2691da177e4SLinus Torvalds #include <asm/ioctls.h> 2701da177e4SLinus Torvalds 271ab32ea5dSBrian Haley int sysctl_tcp_fin_timeout __read_mostly = TCP_FIN_TIMEOUT; 2721da177e4SLinus Torvalds 273ba89966cSEric Dumazet DEFINE_SNMP_STAT(struct tcp_mib, tcp_statistics) __read_mostly; 2741da177e4SLinus Torvalds 2751da177e4SLinus Torvalds atomic_t tcp_orphan_count = ATOMIC_INIT(0); 2761da177e4SLinus Torvalds 2770a5578cfSArnaldo Carvalho de Melo EXPORT_SYMBOL_GPL(tcp_orphan_count); 2780a5578cfSArnaldo Carvalho de Melo 279b8059eadSDavid S. Miller int sysctl_tcp_mem[3] __read_mostly; 280b8059eadSDavid S. Miller int sysctl_tcp_wmem[3] __read_mostly; 281b8059eadSDavid S. Miller int sysctl_tcp_rmem[3] __read_mostly; 2821da177e4SLinus Torvalds 2831da177e4SLinus Torvalds EXPORT_SYMBOL(sysctl_tcp_mem); 2841da177e4SLinus Torvalds EXPORT_SYMBOL(sysctl_tcp_rmem); 2851da177e4SLinus Torvalds EXPORT_SYMBOL(sysctl_tcp_wmem); 2861da177e4SLinus Torvalds 2871da177e4SLinus Torvalds atomic_t tcp_memory_allocated; /* Current allocated memory. */ 2881da177e4SLinus Torvalds atomic_t tcp_sockets_allocated; /* Current number of TCP sockets. */ 2891da177e4SLinus Torvalds 2901da177e4SLinus Torvalds EXPORT_SYMBOL(tcp_memory_allocated); 2911da177e4SLinus Torvalds EXPORT_SYMBOL(tcp_sockets_allocated); 2921da177e4SLinus Torvalds 2931da177e4SLinus Torvalds /* 2941da177e4SLinus Torvalds * Pressure flag: try to collapse. 2951da177e4SLinus Torvalds * Technical note: it is used by multiple contexts non atomically. 2961da177e4SLinus Torvalds * All the sk_stream_mem_schedule() is of this nature: accounting 2971da177e4SLinus Torvalds * is strict, actions are advisory and have some latency. 2981da177e4SLinus Torvalds */ 2991da177e4SLinus Torvalds int tcp_memory_pressure; 3001da177e4SLinus Torvalds 3011da177e4SLinus Torvalds EXPORT_SYMBOL(tcp_memory_pressure); 3021da177e4SLinus Torvalds 3031da177e4SLinus Torvalds void tcp_enter_memory_pressure(void) 3041da177e4SLinus Torvalds { 3051da177e4SLinus Torvalds if (!tcp_memory_pressure) { 3061da177e4SLinus Torvalds NET_INC_STATS(LINUX_MIB_TCPMEMORYPRESSURES); 3071da177e4SLinus Torvalds tcp_memory_pressure = 1; 3081da177e4SLinus Torvalds } 3091da177e4SLinus Torvalds } 3101da177e4SLinus Torvalds 3111da177e4SLinus Torvalds EXPORT_SYMBOL(tcp_enter_memory_pressure); 3121da177e4SLinus Torvalds 3131da177e4SLinus Torvalds /* 3141da177e4SLinus Torvalds * Wait for a TCP event. 3151da177e4SLinus Torvalds * 3161da177e4SLinus Torvalds * Note that we don't need to lock the socket, as the upper poll layers 3171da177e4SLinus Torvalds * take care of normal races (between the test and the event) and we don't 3181da177e4SLinus Torvalds * go look at any of the socket buffers directly. 3191da177e4SLinus Torvalds */ 3201da177e4SLinus Torvalds unsigned int tcp_poll(struct file *file, struct socket *sock, poll_table *wait) 3211da177e4SLinus Torvalds { 3221da177e4SLinus Torvalds unsigned int mask; 3231da177e4SLinus Torvalds struct sock *sk = sock->sk; 3241da177e4SLinus Torvalds struct tcp_sock *tp = tcp_sk(sk); 3251da177e4SLinus Torvalds 3261da177e4SLinus Torvalds poll_wait(file, sk->sk_sleep, wait); 3271da177e4SLinus Torvalds if (sk->sk_state == TCP_LISTEN) 328dc40c7bcSArnaldo Carvalho de Melo return inet_csk_listen_poll(sk); 3291da177e4SLinus Torvalds 3301da177e4SLinus Torvalds /* Socket is not locked. We are protected from async events 3311da177e4SLinus Torvalds by poll logic and correct handling of state changes 3321da177e4SLinus Torvalds made by another threads is impossible in any case. 3331da177e4SLinus Torvalds */ 3341da177e4SLinus Torvalds 3351da177e4SLinus Torvalds mask = 0; 3361da177e4SLinus Torvalds if (sk->sk_err) 3371da177e4SLinus Torvalds mask = POLLERR; 3381da177e4SLinus Torvalds 3391da177e4SLinus Torvalds /* 3401da177e4SLinus Torvalds * POLLHUP is certainly not done right. But poll() doesn't 3411da177e4SLinus Torvalds * have a notion of HUP in just one direction, and for a 3421da177e4SLinus Torvalds * socket the read side is more interesting. 3431da177e4SLinus Torvalds * 3441da177e4SLinus Torvalds * Some poll() documentation says that POLLHUP is incompatible 3451da177e4SLinus Torvalds * with the POLLOUT/POLLWR flags, so somebody should check this 3461da177e4SLinus Torvalds * all. But careful, it tends to be safer to return too many 3471da177e4SLinus Torvalds * bits than too few, and you can easily break real applications 3481da177e4SLinus Torvalds * if you don't tell them that something has hung up! 3491da177e4SLinus Torvalds * 3501da177e4SLinus Torvalds * Check-me. 3511da177e4SLinus Torvalds * 3521da177e4SLinus Torvalds * Check number 1. POLLHUP is _UNMASKABLE_ event (see UNIX98 and 3531da177e4SLinus Torvalds * our fs/select.c). It means that after we received EOF, 3541da177e4SLinus Torvalds * poll always returns immediately, making impossible poll() on write() 3551da177e4SLinus Torvalds * in state CLOSE_WAIT. One solution is evident --- to set POLLHUP 3561da177e4SLinus Torvalds * if and only if shutdown has been made in both directions. 3571da177e4SLinus Torvalds * Actually, it is interesting to look how Solaris and DUX 3581da177e4SLinus Torvalds * solve this dilemma. I would prefer, if PULLHUP were maskable, 3591da177e4SLinus Torvalds * then we could set it on SND_SHUTDOWN. BTW examples given 3601da177e4SLinus Torvalds * in Stevens' books assume exactly this behaviour, it explains 3611da177e4SLinus Torvalds * why PULLHUP is incompatible with POLLOUT. --ANK 3621da177e4SLinus Torvalds * 3631da177e4SLinus Torvalds * NOTE. Check for TCP_CLOSE is added. The goal is to prevent 3641da177e4SLinus Torvalds * blocking on fresh not-connected or disconnected socket. --ANK 3651da177e4SLinus Torvalds */ 3661da177e4SLinus Torvalds if (sk->sk_shutdown == SHUTDOWN_MASK || sk->sk_state == TCP_CLOSE) 3671da177e4SLinus Torvalds mask |= POLLHUP; 3681da177e4SLinus Torvalds if (sk->sk_shutdown & RCV_SHUTDOWN) 369f348d70aSDavide Libenzi mask |= POLLIN | POLLRDNORM | POLLRDHUP; 3701da177e4SLinus Torvalds 3711da177e4SLinus Torvalds /* Connected? */ 3721da177e4SLinus Torvalds if ((1 << sk->sk_state) & ~(TCPF_SYN_SENT | TCPF_SYN_RECV)) { 3731da177e4SLinus Torvalds /* Potential race condition. If read of tp below will 3741da177e4SLinus Torvalds * escape above sk->sk_state, we can be illegally awaken 3751da177e4SLinus Torvalds * in SYN_* states. */ 3761da177e4SLinus Torvalds if ((tp->rcv_nxt != tp->copied_seq) && 3771da177e4SLinus Torvalds (tp->urg_seq != tp->copied_seq || 3781da177e4SLinus Torvalds tp->rcv_nxt != tp->copied_seq + 1 || 3791da177e4SLinus Torvalds sock_flag(sk, SOCK_URGINLINE) || !tp->urg_data)) 3801da177e4SLinus Torvalds mask |= POLLIN | POLLRDNORM; 3811da177e4SLinus Torvalds 3821da177e4SLinus Torvalds if (!(sk->sk_shutdown & SEND_SHUTDOWN)) { 3831da177e4SLinus Torvalds if (sk_stream_wspace(sk) >= sk_stream_min_wspace(sk)) { 3841da177e4SLinus Torvalds mask |= POLLOUT | POLLWRNORM; 3851da177e4SLinus Torvalds } else { /* send SIGIO later */ 3861da177e4SLinus Torvalds set_bit(SOCK_ASYNC_NOSPACE, 3871da177e4SLinus Torvalds &sk->sk_socket->flags); 3881da177e4SLinus Torvalds set_bit(SOCK_NOSPACE, &sk->sk_socket->flags); 3891da177e4SLinus Torvalds 3901da177e4SLinus Torvalds /* Race breaker. If space is freed after 3911da177e4SLinus Torvalds * wspace test but before the flags are set, 3921da177e4SLinus Torvalds * IO signal will be lost. 3931da177e4SLinus Torvalds */ 3941da177e4SLinus Torvalds if (sk_stream_wspace(sk) >= sk_stream_min_wspace(sk)) 3951da177e4SLinus Torvalds mask |= POLLOUT | POLLWRNORM; 3961da177e4SLinus Torvalds } 3971da177e4SLinus Torvalds } 3981da177e4SLinus Torvalds 3991da177e4SLinus Torvalds if (tp->urg_data & TCP_URG_VALID) 4001da177e4SLinus Torvalds mask |= POLLPRI; 4011da177e4SLinus Torvalds } 4021da177e4SLinus Torvalds return mask; 4031da177e4SLinus Torvalds } 4041da177e4SLinus Torvalds 4051da177e4SLinus Torvalds int tcp_ioctl(struct sock *sk, int cmd, unsigned long arg) 4061da177e4SLinus Torvalds { 4071da177e4SLinus Torvalds struct tcp_sock *tp = tcp_sk(sk); 4081da177e4SLinus Torvalds int answ; 4091da177e4SLinus Torvalds 4101da177e4SLinus Torvalds switch (cmd) { 4111da177e4SLinus Torvalds case SIOCINQ: 4121da177e4SLinus Torvalds if (sk->sk_state == TCP_LISTEN) 4131da177e4SLinus Torvalds return -EINVAL; 4141da177e4SLinus Torvalds 4151da177e4SLinus Torvalds lock_sock(sk); 4161da177e4SLinus Torvalds if ((1 << sk->sk_state) & (TCPF_SYN_SENT | TCPF_SYN_RECV)) 4171da177e4SLinus Torvalds answ = 0; 4181da177e4SLinus Torvalds else if (sock_flag(sk, SOCK_URGINLINE) || 4191da177e4SLinus Torvalds !tp->urg_data || 4201da177e4SLinus Torvalds before(tp->urg_seq, tp->copied_seq) || 4211da177e4SLinus Torvalds !before(tp->urg_seq, tp->rcv_nxt)) { 4221da177e4SLinus Torvalds answ = tp->rcv_nxt - tp->copied_seq; 4231da177e4SLinus Torvalds 4241da177e4SLinus Torvalds /* Subtract 1, if FIN is in queue. */ 4251da177e4SLinus Torvalds if (answ && !skb_queue_empty(&sk->sk_receive_queue)) 4261da177e4SLinus Torvalds answ -= 4271da177e4SLinus Torvalds ((struct sk_buff *)sk->sk_receive_queue.prev)->h.th->fin; 4281da177e4SLinus Torvalds } else 4291da177e4SLinus Torvalds answ = tp->urg_seq - tp->copied_seq; 4301da177e4SLinus Torvalds release_sock(sk); 4311da177e4SLinus Torvalds break; 4321da177e4SLinus Torvalds case SIOCATMARK: 4331da177e4SLinus Torvalds answ = tp->urg_data && tp->urg_seq == tp->copied_seq; 4341da177e4SLinus Torvalds break; 4351da177e4SLinus Torvalds case SIOCOUTQ: 4361da177e4SLinus Torvalds if (sk->sk_state == TCP_LISTEN) 4371da177e4SLinus Torvalds return -EINVAL; 4381da177e4SLinus Torvalds 4391da177e4SLinus Torvalds if ((1 << sk->sk_state) & (TCPF_SYN_SENT | TCPF_SYN_RECV)) 4401da177e4SLinus Torvalds answ = 0; 4411da177e4SLinus Torvalds else 4421da177e4SLinus Torvalds answ = tp->write_seq - tp->snd_una; 4431da177e4SLinus Torvalds break; 4441da177e4SLinus Torvalds default: 4451da177e4SLinus Torvalds return -ENOIOCTLCMD; 4461da177e4SLinus Torvalds }; 4471da177e4SLinus Torvalds 4481da177e4SLinus Torvalds return put_user(answ, (int __user *)arg); 4491da177e4SLinus Torvalds } 4501da177e4SLinus Torvalds 4511da177e4SLinus Torvalds static inline void tcp_mark_push(struct tcp_sock *tp, struct sk_buff *skb) 4521da177e4SLinus Torvalds { 4531da177e4SLinus Torvalds TCP_SKB_CB(skb)->flags |= TCPCB_FLAG_PSH; 4541da177e4SLinus Torvalds tp->pushed_seq = tp->write_seq; 4551da177e4SLinus Torvalds } 4561da177e4SLinus Torvalds 4571da177e4SLinus Torvalds static inline int forced_push(struct tcp_sock *tp) 4581da177e4SLinus Torvalds { 4591da177e4SLinus Torvalds return after(tp->write_seq, tp->pushed_seq + (tp->max_window >> 1)); 4601da177e4SLinus Torvalds } 4611da177e4SLinus Torvalds 4621da177e4SLinus Torvalds static inline void skb_entail(struct sock *sk, struct tcp_sock *tp, 4631da177e4SLinus Torvalds struct sk_buff *skb) 4641da177e4SLinus Torvalds { 4651da177e4SLinus Torvalds skb->csum = 0; 4661da177e4SLinus Torvalds TCP_SKB_CB(skb)->seq = tp->write_seq; 4671da177e4SLinus Torvalds TCP_SKB_CB(skb)->end_seq = tp->write_seq; 4681da177e4SLinus Torvalds TCP_SKB_CB(skb)->flags = TCPCB_FLAG_ACK; 4691da177e4SLinus Torvalds TCP_SKB_CB(skb)->sacked = 0; 4701da177e4SLinus Torvalds skb_header_release(skb); 4711da177e4SLinus Torvalds __skb_queue_tail(&sk->sk_write_queue, skb); 4721da177e4SLinus Torvalds sk_charge_skb(sk, skb); 4731da177e4SLinus Torvalds if (!sk->sk_send_head) 4741da177e4SLinus Torvalds sk->sk_send_head = skb; 47589ebd197SDavid S. Miller if (tp->nonagle & TCP_NAGLE_PUSH) 4761da177e4SLinus Torvalds tp->nonagle &= ~TCP_NAGLE_PUSH; 4771da177e4SLinus Torvalds } 4781da177e4SLinus Torvalds 4791da177e4SLinus Torvalds static inline void tcp_mark_urg(struct tcp_sock *tp, int flags, 4801da177e4SLinus Torvalds struct sk_buff *skb) 4811da177e4SLinus Torvalds { 4821da177e4SLinus Torvalds if (flags & MSG_OOB) { 4831da177e4SLinus Torvalds tp->urg_mode = 1; 4841da177e4SLinus Torvalds tp->snd_up = tp->write_seq; 4851da177e4SLinus Torvalds TCP_SKB_CB(skb)->sacked |= TCPCB_URG; 4861da177e4SLinus Torvalds } 4871da177e4SLinus Torvalds } 4881da177e4SLinus Torvalds 4891da177e4SLinus Torvalds static inline void tcp_push(struct sock *sk, struct tcp_sock *tp, int flags, 4901da177e4SLinus Torvalds int mss_now, int nonagle) 4911da177e4SLinus Torvalds { 4921da177e4SLinus Torvalds if (sk->sk_send_head) { 4931da177e4SLinus Torvalds struct sk_buff *skb = sk->sk_write_queue.prev; 4941da177e4SLinus Torvalds if (!(flags & MSG_MORE) || forced_push(tp)) 4951da177e4SLinus Torvalds tcp_mark_push(tp, skb); 4961da177e4SLinus Torvalds tcp_mark_urg(tp, flags, skb); 4971da177e4SLinus Torvalds __tcp_push_pending_frames(sk, tp, mss_now, 4981da177e4SLinus Torvalds (flags & MSG_MORE) ? TCP_NAGLE_CORK : nonagle); 4991da177e4SLinus Torvalds } 5001da177e4SLinus Torvalds } 5011da177e4SLinus Torvalds 5021da177e4SLinus Torvalds static ssize_t do_tcp_sendpages(struct sock *sk, struct page **pages, int poffset, 5031da177e4SLinus Torvalds size_t psize, int flags) 5041da177e4SLinus Torvalds { 5051da177e4SLinus Torvalds struct tcp_sock *tp = tcp_sk(sk); 506c1b4a7e6SDavid S. Miller int mss_now, size_goal; 5071da177e4SLinus Torvalds int err; 5081da177e4SLinus Torvalds ssize_t copied; 5091da177e4SLinus Torvalds long timeo = sock_sndtimeo(sk, flags & MSG_DONTWAIT); 5101da177e4SLinus Torvalds 5111da177e4SLinus Torvalds /* Wait for a connection to finish. */ 5121da177e4SLinus Torvalds if ((1 << sk->sk_state) & ~(TCPF_ESTABLISHED | TCPF_CLOSE_WAIT)) 5131da177e4SLinus Torvalds if ((err = sk_stream_wait_connect(sk, &timeo)) != 0) 5141da177e4SLinus Torvalds goto out_err; 5151da177e4SLinus Torvalds 5161da177e4SLinus Torvalds clear_bit(SOCK_ASYNC_NOSPACE, &sk->sk_socket->flags); 5171da177e4SLinus Torvalds 5181da177e4SLinus Torvalds mss_now = tcp_current_mss(sk, !(flags&MSG_OOB)); 519c1b4a7e6SDavid S. Miller size_goal = tp->xmit_size_goal; 5201da177e4SLinus Torvalds copied = 0; 5211da177e4SLinus Torvalds 5221da177e4SLinus Torvalds err = -EPIPE; 5231da177e4SLinus Torvalds if (sk->sk_err || (sk->sk_shutdown & SEND_SHUTDOWN)) 5241da177e4SLinus Torvalds goto do_error; 5251da177e4SLinus Torvalds 5261da177e4SLinus Torvalds while (psize > 0) { 5271da177e4SLinus Torvalds struct sk_buff *skb = sk->sk_write_queue.prev; 5281da177e4SLinus Torvalds struct page *page = pages[poffset / PAGE_SIZE]; 5291da177e4SLinus Torvalds int copy, i, can_coalesce; 5301da177e4SLinus Torvalds int offset = poffset % PAGE_SIZE; 5311da177e4SLinus Torvalds int size = min_t(size_t, psize, PAGE_SIZE - offset); 5321da177e4SLinus Torvalds 533c1b4a7e6SDavid S. Miller if (!sk->sk_send_head || (copy = size_goal - skb->len) <= 0) { 5341da177e4SLinus Torvalds new_segment: 5351da177e4SLinus Torvalds if (!sk_stream_memory_free(sk)) 5361da177e4SLinus Torvalds goto wait_for_sndbuf; 5371da177e4SLinus Torvalds 5381da177e4SLinus Torvalds skb = sk_stream_alloc_pskb(sk, 0, 0, 5391da177e4SLinus Torvalds sk->sk_allocation); 5401da177e4SLinus Torvalds if (!skb) 5411da177e4SLinus Torvalds goto wait_for_memory; 5421da177e4SLinus Torvalds 5431da177e4SLinus Torvalds skb_entail(sk, tp, skb); 544c1b4a7e6SDavid S. Miller copy = size_goal; 5451da177e4SLinus Torvalds } 5461da177e4SLinus Torvalds 5471da177e4SLinus Torvalds if (copy > size) 5481da177e4SLinus Torvalds copy = size; 5491da177e4SLinus Torvalds 5501da177e4SLinus Torvalds i = skb_shinfo(skb)->nr_frags; 5511da177e4SLinus Torvalds can_coalesce = skb_can_coalesce(skb, i, page, offset); 5521da177e4SLinus Torvalds if (!can_coalesce && i >= MAX_SKB_FRAGS) { 5531da177e4SLinus Torvalds tcp_mark_push(tp, skb); 5541da177e4SLinus Torvalds goto new_segment; 5551da177e4SLinus Torvalds } 556d80d99d6SHerbert Xu if (!sk_stream_wmem_schedule(sk, copy)) 5571da177e4SLinus Torvalds goto wait_for_memory; 5581da177e4SLinus Torvalds 5591da177e4SLinus Torvalds if (can_coalesce) { 5601da177e4SLinus Torvalds skb_shinfo(skb)->frags[i - 1].size += copy; 5611da177e4SLinus Torvalds } else { 5621da177e4SLinus Torvalds get_page(page); 5631da177e4SLinus Torvalds skb_fill_page_desc(skb, i, page, offset, copy); 5641da177e4SLinus Torvalds } 5651da177e4SLinus Torvalds 5661da177e4SLinus Torvalds skb->len += copy; 5671da177e4SLinus Torvalds skb->data_len += copy; 5681da177e4SLinus Torvalds skb->truesize += copy; 5691da177e4SLinus Torvalds sk->sk_wmem_queued += copy; 5701da177e4SLinus Torvalds sk->sk_forward_alloc -= copy; 57184fa7933SPatrick McHardy skb->ip_summed = CHECKSUM_PARTIAL; 5721da177e4SLinus Torvalds tp->write_seq += copy; 5731da177e4SLinus Torvalds TCP_SKB_CB(skb)->end_seq += copy; 5747967168cSHerbert Xu skb_shinfo(skb)->gso_segs = 0; 5751da177e4SLinus Torvalds 5761da177e4SLinus Torvalds if (!copied) 5771da177e4SLinus Torvalds TCP_SKB_CB(skb)->flags &= ~TCPCB_FLAG_PSH; 5781da177e4SLinus Torvalds 5791da177e4SLinus Torvalds copied += copy; 5801da177e4SLinus Torvalds poffset += copy; 5811da177e4SLinus Torvalds if (!(psize -= copy)) 5821da177e4SLinus Torvalds goto out; 5831da177e4SLinus Torvalds 584c1b4a7e6SDavid S. Miller if (skb->len < mss_now || (flags & MSG_OOB)) 5851da177e4SLinus Torvalds continue; 5861da177e4SLinus Torvalds 5871da177e4SLinus Torvalds if (forced_push(tp)) { 5881da177e4SLinus Torvalds tcp_mark_push(tp, skb); 5891da177e4SLinus Torvalds __tcp_push_pending_frames(sk, tp, mss_now, TCP_NAGLE_PUSH); 5901da177e4SLinus Torvalds } else if (skb == sk->sk_send_head) 5911da177e4SLinus Torvalds tcp_push_one(sk, mss_now); 5921da177e4SLinus Torvalds continue; 5931da177e4SLinus Torvalds 5941da177e4SLinus Torvalds wait_for_sndbuf: 5951da177e4SLinus Torvalds set_bit(SOCK_NOSPACE, &sk->sk_socket->flags); 5961da177e4SLinus Torvalds wait_for_memory: 5971da177e4SLinus Torvalds if (copied) 5981da177e4SLinus Torvalds tcp_push(sk, tp, flags & ~MSG_MORE, mss_now, TCP_NAGLE_PUSH); 5991da177e4SLinus Torvalds 6001da177e4SLinus Torvalds if ((err = sk_stream_wait_memory(sk, &timeo)) != 0) 6011da177e4SLinus Torvalds goto do_error; 6021da177e4SLinus Torvalds 6031da177e4SLinus Torvalds mss_now = tcp_current_mss(sk, !(flags&MSG_OOB)); 604c1b4a7e6SDavid S. Miller size_goal = tp->xmit_size_goal; 6051da177e4SLinus Torvalds } 6061da177e4SLinus Torvalds 6071da177e4SLinus Torvalds out: 6081da177e4SLinus Torvalds if (copied) 6091da177e4SLinus Torvalds tcp_push(sk, tp, flags, mss_now, tp->nonagle); 6101da177e4SLinus Torvalds return copied; 6111da177e4SLinus Torvalds 6121da177e4SLinus Torvalds do_error: 6131da177e4SLinus Torvalds if (copied) 6141da177e4SLinus Torvalds goto out; 6151da177e4SLinus Torvalds out_err: 6161da177e4SLinus Torvalds return sk_stream_error(sk, flags, err); 6171da177e4SLinus Torvalds } 6181da177e4SLinus Torvalds 6191da177e4SLinus Torvalds ssize_t tcp_sendpage(struct socket *sock, struct page *page, int offset, 6201da177e4SLinus Torvalds size_t size, int flags) 6211da177e4SLinus Torvalds { 6221da177e4SLinus Torvalds ssize_t res; 6231da177e4SLinus Torvalds struct sock *sk = sock->sk; 6241da177e4SLinus Torvalds 6251da177e4SLinus Torvalds if (!(sk->sk_route_caps & NETIF_F_SG) || 6268648b305SHerbert Xu !(sk->sk_route_caps & NETIF_F_ALL_CSUM)) 6271da177e4SLinus Torvalds return sock_no_sendpage(sock, page, offset, size, flags); 6281da177e4SLinus Torvalds 6291da177e4SLinus Torvalds lock_sock(sk); 6301da177e4SLinus Torvalds TCP_CHECK_TIMER(sk); 6311da177e4SLinus Torvalds res = do_tcp_sendpages(sk, &page, offset, size, flags); 6321da177e4SLinus Torvalds TCP_CHECK_TIMER(sk); 6331da177e4SLinus Torvalds release_sock(sk); 6341da177e4SLinus Torvalds return res; 6351da177e4SLinus Torvalds } 6361da177e4SLinus Torvalds 6371da177e4SLinus Torvalds #define TCP_PAGE(sk) (sk->sk_sndmsg_page) 6381da177e4SLinus Torvalds #define TCP_OFF(sk) (sk->sk_sndmsg_off) 6391da177e4SLinus Torvalds 6401da177e4SLinus Torvalds static inline int select_size(struct sock *sk, struct tcp_sock *tp) 6411da177e4SLinus Torvalds { 642c1b4a7e6SDavid S. Miller int tmp = tp->mss_cache; 6431da177e4SLinus Torvalds 644b4e26f5eSDavid S. Miller if (sk->sk_route_caps & NETIF_F_SG) { 645bcd76111SHerbert Xu if (sk_can_gso(sk)) 646c65f7f00SDavid S. Miller tmp = 0; 647b4e26f5eSDavid S. Miller else { 648b4e26f5eSDavid S. Miller int pgbreak = SKB_MAX_HEAD(MAX_TCP_HEADER); 649b4e26f5eSDavid S. Miller 650b4e26f5eSDavid S. Miller if (tmp >= pgbreak && 651b4e26f5eSDavid S. Miller tmp <= pgbreak + (MAX_SKB_FRAGS - 1) * PAGE_SIZE) 652b4e26f5eSDavid S. Miller tmp = pgbreak; 653b4e26f5eSDavid S. Miller } 654b4e26f5eSDavid S. Miller } 6551da177e4SLinus Torvalds 6561da177e4SLinus Torvalds return tmp; 6571da177e4SLinus Torvalds } 6581da177e4SLinus Torvalds 6591da177e4SLinus Torvalds int tcp_sendmsg(struct kiocb *iocb, struct sock *sk, struct msghdr *msg, 6601da177e4SLinus Torvalds size_t size) 6611da177e4SLinus Torvalds { 6621da177e4SLinus Torvalds struct iovec *iov; 6631da177e4SLinus Torvalds struct tcp_sock *tp = tcp_sk(sk); 6641da177e4SLinus Torvalds struct sk_buff *skb; 6651da177e4SLinus Torvalds int iovlen, flags; 666c1b4a7e6SDavid S. Miller int mss_now, size_goal; 6671da177e4SLinus Torvalds int err, copied; 6681da177e4SLinus Torvalds long timeo; 6691da177e4SLinus Torvalds 6701da177e4SLinus Torvalds lock_sock(sk); 6711da177e4SLinus Torvalds TCP_CHECK_TIMER(sk); 6721da177e4SLinus Torvalds 6731da177e4SLinus Torvalds flags = msg->msg_flags; 6741da177e4SLinus Torvalds timeo = sock_sndtimeo(sk, flags & MSG_DONTWAIT); 6751da177e4SLinus Torvalds 6761da177e4SLinus Torvalds /* Wait for a connection to finish. */ 6771da177e4SLinus Torvalds if ((1 << sk->sk_state) & ~(TCPF_ESTABLISHED | TCPF_CLOSE_WAIT)) 6781da177e4SLinus Torvalds if ((err = sk_stream_wait_connect(sk, &timeo)) != 0) 6791da177e4SLinus Torvalds goto out_err; 6801da177e4SLinus Torvalds 6811da177e4SLinus Torvalds /* This should be in poll */ 6821da177e4SLinus Torvalds clear_bit(SOCK_ASYNC_NOSPACE, &sk->sk_socket->flags); 6831da177e4SLinus Torvalds 6841da177e4SLinus Torvalds mss_now = tcp_current_mss(sk, !(flags&MSG_OOB)); 685c1b4a7e6SDavid S. Miller size_goal = tp->xmit_size_goal; 6861da177e4SLinus Torvalds 6871da177e4SLinus Torvalds /* Ok commence sending. */ 6881da177e4SLinus Torvalds iovlen = msg->msg_iovlen; 6891da177e4SLinus Torvalds iov = msg->msg_iov; 6901da177e4SLinus Torvalds copied = 0; 6911da177e4SLinus Torvalds 6921da177e4SLinus Torvalds err = -EPIPE; 6931da177e4SLinus Torvalds if (sk->sk_err || (sk->sk_shutdown & SEND_SHUTDOWN)) 6941da177e4SLinus Torvalds goto do_error; 6951da177e4SLinus Torvalds 6961da177e4SLinus Torvalds while (--iovlen >= 0) { 6971da177e4SLinus Torvalds int seglen = iov->iov_len; 6981da177e4SLinus Torvalds unsigned char __user *from = iov->iov_base; 6991da177e4SLinus Torvalds 7001da177e4SLinus Torvalds iov++; 7011da177e4SLinus Torvalds 7021da177e4SLinus Torvalds while (seglen > 0) { 7031da177e4SLinus Torvalds int copy; 7041da177e4SLinus Torvalds 7051da177e4SLinus Torvalds skb = sk->sk_write_queue.prev; 7061da177e4SLinus Torvalds 7071da177e4SLinus Torvalds if (!sk->sk_send_head || 708c1b4a7e6SDavid S. Miller (copy = size_goal - skb->len) <= 0) { 7091da177e4SLinus Torvalds 7101da177e4SLinus Torvalds new_segment: 7111da177e4SLinus Torvalds /* Allocate new segment. If the interface is SG, 7121da177e4SLinus Torvalds * allocate skb fitting to single page. 7131da177e4SLinus Torvalds */ 7141da177e4SLinus Torvalds if (!sk_stream_memory_free(sk)) 7151da177e4SLinus Torvalds goto wait_for_sndbuf; 7161da177e4SLinus Torvalds 7171da177e4SLinus Torvalds skb = sk_stream_alloc_pskb(sk, select_size(sk, tp), 7181da177e4SLinus Torvalds 0, sk->sk_allocation); 7191da177e4SLinus Torvalds if (!skb) 7201da177e4SLinus Torvalds goto wait_for_memory; 7211da177e4SLinus Torvalds 7221da177e4SLinus Torvalds /* 7231da177e4SLinus Torvalds * Check whether we can use HW checksum. 7241da177e4SLinus Torvalds */ 7258648b305SHerbert Xu if (sk->sk_route_caps & NETIF_F_ALL_CSUM) 72684fa7933SPatrick McHardy skb->ip_summed = CHECKSUM_PARTIAL; 7271da177e4SLinus Torvalds 7281da177e4SLinus Torvalds skb_entail(sk, tp, skb); 729c1b4a7e6SDavid S. Miller copy = size_goal; 7301da177e4SLinus Torvalds } 7311da177e4SLinus Torvalds 7321da177e4SLinus Torvalds /* Try to append data to the end of skb. */ 7331da177e4SLinus Torvalds if (copy > seglen) 7341da177e4SLinus Torvalds copy = seglen; 7351da177e4SLinus Torvalds 7361da177e4SLinus Torvalds /* Where to copy to? */ 7371da177e4SLinus Torvalds if (skb_tailroom(skb) > 0) { 7381da177e4SLinus Torvalds /* We have some space in skb head. Superb! */ 7391da177e4SLinus Torvalds if (copy > skb_tailroom(skb)) 7401da177e4SLinus Torvalds copy = skb_tailroom(skb); 7411da177e4SLinus Torvalds if ((err = skb_add_data(skb, from, copy)) != 0) 7421da177e4SLinus Torvalds goto do_fault; 7431da177e4SLinus Torvalds } else { 7441da177e4SLinus Torvalds int merge = 0; 7451da177e4SLinus Torvalds int i = skb_shinfo(skb)->nr_frags; 7461da177e4SLinus Torvalds struct page *page = TCP_PAGE(sk); 7471da177e4SLinus Torvalds int off = TCP_OFF(sk); 7481da177e4SLinus Torvalds 7491da177e4SLinus Torvalds if (skb_can_coalesce(skb, i, page, off) && 7501da177e4SLinus Torvalds off != PAGE_SIZE) { 7511da177e4SLinus Torvalds /* We can extend the last page 7521da177e4SLinus Torvalds * fragment. */ 7531da177e4SLinus Torvalds merge = 1; 7541da177e4SLinus Torvalds } else if (i == MAX_SKB_FRAGS || 7551da177e4SLinus Torvalds (!i && 7561da177e4SLinus Torvalds !(sk->sk_route_caps & NETIF_F_SG))) { 7571da177e4SLinus Torvalds /* Need to add new fragment and cannot 7581da177e4SLinus Torvalds * do this because interface is non-SG, 7591da177e4SLinus Torvalds * or because all the page slots are 7601da177e4SLinus Torvalds * busy. */ 7611da177e4SLinus Torvalds tcp_mark_push(tp, skb); 7621da177e4SLinus Torvalds goto new_segment; 7631da177e4SLinus Torvalds } else if (page) { 7641da177e4SLinus Torvalds if (off == PAGE_SIZE) { 7651da177e4SLinus Torvalds put_page(page); 7661da177e4SLinus Torvalds TCP_PAGE(sk) = page = NULL; 767fb5f5e6eSHerbert Xu off = 0; 7681da177e4SLinus Torvalds } 769ef015786SHerbert Xu } else 770fb5f5e6eSHerbert Xu off = 0; 771ef015786SHerbert Xu 772ef015786SHerbert Xu if (copy > PAGE_SIZE - off) 773ef015786SHerbert Xu copy = PAGE_SIZE - off; 774ef015786SHerbert Xu 775ef015786SHerbert Xu if (!sk_stream_wmem_schedule(sk, copy)) 776ef015786SHerbert Xu goto wait_for_memory; 7771da177e4SLinus Torvalds 7781da177e4SLinus Torvalds if (!page) { 7791da177e4SLinus Torvalds /* Allocate new cache page. */ 7801da177e4SLinus Torvalds if (!(page = sk_stream_alloc_page(sk))) 7811da177e4SLinus Torvalds goto wait_for_memory; 7821da177e4SLinus Torvalds } 7831da177e4SLinus Torvalds 7841da177e4SLinus Torvalds /* Time to copy data. We are close to 7851da177e4SLinus Torvalds * the end! */ 7861da177e4SLinus Torvalds err = skb_copy_to_page(sk, from, skb, page, 7871da177e4SLinus Torvalds off, copy); 7881da177e4SLinus Torvalds if (err) { 7891da177e4SLinus Torvalds /* If this page was new, give it to the 7901da177e4SLinus Torvalds * socket so it does not get leaked. 7911da177e4SLinus Torvalds */ 7921da177e4SLinus Torvalds if (!TCP_PAGE(sk)) { 7931da177e4SLinus Torvalds TCP_PAGE(sk) = page; 7941da177e4SLinus Torvalds TCP_OFF(sk) = 0; 7951da177e4SLinus Torvalds } 7961da177e4SLinus Torvalds goto do_error; 7971da177e4SLinus Torvalds } 7981da177e4SLinus Torvalds 7991da177e4SLinus Torvalds /* Update the skb. */ 8001da177e4SLinus Torvalds if (merge) { 8011da177e4SLinus Torvalds skb_shinfo(skb)->frags[i - 1].size += 8021da177e4SLinus Torvalds copy; 8031da177e4SLinus Torvalds } else { 8041da177e4SLinus Torvalds skb_fill_page_desc(skb, i, page, off, copy); 8051da177e4SLinus Torvalds if (TCP_PAGE(sk)) { 8061da177e4SLinus Torvalds get_page(page); 8071da177e4SLinus Torvalds } else if (off + copy < PAGE_SIZE) { 8081da177e4SLinus Torvalds get_page(page); 8091da177e4SLinus Torvalds TCP_PAGE(sk) = page; 8101da177e4SLinus Torvalds } 8111da177e4SLinus Torvalds } 8121da177e4SLinus Torvalds 8131da177e4SLinus Torvalds TCP_OFF(sk) = off + copy; 8141da177e4SLinus Torvalds } 8151da177e4SLinus Torvalds 8161da177e4SLinus Torvalds if (!copied) 8171da177e4SLinus Torvalds TCP_SKB_CB(skb)->flags &= ~TCPCB_FLAG_PSH; 8181da177e4SLinus Torvalds 8191da177e4SLinus Torvalds tp->write_seq += copy; 8201da177e4SLinus Torvalds TCP_SKB_CB(skb)->end_seq += copy; 8217967168cSHerbert Xu skb_shinfo(skb)->gso_segs = 0; 8221da177e4SLinus Torvalds 8231da177e4SLinus Torvalds from += copy; 8241da177e4SLinus Torvalds copied += copy; 8251da177e4SLinus Torvalds if ((seglen -= copy) == 0 && iovlen == 0) 8261da177e4SLinus Torvalds goto out; 8271da177e4SLinus Torvalds 828c1b4a7e6SDavid S. Miller if (skb->len < mss_now || (flags & MSG_OOB)) 8291da177e4SLinus Torvalds continue; 8301da177e4SLinus Torvalds 8311da177e4SLinus Torvalds if (forced_push(tp)) { 8321da177e4SLinus Torvalds tcp_mark_push(tp, skb); 8331da177e4SLinus Torvalds __tcp_push_pending_frames(sk, tp, mss_now, TCP_NAGLE_PUSH); 8341da177e4SLinus Torvalds } else if (skb == sk->sk_send_head) 8351da177e4SLinus Torvalds tcp_push_one(sk, mss_now); 8361da177e4SLinus Torvalds continue; 8371da177e4SLinus Torvalds 8381da177e4SLinus Torvalds wait_for_sndbuf: 8391da177e4SLinus Torvalds set_bit(SOCK_NOSPACE, &sk->sk_socket->flags); 8401da177e4SLinus Torvalds wait_for_memory: 8411da177e4SLinus Torvalds if (copied) 8421da177e4SLinus Torvalds tcp_push(sk, tp, flags & ~MSG_MORE, mss_now, TCP_NAGLE_PUSH); 8431da177e4SLinus Torvalds 8441da177e4SLinus Torvalds if ((err = sk_stream_wait_memory(sk, &timeo)) != 0) 8451da177e4SLinus Torvalds goto do_error; 8461da177e4SLinus Torvalds 8471da177e4SLinus Torvalds mss_now = tcp_current_mss(sk, !(flags&MSG_OOB)); 848c1b4a7e6SDavid S. Miller size_goal = tp->xmit_size_goal; 8491da177e4SLinus Torvalds } 8501da177e4SLinus Torvalds } 8511da177e4SLinus Torvalds 8521da177e4SLinus Torvalds out: 8531da177e4SLinus Torvalds if (copied) 8541da177e4SLinus Torvalds tcp_push(sk, tp, flags, mss_now, tp->nonagle); 8551da177e4SLinus Torvalds TCP_CHECK_TIMER(sk); 8561da177e4SLinus Torvalds release_sock(sk); 8571da177e4SLinus Torvalds return copied; 8581da177e4SLinus Torvalds 8591da177e4SLinus Torvalds do_fault: 8601da177e4SLinus Torvalds if (!skb->len) { 8611da177e4SLinus Torvalds if (sk->sk_send_head == skb) 8621da177e4SLinus Torvalds sk->sk_send_head = NULL; 8638728b834SDavid S. Miller __skb_unlink(skb, &sk->sk_write_queue); 8641da177e4SLinus Torvalds sk_stream_free_skb(sk, skb); 8651da177e4SLinus Torvalds } 8661da177e4SLinus Torvalds 8671da177e4SLinus Torvalds do_error: 8681da177e4SLinus Torvalds if (copied) 8691da177e4SLinus Torvalds goto out; 8701da177e4SLinus Torvalds out_err: 8711da177e4SLinus Torvalds err = sk_stream_error(sk, flags, err); 8721da177e4SLinus Torvalds TCP_CHECK_TIMER(sk); 8731da177e4SLinus Torvalds release_sock(sk); 8741da177e4SLinus Torvalds return err; 8751da177e4SLinus Torvalds } 8761da177e4SLinus Torvalds 8771da177e4SLinus Torvalds /* 8781da177e4SLinus Torvalds * Handle reading urgent data. BSD has very simple semantics for 8791da177e4SLinus Torvalds * this, no blocking and very strange errors 8) 8801da177e4SLinus Torvalds */ 8811da177e4SLinus Torvalds 8821da177e4SLinus Torvalds static int tcp_recv_urg(struct sock *sk, long timeo, 8831da177e4SLinus Torvalds struct msghdr *msg, int len, int flags, 8841da177e4SLinus Torvalds int *addr_len) 8851da177e4SLinus Torvalds { 8861da177e4SLinus Torvalds struct tcp_sock *tp = tcp_sk(sk); 8871da177e4SLinus Torvalds 8881da177e4SLinus Torvalds /* No URG data to read. */ 8891da177e4SLinus Torvalds if (sock_flag(sk, SOCK_URGINLINE) || !tp->urg_data || 8901da177e4SLinus Torvalds tp->urg_data == TCP_URG_READ) 8911da177e4SLinus Torvalds return -EINVAL; /* Yes this is right ! */ 8921da177e4SLinus Torvalds 8931da177e4SLinus Torvalds if (sk->sk_state == TCP_CLOSE && !sock_flag(sk, SOCK_DONE)) 8941da177e4SLinus Torvalds return -ENOTCONN; 8951da177e4SLinus Torvalds 8961da177e4SLinus Torvalds if (tp->urg_data & TCP_URG_VALID) { 8971da177e4SLinus Torvalds int err = 0; 8981da177e4SLinus Torvalds char c = tp->urg_data; 8991da177e4SLinus Torvalds 9001da177e4SLinus Torvalds if (!(flags & MSG_PEEK)) 9011da177e4SLinus Torvalds tp->urg_data = TCP_URG_READ; 9021da177e4SLinus Torvalds 9031da177e4SLinus Torvalds /* Read urgent data. */ 9041da177e4SLinus Torvalds msg->msg_flags |= MSG_OOB; 9051da177e4SLinus Torvalds 9061da177e4SLinus Torvalds if (len > 0) { 9071da177e4SLinus Torvalds if (!(flags & MSG_TRUNC)) 9081da177e4SLinus Torvalds err = memcpy_toiovec(msg->msg_iov, &c, 1); 9091da177e4SLinus Torvalds len = 1; 9101da177e4SLinus Torvalds } else 9111da177e4SLinus Torvalds msg->msg_flags |= MSG_TRUNC; 9121da177e4SLinus Torvalds 9131da177e4SLinus Torvalds return err ? -EFAULT : len; 9141da177e4SLinus Torvalds } 9151da177e4SLinus Torvalds 9161da177e4SLinus Torvalds if (sk->sk_state == TCP_CLOSE || (sk->sk_shutdown & RCV_SHUTDOWN)) 9171da177e4SLinus Torvalds return 0; 9181da177e4SLinus Torvalds 9191da177e4SLinus Torvalds /* Fixed the recv(..., MSG_OOB) behaviour. BSD docs and 9201da177e4SLinus Torvalds * the available implementations agree in this case: 9211da177e4SLinus Torvalds * this call should never block, independent of the 9221da177e4SLinus Torvalds * blocking state of the socket. 9231da177e4SLinus Torvalds * Mike <pall@rz.uni-karlsruhe.de> 9241da177e4SLinus Torvalds */ 9251da177e4SLinus Torvalds return -EAGAIN; 9261da177e4SLinus Torvalds } 9271da177e4SLinus Torvalds 9281da177e4SLinus Torvalds /* Clean up the receive buffer for full frames taken by the user, 9291da177e4SLinus Torvalds * then send an ACK if necessary. COPIED is the number of bytes 9301da177e4SLinus Torvalds * tcp_recvmsg has given to the user so far, it speeds up the 9311da177e4SLinus Torvalds * calculation of whether or not we must ACK for the sake of 9321da177e4SLinus Torvalds * a window update. 9331da177e4SLinus Torvalds */ 9340e4b4992SChris Leech void tcp_cleanup_rbuf(struct sock *sk, int copied) 9351da177e4SLinus Torvalds { 9361da177e4SLinus Torvalds struct tcp_sock *tp = tcp_sk(sk); 9371da177e4SLinus Torvalds int time_to_ack = 0; 9381da177e4SLinus Torvalds 9391da177e4SLinus Torvalds #if TCP_DEBUG 9401da177e4SLinus Torvalds struct sk_buff *skb = skb_peek(&sk->sk_receive_queue); 9411da177e4SLinus Torvalds 9421da177e4SLinus Torvalds BUG_TRAP(!skb || before(tp->copied_seq, TCP_SKB_CB(skb)->end_seq)); 9431da177e4SLinus Torvalds #endif 9441da177e4SLinus Torvalds 945463c84b9SArnaldo Carvalho de Melo if (inet_csk_ack_scheduled(sk)) { 946463c84b9SArnaldo Carvalho de Melo const struct inet_connection_sock *icsk = inet_csk(sk); 9471da177e4SLinus Torvalds /* Delayed ACKs frequently hit locked sockets during bulk 9481da177e4SLinus Torvalds * receive. */ 949463c84b9SArnaldo Carvalho de Melo if (icsk->icsk_ack.blocked || 9501da177e4SLinus Torvalds /* Once-per-two-segments ACK was not sent by tcp_input.c */ 951463c84b9SArnaldo Carvalho de Melo tp->rcv_nxt - tp->rcv_wup > icsk->icsk_ack.rcv_mss || 9521da177e4SLinus Torvalds /* 9531da177e4SLinus Torvalds * If this read emptied read buffer, we send ACK, if 9541da177e4SLinus Torvalds * connection is not bidirectional, user drained 9551da177e4SLinus Torvalds * receive buffer and there was a small segment 9561da177e4SLinus Torvalds * in queue. 9571da177e4SLinus Torvalds */ 958*1ef9696cSAlexey Kuznetsov (copied > 0 && 959*1ef9696cSAlexey Kuznetsov ((icsk->icsk_ack.pending & ICSK_ACK_PUSHED2) || 960*1ef9696cSAlexey Kuznetsov ((icsk->icsk_ack.pending & ICSK_ACK_PUSHED) && 961*1ef9696cSAlexey Kuznetsov !icsk->icsk_ack.pingpong)) && 962*1ef9696cSAlexey Kuznetsov !atomic_read(&sk->sk_rmem_alloc))) 9631da177e4SLinus Torvalds time_to_ack = 1; 9641da177e4SLinus Torvalds } 9651da177e4SLinus Torvalds 9661da177e4SLinus Torvalds /* We send an ACK if we can now advertise a non-zero window 9671da177e4SLinus Torvalds * which has been raised "significantly". 9681da177e4SLinus Torvalds * 9691da177e4SLinus Torvalds * Even if window raised up to infinity, do not send window open ACK 9701da177e4SLinus Torvalds * in states, where we will not receive more. It is useless. 9711da177e4SLinus Torvalds */ 9721da177e4SLinus Torvalds if (copied > 0 && !time_to_ack && !(sk->sk_shutdown & RCV_SHUTDOWN)) { 9731da177e4SLinus Torvalds __u32 rcv_window_now = tcp_receive_window(tp); 9741da177e4SLinus Torvalds 9751da177e4SLinus Torvalds /* Optimize, __tcp_select_window() is not cheap. */ 9761da177e4SLinus Torvalds if (2*rcv_window_now <= tp->window_clamp) { 9771da177e4SLinus Torvalds __u32 new_window = __tcp_select_window(sk); 9781da177e4SLinus Torvalds 9791da177e4SLinus Torvalds /* Send ACK now, if this read freed lots of space 9801da177e4SLinus Torvalds * in our buffer. Certainly, new_window is new window. 9811da177e4SLinus Torvalds * We can advertise it now, if it is not less than current one. 9821da177e4SLinus Torvalds * "Lots" means "at least twice" here. 9831da177e4SLinus Torvalds */ 9841da177e4SLinus Torvalds if (new_window && new_window >= 2 * rcv_window_now) 9851da177e4SLinus Torvalds time_to_ack = 1; 9861da177e4SLinus Torvalds } 9871da177e4SLinus Torvalds } 9881da177e4SLinus Torvalds if (time_to_ack) 9891da177e4SLinus Torvalds tcp_send_ack(sk); 9901da177e4SLinus Torvalds } 9911da177e4SLinus Torvalds 9921da177e4SLinus Torvalds static void tcp_prequeue_process(struct sock *sk) 9931da177e4SLinus Torvalds { 9941da177e4SLinus Torvalds struct sk_buff *skb; 9951da177e4SLinus Torvalds struct tcp_sock *tp = tcp_sk(sk); 9961da177e4SLinus Torvalds 997b03efcfbSDavid S. Miller NET_INC_STATS_USER(LINUX_MIB_TCPPREQUEUED); 9981da177e4SLinus Torvalds 9991da177e4SLinus Torvalds /* RX process wants to run with disabled BHs, though it is not 10001da177e4SLinus Torvalds * necessary */ 10011da177e4SLinus Torvalds local_bh_disable(); 10021da177e4SLinus Torvalds while ((skb = __skb_dequeue(&tp->ucopy.prequeue)) != NULL) 10031da177e4SLinus Torvalds sk->sk_backlog_rcv(sk, skb); 10041da177e4SLinus Torvalds local_bh_enable(); 10051da177e4SLinus Torvalds 10061da177e4SLinus Torvalds /* Clear memory counter. */ 10071da177e4SLinus Torvalds tp->ucopy.memory = 0; 10081da177e4SLinus Torvalds } 10091da177e4SLinus Torvalds 10101da177e4SLinus Torvalds static inline struct sk_buff *tcp_recv_skb(struct sock *sk, u32 seq, u32 *off) 10111da177e4SLinus Torvalds { 10121da177e4SLinus Torvalds struct sk_buff *skb; 10131da177e4SLinus Torvalds u32 offset; 10141da177e4SLinus Torvalds 10151da177e4SLinus Torvalds skb_queue_walk(&sk->sk_receive_queue, skb) { 10161da177e4SLinus Torvalds offset = seq - TCP_SKB_CB(skb)->seq; 10171da177e4SLinus Torvalds if (skb->h.th->syn) 10181da177e4SLinus Torvalds offset--; 10191da177e4SLinus Torvalds if (offset < skb->len || skb->h.th->fin) { 10201da177e4SLinus Torvalds *off = offset; 10211da177e4SLinus Torvalds return skb; 10221da177e4SLinus Torvalds } 10231da177e4SLinus Torvalds } 10241da177e4SLinus Torvalds return NULL; 10251da177e4SLinus Torvalds } 10261da177e4SLinus Torvalds 10271da177e4SLinus Torvalds /* 10281da177e4SLinus Torvalds * This routine provides an alternative to tcp_recvmsg() for routines 10291da177e4SLinus Torvalds * that would like to handle copying from skbuffs directly in 'sendfile' 10301da177e4SLinus Torvalds * fashion. 10311da177e4SLinus Torvalds * Note: 10321da177e4SLinus Torvalds * - It is assumed that the socket was locked by the caller. 10331da177e4SLinus Torvalds * - The routine does not block. 10341da177e4SLinus Torvalds * - At present, there is no support for reading OOB data 10351da177e4SLinus Torvalds * or for 'peeking' the socket using this routine 10361da177e4SLinus Torvalds * (although both would be easy to implement). 10371da177e4SLinus Torvalds */ 10381da177e4SLinus Torvalds int tcp_read_sock(struct sock *sk, read_descriptor_t *desc, 10391da177e4SLinus Torvalds sk_read_actor_t recv_actor) 10401da177e4SLinus Torvalds { 10411da177e4SLinus Torvalds struct sk_buff *skb; 10421da177e4SLinus Torvalds struct tcp_sock *tp = tcp_sk(sk); 10431da177e4SLinus Torvalds u32 seq = tp->copied_seq; 10441da177e4SLinus Torvalds u32 offset; 10451da177e4SLinus Torvalds int copied = 0; 10461da177e4SLinus Torvalds 10471da177e4SLinus Torvalds if (sk->sk_state == TCP_LISTEN) 10481da177e4SLinus Torvalds return -ENOTCONN; 10491da177e4SLinus Torvalds while ((skb = tcp_recv_skb(sk, seq, &offset)) != NULL) { 10501da177e4SLinus Torvalds if (offset < skb->len) { 10511da177e4SLinus Torvalds size_t used, len; 10521da177e4SLinus Torvalds 10531da177e4SLinus Torvalds len = skb->len - offset; 10541da177e4SLinus Torvalds /* Stop reading if we hit a patch of urgent data */ 10551da177e4SLinus Torvalds if (tp->urg_data) { 10561da177e4SLinus Torvalds u32 urg_offset = tp->urg_seq - seq; 10571da177e4SLinus Torvalds if (urg_offset < len) 10581da177e4SLinus Torvalds len = urg_offset; 10591da177e4SLinus Torvalds if (!len) 10601da177e4SLinus Torvalds break; 10611da177e4SLinus Torvalds } 10621da177e4SLinus Torvalds used = recv_actor(desc, skb, offset, len); 10631da177e4SLinus Torvalds if (used <= len) { 10641da177e4SLinus Torvalds seq += used; 10651da177e4SLinus Torvalds copied += used; 10661da177e4SLinus Torvalds offset += used; 10671da177e4SLinus Torvalds } 10681da177e4SLinus Torvalds if (offset != skb->len) 10691da177e4SLinus Torvalds break; 10701da177e4SLinus Torvalds } 10711da177e4SLinus Torvalds if (skb->h.th->fin) { 1072624d1164SChris Leech sk_eat_skb(sk, skb, 0); 10731da177e4SLinus Torvalds ++seq; 10741da177e4SLinus Torvalds break; 10751da177e4SLinus Torvalds } 1076624d1164SChris Leech sk_eat_skb(sk, skb, 0); 10771da177e4SLinus Torvalds if (!desc->count) 10781da177e4SLinus Torvalds break; 10791da177e4SLinus Torvalds } 10801da177e4SLinus Torvalds tp->copied_seq = seq; 10811da177e4SLinus Torvalds 10821da177e4SLinus Torvalds tcp_rcv_space_adjust(sk); 10831da177e4SLinus Torvalds 10841da177e4SLinus Torvalds /* Clean up data we have read: This will do ACK frames. */ 10851da177e4SLinus Torvalds if (copied) 10860e4b4992SChris Leech tcp_cleanup_rbuf(sk, copied); 10871da177e4SLinus Torvalds return copied; 10881da177e4SLinus Torvalds } 10891da177e4SLinus Torvalds 10901da177e4SLinus Torvalds /* 10911da177e4SLinus Torvalds * This routine copies from a sock struct into the user buffer. 10921da177e4SLinus Torvalds * 10931da177e4SLinus Torvalds * Technical note: in 2.3 we work on _locked_ socket, so that 10941da177e4SLinus Torvalds * tricks with *seq access order and skb->users are not required. 10951da177e4SLinus Torvalds * Probably, code can be easily improved even more. 10961da177e4SLinus Torvalds */ 10971da177e4SLinus Torvalds 10981da177e4SLinus Torvalds int tcp_recvmsg(struct kiocb *iocb, struct sock *sk, struct msghdr *msg, 10991da177e4SLinus Torvalds size_t len, int nonblock, int flags, int *addr_len) 11001da177e4SLinus Torvalds { 11011da177e4SLinus Torvalds struct tcp_sock *tp = tcp_sk(sk); 11021da177e4SLinus Torvalds int copied = 0; 11031da177e4SLinus Torvalds u32 peek_seq; 11041da177e4SLinus Torvalds u32 *seq; 11051da177e4SLinus Torvalds unsigned long used; 11061da177e4SLinus Torvalds int err; 11071da177e4SLinus Torvalds int target; /* Read at least this many bytes */ 11081da177e4SLinus Torvalds long timeo; 11091da177e4SLinus Torvalds struct task_struct *user_recv = NULL; 11101a2449a8SChris Leech int copied_early = 0; 11111da177e4SLinus Torvalds 11121da177e4SLinus Torvalds lock_sock(sk); 11131da177e4SLinus Torvalds 11141da177e4SLinus Torvalds TCP_CHECK_TIMER(sk); 11151da177e4SLinus Torvalds 11161da177e4SLinus Torvalds err = -ENOTCONN; 11171da177e4SLinus Torvalds if (sk->sk_state == TCP_LISTEN) 11181da177e4SLinus Torvalds goto out; 11191da177e4SLinus Torvalds 11201da177e4SLinus Torvalds timeo = sock_rcvtimeo(sk, nonblock); 11211da177e4SLinus Torvalds 11221da177e4SLinus Torvalds /* Urgent data needs to be handled specially. */ 11231da177e4SLinus Torvalds if (flags & MSG_OOB) 11241da177e4SLinus Torvalds goto recv_urg; 11251da177e4SLinus Torvalds 11261da177e4SLinus Torvalds seq = &tp->copied_seq; 11271da177e4SLinus Torvalds if (flags & MSG_PEEK) { 11281da177e4SLinus Torvalds peek_seq = tp->copied_seq; 11291da177e4SLinus Torvalds seq = &peek_seq; 11301da177e4SLinus Torvalds } 11311da177e4SLinus Torvalds 11321da177e4SLinus Torvalds target = sock_rcvlowat(sk, flags & MSG_WAITALL, len); 11331da177e4SLinus Torvalds 11341a2449a8SChris Leech #ifdef CONFIG_NET_DMA 11351a2449a8SChris Leech tp->ucopy.dma_chan = NULL; 11361a2449a8SChris Leech preempt_disable(); 11371a2449a8SChris Leech if ((len > sysctl_tcp_dma_copybreak) && !(flags & MSG_PEEK) && 113829bbd72dSAlexey Dobriyan !sysctl_tcp_low_latency && __get_cpu_var(softnet_data).net_dma) { 11391a2449a8SChris Leech preempt_enable_no_resched(); 11401a2449a8SChris Leech tp->ucopy.pinned_list = dma_pin_iovec_pages(msg->msg_iov, len); 11411a2449a8SChris Leech } else 11421a2449a8SChris Leech preempt_enable_no_resched(); 11431a2449a8SChris Leech #endif 11441a2449a8SChris Leech 11451da177e4SLinus Torvalds do { 11461da177e4SLinus Torvalds struct sk_buff *skb; 11471da177e4SLinus Torvalds u32 offset; 11481da177e4SLinus Torvalds 11491da177e4SLinus Torvalds /* Are we at urgent data? Stop if we have read anything or have SIGURG pending. */ 11501da177e4SLinus Torvalds if (tp->urg_data && tp->urg_seq == *seq) { 11511da177e4SLinus Torvalds if (copied) 11521da177e4SLinus Torvalds break; 11531da177e4SLinus Torvalds if (signal_pending(current)) { 11541da177e4SLinus Torvalds copied = timeo ? sock_intr_errno(timeo) : -EAGAIN; 11551da177e4SLinus Torvalds break; 11561da177e4SLinus Torvalds } 11571da177e4SLinus Torvalds } 11581da177e4SLinus Torvalds 11591da177e4SLinus Torvalds /* Next get a buffer. */ 11601da177e4SLinus Torvalds 11611da177e4SLinus Torvalds skb = skb_peek(&sk->sk_receive_queue); 11621da177e4SLinus Torvalds do { 11631da177e4SLinus Torvalds if (!skb) 11641da177e4SLinus Torvalds break; 11651da177e4SLinus Torvalds 11661da177e4SLinus Torvalds /* Now that we have two receive queues this 11671da177e4SLinus Torvalds * shouldn't happen. 11681da177e4SLinus Torvalds */ 11691da177e4SLinus Torvalds if (before(*seq, TCP_SKB_CB(skb)->seq)) { 11701da177e4SLinus Torvalds printk(KERN_INFO "recvmsg bug: copied %X " 11711da177e4SLinus Torvalds "seq %X\n", *seq, TCP_SKB_CB(skb)->seq); 11721da177e4SLinus Torvalds break; 11731da177e4SLinus Torvalds } 11741da177e4SLinus Torvalds offset = *seq - TCP_SKB_CB(skb)->seq; 11751da177e4SLinus Torvalds if (skb->h.th->syn) 11761da177e4SLinus Torvalds offset--; 11771da177e4SLinus Torvalds if (offset < skb->len) 11781da177e4SLinus Torvalds goto found_ok_skb; 11791da177e4SLinus Torvalds if (skb->h.th->fin) 11801da177e4SLinus Torvalds goto found_fin_ok; 11811da177e4SLinus Torvalds BUG_TRAP(flags & MSG_PEEK); 11821da177e4SLinus Torvalds skb = skb->next; 11831da177e4SLinus Torvalds } while (skb != (struct sk_buff *)&sk->sk_receive_queue); 11841da177e4SLinus Torvalds 11851da177e4SLinus Torvalds /* Well, if we have backlog, try to process it now yet. */ 11861da177e4SLinus Torvalds 11871da177e4SLinus Torvalds if (copied >= target && !sk->sk_backlog.tail) 11881da177e4SLinus Torvalds break; 11891da177e4SLinus Torvalds 11901da177e4SLinus Torvalds if (copied) { 11911da177e4SLinus Torvalds if (sk->sk_err || 11921da177e4SLinus Torvalds sk->sk_state == TCP_CLOSE || 11931da177e4SLinus Torvalds (sk->sk_shutdown & RCV_SHUTDOWN) || 11941da177e4SLinus Torvalds !timeo || 11951da177e4SLinus Torvalds signal_pending(current) || 11961da177e4SLinus Torvalds (flags & MSG_PEEK)) 11971da177e4SLinus Torvalds break; 11981da177e4SLinus Torvalds } else { 11991da177e4SLinus Torvalds if (sock_flag(sk, SOCK_DONE)) 12001da177e4SLinus Torvalds break; 12011da177e4SLinus Torvalds 12021da177e4SLinus Torvalds if (sk->sk_err) { 12031da177e4SLinus Torvalds copied = sock_error(sk); 12041da177e4SLinus Torvalds break; 12051da177e4SLinus Torvalds } 12061da177e4SLinus Torvalds 12071da177e4SLinus Torvalds if (sk->sk_shutdown & RCV_SHUTDOWN) 12081da177e4SLinus Torvalds break; 12091da177e4SLinus Torvalds 12101da177e4SLinus Torvalds if (sk->sk_state == TCP_CLOSE) { 12111da177e4SLinus Torvalds if (!sock_flag(sk, SOCK_DONE)) { 12121da177e4SLinus Torvalds /* This occurs when user tries to read 12131da177e4SLinus Torvalds * from never connected socket. 12141da177e4SLinus Torvalds */ 12151da177e4SLinus Torvalds copied = -ENOTCONN; 12161da177e4SLinus Torvalds break; 12171da177e4SLinus Torvalds } 12181da177e4SLinus Torvalds break; 12191da177e4SLinus Torvalds } 12201da177e4SLinus Torvalds 12211da177e4SLinus Torvalds if (!timeo) { 12221da177e4SLinus Torvalds copied = -EAGAIN; 12231da177e4SLinus Torvalds break; 12241da177e4SLinus Torvalds } 12251da177e4SLinus Torvalds 12261da177e4SLinus Torvalds if (signal_pending(current)) { 12271da177e4SLinus Torvalds copied = sock_intr_errno(timeo); 12281da177e4SLinus Torvalds break; 12291da177e4SLinus Torvalds } 12301da177e4SLinus Torvalds } 12311da177e4SLinus Torvalds 12320e4b4992SChris Leech tcp_cleanup_rbuf(sk, copied); 12331da177e4SLinus Torvalds 12347df55125SDavid S. Miller if (!sysctl_tcp_low_latency && tp->ucopy.task == user_recv) { 12351da177e4SLinus Torvalds /* Install new reader */ 12361da177e4SLinus Torvalds if (!user_recv && !(flags & (MSG_TRUNC | MSG_PEEK))) { 12371da177e4SLinus Torvalds user_recv = current; 12381da177e4SLinus Torvalds tp->ucopy.task = user_recv; 12391da177e4SLinus Torvalds tp->ucopy.iov = msg->msg_iov; 12401da177e4SLinus Torvalds } 12411da177e4SLinus Torvalds 12421da177e4SLinus Torvalds tp->ucopy.len = len; 12431da177e4SLinus Torvalds 12441da177e4SLinus Torvalds BUG_TRAP(tp->copied_seq == tp->rcv_nxt || 12451da177e4SLinus Torvalds (flags & (MSG_PEEK | MSG_TRUNC))); 12461da177e4SLinus Torvalds 12471da177e4SLinus Torvalds /* Ugly... If prequeue is not empty, we have to 12481da177e4SLinus Torvalds * process it before releasing socket, otherwise 12491da177e4SLinus Torvalds * order will be broken at second iteration. 12501da177e4SLinus Torvalds * More elegant solution is required!!! 12511da177e4SLinus Torvalds * 12521da177e4SLinus Torvalds * Look: we have the following (pseudo)queues: 12531da177e4SLinus Torvalds * 12541da177e4SLinus Torvalds * 1. packets in flight 12551da177e4SLinus Torvalds * 2. backlog 12561da177e4SLinus Torvalds * 3. prequeue 12571da177e4SLinus Torvalds * 4. receive_queue 12581da177e4SLinus Torvalds * 12591da177e4SLinus Torvalds * Each queue can be processed only if the next ones 12601da177e4SLinus Torvalds * are empty. At this point we have empty receive_queue. 12611da177e4SLinus Torvalds * But prequeue _can_ be not empty after 2nd iteration, 12621da177e4SLinus Torvalds * when we jumped to start of loop because backlog 12631da177e4SLinus Torvalds * processing added something to receive_queue. 12641da177e4SLinus Torvalds * We cannot release_sock(), because backlog contains 12651da177e4SLinus Torvalds * packets arrived _after_ prequeued ones. 12661da177e4SLinus Torvalds * 12671da177e4SLinus Torvalds * Shortly, algorithm is clear --- to process all 12681da177e4SLinus Torvalds * the queues in order. We could make it more directly, 12691da177e4SLinus Torvalds * requeueing packets from backlog to prequeue, if 12701da177e4SLinus Torvalds * is not empty. It is more elegant, but eats cycles, 12711da177e4SLinus Torvalds * unfortunately. 12721da177e4SLinus Torvalds */ 1273b03efcfbSDavid S. Miller if (!skb_queue_empty(&tp->ucopy.prequeue)) 12741da177e4SLinus Torvalds goto do_prequeue; 12751da177e4SLinus Torvalds 12761da177e4SLinus Torvalds /* __ Set realtime policy in scheduler __ */ 12771da177e4SLinus Torvalds } 12781da177e4SLinus Torvalds 12791da177e4SLinus Torvalds if (copied >= target) { 12801da177e4SLinus Torvalds /* Do not sleep, just process backlog. */ 12811da177e4SLinus Torvalds release_sock(sk); 12821da177e4SLinus Torvalds lock_sock(sk); 12831da177e4SLinus Torvalds } else 12841da177e4SLinus Torvalds sk_wait_data(sk, &timeo); 12851da177e4SLinus Torvalds 12861a2449a8SChris Leech #ifdef CONFIG_NET_DMA 12871a2449a8SChris Leech tp->ucopy.wakeup = 0; 12881a2449a8SChris Leech #endif 12891a2449a8SChris Leech 12901da177e4SLinus Torvalds if (user_recv) { 12911da177e4SLinus Torvalds int chunk; 12921da177e4SLinus Torvalds 12931da177e4SLinus Torvalds /* __ Restore normal policy in scheduler __ */ 12941da177e4SLinus Torvalds 12951da177e4SLinus Torvalds if ((chunk = len - tp->ucopy.len) != 0) { 12961da177e4SLinus Torvalds NET_ADD_STATS_USER(LINUX_MIB_TCPDIRECTCOPYFROMBACKLOG, chunk); 12971da177e4SLinus Torvalds len -= chunk; 12981da177e4SLinus Torvalds copied += chunk; 12991da177e4SLinus Torvalds } 13001da177e4SLinus Torvalds 13011da177e4SLinus Torvalds if (tp->rcv_nxt == tp->copied_seq && 1302b03efcfbSDavid S. Miller !skb_queue_empty(&tp->ucopy.prequeue)) { 13031da177e4SLinus Torvalds do_prequeue: 13041da177e4SLinus Torvalds tcp_prequeue_process(sk); 13051da177e4SLinus Torvalds 13061da177e4SLinus Torvalds if ((chunk = len - tp->ucopy.len) != 0) { 13071da177e4SLinus Torvalds NET_ADD_STATS_USER(LINUX_MIB_TCPDIRECTCOPYFROMPREQUEUE, chunk); 13081da177e4SLinus Torvalds len -= chunk; 13091da177e4SLinus Torvalds copied += chunk; 13101da177e4SLinus Torvalds } 13111da177e4SLinus Torvalds } 13121da177e4SLinus Torvalds } 13131da177e4SLinus Torvalds if ((flags & MSG_PEEK) && peek_seq != tp->copied_seq) { 13141da177e4SLinus Torvalds if (net_ratelimit()) 13151da177e4SLinus Torvalds printk(KERN_DEBUG "TCP(%s:%d): Application bug, race in MSG_PEEK.\n", 13161da177e4SLinus Torvalds current->comm, current->pid); 13171da177e4SLinus Torvalds peek_seq = tp->copied_seq; 13181da177e4SLinus Torvalds } 13191da177e4SLinus Torvalds continue; 13201da177e4SLinus Torvalds 13211da177e4SLinus Torvalds found_ok_skb: 13221da177e4SLinus Torvalds /* Ok so how much can we use? */ 13231da177e4SLinus Torvalds used = skb->len - offset; 13241da177e4SLinus Torvalds if (len < used) 13251da177e4SLinus Torvalds used = len; 13261da177e4SLinus Torvalds 13271da177e4SLinus Torvalds /* Do we have urgent data here? */ 13281da177e4SLinus Torvalds if (tp->urg_data) { 13291da177e4SLinus Torvalds u32 urg_offset = tp->urg_seq - *seq; 13301da177e4SLinus Torvalds if (urg_offset < used) { 13311da177e4SLinus Torvalds if (!urg_offset) { 13321da177e4SLinus Torvalds if (!sock_flag(sk, SOCK_URGINLINE)) { 13331da177e4SLinus Torvalds ++*seq; 13341da177e4SLinus Torvalds offset++; 13351da177e4SLinus Torvalds used--; 13361da177e4SLinus Torvalds if (!used) 13371da177e4SLinus Torvalds goto skip_copy; 13381da177e4SLinus Torvalds } 13391da177e4SLinus Torvalds } else 13401da177e4SLinus Torvalds used = urg_offset; 13411da177e4SLinus Torvalds } 13421da177e4SLinus Torvalds } 13431da177e4SLinus Torvalds 13441da177e4SLinus Torvalds if (!(flags & MSG_TRUNC)) { 13451a2449a8SChris Leech #ifdef CONFIG_NET_DMA 13461a2449a8SChris Leech if (!tp->ucopy.dma_chan && tp->ucopy.pinned_list) 13471a2449a8SChris Leech tp->ucopy.dma_chan = get_softnet_dma(); 13481a2449a8SChris Leech 13491a2449a8SChris Leech if (tp->ucopy.dma_chan) { 13501a2449a8SChris Leech tp->ucopy.dma_cookie = dma_skb_copy_datagram_iovec( 13511a2449a8SChris Leech tp->ucopy.dma_chan, skb, offset, 13521a2449a8SChris Leech msg->msg_iov, used, 13531a2449a8SChris Leech tp->ucopy.pinned_list); 13541a2449a8SChris Leech 13551a2449a8SChris Leech if (tp->ucopy.dma_cookie < 0) { 13561a2449a8SChris Leech 13571a2449a8SChris Leech printk(KERN_ALERT "dma_cookie < 0\n"); 13581a2449a8SChris Leech 13591a2449a8SChris Leech /* Exception. Bailout! */ 13601a2449a8SChris Leech if (!copied) 13611a2449a8SChris Leech copied = -EFAULT; 13621a2449a8SChris Leech break; 13631a2449a8SChris Leech } 13641a2449a8SChris Leech if ((offset + used) == skb->len) 13651a2449a8SChris Leech copied_early = 1; 13661a2449a8SChris Leech 13671a2449a8SChris Leech } else 13681a2449a8SChris Leech #endif 13691a2449a8SChris Leech { 13701da177e4SLinus Torvalds err = skb_copy_datagram_iovec(skb, offset, 13711da177e4SLinus Torvalds msg->msg_iov, used); 13721da177e4SLinus Torvalds if (err) { 13731da177e4SLinus Torvalds /* Exception. Bailout! */ 13741da177e4SLinus Torvalds if (!copied) 13751da177e4SLinus Torvalds copied = -EFAULT; 13761da177e4SLinus Torvalds break; 13771da177e4SLinus Torvalds } 13781da177e4SLinus Torvalds } 13791a2449a8SChris Leech } 13801da177e4SLinus Torvalds 13811da177e4SLinus Torvalds *seq += used; 13821da177e4SLinus Torvalds copied += used; 13831da177e4SLinus Torvalds len -= used; 13841da177e4SLinus Torvalds 13851da177e4SLinus Torvalds tcp_rcv_space_adjust(sk); 13861da177e4SLinus Torvalds 13871da177e4SLinus Torvalds skip_copy: 13881da177e4SLinus Torvalds if (tp->urg_data && after(tp->copied_seq, tp->urg_seq)) { 13891da177e4SLinus Torvalds tp->urg_data = 0; 13901da177e4SLinus Torvalds tcp_fast_path_check(sk, tp); 13911da177e4SLinus Torvalds } 13921da177e4SLinus Torvalds if (used + offset < skb->len) 13931da177e4SLinus Torvalds continue; 13941da177e4SLinus Torvalds 13951da177e4SLinus Torvalds if (skb->h.th->fin) 13961da177e4SLinus Torvalds goto found_fin_ok; 13971a2449a8SChris Leech if (!(flags & MSG_PEEK)) { 13981a2449a8SChris Leech sk_eat_skb(sk, skb, copied_early); 13991a2449a8SChris Leech copied_early = 0; 14001a2449a8SChris Leech } 14011da177e4SLinus Torvalds continue; 14021da177e4SLinus Torvalds 14031da177e4SLinus Torvalds found_fin_ok: 14041da177e4SLinus Torvalds /* Process the FIN. */ 14051da177e4SLinus Torvalds ++*seq; 14061a2449a8SChris Leech if (!(flags & MSG_PEEK)) { 14071a2449a8SChris Leech sk_eat_skb(sk, skb, copied_early); 14081a2449a8SChris Leech copied_early = 0; 14091a2449a8SChris Leech } 14101da177e4SLinus Torvalds break; 14111da177e4SLinus Torvalds } while (len > 0); 14121da177e4SLinus Torvalds 14131da177e4SLinus Torvalds if (user_recv) { 1414b03efcfbSDavid S. Miller if (!skb_queue_empty(&tp->ucopy.prequeue)) { 14151da177e4SLinus Torvalds int chunk; 14161da177e4SLinus Torvalds 14171da177e4SLinus Torvalds tp->ucopy.len = copied > 0 ? len : 0; 14181da177e4SLinus Torvalds 14191da177e4SLinus Torvalds tcp_prequeue_process(sk); 14201da177e4SLinus Torvalds 14211da177e4SLinus Torvalds if (copied > 0 && (chunk = len - tp->ucopy.len) != 0) { 14221da177e4SLinus Torvalds NET_ADD_STATS_USER(LINUX_MIB_TCPDIRECTCOPYFROMPREQUEUE, chunk); 14231da177e4SLinus Torvalds len -= chunk; 14241da177e4SLinus Torvalds copied += chunk; 14251da177e4SLinus Torvalds } 14261da177e4SLinus Torvalds } 14271da177e4SLinus Torvalds 14281da177e4SLinus Torvalds tp->ucopy.task = NULL; 14291da177e4SLinus Torvalds tp->ucopy.len = 0; 14301da177e4SLinus Torvalds } 14311da177e4SLinus Torvalds 14321a2449a8SChris Leech #ifdef CONFIG_NET_DMA 14331a2449a8SChris Leech if (tp->ucopy.dma_chan) { 14341a2449a8SChris Leech struct sk_buff *skb; 14351a2449a8SChris Leech dma_cookie_t done, used; 14361a2449a8SChris Leech 14371a2449a8SChris Leech dma_async_memcpy_issue_pending(tp->ucopy.dma_chan); 14381a2449a8SChris Leech 14391a2449a8SChris Leech while (dma_async_memcpy_complete(tp->ucopy.dma_chan, 14401a2449a8SChris Leech tp->ucopy.dma_cookie, &done, 14411a2449a8SChris Leech &used) == DMA_IN_PROGRESS) { 14421a2449a8SChris Leech /* do partial cleanup of sk_async_wait_queue */ 14431a2449a8SChris Leech while ((skb = skb_peek(&sk->sk_async_wait_queue)) && 14441a2449a8SChris Leech (dma_async_is_complete(skb->dma_cookie, done, 14451a2449a8SChris Leech used) == DMA_SUCCESS)) { 14461a2449a8SChris Leech __skb_dequeue(&sk->sk_async_wait_queue); 14471a2449a8SChris Leech kfree_skb(skb); 14481a2449a8SChris Leech } 14491a2449a8SChris Leech } 14501a2449a8SChris Leech 14511a2449a8SChris Leech /* Safe to free early-copied skbs now */ 14521a2449a8SChris Leech __skb_queue_purge(&sk->sk_async_wait_queue); 14531a2449a8SChris Leech dma_chan_put(tp->ucopy.dma_chan); 14541a2449a8SChris Leech tp->ucopy.dma_chan = NULL; 14551a2449a8SChris Leech } 14561a2449a8SChris Leech if (tp->ucopy.pinned_list) { 14571a2449a8SChris Leech dma_unpin_iovec_pages(tp->ucopy.pinned_list); 14581a2449a8SChris Leech tp->ucopy.pinned_list = NULL; 14591a2449a8SChris Leech } 14601a2449a8SChris Leech #endif 14611a2449a8SChris Leech 14621da177e4SLinus Torvalds /* According to UNIX98, msg_name/msg_namelen are ignored 14631da177e4SLinus Torvalds * on connected socket. I was just happy when found this 8) --ANK 14641da177e4SLinus Torvalds */ 14651da177e4SLinus Torvalds 14661da177e4SLinus Torvalds /* Clean up data we have read: This will do ACK frames. */ 14670e4b4992SChris Leech tcp_cleanup_rbuf(sk, copied); 14681da177e4SLinus Torvalds 14691da177e4SLinus Torvalds TCP_CHECK_TIMER(sk); 14701da177e4SLinus Torvalds release_sock(sk); 14711da177e4SLinus Torvalds return copied; 14721da177e4SLinus Torvalds 14731da177e4SLinus Torvalds out: 14741da177e4SLinus Torvalds TCP_CHECK_TIMER(sk); 14751da177e4SLinus Torvalds release_sock(sk); 14761da177e4SLinus Torvalds return err; 14771da177e4SLinus Torvalds 14781da177e4SLinus Torvalds recv_urg: 14791da177e4SLinus Torvalds err = tcp_recv_urg(sk, timeo, msg, len, flags, addr_len); 14801da177e4SLinus Torvalds goto out; 14811da177e4SLinus Torvalds } 14821da177e4SLinus Torvalds 14831da177e4SLinus Torvalds /* 14841da177e4SLinus Torvalds * State processing on a close. This implements the state shift for 14851da177e4SLinus Torvalds * sending our FIN frame. Note that we only send a FIN for some 14861da177e4SLinus Torvalds * states. A shutdown() may have already sent the FIN, or we may be 14871da177e4SLinus Torvalds * closed. 14881da177e4SLinus Torvalds */ 14891da177e4SLinus Torvalds 14909b5b5cffSArjan van de Ven static const unsigned char new_state[16] = { 14911da177e4SLinus Torvalds /* current state: new state: action: */ 14921da177e4SLinus Torvalds /* (Invalid) */ TCP_CLOSE, 14931da177e4SLinus Torvalds /* TCP_ESTABLISHED */ TCP_FIN_WAIT1 | TCP_ACTION_FIN, 14941da177e4SLinus Torvalds /* TCP_SYN_SENT */ TCP_CLOSE, 14951da177e4SLinus Torvalds /* TCP_SYN_RECV */ TCP_FIN_WAIT1 | TCP_ACTION_FIN, 14961da177e4SLinus Torvalds /* TCP_FIN_WAIT1 */ TCP_FIN_WAIT1, 14971da177e4SLinus Torvalds /* TCP_FIN_WAIT2 */ TCP_FIN_WAIT2, 14981da177e4SLinus Torvalds /* TCP_TIME_WAIT */ TCP_CLOSE, 14991da177e4SLinus Torvalds /* TCP_CLOSE */ TCP_CLOSE, 15001da177e4SLinus Torvalds /* TCP_CLOSE_WAIT */ TCP_LAST_ACK | TCP_ACTION_FIN, 15011da177e4SLinus Torvalds /* TCP_LAST_ACK */ TCP_LAST_ACK, 15021da177e4SLinus Torvalds /* TCP_LISTEN */ TCP_CLOSE, 15031da177e4SLinus Torvalds /* TCP_CLOSING */ TCP_CLOSING, 15041da177e4SLinus Torvalds }; 15051da177e4SLinus Torvalds 15061da177e4SLinus Torvalds static int tcp_close_state(struct sock *sk) 15071da177e4SLinus Torvalds { 15081da177e4SLinus Torvalds int next = (int)new_state[sk->sk_state]; 15091da177e4SLinus Torvalds int ns = next & TCP_STATE_MASK; 15101da177e4SLinus Torvalds 15111da177e4SLinus Torvalds tcp_set_state(sk, ns); 15121da177e4SLinus Torvalds 15131da177e4SLinus Torvalds return next & TCP_ACTION_FIN; 15141da177e4SLinus Torvalds } 15151da177e4SLinus Torvalds 15161da177e4SLinus Torvalds /* 15171da177e4SLinus Torvalds * Shutdown the sending side of a connection. Much like close except 15181da177e4SLinus Torvalds * that we don't receive shut down or set_sock_flag(sk, SOCK_DEAD). 15191da177e4SLinus Torvalds */ 15201da177e4SLinus Torvalds 15211da177e4SLinus Torvalds void tcp_shutdown(struct sock *sk, int how) 15221da177e4SLinus Torvalds { 15231da177e4SLinus Torvalds /* We need to grab some memory, and put together a FIN, 15241da177e4SLinus Torvalds * and then put it into the queue to be sent. 15251da177e4SLinus Torvalds * Tim MacKenzie(tym@dibbler.cs.monash.edu.au) 4 Dec '92. 15261da177e4SLinus Torvalds */ 15271da177e4SLinus Torvalds if (!(how & SEND_SHUTDOWN)) 15281da177e4SLinus Torvalds return; 15291da177e4SLinus Torvalds 15301da177e4SLinus Torvalds /* If we've already sent a FIN, or it's a closed state, skip this. */ 15311da177e4SLinus Torvalds if ((1 << sk->sk_state) & 15321da177e4SLinus Torvalds (TCPF_ESTABLISHED | TCPF_SYN_SENT | 15331da177e4SLinus Torvalds TCPF_SYN_RECV | TCPF_CLOSE_WAIT)) { 15341da177e4SLinus Torvalds /* Clear out any half completed packets. FIN if needed. */ 15351da177e4SLinus Torvalds if (tcp_close_state(sk)) 15361da177e4SLinus Torvalds tcp_send_fin(sk); 15371da177e4SLinus Torvalds } 15381da177e4SLinus Torvalds } 15391da177e4SLinus Torvalds 15401da177e4SLinus Torvalds void tcp_close(struct sock *sk, long timeout) 15411da177e4SLinus Torvalds { 15421da177e4SLinus Torvalds struct sk_buff *skb; 15431da177e4SLinus Torvalds int data_was_unread = 0; 154475c2d907SHerbert Xu int state; 15451da177e4SLinus Torvalds 15461da177e4SLinus Torvalds lock_sock(sk); 15471da177e4SLinus Torvalds sk->sk_shutdown = SHUTDOWN_MASK; 15481da177e4SLinus Torvalds 15491da177e4SLinus Torvalds if (sk->sk_state == TCP_LISTEN) { 15501da177e4SLinus Torvalds tcp_set_state(sk, TCP_CLOSE); 15511da177e4SLinus Torvalds 15521da177e4SLinus Torvalds /* Special case. */ 15530a5578cfSArnaldo Carvalho de Melo inet_csk_listen_stop(sk); 15541da177e4SLinus Torvalds 15551da177e4SLinus Torvalds goto adjudge_to_death; 15561da177e4SLinus Torvalds } 15571da177e4SLinus Torvalds 15581da177e4SLinus Torvalds /* We need to flush the recv. buffs. We do this only on the 15591da177e4SLinus Torvalds * descriptor close, not protocol-sourced closes, because the 15601da177e4SLinus Torvalds * reader process may not have drained the data yet! 15611da177e4SLinus Torvalds */ 15621da177e4SLinus Torvalds while ((skb = __skb_dequeue(&sk->sk_receive_queue)) != NULL) { 15631da177e4SLinus Torvalds u32 len = TCP_SKB_CB(skb)->end_seq - TCP_SKB_CB(skb)->seq - 15641da177e4SLinus Torvalds skb->h.th->fin; 15651da177e4SLinus Torvalds data_was_unread += len; 15661da177e4SLinus Torvalds __kfree_skb(skb); 15671da177e4SLinus Torvalds } 15681da177e4SLinus Torvalds 15691da177e4SLinus Torvalds sk_stream_mem_reclaim(sk); 15701da177e4SLinus Torvalds 15711da177e4SLinus Torvalds /* As outlined in draft-ietf-tcpimpl-prob-03.txt, section 15721da177e4SLinus Torvalds * 3.10, we send a RST here because data was lost. To 15731da177e4SLinus Torvalds * witness the awful effects of the old behavior of always 15741da177e4SLinus Torvalds * doing a FIN, run an older 2.1.x kernel or 2.0.x, start 15751da177e4SLinus Torvalds * a bulk GET in an FTP client, suspend the process, wait 15761da177e4SLinus Torvalds * for the client to advertise a zero window, then kill -9 15771da177e4SLinus Torvalds * the FTP client, wheee... Note: timeout is always zero 15781da177e4SLinus Torvalds * in such a case. 15791da177e4SLinus Torvalds */ 15801da177e4SLinus Torvalds if (data_was_unread) { 15811da177e4SLinus Torvalds /* Unread data was tossed, zap the connection. */ 15821da177e4SLinus Torvalds NET_INC_STATS_USER(LINUX_MIB_TCPABORTONCLOSE); 15831da177e4SLinus Torvalds tcp_set_state(sk, TCP_CLOSE); 15841da177e4SLinus Torvalds tcp_send_active_reset(sk, GFP_KERNEL); 15851da177e4SLinus Torvalds } else if (sock_flag(sk, SOCK_LINGER) && !sk->sk_lingertime) { 15861da177e4SLinus Torvalds /* Check zero linger _after_ checking for unread data. */ 15871da177e4SLinus Torvalds sk->sk_prot->disconnect(sk, 0); 15881da177e4SLinus Torvalds NET_INC_STATS_USER(LINUX_MIB_TCPABORTONDATA); 15891da177e4SLinus Torvalds } else if (tcp_close_state(sk)) { 15901da177e4SLinus Torvalds /* We FIN if the application ate all the data before 15911da177e4SLinus Torvalds * zapping the connection. 15921da177e4SLinus Torvalds */ 15931da177e4SLinus Torvalds 15941da177e4SLinus Torvalds /* RED-PEN. Formally speaking, we have broken TCP state 15951da177e4SLinus Torvalds * machine. State transitions: 15961da177e4SLinus Torvalds * 15971da177e4SLinus Torvalds * TCP_ESTABLISHED -> TCP_FIN_WAIT1 15981da177e4SLinus Torvalds * TCP_SYN_RECV -> TCP_FIN_WAIT1 (forget it, it's impossible) 15991da177e4SLinus Torvalds * TCP_CLOSE_WAIT -> TCP_LAST_ACK 16001da177e4SLinus Torvalds * 16011da177e4SLinus Torvalds * are legal only when FIN has been sent (i.e. in window), 16021da177e4SLinus Torvalds * rather than queued out of window. Purists blame. 16031da177e4SLinus Torvalds * 16041da177e4SLinus Torvalds * F.e. "RFC state" is ESTABLISHED, 16051da177e4SLinus Torvalds * if Linux state is FIN-WAIT-1, but FIN is still not sent. 16061da177e4SLinus Torvalds * 16071da177e4SLinus Torvalds * The visible declinations are that sometimes 16081da177e4SLinus Torvalds * we enter time-wait state, when it is not required really 16091da177e4SLinus Torvalds * (harmless), do not send active resets, when they are 16101da177e4SLinus Torvalds * required by specs (TCP_ESTABLISHED, TCP_CLOSE_WAIT, when 16111da177e4SLinus Torvalds * they look as CLOSING or LAST_ACK for Linux) 16121da177e4SLinus Torvalds * Probably, I missed some more holelets. 16131da177e4SLinus Torvalds * --ANK 16141da177e4SLinus Torvalds */ 16151da177e4SLinus Torvalds tcp_send_fin(sk); 16161da177e4SLinus Torvalds } 16171da177e4SLinus Torvalds 16181da177e4SLinus Torvalds sk_stream_wait_close(sk, timeout); 16191da177e4SLinus Torvalds 16201da177e4SLinus Torvalds adjudge_to_death: 162175c2d907SHerbert Xu state = sk->sk_state; 162275c2d907SHerbert Xu sock_hold(sk); 162375c2d907SHerbert Xu sock_orphan(sk); 162475c2d907SHerbert Xu atomic_inc(sk->sk_prot->orphan_count); 162575c2d907SHerbert Xu 16261da177e4SLinus Torvalds /* It is the last release_sock in its life. It will remove backlog. */ 16271da177e4SLinus Torvalds release_sock(sk); 16281da177e4SLinus Torvalds 16291da177e4SLinus Torvalds 16301da177e4SLinus Torvalds /* Now socket is owned by kernel and we acquire BH lock 16311da177e4SLinus Torvalds to finish close. No need to check for user refs. 16321da177e4SLinus Torvalds */ 16331da177e4SLinus Torvalds local_bh_disable(); 16341da177e4SLinus Torvalds bh_lock_sock(sk); 16351da177e4SLinus Torvalds BUG_TRAP(!sock_owned_by_user(sk)); 16361da177e4SLinus Torvalds 163775c2d907SHerbert Xu /* Have we already been destroyed by a softirq or backlog? */ 163875c2d907SHerbert Xu if (state != TCP_CLOSE && sk->sk_state == TCP_CLOSE) 163975c2d907SHerbert Xu goto out; 16401da177e4SLinus Torvalds 16411da177e4SLinus Torvalds /* This is a (useful) BSD violating of the RFC. There is a 16421da177e4SLinus Torvalds * problem with TCP as specified in that the other end could 16431da177e4SLinus Torvalds * keep a socket open forever with no application left this end. 16441da177e4SLinus Torvalds * We use a 3 minute timeout (about the same as BSD) then kill 16451da177e4SLinus Torvalds * our end. If they send after that then tough - BUT: long enough 16461da177e4SLinus Torvalds * that we won't make the old 4*rto = almost no time - whoops 16471da177e4SLinus Torvalds * reset mistake. 16481da177e4SLinus Torvalds * 16491da177e4SLinus Torvalds * Nope, it was not mistake. It is really desired behaviour 16501da177e4SLinus Torvalds * f.e. on http servers, when such sockets are useless, but 16511da177e4SLinus Torvalds * consume significant resources. Let's do it with special 16521da177e4SLinus Torvalds * linger2 option. --ANK 16531da177e4SLinus Torvalds */ 16541da177e4SLinus Torvalds 16551da177e4SLinus Torvalds if (sk->sk_state == TCP_FIN_WAIT2) { 16561da177e4SLinus Torvalds struct tcp_sock *tp = tcp_sk(sk); 16571da177e4SLinus Torvalds if (tp->linger2 < 0) { 16581da177e4SLinus Torvalds tcp_set_state(sk, TCP_CLOSE); 16591da177e4SLinus Torvalds tcp_send_active_reset(sk, GFP_ATOMIC); 16601da177e4SLinus Torvalds NET_INC_STATS_BH(LINUX_MIB_TCPABORTONLINGER); 16611da177e4SLinus Torvalds } else { 1662463c84b9SArnaldo Carvalho de Melo const int tmo = tcp_fin_time(sk); 16631da177e4SLinus Torvalds 16641da177e4SLinus Torvalds if (tmo > TCP_TIMEWAIT_LEN) { 166552499afeSDavid S. Miller inet_csk_reset_keepalive_timer(sk, 166652499afeSDavid S. Miller tmo - TCP_TIMEWAIT_LEN); 16671da177e4SLinus Torvalds } else { 16681da177e4SLinus Torvalds tcp_time_wait(sk, TCP_FIN_WAIT2, tmo); 16691da177e4SLinus Torvalds goto out; 16701da177e4SLinus Torvalds } 16711da177e4SLinus Torvalds } 16721da177e4SLinus Torvalds } 16731da177e4SLinus Torvalds if (sk->sk_state != TCP_CLOSE) { 16741da177e4SLinus Torvalds sk_stream_mem_reclaim(sk); 16750a5578cfSArnaldo Carvalho de Melo if (atomic_read(sk->sk_prot->orphan_count) > sysctl_tcp_max_orphans || 16761da177e4SLinus Torvalds (sk->sk_wmem_queued > SOCK_MIN_SNDBUF && 16771da177e4SLinus Torvalds atomic_read(&tcp_memory_allocated) > sysctl_tcp_mem[2])) { 16781da177e4SLinus Torvalds if (net_ratelimit()) 16791da177e4SLinus Torvalds printk(KERN_INFO "TCP: too many of orphaned " 16801da177e4SLinus Torvalds "sockets\n"); 16811da177e4SLinus Torvalds tcp_set_state(sk, TCP_CLOSE); 16821da177e4SLinus Torvalds tcp_send_active_reset(sk, GFP_ATOMIC); 16831da177e4SLinus Torvalds NET_INC_STATS_BH(LINUX_MIB_TCPABORTONMEMORY); 16841da177e4SLinus Torvalds } 16851da177e4SLinus Torvalds } 16861da177e4SLinus Torvalds 16871da177e4SLinus Torvalds if (sk->sk_state == TCP_CLOSE) 16880a5578cfSArnaldo Carvalho de Melo inet_csk_destroy_sock(sk); 16891da177e4SLinus Torvalds /* Otherwise, socket is reprieved until protocol close. */ 16901da177e4SLinus Torvalds 16911da177e4SLinus Torvalds out: 16921da177e4SLinus Torvalds bh_unlock_sock(sk); 16931da177e4SLinus Torvalds local_bh_enable(); 16941da177e4SLinus Torvalds sock_put(sk); 16951da177e4SLinus Torvalds } 16961da177e4SLinus Torvalds 16971da177e4SLinus Torvalds /* These states need RST on ABORT according to RFC793 */ 16981da177e4SLinus Torvalds 16991da177e4SLinus Torvalds static inline int tcp_need_reset(int state) 17001da177e4SLinus Torvalds { 17011da177e4SLinus Torvalds return (1 << state) & 17021da177e4SLinus Torvalds (TCPF_ESTABLISHED | TCPF_CLOSE_WAIT | TCPF_FIN_WAIT1 | 17031da177e4SLinus Torvalds TCPF_FIN_WAIT2 | TCPF_SYN_RECV); 17041da177e4SLinus Torvalds } 17051da177e4SLinus Torvalds 17061da177e4SLinus Torvalds int tcp_disconnect(struct sock *sk, int flags) 17071da177e4SLinus Torvalds { 17081da177e4SLinus Torvalds struct inet_sock *inet = inet_sk(sk); 1709463c84b9SArnaldo Carvalho de Melo struct inet_connection_sock *icsk = inet_csk(sk); 17101da177e4SLinus Torvalds struct tcp_sock *tp = tcp_sk(sk); 17111da177e4SLinus Torvalds int err = 0; 17121da177e4SLinus Torvalds int old_state = sk->sk_state; 17131da177e4SLinus Torvalds 17141da177e4SLinus Torvalds if (old_state != TCP_CLOSE) 17151da177e4SLinus Torvalds tcp_set_state(sk, TCP_CLOSE); 17161da177e4SLinus Torvalds 17171da177e4SLinus Torvalds /* ABORT function of RFC793 */ 17181da177e4SLinus Torvalds if (old_state == TCP_LISTEN) { 17190a5578cfSArnaldo Carvalho de Melo inet_csk_listen_stop(sk); 17201da177e4SLinus Torvalds } else if (tcp_need_reset(old_state) || 17211da177e4SLinus Torvalds (tp->snd_nxt != tp->write_seq && 17221da177e4SLinus Torvalds (1 << old_state) & (TCPF_CLOSING | TCPF_LAST_ACK))) { 1723caa20d9aSStephen Hemminger /* The last check adjusts for discrepancy of Linux wrt. RFC 17241da177e4SLinus Torvalds * states 17251da177e4SLinus Torvalds */ 17261da177e4SLinus Torvalds tcp_send_active_reset(sk, gfp_any()); 17271da177e4SLinus Torvalds sk->sk_err = ECONNRESET; 17281da177e4SLinus Torvalds } else if (old_state == TCP_SYN_SENT) 17291da177e4SLinus Torvalds sk->sk_err = ECONNRESET; 17301da177e4SLinus Torvalds 17311da177e4SLinus Torvalds tcp_clear_xmit_timers(sk); 17321da177e4SLinus Torvalds __skb_queue_purge(&sk->sk_receive_queue); 17331da177e4SLinus Torvalds sk_stream_writequeue_purge(sk); 17341da177e4SLinus Torvalds __skb_queue_purge(&tp->out_of_order_queue); 17351a2449a8SChris Leech #ifdef CONFIG_NET_DMA 17361a2449a8SChris Leech __skb_queue_purge(&sk->sk_async_wait_queue); 17371a2449a8SChris Leech #endif 17381da177e4SLinus Torvalds 17391da177e4SLinus Torvalds inet->dport = 0; 17401da177e4SLinus Torvalds 17411da177e4SLinus Torvalds if (!(sk->sk_userlocks & SOCK_BINDADDR_LOCK)) 17421da177e4SLinus Torvalds inet_reset_saddr(sk); 17431da177e4SLinus Torvalds 17441da177e4SLinus Torvalds sk->sk_shutdown = 0; 17451da177e4SLinus Torvalds sock_reset_flag(sk, SOCK_DONE); 17461da177e4SLinus Torvalds tp->srtt = 0; 17471da177e4SLinus Torvalds if ((tp->write_seq += tp->max_window + 2) == 0) 17481da177e4SLinus Torvalds tp->write_seq = 1; 1749463c84b9SArnaldo Carvalho de Melo icsk->icsk_backoff = 0; 17501da177e4SLinus Torvalds tp->snd_cwnd = 2; 17516687e988SArnaldo Carvalho de Melo icsk->icsk_probes_out = 0; 17521da177e4SLinus Torvalds tp->packets_out = 0; 17531da177e4SLinus Torvalds tp->snd_ssthresh = 0x7fffffff; 17541da177e4SLinus Torvalds tp->snd_cwnd_cnt = 0; 17559772efb9SStephen Hemminger tp->bytes_acked = 0; 17566687e988SArnaldo Carvalho de Melo tcp_set_ca_state(sk, TCP_CA_Open); 17571da177e4SLinus Torvalds tcp_clear_retrans(tp); 1758463c84b9SArnaldo Carvalho de Melo inet_csk_delack_init(sk); 17591da177e4SLinus Torvalds sk->sk_send_head = NULL; 17601da177e4SLinus Torvalds tp->rx_opt.saw_tstamp = 0; 17611da177e4SLinus Torvalds tcp_sack_reset(&tp->rx_opt); 17621da177e4SLinus Torvalds __sk_dst_reset(sk); 17631da177e4SLinus Torvalds 1764463c84b9SArnaldo Carvalho de Melo BUG_TRAP(!inet->num || icsk->icsk_bind_hash); 17651da177e4SLinus Torvalds 17661da177e4SLinus Torvalds sk->sk_error_report(sk); 17671da177e4SLinus Torvalds return err; 17681da177e4SLinus Torvalds } 17691da177e4SLinus Torvalds 17701da177e4SLinus Torvalds /* 17711da177e4SLinus Torvalds * Socket option code for TCP. 17721da177e4SLinus Torvalds */ 17733fdadf7dSDmitry Mishin static int do_tcp_setsockopt(struct sock *sk, int level, 17743fdadf7dSDmitry Mishin int optname, char __user *optval, int optlen) 17751da177e4SLinus Torvalds { 17761da177e4SLinus Torvalds struct tcp_sock *tp = tcp_sk(sk); 1777463c84b9SArnaldo Carvalho de Melo struct inet_connection_sock *icsk = inet_csk(sk); 17781da177e4SLinus Torvalds int val; 17791da177e4SLinus Torvalds int err = 0; 17801da177e4SLinus Torvalds 17815f8ef48dSStephen Hemminger /* This is a string value all the others are int's */ 17825f8ef48dSStephen Hemminger if (optname == TCP_CONGESTION) { 17835f8ef48dSStephen Hemminger char name[TCP_CA_NAME_MAX]; 17845f8ef48dSStephen Hemminger 17855f8ef48dSStephen Hemminger if (optlen < 1) 17865f8ef48dSStephen Hemminger return -EINVAL; 17875f8ef48dSStephen Hemminger 17885f8ef48dSStephen Hemminger val = strncpy_from_user(name, optval, 17895f8ef48dSStephen Hemminger min(TCP_CA_NAME_MAX-1, optlen)); 17905f8ef48dSStephen Hemminger if (val < 0) 17915f8ef48dSStephen Hemminger return -EFAULT; 17925f8ef48dSStephen Hemminger name[val] = 0; 17935f8ef48dSStephen Hemminger 17945f8ef48dSStephen Hemminger lock_sock(sk); 17956687e988SArnaldo Carvalho de Melo err = tcp_set_congestion_control(sk, name); 17965f8ef48dSStephen Hemminger release_sock(sk); 17975f8ef48dSStephen Hemminger return err; 17985f8ef48dSStephen Hemminger } 17995f8ef48dSStephen Hemminger 18001da177e4SLinus Torvalds if (optlen < sizeof(int)) 18011da177e4SLinus Torvalds return -EINVAL; 18021da177e4SLinus Torvalds 18031da177e4SLinus Torvalds if (get_user(val, (int __user *)optval)) 18041da177e4SLinus Torvalds return -EFAULT; 18051da177e4SLinus Torvalds 18061da177e4SLinus Torvalds lock_sock(sk); 18071da177e4SLinus Torvalds 18081da177e4SLinus Torvalds switch (optname) { 18091da177e4SLinus Torvalds case TCP_MAXSEG: 18101da177e4SLinus Torvalds /* Values greater than interface MTU won't take effect. However 18111da177e4SLinus Torvalds * at the point when this call is done we typically don't yet 18121da177e4SLinus Torvalds * know which interface is going to be used */ 18131da177e4SLinus Torvalds if (val < 8 || val > MAX_TCP_WINDOW) { 18141da177e4SLinus Torvalds err = -EINVAL; 18151da177e4SLinus Torvalds break; 18161da177e4SLinus Torvalds } 18171da177e4SLinus Torvalds tp->rx_opt.user_mss = val; 18181da177e4SLinus Torvalds break; 18191da177e4SLinus Torvalds 18201da177e4SLinus Torvalds case TCP_NODELAY: 18211da177e4SLinus Torvalds if (val) { 18221da177e4SLinus Torvalds /* TCP_NODELAY is weaker than TCP_CORK, so that 18231da177e4SLinus Torvalds * this option on corked socket is remembered, but 18241da177e4SLinus Torvalds * it is not activated until cork is cleared. 18251da177e4SLinus Torvalds * 18261da177e4SLinus Torvalds * However, when TCP_NODELAY is set we make 18271da177e4SLinus Torvalds * an explicit push, which overrides even TCP_CORK 18281da177e4SLinus Torvalds * for currently queued segments. 18291da177e4SLinus Torvalds */ 18301da177e4SLinus Torvalds tp->nonagle |= TCP_NAGLE_OFF|TCP_NAGLE_PUSH; 18311da177e4SLinus Torvalds tcp_push_pending_frames(sk, tp); 18321da177e4SLinus Torvalds } else { 18331da177e4SLinus Torvalds tp->nonagle &= ~TCP_NAGLE_OFF; 18341da177e4SLinus Torvalds } 18351da177e4SLinus Torvalds break; 18361da177e4SLinus Torvalds 18371da177e4SLinus Torvalds case TCP_CORK: 18381da177e4SLinus Torvalds /* When set indicates to always queue non-full frames. 18391da177e4SLinus Torvalds * Later the user clears this option and we transmit 18401da177e4SLinus Torvalds * any pending partial frames in the queue. This is 18411da177e4SLinus Torvalds * meant to be used alongside sendfile() to get properly 18421da177e4SLinus Torvalds * filled frames when the user (for example) must write 18431da177e4SLinus Torvalds * out headers with a write() call first and then use 18441da177e4SLinus Torvalds * sendfile to send out the data parts. 18451da177e4SLinus Torvalds * 18461da177e4SLinus Torvalds * TCP_CORK can be set together with TCP_NODELAY and it is 18471da177e4SLinus Torvalds * stronger than TCP_NODELAY. 18481da177e4SLinus Torvalds */ 18491da177e4SLinus Torvalds if (val) { 18501da177e4SLinus Torvalds tp->nonagle |= TCP_NAGLE_CORK; 18511da177e4SLinus Torvalds } else { 18521da177e4SLinus Torvalds tp->nonagle &= ~TCP_NAGLE_CORK; 18531da177e4SLinus Torvalds if (tp->nonagle&TCP_NAGLE_OFF) 18541da177e4SLinus Torvalds tp->nonagle |= TCP_NAGLE_PUSH; 18551da177e4SLinus Torvalds tcp_push_pending_frames(sk, tp); 18561da177e4SLinus Torvalds } 18571da177e4SLinus Torvalds break; 18581da177e4SLinus Torvalds 18591da177e4SLinus Torvalds case TCP_KEEPIDLE: 18601da177e4SLinus Torvalds if (val < 1 || val > MAX_TCP_KEEPIDLE) 18611da177e4SLinus Torvalds err = -EINVAL; 18621da177e4SLinus Torvalds else { 18631da177e4SLinus Torvalds tp->keepalive_time = val * HZ; 18641da177e4SLinus Torvalds if (sock_flag(sk, SOCK_KEEPOPEN) && 18651da177e4SLinus Torvalds !((1 << sk->sk_state) & 18661da177e4SLinus Torvalds (TCPF_CLOSE | TCPF_LISTEN))) { 18671da177e4SLinus Torvalds __u32 elapsed = tcp_time_stamp - tp->rcv_tstamp; 18681da177e4SLinus Torvalds if (tp->keepalive_time > elapsed) 18691da177e4SLinus Torvalds elapsed = tp->keepalive_time - elapsed; 18701da177e4SLinus Torvalds else 18711da177e4SLinus Torvalds elapsed = 0; 1872463c84b9SArnaldo Carvalho de Melo inet_csk_reset_keepalive_timer(sk, elapsed); 18731da177e4SLinus Torvalds } 18741da177e4SLinus Torvalds } 18751da177e4SLinus Torvalds break; 18761da177e4SLinus Torvalds case TCP_KEEPINTVL: 18771da177e4SLinus Torvalds if (val < 1 || val > MAX_TCP_KEEPINTVL) 18781da177e4SLinus Torvalds err = -EINVAL; 18791da177e4SLinus Torvalds else 18801da177e4SLinus Torvalds tp->keepalive_intvl = val * HZ; 18811da177e4SLinus Torvalds break; 18821da177e4SLinus Torvalds case TCP_KEEPCNT: 18831da177e4SLinus Torvalds if (val < 1 || val > MAX_TCP_KEEPCNT) 18841da177e4SLinus Torvalds err = -EINVAL; 18851da177e4SLinus Torvalds else 18861da177e4SLinus Torvalds tp->keepalive_probes = val; 18871da177e4SLinus Torvalds break; 18881da177e4SLinus Torvalds case TCP_SYNCNT: 18891da177e4SLinus Torvalds if (val < 1 || val > MAX_TCP_SYNCNT) 18901da177e4SLinus Torvalds err = -EINVAL; 18911da177e4SLinus Torvalds else 1892463c84b9SArnaldo Carvalho de Melo icsk->icsk_syn_retries = val; 18931da177e4SLinus Torvalds break; 18941da177e4SLinus Torvalds 18951da177e4SLinus Torvalds case TCP_LINGER2: 18961da177e4SLinus Torvalds if (val < 0) 18971da177e4SLinus Torvalds tp->linger2 = -1; 18981da177e4SLinus Torvalds else if (val > sysctl_tcp_fin_timeout / HZ) 18991da177e4SLinus Torvalds tp->linger2 = 0; 19001da177e4SLinus Torvalds else 19011da177e4SLinus Torvalds tp->linger2 = val * HZ; 19021da177e4SLinus Torvalds break; 19031da177e4SLinus Torvalds 19041da177e4SLinus Torvalds case TCP_DEFER_ACCEPT: 1905295f7324SArnaldo Carvalho de Melo icsk->icsk_accept_queue.rskq_defer_accept = 0; 19061da177e4SLinus Torvalds if (val > 0) { 19071da177e4SLinus Torvalds /* Translate value in seconds to number of 19081da177e4SLinus Torvalds * retransmits */ 1909295f7324SArnaldo Carvalho de Melo while (icsk->icsk_accept_queue.rskq_defer_accept < 32 && 19101da177e4SLinus Torvalds val > ((TCP_TIMEOUT_INIT / HZ) << 1911295f7324SArnaldo Carvalho de Melo icsk->icsk_accept_queue.rskq_defer_accept)) 1912295f7324SArnaldo Carvalho de Melo icsk->icsk_accept_queue.rskq_defer_accept++; 1913295f7324SArnaldo Carvalho de Melo icsk->icsk_accept_queue.rskq_defer_accept++; 19141da177e4SLinus Torvalds } 19151da177e4SLinus Torvalds break; 19161da177e4SLinus Torvalds 19171da177e4SLinus Torvalds case TCP_WINDOW_CLAMP: 19181da177e4SLinus Torvalds if (!val) { 19191da177e4SLinus Torvalds if (sk->sk_state != TCP_CLOSE) { 19201da177e4SLinus Torvalds err = -EINVAL; 19211da177e4SLinus Torvalds break; 19221da177e4SLinus Torvalds } 19231da177e4SLinus Torvalds tp->window_clamp = 0; 19241da177e4SLinus Torvalds } else 19251da177e4SLinus Torvalds tp->window_clamp = val < SOCK_MIN_RCVBUF / 2 ? 19261da177e4SLinus Torvalds SOCK_MIN_RCVBUF / 2 : val; 19271da177e4SLinus Torvalds break; 19281da177e4SLinus Torvalds 19291da177e4SLinus Torvalds case TCP_QUICKACK: 19301da177e4SLinus Torvalds if (!val) { 1931463c84b9SArnaldo Carvalho de Melo icsk->icsk_ack.pingpong = 1; 19321da177e4SLinus Torvalds } else { 1933463c84b9SArnaldo Carvalho de Melo icsk->icsk_ack.pingpong = 0; 19341da177e4SLinus Torvalds if ((1 << sk->sk_state) & 19351da177e4SLinus Torvalds (TCPF_ESTABLISHED | TCPF_CLOSE_WAIT) && 1936463c84b9SArnaldo Carvalho de Melo inet_csk_ack_scheduled(sk)) { 1937463c84b9SArnaldo Carvalho de Melo icsk->icsk_ack.pending |= ICSK_ACK_PUSHED; 19380e4b4992SChris Leech tcp_cleanup_rbuf(sk, 1); 19391da177e4SLinus Torvalds if (!(val & 1)) 1940463c84b9SArnaldo Carvalho de Melo icsk->icsk_ack.pingpong = 1; 19411da177e4SLinus Torvalds } 19421da177e4SLinus Torvalds } 19431da177e4SLinus Torvalds break; 19441da177e4SLinus Torvalds 19451da177e4SLinus Torvalds default: 19461da177e4SLinus Torvalds err = -ENOPROTOOPT; 19471da177e4SLinus Torvalds break; 19481da177e4SLinus Torvalds }; 19491da177e4SLinus Torvalds release_sock(sk); 19501da177e4SLinus Torvalds return err; 19511da177e4SLinus Torvalds } 19521da177e4SLinus Torvalds 19533fdadf7dSDmitry Mishin int tcp_setsockopt(struct sock *sk, int level, int optname, char __user *optval, 19543fdadf7dSDmitry Mishin int optlen) 19553fdadf7dSDmitry Mishin { 19563fdadf7dSDmitry Mishin struct inet_connection_sock *icsk = inet_csk(sk); 19573fdadf7dSDmitry Mishin 19583fdadf7dSDmitry Mishin if (level != SOL_TCP) 19593fdadf7dSDmitry Mishin return icsk->icsk_af_ops->setsockopt(sk, level, optname, 19603fdadf7dSDmitry Mishin optval, optlen); 19613fdadf7dSDmitry Mishin return do_tcp_setsockopt(sk, level, optname, optval, optlen); 19623fdadf7dSDmitry Mishin } 19633fdadf7dSDmitry Mishin 19643fdadf7dSDmitry Mishin #ifdef CONFIG_COMPAT 1965543d9cfeSArnaldo Carvalho de Melo int compat_tcp_setsockopt(struct sock *sk, int level, int optname, 1966543d9cfeSArnaldo Carvalho de Melo char __user *optval, int optlen) 19673fdadf7dSDmitry Mishin { 1968dec73ff0SArnaldo Carvalho de Melo if (level != SOL_TCP) 1969dec73ff0SArnaldo Carvalho de Melo return inet_csk_compat_setsockopt(sk, level, optname, 1970dec73ff0SArnaldo Carvalho de Melo optval, optlen); 19713fdadf7dSDmitry Mishin return do_tcp_setsockopt(sk, level, optname, optval, optlen); 19723fdadf7dSDmitry Mishin } 1973543d9cfeSArnaldo Carvalho de Melo 1974543d9cfeSArnaldo Carvalho de Melo EXPORT_SYMBOL(compat_tcp_setsockopt); 19753fdadf7dSDmitry Mishin #endif 19763fdadf7dSDmitry Mishin 19771da177e4SLinus Torvalds /* Return information about state of tcp endpoint in API format. */ 19781da177e4SLinus Torvalds void tcp_get_info(struct sock *sk, struct tcp_info *info) 19791da177e4SLinus Torvalds { 19801da177e4SLinus Torvalds struct tcp_sock *tp = tcp_sk(sk); 1981463c84b9SArnaldo Carvalho de Melo const struct inet_connection_sock *icsk = inet_csk(sk); 19821da177e4SLinus Torvalds u32 now = tcp_time_stamp; 19831da177e4SLinus Torvalds 19841da177e4SLinus Torvalds memset(info, 0, sizeof(*info)); 19851da177e4SLinus Torvalds 19861da177e4SLinus Torvalds info->tcpi_state = sk->sk_state; 19876687e988SArnaldo Carvalho de Melo info->tcpi_ca_state = icsk->icsk_ca_state; 1988463c84b9SArnaldo Carvalho de Melo info->tcpi_retransmits = icsk->icsk_retransmits; 19896687e988SArnaldo Carvalho de Melo info->tcpi_probes = icsk->icsk_probes_out; 1990463c84b9SArnaldo Carvalho de Melo info->tcpi_backoff = icsk->icsk_backoff; 19911da177e4SLinus Torvalds 19921da177e4SLinus Torvalds if (tp->rx_opt.tstamp_ok) 19931da177e4SLinus Torvalds info->tcpi_options |= TCPI_OPT_TIMESTAMPS; 19941da177e4SLinus Torvalds if (tp->rx_opt.sack_ok) 19951da177e4SLinus Torvalds info->tcpi_options |= TCPI_OPT_SACK; 19961da177e4SLinus Torvalds if (tp->rx_opt.wscale_ok) { 19971da177e4SLinus Torvalds info->tcpi_options |= TCPI_OPT_WSCALE; 19981da177e4SLinus Torvalds info->tcpi_snd_wscale = tp->rx_opt.snd_wscale; 19991da177e4SLinus Torvalds info->tcpi_rcv_wscale = tp->rx_opt.rcv_wscale; 20001da177e4SLinus Torvalds } 20011da177e4SLinus Torvalds 20021da177e4SLinus Torvalds if (tp->ecn_flags&TCP_ECN_OK) 20031da177e4SLinus Torvalds info->tcpi_options |= TCPI_OPT_ECN; 20041da177e4SLinus Torvalds 2005463c84b9SArnaldo Carvalho de Melo info->tcpi_rto = jiffies_to_usecs(icsk->icsk_rto); 2006463c84b9SArnaldo Carvalho de Melo info->tcpi_ato = jiffies_to_usecs(icsk->icsk_ack.ato); 2007c1b4a7e6SDavid S. Miller info->tcpi_snd_mss = tp->mss_cache; 2008463c84b9SArnaldo Carvalho de Melo info->tcpi_rcv_mss = icsk->icsk_ack.rcv_mss; 20091da177e4SLinus Torvalds 20101da177e4SLinus Torvalds info->tcpi_unacked = tp->packets_out; 20111da177e4SLinus Torvalds info->tcpi_sacked = tp->sacked_out; 20121da177e4SLinus Torvalds info->tcpi_lost = tp->lost_out; 20131da177e4SLinus Torvalds info->tcpi_retrans = tp->retrans_out; 20141da177e4SLinus Torvalds info->tcpi_fackets = tp->fackets_out; 20151da177e4SLinus Torvalds 20161da177e4SLinus Torvalds info->tcpi_last_data_sent = jiffies_to_msecs(now - tp->lsndtime); 2017463c84b9SArnaldo Carvalho de Melo info->tcpi_last_data_recv = jiffies_to_msecs(now - icsk->icsk_ack.lrcvtime); 20181da177e4SLinus Torvalds info->tcpi_last_ack_recv = jiffies_to_msecs(now - tp->rcv_tstamp); 20191da177e4SLinus Torvalds 2020d83d8461SArnaldo Carvalho de Melo info->tcpi_pmtu = icsk->icsk_pmtu_cookie; 20211da177e4SLinus Torvalds info->tcpi_rcv_ssthresh = tp->rcv_ssthresh; 20221da177e4SLinus Torvalds info->tcpi_rtt = jiffies_to_usecs(tp->srtt)>>3; 20231da177e4SLinus Torvalds info->tcpi_rttvar = jiffies_to_usecs(tp->mdev)>>2; 20241da177e4SLinus Torvalds info->tcpi_snd_ssthresh = tp->snd_ssthresh; 20251da177e4SLinus Torvalds info->tcpi_snd_cwnd = tp->snd_cwnd; 20261da177e4SLinus Torvalds info->tcpi_advmss = tp->advmss; 20271da177e4SLinus Torvalds info->tcpi_reordering = tp->reordering; 20281da177e4SLinus Torvalds 20291da177e4SLinus Torvalds info->tcpi_rcv_rtt = jiffies_to_usecs(tp->rcv_rtt_est.rtt)>>3; 20301da177e4SLinus Torvalds info->tcpi_rcv_space = tp->rcvq_space.space; 20311da177e4SLinus Torvalds 20321da177e4SLinus Torvalds info->tcpi_total_retrans = tp->total_retrans; 20331da177e4SLinus Torvalds } 20341da177e4SLinus Torvalds 20351da177e4SLinus Torvalds EXPORT_SYMBOL_GPL(tcp_get_info); 20361da177e4SLinus Torvalds 20373fdadf7dSDmitry Mishin static int do_tcp_getsockopt(struct sock *sk, int level, 20383fdadf7dSDmitry Mishin int optname, char __user *optval, int __user *optlen) 20391da177e4SLinus Torvalds { 2040295f7324SArnaldo Carvalho de Melo struct inet_connection_sock *icsk = inet_csk(sk); 20411da177e4SLinus Torvalds struct tcp_sock *tp = tcp_sk(sk); 20421da177e4SLinus Torvalds int val, len; 20431da177e4SLinus Torvalds 20441da177e4SLinus Torvalds if (get_user(len, optlen)) 20451da177e4SLinus Torvalds return -EFAULT; 20461da177e4SLinus Torvalds 20471da177e4SLinus Torvalds len = min_t(unsigned int, len, sizeof(int)); 20481da177e4SLinus Torvalds 20491da177e4SLinus Torvalds if (len < 0) 20501da177e4SLinus Torvalds return -EINVAL; 20511da177e4SLinus Torvalds 20521da177e4SLinus Torvalds switch (optname) { 20531da177e4SLinus Torvalds case TCP_MAXSEG: 2054c1b4a7e6SDavid S. Miller val = tp->mss_cache; 20551da177e4SLinus Torvalds if (!val && ((1 << sk->sk_state) & (TCPF_CLOSE | TCPF_LISTEN))) 20561da177e4SLinus Torvalds val = tp->rx_opt.user_mss; 20571da177e4SLinus Torvalds break; 20581da177e4SLinus Torvalds case TCP_NODELAY: 20591da177e4SLinus Torvalds val = !!(tp->nonagle&TCP_NAGLE_OFF); 20601da177e4SLinus Torvalds break; 20611da177e4SLinus Torvalds case TCP_CORK: 20621da177e4SLinus Torvalds val = !!(tp->nonagle&TCP_NAGLE_CORK); 20631da177e4SLinus Torvalds break; 20641da177e4SLinus Torvalds case TCP_KEEPIDLE: 20651da177e4SLinus Torvalds val = (tp->keepalive_time ? : sysctl_tcp_keepalive_time) / HZ; 20661da177e4SLinus Torvalds break; 20671da177e4SLinus Torvalds case TCP_KEEPINTVL: 20681da177e4SLinus Torvalds val = (tp->keepalive_intvl ? : sysctl_tcp_keepalive_intvl) / HZ; 20691da177e4SLinus Torvalds break; 20701da177e4SLinus Torvalds case TCP_KEEPCNT: 20711da177e4SLinus Torvalds val = tp->keepalive_probes ? : sysctl_tcp_keepalive_probes; 20721da177e4SLinus Torvalds break; 20731da177e4SLinus Torvalds case TCP_SYNCNT: 2074295f7324SArnaldo Carvalho de Melo val = icsk->icsk_syn_retries ? : sysctl_tcp_syn_retries; 20751da177e4SLinus Torvalds break; 20761da177e4SLinus Torvalds case TCP_LINGER2: 20771da177e4SLinus Torvalds val = tp->linger2; 20781da177e4SLinus Torvalds if (val >= 0) 20791da177e4SLinus Torvalds val = (val ? : sysctl_tcp_fin_timeout) / HZ; 20801da177e4SLinus Torvalds break; 20811da177e4SLinus Torvalds case TCP_DEFER_ACCEPT: 2082295f7324SArnaldo Carvalho de Melo val = !icsk->icsk_accept_queue.rskq_defer_accept ? 0 : 2083295f7324SArnaldo Carvalho de Melo ((TCP_TIMEOUT_INIT / HZ) << (icsk->icsk_accept_queue.rskq_defer_accept - 1)); 20841da177e4SLinus Torvalds break; 20851da177e4SLinus Torvalds case TCP_WINDOW_CLAMP: 20861da177e4SLinus Torvalds val = tp->window_clamp; 20871da177e4SLinus Torvalds break; 20881da177e4SLinus Torvalds case TCP_INFO: { 20891da177e4SLinus Torvalds struct tcp_info info; 20901da177e4SLinus Torvalds 20911da177e4SLinus Torvalds if (get_user(len, optlen)) 20921da177e4SLinus Torvalds return -EFAULT; 20931da177e4SLinus Torvalds 20941da177e4SLinus Torvalds tcp_get_info(sk, &info); 20951da177e4SLinus Torvalds 20961da177e4SLinus Torvalds len = min_t(unsigned int, len, sizeof(info)); 20971da177e4SLinus Torvalds if (put_user(len, optlen)) 20981da177e4SLinus Torvalds return -EFAULT; 20991da177e4SLinus Torvalds if (copy_to_user(optval, &info, len)) 21001da177e4SLinus Torvalds return -EFAULT; 21011da177e4SLinus Torvalds return 0; 21021da177e4SLinus Torvalds } 21031da177e4SLinus Torvalds case TCP_QUICKACK: 2104295f7324SArnaldo Carvalho de Melo val = !icsk->icsk_ack.pingpong; 21051da177e4SLinus Torvalds break; 21065f8ef48dSStephen Hemminger 21075f8ef48dSStephen Hemminger case TCP_CONGESTION: 21085f8ef48dSStephen Hemminger if (get_user(len, optlen)) 21095f8ef48dSStephen Hemminger return -EFAULT; 21105f8ef48dSStephen Hemminger len = min_t(unsigned int, len, TCP_CA_NAME_MAX); 21115f8ef48dSStephen Hemminger if (put_user(len, optlen)) 21125f8ef48dSStephen Hemminger return -EFAULT; 21136687e988SArnaldo Carvalho de Melo if (copy_to_user(optval, icsk->icsk_ca_ops->name, len)) 21145f8ef48dSStephen Hemminger return -EFAULT; 21155f8ef48dSStephen Hemminger return 0; 21161da177e4SLinus Torvalds default: 21171da177e4SLinus Torvalds return -ENOPROTOOPT; 21181da177e4SLinus Torvalds }; 21191da177e4SLinus Torvalds 21201da177e4SLinus Torvalds if (put_user(len, optlen)) 21211da177e4SLinus Torvalds return -EFAULT; 21221da177e4SLinus Torvalds if (copy_to_user(optval, &val, len)) 21231da177e4SLinus Torvalds return -EFAULT; 21241da177e4SLinus Torvalds return 0; 21251da177e4SLinus Torvalds } 21261da177e4SLinus Torvalds 21273fdadf7dSDmitry Mishin int tcp_getsockopt(struct sock *sk, int level, int optname, char __user *optval, 21283fdadf7dSDmitry Mishin int __user *optlen) 21293fdadf7dSDmitry Mishin { 21303fdadf7dSDmitry Mishin struct inet_connection_sock *icsk = inet_csk(sk); 21313fdadf7dSDmitry Mishin 21323fdadf7dSDmitry Mishin if (level != SOL_TCP) 21333fdadf7dSDmitry Mishin return icsk->icsk_af_ops->getsockopt(sk, level, optname, 21343fdadf7dSDmitry Mishin optval, optlen); 21353fdadf7dSDmitry Mishin return do_tcp_getsockopt(sk, level, optname, optval, optlen); 21363fdadf7dSDmitry Mishin } 21373fdadf7dSDmitry Mishin 21383fdadf7dSDmitry Mishin #ifdef CONFIG_COMPAT 2139543d9cfeSArnaldo Carvalho de Melo int compat_tcp_getsockopt(struct sock *sk, int level, int optname, 2140543d9cfeSArnaldo Carvalho de Melo char __user *optval, int __user *optlen) 21413fdadf7dSDmitry Mishin { 2142dec73ff0SArnaldo Carvalho de Melo if (level != SOL_TCP) 2143dec73ff0SArnaldo Carvalho de Melo return inet_csk_compat_getsockopt(sk, level, optname, 2144dec73ff0SArnaldo Carvalho de Melo optval, optlen); 21453fdadf7dSDmitry Mishin return do_tcp_getsockopt(sk, level, optname, optval, optlen); 21463fdadf7dSDmitry Mishin } 2147543d9cfeSArnaldo Carvalho de Melo 2148543d9cfeSArnaldo Carvalho de Melo EXPORT_SYMBOL(compat_tcp_getsockopt); 21493fdadf7dSDmitry Mishin #endif 21501da177e4SLinus Torvalds 2151576a30ebSHerbert Xu struct sk_buff *tcp_tso_segment(struct sk_buff *skb, int features) 2152f4c50d99SHerbert Xu { 2153f4c50d99SHerbert Xu struct sk_buff *segs = ERR_PTR(-EINVAL); 2154f4c50d99SHerbert Xu struct tcphdr *th; 2155f4c50d99SHerbert Xu unsigned thlen; 2156f4c50d99SHerbert Xu unsigned int seq; 2157f4c50d99SHerbert Xu unsigned int delta; 2158f4c50d99SHerbert Xu unsigned int oldlen; 2159f4c50d99SHerbert Xu unsigned int len; 2160f4c50d99SHerbert Xu 2161f4c50d99SHerbert Xu if (!pskb_may_pull(skb, sizeof(*th))) 2162f4c50d99SHerbert Xu goto out; 2163f4c50d99SHerbert Xu 2164f4c50d99SHerbert Xu th = skb->h.th; 2165f4c50d99SHerbert Xu thlen = th->doff * 4; 2166f4c50d99SHerbert Xu if (thlen < sizeof(*th)) 2167f4c50d99SHerbert Xu goto out; 2168f4c50d99SHerbert Xu 2169f4c50d99SHerbert Xu if (!pskb_may_pull(skb, thlen)) 2170f4c50d99SHerbert Xu goto out; 2171f4c50d99SHerbert Xu 21720718bcc0SHerbert Xu oldlen = (u16)~skb->len; 2173f4c50d99SHerbert Xu __skb_pull(skb, thlen); 2174f4c50d99SHerbert Xu 21753820c3f3SHerbert Xu if (skb_gso_ok(skb, features | NETIF_F_GSO_ROBUST)) { 21763820c3f3SHerbert Xu /* Packet is from an untrusted source, reset gso_segs. */ 2177bbcf467dSHerbert Xu int type = skb_shinfo(skb)->gso_type; 2178bbcf467dSHerbert Xu int mss; 21793820c3f3SHerbert Xu 2180bbcf467dSHerbert Xu if (unlikely(type & 2181bbcf467dSHerbert Xu ~(SKB_GSO_TCPV4 | 2182bbcf467dSHerbert Xu SKB_GSO_DODGY | 2183bbcf467dSHerbert Xu SKB_GSO_TCP_ECN | 2184bbcf467dSHerbert Xu SKB_GSO_TCPV6 | 2185bbcf467dSHerbert Xu 0) || 2186bbcf467dSHerbert Xu !(type & (SKB_GSO_TCPV4 | SKB_GSO_TCPV6)))) 2187bbcf467dSHerbert Xu goto out; 2188bbcf467dSHerbert Xu 2189bbcf467dSHerbert Xu mss = skb_shinfo(skb)->gso_size; 21903820c3f3SHerbert Xu skb_shinfo(skb)->gso_segs = (skb->len + mss - 1) / mss; 21913820c3f3SHerbert Xu 21923820c3f3SHerbert Xu segs = NULL; 21933820c3f3SHerbert Xu goto out; 21943820c3f3SHerbert Xu } 21953820c3f3SHerbert Xu 2196576a30ebSHerbert Xu segs = skb_segment(skb, features); 2197f4c50d99SHerbert Xu if (IS_ERR(segs)) 2198f4c50d99SHerbert Xu goto out; 2199f4c50d99SHerbert Xu 2200f4c50d99SHerbert Xu len = skb_shinfo(skb)->gso_size; 22010718bcc0SHerbert Xu delta = htonl(oldlen + (thlen + len)); 2202f4c50d99SHerbert Xu 2203f4c50d99SHerbert Xu skb = segs; 2204f4c50d99SHerbert Xu th = skb->h.th; 2205f4c50d99SHerbert Xu seq = ntohl(th->seq); 2206f4c50d99SHerbert Xu 2207f4c50d99SHerbert Xu do { 2208f4c50d99SHerbert Xu th->fin = th->psh = 0; 2209f4c50d99SHerbert Xu 22100718bcc0SHerbert Xu th->check = ~csum_fold(th->check + delta); 221184fa7933SPatrick McHardy if (skb->ip_summed != CHECKSUM_PARTIAL) 22120718bcc0SHerbert Xu th->check = csum_fold(csum_partial(skb->h.raw, thlen, 22130718bcc0SHerbert Xu skb->csum)); 2214f4c50d99SHerbert Xu 2215f4c50d99SHerbert Xu seq += len; 2216f4c50d99SHerbert Xu skb = skb->next; 2217f4c50d99SHerbert Xu th = skb->h.th; 2218f4c50d99SHerbert Xu 2219f4c50d99SHerbert Xu th->seq = htonl(seq); 2220f4c50d99SHerbert Xu th->cwr = 0; 2221f4c50d99SHerbert Xu } while (skb->next); 2222f4c50d99SHerbert Xu 22230718bcc0SHerbert Xu delta = htonl(oldlen + (skb->tail - skb->h.raw) + skb->data_len); 22240718bcc0SHerbert Xu th->check = ~csum_fold(th->check + delta); 222584fa7933SPatrick McHardy if (skb->ip_summed != CHECKSUM_PARTIAL) 22260718bcc0SHerbert Xu th->check = csum_fold(csum_partial(skb->h.raw, thlen, 22270718bcc0SHerbert Xu skb->csum)); 2228f4c50d99SHerbert Xu 2229f4c50d99SHerbert Xu out: 2230f4c50d99SHerbert Xu return segs; 2231f4c50d99SHerbert Xu } 2232adcfc7d0SHerbert Xu EXPORT_SYMBOL(tcp_tso_segment); 2233f4c50d99SHerbert Xu 22341da177e4SLinus Torvalds extern void __skb_cb_too_small_for_tcp(int, int); 22355f8ef48dSStephen Hemminger extern struct tcp_congestion_ops tcp_reno; 22361da177e4SLinus Torvalds 22371da177e4SLinus Torvalds static __initdata unsigned long thash_entries; 22381da177e4SLinus Torvalds static int __init set_thash_entries(char *str) 22391da177e4SLinus Torvalds { 22401da177e4SLinus Torvalds if (!str) 22411da177e4SLinus Torvalds return 0; 22421da177e4SLinus Torvalds thash_entries = simple_strtoul(str, &str, 0); 22431da177e4SLinus Torvalds return 1; 22441da177e4SLinus Torvalds } 22451da177e4SLinus Torvalds __setup("thash_entries=", set_thash_entries); 22461da177e4SLinus Torvalds 22471da177e4SLinus Torvalds void __init tcp_init(void) 22481da177e4SLinus Torvalds { 22491da177e4SLinus Torvalds struct sk_buff *skb = NULL; 22507b4f4b5eSJohn Heffner unsigned long limit; 22517b4f4b5eSJohn Heffner int order, i, max_share; 22521da177e4SLinus Torvalds 22531da177e4SLinus Torvalds if (sizeof(struct tcp_skb_cb) > sizeof(skb->cb)) 22541da177e4SLinus Torvalds __skb_cb_too_small_for_tcp(sizeof(struct tcp_skb_cb), 22551da177e4SLinus Torvalds sizeof(skb->cb)); 22561da177e4SLinus Torvalds 22576e04e021SArnaldo Carvalho de Melo tcp_hashinfo.bind_bucket_cachep = 22586e04e021SArnaldo Carvalho de Melo kmem_cache_create("tcp_bind_bucket", 22596e04e021SArnaldo Carvalho de Melo sizeof(struct inet_bind_bucket), 0, 2260e5d679f3SAlexey Dobriyan SLAB_HWCACHE_ALIGN|SLAB_PANIC, NULL, NULL); 22611da177e4SLinus Torvalds 22621da177e4SLinus Torvalds /* Size and allocate the main established and bind bucket 22631da177e4SLinus Torvalds * hash tables. 22641da177e4SLinus Torvalds * 22651da177e4SLinus Torvalds * The methodology is similar to that of the buffer cache. 22661da177e4SLinus Torvalds */ 22676e04e021SArnaldo Carvalho de Melo tcp_hashinfo.ehash = 22681da177e4SLinus Torvalds alloc_large_system_hash("TCP established", 22690f7ff927SArnaldo Carvalho de Melo sizeof(struct inet_ehash_bucket), 22701da177e4SLinus Torvalds thash_entries, 22711da177e4SLinus Torvalds (num_physpages >= 128 * 1024) ? 227218955cfcSMike Stroyan 13 : 15, 22731da177e4SLinus Torvalds HASH_HIGHMEM, 22746e04e021SArnaldo Carvalho de Melo &tcp_hashinfo.ehash_size, 22751da177e4SLinus Torvalds NULL, 22761da177e4SLinus Torvalds 0); 22776e04e021SArnaldo Carvalho de Melo tcp_hashinfo.ehash_size = (1 << tcp_hashinfo.ehash_size) >> 1; 22786e04e021SArnaldo Carvalho de Melo for (i = 0; i < (tcp_hashinfo.ehash_size << 1); i++) { 22796e04e021SArnaldo Carvalho de Melo rwlock_init(&tcp_hashinfo.ehash[i].lock); 22806e04e021SArnaldo Carvalho de Melo INIT_HLIST_HEAD(&tcp_hashinfo.ehash[i].chain); 22811da177e4SLinus Torvalds } 22821da177e4SLinus Torvalds 22836e04e021SArnaldo Carvalho de Melo tcp_hashinfo.bhash = 22841da177e4SLinus Torvalds alloc_large_system_hash("TCP bind", 22850f7ff927SArnaldo Carvalho de Melo sizeof(struct inet_bind_hashbucket), 22866e04e021SArnaldo Carvalho de Melo tcp_hashinfo.ehash_size, 22871da177e4SLinus Torvalds (num_physpages >= 128 * 1024) ? 228818955cfcSMike Stroyan 13 : 15, 22891da177e4SLinus Torvalds HASH_HIGHMEM, 22906e04e021SArnaldo Carvalho de Melo &tcp_hashinfo.bhash_size, 22911da177e4SLinus Torvalds NULL, 22921da177e4SLinus Torvalds 64 * 1024); 22936e04e021SArnaldo Carvalho de Melo tcp_hashinfo.bhash_size = 1 << tcp_hashinfo.bhash_size; 22946e04e021SArnaldo Carvalho de Melo for (i = 0; i < tcp_hashinfo.bhash_size; i++) { 22956e04e021SArnaldo Carvalho de Melo spin_lock_init(&tcp_hashinfo.bhash[i].lock); 22966e04e021SArnaldo Carvalho de Melo INIT_HLIST_HEAD(&tcp_hashinfo.bhash[i].chain); 22971da177e4SLinus Torvalds } 22981da177e4SLinus Torvalds 22991da177e4SLinus Torvalds /* Try to be a bit smarter and adjust defaults depending 23001da177e4SLinus Torvalds * on available memory. 23011da177e4SLinus Torvalds */ 23021da177e4SLinus Torvalds for (order = 0; ((1 << order) << PAGE_SHIFT) < 23036e04e021SArnaldo Carvalho de Melo (tcp_hashinfo.bhash_size * sizeof(struct inet_bind_hashbucket)); 23041da177e4SLinus Torvalds order++) 23051da177e4SLinus Torvalds ; 2306e7626486SAndi Kleen if (order >= 4) { 23071da177e4SLinus Torvalds sysctl_local_port_range[0] = 32768; 23081da177e4SLinus Torvalds sysctl_local_port_range[1] = 61000; 2309295ff7edSArnaldo Carvalho de Melo tcp_death_row.sysctl_max_tw_buckets = 180000; 23101da177e4SLinus Torvalds sysctl_tcp_max_orphans = 4096 << (order - 4); 23111da177e4SLinus Torvalds sysctl_max_syn_backlog = 1024; 23121da177e4SLinus Torvalds } else if (order < 3) { 23131da177e4SLinus Torvalds sysctl_local_port_range[0] = 1024 * (3 - order); 2314295ff7edSArnaldo Carvalho de Melo tcp_death_row.sysctl_max_tw_buckets >>= (3 - order); 23151da177e4SLinus Torvalds sysctl_tcp_max_orphans >>= (3 - order); 23161da177e4SLinus Torvalds sysctl_max_syn_backlog = 128; 23171da177e4SLinus Torvalds } 23181da177e4SLinus Torvalds 23191da177e4SLinus Torvalds sysctl_tcp_mem[0] = 768 << order; 23201da177e4SLinus Torvalds sysctl_tcp_mem[1] = 1024 << order; 23211da177e4SLinus Torvalds sysctl_tcp_mem[2] = 1536 << order; 23221da177e4SLinus Torvalds 23237b4f4b5eSJohn Heffner limit = ((unsigned long)sysctl_tcp_mem[1]) << (PAGE_SHIFT - 7); 23247b4f4b5eSJohn Heffner max_share = min(4UL*1024*1024, limit); 23257b4f4b5eSJohn Heffner 23267b4f4b5eSJohn Heffner sysctl_tcp_wmem[0] = SK_STREAM_MEM_QUANTUM; 23277b4f4b5eSJohn Heffner sysctl_tcp_wmem[1] = 16*1024; 23287b4f4b5eSJohn Heffner sysctl_tcp_wmem[2] = max(64*1024, max_share); 23297b4f4b5eSJohn Heffner 23307b4f4b5eSJohn Heffner sysctl_tcp_rmem[0] = SK_STREAM_MEM_QUANTUM; 23317b4f4b5eSJohn Heffner sysctl_tcp_rmem[1] = 87380; 23327b4f4b5eSJohn Heffner sysctl_tcp_rmem[2] = max(87380, max_share); 23331da177e4SLinus Torvalds 23341da177e4SLinus Torvalds printk(KERN_INFO "TCP: Hash tables configured " 23351da177e4SLinus Torvalds "(established %d bind %d)\n", 23366e04e021SArnaldo Carvalho de Melo tcp_hashinfo.ehash_size << 1, tcp_hashinfo.bhash_size); 2337317a76f9SStephen Hemminger 2338317a76f9SStephen Hemminger tcp_register_congestion_control(&tcp_reno); 23391da177e4SLinus Torvalds } 23401da177e4SLinus Torvalds 23411da177e4SLinus Torvalds EXPORT_SYMBOL(tcp_close); 23421da177e4SLinus Torvalds EXPORT_SYMBOL(tcp_disconnect); 23431da177e4SLinus Torvalds EXPORT_SYMBOL(tcp_getsockopt); 23441da177e4SLinus Torvalds EXPORT_SYMBOL(tcp_ioctl); 23451da177e4SLinus Torvalds EXPORT_SYMBOL(tcp_poll); 23461da177e4SLinus Torvalds EXPORT_SYMBOL(tcp_read_sock); 23471da177e4SLinus Torvalds EXPORT_SYMBOL(tcp_recvmsg); 23481da177e4SLinus Torvalds EXPORT_SYMBOL(tcp_sendmsg); 23491da177e4SLinus Torvalds EXPORT_SYMBOL(tcp_sendpage); 23501da177e4SLinus Torvalds EXPORT_SYMBOL(tcp_setsockopt); 23511da177e4SLinus Torvalds EXPORT_SYMBOL(tcp_shutdown); 23521da177e4SLinus Torvalds EXPORT_SYMBOL(tcp_statistics); 2353