xref: /linux/tools/testing/selftests/bpf/prog_tests/sockmap_basic.c (revision d66b7739176d513b81db8b18e8677e30f1b67574)
1 // SPDX-License-Identifier: GPL-2.0
2 // Copyright (c) 2020 Cloudflare
3 #include <error.h>
4 #include <netinet/tcp.h>
5 #include <sys/epoll.h>
6 
7 #include "test_progs.h"
8 #include "test_skmsg_load_helpers.skel.h"
9 #include "test_sockmap_update.skel.h"
10 #include "test_sockmap_invalid_update.skel.h"
11 #include "test_sockmap_skb_verdict_attach.skel.h"
12 #include "test_sockmap_progs_query.skel.h"
13 #include "test_sockmap_pass_prog.skel.h"
14 #include "test_sockmap_drop_prog.skel.h"
15 #include "test_sockmap_change_tail.skel.h"
16 #include "bpf_iter_sockmap.skel.h"
17 
18 #include "sockmap_helpers.h"
19 
20 #define TCP_REPAIR		19	/* TCP sock is under repair right now */
21 
22 #define TCP_REPAIR_ON		1
23 #define TCP_REPAIR_OFF_NO_WP	-1	/* Turn off without window probes */
24 
25 static int connected_socket_v4(void)
26 {
27 	struct sockaddr_in addr = {
28 		.sin_family = AF_INET,
29 		.sin_port = htons(80),
30 		.sin_addr = { inet_addr("127.0.0.1") },
31 	};
32 	socklen_t len = sizeof(addr);
33 	int s, repair, err;
34 
35 	s = socket(AF_INET, SOCK_STREAM, 0);
36 	if (!ASSERT_GE(s, 0, "socket"))
37 		goto error;
38 
39 	repair = TCP_REPAIR_ON;
40 	err = setsockopt(s, SOL_TCP, TCP_REPAIR, &repair, sizeof(repair));
41 	if (!ASSERT_OK(err, "setsockopt(TCP_REPAIR)"))
42 		goto error;
43 
44 	err = connect(s, (struct sockaddr *)&addr, len);
45 	if (!ASSERT_OK(err, "connect"))
46 		goto error;
47 
48 	repair = TCP_REPAIR_OFF_NO_WP;
49 	err = setsockopt(s, SOL_TCP, TCP_REPAIR, &repair, sizeof(repair));
50 	if (!ASSERT_OK(err, "setsockopt(TCP_REPAIR)"))
51 		goto error;
52 
53 	return s;
54 error:
55 	perror(__func__);
56 	close(s);
57 	return -1;
58 }
59 
60 static void compare_cookies(struct bpf_map *src, struct bpf_map *dst)
61 {
62 	__u32 i, max_entries = bpf_map__max_entries(src);
63 	int err, src_fd, dst_fd;
64 
65 	src_fd = bpf_map__fd(src);
66 	dst_fd = bpf_map__fd(dst);
67 
68 	for (i = 0; i < max_entries; i++) {
69 		__u64 src_cookie, dst_cookie;
70 
71 		err = bpf_map_lookup_elem(src_fd, &i, &src_cookie);
72 		if (err && errno == ENOENT) {
73 			err = bpf_map_lookup_elem(dst_fd, &i, &dst_cookie);
74 			ASSERT_ERR(err, "map_lookup_elem(dst)");
75 			ASSERT_EQ(errno, ENOENT, "map_lookup_elem(dst)");
76 			continue;
77 		}
78 		if (!ASSERT_OK(err, "lookup_elem(src)"))
79 			continue;
80 
81 		err = bpf_map_lookup_elem(dst_fd, &i, &dst_cookie);
82 		if (!ASSERT_OK(err, "lookup_elem(dst)"))
83 			continue;
84 
85 		ASSERT_EQ(dst_cookie, src_cookie, "cookie mismatch");
86 	}
87 }
88 
89 /* Create a map, populate it with one socket, and free the map. */
90 static void test_sockmap_create_update_free(enum bpf_map_type map_type)
91 {
92 	const int zero = 0;
93 	int s, map, err;
94 
95 	s = connected_socket_v4();
96 	if (!ASSERT_GE(s, 0, "connected_socket_v4"))
97 		return;
98 
99 	map = bpf_map_create(map_type, NULL, sizeof(int), sizeof(int), 1, NULL);
100 	if (!ASSERT_GE(map, 0, "bpf_map_create"))
101 		goto out;
102 
103 	err = bpf_map_update_elem(map, &zero, &s, BPF_NOEXIST);
104 	if (!ASSERT_OK(err, "bpf_map_update"))
105 		goto out;
106 
107 out:
108 	close(map);
109 	close(s);
110 }
111 
112 static void test_sockmap_vsock_delete_on_close(void)
113 {
114 	int err, c, p, map;
115 	const int zero = 0;
116 
117 	err = create_pair(AF_VSOCK, SOCK_STREAM, &c, &p);
118 	if (!ASSERT_OK(err, "create_pair(AF_VSOCK)"))
119 		return;
120 
121 	map = bpf_map_create(BPF_MAP_TYPE_SOCKMAP, NULL, sizeof(int),
122 			     sizeof(int), 1, NULL);
123 	if (!ASSERT_GE(map, 0, "bpf_map_create")) {
124 		close(c);
125 		goto out;
126 	}
127 
128 	err = bpf_map_update_elem(map, &zero, &c, BPF_NOEXIST);
129 	close(c);
130 	if (!ASSERT_OK(err, "bpf_map_update"))
131 		goto out;
132 
133 	err = bpf_map_update_elem(map, &zero, &p, BPF_NOEXIST);
134 	ASSERT_OK(err, "after close(), bpf_map_update");
135 
136 out:
137 	close(p);
138 	close(map);
139 }
140 
141 static void test_skmsg_helpers(enum bpf_map_type map_type)
142 {
143 	struct test_skmsg_load_helpers *skel;
144 	int err, map, verdict;
145 
146 	skel = test_skmsg_load_helpers__open_and_load();
147 	if (!ASSERT_OK_PTR(skel, "test_skmsg_load_helpers__open_and_load"))
148 		return;
149 
150 	verdict = bpf_program__fd(skel->progs.prog_msg_verdict);
151 	map = bpf_map__fd(skel->maps.sock_map);
152 
153 	err = bpf_prog_attach(verdict, map, BPF_SK_MSG_VERDICT, 0);
154 	if (!ASSERT_OK(err, "bpf_prog_attach"))
155 		goto out;
156 
157 	err = bpf_prog_detach2(verdict, map, BPF_SK_MSG_VERDICT);
158 	if (!ASSERT_OK(err, "bpf_prog_detach2"))
159 		goto out;
160 out:
161 	test_skmsg_load_helpers__destroy(skel);
162 }
163 
164 static void test_skmsg_helpers_with_link(enum bpf_map_type map_type)
165 {
166 	struct bpf_program *prog, *prog_clone, *prog_clone2;
167 	DECLARE_LIBBPF_OPTS(bpf_link_update_opts, opts);
168 	struct test_skmsg_load_helpers *skel;
169 	struct bpf_link *link, *link2;
170 	int err, map;
171 
172 	skel = test_skmsg_load_helpers__open_and_load();
173 	if (!ASSERT_OK_PTR(skel, "test_skmsg_load_helpers__open_and_load"))
174 		return;
175 
176 	prog = skel->progs.prog_msg_verdict;
177 	prog_clone = skel->progs.prog_msg_verdict_clone;
178 	prog_clone2 = skel->progs.prog_msg_verdict_clone2;
179 	map = bpf_map__fd(skel->maps.sock_map);
180 
181 	link = bpf_program__attach_sockmap(prog, map);
182 	if (!ASSERT_OK_PTR(link, "bpf_program__attach_sockmap"))
183 		goto out;
184 
185 	/* Fail since bpf_link for the same prog has been created. */
186 	err = bpf_prog_attach(bpf_program__fd(prog), map, BPF_SK_MSG_VERDICT, 0);
187 	if (!ASSERT_ERR(err, "bpf_prog_attach"))
188 		goto out;
189 
190 	/* Fail since bpf_link for the same prog type has been created. */
191 	link2 = bpf_program__attach_sockmap(prog_clone, map);
192 	if (!ASSERT_ERR_PTR(link2, "bpf_program__attach_sockmap")) {
193 		bpf_link__detach(link2);
194 		goto out;
195 	}
196 
197 	err = bpf_link__update_program(link, prog_clone);
198 	if (!ASSERT_OK(err, "bpf_link__update_program"))
199 		goto out;
200 
201 	/* Fail since a prog with different type attempts to do update. */
202 	err = bpf_link__update_program(link, skel->progs.prog_skb_verdict);
203 	if (!ASSERT_ERR(err, "bpf_link__update_program"))
204 		goto out;
205 
206 	/* Fail since the old prog does not match the one in the kernel. */
207 	opts.old_prog_fd = bpf_program__fd(prog_clone2);
208 	opts.flags = BPF_F_REPLACE;
209 	err = bpf_link_update(bpf_link__fd(link), bpf_program__fd(prog), &opts);
210 	if (!ASSERT_ERR(err, "bpf_link_update"))
211 		goto out;
212 
213 	opts.old_prog_fd = bpf_program__fd(prog_clone);
214 	opts.flags = BPF_F_REPLACE;
215 	err = bpf_link_update(bpf_link__fd(link), bpf_program__fd(prog), &opts);
216 	if (!ASSERT_OK(err, "bpf_link_update"))
217 		goto out;
218 out:
219 	bpf_link__detach(link);
220 	test_skmsg_load_helpers__destroy(skel);
221 }
222 
223 static void test_sockmap_update(enum bpf_map_type map_type)
224 {
225 	int err, prog, src;
226 	struct test_sockmap_update *skel;
227 	struct bpf_map *dst_map;
228 	const __u32 zero = 0;
229 	char dummy[14] = {0};
230 	LIBBPF_OPTS(bpf_test_run_opts, topts,
231 		.data_in = dummy,
232 		.data_size_in = sizeof(dummy),
233 		.repeat = 1,
234 	);
235 	__s64 sk;
236 
237 	sk = connected_socket_v4();
238 	if (!ASSERT_NEQ(sk, -1, "connected_socket_v4"))
239 		return;
240 
241 	skel = test_sockmap_update__open_and_load();
242 	if (!ASSERT_OK_PTR(skel, "open_and_load"))
243 		goto close_sk;
244 
245 	prog = bpf_program__fd(skel->progs.copy_sock_map);
246 	src = bpf_map__fd(skel->maps.src);
247 	if (map_type == BPF_MAP_TYPE_SOCKMAP)
248 		dst_map = skel->maps.dst_sock_map;
249 	else
250 		dst_map = skel->maps.dst_sock_hash;
251 
252 	err = bpf_map_update_elem(src, &zero, &sk, BPF_NOEXIST);
253 	if (!ASSERT_OK(err, "update_elem(src)"))
254 		goto out;
255 
256 	err = bpf_prog_test_run_opts(prog, &topts);
257 	if (!ASSERT_OK(err, "test_run"))
258 		goto out;
259 	if (!ASSERT_NEQ(topts.retval, 0, "test_run retval"))
260 		goto out;
261 
262 	compare_cookies(skel->maps.src, dst_map);
263 
264 out:
265 	test_sockmap_update__destroy(skel);
266 close_sk:
267 	close(sk);
268 }
269 
270 static void test_sockmap_invalid_update(void)
271 {
272 	struct test_sockmap_invalid_update *skel;
273 
274 	skel = test_sockmap_invalid_update__open_and_load();
275 	if (!ASSERT_NULL(skel, "open_and_load"))
276 		test_sockmap_invalid_update__destroy(skel);
277 }
278 
279 static void test_sockmap_copy(enum bpf_map_type map_type)
280 {
281 	DECLARE_LIBBPF_OPTS(bpf_iter_attach_opts, opts);
282 	int err, len, src_fd, iter_fd;
283 	union bpf_iter_link_info linfo = {};
284 	__u32 i, num_sockets, num_elems;
285 	struct bpf_iter_sockmap *skel;
286 	__s64 *sock_fd = NULL;
287 	struct bpf_link *link;
288 	struct bpf_map *src;
289 	char buf[64];
290 
291 	skel = bpf_iter_sockmap__open_and_load();
292 	if (!ASSERT_OK_PTR(skel, "bpf_iter_sockmap__open_and_load"))
293 		return;
294 
295 	if (map_type == BPF_MAP_TYPE_SOCKMAP) {
296 		src = skel->maps.sockmap;
297 		num_elems = bpf_map__max_entries(src);
298 		num_sockets = num_elems - 1;
299 	} else {
300 		src = skel->maps.sockhash;
301 		num_elems = bpf_map__max_entries(src) - 1;
302 		num_sockets = num_elems;
303 	}
304 
305 	sock_fd = calloc(num_sockets, sizeof(*sock_fd));
306 	if (!ASSERT_OK_PTR(sock_fd, "calloc(sock_fd)"))
307 		goto out;
308 
309 	for (i = 0; i < num_sockets; i++)
310 		sock_fd[i] = -1;
311 
312 	src_fd = bpf_map__fd(src);
313 
314 	for (i = 0; i < num_sockets; i++) {
315 		sock_fd[i] = connected_socket_v4();
316 		if (!ASSERT_NEQ(sock_fd[i], -1, "connected_socket_v4"))
317 			goto out;
318 
319 		err = bpf_map_update_elem(src_fd, &i, &sock_fd[i], BPF_NOEXIST);
320 		if (!ASSERT_OK(err, "map_update"))
321 			goto out;
322 	}
323 
324 	linfo.map.map_fd = src_fd;
325 	opts.link_info = &linfo;
326 	opts.link_info_len = sizeof(linfo);
327 	link = bpf_program__attach_iter(skel->progs.copy, &opts);
328 	if (!ASSERT_OK_PTR(link, "attach_iter"))
329 		goto out;
330 
331 	iter_fd = bpf_iter_create(bpf_link__fd(link));
332 	if (!ASSERT_GE(iter_fd, 0, "create_iter"))
333 		goto free_link;
334 
335 	/* do some tests */
336 	while ((len = read(iter_fd, buf, sizeof(buf))) > 0)
337 		;
338 	if (!ASSERT_GE(len, 0, "read"))
339 		goto close_iter;
340 
341 	/* test results */
342 	if (!ASSERT_EQ(skel->bss->elems, num_elems, "elems"))
343 		goto close_iter;
344 
345 	if (!ASSERT_EQ(skel->bss->socks, num_sockets, "socks"))
346 		goto close_iter;
347 
348 	compare_cookies(src, skel->maps.dst);
349 
350 close_iter:
351 	close(iter_fd);
352 free_link:
353 	bpf_link__destroy(link);
354 out:
355 	for (i = 0; sock_fd && i < num_sockets; i++)
356 		if (sock_fd[i] >= 0)
357 			close(sock_fd[i]);
358 	if (sock_fd)
359 		free(sock_fd);
360 	bpf_iter_sockmap__destroy(skel);
361 }
362 
363 static void test_sockmap_skb_verdict_attach(enum bpf_attach_type first,
364 					    enum bpf_attach_type second)
365 {
366 	struct test_sockmap_skb_verdict_attach *skel;
367 	int err, map, verdict;
368 
369 	skel = test_sockmap_skb_verdict_attach__open_and_load();
370 	if (!ASSERT_OK_PTR(skel, "open_and_load"))
371 		return;
372 
373 	verdict = bpf_program__fd(skel->progs.prog_skb_verdict);
374 	map = bpf_map__fd(skel->maps.sock_map);
375 
376 	err = bpf_prog_attach(verdict, map, first, 0);
377 	if (!ASSERT_OK(err, "bpf_prog_attach"))
378 		goto out;
379 
380 	err = bpf_prog_attach(verdict, map, second, 0);
381 	ASSERT_EQ(err, -EBUSY, "prog_attach_fail");
382 
383 	err = bpf_prog_detach2(verdict, map, first);
384 	if (!ASSERT_OK(err, "bpf_prog_detach2"))
385 		goto out;
386 out:
387 	test_sockmap_skb_verdict_attach__destroy(skel);
388 }
389 
390 static void test_sockmap_skb_verdict_attach_with_link(void)
391 {
392 	struct test_sockmap_skb_verdict_attach *skel;
393 	struct bpf_program *prog;
394 	struct bpf_link *link;
395 	int err, map;
396 
397 	skel = test_sockmap_skb_verdict_attach__open_and_load();
398 	if (!ASSERT_OK_PTR(skel, "open_and_load"))
399 		return;
400 	prog = skel->progs.prog_skb_verdict;
401 	map = bpf_map__fd(skel->maps.sock_map);
402 	link = bpf_program__attach_sockmap(prog, map);
403 	if (!ASSERT_OK_PTR(link, "bpf_program__attach_sockmap"))
404 		goto out;
405 
406 	bpf_link__detach(link);
407 
408 	err = bpf_prog_attach(bpf_program__fd(prog), map, BPF_SK_SKB_STREAM_VERDICT, 0);
409 	if (!ASSERT_OK(err, "bpf_prog_attach"))
410 		goto out;
411 
412 	/* Fail since attaching with the same prog/map has been done. */
413 	link = bpf_program__attach_sockmap(prog, map);
414 	if (!ASSERT_ERR_PTR(link, "bpf_program__attach_sockmap"))
415 		bpf_link__detach(link);
416 
417 	err = bpf_prog_detach2(bpf_program__fd(prog), map, BPF_SK_SKB_STREAM_VERDICT);
418 	if (!ASSERT_OK(err, "bpf_prog_detach2"))
419 		goto out;
420 out:
421 	test_sockmap_skb_verdict_attach__destroy(skel);
422 }
423 
424 static __u32 query_prog_id(int prog_fd)
425 {
426 	struct bpf_prog_info info = {};
427 	__u32 info_len = sizeof(info);
428 	int err;
429 
430 	err = bpf_prog_get_info_by_fd(prog_fd, &info, &info_len);
431 	if (!ASSERT_OK(err, "bpf_prog_get_info_by_fd") ||
432 	    !ASSERT_EQ(info_len, sizeof(info), "bpf_prog_get_info_by_fd"))
433 		return 0;
434 
435 	return info.id;
436 }
437 
438 static void test_sockmap_progs_query(enum bpf_attach_type attach_type)
439 {
440 	struct test_sockmap_progs_query *skel;
441 	int err, map_fd, verdict_fd;
442 	__u32 attach_flags = 0;
443 	__u32 prog_ids[3] = {};
444 	__u32 prog_cnt = 3;
445 
446 	skel = test_sockmap_progs_query__open_and_load();
447 	if (!ASSERT_OK_PTR(skel, "test_sockmap_progs_query__open_and_load"))
448 		return;
449 
450 	map_fd = bpf_map__fd(skel->maps.sock_map);
451 
452 	if (attach_type == BPF_SK_MSG_VERDICT)
453 		verdict_fd = bpf_program__fd(skel->progs.prog_skmsg_verdict);
454 	else
455 		verdict_fd = bpf_program__fd(skel->progs.prog_skb_verdict);
456 
457 	err = bpf_prog_query(map_fd, attach_type, 0 /* query flags */,
458 			     &attach_flags, prog_ids, &prog_cnt);
459 	ASSERT_OK(err, "bpf_prog_query failed");
460 	ASSERT_EQ(attach_flags,  0, "wrong attach_flags on query");
461 	ASSERT_EQ(prog_cnt, 0, "wrong program count on query");
462 
463 	err = bpf_prog_attach(verdict_fd, map_fd, attach_type, 0);
464 	if (!ASSERT_OK(err, "bpf_prog_attach failed"))
465 		goto out;
466 
467 	prog_cnt = 1;
468 	err = bpf_prog_query(map_fd, attach_type, 0 /* query flags */,
469 			     &attach_flags, prog_ids, &prog_cnt);
470 	ASSERT_OK(err, "bpf_prog_query failed");
471 	ASSERT_EQ(attach_flags, 0, "wrong attach_flags on query");
472 	ASSERT_EQ(prog_cnt, 1, "wrong program count on query");
473 	ASSERT_EQ(prog_ids[0], query_prog_id(verdict_fd),
474 		  "wrong prog_ids on query");
475 
476 	bpf_prog_detach2(verdict_fd, map_fd, attach_type);
477 out:
478 	test_sockmap_progs_query__destroy(skel);
479 }
480 
481 #define MAX_EVENTS 10
482 static void test_sockmap_skb_verdict_shutdown(void)
483 {
484 	int n, err, map, verdict, c1 = -1, p1 = -1;
485 	struct epoll_event ev, events[MAX_EVENTS];
486 	struct test_sockmap_pass_prog *skel;
487 	int zero = 0;
488 	int epollfd;
489 	char b;
490 
491 	skel = test_sockmap_pass_prog__open_and_load();
492 	if (!ASSERT_OK_PTR(skel, "open_and_load"))
493 		return;
494 
495 	verdict = bpf_program__fd(skel->progs.prog_skb_verdict);
496 	map = bpf_map__fd(skel->maps.sock_map_rx);
497 
498 	err = bpf_prog_attach(verdict, map, BPF_SK_SKB_STREAM_VERDICT, 0);
499 	if (!ASSERT_OK(err, "bpf_prog_attach"))
500 		goto out;
501 
502 	err = create_pair(AF_INET, SOCK_STREAM, &c1, &p1);
503 	if (err < 0)
504 		goto out;
505 
506 	err = bpf_map_update_elem(map, &zero, &c1, BPF_NOEXIST);
507 	if (err < 0)
508 		goto out_close;
509 
510 	shutdown(p1, SHUT_WR);
511 
512 	ev.events = EPOLLIN;
513 	ev.data.fd = c1;
514 
515 	epollfd = epoll_create1(0);
516 	if (!ASSERT_GT(epollfd, -1, "epoll_create(0)"))
517 		goto out_close;
518 	err = epoll_ctl(epollfd, EPOLL_CTL_ADD, c1, &ev);
519 	if (!ASSERT_OK(err, "epoll_ctl(EPOLL_CTL_ADD)"))
520 		goto out_close;
521 	err = epoll_wait(epollfd, events, MAX_EVENTS, -1);
522 	if (!ASSERT_EQ(err, 1, "epoll_wait(fd)"))
523 		goto out_close;
524 
525 	n = recv(c1, &b, 1, MSG_DONTWAIT);
526 	ASSERT_EQ(n, 0, "recv(fin)");
527 out_close:
528 	close(c1);
529 	close(p1);
530 out:
531 	test_sockmap_pass_prog__destroy(skel);
532 }
533 
534 
535 static void test_sockmap_skb_verdict_fionread(bool pass_prog)
536 {
537 	int err, map, verdict, c0 = -1, c1 = -1, p0 = -1, p1 = -1;
538 	int expected, zero = 0, sent, recvd, avail;
539 	struct test_sockmap_pass_prog *pass = NULL;
540 	struct test_sockmap_drop_prog *drop = NULL;
541 	char buf[256] = "0123456789";
542 
543 	if (pass_prog) {
544 		pass = test_sockmap_pass_prog__open_and_load();
545 		if (!ASSERT_OK_PTR(pass, "open_and_load"))
546 			return;
547 		verdict = bpf_program__fd(pass->progs.prog_skb_verdict);
548 		map = bpf_map__fd(pass->maps.sock_map_rx);
549 		expected = sizeof(buf);
550 	} else {
551 		drop = test_sockmap_drop_prog__open_and_load();
552 		if (!ASSERT_OK_PTR(drop, "open_and_load"))
553 			return;
554 		verdict = bpf_program__fd(drop->progs.prog_skb_verdict);
555 		map = bpf_map__fd(drop->maps.sock_map_rx);
556 		/* On drop data is consumed immediately and copied_seq inc'd */
557 		expected = 0;
558 	}
559 
560 
561 	err = bpf_prog_attach(verdict, map, BPF_SK_SKB_STREAM_VERDICT, 0);
562 	if (!ASSERT_OK(err, "bpf_prog_attach"))
563 		goto out;
564 
565 	err = create_socket_pairs(AF_INET, SOCK_STREAM, &c0, &c1, &p0, &p1);
566 	if (!ASSERT_OK(err, "create_socket_pairs()"))
567 		goto out;
568 
569 	err = bpf_map_update_elem(map, &zero, &c1, BPF_NOEXIST);
570 	if (!ASSERT_OK(err, "bpf_map_update_elem(c1)"))
571 		goto out_close;
572 
573 	sent = xsend(p1, &buf, sizeof(buf), 0);
574 	ASSERT_EQ(sent, sizeof(buf), "xsend(p0)");
575 	err = ioctl(c1, FIONREAD, &avail);
576 	ASSERT_OK(err, "ioctl(FIONREAD) error");
577 	ASSERT_EQ(avail, expected, "ioctl(FIONREAD)");
578 	/* On DROP test there will be no data to read */
579 	if (pass_prog) {
580 		recvd = recv_timeout(c1, &buf, sizeof(buf), MSG_DONTWAIT, IO_TIMEOUT_SEC);
581 		ASSERT_EQ(recvd, sizeof(buf), "recv_timeout(c0)");
582 	}
583 
584 out_close:
585 	close(c0);
586 	close(p0);
587 	close(c1);
588 	close(p1);
589 out:
590 	if (pass_prog)
591 		test_sockmap_pass_prog__destroy(pass);
592 	else
593 		test_sockmap_drop_prog__destroy(drop);
594 }
595 
596 static void test_sockmap_skb_verdict_change_tail(void)
597 {
598 	struct test_sockmap_change_tail *skel;
599 	int err, map, verdict;
600 	int c1, p1, sent, recvd;
601 	int zero = 0;
602 	char buf[2];
603 
604 	skel = test_sockmap_change_tail__open_and_load();
605 	if (!ASSERT_OK_PTR(skel, "open_and_load"))
606 		return;
607 	verdict = bpf_program__fd(skel->progs.prog_skb_verdict);
608 	map = bpf_map__fd(skel->maps.sock_map_rx);
609 
610 	err = bpf_prog_attach(verdict, map, BPF_SK_SKB_STREAM_VERDICT, 0);
611 	if (!ASSERT_OK(err, "bpf_prog_attach"))
612 		goto out;
613 	err = create_pair(AF_INET, SOCK_STREAM, &c1, &p1);
614 	if (!ASSERT_OK(err, "create_pair()"))
615 		goto out;
616 	err = bpf_map_update_elem(map, &zero, &c1, BPF_NOEXIST);
617 	if (!ASSERT_OK(err, "bpf_map_update_elem(c1)"))
618 		goto out_close;
619 	sent = xsend(p1, "Tr", 2, 0);
620 	ASSERT_EQ(sent, 2, "xsend(p1)");
621 	recvd = recv(c1, buf, 2, 0);
622 	ASSERT_EQ(recvd, 1, "recv(c1)");
623 	ASSERT_EQ(skel->data->change_tail_ret, 0, "change_tail_ret");
624 
625 	sent = xsend(p1, "G", 1, 0);
626 	ASSERT_EQ(sent, 1, "xsend(p1)");
627 	recvd = recv(c1, buf, 2, 0);
628 	ASSERT_EQ(recvd, 2, "recv(c1)");
629 	ASSERT_EQ(skel->data->change_tail_ret, 0, "change_tail_ret");
630 
631 	sent = xsend(p1, "E", 1, 0);
632 	ASSERT_EQ(sent, 1, "xsend(p1)");
633 	recvd = recv(c1, buf, 1, 0);
634 	ASSERT_EQ(recvd, 1, "recv(c1)");
635 	ASSERT_EQ(skel->data->change_tail_ret, -EINVAL, "change_tail_ret");
636 
637 out_close:
638 	close(c1);
639 	close(p1);
640 out:
641 	test_sockmap_change_tail__destroy(skel);
642 }
643 
644 static void test_sockmap_skb_verdict_peek_helper(int map)
645 {
646 	int err, c1, p1, zero = 0, sent, recvd, avail;
647 	char snd[256] = "0123456789";
648 	char rcv[256] = "0";
649 
650 	err = create_pair(AF_INET, SOCK_STREAM, &c1, &p1);
651 	if (!ASSERT_OK(err, "create_pair()"))
652 		return;
653 
654 	err = bpf_map_update_elem(map, &zero, &c1, BPF_NOEXIST);
655 	if (!ASSERT_OK(err, "bpf_map_update_elem(c1)"))
656 		goto out_close;
657 
658 	sent = xsend(p1, snd, sizeof(snd), 0);
659 	ASSERT_EQ(sent, sizeof(snd), "xsend(p1)");
660 	recvd = recv(c1, rcv, sizeof(rcv), MSG_PEEK);
661 	ASSERT_EQ(recvd, sizeof(rcv), "recv(c1)");
662 	err = ioctl(c1, FIONREAD, &avail);
663 	ASSERT_OK(err, "ioctl(FIONREAD) error");
664 	ASSERT_EQ(avail, sizeof(snd), "after peek ioctl(FIONREAD)");
665 	recvd = recv(c1, rcv, sizeof(rcv), 0);
666 	ASSERT_EQ(recvd, sizeof(rcv), "recv(p0)");
667 	err = ioctl(c1, FIONREAD, &avail);
668 	ASSERT_OK(err, "ioctl(FIONREAD) error");
669 	ASSERT_EQ(avail, 0, "after read ioctl(FIONREAD)");
670 
671 out_close:
672 	close(c1);
673 	close(p1);
674 }
675 
676 static void test_sockmap_skb_verdict_peek(void)
677 {
678 	struct test_sockmap_pass_prog *pass;
679 	int err, map, verdict;
680 
681 	pass = test_sockmap_pass_prog__open_and_load();
682 	if (!ASSERT_OK_PTR(pass, "open_and_load"))
683 		return;
684 	verdict = bpf_program__fd(pass->progs.prog_skb_verdict);
685 	map = bpf_map__fd(pass->maps.sock_map_rx);
686 
687 	err = bpf_prog_attach(verdict, map, BPF_SK_SKB_STREAM_VERDICT, 0);
688 	if (!ASSERT_OK(err, "bpf_prog_attach"))
689 		goto out;
690 
691 	test_sockmap_skb_verdict_peek_helper(map);
692 
693 out:
694 	test_sockmap_pass_prog__destroy(pass);
695 }
696 
697 static void test_sockmap_skb_verdict_peek_with_link(void)
698 {
699 	struct test_sockmap_pass_prog *pass;
700 	struct bpf_program *prog;
701 	struct bpf_link *link;
702 	int err, map;
703 
704 	pass = test_sockmap_pass_prog__open_and_load();
705 	if (!ASSERT_OK_PTR(pass, "open_and_load"))
706 		return;
707 	prog = pass->progs.prog_skb_verdict;
708 	map = bpf_map__fd(pass->maps.sock_map_rx);
709 	link = bpf_program__attach_sockmap(prog, map);
710 	if (!ASSERT_OK_PTR(link, "bpf_program__attach_sockmap"))
711 		goto out;
712 
713 	err = bpf_link__update_program(link, pass->progs.prog_skb_verdict_clone);
714 	if (!ASSERT_OK(err, "bpf_link__update_program"))
715 		goto out;
716 
717 	/* Fail since a prog with different attach type attempts to do update. */
718 	err = bpf_link__update_program(link, pass->progs.prog_skb_parser);
719 	if (!ASSERT_ERR(err, "bpf_link__update_program"))
720 		goto out;
721 
722 	test_sockmap_skb_verdict_peek_helper(map);
723 	ASSERT_EQ(pass->bss->clone_called, 1, "clone_called");
724 out:
725 	bpf_link__detach(link);
726 	test_sockmap_pass_prog__destroy(pass);
727 }
728 
729 static void test_sockmap_unconnected_unix(void)
730 {
731 	int err, map, stream = 0, dgram = 0, zero = 0;
732 	struct test_sockmap_pass_prog *skel;
733 
734 	skel = test_sockmap_pass_prog__open_and_load();
735 	if (!ASSERT_OK_PTR(skel, "open_and_load"))
736 		return;
737 
738 	map = bpf_map__fd(skel->maps.sock_map_rx);
739 
740 	stream = xsocket(AF_UNIX, SOCK_STREAM, 0);
741 	if (stream < 0)
742 		return;
743 
744 	dgram = xsocket(AF_UNIX, SOCK_DGRAM, 0);
745 	if (dgram < 0) {
746 		close(stream);
747 		return;
748 	}
749 
750 	err = bpf_map_update_elem(map, &zero, &stream, BPF_ANY);
751 	ASSERT_ERR(err, "bpf_map_update_elem(stream)");
752 
753 	err = bpf_map_update_elem(map, &zero, &dgram, BPF_ANY);
754 	ASSERT_OK(err, "bpf_map_update_elem(dgram)");
755 
756 	close(stream);
757 	close(dgram);
758 }
759 
760 static void test_sockmap_many_socket(void)
761 {
762 	struct test_sockmap_pass_prog *skel;
763 	int stream[2], dgram, udp, tcp;
764 	int i, err, map, entry = 0;
765 
766 	skel = test_sockmap_pass_prog__open_and_load();
767 	if (!ASSERT_OK_PTR(skel, "open_and_load"))
768 		return;
769 
770 	map = bpf_map__fd(skel->maps.sock_map_rx);
771 
772 	dgram = xsocket(AF_UNIX, SOCK_DGRAM, 0);
773 	if (dgram < 0) {
774 		test_sockmap_pass_prog__destroy(skel);
775 		return;
776 	}
777 
778 	tcp = connected_socket_v4();
779 	if (!ASSERT_GE(tcp, 0, "connected_socket_v4")) {
780 		close(dgram);
781 		test_sockmap_pass_prog__destroy(skel);
782 		return;
783 	}
784 
785 	udp = xsocket(AF_INET, SOCK_DGRAM | SOCK_NONBLOCK, 0);
786 	if (udp < 0) {
787 		close(dgram);
788 		close(tcp);
789 		test_sockmap_pass_prog__destroy(skel);
790 		return;
791 	}
792 
793 	err = socketpair(AF_UNIX, SOCK_STREAM, 0, stream);
794 	ASSERT_OK(err, "socketpair(af_unix, sock_stream)");
795 	if (err)
796 		goto out;
797 
798 	for (i = 0; i < 2; i++, entry++) {
799 		err = bpf_map_update_elem(map, &entry, &stream[0], BPF_ANY);
800 		ASSERT_OK(err, "bpf_map_update_elem(stream)");
801 	}
802 	for (i = 0; i < 2; i++, entry++) {
803 		err = bpf_map_update_elem(map, &entry, &dgram, BPF_ANY);
804 		ASSERT_OK(err, "bpf_map_update_elem(dgram)");
805 	}
806 	for (i = 0; i < 2; i++, entry++) {
807 		err = bpf_map_update_elem(map, &entry, &udp, BPF_ANY);
808 		ASSERT_OK(err, "bpf_map_update_elem(udp)");
809 	}
810 	for (i = 0; i < 2; i++, entry++) {
811 		err = bpf_map_update_elem(map, &entry, &tcp, BPF_ANY);
812 		ASSERT_OK(err, "bpf_map_update_elem(tcp)");
813 	}
814 	for (entry--; entry >= 0; entry--) {
815 		err = bpf_map_delete_elem(map, &entry);
816 		ASSERT_OK(err, "bpf_map_delete_elem(entry)");
817 	}
818 
819 	close(stream[0]);
820 	close(stream[1]);
821 out:
822 	close(dgram);
823 	close(tcp);
824 	close(udp);
825 	test_sockmap_pass_prog__destroy(skel);
826 }
827 
828 static void test_sockmap_many_maps(void)
829 {
830 	struct test_sockmap_pass_prog *skel;
831 	int stream[2], dgram, udp, tcp;
832 	int i, err, map[2], entry = 0;
833 
834 	skel = test_sockmap_pass_prog__open_and_load();
835 	if (!ASSERT_OK_PTR(skel, "open_and_load"))
836 		return;
837 
838 	map[0] = bpf_map__fd(skel->maps.sock_map_rx);
839 	map[1] = bpf_map__fd(skel->maps.sock_map_tx);
840 
841 	dgram = xsocket(AF_UNIX, SOCK_DGRAM, 0);
842 	if (dgram < 0) {
843 		test_sockmap_pass_prog__destroy(skel);
844 		return;
845 	}
846 
847 	tcp = connected_socket_v4();
848 	if (!ASSERT_GE(tcp, 0, "connected_socket_v4")) {
849 		close(dgram);
850 		test_sockmap_pass_prog__destroy(skel);
851 		return;
852 	}
853 
854 	udp = xsocket(AF_INET, SOCK_DGRAM | SOCK_NONBLOCK, 0);
855 	if (udp < 0) {
856 		close(dgram);
857 		close(tcp);
858 		test_sockmap_pass_prog__destroy(skel);
859 		return;
860 	}
861 
862 	err = socketpair(AF_UNIX, SOCK_STREAM, 0, stream);
863 	ASSERT_OK(err, "socketpair(af_unix, sock_stream)");
864 	if (err)
865 		goto out;
866 
867 	for (i = 0; i < 2; i++, entry++) {
868 		err = bpf_map_update_elem(map[i], &entry, &stream[0], BPF_ANY);
869 		ASSERT_OK(err, "bpf_map_update_elem(stream)");
870 	}
871 	for (i = 0; i < 2; i++, entry++) {
872 		err = bpf_map_update_elem(map[i], &entry, &dgram, BPF_ANY);
873 		ASSERT_OK(err, "bpf_map_update_elem(dgram)");
874 	}
875 	for (i = 0; i < 2; i++, entry++) {
876 		err = bpf_map_update_elem(map[i], &entry, &udp, BPF_ANY);
877 		ASSERT_OK(err, "bpf_map_update_elem(udp)");
878 	}
879 	for (i = 0; i < 2; i++, entry++) {
880 		err = bpf_map_update_elem(map[i], &entry, &tcp, BPF_ANY);
881 		ASSERT_OK(err, "bpf_map_update_elem(tcp)");
882 	}
883 	for (entry--; entry >= 0; entry--) {
884 		err = bpf_map_delete_elem(map[1], &entry);
885 		entry--;
886 		ASSERT_OK(err, "bpf_map_delete_elem(entry)");
887 		err = bpf_map_delete_elem(map[0], &entry);
888 		ASSERT_OK(err, "bpf_map_delete_elem(entry)");
889 	}
890 
891 	close(stream[0]);
892 	close(stream[1]);
893 out:
894 	close(dgram);
895 	close(tcp);
896 	close(udp);
897 	test_sockmap_pass_prog__destroy(skel);
898 }
899 
900 static void test_sockmap_same_sock(void)
901 {
902 	struct test_sockmap_pass_prog *skel;
903 	int stream[2], dgram, udp, tcp;
904 	int i, err, map, zero = 0;
905 
906 	skel = test_sockmap_pass_prog__open_and_load();
907 	if (!ASSERT_OK_PTR(skel, "open_and_load"))
908 		return;
909 
910 	map = bpf_map__fd(skel->maps.sock_map_rx);
911 
912 	dgram = xsocket(AF_UNIX, SOCK_DGRAM, 0);
913 	if (dgram < 0) {
914 		test_sockmap_pass_prog__destroy(skel);
915 		return;
916 	}
917 
918 	tcp = connected_socket_v4();
919 	if (!ASSERT_GE(tcp, 0, "connected_socket_v4")) {
920 		close(dgram);
921 		test_sockmap_pass_prog__destroy(skel);
922 		return;
923 	}
924 
925 	udp = xsocket(AF_INET, SOCK_DGRAM | SOCK_NONBLOCK, 0);
926 	if (udp < 0) {
927 		close(dgram);
928 		close(tcp);
929 		test_sockmap_pass_prog__destroy(skel);
930 		return;
931 	}
932 
933 	err = socketpair(AF_UNIX, SOCK_STREAM, 0, stream);
934 	ASSERT_OK(err, "socketpair(af_unix, sock_stream)");
935 	if (err) {
936 		close(tcp);
937 		goto out;
938 	}
939 
940 	for (i = 0; i < 2; i++) {
941 		err = bpf_map_update_elem(map, &zero, &stream[0], BPF_ANY);
942 		ASSERT_OK(err, "bpf_map_update_elem(stream)");
943 	}
944 	for (i = 0; i < 2; i++) {
945 		err = bpf_map_update_elem(map, &zero, &dgram, BPF_ANY);
946 		ASSERT_OK(err, "bpf_map_update_elem(dgram)");
947 	}
948 	for (i = 0; i < 2; i++) {
949 		err = bpf_map_update_elem(map, &zero, &udp, BPF_ANY);
950 		ASSERT_OK(err, "bpf_map_update_elem(udp)");
951 	}
952 	for (i = 0; i < 2; i++) {
953 		err = bpf_map_update_elem(map, &zero, &tcp, BPF_ANY);
954 		ASSERT_OK(err, "bpf_map_update_elem(tcp)");
955 	}
956 
957 	close(tcp);
958 	err = bpf_map_delete_elem(map, &zero);
959 	ASSERT_ERR(err, "bpf_map_delete_elem(entry)");
960 
961 	close(stream[0]);
962 	close(stream[1]);
963 out:
964 	close(dgram);
965 	close(udp);
966 	test_sockmap_pass_prog__destroy(skel);
967 }
968 
969 static void test_sockmap_skb_verdict_vsock_poll(void)
970 {
971 	struct test_sockmap_pass_prog *skel;
972 	int err, map, conn, peer;
973 	struct bpf_program *prog;
974 	struct bpf_link *link;
975 	char buf = 'x';
976 	int zero = 0;
977 
978 	skel = test_sockmap_pass_prog__open_and_load();
979 	if (!ASSERT_OK_PTR(skel, "open_and_load"))
980 		return;
981 
982 	if (create_pair(AF_VSOCK, SOCK_STREAM, &conn, &peer))
983 		goto destroy;
984 
985 	prog = skel->progs.prog_skb_verdict;
986 	map = bpf_map__fd(skel->maps.sock_map_rx);
987 	link = bpf_program__attach_sockmap(prog, map);
988 	if (!ASSERT_OK_PTR(link, "bpf_program__attach_sockmap"))
989 		goto close;
990 
991 	err = bpf_map_update_elem(map, &zero, &conn, BPF_ANY);
992 	if (!ASSERT_OK(err, "bpf_map_update_elem"))
993 		goto detach;
994 
995 	if (xsend(peer, &buf, 1, 0) != 1)
996 		goto detach;
997 
998 	err = poll_read(conn, IO_TIMEOUT_SEC);
999 	if (!ASSERT_OK(err, "poll"))
1000 		goto detach;
1001 
1002 	if (xrecv_nonblock(conn, &buf, 1, 0) != 1)
1003 		FAIL("xrecv_nonblock");
1004 detach:
1005 	bpf_link__detach(link);
1006 close:
1007 	xclose(conn);
1008 	xclose(peer);
1009 destroy:
1010 	test_sockmap_pass_prog__destroy(skel);
1011 }
1012 
1013 void test_sockmap_basic(void)
1014 {
1015 	if (test__start_subtest("sockmap create_update_free"))
1016 		test_sockmap_create_update_free(BPF_MAP_TYPE_SOCKMAP);
1017 	if (test__start_subtest("sockhash create_update_free"))
1018 		test_sockmap_create_update_free(BPF_MAP_TYPE_SOCKHASH);
1019 	if (test__start_subtest("sockmap vsock delete on close"))
1020 		test_sockmap_vsock_delete_on_close();
1021 	if (test__start_subtest("sockmap sk_msg load helpers"))
1022 		test_skmsg_helpers(BPF_MAP_TYPE_SOCKMAP);
1023 	if (test__start_subtest("sockhash sk_msg load helpers"))
1024 		test_skmsg_helpers(BPF_MAP_TYPE_SOCKHASH);
1025 	if (test__start_subtest("sockmap update"))
1026 		test_sockmap_update(BPF_MAP_TYPE_SOCKMAP);
1027 	if (test__start_subtest("sockhash update"))
1028 		test_sockmap_update(BPF_MAP_TYPE_SOCKHASH);
1029 	if (test__start_subtest("sockmap update in unsafe context"))
1030 		test_sockmap_invalid_update();
1031 	if (test__start_subtest("sockmap copy"))
1032 		test_sockmap_copy(BPF_MAP_TYPE_SOCKMAP);
1033 	if (test__start_subtest("sockhash copy"))
1034 		test_sockmap_copy(BPF_MAP_TYPE_SOCKHASH);
1035 	if (test__start_subtest("sockmap skb_verdict attach")) {
1036 		test_sockmap_skb_verdict_attach(BPF_SK_SKB_VERDICT,
1037 						BPF_SK_SKB_STREAM_VERDICT);
1038 		test_sockmap_skb_verdict_attach(BPF_SK_SKB_STREAM_VERDICT,
1039 						BPF_SK_SKB_VERDICT);
1040 	}
1041 	if (test__start_subtest("sockmap skb_verdict attach_with_link"))
1042 		test_sockmap_skb_verdict_attach_with_link();
1043 	if (test__start_subtest("sockmap msg_verdict progs query"))
1044 		test_sockmap_progs_query(BPF_SK_MSG_VERDICT);
1045 	if (test__start_subtest("sockmap stream_parser progs query"))
1046 		test_sockmap_progs_query(BPF_SK_SKB_STREAM_PARSER);
1047 	if (test__start_subtest("sockmap stream_verdict progs query"))
1048 		test_sockmap_progs_query(BPF_SK_SKB_STREAM_VERDICT);
1049 	if (test__start_subtest("sockmap skb_verdict progs query"))
1050 		test_sockmap_progs_query(BPF_SK_SKB_VERDICT);
1051 	if (test__start_subtest("sockmap skb_verdict shutdown"))
1052 		test_sockmap_skb_verdict_shutdown();
1053 	if (test__start_subtest("sockmap skb_verdict fionread"))
1054 		test_sockmap_skb_verdict_fionread(true);
1055 	if (test__start_subtest("sockmap skb_verdict fionread on drop"))
1056 		test_sockmap_skb_verdict_fionread(false);
1057 	if (test__start_subtest("sockmap skb_verdict change tail"))
1058 		test_sockmap_skb_verdict_change_tail();
1059 	if (test__start_subtest("sockmap skb_verdict msg_f_peek"))
1060 		test_sockmap_skb_verdict_peek();
1061 	if (test__start_subtest("sockmap skb_verdict msg_f_peek with link"))
1062 		test_sockmap_skb_verdict_peek_with_link();
1063 	if (test__start_subtest("sockmap unconnected af_unix"))
1064 		test_sockmap_unconnected_unix();
1065 	if (test__start_subtest("sockmap one socket to many map entries"))
1066 		test_sockmap_many_socket();
1067 	if (test__start_subtest("sockmap one socket to many maps"))
1068 		test_sockmap_many_maps();
1069 	if (test__start_subtest("sockmap same socket replace"))
1070 		test_sockmap_same_sock();
1071 	if (test__start_subtest("sockmap sk_msg attach sockmap helpers with link"))
1072 		test_skmsg_helpers_with_link(BPF_MAP_TYPE_SOCKMAP);
1073 	if (test__start_subtest("sockhash sk_msg attach sockhash helpers with link"))
1074 		test_skmsg_helpers_with_link(BPF_MAP_TYPE_SOCKHASH);
1075 	if (test__start_subtest("sockmap skb_verdict vsock poll"))
1076 		test_sockmap_skb_verdict_vsock_poll();
1077 }
1078