2 * INET An implementation of the TCP/IP protocol suite for the LINUX
3 * operating system. INET is implemented using the BSD Socket
4 * interface as the means of communication with the user level.
6 * RAW - implementation of IP "raw" sockets.
8 * Version: $Id: raw.c,v 1.64 2002/02/01 22:01:04 davem Exp $
11 * Fred N. van Kempen, <waltje@uWalt.NL.Mugnet.ORG>
14 * Alan Cox : verify_area() fixed up
15 * Alan Cox : ICMP error handling
16 * Alan Cox : EMSGSIZE if you send too big a packet
17 * Alan Cox : Now uses generic datagrams and shared
18 * skbuff library. No more peek crashes,
20 * Alan Cox : Checks sk->broadcast.
21 * Alan Cox : Uses skb_free_datagram/skb_copy_datagram
22 * Alan Cox : Raw passes ip options too
23 * Alan Cox : Setsocketopt added
24 * Alan Cox : Fixed error return for broadcasts
25 * Alan Cox : Removed wake_up calls
26 * Alan Cox : Use ttl/tos
27 * Alan Cox : Cleaned up old debugging
28 * Alan Cox : Use new kernel side addresses
29 * Arnt Gulbrandsen : Fixed MSG_DONTROUTE in raw sockets.
30 * Alan Cox : BSD style RAW socket demultiplexing.
31 * Alan Cox : Beginnings of mrouted support.
32 * Alan Cox : Added IP_HDRINCL option.
33 * Alan Cox : Skip broadcast check if BSDism set.
34 * David S. Miller : New socket lookup architecture.
36 * This program is free software; you can redistribute it and/or
37 * modify it under the terms of the GNU General Public License
38 * as published by the Free Software Foundation; either version
39 * 2 of the License, or (at your option) any later version.
42 #include <linux/types.h>
43 #include <asm/atomic.h>
44 #include <asm/byteorder.h>
45 #include <asm/current.h>
46 #include <asm/uaccess.h>
47 #include <asm/ioctls.h>
48 #include <linux/stddef.h>
49 #include <linux/slab.h>
50 #include <linux/errno.h>
51 #include <linux/aio.h>
52 #include <linux/kernel.h>
53 #include <linux/spinlock.h>
54 #include <linux/sockios.h>
55 #include <linux/socket.h>
57 #include <linux/mroute.h>
58 #include <linux/netdevice.h>
59 #include <linux/in_route.h>
60 #include <linux/route.h>
61 #include <linux/skbuff.h>
64 #include <linux/gfp.h>
66 #include <linux/net.h>
72 #include <net/tcp_states.h>
73 #include <net/inet_common.h>
74 #include <net/checksum.h>
76 #include <linux/rtnetlink.h>
77 #include <linux/proc_fs.h>
78 #include <linux/seq_file.h>
79 #include <linux/netfilter.h>
80 #include <linux/netfilter_ipv4.h>
82 struct hlist_head raw_v4_htable
[RAWV4_HTABLE_SIZE
];
83 DEFINE_RWLOCK(raw_v4_lock
);
85 static void raw_v4_hash(struct sock
*sk
)
87 struct hlist_head
*head
= &raw_v4_htable
[inet_sk(sk
)->num
&
88 (RAWV4_HTABLE_SIZE
- 1)];
90 write_lock_bh(&raw_v4_lock
);
91 sk_add_node(sk
, head
);
92 sock_prot_inc_use(sk
->sk_prot
);
93 write_unlock_bh(&raw_v4_lock
);
96 static void raw_v4_unhash(struct sock
*sk
)
98 write_lock_bh(&raw_v4_lock
);
99 if (sk_del_node_init(sk
))
100 sock_prot_dec_use(sk
->sk_prot
);
101 write_unlock_bh(&raw_v4_lock
);
104 struct sock
*__raw_v4_lookup(struct sock
*sk
, unsigned short num
,
105 __be32 raddr
, __be32 laddr
,
108 struct hlist_node
*node
;
110 sk_for_each_from(sk
, node
) {
111 struct inet_sock
*inet
= inet_sk(sk
);
113 if (inet
->num
== num
&&
114 !(inet
->daddr
&& inet
->daddr
!= raddr
) &&
115 !(inet
->rcv_saddr
&& inet
->rcv_saddr
!= laddr
) &&
116 !(sk
->sk_bound_dev_if
&& sk
->sk_bound_dev_if
!= dif
))
117 goto found
; /* gotcha */
128 static __inline__
int icmp_filter(struct sock
*sk
, struct sk_buff
*skb
)
132 if (!pskb_may_pull(skb
, sizeof(struct icmphdr
)))
135 type
= icmp_hdr(skb
)->type
;
137 __u32 data
= raw_sk(sk
)->filter
.data
;
139 return ((1 << type
) & data
) != 0;
142 /* Do not block unknown ICMP types */
146 /* IP input processing comes here for RAW socket delivery.
147 * Caller owns SKB, so we must make clones.
149 * RFC 1122: SHOULD pass TOS value up to the transport layer.
150 * -> It does. And not only TOS, but all IP header.
152 int raw_v4_input(struct sk_buff
*skb
, struct iphdr
*iph
, int hash
)
155 struct hlist_head
*head
;
158 read_lock(&raw_v4_lock
);
159 head
= &raw_v4_htable
[hash
];
160 if (hlist_empty(head
))
162 sk
= __raw_v4_lookup(__sk_head(head
), iph
->protocol
,
163 iph
->saddr
, iph
->daddr
,
168 if (iph
->protocol
!= IPPROTO_ICMP
|| !icmp_filter(sk
, skb
)) {
169 struct sk_buff
*clone
= skb_clone(skb
, GFP_ATOMIC
);
171 /* Not releasing hash table! */
175 sk
= __raw_v4_lookup(sk_next(sk
), iph
->protocol
,
176 iph
->saddr
, iph
->daddr
,
180 read_unlock(&raw_v4_lock
);
184 void raw_err (struct sock
*sk
, struct sk_buff
*skb
, u32 info
)
186 struct inet_sock
*inet
= inet_sk(sk
);
187 const int type
= icmp_hdr(skb
)->type
;
188 const int code
= icmp_hdr(skb
)->code
;
192 /* Report error on raw socket, if:
193 1. User requested ip_recverr.
194 2. Socket is connected (otherwise the error indication
195 is useless without ip_recverr and error is hard.
197 if (!inet
->recverr
&& sk
->sk_state
!= TCP_ESTABLISHED
)
202 case ICMP_TIME_EXCEEDED
:
205 case ICMP_SOURCE_QUENCH
:
207 case ICMP_PARAMETERPROB
:
211 case ICMP_DEST_UNREACH
:
213 if (code
> NR_ICMP_UNREACH
)
215 err
= icmp_err_convert
[code
].errno
;
216 harderr
= icmp_err_convert
[code
].fatal
;
217 if (code
== ICMP_FRAG_NEEDED
) {
218 harderr
= inet
->pmtudisc
!= IP_PMTUDISC_DONT
;
224 struct iphdr
*iph
= (struct iphdr
*)skb
->data
;
225 u8
*payload
= skb
->data
+ (iph
->ihl
<< 2);
229 ip_icmp_error(sk
, skb
, err
, 0, info
, payload
);
232 if (inet
->recverr
|| harderr
) {
234 sk
->sk_error_report(sk
);
238 static int raw_rcv_skb(struct sock
* sk
, struct sk_buff
* skb
)
240 /* Charge it to the socket. */
242 if (sock_queue_rcv_skb(sk
, skb
) < 0) {
243 /* FIXME: increment a raw drops counter here */
248 return NET_RX_SUCCESS
;
251 int raw_rcv(struct sock
*sk
, struct sk_buff
*skb
)
253 if (!xfrm4_policy_check(sk
, XFRM_POLICY_IN
, skb
)) {
259 skb_push(skb
, skb
->data
- skb_network_header(skb
));
261 raw_rcv_skb(sk
, skb
);
265 static int raw_send_hdrinc(struct sock
*sk
, void *from
, size_t length
,
269 struct inet_sock
*inet
= inet_sk(sk
);
275 if (length
> rt
->u
.dst
.dev
->mtu
) {
276 ip_local_error(sk
, EMSGSIZE
, rt
->rt_dst
, inet
->dport
,
283 hh_len
= LL_RESERVED_SPACE(rt
->u
.dst
.dev
);
285 skb
= sock_alloc_send_skb(sk
, length
+hh_len
+15,
286 flags
&MSG_DONTWAIT
, &err
);
289 skb_reserve(skb
, hh_len
);
291 skb
->priority
= sk
->sk_priority
;
292 skb
->dst
= dst_clone(&rt
->u
.dst
);
294 skb_reset_network_header(skb
);
296 skb_put(skb
, length
);
298 skb
->ip_summed
= CHECKSUM_NONE
;
300 skb
->transport_header
= skb
->network_header
;
301 err
= memcpy_fromiovecend((void *)iph
, from
, 0, length
);
305 /* We don't modify invalid header */
306 if (length
>= sizeof(*iph
) && iph
->ihl
* 4U <= length
) {
308 iph
->saddr
= rt
->rt_src
;
310 iph
->tot_len
= htons(length
);
312 ip_select_ident(iph
, &rt
->u
.dst
, NULL
);
314 iph
->check
= ip_fast_csum((unsigned char *)iph
, iph
->ihl
);
317 err
= NF_HOOK(PF_INET
, NF_IP_LOCAL_OUT
, skb
, NULL
, rt
->u
.dst
.dev
,
320 err
= inet
->recverr
? net_xmit_errno(err
) : 0;
330 IP_INC_STATS(IPSTATS_MIB_OUTDISCARDS
);
334 static int raw_probe_proto_opt(struct flowi
*fl
, struct msghdr
*msg
)
337 u8 __user
*type
= NULL
;
338 u8 __user
*code
= NULL
;
345 for (i
= 0; i
< msg
->msg_iovlen
; i
++) {
346 iov
= &msg
->msg_iov
[i
];
352 /* check if one-byte field is readable or not. */
353 if (iov
->iov_base
&& iov
->iov_len
< 1)
357 type
= iov
->iov_base
;
358 /* check if code field is readable or not. */
359 if (iov
->iov_len
> 1)
362 code
= iov
->iov_base
;
365 if (get_user(fl
->fl_icmp_type
, type
) ||
366 get_user(fl
->fl_icmp_code
, code
))
381 static int raw_sendmsg(struct kiocb
*iocb
, struct sock
*sk
, struct msghdr
*msg
,
384 struct inet_sock
*inet
= inet_sk(sk
);
385 struct ipcm_cookie ipc
;
386 struct rtable
*rt
= NULL
;
402 if (msg
->msg_flags
& MSG_OOB
) /* Mirror BSD error message */
403 goto out
; /* compatibility */
406 * Get and verify the address.
409 if (msg
->msg_namelen
) {
410 struct sockaddr_in
*usin
= (struct sockaddr_in
*)msg
->msg_name
;
412 if (msg
->msg_namelen
< sizeof(*usin
))
414 if (usin
->sin_family
!= AF_INET
) {
415 static int complained
;
417 printk(KERN_INFO
"%s forgot to set AF_INET in "
418 "raw sendmsg. Fix it!\n",
421 if (usin
->sin_family
)
424 daddr
= usin
->sin_addr
.s_addr
;
425 /* ANK: I did not forget to get protocol from port field.
426 * I just do not know, who uses this weirdness.
427 * IP_HDRINCL is much more convenient.
431 if (sk
->sk_state
!= TCP_ESTABLISHED
)
436 ipc
.addr
= inet
->saddr
;
438 ipc
.oif
= sk
->sk_bound_dev_if
;
440 if (msg
->msg_controllen
) {
441 err
= ip_cmsg_send(msg
, &ipc
);
456 /* Linux does not mangle headers on raw sockets,
457 * so that IP options + IP_HDRINCL is non-sense.
464 daddr
= ipc
.opt
->faddr
;
467 tos
= RT_CONN_FLAGS(sk
);
468 if (msg
->msg_flags
& MSG_DONTROUTE
)
471 if (MULTICAST(daddr
)) {
473 ipc
.oif
= inet
->mc_index
;
475 saddr
= inet
->mc_addr
;
479 struct flowi fl
= { .oif
= ipc
.oif
,
484 .proto
= inet
->hdrincl
? IPPROTO_RAW
:
487 if (!inet
->hdrincl
) {
488 err
= raw_probe_proto_opt(&fl
, msg
);
493 security_sk_classify_flow(sk
, &fl
);
494 err
= ip_route_output_flow(&rt
, &fl
, sk
, 1);
500 if (rt
->rt_flags
& RTCF_BROADCAST
&& !sock_flag(sk
, SOCK_BROADCAST
))
503 if (msg
->msg_flags
& MSG_CONFIRM
)
508 err
= raw_send_hdrinc(sk
, msg
->msg_iov
, len
,
513 ipc
.addr
= rt
->rt_dst
;
515 err
= ip_append_data(sk
, ip_generic_getfrag
, msg
->msg_iov
, len
, 0,
516 &ipc
, rt
, msg
->msg_flags
);
518 ip_flush_pending_frames(sk
);
519 else if (!(msg
->msg_flags
& MSG_MORE
))
520 err
= ip_push_pending_frames(sk
);
534 dst_confirm(&rt
->u
.dst
);
535 if (!(msg
->msg_flags
& MSG_PROBE
) || len
)
536 goto back_from_confirm
;
541 static void raw_close(struct sock
*sk
, long timeout
)
544 * Raw sockets may have direct kernel refereneces. Kill them.
546 ip_ra_control(sk
, 0, NULL
);
548 sk_common_release(sk
);
551 static int raw_destroy(struct sock
*sk
)
554 ip_flush_pending_frames(sk
);
559 /* This gets rid of all the nasties in af_inet. -DaveM */
560 static int raw_bind(struct sock
*sk
, struct sockaddr
*uaddr
, int addr_len
)
562 struct inet_sock
*inet
= inet_sk(sk
);
563 struct sockaddr_in
*addr
= (struct sockaddr_in
*) uaddr
;
567 if (sk
->sk_state
!= TCP_CLOSE
|| addr_len
< sizeof(struct sockaddr_in
))
569 chk_addr_ret
= inet_addr_type(addr
->sin_addr
.s_addr
);
570 ret
= -EADDRNOTAVAIL
;
571 if (addr
->sin_addr
.s_addr
&& chk_addr_ret
!= RTN_LOCAL
&&
572 chk_addr_ret
!= RTN_MULTICAST
&& chk_addr_ret
!= RTN_BROADCAST
)
574 inet
->rcv_saddr
= inet
->saddr
= addr
->sin_addr
.s_addr
;
575 if (chk_addr_ret
== RTN_MULTICAST
|| chk_addr_ret
== RTN_BROADCAST
)
576 inet
->saddr
= 0; /* Use device */
583 * This should be easy, if there is something there
584 * we return it, otherwise we block.
587 static int raw_recvmsg(struct kiocb
*iocb
, struct sock
*sk
, struct msghdr
*msg
,
588 size_t len
, int noblock
, int flags
, int *addr_len
)
590 struct inet_sock
*inet
= inet_sk(sk
);
592 int err
= -EOPNOTSUPP
;
593 struct sockaddr_in
*sin
= (struct sockaddr_in
*)msg
->msg_name
;
600 *addr_len
= sizeof(*sin
);
602 if (flags
& MSG_ERRQUEUE
) {
603 err
= ip_recv_error(sk
, msg
, len
);
607 skb
= skb_recv_datagram(sk
, flags
, noblock
, &err
);
613 msg
->msg_flags
|= MSG_TRUNC
;
617 err
= skb_copy_datagram_iovec(skb
, 0, msg
->msg_iov
, copied
);
621 sock_recv_timestamp(msg
, sk
, skb
);
623 /* Copy the address. */
625 sin
->sin_family
= AF_INET
;
626 sin
->sin_addr
.s_addr
= ip_hdr(skb
)->saddr
;
628 memset(&sin
->sin_zero
, 0, sizeof(sin
->sin_zero
));
630 if (inet
->cmsg_flags
)
631 ip_cmsg_recv(msg
, skb
);
632 if (flags
& MSG_TRUNC
)
635 skb_free_datagram(sk
, skb
);
642 static int raw_init(struct sock
*sk
)
644 struct raw_sock
*rp
= raw_sk(sk
);
646 if (inet_sk(sk
)->num
== IPPROTO_ICMP
)
647 memset(&rp
->filter
, 0, sizeof(rp
->filter
));
651 static int raw_seticmpfilter(struct sock
*sk
, char __user
*optval
, int optlen
)
653 if (optlen
> sizeof(struct icmp_filter
))
654 optlen
= sizeof(struct icmp_filter
);
655 if (copy_from_user(&raw_sk(sk
)->filter
, optval
, optlen
))
660 static int raw_geticmpfilter(struct sock
*sk
, char __user
*optval
, int __user
*optlen
)
662 int len
, ret
= -EFAULT
;
664 if (get_user(len
, optlen
))
669 if (len
> sizeof(struct icmp_filter
))
670 len
= sizeof(struct icmp_filter
);
672 if (put_user(len
, optlen
) ||
673 copy_to_user(optval
, &raw_sk(sk
)->filter
, len
))
679 static int do_raw_setsockopt(struct sock
*sk
, int level
, int optname
,
680 char __user
*optval
, int optlen
)
682 if (optname
== ICMP_FILTER
) {
683 if (inet_sk(sk
)->num
!= IPPROTO_ICMP
)
686 return raw_seticmpfilter(sk
, optval
, optlen
);
691 static int raw_setsockopt(struct sock
*sk
, int level
, int optname
,
692 char __user
*optval
, int optlen
)
694 if (level
!= SOL_RAW
)
695 return ip_setsockopt(sk
, level
, optname
, optval
, optlen
);
696 return do_raw_setsockopt(sk
, level
, optname
, optval
, optlen
);
700 static int compat_raw_setsockopt(struct sock
*sk
, int level
, int optname
,
701 char __user
*optval
, int optlen
)
703 if (level
!= SOL_RAW
)
704 return compat_ip_setsockopt(sk
, level
, optname
, optval
, optlen
);
705 return do_raw_setsockopt(sk
, level
, optname
, optval
, optlen
);
709 static int do_raw_getsockopt(struct sock
*sk
, int level
, int optname
,
710 char __user
*optval
, int __user
*optlen
)
712 if (optname
== ICMP_FILTER
) {
713 if (inet_sk(sk
)->num
!= IPPROTO_ICMP
)
716 return raw_geticmpfilter(sk
, optval
, optlen
);
721 static int raw_getsockopt(struct sock
*sk
, int level
, int optname
,
722 char __user
*optval
, int __user
*optlen
)
724 if (level
!= SOL_RAW
)
725 return ip_getsockopt(sk
, level
, optname
, optval
, optlen
);
726 return do_raw_getsockopt(sk
, level
, optname
, optval
, optlen
);
730 static int compat_raw_getsockopt(struct sock
*sk
, int level
, int optname
,
731 char __user
*optval
, int __user
*optlen
)
733 if (level
!= SOL_RAW
)
734 return compat_ip_getsockopt(sk
, level
, optname
, optval
, optlen
);
735 return do_raw_getsockopt(sk
, level
, optname
, optval
, optlen
);
739 static int raw_ioctl(struct sock
*sk
, int cmd
, unsigned long arg
)
743 int amount
= sk_wmem_alloc_get(sk
);
745 return put_user(amount
, (int __user
*)arg
);
751 spin_lock_bh(&sk
->sk_receive_queue
.lock
);
752 skb
= skb_peek(&sk
->sk_receive_queue
);
755 spin_unlock_bh(&sk
->sk_receive_queue
.lock
);
756 return put_user(amount
, (int __user
*)arg
);
760 #ifdef CONFIG_IP_MROUTE
761 return ipmr_ioctl(sk
, cmd
, (void __user
*)arg
);
768 struct proto raw_prot
= {
770 .owner
= THIS_MODULE
,
772 .destroy
= raw_destroy
,
773 .connect
= ip4_datagram_connect
,
774 .disconnect
= udp_disconnect
,
777 .setsockopt
= raw_setsockopt
,
778 .getsockopt
= raw_getsockopt
,
779 .sendmsg
= raw_sendmsg
,
780 .recvmsg
= raw_recvmsg
,
782 .backlog_rcv
= raw_rcv_skb
,
784 .unhash
= raw_v4_unhash
,
785 .obj_size
= sizeof(struct raw_sock
),
787 .compat_setsockopt
= compat_raw_setsockopt
,
788 .compat_getsockopt
= compat_raw_getsockopt
,
792 #ifdef CONFIG_PROC_FS
793 struct raw_iter_state
{
797 #define raw_seq_private(seq) ((struct raw_iter_state *)(seq)->private)
799 static struct sock
*raw_get_first(struct seq_file
*seq
)
802 struct raw_iter_state
* state
= raw_seq_private(seq
);
804 for (state
->bucket
= 0; state
->bucket
< RAWV4_HTABLE_SIZE
; ++state
->bucket
) {
805 struct hlist_node
*node
;
807 sk_for_each(sk
, node
, &raw_v4_htable
[state
->bucket
])
808 if (sk
->sk_family
== PF_INET
)
816 static struct sock
*raw_get_next(struct seq_file
*seq
, struct sock
*sk
)
818 struct raw_iter_state
* state
= raw_seq_private(seq
);
824 } while (sk
&& sk
->sk_family
!= PF_INET
);
826 if (!sk
&& ++state
->bucket
< RAWV4_HTABLE_SIZE
) {
827 sk
= sk_head(&raw_v4_htable
[state
->bucket
]);
833 static struct sock
*raw_get_idx(struct seq_file
*seq
, loff_t pos
)
835 struct sock
*sk
= raw_get_first(seq
);
838 while (pos
&& (sk
= raw_get_next(seq
, sk
)) != NULL
)
840 return pos
? NULL
: sk
;
843 static void *raw_seq_start(struct seq_file
*seq
, loff_t
*pos
)
845 read_lock(&raw_v4_lock
);
846 return *pos
? raw_get_idx(seq
, *pos
- 1) : SEQ_START_TOKEN
;
849 static void *raw_seq_next(struct seq_file
*seq
, void *v
, loff_t
*pos
)
853 if (v
== SEQ_START_TOKEN
)
854 sk
= raw_get_first(seq
);
856 sk
= raw_get_next(seq
, v
);
861 static void raw_seq_stop(struct seq_file
*seq
, void *v
)
863 read_unlock(&raw_v4_lock
);
866 static __inline__
char *get_raw_sock(struct sock
*sp
, char *tmpbuf
, int i
)
868 struct inet_sock
*inet
= inet_sk(sp
);
869 __be32 dest
= inet
->daddr
,
870 src
= inet
->rcv_saddr
;
874 sprintf(tmpbuf
, "%4d: %08X:%04X %08X:%04X"
875 " %02X %08X:%08X %02X:%08lX %08X %5d %8d %lu %d %p",
876 i
, src
, srcp
, dest
, destp
, sp
->sk_state
,
877 sk_wmem_alloc_get(sp
),
878 sk_rmem_alloc_get(sp
),
879 0, 0L, 0, sock_i_uid(sp
), 0, sock_i_ino(sp
),
880 atomic_read(&sp
->sk_refcnt
), sp
);
884 static int raw_seq_show(struct seq_file
*seq
, void *v
)
888 if (v
== SEQ_START_TOKEN
)
889 seq_printf(seq
, "%-127s\n",
890 " sl local_address rem_address st tx_queue "
891 "rx_queue tr tm->when retrnsmt uid timeout "
894 struct raw_iter_state
*state
= raw_seq_private(seq
);
896 seq_printf(seq
, "%-127s\n",
897 get_raw_sock(v
, tmpbuf
, state
->bucket
));
902 static const struct seq_operations raw_seq_ops
= {
903 .start
= raw_seq_start
,
904 .next
= raw_seq_next
,
905 .stop
= raw_seq_stop
,
906 .show
= raw_seq_show
,
909 static int raw_seq_open(struct inode
*inode
, struct file
*file
)
911 return seq_open_private(file
, &raw_seq_ops
,
912 sizeof(struct raw_iter_state
));
915 static const struct file_operations raw_seq_fops
= {
916 .owner
= THIS_MODULE
,
917 .open
= raw_seq_open
,
920 .release
= seq_release_private
,
923 int __init
raw_proc_init(void)
925 if (!proc_net_fops_create("raw", S_IRUGO
, &raw_seq_fops
))
930 void __init
raw_proc_exit(void)
932 proc_net_remove("raw");
934 #endif /* CONFIG_PROC_FS */