2 * INET An implementation of the TCP/IP protocol suite for the LINUX
3 * operating system. INET is implemented using the BSD Socket
4 * interface as the means of communication with the user level.
6 * RAW - implementation of IP "raw" sockets.
8 * Version: $Id: raw.c,v 1.64 2002/02/01 22:01:04 davem Exp $
11 * Fred N. van Kempen, <waltje@uWalt.NL.Mugnet.ORG>
14 * Alan Cox : verify_area() fixed up
15 * Alan Cox : ICMP error handling
16 * Alan Cox : EMSGSIZE if you send too big a packet
17 * Alan Cox : Now uses generic datagrams and shared
18 * skbuff library. No more peek crashes,
20 * Alan Cox : Checks sk->broadcast.
21 * Alan Cox : Uses skb_free_datagram/skb_copy_datagram
22 * Alan Cox : Raw passes ip options too
23 * Alan Cox : Setsocketopt added
24 * Alan Cox : Fixed error return for broadcasts
25 * Alan Cox : Removed wake_up calls
26 * Alan Cox : Use ttl/tos
27 * Alan Cox : Cleaned up old debugging
28 * Alan Cox : Use new kernel side addresses
29 * Arnt Gulbrandsen : Fixed MSG_DONTROUTE in raw sockets.
30 * Alan Cox : BSD style RAW socket demultiplexing.
31 * Alan Cox : Beginnings of mrouted support.
32 * Alan Cox : Added IP_HDRINCL option.
33 * Alan Cox : Skip broadcast check if BSDism set.
34 * David S. Miller : New socket lookup architecture.
36 * This program is free software; you can redistribute it and/or
37 * modify it under the terms of the GNU General Public License
38 * as published by the Free Software Foundation; either version
39 * 2 of the License, or (at your option) any later version.
42 #include <linux/types.h>
43 #include <asm/atomic.h>
44 #include <asm/byteorder.h>
45 #include <asm/current.h>
46 #include <asm/uaccess.h>
47 #include <asm/ioctls.h>
48 #include <linux/stddef.h>
49 #include <linux/slab.h>
50 #include <linux/errno.h>
51 #include <linux/aio.h>
52 #include <linux/kernel.h>
53 #include <linux/spinlock.h>
54 #include <linux/sockios.h>
55 #include <linux/socket.h>
57 #include <linux/mroute.h>
58 #include <linux/netdevice.h>
59 #include <linux/in_route.h>
60 #include <linux/route.h>
61 #include <linux/skbuff.h>
62 #include <net/net_namespace.h>
65 #include <linux/gfp.h>
67 #include <linux/net.h>
73 #include <net/tcp_states.h>
74 #include <net/inet_common.h>
75 #include <net/checksum.h>
77 #include <linux/rtnetlink.h>
78 #include <linux/proc_fs.h>
79 #include <linux/seq_file.h>
80 #include <linux/netfilter.h>
81 #include <linux/netfilter_ipv4.h>
83 struct hlist_head raw_v4_htable
[RAWV4_HTABLE_SIZE
];
84 DEFINE_RWLOCK(raw_v4_lock
);
86 static void raw_v4_hash(struct sock
*sk
)
88 struct hlist_head
*head
= &raw_v4_htable
[inet_sk(sk
)->num
&
89 (RAWV4_HTABLE_SIZE
- 1)];
91 write_lock_bh(&raw_v4_lock
);
92 sk_add_node(sk
, head
);
93 sock_prot_inc_use(sk
->sk_prot
);
94 write_unlock_bh(&raw_v4_lock
);
97 static void raw_v4_unhash(struct sock
*sk
)
99 write_lock_bh(&raw_v4_lock
);
100 if (sk_del_node_init(sk
))
101 sock_prot_dec_use(sk
->sk_prot
);
102 write_unlock_bh(&raw_v4_lock
);
105 struct sock
*__raw_v4_lookup(struct sock
*sk
, unsigned short num
,
106 __be32 raddr
, __be32 laddr
,
109 struct hlist_node
*node
;
111 sk_for_each_from(sk
, node
) {
112 struct inet_sock
*inet
= inet_sk(sk
);
114 if (inet
->num
== num
&&
115 !(inet
->daddr
&& inet
->daddr
!= raddr
) &&
116 !(inet
->rcv_saddr
&& inet
->rcv_saddr
!= laddr
) &&
117 !(sk
->sk_bound_dev_if
&& sk
->sk_bound_dev_if
!= dif
))
118 goto found
; /* gotcha */
129 static __inline__
int icmp_filter(struct sock
*sk
, struct sk_buff
*skb
)
133 if (!pskb_may_pull(skb
, sizeof(struct icmphdr
)))
136 type
= icmp_hdr(skb
)->type
;
138 __u32 data
= raw_sk(sk
)->filter
.data
;
140 return ((1 << type
) & data
) != 0;
143 /* Do not block unknown ICMP types */
147 /* IP input processing comes here for RAW socket delivery.
148 * Caller owns SKB, so we must make clones.
150 * RFC 1122: SHOULD pass TOS value up to the transport layer.
151 * -> It does. And not only TOS, but all IP header.
153 int raw_v4_input(struct sk_buff
*skb
, struct iphdr
*iph
, int hash
)
156 struct hlist_head
*head
;
159 read_lock(&raw_v4_lock
);
160 head
= &raw_v4_htable
[hash
];
161 if (hlist_empty(head
))
163 sk
= __raw_v4_lookup(__sk_head(head
), iph
->protocol
,
164 iph
->saddr
, iph
->daddr
,
169 if (iph
->protocol
!= IPPROTO_ICMP
|| !icmp_filter(sk
, skb
)) {
170 struct sk_buff
*clone
= skb_clone(skb
, GFP_ATOMIC
);
172 /* Not releasing hash table! */
176 sk
= __raw_v4_lookup(sk_next(sk
), iph
->protocol
,
177 iph
->saddr
, iph
->daddr
,
181 read_unlock(&raw_v4_lock
);
185 void raw_err (struct sock
*sk
, struct sk_buff
*skb
, u32 info
)
187 struct inet_sock
*inet
= inet_sk(sk
);
188 const int type
= icmp_hdr(skb
)->type
;
189 const int code
= icmp_hdr(skb
)->code
;
193 /* Report error on raw socket, if:
194 1. User requested ip_recverr.
195 2. Socket is connected (otherwise the error indication
196 is useless without ip_recverr and error is hard.
198 if (!inet
->recverr
&& sk
->sk_state
!= TCP_ESTABLISHED
)
203 case ICMP_TIME_EXCEEDED
:
206 case ICMP_SOURCE_QUENCH
:
208 case ICMP_PARAMETERPROB
:
212 case ICMP_DEST_UNREACH
:
214 if (code
> NR_ICMP_UNREACH
)
216 err
= icmp_err_convert
[code
].errno
;
217 harderr
= icmp_err_convert
[code
].fatal
;
218 if (code
== ICMP_FRAG_NEEDED
) {
219 harderr
= inet
->pmtudisc
!= IP_PMTUDISC_DONT
;
225 struct iphdr
*iph
= (struct iphdr
*)skb
->data
;
226 u8
*payload
= skb
->data
+ (iph
->ihl
<< 2);
230 ip_icmp_error(sk
, skb
, err
, 0, info
, payload
);
233 if (inet
->recverr
|| harderr
) {
235 sk
->sk_error_report(sk
);
239 static int raw_rcv_skb(struct sock
* sk
, struct sk_buff
* skb
)
241 /* Charge it to the socket. */
243 if (sock_queue_rcv_skb(sk
, skb
) < 0) {
244 /* FIXME: increment a raw drops counter here */
249 return NET_RX_SUCCESS
;
252 int raw_rcv(struct sock
*sk
, struct sk_buff
*skb
)
254 if (!xfrm4_policy_check(sk
, XFRM_POLICY_IN
, skb
)) {
260 skb_push(skb
, skb
->data
- skb_network_header(skb
));
262 raw_rcv_skb(sk
, skb
);
266 static int raw_send_hdrinc(struct sock
*sk
, void *from
, size_t length
,
270 struct inet_sock
*inet
= inet_sk(sk
);
277 if (length
> rt
->u
.dst
.dev
->mtu
) {
278 ip_local_error(sk
, EMSGSIZE
, rt
->rt_dst
, inet
->dport
,
285 hh_len
= LL_RESERVED_SPACE(rt
->u
.dst
.dev
);
287 skb
= sock_alloc_send_skb(sk
, length
+hh_len
+15,
288 flags
&MSG_DONTWAIT
, &err
);
291 skb_reserve(skb
, hh_len
);
293 skb
->priority
= sk
->sk_priority
;
294 skb
->dst
= dst_clone(&rt
->u
.dst
);
296 skb_reset_network_header(skb
);
298 skb_put(skb
, length
);
300 skb
->ip_summed
= CHECKSUM_NONE
;
302 skb
->transport_header
= skb
->network_header
;
303 err
= memcpy_fromiovecend((void *)iph
, from
, 0, length
);
307 /* We don't modify invalid header */
308 iphlen
= iph
->ihl
* 4;
309 if (iphlen
>= sizeof(*iph
) && iphlen
<= length
) {
311 iph
->saddr
= rt
->rt_src
;
313 iph
->tot_len
= htons(length
);
315 ip_select_ident(iph
, &rt
->u
.dst
, NULL
);
317 iph
->check
= ip_fast_csum((unsigned char *)iph
, iph
->ihl
);
319 if (iph
->protocol
== IPPROTO_ICMP
)
320 icmp_out_count(((struct icmphdr
*)
321 skb_transport_header(skb
))->type
);
323 err
= NF_HOOK(PF_INET
, NF_IP_LOCAL_OUT
, skb
, NULL
, rt
->u
.dst
.dev
,
326 err
= inet
->recverr
? net_xmit_errno(err
) : 0;
336 IP_INC_STATS(IPSTATS_MIB_OUTDISCARDS
);
340 static int raw_probe_proto_opt(struct flowi
*fl
, struct msghdr
*msg
)
343 u8 __user
*type
= NULL
;
344 u8 __user
*code
= NULL
;
351 for (i
= 0; i
< msg
->msg_iovlen
; i
++) {
352 iov
= &msg
->msg_iov
[i
];
358 /* check if one-byte field is readable or not. */
359 if (iov
->iov_base
&& iov
->iov_len
< 1)
363 type
= iov
->iov_base
;
364 /* check if code field is readable or not. */
365 if (iov
->iov_len
> 1)
368 code
= iov
->iov_base
;
371 if (get_user(fl
->fl_icmp_type
, type
) ||
372 get_user(fl
->fl_icmp_code
, code
))
387 static int raw_sendmsg(struct kiocb
*iocb
, struct sock
*sk
, struct msghdr
*msg
,
390 struct inet_sock
*inet
= inet_sk(sk
);
391 struct ipcm_cookie ipc
;
392 struct rtable
*rt
= NULL
;
408 if (msg
->msg_flags
& MSG_OOB
) /* Mirror BSD error message */
409 goto out
; /* compatibility */
412 * Get and verify the address.
415 if (msg
->msg_namelen
) {
416 struct sockaddr_in
*usin
= (struct sockaddr_in
*)msg
->msg_name
;
418 if (msg
->msg_namelen
< sizeof(*usin
))
420 if (usin
->sin_family
!= AF_INET
) {
421 static int complained
;
423 printk(KERN_INFO
"%s forgot to set AF_INET in "
424 "raw sendmsg. Fix it!\n",
427 if (usin
->sin_family
)
430 daddr
= usin
->sin_addr
.s_addr
;
431 /* ANK: I did not forget to get protocol from port field.
432 * I just do not know, who uses this weirdness.
433 * IP_HDRINCL is much more convenient.
437 if (sk
->sk_state
!= TCP_ESTABLISHED
)
442 ipc
.addr
= inet
->saddr
;
444 ipc
.oif
= sk
->sk_bound_dev_if
;
446 if (msg
->msg_controllen
) {
447 err
= ip_cmsg_send(msg
, &ipc
);
462 /* Linux does not mangle headers on raw sockets,
463 * so that IP options + IP_HDRINCL is non-sense.
470 daddr
= ipc
.opt
->faddr
;
473 tos
= RT_CONN_FLAGS(sk
);
474 if (msg
->msg_flags
& MSG_DONTROUTE
)
477 if (MULTICAST(daddr
)) {
479 ipc
.oif
= inet
->mc_index
;
481 saddr
= inet
->mc_addr
;
485 struct flowi fl
= { .oif
= ipc
.oif
,
490 .proto
= inet
->hdrincl
? IPPROTO_RAW
:
493 if (!inet
->hdrincl
) {
494 err
= raw_probe_proto_opt(&fl
, msg
);
499 security_sk_classify_flow(sk
, &fl
);
500 err
= ip_route_output_flow(&rt
, &fl
, sk
, 1);
506 if (rt
->rt_flags
& RTCF_BROADCAST
&& !sock_flag(sk
, SOCK_BROADCAST
))
509 if (msg
->msg_flags
& MSG_CONFIRM
)
514 err
= raw_send_hdrinc(sk
, msg
->msg_iov
, len
,
519 ipc
.addr
= rt
->rt_dst
;
521 err
= ip_append_data(sk
, ip_generic_getfrag
, msg
->msg_iov
, len
, 0,
522 &ipc
, rt
, msg
->msg_flags
);
524 ip_flush_pending_frames(sk
);
525 else if (!(msg
->msg_flags
& MSG_MORE
))
526 err
= ip_push_pending_frames(sk
);
540 dst_confirm(&rt
->u
.dst
);
541 if (!(msg
->msg_flags
& MSG_PROBE
) || len
)
542 goto back_from_confirm
;
547 static void raw_close(struct sock
*sk
, long timeout
)
550 * Raw sockets may have direct kernel refereneces. Kill them.
552 ip_ra_control(sk
, 0, NULL
);
554 sk_common_release(sk
);
557 /* This gets rid of all the nasties in af_inet. -DaveM */
558 static int raw_bind(struct sock
*sk
, struct sockaddr
*uaddr
, int addr_len
)
560 struct inet_sock
*inet
= inet_sk(sk
);
561 struct sockaddr_in
*addr
= (struct sockaddr_in
*) uaddr
;
565 if (sk
->sk_state
!= TCP_CLOSE
|| addr_len
< sizeof(struct sockaddr_in
))
567 chk_addr_ret
= inet_addr_type(addr
->sin_addr
.s_addr
);
568 ret
= -EADDRNOTAVAIL
;
569 if (addr
->sin_addr
.s_addr
&& chk_addr_ret
!= RTN_LOCAL
&&
570 chk_addr_ret
!= RTN_MULTICAST
&& chk_addr_ret
!= RTN_BROADCAST
)
572 inet
->rcv_saddr
= inet
->saddr
= addr
->sin_addr
.s_addr
;
573 if (chk_addr_ret
== RTN_MULTICAST
|| chk_addr_ret
== RTN_BROADCAST
)
574 inet
->saddr
= 0; /* Use device */
581 * This should be easy, if there is something there
582 * we return it, otherwise we block.
585 static int raw_recvmsg(struct kiocb
*iocb
, struct sock
*sk
, struct msghdr
*msg
,
586 size_t len
, int noblock
, int flags
, int *addr_len
)
588 struct inet_sock
*inet
= inet_sk(sk
);
590 int err
= -EOPNOTSUPP
;
591 struct sockaddr_in
*sin
= (struct sockaddr_in
*)msg
->msg_name
;
598 *addr_len
= sizeof(*sin
);
600 if (flags
& MSG_ERRQUEUE
) {
601 err
= ip_recv_error(sk
, msg
, len
);
605 skb
= skb_recv_datagram(sk
, flags
, noblock
, &err
);
611 msg
->msg_flags
|= MSG_TRUNC
;
615 err
= skb_copy_datagram_iovec(skb
, 0, msg
->msg_iov
, copied
);
619 sock_recv_timestamp(msg
, sk
, skb
);
621 /* Copy the address. */
623 sin
->sin_family
= AF_INET
;
624 sin
->sin_addr
.s_addr
= ip_hdr(skb
)->saddr
;
626 memset(&sin
->sin_zero
, 0, sizeof(sin
->sin_zero
));
628 if (inet
->cmsg_flags
)
629 ip_cmsg_recv(msg
, skb
);
630 if (flags
& MSG_TRUNC
)
633 skb_free_datagram(sk
, skb
);
640 static int raw_init(struct sock
*sk
)
642 struct raw_sock
*rp
= raw_sk(sk
);
644 if (inet_sk(sk
)->num
== IPPROTO_ICMP
)
645 memset(&rp
->filter
, 0, sizeof(rp
->filter
));
649 static int raw_seticmpfilter(struct sock
*sk
, char __user
*optval
, int optlen
)
651 if (optlen
> sizeof(struct icmp_filter
))
652 optlen
= sizeof(struct icmp_filter
);
653 if (copy_from_user(&raw_sk(sk
)->filter
, optval
, optlen
))
658 static int raw_geticmpfilter(struct sock
*sk
, char __user
*optval
, int __user
*optlen
)
660 int len
, ret
= -EFAULT
;
662 if (get_user(len
, optlen
))
667 if (len
> sizeof(struct icmp_filter
))
668 len
= sizeof(struct icmp_filter
);
670 if (put_user(len
, optlen
) ||
671 copy_to_user(optval
, &raw_sk(sk
)->filter
, len
))
677 static int do_raw_setsockopt(struct sock
*sk
, int level
, int optname
,
678 char __user
*optval
, int optlen
)
680 if (optname
== ICMP_FILTER
) {
681 if (inet_sk(sk
)->num
!= IPPROTO_ICMP
)
684 return raw_seticmpfilter(sk
, optval
, optlen
);
689 static int raw_setsockopt(struct sock
*sk
, int level
, int optname
,
690 char __user
*optval
, int optlen
)
692 if (level
!= SOL_RAW
)
693 return ip_setsockopt(sk
, level
, optname
, optval
, optlen
);
694 return do_raw_setsockopt(sk
, level
, optname
, optval
, optlen
);
698 static int compat_raw_setsockopt(struct sock
*sk
, int level
, int optname
,
699 char __user
*optval
, int optlen
)
701 if (level
!= SOL_RAW
)
702 return compat_ip_setsockopt(sk
, level
, optname
, optval
, optlen
);
703 return do_raw_setsockopt(sk
, level
, optname
, optval
, optlen
);
707 static int do_raw_getsockopt(struct sock
*sk
, int level
, int optname
,
708 char __user
*optval
, int __user
*optlen
)
710 if (optname
== ICMP_FILTER
) {
711 if (inet_sk(sk
)->num
!= IPPROTO_ICMP
)
714 return raw_geticmpfilter(sk
, optval
, optlen
);
719 static int raw_getsockopt(struct sock
*sk
, int level
, int optname
,
720 char __user
*optval
, int __user
*optlen
)
722 if (level
!= SOL_RAW
)
723 return ip_getsockopt(sk
, level
, optname
, optval
, optlen
);
724 return do_raw_getsockopt(sk
, level
, optname
, optval
, optlen
);
728 static int compat_raw_getsockopt(struct sock
*sk
, int level
, int optname
,
729 char __user
*optval
, int __user
*optlen
)
731 if (level
!= SOL_RAW
)
732 return compat_ip_getsockopt(sk
, level
, optname
, optval
, optlen
);
733 return do_raw_getsockopt(sk
, level
, optname
, optval
, optlen
);
737 static int raw_ioctl(struct sock
*sk
, int cmd
, unsigned long arg
)
741 int amount
= atomic_read(&sk
->sk_wmem_alloc
);
742 return put_user(amount
, (int __user
*)arg
);
748 spin_lock_bh(&sk
->sk_receive_queue
.lock
);
749 skb
= skb_peek(&sk
->sk_receive_queue
);
752 spin_unlock_bh(&sk
->sk_receive_queue
.lock
);
753 return put_user(amount
, (int __user
*)arg
);
757 #ifdef CONFIG_IP_MROUTE
758 return ipmr_ioctl(sk
, cmd
, (void __user
*)arg
);
765 DEFINE_PROTO_INUSE(raw
)
767 struct proto raw_prot
= {
769 .owner
= THIS_MODULE
,
771 .connect
= ip4_datagram_connect
,
772 .disconnect
= udp_disconnect
,
775 .setsockopt
= raw_setsockopt
,
776 .getsockopt
= raw_getsockopt
,
777 .sendmsg
= raw_sendmsg
,
778 .recvmsg
= raw_recvmsg
,
780 .backlog_rcv
= raw_rcv_skb
,
782 .unhash
= raw_v4_unhash
,
783 .obj_size
= sizeof(struct raw_sock
),
785 .compat_setsockopt
= compat_raw_setsockopt
,
786 .compat_getsockopt
= compat_raw_getsockopt
,
791 #ifdef CONFIG_PROC_FS
792 struct raw_iter_state
{
796 #define raw_seq_private(seq) ((struct raw_iter_state *)(seq)->private)
798 static struct sock
*raw_get_first(struct seq_file
*seq
)
801 struct raw_iter_state
* state
= raw_seq_private(seq
);
803 for (state
->bucket
= 0; state
->bucket
< RAWV4_HTABLE_SIZE
; ++state
->bucket
) {
804 struct hlist_node
*node
;
806 sk_for_each(sk
, node
, &raw_v4_htable
[state
->bucket
])
807 if (sk
->sk_family
== PF_INET
)
815 static struct sock
*raw_get_next(struct seq_file
*seq
, struct sock
*sk
)
817 struct raw_iter_state
* state
= raw_seq_private(seq
);
823 } while (sk
&& sk
->sk_family
!= PF_INET
);
825 if (!sk
&& ++state
->bucket
< RAWV4_HTABLE_SIZE
) {
826 sk
= sk_head(&raw_v4_htable
[state
->bucket
]);
832 static struct sock
*raw_get_idx(struct seq_file
*seq
, loff_t pos
)
834 struct sock
*sk
= raw_get_first(seq
);
837 while (pos
&& (sk
= raw_get_next(seq
, sk
)) != NULL
)
839 return pos
? NULL
: sk
;
842 static void *raw_seq_start(struct seq_file
*seq
, loff_t
*pos
)
844 read_lock(&raw_v4_lock
);
845 return *pos
? raw_get_idx(seq
, *pos
- 1) : SEQ_START_TOKEN
;
848 static void *raw_seq_next(struct seq_file
*seq
, void *v
, loff_t
*pos
)
852 if (v
== SEQ_START_TOKEN
)
853 sk
= raw_get_first(seq
);
855 sk
= raw_get_next(seq
, v
);
860 static void raw_seq_stop(struct seq_file
*seq
, void *v
)
862 read_unlock(&raw_v4_lock
);
865 static __inline__
char *get_raw_sock(struct sock
*sp
, char *tmpbuf
, int i
)
867 struct inet_sock
*inet
= inet_sk(sp
);
868 __be32 dest
= inet
->daddr
,
869 src
= inet
->rcv_saddr
;
873 sprintf(tmpbuf
, "%4d: %08X:%04X %08X:%04X"
874 " %02X %08X:%08X %02X:%08lX %08X %5d %8d %lu %d %p",
875 i
, src
, srcp
, dest
, destp
, sp
->sk_state
,
876 atomic_read(&sp
->sk_wmem_alloc
),
877 atomic_read(&sp
->sk_rmem_alloc
),
878 0, 0L, 0, sock_i_uid(sp
), 0, sock_i_ino(sp
),
879 atomic_read(&sp
->sk_refcnt
), sp
);
883 static int raw_seq_show(struct seq_file
*seq
, void *v
)
887 if (v
== SEQ_START_TOKEN
)
888 seq_printf(seq
, "%-127s\n",
889 " sl local_address rem_address st tx_queue "
890 "rx_queue tr tm->when retrnsmt uid timeout "
893 struct raw_iter_state
*state
= raw_seq_private(seq
);
895 seq_printf(seq
, "%-127s\n",
896 get_raw_sock(v
, tmpbuf
, state
->bucket
));
901 static const struct seq_operations raw_seq_ops
= {
902 .start
= raw_seq_start
,
903 .next
= raw_seq_next
,
904 .stop
= raw_seq_stop
,
905 .show
= raw_seq_show
,
908 static int raw_seq_open(struct inode
*inode
, struct file
*file
)
910 return seq_open_private(file
, &raw_seq_ops
,
911 sizeof(struct raw_iter_state
));
914 static const struct file_operations raw_seq_fops
= {
915 .owner
= THIS_MODULE
,
916 .open
= raw_seq_open
,
919 .release
= seq_release_private
,
922 int __init
raw_proc_init(void)
924 if (!proc_net_fops_create(&init_net
, "raw", S_IRUGO
, &raw_seq_fops
))
929 void __init
raw_proc_exit(void)
931 proc_net_remove(&init_net
, "raw");
933 #endif /* CONFIG_PROC_FS */