1 // SPDX-License-Identifier: GPL-2.0-or-later
3 * ip6_flowlabel.c IPv6 flowlabel manager.
5 * Authors: Alexey Kuznetsov, <kuznet@ms2.inr.ac.ru>
8 #include <linux/capability.h>
9 #include <linux/errno.h>
10 #include <linux/types.h>
11 #include <linux/socket.h>
12 #include <linux/net.h>
13 #include <linux/netdevice.h>
14 #include <linux/in6.h>
15 #include <linux/proc_fs.h>
16 #include <linux/seq_file.h>
17 #include <linux/slab.h>
18 #include <linux/export.h>
19 #include <linux/pid_namespace.h>
20 #include <linux/jump_label_ratelimit.h>
22 #include <net/net_namespace.h>
26 #include <net/rawv6.h>
27 #include <net/transp_v6.h>
29 #include <linux/uaccess.h>
31 #define FL_MIN_LINGER 6 /* Minimal linger. It is set to 6sec specified
32 in old IPv6 RFC. Well, it was reasonable value.
34 #define FL_MAX_LINGER 150 /* Maximal linger timeout */
38 #define FL_MAX_PER_SOCK 32
39 #define FL_MAX_SIZE 4096
40 #define FL_HASH_MASK 255
41 #define FL_HASH(l) (ntohl(l)&FL_HASH_MASK)
43 static atomic_t fl_size
= ATOMIC_INIT(0);
44 static struct ip6_flowlabel __rcu
*fl_ht
[FL_HASH_MASK
+1];
46 static void ip6_fl_gc(struct timer_list
*unused
);
47 static DEFINE_TIMER(ip6_fl_gc_timer
, ip6_fl_gc
);
49 /* FL hash table lock: it protects only of GC */
51 static DEFINE_SPINLOCK(ip6_fl_lock
);
55 static DEFINE_SPINLOCK(ip6_sk_fl_lock
);
57 DEFINE_STATIC_KEY_DEFERRED_FALSE(ipv6_flowlabel_exclusive
, HZ
);
58 EXPORT_SYMBOL(ipv6_flowlabel_exclusive
);
60 #define for_each_fl_rcu(hash, fl) \
61 for (fl = rcu_dereference_bh(fl_ht[(hash)]); \
63 fl = rcu_dereference_bh(fl->next))
64 #define for_each_fl_continue_rcu(fl) \
65 for (fl = rcu_dereference_bh(fl->next); \
67 fl = rcu_dereference_bh(fl->next))
69 #define for_each_sk_fl_rcu(np, sfl) \
70 for (sfl = rcu_dereference_bh(np->ipv6_fl_list); \
72 sfl = rcu_dereference_bh(sfl->next))
74 static inline struct ip6_flowlabel
*__fl_lookup(struct net
*net
, __be32 label
)
76 struct ip6_flowlabel
*fl
;
78 for_each_fl_rcu(FL_HASH(label
), fl
) {
79 if (fl
->label
== label
&& net_eq(fl
->fl_net
, net
))
85 static struct ip6_flowlabel
*fl_lookup(struct net
*net
, __be32 label
)
87 struct ip6_flowlabel
*fl
;
90 fl
= __fl_lookup(net
, label
);
91 if (fl
&& !atomic_inc_not_zero(&fl
->users
))
97 static bool fl_shared_exclusive(struct ip6_flowlabel
*fl
)
99 return fl
->share
== IPV6_FL_S_EXCL
||
100 fl
->share
== IPV6_FL_S_PROCESS
||
101 fl
->share
== IPV6_FL_S_USER
;
104 static void fl_free_rcu(struct rcu_head
*head
)
106 struct ip6_flowlabel
*fl
= container_of(head
, struct ip6_flowlabel
, rcu
);
108 if (fl
->share
== IPV6_FL_S_PROCESS
)
109 put_pid(fl
->owner
.pid
);
115 static void fl_free(struct ip6_flowlabel
*fl
)
120 if (fl_shared_exclusive(fl
) || fl
->opt
)
121 static_branch_slow_dec_deferred(&ipv6_flowlabel_exclusive
);
123 call_rcu(&fl
->rcu
, fl_free_rcu
);
126 static void fl_release(struct ip6_flowlabel
*fl
)
128 spin_lock_bh(&ip6_fl_lock
);
130 fl
->lastuse
= jiffies
;
131 if (atomic_dec_and_test(&fl
->users
)) {
132 unsigned long ttd
= fl
->lastuse
+ fl
->linger
;
133 if (time_after(ttd
, fl
->expires
))
136 if (fl
->opt
&& fl
->share
== IPV6_FL_S_EXCL
) {
137 struct ipv6_txoptions
*opt
= fl
->opt
;
141 if (!timer_pending(&ip6_fl_gc_timer
) ||
142 time_after(ip6_fl_gc_timer
.expires
, ttd
))
143 mod_timer(&ip6_fl_gc_timer
, ttd
);
145 spin_unlock_bh(&ip6_fl_lock
);
148 static void ip6_fl_gc(struct timer_list
*unused
)
151 unsigned long now
= jiffies
;
152 unsigned long sched
= 0;
154 spin_lock(&ip6_fl_lock
);
156 for (i
= 0; i
<= FL_HASH_MASK
; i
++) {
157 struct ip6_flowlabel
*fl
;
158 struct ip6_flowlabel __rcu
**flp
;
161 while ((fl
= rcu_dereference_protected(*flp
,
162 lockdep_is_held(&ip6_fl_lock
))) != NULL
) {
163 if (atomic_read(&fl
->users
) == 0) {
164 unsigned long ttd
= fl
->lastuse
+ fl
->linger
;
165 if (time_after(ttd
, fl
->expires
))
168 if (time_after_eq(now
, ttd
)) {
171 atomic_dec(&fl_size
);
174 if (!sched
|| time_before(ttd
, sched
))
180 if (!sched
&& atomic_read(&fl_size
))
181 sched
= now
+ FL_MAX_LINGER
;
183 mod_timer(&ip6_fl_gc_timer
, sched
);
185 spin_unlock(&ip6_fl_lock
);
188 static void __net_exit
ip6_fl_purge(struct net
*net
)
192 spin_lock_bh(&ip6_fl_lock
);
193 for (i
= 0; i
<= FL_HASH_MASK
; i
++) {
194 struct ip6_flowlabel
*fl
;
195 struct ip6_flowlabel __rcu
**flp
;
198 while ((fl
= rcu_dereference_protected(*flp
,
199 lockdep_is_held(&ip6_fl_lock
))) != NULL
) {
200 if (net_eq(fl
->fl_net
, net
) &&
201 atomic_read(&fl
->users
) == 0) {
204 atomic_dec(&fl_size
);
210 spin_unlock_bh(&ip6_fl_lock
);
213 static struct ip6_flowlabel
*fl_intern(struct net
*net
,
214 struct ip6_flowlabel
*fl
, __be32 label
)
216 struct ip6_flowlabel
*lfl
;
218 fl
->label
= label
& IPV6_FLOWLABEL_MASK
;
220 spin_lock_bh(&ip6_fl_lock
);
223 fl
->label
= htonl(prandom_u32())&IPV6_FLOWLABEL_MASK
;
225 lfl
= __fl_lookup(net
, fl
->label
);
232 * we dropper the ip6_fl_lock, so this entry could reappear
233 * and we need to recheck with it.
235 * OTOH no need to search the active socket first, like it is
236 * done in ipv6_flowlabel_opt - sock is locked, so new entry
237 * with the same label can only appear on another sock
239 lfl
= __fl_lookup(net
, fl
->label
);
241 atomic_inc(&lfl
->users
);
242 spin_unlock_bh(&ip6_fl_lock
);
247 fl
->lastuse
= jiffies
;
248 fl
->next
= fl_ht
[FL_HASH(fl
->label
)];
249 rcu_assign_pointer(fl_ht
[FL_HASH(fl
->label
)], fl
);
250 atomic_inc(&fl_size
);
251 spin_unlock_bh(&ip6_fl_lock
);
257 /* Socket flowlabel lists */
259 struct ip6_flowlabel
*__fl6_sock_lookup(struct sock
*sk
, __be32 label
)
261 struct ipv6_fl_socklist
*sfl
;
262 struct ipv6_pinfo
*np
= inet6_sk(sk
);
264 label
&= IPV6_FLOWLABEL_MASK
;
267 for_each_sk_fl_rcu(np
, sfl
) {
268 struct ip6_flowlabel
*fl
= sfl
->fl
;
270 if (fl
->label
== label
&& atomic_inc_not_zero(&fl
->users
)) {
271 fl
->lastuse
= jiffies
;
272 rcu_read_unlock_bh();
276 rcu_read_unlock_bh();
279 EXPORT_SYMBOL_GPL(__fl6_sock_lookup
);
281 void fl6_free_socklist(struct sock
*sk
)
283 struct ipv6_pinfo
*np
= inet6_sk(sk
);
284 struct ipv6_fl_socklist
*sfl
;
286 if (!rcu_access_pointer(np
->ipv6_fl_list
))
289 spin_lock_bh(&ip6_sk_fl_lock
);
290 while ((sfl
= rcu_dereference_protected(np
->ipv6_fl_list
,
291 lockdep_is_held(&ip6_sk_fl_lock
))) != NULL
) {
292 np
->ipv6_fl_list
= sfl
->next
;
293 spin_unlock_bh(&ip6_sk_fl_lock
);
298 spin_lock_bh(&ip6_sk_fl_lock
);
300 spin_unlock_bh(&ip6_sk_fl_lock
);
303 /* Service routines */
307 It is the only difficult place. flowlabel enforces equal headers
308 before and including routing header, however user may supply options
312 struct ipv6_txoptions
*fl6_merge_options(struct ipv6_txoptions
*opt_space
,
313 struct ip6_flowlabel
*fl
,
314 struct ipv6_txoptions
*fopt
)
316 struct ipv6_txoptions
*fl_opt
= fl
->opt
;
318 if (!fopt
|| fopt
->opt_flen
== 0)
322 opt_space
->hopopt
= fl_opt
->hopopt
;
323 opt_space
->dst0opt
= fl_opt
->dst0opt
;
324 opt_space
->srcrt
= fl_opt
->srcrt
;
325 opt_space
->opt_nflen
= fl_opt
->opt_nflen
;
327 if (fopt
->opt_nflen
== 0)
329 opt_space
->hopopt
= NULL
;
330 opt_space
->dst0opt
= NULL
;
331 opt_space
->srcrt
= NULL
;
332 opt_space
->opt_nflen
= 0;
334 opt_space
->dst1opt
= fopt
->dst1opt
;
335 opt_space
->opt_flen
= fopt
->opt_flen
;
336 opt_space
->tot_len
= fopt
->tot_len
;
339 EXPORT_SYMBOL_GPL(fl6_merge_options
);
341 static unsigned long check_linger(unsigned long ttl
)
343 if (ttl
< FL_MIN_LINGER
)
344 return FL_MIN_LINGER
*HZ
;
345 if (ttl
> FL_MAX_LINGER
&& !capable(CAP_NET_ADMIN
))
350 static int fl6_renew(struct ip6_flowlabel
*fl
, unsigned long linger
, unsigned long expires
)
352 linger
= check_linger(linger
);
355 expires
= check_linger(expires
);
359 spin_lock_bh(&ip6_fl_lock
);
360 fl
->lastuse
= jiffies
;
361 if (time_before(fl
->linger
, linger
))
363 if (time_before(expires
, fl
->linger
))
364 expires
= fl
->linger
;
365 if (time_before(fl
->expires
, fl
->lastuse
+ expires
))
366 fl
->expires
= fl
->lastuse
+ expires
;
367 spin_unlock_bh(&ip6_fl_lock
);
372 static struct ip6_flowlabel
*
373 fl_create(struct net
*net
, struct sock
*sk
, struct in6_flowlabel_req
*freq
,
374 sockptr_t optval
, int optlen
, int *err_p
)
376 struct ip6_flowlabel
*fl
= NULL
;
381 olen
= optlen
- CMSG_ALIGN(sizeof(*freq
));
383 if (olen
> 64 * 1024)
387 fl
= kzalloc(sizeof(*fl
), GFP_KERNEL
);
393 struct flowi6 flowi6
;
394 struct ipcm6_cookie ipc6
;
397 fl
->opt
= kmalloc(sizeof(*fl
->opt
) + olen
, GFP_KERNEL
);
401 memset(fl
->opt
, 0, sizeof(*fl
->opt
));
402 fl
->opt
->tot_len
= sizeof(*fl
->opt
) + olen
;
404 if (copy_from_sockptr_offset(fl
->opt
+ 1, optval
,
405 CMSG_ALIGN(sizeof(*freq
)), olen
))
408 msg
.msg_controllen
= olen
;
409 msg
.msg_control
= (void *)(fl
->opt
+1);
410 memset(&flowi6
, 0, sizeof(flowi6
));
413 err
= ip6_datagram_send_ctl(net
, sk
, &msg
, &flowi6
, &ipc6
);
417 if (fl
->opt
->opt_flen
)
419 if (fl
->opt
->opt_nflen
== 0) {
426 fl
->expires
= jiffies
;
427 err
= fl6_renew(fl
, freq
->flr_linger
, freq
->flr_expires
);
430 fl
->share
= freq
->flr_share
;
431 addr_type
= ipv6_addr_type(&freq
->flr_dst
);
432 if ((addr_type
& IPV6_ADDR_MAPPED
) ||
433 addr_type
== IPV6_ADDR_ANY
) {
437 fl
->dst
= freq
->flr_dst
;
438 atomic_set(&fl
->users
, 1);
443 case IPV6_FL_S_PROCESS
:
444 fl
->owner
.pid
= get_task_pid(current
, PIDTYPE_PID
);
447 fl
->owner
.uid
= current_euid();
453 if (fl_shared_exclusive(fl
) || fl
->opt
)
454 static_branch_deferred_inc(&ipv6_flowlabel_exclusive
);
466 static int mem_check(struct sock
*sk
)
468 struct ipv6_pinfo
*np
= inet6_sk(sk
);
469 struct ipv6_fl_socklist
*sfl
;
470 int room
= FL_MAX_SIZE
- atomic_read(&fl_size
);
473 if (room
> FL_MAX_SIZE
- FL_MAX_PER_SOCK
)
477 for_each_sk_fl_rcu(np
, sfl
)
479 rcu_read_unlock_bh();
482 ((count
>= FL_MAX_PER_SOCK
||
483 (count
> 0 && room
< FL_MAX_SIZE
/2) || room
< FL_MAX_SIZE
/4) &&
484 !capable(CAP_NET_ADMIN
)))
490 static inline void fl_link(struct ipv6_pinfo
*np
, struct ipv6_fl_socklist
*sfl
,
491 struct ip6_flowlabel
*fl
)
493 spin_lock_bh(&ip6_sk_fl_lock
);
495 sfl
->next
= np
->ipv6_fl_list
;
496 rcu_assign_pointer(np
->ipv6_fl_list
, sfl
);
497 spin_unlock_bh(&ip6_sk_fl_lock
);
500 int ipv6_flowlabel_opt_get(struct sock
*sk
, struct in6_flowlabel_req
*freq
,
503 struct ipv6_pinfo
*np
= inet6_sk(sk
);
504 struct ipv6_fl_socklist
*sfl
;
506 if (flags
& IPV6_FL_F_REMOTE
) {
507 freq
->flr_label
= np
->rcv_flowinfo
& IPV6_FLOWLABEL_MASK
;
512 freq
->flr_label
= np
->flow_label
;
518 for_each_sk_fl_rcu(np
, sfl
) {
519 if (sfl
->fl
->label
== (np
->flow_label
& IPV6_FLOWLABEL_MASK
)) {
520 spin_lock_bh(&ip6_fl_lock
);
521 freq
->flr_label
= sfl
->fl
->label
;
522 freq
->flr_dst
= sfl
->fl
->dst
;
523 freq
->flr_share
= sfl
->fl
->share
;
524 freq
->flr_expires
= (sfl
->fl
->expires
- jiffies
) / HZ
;
525 freq
->flr_linger
= sfl
->fl
->linger
/ HZ
;
527 spin_unlock_bh(&ip6_fl_lock
);
528 rcu_read_unlock_bh();
532 rcu_read_unlock_bh();
537 #define socklist_dereference(__sflp) \
538 rcu_dereference_protected(__sflp, lockdep_is_held(&ip6_sk_fl_lock))
540 static int ipv6_flowlabel_put(struct sock
*sk
, struct in6_flowlabel_req
*freq
)
542 struct ipv6_pinfo
*np
= inet6_sk(sk
);
543 struct ipv6_fl_socklist __rcu
**sflp
;
544 struct ipv6_fl_socklist
*sfl
;
546 if (freq
->flr_flags
& IPV6_FL_F_REFLECT
) {
547 if (sk
->sk_protocol
!= IPPROTO_TCP
)
556 spin_lock_bh(&ip6_sk_fl_lock
);
557 for (sflp
= &np
->ipv6_fl_list
;
558 (sfl
= socklist_dereference(*sflp
)) != NULL
;
560 if (sfl
->fl
->label
== freq
->flr_label
)
563 spin_unlock_bh(&ip6_sk_fl_lock
);
566 if (freq
->flr_label
== (np
->flow_label
& IPV6_FLOWLABEL_MASK
))
567 np
->flow_label
&= ~IPV6_FLOWLABEL_MASK
;
569 spin_unlock_bh(&ip6_sk_fl_lock
);
575 static int ipv6_flowlabel_renew(struct sock
*sk
, struct in6_flowlabel_req
*freq
)
577 struct ipv6_pinfo
*np
= inet6_sk(sk
);
578 struct net
*net
= sock_net(sk
);
579 struct ipv6_fl_socklist
*sfl
;
583 for_each_sk_fl_rcu(np
, sfl
) {
584 if (sfl
->fl
->label
== freq
->flr_label
) {
585 err
= fl6_renew(sfl
->fl
, freq
->flr_linger
,
587 rcu_read_unlock_bh();
591 rcu_read_unlock_bh();
593 if (freq
->flr_share
== IPV6_FL_S_NONE
&&
594 ns_capable(net
->user_ns
, CAP_NET_ADMIN
)) {
595 struct ip6_flowlabel
*fl
= fl_lookup(net
, freq
->flr_label
);
598 err
= fl6_renew(fl
, freq
->flr_linger
,
607 static int ipv6_flowlabel_get(struct sock
*sk
, struct in6_flowlabel_req
*freq
,
608 sockptr_t optval
, int optlen
)
610 struct ipv6_fl_socklist
*sfl
, *sfl1
= NULL
;
611 struct ip6_flowlabel
*fl
, *fl1
= NULL
;
612 struct ipv6_pinfo
*np
= inet6_sk(sk
);
613 struct net
*net
= sock_net(sk
);
616 if (freq
->flr_flags
& IPV6_FL_F_REFLECT
) {
617 if (net
->ipv6
.sysctl
.flowlabel_consistency
) {
618 net_info_ratelimited("Can not set IPV6_FL_F_REFLECT if flowlabel_consistency sysctl is enable\n");
622 if (sk
->sk_protocol
!= IPPROTO_TCP
)
628 if (freq
->flr_label
& ~IPV6_FLOWLABEL_MASK
)
630 if (net
->ipv6
.sysctl
.flowlabel_state_ranges
&&
631 (freq
->flr_label
& IPV6_FLOWLABEL_STATELESS_FLAG
))
634 fl
= fl_create(net
, sk
, freq
, optval
, optlen
, &err
);
638 sfl1
= kmalloc(sizeof(*sfl1
), GFP_KERNEL
);
640 if (freq
->flr_label
) {
643 for_each_sk_fl_rcu(np
, sfl
) {
644 if (sfl
->fl
->label
== freq
->flr_label
) {
645 if (freq
->flr_flags
& IPV6_FL_F_EXCL
) {
646 rcu_read_unlock_bh();
650 if (!atomic_inc_not_zero(&fl1
->users
))
655 rcu_read_unlock_bh();
658 fl1
= fl_lookup(net
, freq
->flr_label
);
662 if (freq
->flr_flags
&IPV6_FL_F_EXCL
)
665 if (fl1
->share
== IPV6_FL_S_EXCL
||
666 fl1
->share
!= fl
->share
||
667 ((fl1
->share
== IPV6_FL_S_PROCESS
) &&
668 (fl1
->owner
.pid
!= fl
->owner
.pid
)) ||
669 ((fl1
->share
== IPV6_FL_S_USER
) &&
670 !uid_eq(fl1
->owner
.uid
, fl
->owner
.uid
)))
676 if (fl
->linger
> fl1
->linger
)
677 fl1
->linger
= fl
->linger
;
678 if ((long)(fl
->expires
- fl1
->expires
) > 0)
679 fl1
->expires
= fl
->expires
;
680 fl_link(np
, sfl1
, fl1
);
690 if (!(freq
->flr_flags
& IPV6_FL_F_CREATE
))
701 fl1
= fl_intern(net
, fl
, freq
->flr_label
);
705 if (!freq
->flr_label
) {
706 size_t offset
= offsetof(struct in6_flowlabel_req
, flr_label
);
708 if (copy_to_sockptr_offset(optval
, offset
, &fl
->label
,
709 sizeof(fl
->label
))) {
710 /* Intentionally ignore fault. */
714 fl_link(np
, sfl1
, fl
);
722 int ipv6_flowlabel_opt(struct sock
*sk
, sockptr_t optval
, int optlen
)
724 struct in6_flowlabel_req freq
;
726 if (optlen
< sizeof(freq
))
728 if (copy_from_sockptr(&freq
, optval
, sizeof(freq
)))
731 switch (freq
.flr_action
) {
733 return ipv6_flowlabel_put(sk
, &freq
);
734 case IPV6_FL_A_RENEW
:
735 return ipv6_flowlabel_renew(sk
, &freq
);
737 return ipv6_flowlabel_get(sk
, &freq
, optval
, optlen
);
743 #ifdef CONFIG_PROC_FS
745 struct ip6fl_iter_state
{
746 struct seq_net_private p
;
747 struct pid_namespace
*pid_ns
;
751 #define ip6fl_seq_private(seq) ((struct ip6fl_iter_state *)(seq)->private)
753 static struct ip6_flowlabel
*ip6fl_get_first(struct seq_file
*seq
)
755 struct ip6_flowlabel
*fl
= NULL
;
756 struct ip6fl_iter_state
*state
= ip6fl_seq_private(seq
);
757 struct net
*net
= seq_file_net(seq
);
759 for (state
->bucket
= 0; state
->bucket
<= FL_HASH_MASK
; ++state
->bucket
) {
760 for_each_fl_rcu(state
->bucket
, fl
) {
761 if (net_eq(fl
->fl_net
, net
))
770 static struct ip6_flowlabel
*ip6fl_get_next(struct seq_file
*seq
, struct ip6_flowlabel
*fl
)
772 struct ip6fl_iter_state
*state
= ip6fl_seq_private(seq
);
773 struct net
*net
= seq_file_net(seq
);
775 for_each_fl_continue_rcu(fl
) {
776 if (net_eq(fl
->fl_net
, net
))
781 if (++state
->bucket
<= FL_HASH_MASK
) {
782 for_each_fl_rcu(state
->bucket
, fl
) {
783 if (net_eq(fl
->fl_net
, net
))
794 static struct ip6_flowlabel
*ip6fl_get_idx(struct seq_file
*seq
, loff_t pos
)
796 struct ip6_flowlabel
*fl
= ip6fl_get_first(seq
);
798 while (pos
&& (fl
= ip6fl_get_next(seq
, fl
)) != NULL
)
800 return pos
? NULL
: fl
;
803 static void *ip6fl_seq_start(struct seq_file
*seq
, loff_t
*pos
)
806 struct ip6fl_iter_state
*state
= ip6fl_seq_private(seq
);
808 state
->pid_ns
= proc_pid_ns(file_inode(seq
->file
)->i_sb
);
811 return *pos
? ip6fl_get_idx(seq
, *pos
- 1) : SEQ_START_TOKEN
;
814 static void *ip6fl_seq_next(struct seq_file
*seq
, void *v
, loff_t
*pos
)
816 struct ip6_flowlabel
*fl
;
818 if (v
== SEQ_START_TOKEN
)
819 fl
= ip6fl_get_first(seq
);
821 fl
= ip6fl_get_next(seq
, v
);
826 static void ip6fl_seq_stop(struct seq_file
*seq
, void *v
)
829 rcu_read_unlock_bh();
832 static int ip6fl_seq_show(struct seq_file
*seq
, void *v
)
834 struct ip6fl_iter_state
*state
= ip6fl_seq_private(seq
);
835 if (v
== SEQ_START_TOKEN
) {
836 seq_puts(seq
, "Label S Owner Users Linger Expires Dst Opt\n");
838 struct ip6_flowlabel
*fl
= v
;
840 "%05X %-1d %-6d %-6d %-6ld %-8ld %pi6 %-4d\n",
841 (unsigned int)ntohl(fl
->label
),
843 ((fl
->share
== IPV6_FL_S_PROCESS
) ?
844 pid_nr_ns(fl
->owner
.pid
, state
->pid_ns
) :
845 ((fl
->share
== IPV6_FL_S_USER
) ?
846 from_kuid_munged(seq_user_ns(seq
), fl
->owner
.uid
) :
848 atomic_read(&fl
->users
),
850 (long)(fl
->expires
- jiffies
)/HZ
,
852 fl
->opt
? fl
->opt
->opt_nflen
: 0);
857 static const struct seq_operations ip6fl_seq_ops
= {
858 .start
= ip6fl_seq_start
,
859 .next
= ip6fl_seq_next
,
860 .stop
= ip6fl_seq_stop
,
861 .show
= ip6fl_seq_show
,
864 static int __net_init
ip6_flowlabel_proc_init(struct net
*net
)
866 if (!proc_create_net("ip6_flowlabel", 0444, net
->proc_net
,
867 &ip6fl_seq_ops
, sizeof(struct ip6fl_iter_state
)))
872 static void __net_exit
ip6_flowlabel_proc_fini(struct net
*net
)
874 remove_proc_entry("ip6_flowlabel", net
->proc_net
);
877 static inline int ip6_flowlabel_proc_init(struct net
*net
)
881 static inline void ip6_flowlabel_proc_fini(struct net
*net
)
886 static void __net_exit
ip6_flowlabel_net_exit(struct net
*net
)
889 ip6_flowlabel_proc_fini(net
);
892 static struct pernet_operations ip6_flowlabel_net_ops
= {
893 .init
= ip6_flowlabel_proc_init
,
894 .exit
= ip6_flowlabel_net_exit
,
897 int ip6_flowlabel_init(void)
899 return register_pernet_subsys(&ip6_flowlabel_net_ops
);
902 void ip6_flowlabel_cleanup(void)
904 static_key_deferred_flush(&ipv6_flowlabel_exclusive
);
905 del_timer(&ip6_fl_gc_timer
);
906 unregister_pernet_subsys(&ip6_flowlabel_net_ops
);