1 // SPDX-License-Identifier: GPL-2.0-only
2 /* L2TP netlink layer, for management
4 * Copyright (c) 2008,2009,2010 Katalix Systems Ltd
6 * Partly based on the IrDA nelink implementation
7 * (see net/irda/irnetlink.c) which is:
8 * Copyright (c) 2007 Samuel Ortiz <samuel@sortiz.org>
9 * which is in turn partly based on the wireless netlink code:
10 * Copyright 2006 Johannes Berg <johannes@sipsolutions.net>
13 #define pr_fmt(fmt) KBUILD_MODNAME ": " fmt
16 #include <net/genetlink.h>
19 #include <linux/udp.h>
20 #include <linux/socket.h>
21 #include <linux/module.h>
22 #include <linux/list.h>
23 #include <net/net_namespace.h>
25 #include <linux/l2tp.h>
27 #include "l2tp_core.h"
29 static struct genl_family l2tp_nl_family
;
31 static const struct genl_multicast_group l2tp_multicast_group
[] = {
33 .name
= L2TP_GENL_MCGROUP
,
37 static int l2tp_nl_tunnel_send(struct sk_buff
*skb
, u32 portid
, u32 seq
,
38 int flags
, struct l2tp_tunnel
*tunnel
, u8 cmd
);
39 static int l2tp_nl_session_send(struct sk_buff
*skb
, u32 portid
, u32 seq
,
40 int flags
, struct l2tp_session
*session
,
43 /* Accessed under genl lock */
44 static const struct l2tp_nl_cmd_ops
*l2tp_nl_cmd_ops
[__L2TP_PWTYPE_MAX
];
46 static struct l2tp_session
*l2tp_nl_session_get(struct genl_info
*info
)
51 struct l2tp_tunnel
*tunnel
;
52 struct l2tp_session
*session
= NULL
;
53 struct net
*net
= genl_info_net(info
);
55 if (info
->attrs
[L2TP_ATTR_IFNAME
]) {
56 ifname
= nla_data(info
->attrs
[L2TP_ATTR_IFNAME
]);
57 session
= l2tp_session_get_by_ifname(net
, ifname
);
58 } else if ((info
->attrs
[L2TP_ATTR_SESSION_ID
]) &&
59 (info
->attrs
[L2TP_ATTR_CONN_ID
])) {
60 tunnel_id
= nla_get_u32(info
->attrs
[L2TP_ATTR_CONN_ID
]);
61 session_id
= nla_get_u32(info
->attrs
[L2TP_ATTR_SESSION_ID
]);
62 tunnel
= l2tp_tunnel_get(net
, tunnel_id
);
64 session
= l2tp_tunnel_get_session(tunnel
, session_id
);
65 l2tp_tunnel_dec_refcount(tunnel
);
72 static int l2tp_nl_cmd_noop(struct sk_buff
*skb
, struct genl_info
*info
)
78 msg
= nlmsg_new(NLMSG_DEFAULT_SIZE
, GFP_KERNEL
);
84 hdr
= genlmsg_put(msg
, info
->snd_portid
, info
->snd_seq
,
85 &l2tp_nl_family
, 0, L2TP_CMD_NOOP
);
91 genlmsg_end(msg
, hdr
);
93 return genlmsg_unicast(genl_info_net(info
), msg
, info
->snd_portid
);
102 static int l2tp_tunnel_notify(struct genl_family
*family
,
103 struct genl_info
*info
,
104 struct l2tp_tunnel
*tunnel
,
110 msg
= nlmsg_new(NLMSG_DEFAULT_SIZE
, GFP_KERNEL
);
114 ret
= l2tp_nl_tunnel_send(msg
, info
->snd_portid
, info
->snd_seq
,
115 NLM_F_ACK
, tunnel
, cmd
);
118 ret
= genlmsg_multicast_allns(family
, msg
, 0, 0, GFP_ATOMIC
);
119 /* We don't care if no one is listening */
130 static int l2tp_session_notify(struct genl_family
*family
,
131 struct genl_info
*info
,
132 struct l2tp_session
*session
,
138 msg
= nlmsg_new(NLMSG_DEFAULT_SIZE
, GFP_KERNEL
);
142 ret
= l2tp_nl_session_send(msg
, info
->snd_portid
, info
->snd_seq
,
143 NLM_F_ACK
, session
, cmd
);
146 ret
= genlmsg_multicast_allns(family
, msg
, 0, 0, GFP_ATOMIC
);
147 /* We don't care if no one is listening */
158 static int l2tp_nl_cmd_tunnel_create_get_addr(struct nlattr
**attrs
, struct l2tp_tunnel_cfg
*cfg
)
160 if (attrs
[L2TP_ATTR_UDP_SPORT
])
161 cfg
->local_udp_port
= nla_get_u16(attrs
[L2TP_ATTR_UDP_SPORT
]);
162 if (attrs
[L2TP_ATTR_UDP_DPORT
])
163 cfg
->peer_udp_port
= nla_get_u16(attrs
[L2TP_ATTR_UDP_DPORT
]);
164 cfg
->use_udp_checksums
= nla_get_flag(attrs
[L2TP_ATTR_UDP_CSUM
]);
166 /* Must have either AF_INET or AF_INET6 address for source and destination */
167 #if IS_ENABLED(CONFIG_IPV6)
168 if (attrs
[L2TP_ATTR_IP6_SADDR
] && attrs
[L2TP_ATTR_IP6_DADDR
]) {
169 cfg
->local_ip6
= nla_data(attrs
[L2TP_ATTR_IP6_SADDR
]);
170 cfg
->peer_ip6
= nla_data(attrs
[L2TP_ATTR_IP6_DADDR
]);
171 cfg
->udp6_zero_tx_checksums
= nla_get_flag(attrs
[L2TP_ATTR_UDP_ZERO_CSUM6_TX
]);
172 cfg
->udp6_zero_rx_checksums
= nla_get_flag(attrs
[L2TP_ATTR_UDP_ZERO_CSUM6_RX
]);
176 if (attrs
[L2TP_ATTR_IP_SADDR
] && attrs
[L2TP_ATTR_IP_DADDR
]) {
177 cfg
->local_ip
.s_addr
= nla_get_in_addr(attrs
[L2TP_ATTR_IP_SADDR
]);
178 cfg
->peer_ip
.s_addr
= nla_get_in_addr(attrs
[L2TP_ATTR_IP_DADDR
]);
184 static int l2tp_nl_cmd_tunnel_create(struct sk_buff
*skb
, struct genl_info
*info
)
191 struct l2tp_tunnel_cfg cfg
= { 0, };
192 struct l2tp_tunnel
*tunnel
;
193 struct net
*net
= genl_info_net(info
);
194 struct nlattr
**attrs
= info
->attrs
;
196 if (!attrs
[L2TP_ATTR_CONN_ID
]) {
200 tunnel_id
= nla_get_u32(attrs
[L2TP_ATTR_CONN_ID
]);
202 if (!attrs
[L2TP_ATTR_PEER_CONN_ID
]) {
206 peer_tunnel_id
= nla_get_u32(attrs
[L2TP_ATTR_PEER_CONN_ID
]);
208 if (!attrs
[L2TP_ATTR_PROTO_VERSION
]) {
212 proto_version
= nla_get_u8(attrs
[L2TP_ATTR_PROTO_VERSION
]);
214 if (!attrs
[L2TP_ATTR_ENCAP_TYPE
]) {
218 cfg
.encap
= nla_get_u16(attrs
[L2TP_ATTR_ENCAP_TYPE
]);
220 /* Managed tunnels take the tunnel socket from userspace.
221 * Unmanaged tunnels must call out the source and destination addresses
222 * for the kernel to create the tunnel socket itself.
224 if (attrs
[L2TP_ATTR_FD
]) {
225 fd
= nla_get_u32(attrs
[L2TP_ATTR_FD
]);
227 ret
= l2tp_nl_cmd_tunnel_create_get_addr(attrs
, &cfg
);
232 if (attrs
[L2TP_ATTR_DEBUG
])
233 cfg
.debug
= nla_get_u32(attrs
[L2TP_ATTR_DEBUG
]);
237 case L2TP_ENCAPTYPE_UDP
:
238 case L2TP_ENCAPTYPE_IP
:
239 ret
= l2tp_tunnel_create(net
, fd
, proto_version
, tunnel_id
,
240 peer_tunnel_id
, &cfg
, &tunnel
);
247 l2tp_tunnel_inc_refcount(tunnel
);
248 ret
= l2tp_tunnel_register(tunnel
, net
, &cfg
);
253 ret
= l2tp_tunnel_notify(&l2tp_nl_family
, info
, tunnel
,
254 L2TP_CMD_TUNNEL_CREATE
);
255 l2tp_tunnel_dec_refcount(tunnel
);
261 static int l2tp_nl_cmd_tunnel_delete(struct sk_buff
*skb
, struct genl_info
*info
)
263 struct l2tp_tunnel
*tunnel
;
266 struct net
*net
= genl_info_net(info
);
268 if (!info
->attrs
[L2TP_ATTR_CONN_ID
]) {
272 tunnel_id
= nla_get_u32(info
->attrs
[L2TP_ATTR_CONN_ID
]);
274 tunnel
= l2tp_tunnel_get(net
, tunnel_id
);
280 l2tp_tunnel_notify(&l2tp_nl_family
, info
,
281 tunnel
, L2TP_CMD_TUNNEL_DELETE
);
283 l2tp_tunnel_delete(tunnel
);
285 l2tp_tunnel_dec_refcount(tunnel
);
291 static int l2tp_nl_cmd_tunnel_modify(struct sk_buff
*skb
, struct genl_info
*info
)
293 struct l2tp_tunnel
*tunnel
;
296 struct net
*net
= genl_info_net(info
);
298 if (!info
->attrs
[L2TP_ATTR_CONN_ID
]) {
302 tunnel_id
= nla_get_u32(info
->attrs
[L2TP_ATTR_CONN_ID
]);
304 tunnel
= l2tp_tunnel_get(net
, tunnel_id
);
310 if (info
->attrs
[L2TP_ATTR_DEBUG
])
311 tunnel
->debug
= nla_get_u32(info
->attrs
[L2TP_ATTR_DEBUG
]);
313 ret
= l2tp_tunnel_notify(&l2tp_nl_family
, info
,
314 tunnel
, L2TP_CMD_TUNNEL_MODIFY
);
316 l2tp_tunnel_dec_refcount(tunnel
);
322 #if IS_ENABLED(CONFIG_IPV6)
323 static int l2tp_nl_tunnel_send_addr6(struct sk_buff
*skb
, struct sock
*sk
,
324 enum l2tp_encap_type encap
)
326 struct inet_sock
*inet
= inet_sk(sk
);
327 struct ipv6_pinfo
*np
= inet6_sk(sk
);
330 case L2TP_ENCAPTYPE_UDP
:
331 if (udp_get_no_check6_tx(sk
) &&
332 nla_put_flag(skb
, L2TP_ATTR_UDP_ZERO_CSUM6_TX
))
334 if (udp_get_no_check6_rx(sk
) &&
335 nla_put_flag(skb
, L2TP_ATTR_UDP_ZERO_CSUM6_RX
))
337 if (nla_put_u16(skb
, L2TP_ATTR_UDP_SPORT
, ntohs(inet
->inet_sport
)) ||
338 nla_put_u16(skb
, L2TP_ATTR_UDP_DPORT
, ntohs(inet
->inet_dport
)))
341 case L2TP_ENCAPTYPE_IP
:
342 if (nla_put_in6_addr(skb
, L2TP_ATTR_IP6_SADDR
, &np
->saddr
) ||
343 nla_put_in6_addr(skb
, L2TP_ATTR_IP6_DADDR
, &sk
->sk_v6_daddr
))
351 static int l2tp_nl_tunnel_send_addr4(struct sk_buff
*skb
, struct sock
*sk
,
352 enum l2tp_encap_type encap
)
354 struct inet_sock
*inet
= inet_sk(sk
);
357 case L2TP_ENCAPTYPE_UDP
:
358 if (nla_put_u8(skb
, L2TP_ATTR_UDP_CSUM
, !sk
->sk_no_check_tx
) ||
359 nla_put_u16(skb
, L2TP_ATTR_UDP_SPORT
, ntohs(inet
->inet_sport
)) ||
360 nla_put_u16(skb
, L2TP_ATTR_UDP_DPORT
, ntohs(inet
->inet_dport
)))
363 case L2TP_ENCAPTYPE_IP
:
364 if (nla_put_in_addr(skb
, L2TP_ATTR_IP_SADDR
, inet
->inet_saddr
) ||
365 nla_put_in_addr(skb
, L2TP_ATTR_IP_DADDR
, inet
->inet_daddr
))
373 /* Append attributes for the tunnel address, handling the different attribute types
374 * used for different tunnel encapsulation and AF_INET v.s. AF_INET6.
376 static int l2tp_nl_tunnel_send_addr(struct sk_buff
*skb
, struct l2tp_tunnel
*tunnel
)
378 struct sock
*sk
= tunnel
->sock
;
383 #if IS_ENABLED(CONFIG_IPV6)
384 if (sk
->sk_family
== AF_INET6
)
385 return l2tp_nl_tunnel_send_addr6(skb
, sk
, tunnel
->encap
);
387 return l2tp_nl_tunnel_send_addr4(skb
, sk
, tunnel
->encap
);
390 static int l2tp_nl_tunnel_send(struct sk_buff
*skb
, u32 portid
, u32 seq
, int flags
,
391 struct l2tp_tunnel
*tunnel
, u8 cmd
)
396 hdr
= genlmsg_put(skb
, portid
, seq
, &l2tp_nl_family
, flags
, cmd
);
400 if (nla_put_u8(skb
, L2TP_ATTR_PROTO_VERSION
, tunnel
->version
) ||
401 nla_put_u32(skb
, L2TP_ATTR_CONN_ID
, tunnel
->tunnel_id
) ||
402 nla_put_u32(skb
, L2TP_ATTR_PEER_CONN_ID
, tunnel
->peer_tunnel_id
) ||
403 nla_put_u32(skb
, L2TP_ATTR_DEBUG
, tunnel
->debug
) ||
404 nla_put_u16(skb
, L2TP_ATTR_ENCAP_TYPE
, tunnel
->encap
))
405 goto nla_put_failure
;
407 nest
= nla_nest_start_noflag(skb
, L2TP_ATTR_STATS
);
409 goto nla_put_failure
;
411 if (nla_put_u64_64bit(skb
, L2TP_ATTR_TX_PACKETS
,
412 atomic_long_read(&tunnel
->stats
.tx_packets
),
413 L2TP_ATTR_STATS_PAD
) ||
414 nla_put_u64_64bit(skb
, L2TP_ATTR_TX_BYTES
,
415 atomic_long_read(&tunnel
->stats
.tx_bytes
),
416 L2TP_ATTR_STATS_PAD
) ||
417 nla_put_u64_64bit(skb
, L2TP_ATTR_TX_ERRORS
,
418 atomic_long_read(&tunnel
->stats
.tx_errors
),
419 L2TP_ATTR_STATS_PAD
) ||
420 nla_put_u64_64bit(skb
, L2TP_ATTR_RX_PACKETS
,
421 atomic_long_read(&tunnel
->stats
.rx_packets
),
422 L2TP_ATTR_STATS_PAD
) ||
423 nla_put_u64_64bit(skb
, L2TP_ATTR_RX_BYTES
,
424 atomic_long_read(&tunnel
->stats
.rx_bytes
),
425 L2TP_ATTR_STATS_PAD
) ||
426 nla_put_u64_64bit(skb
, L2TP_ATTR_RX_SEQ_DISCARDS
,
427 atomic_long_read(&tunnel
->stats
.rx_seq_discards
),
428 L2TP_ATTR_STATS_PAD
) ||
429 nla_put_u64_64bit(skb
, L2TP_ATTR_RX_OOS_PACKETS
,
430 atomic_long_read(&tunnel
->stats
.rx_oos_packets
),
431 L2TP_ATTR_STATS_PAD
) ||
432 nla_put_u64_64bit(skb
, L2TP_ATTR_RX_ERRORS
,
433 atomic_long_read(&tunnel
->stats
.rx_errors
),
434 L2TP_ATTR_STATS_PAD
))
435 goto nla_put_failure
;
436 nla_nest_end(skb
, nest
);
438 if (l2tp_nl_tunnel_send_addr(skb
, tunnel
))
439 goto nla_put_failure
;
441 genlmsg_end(skb
, hdr
);
445 genlmsg_cancel(skb
, hdr
);
449 static int l2tp_nl_cmd_tunnel_get(struct sk_buff
*skb
, struct genl_info
*info
)
451 struct l2tp_tunnel
*tunnel
;
455 struct net
*net
= genl_info_net(info
);
457 if (!info
->attrs
[L2TP_ATTR_CONN_ID
]) {
462 tunnel_id
= nla_get_u32(info
->attrs
[L2TP_ATTR_CONN_ID
]);
464 msg
= nlmsg_new(NLMSG_DEFAULT_SIZE
, GFP_KERNEL
);
470 tunnel
= l2tp_tunnel_get(net
, tunnel_id
);
476 ret
= l2tp_nl_tunnel_send(msg
, info
->snd_portid
, info
->snd_seq
,
477 NLM_F_ACK
, tunnel
, L2TP_CMD_TUNNEL_GET
);
479 goto err_nlmsg_tunnel
;
481 l2tp_tunnel_dec_refcount(tunnel
);
483 return genlmsg_unicast(net
, msg
, info
->snd_portid
);
486 l2tp_tunnel_dec_refcount(tunnel
);
493 static int l2tp_nl_cmd_tunnel_dump(struct sk_buff
*skb
, struct netlink_callback
*cb
)
495 int ti
= cb
->args
[0];
496 struct l2tp_tunnel
*tunnel
;
497 struct net
*net
= sock_net(skb
->sk
);
500 tunnel
= l2tp_tunnel_get_nth(net
, ti
);
504 if (l2tp_nl_tunnel_send(skb
, NETLINK_CB(cb
->skb
).portid
,
505 cb
->nlh
->nlmsg_seq
, NLM_F_MULTI
,
506 tunnel
, L2TP_CMD_TUNNEL_GET
) < 0) {
507 l2tp_tunnel_dec_refcount(tunnel
);
510 l2tp_tunnel_dec_refcount(tunnel
);
521 static int l2tp_nl_cmd_session_create(struct sk_buff
*skb
, struct genl_info
*info
)
527 struct l2tp_tunnel
*tunnel
;
528 struct l2tp_session
*session
;
529 struct l2tp_session_cfg cfg
= { 0, };
530 struct net
*net
= genl_info_net(info
);
532 if (!info
->attrs
[L2TP_ATTR_CONN_ID
]) {
537 tunnel_id
= nla_get_u32(info
->attrs
[L2TP_ATTR_CONN_ID
]);
538 tunnel
= l2tp_tunnel_get(net
, tunnel_id
);
544 if (!info
->attrs
[L2TP_ATTR_SESSION_ID
]) {
548 session_id
= nla_get_u32(info
->attrs
[L2TP_ATTR_SESSION_ID
]);
550 if (!info
->attrs
[L2TP_ATTR_PEER_SESSION_ID
]) {
554 peer_session_id
= nla_get_u32(info
->attrs
[L2TP_ATTR_PEER_SESSION_ID
]);
556 if (!info
->attrs
[L2TP_ATTR_PW_TYPE
]) {
560 cfg
.pw_type
= nla_get_u16(info
->attrs
[L2TP_ATTR_PW_TYPE
]);
561 if (cfg
.pw_type
>= __L2TP_PWTYPE_MAX
) {
566 /* L2TPv2 only accepts PPP pseudo-wires */
567 if (tunnel
->version
== 2 && cfg
.pw_type
!= L2TP_PWTYPE_PPP
) {
568 ret
= -EPROTONOSUPPORT
;
572 if (tunnel
->version
> 2) {
573 if (info
->attrs
[L2TP_ATTR_L2SPEC_TYPE
]) {
574 cfg
.l2specific_type
= nla_get_u8(info
->attrs
[L2TP_ATTR_L2SPEC_TYPE
]);
575 if (cfg
.l2specific_type
!= L2TP_L2SPECTYPE_DEFAULT
&&
576 cfg
.l2specific_type
!= L2TP_L2SPECTYPE_NONE
) {
581 cfg
.l2specific_type
= L2TP_L2SPECTYPE_DEFAULT
;
584 if (info
->attrs
[L2TP_ATTR_COOKIE
]) {
585 u16 len
= nla_len(info
->attrs
[L2TP_ATTR_COOKIE
]);
591 cfg
.cookie_len
= len
;
592 memcpy(&cfg
.cookie
[0], nla_data(info
->attrs
[L2TP_ATTR_COOKIE
]), len
);
594 if (info
->attrs
[L2TP_ATTR_PEER_COOKIE
]) {
595 u16 len
= nla_len(info
->attrs
[L2TP_ATTR_PEER_COOKIE
]);
601 cfg
.peer_cookie_len
= len
;
602 memcpy(&cfg
.peer_cookie
[0], nla_data(info
->attrs
[L2TP_ATTR_PEER_COOKIE
]), len
);
604 if (info
->attrs
[L2TP_ATTR_IFNAME
])
605 cfg
.ifname
= nla_data(info
->attrs
[L2TP_ATTR_IFNAME
]);
608 if (info
->attrs
[L2TP_ATTR_DEBUG
])
609 cfg
.debug
= nla_get_u32(info
->attrs
[L2TP_ATTR_DEBUG
]);
611 if (info
->attrs
[L2TP_ATTR_RECV_SEQ
])
612 cfg
.recv_seq
= nla_get_u8(info
->attrs
[L2TP_ATTR_RECV_SEQ
]);
614 if (info
->attrs
[L2TP_ATTR_SEND_SEQ
])
615 cfg
.send_seq
= nla_get_u8(info
->attrs
[L2TP_ATTR_SEND_SEQ
]);
617 if (info
->attrs
[L2TP_ATTR_LNS_MODE
])
618 cfg
.lns_mode
= nla_get_u8(info
->attrs
[L2TP_ATTR_LNS_MODE
]);
620 if (info
->attrs
[L2TP_ATTR_RECV_TIMEOUT
])
621 cfg
.reorder_timeout
= nla_get_msecs(info
->attrs
[L2TP_ATTR_RECV_TIMEOUT
]);
623 #ifdef CONFIG_MODULES
624 if (!l2tp_nl_cmd_ops
[cfg
.pw_type
]) {
626 request_module("net-l2tp-type-%u", cfg
.pw_type
);
630 if (!l2tp_nl_cmd_ops
[cfg
.pw_type
] || !l2tp_nl_cmd_ops
[cfg
.pw_type
]->session_create
) {
631 ret
= -EPROTONOSUPPORT
;
635 ret
= l2tp_nl_cmd_ops
[cfg
.pw_type
]->session_create(net
, tunnel
,
641 session
= l2tp_tunnel_get_session(tunnel
, session_id
);
643 ret
= l2tp_session_notify(&l2tp_nl_family
, info
, session
,
644 L2TP_CMD_SESSION_CREATE
);
645 l2tp_session_dec_refcount(session
);
650 l2tp_tunnel_dec_refcount(tunnel
);
655 static int l2tp_nl_cmd_session_delete(struct sk_buff
*skb
, struct genl_info
*info
)
658 struct l2tp_session
*session
;
661 session
= l2tp_nl_session_get(info
);
667 l2tp_session_notify(&l2tp_nl_family
, info
,
668 session
, L2TP_CMD_SESSION_DELETE
);
670 pw_type
= session
->pwtype
;
671 if (pw_type
< __L2TP_PWTYPE_MAX
)
672 if (l2tp_nl_cmd_ops
[pw_type
] && l2tp_nl_cmd_ops
[pw_type
]->session_delete
)
673 l2tp_nl_cmd_ops
[pw_type
]->session_delete(session
);
675 l2tp_session_dec_refcount(session
);
681 static int l2tp_nl_cmd_session_modify(struct sk_buff
*skb
, struct genl_info
*info
)
684 struct l2tp_session
*session
;
686 session
= l2tp_nl_session_get(info
);
692 if (info
->attrs
[L2TP_ATTR_DEBUG
])
693 session
->debug
= nla_get_u32(info
->attrs
[L2TP_ATTR_DEBUG
]);
695 if (info
->attrs
[L2TP_ATTR_RECV_SEQ
])
696 session
->recv_seq
= nla_get_u8(info
->attrs
[L2TP_ATTR_RECV_SEQ
]);
698 if (info
->attrs
[L2TP_ATTR_SEND_SEQ
]) {
699 session
->send_seq
= nla_get_u8(info
->attrs
[L2TP_ATTR_SEND_SEQ
]);
700 l2tp_session_set_header_len(session
, session
->tunnel
->version
);
703 if (info
->attrs
[L2TP_ATTR_LNS_MODE
])
704 session
->lns_mode
= nla_get_u8(info
->attrs
[L2TP_ATTR_LNS_MODE
]);
706 if (info
->attrs
[L2TP_ATTR_RECV_TIMEOUT
])
707 session
->reorder_timeout
= nla_get_msecs(info
->attrs
[L2TP_ATTR_RECV_TIMEOUT
]);
709 ret
= l2tp_session_notify(&l2tp_nl_family
, info
,
710 session
, L2TP_CMD_SESSION_MODIFY
);
712 l2tp_session_dec_refcount(session
);
718 static int l2tp_nl_session_send(struct sk_buff
*skb
, u32 portid
, u32 seq
, int flags
,
719 struct l2tp_session
*session
, u8 cmd
)
723 struct l2tp_tunnel
*tunnel
= session
->tunnel
;
725 hdr
= genlmsg_put(skb
, portid
, seq
, &l2tp_nl_family
, flags
, cmd
);
729 if (nla_put_u32(skb
, L2TP_ATTR_CONN_ID
, tunnel
->tunnel_id
) ||
730 nla_put_u32(skb
, L2TP_ATTR_SESSION_ID
, session
->session_id
) ||
731 nla_put_u32(skb
, L2TP_ATTR_PEER_CONN_ID
, tunnel
->peer_tunnel_id
) ||
732 nla_put_u32(skb
, L2TP_ATTR_PEER_SESSION_ID
, session
->peer_session_id
) ||
733 nla_put_u32(skb
, L2TP_ATTR_DEBUG
, session
->debug
) ||
734 nla_put_u16(skb
, L2TP_ATTR_PW_TYPE
, session
->pwtype
))
735 goto nla_put_failure
;
737 if ((session
->ifname
[0] &&
738 nla_put_string(skb
, L2TP_ATTR_IFNAME
, session
->ifname
)) ||
739 (session
->cookie_len
&&
740 nla_put(skb
, L2TP_ATTR_COOKIE
, session
->cookie_len
, session
->cookie
)) ||
741 (session
->peer_cookie_len
&&
742 nla_put(skb
, L2TP_ATTR_PEER_COOKIE
, session
->peer_cookie_len
, session
->peer_cookie
)) ||
743 nla_put_u8(skb
, L2TP_ATTR_RECV_SEQ
, session
->recv_seq
) ||
744 nla_put_u8(skb
, L2TP_ATTR_SEND_SEQ
, session
->send_seq
) ||
745 nla_put_u8(skb
, L2TP_ATTR_LNS_MODE
, session
->lns_mode
) ||
746 (l2tp_tunnel_uses_xfrm(tunnel
) &&
747 nla_put_u8(skb
, L2TP_ATTR_USING_IPSEC
, 1)) ||
748 (session
->reorder_timeout
&&
749 nla_put_msecs(skb
, L2TP_ATTR_RECV_TIMEOUT
,
750 session
->reorder_timeout
, L2TP_ATTR_PAD
)))
751 goto nla_put_failure
;
753 nest
= nla_nest_start_noflag(skb
, L2TP_ATTR_STATS
);
755 goto nla_put_failure
;
757 if (nla_put_u64_64bit(skb
, L2TP_ATTR_TX_PACKETS
,
758 atomic_long_read(&session
->stats
.tx_packets
),
759 L2TP_ATTR_STATS_PAD
) ||
760 nla_put_u64_64bit(skb
, L2TP_ATTR_TX_BYTES
,
761 atomic_long_read(&session
->stats
.tx_bytes
),
762 L2TP_ATTR_STATS_PAD
) ||
763 nla_put_u64_64bit(skb
, L2TP_ATTR_TX_ERRORS
,
764 atomic_long_read(&session
->stats
.tx_errors
),
765 L2TP_ATTR_STATS_PAD
) ||
766 nla_put_u64_64bit(skb
, L2TP_ATTR_RX_PACKETS
,
767 atomic_long_read(&session
->stats
.rx_packets
),
768 L2TP_ATTR_STATS_PAD
) ||
769 nla_put_u64_64bit(skb
, L2TP_ATTR_RX_BYTES
,
770 atomic_long_read(&session
->stats
.rx_bytes
),
771 L2TP_ATTR_STATS_PAD
) ||
772 nla_put_u64_64bit(skb
, L2TP_ATTR_RX_SEQ_DISCARDS
,
773 atomic_long_read(&session
->stats
.rx_seq_discards
),
774 L2TP_ATTR_STATS_PAD
) ||
775 nla_put_u64_64bit(skb
, L2TP_ATTR_RX_OOS_PACKETS
,
776 atomic_long_read(&session
->stats
.rx_oos_packets
),
777 L2TP_ATTR_STATS_PAD
) ||
778 nla_put_u64_64bit(skb
, L2TP_ATTR_RX_ERRORS
,
779 atomic_long_read(&session
->stats
.rx_errors
),
780 L2TP_ATTR_STATS_PAD
))
781 goto nla_put_failure
;
782 nla_nest_end(skb
, nest
);
784 genlmsg_end(skb
, hdr
);
788 genlmsg_cancel(skb
, hdr
);
792 static int l2tp_nl_cmd_session_get(struct sk_buff
*skb
, struct genl_info
*info
)
794 struct l2tp_session
*session
;
798 session
= l2tp_nl_session_get(info
);
804 msg
= nlmsg_new(NLMSG_DEFAULT_SIZE
, GFP_KERNEL
);
810 ret
= l2tp_nl_session_send(msg
, info
->snd_portid
, info
->snd_seq
,
811 0, session
, L2TP_CMD_SESSION_GET
);
815 ret
= genlmsg_unicast(genl_info_net(info
), msg
, info
->snd_portid
);
817 l2tp_session_dec_refcount(session
);
824 l2tp_session_dec_refcount(session
);
829 static int l2tp_nl_cmd_session_dump(struct sk_buff
*skb
, struct netlink_callback
*cb
)
831 struct net
*net
= sock_net(skb
->sk
);
832 struct l2tp_session
*session
;
833 struct l2tp_tunnel
*tunnel
= NULL
;
834 int ti
= cb
->args
[0];
835 int si
= cb
->args
[1];
839 tunnel
= l2tp_tunnel_get_nth(net
, ti
);
844 session
= l2tp_session_get_nth(tunnel
, si
);
847 l2tp_tunnel_dec_refcount(tunnel
);
853 if (l2tp_nl_session_send(skb
, NETLINK_CB(cb
->skb
).portid
,
854 cb
->nlh
->nlmsg_seq
, NLM_F_MULTI
,
855 session
, L2TP_CMD_SESSION_GET
) < 0) {
856 l2tp_session_dec_refcount(session
);
857 l2tp_tunnel_dec_refcount(tunnel
);
860 l2tp_session_dec_refcount(session
);
872 static const struct nla_policy l2tp_nl_policy
[L2TP_ATTR_MAX
+ 1] = {
873 [L2TP_ATTR_NONE
] = { .type
= NLA_UNSPEC
, },
874 [L2TP_ATTR_PW_TYPE
] = { .type
= NLA_U16
, },
875 [L2TP_ATTR_ENCAP_TYPE
] = { .type
= NLA_U16
, },
876 [L2TP_ATTR_OFFSET
] = { .type
= NLA_U16
, },
877 [L2TP_ATTR_DATA_SEQ
] = { .type
= NLA_U8
, },
878 [L2TP_ATTR_L2SPEC_TYPE
] = { .type
= NLA_U8
, },
879 [L2TP_ATTR_L2SPEC_LEN
] = { .type
= NLA_U8
, },
880 [L2TP_ATTR_PROTO_VERSION
] = { .type
= NLA_U8
, },
881 [L2TP_ATTR_CONN_ID
] = { .type
= NLA_U32
, },
882 [L2TP_ATTR_PEER_CONN_ID
] = { .type
= NLA_U32
, },
883 [L2TP_ATTR_SESSION_ID
] = { .type
= NLA_U32
, },
884 [L2TP_ATTR_PEER_SESSION_ID
] = { .type
= NLA_U32
, },
885 [L2TP_ATTR_UDP_CSUM
] = { .type
= NLA_U8
, },
886 [L2TP_ATTR_VLAN_ID
] = { .type
= NLA_U16
, },
887 [L2TP_ATTR_DEBUG
] = { .type
= NLA_U32
, },
888 [L2TP_ATTR_RECV_SEQ
] = { .type
= NLA_U8
, },
889 [L2TP_ATTR_SEND_SEQ
] = { .type
= NLA_U8
, },
890 [L2TP_ATTR_LNS_MODE
] = { .type
= NLA_U8
, },
891 [L2TP_ATTR_USING_IPSEC
] = { .type
= NLA_U8
, },
892 [L2TP_ATTR_RECV_TIMEOUT
] = { .type
= NLA_MSECS
, },
893 [L2TP_ATTR_FD
] = { .type
= NLA_U32
, },
894 [L2TP_ATTR_IP_SADDR
] = { .type
= NLA_U32
, },
895 [L2TP_ATTR_IP_DADDR
] = { .type
= NLA_U32
, },
896 [L2TP_ATTR_UDP_SPORT
] = { .type
= NLA_U16
, },
897 [L2TP_ATTR_UDP_DPORT
] = { .type
= NLA_U16
, },
898 [L2TP_ATTR_MTU
] = { .type
= NLA_U16
, },
899 [L2TP_ATTR_MRU
] = { .type
= NLA_U16
, },
900 [L2TP_ATTR_STATS
] = { .type
= NLA_NESTED
, },
901 [L2TP_ATTR_IP6_SADDR
] = {
903 .len
= sizeof(struct in6_addr
),
905 [L2TP_ATTR_IP6_DADDR
] = {
907 .len
= sizeof(struct in6_addr
),
909 [L2TP_ATTR_IFNAME
] = {
910 .type
= NLA_NUL_STRING
,
913 [L2TP_ATTR_COOKIE
] = {
917 [L2TP_ATTR_PEER_COOKIE
] = {
923 static const struct genl_ops l2tp_nl_ops
[] = {
925 .cmd
= L2TP_CMD_NOOP
,
926 .validate
= GENL_DONT_VALIDATE_STRICT
| GENL_DONT_VALIDATE_DUMP
,
927 .doit
= l2tp_nl_cmd_noop
,
928 /* can be retrieved by unprivileged users */
931 .cmd
= L2TP_CMD_TUNNEL_CREATE
,
932 .validate
= GENL_DONT_VALIDATE_STRICT
| GENL_DONT_VALIDATE_DUMP
,
933 .doit
= l2tp_nl_cmd_tunnel_create
,
934 .flags
= GENL_UNS_ADMIN_PERM
,
937 .cmd
= L2TP_CMD_TUNNEL_DELETE
,
938 .validate
= GENL_DONT_VALIDATE_STRICT
| GENL_DONT_VALIDATE_DUMP
,
939 .doit
= l2tp_nl_cmd_tunnel_delete
,
940 .flags
= GENL_UNS_ADMIN_PERM
,
943 .cmd
= L2TP_CMD_TUNNEL_MODIFY
,
944 .validate
= GENL_DONT_VALIDATE_STRICT
| GENL_DONT_VALIDATE_DUMP
,
945 .doit
= l2tp_nl_cmd_tunnel_modify
,
946 .flags
= GENL_UNS_ADMIN_PERM
,
949 .cmd
= L2TP_CMD_TUNNEL_GET
,
950 .validate
= GENL_DONT_VALIDATE_STRICT
| GENL_DONT_VALIDATE_DUMP
,
951 .doit
= l2tp_nl_cmd_tunnel_get
,
952 .dumpit
= l2tp_nl_cmd_tunnel_dump
,
953 .flags
= GENL_UNS_ADMIN_PERM
,
956 .cmd
= L2TP_CMD_SESSION_CREATE
,
957 .validate
= GENL_DONT_VALIDATE_STRICT
| GENL_DONT_VALIDATE_DUMP
,
958 .doit
= l2tp_nl_cmd_session_create
,
959 .flags
= GENL_UNS_ADMIN_PERM
,
962 .cmd
= L2TP_CMD_SESSION_DELETE
,
963 .validate
= GENL_DONT_VALIDATE_STRICT
| GENL_DONT_VALIDATE_DUMP
,
964 .doit
= l2tp_nl_cmd_session_delete
,
965 .flags
= GENL_UNS_ADMIN_PERM
,
968 .cmd
= L2TP_CMD_SESSION_MODIFY
,
969 .validate
= GENL_DONT_VALIDATE_STRICT
| GENL_DONT_VALIDATE_DUMP
,
970 .doit
= l2tp_nl_cmd_session_modify
,
971 .flags
= GENL_UNS_ADMIN_PERM
,
974 .cmd
= L2TP_CMD_SESSION_GET
,
975 .validate
= GENL_DONT_VALIDATE_STRICT
| GENL_DONT_VALIDATE_DUMP
,
976 .doit
= l2tp_nl_cmd_session_get
,
977 .dumpit
= l2tp_nl_cmd_session_dump
,
978 .flags
= GENL_UNS_ADMIN_PERM
,
982 static struct genl_family l2tp_nl_family __ro_after_init
= {
983 .name
= L2TP_GENL_NAME
,
984 .version
= L2TP_GENL_VERSION
,
986 .maxattr
= L2TP_ATTR_MAX
,
987 .policy
= l2tp_nl_policy
,
989 .module
= THIS_MODULE
,
991 .n_ops
= ARRAY_SIZE(l2tp_nl_ops
),
992 .mcgrps
= l2tp_multicast_group
,
993 .n_mcgrps
= ARRAY_SIZE(l2tp_multicast_group
),
996 int l2tp_nl_register_ops(enum l2tp_pwtype pw_type
, const struct l2tp_nl_cmd_ops
*ops
)
1001 if (pw_type
>= __L2TP_PWTYPE_MAX
)
1006 if (l2tp_nl_cmd_ops
[pw_type
])
1009 l2tp_nl_cmd_ops
[pw_type
] = ops
;
1017 EXPORT_SYMBOL_GPL(l2tp_nl_register_ops
);
1019 void l2tp_nl_unregister_ops(enum l2tp_pwtype pw_type
)
1021 if (pw_type
< __L2TP_PWTYPE_MAX
) {
1023 l2tp_nl_cmd_ops
[pw_type
] = NULL
;
1027 EXPORT_SYMBOL_GPL(l2tp_nl_unregister_ops
);
1029 static int __init
l2tp_nl_init(void)
1031 pr_info("L2TP netlink interface\n");
1032 return genl_register_family(&l2tp_nl_family
);
1035 static void l2tp_nl_cleanup(void)
1037 genl_unregister_family(&l2tp_nl_family
);
1040 module_init(l2tp_nl_init
);
1041 module_exit(l2tp_nl_cleanup
);
1043 MODULE_AUTHOR("James Chapman <jchapman@katalix.com>");
1044 MODULE_DESCRIPTION("L2TP netlink");
1045 MODULE_LICENSE("GPL");
1046 MODULE_VERSION("1.0");
1047 MODULE_ALIAS_GENL_FAMILY("l2tp");