1 // SPDX-License-Identifier: GPL-2.0-or-later
3 * Bridge multicast support.
5 * Copyright (c) 2010 Herbert Xu <herbert@gondor.apana.org.au>
9 #include <linux/export.h>
10 #include <linux/if_ether.h>
11 #include <linux/igmp.h>
13 #include <linux/jhash.h>
14 #include <linux/kernel.h>
15 #include <linux/log2.h>
16 #include <linux/netdevice.h>
17 #include <linux/netfilter_bridge.h>
18 #include <linux/random.h>
19 #include <linux/rculist.h>
20 #include <linux/skbuff.h>
21 #include <linux/slab.h>
22 #include <linux/timer.h>
23 #include <linux/inetdevice.h>
24 #include <linux/mroute.h>
26 #include <net/switchdev.h>
27 #if IS_ENABLED(CONFIG_IPV6)
28 #include <linux/icmpv6.h>
31 #include <net/ip6_checksum.h>
32 #include <net/addrconf.h>
35 #include "br_private.h"
37 static const struct rhashtable_params br_mdb_rht_params = {
38 .head_offset = offsetof(struct net_bridge_mdb_entry, rhnode),
39 .key_offset = offsetof(struct net_bridge_mdb_entry, addr),
40 .key_len = sizeof(struct br_ip),
41 .automatic_shrinking = true,
44 static void br_multicast_start_querier(struct net_bridge *br,
45 struct bridge_mcast_own_query *query);
46 static void br_multicast_add_router(struct net_bridge *br,
47 struct net_bridge_port *port);
48 static void br_ip4_multicast_leave_group(struct net_bridge *br,
49 struct net_bridge_port *port,
52 const unsigned char *src);
54 static void __del_port_router(struct net_bridge_port *p);
55 #if IS_ENABLED(CONFIG_IPV6)
56 static void br_ip6_multicast_leave_group(struct net_bridge *br,
57 struct net_bridge_port *port,
58 const struct in6_addr *group,
59 __u16 vid, const unsigned char *src);
62 static struct net_bridge_mdb_entry *br_mdb_ip_get_rcu(struct net_bridge *br,
65 return rhashtable_lookup(&br->mdb_hash_tbl, dst, br_mdb_rht_params);
68 struct net_bridge_mdb_entry *br_mdb_ip_get(struct net_bridge *br,
71 struct net_bridge_mdb_entry *ent;
73 lockdep_assert_held_once(&br->multicast_lock);
76 ent = rhashtable_lookup(&br->mdb_hash_tbl, dst, br_mdb_rht_params);
82 static struct net_bridge_mdb_entry *br_mdb_ip4_get(struct net_bridge *br,
83 __be32 dst, __u16 vid)
87 memset(&br_dst, 0, sizeof(br_dst));
89 br_dst.proto = htons(ETH_P_IP);
92 return br_mdb_ip_get(br, &br_dst);
95 #if IS_ENABLED(CONFIG_IPV6)
96 static struct net_bridge_mdb_entry *br_mdb_ip6_get(struct net_bridge *br,
97 const struct in6_addr *dst,
102 memset(&br_dst, 0, sizeof(br_dst));
104 br_dst.proto = htons(ETH_P_IPV6);
107 return br_mdb_ip_get(br, &br_dst);
111 struct net_bridge_mdb_entry *br_mdb_get(struct net_bridge *br,
112 struct sk_buff *skb, u16 vid)
116 if (!br_opt_get(br, BROPT_MULTICAST_ENABLED))
119 if (BR_INPUT_SKB_CB(skb)->igmp)
122 memset(&ip, 0, sizeof(ip));
123 ip.proto = skb->protocol;
126 switch (skb->protocol) {
127 case htons(ETH_P_IP):
128 ip.u.ip4 = ip_hdr(skb)->daddr;
130 #if IS_ENABLED(CONFIG_IPV6)
131 case htons(ETH_P_IPV6):
132 ip.u.ip6 = ipv6_hdr(skb)->daddr;
139 return br_mdb_ip_get_rcu(br, &ip);
142 static void br_multicast_group_expired(struct timer_list *t)
144 struct net_bridge_mdb_entry *mp = from_timer(mp, t, timer);
145 struct net_bridge *br = mp->br;
147 spin_lock(&br->multicast_lock);
148 if (!netif_running(br->dev) || timer_pending(&mp->timer))
151 br_multicast_host_leave(mp, true);
156 rhashtable_remove_fast(&br->mdb_hash_tbl, &mp->rhnode,
158 hlist_del_rcu(&mp->mdb_node);
163 spin_unlock(&br->multicast_lock);
166 static void br_multicast_del_pg(struct net_bridge *br,
167 struct net_bridge_port_group *pg)
169 struct net_bridge_mdb_entry *mp;
170 struct net_bridge_port_group *p;
171 struct net_bridge_port_group __rcu **pp;
173 mp = br_mdb_ip_get(br, &pg->addr);
177 for (pp = &mp->ports;
178 (p = mlock_dereference(*pp, br)) != NULL;
183 rcu_assign_pointer(*pp, p->next);
184 hlist_del_init(&p->mglist);
185 del_timer(&p->timer);
186 br_mdb_notify(br->dev, p->port, &pg->addr, RTM_DELMDB,
190 if (!mp->ports && !mp->host_joined &&
191 netif_running(br->dev))
192 mod_timer(&mp->timer, jiffies);
200 static void br_multicast_port_group_expired(struct timer_list *t)
202 struct net_bridge_port_group *pg = from_timer(pg, t, timer);
203 struct net_bridge *br = pg->port->br;
205 spin_lock(&br->multicast_lock);
206 if (!netif_running(br->dev) || timer_pending(&pg->timer) ||
207 hlist_unhashed(&pg->mglist) || pg->flags & MDB_PG_FLAGS_PERMANENT)
210 br_multicast_del_pg(br, pg);
213 spin_unlock(&br->multicast_lock);
216 static struct sk_buff *br_ip4_multicast_alloc_query(struct net_bridge *br,
220 struct igmpv3_query *ihv3;
221 size_t igmp_hdr_size;
227 igmp_hdr_size = sizeof(*ih);
228 if (br->multicast_igmp_version == 3)
229 igmp_hdr_size = sizeof(*ihv3);
230 skb = netdev_alloc_skb_ip_align(br->dev, sizeof(*eth) + sizeof(*iph) +
235 skb->protocol = htons(ETH_P_IP);
237 skb_reset_mac_header(skb);
240 ether_addr_copy(eth->h_source, br->dev->dev_addr);
243 eth->h_dest[2] = 0x5e;
247 eth->h_proto = htons(ETH_P_IP);
248 skb_put(skb, sizeof(*eth));
250 skb_set_network_header(skb, skb->len);
256 iph->tot_len = htons(sizeof(*iph) + igmp_hdr_size + 4);
258 iph->frag_off = htons(IP_DF);
260 iph->protocol = IPPROTO_IGMP;
261 iph->saddr = br_opt_get(br, BROPT_MULTICAST_QUERY_USE_IFADDR) ?
262 inet_select_addr(br->dev, 0, RT_SCOPE_LINK) : 0;
263 iph->daddr = htonl(INADDR_ALLHOSTS_GROUP);
264 ((u8 *)&iph[1])[0] = IPOPT_RA;
265 ((u8 *)&iph[1])[1] = 4;
266 ((u8 *)&iph[1])[2] = 0;
267 ((u8 *)&iph[1])[3] = 0;
271 skb_set_transport_header(skb, skb->len);
272 *igmp_type = IGMP_HOST_MEMBERSHIP_QUERY;
274 switch (br->multicast_igmp_version) {
277 ih->type = IGMP_HOST_MEMBERSHIP_QUERY;
278 ih->code = (group ? br->multicast_last_member_interval :
279 br->multicast_query_response_interval) /
280 (HZ / IGMP_TIMER_SCALE);
283 ih->csum = ip_compute_csum((void *)ih, sizeof(*ih));
286 ihv3 = igmpv3_query_hdr(skb);
287 ihv3->type = IGMP_HOST_MEMBERSHIP_QUERY;
288 ihv3->code = (group ? br->multicast_last_member_interval :
289 br->multicast_query_response_interval) /
290 (HZ / IGMP_TIMER_SCALE);
292 ihv3->qqic = br->multicast_query_interval / HZ;
298 ihv3->csum = ip_compute_csum((void *)ihv3, sizeof(*ihv3));
302 skb_put(skb, igmp_hdr_size);
303 __skb_pull(skb, sizeof(*eth));
309 #if IS_ENABLED(CONFIG_IPV6)
310 static struct sk_buff *br_ip6_multicast_alloc_query(struct net_bridge *br,
311 const struct in6_addr *grp,
314 struct mld2_query *mld2q;
315 unsigned long interval;
316 struct ipv6hdr *ip6h;
317 struct mld_msg *mldq;
323 mld_hdr_size = sizeof(*mldq);
324 if (br->multicast_mld_version == 2)
325 mld_hdr_size = sizeof(*mld2q);
326 skb = netdev_alloc_skb_ip_align(br->dev, sizeof(*eth) + sizeof(*ip6h) +
331 skb->protocol = htons(ETH_P_IPV6);
333 /* Ethernet header */
334 skb_reset_mac_header(skb);
337 ether_addr_copy(eth->h_source, br->dev->dev_addr);
338 eth->h_proto = htons(ETH_P_IPV6);
339 skb_put(skb, sizeof(*eth));
341 /* IPv6 header + HbH option */
342 skb_set_network_header(skb, skb->len);
343 ip6h = ipv6_hdr(skb);
345 *(__force __be32 *)ip6h = htonl(0x60000000);
346 ip6h->payload_len = htons(8 + mld_hdr_size);
347 ip6h->nexthdr = IPPROTO_HOPOPTS;
349 ipv6_addr_set(&ip6h->daddr, htonl(0xff020000), 0, 0, htonl(1));
350 if (ipv6_dev_get_saddr(dev_net(br->dev), br->dev, &ip6h->daddr, 0,
353 br_opt_toggle(br, BROPT_HAS_IPV6_ADDR, false);
357 br_opt_toggle(br, BROPT_HAS_IPV6_ADDR, true);
358 ipv6_eth_mc_map(&ip6h->daddr, eth->h_dest);
360 hopopt = (u8 *)(ip6h + 1);
361 hopopt[0] = IPPROTO_ICMPV6; /* next hdr */
362 hopopt[1] = 0; /* length of HbH */
363 hopopt[2] = IPV6_TLV_ROUTERALERT; /* Router Alert */
364 hopopt[3] = 2; /* Length of RA Option */
365 hopopt[4] = 0; /* Type = 0x0000 (MLD) */
367 hopopt[6] = IPV6_TLV_PAD1; /* Pad1 */
368 hopopt[7] = IPV6_TLV_PAD1; /* Pad1 */
370 skb_put(skb, sizeof(*ip6h) + 8);
373 skb_set_transport_header(skb, skb->len);
374 interval = ipv6_addr_any(grp) ?
375 br->multicast_query_response_interval :
376 br->multicast_last_member_interval;
377 *igmp_type = ICMPV6_MGM_QUERY;
378 switch (br->multicast_mld_version) {
380 mldq = (struct mld_msg *)icmp6_hdr(skb);
381 mldq->mld_type = ICMPV6_MGM_QUERY;
384 mldq->mld_maxdelay = htons((u16)jiffies_to_msecs(interval));
385 mldq->mld_reserved = 0;
386 mldq->mld_mca = *grp;
387 mldq->mld_cksum = csum_ipv6_magic(&ip6h->saddr, &ip6h->daddr,
388 sizeof(*mldq), IPPROTO_ICMPV6,
394 mld2q = (struct mld2_query *)icmp6_hdr(skb);
395 mld2q->mld2q_mrc = htons((u16)jiffies_to_msecs(interval));
396 mld2q->mld2q_type = ICMPV6_MGM_QUERY;
397 mld2q->mld2q_code = 0;
398 mld2q->mld2q_cksum = 0;
399 mld2q->mld2q_resv1 = 0;
400 mld2q->mld2q_resv2 = 0;
401 mld2q->mld2q_suppress = 0;
402 mld2q->mld2q_qrv = 2;
403 mld2q->mld2q_nsrcs = 0;
404 mld2q->mld2q_qqic = br->multicast_query_interval / HZ;
405 mld2q->mld2q_mca = *grp;
406 mld2q->mld2q_cksum = csum_ipv6_magic(&ip6h->saddr, &ip6h->daddr,
414 skb_put(skb, mld_hdr_size);
416 __skb_pull(skb, sizeof(*eth));
423 static struct sk_buff *br_multicast_alloc_query(struct net_bridge *br,
427 switch (addr->proto) {
428 case htons(ETH_P_IP):
429 return br_ip4_multicast_alloc_query(br, addr->u.ip4, igmp_type);
430 #if IS_ENABLED(CONFIG_IPV6)
431 case htons(ETH_P_IPV6):
432 return br_ip6_multicast_alloc_query(br, &addr->u.ip6,
439 struct net_bridge_mdb_entry *br_multicast_new_group(struct net_bridge *br,
442 struct net_bridge_mdb_entry *mp;
445 mp = br_mdb_ip_get(br, group);
449 if (atomic_read(&br->mdb_hash_tbl.nelems) >= br->hash_max) {
450 br_opt_toggle(br, BROPT_MULTICAST_ENABLED, false);
451 return ERR_PTR(-E2BIG);
454 mp = kzalloc(sizeof(*mp), GFP_ATOMIC);
456 return ERR_PTR(-ENOMEM);
460 timer_setup(&mp->timer, br_multicast_group_expired, 0);
461 err = rhashtable_lookup_insert_fast(&br->mdb_hash_tbl, &mp->rhnode,
467 hlist_add_head_rcu(&mp->mdb_node, &br->mdb_list);
473 struct net_bridge_port_group *br_multicast_new_port_group(
474 struct net_bridge_port *port,
476 struct net_bridge_port_group __rcu *next,
478 const unsigned char *src)
480 struct net_bridge_port_group *p;
482 p = kzalloc(sizeof(*p), GFP_ATOMIC);
489 rcu_assign_pointer(p->next, next);
490 hlist_add_head(&p->mglist, &port->mglist);
491 timer_setup(&p->timer, br_multicast_port_group_expired, 0);
494 memcpy(p->eth_addr, src, ETH_ALEN);
496 eth_broadcast_addr(p->eth_addr);
501 static bool br_port_group_equal(struct net_bridge_port_group *p,
502 struct net_bridge_port *port,
503 const unsigned char *src)
508 if (!(port->flags & BR_MULTICAST_TO_UNICAST))
511 return ether_addr_equal(src, p->eth_addr);
514 void br_multicast_host_join(struct net_bridge_mdb_entry *mp, bool notify)
516 if (!mp->host_joined) {
517 mp->host_joined = true;
519 br_mdb_notify(mp->br->dev, NULL, &mp->addr,
522 mod_timer(&mp->timer, jiffies + mp->br->multicast_membership_interval);
525 void br_multicast_host_leave(struct net_bridge_mdb_entry *mp, bool notify)
527 if (!mp->host_joined)
530 mp->host_joined = false;
532 br_mdb_notify(mp->br->dev, NULL, &mp->addr, RTM_DELMDB, 0);
535 static int br_multicast_add_group(struct net_bridge *br,
536 struct net_bridge_port *port,
538 const unsigned char *src)
540 struct net_bridge_port_group __rcu **pp;
541 struct net_bridge_port_group *p;
542 struct net_bridge_mdb_entry *mp;
543 unsigned long now = jiffies;
546 spin_lock(&br->multicast_lock);
547 if (!netif_running(br->dev) ||
548 (port && port->state == BR_STATE_DISABLED))
551 mp = br_multicast_new_group(br, group);
557 br_multicast_host_join(mp, true);
561 for (pp = &mp->ports;
562 (p = mlock_dereference(*pp, br)) != NULL;
564 if (br_port_group_equal(p, port, src))
566 if ((unsigned long)p->port < (unsigned long)port)
570 p = br_multicast_new_port_group(port, group, *pp, 0, src);
573 rcu_assign_pointer(*pp, p);
574 br_mdb_notify(br->dev, port, group, RTM_NEWMDB, 0);
577 mod_timer(&p->timer, now + br->multicast_membership_interval);
582 spin_unlock(&br->multicast_lock);
586 static int br_ip4_multicast_add_group(struct net_bridge *br,
587 struct net_bridge_port *port,
590 const unsigned char *src)
592 struct br_ip br_group;
594 if (ipv4_is_local_multicast(group))
597 memset(&br_group, 0, sizeof(br_group));
598 br_group.u.ip4 = group;
599 br_group.proto = htons(ETH_P_IP);
602 return br_multicast_add_group(br, port, &br_group, src);
605 #if IS_ENABLED(CONFIG_IPV6)
606 static int br_ip6_multicast_add_group(struct net_bridge *br,
607 struct net_bridge_port *port,
608 const struct in6_addr *group,
610 const unsigned char *src)
612 struct br_ip br_group;
614 if (ipv6_addr_is_ll_all_nodes(group))
617 memset(&br_group, 0, sizeof(br_group));
618 br_group.u.ip6 = *group;
619 br_group.proto = htons(ETH_P_IPV6);
622 return br_multicast_add_group(br, port, &br_group, src);
626 static void br_multicast_router_expired(struct timer_list *t)
628 struct net_bridge_port *port =
629 from_timer(port, t, multicast_router_timer);
630 struct net_bridge *br = port->br;
632 spin_lock(&br->multicast_lock);
633 if (port->multicast_router == MDB_RTR_TYPE_DISABLED ||
634 port->multicast_router == MDB_RTR_TYPE_PERM ||
635 timer_pending(&port->multicast_router_timer))
638 __del_port_router(port);
640 spin_unlock(&br->multicast_lock);
643 static void br_mc_router_state_change(struct net_bridge *p,
646 struct switchdev_attr attr = {
648 .id = SWITCHDEV_ATTR_ID_BRIDGE_MROUTER,
649 .flags = SWITCHDEV_F_DEFER,
650 .u.mrouter = is_mc_router,
653 switchdev_port_attr_set(p->dev, &attr);
656 static void br_multicast_local_router_expired(struct timer_list *t)
658 struct net_bridge *br = from_timer(br, t, multicast_router_timer);
660 spin_lock(&br->multicast_lock);
661 if (br->multicast_router == MDB_RTR_TYPE_DISABLED ||
662 br->multicast_router == MDB_RTR_TYPE_PERM ||
663 timer_pending(&br->multicast_router_timer))
666 br_mc_router_state_change(br, false);
668 spin_unlock(&br->multicast_lock);
671 static void br_multicast_querier_expired(struct net_bridge *br,
672 struct bridge_mcast_own_query *query)
674 spin_lock(&br->multicast_lock);
675 if (!netif_running(br->dev) || !br_opt_get(br, BROPT_MULTICAST_ENABLED))
678 br_multicast_start_querier(br, query);
681 spin_unlock(&br->multicast_lock);
684 static void br_ip4_multicast_querier_expired(struct timer_list *t)
686 struct net_bridge *br = from_timer(br, t, ip4_other_query.timer);
688 br_multicast_querier_expired(br, &br->ip4_own_query);
691 #if IS_ENABLED(CONFIG_IPV6)
692 static void br_ip6_multicast_querier_expired(struct timer_list *t)
694 struct net_bridge *br = from_timer(br, t, ip6_other_query.timer);
696 br_multicast_querier_expired(br, &br->ip6_own_query);
700 static void br_multicast_select_own_querier(struct net_bridge *br,
704 if (ip->proto == htons(ETH_P_IP))
705 br->ip4_querier.addr.u.ip4 = ip_hdr(skb)->saddr;
706 #if IS_ENABLED(CONFIG_IPV6)
708 br->ip6_querier.addr.u.ip6 = ipv6_hdr(skb)->saddr;
712 static void __br_multicast_send_query(struct net_bridge *br,
713 struct net_bridge_port *port,
719 skb = br_multicast_alloc_query(br, ip, &igmp_type);
724 skb->dev = port->dev;
725 br_multicast_count(br, port, skb, igmp_type,
727 NF_HOOK(NFPROTO_BRIDGE, NF_BR_LOCAL_OUT,
728 dev_net(port->dev), NULL, skb, NULL, skb->dev,
729 br_dev_queue_push_xmit);
731 br_multicast_select_own_querier(br, ip, skb);
732 br_multicast_count(br, port, skb, igmp_type,
738 static void br_multicast_send_query(struct net_bridge *br,
739 struct net_bridge_port *port,
740 struct bridge_mcast_own_query *own_query)
742 struct bridge_mcast_other_query *other_query = NULL;
743 struct br_ip br_group;
746 if (!netif_running(br->dev) ||
747 !br_opt_get(br, BROPT_MULTICAST_ENABLED) ||
748 !br_opt_get(br, BROPT_MULTICAST_QUERIER))
751 memset(&br_group.u, 0, sizeof(br_group.u));
753 if (port ? (own_query == &port->ip4_own_query) :
754 (own_query == &br->ip4_own_query)) {
755 other_query = &br->ip4_other_query;
756 br_group.proto = htons(ETH_P_IP);
757 #if IS_ENABLED(CONFIG_IPV6)
759 other_query = &br->ip6_other_query;
760 br_group.proto = htons(ETH_P_IPV6);
764 if (!other_query || timer_pending(&other_query->timer))
767 __br_multicast_send_query(br, port, &br_group);
770 time += own_query->startup_sent < br->multicast_startup_query_count ?
771 br->multicast_startup_query_interval :
772 br->multicast_query_interval;
773 mod_timer(&own_query->timer, time);
777 br_multicast_port_query_expired(struct net_bridge_port *port,
778 struct bridge_mcast_own_query *query)
780 struct net_bridge *br = port->br;
782 spin_lock(&br->multicast_lock);
783 if (port->state == BR_STATE_DISABLED ||
784 port->state == BR_STATE_BLOCKING)
787 if (query->startup_sent < br->multicast_startup_query_count)
788 query->startup_sent++;
790 br_multicast_send_query(port->br, port, query);
793 spin_unlock(&br->multicast_lock);
796 static void br_ip4_multicast_port_query_expired(struct timer_list *t)
798 struct net_bridge_port *port = from_timer(port, t, ip4_own_query.timer);
800 br_multicast_port_query_expired(port, &port->ip4_own_query);
803 #if IS_ENABLED(CONFIG_IPV6)
804 static void br_ip6_multicast_port_query_expired(struct timer_list *t)
806 struct net_bridge_port *port = from_timer(port, t, ip6_own_query.timer);
808 br_multicast_port_query_expired(port, &port->ip6_own_query);
812 static void br_mc_disabled_update(struct net_device *dev, bool value)
814 struct switchdev_attr attr = {
816 .id = SWITCHDEV_ATTR_ID_BRIDGE_MC_DISABLED,
817 .flags = SWITCHDEV_F_DEFER,
818 .u.mc_disabled = !value,
821 switchdev_port_attr_set(dev, &attr);
824 int br_multicast_add_port(struct net_bridge_port *port)
826 port->multicast_router = MDB_RTR_TYPE_TEMP_QUERY;
828 timer_setup(&port->multicast_router_timer,
829 br_multicast_router_expired, 0);
830 timer_setup(&port->ip4_own_query.timer,
831 br_ip4_multicast_port_query_expired, 0);
832 #if IS_ENABLED(CONFIG_IPV6)
833 timer_setup(&port->ip6_own_query.timer,
834 br_ip6_multicast_port_query_expired, 0);
836 br_mc_disabled_update(port->dev,
837 br_opt_get(port->br, BROPT_MULTICAST_ENABLED));
839 port->mcast_stats = netdev_alloc_pcpu_stats(struct bridge_mcast_stats);
840 if (!port->mcast_stats)
846 void br_multicast_del_port(struct net_bridge_port *port)
848 struct net_bridge *br = port->br;
849 struct net_bridge_port_group *pg;
850 struct hlist_node *n;
852 /* Take care of the remaining groups, only perm ones should be left */
853 spin_lock_bh(&br->multicast_lock);
854 hlist_for_each_entry_safe(pg, n, &port->mglist, mglist)
855 br_multicast_del_pg(br, pg);
856 spin_unlock_bh(&br->multicast_lock);
857 del_timer_sync(&port->multicast_router_timer);
858 free_percpu(port->mcast_stats);
861 static void br_multicast_enable(struct bridge_mcast_own_query *query)
863 query->startup_sent = 0;
865 if (try_to_del_timer_sync(&query->timer) >= 0 ||
866 del_timer(&query->timer))
867 mod_timer(&query->timer, jiffies);
870 static void __br_multicast_enable_port(struct net_bridge_port *port)
872 struct net_bridge *br = port->br;
874 if (!br_opt_get(br, BROPT_MULTICAST_ENABLED) || !netif_running(br->dev))
877 br_multicast_enable(&port->ip4_own_query);
878 #if IS_ENABLED(CONFIG_IPV6)
879 br_multicast_enable(&port->ip6_own_query);
881 if (port->multicast_router == MDB_RTR_TYPE_PERM &&
882 hlist_unhashed(&port->rlist))
883 br_multicast_add_router(br, port);
886 void br_multicast_enable_port(struct net_bridge_port *port)
888 struct net_bridge *br = port->br;
890 spin_lock(&br->multicast_lock);
891 __br_multicast_enable_port(port);
892 spin_unlock(&br->multicast_lock);
895 void br_multicast_disable_port(struct net_bridge_port *port)
897 struct net_bridge *br = port->br;
898 struct net_bridge_port_group *pg;
899 struct hlist_node *n;
901 spin_lock(&br->multicast_lock);
902 hlist_for_each_entry_safe(pg, n, &port->mglist, mglist)
903 if (!(pg->flags & MDB_PG_FLAGS_PERMANENT))
904 br_multicast_del_pg(br, pg);
906 __del_port_router(port);
908 del_timer(&port->multicast_router_timer);
909 del_timer(&port->ip4_own_query.timer);
910 #if IS_ENABLED(CONFIG_IPV6)
911 del_timer(&port->ip6_own_query.timer);
913 spin_unlock(&br->multicast_lock);
916 static int br_ip4_multicast_igmp3_report(struct net_bridge *br,
917 struct net_bridge_port *port,
921 const unsigned char *src;
922 struct igmpv3_report *ih;
923 struct igmpv3_grec *grec;
932 ih = igmpv3_report_hdr(skb);
933 num = ntohs(ih->ngrec);
934 len = skb_transport_offset(skb) + sizeof(*ih);
936 for (i = 0; i < num; i++) {
937 len += sizeof(*grec);
938 if (!ip_mc_may_pull(skb, len))
941 grec = (void *)(skb->data + len - sizeof(*grec));
942 group = grec->grec_mca;
943 type = grec->grec_type;
944 nsrcs = ntohs(grec->grec_nsrcs);
947 if (!ip_mc_may_pull(skb, len))
950 /* We treat this as an IGMPv2 report for now. */
952 case IGMPV3_MODE_IS_INCLUDE:
953 case IGMPV3_MODE_IS_EXCLUDE:
954 case IGMPV3_CHANGE_TO_INCLUDE:
955 case IGMPV3_CHANGE_TO_EXCLUDE:
956 case IGMPV3_ALLOW_NEW_SOURCES:
957 case IGMPV3_BLOCK_OLD_SOURCES:
964 src = eth_hdr(skb)->h_source;
965 if ((type == IGMPV3_CHANGE_TO_INCLUDE ||
966 type == IGMPV3_MODE_IS_INCLUDE) &&
968 br_ip4_multicast_leave_group(br, port, group, vid, src);
970 err = br_ip4_multicast_add_group(br, port, group, vid,
980 #if IS_ENABLED(CONFIG_IPV6)
981 static int br_ip6_multicast_mld2_report(struct net_bridge *br,
982 struct net_bridge_port *port,
986 unsigned int nsrcs_offset;
987 const unsigned char *src;
988 struct icmp6hdr *icmp6h;
989 struct mld2_grec *grec;
990 unsigned int grec_len;
996 if (!ipv6_mc_may_pull(skb, sizeof(*icmp6h)))
999 icmp6h = icmp6_hdr(skb);
1000 num = ntohs(icmp6h->icmp6_dataun.un_data16[1]);
1001 len = skb_transport_offset(skb) + sizeof(*icmp6h);
1003 for (i = 0; i < num; i++) {
1004 __be16 *_nsrcs, __nsrcs;
1007 nsrcs_offset = len + offsetof(struct mld2_grec, grec_nsrcs);
1009 if (skb_transport_offset(skb) + ipv6_transport_len(skb) <
1010 nsrcs_offset + sizeof(__nsrcs))
1013 _nsrcs = skb_header_pointer(skb, nsrcs_offset,
1014 sizeof(__nsrcs), &__nsrcs);
1018 nsrcs = ntohs(*_nsrcs);
1019 grec_len = struct_size(grec, grec_src, nsrcs);
1021 if (!ipv6_mc_may_pull(skb, len + grec_len))
1024 grec = (struct mld2_grec *)(skb->data + len);
1027 /* We treat these as MLDv1 reports for now. */
1028 switch (grec->grec_type) {
1029 case MLD2_MODE_IS_INCLUDE:
1030 case MLD2_MODE_IS_EXCLUDE:
1031 case MLD2_CHANGE_TO_INCLUDE:
1032 case MLD2_CHANGE_TO_EXCLUDE:
1033 case MLD2_ALLOW_NEW_SOURCES:
1034 case MLD2_BLOCK_OLD_SOURCES:
1041 src = eth_hdr(skb)->h_source;
1042 if ((grec->grec_type == MLD2_CHANGE_TO_INCLUDE ||
1043 grec->grec_type == MLD2_MODE_IS_INCLUDE) &&
1045 br_ip6_multicast_leave_group(br, port, &grec->grec_mca,
1048 err = br_ip6_multicast_add_group(br, port,
1049 &grec->grec_mca, vid,
1060 static bool br_ip4_multicast_select_querier(struct net_bridge *br,
1061 struct net_bridge_port *port,
1064 if (!timer_pending(&br->ip4_own_query.timer) &&
1065 !timer_pending(&br->ip4_other_query.timer))
1068 if (!br->ip4_querier.addr.u.ip4)
1071 if (ntohl(saddr) <= ntohl(br->ip4_querier.addr.u.ip4))
1077 br->ip4_querier.addr.u.ip4 = saddr;
1079 /* update protected by general multicast_lock by caller */
1080 rcu_assign_pointer(br->ip4_querier.port, port);
1085 #if IS_ENABLED(CONFIG_IPV6)
1086 static bool br_ip6_multicast_select_querier(struct net_bridge *br,
1087 struct net_bridge_port *port,
1088 struct in6_addr *saddr)
1090 if (!timer_pending(&br->ip6_own_query.timer) &&
1091 !timer_pending(&br->ip6_other_query.timer))
1094 if (ipv6_addr_cmp(saddr, &br->ip6_querier.addr.u.ip6) <= 0)
1100 br->ip6_querier.addr.u.ip6 = *saddr;
1102 /* update protected by general multicast_lock by caller */
1103 rcu_assign_pointer(br->ip6_querier.port, port);
1109 static bool br_multicast_select_querier(struct net_bridge *br,
1110 struct net_bridge_port *port,
1111 struct br_ip *saddr)
1113 switch (saddr->proto) {
1114 case htons(ETH_P_IP):
1115 return br_ip4_multicast_select_querier(br, port, saddr->u.ip4);
1116 #if IS_ENABLED(CONFIG_IPV6)
1117 case htons(ETH_P_IPV6):
1118 return br_ip6_multicast_select_querier(br, port, &saddr->u.ip6);
1126 br_multicast_update_query_timer(struct net_bridge *br,
1127 struct bridge_mcast_other_query *query,
1128 unsigned long max_delay)
1130 if (!timer_pending(&query->timer))
1131 query->delay_time = jiffies + max_delay;
1133 mod_timer(&query->timer, jiffies + br->multicast_querier_interval);
1136 static void br_port_mc_router_state_change(struct net_bridge_port *p,
1139 struct switchdev_attr attr = {
1141 .id = SWITCHDEV_ATTR_ID_PORT_MROUTER,
1142 .flags = SWITCHDEV_F_DEFER,
1143 .u.mrouter = is_mc_router,
1146 switchdev_port_attr_set(p->dev, &attr);
1150 * Add port to router_list
1151 * list is maintained ordered by pointer value
1152 * and locked by br->multicast_lock and RCU
1154 static void br_multicast_add_router(struct net_bridge *br,
1155 struct net_bridge_port *port)
1157 struct net_bridge_port *p;
1158 struct hlist_node *slot = NULL;
1160 if (!hlist_unhashed(&port->rlist))
1163 hlist_for_each_entry(p, &br->router_list, rlist) {
1164 if ((unsigned long) port >= (unsigned long) p)
1170 hlist_add_behind_rcu(&port->rlist, slot);
1172 hlist_add_head_rcu(&port->rlist, &br->router_list);
1173 br_rtr_notify(br->dev, port, RTM_NEWMDB);
1174 br_port_mc_router_state_change(port, true);
1177 static void br_multicast_mark_router(struct net_bridge *br,
1178 struct net_bridge_port *port)
1180 unsigned long now = jiffies;
1183 if (br->multicast_router == MDB_RTR_TYPE_TEMP_QUERY) {
1184 if (!timer_pending(&br->multicast_router_timer))
1185 br_mc_router_state_change(br, true);
1186 mod_timer(&br->multicast_router_timer,
1187 now + br->multicast_querier_interval);
1192 if (port->multicast_router == MDB_RTR_TYPE_DISABLED ||
1193 port->multicast_router == MDB_RTR_TYPE_PERM)
1196 br_multicast_add_router(br, port);
1198 mod_timer(&port->multicast_router_timer,
1199 now + br->multicast_querier_interval);
1202 static void br_multicast_query_received(struct net_bridge *br,
1203 struct net_bridge_port *port,
1204 struct bridge_mcast_other_query *query,
1205 struct br_ip *saddr,
1206 unsigned long max_delay)
1208 if (!br_multicast_select_querier(br, port, saddr))
1211 br_multicast_update_query_timer(br, query, max_delay);
1212 br_multicast_mark_router(br, port);
1215 static void br_ip4_multicast_query(struct net_bridge *br,
1216 struct net_bridge_port *port,
1217 struct sk_buff *skb,
1220 unsigned int transport_len = ip_transport_len(skb);
1221 const struct iphdr *iph = ip_hdr(skb);
1222 struct igmphdr *ih = igmp_hdr(skb);
1223 struct net_bridge_mdb_entry *mp;
1224 struct igmpv3_query *ih3;
1225 struct net_bridge_port_group *p;
1226 struct net_bridge_port_group __rcu **pp;
1228 unsigned long max_delay;
1229 unsigned long now = jiffies;
1232 spin_lock(&br->multicast_lock);
1233 if (!netif_running(br->dev) ||
1234 (port && port->state == BR_STATE_DISABLED))
1239 if (transport_len == sizeof(*ih)) {
1240 max_delay = ih->code * (HZ / IGMP_TIMER_SCALE);
1243 max_delay = 10 * HZ;
1246 } else if (transport_len >= sizeof(*ih3)) {
1247 ih3 = igmpv3_query_hdr(skb);
1251 max_delay = ih3->code ?
1252 IGMPV3_MRC(ih3->code) * (HZ / IGMP_TIMER_SCALE) : 1;
1258 saddr.proto = htons(ETH_P_IP);
1259 saddr.u.ip4 = iph->saddr;
1261 br_multicast_query_received(br, port, &br->ip4_other_query,
1266 mp = br_mdb_ip4_get(br, group, vid);
1270 max_delay *= br->multicast_last_member_count;
1272 if (mp->host_joined &&
1273 (timer_pending(&mp->timer) ?
1274 time_after(mp->timer.expires, now + max_delay) :
1275 try_to_del_timer_sync(&mp->timer) >= 0))
1276 mod_timer(&mp->timer, now + max_delay);
1278 for (pp = &mp->ports;
1279 (p = mlock_dereference(*pp, br)) != NULL;
1281 if (timer_pending(&p->timer) ?
1282 time_after(p->timer.expires, now + max_delay) :
1283 try_to_del_timer_sync(&p->timer) >= 0)
1284 mod_timer(&p->timer, now + max_delay);
1288 spin_unlock(&br->multicast_lock);
1291 #if IS_ENABLED(CONFIG_IPV6)
1292 static int br_ip6_multicast_query(struct net_bridge *br,
1293 struct net_bridge_port *port,
1294 struct sk_buff *skb,
1297 unsigned int transport_len = ipv6_transport_len(skb);
1298 struct mld_msg *mld;
1299 struct net_bridge_mdb_entry *mp;
1300 struct mld2_query *mld2q;
1301 struct net_bridge_port_group *p;
1302 struct net_bridge_port_group __rcu **pp;
1304 unsigned long max_delay;
1305 unsigned long now = jiffies;
1306 unsigned int offset = skb_transport_offset(skb);
1307 const struct in6_addr *group = NULL;
1308 bool is_general_query;
1311 spin_lock(&br->multicast_lock);
1312 if (!netif_running(br->dev) ||
1313 (port && port->state == BR_STATE_DISABLED))
1316 if (transport_len == sizeof(*mld)) {
1317 if (!pskb_may_pull(skb, offset + sizeof(*mld))) {
1321 mld = (struct mld_msg *) icmp6_hdr(skb);
1322 max_delay = msecs_to_jiffies(ntohs(mld->mld_maxdelay));
1324 group = &mld->mld_mca;
1326 if (!pskb_may_pull(skb, offset + sizeof(*mld2q))) {
1330 mld2q = (struct mld2_query *)icmp6_hdr(skb);
1331 if (!mld2q->mld2q_nsrcs)
1332 group = &mld2q->mld2q_mca;
1334 max_delay = max(msecs_to_jiffies(mldv2_mrc(mld2q)), 1UL);
1337 is_general_query = group && ipv6_addr_any(group);
1339 if (is_general_query) {
1340 saddr.proto = htons(ETH_P_IPV6);
1341 saddr.u.ip6 = ipv6_hdr(skb)->saddr;
1343 br_multicast_query_received(br, port, &br->ip6_other_query,
1346 } else if (!group) {
1350 mp = br_mdb_ip6_get(br, group, vid);
1354 max_delay *= br->multicast_last_member_count;
1355 if (mp->host_joined &&
1356 (timer_pending(&mp->timer) ?
1357 time_after(mp->timer.expires, now + max_delay) :
1358 try_to_del_timer_sync(&mp->timer) >= 0))
1359 mod_timer(&mp->timer, now + max_delay);
1361 for (pp = &mp->ports;
1362 (p = mlock_dereference(*pp, br)) != NULL;
1364 if (timer_pending(&p->timer) ?
1365 time_after(p->timer.expires, now + max_delay) :
1366 try_to_del_timer_sync(&p->timer) >= 0)
1367 mod_timer(&p->timer, now + max_delay);
1371 spin_unlock(&br->multicast_lock);
1377 br_multicast_leave_group(struct net_bridge *br,
1378 struct net_bridge_port *port,
1379 struct br_ip *group,
1380 struct bridge_mcast_other_query *other_query,
1381 struct bridge_mcast_own_query *own_query,
1382 const unsigned char *src)
1384 struct net_bridge_mdb_entry *mp;
1385 struct net_bridge_port_group *p;
1389 spin_lock(&br->multicast_lock);
1390 if (!netif_running(br->dev) ||
1391 (port && port->state == BR_STATE_DISABLED))
1394 mp = br_mdb_ip_get(br, group);
1398 if (port && (port->flags & BR_MULTICAST_FAST_LEAVE)) {
1399 struct net_bridge_port_group __rcu **pp;
1401 for (pp = &mp->ports;
1402 (p = mlock_dereference(*pp, br)) != NULL;
1404 if (!br_port_group_equal(p, port, src))
1407 if (p->flags & MDB_PG_FLAGS_PERMANENT)
1410 rcu_assign_pointer(*pp, p->next);
1411 hlist_del_init(&p->mglist);
1412 del_timer(&p->timer);
1414 br_mdb_notify(br->dev, port, group, RTM_DELMDB,
1415 p->flags | MDB_PG_FLAGS_FAST_LEAVE);
1417 if (!mp->ports && !mp->host_joined &&
1418 netif_running(br->dev))
1419 mod_timer(&mp->timer, jiffies);
1424 if (timer_pending(&other_query->timer))
1427 if (br_opt_get(br, BROPT_MULTICAST_QUERIER)) {
1428 __br_multicast_send_query(br, port, &mp->addr);
1430 time = jiffies + br->multicast_last_member_count *
1431 br->multicast_last_member_interval;
1433 mod_timer(&own_query->timer, time);
1435 for (p = mlock_dereference(mp->ports, br);
1437 p = mlock_dereference(p->next, br)) {
1438 if (!br_port_group_equal(p, port, src))
1441 if (!hlist_unhashed(&p->mglist) &&
1442 (timer_pending(&p->timer) ?
1443 time_after(p->timer.expires, time) :
1444 try_to_del_timer_sync(&p->timer) >= 0)) {
1445 mod_timer(&p->timer, time);
1453 time = now + br->multicast_last_member_count *
1454 br->multicast_last_member_interval;
1457 if (mp->host_joined &&
1458 (timer_pending(&mp->timer) ?
1459 time_after(mp->timer.expires, time) :
1460 try_to_del_timer_sync(&mp->timer) >= 0)) {
1461 mod_timer(&mp->timer, time);
1467 for (p = mlock_dereference(mp->ports, br);
1469 p = mlock_dereference(p->next, br)) {
1470 if (p->port != port)
1473 if (!hlist_unhashed(&p->mglist) &&
1474 (timer_pending(&p->timer) ?
1475 time_after(p->timer.expires, time) :
1476 try_to_del_timer_sync(&p->timer) >= 0)) {
1477 mod_timer(&p->timer, time);
1483 spin_unlock(&br->multicast_lock);
1486 static void br_ip4_multicast_leave_group(struct net_bridge *br,
1487 struct net_bridge_port *port,
1490 const unsigned char *src)
1492 struct br_ip br_group;
1493 struct bridge_mcast_own_query *own_query;
1495 if (ipv4_is_local_multicast(group))
1498 own_query = port ? &port->ip4_own_query : &br->ip4_own_query;
1500 memset(&br_group, 0, sizeof(br_group));
1501 br_group.u.ip4 = group;
1502 br_group.proto = htons(ETH_P_IP);
1505 br_multicast_leave_group(br, port, &br_group, &br->ip4_other_query,
1509 #if IS_ENABLED(CONFIG_IPV6)
1510 static void br_ip6_multicast_leave_group(struct net_bridge *br,
1511 struct net_bridge_port *port,
1512 const struct in6_addr *group,
1514 const unsigned char *src)
1516 struct br_ip br_group;
1517 struct bridge_mcast_own_query *own_query;
1519 if (ipv6_addr_is_ll_all_nodes(group))
1522 own_query = port ? &port->ip6_own_query : &br->ip6_own_query;
1524 memset(&br_group, 0, sizeof(br_group));
1525 br_group.u.ip6 = *group;
1526 br_group.proto = htons(ETH_P_IPV6);
1529 br_multicast_leave_group(br, port, &br_group, &br->ip6_other_query,
1534 static void br_multicast_err_count(const struct net_bridge *br,
1535 const struct net_bridge_port *p,
1538 struct bridge_mcast_stats __percpu *stats;
1539 struct bridge_mcast_stats *pstats;
1541 if (!br_opt_get(br, BROPT_MULTICAST_STATS_ENABLED))
1545 stats = p->mcast_stats;
1547 stats = br->mcast_stats;
1548 if (WARN_ON(!stats))
1551 pstats = this_cpu_ptr(stats);
1553 u64_stats_update_begin(&pstats->syncp);
1555 case htons(ETH_P_IP):
1556 pstats->mstats.igmp_parse_errors++;
1558 #if IS_ENABLED(CONFIG_IPV6)
1559 case htons(ETH_P_IPV6):
1560 pstats->mstats.mld_parse_errors++;
1564 u64_stats_update_end(&pstats->syncp);
1567 static void br_multicast_pim(struct net_bridge *br,
1568 struct net_bridge_port *port,
1569 const struct sk_buff *skb)
1571 unsigned int offset = skb_transport_offset(skb);
1572 struct pimhdr *pimhdr, _pimhdr;
1574 pimhdr = skb_header_pointer(skb, offset, sizeof(_pimhdr), &_pimhdr);
1575 if (!pimhdr || pim_hdr_version(pimhdr) != PIM_VERSION ||
1576 pim_hdr_type(pimhdr) != PIM_TYPE_HELLO)
1579 br_multicast_mark_router(br, port);
1582 static int br_ip4_multicast_mrd_rcv(struct net_bridge *br,
1583 struct net_bridge_port *port,
1584 struct sk_buff *skb)
1586 if (ip_hdr(skb)->protocol != IPPROTO_IGMP ||
1587 igmp_hdr(skb)->type != IGMP_MRDISC_ADV)
1590 br_multicast_mark_router(br, port);
1595 static int br_multicast_ipv4_rcv(struct net_bridge *br,
1596 struct net_bridge_port *port,
1597 struct sk_buff *skb,
1600 const unsigned char *src;
1604 err = ip_mc_check_igmp(skb);
1606 if (err == -ENOMSG) {
1607 if (!ipv4_is_local_multicast(ip_hdr(skb)->daddr)) {
1608 BR_INPUT_SKB_CB(skb)->mrouters_only = 1;
1609 } else if (pim_ipv4_all_pim_routers(ip_hdr(skb)->daddr)) {
1610 if (ip_hdr(skb)->protocol == IPPROTO_PIM)
1611 br_multicast_pim(br, port, skb);
1612 } else if (ipv4_is_all_snoopers(ip_hdr(skb)->daddr)) {
1613 br_ip4_multicast_mrd_rcv(br, port, skb);
1617 } else if (err < 0) {
1618 br_multicast_err_count(br, port, skb->protocol);
1623 src = eth_hdr(skb)->h_source;
1624 BR_INPUT_SKB_CB(skb)->igmp = ih->type;
1627 case IGMP_HOST_MEMBERSHIP_REPORT:
1628 case IGMPV2_HOST_MEMBERSHIP_REPORT:
1629 BR_INPUT_SKB_CB(skb)->mrouters_only = 1;
1630 err = br_ip4_multicast_add_group(br, port, ih->group, vid, src);
1632 case IGMPV3_HOST_MEMBERSHIP_REPORT:
1633 err = br_ip4_multicast_igmp3_report(br, port, skb, vid);
1635 case IGMP_HOST_MEMBERSHIP_QUERY:
1636 br_ip4_multicast_query(br, port, skb, vid);
1638 case IGMP_HOST_LEAVE_MESSAGE:
1639 br_ip4_multicast_leave_group(br, port, ih->group, vid, src);
1643 br_multicast_count(br, port, skb, BR_INPUT_SKB_CB(skb)->igmp,
1649 #if IS_ENABLED(CONFIG_IPV6)
1650 static void br_ip6_multicast_mrd_rcv(struct net_bridge *br,
1651 struct net_bridge_port *port,
1652 struct sk_buff *skb)
1654 if (icmp6_hdr(skb)->icmp6_type != ICMPV6_MRDISC_ADV)
1657 br_multicast_mark_router(br, port);
1660 static int br_multicast_ipv6_rcv(struct net_bridge *br,
1661 struct net_bridge_port *port,
1662 struct sk_buff *skb,
1665 const unsigned char *src;
1666 struct mld_msg *mld;
1669 err = ipv6_mc_check_mld(skb);
1671 if (err == -ENOMSG || err == -ENODATA) {
1672 if (!ipv6_addr_is_ll_all_nodes(&ipv6_hdr(skb)->daddr))
1673 BR_INPUT_SKB_CB(skb)->mrouters_only = 1;
1674 if (err == -ENODATA &&
1675 ipv6_addr_is_all_snoopers(&ipv6_hdr(skb)->daddr))
1676 br_ip6_multicast_mrd_rcv(br, port, skb);
1679 } else if (err < 0) {
1680 br_multicast_err_count(br, port, skb->protocol);
1684 mld = (struct mld_msg *)skb_transport_header(skb);
1685 BR_INPUT_SKB_CB(skb)->igmp = mld->mld_type;
1687 switch (mld->mld_type) {
1688 case ICMPV6_MGM_REPORT:
1689 src = eth_hdr(skb)->h_source;
1690 BR_INPUT_SKB_CB(skb)->mrouters_only = 1;
1691 err = br_ip6_multicast_add_group(br, port, &mld->mld_mca, vid,
1694 case ICMPV6_MLD2_REPORT:
1695 err = br_ip6_multicast_mld2_report(br, port, skb, vid);
1697 case ICMPV6_MGM_QUERY:
1698 err = br_ip6_multicast_query(br, port, skb, vid);
1700 case ICMPV6_MGM_REDUCTION:
1701 src = eth_hdr(skb)->h_source;
1702 br_ip6_multicast_leave_group(br, port, &mld->mld_mca, vid, src);
1706 br_multicast_count(br, port, skb, BR_INPUT_SKB_CB(skb)->igmp,
1713 int br_multicast_rcv(struct net_bridge *br, struct net_bridge_port *port,
1714 struct sk_buff *skb, u16 vid)
1718 BR_INPUT_SKB_CB(skb)->igmp = 0;
1719 BR_INPUT_SKB_CB(skb)->mrouters_only = 0;
1721 if (!br_opt_get(br, BROPT_MULTICAST_ENABLED))
1724 switch (skb->protocol) {
1725 case htons(ETH_P_IP):
1726 ret = br_multicast_ipv4_rcv(br, port, skb, vid);
1728 #if IS_ENABLED(CONFIG_IPV6)
1729 case htons(ETH_P_IPV6):
1730 ret = br_multicast_ipv6_rcv(br, port, skb, vid);
1738 static void br_multicast_query_expired(struct net_bridge *br,
1739 struct bridge_mcast_own_query *query,
1740 struct bridge_mcast_querier *querier)
1742 spin_lock(&br->multicast_lock);
1743 if (query->startup_sent < br->multicast_startup_query_count)
1744 query->startup_sent++;
1746 RCU_INIT_POINTER(querier->port, NULL);
1747 br_multicast_send_query(br, NULL, query);
1748 spin_unlock(&br->multicast_lock);
1751 static void br_ip4_multicast_query_expired(struct timer_list *t)
1753 struct net_bridge *br = from_timer(br, t, ip4_own_query.timer);
1755 br_multicast_query_expired(br, &br->ip4_own_query, &br->ip4_querier);
1758 #if IS_ENABLED(CONFIG_IPV6)
1759 static void br_ip6_multicast_query_expired(struct timer_list *t)
1761 struct net_bridge *br = from_timer(br, t, ip6_own_query.timer);
1763 br_multicast_query_expired(br, &br->ip6_own_query, &br->ip6_querier);
1767 void br_multicast_init(struct net_bridge *br)
1769 br->hash_max = BR_MULTICAST_DEFAULT_HASH_MAX;
1771 br->multicast_router = MDB_RTR_TYPE_TEMP_QUERY;
1772 br->multicast_last_member_count = 2;
1773 br->multicast_startup_query_count = 2;
1775 br->multicast_last_member_interval = HZ;
1776 br->multicast_query_response_interval = 10 * HZ;
1777 br->multicast_startup_query_interval = 125 * HZ / 4;
1778 br->multicast_query_interval = 125 * HZ;
1779 br->multicast_querier_interval = 255 * HZ;
1780 br->multicast_membership_interval = 260 * HZ;
1782 br->ip4_other_query.delay_time = 0;
1783 br->ip4_querier.port = NULL;
1784 br->multicast_igmp_version = 2;
1785 #if IS_ENABLED(CONFIG_IPV6)
1786 br->multicast_mld_version = 1;
1787 br->ip6_other_query.delay_time = 0;
1788 br->ip6_querier.port = NULL;
1790 br_opt_toggle(br, BROPT_MULTICAST_ENABLED, true);
1791 br_opt_toggle(br, BROPT_HAS_IPV6_ADDR, true);
1793 spin_lock_init(&br->multicast_lock);
1794 timer_setup(&br->multicast_router_timer,
1795 br_multicast_local_router_expired, 0);
1796 timer_setup(&br->ip4_other_query.timer,
1797 br_ip4_multicast_querier_expired, 0);
1798 timer_setup(&br->ip4_own_query.timer,
1799 br_ip4_multicast_query_expired, 0);
1800 #if IS_ENABLED(CONFIG_IPV6)
1801 timer_setup(&br->ip6_other_query.timer,
1802 br_ip6_multicast_querier_expired, 0);
1803 timer_setup(&br->ip6_own_query.timer,
1804 br_ip6_multicast_query_expired, 0);
1806 INIT_HLIST_HEAD(&br->mdb_list);
1809 static void br_ip4_multicast_join_snoopers(struct net_bridge *br)
1811 struct in_device *in_dev = in_dev_get(br->dev);
1816 __ip_mc_inc_group(in_dev, htonl(INADDR_ALLSNOOPERS_GROUP), GFP_ATOMIC);
1820 #if IS_ENABLED(CONFIG_IPV6)
1821 static void br_ip6_multicast_join_snoopers(struct net_bridge *br)
1823 struct in6_addr addr;
1825 ipv6_addr_set(&addr, htonl(0xff020000), 0, 0, htonl(0x6a));
1826 ipv6_dev_mc_inc(br->dev, &addr);
1829 static inline void br_ip6_multicast_join_snoopers(struct net_bridge *br)
1834 void br_multicast_join_snoopers(struct net_bridge *br)
1836 br_ip4_multicast_join_snoopers(br);
1837 br_ip6_multicast_join_snoopers(br);
1840 static void br_ip4_multicast_leave_snoopers(struct net_bridge *br)
1842 struct in_device *in_dev = in_dev_get(br->dev);
1844 if (WARN_ON(!in_dev))
1847 __ip_mc_dec_group(in_dev, htonl(INADDR_ALLSNOOPERS_GROUP), GFP_ATOMIC);
1851 #if IS_ENABLED(CONFIG_IPV6)
1852 static void br_ip6_multicast_leave_snoopers(struct net_bridge *br)
1854 struct in6_addr addr;
1856 ipv6_addr_set(&addr, htonl(0xff020000), 0, 0, htonl(0x6a));
1857 ipv6_dev_mc_dec(br->dev, &addr);
1860 static inline void br_ip6_multicast_leave_snoopers(struct net_bridge *br)
1865 void br_multicast_leave_snoopers(struct net_bridge *br)
1867 br_ip4_multicast_leave_snoopers(br);
1868 br_ip6_multicast_leave_snoopers(br);
1871 static void __br_multicast_open(struct net_bridge *br,
1872 struct bridge_mcast_own_query *query)
1874 query->startup_sent = 0;
1876 if (!br_opt_get(br, BROPT_MULTICAST_ENABLED))
1879 mod_timer(&query->timer, jiffies);
1882 void br_multicast_open(struct net_bridge *br)
1884 __br_multicast_open(br, &br->ip4_own_query);
1885 #if IS_ENABLED(CONFIG_IPV6)
1886 __br_multicast_open(br, &br->ip6_own_query);
1890 void br_multicast_stop(struct net_bridge *br)
1892 del_timer_sync(&br->multicast_router_timer);
1893 del_timer_sync(&br->ip4_other_query.timer);
1894 del_timer_sync(&br->ip4_own_query.timer);
1895 #if IS_ENABLED(CONFIG_IPV6)
1896 del_timer_sync(&br->ip6_other_query.timer);
1897 del_timer_sync(&br->ip6_own_query.timer);
1901 void br_multicast_dev_del(struct net_bridge *br)
1903 struct net_bridge_mdb_entry *mp;
1904 struct hlist_node *tmp;
1906 spin_lock_bh(&br->multicast_lock);
1907 hlist_for_each_entry_safe(mp, tmp, &br->mdb_list, mdb_node) {
1908 del_timer(&mp->timer);
1909 rhashtable_remove_fast(&br->mdb_hash_tbl, &mp->rhnode,
1911 hlist_del_rcu(&mp->mdb_node);
1914 spin_unlock_bh(&br->multicast_lock);
1919 int br_multicast_set_router(struct net_bridge *br, unsigned long val)
1923 spin_lock_bh(&br->multicast_lock);
1926 case MDB_RTR_TYPE_DISABLED:
1927 case MDB_RTR_TYPE_PERM:
1928 br_mc_router_state_change(br, val == MDB_RTR_TYPE_PERM);
1929 del_timer(&br->multicast_router_timer);
1930 br->multicast_router = val;
1933 case MDB_RTR_TYPE_TEMP_QUERY:
1934 if (br->multicast_router != MDB_RTR_TYPE_TEMP_QUERY)
1935 br_mc_router_state_change(br, false);
1936 br->multicast_router = val;
1941 spin_unlock_bh(&br->multicast_lock);
1946 static void __del_port_router(struct net_bridge_port *p)
1948 if (hlist_unhashed(&p->rlist))
1950 hlist_del_init_rcu(&p->rlist);
1951 br_rtr_notify(p->br->dev, p, RTM_DELMDB);
1952 br_port_mc_router_state_change(p, false);
1954 /* don't allow timer refresh */
1955 if (p->multicast_router == MDB_RTR_TYPE_TEMP)
1956 p->multicast_router = MDB_RTR_TYPE_TEMP_QUERY;
1959 int br_multicast_set_port_router(struct net_bridge_port *p, unsigned long val)
1961 struct net_bridge *br = p->br;
1962 unsigned long now = jiffies;
1965 spin_lock(&br->multicast_lock);
1966 if (p->multicast_router == val) {
1967 /* Refresh the temp router port timer */
1968 if (p->multicast_router == MDB_RTR_TYPE_TEMP)
1969 mod_timer(&p->multicast_router_timer,
1970 now + br->multicast_querier_interval);
1975 case MDB_RTR_TYPE_DISABLED:
1976 p->multicast_router = MDB_RTR_TYPE_DISABLED;
1977 __del_port_router(p);
1978 del_timer(&p->multicast_router_timer);
1980 case MDB_RTR_TYPE_TEMP_QUERY:
1981 p->multicast_router = MDB_RTR_TYPE_TEMP_QUERY;
1982 __del_port_router(p);
1984 case MDB_RTR_TYPE_PERM:
1985 p->multicast_router = MDB_RTR_TYPE_PERM;
1986 del_timer(&p->multicast_router_timer);
1987 br_multicast_add_router(br, p);
1989 case MDB_RTR_TYPE_TEMP:
1990 p->multicast_router = MDB_RTR_TYPE_TEMP;
1991 br_multicast_mark_router(br, p);
1998 spin_unlock(&br->multicast_lock);
2003 static void br_multicast_start_querier(struct net_bridge *br,
2004 struct bridge_mcast_own_query *query)
2006 struct net_bridge_port *port;
2008 __br_multicast_open(br, query);
2011 list_for_each_entry_rcu(port, &br->port_list, list) {
2012 if (port->state == BR_STATE_DISABLED ||
2013 port->state == BR_STATE_BLOCKING)
2016 if (query == &br->ip4_own_query)
2017 br_multicast_enable(&port->ip4_own_query);
2018 #if IS_ENABLED(CONFIG_IPV6)
2020 br_multicast_enable(&port->ip6_own_query);
2026 int br_multicast_toggle(struct net_bridge *br, unsigned long val)
2028 struct net_bridge_port *port;
2029 bool change_snoopers = false;
2031 spin_lock_bh(&br->multicast_lock);
2032 if (!!br_opt_get(br, BROPT_MULTICAST_ENABLED) == !!val)
2035 br_mc_disabled_update(br->dev, val);
2036 br_opt_toggle(br, BROPT_MULTICAST_ENABLED, !!val);
2037 if (!br_opt_get(br, BROPT_MULTICAST_ENABLED)) {
2038 change_snoopers = true;
2042 if (!netif_running(br->dev))
2045 br_multicast_open(br);
2046 list_for_each_entry(port, &br->port_list, list)
2047 __br_multicast_enable_port(port);
2049 change_snoopers = true;
2052 spin_unlock_bh(&br->multicast_lock);
2054 /* br_multicast_join_snoopers has the potential to cause
2055 * an MLD Report/Leave to be delivered to br_multicast_rcv,
2056 * which would in turn call br_multicast_add_group, which would
2057 * attempt to acquire multicast_lock. This function should be
2058 * called after the lock has been released to avoid deadlocks on
2061 * br_multicast_leave_snoopers does not have the problem since
2062 * br_multicast_rcv first checks BROPT_MULTICAST_ENABLED, and
2063 * returns without calling br_multicast_ipv4/6_rcv if it's not
2064 * enabled. Moved both functions out just for symmetry.
2066 if (change_snoopers) {
2067 if (br_opt_get(br, BROPT_MULTICAST_ENABLED))
2068 br_multicast_join_snoopers(br);
2070 br_multicast_leave_snoopers(br);
2076 bool br_multicast_enabled(const struct net_device *dev)
2078 struct net_bridge *br = netdev_priv(dev);
2080 return !!br_opt_get(br, BROPT_MULTICAST_ENABLED);
2082 EXPORT_SYMBOL_GPL(br_multicast_enabled);
2084 bool br_multicast_router(const struct net_device *dev)
2086 struct net_bridge *br = netdev_priv(dev);
2089 spin_lock_bh(&br->multicast_lock);
2090 is_router = br_multicast_is_router(br);
2091 spin_unlock_bh(&br->multicast_lock);
2094 EXPORT_SYMBOL_GPL(br_multicast_router);
2096 int br_multicast_set_querier(struct net_bridge *br, unsigned long val)
2098 unsigned long max_delay;
2102 spin_lock_bh(&br->multicast_lock);
2103 if (br_opt_get(br, BROPT_MULTICAST_QUERIER) == val)
2106 br_opt_toggle(br, BROPT_MULTICAST_QUERIER, !!val);
2110 max_delay = br->multicast_query_response_interval;
2112 if (!timer_pending(&br->ip4_other_query.timer))
2113 br->ip4_other_query.delay_time = jiffies + max_delay;
2115 br_multicast_start_querier(br, &br->ip4_own_query);
2117 #if IS_ENABLED(CONFIG_IPV6)
2118 if (!timer_pending(&br->ip6_other_query.timer))
2119 br->ip6_other_query.delay_time = jiffies + max_delay;
2121 br_multicast_start_querier(br, &br->ip6_own_query);
2125 spin_unlock_bh(&br->multicast_lock);
2130 int br_multicast_set_igmp_version(struct net_bridge *br, unsigned long val)
2132 /* Currently we support only version 2 and 3 */
2141 spin_lock_bh(&br->multicast_lock);
2142 br->multicast_igmp_version = val;
2143 spin_unlock_bh(&br->multicast_lock);
2148 #if IS_ENABLED(CONFIG_IPV6)
2149 int br_multicast_set_mld_version(struct net_bridge *br, unsigned long val)
2151 /* Currently we support version 1 and 2 */
2160 spin_lock_bh(&br->multicast_lock);
2161 br->multicast_mld_version = val;
2162 spin_unlock_bh(&br->multicast_lock);
2169 * br_multicast_list_adjacent - Returns snooped multicast addresses
2170 * @dev: The bridge port adjacent to which to retrieve addresses
2171 * @br_ip_list: The list to store found, snooped multicast IP addresses in
2173 * Creates a list of IP addresses (struct br_ip_list) sensed by the multicast
2174 * snooping feature on all bridge ports of dev's bridge device, excluding
2175 * the addresses from dev itself.
2177 * Returns the number of items added to br_ip_list.
2180 * - br_ip_list needs to be initialized by caller
2181 * - br_ip_list might contain duplicates in the end
2182 * (needs to be taken care of by caller)
2183 * - br_ip_list needs to be freed by caller
2185 int br_multicast_list_adjacent(struct net_device *dev,
2186 struct list_head *br_ip_list)
2188 struct net_bridge *br;
2189 struct net_bridge_port *port;
2190 struct net_bridge_port_group *group;
2191 struct br_ip_list *entry;
2195 if (!br_ip_list || !netif_is_bridge_port(dev))
2198 port = br_port_get_rcu(dev);
2199 if (!port || !port->br)
2204 list_for_each_entry_rcu(port, &br->port_list, list) {
2205 if (!port->dev || port->dev == dev)
2208 hlist_for_each_entry_rcu(group, &port->mglist, mglist) {
2209 entry = kmalloc(sizeof(*entry), GFP_ATOMIC);
2213 entry->addr = group->addr;
2214 list_add(&entry->list, br_ip_list);
2223 EXPORT_SYMBOL_GPL(br_multicast_list_adjacent);
2226 * br_multicast_has_querier_anywhere - Checks for a querier on a bridge
2227 * @dev: The bridge port providing the bridge on which to check for a querier
2228 * @proto: The protocol family to check for: IGMP -> ETH_P_IP, MLD -> ETH_P_IPV6
2230 * Checks whether the given interface has a bridge on top and if so returns
2231 * true if a valid querier exists anywhere on the bridged link layer.
2232 * Otherwise returns false.
2234 bool br_multicast_has_querier_anywhere(struct net_device *dev, int proto)
2236 struct net_bridge *br;
2237 struct net_bridge_port *port;
2242 if (!netif_is_bridge_port(dev))
2245 port = br_port_get_rcu(dev);
2246 if (!port || !port->br)
2251 memset(ð, 0, sizeof(eth));
2252 eth.h_proto = htons(proto);
2254 ret = br_multicast_querier_exists(br, ð);
2260 EXPORT_SYMBOL_GPL(br_multicast_has_querier_anywhere);
2263 * br_multicast_has_querier_adjacent - Checks for a querier behind a bridge port
2264 * @dev: The bridge port adjacent to which to check for a querier
2265 * @proto: The protocol family to check for: IGMP -> ETH_P_IP, MLD -> ETH_P_IPV6
2267 * Checks whether the given interface has a bridge on top and if so returns
2268 * true if a selected querier is behind one of the other ports of this
2269 * bridge. Otherwise returns false.
2271 bool br_multicast_has_querier_adjacent(struct net_device *dev, int proto)
2273 struct net_bridge *br;
2274 struct net_bridge_port *port;
2278 if (!netif_is_bridge_port(dev))
2281 port = br_port_get_rcu(dev);
2282 if (!port || !port->br)
2289 if (!timer_pending(&br->ip4_other_query.timer) ||
2290 rcu_dereference(br->ip4_querier.port) == port)
2293 #if IS_ENABLED(CONFIG_IPV6)
2295 if (!timer_pending(&br->ip6_other_query.timer) ||
2296 rcu_dereference(br->ip6_querier.port) == port)
2309 EXPORT_SYMBOL_GPL(br_multicast_has_querier_adjacent);
2311 static void br_mcast_stats_add(struct bridge_mcast_stats __percpu *stats,
2312 const struct sk_buff *skb, u8 type, u8 dir)
2314 struct bridge_mcast_stats *pstats = this_cpu_ptr(stats);
2315 __be16 proto = skb->protocol;
2318 u64_stats_update_begin(&pstats->syncp);
2320 case htons(ETH_P_IP):
2321 t_len = ntohs(ip_hdr(skb)->tot_len) - ip_hdrlen(skb);
2323 case IGMP_HOST_MEMBERSHIP_REPORT:
2324 pstats->mstats.igmp_v1reports[dir]++;
2326 case IGMPV2_HOST_MEMBERSHIP_REPORT:
2327 pstats->mstats.igmp_v2reports[dir]++;
2329 case IGMPV3_HOST_MEMBERSHIP_REPORT:
2330 pstats->mstats.igmp_v3reports[dir]++;
2332 case IGMP_HOST_MEMBERSHIP_QUERY:
2333 if (t_len != sizeof(struct igmphdr)) {
2334 pstats->mstats.igmp_v3queries[dir]++;
2336 unsigned int offset = skb_transport_offset(skb);
2337 struct igmphdr *ih, _ihdr;
2339 ih = skb_header_pointer(skb, offset,
2340 sizeof(_ihdr), &_ihdr);
2344 pstats->mstats.igmp_v1queries[dir]++;
2346 pstats->mstats.igmp_v2queries[dir]++;
2349 case IGMP_HOST_LEAVE_MESSAGE:
2350 pstats->mstats.igmp_leaves[dir]++;
2354 #if IS_ENABLED(CONFIG_IPV6)
2355 case htons(ETH_P_IPV6):
2356 t_len = ntohs(ipv6_hdr(skb)->payload_len) +
2357 sizeof(struct ipv6hdr);
2358 t_len -= skb_network_header_len(skb);
2360 case ICMPV6_MGM_REPORT:
2361 pstats->mstats.mld_v1reports[dir]++;
2363 case ICMPV6_MLD2_REPORT:
2364 pstats->mstats.mld_v2reports[dir]++;
2366 case ICMPV6_MGM_QUERY:
2367 if (t_len != sizeof(struct mld_msg))
2368 pstats->mstats.mld_v2queries[dir]++;
2370 pstats->mstats.mld_v1queries[dir]++;
2372 case ICMPV6_MGM_REDUCTION:
2373 pstats->mstats.mld_leaves[dir]++;
2377 #endif /* CONFIG_IPV6 */
2379 u64_stats_update_end(&pstats->syncp);
2382 void br_multicast_count(struct net_bridge *br, const struct net_bridge_port *p,
2383 const struct sk_buff *skb, u8 type, u8 dir)
2385 struct bridge_mcast_stats __percpu *stats;
2387 /* if multicast_disabled is true then igmp type can't be set */
2388 if (!type || !br_opt_get(br, BROPT_MULTICAST_STATS_ENABLED))
2392 stats = p->mcast_stats;
2394 stats = br->mcast_stats;
2395 if (WARN_ON(!stats))
2398 br_mcast_stats_add(stats, skb, type, dir);
2401 int br_multicast_init_stats(struct net_bridge *br)
2403 br->mcast_stats = netdev_alloc_pcpu_stats(struct bridge_mcast_stats);
2404 if (!br->mcast_stats)
2410 void br_multicast_uninit_stats(struct net_bridge *br)
2412 free_percpu(br->mcast_stats);
2415 static void mcast_stats_add_dir(u64 *dst, u64 *src)
2417 dst[BR_MCAST_DIR_RX] += src[BR_MCAST_DIR_RX];
2418 dst[BR_MCAST_DIR_TX] += src[BR_MCAST_DIR_TX];
2421 void br_multicast_get_stats(const struct net_bridge *br,
2422 const struct net_bridge_port *p,
2423 struct br_mcast_stats *dest)
2425 struct bridge_mcast_stats __percpu *stats;
2426 struct br_mcast_stats tdst;
2429 memset(dest, 0, sizeof(*dest));
2431 stats = p->mcast_stats;
2433 stats = br->mcast_stats;
2434 if (WARN_ON(!stats))
2437 memset(&tdst, 0, sizeof(tdst));
2438 for_each_possible_cpu(i) {
2439 struct bridge_mcast_stats *cpu_stats = per_cpu_ptr(stats, i);
2440 struct br_mcast_stats temp;
2444 start = u64_stats_fetch_begin_irq(&cpu_stats->syncp);
2445 memcpy(&temp, &cpu_stats->mstats, sizeof(temp));
2446 } while (u64_stats_fetch_retry_irq(&cpu_stats->syncp, start));
2448 mcast_stats_add_dir(tdst.igmp_v1queries, temp.igmp_v1queries);
2449 mcast_stats_add_dir(tdst.igmp_v2queries, temp.igmp_v2queries);
2450 mcast_stats_add_dir(tdst.igmp_v3queries, temp.igmp_v3queries);
2451 mcast_stats_add_dir(tdst.igmp_leaves, temp.igmp_leaves);
2452 mcast_stats_add_dir(tdst.igmp_v1reports, temp.igmp_v1reports);
2453 mcast_stats_add_dir(tdst.igmp_v2reports, temp.igmp_v2reports);
2454 mcast_stats_add_dir(tdst.igmp_v3reports, temp.igmp_v3reports);
2455 tdst.igmp_parse_errors += temp.igmp_parse_errors;
2457 mcast_stats_add_dir(tdst.mld_v1queries, temp.mld_v1queries);
2458 mcast_stats_add_dir(tdst.mld_v2queries, temp.mld_v2queries);
2459 mcast_stats_add_dir(tdst.mld_leaves, temp.mld_leaves);
2460 mcast_stats_add_dir(tdst.mld_v1reports, temp.mld_v1reports);
2461 mcast_stats_add_dir(tdst.mld_v2reports, temp.mld_v2reports);
2462 tdst.mld_parse_errors += temp.mld_parse_errors;
2464 memcpy(dest, &tdst, sizeof(*dest));
2467 int br_mdb_hash_init(struct net_bridge *br)
2469 return rhashtable_init(&br->mdb_hash_tbl, &br_mdb_rht_params);
2472 void br_mdb_hash_fini(struct net_bridge *br)
2474 rhashtable_destroy(&br->mdb_hash_tbl);