2 * Bridge multicast support.
4 * Copyright (c) 2010 Herbert Xu <herbert@gondor.apana.org.au>
6 * This program is free software; you can redistribute it and/or modify it
7 * under the terms of the GNU General Public License as published by the Free
8 * Software Foundation; either version 2 of the License, or (at your option)
13 #include <linux/err.h>
14 #include <linux/export.h>
15 #include <linux/if_ether.h>
16 #include <linux/igmp.h>
17 #include <linux/jhash.h>
18 #include <linux/kernel.h>
19 #include <linux/log2.h>
20 #include <linux/netdevice.h>
21 #include <linux/netfilter_bridge.h>
22 #include <linux/random.h>
23 #include <linux/rculist.h>
24 #include <linux/skbuff.h>
25 #include <linux/slab.h>
26 #include <linux/timer.h>
27 #include <linux/inetdevice.h>
29 #if IS_ENABLED(CONFIG_IPV6)
32 #include <net/ip6_checksum.h>
33 #include <net/addrconf.h>
36 #include "br_private.h"
38 static void br_multicast_start_querier(struct net_bridge *br,
39 struct bridge_mcast_own_query *query);
40 static void br_multicast_add_router(struct net_bridge *br,
41 struct net_bridge_port *port);
42 static void br_ip4_multicast_leave_group(struct net_bridge *br,
43 struct net_bridge_port *port,
46 #if IS_ENABLED(CONFIG_IPV6)
47 static void br_ip6_multicast_leave_group(struct net_bridge *br,
48 struct net_bridge_port *port,
49 const struct in6_addr *group,
52 unsigned int br_mdb_rehash_seq;
54 static inline int br_ip_equal(const struct br_ip *a, const struct br_ip *b)
56 if (a->proto != b->proto)
62 return a->u.ip4 == b->u.ip4;
63 #if IS_ENABLED(CONFIG_IPV6)
64 case htons(ETH_P_IPV6):
65 return ipv6_addr_equal(&a->u.ip6, &b->u.ip6);
71 static inline int __br_ip4_hash(struct net_bridge_mdb_htable *mdb, __be32 ip,
74 return jhash_2words((__force u32)ip, vid, mdb->secret) & (mdb->max - 1);
77 #if IS_ENABLED(CONFIG_IPV6)
78 static inline int __br_ip6_hash(struct net_bridge_mdb_htable *mdb,
79 const struct in6_addr *ip,
82 return jhash_2words(ipv6_addr_hash(ip), vid,
83 mdb->secret) & (mdb->max - 1);
87 static inline int br_ip_hash(struct net_bridge_mdb_htable *mdb,
92 return __br_ip4_hash(mdb, ip->u.ip4, ip->vid);
93 #if IS_ENABLED(CONFIG_IPV6)
94 case htons(ETH_P_IPV6):
95 return __br_ip6_hash(mdb, &ip->u.ip6, ip->vid);
101 static struct net_bridge_mdb_entry *__br_mdb_ip_get(
102 struct net_bridge_mdb_htable *mdb, struct br_ip *dst, int hash)
104 struct net_bridge_mdb_entry *mp;
106 hlist_for_each_entry_rcu(mp, &mdb->mhash[hash], hlist[mdb->ver]) {
107 if (br_ip_equal(&mp->addr, dst))
114 struct net_bridge_mdb_entry *br_mdb_ip_get(struct net_bridge_mdb_htable *mdb,
120 return __br_mdb_ip_get(mdb, dst, br_ip_hash(mdb, dst));
123 static struct net_bridge_mdb_entry *br_mdb_ip4_get(
124 struct net_bridge_mdb_htable *mdb, __be32 dst, __u16 vid)
129 br_dst.proto = htons(ETH_P_IP);
132 return br_mdb_ip_get(mdb, &br_dst);
135 #if IS_ENABLED(CONFIG_IPV6)
136 static struct net_bridge_mdb_entry *br_mdb_ip6_get(
137 struct net_bridge_mdb_htable *mdb, const struct in6_addr *dst,
143 br_dst.proto = htons(ETH_P_IPV6);
146 return br_mdb_ip_get(mdb, &br_dst);
150 struct net_bridge_mdb_entry *br_mdb_get(struct net_bridge *br,
151 struct sk_buff *skb, u16 vid)
153 struct net_bridge_mdb_htable *mdb = rcu_dereference(br->mdb);
156 if (br->multicast_disabled)
159 if (BR_INPUT_SKB_CB(skb)->igmp)
162 ip.proto = skb->protocol;
165 switch (skb->protocol) {
166 case htons(ETH_P_IP):
167 ip.u.ip4 = ip_hdr(skb)->daddr;
169 #if IS_ENABLED(CONFIG_IPV6)
170 case htons(ETH_P_IPV6):
171 ip.u.ip6 = ipv6_hdr(skb)->daddr;
178 return br_mdb_ip_get(mdb, &ip);
181 static void br_mdb_free(struct rcu_head *head)
183 struct net_bridge_mdb_htable *mdb =
184 container_of(head, struct net_bridge_mdb_htable, rcu);
185 struct net_bridge_mdb_htable *old = mdb->old;
192 static int br_mdb_copy(struct net_bridge_mdb_htable *new,
193 struct net_bridge_mdb_htable *old,
196 struct net_bridge_mdb_entry *mp;
201 for (i = 0; i < old->max; i++)
202 hlist_for_each_entry(mp, &old->mhash[i], hlist[old->ver])
203 hlist_add_head(&mp->hlist[new->ver],
204 &new->mhash[br_ip_hash(new, &mp->addr)]);
210 for (i = 0; i < new->max; i++) {
212 hlist_for_each_entry(mp, &new->mhash[i], hlist[new->ver])
218 return maxlen > elasticity ? -EINVAL : 0;
221 void br_multicast_free_pg(struct rcu_head *head)
223 struct net_bridge_port_group *p =
224 container_of(head, struct net_bridge_port_group, rcu);
229 static void br_multicast_free_group(struct rcu_head *head)
231 struct net_bridge_mdb_entry *mp =
232 container_of(head, struct net_bridge_mdb_entry, rcu);
237 static void br_multicast_group_expired(unsigned long data)
239 struct net_bridge_mdb_entry *mp = (void *)data;
240 struct net_bridge *br = mp->br;
241 struct net_bridge_mdb_htable *mdb;
243 spin_lock(&br->multicast_lock);
244 if (!netif_running(br->dev) || timer_pending(&mp->timer))
252 mdb = mlock_dereference(br->mdb, br);
254 hlist_del_rcu(&mp->hlist[mdb->ver]);
257 call_rcu_bh(&mp->rcu, br_multicast_free_group);
260 spin_unlock(&br->multicast_lock);
263 static void br_multicast_del_pg(struct net_bridge *br,
264 struct net_bridge_port_group *pg)
266 struct net_bridge_mdb_htable *mdb;
267 struct net_bridge_mdb_entry *mp;
268 struct net_bridge_port_group *p;
269 struct net_bridge_port_group __rcu **pp;
271 mdb = mlock_dereference(br->mdb, br);
273 mp = br_mdb_ip_get(mdb, &pg->addr);
277 for (pp = &mp->ports;
278 (p = mlock_dereference(*pp, br)) != NULL;
283 rcu_assign_pointer(*pp, p->next);
284 hlist_del_init(&p->mglist);
285 del_timer(&p->timer);
286 br_mdb_notify(br->dev, p->port, &pg->addr, RTM_DELMDB,
288 call_rcu_bh(&p->rcu, br_multicast_free_pg);
290 if (!mp->ports && !mp->mglist &&
291 netif_running(br->dev))
292 mod_timer(&mp->timer, jiffies);
300 static void br_multicast_port_group_expired(unsigned long data)
302 struct net_bridge_port_group *pg = (void *)data;
303 struct net_bridge *br = pg->port->br;
305 spin_lock(&br->multicast_lock);
306 if (!netif_running(br->dev) || timer_pending(&pg->timer) ||
307 hlist_unhashed(&pg->mglist) || pg->flags & MDB_PG_FLAGS_PERMANENT)
310 br_multicast_del_pg(br, pg);
313 spin_unlock(&br->multicast_lock);
316 static int br_mdb_rehash(struct net_bridge_mdb_htable __rcu **mdbp, int max,
319 struct net_bridge_mdb_htable *old = rcu_dereference_protected(*mdbp, 1);
320 struct net_bridge_mdb_htable *mdb;
323 mdb = kmalloc(sizeof(*mdb), GFP_ATOMIC);
330 mdb->mhash = kzalloc(max * sizeof(*mdb->mhash), GFP_ATOMIC);
336 mdb->size = old ? old->size : 0;
337 mdb->ver = old ? old->ver ^ 1 : 0;
339 if (!old || elasticity)
340 get_random_bytes(&mdb->secret, sizeof(mdb->secret));
342 mdb->secret = old->secret;
347 err = br_mdb_copy(mdb, old, elasticity);
355 call_rcu_bh(&mdb->rcu, br_mdb_free);
358 rcu_assign_pointer(*mdbp, mdb);
363 static struct sk_buff *br_ip4_multicast_alloc_query(struct net_bridge *br,
372 skb = netdev_alloc_skb_ip_align(br->dev, sizeof(*eth) + sizeof(*iph) +
377 skb->protocol = htons(ETH_P_IP);
379 skb_reset_mac_header(skb);
382 ether_addr_copy(eth->h_source, br->dev->dev_addr);
385 eth->h_dest[2] = 0x5e;
389 eth->h_proto = htons(ETH_P_IP);
390 skb_put(skb, sizeof(*eth));
392 skb_set_network_header(skb, skb->len);
398 iph->tot_len = htons(sizeof(*iph) + sizeof(*ih) + 4);
400 iph->frag_off = htons(IP_DF);
402 iph->protocol = IPPROTO_IGMP;
403 iph->saddr = br->multicast_query_use_ifaddr ?
404 inet_select_addr(br->dev, 0, RT_SCOPE_LINK) : 0;
405 iph->daddr = htonl(INADDR_ALLHOSTS_GROUP);
406 ((u8 *)&iph[1])[0] = IPOPT_RA;
407 ((u8 *)&iph[1])[1] = 4;
408 ((u8 *)&iph[1])[2] = 0;
409 ((u8 *)&iph[1])[3] = 0;
413 skb_set_transport_header(skb, skb->len);
415 *igmp_type = IGMP_HOST_MEMBERSHIP_QUERY;
416 ih->type = IGMP_HOST_MEMBERSHIP_QUERY;
417 ih->code = (group ? br->multicast_last_member_interval :
418 br->multicast_query_response_interval) /
419 (HZ / IGMP_TIMER_SCALE);
422 ih->csum = ip_compute_csum((void *)ih, sizeof(struct igmphdr));
423 skb_put(skb, sizeof(*ih));
425 __skb_pull(skb, sizeof(*eth));
431 #if IS_ENABLED(CONFIG_IPV6)
432 static struct sk_buff *br_ip6_multicast_alloc_query(struct net_bridge *br,
433 const struct in6_addr *grp,
437 struct ipv6hdr *ip6h;
438 struct mld_msg *mldq;
441 unsigned long interval;
443 skb = netdev_alloc_skb_ip_align(br->dev, sizeof(*eth) + sizeof(*ip6h) +
448 skb->protocol = htons(ETH_P_IPV6);
450 /* Ethernet header */
451 skb_reset_mac_header(skb);
454 ether_addr_copy(eth->h_source, br->dev->dev_addr);
455 eth->h_proto = htons(ETH_P_IPV6);
456 skb_put(skb, sizeof(*eth));
458 /* IPv6 header + HbH option */
459 skb_set_network_header(skb, skb->len);
460 ip6h = ipv6_hdr(skb);
462 *(__force __be32 *)ip6h = htonl(0x60000000);
463 ip6h->payload_len = htons(8 + sizeof(*mldq));
464 ip6h->nexthdr = IPPROTO_HOPOPTS;
466 ipv6_addr_set(&ip6h->daddr, htonl(0xff020000), 0, 0, htonl(1));
467 if (ipv6_dev_get_saddr(dev_net(br->dev), br->dev, &ip6h->daddr, 0,
470 br->has_ipv6_addr = 0;
474 br->has_ipv6_addr = 1;
475 ipv6_eth_mc_map(&ip6h->daddr, eth->h_dest);
477 hopopt = (u8 *)(ip6h + 1);
478 hopopt[0] = IPPROTO_ICMPV6; /* next hdr */
479 hopopt[1] = 0; /* length of HbH */
480 hopopt[2] = IPV6_TLV_ROUTERALERT; /* Router Alert */
481 hopopt[3] = 2; /* Length of RA Option */
482 hopopt[4] = 0; /* Type = 0x0000 (MLD) */
484 hopopt[6] = IPV6_TLV_PAD1; /* Pad1 */
485 hopopt[7] = IPV6_TLV_PAD1; /* Pad1 */
487 skb_put(skb, sizeof(*ip6h) + 8);
490 skb_set_transport_header(skb, skb->len);
491 mldq = (struct mld_msg *) icmp6_hdr(skb);
493 interval = ipv6_addr_any(grp) ?
494 br->multicast_query_response_interval :
495 br->multicast_last_member_interval;
497 *igmp_type = ICMPV6_MGM_QUERY;
498 mldq->mld_type = ICMPV6_MGM_QUERY;
501 mldq->mld_maxdelay = htons((u16)jiffies_to_msecs(interval));
502 mldq->mld_reserved = 0;
503 mldq->mld_mca = *grp;
506 mldq->mld_cksum = csum_ipv6_magic(&ip6h->saddr, &ip6h->daddr,
507 sizeof(*mldq), IPPROTO_ICMPV6,
510 skb_put(skb, sizeof(*mldq));
512 __skb_pull(skb, sizeof(*eth));
519 static struct sk_buff *br_multicast_alloc_query(struct net_bridge *br,
523 switch (addr->proto) {
524 case htons(ETH_P_IP):
525 return br_ip4_multicast_alloc_query(br, addr->u.ip4, igmp_type);
526 #if IS_ENABLED(CONFIG_IPV6)
527 case htons(ETH_P_IPV6):
528 return br_ip6_multicast_alloc_query(br, &addr->u.ip6,
535 static struct net_bridge_mdb_entry *br_multicast_get_group(
536 struct net_bridge *br, struct net_bridge_port *port,
537 struct br_ip *group, int hash)
539 struct net_bridge_mdb_htable *mdb;
540 struct net_bridge_mdb_entry *mp;
541 unsigned int count = 0;
546 mdb = rcu_dereference_protected(br->mdb, 1);
547 hlist_for_each_entry(mp, &mdb->mhash[hash], hlist[mdb->ver]) {
549 if (unlikely(br_ip_equal(group, &mp->addr)))
556 if (unlikely(count > br->hash_elasticity && count)) {
558 br_info(br, "Multicast hash table "
559 "chain limit reached: %s\n",
560 port ? port->dev->name : br->dev->name);
562 elasticity = br->hash_elasticity;
565 if (mdb->size >= max) {
567 if (unlikely(max > br->hash_max)) {
568 br_warn(br, "Multicast hash table maximum of %d "
569 "reached, disabling snooping: %s\n",
571 port ? port->dev->name : br->dev->name);
574 br->multicast_disabled = 1;
579 if (max > mdb->max || elasticity) {
582 br_info(br, "Multicast hash table "
584 port ? port->dev->name : br->dev->name);
589 err = br_mdb_rehash(&br->mdb, max, elasticity);
591 br_warn(br, "Cannot rehash multicast "
592 "hash table, disabling snooping: %s, %d, %d\n",
593 port ? port->dev->name : br->dev->name,
609 struct net_bridge_mdb_entry *br_multicast_new_group(struct net_bridge *br,
610 struct net_bridge_port *port, struct br_ip *group)
612 struct net_bridge_mdb_htable *mdb;
613 struct net_bridge_mdb_entry *mp;
617 mdb = rcu_dereference_protected(br->mdb, 1);
619 err = br_mdb_rehash(&br->mdb, BR_HASH_SIZE, 0);
625 hash = br_ip_hash(mdb, group);
626 mp = br_multicast_get_group(br, port, group, hash);
627 switch (PTR_ERR(mp)) {
633 mdb = rcu_dereference_protected(br->mdb, 1);
634 hash = br_ip_hash(mdb, group);
641 mp = kzalloc(sizeof(*mp), GFP_ATOMIC);
643 return ERR_PTR(-ENOMEM);
647 setup_timer(&mp->timer, br_multicast_group_expired,
650 hlist_add_head_rcu(&mp->hlist[mdb->ver], &mdb->mhash[hash]);
657 struct net_bridge_port_group *br_multicast_new_port_group(
658 struct net_bridge_port *port,
660 struct net_bridge_port_group __rcu *next,
663 struct net_bridge_port_group *p;
665 p = kzalloc(sizeof(*p), GFP_ATOMIC);
672 rcu_assign_pointer(p->next, next);
673 hlist_add_head(&p->mglist, &port->mglist);
674 setup_timer(&p->timer, br_multicast_port_group_expired,
679 static int br_multicast_add_group(struct net_bridge *br,
680 struct net_bridge_port *port,
683 struct net_bridge_mdb_entry *mp;
684 struct net_bridge_port_group *p;
685 struct net_bridge_port_group __rcu **pp;
686 unsigned long now = jiffies;
689 spin_lock(&br->multicast_lock);
690 if (!netif_running(br->dev) ||
691 (port && port->state == BR_STATE_DISABLED))
694 mp = br_multicast_new_group(br, port, group);
701 mod_timer(&mp->timer, now + br->multicast_membership_interval);
705 for (pp = &mp->ports;
706 (p = mlock_dereference(*pp, br)) != NULL;
710 if ((unsigned long)p->port < (unsigned long)port)
714 p = br_multicast_new_port_group(port, group, *pp, 0);
717 rcu_assign_pointer(*pp, p);
718 br_mdb_notify(br->dev, port, group, RTM_NEWMDB, 0);
721 mod_timer(&p->timer, now + br->multicast_membership_interval);
726 spin_unlock(&br->multicast_lock);
730 static int br_ip4_multicast_add_group(struct net_bridge *br,
731 struct net_bridge_port *port,
735 struct br_ip br_group;
737 if (ipv4_is_local_multicast(group))
740 br_group.u.ip4 = group;
741 br_group.proto = htons(ETH_P_IP);
744 return br_multicast_add_group(br, port, &br_group);
747 #if IS_ENABLED(CONFIG_IPV6)
748 static int br_ip6_multicast_add_group(struct net_bridge *br,
749 struct net_bridge_port *port,
750 const struct in6_addr *group,
753 struct br_ip br_group;
755 if (ipv6_addr_is_ll_all_nodes(group))
758 br_group.u.ip6 = *group;
759 br_group.proto = htons(ETH_P_IPV6);
762 return br_multicast_add_group(br, port, &br_group);
766 static void br_multicast_router_expired(unsigned long data)
768 struct net_bridge_port *port = (void *)data;
769 struct net_bridge *br = port->br;
771 spin_lock(&br->multicast_lock);
772 if (port->multicast_router == MDB_RTR_TYPE_DISABLED ||
773 port->multicast_router == MDB_RTR_TYPE_PERM ||
774 timer_pending(&port->multicast_router_timer) ||
775 hlist_unhashed(&port->rlist))
778 hlist_del_init_rcu(&port->rlist);
779 br_rtr_notify(br->dev, port, RTM_DELMDB);
780 /* Don't allow timer refresh if the router expired */
781 if (port->multicast_router == MDB_RTR_TYPE_TEMP)
782 port->multicast_router = MDB_RTR_TYPE_TEMP_QUERY;
785 spin_unlock(&br->multicast_lock);
788 static void br_multicast_local_router_expired(unsigned long data)
792 static void br_multicast_querier_expired(struct net_bridge *br,
793 struct bridge_mcast_own_query *query)
795 spin_lock(&br->multicast_lock);
796 if (!netif_running(br->dev) || br->multicast_disabled)
799 br_multicast_start_querier(br, query);
802 spin_unlock(&br->multicast_lock);
805 static void br_ip4_multicast_querier_expired(unsigned long data)
807 struct net_bridge *br = (void *)data;
809 br_multicast_querier_expired(br, &br->ip4_own_query);
812 #if IS_ENABLED(CONFIG_IPV6)
813 static void br_ip6_multicast_querier_expired(unsigned long data)
815 struct net_bridge *br = (void *)data;
817 br_multicast_querier_expired(br, &br->ip6_own_query);
821 static void br_multicast_select_own_querier(struct net_bridge *br,
825 if (ip->proto == htons(ETH_P_IP))
826 br->ip4_querier.addr.u.ip4 = ip_hdr(skb)->saddr;
827 #if IS_ENABLED(CONFIG_IPV6)
829 br->ip6_querier.addr.u.ip6 = ipv6_hdr(skb)->saddr;
833 static void __br_multicast_send_query(struct net_bridge *br,
834 struct net_bridge_port *port,
840 skb = br_multicast_alloc_query(br, ip, &igmp_type);
845 skb->dev = port->dev;
846 br_multicast_count(br, port, skb, igmp_type,
848 NF_HOOK(NFPROTO_BRIDGE, NF_BR_LOCAL_OUT,
849 dev_net(port->dev), NULL, skb, NULL, skb->dev,
850 br_dev_queue_push_xmit);
852 br_multicast_select_own_querier(br, ip, skb);
853 br_multicast_count(br, port, skb, igmp_type,
859 static void br_multicast_send_query(struct net_bridge *br,
860 struct net_bridge_port *port,
861 struct bridge_mcast_own_query *own_query)
864 struct br_ip br_group;
865 struct bridge_mcast_other_query *other_query = NULL;
867 if (!netif_running(br->dev) || br->multicast_disabled ||
868 !br->multicast_querier)
871 memset(&br_group.u, 0, sizeof(br_group.u));
873 if (port ? (own_query == &port->ip4_own_query) :
874 (own_query == &br->ip4_own_query)) {
875 other_query = &br->ip4_other_query;
876 br_group.proto = htons(ETH_P_IP);
877 #if IS_ENABLED(CONFIG_IPV6)
879 other_query = &br->ip6_other_query;
880 br_group.proto = htons(ETH_P_IPV6);
884 if (!other_query || timer_pending(&other_query->timer))
887 __br_multicast_send_query(br, port, &br_group);
890 time += own_query->startup_sent < br->multicast_startup_query_count ?
891 br->multicast_startup_query_interval :
892 br->multicast_query_interval;
893 mod_timer(&own_query->timer, time);
897 br_multicast_port_query_expired(struct net_bridge_port *port,
898 struct bridge_mcast_own_query *query)
900 struct net_bridge *br = port->br;
902 spin_lock(&br->multicast_lock);
903 if (port->state == BR_STATE_DISABLED ||
904 port->state == BR_STATE_BLOCKING)
907 if (query->startup_sent < br->multicast_startup_query_count)
908 query->startup_sent++;
910 br_multicast_send_query(port->br, port, query);
913 spin_unlock(&br->multicast_lock);
916 static void br_ip4_multicast_port_query_expired(unsigned long data)
918 struct net_bridge_port *port = (void *)data;
920 br_multicast_port_query_expired(port, &port->ip4_own_query);
923 #if IS_ENABLED(CONFIG_IPV6)
924 static void br_ip6_multicast_port_query_expired(unsigned long data)
926 struct net_bridge_port *port = (void *)data;
928 br_multicast_port_query_expired(port, &port->ip6_own_query);
932 int br_multicast_add_port(struct net_bridge_port *port)
934 port->multicast_router = MDB_RTR_TYPE_TEMP_QUERY;
936 setup_timer(&port->multicast_router_timer, br_multicast_router_expired,
937 (unsigned long)port);
938 setup_timer(&port->ip4_own_query.timer,
939 br_ip4_multicast_port_query_expired, (unsigned long)port);
940 #if IS_ENABLED(CONFIG_IPV6)
941 setup_timer(&port->ip6_own_query.timer,
942 br_ip6_multicast_port_query_expired, (unsigned long)port);
944 port->mcast_stats = netdev_alloc_pcpu_stats(struct bridge_mcast_stats);
945 if (!port->mcast_stats)
951 void br_multicast_del_port(struct net_bridge_port *port)
953 struct net_bridge *br = port->br;
954 struct net_bridge_port_group *pg;
955 struct hlist_node *n;
957 /* Take care of the remaining groups, only perm ones should be left */
958 spin_lock_bh(&br->multicast_lock);
959 hlist_for_each_entry_safe(pg, n, &port->mglist, mglist)
960 br_multicast_del_pg(br, pg);
961 spin_unlock_bh(&br->multicast_lock);
962 del_timer_sync(&port->multicast_router_timer);
963 free_percpu(port->mcast_stats);
966 static void br_multicast_enable(struct bridge_mcast_own_query *query)
968 query->startup_sent = 0;
970 if (try_to_del_timer_sync(&query->timer) >= 0 ||
971 del_timer(&query->timer))
972 mod_timer(&query->timer, jiffies);
975 static void __br_multicast_enable_port(struct net_bridge_port *port)
977 struct net_bridge *br = port->br;
979 if (br->multicast_disabled || !netif_running(br->dev))
982 br_multicast_enable(&port->ip4_own_query);
983 #if IS_ENABLED(CONFIG_IPV6)
984 br_multicast_enable(&port->ip6_own_query);
986 if (port->multicast_router == MDB_RTR_TYPE_PERM &&
987 hlist_unhashed(&port->rlist))
988 br_multicast_add_router(br, port);
991 void br_multicast_enable_port(struct net_bridge_port *port)
993 struct net_bridge *br = port->br;
995 spin_lock(&br->multicast_lock);
996 __br_multicast_enable_port(port);
997 spin_unlock(&br->multicast_lock);
1000 void br_multicast_disable_port(struct net_bridge_port *port)
1002 struct net_bridge *br = port->br;
1003 struct net_bridge_port_group *pg;
1004 struct hlist_node *n;
1006 spin_lock(&br->multicast_lock);
1007 hlist_for_each_entry_safe(pg, n, &port->mglist, mglist)
1008 if (!(pg->flags & MDB_PG_FLAGS_PERMANENT))
1009 br_multicast_del_pg(br, pg);
1011 if (!hlist_unhashed(&port->rlist)) {
1012 hlist_del_init_rcu(&port->rlist);
1013 br_rtr_notify(br->dev, port, RTM_DELMDB);
1014 /* Don't allow timer refresh if disabling */
1015 if (port->multicast_router == MDB_RTR_TYPE_TEMP)
1016 port->multicast_router = MDB_RTR_TYPE_TEMP_QUERY;
1018 del_timer(&port->multicast_router_timer);
1019 del_timer(&port->ip4_own_query.timer);
1020 #if IS_ENABLED(CONFIG_IPV6)
1021 del_timer(&port->ip6_own_query.timer);
1023 spin_unlock(&br->multicast_lock);
1026 static int br_ip4_multicast_igmp3_report(struct net_bridge *br,
1027 struct net_bridge_port *port,
1028 struct sk_buff *skb,
1031 struct igmpv3_report *ih;
1032 struct igmpv3_grec *grec;
1041 ih = igmpv3_report_hdr(skb);
1042 num = ntohs(ih->ngrec);
1043 len = skb_transport_offset(skb) + sizeof(*ih);
1045 for (i = 0; i < num; i++) {
1046 len += sizeof(*grec);
1047 if (!pskb_may_pull(skb, len))
1050 grec = (void *)(skb->data + len - sizeof(*grec));
1051 group = grec->grec_mca;
1052 type = grec->grec_type;
1053 nsrcs = ntohs(grec->grec_nsrcs);
1056 if (!pskb_may_pull(skb, len))
1059 /* We treat this as an IGMPv2 report for now. */
1061 case IGMPV3_MODE_IS_INCLUDE:
1062 case IGMPV3_MODE_IS_EXCLUDE:
1063 case IGMPV3_CHANGE_TO_INCLUDE:
1064 case IGMPV3_CHANGE_TO_EXCLUDE:
1065 case IGMPV3_ALLOW_NEW_SOURCES:
1066 case IGMPV3_BLOCK_OLD_SOURCES:
1073 if ((type == IGMPV3_CHANGE_TO_INCLUDE ||
1074 type == IGMPV3_MODE_IS_INCLUDE) &&
1076 br_ip4_multicast_leave_group(br, port, group, vid);
1078 err = br_ip4_multicast_add_group(br, port, group, vid);
1087 #if IS_ENABLED(CONFIG_IPV6)
1088 static int br_ip6_multicast_mld2_report(struct net_bridge *br,
1089 struct net_bridge_port *port,
1090 struct sk_buff *skb,
1093 struct icmp6hdr *icmp6h;
1094 struct mld2_grec *grec;
1100 if (!pskb_may_pull(skb, sizeof(*icmp6h)))
1103 icmp6h = icmp6_hdr(skb);
1104 num = ntohs(icmp6h->icmp6_dataun.un_data16[1]);
1105 len = skb_transport_offset(skb) + sizeof(*icmp6h);
1107 for (i = 0; i < num; i++) {
1108 __be16 *_nsrcs, __nsrcs;
1111 _nsrcs = skb_header_pointer(skb,
1112 len + offsetof(struct mld2_grec,
1114 sizeof(__nsrcs), &__nsrcs);
1118 nsrcs = ntohs(*_nsrcs);
1120 if (!pskb_may_pull(skb,
1121 len + sizeof(*grec) +
1122 sizeof(struct in6_addr) * nsrcs))
1125 grec = (struct mld2_grec *)(skb->data + len);
1126 len += sizeof(*grec) +
1127 sizeof(struct in6_addr) * nsrcs;
1129 /* We treat these as MLDv1 reports for now. */
1130 switch (grec->grec_type) {
1131 case MLD2_MODE_IS_INCLUDE:
1132 case MLD2_MODE_IS_EXCLUDE:
1133 case MLD2_CHANGE_TO_INCLUDE:
1134 case MLD2_CHANGE_TO_EXCLUDE:
1135 case MLD2_ALLOW_NEW_SOURCES:
1136 case MLD2_BLOCK_OLD_SOURCES:
1143 if ((grec->grec_type == MLD2_CHANGE_TO_INCLUDE ||
1144 grec->grec_type == MLD2_MODE_IS_INCLUDE) &&
1146 br_ip6_multicast_leave_group(br, port, &grec->grec_mca,
1149 err = br_ip6_multicast_add_group(br, port,
1150 &grec->grec_mca, vid);
1160 static bool br_ip4_multicast_select_querier(struct net_bridge *br,
1161 struct net_bridge_port *port,
1164 if (!timer_pending(&br->ip4_own_query.timer) &&
1165 !timer_pending(&br->ip4_other_query.timer))
1168 if (!br->ip4_querier.addr.u.ip4)
1171 if (ntohl(saddr) <= ntohl(br->ip4_querier.addr.u.ip4))
1177 br->ip4_querier.addr.u.ip4 = saddr;
1179 /* update protected by general multicast_lock by caller */
1180 rcu_assign_pointer(br->ip4_querier.port, port);
1185 #if IS_ENABLED(CONFIG_IPV6)
1186 static bool br_ip6_multicast_select_querier(struct net_bridge *br,
1187 struct net_bridge_port *port,
1188 struct in6_addr *saddr)
1190 if (!timer_pending(&br->ip6_own_query.timer) &&
1191 !timer_pending(&br->ip6_other_query.timer))
1194 if (ipv6_addr_cmp(saddr, &br->ip6_querier.addr.u.ip6) <= 0)
1200 br->ip6_querier.addr.u.ip6 = *saddr;
1202 /* update protected by general multicast_lock by caller */
1203 rcu_assign_pointer(br->ip6_querier.port, port);
1209 static bool br_multicast_select_querier(struct net_bridge *br,
1210 struct net_bridge_port *port,
1211 struct br_ip *saddr)
1213 switch (saddr->proto) {
1214 case htons(ETH_P_IP):
1215 return br_ip4_multicast_select_querier(br, port, saddr->u.ip4);
1216 #if IS_ENABLED(CONFIG_IPV6)
1217 case htons(ETH_P_IPV6):
1218 return br_ip6_multicast_select_querier(br, port, &saddr->u.ip6);
1226 br_multicast_update_query_timer(struct net_bridge *br,
1227 struct bridge_mcast_other_query *query,
1228 unsigned long max_delay)
1230 if (!timer_pending(&query->timer))
1231 query->delay_time = jiffies + max_delay;
1233 mod_timer(&query->timer, jiffies + br->multicast_querier_interval);
1237 * Add port to router_list
1238 * list is maintained ordered by pointer value
1239 * and locked by br->multicast_lock and RCU
1241 static void br_multicast_add_router(struct net_bridge *br,
1242 struct net_bridge_port *port)
1244 struct net_bridge_port *p;
1245 struct hlist_node *slot = NULL;
1247 if (!hlist_unhashed(&port->rlist))
1250 hlist_for_each_entry(p, &br->router_list, rlist) {
1251 if ((unsigned long) port >= (unsigned long) p)
1257 hlist_add_behind_rcu(&port->rlist, slot);
1259 hlist_add_head_rcu(&port->rlist, &br->router_list);
1260 br_rtr_notify(br->dev, port, RTM_NEWMDB);
1263 static void br_multicast_mark_router(struct net_bridge *br,
1264 struct net_bridge_port *port)
1266 unsigned long now = jiffies;
1269 if (br->multicast_router == MDB_RTR_TYPE_TEMP_QUERY)
1270 mod_timer(&br->multicast_router_timer,
1271 now + br->multicast_querier_interval);
1275 if (port->multicast_router == MDB_RTR_TYPE_DISABLED ||
1276 port->multicast_router == MDB_RTR_TYPE_PERM)
1279 br_multicast_add_router(br, port);
1281 mod_timer(&port->multicast_router_timer,
1282 now + br->multicast_querier_interval);
1285 static void br_multicast_query_received(struct net_bridge *br,
1286 struct net_bridge_port *port,
1287 struct bridge_mcast_other_query *query,
1288 struct br_ip *saddr,
1289 unsigned long max_delay)
1291 if (!br_multicast_select_querier(br, port, saddr))
1294 br_multicast_update_query_timer(br, query, max_delay);
1295 br_multicast_mark_router(br, port);
1298 static int br_ip4_multicast_query(struct net_bridge *br,
1299 struct net_bridge_port *port,
1300 struct sk_buff *skb,
1303 const struct iphdr *iph = ip_hdr(skb);
1304 struct igmphdr *ih = igmp_hdr(skb);
1305 struct net_bridge_mdb_entry *mp;
1306 struct igmpv3_query *ih3;
1307 struct net_bridge_port_group *p;
1308 struct net_bridge_port_group __rcu **pp;
1310 unsigned long max_delay;
1311 unsigned long now = jiffies;
1312 unsigned int offset = skb_transport_offset(skb);
1316 spin_lock(&br->multicast_lock);
1317 if (!netif_running(br->dev) ||
1318 (port && port->state == BR_STATE_DISABLED))
1323 if (skb->len == offset + sizeof(*ih)) {
1324 max_delay = ih->code * (HZ / IGMP_TIMER_SCALE);
1327 max_delay = 10 * HZ;
1330 } else if (skb->len >= offset + sizeof(*ih3)) {
1331 ih3 = igmpv3_query_hdr(skb);
1335 max_delay = ih3->code ?
1336 IGMPV3_MRC(ih3->code) * (HZ / IGMP_TIMER_SCALE) : 1;
1342 saddr.proto = htons(ETH_P_IP);
1343 saddr.u.ip4 = iph->saddr;
1345 br_multicast_query_received(br, port, &br->ip4_other_query,
1350 mp = br_mdb_ip4_get(mlock_dereference(br->mdb, br), group, vid);
1354 max_delay *= br->multicast_last_member_count;
1357 (timer_pending(&mp->timer) ?
1358 time_after(mp->timer.expires, now + max_delay) :
1359 try_to_del_timer_sync(&mp->timer) >= 0))
1360 mod_timer(&mp->timer, now + max_delay);
1362 for (pp = &mp->ports;
1363 (p = mlock_dereference(*pp, br)) != NULL;
1365 if (timer_pending(&p->timer) ?
1366 time_after(p->timer.expires, now + max_delay) :
1367 try_to_del_timer_sync(&p->timer) >= 0)
1368 mod_timer(&p->timer, now + max_delay);
1372 spin_unlock(&br->multicast_lock);
1376 #if IS_ENABLED(CONFIG_IPV6)
1377 static int br_ip6_multicast_query(struct net_bridge *br,
1378 struct net_bridge_port *port,
1379 struct sk_buff *skb,
1382 struct mld_msg *mld;
1383 struct net_bridge_mdb_entry *mp;
1384 struct mld2_query *mld2q;
1385 struct net_bridge_port_group *p;
1386 struct net_bridge_port_group __rcu **pp;
1388 unsigned long max_delay;
1389 unsigned long now = jiffies;
1390 unsigned int offset = skb_transport_offset(skb);
1391 const struct in6_addr *group = NULL;
1392 bool is_general_query;
1395 spin_lock(&br->multicast_lock);
1396 if (!netif_running(br->dev) ||
1397 (port && port->state == BR_STATE_DISABLED))
1400 if (skb->len == offset + sizeof(*mld)) {
1401 if (!pskb_may_pull(skb, offset + sizeof(*mld))) {
1405 mld = (struct mld_msg *) icmp6_hdr(skb);
1406 max_delay = msecs_to_jiffies(ntohs(mld->mld_maxdelay));
1408 group = &mld->mld_mca;
1410 if (!pskb_may_pull(skb, offset + sizeof(*mld2q))) {
1414 mld2q = (struct mld2_query *)icmp6_hdr(skb);
1415 if (!mld2q->mld2q_nsrcs)
1416 group = &mld2q->mld2q_mca;
1418 max_delay = max(msecs_to_jiffies(mldv2_mrc(mld2q)), 1UL);
1421 is_general_query = group && ipv6_addr_any(group);
1423 if (is_general_query) {
1424 saddr.proto = htons(ETH_P_IPV6);
1425 saddr.u.ip6 = ipv6_hdr(skb)->saddr;
1427 br_multicast_query_received(br, port, &br->ip6_other_query,
1430 } else if (!group) {
1434 mp = br_mdb_ip6_get(mlock_dereference(br->mdb, br), group, vid);
1438 max_delay *= br->multicast_last_member_count;
1440 (timer_pending(&mp->timer) ?
1441 time_after(mp->timer.expires, now + max_delay) :
1442 try_to_del_timer_sync(&mp->timer) >= 0))
1443 mod_timer(&mp->timer, now + max_delay);
1445 for (pp = &mp->ports;
1446 (p = mlock_dereference(*pp, br)) != NULL;
1448 if (timer_pending(&p->timer) ?
1449 time_after(p->timer.expires, now + max_delay) :
1450 try_to_del_timer_sync(&p->timer) >= 0)
1451 mod_timer(&p->timer, now + max_delay);
1455 spin_unlock(&br->multicast_lock);
1461 br_multicast_leave_group(struct net_bridge *br,
1462 struct net_bridge_port *port,
1463 struct br_ip *group,
1464 struct bridge_mcast_other_query *other_query,
1465 struct bridge_mcast_own_query *own_query)
1467 struct net_bridge_mdb_htable *mdb;
1468 struct net_bridge_mdb_entry *mp;
1469 struct net_bridge_port_group *p;
1473 spin_lock(&br->multicast_lock);
1474 if (!netif_running(br->dev) ||
1475 (port && port->state == BR_STATE_DISABLED))
1478 mdb = mlock_dereference(br->mdb, br);
1479 mp = br_mdb_ip_get(mdb, group);
1483 if (port && (port->flags & BR_MULTICAST_FAST_LEAVE)) {
1484 struct net_bridge_port_group __rcu **pp;
1486 for (pp = &mp->ports;
1487 (p = mlock_dereference(*pp, br)) != NULL;
1489 if (p->port != port)
1492 if (p->flags & MDB_PG_FLAGS_PERMANENT)
1495 rcu_assign_pointer(*pp, p->next);
1496 hlist_del_init(&p->mglist);
1497 del_timer(&p->timer);
1498 call_rcu_bh(&p->rcu, br_multicast_free_pg);
1499 br_mdb_notify(br->dev, port, group, RTM_DELMDB,
1502 if (!mp->ports && !mp->mglist &&
1503 netif_running(br->dev))
1504 mod_timer(&mp->timer, jiffies);
1509 if (timer_pending(&other_query->timer))
1512 if (br->multicast_querier) {
1513 __br_multicast_send_query(br, port, &mp->addr);
1515 time = jiffies + br->multicast_last_member_count *
1516 br->multicast_last_member_interval;
1518 mod_timer(&own_query->timer, time);
1520 for (p = mlock_dereference(mp->ports, br);
1522 p = mlock_dereference(p->next, br)) {
1523 if (p->port != port)
1526 if (!hlist_unhashed(&p->mglist) &&
1527 (timer_pending(&p->timer) ?
1528 time_after(p->timer.expires, time) :
1529 try_to_del_timer_sync(&p->timer) >= 0)) {
1530 mod_timer(&p->timer, time);
1538 time = now + br->multicast_last_member_count *
1539 br->multicast_last_member_interval;
1543 (timer_pending(&mp->timer) ?
1544 time_after(mp->timer.expires, time) :
1545 try_to_del_timer_sync(&mp->timer) >= 0)) {
1546 mod_timer(&mp->timer, time);
1552 for (p = mlock_dereference(mp->ports, br);
1554 p = mlock_dereference(p->next, br)) {
1555 if (p->port != port)
1558 if (!hlist_unhashed(&p->mglist) &&
1559 (timer_pending(&p->timer) ?
1560 time_after(p->timer.expires, time) :
1561 try_to_del_timer_sync(&p->timer) >= 0)) {
1562 mod_timer(&p->timer, time);
1568 spin_unlock(&br->multicast_lock);
1571 static void br_ip4_multicast_leave_group(struct net_bridge *br,
1572 struct net_bridge_port *port,
1576 struct br_ip br_group;
1577 struct bridge_mcast_own_query *own_query;
1579 if (ipv4_is_local_multicast(group))
1582 own_query = port ? &port->ip4_own_query : &br->ip4_own_query;
1584 br_group.u.ip4 = group;
1585 br_group.proto = htons(ETH_P_IP);
1588 br_multicast_leave_group(br, port, &br_group, &br->ip4_other_query,
1592 #if IS_ENABLED(CONFIG_IPV6)
1593 static void br_ip6_multicast_leave_group(struct net_bridge *br,
1594 struct net_bridge_port *port,
1595 const struct in6_addr *group,
1598 struct br_ip br_group;
1599 struct bridge_mcast_own_query *own_query;
1601 if (ipv6_addr_is_ll_all_nodes(group))
1604 own_query = port ? &port->ip6_own_query : &br->ip6_own_query;
1606 br_group.u.ip6 = *group;
1607 br_group.proto = htons(ETH_P_IPV6);
1610 br_multicast_leave_group(br, port, &br_group, &br->ip6_other_query,
1615 static void br_multicast_err_count(const struct net_bridge *br,
1616 const struct net_bridge_port *p,
1619 struct bridge_mcast_stats __percpu *stats;
1620 struct bridge_mcast_stats *pstats;
1622 if (!br->multicast_stats_enabled)
1626 stats = p->mcast_stats;
1628 stats = br->mcast_stats;
1629 if (WARN_ON(!stats))
1632 pstats = this_cpu_ptr(stats);
1634 u64_stats_update_begin(&pstats->syncp);
1636 case htons(ETH_P_IP):
1637 pstats->mstats.igmp_parse_errors++;
1639 #if IS_ENABLED(CONFIG_IPV6)
1640 case htons(ETH_P_IPV6):
1641 pstats->mstats.mld_parse_errors++;
1645 u64_stats_update_end(&pstats->syncp);
1648 static int br_multicast_ipv4_rcv(struct net_bridge *br,
1649 struct net_bridge_port *port,
1650 struct sk_buff *skb,
1653 struct sk_buff *skb_trimmed = NULL;
1657 err = ip_mc_check_igmp(skb, &skb_trimmed);
1659 if (err == -ENOMSG) {
1660 if (!ipv4_is_local_multicast(ip_hdr(skb)->daddr))
1661 BR_INPUT_SKB_CB(skb)->mrouters_only = 1;
1663 } else if (err < 0) {
1664 br_multicast_err_count(br, port, skb->protocol);
1669 BR_INPUT_SKB_CB(skb)->igmp = ih->type;
1672 case IGMP_HOST_MEMBERSHIP_REPORT:
1673 case IGMPV2_HOST_MEMBERSHIP_REPORT:
1674 BR_INPUT_SKB_CB(skb)->mrouters_only = 1;
1675 err = br_ip4_multicast_add_group(br, port, ih->group, vid);
1677 case IGMPV3_HOST_MEMBERSHIP_REPORT:
1678 err = br_ip4_multicast_igmp3_report(br, port, skb_trimmed, vid);
1680 case IGMP_HOST_MEMBERSHIP_QUERY:
1681 err = br_ip4_multicast_query(br, port, skb_trimmed, vid);
1683 case IGMP_HOST_LEAVE_MESSAGE:
1684 br_ip4_multicast_leave_group(br, port, ih->group, vid);
1688 if (skb_trimmed && skb_trimmed != skb)
1689 kfree_skb(skb_trimmed);
1691 br_multicast_count(br, port, skb, BR_INPUT_SKB_CB(skb)->igmp,
1697 #if IS_ENABLED(CONFIG_IPV6)
1698 static int br_multicast_ipv6_rcv(struct net_bridge *br,
1699 struct net_bridge_port *port,
1700 struct sk_buff *skb,
1703 struct sk_buff *skb_trimmed = NULL;
1704 struct mld_msg *mld;
1707 err = ipv6_mc_check_mld(skb, &skb_trimmed);
1709 if (err == -ENOMSG) {
1710 if (!ipv6_addr_is_ll_all_nodes(&ipv6_hdr(skb)->daddr))
1711 BR_INPUT_SKB_CB(skb)->mrouters_only = 1;
1713 } else if (err < 0) {
1714 br_multicast_err_count(br, port, skb->protocol);
1718 mld = (struct mld_msg *)skb_transport_header(skb);
1719 BR_INPUT_SKB_CB(skb)->igmp = mld->mld_type;
1721 switch (mld->mld_type) {
1722 case ICMPV6_MGM_REPORT:
1723 BR_INPUT_SKB_CB(skb)->mrouters_only = 1;
1724 err = br_ip6_multicast_add_group(br, port, &mld->mld_mca, vid);
1726 case ICMPV6_MLD2_REPORT:
1727 err = br_ip6_multicast_mld2_report(br, port, skb_trimmed, vid);
1729 case ICMPV6_MGM_QUERY:
1730 err = br_ip6_multicast_query(br, port, skb_trimmed, vid);
1732 case ICMPV6_MGM_REDUCTION:
1733 br_ip6_multicast_leave_group(br, port, &mld->mld_mca, vid);
1737 if (skb_trimmed && skb_trimmed != skb)
1738 kfree_skb(skb_trimmed);
1740 br_multicast_count(br, port, skb, BR_INPUT_SKB_CB(skb)->igmp,
1747 int br_multicast_rcv(struct net_bridge *br, struct net_bridge_port *port,
1748 struct sk_buff *skb, u16 vid)
1752 BR_INPUT_SKB_CB(skb)->igmp = 0;
1753 BR_INPUT_SKB_CB(skb)->mrouters_only = 0;
1755 if (br->multicast_disabled)
1758 switch (skb->protocol) {
1759 case htons(ETH_P_IP):
1760 ret = br_multicast_ipv4_rcv(br, port, skb, vid);
1762 #if IS_ENABLED(CONFIG_IPV6)
1763 case htons(ETH_P_IPV6):
1764 ret = br_multicast_ipv6_rcv(br, port, skb, vid);
1772 static void br_multicast_query_expired(struct net_bridge *br,
1773 struct bridge_mcast_own_query *query,
1774 struct bridge_mcast_querier *querier)
1776 spin_lock(&br->multicast_lock);
1777 if (query->startup_sent < br->multicast_startup_query_count)
1778 query->startup_sent++;
1780 RCU_INIT_POINTER(querier->port, NULL);
1781 br_multicast_send_query(br, NULL, query);
1782 spin_unlock(&br->multicast_lock);
1785 static void br_ip4_multicast_query_expired(unsigned long data)
1787 struct net_bridge *br = (void *)data;
1789 br_multicast_query_expired(br, &br->ip4_own_query, &br->ip4_querier);
1792 #if IS_ENABLED(CONFIG_IPV6)
1793 static void br_ip6_multicast_query_expired(unsigned long data)
1795 struct net_bridge *br = (void *)data;
1797 br_multicast_query_expired(br, &br->ip6_own_query, &br->ip6_querier);
1801 void br_multicast_init(struct net_bridge *br)
1803 br->hash_elasticity = 4;
1806 br->multicast_router = MDB_RTR_TYPE_TEMP_QUERY;
1807 br->multicast_querier = 0;
1808 br->multicast_query_use_ifaddr = 0;
1809 br->multicast_last_member_count = 2;
1810 br->multicast_startup_query_count = 2;
1812 br->multicast_last_member_interval = HZ;
1813 br->multicast_query_response_interval = 10 * HZ;
1814 br->multicast_startup_query_interval = 125 * HZ / 4;
1815 br->multicast_query_interval = 125 * HZ;
1816 br->multicast_querier_interval = 255 * HZ;
1817 br->multicast_membership_interval = 260 * HZ;
1819 br->ip4_other_query.delay_time = 0;
1820 br->ip4_querier.port = NULL;
1821 #if IS_ENABLED(CONFIG_IPV6)
1822 br->ip6_other_query.delay_time = 0;
1823 br->ip6_querier.port = NULL;
1825 br->has_ipv6_addr = 1;
1827 spin_lock_init(&br->multicast_lock);
1828 setup_timer(&br->multicast_router_timer,
1829 br_multicast_local_router_expired, 0);
1830 setup_timer(&br->ip4_other_query.timer,
1831 br_ip4_multicast_querier_expired, (unsigned long)br);
1832 setup_timer(&br->ip4_own_query.timer, br_ip4_multicast_query_expired,
1834 #if IS_ENABLED(CONFIG_IPV6)
1835 setup_timer(&br->ip6_other_query.timer,
1836 br_ip6_multicast_querier_expired, (unsigned long)br);
1837 setup_timer(&br->ip6_own_query.timer, br_ip6_multicast_query_expired,
1842 static void __br_multicast_open(struct net_bridge *br,
1843 struct bridge_mcast_own_query *query)
1845 query->startup_sent = 0;
1847 if (br->multicast_disabled)
1850 mod_timer(&query->timer, jiffies);
1853 void br_multicast_open(struct net_bridge *br)
1855 __br_multicast_open(br, &br->ip4_own_query);
1856 #if IS_ENABLED(CONFIG_IPV6)
1857 __br_multicast_open(br, &br->ip6_own_query);
1861 void br_multicast_stop(struct net_bridge *br)
1863 del_timer_sync(&br->multicast_router_timer);
1864 del_timer_sync(&br->ip4_other_query.timer);
1865 del_timer_sync(&br->ip4_own_query.timer);
1866 #if IS_ENABLED(CONFIG_IPV6)
1867 del_timer_sync(&br->ip6_other_query.timer);
1868 del_timer_sync(&br->ip6_own_query.timer);
1872 void br_multicast_dev_del(struct net_bridge *br)
1874 struct net_bridge_mdb_htable *mdb;
1875 struct net_bridge_mdb_entry *mp;
1876 struct hlist_node *n;
1880 spin_lock_bh(&br->multicast_lock);
1881 mdb = mlock_dereference(br->mdb, br);
1888 for (i = 0; i < mdb->max; i++) {
1889 hlist_for_each_entry_safe(mp, n, &mdb->mhash[i],
1891 del_timer(&mp->timer);
1892 call_rcu_bh(&mp->rcu, br_multicast_free_group);
1897 spin_unlock_bh(&br->multicast_lock);
1899 spin_lock_bh(&br->multicast_lock);
1904 call_rcu_bh(&mdb->rcu, br_mdb_free);
1907 spin_unlock_bh(&br->multicast_lock);
1909 free_percpu(br->mcast_stats);
1912 int br_multicast_set_router(struct net_bridge *br, unsigned long val)
1916 spin_lock_bh(&br->multicast_lock);
1919 case MDB_RTR_TYPE_DISABLED:
1920 case MDB_RTR_TYPE_PERM:
1921 del_timer(&br->multicast_router_timer);
1923 case MDB_RTR_TYPE_TEMP_QUERY:
1924 br->multicast_router = val;
1929 spin_unlock_bh(&br->multicast_lock);
1934 static void __del_port_router(struct net_bridge_port *p)
1936 if (hlist_unhashed(&p->rlist))
1938 hlist_del_init_rcu(&p->rlist);
1939 br_rtr_notify(p->br->dev, p, RTM_DELMDB);
1942 int br_multicast_set_port_router(struct net_bridge_port *p, unsigned long val)
1944 struct net_bridge *br = p->br;
1945 unsigned long now = jiffies;
1948 spin_lock(&br->multicast_lock);
1949 if (p->multicast_router == val) {
1950 /* Refresh the temp router port timer */
1951 if (p->multicast_router == MDB_RTR_TYPE_TEMP)
1952 mod_timer(&p->multicast_router_timer,
1953 now + br->multicast_querier_interval);
1958 case MDB_RTR_TYPE_DISABLED:
1959 p->multicast_router = MDB_RTR_TYPE_DISABLED;
1960 __del_port_router(p);
1961 del_timer(&p->multicast_router_timer);
1963 case MDB_RTR_TYPE_TEMP_QUERY:
1964 p->multicast_router = MDB_RTR_TYPE_TEMP_QUERY;
1965 __del_port_router(p);
1967 case MDB_RTR_TYPE_PERM:
1968 p->multicast_router = MDB_RTR_TYPE_PERM;
1969 del_timer(&p->multicast_router_timer);
1970 br_multicast_add_router(br, p);
1972 case MDB_RTR_TYPE_TEMP:
1973 p->multicast_router = MDB_RTR_TYPE_TEMP;
1974 br_multicast_mark_router(br, p);
1981 spin_unlock(&br->multicast_lock);
1986 static void br_multicast_start_querier(struct net_bridge *br,
1987 struct bridge_mcast_own_query *query)
1989 struct net_bridge_port *port;
1991 __br_multicast_open(br, query);
1994 list_for_each_entry_rcu(port, &br->port_list, list) {
1995 if (port->state == BR_STATE_DISABLED ||
1996 port->state == BR_STATE_BLOCKING)
1999 if (query == &br->ip4_own_query)
2000 br_multicast_enable(&port->ip4_own_query);
2001 #if IS_ENABLED(CONFIG_IPV6)
2003 br_multicast_enable(&port->ip6_own_query);
2009 int br_multicast_toggle(struct net_bridge *br, unsigned long val)
2011 struct net_bridge_mdb_htable *mdb;
2012 struct net_bridge_port *port;
2015 spin_lock_bh(&br->multicast_lock);
2016 if (br->multicast_disabled == !val)
2019 br->multicast_disabled = !val;
2020 if (br->multicast_disabled)
2023 if (!netif_running(br->dev))
2026 mdb = mlock_dereference(br->mdb, br);
2031 br->multicast_disabled = !!val;
2035 err = br_mdb_rehash(&br->mdb, mdb->max,
2036 br->hash_elasticity);
2041 br_multicast_open(br);
2042 list_for_each_entry(port, &br->port_list, list)
2043 __br_multicast_enable_port(port);
2046 spin_unlock_bh(&br->multicast_lock);
2051 int br_multicast_set_querier(struct net_bridge *br, unsigned long val)
2053 unsigned long max_delay;
2057 spin_lock_bh(&br->multicast_lock);
2058 if (br->multicast_querier == val)
2061 br->multicast_querier = val;
2065 max_delay = br->multicast_query_response_interval;
2067 if (!timer_pending(&br->ip4_other_query.timer))
2068 br->ip4_other_query.delay_time = jiffies + max_delay;
2070 br_multicast_start_querier(br, &br->ip4_own_query);
2072 #if IS_ENABLED(CONFIG_IPV6)
2073 if (!timer_pending(&br->ip6_other_query.timer))
2074 br->ip6_other_query.delay_time = jiffies + max_delay;
2076 br_multicast_start_querier(br, &br->ip6_own_query);
2080 spin_unlock_bh(&br->multicast_lock);
2085 int br_multicast_set_hash_max(struct net_bridge *br, unsigned long val)
2089 struct net_bridge_mdb_htable *mdb;
2091 spin_lock_bh(&br->multicast_lock);
2092 if (!is_power_of_2(val))
2095 mdb = mlock_dereference(br->mdb, br);
2096 if (mdb && val < mdb->size)
2112 err = br_mdb_rehash(&br->mdb, br->hash_max,
2113 br->hash_elasticity);
2119 spin_unlock_bh(&br->multicast_lock);
2125 * br_multicast_list_adjacent - Returns snooped multicast addresses
2126 * @dev: The bridge port adjacent to which to retrieve addresses
2127 * @br_ip_list: The list to store found, snooped multicast IP addresses in
2129 * Creates a list of IP addresses (struct br_ip_list) sensed by the multicast
2130 * snooping feature on all bridge ports of dev's bridge device, excluding
2131 * the addresses from dev itself.
2133 * Returns the number of items added to br_ip_list.
2136 * - br_ip_list needs to be initialized by caller
2137 * - br_ip_list might contain duplicates in the end
2138 * (needs to be taken care of by caller)
2139 * - br_ip_list needs to be freed by caller
2141 int br_multicast_list_adjacent(struct net_device *dev,
2142 struct list_head *br_ip_list)
2144 struct net_bridge *br;
2145 struct net_bridge_port *port;
2146 struct net_bridge_port_group *group;
2147 struct br_ip_list *entry;
2151 if (!br_ip_list || !br_port_exists(dev))
2154 port = br_port_get_rcu(dev);
2155 if (!port || !port->br)
2160 list_for_each_entry_rcu(port, &br->port_list, list) {
2161 if (!port->dev || port->dev == dev)
2164 hlist_for_each_entry_rcu(group, &port->mglist, mglist) {
2165 entry = kmalloc(sizeof(*entry), GFP_ATOMIC);
2169 entry->addr = group->addr;
2170 list_add(&entry->list, br_ip_list);
2179 EXPORT_SYMBOL_GPL(br_multicast_list_adjacent);
2182 * br_multicast_has_querier_anywhere - Checks for a querier on a bridge
2183 * @dev: The bridge port providing the bridge on which to check for a querier
2184 * @proto: The protocol family to check for: IGMP -> ETH_P_IP, MLD -> ETH_P_IPV6
2186 * Checks whether the given interface has a bridge on top and if so returns
2187 * true if a valid querier exists anywhere on the bridged link layer.
2188 * Otherwise returns false.
2190 bool br_multicast_has_querier_anywhere(struct net_device *dev, int proto)
2192 struct net_bridge *br;
2193 struct net_bridge_port *port;
2198 if (!br_port_exists(dev))
2201 port = br_port_get_rcu(dev);
2202 if (!port || !port->br)
2207 memset(ð, 0, sizeof(eth));
2208 eth.h_proto = htons(proto);
2210 ret = br_multicast_querier_exists(br, ð);
2216 EXPORT_SYMBOL_GPL(br_multicast_has_querier_anywhere);
2219 * br_multicast_has_querier_adjacent - Checks for a querier behind a bridge port
2220 * @dev: The bridge port adjacent to which to check for a querier
2221 * @proto: The protocol family to check for: IGMP -> ETH_P_IP, MLD -> ETH_P_IPV6
2223 * Checks whether the given interface has a bridge on top and if so returns
2224 * true if a selected querier is behind one of the other ports of this
2225 * bridge. Otherwise returns false.
2227 bool br_multicast_has_querier_adjacent(struct net_device *dev, int proto)
2229 struct net_bridge *br;
2230 struct net_bridge_port *port;
2234 if (!br_port_exists(dev))
2237 port = br_port_get_rcu(dev);
2238 if (!port || !port->br)
2245 if (!timer_pending(&br->ip4_other_query.timer) ||
2246 rcu_dereference(br->ip4_querier.port) == port)
2249 #if IS_ENABLED(CONFIG_IPV6)
2251 if (!timer_pending(&br->ip6_other_query.timer) ||
2252 rcu_dereference(br->ip6_querier.port) == port)
2265 EXPORT_SYMBOL_GPL(br_multicast_has_querier_adjacent);
2267 static void br_mcast_stats_add(struct bridge_mcast_stats __percpu *stats,
2268 const struct sk_buff *skb, u8 type, u8 dir)
2270 struct bridge_mcast_stats *pstats = this_cpu_ptr(stats);
2271 __be16 proto = skb->protocol;
2274 u64_stats_update_begin(&pstats->syncp);
2276 case htons(ETH_P_IP):
2277 t_len = ntohs(ip_hdr(skb)->tot_len) - ip_hdrlen(skb);
2279 case IGMP_HOST_MEMBERSHIP_REPORT:
2280 pstats->mstats.igmp_v1reports[dir]++;
2282 case IGMPV2_HOST_MEMBERSHIP_REPORT:
2283 pstats->mstats.igmp_v2reports[dir]++;
2285 case IGMPV3_HOST_MEMBERSHIP_REPORT:
2286 pstats->mstats.igmp_v3reports[dir]++;
2288 case IGMP_HOST_MEMBERSHIP_QUERY:
2289 if (t_len != sizeof(struct igmphdr)) {
2290 pstats->mstats.igmp_v3queries[dir]++;
2292 unsigned int offset = skb_transport_offset(skb);
2293 struct igmphdr *ih, _ihdr;
2295 ih = skb_header_pointer(skb, offset,
2296 sizeof(_ihdr), &_ihdr);
2300 pstats->mstats.igmp_v1queries[dir]++;
2302 pstats->mstats.igmp_v2queries[dir]++;
2305 case IGMP_HOST_LEAVE_MESSAGE:
2306 pstats->mstats.igmp_leaves[dir]++;
2310 #if IS_ENABLED(CONFIG_IPV6)
2311 case htons(ETH_P_IPV6):
2312 t_len = ntohs(ipv6_hdr(skb)->payload_len) +
2313 sizeof(struct ipv6hdr);
2314 t_len -= skb_network_header_len(skb);
2316 case ICMPV6_MGM_REPORT:
2317 pstats->mstats.mld_v1reports[dir]++;
2319 case ICMPV6_MLD2_REPORT:
2320 pstats->mstats.mld_v2reports[dir]++;
2322 case ICMPV6_MGM_QUERY:
2323 if (t_len != sizeof(struct mld_msg))
2324 pstats->mstats.mld_v2queries[dir]++;
2326 pstats->mstats.mld_v1queries[dir]++;
2328 case ICMPV6_MGM_REDUCTION:
2329 pstats->mstats.mld_leaves[dir]++;
2333 #endif /* CONFIG_IPV6 */
2335 u64_stats_update_end(&pstats->syncp);
2338 void br_multicast_count(struct net_bridge *br, const struct net_bridge_port *p,
2339 const struct sk_buff *skb, u8 type, u8 dir)
2341 struct bridge_mcast_stats __percpu *stats;
2343 /* if multicast_disabled is true then igmp type can't be set */
2344 if (!type || !br->multicast_stats_enabled)
2348 stats = p->mcast_stats;
2350 stats = br->mcast_stats;
2351 if (WARN_ON(!stats))
2354 br_mcast_stats_add(stats, skb, type, dir);
2357 int br_multicast_init_stats(struct net_bridge *br)
2359 br->mcast_stats = netdev_alloc_pcpu_stats(struct bridge_mcast_stats);
2360 if (!br->mcast_stats)
2366 static void mcast_stats_add_dir(u64 *dst, u64 *src)
2368 dst[BR_MCAST_DIR_RX] += src[BR_MCAST_DIR_RX];
2369 dst[BR_MCAST_DIR_TX] += src[BR_MCAST_DIR_TX];
2372 void br_multicast_get_stats(const struct net_bridge *br,
2373 const struct net_bridge_port *p,
2374 struct br_mcast_stats *dest)
2376 struct bridge_mcast_stats __percpu *stats;
2377 struct br_mcast_stats tdst;
2380 memset(dest, 0, sizeof(*dest));
2382 stats = p->mcast_stats;
2384 stats = br->mcast_stats;
2385 if (WARN_ON(!stats))
2388 memset(&tdst, 0, sizeof(tdst));
2389 for_each_possible_cpu(i) {
2390 struct bridge_mcast_stats *cpu_stats = per_cpu_ptr(stats, i);
2391 struct br_mcast_stats temp;
2395 start = u64_stats_fetch_begin_irq(&cpu_stats->syncp);
2396 memcpy(&temp, &cpu_stats->mstats, sizeof(temp));
2397 } while (u64_stats_fetch_retry_irq(&cpu_stats->syncp, start));
2399 mcast_stats_add_dir(tdst.igmp_v1queries, temp.igmp_v1queries);
2400 mcast_stats_add_dir(tdst.igmp_v2queries, temp.igmp_v2queries);
2401 mcast_stats_add_dir(tdst.igmp_v3queries, temp.igmp_v3queries);
2402 mcast_stats_add_dir(tdst.igmp_leaves, temp.igmp_leaves);
2403 mcast_stats_add_dir(tdst.igmp_v1reports, temp.igmp_v1reports);
2404 mcast_stats_add_dir(tdst.igmp_v2reports, temp.igmp_v2reports);
2405 mcast_stats_add_dir(tdst.igmp_v3reports, temp.igmp_v3reports);
2406 tdst.igmp_parse_errors += temp.igmp_parse_errors;
2408 mcast_stats_add_dir(tdst.mld_v1queries, temp.mld_v1queries);
2409 mcast_stats_add_dir(tdst.mld_v2queries, temp.mld_v2queries);
2410 mcast_stats_add_dir(tdst.mld_leaves, temp.mld_leaves);
2411 mcast_stats_add_dir(tdst.mld_v1reports, temp.mld_v1reports);
2412 mcast_stats_add_dir(tdst.mld_v2reports, temp.mld_v2reports);
2413 tdst.mld_parse_errors += temp.mld_parse_errors;
2415 memcpy(dest, &tdst, sizeof(*dest));