xref: /kernel/linux/linux-5.10/net/dccp/options.c (revision 8c2ecf20)
18c2ecf20Sopenharmony_ci// SPDX-License-Identifier: GPL-2.0-or-later
28c2ecf20Sopenharmony_ci/*
38c2ecf20Sopenharmony_ci *  net/dccp/options.c
48c2ecf20Sopenharmony_ci *
58c2ecf20Sopenharmony_ci *  An implementation of the DCCP protocol
68c2ecf20Sopenharmony_ci *  Copyright (c) 2005 Aristeu Sergio Rozanski Filho <aris@cathedrallabs.org>
78c2ecf20Sopenharmony_ci *  Copyright (c) 2005 Arnaldo Carvalho de Melo <acme@ghostprotocols.net>
88c2ecf20Sopenharmony_ci *  Copyright (c) 2005 Ian McDonald <ian.mcdonald@jandi.co.nz>
98c2ecf20Sopenharmony_ci */
108c2ecf20Sopenharmony_ci#include <linux/dccp.h>
118c2ecf20Sopenharmony_ci#include <linux/module.h>
128c2ecf20Sopenharmony_ci#include <linux/types.h>
138c2ecf20Sopenharmony_ci#include <asm/unaligned.h>
148c2ecf20Sopenharmony_ci#include <linux/kernel.h>
158c2ecf20Sopenharmony_ci#include <linux/skbuff.h>
168c2ecf20Sopenharmony_ci
178c2ecf20Sopenharmony_ci#include "ackvec.h"
188c2ecf20Sopenharmony_ci#include "ccid.h"
198c2ecf20Sopenharmony_ci#include "dccp.h"
208c2ecf20Sopenharmony_ci#include "feat.h"
218c2ecf20Sopenharmony_ci
228c2ecf20Sopenharmony_ciu64 dccp_decode_value_var(const u8 *bf, const u8 len)
238c2ecf20Sopenharmony_ci{
248c2ecf20Sopenharmony_ci	u64 value = 0;
258c2ecf20Sopenharmony_ci
268c2ecf20Sopenharmony_ci	if (len >= DCCP_OPTVAL_MAXLEN)
278c2ecf20Sopenharmony_ci		value += ((u64)*bf++) << 40;
288c2ecf20Sopenharmony_ci	if (len > 4)
298c2ecf20Sopenharmony_ci		value += ((u64)*bf++) << 32;
308c2ecf20Sopenharmony_ci	if (len > 3)
318c2ecf20Sopenharmony_ci		value += ((u64)*bf++) << 24;
328c2ecf20Sopenharmony_ci	if (len > 2)
338c2ecf20Sopenharmony_ci		value += ((u64)*bf++) << 16;
348c2ecf20Sopenharmony_ci	if (len > 1)
358c2ecf20Sopenharmony_ci		value += ((u64)*bf++) << 8;
368c2ecf20Sopenharmony_ci	if (len > 0)
378c2ecf20Sopenharmony_ci		value += *bf;
388c2ecf20Sopenharmony_ci
398c2ecf20Sopenharmony_ci	return value;
408c2ecf20Sopenharmony_ci}
418c2ecf20Sopenharmony_ci
428c2ecf20Sopenharmony_ci/**
438c2ecf20Sopenharmony_ci * dccp_parse_options  -  Parse DCCP options present in @skb
448c2ecf20Sopenharmony_ci * @sk: client|server|listening dccp socket (when @dreq != NULL)
458c2ecf20Sopenharmony_ci * @dreq: request socket to use during connection setup, or NULL
468c2ecf20Sopenharmony_ci * @skb: frame to parse
478c2ecf20Sopenharmony_ci */
488c2ecf20Sopenharmony_ciint dccp_parse_options(struct sock *sk, struct dccp_request_sock *dreq,
498c2ecf20Sopenharmony_ci		       struct sk_buff *skb)
508c2ecf20Sopenharmony_ci{
518c2ecf20Sopenharmony_ci	struct dccp_sock *dp = dccp_sk(sk);
528c2ecf20Sopenharmony_ci	const struct dccp_hdr *dh = dccp_hdr(skb);
538c2ecf20Sopenharmony_ci	const u8 pkt_type = DCCP_SKB_CB(skb)->dccpd_type;
548c2ecf20Sopenharmony_ci	unsigned char *options = (unsigned char *)dh + dccp_hdr_len(skb);
558c2ecf20Sopenharmony_ci	unsigned char *opt_ptr = options;
568c2ecf20Sopenharmony_ci	const unsigned char *opt_end = (unsigned char *)dh +
578c2ecf20Sopenharmony_ci					(dh->dccph_doff * 4);
588c2ecf20Sopenharmony_ci	struct dccp_options_received *opt_recv = &dp->dccps_options_received;
598c2ecf20Sopenharmony_ci	unsigned char opt, len;
608c2ecf20Sopenharmony_ci	unsigned char *value;
618c2ecf20Sopenharmony_ci	u32 elapsed_time;
628c2ecf20Sopenharmony_ci	__be32 opt_val;
638c2ecf20Sopenharmony_ci	int rc;
648c2ecf20Sopenharmony_ci	int mandatory = 0;
658c2ecf20Sopenharmony_ci
668c2ecf20Sopenharmony_ci	memset(opt_recv, 0, sizeof(*opt_recv));
678c2ecf20Sopenharmony_ci
688c2ecf20Sopenharmony_ci	opt = len = 0;
698c2ecf20Sopenharmony_ci	while (opt_ptr != opt_end) {
708c2ecf20Sopenharmony_ci		opt   = *opt_ptr++;
718c2ecf20Sopenharmony_ci		len   = 0;
728c2ecf20Sopenharmony_ci		value = NULL;
738c2ecf20Sopenharmony_ci
748c2ecf20Sopenharmony_ci		/* Check if this isn't a single byte option */
758c2ecf20Sopenharmony_ci		if (opt > DCCPO_MAX_RESERVED) {
768c2ecf20Sopenharmony_ci			if (opt_ptr == opt_end)
778c2ecf20Sopenharmony_ci				goto out_nonsensical_length;
788c2ecf20Sopenharmony_ci
798c2ecf20Sopenharmony_ci			len = *opt_ptr++;
808c2ecf20Sopenharmony_ci			if (len < 2)
818c2ecf20Sopenharmony_ci				goto out_nonsensical_length;
828c2ecf20Sopenharmony_ci			/*
838c2ecf20Sopenharmony_ci			 * Remove the type and len fields, leaving
848c2ecf20Sopenharmony_ci			 * just the value size
858c2ecf20Sopenharmony_ci			 */
868c2ecf20Sopenharmony_ci			len	-= 2;
878c2ecf20Sopenharmony_ci			value	= opt_ptr;
888c2ecf20Sopenharmony_ci			opt_ptr += len;
898c2ecf20Sopenharmony_ci
908c2ecf20Sopenharmony_ci			if (opt_ptr > opt_end)
918c2ecf20Sopenharmony_ci				goto out_nonsensical_length;
928c2ecf20Sopenharmony_ci		}
938c2ecf20Sopenharmony_ci
948c2ecf20Sopenharmony_ci		/*
958c2ecf20Sopenharmony_ci		 * CCID-specific options are ignored during connection setup, as
968c2ecf20Sopenharmony_ci		 * negotiation may still be in progress (see RFC 4340, 10.3).
978c2ecf20Sopenharmony_ci		 * The same applies to Ack Vectors, as these depend on the CCID.
988c2ecf20Sopenharmony_ci		 */
998c2ecf20Sopenharmony_ci		if (dreq != NULL && (opt >= DCCPO_MIN_RX_CCID_SPECIFIC ||
1008c2ecf20Sopenharmony_ci		    opt == DCCPO_ACK_VECTOR_0 || opt == DCCPO_ACK_VECTOR_1))
1018c2ecf20Sopenharmony_ci			goto ignore_option;
1028c2ecf20Sopenharmony_ci
1038c2ecf20Sopenharmony_ci		switch (opt) {
1048c2ecf20Sopenharmony_ci		case DCCPO_PADDING:
1058c2ecf20Sopenharmony_ci			break;
1068c2ecf20Sopenharmony_ci		case DCCPO_MANDATORY:
1078c2ecf20Sopenharmony_ci			if (mandatory)
1088c2ecf20Sopenharmony_ci				goto out_invalid_option;
1098c2ecf20Sopenharmony_ci			if (pkt_type != DCCP_PKT_DATA)
1108c2ecf20Sopenharmony_ci				mandatory = 1;
1118c2ecf20Sopenharmony_ci			break;
1128c2ecf20Sopenharmony_ci		case DCCPO_NDP_COUNT:
1138c2ecf20Sopenharmony_ci			if (len > 6)
1148c2ecf20Sopenharmony_ci				goto out_invalid_option;
1158c2ecf20Sopenharmony_ci
1168c2ecf20Sopenharmony_ci			opt_recv->dccpor_ndp = dccp_decode_value_var(value, len);
1178c2ecf20Sopenharmony_ci			dccp_pr_debug("%s opt: NDP count=%llu\n", dccp_role(sk),
1188c2ecf20Sopenharmony_ci				      (unsigned long long)opt_recv->dccpor_ndp);
1198c2ecf20Sopenharmony_ci			break;
1208c2ecf20Sopenharmony_ci		case DCCPO_CHANGE_L ... DCCPO_CONFIRM_R:
1218c2ecf20Sopenharmony_ci			if (pkt_type == DCCP_PKT_DATA)      /* RFC 4340, 6 */
1228c2ecf20Sopenharmony_ci				break;
1238c2ecf20Sopenharmony_ci			if (len == 0)
1248c2ecf20Sopenharmony_ci				goto out_invalid_option;
1258c2ecf20Sopenharmony_ci			rc = dccp_feat_parse_options(sk, dreq, mandatory, opt,
1268c2ecf20Sopenharmony_ci						    *value, value + 1, len - 1);
1278c2ecf20Sopenharmony_ci			if (rc)
1288c2ecf20Sopenharmony_ci				goto out_featneg_failed;
1298c2ecf20Sopenharmony_ci			break;
1308c2ecf20Sopenharmony_ci		case DCCPO_TIMESTAMP:
1318c2ecf20Sopenharmony_ci			if (len != 4)
1328c2ecf20Sopenharmony_ci				goto out_invalid_option;
1338c2ecf20Sopenharmony_ci			/*
1348c2ecf20Sopenharmony_ci			 * RFC 4340 13.1: "The precise time corresponding to
1358c2ecf20Sopenharmony_ci			 * Timestamp Value zero is not specified". We use
1368c2ecf20Sopenharmony_ci			 * zero to indicate absence of a meaningful timestamp.
1378c2ecf20Sopenharmony_ci			 */
1388c2ecf20Sopenharmony_ci			opt_val = get_unaligned((__be32 *)value);
1398c2ecf20Sopenharmony_ci			if (unlikely(opt_val == 0)) {
1408c2ecf20Sopenharmony_ci				DCCP_WARN("Timestamp with zero value\n");
1418c2ecf20Sopenharmony_ci				break;
1428c2ecf20Sopenharmony_ci			}
1438c2ecf20Sopenharmony_ci
1448c2ecf20Sopenharmony_ci			if (dreq != NULL) {
1458c2ecf20Sopenharmony_ci				dreq->dreq_timestamp_echo = ntohl(opt_val);
1468c2ecf20Sopenharmony_ci				dreq->dreq_timestamp_time = dccp_timestamp();
1478c2ecf20Sopenharmony_ci			} else {
1488c2ecf20Sopenharmony_ci				opt_recv->dccpor_timestamp =
1498c2ecf20Sopenharmony_ci					dp->dccps_timestamp_echo = ntohl(opt_val);
1508c2ecf20Sopenharmony_ci				dp->dccps_timestamp_time = dccp_timestamp();
1518c2ecf20Sopenharmony_ci			}
1528c2ecf20Sopenharmony_ci			dccp_pr_debug("%s rx opt: TIMESTAMP=%u, ackno=%llu\n",
1538c2ecf20Sopenharmony_ci				      dccp_role(sk), ntohl(opt_val),
1548c2ecf20Sopenharmony_ci				      (unsigned long long)
1558c2ecf20Sopenharmony_ci				      DCCP_SKB_CB(skb)->dccpd_ack_seq);
1568c2ecf20Sopenharmony_ci			/* schedule an Ack in case this sender is quiescent */
1578c2ecf20Sopenharmony_ci			inet_csk_schedule_ack(sk);
1588c2ecf20Sopenharmony_ci			break;
1598c2ecf20Sopenharmony_ci		case DCCPO_TIMESTAMP_ECHO:
1608c2ecf20Sopenharmony_ci			if (len != 4 && len != 6 && len != 8)
1618c2ecf20Sopenharmony_ci				goto out_invalid_option;
1628c2ecf20Sopenharmony_ci
1638c2ecf20Sopenharmony_ci			opt_val = get_unaligned((__be32 *)value);
1648c2ecf20Sopenharmony_ci			opt_recv->dccpor_timestamp_echo = ntohl(opt_val);
1658c2ecf20Sopenharmony_ci
1668c2ecf20Sopenharmony_ci			dccp_pr_debug("%s rx opt: TIMESTAMP_ECHO=%u, len=%d, "
1678c2ecf20Sopenharmony_ci				      "ackno=%llu", dccp_role(sk),
1688c2ecf20Sopenharmony_ci				      opt_recv->dccpor_timestamp_echo,
1698c2ecf20Sopenharmony_ci				      len + 2,
1708c2ecf20Sopenharmony_ci				      (unsigned long long)
1718c2ecf20Sopenharmony_ci				      DCCP_SKB_CB(skb)->dccpd_ack_seq);
1728c2ecf20Sopenharmony_ci
1738c2ecf20Sopenharmony_ci			value += 4;
1748c2ecf20Sopenharmony_ci
1758c2ecf20Sopenharmony_ci			if (len == 4) {		/* no elapsed time included */
1768c2ecf20Sopenharmony_ci				dccp_pr_debug_cat("\n");
1778c2ecf20Sopenharmony_ci				break;
1788c2ecf20Sopenharmony_ci			}
1798c2ecf20Sopenharmony_ci
1808c2ecf20Sopenharmony_ci			if (len == 6) {		/* 2-byte elapsed time */
1818c2ecf20Sopenharmony_ci				__be16 opt_val2 = get_unaligned((__be16 *)value);
1828c2ecf20Sopenharmony_ci				elapsed_time = ntohs(opt_val2);
1838c2ecf20Sopenharmony_ci			} else {		/* 4-byte elapsed time */
1848c2ecf20Sopenharmony_ci				opt_val = get_unaligned((__be32 *)value);
1858c2ecf20Sopenharmony_ci				elapsed_time = ntohl(opt_val);
1868c2ecf20Sopenharmony_ci			}
1878c2ecf20Sopenharmony_ci
1888c2ecf20Sopenharmony_ci			dccp_pr_debug_cat(", ELAPSED_TIME=%u\n", elapsed_time);
1898c2ecf20Sopenharmony_ci
1908c2ecf20Sopenharmony_ci			/* Give precedence to the biggest ELAPSED_TIME */
1918c2ecf20Sopenharmony_ci			if (elapsed_time > opt_recv->dccpor_elapsed_time)
1928c2ecf20Sopenharmony_ci				opt_recv->dccpor_elapsed_time = elapsed_time;
1938c2ecf20Sopenharmony_ci			break;
1948c2ecf20Sopenharmony_ci		case DCCPO_ELAPSED_TIME:
1958c2ecf20Sopenharmony_ci			if (dccp_packet_without_ack(skb))   /* RFC 4340, 13.2 */
1968c2ecf20Sopenharmony_ci				break;
1978c2ecf20Sopenharmony_ci
1988c2ecf20Sopenharmony_ci			if (len == 2) {
1998c2ecf20Sopenharmony_ci				__be16 opt_val2 = get_unaligned((__be16 *)value);
2008c2ecf20Sopenharmony_ci				elapsed_time = ntohs(opt_val2);
2018c2ecf20Sopenharmony_ci			} else if (len == 4) {
2028c2ecf20Sopenharmony_ci				opt_val = get_unaligned((__be32 *)value);
2038c2ecf20Sopenharmony_ci				elapsed_time = ntohl(opt_val);
2048c2ecf20Sopenharmony_ci			} else {
2058c2ecf20Sopenharmony_ci				goto out_invalid_option;
2068c2ecf20Sopenharmony_ci			}
2078c2ecf20Sopenharmony_ci
2088c2ecf20Sopenharmony_ci			if (elapsed_time > opt_recv->dccpor_elapsed_time)
2098c2ecf20Sopenharmony_ci				opt_recv->dccpor_elapsed_time = elapsed_time;
2108c2ecf20Sopenharmony_ci
2118c2ecf20Sopenharmony_ci			dccp_pr_debug("%s rx opt: ELAPSED_TIME=%d\n",
2128c2ecf20Sopenharmony_ci				      dccp_role(sk), elapsed_time);
2138c2ecf20Sopenharmony_ci			break;
2148c2ecf20Sopenharmony_ci		case DCCPO_MIN_RX_CCID_SPECIFIC ... DCCPO_MAX_RX_CCID_SPECIFIC:
2158c2ecf20Sopenharmony_ci			if (ccid_hc_rx_parse_options(dp->dccps_hc_rx_ccid, sk,
2168c2ecf20Sopenharmony_ci						     pkt_type, opt, value, len))
2178c2ecf20Sopenharmony_ci				goto out_invalid_option;
2188c2ecf20Sopenharmony_ci			break;
2198c2ecf20Sopenharmony_ci		case DCCPO_ACK_VECTOR_0:
2208c2ecf20Sopenharmony_ci		case DCCPO_ACK_VECTOR_1:
2218c2ecf20Sopenharmony_ci			if (dccp_packet_without_ack(skb))   /* RFC 4340, 11.4 */
2228c2ecf20Sopenharmony_ci				break;
2238c2ecf20Sopenharmony_ci			/*
2248c2ecf20Sopenharmony_ci			 * Ack vectors are processed by the TX CCID if it is
2258c2ecf20Sopenharmony_ci			 * interested. The RX CCID need not parse Ack Vectors,
2268c2ecf20Sopenharmony_ci			 * since it is only interested in clearing old state.
2278c2ecf20Sopenharmony_ci			 */
2288c2ecf20Sopenharmony_ci			fallthrough;
2298c2ecf20Sopenharmony_ci		case DCCPO_MIN_TX_CCID_SPECIFIC ... DCCPO_MAX_TX_CCID_SPECIFIC:
2308c2ecf20Sopenharmony_ci			if (ccid_hc_tx_parse_options(dp->dccps_hc_tx_ccid, sk,
2318c2ecf20Sopenharmony_ci						     pkt_type, opt, value, len))
2328c2ecf20Sopenharmony_ci				goto out_invalid_option;
2338c2ecf20Sopenharmony_ci			break;
2348c2ecf20Sopenharmony_ci		default:
2358c2ecf20Sopenharmony_ci			DCCP_CRIT("DCCP(%p): option %d(len=%d) not "
2368c2ecf20Sopenharmony_ci				  "implemented, ignoring", sk, opt, len);
2378c2ecf20Sopenharmony_ci			break;
2388c2ecf20Sopenharmony_ci		}
2398c2ecf20Sopenharmony_ciignore_option:
2408c2ecf20Sopenharmony_ci		if (opt != DCCPO_MANDATORY)
2418c2ecf20Sopenharmony_ci			mandatory = 0;
2428c2ecf20Sopenharmony_ci	}
2438c2ecf20Sopenharmony_ci
2448c2ecf20Sopenharmony_ci	/* mandatory was the last byte in option list -> reset connection */
2458c2ecf20Sopenharmony_ci	if (mandatory)
2468c2ecf20Sopenharmony_ci		goto out_invalid_option;
2478c2ecf20Sopenharmony_ci
2488c2ecf20Sopenharmony_ciout_nonsensical_length:
2498c2ecf20Sopenharmony_ci	/* RFC 4340, 5.8: ignore option and all remaining option space */
2508c2ecf20Sopenharmony_ci	return 0;
2518c2ecf20Sopenharmony_ci
2528c2ecf20Sopenharmony_ciout_invalid_option:
2538c2ecf20Sopenharmony_ci	DCCP_INC_STATS(DCCP_MIB_INVALIDOPT);
2548c2ecf20Sopenharmony_ci	rc = DCCP_RESET_CODE_OPTION_ERROR;
2558c2ecf20Sopenharmony_ciout_featneg_failed:
2568c2ecf20Sopenharmony_ci	DCCP_WARN("DCCP(%p): Option %d (len=%d) error=%u\n", sk, opt, len, rc);
2578c2ecf20Sopenharmony_ci	DCCP_SKB_CB(skb)->dccpd_reset_code = rc;
2588c2ecf20Sopenharmony_ci	DCCP_SKB_CB(skb)->dccpd_reset_data[0] = opt;
2598c2ecf20Sopenharmony_ci	DCCP_SKB_CB(skb)->dccpd_reset_data[1] = len > 0 ? value[0] : 0;
2608c2ecf20Sopenharmony_ci	DCCP_SKB_CB(skb)->dccpd_reset_data[2] = len > 1 ? value[1] : 0;
2618c2ecf20Sopenharmony_ci	return -1;
2628c2ecf20Sopenharmony_ci}
2638c2ecf20Sopenharmony_ci
2648c2ecf20Sopenharmony_ciEXPORT_SYMBOL_GPL(dccp_parse_options);
2658c2ecf20Sopenharmony_ci
2668c2ecf20Sopenharmony_civoid dccp_encode_value_var(const u64 value, u8 *to, const u8 len)
2678c2ecf20Sopenharmony_ci{
2688c2ecf20Sopenharmony_ci	if (len >= DCCP_OPTVAL_MAXLEN)
2698c2ecf20Sopenharmony_ci		*to++ = (value & 0xFF0000000000ull) >> 40;
2708c2ecf20Sopenharmony_ci	if (len > 4)
2718c2ecf20Sopenharmony_ci		*to++ = (value & 0xFF00000000ull) >> 32;
2728c2ecf20Sopenharmony_ci	if (len > 3)
2738c2ecf20Sopenharmony_ci		*to++ = (value & 0xFF000000) >> 24;
2748c2ecf20Sopenharmony_ci	if (len > 2)
2758c2ecf20Sopenharmony_ci		*to++ = (value & 0xFF0000) >> 16;
2768c2ecf20Sopenharmony_ci	if (len > 1)
2778c2ecf20Sopenharmony_ci		*to++ = (value & 0xFF00) >> 8;
2788c2ecf20Sopenharmony_ci	if (len > 0)
2798c2ecf20Sopenharmony_ci		*to++ = (value & 0xFF);
2808c2ecf20Sopenharmony_ci}
2818c2ecf20Sopenharmony_ci
2828c2ecf20Sopenharmony_cistatic inline u8 dccp_ndp_len(const u64 ndp)
2838c2ecf20Sopenharmony_ci{
2848c2ecf20Sopenharmony_ci	if (likely(ndp <= 0xFF))
2858c2ecf20Sopenharmony_ci		return 1;
2868c2ecf20Sopenharmony_ci	return likely(ndp <= USHRT_MAX) ? 2 : (ndp <= UINT_MAX ? 4 : 6);
2878c2ecf20Sopenharmony_ci}
2888c2ecf20Sopenharmony_ci
2898c2ecf20Sopenharmony_ciint dccp_insert_option(struct sk_buff *skb, const unsigned char option,
2908c2ecf20Sopenharmony_ci		       const void *value, const unsigned char len)
2918c2ecf20Sopenharmony_ci{
2928c2ecf20Sopenharmony_ci	unsigned char *to;
2938c2ecf20Sopenharmony_ci
2948c2ecf20Sopenharmony_ci	if (DCCP_SKB_CB(skb)->dccpd_opt_len + len + 2 > DCCP_MAX_OPT_LEN)
2958c2ecf20Sopenharmony_ci		return -1;
2968c2ecf20Sopenharmony_ci
2978c2ecf20Sopenharmony_ci	DCCP_SKB_CB(skb)->dccpd_opt_len += len + 2;
2988c2ecf20Sopenharmony_ci
2998c2ecf20Sopenharmony_ci	to    = skb_push(skb, len + 2);
3008c2ecf20Sopenharmony_ci	*to++ = option;
3018c2ecf20Sopenharmony_ci	*to++ = len + 2;
3028c2ecf20Sopenharmony_ci
3038c2ecf20Sopenharmony_ci	memcpy(to, value, len);
3048c2ecf20Sopenharmony_ci	return 0;
3058c2ecf20Sopenharmony_ci}
3068c2ecf20Sopenharmony_ci
3078c2ecf20Sopenharmony_ciEXPORT_SYMBOL_GPL(dccp_insert_option);
3088c2ecf20Sopenharmony_ci
3098c2ecf20Sopenharmony_cistatic int dccp_insert_option_ndp(struct sock *sk, struct sk_buff *skb)
3108c2ecf20Sopenharmony_ci{
3118c2ecf20Sopenharmony_ci	struct dccp_sock *dp = dccp_sk(sk);
3128c2ecf20Sopenharmony_ci	u64 ndp = dp->dccps_ndp_count;
3138c2ecf20Sopenharmony_ci
3148c2ecf20Sopenharmony_ci	if (dccp_non_data_packet(skb))
3158c2ecf20Sopenharmony_ci		++dp->dccps_ndp_count;
3168c2ecf20Sopenharmony_ci	else
3178c2ecf20Sopenharmony_ci		dp->dccps_ndp_count = 0;
3188c2ecf20Sopenharmony_ci
3198c2ecf20Sopenharmony_ci	if (ndp > 0) {
3208c2ecf20Sopenharmony_ci		unsigned char *ptr;
3218c2ecf20Sopenharmony_ci		const int ndp_len = dccp_ndp_len(ndp);
3228c2ecf20Sopenharmony_ci		const int len = ndp_len + 2;
3238c2ecf20Sopenharmony_ci
3248c2ecf20Sopenharmony_ci		if (DCCP_SKB_CB(skb)->dccpd_opt_len + len > DCCP_MAX_OPT_LEN)
3258c2ecf20Sopenharmony_ci			return -1;
3268c2ecf20Sopenharmony_ci
3278c2ecf20Sopenharmony_ci		DCCP_SKB_CB(skb)->dccpd_opt_len += len;
3288c2ecf20Sopenharmony_ci
3298c2ecf20Sopenharmony_ci		ptr = skb_push(skb, len);
3308c2ecf20Sopenharmony_ci		*ptr++ = DCCPO_NDP_COUNT;
3318c2ecf20Sopenharmony_ci		*ptr++ = len;
3328c2ecf20Sopenharmony_ci		dccp_encode_value_var(ndp, ptr, ndp_len);
3338c2ecf20Sopenharmony_ci	}
3348c2ecf20Sopenharmony_ci
3358c2ecf20Sopenharmony_ci	return 0;
3368c2ecf20Sopenharmony_ci}
3378c2ecf20Sopenharmony_ci
3388c2ecf20Sopenharmony_cistatic inline int dccp_elapsed_time_len(const u32 elapsed_time)
3398c2ecf20Sopenharmony_ci{
3408c2ecf20Sopenharmony_ci	return elapsed_time == 0 ? 0 : elapsed_time <= 0xFFFF ? 2 : 4;
3418c2ecf20Sopenharmony_ci}
3428c2ecf20Sopenharmony_ci
3438c2ecf20Sopenharmony_cistatic int dccp_insert_option_timestamp(struct sk_buff *skb)
3448c2ecf20Sopenharmony_ci{
3458c2ecf20Sopenharmony_ci	__be32 now = htonl(dccp_timestamp());
3468c2ecf20Sopenharmony_ci	/* yes this will overflow but that is the point as we want a
3478c2ecf20Sopenharmony_ci	 * 10 usec 32 bit timer which mean it wraps every 11.9 hours */
3488c2ecf20Sopenharmony_ci
3498c2ecf20Sopenharmony_ci	return dccp_insert_option(skb, DCCPO_TIMESTAMP, &now, sizeof(now));
3508c2ecf20Sopenharmony_ci}
3518c2ecf20Sopenharmony_ci
3528c2ecf20Sopenharmony_cistatic int dccp_insert_option_timestamp_echo(struct dccp_sock *dp,
3538c2ecf20Sopenharmony_ci					     struct dccp_request_sock *dreq,
3548c2ecf20Sopenharmony_ci					     struct sk_buff *skb)
3558c2ecf20Sopenharmony_ci{
3568c2ecf20Sopenharmony_ci	__be32 tstamp_echo;
3578c2ecf20Sopenharmony_ci	unsigned char *to;
3588c2ecf20Sopenharmony_ci	u32 elapsed_time, elapsed_time_len, len;
3598c2ecf20Sopenharmony_ci
3608c2ecf20Sopenharmony_ci	if (dreq != NULL) {
3618c2ecf20Sopenharmony_ci		elapsed_time = dccp_timestamp() - dreq->dreq_timestamp_time;
3628c2ecf20Sopenharmony_ci		tstamp_echo  = htonl(dreq->dreq_timestamp_echo);
3638c2ecf20Sopenharmony_ci		dreq->dreq_timestamp_echo = 0;
3648c2ecf20Sopenharmony_ci	} else {
3658c2ecf20Sopenharmony_ci		elapsed_time = dccp_timestamp() - dp->dccps_timestamp_time;
3668c2ecf20Sopenharmony_ci		tstamp_echo  = htonl(dp->dccps_timestamp_echo);
3678c2ecf20Sopenharmony_ci		dp->dccps_timestamp_echo = 0;
3688c2ecf20Sopenharmony_ci	}
3698c2ecf20Sopenharmony_ci
3708c2ecf20Sopenharmony_ci	elapsed_time_len = dccp_elapsed_time_len(elapsed_time);
3718c2ecf20Sopenharmony_ci	len = 6 + elapsed_time_len;
3728c2ecf20Sopenharmony_ci
3738c2ecf20Sopenharmony_ci	if (DCCP_SKB_CB(skb)->dccpd_opt_len + len > DCCP_MAX_OPT_LEN)
3748c2ecf20Sopenharmony_ci		return -1;
3758c2ecf20Sopenharmony_ci
3768c2ecf20Sopenharmony_ci	DCCP_SKB_CB(skb)->dccpd_opt_len += len;
3778c2ecf20Sopenharmony_ci
3788c2ecf20Sopenharmony_ci	to    = skb_push(skb, len);
3798c2ecf20Sopenharmony_ci	*to++ = DCCPO_TIMESTAMP_ECHO;
3808c2ecf20Sopenharmony_ci	*to++ = len;
3818c2ecf20Sopenharmony_ci
3828c2ecf20Sopenharmony_ci	memcpy(to, &tstamp_echo, 4);
3838c2ecf20Sopenharmony_ci	to += 4;
3848c2ecf20Sopenharmony_ci
3858c2ecf20Sopenharmony_ci	if (elapsed_time_len == 2) {
3868c2ecf20Sopenharmony_ci		const __be16 var16 = htons((u16)elapsed_time);
3878c2ecf20Sopenharmony_ci		memcpy(to, &var16, 2);
3888c2ecf20Sopenharmony_ci	} else if (elapsed_time_len == 4) {
3898c2ecf20Sopenharmony_ci		const __be32 var32 = htonl(elapsed_time);
3908c2ecf20Sopenharmony_ci		memcpy(to, &var32, 4);
3918c2ecf20Sopenharmony_ci	}
3928c2ecf20Sopenharmony_ci
3938c2ecf20Sopenharmony_ci	return 0;
3948c2ecf20Sopenharmony_ci}
3958c2ecf20Sopenharmony_ci
3968c2ecf20Sopenharmony_cistatic int dccp_insert_option_ackvec(struct sock *sk, struct sk_buff *skb)
3978c2ecf20Sopenharmony_ci{
3988c2ecf20Sopenharmony_ci	struct dccp_sock *dp = dccp_sk(sk);
3998c2ecf20Sopenharmony_ci	struct dccp_ackvec *av = dp->dccps_hc_rx_ackvec;
4008c2ecf20Sopenharmony_ci	struct dccp_skb_cb *dcb = DCCP_SKB_CB(skb);
4018c2ecf20Sopenharmony_ci	const u16 buflen = dccp_ackvec_buflen(av);
4028c2ecf20Sopenharmony_ci	/* Figure out how many options do we need to represent the ackvec */
4038c2ecf20Sopenharmony_ci	const u8 nr_opts = DIV_ROUND_UP(buflen, DCCP_SINGLE_OPT_MAXLEN);
4048c2ecf20Sopenharmony_ci	u16 len = buflen + 2 * nr_opts;
4058c2ecf20Sopenharmony_ci	u8 i, nonce = 0;
4068c2ecf20Sopenharmony_ci	const unsigned char *tail, *from;
4078c2ecf20Sopenharmony_ci	unsigned char *to;
4088c2ecf20Sopenharmony_ci
4098c2ecf20Sopenharmony_ci	if (dcb->dccpd_opt_len + len > DCCP_MAX_OPT_LEN) {
4108c2ecf20Sopenharmony_ci		DCCP_WARN("Lacking space for %u bytes on %s packet\n", len,
4118c2ecf20Sopenharmony_ci			  dccp_packet_name(dcb->dccpd_type));
4128c2ecf20Sopenharmony_ci		return -1;
4138c2ecf20Sopenharmony_ci	}
4148c2ecf20Sopenharmony_ci	/*
4158c2ecf20Sopenharmony_ci	 * Since Ack Vectors are variable-length, we can not always predict
4168c2ecf20Sopenharmony_ci	 * their size. To catch exception cases where the space is running out
4178c2ecf20Sopenharmony_ci	 * on the skb, a separate Sync is scheduled to carry the Ack Vector.
4188c2ecf20Sopenharmony_ci	 */
4198c2ecf20Sopenharmony_ci	if (len > DCCPAV_MIN_OPTLEN &&
4208c2ecf20Sopenharmony_ci	    len + dcb->dccpd_opt_len + skb->len > dp->dccps_mss_cache) {
4218c2ecf20Sopenharmony_ci		DCCP_WARN("No space left for Ack Vector (%u) on skb (%u+%u), "
4228c2ecf20Sopenharmony_ci			  "MPS=%u ==> reduce payload size?\n", len, skb->len,
4238c2ecf20Sopenharmony_ci			  dcb->dccpd_opt_len, dp->dccps_mss_cache);
4248c2ecf20Sopenharmony_ci		dp->dccps_sync_scheduled = 1;
4258c2ecf20Sopenharmony_ci		return 0;
4268c2ecf20Sopenharmony_ci	}
4278c2ecf20Sopenharmony_ci	dcb->dccpd_opt_len += len;
4288c2ecf20Sopenharmony_ci
4298c2ecf20Sopenharmony_ci	to   = skb_push(skb, len);
4308c2ecf20Sopenharmony_ci	len  = buflen;
4318c2ecf20Sopenharmony_ci	from = av->av_buf + av->av_buf_head;
4328c2ecf20Sopenharmony_ci	tail = av->av_buf + DCCPAV_MAX_ACKVEC_LEN;
4338c2ecf20Sopenharmony_ci
4348c2ecf20Sopenharmony_ci	for (i = 0; i < nr_opts; ++i) {
4358c2ecf20Sopenharmony_ci		int copylen = len;
4368c2ecf20Sopenharmony_ci
4378c2ecf20Sopenharmony_ci		if (len > DCCP_SINGLE_OPT_MAXLEN)
4388c2ecf20Sopenharmony_ci			copylen = DCCP_SINGLE_OPT_MAXLEN;
4398c2ecf20Sopenharmony_ci
4408c2ecf20Sopenharmony_ci		/*
4418c2ecf20Sopenharmony_ci		 * RFC 4340, 12.2: Encode the Nonce Echo for this Ack Vector via
4428c2ecf20Sopenharmony_ci		 * its type; ack_nonce is the sum of all individual buf_nonce's.
4438c2ecf20Sopenharmony_ci		 */
4448c2ecf20Sopenharmony_ci		nonce ^= av->av_buf_nonce[i];
4458c2ecf20Sopenharmony_ci
4468c2ecf20Sopenharmony_ci		*to++ = DCCPO_ACK_VECTOR_0 + av->av_buf_nonce[i];
4478c2ecf20Sopenharmony_ci		*to++ = copylen + 2;
4488c2ecf20Sopenharmony_ci
4498c2ecf20Sopenharmony_ci		/* Check if buf_head wraps */
4508c2ecf20Sopenharmony_ci		if (from + copylen > tail) {
4518c2ecf20Sopenharmony_ci			const u16 tailsize = tail - from;
4528c2ecf20Sopenharmony_ci
4538c2ecf20Sopenharmony_ci			memcpy(to, from, tailsize);
4548c2ecf20Sopenharmony_ci			to	+= tailsize;
4558c2ecf20Sopenharmony_ci			len	-= tailsize;
4568c2ecf20Sopenharmony_ci			copylen	-= tailsize;
4578c2ecf20Sopenharmony_ci			from	= av->av_buf;
4588c2ecf20Sopenharmony_ci		}
4598c2ecf20Sopenharmony_ci
4608c2ecf20Sopenharmony_ci		memcpy(to, from, copylen);
4618c2ecf20Sopenharmony_ci		from += copylen;
4628c2ecf20Sopenharmony_ci		to   += copylen;
4638c2ecf20Sopenharmony_ci		len  -= copylen;
4648c2ecf20Sopenharmony_ci	}
4658c2ecf20Sopenharmony_ci	/*
4668c2ecf20Sopenharmony_ci	 * Each sent Ack Vector is recorded in the list, as per A.2 of RFC 4340.
4678c2ecf20Sopenharmony_ci	 */
4688c2ecf20Sopenharmony_ci	if (dccp_ackvec_update_records(av, dcb->dccpd_seq, nonce))
4698c2ecf20Sopenharmony_ci		return -ENOBUFS;
4708c2ecf20Sopenharmony_ci	return 0;
4718c2ecf20Sopenharmony_ci}
4728c2ecf20Sopenharmony_ci
4738c2ecf20Sopenharmony_ci/**
4748c2ecf20Sopenharmony_ci * dccp_insert_option_mandatory  -  Mandatory option (5.8.2)
4758c2ecf20Sopenharmony_ci * @skb: frame into which to insert option
4768c2ecf20Sopenharmony_ci *
4778c2ecf20Sopenharmony_ci * Note that since we are using skb_push, this function needs to be called
4788c2ecf20Sopenharmony_ci * _after_ inserting the option it is supposed to influence (stack order).
4798c2ecf20Sopenharmony_ci */
4808c2ecf20Sopenharmony_ciint dccp_insert_option_mandatory(struct sk_buff *skb)
4818c2ecf20Sopenharmony_ci{
4828c2ecf20Sopenharmony_ci	if (DCCP_SKB_CB(skb)->dccpd_opt_len >= DCCP_MAX_OPT_LEN)
4838c2ecf20Sopenharmony_ci		return -1;
4848c2ecf20Sopenharmony_ci
4858c2ecf20Sopenharmony_ci	DCCP_SKB_CB(skb)->dccpd_opt_len++;
4868c2ecf20Sopenharmony_ci	*(u8 *)skb_push(skb, 1) = DCCPO_MANDATORY;
4878c2ecf20Sopenharmony_ci	return 0;
4888c2ecf20Sopenharmony_ci}
4898c2ecf20Sopenharmony_ci
4908c2ecf20Sopenharmony_ci/**
4918c2ecf20Sopenharmony_ci * dccp_insert_fn_opt  -  Insert single Feature-Negotiation option into @skb
4928c2ecf20Sopenharmony_ci * @skb: frame to insert feature negotiation option into
4938c2ecf20Sopenharmony_ci * @type: %DCCPO_CHANGE_L, %DCCPO_CHANGE_R, %DCCPO_CONFIRM_L, %DCCPO_CONFIRM_R
4948c2ecf20Sopenharmony_ci * @feat: one out of %dccp_feature_numbers
4958c2ecf20Sopenharmony_ci * @val: NN value or SP array (preferred element first) to copy
4968c2ecf20Sopenharmony_ci * @len: true length of @val in bytes (excluding first element repetition)
4978c2ecf20Sopenharmony_ci * @repeat_first: whether to copy the first element of @val twice
4988c2ecf20Sopenharmony_ci *
4998c2ecf20Sopenharmony_ci * The last argument is used to construct Confirm options, where the preferred
5008c2ecf20Sopenharmony_ci * value and the preference list appear separately (RFC 4340, 6.3.1). Preference
5018c2ecf20Sopenharmony_ci * lists are kept such that the preferred entry is always first, so we only need
5028c2ecf20Sopenharmony_ci * to copy twice, and avoid the overhead of cloning into a bigger array.
5038c2ecf20Sopenharmony_ci */
5048c2ecf20Sopenharmony_ciint dccp_insert_fn_opt(struct sk_buff *skb, u8 type, u8 feat,
5058c2ecf20Sopenharmony_ci		       u8 *val, u8 len, bool repeat_first)
5068c2ecf20Sopenharmony_ci{
5078c2ecf20Sopenharmony_ci	u8 tot_len, *to;
5088c2ecf20Sopenharmony_ci
5098c2ecf20Sopenharmony_ci	/* take the `Feature' field and possible repetition into account */
5108c2ecf20Sopenharmony_ci	if (len > (DCCP_SINGLE_OPT_MAXLEN - 2)) {
5118c2ecf20Sopenharmony_ci		DCCP_WARN("length %u for feature %u too large\n", len, feat);
5128c2ecf20Sopenharmony_ci		return -1;
5138c2ecf20Sopenharmony_ci	}
5148c2ecf20Sopenharmony_ci
5158c2ecf20Sopenharmony_ci	if (unlikely(val == NULL || len == 0))
5168c2ecf20Sopenharmony_ci		len = repeat_first = false;
5178c2ecf20Sopenharmony_ci	tot_len = 3 + repeat_first + len;
5188c2ecf20Sopenharmony_ci
5198c2ecf20Sopenharmony_ci	if (DCCP_SKB_CB(skb)->dccpd_opt_len + tot_len > DCCP_MAX_OPT_LEN) {
5208c2ecf20Sopenharmony_ci		DCCP_WARN("packet too small for feature %d option!\n", feat);
5218c2ecf20Sopenharmony_ci		return -1;
5228c2ecf20Sopenharmony_ci	}
5238c2ecf20Sopenharmony_ci	DCCP_SKB_CB(skb)->dccpd_opt_len += tot_len;
5248c2ecf20Sopenharmony_ci
5258c2ecf20Sopenharmony_ci	to    = skb_push(skb, tot_len);
5268c2ecf20Sopenharmony_ci	*to++ = type;
5278c2ecf20Sopenharmony_ci	*to++ = tot_len;
5288c2ecf20Sopenharmony_ci	*to++ = feat;
5298c2ecf20Sopenharmony_ci
5308c2ecf20Sopenharmony_ci	if (repeat_first)
5318c2ecf20Sopenharmony_ci		*to++ = *val;
5328c2ecf20Sopenharmony_ci	if (len)
5338c2ecf20Sopenharmony_ci		memcpy(to, val, len);
5348c2ecf20Sopenharmony_ci	return 0;
5358c2ecf20Sopenharmony_ci}
5368c2ecf20Sopenharmony_ci
5378c2ecf20Sopenharmony_ci/* The length of all options needs to be a multiple of 4 (5.8) */
5388c2ecf20Sopenharmony_cistatic void dccp_insert_option_padding(struct sk_buff *skb)
5398c2ecf20Sopenharmony_ci{
5408c2ecf20Sopenharmony_ci	int padding = DCCP_SKB_CB(skb)->dccpd_opt_len % 4;
5418c2ecf20Sopenharmony_ci
5428c2ecf20Sopenharmony_ci	if (padding != 0) {
5438c2ecf20Sopenharmony_ci		padding = 4 - padding;
5448c2ecf20Sopenharmony_ci		memset(skb_push(skb, padding), 0, padding);
5458c2ecf20Sopenharmony_ci		DCCP_SKB_CB(skb)->dccpd_opt_len += padding;
5468c2ecf20Sopenharmony_ci	}
5478c2ecf20Sopenharmony_ci}
5488c2ecf20Sopenharmony_ci
5498c2ecf20Sopenharmony_ciint dccp_insert_options(struct sock *sk, struct sk_buff *skb)
5508c2ecf20Sopenharmony_ci{
5518c2ecf20Sopenharmony_ci	struct dccp_sock *dp = dccp_sk(sk);
5528c2ecf20Sopenharmony_ci
5538c2ecf20Sopenharmony_ci	DCCP_SKB_CB(skb)->dccpd_opt_len = 0;
5548c2ecf20Sopenharmony_ci
5558c2ecf20Sopenharmony_ci	if (dp->dccps_send_ndp_count && dccp_insert_option_ndp(sk, skb))
5568c2ecf20Sopenharmony_ci		return -1;
5578c2ecf20Sopenharmony_ci
5588c2ecf20Sopenharmony_ci	if (DCCP_SKB_CB(skb)->dccpd_type != DCCP_PKT_DATA) {
5598c2ecf20Sopenharmony_ci
5608c2ecf20Sopenharmony_ci		/* Feature Negotiation */
5618c2ecf20Sopenharmony_ci		if (dccp_feat_insert_opts(dp, NULL, skb))
5628c2ecf20Sopenharmony_ci			return -1;
5638c2ecf20Sopenharmony_ci
5648c2ecf20Sopenharmony_ci		if (DCCP_SKB_CB(skb)->dccpd_type == DCCP_PKT_REQUEST) {
5658c2ecf20Sopenharmony_ci			/*
5668c2ecf20Sopenharmony_ci			 * Obtain RTT sample from Request/Response exchange.
5678c2ecf20Sopenharmony_ci			 * This is currently used for TFRC initialisation.
5688c2ecf20Sopenharmony_ci			 */
5698c2ecf20Sopenharmony_ci			if (dccp_insert_option_timestamp(skb))
5708c2ecf20Sopenharmony_ci				return -1;
5718c2ecf20Sopenharmony_ci
5728c2ecf20Sopenharmony_ci		} else if (dccp_ackvec_pending(sk) &&
5738c2ecf20Sopenharmony_ci			   dccp_insert_option_ackvec(sk, skb)) {
5748c2ecf20Sopenharmony_ci				return -1;
5758c2ecf20Sopenharmony_ci		}
5768c2ecf20Sopenharmony_ci	}
5778c2ecf20Sopenharmony_ci
5788c2ecf20Sopenharmony_ci	if (dp->dccps_hc_rx_insert_options) {
5798c2ecf20Sopenharmony_ci		if (ccid_hc_rx_insert_options(dp->dccps_hc_rx_ccid, sk, skb))
5808c2ecf20Sopenharmony_ci			return -1;
5818c2ecf20Sopenharmony_ci		dp->dccps_hc_rx_insert_options = 0;
5828c2ecf20Sopenharmony_ci	}
5838c2ecf20Sopenharmony_ci
5848c2ecf20Sopenharmony_ci	if (dp->dccps_timestamp_echo != 0 &&
5858c2ecf20Sopenharmony_ci	    dccp_insert_option_timestamp_echo(dp, NULL, skb))
5868c2ecf20Sopenharmony_ci		return -1;
5878c2ecf20Sopenharmony_ci
5888c2ecf20Sopenharmony_ci	dccp_insert_option_padding(skb);
5898c2ecf20Sopenharmony_ci	return 0;
5908c2ecf20Sopenharmony_ci}
5918c2ecf20Sopenharmony_ci
5928c2ecf20Sopenharmony_ciint dccp_insert_options_rsk(struct dccp_request_sock *dreq, struct sk_buff *skb)
5938c2ecf20Sopenharmony_ci{
5948c2ecf20Sopenharmony_ci	DCCP_SKB_CB(skb)->dccpd_opt_len = 0;
5958c2ecf20Sopenharmony_ci
5968c2ecf20Sopenharmony_ci	if (dccp_feat_insert_opts(NULL, dreq, skb))
5978c2ecf20Sopenharmony_ci		return -1;
5988c2ecf20Sopenharmony_ci
5998c2ecf20Sopenharmony_ci	/* Obtain RTT sample from Response/Ack exchange (used by TFRC). */
6008c2ecf20Sopenharmony_ci	if (dccp_insert_option_timestamp(skb))
6018c2ecf20Sopenharmony_ci		return -1;
6028c2ecf20Sopenharmony_ci
6038c2ecf20Sopenharmony_ci	if (dreq->dreq_timestamp_echo != 0 &&
6048c2ecf20Sopenharmony_ci	    dccp_insert_option_timestamp_echo(NULL, dreq, skb))
6058c2ecf20Sopenharmony_ci		return -1;
6068c2ecf20Sopenharmony_ci
6078c2ecf20Sopenharmony_ci	dccp_insert_option_padding(skb);
6088c2ecf20Sopenharmony_ci	return 0;
6098c2ecf20Sopenharmony_ci}
610