162306a36Sopenharmony_ci// SPDX-License-Identifier: GPL-2.0
262306a36Sopenharmony_ci/*
362306a36Sopenharmony_ci * INET		An implementation of the TCP/IP protocol suite for the LINUX
462306a36Sopenharmony_ci *		operating system.  INET is implemented using the  BSD Socket
562306a36Sopenharmony_ci *		interface as the means of communication with the user level.
662306a36Sopenharmony_ci *
762306a36Sopenharmony_ci *		The IP to API glue.
862306a36Sopenharmony_ci *
962306a36Sopenharmony_ci * Authors:	see ip.c
1062306a36Sopenharmony_ci *
1162306a36Sopenharmony_ci * Fixes:
1262306a36Sopenharmony_ci *		Many		:	Split from ip.c , see ip.c for history.
1362306a36Sopenharmony_ci *		Martin Mares	:	TOS setting fixed.
1462306a36Sopenharmony_ci *		Alan Cox	:	Fixed a couple of oopses in Martin's
1562306a36Sopenharmony_ci *					TOS tweaks.
1662306a36Sopenharmony_ci *		Mike McLagan	:	Routing by source
1762306a36Sopenharmony_ci */
1862306a36Sopenharmony_ci
1962306a36Sopenharmony_ci#include <linux/module.h>
2062306a36Sopenharmony_ci#include <linux/types.h>
2162306a36Sopenharmony_ci#include <linux/mm.h>
2262306a36Sopenharmony_ci#include <linux/skbuff.h>
2362306a36Sopenharmony_ci#include <linux/ip.h>
2462306a36Sopenharmony_ci#include <linux/icmp.h>
2562306a36Sopenharmony_ci#include <linux/inetdevice.h>
2662306a36Sopenharmony_ci#include <linux/netdevice.h>
2762306a36Sopenharmony_ci#include <linux/slab.h>
2862306a36Sopenharmony_ci#include <net/sock.h>
2962306a36Sopenharmony_ci#include <net/ip.h>
3062306a36Sopenharmony_ci#include <net/icmp.h>
3162306a36Sopenharmony_ci#include <net/tcp_states.h>
3262306a36Sopenharmony_ci#include <linux/udp.h>
3362306a36Sopenharmony_ci#include <linux/igmp.h>
3462306a36Sopenharmony_ci#include <linux/netfilter.h>
3562306a36Sopenharmony_ci#include <linux/route.h>
3662306a36Sopenharmony_ci#include <linux/mroute.h>
3762306a36Sopenharmony_ci#include <net/inet_ecn.h>
3862306a36Sopenharmony_ci#include <net/route.h>
3962306a36Sopenharmony_ci#include <net/xfrm.h>
4062306a36Sopenharmony_ci#include <net/compat.h>
4162306a36Sopenharmony_ci#include <net/checksum.h>
4262306a36Sopenharmony_ci#if IS_ENABLED(CONFIG_IPV6)
4362306a36Sopenharmony_ci#include <net/transp_v6.h>
4462306a36Sopenharmony_ci#endif
4562306a36Sopenharmony_ci#include <net/ip_fib.h>
4662306a36Sopenharmony_ci
4762306a36Sopenharmony_ci#include <linux/errqueue.h>
4862306a36Sopenharmony_ci#include <linux/uaccess.h>
4962306a36Sopenharmony_ci
5062306a36Sopenharmony_ci#include <linux/bpfilter.h>
5162306a36Sopenharmony_ci
5262306a36Sopenharmony_ci/*
5362306a36Sopenharmony_ci *	SOL_IP control messages.
5462306a36Sopenharmony_ci */
5562306a36Sopenharmony_ci
5662306a36Sopenharmony_cistatic void ip_cmsg_recv_pktinfo(struct msghdr *msg, struct sk_buff *skb)
5762306a36Sopenharmony_ci{
5862306a36Sopenharmony_ci	struct in_pktinfo info = *PKTINFO_SKB_CB(skb);
5962306a36Sopenharmony_ci
6062306a36Sopenharmony_ci	info.ipi_addr.s_addr = ip_hdr(skb)->daddr;
6162306a36Sopenharmony_ci
6262306a36Sopenharmony_ci	put_cmsg(msg, SOL_IP, IP_PKTINFO, sizeof(info), &info);
6362306a36Sopenharmony_ci}
6462306a36Sopenharmony_ci
6562306a36Sopenharmony_cistatic void ip_cmsg_recv_ttl(struct msghdr *msg, struct sk_buff *skb)
6662306a36Sopenharmony_ci{
6762306a36Sopenharmony_ci	int ttl = ip_hdr(skb)->ttl;
6862306a36Sopenharmony_ci	put_cmsg(msg, SOL_IP, IP_TTL, sizeof(int), &ttl);
6962306a36Sopenharmony_ci}
7062306a36Sopenharmony_ci
7162306a36Sopenharmony_cistatic void ip_cmsg_recv_tos(struct msghdr *msg, struct sk_buff *skb)
7262306a36Sopenharmony_ci{
7362306a36Sopenharmony_ci	put_cmsg(msg, SOL_IP, IP_TOS, 1, &ip_hdr(skb)->tos);
7462306a36Sopenharmony_ci}
7562306a36Sopenharmony_ci
7662306a36Sopenharmony_cistatic void ip_cmsg_recv_opts(struct msghdr *msg, struct sk_buff *skb)
7762306a36Sopenharmony_ci{
7862306a36Sopenharmony_ci	if (IPCB(skb)->opt.optlen == 0)
7962306a36Sopenharmony_ci		return;
8062306a36Sopenharmony_ci
8162306a36Sopenharmony_ci	put_cmsg(msg, SOL_IP, IP_RECVOPTS, IPCB(skb)->opt.optlen,
8262306a36Sopenharmony_ci		 ip_hdr(skb) + 1);
8362306a36Sopenharmony_ci}
8462306a36Sopenharmony_ci
8562306a36Sopenharmony_ci
8662306a36Sopenharmony_cistatic void ip_cmsg_recv_retopts(struct net *net, struct msghdr *msg,
8762306a36Sopenharmony_ci				 struct sk_buff *skb)
8862306a36Sopenharmony_ci{
8962306a36Sopenharmony_ci	unsigned char optbuf[sizeof(struct ip_options) + 40];
9062306a36Sopenharmony_ci	struct ip_options *opt = (struct ip_options *)optbuf;
9162306a36Sopenharmony_ci
9262306a36Sopenharmony_ci	if (IPCB(skb)->opt.optlen == 0)
9362306a36Sopenharmony_ci		return;
9462306a36Sopenharmony_ci
9562306a36Sopenharmony_ci	if (ip_options_echo(net, opt, skb)) {
9662306a36Sopenharmony_ci		msg->msg_flags |= MSG_CTRUNC;
9762306a36Sopenharmony_ci		return;
9862306a36Sopenharmony_ci	}
9962306a36Sopenharmony_ci	ip_options_undo(opt);
10062306a36Sopenharmony_ci
10162306a36Sopenharmony_ci	put_cmsg(msg, SOL_IP, IP_RETOPTS, opt->optlen, opt->__data);
10262306a36Sopenharmony_ci}
10362306a36Sopenharmony_ci
10462306a36Sopenharmony_cistatic void ip_cmsg_recv_fragsize(struct msghdr *msg, struct sk_buff *skb)
10562306a36Sopenharmony_ci{
10662306a36Sopenharmony_ci	int val;
10762306a36Sopenharmony_ci
10862306a36Sopenharmony_ci	if (IPCB(skb)->frag_max_size == 0)
10962306a36Sopenharmony_ci		return;
11062306a36Sopenharmony_ci
11162306a36Sopenharmony_ci	val = IPCB(skb)->frag_max_size;
11262306a36Sopenharmony_ci	put_cmsg(msg, SOL_IP, IP_RECVFRAGSIZE, sizeof(val), &val);
11362306a36Sopenharmony_ci}
11462306a36Sopenharmony_ci
11562306a36Sopenharmony_cistatic void ip_cmsg_recv_checksum(struct msghdr *msg, struct sk_buff *skb,
11662306a36Sopenharmony_ci				  int tlen, int offset)
11762306a36Sopenharmony_ci{
11862306a36Sopenharmony_ci	__wsum csum = skb->csum;
11962306a36Sopenharmony_ci
12062306a36Sopenharmony_ci	if (skb->ip_summed != CHECKSUM_COMPLETE)
12162306a36Sopenharmony_ci		return;
12262306a36Sopenharmony_ci
12362306a36Sopenharmony_ci	if (offset != 0) {
12462306a36Sopenharmony_ci		int tend_off = skb_transport_offset(skb) + tlen;
12562306a36Sopenharmony_ci		csum = csum_sub(csum, skb_checksum(skb, tend_off, offset, 0));
12662306a36Sopenharmony_ci	}
12762306a36Sopenharmony_ci
12862306a36Sopenharmony_ci	put_cmsg(msg, SOL_IP, IP_CHECKSUM, sizeof(__wsum), &csum);
12962306a36Sopenharmony_ci}
13062306a36Sopenharmony_ci
13162306a36Sopenharmony_cistatic void ip_cmsg_recv_security(struct msghdr *msg, struct sk_buff *skb)
13262306a36Sopenharmony_ci{
13362306a36Sopenharmony_ci	char *secdata;
13462306a36Sopenharmony_ci	u32 seclen, secid;
13562306a36Sopenharmony_ci	int err;
13662306a36Sopenharmony_ci
13762306a36Sopenharmony_ci	err = security_socket_getpeersec_dgram(NULL, skb, &secid);
13862306a36Sopenharmony_ci	if (err)
13962306a36Sopenharmony_ci		return;
14062306a36Sopenharmony_ci
14162306a36Sopenharmony_ci	err = security_secid_to_secctx(secid, &secdata, &seclen);
14262306a36Sopenharmony_ci	if (err)
14362306a36Sopenharmony_ci		return;
14462306a36Sopenharmony_ci
14562306a36Sopenharmony_ci	put_cmsg(msg, SOL_IP, SCM_SECURITY, seclen, secdata);
14662306a36Sopenharmony_ci	security_release_secctx(secdata, seclen);
14762306a36Sopenharmony_ci}
14862306a36Sopenharmony_ci
14962306a36Sopenharmony_cistatic void ip_cmsg_recv_dstaddr(struct msghdr *msg, struct sk_buff *skb)
15062306a36Sopenharmony_ci{
15162306a36Sopenharmony_ci	__be16 _ports[2], *ports;
15262306a36Sopenharmony_ci	struct sockaddr_in sin;
15362306a36Sopenharmony_ci
15462306a36Sopenharmony_ci	/* All current transport protocols have the port numbers in the
15562306a36Sopenharmony_ci	 * first four bytes of the transport header and this function is
15662306a36Sopenharmony_ci	 * written with this assumption in mind.
15762306a36Sopenharmony_ci	 */
15862306a36Sopenharmony_ci	ports = skb_header_pointer(skb, skb_transport_offset(skb),
15962306a36Sopenharmony_ci				   sizeof(_ports), &_ports);
16062306a36Sopenharmony_ci	if (!ports)
16162306a36Sopenharmony_ci		return;
16262306a36Sopenharmony_ci
16362306a36Sopenharmony_ci	sin.sin_family = AF_INET;
16462306a36Sopenharmony_ci	sin.sin_addr.s_addr = ip_hdr(skb)->daddr;
16562306a36Sopenharmony_ci	sin.sin_port = ports[1];
16662306a36Sopenharmony_ci	memset(sin.sin_zero, 0, sizeof(sin.sin_zero));
16762306a36Sopenharmony_ci
16862306a36Sopenharmony_ci	put_cmsg(msg, SOL_IP, IP_ORIGDSTADDR, sizeof(sin), &sin);
16962306a36Sopenharmony_ci}
17062306a36Sopenharmony_ci
17162306a36Sopenharmony_civoid ip_cmsg_recv_offset(struct msghdr *msg, struct sock *sk,
17262306a36Sopenharmony_ci			 struct sk_buff *skb, int tlen, int offset)
17362306a36Sopenharmony_ci{
17462306a36Sopenharmony_ci	unsigned long flags = inet_cmsg_flags(inet_sk(sk));
17562306a36Sopenharmony_ci
17662306a36Sopenharmony_ci	if (!flags)
17762306a36Sopenharmony_ci		return;
17862306a36Sopenharmony_ci
17962306a36Sopenharmony_ci	/* Ordered by supposed usage frequency */
18062306a36Sopenharmony_ci	if (flags & IP_CMSG_PKTINFO) {
18162306a36Sopenharmony_ci		ip_cmsg_recv_pktinfo(msg, skb);
18262306a36Sopenharmony_ci
18362306a36Sopenharmony_ci		flags &= ~IP_CMSG_PKTINFO;
18462306a36Sopenharmony_ci		if (!flags)
18562306a36Sopenharmony_ci			return;
18662306a36Sopenharmony_ci	}
18762306a36Sopenharmony_ci
18862306a36Sopenharmony_ci	if (flags & IP_CMSG_TTL) {
18962306a36Sopenharmony_ci		ip_cmsg_recv_ttl(msg, skb);
19062306a36Sopenharmony_ci
19162306a36Sopenharmony_ci		flags &= ~IP_CMSG_TTL;
19262306a36Sopenharmony_ci		if (!flags)
19362306a36Sopenharmony_ci			return;
19462306a36Sopenharmony_ci	}
19562306a36Sopenharmony_ci
19662306a36Sopenharmony_ci	if (flags & IP_CMSG_TOS) {
19762306a36Sopenharmony_ci		ip_cmsg_recv_tos(msg, skb);
19862306a36Sopenharmony_ci
19962306a36Sopenharmony_ci		flags &= ~IP_CMSG_TOS;
20062306a36Sopenharmony_ci		if (!flags)
20162306a36Sopenharmony_ci			return;
20262306a36Sopenharmony_ci	}
20362306a36Sopenharmony_ci
20462306a36Sopenharmony_ci	if (flags & IP_CMSG_RECVOPTS) {
20562306a36Sopenharmony_ci		ip_cmsg_recv_opts(msg, skb);
20662306a36Sopenharmony_ci
20762306a36Sopenharmony_ci		flags &= ~IP_CMSG_RECVOPTS;
20862306a36Sopenharmony_ci		if (!flags)
20962306a36Sopenharmony_ci			return;
21062306a36Sopenharmony_ci	}
21162306a36Sopenharmony_ci
21262306a36Sopenharmony_ci	if (flags & IP_CMSG_RETOPTS) {
21362306a36Sopenharmony_ci		ip_cmsg_recv_retopts(sock_net(sk), msg, skb);
21462306a36Sopenharmony_ci
21562306a36Sopenharmony_ci		flags &= ~IP_CMSG_RETOPTS;
21662306a36Sopenharmony_ci		if (!flags)
21762306a36Sopenharmony_ci			return;
21862306a36Sopenharmony_ci	}
21962306a36Sopenharmony_ci
22062306a36Sopenharmony_ci	if (flags & IP_CMSG_PASSSEC) {
22162306a36Sopenharmony_ci		ip_cmsg_recv_security(msg, skb);
22262306a36Sopenharmony_ci
22362306a36Sopenharmony_ci		flags &= ~IP_CMSG_PASSSEC;
22462306a36Sopenharmony_ci		if (!flags)
22562306a36Sopenharmony_ci			return;
22662306a36Sopenharmony_ci	}
22762306a36Sopenharmony_ci
22862306a36Sopenharmony_ci	if (flags & IP_CMSG_ORIGDSTADDR) {
22962306a36Sopenharmony_ci		ip_cmsg_recv_dstaddr(msg, skb);
23062306a36Sopenharmony_ci
23162306a36Sopenharmony_ci		flags &= ~IP_CMSG_ORIGDSTADDR;
23262306a36Sopenharmony_ci		if (!flags)
23362306a36Sopenharmony_ci			return;
23462306a36Sopenharmony_ci	}
23562306a36Sopenharmony_ci
23662306a36Sopenharmony_ci	if (flags & IP_CMSG_CHECKSUM)
23762306a36Sopenharmony_ci		ip_cmsg_recv_checksum(msg, skb, tlen, offset);
23862306a36Sopenharmony_ci
23962306a36Sopenharmony_ci	if (flags & IP_CMSG_RECVFRAGSIZE)
24062306a36Sopenharmony_ci		ip_cmsg_recv_fragsize(msg, skb);
24162306a36Sopenharmony_ci}
24262306a36Sopenharmony_ciEXPORT_SYMBOL(ip_cmsg_recv_offset);
24362306a36Sopenharmony_ci
24462306a36Sopenharmony_ciint ip_cmsg_send(struct sock *sk, struct msghdr *msg, struct ipcm_cookie *ipc,
24562306a36Sopenharmony_ci		 bool allow_ipv6)
24662306a36Sopenharmony_ci{
24762306a36Sopenharmony_ci	int err, val;
24862306a36Sopenharmony_ci	struct cmsghdr *cmsg;
24962306a36Sopenharmony_ci	struct net *net = sock_net(sk);
25062306a36Sopenharmony_ci
25162306a36Sopenharmony_ci	for_each_cmsghdr(cmsg, msg) {
25262306a36Sopenharmony_ci		if (!CMSG_OK(msg, cmsg))
25362306a36Sopenharmony_ci			return -EINVAL;
25462306a36Sopenharmony_ci#if IS_ENABLED(CONFIG_IPV6)
25562306a36Sopenharmony_ci		if (allow_ipv6 &&
25662306a36Sopenharmony_ci		    cmsg->cmsg_level == SOL_IPV6 &&
25762306a36Sopenharmony_ci		    cmsg->cmsg_type == IPV6_PKTINFO) {
25862306a36Sopenharmony_ci			struct in6_pktinfo *src_info;
25962306a36Sopenharmony_ci
26062306a36Sopenharmony_ci			if (cmsg->cmsg_len < CMSG_LEN(sizeof(*src_info)))
26162306a36Sopenharmony_ci				return -EINVAL;
26262306a36Sopenharmony_ci			src_info = (struct in6_pktinfo *)CMSG_DATA(cmsg);
26362306a36Sopenharmony_ci			if (!ipv6_addr_v4mapped(&src_info->ipi6_addr))
26462306a36Sopenharmony_ci				return -EINVAL;
26562306a36Sopenharmony_ci			if (src_info->ipi6_ifindex)
26662306a36Sopenharmony_ci				ipc->oif = src_info->ipi6_ifindex;
26762306a36Sopenharmony_ci			ipc->addr = src_info->ipi6_addr.s6_addr32[3];
26862306a36Sopenharmony_ci			continue;
26962306a36Sopenharmony_ci		}
27062306a36Sopenharmony_ci#endif
27162306a36Sopenharmony_ci		if (cmsg->cmsg_level == SOL_SOCKET) {
27262306a36Sopenharmony_ci			err = __sock_cmsg_send(sk, cmsg, &ipc->sockc);
27362306a36Sopenharmony_ci			if (err)
27462306a36Sopenharmony_ci				return err;
27562306a36Sopenharmony_ci			continue;
27662306a36Sopenharmony_ci		}
27762306a36Sopenharmony_ci
27862306a36Sopenharmony_ci		if (cmsg->cmsg_level != SOL_IP)
27962306a36Sopenharmony_ci			continue;
28062306a36Sopenharmony_ci		switch (cmsg->cmsg_type) {
28162306a36Sopenharmony_ci		case IP_RETOPTS:
28262306a36Sopenharmony_ci			err = cmsg->cmsg_len - sizeof(struct cmsghdr);
28362306a36Sopenharmony_ci
28462306a36Sopenharmony_ci			/* Our caller is responsible for freeing ipc->opt */
28562306a36Sopenharmony_ci			err = ip_options_get(net, &ipc->opt,
28662306a36Sopenharmony_ci					     KERNEL_SOCKPTR(CMSG_DATA(cmsg)),
28762306a36Sopenharmony_ci					     err < 40 ? err : 40);
28862306a36Sopenharmony_ci			if (err)
28962306a36Sopenharmony_ci				return err;
29062306a36Sopenharmony_ci			break;
29162306a36Sopenharmony_ci		case IP_PKTINFO:
29262306a36Sopenharmony_ci		{
29362306a36Sopenharmony_ci			struct in_pktinfo *info;
29462306a36Sopenharmony_ci			if (cmsg->cmsg_len != CMSG_LEN(sizeof(struct in_pktinfo)))
29562306a36Sopenharmony_ci				return -EINVAL;
29662306a36Sopenharmony_ci			info = (struct in_pktinfo *)CMSG_DATA(cmsg);
29762306a36Sopenharmony_ci			if (info->ipi_ifindex)
29862306a36Sopenharmony_ci				ipc->oif = info->ipi_ifindex;
29962306a36Sopenharmony_ci			ipc->addr = info->ipi_spec_dst.s_addr;
30062306a36Sopenharmony_ci			break;
30162306a36Sopenharmony_ci		}
30262306a36Sopenharmony_ci		case IP_TTL:
30362306a36Sopenharmony_ci			if (cmsg->cmsg_len != CMSG_LEN(sizeof(int)))
30462306a36Sopenharmony_ci				return -EINVAL;
30562306a36Sopenharmony_ci			val = *(int *)CMSG_DATA(cmsg);
30662306a36Sopenharmony_ci			if (val < 1 || val > 255)
30762306a36Sopenharmony_ci				return -EINVAL;
30862306a36Sopenharmony_ci			ipc->ttl = val;
30962306a36Sopenharmony_ci			break;
31062306a36Sopenharmony_ci		case IP_TOS:
31162306a36Sopenharmony_ci			if (cmsg->cmsg_len == CMSG_LEN(sizeof(int)))
31262306a36Sopenharmony_ci				val = *(int *)CMSG_DATA(cmsg);
31362306a36Sopenharmony_ci			else if (cmsg->cmsg_len == CMSG_LEN(sizeof(u8)))
31462306a36Sopenharmony_ci				val = *(u8 *)CMSG_DATA(cmsg);
31562306a36Sopenharmony_ci			else
31662306a36Sopenharmony_ci				return -EINVAL;
31762306a36Sopenharmony_ci			if (val < 0 || val > 255)
31862306a36Sopenharmony_ci				return -EINVAL;
31962306a36Sopenharmony_ci			ipc->tos = val;
32062306a36Sopenharmony_ci			ipc->priority = rt_tos2priority(ipc->tos);
32162306a36Sopenharmony_ci			break;
32262306a36Sopenharmony_ci		case IP_PROTOCOL:
32362306a36Sopenharmony_ci			if (cmsg->cmsg_len != CMSG_LEN(sizeof(int)))
32462306a36Sopenharmony_ci				return -EINVAL;
32562306a36Sopenharmony_ci			val = *(int *)CMSG_DATA(cmsg);
32662306a36Sopenharmony_ci			if (val < 1 || val > 255)
32762306a36Sopenharmony_ci				return -EINVAL;
32862306a36Sopenharmony_ci			ipc->protocol = val;
32962306a36Sopenharmony_ci			break;
33062306a36Sopenharmony_ci		default:
33162306a36Sopenharmony_ci			return -EINVAL;
33262306a36Sopenharmony_ci		}
33362306a36Sopenharmony_ci	}
33462306a36Sopenharmony_ci	return 0;
33562306a36Sopenharmony_ci}
33662306a36Sopenharmony_ci
33762306a36Sopenharmony_cistatic void ip_ra_destroy_rcu(struct rcu_head *head)
33862306a36Sopenharmony_ci{
33962306a36Sopenharmony_ci	struct ip_ra_chain *ra = container_of(head, struct ip_ra_chain, rcu);
34062306a36Sopenharmony_ci
34162306a36Sopenharmony_ci	sock_put(ra->saved_sk);
34262306a36Sopenharmony_ci	kfree(ra);
34362306a36Sopenharmony_ci}
34462306a36Sopenharmony_ci
34562306a36Sopenharmony_ciint ip_ra_control(struct sock *sk, unsigned char on,
34662306a36Sopenharmony_ci		  void (*destructor)(struct sock *))
34762306a36Sopenharmony_ci{
34862306a36Sopenharmony_ci	struct ip_ra_chain *ra, *new_ra;
34962306a36Sopenharmony_ci	struct ip_ra_chain __rcu **rap;
35062306a36Sopenharmony_ci	struct net *net = sock_net(sk);
35162306a36Sopenharmony_ci
35262306a36Sopenharmony_ci	if (sk->sk_type != SOCK_RAW || inet_sk(sk)->inet_num == IPPROTO_RAW)
35362306a36Sopenharmony_ci		return -EINVAL;
35462306a36Sopenharmony_ci
35562306a36Sopenharmony_ci	new_ra = on ? kmalloc(sizeof(*new_ra), GFP_KERNEL) : NULL;
35662306a36Sopenharmony_ci	if (on && !new_ra)
35762306a36Sopenharmony_ci		return -ENOMEM;
35862306a36Sopenharmony_ci
35962306a36Sopenharmony_ci	mutex_lock(&net->ipv4.ra_mutex);
36062306a36Sopenharmony_ci	for (rap = &net->ipv4.ra_chain;
36162306a36Sopenharmony_ci	     (ra = rcu_dereference_protected(*rap,
36262306a36Sopenharmony_ci			lockdep_is_held(&net->ipv4.ra_mutex))) != NULL;
36362306a36Sopenharmony_ci	     rap = &ra->next) {
36462306a36Sopenharmony_ci		if (ra->sk == sk) {
36562306a36Sopenharmony_ci			if (on) {
36662306a36Sopenharmony_ci				mutex_unlock(&net->ipv4.ra_mutex);
36762306a36Sopenharmony_ci				kfree(new_ra);
36862306a36Sopenharmony_ci				return -EADDRINUSE;
36962306a36Sopenharmony_ci			}
37062306a36Sopenharmony_ci			/* dont let ip_call_ra_chain() use sk again */
37162306a36Sopenharmony_ci			ra->sk = NULL;
37262306a36Sopenharmony_ci			RCU_INIT_POINTER(*rap, ra->next);
37362306a36Sopenharmony_ci			mutex_unlock(&net->ipv4.ra_mutex);
37462306a36Sopenharmony_ci
37562306a36Sopenharmony_ci			if (ra->destructor)
37662306a36Sopenharmony_ci				ra->destructor(sk);
37762306a36Sopenharmony_ci			/*
37862306a36Sopenharmony_ci			 * Delay sock_put(sk) and kfree(ra) after one rcu grace
37962306a36Sopenharmony_ci			 * period. This guarantee ip_call_ra_chain() dont need
38062306a36Sopenharmony_ci			 * to mess with socket refcounts.
38162306a36Sopenharmony_ci			 */
38262306a36Sopenharmony_ci			ra->saved_sk = sk;
38362306a36Sopenharmony_ci			call_rcu(&ra->rcu, ip_ra_destroy_rcu);
38462306a36Sopenharmony_ci			return 0;
38562306a36Sopenharmony_ci		}
38662306a36Sopenharmony_ci	}
38762306a36Sopenharmony_ci	if (!new_ra) {
38862306a36Sopenharmony_ci		mutex_unlock(&net->ipv4.ra_mutex);
38962306a36Sopenharmony_ci		return -ENOBUFS;
39062306a36Sopenharmony_ci	}
39162306a36Sopenharmony_ci	new_ra->sk = sk;
39262306a36Sopenharmony_ci	new_ra->destructor = destructor;
39362306a36Sopenharmony_ci
39462306a36Sopenharmony_ci	RCU_INIT_POINTER(new_ra->next, ra);
39562306a36Sopenharmony_ci	rcu_assign_pointer(*rap, new_ra);
39662306a36Sopenharmony_ci	sock_hold(sk);
39762306a36Sopenharmony_ci	mutex_unlock(&net->ipv4.ra_mutex);
39862306a36Sopenharmony_ci
39962306a36Sopenharmony_ci	return 0;
40062306a36Sopenharmony_ci}
40162306a36Sopenharmony_ci
40262306a36Sopenharmony_cistatic void ipv4_icmp_error_rfc4884(const struct sk_buff *skb,
40362306a36Sopenharmony_ci				    struct sock_ee_data_rfc4884 *out)
40462306a36Sopenharmony_ci{
40562306a36Sopenharmony_ci	switch (icmp_hdr(skb)->type) {
40662306a36Sopenharmony_ci	case ICMP_DEST_UNREACH:
40762306a36Sopenharmony_ci	case ICMP_TIME_EXCEEDED:
40862306a36Sopenharmony_ci	case ICMP_PARAMETERPROB:
40962306a36Sopenharmony_ci		ip_icmp_error_rfc4884(skb, out, sizeof(struct icmphdr),
41062306a36Sopenharmony_ci				      icmp_hdr(skb)->un.reserved[1] * 4);
41162306a36Sopenharmony_ci	}
41262306a36Sopenharmony_ci}
41362306a36Sopenharmony_ci
41462306a36Sopenharmony_civoid ip_icmp_error(struct sock *sk, struct sk_buff *skb, int err,
41562306a36Sopenharmony_ci		   __be16 port, u32 info, u8 *payload)
41662306a36Sopenharmony_ci{
41762306a36Sopenharmony_ci	struct sock_exterr_skb *serr;
41862306a36Sopenharmony_ci
41962306a36Sopenharmony_ci	skb = skb_clone(skb, GFP_ATOMIC);
42062306a36Sopenharmony_ci	if (!skb)
42162306a36Sopenharmony_ci		return;
42262306a36Sopenharmony_ci
42362306a36Sopenharmony_ci	serr = SKB_EXT_ERR(skb);
42462306a36Sopenharmony_ci	serr->ee.ee_errno = err;
42562306a36Sopenharmony_ci	serr->ee.ee_origin = SO_EE_ORIGIN_ICMP;
42662306a36Sopenharmony_ci	serr->ee.ee_type = icmp_hdr(skb)->type;
42762306a36Sopenharmony_ci	serr->ee.ee_code = icmp_hdr(skb)->code;
42862306a36Sopenharmony_ci	serr->ee.ee_pad = 0;
42962306a36Sopenharmony_ci	serr->ee.ee_info = info;
43062306a36Sopenharmony_ci	serr->ee.ee_data = 0;
43162306a36Sopenharmony_ci	serr->addr_offset = (u8 *)&(((struct iphdr *)(icmp_hdr(skb) + 1))->daddr) -
43262306a36Sopenharmony_ci				   skb_network_header(skb);
43362306a36Sopenharmony_ci	serr->port = port;
43462306a36Sopenharmony_ci
43562306a36Sopenharmony_ci	if (skb_pull(skb, payload - skb->data)) {
43662306a36Sopenharmony_ci		if (inet_test_bit(RECVERR_RFC4884, sk))
43762306a36Sopenharmony_ci			ipv4_icmp_error_rfc4884(skb, &serr->ee.ee_rfc4884);
43862306a36Sopenharmony_ci
43962306a36Sopenharmony_ci		skb_reset_transport_header(skb);
44062306a36Sopenharmony_ci		if (sock_queue_err_skb(sk, skb) == 0)
44162306a36Sopenharmony_ci			return;
44262306a36Sopenharmony_ci	}
44362306a36Sopenharmony_ci	kfree_skb(skb);
44462306a36Sopenharmony_ci}
44562306a36Sopenharmony_ciEXPORT_SYMBOL_GPL(ip_icmp_error);
44662306a36Sopenharmony_ci
44762306a36Sopenharmony_civoid ip_local_error(struct sock *sk, int err, __be32 daddr, __be16 port, u32 info)
44862306a36Sopenharmony_ci{
44962306a36Sopenharmony_ci	struct sock_exterr_skb *serr;
45062306a36Sopenharmony_ci	struct iphdr *iph;
45162306a36Sopenharmony_ci	struct sk_buff *skb;
45262306a36Sopenharmony_ci
45362306a36Sopenharmony_ci	if (!inet_test_bit(RECVERR, sk))
45462306a36Sopenharmony_ci		return;
45562306a36Sopenharmony_ci
45662306a36Sopenharmony_ci	skb = alloc_skb(sizeof(struct iphdr), GFP_ATOMIC);
45762306a36Sopenharmony_ci	if (!skb)
45862306a36Sopenharmony_ci		return;
45962306a36Sopenharmony_ci
46062306a36Sopenharmony_ci	skb_put(skb, sizeof(struct iphdr));
46162306a36Sopenharmony_ci	skb_reset_network_header(skb);
46262306a36Sopenharmony_ci	iph = ip_hdr(skb);
46362306a36Sopenharmony_ci	iph->daddr = daddr;
46462306a36Sopenharmony_ci
46562306a36Sopenharmony_ci	serr = SKB_EXT_ERR(skb);
46662306a36Sopenharmony_ci	serr->ee.ee_errno = err;
46762306a36Sopenharmony_ci	serr->ee.ee_origin = SO_EE_ORIGIN_LOCAL;
46862306a36Sopenharmony_ci	serr->ee.ee_type = 0;
46962306a36Sopenharmony_ci	serr->ee.ee_code = 0;
47062306a36Sopenharmony_ci	serr->ee.ee_pad = 0;
47162306a36Sopenharmony_ci	serr->ee.ee_info = info;
47262306a36Sopenharmony_ci	serr->ee.ee_data = 0;
47362306a36Sopenharmony_ci	serr->addr_offset = (u8 *)&iph->daddr - skb_network_header(skb);
47462306a36Sopenharmony_ci	serr->port = port;
47562306a36Sopenharmony_ci
47662306a36Sopenharmony_ci	__skb_pull(skb, skb_tail_pointer(skb) - skb->data);
47762306a36Sopenharmony_ci	skb_reset_transport_header(skb);
47862306a36Sopenharmony_ci
47962306a36Sopenharmony_ci	if (sock_queue_err_skb(sk, skb))
48062306a36Sopenharmony_ci		kfree_skb(skb);
48162306a36Sopenharmony_ci}
48262306a36Sopenharmony_ci
48362306a36Sopenharmony_ci/* For some errors we have valid addr_offset even with zero payload and
48462306a36Sopenharmony_ci * zero port. Also, addr_offset should be supported if port is set.
48562306a36Sopenharmony_ci */
48662306a36Sopenharmony_cistatic inline bool ipv4_datagram_support_addr(struct sock_exterr_skb *serr)
48762306a36Sopenharmony_ci{
48862306a36Sopenharmony_ci	return serr->ee.ee_origin == SO_EE_ORIGIN_ICMP ||
48962306a36Sopenharmony_ci	       serr->ee.ee_origin == SO_EE_ORIGIN_LOCAL || serr->port;
49062306a36Sopenharmony_ci}
49162306a36Sopenharmony_ci
49262306a36Sopenharmony_ci/* IPv4 supports cmsg on all imcp errors and some timestamps
49362306a36Sopenharmony_ci *
49462306a36Sopenharmony_ci * Timestamp code paths do not initialize the fields expected by cmsg:
49562306a36Sopenharmony_ci * the PKTINFO fields in skb->cb[]. Fill those in here.
49662306a36Sopenharmony_ci */
49762306a36Sopenharmony_cistatic bool ipv4_datagram_support_cmsg(const struct sock *sk,
49862306a36Sopenharmony_ci				       struct sk_buff *skb,
49962306a36Sopenharmony_ci				       int ee_origin)
50062306a36Sopenharmony_ci{
50162306a36Sopenharmony_ci	struct in_pktinfo *info;
50262306a36Sopenharmony_ci
50362306a36Sopenharmony_ci	if (ee_origin == SO_EE_ORIGIN_ICMP)
50462306a36Sopenharmony_ci		return true;
50562306a36Sopenharmony_ci
50662306a36Sopenharmony_ci	if (ee_origin == SO_EE_ORIGIN_LOCAL)
50762306a36Sopenharmony_ci		return false;
50862306a36Sopenharmony_ci
50962306a36Sopenharmony_ci	/* Support IP_PKTINFO on tstamp packets if requested, to correlate
51062306a36Sopenharmony_ci	 * timestamp with egress dev. Not possible for packets without iif
51162306a36Sopenharmony_ci	 * or without payload (SOF_TIMESTAMPING_OPT_TSONLY).
51262306a36Sopenharmony_ci	 */
51362306a36Sopenharmony_ci	info = PKTINFO_SKB_CB(skb);
51462306a36Sopenharmony_ci	if (!(READ_ONCE(sk->sk_tsflags) & SOF_TIMESTAMPING_OPT_CMSG) ||
51562306a36Sopenharmony_ci	    !info->ipi_ifindex)
51662306a36Sopenharmony_ci		return false;
51762306a36Sopenharmony_ci
51862306a36Sopenharmony_ci	info->ipi_spec_dst.s_addr = ip_hdr(skb)->saddr;
51962306a36Sopenharmony_ci	return true;
52062306a36Sopenharmony_ci}
52162306a36Sopenharmony_ci
52262306a36Sopenharmony_ci/*
52362306a36Sopenharmony_ci *	Handle MSG_ERRQUEUE
52462306a36Sopenharmony_ci */
52562306a36Sopenharmony_ciint ip_recv_error(struct sock *sk, struct msghdr *msg, int len, int *addr_len)
52662306a36Sopenharmony_ci{
52762306a36Sopenharmony_ci	struct sock_exterr_skb *serr;
52862306a36Sopenharmony_ci	struct sk_buff *skb;
52962306a36Sopenharmony_ci	DECLARE_SOCKADDR(struct sockaddr_in *, sin, msg->msg_name);
53062306a36Sopenharmony_ci	struct {
53162306a36Sopenharmony_ci		struct sock_extended_err ee;
53262306a36Sopenharmony_ci		struct sockaddr_in	 offender;
53362306a36Sopenharmony_ci	} errhdr;
53462306a36Sopenharmony_ci	int err;
53562306a36Sopenharmony_ci	int copied;
53662306a36Sopenharmony_ci
53762306a36Sopenharmony_ci	err = -EAGAIN;
53862306a36Sopenharmony_ci	skb = sock_dequeue_err_skb(sk);
53962306a36Sopenharmony_ci	if (!skb)
54062306a36Sopenharmony_ci		goto out;
54162306a36Sopenharmony_ci
54262306a36Sopenharmony_ci	copied = skb->len;
54362306a36Sopenharmony_ci	if (copied > len) {
54462306a36Sopenharmony_ci		msg->msg_flags |= MSG_TRUNC;
54562306a36Sopenharmony_ci		copied = len;
54662306a36Sopenharmony_ci	}
54762306a36Sopenharmony_ci	err = skb_copy_datagram_msg(skb, 0, msg, copied);
54862306a36Sopenharmony_ci	if (unlikely(err)) {
54962306a36Sopenharmony_ci		kfree_skb(skb);
55062306a36Sopenharmony_ci		return err;
55162306a36Sopenharmony_ci	}
55262306a36Sopenharmony_ci	sock_recv_timestamp(msg, sk, skb);
55362306a36Sopenharmony_ci
55462306a36Sopenharmony_ci	serr = SKB_EXT_ERR(skb);
55562306a36Sopenharmony_ci
55662306a36Sopenharmony_ci	if (sin && ipv4_datagram_support_addr(serr)) {
55762306a36Sopenharmony_ci		sin->sin_family = AF_INET;
55862306a36Sopenharmony_ci		sin->sin_addr.s_addr = *(__be32 *)(skb_network_header(skb) +
55962306a36Sopenharmony_ci						   serr->addr_offset);
56062306a36Sopenharmony_ci		sin->sin_port = serr->port;
56162306a36Sopenharmony_ci		memset(&sin->sin_zero, 0, sizeof(sin->sin_zero));
56262306a36Sopenharmony_ci		*addr_len = sizeof(*sin);
56362306a36Sopenharmony_ci	}
56462306a36Sopenharmony_ci
56562306a36Sopenharmony_ci	memcpy(&errhdr.ee, &serr->ee, sizeof(struct sock_extended_err));
56662306a36Sopenharmony_ci	sin = &errhdr.offender;
56762306a36Sopenharmony_ci	memset(sin, 0, sizeof(*sin));
56862306a36Sopenharmony_ci
56962306a36Sopenharmony_ci	if (ipv4_datagram_support_cmsg(sk, skb, serr->ee.ee_origin)) {
57062306a36Sopenharmony_ci		sin->sin_family = AF_INET;
57162306a36Sopenharmony_ci		sin->sin_addr.s_addr = ip_hdr(skb)->saddr;
57262306a36Sopenharmony_ci		if (inet_cmsg_flags(inet_sk(sk)))
57362306a36Sopenharmony_ci			ip_cmsg_recv(msg, skb);
57462306a36Sopenharmony_ci	}
57562306a36Sopenharmony_ci
57662306a36Sopenharmony_ci	put_cmsg(msg, SOL_IP, IP_RECVERR, sizeof(errhdr), &errhdr);
57762306a36Sopenharmony_ci
57862306a36Sopenharmony_ci	/* Now we could try to dump offended packet options */
57962306a36Sopenharmony_ci
58062306a36Sopenharmony_ci	msg->msg_flags |= MSG_ERRQUEUE;
58162306a36Sopenharmony_ci	err = copied;
58262306a36Sopenharmony_ci
58362306a36Sopenharmony_ci	consume_skb(skb);
58462306a36Sopenharmony_ciout:
58562306a36Sopenharmony_ci	return err;
58662306a36Sopenharmony_ci}
58762306a36Sopenharmony_ci
58862306a36Sopenharmony_civoid __ip_sock_set_tos(struct sock *sk, int val)
58962306a36Sopenharmony_ci{
59062306a36Sopenharmony_ci	if (sk->sk_type == SOCK_STREAM) {
59162306a36Sopenharmony_ci		val &= ~INET_ECN_MASK;
59262306a36Sopenharmony_ci		val |= inet_sk(sk)->tos & INET_ECN_MASK;
59362306a36Sopenharmony_ci	}
59462306a36Sopenharmony_ci	if (inet_sk(sk)->tos != val) {
59562306a36Sopenharmony_ci		inet_sk(sk)->tos = val;
59662306a36Sopenharmony_ci		WRITE_ONCE(sk->sk_priority, rt_tos2priority(val));
59762306a36Sopenharmony_ci		sk_dst_reset(sk);
59862306a36Sopenharmony_ci	}
59962306a36Sopenharmony_ci}
60062306a36Sopenharmony_ci
60162306a36Sopenharmony_civoid ip_sock_set_tos(struct sock *sk, int val)
60262306a36Sopenharmony_ci{
60362306a36Sopenharmony_ci	lock_sock(sk);
60462306a36Sopenharmony_ci	__ip_sock_set_tos(sk, val);
60562306a36Sopenharmony_ci	release_sock(sk);
60662306a36Sopenharmony_ci}
60762306a36Sopenharmony_ciEXPORT_SYMBOL(ip_sock_set_tos);
60862306a36Sopenharmony_ci
60962306a36Sopenharmony_civoid ip_sock_set_freebind(struct sock *sk)
61062306a36Sopenharmony_ci{
61162306a36Sopenharmony_ci	inet_set_bit(FREEBIND, sk);
61262306a36Sopenharmony_ci}
61362306a36Sopenharmony_ciEXPORT_SYMBOL(ip_sock_set_freebind);
61462306a36Sopenharmony_ci
61562306a36Sopenharmony_civoid ip_sock_set_recverr(struct sock *sk)
61662306a36Sopenharmony_ci{
61762306a36Sopenharmony_ci	inet_set_bit(RECVERR, sk);
61862306a36Sopenharmony_ci}
61962306a36Sopenharmony_ciEXPORT_SYMBOL(ip_sock_set_recverr);
62062306a36Sopenharmony_ci
62162306a36Sopenharmony_ciint ip_sock_set_mtu_discover(struct sock *sk, int val)
62262306a36Sopenharmony_ci{
62362306a36Sopenharmony_ci	if (val < IP_PMTUDISC_DONT || val > IP_PMTUDISC_OMIT)
62462306a36Sopenharmony_ci		return -EINVAL;
62562306a36Sopenharmony_ci	lock_sock(sk);
62662306a36Sopenharmony_ci	inet_sk(sk)->pmtudisc = val;
62762306a36Sopenharmony_ci	release_sock(sk);
62862306a36Sopenharmony_ci	return 0;
62962306a36Sopenharmony_ci}
63062306a36Sopenharmony_ciEXPORT_SYMBOL(ip_sock_set_mtu_discover);
63162306a36Sopenharmony_ci
63262306a36Sopenharmony_civoid ip_sock_set_pktinfo(struct sock *sk)
63362306a36Sopenharmony_ci{
63462306a36Sopenharmony_ci	inet_set_bit(PKTINFO, sk);
63562306a36Sopenharmony_ci}
63662306a36Sopenharmony_ciEXPORT_SYMBOL(ip_sock_set_pktinfo);
63762306a36Sopenharmony_ci
63862306a36Sopenharmony_ci/*
63962306a36Sopenharmony_ci *	Socket option code for IP. This is the end of the line after any
64062306a36Sopenharmony_ci *	TCP,UDP etc options on an IP socket.
64162306a36Sopenharmony_ci */
64262306a36Sopenharmony_cistatic bool setsockopt_needs_rtnl(int optname)
64362306a36Sopenharmony_ci{
64462306a36Sopenharmony_ci	switch (optname) {
64562306a36Sopenharmony_ci	case IP_ADD_MEMBERSHIP:
64662306a36Sopenharmony_ci	case IP_ADD_SOURCE_MEMBERSHIP:
64762306a36Sopenharmony_ci	case IP_BLOCK_SOURCE:
64862306a36Sopenharmony_ci	case IP_DROP_MEMBERSHIP:
64962306a36Sopenharmony_ci	case IP_DROP_SOURCE_MEMBERSHIP:
65062306a36Sopenharmony_ci	case IP_MSFILTER:
65162306a36Sopenharmony_ci	case IP_UNBLOCK_SOURCE:
65262306a36Sopenharmony_ci	case MCAST_BLOCK_SOURCE:
65362306a36Sopenharmony_ci	case MCAST_MSFILTER:
65462306a36Sopenharmony_ci	case MCAST_JOIN_GROUP:
65562306a36Sopenharmony_ci	case MCAST_JOIN_SOURCE_GROUP:
65662306a36Sopenharmony_ci	case MCAST_LEAVE_GROUP:
65762306a36Sopenharmony_ci	case MCAST_LEAVE_SOURCE_GROUP:
65862306a36Sopenharmony_ci	case MCAST_UNBLOCK_SOURCE:
65962306a36Sopenharmony_ci		return true;
66062306a36Sopenharmony_ci	}
66162306a36Sopenharmony_ci	return false;
66262306a36Sopenharmony_ci}
66362306a36Sopenharmony_ci
66462306a36Sopenharmony_cistatic int set_mcast_msfilter(struct sock *sk, int ifindex,
66562306a36Sopenharmony_ci			      int numsrc, int fmode,
66662306a36Sopenharmony_ci			      struct sockaddr_storage *group,
66762306a36Sopenharmony_ci			      struct sockaddr_storage *list)
66862306a36Sopenharmony_ci{
66962306a36Sopenharmony_ci	struct ip_msfilter *msf;
67062306a36Sopenharmony_ci	struct sockaddr_in *psin;
67162306a36Sopenharmony_ci	int err, i;
67262306a36Sopenharmony_ci
67362306a36Sopenharmony_ci	msf = kmalloc(IP_MSFILTER_SIZE(numsrc), GFP_KERNEL);
67462306a36Sopenharmony_ci	if (!msf)
67562306a36Sopenharmony_ci		return -ENOBUFS;
67662306a36Sopenharmony_ci
67762306a36Sopenharmony_ci	psin = (struct sockaddr_in *)group;
67862306a36Sopenharmony_ci	if (psin->sin_family != AF_INET)
67962306a36Sopenharmony_ci		goto Eaddrnotavail;
68062306a36Sopenharmony_ci	msf->imsf_multiaddr = psin->sin_addr.s_addr;
68162306a36Sopenharmony_ci	msf->imsf_interface = 0;
68262306a36Sopenharmony_ci	msf->imsf_fmode = fmode;
68362306a36Sopenharmony_ci	msf->imsf_numsrc = numsrc;
68462306a36Sopenharmony_ci	for (i = 0; i < numsrc; ++i) {
68562306a36Sopenharmony_ci		psin = (struct sockaddr_in *)&list[i];
68662306a36Sopenharmony_ci
68762306a36Sopenharmony_ci		if (psin->sin_family != AF_INET)
68862306a36Sopenharmony_ci			goto Eaddrnotavail;
68962306a36Sopenharmony_ci		msf->imsf_slist_flex[i] = psin->sin_addr.s_addr;
69062306a36Sopenharmony_ci	}
69162306a36Sopenharmony_ci	err = ip_mc_msfilter(sk, msf, ifindex);
69262306a36Sopenharmony_ci	kfree(msf);
69362306a36Sopenharmony_ci	return err;
69462306a36Sopenharmony_ci
69562306a36Sopenharmony_ciEaddrnotavail:
69662306a36Sopenharmony_ci	kfree(msf);
69762306a36Sopenharmony_ci	return -EADDRNOTAVAIL;
69862306a36Sopenharmony_ci}
69962306a36Sopenharmony_ci
70062306a36Sopenharmony_cistatic int copy_group_source_from_sockptr(struct group_source_req *greqs,
70162306a36Sopenharmony_ci		sockptr_t optval, int optlen)
70262306a36Sopenharmony_ci{
70362306a36Sopenharmony_ci	if (in_compat_syscall()) {
70462306a36Sopenharmony_ci		struct compat_group_source_req gr32;
70562306a36Sopenharmony_ci
70662306a36Sopenharmony_ci		if (optlen != sizeof(gr32))
70762306a36Sopenharmony_ci			return -EINVAL;
70862306a36Sopenharmony_ci		if (copy_from_sockptr(&gr32, optval, sizeof(gr32)))
70962306a36Sopenharmony_ci			return -EFAULT;
71062306a36Sopenharmony_ci		greqs->gsr_interface = gr32.gsr_interface;
71162306a36Sopenharmony_ci		greqs->gsr_group = gr32.gsr_group;
71262306a36Sopenharmony_ci		greqs->gsr_source = gr32.gsr_source;
71362306a36Sopenharmony_ci	} else {
71462306a36Sopenharmony_ci		if (optlen != sizeof(*greqs))
71562306a36Sopenharmony_ci			return -EINVAL;
71662306a36Sopenharmony_ci		if (copy_from_sockptr(greqs, optval, sizeof(*greqs)))
71762306a36Sopenharmony_ci			return -EFAULT;
71862306a36Sopenharmony_ci	}
71962306a36Sopenharmony_ci
72062306a36Sopenharmony_ci	return 0;
72162306a36Sopenharmony_ci}
72262306a36Sopenharmony_ci
72362306a36Sopenharmony_cistatic int do_mcast_group_source(struct sock *sk, int optname,
72462306a36Sopenharmony_ci		sockptr_t optval, int optlen)
72562306a36Sopenharmony_ci{
72662306a36Sopenharmony_ci	struct group_source_req greqs;
72762306a36Sopenharmony_ci	struct ip_mreq_source mreqs;
72862306a36Sopenharmony_ci	struct sockaddr_in *psin;
72962306a36Sopenharmony_ci	int omode, add, err;
73062306a36Sopenharmony_ci
73162306a36Sopenharmony_ci	err = copy_group_source_from_sockptr(&greqs, optval, optlen);
73262306a36Sopenharmony_ci	if (err)
73362306a36Sopenharmony_ci		return err;
73462306a36Sopenharmony_ci
73562306a36Sopenharmony_ci	if (greqs.gsr_group.ss_family != AF_INET ||
73662306a36Sopenharmony_ci	    greqs.gsr_source.ss_family != AF_INET)
73762306a36Sopenharmony_ci		return -EADDRNOTAVAIL;
73862306a36Sopenharmony_ci
73962306a36Sopenharmony_ci	psin = (struct sockaddr_in *)&greqs.gsr_group;
74062306a36Sopenharmony_ci	mreqs.imr_multiaddr = psin->sin_addr.s_addr;
74162306a36Sopenharmony_ci	psin = (struct sockaddr_in *)&greqs.gsr_source;
74262306a36Sopenharmony_ci	mreqs.imr_sourceaddr = psin->sin_addr.s_addr;
74362306a36Sopenharmony_ci	mreqs.imr_interface = 0; /* use index for mc_source */
74462306a36Sopenharmony_ci
74562306a36Sopenharmony_ci	if (optname == MCAST_BLOCK_SOURCE) {
74662306a36Sopenharmony_ci		omode = MCAST_EXCLUDE;
74762306a36Sopenharmony_ci		add = 1;
74862306a36Sopenharmony_ci	} else if (optname == MCAST_UNBLOCK_SOURCE) {
74962306a36Sopenharmony_ci		omode = MCAST_EXCLUDE;
75062306a36Sopenharmony_ci		add = 0;
75162306a36Sopenharmony_ci	} else if (optname == MCAST_JOIN_SOURCE_GROUP) {
75262306a36Sopenharmony_ci		struct ip_mreqn mreq;
75362306a36Sopenharmony_ci
75462306a36Sopenharmony_ci		psin = (struct sockaddr_in *)&greqs.gsr_group;
75562306a36Sopenharmony_ci		mreq.imr_multiaddr = psin->sin_addr;
75662306a36Sopenharmony_ci		mreq.imr_address.s_addr = 0;
75762306a36Sopenharmony_ci		mreq.imr_ifindex = greqs.gsr_interface;
75862306a36Sopenharmony_ci		err = ip_mc_join_group_ssm(sk, &mreq, MCAST_INCLUDE);
75962306a36Sopenharmony_ci		if (err && err != -EADDRINUSE)
76062306a36Sopenharmony_ci			return err;
76162306a36Sopenharmony_ci		greqs.gsr_interface = mreq.imr_ifindex;
76262306a36Sopenharmony_ci		omode = MCAST_INCLUDE;
76362306a36Sopenharmony_ci		add = 1;
76462306a36Sopenharmony_ci	} else /* MCAST_LEAVE_SOURCE_GROUP */ {
76562306a36Sopenharmony_ci		omode = MCAST_INCLUDE;
76662306a36Sopenharmony_ci		add = 0;
76762306a36Sopenharmony_ci	}
76862306a36Sopenharmony_ci	return ip_mc_source(add, omode, sk, &mreqs, greqs.gsr_interface);
76962306a36Sopenharmony_ci}
77062306a36Sopenharmony_ci
77162306a36Sopenharmony_cistatic int ip_set_mcast_msfilter(struct sock *sk, sockptr_t optval, int optlen)
77262306a36Sopenharmony_ci{
77362306a36Sopenharmony_ci	struct group_filter *gsf = NULL;
77462306a36Sopenharmony_ci	int err;
77562306a36Sopenharmony_ci
77662306a36Sopenharmony_ci	if (optlen < GROUP_FILTER_SIZE(0))
77762306a36Sopenharmony_ci		return -EINVAL;
77862306a36Sopenharmony_ci	if (optlen > READ_ONCE(sysctl_optmem_max))
77962306a36Sopenharmony_ci		return -ENOBUFS;
78062306a36Sopenharmony_ci
78162306a36Sopenharmony_ci	gsf = memdup_sockptr(optval, optlen);
78262306a36Sopenharmony_ci	if (IS_ERR(gsf))
78362306a36Sopenharmony_ci		return PTR_ERR(gsf);
78462306a36Sopenharmony_ci
78562306a36Sopenharmony_ci	/* numsrc >= (4G-140)/128 overflow in 32 bits */
78662306a36Sopenharmony_ci	err = -ENOBUFS;
78762306a36Sopenharmony_ci	if (gsf->gf_numsrc >= 0x1ffffff ||
78862306a36Sopenharmony_ci	    gsf->gf_numsrc > READ_ONCE(sock_net(sk)->ipv4.sysctl_igmp_max_msf))
78962306a36Sopenharmony_ci		goto out_free_gsf;
79062306a36Sopenharmony_ci
79162306a36Sopenharmony_ci	err = -EINVAL;
79262306a36Sopenharmony_ci	if (GROUP_FILTER_SIZE(gsf->gf_numsrc) > optlen)
79362306a36Sopenharmony_ci		goto out_free_gsf;
79462306a36Sopenharmony_ci
79562306a36Sopenharmony_ci	err = set_mcast_msfilter(sk, gsf->gf_interface, gsf->gf_numsrc,
79662306a36Sopenharmony_ci				 gsf->gf_fmode, &gsf->gf_group,
79762306a36Sopenharmony_ci				 gsf->gf_slist_flex);
79862306a36Sopenharmony_ciout_free_gsf:
79962306a36Sopenharmony_ci	kfree(gsf);
80062306a36Sopenharmony_ci	return err;
80162306a36Sopenharmony_ci}
80262306a36Sopenharmony_ci
80362306a36Sopenharmony_cistatic int compat_ip_set_mcast_msfilter(struct sock *sk, sockptr_t optval,
80462306a36Sopenharmony_ci		int optlen)
80562306a36Sopenharmony_ci{
80662306a36Sopenharmony_ci	const int size0 = offsetof(struct compat_group_filter, gf_slist_flex);
80762306a36Sopenharmony_ci	struct compat_group_filter *gf32;
80862306a36Sopenharmony_ci	unsigned int n;
80962306a36Sopenharmony_ci	void *p;
81062306a36Sopenharmony_ci	int err;
81162306a36Sopenharmony_ci
81262306a36Sopenharmony_ci	if (optlen < size0)
81362306a36Sopenharmony_ci		return -EINVAL;
81462306a36Sopenharmony_ci	if (optlen > READ_ONCE(sysctl_optmem_max) - 4)
81562306a36Sopenharmony_ci		return -ENOBUFS;
81662306a36Sopenharmony_ci
81762306a36Sopenharmony_ci	p = kmalloc(optlen + 4, GFP_KERNEL);
81862306a36Sopenharmony_ci	if (!p)
81962306a36Sopenharmony_ci		return -ENOMEM;
82062306a36Sopenharmony_ci	gf32 = p + 4; /* we want ->gf_group and ->gf_slist_flex aligned */
82162306a36Sopenharmony_ci
82262306a36Sopenharmony_ci	err = -EFAULT;
82362306a36Sopenharmony_ci	if (copy_from_sockptr(gf32, optval, optlen))
82462306a36Sopenharmony_ci		goto out_free_gsf;
82562306a36Sopenharmony_ci
82662306a36Sopenharmony_ci	/* numsrc >= (4G-140)/128 overflow in 32 bits */
82762306a36Sopenharmony_ci	n = gf32->gf_numsrc;
82862306a36Sopenharmony_ci	err = -ENOBUFS;
82962306a36Sopenharmony_ci	if (n >= 0x1ffffff)
83062306a36Sopenharmony_ci		goto out_free_gsf;
83162306a36Sopenharmony_ci
83262306a36Sopenharmony_ci	err = -EINVAL;
83362306a36Sopenharmony_ci	if (offsetof(struct compat_group_filter, gf_slist_flex[n]) > optlen)
83462306a36Sopenharmony_ci		goto out_free_gsf;
83562306a36Sopenharmony_ci
83662306a36Sopenharmony_ci	/* numsrc >= (4G-140)/128 overflow in 32 bits */
83762306a36Sopenharmony_ci	err = -ENOBUFS;
83862306a36Sopenharmony_ci	if (n > READ_ONCE(sock_net(sk)->ipv4.sysctl_igmp_max_msf))
83962306a36Sopenharmony_ci		goto out_free_gsf;
84062306a36Sopenharmony_ci	err = set_mcast_msfilter(sk, gf32->gf_interface, n, gf32->gf_fmode,
84162306a36Sopenharmony_ci				 &gf32->gf_group, gf32->gf_slist_flex);
84262306a36Sopenharmony_ciout_free_gsf:
84362306a36Sopenharmony_ci	kfree(p);
84462306a36Sopenharmony_ci	return err;
84562306a36Sopenharmony_ci}
84662306a36Sopenharmony_ci
84762306a36Sopenharmony_cistatic int ip_mcast_join_leave(struct sock *sk, int optname,
84862306a36Sopenharmony_ci		sockptr_t optval, int optlen)
84962306a36Sopenharmony_ci{
85062306a36Sopenharmony_ci	struct ip_mreqn mreq = { };
85162306a36Sopenharmony_ci	struct sockaddr_in *psin;
85262306a36Sopenharmony_ci	struct group_req greq;
85362306a36Sopenharmony_ci
85462306a36Sopenharmony_ci	if (optlen < sizeof(struct group_req))
85562306a36Sopenharmony_ci		return -EINVAL;
85662306a36Sopenharmony_ci	if (copy_from_sockptr(&greq, optval, sizeof(greq)))
85762306a36Sopenharmony_ci		return -EFAULT;
85862306a36Sopenharmony_ci
85962306a36Sopenharmony_ci	psin = (struct sockaddr_in *)&greq.gr_group;
86062306a36Sopenharmony_ci	if (psin->sin_family != AF_INET)
86162306a36Sopenharmony_ci		return -EINVAL;
86262306a36Sopenharmony_ci	mreq.imr_multiaddr = psin->sin_addr;
86362306a36Sopenharmony_ci	mreq.imr_ifindex = greq.gr_interface;
86462306a36Sopenharmony_ci	if (optname == MCAST_JOIN_GROUP)
86562306a36Sopenharmony_ci		return ip_mc_join_group(sk, &mreq);
86662306a36Sopenharmony_ci	return ip_mc_leave_group(sk, &mreq);
86762306a36Sopenharmony_ci}
86862306a36Sopenharmony_ci
86962306a36Sopenharmony_cistatic int compat_ip_mcast_join_leave(struct sock *sk, int optname,
87062306a36Sopenharmony_ci		sockptr_t optval, int optlen)
87162306a36Sopenharmony_ci{
87262306a36Sopenharmony_ci	struct compat_group_req greq;
87362306a36Sopenharmony_ci	struct ip_mreqn mreq = { };
87462306a36Sopenharmony_ci	struct sockaddr_in *psin;
87562306a36Sopenharmony_ci
87662306a36Sopenharmony_ci	if (optlen < sizeof(struct compat_group_req))
87762306a36Sopenharmony_ci		return -EINVAL;
87862306a36Sopenharmony_ci	if (copy_from_sockptr(&greq, optval, sizeof(greq)))
87962306a36Sopenharmony_ci		return -EFAULT;
88062306a36Sopenharmony_ci
88162306a36Sopenharmony_ci	psin = (struct sockaddr_in *)&greq.gr_group;
88262306a36Sopenharmony_ci	if (psin->sin_family != AF_INET)
88362306a36Sopenharmony_ci		return -EINVAL;
88462306a36Sopenharmony_ci	mreq.imr_multiaddr = psin->sin_addr;
88562306a36Sopenharmony_ci	mreq.imr_ifindex = greq.gr_interface;
88662306a36Sopenharmony_ci
88762306a36Sopenharmony_ci	if (optname == MCAST_JOIN_GROUP)
88862306a36Sopenharmony_ci		return ip_mc_join_group(sk, &mreq);
88962306a36Sopenharmony_ci	return ip_mc_leave_group(sk, &mreq);
89062306a36Sopenharmony_ci}
89162306a36Sopenharmony_ci
89262306a36Sopenharmony_ciDEFINE_STATIC_KEY_FALSE(ip4_min_ttl);
89362306a36Sopenharmony_ci
89462306a36Sopenharmony_ciint do_ip_setsockopt(struct sock *sk, int level, int optname,
89562306a36Sopenharmony_ci		     sockptr_t optval, unsigned int optlen)
89662306a36Sopenharmony_ci{
89762306a36Sopenharmony_ci	struct inet_sock *inet = inet_sk(sk);
89862306a36Sopenharmony_ci	struct net *net = sock_net(sk);
89962306a36Sopenharmony_ci	int val = 0, err;
90062306a36Sopenharmony_ci	bool needs_rtnl = setsockopt_needs_rtnl(optname);
90162306a36Sopenharmony_ci
90262306a36Sopenharmony_ci	switch (optname) {
90362306a36Sopenharmony_ci	case IP_PKTINFO:
90462306a36Sopenharmony_ci	case IP_RECVTTL:
90562306a36Sopenharmony_ci	case IP_RECVOPTS:
90662306a36Sopenharmony_ci	case IP_RECVTOS:
90762306a36Sopenharmony_ci	case IP_RETOPTS:
90862306a36Sopenharmony_ci	case IP_TOS:
90962306a36Sopenharmony_ci	case IP_TTL:
91062306a36Sopenharmony_ci	case IP_HDRINCL:
91162306a36Sopenharmony_ci	case IP_MTU_DISCOVER:
91262306a36Sopenharmony_ci	case IP_RECVERR:
91362306a36Sopenharmony_ci	case IP_ROUTER_ALERT:
91462306a36Sopenharmony_ci	case IP_FREEBIND:
91562306a36Sopenharmony_ci	case IP_PASSSEC:
91662306a36Sopenharmony_ci	case IP_TRANSPARENT:
91762306a36Sopenharmony_ci	case IP_MINTTL:
91862306a36Sopenharmony_ci	case IP_NODEFRAG:
91962306a36Sopenharmony_ci	case IP_BIND_ADDRESS_NO_PORT:
92062306a36Sopenharmony_ci	case IP_UNICAST_IF:
92162306a36Sopenharmony_ci	case IP_MULTICAST_TTL:
92262306a36Sopenharmony_ci	case IP_MULTICAST_ALL:
92362306a36Sopenharmony_ci	case IP_MULTICAST_LOOP:
92462306a36Sopenharmony_ci	case IP_RECVORIGDSTADDR:
92562306a36Sopenharmony_ci	case IP_CHECKSUM:
92662306a36Sopenharmony_ci	case IP_RECVFRAGSIZE:
92762306a36Sopenharmony_ci	case IP_RECVERR_RFC4884:
92862306a36Sopenharmony_ci	case IP_LOCAL_PORT_RANGE:
92962306a36Sopenharmony_ci		if (optlen >= sizeof(int)) {
93062306a36Sopenharmony_ci			if (copy_from_sockptr(&val, optval, sizeof(val)))
93162306a36Sopenharmony_ci				return -EFAULT;
93262306a36Sopenharmony_ci		} else if (optlen >= sizeof(char)) {
93362306a36Sopenharmony_ci			unsigned char ucval;
93462306a36Sopenharmony_ci
93562306a36Sopenharmony_ci			if (copy_from_sockptr(&ucval, optval, sizeof(ucval)))
93662306a36Sopenharmony_ci				return -EFAULT;
93762306a36Sopenharmony_ci			val = (int) ucval;
93862306a36Sopenharmony_ci		}
93962306a36Sopenharmony_ci	}
94062306a36Sopenharmony_ci
94162306a36Sopenharmony_ci	/* If optlen==0, it is equivalent to val == 0 */
94262306a36Sopenharmony_ci
94362306a36Sopenharmony_ci	if (optname == IP_ROUTER_ALERT)
94462306a36Sopenharmony_ci		return ip_ra_control(sk, val ? 1 : 0, NULL);
94562306a36Sopenharmony_ci	if (ip_mroute_opt(optname))
94662306a36Sopenharmony_ci		return ip_mroute_setsockopt(sk, optname, optval, optlen);
94762306a36Sopenharmony_ci
94862306a36Sopenharmony_ci	/* Handle options that can be set without locking the socket. */
94962306a36Sopenharmony_ci	switch (optname) {
95062306a36Sopenharmony_ci	case IP_PKTINFO:
95162306a36Sopenharmony_ci		inet_assign_bit(PKTINFO, sk, val);
95262306a36Sopenharmony_ci		return 0;
95362306a36Sopenharmony_ci	case IP_RECVTTL:
95462306a36Sopenharmony_ci		inet_assign_bit(TTL, sk, val);
95562306a36Sopenharmony_ci		return 0;
95662306a36Sopenharmony_ci	case IP_RECVTOS:
95762306a36Sopenharmony_ci		inet_assign_bit(TOS, sk, val);
95862306a36Sopenharmony_ci		return 0;
95962306a36Sopenharmony_ci	case IP_RECVOPTS:
96062306a36Sopenharmony_ci		inet_assign_bit(RECVOPTS, sk, val);
96162306a36Sopenharmony_ci		return 0;
96262306a36Sopenharmony_ci	case IP_RETOPTS:
96362306a36Sopenharmony_ci		inet_assign_bit(RETOPTS, sk, val);
96462306a36Sopenharmony_ci		return 0;
96562306a36Sopenharmony_ci	case IP_PASSSEC:
96662306a36Sopenharmony_ci		inet_assign_bit(PASSSEC, sk, val);
96762306a36Sopenharmony_ci		return 0;
96862306a36Sopenharmony_ci	case IP_RECVORIGDSTADDR:
96962306a36Sopenharmony_ci		inet_assign_bit(ORIGDSTADDR, sk, val);
97062306a36Sopenharmony_ci		return 0;
97162306a36Sopenharmony_ci	case IP_RECVFRAGSIZE:
97262306a36Sopenharmony_ci		if (sk->sk_type != SOCK_RAW && sk->sk_type != SOCK_DGRAM)
97362306a36Sopenharmony_ci			return -EINVAL;
97462306a36Sopenharmony_ci		inet_assign_bit(RECVFRAGSIZE, sk, val);
97562306a36Sopenharmony_ci		return 0;
97662306a36Sopenharmony_ci	case IP_RECVERR:
97762306a36Sopenharmony_ci		inet_assign_bit(RECVERR, sk, val);
97862306a36Sopenharmony_ci		if (!val)
97962306a36Sopenharmony_ci			skb_errqueue_purge(&sk->sk_error_queue);
98062306a36Sopenharmony_ci		return 0;
98162306a36Sopenharmony_ci	case IP_RECVERR_RFC4884:
98262306a36Sopenharmony_ci		if (val < 0 || val > 1)
98362306a36Sopenharmony_ci			return -EINVAL;
98462306a36Sopenharmony_ci		inet_assign_bit(RECVERR_RFC4884, sk, val);
98562306a36Sopenharmony_ci		return 0;
98662306a36Sopenharmony_ci	case IP_FREEBIND:
98762306a36Sopenharmony_ci		if (optlen < 1)
98862306a36Sopenharmony_ci			return -EINVAL;
98962306a36Sopenharmony_ci		inet_assign_bit(FREEBIND, sk, val);
99062306a36Sopenharmony_ci		return 0;
99162306a36Sopenharmony_ci	case IP_HDRINCL:
99262306a36Sopenharmony_ci		if (sk->sk_type != SOCK_RAW)
99362306a36Sopenharmony_ci			return -ENOPROTOOPT;
99462306a36Sopenharmony_ci		inet_assign_bit(HDRINCL, sk, val);
99562306a36Sopenharmony_ci		return 0;
99662306a36Sopenharmony_ci	case IP_MULTICAST_LOOP:
99762306a36Sopenharmony_ci		if (optlen < 1)
99862306a36Sopenharmony_ci			return -EINVAL;
99962306a36Sopenharmony_ci		inet_assign_bit(MC_LOOP, sk, val);
100062306a36Sopenharmony_ci		return 0;
100162306a36Sopenharmony_ci	case IP_MULTICAST_ALL:
100262306a36Sopenharmony_ci		if (optlen < 1)
100362306a36Sopenharmony_ci			return -EINVAL;
100462306a36Sopenharmony_ci		if (val != 0 && val != 1)
100562306a36Sopenharmony_ci			return -EINVAL;
100662306a36Sopenharmony_ci		inet_assign_bit(MC_ALL, sk, val);
100762306a36Sopenharmony_ci		return 0;
100862306a36Sopenharmony_ci	case IP_TRANSPARENT:
100962306a36Sopenharmony_ci		if (!!val && !sockopt_ns_capable(sock_net(sk)->user_ns, CAP_NET_RAW) &&
101062306a36Sopenharmony_ci		    !sockopt_ns_capable(sock_net(sk)->user_ns, CAP_NET_ADMIN))
101162306a36Sopenharmony_ci			return -EPERM;
101262306a36Sopenharmony_ci		if (optlen < 1)
101362306a36Sopenharmony_ci			return -EINVAL;
101462306a36Sopenharmony_ci		inet_assign_bit(TRANSPARENT, sk, val);
101562306a36Sopenharmony_ci		return 0;
101662306a36Sopenharmony_ci	case IP_NODEFRAG:
101762306a36Sopenharmony_ci		if (sk->sk_type != SOCK_RAW)
101862306a36Sopenharmony_ci			return -ENOPROTOOPT;
101962306a36Sopenharmony_ci		inet_assign_bit(NODEFRAG, sk, val);
102062306a36Sopenharmony_ci		return 0;
102162306a36Sopenharmony_ci	case IP_BIND_ADDRESS_NO_PORT:
102262306a36Sopenharmony_ci		inet_assign_bit(BIND_ADDRESS_NO_PORT, sk, val);
102362306a36Sopenharmony_ci		return 0;
102462306a36Sopenharmony_ci	case IP_TTL:
102562306a36Sopenharmony_ci		if (optlen < 1)
102662306a36Sopenharmony_ci			return -EINVAL;
102762306a36Sopenharmony_ci		if (val != -1 && (val < 1 || val > 255))
102862306a36Sopenharmony_ci			return -EINVAL;
102962306a36Sopenharmony_ci		WRITE_ONCE(inet->uc_ttl, val);
103062306a36Sopenharmony_ci		return 0;
103162306a36Sopenharmony_ci	case IP_MINTTL:
103262306a36Sopenharmony_ci		if (optlen < 1)
103362306a36Sopenharmony_ci			return -EINVAL;
103462306a36Sopenharmony_ci		if (val < 0 || val > 255)
103562306a36Sopenharmony_ci			return -EINVAL;
103662306a36Sopenharmony_ci
103762306a36Sopenharmony_ci		if (val)
103862306a36Sopenharmony_ci			static_branch_enable(&ip4_min_ttl);
103962306a36Sopenharmony_ci
104062306a36Sopenharmony_ci		WRITE_ONCE(inet->min_ttl, val);
104162306a36Sopenharmony_ci		return 0;
104262306a36Sopenharmony_ci	}
104362306a36Sopenharmony_ci
104462306a36Sopenharmony_ci	err = 0;
104562306a36Sopenharmony_ci	if (needs_rtnl)
104662306a36Sopenharmony_ci		rtnl_lock();
104762306a36Sopenharmony_ci	sockopt_lock_sock(sk);
104862306a36Sopenharmony_ci
104962306a36Sopenharmony_ci	switch (optname) {
105062306a36Sopenharmony_ci	case IP_OPTIONS:
105162306a36Sopenharmony_ci	{
105262306a36Sopenharmony_ci		struct ip_options_rcu *old, *opt = NULL;
105362306a36Sopenharmony_ci
105462306a36Sopenharmony_ci		if (optlen > 40)
105562306a36Sopenharmony_ci			goto e_inval;
105662306a36Sopenharmony_ci		err = ip_options_get(sock_net(sk), &opt, optval, optlen);
105762306a36Sopenharmony_ci		if (err)
105862306a36Sopenharmony_ci			break;
105962306a36Sopenharmony_ci		old = rcu_dereference_protected(inet->inet_opt,
106062306a36Sopenharmony_ci						lockdep_sock_is_held(sk));
106162306a36Sopenharmony_ci		if (inet_test_bit(IS_ICSK, sk)) {
106262306a36Sopenharmony_ci			struct inet_connection_sock *icsk = inet_csk(sk);
106362306a36Sopenharmony_ci#if IS_ENABLED(CONFIG_IPV6)
106462306a36Sopenharmony_ci			if (sk->sk_family == PF_INET ||
106562306a36Sopenharmony_ci			    (!((1 << sk->sk_state) &
106662306a36Sopenharmony_ci			       (TCPF_LISTEN | TCPF_CLOSE)) &&
106762306a36Sopenharmony_ci			     inet->inet_daddr != LOOPBACK4_IPV6)) {
106862306a36Sopenharmony_ci#endif
106962306a36Sopenharmony_ci				if (old)
107062306a36Sopenharmony_ci					icsk->icsk_ext_hdr_len -= old->opt.optlen;
107162306a36Sopenharmony_ci				if (opt)
107262306a36Sopenharmony_ci					icsk->icsk_ext_hdr_len += opt->opt.optlen;
107362306a36Sopenharmony_ci				icsk->icsk_sync_mss(sk, icsk->icsk_pmtu_cookie);
107462306a36Sopenharmony_ci#if IS_ENABLED(CONFIG_IPV6)
107562306a36Sopenharmony_ci			}
107662306a36Sopenharmony_ci#endif
107762306a36Sopenharmony_ci		}
107862306a36Sopenharmony_ci		rcu_assign_pointer(inet->inet_opt, opt);
107962306a36Sopenharmony_ci		if (old)
108062306a36Sopenharmony_ci			kfree_rcu(old, rcu);
108162306a36Sopenharmony_ci		break;
108262306a36Sopenharmony_ci	}
108362306a36Sopenharmony_ci	case IP_CHECKSUM:
108462306a36Sopenharmony_ci		if (val) {
108562306a36Sopenharmony_ci			if (!(inet_test_bit(CHECKSUM, sk))) {
108662306a36Sopenharmony_ci				inet_inc_convert_csum(sk);
108762306a36Sopenharmony_ci				inet_set_bit(CHECKSUM, sk);
108862306a36Sopenharmony_ci			}
108962306a36Sopenharmony_ci		} else {
109062306a36Sopenharmony_ci			if (inet_test_bit(CHECKSUM, sk)) {
109162306a36Sopenharmony_ci				inet_dec_convert_csum(sk);
109262306a36Sopenharmony_ci				inet_clear_bit(CHECKSUM, sk);
109362306a36Sopenharmony_ci			}
109462306a36Sopenharmony_ci		}
109562306a36Sopenharmony_ci		break;
109662306a36Sopenharmony_ci	case IP_TOS:	/* This sets both TOS and Precedence */
109762306a36Sopenharmony_ci		__ip_sock_set_tos(sk, val);
109862306a36Sopenharmony_ci		break;
109962306a36Sopenharmony_ci	case IP_MTU_DISCOVER:
110062306a36Sopenharmony_ci		if (val < IP_PMTUDISC_DONT || val > IP_PMTUDISC_OMIT)
110162306a36Sopenharmony_ci			goto e_inval;
110262306a36Sopenharmony_ci		inet->pmtudisc = val;
110362306a36Sopenharmony_ci		break;
110462306a36Sopenharmony_ci	case IP_MULTICAST_TTL:
110562306a36Sopenharmony_ci		if (sk->sk_type == SOCK_STREAM)
110662306a36Sopenharmony_ci			goto e_inval;
110762306a36Sopenharmony_ci		if (optlen < 1)
110862306a36Sopenharmony_ci			goto e_inval;
110962306a36Sopenharmony_ci		if (val == -1)
111062306a36Sopenharmony_ci			val = 1;
111162306a36Sopenharmony_ci		if (val < 0 || val > 255)
111262306a36Sopenharmony_ci			goto e_inval;
111362306a36Sopenharmony_ci		inet->mc_ttl = val;
111462306a36Sopenharmony_ci		break;
111562306a36Sopenharmony_ci	case IP_UNICAST_IF:
111662306a36Sopenharmony_ci	{
111762306a36Sopenharmony_ci		struct net_device *dev = NULL;
111862306a36Sopenharmony_ci		int ifindex;
111962306a36Sopenharmony_ci		int midx;
112062306a36Sopenharmony_ci
112162306a36Sopenharmony_ci		if (optlen != sizeof(int))
112262306a36Sopenharmony_ci			goto e_inval;
112362306a36Sopenharmony_ci
112462306a36Sopenharmony_ci		ifindex = (__force int)ntohl((__force __be32)val);
112562306a36Sopenharmony_ci		if (ifindex == 0) {
112662306a36Sopenharmony_ci			inet->uc_index = 0;
112762306a36Sopenharmony_ci			err = 0;
112862306a36Sopenharmony_ci			break;
112962306a36Sopenharmony_ci		}
113062306a36Sopenharmony_ci
113162306a36Sopenharmony_ci		dev = dev_get_by_index(sock_net(sk), ifindex);
113262306a36Sopenharmony_ci		err = -EADDRNOTAVAIL;
113362306a36Sopenharmony_ci		if (!dev)
113462306a36Sopenharmony_ci			break;
113562306a36Sopenharmony_ci
113662306a36Sopenharmony_ci		midx = l3mdev_master_ifindex(dev);
113762306a36Sopenharmony_ci		dev_put(dev);
113862306a36Sopenharmony_ci
113962306a36Sopenharmony_ci		err = -EINVAL;
114062306a36Sopenharmony_ci		if (sk->sk_bound_dev_if && midx != sk->sk_bound_dev_if)
114162306a36Sopenharmony_ci			break;
114262306a36Sopenharmony_ci
114362306a36Sopenharmony_ci		inet->uc_index = ifindex;
114462306a36Sopenharmony_ci		err = 0;
114562306a36Sopenharmony_ci		break;
114662306a36Sopenharmony_ci	}
114762306a36Sopenharmony_ci	case IP_MULTICAST_IF:
114862306a36Sopenharmony_ci	{
114962306a36Sopenharmony_ci		struct ip_mreqn mreq;
115062306a36Sopenharmony_ci		struct net_device *dev = NULL;
115162306a36Sopenharmony_ci		int midx;
115262306a36Sopenharmony_ci
115362306a36Sopenharmony_ci		if (sk->sk_type == SOCK_STREAM)
115462306a36Sopenharmony_ci			goto e_inval;
115562306a36Sopenharmony_ci		/*
115662306a36Sopenharmony_ci		 *	Check the arguments are allowable
115762306a36Sopenharmony_ci		 */
115862306a36Sopenharmony_ci
115962306a36Sopenharmony_ci		if (optlen < sizeof(struct in_addr))
116062306a36Sopenharmony_ci			goto e_inval;
116162306a36Sopenharmony_ci
116262306a36Sopenharmony_ci		err = -EFAULT;
116362306a36Sopenharmony_ci		if (optlen >= sizeof(struct ip_mreqn)) {
116462306a36Sopenharmony_ci			if (copy_from_sockptr(&mreq, optval, sizeof(mreq)))
116562306a36Sopenharmony_ci				break;
116662306a36Sopenharmony_ci		} else {
116762306a36Sopenharmony_ci			memset(&mreq, 0, sizeof(mreq));
116862306a36Sopenharmony_ci			if (optlen >= sizeof(struct ip_mreq)) {
116962306a36Sopenharmony_ci				if (copy_from_sockptr(&mreq, optval,
117062306a36Sopenharmony_ci						      sizeof(struct ip_mreq)))
117162306a36Sopenharmony_ci					break;
117262306a36Sopenharmony_ci			} else if (optlen >= sizeof(struct in_addr)) {
117362306a36Sopenharmony_ci				if (copy_from_sockptr(&mreq.imr_address, optval,
117462306a36Sopenharmony_ci						      sizeof(struct in_addr)))
117562306a36Sopenharmony_ci					break;
117662306a36Sopenharmony_ci			}
117762306a36Sopenharmony_ci		}
117862306a36Sopenharmony_ci
117962306a36Sopenharmony_ci		if (!mreq.imr_ifindex) {
118062306a36Sopenharmony_ci			if (mreq.imr_address.s_addr == htonl(INADDR_ANY)) {
118162306a36Sopenharmony_ci				inet->mc_index = 0;
118262306a36Sopenharmony_ci				inet->mc_addr  = 0;
118362306a36Sopenharmony_ci				err = 0;
118462306a36Sopenharmony_ci				break;
118562306a36Sopenharmony_ci			}
118662306a36Sopenharmony_ci			dev = ip_dev_find(sock_net(sk), mreq.imr_address.s_addr);
118762306a36Sopenharmony_ci			if (dev)
118862306a36Sopenharmony_ci				mreq.imr_ifindex = dev->ifindex;
118962306a36Sopenharmony_ci		} else
119062306a36Sopenharmony_ci			dev = dev_get_by_index(sock_net(sk), mreq.imr_ifindex);
119162306a36Sopenharmony_ci
119262306a36Sopenharmony_ci
119362306a36Sopenharmony_ci		err = -EADDRNOTAVAIL;
119462306a36Sopenharmony_ci		if (!dev)
119562306a36Sopenharmony_ci			break;
119662306a36Sopenharmony_ci
119762306a36Sopenharmony_ci		midx = l3mdev_master_ifindex(dev);
119862306a36Sopenharmony_ci
119962306a36Sopenharmony_ci		dev_put(dev);
120062306a36Sopenharmony_ci
120162306a36Sopenharmony_ci		err = -EINVAL;
120262306a36Sopenharmony_ci		if (sk->sk_bound_dev_if &&
120362306a36Sopenharmony_ci		    mreq.imr_ifindex != sk->sk_bound_dev_if &&
120462306a36Sopenharmony_ci		    midx != sk->sk_bound_dev_if)
120562306a36Sopenharmony_ci			break;
120662306a36Sopenharmony_ci
120762306a36Sopenharmony_ci		inet->mc_index = mreq.imr_ifindex;
120862306a36Sopenharmony_ci		inet->mc_addr  = mreq.imr_address.s_addr;
120962306a36Sopenharmony_ci		err = 0;
121062306a36Sopenharmony_ci		break;
121162306a36Sopenharmony_ci	}
121262306a36Sopenharmony_ci
121362306a36Sopenharmony_ci	case IP_ADD_MEMBERSHIP:
121462306a36Sopenharmony_ci	case IP_DROP_MEMBERSHIP:
121562306a36Sopenharmony_ci	{
121662306a36Sopenharmony_ci		struct ip_mreqn mreq;
121762306a36Sopenharmony_ci
121862306a36Sopenharmony_ci		err = -EPROTO;
121962306a36Sopenharmony_ci		if (inet_test_bit(IS_ICSK, sk))
122062306a36Sopenharmony_ci			break;
122162306a36Sopenharmony_ci
122262306a36Sopenharmony_ci		if (optlen < sizeof(struct ip_mreq))
122362306a36Sopenharmony_ci			goto e_inval;
122462306a36Sopenharmony_ci		err = -EFAULT;
122562306a36Sopenharmony_ci		if (optlen >= sizeof(struct ip_mreqn)) {
122662306a36Sopenharmony_ci			if (copy_from_sockptr(&mreq, optval, sizeof(mreq)))
122762306a36Sopenharmony_ci				break;
122862306a36Sopenharmony_ci		} else {
122962306a36Sopenharmony_ci			memset(&mreq, 0, sizeof(mreq));
123062306a36Sopenharmony_ci			if (copy_from_sockptr(&mreq, optval,
123162306a36Sopenharmony_ci					      sizeof(struct ip_mreq)))
123262306a36Sopenharmony_ci				break;
123362306a36Sopenharmony_ci		}
123462306a36Sopenharmony_ci
123562306a36Sopenharmony_ci		if (optname == IP_ADD_MEMBERSHIP)
123662306a36Sopenharmony_ci			err = ip_mc_join_group(sk, &mreq);
123762306a36Sopenharmony_ci		else
123862306a36Sopenharmony_ci			err = ip_mc_leave_group(sk, &mreq);
123962306a36Sopenharmony_ci		break;
124062306a36Sopenharmony_ci	}
124162306a36Sopenharmony_ci	case IP_MSFILTER:
124262306a36Sopenharmony_ci	{
124362306a36Sopenharmony_ci		struct ip_msfilter *msf;
124462306a36Sopenharmony_ci
124562306a36Sopenharmony_ci		if (optlen < IP_MSFILTER_SIZE(0))
124662306a36Sopenharmony_ci			goto e_inval;
124762306a36Sopenharmony_ci		if (optlen > READ_ONCE(sysctl_optmem_max)) {
124862306a36Sopenharmony_ci			err = -ENOBUFS;
124962306a36Sopenharmony_ci			break;
125062306a36Sopenharmony_ci		}
125162306a36Sopenharmony_ci		msf = memdup_sockptr(optval, optlen);
125262306a36Sopenharmony_ci		if (IS_ERR(msf)) {
125362306a36Sopenharmony_ci			err = PTR_ERR(msf);
125462306a36Sopenharmony_ci			break;
125562306a36Sopenharmony_ci		}
125662306a36Sopenharmony_ci		/* numsrc >= (1G-4) overflow in 32 bits */
125762306a36Sopenharmony_ci		if (msf->imsf_numsrc >= 0x3ffffffcU ||
125862306a36Sopenharmony_ci		    msf->imsf_numsrc > READ_ONCE(net->ipv4.sysctl_igmp_max_msf)) {
125962306a36Sopenharmony_ci			kfree(msf);
126062306a36Sopenharmony_ci			err = -ENOBUFS;
126162306a36Sopenharmony_ci			break;
126262306a36Sopenharmony_ci		}
126362306a36Sopenharmony_ci		if (IP_MSFILTER_SIZE(msf->imsf_numsrc) > optlen) {
126462306a36Sopenharmony_ci			kfree(msf);
126562306a36Sopenharmony_ci			err = -EINVAL;
126662306a36Sopenharmony_ci			break;
126762306a36Sopenharmony_ci		}
126862306a36Sopenharmony_ci		err = ip_mc_msfilter(sk, msf, 0);
126962306a36Sopenharmony_ci		kfree(msf);
127062306a36Sopenharmony_ci		break;
127162306a36Sopenharmony_ci	}
127262306a36Sopenharmony_ci	case IP_BLOCK_SOURCE:
127362306a36Sopenharmony_ci	case IP_UNBLOCK_SOURCE:
127462306a36Sopenharmony_ci	case IP_ADD_SOURCE_MEMBERSHIP:
127562306a36Sopenharmony_ci	case IP_DROP_SOURCE_MEMBERSHIP:
127662306a36Sopenharmony_ci	{
127762306a36Sopenharmony_ci		struct ip_mreq_source mreqs;
127862306a36Sopenharmony_ci		int omode, add;
127962306a36Sopenharmony_ci
128062306a36Sopenharmony_ci		if (optlen != sizeof(struct ip_mreq_source))
128162306a36Sopenharmony_ci			goto e_inval;
128262306a36Sopenharmony_ci		if (copy_from_sockptr(&mreqs, optval, sizeof(mreqs))) {
128362306a36Sopenharmony_ci			err = -EFAULT;
128462306a36Sopenharmony_ci			break;
128562306a36Sopenharmony_ci		}
128662306a36Sopenharmony_ci		if (optname == IP_BLOCK_SOURCE) {
128762306a36Sopenharmony_ci			omode = MCAST_EXCLUDE;
128862306a36Sopenharmony_ci			add = 1;
128962306a36Sopenharmony_ci		} else if (optname == IP_UNBLOCK_SOURCE) {
129062306a36Sopenharmony_ci			omode = MCAST_EXCLUDE;
129162306a36Sopenharmony_ci			add = 0;
129262306a36Sopenharmony_ci		} else if (optname == IP_ADD_SOURCE_MEMBERSHIP) {
129362306a36Sopenharmony_ci			struct ip_mreqn mreq;
129462306a36Sopenharmony_ci
129562306a36Sopenharmony_ci			mreq.imr_multiaddr.s_addr = mreqs.imr_multiaddr;
129662306a36Sopenharmony_ci			mreq.imr_address.s_addr = mreqs.imr_interface;
129762306a36Sopenharmony_ci			mreq.imr_ifindex = 0;
129862306a36Sopenharmony_ci			err = ip_mc_join_group_ssm(sk, &mreq, MCAST_INCLUDE);
129962306a36Sopenharmony_ci			if (err && err != -EADDRINUSE)
130062306a36Sopenharmony_ci				break;
130162306a36Sopenharmony_ci			omode = MCAST_INCLUDE;
130262306a36Sopenharmony_ci			add = 1;
130362306a36Sopenharmony_ci		} else /* IP_DROP_SOURCE_MEMBERSHIP */ {
130462306a36Sopenharmony_ci			omode = MCAST_INCLUDE;
130562306a36Sopenharmony_ci			add = 0;
130662306a36Sopenharmony_ci		}
130762306a36Sopenharmony_ci		err = ip_mc_source(add, omode, sk, &mreqs, 0);
130862306a36Sopenharmony_ci		break;
130962306a36Sopenharmony_ci	}
131062306a36Sopenharmony_ci	case MCAST_JOIN_GROUP:
131162306a36Sopenharmony_ci	case MCAST_LEAVE_GROUP:
131262306a36Sopenharmony_ci		if (in_compat_syscall())
131362306a36Sopenharmony_ci			err = compat_ip_mcast_join_leave(sk, optname, optval,
131462306a36Sopenharmony_ci							 optlen);
131562306a36Sopenharmony_ci		else
131662306a36Sopenharmony_ci			err = ip_mcast_join_leave(sk, optname, optval, optlen);
131762306a36Sopenharmony_ci		break;
131862306a36Sopenharmony_ci	case MCAST_JOIN_SOURCE_GROUP:
131962306a36Sopenharmony_ci	case MCAST_LEAVE_SOURCE_GROUP:
132062306a36Sopenharmony_ci	case MCAST_BLOCK_SOURCE:
132162306a36Sopenharmony_ci	case MCAST_UNBLOCK_SOURCE:
132262306a36Sopenharmony_ci		err = do_mcast_group_source(sk, optname, optval, optlen);
132362306a36Sopenharmony_ci		break;
132462306a36Sopenharmony_ci	case MCAST_MSFILTER:
132562306a36Sopenharmony_ci		if (in_compat_syscall())
132662306a36Sopenharmony_ci			err = compat_ip_set_mcast_msfilter(sk, optval, optlen);
132762306a36Sopenharmony_ci		else
132862306a36Sopenharmony_ci			err = ip_set_mcast_msfilter(sk, optval, optlen);
132962306a36Sopenharmony_ci		break;
133062306a36Sopenharmony_ci	case IP_IPSEC_POLICY:
133162306a36Sopenharmony_ci	case IP_XFRM_POLICY:
133262306a36Sopenharmony_ci		err = -EPERM;
133362306a36Sopenharmony_ci		if (!sockopt_ns_capable(sock_net(sk)->user_ns, CAP_NET_ADMIN))
133462306a36Sopenharmony_ci			break;
133562306a36Sopenharmony_ci		err = xfrm_user_policy(sk, optname, optval, optlen);
133662306a36Sopenharmony_ci		break;
133762306a36Sopenharmony_ci
133862306a36Sopenharmony_ci	case IP_LOCAL_PORT_RANGE:
133962306a36Sopenharmony_ci	{
134062306a36Sopenharmony_ci		const __u16 lo = val;
134162306a36Sopenharmony_ci		const __u16 hi = val >> 16;
134262306a36Sopenharmony_ci
134362306a36Sopenharmony_ci		if (optlen != sizeof(__u32))
134462306a36Sopenharmony_ci			goto e_inval;
134562306a36Sopenharmony_ci		if (lo != 0 && hi != 0 && lo > hi)
134662306a36Sopenharmony_ci			goto e_inval;
134762306a36Sopenharmony_ci
134862306a36Sopenharmony_ci		inet->local_port_range.lo = lo;
134962306a36Sopenharmony_ci		inet->local_port_range.hi = hi;
135062306a36Sopenharmony_ci		break;
135162306a36Sopenharmony_ci	}
135262306a36Sopenharmony_ci	default:
135362306a36Sopenharmony_ci		err = -ENOPROTOOPT;
135462306a36Sopenharmony_ci		break;
135562306a36Sopenharmony_ci	}
135662306a36Sopenharmony_ci	sockopt_release_sock(sk);
135762306a36Sopenharmony_ci	if (needs_rtnl)
135862306a36Sopenharmony_ci		rtnl_unlock();
135962306a36Sopenharmony_ci	return err;
136062306a36Sopenharmony_ci
136162306a36Sopenharmony_cie_inval:
136262306a36Sopenharmony_ci	sockopt_release_sock(sk);
136362306a36Sopenharmony_ci	if (needs_rtnl)
136462306a36Sopenharmony_ci		rtnl_unlock();
136562306a36Sopenharmony_ci	return -EINVAL;
136662306a36Sopenharmony_ci}
136762306a36Sopenharmony_ci
136862306a36Sopenharmony_ci/**
136962306a36Sopenharmony_ci * ipv4_pktinfo_prepare - transfer some info from rtable to skb
137062306a36Sopenharmony_ci * @sk: socket
137162306a36Sopenharmony_ci * @skb: buffer
137262306a36Sopenharmony_ci * @drop_dst: if true, drops skb dst
137362306a36Sopenharmony_ci *
137462306a36Sopenharmony_ci * To support IP_CMSG_PKTINFO option, we store rt_iif and specific
137562306a36Sopenharmony_ci * destination in skb->cb[] before dst drop.
137662306a36Sopenharmony_ci * This way, receiver doesn't make cache line misses to read rtable.
137762306a36Sopenharmony_ci */
137862306a36Sopenharmony_civoid ipv4_pktinfo_prepare(const struct sock *sk, struct sk_buff *skb, bool drop_dst)
137962306a36Sopenharmony_ci{
138062306a36Sopenharmony_ci	struct in_pktinfo *pktinfo = PKTINFO_SKB_CB(skb);
138162306a36Sopenharmony_ci	bool prepare = inet_test_bit(PKTINFO, sk) ||
138262306a36Sopenharmony_ci		       ipv6_sk_rxinfo(sk);
138362306a36Sopenharmony_ci
138462306a36Sopenharmony_ci	if (prepare && skb_rtable(skb)) {
138562306a36Sopenharmony_ci		/* skb->cb is overloaded: prior to this point it is IP{6}CB
138662306a36Sopenharmony_ci		 * which has interface index (iif) as the first member of the
138762306a36Sopenharmony_ci		 * underlying inet{6}_skb_parm struct. This code then overlays
138862306a36Sopenharmony_ci		 * PKTINFO_SKB_CB and in_pktinfo also has iif as the first
138962306a36Sopenharmony_ci		 * element so the iif is picked up from the prior IPCB. If iif
139062306a36Sopenharmony_ci		 * is the loopback interface, then return the sending interface
139162306a36Sopenharmony_ci		 * (e.g., process binds socket to eth0 for Tx which is
139262306a36Sopenharmony_ci		 * redirected to loopback in the rtable/dst).
139362306a36Sopenharmony_ci		 */
139462306a36Sopenharmony_ci		struct rtable *rt = skb_rtable(skb);
139562306a36Sopenharmony_ci		bool l3slave = ipv4_l3mdev_skb(IPCB(skb)->flags);
139662306a36Sopenharmony_ci
139762306a36Sopenharmony_ci		if (pktinfo->ipi_ifindex == LOOPBACK_IFINDEX)
139862306a36Sopenharmony_ci			pktinfo->ipi_ifindex = inet_iif(skb);
139962306a36Sopenharmony_ci		else if (l3slave && rt && rt->rt_iif)
140062306a36Sopenharmony_ci			pktinfo->ipi_ifindex = rt->rt_iif;
140162306a36Sopenharmony_ci
140262306a36Sopenharmony_ci		pktinfo->ipi_spec_dst.s_addr = fib_compute_spec_dst(skb);
140362306a36Sopenharmony_ci	} else {
140462306a36Sopenharmony_ci		pktinfo->ipi_ifindex = 0;
140562306a36Sopenharmony_ci		pktinfo->ipi_spec_dst.s_addr = 0;
140662306a36Sopenharmony_ci	}
140762306a36Sopenharmony_ci	if (drop_dst)
140862306a36Sopenharmony_ci		skb_dst_drop(skb);
140962306a36Sopenharmony_ci}
141062306a36Sopenharmony_ci
141162306a36Sopenharmony_ciint ip_setsockopt(struct sock *sk, int level, int optname, sockptr_t optval,
141262306a36Sopenharmony_ci		unsigned int optlen)
141362306a36Sopenharmony_ci{
141462306a36Sopenharmony_ci	int err;
141562306a36Sopenharmony_ci
141662306a36Sopenharmony_ci	if (level != SOL_IP)
141762306a36Sopenharmony_ci		return -ENOPROTOOPT;
141862306a36Sopenharmony_ci
141962306a36Sopenharmony_ci	err = do_ip_setsockopt(sk, level, optname, optval, optlen);
142062306a36Sopenharmony_ci#if IS_ENABLED(CONFIG_BPFILTER_UMH)
142162306a36Sopenharmony_ci	if (optname >= BPFILTER_IPT_SO_SET_REPLACE &&
142262306a36Sopenharmony_ci	    optname < BPFILTER_IPT_SET_MAX)
142362306a36Sopenharmony_ci		err = bpfilter_ip_set_sockopt(sk, optname, optval, optlen);
142462306a36Sopenharmony_ci#endif
142562306a36Sopenharmony_ci#ifdef CONFIG_NETFILTER
142662306a36Sopenharmony_ci	/* we need to exclude all possible ENOPROTOOPTs except default case */
142762306a36Sopenharmony_ci	if (err == -ENOPROTOOPT && optname != IP_HDRINCL &&
142862306a36Sopenharmony_ci			optname != IP_IPSEC_POLICY &&
142962306a36Sopenharmony_ci			optname != IP_XFRM_POLICY &&
143062306a36Sopenharmony_ci			!ip_mroute_opt(optname))
143162306a36Sopenharmony_ci		err = nf_setsockopt(sk, PF_INET, optname, optval, optlen);
143262306a36Sopenharmony_ci#endif
143362306a36Sopenharmony_ci	return err;
143462306a36Sopenharmony_ci}
143562306a36Sopenharmony_ciEXPORT_SYMBOL(ip_setsockopt);
143662306a36Sopenharmony_ci
143762306a36Sopenharmony_ci/*
143862306a36Sopenharmony_ci *	Get the options. Note for future reference. The GET of IP options gets
143962306a36Sopenharmony_ci *	the _received_ ones. The set sets the _sent_ ones.
144062306a36Sopenharmony_ci */
144162306a36Sopenharmony_ci
144262306a36Sopenharmony_cistatic bool getsockopt_needs_rtnl(int optname)
144362306a36Sopenharmony_ci{
144462306a36Sopenharmony_ci	switch (optname) {
144562306a36Sopenharmony_ci	case IP_MSFILTER:
144662306a36Sopenharmony_ci	case MCAST_MSFILTER:
144762306a36Sopenharmony_ci		return true;
144862306a36Sopenharmony_ci	}
144962306a36Sopenharmony_ci	return false;
145062306a36Sopenharmony_ci}
145162306a36Sopenharmony_ci
145262306a36Sopenharmony_cistatic int ip_get_mcast_msfilter(struct sock *sk, sockptr_t optval,
145362306a36Sopenharmony_ci				 sockptr_t optlen, int len)
145462306a36Sopenharmony_ci{
145562306a36Sopenharmony_ci	const int size0 = offsetof(struct group_filter, gf_slist_flex);
145662306a36Sopenharmony_ci	struct group_filter gsf;
145762306a36Sopenharmony_ci	int num, gsf_size;
145862306a36Sopenharmony_ci	int err;
145962306a36Sopenharmony_ci
146062306a36Sopenharmony_ci	if (len < size0)
146162306a36Sopenharmony_ci		return -EINVAL;
146262306a36Sopenharmony_ci	if (copy_from_sockptr(&gsf, optval, size0))
146362306a36Sopenharmony_ci		return -EFAULT;
146462306a36Sopenharmony_ci
146562306a36Sopenharmony_ci	num = gsf.gf_numsrc;
146662306a36Sopenharmony_ci	err = ip_mc_gsfget(sk, &gsf, optval,
146762306a36Sopenharmony_ci			   offsetof(struct group_filter, gf_slist_flex));
146862306a36Sopenharmony_ci	if (err)
146962306a36Sopenharmony_ci		return err;
147062306a36Sopenharmony_ci	if (gsf.gf_numsrc < num)
147162306a36Sopenharmony_ci		num = gsf.gf_numsrc;
147262306a36Sopenharmony_ci	gsf_size = GROUP_FILTER_SIZE(num);
147362306a36Sopenharmony_ci	if (copy_to_sockptr(optlen, &gsf_size, sizeof(int)) ||
147462306a36Sopenharmony_ci	    copy_to_sockptr(optval, &gsf, size0))
147562306a36Sopenharmony_ci		return -EFAULT;
147662306a36Sopenharmony_ci	return 0;
147762306a36Sopenharmony_ci}
147862306a36Sopenharmony_ci
147962306a36Sopenharmony_cistatic int compat_ip_get_mcast_msfilter(struct sock *sk, sockptr_t optval,
148062306a36Sopenharmony_ci					sockptr_t optlen, int len)
148162306a36Sopenharmony_ci{
148262306a36Sopenharmony_ci	const int size0 = offsetof(struct compat_group_filter, gf_slist_flex);
148362306a36Sopenharmony_ci	struct compat_group_filter gf32;
148462306a36Sopenharmony_ci	struct group_filter gf;
148562306a36Sopenharmony_ci	int num;
148662306a36Sopenharmony_ci	int err;
148762306a36Sopenharmony_ci
148862306a36Sopenharmony_ci	if (len < size0)
148962306a36Sopenharmony_ci		return -EINVAL;
149062306a36Sopenharmony_ci	if (copy_from_sockptr(&gf32, optval, size0))
149162306a36Sopenharmony_ci		return -EFAULT;
149262306a36Sopenharmony_ci
149362306a36Sopenharmony_ci	gf.gf_interface = gf32.gf_interface;
149462306a36Sopenharmony_ci	gf.gf_fmode = gf32.gf_fmode;
149562306a36Sopenharmony_ci	num = gf.gf_numsrc = gf32.gf_numsrc;
149662306a36Sopenharmony_ci	gf.gf_group = gf32.gf_group;
149762306a36Sopenharmony_ci
149862306a36Sopenharmony_ci	err = ip_mc_gsfget(sk, &gf, optval,
149962306a36Sopenharmony_ci			   offsetof(struct compat_group_filter, gf_slist_flex));
150062306a36Sopenharmony_ci	if (err)
150162306a36Sopenharmony_ci		return err;
150262306a36Sopenharmony_ci	if (gf.gf_numsrc < num)
150362306a36Sopenharmony_ci		num = gf.gf_numsrc;
150462306a36Sopenharmony_ci	len = GROUP_FILTER_SIZE(num) - (sizeof(gf) - sizeof(gf32));
150562306a36Sopenharmony_ci	if (copy_to_sockptr(optlen, &len, sizeof(int)) ||
150662306a36Sopenharmony_ci	    copy_to_sockptr_offset(optval, offsetof(struct compat_group_filter, gf_fmode),
150762306a36Sopenharmony_ci				   &gf.gf_fmode, sizeof(gf.gf_fmode)) ||
150862306a36Sopenharmony_ci	    copy_to_sockptr_offset(optval, offsetof(struct compat_group_filter, gf_numsrc),
150962306a36Sopenharmony_ci				   &gf.gf_numsrc, sizeof(gf.gf_numsrc)))
151062306a36Sopenharmony_ci		return -EFAULT;
151162306a36Sopenharmony_ci	return 0;
151262306a36Sopenharmony_ci}
151362306a36Sopenharmony_ci
151462306a36Sopenharmony_ciint do_ip_getsockopt(struct sock *sk, int level, int optname,
151562306a36Sopenharmony_ci		     sockptr_t optval, sockptr_t optlen)
151662306a36Sopenharmony_ci{
151762306a36Sopenharmony_ci	struct inet_sock *inet = inet_sk(sk);
151862306a36Sopenharmony_ci	bool needs_rtnl = getsockopt_needs_rtnl(optname);
151962306a36Sopenharmony_ci	int val, err = 0;
152062306a36Sopenharmony_ci	int len;
152162306a36Sopenharmony_ci
152262306a36Sopenharmony_ci	if (level != SOL_IP)
152362306a36Sopenharmony_ci		return -EOPNOTSUPP;
152462306a36Sopenharmony_ci
152562306a36Sopenharmony_ci	if (ip_mroute_opt(optname))
152662306a36Sopenharmony_ci		return ip_mroute_getsockopt(sk, optname, optval, optlen);
152762306a36Sopenharmony_ci
152862306a36Sopenharmony_ci	if (copy_from_sockptr(&len, optlen, sizeof(int)))
152962306a36Sopenharmony_ci		return -EFAULT;
153062306a36Sopenharmony_ci	if (len < 0)
153162306a36Sopenharmony_ci		return -EINVAL;
153262306a36Sopenharmony_ci
153362306a36Sopenharmony_ci	/* Handle options that can be read without locking the socket. */
153462306a36Sopenharmony_ci	switch (optname) {
153562306a36Sopenharmony_ci	case IP_PKTINFO:
153662306a36Sopenharmony_ci		val = inet_test_bit(PKTINFO, sk);
153762306a36Sopenharmony_ci		goto copyval;
153862306a36Sopenharmony_ci	case IP_RECVTTL:
153962306a36Sopenharmony_ci		val = inet_test_bit(TTL, sk);
154062306a36Sopenharmony_ci		goto copyval;
154162306a36Sopenharmony_ci	case IP_RECVTOS:
154262306a36Sopenharmony_ci		val = inet_test_bit(TOS, sk);
154362306a36Sopenharmony_ci		goto copyval;
154462306a36Sopenharmony_ci	case IP_RECVOPTS:
154562306a36Sopenharmony_ci		val = inet_test_bit(RECVOPTS, sk);
154662306a36Sopenharmony_ci		goto copyval;
154762306a36Sopenharmony_ci	case IP_RETOPTS:
154862306a36Sopenharmony_ci		val = inet_test_bit(RETOPTS, sk);
154962306a36Sopenharmony_ci		goto copyval;
155062306a36Sopenharmony_ci	case IP_PASSSEC:
155162306a36Sopenharmony_ci		val = inet_test_bit(PASSSEC, sk);
155262306a36Sopenharmony_ci		goto copyval;
155362306a36Sopenharmony_ci	case IP_RECVORIGDSTADDR:
155462306a36Sopenharmony_ci		val = inet_test_bit(ORIGDSTADDR, sk);
155562306a36Sopenharmony_ci		goto copyval;
155662306a36Sopenharmony_ci	case IP_CHECKSUM:
155762306a36Sopenharmony_ci		val = inet_test_bit(CHECKSUM, sk);
155862306a36Sopenharmony_ci		goto copyval;
155962306a36Sopenharmony_ci	case IP_RECVFRAGSIZE:
156062306a36Sopenharmony_ci		val = inet_test_bit(RECVFRAGSIZE, sk);
156162306a36Sopenharmony_ci		goto copyval;
156262306a36Sopenharmony_ci	case IP_RECVERR:
156362306a36Sopenharmony_ci		val = inet_test_bit(RECVERR, sk);
156462306a36Sopenharmony_ci		goto copyval;
156562306a36Sopenharmony_ci	case IP_RECVERR_RFC4884:
156662306a36Sopenharmony_ci		val = inet_test_bit(RECVERR_RFC4884, sk);
156762306a36Sopenharmony_ci		goto copyval;
156862306a36Sopenharmony_ci	case IP_FREEBIND:
156962306a36Sopenharmony_ci		val = inet_test_bit(FREEBIND, sk);
157062306a36Sopenharmony_ci		goto copyval;
157162306a36Sopenharmony_ci	case IP_HDRINCL:
157262306a36Sopenharmony_ci		val = inet_test_bit(HDRINCL, sk);
157362306a36Sopenharmony_ci		goto copyval;
157462306a36Sopenharmony_ci	case IP_MULTICAST_LOOP:
157562306a36Sopenharmony_ci		val = inet_test_bit(MC_LOOP, sk);
157662306a36Sopenharmony_ci		goto copyval;
157762306a36Sopenharmony_ci	case IP_MULTICAST_ALL:
157862306a36Sopenharmony_ci		val = inet_test_bit(MC_ALL, sk);
157962306a36Sopenharmony_ci		goto copyval;
158062306a36Sopenharmony_ci	case IP_TRANSPARENT:
158162306a36Sopenharmony_ci		val = inet_test_bit(TRANSPARENT, sk);
158262306a36Sopenharmony_ci		goto copyval;
158362306a36Sopenharmony_ci	case IP_NODEFRAG:
158462306a36Sopenharmony_ci		val = inet_test_bit(NODEFRAG, sk);
158562306a36Sopenharmony_ci		goto copyval;
158662306a36Sopenharmony_ci	case IP_BIND_ADDRESS_NO_PORT:
158762306a36Sopenharmony_ci		val = inet_test_bit(BIND_ADDRESS_NO_PORT, sk);
158862306a36Sopenharmony_ci		goto copyval;
158962306a36Sopenharmony_ci	case IP_TTL:
159062306a36Sopenharmony_ci		val = READ_ONCE(inet->uc_ttl);
159162306a36Sopenharmony_ci		if (val < 0)
159262306a36Sopenharmony_ci			val = READ_ONCE(sock_net(sk)->ipv4.sysctl_ip_default_ttl);
159362306a36Sopenharmony_ci		goto copyval;
159462306a36Sopenharmony_ci	case IP_MINTTL:
159562306a36Sopenharmony_ci		val = READ_ONCE(inet->min_ttl);
159662306a36Sopenharmony_ci		goto copyval;
159762306a36Sopenharmony_ci	}
159862306a36Sopenharmony_ci
159962306a36Sopenharmony_ci	if (needs_rtnl)
160062306a36Sopenharmony_ci		rtnl_lock();
160162306a36Sopenharmony_ci	sockopt_lock_sock(sk);
160262306a36Sopenharmony_ci
160362306a36Sopenharmony_ci	switch (optname) {
160462306a36Sopenharmony_ci	case IP_OPTIONS:
160562306a36Sopenharmony_ci	{
160662306a36Sopenharmony_ci		unsigned char optbuf[sizeof(struct ip_options)+40];
160762306a36Sopenharmony_ci		struct ip_options *opt = (struct ip_options *)optbuf;
160862306a36Sopenharmony_ci		struct ip_options_rcu *inet_opt;
160962306a36Sopenharmony_ci
161062306a36Sopenharmony_ci		inet_opt = rcu_dereference_protected(inet->inet_opt,
161162306a36Sopenharmony_ci						     lockdep_sock_is_held(sk));
161262306a36Sopenharmony_ci		opt->optlen = 0;
161362306a36Sopenharmony_ci		if (inet_opt)
161462306a36Sopenharmony_ci			memcpy(optbuf, &inet_opt->opt,
161562306a36Sopenharmony_ci			       sizeof(struct ip_options) +
161662306a36Sopenharmony_ci			       inet_opt->opt.optlen);
161762306a36Sopenharmony_ci		sockopt_release_sock(sk);
161862306a36Sopenharmony_ci
161962306a36Sopenharmony_ci		if (opt->optlen == 0) {
162062306a36Sopenharmony_ci			len = 0;
162162306a36Sopenharmony_ci			return copy_to_sockptr(optlen, &len, sizeof(int));
162262306a36Sopenharmony_ci		}
162362306a36Sopenharmony_ci
162462306a36Sopenharmony_ci		ip_options_undo(opt);
162562306a36Sopenharmony_ci
162662306a36Sopenharmony_ci		len = min_t(unsigned int, len, opt->optlen);
162762306a36Sopenharmony_ci		if (copy_to_sockptr(optlen, &len, sizeof(int)))
162862306a36Sopenharmony_ci			return -EFAULT;
162962306a36Sopenharmony_ci		if (copy_to_sockptr(optval, opt->__data, len))
163062306a36Sopenharmony_ci			return -EFAULT;
163162306a36Sopenharmony_ci		return 0;
163262306a36Sopenharmony_ci	}
163362306a36Sopenharmony_ci	case IP_TOS:
163462306a36Sopenharmony_ci		val = inet->tos;
163562306a36Sopenharmony_ci		break;
163662306a36Sopenharmony_ci	case IP_MTU_DISCOVER:
163762306a36Sopenharmony_ci		val = inet->pmtudisc;
163862306a36Sopenharmony_ci		break;
163962306a36Sopenharmony_ci	case IP_MTU:
164062306a36Sopenharmony_ci	{
164162306a36Sopenharmony_ci		struct dst_entry *dst;
164262306a36Sopenharmony_ci		val = 0;
164362306a36Sopenharmony_ci		dst = sk_dst_get(sk);
164462306a36Sopenharmony_ci		if (dst) {
164562306a36Sopenharmony_ci			val = dst_mtu(dst);
164662306a36Sopenharmony_ci			dst_release(dst);
164762306a36Sopenharmony_ci		}
164862306a36Sopenharmony_ci		if (!val) {
164962306a36Sopenharmony_ci			sockopt_release_sock(sk);
165062306a36Sopenharmony_ci			return -ENOTCONN;
165162306a36Sopenharmony_ci		}
165262306a36Sopenharmony_ci		break;
165362306a36Sopenharmony_ci	}
165462306a36Sopenharmony_ci	case IP_MULTICAST_TTL:
165562306a36Sopenharmony_ci		val = inet->mc_ttl;
165662306a36Sopenharmony_ci		break;
165762306a36Sopenharmony_ci	case IP_UNICAST_IF:
165862306a36Sopenharmony_ci		val = (__force int)htonl((__u32) inet->uc_index);
165962306a36Sopenharmony_ci		break;
166062306a36Sopenharmony_ci	case IP_MULTICAST_IF:
166162306a36Sopenharmony_ci	{
166262306a36Sopenharmony_ci		struct in_addr addr;
166362306a36Sopenharmony_ci		len = min_t(unsigned int, len, sizeof(struct in_addr));
166462306a36Sopenharmony_ci		addr.s_addr = inet->mc_addr;
166562306a36Sopenharmony_ci		sockopt_release_sock(sk);
166662306a36Sopenharmony_ci
166762306a36Sopenharmony_ci		if (copy_to_sockptr(optlen, &len, sizeof(int)))
166862306a36Sopenharmony_ci			return -EFAULT;
166962306a36Sopenharmony_ci		if (copy_to_sockptr(optval, &addr, len))
167062306a36Sopenharmony_ci			return -EFAULT;
167162306a36Sopenharmony_ci		return 0;
167262306a36Sopenharmony_ci	}
167362306a36Sopenharmony_ci	case IP_MSFILTER:
167462306a36Sopenharmony_ci	{
167562306a36Sopenharmony_ci		struct ip_msfilter msf;
167662306a36Sopenharmony_ci
167762306a36Sopenharmony_ci		if (len < IP_MSFILTER_SIZE(0)) {
167862306a36Sopenharmony_ci			err = -EINVAL;
167962306a36Sopenharmony_ci			goto out;
168062306a36Sopenharmony_ci		}
168162306a36Sopenharmony_ci		if (copy_from_sockptr(&msf, optval, IP_MSFILTER_SIZE(0))) {
168262306a36Sopenharmony_ci			err = -EFAULT;
168362306a36Sopenharmony_ci			goto out;
168462306a36Sopenharmony_ci		}
168562306a36Sopenharmony_ci		err = ip_mc_msfget(sk, &msf, optval, optlen);
168662306a36Sopenharmony_ci		goto out;
168762306a36Sopenharmony_ci	}
168862306a36Sopenharmony_ci	case MCAST_MSFILTER:
168962306a36Sopenharmony_ci		if (in_compat_syscall())
169062306a36Sopenharmony_ci			err = compat_ip_get_mcast_msfilter(sk, optval, optlen,
169162306a36Sopenharmony_ci							   len);
169262306a36Sopenharmony_ci		else
169362306a36Sopenharmony_ci			err = ip_get_mcast_msfilter(sk, optval, optlen, len);
169462306a36Sopenharmony_ci		goto out;
169562306a36Sopenharmony_ci	case IP_PKTOPTIONS:
169662306a36Sopenharmony_ci	{
169762306a36Sopenharmony_ci		struct msghdr msg;
169862306a36Sopenharmony_ci
169962306a36Sopenharmony_ci		sockopt_release_sock(sk);
170062306a36Sopenharmony_ci
170162306a36Sopenharmony_ci		if (sk->sk_type != SOCK_STREAM)
170262306a36Sopenharmony_ci			return -ENOPROTOOPT;
170362306a36Sopenharmony_ci
170462306a36Sopenharmony_ci		if (optval.is_kernel) {
170562306a36Sopenharmony_ci			msg.msg_control_is_user = false;
170662306a36Sopenharmony_ci			msg.msg_control = optval.kernel;
170762306a36Sopenharmony_ci		} else {
170862306a36Sopenharmony_ci			msg.msg_control_is_user = true;
170962306a36Sopenharmony_ci			msg.msg_control_user = optval.user;
171062306a36Sopenharmony_ci		}
171162306a36Sopenharmony_ci		msg.msg_controllen = len;
171262306a36Sopenharmony_ci		msg.msg_flags = in_compat_syscall() ? MSG_CMSG_COMPAT : 0;
171362306a36Sopenharmony_ci
171462306a36Sopenharmony_ci		if (inet_test_bit(PKTINFO, sk)) {
171562306a36Sopenharmony_ci			struct in_pktinfo info;
171662306a36Sopenharmony_ci
171762306a36Sopenharmony_ci			info.ipi_addr.s_addr = inet->inet_rcv_saddr;
171862306a36Sopenharmony_ci			info.ipi_spec_dst.s_addr = inet->inet_rcv_saddr;
171962306a36Sopenharmony_ci			info.ipi_ifindex = inet->mc_index;
172062306a36Sopenharmony_ci			put_cmsg(&msg, SOL_IP, IP_PKTINFO, sizeof(info), &info);
172162306a36Sopenharmony_ci		}
172262306a36Sopenharmony_ci		if (inet_test_bit(TTL, sk)) {
172362306a36Sopenharmony_ci			int hlim = inet->mc_ttl;
172462306a36Sopenharmony_ci			put_cmsg(&msg, SOL_IP, IP_TTL, sizeof(hlim), &hlim);
172562306a36Sopenharmony_ci		}
172662306a36Sopenharmony_ci		if (inet_test_bit(TOS, sk)) {
172762306a36Sopenharmony_ci			int tos = inet->rcv_tos;
172862306a36Sopenharmony_ci			put_cmsg(&msg, SOL_IP, IP_TOS, sizeof(tos), &tos);
172962306a36Sopenharmony_ci		}
173062306a36Sopenharmony_ci		len -= msg.msg_controllen;
173162306a36Sopenharmony_ci		return copy_to_sockptr(optlen, &len, sizeof(int));
173262306a36Sopenharmony_ci	}
173362306a36Sopenharmony_ci	case IP_LOCAL_PORT_RANGE:
173462306a36Sopenharmony_ci		val = inet->local_port_range.hi << 16 | inet->local_port_range.lo;
173562306a36Sopenharmony_ci		break;
173662306a36Sopenharmony_ci	case IP_PROTOCOL:
173762306a36Sopenharmony_ci		val = inet_sk(sk)->inet_num;
173862306a36Sopenharmony_ci		break;
173962306a36Sopenharmony_ci	default:
174062306a36Sopenharmony_ci		sockopt_release_sock(sk);
174162306a36Sopenharmony_ci		return -ENOPROTOOPT;
174262306a36Sopenharmony_ci	}
174362306a36Sopenharmony_ci	sockopt_release_sock(sk);
174462306a36Sopenharmony_cicopyval:
174562306a36Sopenharmony_ci	if (len < sizeof(int) && len > 0 && val >= 0 && val <= 255) {
174662306a36Sopenharmony_ci		unsigned char ucval = (unsigned char)val;
174762306a36Sopenharmony_ci		len = 1;
174862306a36Sopenharmony_ci		if (copy_to_sockptr(optlen, &len, sizeof(int)))
174962306a36Sopenharmony_ci			return -EFAULT;
175062306a36Sopenharmony_ci		if (copy_to_sockptr(optval, &ucval, 1))
175162306a36Sopenharmony_ci			return -EFAULT;
175262306a36Sopenharmony_ci	} else {
175362306a36Sopenharmony_ci		len = min_t(unsigned int, sizeof(int), len);
175462306a36Sopenharmony_ci		if (copy_to_sockptr(optlen, &len, sizeof(int)))
175562306a36Sopenharmony_ci			return -EFAULT;
175662306a36Sopenharmony_ci		if (copy_to_sockptr(optval, &val, len))
175762306a36Sopenharmony_ci			return -EFAULT;
175862306a36Sopenharmony_ci	}
175962306a36Sopenharmony_ci	return 0;
176062306a36Sopenharmony_ci
176162306a36Sopenharmony_ciout:
176262306a36Sopenharmony_ci	sockopt_release_sock(sk);
176362306a36Sopenharmony_ci	if (needs_rtnl)
176462306a36Sopenharmony_ci		rtnl_unlock();
176562306a36Sopenharmony_ci	return err;
176662306a36Sopenharmony_ci}
176762306a36Sopenharmony_ci
176862306a36Sopenharmony_ciint ip_getsockopt(struct sock *sk, int level,
176962306a36Sopenharmony_ci		  int optname, char __user *optval, int __user *optlen)
177062306a36Sopenharmony_ci{
177162306a36Sopenharmony_ci	int err;
177262306a36Sopenharmony_ci
177362306a36Sopenharmony_ci	err = do_ip_getsockopt(sk, level, optname,
177462306a36Sopenharmony_ci			       USER_SOCKPTR(optval), USER_SOCKPTR(optlen));
177562306a36Sopenharmony_ci
177662306a36Sopenharmony_ci#if IS_ENABLED(CONFIG_BPFILTER_UMH)
177762306a36Sopenharmony_ci	if (optname >= BPFILTER_IPT_SO_GET_INFO &&
177862306a36Sopenharmony_ci	    optname < BPFILTER_IPT_GET_MAX)
177962306a36Sopenharmony_ci		err = bpfilter_ip_get_sockopt(sk, optname, optval, optlen);
178062306a36Sopenharmony_ci#endif
178162306a36Sopenharmony_ci#ifdef CONFIG_NETFILTER
178262306a36Sopenharmony_ci	/* we need to exclude all possible ENOPROTOOPTs except default case */
178362306a36Sopenharmony_ci	if (err == -ENOPROTOOPT && optname != IP_PKTOPTIONS &&
178462306a36Sopenharmony_ci			!ip_mroute_opt(optname)) {
178562306a36Sopenharmony_ci		int len;
178662306a36Sopenharmony_ci
178762306a36Sopenharmony_ci		if (get_user(len, optlen))
178862306a36Sopenharmony_ci			return -EFAULT;
178962306a36Sopenharmony_ci
179062306a36Sopenharmony_ci		err = nf_getsockopt(sk, PF_INET, optname, optval, &len);
179162306a36Sopenharmony_ci		if (err >= 0)
179262306a36Sopenharmony_ci			err = put_user(len, optlen);
179362306a36Sopenharmony_ci		return err;
179462306a36Sopenharmony_ci	}
179562306a36Sopenharmony_ci#endif
179662306a36Sopenharmony_ci	return err;
179762306a36Sopenharmony_ci}
179862306a36Sopenharmony_ciEXPORT_SYMBOL(ip_getsockopt);
1799