162306a36Sopenharmony_ci// SPDX-License-Identifier: GPL-2.0-or-later
262306a36Sopenharmony_ci/*
362306a36Sopenharmony_ci * INET		An implementation of the TCP/IP protocol suite for the LINUX
462306a36Sopenharmony_ci *		operating system.  INET is implemented using the  BSD Socket
562306a36Sopenharmony_ci *		interface as the means of communication with the user level.
662306a36Sopenharmony_ci *
762306a36Sopenharmony_ci *		"Ping" sockets
862306a36Sopenharmony_ci *
962306a36Sopenharmony_ci * Based on ipv4/ping.c code.
1062306a36Sopenharmony_ci *
1162306a36Sopenharmony_ci * Authors:	Lorenzo Colitti (IPv6 support)
1262306a36Sopenharmony_ci *		Vasiliy Kulikov / Openwall (IPv4 implementation, for Linux 2.6),
1362306a36Sopenharmony_ci *		Pavel Kankovsky (IPv4 implementation, for Linux 2.4.32)
1462306a36Sopenharmony_ci */
1562306a36Sopenharmony_ci
1662306a36Sopenharmony_ci#include <net/addrconf.h>
1762306a36Sopenharmony_ci#include <net/ipv6.h>
1862306a36Sopenharmony_ci#include <net/ip6_route.h>
1962306a36Sopenharmony_ci#include <net/protocol.h>
2062306a36Sopenharmony_ci#include <net/udp.h>
2162306a36Sopenharmony_ci#include <net/transp_v6.h>
2262306a36Sopenharmony_ci#include <linux/proc_fs.h>
2362306a36Sopenharmony_ci#include <linux/bpf-cgroup.h>
2462306a36Sopenharmony_ci#include <net/ping.h>
2562306a36Sopenharmony_ci
2662306a36Sopenharmony_ci/* Compatibility glue so we can support IPv6 when it's compiled as a module */
2762306a36Sopenharmony_cistatic int dummy_ipv6_recv_error(struct sock *sk, struct msghdr *msg, int len,
2862306a36Sopenharmony_ci				 int *addr_len)
2962306a36Sopenharmony_ci{
3062306a36Sopenharmony_ci	return -EAFNOSUPPORT;
3162306a36Sopenharmony_ci}
3262306a36Sopenharmony_cistatic void dummy_ip6_datagram_recv_ctl(struct sock *sk, struct msghdr *msg,
3362306a36Sopenharmony_ci				       struct sk_buff *skb)
3462306a36Sopenharmony_ci{
3562306a36Sopenharmony_ci}
3662306a36Sopenharmony_cistatic int dummy_icmpv6_err_convert(u8 type, u8 code, int *err)
3762306a36Sopenharmony_ci{
3862306a36Sopenharmony_ci	return -EAFNOSUPPORT;
3962306a36Sopenharmony_ci}
4062306a36Sopenharmony_cistatic void dummy_ipv6_icmp_error(struct sock *sk, struct sk_buff *skb, int err,
4162306a36Sopenharmony_ci				  __be16 port, u32 info, u8 *payload) {}
4262306a36Sopenharmony_cistatic int dummy_ipv6_chk_addr(struct net *net, const struct in6_addr *addr,
4362306a36Sopenharmony_ci			       const struct net_device *dev, int strict)
4462306a36Sopenharmony_ci{
4562306a36Sopenharmony_ci	return 0;
4662306a36Sopenharmony_ci}
4762306a36Sopenharmony_ci
4862306a36Sopenharmony_cistatic int ping_v6_pre_connect(struct sock *sk, struct sockaddr *uaddr,
4962306a36Sopenharmony_ci			       int addr_len)
5062306a36Sopenharmony_ci{
5162306a36Sopenharmony_ci	/* This check is replicated from __ip6_datagram_connect() and
5262306a36Sopenharmony_ci	 * intended to prevent BPF program called below from accessing
5362306a36Sopenharmony_ci	 * bytes that are out of the bound specified by user in addr_len.
5462306a36Sopenharmony_ci	 */
5562306a36Sopenharmony_ci
5662306a36Sopenharmony_ci	if (addr_len < SIN6_LEN_RFC2133)
5762306a36Sopenharmony_ci		return -EINVAL;
5862306a36Sopenharmony_ci
5962306a36Sopenharmony_ci	return BPF_CGROUP_RUN_PROG_INET6_CONNECT_LOCK(sk, uaddr, &addr_len);
6062306a36Sopenharmony_ci}
6162306a36Sopenharmony_ci
6262306a36Sopenharmony_cistatic int ping_v6_sendmsg(struct sock *sk, struct msghdr *msg, size_t len)
6362306a36Sopenharmony_ci{
6462306a36Sopenharmony_ci	struct inet_sock *inet = inet_sk(sk);
6562306a36Sopenharmony_ci	struct ipv6_pinfo *np = inet6_sk(sk);
6662306a36Sopenharmony_ci	struct icmp6hdr user_icmph;
6762306a36Sopenharmony_ci	int addr_type;
6862306a36Sopenharmony_ci	struct in6_addr *daddr;
6962306a36Sopenharmony_ci	int oif = 0;
7062306a36Sopenharmony_ci	struct flowi6 fl6;
7162306a36Sopenharmony_ci	int err;
7262306a36Sopenharmony_ci	struct dst_entry *dst;
7362306a36Sopenharmony_ci	struct rt6_info *rt;
7462306a36Sopenharmony_ci	struct pingfakehdr pfh;
7562306a36Sopenharmony_ci	struct ipcm6_cookie ipc6;
7662306a36Sopenharmony_ci
7762306a36Sopenharmony_ci	err = ping_common_sendmsg(AF_INET6, msg, len, &user_icmph,
7862306a36Sopenharmony_ci				  sizeof(user_icmph));
7962306a36Sopenharmony_ci	if (err)
8062306a36Sopenharmony_ci		return err;
8162306a36Sopenharmony_ci
8262306a36Sopenharmony_ci	memset(&fl6, 0, sizeof(fl6));
8362306a36Sopenharmony_ci
8462306a36Sopenharmony_ci	if (msg->msg_name) {
8562306a36Sopenharmony_ci		DECLARE_SOCKADDR(struct sockaddr_in6 *, u, msg->msg_name);
8662306a36Sopenharmony_ci		if (msg->msg_namelen < sizeof(*u))
8762306a36Sopenharmony_ci			return -EINVAL;
8862306a36Sopenharmony_ci		if (u->sin6_family != AF_INET6) {
8962306a36Sopenharmony_ci			return -EAFNOSUPPORT;
9062306a36Sopenharmony_ci		}
9162306a36Sopenharmony_ci		daddr = &(u->sin6_addr);
9262306a36Sopenharmony_ci		if (np->sndflow)
9362306a36Sopenharmony_ci			fl6.flowlabel = u->sin6_flowinfo & IPV6_FLOWINFO_MASK;
9462306a36Sopenharmony_ci		if (__ipv6_addr_needs_scope_id(ipv6_addr_type(daddr)))
9562306a36Sopenharmony_ci			oif = u->sin6_scope_id;
9662306a36Sopenharmony_ci	} else {
9762306a36Sopenharmony_ci		if (sk->sk_state != TCP_ESTABLISHED)
9862306a36Sopenharmony_ci			return -EDESTADDRREQ;
9962306a36Sopenharmony_ci		daddr = &sk->sk_v6_daddr;
10062306a36Sopenharmony_ci		fl6.flowlabel = np->flow_label;
10162306a36Sopenharmony_ci	}
10262306a36Sopenharmony_ci
10362306a36Sopenharmony_ci	if (!oif)
10462306a36Sopenharmony_ci		oif = sk->sk_bound_dev_if;
10562306a36Sopenharmony_ci
10662306a36Sopenharmony_ci	if (!oif)
10762306a36Sopenharmony_ci		oif = np->sticky_pktinfo.ipi6_ifindex;
10862306a36Sopenharmony_ci
10962306a36Sopenharmony_ci	if (!oif && ipv6_addr_is_multicast(daddr))
11062306a36Sopenharmony_ci		oif = np->mcast_oif;
11162306a36Sopenharmony_ci	else if (!oif)
11262306a36Sopenharmony_ci		oif = np->ucast_oif;
11362306a36Sopenharmony_ci
11462306a36Sopenharmony_ci	addr_type = ipv6_addr_type(daddr);
11562306a36Sopenharmony_ci	if ((__ipv6_addr_needs_scope_id(addr_type) && !oif) ||
11662306a36Sopenharmony_ci	    (addr_type & IPV6_ADDR_MAPPED) ||
11762306a36Sopenharmony_ci	    (oif && sk->sk_bound_dev_if && oif != sk->sk_bound_dev_if &&
11862306a36Sopenharmony_ci	     l3mdev_master_ifindex_by_index(sock_net(sk), oif) != sk->sk_bound_dev_if))
11962306a36Sopenharmony_ci		return -EINVAL;
12062306a36Sopenharmony_ci
12162306a36Sopenharmony_ci	ipcm6_init_sk(&ipc6, np);
12262306a36Sopenharmony_ci	ipc6.sockc.tsflags = READ_ONCE(sk->sk_tsflags);
12362306a36Sopenharmony_ci	ipc6.sockc.mark = READ_ONCE(sk->sk_mark);
12462306a36Sopenharmony_ci
12562306a36Sopenharmony_ci	fl6.flowi6_oif = oif;
12662306a36Sopenharmony_ci
12762306a36Sopenharmony_ci	if (msg->msg_controllen) {
12862306a36Sopenharmony_ci		struct ipv6_txoptions opt = {};
12962306a36Sopenharmony_ci
13062306a36Sopenharmony_ci		opt.tot_len = sizeof(opt);
13162306a36Sopenharmony_ci		ipc6.opt = &opt;
13262306a36Sopenharmony_ci
13362306a36Sopenharmony_ci		err = ip6_datagram_send_ctl(sock_net(sk), sk, msg, &fl6, &ipc6);
13462306a36Sopenharmony_ci		if (err < 0)
13562306a36Sopenharmony_ci			return err;
13662306a36Sopenharmony_ci
13762306a36Sopenharmony_ci		/* Changes to txoptions and flow info are not implemented, yet.
13862306a36Sopenharmony_ci		 * Drop the options.
13962306a36Sopenharmony_ci		 */
14062306a36Sopenharmony_ci		ipc6.opt = NULL;
14162306a36Sopenharmony_ci	}
14262306a36Sopenharmony_ci
14362306a36Sopenharmony_ci	fl6.flowi6_proto = IPPROTO_ICMPV6;
14462306a36Sopenharmony_ci	fl6.saddr = np->saddr;
14562306a36Sopenharmony_ci	fl6.daddr = *daddr;
14662306a36Sopenharmony_ci	fl6.flowi6_mark = ipc6.sockc.mark;
14762306a36Sopenharmony_ci	fl6.flowi6_uid = sk->sk_uid;
14862306a36Sopenharmony_ci	fl6.fl6_icmp_type = user_icmph.icmp6_type;
14962306a36Sopenharmony_ci	fl6.fl6_icmp_code = user_icmph.icmp6_code;
15062306a36Sopenharmony_ci	security_sk_classify_flow(sk, flowi6_to_flowi_common(&fl6));
15162306a36Sopenharmony_ci
15262306a36Sopenharmony_ci	fl6.flowlabel = ip6_make_flowinfo(ipc6.tclass, fl6.flowlabel);
15362306a36Sopenharmony_ci
15462306a36Sopenharmony_ci	dst = ip6_sk_dst_lookup_flow(sk, &fl6, daddr, false);
15562306a36Sopenharmony_ci	if (IS_ERR(dst))
15662306a36Sopenharmony_ci		return PTR_ERR(dst);
15762306a36Sopenharmony_ci	rt = (struct rt6_info *) dst;
15862306a36Sopenharmony_ci
15962306a36Sopenharmony_ci	if (!fl6.flowi6_oif && ipv6_addr_is_multicast(&fl6.daddr))
16062306a36Sopenharmony_ci		fl6.flowi6_oif = np->mcast_oif;
16162306a36Sopenharmony_ci	else if (!fl6.flowi6_oif)
16262306a36Sopenharmony_ci		fl6.flowi6_oif = np->ucast_oif;
16362306a36Sopenharmony_ci
16462306a36Sopenharmony_ci	pfh.icmph.type = user_icmph.icmp6_type;
16562306a36Sopenharmony_ci	pfh.icmph.code = user_icmph.icmp6_code;
16662306a36Sopenharmony_ci	pfh.icmph.checksum = 0;
16762306a36Sopenharmony_ci	pfh.icmph.un.echo.id = inet->inet_sport;
16862306a36Sopenharmony_ci	pfh.icmph.un.echo.sequence = user_icmph.icmp6_sequence;
16962306a36Sopenharmony_ci	pfh.msg = msg;
17062306a36Sopenharmony_ci	pfh.wcheck = 0;
17162306a36Sopenharmony_ci	pfh.family = AF_INET6;
17262306a36Sopenharmony_ci
17362306a36Sopenharmony_ci	if (ipc6.hlimit < 0)
17462306a36Sopenharmony_ci		ipc6.hlimit = ip6_sk_dst_hoplimit(np, &fl6, dst);
17562306a36Sopenharmony_ci
17662306a36Sopenharmony_ci	lock_sock(sk);
17762306a36Sopenharmony_ci	err = ip6_append_data(sk, ping_getfrag, &pfh, len,
17862306a36Sopenharmony_ci			      sizeof(struct icmp6hdr), &ipc6, &fl6, rt,
17962306a36Sopenharmony_ci			      MSG_DONTWAIT);
18062306a36Sopenharmony_ci
18162306a36Sopenharmony_ci	if (err) {
18262306a36Sopenharmony_ci		ICMP6_INC_STATS(sock_net(sk), rt->rt6i_idev,
18362306a36Sopenharmony_ci				ICMP6_MIB_OUTERRORS);
18462306a36Sopenharmony_ci		ip6_flush_pending_frames(sk);
18562306a36Sopenharmony_ci	} else {
18662306a36Sopenharmony_ci		icmpv6_push_pending_frames(sk, &fl6,
18762306a36Sopenharmony_ci					   (struct icmp6hdr *)&pfh.icmph, len);
18862306a36Sopenharmony_ci	}
18962306a36Sopenharmony_ci	release_sock(sk);
19062306a36Sopenharmony_ci
19162306a36Sopenharmony_ci	dst_release(dst);
19262306a36Sopenharmony_ci
19362306a36Sopenharmony_ci	if (err)
19462306a36Sopenharmony_ci		return err;
19562306a36Sopenharmony_ci
19662306a36Sopenharmony_ci	return len;
19762306a36Sopenharmony_ci}
19862306a36Sopenharmony_ci
19962306a36Sopenharmony_cistruct proto pingv6_prot = {
20062306a36Sopenharmony_ci	.name =		"PINGv6",
20162306a36Sopenharmony_ci	.owner =	THIS_MODULE,
20262306a36Sopenharmony_ci	.init =		ping_init_sock,
20362306a36Sopenharmony_ci	.close =	ping_close,
20462306a36Sopenharmony_ci	.pre_connect =	ping_v6_pre_connect,
20562306a36Sopenharmony_ci	.connect =	ip6_datagram_connect_v6_only,
20662306a36Sopenharmony_ci	.disconnect =	__udp_disconnect,
20762306a36Sopenharmony_ci	.setsockopt =	ipv6_setsockopt,
20862306a36Sopenharmony_ci	.getsockopt =	ipv6_getsockopt,
20962306a36Sopenharmony_ci	.sendmsg =	ping_v6_sendmsg,
21062306a36Sopenharmony_ci	.recvmsg =	ping_recvmsg,
21162306a36Sopenharmony_ci	.bind =		ping_bind,
21262306a36Sopenharmony_ci	.backlog_rcv =	ping_queue_rcv_skb,
21362306a36Sopenharmony_ci	.hash =		ping_hash,
21462306a36Sopenharmony_ci	.unhash =	ping_unhash,
21562306a36Sopenharmony_ci	.get_port =	ping_get_port,
21662306a36Sopenharmony_ci	.put_port =	ping_unhash,
21762306a36Sopenharmony_ci	.obj_size =	sizeof(struct raw6_sock),
21862306a36Sopenharmony_ci	.ipv6_pinfo_offset = offsetof(struct raw6_sock, inet6),
21962306a36Sopenharmony_ci};
22062306a36Sopenharmony_ciEXPORT_SYMBOL_GPL(pingv6_prot);
22162306a36Sopenharmony_ci
22262306a36Sopenharmony_cistatic struct inet_protosw pingv6_protosw = {
22362306a36Sopenharmony_ci	.type =      SOCK_DGRAM,
22462306a36Sopenharmony_ci	.protocol =  IPPROTO_ICMPV6,
22562306a36Sopenharmony_ci	.prot =      &pingv6_prot,
22662306a36Sopenharmony_ci	.ops =       &inet6_sockraw_ops,
22762306a36Sopenharmony_ci	.flags =     INET_PROTOSW_REUSE,
22862306a36Sopenharmony_ci};
22962306a36Sopenharmony_ci
23062306a36Sopenharmony_ci#ifdef CONFIG_PROC_FS
23162306a36Sopenharmony_cistatic void *ping_v6_seq_start(struct seq_file *seq, loff_t *pos)
23262306a36Sopenharmony_ci{
23362306a36Sopenharmony_ci	return ping_seq_start(seq, pos, AF_INET6);
23462306a36Sopenharmony_ci}
23562306a36Sopenharmony_ci
23662306a36Sopenharmony_cistatic int ping_v6_seq_show(struct seq_file *seq, void *v)
23762306a36Sopenharmony_ci{
23862306a36Sopenharmony_ci	if (v == SEQ_START_TOKEN) {
23962306a36Sopenharmony_ci		seq_puts(seq, IPV6_SEQ_DGRAM_HEADER);
24062306a36Sopenharmony_ci	} else {
24162306a36Sopenharmony_ci		int bucket = ((struct ping_iter_state *) seq->private)->bucket;
24262306a36Sopenharmony_ci		struct inet_sock *inet = inet_sk((struct sock *)v);
24362306a36Sopenharmony_ci		__u16 srcp = ntohs(inet->inet_sport);
24462306a36Sopenharmony_ci		__u16 destp = ntohs(inet->inet_dport);
24562306a36Sopenharmony_ci		ip6_dgram_sock_seq_show(seq, v, srcp, destp, bucket);
24662306a36Sopenharmony_ci	}
24762306a36Sopenharmony_ci	return 0;
24862306a36Sopenharmony_ci}
24962306a36Sopenharmony_ci
25062306a36Sopenharmony_cistatic const struct seq_operations ping_v6_seq_ops = {
25162306a36Sopenharmony_ci	.start		= ping_v6_seq_start,
25262306a36Sopenharmony_ci	.show		= ping_v6_seq_show,
25362306a36Sopenharmony_ci	.next		= ping_seq_next,
25462306a36Sopenharmony_ci	.stop		= ping_seq_stop,
25562306a36Sopenharmony_ci};
25662306a36Sopenharmony_ci
25762306a36Sopenharmony_cistatic int __net_init ping_v6_proc_init_net(struct net *net)
25862306a36Sopenharmony_ci{
25962306a36Sopenharmony_ci	if (!proc_create_net("icmp6", 0444, net->proc_net, &ping_v6_seq_ops,
26062306a36Sopenharmony_ci			sizeof(struct ping_iter_state)))
26162306a36Sopenharmony_ci		return -ENOMEM;
26262306a36Sopenharmony_ci	return 0;
26362306a36Sopenharmony_ci}
26462306a36Sopenharmony_ci
26562306a36Sopenharmony_cistatic void __net_exit ping_v6_proc_exit_net(struct net *net)
26662306a36Sopenharmony_ci{
26762306a36Sopenharmony_ci	remove_proc_entry("icmp6", net->proc_net);
26862306a36Sopenharmony_ci}
26962306a36Sopenharmony_ci
27062306a36Sopenharmony_cistatic struct pernet_operations ping_v6_net_ops = {
27162306a36Sopenharmony_ci	.init = ping_v6_proc_init_net,
27262306a36Sopenharmony_ci	.exit = ping_v6_proc_exit_net,
27362306a36Sopenharmony_ci};
27462306a36Sopenharmony_ci#endif
27562306a36Sopenharmony_ci
27662306a36Sopenharmony_ciint __init pingv6_init(void)
27762306a36Sopenharmony_ci{
27862306a36Sopenharmony_ci#ifdef CONFIG_PROC_FS
27962306a36Sopenharmony_ci	int ret = register_pernet_subsys(&ping_v6_net_ops);
28062306a36Sopenharmony_ci	if (ret)
28162306a36Sopenharmony_ci		return ret;
28262306a36Sopenharmony_ci#endif
28362306a36Sopenharmony_ci	pingv6_ops.ipv6_recv_error = ipv6_recv_error;
28462306a36Sopenharmony_ci	pingv6_ops.ip6_datagram_recv_common_ctl = ip6_datagram_recv_common_ctl;
28562306a36Sopenharmony_ci	pingv6_ops.ip6_datagram_recv_specific_ctl =
28662306a36Sopenharmony_ci		ip6_datagram_recv_specific_ctl;
28762306a36Sopenharmony_ci	pingv6_ops.icmpv6_err_convert = icmpv6_err_convert;
28862306a36Sopenharmony_ci	pingv6_ops.ipv6_icmp_error = ipv6_icmp_error;
28962306a36Sopenharmony_ci	pingv6_ops.ipv6_chk_addr = ipv6_chk_addr;
29062306a36Sopenharmony_ci	return inet6_register_protosw(&pingv6_protosw);
29162306a36Sopenharmony_ci}
29262306a36Sopenharmony_ci
29362306a36Sopenharmony_ci/* This never gets called because it's not possible to unload the ipv6 module,
29462306a36Sopenharmony_ci * but just in case.
29562306a36Sopenharmony_ci */
29662306a36Sopenharmony_civoid pingv6_exit(void)
29762306a36Sopenharmony_ci{
29862306a36Sopenharmony_ci	pingv6_ops.ipv6_recv_error = dummy_ipv6_recv_error;
29962306a36Sopenharmony_ci	pingv6_ops.ip6_datagram_recv_common_ctl = dummy_ip6_datagram_recv_ctl;
30062306a36Sopenharmony_ci	pingv6_ops.ip6_datagram_recv_specific_ctl = dummy_ip6_datagram_recv_ctl;
30162306a36Sopenharmony_ci	pingv6_ops.icmpv6_err_convert = dummy_icmpv6_err_convert;
30262306a36Sopenharmony_ci	pingv6_ops.ipv6_icmp_error = dummy_ipv6_icmp_error;
30362306a36Sopenharmony_ci	pingv6_ops.ipv6_chk_addr = dummy_ipv6_chk_addr;
30462306a36Sopenharmony_ci#ifdef CONFIG_PROC_FS
30562306a36Sopenharmony_ci	unregister_pernet_subsys(&ping_v6_net_ops);
30662306a36Sopenharmony_ci#endif
30762306a36Sopenharmony_ci	inet6_unregister_protosw(&pingv6_protosw);
30862306a36Sopenharmony_ci}
309