162306a36Sopenharmony_ci// SPDX-License-Identifier: GPL-2.0 262306a36Sopenharmony_ci/* Multipath TCP 362306a36Sopenharmony_ci * 462306a36Sopenharmony_ci * Copyright (c) 2017 - 2019, Intel Corporation. 562306a36Sopenharmony_ci */ 662306a36Sopenharmony_ci 762306a36Sopenharmony_ci#define pr_fmt(fmt) "MPTCP: " fmt 862306a36Sopenharmony_ci 962306a36Sopenharmony_ci#include <linux/kernel.h> 1062306a36Sopenharmony_ci#include <linux/module.h> 1162306a36Sopenharmony_ci#include <linux/netdevice.h> 1262306a36Sopenharmony_ci#include <crypto/algapi.h> 1362306a36Sopenharmony_ci#include <crypto/sha2.h> 1462306a36Sopenharmony_ci#include <net/sock.h> 1562306a36Sopenharmony_ci#include <net/inet_common.h> 1662306a36Sopenharmony_ci#include <net/inet_hashtables.h> 1762306a36Sopenharmony_ci#include <net/protocol.h> 1862306a36Sopenharmony_ci#include <net/tcp.h> 1962306a36Sopenharmony_ci#if IS_ENABLED(CONFIG_MPTCP_IPV6) 2062306a36Sopenharmony_ci#include <net/ip6_route.h> 2162306a36Sopenharmony_ci#include <net/transp_v6.h> 2262306a36Sopenharmony_ci#endif 2362306a36Sopenharmony_ci#include <net/mptcp.h> 2462306a36Sopenharmony_ci#include <uapi/linux/mptcp.h> 2562306a36Sopenharmony_ci#include "protocol.h" 2662306a36Sopenharmony_ci#include "mib.h" 2762306a36Sopenharmony_ci 2862306a36Sopenharmony_ci#include <trace/events/mptcp.h> 2962306a36Sopenharmony_ci#include <trace/events/sock.h> 3062306a36Sopenharmony_ci 3162306a36Sopenharmony_cistatic void mptcp_subflow_ops_undo_override(struct sock *ssk); 3262306a36Sopenharmony_ci 3362306a36Sopenharmony_cistatic void SUBFLOW_REQ_INC_STATS(struct request_sock *req, 3462306a36Sopenharmony_ci enum linux_mptcp_mib_field field) 3562306a36Sopenharmony_ci{ 3662306a36Sopenharmony_ci MPTCP_INC_STATS(sock_net(req_to_sk(req)), field); 3762306a36Sopenharmony_ci} 3862306a36Sopenharmony_ci 3962306a36Sopenharmony_cistatic void subflow_req_destructor(struct request_sock *req) 4062306a36Sopenharmony_ci{ 4162306a36Sopenharmony_ci struct mptcp_subflow_request_sock *subflow_req = mptcp_subflow_rsk(req); 4262306a36Sopenharmony_ci 4362306a36Sopenharmony_ci pr_debug("subflow_req=%p", subflow_req); 4462306a36Sopenharmony_ci 4562306a36Sopenharmony_ci if (subflow_req->msk) 4662306a36Sopenharmony_ci sock_put((struct sock *)subflow_req->msk); 4762306a36Sopenharmony_ci 4862306a36Sopenharmony_ci mptcp_token_destroy_request(req); 4962306a36Sopenharmony_ci} 5062306a36Sopenharmony_ci 5162306a36Sopenharmony_cistatic void subflow_generate_hmac(u64 key1, u64 key2, u32 nonce1, u32 nonce2, 5262306a36Sopenharmony_ci void *hmac) 5362306a36Sopenharmony_ci{ 5462306a36Sopenharmony_ci u8 msg[8]; 5562306a36Sopenharmony_ci 5662306a36Sopenharmony_ci put_unaligned_be32(nonce1, &msg[0]); 5762306a36Sopenharmony_ci put_unaligned_be32(nonce2, &msg[4]); 5862306a36Sopenharmony_ci 5962306a36Sopenharmony_ci mptcp_crypto_hmac_sha(key1, key2, msg, 8, hmac); 6062306a36Sopenharmony_ci} 6162306a36Sopenharmony_ci 6262306a36Sopenharmony_cistatic bool mptcp_can_accept_new_subflow(const struct mptcp_sock *msk) 6362306a36Sopenharmony_ci{ 6462306a36Sopenharmony_ci return mptcp_is_fully_established((void *)msk) && 6562306a36Sopenharmony_ci ((mptcp_pm_is_userspace(msk) && 6662306a36Sopenharmony_ci mptcp_userspace_pm_active(msk)) || 6762306a36Sopenharmony_ci READ_ONCE(msk->pm.accept_subflow)); 6862306a36Sopenharmony_ci} 6962306a36Sopenharmony_ci 7062306a36Sopenharmony_ci/* validate received token and create truncated hmac and nonce for SYN-ACK */ 7162306a36Sopenharmony_cistatic void subflow_req_create_thmac(struct mptcp_subflow_request_sock *subflow_req) 7262306a36Sopenharmony_ci{ 7362306a36Sopenharmony_ci struct mptcp_sock *msk = subflow_req->msk; 7462306a36Sopenharmony_ci u8 hmac[SHA256_DIGEST_SIZE]; 7562306a36Sopenharmony_ci 7662306a36Sopenharmony_ci get_random_bytes(&subflow_req->local_nonce, sizeof(u32)); 7762306a36Sopenharmony_ci 7862306a36Sopenharmony_ci subflow_generate_hmac(msk->local_key, msk->remote_key, 7962306a36Sopenharmony_ci subflow_req->local_nonce, 8062306a36Sopenharmony_ci subflow_req->remote_nonce, hmac); 8162306a36Sopenharmony_ci 8262306a36Sopenharmony_ci subflow_req->thmac = get_unaligned_be64(hmac); 8362306a36Sopenharmony_ci} 8462306a36Sopenharmony_ci 8562306a36Sopenharmony_cistatic struct mptcp_sock *subflow_token_join_request(struct request_sock *req) 8662306a36Sopenharmony_ci{ 8762306a36Sopenharmony_ci struct mptcp_subflow_request_sock *subflow_req = mptcp_subflow_rsk(req); 8862306a36Sopenharmony_ci struct mptcp_sock *msk; 8962306a36Sopenharmony_ci int local_id; 9062306a36Sopenharmony_ci 9162306a36Sopenharmony_ci msk = mptcp_token_get_sock(sock_net(req_to_sk(req)), subflow_req->token); 9262306a36Sopenharmony_ci if (!msk) { 9362306a36Sopenharmony_ci SUBFLOW_REQ_INC_STATS(req, MPTCP_MIB_JOINNOTOKEN); 9462306a36Sopenharmony_ci return NULL; 9562306a36Sopenharmony_ci } 9662306a36Sopenharmony_ci 9762306a36Sopenharmony_ci local_id = mptcp_pm_get_local_id(msk, (struct sock_common *)req); 9862306a36Sopenharmony_ci if (local_id < 0) { 9962306a36Sopenharmony_ci sock_put((struct sock *)msk); 10062306a36Sopenharmony_ci return NULL; 10162306a36Sopenharmony_ci } 10262306a36Sopenharmony_ci subflow_req->local_id = local_id; 10362306a36Sopenharmony_ci 10462306a36Sopenharmony_ci return msk; 10562306a36Sopenharmony_ci} 10662306a36Sopenharmony_ci 10762306a36Sopenharmony_cistatic void subflow_init_req(struct request_sock *req, const struct sock *sk_listener) 10862306a36Sopenharmony_ci{ 10962306a36Sopenharmony_ci struct mptcp_subflow_request_sock *subflow_req = mptcp_subflow_rsk(req); 11062306a36Sopenharmony_ci 11162306a36Sopenharmony_ci subflow_req->mp_capable = 0; 11262306a36Sopenharmony_ci subflow_req->mp_join = 0; 11362306a36Sopenharmony_ci subflow_req->csum_reqd = mptcp_is_checksum_enabled(sock_net(sk_listener)); 11462306a36Sopenharmony_ci subflow_req->allow_join_id0 = mptcp_allow_join_id0(sock_net(sk_listener)); 11562306a36Sopenharmony_ci subflow_req->msk = NULL; 11662306a36Sopenharmony_ci mptcp_token_init_request(req); 11762306a36Sopenharmony_ci} 11862306a36Sopenharmony_ci 11962306a36Sopenharmony_cistatic bool subflow_use_different_sport(struct mptcp_sock *msk, const struct sock *sk) 12062306a36Sopenharmony_ci{ 12162306a36Sopenharmony_ci return inet_sk(sk)->inet_sport != inet_sk((struct sock *)msk)->inet_sport; 12262306a36Sopenharmony_ci} 12362306a36Sopenharmony_ci 12462306a36Sopenharmony_cistatic void subflow_add_reset_reason(struct sk_buff *skb, u8 reason) 12562306a36Sopenharmony_ci{ 12662306a36Sopenharmony_ci struct mptcp_ext *mpext = skb_ext_add(skb, SKB_EXT_MPTCP); 12762306a36Sopenharmony_ci 12862306a36Sopenharmony_ci if (mpext) { 12962306a36Sopenharmony_ci memset(mpext, 0, sizeof(*mpext)); 13062306a36Sopenharmony_ci mpext->reset_reason = reason; 13162306a36Sopenharmony_ci } 13262306a36Sopenharmony_ci} 13362306a36Sopenharmony_ci 13462306a36Sopenharmony_ci/* Init mptcp request socket. 13562306a36Sopenharmony_ci * 13662306a36Sopenharmony_ci * Returns an error code if a JOIN has failed and a TCP reset 13762306a36Sopenharmony_ci * should be sent. 13862306a36Sopenharmony_ci */ 13962306a36Sopenharmony_cistatic int subflow_check_req(struct request_sock *req, 14062306a36Sopenharmony_ci const struct sock *sk_listener, 14162306a36Sopenharmony_ci struct sk_buff *skb) 14262306a36Sopenharmony_ci{ 14362306a36Sopenharmony_ci struct mptcp_subflow_context *listener = mptcp_subflow_ctx(sk_listener); 14462306a36Sopenharmony_ci struct mptcp_subflow_request_sock *subflow_req = mptcp_subflow_rsk(req); 14562306a36Sopenharmony_ci struct mptcp_options_received mp_opt; 14662306a36Sopenharmony_ci bool opt_mp_capable, opt_mp_join; 14762306a36Sopenharmony_ci 14862306a36Sopenharmony_ci pr_debug("subflow_req=%p, listener=%p", subflow_req, listener); 14962306a36Sopenharmony_ci 15062306a36Sopenharmony_ci#ifdef CONFIG_TCP_MD5SIG 15162306a36Sopenharmony_ci /* no MPTCP if MD5SIG is enabled on this socket or we may run out of 15262306a36Sopenharmony_ci * TCP option space. 15362306a36Sopenharmony_ci */ 15462306a36Sopenharmony_ci if (rcu_access_pointer(tcp_sk(sk_listener)->md5sig_info)) 15562306a36Sopenharmony_ci return -EINVAL; 15662306a36Sopenharmony_ci#endif 15762306a36Sopenharmony_ci 15862306a36Sopenharmony_ci mptcp_get_options(skb, &mp_opt); 15962306a36Sopenharmony_ci 16062306a36Sopenharmony_ci opt_mp_capable = !!(mp_opt.suboptions & OPTION_MPTCP_MPC_SYN); 16162306a36Sopenharmony_ci opt_mp_join = !!(mp_opt.suboptions & OPTION_MPTCP_MPJ_SYN); 16262306a36Sopenharmony_ci if (opt_mp_capable) { 16362306a36Sopenharmony_ci SUBFLOW_REQ_INC_STATS(req, MPTCP_MIB_MPCAPABLEPASSIVE); 16462306a36Sopenharmony_ci 16562306a36Sopenharmony_ci if (opt_mp_join) 16662306a36Sopenharmony_ci return 0; 16762306a36Sopenharmony_ci } else if (opt_mp_join) { 16862306a36Sopenharmony_ci SUBFLOW_REQ_INC_STATS(req, MPTCP_MIB_JOINSYNRX); 16962306a36Sopenharmony_ci } 17062306a36Sopenharmony_ci 17162306a36Sopenharmony_ci if (opt_mp_capable && listener->request_mptcp) { 17262306a36Sopenharmony_ci int err, retries = MPTCP_TOKEN_MAX_RETRIES; 17362306a36Sopenharmony_ci 17462306a36Sopenharmony_ci subflow_req->ssn_offset = TCP_SKB_CB(skb)->seq; 17562306a36Sopenharmony_ciagain: 17662306a36Sopenharmony_ci do { 17762306a36Sopenharmony_ci get_random_bytes(&subflow_req->local_key, sizeof(subflow_req->local_key)); 17862306a36Sopenharmony_ci } while (subflow_req->local_key == 0); 17962306a36Sopenharmony_ci 18062306a36Sopenharmony_ci if (unlikely(req->syncookie)) { 18162306a36Sopenharmony_ci mptcp_crypto_key_sha(subflow_req->local_key, 18262306a36Sopenharmony_ci &subflow_req->token, 18362306a36Sopenharmony_ci &subflow_req->idsn); 18462306a36Sopenharmony_ci if (mptcp_token_exists(subflow_req->token)) { 18562306a36Sopenharmony_ci if (retries-- > 0) 18662306a36Sopenharmony_ci goto again; 18762306a36Sopenharmony_ci SUBFLOW_REQ_INC_STATS(req, MPTCP_MIB_TOKENFALLBACKINIT); 18862306a36Sopenharmony_ci } else { 18962306a36Sopenharmony_ci subflow_req->mp_capable = 1; 19062306a36Sopenharmony_ci } 19162306a36Sopenharmony_ci return 0; 19262306a36Sopenharmony_ci } 19362306a36Sopenharmony_ci 19462306a36Sopenharmony_ci err = mptcp_token_new_request(req); 19562306a36Sopenharmony_ci if (err == 0) 19662306a36Sopenharmony_ci subflow_req->mp_capable = 1; 19762306a36Sopenharmony_ci else if (retries-- > 0) 19862306a36Sopenharmony_ci goto again; 19962306a36Sopenharmony_ci else 20062306a36Sopenharmony_ci SUBFLOW_REQ_INC_STATS(req, MPTCP_MIB_TOKENFALLBACKINIT); 20162306a36Sopenharmony_ci 20262306a36Sopenharmony_ci } else if (opt_mp_join && listener->request_mptcp) { 20362306a36Sopenharmony_ci subflow_req->ssn_offset = TCP_SKB_CB(skb)->seq; 20462306a36Sopenharmony_ci subflow_req->mp_join = 1; 20562306a36Sopenharmony_ci subflow_req->backup = mp_opt.backup; 20662306a36Sopenharmony_ci subflow_req->remote_id = mp_opt.join_id; 20762306a36Sopenharmony_ci subflow_req->token = mp_opt.token; 20862306a36Sopenharmony_ci subflow_req->remote_nonce = mp_opt.nonce; 20962306a36Sopenharmony_ci subflow_req->msk = subflow_token_join_request(req); 21062306a36Sopenharmony_ci 21162306a36Sopenharmony_ci /* Can't fall back to TCP in this case. */ 21262306a36Sopenharmony_ci if (!subflow_req->msk) { 21362306a36Sopenharmony_ci subflow_add_reset_reason(skb, MPTCP_RST_EMPTCP); 21462306a36Sopenharmony_ci return -EPERM; 21562306a36Sopenharmony_ci } 21662306a36Sopenharmony_ci 21762306a36Sopenharmony_ci if (subflow_use_different_sport(subflow_req->msk, sk_listener)) { 21862306a36Sopenharmony_ci pr_debug("syn inet_sport=%d %d", 21962306a36Sopenharmony_ci ntohs(inet_sk(sk_listener)->inet_sport), 22062306a36Sopenharmony_ci ntohs(inet_sk((struct sock *)subflow_req->msk)->inet_sport)); 22162306a36Sopenharmony_ci if (!mptcp_pm_sport_in_anno_list(subflow_req->msk, sk_listener)) { 22262306a36Sopenharmony_ci SUBFLOW_REQ_INC_STATS(req, MPTCP_MIB_MISMATCHPORTSYNRX); 22362306a36Sopenharmony_ci return -EPERM; 22462306a36Sopenharmony_ci } 22562306a36Sopenharmony_ci SUBFLOW_REQ_INC_STATS(req, MPTCP_MIB_JOINPORTSYNRX); 22662306a36Sopenharmony_ci } 22762306a36Sopenharmony_ci 22862306a36Sopenharmony_ci subflow_req_create_thmac(subflow_req); 22962306a36Sopenharmony_ci 23062306a36Sopenharmony_ci if (unlikely(req->syncookie)) { 23162306a36Sopenharmony_ci if (mptcp_can_accept_new_subflow(subflow_req->msk)) 23262306a36Sopenharmony_ci subflow_init_req_cookie_join_save(subflow_req, skb); 23362306a36Sopenharmony_ci else 23462306a36Sopenharmony_ci return -EPERM; 23562306a36Sopenharmony_ci } 23662306a36Sopenharmony_ci 23762306a36Sopenharmony_ci pr_debug("token=%u, remote_nonce=%u msk=%p", subflow_req->token, 23862306a36Sopenharmony_ci subflow_req->remote_nonce, subflow_req->msk); 23962306a36Sopenharmony_ci } 24062306a36Sopenharmony_ci 24162306a36Sopenharmony_ci return 0; 24262306a36Sopenharmony_ci} 24362306a36Sopenharmony_ci 24462306a36Sopenharmony_ciint mptcp_subflow_init_cookie_req(struct request_sock *req, 24562306a36Sopenharmony_ci const struct sock *sk_listener, 24662306a36Sopenharmony_ci struct sk_buff *skb) 24762306a36Sopenharmony_ci{ 24862306a36Sopenharmony_ci struct mptcp_subflow_context *listener = mptcp_subflow_ctx(sk_listener); 24962306a36Sopenharmony_ci struct mptcp_subflow_request_sock *subflow_req = mptcp_subflow_rsk(req); 25062306a36Sopenharmony_ci struct mptcp_options_received mp_opt; 25162306a36Sopenharmony_ci bool opt_mp_capable, opt_mp_join; 25262306a36Sopenharmony_ci int err; 25362306a36Sopenharmony_ci 25462306a36Sopenharmony_ci subflow_init_req(req, sk_listener); 25562306a36Sopenharmony_ci mptcp_get_options(skb, &mp_opt); 25662306a36Sopenharmony_ci 25762306a36Sopenharmony_ci opt_mp_capable = !!(mp_opt.suboptions & OPTION_MPTCP_MPC_ACK); 25862306a36Sopenharmony_ci opt_mp_join = !!(mp_opt.suboptions & OPTION_MPTCP_MPJ_ACK); 25962306a36Sopenharmony_ci if (opt_mp_capable && opt_mp_join) 26062306a36Sopenharmony_ci return -EINVAL; 26162306a36Sopenharmony_ci 26262306a36Sopenharmony_ci if (opt_mp_capable && listener->request_mptcp) { 26362306a36Sopenharmony_ci if (mp_opt.sndr_key == 0) 26462306a36Sopenharmony_ci return -EINVAL; 26562306a36Sopenharmony_ci 26662306a36Sopenharmony_ci subflow_req->local_key = mp_opt.rcvr_key; 26762306a36Sopenharmony_ci err = mptcp_token_new_request(req); 26862306a36Sopenharmony_ci if (err) 26962306a36Sopenharmony_ci return err; 27062306a36Sopenharmony_ci 27162306a36Sopenharmony_ci subflow_req->mp_capable = 1; 27262306a36Sopenharmony_ci subflow_req->ssn_offset = TCP_SKB_CB(skb)->seq - 1; 27362306a36Sopenharmony_ci } else if (opt_mp_join && listener->request_mptcp) { 27462306a36Sopenharmony_ci if (!mptcp_token_join_cookie_init_state(subflow_req, skb)) 27562306a36Sopenharmony_ci return -EINVAL; 27662306a36Sopenharmony_ci 27762306a36Sopenharmony_ci subflow_req->mp_join = 1; 27862306a36Sopenharmony_ci subflow_req->ssn_offset = TCP_SKB_CB(skb)->seq - 1; 27962306a36Sopenharmony_ci } 28062306a36Sopenharmony_ci 28162306a36Sopenharmony_ci return 0; 28262306a36Sopenharmony_ci} 28362306a36Sopenharmony_ciEXPORT_SYMBOL_GPL(mptcp_subflow_init_cookie_req); 28462306a36Sopenharmony_ci 28562306a36Sopenharmony_cistatic struct dst_entry *subflow_v4_route_req(const struct sock *sk, 28662306a36Sopenharmony_ci struct sk_buff *skb, 28762306a36Sopenharmony_ci struct flowi *fl, 28862306a36Sopenharmony_ci struct request_sock *req) 28962306a36Sopenharmony_ci{ 29062306a36Sopenharmony_ci struct dst_entry *dst; 29162306a36Sopenharmony_ci int err; 29262306a36Sopenharmony_ci 29362306a36Sopenharmony_ci tcp_rsk(req)->is_mptcp = 1; 29462306a36Sopenharmony_ci subflow_init_req(req, sk); 29562306a36Sopenharmony_ci 29662306a36Sopenharmony_ci dst = tcp_request_sock_ipv4_ops.route_req(sk, skb, fl, req); 29762306a36Sopenharmony_ci if (!dst) 29862306a36Sopenharmony_ci return NULL; 29962306a36Sopenharmony_ci 30062306a36Sopenharmony_ci err = subflow_check_req(req, sk, skb); 30162306a36Sopenharmony_ci if (err == 0) 30262306a36Sopenharmony_ci return dst; 30362306a36Sopenharmony_ci 30462306a36Sopenharmony_ci dst_release(dst); 30562306a36Sopenharmony_ci if (!req->syncookie) 30662306a36Sopenharmony_ci tcp_request_sock_ops.send_reset(sk, skb); 30762306a36Sopenharmony_ci return NULL; 30862306a36Sopenharmony_ci} 30962306a36Sopenharmony_ci 31062306a36Sopenharmony_cistatic void subflow_prep_synack(const struct sock *sk, struct request_sock *req, 31162306a36Sopenharmony_ci struct tcp_fastopen_cookie *foc, 31262306a36Sopenharmony_ci enum tcp_synack_type synack_type) 31362306a36Sopenharmony_ci{ 31462306a36Sopenharmony_ci struct mptcp_subflow_context *subflow = mptcp_subflow_ctx(sk); 31562306a36Sopenharmony_ci struct inet_request_sock *ireq = inet_rsk(req); 31662306a36Sopenharmony_ci 31762306a36Sopenharmony_ci /* clear tstamp_ok, as needed depending on cookie */ 31862306a36Sopenharmony_ci if (foc && foc->len > -1) 31962306a36Sopenharmony_ci ireq->tstamp_ok = 0; 32062306a36Sopenharmony_ci 32162306a36Sopenharmony_ci if (synack_type == TCP_SYNACK_FASTOPEN) 32262306a36Sopenharmony_ci mptcp_fastopen_subflow_synack_set_params(subflow, req); 32362306a36Sopenharmony_ci} 32462306a36Sopenharmony_ci 32562306a36Sopenharmony_cistatic int subflow_v4_send_synack(const struct sock *sk, struct dst_entry *dst, 32662306a36Sopenharmony_ci struct flowi *fl, 32762306a36Sopenharmony_ci struct request_sock *req, 32862306a36Sopenharmony_ci struct tcp_fastopen_cookie *foc, 32962306a36Sopenharmony_ci enum tcp_synack_type synack_type, 33062306a36Sopenharmony_ci struct sk_buff *syn_skb) 33162306a36Sopenharmony_ci{ 33262306a36Sopenharmony_ci subflow_prep_synack(sk, req, foc, synack_type); 33362306a36Sopenharmony_ci 33462306a36Sopenharmony_ci return tcp_request_sock_ipv4_ops.send_synack(sk, dst, fl, req, foc, 33562306a36Sopenharmony_ci synack_type, syn_skb); 33662306a36Sopenharmony_ci} 33762306a36Sopenharmony_ci 33862306a36Sopenharmony_ci#if IS_ENABLED(CONFIG_MPTCP_IPV6) 33962306a36Sopenharmony_cistatic int subflow_v6_send_synack(const struct sock *sk, struct dst_entry *dst, 34062306a36Sopenharmony_ci struct flowi *fl, 34162306a36Sopenharmony_ci struct request_sock *req, 34262306a36Sopenharmony_ci struct tcp_fastopen_cookie *foc, 34362306a36Sopenharmony_ci enum tcp_synack_type synack_type, 34462306a36Sopenharmony_ci struct sk_buff *syn_skb) 34562306a36Sopenharmony_ci{ 34662306a36Sopenharmony_ci subflow_prep_synack(sk, req, foc, synack_type); 34762306a36Sopenharmony_ci 34862306a36Sopenharmony_ci return tcp_request_sock_ipv6_ops.send_synack(sk, dst, fl, req, foc, 34962306a36Sopenharmony_ci synack_type, syn_skb); 35062306a36Sopenharmony_ci} 35162306a36Sopenharmony_ci 35262306a36Sopenharmony_cistatic struct dst_entry *subflow_v6_route_req(const struct sock *sk, 35362306a36Sopenharmony_ci struct sk_buff *skb, 35462306a36Sopenharmony_ci struct flowi *fl, 35562306a36Sopenharmony_ci struct request_sock *req) 35662306a36Sopenharmony_ci{ 35762306a36Sopenharmony_ci struct dst_entry *dst; 35862306a36Sopenharmony_ci int err; 35962306a36Sopenharmony_ci 36062306a36Sopenharmony_ci tcp_rsk(req)->is_mptcp = 1; 36162306a36Sopenharmony_ci subflow_init_req(req, sk); 36262306a36Sopenharmony_ci 36362306a36Sopenharmony_ci dst = tcp_request_sock_ipv6_ops.route_req(sk, skb, fl, req); 36462306a36Sopenharmony_ci if (!dst) 36562306a36Sopenharmony_ci return NULL; 36662306a36Sopenharmony_ci 36762306a36Sopenharmony_ci err = subflow_check_req(req, sk, skb); 36862306a36Sopenharmony_ci if (err == 0) 36962306a36Sopenharmony_ci return dst; 37062306a36Sopenharmony_ci 37162306a36Sopenharmony_ci dst_release(dst); 37262306a36Sopenharmony_ci if (!req->syncookie) 37362306a36Sopenharmony_ci tcp6_request_sock_ops.send_reset(sk, skb); 37462306a36Sopenharmony_ci return NULL; 37562306a36Sopenharmony_ci} 37662306a36Sopenharmony_ci#endif 37762306a36Sopenharmony_ci 37862306a36Sopenharmony_ci/* validate received truncated hmac and create hmac for third ACK */ 37962306a36Sopenharmony_cistatic bool subflow_thmac_valid(struct mptcp_subflow_context *subflow) 38062306a36Sopenharmony_ci{ 38162306a36Sopenharmony_ci u8 hmac[SHA256_DIGEST_SIZE]; 38262306a36Sopenharmony_ci u64 thmac; 38362306a36Sopenharmony_ci 38462306a36Sopenharmony_ci subflow_generate_hmac(subflow->remote_key, subflow->local_key, 38562306a36Sopenharmony_ci subflow->remote_nonce, subflow->local_nonce, 38662306a36Sopenharmony_ci hmac); 38762306a36Sopenharmony_ci 38862306a36Sopenharmony_ci thmac = get_unaligned_be64(hmac); 38962306a36Sopenharmony_ci pr_debug("subflow=%p, token=%u, thmac=%llu, subflow->thmac=%llu\n", 39062306a36Sopenharmony_ci subflow, subflow->token, thmac, subflow->thmac); 39162306a36Sopenharmony_ci 39262306a36Sopenharmony_ci return thmac == subflow->thmac; 39362306a36Sopenharmony_ci} 39462306a36Sopenharmony_ci 39562306a36Sopenharmony_civoid mptcp_subflow_reset(struct sock *ssk) 39662306a36Sopenharmony_ci{ 39762306a36Sopenharmony_ci struct mptcp_subflow_context *subflow = mptcp_subflow_ctx(ssk); 39862306a36Sopenharmony_ci struct sock *sk = subflow->conn; 39962306a36Sopenharmony_ci 40062306a36Sopenharmony_ci /* mptcp_mp_fail_no_response() can reach here on an already closed 40162306a36Sopenharmony_ci * socket 40262306a36Sopenharmony_ci */ 40362306a36Sopenharmony_ci if (ssk->sk_state == TCP_CLOSE) 40462306a36Sopenharmony_ci return; 40562306a36Sopenharmony_ci 40662306a36Sopenharmony_ci /* must hold: tcp_done() could drop last reference on parent */ 40762306a36Sopenharmony_ci sock_hold(sk); 40862306a36Sopenharmony_ci 40962306a36Sopenharmony_ci tcp_send_active_reset(ssk, GFP_ATOMIC); 41062306a36Sopenharmony_ci tcp_done(ssk); 41162306a36Sopenharmony_ci if (!test_and_set_bit(MPTCP_WORK_CLOSE_SUBFLOW, &mptcp_sk(sk)->flags)) 41262306a36Sopenharmony_ci mptcp_schedule_work(sk); 41362306a36Sopenharmony_ci 41462306a36Sopenharmony_ci sock_put(sk); 41562306a36Sopenharmony_ci} 41662306a36Sopenharmony_ci 41762306a36Sopenharmony_cistatic bool subflow_use_different_dport(struct mptcp_sock *msk, const struct sock *sk) 41862306a36Sopenharmony_ci{ 41962306a36Sopenharmony_ci return inet_sk(sk)->inet_dport != inet_sk((struct sock *)msk)->inet_dport; 42062306a36Sopenharmony_ci} 42162306a36Sopenharmony_ci 42262306a36Sopenharmony_civoid __mptcp_sync_state(struct sock *sk, int state) 42362306a36Sopenharmony_ci{ 42462306a36Sopenharmony_ci struct mptcp_subflow_context *subflow; 42562306a36Sopenharmony_ci struct mptcp_sock *msk = mptcp_sk(sk); 42662306a36Sopenharmony_ci struct sock *ssk = msk->first; 42762306a36Sopenharmony_ci 42862306a36Sopenharmony_ci subflow = mptcp_subflow_ctx(ssk); 42962306a36Sopenharmony_ci __mptcp_propagate_sndbuf(sk, ssk); 43062306a36Sopenharmony_ci if (!msk->rcvspace_init) 43162306a36Sopenharmony_ci mptcp_rcv_space_init(msk, ssk); 43262306a36Sopenharmony_ci 43362306a36Sopenharmony_ci if (sk->sk_state == TCP_SYN_SENT) { 43462306a36Sopenharmony_ci /* subflow->idsn is always available is TCP_SYN_SENT state, 43562306a36Sopenharmony_ci * even for the FASTOPEN scenarios 43662306a36Sopenharmony_ci */ 43762306a36Sopenharmony_ci WRITE_ONCE(msk->write_seq, subflow->idsn + 1); 43862306a36Sopenharmony_ci WRITE_ONCE(msk->snd_nxt, msk->write_seq); 43962306a36Sopenharmony_ci mptcp_set_state(sk, state); 44062306a36Sopenharmony_ci sk->sk_state_change(sk); 44162306a36Sopenharmony_ci } 44262306a36Sopenharmony_ci} 44362306a36Sopenharmony_ci 44462306a36Sopenharmony_cistatic void subflow_set_remote_key(struct mptcp_sock *msk, 44562306a36Sopenharmony_ci struct mptcp_subflow_context *subflow, 44662306a36Sopenharmony_ci const struct mptcp_options_received *mp_opt) 44762306a36Sopenharmony_ci{ 44862306a36Sopenharmony_ci /* active MPC subflow will reach here multiple times: 44962306a36Sopenharmony_ci * at subflow_finish_connect() time and at 4th ack time 45062306a36Sopenharmony_ci */ 45162306a36Sopenharmony_ci if (subflow->remote_key_valid) 45262306a36Sopenharmony_ci return; 45362306a36Sopenharmony_ci 45462306a36Sopenharmony_ci subflow->remote_key_valid = 1; 45562306a36Sopenharmony_ci subflow->remote_key = mp_opt->sndr_key; 45662306a36Sopenharmony_ci mptcp_crypto_key_sha(subflow->remote_key, NULL, &subflow->iasn); 45762306a36Sopenharmony_ci subflow->iasn++; 45862306a36Sopenharmony_ci 45962306a36Sopenharmony_ci WRITE_ONCE(msk->remote_key, subflow->remote_key); 46062306a36Sopenharmony_ci WRITE_ONCE(msk->ack_seq, subflow->iasn); 46162306a36Sopenharmony_ci WRITE_ONCE(msk->can_ack, true); 46262306a36Sopenharmony_ci atomic64_set(&msk->rcv_wnd_sent, subflow->iasn); 46362306a36Sopenharmony_ci} 46462306a36Sopenharmony_ci 46562306a36Sopenharmony_cistatic void mptcp_propagate_state(struct sock *sk, struct sock *ssk, 46662306a36Sopenharmony_ci struct mptcp_subflow_context *subflow, 46762306a36Sopenharmony_ci const struct mptcp_options_received *mp_opt) 46862306a36Sopenharmony_ci{ 46962306a36Sopenharmony_ci struct mptcp_sock *msk = mptcp_sk(sk); 47062306a36Sopenharmony_ci 47162306a36Sopenharmony_ci mptcp_data_lock(sk); 47262306a36Sopenharmony_ci if (mp_opt) { 47362306a36Sopenharmony_ci /* Options are available only in the non fallback cases 47462306a36Sopenharmony_ci * avoid updating rx path fields otherwise 47562306a36Sopenharmony_ci */ 47662306a36Sopenharmony_ci WRITE_ONCE(msk->snd_una, subflow->idsn + 1); 47762306a36Sopenharmony_ci WRITE_ONCE(msk->wnd_end, subflow->idsn + 1 + tcp_sk(ssk)->snd_wnd); 47862306a36Sopenharmony_ci subflow_set_remote_key(msk, subflow, mp_opt); 47962306a36Sopenharmony_ci } 48062306a36Sopenharmony_ci 48162306a36Sopenharmony_ci if (!sock_owned_by_user(sk)) { 48262306a36Sopenharmony_ci __mptcp_sync_state(sk, ssk->sk_state); 48362306a36Sopenharmony_ci } else { 48462306a36Sopenharmony_ci msk->pending_state = ssk->sk_state; 48562306a36Sopenharmony_ci __set_bit(MPTCP_SYNC_STATE, &msk->cb_flags); 48662306a36Sopenharmony_ci } 48762306a36Sopenharmony_ci mptcp_data_unlock(sk); 48862306a36Sopenharmony_ci} 48962306a36Sopenharmony_ci 49062306a36Sopenharmony_cistatic void subflow_finish_connect(struct sock *sk, const struct sk_buff *skb) 49162306a36Sopenharmony_ci{ 49262306a36Sopenharmony_ci struct mptcp_subflow_context *subflow = mptcp_subflow_ctx(sk); 49362306a36Sopenharmony_ci struct mptcp_options_received mp_opt; 49462306a36Sopenharmony_ci struct sock *parent = subflow->conn; 49562306a36Sopenharmony_ci struct mptcp_sock *msk; 49662306a36Sopenharmony_ci 49762306a36Sopenharmony_ci subflow->icsk_af_ops->sk_rx_dst_set(sk, skb); 49862306a36Sopenharmony_ci 49962306a36Sopenharmony_ci /* be sure no special action on any packet other than syn-ack */ 50062306a36Sopenharmony_ci if (subflow->conn_finished) 50162306a36Sopenharmony_ci return; 50262306a36Sopenharmony_ci 50362306a36Sopenharmony_ci msk = mptcp_sk(parent); 50462306a36Sopenharmony_ci subflow->rel_write_seq = 1; 50562306a36Sopenharmony_ci subflow->conn_finished = 1; 50662306a36Sopenharmony_ci subflow->ssn_offset = TCP_SKB_CB(skb)->seq; 50762306a36Sopenharmony_ci pr_debug("subflow=%p synack seq=%x", subflow, subflow->ssn_offset); 50862306a36Sopenharmony_ci 50962306a36Sopenharmony_ci mptcp_get_options(skb, &mp_opt); 51062306a36Sopenharmony_ci if (subflow->request_mptcp) { 51162306a36Sopenharmony_ci if (!(mp_opt.suboptions & OPTION_MPTCP_MPC_SYNACK)) { 51262306a36Sopenharmony_ci MPTCP_INC_STATS(sock_net(sk), 51362306a36Sopenharmony_ci MPTCP_MIB_MPCAPABLEACTIVEFALLBACK); 51462306a36Sopenharmony_ci mptcp_do_fallback(sk); 51562306a36Sopenharmony_ci pr_fallback(msk); 51662306a36Sopenharmony_ci goto fallback; 51762306a36Sopenharmony_ci } 51862306a36Sopenharmony_ci 51962306a36Sopenharmony_ci if (mp_opt.suboptions & OPTION_MPTCP_CSUMREQD) 52062306a36Sopenharmony_ci WRITE_ONCE(msk->csum_enabled, true); 52162306a36Sopenharmony_ci if (mp_opt.deny_join_id0) 52262306a36Sopenharmony_ci WRITE_ONCE(msk->pm.remote_deny_join_id0, true); 52362306a36Sopenharmony_ci subflow->mp_capable = 1; 52462306a36Sopenharmony_ci MPTCP_INC_STATS(sock_net(sk), MPTCP_MIB_MPCAPABLEACTIVEACK); 52562306a36Sopenharmony_ci mptcp_finish_connect(sk); 52662306a36Sopenharmony_ci mptcp_propagate_state(parent, sk, subflow, &mp_opt); 52762306a36Sopenharmony_ci } else if (subflow->request_join) { 52862306a36Sopenharmony_ci u8 hmac[SHA256_DIGEST_SIZE]; 52962306a36Sopenharmony_ci 53062306a36Sopenharmony_ci if (!(mp_opt.suboptions & OPTION_MPTCP_MPJ_SYNACK)) { 53162306a36Sopenharmony_ci subflow->reset_reason = MPTCP_RST_EMPTCP; 53262306a36Sopenharmony_ci goto do_reset; 53362306a36Sopenharmony_ci } 53462306a36Sopenharmony_ci 53562306a36Sopenharmony_ci subflow->backup = mp_opt.backup; 53662306a36Sopenharmony_ci subflow->thmac = mp_opt.thmac; 53762306a36Sopenharmony_ci subflow->remote_nonce = mp_opt.nonce; 53862306a36Sopenharmony_ci WRITE_ONCE(subflow->remote_id, mp_opt.join_id); 53962306a36Sopenharmony_ci pr_debug("subflow=%p, thmac=%llu, remote_nonce=%u backup=%d", 54062306a36Sopenharmony_ci subflow, subflow->thmac, subflow->remote_nonce, 54162306a36Sopenharmony_ci subflow->backup); 54262306a36Sopenharmony_ci 54362306a36Sopenharmony_ci if (!subflow_thmac_valid(subflow)) { 54462306a36Sopenharmony_ci MPTCP_INC_STATS(sock_net(sk), MPTCP_MIB_JOINACKMAC); 54562306a36Sopenharmony_ci subflow->reset_reason = MPTCP_RST_EMPTCP; 54662306a36Sopenharmony_ci goto do_reset; 54762306a36Sopenharmony_ci } 54862306a36Sopenharmony_ci 54962306a36Sopenharmony_ci if (!mptcp_finish_join(sk)) 55062306a36Sopenharmony_ci goto do_reset; 55162306a36Sopenharmony_ci 55262306a36Sopenharmony_ci subflow_generate_hmac(subflow->local_key, subflow->remote_key, 55362306a36Sopenharmony_ci subflow->local_nonce, 55462306a36Sopenharmony_ci subflow->remote_nonce, 55562306a36Sopenharmony_ci hmac); 55662306a36Sopenharmony_ci memcpy(subflow->hmac, hmac, MPTCPOPT_HMAC_LEN); 55762306a36Sopenharmony_ci 55862306a36Sopenharmony_ci subflow->mp_join = 1; 55962306a36Sopenharmony_ci MPTCP_INC_STATS(sock_net(sk), MPTCP_MIB_JOINSYNACKRX); 56062306a36Sopenharmony_ci 56162306a36Sopenharmony_ci if (subflow_use_different_dport(msk, sk)) { 56262306a36Sopenharmony_ci pr_debug("synack inet_dport=%d %d", 56362306a36Sopenharmony_ci ntohs(inet_sk(sk)->inet_dport), 56462306a36Sopenharmony_ci ntohs(inet_sk(parent)->inet_dport)); 56562306a36Sopenharmony_ci MPTCP_INC_STATS(sock_net(sk), MPTCP_MIB_JOINPORTSYNACKRX); 56662306a36Sopenharmony_ci } 56762306a36Sopenharmony_ci } else if (mptcp_check_fallback(sk)) { 56862306a36Sopenharmony_cifallback: 56962306a36Sopenharmony_ci mptcp_propagate_state(parent, sk, subflow, NULL); 57062306a36Sopenharmony_ci } 57162306a36Sopenharmony_ci return; 57262306a36Sopenharmony_ci 57362306a36Sopenharmony_cido_reset: 57462306a36Sopenharmony_ci subflow->reset_transient = 0; 57562306a36Sopenharmony_ci mptcp_subflow_reset(sk); 57662306a36Sopenharmony_ci} 57762306a36Sopenharmony_ci 57862306a36Sopenharmony_cistatic void subflow_set_local_id(struct mptcp_subflow_context *subflow, int local_id) 57962306a36Sopenharmony_ci{ 58062306a36Sopenharmony_ci WARN_ON_ONCE(local_id < 0 || local_id > 255); 58162306a36Sopenharmony_ci WRITE_ONCE(subflow->local_id, local_id); 58262306a36Sopenharmony_ci} 58362306a36Sopenharmony_ci 58462306a36Sopenharmony_cistatic int subflow_chk_local_id(struct sock *sk) 58562306a36Sopenharmony_ci{ 58662306a36Sopenharmony_ci struct mptcp_subflow_context *subflow = mptcp_subflow_ctx(sk); 58762306a36Sopenharmony_ci struct mptcp_sock *msk = mptcp_sk(subflow->conn); 58862306a36Sopenharmony_ci int err; 58962306a36Sopenharmony_ci 59062306a36Sopenharmony_ci if (likely(subflow->local_id >= 0)) 59162306a36Sopenharmony_ci return 0; 59262306a36Sopenharmony_ci 59362306a36Sopenharmony_ci err = mptcp_pm_get_local_id(msk, (struct sock_common *)sk); 59462306a36Sopenharmony_ci if (err < 0) 59562306a36Sopenharmony_ci return err; 59662306a36Sopenharmony_ci 59762306a36Sopenharmony_ci subflow_set_local_id(subflow, err); 59862306a36Sopenharmony_ci return 0; 59962306a36Sopenharmony_ci} 60062306a36Sopenharmony_ci 60162306a36Sopenharmony_cistatic int subflow_rebuild_header(struct sock *sk) 60262306a36Sopenharmony_ci{ 60362306a36Sopenharmony_ci int err = subflow_chk_local_id(sk); 60462306a36Sopenharmony_ci 60562306a36Sopenharmony_ci if (unlikely(err < 0)) 60662306a36Sopenharmony_ci return err; 60762306a36Sopenharmony_ci 60862306a36Sopenharmony_ci return inet_sk_rebuild_header(sk); 60962306a36Sopenharmony_ci} 61062306a36Sopenharmony_ci 61162306a36Sopenharmony_ci#if IS_ENABLED(CONFIG_MPTCP_IPV6) 61262306a36Sopenharmony_cistatic int subflow_v6_rebuild_header(struct sock *sk) 61362306a36Sopenharmony_ci{ 61462306a36Sopenharmony_ci int err = subflow_chk_local_id(sk); 61562306a36Sopenharmony_ci 61662306a36Sopenharmony_ci if (unlikely(err < 0)) 61762306a36Sopenharmony_ci return err; 61862306a36Sopenharmony_ci 61962306a36Sopenharmony_ci return inet6_sk_rebuild_header(sk); 62062306a36Sopenharmony_ci} 62162306a36Sopenharmony_ci#endif 62262306a36Sopenharmony_ci 62362306a36Sopenharmony_cistatic struct request_sock_ops mptcp_subflow_v4_request_sock_ops __ro_after_init; 62462306a36Sopenharmony_cistatic struct tcp_request_sock_ops subflow_request_sock_ipv4_ops __ro_after_init; 62562306a36Sopenharmony_ci 62662306a36Sopenharmony_cistatic int subflow_v4_conn_request(struct sock *sk, struct sk_buff *skb) 62762306a36Sopenharmony_ci{ 62862306a36Sopenharmony_ci struct mptcp_subflow_context *subflow = mptcp_subflow_ctx(sk); 62962306a36Sopenharmony_ci 63062306a36Sopenharmony_ci pr_debug("subflow=%p", subflow); 63162306a36Sopenharmony_ci 63262306a36Sopenharmony_ci /* Never answer to SYNs sent to broadcast or multicast */ 63362306a36Sopenharmony_ci if (skb_rtable(skb)->rt_flags & (RTCF_BROADCAST | RTCF_MULTICAST)) 63462306a36Sopenharmony_ci goto drop; 63562306a36Sopenharmony_ci 63662306a36Sopenharmony_ci return tcp_conn_request(&mptcp_subflow_v4_request_sock_ops, 63762306a36Sopenharmony_ci &subflow_request_sock_ipv4_ops, 63862306a36Sopenharmony_ci sk, skb); 63962306a36Sopenharmony_cidrop: 64062306a36Sopenharmony_ci tcp_listendrop(sk); 64162306a36Sopenharmony_ci return 0; 64262306a36Sopenharmony_ci} 64362306a36Sopenharmony_ci 64462306a36Sopenharmony_cistatic void subflow_v4_req_destructor(struct request_sock *req) 64562306a36Sopenharmony_ci{ 64662306a36Sopenharmony_ci subflow_req_destructor(req); 64762306a36Sopenharmony_ci tcp_request_sock_ops.destructor(req); 64862306a36Sopenharmony_ci} 64962306a36Sopenharmony_ci 65062306a36Sopenharmony_ci#if IS_ENABLED(CONFIG_MPTCP_IPV6) 65162306a36Sopenharmony_cistatic struct request_sock_ops mptcp_subflow_v6_request_sock_ops __ro_after_init; 65262306a36Sopenharmony_cistatic struct tcp_request_sock_ops subflow_request_sock_ipv6_ops __ro_after_init; 65362306a36Sopenharmony_cistatic struct inet_connection_sock_af_ops subflow_v6_specific __ro_after_init; 65462306a36Sopenharmony_cistatic struct inet_connection_sock_af_ops subflow_v6m_specific __ro_after_init; 65562306a36Sopenharmony_cistatic struct proto tcpv6_prot_override __ro_after_init; 65662306a36Sopenharmony_ci 65762306a36Sopenharmony_cistatic int subflow_v6_conn_request(struct sock *sk, struct sk_buff *skb) 65862306a36Sopenharmony_ci{ 65962306a36Sopenharmony_ci struct mptcp_subflow_context *subflow = mptcp_subflow_ctx(sk); 66062306a36Sopenharmony_ci 66162306a36Sopenharmony_ci pr_debug("subflow=%p", subflow); 66262306a36Sopenharmony_ci 66362306a36Sopenharmony_ci if (skb->protocol == htons(ETH_P_IP)) 66462306a36Sopenharmony_ci return subflow_v4_conn_request(sk, skb); 66562306a36Sopenharmony_ci 66662306a36Sopenharmony_ci if (!ipv6_unicast_destination(skb)) 66762306a36Sopenharmony_ci goto drop; 66862306a36Sopenharmony_ci 66962306a36Sopenharmony_ci if (ipv6_addr_v4mapped(&ipv6_hdr(skb)->saddr)) { 67062306a36Sopenharmony_ci __IP6_INC_STATS(sock_net(sk), NULL, IPSTATS_MIB_INHDRERRORS); 67162306a36Sopenharmony_ci return 0; 67262306a36Sopenharmony_ci } 67362306a36Sopenharmony_ci 67462306a36Sopenharmony_ci return tcp_conn_request(&mptcp_subflow_v6_request_sock_ops, 67562306a36Sopenharmony_ci &subflow_request_sock_ipv6_ops, sk, skb); 67662306a36Sopenharmony_ci 67762306a36Sopenharmony_cidrop: 67862306a36Sopenharmony_ci tcp_listendrop(sk); 67962306a36Sopenharmony_ci return 0; /* don't send reset */ 68062306a36Sopenharmony_ci} 68162306a36Sopenharmony_ci 68262306a36Sopenharmony_cistatic void subflow_v6_req_destructor(struct request_sock *req) 68362306a36Sopenharmony_ci{ 68462306a36Sopenharmony_ci subflow_req_destructor(req); 68562306a36Sopenharmony_ci tcp6_request_sock_ops.destructor(req); 68662306a36Sopenharmony_ci} 68762306a36Sopenharmony_ci#endif 68862306a36Sopenharmony_ci 68962306a36Sopenharmony_cistruct request_sock *mptcp_subflow_reqsk_alloc(const struct request_sock_ops *ops, 69062306a36Sopenharmony_ci struct sock *sk_listener, 69162306a36Sopenharmony_ci bool attach_listener) 69262306a36Sopenharmony_ci{ 69362306a36Sopenharmony_ci if (ops->family == AF_INET) 69462306a36Sopenharmony_ci ops = &mptcp_subflow_v4_request_sock_ops; 69562306a36Sopenharmony_ci#if IS_ENABLED(CONFIG_MPTCP_IPV6) 69662306a36Sopenharmony_ci else if (ops->family == AF_INET6) 69762306a36Sopenharmony_ci ops = &mptcp_subflow_v6_request_sock_ops; 69862306a36Sopenharmony_ci#endif 69962306a36Sopenharmony_ci 70062306a36Sopenharmony_ci return inet_reqsk_alloc(ops, sk_listener, attach_listener); 70162306a36Sopenharmony_ci} 70262306a36Sopenharmony_ciEXPORT_SYMBOL(mptcp_subflow_reqsk_alloc); 70362306a36Sopenharmony_ci 70462306a36Sopenharmony_ci/* validate hmac received in third ACK */ 70562306a36Sopenharmony_cistatic bool subflow_hmac_valid(const struct request_sock *req, 70662306a36Sopenharmony_ci const struct mptcp_options_received *mp_opt) 70762306a36Sopenharmony_ci{ 70862306a36Sopenharmony_ci const struct mptcp_subflow_request_sock *subflow_req; 70962306a36Sopenharmony_ci u8 hmac[SHA256_DIGEST_SIZE]; 71062306a36Sopenharmony_ci struct mptcp_sock *msk; 71162306a36Sopenharmony_ci 71262306a36Sopenharmony_ci subflow_req = mptcp_subflow_rsk(req); 71362306a36Sopenharmony_ci msk = subflow_req->msk; 71462306a36Sopenharmony_ci if (!msk) 71562306a36Sopenharmony_ci return false; 71662306a36Sopenharmony_ci 71762306a36Sopenharmony_ci subflow_generate_hmac(msk->remote_key, msk->local_key, 71862306a36Sopenharmony_ci subflow_req->remote_nonce, 71962306a36Sopenharmony_ci subflow_req->local_nonce, hmac); 72062306a36Sopenharmony_ci 72162306a36Sopenharmony_ci return !crypto_memneq(hmac, mp_opt->hmac, MPTCPOPT_HMAC_LEN); 72262306a36Sopenharmony_ci} 72362306a36Sopenharmony_ci 72462306a36Sopenharmony_cistatic void subflow_ulp_fallback(struct sock *sk, 72562306a36Sopenharmony_ci struct mptcp_subflow_context *old_ctx) 72662306a36Sopenharmony_ci{ 72762306a36Sopenharmony_ci struct inet_connection_sock *icsk = inet_csk(sk); 72862306a36Sopenharmony_ci 72962306a36Sopenharmony_ci mptcp_subflow_tcp_fallback(sk, old_ctx); 73062306a36Sopenharmony_ci icsk->icsk_ulp_ops = NULL; 73162306a36Sopenharmony_ci rcu_assign_pointer(icsk->icsk_ulp_data, NULL); 73262306a36Sopenharmony_ci tcp_sk(sk)->is_mptcp = 0; 73362306a36Sopenharmony_ci 73462306a36Sopenharmony_ci mptcp_subflow_ops_undo_override(sk); 73562306a36Sopenharmony_ci} 73662306a36Sopenharmony_ci 73762306a36Sopenharmony_civoid mptcp_subflow_drop_ctx(struct sock *ssk) 73862306a36Sopenharmony_ci{ 73962306a36Sopenharmony_ci struct mptcp_subflow_context *ctx = mptcp_subflow_ctx(ssk); 74062306a36Sopenharmony_ci 74162306a36Sopenharmony_ci if (!ctx) 74262306a36Sopenharmony_ci return; 74362306a36Sopenharmony_ci 74462306a36Sopenharmony_ci list_del(&mptcp_subflow_ctx(ssk)->node); 74562306a36Sopenharmony_ci if (inet_csk(ssk)->icsk_ulp_ops) { 74662306a36Sopenharmony_ci subflow_ulp_fallback(ssk, ctx); 74762306a36Sopenharmony_ci if (ctx->conn) 74862306a36Sopenharmony_ci sock_put(ctx->conn); 74962306a36Sopenharmony_ci } 75062306a36Sopenharmony_ci 75162306a36Sopenharmony_ci kfree_rcu(ctx, rcu); 75262306a36Sopenharmony_ci} 75362306a36Sopenharmony_ci 75462306a36Sopenharmony_civoid __mptcp_subflow_fully_established(struct mptcp_sock *msk, 75562306a36Sopenharmony_ci struct mptcp_subflow_context *subflow, 75662306a36Sopenharmony_ci const struct mptcp_options_received *mp_opt) 75762306a36Sopenharmony_ci{ 75862306a36Sopenharmony_ci subflow_set_remote_key(msk, subflow, mp_opt); 75962306a36Sopenharmony_ci subflow->fully_established = 1; 76062306a36Sopenharmony_ci WRITE_ONCE(msk->fully_established, true); 76162306a36Sopenharmony_ci 76262306a36Sopenharmony_ci if (subflow->is_mptfo) 76362306a36Sopenharmony_ci __mptcp_fastopen_gen_msk_ackseq(msk, subflow, mp_opt); 76462306a36Sopenharmony_ci} 76562306a36Sopenharmony_ci 76662306a36Sopenharmony_cistatic struct sock *subflow_syn_recv_sock(const struct sock *sk, 76762306a36Sopenharmony_ci struct sk_buff *skb, 76862306a36Sopenharmony_ci struct request_sock *req, 76962306a36Sopenharmony_ci struct dst_entry *dst, 77062306a36Sopenharmony_ci struct request_sock *req_unhash, 77162306a36Sopenharmony_ci bool *own_req) 77262306a36Sopenharmony_ci{ 77362306a36Sopenharmony_ci struct mptcp_subflow_context *listener = mptcp_subflow_ctx(sk); 77462306a36Sopenharmony_ci struct mptcp_subflow_request_sock *subflow_req; 77562306a36Sopenharmony_ci struct mptcp_options_received mp_opt; 77662306a36Sopenharmony_ci bool fallback, fallback_is_fatal; 77762306a36Sopenharmony_ci struct mptcp_sock *owner; 77862306a36Sopenharmony_ci struct sock *child; 77962306a36Sopenharmony_ci 78062306a36Sopenharmony_ci pr_debug("listener=%p, req=%p, conn=%p", listener, req, listener->conn); 78162306a36Sopenharmony_ci 78262306a36Sopenharmony_ci /* After child creation we must look for MPC even when options 78362306a36Sopenharmony_ci * are not parsed 78462306a36Sopenharmony_ci */ 78562306a36Sopenharmony_ci mp_opt.suboptions = 0; 78662306a36Sopenharmony_ci 78762306a36Sopenharmony_ci /* hopefully temporary handling for MP_JOIN+syncookie */ 78862306a36Sopenharmony_ci subflow_req = mptcp_subflow_rsk(req); 78962306a36Sopenharmony_ci fallback_is_fatal = tcp_rsk(req)->is_mptcp && subflow_req->mp_join; 79062306a36Sopenharmony_ci fallback = !tcp_rsk(req)->is_mptcp; 79162306a36Sopenharmony_ci if (fallback) 79262306a36Sopenharmony_ci goto create_child; 79362306a36Sopenharmony_ci 79462306a36Sopenharmony_ci /* if the sk is MP_CAPABLE, we try to fetch the client key */ 79562306a36Sopenharmony_ci if (subflow_req->mp_capable) { 79662306a36Sopenharmony_ci /* we can receive and accept an in-window, out-of-order pkt, 79762306a36Sopenharmony_ci * which may not carry the MP_CAPABLE opt even on mptcp enabled 79862306a36Sopenharmony_ci * paths: always try to extract the peer key, and fallback 79962306a36Sopenharmony_ci * for packets missing it. 80062306a36Sopenharmony_ci * Even OoO DSS packets coming legitly after dropped or 80162306a36Sopenharmony_ci * reordered MPC will cause fallback, but we don't have other 80262306a36Sopenharmony_ci * options. 80362306a36Sopenharmony_ci */ 80462306a36Sopenharmony_ci mptcp_get_options(skb, &mp_opt); 80562306a36Sopenharmony_ci if (!(mp_opt.suboptions & 80662306a36Sopenharmony_ci (OPTION_MPTCP_MPC_SYN | OPTION_MPTCP_MPC_ACK))) 80762306a36Sopenharmony_ci fallback = true; 80862306a36Sopenharmony_ci 80962306a36Sopenharmony_ci } else if (subflow_req->mp_join) { 81062306a36Sopenharmony_ci mptcp_get_options(skb, &mp_opt); 81162306a36Sopenharmony_ci if (!(mp_opt.suboptions & OPTION_MPTCP_MPJ_ACK) || 81262306a36Sopenharmony_ci !subflow_hmac_valid(req, &mp_opt) || 81362306a36Sopenharmony_ci !mptcp_can_accept_new_subflow(subflow_req->msk)) { 81462306a36Sopenharmony_ci SUBFLOW_REQ_INC_STATS(req, MPTCP_MIB_JOINACKMAC); 81562306a36Sopenharmony_ci fallback = true; 81662306a36Sopenharmony_ci } 81762306a36Sopenharmony_ci } 81862306a36Sopenharmony_ci 81962306a36Sopenharmony_cicreate_child: 82062306a36Sopenharmony_ci child = listener->icsk_af_ops->syn_recv_sock(sk, skb, req, dst, 82162306a36Sopenharmony_ci req_unhash, own_req); 82262306a36Sopenharmony_ci 82362306a36Sopenharmony_ci if (child && *own_req) { 82462306a36Sopenharmony_ci struct mptcp_subflow_context *ctx = mptcp_subflow_ctx(child); 82562306a36Sopenharmony_ci 82662306a36Sopenharmony_ci tcp_rsk(req)->drop_req = false; 82762306a36Sopenharmony_ci 82862306a36Sopenharmony_ci /* we need to fallback on ctx allocation failure and on pre-reqs 82962306a36Sopenharmony_ci * checking above. In the latter scenario we additionally need 83062306a36Sopenharmony_ci * to reset the context to non MPTCP status. 83162306a36Sopenharmony_ci */ 83262306a36Sopenharmony_ci if (!ctx || fallback) { 83362306a36Sopenharmony_ci if (fallback_is_fatal) { 83462306a36Sopenharmony_ci subflow_add_reset_reason(skb, MPTCP_RST_EMPTCP); 83562306a36Sopenharmony_ci goto dispose_child; 83662306a36Sopenharmony_ci } 83762306a36Sopenharmony_ci goto fallback; 83862306a36Sopenharmony_ci } 83962306a36Sopenharmony_ci 84062306a36Sopenharmony_ci /* ssk inherits options of listener sk */ 84162306a36Sopenharmony_ci ctx->setsockopt_seq = listener->setsockopt_seq; 84262306a36Sopenharmony_ci 84362306a36Sopenharmony_ci if (ctx->mp_capable) { 84462306a36Sopenharmony_ci ctx->conn = mptcp_sk_clone_init(listener->conn, &mp_opt, child, req); 84562306a36Sopenharmony_ci if (!ctx->conn) 84662306a36Sopenharmony_ci goto fallback; 84762306a36Sopenharmony_ci 84862306a36Sopenharmony_ci ctx->subflow_id = 1; 84962306a36Sopenharmony_ci owner = mptcp_sk(ctx->conn); 85062306a36Sopenharmony_ci mptcp_pm_new_connection(owner, child, 1); 85162306a36Sopenharmony_ci 85262306a36Sopenharmony_ci /* with OoO packets we can reach here without ingress 85362306a36Sopenharmony_ci * mpc option 85462306a36Sopenharmony_ci */ 85562306a36Sopenharmony_ci if (mp_opt.suboptions & OPTION_MPTCP_MPC_ACK) { 85662306a36Sopenharmony_ci mptcp_pm_fully_established(owner, child); 85762306a36Sopenharmony_ci ctx->pm_notified = 1; 85862306a36Sopenharmony_ci } 85962306a36Sopenharmony_ci } else if (ctx->mp_join) { 86062306a36Sopenharmony_ci owner = subflow_req->msk; 86162306a36Sopenharmony_ci if (!owner) { 86262306a36Sopenharmony_ci subflow_add_reset_reason(skb, MPTCP_RST_EPROHIBIT); 86362306a36Sopenharmony_ci goto dispose_child; 86462306a36Sopenharmony_ci } 86562306a36Sopenharmony_ci 86662306a36Sopenharmony_ci /* move the msk reference ownership to the subflow */ 86762306a36Sopenharmony_ci subflow_req->msk = NULL; 86862306a36Sopenharmony_ci ctx->conn = (struct sock *)owner; 86962306a36Sopenharmony_ci 87062306a36Sopenharmony_ci if (subflow_use_different_sport(owner, sk)) { 87162306a36Sopenharmony_ci pr_debug("ack inet_sport=%d %d", 87262306a36Sopenharmony_ci ntohs(inet_sk(sk)->inet_sport), 87362306a36Sopenharmony_ci ntohs(inet_sk((struct sock *)owner)->inet_sport)); 87462306a36Sopenharmony_ci if (!mptcp_pm_sport_in_anno_list(owner, sk)) { 87562306a36Sopenharmony_ci SUBFLOW_REQ_INC_STATS(req, MPTCP_MIB_MISMATCHPORTACKRX); 87662306a36Sopenharmony_ci goto dispose_child; 87762306a36Sopenharmony_ci } 87862306a36Sopenharmony_ci SUBFLOW_REQ_INC_STATS(req, MPTCP_MIB_JOINPORTACKRX); 87962306a36Sopenharmony_ci } 88062306a36Sopenharmony_ci 88162306a36Sopenharmony_ci if (!mptcp_finish_join(child)) 88262306a36Sopenharmony_ci goto dispose_child; 88362306a36Sopenharmony_ci 88462306a36Sopenharmony_ci SUBFLOW_REQ_INC_STATS(req, MPTCP_MIB_JOINACKRX); 88562306a36Sopenharmony_ci tcp_rsk(req)->drop_req = true; 88662306a36Sopenharmony_ci } 88762306a36Sopenharmony_ci } 88862306a36Sopenharmony_ci 88962306a36Sopenharmony_ci /* check for expected invariant - should never trigger, just help 89062306a36Sopenharmony_ci * catching eariler subtle bugs 89162306a36Sopenharmony_ci */ 89262306a36Sopenharmony_ci WARN_ON_ONCE(child && *own_req && tcp_sk(child)->is_mptcp && 89362306a36Sopenharmony_ci (!mptcp_subflow_ctx(child) || 89462306a36Sopenharmony_ci !mptcp_subflow_ctx(child)->conn)); 89562306a36Sopenharmony_ci return child; 89662306a36Sopenharmony_ci 89762306a36Sopenharmony_cidispose_child: 89862306a36Sopenharmony_ci mptcp_subflow_drop_ctx(child); 89962306a36Sopenharmony_ci tcp_rsk(req)->drop_req = true; 90062306a36Sopenharmony_ci inet_csk_prepare_for_destroy_sock(child); 90162306a36Sopenharmony_ci tcp_done(child); 90262306a36Sopenharmony_ci req->rsk_ops->send_reset(sk, skb); 90362306a36Sopenharmony_ci 90462306a36Sopenharmony_ci /* The last child reference will be released by the caller */ 90562306a36Sopenharmony_ci return child; 90662306a36Sopenharmony_ci 90762306a36Sopenharmony_cifallback: 90862306a36Sopenharmony_ci mptcp_subflow_drop_ctx(child); 90962306a36Sopenharmony_ci return child; 91062306a36Sopenharmony_ci} 91162306a36Sopenharmony_ci 91262306a36Sopenharmony_cistatic struct inet_connection_sock_af_ops subflow_specific __ro_after_init; 91362306a36Sopenharmony_cistatic struct proto tcp_prot_override __ro_after_init; 91462306a36Sopenharmony_ci 91562306a36Sopenharmony_cienum mapping_status { 91662306a36Sopenharmony_ci MAPPING_OK, 91762306a36Sopenharmony_ci MAPPING_INVALID, 91862306a36Sopenharmony_ci MAPPING_EMPTY, 91962306a36Sopenharmony_ci MAPPING_DATA_FIN, 92062306a36Sopenharmony_ci MAPPING_DUMMY, 92162306a36Sopenharmony_ci MAPPING_BAD_CSUM 92262306a36Sopenharmony_ci}; 92362306a36Sopenharmony_ci 92462306a36Sopenharmony_cistatic void dbg_bad_map(struct mptcp_subflow_context *subflow, u32 ssn) 92562306a36Sopenharmony_ci{ 92662306a36Sopenharmony_ci pr_debug("Bad mapping: ssn=%d map_seq=%d map_data_len=%d", 92762306a36Sopenharmony_ci ssn, subflow->map_subflow_seq, subflow->map_data_len); 92862306a36Sopenharmony_ci} 92962306a36Sopenharmony_ci 93062306a36Sopenharmony_cistatic bool skb_is_fully_mapped(struct sock *ssk, struct sk_buff *skb) 93162306a36Sopenharmony_ci{ 93262306a36Sopenharmony_ci struct mptcp_subflow_context *subflow = mptcp_subflow_ctx(ssk); 93362306a36Sopenharmony_ci unsigned int skb_consumed; 93462306a36Sopenharmony_ci 93562306a36Sopenharmony_ci skb_consumed = tcp_sk(ssk)->copied_seq - TCP_SKB_CB(skb)->seq; 93662306a36Sopenharmony_ci if (WARN_ON_ONCE(skb_consumed >= skb->len)) 93762306a36Sopenharmony_ci return true; 93862306a36Sopenharmony_ci 93962306a36Sopenharmony_ci return skb->len - skb_consumed <= subflow->map_data_len - 94062306a36Sopenharmony_ci mptcp_subflow_get_map_offset(subflow); 94162306a36Sopenharmony_ci} 94262306a36Sopenharmony_ci 94362306a36Sopenharmony_cistatic bool validate_mapping(struct sock *ssk, struct sk_buff *skb) 94462306a36Sopenharmony_ci{ 94562306a36Sopenharmony_ci struct mptcp_subflow_context *subflow = mptcp_subflow_ctx(ssk); 94662306a36Sopenharmony_ci u32 ssn = tcp_sk(ssk)->copied_seq - subflow->ssn_offset; 94762306a36Sopenharmony_ci 94862306a36Sopenharmony_ci if (unlikely(before(ssn, subflow->map_subflow_seq))) { 94962306a36Sopenharmony_ci /* Mapping covers data later in the subflow stream, 95062306a36Sopenharmony_ci * currently unsupported. 95162306a36Sopenharmony_ci */ 95262306a36Sopenharmony_ci dbg_bad_map(subflow, ssn); 95362306a36Sopenharmony_ci return false; 95462306a36Sopenharmony_ci } 95562306a36Sopenharmony_ci if (unlikely(!before(ssn, subflow->map_subflow_seq + 95662306a36Sopenharmony_ci subflow->map_data_len))) { 95762306a36Sopenharmony_ci /* Mapping does covers past subflow data, invalid */ 95862306a36Sopenharmony_ci dbg_bad_map(subflow, ssn); 95962306a36Sopenharmony_ci return false; 96062306a36Sopenharmony_ci } 96162306a36Sopenharmony_ci return true; 96262306a36Sopenharmony_ci} 96362306a36Sopenharmony_ci 96462306a36Sopenharmony_cistatic enum mapping_status validate_data_csum(struct sock *ssk, struct sk_buff *skb, 96562306a36Sopenharmony_ci bool csum_reqd) 96662306a36Sopenharmony_ci{ 96762306a36Sopenharmony_ci struct mptcp_subflow_context *subflow = mptcp_subflow_ctx(ssk); 96862306a36Sopenharmony_ci u32 offset, seq, delta; 96962306a36Sopenharmony_ci __sum16 csum; 97062306a36Sopenharmony_ci int len; 97162306a36Sopenharmony_ci 97262306a36Sopenharmony_ci if (!csum_reqd) 97362306a36Sopenharmony_ci return MAPPING_OK; 97462306a36Sopenharmony_ci 97562306a36Sopenharmony_ci /* mapping already validated on previous traversal */ 97662306a36Sopenharmony_ci if (subflow->map_csum_len == subflow->map_data_len) 97762306a36Sopenharmony_ci return MAPPING_OK; 97862306a36Sopenharmony_ci 97962306a36Sopenharmony_ci /* traverse the receive queue, ensuring it contains a full 98062306a36Sopenharmony_ci * DSS mapping and accumulating the related csum. 98162306a36Sopenharmony_ci * Preserve the accoumlate csum across multiple calls, to compute 98262306a36Sopenharmony_ci * the csum only once 98362306a36Sopenharmony_ci */ 98462306a36Sopenharmony_ci delta = subflow->map_data_len - subflow->map_csum_len; 98562306a36Sopenharmony_ci for (;;) { 98662306a36Sopenharmony_ci seq = tcp_sk(ssk)->copied_seq + subflow->map_csum_len; 98762306a36Sopenharmony_ci offset = seq - TCP_SKB_CB(skb)->seq; 98862306a36Sopenharmony_ci 98962306a36Sopenharmony_ci /* if the current skb has not been accounted yet, csum its contents 99062306a36Sopenharmony_ci * up to the amount covered by the current DSS 99162306a36Sopenharmony_ci */ 99262306a36Sopenharmony_ci if (offset < skb->len) { 99362306a36Sopenharmony_ci __wsum csum; 99462306a36Sopenharmony_ci 99562306a36Sopenharmony_ci len = min(skb->len - offset, delta); 99662306a36Sopenharmony_ci csum = skb_checksum(skb, offset, len, 0); 99762306a36Sopenharmony_ci subflow->map_data_csum = csum_block_add(subflow->map_data_csum, csum, 99862306a36Sopenharmony_ci subflow->map_csum_len); 99962306a36Sopenharmony_ci 100062306a36Sopenharmony_ci delta -= len; 100162306a36Sopenharmony_ci subflow->map_csum_len += len; 100262306a36Sopenharmony_ci } 100362306a36Sopenharmony_ci if (delta == 0) 100462306a36Sopenharmony_ci break; 100562306a36Sopenharmony_ci 100662306a36Sopenharmony_ci if (skb_queue_is_last(&ssk->sk_receive_queue, skb)) { 100762306a36Sopenharmony_ci /* if this subflow is closed, the partial mapping 100862306a36Sopenharmony_ci * will be never completed; flush the pending skbs, so 100962306a36Sopenharmony_ci * that subflow_sched_work_if_closed() can kick in 101062306a36Sopenharmony_ci */ 101162306a36Sopenharmony_ci if (unlikely(ssk->sk_state == TCP_CLOSE)) 101262306a36Sopenharmony_ci while ((skb = skb_peek(&ssk->sk_receive_queue))) 101362306a36Sopenharmony_ci sk_eat_skb(ssk, skb); 101462306a36Sopenharmony_ci 101562306a36Sopenharmony_ci /* not enough data to validate the csum */ 101662306a36Sopenharmony_ci return MAPPING_EMPTY; 101762306a36Sopenharmony_ci } 101862306a36Sopenharmony_ci 101962306a36Sopenharmony_ci /* the DSS mapping for next skbs will be validated later, 102062306a36Sopenharmony_ci * when a get_mapping_status call will process such skb 102162306a36Sopenharmony_ci */ 102262306a36Sopenharmony_ci skb = skb->next; 102362306a36Sopenharmony_ci } 102462306a36Sopenharmony_ci 102562306a36Sopenharmony_ci /* note that 'map_data_len' accounts only for the carried data, does 102662306a36Sopenharmony_ci * not include the eventual seq increment due to the data fin, 102762306a36Sopenharmony_ci * while the pseudo header requires the original DSS data len, 102862306a36Sopenharmony_ci * including that 102962306a36Sopenharmony_ci */ 103062306a36Sopenharmony_ci csum = __mptcp_make_csum(subflow->map_seq, 103162306a36Sopenharmony_ci subflow->map_subflow_seq, 103262306a36Sopenharmony_ci subflow->map_data_len + subflow->map_data_fin, 103362306a36Sopenharmony_ci subflow->map_data_csum); 103462306a36Sopenharmony_ci if (unlikely(csum)) { 103562306a36Sopenharmony_ci MPTCP_INC_STATS(sock_net(ssk), MPTCP_MIB_DATACSUMERR); 103662306a36Sopenharmony_ci return MAPPING_BAD_CSUM; 103762306a36Sopenharmony_ci } 103862306a36Sopenharmony_ci 103962306a36Sopenharmony_ci subflow->valid_csum_seen = 1; 104062306a36Sopenharmony_ci return MAPPING_OK; 104162306a36Sopenharmony_ci} 104262306a36Sopenharmony_ci 104362306a36Sopenharmony_cistatic enum mapping_status get_mapping_status(struct sock *ssk, 104462306a36Sopenharmony_ci struct mptcp_sock *msk) 104562306a36Sopenharmony_ci{ 104662306a36Sopenharmony_ci struct mptcp_subflow_context *subflow = mptcp_subflow_ctx(ssk); 104762306a36Sopenharmony_ci bool csum_reqd = READ_ONCE(msk->csum_enabled); 104862306a36Sopenharmony_ci struct mptcp_ext *mpext; 104962306a36Sopenharmony_ci struct sk_buff *skb; 105062306a36Sopenharmony_ci u16 data_len; 105162306a36Sopenharmony_ci u64 map_seq; 105262306a36Sopenharmony_ci 105362306a36Sopenharmony_ci skb = skb_peek(&ssk->sk_receive_queue); 105462306a36Sopenharmony_ci if (!skb) 105562306a36Sopenharmony_ci return MAPPING_EMPTY; 105662306a36Sopenharmony_ci 105762306a36Sopenharmony_ci if (mptcp_check_fallback(ssk)) 105862306a36Sopenharmony_ci return MAPPING_DUMMY; 105962306a36Sopenharmony_ci 106062306a36Sopenharmony_ci mpext = mptcp_get_ext(skb); 106162306a36Sopenharmony_ci if (!mpext || !mpext->use_map) { 106262306a36Sopenharmony_ci if (!subflow->map_valid && !skb->len) { 106362306a36Sopenharmony_ci /* the TCP stack deliver 0 len FIN pkt to the receive 106462306a36Sopenharmony_ci * queue, that is the only 0len pkts ever expected here, 106562306a36Sopenharmony_ci * and we can admit no mapping only for 0 len pkts 106662306a36Sopenharmony_ci */ 106762306a36Sopenharmony_ci if (!(TCP_SKB_CB(skb)->tcp_flags & TCPHDR_FIN)) 106862306a36Sopenharmony_ci WARN_ONCE(1, "0len seq %d:%d flags %x", 106962306a36Sopenharmony_ci TCP_SKB_CB(skb)->seq, 107062306a36Sopenharmony_ci TCP_SKB_CB(skb)->end_seq, 107162306a36Sopenharmony_ci TCP_SKB_CB(skb)->tcp_flags); 107262306a36Sopenharmony_ci sk_eat_skb(ssk, skb); 107362306a36Sopenharmony_ci return MAPPING_EMPTY; 107462306a36Sopenharmony_ci } 107562306a36Sopenharmony_ci 107662306a36Sopenharmony_ci if (!subflow->map_valid) 107762306a36Sopenharmony_ci return MAPPING_INVALID; 107862306a36Sopenharmony_ci 107962306a36Sopenharmony_ci goto validate_seq; 108062306a36Sopenharmony_ci } 108162306a36Sopenharmony_ci 108262306a36Sopenharmony_ci trace_get_mapping_status(mpext); 108362306a36Sopenharmony_ci 108462306a36Sopenharmony_ci data_len = mpext->data_len; 108562306a36Sopenharmony_ci if (data_len == 0) { 108662306a36Sopenharmony_ci pr_debug("infinite mapping received"); 108762306a36Sopenharmony_ci MPTCP_INC_STATS(sock_net(ssk), MPTCP_MIB_INFINITEMAPRX); 108862306a36Sopenharmony_ci subflow->map_data_len = 0; 108962306a36Sopenharmony_ci return MAPPING_INVALID; 109062306a36Sopenharmony_ci } 109162306a36Sopenharmony_ci 109262306a36Sopenharmony_ci if (mpext->data_fin == 1) { 109362306a36Sopenharmony_ci if (data_len == 1) { 109462306a36Sopenharmony_ci bool updated = mptcp_update_rcv_data_fin(msk, mpext->data_seq, 109562306a36Sopenharmony_ci mpext->dsn64); 109662306a36Sopenharmony_ci pr_debug("DATA_FIN with no payload seq=%llu", mpext->data_seq); 109762306a36Sopenharmony_ci if (subflow->map_valid) { 109862306a36Sopenharmony_ci /* A DATA_FIN might arrive in a DSS 109962306a36Sopenharmony_ci * option before the previous mapping 110062306a36Sopenharmony_ci * has been fully consumed. Continue 110162306a36Sopenharmony_ci * handling the existing mapping. 110262306a36Sopenharmony_ci */ 110362306a36Sopenharmony_ci skb_ext_del(skb, SKB_EXT_MPTCP); 110462306a36Sopenharmony_ci return MAPPING_OK; 110562306a36Sopenharmony_ci } else { 110662306a36Sopenharmony_ci if (updated) 110762306a36Sopenharmony_ci mptcp_schedule_work((struct sock *)msk); 110862306a36Sopenharmony_ci 110962306a36Sopenharmony_ci return MAPPING_DATA_FIN; 111062306a36Sopenharmony_ci } 111162306a36Sopenharmony_ci } else { 111262306a36Sopenharmony_ci u64 data_fin_seq = mpext->data_seq + data_len - 1; 111362306a36Sopenharmony_ci 111462306a36Sopenharmony_ci /* If mpext->data_seq is a 32-bit value, data_fin_seq 111562306a36Sopenharmony_ci * must also be limited to 32 bits. 111662306a36Sopenharmony_ci */ 111762306a36Sopenharmony_ci if (!mpext->dsn64) 111862306a36Sopenharmony_ci data_fin_seq &= GENMASK_ULL(31, 0); 111962306a36Sopenharmony_ci 112062306a36Sopenharmony_ci mptcp_update_rcv_data_fin(msk, data_fin_seq, mpext->dsn64); 112162306a36Sopenharmony_ci pr_debug("DATA_FIN with mapping seq=%llu dsn64=%d", 112262306a36Sopenharmony_ci data_fin_seq, mpext->dsn64); 112362306a36Sopenharmony_ci } 112462306a36Sopenharmony_ci 112562306a36Sopenharmony_ci /* Adjust for DATA_FIN using 1 byte of sequence space */ 112662306a36Sopenharmony_ci data_len--; 112762306a36Sopenharmony_ci } 112862306a36Sopenharmony_ci 112962306a36Sopenharmony_ci map_seq = mptcp_expand_seq(READ_ONCE(msk->ack_seq), mpext->data_seq, mpext->dsn64); 113062306a36Sopenharmony_ci WRITE_ONCE(mptcp_sk(subflow->conn)->use_64bit_ack, !!mpext->dsn64); 113162306a36Sopenharmony_ci 113262306a36Sopenharmony_ci if (subflow->map_valid) { 113362306a36Sopenharmony_ci /* Allow replacing only with an identical map */ 113462306a36Sopenharmony_ci if (subflow->map_seq == map_seq && 113562306a36Sopenharmony_ci subflow->map_subflow_seq == mpext->subflow_seq && 113662306a36Sopenharmony_ci subflow->map_data_len == data_len && 113762306a36Sopenharmony_ci subflow->map_csum_reqd == mpext->csum_reqd) { 113862306a36Sopenharmony_ci skb_ext_del(skb, SKB_EXT_MPTCP); 113962306a36Sopenharmony_ci goto validate_csum; 114062306a36Sopenharmony_ci } 114162306a36Sopenharmony_ci 114262306a36Sopenharmony_ci /* If this skb data are fully covered by the current mapping, 114362306a36Sopenharmony_ci * the new map would need caching, which is not supported 114462306a36Sopenharmony_ci */ 114562306a36Sopenharmony_ci if (skb_is_fully_mapped(ssk, skb)) { 114662306a36Sopenharmony_ci MPTCP_INC_STATS(sock_net(ssk), MPTCP_MIB_DSSNOMATCH); 114762306a36Sopenharmony_ci return MAPPING_INVALID; 114862306a36Sopenharmony_ci } 114962306a36Sopenharmony_ci 115062306a36Sopenharmony_ci /* will validate the next map after consuming the current one */ 115162306a36Sopenharmony_ci goto validate_csum; 115262306a36Sopenharmony_ci } 115362306a36Sopenharmony_ci 115462306a36Sopenharmony_ci subflow->map_seq = map_seq; 115562306a36Sopenharmony_ci subflow->map_subflow_seq = mpext->subflow_seq; 115662306a36Sopenharmony_ci subflow->map_data_len = data_len; 115762306a36Sopenharmony_ci subflow->map_valid = 1; 115862306a36Sopenharmony_ci subflow->map_data_fin = mpext->data_fin; 115962306a36Sopenharmony_ci subflow->mpc_map = mpext->mpc_map; 116062306a36Sopenharmony_ci subflow->map_csum_reqd = mpext->csum_reqd; 116162306a36Sopenharmony_ci subflow->map_csum_len = 0; 116262306a36Sopenharmony_ci subflow->map_data_csum = csum_unfold(mpext->csum); 116362306a36Sopenharmony_ci 116462306a36Sopenharmony_ci /* Cfr RFC 8684 Section 3.3.0 */ 116562306a36Sopenharmony_ci if (unlikely(subflow->map_csum_reqd != csum_reqd)) 116662306a36Sopenharmony_ci return MAPPING_INVALID; 116762306a36Sopenharmony_ci 116862306a36Sopenharmony_ci pr_debug("new map seq=%llu subflow_seq=%u data_len=%u csum=%d:%u", 116962306a36Sopenharmony_ci subflow->map_seq, subflow->map_subflow_seq, 117062306a36Sopenharmony_ci subflow->map_data_len, subflow->map_csum_reqd, 117162306a36Sopenharmony_ci subflow->map_data_csum); 117262306a36Sopenharmony_ci 117362306a36Sopenharmony_civalidate_seq: 117462306a36Sopenharmony_ci /* we revalidate valid mapping on new skb, because we must ensure 117562306a36Sopenharmony_ci * the current skb is completely covered by the available mapping 117662306a36Sopenharmony_ci */ 117762306a36Sopenharmony_ci if (!validate_mapping(ssk, skb)) { 117862306a36Sopenharmony_ci MPTCP_INC_STATS(sock_net(ssk), MPTCP_MIB_DSSTCPMISMATCH); 117962306a36Sopenharmony_ci return MAPPING_INVALID; 118062306a36Sopenharmony_ci } 118162306a36Sopenharmony_ci 118262306a36Sopenharmony_ci skb_ext_del(skb, SKB_EXT_MPTCP); 118362306a36Sopenharmony_ci 118462306a36Sopenharmony_civalidate_csum: 118562306a36Sopenharmony_ci return validate_data_csum(ssk, skb, csum_reqd); 118662306a36Sopenharmony_ci} 118762306a36Sopenharmony_ci 118862306a36Sopenharmony_cistatic void mptcp_subflow_discard_data(struct sock *ssk, struct sk_buff *skb, 118962306a36Sopenharmony_ci u64 limit) 119062306a36Sopenharmony_ci{ 119162306a36Sopenharmony_ci struct mptcp_subflow_context *subflow = mptcp_subflow_ctx(ssk); 119262306a36Sopenharmony_ci bool fin = TCP_SKB_CB(skb)->tcp_flags & TCPHDR_FIN; 119362306a36Sopenharmony_ci u32 incr; 119462306a36Sopenharmony_ci 119562306a36Sopenharmony_ci incr = limit >= skb->len ? skb->len + fin : limit; 119662306a36Sopenharmony_ci 119762306a36Sopenharmony_ci pr_debug("discarding=%d len=%d seq=%d", incr, skb->len, 119862306a36Sopenharmony_ci subflow->map_subflow_seq); 119962306a36Sopenharmony_ci MPTCP_INC_STATS(sock_net(ssk), MPTCP_MIB_DUPDATA); 120062306a36Sopenharmony_ci tcp_sk(ssk)->copied_seq += incr; 120162306a36Sopenharmony_ci if (!before(tcp_sk(ssk)->copied_seq, TCP_SKB_CB(skb)->end_seq)) 120262306a36Sopenharmony_ci sk_eat_skb(ssk, skb); 120362306a36Sopenharmony_ci if (mptcp_subflow_get_map_offset(subflow) >= subflow->map_data_len) 120462306a36Sopenharmony_ci subflow->map_valid = 0; 120562306a36Sopenharmony_ci} 120662306a36Sopenharmony_ci 120762306a36Sopenharmony_ci/* sched mptcp worker to remove the subflow if no more data is pending */ 120862306a36Sopenharmony_cistatic void subflow_sched_work_if_closed(struct mptcp_sock *msk, struct sock *ssk) 120962306a36Sopenharmony_ci{ 121062306a36Sopenharmony_ci if (likely(ssk->sk_state != TCP_CLOSE)) 121162306a36Sopenharmony_ci return; 121262306a36Sopenharmony_ci 121362306a36Sopenharmony_ci if (skb_queue_empty(&ssk->sk_receive_queue) && 121462306a36Sopenharmony_ci !test_and_set_bit(MPTCP_WORK_CLOSE_SUBFLOW, &msk->flags)) 121562306a36Sopenharmony_ci mptcp_schedule_work((struct sock *)msk); 121662306a36Sopenharmony_ci} 121762306a36Sopenharmony_ci 121862306a36Sopenharmony_cistatic bool subflow_can_fallback(struct mptcp_subflow_context *subflow) 121962306a36Sopenharmony_ci{ 122062306a36Sopenharmony_ci struct mptcp_sock *msk = mptcp_sk(subflow->conn); 122162306a36Sopenharmony_ci 122262306a36Sopenharmony_ci if (subflow->mp_join) 122362306a36Sopenharmony_ci return false; 122462306a36Sopenharmony_ci else if (READ_ONCE(msk->csum_enabled)) 122562306a36Sopenharmony_ci return !subflow->valid_csum_seen; 122662306a36Sopenharmony_ci else 122762306a36Sopenharmony_ci return !subflow->fully_established; 122862306a36Sopenharmony_ci} 122962306a36Sopenharmony_ci 123062306a36Sopenharmony_cistatic void mptcp_subflow_fail(struct mptcp_sock *msk, struct sock *ssk) 123162306a36Sopenharmony_ci{ 123262306a36Sopenharmony_ci struct mptcp_subflow_context *subflow = mptcp_subflow_ctx(ssk); 123362306a36Sopenharmony_ci unsigned long fail_tout; 123462306a36Sopenharmony_ci 123562306a36Sopenharmony_ci /* greceful failure can happen only on the MPC subflow */ 123662306a36Sopenharmony_ci if (WARN_ON_ONCE(ssk != READ_ONCE(msk->first))) 123762306a36Sopenharmony_ci return; 123862306a36Sopenharmony_ci 123962306a36Sopenharmony_ci /* since the close timeout take precedence on the fail one, 124062306a36Sopenharmony_ci * no need to start the latter when the first is already set 124162306a36Sopenharmony_ci */ 124262306a36Sopenharmony_ci if (sock_flag((struct sock *)msk, SOCK_DEAD)) 124362306a36Sopenharmony_ci return; 124462306a36Sopenharmony_ci 124562306a36Sopenharmony_ci /* we don't need extreme accuracy here, use a zero fail_tout as special 124662306a36Sopenharmony_ci * value meaning no fail timeout at all; 124762306a36Sopenharmony_ci */ 124862306a36Sopenharmony_ci fail_tout = jiffies + TCP_RTO_MAX; 124962306a36Sopenharmony_ci if (!fail_tout) 125062306a36Sopenharmony_ci fail_tout = 1; 125162306a36Sopenharmony_ci WRITE_ONCE(subflow->fail_tout, fail_tout); 125262306a36Sopenharmony_ci tcp_send_ack(ssk); 125362306a36Sopenharmony_ci 125462306a36Sopenharmony_ci mptcp_reset_tout_timer(msk, subflow->fail_tout); 125562306a36Sopenharmony_ci} 125662306a36Sopenharmony_ci 125762306a36Sopenharmony_cistatic bool subflow_check_data_avail(struct sock *ssk) 125862306a36Sopenharmony_ci{ 125962306a36Sopenharmony_ci struct mptcp_subflow_context *subflow = mptcp_subflow_ctx(ssk); 126062306a36Sopenharmony_ci enum mapping_status status; 126162306a36Sopenharmony_ci struct mptcp_sock *msk; 126262306a36Sopenharmony_ci struct sk_buff *skb; 126362306a36Sopenharmony_ci 126462306a36Sopenharmony_ci if (!skb_peek(&ssk->sk_receive_queue)) 126562306a36Sopenharmony_ci WRITE_ONCE(subflow->data_avail, MPTCP_SUBFLOW_NODATA); 126662306a36Sopenharmony_ci if (subflow->data_avail) 126762306a36Sopenharmony_ci return true; 126862306a36Sopenharmony_ci 126962306a36Sopenharmony_ci msk = mptcp_sk(subflow->conn); 127062306a36Sopenharmony_ci for (;;) { 127162306a36Sopenharmony_ci u64 ack_seq; 127262306a36Sopenharmony_ci u64 old_ack; 127362306a36Sopenharmony_ci 127462306a36Sopenharmony_ci status = get_mapping_status(ssk, msk); 127562306a36Sopenharmony_ci trace_subflow_check_data_avail(status, skb_peek(&ssk->sk_receive_queue)); 127662306a36Sopenharmony_ci if (unlikely(status == MAPPING_INVALID || status == MAPPING_DUMMY || 127762306a36Sopenharmony_ci status == MAPPING_BAD_CSUM)) 127862306a36Sopenharmony_ci goto fallback; 127962306a36Sopenharmony_ci 128062306a36Sopenharmony_ci if (status != MAPPING_OK) 128162306a36Sopenharmony_ci goto no_data; 128262306a36Sopenharmony_ci 128362306a36Sopenharmony_ci skb = skb_peek(&ssk->sk_receive_queue); 128462306a36Sopenharmony_ci if (WARN_ON_ONCE(!skb)) 128562306a36Sopenharmony_ci goto no_data; 128662306a36Sopenharmony_ci 128762306a36Sopenharmony_ci if (unlikely(!READ_ONCE(msk->can_ack))) 128862306a36Sopenharmony_ci goto fallback; 128962306a36Sopenharmony_ci 129062306a36Sopenharmony_ci old_ack = READ_ONCE(msk->ack_seq); 129162306a36Sopenharmony_ci ack_seq = mptcp_subflow_get_mapped_dsn(subflow); 129262306a36Sopenharmony_ci pr_debug("msk ack_seq=%llx subflow ack_seq=%llx", old_ack, 129362306a36Sopenharmony_ci ack_seq); 129462306a36Sopenharmony_ci if (unlikely(before64(ack_seq, old_ack))) { 129562306a36Sopenharmony_ci mptcp_subflow_discard_data(ssk, skb, old_ack - ack_seq); 129662306a36Sopenharmony_ci continue; 129762306a36Sopenharmony_ci } 129862306a36Sopenharmony_ci 129962306a36Sopenharmony_ci WRITE_ONCE(subflow->data_avail, MPTCP_SUBFLOW_DATA_AVAIL); 130062306a36Sopenharmony_ci break; 130162306a36Sopenharmony_ci } 130262306a36Sopenharmony_ci return true; 130362306a36Sopenharmony_ci 130462306a36Sopenharmony_cino_data: 130562306a36Sopenharmony_ci subflow_sched_work_if_closed(msk, ssk); 130662306a36Sopenharmony_ci return false; 130762306a36Sopenharmony_ci 130862306a36Sopenharmony_cifallback: 130962306a36Sopenharmony_ci if (!__mptcp_check_fallback(msk)) { 131062306a36Sopenharmony_ci /* RFC 8684 section 3.7. */ 131162306a36Sopenharmony_ci if (status == MAPPING_BAD_CSUM && 131262306a36Sopenharmony_ci (subflow->mp_join || subflow->valid_csum_seen)) { 131362306a36Sopenharmony_ci subflow->send_mp_fail = 1; 131462306a36Sopenharmony_ci 131562306a36Sopenharmony_ci if (!READ_ONCE(msk->allow_infinite_fallback)) { 131662306a36Sopenharmony_ci subflow->reset_transient = 0; 131762306a36Sopenharmony_ci subflow->reset_reason = MPTCP_RST_EMIDDLEBOX; 131862306a36Sopenharmony_ci goto reset; 131962306a36Sopenharmony_ci } 132062306a36Sopenharmony_ci mptcp_subflow_fail(msk, ssk); 132162306a36Sopenharmony_ci WRITE_ONCE(subflow->data_avail, MPTCP_SUBFLOW_DATA_AVAIL); 132262306a36Sopenharmony_ci return true; 132362306a36Sopenharmony_ci } 132462306a36Sopenharmony_ci 132562306a36Sopenharmony_ci if (!subflow_can_fallback(subflow) && subflow->map_data_len) { 132662306a36Sopenharmony_ci /* fatal protocol error, close the socket. 132762306a36Sopenharmony_ci * subflow_error_report() will introduce the appropriate barriers 132862306a36Sopenharmony_ci */ 132962306a36Sopenharmony_ci subflow->reset_transient = 0; 133062306a36Sopenharmony_ci subflow->reset_reason = MPTCP_RST_EMPTCP; 133162306a36Sopenharmony_ci 133262306a36Sopenharmony_cireset: 133362306a36Sopenharmony_ci WRITE_ONCE(ssk->sk_err, EBADMSG); 133462306a36Sopenharmony_ci tcp_set_state(ssk, TCP_CLOSE); 133562306a36Sopenharmony_ci while ((skb = skb_peek(&ssk->sk_receive_queue))) 133662306a36Sopenharmony_ci sk_eat_skb(ssk, skb); 133762306a36Sopenharmony_ci tcp_send_active_reset(ssk, GFP_ATOMIC); 133862306a36Sopenharmony_ci WRITE_ONCE(subflow->data_avail, MPTCP_SUBFLOW_NODATA); 133962306a36Sopenharmony_ci return false; 134062306a36Sopenharmony_ci } 134162306a36Sopenharmony_ci 134262306a36Sopenharmony_ci mptcp_do_fallback(ssk); 134362306a36Sopenharmony_ci } 134462306a36Sopenharmony_ci 134562306a36Sopenharmony_ci skb = skb_peek(&ssk->sk_receive_queue); 134662306a36Sopenharmony_ci subflow->map_valid = 1; 134762306a36Sopenharmony_ci subflow->map_seq = READ_ONCE(msk->ack_seq); 134862306a36Sopenharmony_ci subflow->map_data_len = skb->len; 134962306a36Sopenharmony_ci subflow->map_subflow_seq = tcp_sk(ssk)->copied_seq - subflow->ssn_offset; 135062306a36Sopenharmony_ci WRITE_ONCE(subflow->data_avail, MPTCP_SUBFLOW_DATA_AVAIL); 135162306a36Sopenharmony_ci return true; 135262306a36Sopenharmony_ci} 135362306a36Sopenharmony_ci 135462306a36Sopenharmony_cibool mptcp_subflow_data_available(struct sock *sk) 135562306a36Sopenharmony_ci{ 135662306a36Sopenharmony_ci struct mptcp_subflow_context *subflow = mptcp_subflow_ctx(sk); 135762306a36Sopenharmony_ci 135862306a36Sopenharmony_ci /* check if current mapping is still valid */ 135962306a36Sopenharmony_ci if (subflow->map_valid && 136062306a36Sopenharmony_ci mptcp_subflow_get_map_offset(subflow) >= subflow->map_data_len) { 136162306a36Sopenharmony_ci subflow->map_valid = 0; 136262306a36Sopenharmony_ci WRITE_ONCE(subflow->data_avail, MPTCP_SUBFLOW_NODATA); 136362306a36Sopenharmony_ci 136462306a36Sopenharmony_ci pr_debug("Done with mapping: seq=%u data_len=%u", 136562306a36Sopenharmony_ci subflow->map_subflow_seq, 136662306a36Sopenharmony_ci subflow->map_data_len); 136762306a36Sopenharmony_ci } 136862306a36Sopenharmony_ci 136962306a36Sopenharmony_ci return subflow_check_data_avail(sk); 137062306a36Sopenharmony_ci} 137162306a36Sopenharmony_ci 137262306a36Sopenharmony_ci/* If ssk has an mptcp parent socket, use the mptcp rcvbuf occupancy, 137362306a36Sopenharmony_ci * not the ssk one. 137462306a36Sopenharmony_ci * 137562306a36Sopenharmony_ci * In mptcp, rwin is about the mptcp-level connection data. 137662306a36Sopenharmony_ci * 137762306a36Sopenharmony_ci * Data that is still on the ssk rx queue can thus be ignored, 137862306a36Sopenharmony_ci * as far as mptcp peer is concerned that data is still inflight. 137962306a36Sopenharmony_ci * DSS ACK is updated when skb is moved to the mptcp rx queue. 138062306a36Sopenharmony_ci */ 138162306a36Sopenharmony_civoid mptcp_space(const struct sock *ssk, int *space, int *full_space) 138262306a36Sopenharmony_ci{ 138362306a36Sopenharmony_ci const struct mptcp_subflow_context *subflow = mptcp_subflow_ctx(ssk); 138462306a36Sopenharmony_ci const struct sock *sk = subflow->conn; 138562306a36Sopenharmony_ci 138662306a36Sopenharmony_ci *space = __mptcp_space(sk); 138762306a36Sopenharmony_ci *full_space = mptcp_win_from_space(sk, READ_ONCE(sk->sk_rcvbuf)); 138862306a36Sopenharmony_ci} 138962306a36Sopenharmony_ci 139062306a36Sopenharmony_cistatic void subflow_error_report(struct sock *ssk) 139162306a36Sopenharmony_ci{ 139262306a36Sopenharmony_ci struct sock *sk = mptcp_subflow_ctx(ssk)->conn; 139362306a36Sopenharmony_ci 139462306a36Sopenharmony_ci /* bail early if this is a no-op, so that we avoid introducing a 139562306a36Sopenharmony_ci * problematic lockdep dependency between TCP accept queue lock 139662306a36Sopenharmony_ci * and msk socket spinlock 139762306a36Sopenharmony_ci */ 139862306a36Sopenharmony_ci if (!sk->sk_socket) 139962306a36Sopenharmony_ci return; 140062306a36Sopenharmony_ci 140162306a36Sopenharmony_ci mptcp_data_lock(sk); 140262306a36Sopenharmony_ci if (!sock_owned_by_user(sk)) 140362306a36Sopenharmony_ci __mptcp_error_report(sk); 140462306a36Sopenharmony_ci else 140562306a36Sopenharmony_ci __set_bit(MPTCP_ERROR_REPORT, &mptcp_sk(sk)->cb_flags); 140662306a36Sopenharmony_ci mptcp_data_unlock(sk); 140762306a36Sopenharmony_ci} 140862306a36Sopenharmony_ci 140962306a36Sopenharmony_cistatic void subflow_data_ready(struct sock *sk) 141062306a36Sopenharmony_ci{ 141162306a36Sopenharmony_ci struct mptcp_subflow_context *subflow = mptcp_subflow_ctx(sk); 141262306a36Sopenharmony_ci u16 state = 1 << inet_sk_state_load(sk); 141362306a36Sopenharmony_ci struct sock *parent = subflow->conn; 141462306a36Sopenharmony_ci struct mptcp_sock *msk; 141562306a36Sopenharmony_ci 141662306a36Sopenharmony_ci trace_sk_data_ready(sk); 141762306a36Sopenharmony_ci 141862306a36Sopenharmony_ci msk = mptcp_sk(parent); 141962306a36Sopenharmony_ci if (state & TCPF_LISTEN) { 142062306a36Sopenharmony_ci /* MPJ subflow are removed from accept queue before reaching here, 142162306a36Sopenharmony_ci * avoid stray wakeups 142262306a36Sopenharmony_ci */ 142362306a36Sopenharmony_ci if (reqsk_queue_empty(&inet_csk(sk)->icsk_accept_queue)) 142462306a36Sopenharmony_ci return; 142562306a36Sopenharmony_ci 142662306a36Sopenharmony_ci parent->sk_data_ready(parent); 142762306a36Sopenharmony_ci return; 142862306a36Sopenharmony_ci } 142962306a36Sopenharmony_ci 143062306a36Sopenharmony_ci WARN_ON_ONCE(!__mptcp_check_fallback(msk) && !subflow->mp_capable && 143162306a36Sopenharmony_ci !subflow->mp_join && !(state & TCPF_CLOSE)); 143262306a36Sopenharmony_ci 143362306a36Sopenharmony_ci if (mptcp_subflow_data_available(sk)) 143462306a36Sopenharmony_ci mptcp_data_ready(parent, sk); 143562306a36Sopenharmony_ci else if (unlikely(sk->sk_err)) 143662306a36Sopenharmony_ci subflow_error_report(sk); 143762306a36Sopenharmony_ci} 143862306a36Sopenharmony_ci 143962306a36Sopenharmony_cistatic void subflow_write_space(struct sock *ssk) 144062306a36Sopenharmony_ci{ 144162306a36Sopenharmony_ci struct sock *sk = mptcp_subflow_ctx(ssk)->conn; 144262306a36Sopenharmony_ci 144362306a36Sopenharmony_ci mptcp_propagate_sndbuf(sk, ssk); 144462306a36Sopenharmony_ci mptcp_write_space(sk); 144562306a36Sopenharmony_ci} 144662306a36Sopenharmony_ci 144762306a36Sopenharmony_cistatic const struct inet_connection_sock_af_ops * 144862306a36Sopenharmony_cisubflow_default_af_ops(struct sock *sk) 144962306a36Sopenharmony_ci{ 145062306a36Sopenharmony_ci#if IS_ENABLED(CONFIG_MPTCP_IPV6) 145162306a36Sopenharmony_ci if (sk->sk_family == AF_INET6) 145262306a36Sopenharmony_ci return &subflow_v6_specific; 145362306a36Sopenharmony_ci#endif 145462306a36Sopenharmony_ci return &subflow_specific; 145562306a36Sopenharmony_ci} 145662306a36Sopenharmony_ci 145762306a36Sopenharmony_ci#if IS_ENABLED(CONFIG_MPTCP_IPV6) 145862306a36Sopenharmony_civoid mptcpv6_handle_mapped(struct sock *sk, bool mapped) 145962306a36Sopenharmony_ci{ 146062306a36Sopenharmony_ci struct mptcp_subflow_context *subflow = mptcp_subflow_ctx(sk); 146162306a36Sopenharmony_ci struct inet_connection_sock *icsk = inet_csk(sk); 146262306a36Sopenharmony_ci const struct inet_connection_sock_af_ops *target; 146362306a36Sopenharmony_ci 146462306a36Sopenharmony_ci target = mapped ? &subflow_v6m_specific : subflow_default_af_ops(sk); 146562306a36Sopenharmony_ci 146662306a36Sopenharmony_ci pr_debug("subflow=%p family=%d ops=%p target=%p mapped=%d", 146762306a36Sopenharmony_ci subflow, sk->sk_family, icsk->icsk_af_ops, target, mapped); 146862306a36Sopenharmony_ci 146962306a36Sopenharmony_ci if (likely(icsk->icsk_af_ops == target)) 147062306a36Sopenharmony_ci return; 147162306a36Sopenharmony_ci 147262306a36Sopenharmony_ci subflow->icsk_af_ops = icsk->icsk_af_ops; 147362306a36Sopenharmony_ci icsk->icsk_af_ops = target; 147462306a36Sopenharmony_ci} 147562306a36Sopenharmony_ci#endif 147662306a36Sopenharmony_ci 147762306a36Sopenharmony_civoid mptcp_info2sockaddr(const struct mptcp_addr_info *info, 147862306a36Sopenharmony_ci struct sockaddr_storage *addr, 147962306a36Sopenharmony_ci unsigned short family) 148062306a36Sopenharmony_ci{ 148162306a36Sopenharmony_ci memset(addr, 0, sizeof(*addr)); 148262306a36Sopenharmony_ci addr->ss_family = family; 148362306a36Sopenharmony_ci if (addr->ss_family == AF_INET) { 148462306a36Sopenharmony_ci struct sockaddr_in *in_addr = (struct sockaddr_in *)addr; 148562306a36Sopenharmony_ci 148662306a36Sopenharmony_ci if (info->family == AF_INET) 148762306a36Sopenharmony_ci in_addr->sin_addr = info->addr; 148862306a36Sopenharmony_ci#if IS_ENABLED(CONFIG_MPTCP_IPV6) 148962306a36Sopenharmony_ci else if (ipv6_addr_v4mapped(&info->addr6)) 149062306a36Sopenharmony_ci in_addr->sin_addr.s_addr = info->addr6.s6_addr32[3]; 149162306a36Sopenharmony_ci#endif 149262306a36Sopenharmony_ci in_addr->sin_port = info->port; 149362306a36Sopenharmony_ci } 149462306a36Sopenharmony_ci#if IS_ENABLED(CONFIG_MPTCP_IPV6) 149562306a36Sopenharmony_ci else if (addr->ss_family == AF_INET6) { 149662306a36Sopenharmony_ci struct sockaddr_in6 *in6_addr = (struct sockaddr_in6 *)addr; 149762306a36Sopenharmony_ci 149862306a36Sopenharmony_ci if (info->family == AF_INET) 149962306a36Sopenharmony_ci ipv6_addr_set_v4mapped(info->addr.s_addr, 150062306a36Sopenharmony_ci &in6_addr->sin6_addr); 150162306a36Sopenharmony_ci else 150262306a36Sopenharmony_ci in6_addr->sin6_addr = info->addr6; 150362306a36Sopenharmony_ci in6_addr->sin6_port = info->port; 150462306a36Sopenharmony_ci } 150562306a36Sopenharmony_ci#endif 150662306a36Sopenharmony_ci} 150762306a36Sopenharmony_ci 150862306a36Sopenharmony_ciint __mptcp_subflow_connect(struct sock *sk, const struct mptcp_addr_info *loc, 150962306a36Sopenharmony_ci const struct mptcp_addr_info *remote) 151062306a36Sopenharmony_ci{ 151162306a36Sopenharmony_ci struct mptcp_sock *msk = mptcp_sk(sk); 151262306a36Sopenharmony_ci struct mptcp_subflow_context *subflow; 151362306a36Sopenharmony_ci struct sockaddr_storage addr; 151462306a36Sopenharmony_ci int remote_id = remote->id; 151562306a36Sopenharmony_ci int local_id = loc->id; 151662306a36Sopenharmony_ci int err = -ENOTCONN; 151762306a36Sopenharmony_ci struct socket *sf; 151862306a36Sopenharmony_ci struct sock *ssk; 151962306a36Sopenharmony_ci u32 remote_token; 152062306a36Sopenharmony_ci int addrlen; 152162306a36Sopenharmony_ci int ifindex; 152262306a36Sopenharmony_ci u8 flags; 152362306a36Sopenharmony_ci 152462306a36Sopenharmony_ci if (!mptcp_is_fully_established(sk)) 152562306a36Sopenharmony_ci goto err_out; 152662306a36Sopenharmony_ci 152762306a36Sopenharmony_ci err = mptcp_subflow_create_socket(sk, loc->family, &sf); 152862306a36Sopenharmony_ci if (err) 152962306a36Sopenharmony_ci goto err_out; 153062306a36Sopenharmony_ci 153162306a36Sopenharmony_ci ssk = sf->sk; 153262306a36Sopenharmony_ci subflow = mptcp_subflow_ctx(ssk); 153362306a36Sopenharmony_ci do { 153462306a36Sopenharmony_ci get_random_bytes(&subflow->local_nonce, sizeof(u32)); 153562306a36Sopenharmony_ci } while (!subflow->local_nonce); 153662306a36Sopenharmony_ci 153762306a36Sopenharmony_ci if (local_id) 153862306a36Sopenharmony_ci subflow_set_local_id(subflow, local_id); 153962306a36Sopenharmony_ci 154062306a36Sopenharmony_ci mptcp_pm_get_flags_and_ifindex_by_id(msk, local_id, 154162306a36Sopenharmony_ci &flags, &ifindex); 154262306a36Sopenharmony_ci subflow->remote_key_valid = 1; 154362306a36Sopenharmony_ci subflow->remote_key = msk->remote_key; 154462306a36Sopenharmony_ci subflow->local_key = msk->local_key; 154562306a36Sopenharmony_ci subflow->token = msk->token; 154662306a36Sopenharmony_ci mptcp_info2sockaddr(loc, &addr, ssk->sk_family); 154762306a36Sopenharmony_ci 154862306a36Sopenharmony_ci addrlen = sizeof(struct sockaddr_in); 154962306a36Sopenharmony_ci#if IS_ENABLED(CONFIG_MPTCP_IPV6) 155062306a36Sopenharmony_ci if (addr.ss_family == AF_INET6) 155162306a36Sopenharmony_ci addrlen = sizeof(struct sockaddr_in6); 155262306a36Sopenharmony_ci#endif 155362306a36Sopenharmony_ci mptcp_sockopt_sync(msk, ssk); 155462306a36Sopenharmony_ci 155562306a36Sopenharmony_ci ssk->sk_bound_dev_if = ifindex; 155662306a36Sopenharmony_ci err = kernel_bind(sf, (struct sockaddr *)&addr, addrlen); 155762306a36Sopenharmony_ci if (err) 155862306a36Sopenharmony_ci goto failed; 155962306a36Sopenharmony_ci 156062306a36Sopenharmony_ci mptcp_crypto_key_sha(subflow->remote_key, &remote_token, NULL); 156162306a36Sopenharmony_ci pr_debug("msk=%p remote_token=%u local_id=%d remote_id=%d", msk, 156262306a36Sopenharmony_ci remote_token, local_id, remote_id); 156362306a36Sopenharmony_ci subflow->remote_token = remote_token; 156462306a36Sopenharmony_ci WRITE_ONCE(subflow->remote_id, remote_id); 156562306a36Sopenharmony_ci subflow->request_join = 1; 156662306a36Sopenharmony_ci subflow->request_bkup = !!(flags & MPTCP_PM_ADDR_FLAG_BACKUP); 156762306a36Sopenharmony_ci subflow->subflow_id = msk->subflow_id++; 156862306a36Sopenharmony_ci mptcp_info2sockaddr(remote, &addr, ssk->sk_family); 156962306a36Sopenharmony_ci 157062306a36Sopenharmony_ci sock_hold(ssk); 157162306a36Sopenharmony_ci list_add_tail(&subflow->node, &msk->conn_list); 157262306a36Sopenharmony_ci err = kernel_connect(sf, (struct sockaddr *)&addr, addrlen, O_NONBLOCK); 157362306a36Sopenharmony_ci if (err && err != -EINPROGRESS) 157462306a36Sopenharmony_ci goto failed_unlink; 157562306a36Sopenharmony_ci 157662306a36Sopenharmony_ci /* discard the subflow socket */ 157762306a36Sopenharmony_ci mptcp_sock_graft(ssk, sk->sk_socket); 157862306a36Sopenharmony_ci iput(SOCK_INODE(sf)); 157962306a36Sopenharmony_ci WRITE_ONCE(msk->allow_infinite_fallback, false); 158062306a36Sopenharmony_ci mptcp_stop_tout_timer(sk); 158162306a36Sopenharmony_ci return 0; 158262306a36Sopenharmony_ci 158362306a36Sopenharmony_cifailed_unlink: 158462306a36Sopenharmony_ci list_del(&subflow->node); 158562306a36Sopenharmony_ci sock_put(mptcp_subflow_tcp_sock(subflow)); 158662306a36Sopenharmony_ci 158762306a36Sopenharmony_cifailed: 158862306a36Sopenharmony_ci subflow->disposable = 1; 158962306a36Sopenharmony_ci sock_release(sf); 159062306a36Sopenharmony_ci 159162306a36Sopenharmony_cierr_out: 159262306a36Sopenharmony_ci /* we account subflows before the creation, and this failures will not 159362306a36Sopenharmony_ci * be caught by sk_state_change() 159462306a36Sopenharmony_ci */ 159562306a36Sopenharmony_ci mptcp_pm_close_subflow(msk); 159662306a36Sopenharmony_ci return err; 159762306a36Sopenharmony_ci} 159862306a36Sopenharmony_ci 159962306a36Sopenharmony_cistatic void mptcp_attach_cgroup(struct sock *parent, struct sock *child) 160062306a36Sopenharmony_ci{ 160162306a36Sopenharmony_ci#ifdef CONFIG_SOCK_CGROUP_DATA 160262306a36Sopenharmony_ci struct sock_cgroup_data *parent_skcd = &parent->sk_cgrp_data, 160362306a36Sopenharmony_ci *child_skcd = &child->sk_cgrp_data; 160462306a36Sopenharmony_ci 160562306a36Sopenharmony_ci /* only the additional subflows created by kworkers have to be modified */ 160662306a36Sopenharmony_ci if (cgroup_id(sock_cgroup_ptr(parent_skcd)) != 160762306a36Sopenharmony_ci cgroup_id(sock_cgroup_ptr(child_skcd))) { 160862306a36Sopenharmony_ci#ifdef CONFIG_MEMCG 160962306a36Sopenharmony_ci struct mem_cgroup *memcg = parent->sk_memcg; 161062306a36Sopenharmony_ci 161162306a36Sopenharmony_ci mem_cgroup_sk_free(child); 161262306a36Sopenharmony_ci if (memcg && css_tryget(&memcg->css)) 161362306a36Sopenharmony_ci child->sk_memcg = memcg; 161462306a36Sopenharmony_ci#endif /* CONFIG_MEMCG */ 161562306a36Sopenharmony_ci 161662306a36Sopenharmony_ci cgroup_sk_free(child_skcd); 161762306a36Sopenharmony_ci *child_skcd = *parent_skcd; 161862306a36Sopenharmony_ci cgroup_sk_clone(child_skcd); 161962306a36Sopenharmony_ci } 162062306a36Sopenharmony_ci#endif /* CONFIG_SOCK_CGROUP_DATA */ 162162306a36Sopenharmony_ci} 162262306a36Sopenharmony_ci 162362306a36Sopenharmony_cistatic void mptcp_subflow_ops_override(struct sock *ssk) 162462306a36Sopenharmony_ci{ 162562306a36Sopenharmony_ci#if IS_ENABLED(CONFIG_MPTCP_IPV6) 162662306a36Sopenharmony_ci if (ssk->sk_prot == &tcpv6_prot) 162762306a36Sopenharmony_ci ssk->sk_prot = &tcpv6_prot_override; 162862306a36Sopenharmony_ci else 162962306a36Sopenharmony_ci#endif 163062306a36Sopenharmony_ci ssk->sk_prot = &tcp_prot_override; 163162306a36Sopenharmony_ci} 163262306a36Sopenharmony_ci 163362306a36Sopenharmony_cistatic void mptcp_subflow_ops_undo_override(struct sock *ssk) 163462306a36Sopenharmony_ci{ 163562306a36Sopenharmony_ci#if IS_ENABLED(CONFIG_MPTCP_IPV6) 163662306a36Sopenharmony_ci if (ssk->sk_prot == &tcpv6_prot_override) 163762306a36Sopenharmony_ci ssk->sk_prot = &tcpv6_prot; 163862306a36Sopenharmony_ci else 163962306a36Sopenharmony_ci#endif 164062306a36Sopenharmony_ci ssk->sk_prot = &tcp_prot; 164162306a36Sopenharmony_ci} 164262306a36Sopenharmony_ci 164362306a36Sopenharmony_ciint mptcp_subflow_create_socket(struct sock *sk, unsigned short family, 164462306a36Sopenharmony_ci struct socket **new_sock) 164562306a36Sopenharmony_ci{ 164662306a36Sopenharmony_ci struct mptcp_subflow_context *subflow; 164762306a36Sopenharmony_ci struct net *net = sock_net(sk); 164862306a36Sopenharmony_ci struct socket *sf; 164962306a36Sopenharmony_ci int err; 165062306a36Sopenharmony_ci 165162306a36Sopenharmony_ci /* un-accepted server sockets can reach here - on bad configuration 165262306a36Sopenharmony_ci * bail early to avoid greater trouble later 165362306a36Sopenharmony_ci */ 165462306a36Sopenharmony_ci if (unlikely(!sk->sk_socket)) 165562306a36Sopenharmony_ci return -EINVAL; 165662306a36Sopenharmony_ci 165762306a36Sopenharmony_ci err = sock_create_kern(net, family, SOCK_STREAM, IPPROTO_TCP, &sf); 165862306a36Sopenharmony_ci if (err) 165962306a36Sopenharmony_ci return err; 166062306a36Sopenharmony_ci 166162306a36Sopenharmony_ci lock_sock_nested(sf->sk, SINGLE_DEPTH_NESTING); 166262306a36Sopenharmony_ci 166362306a36Sopenharmony_ci err = security_mptcp_add_subflow(sk, sf->sk); 166462306a36Sopenharmony_ci if (err) 166562306a36Sopenharmony_ci goto release_ssk; 166662306a36Sopenharmony_ci 166762306a36Sopenharmony_ci /* the newly created socket has to be in the same cgroup as its parent */ 166862306a36Sopenharmony_ci mptcp_attach_cgroup(sk, sf->sk); 166962306a36Sopenharmony_ci 167062306a36Sopenharmony_ci /* kernel sockets do not by default acquire net ref, but TCP timer 167162306a36Sopenharmony_ci * needs it. 167262306a36Sopenharmony_ci * Update ns_tracker to current stack trace and refcounted tracker. 167362306a36Sopenharmony_ci */ 167462306a36Sopenharmony_ci __netns_tracker_free(net, &sf->sk->ns_tracker, false); 167562306a36Sopenharmony_ci sf->sk->sk_net_refcnt = 1; 167662306a36Sopenharmony_ci get_net_track(net, &sf->sk->ns_tracker, GFP_KERNEL); 167762306a36Sopenharmony_ci sock_inuse_add(net, 1); 167862306a36Sopenharmony_ci err = tcp_set_ulp(sf->sk, "mptcp"); 167962306a36Sopenharmony_ci 168062306a36Sopenharmony_cirelease_ssk: 168162306a36Sopenharmony_ci release_sock(sf->sk); 168262306a36Sopenharmony_ci 168362306a36Sopenharmony_ci if (err) { 168462306a36Sopenharmony_ci sock_release(sf); 168562306a36Sopenharmony_ci return err; 168662306a36Sopenharmony_ci } 168762306a36Sopenharmony_ci 168862306a36Sopenharmony_ci /* the newly created socket really belongs to the owning MPTCP master 168962306a36Sopenharmony_ci * socket, even if for additional subflows the allocation is performed 169062306a36Sopenharmony_ci * by a kernel workqueue. Adjust inode references, so that the 169162306a36Sopenharmony_ci * procfs/diag interfaces really show this one belonging to the correct 169262306a36Sopenharmony_ci * user. 169362306a36Sopenharmony_ci */ 169462306a36Sopenharmony_ci SOCK_INODE(sf)->i_ino = SOCK_INODE(sk->sk_socket)->i_ino; 169562306a36Sopenharmony_ci SOCK_INODE(sf)->i_uid = SOCK_INODE(sk->sk_socket)->i_uid; 169662306a36Sopenharmony_ci SOCK_INODE(sf)->i_gid = SOCK_INODE(sk->sk_socket)->i_gid; 169762306a36Sopenharmony_ci 169862306a36Sopenharmony_ci subflow = mptcp_subflow_ctx(sf->sk); 169962306a36Sopenharmony_ci pr_debug("subflow=%p", subflow); 170062306a36Sopenharmony_ci 170162306a36Sopenharmony_ci *new_sock = sf; 170262306a36Sopenharmony_ci sock_hold(sk); 170362306a36Sopenharmony_ci subflow->conn = sk; 170462306a36Sopenharmony_ci mptcp_subflow_ops_override(sf->sk); 170562306a36Sopenharmony_ci 170662306a36Sopenharmony_ci return 0; 170762306a36Sopenharmony_ci} 170862306a36Sopenharmony_ci 170962306a36Sopenharmony_cistatic struct mptcp_subflow_context *subflow_create_ctx(struct sock *sk, 171062306a36Sopenharmony_ci gfp_t priority) 171162306a36Sopenharmony_ci{ 171262306a36Sopenharmony_ci struct inet_connection_sock *icsk = inet_csk(sk); 171362306a36Sopenharmony_ci struct mptcp_subflow_context *ctx; 171462306a36Sopenharmony_ci 171562306a36Sopenharmony_ci ctx = kzalloc(sizeof(*ctx), priority); 171662306a36Sopenharmony_ci if (!ctx) 171762306a36Sopenharmony_ci return NULL; 171862306a36Sopenharmony_ci 171962306a36Sopenharmony_ci rcu_assign_pointer(icsk->icsk_ulp_data, ctx); 172062306a36Sopenharmony_ci INIT_LIST_HEAD(&ctx->node); 172162306a36Sopenharmony_ci INIT_LIST_HEAD(&ctx->delegated_node); 172262306a36Sopenharmony_ci 172362306a36Sopenharmony_ci pr_debug("subflow=%p", ctx); 172462306a36Sopenharmony_ci 172562306a36Sopenharmony_ci ctx->tcp_sock = sk; 172662306a36Sopenharmony_ci WRITE_ONCE(ctx->local_id, -1); 172762306a36Sopenharmony_ci 172862306a36Sopenharmony_ci return ctx; 172962306a36Sopenharmony_ci} 173062306a36Sopenharmony_ci 173162306a36Sopenharmony_cistatic void __subflow_state_change(struct sock *sk) 173262306a36Sopenharmony_ci{ 173362306a36Sopenharmony_ci struct socket_wq *wq; 173462306a36Sopenharmony_ci 173562306a36Sopenharmony_ci rcu_read_lock(); 173662306a36Sopenharmony_ci wq = rcu_dereference(sk->sk_wq); 173762306a36Sopenharmony_ci if (skwq_has_sleeper(wq)) 173862306a36Sopenharmony_ci wake_up_interruptible_all(&wq->wait); 173962306a36Sopenharmony_ci rcu_read_unlock(); 174062306a36Sopenharmony_ci} 174162306a36Sopenharmony_ci 174262306a36Sopenharmony_cistatic bool subflow_is_done(const struct sock *sk) 174362306a36Sopenharmony_ci{ 174462306a36Sopenharmony_ci return sk->sk_shutdown & RCV_SHUTDOWN || sk->sk_state == TCP_CLOSE; 174562306a36Sopenharmony_ci} 174662306a36Sopenharmony_ci 174762306a36Sopenharmony_cistatic void subflow_state_change(struct sock *sk) 174862306a36Sopenharmony_ci{ 174962306a36Sopenharmony_ci struct mptcp_subflow_context *subflow = mptcp_subflow_ctx(sk); 175062306a36Sopenharmony_ci struct sock *parent = subflow->conn; 175162306a36Sopenharmony_ci struct mptcp_sock *msk; 175262306a36Sopenharmony_ci 175362306a36Sopenharmony_ci __subflow_state_change(sk); 175462306a36Sopenharmony_ci 175562306a36Sopenharmony_ci msk = mptcp_sk(parent); 175662306a36Sopenharmony_ci if (subflow_simultaneous_connect(sk)) { 175762306a36Sopenharmony_ci mptcp_do_fallback(sk); 175862306a36Sopenharmony_ci pr_fallback(msk); 175962306a36Sopenharmony_ci subflow->conn_finished = 1; 176062306a36Sopenharmony_ci mptcp_propagate_state(parent, sk, subflow, NULL); 176162306a36Sopenharmony_ci } 176262306a36Sopenharmony_ci 176362306a36Sopenharmony_ci /* as recvmsg() does not acquire the subflow socket for ssk selection 176462306a36Sopenharmony_ci * a fin packet carrying a DSS can be unnoticed if we don't trigger 176562306a36Sopenharmony_ci * the data available machinery here. 176662306a36Sopenharmony_ci */ 176762306a36Sopenharmony_ci if (mptcp_subflow_data_available(sk)) 176862306a36Sopenharmony_ci mptcp_data_ready(parent, sk); 176962306a36Sopenharmony_ci else if (unlikely(sk->sk_err)) 177062306a36Sopenharmony_ci subflow_error_report(sk); 177162306a36Sopenharmony_ci 177262306a36Sopenharmony_ci subflow_sched_work_if_closed(mptcp_sk(parent), sk); 177362306a36Sopenharmony_ci 177462306a36Sopenharmony_ci /* when the fallback subflow closes the rx side, trigger a 'dummy' 177562306a36Sopenharmony_ci * ingress data fin, so that the msk state will follow along 177662306a36Sopenharmony_ci */ 177762306a36Sopenharmony_ci if (__mptcp_check_fallback(msk) && subflow_is_done(sk) && msk->first == sk && 177862306a36Sopenharmony_ci mptcp_update_rcv_data_fin(msk, READ_ONCE(msk->ack_seq), true)) 177962306a36Sopenharmony_ci mptcp_schedule_work(parent); 178062306a36Sopenharmony_ci} 178162306a36Sopenharmony_ci 178262306a36Sopenharmony_civoid mptcp_subflow_queue_clean(struct sock *listener_sk, struct sock *listener_ssk) 178362306a36Sopenharmony_ci{ 178462306a36Sopenharmony_ci struct request_sock_queue *queue = &inet_csk(listener_ssk)->icsk_accept_queue; 178562306a36Sopenharmony_ci struct request_sock *req, *head, *tail; 178662306a36Sopenharmony_ci struct mptcp_subflow_context *subflow; 178762306a36Sopenharmony_ci struct sock *sk, *ssk; 178862306a36Sopenharmony_ci 178962306a36Sopenharmony_ci /* Due to lock dependencies no relevant lock can be acquired under rskq_lock. 179062306a36Sopenharmony_ci * Splice the req list, so that accept() can not reach the pending ssk after 179162306a36Sopenharmony_ci * the listener socket is released below. 179262306a36Sopenharmony_ci */ 179362306a36Sopenharmony_ci spin_lock_bh(&queue->rskq_lock); 179462306a36Sopenharmony_ci head = queue->rskq_accept_head; 179562306a36Sopenharmony_ci tail = queue->rskq_accept_tail; 179662306a36Sopenharmony_ci queue->rskq_accept_head = NULL; 179762306a36Sopenharmony_ci queue->rskq_accept_tail = NULL; 179862306a36Sopenharmony_ci spin_unlock_bh(&queue->rskq_lock); 179962306a36Sopenharmony_ci 180062306a36Sopenharmony_ci if (!head) 180162306a36Sopenharmony_ci return; 180262306a36Sopenharmony_ci 180362306a36Sopenharmony_ci /* can't acquire the msk socket lock under the subflow one, 180462306a36Sopenharmony_ci * or will cause ABBA deadlock 180562306a36Sopenharmony_ci */ 180662306a36Sopenharmony_ci release_sock(listener_ssk); 180762306a36Sopenharmony_ci 180862306a36Sopenharmony_ci for (req = head; req; req = req->dl_next) { 180962306a36Sopenharmony_ci ssk = req->sk; 181062306a36Sopenharmony_ci if (!sk_is_mptcp(ssk)) 181162306a36Sopenharmony_ci continue; 181262306a36Sopenharmony_ci 181362306a36Sopenharmony_ci subflow = mptcp_subflow_ctx(ssk); 181462306a36Sopenharmony_ci if (!subflow || !subflow->conn) 181562306a36Sopenharmony_ci continue; 181662306a36Sopenharmony_ci 181762306a36Sopenharmony_ci sk = subflow->conn; 181862306a36Sopenharmony_ci sock_hold(sk); 181962306a36Sopenharmony_ci 182062306a36Sopenharmony_ci lock_sock_nested(sk, SINGLE_DEPTH_NESTING); 182162306a36Sopenharmony_ci __mptcp_unaccepted_force_close(sk); 182262306a36Sopenharmony_ci release_sock(sk); 182362306a36Sopenharmony_ci 182462306a36Sopenharmony_ci /* lockdep will report a false positive ABBA deadlock 182562306a36Sopenharmony_ci * between cancel_work_sync and the listener socket. 182662306a36Sopenharmony_ci * The involved locks belong to different sockets WRT 182762306a36Sopenharmony_ci * the existing AB chain. 182862306a36Sopenharmony_ci * Using a per socket key is problematic as key 182962306a36Sopenharmony_ci * deregistration requires process context and must be 183062306a36Sopenharmony_ci * performed at socket disposal time, in atomic 183162306a36Sopenharmony_ci * context. 183262306a36Sopenharmony_ci * Just tell lockdep to consider the listener socket 183362306a36Sopenharmony_ci * released here. 183462306a36Sopenharmony_ci */ 183562306a36Sopenharmony_ci mutex_release(&listener_sk->sk_lock.dep_map, _RET_IP_); 183662306a36Sopenharmony_ci mptcp_cancel_work(sk); 183762306a36Sopenharmony_ci mutex_acquire(&listener_sk->sk_lock.dep_map, 0, 0, _RET_IP_); 183862306a36Sopenharmony_ci 183962306a36Sopenharmony_ci sock_put(sk); 184062306a36Sopenharmony_ci } 184162306a36Sopenharmony_ci 184262306a36Sopenharmony_ci /* we are still under the listener msk socket lock */ 184362306a36Sopenharmony_ci lock_sock_nested(listener_ssk, SINGLE_DEPTH_NESTING); 184462306a36Sopenharmony_ci 184562306a36Sopenharmony_ci /* restore the listener queue, to let the TCP code clean it up */ 184662306a36Sopenharmony_ci spin_lock_bh(&queue->rskq_lock); 184762306a36Sopenharmony_ci WARN_ON_ONCE(queue->rskq_accept_head); 184862306a36Sopenharmony_ci queue->rskq_accept_head = head; 184962306a36Sopenharmony_ci queue->rskq_accept_tail = tail; 185062306a36Sopenharmony_ci spin_unlock_bh(&queue->rskq_lock); 185162306a36Sopenharmony_ci} 185262306a36Sopenharmony_ci 185362306a36Sopenharmony_cistatic int subflow_ulp_init(struct sock *sk) 185462306a36Sopenharmony_ci{ 185562306a36Sopenharmony_ci struct inet_connection_sock *icsk = inet_csk(sk); 185662306a36Sopenharmony_ci struct mptcp_subflow_context *ctx; 185762306a36Sopenharmony_ci struct tcp_sock *tp = tcp_sk(sk); 185862306a36Sopenharmony_ci int err = 0; 185962306a36Sopenharmony_ci 186062306a36Sopenharmony_ci /* disallow attaching ULP to a socket unless it has been 186162306a36Sopenharmony_ci * created with sock_create_kern() 186262306a36Sopenharmony_ci */ 186362306a36Sopenharmony_ci if (!sk->sk_kern_sock) { 186462306a36Sopenharmony_ci err = -EOPNOTSUPP; 186562306a36Sopenharmony_ci goto out; 186662306a36Sopenharmony_ci } 186762306a36Sopenharmony_ci 186862306a36Sopenharmony_ci ctx = subflow_create_ctx(sk, GFP_KERNEL); 186962306a36Sopenharmony_ci if (!ctx) { 187062306a36Sopenharmony_ci err = -ENOMEM; 187162306a36Sopenharmony_ci goto out; 187262306a36Sopenharmony_ci } 187362306a36Sopenharmony_ci 187462306a36Sopenharmony_ci pr_debug("subflow=%p, family=%d", ctx, sk->sk_family); 187562306a36Sopenharmony_ci 187662306a36Sopenharmony_ci tp->is_mptcp = 1; 187762306a36Sopenharmony_ci ctx->icsk_af_ops = icsk->icsk_af_ops; 187862306a36Sopenharmony_ci icsk->icsk_af_ops = subflow_default_af_ops(sk); 187962306a36Sopenharmony_ci ctx->tcp_state_change = sk->sk_state_change; 188062306a36Sopenharmony_ci ctx->tcp_error_report = sk->sk_error_report; 188162306a36Sopenharmony_ci 188262306a36Sopenharmony_ci WARN_ON_ONCE(sk->sk_data_ready != sock_def_readable); 188362306a36Sopenharmony_ci WARN_ON_ONCE(sk->sk_write_space != sk_stream_write_space); 188462306a36Sopenharmony_ci 188562306a36Sopenharmony_ci sk->sk_data_ready = subflow_data_ready; 188662306a36Sopenharmony_ci sk->sk_write_space = subflow_write_space; 188762306a36Sopenharmony_ci sk->sk_state_change = subflow_state_change; 188862306a36Sopenharmony_ci sk->sk_error_report = subflow_error_report; 188962306a36Sopenharmony_ciout: 189062306a36Sopenharmony_ci return err; 189162306a36Sopenharmony_ci} 189262306a36Sopenharmony_ci 189362306a36Sopenharmony_cistatic void subflow_ulp_release(struct sock *ssk) 189462306a36Sopenharmony_ci{ 189562306a36Sopenharmony_ci struct mptcp_subflow_context *ctx = mptcp_subflow_ctx(ssk); 189662306a36Sopenharmony_ci bool release = true; 189762306a36Sopenharmony_ci struct sock *sk; 189862306a36Sopenharmony_ci 189962306a36Sopenharmony_ci if (!ctx) 190062306a36Sopenharmony_ci return; 190162306a36Sopenharmony_ci 190262306a36Sopenharmony_ci sk = ctx->conn; 190362306a36Sopenharmony_ci if (sk) { 190462306a36Sopenharmony_ci /* if the msk has been orphaned, keep the ctx 190562306a36Sopenharmony_ci * alive, will be freed by __mptcp_close_ssk(), 190662306a36Sopenharmony_ci * when the subflow is still unaccepted 190762306a36Sopenharmony_ci */ 190862306a36Sopenharmony_ci release = ctx->disposable || list_empty(&ctx->node); 190962306a36Sopenharmony_ci 191062306a36Sopenharmony_ci /* inet_child_forget() does not call sk_state_change(), 191162306a36Sopenharmony_ci * explicitly trigger the socket close machinery 191262306a36Sopenharmony_ci */ 191362306a36Sopenharmony_ci if (!release && !test_and_set_bit(MPTCP_WORK_CLOSE_SUBFLOW, 191462306a36Sopenharmony_ci &mptcp_sk(sk)->flags)) 191562306a36Sopenharmony_ci mptcp_schedule_work(sk); 191662306a36Sopenharmony_ci sock_put(sk); 191762306a36Sopenharmony_ci } 191862306a36Sopenharmony_ci 191962306a36Sopenharmony_ci mptcp_subflow_ops_undo_override(ssk); 192062306a36Sopenharmony_ci if (release) 192162306a36Sopenharmony_ci kfree_rcu(ctx, rcu); 192262306a36Sopenharmony_ci} 192362306a36Sopenharmony_ci 192462306a36Sopenharmony_cistatic void subflow_ulp_clone(const struct request_sock *req, 192562306a36Sopenharmony_ci struct sock *newsk, 192662306a36Sopenharmony_ci const gfp_t priority) 192762306a36Sopenharmony_ci{ 192862306a36Sopenharmony_ci struct mptcp_subflow_request_sock *subflow_req = mptcp_subflow_rsk(req); 192962306a36Sopenharmony_ci struct mptcp_subflow_context *old_ctx = mptcp_subflow_ctx(newsk); 193062306a36Sopenharmony_ci struct mptcp_subflow_context *new_ctx; 193162306a36Sopenharmony_ci 193262306a36Sopenharmony_ci if (!tcp_rsk(req)->is_mptcp || 193362306a36Sopenharmony_ci (!subflow_req->mp_capable && !subflow_req->mp_join)) { 193462306a36Sopenharmony_ci subflow_ulp_fallback(newsk, old_ctx); 193562306a36Sopenharmony_ci return; 193662306a36Sopenharmony_ci } 193762306a36Sopenharmony_ci 193862306a36Sopenharmony_ci new_ctx = subflow_create_ctx(newsk, priority); 193962306a36Sopenharmony_ci if (!new_ctx) { 194062306a36Sopenharmony_ci subflow_ulp_fallback(newsk, old_ctx); 194162306a36Sopenharmony_ci return; 194262306a36Sopenharmony_ci } 194362306a36Sopenharmony_ci 194462306a36Sopenharmony_ci new_ctx->conn_finished = 1; 194562306a36Sopenharmony_ci new_ctx->icsk_af_ops = old_ctx->icsk_af_ops; 194662306a36Sopenharmony_ci new_ctx->tcp_state_change = old_ctx->tcp_state_change; 194762306a36Sopenharmony_ci new_ctx->tcp_error_report = old_ctx->tcp_error_report; 194862306a36Sopenharmony_ci new_ctx->rel_write_seq = 1; 194962306a36Sopenharmony_ci new_ctx->tcp_sock = newsk; 195062306a36Sopenharmony_ci 195162306a36Sopenharmony_ci if (subflow_req->mp_capable) { 195262306a36Sopenharmony_ci /* see comments in subflow_syn_recv_sock(), MPTCP connection 195362306a36Sopenharmony_ci * is fully established only after we receive the remote key 195462306a36Sopenharmony_ci */ 195562306a36Sopenharmony_ci new_ctx->mp_capable = 1; 195662306a36Sopenharmony_ci new_ctx->local_key = subflow_req->local_key; 195762306a36Sopenharmony_ci new_ctx->token = subflow_req->token; 195862306a36Sopenharmony_ci new_ctx->ssn_offset = subflow_req->ssn_offset; 195962306a36Sopenharmony_ci new_ctx->idsn = subflow_req->idsn; 196062306a36Sopenharmony_ci 196162306a36Sopenharmony_ci /* this is the first subflow, id is always 0 */ 196262306a36Sopenharmony_ci subflow_set_local_id(new_ctx, 0); 196362306a36Sopenharmony_ci } else if (subflow_req->mp_join) { 196462306a36Sopenharmony_ci new_ctx->ssn_offset = subflow_req->ssn_offset; 196562306a36Sopenharmony_ci new_ctx->mp_join = 1; 196662306a36Sopenharmony_ci new_ctx->fully_established = 1; 196762306a36Sopenharmony_ci new_ctx->remote_key_valid = 1; 196862306a36Sopenharmony_ci new_ctx->backup = subflow_req->backup; 196962306a36Sopenharmony_ci WRITE_ONCE(new_ctx->remote_id, subflow_req->remote_id); 197062306a36Sopenharmony_ci new_ctx->token = subflow_req->token; 197162306a36Sopenharmony_ci new_ctx->thmac = subflow_req->thmac; 197262306a36Sopenharmony_ci 197362306a36Sopenharmony_ci /* the subflow req id is valid, fetched via subflow_check_req() 197462306a36Sopenharmony_ci * and subflow_token_join_request() 197562306a36Sopenharmony_ci */ 197662306a36Sopenharmony_ci subflow_set_local_id(new_ctx, subflow_req->local_id); 197762306a36Sopenharmony_ci } 197862306a36Sopenharmony_ci} 197962306a36Sopenharmony_ci 198062306a36Sopenharmony_cistatic void tcp_release_cb_override(struct sock *ssk) 198162306a36Sopenharmony_ci{ 198262306a36Sopenharmony_ci struct mptcp_subflow_context *subflow = mptcp_subflow_ctx(ssk); 198362306a36Sopenharmony_ci long status; 198462306a36Sopenharmony_ci 198562306a36Sopenharmony_ci /* process and clear all the pending actions, but leave the subflow into 198662306a36Sopenharmony_ci * the napi queue. To respect locking, only the same CPU that originated 198762306a36Sopenharmony_ci * the action can touch the list. mptcp_napi_poll will take care of it. 198862306a36Sopenharmony_ci */ 198962306a36Sopenharmony_ci status = set_mask_bits(&subflow->delegated_status, MPTCP_DELEGATE_ACTIONS_MASK, 0); 199062306a36Sopenharmony_ci if (status) 199162306a36Sopenharmony_ci mptcp_subflow_process_delegated(ssk, status); 199262306a36Sopenharmony_ci 199362306a36Sopenharmony_ci tcp_release_cb(ssk); 199462306a36Sopenharmony_ci} 199562306a36Sopenharmony_ci 199662306a36Sopenharmony_cistatic int tcp_abort_override(struct sock *ssk, int err) 199762306a36Sopenharmony_ci{ 199862306a36Sopenharmony_ci /* closing a listener subflow requires a great deal of care. 199962306a36Sopenharmony_ci * keep it simple and just prevent such operation 200062306a36Sopenharmony_ci */ 200162306a36Sopenharmony_ci if (inet_sk_state_load(ssk) == TCP_LISTEN) 200262306a36Sopenharmony_ci return -EINVAL; 200362306a36Sopenharmony_ci 200462306a36Sopenharmony_ci return tcp_abort(ssk, err); 200562306a36Sopenharmony_ci} 200662306a36Sopenharmony_ci 200762306a36Sopenharmony_cistatic struct tcp_ulp_ops subflow_ulp_ops __read_mostly = { 200862306a36Sopenharmony_ci .name = "mptcp", 200962306a36Sopenharmony_ci .owner = THIS_MODULE, 201062306a36Sopenharmony_ci .init = subflow_ulp_init, 201162306a36Sopenharmony_ci .release = subflow_ulp_release, 201262306a36Sopenharmony_ci .clone = subflow_ulp_clone, 201362306a36Sopenharmony_ci}; 201462306a36Sopenharmony_ci 201562306a36Sopenharmony_cistatic int subflow_ops_init(struct request_sock_ops *subflow_ops) 201662306a36Sopenharmony_ci{ 201762306a36Sopenharmony_ci subflow_ops->obj_size = sizeof(struct mptcp_subflow_request_sock); 201862306a36Sopenharmony_ci 201962306a36Sopenharmony_ci subflow_ops->slab = kmem_cache_create(subflow_ops->slab_name, 202062306a36Sopenharmony_ci subflow_ops->obj_size, 0, 202162306a36Sopenharmony_ci SLAB_ACCOUNT | 202262306a36Sopenharmony_ci SLAB_TYPESAFE_BY_RCU, 202362306a36Sopenharmony_ci NULL); 202462306a36Sopenharmony_ci if (!subflow_ops->slab) 202562306a36Sopenharmony_ci return -ENOMEM; 202662306a36Sopenharmony_ci 202762306a36Sopenharmony_ci return 0; 202862306a36Sopenharmony_ci} 202962306a36Sopenharmony_ci 203062306a36Sopenharmony_civoid __init mptcp_subflow_init(void) 203162306a36Sopenharmony_ci{ 203262306a36Sopenharmony_ci mptcp_subflow_v4_request_sock_ops = tcp_request_sock_ops; 203362306a36Sopenharmony_ci mptcp_subflow_v4_request_sock_ops.slab_name = "request_sock_subflow_v4"; 203462306a36Sopenharmony_ci mptcp_subflow_v4_request_sock_ops.destructor = subflow_v4_req_destructor; 203562306a36Sopenharmony_ci 203662306a36Sopenharmony_ci if (subflow_ops_init(&mptcp_subflow_v4_request_sock_ops) != 0) 203762306a36Sopenharmony_ci panic("MPTCP: failed to init subflow v4 request sock ops\n"); 203862306a36Sopenharmony_ci 203962306a36Sopenharmony_ci subflow_request_sock_ipv4_ops = tcp_request_sock_ipv4_ops; 204062306a36Sopenharmony_ci subflow_request_sock_ipv4_ops.route_req = subflow_v4_route_req; 204162306a36Sopenharmony_ci subflow_request_sock_ipv4_ops.send_synack = subflow_v4_send_synack; 204262306a36Sopenharmony_ci 204362306a36Sopenharmony_ci subflow_specific = ipv4_specific; 204462306a36Sopenharmony_ci subflow_specific.conn_request = subflow_v4_conn_request; 204562306a36Sopenharmony_ci subflow_specific.syn_recv_sock = subflow_syn_recv_sock; 204662306a36Sopenharmony_ci subflow_specific.sk_rx_dst_set = subflow_finish_connect; 204762306a36Sopenharmony_ci subflow_specific.rebuild_header = subflow_rebuild_header; 204862306a36Sopenharmony_ci 204962306a36Sopenharmony_ci tcp_prot_override = tcp_prot; 205062306a36Sopenharmony_ci tcp_prot_override.release_cb = tcp_release_cb_override; 205162306a36Sopenharmony_ci tcp_prot_override.diag_destroy = tcp_abort_override; 205262306a36Sopenharmony_ci 205362306a36Sopenharmony_ci#if IS_ENABLED(CONFIG_MPTCP_IPV6) 205462306a36Sopenharmony_ci /* In struct mptcp_subflow_request_sock, we assume the TCP request sock 205562306a36Sopenharmony_ci * structures for v4 and v6 have the same size. It should not changed in 205662306a36Sopenharmony_ci * the future but better to make sure to be warned if it is no longer 205762306a36Sopenharmony_ci * the case. 205862306a36Sopenharmony_ci */ 205962306a36Sopenharmony_ci BUILD_BUG_ON(sizeof(struct tcp_request_sock) != sizeof(struct tcp6_request_sock)); 206062306a36Sopenharmony_ci 206162306a36Sopenharmony_ci mptcp_subflow_v6_request_sock_ops = tcp6_request_sock_ops; 206262306a36Sopenharmony_ci mptcp_subflow_v6_request_sock_ops.slab_name = "request_sock_subflow_v6"; 206362306a36Sopenharmony_ci mptcp_subflow_v6_request_sock_ops.destructor = subflow_v6_req_destructor; 206462306a36Sopenharmony_ci 206562306a36Sopenharmony_ci if (subflow_ops_init(&mptcp_subflow_v6_request_sock_ops) != 0) 206662306a36Sopenharmony_ci panic("MPTCP: failed to init subflow v6 request sock ops\n"); 206762306a36Sopenharmony_ci 206862306a36Sopenharmony_ci subflow_request_sock_ipv6_ops = tcp_request_sock_ipv6_ops; 206962306a36Sopenharmony_ci subflow_request_sock_ipv6_ops.route_req = subflow_v6_route_req; 207062306a36Sopenharmony_ci subflow_request_sock_ipv6_ops.send_synack = subflow_v6_send_synack; 207162306a36Sopenharmony_ci 207262306a36Sopenharmony_ci subflow_v6_specific = ipv6_specific; 207362306a36Sopenharmony_ci subflow_v6_specific.conn_request = subflow_v6_conn_request; 207462306a36Sopenharmony_ci subflow_v6_specific.syn_recv_sock = subflow_syn_recv_sock; 207562306a36Sopenharmony_ci subflow_v6_specific.sk_rx_dst_set = subflow_finish_connect; 207662306a36Sopenharmony_ci subflow_v6_specific.rebuild_header = subflow_v6_rebuild_header; 207762306a36Sopenharmony_ci 207862306a36Sopenharmony_ci subflow_v6m_specific = subflow_v6_specific; 207962306a36Sopenharmony_ci subflow_v6m_specific.queue_xmit = ipv4_specific.queue_xmit; 208062306a36Sopenharmony_ci subflow_v6m_specific.send_check = ipv4_specific.send_check; 208162306a36Sopenharmony_ci subflow_v6m_specific.net_header_len = ipv4_specific.net_header_len; 208262306a36Sopenharmony_ci subflow_v6m_specific.mtu_reduced = ipv4_specific.mtu_reduced; 208362306a36Sopenharmony_ci subflow_v6m_specific.net_frag_header_len = 0; 208462306a36Sopenharmony_ci subflow_v6m_specific.rebuild_header = subflow_rebuild_header; 208562306a36Sopenharmony_ci 208662306a36Sopenharmony_ci tcpv6_prot_override = tcpv6_prot; 208762306a36Sopenharmony_ci tcpv6_prot_override.release_cb = tcp_release_cb_override; 208862306a36Sopenharmony_ci tcpv6_prot_override.diag_destroy = tcp_abort_override; 208962306a36Sopenharmony_ci#endif 209062306a36Sopenharmony_ci 209162306a36Sopenharmony_ci mptcp_diag_subflow_init(&subflow_ulp_ops); 209262306a36Sopenharmony_ci 209362306a36Sopenharmony_ci if (tcp_register_ulp(&subflow_ulp_ops) != 0) 209462306a36Sopenharmony_ci panic("MPTCP: failed to register subflows to ULP\n"); 209562306a36Sopenharmony_ci} 2096