Loading...
1// SPDX-License-Identifier: GPL-2.0
2/*
3 * xfrm4_state.c
4 *
5 * Changes:
6 * YOSHIFUJI Hideaki @USAGI
7 * Split up af-specific portion
8 *
9 */
10
11#include <net/ip.h>
12#include <net/xfrm.h>
13#include <linux/pfkeyv2.h>
14#include <linux/ipsec.h>
15#include <linux/netfilter_ipv4.h>
16#include <linux/export.h>
17
18static int xfrm4_init_flags(struct xfrm_state *x)
19{
20 if (xs_net(x)->ipv4.sysctl_ip_no_pmtu_disc)
21 x->props.flags |= XFRM_STATE_NOPMTUDISC;
22 return 0;
23}
24
25static void
26__xfrm4_init_tempsel(struct xfrm_selector *sel, const struct flowi *fl)
27{
28 const struct flowi4 *fl4 = &fl->u.ip4;
29
30 sel->daddr.a4 = fl4->daddr;
31 sel->saddr.a4 = fl4->saddr;
32 sel->dport = xfrm_flowi_dport(fl, &fl4->uli);
33 sel->dport_mask = htons(0xffff);
34 sel->sport = xfrm_flowi_sport(fl, &fl4->uli);
35 sel->sport_mask = htons(0xffff);
36 sel->family = AF_INET;
37 sel->prefixlen_d = 32;
38 sel->prefixlen_s = 32;
39 sel->proto = fl4->flowi4_proto;
40 sel->ifindex = fl4->flowi4_oif;
41}
42
43static void
44xfrm4_init_temprop(struct xfrm_state *x, const struct xfrm_tmpl *tmpl,
45 const xfrm_address_t *daddr, const xfrm_address_t *saddr)
46{
47 x->id = tmpl->id;
48 if (x->id.daddr.a4 == 0)
49 x->id.daddr.a4 = daddr->a4;
50 x->props.saddr = tmpl->saddr;
51 if (x->props.saddr.a4 == 0)
52 x->props.saddr.a4 = saddr->a4;
53 x->props.mode = tmpl->mode;
54 x->props.reqid = tmpl->reqid;
55 x->props.family = AF_INET;
56}
57
58int xfrm4_extract_header(struct sk_buff *skb)
59{
60 const struct iphdr *iph = ip_hdr(skb);
61
62 XFRM_MODE_SKB_CB(skb)->ihl = sizeof(*iph);
63 XFRM_MODE_SKB_CB(skb)->id = iph->id;
64 XFRM_MODE_SKB_CB(skb)->frag_off = iph->frag_off;
65 XFRM_MODE_SKB_CB(skb)->tos = iph->tos;
66 XFRM_MODE_SKB_CB(skb)->ttl = iph->ttl;
67 XFRM_MODE_SKB_CB(skb)->optlen = iph->ihl * 4 - sizeof(*iph);
68 memset(XFRM_MODE_SKB_CB(skb)->flow_lbl, 0,
69 sizeof(XFRM_MODE_SKB_CB(skb)->flow_lbl));
70
71 return 0;
72}
73
74static struct xfrm_state_afinfo xfrm4_state_afinfo = {
75 .family = AF_INET,
76 .proto = IPPROTO_IPIP,
77 .eth_proto = htons(ETH_P_IP),
78 .owner = THIS_MODULE,
79 .init_flags = xfrm4_init_flags,
80 .init_tempsel = __xfrm4_init_tempsel,
81 .init_temprop = xfrm4_init_temprop,
82 .output = xfrm4_output,
83 .output_finish = xfrm4_output_finish,
84 .extract_input = xfrm4_extract_input,
85 .extract_output = xfrm4_extract_output,
86 .transport_finish = xfrm4_transport_finish,
87 .local_error = xfrm4_local_error,
88};
89
90void __init xfrm4_state_init(void)
91{
92 xfrm_state_register_afinfo(&xfrm4_state_afinfo);
93}
1/*
2 * xfrm4_state.c
3 *
4 * Changes:
5 * YOSHIFUJI Hideaki @USAGI
6 * Split up af-specific portion
7 *
8 */
9
10#include <net/ip.h>
11#include <net/xfrm.h>
12#include <linux/pfkeyv2.h>
13#include <linux/ipsec.h>
14#include <linux/netfilter_ipv4.h>
15
16static int xfrm4_init_flags(struct xfrm_state *x)
17{
18 if (ipv4_config.no_pmtu_disc)
19 x->props.flags |= XFRM_STATE_NOPMTUDISC;
20 return 0;
21}
22
23static void
24__xfrm4_init_tempsel(struct xfrm_selector *sel, const struct flowi *fl)
25{
26 const struct flowi4 *fl4 = &fl->u.ip4;
27
28 sel->daddr.a4 = fl4->daddr;
29 sel->saddr.a4 = fl4->saddr;
30 sel->dport = xfrm_flowi_dport(fl, &fl4->uli);
31 sel->dport_mask = htons(0xffff);
32 sel->sport = xfrm_flowi_sport(fl, &fl4->uli);
33 sel->sport_mask = htons(0xffff);
34 sel->family = AF_INET;
35 sel->prefixlen_d = 32;
36 sel->prefixlen_s = 32;
37 sel->proto = fl4->flowi4_proto;
38 sel->ifindex = fl4->flowi4_oif;
39}
40
41static void
42xfrm4_init_temprop(struct xfrm_state *x, const struct xfrm_tmpl *tmpl,
43 const xfrm_address_t *daddr, const xfrm_address_t *saddr)
44{
45 x->id = tmpl->id;
46 if (x->id.daddr.a4 == 0)
47 x->id.daddr.a4 = daddr->a4;
48 x->props.saddr = tmpl->saddr;
49 if (x->props.saddr.a4 == 0)
50 x->props.saddr.a4 = saddr->a4;
51 x->props.mode = tmpl->mode;
52 x->props.reqid = tmpl->reqid;
53 x->props.family = AF_INET;
54}
55
56int xfrm4_extract_header(struct sk_buff *skb)
57{
58 const struct iphdr *iph = ip_hdr(skb);
59
60 XFRM_MODE_SKB_CB(skb)->ihl = sizeof(*iph);
61 XFRM_MODE_SKB_CB(skb)->id = iph->id;
62 XFRM_MODE_SKB_CB(skb)->frag_off = iph->frag_off;
63 XFRM_MODE_SKB_CB(skb)->tos = iph->tos;
64 XFRM_MODE_SKB_CB(skb)->ttl = iph->ttl;
65 XFRM_MODE_SKB_CB(skb)->optlen = iph->ihl * 4 - sizeof(*iph);
66 memset(XFRM_MODE_SKB_CB(skb)->flow_lbl, 0,
67 sizeof(XFRM_MODE_SKB_CB(skb)->flow_lbl));
68
69 return 0;
70}
71
72static struct xfrm_state_afinfo xfrm4_state_afinfo = {
73 .family = AF_INET,
74 .proto = IPPROTO_IPIP,
75 .eth_proto = htons(ETH_P_IP),
76 .owner = THIS_MODULE,
77 .init_flags = xfrm4_init_flags,
78 .init_tempsel = __xfrm4_init_tempsel,
79 .init_temprop = xfrm4_init_temprop,
80 .output = xfrm4_output,
81 .output_finish = xfrm4_output_finish,
82 .extract_input = xfrm4_extract_input,
83 .extract_output = xfrm4_extract_output,
84 .transport_finish = xfrm4_transport_finish,
85};
86
87void __init xfrm4_state_init(void)
88{
89 xfrm_state_register_afinfo(&xfrm4_state_afinfo);
90}
91
92#if 0
93void __exit xfrm4_state_fini(void)
94{
95 xfrm_state_unregister_afinfo(&xfrm4_state_afinfo);
96}
97#endif /* 0 */
98