2 * Neighbour Discovery for IPv6
3 * Linux INET6 implementation
6 * Pedro Roque <roque@di.fc.ul.pt>
7 * Mike Shaver <shaver@ingenia.com>
9 * This program is free software; you can redistribute it and/or
10 * modify it under the terms of the GNU General Public License
11 * as published by the Free Software Foundation; either version
12 * 2 of the License, or (at your option) any later version.
18 * Lars Fenneberg : fixed MTU setting on receipt
21 * Janos Farkas : kmalloc failure checks
22 * Alexey Kuznetsov : state machine reworked
23 * and moved to net/core.
24 * Pekka Savola : RFC2461 validation
25 * YOSHIFUJI Hideaki @USAGI : Verify ND options properly
28 /* Set to 3 to get tracing... */
31 #define ND_PRINTK(fmt, args...) do { if (net_ratelimit()) { printk(fmt, ## args); } } while(0)
32 #define ND_NOPRINTK(x...) do { ; } while(0)
33 #define ND_PRINTK0 ND_PRINTK
34 #define ND_PRINTK1 ND_NOPRINTK
35 #define ND_PRINTK2 ND_NOPRINTK
36 #define ND_PRINTK3 ND_NOPRINTK
39 #define ND_PRINTK1 ND_PRINTK
43 #define ND_PRINTK2 ND_PRINTK
47 #define ND_PRINTK3 ND_PRINTK
50 #include <linux/module.h>
51 #include <linux/config.h>
52 #include <linux/errno.h>
53 #include <linux/types.h>
54 #include <linux/socket.h>
55 #include <linux/sockios.h>
56 #include <linux/sched.h>
57 #include <linux/net.h>
58 #include <linux/in6.h>
59 #include <linux/route.h>
60 #include <linux/init.h>
61 #include <linux/rcupdate.h>
63 #include <linux/sysctl.h>
66 #include <linux/if_arp.h>
67 #include <linux/ipv6.h>
68 #include <linux/icmpv6.h>
69 #include <linux/jhash.h>
75 #include <net/protocol.h>
76 #include <net/ndisc.h>
77 #include <net/ip6_route.h>
78 #include <net/addrconf.h>
82 #include <net/ip6_checksum.h>
83 #include <linux/proc_fs.h>
85 #include <linux/netfilter.h>
86 #include <linux/netfilter_ipv6.h>
88 static struct socket *ndisc_socket;
90 static u32 ndisc_hash(const void *pkey, const struct net_device *dev);
91 static int ndisc_constructor(struct neighbour *neigh);
92 static void ndisc_solicit(struct neighbour *neigh, struct sk_buff *skb);
93 static void ndisc_error_report(struct neighbour *neigh, struct sk_buff *skb);
94 static int pndisc_constructor(struct pneigh_entry *n);
95 static void pndisc_destructor(struct pneigh_entry *n);
96 static void pndisc_redo(struct sk_buff *skb);
98 static struct neigh_ops ndisc_generic_ops = {
100 .solicit = ndisc_solicit,
101 .error_report = ndisc_error_report,
102 .output = neigh_resolve_output,
103 .connected_output = neigh_connected_output,
104 .hh_output = dev_queue_xmit,
105 .queue_xmit = dev_queue_xmit,
108 static struct neigh_ops ndisc_hh_ops = {
110 .solicit = ndisc_solicit,
111 .error_report = ndisc_error_report,
112 .output = neigh_resolve_output,
113 .connected_output = neigh_resolve_output,
114 .hh_output = dev_queue_xmit,
115 .queue_xmit = dev_queue_xmit,
119 static struct neigh_ops ndisc_direct_ops = {
121 .output = dev_queue_xmit,
122 .connected_output = dev_queue_xmit,
123 .hh_output = dev_queue_xmit,
124 .queue_xmit = dev_queue_xmit,
127 struct neigh_table nd_tbl = {
129 .entry_size = sizeof(struct neighbour) + sizeof(struct in6_addr),
130 .key_len = sizeof(struct in6_addr),
132 .constructor = ndisc_constructor,
133 .pconstructor = pndisc_constructor,
134 .pdestructor = pndisc_destructor,
135 .proxy_redo = pndisc_redo,
139 .base_reachable_time = 30 * HZ,
140 .retrans_time = 1 * HZ,
141 .gc_staletime = 60 * HZ,
142 .reachable_time = 30 * HZ,
143 .delay_probe_time = 5 * HZ,
147 .anycast_delay = 1 * HZ,
148 .proxy_delay = (8 * HZ) / 10,
151 .gc_interval = 30 * HZ,
158 struct ndisc_options {
159 struct nd_opt_hdr *nd_opt_array[__ND_OPT_MAX];
162 #define nd_opts_src_lladdr nd_opt_array[ND_OPT_SOURCE_LL_ADDR]
163 #define nd_opts_tgt_lladdr nd_opt_array[ND_OPT_TARGET_LL_ADDR]
164 #define nd_opts_pi nd_opt_array[ND_OPT_PREFIX_INFO]
165 #define nd_opts_pi_end nd_opt_array[__ND_OPT_PREFIX_INFO_END]
166 #define nd_opts_rh nd_opt_array[ND_OPT_REDIRECT_HDR]
167 #define nd_opts_mtu nd_opt_array[ND_OPT_MTU]
169 #define NDISC_OPT_SPACE(len) (((len)+2+7)&~7)
172 * Return the padding between the option length and the start of the
173 * link addr. Currently only IP-over-InfiniBand needs this, although
174 * if RFC 3831 IPv6-over-Fibre Channel is ever implemented it may
175 * also need a pad of 2.
177 static int ndisc_addr_option_pad(unsigned short type)
180 case ARPHRD_INFINIBAND: return 2;
185 static inline int ndisc_opt_addr_space(struct net_device *dev)
187 return NDISC_OPT_SPACE(dev->addr_len + ndisc_addr_option_pad(dev->type));
190 static u8 *ndisc_fill_addr_option(u8 *opt, int type, void *data, int data_len,
191 unsigned short addr_type)
193 int space = NDISC_OPT_SPACE(data_len);
194 int pad = ndisc_addr_option_pad(addr_type);
199 memset(opt + 2, 0, pad);
203 memcpy(opt+2, data, data_len);
206 if ((space -= data_len) > 0)
207 memset(opt, 0, space);
211 static struct nd_opt_hdr *ndisc_next_option(struct nd_opt_hdr *cur,
212 struct nd_opt_hdr *end)
215 if (!cur || !end || cur >= end)
217 type = cur->nd_opt_type;
219 cur = ((void *)cur) + (cur->nd_opt_len << 3);
220 } while(cur < end && cur->nd_opt_type != type);
221 return (cur <= end && cur->nd_opt_type == type ? cur : NULL);
224 static struct ndisc_options *ndisc_parse_options(u8 *opt, int opt_len,
225 struct ndisc_options *ndopts)
227 struct nd_opt_hdr *nd_opt = (struct nd_opt_hdr *)opt;
229 if (!nd_opt || opt_len < 0 || !ndopts)
231 memset(ndopts, 0, sizeof(*ndopts));
234 if (opt_len < sizeof(struct nd_opt_hdr))
236 l = nd_opt->nd_opt_len << 3;
237 if (opt_len < l || l == 0)
239 switch (nd_opt->nd_opt_type) {
240 case ND_OPT_SOURCE_LL_ADDR:
241 case ND_OPT_TARGET_LL_ADDR:
243 case ND_OPT_REDIRECT_HDR:
244 if (ndopts->nd_opt_array[nd_opt->nd_opt_type]) {
245 ND_PRINTK2(KERN_WARNING
246 "%s(): duplicated ND6 option found: type=%d\n",
248 nd_opt->nd_opt_type);
250 ndopts->nd_opt_array[nd_opt->nd_opt_type] = nd_opt;
253 case ND_OPT_PREFIX_INFO:
254 ndopts->nd_opts_pi_end = nd_opt;
255 if (ndopts->nd_opt_array[nd_opt->nd_opt_type] == 0)
256 ndopts->nd_opt_array[nd_opt->nd_opt_type] = nd_opt;
260 * Unknown options must be silently ignored,
261 * to accommodate future extension to the protocol.
263 ND_PRINTK2(KERN_NOTICE
264 "%s(): ignored unsupported option; type=%d, len=%d\n",
266 nd_opt->nd_opt_type, nd_opt->nd_opt_len);
269 nd_opt = ((void *)nd_opt) + l;
274 static inline u8 *ndisc_opt_addr_data(struct nd_opt_hdr *p,
275 struct net_device *dev)
277 u8 *lladdr = (u8 *)(p + 1);
278 int lladdrlen = p->nd_opt_len << 3;
279 int prepad = ndisc_addr_option_pad(dev->type);
280 if (lladdrlen != NDISC_OPT_SPACE(dev->addr_len + prepad))
282 return (lladdr + prepad);
285 int ndisc_mc_map(struct in6_addr *addr, char *buf, struct net_device *dev, int dir)
289 case ARPHRD_IEEE802: /* Not sure. Check it later. --ANK */
291 ipv6_eth_mc_map(addr, buf);
293 case ARPHRD_IEEE802_TR:
294 ipv6_tr_mc_map(addr,buf);
297 ipv6_arcnet_mc_map(addr, buf);
299 case ARPHRD_INFINIBAND:
300 ipv6_ib_mc_map(addr, buf);
304 memcpy(buf, dev->broadcast, dev->addr_len);
311 static u32 ndisc_hash(const void *pkey, const struct net_device *dev)
313 const u32 *p32 = pkey;
317 for (i = 0; i < (sizeof(struct in6_addr) / sizeof(u32)); i++)
320 return jhash_2words(addr_hash, dev->ifindex, nd_tbl.hash_rnd);
323 static int ndisc_constructor(struct neighbour *neigh)
325 struct in6_addr *addr = (struct in6_addr*)&neigh->primary_key;
326 struct net_device *dev = neigh->dev;
327 struct inet6_dev *in6_dev;
328 struct neigh_parms *parms;
329 int is_multicast = ipv6_addr_is_multicast(addr);
332 in6_dev = in6_dev_get(dev);
333 if (in6_dev == NULL) {
338 parms = in6_dev->nd_parms;
339 __neigh_parms_put(neigh->parms);
340 neigh->parms = neigh_parms_clone(parms);
343 neigh->type = is_multicast ? RTN_MULTICAST : RTN_UNICAST;
344 if (dev->hard_header == NULL) {
345 neigh->nud_state = NUD_NOARP;
346 neigh->ops = &ndisc_direct_ops;
347 neigh->output = neigh->ops->queue_xmit;
350 neigh->nud_state = NUD_NOARP;
351 ndisc_mc_map(addr, neigh->ha, dev, 1);
352 } else if (dev->flags&(IFF_NOARP|IFF_LOOPBACK)) {
353 neigh->nud_state = NUD_NOARP;
354 memcpy(neigh->ha, dev->dev_addr, dev->addr_len);
355 if (dev->flags&IFF_LOOPBACK)
356 neigh->type = RTN_LOCAL;
357 } else if (dev->flags&IFF_POINTOPOINT) {
358 neigh->nud_state = NUD_NOARP;
359 memcpy(neigh->ha, dev->broadcast, dev->addr_len);
361 if (dev->hard_header_cache)
362 neigh->ops = &ndisc_hh_ops;
364 neigh->ops = &ndisc_generic_ops;
365 if (neigh->nud_state&NUD_VALID)
366 neigh->output = neigh->ops->connected_output;
368 neigh->output = neigh->ops->output;
370 in6_dev_put(in6_dev);
374 static int pndisc_constructor(struct pneigh_entry *n)
376 struct in6_addr *addr = (struct in6_addr*)&n->key;
377 struct in6_addr maddr;
378 struct net_device *dev = n->dev;
380 if (dev == NULL || __in6_dev_get(dev) == NULL)
382 addrconf_addr_solict_mult(addr, &maddr);
383 ipv6_dev_mc_inc(dev, &maddr);
387 static void pndisc_destructor(struct pneigh_entry *n)
389 struct in6_addr *addr = (struct in6_addr*)&n->key;
390 struct in6_addr maddr;
391 struct net_device *dev = n->dev;
393 if (dev == NULL || __in6_dev_get(dev) == NULL)
395 addrconf_addr_solict_mult(addr, &maddr);
396 ipv6_dev_mc_dec(dev, &maddr);
400 * Send a Neighbour Advertisement
403 static inline void ndisc_flow_init(struct flowi *fl, u8 type,
404 struct in6_addr *saddr, struct in6_addr *daddr)
406 memset(fl, 0, sizeof(*fl));
407 ipv6_addr_copy(&fl->fl6_src, saddr);
408 ipv6_addr_copy(&fl->fl6_dst, daddr);
409 fl->proto = IPPROTO_ICMPV6;
410 fl->fl_icmp_type = type;
411 fl->fl_icmp_code = 0;
414 static void ndisc_send_na(struct net_device *dev, struct neighbour *neigh,
415 struct in6_addr *daddr, struct in6_addr *solicited_addr,
416 int router, int solicited, int override, int inc_opt)
418 struct in6_addr tmpaddr;
419 struct inet6_ifaddr *ifp;
420 struct inet6_dev *idev;
422 struct dst_entry* dst;
423 struct sock *sk = ndisc_socket->sk;
424 struct in6_addr *src_addr;
430 len = sizeof(struct icmp6hdr) + sizeof(struct in6_addr);
432 /* for anycast or proxy, solicited_addr != src_addr */
433 ifp = ipv6_get_ifaddr(solicited_addr, dev, 1);
435 src_addr = solicited_addr;
438 if (ipv6_dev_get_saddr(dev, daddr, &tmpaddr))
443 ndisc_flow_init(&fl, NDISC_NEIGHBOUR_ADVERTISEMENT, src_addr, daddr);
445 dst = ndisc_dst_alloc(dev, neigh, daddr, ip6_output);
449 err = xfrm_lookup(&dst, &fl, NULL, 0);
455 len += ndisc_opt_addr_space(dev);
460 skb = sock_alloc_send_skb(sk, MAX_HEADER + len + LL_RESERVED_SPACE(dev),
465 "ICMPv6 NA: %s() failed to allocate an skb.\n",
471 skb_reserve(skb, LL_RESERVED_SPACE(dev));
472 ip6_nd_hdr(sk, skb, dev, src_addr, daddr, IPPROTO_ICMPV6, len);
474 msg = (struct nd_msg *)skb_put(skb, len);
475 skb->h.raw = (unsigned char*)msg;
477 msg->icmph.icmp6_type = NDISC_NEIGHBOUR_ADVERTISEMENT;
478 msg->icmph.icmp6_code = 0;
479 msg->icmph.icmp6_cksum = 0;
481 msg->icmph.icmp6_unused = 0;
482 msg->icmph.icmp6_router = router;
483 msg->icmph.icmp6_solicited = solicited;
484 msg->icmph.icmp6_override = !!override;
486 /* Set the target address. */
487 ipv6_addr_copy(&msg->target, solicited_addr);
490 ndisc_fill_addr_option(msg->opt, ND_OPT_TARGET_LL_ADDR, dev->dev_addr,
491 dev->addr_len, dev->type);
494 msg->icmph.icmp6_cksum = csum_ipv6_magic(src_addr, daddr, len,
496 csum_partial((__u8 *) msg,
500 idev = in6_dev_get(dst->dev);
501 IP6_INC_STATS(IPSTATS_MIB_OUTREQUESTS);
502 err = NF_HOOK(PF_INET6, NF_IP6_LOCAL_OUT, skb, NULL, dst->dev, dst_output);
504 ICMP6_INC_STATS(idev, ICMP6_MIB_OUTNEIGHBORADVERTISEMENTS);
505 ICMP6_INC_STATS(idev, ICMP6_MIB_OUTMSGS);
508 if (likely(idev != NULL))
512 void ndisc_send_ns(struct net_device *dev, struct neighbour *neigh,
513 struct in6_addr *solicit,
514 struct in6_addr *daddr, struct in6_addr *saddr)
517 struct dst_entry* dst;
518 struct inet6_dev *idev;
519 struct sock *sk = ndisc_socket->sk;
522 struct in6_addr addr_buf;
528 if (ipv6_get_lladdr(dev, &addr_buf))
533 ndisc_flow_init(&fl, NDISC_NEIGHBOUR_SOLICITATION, saddr, daddr);
535 dst = ndisc_dst_alloc(dev, neigh, daddr, ip6_output);
539 err = xfrm_lookup(&dst, &fl, NULL, 0);
543 len = sizeof(struct icmp6hdr) + sizeof(struct in6_addr);
544 send_llinfo = dev->addr_len && !ipv6_addr_any(saddr);
546 len += ndisc_opt_addr_space(dev);
548 skb = sock_alloc_send_skb(sk, MAX_HEADER + len + LL_RESERVED_SPACE(dev),
552 "ICMPv6 NA: %s() failed to allocate an skb.\n",
558 skb_reserve(skb, LL_RESERVED_SPACE(dev));
559 ip6_nd_hdr(sk, skb, dev, saddr, daddr, IPPROTO_ICMPV6, len);
561 msg = (struct nd_msg *)skb_put(skb, len);
562 skb->h.raw = (unsigned char*)msg;
563 msg->icmph.icmp6_type = NDISC_NEIGHBOUR_SOLICITATION;
564 msg->icmph.icmp6_code = 0;
565 msg->icmph.icmp6_cksum = 0;
566 msg->icmph.icmp6_unused = 0;
568 /* Set the target address. */
569 ipv6_addr_copy(&msg->target, solicit);
572 ndisc_fill_addr_option(msg->opt, ND_OPT_SOURCE_LL_ADDR, dev->dev_addr,
573 dev->addr_len, dev->type);
576 msg->icmph.icmp6_cksum = csum_ipv6_magic(&skb->nh.ipv6h->saddr,
579 csum_partial((__u8 *) msg,
583 idev = in6_dev_get(dst->dev);
584 IP6_INC_STATS(IPSTATS_MIB_OUTREQUESTS);
585 err = NF_HOOK(PF_INET6, NF_IP6_LOCAL_OUT, skb, NULL, dst->dev, dst_output);
587 ICMP6_INC_STATS(idev, ICMP6_MIB_OUTNEIGHBORSOLICITS);
588 ICMP6_INC_STATS(idev, ICMP6_MIB_OUTMSGS);
591 if (likely(idev != NULL))
595 void ndisc_send_rs(struct net_device *dev, struct in6_addr *saddr,
596 struct in6_addr *daddr)
599 struct dst_entry* dst;
600 struct inet6_dev *idev;
601 struct sock *sk = ndisc_socket->sk;
603 struct icmp6hdr *hdr;
608 ndisc_flow_init(&fl, NDISC_ROUTER_SOLICITATION, saddr, daddr);
610 dst = ndisc_dst_alloc(dev, NULL, daddr, ip6_output);
614 err = xfrm_lookup(&dst, &fl, NULL, 0);
618 len = sizeof(struct icmp6hdr);
620 len += ndisc_opt_addr_space(dev);
622 skb = sock_alloc_send_skb(sk, MAX_HEADER + len + LL_RESERVED_SPACE(dev),
626 "ICMPv6 RS: %s() failed to allocate an skb.\n",
632 skb_reserve(skb, LL_RESERVED_SPACE(dev));
633 ip6_nd_hdr(sk, skb, dev, saddr, daddr, IPPROTO_ICMPV6, len);
635 hdr = (struct icmp6hdr *)skb_put(skb, len);
636 skb->h.raw = (unsigned char*)hdr;
637 hdr->icmp6_type = NDISC_ROUTER_SOLICITATION;
639 hdr->icmp6_cksum = 0;
640 hdr->icmp6_unused = 0;
642 opt = (u8*) (hdr + 1);
645 ndisc_fill_addr_option(opt, ND_OPT_SOURCE_LL_ADDR, dev->dev_addr,
646 dev->addr_len, dev->type);
649 hdr->icmp6_cksum = csum_ipv6_magic(&skb->nh.ipv6h->saddr, daddr, len,
651 csum_partial((__u8 *) hdr, len, 0));
655 idev = in6_dev_get(dst->dev);
656 IP6_INC_STATS(IPSTATS_MIB_OUTREQUESTS);
657 err = NF_HOOK(PF_INET6, NF_IP6_LOCAL_OUT, skb, NULL, dst->dev, dst_output);
659 ICMP6_INC_STATS(idev, ICMP6_MIB_OUTROUTERSOLICITS);
660 ICMP6_INC_STATS(idev, ICMP6_MIB_OUTMSGS);
663 if (likely(idev != NULL))
668 static void ndisc_error_report(struct neighbour *neigh, struct sk_buff *skb)
671 * "The sender MUST return an ICMP
672 * destination unreachable"
674 dst_link_failure(skb);
678 /* Called with locked neigh: either read or both */
680 static void ndisc_solicit(struct neighbour *neigh, struct sk_buff *skb)
682 struct in6_addr *saddr = NULL;
683 struct in6_addr mcaddr;
684 struct net_device *dev = neigh->dev;
685 struct in6_addr *target = (struct in6_addr *)&neigh->primary_key;
686 int probes = atomic_read(&neigh->probes);
688 if (skb && ipv6_chk_addr(&skb->nh.ipv6h->saddr, dev, 1))
689 saddr = &skb->nh.ipv6h->saddr;
691 if ((probes -= neigh->parms->ucast_probes) < 0) {
692 if (!(neigh->nud_state & NUD_VALID)) {
693 ND_PRINTK1(KERN_DEBUG
694 "%s(): trying to ucast probe in NUD_INVALID: "
699 ndisc_send_ns(dev, neigh, target, target, saddr);
700 } else if ((probes -= neigh->parms->app_probes) < 0) {
705 addrconf_addr_solict_mult(target, &mcaddr);
706 ndisc_send_ns(dev, NULL, target, &mcaddr, saddr);
710 static void ndisc_recv_ns(struct sk_buff *skb)
712 struct nd_msg *msg = (struct nd_msg *)skb->h.raw;
713 struct in6_addr *saddr = &skb->nh.ipv6h->saddr;
714 struct in6_addr *daddr = &skb->nh.ipv6h->daddr;
716 u32 ndoptlen = skb->tail - msg->opt;
717 struct ndisc_options ndopts;
718 struct net_device *dev = skb->dev;
719 struct inet6_ifaddr *ifp;
720 struct inet6_dev *idev = NULL;
721 struct neighbour *neigh;
722 int dad = ipv6_addr_any(saddr);
725 if (ipv6_addr_is_multicast(&msg->target)) {
726 ND_PRINTK2(KERN_WARNING
727 "ICMPv6 NS: multicast target address");
733 * DAD has to be destined for solicited node multicast address.
736 !(daddr->s6_addr32[0] == htonl(0xff020000) &&
737 daddr->s6_addr32[1] == htonl(0x00000000) &&
738 daddr->s6_addr32[2] == htonl(0x00000001) &&
739 daddr->s6_addr [12] == 0xff )) {
740 ND_PRINTK2(KERN_WARNING
741 "ICMPv6 NS: bad DAD packet (wrong destination)\n");
745 if (!ndisc_parse_options(msg->opt, ndoptlen, &ndopts)) {
746 ND_PRINTK2(KERN_WARNING
747 "ICMPv6 NS: invalid ND options\n");
751 if (ndopts.nd_opts_src_lladdr) {
752 lladdr = ndisc_opt_addr_data(ndopts.nd_opts_src_lladdr, dev);
754 ND_PRINTK2(KERN_WARNING
755 "ICMPv6 NS: invalid link-layer address length\n");
760 * If the IP source address is the unspecified address,
761 * there MUST NOT be source link-layer address option
765 ND_PRINTK2(KERN_WARNING
766 "ICMPv6 NS: bad DAD packet (link-layer address option)\n");
771 inc = ipv6_addr_is_multicast(daddr);
773 if ((ifp = ipv6_get_ifaddr(&msg->target, dev, 1)) != NULL) {
774 if (ifp->flags & IFA_F_TENTATIVE) {
775 /* Address is tentative. If the source
776 is unspecified address, it is someone
777 does DAD, otherwise we ignore solicitations
778 until DAD timer expires.
782 if (dev->type == ARPHRD_IEEE802_TR) {
783 unsigned char *sadr = skb->mac.raw;
784 if (((sadr[8] ^ dev->dev_addr[0]) & 0x7f) == 0 &&
785 sadr[9] == dev->dev_addr[1] &&
786 sadr[10] == dev->dev_addr[2] &&
787 sadr[11] == dev->dev_addr[3] &&
788 sadr[12] == dev->dev_addr[4] &&
789 sadr[13] == dev->dev_addr[5]) {
790 /* looped-back to us */
794 addrconf_dad_failure(ifp);
800 idev = in6_dev_get(dev);
802 /* XXX: count this drop? */
806 if (ipv6_chk_acast_addr(dev, &msg->target) ||
807 (idev->cnf.forwarding &&
808 pneigh_lookup(&nd_tbl, &msg->target, dev, 0))) {
809 if (!(NEIGH_CB(skb)->flags & LOCALLY_ENQUEUED) &&
810 skb->pkt_type != PACKET_HOST &&
812 idev->nd_parms->proxy_delay != 0) {
814 * for anycast or proxy,
815 * sender should delay its response
816 * by a random time between 0 and
817 * MAX_ANYCAST_DELAY_TIME seconds.
818 * (RFC2461) -- yoshfuji
820 struct sk_buff *n = skb_clone(skb, GFP_ATOMIC);
822 pneigh_enqueue(&nd_tbl, idev->nd_parms, n);
830 struct in6_addr maddr;
832 ipv6_addr_all_nodes(&maddr);
833 ndisc_send_na(dev, NULL, &maddr, &msg->target,
834 idev->cnf.forwarding, 0, (ifp != NULL), 1);
839 NEIGH_CACHE_STAT_INC(&nd_tbl, rcv_probes_mcast);
841 NEIGH_CACHE_STAT_INC(&nd_tbl, rcv_probes_ucast);
844 * update / create cache entry
845 * for the source address
847 neigh = __neigh_lookup(&nd_tbl, saddr, dev,
848 !inc || lladdr || !dev->addr_len);
850 neigh_update(neigh, lladdr, NUD_STALE,
851 NEIGH_UPDATE_F_WEAK_OVERRIDE|
852 NEIGH_UPDATE_F_OVERRIDE);
853 if (neigh || !dev->hard_header) {
854 ndisc_send_na(dev, neigh, saddr, &msg->target,
855 idev->cnf.forwarding,
856 1, (ifp != NULL && inc), inc);
858 neigh_release(neigh);
870 static void ndisc_recv_na(struct sk_buff *skb)
872 struct nd_msg *msg = (struct nd_msg *)skb->h.raw;
873 struct in6_addr *saddr = &skb->nh.ipv6h->saddr;
874 struct in6_addr *daddr = &skb->nh.ipv6h->daddr;
876 u32 ndoptlen = skb->tail - msg->opt;
877 struct ndisc_options ndopts;
878 struct net_device *dev = skb->dev;
879 struct inet6_ifaddr *ifp;
880 struct neighbour *neigh;
882 if (skb->len < sizeof(struct nd_msg)) {
883 ND_PRINTK2(KERN_WARNING
884 "ICMPv6 NA: packet too short\n");
888 if (ipv6_addr_is_multicast(&msg->target)) {
889 ND_PRINTK2(KERN_WARNING
890 "ICMPv6 NA: target address is multicast.\n");
894 if (ipv6_addr_is_multicast(daddr) &&
895 msg->icmph.icmp6_solicited) {
896 ND_PRINTK2(KERN_WARNING
897 "ICMPv6 NA: solicited NA is multicasted.\n");
901 if (!ndisc_parse_options(msg->opt, ndoptlen, &ndopts)) {
902 ND_PRINTK2(KERN_WARNING
903 "ICMPv6 NS: invalid ND option\n");
906 if (ndopts.nd_opts_tgt_lladdr) {
907 lladdr = ndisc_opt_addr_data(ndopts.nd_opts_tgt_lladdr, dev);
909 ND_PRINTK2(KERN_WARNING
910 "ICMPv6 NA: invalid link-layer address length\n");
914 if ((ifp = ipv6_get_ifaddr(&msg->target, dev, 1))) {
915 if (ifp->flags & IFA_F_TENTATIVE) {
916 addrconf_dad_failure(ifp);
919 /* What should we make now? The advertisement
920 is invalid, but ndisc specs say nothing
921 about it. It could be misconfiguration, or
922 an smart proxy agent tries to help us :-)
924 ND_PRINTK1(KERN_WARNING
925 "ICMPv6 NA: someone advertises our address on %s!\n",
926 ifp->idev->dev->name);
930 neigh = neigh_lookup(&nd_tbl, &msg->target, dev);
933 u8 old_flags = neigh->flags;
935 if (neigh->nud_state & NUD_FAILED)
938 neigh_update(neigh, lladdr,
939 msg->icmph.icmp6_solicited ? NUD_REACHABLE : NUD_STALE,
940 NEIGH_UPDATE_F_WEAK_OVERRIDE|
941 (msg->icmph.icmp6_override ? NEIGH_UPDATE_F_OVERRIDE : 0)|
942 NEIGH_UPDATE_F_OVERRIDE_ISROUTER|
943 (msg->icmph.icmp6_router ? NEIGH_UPDATE_F_ISROUTER : 0));
945 if ((old_flags & ~neigh->flags) & NTF_ROUTER) {
947 * Change: router to host
950 rt = rt6_get_dflt_router(saddr, dev);
952 ip6_del_rt(rt, NULL, NULL, NULL);
956 neigh_release(neigh);
960 static void ndisc_recv_rs(struct sk_buff *skb)
962 struct rs_msg *rs_msg = (struct rs_msg *) skb->h.raw;
963 unsigned long ndoptlen = skb->len - sizeof(*rs_msg);
964 struct neighbour *neigh;
965 struct inet6_dev *idev;
966 struct in6_addr *saddr = &skb->nh.ipv6h->saddr;
967 struct ndisc_options ndopts;
970 if (skb->len < sizeof(*rs_msg))
973 idev = in6_dev_get(skb->dev);
976 ND_PRINTK1("ICMP6 RS: can't find in6 device\n");
980 /* Don't accept RS if we're not in router mode */
981 if (!idev->cnf.forwarding)
985 * Don't update NCE if src = ::;
986 * this implies that the source node has no ip address assigned yet.
988 if (ipv6_addr_any(saddr))
991 /* Parse ND options */
992 if (!ndisc_parse_options(rs_msg->opt, ndoptlen, &ndopts)) {
994 ND_PRINTK2("ICMP6 NS: invalid ND option, ignored\n");
998 if (ndopts.nd_opts_src_lladdr) {
999 lladdr = ndisc_opt_addr_data(ndopts.nd_opts_src_lladdr,
1005 neigh = __neigh_lookup(&nd_tbl, saddr, skb->dev, 1);
1007 neigh_update(neigh, lladdr, NUD_STALE,
1008 NEIGH_UPDATE_F_WEAK_OVERRIDE|
1009 NEIGH_UPDATE_F_OVERRIDE|
1010 NEIGH_UPDATE_F_OVERRIDE_ISROUTER);
1011 neigh_release(neigh);
1017 static void ndisc_router_discovery(struct sk_buff *skb)
1019 struct ra_msg *ra_msg = (struct ra_msg *) skb->h.raw;
1020 struct neighbour *neigh = NULL;
1021 struct inet6_dev *in6_dev;
1022 struct rt6_info *rt = NULL;
1024 struct ndisc_options ndopts;
1026 unsigned int pref = 0;
1028 __u8 * opt = (__u8 *)(ra_msg + 1);
1030 optlen = (skb->tail - skb->h.raw) - sizeof(struct ra_msg);
1032 if (!(ipv6_addr_type(&skb->nh.ipv6h->saddr) & IPV6_ADDR_LINKLOCAL)) {
1033 ND_PRINTK2(KERN_WARNING
1034 "ICMPv6 RA: source address is not link-local.\n");
1038 ND_PRINTK2(KERN_WARNING
1039 "ICMPv6 RA: packet too short\n");
1044 * set the RA_RECV flag in the interface
1047 in6_dev = in6_dev_get(skb->dev);
1048 if (in6_dev == NULL) {
1050 "ICMPv6 RA: can't find inet6 device for %s.\n",
1054 if (in6_dev->cnf.forwarding || !in6_dev->cnf.accept_ra) {
1055 in6_dev_put(in6_dev);
1059 if (!ndisc_parse_options(opt, optlen, &ndopts)) {
1060 in6_dev_put(in6_dev);
1061 ND_PRINTK2(KERN_WARNING
1062 "ICMP6 RA: invalid ND options\n");
1066 if (in6_dev->if_flags & IF_RS_SENT) {
1068 * flag that an RA was received after an RS was sent
1069 * out on this interface.
1071 in6_dev->if_flags |= IF_RA_RCVD;
1075 * Remember the managed/otherconf flags from most recently
1076 * received RA message (RFC 2462) -- yoshfuji
1078 in6_dev->if_flags = (in6_dev->if_flags & ~(IF_RA_MANAGED |
1080 (ra_msg->icmph.icmp6_addrconf_managed ?
1081 IF_RA_MANAGED : 0) |
1082 (ra_msg->icmph.icmp6_addrconf_other ?
1083 IF_RA_OTHERCONF : 0);
1085 if (!in6_dev->cnf.accept_ra_defrtr)
1088 lifetime = ntohs(ra_msg->icmph.icmp6_rt_lifetime);
1090 #ifdef CONFIG_IPV6_ROUTER_PREF
1091 pref = ra_msg->icmph.icmp6_router_pref;
1092 /* 10b is handled as if it were 00b (medium) */
1093 if (pref == ICMPV6_ROUTER_PREF_INVALID ||
1094 in6_dev->cnf.accept_ra_rtr_pref)
1095 pref = ICMPV6_ROUTER_PREF_MEDIUM;
1098 rt = rt6_get_dflt_router(&skb->nh.ipv6h->saddr, skb->dev);
1101 neigh = rt->rt6i_nexthop;
1103 if (rt && lifetime == 0) {
1105 ip6_del_rt(rt, NULL, NULL, NULL);
1109 if (rt == NULL && lifetime) {
1110 ND_PRINTK3(KERN_DEBUG
1111 "ICMPv6 RA: adding default router.\n");
1113 rt = rt6_add_dflt_router(&skb->nh.ipv6h->saddr, skb->dev, pref);
1116 "ICMPv6 RA: %s() failed to add default route.\n",
1118 in6_dev_put(in6_dev);
1122 neigh = rt->rt6i_nexthop;
1123 if (neigh == NULL) {
1125 "ICMPv6 RA: %s() got default router without neighbour.\n",
1127 dst_release(&rt->u.dst);
1128 in6_dev_put(in6_dev);
1131 neigh->flags |= NTF_ROUTER;
1133 rt->rt6i_flags |= (rt->rt6i_flags & ~RTF_PREF_MASK) | RTF_PREF(pref);
1137 rt->rt6i_expires = jiffies + (HZ * lifetime);
1139 if (ra_msg->icmph.icmp6_hop_limit) {
1140 in6_dev->cnf.hop_limit = ra_msg->icmph.icmp6_hop_limit;
1142 rt->u.dst.metrics[RTAX_HOPLIMIT-1] = ra_msg->icmph.icmp6_hop_limit;
1148 * Update Reachable Time and Retrans Timer
1151 if (in6_dev->nd_parms) {
1152 unsigned long rtime = ntohl(ra_msg->retrans_timer);
1154 if (rtime && rtime/1000 < MAX_SCHEDULE_TIMEOUT/HZ) {
1155 rtime = (rtime*HZ)/1000;
1158 in6_dev->nd_parms->retrans_time = rtime;
1159 in6_dev->tstamp = jiffies;
1160 inet6_ifinfo_notify(RTM_NEWLINK, in6_dev);
1163 rtime = ntohl(ra_msg->reachable_time);
1164 if (rtime && rtime/1000 < MAX_SCHEDULE_TIMEOUT/(3*HZ)) {
1165 rtime = (rtime*HZ)/1000;
1170 if (rtime != in6_dev->nd_parms->base_reachable_time) {
1171 in6_dev->nd_parms->base_reachable_time = rtime;
1172 in6_dev->nd_parms->gc_staletime = 3 * rtime;
1173 in6_dev->nd_parms->reachable_time = neigh_rand_reach_time(rtime);
1174 in6_dev->tstamp = jiffies;
1175 inet6_ifinfo_notify(RTM_NEWLINK, in6_dev);
1185 neigh = __neigh_lookup(&nd_tbl, &skb->nh.ipv6h->saddr,
1189 if (ndopts.nd_opts_src_lladdr) {
1190 lladdr = ndisc_opt_addr_data(ndopts.nd_opts_src_lladdr,
1193 ND_PRINTK2(KERN_WARNING
1194 "ICMPv6 RA: invalid link-layer address length\n");
1198 neigh_update(neigh, lladdr, NUD_STALE,
1199 NEIGH_UPDATE_F_WEAK_OVERRIDE|
1200 NEIGH_UPDATE_F_OVERRIDE|
1201 NEIGH_UPDATE_F_OVERRIDE_ISROUTER|
1202 NEIGH_UPDATE_F_ISROUTER);
1205 if (in6_dev->cnf.accept_ra_pinfo && ndopts.nd_opts_pi) {
1206 struct nd_opt_hdr *p;
1207 for (p = ndopts.nd_opts_pi;
1209 p = ndisc_next_option(p, ndopts.nd_opts_pi_end)) {
1210 addrconf_prefix_rcv(skb->dev, (u8*)p, (p->nd_opt_len) << 3);
1214 if (ndopts.nd_opts_mtu) {
1217 memcpy(&mtu, ((u8*)(ndopts.nd_opts_mtu+1))+2, sizeof(mtu));
1220 if (mtu < IPV6_MIN_MTU || mtu > skb->dev->mtu) {
1221 ND_PRINTK2(KERN_WARNING
1222 "ICMPv6 RA: invalid mtu: %d\n",
1224 } else if (in6_dev->cnf.mtu6 != mtu) {
1225 in6_dev->cnf.mtu6 = mtu;
1228 rt->u.dst.metrics[RTAX_MTU-1] = mtu;
1230 rt6_mtu_change(skb->dev, mtu);
1234 if (ndopts.nd_opts_tgt_lladdr || ndopts.nd_opts_rh) {
1235 ND_PRINTK2(KERN_WARNING
1236 "ICMPv6 RA: invalid RA options");
1240 dst_release(&rt->u.dst);
1242 neigh_release(neigh);
1243 in6_dev_put(in6_dev);
1246 static void ndisc_redirect_rcv(struct sk_buff *skb)
1248 struct inet6_dev *in6_dev;
1249 struct icmp6hdr *icmph;
1250 struct in6_addr *dest;
1251 struct in6_addr *target; /* new first hop to destination */
1252 struct neighbour *neigh;
1254 struct ndisc_options ndopts;
1258 if (!(ipv6_addr_type(&skb->nh.ipv6h->saddr) & IPV6_ADDR_LINKLOCAL)) {
1259 ND_PRINTK2(KERN_WARNING
1260 "ICMPv6 Redirect: source address is not link-local.\n");
1264 optlen = skb->tail - skb->h.raw;
1265 optlen -= sizeof(struct icmp6hdr) + 2 * sizeof(struct in6_addr);
1268 ND_PRINTK2(KERN_WARNING
1269 "ICMPv6 Redirect: packet too short\n");
1273 icmph = (struct icmp6hdr *) skb->h.raw;
1274 target = (struct in6_addr *) (icmph + 1);
1277 if (ipv6_addr_is_multicast(dest)) {
1278 ND_PRINTK2(KERN_WARNING
1279 "ICMPv6 Redirect: destination address is multicast.\n");
1283 if (ipv6_addr_equal(dest, target)) {
1285 } else if (!(ipv6_addr_type(target) & IPV6_ADDR_LINKLOCAL)) {
1286 ND_PRINTK2(KERN_WARNING
1287 "ICMPv6 Redirect: target address is not link-local.\n");
1291 in6_dev = in6_dev_get(skb->dev);
1294 if (in6_dev->cnf.forwarding || !in6_dev->cnf.accept_redirects) {
1295 in6_dev_put(in6_dev);
1300 * The IP source address of the Redirect MUST be the same as the current
1301 * first-hop router for the specified ICMP Destination Address.
1304 if (!ndisc_parse_options((u8*)(dest + 1), optlen, &ndopts)) {
1305 ND_PRINTK2(KERN_WARNING
1306 "ICMPv6 Redirect: invalid ND options\n");
1307 in6_dev_put(in6_dev);
1310 if (ndopts.nd_opts_tgt_lladdr) {
1311 lladdr = ndisc_opt_addr_data(ndopts.nd_opts_tgt_lladdr,
1314 ND_PRINTK2(KERN_WARNING
1315 "ICMPv6 Redirect: invalid link-layer address length\n");
1316 in6_dev_put(in6_dev);
1321 neigh = __neigh_lookup(&nd_tbl, target, skb->dev, 1);
1323 rt6_redirect(dest, &skb->nh.ipv6h->saddr, neigh, lladdr,
1325 neigh_release(neigh);
1327 in6_dev_put(in6_dev);
1330 void ndisc_send_redirect(struct sk_buff *skb, struct neighbour *neigh,
1331 struct in6_addr *target)
1333 struct sock *sk = ndisc_socket->sk;
1334 int len = sizeof(struct icmp6hdr) + 2 * sizeof(struct in6_addr);
1335 struct sk_buff *buff;
1336 struct icmp6hdr *icmph;
1337 struct in6_addr saddr_buf;
1338 struct in6_addr *addrp;
1339 struct net_device *dev;
1340 struct rt6_info *rt;
1341 struct dst_entry *dst;
1342 struct inet6_dev *idev;
1348 u8 ha_buf[MAX_ADDR_LEN], *ha = NULL;
1352 if (ipv6_get_lladdr(dev, &saddr_buf)) {
1353 ND_PRINTK2(KERN_WARNING
1354 "ICMPv6 Redirect: no link-local address on %s\n",
1359 ndisc_flow_init(&fl, NDISC_REDIRECT, &saddr_buf, &skb->nh.ipv6h->saddr);
1361 dst = ip6_route_output(NULL, &fl);
1365 err = xfrm_lookup(&dst, &fl, NULL, 0);
1369 rt = (struct rt6_info *) dst;
1371 if (rt->rt6i_flags & RTF_GATEWAY) {
1372 ND_PRINTK2(KERN_WARNING
1373 "ICMPv6 Redirect: destination is not a neighbour.\n");
1377 if (!xrlim_allow(dst, 1*HZ)) {
1382 if (dev->addr_len) {
1383 read_lock_bh(&neigh->lock);
1384 if (neigh->nud_state & NUD_VALID) {
1385 memcpy(ha_buf, neigh->ha, dev->addr_len);
1386 read_unlock_bh(&neigh->lock);
1388 len += ndisc_opt_addr_space(dev);
1390 read_unlock_bh(&neigh->lock);
1393 rd_len = min_t(unsigned int,
1394 IPV6_MIN_MTU-sizeof(struct ipv6hdr)-len, skb->len + 8);
1398 buff = sock_alloc_send_skb(sk, MAX_HEADER + len + LL_RESERVED_SPACE(dev),
1402 "ICMPv6 Redirect: %s() failed to allocate an skb.\n",
1410 skb_reserve(buff, LL_RESERVED_SPACE(dev));
1411 ip6_nd_hdr(sk, buff, dev, &saddr_buf, &skb->nh.ipv6h->saddr,
1412 IPPROTO_ICMPV6, len);
1414 icmph = (struct icmp6hdr *)skb_put(buff, len);
1415 buff->h.raw = (unsigned char*)icmph;
1417 memset(icmph, 0, sizeof(struct icmp6hdr));
1418 icmph->icmp6_type = NDISC_REDIRECT;
1421 * copy target and destination addresses
1424 addrp = (struct in6_addr *)(icmph + 1);
1425 ipv6_addr_copy(addrp, target);
1427 ipv6_addr_copy(addrp, &skb->nh.ipv6h->daddr);
1429 opt = (u8*) (addrp + 1);
1432 * include target_address option
1436 opt = ndisc_fill_addr_option(opt, ND_OPT_TARGET_LL_ADDR, ha,
1437 dev->addr_len, dev->type);
1440 * build redirect option and copy skb over to the new packet.
1444 *(opt++) = ND_OPT_REDIRECT_HDR;
1445 *(opt++) = (rd_len >> 3);
1448 memcpy(opt, skb->nh.ipv6h, rd_len - 8);
1450 icmph->icmp6_cksum = csum_ipv6_magic(&saddr_buf, &skb->nh.ipv6h->saddr,
1451 len, IPPROTO_ICMPV6,
1452 csum_partial((u8 *) icmph, len, 0));
1455 idev = in6_dev_get(dst->dev);
1456 IP6_INC_STATS(IPSTATS_MIB_OUTREQUESTS);
1457 err = NF_HOOK(PF_INET6, NF_IP6_LOCAL_OUT, buff, NULL, dst->dev, dst_output);
1459 ICMP6_INC_STATS(idev, ICMP6_MIB_OUTREDIRECTS);
1460 ICMP6_INC_STATS(idev, ICMP6_MIB_OUTMSGS);
1463 if (likely(idev != NULL))
1467 static void pndisc_redo(struct sk_buff *skb)
1473 int ndisc_rcv(struct sk_buff *skb)
1477 if (!pskb_may_pull(skb, skb->len))
1480 msg = (struct nd_msg *) skb->h.raw;
1482 __skb_push(skb, skb->data-skb->h.raw);
1484 if (skb->nh.ipv6h->hop_limit != 255) {
1485 ND_PRINTK2(KERN_WARNING
1486 "ICMPv6 NDISC: invalid hop-limit: %d\n",
1487 skb->nh.ipv6h->hop_limit);
1491 if (msg->icmph.icmp6_code != 0) {
1492 ND_PRINTK2(KERN_WARNING
1493 "ICMPv6 NDISC: invalid ICMPv6 code: %d\n",
1494 msg->icmph.icmp6_code);
1498 memset(NEIGH_CB(skb), 0, sizeof(struct neighbour_cb));
1500 switch (msg->icmph.icmp6_type) {
1501 case NDISC_NEIGHBOUR_SOLICITATION:
1505 case NDISC_NEIGHBOUR_ADVERTISEMENT:
1509 case NDISC_ROUTER_SOLICITATION:
1513 case NDISC_ROUTER_ADVERTISEMENT:
1514 ndisc_router_discovery(skb);
1517 case NDISC_REDIRECT:
1518 ndisc_redirect_rcv(skb);
1525 static int ndisc_netdev_event(struct notifier_block *this, unsigned long event, void *ptr)
1527 struct net_device *dev = ptr;
1530 case NETDEV_CHANGEADDR:
1531 neigh_changeaddr(&nd_tbl, dev);
1535 neigh_ifdown(&nd_tbl, dev);
1545 static struct notifier_block ndisc_netdev_notifier = {
1546 .notifier_call = ndisc_netdev_event,
1549 #ifdef CONFIG_SYSCTL
1550 static void ndisc_warn_deprecated_sysctl(struct ctl_table *ctl,
1551 const char *func, const char *dev_name)
1553 static char warncomm[TASK_COMM_LEN];
1555 if (strcmp(warncomm, current->comm) && warned < 5) {
1556 strcpy(warncomm, current->comm);
1558 "process `%s' is using deprecated sysctl (%s) "
1559 "net.ipv6.neigh.%s.%s; "
1560 "Use net.ipv6.neigh.%s.%s_ms "
1563 dev_name, ctl->procname,
1564 dev_name, ctl->procname);
1569 int ndisc_ifinfo_sysctl_change(struct ctl_table *ctl, int write, struct file * filp, void __user *buffer, size_t *lenp, loff_t *ppos)
1571 struct net_device *dev = ctl->extra1;
1572 struct inet6_dev *idev;
1575 if (ctl->ctl_name == NET_NEIGH_RETRANS_TIME ||
1576 ctl->ctl_name == NET_NEIGH_REACHABLE_TIME)
1577 ndisc_warn_deprecated_sysctl(ctl, "syscall", dev ? dev->name : "default");
1579 switch (ctl->ctl_name) {
1580 case NET_NEIGH_RETRANS_TIME:
1581 ret = proc_dointvec(ctl, write, filp, buffer, lenp, ppos);
1583 case NET_NEIGH_REACHABLE_TIME:
1584 ret = proc_dointvec_jiffies(ctl, write,
1585 filp, buffer, lenp, ppos);
1587 case NET_NEIGH_RETRANS_TIME_MS:
1588 case NET_NEIGH_REACHABLE_TIME_MS:
1589 ret = proc_dointvec_ms_jiffies(ctl, write,
1590 filp, buffer, lenp, ppos);
1596 if (write && ret == 0 && dev && (idev = in6_dev_get(dev)) != NULL) {
1597 if (ctl->ctl_name == NET_NEIGH_REACHABLE_TIME ||
1598 ctl->ctl_name == NET_NEIGH_REACHABLE_TIME_MS)
1599 idev->nd_parms->reachable_time = neigh_rand_reach_time(idev->nd_parms->base_reachable_time);
1600 idev->tstamp = jiffies;
1601 inet6_ifinfo_notify(RTM_NEWLINK, idev);
1607 static int ndisc_ifinfo_sysctl_strategy(ctl_table *ctl, int __user *name,
1608 int nlen, void __user *oldval,
1609 size_t __user *oldlenp,
1610 void __user *newval, size_t newlen,
1613 struct net_device *dev = ctl->extra1;
1614 struct inet6_dev *idev;
1617 if (ctl->ctl_name == NET_NEIGH_RETRANS_TIME ||
1618 ctl->ctl_name == NET_NEIGH_REACHABLE_TIME)
1619 ndisc_warn_deprecated_sysctl(ctl, "procfs", dev ? dev->name : "default");
1621 switch (ctl->ctl_name) {
1622 case NET_NEIGH_REACHABLE_TIME:
1623 ret = sysctl_jiffies(ctl, name, nlen,
1624 oldval, oldlenp, newval, newlen,
1627 case NET_NEIGH_RETRANS_TIME_MS:
1628 case NET_NEIGH_REACHABLE_TIME_MS:
1629 ret = sysctl_ms_jiffies(ctl, name, nlen,
1630 oldval, oldlenp, newval, newlen,
1637 if (newval && newlen && ret > 0 &&
1638 dev && (idev = in6_dev_get(dev)) != NULL) {
1639 if (ctl->ctl_name == NET_NEIGH_REACHABLE_TIME ||
1640 ctl->ctl_name == NET_NEIGH_REACHABLE_TIME_MS)
1641 idev->nd_parms->reachable_time = neigh_rand_reach_time(idev->nd_parms->base_reachable_time);
1642 idev->tstamp = jiffies;
1643 inet6_ifinfo_notify(RTM_NEWLINK, idev);
1652 int __init ndisc_init(struct net_proto_family *ops)
1654 struct ipv6_pinfo *np;
1658 err = sock_create_kern(PF_INET6, SOCK_RAW, IPPROTO_ICMPV6, &ndisc_socket);
1661 "ICMPv6 NDISC: Failed to initialize the control socket (err %d).\n",
1663 ndisc_socket = NULL; /* For safety. */
1667 sk = ndisc_socket->sk;
1669 sk->sk_allocation = GFP_ATOMIC;
1670 np->hop_limit = 255;
1671 /* Do not loopback ndisc messages */
1673 sk->sk_prot->unhash(sk);
1676 * Initialize the neighbour table
1679 neigh_table_init(&nd_tbl);
1681 #ifdef CONFIG_SYSCTL
1682 neigh_sysctl_register(NULL, &nd_tbl.parms, NET_IPV6, NET_IPV6_NEIGH,
1684 &ndisc_ifinfo_sysctl_change,
1685 &ndisc_ifinfo_sysctl_strategy);
1688 register_netdevice_notifier(&ndisc_netdev_notifier);
1692 void ndisc_cleanup(void)
1694 #ifdef CONFIG_SYSCTL
1695 neigh_sysctl_unregister(&nd_tbl.parms);
1697 neigh_table_clear(&nd_tbl);
1698 sock_release(ndisc_socket);
1699 ndisc_socket = NULL; /* For safety. */