1 // SPDX-License-Identifier: GPL-2.0-or-later
3 * Bridge multicast support.
5 * Copyright (c) 2010 Herbert Xu <herbert@gondor.apana.org.au>
9 #include <linux/export.h>
10 #include <linux/if_ether.h>
11 #include <linux/igmp.h>
13 #include <linux/jhash.h>
14 #include <linux/kernel.h>
15 #include <linux/log2.h>
16 #include <linux/netdevice.h>
17 #include <linux/netfilter_bridge.h>
18 #include <linux/random.h>
19 #include <linux/rculist.h>
20 #include <linux/skbuff.h>
21 #include <linux/slab.h>
22 #include <linux/timer.h>
23 #include <linux/inetdevice.h>
24 #include <linux/mroute.h>
26 #include <net/switchdev.h>
27 #if IS_ENABLED(CONFIG_IPV6)
28 #include <linux/icmpv6.h>
31 #include <net/ip6_checksum.h>
32 #include <net/addrconf.h>
35 #include "br_private.h"
37 static const struct rhashtable_params br_mdb_rht_params = {
38 .head_offset = offsetof(struct net_bridge_mdb_entry, rhnode),
39 .key_offset = offsetof(struct net_bridge_mdb_entry, addr),
40 .key_len = sizeof(struct br_ip),
41 .automatic_shrinking = true,
44 static void br_multicast_start_querier(struct net_bridge *br,
45 struct bridge_mcast_own_query *query);
46 static void br_multicast_add_router(struct net_bridge *br,
47 struct net_bridge_port *port);
48 static void br_ip4_multicast_leave_group(struct net_bridge *br,
49 struct net_bridge_port *port,
52 const unsigned char *src);
54 static void __del_port_router(struct net_bridge_port *p);
55 #if IS_ENABLED(CONFIG_IPV6)
56 static void br_ip6_multicast_leave_group(struct net_bridge *br,
57 struct net_bridge_port *port,
58 const struct in6_addr *group,
59 __u16 vid, const unsigned char *src);
62 static struct net_bridge_mdb_entry *br_mdb_ip_get_rcu(struct net_bridge *br,
65 return rhashtable_lookup(&br->mdb_hash_tbl, dst, br_mdb_rht_params);
68 struct net_bridge_mdb_entry *br_mdb_ip_get(struct net_bridge *br,
71 struct net_bridge_mdb_entry *ent;
73 lockdep_assert_held_once(&br->multicast_lock);
76 ent = rhashtable_lookup(&br->mdb_hash_tbl, dst, br_mdb_rht_params);
82 static struct net_bridge_mdb_entry *br_mdb_ip4_get(struct net_bridge *br,
83 __be32 dst, __u16 vid)
87 memset(&br_dst, 0, sizeof(br_dst));
89 br_dst.proto = htons(ETH_P_IP);
92 return br_mdb_ip_get(br, &br_dst);
95 #if IS_ENABLED(CONFIG_IPV6)
96 static struct net_bridge_mdb_entry *br_mdb_ip6_get(struct net_bridge *br,
97 const struct in6_addr *dst,
102 memset(&br_dst, 0, sizeof(br_dst));
104 br_dst.proto = htons(ETH_P_IPV6);
107 return br_mdb_ip_get(br, &br_dst);
111 struct net_bridge_mdb_entry *br_mdb_get(struct net_bridge *br,
112 struct sk_buff *skb, u16 vid)
116 if (!br_opt_get(br, BROPT_MULTICAST_ENABLED))
119 if (BR_INPUT_SKB_CB(skb)->igmp)
122 memset(&ip, 0, sizeof(ip));
123 ip.proto = skb->protocol;
126 switch (skb->protocol) {
127 case htons(ETH_P_IP):
128 ip.u.ip4 = ip_hdr(skb)->daddr;
130 #if IS_ENABLED(CONFIG_IPV6)
131 case htons(ETH_P_IPV6):
132 ip.u.ip6 = ipv6_hdr(skb)->daddr;
139 return br_mdb_ip_get_rcu(br, &ip);
142 static void br_multicast_group_expired(struct timer_list *t)
144 struct net_bridge_mdb_entry *mp = from_timer(mp, t, timer);
145 struct net_bridge *br = mp->br;
147 spin_lock(&br->multicast_lock);
148 if (!netif_running(br->dev) || timer_pending(&mp->timer))
151 mp->host_joined = false;
152 br_mdb_notify(br->dev, NULL, &mp->addr, RTM_DELMDB, 0);
157 rhashtable_remove_fast(&br->mdb_hash_tbl, &mp->rhnode,
159 hlist_del_rcu(&mp->mdb_node);
164 spin_unlock(&br->multicast_lock);
167 static void br_multicast_del_pg(struct net_bridge *br,
168 struct net_bridge_port_group *pg)
170 struct net_bridge_mdb_entry *mp;
171 struct net_bridge_port_group *p;
172 struct net_bridge_port_group __rcu **pp;
174 mp = br_mdb_ip_get(br, &pg->addr);
178 for (pp = &mp->ports;
179 (p = mlock_dereference(*pp, br)) != NULL;
184 rcu_assign_pointer(*pp, p->next);
185 hlist_del_init(&p->mglist);
186 del_timer(&p->timer);
187 br_mdb_notify(br->dev, p->port, &pg->addr, RTM_DELMDB,
191 if (!mp->ports && !mp->host_joined &&
192 netif_running(br->dev))
193 mod_timer(&mp->timer, jiffies);
201 static void br_multicast_port_group_expired(struct timer_list *t)
203 struct net_bridge_port_group *pg = from_timer(pg, t, timer);
204 struct net_bridge *br = pg->port->br;
206 spin_lock(&br->multicast_lock);
207 if (!netif_running(br->dev) || timer_pending(&pg->timer) ||
208 hlist_unhashed(&pg->mglist) || pg->flags & MDB_PG_FLAGS_PERMANENT)
211 br_multicast_del_pg(br, pg);
214 spin_unlock(&br->multicast_lock);
217 static struct sk_buff *br_ip4_multicast_alloc_query(struct net_bridge *br,
221 struct igmpv3_query *ihv3;
222 size_t igmp_hdr_size;
228 igmp_hdr_size = sizeof(*ih);
229 if (br->multicast_igmp_version == 3)
230 igmp_hdr_size = sizeof(*ihv3);
231 skb = netdev_alloc_skb_ip_align(br->dev, sizeof(*eth) + sizeof(*iph) +
236 skb->protocol = htons(ETH_P_IP);
238 skb_reset_mac_header(skb);
241 ether_addr_copy(eth->h_source, br->dev->dev_addr);
244 eth->h_dest[2] = 0x5e;
248 eth->h_proto = htons(ETH_P_IP);
249 skb_put(skb, sizeof(*eth));
251 skb_set_network_header(skb, skb->len);
257 iph->tot_len = htons(sizeof(*iph) + igmp_hdr_size + 4);
259 iph->frag_off = htons(IP_DF);
261 iph->protocol = IPPROTO_IGMP;
262 iph->saddr = br_opt_get(br, BROPT_MULTICAST_QUERY_USE_IFADDR) ?
263 inet_select_addr(br->dev, 0, RT_SCOPE_LINK) : 0;
264 iph->daddr = htonl(INADDR_ALLHOSTS_GROUP);
265 ((u8 *)&iph[1])[0] = IPOPT_RA;
266 ((u8 *)&iph[1])[1] = 4;
267 ((u8 *)&iph[1])[2] = 0;
268 ((u8 *)&iph[1])[3] = 0;
272 skb_set_transport_header(skb, skb->len);
273 *igmp_type = IGMP_HOST_MEMBERSHIP_QUERY;
275 switch (br->multicast_igmp_version) {
278 ih->type = IGMP_HOST_MEMBERSHIP_QUERY;
279 ih->code = (group ? br->multicast_last_member_interval :
280 br->multicast_query_response_interval) /
281 (HZ / IGMP_TIMER_SCALE);
284 ih->csum = ip_compute_csum((void *)ih, sizeof(*ih));
287 ihv3 = igmpv3_query_hdr(skb);
288 ihv3->type = IGMP_HOST_MEMBERSHIP_QUERY;
289 ihv3->code = (group ? br->multicast_last_member_interval :
290 br->multicast_query_response_interval) /
291 (HZ / IGMP_TIMER_SCALE);
293 ihv3->qqic = br->multicast_query_interval / HZ;
299 ihv3->csum = ip_compute_csum((void *)ihv3, sizeof(*ihv3));
303 skb_put(skb, igmp_hdr_size);
304 __skb_pull(skb, sizeof(*eth));
310 #if IS_ENABLED(CONFIG_IPV6)
311 static struct sk_buff *br_ip6_multicast_alloc_query(struct net_bridge *br,
312 const struct in6_addr *grp,
315 struct mld2_query *mld2q;
316 unsigned long interval;
317 struct ipv6hdr *ip6h;
318 struct mld_msg *mldq;
324 mld_hdr_size = sizeof(*mldq);
325 if (br->multicast_mld_version == 2)
326 mld_hdr_size = sizeof(*mld2q);
327 skb = netdev_alloc_skb_ip_align(br->dev, sizeof(*eth) + sizeof(*ip6h) +
332 skb->protocol = htons(ETH_P_IPV6);
334 /* Ethernet header */
335 skb_reset_mac_header(skb);
338 ether_addr_copy(eth->h_source, br->dev->dev_addr);
339 eth->h_proto = htons(ETH_P_IPV6);
340 skb_put(skb, sizeof(*eth));
342 /* IPv6 header + HbH option */
343 skb_set_network_header(skb, skb->len);
344 ip6h = ipv6_hdr(skb);
346 *(__force __be32 *)ip6h = htonl(0x60000000);
347 ip6h->payload_len = htons(8 + mld_hdr_size);
348 ip6h->nexthdr = IPPROTO_HOPOPTS;
350 ipv6_addr_set(&ip6h->daddr, htonl(0xff020000), 0, 0, htonl(1));
351 if (ipv6_dev_get_saddr(dev_net(br->dev), br->dev, &ip6h->daddr, 0,
354 br_opt_toggle(br, BROPT_HAS_IPV6_ADDR, false);
358 br_opt_toggle(br, BROPT_HAS_IPV6_ADDR, true);
359 ipv6_eth_mc_map(&ip6h->daddr, eth->h_dest);
361 hopopt = (u8 *)(ip6h + 1);
362 hopopt[0] = IPPROTO_ICMPV6; /* next hdr */
363 hopopt[1] = 0; /* length of HbH */
364 hopopt[2] = IPV6_TLV_ROUTERALERT; /* Router Alert */
365 hopopt[3] = 2; /* Length of RA Option */
366 hopopt[4] = 0; /* Type = 0x0000 (MLD) */
368 hopopt[6] = IPV6_TLV_PAD1; /* Pad1 */
369 hopopt[7] = IPV6_TLV_PAD1; /* Pad1 */
371 skb_put(skb, sizeof(*ip6h) + 8);
374 skb_set_transport_header(skb, skb->len);
375 interval = ipv6_addr_any(grp) ?
376 br->multicast_query_response_interval :
377 br->multicast_last_member_interval;
378 *igmp_type = ICMPV6_MGM_QUERY;
379 switch (br->multicast_mld_version) {
381 mldq = (struct mld_msg *)icmp6_hdr(skb);
382 mldq->mld_type = ICMPV6_MGM_QUERY;
385 mldq->mld_maxdelay = htons((u16)jiffies_to_msecs(interval));
386 mldq->mld_reserved = 0;
387 mldq->mld_mca = *grp;
388 mldq->mld_cksum = csum_ipv6_magic(&ip6h->saddr, &ip6h->daddr,
389 sizeof(*mldq), IPPROTO_ICMPV6,
395 mld2q = (struct mld2_query *)icmp6_hdr(skb);
396 mld2q->mld2q_mrc = htons((u16)jiffies_to_msecs(interval));
397 mld2q->mld2q_type = ICMPV6_MGM_QUERY;
398 mld2q->mld2q_code = 0;
399 mld2q->mld2q_cksum = 0;
400 mld2q->mld2q_resv1 = 0;
401 mld2q->mld2q_resv2 = 0;
402 mld2q->mld2q_suppress = 0;
403 mld2q->mld2q_qrv = 2;
404 mld2q->mld2q_nsrcs = 0;
405 mld2q->mld2q_qqic = br->multicast_query_interval / HZ;
406 mld2q->mld2q_mca = *grp;
407 mld2q->mld2q_cksum = csum_ipv6_magic(&ip6h->saddr, &ip6h->daddr,
415 skb_put(skb, mld_hdr_size);
417 __skb_pull(skb, sizeof(*eth));
424 static struct sk_buff *br_multicast_alloc_query(struct net_bridge *br,
428 switch (addr->proto) {
429 case htons(ETH_P_IP):
430 return br_ip4_multicast_alloc_query(br, addr->u.ip4, igmp_type);
431 #if IS_ENABLED(CONFIG_IPV6)
432 case htons(ETH_P_IPV6):
433 return br_ip6_multicast_alloc_query(br, &addr->u.ip6,
440 struct net_bridge_mdb_entry *br_multicast_new_group(struct net_bridge *br,
443 struct net_bridge_mdb_entry *mp;
446 mp = br_mdb_ip_get(br, group);
450 if (atomic_read(&br->mdb_hash_tbl.nelems) >= br->hash_max) {
451 br_opt_toggle(br, BROPT_MULTICAST_ENABLED, false);
452 return ERR_PTR(-E2BIG);
455 mp = kzalloc(sizeof(*mp), GFP_ATOMIC);
457 return ERR_PTR(-ENOMEM);
461 timer_setup(&mp->timer, br_multicast_group_expired, 0);
462 err = rhashtable_lookup_insert_fast(&br->mdb_hash_tbl, &mp->rhnode,
468 hlist_add_head_rcu(&mp->mdb_node, &br->mdb_list);
474 struct net_bridge_port_group *br_multicast_new_port_group(
475 struct net_bridge_port *port,
477 struct net_bridge_port_group __rcu *next,
479 const unsigned char *src)
481 struct net_bridge_port_group *p;
483 p = kzalloc(sizeof(*p), GFP_ATOMIC);
490 rcu_assign_pointer(p->next, next);
491 hlist_add_head(&p->mglist, &port->mglist);
492 timer_setup(&p->timer, br_multicast_port_group_expired, 0);
495 memcpy(p->eth_addr, src, ETH_ALEN);
497 eth_broadcast_addr(p->eth_addr);
502 static bool br_port_group_equal(struct net_bridge_port_group *p,
503 struct net_bridge_port *port,
504 const unsigned char *src)
509 if (!(port->flags & BR_MULTICAST_TO_UNICAST))
512 return ether_addr_equal(src, p->eth_addr);
515 static int br_multicast_add_group(struct net_bridge *br,
516 struct net_bridge_port *port,
518 const unsigned char *src)
520 struct net_bridge_port_group __rcu **pp;
521 struct net_bridge_port_group *p;
522 struct net_bridge_mdb_entry *mp;
523 unsigned long now = jiffies;
526 spin_lock(&br->multicast_lock);
527 if (!netif_running(br->dev) ||
528 (port && port->state == BR_STATE_DISABLED))
531 mp = br_multicast_new_group(br, group);
537 if (!mp->host_joined) {
538 mp->host_joined = true;
539 br_mdb_notify(br->dev, NULL, &mp->addr, RTM_NEWMDB, 0);
541 mod_timer(&mp->timer, now + br->multicast_membership_interval);
545 for (pp = &mp->ports;
546 (p = mlock_dereference(*pp, br)) != NULL;
548 if (br_port_group_equal(p, port, src))
550 if ((unsigned long)p->port < (unsigned long)port)
554 p = br_multicast_new_port_group(port, group, *pp, 0, src);
557 rcu_assign_pointer(*pp, p);
558 br_mdb_notify(br->dev, port, group, RTM_NEWMDB, 0);
561 mod_timer(&p->timer, now + br->multicast_membership_interval);
566 spin_unlock(&br->multicast_lock);
570 static int br_ip4_multicast_add_group(struct net_bridge *br,
571 struct net_bridge_port *port,
574 const unsigned char *src)
576 struct br_ip br_group;
578 if (ipv4_is_local_multicast(group))
581 memset(&br_group, 0, sizeof(br_group));
582 br_group.u.ip4 = group;
583 br_group.proto = htons(ETH_P_IP);
586 return br_multicast_add_group(br, port, &br_group, src);
589 #if IS_ENABLED(CONFIG_IPV6)
590 static int br_ip6_multicast_add_group(struct net_bridge *br,
591 struct net_bridge_port *port,
592 const struct in6_addr *group,
594 const unsigned char *src)
596 struct br_ip br_group;
598 if (ipv6_addr_is_ll_all_nodes(group))
601 memset(&br_group, 0, sizeof(br_group));
602 br_group.u.ip6 = *group;
603 br_group.proto = htons(ETH_P_IPV6);
606 return br_multicast_add_group(br, port, &br_group, src);
610 static void br_multicast_router_expired(struct timer_list *t)
612 struct net_bridge_port *port =
613 from_timer(port, t, multicast_router_timer);
614 struct net_bridge *br = port->br;
616 spin_lock(&br->multicast_lock);
617 if (port->multicast_router == MDB_RTR_TYPE_DISABLED ||
618 port->multicast_router == MDB_RTR_TYPE_PERM ||
619 timer_pending(&port->multicast_router_timer))
622 __del_port_router(port);
624 spin_unlock(&br->multicast_lock);
627 static void br_mc_router_state_change(struct net_bridge *p,
630 struct switchdev_attr attr = {
632 .id = SWITCHDEV_ATTR_ID_BRIDGE_MROUTER,
633 .flags = SWITCHDEV_F_DEFER,
634 .u.mrouter = is_mc_router,
637 switchdev_port_attr_set(p->dev, &attr);
640 static void br_multicast_local_router_expired(struct timer_list *t)
642 struct net_bridge *br = from_timer(br, t, multicast_router_timer);
644 spin_lock(&br->multicast_lock);
645 if (br->multicast_router == MDB_RTR_TYPE_DISABLED ||
646 br->multicast_router == MDB_RTR_TYPE_PERM ||
647 timer_pending(&br->multicast_router_timer))
650 br_mc_router_state_change(br, false);
652 spin_unlock(&br->multicast_lock);
655 static void br_multicast_querier_expired(struct net_bridge *br,
656 struct bridge_mcast_own_query *query)
658 spin_lock(&br->multicast_lock);
659 if (!netif_running(br->dev) || !br_opt_get(br, BROPT_MULTICAST_ENABLED))
662 br_multicast_start_querier(br, query);
665 spin_unlock(&br->multicast_lock);
668 static void br_ip4_multicast_querier_expired(struct timer_list *t)
670 struct net_bridge *br = from_timer(br, t, ip4_other_query.timer);
672 br_multicast_querier_expired(br, &br->ip4_own_query);
675 #if IS_ENABLED(CONFIG_IPV6)
676 static void br_ip6_multicast_querier_expired(struct timer_list *t)
678 struct net_bridge *br = from_timer(br, t, ip6_other_query.timer);
680 br_multicast_querier_expired(br, &br->ip6_own_query);
684 static void br_multicast_select_own_querier(struct net_bridge *br,
688 if (ip->proto == htons(ETH_P_IP))
689 br->ip4_querier.addr.u.ip4 = ip_hdr(skb)->saddr;
690 #if IS_ENABLED(CONFIG_IPV6)
692 br->ip6_querier.addr.u.ip6 = ipv6_hdr(skb)->saddr;
696 static void __br_multicast_send_query(struct net_bridge *br,
697 struct net_bridge_port *port,
703 skb = br_multicast_alloc_query(br, ip, &igmp_type);
708 skb->dev = port->dev;
709 br_multicast_count(br, port, skb, igmp_type,
711 NF_HOOK(NFPROTO_BRIDGE, NF_BR_LOCAL_OUT,
712 dev_net(port->dev), NULL, skb, NULL, skb->dev,
713 br_dev_queue_push_xmit);
715 br_multicast_select_own_querier(br, ip, skb);
716 br_multicast_count(br, port, skb, igmp_type,
722 static void br_multicast_send_query(struct net_bridge *br,
723 struct net_bridge_port *port,
724 struct bridge_mcast_own_query *own_query)
726 struct bridge_mcast_other_query *other_query = NULL;
727 struct br_ip br_group;
730 if (!netif_running(br->dev) ||
731 !br_opt_get(br, BROPT_MULTICAST_ENABLED) ||
732 !br_opt_get(br, BROPT_MULTICAST_QUERIER))
735 memset(&br_group.u, 0, sizeof(br_group.u));
737 if (port ? (own_query == &port->ip4_own_query) :
738 (own_query == &br->ip4_own_query)) {
739 other_query = &br->ip4_other_query;
740 br_group.proto = htons(ETH_P_IP);
741 #if IS_ENABLED(CONFIG_IPV6)
743 other_query = &br->ip6_other_query;
744 br_group.proto = htons(ETH_P_IPV6);
748 if (!other_query || timer_pending(&other_query->timer))
751 __br_multicast_send_query(br, port, &br_group);
754 time += own_query->startup_sent < br->multicast_startup_query_count ?
755 br->multicast_startup_query_interval :
756 br->multicast_query_interval;
757 mod_timer(&own_query->timer, time);
761 br_multicast_port_query_expired(struct net_bridge_port *port,
762 struct bridge_mcast_own_query *query)
764 struct net_bridge *br = port->br;
766 spin_lock(&br->multicast_lock);
767 if (port->state == BR_STATE_DISABLED ||
768 port->state == BR_STATE_BLOCKING)
771 if (query->startup_sent < br->multicast_startup_query_count)
772 query->startup_sent++;
774 br_multicast_send_query(port->br, port, query);
777 spin_unlock(&br->multicast_lock);
780 static void br_ip4_multicast_port_query_expired(struct timer_list *t)
782 struct net_bridge_port *port = from_timer(port, t, ip4_own_query.timer);
784 br_multicast_port_query_expired(port, &port->ip4_own_query);
787 #if IS_ENABLED(CONFIG_IPV6)
788 static void br_ip6_multicast_port_query_expired(struct timer_list *t)
790 struct net_bridge_port *port = from_timer(port, t, ip6_own_query.timer);
792 br_multicast_port_query_expired(port, &port->ip6_own_query);
796 static void br_mc_disabled_update(struct net_device *dev, bool value)
798 struct switchdev_attr attr = {
800 .id = SWITCHDEV_ATTR_ID_BRIDGE_MC_DISABLED,
801 .flags = SWITCHDEV_F_DEFER,
802 .u.mc_disabled = !value,
805 switchdev_port_attr_set(dev, &attr);
808 int br_multicast_add_port(struct net_bridge_port *port)
810 port->multicast_router = MDB_RTR_TYPE_TEMP_QUERY;
812 timer_setup(&port->multicast_router_timer,
813 br_multicast_router_expired, 0);
814 timer_setup(&port->ip4_own_query.timer,
815 br_ip4_multicast_port_query_expired, 0);
816 #if IS_ENABLED(CONFIG_IPV6)
817 timer_setup(&port->ip6_own_query.timer,
818 br_ip6_multicast_port_query_expired, 0);
820 br_mc_disabled_update(port->dev,
821 br_opt_get(port->br, BROPT_MULTICAST_ENABLED));
823 port->mcast_stats = netdev_alloc_pcpu_stats(struct bridge_mcast_stats);
824 if (!port->mcast_stats)
830 void br_multicast_del_port(struct net_bridge_port *port)
832 struct net_bridge *br = port->br;
833 struct net_bridge_port_group *pg;
834 struct hlist_node *n;
836 /* Take care of the remaining groups, only perm ones should be left */
837 spin_lock_bh(&br->multicast_lock);
838 hlist_for_each_entry_safe(pg, n, &port->mglist, mglist)
839 br_multicast_del_pg(br, pg);
840 spin_unlock_bh(&br->multicast_lock);
841 del_timer_sync(&port->multicast_router_timer);
842 free_percpu(port->mcast_stats);
845 static void br_multicast_enable(struct bridge_mcast_own_query *query)
847 query->startup_sent = 0;
849 if (try_to_del_timer_sync(&query->timer) >= 0 ||
850 del_timer(&query->timer))
851 mod_timer(&query->timer, jiffies);
854 static void __br_multicast_enable_port(struct net_bridge_port *port)
856 struct net_bridge *br = port->br;
858 if (!br_opt_get(br, BROPT_MULTICAST_ENABLED) || !netif_running(br->dev))
861 br_multicast_enable(&port->ip4_own_query);
862 #if IS_ENABLED(CONFIG_IPV6)
863 br_multicast_enable(&port->ip6_own_query);
865 if (port->multicast_router == MDB_RTR_TYPE_PERM &&
866 hlist_unhashed(&port->rlist))
867 br_multicast_add_router(br, port);
870 void br_multicast_enable_port(struct net_bridge_port *port)
872 struct net_bridge *br = port->br;
874 spin_lock(&br->multicast_lock);
875 __br_multicast_enable_port(port);
876 spin_unlock(&br->multicast_lock);
879 void br_multicast_disable_port(struct net_bridge_port *port)
881 struct net_bridge *br = port->br;
882 struct net_bridge_port_group *pg;
883 struct hlist_node *n;
885 spin_lock(&br->multicast_lock);
886 hlist_for_each_entry_safe(pg, n, &port->mglist, mglist)
887 if (!(pg->flags & MDB_PG_FLAGS_PERMANENT))
888 br_multicast_del_pg(br, pg);
890 __del_port_router(port);
892 del_timer(&port->multicast_router_timer);
893 del_timer(&port->ip4_own_query.timer);
894 #if IS_ENABLED(CONFIG_IPV6)
895 del_timer(&port->ip6_own_query.timer);
897 spin_unlock(&br->multicast_lock);
900 static int br_ip4_multicast_igmp3_report(struct net_bridge *br,
901 struct net_bridge_port *port,
905 const unsigned char *src;
906 struct igmpv3_report *ih;
907 struct igmpv3_grec *grec;
916 ih = igmpv3_report_hdr(skb);
917 num = ntohs(ih->ngrec);
918 len = skb_transport_offset(skb) + sizeof(*ih);
920 for (i = 0; i < num; i++) {
921 len += sizeof(*grec);
922 if (!ip_mc_may_pull(skb, len))
925 grec = (void *)(skb->data + len - sizeof(*grec));
926 group = grec->grec_mca;
927 type = grec->grec_type;
928 nsrcs = ntohs(grec->grec_nsrcs);
931 if (!ip_mc_may_pull(skb, len))
934 /* We treat this as an IGMPv2 report for now. */
936 case IGMPV3_MODE_IS_INCLUDE:
937 case IGMPV3_MODE_IS_EXCLUDE:
938 case IGMPV3_CHANGE_TO_INCLUDE:
939 case IGMPV3_CHANGE_TO_EXCLUDE:
940 case IGMPV3_ALLOW_NEW_SOURCES:
941 case IGMPV3_BLOCK_OLD_SOURCES:
948 src = eth_hdr(skb)->h_source;
949 if ((type == IGMPV3_CHANGE_TO_INCLUDE ||
950 type == IGMPV3_MODE_IS_INCLUDE) &&
952 br_ip4_multicast_leave_group(br, port, group, vid, src);
954 err = br_ip4_multicast_add_group(br, port, group, vid,
964 #if IS_ENABLED(CONFIG_IPV6)
965 static int br_ip6_multicast_mld2_report(struct net_bridge *br,
966 struct net_bridge_port *port,
970 unsigned int nsrcs_offset;
971 const unsigned char *src;
972 struct icmp6hdr *icmp6h;
973 struct mld2_grec *grec;
974 unsigned int grec_len;
980 if (!ipv6_mc_may_pull(skb, sizeof(*icmp6h)))
983 icmp6h = icmp6_hdr(skb);
984 num = ntohs(icmp6h->icmp6_dataun.un_data16[1]);
985 len = skb_transport_offset(skb) + sizeof(*icmp6h);
987 for (i = 0; i < num; i++) {
988 __be16 *_nsrcs, __nsrcs;
991 nsrcs_offset = len + offsetof(struct mld2_grec, grec_nsrcs);
993 if (skb_transport_offset(skb) + ipv6_transport_len(skb) <
994 nsrcs_offset + sizeof(_nsrcs))
997 _nsrcs = skb_header_pointer(skb, nsrcs_offset,
998 sizeof(__nsrcs), &__nsrcs);
1002 nsrcs = ntohs(*_nsrcs);
1003 grec_len = struct_size(grec, grec_src, nsrcs);
1005 if (!ipv6_mc_may_pull(skb, len + grec_len))
1008 grec = (struct mld2_grec *)(skb->data + len);
1011 /* We treat these as MLDv1 reports for now. */
1012 switch (grec->grec_type) {
1013 case MLD2_MODE_IS_INCLUDE:
1014 case MLD2_MODE_IS_EXCLUDE:
1015 case MLD2_CHANGE_TO_INCLUDE:
1016 case MLD2_CHANGE_TO_EXCLUDE:
1017 case MLD2_ALLOW_NEW_SOURCES:
1018 case MLD2_BLOCK_OLD_SOURCES:
1025 src = eth_hdr(skb)->h_source;
1026 if ((grec->grec_type == MLD2_CHANGE_TO_INCLUDE ||
1027 grec->grec_type == MLD2_MODE_IS_INCLUDE) &&
1029 br_ip6_multicast_leave_group(br, port, &grec->grec_mca,
1032 err = br_ip6_multicast_add_group(br, port,
1033 &grec->grec_mca, vid,
1044 static bool br_ip4_multicast_select_querier(struct net_bridge *br,
1045 struct net_bridge_port *port,
1048 if (!timer_pending(&br->ip4_own_query.timer) &&
1049 !timer_pending(&br->ip4_other_query.timer))
1052 if (!br->ip4_querier.addr.u.ip4)
1055 if (ntohl(saddr) <= ntohl(br->ip4_querier.addr.u.ip4))
1061 br->ip4_querier.addr.u.ip4 = saddr;
1063 /* update protected by general multicast_lock by caller */
1064 rcu_assign_pointer(br->ip4_querier.port, port);
1069 #if IS_ENABLED(CONFIG_IPV6)
1070 static bool br_ip6_multicast_select_querier(struct net_bridge *br,
1071 struct net_bridge_port *port,
1072 struct in6_addr *saddr)
1074 if (!timer_pending(&br->ip6_own_query.timer) &&
1075 !timer_pending(&br->ip6_other_query.timer))
1078 if (ipv6_addr_cmp(saddr, &br->ip6_querier.addr.u.ip6) <= 0)
1084 br->ip6_querier.addr.u.ip6 = *saddr;
1086 /* update protected by general multicast_lock by caller */
1087 rcu_assign_pointer(br->ip6_querier.port, port);
1093 static bool br_multicast_select_querier(struct net_bridge *br,
1094 struct net_bridge_port *port,
1095 struct br_ip *saddr)
1097 switch (saddr->proto) {
1098 case htons(ETH_P_IP):
1099 return br_ip4_multicast_select_querier(br, port, saddr->u.ip4);
1100 #if IS_ENABLED(CONFIG_IPV6)
1101 case htons(ETH_P_IPV6):
1102 return br_ip6_multicast_select_querier(br, port, &saddr->u.ip6);
1110 br_multicast_update_query_timer(struct net_bridge *br,
1111 struct bridge_mcast_other_query *query,
1112 unsigned long max_delay)
1114 if (!timer_pending(&query->timer))
1115 query->delay_time = jiffies + max_delay;
1117 mod_timer(&query->timer, jiffies + br->multicast_querier_interval);
1120 static void br_port_mc_router_state_change(struct net_bridge_port *p,
1123 struct switchdev_attr attr = {
1125 .id = SWITCHDEV_ATTR_ID_PORT_MROUTER,
1126 .flags = SWITCHDEV_F_DEFER,
1127 .u.mrouter = is_mc_router,
1130 switchdev_port_attr_set(p->dev, &attr);
1134 * Add port to router_list
1135 * list is maintained ordered by pointer value
1136 * and locked by br->multicast_lock and RCU
1138 static void br_multicast_add_router(struct net_bridge *br,
1139 struct net_bridge_port *port)
1141 struct net_bridge_port *p;
1142 struct hlist_node *slot = NULL;
1144 if (!hlist_unhashed(&port->rlist))
1147 hlist_for_each_entry(p, &br->router_list, rlist) {
1148 if ((unsigned long) port >= (unsigned long) p)
1154 hlist_add_behind_rcu(&port->rlist, slot);
1156 hlist_add_head_rcu(&port->rlist, &br->router_list);
1157 br_rtr_notify(br->dev, port, RTM_NEWMDB);
1158 br_port_mc_router_state_change(port, true);
1161 static void br_multicast_mark_router(struct net_bridge *br,
1162 struct net_bridge_port *port)
1164 unsigned long now = jiffies;
1167 if (br->multicast_router == MDB_RTR_TYPE_TEMP_QUERY) {
1168 if (!timer_pending(&br->multicast_router_timer))
1169 br_mc_router_state_change(br, true);
1170 mod_timer(&br->multicast_router_timer,
1171 now + br->multicast_querier_interval);
1176 if (port->multicast_router == MDB_RTR_TYPE_DISABLED ||
1177 port->multicast_router == MDB_RTR_TYPE_PERM)
1180 br_multicast_add_router(br, port);
1182 mod_timer(&port->multicast_router_timer,
1183 now + br->multicast_querier_interval);
1186 static void br_multicast_query_received(struct net_bridge *br,
1187 struct net_bridge_port *port,
1188 struct bridge_mcast_other_query *query,
1189 struct br_ip *saddr,
1190 unsigned long max_delay)
1192 if (!br_multicast_select_querier(br, port, saddr))
1195 br_multicast_update_query_timer(br, query, max_delay);
1196 br_multicast_mark_router(br, port);
1199 static void br_ip4_multicast_query(struct net_bridge *br,
1200 struct net_bridge_port *port,
1201 struct sk_buff *skb,
1204 unsigned int transport_len = ip_transport_len(skb);
1205 const struct iphdr *iph = ip_hdr(skb);
1206 struct igmphdr *ih = igmp_hdr(skb);
1207 struct net_bridge_mdb_entry *mp;
1208 struct igmpv3_query *ih3;
1209 struct net_bridge_port_group *p;
1210 struct net_bridge_port_group __rcu **pp;
1212 unsigned long max_delay;
1213 unsigned long now = jiffies;
1216 spin_lock(&br->multicast_lock);
1217 if (!netif_running(br->dev) ||
1218 (port && port->state == BR_STATE_DISABLED))
1223 if (transport_len == sizeof(*ih)) {
1224 max_delay = ih->code * (HZ / IGMP_TIMER_SCALE);
1227 max_delay = 10 * HZ;
1230 } else if (transport_len >= sizeof(*ih3)) {
1231 ih3 = igmpv3_query_hdr(skb);
1235 max_delay = ih3->code ?
1236 IGMPV3_MRC(ih3->code) * (HZ / IGMP_TIMER_SCALE) : 1;
1242 saddr.proto = htons(ETH_P_IP);
1243 saddr.u.ip4 = iph->saddr;
1245 br_multicast_query_received(br, port, &br->ip4_other_query,
1250 mp = br_mdb_ip4_get(br, group, vid);
1254 max_delay *= br->multicast_last_member_count;
1256 if (mp->host_joined &&
1257 (timer_pending(&mp->timer) ?
1258 time_after(mp->timer.expires, now + max_delay) :
1259 try_to_del_timer_sync(&mp->timer) >= 0))
1260 mod_timer(&mp->timer, now + max_delay);
1262 for (pp = &mp->ports;
1263 (p = mlock_dereference(*pp, br)) != NULL;
1265 if (timer_pending(&p->timer) ?
1266 time_after(p->timer.expires, now + max_delay) :
1267 try_to_del_timer_sync(&p->timer) >= 0)
1268 mod_timer(&p->timer, now + max_delay);
1272 spin_unlock(&br->multicast_lock);
1275 #if IS_ENABLED(CONFIG_IPV6)
1276 static int br_ip6_multicast_query(struct net_bridge *br,
1277 struct net_bridge_port *port,
1278 struct sk_buff *skb,
1281 unsigned int transport_len = ipv6_transport_len(skb);
1282 struct mld_msg *mld;
1283 struct net_bridge_mdb_entry *mp;
1284 struct mld2_query *mld2q;
1285 struct net_bridge_port_group *p;
1286 struct net_bridge_port_group __rcu **pp;
1288 unsigned long max_delay;
1289 unsigned long now = jiffies;
1290 unsigned int offset = skb_transport_offset(skb);
1291 const struct in6_addr *group = NULL;
1292 bool is_general_query;
1295 spin_lock(&br->multicast_lock);
1296 if (!netif_running(br->dev) ||
1297 (port && port->state == BR_STATE_DISABLED))
1300 if (transport_len == sizeof(*mld)) {
1301 if (!pskb_may_pull(skb, offset + sizeof(*mld))) {
1305 mld = (struct mld_msg *) icmp6_hdr(skb);
1306 max_delay = msecs_to_jiffies(ntohs(mld->mld_maxdelay));
1308 group = &mld->mld_mca;
1310 if (!pskb_may_pull(skb, offset + sizeof(*mld2q))) {
1314 mld2q = (struct mld2_query *)icmp6_hdr(skb);
1315 if (!mld2q->mld2q_nsrcs)
1316 group = &mld2q->mld2q_mca;
1318 max_delay = max(msecs_to_jiffies(mldv2_mrc(mld2q)), 1UL);
1321 is_general_query = group && ipv6_addr_any(group);
1323 if (is_general_query) {
1324 saddr.proto = htons(ETH_P_IPV6);
1325 saddr.u.ip6 = ipv6_hdr(skb)->saddr;
1327 br_multicast_query_received(br, port, &br->ip6_other_query,
1330 } else if (!group) {
1334 mp = br_mdb_ip6_get(br, group, vid);
1338 max_delay *= br->multicast_last_member_count;
1339 if (mp->host_joined &&
1340 (timer_pending(&mp->timer) ?
1341 time_after(mp->timer.expires, now + max_delay) :
1342 try_to_del_timer_sync(&mp->timer) >= 0))
1343 mod_timer(&mp->timer, now + max_delay);
1345 for (pp = &mp->ports;
1346 (p = mlock_dereference(*pp, br)) != NULL;
1348 if (timer_pending(&p->timer) ?
1349 time_after(p->timer.expires, now + max_delay) :
1350 try_to_del_timer_sync(&p->timer) >= 0)
1351 mod_timer(&p->timer, now + max_delay);
1355 spin_unlock(&br->multicast_lock);
1361 br_multicast_leave_group(struct net_bridge *br,
1362 struct net_bridge_port *port,
1363 struct br_ip *group,
1364 struct bridge_mcast_other_query *other_query,
1365 struct bridge_mcast_own_query *own_query,
1366 const unsigned char *src)
1368 struct net_bridge_mdb_entry *mp;
1369 struct net_bridge_port_group *p;
1373 spin_lock(&br->multicast_lock);
1374 if (!netif_running(br->dev) ||
1375 (port && port->state == BR_STATE_DISABLED))
1378 mp = br_mdb_ip_get(br, group);
1382 if (port && (port->flags & BR_MULTICAST_FAST_LEAVE)) {
1383 struct net_bridge_port_group __rcu **pp;
1385 for (pp = &mp->ports;
1386 (p = mlock_dereference(*pp, br)) != NULL;
1388 if (!br_port_group_equal(p, port, src))
1391 rcu_assign_pointer(*pp, p->next);
1392 hlist_del_init(&p->mglist);
1393 del_timer(&p->timer);
1395 br_mdb_notify(br->dev, port, group, RTM_DELMDB,
1398 if (!mp->ports && !mp->host_joined &&
1399 netif_running(br->dev))
1400 mod_timer(&mp->timer, jiffies);
1405 if (timer_pending(&other_query->timer))
1408 if (br_opt_get(br, BROPT_MULTICAST_QUERIER)) {
1409 __br_multicast_send_query(br, port, &mp->addr);
1411 time = jiffies + br->multicast_last_member_count *
1412 br->multicast_last_member_interval;
1414 mod_timer(&own_query->timer, time);
1416 for (p = mlock_dereference(mp->ports, br);
1418 p = mlock_dereference(p->next, br)) {
1419 if (!br_port_group_equal(p, port, src))
1422 if (!hlist_unhashed(&p->mglist) &&
1423 (timer_pending(&p->timer) ?
1424 time_after(p->timer.expires, time) :
1425 try_to_del_timer_sync(&p->timer) >= 0)) {
1426 mod_timer(&p->timer, time);
1434 time = now + br->multicast_last_member_count *
1435 br->multicast_last_member_interval;
1438 if (mp->host_joined &&
1439 (timer_pending(&mp->timer) ?
1440 time_after(mp->timer.expires, time) :
1441 try_to_del_timer_sync(&mp->timer) >= 0)) {
1442 mod_timer(&mp->timer, time);
1448 for (p = mlock_dereference(mp->ports, br);
1450 p = mlock_dereference(p->next, br)) {
1451 if (p->port != port)
1454 if (!hlist_unhashed(&p->mglist) &&
1455 (timer_pending(&p->timer) ?
1456 time_after(p->timer.expires, time) :
1457 try_to_del_timer_sync(&p->timer) >= 0)) {
1458 mod_timer(&p->timer, time);
1464 spin_unlock(&br->multicast_lock);
1467 static void br_ip4_multicast_leave_group(struct net_bridge *br,
1468 struct net_bridge_port *port,
1471 const unsigned char *src)
1473 struct br_ip br_group;
1474 struct bridge_mcast_own_query *own_query;
1476 if (ipv4_is_local_multicast(group))
1479 own_query = port ? &port->ip4_own_query : &br->ip4_own_query;
1481 memset(&br_group, 0, sizeof(br_group));
1482 br_group.u.ip4 = group;
1483 br_group.proto = htons(ETH_P_IP);
1486 br_multicast_leave_group(br, port, &br_group, &br->ip4_other_query,
1490 #if IS_ENABLED(CONFIG_IPV6)
1491 static void br_ip6_multicast_leave_group(struct net_bridge *br,
1492 struct net_bridge_port *port,
1493 const struct in6_addr *group,
1495 const unsigned char *src)
1497 struct br_ip br_group;
1498 struct bridge_mcast_own_query *own_query;
1500 if (ipv6_addr_is_ll_all_nodes(group))
1503 own_query = port ? &port->ip6_own_query : &br->ip6_own_query;
1505 memset(&br_group, 0, sizeof(br_group));
1506 br_group.u.ip6 = *group;
1507 br_group.proto = htons(ETH_P_IPV6);
1510 br_multicast_leave_group(br, port, &br_group, &br->ip6_other_query,
1515 static void br_multicast_err_count(const struct net_bridge *br,
1516 const struct net_bridge_port *p,
1519 struct bridge_mcast_stats __percpu *stats;
1520 struct bridge_mcast_stats *pstats;
1522 if (!br_opt_get(br, BROPT_MULTICAST_STATS_ENABLED))
1526 stats = p->mcast_stats;
1528 stats = br->mcast_stats;
1529 if (WARN_ON(!stats))
1532 pstats = this_cpu_ptr(stats);
1534 u64_stats_update_begin(&pstats->syncp);
1536 case htons(ETH_P_IP):
1537 pstats->mstats.igmp_parse_errors++;
1539 #if IS_ENABLED(CONFIG_IPV6)
1540 case htons(ETH_P_IPV6):
1541 pstats->mstats.mld_parse_errors++;
1545 u64_stats_update_end(&pstats->syncp);
1548 static void br_multicast_pim(struct net_bridge *br,
1549 struct net_bridge_port *port,
1550 const struct sk_buff *skb)
1552 unsigned int offset = skb_transport_offset(skb);
1553 struct pimhdr *pimhdr, _pimhdr;
1555 pimhdr = skb_header_pointer(skb, offset, sizeof(_pimhdr), &_pimhdr);
1556 if (!pimhdr || pim_hdr_version(pimhdr) != PIM_VERSION ||
1557 pim_hdr_type(pimhdr) != PIM_TYPE_HELLO)
1560 br_multicast_mark_router(br, port);
1563 static int br_ip4_multicast_mrd_rcv(struct net_bridge *br,
1564 struct net_bridge_port *port,
1565 struct sk_buff *skb)
1567 if (ip_hdr(skb)->protocol != IPPROTO_IGMP ||
1568 igmp_hdr(skb)->type != IGMP_MRDISC_ADV)
1571 br_multicast_mark_router(br, port);
1576 static int br_multicast_ipv4_rcv(struct net_bridge *br,
1577 struct net_bridge_port *port,
1578 struct sk_buff *skb,
1581 const unsigned char *src;
1585 err = ip_mc_check_igmp(skb);
1587 if (err == -ENOMSG) {
1588 if (!ipv4_is_local_multicast(ip_hdr(skb)->daddr)) {
1589 BR_INPUT_SKB_CB(skb)->mrouters_only = 1;
1590 } else if (pim_ipv4_all_pim_routers(ip_hdr(skb)->daddr)) {
1591 if (ip_hdr(skb)->protocol == IPPROTO_PIM)
1592 br_multicast_pim(br, port, skb);
1593 } else if (ipv4_is_all_snoopers(ip_hdr(skb)->daddr)) {
1594 br_ip4_multicast_mrd_rcv(br, port, skb);
1598 } else if (err < 0) {
1599 br_multicast_err_count(br, port, skb->protocol);
1604 src = eth_hdr(skb)->h_source;
1605 BR_INPUT_SKB_CB(skb)->igmp = ih->type;
1608 case IGMP_HOST_MEMBERSHIP_REPORT:
1609 case IGMPV2_HOST_MEMBERSHIP_REPORT:
1610 BR_INPUT_SKB_CB(skb)->mrouters_only = 1;
1611 err = br_ip4_multicast_add_group(br, port, ih->group, vid, src);
1613 case IGMPV3_HOST_MEMBERSHIP_REPORT:
1614 err = br_ip4_multicast_igmp3_report(br, port, skb, vid);
1616 case IGMP_HOST_MEMBERSHIP_QUERY:
1617 br_ip4_multicast_query(br, port, skb, vid);
1619 case IGMP_HOST_LEAVE_MESSAGE:
1620 br_ip4_multicast_leave_group(br, port, ih->group, vid, src);
1624 br_multicast_count(br, port, skb, BR_INPUT_SKB_CB(skb)->igmp,
1630 #if IS_ENABLED(CONFIG_IPV6)
1631 static int br_ip6_multicast_mrd_rcv(struct net_bridge *br,
1632 struct net_bridge_port *port,
1633 struct sk_buff *skb)
1637 if (ipv6_hdr(skb)->nexthdr != IPPROTO_ICMPV6)
1640 ret = ipv6_mc_check_icmpv6(skb);
1644 if (icmp6_hdr(skb)->icmp6_type != ICMPV6_MRDISC_ADV)
1647 br_multicast_mark_router(br, port);
1652 static int br_multicast_ipv6_rcv(struct net_bridge *br,
1653 struct net_bridge_port *port,
1654 struct sk_buff *skb,
1657 const unsigned char *src;
1658 struct mld_msg *mld;
1661 err = ipv6_mc_check_mld(skb);
1663 if (err == -ENOMSG) {
1664 if (!ipv6_addr_is_ll_all_nodes(&ipv6_hdr(skb)->daddr))
1665 BR_INPUT_SKB_CB(skb)->mrouters_only = 1;
1667 if (ipv6_addr_is_all_snoopers(&ipv6_hdr(skb)->daddr)) {
1668 err = br_ip6_multicast_mrd_rcv(br, port, skb);
1670 if (err < 0 && err != -ENOMSG) {
1671 br_multicast_err_count(br, port, skb->protocol);
1677 } else if (err < 0) {
1678 br_multicast_err_count(br, port, skb->protocol);
1682 mld = (struct mld_msg *)skb_transport_header(skb);
1683 BR_INPUT_SKB_CB(skb)->igmp = mld->mld_type;
1685 switch (mld->mld_type) {
1686 case ICMPV6_MGM_REPORT:
1687 src = eth_hdr(skb)->h_source;
1688 BR_INPUT_SKB_CB(skb)->mrouters_only = 1;
1689 err = br_ip6_multicast_add_group(br, port, &mld->mld_mca, vid,
1692 case ICMPV6_MLD2_REPORT:
1693 err = br_ip6_multicast_mld2_report(br, port, skb, vid);
1695 case ICMPV6_MGM_QUERY:
1696 err = br_ip6_multicast_query(br, port, skb, vid);
1698 case ICMPV6_MGM_REDUCTION:
1699 src = eth_hdr(skb)->h_source;
1700 br_ip6_multicast_leave_group(br, port, &mld->mld_mca, vid, src);
1704 br_multicast_count(br, port, skb, BR_INPUT_SKB_CB(skb)->igmp,
1711 int br_multicast_rcv(struct net_bridge *br, struct net_bridge_port *port,
1712 struct sk_buff *skb, u16 vid)
1716 BR_INPUT_SKB_CB(skb)->igmp = 0;
1717 BR_INPUT_SKB_CB(skb)->mrouters_only = 0;
1719 if (!br_opt_get(br, BROPT_MULTICAST_ENABLED))
1722 switch (skb->protocol) {
1723 case htons(ETH_P_IP):
1724 ret = br_multicast_ipv4_rcv(br, port, skb, vid);
1726 #if IS_ENABLED(CONFIG_IPV6)
1727 case htons(ETH_P_IPV6):
1728 ret = br_multicast_ipv6_rcv(br, port, skb, vid);
1736 static void br_multicast_query_expired(struct net_bridge *br,
1737 struct bridge_mcast_own_query *query,
1738 struct bridge_mcast_querier *querier)
1740 spin_lock(&br->multicast_lock);
1741 if (query->startup_sent < br->multicast_startup_query_count)
1742 query->startup_sent++;
1744 RCU_INIT_POINTER(querier->port, NULL);
1745 br_multicast_send_query(br, NULL, query);
1746 spin_unlock(&br->multicast_lock);
1749 static void br_ip4_multicast_query_expired(struct timer_list *t)
1751 struct net_bridge *br = from_timer(br, t, ip4_own_query.timer);
1753 br_multicast_query_expired(br, &br->ip4_own_query, &br->ip4_querier);
1756 #if IS_ENABLED(CONFIG_IPV6)
1757 static void br_ip6_multicast_query_expired(struct timer_list *t)
1759 struct net_bridge *br = from_timer(br, t, ip6_own_query.timer);
1761 br_multicast_query_expired(br, &br->ip6_own_query, &br->ip6_querier);
1765 void br_multicast_init(struct net_bridge *br)
1767 br->hash_max = BR_MULTICAST_DEFAULT_HASH_MAX;
1769 br->multicast_router = MDB_RTR_TYPE_TEMP_QUERY;
1770 br->multicast_last_member_count = 2;
1771 br->multicast_startup_query_count = 2;
1773 br->multicast_last_member_interval = HZ;
1774 br->multicast_query_response_interval = 10 * HZ;
1775 br->multicast_startup_query_interval = 125 * HZ / 4;
1776 br->multicast_query_interval = 125 * HZ;
1777 br->multicast_querier_interval = 255 * HZ;
1778 br->multicast_membership_interval = 260 * HZ;
1780 br->ip4_other_query.delay_time = 0;
1781 br->ip4_querier.port = NULL;
1782 br->multicast_igmp_version = 2;
1783 #if IS_ENABLED(CONFIG_IPV6)
1784 br->multicast_mld_version = 1;
1785 br->ip6_other_query.delay_time = 0;
1786 br->ip6_querier.port = NULL;
1788 br_opt_toggle(br, BROPT_MULTICAST_ENABLED, true);
1789 br_opt_toggle(br, BROPT_HAS_IPV6_ADDR, true);
1791 spin_lock_init(&br->multicast_lock);
1792 timer_setup(&br->multicast_router_timer,
1793 br_multicast_local_router_expired, 0);
1794 timer_setup(&br->ip4_other_query.timer,
1795 br_ip4_multicast_querier_expired, 0);
1796 timer_setup(&br->ip4_own_query.timer,
1797 br_ip4_multicast_query_expired, 0);
1798 #if IS_ENABLED(CONFIG_IPV6)
1799 timer_setup(&br->ip6_other_query.timer,
1800 br_ip6_multicast_querier_expired, 0);
1801 timer_setup(&br->ip6_own_query.timer,
1802 br_ip6_multicast_query_expired, 0);
1804 INIT_HLIST_HEAD(&br->mdb_list);
1807 static void br_ip4_multicast_join_snoopers(struct net_bridge *br)
1809 struct in_device *in_dev = in_dev_get(br->dev);
1814 __ip_mc_inc_group(in_dev, htonl(INADDR_ALLSNOOPERS_GROUP), GFP_ATOMIC);
1818 #if IS_ENABLED(CONFIG_IPV6)
1819 static void br_ip6_multicast_join_snoopers(struct net_bridge *br)
1821 struct in6_addr addr;
1823 ipv6_addr_set(&addr, htonl(0xff020000), 0, 0, htonl(0x6a));
1824 ipv6_dev_mc_inc(br->dev, &addr);
1827 static inline void br_ip6_multicast_join_snoopers(struct net_bridge *br)
1832 static void br_multicast_join_snoopers(struct net_bridge *br)
1834 br_ip4_multicast_join_snoopers(br);
1835 br_ip6_multicast_join_snoopers(br);
1838 static void br_ip4_multicast_leave_snoopers(struct net_bridge *br)
1840 struct in_device *in_dev = in_dev_get(br->dev);
1842 if (WARN_ON(!in_dev))
1845 __ip_mc_dec_group(in_dev, htonl(INADDR_ALLSNOOPERS_GROUP), GFP_ATOMIC);
1849 #if IS_ENABLED(CONFIG_IPV6)
1850 static void br_ip6_multicast_leave_snoopers(struct net_bridge *br)
1852 struct in6_addr addr;
1854 ipv6_addr_set(&addr, htonl(0xff020000), 0, 0, htonl(0x6a));
1855 ipv6_dev_mc_dec(br->dev, &addr);
1858 static inline void br_ip6_multicast_leave_snoopers(struct net_bridge *br)
1863 static void br_multicast_leave_snoopers(struct net_bridge *br)
1865 br_ip4_multicast_leave_snoopers(br);
1866 br_ip6_multicast_leave_snoopers(br);
1869 static void __br_multicast_open(struct net_bridge *br,
1870 struct bridge_mcast_own_query *query)
1872 query->startup_sent = 0;
1874 if (!br_opt_get(br, BROPT_MULTICAST_ENABLED))
1877 mod_timer(&query->timer, jiffies);
1880 void br_multicast_open(struct net_bridge *br)
1882 if (br_opt_get(br, BROPT_MULTICAST_ENABLED))
1883 br_multicast_join_snoopers(br);
1885 __br_multicast_open(br, &br->ip4_own_query);
1886 #if IS_ENABLED(CONFIG_IPV6)
1887 __br_multicast_open(br, &br->ip6_own_query);
1891 void br_multicast_stop(struct net_bridge *br)
1893 del_timer_sync(&br->multicast_router_timer);
1894 del_timer_sync(&br->ip4_other_query.timer);
1895 del_timer_sync(&br->ip4_own_query.timer);
1896 #if IS_ENABLED(CONFIG_IPV6)
1897 del_timer_sync(&br->ip6_other_query.timer);
1898 del_timer_sync(&br->ip6_own_query.timer);
1901 if (br_opt_get(br, BROPT_MULTICAST_ENABLED))
1902 br_multicast_leave_snoopers(br);
1905 void br_multicast_dev_del(struct net_bridge *br)
1907 struct net_bridge_mdb_entry *mp;
1908 struct hlist_node *tmp;
1910 spin_lock_bh(&br->multicast_lock);
1911 hlist_for_each_entry_safe(mp, tmp, &br->mdb_list, mdb_node) {
1912 del_timer(&mp->timer);
1913 rhashtable_remove_fast(&br->mdb_hash_tbl, &mp->rhnode,
1915 hlist_del_rcu(&mp->mdb_node);
1918 spin_unlock_bh(&br->multicast_lock);
1923 int br_multicast_set_router(struct net_bridge *br, unsigned long val)
1927 spin_lock_bh(&br->multicast_lock);
1930 case MDB_RTR_TYPE_DISABLED:
1931 case MDB_RTR_TYPE_PERM:
1932 br_mc_router_state_change(br, val == MDB_RTR_TYPE_PERM);
1933 del_timer(&br->multicast_router_timer);
1934 br->multicast_router = val;
1937 case MDB_RTR_TYPE_TEMP_QUERY:
1938 if (br->multicast_router != MDB_RTR_TYPE_TEMP_QUERY)
1939 br_mc_router_state_change(br, false);
1940 br->multicast_router = val;
1945 spin_unlock_bh(&br->multicast_lock);
1950 static void __del_port_router(struct net_bridge_port *p)
1952 if (hlist_unhashed(&p->rlist))
1954 hlist_del_init_rcu(&p->rlist);
1955 br_rtr_notify(p->br->dev, p, RTM_DELMDB);
1956 br_port_mc_router_state_change(p, false);
1958 /* don't allow timer refresh */
1959 if (p->multicast_router == MDB_RTR_TYPE_TEMP)
1960 p->multicast_router = MDB_RTR_TYPE_TEMP_QUERY;
1963 int br_multicast_set_port_router(struct net_bridge_port *p, unsigned long val)
1965 struct net_bridge *br = p->br;
1966 unsigned long now = jiffies;
1969 spin_lock(&br->multicast_lock);
1970 if (p->multicast_router == val) {
1971 /* Refresh the temp router port timer */
1972 if (p->multicast_router == MDB_RTR_TYPE_TEMP)
1973 mod_timer(&p->multicast_router_timer,
1974 now + br->multicast_querier_interval);
1979 case MDB_RTR_TYPE_DISABLED:
1980 p->multicast_router = MDB_RTR_TYPE_DISABLED;
1981 __del_port_router(p);
1982 del_timer(&p->multicast_router_timer);
1984 case MDB_RTR_TYPE_TEMP_QUERY:
1985 p->multicast_router = MDB_RTR_TYPE_TEMP_QUERY;
1986 __del_port_router(p);
1988 case MDB_RTR_TYPE_PERM:
1989 p->multicast_router = MDB_RTR_TYPE_PERM;
1990 del_timer(&p->multicast_router_timer);
1991 br_multicast_add_router(br, p);
1993 case MDB_RTR_TYPE_TEMP:
1994 p->multicast_router = MDB_RTR_TYPE_TEMP;
1995 br_multicast_mark_router(br, p);
2002 spin_unlock(&br->multicast_lock);
2007 static void br_multicast_start_querier(struct net_bridge *br,
2008 struct bridge_mcast_own_query *query)
2010 struct net_bridge_port *port;
2012 __br_multicast_open(br, query);
2015 list_for_each_entry_rcu(port, &br->port_list, list) {
2016 if (port->state == BR_STATE_DISABLED ||
2017 port->state == BR_STATE_BLOCKING)
2020 if (query == &br->ip4_own_query)
2021 br_multicast_enable(&port->ip4_own_query);
2022 #if IS_ENABLED(CONFIG_IPV6)
2024 br_multicast_enable(&port->ip6_own_query);
2030 int br_multicast_toggle(struct net_bridge *br, unsigned long val)
2032 struct net_bridge_port *port;
2034 spin_lock_bh(&br->multicast_lock);
2035 if (!!br_opt_get(br, BROPT_MULTICAST_ENABLED) == !!val)
2038 br_mc_disabled_update(br->dev, val);
2039 br_opt_toggle(br, BROPT_MULTICAST_ENABLED, !!val);
2040 if (!br_opt_get(br, BROPT_MULTICAST_ENABLED)) {
2041 br_multicast_leave_snoopers(br);
2045 if (!netif_running(br->dev))
2048 br_multicast_open(br);
2049 list_for_each_entry(port, &br->port_list, list)
2050 __br_multicast_enable_port(port);
2053 spin_unlock_bh(&br->multicast_lock);
2058 bool br_multicast_enabled(const struct net_device *dev)
2060 struct net_bridge *br = netdev_priv(dev);
2062 return !!br_opt_get(br, BROPT_MULTICAST_ENABLED);
2064 EXPORT_SYMBOL_GPL(br_multicast_enabled);
2066 bool br_multicast_router(const struct net_device *dev)
2068 struct net_bridge *br = netdev_priv(dev);
2071 spin_lock_bh(&br->multicast_lock);
2072 is_router = br_multicast_is_router(br);
2073 spin_unlock_bh(&br->multicast_lock);
2076 EXPORT_SYMBOL_GPL(br_multicast_router);
2078 int br_multicast_set_querier(struct net_bridge *br, unsigned long val)
2080 unsigned long max_delay;
2084 spin_lock_bh(&br->multicast_lock);
2085 if (br_opt_get(br, BROPT_MULTICAST_QUERIER) == val)
2088 br_opt_toggle(br, BROPT_MULTICAST_QUERIER, !!val);
2092 max_delay = br->multicast_query_response_interval;
2094 if (!timer_pending(&br->ip4_other_query.timer))
2095 br->ip4_other_query.delay_time = jiffies + max_delay;
2097 br_multicast_start_querier(br, &br->ip4_own_query);
2099 #if IS_ENABLED(CONFIG_IPV6)
2100 if (!timer_pending(&br->ip6_other_query.timer))
2101 br->ip6_other_query.delay_time = jiffies + max_delay;
2103 br_multicast_start_querier(br, &br->ip6_own_query);
2107 spin_unlock_bh(&br->multicast_lock);
2112 int br_multicast_set_igmp_version(struct net_bridge *br, unsigned long val)
2114 /* Currently we support only version 2 and 3 */
2123 spin_lock_bh(&br->multicast_lock);
2124 br->multicast_igmp_version = val;
2125 spin_unlock_bh(&br->multicast_lock);
2130 #if IS_ENABLED(CONFIG_IPV6)
2131 int br_multicast_set_mld_version(struct net_bridge *br, unsigned long val)
2133 /* Currently we support version 1 and 2 */
2142 spin_lock_bh(&br->multicast_lock);
2143 br->multicast_mld_version = val;
2144 spin_unlock_bh(&br->multicast_lock);
2151 * br_multicast_list_adjacent - Returns snooped multicast addresses
2152 * @dev: The bridge port adjacent to which to retrieve addresses
2153 * @br_ip_list: The list to store found, snooped multicast IP addresses in
2155 * Creates a list of IP addresses (struct br_ip_list) sensed by the multicast
2156 * snooping feature on all bridge ports of dev's bridge device, excluding
2157 * the addresses from dev itself.
2159 * Returns the number of items added to br_ip_list.
2162 * - br_ip_list needs to be initialized by caller
2163 * - br_ip_list might contain duplicates in the end
2164 * (needs to be taken care of by caller)
2165 * - br_ip_list needs to be freed by caller
2167 int br_multicast_list_adjacent(struct net_device *dev,
2168 struct list_head *br_ip_list)
2170 struct net_bridge *br;
2171 struct net_bridge_port *port;
2172 struct net_bridge_port_group *group;
2173 struct br_ip_list *entry;
2177 if (!br_ip_list || !netif_is_bridge_port(dev))
2180 port = br_port_get_rcu(dev);
2181 if (!port || !port->br)
2186 list_for_each_entry_rcu(port, &br->port_list, list) {
2187 if (!port->dev || port->dev == dev)
2190 hlist_for_each_entry_rcu(group, &port->mglist, mglist) {
2191 entry = kmalloc(sizeof(*entry), GFP_ATOMIC);
2195 entry->addr = group->addr;
2196 list_add(&entry->list, br_ip_list);
2205 EXPORT_SYMBOL_GPL(br_multicast_list_adjacent);
2208 * br_multicast_has_querier_anywhere - Checks for a querier on a bridge
2209 * @dev: The bridge port providing the bridge on which to check for a querier
2210 * @proto: The protocol family to check for: IGMP -> ETH_P_IP, MLD -> ETH_P_IPV6
2212 * Checks whether the given interface has a bridge on top and if so returns
2213 * true if a valid querier exists anywhere on the bridged link layer.
2214 * Otherwise returns false.
2216 bool br_multicast_has_querier_anywhere(struct net_device *dev, int proto)
2218 struct net_bridge *br;
2219 struct net_bridge_port *port;
2224 if (!netif_is_bridge_port(dev))
2227 port = br_port_get_rcu(dev);
2228 if (!port || !port->br)
2233 memset(ð, 0, sizeof(eth));
2234 eth.h_proto = htons(proto);
2236 ret = br_multicast_querier_exists(br, ð);
2242 EXPORT_SYMBOL_GPL(br_multicast_has_querier_anywhere);
2245 * br_multicast_has_querier_adjacent - Checks for a querier behind a bridge port
2246 * @dev: The bridge port adjacent to which to check for a querier
2247 * @proto: The protocol family to check for: IGMP -> ETH_P_IP, MLD -> ETH_P_IPV6
2249 * Checks whether the given interface has a bridge on top and if so returns
2250 * true if a selected querier is behind one of the other ports of this
2251 * bridge. Otherwise returns false.
2253 bool br_multicast_has_querier_adjacent(struct net_device *dev, int proto)
2255 struct net_bridge *br;
2256 struct net_bridge_port *port;
2260 if (!netif_is_bridge_port(dev))
2263 port = br_port_get_rcu(dev);
2264 if (!port || !port->br)
2271 if (!timer_pending(&br->ip4_other_query.timer) ||
2272 rcu_dereference(br->ip4_querier.port) == port)
2275 #if IS_ENABLED(CONFIG_IPV6)
2277 if (!timer_pending(&br->ip6_other_query.timer) ||
2278 rcu_dereference(br->ip6_querier.port) == port)
2291 EXPORT_SYMBOL_GPL(br_multicast_has_querier_adjacent);
2293 static void br_mcast_stats_add(struct bridge_mcast_stats __percpu *stats,
2294 const struct sk_buff *skb, u8 type, u8 dir)
2296 struct bridge_mcast_stats *pstats = this_cpu_ptr(stats);
2297 __be16 proto = skb->protocol;
2300 u64_stats_update_begin(&pstats->syncp);
2302 case htons(ETH_P_IP):
2303 t_len = ntohs(ip_hdr(skb)->tot_len) - ip_hdrlen(skb);
2305 case IGMP_HOST_MEMBERSHIP_REPORT:
2306 pstats->mstats.igmp_v1reports[dir]++;
2308 case IGMPV2_HOST_MEMBERSHIP_REPORT:
2309 pstats->mstats.igmp_v2reports[dir]++;
2311 case IGMPV3_HOST_MEMBERSHIP_REPORT:
2312 pstats->mstats.igmp_v3reports[dir]++;
2314 case IGMP_HOST_MEMBERSHIP_QUERY:
2315 if (t_len != sizeof(struct igmphdr)) {
2316 pstats->mstats.igmp_v3queries[dir]++;
2318 unsigned int offset = skb_transport_offset(skb);
2319 struct igmphdr *ih, _ihdr;
2321 ih = skb_header_pointer(skb, offset,
2322 sizeof(_ihdr), &_ihdr);
2326 pstats->mstats.igmp_v1queries[dir]++;
2328 pstats->mstats.igmp_v2queries[dir]++;
2331 case IGMP_HOST_LEAVE_MESSAGE:
2332 pstats->mstats.igmp_leaves[dir]++;
2336 #if IS_ENABLED(CONFIG_IPV6)
2337 case htons(ETH_P_IPV6):
2338 t_len = ntohs(ipv6_hdr(skb)->payload_len) +
2339 sizeof(struct ipv6hdr);
2340 t_len -= skb_network_header_len(skb);
2342 case ICMPV6_MGM_REPORT:
2343 pstats->mstats.mld_v1reports[dir]++;
2345 case ICMPV6_MLD2_REPORT:
2346 pstats->mstats.mld_v2reports[dir]++;
2348 case ICMPV6_MGM_QUERY:
2349 if (t_len != sizeof(struct mld_msg))
2350 pstats->mstats.mld_v2queries[dir]++;
2352 pstats->mstats.mld_v1queries[dir]++;
2354 case ICMPV6_MGM_REDUCTION:
2355 pstats->mstats.mld_leaves[dir]++;
2359 #endif /* CONFIG_IPV6 */
2361 u64_stats_update_end(&pstats->syncp);
2364 void br_multicast_count(struct net_bridge *br, const struct net_bridge_port *p,
2365 const struct sk_buff *skb, u8 type, u8 dir)
2367 struct bridge_mcast_stats __percpu *stats;
2369 /* if multicast_disabled is true then igmp type can't be set */
2370 if (!type || !br_opt_get(br, BROPT_MULTICAST_STATS_ENABLED))
2374 stats = p->mcast_stats;
2376 stats = br->mcast_stats;
2377 if (WARN_ON(!stats))
2380 br_mcast_stats_add(stats, skb, type, dir);
2383 int br_multicast_init_stats(struct net_bridge *br)
2385 br->mcast_stats = netdev_alloc_pcpu_stats(struct bridge_mcast_stats);
2386 if (!br->mcast_stats)
2392 void br_multicast_uninit_stats(struct net_bridge *br)
2394 free_percpu(br->mcast_stats);
2397 static void mcast_stats_add_dir(u64 *dst, u64 *src)
2399 dst[BR_MCAST_DIR_RX] += src[BR_MCAST_DIR_RX];
2400 dst[BR_MCAST_DIR_TX] += src[BR_MCAST_DIR_TX];
2403 void br_multicast_get_stats(const struct net_bridge *br,
2404 const struct net_bridge_port *p,
2405 struct br_mcast_stats *dest)
2407 struct bridge_mcast_stats __percpu *stats;
2408 struct br_mcast_stats tdst;
2411 memset(dest, 0, sizeof(*dest));
2413 stats = p->mcast_stats;
2415 stats = br->mcast_stats;
2416 if (WARN_ON(!stats))
2419 memset(&tdst, 0, sizeof(tdst));
2420 for_each_possible_cpu(i) {
2421 struct bridge_mcast_stats *cpu_stats = per_cpu_ptr(stats, i);
2422 struct br_mcast_stats temp;
2426 start = u64_stats_fetch_begin_irq(&cpu_stats->syncp);
2427 memcpy(&temp, &cpu_stats->mstats, sizeof(temp));
2428 } while (u64_stats_fetch_retry_irq(&cpu_stats->syncp, start));
2430 mcast_stats_add_dir(tdst.igmp_v1queries, temp.igmp_v1queries);
2431 mcast_stats_add_dir(tdst.igmp_v2queries, temp.igmp_v2queries);
2432 mcast_stats_add_dir(tdst.igmp_v3queries, temp.igmp_v3queries);
2433 mcast_stats_add_dir(tdst.igmp_leaves, temp.igmp_leaves);
2434 mcast_stats_add_dir(tdst.igmp_v1reports, temp.igmp_v1reports);
2435 mcast_stats_add_dir(tdst.igmp_v2reports, temp.igmp_v2reports);
2436 mcast_stats_add_dir(tdst.igmp_v3reports, temp.igmp_v3reports);
2437 tdst.igmp_parse_errors += temp.igmp_parse_errors;
2439 mcast_stats_add_dir(tdst.mld_v1queries, temp.mld_v1queries);
2440 mcast_stats_add_dir(tdst.mld_v2queries, temp.mld_v2queries);
2441 mcast_stats_add_dir(tdst.mld_leaves, temp.mld_leaves);
2442 mcast_stats_add_dir(tdst.mld_v1reports, temp.mld_v1reports);
2443 mcast_stats_add_dir(tdst.mld_v2reports, temp.mld_v2reports);
2444 tdst.mld_parse_errors += temp.mld_parse_errors;
2446 memcpy(dest, &tdst, sizeof(*dest));
2449 int br_mdb_hash_init(struct net_bridge *br)
2451 return rhashtable_init(&br->mdb_hash_tbl, &br_mdb_rht_params);
2454 void br_mdb_hash_fini(struct net_bridge *br)
2456 rhashtable_destroy(&br->mdb_hash_tbl);