1*4882a593Smuzhiyun // SPDX-License-Identifier: GPL-2.0 OR Linux-OpenIB
2*4882a593Smuzhiyun /*
3*4882a593Smuzhiyun * Copyright (c) 2016 Mellanox Technologies Ltd. All rights reserved.
4*4882a593Smuzhiyun * Copyright (c) 2015 System Fabric Works, Inc. All rights reserved.
5*4882a593Smuzhiyun */
6*4882a593Smuzhiyun
7*4882a593Smuzhiyun #include <linux/skbuff.h>
8*4882a593Smuzhiyun
9*4882a593Smuzhiyun #include "rxe.h"
10*4882a593Smuzhiyun #include "rxe_loc.h"
11*4882a593Smuzhiyun
12*4882a593Smuzhiyun /* check that QP matches packet opcode type and is in a valid state */
check_type_state(struct rxe_dev * rxe,struct rxe_pkt_info * pkt,struct rxe_qp * qp)13*4882a593Smuzhiyun static int check_type_state(struct rxe_dev *rxe, struct rxe_pkt_info *pkt,
14*4882a593Smuzhiyun struct rxe_qp *qp)
15*4882a593Smuzhiyun {
16*4882a593Smuzhiyun unsigned int pkt_type;
17*4882a593Smuzhiyun
18*4882a593Smuzhiyun if (unlikely(!qp->valid))
19*4882a593Smuzhiyun goto err1;
20*4882a593Smuzhiyun
21*4882a593Smuzhiyun pkt_type = pkt->opcode & 0xe0;
22*4882a593Smuzhiyun
23*4882a593Smuzhiyun switch (qp_type(qp)) {
24*4882a593Smuzhiyun case IB_QPT_RC:
25*4882a593Smuzhiyun if (unlikely(pkt_type != IB_OPCODE_RC)) {
26*4882a593Smuzhiyun pr_warn_ratelimited("bad qp type\n");
27*4882a593Smuzhiyun goto err1;
28*4882a593Smuzhiyun }
29*4882a593Smuzhiyun break;
30*4882a593Smuzhiyun case IB_QPT_UC:
31*4882a593Smuzhiyun if (unlikely(pkt_type != IB_OPCODE_UC)) {
32*4882a593Smuzhiyun pr_warn_ratelimited("bad qp type\n");
33*4882a593Smuzhiyun goto err1;
34*4882a593Smuzhiyun }
35*4882a593Smuzhiyun break;
36*4882a593Smuzhiyun case IB_QPT_UD:
37*4882a593Smuzhiyun case IB_QPT_SMI:
38*4882a593Smuzhiyun case IB_QPT_GSI:
39*4882a593Smuzhiyun if (unlikely(pkt_type != IB_OPCODE_UD)) {
40*4882a593Smuzhiyun pr_warn_ratelimited("bad qp type\n");
41*4882a593Smuzhiyun goto err1;
42*4882a593Smuzhiyun }
43*4882a593Smuzhiyun break;
44*4882a593Smuzhiyun default:
45*4882a593Smuzhiyun pr_warn_ratelimited("unsupported qp type\n");
46*4882a593Smuzhiyun goto err1;
47*4882a593Smuzhiyun }
48*4882a593Smuzhiyun
49*4882a593Smuzhiyun if (pkt->mask & RXE_REQ_MASK) {
50*4882a593Smuzhiyun if (unlikely(qp->resp.state != QP_STATE_READY))
51*4882a593Smuzhiyun goto err1;
52*4882a593Smuzhiyun } else if (unlikely(qp->req.state < QP_STATE_READY ||
53*4882a593Smuzhiyun qp->req.state > QP_STATE_DRAINED)) {
54*4882a593Smuzhiyun goto err1;
55*4882a593Smuzhiyun }
56*4882a593Smuzhiyun
57*4882a593Smuzhiyun return 0;
58*4882a593Smuzhiyun
59*4882a593Smuzhiyun err1:
60*4882a593Smuzhiyun return -EINVAL;
61*4882a593Smuzhiyun }
62*4882a593Smuzhiyun
set_bad_pkey_cntr(struct rxe_port * port)63*4882a593Smuzhiyun static void set_bad_pkey_cntr(struct rxe_port *port)
64*4882a593Smuzhiyun {
65*4882a593Smuzhiyun spin_lock_bh(&port->port_lock);
66*4882a593Smuzhiyun port->attr.bad_pkey_cntr = min((u32)0xffff,
67*4882a593Smuzhiyun port->attr.bad_pkey_cntr + 1);
68*4882a593Smuzhiyun spin_unlock_bh(&port->port_lock);
69*4882a593Smuzhiyun }
70*4882a593Smuzhiyun
set_qkey_viol_cntr(struct rxe_port * port)71*4882a593Smuzhiyun static void set_qkey_viol_cntr(struct rxe_port *port)
72*4882a593Smuzhiyun {
73*4882a593Smuzhiyun spin_lock_bh(&port->port_lock);
74*4882a593Smuzhiyun port->attr.qkey_viol_cntr = min((u32)0xffff,
75*4882a593Smuzhiyun port->attr.qkey_viol_cntr + 1);
76*4882a593Smuzhiyun spin_unlock_bh(&port->port_lock);
77*4882a593Smuzhiyun }
78*4882a593Smuzhiyun
check_keys(struct rxe_dev * rxe,struct rxe_pkt_info * pkt,u32 qpn,struct rxe_qp * qp)79*4882a593Smuzhiyun static int check_keys(struct rxe_dev *rxe, struct rxe_pkt_info *pkt,
80*4882a593Smuzhiyun u32 qpn, struct rxe_qp *qp)
81*4882a593Smuzhiyun {
82*4882a593Smuzhiyun struct rxe_port *port = &rxe->port;
83*4882a593Smuzhiyun u16 pkey = bth_pkey(pkt);
84*4882a593Smuzhiyun
85*4882a593Smuzhiyun pkt->pkey_index = 0;
86*4882a593Smuzhiyun
87*4882a593Smuzhiyun if (!pkey_match(pkey, IB_DEFAULT_PKEY_FULL)) {
88*4882a593Smuzhiyun pr_warn_ratelimited("bad pkey = 0x%x\n", pkey);
89*4882a593Smuzhiyun set_bad_pkey_cntr(port);
90*4882a593Smuzhiyun goto err1;
91*4882a593Smuzhiyun }
92*4882a593Smuzhiyun
93*4882a593Smuzhiyun if ((qp_type(qp) == IB_QPT_UD || qp_type(qp) == IB_QPT_GSI) &&
94*4882a593Smuzhiyun pkt->mask) {
95*4882a593Smuzhiyun u32 qkey = (qpn == 1) ? GSI_QKEY : qp->attr.qkey;
96*4882a593Smuzhiyun
97*4882a593Smuzhiyun if (unlikely(deth_qkey(pkt) != qkey)) {
98*4882a593Smuzhiyun pr_warn_ratelimited("bad qkey, got 0x%x expected 0x%x for qpn 0x%x\n",
99*4882a593Smuzhiyun deth_qkey(pkt), qkey, qpn);
100*4882a593Smuzhiyun set_qkey_viol_cntr(port);
101*4882a593Smuzhiyun goto err1;
102*4882a593Smuzhiyun }
103*4882a593Smuzhiyun }
104*4882a593Smuzhiyun
105*4882a593Smuzhiyun return 0;
106*4882a593Smuzhiyun
107*4882a593Smuzhiyun err1:
108*4882a593Smuzhiyun return -EINVAL;
109*4882a593Smuzhiyun }
110*4882a593Smuzhiyun
check_addr(struct rxe_dev * rxe,struct rxe_pkt_info * pkt,struct rxe_qp * qp)111*4882a593Smuzhiyun static int check_addr(struct rxe_dev *rxe, struct rxe_pkt_info *pkt,
112*4882a593Smuzhiyun struct rxe_qp *qp)
113*4882a593Smuzhiyun {
114*4882a593Smuzhiyun struct sk_buff *skb = PKT_TO_SKB(pkt);
115*4882a593Smuzhiyun
116*4882a593Smuzhiyun if (qp_type(qp) != IB_QPT_RC && qp_type(qp) != IB_QPT_UC)
117*4882a593Smuzhiyun goto done;
118*4882a593Smuzhiyun
119*4882a593Smuzhiyun if (unlikely(pkt->port_num != qp->attr.port_num)) {
120*4882a593Smuzhiyun pr_warn_ratelimited("port %d != qp port %d\n",
121*4882a593Smuzhiyun pkt->port_num, qp->attr.port_num);
122*4882a593Smuzhiyun goto err1;
123*4882a593Smuzhiyun }
124*4882a593Smuzhiyun
125*4882a593Smuzhiyun if (skb->protocol == htons(ETH_P_IP)) {
126*4882a593Smuzhiyun struct in_addr *saddr =
127*4882a593Smuzhiyun &qp->pri_av.sgid_addr._sockaddr_in.sin_addr;
128*4882a593Smuzhiyun struct in_addr *daddr =
129*4882a593Smuzhiyun &qp->pri_av.dgid_addr._sockaddr_in.sin_addr;
130*4882a593Smuzhiyun
131*4882a593Smuzhiyun if (ip_hdr(skb)->daddr != saddr->s_addr) {
132*4882a593Smuzhiyun pr_warn_ratelimited("dst addr %pI4 != qp source addr %pI4\n",
133*4882a593Smuzhiyun &ip_hdr(skb)->daddr,
134*4882a593Smuzhiyun &saddr->s_addr);
135*4882a593Smuzhiyun goto err1;
136*4882a593Smuzhiyun }
137*4882a593Smuzhiyun
138*4882a593Smuzhiyun if (ip_hdr(skb)->saddr != daddr->s_addr) {
139*4882a593Smuzhiyun pr_warn_ratelimited("source addr %pI4 != qp dst addr %pI4\n",
140*4882a593Smuzhiyun &ip_hdr(skb)->saddr,
141*4882a593Smuzhiyun &daddr->s_addr);
142*4882a593Smuzhiyun goto err1;
143*4882a593Smuzhiyun }
144*4882a593Smuzhiyun
145*4882a593Smuzhiyun } else if (skb->protocol == htons(ETH_P_IPV6)) {
146*4882a593Smuzhiyun struct in6_addr *saddr =
147*4882a593Smuzhiyun &qp->pri_av.sgid_addr._sockaddr_in6.sin6_addr;
148*4882a593Smuzhiyun struct in6_addr *daddr =
149*4882a593Smuzhiyun &qp->pri_av.dgid_addr._sockaddr_in6.sin6_addr;
150*4882a593Smuzhiyun
151*4882a593Smuzhiyun if (memcmp(&ipv6_hdr(skb)->daddr, saddr, sizeof(*saddr))) {
152*4882a593Smuzhiyun pr_warn_ratelimited("dst addr %pI6 != qp source addr %pI6\n",
153*4882a593Smuzhiyun &ipv6_hdr(skb)->daddr, saddr);
154*4882a593Smuzhiyun goto err1;
155*4882a593Smuzhiyun }
156*4882a593Smuzhiyun
157*4882a593Smuzhiyun if (memcmp(&ipv6_hdr(skb)->saddr, daddr, sizeof(*daddr))) {
158*4882a593Smuzhiyun pr_warn_ratelimited("source addr %pI6 != qp dst addr %pI6\n",
159*4882a593Smuzhiyun &ipv6_hdr(skb)->saddr, daddr);
160*4882a593Smuzhiyun goto err1;
161*4882a593Smuzhiyun }
162*4882a593Smuzhiyun }
163*4882a593Smuzhiyun
164*4882a593Smuzhiyun done:
165*4882a593Smuzhiyun return 0;
166*4882a593Smuzhiyun
167*4882a593Smuzhiyun err1:
168*4882a593Smuzhiyun return -EINVAL;
169*4882a593Smuzhiyun }
170*4882a593Smuzhiyun
hdr_check(struct rxe_pkt_info * pkt)171*4882a593Smuzhiyun static int hdr_check(struct rxe_pkt_info *pkt)
172*4882a593Smuzhiyun {
173*4882a593Smuzhiyun struct rxe_dev *rxe = pkt->rxe;
174*4882a593Smuzhiyun struct rxe_port *port = &rxe->port;
175*4882a593Smuzhiyun struct rxe_qp *qp = NULL;
176*4882a593Smuzhiyun u32 qpn = bth_qpn(pkt);
177*4882a593Smuzhiyun int index;
178*4882a593Smuzhiyun int err;
179*4882a593Smuzhiyun
180*4882a593Smuzhiyun if (unlikely(bth_tver(pkt) != BTH_TVER)) {
181*4882a593Smuzhiyun pr_warn_ratelimited("bad tver\n");
182*4882a593Smuzhiyun goto err1;
183*4882a593Smuzhiyun }
184*4882a593Smuzhiyun
185*4882a593Smuzhiyun if (unlikely(qpn == 0)) {
186*4882a593Smuzhiyun pr_warn_once("QP 0 not supported");
187*4882a593Smuzhiyun goto err1;
188*4882a593Smuzhiyun }
189*4882a593Smuzhiyun
190*4882a593Smuzhiyun if (qpn != IB_MULTICAST_QPN) {
191*4882a593Smuzhiyun index = (qpn == 1) ? port->qp_gsi_index : qpn;
192*4882a593Smuzhiyun
193*4882a593Smuzhiyun qp = rxe_pool_get_index(&rxe->qp_pool, index);
194*4882a593Smuzhiyun if (unlikely(!qp)) {
195*4882a593Smuzhiyun pr_warn_ratelimited("no qp matches qpn 0x%x\n", qpn);
196*4882a593Smuzhiyun goto err1;
197*4882a593Smuzhiyun }
198*4882a593Smuzhiyun
199*4882a593Smuzhiyun err = check_type_state(rxe, pkt, qp);
200*4882a593Smuzhiyun if (unlikely(err))
201*4882a593Smuzhiyun goto err2;
202*4882a593Smuzhiyun
203*4882a593Smuzhiyun err = check_addr(rxe, pkt, qp);
204*4882a593Smuzhiyun if (unlikely(err))
205*4882a593Smuzhiyun goto err2;
206*4882a593Smuzhiyun
207*4882a593Smuzhiyun err = check_keys(rxe, pkt, qpn, qp);
208*4882a593Smuzhiyun if (unlikely(err))
209*4882a593Smuzhiyun goto err2;
210*4882a593Smuzhiyun } else {
211*4882a593Smuzhiyun if (unlikely((pkt->mask & RXE_GRH_MASK) == 0)) {
212*4882a593Smuzhiyun pr_warn_ratelimited("no grh for mcast qpn\n");
213*4882a593Smuzhiyun goto err1;
214*4882a593Smuzhiyun }
215*4882a593Smuzhiyun }
216*4882a593Smuzhiyun
217*4882a593Smuzhiyun pkt->qp = qp;
218*4882a593Smuzhiyun return 0;
219*4882a593Smuzhiyun
220*4882a593Smuzhiyun err2:
221*4882a593Smuzhiyun rxe_drop_ref(qp);
222*4882a593Smuzhiyun err1:
223*4882a593Smuzhiyun return -EINVAL;
224*4882a593Smuzhiyun }
225*4882a593Smuzhiyun
rxe_rcv_pkt(struct rxe_pkt_info * pkt,struct sk_buff * skb)226*4882a593Smuzhiyun static inline void rxe_rcv_pkt(struct rxe_pkt_info *pkt, struct sk_buff *skb)
227*4882a593Smuzhiyun {
228*4882a593Smuzhiyun if (pkt->mask & RXE_REQ_MASK)
229*4882a593Smuzhiyun rxe_resp_queue_pkt(pkt->qp, skb);
230*4882a593Smuzhiyun else
231*4882a593Smuzhiyun rxe_comp_queue_pkt(pkt->qp, skb);
232*4882a593Smuzhiyun }
233*4882a593Smuzhiyun
rxe_rcv_mcast_pkt(struct rxe_dev * rxe,struct sk_buff * skb)234*4882a593Smuzhiyun static void rxe_rcv_mcast_pkt(struct rxe_dev *rxe, struct sk_buff *skb)
235*4882a593Smuzhiyun {
236*4882a593Smuzhiyun struct rxe_pkt_info *pkt = SKB_TO_PKT(skb);
237*4882a593Smuzhiyun struct rxe_mc_grp *mcg;
238*4882a593Smuzhiyun struct rxe_mc_elem *mce;
239*4882a593Smuzhiyun struct rxe_qp *qp;
240*4882a593Smuzhiyun union ib_gid dgid;
241*4882a593Smuzhiyun struct sk_buff *per_qp_skb;
242*4882a593Smuzhiyun struct rxe_pkt_info *per_qp_pkt;
243*4882a593Smuzhiyun int err;
244*4882a593Smuzhiyun
245*4882a593Smuzhiyun if (skb->protocol == htons(ETH_P_IP))
246*4882a593Smuzhiyun ipv6_addr_set_v4mapped(ip_hdr(skb)->daddr,
247*4882a593Smuzhiyun (struct in6_addr *)&dgid);
248*4882a593Smuzhiyun else if (skb->protocol == htons(ETH_P_IPV6))
249*4882a593Smuzhiyun memcpy(&dgid, &ipv6_hdr(skb)->daddr, sizeof(dgid));
250*4882a593Smuzhiyun
251*4882a593Smuzhiyun /* lookup mcast group corresponding to mgid, takes a ref */
252*4882a593Smuzhiyun mcg = rxe_pool_get_key(&rxe->mc_grp_pool, &dgid);
253*4882a593Smuzhiyun if (!mcg)
254*4882a593Smuzhiyun goto err1; /* mcast group not registered */
255*4882a593Smuzhiyun
256*4882a593Smuzhiyun spin_lock_bh(&mcg->mcg_lock);
257*4882a593Smuzhiyun
258*4882a593Smuzhiyun list_for_each_entry(mce, &mcg->qp_list, qp_list) {
259*4882a593Smuzhiyun qp = mce->qp;
260*4882a593Smuzhiyun
261*4882a593Smuzhiyun /* validate qp for incoming packet */
262*4882a593Smuzhiyun err = check_type_state(rxe, pkt, qp);
263*4882a593Smuzhiyun if (err)
264*4882a593Smuzhiyun continue;
265*4882a593Smuzhiyun
266*4882a593Smuzhiyun err = check_keys(rxe, pkt, bth_qpn(pkt), qp);
267*4882a593Smuzhiyun if (err)
268*4882a593Smuzhiyun continue;
269*4882a593Smuzhiyun
270*4882a593Smuzhiyun /* for all but the last qp create a new clone of the
271*4882a593Smuzhiyun * skb and pass to the qp. If an error occurs in the
272*4882a593Smuzhiyun * checks for the last qp in the list we need to
273*4882a593Smuzhiyun * free the skb since it hasn't been passed on to
274*4882a593Smuzhiyun * rxe_rcv_pkt() which would free it later.
275*4882a593Smuzhiyun */
276*4882a593Smuzhiyun if (mce->qp_list.next != &mcg->qp_list) {
277*4882a593Smuzhiyun per_qp_skb = skb_clone(skb, GFP_ATOMIC);
278*4882a593Smuzhiyun } else {
279*4882a593Smuzhiyun per_qp_skb = skb;
280*4882a593Smuzhiyun /* show we have consumed the skb */
281*4882a593Smuzhiyun skb = NULL;
282*4882a593Smuzhiyun }
283*4882a593Smuzhiyun
284*4882a593Smuzhiyun if (unlikely(!per_qp_skb))
285*4882a593Smuzhiyun continue;
286*4882a593Smuzhiyun
287*4882a593Smuzhiyun per_qp_pkt = SKB_TO_PKT(per_qp_skb);
288*4882a593Smuzhiyun per_qp_pkt->qp = qp;
289*4882a593Smuzhiyun rxe_add_ref(qp);
290*4882a593Smuzhiyun rxe_rcv_pkt(per_qp_pkt, per_qp_skb);
291*4882a593Smuzhiyun }
292*4882a593Smuzhiyun
293*4882a593Smuzhiyun spin_unlock_bh(&mcg->mcg_lock);
294*4882a593Smuzhiyun
295*4882a593Smuzhiyun rxe_drop_ref(mcg); /* drop ref from rxe_pool_get_key. */
296*4882a593Smuzhiyun
297*4882a593Smuzhiyun err1:
298*4882a593Smuzhiyun /* free skb if not consumed */
299*4882a593Smuzhiyun kfree_skb(skb);
300*4882a593Smuzhiyun }
301*4882a593Smuzhiyun
302*4882a593Smuzhiyun /**
303*4882a593Smuzhiyun * rxe_chk_dgid - validate destination IP address
304*4882a593Smuzhiyun * @rxe: rxe device that received packet
305*4882a593Smuzhiyun * @skb: the received packet buffer
306*4882a593Smuzhiyun *
307*4882a593Smuzhiyun * Accept any loopback packets
308*4882a593Smuzhiyun * Extract IP address from packet and
309*4882a593Smuzhiyun * Accept if multicast packet
310*4882a593Smuzhiyun * Accept if matches an SGID table entry
311*4882a593Smuzhiyun */
rxe_chk_dgid(struct rxe_dev * rxe,struct sk_buff * skb)312*4882a593Smuzhiyun static int rxe_chk_dgid(struct rxe_dev *rxe, struct sk_buff *skb)
313*4882a593Smuzhiyun {
314*4882a593Smuzhiyun struct rxe_pkt_info *pkt = SKB_TO_PKT(skb);
315*4882a593Smuzhiyun const struct ib_gid_attr *gid_attr;
316*4882a593Smuzhiyun union ib_gid dgid;
317*4882a593Smuzhiyun union ib_gid *pdgid;
318*4882a593Smuzhiyun
319*4882a593Smuzhiyun if (pkt->mask & RXE_LOOPBACK_MASK)
320*4882a593Smuzhiyun return 0;
321*4882a593Smuzhiyun
322*4882a593Smuzhiyun if (skb->protocol == htons(ETH_P_IP)) {
323*4882a593Smuzhiyun ipv6_addr_set_v4mapped(ip_hdr(skb)->daddr,
324*4882a593Smuzhiyun (struct in6_addr *)&dgid);
325*4882a593Smuzhiyun pdgid = &dgid;
326*4882a593Smuzhiyun } else {
327*4882a593Smuzhiyun pdgid = (union ib_gid *)&ipv6_hdr(skb)->daddr;
328*4882a593Smuzhiyun }
329*4882a593Smuzhiyun
330*4882a593Smuzhiyun if (rdma_is_multicast_addr((struct in6_addr *)pdgid))
331*4882a593Smuzhiyun return 0;
332*4882a593Smuzhiyun
333*4882a593Smuzhiyun gid_attr = rdma_find_gid_by_port(&rxe->ib_dev, pdgid,
334*4882a593Smuzhiyun IB_GID_TYPE_ROCE_UDP_ENCAP,
335*4882a593Smuzhiyun 1, skb->dev);
336*4882a593Smuzhiyun if (IS_ERR(gid_attr))
337*4882a593Smuzhiyun return PTR_ERR(gid_attr);
338*4882a593Smuzhiyun
339*4882a593Smuzhiyun rdma_put_gid_attr(gid_attr);
340*4882a593Smuzhiyun return 0;
341*4882a593Smuzhiyun }
342*4882a593Smuzhiyun
343*4882a593Smuzhiyun /* rxe_rcv is called from the interface driver */
rxe_rcv(struct sk_buff * skb)344*4882a593Smuzhiyun void rxe_rcv(struct sk_buff *skb)
345*4882a593Smuzhiyun {
346*4882a593Smuzhiyun int err;
347*4882a593Smuzhiyun struct rxe_pkt_info *pkt = SKB_TO_PKT(skb);
348*4882a593Smuzhiyun struct rxe_dev *rxe = pkt->rxe;
349*4882a593Smuzhiyun __be32 *icrcp;
350*4882a593Smuzhiyun u32 calc_icrc, pack_icrc;
351*4882a593Smuzhiyun
352*4882a593Smuzhiyun pkt->offset = 0;
353*4882a593Smuzhiyun
354*4882a593Smuzhiyun if (unlikely(skb->len < pkt->offset + RXE_BTH_BYTES))
355*4882a593Smuzhiyun goto drop;
356*4882a593Smuzhiyun
357*4882a593Smuzhiyun if (rxe_chk_dgid(rxe, skb) < 0) {
358*4882a593Smuzhiyun pr_warn_ratelimited("failed checking dgid\n");
359*4882a593Smuzhiyun goto drop;
360*4882a593Smuzhiyun }
361*4882a593Smuzhiyun
362*4882a593Smuzhiyun pkt->opcode = bth_opcode(pkt);
363*4882a593Smuzhiyun pkt->psn = bth_psn(pkt);
364*4882a593Smuzhiyun pkt->qp = NULL;
365*4882a593Smuzhiyun pkt->mask |= rxe_opcode[pkt->opcode].mask;
366*4882a593Smuzhiyun
367*4882a593Smuzhiyun if (unlikely(skb->len < header_size(pkt)))
368*4882a593Smuzhiyun goto drop;
369*4882a593Smuzhiyun
370*4882a593Smuzhiyun err = hdr_check(pkt);
371*4882a593Smuzhiyun if (unlikely(err))
372*4882a593Smuzhiyun goto drop;
373*4882a593Smuzhiyun
374*4882a593Smuzhiyun /* Verify ICRC */
375*4882a593Smuzhiyun icrcp = (__be32 *)(pkt->hdr + pkt->paylen - RXE_ICRC_SIZE);
376*4882a593Smuzhiyun pack_icrc = be32_to_cpu(*icrcp);
377*4882a593Smuzhiyun
378*4882a593Smuzhiyun calc_icrc = rxe_icrc_hdr(pkt, skb);
379*4882a593Smuzhiyun calc_icrc = rxe_crc32(rxe, calc_icrc, (u8 *)payload_addr(pkt),
380*4882a593Smuzhiyun payload_size(pkt) + bth_pad(pkt));
381*4882a593Smuzhiyun calc_icrc = (__force u32)cpu_to_be32(~calc_icrc);
382*4882a593Smuzhiyun if (unlikely(calc_icrc != pack_icrc)) {
383*4882a593Smuzhiyun if (skb->protocol == htons(ETH_P_IPV6))
384*4882a593Smuzhiyun pr_warn_ratelimited("bad ICRC from %pI6c\n",
385*4882a593Smuzhiyun &ipv6_hdr(skb)->saddr);
386*4882a593Smuzhiyun else if (skb->protocol == htons(ETH_P_IP))
387*4882a593Smuzhiyun pr_warn_ratelimited("bad ICRC from %pI4\n",
388*4882a593Smuzhiyun &ip_hdr(skb)->saddr);
389*4882a593Smuzhiyun else
390*4882a593Smuzhiyun pr_warn_ratelimited("bad ICRC from unknown\n");
391*4882a593Smuzhiyun
392*4882a593Smuzhiyun goto drop;
393*4882a593Smuzhiyun }
394*4882a593Smuzhiyun
395*4882a593Smuzhiyun rxe_counter_inc(rxe, RXE_CNT_RCVD_PKTS);
396*4882a593Smuzhiyun
397*4882a593Smuzhiyun if (unlikely(bth_qpn(pkt) == IB_MULTICAST_QPN))
398*4882a593Smuzhiyun rxe_rcv_mcast_pkt(rxe, skb);
399*4882a593Smuzhiyun else
400*4882a593Smuzhiyun rxe_rcv_pkt(pkt, skb);
401*4882a593Smuzhiyun
402*4882a593Smuzhiyun return;
403*4882a593Smuzhiyun
404*4882a593Smuzhiyun drop:
405*4882a593Smuzhiyun if (pkt->qp)
406*4882a593Smuzhiyun rxe_drop_ref(pkt->qp);
407*4882a593Smuzhiyun
408*4882a593Smuzhiyun kfree_skb(skb);
409*4882a593Smuzhiyun }
410