xref: /OK3568_Linux_fs/kernel/drivers/net/ppp/pppoe.c (revision 4882a59341e53eb6f0b4789bf948001014eff981)
1*4882a593Smuzhiyun // SPDX-License-Identifier: GPL-2.0-or-later
2*4882a593Smuzhiyun /** -*- linux-c -*- ***********************************************************
3*4882a593Smuzhiyun  * Linux PPP over Ethernet (PPPoX/PPPoE) Sockets
4*4882a593Smuzhiyun  *
5*4882a593Smuzhiyun  * PPPoX --- Generic PPP encapsulation socket family
6*4882a593Smuzhiyun  * PPPoE --- PPP over Ethernet (RFC 2516)
7*4882a593Smuzhiyun  *
8*4882a593Smuzhiyun  * Version:	0.7.0
9*4882a593Smuzhiyun  *
10*4882a593Smuzhiyun  * 070228 :	Fix to allow multiple sessions with same remote MAC and same
11*4882a593Smuzhiyun  *		session id by including the local device ifindex in the
12*4882a593Smuzhiyun  *		tuple identifying a session. This also ensures packets can't
13*4882a593Smuzhiyun  *		be injected into a session from interfaces other than the one
14*4882a593Smuzhiyun  *		specified by userspace. Florian Zumbiehl <florz@florz.de>
15*4882a593Smuzhiyun  *		(Oh, BTW, this one is YYMMDD, in case you were wondering ...)
16*4882a593Smuzhiyun  * 220102 :	Fix module use count on failure in pppoe_create, pppox_sk -acme
17*4882a593Smuzhiyun  * 030700 :	Fixed connect logic to allow for disconnect.
18*4882a593Smuzhiyun  * 270700 :	Fixed potential SMP problems; we must protect against
19*4882a593Smuzhiyun  *		simultaneous invocation of ppp_input
20*4882a593Smuzhiyun  *		and ppp_unregister_channel.
21*4882a593Smuzhiyun  * 040800 :	Respect reference count mechanisms on net-devices.
22*4882a593Smuzhiyun  * 200800 :	fix kfree(skb) in pppoe_rcv (acme)
23*4882a593Smuzhiyun  *		Module reference count is decremented in the right spot now,
24*4882a593Smuzhiyun  *		guards against sock_put not actually freeing the sk
25*4882a593Smuzhiyun  *		in pppoe_release.
26*4882a593Smuzhiyun  * 051000 :	Initialization cleanup.
27*4882a593Smuzhiyun  * 111100 :	Fix recvmsg.
28*4882a593Smuzhiyun  * 050101 :	Fix PADT procesing.
29*4882a593Smuzhiyun  * 140501 :	Use pppoe_rcv_core to handle all backlog. (Alexey)
30*4882a593Smuzhiyun  * 170701 :	Do not lock_sock with rwlock held. (DaveM)
31*4882a593Smuzhiyun  *		Ignore discovery frames if user has socket
32*4882a593Smuzhiyun  *		locked. (DaveM)
33*4882a593Smuzhiyun  *		Ignore return value of dev_queue_xmit in __pppoe_xmit
34*4882a593Smuzhiyun  *		or else we may kfree an SKB twice. (DaveM)
35*4882a593Smuzhiyun  * 190701 :	When doing copies of skb's in __pppoe_xmit, always delete
36*4882a593Smuzhiyun  *		the original skb that was passed in on success, never on
37*4882a593Smuzhiyun  *		failure.  Delete the copy of the skb on failure to avoid
38*4882a593Smuzhiyun  *		a memory leak.
39*4882a593Smuzhiyun  * 081001 :	Misc. cleanup (licence string, non-blocking, prevent
40*4882a593Smuzhiyun  *		reference of device on close).
41*4882a593Smuzhiyun  * 121301 :	New ppp channels interface; cannot unregister a channel
42*4882a593Smuzhiyun  *		from interrupts.  Thus, we mark the socket as a ZOMBIE
43*4882a593Smuzhiyun  *		and do the unregistration later.
44*4882a593Smuzhiyun  * 081002 :	seq_file support for proc stuff -acme
45*4882a593Smuzhiyun  * 111602 :	Merge all 2.4 fixes into 2.5/2.6 tree.  Label 2.5/2.6
46*4882a593Smuzhiyun  *		as version 0.7.  Spacing cleanup.
47*4882a593Smuzhiyun  * Author:	Michal Ostrowski <mostrows@speakeasy.net>
48*4882a593Smuzhiyun  * Contributors:
49*4882a593Smuzhiyun  * 		Arnaldo Carvalho de Melo <acme@conectiva.com.br>
50*4882a593Smuzhiyun  *		David S. Miller (davem@redhat.com)
51*4882a593Smuzhiyun  *
52*4882a593Smuzhiyun  * License:
53*4882a593Smuzhiyun  */
54*4882a593Smuzhiyun 
55*4882a593Smuzhiyun #include <linux/string.h>
56*4882a593Smuzhiyun #include <linux/module.h>
57*4882a593Smuzhiyun #include <linux/kernel.h>
58*4882a593Smuzhiyun #include <linux/slab.h>
59*4882a593Smuzhiyun #include <linux/errno.h>
60*4882a593Smuzhiyun #include <linux/netdevice.h>
61*4882a593Smuzhiyun #include <linux/net.h>
62*4882a593Smuzhiyun #include <linux/inetdevice.h>
63*4882a593Smuzhiyun #include <linux/etherdevice.h>
64*4882a593Smuzhiyun #include <linux/skbuff.h>
65*4882a593Smuzhiyun #include <linux/init.h>
66*4882a593Smuzhiyun #include <linux/if_ether.h>
67*4882a593Smuzhiyun #include <linux/if_pppox.h>
68*4882a593Smuzhiyun #include <linux/ppp_channel.h>
69*4882a593Smuzhiyun #include <linux/ppp_defs.h>
70*4882a593Smuzhiyun #include <linux/ppp-ioctl.h>
71*4882a593Smuzhiyun #include <linux/notifier.h>
72*4882a593Smuzhiyun #include <linux/file.h>
73*4882a593Smuzhiyun #include <linux/proc_fs.h>
74*4882a593Smuzhiyun #include <linux/seq_file.h>
75*4882a593Smuzhiyun 
76*4882a593Smuzhiyun #include <linux/nsproxy.h>
77*4882a593Smuzhiyun #include <net/net_namespace.h>
78*4882a593Smuzhiyun #include <net/netns/generic.h>
79*4882a593Smuzhiyun #include <net/sock.h>
80*4882a593Smuzhiyun 
81*4882a593Smuzhiyun #include <linux/uaccess.h>
82*4882a593Smuzhiyun 
83*4882a593Smuzhiyun #define PPPOE_HASH_BITS 4
84*4882a593Smuzhiyun #define PPPOE_HASH_SIZE (1 << PPPOE_HASH_BITS)
85*4882a593Smuzhiyun #define PPPOE_HASH_MASK	(PPPOE_HASH_SIZE - 1)
86*4882a593Smuzhiyun 
87*4882a593Smuzhiyun static int __pppoe_xmit(struct sock *sk, struct sk_buff *skb);
88*4882a593Smuzhiyun 
89*4882a593Smuzhiyun static const struct proto_ops pppoe_ops;
90*4882a593Smuzhiyun static const struct ppp_channel_ops pppoe_chan_ops;
91*4882a593Smuzhiyun 
92*4882a593Smuzhiyun /* per-net private data for this module */
93*4882a593Smuzhiyun static unsigned int pppoe_net_id __read_mostly;
94*4882a593Smuzhiyun struct pppoe_net {
95*4882a593Smuzhiyun 	/*
96*4882a593Smuzhiyun 	 * we could use _single_ hash table for all
97*4882a593Smuzhiyun 	 * nets by injecting net id into the hash but
98*4882a593Smuzhiyun 	 * it would increase hash chains and add
99*4882a593Smuzhiyun 	 * a few additional math comparations messy
100*4882a593Smuzhiyun 	 * as well, moreover in case of SMP less locking
101*4882a593Smuzhiyun 	 * controversy here
102*4882a593Smuzhiyun 	 */
103*4882a593Smuzhiyun 	struct pppox_sock *hash_table[PPPOE_HASH_SIZE];
104*4882a593Smuzhiyun 	rwlock_t hash_lock;
105*4882a593Smuzhiyun };
106*4882a593Smuzhiyun 
107*4882a593Smuzhiyun /*
108*4882a593Smuzhiyun  * PPPoE could be in the following stages:
109*4882a593Smuzhiyun  * 1) Discovery stage (to obtain remote MAC and Session ID)
110*4882a593Smuzhiyun  * 2) Session stage (MAC and SID are known)
111*4882a593Smuzhiyun  *
112*4882a593Smuzhiyun  * Ethernet frames have a special tag for this but
113*4882a593Smuzhiyun  * we use simpler approach based on session id
114*4882a593Smuzhiyun  */
stage_session(__be16 sid)115*4882a593Smuzhiyun static inline bool stage_session(__be16 sid)
116*4882a593Smuzhiyun {
117*4882a593Smuzhiyun 	return sid != 0;
118*4882a593Smuzhiyun }
119*4882a593Smuzhiyun 
pppoe_pernet(struct net * net)120*4882a593Smuzhiyun static inline struct pppoe_net *pppoe_pernet(struct net *net)
121*4882a593Smuzhiyun {
122*4882a593Smuzhiyun 	return net_generic(net, pppoe_net_id);
123*4882a593Smuzhiyun }
124*4882a593Smuzhiyun 
cmp_2_addr(struct pppoe_addr * a,struct pppoe_addr * b)125*4882a593Smuzhiyun static inline int cmp_2_addr(struct pppoe_addr *a, struct pppoe_addr *b)
126*4882a593Smuzhiyun {
127*4882a593Smuzhiyun 	return a->sid == b->sid && ether_addr_equal(a->remote, b->remote);
128*4882a593Smuzhiyun }
129*4882a593Smuzhiyun 
cmp_addr(struct pppoe_addr * a,__be16 sid,char * addr)130*4882a593Smuzhiyun static inline int cmp_addr(struct pppoe_addr *a, __be16 sid, char *addr)
131*4882a593Smuzhiyun {
132*4882a593Smuzhiyun 	return a->sid == sid && ether_addr_equal(a->remote, addr);
133*4882a593Smuzhiyun }
134*4882a593Smuzhiyun 
135*4882a593Smuzhiyun #if 8 % PPPOE_HASH_BITS
136*4882a593Smuzhiyun #error 8 must be a multiple of PPPOE_HASH_BITS
137*4882a593Smuzhiyun #endif
138*4882a593Smuzhiyun 
hash_item(__be16 sid,unsigned char * addr)139*4882a593Smuzhiyun static int hash_item(__be16 sid, unsigned char *addr)
140*4882a593Smuzhiyun {
141*4882a593Smuzhiyun 	unsigned char hash = 0;
142*4882a593Smuzhiyun 	unsigned int i;
143*4882a593Smuzhiyun 
144*4882a593Smuzhiyun 	for (i = 0; i < ETH_ALEN; i++)
145*4882a593Smuzhiyun 		hash ^= addr[i];
146*4882a593Smuzhiyun 	for (i = 0; i < sizeof(sid_t) * 8; i += 8)
147*4882a593Smuzhiyun 		hash ^= (__force __u32)sid >> i;
148*4882a593Smuzhiyun 	for (i = 8; (i >>= 1) >= PPPOE_HASH_BITS;)
149*4882a593Smuzhiyun 		hash ^= hash >> i;
150*4882a593Smuzhiyun 
151*4882a593Smuzhiyun 	return hash & PPPOE_HASH_MASK;
152*4882a593Smuzhiyun }
153*4882a593Smuzhiyun 
154*4882a593Smuzhiyun /**********************************************************************
155*4882a593Smuzhiyun  *
156*4882a593Smuzhiyun  *  Set/get/delete/rehash items  (internal versions)
157*4882a593Smuzhiyun  *
158*4882a593Smuzhiyun  **********************************************************************/
__get_item(struct pppoe_net * pn,__be16 sid,unsigned char * addr,int ifindex)159*4882a593Smuzhiyun static struct pppox_sock *__get_item(struct pppoe_net *pn, __be16 sid,
160*4882a593Smuzhiyun 				unsigned char *addr, int ifindex)
161*4882a593Smuzhiyun {
162*4882a593Smuzhiyun 	int hash = hash_item(sid, addr);
163*4882a593Smuzhiyun 	struct pppox_sock *ret;
164*4882a593Smuzhiyun 
165*4882a593Smuzhiyun 	ret = pn->hash_table[hash];
166*4882a593Smuzhiyun 	while (ret) {
167*4882a593Smuzhiyun 		if (cmp_addr(&ret->pppoe_pa, sid, addr) &&
168*4882a593Smuzhiyun 		    ret->pppoe_ifindex == ifindex)
169*4882a593Smuzhiyun 			return ret;
170*4882a593Smuzhiyun 
171*4882a593Smuzhiyun 		ret = ret->next;
172*4882a593Smuzhiyun 	}
173*4882a593Smuzhiyun 
174*4882a593Smuzhiyun 	return NULL;
175*4882a593Smuzhiyun }
176*4882a593Smuzhiyun 
__set_item(struct pppoe_net * pn,struct pppox_sock * po)177*4882a593Smuzhiyun static int __set_item(struct pppoe_net *pn, struct pppox_sock *po)
178*4882a593Smuzhiyun {
179*4882a593Smuzhiyun 	int hash = hash_item(po->pppoe_pa.sid, po->pppoe_pa.remote);
180*4882a593Smuzhiyun 	struct pppox_sock *ret;
181*4882a593Smuzhiyun 
182*4882a593Smuzhiyun 	ret = pn->hash_table[hash];
183*4882a593Smuzhiyun 	while (ret) {
184*4882a593Smuzhiyun 		if (cmp_2_addr(&ret->pppoe_pa, &po->pppoe_pa) &&
185*4882a593Smuzhiyun 		    ret->pppoe_ifindex == po->pppoe_ifindex)
186*4882a593Smuzhiyun 			return -EALREADY;
187*4882a593Smuzhiyun 
188*4882a593Smuzhiyun 		ret = ret->next;
189*4882a593Smuzhiyun 	}
190*4882a593Smuzhiyun 
191*4882a593Smuzhiyun 	po->next = pn->hash_table[hash];
192*4882a593Smuzhiyun 	pn->hash_table[hash] = po;
193*4882a593Smuzhiyun 
194*4882a593Smuzhiyun 	return 0;
195*4882a593Smuzhiyun }
196*4882a593Smuzhiyun 
__delete_item(struct pppoe_net * pn,__be16 sid,char * addr,int ifindex)197*4882a593Smuzhiyun static void __delete_item(struct pppoe_net *pn, __be16 sid,
198*4882a593Smuzhiyun 					char *addr, int ifindex)
199*4882a593Smuzhiyun {
200*4882a593Smuzhiyun 	int hash = hash_item(sid, addr);
201*4882a593Smuzhiyun 	struct pppox_sock *ret, **src;
202*4882a593Smuzhiyun 
203*4882a593Smuzhiyun 	ret = pn->hash_table[hash];
204*4882a593Smuzhiyun 	src = &pn->hash_table[hash];
205*4882a593Smuzhiyun 
206*4882a593Smuzhiyun 	while (ret) {
207*4882a593Smuzhiyun 		if (cmp_addr(&ret->pppoe_pa, sid, addr) &&
208*4882a593Smuzhiyun 		    ret->pppoe_ifindex == ifindex) {
209*4882a593Smuzhiyun 			*src = ret->next;
210*4882a593Smuzhiyun 			break;
211*4882a593Smuzhiyun 		}
212*4882a593Smuzhiyun 
213*4882a593Smuzhiyun 		src = &ret->next;
214*4882a593Smuzhiyun 		ret = ret->next;
215*4882a593Smuzhiyun 	}
216*4882a593Smuzhiyun }
217*4882a593Smuzhiyun 
218*4882a593Smuzhiyun /**********************************************************************
219*4882a593Smuzhiyun  *
220*4882a593Smuzhiyun  *  Set/get/delete/rehash items
221*4882a593Smuzhiyun  *
222*4882a593Smuzhiyun  **********************************************************************/
get_item(struct pppoe_net * pn,__be16 sid,unsigned char * addr,int ifindex)223*4882a593Smuzhiyun static inline struct pppox_sock *get_item(struct pppoe_net *pn, __be16 sid,
224*4882a593Smuzhiyun 					unsigned char *addr, int ifindex)
225*4882a593Smuzhiyun {
226*4882a593Smuzhiyun 	struct pppox_sock *po;
227*4882a593Smuzhiyun 
228*4882a593Smuzhiyun 	read_lock_bh(&pn->hash_lock);
229*4882a593Smuzhiyun 	po = __get_item(pn, sid, addr, ifindex);
230*4882a593Smuzhiyun 	if (po)
231*4882a593Smuzhiyun 		sock_hold(sk_pppox(po));
232*4882a593Smuzhiyun 	read_unlock_bh(&pn->hash_lock);
233*4882a593Smuzhiyun 
234*4882a593Smuzhiyun 	return po;
235*4882a593Smuzhiyun }
236*4882a593Smuzhiyun 
get_item_by_addr(struct net * net,struct sockaddr_pppox * sp)237*4882a593Smuzhiyun static inline struct pppox_sock *get_item_by_addr(struct net *net,
238*4882a593Smuzhiyun 						struct sockaddr_pppox *sp)
239*4882a593Smuzhiyun {
240*4882a593Smuzhiyun 	struct net_device *dev;
241*4882a593Smuzhiyun 	struct pppoe_net *pn;
242*4882a593Smuzhiyun 	struct pppox_sock *pppox_sock = NULL;
243*4882a593Smuzhiyun 
244*4882a593Smuzhiyun 	int ifindex;
245*4882a593Smuzhiyun 
246*4882a593Smuzhiyun 	rcu_read_lock();
247*4882a593Smuzhiyun 	dev = dev_get_by_name_rcu(net, sp->sa_addr.pppoe.dev);
248*4882a593Smuzhiyun 	if (dev) {
249*4882a593Smuzhiyun 		ifindex = dev->ifindex;
250*4882a593Smuzhiyun 		pn = pppoe_pernet(net);
251*4882a593Smuzhiyun 		pppox_sock = get_item(pn, sp->sa_addr.pppoe.sid,
252*4882a593Smuzhiyun 				sp->sa_addr.pppoe.remote, ifindex);
253*4882a593Smuzhiyun 	}
254*4882a593Smuzhiyun 	rcu_read_unlock();
255*4882a593Smuzhiyun 	return pppox_sock;
256*4882a593Smuzhiyun }
257*4882a593Smuzhiyun 
delete_item(struct pppoe_net * pn,__be16 sid,char * addr,int ifindex)258*4882a593Smuzhiyun static inline void delete_item(struct pppoe_net *pn, __be16 sid,
259*4882a593Smuzhiyun 					char *addr, int ifindex)
260*4882a593Smuzhiyun {
261*4882a593Smuzhiyun 	write_lock_bh(&pn->hash_lock);
262*4882a593Smuzhiyun 	__delete_item(pn, sid, addr, ifindex);
263*4882a593Smuzhiyun 	write_unlock_bh(&pn->hash_lock);
264*4882a593Smuzhiyun }
265*4882a593Smuzhiyun 
266*4882a593Smuzhiyun /***************************************************************************
267*4882a593Smuzhiyun  *
268*4882a593Smuzhiyun  *  Handler for device events.
269*4882a593Smuzhiyun  *  Certain device events require that sockets be unconnected.
270*4882a593Smuzhiyun  *
271*4882a593Smuzhiyun  **************************************************************************/
272*4882a593Smuzhiyun 
pppoe_flush_dev(struct net_device * dev)273*4882a593Smuzhiyun static void pppoe_flush_dev(struct net_device *dev)
274*4882a593Smuzhiyun {
275*4882a593Smuzhiyun 	struct pppoe_net *pn;
276*4882a593Smuzhiyun 	int i;
277*4882a593Smuzhiyun 
278*4882a593Smuzhiyun 	pn = pppoe_pernet(dev_net(dev));
279*4882a593Smuzhiyun 	write_lock_bh(&pn->hash_lock);
280*4882a593Smuzhiyun 	for (i = 0; i < PPPOE_HASH_SIZE; i++) {
281*4882a593Smuzhiyun 		struct pppox_sock *po = pn->hash_table[i];
282*4882a593Smuzhiyun 		struct sock *sk;
283*4882a593Smuzhiyun 
284*4882a593Smuzhiyun 		while (po) {
285*4882a593Smuzhiyun 			while (po && po->pppoe_dev != dev) {
286*4882a593Smuzhiyun 				po = po->next;
287*4882a593Smuzhiyun 			}
288*4882a593Smuzhiyun 
289*4882a593Smuzhiyun 			if (!po)
290*4882a593Smuzhiyun 				break;
291*4882a593Smuzhiyun 
292*4882a593Smuzhiyun 			sk = sk_pppox(po);
293*4882a593Smuzhiyun 
294*4882a593Smuzhiyun 			/* We always grab the socket lock, followed by the
295*4882a593Smuzhiyun 			 * hash_lock, in that order.  Since we should hold the
296*4882a593Smuzhiyun 			 * sock lock while doing any unbinding, we need to
297*4882a593Smuzhiyun 			 * release the lock we're holding.  Hold a reference to
298*4882a593Smuzhiyun 			 * the sock so it doesn't disappear as we're jumping
299*4882a593Smuzhiyun 			 * between locks.
300*4882a593Smuzhiyun 			 */
301*4882a593Smuzhiyun 
302*4882a593Smuzhiyun 			sock_hold(sk);
303*4882a593Smuzhiyun 			write_unlock_bh(&pn->hash_lock);
304*4882a593Smuzhiyun 			lock_sock(sk);
305*4882a593Smuzhiyun 
306*4882a593Smuzhiyun 			if (po->pppoe_dev == dev &&
307*4882a593Smuzhiyun 			    sk->sk_state & (PPPOX_CONNECTED | PPPOX_BOUND)) {
308*4882a593Smuzhiyun 				pppox_unbind_sock(sk);
309*4882a593Smuzhiyun 				sk->sk_state_change(sk);
310*4882a593Smuzhiyun 				po->pppoe_dev = NULL;
311*4882a593Smuzhiyun 				dev_put(dev);
312*4882a593Smuzhiyun 			}
313*4882a593Smuzhiyun 
314*4882a593Smuzhiyun 			release_sock(sk);
315*4882a593Smuzhiyun 			sock_put(sk);
316*4882a593Smuzhiyun 
317*4882a593Smuzhiyun 			/* Restart the process from the start of the current
318*4882a593Smuzhiyun 			 * hash chain. We dropped locks so the world may have
319*4882a593Smuzhiyun 			 * change from underneath us.
320*4882a593Smuzhiyun 			 */
321*4882a593Smuzhiyun 
322*4882a593Smuzhiyun 			BUG_ON(pppoe_pernet(dev_net(dev)) == NULL);
323*4882a593Smuzhiyun 			write_lock_bh(&pn->hash_lock);
324*4882a593Smuzhiyun 			po = pn->hash_table[i];
325*4882a593Smuzhiyun 		}
326*4882a593Smuzhiyun 	}
327*4882a593Smuzhiyun 	write_unlock_bh(&pn->hash_lock);
328*4882a593Smuzhiyun }
329*4882a593Smuzhiyun 
pppoe_device_event(struct notifier_block * this,unsigned long event,void * ptr)330*4882a593Smuzhiyun static int pppoe_device_event(struct notifier_block *this,
331*4882a593Smuzhiyun 			      unsigned long event, void *ptr)
332*4882a593Smuzhiyun {
333*4882a593Smuzhiyun 	struct net_device *dev = netdev_notifier_info_to_dev(ptr);
334*4882a593Smuzhiyun 
335*4882a593Smuzhiyun 	/* Only look at sockets that are using this specific device. */
336*4882a593Smuzhiyun 	switch (event) {
337*4882a593Smuzhiyun 	case NETDEV_CHANGEADDR:
338*4882a593Smuzhiyun 	case NETDEV_CHANGEMTU:
339*4882a593Smuzhiyun 		/* A change in mtu or address is a bad thing, requiring
340*4882a593Smuzhiyun 		 * LCP re-negotiation.
341*4882a593Smuzhiyun 		 */
342*4882a593Smuzhiyun 
343*4882a593Smuzhiyun 	case NETDEV_GOING_DOWN:
344*4882a593Smuzhiyun 	case NETDEV_DOWN:
345*4882a593Smuzhiyun 		/* Find every socket on this device and kill it. */
346*4882a593Smuzhiyun 		pppoe_flush_dev(dev);
347*4882a593Smuzhiyun 		break;
348*4882a593Smuzhiyun 
349*4882a593Smuzhiyun 	default:
350*4882a593Smuzhiyun 		break;
351*4882a593Smuzhiyun 	}
352*4882a593Smuzhiyun 
353*4882a593Smuzhiyun 	return NOTIFY_DONE;
354*4882a593Smuzhiyun }
355*4882a593Smuzhiyun 
356*4882a593Smuzhiyun static struct notifier_block pppoe_notifier = {
357*4882a593Smuzhiyun 	.notifier_call = pppoe_device_event,
358*4882a593Smuzhiyun };
359*4882a593Smuzhiyun 
360*4882a593Smuzhiyun /************************************************************************
361*4882a593Smuzhiyun  *
362*4882a593Smuzhiyun  * Do the real work of receiving a PPPoE Session frame.
363*4882a593Smuzhiyun  *
364*4882a593Smuzhiyun  ***********************************************************************/
pppoe_rcv_core(struct sock * sk,struct sk_buff * skb)365*4882a593Smuzhiyun static int pppoe_rcv_core(struct sock *sk, struct sk_buff *skb)
366*4882a593Smuzhiyun {
367*4882a593Smuzhiyun 	struct pppox_sock *po = pppox_sk(sk);
368*4882a593Smuzhiyun 	struct pppox_sock *relay_po;
369*4882a593Smuzhiyun 
370*4882a593Smuzhiyun 	/* Backlog receive. Semantics of backlog rcv preclude any code from
371*4882a593Smuzhiyun 	 * executing in lock_sock()/release_sock() bounds; meaning sk->sk_state
372*4882a593Smuzhiyun 	 * can't change.
373*4882a593Smuzhiyun 	 */
374*4882a593Smuzhiyun 
375*4882a593Smuzhiyun 	if (skb->pkt_type == PACKET_OTHERHOST)
376*4882a593Smuzhiyun 		goto abort_kfree;
377*4882a593Smuzhiyun 
378*4882a593Smuzhiyun 	if (sk->sk_state & PPPOX_BOUND) {
379*4882a593Smuzhiyun 		ppp_input(&po->chan, skb);
380*4882a593Smuzhiyun 	} else if (sk->sk_state & PPPOX_RELAY) {
381*4882a593Smuzhiyun 		relay_po = get_item_by_addr(sock_net(sk),
382*4882a593Smuzhiyun 					    &po->pppoe_relay);
383*4882a593Smuzhiyun 		if (relay_po == NULL)
384*4882a593Smuzhiyun 			goto abort_kfree;
385*4882a593Smuzhiyun 
386*4882a593Smuzhiyun 		if ((sk_pppox(relay_po)->sk_state & PPPOX_CONNECTED) == 0)
387*4882a593Smuzhiyun 			goto abort_put;
388*4882a593Smuzhiyun 
389*4882a593Smuzhiyun 		if (!__pppoe_xmit(sk_pppox(relay_po), skb))
390*4882a593Smuzhiyun 			goto abort_put;
391*4882a593Smuzhiyun 
392*4882a593Smuzhiyun 		sock_put(sk_pppox(relay_po));
393*4882a593Smuzhiyun 	} else {
394*4882a593Smuzhiyun 		if (sock_queue_rcv_skb(sk, skb))
395*4882a593Smuzhiyun 			goto abort_kfree;
396*4882a593Smuzhiyun 	}
397*4882a593Smuzhiyun 
398*4882a593Smuzhiyun 	return NET_RX_SUCCESS;
399*4882a593Smuzhiyun 
400*4882a593Smuzhiyun abort_put:
401*4882a593Smuzhiyun 	sock_put(sk_pppox(relay_po));
402*4882a593Smuzhiyun 
403*4882a593Smuzhiyun abort_kfree:
404*4882a593Smuzhiyun 	kfree_skb(skb);
405*4882a593Smuzhiyun 	return NET_RX_DROP;
406*4882a593Smuzhiyun }
407*4882a593Smuzhiyun 
408*4882a593Smuzhiyun /************************************************************************
409*4882a593Smuzhiyun  *
410*4882a593Smuzhiyun  * Receive wrapper called in BH context.
411*4882a593Smuzhiyun  *
412*4882a593Smuzhiyun  ***********************************************************************/
pppoe_rcv(struct sk_buff * skb,struct net_device * dev,struct packet_type * pt,struct net_device * orig_dev)413*4882a593Smuzhiyun static int pppoe_rcv(struct sk_buff *skb, struct net_device *dev,
414*4882a593Smuzhiyun 		     struct packet_type *pt, struct net_device *orig_dev)
415*4882a593Smuzhiyun {
416*4882a593Smuzhiyun 	struct pppoe_hdr *ph;
417*4882a593Smuzhiyun 	struct pppox_sock *po;
418*4882a593Smuzhiyun 	struct pppoe_net *pn;
419*4882a593Smuzhiyun 	int len;
420*4882a593Smuzhiyun 
421*4882a593Smuzhiyun 	skb = skb_share_check(skb, GFP_ATOMIC);
422*4882a593Smuzhiyun 	if (!skb)
423*4882a593Smuzhiyun 		goto out;
424*4882a593Smuzhiyun 
425*4882a593Smuzhiyun 	if (skb_mac_header_len(skb) < ETH_HLEN)
426*4882a593Smuzhiyun 		goto drop;
427*4882a593Smuzhiyun 
428*4882a593Smuzhiyun 	if (!pskb_may_pull(skb, sizeof(struct pppoe_hdr)))
429*4882a593Smuzhiyun 		goto drop;
430*4882a593Smuzhiyun 
431*4882a593Smuzhiyun 	ph = pppoe_hdr(skb);
432*4882a593Smuzhiyun 	len = ntohs(ph->length);
433*4882a593Smuzhiyun 
434*4882a593Smuzhiyun 	skb_pull_rcsum(skb, sizeof(*ph));
435*4882a593Smuzhiyun 	if (skb->len < len)
436*4882a593Smuzhiyun 		goto drop;
437*4882a593Smuzhiyun 
438*4882a593Smuzhiyun 	if (pskb_trim_rcsum(skb, len))
439*4882a593Smuzhiyun 		goto drop;
440*4882a593Smuzhiyun 
441*4882a593Smuzhiyun 	ph = pppoe_hdr(skb);
442*4882a593Smuzhiyun 	pn = pppoe_pernet(dev_net(dev));
443*4882a593Smuzhiyun 
444*4882a593Smuzhiyun 	/* Note that get_item does a sock_hold(), so sk_pppox(po)
445*4882a593Smuzhiyun 	 * is known to be safe.
446*4882a593Smuzhiyun 	 */
447*4882a593Smuzhiyun 	po = get_item(pn, ph->sid, eth_hdr(skb)->h_source, dev->ifindex);
448*4882a593Smuzhiyun 	if (!po)
449*4882a593Smuzhiyun 		goto drop;
450*4882a593Smuzhiyun 
451*4882a593Smuzhiyun 	return sk_receive_skb(sk_pppox(po), skb, 0);
452*4882a593Smuzhiyun 
453*4882a593Smuzhiyun drop:
454*4882a593Smuzhiyun 	kfree_skb(skb);
455*4882a593Smuzhiyun out:
456*4882a593Smuzhiyun 	return NET_RX_DROP;
457*4882a593Smuzhiyun }
458*4882a593Smuzhiyun 
pppoe_unbind_sock_work(struct work_struct * work)459*4882a593Smuzhiyun static void pppoe_unbind_sock_work(struct work_struct *work)
460*4882a593Smuzhiyun {
461*4882a593Smuzhiyun 	struct pppox_sock *po = container_of(work, struct pppox_sock,
462*4882a593Smuzhiyun 					     proto.pppoe.padt_work);
463*4882a593Smuzhiyun 	struct sock *sk = sk_pppox(po);
464*4882a593Smuzhiyun 
465*4882a593Smuzhiyun 	lock_sock(sk);
466*4882a593Smuzhiyun 	if (po->pppoe_dev) {
467*4882a593Smuzhiyun 		dev_put(po->pppoe_dev);
468*4882a593Smuzhiyun 		po->pppoe_dev = NULL;
469*4882a593Smuzhiyun 	}
470*4882a593Smuzhiyun 	pppox_unbind_sock(sk);
471*4882a593Smuzhiyun 	release_sock(sk);
472*4882a593Smuzhiyun 	sock_put(sk);
473*4882a593Smuzhiyun }
474*4882a593Smuzhiyun 
475*4882a593Smuzhiyun /************************************************************************
476*4882a593Smuzhiyun  *
477*4882a593Smuzhiyun  * Receive a PPPoE Discovery frame.
478*4882a593Smuzhiyun  * This is solely for detection of PADT frames
479*4882a593Smuzhiyun  *
480*4882a593Smuzhiyun  ***********************************************************************/
pppoe_disc_rcv(struct sk_buff * skb,struct net_device * dev,struct packet_type * pt,struct net_device * orig_dev)481*4882a593Smuzhiyun static int pppoe_disc_rcv(struct sk_buff *skb, struct net_device *dev,
482*4882a593Smuzhiyun 			  struct packet_type *pt, struct net_device *orig_dev)
483*4882a593Smuzhiyun 
484*4882a593Smuzhiyun {
485*4882a593Smuzhiyun 	struct pppoe_hdr *ph;
486*4882a593Smuzhiyun 	struct pppox_sock *po;
487*4882a593Smuzhiyun 	struct pppoe_net *pn;
488*4882a593Smuzhiyun 
489*4882a593Smuzhiyun 	skb = skb_share_check(skb, GFP_ATOMIC);
490*4882a593Smuzhiyun 	if (!skb)
491*4882a593Smuzhiyun 		goto out;
492*4882a593Smuzhiyun 
493*4882a593Smuzhiyun 	if (skb->pkt_type != PACKET_HOST)
494*4882a593Smuzhiyun 		goto abort;
495*4882a593Smuzhiyun 
496*4882a593Smuzhiyun 	if (!pskb_may_pull(skb, sizeof(struct pppoe_hdr)))
497*4882a593Smuzhiyun 		goto abort;
498*4882a593Smuzhiyun 
499*4882a593Smuzhiyun 	ph = pppoe_hdr(skb);
500*4882a593Smuzhiyun 	if (ph->code != PADT_CODE)
501*4882a593Smuzhiyun 		goto abort;
502*4882a593Smuzhiyun 
503*4882a593Smuzhiyun 	pn = pppoe_pernet(dev_net(dev));
504*4882a593Smuzhiyun 	po = get_item(pn, ph->sid, eth_hdr(skb)->h_source, dev->ifindex);
505*4882a593Smuzhiyun 	if (po)
506*4882a593Smuzhiyun 		if (!schedule_work(&po->proto.pppoe.padt_work))
507*4882a593Smuzhiyun 			sock_put(sk_pppox(po));
508*4882a593Smuzhiyun 
509*4882a593Smuzhiyun abort:
510*4882a593Smuzhiyun 	kfree_skb(skb);
511*4882a593Smuzhiyun out:
512*4882a593Smuzhiyun 	return NET_RX_SUCCESS; /* Lies... :-) */
513*4882a593Smuzhiyun }
514*4882a593Smuzhiyun 
515*4882a593Smuzhiyun static struct packet_type pppoes_ptype __read_mostly = {
516*4882a593Smuzhiyun 	.type	= cpu_to_be16(ETH_P_PPP_SES),
517*4882a593Smuzhiyun 	.func	= pppoe_rcv,
518*4882a593Smuzhiyun };
519*4882a593Smuzhiyun 
520*4882a593Smuzhiyun static struct packet_type pppoed_ptype __read_mostly = {
521*4882a593Smuzhiyun 	.type	= cpu_to_be16(ETH_P_PPP_DISC),
522*4882a593Smuzhiyun 	.func	= pppoe_disc_rcv,
523*4882a593Smuzhiyun };
524*4882a593Smuzhiyun 
525*4882a593Smuzhiyun static struct proto pppoe_sk_proto __read_mostly = {
526*4882a593Smuzhiyun 	.name	  = "PPPOE",
527*4882a593Smuzhiyun 	.owner	  = THIS_MODULE,
528*4882a593Smuzhiyun 	.obj_size = sizeof(struct pppox_sock),
529*4882a593Smuzhiyun };
530*4882a593Smuzhiyun 
531*4882a593Smuzhiyun /***********************************************************************
532*4882a593Smuzhiyun  *
533*4882a593Smuzhiyun  * Initialize a new struct sock.
534*4882a593Smuzhiyun  *
535*4882a593Smuzhiyun  **********************************************************************/
pppoe_create(struct net * net,struct socket * sock,int kern)536*4882a593Smuzhiyun static int pppoe_create(struct net *net, struct socket *sock, int kern)
537*4882a593Smuzhiyun {
538*4882a593Smuzhiyun 	struct sock *sk;
539*4882a593Smuzhiyun 
540*4882a593Smuzhiyun 	sk = sk_alloc(net, PF_PPPOX, GFP_KERNEL, &pppoe_sk_proto, kern);
541*4882a593Smuzhiyun 	if (!sk)
542*4882a593Smuzhiyun 		return -ENOMEM;
543*4882a593Smuzhiyun 
544*4882a593Smuzhiyun 	sock_init_data(sock, sk);
545*4882a593Smuzhiyun 
546*4882a593Smuzhiyun 	sock->state	= SS_UNCONNECTED;
547*4882a593Smuzhiyun 	sock->ops	= &pppoe_ops;
548*4882a593Smuzhiyun 
549*4882a593Smuzhiyun 	sk->sk_backlog_rcv	= pppoe_rcv_core;
550*4882a593Smuzhiyun 	sk->sk_state		= PPPOX_NONE;
551*4882a593Smuzhiyun 	sk->sk_type		= SOCK_STREAM;
552*4882a593Smuzhiyun 	sk->sk_family		= PF_PPPOX;
553*4882a593Smuzhiyun 	sk->sk_protocol		= PX_PROTO_OE;
554*4882a593Smuzhiyun 
555*4882a593Smuzhiyun 	INIT_WORK(&pppox_sk(sk)->proto.pppoe.padt_work,
556*4882a593Smuzhiyun 		  pppoe_unbind_sock_work);
557*4882a593Smuzhiyun 
558*4882a593Smuzhiyun 	return 0;
559*4882a593Smuzhiyun }
560*4882a593Smuzhiyun 
pppoe_release(struct socket * sock)561*4882a593Smuzhiyun static int pppoe_release(struct socket *sock)
562*4882a593Smuzhiyun {
563*4882a593Smuzhiyun 	struct sock *sk = sock->sk;
564*4882a593Smuzhiyun 	struct pppox_sock *po;
565*4882a593Smuzhiyun 	struct pppoe_net *pn;
566*4882a593Smuzhiyun 	struct net *net = NULL;
567*4882a593Smuzhiyun 
568*4882a593Smuzhiyun 	if (!sk)
569*4882a593Smuzhiyun 		return 0;
570*4882a593Smuzhiyun 
571*4882a593Smuzhiyun 	lock_sock(sk);
572*4882a593Smuzhiyun 	if (sock_flag(sk, SOCK_DEAD)) {
573*4882a593Smuzhiyun 		release_sock(sk);
574*4882a593Smuzhiyun 		return -EBADF;
575*4882a593Smuzhiyun 	}
576*4882a593Smuzhiyun 
577*4882a593Smuzhiyun 	po = pppox_sk(sk);
578*4882a593Smuzhiyun 
579*4882a593Smuzhiyun 	if (po->pppoe_dev) {
580*4882a593Smuzhiyun 		dev_put(po->pppoe_dev);
581*4882a593Smuzhiyun 		po->pppoe_dev = NULL;
582*4882a593Smuzhiyun 	}
583*4882a593Smuzhiyun 
584*4882a593Smuzhiyun 	pppox_unbind_sock(sk);
585*4882a593Smuzhiyun 
586*4882a593Smuzhiyun 	/* Signal the death of the socket. */
587*4882a593Smuzhiyun 	sk->sk_state = PPPOX_DEAD;
588*4882a593Smuzhiyun 
589*4882a593Smuzhiyun 	net = sock_net(sk);
590*4882a593Smuzhiyun 	pn = pppoe_pernet(net);
591*4882a593Smuzhiyun 
592*4882a593Smuzhiyun 	/*
593*4882a593Smuzhiyun 	 * protect "po" from concurrent updates
594*4882a593Smuzhiyun 	 * on pppoe_flush_dev
595*4882a593Smuzhiyun 	 */
596*4882a593Smuzhiyun 	delete_item(pn, po->pppoe_pa.sid, po->pppoe_pa.remote,
597*4882a593Smuzhiyun 		    po->pppoe_ifindex);
598*4882a593Smuzhiyun 
599*4882a593Smuzhiyun 	sock_orphan(sk);
600*4882a593Smuzhiyun 	sock->sk = NULL;
601*4882a593Smuzhiyun 
602*4882a593Smuzhiyun 	skb_queue_purge(&sk->sk_receive_queue);
603*4882a593Smuzhiyun 	release_sock(sk);
604*4882a593Smuzhiyun 	sock_put(sk);
605*4882a593Smuzhiyun 
606*4882a593Smuzhiyun 	return 0;
607*4882a593Smuzhiyun }
608*4882a593Smuzhiyun 
pppoe_connect(struct socket * sock,struct sockaddr * uservaddr,int sockaddr_len,int flags)609*4882a593Smuzhiyun static int pppoe_connect(struct socket *sock, struct sockaddr *uservaddr,
610*4882a593Smuzhiyun 		  int sockaddr_len, int flags)
611*4882a593Smuzhiyun {
612*4882a593Smuzhiyun 	struct sock *sk = sock->sk;
613*4882a593Smuzhiyun 	struct sockaddr_pppox *sp = (struct sockaddr_pppox *)uservaddr;
614*4882a593Smuzhiyun 	struct pppox_sock *po = pppox_sk(sk);
615*4882a593Smuzhiyun 	struct net_device *dev = NULL;
616*4882a593Smuzhiyun 	struct pppoe_net *pn;
617*4882a593Smuzhiyun 	struct net *net = NULL;
618*4882a593Smuzhiyun 	int error;
619*4882a593Smuzhiyun 
620*4882a593Smuzhiyun 	lock_sock(sk);
621*4882a593Smuzhiyun 
622*4882a593Smuzhiyun 	error = -EINVAL;
623*4882a593Smuzhiyun 
624*4882a593Smuzhiyun 	if (sockaddr_len != sizeof(struct sockaddr_pppox))
625*4882a593Smuzhiyun 		goto end;
626*4882a593Smuzhiyun 
627*4882a593Smuzhiyun 	if (sp->sa_protocol != PX_PROTO_OE)
628*4882a593Smuzhiyun 		goto end;
629*4882a593Smuzhiyun 
630*4882a593Smuzhiyun 	/* Check for already bound sockets */
631*4882a593Smuzhiyun 	error = -EBUSY;
632*4882a593Smuzhiyun 	if ((sk->sk_state & PPPOX_CONNECTED) &&
633*4882a593Smuzhiyun 	     stage_session(sp->sa_addr.pppoe.sid))
634*4882a593Smuzhiyun 		goto end;
635*4882a593Smuzhiyun 
636*4882a593Smuzhiyun 	/* Check for already disconnected sockets, on attempts to disconnect */
637*4882a593Smuzhiyun 	error = -EALREADY;
638*4882a593Smuzhiyun 	if ((sk->sk_state & PPPOX_DEAD) &&
639*4882a593Smuzhiyun 	     !stage_session(sp->sa_addr.pppoe.sid))
640*4882a593Smuzhiyun 		goto end;
641*4882a593Smuzhiyun 
642*4882a593Smuzhiyun 	error = 0;
643*4882a593Smuzhiyun 
644*4882a593Smuzhiyun 	/* Delete the old binding */
645*4882a593Smuzhiyun 	if (stage_session(po->pppoe_pa.sid)) {
646*4882a593Smuzhiyun 		pppox_unbind_sock(sk);
647*4882a593Smuzhiyun 		pn = pppoe_pernet(sock_net(sk));
648*4882a593Smuzhiyun 		delete_item(pn, po->pppoe_pa.sid,
649*4882a593Smuzhiyun 			    po->pppoe_pa.remote, po->pppoe_ifindex);
650*4882a593Smuzhiyun 		if (po->pppoe_dev) {
651*4882a593Smuzhiyun 			dev_put(po->pppoe_dev);
652*4882a593Smuzhiyun 			po->pppoe_dev = NULL;
653*4882a593Smuzhiyun 		}
654*4882a593Smuzhiyun 
655*4882a593Smuzhiyun 		po->pppoe_ifindex = 0;
656*4882a593Smuzhiyun 		memset(&po->pppoe_pa, 0, sizeof(po->pppoe_pa));
657*4882a593Smuzhiyun 		memset(&po->pppoe_relay, 0, sizeof(po->pppoe_relay));
658*4882a593Smuzhiyun 		memset(&po->chan, 0, sizeof(po->chan));
659*4882a593Smuzhiyun 		po->next = NULL;
660*4882a593Smuzhiyun 		po->num = 0;
661*4882a593Smuzhiyun 
662*4882a593Smuzhiyun 		sk->sk_state = PPPOX_NONE;
663*4882a593Smuzhiyun 	}
664*4882a593Smuzhiyun 
665*4882a593Smuzhiyun 	/* Re-bind in session stage only */
666*4882a593Smuzhiyun 	if (stage_session(sp->sa_addr.pppoe.sid)) {
667*4882a593Smuzhiyun 		error = -ENODEV;
668*4882a593Smuzhiyun 		net = sock_net(sk);
669*4882a593Smuzhiyun 		dev = dev_get_by_name(net, sp->sa_addr.pppoe.dev);
670*4882a593Smuzhiyun 		if (!dev)
671*4882a593Smuzhiyun 			goto err_put;
672*4882a593Smuzhiyun 
673*4882a593Smuzhiyun 		po->pppoe_dev = dev;
674*4882a593Smuzhiyun 		po->pppoe_ifindex = dev->ifindex;
675*4882a593Smuzhiyun 		pn = pppoe_pernet(net);
676*4882a593Smuzhiyun 		if (!(dev->flags & IFF_UP)) {
677*4882a593Smuzhiyun 			goto err_put;
678*4882a593Smuzhiyun 		}
679*4882a593Smuzhiyun 
680*4882a593Smuzhiyun 		memcpy(&po->pppoe_pa,
681*4882a593Smuzhiyun 		       &sp->sa_addr.pppoe,
682*4882a593Smuzhiyun 		       sizeof(struct pppoe_addr));
683*4882a593Smuzhiyun 
684*4882a593Smuzhiyun 		write_lock_bh(&pn->hash_lock);
685*4882a593Smuzhiyun 		error = __set_item(pn, po);
686*4882a593Smuzhiyun 		write_unlock_bh(&pn->hash_lock);
687*4882a593Smuzhiyun 		if (error < 0)
688*4882a593Smuzhiyun 			goto err_put;
689*4882a593Smuzhiyun 
690*4882a593Smuzhiyun 		po->chan.hdrlen = (sizeof(struct pppoe_hdr) +
691*4882a593Smuzhiyun 				   dev->hard_header_len);
692*4882a593Smuzhiyun 
693*4882a593Smuzhiyun 		po->chan.mtu = dev->mtu - sizeof(struct pppoe_hdr) - 2;
694*4882a593Smuzhiyun 		po->chan.private = sk;
695*4882a593Smuzhiyun 		po->chan.ops = &pppoe_chan_ops;
696*4882a593Smuzhiyun 
697*4882a593Smuzhiyun 		error = ppp_register_net_channel(dev_net(dev), &po->chan);
698*4882a593Smuzhiyun 		if (error) {
699*4882a593Smuzhiyun 			delete_item(pn, po->pppoe_pa.sid,
700*4882a593Smuzhiyun 				    po->pppoe_pa.remote, po->pppoe_ifindex);
701*4882a593Smuzhiyun 			goto err_put;
702*4882a593Smuzhiyun 		}
703*4882a593Smuzhiyun 
704*4882a593Smuzhiyun 		sk->sk_state = PPPOX_CONNECTED;
705*4882a593Smuzhiyun 	}
706*4882a593Smuzhiyun 
707*4882a593Smuzhiyun 	po->num = sp->sa_addr.pppoe.sid;
708*4882a593Smuzhiyun 
709*4882a593Smuzhiyun end:
710*4882a593Smuzhiyun 	release_sock(sk);
711*4882a593Smuzhiyun 	return error;
712*4882a593Smuzhiyun err_put:
713*4882a593Smuzhiyun 	if (po->pppoe_dev) {
714*4882a593Smuzhiyun 		dev_put(po->pppoe_dev);
715*4882a593Smuzhiyun 		po->pppoe_dev = NULL;
716*4882a593Smuzhiyun 	}
717*4882a593Smuzhiyun 	goto end;
718*4882a593Smuzhiyun }
719*4882a593Smuzhiyun 
pppoe_getname(struct socket * sock,struct sockaddr * uaddr,int peer)720*4882a593Smuzhiyun static int pppoe_getname(struct socket *sock, struct sockaddr *uaddr,
721*4882a593Smuzhiyun 		  int peer)
722*4882a593Smuzhiyun {
723*4882a593Smuzhiyun 	int len = sizeof(struct sockaddr_pppox);
724*4882a593Smuzhiyun 	struct sockaddr_pppox sp;
725*4882a593Smuzhiyun 
726*4882a593Smuzhiyun 	sp.sa_family	= AF_PPPOX;
727*4882a593Smuzhiyun 	sp.sa_protocol	= PX_PROTO_OE;
728*4882a593Smuzhiyun 	memcpy(&sp.sa_addr.pppoe, &pppox_sk(sock->sk)->pppoe_pa,
729*4882a593Smuzhiyun 	       sizeof(struct pppoe_addr));
730*4882a593Smuzhiyun 
731*4882a593Smuzhiyun 	memcpy(uaddr, &sp, len);
732*4882a593Smuzhiyun 
733*4882a593Smuzhiyun 	return len;
734*4882a593Smuzhiyun }
735*4882a593Smuzhiyun 
pppoe_ioctl(struct socket * sock,unsigned int cmd,unsigned long arg)736*4882a593Smuzhiyun static int pppoe_ioctl(struct socket *sock, unsigned int cmd,
737*4882a593Smuzhiyun 		unsigned long arg)
738*4882a593Smuzhiyun {
739*4882a593Smuzhiyun 	struct sock *sk = sock->sk;
740*4882a593Smuzhiyun 	struct pppox_sock *po = pppox_sk(sk);
741*4882a593Smuzhiyun 	int val;
742*4882a593Smuzhiyun 	int err;
743*4882a593Smuzhiyun 
744*4882a593Smuzhiyun 	switch (cmd) {
745*4882a593Smuzhiyun 	case PPPIOCGMRU:
746*4882a593Smuzhiyun 		err = -ENXIO;
747*4882a593Smuzhiyun 		if (!(sk->sk_state & PPPOX_CONNECTED))
748*4882a593Smuzhiyun 			break;
749*4882a593Smuzhiyun 
750*4882a593Smuzhiyun 		err = -EFAULT;
751*4882a593Smuzhiyun 		if (put_user(po->pppoe_dev->mtu -
752*4882a593Smuzhiyun 			     sizeof(struct pppoe_hdr) -
753*4882a593Smuzhiyun 			     PPP_HDRLEN,
754*4882a593Smuzhiyun 			     (int __user *)arg))
755*4882a593Smuzhiyun 			break;
756*4882a593Smuzhiyun 		err = 0;
757*4882a593Smuzhiyun 		break;
758*4882a593Smuzhiyun 
759*4882a593Smuzhiyun 	case PPPIOCSMRU:
760*4882a593Smuzhiyun 		err = -ENXIO;
761*4882a593Smuzhiyun 		if (!(sk->sk_state & PPPOX_CONNECTED))
762*4882a593Smuzhiyun 			break;
763*4882a593Smuzhiyun 
764*4882a593Smuzhiyun 		err = -EFAULT;
765*4882a593Smuzhiyun 		if (get_user(val, (int __user *)arg))
766*4882a593Smuzhiyun 			break;
767*4882a593Smuzhiyun 
768*4882a593Smuzhiyun 		if (val < (po->pppoe_dev->mtu
769*4882a593Smuzhiyun 			   - sizeof(struct pppoe_hdr)
770*4882a593Smuzhiyun 			   - PPP_HDRLEN))
771*4882a593Smuzhiyun 			err = 0;
772*4882a593Smuzhiyun 		else
773*4882a593Smuzhiyun 			err = -EINVAL;
774*4882a593Smuzhiyun 		break;
775*4882a593Smuzhiyun 
776*4882a593Smuzhiyun 	case PPPIOCSFLAGS:
777*4882a593Smuzhiyun 		err = -EFAULT;
778*4882a593Smuzhiyun 		if (get_user(val, (int __user *)arg))
779*4882a593Smuzhiyun 			break;
780*4882a593Smuzhiyun 		err = 0;
781*4882a593Smuzhiyun 		break;
782*4882a593Smuzhiyun 
783*4882a593Smuzhiyun 	case PPPOEIOCSFWD:
784*4882a593Smuzhiyun 	{
785*4882a593Smuzhiyun 		struct pppox_sock *relay_po;
786*4882a593Smuzhiyun 
787*4882a593Smuzhiyun 		err = -EBUSY;
788*4882a593Smuzhiyun 		if (sk->sk_state & (PPPOX_BOUND | PPPOX_DEAD))
789*4882a593Smuzhiyun 			break;
790*4882a593Smuzhiyun 
791*4882a593Smuzhiyun 		err = -ENOTCONN;
792*4882a593Smuzhiyun 		if (!(sk->sk_state & PPPOX_CONNECTED))
793*4882a593Smuzhiyun 			break;
794*4882a593Smuzhiyun 
795*4882a593Smuzhiyun 		/* PPPoE address from the user specifies an outbound
796*4882a593Smuzhiyun 		   PPPoE address which frames are forwarded to */
797*4882a593Smuzhiyun 		err = -EFAULT;
798*4882a593Smuzhiyun 		if (copy_from_user(&po->pppoe_relay,
799*4882a593Smuzhiyun 				   (void __user *)arg,
800*4882a593Smuzhiyun 				   sizeof(struct sockaddr_pppox)))
801*4882a593Smuzhiyun 			break;
802*4882a593Smuzhiyun 
803*4882a593Smuzhiyun 		err = -EINVAL;
804*4882a593Smuzhiyun 		if (po->pppoe_relay.sa_family != AF_PPPOX ||
805*4882a593Smuzhiyun 		    po->pppoe_relay.sa_protocol != PX_PROTO_OE)
806*4882a593Smuzhiyun 			break;
807*4882a593Smuzhiyun 
808*4882a593Smuzhiyun 		/* Check that the socket referenced by the address
809*4882a593Smuzhiyun 		   actually exists. */
810*4882a593Smuzhiyun 		relay_po = get_item_by_addr(sock_net(sk), &po->pppoe_relay);
811*4882a593Smuzhiyun 		if (!relay_po)
812*4882a593Smuzhiyun 			break;
813*4882a593Smuzhiyun 
814*4882a593Smuzhiyun 		sock_put(sk_pppox(relay_po));
815*4882a593Smuzhiyun 		sk->sk_state |= PPPOX_RELAY;
816*4882a593Smuzhiyun 		err = 0;
817*4882a593Smuzhiyun 		break;
818*4882a593Smuzhiyun 	}
819*4882a593Smuzhiyun 
820*4882a593Smuzhiyun 	case PPPOEIOCDFWD:
821*4882a593Smuzhiyun 		err = -EALREADY;
822*4882a593Smuzhiyun 		if (!(sk->sk_state & PPPOX_RELAY))
823*4882a593Smuzhiyun 			break;
824*4882a593Smuzhiyun 
825*4882a593Smuzhiyun 		sk->sk_state &= ~PPPOX_RELAY;
826*4882a593Smuzhiyun 		err = 0;
827*4882a593Smuzhiyun 		break;
828*4882a593Smuzhiyun 
829*4882a593Smuzhiyun 	default:
830*4882a593Smuzhiyun 		err = -ENOTTY;
831*4882a593Smuzhiyun 	}
832*4882a593Smuzhiyun 
833*4882a593Smuzhiyun 	return err;
834*4882a593Smuzhiyun }
835*4882a593Smuzhiyun 
pppoe_sendmsg(struct socket * sock,struct msghdr * m,size_t total_len)836*4882a593Smuzhiyun static int pppoe_sendmsg(struct socket *sock, struct msghdr *m,
837*4882a593Smuzhiyun 			 size_t total_len)
838*4882a593Smuzhiyun {
839*4882a593Smuzhiyun 	struct sk_buff *skb;
840*4882a593Smuzhiyun 	struct sock *sk = sock->sk;
841*4882a593Smuzhiyun 	struct pppox_sock *po = pppox_sk(sk);
842*4882a593Smuzhiyun 	int error;
843*4882a593Smuzhiyun 	struct pppoe_hdr hdr;
844*4882a593Smuzhiyun 	struct pppoe_hdr *ph;
845*4882a593Smuzhiyun 	struct net_device *dev;
846*4882a593Smuzhiyun 	char *start;
847*4882a593Smuzhiyun 	int hlen;
848*4882a593Smuzhiyun 
849*4882a593Smuzhiyun 	lock_sock(sk);
850*4882a593Smuzhiyun 	if (sock_flag(sk, SOCK_DEAD) || !(sk->sk_state & PPPOX_CONNECTED)) {
851*4882a593Smuzhiyun 		error = -ENOTCONN;
852*4882a593Smuzhiyun 		goto end;
853*4882a593Smuzhiyun 	}
854*4882a593Smuzhiyun 
855*4882a593Smuzhiyun 	hdr.ver = 1;
856*4882a593Smuzhiyun 	hdr.type = 1;
857*4882a593Smuzhiyun 	hdr.code = 0;
858*4882a593Smuzhiyun 	hdr.sid = po->num;
859*4882a593Smuzhiyun 
860*4882a593Smuzhiyun 	dev = po->pppoe_dev;
861*4882a593Smuzhiyun 
862*4882a593Smuzhiyun 	error = -EMSGSIZE;
863*4882a593Smuzhiyun 	if (total_len > (dev->mtu + dev->hard_header_len))
864*4882a593Smuzhiyun 		goto end;
865*4882a593Smuzhiyun 
866*4882a593Smuzhiyun 	hlen = LL_RESERVED_SPACE(dev);
867*4882a593Smuzhiyun 	skb = sock_wmalloc(sk, hlen + sizeof(*ph) + total_len +
868*4882a593Smuzhiyun 			   dev->needed_tailroom, 0, GFP_KERNEL);
869*4882a593Smuzhiyun 	if (!skb) {
870*4882a593Smuzhiyun 		error = -ENOMEM;
871*4882a593Smuzhiyun 		goto end;
872*4882a593Smuzhiyun 	}
873*4882a593Smuzhiyun 
874*4882a593Smuzhiyun 	/* Reserve space for headers. */
875*4882a593Smuzhiyun 	skb_reserve(skb, hlen);
876*4882a593Smuzhiyun 	skb_reset_network_header(skb);
877*4882a593Smuzhiyun 
878*4882a593Smuzhiyun 	skb->dev = dev;
879*4882a593Smuzhiyun 
880*4882a593Smuzhiyun 	skb->priority = sk->sk_priority;
881*4882a593Smuzhiyun 	skb->protocol = cpu_to_be16(ETH_P_PPP_SES);
882*4882a593Smuzhiyun 
883*4882a593Smuzhiyun 	ph = skb_put(skb, total_len + sizeof(struct pppoe_hdr));
884*4882a593Smuzhiyun 	start = (char *)&ph->tag[0];
885*4882a593Smuzhiyun 
886*4882a593Smuzhiyun 	error = memcpy_from_msg(start, m, total_len);
887*4882a593Smuzhiyun 	if (error < 0) {
888*4882a593Smuzhiyun 		kfree_skb(skb);
889*4882a593Smuzhiyun 		goto end;
890*4882a593Smuzhiyun 	}
891*4882a593Smuzhiyun 
892*4882a593Smuzhiyun 	error = total_len;
893*4882a593Smuzhiyun 	dev_hard_header(skb, dev, ETH_P_PPP_SES,
894*4882a593Smuzhiyun 			po->pppoe_pa.remote, NULL, total_len);
895*4882a593Smuzhiyun 
896*4882a593Smuzhiyun 	memcpy(ph, &hdr, sizeof(struct pppoe_hdr));
897*4882a593Smuzhiyun 
898*4882a593Smuzhiyun 	ph->length = htons(total_len);
899*4882a593Smuzhiyun 
900*4882a593Smuzhiyun 	dev_queue_xmit(skb);
901*4882a593Smuzhiyun 
902*4882a593Smuzhiyun end:
903*4882a593Smuzhiyun 	release_sock(sk);
904*4882a593Smuzhiyun 	return error;
905*4882a593Smuzhiyun }
906*4882a593Smuzhiyun 
907*4882a593Smuzhiyun /************************************************************************
908*4882a593Smuzhiyun  *
909*4882a593Smuzhiyun  * xmit function for internal use.
910*4882a593Smuzhiyun  *
911*4882a593Smuzhiyun  ***********************************************************************/
__pppoe_xmit(struct sock * sk,struct sk_buff * skb)912*4882a593Smuzhiyun static int __pppoe_xmit(struct sock *sk, struct sk_buff *skb)
913*4882a593Smuzhiyun {
914*4882a593Smuzhiyun 	struct pppox_sock *po = pppox_sk(sk);
915*4882a593Smuzhiyun 	struct net_device *dev = po->pppoe_dev;
916*4882a593Smuzhiyun 	struct pppoe_hdr *ph;
917*4882a593Smuzhiyun 	int data_len = skb->len;
918*4882a593Smuzhiyun 
919*4882a593Smuzhiyun 	/* The higher-level PPP code (ppp_unregister_channel()) ensures the PPP
920*4882a593Smuzhiyun 	 * xmit operations conclude prior to an unregistration call.  Thus
921*4882a593Smuzhiyun 	 * sk->sk_state cannot change, so we don't need to do lock_sock().
922*4882a593Smuzhiyun 	 * But, we also can't do a lock_sock since that introduces a potential
923*4882a593Smuzhiyun 	 * deadlock as we'd reverse the lock ordering used when calling
924*4882a593Smuzhiyun 	 * ppp_unregister_channel().
925*4882a593Smuzhiyun 	 */
926*4882a593Smuzhiyun 
927*4882a593Smuzhiyun 	if (sock_flag(sk, SOCK_DEAD) || !(sk->sk_state & PPPOX_CONNECTED))
928*4882a593Smuzhiyun 		goto abort;
929*4882a593Smuzhiyun 
930*4882a593Smuzhiyun 	if (!dev)
931*4882a593Smuzhiyun 		goto abort;
932*4882a593Smuzhiyun 
933*4882a593Smuzhiyun 	/* Copy the data if there is no space for the header or if it's
934*4882a593Smuzhiyun 	 * read-only.
935*4882a593Smuzhiyun 	 */
936*4882a593Smuzhiyun 	if (skb_cow_head(skb, LL_RESERVED_SPACE(dev) + sizeof(*ph)))
937*4882a593Smuzhiyun 		goto abort;
938*4882a593Smuzhiyun 
939*4882a593Smuzhiyun 	__skb_push(skb, sizeof(*ph));
940*4882a593Smuzhiyun 	skb_reset_network_header(skb);
941*4882a593Smuzhiyun 
942*4882a593Smuzhiyun 	ph = pppoe_hdr(skb);
943*4882a593Smuzhiyun 	ph->ver	= 1;
944*4882a593Smuzhiyun 	ph->type = 1;
945*4882a593Smuzhiyun 	ph->code = 0;
946*4882a593Smuzhiyun 	ph->sid	= po->num;
947*4882a593Smuzhiyun 	ph->length = htons(data_len);
948*4882a593Smuzhiyun 
949*4882a593Smuzhiyun 	skb->protocol = cpu_to_be16(ETH_P_PPP_SES);
950*4882a593Smuzhiyun 	skb->dev = dev;
951*4882a593Smuzhiyun 
952*4882a593Smuzhiyun 	dev_hard_header(skb, dev, ETH_P_PPP_SES,
953*4882a593Smuzhiyun 			po->pppoe_pa.remote, NULL, data_len);
954*4882a593Smuzhiyun 
955*4882a593Smuzhiyun 	dev_queue_xmit(skb);
956*4882a593Smuzhiyun 	return 1;
957*4882a593Smuzhiyun 
958*4882a593Smuzhiyun abort:
959*4882a593Smuzhiyun 	kfree_skb(skb);
960*4882a593Smuzhiyun 	return 1;
961*4882a593Smuzhiyun }
962*4882a593Smuzhiyun 
963*4882a593Smuzhiyun /************************************************************************
964*4882a593Smuzhiyun  *
965*4882a593Smuzhiyun  * xmit function called by generic PPP driver
966*4882a593Smuzhiyun  * sends PPP frame over PPPoE socket
967*4882a593Smuzhiyun  *
968*4882a593Smuzhiyun  ***********************************************************************/
pppoe_xmit(struct ppp_channel * chan,struct sk_buff * skb)969*4882a593Smuzhiyun static int pppoe_xmit(struct ppp_channel *chan, struct sk_buff *skb)
970*4882a593Smuzhiyun {
971*4882a593Smuzhiyun 	struct sock *sk = (struct sock *)chan->private;
972*4882a593Smuzhiyun 	return __pppoe_xmit(sk, skb);
973*4882a593Smuzhiyun }
974*4882a593Smuzhiyun 
975*4882a593Smuzhiyun static const struct ppp_channel_ops pppoe_chan_ops = {
976*4882a593Smuzhiyun 	.start_xmit = pppoe_xmit,
977*4882a593Smuzhiyun };
978*4882a593Smuzhiyun 
pppoe_recvmsg(struct socket * sock,struct msghdr * m,size_t total_len,int flags)979*4882a593Smuzhiyun static int pppoe_recvmsg(struct socket *sock, struct msghdr *m,
980*4882a593Smuzhiyun 			 size_t total_len, int flags)
981*4882a593Smuzhiyun {
982*4882a593Smuzhiyun 	struct sock *sk = sock->sk;
983*4882a593Smuzhiyun 	struct sk_buff *skb;
984*4882a593Smuzhiyun 	int error = 0;
985*4882a593Smuzhiyun 
986*4882a593Smuzhiyun 	if (sk->sk_state & PPPOX_BOUND) {
987*4882a593Smuzhiyun 		error = -EIO;
988*4882a593Smuzhiyun 		goto end;
989*4882a593Smuzhiyun 	}
990*4882a593Smuzhiyun 
991*4882a593Smuzhiyun 	skb = skb_recv_datagram(sk, flags & ~MSG_DONTWAIT,
992*4882a593Smuzhiyun 				flags & MSG_DONTWAIT, &error);
993*4882a593Smuzhiyun 	if (error < 0)
994*4882a593Smuzhiyun 		goto end;
995*4882a593Smuzhiyun 
996*4882a593Smuzhiyun 	if (skb) {
997*4882a593Smuzhiyun 		total_len = min_t(size_t, total_len, skb->len);
998*4882a593Smuzhiyun 		error = skb_copy_datagram_msg(skb, 0, m, total_len);
999*4882a593Smuzhiyun 		if (error == 0) {
1000*4882a593Smuzhiyun 			consume_skb(skb);
1001*4882a593Smuzhiyun 			return total_len;
1002*4882a593Smuzhiyun 		}
1003*4882a593Smuzhiyun 	}
1004*4882a593Smuzhiyun 
1005*4882a593Smuzhiyun 	kfree_skb(skb);
1006*4882a593Smuzhiyun end:
1007*4882a593Smuzhiyun 	return error;
1008*4882a593Smuzhiyun }
1009*4882a593Smuzhiyun 
1010*4882a593Smuzhiyun #ifdef CONFIG_PROC_FS
pppoe_seq_show(struct seq_file * seq,void * v)1011*4882a593Smuzhiyun static int pppoe_seq_show(struct seq_file *seq, void *v)
1012*4882a593Smuzhiyun {
1013*4882a593Smuzhiyun 	struct pppox_sock *po;
1014*4882a593Smuzhiyun 	char *dev_name;
1015*4882a593Smuzhiyun 
1016*4882a593Smuzhiyun 	if (v == SEQ_START_TOKEN) {
1017*4882a593Smuzhiyun 		seq_puts(seq, "Id       Address              Device\n");
1018*4882a593Smuzhiyun 		goto out;
1019*4882a593Smuzhiyun 	}
1020*4882a593Smuzhiyun 
1021*4882a593Smuzhiyun 	po = v;
1022*4882a593Smuzhiyun 	dev_name = po->pppoe_pa.dev;
1023*4882a593Smuzhiyun 
1024*4882a593Smuzhiyun 	seq_printf(seq, "%08X %pM %8s\n",
1025*4882a593Smuzhiyun 		po->pppoe_pa.sid, po->pppoe_pa.remote, dev_name);
1026*4882a593Smuzhiyun out:
1027*4882a593Smuzhiyun 	return 0;
1028*4882a593Smuzhiyun }
1029*4882a593Smuzhiyun 
pppoe_get_idx(struct pppoe_net * pn,loff_t pos)1030*4882a593Smuzhiyun static inline struct pppox_sock *pppoe_get_idx(struct pppoe_net *pn, loff_t pos)
1031*4882a593Smuzhiyun {
1032*4882a593Smuzhiyun 	struct pppox_sock *po;
1033*4882a593Smuzhiyun 	int i;
1034*4882a593Smuzhiyun 
1035*4882a593Smuzhiyun 	for (i = 0; i < PPPOE_HASH_SIZE; i++) {
1036*4882a593Smuzhiyun 		po = pn->hash_table[i];
1037*4882a593Smuzhiyun 		while (po) {
1038*4882a593Smuzhiyun 			if (!pos--)
1039*4882a593Smuzhiyun 				goto out;
1040*4882a593Smuzhiyun 			po = po->next;
1041*4882a593Smuzhiyun 		}
1042*4882a593Smuzhiyun 	}
1043*4882a593Smuzhiyun 
1044*4882a593Smuzhiyun out:
1045*4882a593Smuzhiyun 	return po;
1046*4882a593Smuzhiyun }
1047*4882a593Smuzhiyun 
pppoe_seq_start(struct seq_file * seq,loff_t * pos)1048*4882a593Smuzhiyun static void *pppoe_seq_start(struct seq_file *seq, loff_t *pos)
1049*4882a593Smuzhiyun 	__acquires(pn->hash_lock)
1050*4882a593Smuzhiyun {
1051*4882a593Smuzhiyun 	struct pppoe_net *pn = pppoe_pernet(seq_file_net(seq));
1052*4882a593Smuzhiyun 	loff_t l = *pos;
1053*4882a593Smuzhiyun 
1054*4882a593Smuzhiyun 	read_lock_bh(&pn->hash_lock);
1055*4882a593Smuzhiyun 	return l ? pppoe_get_idx(pn, --l) : SEQ_START_TOKEN;
1056*4882a593Smuzhiyun }
1057*4882a593Smuzhiyun 
pppoe_seq_next(struct seq_file * seq,void * v,loff_t * pos)1058*4882a593Smuzhiyun static void *pppoe_seq_next(struct seq_file *seq, void *v, loff_t *pos)
1059*4882a593Smuzhiyun {
1060*4882a593Smuzhiyun 	struct pppoe_net *pn = pppoe_pernet(seq_file_net(seq));
1061*4882a593Smuzhiyun 	struct pppox_sock *po;
1062*4882a593Smuzhiyun 
1063*4882a593Smuzhiyun 	++*pos;
1064*4882a593Smuzhiyun 	if (v == SEQ_START_TOKEN) {
1065*4882a593Smuzhiyun 		po = pppoe_get_idx(pn, 0);
1066*4882a593Smuzhiyun 		goto out;
1067*4882a593Smuzhiyun 	}
1068*4882a593Smuzhiyun 	po = v;
1069*4882a593Smuzhiyun 	if (po->next)
1070*4882a593Smuzhiyun 		po = po->next;
1071*4882a593Smuzhiyun 	else {
1072*4882a593Smuzhiyun 		int hash = hash_item(po->pppoe_pa.sid, po->pppoe_pa.remote);
1073*4882a593Smuzhiyun 
1074*4882a593Smuzhiyun 		po = NULL;
1075*4882a593Smuzhiyun 		while (++hash < PPPOE_HASH_SIZE) {
1076*4882a593Smuzhiyun 			po = pn->hash_table[hash];
1077*4882a593Smuzhiyun 			if (po)
1078*4882a593Smuzhiyun 				break;
1079*4882a593Smuzhiyun 		}
1080*4882a593Smuzhiyun 	}
1081*4882a593Smuzhiyun 
1082*4882a593Smuzhiyun out:
1083*4882a593Smuzhiyun 	return po;
1084*4882a593Smuzhiyun }
1085*4882a593Smuzhiyun 
pppoe_seq_stop(struct seq_file * seq,void * v)1086*4882a593Smuzhiyun static void pppoe_seq_stop(struct seq_file *seq, void *v)
1087*4882a593Smuzhiyun 	__releases(pn->hash_lock)
1088*4882a593Smuzhiyun {
1089*4882a593Smuzhiyun 	struct pppoe_net *pn = pppoe_pernet(seq_file_net(seq));
1090*4882a593Smuzhiyun 	read_unlock_bh(&pn->hash_lock);
1091*4882a593Smuzhiyun }
1092*4882a593Smuzhiyun 
1093*4882a593Smuzhiyun static const struct seq_operations pppoe_seq_ops = {
1094*4882a593Smuzhiyun 	.start		= pppoe_seq_start,
1095*4882a593Smuzhiyun 	.next		= pppoe_seq_next,
1096*4882a593Smuzhiyun 	.stop		= pppoe_seq_stop,
1097*4882a593Smuzhiyun 	.show		= pppoe_seq_show,
1098*4882a593Smuzhiyun };
1099*4882a593Smuzhiyun #endif /* CONFIG_PROC_FS */
1100*4882a593Smuzhiyun 
1101*4882a593Smuzhiyun static const struct proto_ops pppoe_ops = {
1102*4882a593Smuzhiyun 	.family		= AF_PPPOX,
1103*4882a593Smuzhiyun 	.owner		= THIS_MODULE,
1104*4882a593Smuzhiyun 	.release	= pppoe_release,
1105*4882a593Smuzhiyun 	.bind		= sock_no_bind,
1106*4882a593Smuzhiyun 	.connect	= pppoe_connect,
1107*4882a593Smuzhiyun 	.socketpair	= sock_no_socketpair,
1108*4882a593Smuzhiyun 	.accept		= sock_no_accept,
1109*4882a593Smuzhiyun 	.getname	= pppoe_getname,
1110*4882a593Smuzhiyun 	.poll		= datagram_poll,
1111*4882a593Smuzhiyun 	.listen		= sock_no_listen,
1112*4882a593Smuzhiyun 	.shutdown	= sock_no_shutdown,
1113*4882a593Smuzhiyun 	.sendmsg	= pppoe_sendmsg,
1114*4882a593Smuzhiyun 	.recvmsg	= pppoe_recvmsg,
1115*4882a593Smuzhiyun 	.mmap		= sock_no_mmap,
1116*4882a593Smuzhiyun 	.ioctl		= pppox_ioctl,
1117*4882a593Smuzhiyun #ifdef CONFIG_COMPAT
1118*4882a593Smuzhiyun 	.compat_ioctl	= pppox_compat_ioctl,
1119*4882a593Smuzhiyun #endif
1120*4882a593Smuzhiyun };
1121*4882a593Smuzhiyun 
1122*4882a593Smuzhiyun static const struct pppox_proto pppoe_proto = {
1123*4882a593Smuzhiyun 	.create	= pppoe_create,
1124*4882a593Smuzhiyun 	.ioctl	= pppoe_ioctl,
1125*4882a593Smuzhiyun 	.owner	= THIS_MODULE,
1126*4882a593Smuzhiyun };
1127*4882a593Smuzhiyun 
pppoe_init_net(struct net * net)1128*4882a593Smuzhiyun static __net_init int pppoe_init_net(struct net *net)
1129*4882a593Smuzhiyun {
1130*4882a593Smuzhiyun 	struct pppoe_net *pn = pppoe_pernet(net);
1131*4882a593Smuzhiyun 	struct proc_dir_entry *pde;
1132*4882a593Smuzhiyun 
1133*4882a593Smuzhiyun 	rwlock_init(&pn->hash_lock);
1134*4882a593Smuzhiyun 
1135*4882a593Smuzhiyun 	pde = proc_create_net("pppoe", 0444, net->proc_net,
1136*4882a593Smuzhiyun 			&pppoe_seq_ops, sizeof(struct seq_net_private));
1137*4882a593Smuzhiyun #ifdef CONFIG_PROC_FS
1138*4882a593Smuzhiyun 	if (!pde)
1139*4882a593Smuzhiyun 		return -ENOMEM;
1140*4882a593Smuzhiyun #endif
1141*4882a593Smuzhiyun 
1142*4882a593Smuzhiyun 	return 0;
1143*4882a593Smuzhiyun }
1144*4882a593Smuzhiyun 
pppoe_exit_net(struct net * net)1145*4882a593Smuzhiyun static __net_exit void pppoe_exit_net(struct net *net)
1146*4882a593Smuzhiyun {
1147*4882a593Smuzhiyun 	remove_proc_entry("pppoe", net->proc_net);
1148*4882a593Smuzhiyun }
1149*4882a593Smuzhiyun 
1150*4882a593Smuzhiyun static struct pernet_operations pppoe_net_ops = {
1151*4882a593Smuzhiyun 	.init = pppoe_init_net,
1152*4882a593Smuzhiyun 	.exit = pppoe_exit_net,
1153*4882a593Smuzhiyun 	.id   = &pppoe_net_id,
1154*4882a593Smuzhiyun 	.size = sizeof(struct pppoe_net),
1155*4882a593Smuzhiyun };
1156*4882a593Smuzhiyun 
pppoe_init(void)1157*4882a593Smuzhiyun static int __init pppoe_init(void)
1158*4882a593Smuzhiyun {
1159*4882a593Smuzhiyun 	int err;
1160*4882a593Smuzhiyun 
1161*4882a593Smuzhiyun 	err = register_pernet_device(&pppoe_net_ops);
1162*4882a593Smuzhiyun 	if (err)
1163*4882a593Smuzhiyun 		goto out;
1164*4882a593Smuzhiyun 
1165*4882a593Smuzhiyun 	err = proto_register(&pppoe_sk_proto, 0);
1166*4882a593Smuzhiyun 	if (err)
1167*4882a593Smuzhiyun 		goto out_unregister_net_ops;
1168*4882a593Smuzhiyun 
1169*4882a593Smuzhiyun 	err = register_pppox_proto(PX_PROTO_OE, &pppoe_proto);
1170*4882a593Smuzhiyun 	if (err)
1171*4882a593Smuzhiyun 		goto out_unregister_pppoe_proto;
1172*4882a593Smuzhiyun 
1173*4882a593Smuzhiyun 	dev_add_pack(&pppoes_ptype);
1174*4882a593Smuzhiyun 	dev_add_pack(&pppoed_ptype);
1175*4882a593Smuzhiyun 	register_netdevice_notifier(&pppoe_notifier);
1176*4882a593Smuzhiyun 
1177*4882a593Smuzhiyun 	return 0;
1178*4882a593Smuzhiyun 
1179*4882a593Smuzhiyun out_unregister_pppoe_proto:
1180*4882a593Smuzhiyun 	proto_unregister(&pppoe_sk_proto);
1181*4882a593Smuzhiyun out_unregister_net_ops:
1182*4882a593Smuzhiyun 	unregister_pernet_device(&pppoe_net_ops);
1183*4882a593Smuzhiyun out:
1184*4882a593Smuzhiyun 	return err;
1185*4882a593Smuzhiyun }
1186*4882a593Smuzhiyun 
pppoe_exit(void)1187*4882a593Smuzhiyun static void __exit pppoe_exit(void)
1188*4882a593Smuzhiyun {
1189*4882a593Smuzhiyun 	unregister_netdevice_notifier(&pppoe_notifier);
1190*4882a593Smuzhiyun 	dev_remove_pack(&pppoed_ptype);
1191*4882a593Smuzhiyun 	dev_remove_pack(&pppoes_ptype);
1192*4882a593Smuzhiyun 	unregister_pppox_proto(PX_PROTO_OE);
1193*4882a593Smuzhiyun 	proto_unregister(&pppoe_sk_proto);
1194*4882a593Smuzhiyun 	unregister_pernet_device(&pppoe_net_ops);
1195*4882a593Smuzhiyun }
1196*4882a593Smuzhiyun 
1197*4882a593Smuzhiyun module_init(pppoe_init);
1198*4882a593Smuzhiyun module_exit(pppoe_exit);
1199*4882a593Smuzhiyun 
1200*4882a593Smuzhiyun MODULE_AUTHOR("Michal Ostrowski <mostrows@speakeasy.net>");
1201*4882a593Smuzhiyun MODULE_DESCRIPTION("PPP over Ethernet driver");
1202*4882a593Smuzhiyun MODULE_LICENSE("GPL");
1203*4882a593Smuzhiyun MODULE_ALIAS_NET_PF_PROTO(PF_PPPOX, PX_PROTO_OE);
1204