xref: /OK3568_Linux_fs/kernel/net/bridge/br_ioctl.c (revision 4882a59341e53eb6f0b4789bf948001014eff981)
1*4882a593Smuzhiyun // SPDX-License-Identifier: GPL-2.0-or-later
2*4882a593Smuzhiyun /*
3*4882a593Smuzhiyun  *	Ioctl handler
4*4882a593Smuzhiyun  *	Linux ethernet bridge
5*4882a593Smuzhiyun  *
6*4882a593Smuzhiyun  *	Authors:
7*4882a593Smuzhiyun  *	Lennert Buytenhek		<buytenh@gnu.org>
8*4882a593Smuzhiyun  */
9*4882a593Smuzhiyun 
10*4882a593Smuzhiyun #include <linux/capability.h>
11*4882a593Smuzhiyun #include <linux/kernel.h>
12*4882a593Smuzhiyun #include <linux/if_bridge.h>
13*4882a593Smuzhiyun #include <linux/netdevice.h>
14*4882a593Smuzhiyun #include <linux/slab.h>
15*4882a593Smuzhiyun #include <linux/times.h>
16*4882a593Smuzhiyun #include <net/net_namespace.h>
17*4882a593Smuzhiyun #include <linux/uaccess.h>
18*4882a593Smuzhiyun #include "br_private.h"
19*4882a593Smuzhiyun 
get_bridge_ifindices(struct net * net,int * indices,int num)20*4882a593Smuzhiyun static int get_bridge_ifindices(struct net *net, int *indices, int num)
21*4882a593Smuzhiyun {
22*4882a593Smuzhiyun 	struct net_device *dev;
23*4882a593Smuzhiyun 	int i = 0;
24*4882a593Smuzhiyun 
25*4882a593Smuzhiyun 	rcu_read_lock();
26*4882a593Smuzhiyun 	for_each_netdev_rcu(net, dev) {
27*4882a593Smuzhiyun 		if (i >= num)
28*4882a593Smuzhiyun 			break;
29*4882a593Smuzhiyun 		if (dev->priv_flags & IFF_EBRIDGE)
30*4882a593Smuzhiyun 			indices[i++] = dev->ifindex;
31*4882a593Smuzhiyun 	}
32*4882a593Smuzhiyun 	rcu_read_unlock();
33*4882a593Smuzhiyun 
34*4882a593Smuzhiyun 	return i;
35*4882a593Smuzhiyun }
36*4882a593Smuzhiyun 
37*4882a593Smuzhiyun /* called with RTNL */
get_port_ifindices(struct net_bridge * br,int * ifindices,int num)38*4882a593Smuzhiyun static void get_port_ifindices(struct net_bridge *br, int *ifindices, int num)
39*4882a593Smuzhiyun {
40*4882a593Smuzhiyun 	struct net_bridge_port *p;
41*4882a593Smuzhiyun 
42*4882a593Smuzhiyun 	list_for_each_entry(p, &br->port_list, list) {
43*4882a593Smuzhiyun 		if (p->port_no < num)
44*4882a593Smuzhiyun 			ifindices[p->port_no] = p->dev->ifindex;
45*4882a593Smuzhiyun 	}
46*4882a593Smuzhiyun }
47*4882a593Smuzhiyun 
48*4882a593Smuzhiyun /*
49*4882a593Smuzhiyun  * Format up to a page worth of forwarding table entries
50*4882a593Smuzhiyun  * userbuf -- where to copy result
51*4882a593Smuzhiyun  * maxnum  -- maximum number of entries desired
52*4882a593Smuzhiyun  *            (limited to a page for sanity)
53*4882a593Smuzhiyun  * offset  -- number of records to skip
54*4882a593Smuzhiyun  */
get_fdb_entries(struct net_bridge * br,void __user * userbuf,unsigned long maxnum,unsigned long offset)55*4882a593Smuzhiyun static int get_fdb_entries(struct net_bridge *br, void __user *userbuf,
56*4882a593Smuzhiyun 			   unsigned long maxnum, unsigned long offset)
57*4882a593Smuzhiyun {
58*4882a593Smuzhiyun 	int num;
59*4882a593Smuzhiyun 	void *buf;
60*4882a593Smuzhiyun 	size_t size;
61*4882a593Smuzhiyun 
62*4882a593Smuzhiyun 	/* Clamp size to PAGE_SIZE, test maxnum to avoid overflow */
63*4882a593Smuzhiyun 	if (maxnum > PAGE_SIZE/sizeof(struct __fdb_entry))
64*4882a593Smuzhiyun 		maxnum = PAGE_SIZE/sizeof(struct __fdb_entry);
65*4882a593Smuzhiyun 
66*4882a593Smuzhiyun 	size = maxnum * sizeof(struct __fdb_entry);
67*4882a593Smuzhiyun 
68*4882a593Smuzhiyun 	buf = kmalloc(size, GFP_USER);
69*4882a593Smuzhiyun 	if (!buf)
70*4882a593Smuzhiyun 		return -ENOMEM;
71*4882a593Smuzhiyun 
72*4882a593Smuzhiyun 	num = br_fdb_fillbuf(br, buf, maxnum, offset);
73*4882a593Smuzhiyun 	if (num > 0) {
74*4882a593Smuzhiyun 		if (copy_to_user(userbuf, buf, num*sizeof(struct __fdb_entry)))
75*4882a593Smuzhiyun 			num = -EFAULT;
76*4882a593Smuzhiyun 	}
77*4882a593Smuzhiyun 	kfree(buf);
78*4882a593Smuzhiyun 
79*4882a593Smuzhiyun 	return num;
80*4882a593Smuzhiyun }
81*4882a593Smuzhiyun 
82*4882a593Smuzhiyun /* called with RTNL */
add_del_if(struct net_bridge * br,int ifindex,int isadd)83*4882a593Smuzhiyun static int add_del_if(struct net_bridge *br, int ifindex, int isadd)
84*4882a593Smuzhiyun {
85*4882a593Smuzhiyun 	struct net *net = dev_net(br->dev);
86*4882a593Smuzhiyun 	struct net_device *dev;
87*4882a593Smuzhiyun 	int ret;
88*4882a593Smuzhiyun 
89*4882a593Smuzhiyun 	if (!ns_capable(net->user_ns, CAP_NET_ADMIN))
90*4882a593Smuzhiyun 		return -EPERM;
91*4882a593Smuzhiyun 
92*4882a593Smuzhiyun 	dev = __dev_get_by_index(net, ifindex);
93*4882a593Smuzhiyun 	if (dev == NULL)
94*4882a593Smuzhiyun 		return -EINVAL;
95*4882a593Smuzhiyun 
96*4882a593Smuzhiyun 	if (isadd)
97*4882a593Smuzhiyun 		ret = br_add_if(br, dev, NULL);
98*4882a593Smuzhiyun 	else
99*4882a593Smuzhiyun 		ret = br_del_if(br, dev);
100*4882a593Smuzhiyun 
101*4882a593Smuzhiyun 	return ret;
102*4882a593Smuzhiyun }
103*4882a593Smuzhiyun 
104*4882a593Smuzhiyun /*
105*4882a593Smuzhiyun  * Legacy ioctl's through SIOCDEVPRIVATE
106*4882a593Smuzhiyun  * This interface is deprecated because it was too difficult
107*4882a593Smuzhiyun  * to do the translation for 32/64bit ioctl compatibility.
108*4882a593Smuzhiyun  */
old_dev_ioctl(struct net_device * dev,struct ifreq * rq,int cmd)109*4882a593Smuzhiyun static int old_dev_ioctl(struct net_device *dev, struct ifreq *rq, int cmd)
110*4882a593Smuzhiyun {
111*4882a593Smuzhiyun 	struct net_bridge *br = netdev_priv(dev);
112*4882a593Smuzhiyun 	struct net_bridge_port *p = NULL;
113*4882a593Smuzhiyun 	unsigned long args[4];
114*4882a593Smuzhiyun 	int ret = -EOPNOTSUPP;
115*4882a593Smuzhiyun 
116*4882a593Smuzhiyun 	if (copy_from_user(args, rq->ifr_data, sizeof(args)))
117*4882a593Smuzhiyun 		return -EFAULT;
118*4882a593Smuzhiyun 
119*4882a593Smuzhiyun 	switch (args[0]) {
120*4882a593Smuzhiyun 	case BRCTL_ADD_IF:
121*4882a593Smuzhiyun 	case BRCTL_DEL_IF:
122*4882a593Smuzhiyun 		return add_del_if(br, args[1], args[0] == BRCTL_ADD_IF);
123*4882a593Smuzhiyun 
124*4882a593Smuzhiyun 	case BRCTL_GET_BRIDGE_INFO:
125*4882a593Smuzhiyun 	{
126*4882a593Smuzhiyun 		struct __bridge_info b;
127*4882a593Smuzhiyun 
128*4882a593Smuzhiyun 		memset(&b, 0, sizeof(struct __bridge_info));
129*4882a593Smuzhiyun 		rcu_read_lock();
130*4882a593Smuzhiyun 		memcpy(&b.designated_root, &br->designated_root, 8);
131*4882a593Smuzhiyun 		memcpy(&b.bridge_id, &br->bridge_id, 8);
132*4882a593Smuzhiyun 		b.root_path_cost = br->root_path_cost;
133*4882a593Smuzhiyun 		b.max_age = jiffies_to_clock_t(br->max_age);
134*4882a593Smuzhiyun 		b.hello_time = jiffies_to_clock_t(br->hello_time);
135*4882a593Smuzhiyun 		b.forward_delay = br->forward_delay;
136*4882a593Smuzhiyun 		b.bridge_max_age = br->bridge_max_age;
137*4882a593Smuzhiyun 		b.bridge_hello_time = br->bridge_hello_time;
138*4882a593Smuzhiyun 		b.bridge_forward_delay = jiffies_to_clock_t(br->bridge_forward_delay);
139*4882a593Smuzhiyun 		b.topology_change = br->topology_change;
140*4882a593Smuzhiyun 		b.topology_change_detected = br->topology_change_detected;
141*4882a593Smuzhiyun 		b.root_port = br->root_port;
142*4882a593Smuzhiyun 
143*4882a593Smuzhiyun 		b.stp_enabled = (br->stp_enabled != BR_NO_STP);
144*4882a593Smuzhiyun 		b.ageing_time = jiffies_to_clock_t(br->ageing_time);
145*4882a593Smuzhiyun 		b.hello_timer_value = br_timer_value(&br->hello_timer);
146*4882a593Smuzhiyun 		b.tcn_timer_value = br_timer_value(&br->tcn_timer);
147*4882a593Smuzhiyun 		b.topology_change_timer_value = br_timer_value(&br->topology_change_timer);
148*4882a593Smuzhiyun 		b.gc_timer_value = br_timer_value(&br->gc_work.timer);
149*4882a593Smuzhiyun 		rcu_read_unlock();
150*4882a593Smuzhiyun 
151*4882a593Smuzhiyun 		if (copy_to_user((void __user *)args[1], &b, sizeof(b)))
152*4882a593Smuzhiyun 			return -EFAULT;
153*4882a593Smuzhiyun 
154*4882a593Smuzhiyun 		return 0;
155*4882a593Smuzhiyun 	}
156*4882a593Smuzhiyun 
157*4882a593Smuzhiyun 	case BRCTL_GET_PORT_LIST:
158*4882a593Smuzhiyun 	{
159*4882a593Smuzhiyun 		int num, *indices;
160*4882a593Smuzhiyun 
161*4882a593Smuzhiyun 		num = args[2];
162*4882a593Smuzhiyun 		if (num < 0)
163*4882a593Smuzhiyun 			return -EINVAL;
164*4882a593Smuzhiyun 		if (num == 0)
165*4882a593Smuzhiyun 			num = 256;
166*4882a593Smuzhiyun 		if (num > BR_MAX_PORTS)
167*4882a593Smuzhiyun 			num = BR_MAX_PORTS;
168*4882a593Smuzhiyun 
169*4882a593Smuzhiyun 		indices = kcalloc(num, sizeof(int), GFP_KERNEL);
170*4882a593Smuzhiyun 		if (indices == NULL)
171*4882a593Smuzhiyun 			return -ENOMEM;
172*4882a593Smuzhiyun 
173*4882a593Smuzhiyun 		get_port_ifindices(br, indices, num);
174*4882a593Smuzhiyun 		if (copy_to_user((void __user *)args[1], indices, num*sizeof(int)))
175*4882a593Smuzhiyun 			num =  -EFAULT;
176*4882a593Smuzhiyun 		kfree(indices);
177*4882a593Smuzhiyun 		return num;
178*4882a593Smuzhiyun 	}
179*4882a593Smuzhiyun 
180*4882a593Smuzhiyun 	case BRCTL_SET_BRIDGE_FORWARD_DELAY:
181*4882a593Smuzhiyun 		if (!ns_capable(dev_net(dev)->user_ns, CAP_NET_ADMIN))
182*4882a593Smuzhiyun 			return -EPERM;
183*4882a593Smuzhiyun 
184*4882a593Smuzhiyun 		ret = br_set_forward_delay(br, args[1]);
185*4882a593Smuzhiyun 		break;
186*4882a593Smuzhiyun 
187*4882a593Smuzhiyun 	case BRCTL_SET_BRIDGE_HELLO_TIME:
188*4882a593Smuzhiyun 		if (!ns_capable(dev_net(dev)->user_ns, CAP_NET_ADMIN))
189*4882a593Smuzhiyun 			return -EPERM;
190*4882a593Smuzhiyun 
191*4882a593Smuzhiyun 		ret = br_set_hello_time(br, args[1]);
192*4882a593Smuzhiyun 		break;
193*4882a593Smuzhiyun 
194*4882a593Smuzhiyun 	case BRCTL_SET_BRIDGE_MAX_AGE:
195*4882a593Smuzhiyun 		if (!ns_capable(dev_net(dev)->user_ns, CAP_NET_ADMIN))
196*4882a593Smuzhiyun 			return -EPERM;
197*4882a593Smuzhiyun 
198*4882a593Smuzhiyun 		ret = br_set_max_age(br, args[1]);
199*4882a593Smuzhiyun 		break;
200*4882a593Smuzhiyun 
201*4882a593Smuzhiyun 	case BRCTL_SET_AGEING_TIME:
202*4882a593Smuzhiyun 		if (!ns_capable(dev_net(dev)->user_ns, CAP_NET_ADMIN))
203*4882a593Smuzhiyun 			return -EPERM;
204*4882a593Smuzhiyun 
205*4882a593Smuzhiyun 		ret = br_set_ageing_time(br, args[1]);
206*4882a593Smuzhiyun 		break;
207*4882a593Smuzhiyun 
208*4882a593Smuzhiyun 	case BRCTL_GET_PORT_INFO:
209*4882a593Smuzhiyun 	{
210*4882a593Smuzhiyun 		struct __port_info p;
211*4882a593Smuzhiyun 		struct net_bridge_port *pt;
212*4882a593Smuzhiyun 
213*4882a593Smuzhiyun 		rcu_read_lock();
214*4882a593Smuzhiyun 		if ((pt = br_get_port(br, args[2])) == NULL) {
215*4882a593Smuzhiyun 			rcu_read_unlock();
216*4882a593Smuzhiyun 			return -EINVAL;
217*4882a593Smuzhiyun 		}
218*4882a593Smuzhiyun 
219*4882a593Smuzhiyun 		memset(&p, 0, sizeof(struct __port_info));
220*4882a593Smuzhiyun 		memcpy(&p.designated_root, &pt->designated_root, 8);
221*4882a593Smuzhiyun 		memcpy(&p.designated_bridge, &pt->designated_bridge, 8);
222*4882a593Smuzhiyun 		p.port_id = pt->port_id;
223*4882a593Smuzhiyun 		p.designated_port = pt->designated_port;
224*4882a593Smuzhiyun 		p.path_cost = pt->path_cost;
225*4882a593Smuzhiyun 		p.designated_cost = pt->designated_cost;
226*4882a593Smuzhiyun 		p.state = pt->state;
227*4882a593Smuzhiyun 		p.top_change_ack = pt->topology_change_ack;
228*4882a593Smuzhiyun 		p.config_pending = pt->config_pending;
229*4882a593Smuzhiyun 		p.message_age_timer_value = br_timer_value(&pt->message_age_timer);
230*4882a593Smuzhiyun 		p.forward_delay_timer_value = br_timer_value(&pt->forward_delay_timer);
231*4882a593Smuzhiyun 		p.hold_timer_value = br_timer_value(&pt->hold_timer);
232*4882a593Smuzhiyun 
233*4882a593Smuzhiyun 		rcu_read_unlock();
234*4882a593Smuzhiyun 
235*4882a593Smuzhiyun 		if (copy_to_user((void __user *)args[1], &p, sizeof(p)))
236*4882a593Smuzhiyun 			return -EFAULT;
237*4882a593Smuzhiyun 
238*4882a593Smuzhiyun 		return 0;
239*4882a593Smuzhiyun 	}
240*4882a593Smuzhiyun 
241*4882a593Smuzhiyun 	case BRCTL_SET_BRIDGE_STP_STATE:
242*4882a593Smuzhiyun 		if (!ns_capable(dev_net(dev)->user_ns, CAP_NET_ADMIN))
243*4882a593Smuzhiyun 			return -EPERM;
244*4882a593Smuzhiyun 
245*4882a593Smuzhiyun 		ret = br_stp_set_enabled(br, args[1], NULL);
246*4882a593Smuzhiyun 		break;
247*4882a593Smuzhiyun 
248*4882a593Smuzhiyun 	case BRCTL_SET_BRIDGE_PRIORITY:
249*4882a593Smuzhiyun 		if (!ns_capable(dev_net(dev)->user_ns, CAP_NET_ADMIN))
250*4882a593Smuzhiyun 			return -EPERM;
251*4882a593Smuzhiyun 
252*4882a593Smuzhiyun 		br_stp_set_bridge_priority(br, args[1]);
253*4882a593Smuzhiyun 		ret = 0;
254*4882a593Smuzhiyun 		break;
255*4882a593Smuzhiyun 
256*4882a593Smuzhiyun 	case BRCTL_SET_PORT_PRIORITY:
257*4882a593Smuzhiyun 	{
258*4882a593Smuzhiyun 		if (!ns_capable(dev_net(dev)->user_ns, CAP_NET_ADMIN))
259*4882a593Smuzhiyun 			return -EPERM;
260*4882a593Smuzhiyun 
261*4882a593Smuzhiyun 		spin_lock_bh(&br->lock);
262*4882a593Smuzhiyun 		if ((p = br_get_port(br, args[1])) == NULL)
263*4882a593Smuzhiyun 			ret = -EINVAL;
264*4882a593Smuzhiyun 		else
265*4882a593Smuzhiyun 			ret = br_stp_set_port_priority(p, args[2]);
266*4882a593Smuzhiyun 		spin_unlock_bh(&br->lock);
267*4882a593Smuzhiyun 		break;
268*4882a593Smuzhiyun 	}
269*4882a593Smuzhiyun 
270*4882a593Smuzhiyun 	case BRCTL_SET_PATH_COST:
271*4882a593Smuzhiyun 	{
272*4882a593Smuzhiyun 		if (!ns_capable(dev_net(dev)->user_ns, CAP_NET_ADMIN))
273*4882a593Smuzhiyun 			return -EPERM;
274*4882a593Smuzhiyun 
275*4882a593Smuzhiyun 		spin_lock_bh(&br->lock);
276*4882a593Smuzhiyun 		if ((p = br_get_port(br, args[1])) == NULL)
277*4882a593Smuzhiyun 			ret = -EINVAL;
278*4882a593Smuzhiyun 		else
279*4882a593Smuzhiyun 			ret = br_stp_set_path_cost(p, args[2]);
280*4882a593Smuzhiyun 		spin_unlock_bh(&br->lock);
281*4882a593Smuzhiyun 		break;
282*4882a593Smuzhiyun 	}
283*4882a593Smuzhiyun 
284*4882a593Smuzhiyun 	case BRCTL_GET_FDB_ENTRIES:
285*4882a593Smuzhiyun 		return get_fdb_entries(br, (void __user *)args[1],
286*4882a593Smuzhiyun 				       args[2], args[3]);
287*4882a593Smuzhiyun 	}
288*4882a593Smuzhiyun 
289*4882a593Smuzhiyun 	if (!ret) {
290*4882a593Smuzhiyun 		if (p)
291*4882a593Smuzhiyun 			br_ifinfo_notify(RTM_NEWLINK, NULL, p);
292*4882a593Smuzhiyun 		else
293*4882a593Smuzhiyun 			netdev_state_change(br->dev);
294*4882a593Smuzhiyun 	}
295*4882a593Smuzhiyun 
296*4882a593Smuzhiyun 	return ret;
297*4882a593Smuzhiyun }
298*4882a593Smuzhiyun 
old_deviceless(struct net * net,void __user * uarg)299*4882a593Smuzhiyun static int old_deviceless(struct net *net, void __user *uarg)
300*4882a593Smuzhiyun {
301*4882a593Smuzhiyun 	unsigned long args[3];
302*4882a593Smuzhiyun 
303*4882a593Smuzhiyun 	if (copy_from_user(args, uarg, sizeof(args)))
304*4882a593Smuzhiyun 		return -EFAULT;
305*4882a593Smuzhiyun 
306*4882a593Smuzhiyun 	switch (args[0]) {
307*4882a593Smuzhiyun 	case BRCTL_GET_VERSION:
308*4882a593Smuzhiyun 		return BRCTL_VERSION;
309*4882a593Smuzhiyun 
310*4882a593Smuzhiyun 	case BRCTL_GET_BRIDGES:
311*4882a593Smuzhiyun 	{
312*4882a593Smuzhiyun 		int *indices;
313*4882a593Smuzhiyun 		int ret = 0;
314*4882a593Smuzhiyun 
315*4882a593Smuzhiyun 		if (args[2] >= 2048)
316*4882a593Smuzhiyun 			return -ENOMEM;
317*4882a593Smuzhiyun 		indices = kcalloc(args[2], sizeof(int), GFP_KERNEL);
318*4882a593Smuzhiyun 		if (indices == NULL)
319*4882a593Smuzhiyun 			return -ENOMEM;
320*4882a593Smuzhiyun 
321*4882a593Smuzhiyun 		args[2] = get_bridge_ifindices(net, indices, args[2]);
322*4882a593Smuzhiyun 
323*4882a593Smuzhiyun 		ret = copy_to_user((void __user *)args[1], indices, args[2]*sizeof(int))
324*4882a593Smuzhiyun 			? -EFAULT : args[2];
325*4882a593Smuzhiyun 
326*4882a593Smuzhiyun 		kfree(indices);
327*4882a593Smuzhiyun 		return ret;
328*4882a593Smuzhiyun 	}
329*4882a593Smuzhiyun 
330*4882a593Smuzhiyun 	case BRCTL_ADD_BRIDGE:
331*4882a593Smuzhiyun 	case BRCTL_DEL_BRIDGE:
332*4882a593Smuzhiyun 	{
333*4882a593Smuzhiyun 		char buf[IFNAMSIZ];
334*4882a593Smuzhiyun 
335*4882a593Smuzhiyun 		if (!ns_capable(net->user_ns, CAP_NET_ADMIN))
336*4882a593Smuzhiyun 			return -EPERM;
337*4882a593Smuzhiyun 
338*4882a593Smuzhiyun 		if (copy_from_user(buf, (void __user *)args[1], IFNAMSIZ))
339*4882a593Smuzhiyun 			return -EFAULT;
340*4882a593Smuzhiyun 
341*4882a593Smuzhiyun 		buf[IFNAMSIZ-1] = 0;
342*4882a593Smuzhiyun 
343*4882a593Smuzhiyun 		if (args[0] == BRCTL_ADD_BRIDGE)
344*4882a593Smuzhiyun 			return br_add_bridge(net, buf);
345*4882a593Smuzhiyun 
346*4882a593Smuzhiyun 		return br_del_bridge(net, buf);
347*4882a593Smuzhiyun 	}
348*4882a593Smuzhiyun 	}
349*4882a593Smuzhiyun 
350*4882a593Smuzhiyun 	return -EOPNOTSUPP;
351*4882a593Smuzhiyun }
352*4882a593Smuzhiyun 
br_ioctl_deviceless_stub(struct net * net,unsigned int cmd,void __user * uarg)353*4882a593Smuzhiyun int br_ioctl_deviceless_stub(struct net *net, unsigned int cmd, void __user *uarg)
354*4882a593Smuzhiyun {
355*4882a593Smuzhiyun 	switch (cmd) {
356*4882a593Smuzhiyun 	case SIOCGIFBR:
357*4882a593Smuzhiyun 	case SIOCSIFBR:
358*4882a593Smuzhiyun 		return old_deviceless(net, uarg);
359*4882a593Smuzhiyun 
360*4882a593Smuzhiyun 	case SIOCBRADDBR:
361*4882a593Smuzhiyun 	case SIOCBRDELBR:
362*4882a593Smuzhiyun 	{
363*4882a593Smuzhiyun 		char buf[IFNAMSIZ];
364*4882a593Smuzhiyun 
365*4882a593Smuzhiyun 		if (!ns_capable(net->user_ns, CAP_NET_ADMIN))
366*4882a593Smuzhiyun 			return -EPERM;
367*4882a593Smuzhiyun 
368*4882a593Smuzhiyun 		if (copy_from_user(buf, uarg, IFNAMSIZ))
369*4882a593Smuzhiyun 			return -EFAULT;
370*4882a593Smuzhiyun 
371*4882a593Smuzhiyun 		buf[IFNAMSIZ-1] = 0;
372*4882a593Smuzhiyun 		if (cmd == SIOCBRADDBR)
373*4882a593Smuzhiyun 			return br_add_bridge(net, buf);
374*4882a593Smuzhiyun 
375*4882a593Smuzhiyun 		return br_del_bridge(net, buf);
376*4882a593Smuzhiyun 	}
377*4882a593Smuzhiyun 	}
378*4882a593Smuzhiyun 	return -EOPNOTSUPP;
379*4882a593Smuzhiyun }
380*4882a593Smuzhiyun 
br_dev_ioctl(struct net_device * dev,struct ifreq * rq,int cmd)381*4882a593Smuzhiyun int br_dev_ioctl(struct net_device *dev, struct ifreq *rq, int cmd)
382*4882a593Smuzhiyun {
383*4882a593Smuzhiyun 	struct net_bridge *br = netdev_priv(dev);
384*4882a593Smuzhiyun 
385*4882a593Smuzhiyun 	switch (cmd) {
386*4882a593Smuzhiyun 	case SIOCDEVPRIVATE:
387*4882a593Smuzhiyun 		return old_dev_ioctl(dev, rq, cmd);
388*4882a593Smuzhiyun 
389*4882a593Smuzhiyun 	case SIOCBRADDIF:
390*4882a593Smuzhiyun 	case SIOCBRDELIF:
391*4882a593Smuzhiyun 		return add_del_if(br, rq->ifr_ifindex, cmd == SIOCBRADDIF);
392*4882a593Smuzhiyun 
393*4882a593Smuzhiyun 	}
394*4882a593Smuzhiyun 
395*4882a593Smuzhiyun 	br_debug(br, "Bridge does not support ioctl 0x%x\n", cmd);
396*4882a593Smuzhiyun 	return -EOPNOTSUPP;
397*4882a593Smuzhiyun }
398