1*4882a593Smuzhiyun // SPDX-License-Identifier: GPL-2.0-or-later
2*4882a593Smuzhiyun /*
3*4882a593Smuzhiyun * X.25 Packet Layer release 002
4*4882a593Smuzhiyun *
5*4882a593Smuzhiyun * This is ALPHA test software. This code may break your machine,
6*4882a593Smuzhiyun * randomly fail to work with new releases, misbehave and/or generally
7*4882a593Smuzhiyun * screw up. It might even work.
8*4882a593Smuzhiyun *
9*4882a593Smuzhiyun * This code REQUIRES 2.1.15 or higher
10*4882a593Smuzhiyun *
11*4882a593Smuzhiyun * History
12*4882a593Smuzhiyun * X.25 001 Jonathan Naylor Started coding.
13*4882a593Smuzhiyun * X.25 002 Jonathan Naylor Centralised disconnect handling.
14*4882a593Smuzhiyun * New timer architecture.
15*4882a593Smuzhiyun * 2000-03-11 Henner Eisen MSG_EOR handling more POSIX compliant.
16*4882a593Smuzhiyun * 2000-03-22 Daniela Squassoni Allowed disabling/enabling of
17*4882a593Smuzhiyun * facilities negotiation and increased
18*4882a593Smuzhiyun * the throughput upper limit.
19*4882a593Smuzhiyun * 2000-08-27 Arnaldo C. Melo s/suser/capable/ + micro cleanups
20*4882a593Smuzhiyun * 2000-09-04 Henner Eisen Set sock->state in x25_accept().
21*4882a593Smuzhiyun * Fixed x25_output() related skb leakage.
22*4882a593Smuzhiyun * 2000-10-02 Henner Eisen Made x25_kick() single threaded per socket.
23*4882a593Smuzhiyun * 2000-10-27 Henner Eisen MSG_DONTWAIT for fragment allocation.
24*4882a593Smuzhiyun * 2000-11-14 Henner Eisen Closing datalink from NETDEV_GOING_DOWN
25*4882a593Smuzhiyun * 2002-10-06 Arnaldo C. Melo Get rid of cli/sti, move proc stuff to
26*4882a593Smuzhiyun * x25_proc.c, using seq_file
27*4882a593Smuzhiyun * 2005-04-02 Shaun Pereira Selective sub address matching
28*4882a593Smuzhiyun * with call user data
29*4882a593Smuzhiyun * 2005-04-15 Shaun Pereira Fast select with no restriction on
30*4882a593Smuzhiyun * response
31*4882a593Smuzhiyun */
32*4882a593Smuzhiyun
33*4882a593Smuzhiyun #define pr_fmt(fmt) "X25: " fmt
34*4882a593Smuzhiyun
35*4882a593Smuzhiyun #include <linux/module.h>
36*4882a593Smuzhiyun #include <linux/capability.h>
37*4882a593Smuzhiyun #include <linux/errno.h>
38*4882a593Smuzhiyun #include <linux/kernel.h>
39*4882a593Smuzhiyun #include <linux/sched/signal.h>
40*4882a593Smuzhiyun #include <linux/timer.h>
41*4882a593Smuzhiyun #include <linux/string.h>
42*4882a593Smuzhiyun #include <linux/net.h>
43*4882a593Smuzhiyun #include <linux/netdevice.h>
44*4882a593Smuzhiyun #include <linux/if_arp.h>
45*4882a593Smuzhiyun #include <linux/skbuff.h>
46*4882a593Smuzhiyun #include <linux/slab.h>
47*4882a593Smuzhiyun #include <net/sock.h>
48*4882a593Smuzhiyun #include <net/tcp_states.h>
49*4882a593Smuzhiyun #include <linux/uaccess.h>
50*4882a593Smuzhiyun #include <linux/fcntl.h>
51*4882a593Smuzhiyun #include <linux/termios.h> /* For TIOCINQ/OUTQ */
52*4882a593Smuzhiyun #include <linux/notifier.h>
53*4882a593Smuzhiyun #include <linux/init.h>
54*4882a593Smuzhiyun #include <linux/compat.h>
55*4882a593Smuzhiyun #include <linux/ctype.h>
56*4882a593Smuzhiyun
57*4882a593Smuzhiyun #include <net/x25.h>
58*4882a593Smuzhiyun #include <net/compat.h>
59*4882a593Smuzhiyun
60*4882a593Smuzhiyun int sysctl_x25_restart_request_timeout = X25_DEFAULT_T20;
61*4882a593Smuzhiyun int sysctl_x25_call_request_timeout = X25_DEFAULT_T21;
62*4882a593Smuzhiyun int sysctl_x25_reset_request_timeout = X25_DEFAULT_T22;
63*4882a593Smuzhiyun int sysctl_x25_clear_request_timeout = X25_DEFAULT_T23;
64*4882a593Smuzhiyun int sysctl_x25_ack_holdback_timeout = X25_DEFAULT_T2;
65*4882a593Smuzhiyun int sysctl_x25_forward = 0;
66*4882a593Smuzhiyun
67*4882a593Smuzhiyun HLIST_HEAD(x25_list);
68*4882a593Smuzhiyun DEFINE_RWLOCK(x25_list_lock);
69*4882a593Smuzhiyun
70*4882a593Smuzhiyun static const struct proto_ops x25_proto_ops;
71*4882a593Smuzhiyun
72*4882a593Smuzhiyun static const struct x25_address null_x25_address = {" "};
73*4882a593Smuzhiyun
74*4882a593Smuzhiyun #ifdef CONFIG_COMPAT
75*4882a593Smuzhiyun struct compat_x25_subscrip_struct {
76*4882a593Smuzhiyun char device[200-sizeof(compat_ulong_t)];
77*4882a593Smuzhiyun compat_ulong_t global_facil_mask;
78*4882a593Smuzhiyun compat_uint_t extended;
79*4882a593Smuzhiyun };
80*4882a593Smuzhiyun #endif
81*4882a593Smuzhiyun
82*4882a593Smuzhiyun
x25_parse_address_block(struct sk_buff * skb,struct x25_address * called_addr,struct x25_address * calling_addr)83*4882a593Smuzhiyun int x25_parse_address_block(struct sk_buff *skb,
84*4882a593Smuzhiyun struct x25_address *called_addr,
85*4882a593Smuzhiyun struct x25_address *calling_addr)
86*4882a593Smuzhiyun {
87*4882a593Smuzhiyun unsigned char len;
88*4882a593Smuzhiyun int needed;
89*4882a593Smuzhiyun int rc;
90*4882a593Smuzhiyun
91*4882a593Smuzhiyun if (!pskb_may_pull(skb, 1)) {
92*4882a593Smuzhiyun /* packet has no address block */
93*4882a593Smuzhiyun rc = 0;
94*4882a593Smuzhiyun goto empty;
95*4882a593Smuzhiyun }
96*4882a593Smuzhiyun
97*4882a593Smuzhiyun len = *skb->data;
98*4882a593Smuzhiyun needed = 1 + ((len >> 4) + (len & 0x0f) + 1) / 2;
99*4882a593Smuzhiyun
100*4882a593Smuzhiyun if (!pskb_may_pull(skb, needed)) {
101*4882a593Smuzhiyun /* packet is too short to hold the addresses it claims
102*4882a593Smuzhiyun to hold */
103*4882a593Smuzhiyun rc = -1;
104*4882a593Smuzhiyun goto empty;
105*4882a593Smuzhiyun }
106*4882a593Smuzhiyun
107*4882a593Smuzhiyun return x25_addr_ntoa(skb->data, called_addr, calling_addr);
108*4882a593Smuzhiyun
109*4882a593Smuzhiyun empty:
110*4882a593Smuzhiyun *called_addr->x25_addr = 0;
111*4882a593Smuzhiyun *calling_addr->x25_addr = 0;
112*4882a593Smuzhiyun
113*4882a593Smuzhiyun return rc;
114*4882a593Smuzhiyun }
115*4882a593Smuzhiyun
116*4882a593Smuzhiyun
x25_addr_ntoa(unsigned char * p,struct x25_address * called_addr,struct x25_address * calling_addr)117*4882a593Smuzhiyun int x25_addr_ntoa(unsigned char *p, struct x25_address *called_addr,
118*4882a593Smuzhiyun struct x25_address *calling_addr)
119*4882a593Smuzhiyun {
120*4882a593Smuzhiyun unsigned int called_len, calling_len;
121*4882a593Smuzhiyun char *called, *calling;
122*4882a593Smuzhiyun unsigned int i;
123*4882a593Smuzhiyun
124*4882a593Smuzhiyun called_len = (*p >> 0) & 0x0F;
125*4882a593Smuzhiyun calling_len = (*p >> 4) & 0x0F;
126*4882a593Smuzhiyun
127*4882a593Smuzhiyun called = called_addr->x25_addr;
128*4882a593Smuzhiyun calling = calling_addr->x25_addr;
129*4882a593Smuzhiyun p++;
130*4882a593Smuzhiyun
131*4882a593Smuzhiyun for (i = 0; i < (called_len + calling_len); i++) {
132*4882a593Smuzhiyun if (i < called_len) {
133*4882a593Smuzhiyun if (i % 2 != 0) {
134*4882a593Smuzhiyun *called++ = ((*p >> 0) & 0x0F) + '0';
135*4882a593Smuzhiyun p++;
136*4882a593Smuzhiyun } else {
137*4882a593Smuzhiyun *called++ = ((*p >> 4) & 0x0F) + '0';
138*4882a593Smuzhiyun }
139*4882a593Smuzhiyun } else {
140*4882a593Smuzhiyun if (i % 2 != 0) {
141*4882a593Smuzhiyun *calling++ = ((*p >> 0) & 0x0F) + '0';
142*4882a593Smuzhiyun p++;
143*4882a593Smuzhiyun } else {
144*4882a593Smuzhiyun *calling++ = ((*p >> 4) & 0x0F) + '0';
145*4882a593Smuzhiyun }
146*4882a593Smuzhiyun }
147*4882a593Smuzhiyun }
148*4882a593Smuzhiyun
149*4882a593Smuzhiyun *called = *calling = '\0';
150*4882a593Smuzhiyun
151*4882a593Smuzhiyun return 1 + (called_len + calling_len + 1) / 2;
152*4882a593Smuzhiyun }
153*4882a593Smuzhiyun
x25_addr_aton(unsigned char * p,struct x25_address * called_addr,struct x25_address * calling_addr)154*4882a593Smuzhiyun int x25_addr_aton(unsigned char *p, struct x25_address *called_addr,
155*4882a593Smuzhiyun struct x25_address *calling_addr)
156*4882a593Smuzhiyun {
157*4882a593Smuzhiyun unsigned int called_len, calling_len;
158*4882a593Smuzhiyun char *called, *calling;
159*4882a593Smuzhiyun int i;
160*4882a593Smuzhiyun
161*4882a593Smuzhiyun called = called_addr->x25_addr;
162*4882a593Smuzhiyun calling = calling_addr->x25_addr;
163*4882a593Smuzhiyun
164*4882a593Smuzhiyun called_len = strlen(called);
165*4882a593Smuzhiyun calling_len = strlen(calling);
166*4882a593Smuzhiyun
167*4882a593Smuzhiyun *p++ = (calling_len << 4) | (called_len << 0);
168*4882a593Smuzhiyun
169*4882a593Smuzhiyun for (i = 0; i < (called_len + calling_len); i++) {
170*4882a593Smuzhiyun if (i < called_len) {
171*4882a593Smuzhiyun if (i % 2 != 0) {
172*4882a593Smuzhiyun *p |= (*called++ - '0') << 0;
173*4882a593Smuzhiyun p++;
174*4882a593Smuzhiyun } else {
175*4882a593Smuzhiyun *p = 0x00;
176*4882a593Smuzhiyun *p |= (*called++ - '0') << 4;
177*4882a593Smuzhiyun }
178*4882a593Smuzhiyun } else {
179*4882a593Smuzhiyun if (i % 2 != 0) {
180*4882a593Smuzhiyun *p |= (*calling++ - '0') << 0;
181*4882a593Smuzhiyun p++;
182*4882a593Smuzhiyun } else {
183*4882a593Smuzhiyun *p = 0x00;
184*4882a593Smuzhiyun *p |= (*calling++ - '0') << 4;
185*4882a593Smuzhiyun }
186*4882a593Smuzhiyun }
187*4882a593Smuzhiyun }
188*4882a593Smuzhiyun
189*4882a593Smuzhiyun return 1 + (called_len + calling_len + 1) / 2;
190*4882a593Smuzhiyun }
191*4882a593Smuzhiyun
192*4882a593Smuzhiyun /*
193*4882a593Smuzhiyun * Socket removal during an interrupt is now safe.
194*4882a593Smuzhiyun */
x25_remove_socket(struct sock * sk)195*4882a593Smuzhiyun static void x25_remove_socket(struct sock *sk)
196*4882a593Smuzhiyun {
197*4882a593Smuzhiyun write_lock_bh(&x25_list_lock);
198*4882a593Smuzhiyun sk_del_node_init(sk);
199*4882a593Smuzhiyun write_unlock_bh(&x25_list_lock);
200*4882a593Smuzhiyun }
201*4882a593Smuzhiyun
202*4882a593Smuzhiyun /*
203*4882a593Smuzhiyun * Kill all bound sockets on a dropped device.
204*4882a593Smuzhiyun */
x25_kill_by_device(struct net_device * dev)205*4882a593Smuzhiyun static void x25_kill_by_device(struct net_device *dev)
206*4882a593Smuzhiyun {
207*4882a593Smuzhiyun struct sock *s;
208*4882a593Smuzhiyun
209*4882a593Smuzhiyun write_lock_bh(&x25_list_lock);
210*4882a593Smuzhiyun
211*4882a593Smuzhiyun sk_for_each(s, &x25_list)
212*4882a593Smuzhiyun if (x25_sk(s)->neighbour && x25_sk(s)->neighbour->dev == dev)
213*4882a593Smuzhiyun x25_disconnect(s, ENETUNREACH, 0, 0);
214*4882a593Smuzhiyun
215*4882a593Smuzhiyun write_unlock_bh(&x25_list_lock);
216*4882a593Smuzhiyun }
217*4882a593Smuzhiyun
218*4882a593Smuzhiyun /*
219*4882a593Smuzhiyun * Handle device status changes.
220*4882a593Smuzhiyun */
x25_device_event(struct notifier_block * this,unsigned long event,void * ptr)221*4882a593Smuzhiyun static int x25_device_event(struct notifier_block *this, unsigned long event,
222*4882a593Smuzhiyun void *ptr)
223*4882a593Smuzhiyun {
224*4882a593Smuzhiyun struct net_device *dev = netdev_notifier_info_to_dev(ptr);
225*4882a593Smuzhiyun struct x25_neigh *nb;
226*4882a593Smuzhiyun
227*4882a593Smuzhiyun if (!net_eq(dev_net(dev), &init_net))
228*4882a593Smuzhiyun return NOTIFY_DONE;
229*4882a593Smuzhiyun
230*4882a593Smuzhiyun if (dev->type == ARPHRD_X25
231*4882a593Smuzhiyun #if IS_ENABLED(CONFIG_LLC)
232*4882a593Smuzhiyun || dev->type == ARPHRD_ETHER
233*4882a593Smuzhiyun #endif
234*4882a593Smuzhiyun ) {
235*4882a593Smuzhiyun switch (event) {
236*4882a593Smuzhiyun case NETDEV_UP:
237*4882a593Smuzhiyun x25_link_device_up(dev);
238*4882a593Smuzhiyun break;
239*4882a593Smuzhiyun case NETDEV_GOING_DOWN:
240*4882a593Smuzhiyun nb = x25_get_neigh(dev);
241*4882a593Smuzhiyun if (nb) {
242*4882a593Smuzhiyun x25_terminate_link(nb);
243*4882a593Smuzhiyun x25_neigh_put(nb);
244*4882a593Smuzhiyun }
245*4882a593Smuzhiyun break;
246*4882a593Smuzhiyun case NETDEV_DOWN:
247*4882a593Smuzhiyun x25_kill_by_device(dev);
248*4882a593Smuzhiyun x25_route_device_down(dev);
249*4882a593Smuzhiyun x25_link_device_down(dev);
250*4882a593Smuzhiyun break;
251*4882a593Smuzhiyun }
252*4882a593Smuzhiyun }
253*4882a593Smuzhiyun
254*4882a593Smuzhiyun return NOTIFY_DONE;
255*4882a593Smuzhiyun }
256*4882a593Smuzhiyun
257*4882a593Smuzhiyun /*
258*4882a593Smuzhiyun * Add a socket to the bound sockets list.
259*4882a593Smuzhiyun */
x25_insert_socket(struct sock * sk)260*4882a593Smuzhiyun static void x25_insert_socket(struct sock *sk)
261*4882a593Smuzhiyun {
262*4882a593Smuzhiyun write_lock_bh(&x25_list_lock);
263*4882a593Smuzhiyun sk_add_node(sk, &x25_list);
264*4882a593Smuzhiyun write_unlock_bh(&x25_list_lock);
265*4882a593Smuzhiyun }
266*4882a593Smuzhiyun
267*4882a593Smuzhiyun /*
268*4882a593Smuzhiyun * Find a socket that wants to accept the Call Request we just
269*4882a593Smuzhiyun * received. Check the full list for an address/cud match.
270*4882a593Smuzhiyun * If no cuds match return the next_best thing, an address match.
271*4882a593Smuzhiyun * Note: if a listening socket has cud set it must only get calls
272*4882a593Smuzhiyun * with matching cud.
273*4882a593Smuzhiyun */
x25_find_listener(struct x25_address * addr,struct sk_buff * skb)274*4882a593Smuzhiyun static struct sock *x25_find_listener(struct x25_address *addr,
275*4882a593Smuzhiyun struct sk_buff *skb)
276*4882a593Smuzhiyun {
277*4882a593Smuzhiyun struct sock *s;
278*4882a593Smuzhiyun struct sock *next_best;
279*4882a593Smuzhiyun
280*4882a593Smuzhiyun read_lock_bh(&x25_list_lock);
281*4882a593Smuzhiyun next_best = NULL;
282*4882a593Smuzhiyun
283*4882a593Smuzhiyun sk_for_each(s, &x25_list)
284*4882a593Smuzhiyun if ((!strcmp(addr->x25_addr,
285*4882a593Smuzhiyun x25_sk(s)->source_addr.x25_addr) ||
286*4882a593Smuzhiyun !strcmp(x25_sk(s)->source_addr.x25_addr,
287*4882a593Smuzhiyun null_x25_address.x25_addr)) &&
288*4882a593Smuzhiyun s->sk_state == TCP_LISTEN) {
289*4882a593Smuzhiyun /*
290*4882a593Smuzhiyun * Found a listening socket, now check the incoming
291*4882a593Smuzhiyun * call user data vs this sockets call user data
292*4882a593Smuzhiyun */
293*4882a593Smuzhiyun if (x25_sk(s)->cudmatchlength > 0 &&
294*4882a593Smuzhiyun skb->len >= x25_sk(s)->cudmatchlength) {
295*4882a593Smuzhiyun if((memcmp(x25_sk(s)->calluserdata.cuddata,
296*4882a593Smuzhiyun skb->data,
297*4882a593Smuzhiyun x25_sk(s)->cudmatchlength)) == 0) {
298*4882a593Smuzhiyun sock_hold(s);
299*4882a593Smuzhiyun goto found;
300*4882a593Smuzhiyun }
301*4882a593Smuzhiyun } else
302*4882a593Smuzhiyun next_best = s;
303*4882a593Smuzhiyun }
304*4882a593Smuzhiyun if (next_best) {
305*4882a593Smuzhiyun s = next_best;
306*4882a593Smuzhiyun sock_hold(s);
307*4882a593Smuzhiyun goto found;
308*4882a593Smuzhiyun }
309*4882a593Smuzhiyun s = NULL;
310*4882a593Smuzhiyun found:
311*4882a593Smuzhiyun read_unlock_bh(&x25_list_lock);
312*4882a593Smuzhiyun return s;
313*4882a593Smuzhiyun }
314*4882a593Smuzhiyun
315*4882a593Smuzhiyun /*
316*4882a593Smuzhiyun * Find a connected X.25 socket given my LCI and neighbour.
317*4882a593Smuzhiyun */
__x25_find_socket(unsigned int lci,struct x25_neigh * nb)318*4882a593Smuzhiyun static struct sock *__x25_find_socket(unsigned int lci, struct x25_neigh *nb)
319*4882a593Smuzhiyun {
320*4882a593Smuzhiyun struct sock *s;
321*4882a593Smuzhiyun
322*4882a593Smuzhiyun sk_for_each(s, &x25_list)
323*4882a593Smuzhiyun if (x25_sk(s)->lci == lci && x25_sk(s)->neighbour == nb) {
324*4882a593Smuzhiyun sock_hold(s);
325*4882a593Smuzhiyun goto found;
326*4882a593Smuzhiyun }
327*4882a593Smuzhiyun s = NULL;
328*4882a593Smuzhiyun found:
329*4882a593Smuzhiyun return s;
330*4882a593Smuzhiyun }
331*4882a593Smuzhiyun
x25_find_socket(unsigned int lci,struct x25_neigh * nb)332*4882a593Smuzhiyun struct sock *x25_find_socket(unsigned int lci, struct x25_neigh *nb)
333*4882a593Smuzhiyun {
334*4882a593Smuzhiyun struct sock *s;
335*4882a593Smuzhiyun
336*4882a593Smuzhiyun read_lock_bh(&x25_list_lock);
337*4882a593Smuzhiyun s = __x25_find_socket(lci, nb);
338*4882a593Smuzhiyun read_unlock_bh(&x25_list_lock);
339*4882a593Smuzhiyun return s;
340*4882a593Smuzhiyun }
341*4882a593Smuzhiyun
342*4882a593Smuzhiyun /*
343*4882a593Smuzhiyun * Find a unique LCI for a given device.
344*4882a593Smuzhiyun */
x25_new_lci(struct x25_neigh * nb)345*4882a593Smuzhiyun static unsigned int x25_new_lci(struct x25_neigh *nb)
346*4882a593Smuzhiyun {
347*4882a593Smuzhiyun unsigned int lci = 1;
348*4882a593Smuzhiyun struct sock *sk;
349*4882a593Smuzhiyun
350*4882a593Smuzhiyun while ((sk = x25_find_socket(lci, nb)) != NULL) {
351*4882a593Smuzhiyun sock_put(sk);
352*4882a593Smuzhiyun if (++lci == 4096) {
353*4882a593Smuzhiyun lci = 0;
354*4882a593Smuzhiyun break;
355*4882a593Smuzhiyun }
356*4882a593Smuzhiyun cond_resched();
357*4882a593Smuzhiyun }
358*4882a593Smuzhiyun
359*4882a593Smuzhiyun return lci;
360*4882a593Smuzhiyun }
361*4882a593Smuzhiyun
362*4882a593Smuzhiyun /*
363*4882a593Smuzhiyun * Deferred destroy.
364*4882a593Smuzhiyun */
365*4882a593Smuzhiyun static void __x25_destroy_socket(struct sock *);
366*4882a593Smuzhiyun
367*4882a593Smuzhiyun /*
368*4882a593Smuzhiyun * handler for deferred kills.
369*4882a593Smuzhiyun */
x25_destroy_timer(struct timer_list * t)370*4882a593Smuzhiyun static void x25_destroy_timer(struct timer_list *t)
371*4882a593Smuzhiyun {
372*4882a593Smuzhiyun struct sock *sk = from_timer(sk, t, sk_timer);
373*4882a593Smuzhiyun
374*4882a593Smuzhiyun x25_destroy_socket_from_timer(sk);
375*4882a593Smuzhiyun }
376*4882a593Smuzhiyun
377*4882a593Smuzhiyun /*
378*4882a593Smuzhiyun * This is called from user mode and the timers. Thus it protects itself
379*4882a593Smuzhiyun * against interrupt users but doesn't worry about being called during
380*4882a593Smuzhiyun * work. Once it is removed from the queue no interrupt or bottom half
381*4882a593Smuzhiyun * will touch it and we are (fairly 8-) ) safe.
382*4882a593Smuzhiyun * Not static as it's used by the timer
383*4882a593Smuzhiyun */
__x25_destroy_socket(struct sock * sk)384*4882a593Smuzhiyun static void __x25_destroy_socket(struct sock *sk)
385*4882a593Smuzhiyun {
386*4882a593Smuzhiyun struct sk_buff *skb;
387*4882a593Smuzhiyun
388*4882a593Smuzhiyun x25_stop_heartbeat(sk);
389*4882a593Smuzhiyun x25_stop_timer(sk);
390*4882a593Smuzhiyun
391*4882a593Smuzhiyun x25_remove_socket(sk);
392*4882a593Smuzhiyun x25_clear_queues(sk); /* Flush the queues */
393*4882a593Smuzhiyun
394*4882a593Smuzhiyun while ((skb = skb_dequeue(&sk->sk_receive_queue)) != NULL) {
395*4882a593Smuzhiyun if (skb->sk != sk) { /* A pending connection */
396*4882a593Smuzhiyun /*
397*4882a593Smuzhiyun * Queue the unaccepted socket for death
398*4882a593Smuzhiyun */
399*4882a593Smuzhiyun skb->sk->sk_state = TCP_LISTEN;
400*4882a593Smuzhiyun sock_set_flag(skb->sk, SOCK_DEAD);
401*4882a593Smuzhiyun x25_start_heartbeat(skb->sk);
402*4882a593Smuzhiyun x25_sk(skb->sk)->state = X25_STATE_0;
403*4882a593Smuzhiyun }
404*4882a593Smuzhiyun
405*4882a593Smuzhiyun kfree_skb(skb);
406*4882a593Smuzhiyun }
407*4882a593Smuzhiyun
408*4882a593Smuzhiyun if (sk_has_allocations(sk)) {
409*4882a593Smuzhiyun /* Defer: outstanding buffers */
410*4882a593Smuzhiyun sk->sk_timer.expires = jiffies + 10 * HZ;
411*4882a593Smuzhiyun sk->sk_timer.function = x25_destroy_timer;
412*4882a593Smuzhiyun add_timer(&sk->sk_timer);
413*4882a593Smuzhiyun } else {
414*4882a593Smuzhiyun /* drop last reference so sock_put will free */
415*4882a593Smuzhiyun __sock_put(sk);
416*4882a593Smuzhiyun }
417*4882a593Smuzhiyun }
418*4882a593Smuzhiyun
x25_destroy_socket_from_timer(struct sock * sk)419*4882a593Smuzhiyun void x25_destroy_socket_from_timer(struct sock *sk)
420*4882a593Smuzhiyun {
421*4882a593Smuzhiyun sock_hold(sk);
422*4882a593Smuzhiyun bh_lock_sock(sk);
423*4882a593Smuzhiyun __x25_destroy_socket(sk);
424*4882a593Smuzhiyun bh_unlock_sock(sk);
425*4882a593Smuzhiyun sock_put(sk);
426*4882a593Smuzhiyun }
427*4882a593Smuzhiyun
428*4882a593Smuzhiyun /*
429*4882a593Smuzhiyun * Handling for system calls applied via the various interfaces to a
430*4882a593Smuzhiyun * X.25 socket object.
431*4882a593Smuzhiyun */
432*4882a593Smuzhiyun
x25_setsockopt(struct socket * sock,int level,int optname,sockptr_t optval,unsigned int optlen)433*4882a593Smuzhiyun static int x25_setsockopt(struct socket *sock, int level, int optname,
434*4882a593Smuzhiyun sockptr_t optval, unsigned int optlen)
435*4882a593Smuzhiyun {
436*4882a593Smuzhiyun int opt;
437*4882a593Smuzhiyun struct sock *sk = sock->sk;
438*4882a593Smuzhiyun int rc = -ENOPROTOOPT;
439*4882a593Smuzhiyun
440*4882a593Smuzhiyun if (level != SOL_X25 || optname != X25_QBITINCL)
441*4882a593Smuzhiyun goto out;
442*4882a593Smuzhiyun
443*4882a593Smuzhiyun rc = -EINVAL;
444*4882a593Smuzhiyun if (optlen < sizeof(int))
445*4882a593Smuzhiyun goto out;
446*4882a593Smuzhiyun
447*4882a593Smuzhiyun rc = -EFAULT;
448*4882a593Smuzhiyun if (copy_from_sockptr(&opt, optval, sizeof(int)))
449*4882a593Smuzhiyun goto out;
450*4882a593Smuzhiyun
451*4882a593Smuzhiyun if (opt)
452*4882a593Smuzhiyun set_bit(X25_Q_BIT_FLAG, &x25_sk(sk)->flags);
453*4882a593Smuzhiyun else
454*4882a593Smuzhiyun clear_bit(X25_Q_BIT_FLAG, &x25_sk(sk)->flags);
455*4882a593Smuzhiyun rc = 0;
456*4882a593Smuzhiyun out:
457*4882a593Smuzhiyun return rc;
458*4882a593Smuzhiyun }
459*4882a593Smuzhiyun
x25_getsockopt(struct socket * sock,int level,int optname,char __user * optval,int __user * optlen)460*4882a593Smuzhiyun static int x25_getsockopt(struct socket *sock, int level, int optname,
461*4882a593Smuzhiyun char __user *optval, int __user *optlen)
462*4882a593Smuzhiyun {
463*4882a593Smuzhiyun struct sock *sk = sock->sk;
464*4882a593Smuzhiyun int val, len, rc = -ENOPROTOOPT;
465*4882a593Smuzhiyun
466*4882a593Smuzhiyun if (level != SOL_X25 || optname != X25_QBITINCL)
467*4882a593Smuzhiyun goto out;
468*4882a593Smuzhiyun
469*4882a593Smuzhiyun rc = -EFAULT;
470*4882a593Smuzhiyun if (get_user(len, optlen))
471*4882a593Smuzhiyun goto out;
472*4882a593Smuzhiyun
473*4882a593Smuzhiyun len = min_t(unsigned int, len, sizeof(int));
474*4882a593Smuzhiyun
475*4882a593Smuzhiyun rc = -EINVAL;
476*4882a593Smuzhiyun if (len < 0)
477*4882a593Smuzhiyun goto out;
478*4882a593Smuzhiyun
479*4882a593Smuzhiyun rc = -EFAULT;
480*4882a593Smuzhiyun if (put_user(len, optlen))
481*4882a593Smuzhiyun goto out;
482*4882a593Smuzhiyun
483*4882a593Smuzhiyun val = test_bit(X25_Q_BIT_FLAG, &x25_sk(sk)->flags);
484*4882a593Smuzhiyun rc = copy_to_user(optval, &val, len) ? -EFAULT : 0;
485*4882a593Smuzhiyun out:
486*4882a593Smuzhiyun return rc;
487*4882a593Smuzhiyun }
488*4882a593Smuzhiyun
x25_listen(struct socket * sock,int backlog)489*4882a593Smuzhiyun static int x25_listen(struct socket *sock, int backlog)
490*4882a593Smuzhiyun {
491*4882a593Smuzhiyun struct sock *sk = sock->sk;
492*4882a593Smuzhiyun int rc = -EOPNOTSUPP;
493*4882a593Smuzhiyun
494*4882a593Smuzhiyun lock_sock(sk);
495*4882a593Smuzhiyun if (sk->sk_state != TCP_LISTEN) {
496*4882a593Smuzhiyun memset(&x25_sk(sk)->dest_addr, 0, X25_ADDR_LEN);
497*4882a593Smuzhiyun sk->sk_max_ack_backlog = backlog;
498*4882a593Smuzhiyun sk->sk_state = TCP_LISTEN;
499*4882a593Smuzhiyun rc = 0;
500*4882a593Smuzhiyun }
501*4882a593Smuzhiyun release_sock(sk);
502*4882a593Smuzhiyun
503*4882a593Smuzhiyun return rc;
504*4882a593Smuzhiyun }
505*4882a593Smuzhiyun
506*4882a593Smuzhiyun static struct proto x25_proto = {
507*4882a593Smuzhiyun .name = "X25",
508*4882a593Smuzhiyun .owner = THIS_MODULE,
509*4882a593Smuzhiyun .obj_size = sizeof(struct x25_sock),
510*4882a593Smuzhiyun };
511*4882a593Smuzhiyun
x25_alloc_socket(struct net * net,int kern)512*4882a593Smuzhiyun static struct sock *x25_alloc_socket(struct net *net, int kern)
513*4882a593Smuzhiyun {
514*4882a593Smuzhiyun struct x25_sock *x25;
515*4882a593Smuzhiyun struct sock *sk = sk_alloc(net, AF_X25, GFP_ATOMIC, &x25_proto, kern);
516*4882a593Smuzhiyun
517*4882a593Smuzhiyun if (!sk)
518*4882a593Smuzhiyun goto out;
519*4882a593Smuzhiyun
520*4882a593Smuzhiyun sock_init_data(NULL, sk);
521*4882a593Smuzhiyun
522*4882a593Smuzhiyun x25 = x25_sk(sk);
523*4882a593Smuzhiyun skb_queue_head_init(&x25->ack_queue);
524*4882a593Smuzhiyun skb_queue_head_init(&x25->fragment_queue);
525*4882a593Smuzhiyun skb_queue_head_init(&x25->interrupt_in_queue);
526*4882a593Smuzhiyun skb_queue_head_init(&x25->interrupt_out_queue);
527*4882a593Smuzhiyun out:
528*4882a593Smuzhiyun return sk;
529*4882a593Smuzhiyun }
530*4882a593Smuzhiyun
x25_create(struct net * net,struct socket * sock,int protocol,int kern)531*4882a593Smuzhiyun static int x25_create(struct net *net, struct socket *sock, int protocol,
532*4882a593Smuzhiyun int kern)
533*4882a593Smuzhiyun {
534*4882a593Smuzhiyun struct sock *sk;
535*4882a593Smuzhiyun struct x25_sock *x25;
536*4882a593Smuzhiyun int rc = -EAFNOSUPPORT;
537*4882a593Smuzhiyun
538*4882a593Smuzhiyun if (!net_eq(net, &init_net))
539*4882a593Smuzhiyun goto out;
540*4882a593Smuzhiyun
541*4882a593Smuzhiyun rc = -ESOCKTNOSUPPORT;
542*4882a593Smuzhiyun if (sock->type != SOCK_SEQPACKET)
543*4882a593Smuzhiyun goto out;
544*4882a593Smuzhiyun
545*4882a593Smuzhiyun rc = -EINVAL;
546*4882a593Smuzhiyun if (protocol)
547*4882a593Smuzhiyun goto out;
548*4882a593Smuzhiyun
549*4882a593Smuzhiyun rc = -ENOMEM;
550*4882a593Smuzhiyun if ((sk = x25_alloc_socket(net, kern)) == NULL)
551*4882a593Smuzhiyun goto out;
552*4882a593Smuzhiyun
553*4882a593Smuzhiyun x25 = x25_sk(sk);
554*4882a593Smuzhiyun
555*4882a593Smuzhiyun sock_init_data(sock, sk);
556*4882a593Smuzhiyun
557*4882a593Smuzhiyun x25_init_timers(sk);
558*4882a593Smuzhiyun
559*4882a593Smuzhiyun sock->ops = &x25_proto_ops;
560*4882a593Smuzhiyun sk->sk_protocol = protocol;
561*4882a593Smuzhiyun sk->sk_backlog_rcv = x25_backlog_rcv;
562*4882a593Smuzhiyun
563*4882a593Smuzhiyun x25->t21 = sysctl_x25_call_request_timeout;
564*4882a593Smuzhiyun x25->t22 = sysctl_x25_reset_request_timeout;
565*4882a593Smuzhiyun x25->t23 = sysctl_x25_clear_request_timeout;
566*4882a593Smuzhiyun x25->t2 = sysctl_x25_ack_holdback_timeout;
567*4882a593Smuzhiyun x25->state = X25_STATE_0;
568*4882a593Smuzhiyun x25->cudmatchlength = 0;
569*4882a593Smuzhiyun set_bit(X25_ACCPT_APPRV_FLAG, &x25->flags); /* normally no cud */
570*4882a593Smuzhiyun /* on call accept */
571*4882a593Smuzhiyun
572*4882a593Smuzhiyun x25->facilities.winsize_in = X25_DEFAULT_WINDOW_SIZE;
573*4882a593Smuzhiyun x25->facilities.winsize_out = X25_DEFAULT_WINDOW_SIZE;
574*4882a593Smuzhiyun x25->facilities.pacsize_in = X25_DEFAULT_PACKET_SIZE;
575*4882a593Smuzhiyun x25->facilities.pacsize_out = X25_DEFAULT_PACKET_SIZE;
576*4882a593Smuzhiyun x25->facilities.throughput = 0; /* by default don't negotiate
577*4882a593Smuzhiyun throughput */
578*4882a593Smuzhiyun x25->facilities.reverse = X25_DEFAULT_REVERSE;
579*4882a593Smuzhiyun x25->dte_facilities.calling_len = 0;
580*4882a593Smuzhiyun x25->dte_facilities.called_len = 0;
581*4882a593Smuzhiyun memset(x25->dte_facilities.called_ae, '\0',
582*4882a593Smuzhiyun sizeof(x25->dte_facilities.called_ae));
583*4882a593Smuzhiyun memset(x25->dte_facilities.calling_ae, '\0',
584*4882a593Smuzhiyun sizeof(x25->dte_facilities.calling_ae));
585*4882a593Smuzhiyun
586*4882a593Smuzhiyun rc = 0;
587*4882a593Smuzhiyun out:
588*4882a593Smuzhiyun return rc;
589*4882a593Smuzhiyun }
590*4882a593Smuzhiyun
x25_make_new(struct sock * osk)591*4882a593Smuzhiyun static struct sock *x25_make_new(struct sock *osk)
592*4882a593Smuzhiyun {
593*4882a593Smuzhiyun struct sock *sk = NULL;
594*4882a593Smuzhiyun struct x25_sock *x25, *ox25;
595*4882a593Smuzhiyun
596*4882a593Smuzhiyun if (osk->sk_type != SOCK_SEQPACKET)
597*4882a593Smuzhiyun goto out;
598*4882a593Smuzhiyun
599*4882a593Smuzhiyun if ((sk = x25_alloc_socket(sock_net(osk), 0)) == NULL)
600*4882a593Smuzhiyun goto out;
601*4882a593Smuzhiyun
602*4882a593Smuzhiyun x25 = x25_sk(sk);
603*4882a593Smuzhiyun
604*4882a593Smuzhiyun sk->sk_type = osk->sk_type;
605*4882a593Smuzhiyun sk->sk_priority = osk->sk_priority;
606*4882a593Smuzhiyun sk->sk_protocol = osk->sk_protocol;
607*4882a593Smuzhiyun sk->sk_rcvbuf = osk->sk_rcvbuf;
608*4882a593Smuzhiyun sk->sk_sndbuf = osk->sk_sndbuf;
609*4882a593Smuzhiyun sk->sk_state = TCP_ESTABLISHED;
610*4882a593Smuzhiyun sk->sk_backlog_rcv = osk->sk_backlog_rcv;
611*4882a593Smuzhiyun sock_copy_flags(sk, osk);
612*4882a593Smuzhiyun
613*4882a593Smuzhiyun ox25 = x25_sk(osk);
614*4882a593Smuzhiyun x25->t21 = ox25->t21;
615*4882a593Smuzhiyun x25->t22 = ox25->t22;
616*4882a593Smuzhiyun x25->t23 = ox25->t23;
617*4882a593Smuzhiyun x25->t2 = ox25->t2;
618*4882a593Smuzhiyun x25->flags = ox25->flags;
619*4882a593Smuzhiyun x25->facilities = ox25->facilities;
620*4882a593Smuzhiyun x25->dte_facilities = ox25->dte_facilities;
621*4882a593Smuzhiyun x25->cudmatchlength = ox25->cudmatchlength;
622*4882a593Smuzhiyun
623*4882a593Smuzhiyun clear_bit(X25_INTERRUPT_FLAG, &x25->flags);
624*4882a593Smuzhiyun x25_init_timers(sk);
625*4882a593Smuzhiyun out:
626*4882a593Smuzhiyun return sk;
627*4882a593Smuzhiyun }
628*4882a593Smuzhiyun
x25_release(struct socket * sock)629*4882a593Smuzhiyun static int x25_release(struct socket *sock)
630*4882a593Smuzhiyun {
631*4882a593Smuzhiyun struct sock *sk = sock->sk;
632*4882a593Smuzhiyun struct x25_sock *x25;
633*4882a593Smuzhiyun
634*4882a593Smuzhiyun if (!sk)
635*4882a593Smuzhiyun return 0;
636*4882a593Smuzhiyun
637*4882a593Smuzhiyun x25 = x25_sk(sk);
638*4882a593Smuzhiyun
639*4882a593Smuzhiyun sock_hold(sk);
640*4882a593Smuzhiyun lock_sock(sk);
641*4882a593Smuzhiyun switch (x25->state) {
642*4882a593Smuzhiyun
643*4882a593Smuzhiyun case X25_STATE_0:
644*4882a593Smuzhiyun case X25_STATE_2:
645*4882a593Smuzhiyun x25_disconnect(sk, 0, 0, 0);
646*4882a593Smuzhiyun __x25_destroy_socket(sk);
647*4882a593Smuzhiyun goto out;
648*4882a593Smuzhiyun
649*4882a593Smuzhiyun case X25_STATE_1:
650*4882a593Smuzhiyun case X25_STATE_3:
651*4882a593Smuzhiyun case X25_STATE_4:
652*4882a593Smuzhiyun x25_clear_queues(sk);
653*4882a593Smuzhiyun x25_write_internal(sk, X25_CLEAR_REQUEST);
654*4882a593Smuzhiyun x25_start_t23timer(sk);
655*4882a593Smuzhiyun x25->state = X25_STATE_2;
656*4882a593Smuzhiyun sk->sk_state = TCP_CLOSE;
657*4882a593Smuzhiyun sk->sk_shutdown |= SEND_SHUTDOWN;
658*4882a593Smuzhiyun sk->sk_state_change(sk);
659*4882a593Smuzhiyun sock_set_flag(sk, SOCK_DEAD);
660*4882a593Smuzhiyun sock_set_flag(sk, SOCK_DESTROY);
661*4882a593Smuzhiyun break;
662*4882a593Smuzhiyun
663*4882a593Smuzhiyun case X25_STATE_5:
664*4882a593Smuzhiyun x25_write_internal(sk, X25_CLEAR_REQUEST);
665*4882a593Smuzhiyun x25_disconnect(sk, 0, 0, 0);
666*4882a593Smuzhiyun __x25_destroy_socket(sk);
667*4882a593Smuzhiyun goto out;
668*4882a593Smuzhiyun }
669*4882a593Smuzhiyun
670*4882a593Smuzhiyun sock_orphan(sk);
671*4882a593Smuzhiyun out:
672*4882a593Smuzhiyun release_sock(sk);
673*4882a593Smuzhiyun sock_put(sk);
674*4882a593Smuzhiyun return 0;
675*4882a593Smuzhiyun }
676*4882a593Smuzhiyun
x25_bind(struct socket * sock,struct sockaddr * uaddr,int addr_len)677*4882a593Smuzhiyun static int x25_bind(struct socket *sock, struct sockaddr *uaddr, int addr_len)
678*4882a593Smuzhiyun {
679*4882a593Smuzhiyun struct sock *sk = sock->sk;
680*4882a593Smuzhiyun struct sockaddr_x25 *addr = (struct sockaddr_x25 *)uaddr;
681*4882a593Smuzhiyun int len, i, rc = 0;
682*4882a593Smuzhiyun
683*4882a593Smuzhiyun if (addr_len != sizeof(struct sockaddr_x25) ||
684*4882a593Smuzhiyun addr->sx25_family != AF_X25 ||
685*4882a593Smuzhiyun strnlen(addr->sx25_addr.x25_addr, X25_ADDR_LEN) == X25_ADDR_LEN) {
686*4882a593Smuzhiyun rc = -EINVAL;
687*4882a593Smuzhiyun goto out;
688*4882a593Smuzhiyun }
689*4882a593Smuzhiyun
690*4882a593Smuzhiyun /* check for the null_x25_address */
691*4882a593Smuzhiyun if (strcmp(addr->sx25_addr.x25_addr, null_x25_address.x25_addr)) {
692*4882a593Smuzhiyun
693*4882a593Smuzhiyun len = strlen(addr->sx25_addr.x25_addr);
694*4882a593Smuzhiyun for (i = 0; i < len; i++) {
695*4882a593Smuzhiyun if (!isdigit(addr->sx25_addr.x25_addr[i])) {
696*4882a593Smuzhiyun rc = -EINVAL;
697*4882a593Smuzhiyun goto out;
698*4882a593Smuzhiyun }
699*4882a593Smuzhiyun }
700*4882a593Smuzhiyun }
701*4882a593Smuzhiyun
702*4882a593Smuzhiyun lock_sock(sk);
703*4882a593Smuzhiyun if (sock_flag(sk, SOCK_ZAPPED)) {
704*4882a593Smuzhiyun x25_sk(sk)->source_addr = addr->sx25_addr;
705*4882a593Smuzhiyun x25_insert_socket(sk);
706*4882a593Smuzhiyun sock_reset_flag(sk, SOCK_ZAPPED);
707*4882a593Smuzhiyun } else {
708*4882a593Smuzhiyun rc = -EINVAL;
709*4882a593Smuzhiyun }
710*4882a593Smuzhiyun release_sock(sk);
711*4882a593Smuzhiyun SOCK_DEBUG(sk, "x25_bind: socket is bound\n");
712*4882a593Smuzhiyun out:
713*4882a593Smuzhiyun return rc;
714*4882a593Smuzhiyun }
715*4882a593Smuzhiyun
x25_wait_for_connection_establishment(struct sock * sk)716*4882a593Smuzhiyun static int x25_wait_for_connection_establishment(struct sock *sk)
717*4882a593Smuzhiyun {
718*4882a593Smuzhiyun DECLARE_WAITQUEUE(wait, current);
719*4882a593Smuzhiyun int rc;
720*4882a593Smuzhiyun
721*4882a593Smuzhiyun add_wait_queue_exclusive(sk_sleep(sk), &wait);
722*4882a593Smuzhiyun for (;;) {
723*4882a593Smuzhiyun __set_current_state(TASK_INTERRUPTIBLE);
724*4882a593Smuzhiyun rc = -ERESTARTSYS;
725*4882a593Smuzhiyun if (signal_pending(current))
726*4882a593Smuzhiyun break;
727*4882a593Smuzhiyun rc = sock_error(sk);
728*4882a593Smuzhiyun if (rc) {
729*4882a593Smuzhiyun sk->sk_socket->state = SS_UNCONNECTED;
730*4882a593Smuzhiyun break;
731*4882a593Smuzhiyun }
732*4882a593Smuzhiyun rc = 0;
733*4882a593Smuzhiyun if (sk->sk_state != TCP_ESTABLISHED) {
734*4882a593Smuzhiyun release_sock(sk);
735*4882a593Smuzhiyun schedule();
736*4882a593Smuzhiyun lock_sock(sk);
737*4882a593Smuzhiyun } else
738*4882a593Smuzhiyun break;
739*4882a593Smuzhiyun }
740*4882a593Smuzhiyun __set_current_state(TASK_RUNNING);
741*4882a593Smuzhiyun remove_wait_queue(sk_sleep(sk), &wait);
742*4882a593Smuzhiyun return rc;
743*4882a593Smuzhiyun }
744*4882a593Smuzhiyun
x25_connect(struct socket * sock,struct sockaddr * uaddr,int addr_len,int flags)745*4882a593Smuzhiyun static int x25_connect(struct socket *sock, struct sockaddr *uaddr,
746*4882a593Smuzhiyun int addr_len, int flags)
747*4882a593Smuzhiyun {
748*4882a593Smuzhiyun struct sock *sk = sock->sk;
749*4882a593Smuzhiyun struct x25_sock *x25 = x25_sk(sk);
750*4882a593Smuzhiyun struct sockaddr_x25 *addr = (struct sockaddr_x25 *)uaddr;
751*4882a593Smuzhiyun struct x25_route *rt;
752*4882a593Smuzhiyun int rc = 0;
753*4882a593Smuzhiyun
754*4882a593Smuzhiyun lock_sock(sk);
755*4882a593Smuzhiyun if (sk->sk_state == TCP_ESTABLISHED && sock->state == SS_CONNECTING) {
756*4882a593Smuzhiyun sock->state = SS_CONNECTED;
757*4882a593Smuzhiyun goto out; /* Connect completed during a ERESTARTSYS event */
758*4882a593Smuzhiyun }
759*4882a593Smuzhiyun
760*4882a593Smuzhiyun rc = -ECONNREFUSED;
761*4882a593Smuzhiyun if (sk->sk_state == TCP_CLOSE && sock->state == SS_CONNECTING) {
762*4882a593Smuzhiyun sock->state = SS_UNCONNECTED;
763*4882a593Smuzhiyun goto out;
764*4882a593Smuzhiyun }
765*4882a593Smuzhiyun
766*4882a593Smuzhiyun rc = -EISCONN; /* No reconnect on a seqpacket socket */
767*4882a593Smuzhiyun if (sk->sk_state == TCP_ESTABLISHED)
768*4882a593Smuzhiyun goto out;
769*4882a593Smuzhiyun
770*4882a593Smuzhiyun rc = -EALREADY; /* Do nothing if call is already in progress */
771*4882a593Smuzhiyun if (sk->sk_state == TCP_SYN_SENT)
772*4882a593Smuzhiyun goto out;
773*4882a593Smuzhiyun
774*4882a593Smuzhiyun sk->sk_state = TCP_CLOSE;
775*4882a593Smuzhiyun sock->state = SS_UNCONNECTED;
776*4882a593Smuzhiyun
777*4882a593Smuzhiyun rc = -EINVAL;
778*4882a593Smuzhiyun if (addr_len != sizeof(struct sockaddr_x25) ||
779*4882a593Smuzhiyun addr->sx25_family != AF_X25 ||
780*4882a593Smuzhiyun strnlen(addr->sx25_addr.x25_addr, X25_ADDR_LEN) == X25_ADDR_LEN)
781*4882a593Smuzhiyun goto out;
782*4882a593Smuzhiyun
783*4882a593Smuzhiyun rc = -ENETUNREACH;
784*4882a593Smuzhiyun rt = x25_get_route(&addr->sx25_addr);
785*4882a593Smuzhiyun if (!rt)
786*4882a593Smuzhiyun goto out;
787*4882a593Smuzhiyun
788*4882a593Smuzhiyun x25->neighbour = x25_get_neigh(rt->dev);
789*4882a593Smuzhiyun if (!x25->neighbour)
790*4882a593Smuzhiyun goto out_put_route;
791*4882a593Smuzhiyun
792*4882a593Smuzhiyun x25_limit_facilities(&x25->facilities, x25->neighbour);
793*4882a593Smuzhiyun
794*4882a593Smuzhiyun x25->lci = x25_new_lci(x25->neighbour);
795*4882a593Smuzhiyun if (!x25->lci)
796*4882a593Smuzhiyun goto out_put_neigh;
797*4882a593Smuzhiyun
798*4882a593Smuzhiyun rc = -EINVAL;
799*4882a593Smuzhiyun if (sock_flag(sk, SOCK_ZAPPED)) /* Must bind first - autobinding does not work */
800*4882a593Smuzhiyun goto out_put_neigh;
801*4882a593Smuzhiyun
802*4882a593Smuzhiyun if (!strcmp(x25->source_addr.x25_addr, null_x25_address.x25_addr))
803*4882a593Smuzhiyun memset(&x25->source_addr, '\0', X25_ADDR_LEN);
804*4882a593Smuzhiyun
805*4882a593Smuzhiyun x25->dest_addr = addr->sx25_addr;
806*4882a593Smuzhiyun
807*4882a593Smuzhiyun /* Move to connecting socket, start sending Connect Requests */
808*4882a593Smuzhiyun sock->state = SS_CONNECTING;
809*4882a593Smuzhiyun sk->sk_state = TCP_SYN_SENT;
810*4882a593Smuzhiyun
811*4882a593Smuzhiyun x25->state = X25_STATE_1;
812*4882a593Smuzhiyun
813*4882a593Smuzhiyun x25_write_internal(sk, X25_CALL_REQUEST);
814*4882a593Smuzhiyun
815*4882a593Smuzhiyun x25_start_heartbeat(sk);
816*4882a593Smuzhiyun x25_start_t21timer(sk);
817*4882a593Smuzhiyun
818*4882a593Smuzhiyun /* Now the loop */
819*4882a593Smuzhiyun rc = -EINPROGRESS;
820*4882a593Smuzhiyun if (sk->sk_state != TCP_ESTABLISHED && (flags & O_NONBLOCK))
821*4882a593Smuzhiyun goto out;
822*4882a593Smuzhiyun
823*4882a593Smuzhiyun rc = x25_wait_for_connection_establishment(sk);
824*4882a593Smuzhiyun if (rc)
825*4882a593Smuzhiyun goto out_put_neigh;
826*4882a593Smuzhiyun
827*4882a593Smuzhiyun sock->state = SS_CONNECTED;
828*4882a593Smuzhiyun rc = 0;
829*4882a593Smuzhiyun out_put_neigh:
830*4882a593Smuzhiyun if (rc && x25->neighbour) {
831*4882a593Smuzhiyun read_lock_bh(&x25_list_lock);
832*4882a593Smuzhiyun x25_neigh_put(x25->neighbour);
833*4882a593Smuzhiyun x25->neighbour = NULL;
834*4882a593Smuzhiyun read_unlock_bh(&x25_list_lock);
835*4882a593Smuzhiyun x25->state = X25_STATE_0;
836*4882a593Smuzhiyun }
837*4882a593Smuzhiyun out_put_route:
838*4882a593Smuzhiyun x25_route_put(rt);
839*4882a593Smuzhiyun out:
840*4882a593Smuzhiyun release_sock(sk);
841*4882a593Smuzhiyun return rc;
842*4882a593Smuzhiyun }
843*4882a593Smuzhiyun
x25_wait_for_data(struct sock * sk,long timeout)844*4882a593Smuzhiyun static int x25_wait_for_data(struct sock *sk, long timeout)
845*4882a593Smuzhiyun {
846*4882a593Smuzhiyun DECLARE_WAITQUEUE(wait, current);
847*4882a593Smuzhiyun int rc = 0;
848*4882a593Smuzhiyun
849*4882a593Smuzhiyun add_wait_queue_exclusive(sk_sleep(sk), &wait);
850*4882a593Smuzhiyun for (;;) {
851*4882a593Smuzhiyun __set_current_state(TASK_INTERRUPTIBLE);
852*4882a593Smuzhiyun if (sk->sk_shutdown & RCV_SHUTDOWN)
853*4882a593Smuzhiyun break;
854*4882a593Smuzhiyun rc = -ERESTARTSYS;
855*4882a593Smuzhiyun if (signal_pending(current))
856*4882a593Smuzhiyun break;
857*4882a593Smuzhiyun rc = -EAGAIN;
858*4882a593Smuzhiyun if (!timeout)
859*4882a593Smuzhiyun break;
860*4882a593Smuzhiyun rc = 0;
861*4882a593Smuzhiyun if (skb_queue_empty(&sk->sk_receive_queue)) {
862*4882a593Smuzhiyun release_sock(sk);
863*4882a593Smuzhiyun timeout = schedule_timeout(timeout);
864*4882a593Smuzhiyun lock_sock(sk);
865*4882a593Smuzhiyun } else
866*4882a593Smuzhiyun break;
867*4882a593Smuzhiyun }
868*4882a593Smuzhiyun __set_current_state(TASK_RUNNING);
869*4882a593Smuzhiyun remove_wait_queue(sk_sleep(sk), &wait);
870*4882a593Smuzhiyun return rc;
871*4882a593Smuzhiyun }
872*4882a593Smuzhiyun
x25_accept(struct socket * sock,struct socket * newsock,int flags,bool kern)873*4882a593Smuzhiyun static int x25_accept(struct socket *sock, struct socket *newsock, int flags,
874*4882a593Smuzhiyun bool kern)
875*4882a593Smuzhiyun {
876*4882a593Smuzhiyun struct sock *sk = sock->sk;
877*4882a593Smuzhiyun struct sock *newsk;
878*4882a593Smuzhiyun struct sk_buff *skb;
879*4882a593Smuzhiyun int rc = -EINVAL;
880*4882a593Smuzhiyun
881*4882a593Smuzhiyun if (!sk)
882*4882a593Smuzhiyun goto out;
883*4882a593Smuzhiyun
884*4882a593Smuzhiyun rc = -EOPNOTSUPP;
885*4882a593Smuzhiyun if (sk->sk_type != SOCK_SEQPACKET)
886*4882a593Smuzhiyun goto out;
887*4882a593Smuzhiyun
888*4882a593Smuzhiyun lock_sock(sk);
889*4882a593Smuzhiyun rc = -EINVAL;
890*4882a593Smuzhiyun if (sk->sk_state != TCP_LISTEN)
891*4882a593Smuzhiyun goto out2;
892*4882a593Smuzhiyun
893*4882a593Smuzhiyun rc = x25_wait_for_data(sk, sk->sk_rcvtimeo);
894*4882a593Smuzhiyun if (rc)
895*4882a593Smuzhiyun goto out2;
896*4882a593Smuzhiyun skb = skb_dequeue(&sk->sk_receive_queue);
897*4882a593Smuzhiyun rc = -EINVAL;
898*4882a593Smuzhiyun if (!skb->sk)
899*4882a593Smuzhiyun goto out2;
900*4882a593Smuzhiyun newsk = skb->sk;
901*4882a593Smuzhiyun sock_graft(newsk, newsock);
902*4882a593Smuzhiyun
903*4882a593Smuzhiyun /* Now attach up the new socket */
904*4882a593Smuzhiyun skb->sk = NULL;
905*4882a593Smuzhiyun kfree_skb(skb);
906*4882a593Smuzhiyun sk_acceptq_removed(sk);
907*4882a593Smuzhiyun newsock->state = SS_CONNECTED;
908*4882a593Smuzhiyun rc = 0;
909*4882a593Smuzhiyun out2:
910*4882a593Smuzhiyun release_sock(sk);
911*4882a593Smuzhiyun out:
912*4882a593Smuzhiyun return rc;
913*4882a593Smuzhiyun }
914*4882a593Smuzhiyun
x25_getname(struct socket * sock,struct sockaddr * uaddr,int peer)915*4882a593Smuzhiyun static int x25_getname(struct socket *sock, struct sockaddr *uaddr,
916*4882a593Smuzhiyun int peer)
917*4882a593Smuzhiyun {
918*4882a593Smuzhiyun struct sockaddr_x25 *sx25 = (struct sockaddr_x25 *)uaddr;
919*4882a593Smuzhiyun struct sock *sk = sock->sk;
920*4882a593Smuzhiyun struct x25_sock *x25 = x25_sk(sk);
921*4882a593Smuzhiyun int rc = 0;
922*4882a593Smuzhiyun
923*4882a593Smuzhiyun if (peer) {
924*4882a593Smuzhiyun if (sk->sk_state != TCP_ESTABLISHED) {
925*4882a593Smuzhiyun rc = -ENOTCONN;
926*4882a593Smuzhiyun goto out;
927*4882a593Smuzhiyun }
928*4882a593Smuzhiyun sx25->sx25_addr = x25->dest_addr;
929*4882a593Smuzhiyun } else
930*4882a593Smuzhiyun sx25->sx25_addr = x25->source_addr;
931*4882a593Smuzhiyun
932*4882a593Smuzhiyun sx25->sx25_family = AF_X25;
933*4882a593Smuzhiyun rc = sizeof(*sx25);
934*4882a593Smuzhiyun
935*4882a593Smuzhiyun out:
936*4882a593Smuzhiyun return rc;
937*4882a593Smuzhiyun }
938*4882a593Smuzhiyun
x25_rx_call_request(struct sk_buff * skb,struct x25_neigh * nb,unsigned int lci)939*4882a593Smuzhiyun int x25_rx_call_request(struct sk_buff *skb, struct x25_neigh *nb,
940*4882a593Smuzhiyun unsigned int lci)
941*4882a593Smuzhiyun {
942*4882a593Smuzhiyun struct sock *sk;
943*4882a593Smuzhiyun struct sock *make;
944*4882a593Smuzhiyun struct x25_sock *makex25;
945*4882a593Smuzhiyun struct x25_address source_addr, dest_addr;
946*4882a593Smuzhiyun struct x25_facilities facilities;
947*4882a593Smuzhiyun struct x25_dte_facilities dte_facilities;
948*4882a593Smuzhiyun int len, addr_len, rc;
949*4882a593Smuzhiyun
950*4882a593Smuzhiyun /*
951*4882a593Smuzhiyun * Remove the LCI and frame type.
952*4882a593Smuzhiyun */
953*4882a593Smuzhiyun skb_pull(skb, X25_STD_MIN_LEN);
954*4882a593Smuzhiyun
955*4882a593Smuzhiyun /*
956*4882a593Smuzhiyun * Extract the X.25 addresses and convert them to ASCII strings,
957*4882a593Smuzhiyun * and remove them.
958*4882a593Smuzhiyun *
959*4882a593Smuzhiyun * Address block is mandatory in call request packets
960*4882a593Smuzhiyun */
961*4882a593Smuzhiyun addr_len = x25_parse_address_block(skb, &source_addr, &dest_addr);
962*4882a593Smuzhiyun if (addr_len <= 0)
963*4882a593Smuzhiyun goto out_clear_request;
964*4882a593Smuzhiyun skb_pull(skb, addr_len);
965*4882a593Smuzhiyun
966*4882a593Smuzhiyun /*
967*4882a593Smuzhiyun * Get the length of the facilities, skip past them for the moment
968*4882a593Smuzhiyun * get the call user data because this is needed to determine
969*4882a593Smuzhiyun * the correct listener
970*4882a593Smuzhiyun *
971*4882a593Smuzhiyun * Facilities length is mandatory in call request packets
972*4882a593Smuzhiyun */
973*4882a593Smuzhiyun if (!pskb_may_pull(skb, 1))
974*4882a593Smuzhiyun goto out_clear_request;
975*4882a593Smuzhiyun len = skb->data[0] + 1;
976*4882a593Smuzhiyun if (!pskb_may_pull(skb, len))
977*4882a593Smuzhiyun goto out_clear_request;
978*4882a593Smuzhiyun skb_pull(skb,len);
979*4882a593Smuzhiyun
980*4882a593Smuzhiyun /*
981*4882a593Smuzhiyun * Ensure that the amount of call user data is valid.
982*4882a593Smuzhiyun */
983*4882a593Smuzhiyun if (skb->len > X25_MAX_CUD_LEN)
984*4882a593Smuzhiyun goto out_clear_request;
985*4882a593Smuzhiyun
986*4882a593Smuzhiyun /*
987*4882a593Smuzhiyun * Get all the call user data so it can be used in
988*4882a593Smuzhiyun * x25_find_listener and skb_copy_from_linear_data up ahead.
989*4882a593Smuzhiyun */
990*4882a593Smuzhiyun if (!pskb_may_pull(skb, skb->len))
991*4882a593Smuzhiyun goto out_clear_request;
992*4882a593Smuzhiyun
993*4882a593Smuzhiyun /*
994*4882a593Smuzhiyun * Find a listener for the particular address/cud pair.
995*4882a593Smuzhiyun */
996*4882a593Smuzhiyun sk = x25_find_listener(&source_addr,skb);
997*4882a593Smuzhiyun skb_push(skb,len);
998*4882a593Smuzhiyun
999*4882a593Smuzhiyun if (sk != NULL && sk_acceptq_is_full(sk)) {
1000*4882a593Smuzhiyun goto out_sock_put;
1001*4882a593Smuzhiyun }
1002*4882a593Smuzhiyun
1003*4882a593Smuzhiyun /*
1004*4882a593Smuzhiyun * We dont have any listeners for this incoming call.
1005*4882a593Smuzhiyun * Try forwarding it.
1006*4882a593Smuzhiyun */
1007*4882a593Smuzhiyun if (sk == NULL) {
1008*4882a593Smuzhiyun skb_push(skb, addr_len + X25_STD_MIN_LEN);
1009*4882a593Smuzhiyun if (sysctl_x25_forward &&
1010*4882a593Smuzhiyun x25_forward_call(&dest_addr, nb, skb, lci) > 0)
1011*4882a593Smuzhiyun {
1012*4882a593Smuzhiyun /* Call was forwarded, dont process it any more */
1013*4882a593Smuzhiyun kfree_skb(skb);
1014*4882a593Smuzhiyun rc = 1;
1015*4882a593Smuzhiyun goto out;
1016*4882a593Smuzhiyun } else {
1017*4882a593Smuzhiyun /* No listeners, can't forward, clear the call */
1018*4882a593Smuzhiyun goto out_clear_request;
1019*4882a593Smuzhiyun }
1020*4882a593Smuzhiyun }
1021*4882a593Smuzhiyun
1022*4882a593Smuzhiyun /*
1023*4882a593Smuzhiyun * Try to reach a compromise on the requested facilities.
1024*4882a593Smuzhiyun */
1025*4882a593Smuzhiyun len = x25_negotiate_facilities(skb, sk, &facilities, &dte_facilities);
1026*4882a593Smuzhiyun if (len == -1)
1027*4882a593Smuzhiyun goto out_sock_put;
1028*4882a593Smuzhiyun
1029*4882a593Smuzhiyun /*
1030*4882a593Smuzhiyun * current neighbour/link might impose additional limits
1031*4882a593Smuzhiyun * on certain facilties
1032*4882a593Smuzhiyun */
1033*4882a593Smuzhiyun
1034*4882a593Smuzhiyun x25_limit_facilities(&facilities, nb);
1035*4882a593Smuzhiyun
1036*4882a593Smuzhiyun /*
1037*4882a593Smuzhiyun * Try to create a new socket.
1038*4882a593Smuzhiyun */
1039*4882a593Smuzhiyun make = x25_make_new(sk);
1040*4882a593Smuzhiyun if (!make)
1041*4882a593Smuzhiyun goto out_sock_put;
1042*4882a593Smuzhiyun
1043*4882a593Smuzhiyun /*
1044*4882a593Smuzhiyun * Remove the facilities
1045*4882a593Smuzhiyun */
1046*4882a593Smuzhiyun skb_pull(skb, len);
1047*4882a593Smuzhiyun
1048*4882a593Smuzhiyun skb->sk = make;
1049*4882a593Smuzhiyun make->sk_state = TCP_ESTABLISHED;
1050*4882a593Smuzhiyun
1051*4882a593Smuzhiyun makex25 = x25_sk(make);
1052*4882a593Smuzhiyun makex25->lci = lci;
1053*4882a593Smuzhiyun makex25->dest_addr = dest_addr;
1054*4882a593Smuzhiyun makex25->source_addr = source_addr;
1055*4882a593Smuzhiyun x25_neigh_hold(nb);
1056*4882a593Smuzhiyun makex25->neighbour = nb;
1057*4882a593Smuzhiyun makex25->facilities = facilities;
1058*4882a593Smuzhiyun makex25->dte_facilities= dte_facilities;
1059*4882a593Smuzhiyun makex25->vc_facil_mask = x25_sk(sk)->vc_facil_mask;
1060*4882a593Smuzhiyun /* ensure no reverse facil on accept */
1061*4882a593Smuzhiyun makex25->vc_facil_mask &= ~X25_MASK_REVERSE;
1062*4882a593Smuzhiyun /* ensure no calling address extension on accept */
1063*4882a593Smuzhiyun makex25->vc_facil_mask &= ~X25_MASK_CALLING_AE;
1064*4882a593Smuzhiyun makex25->cudmatchlength = x25_sk(sk)->cudmatchlength;
1065*4882a593Smuzhiyun
1066*4882a593Smuzhiyun /* Normally all calls are accepted immediately */
1067*4882a593Smuzhiyun if (test_bit(X25_ACCPT_APPRV_FLAG, &makex25->flags)) {
1068*4882a593Smuzhiyun x25_write_internal(make, X25_CALL_ACCEPTED);
1069*4882a593Smuzhiyun makex25->state = X25_STATE_3;
1070*4882a593Smuzhiyun } else {
1071*4882a593Smuzhiyun makex25->state = X25_STATE_5;
1072*4882a593Smuzhiyun }
1073*4882a593Smuzhiyun
1074*4882a593Smuzhiyun /*
1075*4882a593Smuzhiyun * Incoming Call User Data.
1076*4882a593Smuzhiyun */
1077*4882a593Smuzhiyun skb_copy_from_linear_data(skb, makex25->calluserdata.cuddata, skb->len);
1078*4882a593Smuzhiyun makex25->calluserdata.cudlength = skb->len;
1079*4882a593Smuzhiyun
1080*4882a593Smuzhiyun sk_acceptq_added(sk);
1081*4882a593Smuzhiyun
1082*4882a593Smuzhiyun x25_insert_socket(make);
1083*4882a593Smuzhiyun
1084*4882a593Smuzhiyun skb_queue_head(&sk->sk_receive_queue, skb);
1085*4882a593Smuzhiyun
1086*4882a593Smuzhiyun x25_start_heartbeat(make);
1087*4882a593Smuzhiyun
1088*4882a593Smuzhiyun if (!sock_flag(sk, SOCK_DEAD))
1089*4882a593Smuzhiyun sk->sk_data_ready(sk);
1090*4882a593Smuzhiyun rc = 1;
1091*4882a593Smuzhiyun sock_put(sk);
1092*4882a593Smuzhiyun out:
1093*4882a593Smuzhiyun return rc;
1094*4882a593Smuzhiyun out_sock_put:
1095*4882a593Smuzhiyun sock_put(sk);
1096*4882a593Smuzhiyun out_clear_request:
1097*4882a593Smuzhiyun rc = 0;
1098*4882a593Smuzhiyun x25_transmit_clear_request(nb, lci, 0x01);
1099*4882a593Smuzhiyun goto out;
1100*4882a593Smuzhiyun }
1101*4882a593Smuzhiyun
x25_sendmsg(struct socket * sock,struct msghdr * msg,size_t len)1102*4882a593Smuzhiyun static int x25_sendmsg(struct socket *sock, struct msghdr *msg, size_t len)
1103*4882a593Smuzhiyun {
1104*4882a593Smuzhiyun struct sock *sk = sock->sk;
1105*4882a593Smuzhiyun struct x25_sock *x25 = x25_sk(sk);
1106*4882a593Smuzhiyun DECLARE_SOCKADDR(struct sockaddr_x25 *, usx25, msg->msg_name);
1107*4882a593Smuzhiyun struct sockaddr_x25 sx25;
1108*4882a593Smuzhiyun struct sk_buff *skb;
1109*4882a593Smuzhiyun unsigned char *asmptr;
1110*4882a593Smuzhiyun int noblock = msg->msg_flags & MSG_DONTWAIT;
1111*4882a593Smuzhiyun size_t size;
1112*4882a593Smuzhiyun int qbit = 0, rc = -EINVAL;
1113*4882a593Smuzhiyun
1114*4882a593Smuzhiyun lock_sock(sk);
1115*4882a593Smuzhiyun if (msg->msg_flags & ~(MSG_DONTWAIT|MSG_OOB|MSG_EOR|MSG_CMSG_COMPAT))
1116*4882a593Smuzhiyun goto out;
1117*4882a593Smuzhiyun
1118*4882a593Smuzhiyun /* we currently don't support segmented records at the user interface */
1119*4882a593Smuzhiyun if (!(msg->msg_flags & (MSG_EOR|MSG_OOB)))
1120*4882a593Smuzhiyun goto out;
1121*4882a593Smuzhiyun
1122*4882a593Smuzhiyun rc = -EADDRNOTAVAIL;
1123*4882a593Smuzhiyun if (sock_flag(sk, SOCK_ZAPPED))
1124*4882a593Smuzhiyun goto out;
1125*4882a593Smuzhiyun
1126*4882a593Smuzhiyun rc = -EPIPE;
1127*4882a593Smuzhiyun if (sk->sk_shutdown & SEND_SHUTDOWN) {
1128*4882a593Smuzhiyun send_sig(SIGPIPE, current, 0);
1129*4882a593Smuzhiyun goto out;
1130*4882a593Smuzhiyun }
1131*4882a593Smuzhiyun
1132*4882a593Smuzhiyun rc = -ENETUNREACH;
1133*4882a593Smuzhiyun if (!x25->neighbour)
1134*4882a593Smuzhiyun goto out;
1135*4882a593Smuzhiyun
1136*4882a593Smuzhiyun if (usx25) {
1137*4882a593Smuzhiyun rc = -EINVAL;
1138*4882a593Smuzhiyun if (msg->msg_namelen < sizeof(sx25))
1139*4882a593Smuzhiyun goto out;
1140*4882a593Smuzhiyun memcpy(&sx25, usx25, sizeof(sx25));
1141*4882a593Smuzhiyun rc = -EISCONN;
1142*4882a593Smuzhiyun if (strcmp(x25->dest_addr.x25_addr, sx25.sx25_addr.x25_addr))
1143*4882a593Smuzhiyun goto out;
1144*4882a593Smuzhiyun rc = -EINVAL;
1145*4882a593Smuzhiyun if (sx25.sx25_family != AF_X25)
1146*4882a593Smuzhiyun goto out;
1147*4882a593Smuzhiyun } else {
1148*4882a593Smuzhiyun /*
1149*4882a593Smuzhiyun * FIXME 1003.1g - if the socket is like this because
1150*4882a593Smuzhiyun * it has become closed (not started closed) we ought
1151*4882a593Smuzhiyun * to SIGPIPE, EPIPE;
1152*4882a593Smuzhiyun */
1153*4882a593Smuzhiyun rc = -ENOTCONN;
1154*4882a593Smuzhiyun if (sk->sk_state != TCP_ESTABLISHED)
1155*4882a593Smuzhiyun goto out;
1156*4882a593Smuzhiyun
1157*4882a593Smuzhiyun sx25.sx25_family = AF_X25;
1158*4882a593Smuzhiyun sx25.sx25_addr = x25->dest_addr;
1159*4882a593Smuzhiyun }
1160*4882a593Smuzhiyun
1161*4882a593Smuzhiyun /* Sanity check the packet size */
1162*4882a593Smuzhiyun if (len > 65535) {
1163*4882a593Smuzhiyun rc = -EMSGSIZE;
1164*4882a593Smuzhiyun goto out;
1165*4882a593Smuzhiyun }
1166*4882a593Smuzhiyun
1167*4882a593Smuzhiyun SOCK_DEBUG(sk, "x25_sendmsg: sendto: Addresses built.\n");
1168*4882a593Smuzhiyun
1169*4882a593Smuzhiyun /* Build a packet */
1170*4882a593Smuzhiyun SOCK_DEBUG(sk, "x25_sendmsg: sendto: building packet.\n");
1171*4882a593Smuzhiyun
1172*4882a593Smuzhiyun if ((msg->msg_flags & MSG_OOB) && len > 32)
1173*4882a593Smuzhiyun len = 32;
1174*4882a593Smuzhiyun
1175*4882a593Smuzhiyun size = len + X25_MAX_L2_LEN + X25_EXT_MIN_LEN;
1176*4882a593Smuzhiyun
1177*4882a593Smuzhiyun release_sock(sk);
1178*4882a593Smuzhiyun skb = sock_alloc_send_skb(sk, size, noblock, &rc);
1179*4882a593Smuzhiyun lock_sock(sk);
1180*4882a593Smuzhiyun if (!skb)
1181*4882a593Smuzhiyun goto out;
1182*4882a593Smuzhiyun X25_SKB_CB(skb)->flags = msg->msg_flags;
1183*4882a593Smuzhiyun
1184*4882a593Smuzhiyun skb_reserve(skb, X25_MAX_L2_LEN + X25_EXT_MIN_LEN);
1185*4882a593Smuzhiyun
1186*4882a593Smuzhiyun /*
1187*4882a593Smuzhiyun * Put the data on the end
1188*4882a593Smuzhiyun */
1189*4882a593Smuzhiyun SOCK_DEBUG(sk, "x25_sendmsg: Copying user data\n");
1190*4882a593Smuzhiyun
1191*4882a593Smuzhiyun skb_reset_transport_header(skb);
1192*4882a593Smuzhiyun skb_put(skb, len);
1193*4882a593Smuzhiyun
1194*4882a593Smuzhiyun rc = memcpy_from_msg(skb_transport_header(skb), msg, len);
1195*4882a593Smuzhiyun if (rc)
1196*4882a593Smuzhiyun goto out_kfree_skb;
1197*4882a593Smuzhiyun
1198*4882a593Smuzhiyun /*
1199*4882a593Smuzhiyun * If the Q BIT Include socket option is in force, the first
1200*4882a593Smuzhiyun * byte of the user data is the logical value of the Q Bit.
1201*4882a593Smuzhiyun */
1202*4882a593Smuzhiyun if (test_bit(X25_Q_BIT_FLAG, &x25->flags)) {
1203*4882a593Smuzhiyun if (!pskb_may_pull(skb, 1))
1204*4882a593Smuzhiyun goto out_kfree_skb;
1205*4882a593Smuzhiyun
1206*4882a593Smuzhiyun qbit = skb->data[0];
1207*4882a593Smuzhiyun skb_pull(skb, 1);
1208*4882a593Smuzhiyun }
1209*4882a593Smuzhiyun
1210*4882a593Smuzhiyun /*
1211*4882a593Smuzhiyun * Push down the X.25 header
1212*4882a593Smuzhiyun */
1213*4882a593Smuzhiyun SOCK_DEBUG(sk, "x25_sendmsg: Building X.25 Header.\n");
1214*4882a593Smuzhiyun
1215*4882a593Smuzhiyun if (msg->msg_flags & MSG_OOB) {
1216*4882a593Smuzhiyun if (x25->neighbour->extended) {
1217*4882a593Smuzhiyun asmptr = skb_push(skb, X25_STD_MIN_LEN);
1218*4882a593Smuzhiyun *asmptr++ = ((x25->lci >> 8) & 0x0F) | X25_GFI_EXTSEQ;
1219*4882a593Smuzhiyun *asmptr++ = (x25->lci >> 0) & 0xFF;
1220*4882a593Smuzhiyun *asmptr++ = X25_INTERRUPT;
1221*4882a593Smuzhiyun } else {
1222*4882a593Smuzhiyun asmptr = skb_push(skb, X25_STD_MIN_LEN);
1223*4882a593Smuzhiyun *asmptr++ = ((x25->lci >> 8) & 0x0F) | X25_GFI_STDSEQ;
1224*4882a593Smuzhiyun *asmptr++ = (x25->lci >> 0) & 0xFF;
1225*4882a593Smuzhiyun *asmptr++ = X25_INTERRUPT;
1226*4882a593Smuzhiyun }
1227*4882a593Smuzhiyun } else {
1228*4882a593Smuzhiyun if (x25->neighbour->extended) {
1229*4882a593Smuzhiyun /* Build an Extended X.25 header */
1230*4882a593Smuzhiyun asmptr = skb_push(skb, X25_EXT_MIN_LEN);
1231*4882a593Smuzhiyun *asmptr++ = ((x25->lci >> 8) & 0x0F) | X25_GFI_EXTSEQ;
1232*4882a593Smuzhiyun *asmptr++ = (x25->lci >> 0) & 0xFF;
1233*4882a593Smuzhiyun *asmptr++ = X25_DATA;
1234*4882a593Smuzhiyun *asmptr++ = X25_DATA;
1235*4882a593Smuzhiyun } else {
1236*4882a593Smuzhiyun /* Build an Standard X.25 header */
1237*4882a593Smuzhiyun asmptr = skb_push(skb, X25_STD_MIN_LEN);
1238*4882a593Smuzhiyun *asmptr++ = ((x25->lci >> 8) & 0x0F) | X25_GFI_STDSEQ;
1239*4882a593Smuzhiyun *asmptr++ = (x25->lci >> 0) & 0xFF;
1240*4882a593Smuzhiyun *asmptr++ = X25_DATA;
1241*4882a593Smuzhiyun }
1242*4882a593Smuzhiyun
1243*4882a593Smuzhiyun if (qbit)
1244*4882a593Smuzhiyun skb->data[0] |= X25_Q_BIT;
1245*4882a593Smuzhiyun }
1246*4882a593Smuzhiyun
1247*4882a593Smuzhiyun SOCK_DEBUG(sk, "x25_sendmsg: Built header.\n");
1248*4882a593Smuzhiyun SOCK_DEBUG(sk, "x25_sendmsg: Transmitting buffer\n");
1249*4882a593Smuzhiyun
1250*4882a593Smuzhiyun rc = -ENOTCONN;
1251*4882a593Smuzhiyun if (sk->sk_state != TCP_ESTABLISHED)
1252*4882a593Smuzhiyun goto out_kfree_skb;
1253*4882a593Smuzhiyun
1254*4882a593Smuzhiyun if (msg->msg_flags & MSG_OOB)
1255*4882a593Smuzhiyun skb_queue_tail(&x25->interrupt_out_queue, skb);
1256*4882a593Smuzhiyun else {
1257*4882a593Smuzhiyun rc = x25_output(sk, skb);
1258*4882a593Smuzhiyun len = rc;
1259*4882a593Smuzhiyun if (rc < 0)
1260*4882a593Smuzhiyun kfree_skb(skb);
1261*4882a593Smuzhiyun else if (test_bit(X25_Q_BIT_FLAG, &x25->flags))
1262*4882a593Smuzhiyun len++;
1263*4882a593Smuzhiyun }
1264*4882a593Smuzhiyun
1265*4882a593Smuzhiyun x25_kick(sk);
1266*4882a593Smuzhiyun rc = len;
1267*4882a593Smuzhiyun out:
1268*4882a593Smuzhiyun release_sock(sk);
1269*4882a593Smuzhiyun return rc;
1270*4882a593Smuzhiyun out_kfree_skb:
1271*4882a593Smuzhiyun kfree_skb(skb);
1272*4882a593Smuzhiyun goto out;
1273*4882a593Smuzhiyun }
1274*4882a593Smuzhiyun
1275*4882a593Smuzhiyun
x25_recvmsg(struct socket * sock,struct msghdr * msg,size_t size,int flags)1276*4882a593Smuzhiyun static int x25_recvmsg(struct socket *sock, struct msghdr *msg, size_t size,
1277*4882a593Smuzhiyun int flags)
1278*4882a593Smuzhiyun {
1279*4882a593Smuzhiyun struct sock *sk = sock->sk;
1280*4882a593Smuzhiyun struct x25_sock *x25 = x25_sk(sk);
1281*4882a593Smuzhiyun DECLARE_SOCKADDR(struct sockaddr_x25 *, sx25, msg->msg_name);
1282*4882a593Smuzhiyun size_t copied;
1283*4882a593Smuzhiyun int qbit, header_len;
1284*4882a593Smuzhiyun struct sk_buff *skb;
1285*4882a593Smuzhiyun unsigned char *asmptr;
1286*4882a593Smuzhiyun int rc = -ENOTCONN;
1287*4882a593Smuzhiyun
1288*4882a593Smuzhiyun lock_sock(sk);
1289*4882a593Smuzhiyun
1290*4882a593Smuzhiyun if (x25->neighbour == NULL)
1291*4882a593Smuzhiyun goto out;
1292*4882a593Smuzhiyun
1293*4882a593Smuzhiyun header_len = x25->neighbour->extended ?
1294*4882a593Smuzhiyun X25_EXT_MIN_LEN : X25_STD_MIN_LEN;
1295*4882a593Smuzhiyun
1296*4882a593Smuzhiyun /*
1297*4882a593Smuzhiyun * This works for seqpacket too. The receiver has ordered the queue for
1298*4882a593Smuzhiyun * us! We do one quick check first though
1299*4882a593Smuzhiyun */
1300*4882a593Smuzhiyun if (sk->sk_state != TCP_ESTABLISHED)
1301*4882a593Smuzhiyun goto out;
1302*4882a593Smuzhiyun
1303*4882a593Smuzhiyun if (flags & MSG_OOB) {
1304*4882a593Smuzhiyun rc = -EINVAL;
1305*4882a593Smuzhiyun if (sock_flag(sk, SOCK_URGINLINE) ||
1306*4882a593Smuzhiyun !skb_peek(&x25->interrupt_in_queue))
1307*4882a593Smuzhiyun goto out;
1308*4882a593Smuzhiyun
1309*4882a593Smuzhiyun skb = skb_dequeue(&x25->interrupt_in_queue);
1310*4882a593Smuzhiyun
1311*4882a593Smuzhiyun if (!pskb_may_pull(skb, X25_STD_MIN_LEN))
1312*4882a593Smuzhiyun goto out_free_dgram;
1313*4882a593Smuzhiyun
1314*4882a593Smuzhiyun skb_pull(skb, X25_STD_MIN_LEN);
1315*4882a593Smuzhiyun
1316*4882a593Smuzhiyun /*
1317*4882a593Smuzhiyun * No Q bit information on Interrupt data.
1318*4882a593Smuzhiyun */
1319*4882a593Smuzhiyun if (test_bit(X25_Q_BIT_FLAG, &x25->flags)) {
1320*4882a593Smuzhiyun asmptr = skb_push(skb, 1);
1321*4882a593Smuzhiyun *asmptr = 0x00;
1322*4882a593Smuzhiyun }
1323*4882a593Smuzhiyun
1324*4882a593Smuzhiyun msg->msg_flags |= MSG_OOB;
1325*4882a593Smuzhiyun } else {
1326*4882a593Smuzhiyun /* Now we can treat all alike */
1327*4882a593Smuzhiyun release_sock(sk);
1328*4882a593Smuzhiyun skb = skb_recv_datagram(sk, flags & ~MSG_DONTWAIT,
1329*4882a593Smuzhiyun flags & MSG_DONTWAIT, &rc);
1330*4882a593Smuzhiyun lock_sock(sk);
1331*4882a593Smuzhiyun if (!skb)
1332*4882a593Smuzhiyun goto out;
1333*4882a593Smuzhiyun
1334*4882a593Smuzhiyun if (!pskb_may_pull(skb, header_len))
1335*4882a593Smuzhiyun goto out_free_dgram;
1336*4882a593Smuzhiyun
1337*4882a593Smuzhiyun qbit = (skb->data[0] & X25_Q_BIT) == X25_Q_BIT;
1338*4882a593Smuzhiyun
1339*4882a593Smuzhiyun skb_pull(skb, header_len);
1340*4882a593Smuzhiyun
1341*4882a593Smuzhiyun if (test_bit(X25_Q_BIT_FLAG, &x25->flags)) {
1342*4882a593Smuzhiyun asmptr = skb_push(skb, 1);
1343*4882a593Smuzhiyun *asmptr = qbit;
1344*4882a593Smuzhiyun }
1345*4882a593Smuzhiyun }
1346*4882a593Smuzhiyun
1347*4882a593Smuzhiyun skb_reset_transport_header(skb);
1348*4882a593Smuzhiyun copied = skb->len;
1349*4882a593Smuzhiyun
1350*4882a593Smuzhiyun if (copied > size) {
1351*4882a593Smuzhiyun copied = size;
1352*4882a593Smuzhiyun msg->msg_flags |= MSG_TRUNC;
1353*4882a593Smuzhiyun }
1354*4882a593Smuzhiyun
1355*4882a593Smuzhiyun /* Currently, each datagram always contains a complete record */
1356*4882a593Smuzhiyun msg->msg_flags |= MSG_EOR;
1357*4882a593Smuzhiyun
1358*4882a593Smuzhiyun rc = skb_copy_datagram_msg(skb, 0, msg, copied);
1359*4882a593Smuzhiyun if (rc)
1360*4882a593Smuzhiyun goto out_free_dgram;
1361*4882a593Smuzhiyun
1362*4882a593Smuzhiyun if (sx25) {
1363*4882a593Smuzhiyun sx25->sx25_family = AF_X25;
1364*4882a593Smuzhiyun sx25->sx25_addr = x25->dest_addr;
1365*4882a593Smuzhiyun msg->msg_namelen = sizeof(*sx25);
1366*4882a593Smuzhiyun }
1367*4882a593Smuzhiyun
1368*4882a593Smuzhiyun x25_check_rbuf(sk);
1369*4882a593Smuzhiyun rc = copied;
1370*4882a593Smuzhiyun out_free_dgram:
1371*4882a593Smuzhiyun skb_free_datagram(sk, skb);
1372*4882a593Smuzhiyun out:
1373*4882a593Smuzhiyun release_sock(sk);
1374*4882a593Smuzhiyun return rc;
1375*4882a593Smuzhiyun }
1376*4882a593Smuzhiyun
1377*4882a593Smuzhiyun
x25_ioctl(struct socket * sock,unsigned int cmd,unsigned long arg)1378*4882a593Smuzhiyun static int x25_ioctl(struct socket *sock, unsigned int cmd, unsigned long arg)
1379*4882a593Smuzhiyun {
1380*4882a593Smuzhiyun struct sock *sk = sock->sk;
1381*4882a593Smuzhiyun struct x25_sock *x25 = x25_sk(sk);
1382*4882a593Smuzhiyun void __user *argp = (void __user *)arg;
1383*4882a593Smuzhiyun int rc;
1384*4882a593Smuzhiyun
1385*4882a593Smuzhiyun switch (cmd) {
1386*4882a593Smuzhiyun case TIOCOUTQ: {
1387*4882a593Smuzhiyun int amount;
1388*4882a593Smuzhiyun
1389*4882a593Smuzhiyun amount = sk->sk_sndbuf - sk_wmem_alloc_get(sk);
1390*4882a593Smuzhiyun if (amount < 0)
1391*4882a593Smuzhiyun amount = 0;
1392*4882a593Smuzhiyun rc = put_user(amount, (unsigned int __user *)argp);
1393*4882a593Smuzhiyun break;
1394*4882a593Smuzhiyun }
1395*4882a593Smuzhiyun
1396*4882a593Smuzhiyun case TIOCINQ: {
1397*4882a593Smuzhiyun struct sk_buff *skb;
1398*4882a593Smuzhiyun int amount = 0;
1399*4882a593Smuzhiyun /*
1400*4882a593Smuzhiyun * These two are safe on a single CPU system as
1401*4882a593Smuzhiyun * only user tasks fiddle here
1402*4882a593Smuzhiyun */
1403*4882a593Smuzhiyun lock_sock(sk);
1404*4882a593Smuzhiyun if ((skb = skb_peek(&sk->sk_receive_queue)) != NULL)
1405*4882a593Smuzhiyun amount = skb->len;
1406*4882a593Smuzhiyun release_sock(sk);
1407*4882a593Smuzhiyun rc = put_user(amount, (unsigned int __user *)argp);
1408*4882a593Smuzhiyun break;
1409*4882a593Smuzhiyun }
1410*4882a593Smuzhiyun
1411*4882a593Smuzhiyun case SIOCGIFADDR:
1412*4882a593Smuzhiyun case SIOCSIFADDR:
1413*4882a593Smuzhiyun case SIOCGIFDSTADDR:
1414*4882a593Smuzhiyun case SIOCSIFDSTADDR:
1415*4882a593Smuzhiyun case SIOCGIFBRDADDR:
1416*4882a593Smuzhiyun case SIOCSIFBRDADDR:
1417*4882a593Smuzhiyun case SIOCGIFNETMASK:
1418*4882a593Smuzhiyun case SIOCSIFNETMASK:
1419*4882a593Smuzhiyun case SIOCGIFMETRIC:
1420*4882a593Smuzhiyun case SIOCSIFMETRIC:
1421*4882a593Smuzhiyun rc = -EINVAL;
1422*4882a593Smuzhiyun break;
1423*4882a593Smuzhiyun case SIOCADDRT:
1424*4882a593Smuzhiyun case SIOCDELRT:
1425*4882a593Smuzhiyun rc = -EPERM;
1426*4882a593Smuzhiyun if (!capable(CAP_NET_ADMIN))
1427*4882a593Smuzhiyun break;
1428*4882a593Smuzhiyun rc = x25_route_ioctl(cmd, argp);
1429*4882a593Smuzhiyun break;
1430*4882a593Smuzhiyun case SIOCX25GSUBSCRIP:
1431*4882a593Smuzhiyun rc = x25_subscr_ioctl(cmd, argp);
1432*4882a593Smuzhiyun break;
1433*4882a593Smuzhiyun case SIOCX25SSUBSCRIP:
1434*4882a593Smuzhiyun rc = -EPERM;
1435*4882a593Smuzhiyun if (!capable(CAP_NET_ADMIN))
1436*4882a593Smuzhiyun break;
1437*4882a593Smuzhiyun rc = x25_subscr_ioctl(cmd, argp);
1438*4882a593Smuzhiyun break;
1439*4882a593Smuzhiyun case SIOCX25GFACILITIES: {
1440*4882a593Smuzhiyun lock_sock(sk);
1441*4882a593Smuzhiyun rc = copy_to_user(argp, &x25->facilities,
1442*4882a593Smuzhiyun sizeof(x25->facilities))
1443*4882a593Smuzhiyun ? -EFAULT : 0;
1444*4882a593Smuzhiyun release_sock(sk);
1445*4882a593Smuzhiyun break;
1446*4882a593Smuzhiyun }
1447*4882a593Smuzhiyun
1448*4882a593Smuzhiyun case SIOCX25SFACILITIES: {
1449*4882a593Smuzhiyun struct x25_facilities facilities;
1450*4882a593Smuzhiyun rc = -EFAULT;
1451*4882a593Smuzhiyun if (copy_from_user(&facilities, argp, sizeof(facilities)))
1452*4882a593Smuzhiyun break;
1453*4882a593Smuzhiyun rc = -EINVAL;
1454*4882a593Smuzhiyun lock_sock(sk);
1455*4882a593Smuzhiyun if (sk->sk_state != TCP_LISTEN &&
1456*4882a593Smuzhiyun sk->sk_state != TCP_CLOSE)
1457*4882a593Smuzhiyun goto out_fac_release;
1458*4882a593Smuzhiyun if (facilities.pacsize_in < X25_PS16 ||
1459*4882a593Smuzhiyun facilities.pacsize_in > X25_PS4096)
1460*4882a593Smuzhiyun goto out_fac_release;
1461*4882a593Smuzhiyun if (facilities.pacsize_out < X25_PS16 ||
1462*4882a593Smuzhiyun facilities.pacsize_out > X25_PS4096)
1463*4882a593Smuzhiyun goto out_fac_release;
1464*4882a593Smuzhiyun if (facilities.winsize_in < 1 ||
1465*4882a593Smuzhiyun facilities.winsize_in > 127)
1466*4882a593Smuzhiyun goto out_fac_release;
1467*4882a593Smuzhiyun if (facilities.throughput) {
1468*4882a593Smuzhiyun int out = facilities.throughput & 0xf0;
1469*4882a593Smuzhiyun int in = facilities.throughput & 0x0f;
1470*4882a593Smuzhiyun if (!out)
1471*4882a593Smuzhiyun facilities.throughput |=
1472*4882a593Smuzhiyun X25_DEFAULT_THROUGHPUT << 4;
1473*4882a593Smuzhiyun else if (out < 0x30 || out > 0xD0)
1474*4882a593Smuzhiyun goto out_fac_release;
1475*4882a593Smuzhiyun if (!in)
1476*4882a593Smuzhiyun facilities.throughput |=
1477*4882a593Smuzhiyun X25_DEFAULT_THROUGHPUT;
1478*4882a593Smuzhiyun else if (in < 0x03 || in > 0x0D)
1479*4882a593Smuzhiyun goto out_fac_release;
1480*4882a593Smuzhiyun }
1481*4882a593Smuzhiyun if (facilities.reverse &&
1482*4882a593Smuzhiyun (facilities.reverse & 0x81) != 0x81)
1483*4882a593Smuzhiyun goto out_fac_release;
1484*4882a593Smuzhiyun x25->facilities = facilities;
1485*4882a593Smuzhiyun rc = 0;
1486*4882a593Smuzhiyun out_fac_release:
1487*4882a593Smuzhiyun release_sock(sk);
1488*4882a593Smuzhiyun break;
1489*4882a593Smuzhiyun }
1490*4882a593Smuzhiyun
1491*4882a593Smuzhiyun case SIOCX25GDTEFACILITIES: {
1492*4882a593Smuzhiyun lock_sock(sk);
1493*4882a593Smuzhiyun rc = copy_to_user(argp, &x25->dte_facilities,
1494*4882a593Smuzhiyun sizeof(x25->dte_facilities));
1495*4882a593Smuzhiyun release_sock(sk);
1496*4882a593Smuzhiyun if (rc)
1497*4882a593Smuzhiyun rc = -EFAULT;
1498*4882a593Smuzhiyun break;
1499*4882a593Smuzhiyun }
1500*4882a593Smuzhiyun
1501*4882a593Smuzhiyun case SIOCX25SDTEFACILITIES: {
1502*4882a593Smuzhiyun struct x25_dte_facilities dtefacs;
1503*4882a593Smuzhiyun rc = -EFAULT;
1504*4882a593Smuzhiyun if (copy_from_user(&dtefacs, argp, sizeof(dtefacs)))
1505*4882a593Smuzhiyun break;
1506*4882a593Smuzhiyun rc = -EINVAL;
1507*4882a593Smuzhiyun lock_sock(sk);
1508*4882a593Smuzhiyun if (sk->sk_state != TCP_LISTEN &&
1509*4882a593Smuzhiyun sk->sk_state != TCP_CLOSE)
1510*4882a593Smuzhiyun goto out_dtefac_release;
1511*4882a593Smuzhiyun if (dtefacs.calling_len > X25_MAX_AE_LEN)
1512*4882a593Smuzhiyun goto out_dtefac_release;
1513*4882a593Smuzhiyun if (dtefacs.called_len > X25_MAX_AE_LEN)
1514*4882a593Smuzhiyun goto out_dtefac_release;
1515*4882a593Smuzhiyun x25->dte_facilities = dtefacs;
1516*4882a593Smuzhiyun rc = 0;
1517*4882a593Smuzhiyun out_dtefac_release:
1518*4882a593Smuzhiyun release_sock(sk);
1519*4882a593Smuzhiyun break;
1520*4882a593Smuzhiyun }
1521*4882a593Smuzhiyun
1522*4882a593Smuzhiyun case SIOCX25GCALLUSERDATA: {
1523*4882a593Smuzhiyun lock_sock(sk);
1524*4882a593Smuzhiyun rc = copy_to_user(argp, &x25->calluserdata,
1525*4882a593Smuzhiyun sizeof(x25->calluserdata))
1526*4882a593Smuzhiyun ? -EFAULT : 0;
1527*4882a593Smuzhiyun release_sock(sk);
1528*4882a593Smuzhiyun break;
1529*4882a593Smuzhiyun }
1530*4882a593Smuzhiyun
1531*4882a593Smuzhiyun case SIOCX25SCALLUSERDATA: {
1532*4882a593Smuzhiyun struct x25_calluserdata calluserdata;
1533*4882a593Smuzhiyun
1534*4882a593Smuzhiyun rc = -EFAULT;
1535*4882a593Smuzhiyun if (copy_from_user(&calluserdata, argp, sizeof(calluserdata)))
1536*4882a593Smuzhiyun break;
1537*4882a593Smuzhiyun rc = -EINVAL;
1538*4882a593Smuzhiyun if (calluserdata.cudlength > X25_MAX_CUD_LEN)
1539*4882a593Smuzhiyun break;
1540*4882a593Smuzhiyun lock_sock(sk);
1541*4882a593Smuzhiyun x25->calluserdata = calluserdata;
1542*4882a593Smuzhiyun release_sock(sk);
1543*4882a593Smuzhiyun rc = 0;
1544*4882a593Smuzhiyun break;
1545*4882a593Smuzhiyun }
1546*4882a593Smuzhiyun
1547*4882a593Smuzhiyun case SIOCX25GCAUSEDIAG: {
1548*4882a593Smuzhiyun lock_sock(sk);
1549*4882a593Smuzhiyun rc = copy_to_user(argp, &x25->causediag, sizeof(x25->causediag))
1550*4882a593Smuzhiyun ? -EFAULT : 0;
1551*4882a593Smuzhiyun release_sock(sk);
1552*4882a593Smuzhiyun break;
1553*4882a593Smuzhiyun }
1554*4882a593Smuzhiyun
1555*4882a593Smuzhiyun case SIOCX25SCAUSEDIAG: {
1556*4882a593Smuzhiyun struct x25_causediag causediag;
1557*4882a593Smuzhiyun rc = -EFAULT;
1558*4882a593Smuzhiyun if (copy_from_user(&causediag, argp, sizeof(causediag)))
1559*4882a593Smuzhiyun break;
1560*4882a593Smuzhiyun lock_sock(sk);
1561*4882a593Smuzhiyun x25->causediag = causediag;
1562*4882a593Smuzhiyun release_sock(sk);
1563*4882a593Smuzhiyun rc = 0;
1564*4882a593Smuzhiyun break;
1565*4882a593Smuzhiyun
1566*4882a593Smuzhiyun }
1567*4882a593Smuzhiyun
1568*4882a593Smuzhiyun case SIOCX25SCUDMATCHLEN: {
1569*4882a593Smuzhiyun struct x25_subaddr sub_addr;
1570*4882a593Smuzhiyun rc = -EINVAL;
1571*4882a593Smuzhiyun lock_sock(sk);
1572*4882a593Smuzhiyun if(sk->sk_state != TCP_CLOSE)
1573*4882a593Smuzhiyun goto out_cud_release;
1574*4882a593Smuzhiyun rc = -EFAULT;
1575*4882a593Smuzhiyun if (copy_from_user(&sub_addr, argp,
1576*4882a593Smuzhiyun sizeof(sub_addr)))
1577*4882a593Smuzhiyun goto out_cud_release;
1578*4882a593Smuzhiyun rc = -EINVAL;
1579*4882a593Smuzhiyun if (sub_addr.cudmatchlength > X25_MAX_CUD_LEN)
1580*4882a593Smuzhiyun goto out_cud_release;
1581*4882a593Smuzhiyun x25->cudmatchlength = sub_addr.cudmatchlength;
1582*4882a593Smuzhiyun rc = 0;
1583*4882a593Smuzhiyun out_cud_release:
1584*4882a593Smuzhiyun release_sock(sk);
1585*4882a593Smuzhiyun break;
1586*4882a593Smuzhiyun }
1587*4882a593Smuzhiyun
1588*4882a593Smuzhiyun case SIOCX25CALLACCPTAPPRV: {
1589*4882a593Smuzhiyun rc = -EINVAL;
1590*4882a593Smuzhiyun lock_sock(sk);
1591*4882a593Smuzhiyun if (sk->sk_state == TCP_CLOSE) {
1592*4882a593Smuzhiyun clear_bit(X25_ACCPT_APPRV_FLAG, &x25->flags);
1593*4882a593Smuzhiyun rc = 0;
1594*4882a593Smuzhiyun }
1595*4882a593Smuzhiyun release_sock(sk);
1596*4882a593Smuzhiyun break;
1597*4882a593Smuzhiyun }
1598*4882a593Smuzhiyun
1599*4882a593Smuzhiyun case SIOCX25SENDCALLACCPT: {
1600*4882a593Smuzhiyun rc = -EINVAL;
1601*4882a593Smuzhiyun lock_sock(sk);
1602*4882a593Smuzhiyun if (sk->sk_state != TCP_ESTABLISHED)
1603*4882a593Smuzhiyun goto out_sendcallaccpt_release;
1604*4882a593Smuzhiyun /* must call accptapprv above */
1605*4882a593Smuzhiyun if (test_bit(X25_ACCPT_APPRV_FLAG, &x25->flags))
1606*4882a593Smuzhiyun goto out_sendcallaccpt_release;
1607*4882a593Smuzhiyun x25_write_internal(sk, X25_CALL_ACCEPTED);
1608*4882a593Smuzhiyun x25->state = X25_STATE_3;
1609*4882a593Smuzhiyun rc = 0;
1610*4882a593Smuzhiyun out_sendcallaccpt_release:
1611*4882a593Smuzhiyun release_sock(sk);
1612*4882a593Smuzhiyun break;
1613*4882a593Smuzhiyun }
1614*4882a593Smuzhiyun
1615*4882a593Smuzhiyun default:
1616*4882a593Smuzhiyun rc = -ENOIOCTLCMD;
1617*4882a593Smuzhiyun break;
1618*4882a593Smuzhiyun }
1619*4882a593Smuzhiyun
1620*4882a593Smuzhiyun return rc;
1621*4882a593Smuzhiyun }
1622*4882a593Smuzhiyun
1623*4882a593Smuzhiyun static const struct net_proto_family x25_family_ops = {
1624*4882a593Smuzhiyun .family = AF_X25,
1625*4882a593Smuzhiyun .create = x25_create,
1626*4882a593Smuzhiyun .owner = THIS_MODULE,
1627*4882a593Smuzhiyun };
1628*4882a593Smuzhiyun
1629*4882a593Smuzhiyun #ifdef CONFIG_COMPAT
compat_x25_subscr_ioctl(unsigned int cmd,struct compat_x25_subscrip_struct __user * x25_subscr32)1630*4882a593Smuzhiyun static int compat_x25_subscr_ioctl(unsigned int cmd,
1631*4882a593Smuzhiyun struct compat_x25_subscrip_struct __user *x25_subscr32)
1632*4882a593Smuzhiyun {
1633*4882a593Smuzhiyun struct compat_x25_subscrip_struct x25_subscr;
1634*4882a593Smuzhiyun struct x25_neigh *nb;
1635*4882a593Smuzhiyun struct net_device *dev;
1636*4882a593Smuzhiyun int rc = -EINVAL;
1637*4882a593Smuzhiyun
1638*4882a593Smuzhiyun rc = -EFAULT;
1639*4882a593Smuzhiyun if (copy_from_user(&x25_subscr, x25_subscr32, sizeof(*x25_subscr32)))
1640*4882a593Smuzhiyun goto out;
1641*4882a593Smuzhiyun
1642*4882a593Smuzhiyun rc = -EINVAL;
1643*4882a593Smuzhiyun dev = x25_dev_get(x25_subscr.device);
1644*4882a593Smuzhiyun if (dev == NULL)
1645*4882a593Smuzhiyun goto out;
1646*4882a593Smuzhiyun
1647*4882a593Smuzhiyun nb = x25_get_neigh(dev);
1648*4882a593Smuzhiyun if (nb == NULL)
1649*4882a593Smuzhiyun goto out_dev_put;
1650*4882a593Smuzhiyun
1651*4882a593Smuzhiyun dev_put(dev);
1652*4882a593Smuzhiyun
1653*4882a593Smuzhiyun if (cmd == SIOCX25GSUBSCRIP) {
1654*4882a593Smuzhiyun read_lock_bh(&x25_neigh_list_lock);
1655*4882a593Smuzhiyun x25_subscr.extended = nb->extended;
1656*4882a593Smuzhiyun x25_subscr.global_facil_mask = nb->global_facil_mask;
1657*4882a593Smuzhiyun read_unlock_bh(&x25_neigh_list_lock);
1658*4882a593Smuzhiyun rc = copy_to_user(x25_subscr32, &x25_subscr,
1659*4882a593Smuzhiyun sizeof(*x25_subscr32)) ? -EFAULT : 0;
1660*4882a593Smuzhiyun } else {
1661*4882a593Smuzhiyun rc = -EINVAL;
1662*4882a593Smuzhiyun if (x25_subscr.extended == 0 || x25_subscr.extended == 1) {
1663*4882a593Smuzhiyun rc = 0;
1664*4882a593Smuzhiyun write_lock_bh(&x25_neigh_list_lock);
1665*4882a593Smuzhiyun nb->extended = x25_subscr.extended;
1666*4882a593Smuzhiyun nb->global_facil_mask = x25_subscr.global_facil_mask;
1667*4882a593Smuzhiyun write_unlock_bh(&x25_neigh_list_lock);
1668*4882a593Smuzhiyun }
1669*4882a593Smuzhiyun }
1670*4882a593Smuzhiyun x25_neigh_put(nb);
1671*4882a593Smuzhiyun out:
1672*4882a593Smuzhiyun return rc;
1673*4882a593Smuzhiyun out_dev_put:
1674*4882a593Smuzhiyun dev_put(dev);
1675*4882a593Smuzhiyun goto out;
1676*4882a593Smuzhiyun }
1677*4882a593Smuzhiyun
compat_x25_ioctl(struct socket * sock,unsigned int cmd,unsigned long arg)1678*4882a593Smuzhiyun static int compat_x25_ioctl(struct socket *sock, unsigned int cmd,
1679*4882a593Smuzhiyun unsigned long arg)
1680*4882a593Smuzhiyun {
1681*4882a593Smuzhiyun void __user *argp = compat_ptr(arg);
1682*4882a593Smuzhiyun int rc = -ENOIOCTLCMD;
1683*4882a593Smuzhiyun
1684*4882a593Smuzhiyun switch(cmd) {
1685*4882a593Smuzhiyun case TIOCOUTQ:
1686*4882a593Smuzhiyun case TIOCINQ:
1687*4882a593Smuzhiyun rc = x25_ioctl(sock, cmd, (unsigned long)argp);
1688*4882a593Smuzhiyun break;
1689*4882a593Smuzhiyun case SIOCGIFADDR:
1690*4882a593Smuzhiyun case SIOCSIFADDR:
1691*4882a593Smuzhiyun case SIOCGIFDSTADDR:
1692*4882a593Smuzhiyun case SIOCSIFDSTADDR:
1693*4882a593Smuzhiyun case SIOCGIFBRDADDR:
1694*4882a593Smuzhiyun case SIOCSIFBRDADDR:
1695*4882a593Smuzhiyun case SIOCGIFNETMASK:
1696*4882a593Smuzhiyun case SIOCSIFNETMASK:
1697*4882a593Smuzhiyun case SIOCGIFMETRIC:
1698*4882a593Smuzhiyun case SIOCSIFMETRIC:
1699*4882a593Smuzhiyun rc = -EINVAL;
1700*4882a593Smuzhiyun break;
1701*4882a593Smuzhiyun case SIOCADDRT:
1702*4882a593Smuzhiyun case SIOCDELRT:
1703*4882a593Smuzhiyun rc = -EPERM;
1704*4882a593Smuzhiyun if (!capable(CAP_NET_ADMIN))
1705*4882a593Smuzhiyun break;
1706*4882a593Smuzhiyun rc = x25_route_ioctl(cmd, argp);
1707*4882a593Smuzhiyun break;
1708*4882a593Smuzhiyun case SIOCX25GSUBSCRIP:
1709*4882a593Smuzhiyun rc = compat_x25_subscr_ioctl(cmd, argp);
1710*4882a593Smuzhiyun break;
1711*4882a593Smuzhiyun case SIOCX25SSUBSCRIP:
1712*4882a593Smuzhiyun rc = -EPERM;
1713*4882a593Smuzhiyun if (!capable(CAP_NET_ADMIN))
1714*4882a593Smuzhiyun break;
1715*4882a593Smuzhiyun rc = compat_x25_subscr_ioctl(cmd, argp);
1716*4882a593Smuzhiyun break;
1717*4882a593Smuzhiyun case SIOCX25GFACILITIES:
1718*4882a593Smuzhiyun case SIOCX25SFACILITIES:
1719*4882a593Smuzhiyun case SIOCX25GDTEFACILITIES:
1720*4882a593Smuzhiyun case SIOCX25SDTEFACILITIES:
1721*4882a593Smuzhiyun case SIOCX25GCALLUSERDATA:
1722*4882a593Smuzhiyun case SIOCX25SCALLUSERDATA:
1723*4882a593Smuzhiyun case SIOCX25GCAUSEDIAG:
1724*4882a593Smuzhiyun case SIOCX25SCAUSEDIAG:
1725*4882a593Smuzhiyun case SIOCX25SCUDMATCHLEN:
1726*4882a593Smuzhiyun case SIOCX25CALLACCPTAPPRV:
1727*4882a593Smuzhiyun case SIOCX25SENDCALLACCPT:
1728*4882a593Smuzhiyun rc = x25_ioctl(sock, cmd, (unsigned long)argp);
1729*4882a593Smuzhiyun break;
1730*4882a593Smuzhiyun default:
1731*4882a593Smuzhiyun rc = -ENOIOCTLCMD;
1732*4882a593Smuzhiyun break;
1733*4882a593Smuzhiyun }
1734*4882a593Smuzhiyun return rc;
1735*4882a593Smuzhiyun }
1736*4882a593Smuzhiyun #endif
1737*4882a593Smuzhiyun
1738*4882a593Smuzhiyun static const struct proto_ops x25_proto_ops = {
1739*4882a593Smuzhiyun .family = AF_X25,
1740*4882a593Smuzhiyun .owner = THIS_MODULE,
1741*4882a593Smuzhiyun .release = x25_release,
1742*4882a593Smuzhiyun .bind = x25_bind,
1743*4882a593Smuzhiyun .connect = x25_connect,
1744*4882a593Smuzhiyun .socketpair = sock_no_socketpair,
1745*4882a593Smuzhiyun .accept = x25_accept,
1746*4882a593Smuzhiyun .getname = x25_getname,
1747*4882a593Smuzhiyun .poll = datagram_poll,
1748*4882a593Smuzhiyun .ioctl = x25_ioctl,
1749*4882a593Smuzhiyun #ifdef CONFIG_COMPAT
1750*4882a593Smuzhiyun .compat_ioctl = compat_x25_ioctl,
1751*4882a593Smuzhiyun #endif
1752*4882a593Smuzhiyun .gettstamp = sock_gettstamp,
1753*4882a593Smuzhiyun .listen = x25_listen,
1754*4882a593Smuzhiyun .shutdown = sock_no_shutdown,
1755*4882a593Smuzhiyun .setsockopt = x25_setsockopt,
1756*4882a593Smuzhiyun .getsockopt = x25_getsockopt,
1757*4882a593Smuzhiyun .sendmsg = x25_sendmsg,
1758*4882a593Smuzhiyun .recvmsg = x25_recvmsg,
1759*4882a593Smuzhiyun .mmap = sock_no_mmap,
1760*4882a593Smuzhiyun .sendpage = sock_no_sendpage,
1761*4882a593Smuzhiyun };
1762*4882a593Smuzhiyun
1763*4882a593Smuzhiyun static struct packet_type x25_packet_type __read_mostly = {
1764*4882a593Smuzhiyun .type = cpu_to_be16(ETH_P_X25),
1765*4882a593Smuzhiyun .func = x25_lapb_receive_frame,
1766*4882a593Smuzhiyun };
1767*4882a593Smuzhiyun
1768*4882a593Smuzhiyun static struct notifier_block x25_dev_notifier = {
1769*4882a593Smuzhiyun .notifier_call = x25_device_event,
1770*4882a593Smuzhiyun };
1771*4882a593Smuzhiyun
x25_kill_by_neigh(struct x25_neigh * nb)1772*4882a593Smuzhiyun void x25_kill_by_neigh(struct x25_neigh *nb)
1773*4882a593Smuzhiyun {
1774*4882a593Smuzhiyun struct sock *s;
1775*4882a593Smuzhiyun
1776*4882a593Smuzhiyun write_lock_bh(&x25_list_lock);
1777*4882a593Smuzhiyun
1778*4882a593Smuzhiyun sk_for_each(s, &x25_list) {
1779*4882a593Smuzhiyun if (x25_sk(s)->neighbour == nb) {
1780*4882a593Smuzhiyun write_unlock_bh(&x25_list_lock);
1781*4882a593Smuzhiyun lock_sock(s);
1782*4882a593Smuzhiyun x25_disconnect(s, ENETUNREACH, 0, 0);
1783*4882a593Smuzhiyun release_sock(s);
1784*4882a593Smuzhiyun write_lock_bh(&x25_list_lock);
1785*4882a593Smuzhiyun }
1786*4882a593Smuzhiyun }
1787*4882a593Smuzhiyun write_unlock_bh(&x25_list_lock);
1788*4882a593Smuzhiyun
1789*4882a593Smuzhiyun /* Remove any related forwards */
1790*4882a593Smuzhiyun x25_clear_forward_by_dev(nb->dev);
1791*4882a593Smuzhiyun }
1792*4882a593Smuzhiyun
x25_init(void)1793*4882a593Smuzhiyun static int __init x25_init(void)
1794*4882a593Smuzhiyun {
1795*4882a593Smuzhiyun int rc;
1796*4882a593Smuzhiyun
1797*4882a593Smuzhiyun rc = proto_register(&x25_proto, 0);
1798*4882a593Smuzhiyun if (rc)
1799*4882a593Smuzhiyun goto out;
1800*4882a593Smuzhiyun
1801*4882a593Smuzhiyun rc = sock_register(&x25_family_ops);
1802*4882a593Smuzhiyun if (rc)
1803*4882a593Smuzhiyun goto out_proto;
1804*4882a593Smuzhiyun
1805*4882a593Smuzhiyun dev_add_pack(&x25_packet_type);
1806*4882a593Smuzhiyun
1807*4882a593Smuzhiyun rc = register_netdevice_notifier(&x25_dev_notifier);
1808*4882a593Smuzhiyun if (rc)
1809*4882a593Smuzhiyun goto out_sock;
1810*4882a593Smuzhiyun
1811*4882a593Smuzhiyun rc = x25_register_sysctl();
1812*4882a593Smuzhiyun if (rc)
1813*4882a593Smuzhiyun goto out_dev;
1814*4882a593Smuzhiyun
1815*4882a593Smuzhiyun rc = x25_proc_init();
1816*4882a593Smuzhiyun if (rc)
1817*4882a593Smuzhiyun goto out_sysctl;
1818*4882a593Smuzhiyun
1819*4882a593Smuzhiyun pr_info("Linux Version 0.2\n");
1820*4882a593Smuzhiyun
1821*4882a593Smuzhiyun out:
1822*4882a593Smuzhiyun return rc;
1823*4882a593Smuzhiyun out_sysctl:
1824*4882a593Smuzhiyun x25_unregister_sysctl();
1825*4882a593Smuzhiyun out_dev:
1826*4882a593Smuzhiyun unregister_netdevice_notifier(&x25_dev_notifier);
1827*4882a593Smuzhiyun out_sock:
1828*4882a593Smuzhiyun dev_remove_pack(&x25_packet_type);
1829*4882a593Smuzhiyun sock_unregister(AF_X25);
1830*4882a593Smuzhiyun out_proto:
1831*4882a593Smuzhiyun proto_unregister(&x25_proto);
1832*4882a593Smuzhiyun goto out;
1833*4882a593Smuzhiyun }
1834*4882a593Smuzhiyun module_init(x25_init);
1835*4882a593Smuzhiyun
x25_exit(void)1836*4882a593Smuzhiyun static void __exit x25_exit(void)
1837*4882a593Smuzhiyun {
1838*4882a593Smuzhiyun x25_proc_exit();
1839*4882a593Smuzhiyun x25_link_free();
1840*4882a593Smuzhiyun x25_route_free();
1841*4882a593Smuzhiyun
1842*4882a593Smuzhiyun x25_unregister_sysctl();
1843*4882a593Smuzhiyun
1844*4882a593Smuzhiyun unregister_netdevice_notifier(&x25_dev_notifier);
1845*4882a593Smuzhiyun
1846*4882a593Smuzhiyun dev_remove_pack(&x25_packet_type);
1847*4882a593Smuzhiyun
1848*4882a593Smuzhiyun sock_unregister(AF_X25);
1849*4882a593Smuzhiyun proto_unregister(&x25_proto);
1850*4882a593Smuzhiyun }
1851*4882a593Smuzhiyun module_exit(x25_exit);
1852*4882a593Smuzhiyun
1853*4882a593Smuzhiyun MODULE_AUTHOR("Jonathan Naylor <g4klx@g4klx.demon.co.uk>");
1854*4882a593Smuzhiyun MODULE_DESCRIPTION("The X.25 Packet Layer network layer protocol");
1855*4882a593Smuzhiyun MODULE_LICENSE("GPL");
1856*4882a593Smuzhiyun MODULE_ALIAS_NETPROTO(PF_X25);
1857