xfrm6_mode_beet.c 3.5 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137
  1. /*
  2. * xfrm6_mode_beet.c - BEET mode encapsulation for IPv6.
  3. *
  4. * Copyright (c) 2006 Diego Beltrami <diego.beltrami@gmail.com>
  5. * Miika Komu <miika@iki.fi>
  6. * Herbert Xu <herbert@gondor.apana.org.au>
  7. * Abhinav Pathak <abhinav.pathak@hiit.fi>
  8. * Jeff Ahrenholz <ahrenholz@gmail.com>
  9. */
  10. #include <linux/init.h>
  11. #include <linux/kernel.h>
  12. #include <linux/module.h>
  13. #include <linux/skbuff.h>
  14. #include <linux/stringify.h>
  15. #include <net/dsfield.h>
  16. #include <net/dst.h>
  17. #include <net/inet_ecn.h>
  18. #include <net/ipv6.h>
  19. #include <net/xfrm.h>
  20. static void xfrm6_beet_make_header(struct sk_buff *skb)
  21. {
  22. struct ipv6hdr *iph = ipv6_hdr(skb);
  23. iph->version = 6;
  24. memcpy(iph->flow_lbl, XFRM_MODE_SKB_CB(skb)->flow_lbl,
  25. sizeof(iph->flow_lbl));
  26. iph->nexthdr = XFRM_MODE_SKB_CB(skb)->protocol;
  27. ipv6_change_dsfield(iph, 0, XFRM_MODE_SKB_CB(skb)->tos);
  28. iph->hop_limit = XFRM_MODE_SKB_CB(skb)->ttl;
  29. }
  30. /* Add encapsulation header.
  31. *
  32. * The top IP header will be constructed per draft-nikander-esp-beet-mode-06.txt.
  33. */
  34. static int xfrm6_beet_output(struct xfrm_state *x, struct sk_buff *skb)
  35. {
  36. struct ipv6hdr *top_iph;
  37. struct ip_beet_phdr *ph;
  38. struct iphdr *iphv4;
  39. int optlen, hdr_len;
  40. iphv4 = ip_hdr(skb);
  41. hdr_len = 0;
  42. optlen = XFRM_MODE_SKB_CB(skb)->optlen;
  43. if (unlikely(optlen))
  44. hdr_len += IPV4_BEET_PHMAXLEN - (optlen & 4);
  45. skb_set_network_header(skb, -x->props.header_len - hdr_len);
  46. if (x->sel.family != AF_INET6)
  47. skb->network_header += IPV4_BEET_PHMAXLEN;
  48. skb->mac_header = skb->network_header +
  49. offsetof(struct ipv6hdr, nexthdr);
  50. skb->transport_header = skb->network_header + sizeof(*top_iph);
  51. ph = (struct ip_beet_phdr *)__skb_pull(skb, XFRM_MODE_SKB_CB(skb)->ihl-hdr_len);
  52. xfrm6_beet_make_header(skb);
  53. top_iph = ipv6_hdr(skb);
  54. if (unlikely(optlen)) {
  55. BUG_ON(optlen < 0);
  56. ph->padlen = 4 - (optlen & 4);
  57. ph->hdrlen = optlen / 8;
  58. ph->nexthdr = top_iph->nexthdr;
  59. if (ph->padlen)
  60. memset(ph + 1, IPOPT_NOP, ph->padlen);
  61. top_iph->nexthdr = IPPROTO_BEETPH;
  62. }
  63. ipv6_addr_copy(&top_iph->saddr, (struct in6_addr *)&x->props.saddr);
  64. ipv6_addr_copy(&top_iph->daddr, (struct in6_addr *)&x->id.daddr);
  65. return 0;
  66. }
  67. static int xfrm6_beet_input(struct xfrm_state *x, struct sk_buff *skb)
  68. {
  69. struct ipv6hdr *ip6h;
  70. const unsigned char *old_mac;
  71. int size = sizeof(struct ipv6hdr);
  72. int err;
  73. err = skb_cow_head(skb, size + skb->mac_len);
  74. if (err)
  75. goto out;
  76. __skb_push(skb, size);
  77. skb_reset_network_header(skb);
  78. old_mac = skb_mac_header(skb);
  79. skb_set_mac_header(skb, -skb->mac_len);
  80. memmove(skb_mac_header(skb), old_mac, skb->mac_len);
  81. xfrm6_beet_make_header(skb);
  82. ip6h = ipv6_hdr(skb);
  83. ip6h->payload_len = htons(skb->len - size);
  84. ipv6_addr_copy(&ip6h->daddr, (struct in6_addr *) &x->sel.daddr.a6);
  85. ipv6_addr_copy(&ip6h->saddr, (struct in6_addr *) &x->sel.saddr.a6);
  86. err = 0;
  87. out:
  88. return err;
  89. }
  90. static struct xfrm_mode xfrm6_beet_mode = {
  91. .input2 = xfrm6_beet_input,
  92. .input = xfrm_prepare_input,
  93. .output2 = xfrm6_beet_output,
  94. .output = xfrm6_prepare_output,
  95. .owner = THIS_MODULE,
  96. .encap = XFRM_MODE_BEET,
  97. .flags = XFRM_MODE_FLAG_TUNNEL,
  98. };
  99. static int __init xfrm6_beet_init(void)
  100. {
  101. return xfrm_register_mode(&xfrm6_beet_mode, AF_INET6);
  102. }
  103. static void __exit xfrm6_beet_exit(void)
  104. {
  105. int err;
  106. err = xfrm_unregister_mode(&xfrm6_beet_mode, AF_INET6);
  107. BUG_ON(err);
  108. }
  109. module_init(xfrm6_beet_init);
  110. module_exit(xfrm6_beet_exit);
  111. MODULE_LICENSE("GPL");
  112. MODULE_ALIAS_XFRM_MODE(AF_INET6, XFRM_MODE_BEET);