sysctl_net_ipv4.c 21 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440441442443444445446447448449450451452453454455456457458459460461462463464465466467468469470471472473474475476477478479480481482483484485486487488489490491492493494495496497498499500501502503504505506507508509510511512513514515516517518519520521522523524525526527528529530531532533534535536537538539540541542543544545546547548549550551552553554555556557558559560561562563564565566567568569570571572573574575576577578579580581582583584585586587588589590591592593594595596597598599600601602603604605606607608609610611612613614615616617618619620621622623624625626627628629630631632633634635636637638639640641642643644645646647648649650651652653654655656657658659660661662663664665666667668669670671672673674675676677678679680681682683684685686687688689690691692693694695696697698699700701702703704705706707708709710711712713714715716717718719720721722723724725726727728729730731732733734735736737738739740741742743744745746747748749750751752753754755756757758759760761762763764765766767768769770771772773774775776777778779780781782783784785786787788789790791792793794795796797798799800801802803804805806807808809810811812813814815816817818819820821822823824825826827828829830831832833834835836837838839840841842843844845846847848849850851852853854855856857858859860861862863864865866867868869870871872873874875876877878879880881882883884885886887888889890891892893894895896897
  1. /*
  2. * sysctl_net_ipv4.c: sysctl interface to net IPV4 subsystem.
  3. *
  4. * $Id: sysctl_net_ipv4.c,v 1.50 2001/10/20 00:00:11 davem Exp $
  5. *
  6. * Begun April 1, 1996, Mike Shaver.
  7. * Added /proc/sys/net/ipv4 directory entry (empty =) ). [MS]
  8. */
  9. #include <linux/mm.h>
  10. #include <linux/module.h>
  11. #include <linux/sysctl.h>
  12. #include <linux/igmp.h>
  13. #include <linux/inetdevice.h>
  14. #include <linux/seqlock.h>
  15. #include <linux/init.h>
  16. #include <net/snmp.h>
  17. #include <net/icmp.h>
  18. #include <net/ip.h>
  19. #include <net/route.h>
  20. #include <net/tcp.h>
  21. #include <net/cipso_ipv4.h>
  22. #include <net/inet_frag.h>
  23. static int zero;
  24. static int tcp_retr1_max = 255;
  25. static int ip_local_port_range_min[] = { 1, 1 };
  26. static int ip_local_port_range_max[] = { 65535, 65535 };
  27. static
  28. int ipv4_sysctl_forward(ctl_table *ctl, int write, struct file * filp,
  29. void __user *buffer, size_t *lenp, loff_t *ppos)
  30. {
  31. int val = IPV4_DEVCONF_ALL(FORWARDING);
  32. int ret;
  33. ret = proc_dointvec(ctl, write, filp, buffer, lenp, ppos);
  34. if (write && IPV4_DEVCONF_ALL(FORWARDING) != val)
  35. inet_forward_change();
  36. return ret;
  37. }
  38. static int ipv4_sysctl_forward_strategy(ctl_table *table,
  39. int __user *name, int nlen,
  40. void __user *oldval, size_t __user *oldlenp,
  41. void __user *newval, size_t newlen)
  42. {
  43. int *valp = table->data;
  44. int new;
  45. if (!newval || !newlen)
  46. return 0;
  47. if (newlen != sizeof(int))
  48. return -EINVAL;
  49. if (get_user(new, (int __user *)newval))
  50. return -EFAULT;
  51. if (new == *valp)
  52. return 0;
  53. if (oldval && oldlenp) {
  54. size_t len;
  55. if (get_user(len, oldlenp))
  56. return -EFAULT;
  57. if (len) {
  58. if (len > table->maxlen)
  59. len = table->maxlen;
  60. if (copy_to_user(oldval, valp, len))
  61. return -EFAULT;
  62. if (put_user(len, oldlenp))
  63. return -EFAULT;
  64. }
  65. }
  66. *valp = new;
  67. inet_forward_change();
  68. return 1;
  69. }
  70. extern seqlock_t sysctl_port_range_lock;
  71. extern int sysctl_local_port_range[2];
  72. /* Update system visible IP port range */
  73. static void set_local_port_range(int range[2])
  74. {
  75. write_seqlock(&sysctl_port_range_lock);
  76. sysctl_local_port_range[0] = range[0];
  77. sysctl_local_port_range[1] = range[1];
  78. write_sequnlock(&sysctl_port_range_lock);
  79. }
  80. /* Validate changes from /proc interface. */
  81. static int ipv4_local_port_range(ctl_table *table, int write, struct file *filp,
  82. void __user *buffer,
  83. size_t *lenp, loff_t *ppos)
  84. {
  85. int ret;
  86. int range[2] = { sysctl_local_port_range[0],
  87. sysctl_local_port_range[1] };
  88. ctl_table tmp = {
  89. .data = &range,
  90. .maxlen = sizeof(range),
  91. .mode = table->mode,
  92. .extra1 = &ip_local_port_range_min,
  93. .extra2 = &ip_local_port_range_max,
  94. };
  95. ret = proc_dointvec_minmax(&tmp, write, filp, buffer, lenp, ppos);
  96. if (write && ret == 0) {
  97. if (range[1] < range[0])
  98. ret = -EINVAL;
  99. else
  100. set_local_port_range(range);
  101. }
  102. return ret;
  103. }
  104. /* Validate changes from sysctl interface. */
  105. static int ipv4_sysctl_local_port_range(ctl_table *table, int __user *name,
  106. int nlen, void __user *oldval,
  107. size_t __user *oldlenp,
  108. void __user *newval, size_t newlen)
  109. {
  110. int ret;
  111. int range[2] = { sysctl_local_port_range[0],
  112. sysctl_local_port_range[1] };
  113. ctl_table tmp = {
  114. .data = &range,
  115. .maxlen = sizeof(range),
  116. .mode = table->mode,
  117. .extra1 = &ip_local_port_range_min,
  118. .extra2 = &ip_local_port_range_max,
  119. };
  120. ret = sysctl_intvec(&tmp, name, nlen, oldval, oldlenp, newval, newlen);
  121. if (ret == 0 && newval && newlen) {
  122. if (range[1] < range[0])
  123. ret = -EINVAL;
  124. else
  125. set_local_port_range(range);
  126. }
  127. return ret;
  128. }
  129. static int proc_tcp_congestion_control(ctl_table *ctl, int write, struct file * filp,
  130. void __user *buffer, size_t *lenp, loff_t *ppos)
  131. {
  132. char val[TCP_CA_NAME_MAX];
  133. ctl_table tbl = {
  134. .data = val,
  135. .maxlen = TCP_CA_NAME_MAX,
  136. };
  137. int ret;
  138. tcp_get_default_congestion_control(val);
  139. ret = proc_dostring(&tbl, write, filp, buffer, lenp, ppos);
  140. if (write && ret == 0)
  141. ret = tcp_set_default_congestion_control(val);
  142. return ret;
  143. }
  144. static int sysctl_tcp_congestion_control(ctl_table *table, int __user *name,
  145. int nlen, void __user *oldval,
  146. size_t __user *oldlenp,
  147. void __user *newval, size_t newlen)
  148. {
  149. char val[TCP_CA_NAME_MAX];
  150. ctl_table tbl = {
  151. .data = val,
  152. .maxlen = TCP_CA_NAME_MAX,
  153. };
  154. int ret;
  155. tcp_get_default_congestion_control(val);
  156. ret = sysctl_string(&tbl, name, nlen, oldval, oldlenp, newval, newlen);
  157. if (ret == 1 && newval && newlen)
  158. ret = tcp_set_default_congestion_control(val);
  159. return ret;
  160. }
  161. static int proc_tcp_available_congestion_control(ctl_table *ctl,
  162. int write, struct file * filp,
  163. void __user *buffer, size_t *lenp,
  164. loff_t *ppos)
  165. {
  166. ctl_table tbl = { .maxlen = TCP_CA_BUF_MAX, };
  167. int ret;
  168. tbl.data = kmalloc(tbl.maxlen, GFP_USER);
  169. if (!tbl.data)
  170. return -ENOMEM;
  171. tcp_get_available_congestion_control(tbl.data, TCP_CA_BUF_MAX);
  172. ret = proc_dostring(&tbl, write, filp, buffer, lenp, ppos);
  173. kfree(tbl.data);
  174. return ret;
  175. }
  176. static int proc_allowed_congestion_control(ctl_table *ctl,
  177. int write, struct file * filp,
  178. void __user *buffer, size_t *lenp,
  179. loff_t *ppos)
  180. {
  181. ctl_table tbl = { .maxlen = TCP_CA_BUF_MAX };
  182. int ret;
  183. tbl.data = kmalloc(tbl.maxlen, GFP_USER);
  184. if (!tbl.data)
  185. return -ENOMEM;
  186. tcp_get_allowed_congestion_control(tbl.data, tbl.maxlen);
  187. ret = proc_dostring(&tbl, write, filp, buffer, lenp, ppos);
  188. if (write && ret == 0)
  189. ret = tcp_set_allowed_congestion_control(tbl.data);
  190. kfree(tbl.data);
  191. return ret;
  192. }
  193. static int strategy_allowed_congestion_control(ctl_table *table, int __user *name,
  194. int nlen, void __user *oldval,
  195. size_t __user *oldlenp,
  196. void __user *newval,
  197. size_t newlen)
  198. {
  199. ctl_table tbl = { .maxlen = TCP_CA_BUF_MAX };
  200. int ret;
  201. tbl.data = kmalloc(tbl.maxlen, GFP_USER);
  202. if (!tbl.data)
  203. return -ENOMEM;
  204. tcp_get_available_congestion_control(tbl.data, tbl.maxlen);
  205. ret = sysctl_string(&tbl, name, nlen, oldval, oldlenp, newval, newlen);
  206. if (ret == 0 && newval && newlen)
  207. ret = tcp_set_allowed_congestion_control(tbl.data);
  208. kfree(tbl.data);
  209. return ret;
  210. }
  211. static struct ctl_table ipv4_table[] = {
  212. {
  213. .ctl_name = NET_IPV4_TCP_TIMESTAMPS,
  214. .procname = "tcp_timestamps",
  215. .data = &sysctl_tcp_timestamps,
  216. .maxlen = sizeof(int),
  217. .mode = 0644,
  218. .proc_handler = &proc_dointvec
  219. },
  220. {
  221. .ctl_name = NET_IPV4_TCP_WINDOW_SCALING,
  222. .procname = "tcp_window_scaling",
  223. .data = &sysctl_tcp_window_scaling,
  224. .maxlen = sizeof(int),
  225. .mode = 0644,
  226. .proc_handler = &proc_dointvec
  227. },
  228. {
  229. .ctl_name = NET_IPV4_TCP_SACK,
  230. .procname = "tcp_sack",
  231. .data = &sysctl_tcp_sack,
  232. .maxlen = sizeof(int),
  233. .mode = 0644,
  234. .proc_handler = &proc_dointvec
  235. },
  236. {
  237. .ctl_name = NET_IPV4_TCP_RETRANS_COLLAPSE,
  238. .procname = "tcp_retrans_collapse",
  239. .data = &sysctl_tcp_retrans_collapse,
  240. .maxlen = sizeof(int),
  241. .mode = 0644,
  242. .proc_handler = &proc_dointvec
  243. },
  244. {
  245. .ctl_name = NET_IPV4_FORWARD,
  246. .procname = "ip_forward",
  247. .data = &IPV4_DEVCONF_ALL(FORWARDING),
  248. .maxlen = sizeof(int),
  249. .mode = 0644,
  250. .proc_handler = &ipv4_sysctl_forward,
  251. .strategy = &ipv4_sysctl_forward_strategy
  252. },
  253. {
  254. .ctl_name = NET_IPV4_DEFAULT_TTL,
  255. .procname = "ip_default_ttl",
  256. .data = &sysctl_ip_default_ttl,
  257. .maxlen = sizeof(int),
  258. .mode = 0644,
  259. .proc_handler = &ipv4_doint_and_flush,
  260. .strategy = &ipv4_doint_and_flush_strategy,
  261. },
  262. {
  263. .ctl_name = NET_IPV4_NO_PMTU_DISC,
  264. .procname = "ip_no_pmtu_disc",
  265. .data = &ipv4_config.no_pmtu_disc,
  266. .maxlen = sizeof(int),
  267. .mode = 0644,
  268. .proc_handler = &proc_dointvec
  269. },
  270. {
  271. .ctl_name = NET_IPV4_NONLOCAL_BIND,
  272. .procname = "ip_nonlocal_bind",
  273. .data = &sysctl_ip_nonlocal_bind,
  274. .maxlen = sizeof(int),
  275. .mode = 0644,
  276. .proc_handler = &proc_dointvec
  277. },
  278. {
  279. .ctl_name = NET_IPV4_TCP_SYN_RETRIES,
  280. .procname = "tcp_syn_retries",
  281. .data = &sysctl_tcp_syn_retries,
  282. .maxlen = sizeof(int),
  283. .mode = 0644,
  284. .proc_handler = &proc_dointvec
  285. },
  286. {
  287. .ctl_name = NET_TCP_SYNACK_RETRIES,
  288. .procname = "tcp_synack_retries",
  289. .data = &sysctl_tcp_synack_retries,
  290. .maxlen = sizeof(int),
  291. .mode = 0644,
  292. .proc_handler = &proc_dointvec
  293. },
  294. {
  295. .ctl_name = NET_TCP_MAX_ORPHANS,
  296. .procname = "tcp_max_orphans",
  297. .data = &sysctl_tcp_max_orphans,
  298. .maxlen = sizeof(int),
  299. .mode = 0644,
  300. .proc_handler = &proc_dointvec
  301. },
  302. {
  303. .ctl_name = NET_TCP_MAX_TW_BUCKETS,
  304. .procname = "tcp_max_tw_buckets",
  305. .data = &tcp_death_row.sysctl_max_tw_buckets,
  306. .maxlen = sizeof(int),
  307. .mode = 0644,
  308. .proc_handler = &proc_dointvec
  309. },
  310. {
  311. .ctl_name = NET_IPV4_IPFRAG_HIGH_THRESH,
  312. .procname = "ipfrag_high_thresh",
  313. .data = &ip4_frags_ctl.high_thresh,
  314. .maxlen = sizeof(int),
  315. .mode = 0644,
  316. .proc_handler = &proc_dointvec
  317. },
  318. {
  319. .ctl_name = NET_IPV4_IPFRAG_LOW_THRESH,
  320. .procname = "ipfrag_low_thresh",
  321. .data = &ip4_frags_ctl.low_thresh,
  322. .maxlen = sizeof(int),
  323. .mode = 0644,
  324. .proc_handler = &proc_dointvec
  325. },
  326. {
  327. .ctl_name = NET_IPV4_DYNADDR,
  328. .procname = "ip_dynaddr",
  329. .data = &sysctl_ip_dynaddr,
  330. .maxlen = sizeof(int),
  331. .mode = 0644,
  332. .proc_handler = &proc_dointvec
  333. },
  334. {
  335. .ctl_name = NET_IPV4_IPFRAG_TIME,
  336. .procname = "ipfrag_time",
  337. .data = &ip4_frags_ctl.timeout,
  338. .maxlen = sizeof(int),
  339. .mode = 0644,
  340. .proc_handler = &proc_dointvec_jiffies,
  341. .strategy = &sysctl_jiffies
  342. },
  343. {
  344. .ctl_name = NET_IPV4_TCP_KEEPALIVE_TIME,
  345. .procname = "tcp_keepalive_time",
  346. .data = &sysctl_tcp_keepalive_time,
  347. .maxlen = sizeof(int),
  348. .mode = 0644,
  349. .proc_handler = &proc_dointvec_jiffies,
  350. .strategy = &sysctl_jiffies
  351. },
  352. {
  353. .ctl_name = NET_IPV4_TCP_KEEPALIVE_PROBES,
  354. .procname = "tcp_keepalive_probes",
  355. .data = &sysctl_tcp_keepalive_probes,
  356. .maxlen = sizeof(int),
  357. .mode = 0644,
  358. .proc_handler = &proc_dointvec
  359. },
  360. {
  361. .ctl_name = NET_IPV4_TCP_KEEPALIVE_INTVL,
  362. .procname = "tcp_keepalive_intvl",
  363. .data = &sysctl_tcp_keepalive_intvl,
  364. .maxlen = sizeof(int),
  365. .mode = 0644,
  366. .proc_handler = &proc_dointvec_jiffies,
  367. .strategy = &sysctl_jiffies
  368. },
  369. {
  370. .ctl_name = NET_IPV4_TCP_RETRIES1,
  371. .procname = "tcp_retries1",
  372. .data = &sysctl_tcp_retries1,
  373. .maxlen = sizeof(int),
  374. .mode = 0644,
  375. .proc_handler = &proc_dointvec_minmax,
  376. .strategy = &sysctl_intvec,
  377. .extra2 = &tcp_retr1_max
  378. },
  379. {
  380. .ctl_name = NET_IPV4_TCP_RETRIES2,
  381. .procname = "tcp_retries2",
  382. .data = &sysctl_tcp_retries2,
  383. .maxlen = sizeof(int),
  384. .mode = 0644,
  385. .proc_handler = &proc_dointvec
  386. },
  387. {
  388. .ctl_name = NET_IPV4_TCP_FIN_TIMEOUT,
  389. .procname = "tcp_fin_timeout",
  390. .data = &sysctl_tcp_fin_timeout,
  391. .maxlen = sizeof(int),
  392. .mode = 0644,
  393. .proc_handler = &proc_dointvec_jiffies,
  394. .strategy = &sysctl_jiffies
  395. },
  396. #ifdef CONFIG_SYN_COOKIES
  397. {
  398. .ctl_name = NET_TCP_SYNCOOKIES,
  399. .procname = "tcp_syncookies",
  400. .data = &sysctl_tcp_syncookies,
  401. .maxlen = sizeof(int),
  402. .mode = 0644,
  403. .proc_handler = &proc_dointvec
  404. },
  405. #endif
  406. {
  407. .ctl_name = NET_TCP_TW_RECYCLE,
  408. .procname = "tcp_tw_recycle",
  409. .data = &tcp_death_row.sysctl_tw_recycle,
  410. .maxlen = sizeof(int),
  411. .mode = 0644,
  412. .proc_handler = &proc_dointvec
  413. },
  414. {
  415. .ctl_name = NET_TCP_ABORT_ON_OVERFLOW,
  416. .procname = "tcp_abort_on_overflow",
  417. .data = &sysctl_tcp_abort_on_overflow,
  418. .maxlen = sizeof(int),
  419. .mode = 0644,
  420. .proc_handler = &proc_dointvec
  421. },
  422. {
  423. .ctl_name = NET_TCP_STDURG,
  424. .procname = "tcp_stdurg",
  425. .data = &sysctl_tcp_stdurg,
  426. .maxlen = sizeof(int),
  427. .mode = 0644,
  428. .proc_handler = &proc_dointvec
  429. },
  430. {
  431. .ctl_name = NET_TCP_RFC1337,
  432. .procname = "tcp_rfc1337",
  433. .data = &sysctl_tcp_rfc1337,
  434. .maxlen = sizeof(int),
  435. .mode = 0644,
  436. .proc_handler = &proc_dointvec
  437. },
  438. {
  439. .ctl_name = NET_TCP_MAX_SYN_BACKLOG,
  440. .procname = "tcp_max_syn_backlog",
  441. .data = &sysctl_max_syn_backlog,
  442. .maxlen = sizeof(int),
  443. .mode = 0644,
  444. .proc_handler = &proc_dointvec
  445. },
  446. {
  447. .ctl_name = NET_IPV4_LOCAL_PORT_RANGE,
  448. .procname = "ip_local_port_range",
  449. .data = &sysctl_local_port_range,
  450. .maxlen = sizeof(sysctl_local_port_range),
  451. .mode = 0644,
  452. .proc_handler = &ipv4_local_port_range,
  453. .strategy = &ipv4_sysctl_local_port_range,
  454. },
  455. {
  456. .ctl_name = NET_IPV4_ICMP_ECHO_IGNORE_ALL,
  457. .procname = "icmp_echo_ignore_all",
  458. .data = &sysctl_icmp_echo_ignore_all,
  459. .maxlen = sizeof(int),
  460. .mode = 0644,
  461. .proc_handler = &proc_dointvec
  462. },
  463. {
  464. .ctl_name = NET_IPV4_ICMP_ECHO_IGNORE_BROADCASTS,
  465. .procname = "icmp_echo_ignore_broadcasts",
  466. .data = &sysctl_icmp_echo_ignore_broadcasts,
  467. .maxlen = sizeof(int),
  468. .mode = 0644,
  469. .proc_handler = &proc_dointvec
  470. },
  471. {
  472. .ctl_name = NET_IPV4_ICMP_IGNORE_BOGUS_ERROR_RESPONSES,
  473. .procname = "icmp_ignore_bogus_error_responses",
  474. .data = &sysctl_icmp_ignore_bogus_error_responses,
  475. .maxlen = sizeof(int),
  476. .mode = 0644,
  477. .proc_handler = &proc_dointvec
  478. },
  479. {
  480. .ctl_name = NET_IPV4_ICMP_ERRORS_USE_INBOUND_IFADDR,
  481. .procname = "icmp_errors_use_inbound_ifaddr",
  482. .data = &sysctl_icmp_errors_use_inbound_ifaddr,
  483. .maxlen = sizeof(int),
  484. .mode = 0644,
  485. .proc_handler = &proc_dointvec
  486. },
  487. {
  488. .ctl_name = NET_IPV4_ROUTE,
  489. .procname = "route",
  490. .maxlen = 0,
  491. .mode = 0555,
  492. .child = ipv4_route_table
  493. },
  494. #ifdef CONFIG_IP_MULTICAST
  495. {
  496. .ctl_name = NET_IPV4_IGMP_MAX_MEMBERSHIPS,
  497. .procname = "igmp_max_memberships",
  498. .data = &sysctl_igmp_max_memberships,
  499. .maxlen = sizeof(int),
  500. .mode = 0644,
  501. .proc_handler = &proc_dointvec
  502. },
  503. #endif
  504. {
  505. .ctl_name = NET_IPV4_IGMP_MAX_MSF,
  506. .procname = "igmp_max_msf",
  507. .data = &sysctl_igmp_max_msf,
  508. .maxlen = sizeof(int),
  509. .mode = 0644,
  510. .proc_handler = &proc_dointvec
  511. },
  512. {
  513. .ctl_name = NET_IPV4_INET_PEER_THRESHOLD,
  514. .procname = "inet_peer_threshold",
  515. .data = &inet_peer_threshold,
  516. .maxlen = sizeof(int),
  517. .mode = 0644,
  518. .proc_handler = &proc_dointvec
  519. },
  520. {
  521. .ctl_name = NET_IPV4_INET_PEER_MINTTL,
  522. .procname = "inet_peer_minttl",
  523. .data = &inet_peer_minttl,
  524. .maxlen = sizeof(int),
  525. .mode = 0644,
  526. .proc_handler = &proc_dointvec_jiffies,
  527. .strategy = &sysctl_jiffies
  528. },
  529. {
  530. .ctl_name = NET_IPV4_INET_PEER_MAXTTL,
  531. .procname = "inet_peer_maxttl",
  532. .data = &inet_peer_maxttl,
  533. .maxlen = sizeof(int),
  534. .mode = 0644,
  535. .proc_handler = &proc_dointvec_jiffies,
  536. .strategy = &sysctl_jiffies
  537. },
  538. {
  539. .ctl_name = NET_IPV4_INET_PEER_GC_MINTIME,
  540. .procname = "inet_peer_gc_mintime",
  541. .data = &inet_peer_gc_mintime,
  542. .maxlen = sizeof(int),
  543. .mode = 0644,
  544. .proc_handler = &proc_dointvec_jiffies,
  545. .strategy = &sysctl_jiffies
  546. },
  547. {
  548. .ctl_name = NET_IPV4_INET_PEER_GC_MAXTIME,
  549. .procname = "inet_peer_gc_maxtime",
  550. .data = &inet_peer_gc_maxtime,
  551. .maxlen = sizeof(int),
  552. .mode = 0644,
  553. .proc_handler = &proc_dointvec_jiffies,
  554. .strategy = &sysctl_jiffies
  555. },
  556. {
  557. .ctl_name = NET_TCP_ORPHAN_RETRIES,
  558. .procname = "tcp_orphan_retries",
  559. .data = &sysctl_tcp_orphan_retries,
  560. .maxlen = sizeof(int),
  561. .mode = 0644,
  562. .proc_handler = &proc_dointvec
  563. },
  564. {
  565. .ctl_name = NET_TCP_FACK,
  566. .procname = "tcp_fack",
  567. .data = &sysctl_tcp_fack,
  568. .maxlen = sizeof(int),
  569. .mode = 0644,
  570. .proc_handler = &proc_dointvec
  571. },
  572. {
  573. .ctl_name = NET_TCP_REORDERING,
  574. .procname = "tcp_reordering",
  575. .data = &sysctl_tcp_reordering,
  576. .maxlen = sizeof(int),
  577. .mode = 0644,
  578. .proc_handler = &proc_dointvec
  579. },
  580. {
  581. .ctl_name = NET_TCP_ECN,
  582. .procname = "tcp_ecn",
  583. .data = &sysctl_tcp_ecn,
  584. .maxlen = sizeof(int),
  585. .mode = 0644,
  586. .proc_handler = &proc_dointvec
  587. },
  588. {
  589. .ctl_name = NET_TCP_DSACK,
  590. .procname = "tcp_dsack",
  591. .data = &sysctl_tcp_dsack,
  592. .maxlen = sizeof(int),
  593. .mode = 0644,
  594. .proc_handler = &proc_dointvec
  595. },
  596. {
  597. .ctl_name = NET_TCP_MEM,
  598. .procname = "tcp_mem",
  599. .data = &sysctl_tcp_mem,
  600. .maxlen = sizeof(sysctl_tcp_mem),
  601. .mode = 0644,
  602. .proc_handler = &proc_dointvec
  603. },
  604. {
  605. .ctl_name = NET_TCP_WMEM,
  606. .procname = "tcp_wmem",
  607. .data = &sysctl_tcp_wmem,
  608. .maxlen = sizeof(sysctl_tcp_wmem),
  609. .mode = 0644,
  610. .proc_handler = &proc_dointvec
  611. },
  612. {
  613. .ctl_name = NET_TCP_RMEM,
  614. .procname = "tcp_rmem",
  615. .data = &sysctl_tcp_rmem,
  616. .maxlen = sizeof(sysctl_tcp_rmem),
  617. .mode = 0644,
  618. .proc_handler = &proc_dointvec
  619. },
  620. {
  621. .ctl_name = NET_TCP_APP_WIN,
  622. .procname = "tcp_app_win",
  623. .data = &sysctl_tcp_app_win,
  624. .maxlen = sizeof(int),
  625. .mode = 0644,
  626. .proc_handler = &proc_dointvec
  627. },
  628. {
  629. .ctl_name = NET_TCP_ADV_WIN_SCALE,
  630. .procname = "tcp_adv_win_scale",
  631. .data = &sysctl_tcp_adv_win_scale,
  632. .maxlen = sizeof(int),
  633. .mode = 0644,
  634. .proc_handler = &proc_dointvec
  635. },
  636. {
  637. .ctl_name = NET_IPV4_ICMP_RATELIMIT,
  638. .procname = "icmp_ratelimit",
  639. .data = &sysctl_icmp_ratelimit,
  640. .maxlen = sizeof(int),
  641. .mode = 0644,
  642. .proc_handler = &proc_dointvec
  643. },
  644. {
  645. .ctl_name = NET_IPV4_ICMP_RATEMASK,
  646. .procname = "icmp_ratemask",
  647. .data = &sysctl_icmp_ratemask,
  648. .maxlen = sizeof(int),
  649. .mode = 0644,
  650. .proc_handler = &proc_dointvec
  651. },
  652. {
  653. .ctl_name = NET_TCP_TW_REUSE,
  654. .procname = "tcp_tw_reuse",
  655. .data = &sysctl_tcp_tw_reuse,
  656. .maxlen = sizeof(int),
  657. .mode = 0644,
  658. .proc_handler = &proc_dointvec
  659. },
  660. {
  661. .ctl_name = NET_TCP_FRTO,
  662. .procname = "tcp_frto",
  663. .data = &sysctl_tcp_frto,
  664. .maxlen = sizeof(int),
  665. .mode = 0644,
  666. .proc_handler = &proc_dointvec
  667. },
  668. {
  669. .ctl_name = NET_TCP_FRTO_RESPONSE,
  670. .procname = "tcp_frto_response",
  671. .data = &sysctl_tcp_frto_response,
  672. .maxlen = sizeof(int),
  673. .mode = 0644,
  674. .proc_handler = &proc_dointvec
  675. },
  676. {
  677. .ctl_name = NET_TCP_LOW_LATENCY,
  678. .procname = "tcp_low_latency",
  679. .data = &sysctl_tcp_low_latency,
  680. .maxlen = sizeof(int),
  681. .mode = 0644,
  682. .proc_handler = &proc_dointvec
  683. },
  684. {
  685. .ctl_name = NET_IPV4_IPFRAG_SECRET_INTERVAL,
  686. .procname = "ipfrag_secret_interval",
  687. .data = &ip4_frags_ctl.secret_interval,
  688. .maxlen = sizeof(int),
  689. .mode = 0644,
  690. .proc_handler = &proc_dointvec_jiffies,
  691. .strategy = &sysctl_jiffies
  692. },
  693. {
  694. .procname = "ipfrag_max_dist",
  695. .data = &sysctl_ipfrag_max_dist,
  696. .maxlen = sizeof(int),
  697. .mode = 0644,
  698. .proc_handler = &proc_dointvec_minmax,
  699. .extra1 = &zero
  700. },
  701. {
  702. .ctl_name = NET_TCP_NO_METRICS_SAVE,
  703. .procname = "tcp_no_metrics_save",
  704. .data = &sysctl_tcp_nometrics_save,
  705. .maxlen = sizeof(int),
  706. .mode = 0644,
  707. .proc_handler = &proc_dointvec,
  708. },
  709. {
  710. .ctl_name = NET_TCP_MODERATE_RCVBUF,
  711. .procname = "tcp_moderate_rcvbuf",
  712. .data = &sysctl_tcp_moderate_rcvbuf,
  713. .maxlen = sizeof(int),
  714. .mode = 0644,
  715. .proc_handler = &proc_dointvec,
  716. },
  717. {
  718. .ctl_name = NET_TCP_TSO_WIN_DIVISOR,
  719. .procname = "tcp_tso_win_divisor",
  720. .data = &sysctl_tcp_tso_win_divisor,
  721. .maxlen = sizeof(int),
  722. .mode = 0644,
  723. .proc_handler = &proc_dointvec,
  724. },
  725. {
  726. .ctl_name = NET_TCP_CONG_CONTROL,
  727. .procname = "tcp_congestion_control",
  728. .mode = 0644,
  729. .maxlen = TCP_CA_NAME_MAX,
  730. .proc_handler = &proc_tcp_congestion_control,
  731. .strategy = &sysctl_tcp_congestion_control,
  732. },
  733. {
  734. .ctl_name = NET_TCP_ABC,
  735. .procname = "tcp_abc",
  736. .data = &sysctl_tcp_abc,
  737. .maxlen = sizeof(int),
  738. .mode = 0644,
  739. .proc_handler = &proc_dointvec,
  740. },
  741. {
  742. .ctl_name = NET_TCP_MTU_PROBING,
  743. .procname = "tcp_mtu_probing",
  744. .data = &sysctl_tcp_mtu_probing,
  745. .maxlen = sizeof(int),
  746. .mode = 0644,
  747. .proc_handler = &proc_dointvec,
  748. },
  749. {
  750. .ctl_name = NET_TCP_BASE_MSS,
  751. .procname = "tcp_base_mss",
  752. .data = &sysctl_tcp_base_mss,
  753. .maxlen = sizeof(int),
  754. .mode = 0644,
  755. .proc_handler = &proc_dointvec,
  756. },
  757. {
  758. .ctl_name = NET_IPV4_TCP_WORKAROUND_SIGNED_WINDOWS,
  759. .procname = "tcp_workaround_signed_windows",
  760. .data = &sysctl_tcp_workaround_signed_windows,
  761. .maxlen = sizeof(int),
  762. .mode = 0644,
  763. .proc_handler = &proc_dointvec
  764. },
  765. #ifdef CONFIG_NET_DMA
  766. {
  767. .ctl_name = NET_TCP_DMA_COPYBREAK,
  768. .procname = "tcp_dma_copybreak",
  769. .data = &sysctl_tcp_dma_copybreak,
  770. .maxlen = sizeof(int),
  771. .mode = 0644,
  772. .proc_handler = &proc_dointvec
  773. },
  774. #endif
  775. {
  776. .ctl_name = NET_TCP_SLOW_START_AFTER_IDLE,
  777. .procname = "tcp_slow_start_after_idle",
  778. .data = &sysctl_tcp_slow_start_after_idle,
  779. .maxlen = sizeof(int),
  780. .mode = 0644,
  781. .proc_handler = &proc_dointvec
  782. },
  783. #ifdef CONFIG_NETLABEL
  784. {
  785. .ctl_name = NET_CIPSOV4_CACHE_ENABLE,
  786. .procname = "cipso_cache_enable",
  787. .data = &cipso_v4_cache_enabled,
  788. .maxlen = sizeof(int),
  789. .mode = 0644,
  790. .proc_handler = &proc_dointvec,
  791. },
  792. {
  793. .ctl_name = NET_CIPSOV4_CACHE_BUCKET_SIZE,
  794. .procname = "cipso_cache_bucket_size",
  795. .data = &cipso_v4_cache_bucketsize,
  796. .maxlen = sizeof(int),
  797. .mode = 0644,
  798. .proc_handler = &proc_dointvec,
  799. },
  800. {
  801. .ctl_name = NET_CIPSOV4_RBM_OPTFMT,
  802. .procname = "cipso_rbm_optfmt",
  803. .data = &cipso_v4_rbm_optfmt,
  804. .maxlen = sizeof(int),
  805. .mode = 0644,
  806. .proc_handler = &proc_dointvec,
  807. },
  808. {
  809. .ctl_name = NET_CIPSOV4_RBM_STRICTVALID,
  810. .procname = "cipso_rbm_strictvalid",
  811. .data = &cipso_v4_rbm_strictvalid,
  812. .maxlen = sizeof(int),
  813. .mode = 0644,
  814. .proc_handler = &proc_dointvec,
  815. },
  816. #endif /* CONFIG_NETLABEL */
  817. {
  818. .procname = "tcp_available_congestion_control",
  819. .maxlen = TCP_CA_BUF_MAX,
  820. .mode = 0444,
  821. .proc_handler = &proc_tcp_available_congestion_control,
  822. },
  823. {
  824. .ctl_name = NET_TCP_ALLOWED_CONG_CONTROL,
  825. .procname = "tcp_allowed_congestion_control",
  826. .maxlen = TCP_CA_BUF_MAX,
  827. .mode = 0644,
  828. .proc_handler = &proc_allowed_congestion_control,
  829. .strategy = &strategy_allowed_congestion_control,
  830. },
  831. {
  832. .ctl_name = NET_TCP_MAX_SSTHRESH,
  833. .procname = "tcp_max_ssthresh",
  834. .data = &sysctl_tcp_max_ssthresh,
  835. .maxlen = sizeof(int),
  836. .mode = 0644,
  837. .proc_handler = &proc_dointvec,
  838. },
  839. { .ctl_name = 0 }
  840. };
  841. static __initdata struct ctl_path net_ipv4_path[] = {
  842. { .procname = "net", .ctl_name = CTL_NET, },
  843. { .procname = "ipv4", .ctl_name = NET_IPV4, },
  844. { },
  845. };
  846. static __init int sysctl_ipv4_init(void)
  847. {
  848. struct ctl_table_header *hdr;
  849. hdr = register_sysctl_paths(net_ipv4_path, ipv4_table);
  850. return hdr == NULL ? -ENOMEM : 0;
  851. }
  852. __initcall(sysctl_ipv4_init);