tcp_timer.c 14 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440441442443444445446447448449450451452453454455456457458459460461462463464465466467468469470471472473474475476477478479480481482483484485486487488489490491492493494495496497498499500501502503504505506507508509510511512513514515516517518519520521522523524525526527528529
  1. /*
  2. * INET An implementation of the TCP/IP protocol suite for the LINUX
  3. * operating system. INET is implemented using the BSD Socket
  4. * interface as the means of communication with the user level.
  5. *
  6. * Implementation of the Transmission Control Protocol(TCP).
  7. *
  8. * Version: $Id: tcp_timer.c,v 1.88 2002/02/01 22:01:04 davem Exp $
  9. *
  10. * Authors: Ross Biro
  11. * Fred N. van Kempen, <waltje@uWalt.NL.Mugnet.ORG>
  12. * Mark Evans, <evansmp@uhura.aston.ac.uk>
  13. * Corey Minyard <wf-rch!minyard@relay.EU.net>
  14. * Florian La Roche, <flla@stud.uni-sb.de>
  15. * Charles Hedrick, <hedrick@klinzhai.rutgers.edu>
  16. * Linus Torvalds, <torvalds@cs.helsinki.fi>
  17. * Alan Cox, <gw4pts@gw4pts.ampr.org>
  18. * Matthew Dillon, <dillon@apollo.west.oic.com>
  19. * Arnt Gulbrandsen, <agulbra@nvg.unit.no>
  20. * Jorge Cwik, <jorge@laser.satlink.net>
  21. */
  22. #include <linux/module.h>
  23. #include <net/tcp.h>
  24. int sysctl_tcp_syn_retries __read_mostly = TCP_SYN_RETRIES;
  25. int sysctl_tcp_synack_retries __read_mostly = TCP_SYNACK_RETRIES;
  26. int sysctl_tcp_keepalive_time __read_mostly = TCP_KEEPALIVE_TIME;
  27. int sysctl_tcp_keepalive_probes __read_mostly = TCP_KEEPALIVE_PROBES;
  28. int sysctl_tcp_keepalive_intvl __read_mostly = TCP_KEEPALIVE_INTVL;
  29. int sysctl_tcp_retries1 __read_mostly = TCP_RETR1;
  30. int sysctl_tcp_retries2 __read_mostly = TCP_RETR2;
  31. int sysctl_tcp_orphan_retries __read_mostly;
  32. static void tcp_write_timer(unsigned long);
  33. static void tcp_delack_timer(unsigned long);
  34. static void tcp_keepalive_timer (unsigned long data);
  35. void tcp_init_xmit_timers(struct sock *sk)
  36. {
  37. inet_csk_init_xmit_timers(sk, &tcp_write_timer, &tcp_delack_timer,
  38. &tcp_keepalive_timer);
  39. }
  40. EXPORT_SYMBOL(tcp_init_xmit_timers);
  41. static void tcp_write_err(struct sock *sk)
  42. {
  43. sk->sk_err = sk->sk_err_soft ? : ETIMEDOUT;
  44. sk->sk_error_report(sk);
  45. tcp_done(sk);
  46. NET_INC_STATS_BH(LINUX_MIB_TCPABORTONTIMEOUT);
  47. }
  48. /* Do not allow orphaned sockets to eat all our resources.
  49. * This is direct violation of TCP specs, but it is required
  50. * to prevent DoS attacks. It is called when a retransmission timeout
  51. * or zero probe timeout occurs on orphaned socket.
  52. *
  53. * Criteria is still not confirmed experimentally and may change.
  54. * We kill the socket, if:
  55. * 1. If number of orphaned sockets exceeds an administratively configured
  56. * limit.
  57. * 2. If we have strong memory pressure.
  58. */
  59. static int tcp_out_of_resources(struct sock *sk, int do_reset)
  60. {
  61. struct tcp_sock *tp = tcp_sk(sk);
  62. int orphans = atomic_read(&tcp_orphan_count);
  63. /* If peer does not open window for long time, or did not transmit
  64. * anything for long time, penalize it. */
  65. if ((s32)(tcp_time_stamp - tp->lsndtime) > 2*TCP_RTO_MAX || !do_reset)
  66. orphans <<= 1;
  67. /* If some dubious ICMP arrived, penalize even more. */
  68. if (sk->sk_err_soft)
  69. orphans <<= 1;
  70. if (tcp_too_many_orphans(sk, orphans)) {
  71. if (net_ratelimit())
  72. printk(KERN_INFO "Out of socket memory\n");
  73. /* Catch exceptional cases, when connection requires reset.
  74. * 1. Last segment was sent recently. */
  75. if ((s32)(tcp_time_stamp - tp->lsndtime) <= TCP_TIMEWAIT_LEN ||
  76. /* 2. Window is closed. */
  77. (!tp->snd_wnd && !tp->packets_out))
  78. do_reset = 1;
  79. if (do_reset)
  80. tcp_send_active_reset(sk, GFP_ATOMIC);
  81. tcp_done(sk);
  82. NET_INC_STATS_BH(LINUX_MIB_TCPABORTONMEMORY);
  83. return 1;
  84. }
  85. return 0;
  86. }
  87. /* Calculate maximal number or retries on an orphaned socket. */
  88. static int tcp_orphan_retries(struct sock *sk, int alive)
  89. {
  90. int retries = sysctl_tcp_orphan_retries; /* May be zero. */
  91. /* We know from an ICMP that something is wrong. */
  92. if (sk->sk_err_soft && !alive)
  93. retries = 0;
  94. /* However, if socket sent something recently, select some safe
  95. * number of retries. 8 corresponds to >100 seconds with minimal
  96. * RTO of 200msec. */
  97. if (retries == 0 && alive)
  98. retries = 8;
  99. return retries;
  100. }
  101. static void tcp_mtu_probing(struct inet_connection_sock *icsk, struct sock *sk)
  102. {
  103. /* Black hole detection */
  104. if (sysctl_tcp_mtu_probing) {
  105. if (!icsk->icsk_mtup.enabled) {
  106. icsk->icsk_mtup.enabled = 1;
  107. tcp_sync_mss(sk, icsk->icsk_pmtu_cookie);
  108. } else {
  109. struct tcp_sock *tp = tcp_sk(sk);
  110. int mss;
  111. mss = tcp_mtu_to_mss(sk, icsk->icsk_mtup.search_low) >> 1;
  112. mss = min(sysctl_tcp_base_mss, mss);
  113. mss = max(mss, 68 - tp->tcp_header_len);
  114. icsk->icsk_mtup.search_low = tcp_mss_to_mtu(sk, mss);
  115. tcp_sync_mss(sk, icsk->icsk_pmtu_cookie);
  116. }
  117. }
  118. }
  119. /* A write timeout has occurred. Process the after effects. */
  120. static int tcp_write_timeout(struct sock *sk)
  121. {
  122. struct inet_connection_sock *icsk = inet_csk(sk);
  123. int retry_until;
  124. if ((1 << sk->sk_state) & (TCPF_SYN_SENT | TCPF_SYN_RECV)) {
  125. if (icsk->icsk_retransmits)
  126. dst_negative_advice(&sk->sk_dst_cache);
  127. retry_until = icsk->icsk_syn_retries ? : sysctl_tcp_syn_retries;
  128. } else {
  129. if (icsk->icsk_retransmits >= sysctl_tcp_retries1) {
  130. /* Black hole detection */
  131. tcp_mtu_probing(icsk, sk);
  132. dst_negative_advice(&sk->sk_dst_cache);
  133. }
  134. retry_until = sysctl_tcp_retries2;
  135. if (sock_flag(sk, SOCK_DEAD)) {
  136. const int alive = (icsk->icsk_rto < TCP_RTO_MAX);
  137. retry_until = tcp_orphan_retries(sk, alive);
  138. if (tcp_out_of_resources(sk, alive || icsk->icsk_retransmits < retry_until))
  139. return 1;
  140. }
  141. }
  142. if (icsk->icsk_retransmits >= retry_until) {
  143. /* Has it gone just too far? */
  144. tcp_write_err(sk);
  145. return 1;
  146. }
  147. return 0;
  148. }
  149. static void tcp_delack_timer(unsigned long data)
  150. {
  151. struct sock *sk = (struct sock*)data;
  152. struct tcp_sock *tp = tcp_sk(sk);
  153. struct inet_connection_sock *icsk = inet_csk(sk);
  154. bh_lock_sock(sk);
  155. if (sock_owned_by_user(sk)) {
  156. /* Try again later. */
  157. icsk->icsk_ack.blocked = 1;
  158. NET_INC_STATS_BH(LINUX_MIB_DELAYEDACKLOCKED);
  159. sk_reset_timer(sk, &icsk->icsk_delack_timer, jiffies + TCP_DELACK_MIN);
  160. goto out_unlock;
  161. }
  162. sk_mem_reclaim_partial(sk);
  163. if (sk->sk_state == TCP_CLOSE || !(icsk->icsk_ack.pending & ICSK_ACK_TIMER))
  164. goto out;
  165. if (time_after(icsk->icsk_ack.timeout, jiffies)) {
  166. sk_reset_timer(sk, &icsk->icsk_delack_timer, icsk->icsk_ack.timeout);
  167. goto out;
  168. }
  169. icsk->icsk_ack.pending &= ~ICSK_ACK_TIMER;
  170. if (!skb_queue_empty(&tp->ucopy.prequeue)) {
  171. struct sk_buff *skb;
  172. NET_INC_STATS_BH(LINUX_MIB_TCPSCHEDULERFAILED);
  173. while ((skb = __skb_dequeue(&tp->ucopy.prequeue)) != NULL)
  174. sk->sk_backlog_rcv(sk, skb);
  175. tp->ucopy.memory = 0;
  176. }
  177. if (inet_csk_ack_scheduled(sk)) {
  178. if (!icsk->icsk_ack.pingpong) {
  179. /* Delayed ACK missed: inflate ATO. */
  180. icsk->icsk_ack.ato = min(icsk->icsk_ack.ato << 1, icsk->icsk_rto);
  181. } else {
  182. /* Delayed ACK missed: leave pingpong mode and
  183. * deflate ATO.
  184. */
  185. icsk->icsk_ack.pingpong = 0;
  186. icsk->icsk_ack.ato = TCP_ATO_MIN;
  187. }
  188. tcp_send_ack(sk);
  189. NET_INC_STATS_BH(LINUX_MIB_DELAYEDACKS);
  190. }
  191. TCP_CHECK_TIMER(sk);
  192. out:
  193. if (tcp_memory_pressure)
  194. sk_mem_reclaim(sk);
  195. out_unlock:
  196. bh_unlock_sock(sk);
  197. sock_put(sk);
  198. }
  199. static void tcp_probe_timer(struct sock *sk)
  200. {
  201. struct inet_connection_sock *icsk = inet_csk(sk);
  202. struct tcp_sock *tp = tcp_sk(sk);
  203. int max_probes;
  204. if (tp->packets_out || !tcp_send_head(sk)) {
  205. icsk->icsk_probes_out = 0;
  206. return;
  207. }
  208. /* *WARNING* RFC 1122 forbids this
  209. *
  210. * It doesn't AFAIK, because we kill the retransmit timer -AK
  211. *
  212. * FIXME: We ought not to do it, Solaris 2.5 actually has fixing
  213. * this behaviour in Solaris down as a bug fix. [AC]
  214. *
  215. * Let me to explain. icsk_probes_out is zeroed by incoming ACKs
  216. * even if they advertise zero window. Hence, connection is killed only
  217. * if we received no ACKs for normal connection timeout. It is not killed
  218. * only because window stays zero for some time, window may be zero
  219. * until armageddon and even later. We are in full accordance
  220. * with RFCs, only probe timer combines both retransmission timeout
  221. * and probe timeout in one bottle. --ANK
  222. */
  223. max_probes = sysctl_tcp_retries2;
  224. if (sock_flag(sk, SOCK_DEAD)) {
  225. const int alive = ((icsk->icsk_rto << icsk->icsk_backoff) < TCP_RTO_MAX);
  226. max_probes = tcp_orphan_retries(sk, alive);
  227. if (tcp_out_of_resources(sk, alive || icsk->icsk_probes_out <= max_probes))
  228. return;
  229. }
  230. if (icsk->icsk_probes_out > max_probes) {
  231. tcp_write_err(sk);
  232. } else {
  233. /* Only send another probe if we didn't close things up. */
  234. tcp_send_probe0(sk);
  235. }
  236. }
  237. /*
  238. * The TCP retransmit timer.
  239. */
  240. static void tcp_retransmit_timer(struct sock *sk)
  241. {
  242. struct tcp_sock *tp = tcp_sk(sk);
  243. struct inet_connection_sock *icsk = inet_csk(sk);
  244. if (!tp->packets_out)
  245. goto out;
  246. BUG_TRAP(!tcp_write_queue_empty(sk));
  247. if (!tp->snd_wnd && !sock_flag(sk, SOCK_DEAD) &&
  248. !((1 << sk->sk_state) & (TCPF_SYN_SENT | TCPF_SYN_RECV))) {
  249. /* Receiver dastardly shrinks window. Our retransmits
  250. * become zero probes, but we should not timeout this
  251. * connection. If the socket is an orphan, time it out,
  252. * we cannot allow such beasts to hang infinitely.
  253. */
  254. #ifdef TCP_DEBUG
  255. if (1) {
  256. struct inet_sock *inet = inet_sk(sk);
  257. LIMIT_NETDEBUG(KERN_DEBUG "TCP: Treason uncloaked! Peer %u.%u.%u.%u:%u/%u shrinks window %u:%u. Repaired.\n",
  258. NIPQUAD(inet->daddr), ntohs(inet->dport),
  259. inet->num, tp->snd_una, tp->snd_nxt);
  260. }
  261. #endif
  262. if (tcp_time_stamp - tp->rcv_tstamp > TCP_RTO_MAX) {
  263. tcp_write_err(sk);
  264. goto out;
  265. }
  266. tcp_enter_loss(sk, 0);
  267. tcp_retransmit_skb(sk, tcp_write_queue_head(sk));
  268. __sk_dst_reset(sk);
  269. goto out_reset_timer;
  270. }
  271. if (tcp_write_timeout(sk))
  272. goto out;
  273. if (icsk->icsk_retransmits == 0) {
  274. if (icsk->icsk_ca_state == TCP_CA_Disorder ||
  275. icsk->icsk_ca_state == TCP_CA_Recovery) {
  276. if (tcp_is_sack(tp)) {
  277. if (icsk->icsk_ca_state == TCP_CA_Recovery)
  278. NET_INC_STATS_BH(LINUX_MIB_TCPSACKRECOVERYFAIL);
  279. else
  280. NET_INC_STATS_BH(LINUX_MIB_TCPSACKFAILURES);
  281. } else {
  282. if (icsk->icsk_ca_state == TCP_CA_Recovery)
  283. NET_INC_STATS_BH(LINUX_MIB_TCPRENORECOVERYFAIL);
  284. else
  285. NET_INC_STATS_BH(LINUX_MIB_TCPRENOFAILURES);
  286. }
  287. } else if (icsk->icsk_ca_state == TCP_CA_Loss) {
  288. NET_INC_STATS_BH(LINUX_MIB_TCPLOSSFAILURES);
  289. } else {
  290. NET_INC_STATS_BH(LINUX_MIB_TCPTIMEOUTS);
  291. }
  292. }
  293. if (tcp_use_frto(sk)) {
  294. tcp_enter_frto(sk);
  295. } else {
  296. tcp_enter_loss(sk, 0);
  297. }
  298. if (tcp_retransmit_skb(sk, tcp_write_queue_head(sk)) > 0) {
  299. /* Retransmission failed because of local congestion,
  300. * do not backoff.
  301. */
  302. if (!icsk->icsk_retransmits)
  303. icsk->icsk_retransmits = 1;
  304. inet_csk_reset_xmit_timer(sk, ICSK_TIME_RETRANS,
  305. min(icsk->icsk_rto, TCP_RESOURCE_PROBE_INTERVAL),
  306. TCP_RTO_MAX);
  307. goto out;
  308. }
  309. /* Increase the timeout each time we retransmit. Note that
  310. * we do not increase the rtt estimate. rto is initialized
  311. * from rtt, but increases here. Jacobson (SIGCOMM 88) suggests
  312. * that doubling rto each time is the least we can get away with.
  313. * In KA9Q, Karn uses this for the first few times, and then
  314. * goes to quadratic. netBSD doubles, but only goes up to *64,
  315. * and clamps at 1 to 64 sec afterwards. Note that 120 sec is
  316. * defined in the protocol as the maximum possible RTT. I guess
  317. * we'll have to use something other than TCP to talk to the
  318. * University of Mars.
  319. *
  320. * PAWS allows us longer timeouts and large windows, so once
  321. * implemented ftp to mars will work nicely. We will have to fix
  322. * the 120 second clamps though!
  323. */
  324. icsk->icsk_backoff++;
  325. icsk->icsk_retransmits++;
  326. out_reset_timer:
  327. icsk->icsk_rto = min(icsk->icsk_rto << 1, TCP_RTO_MAX);
  328. inet_csk_reset_xmit_timer(sk, ICSK_TIME_RETRANS, icsk->icsk_rto, TCP_RTO_MAX);
  329. if (icsk->icsk_retransmits > sysctl_tcp_retries1)
  330. __sk_dst_reset(sk);
  331. out:;
  332. }
  333. static void tcp_write_timer(unsigned long data)
  334. {
  335. struct sock *sk = (struct sock*)data;
  336. struct inet_connection_sock *icsk = inet_csk(sk);
  337. int event;
  338. bh_lock_sock(sk);
  339. if (sock_owned_by_user(sk)) {
  340. /* Try again later */
  341. sk_reset_timer(sk, &icsk->icsk_retransmit_timer, jiffies + (HZ / 20));
  342. goto out_unlock;
  343. }
  344. if (sk->sk_state == TCP_CLOSE || !icsk->icsk_pending)
  345. goto out;
  346. if (time_after(icsk->icsk_timeout, jiffies)) {
  347. sk_reset_timer(sk, &icsk->icsk_retransmit_timer, icsk->icsk_timeout);
  348. goto out;
  349. }
  350. event = icsk->icsk_pending;
  351. icsk->icsk_pending = 0;
  352. switch (event) {
  353. case ICSK_TIME_RETRANS:
  354. tcp_retransmit_timer(sk);
  355. break;
  356. case ICSK_TIME_PROBE0:
  357. tcp_probe_timer(sk);
  358. break;
  359. }
  360. TCP_CHECK_TIMER(sk);
  361. out:
  362. sk_mem_reclaim(sk);
  363. out_unlock:
  364. bh_unlock_sock(sk);
  365. sock_put(sk);
  366. }
  367. /*
  368. * Timer for listening sockets
  369. */
  370. static void tcp_synack_timer(struct sock *sk)
  371. {
  372. inet_csk_reqsk_queue_prune(sk, TCP_SYNQ_INTERVAL,
  373. TCP_TIMEOUT_INIT, TCP_RTO_MAX);
  374. }
  375. void tcp_set_keepalive(struct sock *sk, int val)
  376. {
  377. if ((1 << sk->sk_state) & (TCPF_CLOSE | TCPF_LISTEN))
  378. return;
  379. if (val && !sock_flag(sk, SOCK_KEEPOPEN))
  380. inet_csk_reset_keepalive_timer(sk, keepalive_time_when(tcp_sk(sk)));
  381. else if (!val)
  382. inet_csk_delete_keepalive_timer(sk);
  383. }
  384. static void tcp_keepalive_timer (unsigned long data)
  385. {
  386. struct sock *sk = (struct sock *) data;
  387. struct inet_connection_sock *icsk = inet_csk(sk);
  388. struct tcp_sock *tp = tcp_sk(sk);
  389. __u32 elapsed;
  390. /* Only process if socket is not in use. */
  391. bh_lock_sock(sk);
  392. if (sock_owned_by_user(sk)) {
  393. /* Try again later. */
  394. inet_csk_reset_keepalive_timer (sk, HZ/20);
  395. goto out;
  396. }
  397. if (sk->sk_state == TCP_LISTEN) {
  398. tcp_synack_timer(sk);
  399. goto out;
  400. }
  401. if (sk->sk_state == TCP_FIN_WAIT2 && sock_flag(sk, SOCK_DEAD)) {
  402. if (tp->linger2 >= 0) {
  403. const int tmo = tcp_fin_time(sk) - TCP_TIMEWAIT_LEN;
  404. if (tmo > 0) {
  405. tcp_time_wait(sk, TCP_FIN_WAIT2, tmo);
  406. goto out;
  407. }
  408. }
  409. tcp_send_active_reset(sk, GFP_ATOMIC);
  410. goto death;
  411. }
  412. if (!sock_flag(sk, SOCK_KEEPOPEN) || sk->sk_state == TCP_CLOSE)
  413. goto out;
  414. elapsed = keepalive_time_when(tp);
  415. /* It is alive without keepalive 8) */
  416. if (tp->packets_out || tcp_send_head(sk))
  417. goto resched;
  418. elapsed = tcp_time_stamp - tp->rcv_tstamp;
  419. if (elapsed >= keepalive_time_when(tp)) {
  420. if ((!tp->keepalive_probes && icsk->icsk_probes_out >= sysctl_tcp_keepalive_probes) ||
  421. (tp->keepalive_probes && icsk->icsk_probes_out >= tp->keepalive_probes)) {
  422. tcp_send_active_reset(sk, GFP_ATOMIC);
  423. tcp_write_err(sk);
  424. goto out;
  425. }
  426. if (tcp_write_wakeup(sk) <= 0) {
  427. icsk->icsk_probes_out++;
  428. elapsed = keepalive_intvl_when(tp);
  429. } else {
  430. /* If keepalive was lost due to local congestion,
  431. * try harder.
  432. */
  433. elapsed = TCP_RESOURCE_PROBE_INTERVAL;
  434. }
  435. } else {
  436. /* It is tp->rcv_tstamp + keepalive_time_when(tp) */
  437. elapsed = keepalive_time_when(tp) - elapsed;
  438. }
  439. TCP_CHECK_TIMER(sk);
  440. sk_mem_reclaim(sk);
  441. resched:
  442. inet_csk_reset_keepalive_timer (sk, elapsed);
  443. goto out;
  444. death:
  445. tcp_done(sk);
  446. out:
  447. bh_unlock_sock(sk);
  448. sock_put(sk);
  449. }