2005-04-16 15:20:36 -07:00
/*
* IP Payload Compression Protocol ( IPComp ) - RFC3173 .
*
* Copyright ( c ) 2003 James Morris < jmorris @ intercode . com . au >
*
* This program is free software ; you can redistribute it and / or modify it
* under the terms of the GNU General Public License as published by the Free
2007-02-09 23:24:47 +09:00
* Software Foundation ; either version 2 of the License , or ( at your option )
2005-04-16 15:20:36 -07:00
* any later version .
*
* Todo :
* - Tunable compression parameters .
* - Compression stats .
* - Adaptive compression .
*/
# include <linux/module.h>
# include <asm/semaphore.h>
# include <linux/crypto.h>
2007-11-07 02:21:47 -08:00
# include <linux/err.h>
2005-04-16 15:20:36 -07:00
# include <linux/pfkeyv2.h>
# include <linux/percpu.h>
# include <linux/smp.h>
# include <linux/list.h>
# include <linux/vmalloc.h>
# include <linux/rtnetlink.h>
2006-03-20 22:33:17 -08:00
# include <linux/mutex.h>
2005-04-16 15:20:36 -07:00
# include <net/ip.h>
# include <net/xfrm.h>
# include <net/icmp.h>
# include <net/ipcomp.h>
2005-12-27 02:43:12 -02:00
# include <net/protocol.h>
2005-04-16 15:20:36 -07:00
struct ipcomp_tfms {
struct list_head list ;
2006-08-26 18:12:40 +10:00
struct crypto_comp * * tfms ;
2005-04-16 15:20:36 -07:00
int users ;
} ;
2006-03-20 22:33:17 -08:00
static DEFINE_MUTEX ( ipcomp_resource_mutex ) ;
2005-04-16 15:20:36 -07:00
static void * * ipcomp_scratches ;
static int ipcomp_scratch_users ;
static LIST_HEAD ( ipcomp_tfms_list ) ;
static int ipcomp_decompress ( struct xfrm_state * x , struct sk_buff * skb )
{
struct ipcomp_data * ipcd = x - > data ;
2007-04-20 22:47:35 -07:00
const int plen = skb - > len ;
int dlen = IPCOMP_SCRATCH_SIZE ;
const u8 * start = skb - > data ;
const int cpu = get_cpu ( ) ;
u8 * scratch = * per_cpu_ptr ( ipcomp_scratches , cpu ) ;
struct crypto_comp * tfm = * per_cpu_ptr ( ipcd - > tfms , cpu ) ;
int err = crypto_comp_decompress ( tfm , start , plen , scratch , & dlen ) ;
2007-02-09 23:24:47 +09:00
2005-04-16 15:20:36 -07:00
if ( err )
goto out ;
if ( dlen < ( plen + sizeof ( struct ip_comp_hdr ) ) ) {
err = - EINVAL ;
goto out ;
}
err = pskb_expand_head ( skb , 0 , dlen - plen , GFP_ATOMIC ) ;
if ( err )
goto out ;
2007-02-09 23:24:47 +09:00
2006-07-11 13:50:09 -07:00
skb - > truesize + = dlen - plen ;
__skb_put ( skb , dlen - plen ) ;
2007-03-31 11:55:19 -03:00
skb_copy_to_linear_data ( skb , scratch , dlen ) ;
2007-02-09 23:24:47 +09:00
out :
2005-04-16 15:20:36 -07:00
put_cpu ( ) ;
return err ;
}
2006-04-01 00:52:46 -08:00
static int ipcomp_input ( struct xfrm_state * x , struct sk_buff * skb )
2005-04-16 15:20:36 -07:00
{
2008-01-29 21:11:46 -08:00
int nexthdr ;
2006-06-09 16:10:40 -07:00
int err = - ENOMEM ;
2006-05-27 23:06:13 -07:00
struct ip_comp_hdr * ipch ;
2005-04-16 15:20:36 -07:00
2006-06-09 16:10:40 -07:00
if ( skb_linearize_cow ( skb ) )
2007-02-09 23:24:47 +09:00
goto out ;
2005-04-16 15:20:36 -07:00
skb - > ip_summed = CHECKSUM_NONE ;
2007-02-09 23:24:47 +09:00
/* Remove ipcomp header and decompress original payload */
2006-05-27 23:06:13 -07:00
ipch = ( void * ) skb - > data ;
2008-01-29 21:11:46 -08:00
nexthdr = ipch - > nexthdr ;
2007-04-10 21:21:55 -07:00
skb - > transport_header = skb - > network_header + sizeof ( * ipch ) ;
2006-05-27 23:06:13 -07:00
__skb_pull ( skb , sizeof ( * ipch ) ) ;
2005-04-16 15:20:36 -07:00
err = ipcomp_decompress ( x , skb ) ;
2007-10-10 15:46:21 -07:00
if ( err )
goto out ;
2008-01-29 21:11:46 -08:00
err = nexthdr ;
2005-04-16 15:20:36 -07:00
2007-02-09 23:24:47 +09:00
out :
2005-04-16 15:20:36 -07:00
return err ;
}
static int ipcomp_compress ( struct xfrm_state * x , struct sk_buff * skb )
{
struct ipcomp_data * ipcd = x - > data ;
2007-10-10 15:45:52 -07:00
const int plen = skb - > len ;
2007-04-20 22:47:35 -07:00
int dlen = IPCOMP_SCRATCH_SIZE ;
2007-10-10 15:45:52 -07:00
u8 * start = skb - > data ;
2007-04-20 22:47:35 -07:00
const int cpu = get_cpu ( ) ;
u8 * scratch = * per_cpu_ptr ( ipcomp_scratches , cpu ) ;
struct crypto_comp * tfm = * per_cpu_ptr ( ipcd - > tfms , cpu ) ;
int err = crypto_comp_compress ( tfm , start , plen , scratch , & dlen ) ;
2005-04-16 15:20:36 -07:00
if ( err )
goto out ;
if ( ( dlen + sizeof ( struct ip_comp_hdr ) ) > = plen ) {
err = - EMSGSIZE ;
goto out ;
}
2007-02-09 23:24:47 +09:00
2005-04-16 15:20:36 -07:00
memcpy ( start + sizeof ( struct ip_comp_hdr ) , scratch , dlen ) ;
put_cpu ( ) ;
2007-10-10 15:45:52 -07:00
pskb_trim ( skb , dlen + sizeof ( struct ip_comp_hdr ) ) ;
2005-04-16 15:20:36 -07:00
return 0 ;
2007-02-09 23:24:47 +09:00
out :
2005-04-16 15:20:36 -07:00
put_cpu ( ) ;
return err ;
}
static int ipcomp_output ( struct xfrm_state * x , struct sk_buff * skb )
{
int err ;
struct ip_comp_hdr * ipch ;
struct ipcomp_data * ipcd = x - > data ;
2007-10-10 15:45:52 -07:00
if ( skb - > len < ipcd - > threshold ) {
2005-04-16 15:20:36 -07:00
/* Don't bother compressing */
goto out_ok ;
}
2006-06-09 16:10:40 -07:00
if ( skb_linearize_cow ( skb ) )
2005-04-16 15:20:36 -07:00
goto out_ok ;
2007-02-09 23:24:47 +09:00
2005-04-16 15:20:36 -07:00
err = ipcomp_compress ( x , skb ) ;
if ( err ) {
goto out_ok ;
}
/* Install ipcomp header, convert into ipcomp datagram. */
2007-10-10 15:45:25 -07:00
ipch = ip_comp_hdr ( skb ) ;
2007-10-10 15:44:44 -07:00
ipch - > nexthdr = * skb_mac_header ( skb ) ;
2005-04-16 15:20:36 -07:00
ipch - > flags = 0 ;
ipch - > cpi = htons ( ( u16 ) ntohl ( x - > id . spi ) ) ;
2007-10-10 15:44:44 -07:00
* skb_mac_header ( skb ) = IPPROTO_COMP ;
2005-04-16 15:20:36 -07:00
out_ok :
2007-10-10 15:45:52 -07:00
skb_push ( skb , - skb_network_offset ( skb ) ) ;
2005-04-16 15:20:36 -07:00
return 0 ;
}
static void ipcomp4_err ( struct sk_buff * skb , u32 info )
{
2006-09-27 18:47:24 -07:00
__be32 spi ;
2005-04-16 15:20:36 -07:00
struct iphdr * iph = ( struct iphdr * ) skb - > data ;
struct ip_comp_hdr * ipch = ( struct ip_comp_hdr * ) ( skb - > data + ( iph - > ihl < < 2 ) ) ;
struct xfrm_state * x ;
2007-03-13 14:43:18 -03:00
if ( icmp_hdr ( skb ) - > type ! = ICMP_DEST_UNREACH | |
icmp_hdr ( skb ) - > code ! = ICMP_FRAG_NEEDED )
2005-04-16 15:20:36 -07:00
return ;
2006-05-22 16:53:22 -07:00
spi = htonl ( ntohs ( ipch - > cpi ) ) ;
2005-04-16 15:20:36 -07:00
x = xfrm_state_lookup ( ( xfrm_address_t * ) & iph - > daddr ,
2007-02-09 23:24:47 +09:00
spi , IPPROTO_COMP , AF_INET ) ;
2005-04-16 15:20:36 -07:00
if ( ! x )
return ;
2005-08-09 20:50:53 -07:00
NETDEBUG ( KERN_DEBUG " pmtu discovery on SA IPCOMP/%08x/%u.%u.%u.%u \n " ,
spi , NIPQUAD ( iph - > daddr ) ) ;
2005-04-16 15:20:36 -07:00
xfrm_state_put ( x ) ;
}
2007-02-09 23:24:47 +09:00
/* We always hold one tunnel user reference to indicate a tunnel */
2005-04-16 15:20:36 -07:00
static struct xfrm_state * ipcomp_tunnel_create ( struct xfrm_state * x )
{
struct xfrm_state * t ;
2007-02-09 23:24:47 +09:00
2005-04-16 15:20:36 -07:00
t = xfrm_state_alloc ( ) ;
if ( t = = NULL )
goto out ;
t - > id . proto = IPPROTO_IPIP ;
t - > id . spi = x - > props . saddr . a4 ;
t - > id . daddr . a4 = x - > id . daddr . a4 ;
memcpy ( & t - > sel , & x - > sel , sizeof ( t - > sel ) ) ;
t - > props . family = AF_INET ;
2007-11-13 21:39:08 -08:00
t - > props . mode = x - > props . mode ;
2005-04-16 15:20:36 -07:00
t - > props . saddr . a4 = x - > props . saddr . a4 ;
t - > props . flags = x - > props . flags ;
2005-06-20 13:18:08 -07:00
if ( xfrm_init_state ( t ) )
2005-04-16 15:20:36 -07:00
goto error ;
atomic_set ( & t - > tunnel_users , 1 ) ;
out :
return t ;
error :
t - > km . state = XFRM_STATE_DEAD ;
xfrm_state_put ( t ) ;
t = NULL ;
goto out ;
}
/*
2006-03-20 22:33:17 -08:00
* Must be protected by xfrm_cfg_mutex . State and tunnel user references are
2005-04-16 15:20:36 -07:00
* always incremented on success .
*/
static int ipcomp_tunnel_attach ( struct xfrm_state * x )
{
int err = 0 ;
struct xfrm_state * t ;
t = xfrm_state_lookup ( ( xfrm_address_t * ) & x - > id . daddr . a4 ,
2007-02-09 23:24:47 +09:00
x - > props . saddr . a4 , IPPROTO_IPIP , AF_INET ) ;
2005-04-16 15:20:36 -07:00
if ( ! t ) {
t = ipcomp_tunnel_create ( x ) ;
if ( ! t ) {
err = - EINVAL ;
goto out ;
}
xfrm_state_insert ( t ) ;
xfrm_state_hold ( t ) ;
}
x - > tunnel = t ;
atomic_inc ( & t - > tunnel_users ) ;
out :
return err ;
}
static void ipcomp_free_scratches ( void )
{
int i ;
void * * scratches ;
if ( - - ipcomp_scratch_users )
return ;
scratches = ipcomp_scratches ;
if ( ! scratches )
return ;
2006-04-18 14:51:44 -07:00
for_each_possible_cpu ( i )
vfree ( * per_cpu_ptr ( scratches , i ) ) ;
2005-04-16 15:20:36 -07:00
free_percpu ( scratches ) ;
}
static void * * ipcomp_alloc_scratches ( void )
{
int i ;
void * * scratches ;
if ( ipcomp_scratch_users + + )
return ipcomp_scratches ;
scratches = alloc_percpu ( void * ) ;
if ( ! scratches )
return NULL ;
ipcomp_scratches = scratches ;
2006-04-10 22:52:50 -07:00
for_each_possible_cpu ( i ) {
2005-04-16 15:20:36 -07:00
void * scratch = vmalloc ( IPCOMP_SCRATCH_SIZE ) ;
if ( ! scratch )
return NULL ;
* per_cpu_ptr ( scratches , i ) = scratch ;
}
return scratches ;
}
2006-08-26 18:12:40 +10:00
static void ipcomp_free_tfms ( struct crypto_comp * * tfms )
2005-04-16 15:20:36 -07:00
{
struct ipcomp_tfms * pos ;
int cpu ;
list_for_each_entry ( pos , & ipcomp_tfms_list , list ) {
if ( pos - > tfms = = tfms )
break ;
}
BUG_TRAP ( pos ) ;
if ( - - pos - > users )
return ;
list_del ( & pos - > list ) ;
kfree ( pos ) ;
if ( ! tfms )
return ;
2006-04-10 22:52:50 -07:00
for_each_possible_cpu ( cpu ) {
2006-08-26 18:12:40 +10:00
struct crypto_comp * tfm = * per_cpu_ptr ( tfms , cpu ) ;
crypto_free_comp ( tfm ) ;
2005-04-16 15:20:36 -07:00
}
free_percpu ( tfms ) ;
}
2006-08-26 18:12:40 +10:00
static struct crypto_comp * * ipcomp_alloc_tfms ( const char * alg_name )
2005-04-16 15:20:36 -07:00
{
struct ipcomp_tfms * pos ;
2006-08-26 18:12:40 +10:00
struct crypto_comp * * tfms ;
2005-04-16 15:20:36 -07:00
int cpu ;
/* This can be any valid CPU ID so we don't need locking. */
2005-08-18 14:36:59 -07:00
cpu = raw_smp_processor_id ( ) ;
2005-04-16 15:20:36 -07:00
list_for_each_entry ( pos , & ipcomp_tfms_list , list ) {
2006-08-26 18:12:40 +10:00
struct crypto_comp * tfm ;
2005-04-16 15:20:36 -07:00
tfms = pos - > tfms ;
tfm = * per_cpu_ptr ( tfms , cpu ) ;
2006-08-26 18:12:40 +10:00
if ( ! strcmp ( crypto_comp_name ( tfm ) , alg_name ) ) {
2005-04-16 15:20:36 -07:00
pos - > users + + ;
return tfms ;
}
}
pos = kmalloc ( sizeof ( * pos ) , GFP_KERNEL ) ;
if ( ! pos )
return NULL ;
pos - > users = 1 ;
INIT_LIST_HEAD ( & pos - > list ) ;
list_add ( & pos - > list , & ipcomp_tfms_list ) ;
2006-08-26 18:12:40 +10:00
pos - > tfms = tfms = alloc_percpu ( struct crypto_comp * ) ;
2005-04-16 15:20:36 -07:00
if ( ! tfms )
goto error ;
2006-04-10 22:52:50 -07:00
for_each_possible_cpu ( cpu ) {
2006-08-26 18:12:40 +10:00
struct crypto_comp * tfm = crypto_alloc_comp ( alg_name , 0 ,
CRYPTO_ALG_ASYNC ) ;
2007-11-07 02:21:47 -08:00
if ( IS_ERR ( tfm ) )
2005-04-16 15:20:36 -07:00
goto error ;
* per_cpu_ptr ( tfms , cpu ) = tfm ;
}
return tfms ;
error :
ipcomp_free_tfms ( tfms ) ;
return NULL ;
}
static void ipcomp_free_data ( struct ipcomp_data * ipcd )
{
if ( ipcd - > tfms )
ipcomp_free_tfms ( ipcd - > tfms ) ;
ipcomp_free_scratches ( ) ;
}
static void ipcomp_destroy ( struct xfrm_state * x )
{
struct ipcomp_data * ipcd = x - > data ;
if ( ! ipcd )
return ;
xfrm_state_delete_tunnel ( x ) ;
2006-03-20 22:33:17 -08:00
mutex_lock ( & ipcomp_resource_mutex ) ;
2005-04-16 15:20:36 -07:00
ipcomp_free_data ( ipcd ) ;
2006-03-20 22:33:17 -08:00
mutex_unlock ( & ipcomp_resource_mutex ) ;
2005-04-16 15:20:36 -07:00
kfree ( ipcd ) ;
}
2005-06-20 13:18:08 -07:00
static int ipcomp_init_state ( struct xfrm_state * x )
2005-04-16 15:20:36 -07:00
{
int err ;
struct ipcomp_data * ipcd ;
struct xfrm_algo_desc * calg_desc ;
err = - EINVAL ;
if ( ! x - > calg )
goto out ;
if ( x - > encap )
goto out ;
2007-11-13 21:39:08 -08:00
x - > props . header_len = 0 ;
switch ( x - > props . mode ) {
case XFRM_MODE_TRANSPORT :
break ;
case XFRM_MODE_TUNNEL :
x - > props . header_len + = sizeof ( struct iphdr ) ;
break ;
default :
goto out ;
}
2005-04-16 15:20:36 -07:00
err = - ENOMEM ;
2006-07-21 14:51:30 -07:00
ipcd = kzalloc ( sizeof ( * ipcd ) , GFP_KERNEL ) ;
2005-04-16 15:20:36 -07:00
if ( ! ipcd )
goto out ;
2006-03-20 22:33:17 -08:00
mutex_lock ( & ipcomp_resource_mutex ) ;
2005-04-16 15:20:36 -07:00
if ( ! ipcomp_alloc_scratches ( ) )
goto error ;
ipcd - > tfms = ipcomp_alloc_tfms ( x - > calg - > alg_name ) ;
if ( ! ipcd - > tfms )
goto error ;
2006-03-20 22:33:17 -08:00
mutex_unlock ( & ipcomp_resource_mutex ) ;
2005-04-16 15:20:36 -07:00
2006-09-22 15:05:15 -07:00
if ( x - > props . mode = = XFRM_MODE_TUNNEL ) {
2005-04-16 15:20:36 -07:00
err = ipcomp_tunnel_attach ( x ) ;
if ( err )
goto error_tunnel ;
}
calg_desc = xfrm_calg_get_byname ( x - > calg - > alg_name , 0 ) ;
BUG_ON ( ! calg_desc ) ;
ipcd - > threshold = calg_desc - > uinfo . comp . threshold ;
x - > data = ipcd ;
err = 0 ;
out :
return err ;
error_tunnel :
2006-03-20 22:33:17 -08:00
mutex_lock ( & ipcomp_resource_mutex ) ;
2005-04-16 15:20:36 -07:00
error :
ipcomp_free_data ( ipcd ) ;
2006-03-20 22:33:17 -08:00
mutex_unlock ( & ipcomp_resource_mutex ) ;
2005-04-16 15:20:36 -07:00
kfree ( ipcd ) ;
goto out ;
}
2008-01-30 19:11:50 -08:00
static const struct xfrm_type ipcomp_type = {
2005-04-16 15:20:36 -07:00
. description = " IPCOMP4 " ,
. owner = THIS_MODULE ,
. proto = IPPROTO_COMP ,
. init_state = ipcomp_init_state ,
. destructor = ipcomp_destroy ,
. input = ipcomp_input ,
. output = ipcomp_output
} ;
static struct net_protocol ipcomp4_protocol = {
. handler = xfrm4_rcv ,
. err_handler = ipcomp4_err ,
. no_policy = 1 ,
} ;
static int __init ipcomp4_init ( void )
{
if ( xfrm_register_type ( & ipcomp_type , AF_INET ) < 0 ) {
printk ( KERN_INFO " ipcomp init: can't add xfrm type \n " ) ;
return - EAGAIN ;
}
if ( inet_add_protocol ( & ipcomp4_protocol , IPPROTO_COMP ) < 0 ) {
printk ( KERN_INFO " ipcomp init: can't add protocol \n " ) ;
xfrm_unregister_type ( & ipcomp_type , AF_INET ) ;
return - EAGAIN ;
}
return 0 ;
}
static void __exit ipcomp4_fini ( void )
{
if ( inet_del_protocol ( & ipcomp4_protocol , IPPROTO_COMP ) < 0 )
printk ( KERN_INFO " ip ipcomp close: can't remove protocol \n " ) ;
if ( xfrm_unregister_type ( & ipcomp_type , AF_INET ) < 0 )
printk ( KERN_INFO " ip ipcomp close: can't remove xfrm type \n " ) ;
}
module_init ( ipcomp4_init ) ;
module_exit ( ipcomp4_fini ) ;
MODULE_LICENSE ( " GPL " ) ;
MODULE_DESCRIPTION ( " IP Payload Compression Protocol (IPComp) - RFC3173 " ) ;
MODULE_AUTHOR ( " James Morris <jmorris@intercode.com.au> " ) ;
2007-06-26 23:57:49 -07:00
MODULE_ALIAS_XFRM_TYPE ( AF_INET , XFRM_PROTO_COMP ) ;