1 /* SPDX-License-Identifier: GPL-2.0-or-later */
3 * Linux ethernet bridge
6 * Lennert Buytenhek <buytenh@gnu.org>
12 #include <linux/netdevice.h>
13 #include <linux/if_bridge.h>
14 #include <linux/netpoll.h>
15 #include <linux/u64_stats_sync.h>
16 #include <net/route.h>
17 #include <net/ip6_fib.h>
18 #include <linux/if_vlan.h>
19 #include <linux/rhashtable.h>
20 #include <linux/refcount.h>
22 #define BR_HASH_BITS 8
23 #define BR_HASH_SIZE (1 << BR_HASH_BITS)
25 #define BR_HOLD_TIME (1*HZ)
27 #define BR_PORT_BITS 10
28 #define BR_MAX_PORTS (1<<BR_PORT_BITS)
30 #define BR_MULTICAST_DEFAULT_HASH_MAX 4096
32 #define BR_VERSION "2.3"
34 /* Control of forwarding link local multicast */
35 #define BR_GROUPFWD_DEFAULT 0
36 /* Don't allow forwarding of control protocols like STP, MAC PAUSE and LACP */
38 BR_GROUPFWD_STP = BIT(0),
39 BR_GROUPFWD_MACPAUSE = BIT(1),
40 BR_GROUPFWD_LACP = BIT(2),
43 #define BR_GROUPFWD_RESTRICTED (BR_GROUPFWD_STP | BR_GROUPFWD_MACPAUSE | \
45 /* The Nearest Customer Bridge Group Address, 01-80-C2-00-00-[00,0B,0C,0D,0F] */
46 #define BR_GROUPFWD_8021AD 0xB801u
48 /* Path to usermode spanning tree program */
49 #define BR_STP_PROG "/sbin/bridge-stp"
51 typedef struct bridge_id bridge_id;
52 typedef struct mac_addr mac_addr;
53 typedef __u16 port_id;
56 unsigned char prio[2];
57 unsigned char addr[ETH_ALEN];
61 unsigned char addr[ETH_ALEN];
64 #ifdef CONFIG_BRIDGE_IGMP_SNOOPING
66 struct bridge_mcast_own_query {
67 struct timer_list timer;
72 struct bridge_mcast_other_query {
73 struct timer_list timer;
74 unsigned long delay_time;
77 /* selected querier */
78 struct bridge_mcast_querier {
80 struct net_bridge_port __rcu *port;
83 /* IGMP/MLD statistics */
84 struct bridge_mcast_stats {
85 struct br_mcast_stats mstats;
86 struct u64_stats_sync syncp;
90 struct br_vlan_stats {
95 struct u64_stats_sync syncp;
98 struct br_tunnel_info {
100 struct metadata_dst *tunnel_dst;
103 /* private vlan flags */
105 BR_VLFLAG_PER_PORT_STATS = BIT(0),
106 BR_VLFLAG_ADDED_BY_SWITCHDEV = BIT(1),
110 * struct net_bridge_vlan - per-vlan entry
112 * @vnode: rhashtable member
114 * @flags: bridge vlan flags
115 * @priv_flags: private (in-kernel) bridge vlan flags
116 * @stats: per-cpu VLAN statistics
117 * @br: if MASTER flag set, this points to a bridge struct
118 * @port: if MASTER flag unset, this points to a port struct
119 * @refcnt: if MASTER flag set, this is bumped for each port referencing it
120 * @brvlan: if MASTER flag unset, this points to the global per-VLAN context
121 * for this VLAN entry
122 * @vlist: sorted list of VLAN entries
123 * @rcu: used for entry destruction
125 * This structure is shared between the global per-VLAN entries contained in
126 * the bridge rhashtable and the local per-port per-VLAN entries contained in
127 * the port's rhashtable. The union entries should be interpreted depending on
128 * the entry flags that are set.
130 struct net_bridge_vlan {
131 struct rhash_head vnode;
132 struct rhash_head tnode;
136 struct br_vlan_stats __percpu *stats;
138 struct net_bridge *br;
139 struct net_bridge_port *port;
143 struct net_bridge_vlan *brvlan;
146 struct br_tunnel_info tinfo;
148 struct list_head vlist;
154 * struct net_bridge_vlan_group
156 * @vlan_hash: VLAN entry rhashtable
157 * @vlan_list: sorted VLAN entry list
158 * @num_vlans: number of total VLAN entries
159 * @pvid: PVID VLAN id
161 * IMPORTANT: Be careful when checking if there're VLAN entries using list
162 * primitives because the bridge can have entries in its list which
163 * are just for global context but not for filtering, i.e. they have
164 * the master flag set but not the brentry flag. If you have to check
165 * if there're "real" entries in the bridge please test @num_vlans
167 struct net_bridge_vlan_group {
168 struct rhashtable vlan_hash;
169 struct rhashtable tunnel_hash;
170 struct list_head vlan_list;
175 /* bridge fdb flags */
180 BR_FDB_ADDED_BY_USER,
181 BR_FDB_ADDED_BY_EXT_LEARN,
185 struct net_bridge_fdb_key {
190 struct net_bridge_fdb_entry {
191 struct rhash_head rhnode;
192 struct net_bridge_port *dst;
194 struct net_bridge_fdb_key key;
195 struct hlist_node fdb_node;
198 /* write-heavy members should not affect lookups */
199 unsigned long updated ____cacheline_aligned_in_smp;
205 #define MDB_PG_FLAGS_PERMANENT BIT(0)
206 #define MDB_PG_FLAGS_OFFLOAD BIT(1)
207 #define MDB_PG_FLAGS_FAST_LEAVE BIT(2)
209 struct net_bridge_port_group {
210 struct net_bridge_port *port;
211 struct net_bridge_port_group __rcu *next;
212 struct hlist_node mglist;
214 struct timer_list timer;
217 unsigned char eth_addr[ETH_ALEN];
220 struct net_bridge_mdb_entry {
221 struct rhash_head rhnode;
222 struct net_bridge *br;
223 struct net_bridge_port_group __rcu *ports;
225 struct timer_list timer;
228 struct hlist_node mdb_node;
231 struct net_bridge_port {
232 struct net_bridge *br;
233 struct net_device *dev;
234 struct list_head list;
237 #ifdef CONFIG_BRIDGE_VLAN_FILTERING
238 struct net_bridge_vlan_group __rcu *vlgrp;
240 struct net_bridge_port __rcu *backup_port;
246 unsigned char topology_change_ack;
247 unsigned char config_pending;
249 port_id designated_port;
250 bridge_id designated_root;
251 bridge_id designated_bridge;
254 unsigned long designated_age;
256 struct timer_list forward_delay_timer;
257 struct timer_list hold_timer;
258 struct timer_list message_age_timer;
262 #ifdef CONFIG_BRIDGE_IGMP_SNOOPING
263 struct bridge_mcast_own_query ip4_own_query;
264 #if IS_ENABLED(CONFIG_IPV6)
265 struct bridge_mcast_own_query ip6_own_query;
266 #endif /* IS_ENABLED(CONFIG_IPV6) */
267 unsigned char multicast_router;
268 struct bridge_mcast_stats __percpu *mcast_stats;
269 struct timer_list multicast_router_timer;
270 struct hlist_head mglist;
271 struct hlist_node rlist;
275 char sysfs_name[IFNAMSIZ];
278 #ifdef CONFIG_NET_POLL_CONTROLLER
281 #ifdef CONFIG_NET_SWITCHDEV
282 int offload_fwd_mark;
285 u16 backup_redirected_cnt;
287 struct bridge_stp_xstats stp_xstats;
290 #define kobj_to_brport(obj) container_of(obj, struct net_bridge_port, kobj)
292 #define br_auto_port(p) ((p)->flags & BR_AUTO_MASK)
293 #define br_promisc_port(p) ((p)->flags & BR_PROMISC)
295 static inline struct net_bridge_port *br_port_get_rcu(const struct net_device *dev)
297 return rcu_dereference(dev->rx_handler_data);
300 static inline struct net_bridge_port *br_port_get_rtnl(const struct net_device *dev)
302 return netif_is_bridge_port(dev) ?
303 rtnl_dereference(dev->rx_handler_data) : NULL;
306 static inline struct net_bridge_port *br_port_get_rtnl_rcu(const struct net_device *dev)
308 return netif_is_bridge_port(dev) ?
309 rcu_dereference_rtnl(dev->rx_handler_data) : NULL;
312 enum net_bridge_opts {
314 BROPT_VLAN_STATS_ENABLED,
315 BROPT_NF_CALL_IPTABLES,
316 BROPT_NF_CALL_IP6TABLES,
317 BROPT_NF_CALL_ARPTABLES,
318 BROPT_GROUP_ADDR_SET,
319 BROPT_MULTICAST_ENABLED,
320 BROPT_MULTICAST_QUERIER,
321 BROPT_MULTICAST_QUERY_USE_IFADDR,
322 BROPT_MULTICAST_STATS_ENABLED,
324 BROPT_NEIGH_SUPPRESS_ENABLED,
325 BROPT_MTU_SET_BY_USER,
326 BROPT_VLAN_STATS_PER_PORT,
328 BROPT_VLAN_BRIDGE_BINDING,
333 spinlock_t hash_lock;
334 struct list_head port_list;
335 struct net_device *dev;
336 struct pcpu_sw_netstats __percpu *stats;
337 unsigned long options;
338 /* These fields are accessed on each packet */
339 #ifdef CONFIG_BRIDGE_VLAN_FILTERING
342 struct net_bridge_vlan_group __rcu *vlgrp;
345 struct rhashtable fdb_hash_tbl;
346 #if IS_ENABLED(CONFIG_BRIDGE_NETFILTER)
348 struct rtable fake_rtable;
349 struct rt6_info fake_rt6_info;
353 u16 group_fwd_mask_required;
356 bridge_id designated_root;
358 unsigned char topology_change;
359 unsigned char topology_change_detected;
361 unsigned long max_age;
362 unsigned long hello_time;
363 unsigned long forward_delay;
364 unsigned long ageing_time;
365 unsigned long bridge_max_age;
366 unsigned long bridge_hello_time;
367 unsigned long bridge_forward_delay;
368 unsigned long bridge_ageing_time;
371 u8 group_addr[ETH_ALEN];
374 BR_NO_STP, /* no spanning tree */
375 BR_KERNEL_STP, /* old STP in kernel */
376 BR_USER_STP, /* new RSTP in userspace */
379 #ifdef CONFIG_BRIDGE_IGMP_SNOOPING
383 u32 multicast_last_member_count;
384 u32 multicast_startup_query_count;
386 u8 multicast_igmp_version;
388 #if IS_ENABLED(CONFIG_IPV6)
389 u8 multicast_mld_version;
391 spinlock_t multicast_lock;
392 unsigned long multicast_last_member_interval;
393 unsigned long multicast_membership_interval;
394 unsigned long multicast_querier_interval;
395 unsigned long multicast_query_interval;
396 unsigned long multicast_query_response_interval;
397 unsigned long multicast_startup_query_interval;
399 struct rhashtable mdb_hash_tbl;
401 struct hlist_head mdb_list;
402 struct hlist_head router_list;
404 struct timer_list multicast_router_timer;
405 struct bridge_mcast_other_query ip4_other_query;
406 struct bridge_mcast_own_query ip4_own_query;
407 struct bridge_mcast_querier ip4_querier;
408 struct bridge_mcast_stats __percpu *mcast_stats;
409 #if IS_ENABLED(CONFIG_IPV6)
410 struct bridge_mcast_other_query ip6_other_query;
411 struct bridge_mcast_own_query ip6_own_query;
412 struct bridge_mcast_querier ip6_querier;
413 #endif /* IS_ENABLED(CONFIG_IPV6) */
416 struct timer_list hello_timer;
417 struct timer_list tcn_timer;
418 struct timer_list topology_change_timer;
419 struct delayed_work gc_work;
420 struct kobject *ifobj;
423 #ifdef CONFIG_NET_SWITCHDEV
424 int offload_fwd_mark;
426 struct hlist_head fdb_list;
429 struct br_input_skb_cb {
430 struct net_device *brdev;
433 #ifdef CONFIG_BRIDGE_IGMP_SNOOPING
437 u8 proxyarp_replied:1;
438 u8 src_port_isolated:1;
439 #ifdef CONFIG_BRIDGE_VLAN_FILTERING
442 #ifdef CONFIG_NETFILTER_FAMILY_BRIDGE
443 u8 br_netfilter_broute:1;
446 #ifdef CONFIG_NET_SWITCHDEV
447 int offload_fwd_mark;
451 #define BR_INPUT_SKB_CB(__skb) ((struct br_input_skb_cb *)(__skb)->cb)
453 #ifdef CONFIG_BRIDGE_IGMP_SNOOPING
454 # define BR_INPUT_SKB_CB_MROUTERS_ONLY(__skb) (BR_INPUT_SKB_CB(__skb)->mrouters_only)
456 # define BR_INPUT_SKB_CB_MROUTERS_ONLY(__skb) (0)
459 #define br_printk(level, br, format, args...) \
460 printk(level "%s: " format, (br)->dev->name, ##args)
462 #define br_err(__br, format, args...) \
463 br_printk(KERN_ERR, __br, format, ##args)
464 #define br_warn(__br, format, args...) \
465 br_printk(KERN_WARNING, __br, format, ##args)
466 #define br_notice(__br, format, args...) \
467 br_printk(KERN_NOTICE, __br, format, ##args)
468 #define br_info(__br, format, args...) \
469 br_printk(KERN_INFO, __br, format, ##args)
471 #define br_debug(br, format, args...) \
472 pr_debug("%s: " format, (br)->dev->name, ##args)
474 /* called under bridge lock */
475 static inline int br_is_root_bridge(const struct net_bridge *br)
477 return !memcmp(&br->bridge_id, &br->designated_root, 8);
480 /* check if a VLAN entry is global */
481 static inline bool br_vlan_is_master(const struct net_bridge_vlan *v)
483 return v->flags & BRIDGE_VLAN_INFO_MASTER;
486 /* check if a VLAN entry is used by the bridge */
487 static inline bool br_vlan_is_brentry(const struct net_bridge_vlan *v)
489 return v->flags & BRIDGE_VLAN_INFO_BRENTRY;
492 /* check if we should use the vlan entry, returns false if it's only context */
493 static inline bool br_vlan_should_use(const struct net_bridge_vlan *v)
495 if (br_vlan_is_master(v)) {
496 if (br_vlan_is_brentry(v))
505 static inline bool nbp_state_should_learn(const struct net_bridge_port *p)
507 return p->state == BR_STATE_LEARNING || p->state == BR_STATE_FORWARDING;
510 static inline bool br_vlan_valid_id(u16 vid, struct netlink_ext_ack *extack)
512 bool ret = vid > 0 && vid < VLAN_VID_MASK;
515 NL_SET_ERR_MSG_MOD(extack, "Vlan id is invalid");
520 static inline bool br_vlan_valid_range(const struct bridge_vlan_info *cur,
521 const struct bridge_vlan_info *last,
522 struct netlink_ext_ack *extack)
524 /* pvid flag is not allowed in ranges */
525 if (cur->flags & BRIDGE_VLAN_INFO_PVID) {
526 NL_SET_ERR_MSG_MOD(extack, "Pvid isn't allowed in a range");
530 /* when cur is the range end, check if:
531 * - it has range start flag
532 * - range ids are invalid (end is equal to or before start)
535 if (cur->flags & BRIDGE_VLAN_INFO_RANGE_BEGIN) {
536 NL_SET_ERR_MSG_MOD(extack, "Found a new vlan range start while processing one");
538 } else if (!(cur->flags & BRIDGE_VLAN_INFO_RANGE_END)) {
539 NL_SET_ERR_MSG_MOD(extack, "Vlan range end flag is missing");
541 } else if (cur->vid <= last->vid) {
542 NL_SET_ERR_MSG_MOD(extack, "End vlan id is less than or equal to start vlan id");
547 /* check for required range flags */
548 if (!(cur->flags & (BRIDGE_VLAN_INFO_RANGE_BEGIN |
549 BRIDGE_VLAN_INFO_RANGE_END))) {
550 NL_SET_ERR_MSG_MOD(extack, "Both vlan range flags are missing");
557 static inline int br_afspec_cmd_to_rtm(int cmd)
569 static inline int br_opt_get(const struct net_bridge *br,
570 enum net_bridge_opts opt)
572 return test_bit(opt, &br->options);
575 int br_boolopt_toggle(struct net_bridge *br, enum br_boolopt_id opt, bool on,
576 struct netlink_ext_ack *extack);
577 int br_boolopt_get(const struct net_bridge *br, enum br_boolopt_id opt);
578 int br_boolopt_multi_toggle(struct net_bridge *br,
579 struct br_boolopt_multi *bm,
580 struct netlink_ext_ack *extack);
581 void br_boolopt_multi_get(const struct net_bridge *br,
582 struct br_boolopt_multi *bm);
583 void br_opt_toggle(struct net_bridge *br, enum net_bridge_opts opt, bool on);
586 void br_dev_setup(struct net_device *dev);
587 void br_dev_delete(struct net_device *dev, struct list_head *list);
588 netdev_tx_t br_dev_xmit(struct sk_buff *skb, struct net_device *dev);
589 #ifdef CONFIG_NET_POLL_CONTROLLER
590 static inline void br_netpoll_send_skb(const struct net_bridge_port *p,
593 struct netpoll *np = p->np;
596 netpoll_send_skb(np, skb);
599 int br_netpoll_enable(struct net_bridge_port *p);
600 void br_netpoll_disable(struct net_bridge_port *p);
602 static inline void br_netpoll_send_skb(const struct net_bridge_port *p,
607 static inline int br_netpoll_enable(struct net_bridge_port *p)
612 static inline void br_netpoll_disable(struct net_bridge_port *p)
618 int br_fdb_init(void);
619 void br_fdb_fini(void);
620 int br_fdb_hash_init(struct net_bridge *br);
621 void br_fdb_hash_fini(struct net_bridge *br);
622 void br_fdb_flush(struct net_bridge *br);
623 void br_fdb_find_delete_local(struct net_bridge *br,
624 const struct net_bridge_port *p,
625 const unsigned char *addr, u16 vid);
626 void br_fdb_changeaddr(struct net_bridge_port *p, const unsigned char *newaddr);
627 void br_fdb_change_mac_address(struct net_bridge *br, const u8 *newaddr);
628 void br_fdb_cleanup(struct work_struct *work);
629 void br_fdb_delete_by_port(struct net_bridge *br,
630 const struct net_bridge_port *p, u16 vid, int do_all);
631 struct net_bridge_fdb_entry *br_fdb_find_rcu(struct net_bridge *br,
632 const unsigned char *addr,
634 int br_fdb_test_addr(struct net_device *dev, unsigned char *addr);
635 int br_fdb_fillbuf(struct net_bridge *br, void *buf, unsigned long count,
637 int br_fdb_insert(struct net_bridge *br, struct net_bridge_port *source,
638 const unsigned char *addr, u16 vid);
639 void br_fdb_update(struct net_bridge *br, struct net_bridge_port *source,
640 const unsigned char *addr, u16 vid, unsigned long flags);
642 int br_fdb_delete(struct ndmsg *ndm, struct nlattr *tb[],
643 struct net_device *dev, const unsigned char *addr, u16 vid);
644 int br_fdb_add(struct ndmsg *nlh, struct nlattr *tb[], struct net_device *dev,
645 const unsigned char *addr, u16 vid, u16 nlh_flags,
646 struct netlink_ext_ack *extack);
647 int br_fdb_dump(struct sk_buff *skb, struct netlink_callback *cb,
648 struct net_device *dev, struct net_device *fdev, int *idx);
649 int br_fdb_get(struct sk_buff *skb, struct nlattr *tb[], struct net_device *dev,
650 const unsigned char *addr, u16 vid, u32 portid, u32 seq,
651 struct netlink_ext_ack *extack);
652 int br_fdb_sync_static(struct net_bridge *br, struct net_bridge_port *p);
653 void br_fdb_unsync_static(struct net_bridge *br, struct net_bridge_port *p);
654 int br_fdb_external_learn_add(struct net_bridge *br, struct net_bridge_port *p,
655 const unsigned char *addr, u16 vid,
657 int br_fdb_external_learn_del(struct net_bridge *br, struct net_bridge_port *p,
658 const unsigned char *addr, u16 vid,
660 void br_fdb_offloaded_set(struct net_bridge *br, struct net_bridge_port *p,
661 const unsigned char *addr, u16 vid, bool offloaded);
669 int br_dev_queue_push_xmit(struct net *net, struct sock *sk, struct sk_buff *skb);
670 void br_forward(const struct net_bridge_port *to, struct sk_buff *skb,
671 bool local_rcv, bool local_orig);
672 int br_forward_finish(struct net *net, struct sock *sk, struct sk_buff *skb);
673 void br_flood(struct net_bridge *br, struct sk_buff *skb,
674 enum br_pkt_type pkt_type, bool local_rcv, bool local_orig);
676 /* return true if both source port and dest port are isolated */
677 static inline bool br_skb_isolated(const struct net_bridge_port *to,
678 const struct sk_buff *skb)
680 return BR_INPUT_SKB_CB(skb)->src_port_isolated &&
681 (to->flags & BR_ISOLATED);
685 void br_port_carrier_check(struct net_bridge_port *p, bool *notified);
686 int br_add_bridge(struct net *net, const char *name);
687 int br_del_bridge(struct net *net, const char *name);
688 int br_add_if(struct net_bridge *br, struct net_device *dev,
689 struct netlink_ext_ack *extack);
690 int br_del_if(struct net_bridge *br, struct net_device *dev);
691 void br_mtu_auto_adjust(struct net_bridge *br);
692 netdev_features_t br_features_recompute(struct net_bridge *br,
693 netdev_features_t features);
694 void br_port_flags_change(struct net_bridge_port *port, unsigned long mask);
695 void br_manage_promisc(struct net_bridge *br);
696 int nbp_backup_change(struct net_bridge_port *p, struct net_device *backup_dev);
699 int br_handle_frame_finish(struct net *net, struct sock *sk, struct sk_buff *skb);
700 rx_handler_result_t br_handle_frame(struct sk_buff **pskb);
702 static inline bool br_rx_handler_check_rcu(const struct net_device *dev)
704 return rcu_dereference(dev->rx_handler) == br_handle_frame;
707 static inline bool br_rx_handler_check_rtnl(const struct net_device *dev)
709 return rcu_dereference_rtnl(dev->rx_handler) == br_handle_frame;
712 static inline struct net_bridge_port *br_port_get_check_rcu(const struct net_device *dev)
714 return br_rx_handler_check_rcu(dev) ? br_port_get_rcu(dev) : NULL;
717 static inline struct net_bridge_port *
718 br_port_get_check_rtnl(const struct net_device *dev)
720 return br_rx_handler_check_rtnl(dev) ? br_port_get_rtnl_rcu(dev) : NULL;
724 int br_dev_ioctl(struct net_device *dev, struct ifreq *rq, int cmd);
725 int br_ioctl_deviceless_stub(struct net *net, unsigned int cmd,
729 #ifdef CONFIG_BRIDGE_IGMP_SNOOPING
730 int br_multicast_rcv(struct net_bridge *br, struct net_bridge_port *port,
731 struct sk_buff *skb, u16 vid);
732 struct net_bridge_mdb_entry *br_mdb_get(struct net_bridge *br,
733 struct sk_buff *skb, u16 vid);
734 int br_multicast_add_port(struct net_bridge_port *port);
735 void br_multicast_del_port(struct net_bridge_port *port);
736 void br_multicast_enable_port(struct net_bridge_port *port);
737 void br_multicast_disable_port(struct net_bridge_port *port);
738 void br_multicast_init(struct net_bridge *br);
739 void br_multicast_open(struct net_bridge *br);
740 void br_multicast_stop(struct net_bridge *br);
741 void br_multicast_dev_del(struct net_bridge *br);
742 void br_multicast_flood(struct net_bridge_mdb_entry *mdst,
743 struct sk_buff *skb, bool local_rcv, bool local_orig);
744 int br_multicast_set_router(struct net_bridge *br, unsigned long val);
745 int br_multicast_set_port_router(struct net_bridge_port *p, unsigned long val);
746 int br_multicast_toggle(struct net_bridge *br, unsigned long val);
747 int br_multicast_set_querier(struct net_bridge *br, unsigned long val);
748 int br_multicast_set_hash_max(struct net_bridge *br, unsigned long val);
749 int br_multicast_set_igmp_version(struct net_bridge *br, unsigned long val);
750 #if IS_ENABLED(CONFIG_IPV6)
751 int br_multicast_set_mld_version(struct net_bridge *br, unsigned long val);
753 struct net_bridge_mdb_entry *
754 br_mdb_ip_get(struct net_bridge *br, struct br_ip *dst);
755 struct net_bridge_mdb_entry *
756 br_multicast_new_group(struct net_bridge *br, struct br_ip *group);
757 struct net_bridge_port_group *
758 br_multicast_new_port_group(struct net_bridge_port *port, struct br_ip *group,
759 struct net_bridge_port_group __rcu *next,
760 unsigned char flags, const unsigned char *src);
761 int br_mdb_hash_init(struct net_bridge *br);
762 void br_mdb_hash_fini(struct net_bridge *br);
763 void br_mdb_notify(struct net_device *dev, struct net_bridge_port *port,
764 struct br_ip *group, int type, u8 flags);
765 void br_rtr_notify(struct net_device *dev, struct net_bridge_port *port,
767 void br_multicast_count(struct net_bridge *br, const struct net_bridge_port *p,
768 const struct sk_buff *skb, u8 type, u8 dir);
769 int br_multicast_init_stats(struct net_bridge *br);
770 void br_multicast_uninit_stats(struct net_bridge *br);
771 void br_multicast_get_stats(const struct net_bridge *br,
772 const struct net_bridge_port *p,
773 struct br_mcast_stats *dest);
774 void br_mdb_init(void);
775 void br_mdb_uninit(void);
776 void br_multicast_host_join(struct net_bridge_mdb_entry *mp, bool notify);
777 void br_multicast_host_leave(struct net_bridge_mdb_entry *mp, bool notify);
779 #define mlock_dereference(X, br) \
780 rcu_dereference_protected(X, lockdep_is_held(&br->multicast_lock))
782 static inline bool br_multicast_is_router(struct net_bridge *br)
784 return br->multicast_router == 2 ||
785 (br->multicast_router == 1 &&
786 timer_pending(&br->multicast_router_timer));
790 __br_multicast_querier_exists(struct net_bridge *br,
791 struct bridge_mcast_other_query *querier,
794 bool own_querier_enabled;
796 if (br_opt_get(br, BROPT_MULTICAST_QUERIER)) {
797 if (is_ipv6 && !br_opt_get(br, BROPT_HAS_IPV6_ADDR))
798 own_querier_enabled = false;
800 own_querier_enabled = true;
802 own_querier_enabled = false;
805 return time_is_before_jiffies(querier->delay_time) &&
806 (own_querier_enabled || timer_pending(&querier->timer));
809 static inline bool br_multicast_querier_exists(struct net_bridge *br,
812 switch (eth->h_proto) {
813 case (htons(ETH_P_IP)):
814 return __br_multicast_querier_exists(br,
815 &br->ip4_other_query, false);
816 #if IS_ENABLED(CONFIG_IPV6)
817 case (htons(ETH_P_IPV6)):
818 return __br_multicast_querier_exists(br,
819 &br->ip6_other_query, true);
826 static inline int br_multicast_igmp_type(const struct sk_buff *skb)
828 return BR_INPUT_SKB_CB(skb)->igmp;
831 static inline int br_multicast_rcv(struct net_bridge *br,
832 struct net_bridge_port *port,
839 static inline struct net_bridge_mdb_entry *br_mdb_get(struct net_bridge *br,
840 struct sk_buff *skb, u16 vid)
845 static inline int br_multicast_add_port(struct net_bridge_port *port)
850 static inline void br_multicast_del_port(struct net_bridge_port *port)
854 static inline void br_multicast_enable_port(struct net_bridge_port *port)
858 static inline void br_multicast_disable_port(struct net_bridge_port *port)
862 static inline void br_multicast_init(struct net_bridge *br)
866 static inline void br_multicast_open(struct net_bridge *br)
870 static inline void br_multicast_stop(struct net_bridge *br)
874 static inline void br_multicast_dev_del(struct net_bridge *br)
878 static inline void br_multicast_flood(struct net_bridge_mdb_entry *mdst,
880 bool local_rcv, bool local_orig)
884 static inline bool br_multicast_is_router(struct net_bridge *br)
889 static inline bool br_multicast_querier_exists(struct net_bridge *br,
895 static inline void br_mdb_init(void)
899 static inline void br_mdb_uninit(void)
903 static inline int br_mdb_hash_init(struct net_bridge *br)
908 static inline void br_mdb_hash_fini(struct net_bridge *br)
912 static inline void br_multicast_count(struct net_bridge *br,
913 const struct net_bridge_port *p,
914 const struct sk_buff *skb,
919 static inline int br_multicast_init_stats(struct net_bridge *br)
924 static inline void br_multicast_uninit_stats(struct net_bridge *br)
928 static inline int br_multicast_igmp_type(const struct sk_buff *skb)
935 #ifdef CONFIG_BRIDGE_VLAN_FILTERING
936 bool br_allowed_ingress(const struct net_bridge *br,
937 struct net_bridge_vlan_group *vg, struct sk_buff *skb,
939 bool br_allowed_egress(struct net_bridge_vlan_group *vg,
940 const struct sk_buff *skb);
941 bool br_should_learn(struct net_bridge_port *p, struct sk_buff *skb, u16 *vid);
942 struct sk_buff *br_handle_vlan(struct net_bridge *br,
943 const struct net_bridge_port *port,
944 struct net_bridge_vlan_group *vg,
945 struct sk_buff *skb);
946 int br_vlan_add(struct net_bridge *br, u16 vid, u16 flags,
947 bool *changed, struct netlink_ext_ack *extack);
948 int br_vlan_delete(struct net_bridge *br, u16 vid);
949 void br_vlan_flush(struct net_bridge *br);
950 struct net_bridge_vlan *br_vlan_find(struct net_bridge_vlan_group *vg, u16 vid);
951 void br_recalculate_fwd_mask(struct net_bridge *br);
952 int __br_vlan_filter_toggle(struct net_bridge *br, unsigned long val);
953 int br_vlan_filter_toggle(struct net_bridge *br, unsigned long val);
954 int __br_vlan_set_proto(struct net_bridge *br, __be16 proto);
955 int br_vlan_set_proto(struct net_bridge *br, unsigned long val);
956 int br_vlan_set_stats(struct net_bridge *br, unsigned long val);
957 int br_vlan_set_stats_per_port(struct net_bridge *br, unsigned long val);
958 int br_vlan_init(struct net_bridge *br);
959 int br_vlan_set_default_pvid(struct net_bridge *br, unsigned long val);
960 int __br_vlan_set_default_pvid(struct net_bridge *br, u16 pvid,
961 struct netlink_ext_ack *extack);
962 int nbp_vlan_add(struct net_bridge_port *port, u16 vid, u16 flags,
963 bool *changed, struct netlink_ext_ack *extack);
964 int nbp_vlan_delete(struct net_bridge_port *port, u16 vid);
965 void nbp_vlan_flush(struct net_bridge_port *port);
966 int nbp_vlan_init(struct net_bridge_port *port, struct netlink_ext_ack *extack);
967 int nbp_get_num_vlan_infos(struct net_bridge_port *p, u32 filter_mask);
968 void br_vlan_get_stats(const struct net_bridge_vlan *v,
969 struct br_vlan_stats *stats);
970 void br_vlan_port_event(struct net_bridge_port *p, unsigned long event);
971 int br_vlan_bridge_event(struct net_device *dev, unsigned long event,
973 void br_vlan_rtnl_init(void);
974 void br_vlan_rtnl_uninit(void);
975 void br_vlan_notify(const struct net_bridge *br,
976 const struct net_bridge_port *p,
977 u16 vid, u16 vid_range,
979 bool br_vlan_can_enter_range(const struct net_bridge_vlan *v_curr,
980 const struct net_bridge_vlan *range_end);
982 static inline struct net_bridge_vlan_group *br_vlan_group(
983 const struct net_bridge *br)
985 return rtnl_dereference(br->vlgrp);
988 static inline struct net_bridge_vlan_group *nbp_vlan_group(
989 const struct net_bridge_port *p)
991 return rtnl_dereference(p->vlgrp);
994 static inline struct net_bridge_vlan_group *br_vlan_group_rcu(
995 const struct net_bridge *br)
997 return rcu_dereference(br->vlgrp);
1000 static inline struct net_bridge_vlan_group *nbp_vlan_group_rcu(
1001 const struct net_bridge_port *p)
1003 return rcu_dereference(p->vlgrp);
1006 /* Since bridge now depends on 8021Q module, but the time bridge sees the
1007 * skb, the vlan tag will always be present if the frame was tagged.
1009 static inline int br_vlan_get_tag(const struct sk_buff *skb, u16 *vid)
1013 if (skb_vlan_tag_present(skb)) {
1014 *vid = skb_vlan_tag_get_id(skb);
1023 static inline u16 br_get_pvid(const struct net_bridge_vlan_group *vg)
1032 static inline u16 br_vlan_flags(const struct net_bridge_vlan *v, u16 pvid)
1034 return v->vid == pvid ? v->flags | BRIDGE_VLAN_INFO_PVID : v->flags;
1037 static inline bool br_allowed_ingress(const struct net_bridge *br,
1038 struct net_bridge_vlan_group *vg,
1039 struct sk_buff *skb,
1045 static inline bool br_allowed_egress(struct net_bridge_vlan_group *vg,
1046 const struct sk_buff *skb)
1051 static inline bool br_should_learn(struct net_bridge_port *p,
1052 struct sk_buff *skb, u16 *vid)
1057 static inline struct sk_buff *br_handle_vlan(struct net_bridge *br,
1058 const struct net_bridge_port *port,
1059 struct net_bridge_vlan_group *vg,
1060 struct sk_buff *skb)
1065 static inline int br_vlan_add(struct net_bridge *br, u16 vid, u16 flags,
1066 bool *changed, struct netlink_ext_ack *extack)
1072 static inline int br_vlan_delete(struct net_bridge *br, u16 vid)
1077 static inline void br_vlan_flush(struct net_bridge *br)
1081 static inline void br_recalculate_fwd_mask(struct net_bridge *br)
1085 static inline int br_vlan_init(struct net_bridge *br)
1090 static inline int nbp_vlan_add(struct net_bridge_port *port, u16 vid, u16 flags,
1091 bool *changed, struct netlink_ext_ack *extack)
1097 static inline int nbp_vlan_delete(struct net_bridge_port *port, u16 vid)
1102 static inline void nbp_vlan_flush(struct net_bridge_port *port)
1106 static inline struct net_bridge_vlan *br_vlan_find(struct net_bridge_vlan_group *vg,
1112 static inline int nbp_vlan_init(struct net_bridge_port *port,
1113 struct netlink_ext_ack *extack)
1118 static inline u16 br_vlan_get_tag(const struct sk_buff *skb, u16 *tag)
1123 static inline u16 br_get_pvid(const struct net_bridge_vlan_group *vg)
1128 static inline int __br_vlan_filter_toggle(struct net_bridge *br,
1134 static inline int nbp_get_num_vlan_infos(struct net_bridge_port *p,
1140 static inline struct net_bridge_vlan_group *br_vlan_group(
1141 const struct net_bridge *br)
1146 static inline struct net_bridge_vlan_group *nbp_vlan_group(
1147 const struct net_bridge_port *p)
1152 static inline struct net_bridge_vlan_group *br_vlan_group_rcu(
1153 const struct net_bridge *br)
1158 static inline struct net_bridge_vlan_group *nbp_vlan_group_rcu(
1159 const struct net_bridge_port *p)
1164 static inline void br_vlan_get_stats(const struct net_bridge_vlan *v,
1165 struct br_vlan_stats *stats)
1169 static inline void br_vlan_port_event(struct net_bridge_port *p,
1170 unsigned long event)
1174 static inline int br_vlan_bridge_event(struct net_device *dev,
1175 unsigned long event, void *ptr)
1180 static inline void br_vlan_rtnl_init(void)
1184 static inline void br_vlan_rtnl_uninit(void)
1188 static inline void br_vlan_notify(const struct net_bridge *br,
1189 const struct net_bridge_port *p,
1190 u16 vid, u16 vid_range,
1196 /* br_vlan_options.c */
1197 #ifdef CONFIG_BRIDGE_VLAN_FILTERING
1198 bool br_vlan_opts_eq(const struct net_bridge_vlan *v1,
1199 const struct net_bridge_vlan *v2);
1200 bool br_vlan_opts_fill(struct sk_buff *skb, const struct net_bridge_vlan *v);
1201 size_t br_vlan_opts_nl_size(void);
1202 int br_vlan_process_options(const struct net_bridge *br,
1203 const struct net_bridge_port *p,
1204 struct net_bridge_vlan *range_start,
1205 struct net_bridge_vlan *range_end,
1207 struct netlink_ext_ack *extack);
1211 int (*br_dev_xmit_hook)(struct sk_buff *skb);
1213 extern const struct nf_br_ops __rcu *nf_br_ops;
1215 /* br_netfilter.c */
1216 #if IS_ENABLED(CONFIG_BRIDGE_NETFILTER)
1217 int br_nf_core_init(void);
1218 void br_nf_core_fini(void);
1219 void br_netfilter_rtable_init(struct net_bridge *);
1221 static inline int br_nf_core_init(void) { return 0; }
1222 static inline void br_nf_core_fini(void) {}
1223 #define br_netfilter_rtable_init(x)
1227 void br_set_state(struct net_bridge_port *p, unsigned int state);
1228 struct net_bridge_port *br_get_port(struct net_bridge *br, u16 port_no);
1229 void br_init_port(struct net_bridge_port *p);
1230 void br_become_designated_port(struct net_bridge_port *p);
1232 void __br_set_forward_delay(struct net_bridge *br, unsigned long t);
1233 int br_set_forward_delay(struct net_bridge *br, unsigned long x);
1234 int br_set_hello_time(struct net_bridge *br, unsigned long x);
1235 int br_set_max_age(struct net_bridge *br, unsigned long x);
1236 int __set_ageing_time(struct net_device *dev, unsigned long t);
1237 int br_set_ageing_time(struct net_bridge *br, clock_t ageing_time);
1241 void br_stp_enable_bridge(struct net_bridge *br);
1242 void br_stp_disable_bridge(struct net_bridge *br);
1243 void br_stp_set_enabled(struct net_bridge *br, unsigned long val);
1244 void br_stp_enable_port(struct net_bridge_port *p);
1245 void br_stp_disable_port(struct net_bridge_port *p);
1246 bool br_stp_recalculate_bridge_id(struct net_bridge *br);
1247 void br_stp_change_bridge_id(struct net_bridge *br, const unsigned char *a);
1248 void br_stp_set_bridge_priority(struct net_bridge *br, u16 newprio);
1249 int br_stp_set_port_priority(struct net_bridge_port *p, unsigned long newprio);
1250 int br_stp_set_path_cost(struct net_bridge_port *p, unsigned long path_cost);
1251 ssize_t br_show_bridge_id(char *buf, const struct bridge_id *id);
1255 void br_stp_rcv(const struct stp_proto *proto, struct sk_buff *skb,
1256 struct net_device *dev);
1258 /* br_stp_timer.c */
1259 void br_stp_timer_init(struct net_bridge *br);
1260 void br_stp_port_timer_init(struct net_bridge_port *p);
1261 unsigned long br_timer_value(const struct timer_list *timer);
1264 #if IS_ENABLED(CONFIG_ATM_LANE)
1265 extern int (*br_fdb_test_addr_hook)(struct net_device *dev, unsigned char *addr);
1269 extern struct rtnl_link_ops br_link_ops;
1270 int br_netlink_init(void);
1271 void br_netlink_fini(void);
1272 void br_ifinfo_notify(int event, const struct net_bridge *br,
1273 const struct net_bridge_port *port);
1274 int br_setlink(struct net_device *dev, struct nlmsghdr *nlmsg, u16 flags,
1275 struct netlink_ext_ack *extack);
1276 int br_dellink(struct net_device *dev, struct nlmsghdr *nlmsg, u16 flags);
1277 int br_getlink(struct sk_buff *skb, u32 pid, u32 seq, struct net_device *dev,
1278 u32 filter_mask, int nlflags);
1279 int br_process_vlan_info(struct net_bridge *br,
1280 struct net_bridge_port *p, int cmd,
1281 struct bridge_vlan_info *vinfo_curr,
1282 struct bridge_vlan_info **vinfo_last,
1284 struct netlink_ext_ack *extack);
1288 extern const struct sysfs_ops brport_sysfs_ops;
1289 int br_sysfs_addif(struct net_bridge_port *p);
1290 int br_sysfs_renameif(struct net_bridge_port *p);
1293 int br_sysfs_addbr(struct net_device *dev);
1294 void br_sysfs_delbr(struct net_device *dev);
1298 static inline int br_sysfs_addif(struct net_bridge_port *p) { return 0; }
1299 static inline int br_sysfs_renameif(struct net_bridge_port *p) { return 0; }
1300 static inline int br_sysfs_addbr(struct net_device *dev) { return 0; }
1301 static inline void br_sysfs_delbr(struct net_device *dev) { return; }
1302 #endif /* CONFIG_SYSFS */
1304 /* br_switchdev.c */
1305 #ifdef CONFIG_NET_SWITCHDEV
1306 int nbp_switchdev_mark_set(struct net_bridge_port *p);
1307 void nbp_switchdev_frame_mark(const struct net_bridge_port *p,
1308 struct sk_buff *skb);
1309 bool nbp_switchdev_allowed_egress(const struct net_bridge_port *p,
1310 const struct sk_buff *skb);
1311 int br_switchdev_set_port_flag(struct net_bridge_port *p,
1312 unsigned long flags,
1313 unsigned long mask);
1314 void br_switchdev_fdb_notify(const struct net_bridge_fdb_entry *fdb,
1316 int br_switchdev_port_vlan_add(struct net_device *dev, u16 vid, u16 flags,
1317 struct netlink_ext_ack *extack);
1318 int br_switchdev_port_vlan_del(struct net_device *dev, u16 vid);
1320 static inline void br_switchdev_frame_unmark(struct sk_buff *skb)
1322 skb->offload_fwd_mark = 0;
1325 static inline int nbp_switchdev_mark_set(struct net_bridge_port *p)
1330 static inline void nbp_switchdev_frame_mark(const struct net_bridge_port *p,
1331 struct sk_buff *skb)
1335 static inline bool nbp_switchdev_allowed_egress(const struct net_bridge_port *p,
1336 const struct sk_buff *skb)
1341 static inline int br_switchdev_set_port_flag(struct net_bridge_port *p,
1342 unsigned long flags,
1348 static inline int br_switchdev_port_vlan_add(struct net_device *dev,
1350 struct netlink_ext_ack *extack)
1355 static inline int br_switchdev_port_vlan_del(struct net_device *dev, u16 vid)
1361 br_switchdev_fdb_notify(const struct net_bridge_fdb_entry *fdb, int type)
1365 static inline void br_switchdev_frame_unmark(struct sk_buff *skb)
1368 #endif /* CONFIG_NET_SWITCHDEV */
1370 /* br_arp_nd_proxy.c */
1371 void br_recalculate_neigh_suppress_enabled(struct net_bridge *br);
1372 void br_do_proxy_suppress_arp(struct sk_buff *skb, struct net_bridge *br,
1373 u16 vid, struct net_bridge_port *p);
1374 void br_do_suppress_nd(struct sk_buff *skb, struct net_bridge *br,
1375 u16 vid, struct net_bridge_port *p, struct nd_msg *msg);
1376 struct nd_msg *br_is_nd_neigh_msg(struct sk_buff *skb, struct nd_msg *m);