ip_set_bitmap_gen.h 7.7 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302
  1. /* Copyright (C) 2013 Jozsef Kadlecsik <kadlec@blackhole.kfki.hu>
  2. *
  3. * This program is free software; you can redistribute it and/or modify
  4. * it under the terms of the GNU General Public License version 2 as
  5. * published by the Free Software Foundation.
  6. */
  7. #ifndef __IP_SET_BITMAP_IP_GEN_H
  8. #define __IP_SET_BITMAP_IP_GEN_H
  9. #define mtype_do_test IPSET_TOKEN(MTYPE, _do_test)
  10. #define mtype_gc_test IPSET_TOKEN(MTYPE, _gc_test)
  11. #define mtype_is_filled IPSET_TOKEN(MTYPE, _is_filled)
  12. #define mtype_do_add IPSET_TOKEN(MTYPE, _do_add)
  13. #define mtype_ext_cleanup IPSET_TOKEN(MTYPE, _ext_cleanup)
  14. #define mtype_do_del IPSET_TOKEN(MTYPE, _do_del)
  15. #define mtype_do_list IPSET_TOKEN(MTYPE, _do_list)
  16. #define mtype_do_head IPSET_TOKEN(MTYPE, _do_head)
  17. #define mtype_adt_elem IPSET_TOKEN(MTYPE, _adt_elem)
  18. #define mtype_add_timeout IPSET_TOKEN(MTYPE, _add_timeout)
  19. #define mtype_gc_init IPSET_TOKEN(MTYPE, _gc_init)
  20. #define mtype_kadt IPSET_TOKEN(MTYPE, _kadt)
  21. #define mtype_uadt IPSET_TOKEN(MTYPE, _uadt)
  22. #define mtype_destroy IPSET_TOKEN(MTYPE, _destroy)
  23. #define mtype_flush IPSET_TOKEN(MTYPE, _flush)
  24. #define mtype_head IPSET_TOKEN(MTYPE, _head)
  25. #define mtype_same_set IPSET_TOKEN(MTYPE, _same_set)
  26. #define mtype_elem IPSET_TOKEN(MTYPE, _elem)
  27. #define mtype_test IPSET_TOKEN(MTYPE, _test)
  28. #define mtype_add IPSET_TOKEN(MTYPE, _add)
  29. #define mtype_del IPSET_TOKEN(MTYPE, _del)
  30. #define mtype_list IPSET_TOKEN(MTYPE, _list)
  31. #define mtype_gc IPSET_TOKEN(MTYPE, _gc)
  32. #define mtype MTYPE
  33. #define get_ext(set, map, id) ((map)->extensions + ((set)->dsize * (id)))
  34. static void
  35. mtype_gc_init(struct ip_set *set, void (*gc)(unsigned long ul_set))
  36. {
  37. struct mtype *map = set->data;
  38. init_timer(&map->gc);
  39. map->gc.data = (unsigned long)set;
  40. map->gc.function = gc;
  41. map->gc.expires = jiffies + IPSET_GC_PERIOD(set->timeout) * HZ;
  42. add_timer(&map->gc);
  43. }
  44. static void
  45. mtype_ext_cleanup(struct ip_set *set)
  46. {
  47. struct mtype *map = set->data;
  48. u32 id;
  49. for (id = 0; id < map->elements; id++)
  50. if (test_bit(id, map->members))
  51. ip_set_ext_destroy(set, get_ext(set, map, id));
  52. }
  53. static void
  54. mtype_destroy(struct ip_set *set)
  55. {
  56. struct mtype *map = set->data;
  57. if (SET_WITH_TIMEOUT(set))
  58. del_timer_sync(&map->gc);
  59. ip_set_free(map->members);
  60. if (set->dsize && set->extensions & IPSET_EXT_DESTROY)
  61. mtype_ext_cleanup(set);
  62. ip_set_free(map);
  63. set->data = NULL;
  64. }
  65. static void
  66. mtype_flush(struct ip_set *set)
  67. {
  68. struct mtype *map = set->data;
  69. if (set->extensions & IPSET_EXT_DESTROY)
  70. mtype_ext_cleanup(set);
  71. memset(map->members, 0, map->memsize);
  72. }
  73. static int
  74. mtype_head(struct ip_set *set, struct sk_buff *skb)
  75. {
  76. const struct mtype *map = set->data;
  77. struct nlattr *nested;
  78. size_t memsize = sizeof(*map) + map->memsize;
  79. nested = ipset_nest_start(skb, IPSET_ATTR_DATA);
  80. if (!nested)
  81. goto nla_put_failure;
  82. if (mtype_do_head(skb, map) ||
  83. nla_put_net32(skb, IPSET_ATTR_REFERENCES, htonl(set->ref - 1)) ||
  84. nla_put_net32(skb, IPSET_ATTR_MEMSIZE, htonl(memsize)))
  85. goto nla_put_failure;
  86. if (unlikely(ip_set_put_flags(skb, set)))
  87. goto nla_put_failure;
  88. ipset_nest_end(skb, nested);
  89. return 0;
  90. nla_put_failure:
  91. return -EMSGSIZE;
  92. }
  93. static int
  94. mtype_test(struct ip_set *set, void *value, const struct ip_set_ext *ext,
  95. struct ip_set_ext *mext, u32 flags)
  96. {
  97. struct mtype *map = set->data;
  98. const struct mtype_adt_elem *e = value;
  99. void *x = get_ext(set, map, e->id);
  100. int ret = mtype_do_test(e, map, set->dsize);
  101. if (ret <= 0)
  102. return ret;
  103. if (SET_WITH_TIMEOUT(set) &&
  104. ip_set_timeout_expired(ext_timeout(x, set)))
  105. return 0;
  106. if (SET_WITH_COUNTER(set))
  107. ip_set_update_counter(ext_counter(x, set), ext, mext, flags);
  108. if (SET_WITH_SKBINFO(set))
  109. ip_set_get_skbinfo(ext_skbinfo(x, set), ext, mext, flags);
  110. return 1;
  111. }
  112. static int
  113. mtype_add(struct ip_set *set, void *value, const struct ip_set_ext *ext,
  114. struct ip_set_ext *mext, u32 flags)
  115. {
  116. struct mtype *map = set->data;
  117. const struct mtype_adt_elem *e = value;
  118. void *x = get_ext(set, map, e->id);
  119. int ret = mtype_do_add(e, map, flags, set->dsize);
  120. if (ret == IPSET_ADD_FAILED) {
  121. if (SET_WITH_TIMEOUT(set) &&
  122. ip_set_timeout_expired(ext_timeout(x, set))) {
  123. ret = 0;
  124. } else if (!(flags & IPSET_FLAG_EXIST)) {
  125. set_bit(e->id, map->members);
  126. return -IPSET_ERR_EXIST;
  127. }
  128. /* Element is re-added, cleanup extensions */
  129. ip_set_ext_destroy(set, x);
  130. }
  131. if (SET_WITH_TIMEOUT(set))
  132. #ifdef IP_SET_BITMAP_STORED_TIMEOUT
  133. mtype_add_timeout(ext_timeout(x, set), e, ext, set, map, ret);
  134. #else
  135. ip_set_timeout_set(ext_timeout(x, set), ext->timeout);
  136. #endif
  137. if (SET_WITH_COUNTER(set))
  138. ip_set_init_counter(ext_counter(x, set), ext);
  139. if (SET_WITH_COMMENT(set))
  140. ip_set_init_comment(ext_comment(x, set), ext);
  141. if (SET_WITH_SKBINFO(set))
  142. ip_set_init_skbinfo(ext_skbinfo(x, set), ext);
  143. /* Activate element */
  144. set_bit(e->id, map->members);
  145. return 0;
  146. }
  147. static int
  148. mtype_del(struct ip_set *set, void *value, const struct ip_set_ext *ext,
  149. struct ip_set_ext *mext, u32 flags)
  150. {
  151. struct mtype *map = set->data;
  152. const struct mtype_adt_elem *e = value;
  153. void *x = get_ext(set, map, e->id);
  154. if (mtype_do_del(e, map))
  155. return -IPSET_ERR_EXIST;
  156. ip_set_ext_destroy(set, x);
  157. if (SET_WITH_TIMEOUT(set) &&
  158. ip_set_timeout_expired(ext_timeout(x, set)))
  159. return -IPSET_ERR_EXIST;
  160. return 0;
  161. }
  162. #ifndef IP_SET_BITMAP_STORED_TIMEOUT
  163. static inline bool
  164. mtype_is_filled(const struct mtype_elem *x)
  165. {
  166. return true;
  167. }
  168. #endif
  169. static int
  170. mtype_list(const struct ip_set *set,
  171. struct sk_buff *skb, struct netlink_callback *cb)
  172. {
  173. struct mtype *map = set->data;
  174. struct nlattr *adt, *nested;
  175. void *x;
  176. u32 id, first = cb->args[IPSET_CB_ARG0];
  177. int ret = 0;
  178. adt = ipset_nest_start(skb, IPSET_ATTR_ADT);
  179. if (!adt)
  180. return -EMSGSIZE;
  181. /* Extensions may be replaced */
  182. rcu_read_lock();
  183. for (; cb->args[IPSET_CB_ARG0] < map->elements;
  184. cb->args[IPSET_CB_ARG0]++) {
  185. id = cb->args[IPSET_CB_ARG0];
  186. x = get_ext(set, map, id);
  187. if (!test_bit(id, map->members) ||
  188. (SET_WITH_TIMEOUT(set) &&
  189. #ifdef IP_SET_BITMAP_STORED_TIMEOUT
  190. mtype_is_filled((const struct mtype_elem *)x) &&
  191. #endif
  192. ip_set_timeout_expired(ext_timeout(x, set))))
  193. continue;
  194. nested = ipset_nest_start(skb, IPSET_ATTR_DATA);
  195. if (!nested) {
  196. if (id == first) {
  197. nla_nest_cancel(skb, adt);
  198. ret = -EMSGSIZE;
  199. goto out;
  200. }
  201. goto nla_put_failure;
  202. }
  203. if (mtype_do_list(skb, map, id, set->dsize))
  204. goto nla_put_failure;
  205. if (ip_set_put_extensions(skb, set, x,
  206. mtype_is_filled((const struct mtype_elem *)x)))
  207. goto nla_put_failure;
  208. ipset_nest_end(skb, nested);
  209. }
  210. ipset_nest_end(skb, adt);
  211. /* Set listing finished */
  212. cb->args[IPSET_CB_ARG0] = 0;
  213. goto out;
  214. nla_put_failure:
  215. nla_nest_cancel(skb, nested);
  216. if (unlikely(id == first)) {
  217. cb->args[IPSET_CB_ARG0] = 0;
  218. ret = -EMSGSIZE;
  219. }
  220. ipset_nest_end(skb, adt);
  221. out:
  222. rcu_read_unlock();
  223. return ret;
  224. }
  225. static void
  226. mtype_gc(unsigned long ul_set)
  227. {
  228. struct ip_set *set = (struct ip_set *)ul_set;
  229. struct mtype *map = set->data;
  230. void *x;
  231. u32 id;
  232. /* We run parallel with other readers (test element)
  233. * but adding/deleting new entries is locked out
  234. */
  235. spin_lock_bh(&set->lock);
  236. for (id = 0; id < map->elements; id++)
  237. if (mtype_gc_test(id, map, set->dsize)) {
  238. x = get_ext(set, map, id);
  239. if (ip_set_timeout_expired(ext_timeout(x, set))) {
  240. clear_bit(id, map->members);
  241. ip_set_ext_destroy(set, x);
  242. }
  243. }
  244. spin_unlock_bh(&set->lock);
  245. map->gc.expires = jiffies + IPSET_GC_PERIOD(set->timeout) * HZ;
  246. add_timer(&map->gc);
  247. }
  248. static const struct ip_set_type_variant mtype = {
  249. .kadt = mtype_kadt,
  250. .uadt = mtype_uadt,
  251. .adt = {
  252. [IPSET_ADD] = mtype_add,
  253. [IPSET_DEL] = mtype_del,
  254. [IPSET_TEST] = mtype_test,
  255. },
  256. .destroy = mtype_destroy,
  257. .flush = mtype_flush,
  258. .head = mtype_head,
  259. .list = mtype_list,
  260. .same_set = mtype_same_set,
  261. };
  262. #endif /* __IP_SET_BITMAP_IP_GEN_H */