29 #define MSEC_PER_SEC 1000 30 #define IP6_REASS_TIMEOUT_DEFAULT_MS 100 31 #define IP6_REASS_EXPIRE_WALK_INTERVAL_DEFAULT_MS 10000 // 10 seconds default 32 #define IP6_REASS_MAX_REASSEMBLIES_DEFAULT 1024 33 #define IP6_REASS_HT_LOAD_FACTOR (0.75) 63 return vnb->
ip.reass.range_first - vnb->
ip.reass.fragment_first;
70 return clib_min (vnb->
ip.reass.range_last, vnb->
ip.reass.fragment_last) -
202 s =
format (s,
"first bi: %u, data len: %u, ip/fragment[%u, %u]",
216 s =
format (s,
"\n%Uicmp-error - frag_len > 65535 %U",
221 s =
format (s,
"\n%Uicmp-error - frag_len mod 8 != 0 %U",
226 s =
format (s,
"\n%Uicmp-error - reassembly time exceeded",
239 u32 bi, ip6_reass_trace_operation_e action,
247 b->
flags &= ~VLIB_BUFFER_IS_TRACED;
264 printf (
"%.*s\n",
vec_len (s), s);
281 clib_bihash_add_del_48_8 (&rm->
hash, &kv, 0);
294 while (~0 != range_bi)
303 if (b->
flags & VLIB_BUFFER_NEXT_PRESENT)
306 b->
flags &= ~VLIB_BUFFER_NEXT_PRESENT;
313 range_bi = range_vnb->
ip.reass.next_range_bi;
338 if (b->
flags & VLIB_BUFFER_NEXT_PRESENT)
341 b->
flags &= ~VLIB_BUFFER_NEXT_PRESENT;
349 ICMP6_time_exceeded_fragment_reassembly_time_exceeded,
370 if (!clib_bihash_search_48_8 (&rm->
hash, &kv, &value))
395 memset (reass, 0,
sizeof (*reass));
414 if (clib_bihash_add_del_48_8 (&rm->
hash, &kv, 1))
430 *error0 = IP6_ERROR_NONE;
431 ip6_frag_hdr_t *frag_hdr;
434 u32 total_length = 0;
441 u32 tmp_bi = sub_chain_bi;
444 if (!(vnb->
ip.reass.range_first >= vnb->
ip.reass.fragment_first) &&
445 !(vnb->
ip.reass.range_last > vnb->
ip.reass.fragment_first))
448 goto free_buffers_and_return;
452 u32 trim_front =
vnet_buffer (tmp)->ip.reass.ip6_frag_hdr_offset +
459 if (0 != ip6_reass_buffer_get_data_offset (tmp))
462 goto free_buffers_and_return;
471 goto free_buffers_and_return;
484 vec_add1 (vec_drop_compress, tmp_bi);
486 if (!(tmp->
flags & VLIB_BUFFER_NEXT_PRESENT))
489 goto free_buffers_and_return;
491 tmp->
flags &= ~VLIB_BUFFER_NEXT_PRESENT;
506 last_b->
flags |= VLIB_BUFFER_NEXT_PRESENT;
510 if (keep_data <= tmp->current_length)
518 if (!(tmp->
flags & VLIB_BUFFER_NEXT_PRESENT))
521 goto free_buffers_and_return;
528 vec_add1 (vec_drop_compress, tmp_bi);
532 goto free_buffers_and_return;
536 if (tmp->
flags & VLIB_BUFFER_NEXT_PRESENT)
550 while (~0 != sub_chain_bi);
555 goto free_buffers_and_return;
557 last_b->
flags &= ~VLIB_BUFFER_NEXT_PRESENT;
559 if (total_length < first_b->current_length)
562 goto free_buffers_and_return;
565 first_b->
flags |= VLIB_BUFFER_TOTAL_LENGTH_VALID;
571 ip6_ext_header_t *prev_hdr;
573 IP_PROTOCOL_IPV6_FRAGMENTATION);
576 prev_hdr->next_hdr = frag_hdr->next_hdr;
582 if (!((
u8 *) frag_hdr - (
u8 *) ip == ip6_frag_hdr_offset))
585 goto free_buffers_and_return;
587 memmove (frag_hdr, (
u8 *) frag_hdr +
sizeof (*frag_hdr),
589 sizeof (ip6_frag_hdr_t));
597 goto free_buffers_and_return;
613 if (b->
flags & VLIB_BUFFER_NEXT_PRESENT)
622 printf (
"%.*s\n",
vec_len (s), s);
640 free_buffers_and_return:
655 if (~0 != prev_range_bi)
659 new_next_vnb->
ip.reass.next_range_bi = prev_vnb->
ip.reass.next_range_bi;
660 prev_vnb->
ip.reass.next_range_bi = new_next_bi;
666 new_next_vnb->
ip.reass.next_range_bi = reass->
first_bi;
677 ip6_frag_hdr_t * frag_hdr,
bool is_feature)
683 fvnb->
ip.reass.ip6_frag_hdr_offset =
687 fvnb->
ip.reass.ip6_frag_hdr_offset == 0 ||
693 u32 fragment_first = fvnb->
ip.reass.fragment_first =
695 u32 fragment_length =
697 (fvnb->
ip.reass.ip6_frag_hdr_offset +
sizeof (*frag_hdr));
698 u32 fragment_last = fvnb->
ip.reass.fragment_last =
699 fragment_first + fragment_length - 1;
702 u32 prev_range_bi = ~0;
703 fvnb->
ip.reass.range_first = fragment_first;
704 fvnb->
ip.reass.range_last = fragment_last;
705 fvnb->
ip.reass.next_range_bi = ~0;
717 goto check_if_done_maybe;
721 fvnb->
ip.reass.estimated_mtu);
722 while (~0 != candidate_range_bi)
726 if (fragment_first > candidate_vnb->
ip.reass.range_last)
729 prev_range_bi = candidate_range_bi;
730 candidate_range_bi = candidate_vnb->
ip.reass.next_range_bi;
731 if (candidate_vnb->
ip.reass.range_last < fragment_last &&
732 ~0 == candidate_range_bi)
736 prev_range_bi, *bi0);
742 if (fragment_last < candidate_vnb->ip.reass.range_first)
749 else if (fragment_first == candidate_vnb->
ip.reass.range_first &&
750 fragment_last == candidate_vnb->
ip.reass.range_last)
765 *error0 = IP6_ERROR_REASS_OVERLAPPING_FRAGMENT;
793 *error0 = IP6_ERROR_REASS_DUPLICATE_FRAGMENT;
802 ip6_frag_hdr_t * frag_hdr)
804 ip6_ext_header_t *tmp = (ip6_ext_header_t *) frag_hdr;
809 if (IP_PROTOCOL_IP6_NONXT == tmp->next_hdr)
812 ICMP6_parameter_problem_first_fragment_has_incomplete_header_chain,
814 b->
error = node->
errors[IP6_ERROR_REASS_MISSING_UPPER];
825 ip6_frag_hdr_t * frag_hdr)
830 u32 fragment_length =
832 (vnb->
ip.reass.ip6_frag_hdr_offset +
sizeof (*frag_hdr));
833 if (more_fragments && 0 != fragment_length % 8)
836 ICMP6_parameter_problem_erroneous_header_field,
847 ip6_frag_hdr_t * frag_hdr)
851 u32 fragment_length =
853 (vnb->
ip.reass.ip6_frag_hdr_offset +
sizeof (*frag_hdr));
854 if (fragment_first + fragment_length > 65535)
858 ICMP6_parameter_problem_erroneous_header_field,
859 (
u8 *) & frag_hdr->fragment_offset_and_more
872 u32 n_left_from, n_left_to_next, *to_next, next_index;
879 while (n_left_from > 0)
883 while (n_left_from > 0 && n_left_to_next > 0)
888 u32 error0 = IP6_ERROR_NONE;
895 ip6_frag_hdr_t *frag_hdr =
NULL;
896 ip6_ext_header_t *prev_hdr;
900 IP_PROTOCOL_IPV6_FRAGMENTATION);
925 (
u8 *) frag_hdr - (
u8 *) ip0;
942 &error0, frag_hdr, is_feature))
960 error0 = IP6_ERROR_REASS_LIMIT_REACHED;
971 if (is_feature && IP6_ERROR_NONE == error0)
977 n_left_to_next, bi0, next0);
983 to_next[0] = icmp_bi;
987 n_left_to_next, icmp_bi,
1003 #define _(sym, string) string, 1018 .name =
"ip6-reassembly",
1019 .vector_size =
sizeof (
u32),
1021 .n_errors =
ARRAY_LEN (ip6_reassembly_error_strings),
1045 .name =
"ip6-reassembly-feature",
1046 .vector_size =
sizeof (
u32),
1048 .n_errors =
ARRAY_LEN (ip6_reassembly_error_strings),
1064 .arc_name =
"ip6-unicast",
1065 .node_name =
"ip6-reassembly-feature",
1080 for (i = 0; i < 31; i++)
1081 if ((1 << i) >= nbuckets)
1103 if (clib_bihash_add_del_48_8 (ctx->
new_hash, kv, 1))
1111 u32 expire_walk_interval_ms)
1121 u32 expire_walk_interval_ms)
1125 expire_walk_interval_ms);
1130 if (ip6_reass_main.
max_reass_n > 0 && new_nbuckets > old_nbuckets)
1132 clib_bihash_48_8_t new_hash;
1133 memset (&new_hash, 0,
sizeof (new_hash));
1137 clib_bihash_init_48_8 (&new_hash,
"ip6-reass", new_nbuckets,
1138 new_nbuckets * 1024);
1139 clib_bihash_foreach_key_value_pair_48_8 (&ip6_reass_main.
hash,
1143 clib_bihash_free_48_8 (&new_hash);
1148 clib_bihash_free_48_8 (&ip6_reass_main.
hash);
1150 sizeof (ip6_reass_main.
hash));
1158 u32 * expire_walk_interval_ms)
1194 clib_bihash_init_48_8 (&rm->
hash,
"ip6-reass", nbuckets, nbuckets * 1024);
1218 uword event_type, *event_data = 0;
1241 int *pool_indexes_to_free =
NULL;
1243 uword thread_index = 0;
1247 for (thread_index = 0; thread_index < nthreads; ++thread_index)
1255 reass = pool_elt_at_index (rt->pool, index);
1256 if (now > reass->last_heard + rm->timeout)
1258 vec_add1 (pool_indexes_to_free, index);
1275 b->
flags &= ~VLIB_BUFFER_IS_TRACED;
1290 while (
vec_len (vec_icmp_bi) > 0)
1296 int trace_frame = 0;
1297 while (
vec_len (vec_icmp_bi) > 0 && n_left_to_next > 0)
1307 b->
flags &= ~VLIB_BUFFER_IS_TRACED;
1318 n_left_to_next -= 1;
1328 _vec_len (event_data) = 0;
1342 .name =
"ip6-reassembly-expire-walk",
1354 s =
format (s,
"xx_id: %u, src: %U, dst: %U, frag_id: %u, proto: %u",
1366 s =
format (s,
"ID: %lu, key: %U\n first_bi: %u, data_len: %u, " 1367 "last_packet_octet: %u, trace_op_counter: %u\n",
1377 s =
format (s,
" #%03u: range: [%u, %u], bi: %u, off: %d, len: %u, " 1378 "fragment[%u, %u]\n",
1379 counter, vnb->
ip.reass.range_first,
1380 vnb->
ip.reass.range_last, bi,
1383 vnb->
ip.reass.fragment_first, vnb->
ip.reass.fragment_last);
1384 if (b->
flags & VLIB_BUFFER_NEXT_PRESENT)
1405 bool details =
false;
1411 u32 sum_reass_n = 0;
1412 u64 sum_buffers_n = 0;
1416 for (thread_index = 0; thread_index < nthreads; ++thread_index)
1424 vlib_cli_output (vm,
"%U", format_ip6_reass, vm, reass);
1433 (
long unsigned) sum_reass_n);
1434 vlib_cli_output (vm,
"Maximum configured concurrent IP6 reassemblies per " 1435 "worker-thread: %lu\n", (
long unsigned) rm->
max_reass_n);
1437 (
long unsigned) sum_buffers_n);
1443 .path =
"show ip6-reassembly",
1444 .short_help =
"show ip6-reassembly [details]",
1453 sw_if_index, enable_disable, 0, 0);
#define IP6_REASS_TIMEOUT_DEFAULT_MS
#define vec_validate(V, I)
Make sure vector is long enough for given index (no header, unspecified alignment) ...
static void ip6_reass_drop_all(vlib_main_t *vm, ip6_reass_main_t *rm, ip6_reass_t *reass)
static ip6_reass_rc_t ip6_reass_update(vlib_main_t *vm, vlib_node_runtime_t *node, ip6_reass_main_t *rm, ip6_reass_per_thread_t *rt, ip6_reass_t *reass, u32 *bi0, u32 *next0, u32 *error0, ip6_frag_hdr_t *frag_hdr, bool is_feature)
static vlib_cli_command_t trace
(constructor) VLIB_CLI_COMMAND (trace)
static_always_inline void clib_spinlock_unlock(clib_spinlock_t *p)
static_always_inline void clib_spinlock_lock(clib_spinlock_t *p)
static f64 vlib_process_wait_for_event_or_clock(vlib_main_t *vm, f64 dt)
Suspend a cooperative multi-tasking thread Waits for an event, or for the indicated number of seconds...
static uword ip6_reassembly(vlib_main_t *vm, vlib_node_runtime_t *node, vlib_frame_t *frame)
void ip6_register_protocol(u32 protocol, u32 node_index)
static void vlib_buffer_free(vlib_main_t *vm, u32 *buffers, u32 n_buffers)
Free buffers Frees the entire buffer chain for each buffer.
vnet_main_t * vnet_get_main(void)
#define pool_alloc(P, N)
Allocate N more free elements to pool (unspecified alignment).
#define IP6_REASS_EXPIRE_WALK_INTERVAL_DEFAULT_MS
static f64 vlib_time_now(vlib_main_t *vm)
static clib_error_t * ip6_reass_init_function(vlib_main_t *vm)
static vlib_node_registration_t ip6_reass_expire_node
(constructor) VLIB_REGISTER_NODE (ip6_reass_expire_node)
#define vec_add1(V, E)
Add 1 element to end of vector (unspecified alignment).
ip6_reass_trace_operation_e action
static void * ip6_ext_next_header(ip6_ext_header_t *ext_hdr)
ip6_reass_per_thread_t * per_thread_data
vlib_error_t * errors
Vector of errors for this node.
static uword vlib_buffer_length_in_chain(vlib_main_t *vm, vlib_buffer_t *b)
Get length in bytes of the buffer chain.
#define pool_get(P, E)
Allocate an object E from a pool P (unspecified alignment).
static void ip6_reass_trace_details(vlib_main_t *vm, u32 bi, ip6_reass_range_trace_t *trace)
VLIB_NODE_FUNCTION_MULTIARCH(ip6_reass_node, ip6_reassembly)
#define vec_pop(V)
Returns last element of a vector and decrements its length.
static u16 ip6_reass_buffer_get_data_len(vlib_buffer_t *b)
#define vec_reset_length(v)
Reset vector length to zero NULL-pointer tolerant.
#define IP6_REASS_HT_LOAD_FACTOR
u32 expire_walk_interval_ms
static u32 ip6_reass_get_nbuckets()
vlib_trace_header_t ** trace_buffer_pool
memset(h->entries, 0, sizeof(h->entries[0])*entries)
#define pool_foreach(VAR, POOL, BODY)
Iterate through pool.
#define VLIB_INIT_FUNCTION(x)
static uword vlib_process_get_events(vlib_main_t *vm, uword **data_vector)
Return the first event type which has occurred and a vector of per-event data of that type...
static void ip6_reass_free(ip6_reass_main_t *rm, ip6_reass_per_thread_t *rt, ip6_reass_t *reass)
vlib_frame_t * vlib_get_frame_to_node(vlib_main_t *vm, u32 to_node_index)
vnet_api_error_t ip6_reass_set(u32 timeout_ms, u32 max_reassemblies, u32 expire_walk_interval_ms)
set ip6 reassembly configuration
static u8 * format_ip6_reass_range_trace(u8 *s, va_list *args)
#define vlib_call_init_function(vm, x)
ip6_reass_main_t ip6_reass_main
static ip6_reass_t * ip6_reass_find_or_create(vlib_main_t *vm, vlib_node_runtime_t *node, ip6_reass_main_t *rm, ip6_reass_per_thread_t *rt, ip6_reass_key_t *k, u32 *icmp_bi)
void icmp6_error_set_vnet_buffer(vlib_buffer_t *b, u8 type, u8 code, u32 data)
static void clib_spinlock_init(clib_spinlock_t *p)
static char * ip6_reassembly_error_strings[]
#define ip6_frag_hdr_more(hdr)
static u32 vlib_buffer_chain_linearize(vlib_main_t *vm, vlib_buffer_t *b)
#define pool_elt_at_index(p, i)
Returns pointer to element at given index.
u16 current_length
Nbytes between current data and the end of this buffer.
static void vlib_process_signal_event(vlib_main_t *vm, uword node_index, uword type_opaque, uword data)
void vlib_put_frame_to_node(vlib_main_t *vm, u32 to_node_index, vlib_frame_t *f)
static void * vlib_buffer_get_current(vlib_buffer_t *b)
Get pointer to current data to process.
#define pool_put(P, E)
Free an object E in pool P.
static bool ip6_reass_verify_packet_size_lt_64k(vlib_main_t *vm, vlib_node_runtime_t *node, vlib_buffer_t *b, ip6_frag_hdr_t *frag_hdr)
static u32 ip6_reass_buffer_get_data_offset(vlib_buffer_t *b)
#define vlib_validate_buffer_enqueue_x1(vm, node, next_index, to_next, n_left_to_next, bi0, next0)
Finish enqueueing one buffer forward in the graph.
ip6_reass_range_trace_t trace_range
#define vlib_get_next_frame(vm, node, next_index, vectors, n_vectors_left)
Get pointer to next frame vector data by (vlib_node_runtime_t, next_index).
vlib_error_t error
Error code for buffers to be enqueued to error handler.
VNET_FEATURE_INIT(ip6_reassembly_feature, static)
static vlib_cli_command_t show_ip6_reassembly_cmd
(constructor) VLIB_CLI_COMMAND (show_ip6_reassembly_cmd)
#define VLIB_REGISTER_NODE(x,...)
clib_error_t * ip_main_init(vlib_main_t *vm)
static vlib_node_registration_t ip6_reass_node_feature
(constructor) VLIB_REGISTER_NODE (ip6_reass_node_feature)
#define vec_free(V)
Free vector's memory (no header).
static_always_inline void vnet_feature_next(u32 *next0, vlib_buffer_t *b0)
#define clib_warning(format, args...)
#define clib_memcpy(a, b, c)
static void ip6_rehash_cb(clib_bihash_kv_48_8_t *kv, void *_ctx)
#define pool_is_free_index(P, I)
Use free bitmap to query whether given index is free.
#define ip6_frag_hdr_offset_bytes(hdr)
void vlib_put_next_frame(vlib_main_t *vm, vlib_node_runtime_t *r, u32 next_index, u32 n_vectors_left)
Release pointer to next frame vector data.
vlib_node_t * vlib_get_node_by_name(vlib_main_t *vm, u8 *name)
static u8 ip6_ext_hdr(u8 nexthdr)
#define VLIB_CLI_COMMAND(x,...)
static bool ip6_reass_verify_fragment_multiple_8(vlib_main_t *vm, vlib_node_runtime_t *node, vlib_buffer_t *b, ip6_frag_hdr_t *frag_hdr)
#define ip6_frag_hdr_offset(hdr)
static u8 * format_ip6_reass_key(u8 *s, va_list *args)
u16 cached_next_index
Next frame index that vector arguments were last enqueued to last time this node ran.
static uword ip6_reassembly_inline(vlib_main_t *vm, vlib_node_runtime_t *node, vlib_frame_t *frame, bool is_feature)
static ip6_reass_rc_t ip6_reass_finalize(vlib_main_t *vm, vlib_node_runtime_t *node, ip6_reass_main_t *rm, ip6_reass_per_thread_t *rt, ip6_reass_t *reass, u32 *bi0, u32 *next0, u32 *error0, bool is_feature)
u32 next_buffer
Next buffer for this linked-list of buffers.
static void vlib_buffer_advance(vlib_buffer_t *b, word l)
Advance current data pointer by the supplied (signed!) amount.
vlib_trace_main_t trace_main
struct vnet_buffer_opaque_t::@59::@61 ip
static clib_error_t * show_ip6_reass(vlib_main_t *vm, unformat_input_t *input, CLIB_UNUSED(vlib_cli_command_t *lmd))
#define VNET_FEATURES(...)
static void ip6_reass_insert_range_in_chain(vlib_main_t *vm, ip6_reass_main_t *rm, ip6_reass_per_thread_t *rt, ip6_reass_t *reass, u32 prev_range_bi, u32 new_next_bi)
static u8 * format_ip6_reass_trace(u8 *s, va_list *args)
static void * vlib_add_trace(vlib_main_t *vm, vlib_node_runtime_t *r, vlib_buffer_t *b, u32 n_data_bytes)
static u8 * format_ip6_reass(u8 *s, va_list *args)
u32 total_length_not_including_first_buffer
Only valid for first buffer in chain.
struct _vlib_node_registration vlib_node_registration_t
static void ip6_reass_on_timeout(vlib_main_t *vm, vlib_node_runtime_t *node, ip6_reass_main_t *rm, ip6_reass_t *reass, u32 *icmp_bi)
#define vec_len(v)
Number of elements in vector (rvalue-only, NULL tolerant)
static uword ip6_reass_walk_expired(vlib_main_t *vm, vlib_node_runtime_t *node, vlib_frame_t *f)
static void ip6_reass_add_trace(vlib_main_t *vm, vlib_node_runtime_t *node, ip6_reass_main_t *rm, ip6_reass_t *reass, u32 bi, ip6_reass_trace_operation_e action, u32 size_diff)
static void * vlib_frame_vector_args(vlib_frame_t *f)
Get pointer to frame vector data.
ip6_reass_trace_operation_e
static_always_inline uword os_get_thread_index(void)
#define foreach_ip6_error
#define IP6_REASS_MAX_REASSEMBLIES_DEFAULT
vnet_api_error_t ip6_reass_get(u32 *timeout_ms, u32 *max_reassemblies, u32 *expire_walk_interval_ms)
get ip6 reassembly configuration
clib_bihash_48_8_t * new_hash
static u32 vlib_num_workers()
static vlib_node_registration_t ip6_reass_node
(constructor) VLIB_REGISTER_NODE (ip6_reass_node)
static uword ip6_reassembly_feature(vlib_main_t *vm, vlib_node_runtime_t *node, vlib_frame_t *frame)
#define vec_foreach(var, vec)
Vector iterator.
vnet_api_error_t ip6_reass_enable_disable(u32 sw_if_index, u8 enable_disable)
#define ip6_ext_header_find_t(i, p, m, t)
static void ip6_reass_set_params(u32 timeout_ms, u32 max_reassemblies, u32 expire_walk_interval_ms)
u32 ip6_reass_expire_node_idx
static bool ip6_reass_verify_upper_layer_present(vlib_node_runtime_t *node, vlib_buffer_t *b, ip6_frag_hdr_t *frag_hdr)
#define pool_foreach_index(i, v, body)
Iterate pool by index.
u32 flags
buffer flags: VLIB_BUFFER_FREE_LIST_INDEX_MASK: bits used to store free list index, VLIB_BUFFER_IS_TRACED: trace this buffer.
void vlib_cli_output(vlib_main_t *vm, char *fmt,...)
static vlib_buffer_t * vlib_get_buffer(vlib_main_t *vm, u32 buffer_index)
Translate buffer index into buffer pointer.
u32 trace_index
Specifies index into trace buffer if VLIB_PACKET_IS_TRACED flag is set.
int vnet_feature_enable_disable(const char *arc_name, const char *node_name, u32 sw_if_index, int enable_disable, void *feature_config, u32 n_feature_config_bytes)
CLIB vectors are ubiquitous dynamically resized arrays with by user defined "headers".