]>
Commit | Line | Data |
---|---|---|
db9ecf05 | 1 | /* SPDX-License-Identifier: LGPL-2.1-or-later */ |
6235b3de | 2 | |
540eb5f0 | 3 | #include <net/if.h> |
6235b3de | 4 | |
737f1405 | 5 | #include "bridge.h" |
540eb5f0 | 6 | #include "netlink-util.h" |
9a81f119 | 7 | #include "network-internal.h" |
23f53b99 | 8 | #include "networkd-manager.h" |
8e2cb51c | 9 | #include "string-table.h" |
0d6c68eb | 10 | #include "vlan-util.h" |
540eb5f0 | 11 | |
8e2cb51c YW |
12 | static const char* const multicast_router_table[_MULTICAST_ROUTER_MAX] = { |
13 | [MULTICAST_ROUTER_NONE] = "no", | |
14 | [MULTICAST_ROUTER_TEMPORARY_QUERY] = "query", | |
15 | [MULTICAST_ROUTER_PERMANENT] = "permanent", | |
16 | [MULTICAST_ROUTER_TEMPORARY] = "temporary", | |
17 | }; | |
18 | ||
19 | DEFINE_STRING_TABLE_LOOKUP_WITH_BOOLEAN(multicast_router, MulticastRouter, _MULTICAST_ROUTER_INVALID); | |
20 | DEFINE_CONFIG_PARSE_ENUM(config_parse_multicast_router, multicast_router, MulticastRouter, | |
21 | "Failed to parse bridge multicast router setting"); | |
22 | ||
5238e957 | 23 | /* callback for bridge netdev's parameter set */ |
302a796f | 24 | static int netdev_bridge_set_handler(sd_netlink *rtnl, sd_netlink_message *m, NetDev *netdev) { |
540eb5f0 SS |
25 | int r; |
26 | ||
27 | assert(netdev); | |
28 | assert(m); | |
29 | ||
30 | r = sd_netlink_message_get_errno(m); | |
31 | if (r < 0) { | |
32 | log_netdev_warning_errno(netdev, r, "Bridge parameters could not be set: %m"); | |
33 | return 1; | |
34 | } | |
35 | ||
82936769 | 36 | log_netdev_debug(netdev, "Bridge parameters set success"); |
540eb5f0 SS |
37 | |
38 | return 1; | |
39 | } | |
40 | ||
41 | static int netdev_bridge_post_create(NetDev *netdev, Link *link, sd_netlink_message *m) { | |
4afd3348 | 42 | _cleanup_(sd_netlink_message_unrefp) sd_netlink_message *req = NULL; |
540eb5f0 SS |
43 | Bridge *b; |
44 | int r; | |
45 | ||
46 | assert(netdev); | |
47 | ||
48 | b = BRIDGE(netdev); | |
49 | ||
50 | assert(b); | |
51 | ||
52 | r = sd_rtnl_message_new_link(netdev->manager->rtnl, &req, RTM_NEWLINK, netdev->ifindex); | |
53 | if (r < 0) | |
54 | return log_netdev_error_errno(netdev, r, "Could not allocate RTM_SETLINK message: %m"); | |
55 | ||
56 | r = sd_netlink_message_set_flags(req, NLM_F_REQUEST | NLM_F_ACK); | |
57 | if (r < 0) | |
58 | return log_link_error_errno(link, r, "Could not set netlink flags: %m"); | |
59 | ||
60 | r = sd_netlink_message_open_container(req, IFLA_LINKINFO); | |
61 | if (r < 0) | |
15cdaeee | 62 | return log_netdev_error_errno(netdev, r, "Could not append IFLA_LINKINFO attribute: %m"); |
540eb5f0 SS |
63 | |
64 | r = sd_netlink_message_open_container_union(req, IFLA_INFO_DATA, netdev_kind_to_string(netdev->kind)); | |
65 | if (r < 0) | |
66 | return log_netdev_error_errno(netdev, r, "Could not append IFLA_INFO_DATA attribute: %m"); | |
67 | ||
1a14863e | 68 | /* convert to jiffes */ |
730389b6 | 69 | if (b->forward_delay != USEC_INFINITY) { |
1a14863e | 70 | r = sd_netlink_message_append_u32(req, IFLA_BR_FORWARD_DELAY, usec_to_jiffies(b->forward_delay)); |
540eb5f0 SS |
71 | if (r < 0) |
72 | return log_netdev_error_errno(netdev, r, "Could not append IFLA_BR_FORWARD_DELAY attribute: %m"); | |
73 | } | |
74 | ||
75 | if (b->hello_time > 0) { | |
1a14863e | 76 | r = sd_netlink_message_append_u32(req, IFLA_BR_HELLO_TIME, usec_to_jiffies(b->hello_time)); |
540eb5f0 SS |
77 | if (r < 0) |
78 | return log_netdev_error_errno(netdev, r, "Could not append IFLA_BR_HELLO_TIME attribute: %m"); | |
79 | } | |
80 | ||
81 | if (b->max_age > 0) { | |
1a14863e | 82 | r = sd_netlink_message_append_u32(req, IFLA_BR_MAX_AGE, usec_to_jiffies(b->max_age)); |
540eb5f0 SS |
83 | if (r < 0) |
84 | return log_netdev_error_errno(netdev, r, "Could not append IFLA_BR_MAX_AGE attribute: %m"); | |
85 | } | |
86 | ||
0da81203 | 87 | if (b->ageing_time != USEC_INFINITY) { |
c7440e74 TJ |
88 | r = sd_netlink_message_append_u32(req, IFLA_BR_AGEING_TIME, usec_to_jiffies(b->ageing_time)); |
89 | if (r < 0) | |
90 | return log_netdev_error_errno(netdev, r, "Could not append IFLA_BR_AGEING_TIME attribute: %m"); | |
91 | } | |
92 | ||
93 | if (b->priority > 0) { | |
94 | r = sd_netlink_message_append_u16(req, IFLA_BR_PRIORITY, b->priority); | |
95 | if (r < 0) | |
96 | return log_netdev_error_errno(netdev, r, "Could not append IFLA_BR_PRIORITY attribute: %m"); | |
97 | } | |
98 | ||
c4819961 JC |
99 | if (b->group_fwd_mask > 0) { |
100 | r = sd_netlink_message_append_u16(req, IFLA_BR_GROUP_FWD_MASK, b->group_fwd_mask); | |
101 | if (r < 0) | |
102 | return log_netdev_error_errno(netdev, r, "Could not append IFLA_BR_GROUP_FWD_MASK attribute: %m"); | |
103 | } | |
104 | ||
0d6c68eb | 105 | if (b->default_pvid != VLANID_INVALID) { |
c7440e74 TJ |
106 | r = sd_netlink_message_append_u16(req, IFLA_BR_VLAN_DEFAULT_PVID, b->default_pvid); |
107 | if (r < 0) | |
108 | return log_netdev_error_errno(netdev, r, "Could not append IFLA_BR_VLAN_DEFAULT_PVID attribute: %m"); | |
109 | } | |
110 | ||
3fef7a3f SS |
111 | if (b->mcast_querier >= 0) { |
112 | r = sd_netlink_message_append_u8(req, IFLA_BR_MCAST_QUERIER, b->mcast_querier); | |
113 | if (r < 0) | |
114 | return log_netdev_error_errno(netdev, r, "Could not append IFLA_BR_MCAST_QUERIER attribute: %m"); | |
115 | } | |
116 | ||
6df6d898 SS |
117 | if (b->mcast_snooping >= 0) { |
118 | r = sd_netlink_message_append_u8(req, IFLA_BR_MCAST_SNOOPING, b->mcast_snooping); | |
119 | if (r < 0) | |
120 | return log_netdev_error_errno(netdev, r, "Could not append IFLA_BR_MCAST_SNOOPING attribute: %m"); | |
121 | } | |
122 | ||
c6f8d17d TJ |
123 | if (b->vlan_filtering >= 0) { |
124 | r = sd_netlink_message_append_u8(req, IFLA_BR_VLAN_FILTERING, b->vlan_filtering); | |
125 | if (r < 0) | |
126 | return log_netdev_error_errno(netdev, r, "Could not append IFLA_BR_VLAN_FILTERING attribute: %m"); | |
127 | } | |
128 | ||
4df4df5b RF |
129 | if (b->vlan_protocol >= 0) { |
130 | r = sd_netlink_message_append_u16(req, IFLA_BR_VLAN_PROTOCOL, b->vlan_protocol); | |
131 | if (r < 0) | |
132 | return log_netdev_error_errno(netdev, r, "Could not append IFLA_BR_VLAN_PROTOCOL attribute: %m"); | |
133 | } | |
134 | ||
b760a9af SS |
135 | if (b->stp >= 0) { |
136 | r = sd_netlink_message_append_u32(req, IFLA_BR_STP_STATE, b->stp); | |
137 | if (r < 0) | |
138 | return log_netdev_error_errno(netdev, r, "Could not append IFLA_BR_STP_STATE attribute: %m"); | |
139 | } | |
140 | ||
afa51e2d SS |
141 | if (b->igmp_version > 0) { |
142 | r = sd_netlink_message_append_u8(req, IFLA_BR_MCAST_IGMP_VERSION, b->igmp_version); | |
143 | if (r < 0) | |
144 | return log_netdev_error_errno(netdev, r, "Could not append IFLA_BR_MCAST_IGMP_VERSION attribute: %m"); | |
145 | } | |
146 | ||
540eb5f0 SS |
147 | r = sd_netlink_message_close_container(req); |
148 | if (r < 0) | |
149 | return log_netdev_error_errno(netdev, r, "Could not append IFLA_LINKINFO attribute: %m"); | |
150 | ||
151 | r = sd_netlink_message_close_container(req); | |
152 | if (r < 0) | |
153 | return log_netdev_error_errno(netdev, r, "Could not append IFLA_INFO_DATA attribute: %m"); | |
154 | ||
302a796f YW |
155 | r = netlink_call_async(netdev->manager->rtnl, NULL, req, netdev_bridge_set_handler, |
156 | netdev_destroy_callback, netdev); | |
540eb5f0 SS |
157 | if (r < 0) |
158 | return log_netdev_error_errno(netdev, r, "Could not send rtnetlink message: %m"); | |
159 | ||
160 | netdev_ref(netdev); | |
161 | ||
162 | return r; | |
163 | } | |
6235b3de | 164 | |
9a81f119 YW |
165 | static int link_set_bridge_handler(sd_netlink *rtnl, sd_netlink_message *m, Link *link) { |
166 | int r; | |
167 | ||
168 | assert(m); | |
169 | assert(link); | |
170 | assert(link->ifname); | |
171 | ||
172 | if (IN_SET(link->state, LINK_STATE_FAILED, LINK_STATE_LINGER)) | |
173 | return 1; | |
174 | ||
175 | r = sd_netlink_message_get_errno(m); | |
176 | if (r < 0) { | |
177 | log_link_warning_errno(link, r, "Could not set bridge interface: %m"); | |
178 | return 1; | |
179 | } | |
180 | ||
181 | return 1; | |
182 | } | |
183 | ||
184 | int link_set_bridge(Link *link) { | |
185 | _cleanup_(sd_netlink_message_unrefp) sd_netlink_message *req = NULL; | |
186 | int r; | |
187 | ||
188 | assert(link); | |
189 | assert(link->network); | |
190 | ||
191 | r = sd_rtnl_message_new_link(link->manager->rtnl, &req, RTM_SETLINK, link->ifindex); | |
192 | if (r < 0) | |
193 | return log_link_error_errno(link, r, "Could not allocate RTM_SETLINK message: %m"); | |
194 | ||
40eb1b0a | 195 | r = sd_rtnl_message_link_set_family(req, AF_BRIDGE); |
9a81f119 YW |
196 | if (r < 0) |
197 | return log_link_error_errno(link, r, "Could not set message family: %m"); | |
198 | ||
199 | r = sd_netlink_message_open_container(req, IFLA_PROTINFO); | |
200 | if (r < 0) | |
201 | return log_link_error_errno(link, r, "Could not append IFLA_PROTINFO attribute: %m"); | |
202 | ||
203 | if (link->network->use_bpdu >= 0) { | |
204 | r = sd_netlink_message_append_u8(req, IFLA_BRPORT_GUARD, link->network->use_bpdu); | |
205 | if (r < 0) | |
206 | return log_link_error_errno(link, r, "Could not append IFLA_BRPORT_GUARD attribute: %m"); | |
207 | } | |
208 | ||
209 | if (link->network->hairpin >= 0) { | |
210 | r = sd_netlink_message_append_u8(req, IFLA_BRPORT_MODE, link->network->hairpin); | |
211 | if (r < 0) | |
212 | return log_link_error_errno(link, r, "Could not append IFLA_BRPORT_MODE attribute: %m"); | |
213 | } | |
214 | ||
215 | if (link->network->fast_leave >= 0) { | |
216 | r = sd_netlink_message_append_u8(req, IFLA_BRPORT_FAST_LEAVE, link->network->fast_leave); | |
217 | if (r < 0) | |
218 | return log_link_error_errno(link, r, "Could not append IFLA_BRPORT_FAST_LEAVE attribute: %m"); | |
219 | } | |
220 | ||
43bf2874 | 221 | if (link->network->allow_port_to_be_root >= 0) { |
9a81f119 YW |
222 | r = sd_netlink_message_append_u8(req, IFLA_BRPORT_PROTECT, link->network->allow_port_to_be_root); |
223 | if (r < 0) | |
224 | return log_link_error_errno(link, r, "Could not append IFLA_BRPORT_PROTECT attribute: %m"); | |
225 | } | |
226 | ||
227 | if (link->network->unicast_flood >= 0) { | |
228 | r = sd_netlink_message_append_u8(req, IFLA_BRPORT_UNICAST_FLOOD, link->network->unicast_flood); | |
229 | if (r < 0) | |
230 | return log_link_error_errno(link, r, "Could not append IFLA_BRPORT_UNICAST_FLOOD attribute: %m"); | |
231 | } | |
232 | ||
233 | if (link->network->multicast_flood >= 0) { | |
234 | r = sd_netlink_message_append_u8(req, IFLA_BRPORT_MCAST_FLOOD, link->network->multicast_flood); | |
235 | if (r < 0) | |
236 | return log_link_error_errno(link, r, "Could not append IFLA_BRPORT_MCAST_FLOOD attribute: %m"); | |
237 | } | |
238 | ||
239 | if (link->network->multicast_to_unicast >= 0) { | |
240 | r = sd_netlink_message_append_u8(req, IFLA_BRPORT_MCAST_TO_UCAST, link->network->multicast_to_unicast); | |
241 | if (r < 0) | |
242 | return log_link_error_errno(link, r, "Could not append IFLA_BRPORT_MCAST_TO_UCAST attribute: %m"); | |
243 | } | |
244 | ||
245 | if (link->network->neighbor_suppression >= 0) { | |
246 | r = sd_netlink_message_append_u8(req, IFLA_BRPORT_NEIGH_SUPPRESS, link->network->neighbor_suppression); | |
247 | if (r < 0) | |
248 | return log_link_error_errno(link, r, "Could not append IFLA_BRPORT_NEIGH_SUPPRESS attribute: %m"); | |
249 | } | |
250 | ||
251 | if (link->network->learning >= 0) { | |
252 | r = sd_netlink_message_append_u8(req, IFLA_BRPORT_LEARNING, link->network->learning); | |
253 | if (r < 0) | |
254 | return log_link_error_errno(link, r, "Could not append IFLA_BRPORT_LEARNING attribute: %m"); | |
255 | } | |
256 | ||
257 | if (link->network->bridge_proxy_arp >= 0) { | |
258 | r = sd_netlink_message_append_u8(req, IFLA_BRPORT_PROXYARP, link->network->bridge_proxy_arp); | |
259 | if (r < 0) | |
260 | return log_link_error_errno(link, r, "Could not append IFLA_BRPORT_PROXYARP attribute: %m"); | |
261 | } | |
262 | ||
263 | if (link->network->bridge_proxy_arp_wifi >= 0) { | |
264 | r = sd_netlink_message_append_u8(req, IFLA_BRPORT_PROXYARP_WIFI, link->network->bridge_proxy_arp_wifi); | |
265 | if (r < 0) | |
266 | return log_link_error_errno(link, r, "Could not append IFLA_BRPORT_PROXYARP_WIFI attribute: %m"); | |
267 | } | |
268 | ||
269 | if (link->network->cost != 0) { | |
270 | r = sd_netlink_message_append_u32(req, IFLA_BRPORT_COST, link->network->cost); | |
271 | if (r < 0) | |
272 | return log_link_error_errno(link, r, "Could not append IFLA_BRPORT_COST attribute: %m"); | |
273 | } | |
274 | ||
275 | if (link->network->priority != LINK_BRIDGE_PORT_PRIORITY_INVALID) { | |
276 | r = sd_netlink_message_append_u16(req, IFLA_BRPORT_PRIORITY, link->network->priority); | |
277 | if (r < 0) | |
278 | return log_link_error_errno(link, r, "Could not append IFLA_BRPORT_PRIORITY attribute: %m"); | |
279 | } | |
280 | ||
281 | if (link->network->multicast_router != _MULTICAST_ROUTER_INVALID) { | |
282 | r = sd_netlink_message_append_u8(req, IFLA_BRPORT_MULTICAST_ROUTER, link->network->multicast_router); | |
283 | if (r < 0) | |
284 | return log_link_error_errno(link, r, "Could not append IFLA_BRPORT_MULTICAST_ROUTER attribute: %m"); | |
285 | } | |
286 | ||
287 | r = sd_netlink_message_close_container(req); | |
288 | if (r < 0) | |
289 | return log_link_error_errno(link, r, "Could not append IFLA_LINKINFO attribute: %m"); | |
290 | ||
291 | r = netlink_call_async(link->manager->rtnl, NULL, req, link_set_bridge_handler, | |
292 | link_netlink_destroy_callback, link); | |
293 | if (r < 0) | |
294 | return log_link_error_errno(link, r, "Could not send rtnetlink message: %m"); | |
295 | ||
296 | link_ref(link); | |
297 | ||
298 | return r; | |
299 | } | |
300 | ||
afa51e2d SS |
301 | int config_parse_bridge_igmp_version( |
302 | const char *unit, | |
303 | const char *filename, | |
304 | unsigned line, | |
305 | const char *section, | |
306 | unsigned section_line, | |
307 | const char *lvalue, | |
308 | int ltype, | |
309 | const char *rvalue, | |
310 | void *data, | |
311 | void *userdata) { | |
312 | ||
313 | Bridge *b = userdata; | |
314 | uint8_t u; | |
315 | int r; | |
316 | ||
317 | assert(filename); | |
318 | assert(lvalue); | |
319 | assert(rvalue); | |
320 | assert(data); | |
321 | ||
322 | if (isempty(rvalue)) { | |
323 | b->igmp_version = 0; /* 0 means unset. */ | |
324 | return 0; | |
325 | } | |
326 | ||
327 | r = safe_atou8(rvalue, &u); | |
328 | if (r < 0) { | |
d96edb2c | 329 | log_syntax(unit, LOG_WARNING, filename, line, r, |
b738530b | 330 | "Failed to parse bridge's multicast IGMP version number '%s', ignoring assignment: %m", |
afa51e2d SS |
331 | rvalue); |
332 | return 0; | |
333 | } | |
334 | if (!IN_SET(u, 2, 3)) { | |
d96edb2c | 335 | log_syntax(unit, LOG_WARNING, filename, line, 0, |
b738530b | 336 | "Invalid bridge's multicast IGMP version number '%s', ignoring assignment.", rvalue); |
afa51e2d SS |
337 | return 0; |
338 | } | |
339 | ||
340 | b->igmp_version = u; | |
341 | ||
342 | return 0; | |
343 | } | |
344 | ||
3fef7a3f SS |
345 | static void bridge_init(NetDev *n) { |
346 | Bridge *b; | |
347 | ||
348 | b = BRIDGE(n); | |
349 | ||
350 | assert(b); | |
351 | ||
352 | b->mcast_querier = -1; | |
6df6d898 | 353 | b->mcast_snooping = -1; |
c6f8d17d | 354 | b->vlan_filtering = -1; |
4df4df5b | 355 | b->vlan_protocol = -1; |
b760a9af | 356 | b->stp = -1; |
0d6c68eb | 357 | b->default_pvid = VLANID_INVALID; |
730389b6 | 358 | b->forward_delay = USEC_INFINITY; |
0da81203 | 359 | b->ageing_time = USEC_INFINITY; |
3fef7a3f SS |
360 | } |
361 | ||
3be1d7e0 | 362 | const NetDevVTable bridge_vtable = { |
aa9f1140 | 363 | .object_size = sizeof(Bridge), |
3fef7a3f | 364 | .init = bridge_init, |
130b812f | 365 | .sections = NETDEV_COMMON_SECTIONS "Bridge\0", |
540eb5f0 | 366 | .post_create = netdev_bridge_post_create, |
aa9f1140 | 367 | .create_type = NETDEV_CREATE_MASTER, |
3be1d7e0 | 368 | }; |