blob: 5e28718928cad983ec341ab4806da76024b49679 [file] [log] [blame]
Thomas Gleixner5b497af2019-05-29 07:18:09 -07001// SPDX-License-Identifier: GPL-2.0-only
Alexei Starovoitovd0003ec2014-11-13 17:36:49 -08002/* Copyright (c) 2011-2014 PLUMgrid, http://plumgrid.com
Alexei Starovoitovd0003ec2014-11-13 17:36:49 -08003 */
4#include <linux/bpf.h>
5#include <linux/rcupdate.h>
Daniel Borkmann03e69b52015-03-14 02:27:16 +01006#include <linux/random.h>
Daniel Borkmannc04167c2015-03-14 02:27:17 +01007#include <linux/smp.h>
Daniel Borkmann2d0e30c2016-10-21 12:46:33 +02008#include <linux/topology.h>
Daniel Borkmann17ca8cb2015-05-29 23:23:06 +02009#include <linux/ktime.h>
Alexei Starovoitovffeedaf2015-06-12 19:39:12 -070010#include <linux/sched.h>
11#include <linux/uidgid.h>
Daniel Borkmannf3694e02016-09-09 02:45:31 +020012#include <linux/filter.h>
Andrey Ignatovd7a4cb92019-03-18 17:55:26 -070013#include <linux/ctype.h>
14
15#include "../../lib/kstrtox.h"
Alexei Starovoitovd0003ec2014-11-13 17:36:49 -080016
17/* If kernel subsystem is allowing eBPF programs to call this function,
18 * inside its own verifier_ops->get_func_proto() callback it should return
19 * bpf_map_lookup_elem_proto, so that verifier can properly check the arguments
20 *
21 * Different map implementations will rely on rcu in map methods
22 * lookup/update/delete, therefore eBPF programs must run under rcu lock
23 * if program is allowed to access maps, so check rcu_read_lock_held in
24 * all three functions.
25 */
Daniel Borkmannf3694e02016-09-09 02:45:31 +020026BPF_CALL_2(bpf_map_lookup_elem, struct bpf_map *, map, void *, key)
Alexei Starovoitovd0003ec2014-11-13 17:36:49 -080027{
Alexei Starovoitovd0003ec2014-11-13 17:36:49 -080028 WARN_ON_ONCE(!rcu_read_lock_held());
Daniel Borkmannf3694e02016-09-09 02:45:31 +020029 return (unsigned long) map->ops->map_lookup_elem(map, key);
Alexei Starovoitovd0003ec2014-11-13 17:36:49 -080030}
31
Daniel Borkmanna2c83ff2015-03-01 12:31:42 +010032const struct bpf_func_proto bpf_map_lookup_elem_proto = {
Daniel Borkmann3324b582015-05-29 23:23:07 +020033 .func = bpf_map_lookup_elem,
34 .gpl_only = false,
Daniel Borkmann36bbef52016-09-20 00:26:13 +020035 .pkt_access = true,
Daniel Borkmann3324b582015-05-29 23:23:07 +020036 .ret_type = RET_PTR_TO_MAP_VALUE_OR_NULL,
37 .arg1_type = ARG_CONST_MAP_PTR,
38 .arg2_type = ARG_PTR_TO_MAP_KEY,
Alexei Starovoitovd0003ec2014-11-13 17:36:49 -080039};
40
Daniel Borkmannf3694e02016-09-09 02:45:31 +020041BPF_CALL_4(bpf_map_update_elem, struct bpf_map *, map, void *, key,
42 void *, value, u64, flags)
Alexei Starovoitovd0003ec2014-11-13 17:36:49 -080043{
Alexei Starovoitovd0003ec2014-11-13 17:36:49 -080044 WARN_ON_ONCE(!rcu_read_lock_held());
Daniel Borkmannf3694e02016-09-09 02:45:31 +020045 return map->ops->map_update_elem(map, key, value, flags);
Alexei Starovoitovd0003ec2014-11-13 17:36:49 -080046}
47
Daniel Borkmanna2c83ff2015-03-01 12:31:42 +010048const struct bpf_func_proto bpf_map_update_elem_proto = {
Daniel Borkmann3324b582015-05-29 23:23:07 +020049 .func = bpf_map_update_elem,
50 .gpl_only = false,
Daniel Borkmann36bbef52016-09-20 00:26:13 +020051 .pkt_access = true,
Daniel Borkmann3324b582015-05-29 23:23:07 +020052 .ret_type = RET_INTEGER,
53 .arg1_type = ARG_CONST_MAP_PTR,
54 .arg2_type = ARG_PTR_TO_MAP_KEY,
55 .arg3_type = ARG_PTR_TO_MAP_VALUE,
56 .arg4_type = ARG_ANYTHING,
Alexei Starovoitovd0003ec2014-11-13 17:36:49 -080057};
58
Daniel Borkmannf3694e02016-09-09 02:45:31 +020059BPF_CALL_2(bpf_map_delete_elem, struct bpf_map *, map, void *, key)
Alexei Starovoitovd0003ec2014-11-13 17:36:49 -080060{
Alexei Starovoitovd0003ec2014-11-13 17:36:49 -080061 WARN_ON_ONCE(!rcu_read_lock_held());
Alexei Starovoitovd0003ec2014-11-13 17:36:49 -080062 return map->ops->map_delete_elem(map, key);
63}
64
Daniel Borkmanna2c83ff2015-03-01 12:31:42 +010065const struct bpf_func_proto bpf_map_delete_elem_proto = {
Daniel Borkmann3324b582015-05-29 23:23:07 +020066 .func = bpf_map_delete_elem,
67 .gpl_only = false,
Daniel Borkmann36bbef52016-09-20 00:26:13 +020068 .pkt_access = true,
Daniel Borkmann3324b582015-05-29 23:23:07 +020069 .ret_type = RET_INTEGER,
70 .arg1_type = ARG_CONST_MAP_PTR,
71 .arg2_type = ARG_PTR_TO_MAP_KEY,
Alexei Starovoitovd0003ec2014-11-13 17:36:49 -080072};
Daniel Borkmann03e69b52015-03-14 02:27:16 +010073
Mauricio Vasquez Bf1a2e442018-10-18 15:16:25 +020074BPF_CALL_3(bpf_map_push_elem, struct bpf_map *, map, void *, value, u64, flags)
75{
76 return map->ops->map_push_elem(map, value, flags);
77}
78
79const struct bpf_func_proto bpf_map_push_elem_proto = {
80 .func = bpf_map_push_elem,
81 .gpl_only = false,
82 .pkt_access = true,
83 .ret_type = RET_INTEGER,
84 .arg1_type = ARG_CONST_MAP_PTR,
85 .arg2_type = ARG_PTR_TO_MAP_VALUE,
86 .arg3_type = ARG_ANYTHING,
87};
88
89BPF_CALL_2(bpf_map_pop_elem, struct bpf_map *, map, void *, value)
90{
91 return map->ops->map_pop_elem(map, value);
92}
93
94const struct bpf_func_proto bpf_map_pop_elem_proto = {
95 .func = bpf_map_pop_elem,
96 .gpl_only = false,
Mauricio Vasquez Bf1a2e442018-10-18 15:16:25 +020097 .ret_type = RET_INTEGER,
98 .arg1_type = ARG_CONST_MAP_PTR,
99 .arg2_type = ARG_PTR_TO_UNINIT_MAP_VALUE,
100};
101
102BPF_CALL_2(bpf_map_peek_elem, struct bpf_map *, map, void *, value)
103{
104 return map->ops->map_peek_elem(map, value);
105}
106
107const struct bpf_func_proto bpf_map_peek_elem_proto = {
108 .func = bpf_map_pop_elem,
109 .gpl_only = false,
Mauricio Vasquez Bf1a2e442018-10-18 15:16:25 +0200110 .ret_type = RET_INTEGER,
111 .arg1_type = ARG_CONST_MAP_PTR,
112 .arg2_type = ARG_PTR_TO_UNINIT_MAP_VALUE,
113};
114
Daniel Borkmann03e69b52015-03-14 02:27:16 +0100115const struct bpf_func_proto bpf_get_prandom_u32_proto = {
Daniel Borkmann3ad00402015-10-08 01:20:39 +0200116 .func = bpf_user_rnd_u32,
Daniel Borkmann03e69b52015-03-14 02:27:16 +0100117 .gpl_only = false,
118 .ret_type = RET_INTEGER,
119};
Daniel Borkmannc04167c2015-03-14 02:27:17 +0100120
Daniel Borkmannf3694e02016-09-09 02:45:31 +0200121BPF_CALL_0(bpf_get_smp_processor_id)
Daniel Borkmannc04167c2015-03-14 02:27:17 +0100122{
Daniel Borkmann80b48c42016-06-28 12:18:26 +0200123 return smp_processor_id();
Daniel Borkmannc04167c2015-03-14 02:27:17 +0100124}
125
126const struct bpf_func_proto bpf_get_smp_processor_id_proto = {
127 .func = bpf_get_smp_processor_id,
128 .gpl_only = false,
129 .ret_type = RET_INTEGER,
130};
Daniel Borkmann17ca8cb2015-05-29 23:23:06 +0200131
Daniel Borkmann2d0e30c2016-10-21 12:46:33 +0200132BPF_CALL_0(bpf_get_numa_node_id)
133{
134 return numa_node_id();
135}
136
137const struct bpf_func_proto bpf_get_numa_node_id_proto = {
138 .func = bpf_get_numa_node_id,
139 .gpl_only = false,
140 .ret_type = RET_INTEGER,
141};
142
Daniel Borkmannf3694e02016-09-09 02:45:31 +0200143BPF_CALL_0(bpf_ktime_get_ns)
Daniel Borkmann17ca8cb2015-05-29 23:23:06 +0200144{
145 /* NMI safe access to clock monotonic */
146 return ktime_get_mono_fast_ns();
147}
148
149const struct bpf_func_proto bpf_ktime_get_ns_proto = {
150 .func = bpf_ktime_get_ns,
151 .gpl_only = true,
152 .ret_type = RET_INTEGER,
153};
Alexei Starovoitovffeedaf2015-06-12 19:39:12 -0700154
Daniel Borkmannf3694e02016-09-09 02:45:31 +0200155BPF_CALL_0(bpf_get_current_pid_tgid)
Alexei Starovoitovffeedaf2015-06-12 19:39:12 -0700156{
157 struct task_struct *task = current;
158
Daniel Borkmann6088b582016-09-09 02:45:28 +0200159 if (unlikely(!task))
Alexei Starovoitovffeedaf2015-06-12 19:39:12 -0700160 return -EINVAL;
161
162 return (u64) task->tgid << 32 | task->pid;
163}
164
165const struct bpf_func_proto bpf_get_current_pid_tgid_proto = {
166 .func = bpf_get_current_pid_tgid,
167 .gpl_only = false,
168 .ret_type = RET_INTEGER,
169};
170
Daniel Borkmannf3694e02016-09-09 02:45:31 +0200171BPF_CALL_0(bpf_get_current_uid_gid)
Alexei Starovoitovffeedaf2015-06-12 19:39:12 -0700172{
173 struct task_struct *task = current;
174 kuid_t uid;
175 kgid_t gid;
176
Daniel Borkmann6088b582016-09-09 02:45:28 +0200177 if (unlikely(!task))
Alexei Starovoitovffeedaf2015-06-12 19:39:12 -0700178 return -EINVAL;
179
180 current_uid_gid(&uid, &gid);
181 return (u64) from_kgid(&init_user_ns, gid) << 32 |
Daniel Borkmann6088b582016-09-09 02:45:28 +0200182 from_kuid(&init_user_ns, uid);
Alexei Starovoitovffeedaf2015-06-12 19:39:12 -0700183}
184
185const struct bpf_func_proto bpf_get_current_uid_gid_proto = {
186 .func = bpf_get_current_uid_gid,
187 .gpl_only = false,
188 .ret_type = RET_INTEGER,
189};
190
Daniel Borkmannf3694e02016-09-09 02:45:31 +0200191BPF_CALL_2(bpf_get_current_comm, char *, buf, u32, size)
Alexei Starovoitovffeedaf2015-06-12 19:39:12 -0700192{
193 struct task_struct *task = current;
Alexei Starovoitovffeedaf2015-06-12 19:39:12 -0700194
Daniel Borkmann074f528e2016-04-13 00:10:52 +0200195 if (unlikely(!task))
196 goto err_clear;
Alexei Starovoitovffeedaf2015-06-12 19:39:12 -0700197
Daniel Borkmann074f528e2016-04-13 00:10:52 +0200198 strncpy(buf, task->comm, size);
199
200 /* Verifier guarantees that size > 0. For task->comm exceeding
201 * size, guarantee that buf is %NUL-terminated. Unconditionally
202 * done here to save the size test.
203 */
204 buf[size - 1] = 0;
Alexei Starovoitovffeedaf2015-06-12 19:39:12 -0700205 return 0;
Daniel Borkmann074f528e2016-04-13 00:10:52 +0200206err_clear:
207 memset(buf, 0, size);
208 return -EINVAL;
Alexei Starovoitovffeedaf2015-06-12 19:39:12 -0700209}
210
211const struct bpf_func_proto bpf_get_current_comm_proto = {
212 .func = bpf_get_current_comm,
213 .gpl_only = false,
214 .ret_type = RET_INTEGER,
Alexei Starovoitov39f19ebb2017-01-09 10:19:50 -0800215 .arg1_type = ARG_PTR_TO_UNINIT_MEM,
216 .arg2_type = ARG_CONST_SIZE,
Alexei Starovoitovffeedaf2015-06-12 19:39:12 -0700217};
Yonghong Songbf6fa2c82018-06-03 15:59:41 -0700218
Alexei Starovoitovd83525c2019-01-31 15:40:04 -0800219#if defined(CONFIG_QUEUED_SPINLOCKS) || defined(CONFIG_BPF_ARCH_SPINLOCK)
220
221static inline void __bpf_spin_lock(struct bpf_spin_lock *lock)
222{
223 arch_spinlock_t *l = (void *)lock;
224 union {
225 __u32 val;
226 arch_spinlock_t lock;
227 } u = { .lock = __ARCH_SPIN_LOCK_UNLOCKED };
228
229 compiletime_assert(u.val == 0, "__ARCH_SPIN_LOCK_UNLOCKED not 0");
230 BUILD_BUG_ON(sizeof(*l) != sizeof(__u32));
231 BUILD_BUG_ON(sizeof(*lock) != sizeof(__u32));
232 arch_spin_lock(l);
233}
234
235static inline void __bpf_spin_unlock(struct bpf_spin_lock *lock)
236{
237 arch_spinlock_t *l = (void *)lock;
238
239 arch_spin_unlock(l);
240}
241
242#else
243
244static inline void __bpf_spin_lock(struct bpf_spin_lock *lock)
245{
246 atomic_t *l = (void *)lock;
247
248 BUILD_BUG_ON(sizeof(*l) != sizeof(*lock));
249 do {
250 atomic_cond_read_relaxed(l, !VAL);
251 } while (atomic_xchg(l, 1));
252}
253
254static inline void __bpf_spin_unlock(struct bpf_spin_lock *lock)
255{
256 atomic_t *l = (void *)lock;
257
258 atomic_set_release(l, 0);
259}
260
261#endif
262
263static DEFINE_PER_CPU(unsigned long, irqsave_flags);
264
265notrace BPF_CALL_1(bpf_spin_lock, struct bpf_spin_lock *, lock)
266{
267 unsigned long flags;
268
269 local_irq_save(flags);
270 __bpf_spin_lock(lock);
271 __this_cpu_write(irqsave_flags, flags);
272 return 0;
273}
274
275const struct bpf_func_proto bpf_spin_lock_proto = {
276 .func = bpf_spin_lock,
277 .gpl_only = false,
278 .ret_type = RET_VOID,
279 .arg1_type = ARG_PTR_TO_SPIN_LOCK,
280};
281
282notrace BPF_CALL_1(bpf_spin_unlock, struct bpf_spin_lock *, lock)
283{
284 unsigned long flags;
285
286 flags = __this_cpu_read(irqsave_flags);
287 __bpf_spin_unlock(lock);
288 local_irq_restore(flags);
289 return 0;
290}
291
292const struct bpf_func_proto bpf_spin_unlock_proto = {
293 .func = bpf_spin_unlock,
294 .gpl_only = false,
295 .ret_type = RET_VOID,
296 .arg1_type = ARG_PTR_TO_SPIN_LOCK,
297};
298
Alexei Starovoitov96049f32019-01-31 15:40:09 -0800299void copy_map_value_locked(struct bpf_map *map, void *dst, void *src,
300 bool lock_src)
301{
302 struct bpf_spin_lock *lock;
303
304 if (lock_src)
305 lock = src + map->spin_lock_off;
306 else
307 lock = dst + map->spin_lock_off;
308 preempt_disable();
309 ____bpf_spin_lock(lock);
310 copy_map_value(map, dst, src);
311 ____bpf_spin_unlock(lock);
312 preempt_enable();
313}
314
Yonghong Songbf6fa2c82018-06-03 15:59:41 -0700315#ifdef CONFIG_CGROUPS
316BPF_CALL_0(bpf_get_current_cgroup_id)
317{
318 struct cgroup *cgrp = task_dfl_cgroup(current);
319
320 return cgrp->kn->id.id;
321}
322
323const struct bpf_func_proto bpf_get_current_cgroup_id_proto = {
324 .func = bpf_get_current_cgroup_id,
325 .gpl_only = false,
326 .ret_type = RET_INTEGER,
327};
Roman Gushchincd339432018-08-02 14:27:24 -0700328
Roman Gushchin8bad74f2018-09-28 14:45:36 +0000329#ifdef CONFIG_CGROUP_BPF
Roman Gushchinf294b372018-09-28 14:45:40 +0000330DECLARE_PER_CPU(struct bpf_cgroup_storage*,
331 bpf_cgroup_storage[MAX_BPF_CGROUP_STORAGE_TYPE]);
Roman Gushchincd339432018-08-02 14:27:24 -0700332
333BPF_CALL_2(bpf_get_local_storage, struct bpf_map *, map, u64, flags)
334{
Roman Gushchin8bad74f2018-09-28 14:45:36 +0000335 /* flags argument is not used now,
336 * but provides an ability to extend the API.
337 * verifier checks that its value is correct.
Roman Gushchincd339432018-08-02 14:27:24 -0700338 */
Roman Gushchin8bad74f2018-09-28 14:45:36 +0000339 enum bpf_cgroup_storage_type stype = cgroup_storage_type(map);
Roman Gushchinf294b372018-09-28 14:45:40 +0000340 struct bpf_cgroup_storage *storage;
Roman Gushchinb741f162018-09-28 14:45:43 +0000341 void *ptr;
Roman Gushchin8bad74f2018-09-28 14:45:36 +0000342
Roman Gushchinf294b372018-09-28 14:45:40 +0000343 storage = this_cpu_read(bpf_cgroup_storage[stype]);
344
Roman Gushchinb741f162018-09-28 14:45:43 +0000345 if (stype == BPF_CGROUP_STORAGE_SHARED)
346 ptr = &READ_ONCE(storage->buf)->data[0];
347 else
348 ptr = this_cpu_ptr(storage->percpu_buf);
349
350 return (unsigned long)ptr;
Roman Gushchincd339432018-08-02 14:27:24 -0700351}
352
353const struct bpf_func_proto bpf_get_local_storage_proto = {
354 .func = bpf_get_local_storage,
355 .gpl_only = false,
356 .ret_type = RET_PTR_TO_MAP_VALUE,
357 .arg1_type = ARG_CONST_MAP_PTR,
358 .arg2_type = ARG_ANYTHING,
359};
Yonghong Songbf6fa2c82018-06-03 15:59:41 -0700360#endif
Andrey Ignatovd7a4cb92019-03-18 17:55:26 -0700361
362#define BPF_STRTOX_BASE_MASK 0x1F
363
364static int __bpf_strtoull(const char *buf, size_t buf_len, u64 flags,
365 unsigned long long *res, bool *is_negative)
366{
367 unsigned int base = flags & BPF_STRTOX_BASE_MASK;
368 const char *cur_buf = buf;
369 size_t cur_len = buf_len;
370 unsigned int consumed;
371 size_t val_len;
372 char str[64];
373
374 if (!buf || !buf_len || !res || !is_negative)
375 return -EINVAL;
376
377 if (base != 0 && base != 8 && base != 10 && base != 16)
378 return -EINVAL;
379
380 if (flags & ~BPF_STRTOX_BASE_MASK)
381 return -EINVAL;
382
383 while (cur_buf < buf + buf_len && isspace(*cur_buf))
384 ++cur_buf;
385
386 *is_negative = (cur_buf < buf + buf_len && *cur_buf == '-');
387 if (*is_negative)
388 ++cur_buf;
389
390 consumed = cur_buf - buf;
391 cur_len -= consumed;
392 if (!cur_len)
393 return -EINVAL;
394
395 cur_len = min(cur_len, sizeof(str) - 1);
396 memcpy(str, cur_buf, cur_len);
397 str[cur_len] = '\0';
398 cur_buf = str;
399
400 cur_buf = _parse_integer_fixup_radix(cur_buf, &base);
401 val_len = _parse_integer(cur_buf, base, res);
402
403 if (val_len & KSTRTOX_OVERFLOW)
404 return -ERANGE;
405
406 if (val_len == 0)
407 return -EINVAL;
408
409 cur_buf += val_len;
410 consumed += cur_buf - str;
411
412 return consumed;
413}
414
415static int __bpf_strtoll(const char *buf, size_t buf_len, u64 flags,
416 long long *res)
417{
418 unsigned long long _res;
419 bool is_negative;
420 int err;
421
422 err = __bpf_strtoull(buf, buf_len, flags, &_res, &is_negative);
423 if (err < 0)
424 return err;
425 if (is_negative) {
426 if ((long long)-_res > 0)
427 return -ERANGE;
428 *res = -_res;
429 } else {
430 if ((long long)_res < 0)
431 return -ERANGE;
432 *res = _res;
433 }
434 return err;
435}
436
437BPF_CALL_4(bpf_strtol, const char *, buf, size_t, buf_len, u64, flags,
438 long *, res)
439{
440 long long _res;
441 int err;
442
443 err = __bpf_strtoll(buf, buf_len, flags, &_res);
444 if (err < 0)
445 return err;
446 if (_res != (long)_res)
447 return -ERANGE;
448 *res = _res;
449 return err;
450}
451
452const struct bpf_func_proto bpf_strtol_proto = {
453 .func = bpf_strtol,
454 .gpl_only = false,
455 .ret_type = RET_INTEGER,
456 .arg1_type = ARG_PTR_TO_MEM,
457 .arg2_type = ARG_CONST_SIZE,
458 .arg3_type = ARG_ANYTHING,
459 .arg4_type = ARG_PTR_TO_LONG,
460};
461
462BPF_CALL_4(bpf_strtoul, const char *, buf, size_t, buf_len, u64, flags,
463 unsigned long *, res)
464{
465 unsigned long long _res;
466 bool is_negative;
467 int err;
468
469 err = __bpf_strtoull(buf, buf_len, flags, &_res, &is_negative);
470 if (err < 0)
471 return err;
472 if (is_negative)
473 return -EINVAL;
474 if (_res != (unsigned long)_res)
475 return -ERANGE;
476 *res = _res;
477 return err;
478}
479
480const struct bpf_func_proto bpf_strtoul_proto = {
481 .func = bpf_strtoul,
482 .gpl_only = false,
483 .ret_type = RET_INTEGER,
484 .arg1_type = ARG_PTR_TO_MEM,
485 .arg2_type = ARG_CONST_SIZE,
486 .arg3_type = ARG_ANYTHING,
487 .arg4_type = ARG_PTR_TO_LONG,
488};
Roman Gushchin8bad74f2018-09-28 14:45:36 +0000489#endif