128fbcfa0SAlexei Starovoitov /* Copyright (c) 2011-2014 PLUMgrid, http://plumgrid.com 281ed18abSAlexei Starovoitov * Copyright (c) 2016,2017 Facebook 328fbcfa0SAlexei Starovoitov * 428fbcfa0SAlexei Starovoitov * This program is free software; you can redistribute it and/or 528fbcfa0SAlexei Starovoitov * modify it under the terms of version 2 of the GNU General Public 628fbcfa0SAlexei Starovoitov * License as published by the Free Software Foundation. 728fbcfa0SAlexei Starovoitov * 828fbcfa0SAlexei Starovoitov * This program is distributed in the hope that it will be useful, but 928fbcfa0SAlexei Starovoitov * WITHOUT ANY WARRANTY; without even the implied warranty of 1028fbcfa0SAlexei Starovoitov * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the GNU 1128fbcfa0SAlexei Starovoitov * General Public License for more details. 1228fbcfa0SAlexei Starovoitov */ 1328fbcfa0SAlexei Starovoitov #include <linux/bpf.h> 14a26ca7c9SMartin KaFai Lau #include <linux/btf.h> 1528fbcfa0SAlexei Starovoitov #include <linux/err.h> 1628fbcfa0SAlexei Starovoitov #include <linux/slab.h> 1728fbcfa0SAlexei Starovoitov #include <linux/mm.h> 1804fd61abSAlexei Starovoitov #include <linux/filter.h> 190cdf5640SDaniel Borkmann #include <linux/perf_event.h> 20a26ca7c9SMartin KaFai Lau #include <uapi/linux/btf.h> 2128fbcfa0SAlexei Starovoitov 2256f668dfSMartin KaFai Lau #include "map_in_map.h" 2356f668dfSMartin KaFai Lau 246e71b04aSChenbo Feng #define ARRAY_CREATE_FLAG_MASK \ 25591fe988SDaniel Borkmann (BPF_F_NUMA_NODE | BPF_F_ACCESS_MASK) 266e71b04aSChenbo Feng 27a10423b8SAlexei Starovoitov static void bpf_array_free_percpu(struct bpf_array *array) 28a10423b8SAlexei Starovoitov { 29a10423b8SAlexei Starovoitov int i; 30a10423b8SAlexei Starovoitov 3132fff239SEric Dumazet for (i = 0; i < array->map.max_entries; i++) { 32a10423b8SAlexei Starovoitov free_percpu(array->pptrs[i]); 3332fff239SEric Dumazet cond_resched(); 3432fff239SEric Dumazet } 35a10423b8SAlexei Starovoitov } 36a10423b8SAlexei Starovoitov 37a10423b8SAlexei Starovoitov static int bpf_array_alloc_percpu(struct bpf_array *array) 38a10423b8SAlexei Starovoitov { 39a10423b8SAlexei Starovoitov void __percpu *ptr; 40a10423b8SAlexei Starovoitov int i; 41a10423b8SAlexei Starovoitov 42a10423b8SAlexei Starovoitov for (i = 0; i < array->map.max_entries; i++) { 43a10423b8SAlexei Starovoitov ptr = __alloc_percpu_gfp(array->elem_size, 8, 44a10423b8SAlexei Starovoitov GFP_USER | __GFP_NOWARN); 45a10423b8SAlexei Starovoitov if (!ptr) { 46a10423b8SAlexei Starovoitov bpf_array_free_percpu(array); 47a10423b8SAlexei Starovoitov return -ENOMEM; 48a10423b8SAlexei Starovoitov } 49a10423b8SAlexei Starovoitov array->pptrs[i] = ptr; 5032fff239SEric Dumazet cond_resched(); 51a10423b8SAlexei Starovoitov } 52a10423b8SAlexei Starovoitov 53a10423b8SAlexei Starovoitov return 0; 54a10423b8SAlexei Starovoitov } 55a10423b8SAlexei Starovoitov 5628fbcfa0SAlexei Starovoitov /* Called from syscall */ 575dc4c4b7SMartin KaFai Lau int array_map_alloc_check(union bpf_attr *attr) 58ad46061fSJakub Kicinski { 59ad46061fSJakub Kicinski bool percpu = attr->map_type == BPF_MAP_TYPE_PERCPU_ARRAY; 60ad46061fSJakub Kicinski int numa_node = bpf_map_attr_numa_node(attr); 61ad46061fSJakub Kicinski 62ad46061fSJakub Kicinski /* check sanity of attributes */ 63ad46061fSJakub Kicinski if (attr->max_entries == 0 || attr->key_size != 4 || 64ad46061fSJakub Kicinski attr->value_size == 0 || 65ad46061fSJakub Kicinski attr->map_flags & ~ARRAY_CREATE_FLAG_MASK || 66591fe988SDaniel Borkmann !bpf_map_flags_access_ok(attr->map_flags) || 67ad46061fSJakub Kicinski (percpu && numa_node != NUMA_NO_NODE)) 68ad46061fSJakub Kicinski return -EINVAL; 69ad46061fSJakub Kicinski 70ad46061fSJakub Kicinski if (attr->value_size > KMALLOC_MAX_SIZE) 71ad46061fSJakub Kicinski /* if value_size is bigger, the user space won't be able to 72ad46061fSJakub Kicinski * access the elements. 73ad46061fSJakub Kicinski */ 74ad46061fSJakub Kicinski return -E2BIG; 75ad46061fSJakub Kicinski 76ad46061fSJakub Kicinski return 0; 77ad46061fSJakub Kicinski } 78ad46061fSJakub Kicinski 7928fbcfa0SAlexei Starovoitov static struct bpf_map *array_map_alloc(union bpf_attr *attr) 8028fbcfa0SAlexei Starovoitov { 81a10423b8SAlexei Starovoitov bool percpu = attr->map_type == BPF_MAP_TYPE_PERCPU_ARRAY; 829c2d63b8SDaniel Borkmann int ret, numa_node = bpf_map_attr_numa_node(attr); 83b2157399SAlexei Starovoitov u32 elem_size, index_mask, max_entries; 84b2157399SAlexei Starovoitov bool unpriv = !capable(CAP_SYS_ADMIN); 859c2d63b8SDaniel Borkmann u64 cost, array_size, mask64; 86*b936ca64SRoman Gushchin struct bpf_map_memory mem; 8728fbcfa0SAlexei Starovoitov struct bpf_array *array; 8828fbcfa0SAlexei Starovoitov 8928fbcfa0SAlexei Starovoitov elem_size = round_up(attr->value_size, 8); 9028fbcfa0SAlexei Starovoitov 91b2157399SAlexei Starovoitov max_entries = attr->max_entries; 92b2157399SAlexei Starovoitov 93bbeb6e43SDaniel Borkmann /* On 32 bit archs roundup_pow_of_two() with max_entries that has 94bbeb6e43SDaniel Borkmann * upper most bit set in u32 space is undefined behavior due to 95bbeb6e43SDaniel Borkmann * resulting 1U << 32, so do it manually here in u64 space. 96bbeb6e43SDaniel Borkmann */ 97bbeb6e43SDaniel Borkmann mask64 = fls_long(max_entries - 1); 98bbeb6e43SDaniel Borkmann mask64 = 1ULL << mask64; 99bbeb6e43SDaniel Borkmann mask64 -= 1; 100bbeb6e43SDaniel Borkmann 101bbeb6e43SDaniel Borkmann index_mask = mask64; 102bbeb6e43SDaniel Borkmann if (unpriv) { 103b2157399SAlexei Starovoitov /* round up array size to nearest power of 2, 104b2157399SAlexei Starovoitov * since cpu will speculate within index_mask limits 105b2157399SAlexei Starovoitov */ 106b2157399SAlexei Starovoitov max_entries = index_mask + 1; 107bbeb6e43SDaniel Borkmann /* Check for overflows. */ 108bbeb6e43SDaniel Borkmann if (max_entries < attr->max_entries) 109bbeb6e43SDaniel Borkmann return ERR_PTR(-E2BIG); 110bbeb6e43SDaniel Borkmann } 111b2157399SAlexei Starovoitov 112a10423b8SAlexei Starovoitov array_size = sizeof(*array); 113a10423b8SAlexei Starovoitov if (percpu) 114b2157399SAlexei Starovoitov array_size += (u64) max_entries * sizeof(void *); 115a10423b8SAlexei Starovoitov else 116b2157399SAlexei Starovoitov array_size += (u64) max_entries * elem_size; 117a10423b8SAlexei Starovoitov 118a10423b8SAlexei Starovoitov /* make sure there is no u32 overflow later in round_up() */ 1199c2d63b8SDaniel Borkmann cost = array_size; 1209c2d63b8SDaniel Borkmann if (cost >= U32_MAX - PAGE_SIZE) 121daaf427cSAlexei Starovoitov return ERR_PTR(-ENOMEM); 1229c2d63b8SDaniel Borkmann if (percpu) { 1239c2d63b8SDaniel Borkmann cost += (u64)attr->max_entries * elem_size * num_possible_cpus(); 1249c2d63b8SDaniel Borkmann if (cost >= U32_MAX - PAGE_SIZE) 1259c2d63b8SDaniel Borkmann return ERR_PTR(-ENOMEM); 1269c2d63b8SDaniel Borkmann } 1279c2d63b8SDaniel Borkmann cost = round_up(cost, PAGE_SIZE) >> PAGE_SHIFT; 1289c2d63b8SDaniel Borkmann 129*b936ca64SRoman Gushchin ret = bpf_map_charge_init(&mem, cost); 1309c2d63b8SDaniel Borkmann if (ret < 0) 1319c2d63b8SDaniel Borkmann return ERR_PTR(ret); 132daaf427cSAlexei Starovoitov 13328fbcfa0SAlexei Starovoitov /* allocate all map elements and zero-initialize them */ 13496eabe7aSMartin KaFai Lau array = bpf_map_area_alloc(array_size, numa_node); 135*b936ca64SRoman Gushchin if (!array) { 136*b936ca64SRoman Gushchin bpf_map_charge_finish(&mem); 13728fbcfa0SAlexei Starovoitov return ERR_PTR(-ENOMEM); 138*b936ca64SRoman Gushchin } 139b2157399SAlexei Starovoitov array->index_mask = index_mask; 140b2157399SAlexei Starovoitov array->map.unpriv_array = unpriv; 14128fbcfa0SAlexei Starovoitov 14228fbcfa0SAlexei Starovoitov /* copy mandatory map attributes */ 14332852649SJakub Kicinski bpf_map_init_from_attr(&array->map, attr); 144*b936ca64SRoman Gushchin bpf_map_charge_move(&array->map.memory, &mem); 14528fbcfa0SAlexei Starovoitov array->elem_size = elem_size; 14628fbcfa0SAlexei Starovoitov 1479c2d63b8SDaniel Borkmann if (percpu && bpf_array_alloc_percpu(array)) { 148*b936ca64SRoman Gushchin bpf_map_charge_finish(&array->map.memory); 149d407bd25SDaniel Borkmann bpf_map_area_free(array); 150a10423b8SAlexei Starovoitov return ERR_PTR(-ENOMEM); 151a10423b8SAlexei Starovoitov } 152a10423b8SAlexei Starovoitov 15328fbcfa0SAlexei Starovoitov return &array->map; 15428fbcfa0SAlexei Starovoitov } 15528fbcfa0SAlexei Starovoitov 15628fbcfa0SAlexei Starovoitov /* Called from syscall or from eBPF program */ 15728fbcfa0SAlexei Starovoitov static void *array_map_lookup_elem(struct bpf_map *map, void *key) 15828fbcfa0SAlexei Starovoitov { 15928fbcfa0SAlexei Starovoitov struct bpf_array *array = container_of(map, struct bpf_array, map); 16028fbcfa0SAlexei Starovoitov u32 index = *(u32 *)key; 16128fbcfa0SAlexei Starovoitov 162a10423b8SAlexei Starovoitov if (unlikely(index >= array->map.max_entries)) 16328fbcfa0SAlexei Starovoitov return NULL; 16428fbcfa0SAlexei Starovoitov 165b2157399SAlexei Starovoitov return array->value + array->elem_size * (index & array->index_mask); 16628fbcfa0SAlexei Starovoitov } 16728fbcfa0SAlexei Starovoitov 168d8eca5bbSDaniel Borkmann static int array_map_direct_value_addr(const struct bpf_map *map, u64 *imm, 169d8eca5bbSDaniel Borkmann u32 off) 170d8eca5bbSDaniel Borkmann { 171d8eca5bbSDaniel Borkmann struct bpf_array *array = container_of(map, struct bpf_array, map); 172d8eca5bbSDaniel Borkmann 173d8eca5bbSDaniel Borkmann if (map->max_entries != 1) 174d8eca5bbSDaniel Borkmann return -ENOTSUPP; 175d8eca5bbSDaniel Borkmann if (off >= map->value_size) 176d8eca5bbSDaniel Borkmann return -EINVAL; 177d8eca5bbSDaniel Borkmann 178d8eca5bbSDaniel Borkmann *imm = (unsigned long)array->value; 179d8eca5bbSDaniel Borkmann return 0; 180d8eca5bbSDaniel Borkmann } 181d8eca5bbSDaniel Borkmann 182d8eca5bbSDaniel Borkmann static int array_map_direct_value_meta(const struct bpf_map *map, u64 imm, 183d8eca5bbSDaniel Borkmann u32 *off) 184d8eca5bbSDaniel Borkmann { 185d8eca5bbSDaniel Borkmann struct bpf_array *array = container_of(map, struct bpf_array, map); 186d8eca5bbSDaniel Borkmann u64 base = (unsigned long)array->value; 187d8eca5bbSDaniel Borkmann u64 range = array->elem_size; 188d8eca5bbSDaniel Borkmann 189d8eca5bbSDaniel Borkmann if (map->max_entries != 1) 190d8eca5bbSDaniel Borkmann return -ENOTSUPP; 191d8eca5bbSDaniel Borkmann if (imm < base || imm >= base + range) 192d8eca5bbSDaniel Borkmann return -ENOENT; 193d8eca5bbSDaniel Borkmann 194d8eca5bbSDaniel Borkmann *off = imm - base; 195d8eca5bbSDaniel Borkmann return 0; 196d8eca5bbSDaniel Borkmann } 197d8eca5bbSDaniel Borkmann 19881ed18abSAlexei Starovoitov /* emit BPF instructions equivalent to C code of array_map_lookup_elem() */ 19981ed18abSAlexei Starovoitov static u32 array_map_gen_lookup(struct bpf_map *map, struct bpf_insn *insn_buf) 20081ed18abSAlexei Starovoitov { 201b2157399SAlexei Starovoitov struct bpf_array *array = container_of(map, struct bpf_array, map); 20281ed18abSAlexei Starovoitov struct bpf_insn *insn = insn_buf; 203fad73a1aSMartin KaFai Lau u32 elem_size = round_up(map->value_size, 8); 20481ed18abSAlexei Starovoitov const int ret = BPF_REG_0; 20581ed18abSAlexei Starovoitov const int map_ptr = BPF_REG_1; 20681ed18abSAlexei Starovoitov const int index = BPF_REG_2; 20781ed18abSAlexei Starovoitov 20881ed18abSAlexei Starovoitov *insn++ = BPF_ALU64_IMM(BPF_ADD, map_ptr, offsetof(struct bpf_array, value)); 20981ed18abSAlexei Starovoitov *insn++ = BPF_LDX_MEM(BPF_W, ret, index, 0); 210b2157399SAlexei Starovoitov if (map->unpriv_array) { 211b2157399SAlexei Starovoitov *insn++ = BPF_JMP_IMM(BPF_JGE, ret, map->max_entries, 4); 212b2157399SAlexei Starovoitov *insn++ = BPF_ALU32_IMM(BPF_AND, ret, array->index_mask); 213b2157399SAlexei Starovoitov } else { 214fad73a1aSMartin KaFai Lau *insn++ = BPF_JMP_IMM(BPF_JGE, ret, map->max_entries, 3); 215b2157399SAlexei Starovoitov } 216fad73a1aSMartin KaFai Lau 217fad73a1aSMartin KaFai Lau if (is_power_of_2(elem_size)) { 21881ed18abSAlexei Starovoitov *insn++ = BPF_ALU64_IMM(BPF_LSH, ret, ilog2(elem_size)); 21981ed18abSAlexei Starovoitov } else { 22081ed18abSAlexei Starovoitov *insn++ = BPF_ALU64_IMM(BPF_MUL, ret, elem_size); 22181ed18abSAlexei Starovoitov } 22281ed18abSAlexei Starovoitov *insn++ = BPF_ALU64_REG(BPF_ADD, ret, map_ptr); 22381ed18abSAlexei Starovoitov *insn++ = BPF_JMP_IMM(BPF_JA, 0, 0, 1); 22481ed18abSAlexei Starovoitov *insn++ = BPF_MOV64_IMM(ret, 0); 22581ed18abSAlexei Starovoitov return insn - insn_buf; 22681ed18abSAlexei Starovoitov } 22781ed18abSAlexei Starovoitov 228a10423b8SAlexei Starovoitov /* Called from eBPF program */ 229a10423b8SAlexei Starovoitov static void *percpu_array_map_lookup_elem(struct bpf_map *map, void *key) 230a10423b8SAlexei Starovoitov { 231a10423b8SAlexei Starovoitov struct bpf_array *array = container_of(map, struct bpf_array, map); 232a10423b8SAlexei Starovoitov u32 index = *(u32 *)key; 233a10423b8SAlexei Starovoitov 234a10423b8SAlexei Starovoitov if (unlikely(index >= array->map.max_entries)) 235a10423b8SAlexei Starovoitov return NULL; 236a10423b8SAlexei Starovoitov 237b2157399SAlexei Starovoitov return this_cpu_ptr(array->pptrs[index & array->index_mask]); 238a10423b8SAlexei Starovoitov } 239a10423b8SAlexei Starovoitov 24015a07b33SAlexei Starovoitov int bpf_percpu_array_copy(struct bpf_map *map, void *key, void *value) 24115a07b33SAlexei Starovoitov { 24215a07b33SAlexei Starovoitov struct bpf_array *array = container_of(map, struct bpf_array, map); 24315a07b33SAlexei Starovoitov u32 index = *(u32 *)key; 24415a07b33SAlexei Starovoitov void __percpu *pptr; 24515a07b33SAlexei Starovoitov int cpu, off = 0; 24615a07b33SAlexei Starovoitov u32 size; 24715a07b33SAlexei Starovoitov 24815a07b33SAlexei Starovoitov if (unlikely(index >= array->map.max_entries)) 24915a07b33SAlexei Starovoitov return -ENOENT; 25015a07b33SAlexei Starovoitov 25115a07b33SAlexei Starovoitov /* per_cpu areas are zero-filled and bpf programs can only 25215a07b33SAlexei Starovoitov * access 'value_size' of them, so copying rounded areas 25315a07b33SAlexei Starovoitov * will not leak any kernel data 25415a07b33SAlexei Starovoitov */ 25515a07b33SAlexei Starovoitov size = round_up(map->value_size, 8); 25615a07b33SAlexei Starovoitov rcu_read_lock(); 257b2157399SAlexei Starovoitov pptr = array->pptrs[index & array->index_mask]; 25815a07b33SAlexei Starovoitov for_each_possible_cpu(cpu) { 25915a07b33SAlexei Starovoitov bpf_long_memcpy(value + off, per_cpu_ptr(pptr, cpu), size); 26015a07b33SAlexei Starovoitov off += size; 26115a07b33SAlexei Starovoitov } 26215a07b33SAlexei Starovoitov rcu_read_unlock(); 26315a07b33SAlexei Starovoitov return 0; 26415a07b33SAlexei Starovoitov } 26515a07b33SAlexei Starovoitov 26628fbcfa0SAlexei Starovoitov /* Called from syscall */ 26728fbcfa0SAlexei Starovoitov static int array_map_get_next_key(struct bpf_map *map, void *key, void *next_key) 26828fbcfa0SAlexei Starovoitov { 26928fbcfa0SAlexei Starovoitov struct bpf_array *array = container_of(map, struct bpf_array, map); 2708fe45924STeng Qin u32 index = key ? *(u32 *)key : U32_MAX; 27128fbcfa0SAlexei Starovoitov u32 *next = (u32 *)next_key; 27228fbcfa0SAlexei Starovoitov 27328fbcfa0SAlexei Starovoitov if (index >= array->map.max_entries) { 27428fbcfa0SAlexei Starovoitov *next = 0; 27528fbcfa0SAlexei Starovoitov return 0; 27628fbcfa0SAlexei Starovoitov } 27728fbcfa0SAlexei Starovoitov 27828fbcfa0SAlexei Starovoitov if (index == array->map.max_entries - 1) 27928fbcfa0SAlexei Starovoitov return -ENOENT; 28028fbcfa0SAlexei Starovoitov 28128fbcfa0SAlexei Starovoitov *next = index + 1; 28228fbcfa0SAlexei Starovoitov return 0; 28328fbcfa0SAlexei Starovoitov } 28428fbcfa0SAlexei Starovoitov 28528fbcfa0SAlexei Starovoitov /* Called from syscall or from eBPF program */ 28628fbcfa0SAlexei Starovoitov static int array_map_update_elem(struct bpf_map *map, void *key, void *value, 28728fbcfa0SAlexei Starovoitov u64 map_flags) 28828fbcfa0SAlexei Starovoitov { 28928fbcfa0SAlexei Starovoitov struct bpf_array *array = container_of(map, struct bpf_array, map); 29028fbcfa0SAlexei Starovoitov u32 index = *(u32 *)key; 29196049f3aSAlexei Starovoitov char *val; 29228fbcfa0SAlexei Starovoitov 29396049f3aSAlexei Starovoitov if (unlikely((map_flags & ~BPF_F_LOCK) > BPF_EXIST)) 29428fbcfa0SAlexei Starovoitov /* unknown flags */ 29528fbcfa0SAlexei Starovoitov return -EINVAL; 29628fbcfa0SAlexei Starovoitov 297a10423b8SAlexei Starovoitov if (unlikely(index >= array->map.max_entries)) 29828fbcfa0SAlexei Starovoitov /* all elements were pre-allocated, cannot insert a new one */ 29928fbcfa0SAlexei Starovoitov return -E2BIG; 30028fbcfa0SAlexei Starovoitov 30196049f3aSAlexei Starovoitov if (unlikely(map_flags & BPF_NOEXIST)) 302daaf427cSAlexei Starovoitov /* all elements already exist */ 30328fbcfa0SAlexei Starovoitov return -EEXIST; 30428fbcfa0SAlexei Starovoitov 30596049f3aSAlexei Starovoitov if (unlikely((map_flags & BPF_F_LOCK) && 30696049f3aSAlexei Starovoitov !map_value_has_spin_lock(map))) 30796049f3aSAlexei Starovoitov return -EINVAL; 30896049f3aSAlexei Starovoitov 30996049f3aSAlexei Starovoitov if (array->map.map_type == BPF_MAP_TYPE_PERCPU_ARRAY) { 310b2157399SAlexei Starovoitov memcpy(this_cpu_ptr(array->pptrs[index & array->index_mask]), 311a10423b8SAlexei Starovoitov value, map->value_size); 31296049f3aSAlexei Starovoitov } else { 31396049f3aSAlexei Starovoitov val = array->value + 31496049f3aSAlexei Starovoitov array->elem_size * (index & array->index_mask); 31596049f3aSAlexei Starovoitov if (map_flags & BPF_F_LOCK) 31696049f3aSAlexei Starovoitov copy_map_value_locked(map, val, value, false); 317a10423b8SAlexei Starovoitov else 31896049f3aSAlexei Starovoitov copy_map_value(map, val, value); 31996049f3aSAlexei Starovoitov } 32028fbcfa0SAlexei Starovoitov return 0; 32128fbcfa0SAlexei Starovoitov } 32228fbcfa0SAlexei Starovoitov 32315a07b33SAlexei Starovoitov int bpf_percpu_array_update(struct bpf_map *map, void *key, void *value, 32415a07b33SAlexei Starovoitov u64 map_flags) 32515a07b33SAlexei Starovoitov { 32615a07b33SAlexei Starovoitov struct bpf_array *array = container_of(map, struct bpf_array, map); 32715a07b33SAlexei Starovoitov u32 index = *(u32 *)key; 32815a07b33SAlexei Starovoitov void __percpu *pptr; 32915a07b33SAlexei Starovoitov int cpu, off = 0; 33015a07b33SAlexei Starovoitov u32 size; 33115a07b33SAlexei Starovoitov 33215a07b33SAlexei Starovoitov if (unlikely(map_flags > BPF_EXIST)) 33315a07b33SAlexei Starovoitov /* unknown flags */ 33415a07b33SAlexei Starovoitov return -EINVAL; 33515a07b33SAlexei Starovoitov 33615a07b33SAlexei Starovoitov if (unlikely(index >= array->map.max_entries)) 33715a07b33SAlexei Starovoitov /* all elements were pre-allocated, cannot insert a new one */ 33815a07b33SAlexei Starovoitov return -E2BIG; 33915a07b33SAlexei Starovoitov 34015a07b33SAlexei Starovoitov if (unlikely(map_flags == BPF_NOEXIST)) 34115a07b33SAlexei Starovoitov /* all elements already exist */ 34215a07b33SAlexei Starovoitov return -EEXIST; 34315a07b33SAlexei Starovoitov 34415a07b33SAlexei Starovoitov /* the user space will provide round_up(value_size, 8) bytes that 34515a07b33SAlexei Starovoitov * will be copied into per-cpu area. bpf programs can only access 34615a07b33SAlexei Starovoitov * value_size of it. During lookup the same extra bytes will be 34715a07b33SAlexei Starovoitov * returned or zeros which were zero-filled by percpu_alloc, 34815a07b33SAlexei Starovoitov * so no kernel data leaks possible 34915a07b33SAlexei Starovoitov */ 35015a07b33SAlexei Starovoitov size = round_up(map->value_size, 8); 35115a07b33SAlexei Starovoitov rcu_read_lock(); 352b2157399SAlexei Starovoitov pptr = array->pptrs[index & array->index_mask]; 35315a07b33SAlexei Starovoitov for_each_possible_cpu(cpu) { 35415a07b33SAlexei Starovoitov bpf_long_memcpy(per_cpu_ptr(pptr, cpu), value + off, size); 35515a07b33SAlexei Starovoitov off += size; 35615a07b33SAlexei Starovoitov } 35715a07b33SAlexei Starovoitov rcu_read_unlock(); 35815a07b33SAlexei Starovoitov return 0; 35915a07b33SAlexei Starovoitov } 36015a07b33SAlexei Starovoitov 36128fbcfa0SAlexei Starovoitov /* Called from syscall or from eBPF program */ 36228fbcfa0SAlexei Starovoitov static int array_map_delete_elem(struct bpf_map *map, void *key) 36328fbcfa0SAlexei Starovoitov { 36428fbcfa0SAlexei Starovoitov return -EINVAL; 36528fbcfa0SAlexei Starovoitov } 36628fbcfa0SAlexei Starovoitov 36728fbcfa0SAlexei Starovoitov /* Called when map->refcnt goes to zero, either from workqueue or from syscall */ 36828fbcfa0SAlexei Starovoitov static void array_map_free(struct bpf_map *map) 36928fbcfa0SAlexei Starovoitov { 37028fbcfa0SAlexei Starovoitov struct bpf_array *array = container_of(map, struct bpf_array, map); 37128fbcfa0SAlexei Starovoitov 37228fbcfa0SAlexei Starovoitov /* at this point bpf_prog->aux->refcnt == 0 and this map->refcnt == 0, 37328fbcfa0SAlexei Starovoitov * so the programs (can be more than one that used this map) were 37428fbcfa0SAlexei Starovoitov * disconnected from events. Wait for outstanding programs to complete 37528fbcfa0SAlexei Starovoitov * and free the array 37628fbcfa0SAlexei Starovoitov */ 37728fbcfa0SAlexei Starovoitov synchronize_rcu(); 37828fbcfa0SAlexei Starovoitov 379a10423b8SAlexei Starovoitov if (array->map.map_type == BPF_MAP_TYPE_PERCPU_ARRAY) 380a10423b8SAlexei Starovoitov bpf_array_free_percpu(array); 381a10423b8SAlexei Starovoitov 382d407bd25SDaniel Borkmann bpf_map_area_free(array); 38328fbcfa0SAlexei Starovoitov } 38428fbcfa0SAlexei Starovoitov 385a26ca7c9SMartin KaFai Lau static void array_map_seq_show_elem(struct bpf_map *map, void *key, 386a26ca7c9SMartin KaFai Lau struct seq_file *m) 387a26ca7c9SMartin KaFai Lau { 388a26ca7c9SMartin KaFai Lau void *value; 389a26ca7c9SMartin KaFai Lau 390a26ca7c9SMartin KaFai Lau rcu_read_lock(); 391a26ca7c9SMartin KaFai Lau 392a26ca7c9SMartin KaFai Lau value = array_map_lookup_elem(map, key); 393a26ca7c9SMartin KaFai Lau if (!value) { 394a26ca7c9SMartin KaFai Lau rcu_read_unlock(); 395a26ca7c9SMartin KaFai Lau return; 396a26ca7c9SMartin KaFai Lau } 397a26ca7c9SMartin KaFai Lau 3982824ecb7SDaniel Borkmann if (map->btf_key_type_id) 399a26ca7c9SMartin KaFai Lau seq_printf(m, "%u: ", *(u32 *)key); 4009b2cf328SMartin KaFai Lau btf_type_seq_show(map->btf, map->btf_value_type_id, value, m); 401a26ca7c9SMartin KaFai Lau seq_puts(m, "\n"); 402a26ca7c9SMartin KaFai Lau 403a26ca7c9SMartin KaFai Lau rcu_read_unlock(); 404a26ca7c9SMartin KaFai Lau } 405a26ca7c9SMartin KaFai Lau 406c7b27c37SYonghong Song static void percpu_array_map_seq_show_elem(struct bpf_map *map, void *key, 407c7b27c37SYonghong Song struct seq_file *m) 408c7b27c37SYonghong Song { 409c7b27c37SYonghong Song struct bpf_array *array = container_of(map, struct bpf_array, map); 410c7b27c37SYonghong Song u32 index = *(u32 *)key; 411c7b27c37SYonghong Song void __percpu *pptr; 412c7b27c37SYonghong Song int cpu; 413c7b27c37SYonghong Song 414c7b27c37SYonghong Song rcu_read_lock(); 415c7b27c37SYonghong Song 416c7b27c37SYonghong Song seq_printf(m, "%u: {\n", *(u32 *)key); 417c7b27c37SYonghong Song pptr = array->pptrs[index & array->index_mask]; 418c7b27c37SYonghong Song for_each_possible_cpu(cpu) { 419c7b27c37SYonghong Song seq_printf(m, "\tcpu%d: ", cpu); 420c7b27c37SYonghong Song btf_type_seq_show(map->btf, map->btf_value_type_id, 421c7b27c37SYonghong Song per_cpu_ptr(pptr, cpu), m); 422c7b27c37SYonghong Song seq_puts(m, "\n"); 423c7b27c37SYonghong Song } 424c7b27c37SYonghong Song seq_puts(m, "}\n"); 425c7b27c37SYonghong Song 426c7b27c37SYonghong Song rcu_read_unlock(); 427c7b27c37SYonghong Song } 428c7b27c37SYonghong Song 429e8d2bec0SDaniel Borkmann static int array_map_check_btf(const struct bpf_map *map, 4301b2b234bSRoman Gushchin const struct btf *btf, 431e8d2bec0SDaniel Borkmann const struct btf_type *key_type, 432e8d2bec0SDaniel Borkmann const struct btf_type *value_type) 433a26ca7c9SMartin KaFai Lau { 434a26ca7c9SMartin KaFai Lau u32 int_data; 435a26ca7c9SMartin KaFai Lau 4362824ecb7SDaniel Borkmann /* One exception for keyless BTF: .bss/.data/.rodata map */ 4372824ecb7SDaniel Borkmann if (btf_type_is_void(key_type)) { 4382824ecb7SDaniel Borkmann if (map->map_type != BPF_MAP_TYPE_ARRAY || 4392824ecb7SDaniel Borkmann map->max_entries != 1) 4402824ecb7SDaniel Borkmann return -EINVAL; 4412824ecb7SDaniel Borkmann 4422824ecb7SDaniel Borkmann if (BTF_INFO_KIND(value_type->info) != BTF_KIND_DATASEC) 4432824ecb7SDaniel Borkmann return -EINVAL; 4442824ecb7SDaniel Borkmann 4452824ecb7SDaniel Borkmann return 0; 4462824ecb7SDaniel Borkmann } 4472824ecb7SDaniel Borkmann 448e8d2bec0SDaniel Borkmann if (BTF_INFO_KIND(key_type->info) != BTF_KIND_INT) 449a26ca7c9SMartin KaFai Lau return -EINVAL; 450a26ca7c9SMartin KaFai Lau 451a26ca7c9SMartin KaFai Lau int_data = *(u32 *)(key_type + 1); 452e8d2bec0SDaniel Borkmann /* bpf array can only take a u32 key. This check makes sure 453e8d2bec0SDaniel Borkmann * that the btf matches the attr used during map_create. 454a26ca7c9SMartin KaFai Lau */ 455e8d2bec0SDaniel Borkmann if (BTF_INT_BITS(int_data) != 32 || BTF_INT_OFFSET(int_data)) 456a26ca7c9SMartin KaFai Lau return -EINVAL; 457a26ca7c9SMartin KaFai Lau 458a26ca7c9SMartin KaFai Lau return 0; 459a26ca7c9SMartin KaFai Lau } 460a26ca7c9SMartin KaFai Lau 46140077e0cSJohannes Berg const struct bpf_map_ops array_map_ops = { 462ad46061fSJakub Kicinski .map_alloc_check = array_map_alloc_check, 46328fbcfa0SAlexei Starovoitov .map_alloc = array_map_alloc, 46428fbcfa0SAlexei Starovoitov .map_free = array_map_free, 46528fbcfa0SAlexei Starovoitov .map_get_next_key = array_map_get_next_key, 46628fbcfa0SAlexei Starovoitov .map_lookup_elem = array_map_lookup_elem, 46728fbcfa0SAlexei Starovoitov .map_update_elem = array_map_update_elem, 46828fbcfa0SAlexei Starovoitov .map_delete_elem = array_map_delete_elem, 46981ed18abSAlexei Starovoitov .map_gen_lookup = array_map_gen_lookup, 470d8eca5bbSDaniel Borkmann .map_direct_value_addr = array_map_direct_value_addr, 471d8eca5bbSDaniel Borkmann .map_direct_value_meta = array_map_direct_value_meta, 472a26ca7c9SMartin KaFai Lau .map_seq_show_elem = array_map_seq_show_elem, 473a26ca7c9SMartin KaFai Lau .map_check_btf = array_map_check_btf, 47428fbcfa0SAlexei Starovoitov }; 47528fbcfa0SAlexei Starovoitov 47640077e0cSJohannes Berg const struct bpf_map_ops percpu_array_map_ops = { 477ad46061fSJakub Kicinski .map_alloc_check = array_map_alloc_check, 478a10423b8SAlexei Starovoitov .map_alloc = array_map_alloc, 479a10423b8SAlexei Starovoitov .map_free = array_map_free, 480a10423b8SAlexei Starovoitov .map_get_next_key = array_map_get_next_key, 481a10423b8SAlexei Starovoitov .map_lookup_elem = percpu_array_map_lookup_elem, 482a10423b8SAlexei Starovoitov .map_update_elem = array_map_update_elem, 483a10423b8SAlexei Starovoitov .map_delete_elem = array_map_delete_elem, 484c7b27c37SYonghong Song .map_seq_show_elem = percpu_array_map_seq_show_elem, 485e8d2bec0SDaniel Borkmann .map_check_btf = array_map_check_btf, 486a10423b8SAlexei Starovoitov }; 487a10423b8SAlexei Starovoitov 488ad46061fSJakub Kicinski static int fd_array_map_alloc_check(union bpf_attr *attr) 48904fd61abSAlexei Starovoitov { 4902a36f0b9SWang Nan /* only file descriptors can be stored in this type of map */ 49104fd61abSAlexei Starovoitov if (attr->value_size != sizeof(u32)) 492ad46061fSJakub Kicinski return -EINVAL; 493591fe988SDaniel Borkmann /* Program read-only/write-only not supported for special maps yet. */ 494591fe988SDaniel Borkmann if (attr->map_flags & (BPF_F_RDONLY_PROG | BPF_F_WRONLY_PROG)) 495591fe988SDaniel Borkmann return -EINVAL; 496ad46061fSJakub Kicinski return array_map_alloc_check(attr); 49704fd61abSAlexei Starovoitov } 49804fd61abSAlexei Starovoitov 4992a36f0b9SWang Nan static void fd_array_map_free(struct bpf_map *map) 50004fd61abSAlexei Starovoitov { 50104fd61abSAlexei Starovoitov struct bpf_array *array = container_of(map, struct bpf_array, map); 50204fd61abSAlexei Starovoitov int i; 50304fd61abSAlexei Starovoitov 50404fd61abSAlexei Starovoitov synchronize_rcu(); 50504fd61abSAlexei Starovoitov 50604fd61abSAlexei Starovoitov /* make sure it's empty */ 50704fd61abSAlexei Starovoitov for (i = 0; i < array->map.max_entries; i++) 5082a36f0b9SWang Nan BUG_ON(array->ptrs[i] != NULL); 509d407bd25SDaniel Borkmann 510d407bd25SDaniel Borkmann bpf_map_area_free(array); 51104fd61abSAlexei Starovoitov } 51204fd61abSAlexei Starovoitov 5132a36f0b9SWang Nan static void *fd_array_map_lookup_elem(struct bpf_map *map, void *key) 51404fd61abSAlexei Starovoitov { 5153b4a63f6SPrashant Bhole return ERR_PTR(-EOPNOTSUPP); 51604fd61abSAlexei Starovoitov } 51704fd61abSAlexei Starovoitov 51804fd61abSAlexei Starovoitov /* only called from syscall */ 51914dc6f04SMartin KaFai Lau int bpf_fd_array_map_lookup_elem(struct bpf_map *map, void *key, u32 *value) 52014dc6f04SMartin KaFai Lau { 52114dc6f04SMartin KaFai Lau void **elem, *ptr; 52214dc6f04SMartin KaFai Lau int ret = 0; 52314dc6f04SMartin KaFai Lau 52414dc6f04SMartin KaFai Lau if (!map->ops->map_fd_sys_lookup_elem) 52514dc6f04SMartin KaFai Lau return -ENOTSUPP; 52614dc6f04SMartin KaFai Lau 52714dc6f04SMartin KaFai Lau rcu_read_lock(); 52814dc6f04SMartin KaFai Lau elem = array_map_lookup_elem(map, key); 52914dc6f04SMartin KaFai Lau if (elem && (ptr = READ_ONCE(*elem))) 53014dc6f04SMartin KaFai Lau *value = map->ops->map_fd_sys_lookup_elem(ptr); 53114dc6f04SMartin KaFai Lau else 53214dc6f04SMartin KaFai Lau ret = -ENOENT; 53314dc6f04SMartin KaFai Lau rcu_read_unlock(); 53414dc6f04SMartin KaFai Lau 53514dc6f04SMartin KaFai Lau return ret; 53614dc6f04SMartin KaFai Lau } 53714dc6f04SMartin KaFai Lau 53814dc6f04SMartin KaFai Lau /* only called from syscall */ 539d056a788SDaniel Borkmann int bpf_fd_array_map_update_elem(struct bpf_map *map, struct file *map_file, 540d056a788SDaniel Borkmann void *key, void *value, u64 map_flags) 54104fd61abSAlexei Starovoitov { 54204fd61abSAlexei Starovoitov struct bpf_array *array = container_of(map, struct bpf_array, map); 5432a36f0b9SWang Nan void *new_ptr, *old_ptr; 54404fd61abSAlexei Starovoitov u32 index = *(u32 *)key, ufd; 54504fd61abSAlexei Starovoitov 54604fd61abSAlexei Starovoitov if (map_flags != BPF_ANY) 54704fd61abSAlexei Starovoitov return -EINVAL; 54804fd61abSAlexei Starovoitov 54904fd61abSAlexei Starovoitov if (index >= array->map.max_entries) 55004fd61abSAlexei Starovoitov return -E2BIG; 55104fd61abSAlexei Starovoitov 55204fd61abSAlexei Starovoitov ufd = *(u32 *)value; 553d056a788SDaniel Borkmann new_ptr = map->ops->map_fd_get_ptr(map, map_file, ufd); 5542a36f0b9SWang Nan if (IS_ERR(new_ptr)) 5552a36f0b9SWang Nan return PTR_ERR(new_ptr); 55604fd61abSAlexei Starovoitov 5572a36f0b9SWang Nan old_ptr = xchg(array->ptrs + index, new_ptr); 5582a36f0b9SWang Nan if (old_ptr) 5592a36f0b9SWang Nan map->ops->map_fd_put_ptr(old_ptr); 56004fd61abSAlexei Starovoitov 56104fd61abSAlexei Starovoitov return 0; 56204fd61abSAlexei Starovoitov } 56304fd61abSAlexei Starovoitov 5642a36f0b9SWang Nan static int fd_array_map_delete_elem(struct bpf_map *map, void *key) 56504fd61abSAlexei Starovoitov { 56604fd61abSAlexei Starovoitov struct bpf_array *array = container_of(map, struct bpf_array, map); 5672a36f0b9SWang Nan void *old_ptr; 56804fd61abSAlexei Starovoitov u32 index = *(u32 *)key; 56904fd61abSAlexei Starovoitov 57004fd61abSAlexei Starovoitov if (index >= array->map.max_entries) 57104fd61abSAlexei Starovoitov return -E2BIG; 57204fd61abSAlexei Starovoitov 5732a36f0b9SWang Nan old_ptr = xchg(array->ptrs + index, NULL); 5742a36f0b9SWang Nan if (old_ptr) { 5752a36f0b9SWang Nan map->ops->map_fd_put_ptr(old_ptr); 57604fd61abSAlexei Starovoitov return 0; 57704fd61abSAlexei Starovoitov } else { 57804fd61abSAlexei Starovoitov return -ENOENT; 57904fd61abSAlexei Starovoitov } 58004fd61abSAlexei Starovoitov } 58104fd61abSAlexei Starovoitov 582d056a788SDaniel Borkmann static void *prog_fd_array_get_ptr(struct bpf_map *map, 583d056a788SDaniel Borkmann struct file *map_file, int fd) 5842a36f0b9SWang Nan { 5852a36f0b9SWang Nan struct bpf_array *array = container_of(map, struct bpf_array, map); 5862a36f0b9SWang Nan struct bpf_prog *prog = bpf_prog_get(fd); 587d056a788SDaniel Borkmann 5882a36f0b9SWang Nan if (IS_ERR(prog)) 5892a36f0b9SWang Nan return prog; 5902a36f0b9SWang Nan 5912a36f0b9SWang Nan if (!bpf_prog_array_compatible(array, prog)) { 5922a36f0b9SWang Nan bpf_prog_put(prog); 5932a36f0b9SWang Nan return ERR_PTR(-EINVAL); 5942a36f0b9SWang Nan } 595d056a788SDaniel Borkmann 5962a36f0b9SWang Nan return prog; 5972a36f0b9SWang Nan } 5982a36f0b9SWang Nan 5992a36f0b9SWang Nan static void prog_fd_array_put_ptr(void *ptr) 6002a36f0b9SWang Nan { 6011aacde3dSDaniel Borkmann bpf_prog_put(ptr); 6022a36f0b9SWang Nan } 6032a36f0b9SWang Nan 60414dc6f04SMartin KaFai Lau static u32 prog_fd_array_sys_lookup_elem(void *ptr) 60514dc6f04SMartin KaFai Lau { 60614dc6f04SMartin KaFai Lau return ((struct bpf_prog *)ptr)->aux->id; 60714dc6f04SMartin KaFai Lau } 60814dc6f04SMartin KaFai Lau 60904fd61abSAlexei Starovoitov /* decrement refcnt of all bpf_progs that are stored in this map */ 610ba6b8de4SJohn Fastabend static void bpf_fd_array_map_clear(struct bpf_map *map) 61104fd61abSAlexei Starovoitov { 61204fd61abSAlexei Starovoitov struct bpf_array *array = container_of(map, struct bpf_array, map); 61304fd61abSAlexei Starovoitov int i; 61404fd61abSAlexei Starovoitov 61504fd61abSAlexei Starovoitov for (i = 0; i < array->map.max_entries; i++) 6162a36f0b9SWang Nan fd_array_map_delete_elem(map, &i); 61704fd61abSAlexei Starovoitov } 61804fd61abSAlexei Starovoitov 619a7c19db3SYonghong Song static void prog_array_map_seq_show_elem(struct bpf_map *map, void *key, 620a7c19db3SYonghong Song struct seq_file *m) 621a7c19db3SYonghong Song { 622a7c19db3SYonghong Song void **elem, *ptr; 623a7c19db3SYonghong Song u32 prog_id; 624a7c19db3SYonghong Song 625a7c19db3SYonghong Song rcu_read_lock(); 626a7c19db3SYonghong Song 627a7c19db3SYonghong Song elem = array_map_lookup_elem(map, key); 628a7c19db3SYonghong Song if (elem) { 629a7c19db3SYonghong Song ptr = READ_ONCE(*elem); 630a7c19db3SYonghong Song if (ptr) { 631a7c19db3SYonghong Song seq_printf(m, "%u: ", *(u32 *)key); 632a7c19db3SYonghong Song prog_id = prog_fd_array_sys_lookup_elem(ptr); 633a7c19db3SYonghong Song btf_type_seq_show(map->btf, map->btf_value_type_id, 634a7c19db3SYonghong Song &prog_id, m); 635a7c19db3SYonghong Song seq_puts(m, "\n"); 636a7c19db3SYonghong Song } 637a7c19db3SYonghong Song } 638a7c19db3SYonghong Song 639a7c19db3SYonghong Song rcu_read_unlock(); 640a7c19db3SYonghong Song } 641a7c19db3SYonghong Song 64240077e0cSJohannes Berg const struct bpf_map_ops prog_array_map_ops = { 643ad46061fSJakub Kicinski .map_alloc_check = fd_array_map_alloc_check, 644ad46061fSJakub Kicinski .map_alloc = array_map_alloc, 6452a36f0b9SWang Nan .map_free = fd_array_map_free, 64604fd61abSAlexei Starovoitov .map_get_next_key = array_map_get_next_key, 6472a36f0b9SWang Nan .map_lookup_elem = fd_array_map_lookup_elem, 6482a36f0b9SWang Nan .map_delete_elem = fd_array_map_delete_elem, 6492a36f0b9SWang Nan .map_fd_get_ptr = prog_fd_array_get_ptr, 6502a36f0b9SWang Nan .map_fd_put_ptr = prog_fd_array_put_ptr, 65114dc6f04SMartin KaFai Lau .map_fd_sys_lookup_elem = prog_fd_array_sys_lookup_elem, 652ba6b8de4SJohn Fastabend .map_release_uref = bpf_fd_array_map_clear, 653a7c19db3SYonghong Song .map_seq_show_elem = prog_array_map_seq_show_elem, 65404fd61abSAlexei Starovoitov }; 65504fd61abSAlexei Starovoitov 6563b1efb19SDaniel Borkmann static struct bpf_event_entry *bpf_event_entry_gen(struct file *perf_file, 6573b1efb19SDaniel Borkmann struct file *map_file) 658ea317b26SKaixu Xia { 6593b1efb19SDaniel Borkmann struct bpf_event_entry *ee; 6603b1efb19SDaniel Borkmann 661858d68f1SDaniel Borkmann ee = kzalloc(sizeof(*ee), GFP_ATOMIC); 6623b1efb19SDaniel Borkmann if (ee) { 6633b1efb19SDaniel Borkmann ee->event = perf_file->private_data; 6643b1efb19SDaniel Borkmann ee->perf_file = perf_file; 6653b1efb19SDaniel Borkmann ee->map_file = map_file; 6663b1efb19SDaniel Borkmann } 6673b1efb19SDaniel Borkmann 6683b1efb19SDaniel Borkmann return ee; 6693b1efb19SDaniel Borkmann } 6703b1efb19SDaniel Borkmann 6713b1efb19SDaniel Borkmann static void __bpf_event_entry_free(struct rcu_head *rcu) 6723b1efb19SDaniel Borkmann { 6733b1efb19SDaniel Borkmann struct bpf_event_entry *ee; 6743b1efb19SDaniel Borkmann 6753b1efb19SDaniel Borkmann ee = container_of(rcu, struct bpf_event_entry, rcu); 6763b1efb19SDaniel Borkmann fput(ee->perf_file); 6773b1efb19SDaniel Borkmann kfree(ee); 6783b1efb19SDaniel Borkmann } 6793b1efb19SDaniel Borkmann 6803b1efb19SDaniel Borkmann static void bpf_event_entry_free_rcu(struct bpf_event_entry *ee) 6813b1efb19SDaniel Borkmann { 6823b1efb19SDaniel Borkmann call_rcu(&ee->rcu, __bpf_event_entry_free); 683ea317b26SKaixu Xia } 684ea317b26SKaixu Xia 685d056a788SDaniel Borkmann static void *perf_event_fd_array_get_ptr(struct bpf_map *map, 686d056a788SDaniel Borkmann struct file *map_file, int fd) 687ea317b26SKaixu Xia { 6883b1efb19SDaniel Borkmann struct bpf_event_entry *ee; 6893b1efb19SDaniel Borkmann struct perf_event *event; 6903b1efb19SDaniel Borkmann struct file *perf_file; 691f91840a3SAlexei Starovoitov u64 value; 692ea317b26SKaixu Xia 6933b1efb19SDaniel Borkmann perf_file = perf_event_get(fd); 6943b1efb19SDaniel Borkmann if (IS_ERR(perf_file)) 6953b1efb19SDaniel Borkmann return perf_file; 696e03e7ee3SAlexei Starovoitov 697f91840a3SAlexei Starovoitov ee = ERR_PTR(-EOPNOTSUPP); 6983b1efb19SDaniel Borkmann event = perf_file->private_data; 69997562633SYonghong Song if (perf_event_read_local(event, &value, NULL, NULL) == -EOPNOTSUPP) 7003b1efb19SDaniel Borkmann goto err_out; 701ea317b26SKaixu Xia 7023b1efb19SDaniel Borkmann ee = bpf_event_entry_gen(perf_file, map_file); 7033b1efb19SDaniel Borkmann if (ee) 7043b1efb19SDaniel Borkmann return ee; 7053b1efb19SDaniel Borkmann ee = ERR_PTR(-ENOMEM); 7063b1efb19SDaniel Borkmann err_out: 7073b1efb19SDaniel Borkmann fput(perf_file); 7083b1efb19SDaniel Borkmann return ee; 709ea317b26SKaixu Xia } 710ea317b26SKaixu Xia 711ea317b26SKaixu Xia static void perf_event_fd_array_put_ptr(void *ptr) 712ea317b26SKaixu Xia { 7133b1efb19SDaniel Borkmann bpf_event_entry_free_rcu(ptr); 7143b1efb19SDaniel Borkmann } 7153b1efb19SDaniel Borkmann 7163b1efb19SDaniel Borkmann static void perf_event_fd_array_release(struct bpf_map *map, 7173b1efb19SDaniel Borkmann struct file *map_file) 7183b1efb19SDaniel Borkmann { 7193b1efb19SDaniel Borkmann struct bpf_array *array = container_of(map, struct bpf_array, map); 7203b1efb19SDaniel Borkmann struct bpf_event_entry *ee; 7213b1efb19SDaniel Borkmann int i; 7223b1efb19SDaniel Borkmann 7233b1efb19SDaniel Borkmann rcu_read_lock(); 7243b1efb19SDaniel Borkmann for (i = 0; i < array->map.max_entries; i++) { 7253b1efb19SDaniel Borkmann ee = READ_ONCE(array->ptrs[i]); 7263b1efb19SDaniel Borkmann if (ee && ee->map_file == map_file) 7273b1efb19SDaniel Borkmann fd_array_map_delete_elem(map, &i); 7283b1efb19SDaniel Borkmann } 7293b1efb19SDaniel Borkmann rcu_read_unlock(); 730ea317b26SKaixu Xia } 731ea317b26SKaixu Xia 73240077e0cSJohannes Berg const struct bpf_map_ops perf_event_array_map_ops = { 733ad46061fSJakub Kicinski .map_alloc_check = fd_array_map_alloc_check, 734ad46061fSJakub Kicinski .map_alloc = array_map_alloc, 7353b1efb19SDaniel Borkmann .map_free = fd_array_map_free, 736ea317b26SKaixu Xia .map_get_next_key = array_map_get_next_key, 737ea317b26SKaixu Xia .map_lookup_elem = fd_array_map_lookup_elem, 738ea317b26SKaixu Xia .map_delete_elem = fd_array_map_delete_elem, 739ea317b26SKaixu Xia .map_fd_get_ptr = perf_event_fd_array_get_ptr, 740ea317b26SKaixu Xia .map_fd_put_ptr = perf_event_fd_array_put_ptr, 7413b1efb19SDaniel Borkmann .map_release = perf_event_fd_array_release, 742e8d2bec0SDaniel Borkmann .map_check_btf = map_check_no_btf, 743ea317b26SKaixu Xia }; 744ea317b26SKaixu Xia 74560d20f91SSargun Dhillon #ifdef CONFIG_CGROUPS 7464ed8ec52SMartin KaFai Lau static void *cgroup_fd_array_get_ptr(struct bpf_map *map, 7474ed8ec52SMartin KaFai Lau struct file *map_file /* not used */, 7484ed8ec52SMartin KaFai Lau int fd) 7494ed8ec52SMartin KaFai Lau { 7504ed8ec52SMartin KaFai Lau return cgroup_get_from_fd(fd); 7514ed8ec52SMartin KaFai Lau } 7524ed8ec52SMartin KaFai Lau 7534ed8ec52SMartin KaFai Lau static void cgroup_fd_array_put_ptr(void *ptr) 7544ed8ec52SMartin KaFai Lau { 7554ed8ec52SMartin KaFai Lau /* cgroup_put free cgrp after a rcu grace period */ 7564ed8ec52SMartin KaFai Lau cgroup_put(ptr); 7574ed8ec52SMartin KaFai Lau } 7584ed8ec52SMartin KaFai Lau 7594ed8ec52SMartin KaFai Lau static void cgroup_fd_array_free(struct bpf_map *map) 7604ed8ec52SMartin KaFai Lau { 7614ed8ec52SMartin KaFai Lau bpf_fd_array_map_clear(map); 7624ed8ec52SMartin KaFai Lau fd_array_map_free(map); 7634ed8ec52SMartin KaFai Lau } 7644ed8ec52SMartin KaFai Lau 76540077e0cSJohannes Berg const struct bpf_map_ops cgroup_array_map_ops = { 766ad46061fSJakub Kicinski .map_alloc_check = fd_array_map_alloc_check, 767ad46061fSJakub Kicinski .map_alloc = array_map_alloc, 7684ed8ec52SMartin KaFai Lau .map_free = cgroup_fd_array_free, 7694ed8ec52SMartin KaFai Lau .map_get_next_key = array_map_get_next_key, 7704ed8ec52SMartin KaFai Lau .map_lookup_elem = fd_array_map_lookup_elem, 7714ed8ec52SMartin KaFai Lau .map_delete_elem = fd_array_map_delete_elem, 7724ed8ec52SMartin KaFai Lau .map_fd_get_ptr = cgroup_fd_array_get_ptr, 7734ed8ec52SMartin KaFai Lau .map_fd_put_ptr = cgroup_fd_array_put_ptr, 774e8d2bec0SDaniel Borkmann .map_check_btf = map_check_no_btf, 7754ed8ec52SMartin KaFai Lau }; 7764ed8ec52SMartin KaFai Lau #endif 77756f668dfSMartin KaFai Lau 77856f668dfSMartin KaFai Lau static struct bpf_map *array_of_map_alloc(union bpf_attr *attr) 77956f668dfSMartin KaFai Lau { 78056f668dfSMartin KaFai Lau struct bpf_map *map, *inner_map_meta; 78156f668dfSMartin KaFai Lau 78256f668dfSMartin KaFai Lau inner_map_meta = bpf_map_meta_alloc(attr->inner_map_fd); 78356f668dfSMartin KaFai Lau if (IS_ERR(inner_map_meta)) 78456f668dfSMartin KaFai Lau return inner_map_meta; 78556f668dfSMartin KaFai Lau 786ad46061fSJakub Kicinski map = array_map_alloc(attr); 78756f668dfSMartin KaFai Lau if (IS_ERR(map)) { 78856f668dfSMartin KaFai Lau bpf_map_meta_free(inner_map_meta); 78956f668dfSMartin KaFai Lau return map; 79056f668dfSMartin KaFai Lau } 79156f668dfSMartin KaFai Lau 79256f668dfSMartin KaFai Lau map->inner_map_meta = inner_map_meta; 79356f668dfSMartin KaFai Lau 79456f668dfSMartin KaFai Lau return map; 79556f668dfSMartin KaFai Lau } 79656f668dfSMartin KaFai Lau 79756f668dfSMartin KaFai Lau static void array_of_map_free(struct bpf_map *map) 79856f668dfSMartin KaFai Lau { 79956f668dfSMartin KaFai Lau /* map->inner_map_meta is only accessed by syscall which 80056f668dfSMartin KaFai Lau * is protected by fdget/fdput. 80156f668dfSMartin KaFai Lau */ 80256f668dfSMartin KaFai Lau bpf_map_meta_free(map->inner_map_meta); 80356f668dfSMartin KaFai Lau bpf_fd_array_map_clear(map); 80456f668dfSMartin KaFai Lau fd_array_map_free(map); 80556f668dfSMartin KaFai Lau } 80656f668dfSMartin KaFai Lau 80756f668dfSMartin KaFai Lau static void *array_of_map_lookup_elem(struct bpf_map *map, void *key) 80856f668dfSMartin KaFai Lau { 80956f668dfSMartin KaFai Lau struct bpf_map **inner_map = array_map_lookup_elem(map, key); 81056f668dfSMartin KaFai Lau 81156f668dfSMartin KaFai Lau if (!inner_map) 81256f668dfSMartin KaFai Lau return NULL; 81356f668dfSMartin KaFai Lau 81456f668dfSMartin KaFai Lau return READ_ONCE(*inner_map); 81556f668dfSMartin KaFai Lau } 81656f668dfSMartin KaFai Lau 8177b0c2a05SDaniel Borkmann static u32 array_of_map_gen_lookup(struct bpf_map *map, 8187b0c2a05SDaniel Borkmann struct bpf_insn *insn_buf) 8197b0c2a05SDaniel Borkmann { 820b2157399SAlexei Starovoitov struct bpf_array *array = container_of(map, struct bpf_array, map); 8217b0c2a05SDaniel Borkmann u32 elem_size = round_up(map->value_size, 8); 8227b0c2a05SDaniel Borkmann struct bpf_insn *insn = insn_buf; 8237b0c2a05SDaniel Borkmann const int ret = BPF_REG_0; 8247b0c2a05SDaniel Borkmann const int map_ptr = BPF_REG_1; 8257b0c2a05SDaniel Borkmann const int index = BPF_REG_2; 8267b0c2a05SDaniel Borkmann 8277b0c2a05SDaniel Borkmann *insn++ = BPF_ALU64_IMM(BPF_ADD, map_ptr, offsetof(struct bpf_array, value)); 8287b0c2a05SDaniel Borkmann *insn++ = BPF_LDX_MEM(BPF_W, ret, index, 0); 829b2157399SAlexei Starovoitov if (map->unpriv_array) { 830b2157399SAlexei Starovoitov *insn++ = BPF_JMP_IMM(BPF_JGE, ret, map->max_entries, 6); 831b2157399SAlexei Starovoitov *insn++ = BPF_ALU32_IMM(BPF_AND, ret, array->index_mask); 832b2157399SAlexei Starovoitov } else { 8337b0c2a05SDaniel Borkmann *insn++ = BPF_JMP_IMM(BPF_JGE, ret, map->max_entries, 5); 834b2157399SAlexei Starovoitov } 8357b0c2a05SDaniel Borkmann if (is_power_of_2(elem_size)) 8367b0c2a05SDaniel Borkmann *insn++ = BPF_ALU64_IMM(BPF_LSH, ret, ilog2(elem_size)); 8377b0c2a05SDaniel Borkmann else 8387b0c2a05SDaniel Borkmann *insn++ = BPF_ALU64_IMM(BPF_MUL, ret, elem_size); 8397b0c2a05SDaniel Borkmann *insn++ = BPF_ALU64_REG(BPF_ADD, ret, map_ptr); 8407b0c2a05SDaniel Borkmann *insn++ = BPF_LDX_MEM(BPF_DW, ret, ret, 0); 8417b0c2a05SDaniel Borkmann *insn++ = BPF_JMP_IMM(BPF_JEQ, ret, 0, 1); 8427b0c2a05SDaniel Borkmann *insn++ = BPF_JMP_IMM(BPF_JA, 0, 0, 1); 8437b0c2a05SDaniel Borkmann *insn++ = BPF_MOV64_IMM(ret, 0); 8447b0c2a05SDaniel Borkmann 8457b0c2a05SDaniel Borkmann return insn - insn_buf; 8467b0c2a05SDaniel Borkmann } 8477b0c2a05SDaniel Borkmann 84840077e0cSJohannes Berg const struct bpf_map_ops array_of_maps_map_ops = { 849ad46061fSJakub Kicinski .map_alloc_check = fd_array_map_alloc_check, 85056f668dfSMartin KaFai Lau .map_alloc = array_of_map_alloc, 85156f668dfSMartin KaFai Lau .map_free = array_of_map_free, 85256f668dfSMartin KaFai Lau .map_get_next_key = array_map_get_next_key, 85356f668dfSMartin KaFai Lau .map_lookup_elem = array_of_map_lookup_elem, 85456f668dfSMartin KaFai Lau .map_delete_elem = fd_array_map_delete_elem, 85556f668dfSMartin KaFai Lau .map_fd_get_ptr = bpf_map_fd_get_ptr, 85656f668dfSMartin KaFai Lau .map_fd_put_ptr = bpf_map_fd_put_ptr, 85714dc6f04SMartin KaFai Lau .map_fd_sys_lookup_elem = bpf_map_fd_sys_lookup_elem, 8587b0c2a05SDaniel Borkmann .map_gen_lookup = array_of_map_gen_lookup, 859e8d2bec0SDaniel Borkmann .map_check_btf = map_check_no_btf, 86056f668dfSMartin KaFai Lau }; 861