128fbcfa0SAlexei Starovoitov /* Copyright (c) 2011-2014 PLUMgrid, http://plumgrid.com 228fbcfa0SAlexei Starovoitov * 328fbcfa0SAlexei Starovoitov * This program is free software; you can redistribute it and/or 428fbcfa0SAlexei Starovoitov * modify it under the terms of version 2 of the GNU General Public 528fbcfa0SAlexei Starovoitov * License as published by the Free Software Foundation. 628fbcfa0SAlexei Starovoitov * 728fbcfa0SAlexei Starovoitov * This program is distributed in the hope that it will be useful, but 828fbcfa0SAlexei Starovoitov * WITHOUT ANY WARRANTY; without even the implied warranty of 928fbcfa0SAlexei Starovoitov * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the GNU 1028fbcfa0SAlexei Starovoitov * General Public License for more details. 1128fbcfa0SAlexei Starovoitov */ 1228fbcfa0SAlexei Starovoitov #include <linux/bpf.h> 1328fbcfa0SAlexei Starovoitov #include <linux/err.h> 1428fbcfa0SAlexei Starovoitov #include <linux/slab.h> 1528fbcfa0SAlexei Starovoitov #include <linux/mm.h> 1604fd61abSAlexei Starovoitov #include <linux/filter.h> 170cdf5640SDaniel Borkmann #include <linux/perf_event.h> 1828fbcfa0SAlexei Starovoitov 19a10423b8SAlexei Starovoitov static void bpf_array_free_percpu(struct bpf_array *array) 20a10423b8SAlexei Starovoitov { 21a10423b8SAlexei Starovoitov int i; 22a10423b8SAlexei Starovoitov 23a10423b8SAlexei Starovoitov for (i = 0; i < array->map.max_entries; i++) 24a10423b8SAlexei Starovoitov free_percpu(array->pptrs[i]); 25a10423b8SAlexei Starovoitov } 26a10423b8SAlexei Starovoitov 27a10423b8SAlexei Starovoitov static int bpf_array_alloc_percpu(struct bpf_array *array) 28a10423b8SAlexei Starovoitov { 29a10423b8SAlexei Starovoitov void __percpu *ptr; 30a10423b8SAlexei Starovoitov int i; 31a10423b8SAlexei Starovoitov 32a10423b8SAlexei Starovoitov for (i = 0; i < array->map.max_entries; i++) { 33a10423b8SAlexei Starovoitov ptr = __alloc_percpu_gfp(array->elem_size, 8, 34a10423b8SAlexei Starovoitov GFP_USER | __GFP_NOWARN); 35a10423b8SAlexei Starovoitov if (!ptr) { 36a10423b8SAlexei Starovoitov bpf_array_free_percpu(array); 37a10423b8SAlexei Starovoitov return -ENOMEM; 38a10423b8SAlexei Starovoitov } 39a10423b8SAlexei Starovoitov array->pptrs[i] = ptr; 40a10423b8SAlexei Starovoitov } 41a10423b8SAlexei Starovoitov 42a10423b8SAlexei Starovoitov return 0; 43a10423b8SAlexei Starovoitov } 44a10423b8SAlexei Starovoitov 4528fbcfa0SAlexei Starovoitov /* Called from syscall */ 4628fbcfa0SAlexei Starovoitov static struct bpf_map *array_map_alloc(union bpf_attr *attr) 4728fbcfa0SAlexei Starovoitov { 48a10423b8SAlexei Starovoitov bool percpu = attr->map_type == BPF_MAP_TYPE_PERCPU_ARRAY; 4928fbcfa0SAlexei Starovoitov struct bpf_array *array; 50a10423b8SAlexei Starovoitov u64 array_size; 51a10423b8SAlexei Starovoitov u32 elem_size; 5228fbcfa0SAlexei Starovoitov 5328fbcfa0SAlexei Starovoitov /* check sanity of attributes */ 5428fbcfa0SAlexei Starovoitov if (attr->max_entries == 0 || attr->key_size != 4 || 55823707b6SAlexei Starovoitov attr->value_size == 0 || attr->map_flags) 5628fbcfa0SAlexei Starovoitov return ERR_PTR(-EINVAL); 5728fbcfa0SAlexei Starovoitov 587984c27cSMichal Hocko if (attr->value_size > KMALLOC_MAX_SIZE) 5901b3f521SAlexei Starovoitov /* if value_size is bigger, the user space won't be able to 6001b3f521SAlexei Starovoitov * access the elements. 6101b3f521SAlexei Starovoitov */ 6201b3f521SAlexei Starovoitov return ERR_PTR(-E2BIG); 6301b3f521SAlexei Starovoitov 6428fbcfa0SAlexei Starovoitov elem_size = round_up(attr->value_size, 8); 6528fbcfa0SAlexei Starovoitov 66a10423b8SAlexei Starovoitov array_size = sizeof(*array); 67a10423b8SAlexei Starovoitov if (percpu) 68a10423b8SAlexei Starovoitov array_size += (u64) attr->max_entries * sizeof(void *); 69a10423b8SAlexei Starovoitov else 70a10423b8SAlexei Starovoitov array_size += (u64) attr->max_entries * elem_size; 71a10423b8SAlexei Starovoitov 72a10423b8SAlexei Starovoitov /* make sure there is no u32 overflow later in round_up() */ 73a10423b8SAlexei Starovoitov if (array_size >= U32_MAX - PAGE_SIZE) 74daaf427cSAlexei Starovoitov return ERR_PTR(-ENOMEM); 75daaf427cSAlexei Starovoitov 7628fbcfa0SAlexei Starovoitov /* allocate all map elements and zero-initialize them */ 77*d407bd25SDaniel Borkmann array = bpf_map_area_alloc(array_size); 7828fbcfa0SAlexei Starovoitov if (!array) 7928fbcfa0SAlexei Starovoitov return ERR_PTR(-ENOMEM); 8028fbcfa0SAlexei Starovoitov 8128fbcfa0SAlexei Starovoitov /* copy mandatory map attributes */ 82a10423b8SAlexei Starovoitov array->map.map_type = attr->map_type; 8328fbcfa0SAlexei Starovoitov array->map.key_size = attr->key_size; 8428fbcfa0SAlexei Starovoitov array->map.value_size = attr->value_size; 8528fbcfa0SAlexei Starovoitov array->map.max_entries = attr->max_entries; 8628fbcfa0SAlexei Starovoitov array->elem_size = elem_size; 8728fbcfa0SAlexei Starovoitov 88a10423b8SAlexei Starovoitov if (!percpu) 89a10423b8SAlexei Starovoitov goto out; 90a10423b8SAlexei Starovoitov 91a10423b8SAlexei Starovoitov array_size += (u64) attr->max_entries * elem_size * num_possible_cpus(); 92a10423b8SAlexei Starovoitov 93a10423b8SAlexei Starovoitov if (array_size >= U32_MAX - PAGE_SIZE || 94a10423b8SAlexei Starovoitov elem_size > PCPU_MIN_UNIT_SIZE || bpf_array_alloc_percpu(array)) { 95*d407bd25SDaniel Borkmann bpf_map_area_free(array); 96a10423b8SAlexei Starovoitov return ERR_PTR(-ENOMEM); 97a10423b8SAlexei Starovoitov } 98a10423b8SAlexei Starovoitov out: 99a10423b8SAlexei Starovoitov array->map.pages = round_up(array_size, PAGE_SIZE) >> PAGE_SHIFT; 100a10423b8SAlexei Starovoitov 10128fbcfa0SAlexei Starovoitov return &array->map; 10228fbcfa0SAlexei Starovoitov } 10328fbcfa0SAlexei Starovoitov 10428fbcfa0SAlexei Starovoitov /* Called from syscall or from eBPF program */ 10528fbcfa0SAlexei Starovoitov static void *array_map_lookup_elem(struct bpf_map *map, void *key) 10628fbcfa0SAlexei Starovoitov { 10728fbcfa0SAlexei Starovoitov struct bpf_array *array = container_of(map, struct bpf_array, map); 10828fbcfa0SAlexei Starovoitov u32 index = *(u32 *)key; 10928fbcfa0SAlexei Starovoitov 110a10423b8SAlexei Starovoitov if (unlikely(index >= array->map.max_entries)) 11128fbcfa0SAlexei Starovoitov return NULL; 11228fbcfa0SAlexei Starovoitov 11328fbcfa0SAlexei Starovoitov return array->value + array->elem_size * index; 11428fbcfa0SAlexei Starovoitov } 11528fbcfa0SAlexei Starovoitov 116a10423b8SAlexei Starovoitov /* Called from eBPF program */ 117a10423b8SAlexei Starovoitov static void *percpu_array_map_lookup_elem(struct bpf_map *map, void *key) 118a10423b8SAlexei Starovoitov { 119a10423b8SAlexei Starovoitov struct bpf_array *array = container_of(map, struct bpf_array, map); 120a10423b8SAlexei Starovoitov u32 index = *(u32 *)key; 121a10423b8SAlexei Starovoitov 122a10423b8SAlexei Starovoitov if (unlikely(index >= array->map.max_entries)) 123a10423b8SAlexei Starovoitov return NULL; 124a10423b8SAlexei Starovoitov 125a10423b8SAlexei Starovoitov return this_cpu_ptr(array->pptrs[index]); 126a10423b8SAlexei Starovoitov } 127a10423b8SAlexei Starovoitov 12815a07b33SAlexei Starovoitov int bpf_percpu_array_copy(struct bpf_map *map, void *key, void *value) 12915a07b33SAlexei Starovoitov { 13015a07b33SAlexei Starovoitov struct bpf_array *array = container_of(map, struct bpf_array, map); 13115a07b33SAlexei Starovoitov u32 index = *(u32 *)key; 13215a07b33SAlexei Starovoitov void __percpu *pptr; 13315a07b33SAlexei Starovoitov int cpu, off = 0; 13415a07b33SAlexei Starovoitov u32 size; 13515a07b33SAlexei Starovoitov 13615a07b33SAlexei Starovoitov if (unlikely(index >= array->map.max_entries)) 13715a07b33SAlexei Starovoitov return -ENOENT; 13815a07b33SAlexei Starovoitov 13915a07b33SAlexei Starovoitov /* per_cpu areas are zero-filled and bpf programs can only 14015a07b33SAlexei Starovoitov * access 'value_size' of them, so copying rounded areas 14115a07b33SAlexei Starovoitov * will not leak any kernel data 14215a07b33SAlexei Starovoitov */ 14315a07b33SAlexei Starovoitov size = round_up(map->value_size, 8); 14415a07b33SAlexei Starovoitov rcu_read_lock(); 14515a07b33SAlexei Starovoitov pptr = array->pptrs[index]; 14615a07b33SAlexei Starovoitov for_each_possible_cpu(cpu) { 14715a07b33SAlexei Starovoitov bpf_long_memcpy(value + off, per_cpu_ptr(pptr, cpu), size); 14815a07b33SAlexei Starovoitov off += size; 14915a07b33SAlexei Starovoitov } 15015a07b33SAlexei Starovoitov rcu_read_unlock(); 15115a07b33SAlexei Starovoitov return 0; 15215a07b33SAlexei Starovoitov } 15315a07b33SAlexei Starovoitov 15428fbcfa0SAlexei Starovoitov /* Called from syscall */ 15528fbcfa0SAlexei Starovoitov static int array_map_get_next_key(struct bpf_map *map, void *key, void *next_key) 15628fbcfa0SAlexei Starovoitov { 15728fbcfa0SAlexei Starovoitov struct bpf_array *array = container_of(map, struct bpf_array, map); 15828fbcfa0SAlexei Starovoitov u32 index = *(u32 *)key; 15928fbcfa0SAlexei Starovoitov u32 *next = (u32 *)next_key; 16028fbcfa0SAlexei Starovoitov 16128fbcfa0SAlexei Starovoitov if (index >= array->map.max_entries) { 16228fbcfa0SAlexei Starovoitov *next = 0; 16328fbcfa0SAlexei Starovoitov return 0; 16428fbcfa0SAlexei Starovoitov } 16528fbcfa0SAlexei Starovoitov 16628fbcfa0SAlexei Starovoitov if (index == array->map.max_entries - 1) 16728fbcfa0SAlexei Starovoitov return -ENOENT; 16828fbcfa0SAlexei Starovoitov 16928fbcfa0SAlexei Starovoitov *next = index + 1; 17028fbcfa0SAlexei Starovoitov return 0; 17128fbcfa0SAlexei Starovoitov } 17228fbcfa0SAlexei Starovoitov 17328fbcfa0SAlexei Starovoitov /* Called from syscall or from eBPF program */ 17428fbcfa0SAlexei Starovoitov static int array_map_update_elem(struct bpf_map *map, void *key, void *value, 17528fbcfa0SAlexei Starovoitov u64 map_flags) 17628fbcfa0SAlexei Starovoitov { 17728fbcfa0SAlexei Starovoitov struct bpf_array *array = container_of(map, struct bpf_array, map); 17828fbcfa0SAlexei Starovoitov u32 index = *(u32 *)key; 17928fbcfa0SAlexei Starovoitov 180a10423b8SAlexei Starovoitov if (unlikely(map_flags > BPF_EXIST)) 18128fbcfa0SAlexei Starovoitov /* unknown flags */ 18228fbcfa0SAlexei Starovoitov return -EINVAL; 18328fbcfa0SAlexei Starovoitov 184a10423b8SAlexei Starovoitov if (unlikely(index >= array->map.max_entries)) 18528fbcfa0SAlexei Starovoitov /* all elements were pre-allocated, cannot insert a new one */ 18628fbcfa0SAlexei Starovoitov return -E2BIG; 18728fbcfa0SAlexei Starovoitov 188a10423b8SAlexei Starovoitov if (unlikely(map_flags == BPF_NOEXIST)) 189daaf427cSAlexei Starovoitov /* all elements already exist */ 19028fbcfa0SAlexei Starovoitov return -EEXIST; 19128fbcfa0SAlexei Starovoitov 192a10423b8SAlexei Starovoitov if (array->map.map_type == BPF_MAP_TYPE_PERCPU_ARRAY) 193a10423b8SAlexei Starovoitov memcpy(this_cpu_ptr(array->pptrs[index]), 194a10423b8SAlexei Starovoitov value, map->value_size); 195a10423b8SAlexei Starovoitov else 196a10423b8SAlexei Starovoitov memcpy(array->value + array->elem_size * index, 197a10423b8SAlexei Starovoitov value, map->value_size); 19828fbcfa0SAlexei Starovoitov return 0; 19928fbcfa0SAlexei Starovoitov } 20028fbcfa0SAlexei Starovoitov 20115a07b33SAlexei Starovoitov int bpf_percpu_array_update(struct bpf_map *map, void *key, void *value, 20215a07b33SAlexei Starovoitov u64 map_flags) 20315a07b33SAlexei Starovoitov { 20415a07b33SAlexei Starovoitov struct bpf_array *array = container_of(map, struct bpf_array, map); 20515a07b33SAlexei Starovoitov u32 index = *(u32 *)key; 20615a07b33SAlexei Starovoitov void __percpu *pptr; 20715a07b33SAlexei Starovoitov int cpu, off = 0; 20815a07b33SAlexei Starovoitov u32 size; 20915a07b33SAlexei Starovoitov 21015a07b33SAlexei Starovoitov if (unlikely(map_flags > BPF_EXIST)) 21115a07b33SAlexei Starovoitov /* unknown flags */ 21215a07b33SAlexei Starovoitov return -EINVAL; 21315a07b33SAlexei Starovoitov 21415a07b33SAlexei Starovoitov if (unlikely(index >= array->map.max_entries)) 21515a07b33SAlexei Starovoitov /* all elements were pre-allocated, cannot insert a new one */ 21615a07b33SAlexei Starovoitov return -E2BIG; 21715a07b33SAlexei Starovoitov 21815a07b33SAlexei Starovoitov if (unlikely(map_flags == BPF_NOEXIST)) 21915a07b33SAlexei Starovoitov /* all elements already exist */ 22015a07b33SAlexei Starovoitov return -EEXIST; 22115a07b33SAlexei Starovoitov 22215a07b33SAlexei Starovoitov /* the user space will provide round_up(value_size, 8) bytes that 22315a07b33SAlexei Starovoitov * will be copied into per-cpu area. bpf programs can only access 22415a07b33SAlexei Starovoitov * value_size of it. During lookup the same extra bytes will be 22515a07b33SAlexei Starovoitov * returned or zeros which were zero-filled by percpu_alloc, 22615a07b33SAlexei Starovoitov * so no kernel data leaks possible 22715a07b33SAlexei Starovoitov */ 22815a07b33SAlexei Starovoitov size = round_up(map->value_size, 8); 22915a07b33SAlexei Starovoitov rcu_read_lock(); 23015a07b33SAlexei Starovoitov pptr = array->pptrs[index]; 23115a07b33SAlexei Starovoitov for_each_possible_cpu(cpu) { 23215a07b33SAlexei Starovoitov bpf_long_memcpy(per_cpu_ptr(pptr, cpu), value + off, size); 23315a07b33SAlexei Starovoitov off += size; 23415a07b33SAlexei Starovoitov } 23515a07b33SAlexei Starovoitov rcu_read_unlock(); 23615a07b33SAlexei Starovoitov return 0; 23715a07b33SAlexei Starovoitov } 23815a07b33SAlexei Starovoitov 23928fbcfa0SAlexei Starovoitov /* Called from syscall or from eBPF program */ 24028fbcfa0SAlexei Starovoitov static int array_map_delete_elem(struct bpf_map *map, void *key) 24128fbcfa0SAlexei Starovoitov { 24228fbcfa0SAlexei Starovoitov return -EINVAL; 24328fbcfa0SAlexei Starovoitov } 24428fbcfa0SAlexei Starovoitov 24528fbcfa0SAlexei Starovoitov /* Called when map->refcnt goes to zero, either from workqueue or from syscall */ 24628fbcfa0SAlexei Starovoitov static void array_map_free(struct bpf_map *map) 24728fbcfa0SAlexei Starovoitov { 24828fbcfa0SAlexei Starovoitov struct bpf_array *array = container_of(map, struct bpf_array, map); 24928fbcfa0SAlexei Starovoitov 25028fbcfa0SAlexei Starovoitov /* at this point bpf_prog->aux->refcnt == 0 and this map->refcnt == 0, 25128fbcfa0SAlexei Starovoitov * so the programs (can be more than one that used this map) were 25228fbcfa0SAlexei Starovoitov * disconnected from events. Wait for outstanding programs to complete 25328fbcfa0SAlexei Starovoitov * and free the array 25428fbcfa0SAlexei Starovoitov */ 25528fbcfa0SAlexei Starovoitov synchronize_rcu(); 25628fbcfa0SAlexei Starovoitov 257a10423b8SAlexei Starovoitov if (array->map.map_type == BPF_MAP_TYPE_PERCPU_ARRAY) 258a10423b8SAlexei Starovoitov bpf_array_free_percpu(array); 259a10423b8SAlexei Starovoitov 260*d407bd25SDaniel Borkmann bpf_map_area_free(array); 26128fbcfa0SAlexei Starovoitov } 26228fbcfa0SAlexei Starovoitov 263a2c83fffSDaniel Borkmann static const struct bpf_map_ops array_ops = { 26428fbcfa0SAlexei Starovoitov .map_alloc = array_map_alloc, 26528fbcfa0SAlexei Starovoitov .map_free = array_map_free, 26628fbcfa0SAlexei Starovoitov .map_get_next_key = array_map_get_next_key, 26728fbcfa0SAlexei Starovoitov .map_lookup_elem = array_map_lookup_elem, 26828fbcfa0SAlexei Starovoitov .map_update_elem = array_map_update_elem, 26928fbcfa0SAlexei Starovoitov .map_delete_elem = array_map_delete_elem, 27028fbcfa0SAlexei Starovoitov }; 27128fbcfa0SAlexei Starovoitov 272a2c83fffSDaniel Borkmann static struct bpf_map_type_list array_type __read_mostly = { 27328fbcfa0SAlexei Starovoitov .ops = &array_ops, 27428fbcfa0SAlexei Starovoitov .type = BPF_MAP_TYPE_ARRAY, 27528fbcfa0SAlexei Starovoitov }; 27628fbcfa0SAlexei Starovoitov 277a10423b8SAlexei Starovoitov static const struct bpf_map_ops percpu_array_ops = { 278a10423b8SAlexei Starovoitov .map_alloc = array_map_alloc, 279a10423b8SAlexei Starovoitov .map_free = array_map_free, 280a10423b8SAlexei Starovoitov .map_get_next_key = array_map_get_next_key, 281a10423b8SAlexei Starovoitov .map_lookup_elem = percpu_array_map_lookup_elem, 282a10423b8SAlexei Starovoitov .map_update_elem = array_map_update_elem, 283a10423b8SAlexei Starovoitov .map_delete_elem = array_map_delete_elem, 284a10423b8SAlexei Starovoitov }; 285a10423b8SAlexei Starovoitov 286a10423b8SAlexei Starovoitov static struct bpf_map_type_list percpu_array_type __read_mostly = { 287a10423b8SAlexei Starovoitov .ops = &percpu_array_ops, 288a10423b8SAlexei Starovoitov .type = BPF_MAP_TYPE_PERCPU_ARRAY, 289a10423b8SAlexei Starovoitov }; 290a10423b8SAlexei Starovoitov 29128fbcfa0SAlexei Starovoitov static int __init register_array_map(void) 29228fbcfa0SAlexei Starovoitov { 293a2c83fffSDaniel Borkmann bpf_register_map_type(&array_type); 294a10423b8SAlexei Starovoitov bpf_register_map_type(&percpu_array_type); 29528fbcfa0SAlexei Starovoitov return 0; 29628fbcfa0SAlexei Starovoitov } 29728fbcfa0SAlexei Starovoitov late_initcall(register_array_map); 29804fd61abSAlexei Starovoitov 2992a36f0b9SWang Nan static struct bpf_map *fd_array_map_alloc(union bpf_attr *attr) 30004fd61abSAlexei Starovoitov { 3012a36f0b9SWang Nan /* only file descriptors can be stored in this type of map */ 30204fd61abSAlexei Starovoitov if (attr->value_size != sizeof(u32)) 30304fd61abSAlexei Starovoitov return ERR_PTR(-EINVAL); 30404fd61abSAlexei Starovoitov return array_map_alloc(attr); 30504fd61abSAlexei Starovoitov } 30604fd61abSAlexei Starovoitov 3072a36f0b9SWang Nan static void fd_array_map_free(struct bpf_map *map) 30804fd61abSAlexei Starovoitov { 30904fd61abSAlexei Starovoitov struct bpf_array *array = container_of(map, struct bpf_array, map); 31004fd61abSAlexei Starovoitov int i; 31104fd61abSAlexei Starovoitov 31204fd61abSAlexei Starovoitov synchronize_rcu(); 31304fd61abSAlexei Starovoitov 31404fd61abSAlexei Starovoitov /* make sure it's empty */ 31504fd61abSAlexei Starovoitov for (i = 0; i < array->map.max_entries; i++) 3162a36f0b9SWang Nan BUG_ON(array->ptrs[i] != NULL); 317*d407bd25SDaniel Borkmann 318*d407bd25SDaniel Borkmann bpf_map_area_free(array); 31904fd61abSAlexei Starovoitov } 32004fd61abSAlexei Starovoitov 3212a36f0b9SWang Nan static void *fd_array_map_lookup_elem(struct bpf_map *map, void *key) 32204fd61abSAlexei Starovoitov { 32304fd61abSAlexei Starovoitov return NULL; 32404fd61abSAlexei Starovoitov } 32504fd61abSAlexei Starovoitov 32604fd61abSAlexei Starovoitov /* only called from syscall */ 327d056a788SDaniel Borkmann int bpf_fd_array_map_update_elem(struct bpf_map *map, struct file *map_file, 328d056a788SDaniel Borkmann void *key, void *value, u64 map_flags) 32904fd61abSAlexei Starovoitov { 33004fd61abSAlexei Starovoitov struct bpf_array *array = container_of(map, struct bpf_array, map); 3312a36f0b9SWang Nan void *new_ptr, *old_ptr; 33204fd61abSAlexei Starovoitov u32 index = *(u32 *)key, ufd; 33304fd61abSAlexei Starovoitov 33404fd61abSAlexei Starovoitov if (map_flags != BPF_ANY) 33504fd61abSAlexei Starovoitov return -EINVAL; 33604fd61abSAlexei Starovoitov 33704fd61abSAlexei Starovoitov if (index >= array->map.max_entries) 33804fd61abSAlexei Starovoitov return -E2BIG; 33904fd61abSAlexei Starovoitov 34004fd61abSAlexei Starovoitov ufd = *(u32 *)value; 341d056a788SDaniel Borkmann new_ptr = map->ops->map_fd_get_ptr(map, map_file, ufd); 3422a36f0b9SWang Nan if (IS_ERR(new_ptr)) 3432a36f0b9SWang Nan return PTR_ERR(new_ptr); 34404fd61abSAlexei Starovoitov 3452a36f0b9SWang Nan old_ptr = xchg(array->ptrs + index, new_ptr); 3462a36f0b9SWang Nan if (old_ptr) 3472a36f0b9SWang Nan map->ops->map_fd_put_ptr(old_ptr); 34804fd61abSAlexei Starovoitov 34904fd61abSAlexei Starovoitov return 0; 35004fd61abSAlexei Starovoitov } 35104fd61abSAlexei Starovoitov 3522a36f0b9SWang Nan static int fd_array_map_delete_elem(struct bpf_map *map, void *key) 35304fd61abSAlexei Starovoitov { 35404fd61abSAlexei Starovoitov struct bpf_array *array = container_of(map, struct bpf_array, map); 3552a36f0b9SWang Nan void *old_ptr; 35604fd61abSAlexei Starovoitov u32 index = *(u32 *)key; 35704fd61abSAlexei Starovoitov 35804fd61abSAlexei Starovoitov if (index >= array->map.max_entries) 35904fd61abSAlexei Starovoitov return -E2BIG; 36004fd61abSAlexei Starovoitov 3612a36f0b9SWang Nan old_ptr = xchg(array->ptrs + index, NULL); 3622a36f0b9SWang Nan if (old_ptr) { 3632a36f0b9SWang Nan map->ops->map_fd_put_ptr(old_ptr); 36404fd61abSAlexei Starovoitov return 0; 36504fd61abSAlexei Starovoitov } else { 36604fd61abSAlexei Starovoitov return -ENOENT; 36704fd61abSAlexei Starovoitov } 36804fd61abSAlexei Starovoitov } 36904fd61abSAlexei Starovoitov 370d056a788SDaniel Borkmann static void *prog_fd_array_get_ptr(struct bpf_map *map, 371d056a788SDaniel Borkmann struct file *map_file, int fd) 3722a36f0b9SWang Nan { 3732a36f0b9SWang Nan struct bpf_array *array = container_of(map, struct bpf_array, map); 3742a36f0b9SWang Nan struct bpf_prog *prog = bpf_prog_get(fd); 375d056a788SDaniel Borkmann 3762a36f0b9SWang Nan if (IS_ERR(prog)) 3772a36f0b9SWang Nan return prog; 3782a36f0b9SWang Nan 3792a36f0b9SWang Nan if (!bpf_prog_array_compatible(array, prog)) { 3802a36f0b9SWang Nan bpf_prog_put(prog); 3812a36f0b9SWang Nan return ERR_PTR(-EINVAL); 3822a36f0b9SWang Nan } 383d056a788SDaniel Borkmann 3842a36f0b9SWang Nan return prog; 3852a36f0b9SWang Nan } 3862a36f0b9SWang Nan 3872a36f0b9SWang Nan static void prog_fd_array_put_ptr(void *ptr) 3882a36f0b9SWang Nan { 3891aacde3dSDaniel Borkmann bpf_prog_put(ptr); 3902a36f0b9SWang Nan } 3912a36f0b9SWang Nan 39204fd61abSAlexei Starovoitov /* decrement refcnt of all bpf_progs that are stored in this map */ 3932a36f0b9SWang Nan void bpf_fd_array_map_clear(struct bpf_map *map) 39404fd61abSAlexei Starovoitov { 39504fd61abSAlexei Starovoitov struct bpf_array *array = container_of(map, struct bpf_array, map); 39604fd61abSAlexei Starovoitov int i; 39704fd61abSAlexei Starovoitov 39804fd61abSAlexei Starovoitov for (i = 0; i < array->map.max_entries; i++) 3992a36f0b9SWang Nan fd_array_map_delete_elem(map, &i); 40004fd61abSAlexei Starovoitov } 40104fd61abSAlexei Starovoitov 40204fd61abSAlexei Starovoitov static const struct bpf_map_ops prog_array_ops = { 4032a36f0b9SWang Nan .map_alloc = fd_array_map_alloc, 4042a36f0b9SWang Nan .map_free = fd_array_map_free, 40504fd61abSAlexei Starovoitov .map_get_next_key = array_map_get_next_key, 4062a36f0b9SWang Nan .map_lookup_elem = fd_array_map_lookup_elem, 4072a36f0b9SWang Nan .map_delete_elem = fd_array_map_delete_elem, 4082a36f0b9SWang Nan .map_fd_get_ptr = prog_fd_array_get_ptr, 4092a36f0b9SWang Nan .map_fd_put_ptr = prog_fd_array_put_ptr, 41004fd61abSAlexei Starovoitov }; 41104fd61abSAlexei Starovoitov 41204fd61abSAlexei Starovoitov static struct bpf_map_type_list prog_array_type __read_mostly = { 41304fd61abSAlexei Starovoitov .ops = &prog_array_ops, 41404fd61abSAlexei Starovoitov .type = BPF_MAP_TYPE_PROG_ARRAY, 41504fd61abSAlexei Starovoitov }; 41604fd61abSAlexei Starovoitov 41704fd61abSAlexei Starovoitov static int __init register_prog_array_map(void) 41804fd61abSAlexei Starovoitov { 41904fd61abSAlexei Starovoitov bpf_register_map_type(&prog_array_type); 42004fd61abSAlexei Starovoitov return 0; 42104fd61abSAlexei Starovoitov } 42204fd61abSAlexei Starovoitov late_initcall(register_prog_array_map); 423ea317b26SKaixu Xia 4243b1efb19SDaniel Borkmann static struct bpf_event_entry *bpf_event_entry_gen(struct file *perf_file, 4253b1efb19SDaniel Borkmann struct file *map_file) 426ea317b26SKaixu Xia { 4273b1efb19SDaniel Borkmann struct bpf_event_entry *ee; 4283b1efb19SDaniel Borkmann 429858d68f1SDaniel Borkmann ee = kzalloc(sizeof(*ee), GFP_ATOMIC); 4303b1efb19SDaniel Borkmann if (ee) { 4313b1efb19SDaniel Borkmann ee->event = perf_file->private_data; 4323b1efb19SDaniel Borkmann ee->perf_file = perf_file; 4333b1efb19SDaniel Borkmann ee->map_file = map_file; 4343b1efb19SDaniel Borkmann } 4353b1efb19SDaniel Borkmann 4363b1efb19SDaniel Borkmann return ee; 4373b1efb19SDaniel Borkmann } 4383b1efb19SDaniel Borkmann 4393b1efb19SDaniel Borkmann static void __bpf_event_entry_free(struct rcu_head *rcu) 4403b1efb19SDaniel Borkmann { 4413b1efb19SDaniel Borkmann struct bpf_event_entry *ee; 4423b1efb19SDaniel Borkmann 4433b1efb19SDaniel Borkmann ee = container_of(rcu, struct bpf_event_entry, rcu); 4443b1efb19SDaniel Borkmann fput(ee->perf_file); 4453b1efb19SDaniel Borkmann kfree(ee); 4463b1efb19SDaniel Borkmann } 4473b1efb19SDaniel Borkmann 4483b1efb19SDaniel Borkmann static void bpf_event_entry_free_rcu(struct bpf_event_entry *ee) 4493b1efb19SDaniel Borkmann { 4503b1efb19SDaniel Borkmann call_rcu(&ee->rcu, __bpf_event_entry_free); 451ea317b26SKaixu Xia } 452ea317b26SKaixu Xia 453d056a788SDaniel Borkmann static void *perf_event_fd_array_get_ptr(struct bpf_map *map, 454d056a788SDaniel Borkmann struct file *map_file, int fd) 455ea317b26SKaixu Xia { 456ea317b26SKaixu Xia const struct perf_event_attr *attr; 4573b1efb19SDaniel Borkmann struct bpf_event_entry *ee; 4583b1efb19SDaniel Borkmann struct perf_event *event; 4593b1efb19SDaniel Borkmann struct file *perf_file; 460ea317b26SKaixu Xia 4613b1efb19SDaniel Borkmann perf_file = perf_event_get(fd); 4623b1efb19SDaniel Borkmann if (IS_ERR(perf_file)) 4633b1efb19SDaniel Borkmann return perf_file; 464e03e7ee3SAlexei Starovoitov 4653b1efb19SDaniel Borkmann event = perf_file->private_data; 4663b1efb19SDaniel Borkmann ee = ERR_PTR(-EINVAL); 467ea317b26SKaixu Xia 468ea317b26SKaixu Xia attr = perf_event_attrs(event); 4693b1efb19SDaniel Borkmann if (IS_ERR(attr) || attr->inherit) 4703b1efb19SDaniel Borkmann goto err_out; 471ea317b26SKaixu Xia 4723b1efb19SDaniel Borkmann switch (attr->type) { 4733b1efb19SDaniel Borkmann case PERF_TYPE_SOFTWARE: 4743b1efb19SDaniel Borkmann if (attr->config != PERF_COUNT_SW_BPF_OUTPUT) 4753b1efb19SDaniel Borkmann goto err_out; 4763b1efb19SDaniel Borkmann /* fall-through */ 4773b1efb19SDaniel Borkmann case PERF_TYPE_RAW: 4783b1efb19SDaniel Borkmann case PERF_TYPE_HARDWARE: 4793b1efb19SDaniel Borkmann ee = bpf_event_entry_gen(perf_file, map_file); 4803b1efb19SDaniel Borkmann if (ee) 4813b1efb19SDaniel Borkmann return ee; 4823b1efb19SDaniel Borkmann ee = ERR_PTR(-ENOMEM); 4833b1efb19SDaniel Borkmann /* fall-through */ 4843b1efb19SDaniel Borkmann default: 4853b1efb19SDaniel Borkmann break; 4863b1efb19SDaniel Borkmann } 48762544ce8SAlexei Starovoitov 4883b1efb19SDaniel Borkmann err_out: 4893b1efb19SDaniel Borkmann fput(perf_file); 4903b1efb19SDaniel Borkmann return ee; 491ea317b26SKaixu Xia } 492ea317b26SKaixu Xia 493ea317b26SKaixu Xia static void perf_event_fd_array_put_ptr(void *ptr) 494ea317b26SKaixu Xia { 4953b1efb19SDaniel Borkmann bpf_event_entry_free_rcu(ptr); 4963b1efb19SDaniel Borkmann } 4973b1efb19SDaniel Borkmann 4983b1efb19SDaniel Borkmann static void perf_event_fd_array_release(struct bpf_map *map, 4993b1efb19SDaniel Borkmann struct file *map_file) 5003b1efb19SDaniel Borkmann { 5013b1efb19SDaniel Borkmann struct bpf_array *array = container_of(map, struct bpf_array, map); 5023b1efb19SDaniel Borkmann struct bpf_event_entry *ee; 5033b1efb19SDaniel Borkmann int i; 5043b1efb19SDaniel Borkmann 5053b1efb19SDaniel Borkmann rcu_read_lock(); 5063b1efb19SDaniel Borkmann for (i = 0; i < array->map.max_entries; i++) { 5073b1efb19SDaniel Borkmann ee = READ_ONCE(array->ptrs[i]); 5083b1efb19SDaniel Borkmann if (ee && ee->map_file == map_file) 5093b1efb19SDaniel Borkmann fd_array_map_delete_elem(map, &i); 5103b1efb19SDaniel Borkmann } 5113b1efb19SDaniel Borkmann rcu_read_unlock(); 512ea317b26SKaixu Xia } 513ea317b26SKaixu Xia 514ea317b26SKaixu Xia static const struct bpf_map_ops perf_event_array_ops = { 515ea317b26SKaixu Xia .map_alloc = fd_array_map_alloc, 5163b1efb19SDaniel Borkmann .map_free = fd_array_map_free, 517ea317b26SKaixu Xia .map_get_next_key = array_map_get_next_key, 518ea317b26SKaixu Xia .map_lookup_elem = fd_array_map_lookup_elem, 519ea317b26SKaixu Xia .map_delete_elem = fd_array_map_delete_elem, 520ea317b26SKaixu Xia .map_fd_get_ptr = perf_event_fd_array_get_ptr, 521ea317b26SKaixu Xia .map_fd_put_ptr = perf_event_fd_array_put_ptr, 5223b1efb19SDaniel Borkmann .map_release = perf_event_fd_array_release, 523ea317b26SKaixu Xia }; 524ea317b26SKaixu Xia 525ea317b26SKaixu Xia static struct bpf_map_type_list perf_event_array_type __read_mostly = { 526ea317b26SKaixu Xia .ops = &perf_event_array_ops, 527ea317b26SKaixu Xia .type = BPF_MAP_TYPE_PERF_EVENT_ARRAY, 528ea317b26SKaixu Xia }; 529ea317b26SKaixu Xia 530ea317b26SKaixu Xia static int __init register_perf_event_array_map(void) 531ea317b26SKaixu Xia { 532ea317b26SKaixu Xia bpf_register_map_type(&perf_event_array_type); 533ea317b26SKaixu Xia return 0; 534ea317b26SKaixu Xia } 535ea317b26SKaixu Xia late_initcall(register_perf_event_array_map); 5364ed8ec52SMartin KaFai Lau 53760d20f91SSargun Dhillon #ifdef CONFIG_CGROUPS 5384ed8ec52SMartin KaFai Lau static void *cgroup_fd_array_get_ptr(struct bpf_map *map, 5394ed8ec52SMartin KaFai Lau struct file *map_file /* not used */, 5404ed8ec52SMartin KaFai Lau int fd) 5414ed8ec52SMartin KaFai Lau { 5424ed8ec52SMartin KaFai Lau return cgroup_get_from_fd(fd); 5434ed8ec52SMartin KaFai Lau } 5444ed8ec52SMartin KaFai Lau 5454ed8ec52SMartin KaFai Lau static void cgroup_fd_array_put_ptr(void *ptr) 5464ed8ec52SMartin KaFai Lau { 5474ed8ec52SMartin KaFai Lau /* cgroup_put free cgrp after a rcu grace period */ 5484ed8ec52SMartin KaFai Lau cgroup_put(ptr); 5494ed8ec52SMartin KaFai Lau } 5504ed8ec52SMartin KaFai Lau 5514ed8ec52SMartin KaFai Lau static void cgroup_fd_array_free(struct bpf_map *map) 5524ed8ec52SMartin KaFai Lau { 5534ed8ec52SMartin KaFai Lau bpf_fd_array_map_clear(map); 5544ed8ec52SMartin KaFai Lau fd_array_map_free(map); 5554ed8ec52SMartin KaFai Lau } 5564ed8ec52SMartin KaFai Lau 5574ed8ec52SMartin KaFai Lau static const struct bpf_map_ops cgroup_array_ops = { 5584ed8ec52SMartin KaFai Lau .map_alloc = fd_array_map_alloc, 5594ed8ec52SMartin KaFai Lau .map_free = cgroup_fd_array_free, 5604ed8ec52SMartin KaFai Lau .map_get_next_key = array_map_get_next_key, 5614ed8ec52SMartin KaFai Lau .map_lookup_elem = fd_array_map_lookup_elem, 5624ed8ec52SMartin KaFai Lau .map_delete_elem = fd_array_map_delete_elem, 5634ed8ec52SMartin KaFai Lau .map_fd_get_ptr = cgroup_fd_array_get_ptr, 5644ed8ec52SMartin KaFai Lau .map_fd_put_ptr = cgroup_fd_array_put_ptr, 5654ed8ec52SMartin KaFai Lau }; 5664ed8ec52SMartin KaFai Lau 5674ed8ec52SMartin KaFai Lau static struct bpf_map_type_list cgroup_array_type __read_mostly = { 5684ed8ec52SMartin KaFai Lau .ops = &cgroup_array_ops, 5694ed8ec52SMartin KaFai Lau .type = BPF_MAP_TYPE_CGROUP_ARRAY, 5704ed8ec52SMartin KaFai Lau }; 5714ed8ec52SMartin KaFai Lau 5724ed8ec52SMartin KaFai Lau static int __init register_cgroup_array_map(void) 5734ed8ec52SMartin KaFai Lau { 5744ed8ec52SMartin KaFai Lau bpf_register_map_type(&cgroup_array_type); 5754ed8ec52SMartin KaFai Lau return 0; 5764ed8ec52SMartin KaFai Lau } 5774ed8ec52SMartin KaFai Lau late_initcall(register_cgroup_array_map); 5784ed8ec52SMartin KaFai Lau #endif 579