Received: by 2002:a05:6902:102b:0:0:0:0 with SMTP id x11csp3017610ybt; Mon, 29 Jun 2020 13:02:14 -0700 (PDT) X-Google-Smtp-Source: ABdhPJwVeWCQHKH+vR+ghOYgYgntGWxvoTgPua3w9C9lDt49z43zww0f1rrhimp61fTguniDobYu X-Received: by 2002:a17:906:3282:: with SMTP id 2mr14854278ejw.93.1593460934351; Mon, 29 Jun 2020 13:02:14 -0700 (PDT) ARC-Seal: i=1; a=rsa-sha256; t=1593460934; cv=none; d=google.com; s=arc-20160816; b=ODJij+FUFOXgIud8wMi1uQc4OJfjzh6psD6IRos7FEbN8UU1PxoU6ZiZNi6nyIkgw+ pCC/xKZQp3rm//659Rl3B9kYuoV/Wfn+vyOliV80JQIbZtasU0eDmNuqLFfOCM+pH1EP 12DACMQXjcPwPXTvIxSec4NYUxrNrtLoXzRV4XM/LSRrGj05hEwG2qnkuYFRaRpIm/KY E1UFf6nX4wJ/Ok+debY1vqRpfJtI9DKDMh8jDJKIM1VBb8HpAIWeQC1BjTPYCnh16t3r Gayk4dCG0u9oehyHqmiiuGsB9VKozVTMab774Oac52BhhHWkEhY6aOffH71ycSu99UKF rhag== ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=google.com; s=arc-20160816; h=list-id:precedence:sender:content-transfer-encoding:mime-version :references:in-reply-to:message-id:date:subject:cc:to:from :dkim-signature; bh=5frRvu8zWSOibt0TvNRiRoaifbXRwuUcE7csrusMKl0=; b=ASYdskT0BOZWFNtUtCUo0DvNzjp2LRpgxbRF7HkE/0GF9gEkazjxIrZ2lrlEM3RcFt h/glANCcl/B5o916sbGYkPe7LM/FxQWghrISFk8ql2fFoX5rJRFpGpwAwvoH6NaN3E+u CXuKc4B9xbUhIhFtMekbWDgdu19cC1XHxEMoDQNn1Ds4hSBVhd0dCjNGrUjxByxYk2T8 061kHqvzyUfJvbtpQMAmdg4eRjKL3SCVXjxIX2Rvwo+6tubA+LQGzoHp8ocwELL/bHR0 JtQ85qBTSfRxB6pOoiCnPpg7ok8UtbTqK4J4ip9y0AWhvYgG7+SQnd9AGfpGmxU4f9dO KR9A== ARC-Authentication-Results: i=1; mx.google.com; dkim=pass header.i=@kernel.org header.s=default header.b=o07IJMHp; spf=pass (google.com: domain of linux-kernel-owner@vger.kernel.org designates 23.128.96.18 as permitted sender) smtp.mailfrom=linux-kernel-owner@vger.kernel.org; dmarc=pass (p=NONE sp=NONE dis=NONE) header.from=kernel.org Return-Path: Received: from vger.kernel.org (vger.kernel.org. [23.128.96.18]) by mx.google.com with ESMTP id c102si341977edf.216.2020.06.29.13.01.51; Mon, 29 Jun 2020 13:02:14 -0700 (PDT) Received-SPF: pass (google.com: domain of linux-kernel-owner@vger.kernel.org designates 23.128.96.18 as permitted sender) client-ip=23.128.96.18; Authentication-Results: mx.google.com; dkim=pass header.i=@kernel.org header.s=default header.b=o07IJMHp; spf=pass (google.com: domain of linux-kernel-owner@vger.kernel.org designates 23.128.96.18 as permitted sender) smtp.mailfrom=linux-kernel-owner@vger.kernel.org; dmarc=pass (p=NONE sp=NONE dis=NONE) header.from=kernel.org Received: (majordomo@vger.kernel.org) by vger.kernel.org via listexpand id S2388595AbgF2UAU (ORCPT + 99 others); Mon, 29 Jun 2020 16:00:20 -0400 Received: from mail.kernel.org ([198.145.29.99]:47666 "EHLO mail.kernel.org" rhost-flags-OK-OK-OK-OK) by vger.kernel.org with ESMTP id S2387569AbgF2TkQ (ORCPT ); Mon, 29 Jun 2020 15:40:16 -0400 Received: from sasha-vm.mshome.net (c-73-47-72-35.hsd1.nh.comcast.net [73.47.72.35]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by mail.kernel.org (Postfix) with ESMTPSA id 9BDDC24826; Mon, 29 Jun 2020 15:25:42 +0000 (UTC) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/simple; d=kernel.org; s=default; t=1593444343; bh=8e3WqKkPIOzUMoX2gi82UQ6VHHt5uYAGlN6JtS1WMTQ=; h=From:To:Cc:Subject:Date:In-Reply-To:References:From; b=o07IJMHpjijrxKNNOLYjYPTp6+wVanGDjOAXS//f1pm/cWgm842WdLuyYT37DJZx3 mS4QrTovyTUsvenAMq0YYa99nwhwobrjwX4lf2MM7c2WUiW1GK2XF1M4zGZS+/mO/w iyLr0TV+u7xFMAClqPXEQEPmRYfUY1H0GU1IPcTY= From: Sasha Levin To: linux-kernel@vger.kernel.org, stable@vger.kernel.org Cc: Denis Kirjanov , Denis Kirjanov , Neal Cardwell , Eric Dumazet , "David S . Miller" , Greg Kroah-Hartman Subject: [PATCH 5.4 018/178] tcp: don't ignore ECN CWR on pure ACK Date: Mon, 29 Jun 2020 11:22:43 -0400 Message-Id: <20200629152523.2494198-19-sashal@kernel.org> X-Mailer: git-send-email 2.25.1 In-Reply-To: <20200629152523.2494198-1-sashal@kernel.org> References: <20200629152523.2494198-1-sashal@kernel.org> MIME-Version: 1.0 X-KernelTest-Patch: http://kernel.org/pub/linux/kernel/v5.x/stable-review/patch-5.4.50-rc1.gz X-KernelTest-Tree: git://git.kernel.org/pub/scm/linux/kernel/git/stable/linux-stable-rc.git X-KernelTest-Branch: linux-5.4.y X-KernelTest-Patches: git://git.kernel.org/pub/scm/linux/kernel/git/stable/stable-queue.git X-KernelTest-Version: 5.4.50-rc1 X-KernelTest-Deadline: 2020-07-01T15:25+00:00 X-stable: review X-Patchwork-Hint: Ignore Content-Transfer-Encoding: 8bit Sender: linux-kernel-owner@vger.kernel.org Precedence: bulk List-ID: X-Mailing-List: linux-kernel@vger.kernel.org From: Denis Kirjanov [ Upstream commit 2570284060b48f3f79d8f1a2698792f36c385e9a ] there is a problem with the CWR flag set in an incoming ACK segment and it leads to the situation when the ECE flag is latched forever the following packetdrill script shows what happens: // Stack receives incoming segments with CE set +0.1 <[ect0] . 11001:12001(1000) ack 1001 win 65535 +0.0 <[ce] . 12001:13001(1000) ack 1001 win 65535 +0.0 <[ect0] P. 13001:14001(1000) ack 1001 win 65535 // Stack repsonds with ECN ECHO +0.0 >[noecn] . 1001:1001(0) ack 12001 +0.0 >[noecn] E. 1001:1001(0) ack 13001 +0.0 >[noecn] E. 1001:1001(0) ack 14001 // Write a packet +0.1 write(3, ..., 1000) = 1000 +0.0 >[ect0] PE. 1001:2001(1000) ack 14001 // Pure ACK received +0.01 <[noecn] W. 14001:14001(0) ack 2001 win 65535 // Since CWR was sent, this packet should NOT have ECE set +0.1 write(3, ..., 1000) = 1000 +0.0 >[ect0] P. 2001:3001(1000) ack 14001 // but Linux will still keep ECE latched here, with packetdrill // flagging a missing ECE flag, expecting // >[ect0] PE. 2001:3001(1000) ack 14001 // in the script In the situation above we will continue to send ECN ECHO packets and trigger the peer to reduce the congestion window. To avoid that we can check CWR on pure ACKs received. v3: - Add a sequence check to avoid sending an ACK to an ACK v2: - Adjusted the comment - move CWR check before checking for unacknowledged packets Signed-off-by: Denis Kirjanov Acked-by: Neal Cardwell Signed-off-by: Eric Dumazet Signed-off-by: David S. Miller Signed-off-by: Greg Kroah-Hartman --- net/ipv4/tcp_input.c | 14 +++++++++++--- 1 file changed, 11 insertions(+), 3 deletions(-) diff --git a/net/ipv4/tcp_input.c b/net/ipv4/tcp_input.c index 677facbeed26a..cc8411c98f28a 100644 --- a/net/ipv4/tcp_input.c +++ b/net/ipv4/tcp_input.c @@ -260,7 +260,8 @@ static void tcp_ecn_accept_cwr(struct sock *sk, const struct sk_buff *skb) * cwnd may be very low (even just 1 packet), so we should ACK * immediately. */ - inet_csk(sk)->icsk_ack.pending |= ICSK_ACK_NOW; + if (TCP_SKB_CB(skb)->seq != TCP_SKB_CB(skb)->end_seq) + inet_csk(sk)->icsk_ack.pending |= ICSK_ACK_NOW; } } @@ -3682,6 +3683,15 @@ static int tcp_ack(struct sock *sk, const struct sk_buff *skb, int flag) tcp_in_ack_event(sk, ack_ev_flags); } + /* This is a deviation from RFC3168 since it states that: + * "When the TCP data sender is ready to set the CWR bit after reducing + * the congestion window, it SHOULD set the CWR bit only on the first + * new data packet that it transmits." + * We accept CWR on pure ACKs to be more robust + * with widely-deployed TCP implementations that do this. + */ + tcp_ecn_accept_cwr(sk, skb); + /* We passed data and got it acked, remove any soft error * log. Something worked... */ @@ -4771,8 +4781,6 @@ static void tcp_data_queue(struct sock *sk, struct sk_buff *skb) skb_dst_drop(skb); __skb_pull(skb, tcp_hdr(skb)->doff * 4); - tcp_ecn_accept_cwr(sk, skb); - tp->rx_opt.dsack = 0; /* Queue data for delivery to the user. -- 2.25.1