mirror of
				https://git.proxmox.com/git/mirror_iproute2
				synced 2025-10-31 23:05:30 +00:00 
			
		
		
		
	 9e71352581
			
		
	
	
		9e71352581
		
	
	
	
	
		
			
			dump more than TCA_ACT_MAX_PRIO actions per batch when the kernel
supports it.
Introduced keyword "since" for time based filtering of actions.
Some example (we have 400 actions bound to 400 filters); at
installation time. Using updated when tc setting the time of
interest to 120 seconds earlier (we see 400 actions):
prompt$ hackedtc actions ls action gact since 120000| grep index | wc -l
400
go get some coffee and wait for > 120 seconds and try again:
prompt$ hackedtc actions ls action gact since 120000 | grep index | wc -l
0
Lets see a filter bound to one of these actions:
....
filter pref 10 u32
filter pref 10 u32 fh 800: ht divisor 1
filter pref 10 u32 fh 800::800 order 2048 key ht 800 bkt 0 flowid 1:10  (rule hit 2 success 1)
  match 7f000002/ffffffff at 12 (success 1 )
    action order 1: gact action pass
     random type none pass val 0
     index 23 ref 2 bind 1 installed 1145 sec used 802 sec
    Action statistics:
    Sent 84 bytes 1 pkt (dropped 0, overlimits 0 requeues 0)
    backlog 0b 0p requeues 0
...
that coffee took long, no? It was good.
Now lets ping -c 1 127.0.0.2, then run the actions again:
prompt$ hackedtc actions ls action gact since 120 | grep index | wc -l
1
More details please:
prompt$ hackedtc -s actions ls action gact since 120000
    action order 0: gact action pass
     random type none pass val 0
     index 23 ref 2 bind 1 installed 1270 sec used 30 sec
    Action statistics:
    Sent 168 bytes 2 pkt (dropped 0, overlimits 0 requeues 0)
    backlog 0b 0p requeues 0
And the filter?
filter pref 10 u32
filter pref 10 u32 fh 800: ht divisor 1
filter pref 10 u32 fh 800::800 order 2048 key ht 800 bkt 0 flowid 1:10  (rule hit 4 success 2)
  match 7f000002/ffffffff at 12 (success 2 )
    action order 1: gact action pass
     random type none pass val 0
     index 23 ref 2 bind 1 installed 1324 sec used 84 sec
    Action statistics:
    Sent 168 bytes 2 pkt (dropped 0, overlimits 0 requeues 0)
    backlog 0b 0p requeues 0
Signed-off-by: Jamal Hadi Salim <jhs@mojatatu.com>
		
	
			
		
			
				
	
	
		
			115 lines
		
	
	
		
			2.6 KiB
		
	
	
	
		
			C
		
	
	
	
	
	
			
		
		
	
	
			115 lines
		
	
	
		
			2.6 KiB
		
	
	
	
		
			C
		
	
	
	
	
	
| /*
 | |
|  * f_cgroup.c		Control Group Classifier
 | |
|  *
 | |
|  *		This program is free software; you can distribute it and/or
 | |
|  *		modify it under the terms of the GNU General Public License
 | |
|  *		as published by the Free Software Foundation; either version
 | |
|  *		2 of the License, or (at your option) any later version.
 | |
|  *
 | |
|  * Authors:	Thomas Graf <tgraf@infradead.org>
 | |
|  *
 | |
|  */
 | |
| 
 | |
| #include <stdio.h>
 | |
| #include <stdlib.h>
 | |
| #include "utils.h"
 | |
| #include "tc_util.h"
 | |
| #include "m_ematch.h"
 | |
| 
 | |
| static void explain(void)
 | |
| {
 | |
| 	fprintf(stderr, "Usage: ... cgroup [ match EMATCH_TREE ]\n");
 | |
| 	fprintf(stderr, "                  [ action ACTION_SPEC ]\n");
 | |
| }
 | |
| 
 | |
| static int cgroup_parse_opt(struct filter_util *qu, char *handle,
 | |
| 			   int argc, char **argv, struct nlmsghdr *n)
 | |
| {
 | |
| 	struct tcmsg *t = NLMSG_DATA(n);
 | |
| 	struct rtattr *tail;
 | |
| 	long h = 0;
 | |
| 
 | |
| 	if (handle) {
 | |
| 		h = strtol(handle, NULL, 0);
 | |
| 		if (h == LONG_MIN || h == LONG_MAX) {
 | |
| 			fprintf(stderr, "Illegal handle \"%s\", must be numeric.\n",
 | |
| 			    handle);
 | |
| 			return -1;
 | |
| 		}
 | |
| 	}
 | |
| 
 | |
| 	t->tcm_handle = h;
 | |
| 
 | |
| 	tail = (struct rtattr *)(((void *)n)+NLMSG_ALIGN(n->nlmsg_len));
 | |
| 	addattr_l(n, MAX_MSG, TCA_OPTIONS, NULL, 0);
 | |
| 
 | |
| 	while (argc > 0) {
 | |
| 		if (matches(*argv, "match") == 0) {
 | |
| 			NEXT_ARG();
 | |
| 			if (parse_ematch(&argc, &argv, TCA_CGROUP_EMATCHES, n)) {
 | |
| 				fprintf(stderr, "Illegal \"ematch\"\n");
 | |
| 				return -1;
 | |
| 			}
 | |
| 			continue;
 | |
| 		} else if (matches(*argv, "action") == 0) {
 | |
| 			NEXT_ARG();
 | |
| 			if (parse_action(&argc, &argv, TCA_CGROUP_ACT, n)) {
 | |
| 				fprintf(stderr, "Illegal \"action\"\n");
 | |
| 				return -1;
 | |
| 			}
 | |
| 			continue;
 | |
| 
 | |
| 		} else if (matches(*argv, "police") == 0) {
 | |
| 			NEXT_ARG();
 | |
| 			if (parse_police(&argc, &argv, TCA_CGROUP_POLICE, n)) {
 | |
| 				fprintf(stderr, "Illegal \"police\"\n");
 | |
| 				return -1;
 | |
| 			}
 | |
| 			continue;
 | |
| 		} else if (strcmp(*argv, "help") == 0) {
 | |
| 			explain();
 | |
| 			return -1;
 | |
| 		} else {
 | |
| 			fprintf(stderr, "What is \"%s\"?\n", *argv);
 | |
| 			explain();
 | |
| 			return -1;
 | |
| 		}
 | |
| 	}
 | |
| 
 | |
| 	tail->rta_len = (((void *)n)+n->nlmsg_len) - (void *)tail;
 | |
| 	return 0;
 | |
| }
 | |
| 
 | |
| static int cgroup_print_opt(struct filter_util *qu, FILE *f,
 | |
| 			   struct rtattr *opt, __u32 handle)
 | |
| {
 | |
| 	struct rtattr *tb[TCA_CGROUP_MAX+1];
 | |
| 
 | |
| 	if (opt == NULL)
 | |
| 		return 0;
 | |
| 
 | |
| 	parse_rtattr_nested(tb, TCA_CGROUP_MAX, opt);
 | |
| 
 | |
| 	if (handle)
 | |
| 		fprintf(f, "handle 0x%x ", handle);
 | |
| 
 | |
| 	if (tb[TCA_CGROUP_EMATCHES])
 | |
| 		print_ematch(f, tb[TCA_CGROUP_EMATCHES]);
 | |
| 
 | |
| 	if (tb[TCA_CGROUP_POLICE]) {
 | |
| 		fprintf(f, "\n");
 | |
| 		tc_print_police(f, tb[TCA_CGROUP_POLICE]);
 | |
| 	}
 | |
| 
 | |
| 	if (tb[TCA_CGROUP_ACT])
 | |
| 		tc_print_action(f, tb[TCA_CGROUP_ACT], 0);
 | |
| 
 | |
| 	return 0;
 | |
| }
 | |
| 
 | |
| struct filter_util cgroup_filter_util = {
 | |
| 	.id = "cgroup",
 | |
| 	.parse_fopt = cgroup_parse_opt,
 | |
| 	.print_fopt = cgroup_print_opt,
 | |
| };
 |