Page MenuHomeFreeBSD

ktls: Post receive errors on partially closed sockets.
ClosedPublic

Authored by jhb on Dec 21 2022, 5:46 PM.
Tags
None
Referenced Files
Unknown Object (File)
Sun, Oct 12, 2:45 AM
Unknown Object (File)
Thu, Oct 9, 7:37 PM
Unknown Object (File)
Thu, Oct 9, 7:37 PM
Unknown Object (File)
Thu, Oct 9, 7:36 PM
Unknown Object (File)
Thu, Oct 9, 5:03 PM
Unknown Object (File)
Sun, Sep 28, 12:44 AM
Unknown Object (File)
Sep 18 2025, 2:45 AM
Unknown Object (File)
Sep 14 2025, 9:23 PM
Subscribers

Details

Summary

If an error such as an invalid record or one whose decryption fails is
detected on a socket that has received a RST then ktls_drop() could
ignore the error since INP_DROPPED could already be set. In this case
soreceive_generic hangs since it does not return from a KTLS socket
with pending encrypted data unless there is an error (so_error) (this
behavior is to ensure that soreceive_generic doesn't return a
premature EOF when there is pending data still being decrypted).

Note that this was a bug prior to
69542f26820b7edb8351398b36edda5299c1db56 as tcp_usr_abort would also
have ignored the error in this case.

Sponsored by: Chelsio Communications

Diff Detail

Repository
rG FreeBSD src repository
Lint
Lint Not Applicable
Unit
Tests Not Applicable