Page MenuHomeFreeBSD

ktls: Post receive errors on partially closed sockets.
ClosedPublic

Authored by jhb on Dec 21 2022, 5:46 PM.
Tags
None
Referenced Files
Unknown Object (File)
Fri, Nov 21, 11:52 PM
Unknown Object (File)
Wed, Nov 12, 11:42 PM
Unknown Object (File)
Nov 9 2025, 7:42 AM
Unknown Object (File)
Nov 2 2025, 8:29 AM
Unknown Object (File)
Nov 2 2025, 8:28 AM
Unknown Object (File)
Nov 2 2025, 8:28 AM
Unknown Object (File)
Oct 29 2025, 3:07 AM
Unknown Object (File)
Oct 12 2025, 2:45 AM
Subscribers

Details

Summary

If an error such as an invalid record or one whose decryption fails is
detected on a socket that has received a RST then ktls_drop() could
ignore the error since INP_DROPPED could already be set. In this case
soreceive_generic hangs since it does not return from a KTLS socket
with pending encrypted data unless there is an error (so_error) (this
behavior is to ensure that soreceive_generic doesn't return a
premature EOF when there is pending data still being decrypted).

Note that this was a bug prior to
69542f26820b7edb8351398b36edda5299c1db56 as tcp_usr_abort would also
have ignored the error in this case.

Sponsored by: Chelsio Communications

Diff Detail

Repository
rG FreeBSD src repository
Lint
Lint Not Applicable
Unit
Tests Not Applicable