Blame SOURCES/0026-dhcp-fix-lease-renewal-rh1503587.patch

c48088
From 2d98ce90188fdf4d21c2b597ba848d249a2d4e09 Mon Sep 17 00:00:00 2001
c48088
From: Francesco Giudici <fgiudici@redhat.com>
c48088
Date: Mon, 15 Jan 2018 12:49:33 +0100
c48088
Subject: [PATCH 1/3] device: always consider both ip families when deciding to
c48088
 fail
c48088
c48088
Example: when dhcpv4 lease renewal fails, if ipv4.may-fail was "yes",
c48088
check also if we have a successful ipv6 conf: if not fail.
c48088
Previously we just ignored the other ip family status.
c48088
c48088
(cherry picked from commit da0fee4d9f16d0de6323ea709e459b79b5158dad)
c48088
---
c48088
 src/devices/nm-device.c | 53 ++++++++++++++++++++++++++++---------------------
c48088
 1 file changed, 30 insertions(+), 23 deletions(-)
c48088
c48088
diff --git a/src/devices/nm-device.c b/src/devices/nm-device.c
c48088
index f8651e2e1..345034185 100644
c48088
--- a/src/devices/nm-device.c
c48088
+++ b/src/devices/nm-device.c
c48088
@@ -3774,21 +3774,24 @@ get_ip_config_may_fail (NMDevice *self, int addr_family)
c48088
 /*
c48088
  * check_ip_state
c48088
  *
c48088
- * Transition the device from IP_CONFIG to the next state according to the
c48088
- * outcome of IPv4 and IPv6 configuration. @may_fail indicates that we are
c48088
- * called just after the initial configuration and thus IPv4/IPv6 are allowed to
c48088
- * fail if the ipvx.may-fail properties say so, because the IP methods couldn't
c48088
- * even be started.
c48088
+ * When @full_state_update is TRUE, transition the device from IP_CONFIG to the
c48088
+ * next state according to the outcome of IPv4 and IPv6 configuration. @may_fail
c48088
+ * indicates that we are called just after the initial configuration and thus
c48088
+ * IPv4/IPv6 are allowed to fail if the ipvx.may-fail properties say so, because
c48088
+ * the IP methods couldn't even be started.
c48088
+ * If @full_state_update is FALSE, just check if the connection should be failed
c48088
+ * due to the state of both ip families and the ipvx.may-fail settings.
c48088
  */
c48088
 static void
c48088
-check_ip_state (NMDevice *self, gboolean may_fail)
c48088
+check_ip_state (NMDevice *self, gboolean may_fail, gboolean full_state_update)
c48088
 {
c48088
 	NMDevicePrivate *priv = NM_DEVICE_GET_PRIVATE (self);
c48088
 	gboolean ip4_disabled = FALSE, ip6_ignore = FALSE;
c48088
 	NMSettingIPConfig *s_ip4, *s_ip6;
c48088
 	NMDeviceState state;
c48088
 
c48088
-	if (nm_device_get_state (self) != NM_DEVICE_STATE_IP_CONFIG)
c48088
+	if (   full_state_update
c48088
+	    && nm_device_get_state (self) != NM_DEVICE_STATE_IP_CONFIG)
c48088
 		return;
c48088
 
c48088
 	/* Don't progress into IP_CHECK or SECONDARIES if we're waiting for the
c48088
@@ -3835,9 +3838,12 @@ check_ip_state (NMDevice *self, gboolean may_fail)
c48088
 			state = NM_DEVICE_STATE_FAILED;
c48088
 		}
c48088
 
c48088
-		nm_device_state_changed (self,
c48088
-		                         state,
c48088
-		                         NM_DEVICE_STATE_REASON_IP_CONFIG_UNAVAILABLE);
c48088
+		if (   full_state_update
c48088
+		    || state == NM_DEVICE_STATE_FAILED) {
c48088
+			nm_device_state_changed (self,
c48088
+			                         state,
c48088
+			                         NM_DEVICE_STATE_REASON_IP_CONFIG_UNAVAILABLE);
c48088
+		}
c48088
 		return;
c48088
 	}
c48088
 
c48088
@@ -3850,7 +3856,8 @@ check_ip_state (NMDevice *self, gboolean may_fail)
c48088
 	/* If at least a method has completed, proceed with activation */
c48088
 	if (   (priv->ip4_state == IP_DONE && !ip4_disabled)
c48088
 	    || (priv->ip6_state == IP_DONE && !ip6_ignore)) {
c48088
-		nm_device_state_changed (self, NM_DEVICE_STATE_IP_CHECK, NM_DEVICE_STATE_REASON_NONE);
c48088
+		if (full_state_update)
c48088
+			nm_device_state_changed (self, NM_DEVICE_STATE_IP_CHECK, NM_DEVICE_STATE_REASON_NONE);
c48088
 		return;
c48088
 	}
c48088
 }
c48088
@@ -3892,7 +3899,7 @@ nm_device_slave_notify_enslave (NMDevice *self, gboolean success)
c48088
 
c48088
 	if (activating) {
c48088
 		if (success)
c48088
-			check_ip_state (self, FALSE);
c48088
+			check_ip_state (self, FALSE, TRUE);
c48088
 		else
c48088
 			nm_device_queue_state (self, NM_DEVICE_STATE_FAILED, NM_DEVICE_STATE_REASON_UNKNOWN);
c48088
 	} else
c48088
@@ -5268,7 +5275,7 @@ nm_device_ip_method_failed (NMDevice *self,
c48088
 	_set_ip_state (self, addr_family, IP_FAIL);
c48088
 
c48088
 	if (get_ip_config_may_fail (self, addr_family))
c48088
-		check_ip_state (self, FALSE);
c48088
+		check_ip_state (self, FALSE, (nm_device_get_state (self) == NM_DEVICE_STATE_IP_CONFIG));
c48088
 	else
c48088
 		nm_device_state_changed (self, NM_DEVICE_STATE_FAILED, reason);
c48088
 }
c48088
@@ -7997,7 +8004,7 @@ nm_device_activate_stage3_ip4_start (NMDevice *self)
c48088
 
c48088
 	if (nm_device_sys_iface_state_is_external (self)) {
c48088
 		_set_ip_state (self, AF_INET, IP_DONE);
c48088
-		check_ip_state (self, FALSE);
c48088
+		check_ip_state (self, FALSE, TRUE);
c48088
 		return TRUE;
c48088
 	}
c48088
 
c48088
@@ -8010,7 +8017,7 @@ nm_device_activate_stage3_ip4_start (NMDevice *self)
c48088
 		g_object_unref (ip4_config);
c48088
 	} else if (ret == NM_ACT_STAGE_RETURN_IP_DONE) {
c48088
 		_set_ip_state (self, AF_INET, IP_DONE);
c48088
-		check_ip_state (self, FALSE);
c48088
+		check_ip_state (self, FALSE, TRUE);
c48088
 	} else if (ret == NM_ACT_STAGE_RETURN_FAILURE) {
c48088
 		nm_device_state_changed (self, NM_DEVICE_STATE_FAILED, failure_reason);
c48088
 		return FALSE;
c48088
@@ -8044,7 +8051,7 @@ nm_device_activate_stage3_ip6_start (NMDevice *self)
c48088
 
c48088
 	if (nm_device_sys_iface_state_is_external (self)) {
c48088
 		_set_ip_state (self, AF_INET6, IP_DONE);
c48088
-		check_ip_state (self, FALSE);
c48088
+		check_ip_state (self, FALSE, TRUE);
c48088
 		return TRUE;
c48088
 	}
c48088
 
c48088
@@ -8061,7 +8068,7 @@ nm_device_activate_stage3_ip6_start (NMDevice *self)
c48088
 		nm_device_activate_schedule_ip6_config_result (self);
c48088
 	} else if (ret == NM_ACT_STAGE_RETURN_IP_DONE) {
c48088
 		_set_ip_state (self, AF_INET6, IP_DONE);
c48088
-		check_ip_state (self, FALSE);
c48088
+		check_ip_state (self, FALSE, TRUE);
c48088
 	} else if (ret == NM_ACT_STAGE_RETURN_FAILURE) {
c48088
 		nm_device_state_changed (self, NM_DEVICE_STATE_FAILED, failure_reason);
c48088
 		return FALSE;
c48088
@@ -8111,7 +8118,7 @@ activate_stage3_ip_config_start (NMDevice *self)
c48088
 	/* Proxy */
c48088
 	nm_device_set_proxy_config (self, NULL);
c48088
 
c48088
-	check_ip_state (self, TRUE);
c48088
+	check_ip_state (self, TRUE, TRUE);
c48088
 }
c48088
 
c48088
 static void
c48088
@@ -8250,7 +8257,7 @@ activate_stage4_ip4_config_timeout (NMDevice *self)
c48088
 
c48088
 	_set_ip_state (self, AF_INET, IP_FAIL);
c48088
 
c48088
-	check_ip_state (self, FALSE);
c48088
+	check_ip_state (self, FALSE, TRUE);
c48088
 }
c48088
 
c48088
 /*
c48088
@@ -8306,7 +8313,7 @@ activate_stage4_ip6_config_timeout (NMDevice *self)
c48088
 
c48088
 	_set_ip_state (self, AF_INET6, IP_FAIL);
c48088
 
c48088
-	check_ip_state (self, FALSE);
c48088
+	check_ip_state (self, FALSE, TRUE);
c48088
 }
c48088
 
c48088
 /*
c48088
@@ -8554,7 +8561,7 @@ activate_stage5_ip4_config_result (NMDevice *self)
c48088
 
c48088
 	/* Enter the IP_CHECK state if this is the first method to complete */
c48088
 	_set_ip_state (self, AF_INET, IP_DONE);
c48088
-	check_ip_state (self, FALSE);
c48088
+	check_ip_state (self, FALSE, TRUE);
c48088
 }
c48088
 
c48088
 void
c48088
@@ -8709,7 +8716,7 @@ activate_stage5_ip6_config_commit (NMDevice *self)
c48088
 				_LOGD (LOGD_DEVICE | LOGD_IP6, "IPv6 DAD: awaiting termination");
c48088
 			} else {
c48088
 				_set_ip_state (self, AF_INET6, IP_DONE);
c48088
-				check_ip_state (self, FALSE);
c48088
+				check_ip_state (self, FALSE, TRUE);
c48088
 			}
c48088
 		}
c48088
 	} else {
c48088
@@ -11195,7 +11202,7 @@ queued_ip6_config_change (gpointer user_data)
c48088
 			_LOGD (LOGD_DEVICE | LOGD_IP6, "IPv6 DAD terminated");
c48088
 			g_clear_object (&priv->dad6_ip6_config);
c48088
 			_set_ip_state (self, AF_INET6, IP_DONE);
c48088
-			check_ip_state (self, FALSE);
c48088
+			check_ip_state (self, FALSE, TRUE);
c48088
 			if (priv->rt6_temporary_not_available)
c48088
 				nm_device_activate_schedule_ip6_config_result (self);
c48088
 		}
c48088
-- 
c48088
2.14.3
c48088
c48088
c48088
From 56353bfb82e6d744b64f117f346b25b18526bf2d Mon Sep 17 00:00:00 2001
c48088
From: Francesco Giudici <fgiudici@redhat.com>
c48088
Date: Mon, 15 Jan 2018 12:17:54 +0100
c48088
Subject: [PATCH 2/3] device: never stop trying renewing the lease
c48088
c48088
Always reschedule a lease renewal attempt: just clear the scheduled
c48088
renewal if the connection is really deactivated.
c48088
c48088
(cherry picked from commit 1a20ff86d585b826d1769d0aa0adeca3aa1a183a)
c48088
---
c48088
 src/devices/nm-device.c | 36 ++++++++++++++++++++++++++++++++----
c48088
 1 file changed, 32 insertions(+), 4 deletions(-)
c48088
c48088
diff --git a/src/devices/nm-device.c b/src/devices/nm-device.c
c48088
index 345034185..f6d3f4c04 100644
c48088
--- a/src/devices/nm-device.c
c48088
+++ b/src/devices/nm-device.c
c48088
@@ -5900,15 +5900,23 @@ dhcp4_fail (NMDevice *self, gboolean timeout)
c48088
 	    && (timeout || (priv->ip4_state == IP_CONF))
c48088
 	    && !priv->dhcp4.was_active)
c48088
 		nm_device_activate_schedule_ip4_config_timeout (self);
c48088
-	else if (priv->ip4_state == IP_DONE || priv->dhcp4.was_active) {
c48088
+	else if (   priv->dhcp4.num_tries_left < DHCP_NUM_TRIES_MAX
c48088
+	         || priv->ip4_state == IP_DONE
c48088
+	         || priv->dhcp4.was_active) {
c48088
 		/* Don't fail immediately when the lease expires but try to
c48088
 		 * restart DHCP for a predefined number of times.
c48088
 		 */
c48088
 		if (priv->dhcp4.num_tries_left) {
c48088
 			priv->dhcp4.num_tries_left--;
c48088
 			dhcp_schedule_restart (self, AF_INET, "lease expired");
c48088
-		} else
c48088
+		} else {
c48088
 			nm_device_ip_method_failed (self, AF_INET, NM_DEVICE_STATE_REASON_IP_CONFIG_EXPIRED);
c48088
+			/* We failed the ipv4 method but schedule again the retries if the ipv6 method is
c48088
+			 * configured, keeping the connection up.
c48088
+			 */
c48088
+			if (nm_device_get_state (self) != NM_DEVICE_STATE_FAILED)
c48088
+				dhcp_schedule_restart (self, AF_INET, "renewal failed");
c48088
+		}
c48088
 	} else
c48088
 		g_warn_if_reached ();
c48088
 }
c48088
@@ -5950,6 +5958,12 @@ dhcp4_state_changed (NMDhcpClient *client,
c48088
 			break;
c48088
 		}
c48088
 
c48088
+		/* After some failures, we have been able to renew the lease:
c48088
+		 * update the ip state
c48088
+		 */
c48088
+		if (priv->ip4_state == IP_FAIL)
c48088
+			_set_ip_state (self, AF_INET, IP_CONF);
c48088
+
c48088
 		g_free (priv->dhcp4.pac_url);
c48088
 		priv->dhcp4.pac_url = g_strdup (g_hash_table_lookup (options, "wpad"));
c48088
 		nm_device_set_proxy_config (self, priv->dhcp4.pac_url);
c48088
@@ -6640,15 +6654,23 @@ dhcp6_fail (NMDevice *self, gboolean timeout)
c48088
 		    && (timeout || (priv->ip6_state == IP_CONF))
c48088
 		    && !priv->dhcp6.was_active)
c48088
 			nm_device_activate_schedule_ip6_config_timeout (self);
c48088
-		else if (priv->ip6_state == IP_DONE || priv->dhcp6.was_active) {
c48088
+		else if (   priv->dhcp6.num_tries_left < DHCP_NUM_TRIES_MAX
c48088
+		         || priv->ip6_state == IP_DONE
c48088
+		         || priv->dhcp6.was_active) {
c48088
 			/* Don't fail immediately when the lease expires but try to
c48088
 			 * restart DHCP for a predefined number of times.
c48088
 			 */
c48088
 			if (priv->dhcp6.num_tries_left) {
c48088
 				priv->dhcp6.num_tries_left--;
c48088
 				dhcp_schedule_restart (self, AF_INET6, "lease expired");
c48088
-			} else
c48088
+			} else {
c48088
 				nm_device_ip_method_failed (self, AF_INET6, NM_DEVICE_STATE_REASON_IP_CONFIG_EXPIRED);
c48088
+				/* We failed the ipv6 method but schedule again the retries if the ipv4 method is
c48088
+				 * configured, keeping the connection up.
c48088
+				 */
c48088
+				if (nm_device_get_state (self) != NM_DEVICE_STATE_FAILED)
c48088
+					dhcp_schedule_restart (self, AF_INET6, "renewal failed");
c48088
+			}
c48088
 		} else
c48088
 			g_warn_if_reached ();
c48088
 	} else {
c48088
@@ -6715,6 +6737,12 @@ dhcp6_state_changed (NMDhcpClient *client,
c48088
 			}
c48088
 		}
c48088
 
c48088
+		/* After long time we have been able to renew the lease:
c48088
+		 * update the ip state
c48088
+		 */
c48088
+		if (priv->ip6_state == IP_FAIL)
c48088
+			_set_ip_state (self, AF_INET6, IP_CONF);
c48088
+
c48088
 		priv->dhcp6.num_tries_left = DHCP_NUM_TRIES_MAX;
c48088
 
c48088
 		if (priv->ip6_state == IP_CONF) {
c48088
-- 
c48088
2.14.3
c48088
c48088
c48088
From b6d2ad3312eea21effbd8d6d5fe32056ccf89cb8 Mon Sep 17 00:00:00 2001
c48088
From: Francesco Giudici <fgiudici@redhat.com>
c48088
Date: Thu, 8 Feb 2018 18:28:10 +0100
c48088
Subject: [PATCH 3/3] device: enable DHCPv6 retries on lease renewal failure
c48088
c48088
https://bugzilla.gnome.org/show_bug.cgi?id=792745
c48088
(cherry picked from commit 1289450146e2b212cabca500cb8009f910651661)
c48088
---
c48088
 src/devices/nm-device.c | 4 +++-
c48088
 1 file changed, 3 insertions(+), 1 deletion(-)
c48088
c48088
diff --git a/src/devices/nm-device.c b/src/devices/nm-device.c
c48088
index f6d3f4c04..eb91dc257 100644
c48088
--- a/src/devices/nm-device.c
c48088
+++ b/src/devices/nm-device.c
c48088
@@ -6633,13 +6633,15 @@ static void
c48088
 dhcp6_fail (NMDevice *self, gboolean timeout)
c48088
 {
c48088
 	NMDevicePrivate *priv = NM_DEVICE_GET_PRIVATE (self);
c48088
+	gboolean is_dhcp_managed;
c48088
 
c48088
 	_LOGD (LOGD_DHCP6, "DHCPv6 failed: timeout %d, num tries left %u",
c48088
            timeout, priv->dhcp6.num_tries_left);
c48088
 
c48088
+	is_dhcp_managed = (priv->dhcp6.mode == NM_NDISC_DHCP_LEVEL_MANAGED);
c48088
 	dhcp6_cleanup (self, CLEANUP_TYPE_DECONFIGURE, FALSE);
c48088
 
c48088
-	if (priv->dhcp6.mode == NM_NDISC_DHCP_LEVEL_MANAGED) {
c48088
+	if (is_dhcp_managed || priv->dhcp6.num_tries_left < DHCP_NUM_TRIES_MAX) {
c48088
 		/* Don't fail if there are static addresses configured on
c48088
 		 * the device, instead retry after some time.
c48088
 		 */
c48088
-- 
c48088
2.14.3
c48088