The branch stable/14 has been updated by tuexen:

URL: 
https://cgit.FreeBSD.org/src/commit/?id=5cdd4a1bf2cc94553f397b590c743f94e7bd589a

commit 5cdd4a1bf2cc94553f397b590c743f94e7bd589a
Author:     Michael Tuexen <tue...@freebsd.org>
AuthorDate: 2025-08-12 14:08:26 +0000
Commit:     Michael Tuexen <tue...@freebsd.org>
CommitDate: 2025-09-05 19:01:26 +0000

    tcp: retire rstreason
    
    With the latest changes, this variable and parameter for
    tcp_dropwithreset() is not needed anymore.
    It also makes it harder to introduce the usage of multiple counters
    for TCP again, which might open side channel attacks.
    No funtional changes intended.
    
    Reviewed by:            rrs
    Sponsored by:           Netflix, Inc.
    Differential Revision:  https://reviews.freebsd.org/D51872
    
    (cherry picked from commit 463b5aed0d62f094addb700604725767a8904901)
---
 sys/netinet/tcp_input.c                  | 30 +++++++-----------------------
 sys/netinet/tcp_stacks/bbr.c             | 26 +++++++++++++-------------
 sys/netinet/tcp_stacks/rack.c            | 26 +++++++++++++-------------
 sys/netinet/tcp_stacks/rack_bbr_common.c | 10 +++++-----
 sys/netinet/tcp_stacks/rack_bbr_common.h |  4 ++--
 sys/netinet/tcp_var.h                    |  3 +--
 6 files changed, 41 insertions(+), 58 deletions(-)

diff --git a/sys/netinet/tcp_input.c b/sys/netinet/tcp_input.c
index c72c315271fb..d1d0cc7d70e8 100644
--- a/sys/netinet/tcp_input.c
+++ b/sys/netinet/tcp_input.c
@@ -626,7 +626,6 @@ tcp_input_with_port(struct mbuf **mp, int *offp, int proto, 
uint16_t port)
        int tlen = 0, off;
        int drop_hdrlen;
        int thflags;
-       int rstreason = 0;      /* For badport_bandlim accounting purposes */
        int lookupflag;
        uint8_t iptos;
        struct m_tag *fwd_tag = NULL;
@@ -938,7 +937,6 @@ findpcb:
                        }
                        closed_port = true;
                }
-               rstreason = BANDLIM_TCP_RST;
                goto dropwithreset;
        }
        INP_LOCK_ASSERT(inp);
@@ -1029,13 +1027,11 @@ findpcb:
                 * down or it is in the CLOSED state.  Either way we drop the
                 * segment and send an appropriate response.
                 */
-               rstreason = BANDLIM_TCP_RST;
                closed_port = true;
                goto dropwithreset;
        }
 
        if ((tp->t_port != port) && (tp->t_state > TCPS_LISTEN)) {
-               rstreason = BANDLIM_TCP_RST;
                closed_port = true;
                goto dropwithreset;
        }
@@ -1151,7 +1147,6 @@ tfo_socket_result:
                                            V_tcp_sc_rst_sock_fail ?
                                            "sending RST" : "try again");
                                if (V_tcp_sc_rst_sock_fail) {
-                                       rstreason = BANDLIM_TCP_RST;
                                        goto dropwithreset;
                                } else
                                        goto dropunlock;
@@ -1218,7 +1213,6 @@ tfo_socket_result:
                                    s, __func__);
                        syncache_badack(&inc, port);    /* XXX: Not needed! */
                        TCPSTAT_INC(tcps_badsyn);
-                       rstreason = BANDLIM_TCP_RST;
                        goto dropwithreset;
                }
                /*
@@ -1294,7 +1288,6 @@ tfo_socket_result:
                                        "Connection attempt to deprecated "
                                        "IPv6 address rejected\n",
                                        s, __func__);
-                               rstreason = BANDLIM_TCP_RST;
                                goto dropwithreset;
                        }
                }
@@ -1424,8 +1417,7 @@ dropwithreset:
         * When blackholing do not respond with a RST but
         * completely ignore the segment and drop it.
         */
-       if (rstreason == BANDLIM_TCP_RST &&
-           ((!closed_port && V_blackhole == 3) ||
+       if (((!closed_port && V_blackhole == 3) ||
             (closed_port &&
              ((V_blackhole == 1 && (thflags & TH_SYN)) || V_blackhole > 1))) &&
            (V_blackhole_local || (
@@ -1440,7 +1432,7 @@ dropwithreset:
            )))
                goto dropunlock;
        TCP_PROBE5(receive, NULL, tp, m, tp, th);
-       tcp_dropwithreset(m, th, tp, tlen, rstreason);
+       tcp_dropwithreset(m, th, tp, tlen);
        m = NULL;       /* mbuf chain got consumed. */
 
 dropunlock:
@@ -1549,7 +1541,7 @@ tcp_do_segment(struct tcpcb *tp, struct mbuf *m, struct 
tcphdr *th,
        uint16_t thflags;
        int acked, ourfinisacked, needoutput = 0;
        sackstatus_t sack_changed;
-       int rstreason, todrop, win, incforsyn = 0;
+       int todrop, win, incforsyn = 0;
        uint32_t tiwin;
        uint16_t nsegs;
        char *s;
@@ -1598,7 +1590,6 @@ tcp_do_segment(struct tcpcb *tp, struct mbuf *m, struct 
tcphdr *th,
         */
        if ((tp->t_state == TCPS_SYN_SENT) && (thflags & TH_ACK) &&
            (SEQ_LEQ(th->th_ack, tp->iss) || SEQ_GT(th->th_ack, tp->snd_max))) {
-               rstreason = BANDLIM_TCP_RST;
                tcp_log_end_status(tp, TCP_EI_STATUS_RST_IN_FRONT);
                goto dropwithreset;
        }
@@ -1997,7 +1988,6 @@ tcp_do_segment(struct tcpcb *tp, struct mbuf *m, struct 
tcphdr *th,
                if ((thflags & TH_ACK) &&
                    (SEQ_LEQ(th->th_ack, tp->snd_una) ||
                     SEQ_GT(th->th_ack, tp->snd_max))) {
-                               rstreason = BANDLIM_TCP_RST;
                                tcp_log_end_status(tp, 
TCP_EI_STATUS_RST_IN_FRONT);
                                goto dropwithreset;
                }
@@ -2010,7 +2000,6 @@ tcp_do_segment(struct tcpcb *tp, struct mbuf *m, struct 
tcphdr *th,
                         * FIN, or a RST.
                         */
                        if ((thflags & (TH_SYN|TH_ACK)) == (TH_SYN|TH_ACK)) {
-                               rstreason = BANDLIM_TCP_RST;
                                tcp_log_end_status(tp, 
TCP_EI_STATUS_RST_IN_FRONT);
                                goto dropwithreset;
                        } else if (thflags & TH_SYN) {
@@ -2277,7 +2266,6 @@ tcp_do_segment(struct tcpcb *tp, struct mbuf *m, struct 
tcphdr *th,
         * for the "LAND" DoS attack.
         */
        if (tp->t_state == TCPS_SYN_RECEIVED && SEQ_LT(th->th_seq, tp->irs)) {
-               rstreason = BANDLIM_TCP_RST;
                tcp_log_end_status(tp, TCP_EI_STATUS_RST_IN_FRONT);
                goto dropwithreset;
        }
@@ -2359,7 +2347,6 @@ tcp_do_segment(struct tcpcb *tp, struct mbuf *m, struct 
tcphdr *th,
                tcp_log_end_status(tp, TCP_EI_STATUS_SERVER_RST);
                tp = tcp_close(tp);
                TCPSTAT_INC(tcps_rcvafterclose);
-               rstreason = BANDLIM_TCP_RST;
                goto dropwithreset;
        }
 
@@ -3434,7 +3421,6 @@ dropafterack:
        if (tp->t_state == TCPS_SYN_RECEIVED && (thflags & TH_ACK) &&
            (SEQ_GT(tp->snd_una, th->th_ack) ||
             SEQ_GT(th->th_ack, tp->snd_max)) ) {
-               rstreason = BANDLIM_TCP_RST;
                tcp_log_end_status(tp, TCP_EI_STATUS_RST_IN_FRONT);
                goto dropwithreset;
        }
@@ -3446,11 +3432,10 @@ dropafterack:
        return;
 
 dropwithreset:
+       tcp_dropwithreset(m, th, NULL, tlen);
        if (tp != NULL) {
-               tcp_dropwithreset(m, th, tp, tlen, rstreason);
                INP_WUNLOCK(inp);
-       } else
-               tcp_dropwithreset(m, th, NULL, tlen, rstreason);
+       }
        return;
 
 drop:
@@ -3470,8 +3455,7 @@ drop:
  * tp may be NULL.
  */
 void
-tcp_dropwithreset(struct mbuf *m, struct tcphdr *th, struct tcpcb *tp,
-    int tlen, int rstreason)
+tcp_dropwithreset(struct mbuf *m, struct tcphdr *th, struct tcpcb *tp, int 
tlen)
 {
 #ifdef INET
        struct ip *ip;
@@ -3511,7 +3495,7 @@ tcp_dropwithreset(struct mbuf *m, struct tcphdr *th, 
struct tcpcb *tp,
 #endif
 
        /* Perform bandwidth limiting. */
-       if (badport_bandlim(rstreason) < 0)
+       if (badport_bandlim(BANDLIM_TCP_RST) < 0)
                goto drop;
 
        /* tcp_respond consumes the mbuf chain. */
diff --git a/sys/netinet/tcp_stacks/bbr.c b/sys/netinet/tcp_stacks/bbr.c
index c1053e90d6da..996a12229ac7 100644
--- a/sys/netinet/tcp_stacks/bbr.c
+++ b/sys/netinet/tcp_stacks/bbr.c
@@ -7852,7 +7852,7 @@ nothing_left:
                        /* tcp_close will kill the inp pre-log the Reset */
                        tcp_log_end_status(tp, TCP_EI_STATUS_SERVER_RST);
                        tp = tcp_close(tp);
-                       ctf_do_dropwithreset(m, tp, th, BANDLIM_TCP_RST, tlen);
+                       ctf_do_dropwithreset(m, tp, th, tlen);
                        BBR_STAT_INC(bbr_dropped_af_data);
                        return (1);
                }
@@ -8752,7 +8752,7 @@ bbr_do_syn_sent(struct mbuf *m, struct tcphdr *th, struct 
socket *so,
            (SEQ_LEQ(th->th_ack, tp->iss) ||
            SEQ_GT(th->th_ack, tp->snd_max))) {
                tcp_log_end_status(tp, TCP_EI_STATUS_RST_IN_FRONT);
-               ctf_do_dropwithreset(m, tp, th, BANDLIM_TCP_RST, tlen);
+               ctf_do_dropwithreset(m, tp, th, tlen);
                return (1);
        }
        if ((thflags & (TH_ACK | TH_RST)) == (TH_ACK | TH_RST)) {
@@ -8954,7 +8954,7 @@ bbr_do_syn_recv(struct mbuf *m, struct tcphdr *th, struct 
socket *so,
            (SEQ_LEQ(th->th_ack, tp->snd_una) ||
             SEQ_GT(th->th_ack, tp->snd_max))) {
                tcp_log_end_status(tp, TCP_EI_STATUS_RST_IN_FRONT);
-               ctf_do_dropwithreset(m, tp, th, BANDLIM_TCP_RST, tlen);
+               ctf_do_dropwithreset(m, tp, th, tlen);
                return (1);
        }
        if (IS_FASTOPEN(tp->t_flags)) {
@@ -8966,7 +8966,7 @@ bbr_do_syn_recv(struct mbuf *m, struct tcphdr *th, struct 
socket *so,
                 */
                if ((thflags & (TH_SYN | TH_ACK)) == (TH_SYN | TH_ACK)) {
                        tcp_log_end_status(tp, TCP_EI_STATUS_RST_IN_FRONT);
-                       ctf_do_dropwithreset(m, tp, th, BANDLIM_TCP_RST, tlen);
+                       ctf_do_dropwithreset(m, tp, th, tlen);
                        return (1);
                } else if (thflags & TH_SYN) {
                        /* non-initial SYN is ignored */
@@ -8999,7 +8999,7 @@ bbr_do_syn_recv(struct mbuf *m, struct tcphdr *th, struct 
socket *so,
         */
        if (SEQ_LT(th->th_seq, tp->irs)) {
                tcp_log_end_status(tp, TCP_EI_STATUS_RST_IN_FRONT);
-               ctf_do_dropwithreset(m, tp, th, BANDLIM_TCP_RST, tlen);
+               ctf_do_dropwithreset(m, tp, th, tlen);
                return (1);
        }
        if (ctf_drop_checks(to, m, th, tp, &tlen, &thflags, &drop_hdrlen, 
&ret_val)) {
@@ -9277,7 +9277,7 @@ bbr_do_established(struct mbuf *m, struct tcphdr *th, 
struct socket *so,
        if (sbavail(&so->so_snd)) {
                if (ctf_progress_timeout_check(tp, true)) {
                        bbr_log_progress_event(bbr, tp, tick, PROGRESS_DROP, 
__LINE__);
-                       ctf_do_dropwithreset_conn(m, tp, th, BANDLIM_TCP_RST, 
tlen);
+                       ctf_do_dropwithreset_conn(m, tp, th, tlen);
                        return (1);
                }
        }
@@ -9374,7 +9374,7 @@ bbr_do_close_wait(struct mbuf *m, struct tcphdr *th, 
struct socket *so,
        if (sbavail(&so->so_snd)) {
                if (ctf_progress_timeout_check(tp, true)) {
                        bbr_log_progress_event(bbr, tp, tick, PROGRESS_DROP, 
__LINE__);
-                       ctf_do_dropwithreset_conn(m, tp, th, BANDLIM_TCP_RST, 
tlen);
+                       ctf_do_dropwithreset_conn(m, tp, th, tlen);
                        return (1);
                }
        }
@@ -9394,7 +9394,7 @@ close_now:
                tcp_log_end_status(tp, TCP_EI_STATUS_SERVER_RST);
                tp = tcp_close(tp);
                KMOD_TCPSTAT_INC(tcps_rcvafterclose);
-               ctf_do_dropwithreset(m, tp, th, BANDLIM_TCP_RST, (*tlen));
+               ctf_do_dropwithreset(m, tp, th, *tlen);
                return (1);
        }
        if (sbavail(&so->so_snd) == 0)
@@ -9524,7 +9524,7 @@ bbr_do_fin_wait_1(struct mbuf *m, struct tcphdr *th, 
struct socket *so,
        if (sbavail(&so->so_snd)) {
                if (ctf_progress_timeout_check(tp, true)) {
                        bbr_log_progress_event(bbr, tp, tick, PROGRESS_DROP, 
__LINE__);
-                       ctf_do_dropwithreset_conn(m, tp, th, BANDLIM_TCP_RST, 
tlen);
+                       ctf_do_dropwithreset_conn(m, tp, th, tlen);
                        return (1);
                }
        }
@@ -9626,7 +9626,7 @@ bbr_do_closing(struct mbuf *m, struct tcphdr *th, struct 
socket *so,
        if (sbavail(&so->so_snd)) {
                if (ctf_progress_timeout_check(tp, true)) {
                        bbr_log_progress_event(bbr, tp, tick, PROGRESS_DROP, 
__LINE__);
-                       ctf_do_dropwithreset_conn(m, tp, th, BANDLIM_TCP_RST, 
tlen);
+                       ctf_do_dropwithreset_conn(m, tp, th, tlen);
                        return (1);
                }
        }
@@ -9728,7 +9728,7 @@ bbr_do_lastack(struct mbuf *m, struct tcphdr *th, struct 
socket *so,
        if (sbavail(&so->so_snd)) {
                if (ctf_progress_timeout_check(tp, true)) {
                        bbr_log_progress_event(bbr, tp, tick, PROGRESS_DROP, 
__LINE__);
-                       ctf_do_dropwithreset_conn(m, tp, th, BANDLIM_TCP_RST, 
tlen);
+                       ctf_do_dropwithreset_conn(m, tp, th, tlen);
                        return (1);
                }
        }
@@ -9837,7 +9837,7 @@ bbr_do_fin_wait_2(struct mbuf *m, struct tcphdr *th, 
struct socket *so,
        if (sbavail(&so->so_snd)) {
                if (ctf_progress_timeout_check(tp, true)) {
                        bbr_log_progress_event(bbr, tp, tick, PROGRESS_DROP, 
__LINE__);
-                       ctf_do_dropwithreset_conn(m, tp, th, BANDLIM_TCP_RST, 
tlen);
+                       ctf_do_dropwithreset_conn(m, tp, th, tlen);
                        return (1);
                }
        }
@@ -11492,7 +11492,7 @@ bbr_do_segment_nounlock(struct tcpcb *tp, struct mbuf 
*m, struct tcphdr *th,
        if ((tp->t_state == TCPS_SYN_SENT) && (thflags & TH_ACK) &&
            (SEQ_LEQ(th->th_ack, tp->iss) || SEQ_GT(th->th_ack, tp->snd_max))) {
                tcp_log_end_status(tp, TCP_EI_STATUS_RST_IN_FRONT);
-               ctf_do_dropwithreset_conn(m, tp, th, BANDLIM_TCP_RST, tlen);
+               ctf_do_dropwithreset_conn(m, tp, th, tlen);
                return (1);
        }
        if (tiwin > bbr->r_ctl.rc_high_rwnd)
diff --git a/sys/netinet/tcp_stacks/rack.c b/sys/netinet/tcp_stacks/rack.c
index 9a4ec0546b95..9b35fbb7797b 100644
--- a/sys/netinet/tcp_stacks/rack.c
+++ b/sys/netinet/tcp_stacks/rack.c
@@ -12428,7 +12428,7 @@ rack_process_ack(struct mbuf *m, struct tcphdr *th, 
struct socket *so,
                        /* tcp_close will kill the inp pre-log the Reset */
                        tcp_log_end_status(tp, TCP_EI_STATUS_SERVER_RST);
                        tp = tcp_close(tp);
-                       ctf_do_dropwithreset(m, tp, th, BANDLIM_TCP_RST, tlen);
+                       ctf_do_dropwithreset(m, tp, th, tlen);
                        return (1);
                }
        }
@@ -13265,7 +13265,7 @@ rack_do_syn_sent(struct mbuf *m, struct tcphdr *th, 
struct socket *so,
            (SEQ_LEQ(th->th_ack, tp->iss) ||
            SEQ_GT(th->th_ack, tp->snd_max))) {
                tcp_log_end_status(tp, TCP_EI_STATUS_RST_IN_FRONT);
-               ctf_do_dropwithreset(m, tp, th, BANDLIM_TCP_RST, tlen);
+               ctf_do_dropwithreset(m, tp, th, tlen);
                return (1);
        }
        if ((thflags & (TH_ACK | TH_RST)) == (TH_ACK | TH_RST)) {
@@ -13461,7 +13461,7 @@ rack_do_syn_recv(struct mbuf *m, struct tcphdr *th, 
struct socket *so,
            (SEQ_LEQ(th->th_ack, tp->snd_una) ||
            SEQ_GT(th->th_ack, tp->snd_max))) {
                tcp_log_end_status(tp, TCP_EI_STATUS_RST_IN_FRONT);
-               ctf_do_dropwithreset(m, tp, th, BANDLIM_TCP_RST, tlen);
+               ctf_do_dropwithreset(m, tp, th, tlen);
                return (1);
        }
        if (IS_FASTOPEN(tp->t_flags)) {
@@ -13474,7 +13474,7 @@ rack_do_syn_recv(struct mbuf *m, struct tcphdr *th, 
struct socket *so,
                 */
                if ((thflags & (TH_SYN | TH_ACK)) == (TH_SYN | TH_ACK)) {
                        tcp_log_end_status(tp, TCP_EI_STATUS_RST_IN_FRONT);
-                       ctf_do_dropwithreset(m, tp, th, BANDLIM_TCP_RST, tlen);
+                       ctf_do_dropwithreset(m, tp, th, tlen);
                        return (1);
                } else if (thflags & TH_SYN) {
                        /* non-initial SYN is ignored */
@@ -13508,7 +13508,7 @@ rack_do_syn_recv(struct mbuf *m, struct tcphdr *th, 
struct socket *so,
         */
        if (SEQ_LT(th->th_seq, tp->irs)) {
                tcp_log_end_status(tp, TCP_EI_STATUS_RST_IN_FRONT);
-               ctf_do_dropwithreset(m, tp, th, BANDLIM_TCP_RST, tlen);
+               ctf_do_dropwithreset(m, tp, th, tlen);
                return (1);
        }
        if (_ctf_drop_checks(to, m, th, tp, &tlen, &thflags, &drop_hdrlen, 
&ret_val,
@@ -13776,7 +13776,7 @@ rack_do_established(struct mbuf *m, struct tcphdr *th, 
struct socket *so,
        if (sbavail(&so->so_snd)) {
                if (ctf_progress_timeout_check(tp, true)) {
                        rack_log_progress_event(rack, tp, tick, PROGRESS_DROP, 
__LINE__);
-                       ctf_do_dropwithreset_conn(m, tp, th, BANDLIM_TCP_RST, 
tlen);
+                       ctf_do_dropwithreset_conn(m, tp, th, tlen);
                        return (1);
                }
        }
@@ -13877,7 +13877,7 @@ rack_do_close_wait(struct mbuf *m, struct tcphdr *th, 
struct socket *so,
                if (ctf_progress_timeout_check(tp, true)) {
                        rack_log_progress_event((struct tcp_rack *)tp->t_fb_ptr,
                                                tp, tick, PROGRESS_DROP, 
__LINE__);
-                       ctf_do_dropwithreset_conn(m, tp, th, BANDLIM_TCP_RST, 
tlen);
+                       ctf_do_dropwithreset_conn(m, tp, th, tlen);
                        return (1);
                }
        }
@@ -13899,7 +13899,7 @@ rack_check_data_after_close(struct mbuf *m,
                tcp_log_end_status(tp, TCP_EI_STATUS_SERVER_RST);
                tp = tcp_close(tp);
                KMOD_TCPSTAT_INC(tcps_rcvafterclose);
-               ctf_do_dropwithreset(m, tp, th, BANDLIM_TCP_RST, (*tlen));
+               ctf_do_dropwithreset(m, tp, th, *tlen);
                return (1);
        }
        if (sbavail(&so->so_snd) == 0)
@@ -14032,7 +14032,7 @@ rack_do_fin_wait_1(struct mbuf *m, struct tcphdr *th, 
struct socket *so,
                if (ctf_progress_timeout_check(tp, true)) {
                        rack_log_progress_event((struct tcp_rack *)tp->t_fb_ptr,
                                                tp, tick, PROGRESS_DROP, 
__LINE__);
-                       ctf_do_dropwithreset_conn(m, tp, th, BANDLIM_TCP_RST, 
tlen);
+                       ctf_do_dropwithreset_conn(m, tp, th, tlen);
                        return (1);
                }
        }
@@ -14138,7 +14138,7 @@ rack_do_closing(struct mbuf *m, struct tcphdr *th, 
struct socket *so,
                if (ctf_progress_timeout_check(tp, true)) {
                        rack_log_progress_event((struct tcp_rack *)tp->t_fb_ptr,
                                                tp, tick, PROGRESS_DROP, 
__LINE__);
-                       ctf_do_dropwithreset_conn(m, tp, th, BANDLIM_TCP_RST, 
tlen);
+                       ctf_do_dropwithreset_conn(m, tp, th, tlen);
                        return (1);
                }
        }
@@ -14244,7 +14244,7 @@ rack_do_lastack(struct mbuf *m, struct tcphdr *th, 
struct socket *so,
                if (ctf_progress_timeout_check(tp, true)) {
                        rack_log_progress_event((struct tcp_rack *)tp->t_fb_ptr,
                                                tp, tick, PROGRESS_DROP, 
__LINE__);
-                       ctf_do_dropwithreset_conn(m, tp, th, BANDLIM_TCP_RST, 
tlen);
+                       ctf_do_dropwithreset_conn(m, tp, th, tlen);
                        return (1);
                }
        }
@@ -14353,7 +14353,7 @@ rack_do_fin_wait_2(struct mbuf *m, struct tcphdr *th, 
struct socket *so,
                if (ctf_progress_timeout_check(tp, true)) {
                        rack_log_progress_event((struct tcp_rack *)tp->t_fb_ptr,
                                                tp, tick, PROGRESS_DROP, 
__LINE__);
-                       ctf_do_dropwithreset_conn(m, tp, th, BANDLIM_TCP_RST, 
tlen);
+                       ctf_do_dropwithreset_conn(m, tp, th, tlen);
                        return (1);
                }
        }
@@ -16938,7 +16938,7 @@ rack_do_segment_nounlock(struct tcpcb *tp, struct mbuf 
*m, struct tcphdr *th,
        if ((tp->t_state == TCPS_SYN_SENT) && (thflags & TH_ACK) &&
            (SEQ_LEQ(th->th_ack, tp->iss) || SEQ_GT(th->th_ack, tp->snd_max))) {
                tcp_log_end_status(tp, TCP_EI_STATUS_RST_IN_FRONT);
-               ctf_do_dropwithreset(m, tp, th, BANDLIM_TCP_RST, tlen);
+               ctf_do_dropwithreset(m, tp, th, tlen);
 #ifdef TCP_ACCOUNTING
                sched_unpin();
 #endif
diff --git a/sys/netinet/tcp_stacks/rack_bbr_common.c 
b/sys/netinet/tcp_stacks/rack_bbr_common.c
index d39ededc99d1..57dd242b9480 100644
--- a/sys/netinet/tcp_stacks/rack_bbr_common.c
+++ b/sys/netinet/tcp_stacks/rack_bbr_common.c
@@ -507,9 +507,9 @@ ctf_flight_size(struct tcpcb *tp, uint32_t rc_sacked)
 
 void
 ctf_do_dropwithreset(struct mbuf *m, struct tcpcb *tp, struct tcphdr *th,
-    int32_t rstreason, int32_t tlen)
+    int32_t tlen)
 {
-       tcp_dropwithreset(m, th, tp, tlen, rstreason);
+       tcp_dropwithreset(m, th, tp, tlen);
        if (tp != NULL)
                INP_WUNLOCK(tptoinpcb(tp));
 }
@@ -680,7 +680,7 @@ __ctf_do_dropafterack(struct mbuf *m, struct tcpcb *tp, 
struct tcphdr *th, int32
            (SEQ_GT(tp->snd_una, th->th_ack) ||
            SEQ_GT(th->th_ack, tp->snd_max))) {
                *ret_val = 1;
-               ctf_do_dropwithreset(m, tp, th, BANDLIM_TCP_RST, tlen);
+               ctf_do_dropwithreset(m, tp, th, tlen);
                return;
        } else
                *ret_val = 0;
@@ -906,10 +906,10 @@ ctf_calc_rwin(struct socket *so, struct tcpcb *tp)
 
 void
 ctf_do_dropwithreset_conn(struct mbuf *m, struct tcpcb *tp, struct tcphdr *th,
-    int32_t rstreason, int32_t tlen)
+    int32_t tlen)
 {
 
-       tcp_dropwithreset(m, th, tp, tlen, rstreason);
+       tcp_dropwithreset(m, th, tp, tlen);
        tp = tcp_drop(tp, ETIMEDOUT);
        if (tp)
                INP_WUNLOCK(tptoinpcb(tp));
diff --git a/sys/netinet/tcp_stacks/rack_bbr_common.h 
b/sys/netinet/tcp_stacks/rack_bbr_common.h
index 9e5fbe675a3a..6cc22021dea5 100644
--- a/sys/netinet/tcp_stacks/rack_bbr_common.h
+++ b/sys/netinet/tcp_stacks/rack_bbr_common.h
@@ -105,7 +105,7 @@ __ctf_do_dropafterack(struct mbuf *m, struct tcpcb *tp,
 
 void
 ctf_do_dropwithreset(struct mbuf *m, struct tcpcb *tp,
-       struct tcphdr *th, int32_t rstreason, int32_t tlen);
+       struct tcphdr *th, int32_t tlen);
 void
 ctf_do_drop(struct mbuf *m, struct tcpcb *tp);
 
@@ -130,7 +130,7 @@ ctf_calc_rwin(struct socket *so, struct tcpcb *tp);
 
 void
 ctf_do_dropwithreset_conn(struct mbuf *m, struct tcpcb *tp, struct tcphdr *th,
-    int32_t rstreason, int32_t tlen);
+    int32_t tlen);
 
 uint32_t
 ctf_fixed_maxseg(struct tcpcb *tp);
diff --git a/sys/netinet/tcp_var.h b/sys/netinet/tcp_var.h
index d5f7f0d4dc19..2aa300ef043a 100644
--- a/sys/netinet/tcp_var.h
+++ b/sys/netinet/tcp_var.h
@@ -1395,8 +1395,7 @@ int        tcp_reass(struct tcpcb *, struct tcphdr *, 
tcp_seq *, int *,
 void    tcp_reass_global_init(void);
 void    tcp_reass_flush(struct tcpcb *);
 void    tcp_dooptions(struct tcpopt *, u_char *, int, int);
-void   tcp_dropwithreset(struct mbuf *, struct tcphdr *,
-                    struct tcpcb *, int, int);
+void    tcp_dropwithreset(struct mbuf *, struct tcphdr *, struct tcpcb *, int);
 void   tcp_pulloutofband(struct socket *,
                     struct tcphdr *, struct mbuf *, int);
 void   tcp_xmit_timer(struct tcpcb *, int);

Reply via email to