]> bbs.cooldavid.org Git - net-next-2.6.git/blame - mm/filemap_xip.c
md: fix data corruption when a degraded raid5 array is reshaped
[net-next-2.6.git] / mm / filemap_xip.c
CommitLineData
ceffc078
CO
1/*
2 * linux/mm/filemap_xip.c
3 *
4 * Copyright (C) 2005 IBM Corporation
5 * Author: Carsten Otte <cotte@de.ibm.com>
6 *
7 * derived from linux/mm/filemap.c - Copyright (C) Linus Torvalds
8 *
9 */
10
11#include <linux/fs.h>
12#include <linux/pagemap.h>
13#include <linux/module.h>
14#include <linux/uio.h>
15#include <linux/rmap.h>
e8edc6e0 16#include <linux/sched.h>
ceffc078 17#include <asm/tlbflush.h>
ceffc078 18
a76c0b97
CO
19/*
20 * We do use our own empty page to avoid interference with other users
21 * of ZERO_PAGE(), such as /dev/zero
22 */
23static struct page *__xip_sparse_page;
24
25static struct page *xip_sparse_page(void)
26{
27 if (!__xip_sparse_page) {
28 unsigned long zeroes = get_zeroed_page(GFP_HIGHUSER);
29 if (zeroes) {
30 static DEFINE_SPINLOCK(xip_alloc_lock);
31 spin_lock(&xip_alloc_lock);
32 if (!__xip_sparse_page)
33 __xip_sparse_page = virt_to_page(zeroes);
34 else
35 free_page(zeroes);
36 spin_unlock(&xip_alloc_lock);
37 }
38 }
39 return __xip_sparse_page;
40}
41
ceffc078
CO
42/*
43 * This is a file read routine for execute in place files, and uses
44 * the mapping->a_ops->get_xip_page() function for the actual low-level
45 * stuff.
46 *
47 * Note the struct file* is not used at all. It may be NULL.
48 */
49static void
50do_xip_mapping_read(struct address_space *mapping,
51 struct file_ra_state *_ra,
52 struct file *filp,
53 loff_t *ppos,
54 read_descriptor_t *desc,
55 read_actor_t actor)
56{
57 struct inode *inode = mapping->host;
58 unsigned long index, end_index, offset;
59 loff_t isize;
60
61 BUG_ON(!mapping->a_ops->get_xip_page);
62
63 index = *ppos >> PAGE_CACHE_SHIFT;
64 offset = *ppos & ~PAGE_CACHE_MASK;
65
66 isize = i_size_read(inode);
67 if (!isize)
68 goto out;
69
70 end_index = (isize - 1) >> PAGE_CACHE_SHIFT;
71 for (;;) {
72 struct page *page;
73 unsigned long nr, ret;
74
75 /* nr is the maximum number of bytes to copy from this page */
76 nr = PAGE_CACHE_SIZE;
77 if (index >= end_index) {
78 if (index > end_index)
79 goto out;
80 nr = ((isize - 1) & ~PAGE_CACHE_MASK) + 1;
81 if (nr <= offset) {
82 goto out;
83 }
84 }
85 nr = nr - offset;
86
87 page = mapping->a_ops->get_xip_page(mapping,
88 index*(PAGE_SIZE/512), 0);
89 if (!page)
90 goto no_xip_page;
91 if (unlikely(IS_ERR(page))) {
92 if (PTR_ERR(page) == -ENODATA) {
93 /* sparse */
afa597ba 94 page = ZERO_PAGE(0);
ceffc078
CO
95 } else {
96 desc->error = PTR_ERR(page);
97 goto out;
98 }
afa597ba 99 }
ceffc078
CO
100
101 /* If users can be writing to this page using arbitrary
102 * virtual addresses, take care about potential aliasing
103 * before reading the page on the kernel side.
104 */
105 if (mapping_writably_mapped(mapping))
106 flush_dcache_page(page);
107
108 /*
afa597ba 109 * Ok, we have the page, so now we can copy it to user space...
ceffc078
CO
110 *
111 * The actor routine returns how many bytes were actually used..
112 * NOTE! This may not be the same as how much of a user buffer
113 * we filled up (we may be padding etc), so we can only update
114 * "pos" here (the actor routine has to update the user buffer
115 * pointers and the remaining count).
116 */
117 ret = actor(desc, page, offset, nr);
118 offset += ret;
119 index += offset >> PAGE_CACHE_SHIFT;
120 offset &= ~PAGE_CACHE_MASK;
121
122 if (ret == nr && desc->count)
123 continue;
124 goto out;
125
126no_xip_page:
127 /* Did not get the page. Report it */
128 desc->error = -EIO;
129 goto out;
130 }
131
132out:
133 *ppos = ((loff_t) index << PAGE_CACHE_SHIFT) + offset;
134 if (filp)
135 file_accessed(filp);
136}
137
ceffc078 138ssize_t
eb6fe0c3 139xip_file_read(struct file *filp, char __user *buf, size_t len, loff_t *ppos)
ceffc078 140{
eb6fe0c3 141 read_descriptor_t desc;
ceffc078 142
eb6fe0c3
CO
143 if (!access_ok(VERIFY_WRITE, buf, len))
144 return -EFAULT;
ceffc078 145
eb6fe0c3
CO
146 desc.written = 0;
147 desc.arg.buf = buf;
148 desc.count = len;
149 desc.error = 0;
ceffc078 150
eb6fe0c3
CO
151 do_xip_mapping_read(filp->f_mapping, &filp->f_ra, filp,
152 ppos, &desc, file_read_actor);
153
154 if (desc.written)
155 return desc.written;
156 else
157 return desc.error;
ceffc078 158}
eb6fe0c3 159EXPORT_SYMBOL_GPL(xip_file_read);
ceffc078 160
ceffc078
CO
161/*
162 * __xip_unmap is invoked from xip_unmap and
163 * xip_write
164 *
165 * This function walks all vmas of the address_space and unmaps the
a76c0b97 166 * __xip_sparse_page when found at pgoff.
ceffc078
CO
167 */
168static void
169__xip_unmap (struct address_space * mapping,
170 unsigned long pgoff)
171{
172 struct vm_area_struct *vma;
173 struct mm_struct *mm;
174 struct prio_tree_iter iter;
175 unsigned long address;
176 pte_t *pte;
177 pte_t pteval;
c0718806 178 spinlock_t *ptl;
67b02f11 179 struct page *page;
ceffc078 180
a76c0b97
CO
181 page = __xip_sparse_page;
182 if (!page)
183 return;
184
ceffc078
CO
185 spin_lock(&mapping->i_mmap_lock);
186 vma_prio_tree_foreach(vma, &iter, &mapping->i_mmap, pgoff, pgoff) {
187 mm = vma->vm_mm;
188 address = vma->vm_start +
189 ((pgoff - vma->vm_pgoff) << PAGE_SHIFT);
190 BUG_ON(address < vma->vm_start || address >= vma->vm_end);
c0718806
HD
191 pte = page_check_address(page, mm, address, &ptl);
192 if (pte) {
ceffc078 193 /* Nuke the page table entry. */
082ff0a9 194 flush_cache_page(vma, address, pte_pfn(*pte));
ceffc078 195 pteval = ptep_clear_flush(vma, address, pte);
7de6b805 196 page_remove_rmap(page, vma);
b5810039 197 dec_mm_counter(mm, file_rss);
ceffc078 198 BUG_ON(pte_dirty(pteval));
c0718806 199 pte_unmap_unlock(pte, ptl);
b5810039 200 page_cache_release(page);
ceffc078
CO
201 }
202 }
203 spin_unlock(&mapping->i_mmap_lock);
204}
205
206/*
54cb8821 207 * xip_fault() is invoked via the vma operations vector for a
ceffc078
CO
208 * mapped memory region to read in file data during a page fault.
209 *
54cb8821 210 * This function is derived from filemap_fault, but used for execute in place
ceffc078 211 */
d0217ac0 212static int xip_file_fault(struct vm_area_struct *area, struct vm_fault *vmf)
ceffc078
CO
213{
214 struct file *file = area->vm_file;
215 struct address_space *mapping = file->f_mapping;
216 struct inode *inode = mapping->host;
217 struct page *page;
54cb8821 218 pgoff_t size;
ceffc078 219
54cb8821 220 /* XXX: are VM_FAULT_ codes OK? */
ceffc078
CO
221
222 size = (i_size_read(inode) + PAGE_CACHE_SIZE - 1) >> PAGE_CACHE_SHIFT;
d0217ac0
NP
223 if (vmf->pgoff >= size)
224 return VM_FAULT_SIGBUS;
ceffc078 225
54cb8821 226 page = mapping->a_ops->get_xip_page(mapping,
d0217ac0 227 vmf->pgoff*(PAGE_SIZE/512), 0);
a76c0b97 228 if (!IS_ERR(page))
b5810039 229 goto out;
d0217ac0
NP
230 if (PTR_ERR(page) != -ENODATA)
231 return VM_FAULT_OOM;
ceffc078
CO
232
233 /* sparse block */
234 if ((area->vm_flags & (VM_WRITE | VM_MAYWRITE)) &&
235 (area->vm_flags & (VM_SHARED| VM_MAYSHARE)) &&
236 (!(mapping->host->i_sb->s_flags & MS_RDONLY))) {
237 /* maybe shared writable, allocate new block */
54cb8821 238 page = mapping->a_ops->get_xip_page(mapping,
d0217ac0
NP
239 vmf->pgoff*(PAGE_SIZE/512), 1);
240 if (IS_ERR(page))
241 return VM_FAULT_SIGBUS;
ceffc078 242 /* unmap page at pgoff from all other vmas */
d0217ac0 243 __xip_unmap(mapping, vmf->pgoff);
ceffc078 244 } else {
a76c0b97
CO
245 /* not shared and writable, use xip_sparse_page() */
246 page = xip_sparse_page();
d0217ac0
NP
247 if (!page)
248 return VM_FAULT_OOM;
ceffc078
CO
249 }
250
b5810039
NP
251out:
252 page_cache_get(page);
d0217ac0 253 vmf->page = page;
83c54070 254 return 0;
ceffc078
CO
255}
256
257static struct vm_operations_struct xip_file_vm_ops = {
54cb8821 258 .fault = xip_file_fault,
ceffc078
CO
259};
260
261int xip_file_mmap(struct file * file, struct vm_area_struct * vma)
262{
263 BUG_ON(!file->f_mapping->a_ops->get_xip_page);
264
265 file_accessed(file);
266 vma->vm_ops = &xip_file_vm_ops;
54cb8821 267 vma->vm_flags |= VM_CAN_NONLINEAR;
ceffc078
CO
268 return 0;
269}
270EXPORT_SYMBOL_GPL(xip_file_mmap);
271
272static ssize_t
eb6fe0c3
CO
273__xip_file_write(struct file *filp, const char __user *buf,
274 size_t count, loff_t pos, loff_t *ppos)
ceffc078 275{
eb6fe0c3 276 struct address_space * mapping = filp->f_mapping;
f5e54d6e 277 const struct address_space_operations *a_ops = mapping->a_ops;
ceffc078
CO
278 struct inode *inode = mapping->host;
279 long status = 0;
280 struct page *page;
281 size_t bytes;
ceffc078
CO
282 ssize_t written = 0;
283
284 BUG_ON(!mapping->a_ops->get_xip_page);
285
ceffc078
CO
286 do {
287 unsigned long index;
288 unsigned long offset;
289 size_t copied;
4a9e5ef1 290 char *kaddr;
ceffc078
CO
291
292 offset = (pos & (PAGE_CACHE_SIZE -1)); /* Within page */
293 index = pos >> PAGE_CACHE_SHIFT;
294 bytes = PAGE_CACHE_SIZE - offset;
295 if (bytes > count)
296 bytes = count;
297
ceffc078 298 page = a_ops->get_xip_page(mapping,
eb6fe0c3 299 index*(PAGE_SIZE/512), 0);
ceffc078
CO
300 if (IS_ERR(page) && (PTR_ERR(page) == -ENODATA)) {
301 /* we allocate a new page unmap it */
302 page = a_ops->get_xip_page(mapping,
eb6fe0c3 303 index*(PAGE_SIZE/512), 1);
ceffc078 304 if (!IS_ERR(page))
eb6fe0c3
CO
305 /* unmap page at pgoff from all other vmas */
306 __xip_unmap(mapping, index);
ceffc078
CO
307 }
308
309 if (IS_ERR(page)) {
310 status = PTR_ERR(page);
311 break;
312 }
313
4a9e5ef1
NP
314 fault_in_pages_readable(buf, bytes);
315 kaddr = kmap_atomic(page, KM_USER0);
316 copied = bytes -
369b8f5a 317 __copy_from_user_inatomic_nocache(kaddr + offset, buf, bytes);
4a9e5ef1 318 kunmap_atomic(kaddr, KM_USER0);
ceffc078 319 flush_dcache_page(page);
4a9e5ef1 320
ceffc078
CO
321 if (likely(copied > 0)) {
322 status = copied;
323
324 if (status >= 0) {
325 written += status;
326 count -= status;
327 pos += status;
328 buf += status;
ceffc078
CO
329 }
330 }
331 if (unlikely(copied != bytes))
332 if (status >= 0)
333 status = -EFAULT;
334 if (status < 0)
335 break;
336 } while (count);
337 *ppos = pos;
338 /*
339 * No need to use i_size_read() here, the i_size
1b1dcc1b 340 * cannot change under us because we hold i_mutex.
ceffc078
CO
341 */
342 if (pos > inode->i_size) {
343 i_size_write(inode, pos);
344 mark_inode_dirty(inode);
345 }
346
347 return written ? written : status;
348}
349
eb6fe0c3
CO
350ssize_t
351xip_file_write(struct file *filp, const char __user *buf, size_t len,
352 loff_t *ppos)
ceffc078 353{
eb6fe0c3
CO
354 struct address_space *mapping = filp->f_mapping;
355 struct inode *inode = mapping->host;
356 size_t count;
357 loff_t pos;
358 ssize_t ret;
ceffc078 359
1b1dcc1b 360 mutex_lock(&inode->i_mutex);
ceffc078 361
eb6fe0c3
CO
362 if (!access_ok(VERIFY_READ, buf, len)) {
363 ret=-EFAULT;
364 goto out_up;
ceffc078
CO
365 }
366
ceffc078 367 pos = *ppos;
eb6fe0c3 368 count = len;
ceffc078
CO
369
370 vfs_check_frozen(inode->i_sb, SB_FREEZE_WRITE);
371
eb6fe0c3
CO
372 /* We can write back this queue in page reclaim */
373 current->backing_dev_info = mapping->backing_dev_info;
ceffc078 374
eb6fe0c3
CO
375 ret = generic_write_checks(filp, &pos, &count, S_ISBLK(inode->i_mode));
376 if (ret)
377 goto out_backing;
ceffc078 378 if (count == 0)
eb6fe0c3 379 goto out_backing;
ceffc078 380
d3ac7f89 381 ret = remove_suid(filp->f_path.dentry);
eb6fe0c3
CO
382 if (ret)
383 goto out_backing;
ceffc078 384
870f4817 385 file_update_time(filp);
ceffc078 386
eb6fe0c3 387 ret = __xip_file_write (filp, buf, count, pos, ppos);
ceffc078 388
eb6fe0c3
CO
389 out_backing:
390 current->backing_dev_info = NULL;
391 out_up:
1b1dcc1b 392 mutex_unlock(&inode->i_mutex);
ceffc078
CO
393 return ret;
394}
eb6fe0c3 395EXPORT_SYMBOL_GPL(xip_file_write);
ceffc078
CO
396
397/*
398 * truncate a page used for execute in place
399 * functionality is analog to block_truncate_page but does use get_xip_page
400 * to get the page instead of page cache
401 */
402int
403xip_truncate_page(struct address_space *mapping, loff_t from)
404{
405 pgoff_t index = from >> PAGE_CACHE_SHIFT;
406 unsigned offset = from & (PAGE_CACHE_SIZE-1);
407 unsigned blocksize;
408 unsigned length;
409 struct page *page;
ceffc078
CO
410
411 BUG_ON(!mapping->a_ops->get_xip_page);
412
413 blocksize = 1 << mapping->host->i_blkbits;
414 length = offset & (blocksize - 1);
415
416 /* Block boundary? Nothing to do */
417 if (!length)
418 return 0;
419
420 length = blocksize - length;
421
422 page = mapping->a_ops->get_xip_page(mapping,
423 index*(PAGE_SIZE/512), 0);
ceffc078 424 if (!page)
eb6fe0c3 425 return -ENOMEM;
ceffc078 426 if (unlikely(IS_ERR(page))) {
eb6fe0c3 427 if (PTR_ERR(page) == -ENODATA)
ceffc078
CO
428 /* Hole? No need to truncate */
429 return 0;
eb6fe0c3
CO
430 else
431 return PTR_ERR(page);
afa597ba 432 }
01f2705d 433 zero_user_page(page, offset, length, KM_USER0);
eb6fe0c3 434 return 0;
ceffc078
CO
435}
436EXPORT_SYMBOL_GPL(xip_truncate_page);