]> bbs.cooldavid.org Git - net-next-2.6.git/blame - fs/xfs/linux-2.6/xfs_ioctl.c
xfs: prevent reading uninitialized stack memory
[net-next-2.6.git] / fs / xfs / linux-2.6 / xfs_ioctl.c
CommitLineData
1da177e4 1/*
7b718769
NS
2 * Copyright (c) 2000-2005 Silicon Graphics, Inc.
3 * All Rights Reserved.
1da177e4 4 *
7b718769
NS
5 * This program is free software; you can redistribute it and/or
6 * modify it under the terms of the GNU General Public License as
1da177e4
LT
7 * published by the Free Software Foundation.
8 *
7b718769
NS
9 * This program is distributed in the hope that it would be useful,
10 * but WITHOUT ANY WARRANTY; without even the implied warranty of
11 * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
12 * GNU General Public License for more details.
1da177e4 13 *
7b718769
NS
14 * You should have received a copy of the GNU General Public License
15 * along with this program; if not, write the Free Software Foundation,
16 * Inc., 51 Franklin St, Fifth Floor, Boston, MA 02110-1301 USA
1da177e4 17 */
1da177e4 18#include "xfs.h"
1da177e4 19#include "xfs_fs.h"
a844f451 20#include "xfs_bit.h"
1da177e4 21#include "xfs_log.h"
a844f451 22#include "xfs_inum.h"
1da177e4
LT
23#include "xfs_trans.h"
24#include "xfs_sb.h"
a844f451 25#include "xfs_ag.h"
1da177e4 26#include "xfs_alloc.h"
1da177e4 27#include "xfs_mount.h"
1da177e4 28#include "xfs_bmap_btree.h"
1da177e4
LT
29#include "xfs_dinode.h"
30#include "xfs_inode.h"
7bf446f8 31#include "xfs_ioctl.h"
1da177e4 32#include "xfs_rtalloc.h"
1da177e4 33#include "xfs_itable.h"
a844f451 34#include "xfs_error.h"
1da177e4 35#include "xfs_attr.h"
a844f451 36#include "xfs_bmap.h"
1da177e4
LT
37#include "xfs_buf_item.h"
38#include "xfs_utils.h"
39#include "xfs_dfrag.h"
40#include "xfs_fsops.h"
993386c1 41#include "xfs_vnodeops.h"
25fe55e8
CH
42#include "xfs_quota.h"
43#include "xfs_inode_item.h"
d296d30a 44#include "xfs_export.h"
0b1b213f 45#include "xfs_trace.h"
1da177e4 46
16f7e0fe 47#include <linux/capability.h>
1da177e4
LT
48#include <linux/dcache.h>
49#include <linux/mount.h>
50#include <linux/namei.h>
51#include <linux/pagemap.h>
5a0e3ad6 52#include <linux/slab.h>
d296d30a 53#include <linux/exportfs.h>
1da177e4
LT
54
55/*
56 * xfs_find_handle maps from userspace xfs_fsop_handlereq structure to
57 * a file or fs handle.
58 *
59 * XFS_IOC_PATH_TO_FSHANDLE
60 * returns fs handle for a mount point or path within that mount point
61 * XFS_IOC_FD_TO_HANDLE
62 * returns full handle for a FD opened in user space
63 * XFS_IOC_PATH_TO_HANDLE
64 * returns full handle for a path
65 */
d5547f9f 66int
1da177e4
LT
67xfs_find_handle(
68 unsigned int cmd,
743bb465 69 xfs_fsop_handlereq_t *hreq)
1da177e4
LT
70{
71 int hsize;
72 xfs_handle_t handle;
1da177e4 73 struct inode *inode;
4346cdd4
CH
74 struct file *file = NULL;
75 struct path path;
76 int error;
77 struct xfs_inode *ip;
1da177e4 78
4346cdd4 79 if (cmd == XFS_IOC_FD_TO_HANDLE) {
743bb465 80 file = fget(hreq->fd);
1da177e4 81 if (!file)
4346cdd4
CH
82 return -EBADF;
83 inode = file->f_path.dentry->d_inode;
84 } else {
85 error = user_lpath((const char __user *)hreq->path, &path);
86 if (error)
87 return error;
88 inode = path.dentry->d_inode;
1da177e4 89 }
4346cdd4
CH
90 ip = XFS_I(inode);
91
92 /*
93 * We can only generate handles for inodes residing on a XFS filesystem,
94 * and only for regular files, directories or symbolic links.
95 */
96 error = -EINVAL;
97 if (inode->i_sb->s_magic != XFS_SB_MAGIC)
98 goto out_put;
99
100 error = -EBADF;
101 if (!S_ISREG(inode->i_mode) &&
102 !S_ISDIR(inode->i_mode) &&
103 !S_ISLNK(inode->i_mode))
104 goto out_put;
105
106
107 memcpy(&handle.ha_fsid, ip->i_mount->m_fixedfsid, sizeof(xfs_fsid_t));
108
109 if (cmd == XFS_IOC_PATH_TO_FSHANDLE) {
110 /*
111 * This handle only contains an fsid, zero the rest.
112 */
113 memset(&handle.ha_fid, 0, sizeof(handle.ha_fid));
114 hsize = sizeof(xfs_fsid_t);
115 } else {
1da177e4
LT
116 int lock_mode;
117
1da177e4 118 lock_mode = xfs_ilock_map_shared(ip);
c6143911
CH
119 handle.ha_fid.fid_len = sizeof(xfs_fid_t) -
120 sizeof(handle.ha_fid.fid_len);
121 handle.ha_fid.fid_pad = 0;
122 handle.ha_fid.fid_gen = ip->i_d.di_gen;
123 handle.ha_fid.fid_ino = ip->i_ino;
1da177e4
LT
124 xfs_iunlock_map_shared(ip, lock_mode);
125
126 hsize = XFS_HSIZE(handle);
127 }
128
4346cdd4 129 error = -EFAULT;
743bb465 130 if (copy_to_user(hreq->ohandle, &handle, hsize) ||
4346cdd4
CH
131 copy_to_user(hreq->ohandlen, &hsize, sizeof(__s32)))
132 goto out_put;
1da177e4 133
4346cdd4
CH
134 error = 0;
135
136 out_put:
137 if (cmd == XFS_IOC_FD_TO_HANDLE)
138 fput(file);
139 else
140 path_put(&path);
141 return error;
1da177e4
LT
142}
143
1da177e4 144/*
d296d30a
CH
145 * No need to do permission checks on the various pathname components
146 * as the handle operations are privileged.
1da177e4
LT
147 */
148STATIC int
d296d30a
CH
149xfs_handle_acceptable(
150 void *context,
151 struct dentry *dentry)
152{
153 return 1;
154}
155
156/*
157 * Convert userspace handle data into a dentry.
158 */
159struct dentry *
160xfs_handle_to_dentry(
161 struct file *parfilp,
162 void __user *uhandle,
163 u32 hlen)
1da177e4 164{
1da177e4 165 xfs_handle_t handle;
d296d30a 166 struct xfs_fid64 fid;
1da177e4
LT
167
168 /*
169 * Only allow handle opens under a directory.
170 */
d296d30a
CH
171 if (!S_ISDIR(parfilp->f_path.dentry->d_inode->i_mode))
172 return ERR_PTR(-ENOTDIR);
173
174 if (hlen != sizeof(xfs_handle_t))
175 return ERR_PTR(-EINVAL);
176 if (copy_from_user(&handle, uhandle, hlen))
177 return ERR_PTR(-EFAULT);
178 if (handle.ha_fid.fid_len !=
179 sizeof(handle.ha_fid) - sizeof(handle.ha_fid.fid_len))
180 return ERR_PTR(-EINVAL);
181
182 memset(&fid, 0, sizeof(struct fid));
183 fid.ino = handle.ha_fid.fid_ino;
184 fid.gen = handle.ha_fid.fid_gen;
185
186 return exportfs_decode_fh(parfilp->f_path.mnt, (struct fid *)&fid, 3,
187 FILEID_INO32_GEN | XFS_FILEID_TYPE_64FLAG,
188 xfs_handle_acceptable, NULL);
189}
1da177e4 190
d296d30a
CH
191STATIC struct dentry *
192xfs_handlereq_to_dentry(
193 struct file *parfilp,
194 xfs_fsop_handlereq_t *hreq)
195{
196 return xfs_handle_to_dentry(parfilp, hreq->ihandle, hreq->ihandlen);
1da177e4
LT
197}
198
d5547f9f 199int
1da177e4 200xfs_open_by_handle(
1da177e4 201 struct file *parfilp,
d296d30a 202 xfs_fsop_handlereq_t *hreq)
1da177e4 203{
745ca247 204 const struct cred *cred = current_cred();
1da177e4 205 int error;
d296d30a 206 int fd;
1da177e4
LT
207 int permflag;
208 struct file *filp;
209 struct inode *inode;
210 struct dentry *dentry;
1da177e4
LT
211
212 if (!capable(CAP_SYS_ADMIN))
213 return -XFS_ERROR(EPERM);
1da177e4 214
d296d30a
CH
215 dentry = xfs_handlereq_to_dentry(parfilp, hreq);
216 if (IS_ERR(dentry))
217 return PTR_ERR(dentry);
218 inode = dentry->d_inode;
1da177e4
LT
219
220 /* Restrict xfs_open_by_handle to directories & regular files. */
221 if (!(S_ISREG(inode->i_mode) || S_ISDIR(inode->i_mode))) {
d296d30a
CH
222 error = -XFS_ERROR(EPERM);
223 goto out_dput;
1da177e4
LT
224 }
225
226#if BITS_PER_LONG != 32
743bb465 227 hreq->oflags |= O_LARGEFILE;
1da177e4 228#endif
d296d30a 229
1da177e4 230 /* Put open permission in namei format. */
743bb465 231 permflag = hreq->oflags;
1da177e4
LT
232 if ((permflag+1) & O_ACCMODE)
233 permflag++;
234 if (permflag & O_TRUNC)
235 permflag |= 2;
236
237 if ((!(permflag & O_APPEND) || (permflag & O_TRUNC)) &&
238 (permflag & FMODE_WRITE) && IS_APPEND(inode)) {
d296d30a
CH
239 error = -XFS_ERROR(EPERM);
240 goto out_dput;
1da177e4
LT
241 }
242
243 if ((permflag & FMODE_WRITE) && IS_IMMUTABLE(inode)) {
d296d30a
CH
244 error = -XFS_ERROR(EACCES);
245 goto out_dput;
1da177e4
LT
246 }
247
248 /* Can't write directories. */
d296d30a
CH
249 if (S_ISDIR(inode->i_mode) && (permflag & FMODE_WRITE)) {
250 error = -XFS_ERROR(EISDIR);
251 goto out_dput;
1da177e4
LT
252 }
253
d296d30a
CH
254 fd = get_unused_fd();
255 if (fd < 0) {
256 error = fd;
257 goto out_dput;
1da177e4
LT
258 }
259
d296d30a
CH
260 filp = dentry_open(dentry, mntget(parfilp->f_path.mnt),
261 hreq->oflags, cred);
1da177e4 262 if (IS_ERR(filp)) {
d296d30a
CH
263 put_unused_fd(fd);
264 return PTR_ERR(filp);
1da177e4 265 }
4d4be482 266
2e2e7bb1 267 if (inode->i_mode & S_IFREG) {
2e2e7bb1 268 filp->f_flags |= O_NOATIME;
4d4be482 269 filp->f_mode |= FMODE_NOCMTIME;
2e2e7bb1 270 }
1da177e4 271
d296d30a
CH
272 fd_install(fd, filp);
273 return fd;
274
275 out_dput:
276 dput(dentry);
277 return error;
1da177e4
LT
278}
279
804c83c3
CH
280/*
281 * This is a copy from fs/namei.c:vfs_readlink(), except for removing it's
282 * unused first argument.
283 */
284STATIC int
285do_readlink(
286 char __user *buffer,
287 int buflen,
288 const char *link)
289{
290 int len;
291
292 len = PTR_ERR(link);
293 if (IS_ERR(link))
294 goto out;
295
296 len = strlen(link);
297 if (len > (unsigned) buflen)
298 len = buflen;
299 if (copy_to_user(buffer, link, len))
300 len = -EFAULT;
301 out:
302 return len;
303}
304
305
d5547f9f 306int
1da177e4 307xfs_readlink_by_handle(
d296d30a
CH
308 struct file *parfilp,
309 xfs_fsop_handlereq_t *hreq)
1da177e4 310{
d296d30a 311 struct dentry *dentry;
1da177e4 312 __u32 olen;
804c83c3
CH
313 void *link;
314 int error;
1da177e4
LT
315
316 if (!capable(CAP_SYS_ADMIN))
317 return -XFS_ERROR(EPERM);
1da177e4 318
d296d30a
CH
319 dentry = xfs_handlereq_to_dentry(parfilp, hreq);
320 if (IS_ERR(dentry))
321 return PTR_ERR(dentry);
1da177e4
LT
322
323 /* Restrict this handle operation to symlinks only. */
d296d30a 324 if (!S_ISLNK(dentry->d_inode->i_mode)) {
804c83c3 325 error = -XFS_ERROR(EINVAL);
d296d30a 326 goto out_dput;
1da177e4
LT
327 }
328
743bb465 329 if (copy_from_user(&olen, hreq->ohandlen, sizeof(__u32))) {
804c83c3 330 error = -XFS_ERROR(EFAULT);
d296d30a 331 goto out_dput;
1da177e4 332 }
1da177e4 333
804c83c3 334 link = kmalloc(MAXPATHLEN+1, GFP_KERNEL);
d296d30a
CH
335 if (!link) {
336 error = -XFS_ERROR(ENOMEM);
337 goto out_dput;
338 }
1da177e4 339
d296d30a 340 error = -xfs_readlink(XFS_I(dentry->d_inode), link);
67fcaa73 341 if (error)
804c83c3 342 goto out_kfree;
743bb465 343 error = do_readlink(hreq->ohandle, olen, link);
804c83c3
CH
344 if (error)
345 goto out_kfree;
67fcaa73 346
804c83c3
CH
347 out_kfree:
348 kfree(link);
d296d30a
CH
349 out_dput:
350 dput(dentry);
804c83c3 351 return error;
1da177e4
LT
352}
353
354STATIC int
355xfs_fssetdm_by_handle(
d296d30a
CH
356 struct file *parfilp,
357 void __user *arg)
1da177e4
LT
358{
359 int error;
360 struct fsdmidata fsd;
361 xfs_fsop_setdm_handlereq_t dmhreq;
d296d30a 362 struct dentry *dentry;
1da177e4
LT
363
364 if (!capable(CAP_MKNOD))
365 return -XFS_ERROR(EPERM);
366 if (copy_from_user(&dmhreq, arg, sizeof(xfs_fsop_setdm_handlereq_t)))
367 return -XFS_ERROR(EFAULT);
368
d296d30a
CH
369 dentry = xfs_handlereq_to_dentry(parfilp, &dmhreq.hreq);
370 if (IS_ERR(dentry))
371 return PTR_ERR(dentry);
1da177e4 372
d296d30a 373 if (IS_IMMUTABLE(dentry->d_inode) || IS_APPEND(dentry->d_inode)) {
6e7f75ea
CH
374 error = -XFS_ERROR(EPERM);
375 goto out;
1da177e4
LT
376 }
377
378 if (copy_from_user(&fsd, dmhreq.data, sizeof(fsd))) {
6e7f75ea
CH
379 error = -XFS_ERROR(EFAULT);
380 goto out;
1da177e4
LT
381 }
382
d296d30a 383 error = -xfs_set_dmattrs(XFS_I(dentry->d_inode), fsd.fsd_dmevmask,
6e7f75ea 384 fsd.fsd_dmstate);
1da177e4 385
6e7f75ea 386 out:
d296d30a 387 dput(dentry);
6e7f75ea 388 return error;
1da177e4
LT
389}
390
391STATIC int
392xfs_attrlist_by_handle(
d296d30a
CH
393 struct file *parfilp,
394 void __user *arg)
1da177e4 395{
d296d30a 396 int error = -ENOMEM;
1da177e4
LT
397 attrlist_cursor_kern_t *cursor;
398 xfs_fsop_attrlist_handlereq_t al_hreq;
d296d30a 399 struct dentry *dentry;
1da177e4
LT
400 char *kbuf;
401
402 if (!capable(CAP_SYS_ADMIN))
403 return -XFS_ERROR(EPERM);
404 if (copy_from_user(&al_hreq, arg, sizeof(xfs_fsop_attrlist_handlereq_t)))
405 return -XFS_ERROR(EFAULT);
406 if (al_hreq.buflen > XATTR_LIST_MAX)
407 return -XFS_ERROR(EINVAL);
408
90ad58a8
CH
409 /*
410 * Reject flags, only allow namespaces.
411 */
412 if (al_hreq.flags & ~(ATTR_ROOT | ATTR_SECURE))
413 return -XFS_ERROR(EINVAL);
414
d296d30a
CH
415 dentry = xfs_handlereq_to_dentry(parfilp, &al_hreq.hreq);
416 if (IS_ERR(dentry))
417 return PTR_ERR(dentry);
1da177e4
LT
418
419 kbuf = kmalloc(al_hreq.buflen, GFP_KERNEL);
420 if (!kbuf)
d296d30a 421 goto out_dput;
1da177e4
LT
422
423 cursor = (attrlist_cursor_kern_t *)&al_hreq.pos;
d296d30a 424 error = -xfs_attr_list(XFS_I(dentry->d_inode), kbuf, al_hreq.buflen,
739bfb2a 425 al_hreq.flags, cursor);
1da177e4
LT
426 if (error)
427 goto out_kfree;
428
429 if (copy_to_user(al_hreq.buffer, kbuf, al_hreq.buflen))
430 error = -EFAULT;
431
432 out_kfree:
433 kfree(kbuf);
d296d30a
CH
434 out_dput:
435 dput(dentry);
436 return error;
1da177e4
LT
437}
438
28750975 439int
1da177e4 440xfs_attrmulti_attr_get(
739bfb2a 441 struct inode *inode,
a9273ca5
DC
442 unsigned char *name,
443 unsigned char __user *ubuf,
1da177e4
LT
444 __uint32_t *len,
445 __uint32_t flags)
446{
a9273ca5 447 unsigned char *kbuf;
1da177e4 448 int error = EFAULT;
e8b0ebaa 449
1da177e4
LT
450 if (*len > XATTR_SIZE_MAX)
451 return EINVAL;
452 kbuf = kmalloc(*len, GFP_KERNEL);
453 if (!kbuf)
454 return ENOMEM;
455
e8b0ebaa 456 error = xfs_attr_get(XFS_I(inode), name, kbuf, (int *)len, flags);
1da177e4
LT
457 if (error)
458 goto out_kfree;
459
460 if (copy_to_user(ubuf, kbuf, *len))
461 error = EFAULT;
462
463 out_kfree:
464 kfree(kbuf);
465 return error;
466}
467
28750975 468int
1da177e4 469xfs_attrmulti_attr_set(
739bfb2a 470 struct inode *inode,
a9273ca5
DC
471 unsigned char *name,
472 const unsigned char __user *ubuf,
1da177e4
LT
473 __uint32_t len,
474 __uint32_t flags)
475{
a9273ca5 476 unsigned char *kbuf;
1da177e4
LT
477 int error = EFAULT;
478
739bfb2a 479 if (IS_IMMUTABLE(inode) || IS_APPEND(inode))
1da177e4
LT
480 return EPERM;
481 if (len > XATTR_SIZE_MAX)
482 return EINVAL;
483
0e639bde
LZ
484 kbuf = memdup_user(ubuf, len);
485 if (IS_ERR(kbuf))
486 return PTR_ERR(kbuf);
e8b0ebaa 487
739bfb2a 488 error = xfs_attr_set(XFS_I(inode), name, kbuf, len, flags);
1da177e4 489
1da177e4
LT
490 return error;
491}
492
28750975 493int
1da177e4 494xfs_attrmulti_attr_remove(
739bfb2a 495 struct inode *inode,
a9273ca5 496 unsigned char *name,
1da177e4
LT
497 __uint32_t flags)
498{
739bfb2a 499 if (IS_IMMUTABLE(inode) || IS_APPEND(inode))
1da177e4 500 return EPERM;
739bfb2a 501 return xfs_attr_remove(XFS_I(inode), name, flags);
1da177e4
LT
502}
503
504STATIC int
505xfs_attrmulti_by_handle(
42a74f20 506 struct file *parfilp,
d296d30a 507 void __user *arg)
1da177e4
LT
508{
509 int error;
510 xfs_attr_multiop_t *ops;
511 xfs_fsop_attrmulti_handlereq_t am_hreq;
d296d30a 512 struct dentry *dentry;
1da177e4 513 unsigned int i, size;
a9273ca5 514 unsigned char *attr_name;
1da177e4
LT
515
516 if (!capable(CAP_SYS_ADMIN))
517 return -XFS_ERROR(EPERM);
518 if (copy_from_user(&am_hreq, arg, sizeof(xfs_fsop_attrmulti_handlereq_t)))
519 return -XFS_ERROR(EFAULT);
520
fda168c2
ZW
521 /* overflow check */
522 if (am_hreq.opcount >= INT_MAX / sizeof(xfs_attr_multiop_t))
523 return -E2BIG;
524
d296d30a
CH
525 dentry = xfs_handlereq_to_dentry(parfilp, &am_hreq.hreq);
526 if (IS_ERR(dentry))
527 return PTR_ERR(dentry);
1da177e4
LT
528
529 error = E2BIG;
e182f57a 530 size = am_hreq.opcount * sizeof(xfs_attr_multiop_t);
1da177e4 531 if (!size || size > 16 * PAGE_SIZE)
d296d30a 532 goto out_dput;
1da177e4 533
0e639bde
LZ
534 ops = memdup_user(am_hreq.ops, size);
535 if (IS_ERR(ops)) {
536 error = PTR_ERR(ops);
d296d30a 537 goto out_dput;
0e639bde 538 }
1da177e4
LT
539
540 attr_name = kmalloc(MAXNAMELEN, GFP_KERNEL);
541 if (!attr_name)
542 goto out_kfree_ops;
543
1da177e4
LT
544 error = 0;
545 for (i = 0; i < am_hreq.opcount; i++) {
a9273ca5 546 ops[i].am_error = strncpy_from_user((char *)attr_name,
1da177e4
LT
547 ops[i].am_attrname, MAXNAMELEN);
548 if (ops[i].am_error == 0 || ops[i].am_error == MAXNAMELEN)
549 error = -ERANGE;
550 if (ops[i].am_error < 0)
551 break;
552
553 switch (ops[i].am_opcode) {
554 case ATTR_OP_GET:
d296d30a
CH
555 ops[i].am_error = xfs_attrmulti_attr_get(
556 dentry->d_inode, attr_name,
557 ops[i].am_attrvalue, &ops[i].am_length,
558 ops[i].am_flags);
1da177e4
LT
559 break;
560 case ATTR_OP_SET:
42a74f20
DH
561 ops[i].am_error = mnt_want_write(parfilp->f_path.mnt);
562 if (ops[i].am_error)
563 break;
d296d30a
CH
564 ops[i].am_error = xfs_attrmulti_attr_set(
565 dentry->d_inode, attr_name,
566 ops[i].am_attrvalue, ops[i].am_length,
567 ops[i].am_flags);
42a74f20 568 mnt_drop_write(parfilp->f_path.mnt);
1da177e4
LT
569 break;
570 case ATTR_OP_REMOVE:
42a74f20
DH
571 ops[i].am_error = mnt_want_write(parfilp->f_path.mnt);
572 if (ops[i].am_error)
573 break;
d296d30a
CH
574 ops[i].am_error = xfs_attrmulti_attr_remove(
575 dentry->d_inode, attr_name,
576 ops[i].am_flags);
42a74f20 577 mnt_drop_write(parfilp->f_path.mnt);
1da177e4
LT
578 break;
579 default:
580 ops[i].am_error = EINVAL;
581 }
582 }
583
584 if (copy_to_user(am_hreq.ops, ops, size))
585 error = XFS_ERROR(EFAULT);
586
587 kfree(attr_name);
588 out_kfree_ops:
589 kfree(ops);
d296d30a
CH
590 out_dput:
591 dput(dentry);
1da177e4
LT
592 return -error;
593}
594
d5547f9f 595int
1da177e4 596xfs_ioc_space(
993386c1 597 struct xfs_inode *ip,
f37ea149 598 struct inode *inode,
1da177e4
LT
599 struct file *filp,
600 int ioflags,
601 unsigned int cmd,
743bb465 602 xfs_flock64_t *bf)
1da177e4 603{
1da177e4
LT
604 int attr_flags = 0;
605 int error;
606
743bb465 607 /*
608 * Only allow the sys admin to reserve space unless
609 * unwritten extents are enabled.
610 */
611 if (!xfs_sb_version_hasextflgbit(&ip->i_mount->m_sb) &&
612 !capable(CAP_SYS_ADMIN))
613 return -XFS_ERROR(EPERM);
614
f37ea149 615 if (inode->i_flags & (S_IMMUTABLE|S_APPEND))
1da177e4
LT
616 return -XFS_ERROR(EPERM);
617
ad4a8ac4 618 if (!(filp->f_mode & FMODE_WRITE))
1da177e4
LT
619 return -XFS_ERROR(EBADF);
620
f37ea149 621 if (!S_ISREG(inode->i_mode))
1da177e4
LT
622 return -XFS_ERROR(EINVAL);
623
1da177e4 624 if (filp->f_flags & (O_NDELAY|O_NONBLOCK))
0f285c8a 625 attr_flags |= XFS_ATTR_NONBLOCK;
1da177e4 626 if (ioflags & IO_INVIS)
0f285c8a 627 attr_flags |= XFS_ATTR_DMI;
1da177e4 628
743bb465 629 error = xfs_change_file_space(ip, cmd, bf, filp->f_pos, attr_flags);
1da177e4
LT
630 return -error;
631}
632
633STATIC int
634xfs_ioc_bulkstat(
635 xfs_mount_t *mp,
636 unsigned int cmd,
637 void __user *arg)
638{
639 xfs_fsop_bulkreq_t bulkreq;
640 int count; /* # of records returned */
641 xfs_ino_t inlast; /* last inode number */
642 int done;
643 int error;
644
645 /* done = 1 if there are more stats to get and if bulkstat */
646 /* should be called again (unused here, but used in dmapi) */
647
648 if (!capable(CAP_SYS_ADMIN))
649 return -EPERM;
650
651 if (XFS_FORCED_SHUTDOWN(mp))
652 return -XFS_ERROR(EIO);
653
654 if (copy_from_user(&bulkreq, arg, sizeof(xfs_fsop_bulkreq_t)))
655 return -XFS_ERROR(EFAULT);
656
657 if (copy_from_user(&inlast, bulkreq.lastip, sizeof(__s64)))
658 return -XFS_ERROR(EFAULT);
659
660 if ((count = bulkreq.icount) <= 0)
661 return -XFS_ERROR(EINVAL);
662
cd57e594
LM
663 if (bulkreq.ubuffer == NULL)
664 return -XFS_ERROR(EINVAL);
665
1da177e4
LT
666 if (cmd == XFS_IOC_FSINUMBERS)
667 error = xfs_inumbers(mp, &inlast, &count,
faa63e95 668 bulkreq.ubuffer, xfs_inumbers_fmt);
1da177e4
LT
669 else if (cmd == XFS_IOC_FSBULKSTAT_SINGLE)
670 error = xfs_bulkstat_single(mp, &inlast,
671 bulkreq.ubuffer, &done);
cd57e594 672 else /* XFS_IOC_FSBULKSTAT */
7dce11db
CH
673 error = xfs_bulkstat(mp, &inlast, &count, xfs_bulkstat_one,
674 sizeof(xfs_bstat_t), bulkreq.ubuffer,
675 &done);
1da177e4
LT
676
677 if (error)
678 return -error;
679
680 if (bulkreq.ocount != NULL) {
681 if (copy_to_user(bulkreq.lastip, &inlast,
682 sizeof(xfs_ino_t)))
683 return -XFS_ERROR(EFAULT);
684
685 if (copy_to_user(bulkreq.ocount, &count, sizeof(count)))
686 return -XFS_ERROR(EFAULT);
687 }
688
689 return 0;
690}
691
692STATIC int
693xfs_ioc_fsgeometry_v1(
694 xfs_mount_t *mp,
695 void __user *arg)
696{
697 xfs_fsop_geom_v1_t fsgeo;
698 int error;
699
700 error = xfs_fs_geometry(mp, (xfs_fsop_geom_t *)&fsgeo, 3);
701 if (error)
702 return -error;
703
704 if (copy_to_user(arg, &fsgeo, sizeof(fsgeo)))
705 return -XFS_ERROR(EFAULT);
706 return 0;
707}
708
709STATIC int
710xfs_ioc_fsgeometry(
711 xfs_mount_t *mp,
712 void __user *arg)
713{
714 xfs_fsop_geom_t fsgeo;
715 int error;
716
717 error = xfs_fs_geometry(mp, &fsgeo, 4);
718 if (error)
719 return -error;
720
721 if (copy_to_user(arg, &fsgeo, sizeof(fsgeo)))
722 return -XFS_ERROR(EFAULT);
723 return 0;
724}
725
726/*
727 * Linux extended inode flags interface.
728 */
1da177e4
LT
729
730STATIC unsigned int
731xfs_merge_ioc_xflags(
732 unsigned int flags,
733 unsigned int start)
734{
735 unsigned int xflags = start;
736
39058a0e 737 if (flags & FS_IMMUTABLE_FL)
1da177e4
LT
738 xflags |= XFS_XFLAG_IMMUTABLE;
739 else
740 xflags &= ~XFS_XFLAG_IMMUTABLE;
39058a0e 741 if (flags & FS_APPEND_FL)
1da177e4
LT
742 xflags |= XFS_XFLAG_APPEND;
743 else
744 xflags &= ~XFS_XFLAG_APPEND;
39058a0e 745 if (flags & FS_SYNC_FL)
1da177e4
LT
746 xflags |= XFS_XFLAG_SYNC;
747 else
748 xflags &= ~XFS_XFLAG_SYNC;
39058a0e 749 if (flags & FS_NOATIME_FL)
1da177e4
LT
750 xflags |= XFS_XFLAG_NOATIME;
751 else
752 xflags &= ~XFS_XFLAG_NOATIME;
39058a0e 753 if (flags & FS_NODUMP_FL)
1da177e4
LT
754 xflags |= XFS_XFLAG_NODUMP;
755 else
756 xflags &= ~XFS_XFLAG_NODUMP;
757
758 return xflags;
759}
760
761STATIC unsigned int
762xfs_di2lxflags(
763 __uint16_t di_flags)
764{
765 unsigned int flags = 0;
766
767 if (di_flags & XFS_DIFLAG_IMMUTABLE)
39058a0e 768 flags |= FS_IMMUTABLE_FL;
1da177e4 769 if (di_flags & XFS_DIFLAG_APPEND)
39058a0e 770 flags |= FS_APPEND_FL;
1da177e4 771 if (di_flags & XFS_DIFLAG_SYNC)
39058a0e 772 flags |= FS_SYNC_FL;
1da177e4 773 if (di_flags & XFS_DIFLAG_NOATIME)
39058a0e 774 flags |= FS_NOATIME_FL;
1da177e4 775 if (di_flags & XFS_DIFLAG_NODUMP)
39058a0e 776 flags |= FS_NODUMP_FL;
1da177e4
LT
777 return flags;
778}
779
c83bfab1
CH
780STATIC int
781xfs_ioc_fsgetxattr(
782 xfs_inode_t *ip,
783 int attr,
784 void __user *arg)
785{
786 struct fsxattr fa;
787
a122eb2f
DR
788 memset(&fa, 0, sizeof(struct fsxattr));
789
c83bfab1
CH
790 xfs_ilock(ip, XFS_ILOCK_SHARED);
791 fa.fsx_xflags = xfs_ip2xflags(ip);
792 fa.fsx_extsize = ip->i_d.di_extsize << ip->i_mount->m_sb.sb_blocklog;
793 fa.fsx_projid = ip->i_d.di_projid;
794
795 if (attr) {
796 if (ip->i_afp) {
797 if (ip->i_afp->if_flags & XFS_IFEXTENTS)
798 fa.fsx_nextents = ip->i_afp->if_bytes /
799 sizeof(xfs_bmbt_rec_t);
800 else
801 fa.fsx_nextents = ip->i_d.di_anextents;
802 } else
803 fa.fsx_nextents = 0;
804 } else {
805 if (ip->i_df.if_flags & XFS_IFEXTENTS)
806 fa.fsx_nextents = ip->i_df.if_bytes /
807 sizeof(xfs_bmbt_rec_t);
808 else
809 fa.fsx_nextents = ip->i_d.di_nextents;
810 }
811 xfs_iunlock(ip, XFS_ILOCK_SHARED);
812
813 if (copy_to_user(arg, &fa, sizeof(fa)))
814 return -EFAULT;
815 return 0;
816}
817
25fe55e8
CH
818STATIC void
819xfs_set_diflags(
820 struct xfs_inode *ip,
821 unsigned int xflags)
822{
823 unsigned int di_flags;
824
825 /* can't set PREALLOC this way, just preserve it */
826 di_flags = (ip->i_d.di_flags & XFS_DIFLAG_PREALLOC);
827 if (xflags & XFS_XFLAG_IMMUTABLE)
828 di_flags |= XFS_DIFLAG_IMMUTABLE;
829 if (xflags & XFS_XFLAG_APPEND)
830 di_flags |= XFS_DIFLAG_APPEND;
831 if (xflags & XFS_XFLAG_SYNC)
832 di_flags |= XFS_DIFLAG_SYNC;
833 if (xflags & XFS_XFLAG_NOATIME)
834 di_flags |= XFS_DIFLAG_NOATIME;
835 if (xflags & XFS_XFLAG_NODUMP)
836 di_flags |= XFS_DIFLAG_NODUMP;
837 if (xflags & XFS_XFLAG_PROJINHERIT)
838 di_flags |= XFS_DIFLAG_PROJINHERIT;
839 if (xflags & XFS_XFLAG_NODEFRAG)
840 di_flags |= XFS_DIFLAG_NODEFRAG;
841 if (xflags & XFS_XFLAG_FILESTREAM)
842 di_flags |= XFS_DIFLAG_FILESTREAM;
843 if ((ip->i_d.di_mode & S_IFMT) == S_IFDIR) {
844 if (xflags & XFS_XFLAG_RTINHERIT)
845 di_flags |= XFS_DIFLAG_RTINHERIT;
846 if (xflags & XFS_XFLAG_NOSYMLINKS)
847 di_flags |= XFS_DIFLAG_NOSYMLINKS;
848 if (xflags & XFS_XFLAG_EXTSZINHERIT)
849 di_flags |= XFS_DIFLAG_EXTSZINHERIT;
850 } else if ((ip->i_d.di_mode & S_IFMT) == S_IFREG) {
851 if (xflags & XFS_XFLAG_REALTIME)
852 di_flags |= XFS_DIFLAG_REALTIME;
853 if (xflags & XFS_XFLAG_EXTSIZE)
854 di_flags |= XFS_DIFLAG_EXTSIZE;
855 }
856
857 ip->i_d.di_flags = di_flags;
858}
859
f13fae2d
CH
860STATIC void
861xfs_diflags_to_linux(
862 struct xfs_inode *ip)
863{
e4f75291 864 struct inode *inode = VFS_I(ip);
f13fae2d
CH
865 unsigned int xflags = xfs_ip2xflags(ip);
866
867 if (xflags & XFS_XFLAG_IMMUTABLE)
868 inode->i_flags |= S_IMMUTABLE;
869 else
870 inode->i_flags &= ~S_IMMUTABLE;
871 if (xflags & XFS_XFLAG_APPEND)
872 inode->i_flags |= S_APPEND;
873 else
874 inode->i_flags &= ~S_APPEND;
875 if (xflags & XFS_XFLAG_SYNC)
876 inode->i_flags |= S_SYNC;
877 else
878 inode->i_flags &= ~S_SYNC;
879 if (xflags & XFS_XFLAG_NOATIME)
880 inode->i_flags |= S_NOATIME;
881 else
882 inode->i_flags &= ~S_NOATIME;
883}
25fe55e8
CH
884
885#define FSX_PROJID 1
886#define FSX_EXTSIZE 2
887#define FSX_XFLAGS 4
888#define FSX_NONBLOCK 8
889
890STATIC int
891xfs_ioctl_setattr(
892 xfs_inode_t *ip,
893 struct fsxattr *fa,
894 int mask)
895{
896 struct xfs_mount *mp = ip->i_mount;
897 struct xfs_trans *tp;
898 unsigned int lock_flags = 0;
7d095257
CH
899 struct xfs_dquot *udqp = NULL;
900 struct xfs_dquot *gdqp = NULL;
25fe55e8
CH
901 struct xfs_dquot *olddquot = NULL;
902 int code;
903
cca28fb8 904 trace_xfs_ioctl_setattr(ip);
25fe55e8
CH
905
906 if (mp->m_flags & XFS_MOUNT_RDONLY)
907 return XFS_ERROR(EROFS);
908 if (XFS_FORCED_SHUTDOWN(mp))
909 return XFS_ERROR(EIO);
910
23963e54
AM
911 /*
912 * Disallow 32bit project ids because on-disk structure
913 * is 16bit only.
914 */
915 if ((mask & FSX_PROJID) && (fa->fsx_projid > (__uint16_t)-1))
916 return XFS_ERROR(EINVAL);
917
25fe55e8
CH
918 /*
919 * If disk quotas is on, we make sure that the dquots do exist on disk,
920 * before we start any other transactions. Trying to do this later
921 * is messy. We don't care to take a readlock to look at the ids
922 * in inode here, because we can't hold it across the trans_reserve.
923 * If the IDs do change before we take the ilock, we're covered
924 * because the i_*dquot fields will get updated anyway.
925 */
926 if (XFS_IS_QUOTA_ON(mp) && (mask & FSX_PROJID)) {
7d095257 927 code = xfs_qm_vop_dqalloc(ip, ip->i_d.di_uid,
25fe55e8
CH
928 ip->i_d.di_gid, fa->fsx_projid,
929 XFS_QMOPT_PQUOTA, &udqp, &gdqp);
930 if (code)
931 return code;
932 }
933
934 /*
935 * For the other attributes, we acquire the inode lock and
936 * first do an error checking pass.
937 */
938 tp = xfs_trans_alloc(mp, XFS_TRANS_SETATTR_NOT_SIZE);
939 code = xfs_trans_reserve(tp, 0, XFS_ICHANGE_LOG_RES(mp), 0, 0, 0);
940 if (code)
941 goto error_return;
942
943 lock_flags = XFS_ILOCK_EXCL;
944 xfs_ilock(ip, lock_flags);
945
946 /*
947 * CAP_FOWNER overrides the following restrictions:
948 *
949 * The user ID of the calling process must be equal
950 * to the file owner ID, except in cases where the
951 * CAP_FSETID capability is applicable.
952 */
91b77712 953 if (current_fsuid() != ip->i_d.di_uid && !capable(CAP_FOWNER)) {
25fe55e8
CH
954 code = XFS_ERROR(EPERM);
955 goto error_return;
956 }
957
958 /*
959 * Do a quota reservation only if projid is actually going to change.
960 */
961 if (mask & FSX_PROJID) {
7d095257
CH
962 if (XFS_IS_QUOTA_RUNNING(mp) &&
963 XFS_IS_PQUOTA_ON(mp) &&
25fe55e8
CH
964 ip->i_d.di_projid != fa->fsx_projid) {
965 ASSERT(tp);
7d095257 966 code = xfs_qm_vop_chown_reserve(tp, ip, udqp, gdqp,
25fe55e8
CH
967 capable(CAP_FOWNER) ?
968 XFS_QMOPT_FORCE_RES : 0);
969 if (code) /* out of quota */
970 goto error_return;
971 }
972 }
973
974 if (mask & FSX_EXTSIZE) {
975 /*
976 * Can't change extent size if any extents are allocated.
977 */
978 if (ip->i_d.di_nextents &&
979 ((ip->i_d.di_extsize << mp->m_sb.sb_blocklog) !=
980 fa->fsx_extsize)) {
981 code = XFS_ERROR(EINVAL); /* EFBIG? */
982 goto error_return;
983 }
984
985 /*
986 * Extent size must be a multiple of the appropriate block
987 * size, if set at all.
988 */
989 if (fa->fsx_extsize != 0) {
990 xfs_extlen_t size;
991
992 if (XFS_IS_REALTIME_INODE(ip) ||
993 ((mask & FSX_XFLAGS) &&
994 (fa->fsx_xflags & XFS_XFLAG_REALTIME))) {
995 size = mp->m_sb.sb_rextsize <<
996 mp->m_sb.sb_blocklog;
997 } else {
998 size = mp->m_sb.sb_blocksize;
999 }
1000
1001 if (fa->fsx_extsize % size) {
1002 code = XFS_ERROR(EINVAL);
1003 goto error_return;
1004 }
1005 }
1006 }
1007
1008
1009 if (mask & FSX_XFLAGS) {
1010 /*
1011 * Can't change realtime flag if any extents are allocated.
1012 */
1013 if ((ip->i_d.di_nextents || ip->i_delayed_blks) &&
1014 (XFS_IS_REALTIME_INODE(ip)) !=
1015 (fa->fsx_xflags & XFS_XFLAG_REALTIME)) {
1016 code = XFS_ERROR(EINVAL); /* EFBIG? */
1017 goto error_return;
1018 }
1019
1020 /*
1021 * If realtime flag is set then must have realtime data.
1022 */
1023 if ((fa->fsx_xflags & XFS_XFLAG_REALTIME)) {
1024 if ((mp->m_sb.sb_rblocks == 0) ||
1025 (mp->m_sb.sb_rextsize == 0) ||
1026 (ip->i_d.di_extsize % mp->m_sb.sb_rextsize)) {
1027 code = XFS_ERROR(EINVAL);
1028 goto error_return;
1029 }
1030 }
1031
1032 /*
1033 * Can't modify an immutable/append-only file unless
1034 * we have appropriate permission.
1035 */
1036 if ((ip->i_d.di_flags &
1037 (XFS_DIFLAG_IMMUTABLE|XFS_DIFLAG_APPEND) ||
1038 (fa->fsx_xflags &
1039 (XFS_XFLAG_IMMUTABLE | XFS_XFLAG_APPEND))) &&
1040 !capable(CAP_LINUX_IMMUTABLE)) {
1041 code = XFS_ERROR(EPERM);
1042 goto error_return;
1043 }
1044 }
1045
898621d5 1046 xfs_trans_ijoin(tp, ip);
25fe55e8
CH
1047
1048 /*
1049 * Change file ownership. Must be the owner or privileged.
25fe55e8
CH
1050 */
1051 if (mask & FSX_PROJID) {
1052 /*
1053 * CAP_FSETID overrides the following restrictions:
1054 *
1055 * The set-user-ID and set-group-ID bits of a file will be
1056 * cleared upon successful return from chown()
1057 */
1058 if ((ip->i_d.di_mode & (S_ISUID|S_ISGID)) &&
1059 !capable(CAP_FSETID))
1060 ip->i_d.di_mode &= ~(S_ISUID|S_ISGID);
1061
1062 /*
1063 * Change the ownerships and register quota modifications
1064 * in the transaction.
1065 */
1066 if (ip->i_d.di_projid != fa->fsx_projid) {
7d095257
CH
1067 if (XFS_IS_QUOTA_RUNNING(mp) && XFS_IS_PQUOTA_ON(mp)) {
1068 olddquot = xfs_qm_vop_chown(tp, ip,
25fe55e8
CH
1069 &ip->i_gdquot, gdqp);
1070 }
1071 ip->i_d.di_projid = fa->fsx_projid;
1072
1073 /*
1074 * We may have to rev the inode as well as
1075 * the superblock version number since projids didn't
1076 * exist before DINODE_VERSION_2 and SB_VERSION_NLINK.
1077 */
51ce16d5 1078 if (ip->i_d.di_version == 1)
25fe55e8
CH
1079 xfs_bump_ino_vers2(tp, ip);
1080 }
1081
1082 }
1083
1084 if (mask & FSX_EXTSIZE)
1085 ip->i_d.di_extsize = fa->fsx_extsize >> mp->m_sb.sb_blocklog;
f13fae2d 1086 if (mask & FSX_XFLAGS) {
25fe55e8 1087 xfs_set_diflags(ip, fa->fsx_xflags);
f13fae2d
CH
1088 xfs_diflags_to_linux(ip);
1089 }
25fe55e8
CH
1090
1091 xfs_trans_log_inode(tp, ip, XFS_ILOG_CORE);
1092 xfs_ichgtime(ip, XFS_ICHGTIME_CHG);
1093
1094 XFS_STATS_INC(xs_ig_attrchg);
1095
1096 /*
1097 * If this is a synchronous mount, make sure that the
1098 * transaction goes to disk before returning to the user.
1099 * This is slightly sub-optimal in that truncates require
1100 * two sync transactions instead of one for wsync filesystems.
1101 * One for the truncate and one for the timestamps since we
1102 * don't want to change the timestamps unless we're sure the
1103 * truncate worked. Truncates are less than 1% of the laddis
1104 * mix so this probably isn't worth the trouble to optimize.
1105 */
1106 if (mp->m_flags & XFS_MOUNT_WSYNC)
1107 xfs_trans_set_sync(tp);
1108 code = xfs_trans_commit(tp, 0);
1109 xfs_iunlock(ip, lock_flags);
1110
1111 /*
1112 * Release any dquot(s) the inode had kept before chown.
1113 */
7d095257
CH
1114 xfs_qm_dqrele(olddquot);
1115 xfs_qm_dqrele(udqp);
1116 xfs_qm_dqrele(gdqp);
25fe55e8 1117
288699fe 1118 return code;
25fe55e8
CH
1119
1120 error_return:
7d095257
CH
1121 xfs_qm_dqrele(udqp);
1122 xfs_qm_dqrele(gdqp);
25fe55e8
CH
1123 xfs_trans_cancel(tp, 0);
1124 if (lock_flags)
1125 xfs_iunlock(ip, lock_flags);
1126 return code;
1127}
1128
1da177e4 1129STATIC int
df26cfe8 1130xfs_ioc_fssetxattr(
1da177e4
LT
1131 xfs_inode_t *ip,
1132 struct file *filp,
1da177e4
LT
1133 void __user *arg)
1134{
1135 struct fsxattr fa;
25fe55e8 1136 unsigned int mask;
df26cfe8
LM
1137
1138 if (copy_from_user(&fa, arg, sizeof(fa)))
1139 return -EFAULT;
1da177e4 1140
25fe55e8 1141 mask = FSX_XFLAGS | FSX_EXTSIZE | FSX_PROJID;
df26cfe8 1142 if (filp->f_flags & (O_NDELAY|O_NONBLOCK))
25fe55e8 1143 mask |= FSX_NONBLOCK;
1da177e4 1144
25fe55e8 1145 return -xfs_ioctl_setattr(ip, &fa, mask);
df26cfe8 1146}
1da177e4 1147
df26cfe8
LM
1148STATIC int
1149xfs_ioc_getxflags(
1150 xfs_inode_t *ip,
1151 void __user *arg)
1152{
1153 unsigned int flags;
1da177e4 1154
df26cfe8
LM
1155 flags = xfs_di2lxflags(ip->i_d.di_flags);
1156 if (copy_to_user(arg, &flags, sizeof(flags)))
1157 return -EFAULT;
1158 return 0;
1159}
1da177e4 1160
df26cfe8
LM
1161STATIC int
1162xfs_ioc_setxflags(
1163 xfs_inode_t *ip,
1164 struct file *filp,
1165 void __user *arg)
1166{
25fe55e8 1167 struct fsxattr fa;
df26cfe8 1168 unsigned int flags;
25fe55e8 1169 unsigned int mask;
1da177e4 1170
df26cfe8
LM
1171 if (copy_from_user(&flags, arg, sizeof(flags)))
1172 return -EFAULT;
1da177e4 1173
df26cfe8
LM
1174 if (flags & ~(FS_IMMUTABLE_FL | FS_APPEND_FL | \
1175 FS_NOATIME_FL | FS_NODUMP_FL | \
1176 FS_SYNC_FL))
1177 return -EOPNOTSUPP;
1da177e4 1178
25fe55e8 1179 mask = FSX_XFLAGS;
df26cfe8 1180 if (filp->f_flags & (O_NDELAY|O_NONBLOCK))
25fe55e8
CH
1181 mask |= FSX_NONBLOCK;
1182 fa.fsx_xflags = xfs_merge_ioc_xflags(flags, xfs_ip2xflags(ip));
1da177e4 1183
25fe55e8 1184 return -xfs_ioctl_setattr(ip, &fa, mask);
1da177e4
LT
1185}
1186
8a7141a8
ES
1187STATIC int
1188xfs_getbmap_format(void **ap, struct getbmapx *bmv, int *full)
1189{
1190 struct getbmap __user *base = *ap;
1191
1192 /* copy only getbmap portion (not getbmapx) */
1193 if (copy_to_user(base, bmv, sizeof(struct getbmap)))
1194 return XFS_ERROR(EFAULT);
1195
1196 *ap += sizeof(struct getbmap);
1197 return 0;
1198}
1199
1da177e4
LT
1200STATIC int
1201xfs_ioc_getbmap(
993386c1 1202 struct xfs_inode *ip,
1da177e4
LT
1203 int ioflags,
1204 unsigned int cmd,
1205 void __user *arg)
1206{
8a7141a8 1207 struct getbmapx bmx;
1da177e4
LT
1208 int error;
1209
8a7141a8 1210 if (copy_from_user(&bmx, arg, sizeof(struct getbmapx)))
1da177e4
LT
1211 return -XFS_ERROR(EFAULT);
1212
8a7141a8 1213 if (bmx.bmv_count < 2)
1da177e4
LT
1214 return -XFS_ERROR(EINVAL);
1215
8a7141a8 1216 bmx.bmv_iflags = (cmd == XFS_IOC_GETBMAPA ? BMV_IF_ATTRFORK : 0);
1da177e4 1217 if (ioflags & IO_INVIS)
8a7141a8 1218 bmx.bmv_iflags |= BMV_IF_NO_DMAPI_READ;
1da177e4 1219
8a7141a8
ES
1220 error = xfs_getbmap(ip, &bmx, xfs_getbmap_format,
1221 (struct getbmap *)arg+1);
1da177e4
LT
1222 if (error)
1223 return -error;
1224
8a7141a8
ES
1225 /* copy back header - only size of getbmap */
1226 if (copy_to_user(arg, &bmx, sizeof(struct getbmap)))
1da177e4
LT
1227 return -XFS_ERROR(EFAULT);
1228 return 0;
1229}
1230
8a7141a8
ES
1231STATIC int
1232xfs_getbmapx_format(void **ap, struct getbmapx *bmv, int *full)
1233{
1234 struct getbmapx __user *base = *ap;
1235
1236 if (copy_to_user(base, bmv, sizeof(struct getbmapx)))
1237 return XFS_ERROR(EFAULT);
1238
1239 *ap += sizeof(struct getbmapx);
1240 return 0;
1241}
1242
1da177e4
LT
1243STATIC int
1244xfs_ioc_getbmapx(
993386c1 1245 struct xfs_inode *ip,
1da177e4
LT
1246 void __user *arg)
1247{
1248 struct getbmapx bmx;
1da177e4
LT
1249 int error;
1250
1251 if (copy_from_user(&bmx, arg, sizeof(bmx)))
1252 return -XFS_ERROR(EFAULT);
1253
1254 if (bmx.bmv_count < 2)
1255 return -XFS_ERROR(EINVAL);
1256
8a7141a8 1257 if (bmx.bmv_iflags & (~BMV_IF_VALID))
1da177e4
LT
1258 return -XFS_ERROR(EINVAL);
1259
8a7141a8
ES
1260 error = xfs_getbmap(ip, &bmx, xfs_getbmapx_format,
1261 (struct getbmapx *)arg+1);
1da177e4
LT
1262 if (error)
1263 return -error;
1264
8a7141a8
ES
1265 /* copy back header */
1266 if (copy_to_user(arg, &bmx, sizeof(struct getbmapx)))
1da177e4
LT
1267 return -XFS_ERROR(EFAULT);
1268
1269 return 0;
1270}
df26cfe8 1271
4d4be482
CH
1272/*
1273 * Note: some of the ioctl's return positive numbers as a
1274 * byte count indicating success, such as readlink_by_handle.
1275 * So we don't "sign flip" like most other routines. This means
1276 * true errors need to be returned as a negative value.
1277 */
1278long
1279xfs_file_ioctl(
df26cfe8 1280 struct file *filp,
df26cfe8 1281 unsigned int cmd,
4d4be482 1282 unsigned long p)
df26cfe8
LM
1283{
1284 struct inode *inode = filp->f_path.dentry->d_inode;
4d4be482
CH
1285 struct xfs_inode *ip = XFS_I(inode);
1286 struct xfs_mount *mp = ip->i_mount;
1287 void __user *arg = (void __user *)p;
1288 int ioflags = 0;
df26cfe8
LM
1289 int error;
1290
4d4be482
CH
1291 if (filp->f_mode & FMODE_NOCMTIME)
1292 ioflags |= IO_INVIS;
df26cfe8 1293
cca28fb8 1294 trace_xfs_file_ioctl(ip);
4d4be482
CH
1295
1296 switch (cmd) {
df26cfe8
LM
1297 case XFS_IOC_ALLOCSP:
1298 case XFS_IOC_FREESP:
1299 case XFS_IOC_RESVSP:
1300 case XFS_IOC_UNRESVSP:
1301 case XFS_IOC_ALLOCSP64:
1302 case XFS_IOC_FREESP64:
1303 case XFS_IOC_RESVSP64:
743bb465 1304 case XFS_IOC_UNRESVSP64: {
1305 xfs_flock64_t bf;
df26cfe8 1306
743bb465 1307 if (copy_from_user(&bf, arg, sizeof(bf)))
1308 return -XFS_ERROR(EFAULT);
1309 return xfs_ioc_space(ip, inode, filp, ioflags, cmd, &bf);
1310 }
df26cfe8
LM
1311 case XFS_IOC_DIOINFO: {
1312 struct dioattr da;
1313 xfs_buftarg_t *target =
1314 XFS_IS_REALTIME_INODE(ip) ?
1315 mp->m_rtdev_targp : mp->m_ddev_targp;
1316
1317 da.d_mem = da.d_miniosz = 1 << target->bt_sshift;
1318 da.d_maxiosz = INT_MAX & ~(da.d_miniosz - 1);
1319
1320 if (copy_to_user(arg, &da, sizeof(da)))
1321 return -XFS_ERROR(EFAULT);
1322 return 0;
1323 }
1324
1325 case XFS_IOC_FSBULKSTAT_SINGLE:
1326 case XFS_IOC_FSBULKSTAT:
1327 case XFS_IOC_FSINUMBERS:
1328 return xfs_ioc_bulkstat(mp, cmd, arg);
1329
1330 case XFS_IOC_FSGEOMETRY_V1:
1331 return xfs_ioc_fsgeometry_v1(mp, arg);
1332
1333 case XFS_IOC_FSGEOMETRY:
1334 return xfs_ioc_fsgeometry(mp, arg);
1335
1336 case XFS_IOC_GETVERSION:
1337 return put_user(inode->i_generation, (int __user *)arg);
1338
1339 case XFS_IOC_FSGETXATTR:
1340 return xfs_ioc_fsgetxattr(ip, 0, arg);
1341 case XFS_IOC_FSGETXATTRA:
1342 return xfs_ioc_fsgetxattr(ip, 1, arg);
65e67f51
LM
1343 case XFS_IOC_FSSETXATTR:
1344 return xfs_ioc_fssetxattr(ip, filp, arg);
df26cfe8 1345 case XFS_IOC_GETXFLAGS:
65e67f51 1346 return xfs_ioc_getxflags(ip, arg);
df26cfe8 1347 case XFS_IOC_SETXFLAGS:
65e67f51 1348 return xfs_ioc_setxflags(ip, filp, arg);
df26cfe8
LM
1349
1350 case XFS_IOC_FSSETDM: {
1351 struct fsdmidata dmi;
1352
1353 if (copy_from_user(&dmi, arg, sizeof(dmi)))
1354 return -XFS_ERROR(EFAULT);
1355
1356 error = xfs_set_dmattrs(ip, dmi.fsd_dmevmask,
1357 dmi.fsd_dmstate);
1358 return -error;
1359 }
1360
1361 case XFS_IOC_GETBMAP:
1362 case XFS_IOC_GETBMAPA:
1363 return xfs_ioc_getbmap(ip, ioflags, cmd, arg);
1364
1365 case XFS_IOC_GETBMAPX:
1366 return xfs_ioc_getbmapx(ip, arg);
1367
1368 case XFS_IOC_FD_TO_HANDLE:
1369 case XFS_IOC_PATH_TO_HANDLE:
743bb465 1370 case XFS_IOC_PATH_TO_FSHANDLE: {
1371 xfs_fsop_handlereq_t hreq;
df26cfe8 1372
743bb465 1373 if (copy_from_user(&hreq, arg, sizeof(hreq)))
1374 return -XFS_ERROR(EFAULT);
1375 return xfs_find_handle(cmd, &hreq);
1376 }
1377 case XFS_IOC_OPEN_BY_HANDLE: {
1378 xfs_fsop_handlereq_t hreq;
df26cfe8 1379
743bb465 1380 if (copy_from_user(&hreq, arg, sizeof(xfs_fsop_handlereq_t)))
1381 return -XFS_ERROR(EFAULT);
d296d30a 1382 return xfs_open_by_handle(filp, &hreq);
743bb465 1383 }
df26cfe8 1384 case XFS_IOC_FSSETDM_BY_HANDLE:
d296d30a 1385 return xfs_fssetdm_by_handle(filp, arg);
df26cfe8 1386
743bb465 1387 case XFS_IOC_READLINK_BY_HANDLE: {
1388 xfs_fsop_handlereq_t hreq;
df26cfe8 1389
743bb465 1390 if (copy_from_user(&hreq, arg, sizeof(xfs_fsop_handlereq_t)))
1391 return -XFS_ERROR(EFAULT);
d296d30a 1392 return xfs_readlink_by_handle(filp, &hreq);
743bb465 1393 }
df26cfe8 1394 case XFS_IOC_ATTRLIST_BY_HANDLE:
d296d30a 1395 return xfs_attrlist_by_handle(filp, arg);
df26cfe8
LM
1396
1397 case XFS_IOC_ATTRMULTI_BY_HANDLE:
d296d30a 1398 return xfs_attrmulti_by_handle(filp, arg);
df26cfe8
LM
1399
1400 case XFS_IOC_SWAPEXT: {
743bb465 1401 struct xfs_swapext sxp;
1402
1403 if (copy_from_user(&sxp, arg, sizeof(xfs_swapext_t)))
1404 return -XFS_ERROR(EFAULT);
1405 error = xfs_swapext(&sxp);
df26cfe8
LM
1406 return -error;
1407 }
1408
1409 case XFS_IOC_FSCOUNTS: {
1410 xfs_fsop_counts_t out;
1411
1412 error = xfs_fs_counts(mp, &out);
1413 if (error)
1414 return -error;
1415
1416 if (copy_to_user(arg, &out, sizeof(out)))
1417 return -XFS_ERROR(EFAULT);
1418 return 0;
1419 }
1420
1421 case XFS_IOC_SET_RESBLKS: {
1422 xfs_fsop_resblks_t inout;
1423 __uint64_t in;
1424
1425 if (!capable(CAP_SYS_ADMIN))
1426 return -EPERM;
1427
d5db0f97
ES
1428 if (mp->m_flags & XFS_MOUNT_RDONLY)
1429 return -XFS_ERROR(EROFS);
1430
df26cfe8
LM
1431 if (copy_from_user(&inout, arg, sizeof(inout)))
1432 return -XFS_ERROR(EFAULT);
1433
1434 /* input parameter is passed in resblks field of structure */
1435 in = inout.resblks;
1436 error = xfs_reserve_blocks(mp, &in, &inout);
1437 if (error)
1438 return -error;
1439
1440 if (copy_to_user(arg, &inout, sizeof(inout)))
1441 return -XFS_ERROR(EFAULT);
1442 return 0;
1443 }
1444
1445 case XFS_IOC_GET_RESBLKS: {
1446 xfs_fsop_resblks_t out;
1447
1448 if (!capable(CAP_SYS_ADMIN))
1449 return -EPERM;
1450
1451 error = xfs_reserve_blocks(mp, NULL, &out);
1452 if (error)
1453 return -error;
1454
1455 if (copy_to_user(arg, &out, sizeof(out)))
1456 return -XFS_ERROR(EFAULT);
1457
1458 return 0;
1459 }
1460
1461 case XFS_IOC_FSGROWFSDATA: {
1462 xfs_growfs_data_t in;
1463
df26cfe8
LM
1464 if (copy_from_user(&in, arg, sizeof(in)))
1465 return -XFS_ERROR(EFAULT);
1466
1467 error = xfs_growfs_data(mp, &in);
1468 return -error;
1469 }
1470
1471 case XFS_IOC_FSGROWFSLOG: {
1472 xfs_growfs_log_t in;
1473
df26cfe8
LM
1474 if (copy_from_user(&in, arg, sizeof(in)))
1475 return -XFS_ERROR(EFAULT);
1476
1477 error = xfs_growfs_log(mp, &in);
1478 return -error;
1479 }
1480
1481 case XFS_IOC_FSGROWFSRT: {
1482 xfs_growfs_rt_t in;
1483
df26cfe8
LM
1484 if (copy_from_user(&in, arg, sizeof(in)))
1485 return -XFS_ERROR(EFAULT);
1486
1487 error = xfs_growfs_rt(mp, &in);
1488 return -error;
1489 }
1490
df26cfe8
LM
1491 case XFS_IOC_GOINGDOWN: {
1492 __uint32_t in;
1493
1494 if (!capable(CAP_SYS_ADMIN))
1495 return -EPERM;
1496
1497 if (get_user(in, (__uint32_t __user *)arg))
1498 return -XFS_ERROR(EFAULT);
1499
1500 error = xfs_fs_goingdown(mp, in);
1501 return -error;
1502 }
1503
1504 case XFS_IOC_ERROR_INJECTION: {
1505 xfs_error_injection_t in;
1506
1507 if (!capable(CAP_SYS_ADMIN))
1508 return -EPERM;
1509
1510 if (copy_from_user(&in, arg, sizeof(in)))
1511 return -XFS_ERROR(EFAULT);
1512
1513 error = xfs_errortag_add(in.errtag, mp);
1514 return -error;
1515 }
1516
1517 case XFS_IOC_ERROR_CLEARALL:
1518 if (!capable(CAP_SYS_ADMIN))
1519 return -EPERM;
1520
1521 error = xfs_errortag_clearall(mp, 1);
1522 return -error;
1523
1524 default:
1525 return -ENOTTY;
1526 }
1527}