11da177e4SLinus Torvalds /* 21da177e4SLinus Torvalds * linux/fs/nfsd/nfsfh.c 31da177e4SLinus Torvalds * 41da177e4SLinus Torvalds * NFS server file handle treatment. 51da177e4SLinus Torvalds * 61da177e4SLinus Torvalds * Copyright (C) 1995, 1996 Olaf Kirch <okir@monad.swb.de> 71da177e4SLinus Torvalds * Portions Copyright (C) 1999 G. Allen Morris III <gam3@acm.org> 81da177e4SLinus Torvalds * Extensive rewrite by Neil Brown <neilb@cse.unsw.edu.au> Southern-Spring 1999 91da177e4SLinus Torvalds * ... and again Southern-Winter 2001 to support export_operations 101da177e4SLinus Torvalds */ 111da177e4SLinus Torvalds 121da177e4SLinus Torvalds #include <linux/slab.h> 131da177e4SLinus Torvalds #include <linux/fs.h> 141da177e4SLinus Torvalds #include <linux/unistd.h> 151da177e4SLinus Torvalds #include <linux/string.h> 161da177e4SLinus Torvalds #include <linux/stat.h> 171da177e4SLinus Torvalds #include <linux/dcache.h> 18a5694255SChristoph Hellwig #include <linux/exportfs.h> 191da177e4SLinus Torvalds #include <linux/mount.h> 201da177e4SLinus Torvalds 21ad06e4bdSChuck Lever #include <linux/sunrpc/clnt.h> 221da177e4SLinus Torvalds #include <linux/sunrpc/svc.h> 2332c1eb0cSAndy Adamson #include <linux/sunrpc/svcauth_gss.h> 241da177e4SLinus Torvalds #include <linux/nfsd/nfsd.h> 252e8138a2SJ. Bruce Fields #include "auth.h" 261da177e4SLinus Torvalds 271da177e4SLinus Torvalds #define NFSDDBG_FACILITY NFSDDBG_FH 281da177e4SLinus Torvalds 291da177e4SLinus Torvalds 301da177e4SLinus Torvalds static int nfsd_nr_verified; 311da177e4SLinus Torvalds static int nfsd_nr_put; 321da177e4SLinus Torvalds 331da177e4SLinus Torvalds /* 341da177e4SLinus Torvalds * our acceptability function. 351da177e4SLinus Torvalds * if NOSUBTREECHECK, accept anything 361da177e4SLinus Torvalds * if not, require that we can walk up to exp->ex_dentry 371da177e4SLinus Torvalds * doing some checks on the 'x' bits 381da177e4SLinus Torvalds */ 391da177e4SLinus Torvalds static int nfsd_acceptable(void *expv, struct dentry *dentry) 401da177e4SLinus Torvalds { 411da177e4SLinus Torvalds struct svc_export *exp = expv; 421da177e4SLinus Torvalds int rv; 431da177e4SLinus Torvalds struct dentry *tdentry; 441da177e4SLinus Torvalds struct dentry *parent; 451da177e4SLinus Torvalds 461da177e4SLinus Torvalds if (exp->ex_flags & NFSEXP_NOSUBTREECHECK) 471da177e4SLinus Torvalds return 1; 481da177e4SLinus Torvalds 491da177e4SLinus Torvalds tdentry = dget(dentry); 5054775491SJan Blunck while (tdentry != exp->ex_path.dentry && !IS_ROOT(tdentry)) { 511da177e4SLinus Torvalds /* make sure parents give x permission to user */ 521da177e4SLinus Torvalds int err; 531da177e4SLinus Torvalds parent = dget_parent(tdentry); 54f419a2e3SAl Viro err = inode_permission(parent->d_inode, MAY_EXEC); 551da177e4SLinus Torvalds if (err < 0) { 561da177e4SLinus Torvalds dput(parent); 571da177e4SLinus Torvalds break; 581da177e4SLinus Torvalds } 591da177e4SLinus Torvalds dput(tdentry); 601da177e4SLinus Torvalds tdentry = parent; 611da177e4SLinus Torvalds } 6254775491SJan Blunck if (tdentry != exp->ex_path.dentry) 631da177e4SLinus Torvalds dprintk("nfsd_acceptable failed at %p %s\n", tdentry, tdentry->d_name.name); 6454775491SJan Blunck rv = (tdentry == exp->ex_path.dentry); 651da177e4SLinus Torvalds dput(tdentry); 661da177e4SLinus Torvalds return rv; 671da177e4SLinus Torvalds } 681da177e4SLinus Torvalds 691da177e4SLinus Torvalds /* Type check. The correct error return for type mismatches does not seem to be 701da177e4SLinus Torvalds * generally agreed upon. SunOS seems to use EISDIR if file isn't S_IFREG; a 711da177e4SLinus Torvalds * comment in the NFSv3 spec says this is incorrect (implementation notes for 721da177e4SLinus Torvalds * the write call). 731da177e4SLinus Torvalds */ 7483b11340SAl Viro static inline __be32 751da177e4SLinus Torvalds nfsd_mode_check(struct svc_rqst *rqstp, umode_t mode, int type) 761da177e4SLinus Torvalds { 771da177e4SLinus Torvalds /* Type can be negative when creating hardlinks - not to a dir */ 781da177e4SLinus Torvalds if (type > 0 && (mode & S_IFMT) != type) { 791da177e4SLinus Torvalds if (rqstp->rq_vers == 4 && (mode & S_IFMT) == S_IFLNK) 801da177e4SLinus Torvalds return nfserr_symlink; 811da177e4SLinus Torvalds else if (type == S_IFDIR) 821da177e4SLinus Torvalds return nfserr_notdir; 831da177e4SLinus Torvalds else if ((mode & S_IFMT) == S_IFDIR) 841da177e4SLinus Torvalds return nfserr_isdir; 851da177e4SLinus Torvalds else 861da177e4SLinus Torvalds return nfserr_inval; 871da177e4SLinus Torvalds } 881da177e4SLinus Torvalds if (type < 0 && (mode & S_IFMT) == -type) { 891da177e4SLinus Torvalds if (rqstp->rq_vers == 4 && (mode & S_IFMT) == S_IFLNK) 901da177e4SLinus Torvalds return nfserr_symlink; 911da177e4SLinus Torvalds else if (type == -S_IFDIR) 921da177e4SLinus Torvalds return nfserr_isdir; 931da177e4SLinus Torvalds else 941da177e4SLinus Torvalds return nfserr_notdir; 951da177e4SLinus Torvalds } 961da177e4SLinus Torvalds return 0; 971da177e4SLinus Torvalds } 981da177e4SLinus Torvalds 996fa02839SJ. Bruce Fields static __be32 nfsd_setuser_and_check_port(struct svc_rqst *rqstp, 1006fa02839SJ. Bruce Fields struct svc_export *exp) 1016fa02839SJ. Bruce Fields { 1026fa02839SJ. Bruce Fields /* Check if the request originated from a secure port. */ 1036fa02839SJ. Bruce Fields if (!rqstp->rq_secure && EX_SECURE(exp)) { 1045216a8e7SPavel Emelyanov RPC_IFDEBUG(char buf[RPC_MAX_ADDRBUFLEN]); 1056fa02839SJ. Bruce Fields dprintk(KERN_WARNING 1066fa02839SJ. Bruce Fields "nfsd: request from insecure port %s!\n", 1076fa02839SJ. Bruce Fields svc_print_addr(rqstp, buf, sizeof(buf))); 1086fa02839SJ. Bruce Fields return nfserr_perm; 1096fa02839SJ. Bruce Fields } 1106fa02839SJ. Bruce Fields 1116fa02839SJ. Bruce Fields /* Set user creds for this exportpoint */ 1126fa02839SJ. Bruce Fields return nfserrno(nfsd_setuser(rqstp, exp)); 1136fa02839SJ. Bruce Fields } 1146fa02839SJ. Bruce Fields 1151da177e4SLinus Torvalds /* 11603550facSJ. Bruce Fields * Use the given filehandle to look up the corresponding export and 11703550facSJ. Bruce Fields * dentry. On success, the results are used to set fh_export and 11803550facSJ. Bruce Fields * fh_dentry. 1191da177e4SLinus Torvalds */ 12003550facSJ. Bruce Fields static __be32 nfsd_set_fh_dentry(struct svc_rqst *rqstp, struct svc_fh *fhp) 1211da177e4SLinus Torvalds { 1221da177e4SLinus Torvalds struct knfsd_fh *fh = &fhp->fh_handle; 1236e91ea2bSChristoph Hellwig struct fid *fid = NULL, sfid; 12403550facSJ. Bruce Fields struct svc_export *exp; 12503550facSJ. Bruce Fields struct dentry *dentry; 1261da177e4SLinus Torvalds int fileid_type; 1271da177e4SLinus Torvalds int data_left = fh->fh_size/4; 12803550facSJ. Bruce Fields __be32 error; 1291da177e4SLinus Torvalds 1301da177e4SLinus Torvalds error = nfserr_stale; 1311da177e4SLinus Torvalds if (rqstp->rq_vers > 2) 1321da177e4SLinus Torvalds error = nfserr_badhandle; 1331da177e4SLinus Torvalds if (rqstp->rq_vers == 4 && fh->fh_size == 0) 1341da177e4SLinus Torvalds return nfserr_nofilehandle; 1351da177e4SLinus Torvalds 1361da177e4SLinus Torvalds if (fh->fh_version == 1) { 1371da177e4SLinus Torvalds int len; 13803550facSJ. Bruce Fields 13903550facSJ. Bruce Fields if (--data_left < 0) 14003550facSJ. Bruce Fields return error; 14103550facSJ. Bruce Fields if (fh->fh_auth_type != 0) 14203550facSJ. Bruce Fields return error; 1431da177e4SLinus Torvalds len = key_len(fh->fh_fsid_type) / 4; 14403550facSJ. Bruce Fields if (len == 0) 14503550facSJ. Bruce Fields return error; 146af6a4e28SNeilBrown if (fh->fh_fsid_type == FSID_MAJOR_MINOR) { 1471da177e4SLinus Torvalds /* deprecated, convert to type 3 */ 148af6a4e28SNeilBrown len = key_len(FSID_ENCODE_DEV)/4; 149af6a4e28SNeilBrown fh->fh_fsid_type = FSID_ENCODE_DEV; 1501da177e4SLinus Torvalds fh->fh_fsid[0] = new_encode_dev(MKDEV(ntohl(fh->fh_fsid[0]), ntohl(fh->fh_fsid[1]))); 1511da177e4SLinus Torvalds fh->fh_fsid[1] = fh->fh_fsid[2]; 1521da177e4SLinus Torvalds } 15303550facSJ. Bruce Fields data_left -= len; 15403550facSJ. Bruce Fields if (data_left < 0) 15503550facSJ. Bruce Fields return error; 15603550facSJ. Bruce Fields exp = rqst_exp_find(rqstp, fh->fh_fsid_type, fh->fh_auth); 1576e91ea2bSChristoph Hellwig fid = (struct fid *)(fh->fh_auth + len); 1581da177e4SLinus Torvalds } else { 1596e91ea2bSChristoph Hellwig __u32 tfh[2]; 1601da177e4SLinus Torvalds dev_t xdev; 1611da177e4SLinus Torvalds ino_t xino; 16203550facSJ. Bruce Fields 1631da177e4SLinus Torvalds if (fh->fh_size != NFS_FHSIZE) 16403550facSJ. Bruce Fields return error; 1651da177e4SLinus Torvalds /* assume old filehandle format */ 1661da177e4SLinus Torvalds xdev = old_decode_dev(fh->ofh_xdev); 1671da177e4SLinus Torvalds xino = u32_to_ino_t(fh->ofh_xino); 168af6a4e28SNeilBrown mk_fsid(FSID_DEV, tfh, xdev, xino, 0, NULL); 1690989a788SJ. Bruce Fields exp = rqst_exp_find(rqstp, FSID_DEV, tfh); 1701da177e4SLinus Torvalds } 1711da177e4SLinus Torvalds 1722d3bb252SJ. Bruce Fields error = nfserr_stale; 1732d3bb252SJ. Bruce Fields if (PTR_ERR(exp) == -ENOENT) 17403550facSJ. Bruce Fields return error; 1752d3bb252SJ. Bruce Fields 17603550facSJ. Bruce Fields if (IS_ERR(exp)) 17703550facSJ. Bruce Fields return nfserrno(PTR_ERR(exp)); 1781da177e4SLinus Torvalds 179496d6c32SNeil Brown if (exp->ex_flags & NFSEXP_NOSUBTREECHECK) { 180496d6c32SNeil Brown /* Elevate privileges so that the lack of 'r' or 'x' 181496d6c32SNeil Brown * permission on some parent directory will 182496d6c32SNeil Brown * not stop exportfs_decode_fh from being able 183496d6c32SNeil Brown * to reconnect a directory into the dentry cache. 184496d6c32SNeil Brown * The same problem can affect "SUBTREECHECK" exports, 185496d6c32SNeil Brown * but as nfsd_acceptable depends on correct 186496d6c32SNeil Brown * access control settings being in effect, we cannot 187496d6c32SNeil Brown * fix that case easily. 188496d6c32SNeil Brown */ 189d84f4f99SDavid Howells struct cred *new = prepare_creds(); 190d84f4f99SDavid Howells if (!new) 191d84f4f99SDavid Howells return nfserrno(-ENOMEM); 192d84f4f99SDavid Howells new->cap_effective = 193d84f4f99SDavid Howells cap_raise_nfsd_set(new->cap_effective, 194d84f4f99SDavid Howells new->cap_permitted); 195d84f4f99SDavid Howells put_cred(override_creds(new)); 196d84f4f99SDavid Howells put_cred(new); 197496d6c32SNeil Brown } else { 1986fa02839SJ. Bruce Fields error = nfsd_setuser_and_check_port(rqstp, exp); 199d1bbf14fSNeilBrown if (error) 200d1bbf14fSNeilBrown goto out; 201496d6c32SNeil Brown } 202d1bbf14fSNeilBrown 2031da177e4SLinus Torvalds /* 2041da177e4SLinus Torvalds * Look up the dentry using the NFS file handle. 2051da177e4SLinus Torvalds */ 2061da177e4SLinus Torvalds error = nfserr_stale; 2071da177e4SLinus Torvalds if (rqstp->rq_vers > 2) 2081da177e4SLinus Torvalds error = nfserr_badhandle; 2091da177e4SLinus Torvalds 2101da177e4SLinus Torvalds if (fh->fh_version != 1) { 2116e91ea2bSChristoph Hellwig sfid.i32.ino = fh->ofh_ino; 2126e91ea2bSChristoph Hellwig sfid.i32.gen = fh->ofh_generation; 2136e91ea2bSChristoph Hellwig sfid.i32.parent_ino = fh->ofh_dirino; 2146e91ea2bSChristoph Hellwig fid = &sfid; 2151da177e4SLinus Torvalds data_left = 3; 2161da177e4SLinus Torvalds if (fh->ofh_dirino == 0) 2176e91ea2bSChristoph Hellwig fileid_type = FILEID_INO32_GEN; 2181da177e4SLinus Torvalds else 2196e91ea2bSChristoph Hellwig fileid_type = FILEID_INO32_GEN_PARENT; 2201da177e4SLinus Torvalds } else 2211da177e4SLinus Torvalds fileid_type = fh->fh_fileid_type; 2221da177e4SLinus Torvalds 2236e91ea2bSChristoph Hellwig if (fileid_type == FILEID_ROOT) 22454775491SJan Blunck dentry = dget(exp->ex_path.dentry); 2251da177e4SLinus Torvalds else { 22654775491SJan Blunck dentry = exportfs_decode_fh(exp->ex_path.mnt, fid, 227d37065cdSChristoph Hellwig data_left, fileid_type, 2281da177e4SLinus Torvalds nfsd_acceptable, exp); 2291da177e4SLinus Torvalds } 2301da177e4SLinus Torvalds if (dentry == NULL) 2311da177e4SLinus Torvalds goto out; 2321da177e4SLinus Torvalds if (IS_ERR(dentry)) { 2331da177e4SLinus Torvalds if (PTR_ERR(dentry) != -EINVAL) 2341da177e4SLinus Torvalds error = nfserrno(PTR_ERR(dentry)); 2351da177e4SLinus Torvalds goto out; 2361da177e4SLinus Torvalds } 23734e9a63bSNeilBrown 238496d6c32SNeil Brown if (exp->ex_flags & NFSEXP_NOSUBTREECHECK) { 239496d6c32SNeil Brown error = nfsd_setuser_and_check_port(rqstp, exp); 240496d6c32SNeil Brown if (error) { 241496d6c32SNeil Brown dput(dentry); 242496d6c32SNeil Brown goto out; 243496d6c32SNeil Brown } 244496d6c32SNeil Brown } 245496d6c32SNeil Brown 2461da177e4SLinus Torvalds if (S_ISDIR(dentry->d_inode->i_mode) && 2471da177e4SLinus Torvalds (dentry->d_flags & DCACHE_DISCONNECTED)) { 2481da177e4SLinus Torvalds printk("nfsd: find_fh_dentry returned a DISCONNECTED directory: %s/%s\n", 2491da177e4SLinus Torvalds dentry->d_parent->d_name.name, dentry->d_name.name); 2501da177e4SLinus Torvalds } 2511da177e4SLinus Torvalds 2521da177e4SLinus Torvalds fhp->fh_dentry = dentry; 2531da177e4SLinus Torvalds fhp->fh_export = exp; 2541da177e4SLinus Torvalds nfsd_nr_verified++; 25503550facSJ. Bruce Fields return 0; 25603550facSJ. Bruce Fields out: 25703550facSJ. Bruce Fields exp_put(exp); 25803550facSJ. Bruce Fields return error; 25903550facSJ. Bruce Fields } 26003550facSJ. Bruce Fields 261b3d47676SJ. Bruce Fields /** 262b3d47676SJ. Bruce Fields * fh_verify - filehandle lookup and access checking 263b3d47676SJ. Bruce Fields * @rqstp: pointer to current rpc request 264b3d47676SJ. Bruce Fields * @fhp: filehandle to be verified 265b3d47676SJ. Bruce Fields * @type: expected type of object pointed to by filehandle 266b3d47676SJ. Bruce Fields * @access: type of access needed to object 26703550facSJ. Bruce Fields * 268b3d47676SJ. Bruce Fields * Look up a dentry from the on-the-wire filehandle, check the client's 269b3d47676SJ. Bruce Fields * access to the export, and set the current task's credentials. 27003550facSJ. Bruce Fields * 271b3d47676SJ. Bruce Fields * Regardless of success or failure of fh_verify(), fh_put() should be 272b3d47676SJ. Bruce Fields * called on @fhp when the caller is finished with the filehandle. 273b3d47676SJ. Bruce Fields * 274b3d47676SJ. Bruce Fields * fh_verify() may be called multiple times on a given filehandle, for 275b3d47676SJ. Bruce Fields * example, when processing an NFSv4 compound. The first call will look 276b3d47676SJ. Bruce Fields * up a dentry using the on-the-wire filehandle. Subsequent calls will 277b3d47676SJ. Bruce Fields * skip the lookup and just perform the other checks and possibly change 278b3d47676SJ. Bruce Fields * the current task's credentials. 279b3d47676SJ. Bruce Fields * 280b3d47676SJ. Bruce Fields * @type specifies the type of object expected using one of the S_IF* 281b3d47676SJ. Bruce Fields * constants defined in include/linux/stat.h. The caller may use zero 282b3d47676SJ. Bruce Fields * to indicate that it doesn't care, or a negative integer to indicate 283b3d47676SJ. Bruce Fields * that it expects something not of the given type. 284b3d47676SJ. Bruce Fields * 285b3d47676SJ. Bruce Fields * @access is formed from the NFSD_MAY_* constants defined in 286b3d47676SJ. Bruce Fields * include/linux/nfsd/nfsd.h. 28703550facSJ. Bruce Fields */ 28803550facSJ. Bruce Fields __be32 28903550facSJ. Bruce Fields fh_verify(struct svc_rqst *rqstp, struct svc_fh *fhp, int type, int access) 29003550facSJ. Bruce Fields { 29103550facSJ. Bruce Fields struct svc_export *exp; 29203550facSJ. Bruce Fields struct dentry *dentry; 29303550facSJ. Bruce Fields __be32 error; 29403550facSJ. Bruce Fields 29503550facSJ. Bruce Fields dprintk("nfsd: fh_verify(%s)\n", SVCFH_fmt(fhp)); 29603550facSJ. Bruce Fields 29703550facSJ. Bruce Fields if (!fhp->fh_dentry) { 29803550facSJ. Bruce Fields error = nfsd_set_fh_dentry(rqstp, fhp); 29903550facSJ. Bruce Fields if (error) 30003550facSJ. Bruce Fields goto out; 30103550facSJ. Bruce Fields dentry = fhp->fh_dentry; 30203550facSJ. Bruce Fields exp = fhp->fh_export; 3031da177e4SLinus Torvalds } else { 3046fa02839SJ. Bruce Fields /* 3056fa02839SJ. Bruce Fields * just rechecking permissions 3066fa02839SJ. Bruce Fields * (e.g. nfsproc_create calls fh_verify, then nfsd_create 3076fa02839SJ. Bruce Fields * does as well) 3081da177e4SLinus Torvalds */ 3091da177e4SLinus Torvalds dprintk("nfsd: fh_verify - just checking\n"); 3101da177e4SLinus Torvalds dentry = fhp->fh_dentry; 3111da177e4SLinus Torvalds exp = fhp->fh_export; 3126fa02839SJ. Bruce Fields /* 3136fa02839SJ. Bruce Fields * Set user creds for this exportpoint; necessary even 314d1bbf14fSNeilBrown * in the "just checking" case because this may be a 315d1bbf14fSNeilBrown * filehandle that was created by fh_compose, and that 316d1bbf14fSNeilBrown * is about to be used in another nfsv4 compound 3176fa02839SJ. Bruce Fields * operation. 3186fa02839SJ. Bruce Fields */ 3196fa02839SJ. Bruce Fields error = nfsd_setuser_and_check_port(rqstp, exp); 3207fc90ec9SJ. Bruce Fields if (error) 3217fc90ec9SJ. Bruce Fields goto out; 322d1bbf14fSNeilBrown } 3237fc90ec9SJ. Bruce Fields 3241da177e4SLinus Torvalds error = nfsd_mode_check(rqstp, dentry->d_inode->i_mode, type); 3251da177e4SLinus Torvalds if (error) 3261da177e4SLinus Torvalds goto out; 3271da177e4SLinus Torvalds 3289091224fSJ. Bruce Fields /* 3299091224fSJ. Bruce Fields * pseudoflavor restrictions are not enforced on NLM, 3309091224fSJ. Bruce Fields * which clients virtually always use auth_sys for, 3319091224fSJ. Bruce Fields * even while using RPCSEC_GSS for NFS. 3329091224fSJ. Bruce Fields */ 33304716e66SJ. Bruce Fields if (access & NFSD_MAY_LOCK) 33404716e66SJ. Bruce Fields goto skip_pseudoflavor_check; 33504716e66SJ. Bruce Fields /* 33604716e66SJ. Bruce Fields * Clients may expect to be able to use auth_sys during mount, 33704716e66SJ. Bruce Fields * even if they use gss for everything else; see section 2.3.2 33804716e66SJ. Bruce Fields * of rfc 2623. 33904716e66SJ. Bruce Fields */ 34004716e66SJ. Bruce Fields if (access & NFSD_MAY_BYPASS_GSS_ON_ROOT 34104716e66SJ. Bruce Fields && exp->ex_path.dentry == dentry) 34204716e66SJ. Bruce Fields goto skip_pseudoflavor_check; 34304716e66SJ. Bruce Fields 34432c1eb0cSAndy Adamson error = check_nfsd_access(exp, rqstp); 34532c1eb0cSAndy Adamson if (error) 34632c1eb0cSAndy Adamson goto out; 34732c1eb0cSAndy Adamson 34804716e66SJ. Bruce Fields skip_pseudoflavor_check: 3491da177e4SLinus Torvalds /* Finally, check access permissions. */ 3500ec757dfSJ. Bruce Fields error = nfsd_permission(rqstp, exp, dentry, access); 3511da177e4SLinus Torvalds 3521da177e4SLinus Torvalds if (error) { 35334e9a63bSNeilBrown dprintk("fh_verify: %s/%s permission failure, " 35434e9a63bSNeilBrown "acc=%x, error=%d\n", 35534e9a63bSNeilBrown dentry->d_parent->d_name.name, 35634e9a63bSNeilBrown dentry->d_name.name, 357fc2dd2e5SAl Viro access, ntohl(error)); 3581da177e4SLinus Torvalds } 3591da177e4SLinus Torvalds out: 3601da177e4SLinus Torvalds if (error == nfserr_stale) 3611da177e4SLinus Torvalds nfsdstats.fh_stale++; 3621da177e4SLinus Torvalds return error; 3631da177e4SLinus Torvalds } 3641da177e4SLinus Torvalds 3651da177e4SLinus Torvalds 3661da177e4SLinus Torvalds /* 3671da177e4SLinus Torvalds * Compose a file handle for an NFS reply. 3681da177e4SLinus Torvalds * 3691da177e4SLinus Torvalds * Note that when first composed, the dentry may not yet have 3701da177e4SLinus Torvalds * an inode. In this case a call to fh_update should be made 3711da177e4SLinus Torvalds * before the fh goes out on the wire ... 3721da177e4SLinus Torvalds */ 3736e91ea2bSChristoph Hellwig static void _fh_update(struct svc_fh *fhp, struct svc_export *exp, 3746e91ea2bSChristoph Hellwig struct dentry *dentry) 3751da177e4SLinus Torvalds { 37654775491SJan Blunck if (dentry != exp->ex_path.dentry) { 3776e91ea2bSChristoph Hellwig struct fid *fid = (struct fid *) 3786e91ea2bSChristoph Hellwig (fhp->fh_handle.fh_auth + fhp->fh_handle.fh_size/4 - 1); 3796e91ea2bSChristoph Hellwig int maxsize = (fhp->fh_maxsize - fhp->fh_handle.fh_size)/4; 3806e91ea2bSChristoph Hellwig int subtreecheck = !(exp->ex_flags & NFSEXP_NOSUBTREECHECK); 3811da177e4SLinus Torvalds 3826e91ea2bSChristoph Hellwig fhp->fh_handle.fh_fileid_type = 3836e91ea2bSChristoph Hellwig exportfs_encode_fh(dentry, fid, &maxsize, subtreecheck); 3846e91ea2bSChristoph Hellwig fhp->fh_handle.fh_size += maxsize * 4; 3856e91ea2bSChristoph Hellwig } else { 3866e91ea2bSChristoph Hellwig fhp->fh_handle.fh_fileid_type = FILEID_ROOT; 3876e91ea2bSChristoph Hellwig } 3881da177e4SLinus Torvalds } 3891da177e4SLinus Torvalds 3901da177e4SLinus Torvalds /* 3911da177e4SLinus Torvalds * for composing old style file handles 3921da177e4SLinus Torvalds */ 3931da177e4SLinus Torvalds static inline void _fh_update_old(struct dentry *dentry, 3941da177e4SLinus Torvalds struct svc_export *exp, 3951da177e4SLinus Torvalds struct knfsd_fh *fh) 3961da177e4SLinus Torvalds { 3971da177e4SLinus Torvalds fh->ofh_ino = ino_t_to_u32(dentry->d_inode->i_ino); 3981da177e4SLinus Torvalds fh->ofh_generation = dentry->d_inode->i_generation; 3991da177e4SLinus Torvalds if (S_ISDIR(dentry->d_inode->i_mode) || 4001da177e4SLinus Torvalds (exp->ex_flags & NFSEXP_NOSUBTREECHECK)) 4011da177e4SLinus Torvalds fh->ofh_dirino = 0; 4021da177e4SLinus Torvalds } 4031da177e4SLinus Torvalds 40483b11340SAl Viro __be32 405982aedfdSNeilBrown fh_compose(struct svc_fh *fhp, struct svc_export *exp, struct dentry *dentry, 406982aedfdSNeilBrown struct svc_fh *ref_fh) 4071da177e4SLinus Torvalds { 4081da177e4SLinus Torvalds /* ref_fh is a reference file handle. 4097e405364SNeilBrown * if it is non-null and for the same filesystem, then we should compose 4107e405364SNeilBrown * a filehandle which is of the same version, where possible. 4111da177e4SLinus Torvalds * Currently, that means that if ref_fh->fh_handle.fh_version == 0xca 4121da177e4SLinus Torvalds * Then create a 32byte filehandle using nfs_fhbase_old 4131da177e4SLinus Torvalds * 4141da177e4SLinus Torvalds */ 4151da177e4SLinus Torvalds 416b41eeef1SNeilBrown u8 version; 417982aedfdSNeilBrown u8 fsid_type = 0; 4181da177e4SLinus Torvalds struct inode * inode = dentry->d_inode; 4191da177e4SLinus Torvalds struct dentry *parent = dentry->d_parent; 4201da177e4SLinus Torvalds __u32 *datap; 42154775491SJan Blunck dev_t ex_dev = exp->ex_path.dentry->d_inode->i_sb->s_dev; 42254775491SJan Blunck int root_export = (exp->ex_path.dentry == exp->ex_path.dentry->d_sb->s_root); 4231da177e4SLinus Torvalds 4241da177e4SLinus Torvalds dprintk("nfsd: fh_compose(exp %02x:%02x/%ld %s/%s, ino=%ld)\n", 4251da177e4SLinus Torvalds MAJOR(ex_dev), MINOR(ex_dev), 42654775491SJan Blunck (long) exp->ex_path.dentry->d_inode->i_ino, 4271da177e4SLinus Torvalds parent->d_name.name, dentry->d_name.name, 4281da177e4SLinus Torvalds (inode ? inode->i_ino : 0)); 4291da177e4SLinus Torvalds 430982aedfdSNeilBrown /* Choose filehandle version and fsid type based on 431982aedfdSNeilBrown * the reference filehandle (if it is in the same export) 432982aedfdSNeilBrown * or the export options. 433982aedfdSNeilBrown */ 434b41eeef1SNeilBrown retry: 435b41eeef1SNeilBrown version = 1; 4367e405364SNeilBrown if (ref_fh && ref_fh->fh_export == exp) { 437982aedfdSNeilBrown version = ref_fh->fh_handle.fh_version; 438982aedfdSNeilBrown fsid_type = ref_fh->fh_handle.fh_fsid_type; 439b41eeef1SNeilBrown 440b41eeef1SNeilBrown if (ref_fh == fhp) 441b41eeef1SNeilBrown fh_put(ref_fh); 442b41eeef1SNeilBrown ref_fh = NULL; 443b41eeef1SNeilBrown 444b41eeef1SNeilBrown switch (version) { 445b41eeef1SNeilBrown case 0xca: 446b41eeef1SNeilBrown fsid_type = FSID_DEV; 447b41eeef1SNeilBrown break; 448b41eeef1SNeilBrown case 1: 449b41eeef1SNeilBrown break; 450b41eeef1SNeilBrown default: 451b41eeef1SNeilBrown goto retry; 452b41eeef1SNeilBrown } 453b41eeef1SNeilBrown 454b41eeef1SNeilBrown /* Need to check that this type works for this 455b41eeef1SNeilBrown * export point. As the fsid -> filesystem mapping 456b41eeef1SNeilBrown * was guided by user-space, there is no guarantee 457b41eeef1SNeilBrown * that the filesystem actually supports that fsid 458b41eeef1SNeilBrown * type. If it doesn't we loop around again without 459b41eeef1SNeilBrown * ref_fh set. 460982aedfdSNeilBrown */ 461b41eeef1SNeilBrown switch(fsid_type) { 462b41eeef1SNeilBrown case FSID_DEV: 463b41eeef1SNeilBrown if (!old_valid_dev(ex_dev)) 464b41eeef1SNeilBrown goto retry; 465b41eeef1SNeilBrown /* FALL THROUGH */ 466b41eeef1SNeilBrown case FSID_MAJOR_MINOR: 467b41eeef1SNeilBrown case FSID_ENCODE_DEV: 46854775491SJan Blunck if (!(exp->ex_path.dentry->d_inode->i_sb->s_type->fs_flags 469b41eeef1SNeilBrown & FS_REQUIRES_DEV)) 470b41eeef1SNeilBrown goto retry; 471b41eeef1SNeilBrown break; 472b41eeef1SNeilBrown case FSID_NUM: 473b41eeef1SNeilBrown if (! (exp->ex_flags & NFSEXP_FSID)) 474b41eeef1SNeilBrown goto retry; 475b41eeef1SNeilBrown break; 476b41eeef1SNeilBrown case FSID_UUID8: 477b41eeef1SNeilBrown case FSID_UUID16: 478b41eeef1SNeilBrown if (!root_export) 479b41eeef1SNeilBrown goto retry; 480b41eeef1SNeilBrown /* fall through */ 481b41eeef1SNeilBrown case FSID_UUID4_INUM: 482b41eeef1SNeilBrown case FSID_UUID16_INUM: 483b41eeef1SNeilBrown if (exp->ex_uuid == NULL) 484b41eeef1SNeilBrown goto retry; 485b41eeef1SNeilBrown break; 486b41eeef1SNeilBrown } 487*30fa8c01SSteve Dickson } else if (exp->ex_flags & NFSEXP_FSID) { 488*30fa8c01SSteve Dickson fsid_type = FSID_NUM; 489af6a4e28SNeilBrown } else if (exp->ex_uuid) { 490af6a4e28SNeilBrown if (fhp->fh_maxsize >= 64) { 491af6a4e28SNeilBrown if (root_export) 492af6a4e28SNeilBrown fsid_type = FSID_UUID16; 493af6a4e28SNeilBrown else 494af6a4e28SNeilBrown fsid_type = FSID_UUID16_INUM; 495af6a4e28SNeilBrown } else { 496af6a4e28SNeilBrown if (root_export) 497af6a4e28SNeilBrown fsid_type = FSID_UUID8; 498af6a4e28SNeilBrown else 499af6a4e28SNeilBrown fsid_type = FSID_UUID4_INUM; 500af6a4e28SNeilBrown } 501*30fa8c01SSteve Dickson } else if (!old_valid_dev(ex_dev)) 5021da177e4SLinus Torvalds /* for newer device numbers, we must use a newer fsid format */ 503af6a4e28SNeilBrown fsid_type = FSID_ENCODE_DEV; 504982aedfdSNeilBrown else 505af6a4e28SNeilBrown fsid_type = FSID_DEV; 5061da177e4SLinus Torvalds 5071da177e4SLinus Torvalds if (ref_fh == fhp) 5081da177e4SLinus Torvalds fh_put(ref_fh); 5091da177e4SLinus Torvalds 5101da177e4SLinus Torvalds if (fhp->fh_locked || fhp->fh_dentry) { 5111da177e4SLinus Torvalds printk(KERN_ERR "fh_compose: fh %s/%s not initialized!\n", 5121da177e4SLinus Torvalds parent->d_name.name, dentry->d_name.name); 5131da177e4SLinus Torvalds } 5141da177e4SLinus Torvalds if (fhp->fh_maxsize < NFS_FHSIZE) 5151da177e4SLinus Torvalds printk(KERN_ERR "fh_compose: called with maxsize %d! %s/%s\n", 516982aedfdSNeilBrown fhp->fh_maxsize, 517982aedfdSNeilBrown parent->d_name.name, dentry->d_name.name); 5181da177e4SLinus Torvalds 5191da177e4SLinus Torvalds fhp->fh_dentry = dget(dentry); /* our internal copy */ 5201da177e4SLinus Torvalds fhp->fh_export = exp; 5211da177e4SLinus Torvalds cache_get(&exp->h); 5221da177e4SLinus Torvalds 523982aedfdSNeilBrown if (version == 0xca) { 5241da177e4SLinus Torvalds /* old style filehandle please */ 5251da177e4SLinus Torvalds memset(&fhp->fh_handle.fh_base, 0, NFS_FHSIZE); 5261da177e4SLinus Torvalds fhp->fh_handle.fh_size = NFS_FHSIZE; 5271da177e4SLinus Torvalds fhp->fh_handle.ofh_dcookie = 0xfeebbaca; 5281da177e4SLinus Torvalds fhp->fh_handle.ofh_dev = old_encode_dev(ex_dev); 5291da177e4SLinus Torvalds fhp->fh_handle.ofh_xdev = fhp->fh_handle.ofh_dev; 530982aedfdSNeilBrown fhp->fh_handle.ofh_xino = 53154775491SJan Blunck ino_t_to_u32(exp->ex_path.dentry->d_inode->i_ino); 5321da177e4SLinus Torvalds fhp->fh_handle.ofh_dirino = ino_t_to_u32(parent_ino(dentry)); 5331da177e4SLinus Torvalds if (inode) 5341da177e4SLinus Torvalds _fh_update_old(dentry, exp, &fhp->fh_handle); 5351da177e4SLinus Torvalds } else { 5361da177e4SLinus Torvalds int len; 5371da177e4SLinus Torvalds fhp->fh_handle.fh_version = 1; 5381da177e4SLinus Torvalds fhp->fh_handle.fh_auth_type = 0; 5391da177e4SLinus Torvalds datap = fhp->fh_handle.fh_auth+0; 540982aedfdSNeilBrown fhp->fh_handle.fh_fsid_type = fsid_type; 541af6a4e28SNeilBrown mk_fsid(fsid_type, datap, ex_dev, 54254775491SJan Blunck exp->ex_path.dentry->d_inode->i_ino, 543af6a4e28SNeilBrown exp->ex_fsid, exp->ex_uuid); 544af6a4e28SNeilBrown 545982aedfdSNeilBrown len = key_len(fsid_type); 5461da177e4SLinus Torvalds datap += len/4; 5471da177e4SLinus Torvalds fhp->fh_handle.fh_size = 4 + len; 5481da177e4SLinus Torvalds 5496e91ea2bSChristoph Hellwig if (inode) 5506e91ea2bSChristoph Hellwig _fh_update(fhp, exp, dentry); 5511da177e4SLinus Torvalds if (fhp->fh_handle.fh_fileid_type == 255) 5521da177e4SLinus Torvalds return nfserr_opnotsupp; 5531da177e4SLinus Torvalds } 5541da177e4SLinus Torvalds 5551da177e4SLinus Torvalds nfsd_nr_verified++; 5561da177e4SLinus Torvalds return 0; 5571da177e4SLinus Torvalds } 5581da177e4SLinus Torvalds 5591da177e4SLinus Torvalds /* 5601da177e4SLinus Torvalds * Update file handle information after changing a dentry. 5611da177e4SLinus Torvalds * This is only called by nfsd_create, nfsd_create_v3 and nfsd_proc_create 5621da177e4SLinus Torvalds */ 56383b11340SAl Viro __be32 5641da177e4SLinus Torvalds fh_update(struct svc_fh *fhp) 5651da177e4SLinus Torvalds { 5661da177e4SLinus Torvalds struct dentry *dentry; 5671da177e4SLinus Torvalds 5681da177e4SLinus Torvalds if (!fhp->fh_dentry) 5691da177e4SLinus Torvalds goto out_bad; 5701da177e4SLinus Torvalds 5711da177e4SLinus Torvalds dentry = fhp->fh_dentry; 5721da177e4SLinus Torvalds if (!dentry->d_inode) 5731da177e4SLinus Torvalds goto out_negative; 5741da177e4SLinus Torvalds if (fhp->fh_handle.fh_version != 1) { 5751da177e4SLinus Torvalds _fh_update_old(dentry, fhp->fh_export, &fhp->fh_handle); 5761da177e4SLinus Torvalds } else { 5776e91ea2bSChristoph Hellwig if (fhp->fh_handle.fh_fileid_type != FILEID_ROOT) 5784c9608b2SNeilBrown goto out; 5796e91ea2bSChristoph Hellwig 5806e91ea2bSChristoph Hellwig _fh_update(fhp, fhp->fh_export, dentry); 5811da177e4SLinus Torvalds if (fhp->fh_handle.fh_fileid_type == 255) 5821da177e4SLinus Torvalds return nfserr_opnotsupp; 5831da177e4SLinus Torvalds } 5841da177e4SLinus Torvalds out: 5851da177e4SLinus Torvalds return 0; 5861da177e4SLinus Torvalds 5871da177e4SLinus Torvalds out_bad: 5881da177e4SLinus Torvalds printk(KERN_ERR "fh_update: fh not verified!\n"); 5891da177e4SLinus Torvalds goto out; 5901da177e4SLinus Torvalds out_negative: 5911da177e4SLinus Torvalds printk(KERN_ERR "fh_update: %s/%s still negative!\n", 5921da177e4SLinus Torvalds dentry->d_parent->d_name.name, dentry->d_name.name); 5931da177e4SLinus Torvalds goto out; 5941da177e4SLinus Torvalds } 5951da177e4SLinus Torvalds 5961da177e4SLinus Torvalds /* 5971da177e4SLinus Torvalds * Release a file handle. 5981da177e4SLinus Torvalds */ 5991da177e4SLinus Torvalds void 6001da177e4SLinus Torvalds fh_put(struct svc_fh *fhp) 6011da177e4SLinus Torvalds { 6021da177e4SLinus Torvalds struct dentry * dentry = fhp->fh_dentry; 6031da177e4SLinus Torvalds struct svc_export * exp = fhp->fh_export; 6041da177e4SLinus Torvalds if (dentry) { 6051da177e4SLinus Torvalds fh_unlock(fhp); 6061da177e4SLinus Torvalds fhp->fh_dentry = NULL; 6071da177e4SLinus Torvalds dput(dentry); 6081da177e4SLinus Torvalds #ifdef CONFIG_NFSD_V3 6091da177e4SLinus Torvalds fhp->fh_pre_saved = 0; 6101da177e4SLinus Torvalds fhp->fh_post_saved = 0; 6111da177e4SLinus Torvalds #endif 6121da177e4SLinus Torvalds nfsd_nr_put++; 6131da177e4SLinus Torvalds } 6141da177e4SLinus Torvalds if (exp) { 615baab935fSNeilBrown cache_put(&exp->h, &svc_export_cache); 6161da177e4SLinus Torvalds fhp->fh_export = NULL; 6171da177e4SLinus Torvalds } 6181da177e4SLinus Torvalds return; 6191da177e4SLinus Torvalds } 6201da177e4SLinus Torvalds 6211da177e4SLinus Torvalds /* 6221da177e4SLinus Torvalds * Shorthand for dprintk()'s 6231da177e4SLinus Torvalds */ 6241da177e4SLinus Torvalds char * SVCFH_fmt(struct svc_fh *fhp) 6251da177e4SLinus Torvalds { 6261da177e4SLinus Torvalds struct knfsd_fh *fh = &fhp->fh_handle; 6271da177e4SLinus Torvalds 6281da177e4SLinus Torvalds static char buf[80]; 6291da177e4SLinus Torvalds sprintf(buf, "%d: %08x %08x %08x %08x %08x %08x", 6301da177e4SLinus Torvalds fh->fh_size, 6311da177e4SLinus Torvalds fh->fh_base.fh_pad[0], 6321da177e4SLinus Torvalds fh->fh_base.fh_pad[1], 6331da177e4SLinus Torvalds fh->fh_base.fh_pad[2], 6341da177e4SLinus Torvalds fh->fh_base.fh_pad[3], 6351da177e4SLinus Torvalds fh->fh_base.fh_pad[4], 6361da177e4SLinus Torvalds fh->fh_base.fh_pad[5]); 6371da177e4SLinus Torvalds return buf; 6381da177e4SLinus Torvalds } 639af6a4e28SNeilBrown 640af6a4e28SNeilBrown enum fsid_source fsid_source(struct svc_fh *fhp) 641af6a4e28SNeilBrown { 642af6a4e28SNeilBrown if (fhp->fh_handle.fh_version != 1) 643af6a4e28SNeilBrown return FSIDSOURCE_DEV; 644af6a4e28SNeilBrown switch(fhp->fh_handle.fh_fsid_type) { 645af6a4e28SNeilBrown case FSID_DEV: 646af6a4e28SNeilBrown case FSID_ENCODE_DEV: 647af6a4e28SNeilBrown case FSID_MAJOR_MINOR: 64854775491SJan Blunck if (fhp->fh_export->ex_path.dentry->d_inode->i_sb->s_type->fs_flags 649b8da0d1cSNeil Brown & FS_REQUIRES_DEV) 650af6a4e28SNeilBrown return FSIDSOURCE_DEV; 651b8da0d1cSNeil Brown break; 652af6a4e28SNeilBrown case FSID_NUM: 653af6a4e28SNeilBrown if (fhp->fh_export->ex_flags & NFSEXP_FSID) 654af6a4e28SNeilBrown return FSIDSOURCE_FSID; 655b8da0d1cSNeil Brown break; 656b8da0d1cSNeil Brown default: 657b8da0d1cSNeil Brown break; 658af6a4e28SNeilBrown } 659b8da0d1cSNeil Brown /* either a UUID type filehandle, or the filehandle doesn't 660b8da0d1cSNeil Brown * match the export. 661b8da0d1cSNeil Brown */ 662b8da0d1cSNeil Brown if (fhp->fh_export->ex_flags & NFSEXP_FSID) 663b8da0d1cSNeil Brown return FSIDSOURCE_FSID; 664b8da0d1cSNeil Brown if (fhp->fh_export->ex_uuid) 665b8da0d1cSNeil Brown return FSIDSOURCE_UUID; 666b8da0d1cSNeil Brown return FSIDSOURCE_DEV; 667af6a4e28SNeilBrown } 668