xref: /openbmc/linux/fs/xfs/xfs_inode_item_recover.c (revision 695c312ec5a68e4373d063ee649c7b925ffb5da7)
186ffa471SDarrick J. Wong // SPDX-License-Identifier: GPL-2.0
286ffa471SDarrick J. Wong /*
386ffa471SDarrick J. Wong  * Copyright (c) 2000-2006 Silicon Graphics, Inc.
486ffa471SDarrick J. Wong  * All Rights Reserved.
586ffa471SDarrick J. Wong  */
686ffa471SDarrick J. Wong #include "xfs.h"
786ffa471SDarrick J. Wong #include "xfs_fs.h"
886ffa471SDarrick J. Wong #include "xfs_shared.h"
986ffa471SDarrick J. Wong #include "xfs_format.h"
1086ffa471SDarrick J. Wong #include "xfs_log_format.h"
1186ffa471SDarrick J. Wong #include "xfs_trans_resv.h"
1286ffa471SDarrick J. Wong #include "xfs_mount.h"
1386ffa471SDarrick J. Wong #include "xfs_inode.h"
1486ffa471SDarrick J. Wong #include "xfs_trans.h"
1586ffa471SDarrick J. Wong #include "xfs_inode_item.h"
1686ffa471SDarrick J. Wong #include "xfs_trace.h"
1786ffa471SDarrick J. Wong #include "xfs_trans_priv.h"
1886ffa471SDarrick J. Wong #include "xfs_buf_item.h"
1986ffa471SDarrick J. Wong #include "xfs_log.h"
2086ffa471SDarrick J. Wong #include "xfs_error.h"
2186ffa471SDarrick J. Wong #include "xfs_log_priv.h"
2286ffa471SDarrick J. Wong #include "xfs_log_recover.h"
23658fa68bSDarrick J. Wong #include "xfs_icache.h"
24658fa68bSDarrick J. Wong #include "xfs_bmap_btree.h"
2586ffa471SDarrick J. Wong 
268ea5682dSDarrick J. Wong STATIC void
xlog_recover_inode_ra_pass2(struct xlog * log,struct xlog_recover_item * item)278ea5682dSDarrick J. Wong xlog_recover_inode_ra_pass2(
288ea5682dSDarrick J. Wong 	struct xlog                     *log,
298ea5682dSDarrick J. Wong 	struct xlog_recover_item        *item)
308ea5682dSDarrick J. Wong {
318ea5682dSDarrick J. Wong 	if (item->ri_buf[0].i_len == sizeof(struct xfs_inode_log_format)) {
328ea5682dSDarrick J. Wong 		struct xfs_inode_log_format	*ilfp = item->ri_buf[0].i_addr;
338ea5682dSDarrick J. Wong 
348ea5682dSDarrick J. Wong 		xlog_buf_readahead(log, ilfp->ilf_blkno, ilfp->ilf_len,
358ea5682dSDarrick J. Wong 				   &xfs_inode_buf_ra_ops);
368ea5682dSDarrick J. Wong 	} else {
378ea5682dSDarrick J. Wong 		struct xfs_inode_log_format_32	*ilfp = item->ri_buf[0].i_addr;
388ea5682dSDarrick J. Wong 
398ea5682dSDarrick J. Wong 		xlog_buf_readahead(log, ilfp->ilf_blkno, ilfp->ilf_len,
408ea5682dSDarrick J. Wong 				   &xfs_inode_buf_ra_ops);
418ea5682dSDarrick J. Wong 	}
428ea5682dSDarrick J. Wong }
438ea5682dSDarrick J. Wong 
44658fa68bSDarrick J. Wong /*
45658fa68bSDarrick J. Wong  * Inode fork owner changes
46658fa68bSDarrick J. Wong  *
47658fa68bSDarrick J. Wong  * If we have been told that we have to reparent the inode fork, it's because an
48658fa68bSDarrick J. Wong  * extent swap operation on a CRC enabled filesystem has been done and we are
49658fa68bSDarrick J. Wong  * replaying it. We need to walk the BMBT of the appropriate fork and change the
50658fa68bSDarrick J. Wong  * owners of it.
51658fa68bSDarrick J. Wong  *
52658fa68bSDarrick J. Wong  * The complexity here is that we don't have an inode context to work with, so
53658fa68bSDarrick J. Wong  * after we've replayed the inode we need to instantiate one.  This is where the
54658fa68bSDarrick J. Wong  * fun begins.
55658fa68bSDarrick J. Wong  *
56658fa68bSDarrick J. Wong  * We are in the middle of log recovery, so we can't run transactions. That
57658fa68bSDarrick J. Wong  * means we cannot use cache coherent inode instantiation via xfs_iget(), as
58658fa68bSDarrick J. Wong  * that will result in the corresponding iput() running the inode through
59658fa68bSDarrick J. Wong  * xfs_inactive(). If we've just replayed an inode core that changes the link
60658fa68bSDarrick J. Wong  * count to zero (i.e. it's been unlinked), then xfs_inactive() will run
61658fa68bSDarrick J. Wong  * transactions (bad!).
62658fa68bSDarrick J. Wong  *
63658fa68bSDarrick J. Wong  * So, to avoid this, we instantiate an inode directly from the inode core we've
64658fa68bSDarrick J. Wong  * just recovered. We have the buffer still locked, and all we really need to
65658fa68bSDarrick J. Wong  * instantiate is the inode core and the forks being modified. We can do this
66658fa68bSDarrick J. Wong  * manually, then run the inode btree owner change, and then tear down the
67658fa68bSDarrick J. Wong  * xfs_inode without having to run any transactions at all.
68658fa68bSDarrick J. Wong  *
69658fa68bSDarrick J. Wong  * Also, because we don't have a transaction context available here but need to
70658fa68bSDarrick J. Wong  * gather all the buffers we modify for writeback so we pass the buffer_list
71658fa68bSDarrick J. Wong  * instead for the operation to use.
72658fa68bSDarrick J. Wong  */
73658fa68bSDarrick J. Wong 
74658fa68bSDarrick J. Wong STATIC int
xfs_recover_inode_owner_change(struct xfs_mount * mp,struct xfs_dinode * dip,struct xfs_inode_log_format * in_f,struct list_head * buffer_list)75658fa68bSDarrick J. Wong xfs_recover_inode_owner_change(
76658fa68bSDarrick J. Wong 	struct xfs_mount	*mp,
77658fa68bSDarrick J. Wong 	struct xfs_dinode	*dip,
78658fa68bSDarrick J. Wong 	struct xfs_inode_log_format *in_f,
79658fa68bSDarrick J. Wong 	struct list_head	*buffer_list)
80658fa68bSDarrick J. Wong {
81658fa68bSDarrick J. Wong 	struct xfs_inode	*ip;
82658fa68bSDarrick J. Wong 	int			error;
83658fa68bSDarrick J. Wong 
84658fa68bSDarrick J. Wong 	ASSERT(in_f->ilf_fields & (XFS_ILOG_DOWNER|XFS_ILOG_AOWNER));
85658fa68bSDarrick J. Wong 
86658fa68bSDarrick J. Wong 	ip = xfs_inode_alloc(mp, in_f->ilf_ino);
87658fa68bSDarrick J. Wong 	if (!ip)
88658fa68bSDarrick J. Wong 		return -ENOMEM;
89658fa68bSDarrick J. Wong 
90658fa68bSDarrick J. Wong 	/* instantiate the inode */
91658fa68bSDarrick J. Wong 	ASSERT(dip->di_version >= 3);
92658fa68bSDarrick J. Wong 
93cb7d5859SChristoph Hellwig 	error = xfs_inode_from_disk(ip, dip);
94658fa68bSDarrick J. Wong 	if (error)
95658fa68bSDarrick J. Wong 		goto out_free_ip;
96658fa68bSDarrick J. Wong 
97658fa68bSDarrick J. Wong 	if (in_f->ilf_fields & XFS_ILOG_DOWNER) {
98658fa68bSDarrick J. Wong 		ASSERT(in_f->ilf_fields & XFS_ILOG_DBROOT);
99658fa68bSDarrick J. Wong 		error = xfs_bmbt_change_owner(NULL, ip, XFS_DATA_FORK,
100658fa68bSDarrick J. Wong 					      ip->i_ino, buffer_list);
101658fa68bSDarrick J. Wong 		if (error)
102658fa68bSDarrick J. Wong 			goto out_free_ip;
103658fa68bSDarrick J. Wong 	}
104658fa68bSDarrick J. Wong 
105658fa68bSDarrick J. Wong 	if (in_f->ilf_fields & XFS_ILOG_AOWNER) {
106658fa68bSDarrick J. Wong 		ASSERT(in_f->ilf_fields & XFS_ILOG_ABROOT);
107658fa68bSDarrick J. Wong 		error = xfs_bmbt_change_owner(NULL, ip, XFS_ATTR_FORK,
108658fa68bSDarrick J. Wong 					      ip->i_ino, buffer_list);
109658fa68bSDarrick J. Wong 		if (error)
110658fa68bSDarrick J. Wong 			goto out_free_ip;
111658fa68bSDarrick J. Wong 	}
112658fa68bSDarrick J. Wong 
113658fa68bSDarrick J. Wong out_free_ip:
114658fa68bSDarrick J. Wong 	xfs_inode_free(ip);
115658fa68bSDarrick J. Wong 	return error;
116658fa68bSDarrick J. Wong }
117658fa68bSDarrick J. Wong 
xfs_log_dinode_has_bigtime(const struct xfs_log_dinode * ld)118f93e5436SDarrick J. Wong static inline bool xfs_log_dinode_has_bigtime(const struct xfs_log_dinode *ld)
119f93e5436SDarrick J. Wong {
120f93e5436SDarrick J. Wong 	return ld->di_version >= 3 &&
121f93e5436SDarrick J. Wong 	       (ld->di_flags2 & XFS_DIFLAG2_BIGTIME);
122f93e5436SDarrick J. Wong }
123f93e5436SDarrick J. Wong 
1245a0bb066SDarrick J. Wong /* Convert a log timestamp to an ondisk timestamp. */
1255a0bb066SDarrick J. Wong static inline xfs_timestamp_t
xfs_log_dinode_to_disk_ts(struct xfs_log_dinode * from,const xfs_log_timestamp_t its)1265a0bb066SDarrick J. Wong xfs_log_dinode_to_disk_ts(
127f93e5436SDarrick J. Wong 	struct xfs_log_dinode		*from,
1286fc277c7SChristoph Hellwig 	const xfs_log_timestamp_t	its)
1295a0bb066SDarrick J. Wong {
1305a0bb066SDarrick J. Wong 	struct xfs_legacy_timestamp	*lts;
131732de7dbSChristoph Hellwig 	struct xfs_log_legacy_timestamp	*lits;
1325a0bb066SDarrick J. Wong 	xfs_timestamp_t			ts;
1335a0bb066SDarrick J. Wong 
134f93e5436SDarrick J. Wong 	if (xfs_log_dinode_has_bigtime(from))
135f93e5436SDarrick J. Wong 		return cpu_to_be64(its);
136f93e5436SDarrick J. Wong 
1375a0bb066SDarrick J. Wong 	lts = (struct xfs_legacy_timestamp *)&ts;
138732de7dbSChristoph Hellwig 	lits = (struct xfs_log_legacy_timestamp *)&its;
13930e05599SDarrick J. Wong 	lts->t_sec = cpu_to_be32(lits->t_sec);
14030e05599SDarrick J. Wong 	lts->t_nsec = cpu_to_be32(lits->t_nsec);
1415a0bb066SDarrick J. Wong 
1425a0bb066SDarrick J. Wong 	return ts;
1435a0bb066SDarrick J. Wong }
1445a0bb066SDarrick J. Wong 
xfs_log_dinode_has_large_extent_counts(const struct xfs_log_dinode * ld)1459b7d16e3SChandan Babu R static inline bool xfs_log_dinode_has_large_extent_counts(
1469b7d16e3SChandan Babu R 		const struct xfs_log_dinode *ld)
1479b7d16e3SChandan Babu R {
1489b7d16e3SChandan Babu R 	return ld->di_version >= 3 &&
1499b7d16e3SChandan Babu R 	       (ld->di_flags2 & XFS_DIFLAG2_NREXT64);
1509b7d16e3SChandan Babu R }
1519b7d16e3SChandan Babu R 
15252a4a148SChandan Babu R static inline void
xfs_log_dinode_to_disk_iext_counters(struct xfs_log_dinode * from,struct xfs_dinode * to)15352a4a148SChandan Babu R xfs_log_dinode_to_disk_iext_counters(
15452a4a148SChandan Babu R 	struct xfs_log_dinode	*from,
15552a4a148SChandan Babu R 	struct xfs_dinode	*to)
15652a4a148SChandan Babu R {
15752a4a148SChandan Babu R 	if (xfs_log_dinode_has_large_extent_counts(from)) {
15852a4a148SChandan Babu R 		to->di_big_nextents = cpu_to_be64(from->di_big_nextents);
15952a4a148SChandan Babu R 		to->di_big_anextents = cpu_to_be32(from->di_big_anextents);
16052a4a148SChandan Babu R 		to->di_nrext64_pad = cpu_to_be16(from->di_nrext64_pad);
16152a4a148SChandan Babu R 	} else {
16252a4a148SChandan Babu R 		to->di_nextents = cpu_to_be32(from->di_nextents);
16352a4a148SChandan Babu R 		to->di_anextents = cpu_to_be16(from->di_anextents);
16452a4a148SChandan Babu R 	}
16552a4a148SChandan Babu R 
16652a4a148SChandan Babu R }
16752a4a148SChandan Babu R 
16888947ea0SDarrick J. Wong STATIC void
xfs_log_dinode_to_disk(struct xfs_log_dinode * from,struct xfs_dinode * to,xfs_lsn_t lsn)16988947ea0SDarrick J. Wong xfs_log_dinode_to_disk(
17088947ea0SDarrick J. Wong 	struct xfs_log_dinode	*from,
17132baa63dSDave Chinner 	struct xfs_dinode	*to,
17232baa63dSDave Chinner 	xfs_lsn_t		lsn)
17388947ea0SDarrick J. Wong {
17488947ea0SDarrick J. Wong 	to->di_magic = cpu_to_be16(from->di_magic);
17588947ea0SDarrick J. Wong 	to->di_mode = cpu_to_be16(from->di_mode);
17688947ea0SDarrick J. Wong 	to->di_version = from->di_version;
17788947ea0SDarrick J. Wong 	to->di_format = from->di_format;
17888947ea0SDarrick J. Wong 	to->di_onlink = 0;
17988947ea0SDarrick J. Wong 	to->di_uid = cpu_to_be32(from->di_uid);
18088947ea0SDarrick J. Wong 	to->di_gid = cpu_to_be32(from->di_gid);
18188947ea0SDarrick J. Wong 	to->di_nlink = cpu_to_be32(from->di_nlink);
18288947ea0SDarrick J. Wong 	to->di_projid_lo = cpu_to_be16(from->di_projid_lo);
18388947ea0SDarrick J. Wong 	to->di_projid_hi = cpu_to_be16(from->di_projid_hi);
18488947ea0SDarrick J. Wong 
185f93e5436SDarrick J. Wong 	to->di_atime = xfs_log_dinode_to_disk_ts(from, from->di_atime);
186f93e5436SDarrick J. Wong 	to->di_mtime = xfs_log_dinode_to_disk_ts(from, from->di_mtime);
187f93e5436SDarrick J. Wong 	to->di_ctime = xfs_log_dinode_to_disk_ts(from, from->di_ctime);
18888947ea0SDarrick J. Wong 
18988947ea0SDarrick J. Wong 	to->di_size = cpu_to_be64(from->di_size);
19088947ea0SDarrick J. Wong 	to->di_nblocks = cpu_to_be64(from->di_nblocks);
19188947ea0SDarrick J. Wong 	to->di_extsize = cpu_to_be32(from->di_extsize);
19288947ea0SDarrick J. Wong 	to->di_forkoff = from->di_forkoff;
19388947ea0SDarrick J. Wong 	to->di_aformat = from->di_aformat;
19488947ea0SDarrick J. Wong 	to->di_dmevmask = cpu_to_be32(from->di_dmevmask);
19588947ea0SDarrick J. Wong 	to->di_dmstate = cpu_to_be16(from->di_dmstate);
19688947ea0SDarrick J. Wong 	to->di_flags = cpu_to_be16(from->di_flags);
19788947ea0SDarrick J. Wong 	to->di_gen = cpu_to_be32(from->di_gen);
19888947ea0SDarrick J. Wong 
19988947ea0SDarrick J. Wong 	if (from->di_version == 3) {
20088947ea0SDarrick J. Wong 		to->di_changecount = cpu_to_be64(from->di_changecount);
201f93e5436SDarrick J. Wong 		to->di_crtime = xfs_log_dinode_to_disk_ts(from,
202f93e5436SDarrick J. Wong 							  from->di_crtime);
20388947ea0SDarrick J. Wong 		to->di_flags2 = cpu_to_be64(from->di_flags2);
20488947ea0SDarrick J. Wong 		to->di_cowextsize = cpu_to_be32(from->di_cowextsize);
20588947ea0SDarrick J. Wong 		to->di_ino = cpu_to_be64(from->di_ino);
20632baa63dSDave Chinner 		to->di_lsn = cpu_to_be64(lsn);
20752a4a148SChandan Babu R 		memset(to->di_pad2, 0, sizeof(to->di_pad2));
20888947ea0SDarrick J. Wong 		uuid_copy(&to->di_uuid, &from->di_uuid);
20952a4a148SChandan Babu R 		to->di_v3_pad = 0;
21088947ea0SDarrick J. Wong 	} else {
21188947ea0SDarrick J. Wong 		to->di_flushiter = cpu_to_be16(from->di_flushiter);
21252a4a148SChandan Babu R 		memset(to->di_v2_pad, 0, sizeof(to->di_v2_pad));
21388947ea0SDarrick J. Wong 	}
21452a4a148SChandan Babu R 
21552a4a148SChandan Babu R 	xfs_log_dinode_to_disk_iext_counters(from, to);
21652a4a148SChandan Babu R }
21752a4a148SChandan Babu R 
21852a4a148SChandan Babu R STATIC int
xlog_dinode_verify_extent_counts(struct xfs_mount * mp,struct xfs_log_dinode * ldip)21952a4a148SChandan Babu R xlog_dinode_verify_extent_counts(
22052a4a148SChandan Babu R 	struct xfs_mount	*mp,
22152a4a148SChandan Babu R 	struct xfs_log_dinode	*ldip)
22252a4a148SChandan Babu R {
22352a4a148SChandan Babu R 	xfs_extnum_t		nextents;
22452a4a148SChandan Babu R 	xfs_aextnum_t		anextents;
22552a4a148SChandan Babu R 
22652a4a148SChandan Babu R 	if (xfs_log_dinode_has_large_extent_counts(ldip)) {
22752a4a148SChandan Babu R 		if (!xfs_has_large_extent_counts(mp) ||
22852a4a148SChandan Babu R 		    (ldip->di_nrext64_pad != 0)) {
22952a4a148SChandan Babu R 			XFS_CORRUPTION_ERROR(
23052a4a148SChandan Babu R 				"Bad log dinode large extent count format",
23152a4a148SChandan Babu R 				XFS_ERRLEVEL_LOW, mp, ldip, sizeof(*ldip));
23252a4a148SChandan Babu R 			xfs_alert(mp,
23352a4a148SChandan Babu R 				"Bad inode 0x%llx, large extent counts %d, padding 0x%x",
23452a4a148SChandan Babu R 				ldip->di_ino, xfs_has_large_extent_counts(mp),
23552a4a148SChandan Babu R 				ldip->di_nrext64_pad);
23652a4a148SChandan Babu R 			return -EFSCORRUPTED;
23752a4a148SChandan Babu R 		}
23852a4a148SChandan Babu R 
23952a4a148SChandan Babu R 		nextents = ldip->di_big_nextents;
24052a4a148SChandan Babu R 		anextents = ldip->di_big_anextents;
24152a4a148SChandan Babu R 	} else {
24252a4a148SChandan Babu R 		if (ldip->di_version == 3 && ldip->di_v3_pad != 0) {
24352a4a148SChandan Babu R 			XFS_CORRUPTION_ERROR(
24452a4a148SChandan Babu R 				"Bad log dinode di_v3_pad",
24552a4a148SChandan Babu R 				XFS_ERRLEVEL_LOW, mp, ldip, sizeof(*ldip));
24652a4a148SChandan Babu R 			xfs_alert(mp,
24752a4a148SChandan Babu R 				"Bad inode 0x%llx, di_v3_pad 0x%llx",
24852a4a148SChandan Babu R 				ldip->di_ino, ldip->di_v3_pad);
24952a4a148SChandan Babu R 			return -EFSCORRUPTED;
25052a4a148SChandan Babu R 		}
25152a4a148SChandan Babu R 
25252a4a148SChandan Babu R 		nextents = ldip->di_nextents;
25352a4a148SChandan Babu R 		anextents = ldip->di_anextents;
25452a4a148SChandan Babu R 	}
25552a4a148SChandan Babu R 
25652a4a148SChandan Babu R 	if (unlikely(nextents + anextents > ldip->di_nblocks)) {
25752a4a148SChandan Babu R 		XFS_CORRUPTION_ERROR("Bad log dinode extent counts",
25852a4a148SChandan Babu R 				XFS_ERRLEVEL_LOW, mp, ldip, sizeof(*ldip));
25952a4a148SChandan Babu R 		xfs_alert(mp,
26052a4a148SChandan Babu R 			"Bad inode 0x%llx, large extent counts %d, nextents 0x%llx, anextents 0x%x, nblocks 0x%llx",
26152a4a148SChandan Babu R 			ldip->di_ino, xfs_has_large_extent_counts(mp), nextents,
26252a4a148SChandan Babu R 			anextents, ldip->di_nblocks);
26352a4a148SChandan Babu R 		return -EFSCORRUPTED;
26452a4a148SChandan Babu R 	}
26552a4a148SChandan Babu R 
26652a4a148SChandan Babu R 	return 0;
26788947ea0SDarrick J. Wong }
26888947ea0SDarrick J. Wong 
269658fa68bSDarrick J. Wong STATIC int
xlog_recover_inode_commit_pass2(struct xlog * log,struct list_head * buffer_list,struct xlog_recover_item * item,xfs_lsn_t current_lsn)270658fa68bSDarrick J. Wong xlog_recover_inode_commit_pass2(
271658fa68bSDarrick J. Wong 	struct xlog			*log,
272658fa68bSDarrick J. Wong 	struct list_head		*buffer_list,
273658fa68bSDarrick J. Wong 	struct xlog_recover_item	*item,
274658fa68bSDarrick J. Wong 	xfs_lsn_t			current_lsn)
275658fa68bSDarrick J. Wong {
276658fa68bSDarrick J. Wong 	struct xfs_inode_log_format	*in_f;
277658fa68bSDarrick J. Wong 	struct xfs_mount		*mp = log->l_mp;
278658fa68bSDarrick J. Wong 	struct xfs_buf			*bp;
279658fa68bSDarrick J. Wong 	struct xfs_dinode		*dip;
280658fa68bSDarrick J. Wong 	int				len;
281658fa68bSDarrick J. Wong 	char				*src;
282658fa68bSDarrick J. Wong 	char				*dest;
283658fa68bSDarrick J. Wong 	int				error;
284658fa68bSDarrick J. Wong 	int				attr_index;
285658fa68bSDarrick J. Wong 	uint				fields;
286658fa68bSDarrick J. Wong 	struct xfs_log_dinode		*ldip;
287658fa68bSDarrick J. Wong 	uint				isize;
288658fa68bSDarrick J. Wong 	int				need_free = 0;
289*b28b2342SDave Chinner 	xfs_failaddr_t			fa;
290658fa68bSDarrick J. Wong 
291658fa68bSDarrick J. Wong 	if (item->ri_buf[0].i_len == sizeof(struct xfs_inode_log_format)) {
292658fa68bSDarrick J. Wong 		in_f = item->ri_buf[0].i_addr;
293658fa68bSDarrick J. Wong 	} else {
294658fa68bSDarrick J. Wong 		in_f = kmem_alloc(sizeof(struct xfs_inode_log_format), 0);
295658fa68bSDarrick J. Wong 		need_free = 1;
296658fa68bSDarrick J. Wong 		error = xfs_inode_item_format_convert(&item->ri_buf[0], in_f);
297658fa68bSDarrick J. Wong 		if (error)
298658fa68bSDarrick J. Wong 			goto error;
299658fa68bSDarrick J. Wong 	}
300658fa68bSDarrick J. Wong 
301658fa68bSDarrick J. Wong 	/*
302658fa68bSDarrick J. Wong 	 * Inode buffers can be freed, look out for it,
303658fa68bSDarrick J. Wong 	 * and do not replay the inode.
304658fa68bSDarrick J. Wong 	 */
305658fa68bSDarrick J. Wong 	if (xlog_is_buffer_cancelled(log, in_f->ilf_blkno, in_f->ilf_len)) {
306658fa68bSDarrick J. Wong 		error = 0;
307658fa68bSDarrick J. Wong 		trace_xfs_log_recover_inode_cancel(log, in_f);
308658fa68bSDarrick J. Wong 		goto error;
309658fa68bSDarrick J. Wong 	}
310658fa68bSDarrick J. Wong 	trace_xfs_log_recover_inode_recover(log, in_f);
311658fa68bSDarrick J. Wong 
312658fa68bSDarrick J. Wong 	error = xfs_buf_read(mp->m_ddev_targp, in_f->ilf_blkno, in_f->ilf_len,
313658fa68bSDarrick J. Wong 			0, &bp, &xfs_inode_buf_ops);
314658fa68bSDarrick J. Wong 	if (error)
315658fa68bSDarrick J. Wong 		goto error;
316658fa68bSDarrick J. Wong 	ASSERT(in_f->ilf_fields & XFS_ILOG_CORE);
317658fa68bSDarrick J. Wong 	dip = xfs_buf_offset(bp, in_f->ilf_boffset);
318658fa68bSDarrick J. Wong 
319658fa68bSDarrick J. Wong 	/*
320658fa68bSDarrick J. Wong 	 * Make sure the place we're flushing out to really looks
321658fa68bSDarrick J. Wong 	 * like an inode!
322658fa68bSDarrick J. Wong 	 */
323658fa68bSDarrick J. Wong 	if (XFS_IS_CORRUPT(mp, !xfs_verify_magic16(bp, dip->di_magic))) {
324658fa68bSDarrick J. Wong 		xfs_alert(mp,
32578b0f58bSZeng Heng 	"%s: Bad inode magic number, dip = "PTR_FMT", dino bp = "PTR_FMT", ino = %lld",
326658fa68bSDarrick J. Wong 			__func__, dip, bp, in_f->ilf_ino);
327658fa68bSDarrick J. Wong 		error = -EFSCORRUPTED;
328658fa68bSDarrick J. Wong 		goto out_release;
329658fa68bSDarrick J. Wong 	}
330658fa68bSDarrick J. Wong 	ldip = item->ri_buf[1].i_addr;
331658fa68bSDarrick J. Wong 	if (XFS_IS_CORRUPT(mp, ldip->di_magic != XFS_DINODE_MAGIC)) {
332658fa68bSDarrick J. Wong 		xfs_alert(mp,
33378b0f58bSZeng Heng 			"%s: Bad inode log record, rec ptr "PTR_FMT", ino %lld",
334658fa68bSDarrick J. Wong 			__func__, item, in_f->ilf_ino);
335658fa68bSDarrick J. Wong 		error = -EFSCORRUPTED;
336658fa68bSDarrick J. Wong 		goto out_release;
337658fa68bSDarrick J. Wong 	}
338658fa68bSDarrick J. Wong 
339658fa68bSDarrick J. Wong 	/*
34032baa63dSDave Chinner 	 * If the inode has an LSN in it, recover the inode only if the on-disk
34132baa63dSDave Chinner 	 * inode's LSN is older than the lsn of the transaction we are
34232baa63dSDave Chinner 	 * replaying. We can have multiple checkpoints with the same start LSN,
34332baa63dSDave Chinner 	 * so the current LSN being equal to the on-disk LSN doesn't necessarily
34432baa63dSDave Chinner 	 * mean that the on-disk inode is more recent than the change being
34532baa63dSDave Chinner 	 * replayed.
34632baa63dSDave Chinner 	 *
34732baa63dSDave Chinner 	 * We must check the current_lsn against the on-disk inode
34832baa63dSDave Chinner 	 * here because the we can't trust the log dinode to contain a valid LSN
34932baa63dSDave Chinner 	 * (see comment below before replaying the log dinode for details).
35032baa63dSDave Chinner 	 *
35132baa63dSDave Chinner 	 * Note: we still need to replay an owner change even though the inode
35232baa63dSDave Chinner 	 * is more recent than the transaction as there is no guarantee that all
35332baa63dSDave Chinner 	 * the btree blocks are more recent than this transaction, too.
354658fa68bSDarrick J. Wong 	 */
355658fa68bSDarrick J. Wong 	if (dip->di_version >= 3) {
356658fa68bSDarrick J. Wong 		xfs_lsn_t	lsn = be64_to_cpu(dip->di_lsn);
357658fa68bSDarrick J. Wong 
35832baa63dSDave Chinner 		if (lsn && lsn != -1 && XFS_LSN_CMP(lsn, current_lsn) > 0) {
359658fa68bSDarrick J. Wong 			trace_xfs_log_recover_inode_skip(log, in_f);
360658fa68bSDarrick J. Wong 			error = 0;
361658fa68bSDarrick J. Wong 			goto out_owner_change;
362658fa68bSDarrick J. Wong 		}
363658fa68bSDarrick J. Wong 	}
364658fa68bSDarrick J. Wong 
365658fa68bSDarrick J. Wong 	/*
366658fa68bSDarrick J. Wong 	 * di_flushiter is only valid for v1/2 inodes. All changes for v3 inodes
367658fa68bSDarrick J. Wong 	 * are transactional and if ordering is necessary we can determine that
368658fa68bSDarrick J. Wong 	 * more accurately by the LSN field in the V3 inode core. Don't trust
369658fa68bSDarrick J. Wong 	 * the inode versions we might be changing them here - use the
370658fa68bSDarrick J. Wong 	 * superblock flag to determine whether we need to look at di_flushiter
371658fa68bSDarrick J. Wong 	 * to skip replay when the on disk inode is newer than the log one
372658fa68bSDarrick J. Wong 	 */
373024fe6a4SDave Chinner 	if (!xfs_has_v3inodes(mp)) {
374024fe6a4SDave Chinner 		if (ldip->di_flushiter < be16_to_cpu(dip->di_flushiter)) {
375658fa68bSDarrick J. Wong 			/*
376658fa68bSDarrick J. Wong 			 * Deal with the wrap case, DI_MAX_FLUSH is less
377658fa68bSDarrick J. Wong 			 * than smaller numbers
378658fa68bSDarrick J. Wong 			 */
379658fa68bSDarrick J. Wong 			if (be16_to_cpu(dip->di_flushiter) == DI_MAX_FLUSH &&
380658fa68bSDarrick J. Wong 			    ldip->di_flushiter < (DI_MAX_FLUSH >> 1)) {
381658fa68bSDarrick J. Wong 				/* do nothing */
382658fa68bSDarrick J. Wong 			} else {
383658fa68bSDarrick J. Wong 				trace_xfs_log_recover_inode_skip(log, in_f);
384658fa68bSDarrick J. Wong 				error = 0;
385658fa68bSDarrick J. Wong 				goto out_release;
386658fa68bSDarrick J. Wong 			}
387658fa68bSDarrick J. Wong 		}
388658fa68bSDarrick J. Wong 
389658fa68bSDarrick J. Wong 		/* Take the opportunity to reset the flush iteration count */
390658fa68bSDarrick J. Wong 		ldip->di_flushiter = 0;
391024fe6a4SDave Chinner 	}
392024fe6a4SDave Chinner 
393658fa68bSDarrick J. Wong 
394658fa68bSDarrick J. Wong 	if (unlikely(S_ISREG(ldip->di_mode))) {
395658fa68bSDarrick J. Wong 		if ((ldip->di_format != XFS_DINODE_FMT_EXTENTS) &&
396658fa68bSDarrick J. Wong 		    (ldip->di_format != XFS_DINODE_FMT_BTREE)) {
3978314bca0SChandan Babu R 			XFS_CORRUPTION_ERROR(
3988314bca0SChandan Babu R 				"Bad log dinode data fork format for regular file",
3998314bca0SChandan Babu R 				XFS_ERRLEVEL_LOW, mp, ldip, sizeof(*ldip));
400658fa68bSDarrick J. Wong 			xfs_alert(mp,
4018314bca0SChandan Babu R 				"Bad inode 0x%llx, data fork format 0x%x",
4028314bca0SChandan Babu R 				in_f->ilf_ino, ldip->di_format);
403658fa68bSDarrick J. Wong 			error = -EFSCORRUPTED;
404658fa68bSDarrick J. Wong 			goto out_release;
405658fa68bSDarrick J. Wong 		}
406658fa68bSDarrick J. Wong 	} else if (unlikely(S_ISDIR(ldip->di_mode))) {
407658fa68bSDarrick J. Wong 		if ((ldip->di_format != XFS_DINODE_FMT_EXTENTS) &&
408658fa68bSDarrick J. Wong 		    (ldip->di_format != XFS_DINODE_FMT_BTREE) &&
409658fa68bSDarrick J. Wong 		    (ldip->di_format != XFS_DINODE_FMT_LOCAL)) {
4108314bca0SChandan Babu R 			XFS_CORRUPTION_ERROR(
4118314bca0SChandan Babu R 				"Bad log dinode data fork format for directory",
4128314bca0SChandan Babu R 				XFS_ERRLEVEL_LOW, mp, ldip, sizeof(*ldip));
413658fa68bSDarrick J. Wong 			xfs_alert(mp,
4148314bca0SChandan Babu R 				"Bad inode 0x%llx, data fork format 0x%x",
4158314bca0SChandan Babu R 				in_f->ilf_ino, ldip->di_format);
416658fa68bSDarrick J. Wong 			error = -EFSCORRUPTED;
417658fa68bSDarrick J. Wong 			goto out_release;
418658fa68bSDarrick J. Wong 		}
419658fa68bSDarrick J. Wong 	}
42052a4a148SChandan Babu R 
42152a4a148SChandan Babu R 	error = xlog_dinode_verify_extent_counts(mp, ldip);
42252a4a148SChandan Babu R 	if (error)
423658fa68bSDarrick J. Wong 		goto out_release;
42452a4a148SChandan Babu R 
425658fa68bSDarrick J. Wong 	if (unlikely(ldip->di_forkoff > mp->m_sb.sb_inodesize)) {
4268314bca0SChandan Babu R 		XFS_CORRUPTION_ERROR("Bad log dinode fork offset",
4278314bca0SChandan Babu R 				XFS_ERRLEVEL_LOW, mp, ldip, sizeof(*ldip));
428658fa68bSDarrick J. Wong 		xfs_alert(mp,
4298314bca0SChandan Babu R 			"Bad inode 0x%llx, di_forkoff 0x%x",
4308314bca0SChandan Babu R 			in_f->ilf_ino, ldip->di_forkoff);
431658fa68bSDarrick J. Wong 		error = -EFSCORRUPTED;
432658fa68bSDarrick J. Wong 		goto out_release;
433658fa68bSDarrick J. Wong 	}
434658fa68bSDarrick J. Wong 	isize = xfs_log_dinode_size(mp);
435658fa68bSDarrick J. Wong 	if (unlikely(item->ri_buf[1].i_len > isize)) {
4368314bca0SChandan Babu R 		XFS_CORRUPTION_ERROR("Bad log dinode size", XFS_ERRLEVEL_LOW,
4378314bca0SChandan Babu R 				     mp, ldip, sizeof(*ldip));
438658fa68bSDarrick J. Wong 		xfs_alert(mp,
4398314bca0SChandan Babu R 			"Bad inode 0x%llx log dinode size 0x%x",
4408314bca0SChandan Babu R 			in_f->ilf_ino, item->ri_buf[1].i_len);
441658fa68bSDarrick J. Wong 		error = -EFSCORRUPTED;
442658fa68bSDarrick J. Wong 		goto out_release;
443658fa68bSDarrick J. Wong 	}
444658fa68bSDarrick J. Wong 
44532baa63dSDave Chinner 	/*
44632baa63dSDave Chinner 	 * Recover the log dinode inode into the on disk inode.
44732baa63dSDave Chinner 	 *
44832baa63dSDave Chinner 	 * The LSN in the log dinode is garbage - it can be zero or reflect
44932baa63dSDave Chinner 	 * stale in-memory runtime state that isn't coherent with the changes
45032baa63dSDave Chinner 	 * logged in this transaction or the changes written to the on-disk
45132baa63dSDave Chinner 	 * inode.  Hence we write the current lSN into the inode because that
45232baa63dSDave Chinner 	 * matches what xfs_iflush() would write inode the inode when flushing
45332baa63dSDave Chinner 	 * the changes in this transaction.
45432baa63dSDave Chinner 	 */
45532baa63dSDave Chinner 	xfs_log_dinode_to_disk(ldip, dip, current_lsn);
456658fa68bSDarrick J. Wong 
457658fa68bSDarrick J. Wong 	fields = in_f->ilf_fields;
458658fa68bSDarrick J. Wong 	if (fields & XFS_ILOG_DEV)
459658fa68bSDarrick J. Wong 		xfs_dinode_put_rdev(dip, in_f->ilf_u.ilfu_rdev);
460658fa68bSDarrick J. Wong 
461658fa68bSDarrick J. Wong 	if (in_f->ilf_size == 2)
462658fa68bSDarrick J. Wong 		goto out_owner_change;
463658fa68bSDarrick J. Wong 	len = item->ri_buf[2].i_len;
464658fa68bSDarrick J. Wong 	src = item->ri_buf[2].i_addr;
465658fa68bSDarrick J. Wong 	ASSERT(in_f->ilf_size <= 4);
466658fa68bSDarrick J. Wong 	ASSERT((in_f->ilf_size == 3) || (fields & XFS_ILOG_AFORK));
467658fa68bSDarrick J. Wong 	ASSERT(!(fields & XFS_ILOG_DFORK) ||
468b2c28035SDave Chinner 	       (len == xlog_calc_iovec_len(in_f->ilf_dsize)));
469658fa68bSDarrick J. Wong 
470658fa68bSDarrick J. Wong 	switch (fields & XFS_ILOG_DFORK) {
471658fa68bSDarrick J. Wong 	case XFS_ILOG_DDATA:
472658fa68bSDarrick J. Wong 	case XFS_ILOG_DEXT:
473658fa68bSDarrick J. Wong 		memcpy(XFS_DFORK_DPTR(dip), src, len);
474658fa68bSDarrick J. Wong 		break;
475658fa68bSDarrick J. Wong 
476658fa68bSDarrick J. Wong 	case XFS_ILOG_DBROOT:
477658fa68bSDarrick J. Wong 		xfs_bmbt_to_bmdr(mp, (struct xfs_btree_block *)src, len,
478658fa68bSDarrick J. Wong 				 (struct xfs_bmdr_block *)XFS_DFORK_DPTR(dip),
479658fa68bSDarrick J. Wong 				 XFS_DFORK_DSIZE(dip, mp));
480658fa68bSDarrick J. Wong 		break;
481658fa68bSDarrick J. Wong 
482658fa68bSDarrick J. Wong 	default:
483658fa68bSDarrick J. Wong 		/*
484658fa68bSDarrick J. Wong 		 * There are no data fork flags set.
485658fa68bSDarrick J. Wong 		 */
486658fa68bSDarrick J. Wong 		ASSERT((fields & XFS_ILOG_DFORK) == 0);
487658fa68bSDarrick J. Wong 		break;
488658fa68bSDarrick J. Wong 	}
489658fa68bSDarrick J. Wong 
490658fa68bSDarrick J. Wong 	/*
491658fa68bSDarrick J. Wong 	 * If we logged any attribute data, recover it.  There may or
492658fa68bSDarrick J. Wong 	 * may not have been any other non-core data logged in this
493658fa68bSDarrick J. Wong 	 * transaction.
494658fa68bSDarrick J. Wong 	 */
495658fa68bSDarrick J. Wong 	if (in_f->ilf_fields & XFS_ILOG_AFORK) {
496658fa68bSDarrick J. Wong 		if (in_f->ilf_fields & XFS_ILOG_DFORK) {
497658fa68bSDarrick J. Wong 			attr_index = 3;
498658fa68bSDarrick J. Wong 		} else {
499658fa68bSDarrick J. Wong 			attr_index = 2;
500658fa68bSDarrick J. Wong 		}
501658fa68bSDarrick J. Wong 		len = item->ri_buf[attr_index].i_len;
502658fa68bSDarrick J. Wong 		src = item->ri_buf[attr_index].i_addr;
503b2c28035SDave Chinner 		ASSERT(len == xlog_calc_iovec_len(in_f->ilf_asize));
504658fa68bSDarrick J. Wong 
505658fa68bSDarrick J. Wong 		switch (in_f->ilf_fields & XFS_ILOG_AFORK) {
506658fa68bSDarrick J. Wong 		case XFS_ILOG_ADATA:
507658fa68bSDarrick J. Wong 		case XFS_ILOG_AEXT:
508658fa68bSDarrick J. Wong 			dest = XFS_DFORK_APTR(dip);
509658fa68bSDarrick J. Wong 			ASSERT(len <= XFS_DFORK_ASIZE(dip, mp));
510658fa68bSDarrick J. Wong 			memcpy(dest, src, len);
511658fa68bSDarrick J. Wong 			break;
512658fa68bSDarrick J. Wong 
513658fa68bSDarrick J. Wong 		case XFS_ILOG_ABROOT:
514658fa68bSDarrick J. Wong 			dest = XFS_DFORK_APTR(dip);
515658fa68bSDarrick J. Wong 			xfs_bmbt_to_bmdr(mp, (struct xfs_btree_block *)src,
516658fa68bSDarrick J. Wong 					 len, (struct xfs_bmdr_block *)dest,
517658fa68bSDarrick J. Wong 					 XFS_DFORK_ASIZE(dip, mp));
518658fa68bSDarrick J. Wong 			break;
519658fa68bSDarrick J. Wong 
520658fa68bSDarrick J. Wong 		default:
521658fa68bSDarrick J. Wong 			xfs_warn(log->l_mp, "%s: Invalid flag", __func__);
522658fa68bSDarrick J. Wong 			ASSERT(0);
523658fa68bSDarrick J. Wong 			error = -EFSCORRUPTED;
524658fa68bSDarrick J. Wong 			goto out_release;
525658fa68bSDarrick J. Wong 		}
526658fa68bSDarrick J. Wong 	}
527658fa68bSDarrick J. Wong 
528658fa68bSDarrick J. Wong out_owner_change:
529658fa68bSDarrick J. Wong 	/* Recover the swapext owner change unless inode has been deleted */
530658fa68bSDarrick J. Wong 	if ((in_f->ilf_fields & (XFS_ILOG_DOWNER|XFS_ILOG_AOWNER)) &&
531658fa68bSDarrick J. Wong 	    (dip->di_mode != 0))
532658fa68bSDarrick J. Wong 		error = xfs_recover_inode_owner_change(mp, dip, in_f,
533658fa68bSDarrick J. Wong 						       buffer_list);
534*b28b2342SDave Chinner 	/* re-generate the checksum and validate the recovered inode. */
535658fa68bSDarrick J. Wong 	xfs_dinode_calc_crc(log->l_mp, dip);
536*b28b2342SDave Chinner 	fa = xfs_dinode_verify(log->l_mp, in_f->ilf_ino, dip);
537*b28b2342SDave Chinner 	if (fa) {
538*b28b2342SDave Chinner 		XFS_CORRUPTION_ERROR(
539*b28b2342SDave Chinner 			"Bad dinode after recovery",
540*b28b2342SDave Chinner 				XFS_ERRLEVEL_LOW, mp, dip, sizeof(*dip));
541*b28b2342SDave Chinner 		xfs_alert(mp,
542*b28b2342SDave Chinner 			"Metadata corruption detected at %pS, inode 0x%llx",
543*b28b2342SDave Chinner 			fa, in_f->ilf_ino);
544*b28b2342SDave Chinner 		error = -EFSCORRUPTED;
545*b28b2342SDave Chinner 		goto out_release;
546*b28b2342SDave Chinner 	}
547658fa68bSDarrick J. Wong 
548658fa68bSDarrick J. Wong 	ASSERT(bp->b_mount == mp);
5499fe5c77cSDave Chinner 	bp->b_flags |= _XBF_LOGRECOVERY;
550658fa68bSDarrick J. Wong 	xfs_buf_delwri_queue(bp, buffer_list);
551658fa68bSDarrick J. Wong 
552658fa68bSDarrick J. Wong out_release:
553658fa68bSDarrick J. Wong 	xfs_buf_relse(bp);
554658fa68bSDarrick J. Wong error:
555658fa68bSDarrick J. Wong 	if (need_free)
556658fa68bSDarrick J. Wong 		kmem_free(in_f);
557658fa68bSDarrick J. Wong 	return error;
558658fa68bSDarrick J. Wong }
559658fa68bSDarrick J. Wong 
56086ffa471SDarrick J. Wong const struct xlog_recover_item_ops xlog_inode_item_ops = {
56186ffa471SDarrick J. Wong 	.item_type		= XFS_LI_INODE,
5628ea5682dSDarrick J. Wong 	.ra_pass2		= xlog_recover_inode_ra_pass2,
563658fa68bSDarrick J. Wong 	.commit_pass2		= xlog_recover_inode_commit_pass2,
56486ffa471SDarrick J. Wong };
565