xref: /openbmc/linux/fs/btrfs/inode.c (revision 1539adf7)
1 // SPDX-License-Identifier: GPL-2.0
2 /*
3  * Copyright (C) 2007 Oracle.  All rights reserved.
4  */
5 
6 #include <crypto/hash.h>
7 #include <linux/kernel.h>
8 #include <linux/bio.h>
9 #include <linux/blk-cgroup.h>
10 #include <linux/file.h>
11 #include <linux/fs.h>
12 #include <linux/pagemap.h>
13 #include <linux/highmem.h>
14 #include <linux/time.h>
15 #include <linux/init.h>
16 #include <linux/string.h>
17 #include <linux/backing-dev.h>
18 #include <linux/writeback.h>
19 #include <linux/compat.h>
20 #include <linux/xattr.h>
21 #include <linux/posix_acl.h>
22 #include <linux/falloc.h>
23 #include <linux/slab.h>
24 #include <linux/ratelimit.h>
25 #include <linux/btrfs.h>
26 #include <linux/blkdev.h>
27 #include <linux/posix_acl_xattr.h>
28 #include <linux/uio.h>
29 #include <linux/magic.h>
30 #include <linux/iversion.h>
31 #include <linux/swap.h>
32 #include <linux/migrate.h>
33 #include <linux/sched/mm.h>
34 #include <linux/iomap.h>
35 #include <asm/unaligned.h>
36 #include <linux/fsverity.h>
37 #include "misc.h"
38 #include "ctree.h"
39 #include "disk-io.h"
40 #include "transaction.h"
41 #include "btrfs_inode.h"
42 #include "print-tree.h"
43 #include "ordered-data.h"
44 #include "xattr.h"
45 #include "tree-log.h"
46 #include "bio.h"
47 #include "compression.h"
48 #include "locking.h"
49 #include "free-space-cache.h"
50 #include "props.h"
51 #include "qgroup.h"
52 #include "delalloc-space.h"
53 #include "block-group.h"
54 #include "space-info.h"
55 #include "zoned.h"
56 #include "subpage.h"
57 #include "inode-item.h"
58 #include "fs.h"
59 #include "accessors.h"
60 #include "extent-tree.h"
61 #include "root-tree.h"
62 #include "defrag.h"
63 #include "dir-item.h"
64 #include "file-item.h"
65 #include "uuid-tree.h"
66 #include "ioctl.h"
67 #include "file.h"
68 #include "acl.h"
69 #include "relocation.h"
70 #include "verity.h"
71 #include "super.h"
72 #include "orphan.h"
73 #include "backref.h"
74 
75 struct btrfs_iget_args {
76 	u64 ino;
77 	struct btrfs_root *root;
78 };
79 
80 struct btrfs_dio_data {
81 	ssize_t submitted;
82 	struct extent_changeset *data_reserved;
83 	struct btrfs_ordered_extent *ordered;
84 	bool data_space_reserved;
85 	bool nocow_done;
86 };
87 
88 struct btrfs_dio_private {
89 	/* Range of I/O */
90 	u64 file_offset;
91 	u32 bytes;
92 
93 	/* This must be last */
94 	struct btrfs_bio bbio;
95 };
96 
97 static struct bio_set btrfs_dio_bioset;
98 
99 struct btrfs_rename_ctx {
100 	/* Output field. Stores the index number of the old directory entry. */
101 	u64 index;
102 };
103 
104 /*
105  * Used by data_reloc_print_warning_inode() to pass needed info for filename
106  * resolution and output of error message.
107  */
108 struct data_reloc_warn {
109 	struct btrfs_path path;
110 	struct btrfs_fs_info *fs_info;
111 	u64 extent_item_size;
112 	u64 logical;
113 	int mirror_num;
114 };
115 
116 static const struct inode_operations btrfs_dir_inode_operations;
117 static const struct inode_operations btrfs_symlink_inode_operations;
118 static const struct inode_operations btrfs_special_inode_operations;
119 static const struct inode_operations btrfs_file_inode_operations;
120 static const struct address_space_operations btrfs_aops;
121 static const struct file_operations btrfs_dir_file_operations;
122 
123 static struct kmem_cache *btrfs_inode_cachep;
124 
125 static int btrfs_setsize(struct inode *inode, struct iattr *attr);
126 static int btrfs_truncate(struct btrfs_inode *inode, bool skip_writeback);
127 
128 static noinline int run_delalloc_cow(struct btrfs_inode *inode,
129 				     struct page *locked_page, u64 start,
130 				     u64 end, struct writeback_control *wbc,
131 				     bool pages_dirty);
132 static struct extent_map *create_io_em(struct btrfs_inode *inode, u64 start,
133 				       u64 len, u64 orig_start, u64 block_start,
134 				       u64 block_len, u64 orig_block_len,
135 				       u64 ram_bytes, int compress_type,
136 				       int type);
137 
138 static int data_reloc_print_warning_inode(u64 inum, u64 offset, u64 num_bytes,
139 					  u64 root, void *warn_ctx)
140 {
141 	struct data_reloc_warn *warn = warn_ctx;
142 	struct btrfs_fs_info *fs_info = warn->fs_info;
143 	struct extent_buffer *eb;
144 	struct btrfs_inode_item *inode_item;
145 	struct inode_fs_paths *ipath = NULL;
146 	struct btrfs_root *local_root;
147 	struct btrfs_key key;
148 	unsigned int nofs_flag;
149 	u32 nlink;
150 	int ret;
151 
152 	local_root = btrfs_get_fs_root(fs_info, root, true);
153 	if (IS_ERR(local_root)) {
154 		ret = PTR_ERR(local_root);
155 		goto err;
156 	}
157 
158 	/* This makes the path point to (inum INODE_ITEM ioff). */
159 	key.objectid = inum;
160 	key.type = BTRFS_INODE_ITEM_KEY;
161 	key.offset = 0;
162 
163 	ret = btrfs_search_slot(NULL, local_root, &key, &warn->path, 0, 0);
164 	if (ret) {
165 		btrfs_put_root(local_root);
166 		btrfs_release_path(&warn->path);
167 		goto err;
168 	}
169 
170 	eb = warn->path.nodes[0];
171 	inode_item = btrfs_item_ptr(eb, warn->path.slots[0], struct btrfs_inode_item);
172 	nlink = btrfs_inode_nlink(eb, inode_item);
173 	btrfs_release_path(&warn->path);
174 
175 	nofs_flag = memalloc_nofs_save();
176 	ipath = init_ipath(4096, local_root, &warn->path);
177 	memalloc_nofs_restore(nofs_flag);
178 	if (IS_ERR(ipath)) {
179 		btrfs_put_root(local_root);
180 		ret = PTR_ERR(ipath);
181 		ipath = NULL;
182 		/*
183 		 * -ENOMEM, not a critical error, just output an generic error
184 		 * without filename.
185 		 */
186 		btrfs_warn(fs_info,
187 "checksum error at logical %llu mirror %u root %llu, inode %llu offset %llu",
188 			   warn->logical, warn->mirror_num, root, inum, offset);
189 		return ret;
190 	}
191 	ret = paths_from_inode(inum, ipath);
192 	if (ret < 0)
193 		goto err;
194 
195 	/*
196 	 * We deliberately ignore the bit ipath might have been too small to
197 	 * hold all of the paths here
198 	 */
199 	for (int i = 0; i < ipath->fspath->elem_cnt; i++) {
200 		btrfs_warn(fs_info,
201 "checksum error at logical %llu mirror %u root %llu inode %llu offset %llu length %u links %u (path: %s)",
202 			   warn->logical, warn->mirror_num, root, inum, offset,
203 			   fs_info->sectorsize, nlink,
204 			   (char *)(unsigned long)ipath->fspath->val[i]);
205 	}
206 
207 	btrfs_put_root(local_root);
208 	free_ipath(ipath);
209 	return 0;
210 
211 err:
212 	btrfs_warn(fs_info,
213 "checksum error at logical %llu mirror %u root %llu inode %llu offset %llu, path resolving failed with ret=%d",
214 		   warn->logical, warn->mirror_num, root, inum, offset, ret);
215 
216 	free_ipath(ipath);
217 	return ret;
218 }
219 
220 /*
221  * Do extra user-friendly error output (e.g. lookup all the affected files).
222  *
223  * Return true if we succeeded doing the backref lookup.
224  * Return false if such lookup failed, and has to fallback to the old error message.
225  */
226 static void print_data_reloc_error(const struct btrfs_inode *inode, u64 file_off,
227 				   const u8 *csum, const u8 *csum_expected,
228 				   int mirror_num)
229 {
230 	struct btrfs_fs_info *fs_info = inode->root->fs_info;
231 	struct btrfs_path path = { 0 };
232 	struct btrfs_key found_key = { 0 };
233 	struct extent_buffer *eb;
234 	struct btrfs_extent_item *ei;
235 	const u32 csum_size = fs_info->csum_size;
236 	u64 logical;
237 	u64 flags;
238 	u32 item_size;
239 	int ret;
240 
241 	mutex_lock(&fs_info->reloc_mutex);
242 	logical = btrfs_get_reloc_bg_bytenr(fs_info);
243 	mutex_unlock(&fs_info->reloc_mutex);
244 
245 	if (logical == U64_MAX) {
246 		btrfs_warn_rl(fs_info, "has data reloc tree but no running relocation");
247 		btrfs_warn_rl(fs_info,
248 "csum failed root %lld ino %llu off %llu csum " CSUM_FMT " expected csum " CSUM_FMT " mirror %d",
249 			inode->root->root_key.objectid, btrfs_ino(inode), file_off,
250 			CSUM_FMT_VALUE(csum_size, csum),
251 			CSUM_FMT_VALUE(csum_size, csum_expected),
252 			mirror_num);
253 		return;
254 	}
255 
256 	logical += file_off;
257 	btrfs_warn_rl(fs_info,
258 "csum failed root %lld ino %llu off %llu logical %llu csum " CSUM_FMT " expected csum " CSUM_FMT " mirror %d",
259 			inode->root->root_key.objectid,
260 			btrfs_ino(inode), file_off, logical,
261 			CSUM_FMT_VALUE(csum_size, csum),
262 			CSUM_FMT_VALUE(csum_size, csum_expected),
263 			mirror_num);
264 
265 	ret = extent_from_logical(fs_info, logical, &path, &found_key, &flags);
266 	if (ret < 0) {
267 		btrfs_err_rl(fs_info, "failed to lookup extent item for logical %llu: %d",
268 			     logical, ret);
269 		return;
270 	}
271 	eb = path.nodes[0];
272 	ei = btrfs_item_ptr(eb, path.slots[0], struct btrfs_extent_item);
273 	item_size = btrfs_item_size(eb, path.slots[0]);
274 	if (flags & BTRFS_EXTENT_FLAG_TREE_BLOCK) {
275 		unsigned long ptr = 0;
276 		u64 ref_root;
277 		u8 ref_level;
278 
279 		while (true) {
280 			ret = tree_backref_for_extent(&ptr, eb, &found_key, ei,
281 						      item_size, &ref_root,
282 						      &ref_level);
283 			if (ret < 0) {
284 				btrfs_warn_rl(fs_info,
285 				"failed to resolve tree backref for logical %llu: %d",
286 					      logical, ret);
287 				break;
288 			}
289 			if (ret > 0)
290 				break;
291 
292 			btrfs_warn_rl(fs_info,
293 "csum error at logical %llu mirror %u: metadata %s (level %d) in tree %llu",
294 				logical, mirror_num,
295 				(ref_level ? "node" : "leaf"),
296 				ref_level, ref_root);
297 		}
298 		btrfs_release_path(&path);
299 	} else {
300 		struct btrfs_backref_walk_ctx ctx = { 0 };
301 		struct data_reloc_warn reloc_warn = { 0 };
302 
303 		btrfs_release_path(&path);
304 
305 		ctx.bytenr = found_key.objectid;
306 		ctx.extent_item_pos = logical - found_key.objectid;
307 		ctx.fs_info = fs_info;
308 
309 		reloc_warn.logical = logical;
310 		reloc_warn.extent_item_size = found_key.offset;
311 		reloc_warn.mirror_num = mirror_num;
312 		reloc_warn.fs_info = fs_info;
313 
314 		iterate_extent_inodes(&ctx, true,
315 				      data_reloc_print_warning_inode, &reloc_warn);
316 	}
317 }
318 
319 static void __cold btrfs_print_data_csum_error(struct btrfs_inode *inode,
320 		u64 logical_start, u8 *csum, u8 *csum_expected, int mirror_num)
321 {
322 	struct btrfs_root *root = inode->root;
323 	const u32 csum_size = root->fs_info->csum_size;
324 
325 	/* For data reloc tree, it's better to do a backref lookup instead. */
326 	if (root->root_key.objectid == BTRFS_DATA_RELOC_TREE_OBJECTID)
327 		return print_data_reloc_error(inode, logical_start, csum,
328 					      csum_expected, mirror_num);
329 
330 	/* Output without objectid, which is more meaningful */
331 	if (root->root_key.objectid >= BTRFS_LAST_FREE_OBJECTID) {
332 		btrfs_warn_rl(root->fs_info,
333 "csum failed root %lld ino %lld off %llu csum " CSUM_FMT " expected csum " CSUM_FMT " mirror %d",
334 			root->root_key.objectid, btrfs_ino(inode),
335 			logical_start,
336 			CSUM_FMT_VALUE(csum_size, csum),
337 			CSUM_FMT_VALUE(csum_size, csum_expected),
338 			mirror_num);
339 	} else {
340 		btrfs_warn_rl(root->fs_info,
341 "csum failed root %llu ino %llu off %llu csum " CSUM_FMT " expected csum " CSUM_FMT " mirror %d",
342 			root->root_key.objectid, btrfs_ino(inode),
343 			logical_start,
344 			CSUM_FMT_VALUE(csum_size, csum),
345 			CSUM_FMT_VALUE(csum_size, csum_expected),
346 			mirror_num);
347 	}
348 }
349 
350 /*
351  * btrfs_inode_lock - lock inode i_rwsem based on arguments passed
352  *
353  * ilock_flags can have the following bit set:
354  *
355  * BTRFS_ILOCK_SHARED - acquire a shared lock on the inode
356  * BTRFS_ILOCK_TRY - try to acquire the lock, if fails on first attempt
357  *		     return -EAGAIN
358  * BTRFS_ILOCK_MMAP - acquire a write lock on the i_mmap_lock
359  */
360 int btrfs_inode_lock(struct btrfs_inode *inode, unsigned int ilock_flags)
361 {
362 	if (ilock_flags & BTRFS_ILOCK_SHARED) {
363 		if (ilock_flags & BTRFS_ILOCK_TRY) {
364 			if (!inode_trylock_shared(&inode->vfs_inode))
365 				return -EAGAIN;
366 			else
367 				return 0;
368 		}
369 		inode_lock_shared(&inode->vfs_inode);
370 	} else {
371 		if (ilock_flags & BTRFS_ILOCK_TRY) {
372 			if (!inode_trylock(&inode->vfs_inode))
373 				return -EAGAIN;
374 			else
375 				return 0;
376 		}
377 		inode_lock(&inode->vfs_inode);
378 	}
379 	if (ilock_flags & BTRFS_ILOCK_MMAP)
380 		down_write(&inode->i_mmap_lock);
381 	return 0;
382 }
383 
384 /*
385  * btrfs_inode_unlock - unock inode i_rwsem
386  *
387  * ilock_flags should contain the same bits set as passed to btrfs_inode_lock()
388  * to decide whether the lock acquired is shared or exclusive.
389  */
390 void btrfs_inode_unlock(struct btrfs_inode *inode, unsigned int ilock_flags)
391 {
392 	if (ilock_flags & BTRFS_ILOCK_MMAP)
393 		up_write(&inode->i_mmap_lock);
394 	if (ilock_flags & BTRFS_ILOCK_SHARED)
395 		inode_unlock_shared(&inode->vfs_inode);
396 	else
397 		inode_unlock(&inode->vfs_inode);
398 }
399 
400 /*
401  * Cleanup all submitted ordered extents in specified range to handle errors
402  * from the btrfs_run_delalloc_range() callback.
403  *
404  * NOTE: caller must ensure that when an error happens, it can not call
405  * extent_clear_unlock_delalloc() to clear both the bits EXTENT_DO_ACCOUNTING
406  * and EXTENT_DELALLOC simultaneously, because that causes the reserved metadata
407  * to be released, which we want to happen only when finishing the ordered
408  * extent (btrfs_finish_ordered_io()).
409  */
410 static inline void btrfs_cleanup_ordered_extents(struct btrfs_inode *inode,
411 						 struct page *locked_page,
412 						 u64 offset, u64 bytes)
413 {
414 	unsigned long index = offset >> PAGE_SHIFT;
415 	unsigned long end_index = (offset + bytes - 1) >> PAGE_SHIFT;
416 	u64 page_start = 0, page_end = 0;
417 	struct page *page;
418 
419 	if (locked_page) {
420 		page_start = page_offset(locked_page);
421 		page_end = page_start + PAGE_SIZE - 1;
422 	}
423 
424 	while (index <= end_index) {
425 		/*
426 		 * For locked page, we will call btrfs_mark_ordered_io_finished
427 		 * through btrfs_mark_ordered_io_finished() on it
428 		 * in run_delalloc_range() for the error handling, which will
429 		 * clear page Ordered and run the ordered extent accounting.
430 		 *
431 		 * Here we can't just clear the Ordered bit, or
432 		 * btrfs_mark_ordered_io_finished() would skip the accounting
433 		 * for the page range, and the ordered extent will never finish.
434 		 */
435 		if (locked_page && index == (page_start >> PAGE_SHIFT)) {
436 			index++;
437 			continue;
438 		}
439 		page = find_get_page(inode->vfs_inode.i_mapping, index);
440 		index++;
441 		if (!page)
442 			continue;
443 
444 		/*
445 		 * Here we just clear all Ordered bits for every page in the
446 		 * range, then btrfs_mark_ordered_io_finished() will handle
447 		 * the ordered extent accounting for the range.
448 		 */
449 		btrfs_page_clamp_clear_ordered(inode->root->fs_info, page,
450 					       offset, bytes);
451 		put_page(page);
452 	}
453 
454 	if (locked_page) {
455 		/* The locked page covers the full range, nothing needs to be done */
456 		if (bytes + offset <= page_start + PAGE_SIZE)
457 			return;
458 		/*
459 		 * In case this page belongs to the delalloc range being
460 		 * instantiated then skip it, since the first page of a range is
461 		 * going to be properly cleaned up by the caller of
462 		 * run_delalloc_range
463 		 */
464 		if (page_start >= offset && page_end <= (offset + bytes - 1)) {
465 			bytes = offset + bytes - page_offset(locked_page) - PAGE_SIZE;
466 			offset = page_offset(locked_page) + PAGE_SIZE;
467 		}
468 	}
469 
470 	return btrfs_mark_ordered_io_finished(inode, NULL, offset, bytes, false);
471 }
472 
473 static int btrfs_dirty_inode(struct btrfs_inode *inode);
474 
475 static int btrfs_init_inode_security(struct btrfs_trans_handle *trans,
476 				     struct btrfs_new_inode_args *args)
477 {
478 	int err;
479 
480 	if (args->default_acl) {
481 		err = __btrfs_set_acl(trans, args->inode, args->default_acl,
482 				      ACL_TYPE_DEFAULT);
483 		if (err)
484 			return err;
485 	}
486 	if (args->acl) {
487 		err = __btrfs_set_acl(trans, args->inode, args->acl, ACL_TYPE_ACCESS);
488 		if (err)
489 			return err;
490 	}
491 	if (!args->default_acl && !args->acl)
492 		cache_no_acl(args->inode);
493 	return btrfs_xattr_security_init(trans, args->inode, args->dir,
494 					 &args->dentry->d_name);
495 }
496 
497 /*
498  * this does all the hard work for inserting an inline extent into
499  * the btree.  The caller should have done a btrfs_drop_extents so that
500  * no overlapping inline items exist in the btree
501  */
502 static int insert_inline_extent(struct btrfs_trans_handle *trans,
503 				struct btrfs_path *path,
504 				struct btrfs_inode *inode, bool extent_inserted,
505 				size_t size, size_t compressed_size,
506 				int compress_type,
507 				struct page **compressed_pages,
508 				bool update_i_size)
509 {
510 	struct btrfs_root *root = inode->root;
511 	struct extent_buffer *leaf;
512 	struct page *page = NULL;
513 	char *kaddr;
514 	unsigned long ptr;
515 	struct btrfs_file_extent_item *ei;
516 	int ret;
517 	size_t cur_size = size;
518 	u64 i_size;
519 
520 	ASSERT((compressed_size > 0 && compressed_pages) ||
521 	       (compressed_size == 0 && !compressed_pages));
522 
523 	if (compressed_size && compressed_pages)
524 		cur_size = compressed_size;
525 
526 	if (!extent_inserted) {
527 		struct btrfs_key key;
528 		size_t datasize;
529 
530 		key.objectid = btrfs_ino(inode);
531 		key.offset = 0;
532 		key.type = BTRFS_EXTENT_DATA_KEY;
533 
534 		datasize = btrfs_file_extent_calc_inline_size(cur_size);
535 		ret = btrfs_insert_empty_item(trans, root, path, &key,
536 					      datasize);
537 		if (ret)
538 			goto fail;
539 	}
540 	leaf = path->nodes[0];
541 	ei = btrfs_item_ptr(leaf, path->slots[0],
542 			    struct btrfs_file_extent_item);
543 	btrfs_set_file_extent_generation(leaf, ei, trans->transid);
544 	btrfs_set_file_extent_type(leaf, ei, BTRFS_FILE_EXTENT_INLINE);
545 	btrfs_set_file_extent_encryption(leaf, ei, 0);
546 	btrfs_set_file_extent_other_encoding(leaf, ei, 0);
547 	btrfs_set_file_extent_ram_bytes(leaf, ei, size);
548 	ptr = btrfs_file_extent_inline_start(ei);
549 
550 	if (compress_type != BTRFS_COMPRESS_NONE) {
551 		struct page *cpage;
552 		int i = 0;
553 		while (compressed_size > 0) {
554 			cpage = compressed_pages[i];
555 			cur_size = min_t(unsigned long, compressed_size,
556 				       PAGE_SIZE);
557 
558 			kaddr = kmap_local_page(cpage);
559 			write_extent_buffer(leaf, kaddr, ptr, cur_size);
560 			kunmap_local(kaddr);
561 
562 			i++;
563 			ptr += cur_size;
564 			compressed_size -= cur_size;
565 		}
566 		btrfs_set_file_extent_compression(leaf, ei,
567 						  compress_type);
568 	} else {
569 		page = find_get_page(inode->vfs_inode.i_mapping, 0);
570 		btrfs_set_file_extent_compression(leaf, ei, 0);
571 		kaddr = kmap_local_page(page);
572 		write_extent_buffer(leaf, kaddr, ptr, size);
573 		kunmap_local(kaddr);
574 		put_page(page);
575 	}
576 	btrfs_mark_buffer_dirty(trans, leaf);
577 	btrfs_release_path(path);
578 
579 	/*
580 	 * We align size to sectorsize for inline extents just for simplicity
581 	 * sake.
582 	 */
583 	ret = btrfs_inode_set_file_extent_range(inode, 0,
584 					ALIGN(size, root->fs_info->sectorsize));
585 	if (ret)
586 		goto fail;
587 
588 	/*
589 	 * We're an inline extent, so nobody can extend the file past i_size
590 	 * without locking a page we already have locked.
591 	 *
592 	 * We must do any i_size and inode updates before we unlock the pages.
593 	 * Otherwise we could end up racing with unlink.
594 	 */
595 	i_size = i_size_read(&inode->vfs_inode);
596 	if (update_i_size && size > i_size) {
597 		i_size_write(&inode->vfs_inode, size);
598 		i_size = size;
599 	}
600 	inode->disk_i_size = i_size;
601 
602 fail:
603 	return ret;
604 }
605 
606 
607 /*
608  * conditionally insert an inline extent into the file.  This
609  * does the checks required to make sure the data is small enough
610  * to fit as an inline extent.
611  */
612 static noinline int cow_file_range_inline(struct btrfs_inode *inode, u64 size,
613 					  size_t compressed_size,
614 					  int compress_type,
615 					  struct page **compressed_pages,
616 					  bool update_i_size)
617 {
618 	struct btrfs_drop_extents_args drop_args = { 0 };
619 	struct btrfs_root *root = inode->root;
620 	struct btrfs_fs_info *fs_info = root->fs_info;
621 	struct btrfs_trans_handle *trans;
622 	u64 data_len = (compressed_size ?: size);
623 	int ret;
624 	struct btrfs_path *path;
625 
626 	/*
627 	 * We can create an inline extent if it ends at or beyond the current
628 	 * i_size, is no larger than a sector (decompressed), and the (possibly
629 	 * compressed) data fits in a leaf and the configured maximum inline
630 	 * size.
631 	 */
632 	if (size < i_size_read(&inode->vfs_inode) ||
633 	    size > fs_info->sectorsize ||
634 	    data_len > BTRFS_MAX_INLINE_DATA_SIZE(fs_info) ||
635 	    data_len > fs_info->max_inline)
636 		return 1;
637 
638 	path = btrfs_alloc_path();
639 	if (!path)
640 		return -ENOMEM;
641 
642 	trans = btrfs_join_transaction(root);
643 	if (IS_ERR(trans)) {
644 		btrfs_free_path(path);
645 		return PTR_ERR(trans);
646 	}
647 	trans->block_rsv = &inode->block_rsv;
648 
649 	drop_args.path = path;
650 	drop_args.start = 0;
651 	drop_args.end = fs_info->sectorsize;
652 	drop_args.drop_cache = true;
653 	drop_args.replace_extent = true;
654 	drop_args.extent_item_size = btrfs_file_extent_calc_inline_size(data_len);
655 	ret = btrfs_drop_extents(trans, root, inode, &drop_args);
656 	if (ret) {
657 		btrfs_abort_transaction(trans, ret);
658 		goto out;
659 	}
660 
661 	ret = insert_inline_extent(trans, path, inode, drop_args.extent_inserted,
662 				   size, compressed_size, compress_type,
663 				   compressed_pages, update_i_size);
664 	if (ret && ret != -ENOSPC) {
665 		btrfs_abort_transaction(trans, ret);
666 		goto out;
667 	} else if (ret == -ENOSPC) {
668 		ret = 1;
669 		goto out;
670 	}
671 
672 	btrfs_update_inode_bytes(inode, size, drop_args.bytes_found);
673 	ret = btrfs_update_inode(trans, root, inode);
674 	if (ret && ret != -ENOSPC) {
675 		btrfs_abort_transaction(trans, ret);
676 		goto out;
677 	} else if (ret == -ENOSPC) {
678 		ret = 1;
679 		goto out;
680 	}
681 
682 	btrfs_set_inode_full_sync(inode);
683 out:
684 	/*
685 	 * Don't forget to free the reserved space, as for inlined extent
686 	 * it won't count as data extent, free them directly here.
687 	 * And at reserve time, it's always aligned to page size, so
688 	 * just free one page here.
689 	 */
690 	btrfs_qgroup_free_data(inode, NULL, 0, PAGE_SIZE, NULL);
691 	btrfs_free_path(path);
692 	btrfs_end_transaction(trans);
693 	return ret;
694 }
695 
696 struct async_extent {
697 	u64 start;
698 	u64 ram_size;
699 	u64 compressed_size;
700 	struct page **pages;
701 	unsigned long nr_pages;
702 	int compress_type;
703 	struct list_head list;
704 };
705 
706 struct async_chunk {
707 	struct btrfs_inode *inode;
708 	struct page *locked_page;
709 	u64 start;
710 	u64 end;
711 	blk_opf_t write_flags;
712 	struct list_head extents;
713 	struct cgroup_subsys_state *blkcg_css;
714 	struct btrfs_work work;
715 	struct async_cow *async_cow;
716 };
717 
718 struct async_cow {
719 	atomic_t num_chunks;
720 	struct async_chunk chunks[];
721 };
722 
723 static noinline int add_async_extent(struct async_chunk *cow,
724 				     u64 start, u64 ram_size,
725 				     u64 compressed_size,
726 				     struct page **pages,
727 				     unsigned long nr_pages,
728 				     int compress_type)
729 {
730 	struct async_extent *async_extent;
731 
732 	async_extent = kmalloc(sizeof(*async_extent), GFP_NOFS);
733 	BUG_ON(!async_extent); /* -ENOMEM */
734 	async_extent->start = start;
735 	async_extent->ram_size = ram_size;
736 	async_extent->compressed_size = compressed_size;
737 	async_extent->pages = pages;
738 	async_extent->nr_pages = nr_pages;
739 	async_extent->compress_type = compress_type;
740 	list_add_tail(&async_extent->list, &cow->extents);
741 	return 0;
742 }
743 
744 /*
745  * Check if the inode needs to be submitted to compression, based on mount
746  * options, defragmentation, properties or heuristics.
747  */
748 static inline int inode_need_compress(struct btrfs_inode *inode, u64 start,
749 				      u64 end)
750 {
751 	struct btrfs_fs_info *fs_info = inode->root->fs_info;
752 
753 	if (!btrfs_inode_can_compress(inode)) {
754 		WARN(IS_ENABLED(CONFIG_BTRFS_DEBUG),
755 			KERN_ERR "BTRFS: unexpected compression for ino %llu\n",
756 			btrfs_ino(inode));
757 		return 0;
758 	}
759 	/*
760 	 * Special check for subpage.
761 	 *
762 	 * We lock the full page then run each delalloc range in the page, thus
763 	 * for the following case, we will hit some subpage specific corner case:
764 	 *
765 	 * 0		32K		64K
766 	 * |	|///////|	|///////|
767 	 *		\- A		\- B
768 	 *
769 	 * In above case, both range A and range B will try to unlock the full
770 	 * page [0, 64K), causing the one finished later will have page
771 	 * unlocked already, triggering various page lock requirement BUG_ON()s.
772 	 *
773 	 * So here we add an artificial limit that subpage compression can only
774 	 * if the range is fully page aligned.
775 	 *
776 	 * In theory we only need to ensure the first page is fully covered, but
777 	 * the tailing partial page will be locked until the full compression
778 	 * finishes, delaying the write of other range.
779 	 *
780 	 * TODO: Make btrfs_run_delalloc_range() to lock all delalloc range
781 	 * first to prevent any submitted async extent to unlock the full page.
782 	 * By this, we can ensure for subpage case that only the last async_cow
783 	 * will unlock the full page.
784 	 */
785 	if (fs_info->sectorsize < PAGE_SIZE) {
786 		if (!PAGE_ALIGNED(start) ||
787 		    !PAGE_ALIGNED(end + 1))
788 			return 0;
789 	}
790 
791 	/* force compress */
792 	if (btrfs_test_opt(fs_info, FORCE_COMPRESS))
793 		return 1;
794 	/* defrag ioctl */
795 	if (inode->defrag_compress)
796 		return 1;
797 	/* bad compression ratios */
798 	if (inode->flags & BTRFS_INODE_NOCOMPRESS)
799 		return 0;
800 	if (btrfs_test_opt(fs_info, COMPRESS) ||
801 	    inode->flags & BTRFS_INODE_COMPRESS ||
802 	    inode->prop_compress)
803 		return btrfs_compress_heuristic(&inode->vfs_inode, start, end);
804 	return 0;
805 }
806 
807 static inline void inode_should_defrag(struct btrfs_inode *inode,
808 		u64 start, u64 end, u64 num_bytes, u32 small_write)
809 {
810 	/* If this is a small write inside eof, kick off a defrag */
811 	if (num_bytes < small_write &&
812 	    (start > 0 || end + 1 < inode->disk_i_size))
813 		btrfs_add_inode_defrag(NULL, inode, small_write);
814 }
815 
816 /*
817  * Work queue call back to started compression on a file and pages.
818  *
819  * This is done inside an ordered work queue, and the compression is spread
820  * across many cpus.  The actual IO submission is step two, and the ordered work
821  * queue takes care of making sure that happens in the same order things were
822  * put onto the queue by writepages and friends.
823  *
824  * If this code finds it can't get good compression, it puts an entry onto the
825  * work queue to write the uncompressed bytes.  This makes sure that both
826  * compressed inodes and uncompressed inodes are written in the same order that
827  * the flusher thread sent them down.
828  */
829 static void compress_file_range(struct btrfs_work *work)
830 {
831 	struct async_chunk *async_chunk =
832 		container_of(work, struct async_chunk, work);
833 	struct btrfs_inode *inode = async_chunk->inode;
834 	struct btrfs_fs_info *fs_info = inode->root->fs_info;
835 	struct address_space *mapping = inode->vfs_inode.i_mapping;
836 	u64 blocksize = fs_info->sectorsize;
837 	u64 start = async_chunk->start;
838 	u64 end = async_chunk->end;
839 	u64 actual_end;
840 	u64 i_size;
841 	int ret = 0;
842 	struct page **pages;
843 	unsigned long nr_pages;
844 	unsigned long total_compressed = 0;
845 	unsigned long total_in = 0;
846 	unsigned int poff;
847 	int i;
848 	int compress_type = fs_info->compress_type;
849 
850 	inode_should_defrag(inode, start, end, end - start + 1, SZ_16K);
851 
852 	/*
853 	 * We need to call clear_page_dirty_for_io on each page in the range.
854 	 * Otherwise applications with the file mmap'd can wander in and change
855 	 * the page contents while we are compressing them.
856 	 */
857 	extent_range_clear_dirty_for_io(&inode->vfs_inode, start, end);
858 
859 	/*
860 	 * We need to save i_size before now because it could change in between
861 	 * us evaluating the size and assigning it.  This is because we lock and
862 	 * unlock the page in truncate and fallocate, and then modify the i_size
863 	 * later on.
864 	 *
865 	 * The barriers are to emulate READ_ONCE, remove that once i_size_read
866 	 * does that for us.
867 	 */
868 	barrier();
869 	i_size = i_size_read(&inode->vfs_inode);
870 	barrier();
871 	actual_end = min_t(u64, i_size, end + 1);
872 again:
873 	pages = NULL;
874 	nr_pages = (end >> PAGE_SHIFT) - (start >> PAGE_SHIFT) + 1;
875 	nr_pages = min_t(unsigned long, nr_pages, BTRFS_MAX_COMPRESSED_PAGES);
876 
877 	/*
878 	 * we don't want to send crud past the end of i_size through
879 	 * compression, that's just a waste of CPU time.  So, if the
880 	 * end of the file is before the start of our current
881 	 * requested range of bytes, we bail out to the uncompressed
882 	 * cleanup code that can deal with all of this.
883 	 *
884 	 * It isn't really the fastest way to fix things, but this is a
885 	 * very uncommon corner.
886 	 */
887 	if (actual_end <= start)
888 		goto cleanup_and_bail_uncompressed;
889 
890 	total_compressed = actual_end - start;
891 
892 	/*
893 	 * Skip compression for a small file range(<=blocksize) that
894 	 * isn't an inline extent, since it doesn't save disk space at all.
895 	 */
896 	if (total_compressed <= blocksize &&
897 	   (start > 0 || end + 1 < inode->disk_i_size))
898 		goto cleanup_and_bail_uncompressed;
899 
900 	/*
901 	 * For subpage case, we require full page alignment for the sector
902 	 * aligned range.
903 	 * Thus we must also check against @actual_end, not just @end.
904 	 */
905 	if (blocksize < PAGE_SIZE) {
906 		if (!PAGE_ALIGNED(start) ||
907 		    !PAGE_ALIGNED(round_up(actual_end, blocksize)))
908 			goto cleanup_and_bail_uncompressed;
909 	}
910 
911 	total_compressed = min_t(unsigned long, total_compressed,
912 			BTRFS_MAX_UNCOMPRESSED);
913 	total_in = 0;
914 	ret = 0;
915 
916 	/*
917 	 * We do compression for mount -o compress and when the inode has not
918 	 * been flagged as NOCOMPRESS.  This flag can change at any time if we
919 	 * discover bad compression ratios.
920 	 */
921 	if (!inode_need_compress(inode, start, end))
922 		goto cleanup_and_bail_uncompressed;
923 
924 	pages = kcalloc(nr_pages, sizeof(struct page *), GFP_NOFS);
925 	if (!pages) {
926 		/*
927 		 * Memory allocation failure is not a fatal error, we can fall
928 		 * back to uncompressed code.
929 		 */
930 		goto cleanup_and_bail_uncompressed;
931 	}
932 
933 	if (inode->defrag_compress)
934 		compress_type = inode->defrag_compress;
935 	else if (inode->prop_compress)
936 		compress_type = inode->prop_compress;
937 
938 	/* Compression level is applied here. */
939 	ret = btrfs_compress_pages(compress_type | (fs_info->compress_level << 4),
940 				   mapping, start, pages, &nr_pages, &total_in,
941 				   &total_compressed);
942 	if (ret)
943 		goto mark_incompressible;
944 
945 	/*
946 	 * Zero the tail end of the last page, as we might be sending it down
947 	 * to disk.
948 	 */
949 	poff = offset_in_page(total_compressed);
950 	if (poff)
951 		memzero_page(pages[nr_pages - 1], poff, PAGE_SIZE - poff);
952 
953 	/*
954 	 * Try to create an inline extent.
955 	 *
956 	 * If we didn't compress the entire range, try to create an uncompressed
957 	 * inline extent, else a compressed one.
958 	 *
959 	 * Check cow_file_range() for why we don't even try to create inline
960 	 * extent for the subpage case.
961 	 */
962 	if (start == 0 && fs_info->sectorsize == PAGE_SIZE) {
963 		if (total_in < actual_end) {
964 			ret = cow_file_range_inline(inode, actual_end, 0,
965 						    BTRFS_COMPRESS_NONE, NULL,
966 						    false);
967 		} else {
968 			ret = cow_file_range_inline(inode, actual_end,
969 						    total_compressed,
970 						    compress_type, pages,
971 						    false);
972 		}
973 		if (ret <= 0) {
974 			unsigned long clear_flags = EXTENT_DELALLOC |
975 				EXTENT_DELALLOC_NEW | EXTENT_DEFRAG |
976 				EXTENT_DO_ACCOUNTING;
977 
978 			if (ret < 0)
979 				mapping_set_error(mapping, -EIO);
980 
981 			/*
982 			 * inline extent creation worked or returned error,
983 			 * we don't need to create any more async work items.
984 			 * Unlock and free up our temp pages.
985 			 *
986 			 * We use DO_ACCOUNTING here because we need the
987 			 * delalloc_release_metadata to be done _after_ we drop
988 			 * our outstanding extent for clearing delalloc for this
989 			 * range.
990 			 */
991 			extent_clear_unlock_delalloc(inode, start, end,
992 						     NULL,
993 						     clear_flags,
994 						     PAGE_UNLOCK |
995 						     PAGE_START_WRITEBACK |
996 						     PAGE_END_WRITEBACK);
997 			goto free_pages;
998 		}
999 	}
1000 
1001 	/*
1002 	 * We aren't doing an inline extent. Round the compressed size up to a
1003 	 * block size boundary so the allocator does sane things.
1004 	 */
1005 	total_compressed = ALIGN(total_compressed, blocksize);
1006 
1007 	/*
1008 	 * One last check to make sure the compression is really a win, compare
1009 	 * the page count read with the blocks on disk, compression must free at
1010 	 * least one sector.
1011 	 */
1012 	total_in = round_up(total_in, fs_info->sectorsize);
1013 	if (total_compressed + blocksize > total_in)
1014 		goto mark_incompressible;
1015 
1016 	/*
1017 	 * The async work queues will take care of doing actual allocation on
1018 	 * disk for these compressed pages, and will submit the bios.
1019 	 */
1020 	add_async_extent(async_chunk, start, total_in, total_compressed, pages,
1021 			 nr_pages, compress_type);
1022 	if (start + total_in < end) {
1023 		start += total_in;
1024 		cond_resched();
1025 		goto again;
1026 	}
1027 	return;
1028 
1029 mark_incompressible:
1030 	if (!btrfs_test_opt(fs_info, FORCE_COMPRESS) && !inode->prop_compress)
1031 		inode->flags |= BTRFS_INODE_NOCOMPRESS;
1032 cleanup_and_bail_uncompressed:
1033 	add_async_extent(async_chunk, start, end - start + 1, 0, NULL, 0,
1034 			 BTRFS_COMPRESS_NONE);
1035 free_pages:
1036 	if (pages) {
1037 		for (i = 0; i < nr_pages; i++) {
1038 			WARN_ON(pages[i]->mapping);
1039 			put_page(pages[i]);
1040 		}
1041 		kfree(pages);
1042 	}
1043 }
1044 
1045 static void free_async_extent_pages(struct async_extent *async_extent)
1046 {
1047 	int i;
1048 
1049 	if (!async_extent->pages)
1050 		return;
1051 
1052 	for (i = 0; i < async_extent->nr_pages; i++) {
1053 		WARN_ON(async_extent->pages[i]->mapping);
1054 		put_page(async_extent->pages[i]);
1055 	}
1056 	kfree(async_extent->pages);
1057 	async_extent->nr_pages = 0;
1058 	async_extent->pages = NULL;
1059 }
1060 
1061 static void submit_uncompressed_range(struct btrfs_inode *inode,
1062 				      struct async_extent *async_extent,
1063 				      struct page *locked_page)
1064 {
1065 	u64 start = async_extent->start;
1066 	u64 end = async_extent->start + async_extent->ram_size - 1;
1067 	int ret;
1068 	struct writeback_control wbc = {
1069 		.sync_mode		= WB_SYNC_ALL,
1070 		.range_start		= start,
1071 		.range_end		= end,
1072 		.no_cgroup_owner	= 1,
1073 	};
1074 
1075 	wbc_attach_fdatawrite_inode(&wbc, &inode->vfs_inode);
1076 	ret = run_delalloc_cow(inode, locked_page, start, end, &wbc, false);
1077 	wbc_detach_inode(&wbc);
1078 	if (ret < 0) {
1079 		btrfs_cleanup_ordered_extents(inode, locked_page, start, end - start + 1);
1080 		if (locked_page) {
1081 			const u64 page_start = page_offset(locked_page);
1082 
1083 			set_page_writeback(locked_page);
1084 			end_page_writeback(locked_page);
1085 			btrfs_mark_ordered_io_finished(inode, locked_page,
1086 						       page_start, PAGE_SIZE,
1087 						       !ret);
1088 			mapping_set_error(locked_page->mapping, ret);
1089 			unlock_page(locked_page);
1090 		}
1091 	}
1092 }
1093 
1094 static void submit_one_async_extent(struct async_chunk *async_chunk,
1095 				    struct async_extent *async_extent,
1096 				    u64 *alloc_hint)
1097 {
1098 	struct btrfs_inode *inode = async_chunk->inode;
1099 	struct extent_io_tree *io_tree = &inode->io_tree;
1100 	struct btrfs_root *root = inode->root;
1101 	struct btrfs_fs_info *fs_info = root->fs_info;
1102 	struct btrfs_ordered_extent *ordered;
1103 	struct btrfs_key ins;
1104 	struct page *locked_page = NULL;
1105 	struct extent_map *em;
1106 	int ret = 0;
1107 	u64 start = async_extent->start;
1108 	u64 end = async_extent->start + async_extent->ram_size - 1;
1109 
1110 	if (async_chunk->blkcg_css)
1111 		kthread_associate_blkcg(async_chunk->blkcg_css);
1112 
1113 	/*
1114 	 * If async_chunk->locked_page is in the async_extent range, we need to
1115 	 * handle it.
1116 	 */
1117 	if (async_chunk->locked_page) {
1118 		u64 locked_page_start = page_offset(async_chunk->locked_page);
1119 		u64 locked_page_end = locked_page_start + PAGE_SIZE - 1;
1120 
1121 		if (!(start >= locked_page_end || end <= locked_page_start))
1122 			locked_page = async_chunk->locked_page;
1123 	}
1124 	lock_extent(io_tree, start, end, NULL);
1125 
1126 	if (async_extent->compress_type == BTRFS_COMPRESS_NONE) {
1127 		submit_uncompressed_range(inode, async_extent, locked_page);
1128 		goto done;
1129 	}
1130 
1131 	ret = btrfs_reserve_extent(root, async_extent->ram_size,
1132 				   async_extent->compressed_size,
1133 				   async_extent->compressed_size,
1134 				   0, *alloc_hint, &ins, 1, 1);
1135 	if (ret) {
1136 		/*
1137 		 * Here we used to try again by going back to non-compressed
1138 		 * path for ENOSPC.  But we can't reserve space even for
1139 		 * compressed size, how could it work for uncompressed size
1140 		 * which requires larger size?  So here we directly go error
1141 		 * path.
1142 		 */
1143 		goto out_free;
1144 	}
1145 
1146 	/* Here we're doing allocation and writeback of the compressed pages */
1147 	em = create_io_em(inode, start,
1148 			  async_extent->ram_size,	/* len */
1149 			  start,			/* orig_start */
1150 			  ins.objectid,			/* block_start */
1151 			  ins.offset,			/* block_len */
1152 			  ins.offset,			/* orig_block_len */
1153 			  async_extent->ram_size,	/* ram_bytes */
1154 			  async_extent->compress_type,
1155 			  BTRFS_ORDERED_COMPRESSED);
1156 	if (IS_ERR(em)) {
1157 		ret = PTR_ERR(em);
1158 		goto out_free_reserve;
1159 	}
1160 	free_extent_map(em);
1161 
1162 	ordered = btrfs_alloc_ordered_extent(inode, start,	/* file_offset */
1163 				       async_extent->ram_size,	/* num_bytes */
1164 				       async_extent->ram_size,	/* ram_bytes */
1165 				       ins.objectid,		/* disk_bytenr */
1166 				       ins.offset,		/* disk_num_bytes */
1167 				       0,			/* offset */
1168 				       1 << BTRFS_ORDERED_COMPRESSED,
1169 				       async_extent->compress_type);
1170 	if (IS_ERR(ordered)) {
1171 		btrfs_drop_extent_map_range(inode, start, end, false);
1172 		ret = PTR_ERR(ordered);
1173 		goto out_free_reserve;
1174 	}
1175 	btrfs_dec_block_group_reservations(fs_info, ins.objectid);
1176 
1177 	/* Clear dirty, set writeback and unlock the pages. */
1178 	extent_clear_unlock_delalloc(inode, start, end,
1179 			NULL, EXTENT_LOCKED | EXTENT_DELALLOC,
1180 			PAGE_UNLOCK | PAGE_START_WRITEBACK);
1181 	btrfs_submit_compressed_write(ordered,
1182 			    async_extent->pages,	/* compressed_pages */
1183 			    async_extent->nr_pages,
1184 			    async_chunk->write_flags, true);
1185 	*alloc_hint = ins.objectid + ins.offset;
1186 done:
1187 	if (async_chunk->blkcg_css)
1188 		kthread_associate_blkcg(NULL);
1189 	kfree(async_extent);
1190 	return;
1191 
1192 out_free_reserve:
1193 	btrfs_dec_block_group_reservations(fs_info, ins.objectid);
1194 	btrfs_free_reserved_extent(fs_info, ins.objectid, ins.offset, 1);
1195 out_free:
1196 	mapping_set_error(inode->vfs_inode.i_mapping, -EIO);
1197 	extent_clear_unlock_delalloc(inode, start, end,
1198 				     NULL, EXTENT_LOCKED | EXTENT_DELALLOC |
1199 				     EXTENT_DELALLOC_NEW |
1200 				     EXTENT_DEFRAG | EXTENT_DO_ACCOUNTING,
1201 				     PAGE_UNLOCK | PAGE_START_WRITEBACK |
1202 				     PAGE_END_WRITEBACK);
1203 	free_async_extent_pages(async_extent);
1204 	if (async_chunk->blkcg_css)
1205 		kthread_associate_blkcg(NULL);
1206 	btrfs_debug(fs_info,
1207 "async extent submission failed root=%lld inode=%llu start=%llu len=%llu ret=%d",
1208 		    root->root_key.objectid, btrfs_ino(inode), start,
1209 		    async_extent->ram_size, ret);
1210 	kfree(async_extent);
1211 }
1212 
1213 static u64 get_extent_allocation_hint(struct btrfs_inode *inode, u64 start,
1214 				      u64 num_bytes)
1215 {
1216 	struct extent_map_tree *em_tree = &inode->extent_tree;
1217 	struct extent_map *em;
1218 	u64 alloc_hint = 0;
1219 
1220 	read_lock(&em_tree->lock);
1221 	em = search_extent_mapping(em_tree, start, num_bytes);
1222 	if (em) {
1223 		/*
1224 		 * if block start isn't an actual block number then find the
1225 		 * first block in this inode and use that as a hint.  If that
1226 		 * block is also bogus then just don't worry about it.
1227 		 */
1228 		if (em->block_start >= EXTENT_MAP_LAST_BYTE) {
1229 			free_extent_map(em);
1230 			em = search_extent_mapping(em_tree, 0, 0);
1231 			if (em && em->block_start < EXTENT_MAP_LAST_BYTE)
1232 				alloc_hint = em->block_start;
1233 			if (em)
1234 				free_extent_map(em);
1235 		} else {
1236 			alloc_hint = em->block_start;
1237 			free_extent_map(em);
1238 		}
1239 	}
1240 	read_unlock(&em_tree->lock);
1241 
1242 	return alloc_hint;
1243 }
1244 
1245 /*
1246  * when extent_io.c finds a delayed allocation range in the file,
1247  * the call backs end up in this code.  The basic idea is to
1248  * allocate extents on disk for the range, and create ordered data structs
1249  * in ram to track those extents.
1250  *
1251  * locked_page is the page that writepage had locked already.  We use
1252  * it to make sure we don't do extra locks or unlocks.
1253  *
1254  * When this function fails, it unlocks all pages except @locked_page.
1255  *
1256  * When this function successfully creates an inline extent, it returns 1 and
1257  * unlocks all pages including locked_page and starts I/O on them.
1258  * (In reality inline extents are limited to a single page, so locked_page is
1259  * the only page handled anyway).
1260  *
1261  * When this function succeed and creates a normal extent, the page locking
1262  * status depends on the passed in flags:
1263  *
1264  * - If @keep_locked is set, all pages are kept locked.
1265  * - Else all pages except for @locked_page are unlocked.
1266  *
1267  * When a failure happens in the second or later iteration of the
1268  * while-loop, the ordered extents created in previous iterations are kept
1269  * intact. So, the caller must clean them up by calling
1270  * btrfs_cleanup_ordered_extents(). See btrfs_run_delalloc_range() for
1271  * example.
1272  */
1273 static noinline int cow_file_range(struct btrfs_inode *inode,
1274 				   struct page *locked_page, u64 start, u64 end,
1275 				   u64 *done_offset,
1276 				   bool keep_locked, bool no_inline)
1277 {
1278 	struct btrfs_root *root = inode->root;
1279 	struct btrfs_fs_info *fs_info = root->fs_info;
1280 	u64 alloc_hint = 0;
1281 	u64 orig_start = start;
1282 	u64 num_bytes;
1283 	unsigned long ram_size;
1284 	u64 cur_alloc_size = 0;
1285 	u64 min_alloc_size;
1286 	u64 blocksize = fs_info->sectorsize;
1287 	struct btrfs_key ins;
1288 	struct extent_map *em;
1289 	unsigned clear_bits;
1290 	unsigned long page_ops;
1291 	bool extent_reserved = false;
1292 	int ret = 0;
1293 
1294 	if (btrfs_is_free_space_inode(inode)) {
1295 		ret = -EINVAL;
1296 		goto out_unlock;
1297 	}
1298 
1299 	num_bytes = ALIGN(end - start + 1, blocksize);
1300 	num_bytes = max(blocksize,  num_bytes);
1301 	ASSERT(num_bytes <= btrfs_super_total_bytes(fs_info->super_copy));
1302 
1303 	inode_should_defrag(inode, start, end, num_bytes, SZ_64K);
1304 
1305 	/*
1306 	 * Due to the page size limit, for subpage we can only trigger the
1307 	 * writeback for the dirty sectors of page, that means data writeback
1308 	 * is doing more writeback than what we want.
1309 	 *
1310 	 * This is especially unexpected for some call sites like fallocate,
1311 	 * where we only increase i_size after everything is done.
1312 	 * This means we can trigger inline extent even if we didn't want to.
1313 	 * So here we skip inline extent creation completely.
1314 	 */
1315 	if (start == 0 && fs_info->sectorsize == PAGE_SIZE && !no_inline) {
1316 		u64 actual_end = min_t(u64, i_size_read(&inode->vfs_inode),
1317 				       end + 1);
1318 
1319 		/* lets try to make an inline extent */
1320 		ret = cow_file_range_inline(inode, actual_end, 0,
1321 					    BTRFS_COMPRESS_NONE, NULL, false);
1322 		if (ret == 0) {
1323 			/*
1324 			 * We use DO_ACCOUNTING here because we need the
1325 			 * delalloc_release_metadata to be run _after_ we drop
1326 			 * our outstanding extent for clearing delalloc for this
1327 			 * range.
1328 			 */
1329 			extent_clear_unlock_delalloc(inode, start, end,
1330 				     locked_page,
1331 				     EXTENT_LOCKED | EXTENT_DELALLOC |
1332 				     EXTENT_DELALLOC_NEW | EXTENT_DEFRAG |
1333 				     EXTENT_DO_ACCOUNTING, PAGE_UNLOCK |
1334 				     PAGE_START_WRITEBACK | PAGE_END_WRITEBACK);
1335 			/*
1336 			 * locked_page is locked by the caller of
1337 			 * writepage_delalloc(), not locked by
1338 			 * __process_pages_contig().
1339 			 *
1340 			 * We can't let __process_pages_contig() to unlock it,
1341 			 * as it doesn't have any subpage::writers recorded.
1342 			 *
1343 			 * Here we manually unlock the page, since the caller
1344 			 * can't determine if it's an inline extent or a
1345 			 * compressed extent.
1346 			 */
1347 			unlock_page(locked_page);
1348 			ret = 1;
1349 			goto done;
1350 		} else if (ret < 0) {
1351 			goto out_unlock;
1352 		}
1353 	}
1354 
1355 	alloc_hint = get_extent_allocation_hint(inode, start, num_bytes);
1356 
1357 	/*
1358 	 * Relocation relies on the relocated extents to have exactly the same
1359 	 * size as the original extents. Normally writeback for relocation data
1360 	 * extents follows a NOCOW path because relocation preallocates the
1361 	 * extents. However, due to an operation such as scrub turning a block
1362 	 * group to RO mode, it may fallback to COW mode, so we must make sure
1363 	 * an extent allocated during COW has exactly the requested size and can
1364 	 * not be split into smaller extents, otherwise relocation breaks and
1365 	 * fails during the stage where it updates the bytenr of file extent
1366 	 * items.
1367 	 */
1368 	if (btrfs_is_data_reloc_root(root))
1369 		min_alloc_size = num_bytes;
1370 	else
1371 		min_alloc_size = fs_info->sectorsize;
1372 
1373 	while (num_bytes > 0) {
1374 		struct btrfs_ordered_extent *ordered;
1375 
1376 		cur_alloc_size = num_bytes;
1377 		ret = btrfs_reserve_extent(root, cur_alloc_size, cur_alloc_size,
1378 					   min_alloc_size, 0, alloc_hint,
1379 					   &ins, 1, 1);
1380 		if (ret == -EAGAIN) {
1381 			/*
1382 			 * btrfs_reserve_extent only returns -EAGAIN for zoned
1383 			 * file systems, which is an indication that there are
1384 			 * no active zones to allocate from at the moment.
1385 			 *
1386 			 * If this is the first loop iteration, wait for at
1387 			 * least one zone to finish before retrying the
1388 			 * allocation.  Otherwise ask the caller to write out
1389 			 * the already allocated blocks before coming back to
1390 			 * us, or return -ENOSPC if it can't handle retries.
1391 			 */
1392 			ASSERT(btrfs_is_zoned(fs_info));
1393 			if (start == orig_start) {
1394 				wait_on_bit_io(&inode->root->fs_info->flags,
1395 					       BTRFS_FS_NEED_ZONE_FINISH,
1396 					       TASK_UNINTERRUPTIBLE);
1397 				continue;
1398 			}
1399 			if (done_offset) {
1400 				*done_offset = start - 1;
1401 				return 0;
1402 			}
1403 			ret = -ENOSPC;
1404 		}
1405 		if (ret < 0)
1406 			goto out_unlock;
1407 		cur_alloc_size = ins.offset;
1408 		extent_reserved = true;
1409 
1410 		ram_size = ins.offset;
1411 		em = create_io_em(inode, start, ins.offset, /* len */
1412 				  start, /* orig_start */
1413 				  ins.objectid, /* block_start */
1414 				  ins.offset, /* block_len */
1415 				  ins.offset, /* orig_block_len */
1416 				  ram_size, /* ram_bytes */
1417 				  BTRFS_COMPRESS_NONE, /* compress_type */
1418 				  BTRFS_ORDERED_REGULAR /* type */);
1419 		if (IS_ERR(em)) {
1420 			ret = PTR_ERR(em);
1421 			goto out_reserve;
1422 		}
1423 		free_extent_map(em);
1424 
1425 		ordered = btrfs_alloc_ordered_extent(inode, start, ram_size,
1426 					ram_size, ins.objectid, cur_alloc_size,
1427 					0, 1 << BTRFS_ORDERED_REGULAR,
1428 					BTRFS_COMPRESS_NONE);
1429 		if (IS_ERR(ordered)) {
1430 			ret = PTR_ERR(ordered);
1431 			goto out_drop_extent_cache;
1432 		}
1433 
1434 		if (btrfs_is_data_reloc_root(root)) {
1435 			ret = btrfs_reloc_clone_csums(ordered);
1436 
1437 			/*
1438 			 * Only drop cache here, and process as normal.
1439 			 *
1440 			 * We must not allow extent_clear_unlock_delalloc()
1441 			 * at out_unlock label to free meta of this ordered
1442 			 * extent, as its meta should be freed by
1443 			 * btrfs_finish_ordered_io().
1444 			 *
1445 			 * So we must continue until @start is increased to
1446 			 * skip current ordered extent.
1447 			 */
1448 			if (ret)
1449 				btrfs_drop_extent_map_range(inode, start,
1450 							    start + ram_size - 1,
1451 							    false);
1452 		}
1453 		btrfs_put_ordered_extent(ordered);
1454 
1455 		btrfs_dec_block_group_reservations(fs_info, ins.objectid);
1456 
1457 		/*
1458 		 * We're not doing compressed IO, don't unlock the first page
1459 		 * (which the caller expects to stay locked), don't clear any
1460 		 * dirty bits and don't set any writeback bits
1461 		 *
1462 		 * Do set the Ordered (Private2) bit so we know this page was
1463 		 * properly setup for writepage.
1464 		 */
1465 		page_ops = (keep_locked ? 0 : PAGE_UNLOCK);
1466 		page_ops |= PAGE_SET_ORDERED;
1467 
1468 		extent_clear_unlock_delalloc(inode, start, start + ram_size - 1,
1469 					     locked_page,
1470 					     EXTENT_LOCKED | EXTENT_DELALLOC,
1471 					     page_ops);
1472 		if (num_bytes < cur_alloc_size)
1473 			num_bytes = 0;
1474 		else
1475 			num_bytes -= cur_alloc_size;
1476 		alloc_hint = ins.objectid + ins.offset;
1477 		start += cur_alloc_size;
1478 		extent_reserved = false;
1479 
1480 		/*
1481 		 * btrfs_reloc_clone_csums() error, since start is increased
1482 		 * extent_clear_unlock_delalloc() at out_unlock label won't
1483 		 * free metadata of current ordered extent, we're OK to exit.
1484 		 */
1485 		if (ret)
1486 			goto out_unlock;
1487 	}
1488 done:
1489 	if (done_offset)
1490 		*done_offset = end;
1491 	return ret;
1492 
1493 out_drop_extent_cache:
1494 	btrfs_drop_extent_map_range(inode, start, start + ram_size - 1, false);
1495 out_reserve:
1496 	btrfs_dec_block_group_reservations(fs_info, ins.objectid);
1497 	btrfs_free_reserved_extent(fs_info, ins.objectid, ins.offset, 1);
1498 out_unlock:
1499 	/*
1500 	 * Now, we have three regions to clean up:
1501 	 *
1502 	 * |-------(1)----|---(2)---|-------------(3)----------|
1503 	 * `- orig_start  `- start  `- start + cur_alloc_size  `- end
1504 	 *
1505 	 * We process each region below.
1506 	 */
1507 
1508 	clear_bits = EXTENT_LOCKED | EXTENT_DELALLOC | EXTENT_DELALLOC_NEW |
1509 		EXTENT_DEFRAG | EXTENT_CLEAR_META_RESV;
1510 	page_ops = PAGE_UNLOCK | PAGE_START_WRITEBACK | PAGE_END_WRITEBACK;
1511 
1512 	/*
1513 	 * For the range (1). We have already instantiated the ordered extents
1514 	 * for this region. They are cleaned up by
1515 	 * btrfs_cleanup_ordered_extents() in e.g,
1516 	 * btrfs_run_delalloc_range(). EXTENT_LOCKED | EXTENT_DELALLOC are
1517 	 * already cleared in the above loop. And, EXTENT_DELALLOC_NEW |
1518 	 * EXTENT_DEFRAG | EXTENT_CLEAR_META_RESV are handled by the cleanup
1519 	 * function.
1520 	 *
1521 	 * However, in case of @keep_locked, we still need to unlock the pages
1522 	 * (except @locked_page) to ensure all the pages are unlocked.
1523 	 */
1524 	if (keep_locked && orig_start < start) {
1525 		if (!locked_page)
1526 			mapping_set_error(inode->vfs_inode.i_mapping, ret);
1527 		extent_clear_unlock_delalloc(inode, orig_start, start - 1,
1528 					     locked_page, 0, page_ops);
1529 	}
1530 
1531 	/*
1532 	 * For the range (2). If we reserved an extent for our delalloc range
1533 	 * (or a subrange) and failed to create the respective ordered extent,
1534 	 * then it means that when we reserved the extent we decremented the
1535 	 * extent's size from the data space_info's bytes_may_use counter and
1536 	 * incremented the space_info's bytes_reserved counter by the same
1537 	 * amount. We must make sure extent_clear_unlock_delalloc() does not try
1538 	 * to decrement again the data space_info's bytes_may_use counter,
1539 	 * therefore we do not pass it the flag EXTENT_CLEAR_DATA_RESV.
1540 	 */
1541 	if (extent_reserved) {
1542 		extent_clear_unlock_delalloc(inode, start,
1543 					     start + cur_alloc_size - 1,
1544 					     locked_page,
1545 					     clear_bits,
1546 					     page_ops);
1547 		start += cur_alloc_size;
1548 	}
1549 
1550 	/*
1551 	 * For the range (3). We never touched the region. In addition to the
1552 	 * clear_bits above, we add EXTENT_CLEAR_DATA_RESV to release the data
1553 	 * space_info's bytes_may_use counter, reserved in
1554 	 * btrfs_check_data_free_space().
1555 	 */
1556 	if (start < end) {
1557 		clear_bits |= EXTENT_CLEAR_DATA_RESV;
1558 		extent_clear_unlock_delalloc(inode, start, end, locked_page,
1559 					     clear_bits, page_ops);
1560 	}
1561 	return ret;
1562 }
1563 
1564 /*
1565  * Phase two of compressed writeback.  This is the ordered portion of the code,
1566  * which only gets called in the order the work was queued.  We walk all the
1567  * async extents created by compress_file_range and send them down to the disk.
1568  */
1569 static noinline void submit_compressed_extents(struct btrfs_work *work)
1570 {
1571 	struct async_chunk *async_chunk = container_of(work, struct async_chunk,
1572 						     work);
1573 	struct btrfs_fs_info *fs_info = btrfs_work_owner(work);
1574 	struct async_extent *async_extent;
1575 	unsigned long nr_pages;
1576 	u64 alloc_hint = 0;
1577 
1578 	nr_pages = (async_chunk->end - async_chunk->start + PAGE_SIZE) >>
1579 		PAGE_SHIFT;
1580 
1581 	while (!list_empty(&async_chunk->extents)) {
1582 		async_extent = list_entry(async_chunk->extents.next,
1583 					  struct async_extent, list);
1584 		list_del(&async_extent->list);
1585 		submit_one_async_extent(async_chunk, async_extent, &alloc_hint);
1586 	}
1587 
1588 	/* atomic_sub_return implies a barrier */
1589 	if (atomic_sub_return(nr_pages, &fs_info->async_delalloc_pages) <
1590 	    5 * SZ_1M)
1591 		cond_wake_up_nomb(&fs_info->async_submit_wait);
1592 }
1593 
1594 static noinline void async_cow_free(struct btrfs_work *work)
1595 {
1596 	struct async_chunk *async_chunk;
1597 	struct async_cow *async_cow;
1598 
1599 	async_chunk = container_of(work, struct async_chunk, work);
1600 	btrfs_add_delayed_iput(async_chunk->inode);
1601 	if (async_chunk->blkcg_css)
1602 		css_put(async_chunk->blkcg_css);
1603 
1604 	async_cow = async_chunk->async_cow;
1605 	if (atomic_dec_and_test(&async_cow->num_chunks))
1606 		kvfree(async_cow);
1607 }
1608 
1609 static bool run_delalloc_compressed(struct btrfs_inode *inode,
1610 				    struct page *locked_page, u64 start,
1611 				    u64 end, struct writeback_control *wbc)
1612 {
1613 	struct btrfs_fs_info *fs_info = inode->root->fs_info;
1614 	struct cgroup_subsys_state *blkcg_css = wbc_blkcg_css(wbc);
1615 	struct async_cow *ctx;
1616 	struct async_chunk *async_chunk;
1617 	unsigned long nr_pages;
1618 	u64 num_chunks = DIV_ROUND_UP(end - start, SZ_512K);
1619 	int i;
1620 	unsigned nofs_flag;
1621 	const blk_opf_t write_flags = wbc_to_write_flags(wbc);
1622 
1623 	nofs_flag = memalloc_nofs_save();
1624 	ctx = kvmalloc(struct_size(ctx, chunks, num_chunks), GFP_KERNEL);
1625 	memalloc_nofs_restore(nofs_flag);
1626 	if (!ctx)
1627 		return false;
1628 
1629 	unlock_extent(&inode->io_tree, start, end, NULL);
1630 	set_bit(BTRFS_INODE_HAS_ASYNC_EXTENT, &inode->runtime_flags);
1631 
1632 	async_chunk = ctx->chunks;
1633 	atomic_set(&ctx->num_chunks, num_chunks);
1634 
1635 	for (i = 0; i < num_chunks; i++) {
1636 		u64 cur_end = min(end, start + SZ_512K - 1);
1637 
1638 		/*
1639 		 * igrab is called higher up in the call chain, take only the
1640 		 * lightweight reference for the callback lifetime
1641 		 */
1642 		ihold(&inode->vfs_inode);
1643 		async_chunk[i].async_cow = ctx;
1644 		async_chunk[i].inode = inode;
1645 		async_chunk[i].start = start;
1646 		async_chunk[i].end = cur_end;
1647 		async_chunk[i].write_flags = write_flags;
1648 		INIT_LIST_HEAD(&async_chunk[i].extents);
1649 
1650 		/*
1651 		 * The locked_page comes all the way from writepage and its
1652 		 * the original page we were actually given.  As we spread
1653 		 * this large delalloc region across multiple async_chunk
1654 		 * structs, only the first struct needs a pointer to locked_page
1655 		 *
1656 		 * This way we don't need racey decisions about who is supposed
1657 		 * to unlock it.
1658 		 */
1659 		if (locked_page) {
1660 			/*
1661 			 * Depending on the compressibility, the pages might or
1662 			 * might not go through async.  We want all of them to
1663 			 * be accounted against wbc once.  Let's do it here
1664 			 * before the paths diverge.  wbc accounting is used
1665 			 * only for foreign writeback detection and doesn't
1666 			 * need full accuracy.  Just account the whole thing
1667 			 * against the first page.
1668 			 */
1669 			wbc_account_cgroup_owner(wbc, locked_page,
1670 						 cur_end - start);
1671 			async_chunk[i].locked_page = locked_page;
1672 			locked_page = NULL;
1673 		} else {
1674 			async_chunk[i].locked_page = NULL;
1675 		}
1676 
1677 		if (blkcg_css != blkcg_root_css) {
1678 			css_get(blkcg_css);
1679 			async_chunk[i].blkcg_css = blkcg_css;
1680 			async_chunk[i].write_flags |= REQ_BTRFS_CGROUP_PUNT;
1681 		} else {
1682 			async_chunk[i].blkcg_css = NULL;
1683 		}
1684 
1685 		btrfs_init_work(&async_chunk[i].work, compress_file_range,
1686 				submit_compressed_extents, async_cow_free);
1687 
1688 		nr_pages = DIV_ROUND_UP(cur_end - start, PAGE_SIZE);
1689 		atomic_add(nr_pages, &fs_info->async_delalloc_pages);
1690 
1691 		btrfs_queue_work(fs_info->delalloc_workers, &async_chunk[i].work);
1692 
1693 		start = cur_end + 1;
1694 	}
1695 	return true;
1696 }
1697 
1698 /*
1699  * Run the delalloc range from start to end, and write back any dirty pages
1700  * covered by the range.
1701  */
1702 static noinline int run_delalloc_cow(struct btrfs_inode *inode,
1703 				     struct page *locked_page, u64 start,
1704 				     u64 end, struct writeback_control *wbc,
1705 				     bool pages_dirty)
1706 {
1707 	u64 done_offset = end;
1708 	int ret;
1709 
1710 	while (start <= end) {
1711 		ret = cow_file_range(inode, locked_page, start, end, &done_offset,
1712 				     true, false);
1713 		if (ret)
1714 			return ret;
1715 		extent_write_locked_range(&inode->vfs_inode, locked_page, start,
1716 					  done_offset, wbc, pages_dirty);
1717 		start = done_offset + 1;
1718 	}
1719 
1720 	return 1;
1721 }
1722 
1723 static noinline int csum_exist_in_range(struct btrfs_fs_info *fs_info,
1724 					u64 bytenr, u64 num_bytes, bool nowait)
1725 {
1726 	struct btrfs_root *csum_root = btrfs_csum_root(fs_info, bytenr);
1727 	struct btrfs_ordered_sum *sums;
1728 	int ret;
1729 	LIST_HEAD(list);
1730 
1731 	ret = btrfs_lookup_csums_list(csum_root, bytenr, bytenr + num_bytes - 1,
1732 				      &list, 0, nowait);
1733 	if (ret == 0 && list_empty(&list))
1734 		return 0;
1735 
1736 	while (!list_empty(&list)) {
1737 		sums = list_entry(list.next, struct btrfs_ordered_sum, list);
1738 		list_del(&sums->list);
1739 		kfree(sums);
1740 	}
1741 	if (ret < 0)
1742 		return ret;
1743 	return 1;
1744 }
1745 
1746 static int fallback_to_cow(struct btrfs_inode *inode, struct page *locked_page,
1747 			   const u64 start, const u64 end)
1748 {
1749 	const bool is_space_ino = btrfs_is_free_space_inode(inode);
1750 	const bool is_reloc_ino = btrfs_is_data_reloc_root(inode->root);
1751 	const u64 range_bytes = end + 1 - start;
1752 	struct extent_io_tree *io_tree = &inode->io_tree;
1753 	u64 range_start = start;
1754 	u64 count;
1755 	int ret;
1756 
1757 	/*
1758 	 * If EXTENT_NORESERVE is set it means that when the buffered write was
1759 	 * made we had not enough available data space and therefore we did not
1760 	 * reserve data space for it, since we though we could do NOCOW for the
1761 	 * respective file range (either there is prealloc extent or the inode
1762 	 * has the NOCOW bit set).
1763 	 *
1764 	 * However when we need to fallback to COW mode (because for example the
1765 	 * block group for the corresponding extent was turned to RO mode by a
1766 	 * scrub or relocation) we need to do the following:
1767 	 *
1768 	 * 1) We increment the bytes_may_use counter of the data space info.
1769 	 *    If COW succeeds, it allocates a new data extent and after doing
1770 	 *    that it decrements the space info's bytes_may_use counter and
1771 	 *    increments its bytes_reserved counter by the same amount (we do
1772 	 *    this at btrfs_add_reserved_bytes()). So we need to increment the
1773 	 *    bytes_may_use counter to compensate (when space is reserved at
1774 	 *    buffered write time, the bytes_may_use counter is incremented);
1775 	 *
1776 	 * 2) We clear the EXTENT_NORESERVE bit from the range. We do this so
1777 	 *    that if the COW path fails for any reason, it decrements (through
1778 	 *    extent_clear_unlock_delalloc()) the bytes_may_use counter of the
1779 	 *    data space info, which we incremented in the step above.
1780 	 *
1781 	 * If we need to fallback to cow and the inode corresponds to a free
1782 	 * space cache inode or an inode of the data relocation tree, we must
1783 	 * also increment bytes_may_use of the data space_info for the same
1784 	 * reason. Space caches and relocated data extents always get a prealloc
1785 	 * extent for them, however scrub or balance may have set the block
1786 	 * group that contains that extent to RO mode and therefore force COW
1787 	 * when starting writeback.
1788 	 */
1789 	count = count_range_bits(io_tree, &range_start, end, range_bytes,
1790 				 EXTENT_NORESERVE, 0, NULL);
1791 	if (count > 0 || is_space_ino || is_reloc_ino) {
1792 		u64 bytes = count;
1793 		struct btrfs_fs_info *fs_info = inode->root->fs_info;
1794 		struct btrfs_space_info *sinfo = fs_info->data_sinfo;
1795 
1796 		if (is_space_ino || is_reloc_ino)
1797 			bytes = range_bytes;
1798 
1799 		spin_lock(&sinfo->lock);
1800 		btrfs_space_info_update_bytes_may_use(fs_info, sinfo, bytes);
1801 		spin_unlock(&sinfo->lock);
1802 
1803 		if (count > 0)
1804 			clear_extent_bit(io_tree, start, end, EXTENT_NORESERVE,
1805 					 NULL);
1806 	}
1807 
1808 	/*
1809 	 * Don't try to create inline extents, as a mix of inline extent that
1810 	 * is written out and unlocked directly and a normal NOCOW extent
1811 	 * doesn't work.
1812 	 */
1813 	ret = cow_file_range(inode, locked_page, start, end, NULL, false, true);
1814 	ASSERT(ret != 1);
1815 	return ret;
1816 }
1817 
1818 struct can_nocow_file_extent_args {
1819 	/* Input fields. */
1820 
1821 	/* Start file offset of the range we want to NOCOW. */
1822 	u64 start;
1823 	/* End file offset (inclusive) of the range we want to NOCOW. */
1824 	u64 end;
1825 	bool writeback_path;
1826 	bool strict;
1827 	/*
1828 	 * Free the path passed to can_nocow_file_extent() once it's not needed
1829 	 * anymore.
1830 	 */
1831 	bool free_path;
1832 
1833 	/* Output fields. Only set when can_nocow_file_extent() returns 1. */
1834 
1835 	u64 disk_bytenr;
1836 	u64 disk_num_bytes;
1837 	u64 extent_offset;
1838 	/* Number of bytes that can be written to in NOCOW mode. */
1839 	u64 num_bytes;
1840 };
1841 
1842 /*
1843  * Check if we can NOCOW the file extent that the path points to.
1844  * This function may return with the path released, so the caller should check
1845  * if path->nodes[0] is NULL or not if it needs to use the path afterwards.
1846  *
1847  * Returns: < 0 on error
1848  *            0 if we can not NOCOW
1849  *            1 if we can NOCOW
1850  */
1851 static int can_nocow_file_extent(struct btrfs_path *path,
1852 				 struct btrfs_key *key,
1853 				 struct btrfs_inode *inode,
1854 				 struct can_nocow_file_extent_args *args)
1855 {
1856 	const bool is_freespace_inode = btrfs_is_free_space_inode(inode);
1857 	struct extent_buffer *leaf = path->nodes[0];
1858 	struct btrfs_root *root = inode->root;
1859 	struct btrfs_file_extent_item *fi;
1860 	u64 extent_end;
1861 	u8 extent_type;
1862 	int can_nocow = 0;
1863 	int ret = 0;
1864 	bool nowait = path->nowait;
1865 
1866 	fi = btrfs_item_ptr(leaf, path->slots[0], struct btrfs_file_extent_item);
1867 	extent_type = btrfs_file_extent_type(leaf, fi);
1868 
1869 	if (extent_type == BTRFS_FILE_EXTENT_INLINE)
1870 		goto out;
1871 
1872 	/* Can't access these fields unless we know it's not an inline extent. */
1873 	args->disk_bytenr = btrfs_file_extent_disk_bytenr(leaf, fi);
1874 	args->disk_num_bytes = btrfs_file_extent_disk_num_bytes(leaf, fi);
1875 	args->extent_offset = btrfs_file_extent_offset(leaf, fi);
1876 
1877 	if (!(inode->flags & BTRFS_INODE_NODATACOW) &&
1878 	    extent_type == BTRFS_FILE_EXTENT_REG)
1879 		goto out;
1880 
1881 	/*
1882 	 * If the extent was created before the generation where the last snapshot
1883 	 * for its subvolume was created, then this implies the extent is shared,
1884 	 * hence we must COW.
1885 	 */
1886 	if (!args->strict &&
1887 	    btrfs_file_extent_generation(leaf, fi) <=
1888 	    btrfs_root_last_snapshot(&root->root_item))
1889 		goto out;
1890 
1891 	/* An explicit hole, must COW. */
1892 	if (args->disk_bytenr == 0)
1893 		goto out;
1894 
1895 	/* Compressed/encrypted/encoded extents must be COWed. */
1896 	if (btrfs_file_extent_compression(leaf, fi) ||
1897 	    btrfs_file_extent_encryption(leaf, fi) ||
1898 	    btrfs_file_extent_other_encoding(leaf, fi))
1899 		goto out;
1900 
1901 	extent_end = btrfs_file_extent_end(path);
1902 
1903 	/*
1904 	 * The following checks can be expensive, as they need to take other
1905 	 * locks and do btree or rbtree searches, so release the path to avoid
1906 	 * blocking other tasks for too long.
1907 	 */
1908 	btrfs_release_path(path);
1909 
1910 	ret = btrfs_cross_ref_exist(root, btrfs_ino(inode),
1911 				    key->offset - args->extent_offset,
1912 				    args->disk_bytenr, args->strict, path);
1913 	WARN_ON_ONCE(ret > 0 && is_freespace_inode);
1914 	if (ret != 0)
1915 		goto out;
1916 
1917 	if (args->free_path) {
1918 		/*
1919 		 * We don't need the path anymore, plus through the
1920 		 * csum_exist_in_range() call below we will end up allocating
1921 		 * another path. So free the path to avoid unnecessary extra
1922 		 * memory usage.
1923 		 */
1924 		btrfs_free_path(path);
1925 		path = NULL;
1926 	}
1927 
1928 	/* If there are pending snapshots for this root, we must COW. */
1929 	if (args->writeback_path && !is_freespace_inode &&
1930 	    atomic_read(&root->snapshot_force_cow))
1931 		goto out;
1932 
1933 	args->disk_bytenr += args->extent_offset;
1934 	args->disk_bytenr += args->start - key->offset;
1935 	args->num_bytes = min(args->end + 1, extent_end) - args->start;
1936 
1937 	/*
1938 	 * Force COW if csums exist in the range. This ensures that csums for a
1939 	 * given extent are either valid or do not exist.
1940 	 */
1941 	ret = csum_exist_in_range(root->fs_info, args->disk_bytenr, args->num_bytes,
1942 				  nowait);
1943 	WARN_ON_ONCE(ret > 0 && is_freespace_inode);
1944 	if (ret != 0)
1945 		goto out;
1946 
1947 	can_nocow = 1;
1948  out:
1949 	if (args->free_path && path)
1950 		btrfs_free_path(path);
1951 
1952 	return ret < 0 ? ret : can_nocow;
1953 }
1954 
1955 /*
1956  * when nowcow writeback call back.  This checks for snapshots or COW copies
1957  * of the extents that exist in the file, and COWs the file as required.
1958  *
1959  * If no cow copies or snapshots exist, we write directly to the existing
1960  * blocks on disk
1961  */
1962 static noinline int run_delalloc_nocow(struct btrfs_inode *inode,
1963 				       struct page *locked_page,
1964 				       const u64 start, const u64 end)
1965 {
1966 	struct btrfs_fs_info *fs_info = inode->root->fs_info;
1967 	struct btrfs_root *root = inode->root;
1968 	struct btrfs_path *path;
1969 	u64 cow_start = (u64)-1;
1970 	u64 cur_offset = start;
1971 	int ret;
1972 	bool check_prev = true;
1973 	u64 ino = btrfs_ino(inode);
1974 	struct can_nocow_file_extent_args nocow_args = { 0 };
1975 
1976 	/*
1977 	 * Normally on a zoned device we're only doing COW writes, but in case
1978 	 * of relocation on a zoned filesystem serializes I/O so that we're only
1979 	 * writing sequentially and can end up here as well.
1980 	 */
1981 	ASSERT(!btrfs_is_zoned(fs_info) || btrfs_is_data_reloc_root(root));
1982 
1983 	path = btrfs_alloc_path();
1984 	if (!path) {
1985 		ret = -ENOMEM;
1986 		goto error;
1987 	}
1988 
1989 	nocow_args.end = end;
1990 	nocow_args.writeback_path = true;
1991 
1992 	while (1) {
1993 		struct btrfs_block_group *nocow_bg = NULL;
1994 		struct btrfs_ordered_extent *ordered;
1995 		struct btrfs_key found_key;
1996 		struct btrfs_file_extent_item *fi;
1997 		struct extent_buffer *leaf;
1998 		u64 extent_end;
1999 		u64 ram_bytes;
2000 		u64 nocow_end;
2001 		int extent_type;
2002 		bool is_prealloc;
2003 
2004 		ret = btrfs_lookup_file_extent(NULL, root, path, ino,
2005 					       cur_offset, 0);
2006 		if (ret < 0)
2007 			goto error;
2008 
2009 		/*
2010 		 * If there is no extent for our range when doing the initial
2011 		 * search, then go back to the previous slot as it will be the
2012 		 * one containing the search offset
2013 		 */
2014 		if (ret > 0 && path->slots[0] > 0 && check_prev) {
2015 			leaf = path->nodes[0];
2016 			btrfs_item_key_to_cpu(leaf, &found_key,
2017 					      path->slots[0] - 1);
2018 			if (found_key.objectid == ino &&
2019 			    found_key.type == BTRFS_EXTENT_DATA_KEY)
2020 				path->slots[0]--;
2021 		}
2022 		check_prev = false;
2023 next_slot:
2024 		/* Go to next leaf if we have exhausted the current one */
2025 		leaf = path->nodes[0];
2026 		if (path->slots[0] >= btrfs_header_nritems(leaf)) {
2027 			ret = btrfs_next_leaf(root, path);
2028 			if (ret < 0)
2029 				goto error;
2030 			if (ret > 0)
2031 				break;
2032 			leaf = path->nodes[0];
2033 		}
2034 
2035 		btrfs_item_key_to_cpu(leaf, &found_key, path->slots[0]);
2036 
2037 		/* Didn't find anything for our INO */
2038 		if (found_key.objectid > ino)
2039 			break;
2040 		/*
2041 		 * Keep searching until we find an EXTENT_ITEM or there are no
2042 		 * more extents for this inode
2043 		 */
2044 		if (WARN_ON_ONCE(found_key.objectid < ino) ||
2045 		    found_key.type < BTRFS_EXTENT_DATA_KEY) {
2046 			path->slots[0]++;
2047 			goto next_slot;
2048 		}
2049 
2050 		/* Found key is not EXTENT_DATA_KEY or starts after req range */
2051 		if (found_key.type > BTRFS_EXTENT_DATA_KEY ||
2052 		    found_key.offset > end)
2053 			break;
2054 
2055 		/*
2056 		 * If the found extent starts after requested offset, then
2057 		 * adjust extent_end to be right before this extent begins
2058 		 */
2059 		if (found_key.offset > cur_offset) {
2060 			extent_end = found_key.offset;
2061 			extent_type = 0;
2062 			goto must_cow;
2063 		}
2064 
2065 		/*
2066 		 * Found extent which begins before our range and potentially
2067 		 * intersect it
2068 		 */
2069 		fi = btrfs_item_ptr(leaf, path->slots[0],
2070 				    struct btrfs_file_extent_item);
2071 		extent_type = btrfs_file_extent_type(leaf, fi);
2072 		/* If this is triggered then we have a memory corruption. */
2073 		ASSERT(extent_type < BTRFS_NR_FILE_EXTENT_TYPES);
2074 		if (WARN_ON(extent_type >= BTRFS_NR_FILE_EXTENT_TYPES)) {
2075 			ret = -EUCLEAN;
2076 			goto error;
2077 		}
2078 		ram_bytes = btrfs_file_extent_ram_bytes(leaf, fi);
2079 		extent_end = btrfs_file_extent_end(path);
2080 
2081 		/*
2082 		 * If the extent we got ends before our current offset, skip to
2083 		 * the next extent.
2084 		 */
2085 		if (extent_end <= cur_offset) {
2086 			path->slots[0]++;
2087 			goto next_slot;
2088 		}
2089 
2090 		nocow_args.start = cur_offset;
2091 		ret = can_nocow_file_extent(path, &found_key, inode, &nocow_args);
2092 		if (ret < 0)
2093 			goto error;
2094 		if (ret == 0)
2095 			goto must_cow;
2096 
2097 		ret = 0;
2098 		nocow_bg = btrfs_inc_nocow_writers(fs_info, nocow_args.disk_bytenr);
2099 		if (!nocow_bg) {
2100 must_cow:
2101 			/*
2102 			 * If we can't perform NOCOW writeback for the range,
2103 			 * then record the beginning of the range that needs to
2104 			 * be COWed.  It will be written out before the next
2105 			 * NOCOW range if we find one, or when exiting this
2106 			 * loop.
2107 			 */
2108 			if (cow_start == (u64)-1)
2109 				cow_start = cur_offset;
2110 			cur_offset = extent_end;
2111 			if (cur_offset > end)
2112 				break;
2113 			if (!path->nodes[0])
2114 				continue;
2115 			path->slots[0]++;
2116 			goto next_slot;
2117 		}
2118 
2119 		/*
2120 		 * COW range from cow_start to found_key.offset - 1. As the key
2121 		 * will contain the beginning of the first extent that can be
2122 		 * NOCOW, following one which needs to be COW'ed
2123 		 */
2124 		if (cow_start != (u64)-1) {
2125 			ret = fallback_to_cow(inode, locked_page,
2126 					      cow_start, found_key.offset - 1);
2127 			cow_start = (u64)-1;
2128 			if (ret) {
2129 				btrfs_dec_nocow_writers(nocow_bg);
2130 				goto error;
2131 			}
2132 		}
2133 
2134 		nocow_end = cur_offset + nocow_args.num_bytes - 1;
2135 		is_prealloc = extent_type == BTRFS_FILE_EXTENT_PREALLOC;
2136 		if (is_prealloc) {
2137 			u64 orig_start = found_key.offset - nocow_args.extent_offset;
2138 			struct extent_map *em;
2139 
2140 			em = create_io_em(inode, cur_offset, nocow_args.num_bytes,
2141 					  orig_start,
2142 					  nocow_args.disk_bytenr, /* block_start */
2143 					  nocow_args.num_bytes, /* block_len */
2144 					  nocow_args.disk_num_bytes, /* orig_block_len */
2145 					  ram_bytes, BTRFS_COMPRESS_NONE,
2146 					  BTRFS_ORDERED_PREALLOC);
2147 			if (IS_ERR(em)) {
2148 				btrfs_dec_nocow_writers(nocow_bg);
2149 				ret = PTR_ERR(em);
2150 				goto error;
2151 			}
2152 			free_extent_map(em);
2153 		}
2154 
2155 		ordered = btrfs_alloc_ordered_extent(inode, cur_offset,
2156 				nocow_args.num_bytes, nocow_args.num_bytes,
2157 				nocow_args.disk_bytenr, nocow_args.num_bytes, 0,
2158 				is_prealloc
2159 				? (1 << BTRFS_ORDERED_PREALLOC)
2160 				: (1 << BTRFS_ORDERED_NOCOW),
2161 				BTRFS_COMPRESS_NONE);
2162 		btrfs_dec_nocow_writers(nocow_bg);
2163 		if (IS_ERR(ordered)) {
2164 			if (is_prealloc) {
2165 				btrfs_drop_extent_map_range(inode, cur_offset,
2166 							    nocow_end, false);
2167 			}
2168 			ret = PTR_ERR(ordered);
2169 			goto error;
2170 		}
2171 
2172 		if (btrfs_is_data_reloc_root(root))
2173 			/*
2174 			 * Error handled later, as we must prevent
2175 			 * extent_clear_unlock_delalloc() in error handler
2176 			 * from freeing metadata of created ordered extent.
2177 			 */
2178 			ret = btrfs_reloc_clone_csums(ordered);
2179 		btrfs_put_ordered_extent(ordered);
2180 
2181 		extent_clear_unlock_delalloc(inode, cur_offset, nocow_end,
2182 					     locked_page, EXTENT_LOCKED |
2183 					     EXTENT_DELALLOC |
2184 					     EXTENT_CLEAR_DATA_RESV,
2185 					     PAGE_UNLOCK | PAGE_SET_ORDERED);
2186 
2187 		cur_offset = extent_end;
2188 
2189 		/*
2190 		 * btrfs_reloc_clone_csums() error, now we're OK to call error
2191 		 * handler, as metadata for created ordered extent will only
2192 		 * be freed by btrfs_finish_ordered_io().
2193 		 */
2194 		if (ret)
2195 			goto error;
2196 		if (cur_offset > end)
2197 			break;
2198 	}
2199 	btrfs_release_path(path);
2200 
2201 	if (cur_offset <= end && cow_start == (u64)-1)
2202 		cow_start = cur_offset;
2203 
2204 	if (cow_start != (u64)-1) {
2205 		cur_offset = end;
2206 		ret = fallback_to_cow(inode, locked_page, cow_start, end);
2207 		cow_start = (u64)-1;
2208 		if (ret)
2209 			goto error;
2210 	}
2211 
2212 	btrfs_free_path(path);
2213 	return 0;
2214 
2215 error:
2216 	/*
2217 	 * If an error happened while a COW region is outstanding, cur_offset
2218 	 * needs to be reset to cow_start to ensure the COW region is unlocked
2219 	 * as well.
2220 	 */
2221 	if (cow_start != (u64)-1)
2222 		cur_offset = cow_start;
2223 	if (cur_offset < end)
2224 		extent_clear_unlock_delalloc(inode, cur_offset, end,
2225 					     locked_page, EXTENT_LOCKED |
2226 					     EXTENT_DELALLOC | EXTENT_DEFRAG |
2227 					     EXTENT_DO_ACCOUNTING, PAGE_UNLOCK |
2228 					     PAGE_START_WRITEBACK |
2229 					     PAGE_END_WRITEBACK);
2230 	btrfs_free_path(path);
2231 	return ret;
2232 }
2233 
2234 static bool should_nocow(struct btrfs_inode *inode, u64 start, u64 end)
2235 {
2236 	if (inode->flags & (BTRFS_INODE_NODATACOW | BTRFS_INODE_PREALLOC)) {
2237 		if (inode->defrag_bytes &&
2238 		    test_range_bit(&inode->io_tree, start, end, EXTENT_DEFRAG,
2239 				   0, NULL))
2240 			return false;
2241 		return true;
2242 	}
2243 	return false;
2244 }
2245 
2246 /*
2247  * Function to process delayed allocation (create CoW) for ranges which are
2248  * being touched for the first time.
2249  */
2250 int btrfs_run_delalloc_range(struct btrfs_inode *inode, struct page *locked_page,
2251 			     u64 start, u64 end, struct writeback_control *wbc)
2252 {
2253 	const bool zoned = btrfs_is_zoned(inode->root->fs_info);
2254 	int ret;
2255 
2256 	/*
2257 	 * The range must cover part of the @locked_page, or a return of 1
2258 	 * can confuse the caller.
2259 	 */
2260 	ASSERT(!(end <= page_offset(locked_page) ||
2261 		 start >= page_offset(locked_page) + PAGE_SIZE));
2262 
2263 	if (should_nocow(inode, start, end)) {
2264 		ret = run_delalloc_nocow(inode, locked_page, start, end);
2265 		goto out;
2266 	}
2267 
2268 	if (btrfs_inode_can_compress(inode) &&
2269 	    inode_need_compress(inode, start, end) &&
2270 	    run_delalloc_compressed(inode, locked_page, start, end, wbc))
2271 		return 1;
2272 
2273 	if (zoned)
2274 		ret = run_delalloc_cow(inode, locked_page, start, end, wbc,
2275 				       true);
2276 	else
2277 		ret = cow_file_range(inode, locked_page, start, end, NULL,
2278 				     false, false);
2279 
2280 out:
2281 	if (ret < 0)
2282 		btrfs_cleanup_ordered_extents(inode, locked_page, start,
2283 					      end - start + 1);
2284 	return ret;
2285 }
2286 
2287 void btrfs_split_delalloc_extent(struct btrfs_inode *inode,
2288 				 struct extent_state *orig, u64 split)
2289 {
2290 	struct btrfs_fs_info *fs_info = inode->root->fs_info;
2291 	u64 size;
2292 
2293 	/* not delalloc, ignore it */
2294 	if (!(orig->state & EXTENT_DELALLOC))
2295 		return;
2296 
2297 	size = orig->end - orig->start + 1;
2298 	if (size > fs_info->max_extent_size) {
2299 		u32 num_extents;
2300 		u64 new_size;
2301 
2302 		/*
2303 		 * See the explanation in btrfs_merge_delalloc_extent, the same
2304 		 * applies here, just in reverse.
2305 		 */
2306 		new_size = orig->end - split + 1;
2307 		num_extents = count_max_extents(fs_info, new_size);
2308 		new_size = split - orig->start;
2309 		num_extents += count_max_extents(fs_info, new_size);
2310 		if (count_max_extents(fs_info, size) >= num_extents)
2311 			return;
2312 	}
2313 
2314 	spin_lock(&inode->lock);
2315 	btrfs_mod_outstanding_extents(inode, 1);
2316 	spin_unlock(&inode->lock);
2317 }
2318 
2319 /*
2320  * Handle merged delayed allocation extents so we can keep track of new extents
2321  * that are just merged onto old extents, such as when we are doing sequential
2322  * writes, so we can properly account for the metadata space we'll need.
2323  */
2324 void btrfs_merge_delalloc_extent(struct btrfs_inode *inode, struct extent_state *new,
2325 				 struct extent_state *other)
2326 {
2327 	struct btrfs_fs_info *fs_info = inode->root->fs_info;
2328 	u64 new_size, old_size;
2329 	u32 num_extents;
2330 
2331 	/* not delalloc, ignore it */
2332 	if (!(other->state & EXTENT_DELALLOC))
2333 		return;
2334 
2335 	if (new->start > other->start)
2336 		new_size = new->end - other->start + 1;
2337 	else
2338 		new_size = other->end - new->start + 1;
2339 
2340 	/* we're not bigger than the max, unreserve the space and go */
2341 	if (new_size <= fs_info->max_extent_size) {
2342 		spin_lock(&inode->lock);
2343 		btrfs_mod_outstanding_extents(inode, -1);
2344 		spin_unlock(&inode->lock);
2345 		return;
2346 	}
2347 
2348 	/*
2349 	 * We have to add up either side to figure out how many extents were
2350 	 * accounted for before we merged into one big extent.  If the number of
2351 	 * extents we accounted for is <= the amount we need for the new range
2352 	 * then we can return, otherwise drop.  Think of it like this
2353 	 *
2354 	 * [ 4k][MAX_SIZE]
2355 	 *
2356 	 * So we've grown the extent by a MAX_SIZE extent, this would mean we
2357 	 * need 2 outstanding extents, on one side we have 1 and the other side
2358 	 * we have 1 so they are == and we can return.  But in this case
2359 	 *
2360 	 * [MAX_SIZE+4k][MAX_SIZE+4k]
2361 	 *
2362 	 * Each range on their own accounts for 2 extents, but merged together
2363 	 * they are only 3 extents worth of accounting, so we need to drop in
2364 	 * this case.
2365 	 */
2366 	old_size = other->end - other->start + 1;
2367 	num_extents = count_max_extents(fs_info, old_size);
2368 	old_size = new->end - new->start + 1;
2369 	num_extents += count_max_extents(fs_info, old_size);
2370 	if (count_max_extents(fs_info, new_size) >= num_extents)
2371 		return;
2372 
2373 	spin_lock(&inode->lock);
2374 	btrfs_mod_outstanding_extents(inode, -1);
2375 	spin_unlock(&inode->lock);
2376 }
2377 
2378 static void btrfs_add_delalloc_inodes(struct btrfs_root *root,
2379 				      struct btrfs_inode *inode)
2380 {
2381 	struct btrfs_fs_info *fs_info = inode->root->fs_info;
2382 
2383 	spin_lock(&root->delalloc_lock);
2384 	if (list_empty(&inode->delalloc_inodes)) {
2385 		list_add_tail(&inode->delalloc_inodes, &root->delalloc_inodes);
2386 		set_bit(BTRFS_INODE_IN_DELALLOC_LIST, &inode->runtime_flags);
2387 		root->nr_delalloc_inodes++;
2388 		if (root->nr_delalloc_inodes == 1) {
2389 			spin_lock(&fs_info->delalloc_root_lock);
2390 			BUG_ON(!list_empty(&root->delalloc_root));
2391 			list_add_tail(&root->delalloc_root,
2392 				      &fs_info->delalloc_roots);
2393 			spin_unlock(&fs_info->delalloc_root_lock);
2394 		}
2395 	}
2396 	spin_unlock(&root->delalloc_lock);
2397 }
2398 
2399 void __btrfs_del_delalloc_inode(struct btrfs_root *root,
2400 				struct btrfs_inode *inode)
2401 {
2402 	struct btrfs_fs_info *fs_info = root->fs_info;
2403 
2404 	if (!list_empty(&inode->delalloc_inodes)) {
2405 		list_del_init(&inode->delalloc_inodes);
2406 		clear_bit(BTRFS_INODE_IN_DELALLOC_LIST,
2407 			  &inode->runtime_flags);
2408 		root->nr_delalloc_inodes--;
2409 		if (!root->nr_delalloc_inodes) {
2410 			ASSERT(list_empty(&root->delalloc_inodes));
2411 			spin_lock(&fs_info->delalloc_root_lock);
2412 			BUG_ON(list_empty(&root->delalloc_root));
2413 			list_del_init(&root->delalloc_root);
2414 			spin_unlock(&fs_info->delalloc_root_lock);
2415 		}
2416 	}
2417 }
2418 
2419 static void btrfs_del_delalloc_inode(struct btrfs_root *root,
2420 				     struct btrfs_inode *inode)
2421 {
2422 	spin_lock(&root->delalloc_lock);
2423 	__btrfs_del_delalloc_inode(root, inode);
2424 	spin_unlock(&root->delalloc_lock);
2425 }
2426 
2427 /*
2428  * Properly track delayed allocation bytes in the inode and to maintain the
2429  * list of inodes that have pending delalloc work to be done.
2430  */
2431 void btrfs_set_delalloc_extent(struct btrfs_inode *inode, struct extent_state *state,
2432 			       u32 bits)
2433 {
2434 	struct btrfs_fs_info *fs_info = inode->root->fs_info;
2435 
2436 	if ((bits & EXTENT_DEFRAG) && !(bits & EXTENT_DELALLOC))
2437 		WARN_ON(1);
2438 	/*
2439 	 * set_bit and clear bit hooks normally require _irqsave/restore
2440 	 * but in this case, we are only testing for the DELALLOC
2441 	 * bit, which is only set or cleared with irqs on
2442 	 */
2443 	if (!(state->state & EXTENT_DELALLOC) && (bits & EXTENT_DELALLOC)) {
2444 		struct btrfs_root *root = inode->root;
2445 		u64 len = state->end + 1 - state->start;
2446 		u32 num_extents = count_max_extents(fs_info, len);
2447 		bool do_list = !btrfs_is_free_space_inode(inode);
2448 
2449 		spin_lock(&inode->lock);
2450 		btrfs_mod_outstanding_extents(inode, num_extents);
2451 		spin_unlock(&inode->lock);
2452 
2453 		/* For sanity tests */
2454 		if (btrfs_is_testing(fs_info))
2455 			return;
2456 
2457 		percpu_counter_add_batch(&fs_info->delalloc_bytes, len,
2458 					 fs_info->delalloc_batch);
2459 		spin_lock(&inode->lock);
2460 		inode->delalloc_bytes += len;
2461 		if (bits & EXTENT_DEFRAG)
2462 			inode->defrag_bytes += len;
2463 		if (do_list && !test_bit(BTRFS_INODE_IN_DELALLOC_LIST,
2464 					 &inode->runtime_flags))
2465 			btrfs_add_delalloc_inodes(root, inode);
2466 		spin_unlock(&inode->lock);
2467 	}
2468 
2469 	if (!(state->state & EXTENT_DELALLOC_NEW) &&
2470 	    (bits & EXTENT_DELALLOC_NEW)) {
2471 		spin_lock(&inode->lock);
2472 		inode->new_delalloc_bytes += state->end + 1 - state->start;
2473 		spin_unlock(&inode->lock);
2474 	}
2475 }
2476 
2477 /*
2478  * Once a range is no longer delalloc this function ensures that proper
2479  * accounting happens.
2480  */
2481 void btrfs_clear_delalloc_extent(struct btrfs_inode *inode,
2482 				 struct extent_state *state, u32 bits)
2483 {
2484 	struct btrfs_fs_info *fs_info = inode->root->fs_info;
2485 	u64 len = state->end + 1 - state->start;
2486 	u32 num_extents = count_max_extents(fs_info, len);
2487 
2488 	if ((state->state & EXTENT_DEFRAG) && (bits & EXTENT_DEFRAG)) {
2489 		spin_lock(&inode->lock);
2490 		inode->defrag_bytes -= len;
2491 		spin_unlock(&inode->lock);
2492 	}
2493 
2494 	/*
2495 	 * set_bit and clear bit hooks normally require _irqsave/restore
2496 	 * but in this case, we are only testing for the DELALLOC
2497 	 * bit, which is only set or cleared with irqs on
2498 	 */
2499 	if ((state->state & EXTENT_DELALLOC) && (bits & EXTENT_DELALLOC)) {
2500 		struct btrfs_root *root = inode->root;
2501 		bool do_list = !btrfs_is_free_space_inode(inode);
2502 
2503 		spin_lock(&inode->lock);
2504 		btrfs_mod_outstanding_extents(inode, -num_extents);
2505 		spin_unlock(&inode->lock);
2506 
2507 		/*
2508 		 * We don't reserve metadata space for space cache inodes so we
2509 		 * don't need to call delalloc_release_metadata if there is an
2510 		 * error.
2511 		 */
2512 		if (bits & EXTENT_CLEAR_META_RESV &&
2513 		    root != fs_info->tree_root)
2514 			btrfs_delalloc_release_metadata(inode, len, false);
2515 
2516 		/* For sanity tests. */
2517 		if (btrfs_is_testing(fs_info))
2518 			return;
2519 
2520 		if (!btrfs_is_data_reloc_root(root) &&
2521 		    do_list && !(state->state & EXTENT_NORESERVE) &&
2522 		    (bits & EXTENT_CLEAR_DATA_RESV))
2523 			btrfs_free_reserved_data_space_noquota(fs_info, len);
2524 
2525 		percpu_counter_add_batch(&fs_info->delalloc_bytes, -len,
2526 					 fs_info->delalloc_batch);
2527 		spin_lock(&inode->lock);
2528 		inode->delalloc_bytes -= len;
2529 		if (do_list && inode->delalloc_bytes == 0 &&
2530 		    test_bit(BTRFS_INODE_IN_DELALLOC_LIST,
2531 					&inode->runtime_flags))
2532 			btrfs_del_delalloc_inode(root, inode);
2533 		spin_unlock(&inode->lock);
2534 	}
2535 
2536 	if ((state->state & EXTENT_DELALLOC_NEW) &&
2537 	    (bits & EXTENT_DELALLOC_NEW)) {
2538 		spin_lock(&inode->lock);
2539 		ASSERT(inode->new_delalloc_bytes >= len);
2540 		inode->new_delalloc_bytes -= len;
2541 		if (bits & EXTENT_ADD_INODE_BYTES)
2542 			inode_add_bytes(&inode->vfs_inode, len);
2543 		spin_unlock(&inode->lock);
2544 	}
2545 }
2546 
2547 static int btrfs_extract_ordered_extent(struct btrfs_bio *bbio,
2548 					struct btrfs_ordered_extent *ordered)
2549 {
2550 	u64 start = (u64)bbio->bio.bi_iter.bi_sector << SECTOR_SHIFT;
2551 	u64 len = bbio->bio.bi_iter.bi_size;
2552 	struct btrfs_ordered_extent *new;
2553 	int ret;
2554 
2555 	/* Must always be called for the beginning of an ordered extent. */
2556 	if (WARN_ON_ONCE(start != ordered->disk_bytenr))
2557 		return -EINVAL;
2558 
2559 	/* No need to split if the ordered extent covers the entire bio. */
2560 	if (ordered->disk_num_bytes == len) {
2561 		refcount_inc(&ordered->refs);
2562 		bbio->ordered = ordered;
2563 		return 0;
2564 	}
2565 
2566 	/*
2567 	 * Don't split the extent_map for NOCOW extents, as we're writing into
2568 	 * a pre-existing one.
2569 	 */
2570 	if (!test_bit(BTRFS_ORDERED_NOCOW, &ordered->flags)) {
2571 		ret = split_extent_map(bbio->inode, bbio->file_offset,
2572 				       ordered->num_bytes, len,
2573 				       ordered->disk_bytenr);
2574 		if (ret)
2575 			return ret;
2576 	}
2577 
2578 	new = btrfs_split_ordered_extent(ordered, len);
2579 	if (IS_ERR(new))
2580 		return PTR_ERR(new);
2581 	bbio->ordered = new;
2582 	return 0;
2583 }
2584 
2585 /*
2586  * given a list of ordered sums record them in the inode.  This happens
2587  * at IO completion time based on sums calculated at bio submission time.
2588  */
2589 static int add_pending_csums(struct btrfs_trans_handle *trans,
2590 			     struct list_head *list)
2591 {
2592 	struct btrfs_ordered_sum *sum;
2593 	struct btrfs_root *csum_root = NULL;
2594 	int ret;
2595 
2596 	list_for_each_entry(sum, list, list) {
2597 		trans->adding_csums = true;
2598 		if (!csum_root)
2599 			csum_root = btrfs_csum_root(trans->fs_info,
2600 						    sum->logical);
2601 		ret = btrfs_csum_file_blocks(trans, csum_root, sum);
2602 		trans->adding_csums = false;
2603 		if (ret)
2604 			return ret;
2605 	}
2606 	return 0;
2607 }
2608 
2609 static int btrfs_find_new_delalloc_bytes(struct btrfs_inode *inode,
2610 					 const u64 start,
2611 					 const u64 len,
2612 					 struct extent_state **cached_state)
2613 {
2614 	u64 search_start = start;
2615 	const u64 end = start + len - 1;
2616 
2617 	while (search_start < end) {
2618 		const u64 search_len = end - search_start + 1;
2619 		struct extent_map *em;
2620 		u64 em_len;
2621 		int ret = 0;
2622 
2623 		em = btrfs_get_extent(inode, NULL, 0, search_start, search_len);
2624 		if (IS_ERR(em))
2625 			return PTR_ERR(em);
2626 
2627 		if (em->block_start != EXTENT_MAP_HOLE)
2628 			goto next;
2629 
2630 		em_len = em->len;
2631 		if (em->start < search_start)
2632 			em_len -= search_start - em->start;
2633 		if (em_len > search_len)
2634 			em_len = search_len;
2635 
2636 		ret = set_extent_bit(&inode->io_tree, search_start,
2637 				     search_start + em_len - 1,
2638 				     EXTENT_DELALLOC_NEW, cached_state);
2639 next:
2640 		search_start = extent_map_end(em);
2641 		free_extent_map(em);
2642 		if (ret)
2643 			return ret;
2644 	}
2645 	return 0;
2646 }
2647 
2648 int btrfs_set_extent_delalloc(struct btrfs_inode *inode, u64 start, u64 end,
2649 			      unsigned int extra_bits,
2650 			      struct extent_state **cached_state)
2651 {
2652 	WARN_ON(PAGE_ALIGNED(end));
2653 
2654 	if (start >= i_size_read(&inode->vfs_inode) &&
2655 	    !(inode->flags & BTRFS_INODE_PREALLOC)) {
2656 		/*
2657 		 * There can't be any extents following eof in this case so just
2658 		 * set the delalloc new bit for the range directly.
2659 		 */
2660 		extra_bits |= EXTENT_DELALLOC_NEW;
2661 	} else {
2662 		int ret;
2663 
2664 		ret = btrfs_find_new_delalloc_bytes(inode, start,
2665 						    end + 1 - start,
2666 						    cached_state);
2667 		if (ret)
2668 			return ret;
2669 	}
2670 
2671 	return set_extent_bit(&inode->io_tree, start, end,
2672 			      EXTENT_DELALLOC | extra_bits, cached_state);
2673 }
2674 
2675 /* see btrfs_writepage_start_hook for details on why this is required */
2676 struct btrfs_writepage_fixup {
2677 	struct page *page;
2678 	struct btrfs_inode *inode;
2679 	struct btrfs_work work;
2680 };
2681 
2682 static void btrfs_writepage_fixup_worker(struct btrfs_work *work)
2683 {
2684 	struct btrfs_writepage_fixup *fixup =
2685 		container_of(work, struct btrfs_writepage_fixup, work);
2686 	struct btrfs_ordered_extent *ordered;
2687 	struct extent_state *cached_state = NULL;
2688 	struct extent_changeset *data_reserved = NULL;
2689 	struct page *page = fixup->page;
2690 	struct btrfs_inode *inode = fixup->inode;
2691 	struct btrfs_fs_info *fs_info = inode->root->fs_info;
2692 	u64 page_start = page_offset(page);
2693 	u64 page_end = page_offset(page) + PAGE_SIZE - 1;
2694 	int ret = 0;
2695 	bool free_delalloc_space = true;
2696 
2697 	/*
2698 	 * This is similar to page_mkwrite, we need to reserve the space before
2699 	 * we take the page lock.
2700 	 */
2701 	ret = btrfs_delalloc_reserve_space(inode, &data_reserved, page_start,
2702 					   PAGE_SIZE);
2703 again:
2704 	lock_page(page);
2705 
2706 	/*
2707 	 * Before we queued this fixup, we took a reference on the page.
2708 	 * page->mapping may go NULL, but it shouldn't be moved to a different
2709 	 * address space.
2710 	 */
2711 	if (!page->mapping || !PageDirty(page) || !PageChecked(page)) {
2712 		/*
2713 		 * Unfortunately this is a little tricky, either
2714 		 *
2715 		 * 1) We got here and our page had already been dealt with and
2716 		 *    we reserved our space, thus ret == 0, so we need to just
2717 		 *    drop our space reservation and bail.  This can happen the
2718 		 *    first time we come into the fixup worker, or could happen
2719 		 *    while waiting for the ordered extent.
2720 		 * 2) Our page was already dealt with, but we happened to get an
2721 		 *    ENOSPC above from the btrfs_delalloc_reserve_space.  In
2722 		 *    this case we obviously don't have anything to release, but
2723 		 *    because the page was already dealt with we don't want to
2724 		 *    mark the page with an error, so make sure we're resetting
2725 		 *    ret to 0.  This is why we have this check _before_ the ret
2726 		 *    check, because we do not want to have a surprise ENOSPC
2727 		 *    when the page was already properly dealt with.
2728 		 */
2729 		if (!ret) {
2730 			btrfs_delalloc_release_extents(inode, PAGE_SIZE);
2731 			btrfs_delalloc_release_space(inode, data_reserved,
2732 						     page_start, PAGE_SIZE,
2733 						     true);
2734 		}
2735 		ret = 0;
2736 		goto out_page;
2737 	}
2738 
2739 	/*
2740 	 * We can't mess with the page state unless it is locked, so now that
2741 	 * it is locked bail if we failed to make our space reservation.
2742 	 */
2743 	if (ret)
2744 		goto out_page;
2745 
2746 	lock_extent(&inode->io_tree, page_start, page_end, &cached_state);
2747 
2748 	/* already ordered? We're done */
2749 	if (PageOrdered(page))
2750 		goto out_reserved;
2751 
2752 	ordered = btrfs_lookup_ordered_range(inode, page_start, PAGE_SIZE);
2753 	if (ordered) {
2754 		unlock_extent(&inode->io_tree, page_start, page_end,
2755 			      &cached_state);
2756 		unlock_page(page);
2757 		btrfs_start_ordered_extent(ordered);
2758 		btrfs_put_ordered_extent(ordered);
2759 		goto again;
2760 	}
2761 
2762 	ret = btrfs_set_extent_delalloc(inode, page_start, page_end, 0,
2763 					&cached_state);
2764 	if (ret)
2765 		goto out_reserved;
2766 
2767 	/*
2768 	 * Everything went as planned, we're now the owner of a dirty page with
2769 	 * delayed allocation bits set and space reserved for our COW
2770 	 * destination.
2771 	 *
2772 	 * The page was dirty when we started, nothing should have cleaned it.
2773 	 */
2774 	BUG_ON(!PageDirty(page));
2775 	free_delalloc_space = false;
2776 out_reserved:
2777 	btrfs_delalloc_release_extents(inode, PAGE_SIZE);
2778 	if (free_delalloc_space)
2779 		btrfs_delalloc_release_space(inode, data_reserved, page_start,
2780 					     PAGE_SIZE, true);
2781 	unlock_extent(&inode->io_tree, page_start, page_end, &cached_state);
2782 out_page:
2783 	if (ret) {
2784 		/*
2785 		 * We hit ENOSPC or other errors.  Update the mapping and page
2786 		 * to reflect the errors and clean the page.
2787 		 */
2788 		mapping_set_error(page->mapping, ret);
2789 		btrfs_mark_ordered_io_finished(inode, page, page_start,
2790 					       PAGE_SIZE, !ret);
2791 		clear_page_dirty_for_io(page);
2792 	}
2793 	btrfs_page_clear_checked(fs_info, page, page_start, PAGE_SIZE);
2794 	unlock_page(page);
2795 	put_page(page);
2796 	kfree(fixup);
2797 	extent_changeset_free(data_reserved);
2798 	/*
2799 	 * As a precaution, do a delayed iput in case it would be the last iput
2800 	 * that could need flushing space. Recursing back to fixup worker would
2801 	 * deadlock.
2802 	 */
2803 	btrfs_add_delayed_iput(inode);
2804 }
2805 
2806 /*
2807  * There are a few paths in the higher layers of the kernel that directly
2808  * set the page dirty bit without asking the filesystem if it is a
2809  * good idea.  This causes problems because we want to make sure COW
2810  * properly happens and the data=ordered rules are followed.
2811  *
2812  * In our case any range that doesn't have the ORDERED bit set
2813  * hasn't been properly setup for IO.  We kick off an async process
2814  * to fix it up.  The async helper will wait for ordered extents, set
2815  * the delalloc bit and make it safe to write the page.
2816  */
2817 int btrfs_writepage_cow_fixup(struct page *page)
2818 {
2819 	struct inode *inode = page->mapping->host;
2820 	struct btrfs_fs_info *fs_info = btrfs_sb(inode->i_sb);
2821 	struct btrfs_writepage_fixup *fixup;
2822 
2823 	/* This page has ordered extent covering it already */
2824 	if (PageOrdered(page))
2825 		return 0;
2826 
2827 	/*
2828 	 * PageChecked is set below when we create a fixup worker for this page,
2829 	 * don't try to create another one if we're already PageChecked()
2830 	 *
2831 	 * The extent_io writepage code will redirty the page if we send back
2832 	 * EAGAIN.
2833 	 */
2834 	if (PageChecked(page))
2835 		return -EAGAIN;
2836 
2837 	fixup = kzalloc(sizeof(*fixup), GFP_NOFS);
2838 	if (!fixup)
2839 		return -EAGAIN;
2840 
2841 	/*
2842 	 * We are already holding a reference to this inode from
2843 	 * write_cache_pages.  We need to hold it because the space reservation
2844 	 * takes place outside of the page lock, and we can't trust
2845 	 * page->mapping outside of the page lock.
2846 	 */
2847 	ihold(inode);
2848 	btrfs_page_set_checked(fs_info, page, page_offset(page), PAGE_SIZE);
2849 	get_page(page);
2850 	btrfs_init_work(&fixup->work, btrfs_writepage_fixup_worker, NULL, NULL);
2851 	fixup->page = page;
2852 	fixup->inode = BTRFS_I(inode);
2853 	btrfs_queue_work(fs_info->fixup_workers, &fixup->work);
2854 
2855 	return -EAGAIN;
2856 }
2857 
2858 static int insert_reserved_file_extent(struct btrfs_trans_handle *trans,
2859 				       struct btrfs_inode *inode, u64 file_pos,
2860 				       struct btrfs_file_extent_item *stack_fi,
2861 				       const bool update_inode_bytes,
2862 				       u64 qgroup_reserved)
2863 {
2864 	struct btrfs_root *root = inode->root;
2865 	const u64 sectorsize = root->fs_info->sectorsize;
2866 	struct btrfs_path *path;
2867 	struct extent_buffer *leaf;
2868 	struct btrfs_key ins;
2869 	u64 disk_num_bytes = btrfs_stack_file_extent_disk_num_bytes(stack_fi);
2870 	u64 disk_bytenr = btrfs_stack_file_extent_disk_bytenr(stack_fi);
2871 	u64 offset = btrfs_stack_file_extent_offset(stack_fi);
2872 	u64 num_bytes = btrfs_stack_file_extent_num_bytes(stack_fi);
2873 	u64 ram_bytes = btrfs_stack_file_extent_ram_bytes(stack_fi);
2874 	struct btrfs_drop_extents_args drop_args = { 0 };
2875 	int ret;
2876 
2877 	path = btrfs_alloc_path();
2878 	if (!path)
2879 		return -ENOMEM;
2880 
2881 	/*
2882 	 * we may be replacing one extent in the tree with another.
2883 	 * The new extent is pinned in the extent map, and we don't want
2884 	 * to drop it from the cache until it is completely in the btree.
2885 	 *
2886 	 * So, tell btrfs_drop_extents to leave this extent in the cache.
2887 	 * the caller is expected to unpin it and allow it to be merged
2888 	 * with the others.
2889 	 */
2890 	drop_args.path = path;
2891 	drop_args.start = file_pos;
2892 	drop_args.end = file_pos + num_bytes;
2893 	drop_args.replace_extent = true;
2894 	drop_args.extent_item_size = sizeof(*stack_fi);
2895 	ret = btrfs_drop_extents(trans, root, inode, &drop_args);
2896 	if (ret)
2897 		goto out;
2898 
2899 	if (!drop_args.extent_inserted) {
2900 		ins.objectid = btrfs_ino(inode);
2901 		ins.offset = file_pos;
2902 		ins.type = BTRFS_EXTENT_DATA_KEY;
2903 
2904 		ret = btrfs_insert_empty_item(trans, root, path, &ins,
2905 					      sizeof(*stack_fi));
2906 		if (ret)
2907 			goto out;
2908 	}
2909 	leaf = path->nodes[0];
2910 	btrfs_set_stack_file_extent_generation(stack_fi, trans->transid);
2911 	write_extent_buffer(leaf, stack_fi,
2912 			btrfs_item_ptr_offset(leaf, path->slots[0]),
2913 			sizeof(struct btrfs_file_extent_item));
2914 
2915 	btrfs_mark_buffer_dirty(trans, leaf);
2916 	btrfs_release_path(path);
2917 
2918 	/*
2919 	 * If we dropped an inline extent here, we know the range where it is
2920 	 * was not marked with the EXTENT_DELALLOC_NEW bit, so we update the
2921 	 * number of bytes only for that range containing the inline extent.
2922 	 * The remaining of the range will be processed when clearning the
2923 	 * EXTENT_DELALLOC_BIT bit through the ordered extent completion.
2924 	 */
2925 	if (file_pos == 0 && !IS_ALIGNED(drop_args.bytes_found, sectorsize)) {
2926 		u64 inline_size = round_down(drop_args.bytes_found, sectorsize);
2927 
2928 		inline_size = drop_args.bytes_found - inline_size;
2929 		btrfs_update_inode_bytes(inode, sectorsize, inline_size);
2930 		drop_args.bytes_found -= inline_size;
2931 		num_bytes -= sectorsize;
2932 	}
2933 
2934 	if (update_inode_bytes)
2935 		btrfs_update_inode_bytes(inode, num_bytes, drop_args.bytes_found);
2936 
2937 	ins.objectid = disk_bytenr;
2938 	ins.offset = disk_num_bytes;
2939 	ins.type = BTRFS_EXTENT_ITEM_KEY;
2940 
2941 	ret = btrfs_inode_set_file_extent_range(inode, file_pos, ram_bytes);
2942 	if (ret)
2943 		goto out;
2944 
2945 	ret = btrfs_alloc_reserved_file_extent(trans, root, btrfs_ino(inode),
2946 					       file_pos - offset,
2947 					       qgroup_reserved, &ins);
2948 out:
2949 	btrfs_free_path(path);
2950 
2951 	return ret;
2952 }
2953 
2954 static void btrfs_release_delalloc_bytes(struct btrfs_fs_info *fs_info,
2955 					 u64 start, u64 len)
2956 {
2957 	struct btrfs_block_group *cache;
2958 
2959 	cache = btrfs_lookup_block_group(fs_info, start);
2960 	ASSERT(cache);
2961 
2962 	spin_lock(&cache->lock);
2963 	cache->delalloc_bytes -= len;
2964 	spin_unlock(&cache->lock);
2965 
2966 	btrfs_put_block_group(cache);
2967 }
2968 
2969 static int insert_ordered_extent_file_extent(struct btrfs_trans_handle *trans,
2970 					     struct btrfs_ordered_extent *oe)
2971 {
2972 	struct btrfs_file_extent_item stack_fi;
2973 	bool update_inode_bytes;
2974 	u64 num_bytes = oe->num_bytes;
2975 	u64 ram_bytes = oe->ram_bytes;
2976 
2977 	memset(&stack_fi, 0, sizeof(stack_fi));
2978 	btrfs_set_stack_file_extent_type(&stack_fi, BTRFS_FILE_EXTENT_REG);
2979 	btrfs_set_stack_file_extent_disk_bytenr(&stack_fi, oe->disk_bytenr);
2980 	btrfs_set_stack_file_extent_disk_num_bytes(&stack_fi,
2981 						   oe->disk_num_bytes);
2982 	btrfs_set_stack_file_extent_offset(&stack_fi, oe->offset);
2983 	if (test_bit(BTRFS_ORDERED_TRUNCATED, &oe->flags)) {
2984 		num_bytes = oe->truncated_len;
2985 		ram_bytes = num_bytes;
2986 	}
2987 	btrfs_set_stack_file_extent_num_bytes(&stack_fi, num_bytes);
2988 	btrfs_set_stack_file_extent_ram_bytes(&stack_fi, ram_bytes);
2989 	btrfs_set_stack_file_extent_compression(&stack_fi, oe->compress_type);
2990 	/* Encryption and other encoding is reserved and all 0 */
2991 
2992 	/*
2993 	 * For delalloc, when completing an ordered extent we update the inode's
2994 	 * bytes when clearing the range in the inode's io tree, so pass false
2995 	 * as the argument 'update_inode_bytes' to insert_reserved_file_extent(),
2996 	 * except if the ordered extent was truncated.
2997 	 */
2998 	update_inode_bytes = test_bit(BTRFS_ORDERED_DIRECT, &oe->flags) ||
2999 			     test_bit(BTRFS_ORDERED_ENCODED, &oe->flags) ||
3000 			     test_bit(BTRFS_ORDERED_TRUNCATED, &oe->flags);
3001 
3002 	return insert_reserved_file_extent(trans, BTRFS_I(oe->inode),
3003 					   oe->file_offset, &stack_fi,
3004 					   update_inode_bytes, oe->qgroup_rsv);
3005 }
3006 
3007 /*
3008  * As ordered data IO finishes, this gets called so we can finish
3009  * an ordered extent if the range of bytes in the file it covers are
3010  * fully written.
3011  */
3012 int btrfs_finish_one_ordered(struct btrfs_ordered_extent *ordered_extent)
3013 {
3014 	struct btrfs_inode *inode = BTRFS_I(ordered_extent->inode);
3015 	struct btrfs_root *root = inode->root;
3016 	struct btrfs_fs_info *fs_info = root->fs_info;
3017 	struct btrfs_trans_handle *trans = NULL;
3018 	struct extent_io_tree *io_tree = &inode->io_tree;
3019 	struct extent_state *cached_state = NULL;
3020 	u64 start, end;
3021 	int compress_type = 0;
3022 	int ret = 0;
3023 	u64 logical_len = ordered_extent->num_bytes;
3024 	bool freespace_inode;
3025 	bool truncated = false;
3026 	bool clear_reserved_extent = true;
3027 	unsigned int clear_bits = EXTENT_DEFRAG;
3028 
3029 	start = ordered_extent->file_offset;
3030 	end = start + ordered_extent->num_bytes - 1;
3031 
3032 	if (!test_bit(BTRFS_ORDERED_NOCOW, &ordered_extent->flags) &&
3033 	    !test_bit(BTRFS_ORDERED_PREALLOC, &ordered_extent->flags) &&
3034 	    !test_bit(BTRFS_ORDERED_DIRECT, &ordered_extent->flags) &&
3035 	    !test_bit(BTRFS_ORDERED_ENCODED, &ordered_extent->flags))
3036 		clear_bits |= EXTENT_DELALLOC_NEW;
3037 
3038 	freespace_inode = btrfs_is_free_space_inode(inode);
3039 	if (!freespace_inode)
3040 		btrfs_lockdep_acquire(fs_info, btrfs_ordered_extent);
3041 
3042 	if (test_bit(BTRFS_ORDERED_IOERR, &ordered_extent->flags)) {
3043 		ret = -EIO;
3044 		goto out;
3045 	}
3046 
3047 	if (btrfs_is_zoned(fs_info))
3048 		btrfs_zone_finish_endio(fs_info, ordered_extent->disk_bytenr,
3049 					ordered_extent->disk_num_bytes);
3050 
3051 	if (test_bit(BTRFS_ORDERED_TRUNCATED, &ordered_extent->flags)) {
3052 		truncated = true;
3053 		logical_len = ordered_extent->truncated_len;
3054 		/* Truncated the entire extent, don't bother adding */
3055 		if (!logical_len)
3056 			goto out;
3057 	}
3058 
3059 	if (test_bit(BTRFS_ORDERED_NOCOW, &ordered_extent->flags)) {
3060 		BUG_ON(!list_empty(&ordered_extent->list)); /* Logic error */
3061 
3062 		btrfs_inode_safe_disk_i_size_write(inode, 0);
3063 		if (freespace_inode)
3064 			trans = btrfs_join_transaction_spacecache(root);
3065 		else
3066 			trans = btrfs_join_transaction(root);
3067 		if (IS_ERR(trans)) {
3068 			ret = PTR_ERR(trans);
3069 			trans = NULL;
3070 			goto out;
3071 		}
3072 		trans->block_rsv = &inode->block_rsv;
3073 		ret = btrfs_update_inode_fallback(trans, root, inode);
3074 		if (ret) /* -ENOMEM or corruption */
3075 			btrfs_abort_transaction(trans, ret);
3076 		goto out;
3077 	}
3078 
3079 	clear_bits |= EXTENT_LOCKED;
3080 	lock_extent(io_tree, start, end, &cached_state);
3081 
3082 	if (freespace_inode)
3083 		trans = btrfs_join_transaction_spacecache(root);
3084 	else
3085 		trans = btrfs_join_transaction(root);
3086 	if (IS_ERR(trans)) {
3087 		ret = PTR_ERR(trans);
3088 		trans = NULL;
3089 		goto out;
3090 	}
3091 
3092 	trans->block_rsv = &inode->block_rsv;
3093 
3094 	if (test_bit(BTRFS_ORDERED_COMPRESSED, &ordered_extent->flags))
3095 		compress_type = ordered_extent->compress_type;
3096 	if (test_bit(BTRFS_ORDERED_PREALLOC, &ordered_extent->flags)) {
3097 		BUG_ON(compress_type);
3098 		ret = btrfs_mark_extent_written(trans, inode,
3099 						ordered_extent->file_offset,
3100 						ordered_extent->file_offset +
3101 						logical_len);
3102 		btrfs_zoned_release_data_reloc_bg(fs_info, ordered_extent->disk_bytenr,
3103 						  ordered_extent->disk_num_bytes);
3104 	} else {
3105 		BUG_ON(root == fs_info->tree_root);
3106 		ret = insert_ordered_extent_file_extent(trans, ordered_extent);
3107 		if (!ret) {
3108 			clear_reserved_extent = false;
3109 			btrfs_release_delalloc_bytes(fs_info,
3110 						ordered_extent->disk_bytenr,
3111 						ordered_extent->disk_num_bytes);
3112 		}
3113 	}
3114 	unpin_extent_cache(&inode->extent_tree, ordered_extent->file_offset,
3115 			   ordered_extent->num_bytes, trans->transid);
3116 	if (ret < 0) {
3117 		btrfs_abort_transaction(trans, ret);
3118 		goto out;
3119 	}
3120 
3121 	ret = add_pending_csums(trans, &ordered_extent->list);
3122 	if (ret) {
3123 		btrfs_abort_transaction(trans, ret);
3124 		goto out;
3125 	}
3126 
3127 	/*
3128 	 * If this is a new delalloc range, clear its new delalloc flag to
3129 	 * update the inode's number of bytes. This needs to be done first
3130 	 * before updating the inode item.
3131 	 */
3132 	if ((clear_bits & EXTENT_DELALLOC_NEW) &&
3133 	    !test_bit(BTRFS_ORDERED_TRUNCATED, &ordered_extent->flags))
3134 		clear_extent_bit(&inode->io_tree, start, end,
3135 				 EXTENT_DELALLOC_NEW | EXTENT_ADD_INODE_BYTES,
3136 				 &cached_state);
3137 
3138 	btrfs_inode_safe_disk_i_size_write(inode, 0);
3139 	ret = btrfs_update_inode_fallback(trans, root, inode);
3140 	if (ret) { /* -ENOMEM or corruption */
3141 		btrfs_abort_transaction(trans, ret);
3142 		goto out;
3143 	}
3144 	ret = 0;
3145 out:
3146 	clear_extent_bit(&inode->io_tree, start, end, clear_bits,
3147 			 &cached_state);
3148 
3149 	if (trans)
3150 		btrfs_end_transaction(trans);
3151 
3152 	if (ret || truncated) {
3153 		u64 unwritten_start = start;
3154 
3155 		/*
3156 		 * If we failed to finish this ordered extent for any reason we
3157 		 * need to make sure BTRFS_ORDERED_IOERR is set on the ordered
3158 		 * extent, and mark the inode with the error if it wasn't
3159 		 * already set.  Any error during writeback would have already
3160 		 * set the mapping error, so we need to set it if we're the ones
3161 		 * marking this ordered extent as failed.
3162 		 */
3163 		if (ret && !test_and_set_bit(BTRFS_ORDERED_IOERR,
3164 					     &ordered_extent->flags))
3165 			mapping_set_error(ordered_extent->inode->i_mapping, -EIO);
3166 
3167 		if (truncated)
3168 			unwritten_start += logical_len;
3169 		clear_extent_uptodate(io_tree, unwritten_start, end, NULL);
3170 
3171 		/* Drop extent maps for the part of the extent we didn't write. */
3172 		btrfs_drop_extent_map_range(inode, unwritten_start, end, false);
3173 
3174 		/*
3175 		 * If the ordered extent had an IOERR or something else went
3176 		 * wrong we need to return the space for this ordered extent
3177 		 * back to the allocator.  We only free the extent in the
3178 		 * truncated case if we didn't write out the extent at all.
3179 		 *
3180 		 * If we made it past insert_reserved_file_extent before we
3181 		 * errored out then we don't need to do this as the accounting
3182 		 * has already been done.
3183 		 */
3184 		if ((ret || !logical_len) &&
3185 		    clear_reserved_extent &&
3186 		    !test_bit(BTRFS_ORDERED_NOCOW, &ordered_extent->flags) &&
3187 		    !test_bit(BTRFS_ORDERED_PREALLOC, &ordered_extent->flags)) {
3188 			/*
3189 			 * Discard the range before returning it back to the
3190 			 * free space pool
3191 			 */
3192 			if (ret && btrfs_test_opt(fs_info, DISCARD_SYNC))
3193 				btrfs_discard_extent(fs_info,
3194 						ordered_extent->disk_bytenr,
3195 						ordered_extent->disk_num_bytes,
3196 						NULL);
3197 			btrfs_free_reserved_extent(fs_info,
3198 					ordered_extent->disk_bytenr,
3199 					ordered_extent->disk_num_bytes, 1);
3200 			/*
3201 			 * Actually free the qgroup rsv which was released when
3202 			 * the ordered extent was created.
3203 			 */
3204 			btrfs_qgroup_free_refroot(fs_info, inode->root->root_key.objectid,
3205 						  ordered_extent->qgroup_rsv,
3206 						  BTRFS_QGROUP_RSV_DATA);
3207 		}
3208 	}
3209 
3210 	/*
3211 	 * This needs to be done to make sure anybody waiting knows we are done
3212 	 * updating everything for this ordered extent.
3213 	 */
3214 	btrfs_remove_ordered_extent(inode, ordered_extent);
3215 
3216 	/* once for us */
3217 	btrfs_put_ordered_extent(ordered_extent);
3218 	/* once for the tree */
3219 	btrfs_put_ordered_extent(ordered_extent);
3220 
3221 	return ret;
3222 }
3223 
3224 int btrfs_finish_ordered_io(struct btrfs_ordered_extent *ordered)
3225 {
3226 	if (btrfs_is_zoned(btrfs_sb(ordered->inode->i_sb)) &&
3227 	    !test_bit(BTRFS_ORDERED_IOERR, &ordered->flags))
3228 		btrfs_finish_ordered_zoned(ordered);
3229 	return btrfs_finish_one_ordered(ordered);
3230 }
3231 
3232 /*
3233  * Verify the checksum for a single sector without any extra action that depend
3234  * on the type of I/O.
3235  */
3236 int btrfs_check_sector_csum(struct btrfs_fs_info *fs_info, struct page *page,
3237 			    u32 pgoff, u8 *csum, const u8 * const csum_expected)
3238 {
3239 	SHASH_DESC_ON_STACK(shash, fs_info->csum_shash);
3240 	char *kaddr;
3241 
3242 	ASSERT(pgoff + fs_info->sectorsize <= PAGE_SIZE);
3243 
3244 	shash->tfm = fs_info->csum_shash;
3245 
3246 	kaddr = kmap_local_page(page) + pgoff;
3247 	crypto_shash_digest(shash, kaddr, fs_info->sectorsize, csum);
3248 	kunmap_local(kaddr);
3249 
3250 	if (memcmp(csum, csum_expected, fs_info->csum_size))
3251 		return -EIO;
3252 	return 0;
3253 }
3254 
3255 /*
3256  * Verify the checksum of a single data sector.
3257  *
3258  * @bbio:	btrfs_io_bio which contains the csum
3259  * @dev:	device the sector is on
3260  * @bio_offset:	offset to the beginning of the bio (in bytes)
3261  * @bv:		bio_vec to check
3262  *
3263  * Check if the checksum on a data block is valid.  When a checksum mismatch is
3264  * detected, report the error and fill the corrupted range with zero.
3265  *
3266  * Return %true if the sector is ok or had no checksum to start with, else %false.
3267  */
3268 bool btrfs_data_csum_ok(struct btrfs_bio *bbio, struct btrfs_device *dev,
3269 			u32 bio_offset, struct bio_vec *bv)
3270 {
3271 	struct btrfs_inode *inode = bbio->inode;
3272 	struct btrfs_fs_info *fs_info = inode->root->fs_info;
3273 	u64 file_offset = bbio->file_offset + bio_offset;
3274 	u64 end = file_offset + bv->bv_len - 1;
3275 	u8 *csum_expected;
3276 	u8 csum[BTRFS_CSUM_SIZE];
3277 
3278 	ASSERT(bv->bv_len == fs_info->sectorsize);
3279 
3280 	if (!bbio->csum)
3281 		return true;
3282 
3283 	if (btrfs_is_data_reloc_root(inode->root) &&
3284 	    test_range_bit(&inode->io_tree, file_offset, end, EXTENT_NODATASUM,
3285 			   1, NULL)) {
3286 		/* Skip the range without csum for data reloc inode */
3287 		clear_extent_bits(&inode->io_tree, file_offset, end,
3288 				  EXTENT_NODATASUM);
3289 		return true;
3290 	}
3291 
3292 	csum_expected = bbio->csum + (bio_offset >> fs_info->sectorsize_bits) *
3293 				fs_info->csum_size;
3294 	if (btrfs_check_sector_csum(fs_info, bv->bv_page, bv->bv_offset, csum,
3295 				    csum_expected))
3296 		goto zeroit;
3297 	return true;
3298 
3299 zeroit:
3300 	btrfs_print_data_csum_error(inode, file_offset, csum, csum_expected,
3301 				    bbio->mirror_num);
3302 	if (dev)
3303 		btrfs_dev_stat_inc_and_print(dev, BTRFS_DEV_STAT_CORRUPTION_ERRS);
3304 	memzero_bvec(bv);
3305 	return false;
3306 }
3307 
3308 /*
3309  * btrfs_add_delayed_iput - perform a delayed iput on @inode
3310  *
3311  * @inode: The inode we want to perform iput on
3312  *
3313  * This function uses the generic vfs_inode::i_count to track whether we should
3314  * just decrement it (in case it's > 1) or if this is the last iput then link
3315  * the inode to the delayed iput machinery. Delayed iputs are processed at
3316  * transaction commit time/superblock commit/cleaner kthread.
3317  */
3318 void btrfs_add_delayed_iput(struct btrfs_inode *inode)
3319 {
3320 	struct btrfs_fs_info *fs_info = inode->root->fs_info;
3321 	unsigned long flags;
3322 
3323 	if (atomic_add_unless(&inode->vfs_inode.i_count, -1, 1))
3324 		return;
3325 
3326 	atomic_inc(&fs_info->nr_delayed_iputs);
3327 	/*
3328 	 * Need to be irq safe here because we can be called from either an irq
3329 	 * context (see bio.c and btrfs_put_ordered_extent()) or a non-irq
3330 	 * context.
3331 	 */
3332 	spin_lock_irqsave(&fs_info->delayed_iput_lock, flags);
3333 	ASSERT(list_empty(&inode->delayed_iput));
3334 	list_add_tail(&inode->delayed_iput, &fs_info->delayed_iputs);
3335 	spin_unlock_irqrestore(&fs_info->delayed_iput_lock, flags);
3336 	if (!test_bit(BTRFS_FS_CLEANER_RUNNING, &fs_info->flags))
3337 		wake_up_process(fs_info->cleaner_kthread);
3338 }
3339 
3340 static void run_delayed_iput_locked(struct btrfs_fs_info *fs_info,
3341 				    struct btrfs_inode *inode)
3342 {
3343 	list_del_init(&inode->delayed_iput);
3344 	spin_unlock_irq(&fs_info->delayed_iput_lock);
3345 	iput(&inode->vfs_inode);
3346 	if (atomic_dec_and_test(&fs_info->nr_delayed_iputs))
3347 		wake_up(&fs_info->delayed_iputs_wait);
3348 	spin_lock_irq(&fs_info->delayed_iput_lock);
3349 }
3350 
3351 static void btrfs_run_delayed_iput(struct btrfs_fs_info *fs_info,
3352 				   struct btrfs_inode *inode)
3353 {
3354 	if (!list_empty(&inode->delayed_iput)) {
3355 		spin_lock_irq(&fs_info->delayed_iput_lock);
3356 		if (!list_empty(&inode->delayed_iput))
3357 			run_delayed_iput_locked(fs_info, inode);
3358 		spin_unlock_irq(&fs_info->delayed_iput_lock);
3359 	}
3360 }
3361 
3362 void btrfs_run_delayed_iputs(struct btrfs_fs_info *fs_info)
3363 {
3364 	/*
3365 	 * btrfs_put_ordered_extent() can run in irq context (see bio.c), which
3366 	 * calls btrfs_add_delayed_iput() and that needs to lock
3367 	 * fs_info->delayed_iput_lock. So we need to disable irqs here to
3368 	 * prevent a deadlock.
3369 	 */
3370 	spin_lock_irq(&fs_info->delayed_iput_lock);
3371 	while (!list_empty(&fs_info->delayed_iputs)) {
3372 		struct btrfs_inode *inode;
3373 
3374 		inode = list_first_entry(&fs_info->delayed_iputs,
3375 				struct btrfs_inode, delayed_iput);
3376 		run_delayed_iput_locked(fs_info, inode);
3377 		if (need_resched()) {
3378 			spin_unlock_irq(&fs_info->delayed_iput_lock);
3379 			cond_resched();
3380 			spin_lock_irq(&fs_info->delayed_iput_lock);
3381 		}
3382 	}
3383 	spin_unlock_irq(&fs_info->delayed_iput_lock);
3384 }
3385 
3386 /*
3387  * Wait for flushing all delayed iputs
3388  *
3389  * @fs_info:  the filesystem
3390  *
3391  * This will wait on any delayed iputs that are currently running with KILLABLE
3392  * set.  Once they are all done running we will return, unless we are killed in
3393  * which case we return EINTR. This helps in user operations like fallocate etc
3394  * that might get blocked on the iputs.
3395  *
3396  * Return EINTR if we were killed, 0 if nothing's pending
3397  */
3398 int btrfs_wait_on_delayed_iputs(struct btrfs_fs_info *fs_info)
3399 {
3400 	int ret = wait_event_killable(fs_info->delayed_iputs_wait,
3401 			atomic_read(&fs_info->nr_delayed_iputs) == 0);
3402 	if (ret)
3403 		return -EINTR;
3404 	return 0;
3405 }
3406 
3407 /*
3408  * This creates an orphan entry for the given inode in case something goes wrong
3409  * in the middle of an unlink.
3410  */
3411 int btrfs_orphan_add(struct btrfs_trans_handle *trans,
3412 		     struct btrfs_inode *inode)
3413 {
3414 	int ret;
3415 
3416 	ret = btrfs_insert_orphan_item(trans, inode->root, btrfs_ino(inode));
3417 	if (ret && ret != -EEXIST) {
3418 		btrfs_abort_transaction(trans, ret);
3419 		return ret;
3420 	}
3421 
3422 	return 0;
3423 }
3424 
3425 /*
3426  * We have done the delete so we can go ahead and remove the orphan item for
3427  * this particular inode.
3428  */
3429 static int btrfs_orphan_del(struct btrfs_trans_handle *trans,
3430 			    struct btrfs_inode *inode)
3431 {
3432 	return btrfs_del_orphan_item(trans, inode->root, btrfs_ino(inode));
3433 }
3434 
3435 /*
3436  * this cleans up any orphans that may be left on the list from the last use
3437  * of this root.
3438  */
3439 int btrfs_orphan_cleanup(struct btrfs_root *root)
3440 {
3441 	struct btrfs_fs_info *fs_info = root->fs_info;
3442 	struct btrfs_path *path;
3443 	struct extent_buffer *leaf;
3444 	struct btrfs_key key, found_key;
3445 	struct btrfs_trans_handle *trans;
3446 	struct inode *inode;
3447 	u64 last_objectid = 0;
3448 	int ret = 0, nr_unlink = 0;
3449 
3450 	if (test_and_set_bit(BTRFS_ROOT_ORPHAN_CLEANUP, &root->state))
3451 		return 0;
3452 
3453 	path = btrfs_alloc_path();
3454 	if (!path) {
3455 		ret = -ENOMEM;
3456 		goto out;
3457 	}
3458 	path->reada = READA_BACK;
3459 
3460 	key.objectid = BTRFS_ORPHAN_OBJECTID;
3461 	key.type = BTRFS_ORPHAN_ITEM_KEY;
3462 	key.offset = (u64)-1;
3463 
3464 	while (1) {
3465 		ret = btrfs_search_slot(NULL, root, &key, path, 0, 0);
3466 		if (ret < 0)
3467 			goto out;
3468 
3469 		/*
3470 		 * if ret == 0 means we found what we were searching for, which
3471 		 * is weird, but possible, so only screw with path if we didn't
3472 		 * find the key and see if we have stuff that matches
3473 		 */
3474 		if (ret > 0) {
3475 			ret = 0;
3476 			if (path->slots[0] == 0)
3477 				break;
3478 			path->slots[0]--;
3479 		}
3480 
3481 		/* pull out the item */
3482 		leaf = path->nodes[0];
3483 		btrfs_item_key_to_cpu(leaf, &found_key, path->slots[0]);
3484 
3485 		/* make sure the item matches what we want */
3486 		if (found_key.objectid != BTRFS_ORPHAN_OBJECTID)
3487 			break;
3488 		if (found_key.type != BTRFS_ORPHAN_ITEM_KEY)
3489 			break;
3490 
3491 		/* release the path since we're done with it */
3492 		btrfs_release_path(path);
3493 
3494 		/*
3495 		 * this is where we are basically btrfs_lookup, without the
3496 		 * crossing root thing.  we store the inode number in the
3497 		 * offset of the orphan item.
3498 		 */
3499 
3500 		if (found_key.offset == last_objectid) {
3501 			/*
3502 			 * We found the same inode as before. This means we were
3503 			 * not able to remove its items via eviction triggered
3504 			 * by an iput(). A transaction abort may have happened,
3505 			 * due to -ENOSPC for example, so try to grab the error
3506 			 * that lead to a transaction abort, if any.
3507 			 */
3508 			btrfs_err(fs_info,
3509 				  "Error removing orphan entry, stopping orphan cleanup");
3510 			ret = BTRFS_FS_ERROR(fs_info) ?: -EINVAL;
3511 			goto out;
3512 		}
3513 
3514 		last_objectid = found_key.offset;
3515 
3516 		found_key.objectid = found_key.offset;
3517 		found_key.type = BTRFS_INODE_ITEM_KEY;
3518 		found_key.offset = 0;
3519 		inode = btrfs_iget(fs_info->sb, last_objectid, root);
3520 		if (IS_ERR(inode)) {
3521 			ret = PTR_ERR(inode);
3522 			inode = NULL;
3523 			if (ret != -ENOENT)
3524 				goto out;
3525 		}
3526 
3527 		if (!inode && root == fs_info->tree_root) {
3528 			struct btrfs_root *dead_root;
3529 			int is_dead_root = 0;
3530 
3531 			/*
3532 			 * This is an orphan in the tree root. Currently these
3533 			 * could come from 2 sources:
3534 			 *  a) a root (snapshot/subvolume) deletion in progress
3535 			 *  b) a free space cache inode
3536 			 * We need to distinguish those two, as the orphan item
3537 			 * for a root must not get deleted before the deletion
3538 			 * of the snapshot/subvolume's tree completes.
3539 			 *
3540 			 * btrfs_find_orphan_roots() ran before us, which has
3541 			 * found all deleted roots and loaded them into
3542 			 * fs_info->fs_roots_radix. So here we can find if an
3543 			 * orphan item corresponds to a deleted root by looking
3544 			 * up the root from that radix tree.
3545 			 */
3546 
3547 			spin_lock(&fs_info->fs_roots_radix_lock);
3548 			dead_root = radix_tree_lookup(&fs_info->fs_roots_radix,
3549 							 (unsigned long)found_key.objectid);
3550 			if (dead_root && btrfs_root_refs(&dead_root->root_item) == 0)
3551 				is_dead_root = 1;
3552 			spin_unlock(&fs_info->fs_roots_radix_lock);
3553 
3554 			if (is_dead_root) {
3555 				/* prevent this orphan from being found again */
3556 				key.offset = found_key.objectid - 1;
3557 				continue;
3558 			}
3559 
3560 		}
3561 
3562 		/*
3563 		 * If we have an inode with links, there are a couple of
3564 		 * possibilities:
3565 		 *
3566 		 * 1. We were halfway through creating fsverity metadata for the
3567 		 * file. In that case, the orphan item represents incomplete
3568 		 * fsverity metadata which must be cleaned up with
3569 		 * btrfs_drop_verity_items and deleting the orphan item.
3570 
3571 		 * 2. Old kernels (before v3.12) used to create an
3572 		 * orphan item for truncate indicating that there were possibly
3573 		 * extent items past i_size that needed to be deleted. In v3.12,
3574 		 * truncate was changed to update i_size in sync with the extent
3575 		 * items, but the (useless) orphan item was still created. Since
3576 		 * v4.18, we don't create the orphan item for truncate at all.
3577 		 *
3578 		 * So, this item could mean that we need to do a truncate, but
3579 		 * only if this filesystem was last used on a pre-v3.12 kernel
3580 		 * and was not cleanly unmounted. The odds of that are quite
3581 		 * slim, and it's a pain to do the truncate now, so just delete
3582 		 * the orphan item.
3583 		 *
3584 		 * It's also possible that this orphan item was supposed to be
3585 		 * deleted but wasn't. The inode number may have been reused,
3586 		 * but either way, we can delete the orphan item.
3587 		 */
3588 		if (!inode || inode->i_nlink) {
3589 			if (inode) {
3590 				ret = btrfs_drop_verity_items(BTRFS_I(inode));
3591 				iput(inode);
3592 				inode = NULL;
3593 				if (ret)
3594 					goto out;
3595 			}
3596 			trans = btrfs_start_transaction(root, 1);
3597 			if (IS_ERR(trans)) {
3598 				ret = PTR_ERR(trans);
3599 				goto out;
3600 			}
3601 			btrfs_debug(fs_info, "auto deleting %Lu",
3602 				    found_key.objectid);
3603 			ret = btrfs_del_orphan_item(trans, root,
3604 						    found_key.objectid);
3605 			btrfs_end_transaction(trans);
3606 			if (ret)
3607 				goto out;
3608 			continue;
3609 		}
3610 
3611 		nr_unlink++;
3612 
3613 		/* this will do delete_inode and everything for us */
3614 		iput(inode);
3615 	}
3616 	/* release the path since we're done with it */
3617 	btrfs_release_path(path);
3618 
3619 	if (test_bit(BTRFS_ROOT_ORPHAN_ITEM_INSERTED, &root->state)) {
3620 		trans = btrfs_join_transaction(root);
3621 		if (!IS_ERR(trans))
3622 			btrfs_end_transaction(trans);
3623 	}
3624 
3625 	if (nr_unlink)
3626 		btrfs_debug(fs_info, "unlinked %d orphans", nr_unlink);
3627 
3628 out:
3629 	if (ret)
3630 		btrfs_err(fs_info, "could not do orphan cleanup %d", ret);
3631 	btrfs_free_path(path);
3632 	return ret;
3633 }
3634 
3635 /*
3636  * very simple check to peek ahead in the leaf looking for xattrs.  If we
3637  * don't find any xattrs, we know there can't be any acls.
3638  *
3639  * slot is the slot the inode is in, objectid is the objectid of the inode
3640  */
3641 static noinline int acls_after_inode_item(struct extent_buffer *leaf,
3642 					  int slot, u64 objectid,
3643 					  int *first_xattr_slot)
3644 {
3645 	u32 nritems = btrfs_header_nritems(leaf);
3646 	struct btrfs_key found_key;
3647 	static u64 xattr_access = 0;
3648 	static u64 xattr_default = 0;
3649 	int scanned = 0;
3650 
3651 	if (!xattr_access) {
3652 		xattr_access = btrfs_name_hash(XATTR_NAME_POSIX_ACL_ACCESS,
3653 					strlen(XATTR_NAME_POSIX_ACL_ACCESS));
3654 		xattr_default = btrfs_name_hash(XATTR_NAME_POSIX_ACL_DEFAULT,
3655 					strlen(XATTR_NAME_POSIX_ACL_DEFAULT));
3656 	}
3657 
3658 	slot++;
3659 	*first_xattr_slot = -1;
3660 	while (slot < nritems) {
3661 		btrfs_item_key_to_cpu(leaf, &found_key, slot);
3662 
3663 		/* we found a different objectid, there must not be acls */
3664 		if (found_key.objectid != objectid)
3665 			return 0;
3666 
3667 		/* we found an xattr, assume we've got an acl */
3668 		if (found_key.type == BTRFS_XATTR_ITEM_KEY) {
3669 			if (*first_xattr_slot == -1)
3670 				*first_xattr_slot = slot;
3671 			if (found_key.offset == xattr_access ||
3672 			    found_key.offset == xattr_default)
3673 				return 1;
3674 		}
3675 
3676 		/*
3677 		 * we found a key greater than an xattr key, there can't
3678 		 * be any acls later on
3679 		 */
3680 		if (found_key.type > BTRFS_XATTR_ITEM_KEY)
3681 			return 0;
3682 
3683 		slot++;
3684 		scanned++;
3685 
3686 		/*
3687 		 * it goes inode, inode backrefs, xattrs, extents,
3688 		 * so if there are a ton of hard links to an inode there can
3689 		 * be a lot of backrefs.  Don't waste time searching too hard,
3690 		 * this is just an optimization
3691 		 */
3692 		if (scanned >= 8)
3693 			break;
3694 	}
3695 	/* we hit the end of the leaf before we found an xattr or
3696 	 * something larger than an xattr.  We have to assume the inode
3697 	 * has acls
3698 	 */
3699 	if (*first_xattr_slot == -1)
3700 		*first_xattr_slot = slot;
3701 	return 1;
3702 }
3703 
3704 /*
3705  * read an inode from the btree into the in-memory inode
3706  */
3707 static int btrfs_read_locked_inode(struct inode *inode,
3708 				   struct btrfs_path *in_path)
3709 {
3710 	struct btrfs_fs_info *fs_info = btrfs_sb(inode->i_sb);
3711 	struct btrfs_path *path = in_path;
3712 	struct extent_buffer *leaf;
3713 	struct btrfs_inode_item *inode_item;
3714 	struct btrfs_root *root = BTRFS_I(inode)->root;
3715 	struct btrfs_key location;
3716 	unsigned long ptr;
3717 	int maybe_acls;
3718 	u32 rdev;
3719 	int ret;
3720 	bool filled = false;
3721 	int first_xattr_slot;
3722 
3723 	ret = btrfs_fill_inode(inode, &rdev);
3724 	if (!ret)
3725 		filled = true;
3726 
3727 	if (!path) {
3728 		path = btrfs_alloc_path();
3729 		if (!path)
3730 			return -ENOMEM;
3731 	}
3732 
3733 	memcpy(&location, &BTRFS_I(inode)->location, sizeof(location));
3734 
3735 	ret = btrfs_lookup_inode(NULL, root, path, &location, 0);
3736 	if (ret) {
3737 		if (path != in_path)
3738 			btrfs_free_path(path);
3739 		return ret;
3740 	}
3741 
3742 	leaf = path->nodes[0];
3743 
3744 	if (filled)
3745 		goto cache_index;
3746 
3747 	inode_item = btrfs_item_ptr(leaf, path->slots[0],
3748 				    struct btrfs_inode_item);
3749 	inode->i_mode = btrfs_inode_mode(leaf, inode_item);
3750 	set_nlink(inode, btrfs_inode_nlink(leaf, inode_item));
3751 	i_uid_write(inode, btrfs_inode_uid(leaf, inode_item));
3752 	i_gid_write(inode, btrfs_inode_gid(leaf, inode_item));
3753 	btrfs_i_size_write(BTRFS_I(inode), btrfs_inode_size(leaf, inode_item));
3754 	btrfs_inode_set_file_extent_range(BTRFS_I(inode), 0,
3755 			round_up(i_size_read(inode), fs_info->sectorsize));
3756 
3757 	inode->i_atime.tv_sec = btrfs_timespec_sec(leaf, &inode_item->atime);
3758 	inode->i_atime.tv_nsec = btrfs_timespec_nsec(leaf, &inode_item->atime);
3759 
3760 	inode->i_mtime.tv_sec = btrfs_timespec_sec(leaf, &inode_item->mtime);
3761 	inode->i_mtime.tv_nsec = btrfs_timespec_nsec(leaf, &inode_item->mtime);
3762 
3763 	inode_set_ctime(inode, btrfs_timespec_sec(leaf, &inode_item->ctime),
3764 			btrfs_timespec_nsec(leaf, &inode_item->ctime));
3765 
3766 	BTRFS_I(inode)->i_otime.tv_sec =
3767 		btrfs_timespec_sec(leaf, &inode_item->otime);
3768 	BTRFS_I(inode)->i_otime.tv_nsec =
3769 		btrfs_timespec_nsec(leaf, &inode_item->otime);
3770 
3771 	inode_set_bytes(inode, btrfs_inode_nbytes(leaf, inode_item));
3772 	BTRFS_I(inode)->generation = btrfs_inode_generation(leaf, inode_item);
3773 	BTRFS_I(inode)->last_trans = btrfs_inode_transid(leaf, inode_item);
3774 
3775 	inode_set_iversion_queried(inode,
3776 				   btrfs_inode_sequence(leaf, inode_item));
3777 	inode->i_generation = BTRFS_I(inode)->generation;
3778 	inode->i_rdev = 0;
3779 	rdev = btrfs_inode_rdev(leaf, inode_item);
3780 
3781 	BTRFS_I(inode)->index_cnt = (u64)-1;
3782 	btrfs_inode_split_flags(btrfs_inode_flags(leaf, inode_item),
3783 				&BTRFS_I(inode)->flags, &BTRFS_I(inode)->ro_flags);
3784 
3785 cache_index:
3786 	/*
3787 	 * If we were modified in the current generation and evicted from memory
3788 	 * and then re-read we need to do a full sync since we don't have any
3789 	 * idea about which extents were modified before we were evicted from
3790 	 * cache.
3791 	 *
3792 	 * This is required for both inode re-read from disk and delayed inode
3793 	 * in delayed_nodes_tree.
3794 	 */
3795 	if (BTRFS_I(inode)->last_trans == fs_info->generation)
3796 		set_bit(BTRFS_INODE_NEEDS_FULL_SYNC,
3797 			&BTRFS_I(inode)->runtime_flags);
3798 
3799 	/*
3800 	 * We don't persist the id of the transaction where an unlink operation
3801 	 * against the inode was last made. So here we assume the inode might
3802 	 * have been evicted, and therefore the exact value of last_unlink_trans
3803 	 * lost, and set it to last_trans to avoid metadata inconsistencies
3804 	 * between the inode and its parent if the inode is fsync'ed and the log
3805 	 * replayed. For example, in the scenario:
3806 	 *
3807 	 * touch mydir/foo
3808 	 * ln mydir/foo mydir/bar
3809 	 * sync
3810 	 * unlink mydir/bar
3811 	 * echo 2 > /proc/sys/vm/drop_caches   # evicts inode
3812 	 * xfs_io -c fsync mydir/foo
3813 	 * <power failure>
3814 	 * mount fs, triggers fsync log replay
3815 	 *
3816 	 * We must make sure that when we fsync our inode foo we also log its
3817 	 * parent inode, otherwise after log replay the parent still has the
3818 	 * dentry with the "bar" name but our inode foo has a link count of 1
3819 	 * and doesn't have an inode ref with the name "bar" anymore.
3820 	 *
3821 	 * Setting last_unlink_trans to last_trans is a pessimistic approach,
3822 	 * but it guarantees correctness at the expense of occasional full
3823 	 * transaction commits on fsync if our inode is a directory, or if our
3824 	 * inode is not a directory, logging its parent unnecessarily.
3825 	 */
3826 	BTRFS_I(inode)->last_unlink_trans = BTRFS_I(inode)->last_trans;
3827 
3828 	/*
3829 	 * Same logic as for last_unlink_trans. We don't persist the generation
3830 	 * of the last transaction where this inode was used for a reflink
3831 	 * operation, so after eviction and reloading the inode we must be
3832 	 * pessimistic and assume the last transaction that modified the inode.
3833 	 */
3834 	BTRFS_I(inode)->last_reflink_trans = BTRFS_I(inode)->last_trans;
3835 
3836 	path->slots[0]++;
3837 	if (inode->i_nlink != 1 ||
3838 	    path->slots[0] >= btrfs_header_nritems(leaf))
3839 		goto cache_acl;
3840 
3841 	btrfs_item_key_to_cpu(leaf, &location, path->slots[0]);
3842 	if (location.objectid != btrfs_ino(BTRFS_I(inode)))
3843 		goto cache_acl;
3844 
3845 	ptr = btrfs_item_ptr_offset(leaf, path->slots[0]);
3846 	if (location.type == BTRFS_INODE_REF_KEY) {
3847 		struct btrfs_inode_ref *ref;
3848 
3849 		ref = (struct btrfs_inode_ref *)ptr;
3850 		BTRFS_I(inode)->dir_index = btrfs_inode_ref_index(leaf, ref);
3851 	} else if (location.type == BTRFS_INODE_EXTREF_KEY) {
3852 		struct btrfs_inode_extref *extref;
3853 
3854 		extref = (struct btrfs_inode_extref *)ptr;
3855 		BTRFS_I(inode)->dir_index = btrfs_inode_extref_index(leaf,
3856 								     extref);
3857 	}
3858 cache_acl:
3859 	/*
3860 	 * try to precache a NULL acl entry for files that don't have
3861 	 * any xattrs or acls
3862 	 */
3863 	maybe_acls = acls_after_inode_item(leaf, path->slots[0],
3864 			btrfs_ino(BTRFS_I(inode)), &first_xattr_slot);
3865 	if (first_xattr_slot != -1) {
3866 		path->slots[0] = first_xattr_slot;
3867 		ret = btrfs_load_inode_props(inode, path);
3868 		if (ret)
3869 			btrfs_err(fs_info,
3870 				  "error loading props for ino %llu (root %llu): %d",
3871 				  btrfs_ino(BTRFS_I(inode)),
3872 				  root->root_key.objectid, ret);
3873 	}
3874 	if (path != in_path)
3875 		btrfs_free_path(path);
3876 
3877 	if (!maybe_acls)
3878 		cache_no_acl(inode);
3879 
3880 	switch (inode->i_mode & S_IFMT) {
3881 	case S_IFREG:
3882 		inode->i_mapping->a_ops = &btrfs_aops;
3883 		inode->i_fop = &btrfs_file_operations;
3884 		inode->i_op = &btrfs_file_inode_operations;
3885 		break;
3886 	case S_IFDIR:
3887 		inode->i_fop = &btrfs_dir_file_operations;
3888 		inode->i_op = &btrfs_dir_inode_operations;
3889 		break;
3890 	case S_IFLNK:
3891 		inode->i_op = &btrfs_symlink_inode_operations;
3892 		inode_nohighmem(inode);
3893 		inode->i_mapping->a_ops = &btrfs_aops;
3894 		break;
3895 	default:
3896 		inode->i_op = &btrfs_special_inode_operations;
3897 		init_special_inode(inode, inode->i_mode, rdev);
3898 		break;
3899 	}
3900 
3901 	btrfs_sync_inode_flags_to_i_flags(inode);
3902 	return 0;
3903 }
3904 
3905 /*
3906  * given a leaf and an inode, copy the inode fields into the leaf
3907  */
3908 static void fill_inode_item(struct btrfs_trans_handle *trans,
3909 			    struct extent_buffer *leaf,
3910 			    struct btrfs_inode_item *item,
3911 			    struct inode *inode)
3912 {
3913 	struct btrfs_map_token token;
3914 	u64 flags;
3915 
3916 	btrfs_init_map_token(&token, leaf);
3917 
3918 	btrfs_set_token_inode_uid(&token, item, i_uid_read(inode));
3919 	btrfs_set_token_inode_gid(&token, item, i_gid_read(inode));
3920 	btrfs_set_token_inode_size(&token, item, BTRFS_I(inode)->disk_i_size);
3921 	btrfs_set_token_inode_mode(&token, item, inode->i_mode);
3922 	btrfs_set_token_inode_nlink(&token, item, inode->i_nlink);
3923 
3924 	btrfs_set_token_timespec_sec(&token, &item->atime,
3925 				     inode->i_atime.tv_sec);
3926 	btrfs_set_token_timespec_nsec(&token, &item->atime,
3927 				      inode->i_atime.tv_nsec);
3928 
3929 	btrfs_set_token_timespec_sec(&token, &item->mtime,
3930 				     inode->i_mtime.tv_sec);
3931 	btrfs_set_token_timespec_nsec(&token, &item->mtime,
3932 				      inode->i_mtime.tv_nsec);
3933 
3934 	btrfs_set_token_timespec_sec(&token, &item->ctime,
3935 				     inode_get_ctime(inode).tv_sec);
3936 	btrfs_set_token_timespec_nsec(&token, &item->ctime,
3937 				      inode_get_ctime(inode).tv_nsec);
3938 
3939 	btrfs_set_token_timespec_sec(&token, &item->otime,
3940 				     BTRFS_I(inode)->i_otime.tv_sec);
3941 	btrfs_set_token_timespec_nsec(&token, &item->otime,
3942 				      BTRFS_I(inode)->i_otime.tv_nsec);
3943 
3944 	btrfs_set_token_inode_nbytes(&token, item, inode_get_bytes(inode));
3945 	btrfs_set_token_inode_generation(&token, item,
3946 					 BTRFS_I(inode)->generation);
3947 	btrfs_set_token_inode_sequence(&token, item, inode_peek_iversion(inode));
3948 	btrfs_set_token_inode_transid(&token, item, trans->transid);
3949 	btrfs_set_token_inode_rdev(&token, item, inode->i_rdev);
3950 	flags = btrfs_inode_combine_flags(BTRFS_I(inode)->flags,
3951 					  BTRFS_I(inode)->ro_flags);
3952 	btrfs_set_token_inode_flags(&token, item, flags);
3953 	btrfs_set_token_inode_block_group(&token, item, 0);
3954 }
3955 
3956 /*
3957  * copy everything in the in-memory inode into the btree.
3958  */
3959 static noinline int btrfs_update_inode_item(struct btrfs_trans_handle *trans,
3960 				struct btrfs_root *root,
3961 				struct btrfs_inode *inode)
3962 {
3963 	struct btrfs_inode_item *inode_item;
3964 	struct btrfs_path *path;
3965 	struct extent_buffer *leaf;
3966 	int ret;
3967 
3968 	path = btrfs_alloc_path();
3969 	if (!path)
3970 		return -ENOMEM;
3971 
3972 	ret = btrfs_lookup_inode(trans, root, path, &inode->location, 1);
3973 	if (ret) {
3974 		if (ret > 0)
3975 			ret = -ENOENT;
3976 		goto failed;
3977 	}
3978 
3979 	leaf = path->nodes[0];
3980 	inode_item = btrfs_item_ptr(leaf, path->slots[0],
3981 				    struct btrfs_inode_item);
3982 
3983 	fill_inode_item(trans, leaf, inode_item, &inode->vfs_inode);
3984 	btrfs_mark_buffer_dirty(trans, leaf);
3985 	btrfs_set_inode_last_trans(trans, inode);
3986 	ret = 0;
3987 failed:
3988 	btrfs_free_path(path);
3989 	return ret;
3990 }
3991 
3992 /*
3993  * copy everything in the in-memory inode into the btree.
3994  */
3995 noinline int btrfs_update_inode(struct btrfs_trans_handle *trans,
3996 				struct btrfs_root *root,
3997 				struct btrfs_inode *inode)
3998 {
3999 	struct btrfs_fs_info *fs_info = root->fs_info;
4000 	int ret;
4001 
4002 	/*
4003 	 * If the inode is a free space inode, we can deadlock during commit
4004 	 * if we put it into the delayed code.
4005 	 *
4006 	 * The data relocation inode should also be directly updated
4007 	 * without delay
4008 	 */
4009 	if (!btrfs_is_free_space_inode(inode)
4010 	    && !btrfs_is_data_reloc_root(root)
4011 	    && !test_bit(BTRFS_FS_LOG_RECOVERING, &fs_info->flags)) {
4012 		btrfs_update_root_times(trans, root);
4013 
4014 		ret = btrfs_delayed_update_inode(trans, root, inode);
4015 		if (!ret)
4016 			btrfs_set_inode_last_trans(trans, inode);
4017 		return ret;
4018 	}
4019 
4020 	return btrfs_update_inode_item(trans, root, inode);
4021 }
4022 
4023 int btrfs_update_inode_fallback(struct btrfs_trans_handle *trans,
4024 				struct btrfs_root *root, struct btrfs_inode *inode)
4025 {
4026 	int ret;
4027 
4028 	ret = btrfs_update_inode(trans, root, inode);
4029 	if (ret == -ENOSPC)
4030 		return btrfs_update_inode_item(trans, root, inode);
4031 	return ret;
4032 }
4033 
4034 /*
4035  * unlink helper that gets used here in inode.c and in the tree logging
4036  * recovery code.  It remove a link in a directory with a given name, and
4037  * also drops the back refs in the inode to the directory
4038  */
4039 static int __btrfs_unlink_inode(struct btrfs_trans_handle *trans,
4040 				struct btrfs_inode *dir,
4041 				struct btrfs_inode *inode,
4042 				const struct fscrypt_str *name,
4043 				struct btrfs_rename_ctx *rename_ctx)
4044 {
4045 	struct btrfs_root *root = dir->root;
4046 	struct btrfs_fs_info *fs_info = root->fs_info;
4047 	struct btrfs_path *path;
4048 	int ret = 0;
4049 	struct btrfs_dir_item *di;
4050 	u64 index;
4051 	u64 ino = btrfs_ino(inode);
4052 	u64 dir_ino = btrfs_ino(dir);
4053 
4054 	path = btrfs_alloc_path();
4055 	if (!path) {
4056 		ret = -ENOMEM;
4057 		goto out;
4058 	}
4059 
4060 	di = btrfs_lookup_dir_item(trans, root, path, dir_ino, name, -1);
4061 	if (IS_ERR_OR_NULL(di)) {
4062 		ret = di ? PTR_ERR(di) : -ENOENT;
4063 		goto err;
4064 	}
4065 	ret = btrfs_delete_one_dir_name(trans, root, path, di);
4066 	if (ret)
4067 		goto err;
4068 	btrfs_release_path(path);
4069 
4070 	/*
4071 	 * If we don't have dir index, we have to get it by looking up
4072 	 * the inode ref, since we get the inode ref, remove it directly,
4073 	 * it is unnecessary to do delayed deletion.
4074 	 *
4075 	 * But if we have dir index, needn't search inode ref to get it.
4076 	 * Since the inode ref is close to the inode item, it is better
4077 	 * that we delay to delete it, and just do this deletion when
4078 	 * we update the inode item.
4079 	 */
4080 	if (inode->dir_index) {
4081 		ret = btrfs_delayed_delete_inode_ref(inode);
4082 		if (!ret) {
4083 			index = inode->dir_index;
4084 			goto skip_backref;
4085 		}
4086 	}
4087 
4088 	ret = btrfs_del_inode_ref(trans, root, name, ino, dir_ino, &index);
4089 	if (ret) {
4090 		btrfs_info(fs_info,
4091 			"failed to delete reference to %.*s, inode %llu parent %llu",
4092 			name->len, name->name, ino, dir_ino);
4093 		btrfs_abort_transaction(trans, ret);
4094 		goto err;
4095 	}
4096 skip_backref:
4097 	if (rename_ctx)
4098 		rename_ctx->index = index;
4099 
4100 	ret = btrfs_delete_delayed_dir_index(trans, dir, index);
4101 	if (ret) {
4102 		btrfs_abort_transaction(trans, ret);
4103 		goto err;
4104 	}
4105 
4106 	/*
4107 	 * If we are in a rename context, we don't need to update anything in the
4108 	 * log. That will be done later during the rename by btrfs_log_new_name().
4109 	 * Besides that, doing it here would only cause extra unnecessary btree
4110 	 * operations on the log tree, increasing latency for applications.
4111 	 */
4112 	if (!rename_ctx) {
4113 		btrfs_del_inode_ref_in_log(trans, root, name, inode, dir_ino);
4114 		btrfs_del_dir_entries_in_log(trans, root, name, dir, index);
4115 	}
4116 
4117 	/*
4118 	 * If we have a pending delayed iput we could end up with the final iput
4119 	 * being run in btrfs-cleaner context.  If we have enough of these built
4120 	 * up we can end up burning a lot of time in btrfs-cleaner without any
4121 	 * way to throttle the unlinks.  Since we're currently holding a ref on
4122 	 * the inode we can run the delayed iput here without any issues as the
4123 	 * final iput won't be done until after we drop the ref we're currently
4124 	 * holding.
4125 	 */
4126 	btrfs_run_delayed_iput(fs_info, inode);
4127 err:
4128 	btrfs_free_path(path);
4129 	if (ret)
4130 		goto out;
4131 
4132 	btrfs_i_size_write(dir, dir->vfs_inode.i_size - name->len * 2);
4133 	inode_inc_iversion(&inode->vfs_inode);
4134 	inode_inc_iversion(&dir->vfs_inode);
4135 	inode_set_ctime_current(&inode->vfs_inode);
4136 	dir->vfs_inode.i_mtime = inode_set_ctime_current(&dir->vfs_inode);
4137 	ret = btrfs_update_inode(trans, root, dir);
4138 out:
4139 	return ret;
4140 }
4141 
4142 int btrfs_unlink_inode(struct btrfs_trans_handle *trans,
4143 		       struct btrfs_inode *dir, struct btrfs_inode *inode,
4144 		       const struct fscrypt_str *name)
4145 {
4146 	int ret;
4147 
4148 	ret = __btrfs_unlink_inode(trans, dir, inode, name, NULL);
4149 	if (!ret) {
4150 		drop_nlink(&inode->vfs_inode);
4151 		ret = btrfs_update_inode(trans, inode->root, inode);
4152 	}
4153 	return ret;
4154 }
4155 
4156 /*
4157  * helper to start transaction for unlink and rmdir.
4158  *
4159  * unlink and rmdir are special in btrfs, they do not always free space, so
4160  * if we cannot make our reservations the normal way try and see if there is
4161  * plenty of slack room in the global reserve to migrate, otherwise we cannot
4162  * allow the unlink to occur.
4163  */
4164 static struct btrfs_trans_handle *__unlink_start_trans(struct btrfs_inode *dir)
4165 {
4166 	struct btrfs_root *root = dir->root;
4167 
4168 	return btrfs_start_transaction_fallback_global_rsv(root,
4169 						   BTRFS_UNLINK_METADATA_UNITS);
4170 }
4171 
4172 static int btrfs_unlink(struct inode *dir, struct dentry *dentry)
4173 {
4174 	struct btrfs_trans_handle *trans;
4175 	struct inode *inode = d_inode(dentry);
4176 	int ret;
4177 	struct fscrypt_name fname;
4178 
4179 	ret = fscrypt_setup_filename(dir, &dentry->d_name, 1, &fname);
4180 	if (ret)
4181 		return ret;
4182 
4183 	/* This needs to handle no-key deletions later on */
4184 
4185 	trans = __unlink_start_trans(BTRFS_I(dir));
4186 	if (IS_ERR(trans)) {
4187 		ret = PTR_ERR(trans);
4188 		goto fscrypt_free;
4189 	}
4190 
4191 	btrfs_record_unlink_dir(trans, BTRFS_I(dir), BTRFS_I(d_inode(dentry)),
4192 				false);
4193 
4194 	ret = btrfs_unlink_inode(trans, BTRFS_I(dir), BTRFS_I(d_inode(dentry)),
4195 				 &fname.disk_name);
4196 	if (ret)
4197 		goto end_trans;
4198 
4199 	if (inode->i_nlink == 0) {
4200 		ret = btrfs_orphan_add(trans, BTRFS_I(inode));
4201 		if (ret)
4202 			goto end_trans;
4203 	}
4204 
4205 end_trans:
4206 	btrfs_end_transaction(trans);
4207 	btrfs_btree_balance_dirty(BTRFS_I(dir)->root->fs_info);
4208 fscrypt_free:
4209 	fscrypt_free_filename(&fname);
4210 	return ret;
4211 }
4212 
4213 static int btrfs_unlink_subvol(struct btrfs_trans_handle *trans,
4214 			       struct btrfs_inode *dir, struct dentry *dentry)
4215 {
4216 	struct btrfs_root *root = dir->root;
4217 	struct btrfs_inode *inode = BTRFS_I(d_inode(dentry));
4218 	struct btrfs_path *path;
4219 	struct extent_buffer *leaf;
4220 	struct btrfs_dir_item *di;
4221 	struct btrfs_key key;
4222 	u64 index;
4223 	int ret;
4224 	u64 objectid;
4225 	u64 dir_ino = btrfs_ino(dir);
4226 	struct fscrypt_name fname;
4227 
4228 	ret = fscrypt_setup_filename(&dir->vfs_inode, &dentry->d_name, 1, &fname);
4229 	if (ret)
4230 		return ret;
4231 
4232 	/* This needs to handle no-key deletions later on */
4233 
4234 	if (btrfs_ino(inode) == BTRFS_FIRST_FREE_OBJECTID) {
4235 		objectid = inode->root->root_key.objectid;
4236 	} else if (btrfs_ino(inode) == BTRFS_EMPTY_SUBVOL_DIR_OBJECTID) {
4237 		objectid = inode->location.objectid;
4238 	} else {
4239 		WARN_ON(1);
4240 		fscrypt_free_filename(&fname);
4241 		return -EINVAL;
4242 	}
4243 
4244 	path = btrfs_alloc_path();
4245 	if (!path) {
4246 		ret = -ENOMEM;
4247 		goto out;
4248 	}
4249 
4250 	di = btrfs_lookup_dir_item(trans, root, path, dir_ino,
4251 				   &fname.disk_name, -1);
4252 	if (IS_ERR_OR_NULL(di)) {
4253 		ret = di ? PTR_ERR(di) : -ENOENT;
4254 		goto out;
4255 	}
4256 
4257 	leaf = path->nodes[0];
4258 	btrfs_dir_item_key_to_cpu(leaf, di, &key);
4259 	WARN_ON(key.type != BTRFS_ROOT_ITEM_KEY || key.objectid != objectid);
4260 	ret = btrfs_delete_one_dir_name(trans, root, path, di);
4261 	if (ret) {
4262 		btrfs_abort_transaction(trans, ret);
4263 		goto out;
4264 	}
4265 	btrfs_release_path(path);
4266 
4267 	/*
4268 	 * This is a placeholder inode for a subvolume we didn't have a
4269 	 * reference to at the time of the snapshot creation.  In the meantime
4270 	 * we could have renamed the real subvol link into our snapshot, so
4271 	 * depending on btrfs_del_root_ref to return -ENOENT here is incorrect.
4272 	 * Instead simply lookup the dir_index_item for this entry so we can
4273 	 * remove it.  Otherwise we know we have a ref to the root and we can
4274 	 * call btrfs_del_root_ref, and it _shouldn't_ fail.
4275 	 */
4276 	if (btrfs_ino(inode) == BTRFS_EMPTY_SUBVOL_DIR_OBJECTID) {
4277 		di = btrfs_search_dir_index_item(root, path, dir_ino, &fname.disk_name);
4278 		if (IS_ERR_OR_NULL(di)) {
4279 			if (!di)
4280 				ret = -ENOENT;
4281 			else
4282 				ret = PTR_ERR(di);
4283 			btrfs_abort_transaction(trans, ret);
4284 			goto out;
4285 		}
4286 
4287 		leaf = path->nodes[0];
4288 		btrfs_item_key_to_cpu(leaf, &key, path->slots[0]);
4289 		index = key.offset;
4290 		btrfs_release_path(path);
4291 	} else {
4292 		ret = btrfs_del_root_ref(trans, objectid,
4293 					 root->root_key.objectid, dir_ino,
4294 					 &index, &fname.disk_name);
4295 		if (ret) {
4296 			btrfs_abort_transaction(trans, ret);
4297 			goto out;
4298 		}
4299 	}
4300 
4301 	ret = btrfs_delete_delayed_dir_index(trans, dir, index);
4302 	if (ret) {
4303 		btrfs_abort_transaction(trans, ret);
4304 		goto out;
4305 	}
4306 
4307 	btrfs_i_size_write(dir, dir->vfs_inode.i_size - fname.disk_name.len * 2);
4308 	inode_inc_iversion(&dir->vfs_inode);
4309 	dir->vfs_inode.i_mtime = inode_set_ctime_current(&dir->vfs_inode);
4310 	ret = btrfs_update_inode_fallback(trans, root, dir);
4311 	if (ret)
4312 		btrfs_abort_transaction(trans, ret);
4313 out:
4314 	btrfs_free_path(path);
4315 	fscrypt_free_filename(&fname);
4316 	return ret;
4317 }
4318 
4319 /*
4320  * Helper to check if the subvolume references other subvolumes or if it's
4321  * default.
4322  */
4323 static noinline int may_destroy_subvol(struct btrfs_root *root)
4324 {
4325 	struct btrfs_fs_info *fs_info = root->fs_info;
4326 	struct btrfs_path *path;
4327 	struct btrfs_dir_item *di;
4328 	struct btrfs_key key;
4329 	struct fscrypt_str name = FSTR_INIT("default", 7);
4330 	u64 dir_id;
4331 	int ret;
4332 
4333 	path = btrfs_alloc_path();
4334 	if (!path)
4335 		return -ENOMEM;
4336 
4337 	/* Make sure this root isn't set as the default subvol */
4338 	dir_id = btrfs_super_root_dir(fs_info->super_copy);
4339 	di = btrfs_lookup_dir_item(NULL, fs_info->tree_root, path,
4340 				   dir_id, &name, 0);
4341 	if (di && !IS_ERR(di)) {
4342 		btrfs_dir_item_key_to_cpu(path->nodes[0], di, &key);
4343 		if (key.objectid == root->root_key.objectid) {
4344 			ret = -EPERM;
4345 			btrfs_err(fs_info,
4346 				  "deleting default subvolume %llu is not allowed",
4347 				  key.objectid);
4348 			goto out;
4349 		}
4350 		btrfs_release_path(path);
4351 	}
4352 
4353 	key.objectid = root->root_key.objectid;
4354 	key.type = BTRFS_ROOT_REF_KEY;
4355 	key.offset = (u64)-1;
4356 
4357 	ret = btrfs_search_slot(NULL, fs_info->tree_root, &key, path, 0, 0);
4358 	if (ret < 0)
4359 		goto out;
4360 	BUG_ON(ret == 0);
4361 
4362 	ret = 0;
4363 	if (path->slots[0] > 0) {
4364 		path->slots[0]--;
4365 		btrfs_item_key_to_cpu(path->nodes[0], &key, path->slots[0]);
4366 		if (key.objectid == root->root_key.objectid &&
4367 		    key.type == BTRFS_ROOT_REF_KEY)
4368 			ret = -ENOTEMPTY;
4369 	}
4370 out:
4371 	btrfs_free_path(path);
4372 	return ret;
4373 }
4374 
4375 /* Delete all dentries for inodes belonging to the root */
4376 static void btrfs_prune_dentries(struct btrfs_root *root)
4377 {
4378 	struct btrfs_fs_info *fs_info = root->fs_info;
4379 	struct rb_node *node;
4380 	struct rb_node *prev;
4381 	struct btrfs_inode *entry;
4382 	struct inode *inode;
4383 	u64 objectid = 0;
4384 
4385 	if (!BTRFS_FS_ERROR(fs_info))
4386 		WARN_ON(btrfs_root_refs(&root->root_item) != 0);
4387 
4388 	spin_lock(&root->inode_lock);
4389 again:
4390 	node = root->inode_tree.rb_node;
4391 	prev = NULL;
4392 	while (node) {
4393 		prev = node;
4394 		entry = rb_entry(node, struct btrfs_inode, rb_node);
4395 
4396 		if (objectid < btrfs_ino(entry))
4397 			node = node->rb_left;
4398 		else if (objectid > btrfs_ino(entry))
4399 			node = node->rb_right;
4400 		else
4401 			break;
4402 	}
4403 	if (!node) {
4404 		while (prev) {
4405 			entry = rb_entry(prev, struct btrfs_inode, rb_node);
4406 			if (objectid <= btrfs_ino(entry)) {
4407 				node = prev;
4408 				break;
4409 			}
4410 			prev = rb_next(prev);
4411 		}
4412 	}
4413 	while (node) {
4414 		entry = rb_entry(node, struct btrfs_inode, rb_node);
4415 		objectid = btrfs_ino(entry) + 1;
4416 		inode = igrab(&entry->vfs_inode);
4417 		if (inode) {
4418 			spin_unlock(&root->inode_lock);
4419 			if (atomic_read(&inode->i_count) > 1)
4420 				d_prune_aliases(inode);
4421 			/*
4422 			 * btrfs_drop_inode will have it removed from the inode
4423 			 * cache when its usage count hits zero.
4424 			 */
4425 			iput(inode);
4426 			cond_resched();
4427 			spin_lock(&root->inode_lock);
4428 			goto again;
4429 		}
4430 
4431 		if (cond_resched_lock(&root->inode_lock))
4432 			goto again;
4433 
4434 		node = rb_next(node);
4435 	}
4436 	spin_unlock(&root->inode_lock);
4437 }
4438 
4439 int btrfs_delete_subvolume(struct btrfs_inode *dir, struct dentry *dentry)
4440 {
4441 	struct btrfs_fs_info *fs_info = btrfs_sb(dentry->d_sb);
4442 	struct btrfs_root *root = dir->root;
4443 	struct inode *inode = d_inode(dentry);
4444 	struct btrfs_root *dest = BTRFS_I(inode)->root;
4445 	struct btrfs_trans_handle *trans;
4446 	struct btrfs_block_rsv block_rsv;
4447 	u64 root_flags;
4448 	int ret;
4449 
4450 	down_write(&fs_info->subvol_sem);
4451 
4452 	/*
4453 	 * Don't allow to delete a subvolume with send in progress. This is
4454 	 * inside the inode lock so the error handling that has to drop the bit
4455 	 * again is not run concurrently.
4456 	 */
4457 	spin_lock(&dest->root_item_lock);
4458 	if (dest->send_in_progress) {
4459 		spin_unlock(&dest->root_item_lock);
4460 		btrfs_warn(fs_info,
4461 			   "attempt to delete subvolume %llu during send",
4462 			   dest->root_key.objectid);
4463 		ret = -EPERM;
4464 		goto out_up_write;
4465 	}
4466 	if (atomic_read(&dest->nr_swapfiles)) {
4467 		spin_unlock(&dest->root_item_lock);
4468 		btrfs_warn(fs_info,
4469 			   "attempt to delete subvolume %llu with active swapfile",
4470 			   root->root_key.objectid);
4471 		ret = -EPERM;
4472 		goto out_up_write;
4473 	}
4474 	root_flags = btrfs_root_flags(&dest->root_item);
4475 	btrfs_set_root_flags(&dest->root_item,
4476 			     root_flags | BTRFS_ROOT_SUBVOL_DEAD);
4477 	spin_unlock(&dest->root_item_lock);
4478 
4479 	ret = may_destroy_subvol(dest);
4480 	if (ret)
4481 		goto out_undead;
4482 
4483 	btrfs_init_block_rsv(&block_rsv, BTRFS_BLOCK_RSV_TEMP);
4484 	/*
4485 	 * One for dir inode,
4486 	 * two for dir entries,
4487 	 * two for root ref/backref.
4488 	 */
4489 	ret = btrfs_subvolume_reserve_metadata(root, &block_rsv, 5, true);
4490 	if (ret)
4491 		goto out_undead;
4492 
4493 	trans = btrfs_start_transaction(root, 0);
4494 	if (IS_ERR(trans)) {
4495 		ret = PTR_ERR(trans);
4496 		goto out_release;
4497 	}
4498 	trans->block_rsv = &block_rsv;
4499 	trans->bytes_reserved = block_rsv.size;
4500 
4501 	btrfs_record_snapshot_destroy(trans, dir);
4502 
4503 	ret = btrfs_unlink_subvol(trans, dir, dentry);
4504 	if (ret) {
4505 		btrfs_abort_transaction(trans, ret);
4506 		goto out_end_trans;
4507 	}
4508 
4509 	ret = btrfs_record_root_in_trans(trans, dest);
4510 	if (ret) {
4511 		btrfs_abort_transaction(trans, ret);
4512 		goto out_end_trans;
4513 	}
4514 
4515 	memset(&dest->root_item.drop_progress, 0,
4516 		sizeof(dest->root_item.drop_progress));
4517 	btrfs_set_root_drop_level(&dest->root_item, 0);
4518 	btrfs_set_root_refs(&dest->root_item, 0);
4519 
4520 	if (!test_and_set_bit(BTRFS_ROOT_ORPHAN_ITEM_INSERTED, &dest->state)) {
4521 		ret = btrfs_insert_orphan_item(trans,
4522 					fs_info->tree_root,
4523 					dest->root_key.objectid);
4524 		if (ret) {
4525 			btrfs_abort_transaction(trans, ret);
4526 			goto out_end_trans;
4527 		}
4528 	}
4529 
4530 	ret = btrfs_uuid_tree_remove(trans, dest->root_item.uuid,
4531 				  BTRFS_UUID_KEY_SUBVOL,
4532 				  dest->root_key.objectid);
4533 	if (ret && ret != -ENOENT) {
4534 		btrfs_abort_transaction(trans, ret);
4535 		goto out_end_trans;
4536 	}
4537 	if (!btrfs_is_empty_uuid(dest->root_item.received_uuid)) {
4538 		ret = btrfs_uuid_tree_remove(trans,
4539 					  dest->root_item.received_uuid,
4540 					  BTRFS_UUID_KEY_RECEIVED_SUBVOL,
4541 					  dest->root_key.objectid);
4542 		if (ret && ret != -ENOENT) {
4543 			btrfs_abort_transaction(trans, ret);
4544 			goto out_end_trans;
4545 		}
4546 	}
4547 
4548 	free_anon_bdev(dest->anon_dev);
4549 	dest->anon_dev = 0;
4550 out_end_trans:
4551 	trans->block_rsv = NULL;
4552 	trans->bytes_reserved = 0;
4553 	ret = btrfs_end_transaction(trans);
4554 	inode->i_flags |= S_DEAD;
4555 out_release:
4556 	btrfs_subvolume_release_metadata(root, &block_rsv);
4557 out_undead:
4558 	if (ret) {
4559 		spin_lock(&dest->root_item_lock);
4560 		root_flags = btrfs_root_flags(&dest->root_item);
4561 		btrfs_set_root_flags(&dest->root_item,
4562 				root_flags & ~BTRFS_ROOT_SUBVOL_DEAD);
4563 		spin_unlock(&dest->root_item_lock);
4564 	}
4565 out_up_write:
4566 	up_write(&fs_info->subvol_sem);
4567 	if (!ret) {
4568 		d_invalidate(dentry);
4569 		btrfs_prune_dentries(dest);
4570 		ASSERT(dest->send_in_progress == 0);
4571 	}
4572 
4573 	return ret;
4574 }
4575 
4576 static int btrfs_rmdir(struct inode *dir, struct dentry *dentry)
4577 {
4578 	struct inode *inode = d_inode(dentry);
4579 	struct btrfs_fs_info *fs_info = BTRFS_I(inode)->root->fs_info;
4580 	int err = 0;
4581 	struct btrfs_trans_handle *trans;
4582 	u64 last_unlink_trans;
4583 	struct fscrypt_name fname;
4584 
4585 	if (inode->i_size > BTRFS_EMPTY_DIR_SIZE)
4586 		return -ENOTEMPTY;
4587 	if (btrfs_ino(BTRFS_I(inode)) == BTRFS_FIRST_FREE_OBJECTID) {
4588 		if (unlikely(btrfs_fs_incompat(fs_info, EXTENT_TREE_V2))) {
4589 			btrfs_err(fs_info,
4590 			"extent tree v2 doesn't support snapshot deletion yet");
4591 			return -EOPNOTSUPP;
4592 		}
4593 		return btrfs_delete_subvolume(BTRFS_I(dir), dentry);
4594 	}
4595 
4596 	err = fscrypt_setup_filename(dir, &dentry->d_name, 1, &fname);
4597 	if (err)
4598 		return err;
4599 
4600 	/* This needs to handle no-key deletions later on */
4601 
4602 	trans = __unlink_start_trans(BTRFS_I(dir));
4603 	if (IS_ERR(trans)) {
4604 		err = PTR_ERR(trans);
4605 		goto out_notrans;
4606 	}
4607 
4608 	if (unlikely(btrfs_ino(BTRFS_I(inode)) == BTRFS_EMPTY_SUBVOL_DIR_OBJECTID)) {
4609 		err = btrfs_unlink_subvol(trans, BTRFS_I(dir), dentry);
4610 		goto out;
4611 	}
4612 
4613 	err = btrfs_orphan_add(trans, BTRFS_I(inode));
4614 	if (err)
4615 		goto out;
4616 
4617 	last_unlink_trans = BTRFS_I(inode)->last_unlink_trans;
4618 
4619 	/* now the directory is empty */
4620 	err = btrfs_unlink_inode(trans, BTRFS_I(dir), BTRFS_I(d_inode(dentry)),
4621 				 &fname.disk_name);
4622 	if (!err) {
4623 		btrfs_i_size_write(BTRFS_I(inode), 0);
4624 		/*
4625 		 * Propagate the last_unlink_trans value of the deleted dir to
4626 		 * its parent directory. This is to prevent an unrecoverable
4627 		 * log tree in the case we do something like this:
4628 		 * 1) create dir foo
4629 		 * 2) create snapshot under dir foo
4630 		 * 3) delete the snapshot
4631 		 * 4) rmdir foo
4632 		 * 5) mkdir foo
4633 		 * 6) fsync foo or some file inside foo
4634 		 */
4635 		if (last_unlink_trans >= trans->transid)
4636 			BTRFS_I(dir)->last_unlink_trans = last_unlink_trans;
4637 	}
4638 out:
4639 	btrfs_end_transaction(trans);
4640 out_notrans:
4641 	btrfs_btree_balance_dirty(fs_info);
4642 	fscrypt_free_filename(&fname);
4643 
4644 	return err;
4645 }
4646 
4647 /*
4648  * btrfs_truncate_block - read, zero a chunk and write a block
4649  * @inode - inode that we're zeroing
4650  * @from - the offset to start zeroing
4651  * @len - the length to zero, 0 to zero the entire range respective to the
4652  *	offset
4653  * @front - zero up to the offset instead of from the offset on
4654  *
4655  * This will find the block for the "from" offset and cow the block and zero the
4656  * part we want to zero.  This is used with truncate and hole punching.
4657  */
4658 int btrfs_truncate_block(struct btrfs_inode *inode, loff_t from, loff_t len,
4659 			 int front)
4660 {
4661 	struct btrfs_fs_info *fs_info = inode->root->fs_info;
4662 	struct address_space *mapping = inode->vfs_inode.i_mapping;
4663 	struct extent_io_tree *io_tree = &inode->io_tree;
4664 	struct btrfs_ordered_extent *ordered;
4665 	struct extent_state *cached_state = NULL;
4666 	struct extent_changeset *data_reserved = NULL;
4667 	bool only_release_metadata = false;
4668 	u32 blocksize = fs_info->sectorsize;
4669 	pgoff_t index = from >> PAGE_SHIFT;
4670 	unsigned offset = from & (blocksize - 1);
4671 	struct page *page;
4672 	gfp_t mask = btrfs_alloc_write_mask(mapping);
4673 	size_t write_bytes = blocksize;
4674 	int ret = 0;
4675 	u64 block_start;
4676 	u64 block_end;
4677 
4678 	if (IS_ALIGNED(offset, blocksize) &&
4679 	    (!len || IS_ALIGNED(len, blocksize)))
4680 		goto out;
4681 
4682 	block_start = round_down(from, blocksize);
4683 	block_end = block_start + blocksize - 1;
4684 
4685 	ret = btrfs_check_data_free_space(inode, &data_reserved, block_start,
4686 					  blocksize, false);
4687 	if (ret < 0) {
4688 		if (btrfs_check_nocow_lock(inode, block_start, &write_bytes, false) > 0) {
4689 			/* For nocow case, no need to reserve data space */
4690 			only_release_metadata = true;
4691 		} else {
4692 			goto out;
4693 		}
4694 	}
4695 	ret = btrfs_delalloc_reserve_metadata(inode, blocksize, blocksize, false);
4696 	if (ret < 0) {
4697 		if (!only_release_metadata)
4698 			btrfs_free_reserved_data_space(inode, data_reserved,
4699 						       block_start, blocksize);
4700 		goto out;
4701 	}
4702 again:
4703 	page = find_or_create_page(mapping, index, mask);
4704 	if (!page) {
4705 		btrfs_delalloc_release_space(inode, data_reserved, block_start,
4706 					     blocksize, true);
4707 		btrfs_delalloc_release_extents(inode, blocksize);
4708 		ret = -ENOMEM;
4709 		goto out;
4710 	}
4711 
4712 	if (!PageUptodate(page)) {
4713 		ret = btrfs_read_folio(NULL, page_folio(page));
4714 		lock_page(page);
4715 		if (page->mapping != mapping) {
4716 			unlock_page(page);
4717 			put_page(page);
4718 			goto again;
4719 		}
4720 		if (!PageUptodate(page)) {
4721 			ret = -EIO;
4722 			goto out_unlock;
4723 		}
4724 	}
4725 
4726 	/*
4727 	 * We unlock the page after the io is completed and then re-lock it
4728 	 * above.  release_folio() could have come in between that and cleared
4729 	 * PagePrivate(), but left the page in the mapping.  Set the page mapped
4730 	 * here to make sure it's properly set for the subpage stuff.
4731 	 */
4732 	ret = set_page_extent_mapped(page);
4733 	if (ret < 0)
4734 		goto out_unlock;
4735 
4736 	wait_on_page_writeback(page);
4737 
4738 	lock_extent(io_tree, block_start, block_end, &cached_state);
4739 
4740 	ordered = btrfs_lookup_ordered_extent(inode, block_start);
4741 	if (ordered) {
4742 		unlock_extent(io_tree, block_start, block_end, &cached_state);
4743 		unlock_page(page);
4744 		put_page(page);
4745 		btrfs_start_ordered_extent(ordered);
4746 		btrfs_put_ordered_extent(ordered);
4747 		goto again;
4748 	}
4749 
4750 	clear_extent_bit(&inode->io_tree, block_start, block_end,
4751 			 EXTENT_DELALLOC | EXTENT_DO_ACCOUNTING | EXTENT_DEFRAG,
4752 			 &cached_state);
4753 
4754 	ret = btrfs_set_extent_delalloc(inode, block_start, block_end, 0,
4755 					&cached_state);
4756 	if (ret) {
4757 		unlock_extent(io_tree, block_start, block_end, &cached_state);
4758 		goto out_unlock;
4759 	}
4760 
4761 	if (offset != blocksize) {
4762 		if (!len)
4763 			len = blocksize - offset;
4764 		if (front)
4765 			memzero_page(page, (block_start - page_offset(page)),
4766 				     offset);
4767 		else
4768 			memzero_page(page, (block_start - page_offset(page)) + offset,
4769 				     len);
4770 	}
4771 	btrfs_page_clear_checked(fs_info, page, block_start,
4772 				 block_end + 1 - block_start);
4773 	btrfs_page_set_dirty(fs_info, page, block_start, block_end + 1 - block_start);
4774 	unlock_extent(io_tree, block_start, block_end, &cached_state);
4775 
4776 	if (only_release_metadata)
4777 		set_extent_bit(&inode->io_tree, block_start, block_end,
4778 			       EXTENT_NORESERVE, NULL);
4779 
4780 out_unlock:
4781 	if (ret) {
4782 		if (only_release_metadata)
4783 			btrfs_delalloc_release_metadata(inode, blocksize, true);
4784 		else
4785 			btrfs_delalloc_release_space(inode, data_reserved,
4786 					block_start, blocksize, true);
4787 	}
4788 	btrfs_delalloc_release_extents(inode, blocksize);
4789 	unlock_page(page);
4790 	put_page(page);
4791 out:
4792 	if (only_release_metadata)
4793 		btrfs_check_nocow_unlock(inode);
4794 	extent_changeset_free(data_reserved);
4795 	return ret;
4796 }
4797 
4798 static int maybe_insert_hole(struct btrfs_root *root, struct btrfs_inode *inode,
4799 			     u64 offset, u64 len)
4800 {
4801 	struct btrfs_fs_info *fs_info = root->fs_info;
4802 	struct btrfs_trans_handle *trans;
4803 	struct btrfs_drop_extents_args drop_args = { 0 };
4804 	int ret;
4805 
4806 	/*
4807 	 * If NO_HOLES is enabled, we don't need to do anything.
4808 	 * Later, up in the call chain, either btrfs_set_inode_last_sub_trans()
4809 	 * or btrfs_update_inode() will be called, which guarantee that the next
4810 	 * fsync will know this inode was changed and needs to be logged.
4811 	 */
4812 	if (btrfs_fs_incompat(fs_info, NO_HOLES))
4813 		return 0;
4814 
4815 	/*
4816 	 * 1 - for the one we're dropping
4817 	 * 1 - for the one we're adding
4818 	 * 1 - for updating the inode.
4819 	 */
4820 	trans = btrfs_start_transaction(root, 3);
4821 	if (IS_ERR(trans))
4822 		return PTR_ERR(trans);
4823 
4824 	drop_args.start = offset;
4825 	drop_args.end = offset + len;
4826 	drop_args.drop_cache = true;
4827 
4828 	ret = btrfs_drop_extents(trans, root, inode, &drop_args);
4829 	if (ret) {
4830 		btrfs_abort_transaction(trans, ret);
4831 		btrfs_end_transaction(trans);
4832 		return ret;
4833 	}
4834 
4835 	ret = btrfs_insert_hole_extent(trans, root, btrfs_ino(inode), offset, len);
4836 	if (ret) {
4837 		btrfs_abort_transaction(trans, ret);
4838 	} else {
4839 		btrfs_update_inode_bytes(inode, 0, drop_args.bytes_found);
4840 		btrfs_update_inode(trans, root, inode);
4841 	}
4842 	btrfs_end_transaction(trans);
4843 	return ret;
4844 }
4845 
4846 /*
4847  * This function puts in dummy file extents for the area we're creating a hole
4848  * for.  So if we are truncating this file to a larger size we need to insert
4849  * these file extents so that btrfs_get_extent will return a EXTENT_MAP_HOLE for
4850  * the range between oldsize and size
4851  */
4852 int btrfs_cont_expand(struct btrfs_inode *inode, loff_t oldsize, loff_t size)
4853 {
4854 	struct btrfs_root *root = inode->root;
4855 	struct btrfs_fs_info *fs_info = root->fs_info;
4856 	struct extent_io_tree *io_tree = &inode->io_tree;
4857 	struct extent_map *em = NULL;
4858 	struct extent_state *cached_state = NULL;
4859 	u64 hole_start = ALIGN(oldsize, fs_info->sectorsize);
4860 	u64 block_end = ALIGN(size, fs_info->sectorsize);
4861 	u64 last_byte;
4862 	u64 cur_offset;
4863 	u64 hole_size;
4864 	int err = 0;
4865 
4866 	/*
4867 	 * If our size started in the middle of a block we need to zero out the
4868 	 * rest of the block before we expand the i_size, otherwise we could
4869 	 * expose stale data.
4870 	 */
4871 	err = btrfs_truncate_block(inode, oldsize, 0, 0);
4872 	if (err)
4873 		return err;
4874 
4875 	if (size <= hole_start)
4876 		return 0;
4877 
4878 	btrfs_lock_and_flush_ordered_range(inode, hole_start, block_end - 1,
4879 					   &cached_state);
4880 	cur_offset = hole_start;
4881 	while (1) {
4882 		em = btrfs_get_extent(inode, NULL, 0, cur_offset,
4883 				      block_end - cur_offset);
4884 		if (IS_ERR(em)) {
4885 			err = PTR_ERR(em);
4886 			em = NULL;
4887 			break;
4888 		}
4889 		last_byte = min(extent_map_end(em), block_end);
4890 		last_byte = ALIGN(last_byte, fs_info->sectorsize);
4891 		hole_size = last_byte - cur_offset;
4892 
4893 		if (!test_bit(EXTENT_FLAG_PREALLOC, &em->flags)) {
4894 			struct extent_map *hole_em;
4895 
4896 			err = maybe_insert_hole(root, inode, cur_offset,
4897 						hole_size);
4898 			if (err)
4899 				break;
4900 
4901 			err = btrfs_inode_set_file_extent_range(inode,
4902 							cur_offset, hole_size);
4903 			if (err)
4904 				break;
4905 
4906 			hole_em = alloc_extent_map();
4907 			if (!hole_em) {
4908 				btrfs_drop_extent_map_range(inode, cur_offset,
4909 						    cur_offset + hole_size - 1,
4910 						    false);
4911 				btrfs_set_inode_full_sync(inode);
4912 				goto next;
4913 			}
4914 			hole_em->start = cur_offset;
4915 			hole_em->len = hole_size;
4916 			hole_em->orig_start = cur_offset;
4917 
4918 			hole_em->block_start = EXTENT_MAP_HOLE;
4919 			hole_em->block_len = 0;
4920 			hole_em->orig_block_len = 0;
4921 			hole_em->ram_bytes = hole_size;
4922 			hole_em->compress_type = BTRFS_COMPRESS_NONE;
4923 			hole_em->generation = fs_info->generation;
4924 
4925 			err = btrfs_replace_extent_map_range(inode, hole_em, true);
4926 			free_extent_map(hole_em);
4927 		} else {
4928 			err = btrfs_inode_set_file_extent_range(inode,
4929 							cur_offset, hole_size);
4930 			if (err)
4931 				break;
4932 		}
4933 next:
4934 		free_extent_map(em);
4935 		em = NULL;
4936 		cur_offset = last_byte;
4937 		if (cur_offset >= block_end)
4938 			break;
4939 	}
4940 	free_extent_map(em);
4941 	unlock_extent(io_tree, hole_start, block_end - 1, &cached_state);
4942 	return err;
4943 }
4944 
4945 static int btrfs_setsize(struct inode *inode, struct iattr *attr)
4946 {
4947 	struct btrfs_root *root = BTRFS_I(inode)->root;
4948 	struct btrfs_trans_handle *trans;
4949 	loff_t oldsize = i_size_read(inode);
4950 	loff_t newsize = attr->ia_size;
4951 	int mask = attr->ia_valid;
4952 	int ret;
4953 
4954 	/*
4955 	 * The regular truncate() case without ATTR_CTIME and ATTR_MTIME is a
4956 	 * special case where we need to update the times despite not having
4957 	 * these flags set.  For all other operations the VFS set these flags
4958 	 * explicitly if it wants a timestamp update.
4959 	 */
4960 	if (newsize != oldsize) {
4961 		inode_inc_iversion(inode);
4962 		if (!(mask & (ATTR_CTIME | ATTR_MTIME))) {
4963 			inode->i_mtime = inode_set_ctime_current(inode);
4964 		}
4965 	}
4966 
4967 	if (newsize > oldsize) {
4968 		/*
4969 		 * Don't do an expanding truncate while snapshotting is ongoing.
4970 		 * This is to ensure the snapshot captures a fully consistent
4971 		 * state of this file - if the snapshot captures this expanding
4972 		 * truncation, it must capture all writes that happened before
4973 		 * this truncation.
4974 		 */
4975 		btrfs_drew_write_lock(&root->snapshot_lock);
4976 		ret = btrfs_cont_expand(BTRFS_I(inode), oldsize, newsize);
4977 		if (ret) {
4978 			btrfs_drew_write_unlock(&root->snapshot_lock);
4979 			return ret;
4980 		}
4981 
4982 		trans = btrfs_start_transaction(root, 1);
4983 		if (IS_ERR(trans)) {
4984 			btrfs_drew_write_unlock(&root->snapshot_lock);
4985 			return PTR_ERR(trans);
4986 		}
4987 
4988 		i_size_write(inode, newsize);
4989 		btrfs_inode_safe_disk_i_size_write(BTRFS_I(inode), 0);
4990 		pagecache_isize_extended(inode, oldsize, newsize);
4991 		ret = btrfs_update_inode(trans, root, BTRFS_I(inode));
4992 		btrfs_drew_write_unlock(&root->snapshot_lock);
4993 		btrfs_end_transaction(trans);
4994 	} else {
4995 		struct btrfs_fs_info *fs_info = btrfs_sb(inode->i_sb);
4996 
4997 		if (btrfs_is_zoned(fs_info)) {
4998 			ret = btrfs_wait_ordered_range(inode,
4999 					ALIGN(newsize, fs_info->sectorsize),
5000 					(u64)-1);
5001 			if (ret)
5002 				return ret;
5003 		}
5004 
5005 		/*
5006 		 * We're truncating a file that used to have good data down to
5007 		 * zero. Make sure any new writes to the file get on disk
5008 		 * on close.
5009 		 */
5010 		if (newsize == 0)
5011 			set_bit(BTRFS_INODE_FLUSH_ON_CLOSE,
5012 				&BTRFS_I(inode)->runtime_flags);
5013 
5014 		truncate_setsize(inode, newsize);
5015 
5016 		inode_dio_wait(inode);
5017 
5018 		ret = btrfs_truncate(BTRFS_I(inode), newsize == oldsize);
5019 		if (ret && inode->i_nlink) {
5020 			int err;
5021 
5022 			/*
5023 			 * Truncate failed, so fix up the in-memory size. We
5024 			 * adjusted disk_i_size down as we removed extents, so
5025 			 * wait for disk_i_size to be stable and then update the
5026 			 * in-memory size to match.
5027 			 */
5028 			err = btrfs_wait_ordered_range(inode, 0, (u64)-1);
5029 			if (err)
5030 				return err;
5031 			i_size_write(inode, BTRFS_I(inode)->disk_i_size);
5032 		}
5033 	}
5034 
5035 	return ret;
5036 }
5037 
5038 static int btrfs_setattr(struct mnt_idmap *idmap, struct dentry *dentry,
5039 			 struct iattr *attr)
5040 {
5041 	struct inode *inode = d_inode(dentry);
5042 	struct btrfs_root *root = BTRFS_I(inode)->root;
5043 	int err;
5044 
5045 	if (btrfs_root_readonly(root))
5046 		return -EROFS;
5047 
5048 	err = setattr_prepare(idmap, dentry, attr);
5049 	if (err)
5050 		return err;
5051 
5052 	if (S_ISREG(inode->i_mode) && (attr->ia_valid & ATTR_SIZE)) {
5053 		err = btrfs_setsize(inode, attr);
5054 		if (err)
5055 			return err;
5056 	}
5057 
5058 	if (attr->ia_valid) {
5059 		setattr_copy(idmap, inode, attr);
5060 		inode_inc_iversion(inode);
5061 		err = btrfs_dirty_inode(BTRFS_I(inode));
5062 
5063 		if (!err && attr->ia_valid & ATTR_MODE)
5064 			err = posix_acl_chmod(idmap, dentry, inode->i_mode);
5065 	}
5066 
5067 	return err;
5068 }
5069 
5070 /*
5071  * While truncating the inode pages during eviction, we get the VFS
5072  * calling btrfs_invalidate_folio() against each folio of the inode. This
5073  * is slow because the calls to btrfs_invalidate_folio() result in a
5074  * huge amount of calls to lock_extent() and clear_extent_bit(),
5075  * which keep merging and splitting extent_state structures over and over,
5076  * wasting lots of time.
5077  *
5078  * Therefore if the inode is being evicted, let btrfs_invalidate_folio()
5079  * skip all those expensive operations on a per folio basis and do only
5080  * the ordered io finishing, while we release here the extent_map and
5081  * extent_state structures, without the excessive merging and splitting.
5082  */
5083 static void evict_inode_truncate_pages(struct inode *inode)
5084 {
5085 	struct extent_io_tree *io_tree = &BTRFS_I(inode)->io_tree;
5086 	struct rb_node *node;
5087 
5088 	ASSERT(inode->i_state & I_FREEING);
5089 	truncate_inode_pages_final(&inode->i_data);
5090 
5091 	btrfs_drop_extent_map_range(BTRFS_I(inode), 0, (u64)-1, false);
5092 
5093 	/*
5094 	 * Keep looping until we have no more ranges in the io tree.
5095 	 * We can have ongoing bios started by readahead that have
5096 	 * their endio callback (extent_io.c:end_bio_extent_readpage)
5097 	 * still in progress (unlocked the pages in the bio but did not yet
5098 	 * unlocked the ranges in the io tree). Therefore this means some
5099 	 * ranges can still be locked and eviction started because before
5100 	 * submitting those bios, which are executed by a separate task (work
5101 	 * queue kthread), inode references (inode->i_count) were not taken
5102 	 * (which would be dropped in the end io callback of each bio).
5103 	 * Therefore here we effectively end up waiting for those bios and
5104 	 * anyone else holding locked ranges without having bumped the inode's
5105 	 * reference count - if we don't do it, when they access the inode's
5106 	 * io_tree to unlock a range it may be too late, leading to an
5107 	 * use-after-free issue.
5108 	 */
5109 	spin_lock(&io_tree->lock);
5110 	while (!RB_EMPTY_ROOT(&io_tree->state)) {
5111 		struct extent_state *state;
5112 		struct extent_state *cached_state = NULL;
5113 		u64 start;
5114 		u64 end;
5115 		unsigned state_flags;
5116 
5117 		node = rb_first(&io_tree->state);
5118 		state = rb_entry(node, struct extent_state, rb_node);
5119 		start = state->start;
5120 		end = state->end;
5121 		state_flags = state->state;
5122 		spin_unlock(&io_tree->lock);
5123 
5124 		lock_extent(io_tree, start, end, &cached_state);
5125 
5126 		/*
5127 		 * If still has DELALLOC flag, the extent didn't reach disk,
5128 		 * and its reserved space won't be freed by delayed_ref.
5129 		 * So we need to free its reserved space here.
5130 		 * (Refer to comment in btrfs_invalidate_folio, case 2)
5131 		 *
5132 		 * Note, end is the bytenr of last byte, so we need + 1 here.
5133 		 */
5134 		if (state_flags & EXTENT_DELALLOC)
5135 			btrfs_qgroup_free_data(BTRFS_I(inode), NULL, start,
5136 					       end - start + 1, NULL);
5137 
5138 		clear_extent_bit(io_tree, start, end,
5139 				 EXTENT_CLEAR_ALL_BITS | EXTENT_DO_ACCOUNTING,
5140 				 &cached_state);
5141 
5142 		cond_resched();
5143 		spin_lock(&io_tree->lock);
5144 	}
5145 	spin_unlock(&io_tree->lock);
5146 }
5147 
5148 static struct btrfs_trans_handle *evict_refill_and_join(struct btrfs_root *root,
5149 							struct btrfs_block_rsv *rsv)
5150 {
5151 	struct btrfs_fs_info *fs_info = root->fs_info;
5152 	struct btrfs_trans_handle *trans;
5153 	u64 delayed_refs_extra = btrfs_calc_delayed_ref_bytes(fs_info, 1);
5154 	int ret;
5155 
5156 	/*
5157 	 * Eviction should be taking place at some place safe because of our
5158 	 * delayed iputs.  However the normal flushing code will run delayed
5159 	 * iputs, so we cannot use FLUSH_ALL otherwise we'll deadlock.
5160 	 *
5161 	 * We reserve the delayed_refs_extra here again because we can't use
5162 	 * btrfs_start_transaction(root, 0) for the same deadlocky reason as
5163 	 * above.  We reserve our extra bit here because we generate a ton of
5164 	 * delayed refs activity by truncating.
5165 	 *
5166 	 * BTRFS_RESERVE_FLUSH_EVICT will steal from the global_rsv if it can,
5167 	 * if we fail to make this reservation we can re-try without the
5168 	 * delayed_refs_extra so we can make some forward progress.
5169 	 */
5170 	ret = btrfs_block_rsv_refill(fs_info, rsv, rsv->size + delayed_refs_extra,
5171 				     BTRFS_RESERVE_FLUSH_EVICT);
5172 	if (ret) {
5173 		ret = btrfs_block_rsv_refill(fs_info, rsv, rsv->size,
5174 					     BTRFS_RESERVE_FLUSH_EVICT);
5175 		if (ret) {
5176 			btrfs_warn(fs_info,
5177 				   "could not allocate space for delete; will truncate on mount");
5178 			return ERR_PTR(-ENOSPC);
5179 		}
5180 		delayed_refs_extra = 0;
5181 	}
5182 
5183 	trans = btrfs_join_transaction(root);
5184 	if (IS_ERR(trans))
5185 		return trans;
5186 
5187 	if (delayed_refs_extra) {
5188 		trans->block_rsv = &fs_info->trans_block_rsv;
5189 		trans->bytes_reserved = delayed_refs_extra;
5190 		btrfs_block_rsv_migrate(rsv, trans->block_rsv,
5191 					delayed_refs_extra, true);
5192 	}
5193 	return trans;
5194 }
5195 
5196 void btrfs_evict_inode(struct inode *inode)
5197 {
5198 	struct btrfs_fs_info *fs_info = btrfs_sb(inode->i_sb);
5199 	struct btrfs_trans_handle *trans;
5200 	struct btrfs_root *root = BTRFS_I(inode)->root;
5201 	struct btrfs_block_rsv *rsv = NULL;
5202 	int ret;
5203 
5204 	trace_btrfs_inode_evict(inode);
5205 
5206 	if (!root) {
5207 		fsverity_cleanup_inode(inode);
5208 		clear_inode(inode);
5209 		return;
5210 	}
5211 
5212 	evict_inode_truncate_pages(inode);
5213 
5214 	if (inode->i_nlink &&
5215 	    ((btrfs_root_refs(&root->root_item) != 0 &&
5216 	      root->root_key.objectid != BTRFS_ROOT_TREE_OBJECTID) ||
5217 	     btrfs_is_free_space_inode(BTRFS_I(inode))))
5218 		goto out;
5219 
5220 	if (is_bad_inode(inode))
5221 		goto out;
5222 
5223 	if (test_bit(BTRFS_FS_LOG_RECOVERING, &fs_info->flags))
5224 		goto out;
5225 
5226 	if (inode->i_nlink > 0) {
5227 		BUG_ON(btrfs_root_refs(&root->root_item) != 0 &&
5228 		       root->root_key.objectid != BTRFS_ROOT_TREE_OBJECTID);
5229 		goto out;
5230 	}
5231 
5232 	/*
5233 	 * This makes sure the inode item in tree is uptodate and the space for
5234 	 * the inode update is released.
5235 	 */
5236 	ret = btrfs_commit_inode_delayed_inode(BTRFS_I(inode));
5237 	if (ret)
5238 		goto out;
5239 
5240 	/*
5241 	 * This drops any pending insert or delete operations we have for this
5242 	 * inode.  We could have a delayed dir index deletion queued up, but
5243 	 * we're removing the inode completely so that'll be taken care of in
5244 	 * the truncate.
5245 	 */
5246 	btrfs_kill_delayed_inode_items(BTRFS_I(inode));
5247 
5248 	rsv = btrfs_alloc_block_rsv(fs_info, BTRFS_BLOCK_RSV_TEMP);
5249 	if (!rsv)
5250 		goto out;
5251 	rsv->size = btrfs_calc_metadata_size(fs_info, 1);
5252 	rsv->failfast = true;
5253 
5254 	btrfs_i_size_write(BTRFS_I(inode), 0);
5255 
5256 	while (1) {
5257 		struct btrfs_truncate_control control = {
5258 			.inode = BTRFS_I(inode),
5259 			.ino = btrfs_ino(BTRFS_I(inode)),
5260 			.new_size = 0,
5261 			.min_type = 0,
5262 		};
5263 
5264 		trans = evict_refill_and_join(root, rsv);
5265 		if (IS_ERR(trans))
5266 			goto out;
5267 
5268 		trans->block_rsv = rsv;
5269 
5270 		ret = btrfs_truncate_inode_items(trans, root, &control);
5271 		trans->block_rsv = &fs_info->trans_block_rsv;
5272 		btrfs_end_transaction(trans);
5273 		/*
5274 		 * We have not added new delayed items for our inode after we
5275 		 * have flushed its delayed items, so no need to throttle on
5276 		 * delayed items. However we have modified extent buffers.
5277 		 */
5278 		btrfs_btree_balance_dirty_nodelay(fs_info);
5279 		if (ret && ret != -ENOSPC && ret != -EAGAIN)
5280 			goto out;
5281 		else if (!ret)
5282 			break;
5283 	}
5284 
5285 	/*
5286 	 * Errors here aren't a big deal, it just means we leave orphan items in
5287 	 * the tree. They will be cleaned up on the next mount. If the inode
5288 	 * number gets reused, cleanup deletes the orphan item without doing
5289 	 * anything, and unlink reuses the existing orphan item.
5290 	 *
5291 	 * If it turns out that we are dropping too many of these, we might want
5292 	 * to add a mechanism for retrying these after a commit.
5293 	 */
5294 	trans = evict_refill_and_join(root, rsv);
5295 	if (!IS_ERR(trans)) {
5296 		trans->block_rsv = rsv;
5297 		btrfs_orphan_del(trans, BTRFS_I(inode));
5298 		trans->block_rsv = &fs_info->trans_block_rsv;
5299 		btrfs_end_transaction(trans);
5300 	}
5301 
5302 out:
5303 	btrfs_free_block_rsv(fs_info, rsv);
5304 	/*
5305 	 * If we didn't successfully delete, the orphan item will still be in
5306 	 * the tree and we'll retry on the next mount. Again, we might also want
5307 	 * to retry these periodically in the future.
5308 	 */
5309 	btrfs_remove_delayed_node(BTRFS_I(inode));
5310 	fsverity_cleanup_inode(inode);
5311 	clear_inode(inode);
5312 }
5313 
5314 /*
5315  * Return the key found in the dir entry in the location pointer, fill @type
5316  * with BTRFS_FT_*, and return 0.
5317  *
5318  * If no dir entries were found, returns -ENOENT.
5319  * If found a corrupted location in dir entry, returns -EUCLEAN.
5320  */
5321 static int btrfs_inode_by_name(struct btrfs_inode *dir, struct dentry *dentry,
5322 			       struct btrfs_key *location, u8 *type)
5323 {
5324 	struct btrfs_dir_item *di;
5325 	struct btrfs_path *path;
5326 	struct btrfs_root *root = dir->root;
5327 	int ret = 0;
5328 	struct fscrypt_name fname;
5329 
5330 	path = btrfs_alloc_path();
5331 	if (!path)
5332 		return -ENOMEM;
5333 
5334 	ret = fscrypt_setup_filename(&dir->vfs_inode, &dentry->d_name, 1, &fname);
5335 	if (ret < 0)
5336 		goto out;
5337 	/*
5338 	 * fscrypt_setup_filename() should never return a positive value, but
5339 	 * gcc on sparc/parisc thinks it can, so assert that doesn't happen.
5340 	 */
5341 	ASSERT(ret == 0);
5342 
5343 	/* This needs to handle no-key deletions later on */
5344 
5345 	di = btrfs_lookup_dir_item(NULL, root, path, btrfs_ino(dir),
5346 				   &fname.disk_name, 0);
5347 	if (IS_ERR_OR_NULL(di)) {
5348 		ret = di ? PTR_ERR(di) : -ENOENT;
5349 		goto out;
5350 	}
5351 
5352 	btrfs_dir_item_key_to_cpu(path->nodes[0], di, location);
5353 	if (location->type != BTRFS_INODE_ITEM_KEY &&
5354 	    location->type != BTRFS_ROOT_ITEM_KEY) {
5355 		ret = -EUCLEAN;
5356 		btrfs_warn(root->fs_info,
5357 "%s gets something invalid in DIR_ITEM (name %s, directory ino %llu, location(%llu %u %llu))",
5358 			   __func__, fname.disk_name.name, btrfs_ino(dir),
5359 			   location->objectid, location->type, location->offset);
5360 	}
5361 	if (!ret)
5362 		*type = btrfs_dir_ftype(path->nodes[0], di);
5363 out:
5364 	fscrypt_free_filename(&fname);
5365 	btrfs_free_path(path);
5366 	return ret;
5367 }
5368 
5369 /*
5370  * when we hit a tree root in a directory, the btrfs part of the inode
5371  * needs to be changed to reflect the root directory of the tree root.  This
5372  * is kind of like crossing a mount point.
5373  */
5374 static int fixup_tree_root_location(struct btrfs_fs_info *fs_info,
5375 				    struct btrfs_inode *dir,
5376 				    struct dentry *dentry,
5377 				    struct btrfs_key *location,
5378 				    struct btrfs_root **sub_root)
5379 {
5380 	struct btrfs_path *path;
5381 	struct btrfs_root *new_root;
5382 	struct btrfs_root_ref *ref;
5383 	struct extent_buffer *leaf;
5384 	struct btrfs_key key;
5385 	int ret;
5386 	int err = 0;
5387 	struct fscrypt_name fname;
5388 
5389 	ret = fscrypt_setup_filename(&dir->vfs_inode, &dentry->d_name, 0, &fname);
5390 	if (ret)
5391 		return ret;
5392 
5393 	path = btrfs_alloc_path();
5394 	if (!path) {
5395 		err = -ENOMEM;
5396 		goto out;
5397 	}
5398 
5399 	err = -ENOENT;
5400 	key.objectid = dir->root->root_key.objectid;
5401 	key.type = BTRFS_ROOT_REF_KEY;
5402 	key.offset = location->objectid;
5403 
5404 	ret = btrfs_search_slot(NULL, fs_info->tree_root, &key, path, 0, 0);
5405 	if (ret) {
5406 		if (ret < 0)
5407 			err = ret;
5408 		goto out;
5409 	}
5410 
5411 	leaf = path->nodes[0];
5412 	ref = btrfs_item_ptr(leaf, path->slots[0], struct btrfs_root_ref);
5413 	if (btrfs_root_ref_dirid(leaf, ref) != btrfs_ino(dir) ||
5414 	    btrfs_root_ref_name_len(leaf, ref) != fname.disk_name.len)
5415 		goto out;
5416 
5417 	ret = memcmp_extent_buffer(leaf, fname.disk_name.name,
5418 				   (unsigned long)(ref + 1), fname.disk_name.len);
5419 	if (ret)
5420 		goto out;
5421 
5422 	btrfs_release_path(path);
5423 
5424 	new_root = btrfs_get_fs_root(fs_info, location->objectid, true);
5425 	if (IS_ERR(new_root)) {
5426 		err = PTR_ERR(new_root);
5427 		goto out;
5428 	}
5429 
5430 	*sub_root = new_root;
5431 	location->objectid = btrfs_root_dirid(&new_root->root_item);
5432 	location->type = BTRFS_INODE_ITEM_KEY;
5433 	location->offset = 0;
5434 	err = 0;
5435 out:
5436 	btrfs_free_path(path);
5437 	fscrypt_free_filename(&fname);
5438 	return err;
5439 }
5440 
5441 static void inode_tree_add(struct btrfs_inode *inode)
5442 {
5443 	struct btrfs_root *root = inode->root;
5444 	struct btrfs_inode *entry;
5445 	struct rb_node **p;
5446 	struct rb_node *parent;
5447 	struct rb_node *new = &inode->rb_node;
5448 	u64 ino = btrfs_ino(inode);
5449 
5450 	if (inode_unhashed(&inode->vfs_inode))
5451 		return;
5452 	parent = NULL;
5453 	spin_lock(&root->inode_lock);
5454 	p = &root->inode_tree.rb_node;
5455 	while (*p) {
5456 		parent = *p;
5457 		entry = rb_entry(parent, struct btrfs_inode, rb_node);
5458 
5459 		if (ino < btrfs_ino(entry))
5460 			p = &parent->rb_left;
5461 		else if (ino > btrfs_ino(entry))
5462 			p = &parent->rb_right;
5463 		else {
5464 			WARN_ON(!(entry->vfs_inode.i_state &
5465 				  (I_WILL_FREE | I_FREEING)));
5466 			rb_replace_node(parent, new, &root->inode_tree);
5467 			RB_CLEAR_NODE(parent);
5468 			spin_unlock(&root->inode_lock);
5469 			return;
5470 		}
5471 	}
5472 	rb_link_node(new, parent, p);
5473 	rb_insert_color(new, &root->inode_tree);
5474 	spin_unlock(&root->inode_lock);
5475 }
5476 
5477 static void inode_tree_del(struct btrfs_inode *inode)
5478 {
5479 	struct btrfs_root *root = inode->root;
5480 	int empty = 0;
5481 
5482 	spin_lock(&root->inode_lock);
5483 	if (!RB_EMPTY_NODE(&inode->rb_node)) {
5484 		rb_erase(&inode->rb_node, &root->inode_tree);
5485 		RB_CLEAR_NODE(&inode->rb_node);
5486 		empty = RB_EMPTY_ROOT(&root->inode_tree);
5487 	}
5488 	spin_unlock(&root->inode_lock);
5489 
5490 	if (empty && btrfs_root_refs(&root->root_item) == 0) {
5491 		spin_lock(&root->inode_lock);
5492 		empty = RB_EMPTY_ROOT(&root->inode_tree);
5493 		spin_unlock(&root->inode_lock);
5494 		if (empty)
5495 			btrfs_add_dead_root(root);
5496 	}
5497 }
5498 
5499 
5500 static int btrfs_init_locked_inode(struct inode *inode, void *p)
5501 {
5502 	struct btrfs_iget_args *args = p;
5503 
5504 	inode->i_ino = args->ino;
5505 	BTRFS_I(inode)->location.objectid = args->ino;
5506 	BTRFS_I(inode)->location.type = BTRFS_INODE_ITEM_KEY;
5507 	BTRFS_I(inode)->location.offset = 0;
5508 	BTRFS_I(inode)->root = btrfs_grab_root(args->root);
5509 	BUG_ON(args->root && !BTRFS_I(inode)->root);
5510 
5511 	if (args->root && args->root == args->root->fs_info->tree_root &&
5512 	    args->ino != BTRFS_BTREE_INODE_OBJECTID)
5513 		set_bit(BTRFS_INODE_FREE_SPACE_INODE,
5514 			&BTRFS_I(inode)->runtime_flags);
5515 	return 0;
5516 }
5517 
5518 static int btrfs_find_actor(struct inode *inode, void *opaque)
5519 {
5520 	struct btrfs_iget_args *args = opaque;
5521 
5522 	return args->ino == BTRFS_I(inode)->location.objectid &&
5523 		args->root == BTRFS_I(inode)->root;
5524 }
5525 
5526 static struct inode *btrfs_iget_locked(struct super_block *s, u64 ino,
5527 				       struct btrfs_root *root)
5528 {
5529 	struct inode *inode;
5530 	struct btrfs_iget_args args;
5531 	unsigned long hashval = btrfs_inode_hash(ino, root);
5532 
5533 	args.ino = ino;
5534 	args.root = root;
5535 
5536 	inode = iget5_locked(s, hashval, btrfs_find_actor,
5537 			     btrfs_init_locked_inode,
5538 			     (void *)&args);
5539 	return inode;
5540 }
5541 
5542 /*
5543  * Get an inode object given its inode number and corresponding root.
5544  * Path can be preallocated to prevent recursing back to iget through
5545  * allocator. NULL is also valid but may require an additional allocation
5546  * later.
5547  */
5548 struct inode *btrfs_iget_path(struct super_block *s, u64 ino,
5549 			      struct btrfs_root *root, struct btrfs_path *path)
5550 {
5551 	struct inode *inode;
5552 
5553 	inode = btrfs_iget_locked(s, ino, root);
5554 	if (!inode)
5555 		return ERR_PTR(-ENOMEM);
5556 
5557 	if (inode->i_state & I_NEW) {
5558 		int ret;
5559 
5560 		ret = btrfs_read_locked_inode(inode, path);
5561 		if (!ret) {
5562 			inode_tree_add(BTRFS_I(inode));
5563 			unlock_new_inode(inode);
5564 		} else {
5565 			iget_failed(inode);
5566 			/*
5567 			 * ret > 0 can come from btrfs_search_slot called by
5568 			 * btrfs_read_locked_inode, this means the inode item
5569 			 * was not found.
5570 			 */
5571 			if (ret > 0)
5572 				ret = -ENOENT;
5573 			inode = ERR_PTR(ret);
5574 		}
5575 	}
5576 
5577 	return inode;
5578 }
5579 
5580 struct inode *btrfs_iget(struct super_block *s, u64 ino, struct btrfs_root *root)
5581 {
5582 	return btrfs_iget_path(s, ino, root, NULL);
5583 }
5584 
5585 static struct inode *new_simple_dir(struct inode *dir,
5586 				    struct btrfs_key *key,
5587 				    struct btrfs_root *root)
5588 {
5589 	struct inode *inode = new_inode(dir->i_sb);
5590 
5591 	if (!inode)
5592 		return ERR_PTR(-ENOMEM);
5593 
5594 	BTRFS_I(inode)->root = btrfs_grab_root(root);
5595 	memcpy(&BTRFS_I(inode)->location, key, sizeof(*key));
5596 	set_bit(BTRFS_INODE_DUMMY, &BTRFS_I(inode)->runtime_flags);
5597 
5598 	inode->i_ino = BTRFS_EMPTY_SUBVOL_DIR_OBJECTID;
5599 	/*
5600 	 * We only need lookup, the rest is read-only and there's no inode
5601 	 * associated with the dentry
5602 	 */
5603 	inode->i_op = &simple_dir_inode_operations;
5604 	inode->i_opflags &= ~IOP_XATTR;
5605 	inode->i_fop = &simple_dir_operations;
5606 	inode->i_mode = S_IFDIR | S_IRUGO | S_IWUSR | S_IXUGO;
5607 	inode->i_mtime = inode_set_ctime_current(inode);
5608 	inode->i_atime = dir->i_atime;
5609 	BTRFS_I(inode)->i_otime = inode->i_mtime;
5610 	inode->i_uid = dir->i_uid;
5611 	inode->i_gid = dir->i_gid;
5612 
5613 	return inode;
5614 }
5615 
5616 static_assert(BTRFS_FT_UNKNOWN == FT_UNKNOWN);
5617 static_assert(BTRFS_FT_REG_FILE == FT_REG_FILE);
5618 static_assert(BTRFS_FT_DIR == FT_DIR);
5619 static_assert(BTRFS_FT_CHRDEV == FT_CHRDEV);
5620 static_assert(BTRFS_FT_BLKDEV == FT_BLKDEV);
5621 static_assert(BTRFS_FT_FIFO == FT_FIFO);
5622 static_assert(BTRFS_FT_SOCK == FT_SOCK);
5623 static_assert(BTRFS_FT_SYMLINK == FT_SYMLINK);
5624 
5625 static inline u8 btrfs_inode_type(struct inode *inode)
5626 {
5627 	return fs_umode_to_ftype(inode->i_mode);
5628 }
5629 
5630 struct inode *btrfs_lookup_dentry(struct inode *dir, struct dentry *dentry)
5631 {
5632 	struct btrfs_fs_info *fs_info = btrfs_sb(dir->i_sb);
5633 	struct inode *inode;
5634 	struct btrfs_root *root = BTRFS_I(dir)->root;
5635 	struct btrfs_root *sub_root = root;
5636 	struct btrfs_key location;
5637 	u8 di_type = 0;
5638 	int ret = 0;
5639 
5640 	if (dentry->d_name.len > BTRFS_NAME_LEN)
5641 		return ERR_PTR(-ENAMETOOLONG);
5642 
5643 	ret = btrfs_inode_by_name(BTRFS_I(dir), dentry, &location, &di_type);
5644 	if (ret < 0)
5645 		return ERR_PTR(ret);
5646 
5647 	if (location.type == BTRFS_INODE_ITEM_KEY) {
5648 		inode = btrfs_iget(dir->i_sb, location.objectid, root);
5649 		if (IS_ERR(inode))
5650 			return inode;
5651 
5652 		/* Do extra check against inode mode with di_type */
5653 		if (btrfs_inode_type(inode) != di_type) {
5654 			btrfs_crit(fs_info,
5655 "inode mode mismatch with dir: inode mode=0%o btrfs type=%u dir type=%u",
5656 				  inode->i_mode, btrfs_inode_type(inode),
5657 				  di_type);
5658 			iput(inode);
5659 			return ERR_PTR(-EUCLEAN);
5660 		}
5661 		return inode;
5662 	}
5663 
5664 	ret = fixup_tree_root_location(fs_info, BTRFS_I(dir), dentry,
5665 				       &location, &sub_root);
5666 	if (ret < 0) {
5667 		if (ret != -ENOENT)
5668 			inode = ERR_PTR(ret);
5669 		else
5670 			inode = new_simple_dir(dir, &location, root);
5671 	} else {
5672 		inode = btrfs_iget(dir->i_sb, location.objectid, sub_root);
5673 		btrfs_put_root(sub_root);
5674 
5675 		if (IS_ERR(inode))
5676 			return inode;
5677 
5678 		down_read(&fs_info->cleanup_work_sem);
5679 		if (!sb_rdonly(inode->i_sb))
5680 			ret = btrfs_orphan_cleanup(sub_root);
5681 		up_read(&fs_info->cleanup_work_sem);
5682 		if (ret) {
5683 			iput(inode);
5684 			inode = ERR_PTR(ret);
5685 		}
5686 	}
5687 
5688 	return inode;
5689 }
5690 
5691 static int btrfs_dentry_delete(const struct dentry *dentry)
5692 {
5693 	struct btrfs_root *root;
5694 	struct inode *inode = d_inode(dentry);
5695 
5696 	if (!inode && !IS_ROOT(dentry))
5697 		inode = d_inode(dentry->d_parent);
5698 
5699 	if (inode) {
5700 		root = BTRFS_I(inode)->root;
5701 		if (btrfs_root_refs(&root->root_item) == 0)
5702 			return 1;
5703 
5704 		if (btrfs_ino(BTRFS_I(inode)) == BTRFS_EMPTY_SUBVOL_DIR_OBJECTID)
5705 			return 1;
5706 	}
5707 	return 0;
5708 }
5709 
5710 static struct dentry *btrfs_lookup(struct inode *dir, struct dentry *dentry,
5711 				   unsigned int flags)
5712 {
5713 	struct inode *inode = btrfs_lookup_dentry(dir, dentry);
5714 
5715 	if (inode == ERR_PTR(-ENOENT))
5716 		inode = NULL;
5717 	return d_splice_alias(inode, dentry);
5718 }
5719 
5720 /*
5721  * Find the highest existing sequence number in a directory and then set the
5722  * in-memory index_cnt variable to the first free sequence number.
5723  */
5724 static int btrfs_set_inode_index_count(struct btrfs_inode *inode)
5725 {
5726 	struct btrfs_root *root = inode->root;
5727 	struct btrfs_key key, found_key;
5728 	struct btrfs_path *path;
5729 	struct extent_buffer *leaf;
5730 	int ret;
5731 
5732 	key.objectid = btrfs_ino(inode);
5733 	key.type = BTRFS_DIR_INDEX_KEY;
5734 	key.offset = (u64)-1;
5735 
5736 	path = btrfs_alloc_path();
5737 	if (!path)
5738 		return -ENOMEM;
5739 
5740 	ret = btrfs_search_slot(NULL, root, &key, path, 0, 0);
5741 	if (ret < 0)
5742 		goto out;
5743 	/* FIXME: we should be able to handle this */
5744 	if (ret == 0)
5745 		goto out;
5746 	ret = 0;
5747 
5748 	if (path->slots[0] == 0) {
5749 		inode->index_cnt = BTRFS_DIR_START_INDEX;
5750 		goto out;
5751 	}
5752 
5753 	path->slots[0]--;
5754 
5755 	leaf = path->nodes[0];
5756 	btrfs_item_key_to_cpu(leaf, &found_key, path->slots[0]);
5757 
5758 	if (found_key.objectid != btrfs_ino(inode) ||
5759 	    found_key.type != BTRFS_DIR_INDEX_KEY) {
5760 		inode->index_cnt = BTRFS_DIR_START_INDEX;
5761 		goto out;
5762 	}
5763 
5764 	inode->index_cnt = found_key.offset + 1;
5765 out:
5766 	btrfs_free_path(path);
5767 	return ret;
5768 }
5769 
5770 static int btrfs_get_dir_last_index(struct btrfs_inode *dir, u64 *index)
5771 {
5772 	int ret = 0;
5773 
5774 	btrfs_inode_lock(dir, 0);
5775 	if (dir->index_cnt == (u64)-1) {
5776 		ret = btrfs_inode_delayed_dir_index_count(dir);
5777 		if (ret) {
5778 			ret = btrfs_set_inode_index_count(dir);
5779 			if (ret)
5780 				goto out;
5781 		}
5782 	}
5783 
5784 	/* index_cnt is the index number of next new entry, so decrement it. */
5785 	*index = dir->index_cnt - 1;
5786 out:
5787 	btrfs_inode_unlock(dir, 0);
5788 
5789 	return ret;
5790 }
5791 
5792 /*
5793  * All this infrastructure exists because dir_emit can fault, and we are holding
5794  * the tree lock when doing readdir.  For now just allocate a buffer and copy
5795  * our information into that, and then dir_emit from the buffer.  This is
5796  * similar to what NFS does, only we don't keep the buffer around in pagecache
5797  * because I'm afraid I'll mess that up.  Long term we need to make filldir do
5798  * copy_to_user_inatomic so we don't have to worry about page faulting under the
5799  * tree lock.
5800  */
5801 static int btrfs_opendir(struct inode *inode, struct file *file)
5802 {
5803 	struct btrfs_file_private *private;
5804 	u64 last_index;
5805 	int ret;
5806 
5807 	ret = btrfs_get_dir_last_index(BTRFS_I(inode), &last_index);
5808 	if (ret)
5809 		return ret;
5810 
5811 	private = kzalloc(sizeof(struct btrfs_file_private), GFP_KERNEL);
5812 	if (!private)
5813 		return -ENOMEM;
5814 	private->last_index = last_index;
5815 	private->filldir_buf = kzalloc(PAGE_SIZE, GFP_KERNEL);
5816 	if (!private->filldir_buf) {
5817 		kfree(private);
5818 		return -ENOMEM;
5819 	}
5820 	file->private_data = private;
5821 	return 0;
5822 }
5823 
5824 static loff_t btrfs_dir_llseek(struct file *file, loff_t offset, int whence)
5825 {
5826 	struct btrfs_file_private *private = file->private_data;
5827 	int ret;
5828 
5829 	ret = btrfs_get_dir_last_index(BTRFS_I(file_inode(file)),
5830 				       &private->last_index);
5831 	if (ret)
5832 		return ret;
5833 
5834 	return generic_file_llseek(file, offset, whence);
5835 }
5836 
5837 struct dir_entry {
5838 	u64 ino;
5839 	u64 offset;
5840 	unsigned type;
5841 	int name_len;
5842 };
5843 
5844 static int btrfs_filldir(void *addr, int entries, struct dir_context *ctx)
5845 {
5846 	while (entries--) {
5847 		struct dir_entry *entry = addr;
5848 		char *name = (char *)(entry + 1);
5849 
5850 		ctx->pos = get_unaligned(&entry->offset);
5851 		if (!dir_emit(ctx, name, get_unaligned(&entry->name_len),
5852 					 get_unaligned(&entry->ino),
5853 					 get_unaligned(&entry->type)))
5854 			return 1;
5855 		addr += sizeof(struct dir_entry) +
5856 			get_unaligned(&entry->name_len);
5857 		ctx->pos++;
5858 	}
5859 	return 0;
5860 }
5861 
5862 static int btrfs_real_readdir(struct file *file, struct dir_context *ctx)
5863 {
5864 	struct inode *inode = file_inode(file);
5865 	struct btrfs_root *root = BTRFS_I(inode)->root;
5866 	struct btrfs_file_private *private = file->private_data;
5867 	struct btrfs_dir_item *di;
5868 	struct btrfs_key key;
5869 	struct btrfs_key found_key;
5870 	struct btrfs_path *path;
5871 	void *addr;
5872 	LIST_HEAD(ins_list);
5873 	LIST_HEAD(del_list);
5874 	int ret;
5875 	char *name_ptr;
5876 	int name_len;
5877 	int entries = 0;
5878 	int total_len = 0;
5879 	bool put = false;
5880 	struct btrfs_key location;
5881 
5882 	if (!dir_emit_dots(file, ctx))
5883 		return 0;
5884 
5885 	path = btrfs_alloc_path();
5886 	if (!path)
5887 		return -ENOMEM;
5888 
5889 	addr = private->filldir_buf;
5890 	path->reada = READA_FORWARD;
5891 
5892 	put = btrfs_readdir_get_delayed_items(inode, private->last_index,
5893 					      &ins_list, &del_list);
5894 
5895 again:
5896 	key.type = BTRFS_DIR_INDEX_KEY;
5897 	key.offset = ctx->pos;
5898 	key.objectid = btrfs_ino(BTRFS_I(inode));
5899 
5900 	btrfs_for_each_slot(root, &key, &found_key, path, ret) {
5901 		struct dir_entry *entry;
5902 		struct extent_buffer *leaf = path->nodes[0];
5903 		u8 ftype;
5904 
5905 		if (found_key.objectid != key.objectid)
5906 			break;
5907 		if (found_key.type != BTRFS_DIR_INDEX_KEY)
5908 			break;
5909 		if (found_key.offset < ctx->pos)
5910 			continue;
5911 		if (found_key.offset > private->last_index)
5912 			break;
5913 		if (btrfs_should_delete_dir_index(&del_list, found_key.offset))
5914 			continue;
5915 		di = btrfs_item_ptr(leaf, path->slots[0], struct btrfs_dir_item);
5916 		name_len = btrfs_dir_name_len(leaf, di);
5917 		if ((total_len + sizeof(struct dir_entry) + name_len) >=
5918 		    PAGE_SIZE) {
5919 			btrfs_release_path(path);
5920 			ret = btrfs_filldir(private->filldir_buf, entries, ctx);
5921 			if (ret)
5922 				goto nopos;
5923 			addr = private->filldir_buf;
5924 			entries = 0;
5925 			total_len = 0;
5926 			goto again;
5927 		}
5928 
5929 		ftype = btrfs_dir_flags_to_ftype(btrfs_dir_flags(leaf, di));
5930 		entry = addr;
5931 		name_ptr = (char *)(entry + 1);
5932 		read_extent_buffer(leaf, name_ptr,
5933 				   (unsigned long)(di + 1), name_len);
5934 		put_unaligned(name_len, &entry->name_len);
5935 		put_unaligned(fs_ftype_to_dtype(ftype), &entry->type);
5936 		btrfs_dir_item_key_to_cpu(leaf, di, &location);
5937 		put_unaligned(location.objectid, &entry->ino);
5938 		put_unaligned(found_key.offset, &entry->offset);
5939 		entries++;
5940 		addr += sizeof(struct dir_entry) + name_len;
5941 		total_len += sizeof(struct dir_entry) + name_len;
5942 	}
5943 	/* Catch error encountered during iteration */
5944 	if (ret < 0)
5945 		goto err;
5946 
5947 	btrfs_release_path(path);
5948 
5949 	ret = btrfs_filldir(private->filldir_buf, entries, ctx);
5950 	if (ret)
5951 		goto nopos;
5952 
5953 	ret = btrfs_readdir_delayed_dir_index(ctx, &ins_list);
5954 	if (ret)
5955 		goto nopos;
5956 
5957 	/*
5958 	 * Stop new entries from being returned after we return the last
5959 	 * entry.
5960 	 *
5961 	 * New directory entries are assigned a strictly increasing
5962 	 * offset.  This means that new entries created during readdir
5963 	 * are *guaranteed* to be seen in the future by that readdir.
5964 	 * This has broken buggy programs which operate on names as
5965 	 * they're returned by readdir.  Until we re-use freed offsets
5966 	 * we have this hack to stop new entries from being returned
5967 	 * under the assumption that they'll never reach this huge
5968 	 * offset.
5969 	 *
5970 	 * This is being careful not to overflow 32bit loff_t unless the
5971 	 * last entry requires it because doing so has broken 32bit apps
5972 	 * in the past.
5973 	 */
5974 	if (ctx->pos >= INT_MAX)
5975 		ctx->pos = LLONG_MAX;
5976 	else
5977 		ctx->pos = INT_MAX;
5978 nopos:
5979 	ret = 0;
5980 err:
5981 	if (put)
5982 		btrfs_readdir_put_delayed_items(inode, &ins_list, &del_list);
5983 	btrfs_free_path(path);
5984 	return ret;
5985 }
5986 
5987 /*
5988  * This is somewhat expensive, updating the tree every time the
5989  * inode changes.  But, it is most likely to find the inode in cache.
5990  * FIXME, needs more benchmarking...there are no reasons other than performance
5991  * to keep or drop this code.
5992  */
5993 static int btrfs_dirty_inode(struct btrfs_inode *inode)
5994 {
5995 	struct btrfs_root *root = inode->root;
5996 	struct btrfs_fs_info *fs_info = root->fs_info;
5997 	struct btrfs_trans_handle *trans;
5998 	int ret;
5999 
6000 	if (test_bit(BTRFS_INODE_DUMMY, &inode->runtime_flags))
6001 		return 0;
6002 
6003 	trans = btrfs_join_transaction(root);
6004 	if (IS_ERR(trans))
6005 		return PTR_ERR(trans);
6006 
6007 	ret = btrfs_update_inode(trans, root, inode);
6008 	if (ret && (ret == -ENOSPC || ret == -EDQUOT)) {
6009 		/* whoops, lets try again with the full transaction */
6010 		btrfs_end_transaction(trans);
6011 		trans = btrfs_start_transaction(root, 1);
6012 		if (IS_ERR(trans))
6013 			return PTR_ERR(trans);
6014 
6015 		ret = btrfs_update_inode(trans, root, inode);
6016 	}
6017 	btrfs_end_transaction(trans);
6018 	if (inode->delayed_node)
6019 		btrfs_balance_delayed_items(fs_info);
6020 
6021 	return ret;
6022 }
6023 
6024 /*
6025  * This is a copy of file_update_time.  We need this so we can return error on
6026  * ENOSPC for updating the inode in the case of file write and mmap writes.
6027  */
6028 static int btrfs_update_time(struct inode *inode, int flags)
6029 {
6030 	struct btrfs_root *root = BTRFS_I(inode)->root;
6031 	bool dirty = flags & ~S_VERSION;
6032 
6033 	if (btrfs_root_readonly(root))
6034 		return -EROFS;
6035 
6036 	dirty = inode_update_timestamps(inode, flags);
6037 	return dirty ? btrfs_dirty_inode(BTRFS_I(inode)) : 0;
6038 }
6039 
6040 /*
6041  * helper to find a free sequence number in a given directory.  This current
6042  * code is very simple, later versions will do smarter things in the btree
6043  */
6044 int btrfs_set_inode_index(struct btrfs_inode *dir, u64 *index)
6045 {
6046 	int ret = 0;
6047 
6048 	if (dir->index_cnt == (u64)-1) {
6049 		ret = btrfs_inode_delayed_dir_index_count(dir);
6050 		if (ret) {
6051 			ret = btrfs_set_inode_index_count(dir);
6052 			if (ret)
6053 				return ret;
6054 		}
6055 	}
6056 
6057 	*index = dir->index_cnt;
6058 	dir->index_cnt++;
6059 
6060 	return ret;
6061 }
6062 
6063 static int btrfs_insert_inode_locked(struct inode *inode)
6064 {
6065 	struct btrfs_iget_args args;
6066 
6067 	args.ino = BTRFS_I(inode)->location.objectid;
6068 	args.root = BTRFS_I(inode)->root;
6069 
6070 	return insert_inode_locked4(inode,
6071 		   btrfs_inode_hash(inode->i_ino, BTRFS_I(inode)->root),
6072 		   btrfs_find_actor, &args);
6073 }
6074 
6075 int btrfs_new_inode_prepare(struct btrfs_new_inode_args *args,
6076 			    unsigned int *trans_num_items)
6077 {
6078 	struct inode *dir = args->dir;
6079 	struct inode *inode = args->inode;
6080 	int ret;
6081 
6082 	if (!args->orphan) {
6083 		ret = fscrypt_setup_filename(dir, &args->dentry->d_name, 0,
6084 					     &args->fname);
6085 		if (ret)
6086 			return ret;
6087 	}
6088 
6089 	ret = posix_acl_create(dir, &inode->i_mode, &args->default_acl, &args->acl);
6090 	if (ret) {
6091 		fscrypt_free_filename(&args->fname);
6092 		return ret;
6093 	}
6094 
6095 	/* 1 to add inode item */
6096 	*trans_num_items = 1;
6097 	/* 1 to add compression property */
6098 	if (BTRFS_I(dir)->prop_compress)
6099 		(*trans_num_items)++;
6100 	/* 1 to add default ACL xattr */
6101 	if (args->default_acl)
6102 		(*trans_num_items)++;
6103 	/* 1 to add access ACL xattr */
6104 	if (args->acl)
6105 		(*trans_num_items)++;
6106 #ifdef CONFIG_SECURITY
6107 	/* 1 to add LSM xattr */
6108 	if (dir->i_security)
6109 		(*trans_num_items)++;
6110 #endif
6111 	if (args->orphan) {
6112 		/* 1 to add orphan item */
6113 		(*trans_num_items)++;
6114 	} else {
6115 		/*
6116 		 * 1 to add dir item
6117 		 * 1 to add dir index
6118 		 * 1 to update parent inode item
6119 		 *
6120 		 * No need for 1 unit for the inode ref item because it is
6121 		 * inserted in a batch together with the inode item at
6122 		 * btrfs_create_new_inode().
6123 		 */
6124 		*trans_num_items += 3;
6125 	}
6126 	return 0;
6127 }
6128 
6129 void btrfs_new_inode_args_destroy(struct btrfs_new_inode_args *args)
6130 {
6131 	posix_acl_release(args->acl);
6132 	posix_acl_release(args->default_acl);
6133 	fscrypt_free_filename(&args->fname);
6134 }
6135 
6136 /*
6137  * Inherit flags from the parent inode.
6138  *
6139  * Currently only the compression flags and the cow flags are inherited.
6140  */
6141 static void btrfs_inherit_iflags(struct btrfs_inode *inode, struct btrfs_inode *dir)
6142 {
6143 	unsigned int flags;
6144 
6145 	flags = dir->flags;
6146 
6147 	if (flags & BTRFS_INODE_NOCOMPRESS) {
6148 		inode->flags &= ~BTRFS_INODE_COMPRESS;
6149 		inode->flags |= BTRFS_INODE_NOCOMPRESS;
6150 	} else if (flags & BTRFS_INODE_COMPRESS) {
6151 		inode->flags &= ~BTRFS_INODE_NOCOMPRESS;
6152 		inode->flags |= BTRFS_INODE_COMPRESS;
6153 	}
6154 
6155 	if (flags & BTRFS_INODE_NODATACOW) {
6156 		inode->flags |= BTRFS_INODE_NODATACOW;
6157 		if (S_ISREG(inode->vfs_inode.i_mode))
6158 			inode->flags |= BTRFS_INODE_NODATASUM;
6159 	}
6160 
6161 	btrfs_sync_inode_flags_to_i_flags(&inode->vfs_inode);
6162 }
6163 
6164 int btrfs_create_new_inode(struct btrfs_trans_handle *trans,
6165 			   struct btrfs_new_inode_args *args)
6166 {
6167 	struct inode *dir = args->dir;
6168 	struct inode *inode = args->inode;
6169 	const struct fscrypt_str *name = args->orphan ? NULL : &args->fname.disk_name;
6170 	struct btrfs_fs_info *fs_info = btrfs_sb(dir->i_sb);
6171 	struct btrfs_root *root;
6172 	struct btrfs_inode_item *inode_item;
6173 	struct btrfs_key *location;
6174 	struct btrfs_path *path;
6175 	u64 objectid;
6176 	struct btrfs_inode_ref *ref;
6177 	struct btrfs_key key[2];
6178 	u32 sizes[2];
6179 	struct btrfs_item_batch batch;
6180 	unsigned long ptr;
6181 	int ret;
6182 
6183 	path = btrfs_alloc_path();
6184 	if (!path)
6185 		return -ENOMEM;
6186 
6187 	if (!args->subvol)
6188 		BTRFS_I(inode)->root = btrfs_grab_root(BTRFS_I(dir)->root);
6189 	root = BTRFS_I(inode)->root;
6190 
6191 	ret = btrfs_get_free_objectid(root, &objectid);
6192 	if (ret)
6193 		goto out;
6194 	inode->i_ino = objectid;
6195 
6196 	if (args->orphan) {
6197 		/*
6198 		 * O_TMPFILE, set link count to 0, so that after this point, we
6199 		 * fill in an inode item with the correct link count.
6200 		 */
6201 		set_nlink(inode, 0);
6202 	} else {
6203 		trace_btrfs_inode_request(dir);
6204 
6205 		ret = btrfs_set_inode_index(BTRFS_I(dir), &BTRFS_I(inode)->dir_index);
6206 		if (ret)
6207 			goto out;
6208 	}
6209 	/* index_cnt is ignored for everything but a dir. */
6210 	BTRFS_I(inode)->index_cnt = BTRFS_DIR_START_INDEX;
6211 	BTRFS_I(inode)->generation = trans->transid;
6212 	inode->i_generation = BTRFS_I(inode)->generation;
6213 
6214 	/*
6215 	 * Subvolumes don't inherit flags from their parent directory.
6216 	 * Originally this was probably by accident, but we probably can't
6217 	 * change it now without compatibility issues.
6218 	 */
6219 	if (!args->subvol)
6220 		btrfs_inherit_iflags(BTRFS_I(inode), BTRFS_I(dir));
6221 
6222 	if (S_ISREG(inode->i_mode)) {
6223 		if (btrfs_test_opt(fs_info, NODATASUM))
6224 			BTRFS_I(inode)->flags |= BTRFS_INODE_NODATASUM;
6225 		if (btrfs_test_opt(fs_info, NODATACOW))
6226 			BTRFS_I(inode)->flags |= BTRFS_INODE_NODATACOW |
6227 				BTRFS_INODE_NODATASUM;
6228 	}
6229 
6230 	location = &BTRFS_I(inode)->location;
6231 	location->objectid = objectid;
6232 	location->offset = 0;
6233 	location->type = BTRFS_INODE_ITEM_KEY;
6234 
6235 	ret = btrfs_insert_inode_locked(inode);
6236 	if (ret < 0) {
6237 		if (!args->orphan)
6238 			BTRFS_I(dir)->index_cnt--;
6239 		goto out;
6240 	}
6241 
6242 	/*
6243 	 * We could have gotten an inode number from somebody who was fsynced
6244 	 * and then removed in this same transaction, so let's just set full
6245 	 * sync since it will be a full sync anyway and this will blow away the
6246 	 * old info in the log.
6247 	 */
6248 	btrfs_set_inode_full_sync(BTRFS_I(inode));
6249 
6250 	key[0].objectid = objectid;
6251 	key[0].type = BTRFS_INODE_ITEM_KEY;
6252 	key[0].offset = 0;
6253 
6254 	sizes[0] = sizeof(struct btrfs_inode_item);
6255 
6256 	if (!args->orphan) {
6257 		/*
6258 		 * Start new inodes with an inode_ref. This is slightly more
6259 		 * efficient for small numbers of hard links since they will
6260 		 * be packed into one item. Extended refs will kick in if we
6261 		 * add more hard links than can fit in the ref item.
6262 		 */
6263 		key[1].objectid = objectid;
6264 		key[1].type = BTRFS_INODE_REF_KEY;
6265 		if (args->subvol) {
6266 			key[1].offset = objectid;
6267 			sizes[1] = 2 + sizeof(*ref);
6268 		} else {
6269 			key[1].offset = btrfs_ino(BTRFS_I(dir));
6270 			sizes[1] = name->len + sizeof(*ref);
6271 		}
6272 	}
6273 
6274 	batch.keys = &key[0];
6275 	batch.data_sizes = &sizes[0];
6276 	batch.total_data_size = sizes[0] + (args->orphan ? 0 : sizes[1]);
6277 	batch.nr = args->orphan ? 1 : 2;
6278 	ret = btrfs_insert_empty_items(trans, root, path, &batch);
6279 	if (ret != 0) {
6280 		btrfs_abort_transaction(trans, ret);
6281 		goto discard;
6282 	}
6283 
6284 	inode->i_mtime = inode_set_ctime_current(inode);
6285 	inode->i_atime = inode->i_mtime;
6286 	BTRFS_I(inode)->i_otime = inode->i_mtime;
6287 
6288 	/*
6289 	 * We're going to fill the inode item now, so at this point the inode
6290 	 * must be fully initialized.
6291 	 */
6292 
6293 	inode_item = btrfs_item_ptr(path->nodes[0], path->slots[0],
6294 				  struct btrfs_inode_item);
6295 	memzero_extent_buffer(path->nodes[0], (unsigned long)inode_item,
6296 			     sizeof(*inode_item));
6297 	fill_inode_item(trans, path->nodes[0], inode_item, inode);
6298 
6299 	if (!args->orphan) {
6300 		ref = btrfs_item_ptr(path->nodes[0], path->slots[0] + 1,
6301 				     struct btrfs_inode_ref);
6302 		ptr = (unsigned long)(ref + 1);
6303 		if (args->subvol) {
6304 			btrfs_set_inode_ref_name_len(path->nodes[0], ref, 2);
6305 			btrfs_set_inode_ref_index(path->nodes[0], ref, 0);
6306 			write_extent_buffer(path->nodes[0], "..", ptr, 2);
6307 		} else {
6308 			btrfs_set_inode_ref_name_len(path->nodes[0], ref,
6309 						     name->len);
6310 			btrfs_set_inode_ref_index(path->nodes[0], ref,
6311 						  BTRFS_I(inode)->dir_index);
6312 			write_extent_buffer(path->nodes[0], name->name, ptr,
6313 					    name->len);
6314 		}
6315 	}
6316 
6317 	btrfs_mark_buffer_dirty(trans, path->nodes[0]);
6318 	/*
6319 	 * We don't need the path anymore, plus inheriting properties, adding
6320 	 * ACLs, security xattrs, orphan item or adding the link, will result in
6321 	 * allocating yet another path. So just free our path.
6322 	 */
6323 	btrfs_free_path(path);
6324 	path = NULL;
6325 
6326 	if (args->subvol) {
6327 		struct inode *parent;
6328 
6329 		/*
6330 		 * Subvolumes inherit properties from their parent subvolume,
6331 		 * not the directory they were created in.
6332 		 */
6333 		parent = btrfs_iget(fs_info->sb, BTRFS_FIRST_FREE_OBJECTID,
6334 				    BTRFS_I(dir)->root);
6335 		if (IS_ERR(parent)) {
6336 			ret = PTR_ERR(parent);
6337 		} else {
6338 			ret = btrfs_inode_inherit_props(trans, inode, parent);
6339 			iput(parent);
6340 		}
6341 	} else {
6342 		ret = btrfs_inode_inherit_props(trans, inode, dir);
6343 	}
6344 	if (ret) {
6345 		btrfs_err(fs_info,
6346 			  "error inheriting props for ino %llu (root %llu): %d",
6347 			  btrfs_ino(BTRFS_I(inode)), root->root_key.objectid,
6348 			  ret);
6349 	}
6350 
6351 	/*
6352 	 * Subvolumes don't inherit ACLs or get passed to the LSM. This is
6353 	 * probably a bug.
6354 	 */
6355 	if (!args->subvol) {
6356 		ret = btrfs_init_inode_security(trans, args);
6357 		if (ret) {
6358 			btrfs_abort_transaction(trans, ret);
6359 			goto discard;
6360 		}
6361 	}
6362 
6363 	inode_tree_add(BTRFS_I(inode));
6364 
6365 	trace_btrfs_inode_new(inode);
6366 	btrfs_set_inode_last_trans(trans, BTRFS_I(inode));
6367 
6368 	btrfs_update_root_times(trans, root);
6369 
6370 	if (args->orphan) {
6371 		ret = btrfs_orphan_add(trans, BTRFS_I(inode));
6372 	} else {
6373 		ret = btrfs_add_link(trans, BTRFS_I(dir), BTRFS_I(inode), name,
6374 				     0, BTRFS_I(inode)->dir_index);
6375 	}
6376 	if (ret) {
6377 		btrfs_abort_transaction(trans, ret);
6378 		goto discard;
6379 	}
6380 
6381 	return 0;
6382 
6383 discard:
6384 	/*
6385 	 * discard_new_inode() calls iput(), but the caller owns the reference
6386 	 * to the inode.
6387 	 */
6388 	ihold(inode);
6389 	discard_new_inode(inode);
6390 out:
6391 	btrfs_free_path(path);
6392 	return ret;
6393 }
6394 
6395 /*
6396  * utility function to add 'inode' into 'parent_inode' with
6397  * a give name and a given sequence number.
6398  * if 'add_backref' is true, also insert a backref from the
6399  * inode to the parent directory.
6400  */
6401 int btrfs_add_link(struct btrfs_trans_handle *trans,
6402 		   struct btrfs_inode *parent_inode, struct btrfs_inode *inode,
6403 		   const struct fscrypt_str *name, int add_backref, u64 index)
6404 {
6405 	int ret = 0;
6406 	struct btrfs_key key;
6407 	struct btrfs_root *root = parent_inode->root;
6408 	u64 ino = btrfs_ino(inode);
6409 	u64 parent_ino = btrfs_ino(parent_inode);
6410 
6411 	if (unlikely(ino == BTRFS_FIRST_FREE_OBJECTID)) {
6412 		memcpy(&key, &inode->root->root_key, sizeof(key));
6413 	} else {
6414 		key.objectid = ino;
6415 		key.type = BTRFS_INODE_ITEM_KEY;
6416 		key.offset = 0;
6417 	}
6418 
6419 	if (unlikely(ino == BTRFS_FIRST_FREE_OBJECTID)) {
6420 		ret = btrfs_add_root_ref(trans, key.objectid,
6421 					 root->root_key.objectid, parent_ino,
6422 					 index, name);
6423 	} else if (add_backref) {
6424 		ret = btrfs_insert_inode_ref(trans, root, name,
6425 					     ino, parent_ino, index);
6426 	}
6427 
6428 	/* Nothing to clean up yet */
6429 	if (ret)
6430 		return ret;
6431 
6432 	ret = btrfs_insert_dir_item(trans, name, parent_inode, &key,
6433 				    btrfs_inode_type(&inode->vfs_inode), index);
6434 	if (ret == -EEXIST || ret == -EOVERFLOW)
6435 		goto fail_dir_item;
6436 	else if (ret) {
6437 		btrfs_abort_transaction(trans, ret);
6438 		return ret;
6439 	}
6440 
6441 	btrfs_i_size_write(parent_inode, parent_inode->vfs_inode.i_size +
6442 			   name->len * 2);
6443 	inode_inc_iversion(&parent_inode->vfs_inode);
6444 	/*
6445 	 * If we are replaying a log tree, we do not want to update the mtime
6446 	 * and ctime of the parent directory with the current time, since the
6447 	 * log replay procedure is responsible for setting them to their correct
6448 	 * values (the ones it had when the fsync was done).
6449 	 */
6450 	if (!test_bit(BTRFS_FS_LOG_RECOVERING, &root->fs_info->flags))
6451 		parent_inode->vfs_inode.i_mtime =
6452 			inode_set_ctime_current(&parent_inode->vfs_inode);
6453 
6454 	ret = btrfs_update_inode(trans, root, parent_inode);
6455 	if (ret)
6456 		btrfs_abort_transaction(trans, ret);
6457 	return ret;
6458 
6459 fail_dir_item:
6460 	if (unlikely(ino == BTRFS_FIRST_FREE_OBJECTID)) {
6461 		u64 local_index;
6462 		int err;
6463 		err = btrfs_del_root_ref(trans, key.objectid,
6464 					 root->root_key.objectid, parent_ino,
6465 					 &local_index, name);
6466 		if (err)
6467 			btrfs_abort_transaction(trans, err);
6468 	} else if (add_backref) {
6469 		u64 local_index;
6470 		int err;
6471 
6472 		err = btrfs_del_inode_ref(trans, root, name, ino, parent_ino,
6473 					  &local_index);
6474 		if (err)
6475 			btrfs_abort_transaction(trans, err);
6476 	}
6477 
6478 	/* Return the original error code */
6479 	return ret;
6480 }
6481 
6482 static int btrfs_create_common(struct inode *dir, struct dentry *dentry,
6483 			       struct inode *inode)
6484 {
6485 	struct btrfs_fs_info *fs_info = btrfs_sb(dir->i_sb);
6486 	struct btrfs_root *root = BTRFS_I(dir)->root;
6487 	struct btrfs_new_inode_args new_inode_args = {
6488 		.dir = dir,
6489 		.dentry = dentry,
6490 		.inode = inode,
6491 	};
6492 	unsigned int trans_num_items;
6493 	struct btrfs_trans_handle *trans;
6494 	int err;
6495 
6496 	err = btrfs_new_inode_prepare(&new_inode_args, &trans_num_items);
6497 	if (err)
6498 		goto out_inode;
6499 
6500 	trans = btrfs_start_transaction(root, trans_num_items);
6501 	if (IS_ERR(trans)) {
6502 		err = PTR_ERR(trans);
6503 		goto out_new_inode_args;
6504 	}
6505 
6506 	err = btrfs_create_new_inode(trans, &new_inode_args);
6507 	if (!err)
6508 		d_instantiate_new(dentry, inode);
6509 
6510 	btrfs_end_transaction(trans);
6511 	btrfs_btree_balance_dirty(fs_info);
6512 out_new_inode_args:
6513 	btrfs_new_inode_args_destroy(&new_inode_args);
6514 out_inode:
6515 	if (err)
6516 		iput(inode);
6517 	return err;
6518 }
6519 
6520 static int btrfs_mknod(struct mnt_idmap *idmap, struct inode *dir,
6521 		       struct dentry *dentry, umode_t mode, dev_t rdev)
6522 {
6523 	struct inode *inode;
6524 
6525 	inode = new_inode(dir->i_sb);
6526 	if (!inode)
6527 		return -ENOMEM;
6528 	inode_init_owner(idmap, inode, dir, mode);
6529 	inode->i_op = &btrfs_special_inode_operations;
6530 	init_special_inode(inode, inode->i_mode, rdev);
6531 	return btrfs_create_common(dir, dentry, inode);
6532 }
6533 
6534 static int btrfs_create(struct mnt_idmap *idmap, struct inode *dir,
6535 			struct dentry *dentry, umode_t mode, bool excl)
6536 {
6537 	struct inode *inode;
6538 
6539 	inode = new_inode(dir->i_sb);
6540 	if (!inode)
6541 		return -ENOMEM;
6542 	inode_init_owner(idmap, inode, dir, mode);
6543 	inode->i_fop = &btrfs_file_operations;
6544 	inode->i_op = &btrfs_file_inode_operations;
6545 	inode->i_mapping->a_ops = &btrfs_aops;
6546 	return btrfs_create_common(dir, dentry, inode);
6547 }
6548 
6549 static int btrfs_link(struct dentry *old_dentry, struct inode *dir,
6550 		      struct dentry *dentry)
6551 {
6552 	struct btrfs_trans_handle *trans = NULL;
6553 	struct btrfs_root *root = BTRFS_I(dir)->root;
6554 	struct inode *inode = d_inode(old_dentry);
6555 	struct btrfs_fs_info *fs_info = btrfs_sb(inode->i_sb);
6556 	struct fscrypt_name fname;
6557 	u64 index;
6558 	int err;
6559 	int drop_inode = 0;
6560 
6561 	/* do not allow sys_link's with other subvols of the same device */
6562 	if (root->root_key.objectid != BTRFS_I(inode)->root->root_key.objectid)
6563 		return -EXDEV;
6564 
6565 	if (inode->i_nlink >= BTRFS_LINK_MAX)
6566 		return -EMLINK;
6567 
6568 	err = fscrypt_setup_filename(dir, &dentry->d_name, 0, &fname);
6569 	if (err)
6570 		goto fail;
6571 
6572 	err = btrfs_set_inode_index(BTRFS_I(dir), &index);
6573 	if (err)
6574 		goto fail;
6575 
6576 	/*
6577 	 * 2 items for inode and inode ref
6578 	 * 2 items for dir items
6579 	 * 1 item for parent inode
6580 	 * 1 item for orphan item deletion if O_TMPFILE
6581 	 */
6582 	trans = btrfs_start_transaction(root, inode->i_nlink ? 5 : 6);
6583 	if (IS_ERR(trans)) {
6584 		err = PTR_ERR(trans);
6585 		trans = NULL;
6586 		goto fail;
6587 	}
6588 
6589 	/* There are several dir indexes for this inode, clear the cache. */
6590 	BTRFS_I(inode)->dir_index = 0ULL;
6591 	inc_nlink(inode);
6592 	inode_inc_iversion(inode);
6593 	inode_set_ctime_current(inode);
6594 	ihold(inode);
6595 	set_bit(BTRFS_INODE_COPY_EVERYTHING, &BTRFS_I(inode)->runtime_flags);
6596 
6597 	err = btrfs_add_link(trans, BTRFS_I(dir), BTRFS_I(inode),
6598 			     &fname.disk_name, 1, index);
6599 
6600 	if (err) {
6601 		drop_inode = 1;
6602 	} else {
6603 		struct dentry *parent = dentry->d_parent;
6604 
6605 		err = btrfs_update_inode(trans, root, BTRFS_I(inode));
6606 		if (err)
6607 			goto fail;
6608 		if (inode->i_nlink == 1) {
6609 			/*
6610 			 * If new hard link count is 1, it's a file created
6611 			 * with open(2) O_TMPFILE flag.
6612 			 */
6613 			err = btrfs_orphan_del(trans, BTRFS_I(inode));
6614 			if (err)
6615 				goto fail;
6616 		}
6617 		d_instantiate(dentry, inode);
6618 		btrfs_log_new_name(trans, old_dentry, NULL, 0, parent);
6619 	}
6620 
6621 fail:
6622 	fscrypt_free_filename(&fname);
6623 	if (trans)
6624 		btrfs_end_transaction(trans);
6625 	if (drop_inode) {
6626 		inode_dec_link_count(inode);
6627 		iput(inode);
6628 	}
6629 	btrfs_btree_balance_dirty(fs_info);
6630 	return err;
6631 }
6632 
6633 static int btrfs_mkdir(struct mnt_idmap *idmap, struct inode *dir,
6634 		       struct dentry *dentry, umode_t mode)
6635 {
6636 	struct inode *inode;
6637 
6638 	inode = new_inode(dir->i_sb);
6639 	if (!inode)
6640 		return -ENOMEM;
6641 	inode_init_owner(idmap, inode, dir, S_IFDIR | mode);
6642 	inode->i_op = &btrfs_dir_inode_operations;
6643 	inode->i_fop = &btrfs_dir_file_operations;
6644 	return btrfs_create_common(dir, dentry, inode);
6645 }
6646 
6647 static noinline int uncompress_inline(struct btrfs_path *path,
6648 				      struct page *page,
6649 				      struct btrfs_file_extent_item *item)
6650 {
6651 	int ret;
6652 	struct extent_buffer *leaf = path->nodes[0];
6653 	char *tmp;
6654 	size_t max_size;
6655 	unsigned long inline_size;
6656 	unsigned long ptr;
6657 	int compress_type;
6658 
6659 	compress_type = btrfs_file_extent_compression(leaf, item);
6660 	max_size = btrfs_file_extent_ram_bytes(leaf, item);
6661 	inline_size = btrfs_file_extent_inline_item_len(leaf, path->slots[0]);
6662 	tmp = kmalloc(inline_size, GFP_NOFS);
6663 	if (!tmp)
6664 		return -ENOMEM;
6665 	ptr = btrfs_file_extent_inline_start(item);
6666 
6667 	read_extent_buffer(leaf, tmp, ptr, inline_size);
6668 
6669 	max_size = min_t(unsigned long, PAGE_SIZE, max_size);
6670 	ret = btrfs_decompress(compress_type, tmp, page, 0, inline_size, max_size);
6671 
6672 	/*
6673 	 * decompression code contains a memset to fill in any space between the end
6674 	 * of the uncompressed data and the end of max_size in case the decompressed
6675 	 * data ends up shorter than ram_bytes.  That doesn't cover the hole between
6676 	 * the end of an inline extent and the beginning of the next block, so we
6677 	 * cover that region here.
6678 	 */
6679 
6680 	if (max_size < PAGE_SIZE)
6681 		memzero_page(page, max_size, PAGE_SIZE - max_size);
6682 	kfree(tmp);
6683 	return ret;
6684 }
6685 
6686 static int read_inline_extent(struct btrfs_inode *inode, struct btrfs_path *path,
6687 			      struct page *page)
6688 {
6689 	struct btrfs_file_extent_item *fi;
6690 	void *kaddr;
6691 	size_t copy_size;
6692 
6693 	if (!page || PageUptodate(page))
6694 		return 0;
6695 
6696 	ASSERT(page_offset(page) == 0);
6697 
6698 	fi = btrfs_item_ptr(path->nodes[0], path->slots[0],
6699 			    struct btrfs_file_extent_item);
6700 	if (btrfs_file_extent_compression(path->nodes[0], fi) != BTRFS_COMPRESS_NONE)
6701 		return uncompress_inline(path, page, fi);
6702 
6703 	copy_size = min_t(u64, PAGE_SIZE,
6704 			  btrfs_file_extent_ram_bytes(path->nodes[0], fi));
6705 	kaddr = kmap_local_page(page);
6706 	read_extent_buffer(path->nodes[0], kaddr,
6707 			   btrfs_file_extent_inline_start(fi), copy_size);
6708 	kunmap_local(kaddr);
6709 	if (copy_size < PAGE_SIZE)
6710 		memzero_page(page, copy_size, PAGE_SIZE - copy_size);
6711 	return 0;
6712 }
6713 
6714 /*
6715  * Lookup the first extent overlapping a range in a file.
6716  *
6717  * @inode:	file to search in
6718  * @page:	page to read extent data into if the extent is inline
6719  * @pg_offset:	offset into @page to copy to
6720  * @start:	file offset
6721  * @len:	length of range starting at @start
6722  *
6723  * Return the first &struct extent_map which overlaps the given range, reading
6724  * it from the B-tree and caching it if necessary. Note that there may be more
6725  * extents which overlap the given range after the returned extent_map.
6726  *
6727  * If @page is not NULL and the extent is inline, this also reads the extent
6728  * data directly into the page and marks the extent up to date in the io_tree.
6729  *
6730  * Return: ERR_PTR on error, non-NULL extent_map on success.
6731  */
6732 struct extent_map *btrfs_get_extent(struct btrfs_inode *inode,
6733 				    struct page *page, size_t pg_offset,
6734 				    u64 start, u64 len)
6735 {
6736 	struct btrfs_fs_info *fs_info = inode->root->fs_info;
6737 	int ret = 0;
6738 	u64 extent_start = 0;
6739 	u64 extent_end = 0;
6740 	u64 objectid = btrfs_ino(inode);
6741 	int extent_type = -1;
6742 	struct btrfs_path *path = NULL;
6743 	struct btrfs_root *root = inode->root;
6744 	struct btrfs_file_extent_item *item;
6745 	struct extent_buffer *leaf;
6746 	struct btrfs_key found_key;
6747 	struct extent_map *em = NULL;
6748 	struct extent_map_tree *em_tree = &inode->extent_tree;
6749 
6750 	read_lock(&em_tree->lock);
6751 	em = lookup_extent_mapping(em_tree, start, len);
6752 	read_unlock(&em_tree->lock);
6753 
6754 	if (em) {
6755 		if (em->start > start || em->start + em->len <= start)
6756 			free_extent_map(em);
6757 		else if (em->block_start == EXTENT_MAP_INLINE && page)
6758 			free_extent_map(em);
6759 		else
6760 			goto out;
6761 	}
6762 	em = alloc_extent_map();
6763 	if (!em) {
6764 		ret = -ENOMEM;
6765 		goto out;
6766 	}
6767 	em->start = EXTENT_MAP_HOLE;
6768 	em->orig_start = EXTENT_MAP_HOLE;
6769 	em->len = (u64)-1;
6770 	em->block_len = (u64)-1;
6771 
6772 	path = btrfs_alloc_path();
6773 	if (!path) {
6774 		ret = -ENOMEM;
6775 		goto out;
6776 	}
6777 
6778 	/* Chances are we'll be called again, so go ahead and do readahead */
6779 	path->reada = READA_FORWARD;
6780 
6781 	/*
6782 	 * The same explanation in load_free_space_cache applies here as well,
6783 	 * we only read when we're loading the free space cache, and at that
6784 	 * point the commit_root has everything we need.
6785 	 */
6786 	if (btrfs_is_free_space_inode(inode)) {
6787 		path->search_commit_root = 1;
6788 		path->skip_locking = 1;
6789 	}
6790 
6791 	ret = btrfs_lookup_file_extent(NULL, root, path, objectid, start, 0);
6792 	if (ret < 0) {
6793 		goto out;
6794 	} else if (ret > 0) {
6795 		if (path->slots[0] == 0)
6796 			goto not_found;
6797 		path->slots[0]--;
6798 		ret = 0;
6799 	}
6800 
6801 	leaf = path->nodes[0];
6802 	item = btrfs_item_ptr(leaf, path->slots[0],
6803 			      struct btrfs_file_extent_item);
6804 	btrfs_item_key_to_cpu(leaf, &found_key, path->slots[0]);
6805 	if (found_key.objectid != objectid ||
6806 	    found_key.type != BTRFS_EXTENT_DATA_KEY) {
6807 		/*
6808 		 * If we backup past the first extent we want to move forward
6809 		 * and see if there is an extent in front of us, otherwise we'll
6810 		 * say there is a hole for our whole search range which can
6811 		 * cause problems.
6812 		 */
6813 		extent_end = start;
6814 		goto next;
6815 	}
6816 
6817 	extent_type = btrfs_file_extent_type(leaf, item);
6818 	extent_start = found_key.offset;
6819 	extent_end = btrfs_file_extent_end(path);
6820 	if (extent_type == BTRFS_FILE_EXTENT_REG ||
6821 	    extent_type == BTRFS_FILE_EXTENT_PREALLOC) {
6822 		/* Only regular file could have regular/prealloc extent */
6823 		if (!S_ISREG(inode->vfs_inode.i_mode)) {
6824 			ret = -EUCLEAN;
6825 			btrfs_crit(fs_info,
6826 		"regular/prealloc extent found for non-regular inode %llu",
6827 				   btrfs_ino(inode));
6828 			goto out;
6829 		}
6830 		trace_btrfs_get_extent_show_fi_regular(inode, leaf, item,
6831 						       extent_start);
6832 	} else if (extent_type == BTRFS_FILE_EXTENT_INLINE) {
6833 		trace_btrfs_get_extent_show_fi_inline(inode, leaf, item,
6834 						      path->slots[0],
6835 						      extent_start);
6836 	}
6837 next:
6838 	if (start >= extent_end) {
6839 		path->slots[0]++;
6840 		if (path->slots[0] >= btrfs_header_nritems(leaf)) {
6841 			ret = btrfs_next_leaf(root, path);
6842 			if (ret < 0)
6843 				goto out;
6844 			else if (ret > 0)
6845 				goto not_found;
6846 
6847 			leaf = path->nodes[0];
6848 		}
6849 		btrfs_item_key_to_cpu(leaf, &found_key, path->slots[0]);
6850 		if (found_key.objectid != objectid ||
6851 		    found_key.type != BTRFS_EXTENT_DATA_KEY)
6852 			goto not_found;
6853 		if (start + len <= found_key.offset)
6854 			goto not_found;
6855 		if (start > found_key.offset)
6856 			goto next;
6857 
6858 		/* New extent overlaps with existing one */
6859 		em->start = start;
6860 		em->orig_start = start;
6861 		em->len = found_key.offset - start;
6862 		em->block_start = EXTENT_MAP_HOLE;
6863 		goto insert;
6864 	}
6865 
6866 	btrfs_extent_item_to_extent_map(inode, path, item, em);
6867 
6868 	if (extent_type == BTRFS_FILE_EXTENT_REG ||
6869 	    extent_type == BTRFS_FILE_EXTENT_PREALLOC) {
6870 		goto insert;
6871 	} else if (extent_type == BTRFS_FILE_EXTENT_INLINE) {
6872 		/*
6873 		 * Inline extent can only exist at file offset 0. This is
6874 		 * ensured by tree-checker and inline extent creation path.
6875 		 * Thus all members representing file offsets should be zero.
6876 		 */
6877 		ASSERT(pg_offset == 0);
6878 		ASSERT(extent_start == 0);
6879 		ASSERT(em->start == 0);
6880 
6881 		/*
6882 		 * btrfs_extent_item_to_extent_map() should have properly
6883 		 * initialized em members already.
6884 		 *
6885 		 * Other members are not utilized for inline extents.
6886 		 */
6887 		ASSERT(em->block_start == EXTENT_MAP_INLINE);
6888 		ASSERT(em->len == fs_info->sectorsize);
6889 
6890 		ret = read_inline_extent(inode, path, page);
6891 		if (ret < 0)
6892 			goto out;
6893 		goto insert;
6894 	}
6895 not_found:
6896 	em->start = start;
6897 	em->orig_start = start;
6898 	em->len = len;
6899 	em->block_start = EXTENT_MAP_HOLE;
6900 insert:
6901 	ret = 0;
6902 	btrfs_release_path(path);
6903 	if (em->start > start || extent_map_end(em) <= start) {
6904 		btrfs_err(fs_info,
6905 			  "bad extent! em: [%llu %llu] passed [%llu %llu]",
6906 			  em->start, em->len, start, len);
6907 		ret = -EIO;
6908 		goto out;
6909 	}
6910 
6911 	write_lock(&em_tree->lock);
6912 	ret = btrfs_add_extent_mapping(fs_info, em_tree, &em, start, len);
6913 	write_unlock(&em_tree->lock);
6914 out:
6915 	btrfs_free_path(path);
6916 
6917 	trace_btrfs_get_extent(root, inode, em);
6918 
6919 	if (ret) {
6920 		free_extent_map(em);
6921 		return ERR_PTR(ret);
6922 	}
6923 	return em;
6924 }
6925 
6926 static struct extent_map *btrfs_create_dio_extent(struct btrfs_inode *inode,
6927 						  struct btrfs_dio_data *dio_data,
6928 						  const u64 start,
6929 						  const u64 len,
6930 						  const u64 orig_start,
6931 						  const u64 block_start,
6932 						  const u64 block_len,
6933 						  const u64 orig_block_len,
6934 						  const u64 ram_bytes,
6935 						  const int type)
6936 {
6937 	struct extent_map *em = NULL;
6938 	struct btrfs_ordered_extent *ordered;
6939 
6940 	if (type != BTRFS_ORDERED_NOCOW) {
6941 		em = create_io_em(inode, start, len, orig_start, block_start,
6942 				  block_len, orig_block_len, ram_bytes,
6943 				  BTRFS_COMPRESS_NONE, /* compress_type */
6944 				  type);
6945 		if (IS_ERR(em))
6946 			goto out;
6947 	}
6948 	ordered = btrfs_alloc_ordered_extent(inode, start, len, len,
6949 					     block_start, block_len, 0,
6950 					     (1 << type) |
6951 					     (1 << BTRFS_ORDERED_DIRECT),
6952 					     BTRFS_COMPRESS_NONE);
6953 	if (IS_ERR(ordered)) {
6954 		if (em) {
6955 			free_extent_map(em);
6956 			btrfs_drop_extent_map_range(inode, start,
6957 						    start + len - 1, false);
6958 		}
6959 		em = ERR_CAST(ordered);
6960 	} else {
6961 		ASSERT(!dio_data->ordered);
6962 		dio_data->ordered = ordered;
6963 	}
6964  out:
6965 
6966 	return em;
6967 }
6968 
6969 static struct extent_map *btrfs_new_extent_direct(struct btrfs_inode *inode,
6970 						  struct btrfs_dio_data *dio_data,
6971 						  u64 start, u64 len)
6972 {
6973 	struct btrfs_root *root = inode->root;
6974 	struct btrfs_fs_info *fs_info = root->fs_info;
6975 	struct extent_map *em;
6976 	struct btrfs_key ins;
6977 	u64 alloc_hint;
6978 	int ret;
6979 
6980 	alloc_hint = get_extent_allocation_hint(inode, start, len);
6981 again:
6982 	ret = btrfs_reserve_extent(root, len, len, fs_info->sectorsize,
6983 				   0, alloc_hint, &ins, 1, 1);
6984 	if (ret == -EAGAIN) {
6985 		ASSERT(btrfs_is_zoned(fs_info));
6986 		wait_on_bit_io(&inode->root->fs_info->flags, BTRFS_FS_NEED_ZONE_FINISH,
6987 			       TASK_UNINTERRUPTIBLE);
6988 		goto again;
6989 	}
6990 	if (ret)
6991 		return ERR_PTR(ret);
6992 
6993 	em = btrfs_create_dio_extent(inode, dio_data, start, ins.offset, start,
6994 				     ins.objectid, ins.offset, ins.offset,
6995 				     ins.offset, BTRFS_ORDERED_REGULAR);
6996 	btrfs_dec_block_group_reservations(fs_info, ins.objectid);
6997 	if (IS_ERR(em))
6998 		btrfs_free_reserved_extent(fs_info, ins.objectid, ins.offset,
6999 					   1);
7000 
7001 	return em;
7002 }
7003 
7004 static bool btrfs_extent_readonly(struct btrfs_fs_info *fs_info, u64 bytenr)
7005 {
7006 	struct btrfs_block_group *block_group;
7007 	bool readonly = false;
7008 
7009 	block_group = btrfs_lookup_block_group(fs_info, bytenr);
7010 	if (!block_group || block_group->ro)
7011 		readonly = true;
7012 	if (block_group)
7013 		btrfs_put_block_group(block_group);
7014 	return readonly;
7015 }
7016 
7017 /*
7018  * Check if we can do nocow write into the range [@offset, @offset + @len)
7019  *
7020  * @offset:	File offset
7021  * @len:	The length to write, will be updated to the nocow writeable
7022  *		range
7023  * @orig_start:	(optional) Return the original file offset of the file extent
7024  * @orig_len:	(optional) Return the original on-disk length of the file extent
7025  * @ram_bytes:	(optional) Return the ram_bytes of the file extent
7026  * @strict:	if true, omit optimizations that might force us into unnecessary
7027  *		cow. e.g., don't trust generation number.
7028  *
7029  * Return:
7030  * >0	and update @len if we can do nocow write
7031  *  0	if we can't do nocow write
7032  * <0	if error happened
7033  *
7034  * NOTE: This only checks the file extents, caller is responsible to wait for
7035  *	 any ordered extents.
7036  */
7037 noinline int can_nocow_extent(struct inode *inode, u64 offset, u64 *len,
7038 			      u64 *orig_start, u64 *orig_block_len,
7039 			      u64 *ram_bytes, bool nowait, bool strict)
7040 {
7041 	struct btrfs_fs_info *fs_info = btrfs_sb(inode->i_sb);
7042 	struct can_nocow_file_extent_args nocow_args = { 0 };
7043 	struct btrfs_path *path;
7044 	int ret;
7045 	struct extent_buffer *leaf;
7046 	struct btrfs_root *root = BTRFS_I(inode)->root;
7047 	struct extent_io_tree *io_tree = &BTRFS_I(inode)->io_tree;
7048 	struct btrfs_file_extent_item *fi;
7049 	struct btrfs_key key;
7050 	int found_type;
7051 
7052 	path = btrfs_alloc_path();
7053 	if (!path)
7054 		return -ENOMEM;
7055 	path->nowait = nowait;
7056 
7057 	ret = btrfs_lookup_file_extent(NULL, root, path,
7058 			btrfs_ino(BTRFS_I(inode)), offset, 0);
7059 	if (ret < 0)
7060 		goto out;
7061 
7062 	if (ret == 1) {
7063 		if (path->slots[0] == 0) {
7064 			/* can't find the item, must cow */
7065 			ret = 0;
7066 			goto out;
7067 		}
7068 		path->slots[0]--;
7069 	}
7070 	ret = 0;
7071 	leaf = path->nodes[0];
7072 	btrfs_item_key_to_cpu(leaf, &key, path->slots[0]);
7073 	if (key.objectid != btrfs_ino(BTRFS_I(inode)) ||
7074 	    key.type != BTRFS_EXTENT_DATA_KEY) {
7075 		/* not our file or wrong item type, must cow */
7076 		goto out;
7077 	}
7078 
7079 	if (key.offset > offset) {
7080 		/* Wrong offset, must cow */
7081 		goto out;
7082 	}
7083 
7084 	if (btrfs_file_extent_end(path) <= offset)
7085 		goto out;
7086 
7087 	fi = btrfs_item_ptr(leaf, path->slots[0], struct btrfs_file_extent_item);
7088 	found_type = btrfs_file_extent_type(leaf, fi);
7089 	if (ram_bytes)
7090 		*ram_bytes = btrfs_file_extent_ram_bytes(leaf, fi);
7091 
7092 	nocow_args.start = offset;
7093 	nocow_args.end = offset + *len - 1;
7094 	nocow_args.strict = strict;
7095 	nocow_args.free_path = true;
7096 
7097 	ret = can_nocow_file_extent(path, &key, BTRFS_I(inode), &nocow_args);
7098 	/* can_nocow_file_extent() has freed the path. */
7099 	path = NULL;
7100 
7101 	if (ret != 1) {
7102 		/* Treat errors as not being able to NOCOW. */
7103 		ret = 0;
7104 		goto out;
7105 	}
7106 
7107 	ret = 0;
7108 	if (btrfs_extent_readonly(fs_info, nocow_args.disk_bytenr))
7109 		goto out;
7110 
7111 	if (!(BTRFS_I(inode)->flags & BTRFS_INODE_NODATACOW) &&
7112 	    found_type == BTRFS_FILE_EXTENT_PREALLOC) {
7113 		u64 range_end;
7114 
7115 		range_end = round_up(offset + nocow_args.num_bytes,
7116 				     root->fs_info->sectorsize) - 1;
7117 		ret = test_range_bit(io_tree, offset, range_end,
7118 				     EXTENT_DELALLOC, 0, NULL);
7119 		if (ret) {
7120 			ret = -EAGAIN;
7121 			goto out;
7122 		}
7123 	}
7124 
7125 	if (orig_start)
7126 		*orig_start = key.offset - nocow_args.extent_offset;
7127 	if (orig_block_len)
7128 		*orig_block_len = nocow_args.disk_num_bytes;
7129 
7130 	*len = nocow_args.num_bytes;
7131 	ret = 1;
7132 out:
7133 	btrfs_free_path(path);
7134 	return ret;
7135 }
7136 
7137 static int lock_extent_direct(struct inode *inode, u64 lockstart, u64 lockend,
7138 			      struct extent_state **cached_state,
7139 			      unsigned int iomap_flags)
7140 {
7141 	const bool writing = (iomap_flags & IOMAP_WRITE);
7142 	const bool nowait = (iomap_flags & IOMAP_NOWAIT);
7143 	struct extent_io_tree *io_tree = &BTRFS_I(inode)->io_tree;
7144 	struct btrfs_ordered_extent *ordered;
7145 	int ret = 0;
7146 
7147 	while (1) {
7148 		if (nowait) {
7149 			if (!try_lock_extent(io_tree, lockstart, lockend,
7150 					     cached_state))
7151 				return -EAGAIN;
7152 		} else {
7153 			lock_extent(io_tree, lockstart, lockend, cached_state);
7154 		}
7155 		/*
7156 		 * We're concerned with the entire range that we're going to be
7157 		 * doing DIO to, so we need to make sure there's no ordered
7158 		 * extents in this range.
7159 		 */
7160 		ordered = btrfs_lookup_ordered_range(BTRFS_I(inode), lockstart,
7161 						     lockend - lockstart + 1);
7162 
7163 		/*
7164 		 * We need to make sure there are no buffered pages in this
7165 		 * range either, we could have raced between the invalidate in
7166 		 * generic_file_direct_write and locking the extent.  The
7167 		 * invalidate needs to happen so that reads after a write do not
7168 		 * get stale data.
7169 		 */
7170 		if (!ordered &&
7171 		    (!writing || !filemap_range_has_page(inode->i_mapping,
7172 							 lockstart, lockend)))
7173 			break;
7174 
7175 		unlock_extent(io_tree, lockstart, lockend, cached_state);
7176 
7177 		if (ordered) {
7178 			if (nowait) {
7179 				btrfs_put_ordered_extent(ordered);
7180 				ret = -EAGAIN;
7181 				break;
7182 			}
7183 			/*
7184 			 * If we are doing a DIO read and the ordered extent we
7185 			 * found is for a buffered write, we can not wait for it
7186 			 * to complete and retry, because if we do so we can
7187 			 * deadlock with concurrent buffered writes on page
7188 			 * locks. This happens only if our DIO read covers more
7189 			 * than one extent map, if at this point has already
7190 			 * created an ordered extent for a previous extent map
7191 			 * and locked its range in the inode's io tree, and a
7192 			 * concurrent write against that previous extent map's
7193 			 * range and this range started (we unlock the ranges
7194 			 * in the io tree only when the bios complete and
7195 			 * buffered writes always lock pages before attempting
7196 			 * to lock range in the io tree).
7197 			 */
7198 			if (writing ||
7199 			    test_bit(BTRFS_ORDERED_DIRECT, &ordered->flags))
7200 				btrfs_start_ordered_extent(ordered);
7201 			else
7202 				ret = nowait ? -EAGAIN : -ENOTBLK;
7203 			btrfs_put_ordered_extent(ordered);
7204 		} else {
7205 			/*
7206 			 * We could trigger writeback for this range (and wait
7207 			 * for it to complete) and then invalidate the pages for
7208 			 * this range (through invalidate_inode_pages2_range()),
7209 			 * but that can lead us to a deadlock with a concurrent
7210 			 * call to readahead (a buffered read or a defrag call
7211 			 * triggered a readahead) on a page lock due to an
7212 			 * ordered dio extent we created before but did not have
7213 			 * yet a corresponding bio submitted (whence it can not
7214 			 * complete), which makes readahead wait for that
7215 			 * ordered extent to complete while holding a lock on
7216 			 * that page.
7217 			 */
7218 			ret = nowait ? -EAGAIN : -ENOTBLK;
7219 		}
7220 
7221 		if (ret)
7222 			break;
7223 
7224 		cond_resched();
7225 	}
7226 
7227 	return ret;
7228 }
7229 
7230 /* The callers of this must take lock_extent() */
7231 static struct extent_map *create_io_em(struct btrfs_inode *inode, u64 start,
7232 				       u64 len, u64 orig_start, u64 block_start,
7233 				       u64 block_len, u64 orig_block_len,
7234 				       u64 ram_bytes, int compress_type,
7235 				       int type)
7236 {
7237 	struct extent_map *em;
7238 	int ret;
7239 
7240 	ASSERT(type == BTRFS_ORDERED_PREALLOC ||
7241 	       type == BTRFS_ORDERED_COMPRESSED ||
7242 	       type == BTRFS_ORDERED_NOCOW ||
7243 	       type == BTRFS_ORDERED_REGULAR);
7244 
7245 	em = alloc_extent_map();
7246 	if (!em)
7247 		return ERR_PTR(-ENOMEM);
7248 
7249 	em->start = start;
7250 	em->orig_start = orig_start;
7251 	em->len = len;
7252 	em->block_len = block_len;
7253 	em->block_start = block_start;
7254 	em->orig_block_len = orig_block_len;
7255 	em->ram_bytes = ram_bytes;
7256 	em->generation = -1;
7257 	set_bit(EXTENT_FLAG_PINNED, &em->flags);
7258 	if (type == BTRFS_ORDERED_PREALLOC) {
7259 		set_bit(EXTENT_FLAG_FILLING, &em->flags);
7260 	} else if (type == BTRFS_ORDERED_COMPRESSED) {
7261 		set_bit(EXTENT_FLAG_COMPRESSED, &em->flags);
7262 		em->compress_type = compress_type;
7263 	}
7264 
7265 	ret = btrfs_replace_extent_map_range(inode, em, true);
7266 	if (ret) {
7267 		free_extent_map(em);
7268 		return ERR_PTR(ret);
7269 	}
7270 
7271 	/* em got 2 refs now, callers needs to do free_extent_map once. */
7272 	return em;
7273 }
7274 
7275 
7276 static int btrfs_get_blocks_direct_write(struct extent_map **map,
7277 					 struct inode *inode,
7278 					 struct btrfs_dio_data *dio_data,
7279 					 u64 start, u64 *lenp,
7280 					 unsigned int iomap_flags)
7281 {
7282 	const bool nowait = (iomap_flags & IOMAP_NOWAIT);
7283 	struct btrfs_fs_info *fs_info = btrfs_sb(inode->i_sb);
7284 	struct extent_map *em = *map;
7285 	int type;
7286 	u64 block_start, orig_start, orig_block_len, ram_bytes;
7287 	struct btrfs_block_group *bg;
7288 	bool can_nocow = false;
7289 	bool space_reserved = false;
7290 	u64 len = *lenp;
7291 	u64 prev_len;
7292 	int ret = 0;
7293 
7294 	/*
7295 	 * We don't allocate a new extent in the following cases
7296 	 *
7297 	 * 1) The inode is marked as NODATACOW. In this case we'll just use the
7298 	 * existing extent.
7299 	 * 2) The extent is marked as PREALLOC. We're good to go here and can
7300 	 * just use the extent.
7301 	 *
7302 	 */
7303 	if (test_bit(EXTENT_FLAG_PREALLOC, &em->flags) ||
7304 	    ((BTRFS_I(inode)->flags & BTRFS_INODE_NODATACOW) &&
7305 	     em->block_start != EXTENT_MAP_HOLE)) {
7306 		if (test_bit(EXTENT_FLAG_PREALLOC, &em->flags))
7307 			type = BTRFS_ORDERED_PREALLOC;
7308 		else
7309 			type = BTRFS_ORDERED_NOCOW;
7310 		len = min(len, em->len - (start - em->start));
7311 		block_start = em->block_start + (start - em->start);
7312 
7313 		if (can_nocow_extent(inode, start, &len, &orig_start,
7314 				     &orig_block_len, &ram_bytes, false, false) == 1) {
7315 			bg = btrfs_inc_nocow_writers(fs_info, block_start);
7316 			if (bg)
7317 				can_nocow = true;
7318 		}
7319 	}
7320 
7321 	prev_len = len;
7322 	if (can_nocow) {
7323 		struct extent_map *em2;
7324 
7325 		/* We can NOCOW, so only need to reserve metadata space. */
7326 		ret = btrfs_delalloc_reserve_metadata(BTRFS_I(inode), len, len,
7327 						      nowait);
7328 		if (ret < 0) {
7329 			/* Our caller expects us to free the input extent map. */
7330 			free_extent_map(em);
7331 			*map = NULL;
7332 			btrfs_dec_nocow_writers(bg);
7333 			if (nowait && (ret == -ENOSPC || ret == -EDQUOT))
7334 				ret = -EAGAIN;
7335 			goto out;
7336 		}
7337 		space_reserved = true;
7338 
7339 		em2 = btrfs_create_dio_extent(BTRFS_I(inode), dio_data, start, len,
7340 					      orig_start, block_start,
7341 					      len, orig_block_len,
7342 					      ram_bytes, type);
7343 		btrfs_dec_nocow_writers(bg);
7344 		if (type == BTRFS_ORDERED_PREALLOC) {
7345 			free_extent_map(em);
7346 			*map = em2;
7347 			em = em2;
7348 		}
7349 
7350 		if (IS_ERR(em2)) {
7351 			ret = PTR_ERR(em2);
7352 			goto out;
7353 		}
7354 
7355 		dio_data->nocow_done = true;
7356 	} else {
7357 		/* Our caller expects us to free the input extent map. */
7358 		free_extent_map(em);
7359 		*map = NULL;
7360 
7361 		if (nowait) {
7362 			ret = -EAGAIN;
7363 			goto out;
7364 		}
7365 
7366 		/*
7367 		 * If we could not allocate data space before locking the file
7368 		 * range and we can't do a NOCOW write, then we have to fail.
7369 		 */
7370 		if (!dio_data->data_space_reserved) {
7371 			ret = -ENOSPC;
7372 			goto out;
7373 		}
7374 
7375 		/*
7376 		 * We have to COW and we have already reserved data space before,
7377 		 * so now we reserve only metadata.
7378 		 */
7379 		ret = btrfs_delalloc_reserve_metadata(BTRFS_I(inode), len, len,
7380 						      false);
7381 		if (ret < 0)
7382 			goto out;
7383 		space_reserved = true;
7384 
7385 		em = btrfs_new_extent_direct(BTRFS_I(inode), dio_data, start, len);
7386 		if (IS_ERR(em)) {
7387 			ret = PTR_ERR(em);
7388 			goto out;
7389 		}
7390 		*map = em;
7391 		len = min(len, em->len - (start - em->start));
7392 		if (len < prev_len)
7393 			btrfs_delalloc_release_metadata(BTRFS_I(inode),
7394 							prev_len - len, true);
7395 	}
7396 
7397 	/*
7398 	 * We have created our ordered extent, so we can now release our reservation
7399 	 * for an outstanding extent.
7400 	 */
7401 	btrfs_delalloc_release_extents(BTRFS_I(inode), prev_len);
7402 
7403 	/*
7404 	 * Need to update the i_size under the extent lock so buffered
7405 	 * readers will get the updated i_size when we unlock.
7406 	 */
7407 	if (start + len > i_size_read(inode))
7408 		i_size_write(inode, start + len);
7409 out:
7410 	if (ret && space_reserved) {
7411 		btrfs_delalloc_release_extents(BTRFS_I(inode), len);
7412 		btrfs_delalloc_release_metadata(BTRFS_I(inode), len, true);
7413 	}
7414 	*lenp = len;
7415 	return ret;
7416 }
7417 
7418 static int btrfs_dio_iomap_begin(struct inode *inode, loff_t start,
7419 		loff_t length, unsigned int flags, struct iomap *iomap,
7420 		struct iomap *srcmap)
7421 {
7422 	struct iomap_iter *iter = container_of(iomap, struct iomap_iter, iomap);
7423 	struct btrfs_fs_info *fs_info = btrfs_sb(inode->i_sb);
7424 	struct extent_map *em;
7425 	struct extent_state *cached_state = NULL;
7426 	struct btrfs_dio_data *dio_data = iter->private;
7427 	u64 lockstart, lockend;
7428 	const bool write = !!(flags & IOMAP_WRITE);
7429 	int ret = 0;
7430 	u64 len = length;
7431 	const u64 data_alloc_len = length;
7432 	bool unlock_extents = false;
7433 
7434 	/*
7435 	 * We could potentially fault if we have a buffer > PAGE_SIZE, and if
7436 	 * we're NOWAIT we may submit a bio for a partial range and return
7437 	 * EIOCBQUEUED, which would result in an errant short read.
7438 	 *
7439 	 * The best way to handle this would be to allow for partial completions
7440 	 * of iocb's, so we could submit the partial bio, return and fault in
7441 	 * the rest of the pages, and then submit the io for the rest of the
7442 	 * range.  However we don't have that currently, so simply return
7443 	 * -EAGAIN at this point so that the normal path is used.
7444 	 */
7445 	if (!write && (flags & IOMAP_NOWAIT) && length > PAGE_SIZE)
7446 		return -EAGAIN;
7447 
7448 	/*
7449 	 * Cap the size of reads to that usually seen in buffered I/O as we need
7450 	 * to allocate a contiguous array for the checksums.
7451 	 */
7452 	if (!write)
7453 		len = min_t(u64, len, fs_info->sectorsize * BTRFS_MAX_BIO_SECTORS);
7454 
7455 	lockstart = start;
7456 	lockend = start + len - 1;
7457 
7458 	/*
7459 	 * iomap_dio_rw() only does filemap_write_and_wait_range(), which isn't
7460 	 * enough if we've written compressed pages to this area, so we need to
7461 	 * flush the dirty pages again to make absolutely sure that any
7462 	 * outstanding dirty pages are on disk - the first flush only starts
7463 	 * compression on the data, while keeping the pages locked, so by the
7464 	 * time the second flush returns we know bios for the compressed pages
7465 	 * were submitted and finished, and the pages no longer under writeback.
7466 	 *
7467 	 * If we have a NOWAIT request and we have any pages in the range that
7468 	 * are locked, likely due to compression still in progress, we don't want
7469 	 * to block on page locks. We also don't want to block on pages marked as
7470 	 * dirty or under writeback (same as for the non-compression case).
7471 	 * iomap_dio_rw() did the same check, but after that and before we got
7472 	 * here, mmap'ed writes may have happened or buffered reads started
7473 	 * (readpage() and readahead(), which lock pages), as we haven't locked
7474 	 * the file range yet.
7475 	 */
7476 	if (test_bit(BTRFS_INODE_HAS_ASYNC_EXTENT,
7477 		     &BTRFS_I(inode)->runtime_flags)) {
7478 		if (flags & IOMAP_NOWAIT) {
7479 			if (filemap_range_needs_writeback(inode->i_mapping,
7480 							  lockstart, lockend))
7481 				return -EAGAIN;
7482 		} else {
7483 			ret = filemap_fdatawrite_range(inode->i_mapping, start,
7484 						       start + length - 1);
7485 			if (ret)
7486 				return ret;
7487 		}
7488 	}
7489 
7490 	memset(dio_data, 0, sizeof(*dio_data));
7491 
7492 	/*
7493 	 * We always try to allocate data space and must do it before locking
7494 	 * the file range, to avoid deadlocks with concurrent writes to the same
7495 	 * range if the range has several extents and the writes don't expand the
7496 	 * current i_size (the inode lock is taken in shared mode). If we fail to
7497 	 * allocate data space here we continue and later, after locking the
7498 	 * file range, we fail with ENOSPC only if we figure out we can not do a
7499 	 * NOCOW write.
7500 	 */
7501 	if (write && !(flags & IOMAP_NOWAIT)) {
7502 		ret = btrfs_check_data_free_space(BTRFS_I(inode),
7503 						  &dio_data->data_reserved,
7504 						  start, data_alloc_len, false);
7505 		if (!ret)
7506 			dio_data->data_space_reserved = true;
7507 		else if (ret && !(BTRFS_I(inode)->flags &
7508 				  (BTRFS_INODE_NODATACOW | BTRFS_INODE_PREALLOC)))
7509 			goto err;
7510 	}
7511 
7512 	/*
7513 	 * If this errors out it's because we couldn't invalidate pagecache for
7514 	 * this range and we need to fallback to buffered IO, or we are doing a
7515 	 * NOWAIT read/write and we need to block.
7516 	 */
7517 	ret = lock_extent_direct(inode, lockstart, lockend, &cached_state, flags);
7518 	if (ret < 0)
7519 		goto err;
7520 
7521 	em = btrfs_get_extent(BTRFS_I(inode), NULL, 0, start, len);
7522 	if (IS_ERR(em)) {
7523 		ret = PTR_ERR(em);
7524 		goto unlock_err;
7525 	}
7526 
7527 	/*
7528 	 * Ok for INLINE and COMPRESSED extents we need to fallback on buffered
7529 	 * io.  INLINE is special, and we could probably kludge it in here, but
7530 	 * it's still buffered so for safety lets just fall back to the generic
7531 	 * buffered path.
7532 	 *
7533 	 * For COMPRESSED we _have_ to read the entire extent in so we can
7534 	 * decompress it, so there will be buffering required no matter what we
7535 	 * do, so go ahead and fallback to buffered.
7536 	 *
7537 	 * We return -ENOTBLK because that's what makes DIO go ahead and go back
7538 	 * to buffered IO.  Don't blame me, this is the price we pay for using
7539 	 * the generic code.
7540 	 */
7541 	if (test_bit(EXTENT_FLAG_COMPRESSED, &em->flags) ||
7542 	    em->block_start == EXTENT_MAP_INLINE) {
7543 		free_extent_map(em);
7544 		/*
7545 		 * If we are in a NOWAIT context, return -EAGAIN in order to
7546 		 * fallback to buffered IO. This is not only because we can
7547 		 * block with buffered IO (no support for NOWAIT semantics at
7548 		 * the moment) but also to avoid returning short reads to user
7549 		 * space - this happens if we were able to read some data from
7550 		 * previous non-compressed extents and then when we fallback to
7551 		 * buffered IO, at btrfs_file_read_iter() by calling
7552 		 * filemap_read(), we fail to fault in pages for the read buffer,
7553 		 * in which case filemap_read() returns a short read (the number
7554 		 * of bytes previously read is > 0, so it does not return -EFAULT).
7555 		 */
7556 		ret = (flags & IOMAP_NOWAIT) ? -EAGAIN : -ENOTBLK;
7557 		goto unlock_err;
7558 	}
7559 
7560 	len = min(len, em->len - (start - em->start));
7561 
7562 	/*
7563 	 * If we have a NOWAIT request and the range contains multiple extents
7564 	 * (or a mix of extents and holes), then we return -EAGAIN to make the
7565 	 * caller fallback to a context where it can do a blocking (without
7566 	 * NOWAIT) request. This way we avoid doing partial IO and returning
7567 	 * success to the caller, which is not optimal for writes and for reads
7568 	 * it can result in unexpected behaviour for an application.
7569 	 *
7570 	 * When doing a read, because we use IOMAP_DIO_PARTIAL when calling
7571 	 * iomap_dio_rw(), we can end up returning less data then what the caller
7572 	 * asked for, resulting in an unexpected, and incorrect, short read.
7573 	 * That is, the caller asked to read N bytes and we return less than that,
7574 	 * which is wrong unless we are crossing EOF. This happens if we get a
7575 	 * page fault error when trying to fault in pages for the buffer that is
7576 	 * associated to the struct iov_iter passed to iomap_dio_rw(), and we
7577 	 * have previously submitted bios for other extents in the range, in
7578 	 * which case iomap_dio_rw() may return us EIOCBQUEUED if not all of
7579 	 * those bios have completed by the time we get the page fault error,
7580 	 * which we return back to our caller - we should only return EIOCBQUEUED
7581 	 * after we have submitted bios for all the extents in the range.
7582 	 */
7583 	if ((flags & IOMAP_NOWAIT) && len < length) {
7584 		free_extent_map(em);
7585 		ret = -EAGAIN;
7586 		goto unlock_err;
7587 	}
7588 
7589 	if (write) {
7590 		ret = btrfs_get_blocks_direct_write(&em, inode, dio_data,
7591 						    start, &len, flags);
7592 		if (ret < 0)
7593 			goto unlock_err;
7594 		unlock_extents = true;
7595 		/* Recalc len in case the new em is smaller than requested */
7596 		len = min(len, em->len - (start - em->start));
7597 		if (dio_data->data_space_reserved) {
7598 			u64 release_offset;
7599 			u64 release_len = 0;
7600 
7601 			if (dio_data->nocow_done) {
7602 				release_offset = start;
7603 				release_len = data_alloc_len;
7604 			} else if (len < data_alloc_len) {
7605 				release_offset = start + len;
7606 				release_len = data_alloc_len - len;
7607 			}
7608 
7609 			if (release_len > 0)
7610 				btrfs_free_reserved_data_space(BTRFS_I(inode),
7611 							       dio_data->data_reserved,
7612 							       release_offset,
7613 							       release_len);
7614 		}
7615 	} else {
7616 		/*
7617 		 * We need to unlock only the end area that we aren't using.
7618 		 * The rest is going to be unlocked by the endio routine.
7619 		 */
7620 		lockstart = start + len;
7621 		if (lockstart < lockend)
7622 			unlock_extents = true;
7623 	}
7624 
7625 	if (unlock_extents)
7626 		unlock_extent(&BTRFS_I(inode)->io_tree, lockstart, lockend,
7627 			      &cached_state);
7628 	else
7629 		free_extent_state(cached_state);
7630 
7631 	/*
7632 	 * Translate extent map information to iomap.
7633 	 * We trim the extents (and move the addr) even though iomap code does
7634 	 * that, since we have locked only the parts we are performing I/O in.
7635 	 */
7636 	if ((em->block_start == EXTENT_MAP_HOLE) ||
7637 	    (test_bit(EXTENT_FLAG_PREALLOC, &em->flags) && !write)) {
7638 		iomap->addr = IOMAP_NULL_ADDR;
7639 		iomap->type = IOMAP_HOLE;
7640 	} else {
7641 		iomap->addr = em->block_start + (start - em->start);
7642 		iomap->type = IOMAP_MAPPED;
7643 	}
7644 	iomap->offset = start;
7645 	iomap->bdev = fs_info->fs_devices->latest_dev->bdev;
7646 	iomap->length = len;
7647 	free_extent_map(em);
7648 
7649 	return 0;
7650 
7651 unlock_err:
7652 	unlock_extent(&BTRFS_I(inode)->io_tree, lockstart, lockend,
7653 		      &cached_state);
7654 err:
7655 	if (dio_data->data_space_reserved) {
7656 		btrfs_free_reserved_data_space(BTRFS_I(inode),
7657 					       dio_data->data_reserved,
7658 					       start, data_alloc_len);
7659 		extent_changeset_free(dio_data->data_reserved);
7660 	}
7661 
7662 	return ret;
7663 }
7664 
7665 static int btrfs_dio_iomap_end(struct inode *inode, loff_t pos, loff_t length,
7666 		ssize_t written, unsigned int flags, struct iomap *iomap)
7667 {
7668 	struct iomap_iter *iter = container_of(iomap, struct iomap_iter, iomap);
7669 	struct btrfs_dio_data *dio_data = iter->private;
7670 	size_t submitted = dio_data->submitted;
7671 	const bool write = !!(flags & IOMAP_WRITE);
7672 	int ret = 0;
7673 
7674 	if (!write && (iomap->type == IOMAP_HOLE)) {
7675 		/* If reading from a hole, unlock and return */
7676 		unlock_extent(&BTRFS_I(inode)->io_tree, pos, pos + length - 1,
7677 			      NULL);
7678 		return 0;
7679 	}
7680 
7681 	if (submitted < length) {
7682 		pos += submitted;
7683 		length -= submitted;
7684 		if (write)
7685 			btrfs_finish_ordered_extent(dio_data->ordered, NULL,
7686 						    pos, length, false);
7687 		else
7688 			unlock_extent(&BTRFS_I(inode)->io_tree, pos,
7689 				      pos + length - 1, NULL);
7690 		ret = -ENOTBLK;
7691 	}
7692 	if (write) {
7693 		btrfs_put_ordered_extent(dio_data->ordered);
7694 		dio_data->ordered = NULL;
7695 	}
7696 
7697 	if (write)
7698 		extent_changeset_free(dio_data->data_reserved);
7699 	return ret;
7700 }
7701 
7702 static void btrfs_dio_end_io(struct btrfs_bio *bbio)
7703 {
7704 	struct btrfs_dio_private *dip =
7705 		container_of(bbio, struct btrfs_dio_private, bbio);
7706 	struct btrfs_inode *inode = bbio->inode;
7707 	struct bio *bio = &bbio->bio;
7708 
7709 	if (bio->bi_status) {
7710 		btrfs_warn(inode->root->fs_info,
7711 		"direct IO failed ino %llu op 0x%0x offset %#llx len %u err no %d",
7712 			   btrfs_ino(inode), bio->bi_opf,
7713 			   dip->file_offset, dip->bytes, bio->bi_status);
7714 	}
7715 
7716 	if (btrfs_op(bio) == BTRFS_MAP_WRITE) {
7717 		btrfs_finish_ordered_extent(bbio->ordered, NULL,
7718 					    dip->file_offset, dip->bytes,
7719 					    !bio->bi_status);
7720 	} else {
7721 		unlock_extent(&inode->io_tree, dip->file_offset,
7722 			      dip->file_offset + dip->bytes - 1, NULL);
7723 	}
7724 
7725 	bbio->bio.bi_private = bbio->private;
7726 	iomap_dio_bio_end_io(bio);
7727 }
7728 
7729 static void btrfs_dio_submit_io(const struct iomap_iter *iter, struct bio *bio,
7730 				loff_t file_offset)
7731 {
7732 	struct btrfs_bio *bbio = btrfs_bio(bio);
7733 	struct btrfs_dio_private *dip =
7734 		container_of(bbio, struct btrfs_dio_private, bbio);
7735 	struct btrfs_dio_data *dio_data = iter->private;
7736 
7737 	btrfs_bio_init(bbio, BTRFS_I(iter->inode)->root->fs_info,
7738 		       btrfs_dio_end_io, bio->bi_private);
7739 	bbio->inode = BTRFS_I(iter->inode);
7740 	bbio->file_offset = file_offset;
7741 
7742 	dip->file_offset = file_offset;
7743 	dip->bytes = bio->bi_iter.bi_size;
7744 
7745 	dio_data->submitted += bio->bi_iter.bi_size;
7746 
7747 	/*
7748 	 * Check if we are doing a partial write.  If we are, we need to split
7749 	 * the ordered extent to match the submitted bio.  Hang on to the
7750 	 * remaining unfinishable ordered_extent in dio_data so that it can be
7751 	 * cancelled in iomap_end to avoid a deadlock wherein faulting the
7752 	 * remaining pages is blocked on the outstanding ordered extent.
7753 	 */
7754 	if (iter->flags & IOMAP_WRITE) {
7755 		int ret;
7756 
7757 		ret = btrfs_extract_ordered_extent(bbio, dio_data->ordered);
7758 		if (ret) {
7759 			btrfs_finish_ordered_extent(dio_data->ordered, NULL,
7760 						    file_offset, dip->bytes,
7761 						    !ret);
7762 			bio->bi_status = errno_to_blk_status(ret);
7763 			iomap_dio_bio_end_io(bio);
7764 			return;
7765 		}
7766 	}
7767 
7768 	btrfs_submit_bio(bbio, 0);
7769 }
7770 
7771 static const struct iomap_ops btrfs_dio_iomap_ops = {
7772 	.iomap_begin            = btrfs_dio_iomap_begin,
7773 	.iomap_end              = btrfs_dio_iomap_end,
7774 };
7775 
7776 static const struct iomap_dio_ops btrfs_dio_ops = {
7777 	.submit_io		= btrfs_dio_submit_io,
7778 	.bio_set		= &btrfs_dio_bioset,
7779 };
7780 
7781 ssize_t btrfs_dio_read(struct kiocb *iocb, struct iov_iter *iter, size_t done_before)
7782 {
7783 	struct btrfs_dio_data data = { 0 };
7784 
7785 	return iomap_dio_rw(iocb, iter, &btrfs_dio_iomap_ops, &btrfs_dio_ops,
7786 			    IOMAP_DIO_PARTIAL, &data, done_before);
7787 }
7788 
7789 struct iomap_dio *btrfs_dio_write(struct kiocb *iocb, struct iov_iter *iter,
7790 				  size_t done_before)
7791 {
7792 	struct btrfs_dio_data data = { 0 };
7793 
7794 	return __iomap_dio_rw(iocb, iter, &btrfs_dio_iomap_ops, &btrfs_dio_ops,
7795 			    IOMAP_DIO_PARTIAL, &data, done_before);
7796 }
7797 
7798 static int btrfs_fiemap(struct inode *inode, struct fiemap_extent_info *fieinfo,
7799 			u64 start, u64 len)
7800 {
7801 	int	ret;
7802 
7803 	ret = fiemap_prep(inode, fieinfo, start, &len, 0);
7804 	if (ret)
7805 		return ret;
7806 
7807 	/*
7808 	 * fiemap_prep() called filemap_write_and_wait() for the whole possible
7809 	 * file range (0 to LLONG_MAX), but that is not enough if we have
7810 	 * compression enabled. The first filemap_fdatawrite_range() only kicks
7811 	 * in the compression of data (in an async thread) and will return
7812 	 * before the compression is done and writeback is started. A second
7813 	 * filemap_fdatawrite_range() is needed to wait for the compression to
7814 	 * complete and writeback to start. We also need to wait for ordered
7815 	 * extents to complete, because our fiemap implementation uses mainly
7816 	 * file extent items to list the extents, searching for extent maps
7817 	 * only for file ranges with holes or prealloc extents to figure out
7818 	 * if we have delalloc in those ranges.
7819 	 */
7820 	if (fieinfo->fi_flags & FIEMAP_FLAG_SYNC) {
7821 		ret = btrfs_wait_ordered_range(inode, 0, LLONG_MAX);
7822 		if (ret)
7823 			return ret;
7824 	}
7825 
7826 	return extent_fiemap(BTRFS_I(inode), fieinfo, start, len);
7827 }
7828 
7829 static int btrfs_writepages(struct address_space *mapping,
7830 			    struct writeback_control *wbc)
7831 {
7832 	return extent_writepages(mapping, wbc);
7833 }
7834 
7835 static void btrfs_readahead(struct readahead_control *rac)
7836 {
7837 	extent_readahead(rac);
7838 }
7839 
7840 /*
7841  * For release_folio() and invalidate_folio() we have a race window where
7842  * folio_end_writeback() is called but the subpage spinlock is not yet released.
7843  * If we continue to release/invalidate the page, we could cause use-after-free
7844  * for subpage spinlock.  So this function is to spin and wait for subpage
7845  * spinlock.
7846  */
7847 static void wait_subpage_spinlock(struct page *page)
7848 {
7849 	struct btrfs_fs_info *fs_info = btrfs_sb(page->mapping->host->i_sb);
7850 	struct btrfs_subpage *subpage;
7851 
7852 	if (!btrfs_is_subpage(fs_info, page))
7853 		return;
7854 
7855 	ASSERT(PagePrivate(page) && page->private);
7856 	subpage = (struct btrfs_subpage *)page->private;
7857 
7858 	/*
7859 	 * This may look insane as we just acquire the spinlock and release it,
7860 	 * without doing anything.  But we just want to make sure no one is
7861 	 * still holding the subpage spinlock.
7862 	 * And since the page is not dirty nor writeback, and we have page
7863 	 * locked, the only possible way to hold a spinlock is from the endio
7864 	 * function to clear page writeback.
7865 	 *
7866 	 * Here we just acquire the spinlock so that all existing callers
7867 	 * should exit and we're safe to release/invalidate the page.
7868 	 */
7869 	spin_lock_irq(&subpage->lock);
7870 	spin_unlock_irq(&subpage->lock);
7871 }
7872 
7873 static bool __btrfs_release_folio(struct folio *folio, gfp_t gfp_flags)
7874 {
7875 	int ret = try_release_extent_mapping(&folio->page, gfp_flags);
7876 
7877 	if (ret == 1) {
7878 		wait_subpage_spinlock(&folio->page);
7879 		clear_page_extent_mapped(&folio->page);
7880 	}
7881 	return ret;
7882 }
7883 
7884 static bool btrfs_release_folio(struct folio *folio, gfp_t gfp_flags)
7885 {
7886 	if (folio_test_writeback(folio) || folio_test_dirty(folio))
7887 		return false;
7888 	return __btrfs_release_folio(folio, gfp_flags);
7889 }
7890 
7891 #ifdef CONFIG_MIGRATION
7892 static int btrfs_migrate_folio(struct address_space *mapping,
7893 			     struct folio *dst, struct folio *src,
7894 			     enum migrate_mode mode)
7895 {
7896 	int ret = filemap_migrate_folio(mapping, dst, src, mode);
7897 
7898 	if (ret != MIGRATEPAGE_SUCCESS)
7899 		return ret;
7900 
7901 	if (folio_test_ordered(src)) {
7902 		folio_clear_ordered(src);
7903 		folio_set_ordered(dst);
7904 	}
7905 
7906 	return MIGRATEPAGE_SUCCESS;
7907 }
7908 #else
7909 #define btrfs_migrate_folio NULL
7910 #endif
7911 
7912 static void btrfs_invalidate_folio(struct folio *folio, size_t offset,
7913 				 size_t length)
7914 {
7915 	struct btrfs_inode *inode = BTRFS_I(folio->mapping->host);
7916 	struct btrfs_fs_info *fs_info = inode->root->fs_info;
7917 	struct extent_io_tree *tree = &inode->io_tree;
7918 	struct extent_state *cached_state = NULL;
7919 	u64 page_start = folio_pos(folio);
7920 	u64 page_end = page_start + folio_size(folio) - 1;
7921 	u64 cur;
7922 	int inode_evicting = inode->vfs_inode.i_state & I_FREEING;
7923 
7924 	/*
7925 	 * We have folio locked so no new ordered extent can be created on this
7926 	 * page, nor bio can be submitted for this folio.
7927 	 *
7928 	 * But already submitted bio can still be finished on this folio.
7929 	 * Furthermore, endio function won't skip folio which has Ordered
7930 	 * (Private2) already cleared, so it's possible for endio and
7931 	 * invalidate_folio to do the same ordered extent accounting twice
7932 	 * on one folio.
7933 	 *
7934 	 * So here we wait for any submitted bios to finish, so that we won't
7935 	 * do double ordered extent accounting on the same folio.
7936 	 */
7937 	folio_wait_writeback(folio);
7938 	wait_subpage_spinlock(&folio->page);
7939 
7940 	/*
7941 	 * For subpage case, we have call sites like
7942 	 * btrfs_punch_hole_lock_range() which passes range not aligned to
7943 	 * sectorsize.
7944 	 * If the range doesn't cover the full folio, we don't need to and
7945 	 * shouldn't clear page extent mapped, as folio->private can still
7946 	 * record subpage dirty bits for other part of the range.
7947 	 *
7948 	 * For cases that invalidate the full folio even the range doesn't
7949 	 * cover the full folio, like invalidating the last folio, we're
7950 	 * still safe to wait for ordered extent to finish.
7951 	 */
7952 	if (!(offset == 0 && length == folio_size(folio))) {
7953 		btrfs_release_folio(folio, GFP_NOFS);
7954 		return;
7955 	}
7956 
7957 	if (!inode_evicting)
7958 		lock_extent(tree, page_start, page_end, &cached_state);
7959 
7960 	cur = page_start;
7961 	while (cur < page_end) {
7962 		struct btrfs_ordered_extent *ordered;
7963 		u64 range_end;
7964 		u32 range_len;
7965 		u32 extra_flags = 0;
7966 
7967 		ordered = btrfs_lookup_first_ordered_range(inode, cur,
7968 							   page_end + 1 - cur);
7969 		if (!ordered) {
7970 			range_end = page_end;
7971 			/*
7972 			 * No ordered extent covering this range, we are safe
7973 			 * to delete all extent states in the range.
7974 			 */
7975 			extra_flags = EXTENT_CLEAR_ALL_BITS;
7976 			goto next;
7977 		}
7978 		if (ordered->file_offset > cur) {
7979 			/*
7980 			 * There is a range between [cur, oe->file_offset) not
7981 			 * covered by any ordered extent.
7982 			 * We are safe to delete all extent states, and handle
7983 			 * the ordered extent in the next iteration.
7984 			 */
7985 			range_end = ordered->file_offset - 1;
7986 			extra_flags = EXTENT_CLEAR_ALL_BITS;
7987 			goto next;
7988 		}
7989 
7990 		range_end = min(ordered->file_offset + ordered->num_bytes - 1,
7991 				page_end);
7992 		ASSERT(range_end + 1 - cur < U32_MAX);
7993 		range_len = range_end + 1 - cur;
7994 		if (!btrfs_page_test_ordered(fs_info, &folio->page, cur, range_len)) {
7995 			/*
7996 			 * If Ordered (Private2) is cleared, it means endio has
7997 			 * already been executed for the range.
7998 			 * We can't delete the extent states as
7999 			 * btrfs_finish_ordered_io() may still use some of them.
8000 			 */
8001 			goto next;
8002 		}
8003 		btrfs_page_clear_ordered(fs_info, &folio->page, cur, range_len);
8004 
8005 		/*
8006 		 * IO on this page will never be started, so we need to account
8007 		 * for any ordered extents now. Don't clear EXTENT_DELALLOC_NEW
8008 		 * here, must leave that up for the ordered extent completion.
8009 		 *
8010 		 * This will also unlock the range for incoming
8011 		 * btrfs_finish_ordered_io().
8012 		 */
8013 		if (!inode_evicting)
8014 			clear_extent_bit(tree, cur, range_end,
8015 					 EXTENT_DELALLOC |
8016 					 EXTENT_LOCKED | EXTENT_DO_ACCOUNTING |
8017 					 EXTENT_DEFRAG, &cached_state);
8018 
8019 		spin_lock_irq(&inode->ordered_tree.lock);
8020 		set_bit(BTRFS_ORDERED_TRUNCATED, &ordered->flags);
8021 		ordered->truncated_len = min(ordered->truncated_len,
8022 					     cur - ordered->file_offset);
8023 		spin_unlock_irq(&inode->ordered_tree.lock);
8024 
8025 		/*
8026 		 * If the ordered extent has finished, we're safe to delete all
8027 		 * the extent states of the range, otherwise
8028 		 * btrfs_finish_ordered_io() will get executed by endio for
8029 		 * other pages, so we can't delete extent states.
8030 		 */
8031 		if (btrfs_dec_test_ordered_pending(inode, &ordered,
8032 						   cur, range_end + 1 - cur)) {
8033 			btrfs_finish_ordered_io(ordered);
8034 			/*
8035 			 * The ordered extent has finished, now we're again
8036 			 * safe to delete all extent states of the range.
8037 			 */
8038 			extra_flags = EXTENT_CLEAR_ALL_BITS;
8039 		}
8040 next:
8041 		if (ordered)
8042 			btrfs_put_ordered_extent(ordered);
8043 		/*
8044 		 * Qgroup reserved space handler
8045 		 * Sector(s) here will be either:
8046 		 *
8047 		 * 1) Already written to disk or bio already finished
8048 		 *    Then its QGROUP_RESERVED bit in io_tree is already cleared.
8049 		 *    Qgroup will be handled by its qgroup_record then.
8050 		 *    btrfs_qgroup_free_data() call will do nothing here.
8051 		 *
8052 		 * 2) Not written to disk yet
8053 		 *    Then btrfs_qgroup_free_data() call will clear the
8054 		 *    QGROUP_RESERVED bit of its io_tree, and free the qgroup
8055 		 *    reserved data space.
8056 		 *    Since the IO will never happen for this page.
8057 		 */
8058 		btrfs_qgroup_free_data(inode, NULL, cur, range_end + 1 - cur, NULL);
8059 		if (!inode_evicting) {
8060 			clear_extent_bit(tree, cur, range_end, EXTENT_LOCKED |
8061 				 EXTENT_DELALLOC | EXTENT_UPTODATE |
8062 				 EXTENT_DO_ACCOUNTING | EXTENT_DEFRAG |
8063 				 extra_flags, &cached_state);
8064 		}
8065 		cur = range_end + 1;
8066 	}
8067 	/*
8068 	 * We have iterated through all ordered extents of the page, the page
8069 	 * should not have Ordered (Private2) anymore, or the above iteration
8070 	 * did something wrong.
8071 	 */
8072 	ASSERT(!folio_test_ordered(folio));
8073 	btrfs_page_clear_checked(fs_info, &folio->page, folio_pos(folio), folio_size(folio));
8074 	if (!inode_evicting)
8075 		__btrfs_release_folio(folio, GFP_NOFS);
8076 	clear_page_extent_mapped(&folio->page);
8077 }
8078 
8079 /*
8080  * btrfs_page_mkwrite() is not allowed to change the file size as it gets
8081  * called from a page fault handler when a page is first dirtied. Hence we must
8082  * be careful to check for EOF conditions here. We set the page up correctly
8083  * for a written page which means we get ENOSPC checking when writing into
8084  * holes and correct delalloc and unwritten extent mapping on filesystems that
8085  * support these features.
8086  *
8087  * We are not allowed to take the i_mutex here so we have to play games to
8088  * protect against truncate races as the page could now be beyond EOF.  Because
8089  * truncate_setsize() writes the inode size before removing pages, once we have
8090  * the page lock we can determine safely if the page is beyond EOF. If it is not
8091  * beyond EOF, then the page is guaranteed safe against truncation until we
8092  * unlock the page.
8093  */
8094 vm_fault_t btrfs_page_mkwrite(struct vm_fault *vmf)
8095 {
8096 	struct page *page = vmf->page;
8097 	struct inode *inode = file_inode(vmf->vma->vm_file);
8098 	struct btrfs_fs_info *fs_info = btrfs_sb(inode->i_sb);
8099 	struct extent_io_tree *io_tree = &BTRFS_I(inode)->io_tree;
8100 	struct btrfs_ordered_extent *ordered;
8101 	struct extent_state *cached_state = NULL;
8102 	struct extent_changeset *data_reserved = NULL;
8103 	unsigned long zero_start;
8104 	loff_t size;
8105 	vm_fault_t ret;
8106 	int ret2;
8107 	int reserved = 0;
8108 	u64 reserved_space;
8109 	u64 page_start;
8110 	u64 page_end;
8111 	u64 end;
8112 
8113 	reserved_space = PAGE_SIZE;
8114 
8115 	sb_start_pagefault(inode->i_sb);
8116 	page_start = page_offset(page);
8117 	page_end = page_start + PAGE_SIZE - 1;
8118 	end = page_end;
8119 
8120 	/*
8121 	 * Reserving delalloc space after obtaining the page lock can lead to
8122 	 * deadlock. For example, if a dirty page is locked by this function
8123 	 * and the call to btrfs_delalloc_reserve_space() ends up triggering
8124 	 * dirty page write out, then the btrfs_writepages() function could
8125 	 * end up waiting indefinitely to get a lock on the page currently
8126 	 * being processed by btrfs_page_mkwrite() function.
8127 	 */
8128 	ret2 = btrfs_delalloc_reserve_space(BTRFS_I(inode), &data_reserved,
8129 					    page_start, reserved_space);
8130 	if (!ret2) {
8131 		ret2 = file_update_time(vmf->vma->vm_file);
8132 		reserved = 1;
8133 	}
8134 	if (ret2) {
8135 		ret = vmf_error(ret2);
8136 		if (reserved)
8137 			goto out;
8138 		goto out_noreserve;
8139 	}
8140 
8141 	ret = VM_FAULT_NOPAGE; /* make the VM retry the fault */
8142 again:
8143 	down_read(&BTRFS_I(inode)->i_mmap_lock);
8144 	lock_page(page);
8145 	size = i_size_read(inode);
8146 
8147 	if ((page->mapping != inode->i_mapping) ||
8148 	    (page_start >= size)) {
8149 		/* page got truncated out from underneath us */
8150 		goto out_unlock;
8151 	}
8152 	wait_on_page_writeback(page);
8153 
8154 	lock_extent(io_tree, page_start, page_end, &cached_state);
8155 	ret2 = set_page_extent_mapped(page);
8156 	if (ret2 < 0) {
8157 		ret = vmf_error(ret2);
8158 		unlock_extent(io_tree, page_start, page_end, &cached_state);
8159 		goto out_unlock;
8160 	}
8161 
8162 	/*
8163 	 * we can't set the delalloc bits if there are pending ordered
8164 	 * extents.  Drop our locks and wait for them to finish
8165 	 */
8166 	ordered = btrfs_lookup_ordered_range(BTRFS_I(inode), page_start,
8167 			PAGE_SIZE);
8168 	if (ordered) {
8169 		unlock_extent(io_tree, page_start, page_end, &cached_state);
8170 		unlock_page(page);
8171 		up_read(&BTRFS_I(inode)->i_mmap_lock);
8172 		btrfs_start_ordered_extent(ordered);
8173 		btrfs_put_ordered_extent(ordered);
8174 		goto again;
8175 	}
8176 
8177 	if (page->index == ((size - 1) >> PAGE_SHIFT)) {
8178 		reserved_space = round_up(size - page_start,
8179 					  fs_info->sectorsize);
8180 		if (reserved_space < PAGE_SIZE) {
8181 			end = page_start + reserved_space - 1;
8182 			btrfs_delalloc_release_space(BTRFS_I(inode),
8183 					data_reserved, page_start,
8184 					PAGE_SIZE - reserved_space, true);
8185 		}
8186 	}
8187 
8188 	/*
8189 	 * page_mkwrite gets called when the page is firstly dirtied after it's
8190 	 * faulted in, but write(2) could also dirty a page and set delalloc
8191 	 * bits, thus in this case for space account reason, we still need to
8192 	 * clear any delalloc bits within this page range since we have to
8193 	 * reserve data&meta space before lock_page() (see above comments).
8194 	 */
8195 	clear_extent_bit(&BTRFS_I(inode)->io_tree, page_start, end,
8196 			  EXTENT_DELALLOC | EXTENT_DO_ACCOUNTING |
8197 			  EXTENT_DEFRAG, &cached_state);
8198 
8199 	ret2 = btrfs_set_extent_delalloc(BTRFS_I(inode), page_start, end, 0,
8200 					&cached_state);
8201 	if (ret2) {
8202 		unlock_extent(io_tree, page_start, page_end, &cached_state);
8203 		ret = VM_FAULT_SIGBUS;
8204 		goto out_unlock;
8205 	}
8206 
8207 	/* page is wholly or partially inside EOF */
8208 	if (page_start + PAGE_SIZE > size)
8209 		zero_start = offset_in_page(size);
8210 	else
8211 		zero_start = PAGE_SIZE;
8212 
8213 	if (zero_start != PAGE_SIZE)
8214 		memzero_page(page, zero_start, PAGE_SIZE - zero_start);
8215 
8216 	btrfs_page_clear_checked(fs_info, page, page_start, PAGE_SIZE);
8217 	btrfs_page_set_dirty(fs_info, page, page_start, end + 1 - page_start);
8218 	btrfs_page_set_uptodate(fs_info, page, page_start, end + 1 - page_start);
8219 
8220 	btrfs_set_inode_last_sub_trans(BTRFS_I(inode));
8221 
8222 	unlock_extent(io_tree, page_start, page_end, &cached_state);
8223 	up_read(&BTRFS_I(inode)->i_mmap_lock);
8224 
8225 	btrfs_delalloc_release_extents(BTRFS_I(inode), PAGE_SIZE);
8226 	sb_end_pagefault(inode->i_sb);
8227 	extent_changeset_free(data_reserved);
8228 	return VM_FAULT_LOCKED;
8229 
8230 out_unlock:
8231 	unlock_page(page);
8232 	up_read(&BTRFS_I(inode)->i_mmap_lock);
8233 out:
8234 	btrfs_delalloc_release_extents(BTRFS_I(inode), PAGE_SIZE);
8235 	btrfs_delalloc_release_space(BTRFS_I(inode), data_reserved, page_start,
8236 				     reserved_space, (ret != 0));
8237 out_noreserve:
8238 	sb_end_pagefault(inode->i_sb);
8239 	extent_changeset_free(data_reserved);
8240 	return ret;
8241 }
8242 
8243 static int btrfs_truncate(struct btrfs_inode *inode, bool skip_writeback)
8244 {
8245 	struct btrfs_truncate_control control = {
8246 		.inode = inode,
8247 		.ino = btrfs_ino(inode),
8248 		.min_type = BTRFS_EXTENT_DATA_KEY,
8249 		.clear_extent_range = true,
8250 	};
8251 	struct btrfs_root *root = inode->root;
8252 	struct btrfs_fs_info *fs_info = root->fs_info;
8253 	struct btrfs_block_rsv *rsv;
8254 	int ret;
8255 	struct btrfs_trans_handle *trans;
8256 	u64 mask = fs_info->sectorsize - 1;
8257 	const u64 min_size = btrfs_calc_metadata_size(fs_info, 1);
8258 
8259 	if (!skip_writeback) {
8260 		ret = btrfs_wait_ordered_range(&inode->vfs_inode,
8261 					       inode->vfs_inode.i_size & (~mask),
8262 					       (u64)-1);
8263 		if (ret)
8264 			return ret;
8265 	}
8266 
8267 	/*
8268 	 * Yes ladies and gentlemen, this is indeed ugly.  We have a couple of
8269 	 * things going on here:
8270 	 *
8271 	 * 1) We need to reserve space to update our inode.
8272 	 *
8273 	 * 2) We need to have something to cache all the space that is going to
8274 	 * be free'd up by the truncate operation, but also have some slack
8275 	 * space reserved in case it uses space during the truncate (thank you
8276 	 * very much snapshotting).
8277 	 *
8278 	 * And we need these to be separate.  The fact is we can use a lot of
8279 	 * space doing the truncate, and we have no earthly idea how much space
8280 	 * we will use, so we need the truncate reservation to be separate so it
8281 	 * doesn't end up using space reserved for updating the inode.  We also
8282 	 * need to be able to stop the transaction and start a new one, which
8283 	 * means we need to be able to update the inode several times, and we
8284 	 * have no idea of knowing how many times that will be, so we can't just
8285 	 * reserve 1 item for the entirety of the operation, so that has to be
8286 	 * done separately as well.
8287 	 *
8288 	 * So that leaves us with
8289 	 *
8290 	 * 1) rsv - for the truncate reservation, which we will steal from the
8291 	 * transaction reservation.
8292 	 * 2) fs_info->trans_block_rsv - this will have 1 items worth left for
8293 	 * updating the inode.
8294 	 */
8295 	rsv = btrfs_alloc_block_rsv(fs_info, BTRFS_BLOCK_RSV_TEMP);
8296 	if (!rsv)
8297 		return -ENOMEM;
8298 	rsv->size = min_size;
8299 	rsv->failfast = true;
8300 
8301 	/*
8302 	 * 1 for the truncate slack space
8303 	 * 1 for updating the inode.
8304 	 */
8305 	trans = btrfs_start_transaction(root, 2);
8306 	if (IS_ERR(trans)) {
8307 		ret = PTR_ERR(trans);
8308 		goto out;
8309 	}
8310 
8311 	/* Migrate the slack space for the truncate to our reserve */
8312 	ret = btrfs_block_rsv_migrate(&fs_info->trans_block_rsv, rsv,
8313 				      min_size, false);
8314 	/*
8315 	 * We have reserved 2 metadata units when we started the transaction and
8316 	 * min_size matches 1 unit, so this should never fail, but if it does,
8317 	 * it's not critical we just fail truncation.
8318 	 */
8319 	if (WARN_ON(ret)) {
8320 		btrfs_end_transaction(trans);
8321 		goto out;
8322 	}
8323 
8324 	trans->block_rsv = rsv;
8325 
8326 	while (1) {
8327 		struct extent_state *cached_state = NULL;
8328 		const u64 new_size = inode->vfs_inode.i_size;
8329 		const u64 lock_start = ALIGN_DOWN(new_size, fs_info->sectorsize);
8330 
8331 		control.new_size = new_size;
8332 		lock_extent(&inode->io_tree, lock_start, (u64)-1, &cached_state);
8333 		/*
8334 		 * We want to drop from the next block forward in case this new
8335 		 * size is not block aligned since we will be keeping the last
8336 		 * block of the extent just the way it is.
8337 		 */
8338 		btrfs_drop_extent_map_range(inode,
8339 					    ALIGN(new_size, fs_info->sectorsize),
8340 					    (u64)-1, false);
8341 
8342 		ret = btrfs_truncate_inode_items(trans, root, &control);
8343 
8344 		inode_sub_bytes(&inode->vfs_inode, control.sub_bytes);
8345 		btrfs_inode_safe_disk_i_size_write(inode, control.last_size);
8346 
8347 		unlock_extent(&inode->io_tree, lock_start, (u64)-1, &cached_state);
8348 
8349 		trans->block_rsv = &fs_info->trans_block_rsv;
8350 		if (ret != -ENOSPC && ret != -EAGAIN)
8351 			break;
8352 
8353 		ret = btrfs_update_inode(trans, root, inode);
8354 		if (ret)
8355 			break;
8356 
8357 		btrfs_end_transaction(trans);
8358 		btrfs_btree_balance_dirty(fs_info);
8359 
8360 		trans = btrfs_start_transaction(root, 2);
8361 		if (IS_ERR(trans)) {
8362 			ret = PTR_ERR(trans);
8363 			trans = NULL;
8364 			break;
8365 		}
8366 
8367 		btrfs_block_rsv_release(fs_info, rsv, -1, NULL);
8368 		ret = btrfs_block_rsv_migrate(&fs_info->trans_block_rsv,
8369 					      rsv, min_size, false);
8370 		/*
8371 		 * We have reserved 2 metadata units when we started the
8372 		 * transaction and min_size matches 1 unit, so this should never
8373 		 * fail, but if it does, it's not critical we just fail truncation.
8374 		 */
8375 		if (WARN_ON(ret))
8376 			break;
8377 
8378 		trans->block_rsv = rsv;
8379 	}
8380 
8381 	/*
8382 	 * We can't call btrfs_truncate_block inside a trans handle as we could
8383 	 * deadlock with freeze, if we got BTRFS_NEED_TRUNCATE_BLOCK then we
8384 	 * know we've truncated everything except the last little bit, and can
8385 	 * do btrfs_truncate_block and then update the disk_i_size.
8386 	 */
8387 	if (ret == BTRFS_NEED_TRUNCATE_BLOCK) {
8388 		btrfs_end_transaction(trans);
8389 		btrfs_btree_balance_dirty(fs_info);
8390 
8391 		ret = btrfs_truncate_block(inode, inode->vfs_inode.i_size, 0, 0);
8392 		if (ret)
8393 			goto out;
8394 		trans = btrfs_start_transaction(root, 1);
8395 		if (IS_ERR(trans)) {
8396 			ret = PTR_ERR(trans);
8397 			goto out;
8398 		}
8399 		btrfs_inode_safe_disk_i_size_write(inode, 0);
8400 	}
8401 
8402 	if (trans) {
8403 		int ret2;
8404 
8405 		trans->block_rsv = &fs_info->trans_block_rsv;
8406 		ret2 = btrfs_update_inode(trans, root, inode);
8407 		if (ret2 && !ret)
8408 			ret = ret2;
8409 
8410 		ret2 = btrfs_end_transaction(trans);
8411 		if (ret2 && !ret)
8412 			ret = ret2;
8413 		btrfs_btree_balance_dirty(fs_info);
8414 	}
8415 out:
8416 	btrfs_free_block_rsv(fs_info, rsv);
8417 	/*
8418 	 * So if we truncate and then write and fsync we normally would just
8419 	 * write the extents that changed, which is a problem if we need to
8420 	 * first truncate that entire inode.  So set this flag so we write out
8421 	 * all of the extents in the inode to the sync log so we're completely
8422 	 * safe.
8423 	 *
8424 	 * If no extents were dropped or trimmed we don't need to force the next
8425 	 * fsync to truncate all the inode's items from the log and re-log them
8426 	 * all. This means the truncate operation did not change the file size,
8427 	 * or changed it to a smaller size but there was only an implicit hole
8428 	 * between the old i_size and the new i_size, and there were no prealloc
8429 	 * extents beyond i_size to drop.
8430 	 */
8431 	if (control.extents_found > 0)
8432 		btrfs_set_inode_full_sync(inode);
8433 
8434 	return ret;
8435 }
8436 
8437 struct inode *btrfs_new_subvol_inode(struct mnt_idmap *idmap,
8438 				     struct inode *dir)
8439 {
8440 	struct inode *inode;
8441 
8442 	inode = new_inode(dir->i_sb);
8443 	if (inode) {
8444 		/*
8445 		 * Subvolumes don't inherit the sgid bit or the parent's gid if
8446 		 * the parent's sgid bit is set. This is probably a bug.
8447 		 */
8448 		inode_init_owner(idmap, inode, NULL,
8449 				 S_IFDIR | (~current_umask() & S_IRWXUGO));
8450 		inode->i_op = &btrfs_dir_inode_operations;
8451 		inode->i_fop = &btrfs_dir_file_operations;
8452 	}
8453 	return inode;
8454 }
8455 
8456 struct inode *btrfs_alloc_inode(struct super_block *sb)
8457 {
8458 	struct btrfs_fs_info *fs_info = btrfs_sb(sb);
8459 	struct btrfs_inode *ei;
8460 	struct inode *inode;
8461 
8462 	ei = alloc_inode_sb(sb, btrfs_inode_cachep, GFP_KERNEL);
8463 	if (!ei)
8464 		return NULL;
8465 
8466 	ei->root = NULL;
8467 	ei->generation = 0;
8468 	ei->last_trans = 0;
8469 	ei->last_sub_trans = 0;
8470 	ei->logged_trans = 0;
8471 	ei->delalloc_bytes = 0;
8472 	ei->new_delalloc_bytes = 0;
8473 	ei->defrag_bytes = 0;
8474 	ei->disk_i_size = 0;
8475 	ei->flags = 0;
8476 	ei->ro_flags = 0;
8477 	ei->csum_bytes = 0;
8478 	ei->index_cnt = (u64)-1;
8479 	ei->dir_index = 0;
8480 	ei->last_unlink_trans = 0;
8481 	ei->last_reflink_trans = 0;
8482 	ei->last_log_commit = 0;
8483 
8484 	spin_lock_init(&ei->lock);
8485 	ei->outstanding_extents = 0;
8486 	if (sb->s_magic != BTRFS_TEST_MAGIC)
8487 		btrfs_init_metadata_block_rsv(fs_info, &ei->block_rsv,
8488 					      BTRFS_BLOCK_RSV_DELALLOC);
8489 	ei->runtime_flags = 0;
8490 	ei->prop_compress = BTRFS_COMPRESS_NONE;
8491 	ei->defrag_compress = BTRFS_COMPRESS_NONE;
8492 
8493 	ei->delayed_node = NULL;
8494 
8495 	ei->i_otime.tv_sec = 0;
8496 	ei->i_otime.tv_nsec = 0;
8497 
8498 	inode = &ei->vfs_inode;
8499 	extent_map_tree_init(&ei->extent_tree);
8500 	extent_io_tree_init(fs_info, &ei->io_tree, IO_TREE_INODE_IO);
8501 	ei->io_tree.inode = ei;
8502 	extent_io_tree_init(fs_info, &ei->file_extent_tree,
8503 			    IO_TREE_INODE_FILE_EXTENT);
8504 	mutex_init(&ei->log_mutex);
8505 	btrfs_ordered_inode_tree_init(&ei->ordered_tree);
8506 	INIT_LIST_HEAD(&ei->delalloc_inodes);
8507 	INIT_LIST_HEAD(&ei->delayed_iput);
8508 	RB_CLEAR_NODE(&ei->rb_node);
8509 	init_rwsem(&ei->i_mmap_lock);
8510 
8511 	return inode;
8512 }
8513 
8514 #ifdef CONFIG_BTRFS_FS_RUN_SANITY_TESTS
8515 void btrfs_test_destroy_inode(struct inode *inode)
8516 {
8517 	btrfs_drop_extent_map_range(BTRFS_I(inode), 0, (u64)-1, false);
8518 	kmem_cache_free(btrfs_inode_cachep, BTRFS_I(inode));
8519 }
8520 #endif
8521 
8522 void btrfs_free_inode(struct inode *inode)
8523 {
8524 	kmem_cache_free(btrfs_inode_cachep, BTRFS_I(inode));
8525 }
8526 
8527 void btrfs_destroy_inode(struct inode *vfs_inode)
8528 {
8529 	struct btrfs_ordered_extent *ordered;
8530 	struct btrfs_inode *inode = BTRFS_I(vfs_inode);
8531 	struct btrfs_root *root = inode->root;
8532 	bool freespace_inode;
8533 
8534 	WARN_ON(!hlist_empty(&vfs_inode->i_dentry));
8535 	WARN_ON(vfs_inode->i_data.nrpages);
8536 	WARN_ON(inode->block_rsv.reserved);
8537 	WARN_ON(inode->block_rsv.size);
8538 	WARN_ON(inode->outstanding_extents);
8539 	if (!S_ISDIR(vfs_inode->i_mode)) {
8540 		WARN_ON(inode->delalloc_bytes);
8541 		WARN_ON(inode->new_delalloc_bytes);
8542 	}
8543 	WARN_ON(inode->csum_bytes);
8544 	WARN_ON(inode->defrag_bytes);
8545 
8546 	/*
8547 	 * This can happen where we create an inode, but somebody else also
8548 	 * created the same inode and we need to destroy the one we already
8549 	 * created.
8550 	 */
8551 	if (!root)
8552 		return;
8553 
8554 	/*
8555 	 * If this is a free space inode do not take the ordered extents lockdep
8556 	 * map.
8557 	 */
8558 	freespace_inode = btrfs_is_free_space_inode(inode);
8559 
8560 	while (1) {
8561 		ordered = btrfs_lookup_first_ordered_extent(inode, (u64)-1);
8562 		if (!ordered)
8563 			break;
8564 		else {
8565 			btrfs_err(root->fs_info,
8566 				  "found ordered extent %llu %llu on inode cleanup",
8567 				  ordered->file_offset, ordered->num_bytes);
8568 
8569 			if (!freespace_inode)
8570 				btrfs_lockdep_acquire(root->fs_info, btrfs_ordered_extent);
8571 
8572 			btrfs_remove_ordered_extent(inode, ordered);
8573 			btrfs_put_ordered_extent(ordered);
8574 			btrfs_put_ordered_extent(ordered);
8575 		}
8576 	}
8577 	btrfs_qgroup_check_reserved_leak(inode);
8578 	inode_tree_del(inode);
8579 	btrfs_drop_extent_map_range(inode, 0, (u64)-1, false);
8580 	btrfs_inode_clear_file_extent_range(inode, 0, (u64)-1);
8581 	btrfs_put_root(inode->root);
8582 }
8583 
8584 int btrfs_drop_inode(struct inode *inode)
8585 {
8586 	struct btrfs_root *root = BTRFS_I(inode)->root;
8587 
8588 	if (root == NULL)
8589 		return 1;
8590 
8591 	/* the snap/subvol tree is on deleting */
8592 	if (btrfs_root_refs(&root->root_item) == 0)
8593 		return 1;
8594 	else
8595 		return generic_drop_inode(inode);
8596 }
8597 
8598 static void init_once(void *foo)
8599 {
8600 	struct btrfs_inode *ei = foo;
8601 
8602 	inode_init_once(&ei->vfs_inode);
8603 }
8604 
8605 void __cold btrfs_destroy_cachep(void)
8606 {
8607 	/*
8608 	 * Make sure all delayed rcu free inodes are flushed before we
8609 	 * destroy cache.
8610 	 */
8611 	rcu_barrier();
8612 	bioset_exit(&btrfs_dio_bioset);
8613 	kmem_cache_destroy(btrfs_inode_cachep);
8614 }
8615 
8616 int __init btrfs_init_cachep(void)
8617 {
8618 	btrfs_inode_cachep = kmem_cache_create("btrfs_inode",
8619 			sizeof(struct btrfs_inode), 0,
8620 			SLAB_RECLAIM_ACCOUNT | SLAB_MEM_SPREAD | SLAB_ACCOUNT,
8621 			init_once);
8622 	if (!btrfs_inode_cachep)
8623 		goto fail;
8624 
8625 	if (bioset_init(&btrfs_dio_bioset, BIO_POOL_SIZE,
8626 			offsetof(struct btrfs_dio_private, bbio.bio),
8627 			BIOSET_NEED_BVECS))
8628 		goto fail;
8629 
8630 	return 0;
8631 fail:
8632 	btrfs_destroy_cachep();
8633 	return -ENOMEM;
8634 }
8635 
8636 static int btrfs_getattr(struct mnt_idmap *idmap,
8637 			 const struct path *path, struct kstat *stat,
8638 			 u32 request_mask, unsigned int flags)
8639 {
8640 	u64 delalloc_bytes;
8641 	u64 inode_bytes;
8642 	struct inode *inode = d_inode(path->dentry);
8643 	u32 blocksize = inode->i_sb->s_blocksize;
8644 	u32 bi_flags = BTRFS_I(inode)->flags;
8645 	u32 bi_ro_flags = BTRFS_I(inode)->ro_flags;
8646 
8647 	stat->result_mask |= STATX_BTIME;
8648 	stat->btime.tv_sec = BTRFS_I(inode)->i_otime.tv_sec;
8649 	stat->btime.tv_nsec = BTRFS_I(inode)->i_otime.tv_nsec;
8650 	if (bi_flags & BTRFS_INODE_APPEND)
8651 		stat->attributes |= STATX_ATTR_APPEND;
8652 	if (bi_flags & BTRFS_INODE_COMPRESS)
8653 		stat->attributes |= STATX_ATTR_COMPRESSED;
8654 	if (bi_flags & BTRFS_INODE_IMMUTABLE)
8655 		stat->attributes |= STATX_ATTR_IMMUTABLE;
8656 	if (bi_flags & BTRFS_INODE_NODUMP)
8657 		stat->attributes |= STATX_ATTR_NODUMP;
8658 	if (bi_ro_flags & BTRFS_INODE_RO_VERITY)
8659 		stat->attributes |= STATX_ATTR_VERITY;
8660 
8661 	stat->attributes_mask |= (STATX_ATTR_APPEND |
8662 				  STATX_ATTR_COMPRESSED |
8663 				  STATX_ATTR_IMMUTABLE |
8664 				  STATX_ATTR_NODUMP);
8665 
8666 	generic_fillattr(idmap, request_mask, inode, stat);
8667 	stat->dev = BTRFS_I(inode)->root->anon_dev;
8668 
8669 	spin_lock(&BTRFS_I(inode)->lock);
8670 	delalloc_bytes = BTRFS_I(inode)->new_delalloc_bytes;
8671 	inode_bytes = inode_get_bytes(inode);
8672 	spin_unlock(&BTRFS_I(inode)->lock);
8673 	stat->blocks = (ALIGN(inode_bytes, blocksize) +
8674 			ALIGN(delalloc_bytes, blocksize)) >> SECTOR_SHIFT;
8675 	return 0;
8676 }
8677 
8678 static int btrfs_rename_exchange(struct inode *old_dir,
8679 			      struct dentry *old_dentry,
8680 			      struct inode *new_dir,
8681 			      struct dentry *new_dentry)
8682 {
8683 	struct btrfs_fs_info *fs_info = btrfs_sb(old_dir->i_sb);
8684 	struct btrfs_trans_handle *trans;
8685 	unsigned int trans_num_items;
8686 	struct btrfs_root *root = BTRFS_I(old_dir)->root;
8687 	struct btrfs_root *dest = BTRFS_I(new_dir)->root;
8688 	struct inode *new_inode = new_dentry->d_inode;
8689 	struct inode *old_inode = old_dentry->d_inode;
8690 	struct btrfs_rename_ctx old_rename_ctx;
8691 	struct btrfs_rename_ctx new_rename_ctx;
8692 	u64 old_ino = btrfs_ino(BTRFS_I(old_inode));
8693 	u64 new_ino = btrfs_ino(BTRFS_I(new_inode));
8694 	u64 old_idx = 0;
8695 	u64 new_idx = 0;
8696 	int ret;
8697 	int ret2;
8698 	bool need_abort = false;
8699 	struct fscrypt_name old_fname, new_fname;
8700 	struct fscrypt_str *old_name, *new_name;
8701 
8702 	/*
8703 	 * For non-subvolumes allow exchange only within one subvolume, in the
8704 	 * same inode namespace. Two subvolumes (represented as directory) can
8705 	 * be exchanged as they're a logical link and have a fixed inode number.
8706 	 */
8707 	if (root != dest &&
8708 	    (old_ino != BTRFS_FIRST_FREE_OBJECTID ||
8709 	     new_ino != BTRFS_FIRST_FREE_OBJECTID))
8710 		return -EXDEV;
8711 
8712 	ret = fscrypt_setup_filename(old_dir, &old_dentry->d_name, 0, &old_fname);
8713 	if (ret)
8714 		return ret;
8715 
8716 	ret = fscrypt_setup_filename(new_dir, &new_dentry->d_name, 0, &new_fname);
8717 	if (ret) {
8718 		fscrypt_free_filename(&old_fname);
8719 		return ret;
8720 	}
8721 
8722 	old_name = &old_fname.disk_name;
8723 	new_name = &new_fname.disk_name;
8724 
8725 	/* close the race window with snapshot create/destroy ioctl */
8726 	if (old_ino == BTRFS_FIRST_FREE_OBJECTID ||
8727 	    new_ino == BTRFS_FIRST_FREE_OBJECTID)
8728 		down_read(&fs_info->subvol_sem);
8729 
8730 	/*
8731 	 * For each inode:
8732 	 * 1 to remove old dir item
8733 	 * 1 to remove old dir index
8734 	 * 1 to add new dir item
8735 	 * 1 to add new dir index
8736 	 * 1 to update parent inode
8737 	 *
8738 	 * If the parents are the same, we only need to account for one
8739 	 */
8740 	trans_num_items = (old_dir == new_dir ? 9 : 10);
8741 	if (old_ino == BTRFS_FIRST_FREE_OBJECTID) {
8742 		/*
8743 		 * 1 to remove old root ref
8744 		 * 1 to remove old root backref
8745 		 * 1 to add new root ref
8746 		 * 1 to add new root backref
8747 		 */
8748 		trans_num_items += 4;
8749 	} else {
8750 		/*
8751 		 * 1 to update inode item
8752 		 * 1 to remove old inode ref
8753 		 * 1 to add new inode ref
8754 		 */
8755 		trans_num_items += 3;
8756 	}
8757 	if (new_ino == BTRFS_FIRST_FREE_OBJECTID)
8758 		trans_num_items += 4;
8759 	else
8760 		trans_num_items += 3;
8761 	trans = btrfs_start_transaction(root, trans_num_items);
8762 	if (IS_ERR(trans)) {
8763 		ret = PTR_ERR(trans);
8764 		goto out_notrans;
8765 	}
8766 
8767 	if (dest != root) {
8768 		ret = btrfs_record_root_in_trans(trans, dest);
8769 		if (ret)
8770 			goto out_fail;
8771 	}
8772 
8773 	/*
8774 	 * We need to find a free sequence number both in the source and
8775 	 * in the destination directory for the exchange.
8776 	 */
8777 	ret = btrfs_set_inode_index(BTRFS_I(new_dir), &old_idx);
8778 	if (ret)
8779 		goto out_fail;
8780 	ret = btrfs_set_inode_index(BTRFS_I(old_dir), &new_idx);
8781 	if (ret)
8782 		goto out_fail;
8783 
8784 	BTRFS_I(old_inode)->dir_index = 0ULL;
8785 	BTRFS_I(new_inode)->dir_index = 0ULL;
8786 
8787 	/* Reference for the source. */
8788 	if (old_ino == BTRFS_FIRST_FREE_OBJECTID) {
8789 		/* force full log commit if subvolume involved. */
8790 		btrfs_set_log_full_commit(trans);
8791 	} else {
8792 		ret = btrfs_insert_inode_ref(trans, dest, new_name, old_ino,
8793 					     btrfs_ino(BTRFS_I(new_dir)),
8794 					     old_idx);
8795 		if (ret)
8796 			goto out_fail;
8797 		need_abort = true;
8798 	}
8799 
8800 	/* And now for the dest. */
8801 	if (new_ino == BTRFS_FIRST_FREE_OBJECTID) {
8802 		/* force full log commit if subvolume involved. */
8803 		btrfs_set_log_full_commit(trans);
8804 	} else {
8805 		ret = btrfs_insert_inode_ref(trans, root, old_name, new_ino,
8806 					     btrfs_ino(BTRFS_I(old_dir)),
8807 					     new_idx);
8808 		if (ret) {
8809 			if (need_abort)
8810 				btrfs_abort_transaction(trans, ret);
8811 			goto out_fail;
8812 		}
8813 	}
8814 
8815 	/* Update inode version and ctime/mtime. */
8816 	inode_inc_iversion(old_dir);
8817 	inode_inc_iversion(new_dir);
8818 	inode_inc_iversion(old_inode);
8819 	inode_inc_iversion(new_inode);
8820 	simple_rename_timestamp(old_dir, old_dentry, new_dir, new_dentry);
8821 
8822 	if (old_dentry->d_parent != new_dentry->d_parent) {
8823 		btrfs_record_unlink_dir(trans, BTRFS_I(old_dir),
8824 					BTRFS_I(old_inode), true);
8825 		btrfs_record_unlink_dir(trans, BTRFS_I(new_dir),
8826 					BTRFS_I(new_inode), true);
8827 	}
8828 
8829 	/* src is a subvolume */
8830 	if (old_ino == BTRFS_FIRST_FREE_OBJECTID) {
8831 		ret = btrfs_unlink_subvol(trans, BTRFS_I(old_dir), old_dentry);
8832 	} else { /* src is an inode */
8833 		ret = __btrfs_unlink_inode(trans, BTRFS_I(old_dir),
8834 					   BTRFS_I(old_dentry->d_inode),
8835 					   old_name, &old_rename_ctx);
8836 		if (!ret)
8837 			ret = btrfs_update_inode(trans, root, BTRFS_I(old_inode));
8838 	}
8839 	if (ret) {
8840 		btrfs_abort_transaction(trans, ret);
8841 		goto out_fail;
8842 	}
8843 
8844 	/* dest is a subvolume */
8845 	if (new_ino == BTRFS_FIRST_FREE_OBJECTID) {
8846 		ret = btrfs_unlink_subvol(trans, BTRFS_I(new_dir), new_dentry);
8847 	} else { /* dest is an inode */
8848 		ret = __btrfs_unlink_inode(trans, BTRFS_I(new_dir),
8849 					   BTRFS_I(new_dentry->d_inode),
8850 					   new_name, &new_rename_ctx);
8851 		if (!ret)
8852 			ret = btrfs_update_inode(trans, dest, BTRFS_I(new_inode));
8853 	}
8854 	if (ret) {
8855 		btrfs_abort_transaction(trans, ret);
8856 		goto out_fail;
8857 	}
8858 
8859 	ret = btrfs_add_link(trans, BTRFS_I(new_dir), BTRFS_I(old_inode),
8860 			     new_name, 0, old_idx);
8861 	if (ret) {
8862 		btrfs_abort_transaction(trans, ret);
8863 		goto out_fail;
8864 	}
8865 
8866 	ret = btrfs_add_link(trans, BTRFS_I(old_dir), BTRFS_I(new_inode),
8867 			     old_name, 0, new_idx);
8868 	if (ret) {
8869 		btrfs_abort_transaction(trans, ret);
8870 		goto out_fail;
8871 	}
8872 
8873 	if (old_inode->i_nlink == 1)
8874 		BTRFS_I(old_inode)->dir_index = old_idx;
8875 	if (new_inode->i_nlink == 1)
8876 		BTRFS_I(new_inode)->dir_index = new_idx;
8877 
8878 	/*
8879 	 * Now pin the logs of the roots. We do it to ensure that no other task
8880 	 * can sync the logs while we are in progress with the rename, because
8881 	 * that could result in an inconsistency in case any of the inodes that
8882 	 * are part of this rename operation were logged before.
8883 	 */
8884 	if (old_ino != BTRFS_FIRST_FREE_OBJECTID)
8885 		btrfs_pin_log_trans(root);
8886 	if (new_ino != BTRFS_FIRST_FREE_OBJECTID)
8887 		btrfs_pin_log_trans(dest);
8888 
8889 	/* Do the log updates for all inodes. */
8890 	if (old_ino != BTRFS_FIRST_FREE_OBJECTID)
8891 		btrfs_log_new_name(trans, old_dentry, BTRFS_I(old_dir),
8892 				   old_rename_ctx.index, new_dentry->d_parent);
8893 	if (new_ino != BTRFS_FIRST_FREE_OBJECTID)
8894 		btrfs_log_new_name(trans, new_dentry, BTRFS_I(new_dir),
8895 				   new_rename_ctx.index, old_dentry->d_parent);
8896 
8897 	/* Now unpin the logs. */
8898 	if (old_ino != BTRFS_FIRST_FREE_OBJECTID)
8899 		btrfs_end_log_trans(root);
8900 	if (new_ino != BTRFS_FIRST_FREE_OBJECTID)
8901 		btrfs_end_log_trans(dest);
8902 out_fail:
8903 	ret2 = btrfs_end_transaction(trans);
8904 	ret = ret ? ret : ret2;
8905 out_notrans:
8906 	if (new_ino == BTRFS_FIRST_FREE_OBJECTID ||
8907 	    old_ino == BTRFS_FIRST_FREE_OBJECTID)
8908 		up_read(&fs_info->subvol_sem);
8909 
8910 	fscrypt_free_filename(&new_fname);
8911 	fscrypt_free_filename(&old_fname);
8912 	return ret;
8913 }
8914 
8915 static struct inode *new_whiteout_inode(struct mnt_idmap *idmap,
8916 					struct inode *dir)
8917 {
8918 	struct inode *inode;
8919 
8920 	inode = new_inode(dir->i_sb);
8921 	if (inode) {
8922 		inode_init_owner(idmap, inode, dir,
8923 				 S_IFCHR | WHITEOUT_MODE);
8924 		inode->i_op = &btrfs_special_inode_operations;
8925 		init_special_inode(inode, inode->i_mode, WHITEOUT_DEV);
8926 	}
8927 	return inode;
8928 }
8929 
8930 static int btrfs_rename(struct mnt_idmap *idmap,
8931 			struct inode *old_dir, struct dentry *old_dentry,
8932 			struct inode *new_dir, struct dentry *new_dentry,
8933 			unsigned int flags)
8934 {
8935 	struct btrfs_fs_info *fs_info = btrfs_sb(old_dir->i_sb);
8936 	struct btrfs_new_inode_args whiteout_args = {
8937 		.dir = old_dir,
8938 		.dentry = old_dentry,
8939 	};
8940 	struct btrfs_trans_handle *trans;
8941 	unsigned int trans_num_items;
8942 	struct btrfs_root *root = BTRFS_I(old_dir)->root;
8943 	struct btrfs_root *dest = BTRFS_I(new_dir)->root;
8944 	struct inode *new_inode = d_inode(new_dentry);
8945 	struct inode *old_inode = d_inode(old_dentry);
8946 	struct btrfs_rename_ctx rename_ctx;
8947 	u64 index = 0;
8948 	int ret;
8949 	int ret2;
8950 	u64 old_ino = btrfs_ino(BTRFS_I(old_inode));
8951 	struct fscrypt_name old_fname, new_fname;
8952 
8953 	if (btrfs_ino(BTRFS_I(new_dir)) == BTRFS_EMPTY_SUBVOL_DIR_OBJECTID)
8954 		return -EPERM;
8955 
8956 	/* we only allow rename subvolume link between subvolumes */
8957 	if (old_ino != BTRFS_FIRST_FREE_OBJECTID && root != dest)
8958 		return -EXDEV;
8959 
8960 	if (old_ino == BTRFS_EMPTY_SUBVOL_DIR_OBJECTID ||
8961 	    (new_inode && btrfs_ino(BTRFS_I(new_inode)) == BTRFS_FIRST_FREE_OBJECTID))
8962 		return -ENOTEMPTY;
8963 
8964 	if (S_ISDIR(old_inode->i_mode) && new_inode &&
8965 	    new_inode->i_size > BTRFS_EMPTY_DIR_SIZE)
8966 		return -ENOTEMPTY;
8967 
8968 	ret = fscrypt_setup_filename(old_dir, &old_dentry->d_name, 0, &old_fname);
8969 	if (ret)
8970 		return ret;
8971 
8972 	ret = fscrypt_setup_filename(new_dir, &new_dentry->d_name, 0, &new_fname);
8973 	if (ret) {
8974 		fscrypt_free_filename(&old_fname);
8975 		return ret;
8976 	}
8977 
8978 	/* check for collisions, even if the  name isn't there */
8979 	ret = btrfs_check_dir_item_collision(dest, new_dir->i_ino, &new_fname.disk_name);
8980 	if (ret) {
8981 		if (ret == -EEXIST) {
8982 			/* we shouldn't get
8983 			 * eexist without a new_inode */
8984 			if (WARN_ON(!new_inode)) {
8985 				goto out_fscrypt_names;
8986 			}
8987 		} else {
8988 			/* maybe -EOVERFLOW */
8989 			goto out_fscrypt_names;
8990 		}
8991 	}
8992 	ret = 0;
8993 
8994 	/*
8995 	 * we're using rename to replace one file with another.  Start IO on it
8996 	 * now so  we don't add too much work to the end of the transaction
8997 	 */
8998 	if (new_inode && S_ISREG(old_inode->i_mode) && new_inode->i_size)
8999 		filemap_flush(old_inode->i_mapping);
9000 
9001 	if (flags & RENAME_WHITEOUT) {
9002 		whiteout_args.inode = new_whiteout_inode(idmap, old_dir);
9003 		if (!whiteout_args.inode) {
9004 			ret = -ENOMEM;
9005 			goto out_fscrypt_names;
9006 		}
9007 		ret = btrfs_new_inode_prepare(&whiteout_args, &trans_num_items);
9008 		if (ret)
9009 			goto out_whiteout_inode;
9010 	} else {
9011 		/* 1 to update the old parent inode. */
9012 		trans_num_items = 1;
9013 	}
9014 
9015 	if (old_ino == BTRFS_FIRST_FREE_OBJECTID) {
9016 		/* Close the race window with snapshot create/destroy ioctl */
9017 		down_read(&fs_info->subvol_sem);
9018 		/*
9019 		 * 1 to remove old root ref
9020 		 * 1 to remove old root backref
9021 		 * 1 to add new root ref
9022 		 * 1 to add new root backref
9023 		 */
9024 		trans_num_items += 4;
9025 	} else {
9026 		/*
9027 		 * 1 to update inode
9028 		 * 1 to remove old inode ref
9029 		 * 1 to add new inode ref
9030 		 */
9031 		trans_num_items += 3;
9032 	}
9033 	/*
9034 	 * 1 to remove old dir item
9035 	 * 1 to remove old dir index
9036 	 * 1 to add new dir item
9037 	 * 1 to add new dir index
9038 	 */
9039 	trans_num_items += 4;
9040 	/* 1 to update new parent inode if it's not the same as the old parent */
9041 	if (new_dir != old_dir)
9042 		trans_num_items++;
9043 	if (new_inode) {
9044 		/*
9045 		 * 1 to update inode
9046 		 * 1 to remove inode ref
9047 		 * 1 to remove dir item
9048 		 * 1 to remove dir index
9049 		 * 1 to possibly add orphan item
9050 		 */
9051 		trans_num_items += 5;
9052 	}
9053 	trans = btrfs_start_transaction(root, trans_num_items);
9054 	if (IS_ERR(trans)) {
9055 		ret = PTR_ERR(trans);
9056 		goto out_notrans;
9057 	}
9058 
9059 	if (dest != root) {
9060 		ret = btrfs_record_root_in_trans(trans, dest);
9061 		if (ret)
9062 			goto out_fail;
9063 	}
9064 
9065 	ret = btrfs_set_inode_index(BTRFS_I(new_dir), &index);
9066 	if (ret)
9067 		goto out_fail;
9068 
9069 	BTRFS_I(old_inode)->dir_index = 0ULL;
9070 	if (unlikely(old_ino == BTRFS_FIRST_FREE_OBJECTID)) {
9071 		/* force full log commit if subvolume involved. */
9072 		btrfs_set_log_full_commit(trans);
9073 	} else {
9074 		ret = btrfs_insert_inode_ref(trans, dest, &new_fname.disk_name,
9075 					     old_ino, btrfs_ino(BTRFS_I(new_dir)),
9076 					     index);
9077 		if (ret)
9078 			goto out_fail;
9079 	}
9080 
9081 	inode_inc_iversion(old_dir);
9082 	inode_inc_iversion(new_dir);
9083 	inode_inc_iversion(old_inode);
9084 	simple_rename_timestamp(old_dir, old_dentry, new_dir, new_dentry);
9085 
9086 	if (old_dentry->d_parent != new_dentry->d_parent)
9087 		btrfs_record_unlink_dir(trans, BTRFS_I(old_dir),
9088 					BTRFS_I(old_inode), true);
9089 
9090 	if (unlikely(old_ino == BTRFS_FIRST_FREE_OBJECTID)) {
9091 		ret = btrfs_unlink_subvol(trans, BTRFS_I(old_dir), old_dentry);
9092 	} else {
9093 		ret = __btrfs_unlink_inode(trans, BTRFS_I(old_dir),
9094 					   BTRFS_I(d_inode(old_dentry)),
9095 					   &old_fname.disk_name, &rename_ctx);
9096 		if (!ret)
9097 			ret = btrfs_update_inode(trans, root, BTRFS_I(old_inode));
9098 	}
9099 	if (ret) {
9100 		btrfs_abort_transaction(trans, ret);
9101 		goto out_fail;
9102 	}
9103 
9104 	if (new_inode) {
9105 		inode_inc_iversion(new_inode);
9106 		if (unlikely(btrfs_ino(BTRFS_I(new_inode)) ==
9107 			     BTRFS_EMPTY_SUBVOL_DIR_OBJECTID)) {
9108 			ret = btrfs_unlink_subvol(trans, BTRFS_I(new_dir), new_dentry);
9109 			BUG_ON(new_inode->i_nlink == 0);
9110 		} else {
9111 			ret = btrfs_unlink_inode(trans, BTRFS_I(new_dir),
9112 						 BTRFS_I(d_inode(new_dentry)),
9113 						 &new_fname.disk_name);
9114 		}
9115 		if (!ret && new_inode->i_nlink == 0)
9116 			ret = btrfs_orphan_add(trans,
9117 					BTRFS_I(d_inode(new_dentry)));
9118 		if (ret) {
9119 			btrfs_abort_transaction(trans, ret);
9120 			goto out_fail;
9121 		}
9122 	}
9123 
9124 	ret = btrfs_add_link(trans, BTRFS_I(new_dir), BTRFS_I(old_inode),
9125 			     &new_fname.disk_name, 0, index);
9126 	if (ret) {
9127 		btrfs_abort_transaction(trans, ret);
9128 		goto out_fail;
9129 	}
9130 
9131 	if (old_inode->i_nlink == 1)
9132 		BTRFS_I(old_inode)->dir_index = index;
9133 
9134 	if (old_ino != BTRFS_FIRST_FREE_OBJECTID)
9135 		btrfs_log_new_name(trans, old_dentry, BTRFS_I(old_dir),
9136 				   rename_ctx.index, new_dentry->d_parent);
9137 
9138 	if (flags & RENAME_WHITEOUT) {
9139 		ret = btrfs_create_new_inode(trans, &whiteout_args);
9140 		if (ret) {
9141 			btrfs_abort_transaction(trans, ret);
9142 			goto out_fail;
9143 		} else {
9144 			unlock_new_inode(whiteout_args.inode);
9145 			iput(whiteout_args.inode);
9146 			whiteout_args.inode = NULL;
9147 		}
9148 	}
9149 out_fail:
9150 	ret2 = btrfs_end_transaction(trans);
9151 	ret = ret ? ret : ret2;
9152 out_notrans:
9153 	if (old_ino == BTRFS_FIRST_FREE_OBJECTID)
9154 		up_read(&fs_info->subvol_sem);
9155 	if (flags & RENAME_WHITEOUT)
9156 		btrfs_new_inode_args_destroy(&whiteout_args);
9157 out_whiteout_inode:
9158 	if (flags & RENAME_WHITEOUT)
9159 		iput(whiteout_args.inode);
9160 out_fscrypt_names:
9161 	fscrypt_free_filename(&old_fname);
9162 	fscrypt_free_filename(&new_fname);
9163 	return ret;
9164 }
9165 
9166 static int btrfs_rename2(struct mnt_idmap *idmap, struct inode *old_dir,
9167 			 struct dentry *old_dentry, struct inode *new_dir,
9168 			 struct dentry *new_dentry, unsigned int flags)
9169 {
9170 	int ret;
9171 
9172 	if (flags & ~(RENAME_NOREPLACE | RENAME_EXCHANGE | RENAME_WHITEOUT))
9173 		return -EINVAL;
9174 
9175 	if (flags & RENAME_EXCHANGE)
9176 		ret = btrfs_rename_exchange(old_dir, old_dentry, new_dir,
9177 					    new_dentry);
9178 	else
9179 		ret = btrfs_rename(idmap, old_dir, old_dentry, new_dir,
9180 				   new_dentry, flags);
9181 
9182 	btrfs_btree_balance_dirty(BTRFS_I(new_dir)->root->fs_info);
9183 
9184 	return ret;
9185 }
9186 
9187 struct btrfs_delalloc_work {
9188 	struct inode *inode;
9189 	struct completion completion;
9190 	struct list_head list;
9191 	struct btrfs_work work;
9192 };
9193 
9194 static void btrfs_run_delalloc_work(struct btrfs_work *work)
9195 {
9196 	struct btrfs_delalloc_work *delalloc_work;
9197 	struct inode *inode;
9198 
9199 	delalloc_work = container_of(work, struct btrfs_delalloc_work,
9200 				     work);
9201 	inode = delalloc_work->inode;
9202 	filemap_flush(inode->i_mapping);
9203 	if (test_bit(BTRFS_INODE_HAS_ASYNC_EXTENT,
9204 				&BTRFS_I(inode)->runtime_flags))
9205 		filemap_flush(inode->i_mapping);
9206 
9207 	iput(inode);
9208 	complete(&delalloc_work->completion);
9209 }
9210 
9211 static struct btrfs_delalloc_work *btrfs_alloc_delalloc_work(struct inode *inode)
9212 {
9213 	struct btrfs_delalloc_work *work;
9214 
9215 	work = kmalloc(sizeof(*work), GFP_NOFS);
9216 	if (!work)
9217 		return NULL;
9218 
9219 	init_completion(&work->completion);
9220 	INIT_LIST_HEAD(&work->list);
9221 	work->inode = inode;
9222 	btrfs_init_work(&work->work, btrfs_run_delalloc_work, NULL, NULL);
9223 
9224 	return work;
9225 }
9226 
9227 /*
9228  * some fairly slow code that needs optimization. This walks the list
9229  * of all the inodes with pending delalloc and forces them to disk.
9230  */
9231 static int start_delalloc_inodes(struct btrfs_root *root,
9232 				 struct writeback_control *wbc, bool snapshot,
9233 				 bool in_reclaim_context)
9234 {
9235 	struct btrfs_inode *binode;
9236 	struct inode *inode;
9237 	struct btrfs_delalloc_work *work, *next;
9238 	LIST_HEAD(works);
9239 	LIST_HEAD(splice);
9240 	int ret = 0;
9241 	bool full_flush = wbc->nr_to_write == LONG_MAX;
9242 
9243 	mutex_lock(&root->delalloc_mutex);
9244 	spin_lock(&root->delalloc_lock);
9245 	list_splice_init(&root->delalloc_inodes, &splice);
9246 	while (!list_empty(&splice)) {
9247 		binode = list_entry(splice.next, struct btrfs_inode,
9248 				    delalloc_inodes);
9249 
9250 		list_move_tail(&binode->delalloc_inodes,
9251 			       &root->delalloc_inodes);
9252 
9253 		if (in_reclaim_context &&
9254 		    test_bit(BTRFS_INODE_NO_DELALLOC_FLUSH, &binode->runtime_flags))
9255 			continue;
9256 
9257 		inode = igrab(&binode->vfs_inode);
9258 		if (!inode) {
9259 			cond_resched_lock(&root->delalloc_lock);
9260 			continue;
9261 		}
9262 		spin_unlock(&root->delalloc_lock);
9263 
9264 		if (snapshot)
9265 			set_bit(BTRFS_INODE_SNAPSHOT_FLUSH,
9266 				&binode->runtime_flags);
9267 		if (full_flush) {
9268 			work = btrfs_alloc_delalloc_work(inode);
9269 			if (!work) {
9270 				iput(inode);
9271 				ret = -ENOMEM;
9272 				goto out;
9273 			}
9274 			list_add_tail(&work->list, &works);
9275 			btrfs_queue_work(root->fs_info->flush_workers,
9276 					 &work->work);
9277 		} else {
9278 			ret = filemap_fdatawrite_wbc(inode->i_mapping, wbc);
9279 			btrfs_add_delayed_iput(BTRFS_I(inode));
9280 			if (ret || wbc->nr_to_write <= 0)
9281 				goto out;
9282 		}
9283 		cond_resched();
9284 		spin_lock(&root->delalloc_lock);
9285 	}
9286 	spin_unlock(&root->delalloc_lock);
9287 
9288 out:
9289 	list_for_each_entry_safe(work, next, &works, list) {
9290 		list_del_init(&work->list);
9291 		wait_for_completion(&work->completion);
9292 		kfree(work);
9293 	}
9294 
9295 	if (!list_empty(&splice)) {
9296 		spin_lock(&root->delalloc_lock);
9297 		list_splice_tail(&splice, &root->delalloc_inodes);
9298 		spin_unlock(&root->delalloc_lock);
9299 	}
9300 	mutex_unlock(&root->delalloc_mutex);
9301 	return ret;
9302 }
9303 
9304 int btrfs_start_delalloc_snapshot(struct btrfs_root *root, bool in_reclaim_context)
9305 {
9306 	struct writeback_control wbc = {
9307 		.nr_to_write = LONG_MAX,
9308 		.sync_mode = WB_SYNC_NONE,
9309 		.range_start = 0,
9310 		.range_end = LLONG_MAX,
9311 	};
9312 	struct btrfs_fs_info *fs_info = root->fs_info;
9313 
9314 	if (BTRFS_FS_ERROR(fs_info))
9315 		return -EROFS;
9316 
9317 	return start_delalloc_inodes(root, &wbc, true, in_reclaim_context);
9318 }
9319 
9320 int btrfs_start_delalloc_roots(struct btrfs_fs_info *fs_info, long nr,
9321 			       bool in_reclaim_context)
9322 {
9323 	struct writeback_control wbc = {
9324 		.nr_to_write = nr,
9325 		.sync_mode = WB_SYNC_NONE,
9326 		.range_start = 0,
9327 		.range_end = LLONG_MAX,
9328 	};
9329 	struct btrfs_root *root;
9330 	LIST_HEAD(splice);
9331 	int ret;
9332 
9333 	if (BTRFS_FS_ERROR(fs_info))
9334 		return -EROFS;
9335 
9336 	mutex_lock(&fs_info->delalloc_root_mutex);
9337 	spin_lock(&fs_info->delalloc_root_lock);
9338 	list_splice_init(&fs_info->delalloc_roots, &splice);
9339 	while (!list_empty(&splice)) {
9340 		/*
9341 		 * Reset nr_to_write here so we know that we're doing a full
9342 		 * flush.
9343 		 */
9344 		if (nr == LONG_MAX)
9345 			wbc.nr_to_write = LONG_MAX;
9346 
9347 		root = list_first_entry(&splice, struct btrfs_root,
9348 					delalloc_root);
9349 		root = btrfs_grab_root(root);
9350 		BUG_ON(!root);
9351 		list_move_tail(&root->delalloc_root,
9352 			       &fs_info->delalloc_roots);
9353 		spin_unlock(&fs_info->delalloc_root_lock);
9354 
9355 		ret = start_delalloc_inodes(root, &wbc, false, in_reclaim_context);
9356 		btrfs_put_root(root);
9357 		if (ret < 0 || wbc.nr_to_write <= 0)
9358 			goto out;
9359 		spin_lock(&fs_info->delalloc_root_lock);
9360 	}
9361 	spin_unlock(&fs_info->delalloc_root_lock);
9362 
9363 	ret = 0;
9364 out:
9365 	if (!list_empty(&splice)) {
9366 		spin_lock(&fs_info->delalloc_root_lock);
9367 		list_splice_tail(&splice, &fs_info->delalloc_roots);
9368 		spin_unlock(&fs_info->delalloc_root_lock);
9369 	}
9370 	mutex_unlock(&fs_info->delalloc_root_mutex);
9371 	return ret;
9372 }
9373 
9374 static int btrfs_symlink(struct mnt_idmap *idmap, struct inode *dir,
9375 			 struct dentry *dentry, const char *symname)
9376 {
9377 	struct btrfs_fs_info *fs_info = btrfs_sb(dir->i_sb);
9378 	struct btrfs_trans_handle *trans;
9379 	struct btrfs_root *root = BTRFS_I(dir)->root;
9380 	struct btrfs_path *path;
9381 	struct btrfs_key key;
9382 	struct inode *inode;
9383 	struct btrfs_new_inode_args new_inode_args = {
9384 		.dir = dir,
9385 		.dentry = dentry,
9386 	};
9387 	unsigned int trans_num_items;
9388 	int err;
9389 	int name_len;
9390 	int datasize;
9391 	unsigned long ptr;
9392 	struct btrfs_file_extent_item *ei;
9393 	struct extent_buffer *leaf;
9394 
9395 	name_len = strlen(symname);
9396 	if (name_len > BTRFS_MAX_INLINE_DATA_SIZE(fs_info))
9397 		return -ENAMETOOLONG;
9398 
9399 	inode = new_inode(dir->i_sb);
9400 	if (!inode)
9401 		return -ENOMEM;
9402 	inode_init_owner(idmap, inode, dir, S_IFLNK | S_IRWXUGO);
9403 	inode->i_op = &btrfs_symlink_inode_operations;
9404 	inode_nohighmem(inode);
9405 	inode->i_mapping->a_ops = &btrfs_aops;
9406 	btrfs_i_size_write(BTRFS_I(inode), name_len);
9407 	inode_set_bytes(inode, name_len);
9408 
9409 	new_inode_args.inode = inode;
9410 	err = btrfs_new_inode_prepare(&new_inode_args, &trans_num_items);
9411 	if (err)
9412 		goto out_inode;
9413 	/* 1 additional item for the inline extent */
9414 	trans_num_items++;
9415 
9416 	trans = btrfs_start_transaction(root, trans_num_items);
9417 	if (IS_ERR(trans)) {
9418 		err = PTR_ERR(trans);
9419 		goto out_new_inode_args;
9420 	}
9421 
9422 	err = btrfs_create_new_inode(trans, &new_inode_args);
9423 	if (err)
9424 		goto out;
9425 
9426 	path = btrfs_alloc_path();
9427 	if (!path) {
9428 		err = -ENOMEM;
9429 		btrfs_abort_transaction(trans, err);
9430 		discard_new_inode(inode);
9431 		inode = NULL;
9432 		goto out;
9433 	}
9434 	key.objectid = btrfs_ino(BTRFS_I(inode));
9435 	key.offset = 0;
9436 	key.type = BTRFS_EXTENT_DATA_KEY;
9437 	datasize = btrfs_file_extent_calc_inline_size(name_len);
9438 	err = btrfs_insert_empty_item(trans, root, path, &key,
9439 				      datasize);
9440 	if (err) {
9441 		btrfs_abort_transaction(trans, err);
9442 		btrfs_free_path(path);
9443 		discard_new_inode(inode);
9444 		inode = NULL;
9445 		goto out;
9446 	}
9447 	leaf = path->nodes[0];
9448 	ei = btrfs_item_ptr(leaf, path->slots[0],
9449 			    struct btrfs_file_extent_item);
9450 	btrfs_set_file_extent_generation(leaf, ei, trans->transid);
9451 	btrfs_set_file_extent_type(leaf, ei,
9452 				   BTRFS_FILE_EXTENT_INLINE);
9453 	btrfs_set_file_extent_encryption(leaf, ei, 0);
9454 	btrfs_set_file_extent_compression(leaf, ei, 0);
9455 	btrfs_set_file_extent_other_encoding(leaf, ei, 0);
9456 	btrfs_set_file_extent_ram_bytes(leaf, ei, name_len);
9457 
9458 	ptr = btrfs_file_extent_inline_start(ei);
9459 	write_extent_buffer(leaf, symname, ptr, name_len);
9460 	btrfs_mark_buffer_dirty(trans, leaf);
9461 	btrfs_free_path(path);
9462 
9463 	d_instantiate_new(dentry, inode);
9464 	err = 0;
9465 out:
9466 	btrfs_end_transaction(trans);
9467 	btrfs_btree_balance_dirty(fs_info);
9468 out_new_inode_args:
9469 	btrfs_new_inode_args_destroy(&new_inode_args);
9470 out_inode:
9471 	if (err)
9472 		iput(inode);
9473 	return err;
9474 }
9475 
9476 static struct btrfs_trans_handle *insert_prealloc_file_extent(
9477 				       struct btrfs_trans_handle *trans_in,
9478 				       struct btrfs_inode *inode,
9479 				       struct btrfs_key *ins,
9480 				       u64 file_offset)
9481 {
9482 	struct btrfs_file_extent_item stack_fi;
9483 	struct btrfs_replace_extent_info extent_info;
9484 	struct btrfs_trans_handle *trans = trans_in;
9485 	struct btrfs_path *path;
9486 	u64 start = ins->objectid;
9487 	u64 len = ins->offset;
9488 	u64 qgroup_released = 0;
9489 	int ret;
9490 
9491 	memset(&stack_fi, 0, sizeof(stack_fi));
9492 
9493 	btrfs_set_stack_file_extent_type(&stack_fi, BTRFS_FILE_EXTENT_PREALLOC);
9494 	btrfs_set_stack_file_extent_disk_bytenr(&stack_fi, start);
9495 	btrfs_set_stack_file_extent_disk_num_bytes(&stack_fi, len);
9496 	btrfs_set_stack_file_extent_num_bytes(&stack_fi, len);
9497 	btrfs_set_stack_file_extent_ram_bytes(&stack_fi, len);
9498 	btrfs_set_stack_file_extent_compression(&stack_fi, BTRFS_COMPRESS_NONE);
9499 	/* Encryption and other encoding is reserved and all 0 */
9500 
9501 	ret = btrfs_qgroup_release_data(inode, file_offset, len, &qgroup_released);
9502 	if (ret < 0)
9503 		return ERR_PTR(ret);
9504 
9505 	if (trans) {
9506 		ret = insert_reserved_file_extent(trans, inode,
9507 						  file_offset, &stack_fi,
9508 						  true, qgroup_released);
9509 		if (ret)
9510 			goto free_qgroup;
9511 		return trans;
9512 	}
9513 
9514 	extent_info.disk_offset = start;
9515 	extent_info.disk_len = len;
9516 	extent_info.data_offset = 0;
9517 	extent_info.data_len = len;
9518 	extent_info.file_offset = file_offset;
9519 	extent_info.extent_buf = (char *)&stack_fi;
9520 	extent_info.is_new_extent = true;
9521 	extent_info.update_times = true;
9522 	extent_info.qgroup_reserved = qgroup_released;
9523 	extent_info.insertions = 0;
9524 
9525 	path = btrfs_alloc_path();
9526 	if (!path) {
9527 		ret = -ENOMEM;
9528 		goto free_qgroup;
9529 	}
9530 
9531 	ret = btrfs_replace_file_extents(inode, path, file_offset,
9532 				     file_offset + len - 1, &extent_info,
9533 				     &trans);
9534 	btrfs_free_path(path);
9535 	if (ret)
9536 		goto free_qgroup;
9537 	return trans;
9538 
9539 free_qgroup:
9540 	/*
9541 	 * We have released qgroup data range at the beginning of the function,
9542 	 * and normally qgroup_released bytes will be freed when committing
9543 	 * transaction.
9544 	 * But if we error out early, we have to free what we have released
9545 	 * or we leak qgroup data reservation.
9546 	 */
9547 	btrfs_qgroup_free_refroot(inode->root->fs_info,
9548 			inode->root->root_key.objectid, qgroup_released,
9549 			BTRFS_QGROUP_RSV_DATA);
9550 	return ERR_PTR(ret);
9551 }
9552 
9553 static int __btrfs_prealloc_file_range(struct inode *inode, int mode,
9554 				       u64 start, u64 num_bytes, u64 min_size,
9555 				       loff_t actual_len, u64 *alloc_hint,
9556 				       struct btrfs_trans_handle *trans)
9557 {
9558 	struct btrfs_fs_info *fs_info = btrfs_sb(inode->i_sb);
9559 	struct extent_map *em;
9560 	struct btrfs_root *root = BTRFS_I(inode)->root;
9561 	struct btrfs_key ins;
9562 	u64 cur_offset = start;
9563 	u64 clear_offset = start;
9564 	u64 i_size;
9565 	u64 cur_bytes;
9566 	u64 last_alloc = (u64)-1;
9567 	int ret = 0;
9568 	bool own_trans = true;
9569 	u64 end = start + num_bytes - 1;
9570 
9571 	if (trans)
9572 		own_trans = false;
9573 	while (num_bytes > 0) {
9574 		cur_bytes = min_t(u64, num_bytes, SZ_256M);
9575 		cur_bytes = max(cur_bytes, min_size);
9576 		/*
9577 		 * If we are severely fragmented we could end up with really
9578 		 * small allocations, so if the allocator is returning small
9579 		 * chunks lets make its job easier by only searching for those
9580 		 * sized chunks.
9581 		 */
9582 		cur_bytes = min(cur_bytes, last_alloc);
9583 		ret = btrfs_reserve_extent(root, cur_bytes, cur_bytes,
9584 				min_size, 0, *alloc_hint, &ins, 1, 0);
9585 		if (ret)
9586 			break;
9587 
9588 		/*
9589 		 * We've reserved this space, and thus converted it from
9590 		 * ->bytes_may_use to ->bytes_reserved.  Any error that happens
9591 		 * from here on out we will only need to clear our reservation
9592 		 * for the remaining unreserved area, so advance our
9593 		 * clear_offset by our extent size.
9594 		 */
9595 		clear_offset += ins.offset;
9596 
9597 		last_alloc = ins.offset;
9598 		trans = insert_prealloc_file_extent(trans, BTRFS_I(inode),
9599 						    &ins, cur_offset);
9600 		/*
9601 		 * Now that we inserted the prealloc extent we can finally
9602 		 * decrement the number of reservations in the block group.
9603 		 * If we did it before, we could race with relocation and have
9604 		 * relocation miss the reserved extent, making it fail later.
9605 		 */
9606 		btrfs_dec_block_group_reservations(fs_info, ins.objectid);
9607 		if (IS_ERR(trans)) {
9608 			ret = PTR_ERR(trans);
9609 			btrfs_free_reserved_extent(fs_info, ins.objectid,
9610 						   ins.offset, 0);
9611 			break;
9612 		}
9613 
9614 		em = alloc_extent_map();
9615 		if (!em) {
9616 			btrfs_drop_extent_map_range(BTRFS_I(inode), cur_offset,
9617 					    cur_offset + ins.offset - 1, false);
9618 			btrfs_set_inode_full_sync(BTRFS_I(inode));
9619 			goto next;
9620 		}
9621 
9622 		em->start = cur_offset;
9623 		em->orig_start = cur_offset;
9624 		em->len = ins.offset;
9625 		em->block_start = ins.objectid;
9626 		em->block_len = ins.offset;
9627 		em->orig_block_len = ins.offset;
9628 		em->ram_bytes = ins.offset;
9629 		set_bit(EXTENT_FLAG_PREALLOC, &em->flags);
9630 		em->generation = trans->transid;
9631 
9632 		ret = btrfs_replace_extent_map_range(BTRFS_I(inode), em, true);
9633 		free_extent_map(em);
9634 next:
9635 		num_bytes -= ins.offset;
9636 		cur_offset += ins.offset;
9637 		*alloc_hint = ins.objectid + ins.offset;
9638 
9639 		inode_inc_iversion(inode);
9640 		inode_set_ctime_current(inode);
9641 		BTRFS_I(inode)->flags |= BTRFS_INODE_PREALLOC;
9642 		if (!(mode & FALLOC_FL_KEEP_SIZE) &&
9643 		    (actual_len > inode->i_size) &&
9644 		    (cur_offset > inode->i_size)) {
9645 			if (cur_offset > actual_len)
9646 				i_size = actual_len;
9647 			else
9648 				i_size = cur_offset;
9649 			i_size_write(inode, i_size);
9650 			btrfs_inode_safe_disk_i_size_write(BTRFS_I(inode), 0);
9651 		}
9652 
9653 		ret = btrfs_update_inode(trans, root, BTRFS_I(inode));
9654 
9655 		if (ret) {
9656 			btrfs_abort_transaction(trans, ret);
9657 			if (own_trans)
9658 				btrfs_end_transaction(trans);
9659 			break;
9660 		}
9661 
9662 		if (own_trans) {
9663 			btrfs_end_transaction(trans);
9664 			trans = NULL;
9665 		}
9666 	}
9667 	if (clear_offset < end)
9668 		btrfs_free_reserved_data_space(BTRFS_I(inode), NULL, clear_offset,
9669 			end - clear_offset + 1);
9670 	return ret;
9671 }
9672 
9673 int btrfs_prealloc_file_range(struct inode *inode, int mode,
9674 			      u64 start, u64 num_bytes, u64 min_size,
9675 			      loff_t actual_len, u64 *alloc_hint)
9676 {
9677 	return __btrfs_prealloc_file_range(inode, mode, start, num_bytes,
9678 					   min_size, actual_len, alloc_hint,
9679 					   NULL);
9680 }
9681 
9682 int btrfs_prealloc_file_range_trans(struct inode *inode,
9683 				    struct btrfs_trans_handle *trans, int mode,
9684 				    u64 start, u64 num_bytes, u64 min_size,
9685 				    loff_t actual_len, u64 *alloc_hint)
9686 {
9687 	return __btrfs_prealloc_file_range(inode, mode, start, num_bytes,
9688 					   min_size, actual_len, alloc_hint, trans);
9689 }
9690 
9691 static int btrfs_permission(struct mnt_idmap *idmap,
9692 			    struct inode *inode, int mask)
9693 {
9694 	struct btrfs_root *root = BTRFS_I(inode)->root;
9695 	umode_t mode = inode->i_mode;
9696 
9697 	if (mask & MAY_WRITE &&
9698 	    (S_ISREG(mode) || S_ISDIR(mode) || S_ISLNK(mode))) {
9699 		if (btrfs_root_readonly(root))
9700 			return -EROFS;
9701 		if (BTRFS_I(inode)->flags & BTRFS_INODE_READONLY)
9702 			return -EACCES;
9703 	}
9704 	return generic_permission(idmap, inode, mask);
9705 }
9706 
9707 static int btrfs_tmpfile(struct mnt_idmap *idmap, struct inode *dir,
9708 			 struct file *file, umode_t mode)
9709 {
9710 	struct btrfs_fs_info *fs_info = btrfs_sb(dir->i_sb);
9711 	struct btrfs_trans_handle *trans;
9712 	struct btrfs_root *root = BTRFS_I(dir)->root;
9713 	struct inode *inode;
9714 	struct btrfs_new_inode_args new_inode_args = {
9715 		.dir = dir,
9716 		.dentry = file->f_path.dentry,
9717 		.orphan = true,
9718 	};
9719 	unsigned int trans_num_items;
9720 	int ret;
9721 
9722 	inode = new_inode(dir->i_sb);
9723 	if (!inode)
9724 		return -ENOMEM;
9725 	inode_init_owner(idmap, inode, dir, mode);
9726 	inode->i_fop = &btrfs_file_operations;
9727 	inode->i_op = &btrfs_file_inode_operations;
9728 	inode->i_mapping->a_ops = &btrfs_aops;
9729 
9730 	new_inode_args.inode = inode;
9731 	ret = btrfs_new_inode_prepare(&new_inode_args, &trans_num_items);
9732 	if (ret)
9733 		goto out_inode;
9734 
9735 	trans = btrfs_start_transaction(root, trans_num_items);
9736 	if (IS_ERR(trans)) {
9737 		ret = PTR_ERR(trans);
9738 		goto out_new_inode_args;
9739 	}
9740 
9741 	ret = btrfs_create_new_inode(trans, &new_inode_args);
9742 
9743 	/*
9744 	 * We set number of links to 0 in btrfs_create_new_inode(), and here we
9745 	 * set it to 1 because d_tmpfile() will issue a warning if the count is
9746 	 * 0, through:
9747 	 *
9748 	 *    d_tmpfile() -> inode_dec_link_count() -> drop_nlink()
9749 	 */
9750 	set_nlink(inode, 1);
9751 
9752 	if (!ret) {
9753 		d_tmpfile(file, inode);
9754 		unlock_new_inode(inode);
9755 		mark_inode_dirty(inode);
9756 	}
9757 
9758 	btrfs_end_transaction(trans);
9759 	btrfs_btree_balance_dirty(fs_info);
9760 out_new_inode_args:
9761 	btrfs_new_inode_args_destroy(&new_inode_args);
9762 out_inode:
9763 	if (ret)
9764 		iput(inode);
9765 	return finish_open_simple(file, ret);
9766 }
9767 
9768 void btrfs_set_range_writeback(struct btrfs_inode *inode, u64 start, u64 end)
9769 {
9770 	struct btrfs_fs_info *fs_info = inode->root->fs_info;
9771 	unsigned long index = start >> PAGE_SHIFT;
9772 	unsigned long end_index = end >> PAGE_SHIFT;
9773 	struct page *page;
9774 	u32 len;
9775 
9776 	ASSERT(end + 1 - start <= U32_MAX);
9777 	len = end + 1 - start;
9778 	while (index <= end_index) {
9779 		page = find_get_page(inode->vfs_inode.i_mapping, index);
9780 		ASSERT(page); /* Pages should be in the extent_io_tree */
9781 
9782 		btrfs_page_set_writeback(fs_info, page, start, len);
9783 		put_page(page);
9784 		index++;
9785 	}
9786 }
9787 
9788 int btrfs_encoded_io_compression_from_extent(struct btrfs_fs_info *fs_info,
9789 					     int compress_type)
9790 {
9791 	switch (compress_type) {
9792 	case BTRFS_COMPRESS_NONE:
9793 		return BTRFS_ENCODED_IO_COMPRESSION_NONE;
9794 	case BTRFS_COMPRESS_ZLIB:
9795 		return BTRFS_ENCODED_IO_COMPRESSION_ZLIB;
9796 	case BTRFS_COMPRESS_LZO:
9797 		/*
9798 		 * The LZO format depends on the sector size. 64K is the maximum
9799 		 * sector size that we support.
9800 		 */
9801 		if (fs_info->sectorsize < SZ_4K || fs_info->sectorsize > SZ_64K)
9802 			return -EINVAL;
9803 		return BTRFS_ENCODED_IO_COMPRESSION_LZO_4K +
9804 		       (fs_info->sectorsize_bits - 12);
9805 	case BTRFS_COMPRESS_ZSTD:
9806 		return BTRFS_ENCODED_IO_COMPRESSION_ZSTD;
9807 	default:
9808 		return -EUCLEAN;
9809 	}
9810 }
9811 
9812 static ssize_t btrfs_encoded_read_inline(
9813 				struct kiocb *iocb,
9814 				struct iov_iter *iter, u64 start,
9815 				u64 lockend,
9816 				struct extent_state **cached_state,
9817 				u64 extent_start, size_t count,
9818 				struct btrfs_ioctl_encoded_io_args *encoded,
9819 				bool *unlocked)
9820 {
9821 	struct btrfs_inode *inode = BTRFS_I(file_inode(iocb->ki_filp));
9822 	struct btrfs_root *root = inode->root;
9823 	struct btrfs_fs_info *fs_info = root->fs_info;
9824 	struct extent_io_tree *io_tree = &inode->io_tree;
9825 	struct btrfs_path *path;
9826 	struct extent_buffer *leaf;
9827 	struct btrfs_file_extent_item *item;
9828 	u64 ram_bytes;
9829 	unsigned long ptr;
9830 	void *tmp;
9831 	ssize_t ret;
9832 
9833 	path = btrfs_alloc_path();
9834 	if (!path) {
9835 		ret = -ENOMEM;
9836 		goto out;
9837 	}
9838 	ret = btrfs_lookup_file_extent(NULL, root, path, btrfs_ino(inode),
9839 				       extent_start, 0);
9840 	if (ret) {
9841 		if (ret > 0) {
9842 			/* The extent item disappeared? */
9843 			ret = -EIO;
9844 		}
9845 		goto out;
9846 	}
9847 	leaf = path->nodes[0];
9848 	item = btrfs_item_ptr(leaf, path->slots[0], struct btrfs_file_extent_item);
9849 
9850 	ram_bytes = btrfs_file_extent_ram_bytes(leaf, item);
9851 	ptr = btrfs_file_extent_inline_start(item);
9852 
9853 	encoded->len = min_t(u64, extent_start + ram_bytes,
9854 			     inode->vfs_inode.i_size) - iocb->ki_pos;
9855 	ret = btrfs_encoded_io_compression_from_extent(fs_info,
9856 				 btrfs_file_extent_compression(leaf, item));
9857 	if (ret < 0)
9858 		goto out;
9859 	encoded->compression = ret;
9860 	if (encoded->compression) {
9861 		size_t inline_size;
9862 
9863 		inline_size = btrfs_file_extent_inline_item_len(leaf,
9864 								path->slots[0]);
9865 		if (inline_size > count) {
9866 			ret = -ENOBUFS;
9867 			goto out;
9868 		}
9869 		count = inline_size;
9870 		encoded->unencoded_len = ram_bytes;
9871 		encoded->unencoded_offset = iocb->ki_pos - extent_start;
9872 	} else {
9873 		count = min_t(u64, count, encoded->len);
9874 		encoded->len = count;
9875 		encoded->unencoded_len = count;
9876 		ptr += iocb->ki_pos - extent_start;
9877 	}
9878 
9879 	tmp = kmalloc(count, GFP_NOFS);
9880 	if (!tmp) {
9881 		ret = -ENOMEM;
9882 		goto out;
9883 	}
9884 	read_extent_buffer(leaf, tmp, ptr, count);
9885 	btrfs_release_path(path);
9886 	unlock_extent(io_tree, start, lockend, cached_state);
9887 	btrfs_inode_unlock(inode, BTRFS_ILOCK_SHARED);
9888 	*unlocked = true;
9889 
9890 	ret = copy_to_iter(tmp, count, iter);
9891 	if (ret != count)
9892 		ret = -EFAULT;
9893 	kfree(tmp);
9894 out:
9895 	btrfs_free_path(path);
9896 	return ret;
9897 }
9898 
9899 struct btrfs_encoded_read_private {
9900 	wait_queue_head_t wait;
9901 	atomic_t pending;
9902 	blk_status_t status;
9903 };
9904 
9905 static void btrfs_encoded_read_endio(struct btrfs_bio *bbio)
9906 {
9907 	struct btrfs_encoded_read_private *priv = bbio->private;
9908 
9909 	if (bbio->bio.bi_status) {
9910 		/*
9911 		 * The memory barrier implied by the atomic_dec_return() here
9912 		 * pairs with the memory barrier implied by the
9913 		 * atomic_dec_return() or io_wait_event() in
9914 		 * btrfs_encoded_read_regular_fill_pages() to ensure that this
9915 		 * write is observed before the load of status in
9916 		 * btrfs_encoded_read_regular_fill_pages().
9917 		 */
9918 		WRITE_ONCE(priv->status, bbio->bio.bi_status);
9919 	}
9920 	if (!atomic_dec_return(&priv->pending))
9921 		wake_up(&priv->wait);
9922 	bio_put(&bbio->bio);
9923 }
9924 
9925 int btrfs_encoded_read_regular_fill_pages(struct btrfs_inode *inode,
9926 					  u64 file_offset, u64 disk_bytenr,
9927 					  u64 disk_io_size, struct page **pages)
9928 {
9929 	struct btrfs_fs_info *fs_info = inode->root->fs_info;
9930 	struct btrfs_encoded_read_private priv = {
9931 		.pending = ATOMIC_INIT(1),
9932 	};
9933 	unsigned long i = 0;
9934 	struct btrfs_bio *bbio;
9935 
9936 	init_waitqueue_head(&priv.wait);
9937 
9938 	bbio = btrfs_bio_alloc(BIO_MAX_VECS, REQ_OP_READ, fs_info,
9939 			       btrfs_encoded_read_endio, &priv);
9940 	bbio->bio.bi_iter.bi_sector = disk_bytenr >> SECTOR_SHIFT;
9941 	bbio->inode = inode;
9942 
9943 	do {
9944 		size_t bytes = min_t(u64, disk_io_size, PAGE_SIZE);
9945 
9946 		if (bio_add_page(&bbio->bio, pages[i], bytes, 0) < bytes) {
9947 			atomic_inc(&priv.pending);
9948 			btrfs_submit_bio(bbio, 0);
9949 
9950 			bbio = btrfs_bio_alloc(BIO_MAX_VECS, REQ_OP_READ, fs_info,
9951 					       btrfs_encoded_read_endio, &priv);
9952 			bbio->bio.bi_iter.bi_sector = disk_bytenr >> SECTOR_SHIFT;
9953 			bbio->inode = inode;
9954 			continue;
9955 		}
9956 
9957 		i++;
9958 		disk_bytenr += bytes;
9959 		disk_io_size -= bytes;
9960 	} while (disk_io_size);
9961 
9962 	atomic_inc(&priv.pending);
9963 	btrfs_submit_bio(bbio, 0);
9964 
9965 	if (atomic_dec_return(&priv.pending))
9966 		io_wait_event(priv.wait, !atomic_read(&priv.pending));
9967 	/* See btrfs_encoded_read_endio() for ordering. */
9968 	return blk_status_to_errno(READ_ONCE(priv.status));
9969 }
9970 
9971 static ssize_t btrfs_encoded_read_regular(struct kiocb *iocb,
9972 					  struct iov_iter *iter,
9973 					  u64 start, u64 lockend,
9974 					  struct extent_state **cached_state,
9975 					  u64 disk_bytenr, u64 disk_io_size,
9976 					  size_t count, bool compressed,
9977 					  bool *unlocked)
9978 {
9979 	struct btrfs_inode *inode = BTRFS_I(file_inode(iocb->ki_filp));
9980 	struct extent_io_tree *io_tree = &inode->io_tree;
9981 	struct page **pages;
9982 	unsigned long nr_pages, i;
9983 	u64 cur;
9984 	size_t page_offset;
9985 	ssize_t ret;
9986 
9987 	nr_pages = DIV_ROUND_UP(disk_io_size, PAGE_SIZE);
9988 	pages = kcalloc(nr_pages, sizeof(struct page *), GFP_NOFS);
9989 	if (!pages)
9990 		return -ENOMEM;
9991 	ret = btrfs_alloc_page_array(nr_pages, pages);
9992 	if (ret) {
9993 		ret = -ENOMEM;
9994 		goto out;
9995 		}
9996 
9997 	ret = btrfs_encoded_read_regular_fill_pages(inode, start, disk_bytenr,
9998 						    disk_io_size, pages);
9999 	if (ret)
10000 		goto out;
10001 
10002 	unlock_extent(io_tree, start, lockend, cached_state);
10003 	btrfs_inode_unlock(inode, BTRFS_ILOCK_SHARED);
10004 	*unlocked = true;
10005 
10006 	if (compressed) {
10007 		i = 0;
10008 		page_offset = 0;
10009 	} else {
10010 		i = (iocb->ki_pos - start) >> PAGE_SHIFT;
10011 		page_offset = (iocb->ki_pos - start) & (PAGE_SIZE - 1);
10012 	}
10013 	cur = 0;
10014 	while (cur < count) {
10015 		size_t bytes = min_t(size_t, count - cur,
10016 				     PAGE_SIZE - page_offset);
10017 
10018 		if (copy_page_to_iter(pages[i], page_offset, bytes,
10019 				      iter) != bytes) {
10020 			ret = -EFAULT;
10021 			goto out;
10022 		}
10023 		i++;
10024 		cur += bytes;
10025 		page_offset = 0;
10026 	}
10027 	ret = count;
10028 out:
10029 	for (i = 0; i < nr_pages; i++) {
10030 		if (pages[i])
10031 			__free_page(pages[i]);
10032 	}
10033 	kfree(pages);
10034 	return ret;
10035 }
10036 
10037 ssize_t btrfs_encoded_read(struct kiocb *iocb, struct iov_iter *iter,
10038 			   struct btrfs_ioctl_encoded_io_args *encoded)
10039 {
10040 	struct btrfs_inode *inode = BTRFS_I(file_inode(iocb->ki_filp));
10041 	struct btrfs_fs_info *fs_info = inode->root->fs_info;
10042 	struct extent_io_tree *io_tree = &inode->io_tree;
10043 	ssize_t ret;
10044 	size_t count = iov_iter_count(iter);
10045 	u64 start, lockend, disk_bytenr, disk_io_size;
10046 	struct extent_state *cached_state = NULL;
10047 	struct extent_map *em;
10048 	bool unlocked = false;
10049 
10050 	file_accessed(iocb->ki_filp);
10051 
10052 	btrfs_inode_lock(inode, BTRFS_ILOCK_SHARED);
10053 
10054 	if (iocb->ki_pos >= inode->vfs_inode.i_size) {
10055 		btrfs_inode_unlock(inode, BTRFS_ILOCK_SHARED);
10056 		return 0;
10057 	}
10058 	start = ALIGN_DOWN(iocb->ki_pos, fs_info->sectorsize);
10059 	/*
10060 	 * We don't know how long the extent containing iocb->ki_pos is, but if
10061 	 * it's compressed we know that it won't be longer than this.
10062 	 */
10063 	lockend = start + BTRFS_MAX_UNCOMPRESSED - 1;
10064 
10065 	for (;;) {
10066 		struct btrfs_ordered_extent *ordered;
10067 
10068 		ret = btrfs_wait_ordered_range(&inode->vfs_inode, start,
10069 					       lockend - start + 1);
10070 		if (ret)
10071 			goto out_unlock_inode;
10072 		lock_extent(io_tree, start, lockend, &cached_state);
10073 		ordered = btrfs_lookup_ordered_range(inode, start,
10074 						     lockend - start + 1);
10075 		if (!ordered)
10076 			break;
10077 		btrfs_put_ordered_extent(ordered);
10078 		unlock_extent(io_tree, start, lockend, &cached_state);
10079 		cond_resched();
10080 	}
10081 
10082 	em = btrfs_get_extent(inode, NULL, 0, start, lockend - start + 1);
10083 	if (IS_ERR(em)) {
10084 		ret = PTR_ERR(em);
10085 		goto out_unlock_extent;
10086 	}
10087 
10088 	if (em->block_start == EXTENT_MAP_INLINE) {
10089 		u64 extent_start = em->start;
10090 
10091 		/*
10092 		 * For inline extents we get everything we need out of the
10093 		 * extent item.
10094 		 */
10095 		free_extent_map(em);
10096 		em = NULL;
10097 		ret = btrfs_encoded_read_inline(iocb, iter, start, lockend,
10098 						&cached_state, extent_start,
10099 						count, encoded, &unlocked);
10100 		goto out;
10101 	}
10102 
10103 	/*
10104 	 * We only want to return up to EOF even if the extent extends beyond
10105 	 * that.
10106 	 */
10107 	encoded->len = min_t(u64, extent_map_end(em),
10108 			     inode->vfs_inode.i_size) - iocb->ki_pos;
10109 	if (em->block_start == EXTENT_MAP_HOLE ||
10110 	    test_bit(EXTENT_FLAG_PREALLOC, &em->flags)) {
10111 		disk_bytenr = EXTENT_MAP_HOLE;
10112 		count = min_t(u64, count, encoded->len);
10113 		encoded->len = count;
10114 		encoded->unencoded_len = count;
10115 	} else if (test_bit(EXTENT_FLAG_COMPRESSED, &em->flags)) {
10116 		disk_bytenr = em->block_start;
10117 		/*
10118 		 * Bail if the buffer isn't large enough to return the whole
10119 		 * compressed extent.
10120 		 */
10121 		if (em->block_len > count) {
10122 			ret = -ENOBUFS;
10123 			goto out_em;
10124 		}
10125 		disk_io_size = em->block_len;
10126 		count = em->block_len;
10127 		encoded->unencoded_len = em->ram_bytes;
10128 		encoded->unencoded_offset = iocb->ki_pos - em->orig_start;
10129 		ret = btrfs_encoded_io_compression_from_extent(fs_info,
10130 							     em->compress_type);
10131 		if (ret < 0)
10132 			goto out_em;
10133 		encoded->compression = ret;
10134 	} else {
10135 		disk_bytenr = em->block_start + (start - em->start);
10136 		if (encoded->len > count)
10137 			encoded->len = count;
10138 		/*
10139 		 * Don't read beyond what we locked. This also limits the page
10140 		 * allocations that we'll do.
10141 		 */
10142 		disk_io_size = min(lockend + 1, iocb->ki_pos + encoded->len) - start;
10143 		count = start + disk_io_size - iocb->ki_pos;
10144 		encoded->len = count;
10145 		encoded->unencoded_len = count;
10146 		disk_io_size = ALIGN(disk_io_size, fs_info->sectorsize);
10147 	}
10148 	free_extent_map(em);
10149 	em = NULL;
10150 
10151 	if (disk_bytenr == EXTENT_MAP_HOLE) {
10152 		unlock_extent(io_tree, start, lockend, &cached_state);
10153 		btrfs_inode_unlock(inode, BTRFS_ILOCK_SHARED);
10154 		unlocked = true;
10155 		ret = iov_iter_zero(count, iter);
10156 		if (ret != count)
10157 			ret = -EFAULT;
10158 	} else {
10159 		ret = btrfs_encoded_read_regular(iocb, iter, start, lockend,
10160 						 &cached_state, disk_bytenr,
10161 						 disk_io_size, count,
10162 						 encoded->compression,
10163 						 &unlocked);
10164 	}
10165 
10166 out:
10167 	if (ret >= 0)
10168 		iocb->ki_pos += encoded->len;
10169 out_em:
10170 	free_extent_map(em);
10171 out_unlock_extent:
10172 	if (!unlocked)
10173 		unlock_extent(io_tree, start, lockend, &cached_state);
10174 out_unlock_inode:
10175 	if (!unlocked)
10176 		btrfs_inode_unlock(inode, BTRFS_ILOCK_SHARED);
10177 	return ret;
10178 }
10179 
10180 ssize_t btrfs_do_encoded_write(struct kiocb *iocb, struct iov_iter *from,
10181 			       const struct btrfs_ioctl_encoded_io_args *encoded)
10182 {
10183 	struct btrfs_inode *inode = BTRFS_I(file_inode(iocb->ki_filp));
10184 	struct btrfs_root *root = inode->root;
10185 	struct btrfs_fs_info *fs_info = root->fs_info;
10186 	struct extent_io_tree *io_tree = &inode->io_tree;
10187 	struct extent_changeset *data_reserved = NULL;
10188 	struct extent_state *cached_state = NULL;
10189 	struct btrfs_ordered_extent *ordered;
10190 	int compression;
10191 	size_t orig_count;
10192 	u64 start, end;
10193 	u64 num_bytes, ram_bytes, disk_num_bytes;
10194 	unsigned long nr_pages, i;
10195 	struct page **pages;
10196 	struct btrfs_key ins;
10197 	bool extent_reserved = false;
10198 	struct extent_map *em;
10199 	ssize_t ret;
10200 
10201 	switch (encoded->compression) {
10202 	case BTRFS_ENCODED_IO_COMPRESSION_ZLIB:
10203 		compression = BTRFS_COMPRESS_ZLIB;
10204 		break;
10205 	case BTRFS_ENCODED_IO_COMPRESSION_ZSTD:
10206 		compression = BTRFS_COMPRESS_ZSTD;
10207 		break;
10208 	case BTRFS_ENCODED_IO_COMPRESSION_LZO_4K:
10209 	case BTRFS_ENCODED_IO_COMPRESSION_LZO_8K:
10210 	case BTRFS_ENCODED_IO_COMPRESSION_LZO_16K:
10211 	case BTRFS_ENCODED_IO_COMPRESSION_LZO_32K:
10212 	case BTRFS_ENCODED_IO_COMPRESSION_LZO_64K:
10213 		/* The sector size must match for LZO. */
10214 		if (encoded->compression -
10215 		    BTRFS_ENCODED_IO_COMPRESSION_LZO_4K + 12 !=
10216 		    fs_info->sectorsize_bits)
10217 			return -EINVAL;
10218 		compression = BTRFS_COMPRESS_LZO;
10219 		break;
10220 	default:
10221 		return -EINVAL;
10222 	}
10223 	if (encoded->encryption != BTRFS_ENCODED_IO_ENCRYPTION_NONE)
10224 		return -EINVAL;
10225 
10226 	orig_count = iov_iter_count(from);
10227 
10228 	/* The extent size must be sane. */
10229 	if (encoded->unencoded_len > BTRFS_MAX_UNCOMPRESSED ||
10230 	    orig_count > BTRFS_MAX_COMPRESSED || orig_count == 0)
10231 		return -EINVAL;
10232 
10233 	/*
10234 	 * The compressed data must be smaller than the decompressed data.
10235 	 *
10236 	 * It's of course possible for data to compress to larger or the same
10237 	 * size, but the buffered I/O path falls back to no compression for such
10238 	 * data, and we don't want to break any assumptions by creating these
10239 	 * extents.
10240 	 *
10241 	 * Note that this is less strict than the current check we have that the
10242 	 * compressed data must be at least one sector smaller than the
10243 	 * decompressed data. We only want to enforce the weaker requirement
10244 	 * from old kernels that it is at least one byte smaller.
10245 	 */
10246 	if (orig_count >= encoded->unencoded_len)
10247 		return -EINVAL;
10248 
10249 	/* The extent must start on a sector boundary. */
10250 	start = iocb->ki_pos;
10251 	if (!IS_ALIGNED(start, fs_info->sectorsize))
10252 		return -EINVAL;
10253 
10254 	/*
10255 	 * The extent must end on a sector boundary. However, we allow a write
10256 	 * which ends at or extends i_size to have an unaligned length; we round
10257 	 * up the extent size and set i_size to the unaligned end.
10258 	 */
10259 	if (start + encoded->len < inode->vfs_inode.i_size &&
10260 	    !IS_ALIGNED(start + encoded->len, fs_info->sectorsize))
10261 		return -EINVAL;
10262 
10263 	/* Finally, the offset in the unencoded data must be sector-aligned. */
10264 	if (!IS_ALIGNED(encoded->unencoded_offset, fs_info->sectorsize))
10265 		return -EINVAL;
10266 
10267 	num_bytes = ALIGN(encoded->len, fs_info->sectorsize);
10268 	ram_bytes = ALIGN(encoded->unencoded_len, fs_info->sectorsize);
10269 	end = start + num_bytes - 1;
10270 
10271 	/*
10272 	 * If the extent cannot be inline, the compressed data on disk must be
10273 	 * sector-aligned. For convenience, we extend it with zeroes if it
10274 	 * isn't.
10275 	 */
10276 	disk_num_bytes = ALIGN(orig_count, fs_info->sectorsize);
10277 	nr_pages = DIV_ROUND_UP(disk_num_bytes, PAGE_SIZE);
10278 	pages = kvcalloc(nr_pages, sizeof(struct page *), GFP_KERNEL_ACCOUNT);
10279 	if (!pages)
10280 		return -ENOMEM;
10281 	for (i = 0; i < nr_pages; i++) {
10282 		size_t bytes = min_t(size_t, PAGE_SIZE, iov_iter_count(from));
10283 		char *kaddr;
10284 
10285 		pages[i] = alloc_page(GFP_KERNEL_ACCOUNT);
10286 		if (!pages[i]) {
10287 			ret = -ENOMEM;
10288 			goto out_pages;
10289 		}
10290 		kaddr = kmap_local_page(pages[i]);
10291 		if (copy_from_iter(kaddr, bytes, from) != bytes) {
10292 			kunmap_local(kaddr);
10293 			ret = -EFAULT;
10294 			goto out_pages;
10295 		}
10296 		if (bytes < PAGE_SIZE)
10297 			memset(kaddr + bytes, 0, PAGE_SIZE - bytes);
10298 		kunmap_local(kaddr);
10299 	}
10300 
10301 	for (;;) {
10302 		struct btrfs_ordered_extent *ordered;
10303 
10304 		ret = btrfs_wait_ordered_range(&inode->vfs_inode, start, num_bytes);
10305 		if (ret)
10306 			goto out_pages;
10307 		ret = invalidate_inode_pages2_range(inode->vfs_inode.i_mapping,
10308 						    start >> PAGE_SHIFT,
10309 						    end >> PAGE_SHIFT);
10310 		if (ret)
10311 			goto out_pages;
10312 		lock_extent(io_tree, start, end, &cached_state);
10313 		ordered = btrfs_lookup_ordered_range(inode, start, num_bytes);
10314 		if (!ordered &&
10315 		    !filemap_range_has_page(inode->vfs_inode.i_mapping, start, end))
10316 			break;
10317 		if (ordered)
10318 			btrfs_put_ordered_extent(ordered);
10319 		unlock_extent(io_tree, start, end, &cached_state);
10320 		cond_resched();
10321 	}
10322 
10323 	/*
10324 	 * We don't use the higher-level delalloc space functions because our
10325 	 * num_bytes and disk_num_bytes are different.
10326 	 */
10327 	ret = btrfs_alloc_data_chunk_ondemand(inode, disk_num_bytes);
10328 	if (ret)
10329 		goto out_unlock;
10330 	ret = btrfs_qgroup_reserve_data(inode, &data_reserved, start, num_bytes);
10331 	if (ret)
10332 		goto out_free_data_space;
10333 	ret = btrfs_delalloc_reserve_metadata(inode, num_bytes, disk_num_bytes,
10334 					      false);
10335 	if (ret)
10336 		goto out_qgroup_free_data;
10337 
10338 	/* Try an inline extent first. */
10339 	if (start == 0 && encoded->unencoded_len == encoded->len &&
10340 	    encoded->unencoded_offset == 0) {
10341 		ret = cow_file_range_inline(inode, encoded->len, orig_count,
10342 					    compression, pages, true);
10343 		if (ret <= 0) {
10344 			if (ret == 0)
10345 				ret = orig_count;
10346 			goto out_delalloc_release;
10347 		}
10348 	}
10349 
10350 	ret = btrfs_reserve_extent(root, disk_num_bytes, disk_num_bytes,
10351 				   disk_num_bytes, 0, 0, &ins, 1, 1);
10352 	if (ret)
10353 		goto out_delalloc_release;
10354 	extent_reserved = true;
10355 
10356 	em = create_io_em(inode, start, num_bytes,
10357 			  start - encoded->unencoded_offset, ins.objectid,
10358 			  ins.offset, ins.offset, ram_bytes, compression,
10359 			  BTRFS_ORDERED_COMPRESSED);
10360 	if (IS_ERR(em)) {
10361 		ret = PTR_ERR(em);
10362 		goto out_free_reserved;
10363 	}
10364 	free_extent_map(em);
10365 
10366 	ordered = btrfs_alloc_ordered_extent(inode, start, num_bytes, ram_bytes,
10367 				       ins.objectid, ins.offset,
10368 				       encoded->unencoded_offset,
10369 				       (1 << BTRFS_ORDERED_ENCODED) |
10370 				       (1 << BTRFS_ORDERED_COMPRESSED),
10371 				       compression);
10372 	if (IS_ERR(ordered)) {
10373 		btrfs_drop_extent_map_range(inode, start, end, false);
10374 		ret = PTR_ERR(ordered);
10375 		goto out_free_reserved;
10376 	}
10377 	btrfs_dec_block_group_reservations(fs_info, ins.objectid);
10378 
10379 	if (start + encoded->len > inode->vfs_inode.i_size)
10380 		i_size_write(&inode->vfs_inode, start + encoded->len);
10381 
10382 	unlock_extent(io_tree, start, end, &cached_state);
10383 
10384 	btrfs_delalloc_release_extents(inode, num_bytes);
10385 
10386 	btrfs_submit_compressed_write(ordered, pages, nr_pages, 0, false);
10387 	ret = orig_count;
10388 	goto out;
10389 
10390 out_free_reserved:
10391 	btrfs_dec_block_group_reservations(fs_info, ins.objectid);
10392 	btrfs_free_reserved_extent(fs_info, ins.objectid, ins.offset, 1);
10393 out_delalloc_release:
10394 	btrfs_delalloc_release_extents(inode, num_bytes);
10395 	btrfs_delalloc_release_metadata(inode, disk_num_bytes, ret < 0);
10396 out_qgroup_free_data:
10397 	if (ret < 0)
10398 		btrfs_qgroup_free_data(inode, data_reserved, start, num_bytes, NULL);
10399 out_free_data_space:
10400 	/*
10401 	 * If btrfs_reserve_extent() succeeded, then we already decremented
10402 	 * bytes_may_use.
10403 	 */
10404 	if (!extent_reserved)
10405 		btrfs_free_reserved_data_space_noquota(fs_info, disk_num_bytes);
10406 out_unlock:
10407 	unlock_extent(io_tree, start, end, &cached_state);
10408 out_pages:
10409 	for (i = 0; i < nr_pages; i++) {
10410 		if (pages[i])
10411 			__free_page(pages[i]);
10412 	}
10413 	kvfree(pages);
10414 out:
10415 	if (ret >= 0)
10416 		iocb->ki_pos += encoded->len;
10417 	return ret;
10418 }
10419 
10420 #ifdef CONFIG_SWAP
10421 /*
10422  * Add an entry indicating a block group or device which is pinned by a
10423  * swapfile. Returns 0 on success, 1 if there is already an entry for it, or a
10424  * negative errno on failure.
10425  */
10426 static int btrfs_add_swapfile_pin(struct inode *inode, void *ptr,
10427 				  bool is_block_group)
10428 {
10429 	struct btrfs_fs_info *fs_info = BTRFS_I(inode)->root->fs_info;
10430 	struct btrfs_swapfile_pin *sp, *entry;
10431 	struct rb_node **p;
10432 	struct rb_node *parent = NULL;
10433 
10434 	sp = kmalloc(sizeof(*sp), GFP_NOFS);
10435 	if (!sp)
10436 		return -ENOMEM;
10437 	sp->ptr = ptr;
10438 	sp->inode = inode;
10439 	sp->is_block_group = is_block_group;
10440 	sp->bg_extent_count = 1;
10441 
10442 	spin_lock(&fs_info->swapfile_pins_lock);
10443 	p = &fs_info->swapfile_pins.rb_node;
10444 	while (*p) {
10445 		parent = *p;
10446 		entry = rb_entry(parent, struct btrfs_swapfile_pin, node);
10447 		if (sp->ptr < entry->ptr ||
10448 		    (sp->ptr == entry->ptr && sp->inode < entry->inode)) {
10449 			p = &(*p)->rb_left;
10450 		} else if (sp->ptr > entry->ptr ||
10451 			   (sp->ptr == entry->ptr && sp->inode > entry->inode)) {
10452 			p = &(*p)->rb_right;
10453 		} else {
10454 			if (is_block_group)
10455 				entry->bg_extent_count++;
10456 			spin_unlock(&fs_info->swapfile_pins_lock);
10457 			kfree(sp);
10458 			return 1;
10459 		}
10460 	}
10461 	rb_link_node(&sp->node, parent, p);
10462 	rb_insert_color(&sp->node, &fs_info->swapfile_pins);
10463 	spin_unlock(&fs_info->swapfile_pins_lock);
10464 	return 0;
10465 }
10466 
10467 /* Free all of the entries pinned by this swapfile. */
10468 static void btrfs_free_swapfile_pins(struct inode *inode)
10469 {
10470 	struct btrfs_fs_info *fs_info = BTRFS_I(inode)->root->fs_info;
10471 	struct btrfs_swapfile_pin *sp;
10472 	struct rb_node *node, *next;
10473 
10474 	spin_lock(&fs_info->swapfile_pins_lock);
10475 	node = rb_first(&fs_info->swapfile_pins);
10476 	while (node) {
10477 		next = rb_next(node);
10478 		sp = rb_entry(node, struct btrfs_swapfile_pin, node);
10479 		if (sp->inode == inode) {
10480 			rb_erase(&sp->node, &fs_info->swapfile_pins);
10481 			if (sp->is_block_group) {
10482 				btrfs_dec_block_group_swap_extents(sp->ptr,
10483 							   sp->bg_extent_count);
10484 				btrfs_put_block_group(sp->ptr);
10485 			}
10486 			kfree(sp);
10487 		}
10488 		node = next;
10489 	}
10490 	spin_unlock(&fs_info->swapfile_pins_lock);
10491 }
10492 
10493 struct btrfs_swap_info {
10494 	u64 start;
10495 	u64 block_start;
10496 	u64 block_len;
10497 	u64 lowest_ppage;
10498 	u64 highest_ppage;
10499 	unsigned long nr_pages;
10500 	int nr_extents;
10501 };
10502 
10503 static int btrfs_add_swap_extent(struct swap_info_struct *sis,
10504 				 struct btrfs_swap_info *bsi)
10505 {
10506 	unsigned long nr_pages;
10507 	unsigned long max_pages;
10508 	u64 first_ppage, first_ppage_reported, next_ppage;
10509 	int ret;
10510 
10511 	/*
10512 	 * Our swapfile may have had its size extended after the swap header was
10513 	 * written. In that case activating the swapfile should not go beyond
10514 	 * the max size set in the swap header.
10515 	 */
10516 	if (bsi->nr_pages >= sis->max)
10517 		return 0;
10518 
10519 	max_pages = sis->max - bsi->nr_pages;
10520 	first_ppage = PAGE_ALIGN(bsi->block_start) >> PAGE_SHIFT;
10521 	next_ppage = PAGE_ALIGN_DOWN(bsi->block_start + bsi->block_len) >> PAGE_SHIFT;
10522 
10523 	if (first_ppage >= next_ppage)
10524 		return 0;
10525 	nr_pages = next_ppage - first_ppage;
10526 	nr_pages = min(nr_pages, max_pages);
10527 
10528 	first_ppage_reported = first_ppage;
10529 	if (bsi->start == 0)
10530 		first_ppage_reported++;
10531 	if (bsi->lowest_ppage > first_ppage_reported)
10532 		bsi->lowest_ppage = first_ppage_reported;
10533 	if (bsi->highest_ppage < (next_ppage - 1))
10534 		bsi->highest_ppage = next_ppage - 1;
10535 
10536 	ret = add_swap_extent(sis, bsi->nr_pages, nr_pages, first_ppage);
10537 	if (ret < 0)
10538 		return ret;
10539 	bsi->nr_extents += ret;
10540 	bsi->nr_pages += nr_pages;
10541 	return 0;
10542 }
10543 
10544 static void btrfs_swap_deactivate(struct file *file)
10545 {
10546 	struct inode *inode = file_inode(file);
10547 
10548 	btrfs_free_swapfile_pins(inode);
10549 	atomic_dec(&BTRFS_I(inode)->root->nr_swapfiles);
10550 }
10551 
10552 static int btrfs_swap_activate(struct swap_info_struct *sis, struct file *file,
10553 			       sector_t *span)
10554 {
10555 	struct inode *inode = file_inode(file);
10556 	struct btrfs_root *root = BTRFS_I(inode)->root;
10557 	struct btrfs_fs_info *fs_info = root->fs_info;
10558 	struct extent_io_tree *io_tree = &BTRFS_I(inode)->io_tree;
10559 	struct extent_state *cached_state = NULL;
10560 	struct extent_map *em = NULL;
10561 	struct btrfs_device *device = NULL;
10562 	struct btrfs_swap_info bsi = {
10563 		.lowest_ppage = (sector_t)-1ULL,
10564 	};
10565 	int ret = 0;
10566 	u64 isize;
10567 	u64 start;
10568 
10569 	/*
10570 	 * If the swap file was just created, make sure delalloc is done. If the
10571 	 * file changes again after this, the user is doing something stupid and
10572 	 * we don't really care.
10573 	 */
10574 	ret = btrfs_wait_ordered_range(inode, 0, (u64)-1);
10575 	if (ret)
10576 		return ret;
10577 
10578 	/*
10579 	 * The inode is locked, so these flags won't change after we check them.
10580 	 */
10581 	if (BTRFS_I(inode)->flags & BTRFS_INODE_COMPRESS) {
10582 		btrfs_warn(fs_info, "swapfile must not be compressed");
10583 		return -EINVAL;
10584 	}
10585 	if (!(BTRFS_I(inode)->flags & BTRFS_INODE_NODATACOW)) {
10586 		btrfs_warn(fs_info, "swapfile must not be copy-on-write");
10587 		return -EINVAL;
10588 	}
10589 	if (!(BTRFS_I(inode)->flags & BTRFS_INODE_NODATASUM)) {
10590 		btrfs_warn(fs_info, "swapfile must not be checksummed");
10591 		return -EINVAL;
10592 	}
10593 
10594 	/*
10595 	 * Balance or device remove/replace/resize can move stuff around from
10596 	 * under us. The exclop protection makes sure they aren't running/won't
10597 	 * run concurrently while we are mapping the swap extents, and
10598 	 * fs_info->swapfile_pins prevents them from running while the swap
10599 	 * file is active and moving the extents. Note that this also prevents
10600 	 * a concurrent device add which isn't actually necessary, but it's not
10601 	 * really worth the trouble to allow it.
10602 	 */
10603 	if (!btrfs_exclop_start(fs_info, BTRFS_EXCLOP_SWAP_ACTIVATE)) {
10604 		btrfs_warn(fs_info,
10605 	   "cannot activate swapfile while exclusive operation is running");
10606 		return -EBUSY;
10607 	}
10608 
10609 	/*
10610 	 * Prevent snapshot creation while we are activating the swap file.
10611 	 * We do not want to race with snapshot creation. If snapshot creation
10612 	 * already started before we bumped nr_swapfiles from 0 to 1 and
10613 	 * completes before the first write into the swap file after it is
10614 	 * activated, than that write would fallback to COW.
10615 	 */
10616 	if (!btrfs_drew_try_write_lock(&root->snapshot_lock)) {
10617 		btrfs_exclop_finish(fs_info);
10618 		btrfs_warn(fs_info,
10619 	   "cannot activate swapfile because snapshot creation is in progress");
10620 		return -EINVAL;
10621 	}
10622 	/*
10623 	 * Snapshots can create extents which require COW even if NODATACOW is
10624 	 * set. We use this counter to prevent snapshots. We must increment it
10625 	 * before walking the extents because we don't want a concurrent
10626 	 * snapshot to run after we've already checked the extents.
10627 	 *
10628 	 * It is possible that subvolume is marked for deletion but still not
10629 	 * removed yet. To prevent this race, we check the root status before
10630 	 * activating the swapfile.
10631 	 */
10632 	spin_lock(&root->root_item_lock);
10633 	if (btrfs_root_dead(root)) {
10634 		spin_unlock(&root->root_item_lock);
10635 
10636 		btrfs_exclop_finish(fs_info);
10637 		btrfs_warn(fs_info,
10638 		"cannot activate swapfile because subvolume %llu is being deleted",
10639 			root->root_key.objectid);
10640 		return -EPERM;
10641 	}
10642 	atomic_inc(&root->nr_swapfiles);
10643 	spin_unlock(&root->root_item_lock);
10644 
10645 	isize = ALIGN_DOWN(inode->i_size, fs_info->sectorsize);
10646 
10647 	lock_extent(io_tree, 0, isize - 1, &cached_state);
10648 	start = 0;
10649 	while (start < isize) {
10650 		u64 logical_block_start, physical_block_start;
10651 		struct btrfs_block_group *bg;
10652 		u64 len = isize - start;
10653 
10654 		em = btrfs_get_extent(BTRFS_I(inode), NULL, 0, start, len);
10655 		if (IS_ERR(em)) {
10656 			ret = PTR_ERR(em);
10657 			goto out;
10658 		}
10659 
10660 		if (em->block_start == EXTENT_MAP_HOLE) {
10661 			btrfs_warn(fs_info, "swapfile must not have holes");
10662 			ret = -EINVAL;
10663 			goto out;
10664 		}
10665 		if (em->block_start == EXTENT_MAP_INLINE) {
10666 			/*
10667 			 * It's unlikely we'll ever actually find ourselves
10668 			 * here, as a file small enough to fit inline won't be
10669 			 * big enough to store more than the swap header, but in
10670 			 * case something changes in the future, let's catch it
10671 			 * here rather than later.
10672 			 */
10673 			btrfs_warn(fs_info, "swapfile must not be inline");
10674 			ret = -EINVAL;
10675 			goto out;
10676 		}
10677 		if (test_bit(EXTENT_FLAG_COMPRESSED, &em->flags)) {
10678 			btrfs_warn(fs_info, "swapfile must not be compressed");
10679 			ret = -EINVAL;
10680 			goto out;
10681 		}
10682 
10683 		logical_block_start = em->block_start + (start - em->start);
10684 		len = min(len, em->len - (start - em->start));
10685 		free_extent_map(em);
10686 		em = NULL;
10687 
10688 		ret = can_nocow_extent(inode, start, &len, NULL, NULL, NULL, false, true);
10689 		if (ret < 0) {
10690 			goto out;
10691 		} else if (ret) {
10692 			ret = 0;
10693 		} else {
10694 			btrfs_warn(fs_info,
10695 				   "swapfile must not be copy-on-write");
10696 			ret = -EINVAL;
10697 			goto out;
10698 		}
10699 
10700 		em = btrfs_get_chunk_map(fs_info, logical_block_start, len);
10701 		if (IS_ERR(em)) {
10702 			ret = PTR_ERR(em);
10703 			goto out;
10704 		}
10705 
10706 		if (em->map_lookup->type & BTRFS_BLOCK_GROUP_PROFILE_MASK) {
10707 			btrfs_warn(fs_info,
10708 				   "swapfile must have single data profile");
10709 			ret = -EINVAL;
10710 			goto out;
10711 		}
10712 
10713 		if (device == NULL) {
10714 			device = em->map_lookup->stripes[0].dev;
10715 			ret = btrfs_add_swapfile_pin(inode, device, false);
10716 			if (ret == 1)
10717 				ret = 0;
10718 			else if (ret)
10719 				goto out;
10720 		} else if (device != em->map_lookup->stripes[0].dev) {
10721 			btrfs_warn(fs_info, "swapfile must be on one device");
10722 			ret = -EINVAL;
10723 			goto out;
10724 		}
10725 
10726 		physical_block_start = (em->map_lookup->stripes[0].physical +
10727 					(logical_block_start - em->start));
10728 		len = min(len, em->len - (logical_block_start - em->start));
10729 		free_extent_map(em);
10730 		em = NULL;
10731 
10732 		bg = btrfs_lookup_block_group(fs_info, logical_block_start);
10733 		if (!bg) {
10734 			btrfs_warn(fs_info,
10735 			   "could not find block group containing swapfile");
10736 			ret = -EINVAL;
10737 			goto out;
10738 		}
10739 
10740 		if (!btrfs_inc_block_group_swap_extents(bg)) {
10741 			btrfs_warn(fs_info,
10742 			   "block group for swapfile at %llu is read-only%s",
10743 			   bg->start,
10744 			   atomic_read(&fs_info->scrubs_running) ?
10745 				       " (scrub running)" : "");
10746 			btrfs_put_block_group(bg);
10747 			ret = -EINVAL;
10748 			goto out;
10749 		}
10750 
10751 		ret = btrfs_add_swapfile_pin(inode, bg, true);
10752 		if (ret) {
10753 			btrfs_put_block_group(bg);
10754 			if (ret == 1)
10755 				ret = 0;
10756 			else
10757 				goto out;
10758 		}
10759 
10760 		if (bsi.block_len &&
10761 		    bsi.block_start + bsi.block_len == physical_block_start) {
10762 			bsi.block_len += len;
10763 		} else {
10764 			if (bsi.block_len) {
10765 				ret = btrfs_add_swap_extent(sis, &bsi);
10766 				if (ret)
10767 					goto out;
10768 			}
10769 			bsi.start = start;
10770 			bsi.block_start = physical_block_start;
10771 			bsi.block_len = len;
10772 		}
10773 
10774 		start += len;
10775 	}
10776 
10777 	if (bsi.block_len)
10778 		ret = btrfs_add_swap_extent(sis, &bsi);
10779 
10780 out:
10781 	if (!IS_ERR_OR_NULL(em))
10782 		free_extent_map(em);
10783 
10784 	unlock_extent(io_tree, 0, isize - 1, &cached_state);
10785 
10786 	if (ret)
10787 		btrfs_swap_deactivate(file);
10788 
10789 	btrfs_drew_write_unlock(&root->snapshot_lock);
10790 
10791 	btrfs_exclop_finish(fs_info);
10792 
10793 	if (ret)
10794 		return ret;
10795 
10796 	if (device)
10797 		sis->bdev = device->bdev;
10798 	*span = bsi.highest_ppage - bsi.lowest_ppage + 1;
10799 	sis->max = bsi.nr_pages;
10800 	sis->pages = bsi.nr_pages - 1;
10801 	sis->highest_bit = bsi.nr_pages - 1;
10802 	return bsi.nr_extents;
10803 }
10804 #else
10805 static void btrfs_swap_deactivate(struct file *file)
10806 {
10807 }
10808 
10809 static int btrfs_swap_activate(struct swap_info_struct *sis, struct file *file,
10810 			       sector_t *span)
10811 {
10812 	return -EOPNOTSUPP;
10813 }
10814 #endif
10815 
10816 /*
10817  * Update the number of bytes used in the VFS' inode. When we replace extents in
10818  * a range (clone, dedupe, fallocate's zero range), we must update the number of
10819  * bytes used by the inode in an atomic manner, so that concurrent stat(2) calls
10820  * always get a correct value.
10821  */
10822 void btrfs_update_inode_bytes(struct btrfs_inode *inode,
10823 			      const u64 add_bytes,
10824 			      const u64 del_bytes)
10825 {
10826 	if (add_bytes == del_bytes)
10827 		return;
10828 
10829 	spin_lock(&inode->lock);
10830 	if (del_bytes > 0)
10831 		inode_sub_bytes(&inode->vfs_inode, del_bytes);
10832 	if (add_bytes > 0)
10833 		inode_add_bytes(&inode->vfs_inode, add_bytes);
10834 	spin_unlock(&inode->lock);
10835 }
10836 
10837 /*
10838  * Verify that there are no ordered extents for a given file range.
10839  *
10840  * @inode:   The target inode.
10841  * @start:   Start offset of the file range, should be sector size aligned.
10842  * @end:     End offset (inclusive) of the file range, its value +1 should be
10843  *           sector size aligned.
10844  *
10845  * This should typically be used for cases where we locked an inode's VFS lock in
10846  * exclusive mode, we have also locked the inode's i_mmap_lock in exclusive mode,
10847  * we have flushed all delalloc in the range, we have waited for all ordered
10848  * extents in the range to complete and finally we have locked the file range in
10849  * the inode's io_tree.
10850  */
10851 void btrfs_assert_inode_range_clean(struct btrfs_inode *inode, u64 start, u64 end)
10852 {
10853 	struct btrfs_root *root = inode->root;
10854 	struct btrfs_ordered_extent *ordered;
10855 
10856 	if (!IS_ENABLED(CONFIG_BTRFS_ASSERT))
10857 		return;
10858 
10859 	ordered = btrfs_lookup_first_ordered_range(inode, start, end + 1 - start);
10860 	if (ordered) {
10861 		btrfs_err(root->fs_info,
10862 "found unexpected ordered extent in file range [%llu, %llu] for inode %llu root %llu (ordered range [%llu, %llu])",
10863 			  start, end, btrfs_ino(inode), root->root_key.objectid,
10864 			  ordered->file_offset,
10865 			  ordered->file_offset + ordered->num_bytes - 1);
10866 		btrfs_put_ordered_extent(ordered);
10867 	}
10868 
10869 	ASSERT(ordered == NULL);
10870 }
10871 
10872 static const struct inode_operations btrfs_dir_inode_operations = {
10873 	.getattr	= btrfs_getattr,
10874 	.lookup		= btrfs_lookup,
10875 	.create		= btrfs_create,
10876 	.unlink		= btrfs_unlink,
10877 	.link		= btrfs_link,
10878 	.mkdir		= btrfs_mkdir,
10879 	.rmdir		= btrfs_rmdir,
10880 	.rename		= btrfs_rename2,
10881 	.symlink	= btrfs_symlink,
10882 	.setattr	= btrfs_setattr,
10883 	.mknod		= btrfs_mknod,
10884 	.listxattr	= btrfs_listxattr,
10885 	.permission	= btrfs_permission,
10886 	.get_inode_acl	= btrfs_get_acl,
10887 	.set_acl	= btrfs_set_acl,
10888 	.update_time	= btrfs_update_time,
10889 	.tmpfile        = btrfs_tmpfile,
10890 	.fileattr_get	= btrfs_fileattr_get,
10891 	.fileattr_set	= btrfs_fileattr_set,
10892 };
10893 
10894 static const struct file_operations btrfs_dir_file_operations = {
10895 	.llseek		= btrfs_dir_llseek,
10896 	.read		= generic_read_dir,
10897 	.iterate_shared	= btrfs_real_readdir,
10898 	.open		= btrfs_opendir,
10899 	.unlocked_ioctl	= btrfs_ioctl,
10900 #ifdef CONFIG_COMPAT
10901 	.compat_ioctl	= btrfs_compat_ioctl,
10902 #endif
10903 	.release        = btrfs_release_file,
10904 	.fsync		= btrfs_sync_file,
10905 };
10906 
10907 /*
10908  * btrfs doesn't support the bmap operation because swapfiles
10909  * use bmap to make a mapping of extents in the file.  They assume
10910  * these extents won't change over the life of the file and they
10911  * use the bmap result to do IO directly to the drive.
10912  *
10913  * the btrfs bmap call would return logical addresses that aren't
10914  * suitable for IO and they also will change frequently as COW
10915  * operations happen.  So, swapfile + btrfs == corruption.
10916  *
10917  * For now we're avoiding this by dropping bmap.
10918  */
10919 static const struct address_space_operations btrfs_aops = {
10920 	.read_folio	= btrfs_read_folio,
10921 	.writepages	= btrfs_writepages,
10922 	.readahead	= btrfs_readahead,
10923 	.invalidate_folio = btrfs_invalidate_folio,
10924 	.release_folio	= btrfs_release_folio,
10925 	.migrate_folio	= btrfs_migrate_folio,
10926 	.dirty_folio	= filemap_dirty_folio,
10927 	.error_remove_page = generic_error_remove_page,
10928 	.swap_activate	= btrfs_swap_activate,
10929 	.swap_deactivate = btrfs_swap_deactivate,
10930 };
10931 
10932 static const struct inode_operations btrfs_file_inode_operations = {
10933 	.getattr	= btrfs_getattr,
10934 	.setattr	= btrfs_setattr,
10935 	.listxattr      = btrfs_listxattr,
10936 	.permission	= btrfs_permission,
10937 	.fiemap		= btrfs_fiemap,
10938 	.get_inode_acl	= btrfs_get_acl,
10939 	.set_acl	= btrfs_set_acl,
10940 	.update_time	= btrfs_update_time,
10941 	.fileattr_get	= btrfs_fileattr_get,
10942 	.fileattr_set	= btrfs_fileattr_set,
10943 };
10944 static const struct inode_operations btrfs_special_inode_operations = {
10945 	.getattr	= btrfs_getattr,
10946 	.setattr	= btrfs_setattr,
10947 	.permission	= btrfs_permission,
10948 	.listxattr	= btrfs_listxattr,
10949 	.get_inode_acl	= btrfs_get_acl,
10950 	.set_acl	= btrfs_set_acl,
10951 	.update_time	= btrfs_update_time,
10952 };
10953 static const struct inode_operations btrfs_symlink_inode_operations = {
10954 	.get_link	= page_get_link,
10955 	.getattr	= btrfs_getattr,
10956 	.setattr	= btrfs_setattr,
10957 	.permission	= btrfs_permission,
10958 	.listxattr	= btrfs_listxattr,
10959 	.update_time	= btrfs_update_time,
10960 };
10961 
10962 const struct dentry_operations btrfs_dentry_operations = {
10963 	.d_delete	= btrfs_dentry_delete,
10964 };
10965