xref: /openbmc/linux/fs/ext4/ioctl.c (revision 0642ea24)
1b2441318SGreg Kroah-Hartman // SPDX-License-Identifier: GPL-2.0
2ac27a0ecSDave Kleikamp /*
3617ba13bSMingming Cao  * linux/fs/ext4/ioctl.c
4ac27a0ecSDave Kleikamp  *
5ac27a0ecSDave Kleikamp  * Copyright (C) 1993, 1994, 1995
6ac27a0ecSDave Kleikamp  * Remy Card (card@masi.ibp.fr)
7ac27a0ecSDave Kleikamp  * Laboratoire MASI - Institut Blaise Pascal
8ac27a0ecSDave Kleikamp  * Universite Pierre et Marie Curie (Paris VI)
9ac27a0ecSDave Kleikamp  */
10ac27a0ecSDave Kleikamp 
11ac27a0ecSDave Kleikamp #include <linux/fs.h>
12ac27a0ecSDave Kleikamp #include <linux/capability.h>
13ac27a0ecSDave Kleikamp #include <linux/time.h>
14ac27a0ecSDave Kleikamp #include <linux/compat.h>
1542a74f20SDave Hansen #include <linux/mount.h>
16748de673SAkira Fujita #include <linux/file.h>
179b7365fcSLi Xi #include <linux/quotaops.h>
1823253068STheodore Ts'o #include <linux/random.h>
198da4b8c4SAndy Shevchenko #include <linux/uuid.h>
207c0f6ba6SLinus Torvalds #include <linux/uaccess.h>
21783d9485STheodore Ts'o #include <linux/delay.h>
22ee73f9a5SJeff Layton #include <linux/iversion.h>
233dcf5451SChristoph Hellwig #include "ext4_jbd2.h"
243dcf5451SChristoph Hellwig #include "ext4.h"
250c9ec4beSDarrick J. Wong #include <linux/fsmap.h>
260c9ec4beSDarrick J. Wong #include "fsmap.h"
270c9ec4beSDarrick J. Wong #include <trace/events/ext4.h>
28ac27a0ecSDave Kleikamp 
29393d1d1dSDr. Tilmann Bubeck /**
30393d1d1dSDr. Tilmann Bubeck  * Swap memory between @a and @b for @len bytes.
31393d1d1dSDr. Tilmann Bubeck  *
32393d1d1dSDr. Tilmann Bubeck  * @a:          pointer to first memory area
33393d1d1dSDr. Tilmann Bubeck  * @b:          pointer to second memory area
34393d1d1dSDr. Tilmann Bubeck  * @len:        number of bytes to swap
35393d1d1dSDr. Tilmann Bubeck  *
36393d1d1dSDr. Tilmann Bubeck  */
37393d1d1dSDr. Tilmann Bubeck static void memswap(void *a, void *b, size_t len)
38393d1d1dSDr. Tilmann Bubeck {
39393d1d1dSDr. Tilmann Bubeck 	unsigned char *ap, *bp;
40393d1d1dSDr. Tilmann Bubeck 
41393d1d1dSDr. Tilmann Bubeck 	ap = (unsigned char *)a;
42393d1d1dSDr. Tilmann Bubeck 	bp = (unsigned char *)b;
43393d1d1dSDr. Tilmann Bubeck 	while (len-- > 0) {
444b7e2db5SFabian Frederick 		swap(*ap, *bp);
45393d1d1dSDr. Tilmann Bubeck 		ap++;
46393d1d1dSDr. Tilmann Bubeck 		bp++;
47393d1d1dSDr. Tilmann Bubeck 	}
48393d1d1dSDr. Tilmann Bubeck }
49393d1d1dSDr. Tilmann Bubeck 
50393d1d1dSDr. Tilmann Bubeck /**
51393d1d1dSDr. Tilmann Bubeck  * Swap i_data and associated attributes between @inode1 and @inode2.
52393d1d1dSDr. Tilmann Bubeck  * This function is used for the primary swap between inode1 and inode2
53393d1d1dSDr. Tilmann Bubeck  * and also to revert this primary swap in case of errors.
54393d1d1dSDr. Tilmann Bubeck  *
55393d1d1dSDr. Tilmann Bubeck  * Therefore you have to make sure, that calling this method twice
56393d1d1dSDr. Tilmann Bubeck  * will revert all changes.
57393d1d1dSDr. Tilmann Bubeck  *
58393d1d1dSDr. Tilmann Bubeck  * @inode1:     pointer to first inode
59393d1d1dSDr. Tilmann Bubeck  * @inode2:     pointer to second inode
60393d1d1dSDr. Tilmann Bubeck  */
61393d1d1dSDr. Tilmann Bubeck static void swap_inode_data(struct inode *inode1, struct inode *inode2)
62393d1d1dSDr. Tilmann Bubeck {
63393d1d1dSDr. Tilmann Bubeck 	loff_t isize;
64393d1d1dSDr. Tilmann Bubeck 	struct ext4_inode_info *ei1;
65393d1d1dSDr. Tilmann Bubeck 	struct ext4_inode_info *ei2;
66abdc644eSyangerkun 	unsigned long tmp;
67393d1d1dSDr. Tilmann Bubeck 
68393d1d1dSDr. Tilmann Bubeck 	ei1 = EXT4_I(inode1);
69393d1d1dSDr. Tilmann Bubeck 	ei2 = EXT4_I(inode2);
70393d1d1dSDr. Tilmann Bubeck 
719c5d58fbSJeff Layton 	swap(inode1->i_version, inode2->i_version);
729c5d58fbSJeff Layton 	swap(inode1->i_atime, inode2->i_atime);
739c5d58fbSJeff Layton 	swap(inode1->i_mtime, inode2->i_mtime);
74393d1d1dSDr. Tilmann Bubeck 
75393d1d1dSDr. Tilmann Bubeck 	memswap(ei1->i_data, ei2->i_data, sizeof(ei1->i_data));
76abdc644eSyangerkun 	tmp = ei1->i_flags & EXT4_FL_SHOULD_SWAP;
77abdc644eSyangerkun 	ei1->i_flags = (ei2->i_flags & EXT4_FL_SHOULD_SWAP) |
78abdc644eSyangerkun 		(ei1->i_flags & ~EXT4_FL_SHOULD_SWAP);
79abdc644eSyangerkun 	ei2->i_flags = tmp | (ei2->i_flags & ~EXT4_FL_SHOULD_SWAP);
809c5d58fbSJeff Layton 	swap(ei1->i_disksize, ei2->i_disksize);
81cde2d7a7STheodore Ts'o 	ext4_es_remove_extent(inode1, 0, EXT_MAX_BLOCKS);
82cde2d7a7STheodore Ts'o 	ext4_es_remove_extent(inode2, 0, EXT_MAX_BLOCKS);
83393d1d1dSDr. Tilmann Bubeck 
84393d1d1dSDr. Tilmann Bubeck 	isize = i_size_read(inode1);
85393d1d1dSDr. Tilmann Bubeck 	i_size_write(inode1, i_size_read(inode2));
86393d1d1dSDr. Tilmann Bubeck 	i_size_write(inode2, isize);
87393d1d1dSDr. Tilmann Bubeck }
88393d1d1dSDr. Tilmann Bubeck 
8918aded17STheodore Ts'o static void reset_inode_seed(struct inode *inode)
9018aded17STheodore Ts'o {
9118aded17STheodore Ts'o 	struct ext4_inode_info *ei = EXT4_I(inode);
9218aded17STheodore Ts'o 	struct ext4_sb_info *sbi = EXT4_SB(inode->i_sb);
9318aded17STheodore Ts'o 	__le32 inum = cpu_to_le32(inode->i_ino);
9418aded17STheodore Ts'o 	__le32 gen = cpu_to_le32(inode->i_generation);
9518aded17STheodore Ts'o 	__u32 csum;
9618aded17STheodore Ts'o 
9718aded17STheodore Ts'o 	if (!ext4_has_metadata_csum(inode->i_sb))
9818aded17STheodore Ts'o 		return;
9918aded17STheodore Ts'o 
10018aded17STheodore Ts'o 	csum = ext4_chksum(sbi, sbi->s_csum_seed, (__u8 *)&inum, sizeof(inum));
10118aded17STheodore Ts'o 	ei->i_csum_seed = ext4_chksum(sbi, csum, (__u8 *)&gen, sizeof(gen));
10218aded17STheodore Ts'o }
10318aded17STheodore Ts'o 
104393d1d1dSDr. Tilmann Bubeck /**
105393d1d1dSDr. Tilmann Bubeck  * Swap the information from the given @inode and the inode
106393d1d1dSDr. Tilmann Bubeck  * EXT4_BOOT_LOADER_INO. It will basically swap i_data and all other
107393d1d1dSDr. Tilmann Bubeck  * important fields of the inodes.
108393d1d1dSDr. Tilmann Bubeck  *
109393d1d1dSDr. Tilmann Bubeck  * @sb:         the super block of the filesystem
110393d1d1dSDr. Tilmann Bubeck  * @inode:      the inode to swap with EXT4_BOOT_LOADER_INO
111393d1d1dSDr. Tilmann Bubeck  *
112393d1d1dSDr. Tilmann Bubeck  */
113393d1d1dSDr. Tilmann Bubeck static long swap_inode_boot_loader(struct super_block *sb,
114393d1d1dSDr. Tilmann Bubeck 				struct inode *inode)
115393d1d1dSDr. Tilmann Bubeck {
116393d1d1dSDr. Tilmann Bubeck 	handle_t *handle;
117393d1d1dSDr. Tilmann Bubeck 	int err;
118393d1d1dSDr. Tilmann Bubeck 	struct inode *inode_bl;
119393d1d1dSDr. Tilmann Bubeck 	struct ext4_inode_info *ei_bl;
120aa507b5fSyangerkun 	qsize_t size, size_bl, diff;
121aa507b5fSyangerkun 	blkcnt_t blocks;
122aa507b5fSyangerkun 	unsigned short bytes;
123393d1d1dSDr. Tilmann Bubeck 
1248a363970STheodore Ts'o 	inode_bl = ext4_iget(sb, EXT4_BOOT_LOADER_INO, EXT4_IGET_SPECIAL);
125d8558a29STheodore Ts'o 	if (IS_ERR(inode_bl))
126d8558a29STheodore Ts'o 		return PTR_ERR(inode_bl);
127393d1d1dSDr. Tilmann Bubeck 	ei_bl = EXT4_I(inode_bl);
128393d1d1dSDr. Tilmann Bubeck 
129393d1d1dSDr. Tilmann Bubeck 	/* Protect orig inodes against a truncate and make sure,
130393d1d1dSDr. Tilmann Bubeck 	 * that only 1 swap_inode_boot_loader is running. */
131375e289eSJ. Bruce Fields 	lock_two_nondirectories(inode, inode_bl);
132393d1d1dSDr. Tilmann Bubeck 
13367a11611Syangerkun 	if (inode->i_nlink != 1 || !S_ISREG(inode->i_mode) ||
13467a11611Syangerkun 	    IS_SWAPFILE(inode) || IS_ENCRYPTED(inode) ||
1356e589291STheodore Ts'o 	    (EXT4_I(inode)->i_flags & EXT4_JOURNAL_DATA_FL) ||
13667a11611Syangerkun 	    ext4_has_inline_data(inode)) {
13767a11611Syangerkun 		err = -EINVAL;
13867a11611Syangerkun 		goto journal_err_out;
13967a11611Syangerkun 	}
14067a11611Syangerkun 
14167a11611Syangerkun 	if (IS_RDONLY(inode) || IS_APPEND(inode) || IS_IMMUTABLE(inode) ||
14267a11611Syangerkun 	    !inode_owner_or_capable(inode) || !capable(CAP_SYS_ADMIN)) {
14367a11611Syangerkun 		err = -EPERM;
14467a11611Syangerkun 		goto journal_err_out;
14567a11611Syangerkun 	}
14667a11611Syangerkun 
147a46c68a3Syangerkun 	down_write(&EXT4_I(inode)->i_mmap_sem);
148a46c68a3Syangerkun 	err = filemap_write_and_wait(inode->i_mapping);
149a46c68a3Syangerkun 	if (err)
150a46c68a3Syangerkun 		goto err_out;
151a46c68a3Syangerkun 
152a46c68a3Syangerkun 	err = filemap_write_and_wait(inode_bl->i_mapping);
153a46c68a3Syangerkun 	if (err)
154a46c68a3Syangerkun 		goto err_out;
155a46c68a3Syangerkun 
156393d1d1dSDr. Tilmann Bubeck 	/* Wait for all existing dio workers */
157393d1d1dSDr. Tilmann Bubeck 	inode_dio_wait(inode);
158393d1d1dSDr. Tilmann Bubeck 	inode_dio_wait(inode_bl);
159393d1d1dSDr. Tilmann Bubeck 
16018aded17STheodore Ts'o 	truncate_inode_pages(&inode->i_data, 0);
16118aded17STheodore Ts'o 	truncate_inode_pages(&inode_bl->i_data, 0);
16218aded17STheodore Ts'o 
163393d1d1dSDr. Tilmann Bubeck 	handle = ext4_journal_start(inode_bl, EXT4_HT_MOVE_EXTENTS, 2);
164393d1d1dSDr. Tilmann Bubeck 	if (IS_ERR(handle)) {
165393d1d1dSDr. Tilmann Bubeck 		err = -EINVAL;
166a46c68a3Syangerkun 		goto err_out;
167393d1d1dSDr. Tilmann Bubeck 	}
168393d1d1dSDr. Tilmann Bubeck 
169393d1d1dSDr. Tilmann Bubeck 	/* Protect extent tree against block allocations via delalloc */
170393d1d1dSDr. Tilmann Bubeck 	ext4_double_down_write_data_sem(inode, inode_bl);
171393d1d1dSDr. Tilmann Bubeck 
172393d1d1dSDr. Tilmann Bubeck 	if (inode_bl->i_nlink == 0) {
173393d1d1dSDr. Tilmann Bubeck 		/* this inode has never been used as a BOOT_LOADER */
174393d1d1dSDr. Tilmann Bubeck 		set_nlink(inode_bl, 1);
175393d1d1dSDr. Tilmann Bubeck 		i_uid_write(inode_bl, 0);
176393d1d1dSDr. Tilmann Bubeck 		i_gid_write(inode_bl, 0);
177393d1d1dSDr. Tilmann Bubeck 		inode_bl->i_flags = 0;
178393d1d1dSDr. Tilmann Bubeck 		ei_bl->i_flags = 0;
179ee73f9a5SJeff Layton 		inode_set_iversion(inode_bl, 1);
180393d1d1dSDr. Tilmann Bubeck 		i_size_write(inode_bl, 0);
181393d1d1dSDr. Tilmann Bubeck 		inode_bl->i_mode = S_IFREG;
182e2b911c5SDarrick J. Wong 		if (ext4_has_feature_extents(sb)) {
183393d1d1dSDr. Tilmann Bubeck 			ext4_set_inode_flag(inode_bl, EXT4_INODE_EXTENTS);
184393d1d1dSDr. Tilmann Bubeck 			ext4_ext_tree_init(handle, inode_bl);
185393d1d1dSDr. Tilmann Bubeck 		} else
186393d1d1dSDr. Tilmann Bubeck 			memset(ei_bl->i_data, 0, sizeof(ei_bl->i_data));
187393d1d1dSDr. Tilmann Bubeck 	}
188393d1d1dSDr. Tilmann Bubeck 
189aa507b5fSyangerkun 	err = dquot_initialize(inode);
190aa507b5fSyangerkun 	if (err)
191aa507b5fSyangerkun 		goto err_out1;
192aa507b5fSyangerkun 
193aa507b5fSyangerkun 	size = (qsize_t)(inode->i_blocks) * (1 << 9) + inode->i_bytes;
194aa507b5fSyangerkun 	size_bl = (qsize_t)(inode_bl->i_blocks) * (1 << 9) + inode_bl->i_bytes;
195aa507b5fSyangerkun 	diff = size - size_bl;
196393d1d1dSDr. Tilmann Bubeck 	swap_inode_data(inode, inode_bl);
197393d1d1dSDr. Tilmann Bubeck 
198eeca7ea1SDeepa Dinamani 	inode->i_ctime = inode_bl->i_ctime = current_time(inode);
199393d1d1dSDr. Tilmann Bubeck 
20023253068STheodore Ts'o 	inode->i_generation = prandom_u32();
20123253068STheodore Ts'o 	inode_bl->i_generation = prandom_u32();
20218aded17STheodore Ts'o 	reset_inode_seed(inode);
20318aded17STheodore Ts'o 	reset_inode_seed(inode_bl);
204393d1d1dSDr. Tilmann Bubeck 
205393d1d1dSDr. Tilmann Bubeck 	ext4_discard_preallocations(inode);
206393d1d1dSDr. Tilmann Bubeck 
207393d1d1dSDr. Tilmann Bubeck 	err = ext4_mark_inode_dirty(handle, inode);
208393d1d1dSDr. Tilmann Bubeck 	if (err < 0) {
209aa507b5fSyangerkun 		/* No need to update quota information. */
210393d1d1dSDr. Tilmann Bubeck 		ext4_warning(inode->i_sb,
211393d1d1dSDr. Tilmann Bubeck 			"couldn't mark inode #%lu dirty (err %d)",
212393d1d1dSDr. Tilmann Bubeck 			inode->i_ino, err);
213393d1d1dSDr. Tilmann Bubeck 		/* Revert all changes: */
214393d1d1dSDr. Tilmann Bubeck 		swap_inode_data(inode, inode_bl);
21518aded17STheodore Ts'o 		ext4_mark_inode_dirty(handle, inode);
216aa507b5fSyangerkun 		goto err_out1;
217aa507b5fSyangerkun 	}
218aa507b5fSyangerkun 
219aa507b5fSyangerkun 	blocks = inode_bl->i_blocks;
220aa507b5fSyangerkun 	bytes = inode_bl->i_bytes;
221aa507b5fSyangerkun 	inode_bl->i_blocks = inode->i_blocks;
222aa507b5fSyangerkun 	inode_bl->i_bytes = inode->i_bytes;
223393d1d1dSDr. Tilmann Bubeck 	err = ext4_mark_inode_dirty(handle, inode_bl);
224393d1d1dSDr. Tilmann Bubeck 	if (err < 0) {
225aa507b5fSyangerkun 		/* No need to update quota information. */
226393d1d1dSDr. Tilmann Bubeck 		ext4_warning(inode_bl->i_sb,
227393d1d1dSDr. Tilmann Bubeck 			"couldn't mark inode #%lu dirty (err %d)",
228393d1d1dSDr. Tilmann Bubeck 			inode_bl->i_ino, err);
229aa507b5fSyangerkun 		goto revert;
230aa507b5fSyangerkun 	}
231aa507b5fSyangerkun 
232aa507b5fSyangerkun 	/* Bootloader inode should not be counted into quota information. */
233aa507b5fSyangerkun 	if (diff > 0)
234aa507b5fSyangerkun 		dquot_free_space(inode, diff);
235aa507b5fSyangerkun 	else
236aa507b5fSyangerkun 		err = dquot_alloc_space(inode, -1 * diff);
237aa507b5fSyangerkun 
238aa507b5fSyangerkun 	if (err < 0) {
239aa507b5fSyangerkun revert:
240393d1d1dSDr. Tilmann Bubeck 		/* Revert all changes: */
241aa507b5fSyangerkun 		inode_bl->i_blocks = blocks;
242aa507b5fSyangerkun 		inode_bl->i_bytes = bytes;
243393d1d1dSDr. Tilmann Bubeck 		swap_inode_data(inode, inode_bl);
244393d1d1dSDr. Tilmann Bubeck 		ext4_mark_inode_dirty(handle, inode);
24518aded17STheodore Ts'o 		ext4_mark_inode_dirty(handle, inode_bl);
246393d1d1dSDr. Tilmann Bubeck 	}
247aa507b5fSyangerkun 
248aa507b5fSyangerkun err_out1:
249393d1d1dSDr. Tilmann Bubeck 	ext4_journal_stop(handle);
250393d1d1dSDr. Tilmann Bubeck 	ext4_double_up_write_data_sem(inode, inode_bl);
251393d1d1dSDr. Tilmann Bubeck 
252a46c68a3Syangerkun err_out:
253a46c68a3Syangerkun 	up_write(&EXT4_I(inode)->i_mmap_sem);
25430d29b11SZheng Liu journal_err_out:
255375e289eSJ. Bruce Fields 	unlock_two_nondirectories(inode, inode_bl);
256393d1d1dSDr. Tilmann Bubeck 	iput(inode_bl);
257393d1d1dSDr. Tilmann Bubeck 	return err;
258393d1d1dSDr. Tilmann Bubeck }
259393d1d1dSDr. Tilmann Bubeck 
260643fa961SChandan Rajendra #ifdef CONFIG_FS_ENCRYPTION
2619bd8212fSMichael Halcrow static int uuid_is_zero(__u8 u[16])
2629bd8212fSMichael Halcrow {
2639bd8212fSMichael Halcrow 	int	i;
2649bd8212fSMichael Halcrow 
2659bd8212fSMichael Halcrow 	for (i = 0; i < 16; i++)
2669bd8212fSMichael Halcrow 		if (u[i])
2679bd8212fSMichael Halcrow 			return 0;
2689bd8212fSMichael Halcrow 	return 1;
2699bd8212fSMichael Halcrow }
270ba679017SEric Biggers #endif
2719bd8212fSMichael Halcrow 
2722e538403SDarrick J. Wong /*
2732e538403SDarrick J. Wong  * If immutable is set and we are not clearing it, we're not allowed to change
2742e538403SDarrick J. Wong  * anything else in the inode.  Don't error out if we're only trying to set
2752e538403SDarrick J. Wong  * immutable on an immutable file.
2762e538403SDarrick J. Wong  */
2772e538403SDarrick J. Wong static int ext4_ioctl_check_immutable(struct inode *inode, __u32 new_projid,
2782e538403SDarrick J. Wong 				      unsigned int flags)
2792e538403SDarrick J. Wong {
2802e538403SDarrick J. Wong 	struct ext4_inode_info *ei = EXT4_I(inode);
2812e538403SDarrick J. Wong 	unsigned int oldflags = ei->i_flags;
2822e538403SDarrick J. Wong 
2832e538403SDarrick J. Wong 	if (!(oldflags & EXT4_IMMUTABLE_FL) || !(flags & EXT4_IMMUTABLE_FL))
2842e538403SDarrick J. Wong 		return 0;
2852e538403SDarrick J. Wong 
2862e538403SDarrick J. Wong 	if ((oldflags & ~EXT4_IMMUTABLE_FL) != (flags & ~EXT4_IMMUTABLE_FL))
2872e538403SDarrick J. Wong 		return -EPERM;
2882e538403SDarrick J. Wong 	if (ext4_has_feature_project(inode->i_sb) &&
2892e538403SDarrick J. Wong 	    __kprojid_val(ei->i_projid) != new_projid)
2902e538403SDarrick J. Wong 		return -EPERM;
2912e538403SDarrick J. Wong 
2922e538403SDarrick J. Wong 	return 0;
2932e538403SDarrick J. Wong }
2942e538403SDarrick J. Wong 
2959b7365fcSLi Xi static int ext4_ioctl_setflags(struct inode *inode,
2969b7365fcSLi Xi 			       unsigned int flags)
297ac27a0ecSDave Kleikamp {
298617ba13bSMingming Cao 	struct ext4_inode_info *ei = EXT4_I(inode);
299ac27a0ecSDave Kleikamp 	handle_t *handle = NULL;
300fdde368eSAnton Protopopov 	int err = -EPERM, migrate = 0;
301617ba13bSMingming Cao 	struct ext4_iloc iloc;
30279906964STheodore Ts'o 	unsigned int oldflags, mask, i;
303ac27a0ecSDave Kleikamp 	unsigned int jflag;
304b886ee3eSGabriel Krisman Bertazi 	struct super_block *sb = inode->i_sb;
305ac27a0ecSDave Kleikamp 
306e47776a0SJan Kara 	/* Is it quota file? Do not allow user to mess with it */
30702749a4cSTahsin Erdogan 	if (ext4_is_quota_file(inode))
30842a74f20SDave Hansen 		goto flags_out;
30942a74f20SDave Hansen 
310ac27a0ecSDave Kleikamp 	oldflags = ei->i_flags;
311ac27a0ecSDave Kleikamp 
312ac27a0ecSDave Kleikamp 	/* The JOURNAL_DATA flag is modifiable only by root */
313617ba13bSMingming Cao 	jflag = flags & EXT4_JOURNAL_DATA_FL;
314ac27a0ecSDave Kleikamp 
3155aca2842SDarrick J. Wong 	err = vfs_ioc_setflags_prepare(inode, oldflags, flags);
3165aca2842SDarrick J. Wong 	if (err)
31742a74f20SDave Hansen 		goto flags_out;
318ac27a0ecSDave Kleikamp 
319ac27a0ecSDave Kleikamp 	/*
320ac27a0ecSDave Kleikamp 	 * The JOURNAL_DATA flag can only be changed by
321ac27a0ecSDave Kleikamp 	 * the relevant capability.
322ac27a0ecSDave Kleikamp 	 */
323617ba13bSMingming Cao 	if ((jflag ^ oldflags) & (EXT4_JOURNAL_DATA_FL)) {
32442a74f20SDave Hansen 		if (!capable(CAP_SYS_RESOURCE))
32542a74f20SDave Hansen 			goto flags_out;
326ac27a0ecSDave Kleikamp 	}
327996bb9fdSTheodore Ts'o 	if ((flags ^ oldflags) & EXT4_EXTENTS_FL)
3284db46fc2SAneesh Kumar K.V 		migrate = 1;
329ac27a0ecSDave Kleikamp 
330c8d46e41SJiaying Zhang 	if (flags & EXT4_EOFBLOCKS_FL) {
331c8d46e41SJiaying Zhang 		/* we don't support adding EOFBLOCKS flag */
332c8d46e41SJiaying Zhang 		if (!(oldflags & EXT4_EOFBLOCKS_FL)) {
333c8d46e41SJiaying Zhang 			err = -EOPNOTSUPP;
334c8d46e41SJiaying Zhang 			goto flags_out;
335c8d46e41SJiaying Zhang 		}
3362c98eb5eSTheodore Ts'o 	} else if (oldflags & EXT4_EOFBLOCKS_FL) {
3372c98eb5eSTheodore Ts'o 		err = ext4_truncate(inode);
3382c98eb5eSTheodore Ts'o 		if (err)
3392c98eb5eSTheodore Ts'o 			goto flags_out;
3402c98eb5eSTheodore Ts'o 	}
341c8d46e41SJiaying Zhang 
342b886ee3eSGabriel Krisman Bertazi 	if ((flags ^ oldflags) & EXT4_CASEFOLD_FL) {
343b886ee3eSGabriel Krisman Bertazi 		if (!ext4_has_feature_casefold(sb)) {
344b886ee3eSGabriel Krisman Bertazi 			err = -EOPNOTSUPP;
345b886ee3eSGabriel Krisman Bertazi 			goto flags_out;
346b886ee3eSGabriel Krisman Bertazi 		}
347b886ee3eSGabriel Krisman Bertazi 
348b886ee3eSGabriel Krisman Bertazi 		if (!S_ISDIR(inode->i_mode)) {
349b886ee3eSGabriel Krisman Bertazi 			err = -ENOTDIR;
350b886ee3eSGabriel Krisman Bertazi 			goto flags_out;
351b886ee3eSGabriel Krisman Bertazi 		}
352b886ee3eSGabriel Krisman Bertazi 
353b886ee3eSGabriel Krisman Bertazi 		if (!ext4_empty_dir(inode)) {
354b886ee3eSGabriel Krisman Bertazi 			err = -ENOTEMPTY;
355b886ee3eSGabriel Krisman Bertazi 			goto flags_out;
356b886ee3eSGabriel Krisman Bertazi 		}
357b886ee3eSGabriel Krisman Bertazi 	}
358b886ee3eSGabriel Krisman Bertazi 
3592e538403SDarrick J. Wong 	/*
3602e538403SDarrick J. Wong 	 * Wait for all pending directio and then flush all the dirty pages
3612e538403SDarrick J. Wong 	 * for this file.  The flush marks all the pages readonly, so any
3622e538403SDarrick J. Wong 	 * subsequent attempt to write to the file (particularly mmap pages)
3632e538403SDarrick J. Wong 	 * will come through the filesystem and fail.
3642e538403SDarrick J. Wong 	 */
3652e538403SDarrick J. Wong 	if (S_ISREG(inode->i_mode) && !IS_IMMUTABLE(inode) &&
3662e538403SDarrick J. Wong 	    (flags & EXT4_IMMUTABLE_FL)) {
3672e538403SDarrick J. Wong 		inode_dio_wait(inode);
3682e538403SDarrick J. Wong 		err = filemap_write_and_wait(inode->i_mapping);
3692e538403SDarrick J. Wong 		if (err)
3702e538403SDarrick J. Wong 			goto flags_out;
3712e538403SDarrick J. Wong 	}
3722e538403SDarrick J. Wong 
3739924a92aSTheodore Ts'o 	handle = ext4_journal_start(inode, EXT4_HT_INODE, 1);
374ac27a0ecSDave Kleikamp 	if (IS_ERR(handle)) {
37542a74f20SDave Hansen 		err = PTR_ERR(handle);
37642a74f20SDave Hansen 		goto flags_out;
377ac27a0ecSDave Kleikamp 	}
378ac27a0ecSDave Kleikamp 	if (IS_SYNC(inode))
3790390131bSFrank Mayhar 		ext4_handle_sync(handle);
380617ba13bSMingming Cao 	err = ext4_reserve_inode_write(handle, inode, &iloc);
381ac27a0ecSDave Kleikamp 	if (err)
382ac27a0ecSDave Kleikamp 		goto flags_err;
383ac27a0ecSDave Kleikamp 
38479906964STheodore Ts'o 	for (i = 0, mask = 1; i < 32; i++, mask <<= 1) {
38579906964STheodore Ts'o 		if (!(mask & EXT4_FL_USER_MODIFIABLE))
38679906964STheodore Ts'o 			continue;
387f8011d93SJan Kara 		/* These flags get special treatment later */
388f8011d93SJan Kara 		if (mask == EXT4_JOURNAL_DATA_FL || mask == EXT4_EXTENTS_FL)
389f8011d93SJan Kara 			continue;
39079906964STheodore Ts'o 		if (mask & flags)
39179906964STheodore Ts'o 			ext4_set_inode_flag(inode, i);
39279906964STheodore Ts'o 		else
39379906964STheodore Ts'o 			ext4_clear_inode_flag(inode, i);
39479906964STheodore Ts'o 	}
395ac27a0ecSDave Kleikamp 
396617ba13bSMingming Cao 	ext4_set_inode_flags(inode);
397eeca7ea1SDeepa Dinamani 	inode->i_ctime = current_time(inode);
398ac27a0ecSDave Kleikamp 
399617ba13bSMingming Cao 	err = ext4_mark_iloc_dirty(handle, inode, &iloc);
400ac27a0ecSDave Kleikamp flags_err:
401617ba13bSMingming Cao 	ext4_journal_stop(handle);
40242a74f20SDave Hansen 	if (err)
40342a74f20SDave Hansen 		goto flags_out;
404ac27a0ecSDave Kleikamp 
405e9072d85SRoss Zwisler 	if ((jflag ^ oldflags) & (EXT4_JOURNAL_DATA_FL)) {
406e9072d85SRoss Zwisler 		/*
407e9072d85SRoss Zwisler 		 * Changes to the journaling mode can cause unsafe changes to
408e9072d85SRoss Zwisler 		 * S_DAX if we are using the DAX mount option.
409e9072d85SRoss Zwisler 		 */
410e9072d85SRoss Zwisler 		if (test_opt(inode->i_sb, DAX)) {
411e9072d85SRoss Zwisler 			err = -EBUSY;
412e9072d85SRoss Zwisler 			goto flags_out;
413e9072d85SRoss Zwisler 		}
414e9072d85SRoss Zwisler 
415617ba13bSMingming Cao 		err = ext4_change_inode_journal_flag(inode, jflag);
4164db46fc2SAneesh Kumar K.V 		if (err)
4174db46fc2SAneesh Kumar K.V 			goto flags_out;
418e9072d85SRoss Zwisler 	}
419996bb9fdSTheodore Ts'o 	if (migrate) {
420996bb9fdSTheodore Ts'o 		if (flags & EXT4_EXTENTS_FL)
4214db46fc2SAneesh Kumar K.V 			err = ext4_ext_migrate(inode);
422996bb9fdSTheodore Ts'o 		else
423996bb9fdSTheodore Ts'o 			err = ext4_ind_migrate(inode);
424996bb9fdSTheodore Ts'o 	}
425996bb9fdSTheodore Ts'o 
42642a74f20SDave Hansen flags_out:
4279b7365fcSLi Xi 	return err;
4289b7365fcSLi Xi }
4299b7365fcSLi Xi 
4309b7365fcSLi Xi #ifdef CONFIG_QUOTA
4319b7365fcSLi Xi static int ext4_ioctl_setproject(struct file *filp, __u32 projid)
4329b7365fcSLi Xi {
4339b7365fcSLi Xi 	struct inode *inode = file_inode(filp);
4349b7365fcSLi Xi 	struct super_block *sb = inode->i_sb;
4359b7365fcSLi Xi 	struct ext4_inode_info *ei = EXT4_I(inode);
4369b7365fcSLi Xi 	int err, rc;
4379b7365fcSLi Xi 	handle_t *handle;
4389b7365fcSLi Xi 	kprojid_t kprojid;
4399b7365fcSLi Xi 	struct ext4_iloc iloc;
4409b7365fcSLi Xi 	struct ext4_inode *raw_inode;
441079788d0SWang Shilong 	struct dquot *transfer_to[MAXQUOTAS] = { };
4429b7365fcSLi Xi 
4430b7b7779SKaho Ng 	if (!ext4_has_feature_project(sb)) {
4449b7365fcSLi Xi 		if (projid != EXT4_DEF_PROJID)
4459b7365fcSLi Xi 			return -EOPNOTSUPP;
4469b7365fcSLi Xi 		else
4479b7365fcSLi Xi 			return 0;
4489b7365fcSLi Xi 	}
4499b7365fcSLi Xi 
4509b7365fcSLi Xi 	if (EXT4_INODE_SIZE(sb) <= EXT4_GOOD_OLD_INODE_SIZE)
4519b7365fcSLi Xi 		return -EOPNOTSUPP;
4529b7365fcSLi Xi 
4539b7365fcSLi Xi 	kprojid = make_kprojid(&init_user_ns, (projid_t)projid);
4549b7365fcSLi Xi 
4559b7365fcSLi Xi 	if (projid_eq(kprojid, EXT4_I(inode)->i_projid))
4569b7365fcSLi Xi 		return 0;
4579b7365fcSLi Xi 
4589b7365fcSLi Xi 	err = -EPERM;
4599b7365fcSLi Xi 	/* Is it quota file? Do not allow user to mess with it */
46002749a4cSTahsin Erdogan 	if (ext4_is_quota_file(inode))
461dc7ac6c4SWang Shilong 		return err;
4629b7365fcSLi Xi 
4639b7365fcSLi Xi 	err = ext4_get_inode_loc(inode, &iloc);
4649b7365fcSLi Xi 	if (err)
465dc7ac6c4SWang Shilong 		return err;
4669b7365fcSLi Xi 
4679b7365fcSLi Xi 	raw_inode = ext4_raw_inode(&iloc);
4689b7365fcSLi Xi 	if (!EXT4_FITS_IN_INODE(raw_inode, ei, i_projid)) {
469c03b45b8SMiao Xie 		err = ext4_expand_extra_isize(inode,
470c03b45b8SMiao Xie 					      EXT4_SB(sb)->s_want_extra_isize,
471c03b45b8SMiao Xie 					      &iloc);
472c03b45b8SMiao Xie 		if (err)
473dc7ac6c4SWang Shilong 			return err;
474c03b45b8SMiao Xie 	} else {
4759b7365fcSLi Xi 		brelse(iloc.bh);
476c03b45b8SMiao Xie 	}
4779b7365fcSLi Xi 
478182a79e0SWang Shilong 	err = dquot_initialize(inode);
479182a79e0SWang Shilong 	if (err)
480182a79e0SWang Shilong 		return err;
4819b7365fcSLi Xi 
4829b7365fcSLi Xi 	handle = ext4_journal_start(inode, EXT4_HT_QUOTA,
4839b7365fcSLi Xi 		EXT4_QUOTA_INIT_BLOCKS(sb) +
4849b7365fcSLi Xi 		EXT4_QUOTA_DEL_BLOCKS(sb) + 3);
485dc7ac6c4SWang Shilong 	if (IS_ERR(handle))
486dc7ac6c4SWang Shilong 		return PTR_ERR(handle);
4879b7365fcSLi Xi 
4889b7365fcSLi Xi 	err = ext4_reserve_inode_write(handle, inode, &iloc);
4899b7365fcSLi Xi 	if (err)
4909b7365fcSLi Xi 		goto out_stop;
4919b7365fcSLi Xi 
4929b7365fcSLi Xi 	transfer_to[PRJQUOTA] = dqget(sb, make_kqid_projid(kprojid));
493ff0bc084SSeth Forshee 	if (!IS_ERR(transfer_to[PRJQUOTA])) {
4947a9ca53aSTahsin Erdogan 
4957a9ca53aSTahsin Erdogan 		/* __dquot_transfer() calls back ext4_get_inode_usage() which
4967a9ca53aSTahsin Erdogan 		 * counts xattr inode references.
4977a9ca53aSTahsin Erdogan 		 */
4987a9ca53aSTahsin Erdogan 		down_read(&EXT4_I(inode)->xattr_sem);
4999b7365fcSLi Xi 		err = __dquot_transfer(inode, transfer_to);
5007a9ca53aSTahsin Erdogan 		up_read(&EXT4_I(inode)->xattr_sem);
5019b7365fcSLi Xi 		dqput(transfer_to[PRJQUOTA]);
5029b7365fcSLi Xi 		if (err)
5039b7365fcSLi Xi 			goto out_dirty;
5049b7365fcSLi Xi 	}
505079788d0SWang Shilong 
5069b7365fcSLi Xi 	EXT4_I(inode)->i_projid = kprojid;
507eeca7ea1SDeepa Dinamani 	inode->i_ctime = current_time(inode);
5089b7365fcSLi Xi out_dirty:
5099b7365fcSLi Xi 	rc = ext4_mark_iloc_dirty(handle, inode, &iloc);
5109b7365fcSLi Xi 	if (!err)
5119b7365fcSLi Xi 		err = rc;
5129b7365fcSLi Xi out_stop:
5139b7365fcSLi Xi 	ext4_journal_stop(handle);
5149b7365fcSLi Xi 	return err;
5159b7365fcSLi Xi }
5169b7365fcSLi Xi #else
5179b7365fcSLi Xi static int ext4_ioctl_setproject(struct file *filp, __u32 projid)
5189b7365fcSLi Xi {
5199b7365fcSLi Xi 	if (projid != EXT4_DEF_PROJID)
5209b7365fcSLi Xi 		return -EOPNOTSUPP;
5219b7365fcSLi Xi 	return 0;
5229b7365fcSLi Xi }
5239b7365fcSLi Xi #endif
5249b7365fcSLi Xi 
5259b7365fcSLi Xi /* Transfer internal flags to xflags */
5269b7365fcSLi Xi static inline __u32 ext4_iflags_to_xflags(unsigned long iflags)
5279b7365fcSLi Xi {
5289b7365fcSLi Xi 	__u32 xflags = 0;
5299b7365fcSLi Xi 
5309b7365fcSLi Xi 	if (iflags & EXT4_SYNC_FL)
5319b7365fcSLi Xi 		xflags |= FS_XFLAG_SYNC;
5329b7365fcSLi Xi 	if (iflags & EXT4_IMMUTABLE_FL)
5339b7365fcSLi Xi 		xflags |= FS_XFLAG_IMMUTABLE;
5349b7365fcSLi Xi 	if (iflags & EXT4_APPEND_FL)
5359b7365fcSLi Xi 		xflags |= FS_XFLAG_APPEND;
5369b7365fcSLi Xi 	if (iflags & EXT4_NODUMP_FL)
5379b7365fcSLi Xi 		xflags |= FS_XFLAG_NODUMP;
5389b7365fcSLi Xi 	if (iflags & EXT4_NOATIME_FL)
5399b7365fcSLi Xi 		xflags |= FS_XFLAG_NOATIME;
5409b7365fcSLi Xi 	if (iflags & EXT4_PROJINHERIT_FL)
5419b7365fcSLi Xi 		xflags |= FS_XFLAG_PROJINHERIT;
5429b7365fcSLi Xi 	return xflags;
5439b7365fcSLi Xi }
5449b7365fcSLi Xi 
545d14e7683SJan Kara #define EXT4_SUPPORTED_FS_XFLAGS (FS_XFLAG_SYNC | FS_XFLAG_IMMUTABLE | \
546d14e7683SJan Kara 				  FS_XFLAG_APPEND | FS_XFLAG_NODUMP | \
547d14e7683SJan Kara 				  FS_XFLAG_NOATIME | FS_XFLAG_PROJINHERIT)
548d14e7683SJan Kara 
5499b7365fcSLi Xi /* Transfer xflags flags to internal */
5509b7365fcSLi Xi static inline unsigned long ext4_xflags_to_iflags(__u32 xflags)
5519b7365fcSLi Xi {
5529b7365fcSLi Xi 	unsigned long iflags = 0;
5539b7365fcSLi Xi 
5549b7365fcSLi Xi 	if (xflags & FS_XFLAG_SYNC)
5559b7365fcSLi Xi 		iflags |= EXT4_SYNC_FL;
5569b7365fcSLi Xi 	if (xflags & FS_XFLAG_IMMUTABLE)
5579b7365fcSLi Xi 		iflags |= EXT4_IMMUTABLE_FL;
5589b7365fcSLi Xi 	if (xflags & FS_XFLAG_APPEND)
5599b7365fcSLi Xi 		iflags |= EXT4_APPEND_FL;
5609b7365fcSLi Xi 	if (xflags & FS_XFLAG_NODUMP)
5619b7365fcSLi Xi 		iflags |= EXT4_NODUMP_FL;
5629b7365fcSLi Xi 	if (xflags & FS_XFLAG_NOATIME)
5639b7365fcSLi Xi 		iflags |= EXT4_NOATIME_FL;
5649b7365fcSLi Xi 	if (xflags & FS_XFLAG_PROJINHERIT)
5659b7365fcSLi Xi 		iflags |= EXT4_PROJINHERIT_FL;
5669b7365fcSLi Xi 
5679b7365fcSLi Xi 	return iflags;
5689b7365fcSLi Xi }
5699b7365fcSLi Xi 
5701a20a630SEric Biggers static int ext4_shutdown(struct super_block *sb, unsigned long arg)
571783d9485STheodore Ts'o {
572783d9485STheodore Ts'o 	struct ext4_sb_info *sbi = EXT4_SB(sb);
573783d9485STheodore Ts'o 	__u32 flags;
574783d9485STheodore Ts'o 
575783d9485STheodore Ts'o 	if (!capable(CAP_SYS_ADMIN))
576783d9485STheodore Ts'o 		return -EPERM;
577783d9485STheodore Ts'o 
578783d9485STheodore Ts'o 	if (get_user(flags, (__u32 __user *)arg))
579783d9485STheodore Ts'o 		return -EFAULT;
580783d9485STheodore Ts'o 
581783d9485STheodore Ts'o 	if (flags > EXT4_GOING_FLAGS_NOLOGFLUSH)
582783d9485STheodore Ts'o 		return -EINVAL;
583783d9485STheodore Ts'o 
584783d9485STheodore Ts'o 	if (ext4_forced_shutdown(sbi))
585783d9485STheodore Ts'o 		return 0;
586783d9485STheodore Ts'o 
587783d9485STheodore Ts'o 	ext4_msg(sb, KERN_ALERT, "shut down requested (%d)", flags);
588ccf0f32aSTheodore Ts'o 	trace_ext4_shutdown(sb, flags);
589783d9485STheodore Ts'o 
590783d9485STheodore Ts'o 	switch (flags) {
591783d9485STheodore Ts'o 	case EXT4_GOING_FLAGS_DEFAULT:
592783d9485STheodore Ts'o 		freeze_bdev(sb->s_bdev);
593783d9485STheodore Ts'o 		set_bit(EXT4_FLAGS_SHUTDOWN, &sbi->s_ext4_flags);
594783d9485STheodore Ts'o 		thaw_bdev(sb->s_bdev, sb);
595783d9485STheodore Ts'o 		break;
596783d9485STheodore Ts'o 	case EXT4_GOING_FLAGS_LOGFLUSH:
597783d9485STheodore Ts'o 		set_bit(EXT4_FLAGS_SHUTDOWN, &sbi->s_ext4_flags);
598783d9485STheodore Ts'o 		if (sbi->s_journal && !is_journal_aborted(sbi->s_journal)) {
599783d9485STheodore Ts'o 			(void) ext4_force_commit(sb);
600fb7c0244STheodore Ts'o 			jbd2_journal_abort(sbi->s_journal, -ESHUTDOWN);
601783d9485STheodore Ts'o 		}
602783d9485STheodore Ts'o 		break;
603783d9485STheodore Ts'o 	case EXT4_GOING_FLAGS_NOLOGFLUSH:
604783d9485STheodore Ts'o 		set_bit(EXT4_FLAGS_SHUTDOWN, &sbi->s_ext4_flags);
605a6d9946bSTheodore Ts'o 		if (sbi->s_journal && !is_journal_aborted(sbi->s_journal))
606fb7c0244STheodore Ts'o 			jbd2_journal_abort(sbi->s_journal, -ESHUTDOWN);
607783d9485STheodore Ts'o 		break;
608783d9485STheodore Ts'o 	default:
609783d9485STheodore Ts'o 		return -EINVAL;
610783d9485STheodore Ts'o 	}
611783d9485STheodore Ts'o 	clear_opt(sb, DISCARD);
612783d9485STheodore Ts'o 	return 0;
613783d9485STheodore Ts'o }
614783d9485STheodore Ts'o 
6150c9ec4beSDarrick J. Wong struct getfsmap_info {
6160c9ec4beSDarrick J. Wong 	struct super_block	*gi_sb;
6170c9ec4beSDarrick J. Wong 	struct fsmap_head __user *gi_data;
6180c9ec4beSDarrick J. Wong 	unsigned int		gi_idx;
6190c9ec4beSDarrick J. Wong 	__u32			gi_last_flags;
6200c9ec4beSDarrick J. Wong };
6210c9ec4beSDarrick J. Wong 
6220c9ec4beSDarrick J. Wong static int ext4_getfsmap_format(struct ext4_fsmap *xfm, void *priv)
6230c9ec4beSDarrick J. Wong {
6240c9ec4beSDarrick J. Wong 	struct getfsmap_info *info = priv;
6250c9ec4beSDarrick J. Wong 	struct fsmap fm;
6260c9ec4beSDarrick J. Wong 
6270c9ec4beSDarrick J. Wong 	trace_ext4_getfsmap_mapping(info->gi_sb, xfm);
6280c9ec4beSDarrick J. Wong 
6290c9ec4beSDarrick J. Wong 	info->gi_last_flags = xfm->fmr_flags;
6300c9ec4beSDarrick J. Wong 	ext4_fsmap_from_internal(info->gi_sb, &fm, xfm);
6310c9ec4beSDarrick J. Wong 	if (copy_to_user(&info->gi_data->fmh_recs[info->gi_idx++], &fm,
6320c9ec4beSDarrick J. Wong 			sizeof(struct fsmap)))
6330c9ec4beSDarrick J. Wong 		return -EFAULT;
6340c9ec4beSDarrick J. Wong 
6350c9ec4beSDarrick J. Wong 	return 0;
6360c9ec4beSDarrick J. Wong }
6370c9ec4beSDarrick J. Wong 
6380c9ec4beSDarrick J. Wong static int ext4_ioc_getfsmap(struct super_block *sb,
6390c9ec4beSDarrick J. Wong 			     struct fsmap_head __user *arg)
6400c9ec4beSDarrick J. Wong {
6410ba33facSTheodore Ts'o 	struct getfsmap_info info = { NULL };
6420c9ec4beSDarrick J. Wong 	struct ext4_fsmap_head xhead = {0};
6430c9ec4beSDarrick J. Wong 	struct fsmap_head head;
6440c9ec4beSDarrick J. Wong 	bool aborted = false;
6450c9ec4beSDarrick J. Wong 	int error;
6460c9ec4beSDarrick J. Wong 
6470c9ec4beSDarrick J. Wong 	if (copy_from_user(&head, arg, sizeof(struct fsmap_head)))
6480c9ec4beSDarrick J. Wong 		return -EFAULT;
6490c9ec4beSDarrick J. Wong 	if (memchr_inv(head.fmh_reserved, 0, sizeof(head.fmh_reserved)) ||
6500c9ec4beSDarrick J. Wong 	    memchr_inv(head.fmh_keys[0].fmr_reserved, 0,
6510c9ec4beSDarrick J. Wong 		       sizeof(head.fmh_keys[0].fmr_reserved)) ||
6520c9ec4beSDarrick J. Wong 	    memchr_inv(head.fmh_keys[1].fmr_reserved, 0,
6530c9ec4beSDarrick J. Wong 		       sizeof(head.fmh_keys[1].fmr_reserved)))
6540c9ec4beSDarrick J. Wong 		return -EINVAL;
6550c9ec4beSDarrick J. Wong 	/*
6560c9ec4beSDarrick J. Wong 	 * ext4 doesn't report file extents at all, so the only valid
6570c9ec4beSDarrick J. Wong 	 * file offsets are the magic ones (all zeroes or all ones).
6580c9ec4beSDarrick J. Wong 	 */
6590c9ec4beSDarrick J. Wong 	if (head.fmh_keys[0].fmr_offset ||
6600c9ec4beSDarrick J. Wong 	    (head.fmh_keys[1].fmr_offset != 0 &&
6610c9ec4beSDarrick J. Wong 	     head.fmh_keys[1].fmr_offset != -1ULL))
6620c9ec4beSDarrick J. Wong 		return -EINVAL;
6630c9ec4beSDarrick J. Wong 
6640c9ec4beSDarrick J. Wong 	xhead.fmh_iflags = head.fmh_iflags;
6650c9ec4beSDarrick J. Wong 	xhead.fmh_count = head.fmh_count;
6660c9ec4beSDarrick J. Wong 	ext4_fsmap_to_internal(sb, &xhead.fmh_keys[0], &head.fmh_keys[0]);
6670c9ec4beSDarrick J. Wong 	ext4_fsmap_to_internal(sb, &xhead.fmh_keys[1], &head.fmh_keys[1]);
6680c9ec4beSDarrick J. Wong 
6690c9ec4beSDarrick J. Wong 	trace_ext4_getfsmap_low_key(sb, &xhead.fmh_keys[0]);
6700c9ec4beSDarrick J. Wong 	trace_ext4_getfsmap_high_key(sb, &xhead.fmh_keys[1]);
6710c9ec4beSDarrick J. Wong 
6720c9ec4beSDarrick J. Wong 	info.gi_sb = sb;
6730c9ec4beSDarrick J. Wong 	info.gi_data = arg;
6740c9ec4beSDarrick J. Wong 	error = ext4_getfsmap(sb, &xhead, ext4_getfsmap_format, &info);
6750c9ec4beSDarrick J. Wong 	if (error == EXT4_QUERY_RANGE_ABORT) {
6760c9ec4beSDarrick J. Wong 		error = 0;
6770c9ec4beSDarrick J. Wong 		aborted = true;
6780c9ec4beSDarrick J. Wong 	} else if (error)
6790c9ec4beSDarrick J. Wong 		return error;
6800c9ec4beSDarrick J. Wong 
6810c9ec4beSDarrick J. Wong 	/* If we didn't abort, set the "last" flag in the last fmx */
6820c9ec4beSDarrick J. Wong 	if (!aborted && info.gi_idx) {
6830c9ec4beSDarrick J. Wong 		info.gi_last_flags |= FMR_OF_LAST;
6840c9ec4beSDarrick J. Wong 		if (copy_to_user(&info.gi_data->fmh_recs[info.gi_idx - 1].fmr_flags,
6850c9ec4beSDarrick J. Wong 				 &info.gi_last_flags,
6860c9ec4beSDarrick J. Wong 				 sizeof(info.gi_last_flags)))
6870c9ec4beSDarrick J. Wong 			return -EFAULT;
6880c9ec4beSDarrick J. Wong 	}
6890c9ec4beSDarrick J. Wong 
6900c9ec4beSDarrick J. Wong 	/* copy back header */
6910c9ec4beSDarrick J. Wong 	head.fmh_entries = xhead.fmh_entries;
6920c9ec4beSDarrick J. Wong 	head.fmh_oflags = xhead.fmh_oflags;
6930c9ec4beSDarrick J. Wong 	if (copy_to_user(arg, &head, sizeof(struct fsmap_head)))
6940c9ec4beSDarrick J. Wong 		return -EFAULT;
6950c9ec4beSDarrick J. Wong 
6960c9ec4beSDarrick J. Wong 	return 0;
6970c9ec4beSDarrick J. Wong }
6980c9ec4beSDarrick J. Wong 
699e145b35bSAl Viro static long ext4_ioctl_group_add(struct file *file,
700e145b35bSAl Viro 				 struct ext4_new_group_data *input)
701e145b35bSAl Viro {
702e145b35bSAl Viro 	struct super_block *sb = file_inode(file)->i_sb;
703e145b35bSAl Viro 	int err, err2=0;
704e145b35bSAl Viro 
705e145b35bSAl Viro 	err = ext4_resize_begin(sb);
706e145b35bSAl Viro 	if (err)
707e145b35bSAl Viro 		return err;
708e145b35bSAl Viro 
709e145b35bSAl Viro 	if (ext4_has_feature_bigalloc(sb)) {
710e145b35bSAl Viro 		ext4_msg(sb, KERN_ERR,
711e145b35bSAl Viro 			 "Online resizing not supported with bigalloc");
712e145b35bSAl Viro 		err = -EOPNOTSUPP;
713e145b35bSAl Viro 		goto group_add_out;
714e145b35bSAl Viro 	}
715e145b35bSAl Viro 
716e145b35bSAl Viro 	err = mnt_want_write_file(file);
717e145b35bSAl Viro 	if (err)
718e145b35bSAl Viro 		goto group_add_out;
719e145b35bSAl Viro 
720e145b35bSAl Viro 	err = ext4_group_add(sb, input);
721e145b35bSAl Viro 	if (EXT4_SB(sb)->s_journal) {
722e145b35bSAl Viro 		jbd2_journal_lock_updates(EXT4_SB(sb)->s_journal);
723e145b35bSAl Viro 		err2 = jbd2_journal_flush(EXT4_SB(sb)->s_journal);
724e145b35bSAl Viro 		jbd2_journal_unlock_updates(EXT4_SB(sb)->s_journal);
725e145b35bSAl Viro 	}
726e145b35bSAl Viro 	if (err == 0)
727e145b35bSAl Viro 		err = err2;
728e145b35bSAl Viro 	mnt_drop_write_file(file);
729e145b35bSAl Viro 	if (!err && ext4_has_group_desc_csum(sb) &&
730e145b35bSAl Viro 	    test_opt(sb, INIT_INODE_TABLE))
731e145b35bSAl Viro 		err = ext4_register_li_request(sb, input->group);
732e145b35bSAl Viro group_add_out:
733e145b35bSAl Viro 	ext4_resize_end(sb);
734e145b35bSAl Viro 	return err;
735e145b35bSAl Viro }
736e145b35bSAl Viro 
7377b0e492eSDarrick J. Wong static void ext4_fill_fsxattr(struct inode *inode, struct fsxattr *fa)
738dc7ac6c4SWang Shilong {
7397b0e492eSDarrick J. Wong 	struct ext4_inode_info *ei = EXT4_I(inode);
740dc7ac6c4SWang Shilong 
7417b0e492eSDarrick J. Wong 	simple_fill_fsxattr(fa, ext4_iflags_to_xflags(ei->i_flags &
7427b0e492eSDarrick J. Wong 						      EXT4_FL_USER_VISIBLE));
743dc7ac6c4SWang Shilong 
7447b0e492eSDarrick J. Wong 	if (ext4_has_feature_project(inode->i_sb))
7457b0e492eSDarrick J. Wong 		fa->fsx_projid = from_kprojid(&init_user_ns, ei->i_projid);
746dc7ac6c4SWang Shilong }
747dc7ac6c4SWang Shilong 
7489b7365fcSLi Xi long ext4_ioctl(struct file *filp, unsigned int cmd, unsigned long arg)
7499b7365fcSLi Xi {
7509b7365fcSLi Xi 	struct inode *inode = file_inode(filp);
7519b7365fcSLi Xi 	struct super_block *sb = inode->i_sb;
7529b7365fcSLi Xi 	struct ext4_inode_info *ei = EXT4_I(inode);
7539b7365fcSLi Xi 	unsigned int flags;
7549b7365fcSLi Xi 
7559b7365fcSLi Xi 	ext4_debug("cmd = %u, arg = %lu\n", cmd, arg);
7569b7365fcSLi Xi 
7579b7365fcSLi Xi 	switch (cmd) {
7580c9ec4beSDarrick J. Wong 	case FS_IOC_GETFSMAP:
7590c9ec4beSDarrick J. Wong 		return ext4_ioc_getfsmap(sb, (void __user *)arg);
7609b7365fcSLi Xi 	case EXT4_IOC_GETFLAGS:
7619b7365fcSLi Xi 		flags = ei->i_flags & EXT4_FL_USER_VISIBLE;
7627ddf79a1SWang Shilong 		if (S_ISREG(inode->i_mode))
7637ddf79a1SWang Shilong 			flags &= ~EXT4_PROJINHERIT_FL;
7649b7365fcSLi Xi 		return put_user(flags, (int __user *) arg);
7659b7365fcSLi Xi 	case EXT4_IOC_SETFLAGS: {
7669b7365fcSLi Xi 		int err;
7679b7365fcSLi Xi 
7689b7365fcSLi Xi 		if (!inode_owner_or_capable(inode))
7699b7365fcSLi Xi 			return -EACCES;
7709b7365fcSLi Xi 
7719b7365fcSLi Xi 		if (get_user(flags, (int __user *) arg))
7729b7365fcSLi Xi 			return -EFAULT;
7739b7365fcSLi Xi 
774d14e7683SJan Kara 		if (flags & ~EXT4_FL_USER_VISIBLE)
775d14e7683SJan Kara 			return -EOPNOTSUPP;
776d14e7683SJan Kara 		/*
777d14e7683SJan Kara 		 * chattr(1) grabs flags via GETFLAGS, modifies the result and
778d14e7683SJan Kara 		 * passes that to SETFLAGS. So we cannot easily make SETFLAGS
779d14e7683SJan Kara 		 * more restrictive than just silently masking off visible but
780d14e7683SJan Kara 		 * not settable flags as we always did.
781d14e7683SJan Kara 		 */
782d14e7683SJan Kara 		flags &= EXT4_FL_USER_MODIFIABLE;
783d14e7683SJan Kara 		if (ext4_mask_flags(inode->i_mode, flags) != flags)
784d14e7683SJan Kara 			return -EOPNOTSUPP;
785d14e7683SJan Kara 
7869b7365fcSLi Xi 		err = mnt_want_write_file(filp);
7879b7365fcSLi Xi 		if (err)
7889b7365fcSLi Xi 			return err;
7899b7365fcSLi Xi 
7905955102cSAl Viro 		inode_lock(inode);
7912e538403SDarrick J. Wong 		err = ext4_ioctl_check_immutable(inode,
7922e538403SDarrick J. Wong 				from_kprojid(&init_user_ns, ei->i_projid),
7932e538403SDarrick J. Wong 				flags);
7942e538403SDarrick J. Wong 		if (!err)
7959b7365fcSLi Xi 			err = ext4_ioctl_setflags(inode, flags);
7965955102cSAl Viro 		inode_unlock(inode);
7972a79f17eSAl Viro 		mnt_drop_write_file(filp);
798ac27a0ecSDave Kleikamp 		return err;
799ac27a0ecSDave Kleikamp 	}
800617ba13bSMingming Cao 	case EXT4_IOC_GETVERSION:
801617ba13bSMingming Cao 	case EXT4_IOC_GETVERSION_OLD:
802ac27a0ecSDave Kleikamp 		return put_user(inode->i_generation, (int __user *) arg);
803617ba13bSMingming Cao 	case EXT4_IOC_SETVERSION:
804617ba13bSMingming Cao 	case EXT4_IOC_SETVERSION_OLD: {
805ac27a0ecSDave Kleikamp 		handle_t *handle;
806617ba13bSMingming Cao 		struct ext4_iloc iloc;
807ac27a0ecSDave Kleikamp 		__u32 generation;
808ac27a0ecSDave Kleikamp 		int err;
809ac27a0ecSDave Kleikamp 
8102e149670SSerge E. Hallyn 		if (!inode_owner_or_capable(inode))
811ac27a0ecSDave Kleikamp 			return -EPERM;
81242a74f20SDave Hansen 
8139aa5d32bSDmitry Monakhov 		if (ext4_has_metadata_csum(inode->i_sb)) {
814814525f4SDarrick J. Wong 			ext4_warning(sb, "Setting inode version is not "
815814525f4SDarrick J. Wong 				     "supported with metadata_csum enabled.");
816814525f4SDarrick J. Wong 			return -ENOTTY;
817814525f4SDarrick J. Wong 		}
818814525f4SDarrick J. Wong 
819a561be71SAl Viro 		err = mnt_want_write_file(filp);
82042a74f20SDave Hansen 		if (err)
82142a74f20SDave Hansen 			return err;
82242a74f20SDave Hansen 		if (get_user(generation, (int __user *) arg)) {
82342a74f20SDave Hansen 			err = -EFAULT;
82442a74f20SDave Hansen 			goto setversion_out;
82542a74f20SDave Hansen 		}
826ac27a0ecSDave Kleikamp 
8275955102cSAl Viro 		inode_lock(inode);
8289924a92aSTheodore Ts'o 		handle = ext4_journal_start(inode, EXT4_HT_INODE, 1);
82942a74f20SDave Hansen 		if (IS_ERR(handle)) {
83042a74f20SDave Hansen 			err = PTR_ERR(handle);
8316c2155b9SDjalal Harouni 			goto unlock_out;
83242a74f20SDave Hansen 		}
833617ba13bSMingming Cao 		err = ext4_reserve_inode_write(handle, inode, &iloc);
834ac27a0ecSDave Kleikamp 		if (err == 0) {
835eeca7ea1SDeepa Dinamani 			inode->i_ctime = current_time(inode);
836ac27a0ecSDave Kleikamp 			inode->i_generation = generation;
837617ba13bSMingming Cao 			err = ext4_mark_iloc_dirty(handle, inode, &iloc);
838ac27a0ecSDave Kleikamp 		}
839617ba13bSMingming Cao 		ext4_journal_stop(handle);
8406c2155b9SDjalal Harouni 
8416c2155b9SDjalal Harouni unlock_out:
8425955102cSAl Viro 		inode_unlock(inode);
84342a74f20SDave Hansen setversion_out:
8442a79f17eSAl Viro 		mnt_drop_write_file(filp);
845ac27a0ecSDave Kleikamp 		return err;
846ac27a0ecSDave Kleikamp 	}
847617ba13bSMingming Cao 	case EXT4_IOC_GROUP_EXTEND: {
848617ba13bSMingming Cao 		ext4_fsblk_t n_blocks_count;
849ac046f1dSPeng Tao 		int err, err2=0;
850ac27a0ecSDave Kleikamp 
8518f82f840SYongqiang Yang 		err = ext4_resize_begin(sb);
8528f82f840SYongqiang Yang 		if (err)
8538f82f840SYongqiang Yang 			return err;
854ac27a0ecSDave Kleikamp 
855014a1770SDjalal Harouni 		if (get_user(n_blocks_count, (__u32 __user *)arg)) {
856014a1770SDjalal Harouni 			err = -EFAULT;
857014a1770SDjalal Harouni 			goto group_extend_out;
858014a1770SDjalal Harouni 		}
859ac27a0ecSDave Kleikamp 
860e2b911c5SDarrick J. Wong 		if (ext4_has_feature_bigalloc(sb)) {
861bab08ab9STheodore Ts'o 			ext4_msg(sb, KERN_ERR,
862bab08ab9STheodore Ts'o 				 "Online resizing not supported with bigalloc");
863014a1770SDjalal Harouni 			err = -EOPNOTSUPP;
864014a1770SDjalal Harouni 			goto group_extend_out;
865bab08ab9STheodore Ts'o 		}
866bab08ab9STheodore Ts'o 
867a561be71SAl Viro 		err = mnt_want_write_file(filp);
86842a74f20SDave Hansen 		if (err)
869014a1770SDjalal Harouni 			goto group_extend_out;
87042a74f20SDave Hansen 
871617ba13bSMingming Cao 		err = ext4_group_extend(sb, EXT4_SB(sb)->s_es, n_blocks_count);
872ac046f1dSPeng Tao 		if (EXT4_SB(sb)->s_journal) {
873dab291afSMingming Cao 			jbd2_journal_lock_updates(EXT4_SB(sb)->s_journal);
8747ffe1ea8SHidehiro Kawai 			err2 = jbd2_journal_flush(EXT4_SB(sb)->s_journal);
875dab291afSMingming Cao 			jbd2_journal_unlock_updates(EXT4_SB(sb)->s_journal);
876ac046f1dSPeng Tao 		}
8777ffe1ea8SHidehiro Kawai 		if (err == 0)
8787ffe1ea8SHidehiro Kawai 			err = err2;
8792a79f17eSAl Viro 		mnt_drop_write_file(filp);
880014a1770SDjalal Harouni group_extend_out:
8818f82f840SYongqiang Yang 		ext4_resize_end(sb);
882ac27a0ecSDave Kleikamp 		return err;
883ac27a0ecSDave Kleikamp 	}
884748de673SAkira Fujita 
885748de673SAkira Fujita 	case EXT4_IOC_MOVE_EXT: {
886748de673SAkira Fujita 		struct move_extent me;
8872903ff01SAl Viro 		struct fd donor;
8882903ff01SAl Viro 		int err;
889748de673SAkira Fujita 
8904a58579bSAkira Fujita 		if (!(filp->f_mode & FMODE_READ) ||
8914a58579bSAkira Fujita 		    !(filp->f_mode & FMODE_WRITE))
8924a58579bSAkira Fujita 			return -EBADF;
8934a58579bSAkira Fujita 
894748de673SAkira Fujita 		if (copy_from_user(&me,
895748de673SAkira Fujita 			(struct move_extent __user *)arg, sizeof(me)))
896748de673SAkira Fujita 			return -EFAULT;
8974a58579bSAkira Fujita 		me.moved_len = 0;
898748de673SAkira Fujita 
8992903ff01SAl Viro 		donor = fdget(me.donor_fd);
9002903ff01SAl Viro 		if (!donor.file)
901748de673SAkira Fujita 			return -EBADF;
902748de673SAkira Fujita 
9032903ff01SAl Viro 		if (!(donor.file->f_mode & FMODE_WRITE)) {
9044a58579bSAkira Fujita 			err = -EBADF;
9054a58579bSAkira Fujita 			goto mext_out;
906748de673SAkira Fujita 		}
907748de673SAkira Fujita 
908e2b911c5SDarrick J. Wong 		if (ext4_has_feature_bigalloc(sb)) {
909bab08ab9STheodore Ts'o 			ext4_msg(sb, KERN_ERR,
910bab08ab9STheodore Ts'o 				 "Online defrag not supported with bigalloc");
911399c9b86SAl Viro 			err = -EOPNOTSUPP;
912399c9b86SAl Viro 			goto mext_out;
91373f34a5eSRoss Zwisler 		} else if (IS_DAX(inode)) {
91473f34a5eSRoss Zwisler 			ext4_msg(sb, KERN_ERR,
91573f34a5eSRoss Zwisler 				 "Online defrag not supported with DAX");
91673f34a5eSRoss Zwisler 			err = -EOPNOTSUPP;
91773f34a5eSRoss Zwisler 			goto mext_out;
918bab08ab9STheodore Ts'o 		}
919bab08ab9STheodore Ts'o 
920a561be71SAl Viro 		err = mnt_want_write_file(filp);
9214a58579bSAkira Fujita 		if (err)
9224a58579bSAkira Fujita 			goto mext_out;
9234a58579bSAkira Fujita 
9242903ff01SAl Viro 		err = ext4_move_extents(filp, donor.file, me.orig_start,
925748de673SAkira Fujita 					me.donor_start, me.len, &me.moved_len);
9262a79f17eSAl Viro 		mnt_drop_write_file(filp);
927748de673SAkira Fujita 
928c437b273SAkira Fujita 		if (copy_to_user((struct move_extent __user *)arg,
929c437b273SAkira Fujita 				 &me, sizeof(me)))
9304a58579bSAkira Fujita 			err = -EFAULT;
9314a58579bSAkira Fujita mext_out:
9322903ff01SAl Viro 		fdput(donor);
933748de673SAkira Fujita 		return err;
934748de673SAkira Fujita 	}
935748de673SAkira Fujita 
936617ba13bSMingming Cao 	case EXT4_IOC_GROUP_ADD: {
937617ba13bSMingming Cao 		struct ext4_new_group_data input;
938ac27a0ecSDave Kleikamp 
939617ba13bSMingming Cao 		if (copy_from_user(&input, (struct ext4_new_group_input __user *)arg,
940e145b35bSAl Viro 				sizeof(input)))
941e145b35bSAl Viro 			return -EFAULT;
942ac27a0ecSDave Kleikamp 
943e145b35bSAl Viro 		return ext4_ioctl_group_add(filp, &input);
944ac27a0ecSDave Kleikamp 	}
945ac27a0ecSDave Kleikamp 
946c14c6fd5SAneesh Kumar K.V 	case EXT4_IOC_MIGRATE:
9472a43a878SAneesh Kumar K.V 	{
9482a43a878SAneesh Kumar K.V 		int err;
9492e149670SSerge E. Hallyn 		if (!inode_owner_or_capable(inode))
9502a43a878SAneesh Kumar K.V 			return -EACCES;
9512a43a878SAneesh Kumar K.V 
952a561be71SAl Viro 		err = mnt_want_write_file(filp);
9532a43a878SAneesh Kumar K.V 		if (err)
9542a43a878SAneesh Kumar K.V 			return err;
9552a43a878SAneesh Kumar K.V 		/*
9562a43a878SAneesh Kumar K.V 		 * inode_mutex prevent write and truncate on the file.
9572a43a878SAneesh Kumar K.V 		 * Read still goes through. We take i_data_sem in
9582a43a878SAneesh Kumar K.V 		 * ext4_ext_swap_inode_data before we switch the
9592a43a878SAneesh Kumar K.V 		 * inode format to prevent read.
9602a43a878SAneesh Kumar K.V 		 */
9615955102cSAl Viro 		inode_lock((inode));
9622a43a878SAneesh Kumar K.V 		err = ext4_ext_migrate(inode);
9635955102cSAl Viro 		inode_unlock((inode));
9642a79f17eSAl Viro 		mnt_drop_write_file(filp);
9652a43a878SAneesh Kumar K.V 		return err;
9662a43a878SAneesh Kumar K.V 	}
967c14c6fd5SAneesh Kumar K.V 
968ccd2506bSTheodore Ts'o 	case EXT4_IOC_ALLOC_DA_BLKS:
969ccd2506bSTheodore Ts'o 	{
970ccd2506bSTheodore Ts'o 		int err;
9712e149670SSerge E. Hallyn 		if (!inode_owner_or_capable(inode))
972ccd2506bSTheodore Ts'o 			return -EACCES;
973ccd2506bSTheodore Ts'o 
974a561be71SAl Viro 		err = mnt_want_write_file(filp);
975ccd2506bSTheodore Ts'o 		if (err)
976ccd2506bSTheodore Ts'o 			return err;
977ccd2506bSTheodore Ts'o 		err = ext4_alloc_da_blocks(inode);
9782a79f17eSAl Viro 		mnt_drop_write_file(filp);
979ccd2506bSTheodore Ts'o 		return err;
980ccd2506bSTheodore Ts'o 	}
981ccd2506bSTheodore Ts'o 
982393d1d1dSDr. Tilmann Bubeck 	case EXT4_IOC_SWAP_BOOT:
9833e67cfadSDmitry Monakhov 	{
9843e67cfadSDmitry Monakhov 		int err;
985393d1d1dSDr. Tilmann Bubeck 		if (!(filp->f_mode & FMODE_WRITE))
986393d1d1dSDr. Tilmann Bubeck 			return -EBADF;
9873e67cfadSDmitry Monakhov 		err = mnt_want_write_file(filp);
9883e67cfadSDmitry Monakhov 		if (err)
9893e67cfadSDmitry Monakhov 			return err;
9903e67cfadSDmitry Monakhov 		err = swap_inode_boot_loader(sb, inode);
9913e67cfadSDmitry Monakhov 		mnt_drop_write_file(filp);
9923e67cfadSDmitry Monakhov 		return err;
9933e67cfadSDmitry Monakhov 	}
994393d1d1dSDr. Tilmann Bubeck 
99519c5246dSYongqiang Yang 	case EXT4_IOC_RESIZE_FS: {
99619c5246dSYongqiang Yang 		ext4_fsblk_t n_blocks_count;
99719c5246dSYongqiang Yang 		int err = 0, err2 = 0;
9987f511862STheodore Ts'o 		ext4_group_t o_group = EXT4_SB(sb)->s_groups_count;
99919c5246dSYongqiang Yang 
100019c5246dSYongqiang Yang 		if (copy_from_user(&n_blocks_count, (__u64 __user *)arg,
100119c5246dSYongqiang Yang 				   sizeof(__u64))) {
100219c5246dSYongqiang Yang 			return -EFAULT;
100319c5246dSYongqiang Yang 		}
100419c5246dSYongqiang Yang 
100519c5246dSYongqiang Yang 		err = ext4_resize_begin(sb);
100619c5246dSYongqiang Yang 		if (err)
100719c5246dSYongqiang Yang 			return err;
100819c5246dSYongqiang Yang 
10098cae6f71SAl Viro 		err = mnt_want_write_file(filp);
101019c5246dSYongqiang Yang 		if (err)
101119c5246dSYongqiang Yang 			goto resizefs_out;
101219c5246dSYongqiang Yang 
101319c5246dSYongqiang Yang 		err = ext4_resize_fs(sb, n_blocks_count);
101419c5246dSYongqiang Yang 		if (EXT4_SB(sb)->s_journal) {
101519c5246dSYongqiang Yang 			jbd2_journal_lock_updates(EXT4_SB(sb)->s_journal);
101619c5246dSYongqiang Yang 			err2 = jbd2_journal_flush(EXT4_SB(sb)->s_journal);
101719c5246dSYongqiang Yang 			jbd2_journal_unlock_updates(EXT4_SB(sb)->s_journal);
101819c5246dSYongqiang Yang 		}
101919c5246dSYongqiang Yang 		if (err == 0)
102019c5246dSYongqiang Yang 			err = err2;
10218cae6f71SAl Viro 		mnt_drop_write_file(filp);
1022310a997fSKirill Tkhai 		if (!err && (o_group < EXT4_SB(sb)->s_groups_count) &&
10237f511862STheodore Ts'o 		    ext4_has_group_desc_csum(sb) &&
10247f511862STheodore Ts'o 		    test_opt(sb, INIT_INODE_TABLE))
10257f511862STheodore Ts'o 			err = ext4_register_li_request(sb, o_group);
10267f511862STheodore Ts'o 
102719c5246dSYongqiang Yang resizefs_out:
102819c5246dSYongqiang Yang 		ext4_resize_end(sb);
102919c5246dSYongqiang Yang 		return err;
103019c5246dSYongqiang Yang 	}
103119c5246dSYongqiang Yang 
1032e681c047SLukas Czerner 	case FITRIM:
1033e681c047SLukas Czerner 	{
103441431792SLukas Czerner 		struct request_queue *q = bdev_get_queue(sb->s_bdev);
1035e681c047SLukas Czerner 		struct fstrim_range range;
1036e681c047SLukas Czerner 		int ret = 0;
1037e681c047SLukas Czerner 
1038e681c047SLukas Czerner 		if (!capable(CAP_SYS_ADMIN))
1039e681c047SLukas Czerner 			return -EPERM;
1040e681c047SLukas Czerner 
104141431792SLukas Czerner 		if (!blk_queue_discard(q))
104241431792SLukas Czerner 			return -EOPNOTSUPP;
104341431792SLukas Czerner 
104418915b58SDarrick J. Wong 		/*
104518915b58SDarrick J. Wong 		 * We haven't replayed the journal, so we cannot use our
104618915b58SDarrick J. Wong 		 * block-bitmap-guided storage zapping commands.
104718915b58SDarrick J. Wong 		 */
104818915b58SDarrick J. Wong 		if (test_opt(sb, NOLOAD) && ext4_has_feature_journal(sb))
104918915b58SDarrick J. Wong 			return -EROFS;
105018915b58SDarrick J. Wong 
1051e6705f7cSH Hartley Sweeten 		if (copy_from_user(&range, (struct fstrim_range __user *)arg,
1052e681c047SLukas Czerner 		    sizeof(range)))
1053e681c047SLukas Czerner 			return -EFAULT;
1054e681c047SLukas Czerner 
10555c2ed62fSLukas Czerner 		range.minlen = max((unsigned int)range.minlen,
10565c2ed62fSLukas Czerner 				   q->limits.discard_granularity);
1057e681c047SLukas Czerner 		ret = ext4_trim_fs(sb, &range);
1058e681c047SLukas Czerner 		if (ret < 0)
1059e681c047SLukas Czerner 			return ret;
1060e681c047SLukas Czerner 
1061e6705f7cSH Hartley Sweeten 		if (copy_to_user((struct fstrim_range __user *)arg, &range,
1062e681c047SLukas Czerner 		    sizeof(range)))
1063e681c047SLukas Czerner 			return -EFAULT;
1064e681c047SLukas Czerner 
1065e681c047SLukas Czerner 		return 0;
1066e681c047SLukas Czerner 	}
10677869a4a6STheodore Ts'o 	case EXT4_IOC_PRECACHE_EXTENTS:
10687869a4a6STheodore Ts'o 		return ext4_ext_precache(inode);
1069e681c047SLukas Czerner 
1070db717d8eSEric Biggers 	case EXT4_IOC_SET_ENCRYPTION_POLICY:
10719a200d07SRichard Weinberger 		if (!ext4_has_feature_encrypt(sb))
10729a200d07SRichard Weinberger 			return -EOPNOTSUPP;
1073db717d8eSEric Biggers 		return fscrypt_ioctl_set_policy(filp, (const void __user *)arg);
10749a200d07SRichard Weinberger 
10759bd8212fSMichael Halcrow 	case EXT4_IOC_GET_ENCRYPTION_PWSALT: {
1076643fa961SChandan Rajendra #ifdef CONFIG_FS_ENCRYPTION
10779bd8212fSMichael Halcrow 		int err, err2;
10789bd8212fSMichael Halcrow 		struct ext4_sb_info *sbi = EXT4_SB(sb);
10799bd8212fSMichael Halcrow 		handle_t *handle;
10809bd8212fSMichael Halcrow 
108135997d1cSEric Biggers 		if (!ext4_has_feature_encrypt(sb))
10829bd8212fSMichael Halcrow 			return -EOPNOTSUPP;
10839bd8212fSMichael Halcrow 		if (uuid_is_zero(sbi->s_es->s_encrypt_pw_salt)) {
10849bd8212fSMichael Halcrow 			err = mnt_want_write_file(filp);
10859bd8212fSMichael Halcrow 			if (err)
10869bd8212fSMichael Halcrow 				return err;
10879bd8212fSMichael Halcrow 			handle = ext4_journal_start_sb(sb, EXT4_HT_MISC, 1);
10889bd8212fSMichael Halcrow 			if (IS_ERR(handle)) {
10899bd8212fSMichael Halcrow 				err = PTR_ERR(handle);
10909bd8212fSMichael Halcrow 				goto pwsalt_err_exit;
10919bd8212fSMichael Halcrow 			}
10929bd8212fSMichael Halcrow 			err = ext4_journal_get_write_access(handle, sbi->s_sbh);
10939bd8212fSMichael Halcrow 			if (err)
10949bd8212fSMichael Halcrow 				goto pwsalt_err_journal;
10959bd8212fSMichael Halcrow 			generate_random_uuid(sbi->s_es->s_encrypt_pw_salt);
10969bd8212fSMichael Halcrow 			err = ext4_handle_dirty_metadata(handle, NULL,
10979bd8212fSMichael Halcrow 							 sbi->s_sbh);
10989bd8212fSMichael Halcrow 		pwsalt_err_journal:
10999bd8212fSMichael Halcrow 			err2 = ext4_journal_stop(handle);
11009bd8212fSMichael Halcrow 			if (err2 && !err)
11019bd8212fSMichael Halcrow 				err = err2;
11029bd8212fSMichael Halcrow 		pwsalt_err_exit:
11039bd8212fSMichael Halcrow 			mnt_drop_write_file(filp);
11049bd8212fSMichael Halcrow 			if (err)
11059bd8212fSMichael Halcrow 				return err;
11069bd8212fSMichael Halcrow 		}
1107b4ab9e29SFabian Frederick 		if (copy_to_user((void __user *) arg,
1108b4ab9e29SFabian Frederick 				 sbi->s_es->s_encrypt_pw_salt, 16))
11099bd8212fSMichael Halcrow 			return -EFAULT;
11109bd8212fSMichael Halcrow 		return 0;
1111ba679017SEric Biggers #else
1112ba679017SEric Biggers 		return -EOPNOTSUPP;
1113ba679017SEric Biggers #endif
11149bd8212fSMichael Halcrow 	}
1115db717d8eSEric Biggers 	case EXT4_IOC_GET_ENCRYPTION_POLICY:
11160642ea24SChao Yu 		if (!ext4_has_feature_encrypt(sb))
11170642ea24SChao Yu 			return -EOPNOTSUPP;
1118db717d8eSEric Biggers 		return fscrypt_ioctl_get_policy(filp, (void __user *)arg);
11199bd8212fSMichael Halcrow 
112029b3692eSEric Biggers 	case FS_IOC_GET_ENCRYPTION_POLICY_EX:
112129b3692eSEric Biggers 		if (!ext4_has_feature_encrypt(sb))
112229b3692eSEric Biggers 			return -EOPNOTSUPP;
112329b3692eSEric Biggers 		return fscrypt_ioctl_get_policy_ex(filp, (void __user *)arg);
112429b3692eSEric Biggers 
112529b3692eSEric Biggers 	case FS_IOC_ADD_ENCRYPTION_KEY:
112629b3692eSEric Biggers 		if (!ext4_has_feature_encrypt(sb))
112729b3692eSEric Biggers 			return -EOPNOTSUPP;
112829b3692eSEric Biggers 		return fscrypt_ioctl_add_key(filp, (void __user *)arg);
112929b3692eSEric Biggers 
113029b3692eSEric Biggers 	case FS_IOC_REMOVE_ENCRYPTION_KEY:
113129b3692eSEric Biggers 		if (!ext4_has_feature_encrypt(sb))
113229b3692eSEric Biggers 			return -EOPNOTSUPP;
113329b3692eSEric Biggers 		return fscrypt_ioctl_remove_key(filp, (void __user *)arg);
113429b3692eSEric Biggers 
113529b3692eSEric Biggers 	case FS_IOC_REMOVE_ENCRYPTION_KEY_ALL_USERS:
113629b3692eSEric Biggers 		if (!ext4_has_feature_encrypt(sb))
113729b3692eSEric Biggers 			return -EOPNOTSUPP;
113829b3692eSEric Biggers 		return fscrypt_ioctl_remove_key_all_users(filp,
113929b3692eSEric Biggers 							  (void __user *)arg);
114029b3692eSEric Biggers 	case FS_IOC_GET_ENCRYPTION_KEY_STATUS:
114129b3692eSEric Biggers 		if (!ext4_has_feature_encrypt(sb))
114229b3692eSEric Biggers 			return -EOPNOTSUPP;
114329b3692eSEric Biggers 		return fscrypt_ioctl_get_key_status(filp, (void __user *)arg);
114429b3692eSEric Biggers 
11459b7365fcSLi Xi 	case EXT4_IOC_FSGETXATTR:
11469b7365fcSLi Xi 	{
11479b7365fcSLi Xi 		struct fsxattr fa;
11489b7365fcSLi Xi 
11497b0e492eSDarrick J. Wong 		ext4_fill_fsxattr(inode, &fa);
11509b7365fcSLi Xi 
11519b7365fcSLi Xi 		if (copy_to_user((struct fsxattr __user *)arg,
11529b7365fcSLi Xi 				 &fa, sizeof(fa)))
11539b7365fcSLi Xi 			return -EFAULT;
11549b7365fcSLi Xi 		return 0;
11559b7365fcSLi Xi 	}
11569b7365fcSLi Xi 	case EXT4_IOC_FSSETXATTR:
11579b7365fcSLi Xi 	{
11587b0e492eSDarrick J. Wong 		struct fsxattr fa, old_fa;
11599b7365fcSLi Xi 		int err;
11609b7365fcSLi Xi 
11619b7365fcSLi Xi 		if (copy_from_user(&fa, (struct fsxattr __user *)arg,
11629b7365fcSLi Xi 				   sizeof(fa)))
11639b7365fcSLi Xi 			return -EFAULT;
11649b7365fcSLi Xi 
11659b7365fcSLi Xi 		/* Make sure caller has proper permission */
11669b7365fcSLi Xi 		if (!inode_owner_or_capable(inode))
11679b7365fcSLi Xi 			return -EACCES;
11689b7365fcSLi Xi 
1169d14e7683SJan Kara 		if (fa.fsx_xflags & ~EXT4_SUPPORTED_FS_XFLAGS)
1170d14e7683SJan Kara 			return -EOPNOTSUPP;
1171d14e7683SJan Kara 
1172d14e7683SJan Kara 		flags = ext4_xflags_to_iflags(fa.fsx_xflags);
1173d14e7683SJan Kara 		if (ext4_mask_flags(inode->i_mode, flags) != flags)
1174d14e7683SJan Kara 			return -EOPNOTSUPP;
1175d14e7683SJan Kara 
11769b7365fcSLi Xi 		err = mnt_want_write_file(filp);
11779b7365fcSLi Xi 		if (err)
11789b7365fcSLi Xi 			return err;
11799b7365fcSLi Xi 
11805955102cSAl Viro 		inode_lock(inode);
11817b0e492eSDarrick J. Wong 		ext4_fill_fsxattr(inode, &old_fa);
11827b0e492eSDarrick J. Wong 		err = vfs_ioc_fssetxattr_check(inode, &old_fa, &fa);
1183dc7ac6c4SWang Shilong 		if (err)
1184dc7ac6c4SWang Shilong 			goto out;
11859b7365fcSLi Xi 		flags = (ei->i_flags & ~EXT4_FL_XFLAG_VISIBLE) |
11869b7365fcSLi Xi 			 (flags & EXT4_FL_XFLAG_VISIBLE);
11872e538403SDarrick J. Wong 		err = ext4_ioctl_check_immutable(inode, fa.fsx_projid, flags);
11882e538403SDarrick J. Wong 		if (err)
11892e538403SDarrick J. Wong 			goto out;
11909b7365fcSLi Xi 		err = ext4_ioctl_setflags(inode, flags);
1191dc7ac6c4SWang Shilong 		if (err)
1192dc7ac6c4SWang Shilong 			goto out;
1193dc7ac6c4SWang Shilong 		err = ext4_ioctl_setproject(filp, fa.fsx_projid);
1194dc7ac6c4SWang Shilong out:
11955955102cSAl Viro 		inode_unlock(inode);
11969b7365fcSLi Xi 		mnt_drop_write_file(filp);
11979b7365fcSLi Xi 		return err;
11989b7365fcSLi Xi 	}
1199e9be2ac7STheodore Ts'o 	case EXT4_IOC_SHUTDOWN:
1200e9be2ac7STheodore Ts'o 		return ext4_shutdown(sb, arg);
1201ac27a0ecSDave Kleikamp 	default:
1202ac27a0ecSDave Kleikamp 		return -ENOTTY;
1203ac27a0ecSDave Kleikamp 	}
1204ac27a0ecSDave Kleikamp }
1205ac27a0ecSDave Kleikamp 
1206ac27a0ecSDave Kleikamp #ifdef CONFIG_COMPAT
1207617ba13bSMingming Cao long ext4_compat_ioctl(struct file *file, unsigned int cmd, unsigned long arg)
1208ac27a0ecSDave Kleikamp {
1209ac27a0ecSDave Kleikamp 	/* These are just misnamed, they actually get/put from/to user an int */
1210ac27a0ecSDave Kleikamp 	switch (cmd) {
1211617ba13bSMingming Cao 	case EXT4_IOC32_GETFLAGS:
1212617ba13bSMingming Cao 		cmd = EXT4_IOC_GETFLAGS;
1213ac27a0ecSDave Kleikamp 		break;
1214617ba13bSMingming Cao 	case EXT4_IOC32_SETFLAGS:
1215617ba13bSMingming Cao 		cmd = EXT4_IOC_SETFLAGS;
1216ac27a0ecSDave Kleikamp 		break;
1217617ba13bSMingming Cao 	case EXT4_IOC32_GETVERSION:
1218617ba13bSMingming Cao 		cmd = EXT4_IOC_GETVERSION;
1219ac27a0ecSDave Kleikamp 		break;
1220617ba13bSMingming Cao 	case EXT4_IOC32_SETVERSION:
1221617ba13bSMingming Cao 		cmd = EXT4_IOC_SETVERSION;
1222ac27a0ecSDave Kleikamp 		break;
1223617ba13bSMingming Cao 	case EXT4_IOC32_GROUP_EXTEND:
1224617ba13bSMingming Cao 		cmd = EXT4_IOC_GROUP_EXTEND;
1225ac27a0ecSDave Kleikamp 		break;
1226617ba13bSMingming Cao 	case EXT4_IOC32_GETVERSION_OLD:
1227617ba13bSMingming Cao 		cmd = EXT4_IOC_GETVERSION_OLD;
1228ac27a0ecSDave Kleikamp 		break;
1229617ba13bSMingming Cao 	case EXT4_IOC32_SETVERSION_OLD:
1230617ba13bSMingming Cao 		cmd = EXT4_IOC_SETVERSION_OLD;
1231ac27a0ecSDave Kleikamp 		break;
1232617ba13bSMingming Cao 	case EXT4_IOC32_GETRSVSZ:
1233617ba13bSMingming Cao 		cmd = EXT4_IOC_GETRSVSZ;
1234ac27a0ecSDave Kleikamp 		break;
1235617ba13bSMingming Cao 	case EXT4_IOC32_SETRSVSZ:
1236617ba13bSMingming Cao 		cmd = EXT4_IOC_SETRSVSZ;
1237ac27a0ecSDave Kleikamp 		break;
12384d92dc0fSBen Hutchings 	case EXT4_IOC32_GROUP_ADD: {
12394d92dc0fSBen Hutchings 		struct compat_ext4_new_group_input __user *uinput;
1240e145b35bSAl Viro 		struct ext4_new_group_data input;
12414d92dc0fSBen Hutchings 		int err;
12424d92dc0fSBen Hutchings 
12434d92dc0fSBen Hutchings 		uinput = compat_ptr(arg);
12444d92dc0fSBen Hutchings 		err = get_user(input.group, &uinput->group);
12454d92dc0fSBen Hutchings 		err |= get_user(input.block_bitmap, &uinput->block_bitmap);
12464d92dc0fSBen Hutchings 		err |= get_user(input.inode_bitmap, &uinput->inode_bitmap);
12474d92dc0fSBen Hutchings 		err |= get_user(input.inode_table, &uinput->inode_table);
12484d92dc0fSBen Hutchings 		err |= get_user(input.blocks_count, &uinput->blocks_count);
12494d92dc0fSBen Hutchings 		err |= get_user(input.reserved_blocks,
12504d92dc0fSBen Hutchings 				&uinput->reserved_blocks);
12514d92dc0fSBen Hutchings 		if (err)
12524d92dc0fSBen Hutchings 			return -EFAULT;
1253e145b35bSAl Viro 		return ext4_ioctl_group_add(file, &input);
12544d92dc0fSBen Hutchings 	}
1255b684b2eeSChristian Borntraeger 	case EXT4_IOC_MOVE_EXT:
125619c5246dSYongqiang Yang 	case EXT4_IOC_RESIZE_FS:
12577869a4a6STheodore Ts'o 	case EXT4_IOC_PRECACHE_EXTENTS:
12589bd8212fSMichael Halcrow 	case EXT4_IOC_SET_ENCRYPTION_POLICY:
12599bd8212fSMichael Halcrow 	case EXT4_IOC_GET_ENCRYPTION_PWSALT:
12609bd8212fSMichael Halcrow 	case EXT4_IOC_GET_ENCRYPTION_POLICY:
126129b3692eSEric Biggers 	case FS_IOC_GET_ENCRYPTION_POLICY_EX:
126229b3692eSEric Biggers 	case FS_IOC_ADD_ENCRYPTION_KEY:
126329b3692eSEric Biggers 	case FS_IOC_REMOVE_ENCRYPTION_KEY:
126429b3692eSEric Biggers 	case FS_IOC_REMOVE_ENCRYPTION_KEY_ALL_USERS:
126529b3692eSEric Biggers 	case FS_IOC_GET_ENCRYPTION_KEY_STATUS:
1266e9be2ac7STheodore Ts'o 	case EXT4_IOC_SHUTDOWN:
12670c9ec4beSDarrick J. Wong 	case FS_IOC_GETFSMAP:
1268b684b2eeSChristian Borntraeger 		break;
1269ac27a0ecSDave Kleikamp 	default:
1270ac27a0ecSDave Kleikamp 		return -ENOIOCTLCMD;
1271ac27a0ecSDave Kleikamp 	}
12725cdd7b2dSAndi Kleen 	return ext4_ioctl(file, cmd, (unsigned long) compat_ptr(arg));
1273ac27a0ecSDave Kleikamp }
1274ac27a0ecSDave Kleikamp #endif
1275