1b2441318SGreg Kroah-Hartman // SPDX-License-Identifier: GPL-2.0 2ac27a0ecSDave Kleikamp /* 3617ba13bSMingming Cao * linux/fs/ext4/ioctl.c 4ac27a0ecSDave Kleikamp * 5ac27a0ecSDave Kleikamp * Copyright (C) 1993, 1994, 1995 6ac27a0ecSDave Kleikamp * Remy Card (card@masi.ibp.fr) 7ac27a0ecSDave Kleikamp * Laboratoire MASI - Institut Blaise Pascal 8ac27a0ecSDave Kleikamp * Universite Pierre et Marie Curie (Paris VI) 9ac27a0ecSDave Kleikamp */ 10ac27a0ecSDave Kleikamp 11ac27a0ecSDave Kleikamp #include <linux/fs.h> 12ac27a0ecSDave Kleikamp #include <linux/capability.h> 13ac27a0ecSDave Kleikamp #include <linux/time.h> 14ac27a0ecSDave Kleikamp #include <linux/compat.h> 1542a74f20SDave Hansen #include <linux/mount.h> 16748de673SAkira Fujita #include <linux/file.h> 179b7365fcSLi Xi #include <linux/quotaops.h> 1823253068STheodore Ts'o #include <linux/random.h> 198da4b8c4SAndy Shevchenko #include <linux/uuid.h> 207c0f6ba6SLinus Torvalds #include <linux/uaccess.h> 21783d9485STheodore Ts'o #include <linux/delay.h> 22ee73f9a5SJeff Layton #include <linux/iversion.h> 234db5c2e6SMiklos Szeredi #include <linux/fileattr.h> 243dcf5451SChristoph Hellwig #include "ext4_jbd2.h" 253dcf5451SChristoph Hellwig #include "ext4.h" 260c9ec4beSDarrick J. Wong #include <linux/fsmap.h> 270c9ec4beSDarrick J. Wong #include "fsmap.h" 280c9ec4beSDarrick J. Wong #include <trace/events/ext4.h> 29ac27a0ecSDave Kleikamp 30393d1d1dSDr. Tilmann Bubeck /** 31393d1d1dSDr. Tilmann Bubeck * Swap memory between @a and @b for @len bytes. 32393d1d1dSDr. Tilmann Bubeck * 33393d1d1dSDr. Tilmann Bubeck * @a: pointer to first memory area 34393d1d1dSDr. Tilmann Bubeck * @b: pointer to second memory area 35393d1d1dSDr. Tilmann Bubeck * @len: number of bytes to swap 36393d1d1dSDr. Tilmann Bubeck * 37393d1d1dSDr. Tilmann Bubeck */ 38393d1d1dSDr. Tilmann Bubeck static void memswap(void *a, void *b, size_t len) 39393d1d1dSDr. Tilmann Bubeck { 40393d1d1dSDr. Tilmann Bubeck unsigned char *ap, *bp; 41393d1d1dSDr. Tilmann Bubeck 42393d1d1dSDr. Tilmann Bubeck ap = (unsigned char *)a; 43393d1d1dSDr. Tilmann Bubeck bp = (unsigned char *)b; 44393d1d1dSDr. Tilmann Bubeck while (len-- > 0) { 454b7e2db5SFabian Frederick swap(*ap, *bp); 46393d1d1dSDr. Tilmann Bubeck ap++; 47393d1d1dSDr. Tilmann Bubeck bp++; 48393d1d1dSDr. Tilmann Bubeck } 49393d1d1dSDr. Tilmann Bubeck } 50393d1d1dSDr. Tilmann Bubeck 51393d1d1dSDr. Tilmann Bubeck /** 52393d1d1dSDr. Tilmann Bubeck * Swap i_data and associated attributes between @inode1 and @inode2. 53393d1d1dSDr. Tilmann Bubeck * This function is used for the primary swap between inode1 and inode2 54393d1d1dSDr. Tilmann Bubeck * and also to revert this primary swap in case of errors. 55393d1d1dSDr. Tilmann Bubeck * 56393d1d1dSDr. Tilmann Bubeck * Therefore you have to make sure, that calling this method twice 57393d1d1dSDr. Tilmann Bubeck * will revert all changes. 58393d1d1dSDr. Tilmann Bubeck * 59393d1d1dSDr. Tilmann Bubeck * @inode1: pointer to first inode 60393d1d1dSDr. Tilmann Bubeck * @inode2: pointer to second inode 61393d1d1dSDr. Tilmann Bubeck */ 62393d1d1dSDr. Tilmann Bubeck static void swap_inode_data(struct inode *inode1, struct inode *inode2) 63393d1d1dSDr. Tilmann Bubeck { 64393d1d1dSDr. Tilmann Bubeck loff_t isize; 65393d1d1dSDr. Tilmann Bubeck struct ext4_inode_info *ei1; 66393d1d1dSDr. Tilmann Bubeck struct ext4_inode_info *ei2; 67abdc644eSyangerkun unsigned long tmp; 68393d1d1dSDr. Tilmann Bubeck 69393d1d1dSDr. Tilmann Bubeck ei1 = EXT4_I(inode1); 70393d1d1dSDr. Tilmann Bubeck ei2 = EXT4_I(inode2); 71393d1d1dSDr. Tilmann Bubeck 729c5d58fbSJeff Layton swap(inode1->i_version, inode2->i_version); 739c5d58fbSJeff Layton swap(inode1->i_atime, inode2->i_atime); 749c5d58fbSJeff Layton swap(inode1->i_mtime, inode2->i_mtime); 75393d1d1dSDr. Tilmann Bubeck 76393d1d1dSDr. Tilmann Bubeck memswap(ei1->i_data, ei2->i_data, sizeof(ei1->i_data)); 77abdc644eSyangerkun tmp = ei1->i_flags & EXT4_FL_SHOULD_SWAP; 78abdc644eSyangerkun ei1->i_flags = (ei2->i_flags & EXT4_FL_SHOULD_SWAP) | 79abdc644eSyangerkun (ei1->i_flags & ~EXT4_FL_SHOULD_SWAP); 80abdc644eSyangerkun ei2->i_flags = tmp | (ei2->i_flags & ~EXT4_FL_SHOULD_SWAP); 819c5d58fbSJeff Layton swap(ei1->i_disksize, ei2->i_disksize); 82cde2d7a7STheodore Ts'o ext4_es_remove_extent(inode1, 0, EXT_MAX_BLOCKS); 83cde2d7a7STheodore Ts'o ext4_es_remove_extent(inode2, 0, EXT_MAX_BLOCKS); 84393d1d1dSDr. Tilmann Bubeck 85393d1d1dSDr. Tilmann Bubeck isize = i_size_read(inode1); 86393d1d1dSDr. Tilmann Bubeck i_size_write(inode1, i_size_read(inode2)); 87393d1d1dSDr. Tilmann Bubeck i_size_write(inode2, isize); 88393d1d1dSDr. Tilmann Bubeck } 89393d1d1dSDr. Tilmann Bubeck 908016e29fSHarshad Shirwadkar void ext4_reset_inode_seed(struct inode *inode) 9118aded17STheodore Ts'o { 9218aded17STheodore Ts'o struct ext4_inode_info *ei = EXT4_I(inode); 9318aded17STheodore Ts'o struct ext4_sb_info *sbi = EXT4_SB(inode->i_sb); 9418aded17STheodore Ts'o __le32 inum = cpu_to_le32(inode->i_ino); 9518aded17STheodore Ts'o __le32 gen = cpu_to_le32(inode->i_generation); 9618aded17STheodore Ts'o __u32 csum; 9718aded17STheodore Ts'o 9818aded17STheodore Ts'o if (!ext4_has_metadata_csum(inode->i_sb)) 9918aded17STheodore Ts'o return; 10018aded17STheodore Ts'o 10118aded17STheodore Ts'o csum = ext4_chksum(sbi, sbi->s_csum_seed, (__u8 *)&inum, sizeof(inum)); 10218aded17STheodore Ts'o ei->i_csum_seed = ext4_chksum(sbi, csum, (__u8 *)&gen, sizeof(gen)); 10318aded17STheodore Ts'o } 10418aded17STheodore Ts'o 105393d1d1dSDr. Tilmann Bubeck /** 106393d1d1dSDr. Tilmann Bubeck * Swap the information from the given @inode and the inode 107393d1d1dSDr. Tilmann Bubeck * EXT4_BOOT_LOADER_INO. It will basically swap i_data and all other 108393d1d1dSDr. Tilmann Bubeck * important fields of the inodes. 109393d1d1dSDr. Tilmann Bubeck * 110393d1d1dSDr. Tilmann Bubeck * @sb: the super block of the filesystem 11114f3db55SChristian Brauner * @mnt_userns: user namespace of the mount the inode was found from 112393d1d1dSDr. Tilmann Bubeck * @inode: the inode to swap with EXT4_BOOT_LOADER_INO 113393d1d1dSDr. Tilmann Bubeck * 114393d1d1dSDr. Tilmann Bubeck */ 115393d1d1dSDr. Tilmann Bubeck static long swap_inode_boot_loader(struct super_block *sb, 11614f3db55SChristian Brauner struct user_namespace *mnt_userns, 117393d1d1dSDr. Tilmann Bubeck struct inode *inode) 118393d1d1dSDr. Tilmann Bubeck { 119393d1d1dSDr. Tilmann Bubeck handle_t *handle; 120393d1d1dSDr. Tilmann Bubeck int err; 121393d1d1dSDr. Tilmann Bubeck struct inode *inode_bl; 122393d1d1dSDr. Tilmann Bubeck struct ext4_inode_info *ei_bl; 123aa507b5fSyangerkun qsize_t size, size_bl, diff; 124aa507b5fSyangerkun blkcnt_t blocks; 125aa507b5fSyangerkun unsigned short bytes; 126393d1d1dSDr. Tilmann Bubeck 1278a363970STheodore Ts'o inode_bl = ext4_iget(sb, EXT4_BOOT_LOADER_INO, EXT4_IGET_SPECIAL); 128d8558a29STheodore Ts'o if (IS_ERR(inode_bl)) 129d8558a29STheodore Ts'o return PTR_ERR(inode_bl); 130393d1d1dSDr. Tilmann Bubeck ei_bl = EXT4_I(inode_bl); 131393d1d1dSDr. Tilmann Bubeck 132393d1d1dSDr. Tilmann Bubeck /* Protect orig inodes against a truncate and make sure, 133393d1d1dSDr. Tilmann Bubeck * that only 1 swap_inode_boot_loader is running. */ 134375e289eSJ. Bruce Fields lock_two_nondirectories(inode, inode_bl); 135393d1d1dSDr. Tilmann Bubeck 13667a11611Syangerkun if (inode->i_nlink != 1 || !S_ISREG(inode->i_mode) || 13767a11611Syangerkun IS_SWAPFILE(inode) || IS_ENCRYPTED(inode) || 1386e589291STheodore Ts'o (EXT4_I(inode)->i_flags & EXT4_JOURNAL_DATA_FL) || 13967a11611Syangerkun ext4_has_inline_data(inode)) { 14067a11611Syangerkun err = -EINVAL; 14167a11611Syangerkun goto journal_err_out; 14267a11611Syangerkun } 14367a11611Syangerkun 14467a11611Syangerkun if (IS_RDONLY(inode) || IS_APPEND(inode) || IS_IMMUTABLE(inode) || 14514f3db55SChristian Brauner !inode_owner_or_capable(mnt_userns, inode) || 14621cb47beSChristian Brauner !capable(CAP_SYS_ADMIN)) { 14767a11611Syangerkun err = -EPERM; 14867a11611Syangerkun goto journal_err_out; 14967a11611Syangerkun } 15067a11611Syangerkun 151a46c68a3Syangerkun down_write(&EXT4_I(inode)->i_mmap_sem); 152a46c68a3Syangerkun err = filemap_write_and_wait(inode->i_mapping); 153a46c68a3Syangerkun if (err) 154a46c68a3Syangerkun goto err_out; 155a46c68a3Syangerkun 156a46c68a3Syangerkun err = filemap_write_and_wait(inode_bl->i_mapping); 157a46c68a3Syangerkun if (err) 158a46c68a3Syangerkun goto err_out; 159a46c68a3Syangerkun 160393d1d1dSDr. Tilmann Bubeck /* Wait for all existing dio workers */ 161393d1d1dSDr. Tilmann Bubeck inode_dio_wait(inode); 162393d1d1dSDr. Tilmann Bubeck inode_dio_wait(inode_bl); 163393d1d1dSDr. Tilmann Bubeck 16418aded17STheodore Ts'o truncate_inode_pages(&inode->i_data, 0); 16518aded17STheodore Ts'o truncate_inode_pages(&inode_bl->i_data, 0); 16618aded17STheodore Ts'o 167393d1d1dSDr. Tilmann Bubeck handle = ext4_journal_start(inode_bl, EXT4_HT_MOVE_EXTENTS, 2); 168393d1d1dSDr. Tilmann Bubeck if (IS_ERR(handle)) { 169393d1d1dSDr. Tilmann Bubeck err = -EINVAL; 170a46c68a3Syangerkun goto err_out; 171393d1d1dSDr. Tilmann Bubeck } 172aa75f4d3SHarshad Shirwadkar ext4_fc_start_ineligible(sb, EXT4_FC_REASON_SWAP_BOOT); 173393d1d1dSDr. Tilmann Bubeck 174393d1d1dSDr. Tilmann Bubeck /* Protect extent tree against block allocations via delalloc */ 175393d1d1dSDr. Tilmann Bubeck ext4_double_down_write_data_sem(inode, inode_bl); 176393d1d1dSDr. Tilmann Bubeck 177393d1d1dSDr. Tilmann Bubeck if (inode_bl->i_nlink == 0) { 178393d1d1dSDr. Tilmann Bubeck /* this inode has never been used as a BOOT_LOADER */ 179393d1d1dSDr. Tilmann Bubeck set_nlink(inode_bl, 1); 180393d1d1dSDr. Tilmann Bubeck i_uid_write(inode_bl, 0); 181393d1d1dSDr. Tilmann Bubeck i_gid_write(inode_bl, 0); 182393d1d1dSDr. Tilmann Bubeck inode_bl->i_flags = 0; 183393d1d1dSDr. Tilmann Bubeck ei_bl->i_flags = 0; 184ee73f9a5SJeff Layton inode_set_iversion(inode_bl, 1); 185393d1d1dSDr. Tilmann Bubeck i_size_write(inode_bl, 0); 186393d1d1dSDr. Tilmann Bubeck inode_bl->i_mode = S_IFREG; 187e2b911c5SDarrick J. Wong if (ext4_has_feature_extents(sb)) { 188393d1d1dSDr. Tilmann Bubeck ext4_set_inode_flag(inode_bl, EXT4_INODE_EXTENTS); 189393d1d1dSDr. Tilmann Bubeck ext4_ext_tree_init(handle, inode_bl); 190393d1d1dSDr. Tilmann Bubeck } else 191393d1d1dSDr. Tilmann Bubeck memset(ei_bl->i_data, 0, sizeof(ei_bl->i_data)); 192393d1d1dSDr. Tilmann Bubeck } 193393d1d1dSDr. Tilmann Bubeck 194aa507b5fSyangerkun err = dquot_initialize(inode); 195aa507b5fSyangerkun if (err) 196aa507b5fSyangerkun goto err_out1; 197aa507b5fSyangerkun 198aa507b5fSyangerkun size = (qsize_t)(inode->i_blocks) * (1 << 9) + inode->i_bytes; 199aa507b5fSyangerkun size_bl = (qsize_t)(inode_bl->i_blocks) * (1 << 9) + inode_bl->i_bytes; 200aa507b5fSyangerkun diff = size - size_bl; 201393d1d1dSDr. Tilmann Bubeck swap_inode_data(inode, inode_bl); 202393d1d1dSDr. Tilmann Bubeck 203eeca7ea1SDeepa Dinamani inode->i_ctime = inode_bl->i_ctime = current_time(inode); 204393d1d1dSDr. Tilmann Bubeck 20523253068STheodore Ts'o inode->i_generation = prandom_u32(); 20623253068STheodore Ts'o inode_bl->i_generation = prandom_u32(); 2078016e29fSHarshad Shirwadkar ext4_reset_inode_seed(inode); 2088016e29fSHarshad Shirwadkar ext4_reset_inode_seed(inode_bl); 209393d1d1dSDr. Tilmann Bubeck 21027bc446eSbrookxu ext4_discard_preallocations(inode, 0); 211393d1d1dSDr. Tilmann Bubeck 212393d1d1dSDr. Tilmann Bubeck err = ext4_mark_inode_dirty(handle, inode); 213393d1d1dSDr. Tilmann Bubeck if (err < 0) { 214aa507b5fSyangerkun /* No need to update quota information. */ 215393d1d1dSDr. Tilmann Bubeck ext4_warning(inode->i_sb, 216393d1d1dSDr. Tilmann Bubeck "couldn't mark inode #%lu dirty (err %d)", 217393d1d1dSDr. Tilmann Bubeck inode->i_ino, err); 218393d1d1dSDr. Tilmann Bubeck /* Revert all changes: */ 219393d1d1dSDr. Tilmann Bubeck swap_inode_data(inode, inode_bl); 22018aded17STheodore Ts'o ext4_mark_inode_dirty(handle, inode); 221aa507b5fSyangerkun goto err_out1; 222aa507b5fSyangerkun } 223aa507b5fSyangerkun 224aa507b5fSyangerkun blocks = inode_bl->i_blocks; 225aa507b5fSyangerkun bytes = inode_bl->i_bytes; 226aa507b5fSyangerkun inode_bl->i_blocks = inode->i_blocks; 227aa507b5fSyangerkun inode_bl->i_bytes = inode->i_bytes; 228393d1d1dSDr. Tilmann Bubeck err = ext4_mark_inode_dirty(handle, inode_bl); 229393d1d1dSDr. Tilmann Bubeck if (err < 0) { 230aa507b5fSyangerkun /* No need to update quota information. */ 231393d1d1dSDr. Tilmann Bubeck ext4_warning(inode_bl->i_sb, 232393d1d1dSDr. Tilmann Bubeck "couldn't mark inode #%lu dirty (err %d)", 233393d1d1dSDr. Tilmann Bubeck inode_bl->i_ino, err); 234aa507b5fSyangerkun goto revert; 235aa507b5fSyangerkun } 236aa507b5fSyangerkun 237aa507b5fSyangerkun /* Bootloader inode should not be counted into quota information. */ 238aa507b5fSyangerkun if (diff > 0) 239aa507b5fSyangerkun dquot_free_space(inode, diff); 240aa507b5fSyangerkun else 241aa507b5fSyangerkun err = dquot_alloc_space(inode, -1 * diff); 242aa507b5fSyangerkun 243aa507b5fSyangerkun if (err < 0) { 244aa507b5fSyangerkun revert: 245393d1d1dSDr. Tilmann Bubeck /* Revert all changes: */ 246aa507b5fSyangerkun inode_bl->i_blocks = blocks; 247aa507b5fSyangerkun inode_bl->i_bytes = bytes; 248393d1d1dSDr. Tilmann Bubeck swap_inode_data(inode, inode_bl); 249393d1d1dSDr. Tilmann Bubeck ext4_mark_inode_dirty(handle, inode); 25018aded17STheodore Ts'o ext4_mark_inode_dirty(handle, inode_bl); 251393d1d1dSDr. Tilmann Bubeck } 252aa507b5fSyangerkun 253aa507b5fSyangerkun err_out1: 254393d1d1dSDr. Tilmann Bubeck ext4_journal_stop(handle); 255aa75f4d3SHarshad Shirwadkar ext4_fc_stop_ineligible(sb); 256393d1d1dSDr. Tilmann Bubeck ext4_double_up_write_data_sem(inode, inode_bl); 257393d1d1dSDr. Tilmann Bubeck 258a46c68a3Syangerkun err_out: 259a46c68a3Syangerkun up_write(&EXT4_I(inode)->i_mmap_sem); 26030d29b11SZheng Liu journal_err_out: 261375e289eSJ. Bruce Fields unlock_two_nondirectories(inode, inode_bl); 262393d1d1dSDr. Tilmann Bubeck iput(inode_bl); 263393d1d1dSDr. Tilmann Bubeck return err; 264393d1d1dSDr. Tilmann Bubeck } 265393d1d1dSDr. Tilmann Bubeck 266643fa961SChandan Rajendra #ifdef CONFIG_FS_ENCRYPTION 2679bd8212fSMichael Halcrow static int uuid_is_zero(__u8 u[16]) 2689bd8212fSMichael Halcrow { 2699bd8212fSMichael Halcrow int i; 2709bd8212fSMichael Halcrow 2719bd8212fSMichael Halcrow for (i = 0; i < 16; i++) 2729bd8212fSMichael Halcrow if (u[i]) 2739bd8212fSMichael Halcrow return 0; 2749bd8212fSMichael Halcrow return 1; 2759bd8212fSMichael Halcrow } 276ba679017SEric Biggers #endif 2779bd8212fSMichael Halcrow 2782e538403SDarrick J. Wong /* 2792e538403SDarrick J. Wong * If immutable is set and we are not clearing it, we're not allowed to change 2802e538403SDarrick J. Wong * anything else in the inode. Don't error out if we're only trying to set 2812e538403SDarrick J. Wong * immutable on an immutable file. 2822e538403SDarrick J. Wong */ 2832e538403SDarrick J. Wong static int ext4_ioctl_check_immutable(struct inode *inode, __u32 new_projid, 2842e538403SDarrick J. Wong unsigned int flags) 2852e538403SDarrick J. Wong { 2862e538403SDarrick J. Wong struct ext4_inode_info *ei = EXT4_I(inode); 2872e538403SDarrick J. Wong unsigned int oldflags = ei->i_flags; 2882e538403SDarrick J. Wong 2892e538403SDarrick J. Wong if (!(oldflags & EXT4_IMMUTABLE_FL) || !(flags & EXT4_IMMUTABLE_FL)) 2902e538403SDarrick J. Wong return 0; 2912e538403SDarrick J. Wong 2922e538403SDarrick J. Wong if ((oldflags & ~EXT4_IMMUTABLE_FL) != (flags & ~EXT4_IMMUTABLE_FL)) 2932e538403SDarrick J. Wong return -EPERM; 2942e538403SDarrick J. Wong if (ext4_has_feature_project(inode->i_sb) && 2952e538403SDarrick J. Wong __kprojid_val(ei->i_projid) != new_projid) 2962e538403SDarrick J. Wong return -EPERM; 2972e538403SDarrick J. Wong 2982e538403SDarrick J. Wong return 0; 2992e538403SDarrick J. Wong } 3002e538403SDarrick J. Wong 301b383a73fSIra Weiny static void ext4_dax_dontcache(struct inode *inode, unsigned int flags) 302b383a73fSIra Weiny { 303b383a73fSIra Weiny struct ext4_inode_info *ei = EXT4_I(inode); 304b383a73fSIra Weiny 305b383a73fSIra Weiny if (S_ISDIR(inode->i_mode)) 306b383a73fSIra Weiny return; 307b383a73fSIra Weiny 308b383a73fSIra Weiny if (test_opt2(inode->i_sb, DAX_NEVER) || 309b383a73fSIra Weiny test_opt(inode->i_sb, DAX_ALWAYS)) 310b383a73fSIra Weiny return; 311b383a73fSIra Weiny 312b383a73fSIra Weiny if ((ei->i_flags ^ flags) & EXT4_DAX_FL) 313b383a73fSIra Weiny d_mark_dontcache(inode); 314b383a73fSIra Weiny } 315b383a73fSIra Weiny 316b383a73fSIra Weiny static bool dax_compatible(struct inode *inode, unsigned int oldflags, 317b383a73fSIra Weiny unsigned int flags) 318b383a73fSIra Weiny { 3194811d992STheodore Ts'o /* Allow the DAX flag to be changed on inline directories */ 3204811d992STheodore Ts'o if (S_ISDIR(inode->i_mode)) { 3214811d992STheodore Ts'o flags &= ~EXT4_INLINE_DATA_FL; 3224811d992STheodore Ts'o oldflags &= ~EXT4_INLINE_DATA_FL; 3234811d992STheodore Ts'o } 3244811d992STheodore Ts'o 325b383a73fSIra Weiny if (flags & EXT4_DAX_FL) { 326b383a73fSIra Weiny if ((oldflags & EXT4_DAX_MUT_EXCL) || 327b383a73fSIra Weiny ext4_test_inode_state(inode, 328b383a73fSIra Weiny EXT4_STATE_VERITY_IN_PROGRESS)) { 329b383a73fSIra Weiny return false; 330b383a73fSIra Weiny } 331b383a73fSIra Weiny } 332b383a73fSIra Weiny 333b383a73fSIra Weiny if ((flags & EXT4_DAX_MUT_EXCL) && (oldflags & EXT4_DAX_FL)) 334b383a73fSIra Weiny return false; 335b383a73fSIra Weiny 336b383a73fSIra Weiny return true; 337b383a73fSIra Weiny } 338b383a73fSIra Weiny 3399b7365fcSLi Xi static int ext4_ioctl_setflags(struct inode *inode, 3409b7365fcSLi Xi unsigned int flags) 341ac27a0ecSDave Kleikamp { 342617ba13bSMingming Cao struct ext4_inode_info *ei = EXT4_I(inode); 343ac27a0ecSDave Kleikamp handle_t *handle = NULL; 344fdde368eSAnton Protopopov int err = -EPERM, migrate = 0; 345617ba13bSMingming Cao struct ext4_iloc iloc; 34679906964STheodore Ts'o unsigned int oldflags, mask, i; 347b886ee3eSGabriel Krisman Bertazi struct super_block *sb = inode->i_sb; 348ac27a0ecSDave Kleikamp 349e47776a0SJan Kara /* Is it quota file? Do not allow user to mess with it */ 35002749a4cSTahsin Erdogan if (ext4_is_quota_file(inode)) 35142a74f20SDave Hansen goto flags_out; 35242a74f20SDave Hansen 353ac27a0ecSDave Kleikamp oldflags = ei->i_flags; 354ac27a0ecSDave Kleikamp /* 355ac27a0ecSDave Kleikamp * The JOURNAL_DATA flag can only be changed by 356ac27a0ecSDave Kleikamp * the relevant capability. 357ac27a0ecSDave Kleikamp */ 358fcebc794SIra Weiny if ((flags ^ oldflags) & (EXT4_JOURNAL_DATA_FL)) { 35942a74f20SDave Hansen if (!capable(CAP_SYS_RESOURCE)) 36042a74f20SDave Hansen goto flags_out; 361ac27a0ecSDave Kleikamp } 362b383a73fSIra Weiny 363b383a73fSIra Weiny if (!dax_compatible(inode, oldflags, flags)) { 364b383a73fSIra Weiny err = -EOPNOTSUPP; 365b383a73fSIra Weiny goto flags_out; 366b383a73fSIra Weiny } 367b383a73fSIra Weiny 368996bb9fdSTheodore Ts'o if ((flags ^ oldflags) & EXT4_EXTENTS_FL) 3694db46fc2SAneesh Kumar K.V migrate = 1; 370ac27a0ecSDave Kleikamp 371b886ee3eSGabriel Krisman Bertazi if ((flags ^ oldflags) & EXT4_CASEFOLD_FL) { 372b886ee3eSGabriel Krisman Bertazi if (!ext4_has_feature_casefold(sb)) { 373b886ee3eSGabriel Krisman Bertazi err = -EOPNOTSUPP; 374b886ee3eSGabriel Krisman Bertazi goto flags_out; 375b886ee3eSGabriel Krisman Bertazi } 376b886ee3eSGabriel Krisman Bertazi 377b886ee3eSGabriel Krisman Bertazi if (!S_ISDIR(inode->i_mode)) { 378b886ee3eSGabriel Krisman Bertazi err = -ENOTDIR; 379b886ee3eSGabriel Krisman Bertazi goto flags_out; 380b886ee3eSGabriel Krisman Bertazi } 381b886ee3eSGabriel Krisman Bertazi 382b886ee3eSGabriel Krisman Bertazi if (!ext4_empty_dir(inode)) { 383b886ee3eSGabriel Krisman Bertazi err = -ENOTEMPTY; 384b886ee3eSGabriel Krisman Bertazi goto flags_out; 385b886ee3eSGabriel Krisman Bertazi } 386b886ee3eSGabriel Krisman Bertazi } 387b886ee3eSGabriel Krisman Bertazi 3882e538403SDarrick J. Wong /* 3892e538403SDarrick J. Wong * Wait for all pending directio and then flush all the dirty pages 3902e538403SDarrick J. Wong * for this file. The flush marks all the pages readonly, so any 3912e538403SDarrick J. Wong * subsequent attempt to write to the file (particularly mmap pages) 3922e538403SDarrick J. Wong * will come through the filesystem and fail. 3932e538403SDarrick J. Wong */ 3942e538403SDarrick J. Wong if (S_ISREG(inode->i_mode) && !IS_IMMUTABLE(inode) && 3952e538403SDarrick J. Wong (flags & EXT4_IMMUTABLE_FL)) { 3962e538403SDarrick J. Wong inode_dio_wait(inode); 3972e538403SDarrick J. Wong err = filemap_write_and_wait(inode->i_mapping); 3982e538403SDarrick J. Wong if (err) 3992e538403SDarrick J. Wong goto flags_out; 4002e538403SDarrick J. Wong } 4012e538403SDarrick J. Wong 4029924a92aSTheodore Ts'o handle = ext4_journal_start(inode, EXT4_HT_INODE, 1); 403ac27a0ecSDave Kleikamp if (IS_ERR(handle)) { 40442a74f20SDave Hansen err = PTR_ERR(handle); 40542a74f20SDave Hansen goto flags_out; 406ac27a0ecSDave Kleikamp } 407ac27a0ecSDave Kleikamp if (IS_SYNC(inode)) 4080390131bSFrank Mayhar ext4_handle_sync(handle); 409617ba13bSMingming Cao err = ext4_reserve_inode_write(handle, inode, &iloc); 410ac27a0ecSDave Kleikamp if (err) 411ac27a0ecSDave Kleikamp goto flags_err; 412ac27a0ecSDave Kleikamp 413b383a73fSIra Weiny ext4_dax_dontcache(inode, flags); 414b383a73fSIra Weiny 41579906964STheodore Ts'o for (i = 0, mask = 1; i < 32; i++, mask <<= 1) { 41679906964STheodore Ts'o if (!(mask & EXT4_FL_USER_MODIFIABLE)) 41779906964STheodore Ts'o continue; 418f8011d93SJan Kara /* These flags get special treatment later */ 419f8011d93SJan Kara if (mask == EXT4_JOURNAL_DATA_FL || mask == EXT4_EXTENTS_FL) 420f8011d93SJan Kara continue; 42179906964STheodore Ts'o if (mask & flags) 42279906964STheodore Ts'o ext4_set_inode_flag(inode, i); 42379906964STheodore Ts'o else 42479906964STheodore Ts'o ext4_clear_inode_flag(inode, i); 42579906964STheodore Ts'o } 426ac27a0ecSDave Kleikamp 427043546e4SIra Weiny ext4_set_inode_flags(inode, false); 428043546e4SIra Weiny 429eeca7ea1SDeepa Dinamani inode->i_ctime = current_time(inode); 430ac27a0ecSDave Kleikamp 431617ba13bSMingming Cao err = ext4_mark_iloc_dirty(handle, inode, &iloc); 432ac27a0ecSDave Kleikamp flags_err: 433617ba13bSMingming Cao ext4_journal_stop(handle); 43442a74f20SDave Hansen if (err) 43542a74f20SDave Hansen goto flags_out; 436ac27a0ecSDave Kleikamp 437fcebc794SIra Weiny if ((flags ^ oldflags) & (EXT4_JOURNAL_DATA_FL)) { 438e9072d85SRoss Zwisler /* 439e9072d85SRoss Zwisler * Changes to the journaling mode can cause unsafe changes to 440ff694ab6SIra Weiny * S_DAX if the inode is DAX 441e9072d85SRoss Zwisler */ 442ff694ab6SIra Weiny if (IS_DAX(inode)) { 443e9072d85SRoss Zwisler err = -EBUSY; 444e9072d85SRoss Zwisler goto flags_out; 445e9072d85SRoss Zwisler } 446e9072d85SRoss Zwisler 447fcebc794SIra Weiny err = ext4_change_inode_journal_flag(inode, 448fcebc794SIra Weiny flags & EXT4_JOURNAL_DATA_FL); 4494db46fc2SAneesh Kumar K.V if (err) 4504db46fc2SAneesh Kumar K.V goto flags_out; 451e9072d85SRoss Zwisler } 452996bb9fdSTheodore Ts'o if (migrate) { 453996bb9fdSTheodore Ts'o if (flags & EXT4_EXTENTS_FL) 4544db46fc2SAneesh Kumar K.V err = ext4_ext_migrate(inode); 455996bb9fdSTheodore Ts'o else 456996bb9fdSTheodore Ts'o err = ext4_ind_migrate(inode); 457996bb9fdSTheodore Ts'o } 458996bb9fdSTheodore Ts'o 45942a74f20SDave Hansen flags_out: 4609b7365fcSLi Xi return err; 4619b7365fcSLi Xi } 4629b7365fcSLi Xi 4639b7365fcSLi Xi #ifdef CONFIG_QUOTA 4644db5c2e6SMiklos Szeredi static int ext4_ioctl_setproject(struct inode *inode, __u32 projid) 4659b7365fcSLi Xi { 4669b7365fcSLi Xi struct super_block *sb = inode->i_sb; 4679b7365fcSLi Xi struct ext4_inode_info *ei = EXT4_I(inode); 4689b7365fcSLi Xi int err, rc; 4699b7365fcSLi Xi handle_t *handle; 4709b7365fcSLi Xi kprojid_t kprojid; 4719b7365fcSLi Xi struct ext4_iloc iloc; 4729b7365fcSLi Xi struct ext4_inode *raw_inode; 473079788d0SWang Shilong struct dquot *transfer_to[MAXQUOTAS] = { }; 4749b7365fcSLi Xi 4750b7b7779SKaho Ng if (!ext4_has_feature_project(sb)) { 4769b7365fcSLi Xi if (projid != EXT4_DEF_PROJID) 4779b7365fcSLi Xi return -EOPNOTSUPP; 4789b7365fcSLi Xi else 4799b7365fcSLi Xi return 0; 4809b7365fcSLi Xi } 4819b7365fcSLi Xi 4829b7365fcSLi Xi if (EXT4_INODE_SIZE(sb) <= EXT4_GOOD_OLD_INODE_SIZE) 4839b7365fcSLi Xi return -EOPNOTSUPP; 4849b7365fcSLi Xi 4859b7365fcSLi Xi kprojid = make_kprojid(&init_user_ns, (projid_t)projid); 4869b7365fcSLi Xi 4879b7365fcSLi Xi if (projid_eq(kprojid, EXT4_I(inode)->i_projid)) 4889b7365fcSLi Xi return 0; 4899b7365fcSLi Xi 4909b7365fcSLi Xi err = -EPERM; 4919b7365fcSLi Xi /* Is it quota file? Do not allow user to mess with it */ 49202749a4cSTahsin Erdogan if (ext4_is_quota_file(inode)) 493dc7ac6c4SWang Shilong return err; 4949b7365fcSLi Xi 4959b7365fcSLi Xi err = ext4_get_inode_loc(inode, &iloc); 4969b7365fcSLi Xi if (err) 497dc7ac6c4SWang Shilong return err; 4989b7365fcSLi Xi 4999b7365fcSLi Xi raw_inode = ext4_raw_inode(&iloc); 5009b7365fcSLi Xi if (!EXT4_FITS_IN_INODE(raw_inode, ei, i_projid)) { 501c03b45b8SMiao Xie err = ext4_expand_extra_isize(inode, 502c03b45b8SMiao Xie EXT4_SB(sb)->s_want_extra_isize, 503c03b45b8SMiao Xie &iloc); 504c03b45b8SMiao Xie if (err) 505dc7ac6c4SWang Shilong return err; 506c03b45b8SMiao Xie } else { 5079b7365fcSLi Xi brelse(iloc.bh); 508c03b45b8SMiao Xie } 5099b7365fcSLi Xi 510182a79e0SWang Shilong err = dquot_initialize(inode); 511182a79e0SWang Shilong if (err) 512182a79e0SWang Shilong return err; 5139b7365fcSLi Xi 5149b7365fcSLi Xi handle = ext4_journal_start(inode, EXT4_HT_QUOTA, 5159b7365fcSLi Xi EXT4_QUOTA_INIT_BLOCKS(sb) + 5169b7365fcSLi Xi EXT4_QUOTA_DEL_BLOCKS(sb) + 3); 517dc7ac6c4SWang Shilong if (IS_ERR(handle)) 518dc7ac6c4SWang Shilong return PTR_ERR(handle); 5199b7365fcSLi Xi 5209b7365fcSLi Xi err = ext4_reserve_inode_write(handle, inode, &iloc); 5219b7365fcSLi Xi if (err) 5229b7365fcSLi Xi goto out_stop; 5239b7365fcSLi Xi 5249b7365fcSLi Xi transfer_to[PRJQUOTA] = dqget(sb, make_kqid_projid(kprojid)); 525ff0bc084SSeth Forshee if (!IS_ERR(transfer_to[PRJQUOTA])) { 5267a9ca53aSTahsin Erdogan 5277a9ca53aSTahsin Erdogan /* __dquot_transfer() calls back ext4_get_inode_usage() which 5287a9ca53aSTahsin Erdogan * counts xattr inode references. 5297a9ca53aSTahsin Erdogan */ 5307a9ca53aSTahsin Erdogan down_read(&EXT4_I(inode)->xattr_sem); 5319b7365fcSLi Xi err = __dquot_transfer(inode, transfer_to); 5327a9ca53aSTahsin Erdogan up_read(&EXT4_I(inode)->xattr_sem); 5339b7365fcSLi Xi dqput(transfer_to[PRJQUOTA]); 5349b7365fcSLi Xi if (err) 5359b7365fcSLi Xi goto out_dirty; 5369b7365fcSLi Xi } 537079788d0SWang Shilong 5389b7365fcSLi Xi EXT4_I(inode)->i_projid = kprojid; 539eeca7ea1SDeepa Dinamani inode->i_ctime = current_time(inode); 5409b7365fcSLi Xi out_dirty: 5419b7365fcSLi Xi rc = ext4_mark_iloc_dirty(handle, inode, &iloc); 5429b7365fcSLi Xi if (!err) 5439b7365fcSLi Xi err = rc; 5449b7365fcSLi Xi out_stop: 5459b7365fcSLi Xi ext4_journal_stop(handle); 5469b7365fcSLi Xi return err; 5479b7365fcSLi Xi } 5489b7365fcSLi Xi #else 5494db5c2e6SMiklos Szeredi static int ext4_ioctl_setproject(struct inode *inode, __u32 projid) 5509b7365fcSLi Xi { 5519b7365fcSLi Xi if (projid != EXT4_DEF_PROJID) 5529b7365fcSLi Xi return -EOPNOTSUPP; 5539b7365fcSLi Xi return 0; 5549b7365fcSLi Xi } 5559b7365fcSLi Xi #endif 5569b7365fcSLi Xi 5571a20a630SEric Biggers static int ext4_shutdown(struct super_block *sb, unsigned long arg) 558783d9485STheodore Ts'o { 559783d9485STheodore Ts'o struct ext4_sb_info *sbi = EXT4_SB(sb); 560783d9485STheodore Ts'o __u32 flags; 561783d9485STheodore Ts'o 562783d9485STheodore Ts'o if (!capable(CAP_SYS_ADMIN)) 563783d9485STheodore Ts'o return -EPERM; 564783d9485STheodore Ts'o 565783d9485STheodore Ts'o if (get_user(flags, (__u32 __user *)arg)) 566783d9485STheodore Ts'o return -EFAULT; 567783d9485STheodore Ts'o 568783d9485STheodore Ts'o if (flags > EXT4_GOING_FLAGS_NOLOGFLUSH) 569783d9485STheodore Ts'o return -EINVAL; 570783d9485STheodore Ts'o 571783d9485STheodore Ts'o if (ext4_forced_shutdown(sbi)) 572783d9485STheodore Ts'o return 0; 573783d9485STheodore Ts'o 574783d9485STheodore Ts'o ext4_msg(sb, KERN_ALERT, "shut down requested (%d)", flags); 575ccf0f32aSTheodore Ts'o trace_ext4_shutdown(sb, flags); 576783d9485STheodore Ts'o 577783d9485STheodore Ts'o switch (flags) { 578783d9485STheodore Ts'o case EXT4_GOING_FLAGS_DEFAULT: 579783d9485STheodore Ts'o freeze_bdev(sb->s_bdev); 580783d9485STheodore Ts'o set_bit(EXT4_FLAGS_SHUTDOWN, &sbi->s_ext4_flags); 581040f04bdSChristoph Hellwig thaw_bdev(sb->s_bdev); 582783d9485STheodore Ts'o break; 583783d9485STheodore Ts'o case EXT4_GOING_FLAGS_LOGFLUSH: 584783d9485STheodore Ts'o set_bit(EXT4_FLAGS_SHUTDOWN, &sbi->s_ext4_flags); 585783d9485STheodore Ts'o if (sbi->s_journal && !is_journal_aborted(sbi->s_journal)) { 586783d9485STheodore Ts'o (void) ext4_force_commit(sb); 587fb7c0244STheodore Ts'o jbd2_journal_abort(sbi->s_journal, -ESHUTDOWN); 588783d9485STheodore Ts'o } 589783d9485STheodore Ts'o break; 590783d9485STheodore Ts'o case EXT4_GOING_FLAGS_NOLOGFLUSH: 591783d9485STheodore Ts'o set_bit(EXT4_FLAGS_SHUTDOWN, &sbi->s_ext4_flags); 592a6d9946bSTheodore Ts'o if (sbi->s_journal && !is_journal_aborted(sbi->s_journal)) 593fb7c0244STheodore Ts'o jbd2_journal_abort(sbi->s_journal, -ESHUTDOWN); 594783d9485STheodore Ts'o break; 595783d9485STheodore Ts'o default: 596783d9485STheodore Ts'o return -EINVAL; 597783d9485STheodore Ts'o } 598783d9485STheodore Ts'o clear_opt(sb, DISCARD); 599783d9485STheodore Ts'o return 0; 600783d9485STheodore Ts'o } 601783d9485STheodore Ts'o 6020c9ec4beSDarrick J. Wong struct getfsmap_info { 6030c9ec4beSDarrick J. Wong struct super_block *gi_sb; 6040c9ec4beSDarrick J. Wong struct fsmap_head __user *gi_data; 6050c9ec4beSDarrick J. Wong unsigned int gi_idx; 6060c9ec4beSDarrick J. Wong __u32 gi_last_flags; 6070c9ec4beSDarrick J. Wong }; 6080c9ec4beSDarrick J. Wong 6090c9ec4beSDarrick J. Wong static int ext4_getfsmap_format(struct ext4_fsmap *xfm, void *priv) 6100c9ec4beSDarrick J. Wong { 6110c9ec4beSDarrick J. Wong struct getfsmap_info *info = priv; 6120c9ec4beSDarrick J. Wong struct fsmap fm; 6130c9ec4beSDarrick J. Wong 6140c9ec4beSDarrick J. Wong trace_ext4_getfsmap_mapping(info->gi_sb, xfm); 6150c9ec4beSDarrick J. Wong 6160c9ec4beSDarrick J. Wong info->gi_last_flags = xfm->fmr_flags; 6170c9ec4beSDarrick J. Wong ext4_fsmap_from_internal(info->gi_sb, &fm, xfm); 6180c9ec4beSDarrick J. Wong if (copy_to_user(&info->gi_data->fmh_recs[info->gi_idx++], &fm, 6190c9ec4beSDarrick J. Wong sizeof(struct fsmap))) 6200c9ec4beSDarrick J. Wong return -EFAULT; 6210c9ec4beSDarrick J. Wong 6220c9ec4beSDarrick J. Wong return 0; 6230c9ec4beSDarrick J. Wong } 6240c9ec4beSDarrick J. Wong 6250c9ec4beSDarrick J. Wong static int ext4_ioc_getfsmap(struct super_block *sb, 6260c9ec4beSDarrick J. Wong struct fsmap_head __user *arg) 6270c9ec4beSDarrick J. Wong { 6280ba33facSTheodore Ts'o struct getfsmap_info info = { NULL }; 6290c9ec4beSDarrick J. Wong struct ext4_fsmap_head xhead = {0}; 6300c9ec4beSDarrick J. Wong struct fsmap_head head; 6310c9ec4beSDarrick J. Wong bool aborted = false; 6320c9ec4beSDarrick J. Wong int error; 6330c9ec4beSDarrick J. Wong 6340c9ec4beSDarrick J. Wong if (copy_from_user(&head, arg, sizeof(struct fsmap_head))) 6350c9ec4beSDarrick J. Wong return -EFAULT; 6360c9ec4beSDarrick J. Wong if (memchr_inv(head.fmh_reserved, 0, sizeof(head.fmh_reserved)) || 6370c9ec4beSDarrick J. Wong memchr_inv(head.fmh_keys[0].fmr_reserved, 0, 6380c9ec4beSDarrick J. Wong sizeof(head.fmh_keys[0].fmr_reserved)) || 6390c9ec4beSDarrick J. Wong memchr_inv(head.fmh_keys[1].fmr_reserved, 0, 6400c9ec4beSDarrick J. Wong sizeof(head.fmh_keys[1].fmr_reserved))) 6410c9ec4beSDarrick J. Wong return -EINVAL; 6420c9ec4beSDarrick J. Wong /* 6430c9ec4beSDarrick J. Wong * ext4 doesn't report file extents at all, so the only valid 6440c9ec4beSDarrick J. Wong * file offsets are the magic ones (all zeroes or all ones). 6450c9ec4beSDarrick J. Wong */ 6460c9ec4beSDarrick J. Wong if (head.fmh_keys[0].fmr_offset || 6470c9ec4beSDarrick J. Wong (head.fmh_keys[1].fmr_offset != 0 && 6480c9ec4beSDarrick J. Wong head.fmh_keys[1].fmr_offset != -1ULL)) 6490c9ec4beSDarrick J. Wong return -EINVAL; 6500c9ec4beSDarrick J. Wong 6510c9ec4beSDarrick J. Wong xhead.fmh_iflags = head.fmh_iflags; 6520c9ec4beSDarrick J. Wong xhead.fmh_count = head.fmh_count; 6530c9ec4beSDarrick J. Wong ext4_fsmap_to_internal(sb, &xhead.fmh_keys[0], &head.fmh_keys[0]); 6540c9ec4beSDarrick J. Wong ext4_fsmap_to_internal(sb, &xhead.fmh_keys[1], &head.fmh_keys[1]); 6550c9ec4beSDarrick J. Wong 6560c9ec4beSDarrick J. Wong trace_ext4_getfsmap_low_key(sb, &xhead.fmh_keys[0]); 6570c9ec4beSDarrick J. Wong trace_ext4_getfsmap_high_key(sb, &xhead.fmh_keys[1]); 6580c9ec4beSDarrick J. Wong 6590c9ec4beSDarrick J. Wong info.gi_sb = sb; 6600c9ec4beSDarrick J. Wong info.gi_data = arg; 6610c9ec4beSDarrick J. Wong error = ext4_getfsmap(sb, &xhead, ext4_getfsmap_format, &info); 6621fc57ca5SJiapeng Chong if (error == EXT4_QUERY_RANGE_ABORT) 6630c9ec4beSDarrick J. Wong aborted = true; 6641fc57ca5SJiapeng Chong else if (error) 6650c9ec4beSDarrick J. Wong return error; 6660c9ec4beSDarrick J. Wong 6670c9ec4beSDarrick J. Wong /* If we didn't abort, set the "last" flag in the last fmx */ 6680c9ec4beSDarrick J. Wong if (!aborted && info.gi_idx) { 6690c9ec4beSDarrick J. Wong info.gi_last_flags |= FMR_OF_LAST; 6700c9ec4beSDarrick J. Wong if (copy_to_user(&info.gi_data->fmh_recs[info.gi_idx - 1].fmr_flags, 6710c9ec4beSDarrick J. Wong &info.gi_last_flags, 6720c9ec4beSDarrick J. Wong sizeof(info.gi_last_flags))) 6730c9ec4beSDarrick J. Wong return -EFAULT; 6740c9ec4beSDarrick J. Wong } 6750c9ec4beSDarrick J. Wong 6760c9ec4beSDarrick J. Wong /* copy back header */ 6770c9ec4beSDarrick J. Wong head.fmh_entries = xhead.fmh_entries; 6780c9ec4beSDarrick J. Wong head.fmh_oflags = xhead.fmh_oflags; 6790c9ec4beSDarrick J. Wong if (copy_to_user(arg, &head, sizeof(struct fsmap_head))) 6800c9ec4beSDarrick J. Wong return -EFAULT; 6810c9ec4beSDarrick J. Wong 6820c9ec4beSDarrick J. Wong return 0; 6830c9ec4beSDarrick J. Wong } 6840c9ec4beSDarrick J. Wong 685e145b35bSAl Viro static long ext4_ioctl_group_add(struct file *file, 686e145b35bSAl Viro struct ext4_new_group_data *input) 687e145b35bSAl Viro { 688e145b35bSAl Viro struct super_block *sb = file_inode(file)->i_sb; 689e145b35bSAl Viro int err, err2=0; 690e145b35bSAl Viro 691e145b35bSAl Viro err = ext4_resize_begin(sb); 692e145b35bSAl Viro if (err) 693e145b35bSAl Viro return err; 694e145b35bSAl Viro 695e145b35bSAl Viro if (ext4_has_feature_bigalloc(sb)) { 696e145b35bSAl Viro ext4_msg(sb, KERN_ERR, 697e145b35bSAl Viro "Online resizing not supported with bigalloc"); 698e145b35bSAl Viro err = -EOPNOTSUPP; 699e145b35bSAl Viro goto group_add_out; 700e145b35bSAl Viro } 701e145b35bSAl Viro 702e145b35bSAl Viro err = mnt_want_write_file(file); 703e145b35bSAl Viro if (err) 704e145b35bSAl Viro goto group_add_out; 705e145b35bSAl Viro 706e145b35bSAl Viro err = ext4_group_add(sb, input); 707e145b35bSAl Viro if (EXT4_SB(sb)->s_journal) { 708e145b35bSAl Viro jbd2_journal_lock_updates(EXT4_SB(sb)->s_journal); 70901d5d965SLeah Rumancik err2 = jbd2_journal_flush(EXT4_SB(sb)->s_journal, 0); 710e145b35bSAl Viro jbd2_journal_unlock_updates(EXT4_SB(sb)->s_journal); 711e145b35bSAl Viro } 712e145b35bSAl Viro if (err == 0) 713e145b35bSAl Viro err = err2; 714e145b35bSAl Viro mnt_drop_write_file(file); 715e145b35bSAl Viro if (!err && ext4_has_group_desc_csum(sb) && 716e145b35bSAl Viro test_opt(sb, INIT_INODE_TABLE)) 717e145b35bSAl Viro err = ext4_register_li_request(sb, input->group); 718e145b35bSAl Viro group_add_out: 719e145b35bSAl Viro ext4_resize_end(sb); 720e145b35bSAl Viro return err; 721e145b35bSAl Viro } 722e145b35bSAl Viro 7234db5c2e6SMiklos Szeredi int ext4_fileattr_get(struct dentry *dentry, struct fileattr *fa) 724dc7ac6c4SWang Shilong { 7254db5c2e6SMiklos Szeredi struct inode *inode = d_inode(dentry); 7267b0e492eSDarrick J. Wong struct ext4_inode_info *ei = EXT4_I(inode); 7274db5c2e6SMiklos Szeredi u32 flags = ei->i_flags & EXT4_FL_USER_VISIBLE; 728dc7ac6c4SWang Shilong 7294db5c2e6SMiklos Szeredi if (S_ISREG(inode->i_mode)) 7304db5c2e6SMiklos Szeredi flags &= ~FS_PROJINHERIT_FL; 731dc7ac6c4SWang Shilong 7324db5c2e6SMiklos Szeredi fileattr_fill_flags(fa, flags); 7337b0e492eSDarrick J. Wong if (ext4_has_feature_project(inode->i_sb)) 7347b0e492eSDarrick J. Wong fa->fsx_projid = from_kprojid(&init_user_ns, ei->i_projid); 7354db5c2e6SMiklos Szeredi 7364db5c2e6SMiklos Szeredi return 0; 7374db5c2e6SMiklos Szeredi } 7384db5c2e6SMiklos Szeredi 7394db5c2e6SMiklos Szeredi int ext4_fileattr_set(struct user_namespace *mnt_userns, 7404db5c2e6SMiklos Szeredi struct dentry *dentry, struct fileattr *fa) 7414db5c2e6SMiklos Szeredi { 7424db5c2e6SMiklos Szeredi struct inode *inode = d_inode(dentry); 7434db5c2e6SMiklos Szeredi u32 flags = fa->flags; 7444db5c2e6SMiklos Szeredi int err = -EOPNOTSUPP; 7454db5c2e6SMiklos Szeredi 7464db5c2e6SMiklos Szeredi ext4_fc_start_update(inode); 7474db5c2e6SMiklos Szeredi if (flags & ~EXT4_FL_USER_VISIBLE) 7484db5c2e6SMiklos Szeredi goto out; 7494db5c2e6SMiklos Szeredi 7504db5c2e6SMiklos Szeredi /* 7514db5c2e6SMiklos Szeredi * chattr(1) grabs flags via GETFLAGS, modifies the result and 7524db5c2e6SMiklos Szeredi * passes that to SETFLAGS. So we cannot easily make SETFLAGS 7534db5c2e6SMiklos Szeredi * more restrictive than just silently masking off visible but 7544db5c2e6SMiklos Szeredi * not settable flags as we always did. 7554db5c2e6SMiklos Szeredi */ 7564db5c2e6SMiklos Szeredi flags &= EXT4_FL_USER_MODIFIABLE; 7574db5c2e6SMiklos Szeredi if (ext4_mask_flags(inode->i_mode, flags) != flags) 7584db5c2e6SMiklos Szeredi goto out; 7594db5c2e6SMiklos Szeredi err = ext4_ioctl_check_immutable(inode, fa->fsx_projid, flags); 7604db5c2e6SMiklos Szeredi if (err) 7614db5c2e6SMiklos Szeredi goto out; 7624db5c2e6SMiklos Szeredi err = ext4_ioctl_setflags(inode, flags); 7634db5c2e6SMiklos Szeredi if (err) 7644db5c2e6SMiklos Szeredi goto out; 7654db5c2e6SMiklos Szeredi err = ext4_ioctl_setproject(inode, fa->fsx_projid); 7664db5c2e6SMiklos Szeredi out: 7674db5c2e6SMiklos Szeredi ext4_fc_stop_update(inode); 7684db5c2e6SMiklos Szeredi return err; 769dc7ac6c4SWang Shilong } 770dc7ac6c4SWang Shilong 771bb5835edSTheodore Ts'o /* So that the fiemap access checks can't overflow on 32 bit machines. */ 772bb5835edSTheodore Ts'o #define FIEMAP_MAX_EXTENTS (UINT_MAX / sizeof(struct fiemap_extent)) 773bb5835edSTheodore Ts'o 774bb5835edSTheodore Ts'o static int ext4_ioctl_get_es_cache(struct file *filp, unsigned long arg) 775bb5835edSTheodore Ts'o { 776bb5835edSTheodore Ts'o struct fiemap fiemap; 777bb5835edSTheodore Ts'o struct fiemap __user *ufiemap = (struct fiemap __user *) arg; 778bb5835edSTheodore Ts'o struct fiemap_extent_info fieinfo = { 0, }; 779bb5835edSTheodore Ts'o struct inode *inode = file_inode(filp); 780bb5835edSTheodore Ts'o int error; 781bb5835edSTheodore Ts'o 782bb5835edSTheodore Ts'o if (copy_from_user(&fiemap, ufiemap, sizeof(fiemap))) 783bb5835edSTheodore Ts'o return -EFAULT; 784bb5835edSTheodore Ts'o 785bb5835edSTheodore Ts'o if (fiemap.fm_extent_count > FIEMAP_MAX_EXTENTS) 786bb5835edSTheodore Ts'o return -EINVAL; 787bb5835edSTheodore Ts'o 788bb5835edSTheodore Ts'o fieinfo.fi_flags = fiemap.fm_flags; 789bb5835edSTheodore Ts'o fieinfo.fi_extents_max = fiemap.fm_extent_count; 790bb5835edSTheodore Ts'o fieinfo.fi_extents_start = ufiemap->fm_extents; 791bb5835edSTheodore Ts'o 792328e24aeSChristoph Hellwig error = ext4_get_es_cache(inode, &fieinfo, fiemap.fm_start, 793328e24aeSChristoph Hellwig fiemap.fm_length); 794bb5835edSTheodore Ts'o fiemap.fm_flags = fieinfo.fi_flags; 795bb5835edSTheodore Ts'o fiemap.fm_mapped_extents = fieinfo.fi_extents_mapped; 796bb5835edSTheodore Ts'o if (copy_to_user(ufiemap, &fiemap, sizeof(fiemap))) 797bb5835edSTheodore Ts'o error = -EFAULT; 798bb5835edSTheodore Ts'o 799bb5835edSTheodore Ts'o return error; 800bb5835edSTheodore Ts'o } 801bb5835edSTheodore Ts'o 802*351a0a3fSLeah Rumancik static int ext4_ioctl_checkpoint(struct file *filp, unsigned long arg) 803*351a0a3fSLeah Rumancik { 804*351a0a3fSLeah Rumancik int err = 0; 805*351a0a3fSLeah Rumancik __u32 flags = 0; 806*351a0a3fSLeah Rumancik unsigned int flush_flags = 0; 807*351a0a3fSLeah Rumancik struct super_block *sb = file_inode(filp)->i_sb; 808*351a0a3fSLeah Rumancik struct request_queue *q; 809*351a0a3fSLeah Rumancik 810*351a0a3fSLeah Rumancik if (copy_from_user(&flags, (__u32 __user *)arg, 811*351a0a3fSLeah Rumancik sizeof(__u32))) 812*351a0a3fSLeah Rumancik return -EFAULT; 813*351a0a3fSLeah Rumancik 814*351a0a3fSLeah Rumancik if (!capable(CAP_SYS_ADMIN)) 815*351a0a3fSLeah Rumancik return -EPERM; 816*351a0a3fSLeah Rumancik 817*351a0a3fSLeah Rumancik /* check for invalid bits set */ 818*351a0a3fSLeah Rumancik if ((flags & ~EXT4_IOC_CHECKPOINT_FLAG_VALID) || 819*351a0a3fSLeah Rumancik ((flags & JBD2_JOURNAL_FLUSH_DISCARD) && 820*351a0a3fSLeah Rumancik (flags & JBD2_JOURNAL_FLUSH_ZEROOUT))) 821*351a0a3fSLeah Rumancik return -EINVAL; 822*351a0a3fSLeah Rumancik 823*351a0a3fSLeah Rumancik if (!EXT4_SB(sb)->s_journal) 824*351a0a3fSLeah Rumancik return -ENODEV; 825*351a0a3fSLeah Rumancik 826*351a0a3fSLeah Rumancik if (flags & ~JBD2_JOURNAL_FLUSH_VALID) 827*351a0a3fSLeah Rumancik return -EINVAL; 828*351a0a3fSLeah Rumancik 829*351a0a3fSLeah Rumancik q = bdev_get_queue(EXT4_SB(sb)->s_journal->j_dev); 830*351a0a3fSLeah Rumancik if (!q) 831*351a0a3fSLeah Rumancik return -ENXIO; 832*351a0a3fSLeah Rumancik if ((flags & JBD2_JOURNAL_FLUSH_DISCARD) && !blk_queue_discard(q)) 833*351a0a3fSLeah Rumancik return -EOPNOTSUPP; 834*351a0a3fSLeah Rumancik 835*351a0a3fSLeah Rumancik if (flags & EXT4_IOC_CHECKPOINT_FLAG_DRY_RUN) 836*351a0a3fSLeah Rumancik return 0; 837*351a0a3fSLeah Rumancik 838*351a0a3fSLeah Rumancik if (flags & EXT4_IOC_CHECKPOINT_FLAG_DISCARD) 839*351a0a3fSLeah Rumancik flush_flags |= JBD2_JOURNAL_FLUSH_DISCARD; 840*351a0a3fSLeah Rumancik 841*351a0a3fSLeah Rumancik if (flags & EXT4_IOC_CHECKPOINT_FLAG_ZEROOUT) { 842*351a0a3fSLeah Rumancik flush_flags |= JBD2_JOURNAL_FLUSH_ZEROOUT; 843*351a0a3fSLeah Rumancik pr_info_ratelimited("warning: checkpointing journal with EXT4_IOC_CHECKPOINT_FLAG_ZEROOUT can be slow"); 844*351a0a3fSLeah Rumancik } 845*351a0a3fSLeah Rumancik 846*351a0a3fSLeah Rumancik jbd2_journal_lock_updates(EXT4_SB(sb)->s_journal); 847*351a0a3fSLeah Rumancik err = jbd2_journal_flush(EXT4_SB(sb)->s_journal, flush_flags); 848*351a0a3fSLeah Rumancik jbd2_journal_unlock_updates(EXT4_SB(sb)->s_journal); 849*351a0a3fSLeah Rumancik 850*351a0a3fSLeah Rumancik return err; 851*351a0a3fSLeah Rumancik } 852*351a0a3fSLeah Rumancik 853aa75f4d3SHarshad Shirwadkar static long __ext4_ioctl(struct file *filp, unsigned int cmd, unsigned long arg) 8549b7365fcSLi Xi { 8559b7365fcSLi Xi struct inode *inode = file_inode(filp); 8569b7365fcSLi Xi struct super_block *sb = inode->i_sb; 85714f3db55SChristian Brauner struct user_namespace *mnt_userns = file_mnt_user_ns(filp); 8589b7365fcSLi Xi 8599b7365fcSLi Xi ext4_debug("cmd = %u, arg = %lu\n", cmd, arg); 8609b7365fcSLi Xi 8619b7365fcSLi Xi switch (cmd) { 8620c9ec4beSDarrick J. Wong case FS_IOC_GETFSMAP: 8630c9ec4beSDarrick J. Wong return ext4_ioc_getfsmap(sb, (void __user *)arg); 864617ba13bSMingming Cao case EXT4_IOC_GETVERSION: 865617ba13bSMingming Cao case EXT4_IOC_GETVERSION_OLD: 866ac27a0ecSDave Kleikamp return put_user(inode->i_generation, (int __user *) arg); 867617ba13bSMingming Cao case EXT4_IOC_SETVERSION: 868617ba13bSMingming Cao case EXT4_IOC_SETVERSION_OLD: { 869ac27a0ecSDave Kleikamp handle_t *handle; 870617ba13bSMingming Cao struct ext4_iloc iloc; 871ac27a0ecSDave Kleikamp __u32 generation; 872ac27a0ecSDave Kleikamp int err; 873ac27a0ecSDave Kleikamp 87414f3db55SChristian Brauner if (!inode_owner_or_capable(mnt_userns, inode)) 875ac27a0ecSDave Kleikamp return -EPERM; 87642a74f20SDave Hansen 8779aa5d32bSDmitry Monakhov if (ext4_has_metadata_csum(inode->i_sb)) { 878814525f4SDarrick J. Wong ext4_warning(sb, "Setting inode version is not " 879814525f4SDarrick J. Wong "supported with metadata_csum enabled."); 880814525f4SDarrick J. Wong return -ENOTTY; 881814525f4SDarrick J. Wong } 882814525f4SDarrick J. Wong 883a561be71SAl Viro err = mnt_want_write_file(filp); 88442a74f20SDave Hansen if (err) 88542a74f20SDave Hansen return err; 88642a74f20SDave Hansen if (get_user(generation, (int __user *) arg)) { 88742a74f20SDave Hansen err = -EFAULT; 88842a74f20SDave Hansen goto setversion_out; 88942a74f20SDave Hansen } 890ac27a0ecSDave Kleikamp 8915955102cSAl Viro inode_lock(inode); 8929924a92aSTheodore Ts'o handle = ext4_journal_start(inode, EXT4_HT_INODE, 1); 89342a74f20SDave Hansen if (IS_ERR(handle)) { 89442a74f20SDave Hansen err = PTR_ERR(handle); 8956c2155b9SDjalal Harouni goto unlock_out; 89642a74f20SDave Hansen } 897617ba13bSMingming Cao err = ext4_reserve_inode_write(handle, inode, &iloc); 898ac27a0ecSDave Kleikamp if (err == 0) { 899eeca7ea1SDeepa Dinamani inode->i_ctime = current_time(inode); 900ac27a0ecSDave Kleikamp inode->i_generation = generation; 901617ba13bSMingming Cao err = ext4_mark_iloc_dirty(handle, inode, &iloc); 902ac27a0ecSDave Kleikamp } 903617ba13bSMingming Cao ext4_journal_stop(handle); 9046c2155b9SDjalal Harouni 9056c2155b9SDjalal Harouni unlock_out: 9065955102cSAl Viro inode_unlock(inode); 90742a74f20SDave Hansen setversion_out: 9082a79f17eSAl Viro mnt_drop_write_file(filp); 909ac27a0ecSDave Kleikamp return err; 910ac27a0ecSDave Kleikamp } 911617ba13bSMingming Cao case EXT4_IOC_GROUP_EXTEND: { 912617ba13bSMingming Cao ext4_fsblk_t n_blocks_count; 913ac046f1dSPeng Tao int err, err2=0; 914ac27a0ecSDave Kleikamp 9158f82f840SYongqiang Yang err = ext4_resize_begin(sb); 9168f82f840SYongqiang Yang if (err) 9178f82f840SYongqiang Yang return err; 918ac27a0ecSDave Kleikamp 919014a1770SDjalal Harouni if (get_user(n_blocks_count, (__u32 __user *)arg)) { 920014a1770SDjalal Harouni err = -EFAULT; 921014a1770SDjalal Harouni goto group_extend_out; 922014a1770SDjalal Harouni } 923ac27a0ecSDave Kleikamp 924e2b911c5SDarrick J. Wong if (ext4_has_feature_bigalloc(sb)) { 925bab08ab9STheodore Ts'o ext4_msg(sb, KERN_ERR, 926bab08ab9STheodore Ts'o "Online resizing not supported with bigalloc"); 927014a1770SDjalal Harouni err = -EOPNOTSUPP; 928014a1770SDjalal Harouni goto group_extend_out; 929bab08ab9STheodore Ts'o } 930bab08ab9STheodore Ts'o 931a561be71SAl Viro err = mnt_want_write_file(filp); 93242a74f20SDave Hansen if (err) 933014a1770SDjalal Harouni goto group_extend_out; 93442a74f20SDave Hansen 935617ba13bSMingming Cao err = ext4_group_extend(sb, EXT4_SB(sb)->s_es, n_blocks_count); 936ac046f1dSPeng Tao if (EXT4_SB(sb)->s_journal) { 937dab291afSMingming Cao jbd2_journal_lock_updates(EXT4_SB(sb)->s_journal); 93801d5d965SLeah Rumancik err2 = jbd2_journal_flush(EXT4_SB(sb)->s_journal, 0); 939dab291afSMingming Cao jbd2_journal_unlock_updates(EXT4_SB(sb)->s_journal); 940ac046f1dSPeng Tao } 9417ffe1ea8SHidehiro Kawai if (err == 0) 9427ffe1ea8SHidehiro Kawai err = err2; 9432a79f17eSAl Viro mnt_drop_write_file(filp); 944014a1770SDjalal Harouni group_extend_out: 9458f82f840SYongqiang Yang ext4_resize_end(sb); 946ac27a0ecSDave Kleikamp return err; 947ac27a0ecSDave Kleikamp } 948748de673SAkira Fujita 949748de673SAkira Fujita case EXT4_IOC_MOVE_EXT: { 950748de673SAkira Fujita struct move_extent me; 9512903ff01SAl Viro struct fd donor; 9522903ff01SAl Viro int err; 953748de673SAkira Fujita 9544a58579bSAkira Fujita if (!(filp->f_mode & FMODE_READ) || 9554a58579bSAkira Fujita !(filp->f_mode & FMODE_WRITE)) 9564a58579bSAkira Fujita return -EBADF; 9574a58579bSAkira Fujita 958748de673SAkira Fujita if (copy_from_user(&me, 959748de673SAkira Fujita (struct move_extent __user *)arg, sizeof(me))) 960748de673SAkira Fujita return -EFAULT; 9614a58579bSAkira Fujita me.moved_len = 0; 962748de673SAkira Fujita 9632903ff01SAl Viro donor = fdget(me.donor_fd); 9642903ff01SAl Viro if (!donor.file) 965748de673SAkira Fujita return -EBADF; 966748de673SAkira Fujita 9672903ff01SAl Viro if (!(donor.file->f_mode & FMODE_WRITE)) { 9684a58579bSAkira Fujita err = -EBADF; 9694a58579bSAkira Fujita goto mext_out; 970748de673SAkira Fujita } 971748de673SAkira Fujita 972e2b911c5SDarrick J. Wong if (ext4_has_feature_bigalloc(sb)) { 973bab08ab9STheodore Ts'o ext4_msg(sb, KERN_ERR, 974bab08ab9STheodore Ts'o "Online defrag not supported with bigalloc"); 975399c9b86SAl Viro err = -EOPNOTSUPP; 976399c9b86SAl Viro goto mext_out; 97773f34a5eSRoss Zwisler } else if (IS_DAX(inode)) { 97873f34a5eSRoss Zwisler ext4_msg(sb, KERN_ERR, 97973f34a5eSRoss Zwisler "Online defrag not supported with DAX"); 98073f34a5eSRoss Zwisler err = -EOPNOTSUPP; 98173f34a5eSRoss Zwisler goto mext_out; 982bab08ab9STheodore Ts'o } 983bab08ab9STheodore Ts'o 984a561be71SAl Viro err = mnt_want_write_file(filp); 9854a58579bSAkira Fujita if (err) 9864a58579bSAkira Fujita goto mext_out; 9874a58579bSAkira Fujita 9882903ff01SAl Viro err = ext4_move_extents(filp, donor.file, me.orig_start, 989748de673SAkira Fujita me.donor_start, me.len, &me.moved_len); 9902a79f17eSAl Viro mnt_drop_write_file(filp); 991748de673SAkira Fujita 992c437b273SAkira Fujita if (copy_to_user((struct move_extent __user *)arg, 993c437b273SAkira Fujita &me, sizeof(me))) 9944a58579bSAkira Fujita err = -EFAULT; 9954a58579bSAkira Fujita mext_out: 9962903ff01SAl Viro fdput(donor); 997748de673SAkira Fujita return err; 998748de673SAkira Fujita } 999748de673SAkira Fujita 1000617ba13bSMingming Cao case EXT4_IOC_GROUP_ADD: { 1001617ba13bSMingming Cao struct ext4_new_group_data input; 1002ac27a0ecSDave Kleikamp 1003617ba13bSMingming Cao if (copy_from_user(&input, (struct ext4_new_group_input __user *)arg, 1004e145b35bSAl Viro sizeof(input))) 1005e145b35bSAl Viro return -EFAULT; 1006ac27a0ecSDave Kleikamp 1007e145b35bSAl Viro return ext4_ioctl_group_add(filp, &input); 1008ac27a0ecSDave Kleikamp } 1009ac27a0ecSDave Kleikamp 1010c14c6fd5SAneesh Kumar K.V case EXT4_IOC_MIGRATE: 10112a43a878SAneesh Kumar K.V { 10122a43a878SAneesh Kumar K.V int err; 101314f3db55SChristian Brauner if (!inode_owner_or_capable(mnt_userns, inode)) 10142a43a878SAneesh Kumar K.V return -EACCES; 10152a43a878SAneesh Kumar K.V 1016a561be71SAl Viro err = mnt_want_write_file(filp); 10172a43a878SAneesh Kumar K.V if (err) 10182a43a878SAneesh Kumar K.V return err; 10192a43a878SAneesh Kumar K.V /* 10202a43a878SAneesh Kumar K.V * inode_mutex prevent write and truncate on the file. 10212a43a878SAneesh Kumar K.V * Read still goes through. We take i_data_sem in 10222a43a878SAneesh Kumar K.V * ext4_ext_swap_inode_data before we switch the 10232a43a878SAneesh Kumar K.V * inode format to prevent read. 10242a43a878SAneesh Kumar K.V */ 10255955102cSAl Viro inode_lock((inode)); 10262a43a878SAneesh Kumar K.V err = ext4_ext_migrate(inode); 10275955102cSAl Viro inode_unlock((inode)); 10282a79f17eSAl Viro mnt_drop_write_file(filp); 10292a43a878SAneesh Kumar K.V return err; 10302a43a878SAneesh Kumar K.V } 1031c14c6fd5SAneesh Kumar K.V 1032ccd2506bSTheodore Ts'o case EXT4_IOC_ALLOC_DA_BLKS: 1033ccd2506bSTheodore Ts'o { 1034ccd2506bSTheodore Ts'o int err; 103514f3db55SChristian Brauner if (!inode_owner_or_capable(mnt_userns, inode)) 1036ccd2506bSTheodore Ts'o return -EACCES; 1037ccd2506bSTheodore Ts'o 1038a561be71SAl Viro err = mnt_want_write_file(filp); 1039ccd2506bSTheodore Ts'o if (err) 1040ccd2506bSTheodore Ts'o return err; 1041ccd2506bSTheodore Ts'o err = ext4_alloc_da_blocks(inode); 10422a79f17eSAl Viro mnt_drop_write_file(filp); 1043ccd2506bSTheodore Ts'o return err; 1044ccd2506bSTheodore Ts'o } 1045ccd2506bSTheodore Ts'o 1046393d1d1dSDr. Tilmann Bubeck case EXT4_IOC_SWAP_BOOT: 10473e67cfadSDmitry Monakhov { 10483e67cfadSDmitry Monakhov int err; 1049393d1d1dSDr. Tilmann Bubeck if (!(filp->f_mode & FMODE_WRITE)) 1050393d1d1dSDr. Tilmann Bubeck return -EBADF; 10513e67cfadSDmitry Monakhov err = mnt_want_write_file(filp); 10523e67cfadSDmitry Monakhov if (err) 10533e67cfadSDmitry Monakhov return err; 105414f3db55SChristian Brauner err = swap_inode_boot_loader(sb, mnt_userns, inode); 10553e67cfadSDmitry Monakhov mnt_drop_write_file(filp); 10563e67cfadSDmitry Monakhov return err; 10573e67cfadSDmitry Monakhov } 1058393d1d1dSDr. Tilmann Bubeck 105919c5246dSYongqiang Yang case EXT4_IOC_RESIZE_FS: { 106019c5246dSYongqiang Yang ext4_fsblk_t n_blocks_count; 106119c5246dSYongqiang Yang int err = 0, err2 = 0; 10627f511862STheodore Ts'o ext4_group_t o_group = EXT4_SB(sb)->s_groups_count; 106319c5246dSYongqiang Yang 106419c5246dSYongqiang Yang if (copy_from_user(&n_blocks_count, (__u64 __user *)arg, 106519c5246dSYongqiang Yang sizeof(__u64))) { 106619c5246dSYongqiang Yang return -EFAULT; 106719c5246dSYongqiang Yang } 106819c5246dSYongqiang Yang 106919c5246dSYongqiang Yang err = ext4_resize_begin(sb); 107019c5246dSYongqiang Yang if (err) 107119c5246dSYongqiang Yang return err; 107219c5246dSYongqiang Yang 10738cae6f71SAl Viro err = mnt_want_write_file(filp); 107419c5246dSYongqiang Yang if (err) 107519c5246dSYongqiang Yang goto resizefs_out; 107619c5246dSYongqiang Yang 107719c5246dSYongqiang Yang err = ext4_resize_fs(sb, n_blocks_count); 107819c5246dSYongqiang Yang if (EXT4_SB(sb)->s_journal) { 1079aa75f4d3SHarshad Shirwadkar ext4_fc_mark_ineligible(sb, EXT4_FC_REASON_RESIZE); 108019c5246dSYongqiang Yang jbd2_journal_lock_updates(EXT4_SB(sb)->s_journal); 108101d5d965SLeah Rumancik err2 = jbd2_journal_flush(EXT4_SB(sb)->s_journal, 0); 108219c5246dSYongqiang Yang jbd2_journal_unlock_updates(EXT4_SB(sb)->s_journal); 108319c5246dSYongqiang Yang } 108419c5246dSYongqiang Yang if (err == 0) 108519c5246dSYongqiang Yang err = err2; 10868cae6f71SAl Viro mnt_drop_write_file(filp); 1087310a997fSKirill Tkhai if (!err && (o_group < EXT4_SB(sb)->s_groups_count) && 10887f511862STheodore Ts'o ext4_has_group_desc_csum(sb) && 10897f511862STheodore Ts'o test_opt(sb, INIT_INODE_TABLE)) 10907f511862STheodore Ts'o err = ext4_register_li_request(sb, o_group); 10917f511862STheodore Ts'o 109219c5246dSYongqiang Yang resizefs_out: 109319c5246dSYongqiang Yang ext4_resize_end(sb); 109419c5246dSYongqiang Yang return err; 109519c5246dSYongqiang Yang } 109619c5246dSYongqiang Yang 1097e681c047SLukas Czerner case FITRIM: 1098e681c047SLukas Czerner { 109941431792SLukas Czerner struct request_queue *q = bdev_get_queue(sb->s_bdev); 1100e681c047SLukas Czerner struct fstrim_range range; 1101e681c047SLukas Czerner int ret = 0; 1102e681c047SLukas Czerner 1103e681c047SLukas Czerner if (!capable(CAP_SYS_ADMIN)) 1104e681c047SLukas Czerner return -EPERM; 1105e681c047SLukas Czerner 110641431792SLukas Czerner if (!blk_queue_discard(q)) 110741431792SLukas Czerner return -EOPNOTSUPP; 110841431792SLukas Czerner 110918915b58SDarrick J. Wong /* 111018915b58SDarrick J. Wong * We haven't replayed the journal, so we cannot use our 111118915b58SDarrick J. Wong * block-bitmap-guided storage zapping commands. 111218915b58SDarrick J. Wong */ 111318915b58SDarrick J. Wong if (test_opt(sb, NOLOAD) && ext4_has_feature_journal(sb)) 111418915b58SDarrick J. Wong return -EROFS; 111518915b58SDarrick J. Wong 1116e6705f7cSH Hartley Sweeten if (copy_from_user(&range, (struct fstrim_range __user *)arg, 1117e681c047SLukas Czerner sizeof(range))) 1118e681c047SLukas Czerner return -EFAULT; 1119e681c047SLukas Czerner 11205c2ed62fSLukas Czerner range.minlen = max((unsigned int)range.minlen, 11215c2ed62fSLukas Czerner q->limits.discard_granularity); 1122e681c047SLukas Czerner ret = ext4_trim_fs(sb, &range); 1123e681c047SLukas Czerner if (ret < 0) 1124e681c047SLukas Czerner return ret; 1125e681c047SLukas Czerner 1126e6705f7cSH Hartley Sweeten if (copy_to_user((struct fstrim_range __user *)arg, &range, 1127e681c047SLukas Czerner sizeof(range))) 1128e681c047SLukas Czerner return -EFAULT; 1129e681c047SLukas Czerner 1130e681c047SLukas Czerner return 0; 1131e681c047SLukas Czerner } 11327869a4a6STheodore Ts'o case EXT4_IOC_PRECACHE_EXTENTS: 11337869a4a6STheodore Ts'o return ext4_ext_precache(inode); 1134e681c047SLukas Czerner 1135cb29a02dSEric Biggers case FS_IOC_SET_ENCRYPTION_POLICY: 11369a200d07SRichard Weinberger if (!ext4_has_feature_encrypt(sb)) 11379a200d07SRichard Weinberger return -EOPNOTSUPP; 1138db717d8eSEric Biggers return fscrypt_ioctl_set_policy(filp, (const void __user *)arg); 11399a200d07SRichard Weinberger 1140cb29a02dSEric Biggers case FS_IOC_GET_ENCRYPTION_PWSALT: { 1141643fa961SChandan Rajendra #ifdef CONFIG_FS_ENCRYPTION 11429bd8212fSMichael Halcrow int err, err2; 11439bd8212fSMichael Halcrow struct ext4_sb_info *sbi = EXT4_SB(sb); 11449bd8212fSMichael Halcrow handle_t *handle; 11459bd8212fSMichael Halcrow 114635997d1cSEric Biggers if (!ext4_has_feature_encrypt(sb)) 11479bd8212fSMichael Halcrow return -EOPNOTSUPP; 11489bd8212fSMichael Halcrow if (uuid_is_zero(sbi->s_es->s_encrypt_pw_salt)) { 11499bd8212fSMichael Halcrow err = mnt_want_write_file(filp); 11509bd8212fSMichael Halcrow if (err) 11519bd8212fSMichael Halcrow return err; 11529bd8212fSMichael Halcrow handle = ext4_journal_start_sb(sb, EXT4_HT_MISC, 1); 11539bd8212fSMichael Halcrow if (IS_ERR(handle)) { 11549bd8212fSMichael Halcrow err = PTR_ERR(handle); 11559bd8212fSMichael Halcrow goto pwsalt_err_exit; 11569bd8212fSMichael Halcrow } 11579bd8212fSMichael Halcrow err = ext4_journal_get_write_access(handle, sbi->s_sbh); 11589bd8212fSMichael Halcrow if (err) 11599bd8212fSMichael Halcrow goto pwsalt_err_journal; 1160dfd56c2cSJan Kara lock_buffer(sbi->s_sbh); 11619bd8212fSMichael Halcrow generate_random_uuid(sbi->s_es->s_encrypt_pw_salt); 1162dfd56c2cSJan Kara ext4_superblock_csum_set(sb); 1163dfd56c2cSJan Kara unlock_buffer(sbi->s_sbh); 11649bd8212fSMichael Halcrow err = ext4_handle_dirty_metadata(handle, NULL, 11659bd8212fSMichael Halcrow sbi->s_sbh); 11669bd8212fSMichael Halcrow pwsalt_err_journal: 11679bd8212fSMichael Halcrow err2 = ext4_journal_stop(handle); 11689bd8212fSMichael Halcrow if (err2 && !err) 11699bd8212fSMichael Halcrow err = err2; 11709bd8212fSMichael Halcrow pwsalt_err_exit: 11719bd8212fSMichael Halcrow mnt_drop_write_file(filp); 11729bd8212fSMichael Halcrow if (err) 11739bd8212fSMichael Halcrow return err; 11749bd8212fSMichael Halcrow } 1175b4ab9e29SFabian Frederick if (copy_to_user((void __user *) arg, 1176b4ab9e29SFabian Frederick sbi->s_es->s_encrypt_pw_salt, 16)) 11779bd8212fSMichael Halcrow return -EFAULT; 11789bd8212fSMichael Halcrow return 0; 1179ba679017SEric Biggers #else 1180ba679017SEric Biggers return -EOPNOTSUPP; 1181ba679017SEric Biggers #endif 11829bd8212fSMichael Halcrow } 1183cb29a02dSEric Biggers case FS_IOC_GET_ENCRYPTION_POLICY: 11840642ea24SChao Yu if (!ext4_has_feature_encrypt(sb)) 11850642ea24SChao Yu return -EOPNOTSUPP; 1186db717d8eSEric Biggers return fscrypt_ioctl_get_policy(filp, (void __user *)arg); 11879bd8212fSMichael Halcrow 118829b3692eSEric Biggers case FS_IOC_GET_ENCRYPTION_POLICY_EX: 118929b3692eSEric Biggers if (!ext4_has_feature_encrypt(sb)) 119029b3692eSEric Biggers return -EOPNOTSUPP; 119129b3692eSEric Biggers return fscrypt_ioctl_get_policy_ex(filp, (void __user *)arg); 119229b3692eSEric Biggers 119329b3692eSEric Biggers case FS_IOC_ADD_ENCRYPTION_KEY: 119429b3692eSEric Biggers if (!ext4_has_feature_encrypt(sb)) 119529b3692eSEric Biggers return -EOPNOTSUPP; 119629b3692eSEric Biggers return fscrypt_ioctl_add_key(filp, (void __user *)arg); 119729b3692eSEric Biggers 119829b3692eSEric Biggers case FS_IOC_REMOVE_ENCRYPTION_KEY: 119929b3692eSEric Biggers if (!ext4_has_feature_encrypt(sb)) 120029b3692eSEric Biggers return -EOPNOTSUPP; 120129b3692eSEric Biggers return fscrypt_ioctl_remove_key(filp, (void __user *)arg); 120229b3692eSEric Biggers 120329b3692eSEric Biggers case FS_IOC_REMOVE_ENCRYPTION_KEY_ALL_USERS: 120429b3692eSEric Biggers if (!ext4_has_feature_encrypt(sb)) 120529b3692eSEric Biggers return -EOPNOTSUPP; 120629b3692eSEric Biggers return fscrypt_ioctl_remove_key_all_users(filp, 120729b3692eSEric Biggers (void __user *)arg); 120829b3692eSEric Biggers case FS_IOC_GET_ENCRYPTION_KEY_STATUS: 120929b3692eSEric Biggers if (!ext4_has_feature_encrypt(sb)) 121029b3692eSEric Biggers return -EOPNOTSUPP; 121129b3692eSEric Biggers return fscrypt_ioctl_get_key_status(filp, (void __user *)arg); 121229b3692eSEric Biggers 12137ec9f3b4SEric Biggers case FS_IOC_GET_ENCRYPTION_NONCE: 12147ec9f3b4SEric Biggers if (!ext4_has_feature_encrypt(sb)) 12157ec9f3b4SEric Biggers return -EOPNOTSUPP; 12167ec9f3b4SEric Biggers return fscrypt_ioctl_get_nonce(filp, (void __user *)arg); 12177ec9f3b4SEric Biggers 1218b0c013e2STheodore Ts'o case EXT4_IOC_CLEAR_ES_CACHE: 1219b0c013e2STheodore Ts'o { 122014f3db55SChristian Brauner if (!inode_owner_or_capable(mnt_userns, inode)) 1221b0c013e2STheodore Ts'o return -EACCES; 1222b0c013e2STheodore Ts'o ext4_clear_inode_es(inode); 1223b0c013e2STheodore Ts'o return 0; 1224b0c013e2STheodore Ts'o } 1225b0c013e2STheodore Ts'o 12261ad3ea6eSTheodore Ts'o case EXT4_IOC_GETSTATE: 12271ad3ea6eSTheodore Ts'o { 12281ad3ea6eSTheodore Ts'o __u32 state = 0; 12291ad3ea6eSTheodore Ts'o 12301ad3ea6eSTheodore Ts'o if (ext4_test_inode_state(inode, EXT4_STATE_EXT_PRECACHED)) 12311ad3ea6eSTheodore Ts'o state |= EXT4_STATE_FLAG_EXT_PRECACHED; 12321ad3ea6eSTheodore Ts'o if (ext4_test_inode_state(inode, EXT4_STATE_NEW)) 12331ad3ea6eSTheodore Ts'o state |= EXT4_STATE_FLAG_NEW; 12341ad3ea6eSTheodore Ts'o if (ext4_test_inode_state(inode, EXT4_STATE_NEWENTRY)) 12351ad3ea6eSTheodore Ts'o state |= EXT4_STATE_FLAG_NEWENTRY; 12361ad3ea6eSTheodore Ts'o if (ext4_test_inode_state(inode, EXT4_STATE_DA_ALLOC_CLOSE)) 12371ad3ea6eSTheodore Ts'o state |= EXT4_STATE_FLAG_DA_ALLOC_CLOSE; 12381ad3ea6eSTheodore Ts'o 12391ad3ea6eSTheodore Ts'o return put_user(state, (__u32 __user *) arg); 12401ad3ea6eSTheodore Ts'o } 12411ad3ea6eSTheodore Ts'o 1242bb5835edSTheodore Ts'o case EXT4_IOC_GET_ES_CACHE: 1243bb5835edSTheodore Ts'o return ext4_ioctl_get_es_cache(filp, arg); 1244bb5835edSTheodore Ts'o 1245e9be2ac7STheodore Ts'o case EXT4_IOC_SHUTDOWN: 1246e9be2ac7STheodore Ts'o return ext4_shutdown(sb, arg); 1247c93d8f88SEric Biggers 1248c93d8f88SEric Biggers case FS_IOC_ENABLE_VERITY: 1249c93d8f88SEric Biggers if (!ext4_has_feature_verity(sb)) 1250c93d8f88SEric Biggers return -EOPNOTSUPP; 1251c93d8f88SEric Biggers return fsverity_ioctl_enable(filp, (const void __user *)arg); 1252c93d8f88SEric Biggers 1253c93d8f88SEric Biggers case FS_IOC_MEASURE_VERITY: 1254c93d8f88SEric Biggers if (!ext4_has_feature_verity(sb)) 1255c93d8f88SEric Biggers return -EOPNOTSUPP; 1256c93d8f88SEric Biggers return fsverity_ioctl_measure(filp, (void __user *)arg); 1257c93d8f88SEric Biggers 1258e17fe657SEric Biggers case FS_IOC_READ_VERITY_METADATA: 1259e17fe657SEric Biggers if (!ext4_has_feature_verity(sb)) 1260e17fe657SEric Biggers return -EOPNOTSUPP; 1261e17fe657SEric Biggers return fsverity_ioctl_read_metadata(filp, 1262e17fe657SEric Biggers (const void __user *)arg); 1263e17fe657SEric Biggers 1264*351a0a3fSLeah Rumancik case EXT4_IOC_CHECKPOINT: 1265*351a0a3fSLeah Rumancik return ext4_ioctl_checkpoint(filp, arg); 1266*351a0a3fSLeah Rumancik 1267ac27a0ecSDave Kleikamp default: 1268ac27a0ecSDave Kleikamp return -ENOTTY; 1269ac27a0ecSDave Kleikamp } 1270ac27a0ecSDave Kleikamp } 1271ac27a0ecSDave Kleikamp 1272aa75f4d3SHarshad Shirwadkar long ext4_ioctl(struct file *filp, unsigned int cmd, unsigned long arg) 1273aa75f4d3SHarshad Shirwadkar { 1274aa75f4d3SHarshad Shirwadkar long ret; 1275aa75f4d3SHarshad Shirwadkar 1276aa75f4d3SHarshad Shirwadkar ext4_fc_start_update(file_inode(filp)); 1277aa75f4d3SHarshad Shirwadkar ret = __ext4_ioctl(filp, cmd, arg); 1278aa75f4d3SHarshad Shirwadkar ext4_fc_stop_update(file_inode(filp)); 1279aa75f4d3SHarshad Shirwadkar 1280aa75f4d3SHarshad Shirwadkar return ret; 1281aa75f4d3SHarshad Shirwadkar } 1282aa75f4d3SHarshad Shirwadkar 1283ac27a0ecSDave Kleikamp #ifdef CONFIG_COMPAT 1284617ba13bSMingming Cao long ext4_compat_ioctl(struct file *file, unsigned int cmd, unsigned long arg) 1285ac27a0ecSDave Kleikamp { 1286ac27a0ecSDave Kleikamp /* These are just misnamed, they actually get/put from/to user an int */ 1287ac27a0ecSDave Kleikamp switch (cmd) { 1288617ba13bSMingming Cao case EXT4_IOC32_GETVERSION: 1289617ba13bSMingming Cao cmd = EXT4_IOC_GETVERSION; 1290ac27a0ecSDave Kleikamp break; 1291617ba13bSMingming Cao case EXT4_IOC32_SETVERSION: 1292617ba13bSMingming Cao cmd = EXT4_IOC_SETVERSION; 1293ac27a0ecSDave Kleikamp break; 1294617ba13bSMingming Cao case EXT4_IOC32_GROUP_EXTEND: 1295617ba13bSMingming Cao cmd = EXT4_IOC_GROUP_EXTEND; 1296ac27a0ecSDave Kleikamp break; 1297617ba13bSMingming Cao case EXT4_IOC32_GETVERSION_OLD: 1298617ba13bSMingming Cao cmd = EXT4_IOC_GETVERSION_OLD; 1299ac27a0ecSDave Kleikamp break; 1300617ba13bSMingming Cao case EXT4_IOC32_SETVERSION_OLD: 1301617ba13bSMingming Cao cmd = EXT4_IOC_SETVERSION_OLD; 1302ac27a0ecSDave Kleikamp break; 1303617ba13bSMingming Cao case EXT4_IOC32_GETRSVSZ: 1304617ba13bSMingming Cao cmd = EXT4_IOC_GETRSVSZ; 1305ac27a0ecSDave Kleikamp break; 1306617ba13bSMingming Cao case EXT4_IOC32_SETRSVSZ: 1307617ba13bSMingming Cao cmd = EXT4_IOC_SETRSVSZ; 1308ac27a0ecSDave Kleikamp break; 13094d92dc0fSBen Hutchings case EXT4_IOC32_GROUP_ADD: { 13104d92dc0fSBen Hutchings struct compat_ext4_new_group_input __user *uinput; 1311e145b35bSAl Viro struct ext4_new_group_data input; 13124d92dc0fSBen Hutchings int err; 13134d92dc0fSBen Hutchings 13144d92dc0fSBen Hutchings uinput = compat_ptr(arg); 13154d92dc0fSBen Hutchings err = get_user(input.group, &uinput->group); 13164d92dc0fSBen Hutchings err |= get_user(input.block_bitmap, &uinput->block_bitmap); 13174d92dc0fSBen Hutchings err |= get_user(input.inode_bitmap, &uinput->inode_bitmap); 13184d92dc0fSBen Hutchings err |= get_user(input.inode_table, &uinput->inode_table); 13194d92dc0fSBen Hutchings err |= get_user(input.blocks_count, &uinput->blocks_count); 13204d92dc0fSBen Hutchings err |= get_user(input.reserved_blocks, 13214d92dc0fSBen Hutchings &uinput->reserved_blocks); 13224d92dc0fSBen Hutchings if (err) 13234d92dc0fSBen Hutchings return -EFAULT; 1324e145b35bSAl Viro return ext4_ioctl_group_add(file, &input); 13254d92dc0fSBen Hutchings } 1326b684b2eeSChristian Borntraeger case EXT4_IOC_MOVE_EXT: 132719c5246dSYongqiang Yang case EXT4_IOC_RESIZE_FS: 1328314999dcSArnd Bergmann case FITRIM: 13297869a4a6STheodore Ts'o case EXT4_IOC_PRECACHE_EXTENTS: 1330cb29a02dSEric Biggers case FS_IOC_SET_ENCRYPTION_POLICY: 1331cb29a02dSEric Biggers case FS_IOC_GET_ENCRYPTION_PWSALT: 1332cb29a02dSEric Biggers case FS_IOC_GET_ENCRYPTION_POLICY: 133329b3692eSEric Biggers case FS_IOC_GET_ENCRYPTION_POLICY_EX: 133429b3692eSEric Biggers case FS_IOC_ADD_ENCRYPTION_KEY: 133529b3692eSEric Biggers case FS_IOC_REMOVE_ENCRYPTION_KEY: 133629b3692eSEric Biggers case FS_IOC_REMOVE_ENCRYPTION_KEY_ALL_USERS: 133729b3692eSEric Biggers case FS_IOC_GET_ENCRYPTION_KEY_STATUS: 13387ec9f3b4SEric Biggers case FS_IOC_GET_ENCRYPTION_NONCE: 1339e9be2ac7STheodore Ts'o case EXT4_IOC_SHUTDOWN: 13400c9ec4beSDarrick J. Wong case FS_IOC_GETFSMAP: 1341c93d8f88SEric Biggers case FS_IOC_ENABLE_VERITY: 1342c93d8f88SEric Biggers case FS_IOC_MEASURE_VERITY: 1343e17fe657SEric Biggers case FS_IOC_READ_VERITY_METADATA: 1344b0c013e2STheodore Ts'o case EXT4_IOC_CLEAR_ES_CACHE: 13451ad3ea6eSTheodore Ts'o case EXT4_IOC_GETSTATE: 1346bb5835edSTheodore Ts'o case EXT4_IOC_GET_ES_CACHE: 1347*351a0a3fSLeah Rumancik case EXT4_IOC_CHECKPOINT: 1348b684b2eeSChristian Borntraeger break; 1349ac27a0ecSDave Kleikamp default: 1350ac27a0ecSDave Kleikamp return -ENOIOCTLCMD; 1351ac27a0ecSDave Kleikamp } 13525cdd7b2dSAndi Kleen return ext4_ioctl(file, cmd, (unsigned long) compat_ptr(arg)); 1353ac27a0ecSDave Kleikamp } 1354ac27a0ecSDave Kleikamp #endif 1355