xref: /openbmc/linux/fs/ext4/ioctl.c (revision 4db5c2e6)
1b2441318SGreg Kroah-Hartman // SPDX-License-Identifier: GPL-2.0
2ac27a0ecSDave Kleikamp /*
3617ba13bSMingming Cao  * linux/fs/ext4/ioctl.c
4ac27a0ecSDave Kleikamp  *
5ac27a0ecSDave Kleikamp  * Copyright (C) 1993, 1994, 1995
6ac27a0ecSDave Kleikamp  * Remy Card (card@masi.ibp.fr)
7ac27a0ecSDave Kleikamp  * Laboratoire MASI - Institut Blaise Pascal
8ac27a0ecSDave Kleikamp  * Universite Pierre et Marie Curie (Paris VI)
9ac27a0ecSDave Kleikamp  */
10ac27a0ecSDave Kleikamp 
11ac27a0ecSDave Kleikamp #include <linux/fs.h>
12ac27a0ecSDave Kleikamp #include <linux/capability.h>
13ac27a0ecSDave Kleikamp #include <linux/time.h>
14ac27a0ecSDave Kleikamp #include <linux/compat.h>
1542a74f20SDave Hansen #include <linux/mount.h>
16748de673SAkira Fujita #include <linux/file.h>
179b7365fcSLi Xi #include <linux/quotaops.h>
1823253068STheodore Ts'o #include <linux/random.h>
198da4b8c4SAndy Shevchenko #include <linux/uuid.h>
207c0f6ba6SLinus Torvalds #include <linux/uaccess.h>
21783d9485STheodore Ts'o #include <linux/delay.h>
22ee73f9a5SJeff Layton #include <linux/iversion.h>
23*4db5c2e6SMiklos Szeredi #include <linux/fileattr.h>
243dcf5451SChristoph Hellwig #include "ext4_jbd2.h"
253dcf5451SChristoph Hellwig #include "ext4.h"
260c9ec4beSDarrick J. Wong #include <linux/fsmap.h>
270c9ec4beSDarrick J. Wong #include "fsmap.h"
280c9ec4beSDarrick J. Wong #include <trace/events/ext4.h>
29ac27a0ecSDave Kleikamp 
30393d1d1dSDr. Tilmann Bubeck /**
31393d1d1dSDr. Tilmann Bubeck  * Swap memory between @a and @b for @len bytes.
32393d1d1dSDr. Tilmann Bubeck  *
33393d1d1dSDr. Tilmann Bubeck  * @a:          pointer to first memory area
34393d1d1dSDr. Tilmann Bubeck  * @b:          pointer to second memory area
35393d1d1dSDr. Tilmann Bubeck  * @len:        number of bytes to swap
36393d1d1dSDr. Tilmann Bubeck  *
37393d1d1dSDr. Tilmann Bubeck  */
38393d1d1dSDr. Tilmann Bubeck static void memswap(void *a, void *b, size_t len)
39393d1d1dSDr. Tilmann Bubeck {
40393d1d1dSDr. Tilmann Bubeck 	unsigned char *ap, *bp;
41393d1d1dSDr. Tilmann Bubeck 
42393d1d1dSDr. Tilmann Bubeck 	ap = (unsigned char *)a;
43393d1d1dSDr. Tilmann Bubeck 	bp = (unsigned char *)b;
44393d1d1dSDr. Tilmann Bubeck 	while (len-- > 0) {
454b7e2db5SFabian Frederick 		swap(*ap, *bp);
46393d1d1dSDr. Tilmann Bubeck 		ap++;
47393d1d1dSDr. Tilmann Bubeck 		bp++;
48393d1d1dSDr. Tilmann Bubeck 	}
49393d1d1dSDr. Tilmann Bubeck }
50393d1d1dSDr. Tilmann Bubeck 
51393d1d1dSDr. Tilmann Bubeck /**
52393d1d1dSDr. Tilmann Bubeck  * Swap i_data and associated attributes between @inode1 and @inode2.
53393d1d1dSDr. Tilmann Bubeck  * This function is used for the primary swap between inode1 and inode2
54393d1d1dSDr. Tilmann Bubeck  * and also to revert this primary swap in case of errors.
55393d1d1dSDr. Tilmann Bubeck  *
56393d1d1dSDr. Tilmann Bubeck  * Therefore you have to make sure, that calling this method twice
57393d1d1dSDr. Tilmann Bubeck  * will revert all changes.
58393d1d1dSDr. Tilmann Bubeck  *
59393d1d1dSDr. Tilmann Bubeck  * @inode1:     pointer to first inode
60393d1d1dSDr. Tilmann Bubeck  * @inode2:     pointer to second inode
61393d1d1dSDr. Tilmann Bubeck  */
62393d1d1dSDr. Tilmann Bubeck static void swap_inode_data(struct inode *inode1, struct inode *inode2)
63393d1d1dSDr. Tilmann Bubeck {
64393d1d1dSDr. Tilmann Bubeck 	loff_t isize;
65393d1d1dSDr. Tilmann Bubeck 	struct ext4_inode_info *ei1;
66393d1d1dSDr. Tilmann Bubeck 	struct ext4_inode_info *ei2;
67abdc644eSyangerkun 	unsigned long tmp;
68393d1d1dSDr. Tilmann Bubeck 
69393d1d1dSDr. Tilmann Bubeck 	ei1 = EXT4_I(inode1);
70393d1d1dSDr. Tilmann Bubeck 	ei2 = EXT4_I(inode2);
71393d1d1dSDr. Tilmann Bubeck 
729c5d58fbSJeff Layton 	swap(inode1->i_version, inode2->i_version);
739c5d58fbSJeff Layton 	swap(inode1->i_atime, inode2->i_atime);
749c5d58fbSJeff Layton 	swap(inode1->i_mtime, inode2->i_mtime);
75393d1d1dSDr. Tilmann Bubeck 
76393d1d1dSDr. Tilmann Bubeck 	memswap(ei1->i_data, ei2->i_data, sizeof(ei1->i_data));
77abdc644eSyangerkun 	tmp = ei1->i_flags & EXT4_FL_SHOULD_SWAP;
78abdc644eSyangerkun 	ei1->i_flags = (ei2->i_flags & EXT4_FL_SHOULD_SWAP) |
79abdc644eSyangerkun 		(ei1->i_flags & ~EXT4_FL_SHOULD_SWAP);
80abdc644eSyangerkun 	ei2->i_flags = tmp | (ei2->i_flags & ~EXT4_FL_SHOULD_SWAP);
819c5d58fbSJeff Layton 	swap(ei1->i_disksize, ei2->i_disksize);
82cde2d7a7STheodore Ts'o 	ext4_es_remove_extent(inode1, 0, EXT_MAX_BLOCKS);
83cde2d7a7STheodore Ts'o 	ext4_es_remove_extent(inode2, 0, EXT_MAX_BLOCKS);
84393d1d1dSDr. Tilmann Bubeck 
85393d1d1dSDr. Tilmann Bubeck 	isize = i_size_read(inode1);
86393d1d1dSDr. Tilmann Bubeck 	i_size_write(inode1, i_size_read(inode2));
87393d1d1dSDr. Tilmann Bubeck 	i_size_write(inode2, isize);
88393d1d1dSDr. Tilmann Bubeck }
89393d1d1dSDr. Tilmann Bubeck 
908016e29fSHarshad Shirwadkar void ext4_reset_inode_seed(struct inode *inode)
9118aded17STheodore Ts'o {
9218aded17STheodore Ts'o 	struct ext4_inode_info *ei = EXT4_I(inode);
9318aded17STheodore Ts'o 	struct ext4_sb_info *sbi = EXT4_SB(inode->i_sb);
9418aded17STheodore Ts'o 	__le32 inum = cpu_to_le32(inode->i_ino);
9518aded17STheodore Ts'o 	__le32 gen = cpu_to_le32(inode->i_generation);
9618aded17STheodore Ts'o 	__u32 csum;
9718aded17STheodore Ts'o 
9818aded17STheodore Ts'o 	if (!ext4_has_metadata_csum(inode->i_sb))
9918aded17STheodore Ts'o 		return;
10018aded17STheodore Ts'o 
10118aded17STheodore Ts'o 	csum = ext4_chksum(sbi, sbi->s_csum_seed, (__u8 *)&inum, sizeof(inum));
10218aded17STheodore Ts'o 	ei->i_csum_seed = ext4_chksum(sbi, csum, (__u8 *)&gen, sizeof(gen));
10318aded17STheodore Ts'o }
10418aded17STheodore Ts'o 
105393d1d1dSDr. Tilmann Bubeck /**
106393d1d1dSDr. Tilmann Bubeck  * Swap the information from the given @inode and the inode
107393d1d1dSDr. Tilmann Bubeck  * EXT4_BOOT_LOADER_INO. It will basically swap i_data and all other
108393d1d1dSDr. Tilmann Bubeck  * important fields of the inodes.
109393d1d1dSDr. Tilmann Bubeck  *
110393d1d1dSDr. Tilmann Bubeck  * @sb:         the super block of the filesystem
11114f3db55SChristian Brauner  * @mnt_userns:	user namespace of the mount the inode was found from
112393d1d1dSDr. Tilmann Bubeck  * @inode:      the inode to swap with EXT4_BOOT_LOADER_INO
113393d1d1dSDr. Tilmann Bubeck  *
114393d1d1dSDr. Tilmann Bubeck  */
115393d1d1dSDr. Tilmann Bubeck static long swap_inode_boot_loader(struct super_block *sb,
11614f3db55SChristian Brauner 				struct user_namespace *mnt_userns,
117393d1d1dSDr. Tilmann Bubeck 				struct inode *inode)
118393d1d1dSDr. Tilmann Bubeck {
119393d1d1dSDr. Tilmann Bubeck 	handle_t *handle;
120393d1d1dSDr. Tilmann Bubeck 	int err;
121393d1d1dSDr. Tilmann Bubeck 	struct inode *inode_bl;
122393d1d1dSDr. Tilmann Bubeck 	struct ext4_inode_info *ei_bl;
123aa507b5fSyangerkun 	qsize_t size, size_bl, diff;
124aa507b5fSyangerkun 	blkcnt_t blocks;
125aa507b5fSyangerkun 	unsigned short bytes;
126393d1d1dSDr. Tilmann Bubeck 
1278a363970STheodore Ts'o 	inode_bl = ext4_iget(sb, EXT4_BOOT_LOADER_INO, EXT4_IGET_SPECIAL);
128d8558a29STheodore Ts'o 	if (IS_ERR(inode_bl))
129d8558a29STheodore Ts'o 		return PTR_ERR(inode_bl);
130393d1d1dSDr. Tilmann Bubeck 	ei_bl = EXT4_I(inode_bl);
131393d1d1dSDr. Tilmann Bubeck 
132393d1d1dSDr. Tilmann Bubeck 	/* Protect orig inodes against a truncate and make sure,
133393d1d1dSDr. Tilmann Bubeck 	 * that only 1 swap_inode_boot_loader is running. */
134375e289eSJ. Bruce Fields 	lock_two_nondirectories(inode, inode_bl);
135393d1d1dSDr. Tilmann Bubeck 
13667a11611Syangerkun 	if (inode->i_nlink != 1 || !S_ISREG(inode->i_mode) ||
13767a11611Syangerkun 	    IS_SWAPFILE(inode) || IS_ENCRYPTED(inode) ||
1386e589291STheodore Ts'o 	    (EXT4_I(inode)->i_flags & EXT4_JOURNAL_DATA_FL) ||
13967a11611Syangerkun 	    ext4_has_inline_data(inode)) {
14067a11611Syangerkun 		err = -EINVAL;
14167a11611Syangerkun 		goto journal_err_out;
14267a11611Syangerkun 	}
14367a11611Syangerkun 
14467a11611Syangerkun 	if (IS_RDONLY(inode) || IS_APPEND(inode) || IS_IMMUTABLE(inode) ||
14514f3db55SChristian Brauner 	    !inode_owner_or_capable(mnt_userns, inode) ||
14621cb47beSChristian Brauner 	    !capable(CAP_SYS_ADMIN)) {
14767a11611Syangerkun 		err = -EPERM;
14867a11611Syangerkun 		goto journal_err_out;
14967a11611Syangerkun 	}
15067a11611Syangerkun 
151a46c68a3Syangerkun 	down_write(&EXT4_I(inode)->i_mmap_sem);
152a46c68a3Syangerkun 	err = filemap_write_and_wait(inode->i_mapping);
153a46c68a3Syangerkun 	if (err)
154a46c68a3Syangerkun 		goto err_out;
155a46c68a3Syangerkun 
156a46c68a3Syangerkun 	err = filemap_write_and_wait(inode_bl->i_mapping);
157a46c68a3Syangerkun 	if (err)
158a46c68a3Syangerkun 		goto err_out;
159a46c68a3Syangerkun 
160393d1d1dSDr. Tilmann Bubeck 	/* Wait for all existing dio workers */
161393d1d1dSDr. Tilmann Bubeck 	inode_dio_wait(inode);
162393d1d1dSDr. Tilmann Bubeck 	inode_dio_wait(inode_bl);
163393d1d1dSDr. Tilmann Bubeck 
16418aded17STheodore Ts'o 	truncate_inode_pages(&inode->i_data, 0);
16518aded17STheodore Ts'o 	truncate_inode_pages(&inode_bl->i_data, 0);
16618aded17STheodore Ts'o 
167393d1d1dSDr. Tilmann Bubeck 	handle = ext4_journal_start(inode_bl, EXT4_HT_MOVE_EXTENTS, 2);
168393d1d1dSDr. Tilmann Bubeck 	if (IS_ERR(handle)) {
169393d1d1dSDr. Tilmann Bubeck 		err = -EINVAL;
170a46c68a3Syangerkun 		goto err_out;
171393d1d1dSDr. Tilmann Bubeck 	}
172aa75f4d3SHarshad Shirwadkar 	ext4_fc_start_ineligible(sb, EXT4_FC_REASON_SWAP_BOOT);
173393d1d1dSDr. Tilmann Bubeck 
174393d1d1dSDr. Tilmann Bubeck 	/* Protect extent tree against block allocations via delalloc */
175393d1d1dSDr. Tilmann Bubeck 	ext4_double_down_write_data_sem(inode, inode_bl);
176393d1d1dSDr. Tilmann Bubeck 
177393d1d1dSDr. Tilmann Bubeck 	if (inode_bl->i_nlink == 0) {
178393d1d1dSDr. Tilmann Bubeck 		/* this inode has never been used as a BOOT_LOADER */
179393d1d1dSDr. Tilmann Bubeck 		set_nlink(inode_bl, 1);
180393d1d1dSDr. Tilmann Bubeck 		i_uid_write(inode_bl, 0);
181393d1d1dSDr. Tilmann Bubeck 		i_gid_write(inode_bl, 0);
182393d1d1dSDr. Tilmann Bubeck 		inode_bl->i_flags = 0;
183393d1d1dSDr. Tilmann Bubeck 		ei_bl->i_flags = 0;
184ee73f9a5SJeff Layton 		inode_set_iversion(inode_bl, 1);
185393d1d1dSDr. Tilmann Bubeck 		i_size_write(inode_bl, 0);
186393d1d1dSDr. Tilmann Bubeck 		inode_bl->i_mode = S_IFREG;
187e2b911c5SDarrick J. Wong 		if (ext4_has_feature_extents(sb)) {
188393d1d1dSDr. Tilmann Bubeck 			ext4_set_inode_flag(inode_bl, EXT4_INODE_EXTENTS);
189393d1d1dSDr. Tilmann Bubeck 			ext4_ext_tree_init(handle, inode_bl);
190393d1d1dSDr. Tilmann Bubeck 		} else
191393d1d1dSDr. Tilmann Bubeck 			memset(ei_bl->i_data, 0, sizeof(ei_bl->i_data));
192393d1d1dSDr. Tilmann Bubeck 	}
193393d1d1dSDr. Tilmann Bubeck 
194aa507b5fSyangerkun 	err = dquot_initialize(inode);
195aa507b5fSyangerkun 	if (err)
196aa507b5fSyangerkun 		goto err_out1;
197aa507b5fSyangerkun 
198aa507b5fSyangerkun 	size = (qsize_t)(inode->i_blocks) * (1 << 9) + inode->i_bytes;
199aa507b5fSyangerkun 	size_bl = (qsize_t)(inode_bl->i_blocks) * (1 << 9) + inode_bl->i_bytes;
200aa507b5fSyangerkun 	diff = size - size_bl;
201393d1d1dSDr. Tilmann Bubeck 	swap_inode_data(inode, inode_bl);
202393d1d1dSDr. Tilmann Bubeck 
203eeca7ea1SDeepa Dinamani 	inode->i_ctime = inode_bl->i_ctime = current_time(inode);
204393d1d1dSDr. Tilmann Bubeck 
20523253068STheodore Ts'o 	inode->i_generation = prandom_u32();
20623253068STheodore Ts'o 	inode_bl->i_generation = prandom_u32();
2078016e29fSHarshad Shirwadkar 	ext4_reset_inode_seed(inode);
2088016e29fSHarshad Shirwadkar 	ext4_reset_inode_seed(inode_bl);
209393d1d1dSDr. Tilmann Bubeck 
21027bc446eSbrookxu 	ext4_discard_preallocations(inode, 0);
211393d1d1dSDr. Tilmann Bubeck 
212393d1d1dSDr. Tilmann Bubeck 	err = ext4_mark_inode_dirty(handle, inode);
213393d1d1dSDr. Tilmann Bubeck 	if (err < 0) {
214aa507b5fSyangerkun 		/* No need to update quota information. */
215393d1d1dSDr. Tilmann Bubeck 		ext4_warning(inode->i_sb,
216393d1d1dSDr. Tilmann Bubeck 			"couldn't mark inode #%lu dirty (err %d)",
217393d1d1dSDr. Tilmann Bubeck 			inode->i_ino, err);
218393d1d1dSDr. Tilmann Bubeck 		/* Revert all changes: */
219393d1d1dSDr. Tilmann Bubeck 		swap_inode_data(inode, inode_bl);
22018aded17STheodore Ts'o 		ext4_mark_inode_dirty(handle, inode);
221aa507b5fSyangerkun 		goto err_out1;
222aa507b5fSyangerkun 	}
223aa507b5fSyangerkun 
224aa507b5fSyangerkun 	blocks = inode_bl->i_blocks;
225aa507b5fSyangerkun 	bytes = inode_bl->i_bytes;
226aa507b5fSyangerkun 	inode_bl->i_blocks = inode->i_blocks;
227aa507b5fSyangerkun 	inode_bl->i_bytes = inode->i_bytes;
228393d1d1dSDr. Tilmann Bubeck 	err = ext4_mark_inode_dirty(handle, inode_bl);
229393d1d1dSDr. Tilmann Bubeck 	if (err < 0) {
230aa507b5fSyangerkun 		/* No need to update quota information. */
231393d1d1dSDr. Tilmann Bubeck 		ext4_warning(inode_bl->i_sb,
232393d1d1dSDr. Tilmann Bubeck 			"couldn't mark inode #%lu dirty (err %d)",
233393d1d1dSDr. Tilmann Bubeck 			inode_bl->i_ino, err);
234aa507b5fSyangerkun 		goto revert;
235aa507b5fSyangerkun 	}
236aa507b5fSyangerkun 
237aa507b5fSyangerkun 	/* Bootloader inode should not be counted into quota information. */
238aa507b5fSyangerkun 	if (diff > 0)
239aa507b5fSyangerkun 		dquot_free_space(inode, diff);
240aa507b5fSyangerkun 	else
241aa507b5fSyangerkun 		err = dquot_alloc_space(inode, -1 * diff);
242aa507b5fSyangerkun 
243aa507b5fSyangerkun 	if (err < 0) {
244aa507b5fSyangerkun revert:
245393d1d1dSDr. Tilmann Bubeck 		/* Revert all changes: */
246aa507b5fSyangerkun 		inode_bl->i_blocks = blocks;
247aa507b5fSyangerkun 		inode_bl->i_bytes = bytes;
248393d1d1dSDr. Tilmann Bubeck 		swap_inode_data(inode, inode_bl);
249393d1d1dSDr. Tilmann Bubeck 		ext4_mark_inode_dirty(handle, inode);
25018aded17STheodore Ts'o 		ext4_mark_inode_dirty(handle, inode_bl);
251393d1d1dSDr. Tilmann Bubeck 	}
252aa507b5fSyangerkun 
253aa507b5fSyangerkun err_out1:
254393d1d1dSDr. Tilmann Bubeck 	ext4_journal_stop(handle);
255aa75f4d3SHarshad Shirwadkar 	ext4_fc_stop_ineligible(sb);
256393d1d1dSDr. Tilmann Bubeck 	ext4_double_up_write_data_sem(inode, inode_bl);
257393d1d1dSDr. Tilmann Bubeck 
258a46c68a3Syangerkun err_out:
259a46c68a3Syangerkun 	up_write(&EXT4_I(inode)->i_mmap_sem);
26030d29b11SZheng Liu journal_err_out:
261375e289eSJ. Bruce Fields 	unlock_two_nondirectories(inode, inode_bl);
262393d1d1dSDr. Tilmann Bubeck 	iput(inode_bl);
263393d1d1dSDr. Tilmann Bubeck 	return err;
264393d1d1dSDr. Tilmann Bubeck }
265393d1d1dSDr. Tilmann Bubeck 
266643fa961SChandan Rajendra #ifdef CONFIG_FS_ENCRYPTION
2679bd8212fSMichael Halcrow static int uuid_is_zero(__u8 u[16])
2689bd8212fSMichael Halcrow {
2699bd8212fSMichael Halcrow 	int	i;
2709bd8212fSMichael Halcrow 
2719bd8212fSMichael Halcrow 	for (i = 0; i < 16; i++)
2729bd8212fSMichael Halcrow 		if (u[i])
2739bd8212fSMichael Halcrow 			return 0;
2749bd8212fSMichael Halcrow 	return 1;
2759bd8212fSMichael Halcrow }
276ba679017SEric Biggers #endif
2779bd8212fSMichael Halcrow 
2782e538403SDarrick J. Wong /*
2792e538403SDarrick J. Wong  * If immutable is set and we are not clearing it, we're not allowed to change
2802e538403SDarrick J. Wong  * anything else in the inode.  Don't error out if we're only trying to set
2812e538403SDarrick J. Wong  * immutable on an immutable file.
2822e538403SDarrick J. Wong  */
2832e538403SDarrick J. Wong static int ext4_ioctl_check_immutable(struct inode *inode, __u32 new_projid,
2842e538403SDarrick J. Wong 				      unsigned int flags)
2852e538403SDarrick J. Wong {
2862e538403SDarrick J. Wong 	struct ext4_inode_info *ei = EXT4_I(inode);
2872e538403SDarrick J. Wong 	unsigned int oldflags = ei->i_flags;
2882e538403SDarrick J. Wong 
2892e538403SDarrick J. Wong 	if (!(oldflags & EXT4_IMMUTABLE_FL) || !(flags & EXT4_IMMUTABLE_FL))
2902e538403SDarrick J. Wong 		return 0;
2912e538403SDarrick J. Wong 
2922e538403SDarrick J. Wong 	if ((oldflags & ~EXT4_IMMUTABLE_FL) != (flags & ~EXT4_IMMUTABLE_FL))
2932e538403SDarrick J. Wong 		return -EPERM;
2942e538403SDarrick J. Wong 	if (ext4_has_feature_project(inode->i_sb) &&
2952e538403SDarrick J. Wong 	    __kprojid_val(ei->i_projid) != new_projid)
2962e538403SDarrick J. Wong 		return -EPERM;
2972e538403SDarrick J. Wong 
2982e538403SDarrick J. Wong 	return 0;
2992e538403SDarrick J. Wong }
3002e538403SDarrick J. Wong 
301b383a73fSIra Weiny static void ext4_dax_dontcache(struct inode *inode, unsigned int flags)
302b383a73fSIra Weiny {
303b383a73fSIra Weiny 	struct ext4_inode_info *ei = EXT4_I(inode);
304b383a73fSIra Weiny 
305b383a73fSIra Weiny 	if (S_ISDIR(inode->i_mode))
306b383a73fSIra Weiny 		return;
307b383a73fSIra Weiny 
308b383a73fSIra Weiny 	if (test_opt2(inode->i_sb, DAX_NEVER) ||
309b383a73fSIra Weiny 	    test_opt(inode->i_sb, DAX_ALWAYS))
310b383a73fSIra Weiny 		return;
311b383a73fSIra Weiny 
312b383a73fSIra Weiny 	if ((ei->i_flags ^ flags) & EXT4_DAX_FL)
313b383a73fSIra Weiny 		d_mark_dontcache(inode);
314b383a73fSIra Weiny }
315b383a73fSIra Weiny 
316b383a73fSIra Weiny static bool dax_compatible(struct inode *inode, unsigned int oldflags,
317b383a73fSIra Weiny 			   unsigned int flags)
318b383a73fSIra Weiny {
319b383a73fSIra Weiny 	if (flags & EXT4_DAX_FL) {
320b383a73fSIra Weiny 		if ((oldflags & EXT4_DAX_MUT_EXCL) ||
321b383a73fSIra Weiny 		     ext4_test_inode_state(inode,
322b383a73fSIra Weiny 					  EXT4_STATE_VERITY_IN_PROGRESS)) {
323b383a73fSIra Weiny 			return false;
324b383a73fSIra Weiny 		}
325b383a73fSIra Weiny 	}
326b383a73fSIra Weiny 
327b383a73fSIra Weiny 	if ((flags & EXT4_DAX_MUT_EXCL) && (oldflags & EXT4_DAX_FL))
328b383a73fSIra Weiny 			return false;
329b383a73fSIra Weiny 
330b383a73fSIra Weiny 	return true;
331b383a73fSIra Weiny }
332b383a73fSIra Weiny 
3339b7365fcSLi Xi static int ext4_ioctl_setflags(struct inode *inode,
3349b7365fcSLi Xi 			       unsigned int flags)
335ac27a0ecSDave Kleikamp {
336617ba13bSMingming Cao 	struct ext4_inode_info *ei = EXT4_I(inode);
337ac27a0ecSDave Kleikamp 	handle_t *handle = NULL;
338fdde368eSAnton Protopopov 	int err = -EPERM, migrate = 0;
339617ba13bSMingming Cao 	struct ext4_iloc iloc;
34079906964STheodore Ts'o 	unsigned int oldflags, mask, i;
341b886ee3eSGabriel Krisman Bertazi 	struct super_block *sb = inode->i_sb;
342ac27a0ecSDave Kleikamp 
343e47776a0SJan Kara 	/* Is it quota file? Do not allow user to mess with it */
34402749a4cSTahsin Erdogan 	if (ext4_is_quota_file(inode))
34542a74f20SDave Hansen 		goto flags_out;
34642a74f20SDave Hansen 
347ac27a0ecSDave Kleikamp 	oldflags = ei->i_flags;
348ac27a0ecSDave Kleikamp 	/*
349ac27a0ecSDave Kleikamp 	 * The JOURNAL_DATA flag can only be changed by
350ac27a0ecSDave Kleikamp 	 * the relevant capability.
351ac27a0ecSDave Kleikamp 	 */
352fcebc794SIra Weiny 	if ((flags ^ oldflags) & (EXT4_JOURNAL_DATA_FL)) {
35342a74f20SDave Hansen 		if (!capable(CAP_SYS_RESOURCE))
35442a74f20SDave Hansen 			goto flags_out;
355ac27a0ecSDave Kleikamp 	}
356b383a73fSIra Weiny 
357b383a73fSIra Weiny 	if (!dax_compatible(inode, oldflags, flags)) {
358b383a73fSIra Weiny 		err = -EOPNOTSUPP;
359b383a73fSIra Weiny 		goto flags_out;
360b383a73fSIra Weiny 	}
361b383a73fSIra Weiny 
362996bb9fdSTheodore Ts'o 	if ((flags ^ oldflags) & EXT4_EXTENTS_FL)
3634db46fc2SAneesh Kumar K.V 		migrate = 1;
364ac27a0ecSDave Kleikamp 
365b886ee3eSGabriel Krisman Bertazi 	if ((flags ^ oldflags) & EXT4_CASEFOLD_FL) {
366b886ee3eSGabriel Krisman Bertazi 		if (!ext4_has_feature_casefold(sb)) {
367b886ee3eSGabriel Krisman Bertazi 			err = -EOPNOTSUPP;
368b886ee3eSGabriel Krisman Bertazi 			goto flags_out;
369b886ee3eSGabriel Krisman Bertazi 		}
370b886ee3eSGabriel Krisman Bertazi 
371b886ee3eSGabriel Krisman Bertazi 		if (!S_ISDIR(inode->i_mode)) {
372b886ee3eSGabriel Krisman Bertazi 			err = -ENOTDIR;
373b886ee3eSGabriel Krisman Bertazi 			goto flags_out;
374b886ee3eSGabriel Krisman Bertazi 		}
375b886ee3eSGabriel Krisman Bertazi 
376b886ee3eSGabriel Krisman Bertazi 		if (!ext4_empty_dir(inode)) {
377b886ee3eSGabriel Krisman Bertazi 			err = -ENOTEMPTY;
378b886ee3eSGabriel Krisman Bertazi 			goto flags_out;
379b886ee3eSGabriel Krisman Bertazi 		}
380b886ee3eSGabriel Krisman Bertazi 	}
381b886ee3eSGabriel Krisman Bertazi 
3822e538403SDarrick J. Wong 	/*
3832e538403SDarrick J. Wong 	 * Wait for all pending directio and then flush all the dirty pages
3842e538403SDarrick J. Wong 	 * for this file.  The flush marks all the pages readonly, so any
3852e538403SDarrick J. Wong 	 * subsequent attempt to write to the file (particularly mmap pages)
3862e538403SDarrick J. Wong 	 * will come through the filesystem and fail.
3872e538403SDarrick J. Wong 	 */
3882e538403SDarrick J. Wong 	if (S_ISREG(inode->i_mode) && !IS_IMMUTABLE(inode) &&
3892e538403SDarrick J. Wong 	    (flags & EXT4_IMMUTABLE_FL)) {
3902e538403SDarrick J. Wong 		inode_dio_wait(inode);
3912e538403SDarrick J. Wong 		err = filemap_write_and_wait(inode->i_mapping);
3922e538403SDarrick J. Wong 		if (err)
3932e538403SDarrick J. Wong 			goto flags_out;
3942e538403SDarrick J. Wong 	}
3952e538403SDarrick J. Wong 
3969924a92aSTheodore Ts'o 	handle = ext4_journal_start(inode, EXT4_HT_INODE, 1);
397ac27a0ecSDave Kleikamp 	if (IS_ERR(handle)) {
39842a74f20SDave Hansen 		err = PTR_ERR(handle);
39942a74f20SDave Hansen 		goto flags_out;
400ac27a0ecSDave Kleikamp 	}
401ac27a0ecSDave Kleikamp 	if (IS_SYNC(inode))
4020390131bSFrank Mayhar 		ext4_handle_sync(handle);
403617ba13bSMingming Cao 	err = ext4_reserve_inode_write(handle, inode, &iloc);
404ac27a0ecSDave Kleikamp 	if (err)
405ac27a0ecSDave Kleikamp 		goto flags_err;
406ac27a0ecSDave Kleikamp 
407b383a73fSIra Weiny 	ext4_dax_dontcache(inode, flags);
408b383a73fSIra Weiny 
40979906964STheodore Ts'o 	for (i = 0, mask = 1; i < 32; i++, mask <<= 1) {
41079906964STheodore Ts'o 		if (!(mask & EXT4_FL_USER_MODIFIABLE))
41179906964STheodore Ts'o 			continue;
412f8011d93SJan Kara 		/* These flags get special treatment later */
413f8011d93SJan Kara 		if (mask == EXT4_JOURNAL_DATA_FL || mask == EXT4_EXTENTS_FL)
414f8011d93SJan Kara 			continue;
41579906964STheodore Ts'o 		if (mask & flags)
41679906964STheodore Ts'o 			ext4_set_inode_flag(inode, i);
41779906964STheodore Ts'o 		else
41879906964STheodore Ts'o 			ext4_clear_inode_flag(inode, i);
41979906964STheodore Ts'o 	}
420ac27a0ecSDave Kleikamp 
421043546e4SIra Weiny 	ext4_set_inode_flags(inode, false);
422043546e4SIra Weiny 
423eeca7ea1SDeepa Dinamani 	inode->i_ctime = current_time(inode);
424ac27a0ecSDave Kleikamp 
425617ba13bSMingming Cao 	err = ext4_mark_iloc_dirty(handle, inode, &iloc);
426ac27a0ecSDave Kleikamp flags_err:
427617ba13bSMingming Cao 	ext4_journal_stop(handle);
42842a74f20SDave Hansen 	if (err)
42942a74f20SDave Hansen 		goto flags_out;
430ac27a0ecSDave Kleikamp 
431fcebc794SIra Weiny 	if ((flags ^ oldflags) & (EXT4_JOURNAL_DATA_FL)) {
432e9072d85SRoss Zwisler 		/*
433e9072d85SRoss Zwisler 		 * Changes to the journaling mode can cause unsafe changes to
434ff694ab6SIra Weiny 		 * S_DAX if the inode is DAX
435e9072d85SRoss Zwisler 		 */
436ff694ab6SIra Weiny 		if (IS_DAX(inode)) {
437e9072d85SRoss Zwisler 			err = -EBUSY;
438e9072d85SRoss Zwisler 			goto flags_out;
439e9072d85SRoss Zwisler 		}
440e9072d85SRoss Zwisler 
441fcebc794SIra Weiny 		err = ext4_change_inode_journal_flag(inode,
442fcebc794SIra Weiny 						     flags & EXT4_JOURNAL_DATA_FL);
4434db46fc2SAneesh Kumar K.V 		if (err)
4444db46fc2SAneesh Kumar K.V 			goto flags_out;
445e9072d85SRoss Zwisler 	}
446996bb9fdSTheodore Ts'o 	if (migrate) {
447996bb9fdSTheodore Ts'o 		if (flags & EXT4_EXTENTS_FL)
4484db46fc2SAneesh Kumar K.V 			err = ext4_ext_migrate(inode);
449996bb9fdSTheodore Ts'o 		else
450996bb9fdSTheodore Ts'o 			err = ext4_ind_migrate(inode);
451996bb9fdSTheodore Ts'o 	}
452996bb9fdSTheodore Ts'o 
45342a74f20SDave Hansen flags_out:
4549b7365fcSLi Xi 	return err;
4559b7365fcSLi Xi }
4569b7365fcSLi Xi 
4579b7365fcSLi Xi #ifdef CONFIG_QUOTA
458*4db5c2e6SMiklos Szeredi static int ext4_ioctl_setproject(struct inode *inode, __u32 projid)
4599b7365fcSLi Xi {
4609b7365fcSLi Xi 	struct super_block *sb = inode->i_sb;
4619b7365fcSLi Xi 	struct ext4_inode_info *ei = EXT4_I(inode);
4629b7365fcSLi Xi 	int err, rc;
4639b7365fcSLi Xi 	handle_t *handle;
4649b7365fcSLi Xi 	kprojid_t kprojid;
4659b7365fcSLi Xi 	struct ext4_iloc iloc;
4669b7365fcSLi Xi 	struct ext4_inode *raw_inode;
467079788d0SWang Shilong 	struct dquot *transfer_to[MAXQUOTAS] = { };
4689b7365fcSLi Xi 
4690b7b7779SKaho Ng 	if (!ext4_has_feature_project(sb)) {
4709b7365fcSLi Xi 		if (projid != EXT4_DEF_PROJID)
4719b7365fcSLi Xi 			return -EOPNOTSUPP;
4729b7365fcSLi Xi 		else
4739b7365fcSLi Xi 			return 0;
4749b7365fcSLi Xi 	}
4759b7365fcSLi Xi 
4769b7365fcSLi Xi 	if (EXT4_INODE_SIZE(sb) <= EXT4_GOOD_OLD_INODE_SIZE)
4779b7365fcSLi Xi 		return -EOPNOTSUPP;
4789b7365fcSLi Xi 
4799b7365fcSLi Xi 	kprojid = make_kprojid(&init_user_ns, (projid_t)projid);
4809b7365fcSLi Xi 
4819b7365fcSLi Xi 	if (projid_eq(kprojid, EXT4_I(inode)->i_projid))
4829b7365fcSLi Xi 		return 0;
4839b7365fcSLi Xi 
4849b7365fcSLi Xi 	err = -EPERM;
4859b7365fcSLi Xi 	/* Is it quota file? Do not allow user to mess with it */
48602749a4cSTahsin Erdogan 	if (ext4_is_quota_file(inode))
487dc7ac6c4SWang Shilong 		return err;
4889b7365fcSLi Xi 
4899b7365fcSLi Xi 	err = ext4_get_inode_loc(inode, &iloc);
4909b7365fcSLi Xi 	if (err)
491dc7ac6c4SWang Shilong 		return err;
4929b7365fcSLi Xi 
4939b7365fcSLi Xi 	raw_inode = ext4_raw_inode(&iloc);
4949b7365fcSLi Xi 	if (!EXT4_FITS_IN_INODE(raw_inode, ei, i_projid)) {
495c03b45b8SMiao Xie 		err = ext4_expand_extra_isize(inode,
496c03b45b8SMiao Xie 					      EXT4_SB(sb)->s_want_extra_isize,
497c03b45b8SMiao Xie 					      &iloc);
498c03b45b8SMiao Xie 		if (err)
499dc7ac6c4SWang Shilong 			return err;
500c03b45b8SMiao Xie 	} else {
5019b7365fcSLi Xi 		brelse(iloc.bh);
502c03b45b8SMiao Xie 	}
5039b7365fcSLi Xi 
504182a79e0SWang Shilong 	err = dquot_initialize(inode);
505182a79e0SWang Shilong 	if (err)
506182a79e0SWang Shilong 		return err;
5079b7365fcSLi Xi 
5089b7365fcSLi Xi 	handle = ext4_journal_start(inode, EXT4_HT_QUOTA,
5099b7365fcSLi Xi 		EXT4_QUOTA_INIT_BLOCKS(sb) +
5109b7365fcSLi Xi 		EXT4_QUOTA_DEL_BLOCKS(sb) + 3);
511dc7ac6c4SWang Shilong 	if (IS_ERR(handle))
512dc7ac6c4SWang Shilong 		return PTR_ERR(handle);
5139b7365fcSLi Xi 
5149b7365fcSLi Xi 	err = ext4_reserve_inode_write(handle, inode, &iloc);
5159b7365fcSLi Xi 	if (err)
5169b7365fcSLi Xi 		goto out_stop;
5179b7365fcSLi Xi 
5189b7365fcSLi Xi 	transfer_to[PRJQUOTA] = dqget(sb, make_kqid_projid(kprojid));
519ff0bc084SSeth Forshee 	if (!IS_ERR(transfer_to[PRJQUOTA])) {
5207a9ca53aSTahsin Erdogan 
5217a9ca53aSTahsin Erdogan 		/* __dquot_transfer() calls back ext4_get_inode_usage() which
5227a9ca53aSTahsin Erdogan 		 * counts xattr inode references.
5237a9ca53aSTahsin Erdogan 		 */
5247a9ca53aSTahsin Erdogan 		down_read(&EXT4_I(inode)->xattr_sem);
5259b7365fcSLi Xi 		err = __dquot_transfer(inode, transfer_to);
5267a9ca53aSTahsin Erdogan 		up_read(&EXT4_I(inode)->xattr_sem);
5279b7365fcSLi Xi 		dqput(transfer_to[PRJQUOTA]);
5289b7365fcSLi Xi 		if (err)
5299b7365fcSLi Xi 			goto out_dirty;
5309b7365fcSLi Xi 	}
531079788d0SWang Shilong 
5329b7365fcSLi Xi 	EXT4_I(inode)->i_projid = kprojid;
533eeca7ea1SDeepa Dinamani 	inode->i_ctime = current_time(inode);
5349b7365fcSLi Xi out_dirty:
5359b7365fcSLi Xi 	rc = ext4_mark_iloc_dirty(handle, inode, &iloc);
5369b7365fcSLi Xi 	if (!err)
5379b7365fcSLi Xi 		err = rc;
5389b7365fcSLi Xi out_stop:
5399b7365fcSLi Xi 	ext4_journal_stop(handle);
5409b7365fcSLi Xi 	return err;
5419b7365fcSLi Xi }
5429b7365fcSLi Xi #else
543*4db5c2e6SMiklos Szeredi static int ext4_ioctl_setproject(struct inode *inode, __u32 projid)
5449b7365fcSLi Xi {
5459b7365fcSLi Xi 	if (projid != EXT4_DEF_PROJID)
5469b7365fcSLi Xi 		return -EOPNOTSUPP;
5479b7365fcSLi Xi 	return 0;
5489b7365fcSLi Xi }
5499b7365fcSLi Xi #endif
5509b7365fcSLi Xi 
5511a20a630SEric Biggers static int ext4_shutdown(struct super_block *sb, unsigned long arg)
552783d9485STheodore Ts'o {
553783d9485STheodore Ts'o 	struct ext4_sb_info *sbi = EXT4_SB(sb);
554783d9485STheodore Ts'o 	__u32 flags;
555783d9485STheodore Ts'o 
556783d9485STheodore Ts'o 	if (!capable(CAP_SYS_ADMIN))
557783d9485STheodore Ts'o 		return -EPERM;
558783d9485STheodore Ts'o 
559783d9485STheodore Ts'o 	if (get_user(flags, (__u32 __user *)arg))
560783d9485STheodore Ts'o 		return -EFAULT;
561783d9485STheodore Ts'o 
562783d9485STheodore Ts'o 	if (flags > EXT4_GOING_FLAGS_NOLOGFLUSH)
563783d9485STheodore Ts'o 		return -EINVAL;
564783d9485STheodore Ts'o 
565783d9485STheodore Ts'o 	if (ext4_forced_shutdown(sbi))
566783d9485STheodore Ts'o 		return 0;
567783d9485STheodore Ts'o 
568783d9485STheodore Ts'o 	ext4_msg(sb, KERN_ALERT, "shut down requested (%d)", flags);
569ccf0f32aSTheodore Ts'o 	trace_ext4_shutdown(sb, flags);
570783d9485STheodore Ts'o 
571783d9485STheodore Ts'o 	switch (flags) {
572783d9485STheodore Ts'o 	case EXT4_GOING_FLAGS_DEFAULT:
573783d9485STheodore Ts'o 		freeze_bdev(sb->s_bdev);
574783d9485STheodore Ts'o 		set_bit(EXT4_FLAGS_SHUTDOWN, &sbi->s_ext4_flags);
575040f04bdSChristoph Hellwig 		thaw_bdev(sb->s_bdev);
576783d9485STheodore Ts'o 		break;
577783d9485STheodore Ts'o 	case EXT4_GOING_FLAGS_LOGFLUSH:
578783d9485STheodore Ts'o 		set_bit(EXT4_FLAGS_SHUTDOWN, &sbi->s_ext4_flags);
579783d9485STheodore Ts'o 		if (sbi->s_journal && !is_journal_aborted(sbi->s_journal)) {
580783d9485STheodore Ts'o 			(void) ext4_force_commit(sb);
581fb7c0244STheodore Ts'o 			jbd2_journal_abort(sbi->s_journal, -ESHUTDOWN);
582783d9485STheodore Ts'o 		}
583783d9485STheodore Ts'o 		break;
584783d9485STheodore Ts'o 	case EXT4_GOING_FLAGS_NOLOGFLUSH:
585783d9485STheodore Ts'o 		set_bit(EXT4_FLAGS_SHUTDOWN, &sbi->s_ext4_flags);
586a6d9946bSTheodore Ts'o 		if (sbi->s_journal && !is_journal_aborted(sbi->s_journal))
587fb7c0244STheodore Ts'o 			jbd2_journal_abort(sbi->s_journal, -ESHUTDOWN);
588783d9485STheodore Ts'o 		break;
589783d9485STheodore Ts'o 	default:
590783d9485STheodore Ts'o 		return -EINVAL;
591783d9485STheodore Ts'o 	}
592783d9485STheodore Ts'o 	clear_opt(sb, DISCARD);
593783d9485STheodore Ts'o 	return 0;
594783d9485STheodore Ts'o }
595783d9485STheodore Ts'o 
5960c9ec4beSDarrick J. Wong struct getfsmap_info {
5970c9ec4beSDarrick J. Wong 	struct super_block	*gi_sb;
5980c9ec4beSDarrick J. Wong 	struct fsmap_head __user *gi_data;
5990c9ec4beSDarrick J. Wong 	unsigned int		gi_idx;
6000c9ec4beSDarrick J. Wong 	__u32			gi_last_flags;
6010c9ec4beSDarrick J. Wong };
6020c9ec4beSDarrick J. Wong 
6030c9ec4beSDarrick J. Wong static int ext4_getfsmap_format(struct ext4_fsmap *xfm, void *priv)
6040c9ec4beSDarrick J. Wong {
6050c9ec4beSDarrick J. Wong 	struct getfsmap_info *info = priv;
6060c9ec4beSDarrick J. Wong 	struct fsmap fm;
6070c9ec4beSDarrick J. Wong 
6080c9ec4beSDarrick J. Wong 	trace_ext4_getfsmap_mapping(info->gi_sb, xfm);
6090c9ec4beSDarrick J. Wong 
6100c9ec4beSDarrick J. Wong 	info->gi_last_flags = xfm->fmr_flags;
6110c9ec4beSDarrick J. Wong 	ext4_fsmap_from_internal(info->gi_sb, &fm, xfm);
6120c9ec4beSDarrick J. Wong 	if (copy_to_user(&info->gi_data->fmh_recs[info->gi_idx++], &fm,
6130c9ec4beSDarrick J. Wong 			sizeof(struct fsmap)))
6140c9ec4beSDarrick J. Wong 		return -EFAULT;
6150c9ec4beSDarrick J. Wong 
6160c9ec4beSDarrick J. Wong 	return 0;
6170c9ec4beSDarrick J. Wong }
6180c9ec4beSDarrick J. Wong 
6190c9ec4beSDarrick J. Wong static int ext4_ioc_getfsmap(struct super_block *sb,
6200c9ec4beSDarrick J. Wong 			     struct fsmap_head __user *arg)
6210c9ec4beSDarrick J. Wong {
6220ba33facSTheodore Ts'o 	struct getfsmap_info info = { NULL };
6230c9ec4beSDarrick J. Wong 	struct ext4_fsmap_head xhead = {0};
6240c9ec4beSDarrick J. Wong 	struct fsmap_head head;
6250c9ec4beSDarrick J. Wong 	bool aborted = false;
6260c9ec4beSDarrick J. Wong 	int error;
6270c9ec4beSDarrick J. Wong 
6280c9ec4beSDarrick J. Wong 	if (copy_from_user(&head, arg, sizeof(struct fsmap_head)))
6290c9ec4beSDarrick J. Wong 		return -EFAULT;
6300c9ec4beSDarrick J. Wong 	if (memchr_inv(head.fmh_reserved, 0, sizeof(head.fmh_reserved)) ||
6310c9ec4beSDarrick J. Wong 	    memchr_inv(head.fmh_keys[0].fmr_reserved, 0,
6320c9ec4beSDarrick J. Wong 		       sizeof(head.fmh_keys[0].fmr_reserved)) ||
6330c9ec4beSDarrick J. Wong 	    memchr_inv(head.fmh_keys[1].fmr_reserved, 0,
6340c9ec4beSDarrick J. Wong 		       sizeof(head.fmh_keys[1].fmr_reserved)))
6350c9ec4beSDarrick J. Wong 		return -EINVAL;
6360c9ec4beSDarrick J. Wong 	/*
6370c9ec4beSDarrick J. Wong 	 * ext4 doesn't report file extents at all, so the only valid
6380c9ec4beSDarrick J. Wong 	 * file offsets are the magic ones (all zeroes or all ones).
6390c9ec4beSDarrick J. Wong 	 */
6400c9ec4beSDarrick J. Wong 	if (head.fmh_keys[0].fmr_offset ||
6410c9ec4beSDarrick J. Wong 	    (head.fmh_keys[1].fmr_offset != 0 &&
6420c9ec4beSDarrick J. Wong 	     head.fmh_keys[1].fmr_offset != -1ULL))
6430c9ec4beSDarrick J. Wong 		return -EINVAL;
6440c9ec4beSDarrick J. Wong 
6450c9ec4beSDarrick J. Wong 	xhead.fmh_iflags = head.fmh_iflags;
6460c9ec4beSDarrick J. Wong 	xhead.fmh_count = head.fmh_count;
6470c9ec4beSDarrick J. Wong 	ext4_fsmap_to_internal(sb, &xhead.fmh_keys[0], &head.fmh_keys[0]);
6480c9ec4beSDarrick J. Wong 	ext4_fsmap_to_internal(sb, &xhead.fmh_keys[1], &head.fmh_keys[1]);
6490c9ec4beSDarrick J. Wong 
6500c9ec4beSDarrick J. Wong 	trace_ext4_getfsmap_low_key(sb, &xhead.fmh_keys[0]);
6510c9ec4beSDarrick J. Wong 	trace_ext4_getfsmap_high_key(sb, &xhead.fmh_keys[1]);
6520c9ec4beSDarrick J. Wong 
6530c9ec4beSDarrick J. Wong 	info.gi_sb = sb;
6540c9ec4beSDarrick J. Wong 	info.gi_data = arg;
6550c9ec4beSDarrick J. Wong 	error = ext4_getfsmap(sb, &xhead, ext4_getfsmap_format, &info);
6560c9ec4beSDarrick J. Wong 	if (error == EXT4_QUERY_RANGE_ABORT) {
6570c9ec4beSDarrick J. Wong 		error = 0;
6580c9ec4beSDarrick J. Wong 		aborted = true;
6590c9ec4beSDarrick J. Wong 	} else if (error)
6600c9ec4beSDarrick J. Wong 		return error;
6610c9ec4beSDarrick J. Wong 
6620c9ec4beSDarrick J. Wong 	/* If we didn't abort, set the "last" flag in the last fmx */
6630c9ec4beSDarrick J. Wong 	if (!aborted && info.gi_idx) {
6640c9ec4beSDarrick J. Wong 		info.gi_last_flags |= FMR_OF_LAST;
6650c9ec4beSDarrick J. Wong 		if (copy_to_user(&info.gi_data->fmh_recs[info.gi_idx - 1].fmr_flags,
6660c9ec4beSDarrick J. Wong 				 &info.gi_last_flags,
6670c9ec4beSDarrick J. Wong 				 sizeof(info.gi_last_flags)))
6680c9ec4beSDarrick J. Wong 			return -EFAULT;
6690c9ec4beSDarrick J. Wong 	}
6700c9ec4beSDarrick J. Wong 
6710c9ec4beSDarrick J. Wong 	/* copy back header */
6720c9ec4beSDarrick J. Wong 	head.fmh_entries = xhead.fmh_entries;
6730c9ec4beSDarrick J. Wong 	head.fmh_oflags = xhead.fmh_oflags;
6740c9ec4beSDarrick J. Wong 	if (copy_to_user(arg, &head, sizeof(struct fsmap_head)))
6750c9ec4beSDarrick J. Wong 		return -EFAULT;
6760c9ec4beSDarrick J. Wong 
6770c9ec4beSDarrick J. Wong 	return 0;
6780c9ec4beSDarrick J. Wong }
6790c9ec4beSDarrick J. Wong 
680e145b35bSAl Viro static long ext4_ioctl_group_add(struct file *file,
681e145b35bSAl Viro 				 struct ext4_new_group_data *input)
682e145b35bSAl Viro {
683e145b35bSAl Viro 	struct super_block *sb = file_inode(file)->i_sb;
684e145b35bSAl Viro 	int err, err2=0;
685e145b35bSAl Viro 
686e145b35bSAl Viro 	err = ext4_resize_begin(sb);
687e145b35bSAl Viro 	if (err)
688e145b35bSAl Viro 		return err;
689e145b35bSAl Viro 
690e145b35bSAl Viro 	if (ext4_has_feature_bigalloc(sb)) {
691e145b35bSAl Viro 		ext4_msg(sb, KERN_ERR,
692e145b35bSAl Viro 			 "Online resizing not supported with bigalloc");
693e145b35bSAl Viro 		err = -EOPNOTSUPP;
694e145b35bSAl Viro 		goto group_add_out;
695e145b35bSAl Viro 	}
696e145b35bSAl Viro 
697e145b35bSAl Viro 	err = mnt_want_write_file(file);
698e145b35bSAl Viro 	if (err)
699e145b35bSAl Viro 		goto group_add_out;
700e145b35bSAl Viro 
701e145b35bSAl Viro 	err = ext4_group_add(sb, input);
702e145b35bSAl Viro 	if (EXT4_SB(sb)->s_journal) {
703e145b35bSAl Viro 		jbd2_journal_lock_updates(EXT4_SB(sb)->s_journal);
704e145b35bSAl Viro 		err2 = jbd2_journal_flush(EXT4_SB(sb)->s_journal);
705e145b35bSAl Viro 		jbd2_journal_unlock_updates(EXT4_SB(sb)->s_journal);
706e145b35bSAl Viro 	}
707e145b35bSAl Viro 	if (err == 0)
708e145b35bSAl Viro 		err = err2;
709e145b35bSAl Viro 	mnt_drop_write_file(file);
710e145b35bSAl Viro 	if (!err && ext4_has_group_desc_csum(sb) &&
711e145b35bSAl Viro 	    test_opt(sb, INIT_INODE_TABLE))
712e145b35bSAl Viro 		err = ext4_register_li_request(sb, input->group);
713e145b35bSAl Viro group_add_out:
714e145b35bSAl Viro 	ext4_resize_end(sb);
715e145b35bSAl Viro 	return err;
716e145b35bSAl Viro }
717e145b35bSAl Viro 
718*4db5c2e6SMiklos Szeredi int ext4_fileattr_get(struct dentry *dentry, struct fileattr *fa)
719dc7ac6c4SWang Shilong {
720*4db5c2e6SMiklos Szeredi 	struct inode *inode = d_inode(dentry);
7217b0e492eSDarrick J. Wong 	struct ext4_inode_info *ei = EXT4_I(inode);
722*4db5c2e6SMiklos Szeredi 	u32 flags = ei->i_flags & EXT4_FL_USER_VISIBLE;
723dc7ac6c4SWang Shilong 
724*4db5c2e6SMiklos Szeredi 	if (S_ISREG(inode->i_mode))
725*4db5c2e6SMiklos Szeredi 		flags &= ~FS_PROJINHERIT_FL;
726dc7ac6c4SWang Shilong 
727*4db5c2e6SMiklos Szeredi 	fileattr_fill_flags(fa, flags);
7287b0e492eSDarrick J. Wong 	if (ext4_has_feature_project(inode->i_sb))
7297b0e492eSDarrick J. Wong 		fa->fsx_projid = from_kprojid(&init_user_ns, ei->i_projid);
730*4db5c2e6SMiklos Szeredi 
731*4db5c2e6SMiklos Szeredi 	return 0;
732*4db5c2e6SMiklos Szeredi }
733*4db5c2e6SMiklos Szeredi 
734*4db5c2e6SMiklos Szeredi int ext4_fileattr_set(struct user_namespace *mnt_userns,
735*4db5c2e6SMiklos Szeredi 		      struct dentry *dentry, struct fileattr *fa)
736*4db5c2e6SMiklos Szeredi {
737*4db5c2e6SMiklos Szeredi 	struct inode *inode = d_inode(dentry);
738*4db5c2e6SMiklos Szeredi 	u32 flags = fa->flags;
739*4db5c2e6SMiklos Szeredi 	int err = -EOPNOTSUPP;
740*4db5c2e6SMiklos Szeredi 
741*4db5c2e6SMiklos Szeredi 	ext4_fc_start_update(inode);
742*4db5c2e6SMiklos Szeredi 	if (flags & ~EXT4_FL_USER_VISIBLE)
743*4db5c2e6SMiklos Szeredi 		goto out;
744*4db5c2e6SMiklos Szeredi 
745*4db5c2e6SMiklos Szeredi 	/*
746*4db5c2e6SMiklos Szeredi 	 * chattr(1) grabs flags via GETFLAGS, modifies the result and
747*4db5c2e6SMiklos Szeredi 	 * passes that to SETFLAGS. So we cannot easily make SETFLAGS
748*4db5c2e6SMiklos Szeredi 	 * more restrictive than just silently masking off visible but
749*4db5c2e6SMiklos Szeredi 	 * not settable flags as we always did.
750*4db5c2e6SMiklos Szeredi 	 */
751*4db5c2e6SMiklos Szeredi 	flags &= EXT4_FL_USER_MODIFIABLE;
752*4db5c2e6SMiklos Szeredi 	if (ext4_mask_flags(inode->i_mode, flags) != flags)
753*4db5c2e6SMiklos Szeredi 		goto out;
754*4db5c2e6SMiklos Szeredi 	err = ext4_ioctl_check_immutable(inode, fa->fsx_projid, flags);
755*4db5c2e6SMiklos Szeredi 	if (err)
756*4db5c2e6SMiklos Szeredi 		goto out;
757*4db5c2e6SMiklos Szeredi 	err = ext4_ioctl_setflags(inode, flags);
758*4db5c2e6SMiklos Szeredi 	if (err)
759*4db5c2e6SMiklos Szeredi 		goto out;
760*4db5c2e6SMiklos Szeredi 	err = ext4_ioctl_setproject(inode, fa->fsx_projid);
761*4db5c2e6SMiklos Szeredi out:
762*4db5c2e6SMiklos Szeredi 	ext4_fc_stop_update(inode);
763*4db5c2e6SMiklos Szeredi 	return err;
764dc7ac6c4SWang Shilong }
765dc7ac6c4SWang Shilong 
766bb5835edSTheodore Ts'o /* So that the fiemap access checks can't overflow on 32 bit machines. */
767bb5835edSTheodore Ts'o #define FIEMAP_MAX_EXTENTS	(UINT_MAX / sizeof(struct fiemap_extent))
768bb5835edSTheodore Ts'o 
769bb5835edSTheodore Ts'o static int ext4_ioctl_get_es_cache(struct file *filp, unsigned long arg)
770bb5835edSTheodore Ts'o {
771bb5835edSTheodore Ts'o 	struct fiemap fiemap;
772bb5835edSTheodore Ts'o 	struct fiemap __user *ufiemap = (struct fiemap __user *) arg;
773bb5835edSTheodore Ts'o 	struct fiemap_extent_info fieinfo = { 0, };
774bb5835edSTheodore Ts'o 	struct inode *inode = file_inode(filp);
775bb5835edSTheodore Ts'o 	int error;
776bb5835edSTheodore Ts'o 
777bb5835edSTheodore Ts'o 	if (copy_from_user(&fiemap, ufiemap, sizeof(fiemap)))
778bb5835edSTheodore Ts'o 		return -EFAULT;
779bb5835edSTheodore Ts'o 
780bb5835edSTheodore Ts'o 	if (fiemap.fm_extent_count > FIEMAP_MAX_EXTENTS)
781bb5835edSTheodore Ts'o 		return -EINVAL;
782bb5835edSTheodore Ts'o 
783bb5835edSTheodore Ts'o 	fieinfo.fi_flags = fiemap.fm_flags;
784bb5835edSTheodore Ts'o 	fieinfo.fi_extents_max = fiemap.fm_extent_count;
785bb5835edSTheodore Ts'o 	fieinfo.fi_extents_start = ufiemap->fm_extents;
786bb5835edSTheodore Ts'o 
787328e24aeSChristoph Hellwig 	error = ext4_get_es_cache(inode, &fieinfo, fiemap.fm_start,
788328e24aeSChristoph Hellwig 			fiemap.fm_length);
789bb5835edSTheodore Ts'o 	fiemap.fm_flags = fieinfo.fi_flags;
790bb5835edSTheodore Ts'o 	fiemap.fm_mapped_extents = fieinfo.fi_extents_mapped;
791bb5835edSTheodore Ts'o 	if (copy_to_user(ufiemap, &fiemap, sizeof(fiemap)))
792bb5835edSTheodore Ts'o 		error = -EFAULT;
793bb5835edSTheodore Ts'o 
794bb5835edSTheodore Ts'o 	return error;
795bb5835edSTheodore Ts'o }
796bb5835edSTheodore Ts'o 
797aa75f4d3SHarshad Shirwadkar static long __ext4_ioctl(struct file *filp, unsigned int cmd, unsigned long arg)
7989b7365fcSLi Xi {
7999b7365fcSLi Xi 	struct inode *inode = file_inode(filp);
8009b7365fcSLi Xi 	struct super_block *sb = inode->i_sb;
80114f3db55SChristian Brauner 	struct user_namespace *mnt_userns = file_mnt_user_ns(filp);
8029b7365fcSLi Xi 
8039b7365fcSLi Xi 	ext4_debug("cmd = %u, arg = %lu\n", cmd, arg);
8049b7365fcSLi Xi 
8059b7365fcSLi Xi 	switch (cmd) {
8060c9ec4beSDarrick J. Wong 	case FS_IOC_GETFSMAP:
8070c9ec4beSDarrick J. Wong 		return ext4_ioc_getfsmap(sb, (void __user *)arg);
808617ba13bSMingming Cao 	case EXT4_IOC_GETVERSION:
809617ba13bSMingming Cao 	case EXT4_IOC_GETVERSION_OLD:
810ac27a0ecSDave Kleikamp 		return put_user(inode->i_generation, (int __user *) arg);
811617ba13bSMingming Cao 	case EXT4_IOC_SETVERSION:
812617ba13bSMingming Cao 	case EXT4_IOC_SETVERSION_OLD: {
813ac27a0ecSDave Kleikamp 		handle_t *handle;
814617ba13bSMingming Cao 		struct ext4_iloc iloc;
815ac27a0ecSDave Kleikamp 		__u32 generation;
816ac27a0ecSDave Kleikamp 		int err;
817ac27a0ecSDave Kleikamp 
81814f3db55SChristian Brauner 		if (!inode_owner_or_capable(mnt_userns, inode))
819ac27a0ecSDave Kleikamp 			return -EPERM;
82042a74f20SDave Hansen 
8219aa5d32bSDmitry Monakhov 		if (ext4_has_metadata_csum(inode->i_sb)) {
822814525f4SDarrick J. Wong 			ext4_warning(sb, "Setting inode version is not "
823814525f4SDarrick J. Wong 				     "supported with metadata_csum enabled.");
824814525f4SDarrick J. Wong 			return -ENOTTY;
825814525f4SDarrick J. Wong 		}
826814525f4SDarrick J. Wong 
827a561be71SAl Viro 		err = mnt_want_write_file(filp);
82842a74f20SDave Hansen 		if (err)
82942a74f20SDave Hansen 			return err;
83042a74f20SDave Hansen 		if (get_user(generation, (int __user *) arg)) {
83142a74f20SDave Hansen 			err = -EFAULT;
83242a74f20SDave Hansen 			goto setversion_out;
83342a74f20SDave Hansen 		}
834ac27a0ecSDave Kleikamp 
8355955102cSAl Viro 		inode_lock(inode);
8369924a92aSTheodore Ts'o 		handle = ext4_journal_start(inode, EXT4_HT_INODE, 1);
83742a74f20SDave Hansen 		if (IS_ERR(handle)) {
83842a74f20SDave Hansen 			err = PTR_ERR(handle);
8396c2155b9SDjalal Harouni 			goto unlock_out;
84042a74f20SDave Hansen 		}
841617ba13bSMingming Cao 		err = ext4_reserve_inode_write(handle, inode, &iloc);
842ac27a0ecSDave Kleikamp 		if (err == 0) {
843eeca7ea1SDeepa Dinamani 			inode->i_ctime = current_time(inode);
844ac27a0ecSDave Kleikamp 			inode->i_generation = generation;
845617ba13bSMingming Cao 			err = ext4_mark_iloc_dirty(handle, inode, &iloc);
846ac27a0ecSDave Kleikamp 		}
847617ba13bSMingming Cao 		ext4_journal_stop(handle);
8486c2155b9SDjalal Harouni 
8496c2155b9SDjalal Harouni unlock_out:
8505955102cSAl Viro 		inode_unlock(inode);
85142a74f20SDave Hansen setversion_out:
8522a79f17eSAl Viro 		mnt_drop_write_file(filp);
853ac27a0ecSDave Kleikamp 		return err;
854ac27a0ecSDave Kleikamp 	}
855617ba13bSMingming Cao 	case EXT4_IOC_GROUP_EXTEND: {
856617ba13bSMingming Cao 		ext4_fsblk_t n_blocks_count;
857ac046f1dSPeng Tao 		int err, err2=0;
858ac27a0ecSDave Kleikamp 
8598f82f840SYongqiang Yang 		err = ext4_resize_begin(sb);
8608f82f840SYongqiang Yang 		if (err)
8618f82f840SYongqiang Yang 			return err;
862ac27a0ecSDave Kleikamp 
863014a1770SDjalal Harouni 		if (get_user(n_blocks_count, (__u32 __user *)arg)) {
864014a1770SDjalal Harouni 			err = -EFAULT;
865014a1770SDjalal Harouni 			goto group_extend_out;
866014a1770SDjalal Harouni 		}
867ac27a0ecSDave Kleikamp 
868e2b911c5SDarrick J. Wong 		if (ext4_has_feature_bigalloc(sb)) {
869bab08ab9STheodore Ts'o 			ext4_msg(sb, KERN_ERR,
870bab08ab9STheodore Ts'o 				 "Online resizing not supported with bigalloc");
871014a1770SDjalal Harouni 			err = -EOPNOTSUPP;
872014a1770SDjalal Harouni 			goto group_extend_out;
873bab08ab9STheodore Ts'o 		}
874bab08ab9STheodore Ts'o 
875a561be71SAl Viro 		err = mnt_want_write_file(filp);
87642a74f20SDave Hansen 		if (err)
877014a1770SDjalal Harouni 			goto group_extend_out;
87842a74f20SDave Hansen 
879617ba13bSMingming Cao 		err = ext4_group_extend(sb, EXT4_SB(sb)->s_es, n_blocks_count);
880ac046f1dSPeng Tao 		if (EXT4_SB(sb)->s_journal) {
881dab291afSMingming Cao 			jbd2_journal_lock_updates(EXT4_SB(sb)->s_journal);
8827ffe1ea8SHidehiro Kawai 			err2 = jbd2_journal_flush(EXT4_SB(sb)->s_journal);
883dab291afSMingming Cao 			jbd2_journal_unlock_updates(EXT4_SB(sb)->s_journal);
884ac046f1dSPeng Tao 		}
8857ffe1ea8SHidehiro Kawai 		if (err == 0)
8867ffe1ea8SHidehiro Kawai 			err = err2;
8872a79f17eSAl Viro 		mnt_drop_write_file(filp);
888014a1770SDjalal Harouni group_extend_out:
8898f82f840SYongqiang Yang 		ext4_resize_end(sb);
890ac27a0ecSDave Kleikamp 		return err;
891ac27a0ecSDave Kleikamp 	}
892748de673SAkira Fujita 
893748de673SAkira Fujita 	case EXT4_IOC_MOVE_EXT: {
894748de673SAkira Fujita 		struct move_extent me;
8952903ff01SAl Viro 		struct fd donor;
8962903ff01SAl Viro 		int err;
897748de673SAkira Fujita 
8984a58579bSAkira Fujita 		if (!(filp->f_mode & FMODE_READ) ||
8994a58579bSAkira Fujita 		    !(filp->f_mode & FMODE_WRITE))
9004a58579bSAkira Fujita 			return -EBADF;
9014a58579bSAkira Fujita 
902748de673SAkira Fujita 		if (copy_from_user(&me,
903748de673SAkira Fujita 			(struct move_extent __user *)arg, sizeof(me)))
904748de673SAkira Fujita 			return -EFAULT;
9054a58579bSAkira Fujita 		me.moved_len = 0;
906748de673SAkira Fujita 
9072903ff01SAl Viro 		donor = fdget(me.donor_fd);
9082903ff01SAl Viro 		if (!donor.file)
909748de673SAkira Fujita 			return -EBADF;
910748de673SAkira Fujita 
9112903ff01SAl Viro 		if (!(donor.file->f_mode & FMODE_WRITE)) {
9124a58579bSAkira Fujita 			err = -EBADF;
9134a58579bSAkira Fujita 			goto mext_out;
914748de673SAkira Fujita 		}
915748de673SAkira Fujita 
916e2b911c5SDarrick J. Wong 		if (ext4_has_feature_bigalloc(sb)) {
917bab08ab9STheodore Ts'o 			ext4_msg(sb, KERN_ERR,
918bab08ab9STheodore Ts'o 				 "Online defrag not supported with bigalloc");
919399c9b86SAl Viro 			err = -EOPNOTSUPP;
920399c9b86SAl Viro 			goto mext_out;
92173f34a5eSRoss Zwisler 		} else if (IS_DAX(inode)) {
92273f34a5eSRoss Zwisler 			ext4_msg(sb, KERN_ERR,
92373f34a5eSRoss Zwisler 				 "Online defrag not supported with DAX");
92473f34a5eSRoss Zwisler 			err = -EOPNOTSUPP;
92573f34a5eSRoss Zwisler 			goto mext_out;
926bab08ab9STheodore Ts'o 		}
927bab08ab9STheodore Ts'o 
928a561be71SAl Viro 		err = mnt_want_write_file(filp);
9294a58579bSAkira Fujita 		if (err)
9304a58579bSAkira Fujita 			goto mext_out;
9314a58579bSAkira Fujita 
9322903ff01SAl Viro 		err = ext4_move_extents(filp, donor.file, me.orig_start,
933748de673SAkira Fujita 					me.donor_start, me.len, &me.moved_len);
9342a79f17eSAl Viro 		mnt_drop_write_file(filp);
935748de673SAkira Fujita 
936c437b273SAkira Fujita 		if (copy_to_user((struct move_extent __user *)arg,
937c437b273SAkira Fujita 				 &me, sizeof(me)))
9384a58579bSAkira Fujita 			err = -EFAULT;
9394a58579bSAkira Fujita mext_out:
9402903ff01SAl Viro 		fdput(donor);
941748de673SAkira Fujita 		return err;
942748de673SAkira Fujita 	}
943748de673SAkira Fujita 
944617ba13bSMingming Cao 	case EXT4_IOC_GROUP_ADD: {
945617ba13bSMingming Cao 		struct ext4_new_group_data input;
946ac27a0ecSDave Kleikamp 
947617ba13bSMingming Cao 		if (copy_from_user(&input, (struct ext4_new_group_input __user *)arg,
948e145b35bSAl Viro 				sizeof(input)))
949e145b35bSAl Viro 			return -EFAULT;
950ac27a0ecSDave Kleikamp 
951e145b35bSAl Viro 		return ext4_ioctl_group_add(filp, &input);
952ac27a0ecSDave Kleikamp 	}
953ac27a0ecSDave Kleikamp 
954c14c6fd5SAneesh Kumar K.V 	case EXT4_IOC_MIGRATE:
9552a43a878SAneesh Kumar K.V 	{
9562a43a878SAneesh Kumar K.V 		int err;
95714f3db55SChristian Brauner 		if (!inode_owner_or_capable(mnt_userns, inode))
9582a43a878SAneesh Kumar K.V 			return -EACCES;
9592a43a878SAneesh Kumar K.V 
960a561be71SAl Viro 		err = mnt_want_write_file(filp);
9612a43a878SAneesh Kumar K.V 		if (err)
9622a43a878SAneesh Kumar K.V 			return err;
9632a43a878SAneesh Kumar K.V 		/*
9642a43a878SAneesh Kumar K.V 		 * inode_mutex prevent write and truncate on the file.
9652a43a878SAneesh Kumar K.V 		 * Read still goes through. We take i_data_sem in
9662a43a878SAneesh Kumar K.V 		 * ext4_ext_swap_inode_data before we switch the
9672a43a878SAneesh Kumar K.V 		 * inode format to prevent read.
9682a43a878SAneesh Kumar K.V 		 */
9695955102cSAl Viro 		inode_lock((inode));
9702a43a878SAneesh Kumar K.V 		err = ext4_ext_migrate(inode);
9715955102cSAl Viro 		inode_unlock((inode));
9722a79f17eSAl Viro 		mnt_drop_write_file(filp);
9732a43a878SAneesh Kumar K.V 		return err;
9742a43a878SAneesh Kumar K.V 	}
975c14c6fd5SAneesh Kumar K.V 
976ccd2506bSTheodore Ts'o 	case EXT4_IOC_ALLOC_DA_BLKS:
977ccd2506bSTheodore Ts'o 	{
978ccd2506bSTheodore Ts'o 		int err;
97914f3db55SChristian Brauner 		if (!inode_owner_or_capable(mnt_userns, inode))
980ccd2506bSTheodore Ts'o 			return -EACCES;
981ccd2506bSTheodore Ts'o 
982a561be71SAl Viro 		err = mnt_want_write_file(filp);
983ccd2506bSTheodore Ts'o 		if (err)
984ccd2506bSTheodore Ts'o 			return err;
985ccd2506bSTheodore Ts'o 		err = ext4_alloc_da_blocks(inode);
9862a79f17eSAl Viro 		mnt_drop_write_file(filp);
987ccd2506bSTheodore Ts'o 		return err;
988ccd2506bSTheodore Ts'o 	}
989ccd2506bSTheodore Ts'o 
990393d1d1dSDr. Tilmann Bubeck 	case EXT4_IOC_SWAP_BOOT:
9913e67cfadSDmitry Monakhov 	{
9923e67cfadSDmitry Monakhov 		int err;
993393d1d1dSDr. Tilmann Bubeck 		if (!(filp->f_mode & FMODE_WRITE))
994393d1d1dSDr. Tilmann Bubeck 			return -EBADF;
9953e67cfadSDmitry Monakhov 		err = mnt_want_write_file(filp);
9963e67cfadSDmitry Monakhov 		if (err)
9973e67cfadSDmitry Monakhov 			return err;
99814f3db55SChristian Brauner 		err = swap_inode_boot_loader(sb, mnt_userns, inode);
9993e67cfadSDmitry Monakhov 		mnt_drop_write_file(filp);
10003e67cfadSDmitry Monakhov 		return err;
10013e67cfadSDmitry Monakhov 	}
1002393d1d1dSDr. Tilmann Bubeck 
100319c5246dSYongqiang Yang 	case EXT4_IOC_RESIZE_FS: {
100419c5246dSYongqiang Yang 		ext4_fsblk_t n_blocks_count;
100519c5246dSYongqiang Yang 		int err = 0, err2 = 0;
10067f511862STheodore Ts'o 		ext4_group_t o_group = EXT4_SB(sb)->s_groups_count;
100719c5246dSYongqiang Yang 
100819c5246dSYongqiang Yang 		if (copy_from_user(&n_blocks_count, (__u64 __user *)arg,
100919c5246dSYongqiang Yang 				   sizeof(__u64))) {
101019c5246dSYongqiang Yang 			return -EFAULT;
101119c5246dSYongqiang Yang 		}
101219c5246dSYongqiang Yang 
101319c5246dSYongqiang Yang 		err = ext4_resize_begin(sb);
101419c5246dSYongqiang Yang 		if (err)
101519c5246dSYongqiang Yang 			return err;
101619c5246dSYongqiang Yang 
10178cae6f71SAl Viro 		err = mnt_want_write_file(filp);
101819c5246dSYongqiang Yang 		if (err)
101919c5246dSYongqiang Yang 			goto resizefs_out;
102019c5246dSYongqiang Yang 
102119c5246dSYongqiang Yang 		err = ext4_resize_fs(sb, n_blocks_count);
102219c5246dSYongqiang Yang 		if (EXT4_SB(sb)->s_journal) {
1023aa75f4d3SHarshad Shirwadkar 			ext4_fc_mark_ineligible(sb, EXT4_FC_REASON_RESIZE);
102419c5246dSYongqiang Yang 			jbd2_journal_lock_updates(EXT4_SB(sb)->s_journal);
102519c5246dSYongqiang Yang 			err2 = jbd2_journal_flush(EXT4_SB(sb)->s_journal);
102619c5246dSYongqiang Yang 			jbd2_journal_unlock_updates(EXT4_SB(sb)->s_journal);
102719c5246dSYongqiang Yang 		}
102819c5246dSYongqiang Yang 		if (err == 0)
102919c5246dSYongqiang Yang 			err = err2;
10308cae6f71SAl Viro 		mnt_drop_write_file(filp);
1031310a997fSKirill Tkhai 		if (!err && (o_group < EXT4_SB(sb)->s_groups_count) &&
10327f511862STheodore Ts'o 		    ext4_has_group_desc_csum(sb) &&
10337f511862STheodore Ts'o 		    test_opt(sb, INIT_INODE_TABLE))
10347f511862STheodore Ts'o 			err = ext4_register_li_request(sb, o_group);
10357f511862STheodore Ts'o 
103619c5246dSYongqiang Yang resizefs_out:
103719c5246dSYongqiang Yang 		ext4_resize_end(sb);
103819c5246dSYongqiang Yang 		return err;
103919c5246dSYongqiang Yang 	}
104019c5246dSYongqiang Yang 
1041e681c047SLukas Czerner 	case FITRIM:
1042e681c047SLukas Czerner 	{
104341431792SLukas Czerner 		struct request_queue *q = bdev_get_queue(sb->s_bdev);
1044e681c047SLukas Czerner 		struct fstrim_range range;
1045e681c047SLukas Czerner 		int ret = 0;
1046e681c047SLukas Czerner 
1047e681c047SLukas Czerner 		if (!capable(CAP_SYS_ADMIN))
1048e681c047SLukas Czerner 			return -EPERM;
1049e681c047SLukas Czerner 
105041431792SLukas Czerner 		if (!blk_queue_discard(q))
105141431792SLukas Czerner 			return -EOPNOTSUPP;
105241431792SLukas Czerner 
105318915b58SDarrick J. Wong 		/*
105418915b58SDarrick J. Wong 		 * We haven't replayed the journal, so we cannot use our
105518915b58SDarrick J. Wong 		 * block-bitmap-guided storage zapping commands.
105618915b58SDarrick J. Wong 		 */
105718915b58SDarrick J. Wong 		if (test_opt(sb, NOLOAD) && ext4_has_feature_journal(sb))
105818915b58SDarrick J. Wong 			return -EROFS;
105918915b58SDarrick J. Wong 
1060e6705f7cSH Hartley Sweeten 		if (copy_from_user(&range, (struct fstrim_range __user *)arg,
1061e681c047SLukas Czerner 		    sizeof(range)))
1062e681c047SLukas Czerner 			return -EFAULT;
1063e681c047SLukas Czerner 
10645c2ed62fSLukas Czerner 		range.minlen = max((unsigned int)range.minlen,
10655c2ed62fSLukas Czerner 				   q->limits.discard_granularity);
1066e681c047SLukas Czerner 		ret = ext4_trim_fs(sb, &range);
1067e681c047SLukas Czerner 		if (ret < 0)
1068e681c047SLukas Czerner 			return ret;
1069e681c047SLukas Czerner 
1070e6705f7cSH Hartley Sweeten 		if (copy_to_user((struct fstrim_range __user *)arg, &range,
1071e681c047SLukas Czerner 		    sizeof(range)))
1072e681c047SLukas Czerner 			return -EFAULT;
1073e681c047SLukas Czerner 
1074e681c047SLukas Czerner 		return 0;
1075e681c047SLukas Czerner 	}
10767869a4a6STheodore Ts'o 	case EXT4_IOC_PRECACHE_EXTENTS:
10777869a4a6STheodore Ts'o 		return ext4_ext_precache(inode);
1078e681c047SLukas Czerner 
1079cb29a02dSEric Biggers 	case FS_IOC_SET_ENCRYPTION_POLICY:
10809a200d07SRichard Weinberger 		if (!ext4_has_feature_encrypt(sb))
10819a200d07SRichard Weinberger 			return -EOPNOTSUPP;
1082db717d8eSEric Biggers 		return fscrypt_ioctl_set_policy(filp, (const void __user *)arg);
10839a200d07SRichard Weinberger 
1084cb29a02dSEric Biggers 	case FS_IOC_GET_ENCRYPTION_PWSALT: {
1085643fa961SChandan Rajendra #ifdef CONFIG_FS_ENCRYPTION
10869bd8212fSMichael Halcrow 		int err, err2;
10879bd8212fSMichael Halcrow 		struct ext4_sb_info *sbi = EXT4_SB(sb);
10889bd8212fSMichael Halcrow 		handle_t *handle;
10899bd8212fSMichael Halcrow 
109035997d1cSEric Biggers 		if (!ext4_has_feature_encrypt(sb))
10919bd8212fSMichael Halcrow 			return -EOPNOTSUPP;
10929bd8212fSMichael Halcrow 		if (uuid_is_zero(sbi->s_es->s_encrypt_pw_salt)) {
10939bd8212fSMichael Halcrow 			err = mnt_want_write_file(filp);
10949bd8212fSMichael Halcrow 			if (err)
10959bd8212fSMichael Halcrow 				return err;
10969bd8212fSMichael Halcrow 			handle = ext4_journal_start_sb(sb, EXT4_HT_MISC, 1);
10979bd8212fSMichael Halcrow 			if (IS_ERR(handle)) {
10989bd8212fSMichael Halcrow 				err = PTR_ERR(handle);
10999bd8212fSMichael Halcrow 				goto pwsalt_err_exit;
11009bd8212fSMichael Halcrow 			}
11019bd8212fSMichael Halcrow 			err = ext4_journal_get_write_access(handle, sbi->s_sbh);
11029bd8212fSMichael Halcrow 			if (err)
11039bd8212fSMichael Halcrow 				goto pwsalt_err_journal;
1104dfd56c2cSJan Kara 			lock_buffer(sbi->s_sbh);
11059bd8212fSMichael Halcrow 			generate_random_uuid(sbi->s_es->s_encrypt_pw_salt);
1106dfd56c2cSJan Kara 			ext4_superblock_csum_set(sb);
1107dfd56c2cSJan Kara 			unlock_buffer(sbi->s_sbh);
11089bd8212fSMichael Halcrow 			err = ext4_handle_dirty_metadata(handle, NULL,
11099bd8212fSMichael Halcrow 							 sbi->s_sbh);
11109bd8212fSMichael Halcrow 		pwsalt_err_journal:
11119bd8212fSMichael Halcrow 			err2 = ext4_journal_stop(handle);
11129bd8212fSMichael Halcrow 			if (err2 && !err)
11139bd8212fSMichael Halcrow 				err = err2;
11149bd8212fSMichael Halcrow 		pwsalt_err_exit:
11159bd8212fSMichael Halcrow 			mnt_drop_write_file(filp);
11169bd8212fSMichael Halcrow 			if (err)
11179bd8212fSMichael Halcrow 				return err;
11189bd8212fSMichael Halcrow 		}
1119b4ab9e29SFabian Frederick 		if (copy_to_user((void __user *) arg,
1120b4ab9e29SFabian Frederick 				 sbi->s_es->s_encrypt_pw_salt, 16))
11219bd8212fSMichael Halcrow 			return -EFAULT;
11229bd8212fSMichael Halcrow 		return 0;
1123ba679017SEric Biggers #else
1124ba679017SEric Biggers 		return -EOPNOTSUPP;
1125ba679017SEric Biggers #endif
11269bd8212fSMichael Halcrow 	}
1127cb29a02dSEric Biggers 	case FS_IOC_GET_ENCRYPTION_POLICY:
11280642ea24SChao Yu 		if (!ext4_has_feature_encrypt(sb))
11290642ea24SChao Yu 			return -EOPNOTSUPP;
1130db717d8eSEric Biggers 		return fscrypt_ioctl_get_policy(filp, (void __user *)arg);
11319bd8212fSMichael Halcrow 
113229b3692eSEric Biggers 	case FS_IOC_GET_ENCRYPTION_POLICY_EX:
113329b3692eSEric Biggers 		if (!ext4_has_feature_encrypt(sb))
113429b3692eSEric Biggers 			return -EOPNOTSUPP;
113529b3692eSEric Biggers 		return fscrypt_ioctl_get_policy_ex(filp, (void __user *)arg);
113629b3692eSEric Biggers 
113729b3692eSEric Biggers 	case FS_IOC_ADD_ENCRYPTION_KEY:
113829b3692eSEric Biggers 		if (!ext4_has_feature_encrypt(sb))
113929b3692eSEric Biggers 			return -EOPNOTSUPP;
114029b3692eSEric Biggers 		return fscrypt_ioctl_add_key(filp, (void __user *)arg);
114129b3692eSEric Biggers 
114229b3692eSEric Biggers 	case FS_IOC_REMOVE_ENCRYPTION_KEY:
114329b3692eSEric Biggers 		if (!ext4_has_feature_encrypt(sb))
114429b3692eSEric Biggers 			return -EOPNOTSUPP;
114529b3692eSEric Biggers 		return fscrypt_ioctl_remove_key(filp, (void __user *)arg);
114629b3692eSEric Biggers 
114729b3692eSEric Biggers 	case FS_IOC_REMOVE_ENCRYPTION_KEY_ALL_USERS:
114829b3692eSEric Biggers 		if (!ext4_has_feature_encrypt(sb))
114929b3692eSEric Biggers 			return -EOPNOTSUPP;
115029b3692eSEric Biggers 		return fscrypt_ioctl_remove_key_all_users(filp,
115129b3692eSEric Biggers 							  (void __user *)arg);
115229b3692eSEric Biggers 	case FS_IOC_GET_ENCRYPTION_KEY_STATUS:
115329b3692eSEric Biggers 		if (!ext4_has_feature_encrypt(sb))
115429b3692eSEric Biggers 			return -EOPNOTSUPP;
115529b3692eSEric Biggers 		return fscrypt_ioctl_get_key_status(filp, (void __user *)arg);
115629b3692eSEric Biggers 
11577ec9f3b4SEric Biggers 	case FS_IOC_GET_ENCRYPTION_NONCE:
11587ec9f3b4SEric Biggers 		if (!ext4_has_feature_encrypt(sb))
11597ec9f3b4SEric Biggers 			return -EOPNOTSUPP;
11607ec9f3b4SEric Biggers 		return fscrypt_ioctl_get_nonce(filp, (void __user *)arg);
11617ec9f3b4SEric Biggers 
1162b0c013e2STheodore Ts'o 	case EXT4_IOC_CLEAR_ES_CACHE:
1163b0c013e2STheodore Ts'o 	{
116414f3db55SChristian Brauner 		if (!inode_owner_or_capable(mnt_userns, inode))
1165b0c013e2STheodore Ts'o 			return -EACCES;
1166b0c013e2STheodore Ts'o 		ext4_clear_inode_es(inode);
1167b0c013e2STheodore Ts'o 		return 0;
1168b0c013e2STheodore Ts'o 	}
1169b0c013e2STheodore Ts'o 
11701ad3ea6eSTheodore Ts'o 	case EXT4_IOC_GETSTATE:
11711ad3ea6eSTheodore Ts'o 	{
11721ad3ea6eSTheodore Ts'o 		__u32	state = 0;
11731ad3ea6eSTheodore Ts'o 
11741ad3ea6eSTheodore Ts'o 		if (ext4_test_inode_state(inode, EXT4_STATE_EXT_PRECACHED))
11751ad3ea6eSTheodore Ts'o 			state |= EXT4_STATE_FLAG_EXT_PRECACHED;
11761ad3ea6eSTheodore Ts'o 		if (ext4_test_inode_state(inode, EXT4_STATE_NEW))
11771ad3ea6eSTheodore Ts'o 			state |= EXT4_STATE_FLAG_NEW;
11781ad3ea6eSTheodore Ts'o 		if (ext4_test_inode_state(inode, EXT4_STATE_NEWENTRY))
11791ad3ea6eSTheodore Ts'o 			state |= EXT4_STATE_FLAG_NEWENTRY;
11801ad3ea6eSTheodore Ts'o 		if (ext4_test_inode_state(inode, EXT4_STATE_DA_ALLOC_CLOSE))
11811ad3ea6eSTheodore Ts'o 			state |= EXT4_STATE_FLAG_DA_ALLOC_CLOSE;
11821ad3ea6eSTheodore Ts'o 
11831ad3ea6eSTheodore Ts'o 		return put_user(state, (__u32 __user *) arg);
11841ad3ea6eSTheodore Ts'o 	}
11851ad3ea6eSTheodore Ts'o 
1186bb5835edSTheodore Ts'o 	case EXT4_IOC_GET_ES_CACHE:
1187bb5835edSTheodore Ts'o 		return ext4_ioctl_get_es_cache(filp, arg);
1188bb5835edSTheodore Ts'o 
1189e9be2ac7STheodore Ts'o 	case EXT4_IOC_SHUTDOWN:
1190e9be2ac7STheodore Ts'o 		return ext4_shutdown(sb, arg);
1191c93d8f88SEric Biggers 
1192c93d8f88SEric Biggers 	case FS_IOC_ENABLE_VERITY:
1193c93d8f88SEric Biggers 		if (!ext4_has_feature_verity(sb))
1194c93d8f88SEric Biggers 			return -EOPNOTSUPP;
1195c93d8f88SEric Biggers 		return fsverity_ioctl_enable(filp, (const void __user *)arg);
1196c93d8f88SEric Biggers 
1197c93d8f88SEric Biggers 	case FS_IOC_MEASURE_VERITY:
1198c93d8f88SEric Biggers 		if (!ext4_has_feature_verity(sb))
1199c93d8f88SEric Biggers 			return -EOPNOTSUPP;
1200c93d8f88SEric Biggers 		return fsverity_ioctl_measure(filp, (void __user *)arg);
1201c93d8f88SEric Biggers 
1202e17fe657SEric Biggers 	case FS_IOC_READ_VERITY_METADATA:
1203e17fe657SEric Biggers 		if (!ext4_has_feature_verity(sb))
1204e17fe657SEric Biggers 			return -EOPNOTSUPP;
1205e17fe657SEric Biggers 		return fsverity_ioctl_read_metadata(filp,
1206e17fe657SEric Biggers 						    (const void __user *)arg);
1207e17fe657SEric Biggers 
1208ac27a0ecSDave Kleikamp 	default:
1209ac27a0ecSDave Kleikamp 		return -ENOTTY;
1210ac27a0ecSDave Kleikamp 	}
1211ac27a0ecSDave Kleikamp }
1212ac27a0ecSDave Kleikamp 
1213aa75f4d3SHarshad Shirwadkar long ext4_ioctl(struct file *filp, unsigned int cmd, unsigned long arg)
1214aa75f4d3SHarshad Shirwadkar {
1215aa75f4d3SHarshad Shirwadkar 	long ret;
1216aa75f4d3SHarshad Shirwadkar 
1217aa75f4d3SHarshad Shirwadkar 	ext4_fc_start_update(file_inode(filp));
1218aa75f4d3SHarshad Shirwadkar 	ret = __ext4_ioctl(filp, cmd, arg);
1219aa75f4d3SHarshad Shirwadkar 	ext4_fc_stop_update(file_inode(filp));
1220aa75f4d3SHarshad Shirwadkar 
1221aa75f4d3SHarshad Shirwadkar 	return ret;
1222aa75f4d3SHarshad Shirwadkar }
1223aa75f4d3SHarshad Shirwadkar 
1224ac27a0ecSDave Kleikamp #ifdef CONFIG_COMPAT
1225617ba13bSMingming Cao long ext4_compat_ioctl(struct file *file, unsigned int cmd, unsigned long arg)
1226ac27a0ecSDave Kleikamp {
1227ac27a0ecSDave Kleikamp 	/* These are just misnamed, they actually get/put from/to user an int */
1228ac27a0ecSDave Kleikamp 	switch (cmd) {
1229617ba13bSMingming Cao 	case EXT4_IOC32_GETVERSION:
1230617ba13bSMingming Cao 		cmd = EXT4_IOC_GETVERSION;
1231ac27a0ecSDave Kleikamp 		break;
1232617ba13bSMingming Cao 	case EXT4_IOC32_SETVERSION:
1233617ba13bSMingming Cao 		cmd = EXT4_IOC_SETVERSION;
1234ac27a0ecSDave Kleikamp 		break;
1235617ba13bSMingming Cao 	case EXT4_IOC32_GROUP_EXTEND:
1236617ba13bSMingming Cao 		cmd = EXT4_IOC_GROUP_EXTEND;
1237ac27a0ecSDave Kleikamp 		break;
1238617ba13bSMingming Cao 	case EXT4_IOC32_GETVERSION_OLD:
1239617ba13bSMingming Cao 		cmd = EXT4_IOC_GETVERSION_OLD;
1240ac27a0ecSDave Kleikamp 		break;
1241617ba13bSMingming Cao 	case EXT4_IOC32_SETVERSION_OLD:
1242617ba13bSMingming Cao 		cmd = EXT4_IOC_SETVERSION_OLD;
1243ac27a0ecSDave Kleikamp 		break;
1244617ba13bSMingming Cao 	case EXT4_IOC32_GETRSVSZ:
1245617ba13bSMingming Cao 		cmd = EXT4_IOC_GETRSVSZ;
1246ac27a0ecSDave Kleikamp 		break;
1247617ba13bSMingming Cao 	case EXT4_IOC32_SETRSVSZ:
1248617ba13bSMingming Cao 		cmd = EXT4_IOC_SETRSVSZ;
1249ac27a0ecSDave Kleikamp 		break;
12504d92dc0fSBen Hutchings 	case EXT4_IOC32_GROUP_ADD: {
12514d92dc0fSBen Hutchings 		struct compat_ext4_new_group_input __user *uinput;
1252e145b35bSAl Viro 		struct ext4_new_group_data input;
12534d92dc0fSBen Hutchings 		int err;
12544d92dc0fSBen Hutchings 
12554d92dc0fSBen Hutchings 		uinput = compat_ptr(arg);
12564d92dc0fSBen Hutchings 		err = get_user(input.group, &uinput->group);
12574d92dc0fSBen Hutchings 		err |= get_user(input.block_bitmap, &uinput->block_bitmap);
12584d92dc0fSBen Hutchings 		err |= get_user(input.inode_bitmap, &uinput->inode_bitmap);
12594d92dc0fSBen Hutchings 		err |= get_user(input.inode_table, &uinput->inode_table);
12604d92dc0fSBen Hutchings 		err |= get_user(input.blocks_count, &uinput->blocks_count);
12614d92dc0fSBen Hutchings 		err |= get_user(input.reserved_blocks,
12624d92dc0fSBen Hutchings 				&uinput->reserved_blocks);
12634d92dc0fSBen Hutchings 		if (err)
12644d92dc0fSBen Hutchings 			return -EFAULT;
1265e145b35bSAl Viro 		return ext4_ioctl_group_add(file, &input);
12664d92dc0fSBen Hutchings 	}
1267b684b2eeSChristian Borntraeger 	case EXT4_IOC_MOVE_EXT:
126819c5246dSYongqiang Yang 	case EXT4_IOC_RESIZE_FS:
1269314999dcSArnd Bergmann 	case FITRIM:
12707869a4a6STheodore Ts'o 	case EXT4_IOC_PRECACHE_EXTENTS:
1271cb29a02dSEric Biggers 	case FS_IOC_SET_ENCRYPTION_POLICY:
1272cb29a02dSEric Biggers 	case FS_IOC_GET_ENCRYPTION_PWSALT:
1273cb29a02dSEric Biggers 	case FS_IOC_GET_ENCRYPTION_POLICY:
127429b3692eSEric Biggers 	case FS_IOC_GET_ENCRYPTION_POLICY_EX:
127529b3692eSEric Biggers 	case FS_IOC_ADD_ENCRYPTION_KEY:
127629b3692eSEric Biggers 	case FS_IOC_REMOVE_ENCRYPTION_KEY:
127729b3692eSEric Biggers 	case FS_IOC_REMOVE_ENCRYPTION_KEY_ALL_USERS:
127829b3692eSEric Biggers 	case FS_IOC_GET_ENCRYPTION_KEY_STATUS:
12797ec9f3b4SEric Biggers 	case FS_IOC_GET_ENCRYPTION_NONCE:
1280e9be2ac7STheodore Ts'o 	case EXT4_IOC_SHUTDOWN:
12810c9ec4beSDarrick J. Wong 	case FS_IOC_GETFSMAP:
1282c93d8f88SEric Biggers 	case FS_IOC_ENABLE_VERITY:
1283c93d8f88SEric Biggers 	case FS_IOC_MEASURE_VERITY:
1284e17fe657SEric Biggers 	case FS_IOC_READ_VERITY_METADATA:
1285b0c013e2STheodore Ts'o 	case EXT4_IOC_CLEAR_ES_CACHE:
12861ad3ea6eSTheodore Ts'o 	case EXT4_IOC_GETSTATE:
1287bb5835edSTheodore Ts'o 	case EXT4_IOC_GET_ES_CACHE:
1288b684b2eeSChristian Borntraeger 		break;
1289ac27a0ecSDave Kleikamp 	default:
1290ac27a0ecSDave Kleikamp 		return -ENOIOCTLCMD;
1291ac27a0ecSDave Kleikamp 	}
12925cdd7b2dSAndi Kleen 	return ext4_ioctl(file, cmd, (unsigned long) compat_ptr(arg));
1293ac27a0ecSDave Kleikamp }
1294ac27a0ecSDave Kleikamp #endif
1295