1b2441318SGreg Kroah-Hartman // SPDX-License-Identifier: GPL-2.0 2ac27a0ecSDave Kleikamp /* 3617ba13bSMingming Cao * linux/fs/ext4/ioctl.c 4ac27a0ecSDave Kleikamp * 5ac27a0ecSDave Kleikamp * Copyright (C) 1993, 1994, 1995 6ac27a0ecSDave Kleikamp * Remy Card (card@masi.ibp.fr) 7ac27a0ecSDave Kleikamp * Laboratoire MASI - Institut Blaise Pascal 8ac27a0ecSDave Kleikamp * Universite Pierre et Marie Curie (Paris VI) 9ac27a0ecSDave Kleikamp */ 10ac27a0ecSDave Kleikamp 11ac27a0ecSDave Kleikamp #include <linux/fs.h> 12ac27a0ecSDave Kleikamp #include <linux/capability.h> 13ac27a0ecSDave Kleikamp #include <linux/time.h> 14ac27a0ecSDave Kleikamp #include <linux/compat.h> 1542a74f20SDave Hansen #include <linux/mount.h> 16748de673SAkira Fujita #include <linux/file.h> 179b7365fcSLi Xi #include <linux/quotaops.h> 1823253068STheodore Ts'o #include <linux/random.h> 198da4b8c4SAndy Shevchenko #include <linux/uuid.h> 207c0f6ba6SLinus Torvalds #include <linux/uaccess.h> 21783d9485STheodore Ts'o #include <linux/delay.h> 22ee73f9a5SJeff Layton #include <linux/iversion.h> 234db5c2e6SMiklos Szeredi #include <linux/fileattr.h> 243dcf5451SChristoph Hellwig #include "ext4_jbd2.h" 253dcf5451SChristoph Hellwig #include "ext4.h" 260c9ec4beSDarrick J. Wong #include <linux/fsmap.h> 270c9ec4beSDarrick J. Wong #include "fsmap.h" 280c9ec4beSDarrick J. Wong #include <trace/events/ext4.h> 29ac27a0ecSDave Kleikamp 30bbc605cdSLukas Czerner typedef void ext4_update_sb_callback(struct ext4_super_block *es, 31bbc605cdSLukas Czerner const void *arg); 32bbc605cdSLukas Czerner 33bbc605cdSLukas Czerner /* 34bbc605cdSLukas Czerner * Superblock modification callback function for changing file system 35bbc605cdSLukas Czerner * label 36bbc605cdSLukas Czerner */ 37bbc605cdSLukas Czerner static void ext4_sb_setlabel(struct ext4_super_block *es, const void *arg) 38bbc605cdSLukas Czerner { 39bbc605cdSLukas Czerner /* Sanity check, this should never happen */ 40bbc605cdSLukas Czerner BUILD_BUG_ON(sizeof(es->s_volume_name) < EXT4_LABEL_MAX); 41bbc605cdSLukas Czerner 42bbc605cdSLukas Czerner memcpy(es->s_volume_name, (char *)arg, EXT4_LABEL_MAX); 43bbc605cdSLukas Czerner } 44bbc605cdSLukas Czerner 45bbc605cdSLukas Czerner static 46bbc605cdSLukas Czerner int ext4_update_primary_sb(struct super_block *sb, handle_t *handle, 47bbc605cdSLukas Czerner ext4_update_sb_callback func, 48bbc605cdSLukas Czerner const void *arg) 49bbc605cdSLukas Czerner { 50bbc605cdSLukas Czerner int err = 0; 51bbc605cdSLukas Czerner struct ext4_sb_info *sbi = EXT4_SB(sb); 52bbc605cdSLukas Czerner struct buffer_head *bh = sbi->s_sbh; 53bbc605cdSLukas Czerner struct ext4_super_block *es = sbi->s_es; 54bbc605cdSLukas Czerner 55bbc605cdSLukas Czerner trace_ext4_update_sb(sb, bh->b_blocknr, 1); 56bbc605cdSLukas Czerner 57bbc605cdSLukas Czerner BUFFER_TRACE(bh, "get_write_access"); 58bbc605cdSLukas Czerner err = ext4_journal_get_write_access(handle, sb, 59bbc605cdSLukas Czerner bh, 60bbc605cdSLukas Czerner EXT4_JTR_NONE); 61bbc605cdSLukas Czerner if (err) 62bbc605cdSLukas Czerner goto out_err; 63bbc605cdSLukas Czerner 64bbc605cdSLukas Czerner lock_buffer(bh); 65bbc605cdSLukas Czerner func(es, arg); 66bbc605cdSLukas Czerner ext4_superblock_csum_set(sb); 67bbc605cdSLukas Czerner unlock_buffer(bh); 68bbc605cdSLukas Czerner 69bbc605cdSLukas Czerner if (buffer_write_io_error(bh) || !buffer_uptodate(bh)) { 70bbc605cdSLukas Czerner ext4_msg(sbi->s_sb, KERN_ERR, "previous I/O error to " 71bbc605cdSLukas Czerner "superblock detected"); 72bbc605cdSLukas Czerner clear_buffer_write_io_error(bh); 73bbc605cdSLukas Czerner set_buffer_uptodate(bh); 74bbc605cdSLukas Czerner } 75bbc605cdSLukas Czerner 76bbc605cdSLukas Czerner err = ext4_handle_dirty_metadata(handle, NULL, bh); 77bbc605cdSLukas Czerner if (err) 78bbc605cdSLukas Czerner goto out_err; 79bbc605cdSLukas Czerner err = sync_dirty_buffer(bh); 80bbc605cdSLukas Czerner out_err: 81bbc605cdSLukas Czerner ext4_std_error(sb, err); 82bbc605cdSLukas Czerner return err; 83bbc605cdSLukas Czerner } 84bbc605cdSLukas Czerner 85bbc605cdSLukas Czerner /* 86bbc605cdSLukas Czerner * Update one backup superblock in the group 'grp' using the callback 87bbc605cdSLukas Czerner * function 'func' and argument 'arg'. If the handle is NULL the 88bbc605cdSLukas Czerner * modification is not journalled. 89bbc605cdSLukas Czerner * 90bbc605cdSLukas Czerner * Returns: 0 when no modification was done (no superblock in the group) 91bbc605cdSLukas Czerner * 1 when the modification was successful 92bbc605cdSLukas Czerner * <0 on error 93bbc605cdSLukas Czerner */ 94bbc605cdSLukas Czerner static int ext4_update_backup_sb(struct super_block *sb, 95bbc605cdSLukas Czerner handle_t *handle, ext4_group_t grp, 96bbc605cdSLukas Czerner ext4_update_sb_callback func, const void *arg) 97bbc605cdSLukas Czerner { 98bbc605cdSLukas Czerner int err = 0; 99bbc605cdSLukas Czerner ext4_fsblk_t sb_block; 100bbc605cdSLukas Czerner struct buffer_head *bh; 101bbc605cdSLukas Czerner unsigned long offset = 0; 102bbc605cdSLukas Czerner struct ext4_super_block *es; 103bbc605cdSLukas Czerner 104bbc605cdSLukas Czerner if (!ext4_bg_has_super(sb, grp)) 105bbc605cdSLukas Czerner return 0; 106bbc605cdSLukas Czerner 107bbc605cdSLukas Czerner /* 108bbc605cdSLukas Czerner * For the group 0 there is always 1k padding, so we have 109bbc605cdSLukas Czerner * either adjust offset, or sb_block depending on blocksize 110bbc605cdSLukas Czerner */ 111bbc605cdSLukas Czerner if (grp == 0) { 112bbc605cdSLukas Czerner sb_block = 1 * EXT4_MIN_BLOCK_SIZE; 113bbc605cdSLukas Czerner offset = do_div(sb_block, sb->s_blocksize); 114bbc605cdSLukas Czerner } else { 115bbc605cdSLukas Czerner sb_block = ext4_group_first_block_no(sb, grp); 116bbc605cdSLukas Czerner offset = 0; 117bbc605cdSLukas Czerner } 118bbc605cdSLukas Czerner 119bbc605cdSLukas Czerner trace_ext4_update_sb(sb, sb_block, handle ? 1 : 0); 120bbc605cdSLukas Czerner 121bbc605cdSLukas Czerner bh = ext4_sb_bread(sb, sb_block, 0); 122bbc605cdSLukas Czerner if (IS_ERR(bh)) 123bbc605cdSLukas Czerner return PTR_ERR(bh); 124bbc605cdSLukas Czerner 125bbc605cdSLukas Czerner if (handle) { 126bbc605cdSLukas Czerner BUFFER_TRACE(bh, "get_write_access"); 127bbc605cdSLukas Czerner err = ext4_journal_get_write_access(handle, sb, 128bbc605cdSLukas Czerner bh, 129bbc605cdSLukas Czerner EXT4_JTR_NONE); 130bbc605cdSLukas Czerner if (err) 131bbc605cdSLukas Czerner goto out_bh; 132bbc605cdSLukas Czerner } 133bbc605cdSLukas Czerner 134bbc605cdSLukas Czerner es = (struct ext4_super_block *) (bh->b_data + offset); 135bbc605cdSLukas Czerner lock_buffer(bh); 136bbc605cdSLukas Czerner if (ext4_has_metadata_csum(sb) && 137bbc605cdSLukas Czerner es->s_checksum != ext4_superblock_csum(sb, es)) { 138bbc605cdSLukas Czerner ext4_msg(sb, KERN_ERR, "Invalid checksum for backup " 139bbc605cdSLukas Czerner "superblock %llu\n", sb_block); 140bbc605cdSLukas Czerner unlock_buffer(bh); 141bbc605cdSLukas Czerner err = -EFSBADCRC; 142bbc605cdSLukas Czerner goto out_bh; 143bbc605cdSLukas Czerner } 144bbc605cdSLukas Czerner func(es, arg); 145bbc605cdSLukas Czerner if (ext4_has_metadata_csum(sb)) 146bbc605cdSLukas Czerner es->s_checksum = ext4_superblock_csum(sb, es); 147bbc605cdSLukas Czerner set_buffer_uptodate(bh); 148bbc605cdSLukas Czerner unlock_buffer(bh); 149bbc605cdSLukas Czerner 150bbc605cdSLukas Czerner if (err) 151bbc605cdSLukas Czerner goto out_bh; 152bbc605cdSLukas Czerner 153bbc605cdSLukas Czerner if (handle) { 154bbc605cdSLukas Czerner err = ext4_handle_dirty_metadata(handle, NULL, bh); 155bbc605cdSLukas Czerner if (err) 156bbc605cdSLukas Czerner goto out_bh; 157bbc605cdSLukas Czerner } else { 158bbc605cdSLukas Czerner BUFFER_TRACE(bh, "marking dirty"); 159bbc605cdSLukas Czerner mark_buffer_dirty(bh); 160bbc605cdSLukas Czerner } 161bbc605cdSLukas Czerner err = sync_dirty_buffer(bh); 162bbc605cdSLukas Czerner 163bbc605cdSLukas Czerner out_bh: 164bbc605cdSLukas Czerner brelse(bh); 165bbc605cdSLukas Czerner ext4_std_error(sb, err); 166bbc605cdSLukas Czerner return (err) ? err : 1; 167bbc605cdSLukas Czerner } 168bbc605cdSLukas Czerner 169bbc605cdSLukas Czerner /* 170bbc605cdSLukas Czerner * Update primary and backup superblocks using the provided function 171bbc605cdSLukas Czerner * func and argument arg. 172bbc605cdSLukas Czerner * 173bbc605cdSLukas Czerner * Only the primary superblock and at most two backup superblock 174bbc605cdSLukas Czerner * modifications are journalled; the rest is modified without journal. 175bbc605cdSLukas Czerner * This is safe because e2fsck will re-write them if there is a problem, 176bbc605cdSLukas Czerner * and we're very unlikely to ever need more than two backups. 177bbc605cdSLukas Czerner */ 178bbc605cdSLukas Czerner static 179bbc605cdSLukas Czerner int ext4_update_superblocks_fn(struct super_block *sb, 180bbc605cdSLukas Czerner ext4_update_sb_callback func, 181bbc605cdSLukas Czerner const void *arg) 182bbc605cdSLukas Czerner { 183bbc605cdSLukas Czerner handle_t *handle; 184bbc605cdSLukas Czerner ext4_group_t ngroups; 185bbc605cdSLukas Czerner unsigned int three = 1; 186bbc605cdSLukas Czerner unsigned int five = 5; 187bbc605cdSLukas Czerner unsigned int seven = 7; 188bbc605cdSLukas Czerner int err = 0, ret, i; 189bbc605cdSLukas Czerner ext4_group_t grp, primary_grp; 190bbc605cdSLukas Czerner struct ext4_sb_info *sbi = EXT4_SB(sb); 191bbc605cdSLukas Czerner 192bbc605cdSLukas Czerner /* 193bbc605cdSLukas Czerner * We can't update superblocks while the online resize is running 194bbc605cdSLukas Czerner */ 195bbc605cdSLukas Czerner if (test_and_set_bit_lock(EXT4_FLAGS_RESIZING, 196bbc605cdSLukas Czerner &sbi->s_ext4_flags)) { 197bbc605cdSLukas Czerner ext4_msg(sb, KERN_ERR, "Can't modify superblock while" 198bbc605cdSLukas Czerner "performing online resize"); 199bbc605cdSLukas Czerner return -EBUSY; 200bbc605cdSLukas Czerner } 201bbc605cdSLukas Czerner 202bbc605cdSLukas Czerner /* 203bbc605cdSLukas Czerner * We're only going to update primary superblock and two 204bbc605cdSLukas Czerner * backup superblocks in this transaction. 205bbc605cdSLukas Czerner */ 206bbc605cdSLukas Czerner handle = ext4_journal_start_sb(sb, EXT4_HT_MISC, 3); 207bbc605cdSLukas Czerner if (IS_ERR(handle)) { 208bbc605cdSLukas Czerner err = PTR_ERR(handle); 209bbc605cdSLukas Czerner goto out; 210bbc605cdSLukas Czerner } 211bbc605cdSLukas Czerner 212bbc605cdSLukas Czerner /* Update primary superblock */ 213bbc605cdSLukas Czerner err = ext4_update_primary_sb(sb, handle, func, arg); 214bbc605cdSLukas Czerner if (err) { 215bbc605cdSLukas Czerner ext4_msg(sb, KERN_ERR, "Failed to update primary " 216bbc605cdSLukas Czerner "superblock"); 217bbc605cdSLukas Czerner goto out_journal; 218bbc605cdSLukas Czerner } 219bbc605cdSLukas Czerner 220bbc605cdSLukas Czerner primary_grp = ext4_get_group_number(sb, sbi->s_sbh->b_blocknr); 221bbc605cdSLukas Czerner ngroups = ext4_get_groups_count(sb); 222bbc605cdSLukas Czerner 223bbc605cdSLukas Czerner /* 224bbc605cdSLukas Czerner * Update backup superblocks. We have to start from group 0 225bbc605cdSLukas Czerner * because it might not be where the primary superblock is 226bbc605cdSLukas Czerner * if the fs is mounted with -o sb=<backup_sb_block> 227bbc605cdSLukas Czerner */ 228bbc605cdSLukas Czerner i = 0; 229bbc605cdSLukas Czerner grp = 0; 230bbc605cdSLukas Czerner while (grp < ngroups) { 231bbc605cdSLukas Czerner /* Skip primary superblock */ 232bbc605cdSLukas Czerner if (grp == primary_grp) 233bbc605cdSLukas Czerner goto next_grp; 234bbc605cdSLukas Czerner 235bbc605cdSLukas Czerner ret = ext4_update_backup_sb(sb, handle, grp, func, arg); 236bbc605cdSLukas Czerner if (ret < 0) { 237bbc605cdSLukas Czerner /* Ignore bad checksum; try to update next sb */ 238bbc605cdSLukas Czerner if (ret == -EFSBADCRC) 239bbc605cdSLukas Czerner goto next_grp; 240bbc605cdSLukas Czerner err = ret; 241bbc605cdSLukas Czerner goto out_journal; 242bbc605cdSLukas Czerner } 243bbc605cdSLukas Czerner 244bbc605cdSLukas Czerner i += ret; 245bbc605cdSLukas Czerner if (handle && i > 1) { 246bbc605cdSLukas Czerner /* 247bbc605cdSLukas Czerner * We're only journalling primary superblock and 248bbc605cdSLukas Czerner * two backup superblocks; the rest is not 249bbc605cdSLukas Czerner * journalled. 250bbc605cdSLukas Czerner */ 251bbc605cdSLukas Czerner err = ext4_journal_stop(handle); 252bbc605cdSLukas Czerner if (err) 253bbc605cdSLukas Czerner goto out; 254bbc605cdSLukas Czerner handle = NULL; 255bbc605cdSLukas Czerner } 256bbc605cdSLukas Czerner next_grp: 257bbc605cdSLukas Czerner grp = ext4_list_backups(sb, &three, &five, &seven); 258bbc605cdSLukas Czerner } 259bbc605cdSLukas Czerner 260bbc605cdSLukas Czerner out_journal: 261bbc605cdSLukas Czerner if (handle) { 262bbc605cdSLukas Czerner ret = ext4_journal_stop(handle); 263bbc605cdSLukas Czerner if (ret && !err) 264bbc605cdSLukas Czerner err = ret; 265bbc605cdSLukas Czerner } 266bbc605cdSLukas Czerner out: 267bbc605cdSLukas Czerner clear_bit_unlock(EXT4_FLAGS_RESIZING, &sbi->s_ext4_flags); 268bbc605cdSLukas Czerner smp_mb__after_atomic(); 269bbc605cdSLukas Czerner return err ? err : 0; 270bbc605cdSLukas Czerner } 271bbc605cdSLukas Czerner 272919adbfeSTheodore Ts'o /* 273393d1d1dSDr. Tilmann Bubeck * Swap memory between @a and @b for @len bytes. 274393d1d1dSDr. Tilmann Bubeck * 275393d1d1dSDr. Tilmann Bubeck * @a: pointer to first memory area 276393d1d1dSDr. Tilmann Bubeck * @b: pointer to second memory area 277393d1d1dSDr. Tilmann Bubeck * @len: number of bytes to swap 278393d1d1dSDr. Tilmann Bubeck * 279393d1d1dSDr. Tilmann Bubeck */ 280393d1d1dSDr. Tilmann Bubeck static void memswap(void *a, void *b, size_t len) 281393d1d1dSDr. Tilmann Bubeck { 282393d1d1dSDr. Tilmann Bubeck unsigned char *ap, *bp; 283393d1d1dSDr. Tilmann Bubeck 284393d1d1dSDr. Tilmann Bubeck ap = (unsigned char *)a; 285393d1d1dSDr. Tilmann Bubeck bp = (unsigned char *)b; 286393d1d1dSDr. Tilmann Bubeck while (len-- > 0) { 2874b7e2db5SFabian Frederick swap(*ap, *bp); 288393d1d1dSDr. Tilmann Bubeck ap++; 289393d1d1dSDr. Tilmann Bubeck bp++; 290393d1d1dSDr. Tilmann Bubeck } 291393d1d1dSDr. Tilmann Bubeck } 292393d1d1dSDr. Tilmann Bubeck 293919adbfeSTheodore Ts'o /* 294393d1d1dSDr. Tilmann Bubeck * Swap i_data and associated attributes between @inode1 and @inode2. 295393d1d1dSDr. Tilmann Bubeck * This function is used for the primary swap between inode1 and inode2 296393d1d1dSDr. Tilmann Bubeck * and also to revert this primary swap in case of errors. 297393d1d1dSDr. Tilmann Bubeck * 298393d1d1dSDr. Tilmann Bubeck * Therefore you have to make sure, that calling this method twice 299393d1d1dSDr. Tilmann Bubeck * will revert all changes. 300393d1d1dSDr. Tilmann Bubeck * 301393d1d1dSDr. Tilmann Bubeck * @inode1: pointer to first inode 302393d1d1dSDr. Tilmann Bubeck * @inode2: pointer to second inode 303393d1d1dSDr. Tilmann Bubeck */ 304393d1d1dSDr. Tilmann Bubeck static void swap_inode_data(struct inode *inode1, struct inode *inode2) 305393d1d1dSDr. Tilmann Bubeck { 306393d1d1dSDr. Tilmann Bubeck loff_t isize; 307393d1d1dSDr. Tilmann Bubeck struct ext4_inode_info *ei1; 308393d1d1dSDr. Tilmann Bubeck struct ext4_inode_info *ei2; 309abdc644eSyangerkun unsigned long tmp; 310393d1d1dSDr. Tilmann Bubeck 311393d1d1dSDr. Tilmann Bubeck ei1 = EXT4_I(inode1); 312393d1d1dSDr. Tilmann Bubeck ei2 = EXT4_I(inode2); 313393d1d1dSDr. Tilmann Bubeck 3149c5d58fbSJeff Layton swap(inode1->i_version, inode2->i_version); 3159c5d58fbSJeff Layton swap(inode1->i_atime, inode2->i_atime); 3169c5d58fbSJeff Layton swap(inode1->i_mtime, inode2->i_mtime); 317393d1d1dSDr. Tilmann Bubeck 318393d1d1dSDr. Tilmann Bubeck memswap(ei1->i_data, ei2->i_data, sizeof(ei1->i_data)); 319abdc644eSyangerkun tmp = ei1->i_flags & EXT4_FL_SHOULD_SWAP; 320abdc644eSyangerkun ei1->i_flags = (ei2->i_flags & EXT4_FL_SHOULD_SWAP) | 321abdc644eSyangerkun (ei1->i_flags & ~EXT4_FL_SHOULD_SWAP); 322abdc644eSyangerkun ei2->i_flags = tmp | (ei2->i_flags & ~EXT4_FL_SHOULD_SWAP); 3239c5d58fbSJeff Layton swap(ei1->i_disksize, ei2->i_disksize); 324cde2d7a7STheodore Ts'o ext4_es_remove_extent(inode1, 0, EXT_MAX_BLOCKS); 325cde2d7a7STheodore Ts'o ext4_es_remove_extent(inode2, 0, EXT_MAX_BLOCKS); 326393d1d1dSDr. Tilmann Bubeck 327393d1d1dSDr. Tilmann Bubeck isize = i_size_read(inode1); 328393d1d1dSDr. Tilmann Bubeck i_size_write(inode1, i_size_read(inode2)); 329393d1d1dSDr. Tilmann Bubeck i_size_write(inode2, isize); 330393d1d1dSDr. Tilmann Bubeck } 331393d1d1dSDr. Tilmann Bubeck 3328016e29fSHarshad Shirwadkar void ext4_reset_inode_seed(struct inode *inode) 33318aded17STheodore Ts'o { 33418aded17STheodore Ts'o struct ext4_inode_info *ei = EXT4_I(inode); 33518aded17STheodore Ts'o struct ext4_sb_info *sbi = EXT4_SB(inode->i_sb); 33618aded17STheodore Ts'o __le32 inum = cpu_to_le32(inode->i_ino); 33718aded17STheodore Ts'o __le32 gen = cpu_to_le32(inode->i_generation); 33818aded17STheodore Ts'o __u32 csum; 33918aded17STheodore Ts'o 34018aded17STheodore Ts'o if (!ext4_has_metadata_csum(inode->i_sb)) 34118aded17STheodore Ts'o return; 34218aded17STheodore Ts'o 34318aded17STheodore Ts'o csum = ext4_chksum(sbi, sbi->s_csum_seed, (__u8 *)&inum, sizeof(inum)); 34418aded17STheodore Ts'o ei->i_csum_seed = ext4_chksum(sbi, csum, (__u8 *)&gen, sizeof(gen)); 34518aded17STheodore Ts'o } 34618aded17STheodore Ts'o 347919adbfeSTheodore Ts'o /* 348393d1d1dSDr. Tilmann Bubeck * Swap the information from the given @inode and the inode 349393d1d1dSDr. Tilmann Bubeck * EXT4_BOOT_LOADER_INO. It will basically swap i_data and all other 350393d1d1dSDr. Tilmann Bubeck * important fields of the inodes. 351393d1d1dSDr. Tilmann Bubeck * 352393d1d1dSDr. Tilmann Bubeck * @sb: the super block of the filesystem 35314f3db55SChristian Brauner * @mnt_userns: user namespace of the mount the inode was found from 354393d1d1dSDr. Tilmann Bubeck * @inode: the inode to swap with EXT4_BOOT_LOADER_INO 355393d1d1dSDr. Tilmann Bubeck * 356393d1d1dSDr. Tilmann Bubeck */ 357393d1d1dSDr. Tilmann Bubeck static long swap_inode_boot_loader(struct super_block *sb, 35814f3db55SChristian Brauner struct user_namespace *mnt_userns, 359393d1d1dSDr. Tilmann Bubeck struct inode *inode) 360393d1d1dSDr. Tilmann Bubeck { 361393d1d1dSDr. Tilmann Bubeck handle_t *handle; 362393d1d1dSDr. Tilmann Bubeck int err; 363393d1d1dSDr. Tilmann Bubeck struct inode *inode_bl; 364393d1d1dSDr. Tilmann Bubeck struct ext4_inode_info *ei_bl; 365aa507b5fSyangerkun qsize_t size, size_bl, diff; 366aa507b5fSyangerkun blkcnt_t blocks; 367aa507b5fSyangerkun unsigned short bytes; 368393d1d1dSDr. Tilmann Bubeck 3698a363970STheodore Ts'o inode_bl = ext4_iget(sb, EXT4_BOOT_LOADER_INO, EXT4_IGET_SPECIAL); 370d8558a29STheodore Ts'o if (IS_ERR(inode_bl)) 371d8558a29STheodore Ts'o return PTR_ERR(inode_bl); 372393d1d1dSDr. Tilmann Bubeck ei_bl = EXT4_I(inode_bl); 373393d1d1dSDr. Tilmann Bubeck 374393d1d1dSDr. Tilmann Bubeck /* Protect orig inodes against a truncate and make sure, 375393d1d1dSDr. Tilmann Bubeck * that only 1 swap_inode_boot_loader is running. */ 376375e289eSJ. Bruce Fields lock_two_nondirectories(inode, inode_bl); 377393d1d1dSDr. Tilmann Bubeck 37867a11611Syangerkun if (inode->i_nlink != 1 || !S_ISREG(inode->i_mode) || 37967a11611Syangerkun IS_SWAPFILE(inode) || IS_ENCRYPTED(inode) || 3806e589291STheodore Ts'o (EXT4_I(inode)->i_flags & EXT4_JOURNAL_DATA_FL) || 38167a11611Syangerkun ext4_has_inline_data(inode)) { 38267a11611Syangerkun err = -EINVAL; 38367a11611Syangerkun goto journal_err_out; 38467a11611Syangerkun } 38567a11611Syangerkun 38667a11611Syangerkun if (IS_RDONLY(inode) || IS_APPEND(inode) || IS_IMMUTABLE(inode) || 38714f3db55SChristian Brauner !inode_owner_or_capable(mnt_userns, inode) || 38821cb47beSChristian Brauner !capable(CAP_SYS_ADMIN)) { 38967a11611Syangerkun err = -EPERM; 39067a11611Syangerkun goto journal_err_out; 39167a11611Syangerkun } 39267a11611Syangerkun 393d4f5258eSJan Kara filemap_invalidate_lock(inode->i_mapping); 394a46c68a3Syangerkun err = filemap_write_and_wait(inode->i_mapping); 395a46c68a3Syangerkun if (err) 396a46c68a3Syangerkun goto err_out; 397a46c68a3Syangerkun 398a46c68a3Syangerkun err = filemap_write_and_wait(inode_bl->i_mapping); 399a46c68a3Syangerkun if (err) 400a46c68a3Syangerkun goto err_out; 401a46c68a3Syangerkun 402393d1d1dSDr. Tilmann Bubeck /* Wait for all existing dio workers */ 403393d1d1dSDr. Tilmann Bubeck inode_dio_wait(inode); 404393d1d1dSDr. Tilmann Bubeck inode_dio_wait(inode_bl); 405393d1d1dSDr. Tilmann Bubeck 40618aded17STheodore Ts'o truncate_inode_pages(&inode->i_data, 0); 40718aded17STheodore Ts'o truncate_inode_pages(&inode_bl->i_data, 0); 40818aded17STheodore Ts'o 409393d1d1dSDr. Tilmann Bubeck handle = ext4_journal_start(inode_bl, EXT4_HT_MOVE_EXTENTS, 2); 410393d1d1dSDr. Tilmann Bubeck if (IS_ERR(handle)) { 411393d1d1dSDr. Tilmann Bubeck err = -EINVAL; 412a46c68a3Syangerkun goto err_out; 413393d1d1dSDr. Tilmann Bubeck } 414e85c81baSXin Yin ext4_fc_mark_ineligible(sb, EXT4_FC_REASON_SWAP_BOOT, handle); 415393d1d1dSDr. Tilmann Bubeck 416393d1d1dSDr. Tilmann Bubeck /* Protect extent tree against block allocations via delalloc */ 417393d1d1dSDr. Tilmann Bubeck ext4_double_down_write_data_sem(inode, inode_bl); 418393d1d1dSDr. Tilmann Bubeck 419393d1d1dSDr. Tilmann Bubeck if (inode_bl->i_nlink == 0) { 420393d1d1dSDr. Tilmann Bubeck /* this inode has never been used as a BOOT_LOADER */ 421393d1d1dSDr. Tilmann Bubeck set_nlink(inode_bl, 1); 422393d1d1dSDr. Tilmann Bubeck i_uid_write(inode_bl, 0); 423393d1d1dSDr. Tilmann Bubeck i_gid_write(inode_bl, 0); 424393d1d1dSDr. Tilmann Bubeck inode_bl->i_flags = 0; 425393d1d1dSDr. Tilmann Bubeck ei_bl->i_flags = 0; 426ee73f9a5SJeff Layton inode_set_iversion(inode_bl, 1); 427393d1d1dSDr. Tilmann Bubeck i_size_write(inode_bl, 0); 428393d1d1dSDr. Tilmann Bubeck inode_bl->i_mode = S_IFREG; 429e2b911c5SDarrick J. Wong if (ext4_has_feature_extents(sb)) { 430393d1d1dSDr. Tilmann Bubeck ext4_set_inode_flag(inode_bl, EXT4_INODE_EXTENTS); 431393d1d1dSDr. Tilmann Bubeck ext4_ext_tree_init(handle, inode_bl); 432393d1d1dSDr. Tilmann Bubeck } else 433393d1d1dSDr. Tilmann Bubeck memset(ei_bl->i_data, 0, sizeof(ei_bl->i_data)); 434393d1d1dSDr. Tilmann Bubeck } 435393d1d1dSDr. Tilmann Bubeck 436aa507b5fSyangerkun err = dquot_initialize(inode); 437aa507b5fSyangerkun if (err) 438aa507b5fSyangerkun goto err_out1; 439aa507b5fSyangerkun 440aa507b5fSyangerkun size = (qsize_t)(inode->i_blocks) * (1 << 9) + inode->i_bytes; 441aa507b5fSyangerkun size_bl = (qsize_t)(inode_bl->i_blocks) * (1 << 9) + inode_bl->i_bytes; 442aa507b5fSyangerkun diff = size - size_bl; 443393d1d1dSDr. Tilmann Bubeck swap_inode_data(inode, inode_bl); 444393d1d1dSDr. Tilmann Bubeck 445eeca7ea1SDeepa Dinamani inode->i_ctime = inode_bl->i_ctime = current_time(inode); 446393d1d1dSDr. Tilmann Bubeck 44723253068STheodore Ts'o inode->i_generation = prandom_u32(); 44823253068STheodore Ts'o inode_bl->i_generation = prandom_u32(); 4498016e29fSHarshad Shirwadkar ext4_reset_inode_seed(inode); 4508016e29fSHarshad Shirwadkar ext4_reset_inode_seed(inode_bl); 451393d1d1dSDr. Tilmann Bubeck 45227bc446eSbrookxu ext4_discard_preallocations(inode, 0); 453393d1d1dSDr. Tilmann Bubeck 454393d1d1dSDr. Tilmann Bubeck err = ext4_mark_inode_dirty(handle, inode); 455393d1d1dSDr. Tilmann Bubeck if (err < 0) { 456aa507b5fSyangerkun /* No need to update quota information. */ 457393d1d1dSDr. Tilmann Bubeck ext4_warning(inode->i_sb, 458393d1d1dSDr. Tilmann Bubeck "couldn't mark inode #%lu dirty (err %d)", 459393d1d1dSDr. Tilmann Bubeck inode->i_ino, err); 460393d1d1dSDr. Tilmann Bubeck /* Revert all changes: */ 461393d1d1dSDr. Tilmann Bubeck swap_inode_data(inode, inode_bl); 46218aded17STheodore Ts'o ext4_mark_inode_dirty(handle, inode); 463aa507b5fSyangerkun goto err_out1; 464aa507b5fSyangerkun } 465aa507b5fSyangerkun 466aa507b5fSyangerkun blocks = inode_bl->i_blocks; 467aa507b5fSyangerkun bytes = inode_bl->i_bytes; 468aa507b5fSyangerkun inode_bl->i_blocks = inode->i_blocks; 469aa507b5fSyangerkun inode_bl->i_bytes = inode->i_bytes; 470393d1d1dSDr. Tilmann Bubeck err = ext4_mark_inode_dirty(handle, inode_bl); 471393d1d1dSDr. Tilmann Bubeck if (err < 0) { 472aa507b5fSyangerkun /* No need to update quota information. */ 473393d1d1dSDr. Tilmann Bubeck ext4_warning(inode_bl->i_sb, 474393d1d1dSDr. Tilmann Bubeck "couldn't mark inode #%lu dirty (err %d)", 475393d1d1dSDr. Tilmann Bubeck inode_bl->i_ino, err); 476aa507b5fSyangerkun goto revert; 477aa507b5fSyangerkun } 478aa507b5fSyangerkun 479aa507b5fSyangerkun /* Bootloader inode should not be counted into quota information. */ 480aa507b5fSyangerkun if (diff > 0) 481aa507b5fSyangerkun dquot_free_space(inode, diff); 482aa507b5fSyangerkun else 483aa507b5fSyangerkun err = dquot_alloc_space(inode, -1 * diff); 484aa507b5fSyangerkun 485aa507b5fSyangerkun if (err < 0) { 486aa507b5fSyangerkun revert: 487393d1d1dSDr. Tilmann Bubeck /* Revert all changes: */ 488aa507b5fSyangerkun inode_bl->i_blocks = blocks; 489aa507b5fSyangerkun inode_bl->i_bytes = bytes; 490393d1d1dSDr. Tilmann Bubeck swap_inode_data(inode, inode_bl); 491393d1d1dSDr. Tilmann Bubeck ext4_mark_inode_dirty(handle, inode); 49218aded17STheodore Ts'o ext4_mark_inode_dirty(handle, inode_bl); 493393d1d1dSDr. Tilmann Bubeck } 494aa507b5fSyangerkun 495aa507b5fSyangerkun err_out1: 496393d1d1dSDr. Tilmann Bubeck ext4_journal_stop(handle); 497393d1d1dSDr. Tilmann Bubeck ext4_double_up_write_data_sem(inode, inode_bl); 498393d1d1dSDr. Tilmann Bubeck 499a46c68a3Syangerkun err_out: 500d4f5258eSJan Kara filemap_invalidate_unlock(inode->i_mapping); 50130d29b11SZheng Liu journal_err_out: 502375e289eSJ. Bruce Fields unlock_two_nondirectories(inode, inode_bl); 503393d1d1dSDr. Tilmann Bubeck iput(inode_bl); 504393d1d1dSDr. Tilmann Bubeck return err; 505393d1d1dSDr. Tilmann Bubeck } 506393d1d1dSDr. Tilmann Bubeck 507643fa961SChandan Rajendra #ifdef CONFIG_FS_ENCRYPTION 5089bd8212fSMichael Halcrow static int uuid_is_zero(__u8 u[16]) 5099bd8212fSMichael Halcrow { 5109bd8212fSMichael Halcrow int i; 5119bd8212fSMichael Halcrow 5129bd8212fSMichael Halcrow for (i = 0; i < 16; i++) 5139bd8212fSMichael Halcrow if (u[i]) 5149bd8212fSMichael Halcrow return 0; 5159bd8212fSMichael Halcrow return 1; 5169bd8212fSMichael Halcrow } 517ba679017SEric Biggers #endif 5189bd8212fSMichael Halcrow 5192e538403SDarrick J. Wong /* 5202e538403SDarrick J. Wong * If immutable is set and we are not clearing it, we're not allowed to change 5212e538403SDarrick J. Wong * anything else in the inode. Don't error out if we're only trying to set 5222e538403SDarrick J. Wong * immutable on an immutable file. 5232e538403SDarrick J. Wong */ 5242e538403SDarrick J. Wong static int ext4_ioctl_check_immutable(struct inode *inode, __u32 new_projid, 5252e538403SDarrick J. Wong unsigned int flags) 5262e538403SDarrick J. Wong { 5272e538403SDarrick J. Wong struct ext4_inode_info *ei = EXT4_I(inode); 5282e538403SDarrick J. Wong unsigned int oldflags = ei->i_flags; 5292e538403SDarrick J. Wong 5302e538403SDarrick J. Wong if (!(oldflags & EXT4_IMMUTABLE_FL) || !(flags & EXT4_IMMUTABLE_FL)) 5312e538403SDarrick J. Wong return 0; 5322e538403SDarrick J. Wong 5332e538403SDarrick J. Wong if ((oldflags & ~EXT4_IMMUTABLE_FL) != (flags & ~EXT4_IMMUTABLE_FL)) 5342e538403SDarrick J. Wong return -EPERM; 5352e538403SDarrick J. Wong if (ext4_has_feature_project(inode->i_sb) && 5362e538403SDarrick J. Wong __kprojid_val(ei->i_projid) != new_projid) 5372e538403SDarrick J. Wong return -EPERM; 5382e538403SDarrick J. Wong 5392e538403SDarrick J. Wong return 0; 5402e538403SDarrick J. Wong } 5412e538403SDarrick J. Wong 542b383a73fSIra Weiny static void ext4_dax_dontcache(struct inode *inode, unsigned int flags) 543b383a73fSIra Weiny { 544b383a73fSIra Weiny struct ext4_inode_info *ei = EXT4_I(inode); 545b383a73fSIra Weiny 546b383a73fSIra Weiny if (S_ISDIR(inode->i_mode)) 547b383a73fSIra Weiny return; 548b383a73fSIra Weiny 549b383a73fSIra Weiny if (test_opt2(inode->i_sb, DAX_NEVER) || 550b383a73fSIra Weiny test_opt(inode->i_sb, DAX_ALWAYS)) 551b383a73fSIra Weiny return; 552b383a73fSIra Weiny 553b383a73fSIra Weiny if ((ei->i_flags ^ flags) & EXT4_DAX_FL) 554b383a73fSIra Weiny d_mark_dontcache(inode); 555b383a73fSIra Weiny } 556b383a73fSIra Weiny 557b383a73fSIra Weiny static bool dax_compatible(struct inode *inode, unsigned int oldflags, 558b383a73fSIra Weiny unsigned int flags) 559b383a73fSIra Weiny { 5604811d992STheodore Ts'o /* Allow the DAX flag to be changed on inline directories */ 5614811d992STheodore Ts'o if (S_ISDIR(inode->i_mode)) { 5624811d992STheodore Ts'o flags &= ~EXT4_INLINE_DATA_FL; 5634811d992STheodore Ts'o oldflags &= ~EXT4_INLINE_DATA_FL; 5644811d992STheodore Ts'o } 5654811d992STheodore Ts'o 566b383a73fSIra Weiny if (flags & EXT4_DAX_FL) { 567b383a73fSIra Weiny if ((oldflags & EXT4_DAX_MUT_EXCL) || 568b383a73fSIra Weiny ext4_test_inode_state(inode, 569b383a73fSIra Weiny EXT4_STATE_VERITY_IN_PROGRESS)) { 570b383a73fSIra Weiny return false; 571b383a73fSIra Weiny } 572b383a73fSIra Weiny } 573b383a73fSIra Weiny 574b383a73fSIra Weiny if ((flags & EXT4_DAX_MUT_EXCL) && (oldflags & EXT4_DAX_FL)) 575b383a73fSIra Weiny return false; 576b383a73fSIra Weiny 577b383a73fSIra Weiny return true; 578b383a73fSIra Weiny } 579b383a73fSIra Weiny 5809b7365fcSLi Xi static int ext4_ioctl_setflags(struct inode *inode, 5819b7365fcSLi Xi unsigned int flags) 582ac27a0ecSDave Kleikamp { 583617ba13bSMingming Cao struct ext4_inode_info *ei = EXT4_I(inode); 584ac27a0ecSDave Kleikamp handle_t *handle = NULL; 585fdde368eSAnton Protopopov int err = -EPERM, migrate = 0; 586617ba13bSMingming Cao struct ext4_iloc iloc; 58779906964STheodore Ts'o unsigned int oldflags, mask, i; 588b886ee3eSGabriel Krisman Bertazi struct super_block *sb = inode->i_sb; 589ac27a0ecSDave Kleikamp 590e47776a0SJan Kara /* Is it quota file? Do not allow user to mess with it */ 59102749a4cSTahsin Erdogan if (ext4_is_quota_file(inode)) 59242a74f20SDave Hansen goto flags_out; 59342a74f20SDave Hansen 594ac27a0ecSDave Kleikamp oldflags = ei->i_flags; 595ac27a0ecSDave Kleikamp /* 596ac27a0ecSDave Kleikamp * The JOURNAL_DATA flag can only be changed by 597ac27a0ecSDave Kleikamp * the relevant capability. 598ac27a0ecSDave Kleikamp */ 599fcebc794SIra Weiny if ((flags ^ oldflags) & (EXT4_JOURNAL_DATA_FL)) { 60042a74f20SDave Hansen if (!capable(CAP_SYS_RESOURCE)) 60142a74f20SDave Hansen goto flags_out; 602ac27a0ecSDave Kleikamp } 603b383a73fSIra Weiny 604b383a73fSIra Weiny if (!dax_compatible(inode, oldflags, flags)) { 605b383a73fSIra Weiny err = -EOPNOTSUPP; 606b383a73fSIra Weiny goto flags_out; 607b383a73fSIra Weiny } 608b383a73fSIra Weiny 609996bb9fdSTheodore Ts'o if ((flags ^ oldflags) & EXT4_EXTENTS_FL) 6104db46fc2SAneesh Kumar K.V migrate = 1; 611ac27a0ecSDave Kleikamp 612b886ee3eSGabriel Krisman Bertazi if ((flags ^ oldflags) & EXT4_CASEFOLD_FL) { 613b886ee3eSGabriel Krisman Bertazi if (!ext4_has_feature_casefold(sb)) { 614b886ee3eSGabriel Krisman Bertazi err = -EOPNOTSUPP; 615b886ee3eSGabriel Krisman Bertazi goto flags_out; 616b886ee3eSGabriel Krisman Bertazi } 617b886ee3eSGabriel Krisman Bertazi 618b886ee3eSGabriel Krisman Bertazi if (!S_ISDIR(inode->i_mode)) { 619b886ee3eSGabriel Krisman Bertazi err = -ENOTDIR; 620b886ee3eSGabriel Krisman Bertazi goto flags_out; 621b886ee3eSGabriel Krisman Bertazi } 622b886ee3eSGabriel Krisman Bertazi 623b886ee3eSGabriel Krisman Bertazi if (!ext4_empty_dir(inode)) { 624b886ee3eSGabriel Krisman Bertazi err = -ENOTEMPTY; 625b886ee3eSGabriel Krisman Bertazi goto flags_out; 626b886ee3eSGabriel Krisman Bertazi } 627b886ee3eSGabriel Krisman Bertazi } 628b886ee3eSGabriel Krisman Bertazi 6292e538403SDarrick J. Wong /* 6302e538403SDarrick J. Wong * Wait for all pending directio and then flush all the dirty pages 6312e538403SDarrick J. Wong * for this file. The flush marks all the pages readonly, so any 6322e538403SDarrick J. Wong * subsequent attempt to write to the file (particularly mmap pages) 6332e538403SDarrick J. Wong * will come through the filesystem and fail. 6342e538403SDarrick J. Wong */ 6352e538403SDarrick J. Wong if (S_ISREG(inode->i_mode) && !IS_IMMUTABLE(inode) && 6362e538403SDarrick J. Wong (flags & EXT4_IMMUTABLE_FL)) { 6372e538403SDarrick J. Wong inode_dio_wait(inode); 6382e538403SDarrick J. Wong err = filemap_write_and_wait(inode->i_mapping); 6392e538403SDarrick J. Wong if (err) 6402e538403SDarrick J. Wong goto flags_out; 6412e538403SDarrick J. Wong } 6422e538403SDarrick J. Wong 6439924a92aSTheodore Ts'o handle = ext4_journal_start(inode, EXT4_HT_INODE, 1); 644ac27a0ecSDave Kleikamp if (IS_ERR(handle)) { 64542a74f20SDave Hansen err = PTR_ERR(handle); 64642a74f20SDave Hansen goto flags_out; 647ac27a0ecSDave Kleikamp } 648ac27a0ecSDave Kleikamp if (IS_SYNC(inode)) 6490390131bSFrank Mayhar ext4_handle_sync(handle); 650617ba13bSMingming Cao err = ext4_reserve_inode_write(handle, inode, &iloc); 651ac27a0ecSDave Kleikamp if (err) 652ac27a0ecSDave Kleikamp goto flags_err; 653ac27a0ecSDave Kleikamp 654b383a73fSIra Weiny ext4_dax_dontcache(inode, flags); 655b383a73fSIra Weiny 65679906964STheodore Ts'o for (i = 0, mask = 1; i < 32; i++, mask <<= 1) { 65779906964STheodore Ts'o if (!(mask & EXT4_FL_USER_MODIFIABLE)) 65879906964STheodore Ts'o continue; 659f8011d93SJan Kara /* These flags get special treatment later */ 660f8011d93SJan Kara if (mask == EXT4_JOURNAL_DATA_FL || mask == EXT4_EXTENTS_FL) 661f8011d93SJan Kara continue; 66279906964STheodore Ts'o if (mask & flags) 66379906964STheodore Ts'o ext4_set_inode_flag(inode, i); 66479906964STheodore Ts'o else 66579906964STheodore Ts'o ext4_clear_inode_flag(inode, i); 66679906964STheodore Ts'o } 667ac27a0ecSDave Kleikamp 668043546e4SIra Weiny ext4_set_inode_flags(inode, false); 669043546e4SIra Weiny 670eeca7ea1SDeepa Dinamani inode->i_ctime = current_time(inode); 671ac27a0ecSDave Kleikamp 672617ba13bSMingming Cao err = ext4_mark_iloc_dirty(handle, inode, &iloc); 673ac27a0ecSDave Kleikamp flags_err: 674617ba13bSMingming Cao ext4_journal_stop(handle); 67542a74f20SDave Hansen if (err) 67642a74f20SDave Hansen goto flags_out; 677ac27a0ecSDave Kleikamp 678fcebc794SIra Weiny if ((flags ^ oldflags) & (EXT4_JOURNAL_DATA_FL)) { 679e9072d85SRoss Zwisler /* 680e9072d85SRoss Zwisler * Changes to the journaling mode can cause unsafe changes to 681ff694ab6SIra Weiny * S_DAX if the inode is DAX 682e9072d85SRoss Zwisler */ 683ff694ab6SIra Weiny if (IS_DAX(inode)) { 684e9072d85SRoss Zwisler err = -EBUSY; 685e9072d85SRoss Zwisler goto flags_out; 686e9072d85SRoss Zwisler } 687e9072d85SRoss Zwisler 688fcebc794SIra Weiny err = ext4_change_inode_journal_flag(inode, 689fcebc794SIra Weiny flags & EXT4_JOURNAL_DATA_FL); 6904db46fc2SAneesh Kumar K.V if (err) 6914db46fc2SAneesh Kumar K.V goto flags_out; 692e9072d85SRoss Zwisler } 693996bb9fdSTheodore Ts'o if (migrate) { 694996bb9fdSTheodore Ts'o if (flags & EXT4_EXTENTS_FL) 6954db46fc2SAneesh Kumar K.V err = ext4_ext_migrate(inode); 696996bb9fdSTheodore Ts'o else 697996bb9fdSTheodore Ts'o err = ext4_ind_migrate(inode); 698996bb9fdSTheodore Ts'o } 699996bb9fdSTheodore Ts'o 70042a74f20SDave Hansen flags_out: 7019b7365fcSLi Xi return err; 7029b7365fcSLi Xi } 7039b7365fcSLi Xi 7049b7365fcSLi Xi #ifdef CONFIG_QUOTA 7054db5c2e6SMiklos Szeredi static int ext4_ioctl_setproject(struct inode *inode, __u32 projid) 7069b7365fcSLi Xi { 7079b7365fcSLi Xi struct super_block *sb = inode->i_sb; 7089b7365fcSLi Xi struct ext4_inode_info *ei = EXT4_I(inode); 7099b7365fcSLi Xi int err, rc; 7109b7365fcSLi Xi handle_t *handle; 7119b7365fcSLi Xi kprojid_t kprojid; 7129b7365fcSLi Xi struct ext4_iloc iloc; 7139b7365fcSLi Xi struct ext4_inode *raw_inode; 714079788d0SWang Shilong struct dquot *transfer_to[MAXQUOTAS] = { }; 7159b7365fcSLi Xi 7160b7b7779SKaho Ng if (!ext4_has_feature_project(sb)) { 7179b7365fcSLi Xi if (projid != EXT4_DEF_PROJID) 7189b7365fcSLi Xi return -EOPNOTSUPP; 7199b7365fcSLi Xi else 7209b7365fcSLi Xi return 0; 7219b7365fcSLi Xi } 7229b7365fcSLi Xi 7239b7365fcSLi Xi if (EXT4_INODE_SIZE(sb) <= EXT4_GOOD_OLD_INODE_SIZE) 7249b7365fcSLi Xi return -EOPNOTSUPP; 7259b7365fcSLi Xi 7269b7365fcSLi Xi kprojid = make_kprojid(&init_user_ns, (projid_t)projid); 7279b7365fcSLi Xi 7289b7365fcSLi Xi if (projid_eq(kprojid, EXT4_I(inode)->i_projid)) 7299b7365fcSLi Xi return 0; 7309b7365fcSLi Xi 7319b7365fcSLi Xi err = -EPERM; 7329b7365fcSLi Xi /* Is it quota file? Do not allow user to mess with it */ 73302749a4cSTahsin Erdogan if (ext4_is_quota_file(inode)) 734dc7ac6c4SWang Shilong return err; 7359b7365fcSLi Xi 7369b7365fcSLi Xi err = ext4_get_inode_loc(inode, &iloc); 7379b7365fcSLi Xi if (err) 738dc7ac6c4SWang Shilong return err; 7399b7365fcSLi Xi 7409b7365fcSLi Xi raw_inode = ext4_raw_inode(&iloc); 7419b7365fcSLi Xi if (!EXT4_FITS_IN_INODE(raw_inode, ei, i_projid)) { 742c03b45b8SMiao Xie err = ext4_expand_extra_isize(inode, 743c03b45b8SMiao Xie EXT4_SB(sb)->s_want_extra_isize, 744c03b45b8SMiao Xie &iloc); 745c03b45b8SMiao Xie if (err) 746dc7ac6c4SWang Shilong return err; 747c03b45b8SMiao Xie } else { 7489b7365fcSLi Xi brelse(iloc.bh); 749c03b45b8SMiao Xie } 7509b7365fcSLi Xi 751182a79e0SWang Shilong err = dquot_initialize(inode); 752182a79e0SWang Shilong if (err) 753182a79e0SWang Shilong return err; 7549b7365fcSLi Xi 7559b7365fcSLi Xi handle = ext4_journal_start(inode, EXT4_HT_QUOTA, 7569b7365fcSLi Xi EXT4_QUOTA_INIT_BLOCKS(sb) + 7579b7365fcSLi Xi EXT4_QUOTA_DEL_BLOCKS(sb) + 3); 758dc7ac6c4SWang Shilong if (IS_ERR(handle)) 759dc7ac6c4SWang Shilong return PTR_ERR(handle); 7609b7365fcSLi Xi 7619b7365fcSLi Xi err = ext4_reserve_inode_write(handle, inode, &iloc); 7629b7365fcSLi Xi if (err) 7639b7365fcSLi Xi goto out_stop; 7649b7365fcSLi Xi 7659b7365fcSLi Xi transfer_to[PRJQUOTA] = dqget(sb, make_kqid_projid(kprojid)); 766ff0bc084SSeth Forshee if (!IS_ERR(transfer_to[PRJQUOTA])) { 7677a9ca53aSTahsin Erdogan 7687a9ca53aSTahsin Erdogan /* __dquot_transfer() calls back ext4_get_inode_usage() which 7697a9ca53aSTahsin Erdogan * counts xattr inode references. 7707a9ca53aSTahsin Erdogan */ 7717a9ca53aSTahsin Erdogan down_read(&EXT4_I(inode)->xattr_sem); 7729b7365fcSLi Xi err = __dquot_transfer(inode, transfer_to); 7737a9ca53aSTahsin Erdogan up_read(&EXT4_I(inode)->xattr_sem); 7749b7365fcSLi Xi dqput(transfer_to[PRJQUOTA]); 7759b7365fcSLi Xi if (err) 7769b7365fcSLi Xi goto out_dirty; 7779b7365fcSLi Xi } 778079788d0SWang Shilong 7799b7365fcSLi Xi EXT4_I(inode)->i_projid = kprojid; 780eeca7ea1SDeepa Dinamani inode->i_ctime = current_time(inode); 7819b7365fcSLi Xi out_dirty: 7829b7365fcSLi Xi rc = ext4_mark_iloc_dirty(handle, inode, &iloc); 7839b7365fcSLi Xi if (!err) 7849b7365fcSLi Xi err = rc; 7859b7365fcSLi Xi out_stop: 7869b7365fcSLi Xi ext4_journal_stop(handle); 7879b7365fcSLi Xi return err; 7889b7365fcSLi Xi } 7899b7365fcSLi Xi #else 7904db5c2e6SMiklos Szeredi static int ext4_ioctl_setproject(struct inode *inode, __u32 projid) 7919b7365fcSLi Xi { 7929b7365fcSLi Xi if (projid != EXT4_DEF_PROJID) 7939b7365fcSLi Xi return -EOPNOTSUPP; 7949b7365fcSLi Xi return 0; 7959b7365fcSLi Xi } 7969b7365fcSLi Xi #endif 7979b7365fcSLi Xi 7981a20a630SEric Biggers static int ext4_shutdown(struct super_block *sb, unsigned long arg) 799783d9485STheodore Ts'o { 800783d9485STheodore Ts'o struct ext4_sb_info *sbi = EXT4_SB(sb); 801783d9485STheodore Ts'o __u32 flags; 802783d9485STheodore Ts'o 803783d9485STheodore Ts'o if (!capable(CAP_SYS_ADMIN)) 804783d9485STheodore Ts'o return -EPERM; 805783d9485STheodore Ts'o 806783d9485STheodore Ts'o if (get_user(flags, (__u32 __user *)arg)) 807783d9485STheodore Ts'o return -EFAULT; 808783d9485STheodore Ts'o 809783d9485STheodore Ts'o if (flags > EXT4_GOING_FLAGS_NOLOGFLUSH) 810783d9485STheodore Ts'o return -EINVAL; 811783d9485STheodore Ts'o 812783d9485STheodore Ts'o if (ext4_forced_shutdown(sbi)) 813783d9485STheodore Ts'o return 0; 814783d9485STheodore Ts'o 815783d9485STheodore Ts'o ext4_msg(sb, KERN_ALERT, "shut down requested (%d)", flags); 816ccf0f32aSTheodore Ts'o trace_ext4_shutdown(sb, flags); 817783d9485STheodore Ts'o 818783d9485STheodore Ts'o switch (flags) { 819783d9485STheodore Ts'o case EXT4_GOING_FLAGS_DEFAULT: 820783d9485STheodore Ts'o freeze_bdev(sb->s_bdev); 821783d9485STheodore Ts'o set_bit(EXT4_FLAGS_SHUTDOWN, &sbi->s_ext4_flags); 822040f04bdSChristoph Hellwig thaw_bdev(sb->s_bdev); 823783d9485STheodore Ts'o break; 824783d9485STheodore Ts'o case EXT4_GOING_FLAGS_LOGFLUSH: 825783d9485STheodore Ts'o set_bit(EXT4_FLAGS_SHUTDOWN, &sbi->s_ext4_flags); 826783d9485STheodore Ts'o if (sbi->s_journal && !is_journal_aborted(sbi->s_journal)) { 827783d9485STheodore Ts'o (void) ext4_force_commit(sb); 828fb7c0244STheodore Ts'o jbd2_journal_abort(sbi->s_journal, -ESHUTDOWN); 829783d9485STheodore Ts'o } 830783d9485STheodore Ts'o break; 831783d9485STheodore Ts'o case EXT4_GOING_FLAGS_NOLOGFLUSH: 832783d9485STheodore Ts'o set_bit(EXT4_FLAGS_SHUTDOWN, &sbi->s_ext4_flags); 833a6d9946bSTheodore Ts'o if (sbi->s_journal && !is_journal_aborted(sbi->s_journal)) 834fb7c0244STheodore Ts'o jbd2_journal_abort(sbi->s_journal, -ESHUTDOWN); 835783d9485STheodore Ts'o break; 836783d9485STheodore Ts'o default: 837783d9485STheodore Ts'o return -EINVAL; 838783d9485STheodore Ts'o } 839783d9485STheodore Ts'o clear_opt(sb, DISCARD); 840783d9485STheodore Ts'o return 0; 841783d9485STheodore Ts'o } 842783d9485STheodore Ts'o 8430c9ec4beSDarrick J. Wong struct getfsmap_info { 8440c9ec4beSDarrick J. Wong struct super_block *gi_sb; 8450c9ec4beSDarrick J. Wong struct fsmap_head __user *gi_data; 8460c9ec4beSDarrick J. Wong unsigned int gi_idx; 8470c9ec4beSDarrick J. Wong __u32 gi_last_flags; 8480c9ec4beSDarrick J. Wong }; 8490c9ec4beSDarrick J. Wong 8500c9ec4beSDarrick J. Wong static int ext4_getfsmap_format(struct ext4_fsmap *xfm, void *priv) 8510c9ec4beSDarrick J. Wong { 8520c9ec4beSDarrick J. Wong struct getfsmap_info *info = priv; 8530c9ec4beSDarrick J. Wong struct fsmap fm; 8540c9ec4beSDarrick J. Wong 8550c9ec4beSDarrick J. Wong trace_ext4_getfsmap_mapping(info->gi_sb, xfm); 8560c9ec4beSDarrick J. Wong 8570c9ec4beSDarrick J. Wong info->gi_last_flags = xfm->fmr_flags; 8580c9ec4beSDarrick J. Wong ext4_fsmap_from_internal(info->gi_sb, &fm, xfm); 8590c9ec4beSDarrick J. Wong if (copy_to_user(&info->gi_data->fmh_recs[info->gi_idx++], &fm, 8600c9ec4beSDarrick J. Wong sizeof(struct fsmap))) 8610c9ec4beSDarrick J. Wong return -EFAULT; 8620c9ec4beSDarrick J. Wong 8630c9ec4beSDarrick J. Wong return 0; 8640c9ec4beSDarrick J. Wong } 8650c9ec4beSDarrick J. Wong 8660c9ec4beSDarrick J. Wong static int ext4_ioc_getfsmap(struct super_block *sb, 8670c9ec4beSDarrick J. Wong struct fsmap_head __user *arg) 8680c9ec4beSDarrick J. Wong { 8690ba33facSTheodore Ts'o struct getfsmap_info info = { NULL }; 8700c9ec4beSDarrick J. Wong struct ext4_fsmap_head xhead = {0}; 8710c9ec4beSDarrick J. Wong struct fsmap_head head; 8720c9ec4beSDarrick J. Wong bool aborted = false; 8730c9ec4beSDarrick J. Wong int error; 8740c9ec4beSDarrick J. Wong 8750c9ec4beSDarrick J. Wong if (copy_from_user(&head, arg, sizeof(struct fsmap_head))) 8760c9ec4beSDarrick J. Wong return -EFAULT; 8770c9ec4beSDarrick J. Wong if (memchr_inv(head.fmh_reserved, 0, sizeof(head.fmh_reserved)) || 8780c9ec4beSDarrick J. Wong memchr_inv(head.fmh_keys[0].fmr_reserved, 0, 8790c9ec4beSDarrick J. Wong sizeof(head.fmh_keys[0].fmr_reserved)) || 8800c9ec4beSDarrick J. Wong memchr_inv(head.fmh_keys[1].fmr_reserved, 0, 8810c9ec4beSDarrick J. Wong sizeof(head.fmh_keys[1].fmr_reserved))) 8820c9ec4beSDarrick J. Wong return -EINVAL; 8830c9ec4beSDarrick J. Wong /* 8840c9ec4beSDarrick J. Wong * ext4 doesn't report file extents at all, so the only valid 8850c9ec4beSDarrick J. Wong * file offsets are the magic ones (all zeroes or all ones). 8860c9ec4beSDarrick J. Wong */ 8870c9ec4beSDarrick J. Wong if (head.fmh_keys[0].fmr_offset || 8880c9ec4beSDarrick J. Wong (head.fmh_keys[1].fmr_offset != 0 && 8890c9ec4beSDarrick J. Wong head.fmh_keys[1].fmr_offset != -1ULL)) 8900c9ec4beSDarrick J. Wong return -EINVAL; 8910c9ec4beSDarrick J. Wong 8920c9ec4beSDarrick J. Wong xhead.fmh_iflags = head.fmh_iflags; 8930c9ec4beSDarrick J. Wong xhead.fmh_count = head.fmh_count; 8940c9ec4beSDarrick J. Wong ext4_fsmap_to_internal(sb, &xhead.fmh_keys[0], &head.fmh_keys[0]); 8950c9ec4beSDarrick J. Wong ext4_fsmap_to_internal(sb, &xhead.fmh_keys[1], &head.fmh_keys[1]); 8960c9ec4beSDarrick J. Wong 8970c9ec4beSDarrick J. Wong trace_ext4_getfsmap_low_key(sb, &xhead.fmh_keys[0]); 8980c9ec4beSDarrick J. Wong trace_ext4_getfsmap_high_key(sb, &xhead.fmh_keys[1]); 8990c9ec4beSDarrick J. Wong 9000c9ec4beSDarrick J. Wong info.gi_sb = sb; 9010c9ec4beSDarrick J. Wong info.gi_data = arg; 9020c9ec4beSDarrick J. Wong error = ext4_getfsmap(sb, &xhead, ext4_getfsmap_format, &info); 9031fc57ca5SJiapeng Chong if (error == EXT4_QUERY_RANGE_ABORT) 9040c9ec4beSDarrick J. Wong aborted = true; 9051fc57ca5SJiapeng Chong else if (error) 9060c9ec4beSDarrick J. Wong return error; 9070c9ec4beSDarrick J. Wong 9080c9ec4beSDarrick J. Wong /* If we didn't abort, set the "last" flag in the last fmx */ 9090c9ec4beSDarrick J. Wong if (!aborted && info.gi_idx) { 9100c9ec4beSDarrick J. Wong info.gi_last_flags |= FMR_OF_LAST; 9110c9ec4beSDarrick J. Wong if (copy_to_user(&info.gi_data->fmh_recs[info.gi_idx - 1].fmr_flags, 9120c9ec4beSDarrick J. Wong &info.gi_last_flags, 9130c9ec4beSDarrick J. Wong sizeof(info.gi_last_flags))) 9140c9ec4beSDarrick J. Wong return -EFAULT; 9150c9ec4beSDarrick J. Wong } 9160c9ec4beSDarrick J. Wong 9170c9ec4beSDarrick J. Wong /* copy back header */ 9180c9ec4beSDarrick J. Wong head.fmh_entries = xhead.fmh_entries; 9190c9ec4beSDarrick J. Wong head.fmh_oflags = xhead.fmh_oflags; 9200c9ec4beSDarrick J. Wong if (copy_to_user(arg, &head, sizeof(struct fsmap_head))) 9210c9ec4beSDarrick J. Wong return -EFAULT; 9220c9ec4beSDarrick J. Wong 9230c9ec4beSDarrick J. Wong return 0; 9240c9ec4beSDarrick J. Wong } 9250c9ec4beSDarrick J. Wong 926e145b35bSAl Viro static long ext4_ioctl_group_add(struct file *file, 927e145b35bSAl Viro struct ext4_new_group_data *input) 928e145b35bSAl Viro { 929e145b35bSAl Viro struct super_block *sb = file_inode(file)->i_sb; 930e145b35bSAl Viro int err, err2=0; 931e145b35bSAl Viro 932e145b35bSAl Viro err = ext4_resize_begin(sb); 933e145b35bSAl Viro if (err) 934e145b35bSAl Viro return err; 935e145b35bSAl Viro 9368813587aSTheodore Ts'o if (ext4_has_feature_bigalloc(sb)) { 9378813587aSTheodore Ts'o ext4_msg(sb, KERN_ERR, 9388813587aSTheodore Ts'o "Online resizing not supported with bigalloc"); 9398813587aSTheodore Ts'o err = -EOPNOTSUPP; 9408813587aSTheodore Ts'o goto group_add_out; 9418813587aSTheodore Ts'o } 9428813587aSTheodore Ts'o 943e145b35bSAl Viro err = mnt_want_write_file(file); 944e145b35bSAl Viro if (err) 945e145b35bSAl Viro goto group_add_out; 946e145b35bSAl Viro 947e145b35bSAl Viro err = ext4_group_add(sb, input); 948e145b35bSAl Viro if (EXT4_SB(sb)->s_journal) { 949e145b35bSAl Viro jbd2_journal_lock_updates(EXT4_SB(sb)->s_journal); 95001d5d965SLeah Rumancik err2 = jbd2_journal_flush(EXT4_SB(sb)->s_journal, 0); 951e145b35bSAl Viro jbd2_journal_unlock_updates(EXT4_SB(sb)->s_journal); 952e145b35bSAl Viro } 953e145b35bSAl Viro if (err == 0) 954e145b35bSAl Viro err = err2; 955e145b35bSAl Viro mnt_drop_write_file(file); 956e145b35bSAl Viro if (!err && ext4_has_group_desc_csum(sb) && 957e145b35bSAl Viro test_opt(sb, INIT_INODE_TABLE)) 958e145b35bSAl Viro err = ext4_register_li_request(sb, input->group); 959e145b35bSAl Viro group_add_out: 960e145b35bSAl Viro ext4_resize_end(sb); 961e145b35bSAl Viro return err; 962e145b35bSAl Viro } 963e145b35bSAl Viro 9644db5c2e6SMiklos Szeredi int ext4_fileattr_get(struct dentry *dentry, struct fileattr *fa) 965dc7ac6c4SWang Shilong { 9664db5c2e6SMiklos Szeredi struct inode *inode = d_inode(dentry); 9677b0e492eSDarrick J. Wong struct ext4_inode_info *ei = EXT4_I(inode); 9684db5c2e6SMiklos Szeredi u32 flags = ei->i_flags & EXT4_FL_USER_VISIBLE; 969dc7ac6c4SWang Shilong 9704db5c2e6SMiklos Szeredi if (S_ISREG(inode->i_mode)) 9714db5c2e6SMiklos Szeredi flags &= ~FS_PROJINHERIT_FL; 972dc7ac6c4SWang Shilong 9734db5c2e6SMiklos Szeredi fileattr_fill_flags(fa, flags); 9747b0e492eSDarrick J. Wong if (ext4_has_feature_project(inode->i_sb)) 9757b0e492eSDarrick J. Wong fa->fsx_projid = from_kprojid(&init_user_ns, ei->i_projid); 9764db5c2e6SMiklos Szeredi 9774db5c2e6SMiklos Szeredi return 0; 9784db5c2e6SMiklos Szeredi } 9794db5c2e6SMiklos Szeredi 9804db5c2e6SMiklos Szeredi int ext4_fileattr_set(struct user_namespace *mnt_userns, 9814db5c2e6SMiklos Szeredi struct dentry *dentry, struct fileattr *fa) 9824db5c2e6SMiklos Szeredi { 9834db5c2e6SMiklos Szeredi struct inode *inode = d_inode(dentry); 9844db5c2e6SMiklos Szeredi u32 flags = fa->flags; 9854db5c2e6SMiklos Szeredi int err = -EOPNOTSUPP; 9864db5c2e6SMiklos Szeredi 9874db5c2e6SMiklos Szeredi if (flags & ~EXT4_FL_USER_VISIBLE) 9884db5c2e6SMiklos Szeredi goto out; 9894db5c2e6SMiklos Szeredi 9904db5c2e6SMiklos Szeredi /* 9914db5c2e6SMiklos Szeredi * chattr(1) grabs flags via GETFLAGS, modifies the result and 9924db5c2e6SMiklos Szeredi * passes that to SETFLAGS. So we cannot easily make SETFLAGS 9934db5c2e6SMiklos Szeredi * more restrictive than just silently masking off visible but 9944db5c2e6SMiklos Szeredi * not settable flags as we always did. 9954db5c2e6SMiklos Szeredi */ 9964db5c2e6SMiklos Szeredi flags &= EXT4_FL_USER_MODIFIABLE; 9974db5c2e6SMiklos Szeredi if (ext4_mask_flags(inode->i_mode, flags) != flags) 9984db5c2e6SMiklos Szeredi goto out; 9994db5c2e6SMiklos Szeredi err = ext4_ioctl_check_immutable(inode, fa->fsx_projid, flags); 10004db5c2e6SMiklos Szeredi if (err) 10014db5c2e6SMiklos Szeredi goto out; 10024db5c2e6SMiklos Szeredi err = ext4_ioctl_setflags(inode, flags); 10034db5c2e6SMiklos Szeredi if (err) 10044db5c2e6SMiklos Szeredi goto out; 10054db5c2e6SMiklos Szeredi err = ext4_ioctl_setproject(inode, fa->fsx_projid); 10064db5c2e6SMiklos Szeredi out: 10074db5c2e6SMiklos Szeredi return err; 1008dc7ac6c4SWang Shilong } 1009dc7ac6c4SWang Shilong 1010bb5835edSTheodore Ts'o /* So that the fiemap access checks can't overflow on 32 bit machines. */ 1011bb5835edSTheodore Ts'o #define FIEMAP_MAX_EXTENTS (UINT_MAX / sizeof(struct fiemap_extent)) 1012bb5835edSTheodore Ts'o 1013bb5835edSTheodore Ts'o static int ext4_ioctl_get_es_cache(struct file *filp, unsigned long arg) 1014bb5835edSTheodore Ts'o { 1015bb5835edSTheodore Ts'o struct fiemap fiemap; 1016bb5835edSTheodore Ts'o struct fiemap __user *ufiemap = (struct fiemap __user *) arg; 1017bb5835edSTheodore Ts'o struct fiemap_extent_info fieinfo = { 0, }; 1018bb5835edSTheodore Ts'o struct inode *inode = file_inode(filp); 1019bb5835edSTheodore Ts'o int error; 1020bb5835edSTheodore Ts'o 1021bb5835edSTheodore Ts'o if (copy_from_user(&fiemap, ufiemap, sizeof(fiemap))) 1022bb5835edSTheodore Ts'o return -EFAULT; 1023bb5835edSTheodore Ts'o 1024bb5835edSTheodore Ts'o if (fiemap.fm_extent_count > FIEMAP_MAX_EXTENTS) 1025bb5835edSTheodore Ts'o return -EINVAL; 1026bb5835edSTheodore Ts'o 1027bb5835edSTheodore Ts'o fieinfo.fi_flags = fiemap.fm_flags; 1028bb5835edSTheodore Ts'o fieinfo.fi_extents_max = fiemap.fm_extent_count; 1029bb5835edSTheodore Ts'o fieinfo.fi_extents_start = ufiemap->fm_extents; 1030bb5835edSTheodore Ts'o 1031328e24aeSChristoph Hellwig error = ext4_get_es_cache(inode, &fieinfo, fiemap.fm_start, 1032328e24aeSChristoph Hellwig fiemap.fm_length); 1033bb5835edSTheodore Ts'o fiemap.fm_flags = fieinfo.fi_flags; 1034bb5835edSTheodore Ts'o fiemap.fm_mapped_extents = fieinfo.fi_extents_mapped; 1035bb5835edSTheodore Ts'o if (copy_to_user(ufiemap, &fiemap, sizeof(fiemap))) 1036bb5835edSTheodore Ts'o error = -EFAULT; 1037bb5835edSTheodore Ts'o 1038bb5835edSTheodore Ts'o return error; 1039bb5835edSTheodore Ts'o } 1040bb5835edSTheodore Ts'o 1041351a0a3fSLeah Rumancik static int ext4_ioctl_checkpoint(struct file *filp, unsigned long arg) 1042351a0a3fSLeah Rumancik { 1043351a0a3fSLeah Rumancik int err = 0; 1044351a0a3fSLeah Rumancik __u32 flags = 0; 1045351a0a3fSLeah Rumancik unsigned int flush_flags = 0; 1046351a0a3fSLeah Rumancik struct super_block *sb = file_inode(filp)->i_sb; 1047351a0a3fSLeah Rumancik 1048351a0a3fSLeah Rumancik if (copy_from_user(&flags, (__u32 __user *)arg, 1049351a0a3fSLeah Rumancik sizeof(__u32))) 1050351a0a3fSLeah Rumancik return -EFAULT; 1051351a0a3fSLeah Rumancik 1052351a0a3fSLeah Rumancik if (!capable(CAP_SYS_ADMIN)) 1053351a0a3fSLeah Rumancik return -EPERM; 1054351a0a3fSLeah Rumancik 1055351a0a3fSLeah Rumancik /* check for invalid bits set */ 1056351a0a3fSLeah Rumancik if ((flags & ~EXT4_IOC_CHECKPOINT_FLAG_VALID) || 1057351a0a3fSLeah Rumancik ((flags & JBD2_JOURNAL_FLUSH_DISCARD) && 1058351a0a3fSLeah Rumancik (flags & JBD2_JOURNAL_FLUSH_ZEROOUT))) 1059351a0a3fSLeah Rumancik return -EINVAL; 1060351a0a3fSLeah Rumancik 1061351a0a3fSLeah Rumancik if (!EXT4_SB(sb)->s_journal) 1062351a0a3fSLeah Rumancik return -ENODEV; 1063351a0a3fSLeah Rumancik 106409559019STheodore Ts'o if (flags & ~EXT4_IOC_CHECKPOINT_FLAG_VALID) 1065351a0a3fSLeah Rumancik return -EINVAL; 1066351a0a3fSLeah Rumancik 1067*70200574SChristoph Hellwig if ((flags & JBD2_JOURNAL_FLUSH_DISCARD) && 1068*70200574SChristoph Hellwig !bdev_max_discard_sectors(EXT4_SB(sb)->s_journal->j_dev)) 1069351a0a3fSLeah Rumancik return -EOPNOTSUPP; 1070351a0a3fSLeah Rumancik 1071351a0a3fSLeah Rumancik if (flags & EXT4_IOC_CHECKPOINT_FLAG_DRY_RUN) 1072351a0a3fSLeah Rumancik return 0; 1073351a0a3fSLeah Rumancik 1074351a0a3fSLeah Rumancik if (flags & EXT4_IOC_CHECKPOINT_FLAG_DISCARD) 1075351a0a3fSLeah Rumancik flush_flags |= JBD2_JOURNAL_FLUSH_DISCARD; 1076351a0a3fSLeah Rumancik 1077351a0a3fSLeah Rumancik if (flags & EXT4_IOC_CHECKPOINT_FLAG_ZEROOUT) { 1078351a0a3fSLeah Rumancik flush_flags |= JBD2_JOURNAL_FLUSH_ZEROOUT; 1079351a0a3fSLeah Rumancik pr_info_ratelimited("warning: checkpointing journal with EXT4_IOC_CHECKPOINT_FLAG_ZEROOUT can be slow"); 1080351a0a3fSLeah Rumancik } 1081351a0a3fSLeah Rumancik 1082351a0a3fSLeah Rumancik jbd2_journal_lock_updates(EXT4_SB(sb)->s_journal); 1083351a0a3fSLeah Rumancik err = jbd2_journal_flush(EXT4_SB(sb)->s_journal, flush_flags); 1084351a0a3fSLeah Rumancik jbd2_journal_unlock_updates(EXT4_SB(sb)->s_journal); 1085351a0a3fSLeah Rumancik 1086351a0a3fSLeah Rumancik return err; 1087351a0a3fSLeah Rumancik } 1088351a0a3fSLeah Rumancik 1089bbc605cdSLukas Czerner static int ext4_ioctl_setlabel(struct file *filp, const char __user *user_label) 1090bbc605cdSLukas Czerner { 1091bbc605cdSLukas Czerner size_t len; 1092bbc605cdSLukas Czerner int ret = 0; 1093bbc605cdSLukas Czerner char new_label[EXT4_LABEL_MAX + 1]; 1094bbc605cdSLukas Czerner struct super_block *sb = file_inode(filp)->i_sb; 1095bbc605cdSLukas Czerner 1096bbc605cdSLukas Czerner if (!capable(CAP_SYS_ADMIN)) 1097bbc605cdSLukas Czerner return -EPERM; 1098bbc605cdSLukas Czerner 1099bbc605cdSLukas Czerner /* 1100bbc605cdSLukas Czerner * Copy the maximum length allowed for ext4 label with one more to 1101bbc605cdSLukas Czerner * find the required terminating null byte in order to test the 1102bbc605cdSLukas Czerner * label length. The on disk label doesn't need to be null terminated. 1103bbc605cdSLukas Czerner */ 1104bbc605cdSLukas Czerner if (copy_from_user(new_label, user_label, EXT4_LABEL_MAX + 1)) 1105bbc605cdSLukas Czerner return -EFAULT; 1106bbc605cdSLukas Czerner 1107bbc605cdSLukas Czerner len = strnlen(new_label, EXT4_LABEL_MAX + 1); 1108bbc605cdSLukas Czerner if (len > EXT4_LABEL_MAX) 1109bbc605cdSLukas Czerner return -EINVAL; 1110bbc605cdSLukas Czerner 1111bbc605cdSLukas Czerner /* 1112bbc605cdSLukas Czerner * Clear the buffer after the new label 1113bbc605cdSLukas Czerner */ 1114bbc605cdSLukas Czerner memset(new_label + len, 0, EXT4_LABEL_MAX - len); 1115bbc605cdSLukas Czerner 1116bbc605cdSLukas Czerner ret = mnt_want_write_file(filp); 1117bbc605cdSLukas Czerner if (ret) 1118bbc605cdSLukas Czerner return ret; 1119bbc605cdSLukas Czerner 1120bbc605cdSLukas Czerner ret = ext4_update_superblocks_fn(sb, ext4_sb_setlabel, new_label); 1121bbc605cdSLukas Czerner 1122bbc605cdSLukas Czerner mnt_drop_write_file(filp); 1123bbc605cdSLukas Czerner return ret; 1124bbc605cdSLukas Czerner } 1125bbc605cdSLukas Czerner 1126bbc605cdSLukas Czerner static int ext4_ioctl_getlabel(struct ext4_sb_info *sbi, char __user *user_label) 1127bbc605cdSLukas Czerner { 1128bbc605cdSLukas Czerner char label[EXT4_LABEL_MAX + 1]; 1129bbc605cdSLukas Czerner 1130bbc605cdSLukas Czerner /* 1131bbc605cdSLukas Czerner * EXT4_LABEL_MAX must always be smaller than FSLABEL_MAX because 1132bbc605cdSLukas Czerner * FSLABEL_MAX must include terminating null byte, while s_volume_name 1133bbc605cdSLukas Czerner * does not have to. 1134bbc605cdSLukas Czerner */ 1135bbc605cdSLukas Czerner BUILD_BUG_ON(EXT4_LABEL_MAX >= FSLABEL_MAX); 1136bbc605cdSLukas Czerner 1137bbc605cdSLukas Czerner memset(label, 0, sizeof(label)); 1138bbc605cdSLukas Czerner lock_buffer(sbi->s_sbh); 1139bbc605cdSLukas Czerner strncpy(label, sbi->s_es->s_volume_name, EXT4_LABEL_MAX); 1140bbc605cdSLukas Czerner unlock_buffer(sbi->s_sbh); 1141bbc605cdSLukas Czerner 1142bbc605cdSLukas Czerner if (copy_to_user(user_label, label, sizeof(label))) 1143bbc605cdSLukas Czerner return -EFAULT; 1144bbc605cdSLukas Czerner return 0; 1145bbc605cdSLukas Czerner } 1146bbc605cdSLukas Czerner 1147aa75f4d3SHarshad Shirwadkar static long __ext4_ioctl(struct file *filp, unsigned int cmd, unsigned long arg) 11489b7365fcSLi Xi { 11499b7365fcSLi Xi struct inode *inode = file_inode(filp); 11509b7365fcSLi Xi struct super_block *sb = inode->i_sb; 115114f3db55SChristian Brauner struct user_namespace *mnt_userns = file_mnt_user_ns(filp); 11529b7365fcSLi Xi 11539b7365fcSLi Xi ext4_debug("cmd = %u, arg = %lu\n", cmd, arg); 11549b7365fcSLi Xi 11559b7365fcSLi Xi switch (cmd) { 11560c9ec4beSDarrick J. Wong case FS_IOC_GETFSMAP: 11570c9ec4beSDarrick J. Wong return ext4_ioc_getfsmap(sb, (void __user *)arg); 1158617ba13bSMingming Cao case EXT4_IOC_GETVERSION: 1159617ba13bSMingming Cao case EXT4_IOC_GETVERSION_OLD: 1160ac27a0ecSDave Kleikamp return put_user(inode->i_generation, (int __user *) arg); 1161617ba13bSMingming Cao case EXT4_IOC_SETVERSION: 1162617ba13bSMingming Cao case EXT4_IOC_SETVERSION_OLD: { 1163ac27a0ecSDave Kleikamp handle_t *handle; 1164617ba13bSMingming Cao struct ext4_iloc iloc; 1165ac27a0ecSDave Kleikamp __u32 generation; 1166ac27a0ecSDave Kleikamp int err; 1167ac27a0ecSDave Kleikamp 116814f3db55SChristian Brauner if (!inode_owner_or_capable(mnt_userns, inode)) 1169ac27a0ecSDave Kleikamp return -EPERM; 117042a74f20SDave Hansen 11719aa5d32bSDmitry Monakhov if (ext4_has_metadata_csum(inode->i_sb)) { 1172814525f4SDarrick J. Wong ext4_warning(sb, "Setting inode version is not " 1173814525f4SDarrick J. Wong "supported with metadata_csum enabled."); 1174814525f4SDarrick J. Wong return -ENOTTY; 1175814525f4SDarrick J. Wong } 1176814525f4SDarrick J. Wong 1177a561be71SAl Viro err = mnt_want_write_file(filp); 117842a74f20SDave Hansen if (err) 117942a74f20SDave Hansen return err; 118042a74f20SDave Hansen if (get_user(generation, (int __user *) arg)) { 118142a74f20SDave Hansen err = -EFAULT; 118242a74f20SDave Hansen goto setversion_out; 118342a74f20SDave Hansen } 1184ac27a0ecSDave Kleikamp 11855955102cSAl Viro inode_lock(inode); 11869924a92aSTheodore Ts'o handle = ext4_journal_start(inode, EXT4_HT_INODE, 1); 118742a74f20SDave Hansen if (IS_ERR(handle)) { 118842a74f20SDave Hansen err = PTR_ERR(handle); 11896c2155b9SDjalal Harouni goto unlock_out; 119042a74f20SDave Hansen } 1191617ba13bSMingming Cao err = ext4_reserve_inode_write(handle, inode, &iloc); 1192ac27a0ecSDave Kleikamp if (err == 0) { 1193eeca7ea1SDeepa Dinamani inode->i_ctime = current_time(inode); 1194ac27a0ecSDave Kleikamp inode->i_generation = generation; 1195617ba13bSMingming Cao err = ext4_mark_iloc_dirty(handle, inode, &iloc); 1196ac27a0ecSDave Kleikamp } 1197617ba13bSMingming Cao ext4_journal_stop(handle); 11986c2155b9SDjalal Harouni 11996c2155b9SDjalal Harouni unlock_out: 12005955102cSAl Viro inode_unlock(inode); 120142a74f20SDave Hansen setversion_out: 12022a79f17eSAl Viro mnt_drop_write_file(filp); 1203ac27a0ecSDave Kleikamp return err; 1204ac27a0ecSDave Kleikamp } 1205617ba13bSMingming Cao case EXT4_IOC_GROUP_EXTEND: { 1206617ba13bSMingming Cao ext4_fsblk_t n_blocks_count; 1207ac046f1dSPeng Tao int err, err2=0; 1208ac27a0ecSDave Kleikamp 12098f82f840SYongqiang Yang err = ext4_resize_begin(sb); 12108f82f840SYongqiang Yang if (err) 12118f82f840SYongqiang Yang return err; 1212ac27a0ecSDave Kleikamp 1213014a1770SDjalal Harouni if (get_user(n_blocks_count, (__u32 __user *)arg)) { 1214014a1770SDjalal Harouni err = -EFAULT; 1215014a1770SDjalal Harouni goto group_extend_out; 1216014a1770SDjalal Harouni } 1217ac27a0ecSDave Kleikamp 12188813587aSTheodore Ts'o if (ext4_has_feature_bigalloc(sb)) { 12198813587aSTheodore Ts'o ext4_msg(sb, KERN_ERR, 12208813587aSTheodore Ts'o "Online resizing not supported with bigalloc"); 12218813587aSTheodore Ts'o err = -EOPNOTSUPP; 12228813587aSTheodore Ts'o goto group_extend_out; 12238813587aSTheodore Ts'o } 12248813587aSTheodore Ts'o 1225a561be71SAl Viro err = mnt_want_write_file(filp); 122642a74f20SDave Hansen if (err) 1227014a1770SDjalal Harouni goto group_extend_out; 122842a74f20SDave Hansen 1229617ba13bSMingming Cao err = ext4_group_extend(sb, EXT4_SB(sb)->s_es, n_blocks_count); 1230ac046f1dSPeng Tao if (EXT4_SB(sb)->s_journal) { 1231dab291afSMingming Cao jbd2_journal_lock_updates(EXT4_SB(sb)->s_journal); 123201d5d965SLeah Rumancik err2 = jbd2_journal_flush(EXT4_SB(sb)->s_journal, 0); 1233dab291afSMingming Cao jbd2_journal_unlock_updates(EXT4_SB(sb)->s_journal); 1234ac046f1dSPeng Tao } 12357ffe1ea8SHidehiro Kawai if (err == 0) 12367ffe1ea8SHidehiro Kawai err = err2; 12372a79f17eSAl Viro mnt_drop_write_file(filp); 1238014a1770SDjalal Harouni group_extend_out: 12398f82f840SYongqiang Yang ext4_resize_end(sb); 1240ac27a0ecSDave Kleikamp return err; 1241ac27a0ecSDave Kleikamp } 1242748de673SAkira Fujita 1243748de673SAkira Fujita case EXT4_IOC_MOVE_EXT: { 1244748de673SAkira Fujita struct move_extent me; 12452903ff01SAl Viro struct fd donor; 12462903ff01SAl Viro int err; 1247748de673SAkira Fujita 12484a58579bSAkira Fujita if (!(filp->f_mode & FMODE_READ) || 12494a58579bSAkira Fujita !(filp->f_mode & FMODE_WRITE)) 12504a58579bSAkira Fujita return -EBADF; 12514a58579bSAkira Fujita 1252748de673SAkira Fujita if (copy_from_user(&me, 1253748de673SAkira Fujita (struct move_extent __user *)arg, sizeof(me))) 1254748de673SAkira Fujita return -EFAULT; 12554a58579bSAkira Fujita me.moved_len = 0; 1256748de673SAkira Fujita 12572903ff01SAl Viro donor = fdget(me.donor_fd); 12582903ff01SAl Viro if (!donor.file) 1259748de673SAkira Fujita return -EBADF; 1260748de673SAkira Fujita 12612903ff01SAl Viro if (!(donor.file->f_mode & FMODE_WRITE)) { 12624a58579bSAkira Fujita err = -EBADF; 12634a58579bSAkira Fujita goto mext_out; 1264748de673SAkira Fujita } 1265748de673SAkira Fujita 1266e2b911c5SDarrick J. Wong if (ext4_has_feature_bigalloc(sb)) { 1267bab08ab9STheodore Ts'o ext4_msg(sb, KERN_ERR, 1268bab08ab9STheodore Ts'o "Online defrag not supported with bigalloc"); 1269399c9b86SAl Viro err = -EOPNOTSUPP; 1270399c9b86SAl Viro goto mext_out; 127173f34a5eSRoss Zwisler } else if (IS_DAX(inode)) { 127273f34a5eSRoss Zwisler ext4_msg(sb, KERN_ERR, 127373f34a5eSRoss Zwisler "Online defrag not supported with DAX"); 127473f34a5eSRoss Zwisler err = -EOPNOTSUPP; 127573f34a5eSRoss Zwisler goto mext_out; 1276bab08ab9STheodore Ts'o } 1277bab08ab9STheodore Ts'o 1278a561be71SAl Viro err = mnt_want_write_file(filp); 12794a58579bSAkira Fujita if (err) 12804a58579bSAkira Fujita goto mext_out; 12814a58579bSAkira Fujita 12822903ff01SAl Viro err = ext4_move_extents(filp, donor.file, me.orig_start, 1283748de673SAkira Fujita me.donor_start, me.len, &me.moved_len); 12842a79f17eSAl Viro mnt_drop_write_file(filp); 1285748de673SAkira Fujita 1286c437b273SAkira Fujita if (copy_to_user((struct move_extent __user *)arg, 1287c437b273SAkira Fujita &me, sizeof(me))) 12884a58579bSAkira Fujita err = -EFAULT; 12894a58579bSAkira Fujita mext_out: 12902903ff01SAl Viro fdput(donor); 1291748de673SAkira Fujita return err; 1292748de673SAkira Fujita } 1293748de673SAkira Fujita 1294617ba13bSMingming Cao case EXT4_IOC_GROUP_ADD: { 1295617ba13bSMingming Cao struct ext4_new_group_data input; 1296ac27a0ecSDave Kleikamp 1297617ba13bSMingming Cao if (copy_from_user(&input, (struct ext4_new_group_input __user *)arg, 1298e145b35bSAl Viro sizeof(input))) 1299e145b35bSAl Viro return -EFAULT; 1300ac27a0ecSDave Kleikamp 1301e145b35bSAl Viro return ext4_ioctl_group_add(filp, &input); 1302ac27a0ecSDave Kleikamp } 1303ac27a0ecSDave Kleikamp 1304c14c6fd5SAneesh Kumar K.V case EXT4_IOC_MIGRATE: 13052a43a878SAneesh Kumar K.V { 13062a43a878SAneesh Kumar K.V int err; 130714f3db55SChristian Brauner if (!inode_owner_or_capable(mnt_userns, inode)) 13082a43a878SAneesh Kumar K.V return -EACCES; 13092a43a878SAneesh Kumar K.V 1310a561be71SAl Viro err = mnt_want_write_file(filp); 13112a43a878SAneesh Kumar K.V if (err) 13122a43a878SAneesh Kumar K.V return err; 13132a43a878SAneesh Kumar K.V /* 13142a43a878SAneesh Kumar K.V * inode_mutex prevent write and truncate on the file. 13152a43a878SAneesh Kumar K.V * Read still goes through. We take i_data_sem in 13162a43a878SAneesh Kumar K.V * ext4_ext_swap_inode_data before we switch the 13172a43a878SAneesh Kumar K.V * inode format to prevent read. 13182a43a878SAneesh Kumar K.V */ 13195955102cSAl Viro inode_lock((inode)); 13202a43a878SAneesh Kumar K.V err = ext4_ext_migrate(inode); 13215955102cSAl Viro inode_unlock((inode)); 13222a79f17eSAl Viro mnt_drop_write_file(filp); 13232a43a878SAneesh Kumar K.V return err; 13242a43a878SAneesh Kumar K.V } 1325c14c6fd5SAneesh Kumar K.V 1326ccd2506bSTheodore Ts'o case EXT4_IOC_ALLOC_DA_BLKS: 1327ccd2506bSTheodore Ts'o { 1328ccd2506bSTheodore Ts'o int err; 132914f3db55SChristian Brauner if (!inode_owner_or_capable(mnt_userns, inode)) 1330ccd2506bSTheodore Ts'o return -EACCES; 1331ccd2506bSTheodore Ts'o 1332a561be71SAl Viro err = mnt_want_write_file(filp); 1333ccd2506bSTheodore Ts'o if (err) 1334ccd2506bSTheodore Ts'o return err; 1335ccd2506bSTheodore Ts'o err = ext4_alloc_da_blocks(inode); 13362a79f17eSAl Viro mnt_drop_write_file(filp); 1337ccd2506bSTheodore Ts'o return err; 1338ccd2506bSTheodore Ts'o } 1339ccd2506bSTheodore Ts'o 1340393d1d1dSDr. Tilmann Bubeck case EXT4_IOC_SWAP_BOOT: 13413e67cfadSDmitry Monakhov { 13423e67cfadSDmitry Monakhov int err; 1343393d1d1dSDr. Tilmann Bubeck if (!(filp->f_mode & FMODE_WRITE)) 1344393d1d1dSDr. Tilmann Bubeck return -EBADF; 13453e67cfadSDmitry Monakhov err = mnt_want_write_file(filp); 13463e67cfadSDmitry Monakhov if (err) 13473e67cfadSDmitry Monakhov return err; 134814f3db55SChristian Brauner err = swap_inode_boot_loader(sb, mnt_userns, inode); 13493e67cfadSDmitry Monakhov mnt_drop_write_file(filp); 13503e67cfadSDmitry Monakhov return err; 13513e67cfadSDmitry Monakhov } 1352393d1d1dSDr. Tilmann Bubeck 135319c5246dSYongqiang Yang case EXT4_IOC_RESIZE_FS: { 135419c5246dSYongqiang Yang ext4_fsblk_t n_blocks_count; 135519c5246dSYongqiang Yang int err = 0, err2 = 0; 13567f511862STheodore Ts'o ext4_group_t o_group = EXT4_SB(sb)->s_groups_count; 135719c5246dSYongqiang Yang 135819c5246dSYongqiang Yang if (copy_from_user(&n_blocks_count, (__u64 __user *)arg, 135919c5246dSYongqiang Yang sizeof(__u64))) { 136019c5246dSYongqiang Yang return -EFAULT; 136119c5246dSYongqiang Yang } 136219c5246dSYongqiang Yang 136319c5246dSYongqiang Yang err = ext4_resize_begin(sb); 136419c5246dSYongqiang Yang if (err) 136519c5246dSYongqiang Yang return err; 136619c5246dSYongqiang Yang 13678cae6f71SAl Viro err = mnt_want_write_file(filp); 136819c5246dSYongqiang Yang if (err) 136919c5246dSYongqiang Yang goto resizefs_out; 137019c5246dSYongqiang Yang 137119c5246dSYongqiang Yang err = ext4_resize_fs(sb, n_blocks_count); 137219c5246dSYongqiang Yang if (EXT4_SB(sb)->s_journal) { 1373e85c81baSXin Yin ext4_fc_mark_ineligible(sb, EXT4_FC_REASON_RESIZE, NULL); 137419c5246dSYongqiang Yang jbd2_journal_lock_updates(EXT4_SB(sb)->s_journal); 137501d5d965SLeah Rumancik err2 = jbd2_journal_flush(EXT4_SB(sb)->s_journal, 0); 137619c5246dSYongqiang Yang jbd2_journal_unlock_updates(EXT4_SB(sb)->s_journal); 137719c5246dSYongqiang Yang } 137819c5246dSYongqiang Yang if (err == 0) 137919c5246dSYongqiang Yang err = err2; 13808cae6f71SAl Viro mnt_drop_write_file(filp); 1381310a997fSKirill Tkhai if (!err && (o_group < EXT4_SB(sb)->s_groups_count) && 13827f511862STheodore Ts'o ext4_has_group_desc_csum(sb) && 13837f511862STheodore Ts'o test_opt(sb, INIT_INODE_TABLE)) 13847f511862STheodore Ts'o err = ext4_register_li_request(sb, o_group); 13857f511862STheodore Ts'o 138619c5246dSYongqiang Yang resizefs_out: 138719c5246dSYongqiang Yang ext4_resize_end(sb); 138819c5246dSYongqiang Yang return err; 138919c5246dSYongqiang Yang } 139019c5246dSYongqiang Yang 1391e681c047SLukas Czerner case FITRIM: 1392e681c047SLukas Czerner { 1393e681c047SLukas Czerner struct fstrim_range range; 1394e681c047SLukas Czerner int ret = 0; 1395e681c047SLukas Czerner 1396e681c047SLukas Czerner if (!capable(CAP_SYS_ADMIN)) 1397e681c047SLukas Czerner return -EPERM; 1398e681c047SLukas Czerner 1399*70200574SChristoph Hellwig if (!bdev_max_discard_sectors(sb->s_bdev)) 140041431792SLukas Czerner return -EOPNOTSUPP; 140141431792SLukas Czerner 140218915b58SDarrick J. Wong /* 140318915b58SDarrick J. Wong * We haven't replayed the journal, so we cannot use our 140418915b58SDarrick J. Wong * block-bitmap-guided storage zapping commands. 140518915b58SDarrick J. Wong */ 140618915b58SDarrick J. Wong if (test_opt(sb, NOLOAD) && ext4_has_feature_journal(sb)) 140718915b58SDarrick J. Wong return -EROFS; 140818915b58SDarrick J. Wong 1409e6705f7cSH Hartley Sweeten if (copy_from_user(&range, (struct fstrim_range __user *)arg, 1410e681c047SLukas Czerner sizeof(range))) 1411e681c047SLukas Czerner return -EFAULT; 1412e681c047SLukas Czerner 1413e681c047SLukas Czerner ret = ext4_trim_fs(sb, &range); 1414e681c047SLukas Czerner if (ret < 0) 1415e681c047SLukas Czerner return ret; 1416e681c047SLukas Czerner 1417e6705f7cSH Hartley Sweeten if (copy_to_user((struct fstrim_range __user *)arg, &range, 1418e681c047SLukas Czerner sizeof(range))) 1419e681c047SLukas Czerner return -EFAULT; 1420e681c047SLukas Czerner 1421e681c047SLukas Czerner return 0; 1422e681c047SLukas Czerner } 14237869a4a6STheodore Ts'o case EXT4_IOC_PRECACHE_EXTENTS: 14247869a4a6STheodore Ts'o return ext4_ext_precache(inode); 1425e681c047SLukas Czerner 1426cb29a02dSEric Biggers case FS_IOC_SET_ENCRYPTION_POLICY: 14279a200d07SRichard Weinberger if (!ext4_has_feature_encrypt(sb)) 14289a200d07SRichard Weinberger return -EOPNOTSUPP; 1429db717d8eSEric Biggers return fscrypt_ioctl_set_policy(filp, (const void __user *)arg); 14309a200d07SRichard Weinberger 1431cb29a02dSEric Biggers case FS_IOC_GET_ENCRYPTION_PWSALT: { 1432643fa961SChandan Rajendra #ifdef CONFIG_FS_ENCRYPTION 14339bd8212fSMichael Halcrow int err, err2; 14349bd8212fSMichael Halcrow struct ext4_sb_info *sbi = EXT4_SB(sb); 14359bd8212fSMichael Halcrow handle_t *handle; 14369bd8212fSMichael Halcrow 143735997d1cSEric Biggers if (!ext4_has_feature_encrypt(sb)) 14389bd8212fSMichael Halcrow return -EOPNOTSUPP; 14399bd8212fSMichael Halcrow if (uuid_is_zero(sbi->s_es->s_encrypt_pw_salt)) { 14409bd8212fSMichael Halcrow err = mnt_want_write_file(filp); 14419bd8212fSMichael Halcrow if (err) 14429bd8212fSMichael Halcrow return err; 14439bd8212fSMichael Halcrow handle = ext4_journal_start_sb(sb, EXT4_HT_MISC, 1); 14449bd8212fSMichael Halcrow if (IS_ERR(handle)) { 14459bd8212fSMichael Halcrow err = PTR_ERR(handle); 14469bd8212fSMichael Halcrow goto pwsalt_err_exit; 14479bd8212fSMichael Halcrow } 1448188c299eSJan Kara err = ext4_journal_get_write_access(handle, sb, 1449188c299eSJan Kara sbi->s_sbh, 1450188c299eSJan Kara EXT4_JTR_NONE); 14519bd8212fSMichael Halcrow if (err) 14529bd8212fSMichael Halcrow goto pwsalt_err_journal; 1453dfd56c2cSJan Kara lock_buffer(sbi->s_sbh); 14549bd8212fSMichael Halcrow generate_random_uuid(sbi->s_es->s_encrypt_pw_salt); 1455dfd56c2cSJan Kara ext4_superblock_csum_set(sb); 1456dfd56c2cSJan Kara unlock_buffer(sbi->s_sbh); 14579bd8212fSMichael Halcrow err = ext4_handle_dirty_metadata(handle, NULL, 14589bd8212fSMichael Halcrow sbi->s_sbh); 14599bd8212fSMichael Halcrow pwsalt_err_journal: 14609bd8212fSMichael Halcrow err2 = ext4_journal_stop(handle); 14619bd8212fSMichael Halcrow if (err2 && !err) 14629bd8212fSMichael Halcrow err = err2; 14639bd8212fSMichael Halcrow pwsalt_err_exit: 14649bd8212fSMichael Halcrow mnt_drop_write_file(filp); 14659bd8212fSMichael Halcrow if (err) 14669bd8212fSMichael Halcrow return err; 14679bd8212fSMichael Halcrow } 1468b4ab9e29SFabian Frederick if (copy_to_user((void __user *) arg, 1469b4ab9e29SFabian Frederick sbi->s_es->s_encrypt_pw_salt, 16)) 14709bd8212fSMichael Halcrow return -EFAULT; 14719bd8212fSMichael Halcrow return 0; 1472ba679017SEric Biggers #else 1473ba679017SEric Biggers return -EOPNOTSUPP; 1474ba679017SEric Biggers #endif 14759bd8212fSMichael Halcrow } 1476cb29a02dSEric Biggers case FS_IOC_GET_ENCRYPTION_POLICY: 14770642ea24SChao Yu if (!ext4_has_feature_encrypt(sb)) 14780642ea24SChao Yu return -EOPNOTSUPP; 1479db717d8eSEric Biggers return fscrypt_ioctl_get_policy(filp, (void __user *)arg); 14809bd8212fSMichael Halcrow 148129b3692eSEric Biggers case FS_IOC_GET_ENCRYPTION_POLICY_EX: 148229b3692eSEric Biggers if (!ext4_has_feature_encrypt(sb)) 148329b3692eSEric Biggers return -EOPNOTSUPP; 148429b3692eSEric Biggers return fscrypt_ioctl_get_policy_ex(filp, (void __user *)arg); 148529b3692eSEric Biggers 148629b3692eSEric Biggers case FS_IOC_ADD_ENCRYPTION_KEY: 148729b3692eSEric Biggers if (!ext4_has_feature_encrypt(sb)) 148829b3692eSEric Biggers return -EOPNOTSUPP; 148929b3692eSEric Biggers return fscrypt_ioctl_add_key(filp, (void __user *)arg); 149029b3692eSEric Biggers 149129b3692eSEric Biggers case FS_IOC_REMOVE_ENCRYPTION_KEY: 149229b3692eSEric Biggers if (!ext4_has_feature_encrypt(sb)) 149329b3692eSEric Biggers return -EOPNOTSUPP; 149429b3692eSEric Biggers return fscrypt_ioctl_remove_key(filp, (void __user *)arg); 149529b3692eSEric Biggers 149629b3692eSEric Biggers case FS_IOC_REMOVE_ENCRYPTION_KEY_ALL_USERS: 149729b3692eSEric Biggers if (!ext4_has_feature_encrypt(sb)) 149829b3692eSEric Biggers return -EOPNOTSUPP; 149929b3692eSEric Biggers return fscrypt_ioctl_remove_key_all_users(filp, 150029b3692eSEric Biggers (void __user *)arg); 150129b3692eSEric Biggers case FS_IOC_GET_ENCRYPTION_KEY_STATUS: 150229b3692eSEric Biggers if (!ext4_has_feature_encrypt(sb)) 150329b3692eSEric Biggers return -EOPNOTSUPP; 150429b3692eSEric Biggers return fscrypt_ioctl_get_key_status(filp, (void __user *)arg); 150529b3692eSEric Biggers 15067ec9f3b4SEric Biggers case FS_IOC_GET_ENCRYPTION_NONCE: 15077ec9f3b4SEric Biggers if (!ext4_has_feature_encrypt(sb)) 15087ec9f3b4SEric Biggers return -EOPNOTSUPP; 15097ec9f3b4SEric Biggers return fscrypt_ioctl_get_nonce(filp, (void __user *)arg); 15107ec9f3b4SEric Biggers 1511b0c013e2STheodore Ts'o case EXT4_IOC_CLEAR_ES_CACHE: 1512b0c013e2STheodore Ts'o { 151314f3db55SChristian Brauner if (!inode_owner_or_capable(mnt_userns, inode)) 1514b0c013e2STheodore Ts'o return -EACCES; 1515b0c013e2STheodore Ts'o ext4_clear_inode_es(inode); 1516b0c013e2STheodore Ts'o return 0; 1517b0c013e2STheodore Ts'o } 1518b0c013e2STheodore Ts'o 15191ad3ea6eSTheodore Ts'o case EXT4_IOC_GETSTATE: 15201ad3ea6eSTheodore Ts'o { 15211ad3ea6eSTheodore Ts'o __u32 state = 0; 15221ad3ea6eSTheodore Ts'o 15231ad3ea6eSTheodore Ts'o if (ext4_test_inode_state(inode, EXT4_STATE_EXT_PRECACHED)) 15241ad3ea6eSTheodore Ts'o state |= EXT4_STATE_FLAG_EXT_PRECACHED; 15251ad3ea6eSTheodore Ts'o if (ext4_test_inode_state(inode, EXT4_STATE_NEW)) 15261ad3ea6eSTheodore Ts'o state |= EXT4_STATE_FLAG_NEW; 15271ad3ea6eSTheodore Ts'o if (ext4_test_inode_state(inode, EXT4_STATE_NEWENTRY)) 15281ad3ea6eSTheodore Ts'o state |= EXT4_STATE_FLAG_NEWENTRY; 15291ad3ea6eSTheodore Ts'o if (ext4_test_inode_state(inode, EXT4_STATE_DA_ALLOC_CLOSE)) 15301ad3ea6eSTheodore Ts'o state |= EXT4_STATE_FLAG_DA_ALLOC_CLOSE; 15311ad3ea6eSTheodore Ts'o 15321ad3ea6eSTheodore Ts'o return put_user(state, (__u32 __user *) arg); 15331ad3ea6eSTheodore Ts'o } 15341ad3ea6eSTheodore Ts'o 1535bb5835edSTheodore Ts'o case EXT4_IOC_GET_ES_CACHE: 1536bb5835edSTheodore Ts'o return ext4_ioctl_get_es_cache(filp, arg); 1537bb5835edSTheodore Ts'o 1538e9be2ac7STheodore Ts'o case EXT4_IOC_SHUTDOWN: 1539e9be2ac7STheodore Ts'o return ext4_shutdown(sb, arg); 1540c93d8f88SEric Biggers 1541c93d8f88SEric Biggers case FS_IOC_ENABLE_VERITY: 1542c93d8f88SEric Biggers if (!ext4_has_feature_verity(sb)) 1543c93d8f88SEric Biggers return -EOPNOTSUPP; 1544c93d8f88SEric Biggers return fsverity_ioctl_enable(filp, (const void __user *)arg); 1545c93d8f88SEric Biggers 1546c93d8f88SEric Biggers case FS_IOC_MEASURE_VERITY: 1547c93d8f88SEric Biggers if (!ext4_has_feature_verity(sb)) 1548c93d8f88SEric Biggers return -EOPNOTSUPP; 1549c93d8f88SEric Biggers return fsverity_ioctl_measure(filp, (void __user *)arg); 1550c93d8f88SEric Biggers 1551e17fe657SEric Biggers case FS_IOC_READ_VERITY_METADATA: 1552e17fe657SEric Biggers if (!ext4_has_feature_verity(sb)) 1553e17fe657SEric Biggers return -EOPNOTSUPP; 1554e17fe657SEric Biggers return fsverity_ioctl_read_metadata(filp, 1555e17fe657SEric Biggers (const void __user *)arg); 1556e17fe657SEric Biggers 1557351a0a3fSLeah Rumancik case EXT4_IOC_CHECKPOINT: 1558351a0a3fSLeah Rumancik return ext4_ioctl_checkpoint(filp, arg); 1559351a0a3fSLeah Rumancik 1560bbc605cdSLukas Czerner case FS_IOC_GETFSLABEL: 1561bbc605cdSLukas Czerner return ext4_ioctl_getlabel(EXT4_SB(sb), (void __user *)arg); 1562bbc605cdSLukas Czerner 1563bbc605cdSLukas Czerner case FS_IOC_SETFSLABEL: 1564bbc605cdSLukas Czerner return ext4_ioctl_setlabel(filp, 1565bbc605cdSLukas Czerner (const void __user *)arg); 1566bbc605cdSLukas Czerner 1567ac27a0ecSDave Kleikamp default: 1568ac27a0ecSDave Kleikamp return -ENOTTY; 1569ac27a0ecSDave Kleikamp } 1570ac27a0ecSDave Kleikamp } 1571ac27a0ecSDave Kleikamp 1572aa75f4d3SHarshad Shirwadkar long ext4_ioctl(struct file *filp, unsigned int cmd, unsigned long arg) 1573aa75f4d3SHarshad Shirwadkar { 15742729cfdcSHarshad Shirwadkar return __ext4_ioctl(filp, cmd, arg); 1575aa75f4d3SHarshad Shirwadkar } 1576aa75f4d3SHarshad Shirwadkar 1577ac27a0ecSDave Kleikamp #ifdef CONFIG_COMPAT 1578617ba13bSMingming Cao long ext4_compat_ioctl(struct file *file, unsigned int cmd, unsigned long arg) 1579ac27a0ecSDave Kleikamp { 1580ac27a0ecSDave Kleikamp /* These are just misnamed, they actually get/put from/to user an int */ 1581ac27a0ecSDave Kleikamp switch (cmd) { 1582617ba13bSMingming Cao case EXT4_IOC32_GETVERSION: 1583617ba13bSMingming Cao cmd = EXT4_IOC_GETVERSION; 1584ac27a0ecSDave Kleikamp break; 1585617ba13bSMingming Cao case EXT4_IOC32_SETVERSION: 1586617ba13bSMingming Cao cmd = EXT4_IOC_SETVERSION; 1587ac27a0ecSDave Kleikamp break; 1588617ba13bSMingming Cao case EXT4_IOC32_GROUP_EXTEND: 1589617ba13bSMingming Cao cmd = EXT4_IOC_GROUP_EXTEND; 1590ac27a0ecSDave Kleikamp break; 1591617ba13bSMingming Cao case EXT4_IOC32_GETVERSION_OLD: 1592617ba13bSMingming Cao cmd = EXT4_IOC_GETVERSION_OLD; 1593ac27a0ecSDave Kleikamp break; 1594617ba13bSMingming Cao case EXT4_IOC32_SETVERSION_OLD: 1595617ba13bSMingming Cao cmd = EXT4_IOC_SETVERSION_OLD; 1596ac27a0ecSDave Kleikamp break; 1597617ba13bSMingming Cao case EXT4_IOC32_GETRSVSZ: 1598617ba13bSMingming Cao cmd = EXT4_IOC_GETRSVSZ; 1599ac27a0ecSDave Kleikamp break; 1600617ba13bSMingming Cao case EXT4_IOC32_SETRSVSZ: 1601617ba13bSMingming Cao cmd = EXT4_IOC_SETRSVSZ; 1602ac27a0ecSDave Kleikamp break; 16034d92dc0fSBen Hutchings case EXT4_IOC32_GROUP_ADD: { 16044d92dc0fSBen Hutchings struct compat_ext4_new_group_input __user *uinput; 1605e145b35bSAl Viro struct ext4_new_group_data input; 16064d92dc0fSBen Hutchings int err; 16074d92dc0fSBen Hutchings 16084d92dc0fSBen Hutchings uinput = compat_ptr(arg); 16094d92dc0fSBen Hutchings err = get_user(input.group, &uinput->group); 16104d92dc0fSBen Hutchings err |= get_user(input.block_bitmap, &uinput->block_bitmap); 16114d92dc0fSBen Hutchings err |= get_user(input.inode_bitmap, &uinput->inode_bitmap); 16124d92dc0fSBen Hutchings err |= get_user(input.inode_table, &uinput->inode_table); 16134d92dc0fSBen Hutchings err |= get_user(input.blocks_count, &uinput->blocks_count); 16144d92dc0fSBen Hutchings err |= get_user(input.reserved_blocks, 16154d92dc0fSBen Hutchings &uinput->reserved_blocks); 16164d92dc0fSBen Hutchings if (err) 16174d92dc0fSBen Hutchings return -EFAULT; 1618e145b35bSAl Viro return ext4_ioctl_group_add(file, &input); 16194d92dc0fSBen Hutchings } 1620b684b2eeSChristian Borntraeger case EXT4_IOC_MOVE_EXT: 162119c5246dSYongqiang Yang case EXT4_IOC_RESIZE_FS: 1622314999dcSArnd Bergmann case FITRIM: 16237869a4a6STheodore Ts'o case EXT4_IOC_PRECACHE_EXTENTS: 1624cb29a02dSEric Biggers case FS_IOC_SET_ENCRYPTION_POLICY: 1625cb29a02dSEric Biggers case FS_IOC_GET_ENCRYPTION_PWSALT: 1626cb29a02dSEric Biggers case FS_IOC_GET_ENCRYPTION_POLICY: 162729b3692eSEric Biggers case FS_IOC_GET_ENCRYPTION_POLICY_EX: 162829b3692eSEric Biggers case FS_IOC_ADD_ENCRYPTION_KEY: 162929b3692eSEric Biggers case FS_IOC_REMOVE_ENCRYPTION_KEY: 163029b3692eSEric Biggers case FS_IOC_REMOVE_ENCRYPTION_KEY_ALL_USERS: 163129b3692eSEric Biggers case FS_IOC_GET_ENCRYPTION_KEY_STATUS: 16327ec9f3b4SEric Biggers case FS_IOC_GET_ENCRYPTION_NONCE: 1633e9be2ac7STheodore Ts'o case EXT4_IOC_SHUTDOWN: 16340c9ec4beSDarrick J. Wong case FS_IOC_GETFSMAP: 1635c93d8f88SEric Biggers case FS_IOC_ENABLE_VERITY: 1636c93d8f88SEric Biggers case FS_IOC_MEASURE_VERITY: 1637e17fe657SEric Biggers case FS_IOC_READ_VERITY_METADATA: 1638b0c013e2STheodore Ts'o case EXT4_IOC_CLEAR_ES_CACHE: 16391ad3ea6eSTheodore Ts'o case EXT4_IOC_GETSTATE: 1640bb5835edSTheodore Ts'o case EXT4_IOC_GET_ES_CACHE: 1641351a0a3fSLeah Rumancik case EXT4_IOC_CHECKPOINT: 1642bbc605cdSLukas Czerner case FS_IOC_GETFSLABEL: 1643bbc605cdSLukas Czerner case FS_IOC_SETFSLABEL: 1644b684b2eeSChristian Borntraeger break; 1645ac27a0ecSDave Kleikamp default: 1646ac27a0ecSDave Kleikamp return -ENOIOCTLCMD; 1647ac27a0ecSDave Kleikamp } 16485cdd7b2dSAndi Kleen return ext4_ioctl(file, cmd, (unsigned long) compat_ptr(arg)); 1649ac27a0ecSDave Kleikamp } 1650ac27a0ecSDave Kleikamp #endif 1651