1b2441318SGreg Kroah-Hartman // SPDX-License-Identifier: GPL-2.0 2ac27a0ecSDave Kleikamp /* 3617ba13bSMingming Cao * linux/fs/ext4/ioctl.c 4ac27a0ecSDave Kleikamp * 5ac27a0ecSDave Kleikamp * Copyright (C) 1993, 1994, 1995 6ac27a0ecSDave Kleikamp * Remy Card (card@masi.ibp.fr) 7ac27a0ecSDave Kleikamp * Laboratoire MASI - Institut Blaise Pascal 8ac27a0ecSDave Kleikamp * Universite Pierre et Marie Curie (Paris VI) 9ac27a0ecSDave Kleikamp */ 10ac27a0ecSDave Kleikamp 11ac27a0ecSDave Kleikamp #include <linux/fs.h> 12ac27a0ecSDave Kleikamp #include <linux/capability.h> 13ac27a0ecSDave Kleikamp #include <linux/time.h> 14ac27a0ecSDave Kleikamp #include <linux/compat.h> 1542a74f20SDave Hansen #include <linux/mount.h> 16748de673SAkira Fujita #include <linux/file.h> 179b7365fcSLi Xi #include <linux/quotaops.h> 1823253068STheodore Ts'o #include <linux/random.h> 197c0f6ba6SLinus Torvalds #include <linux/uaccess.h> 20783d9485STheodore Ts'o #include <linux/delay.h> 21ee73f9a5SJeff Layton #include <linux/iversion.h> 224db5c2e6SMiklos Szeredi #include <linux/fileattr.h> 23d95efb14SJeremy Bongio #include <linux/uuid.h> 243dcf5451SChristoph Hellwig #include "ext4_jbd2.h" 253dcf5451SChristoph Hellwig #include "ext4.h" 260c9ec4beSDarrick J. Wong #include <linux/fsmap.h> 270c9ec4beSDarrick J. Wong #include "fsmap.h" 280c9ec4beSDarrick J. Wong #include <trace/events/ext4.h> 29ac27a0ecSDave Kleikamp 30bbc605cdSLukas Czerner typedef void ext4_update_sb_callback(struct ext4_super_block *es, 31bbc605cdSLukas Czerner const void *arg); 32bbc605cdSLukas Czerner 33bbc605cdSLukas Czerner /* 34bbc605cdSLukas Czerner * Superblock modification callback function for changing file system 35bbc605cdSLukas Czerner * label 36bbc605cdSLukas Czerner */ 37bbc605cdSLukas Czerner static void ext4_sb_setlabel(struct ext4_super_block *es, const void *arg) 38bbc605cdSLukas Czerner { 39bbc605cdSLukas Czerner /* Sanity check, this should never happen */ 40bbc605cdSLukas Czerner BUILD_BUG_ON(sizeof(es->s_volume_name) < EXT4_LABEL_MAX); 41bbc605cdSLukas Czerner 42bbc605cdSLukas Czerner memcpy(es->s_volume_name, (char *)arg, EXT4_LABEL_MAX); 43bbc605cdSLukas Czerner } 44bbc605cdSLukas Czerner 45d95efb14SJeremy Bongio /* 46d95efb14SJeremy Bongio * Superblock modification callback function for changing file system 47d95efb14SJeremy Bongio * UUID. 48d95efb14SJeremy Bongio */ 49d95efb14SJeremy Bongio static void ext4_sb_setuuid(struct ext4_super_block *es, const void *arg) 50d95efb14SJeremy Bongio { 51d95efb14SJeremy Bongio memcpy(es->s_uuid, (__u8 *)arg, UUID_SIZE); 52d95efb14SJeremy Bongio } 53d95efb14SJeremy Bongio 54bbc605cdSLukas Czerner static 55bbc605cdSLukas Czerner int ext4_update_primary_sb(struct super_block *sb, handle_t *handle, 56bbc605cdSLukas Czerner ext4_update_sb_callback func, 57bbc605cdSLukas Czerner const void *arg) 58bbc605cdSLukas Czerner { 59bbc605cdSLukas Czerner int err = 0; 60bbc605cdSLukas Czerner struct ext4_sb_info *sbi = EXT4_SB(sb); 61bbc605cdSLukas Czerner struct buffer_head *bh = sbi->s_sbh; 62bbc605cdSLukas Czerner struct ext4_super_block *es = sbi->s_es; 63bbc605cdSLukas Czerner 64bbc605cdSLukas Czerner trace_ext4_update_sb(sb, bh->b_blocknr, 1); 65bbc605cdSLukas Czerner 66bbc605cdSLukas Czerner BUFFER_TRACE(bh, "get_write_access"); 67bbc605cdSLukas Czerner err = ext4_journal_get_write_access(handle, sb, 68bbc605cdSLukas Czerner bh, 69bbc605cdSLukas Czerner EXT4_JTR_NONE); 70bbc605cdSLukas Czerner if (err) 71bbc605cdSLukas Czerner goto out_err; 72bbc605cdSLukas Czerner 73bbc605cdSLukas Czerner lock_buffer(bh); 74bbc605cdSLukas Czerner func(es, arg); 75bbc605cdSLukas Czerner ext4_superblock_csum_set(sb); 76bbc605cdSLukas Czerner unlock_buffer(bh); 77bbc605cdSLukas Czerner 78bbc605cdSLukas Czerner if (buffer_write_io_error(bh) || !buffer_uptodate(bh)) { 79bbc605cdSLukas Czerner ext4_msg(sbi->s_sb, KERN_ERR, "previous I/O error to " 80bbc605cdSLukas Czerner "superblock detected"); 81bbc605cdSLukas Czerner clear_buffer_write_io_error(bh); 82bbc605cdSLukas Czerner set_buffer_uptodate(bh); 83bbc605cdSLukas Czerner } 84bbc605cdSLukas Czerner 85bbc605cdSLukas Czerner err = ext4_handle_dirty_metadata(handle, NULL, bh); 86bbc605cdSLukas Czerner if (err) 87bbc605cdSLukas Czerner goto out_err; 88bbc605cdSLukas Czerner err = sync_dirty_buffer(bh); 89bbc605cdSLukas Czerner out_err: 90bbc605cdSLukas Czerner ext4_std_error(sb, err); 91bbc605cdSLukas Czerner return err; 92bbc605cdSLukas Czerner } 93bbc605cdSLukas Czerner 94bbc605cdSLukas Czerner /* 95bbc605cdSLukas Czerner * Update one backup superblock in the group 'grp' using the callback 96bbc605cdSLukas Czerner * function 'func' and argument 'arg'. If the handle is NULL the 97bbc605cdSLukas Czerner * modification is not journalled. 98bbc605cdSLukas Czerner * 99bbc605cdSLukas Czerner * Returns: 0 when no modification was done (no superblock in the group) 100bbc605cdSLukas Czerner * 1 when the modification was successful 101bbc605cdSLukas Czerner * <0 on error 102bbc605cdSLukas Czerner */ 103bbc605cdSLukas Czerner static int ext4_update_backup_sb(struct super_block *sb, 104bbc605cdSLukas Czerner handle_t *handle, ext4_group_t grp, 105bbc605cdSLukas Czerner ext4_update_sb_callback func, const void *arg) 106bbc605cdSLukas Czerner { 107bbc605cdSLukas Czerner int err = 0; 108bbc605cdSLukas Czerner ext4_fsblk_t sb_block; 109bbc605cdSLukas Czerner struct buffer_head *bh; 110bbc605cdSLukas Czerner unsigned long offset = 0; 111bbc605cdSLukas Czerner struct ext4_super_block *es; 112bbc605cdSLukas Czerner 113bbc605cdSLukas Czerner if (!ext4_bg_has_super(sb, grp)) 114bbc605cdSLukas Czerner return 0; 115bbc605cdSLukas Czerner 116bbc605cdSLukas Czerner /* 117bbc605cdSLukas Czerner * For the group 0 there is always 1k padding, so we have 118bbc605cdSLukas Czerner * either adjust offset, or sb_block depending on blocksize 119bbc605cdSLukas Czerner */ 120bbc605cdSLukas Czerner if (grp == 0) { 121bbc605cdSLukas Czerner sb_block = 1 * EXT4_MIN_BLOCK_SIZE; 122bbc605cdSLukas Czerner offset = do_div(sb_block, sb->s_blocksize); 123bbc605cdSLukas Czerner } else { 124bbc605cdSLukas Czerner sb_block = ext4_group_first_block_no(sb, grp); 125bbc605cdSLukas Czerner offset = 0; 126bbc605cdSLukas Czerner } 127bbc605cdSLukas Czerner 128bbc605cdSLukas Czerner trace_ext4_update_sb(sb, sb_block, handle ? 1 : 0); 129bbc605cdSLukas Czerner 130bbc605cdSLukas Czerner bh = ext4_sb_bread(sb, sb_block, 0); 131bbc605cdSLukas Czerner if (IS_ERR(bh)) 132bbc605cdSLukas Czerner return PTR_ERR(bh); 133bbc605cdSLukas Czerner 134bbc605cdSLukas Czerner if (handle) { 135bbc605cdSLukas Czerner BUFFER_TRACE(bh, "get_write_access"); 136bbc605cdSLukas Czerner err = ext4_journal_get_write_access(handle, sb, 137bbc605cdSLukas Czerner bh, 138bbc605cdSLukas Czerner EXT4_JTR_NONE); 139bbc605cdSLukas Czerner if (err) 140bbc605cdSLukas Czerner goto out_bh; 141bbc605cdSLukas Czerner } 142bbc605cdSLukas Czerner 143bbc605cdSLukas Czerner es = (struct ext4_super_block *) (bh->b_data + offset); 144bbc605cdSLukas Czerner lock_buffer(bh); 145bbc605cdSLukas Czerner if (ext4_has_metadata_csum(sb) && 146bbc605cdSLukas Czerner es->s_checksum != ext4_superblock_csum(sb, es)) { 147bbc605cdSLukas Czerner ext4_msg(sb, KERN_ERR, "Invalid checksum for backup " 1489a8c5b0dSTheodore Ts'o "superblock %llu", sb_block); 149bbc605cdSLukas Czerner unlock_buffer(bh); 150bbc605cdSLukas Czerner goto out_bh; 151bbc605cdSLukas Czerner } 152bbc605cdSLukas Czerner func(es, arg); 153bbc605cdSLukas Czerner if (ext4_has_metadata_csum(sb)) 154bbc605cdSLukas Czerner es->s_checksum = ext4_superblock_csum(sb, es); 155bbc605cdSLukas Czerner set_buffer_uptodate(bh); 156bbc605cdSLukas Czerner unlock_buffer(bh); 157bbc605cdSLukas Czerner 158bbc605cdSLukas Czerner if (err) 159bbc605cdSLukas Czerner goto out_bh; 160bbc605cdSLukas Czerner 161bbc605cdSLukas Czerner if (handle) { 162bbc605cdSLukas Czerner err = ext4_handle_dirty_metadata(handle, NULL, bh); 163bbc605cdSLukas Czerner if (err) 164bbc605cdSLukas Czerner goto out_bh; 165bbc605cdSLukas Czerner } else { 166bbc605cdSLukas Czerner BUFFER_TRACE(bh, "marking dirty"); 167bbc605cdSLukas Czerner mark_buffer_dirty(bh); 168bbc605cdSLukas Czerner } 169bbc605cdSLukas Czerner err = sync_dirty_buffer(bh); 170bbc605cdSLukas Czerner 171bbc605cdSLukas Czerner out_bh: 172bbc605cdSLukas Czerner brelse(bh); 173bbc605cdSLukas Czerner ext4_std_error(sb, err); 174bbc605cdSLukas Czerner return (err) ? err : 1; 175bbc605cdSLukas Czerner } 176bbc605cdSLukas Czerner 177bbc605cdSLukas Czerner /* 178bbc605cdSLukas Czerner * Update primary and backup superblocks using the provided function 179bbc605cdSLukas Czerner * func and argument arg. 180bbc605cdSLukas Czerner * 181bbc605cdSLukas Czerner * Only the primary superblock and at most two backup superblock 182bbc605cdSLukas Czerner * modifications are journalled; the rest is modified without journal. 183bbc605cdSLukas Czerner * This is safe because e2fsck will re-write them if there is a problem, 184bbc605cdSLukas Czerner * and we're very unlikely to ever need more than two backups. 185bbc605cdSLukas Czerner */ 186bbc605cdSLukas Czerner static 187bbc605cdSLukas Czerner int ext4_update_superblocks_fn(struct super_block *sb, 188bbc605cdSLukas Czerner ext4_update_sb_callback func, 189bbc605cdSLukas Czerner const void *arg) 190bbc605cdSLukas Czerner { 191bbc605cdSLukas Czerner handle_t *handle; 192bbc605cdSLukas Czerner ext4_group_t ngroups; 193bbc605cdSLukas Czerner unsigned int three = 1; 194bbc605cdSLukas Czerner unsigned int five = 5; 195bbc605cdSLukas Czerner unsigned int seven = 7; 196bbc605cdSLukas Czerner int err = 0, ret, i; 197bbc605cdSLukas Czerner ext4_group_t grp, primary_grp; 198bbc605cdSLukas Czerner struct ext4_sb_info *sbi = EXT4_SB(sb); 199bbc605cdSLukas Czerner 200bbc605cdSLukas Czerner /* 201bbc605cdSLukas Czerner * We can't update superblocks while the online resize is running 202bbc605cdSLukas Czerner */ 203bbc605cdSLukas Czerner if (test_and_set_bit_lock(EXT4_FLAGS_RESIZING, 204bbc605cdSLukas Czerner &sbi->s_ext4_flags)) { 205bbc605cdSLukas Czerner ext4_msg(sb, KERN_ERR, "Can't modify superblock while" 206bbc605cdSLukas Czerner "performing online resize"); 207bbc605cdSLukas Czerner return -EBUSY; 208bbc605cdSLukas Czerner } 209bbc605cdSLukas Czerner 210bbc605cdSLukas Czerner /* 211bbc605cdSLukas Czerner * We're only going to update primary superblock and two 212bbc605cdSLukas Czerner * backup superblocks in this transaction. 213bbc605cdSLukas Czerner */ 214bbc605cdSLukas Czerner handle = ext4_journal_start_sb(sb, EXT4_HT_MISC, 3); 215bbc605cdSLukas Czerner if (IS_ERR(handle)) { 216bbc605cdSLukas Czerner err = PTR_ERR(handle); 217bbc605cdSLukas Czerner goto out; 218bbc605cdSLukas Czerner } 219bbc605cdSLukas Czerner 220bbc605cdSLukas Czerner /* Update primary superblock */ 221bbc605cdSLukas Czerner err = ext4_update_primary_sb(sb, handle, func, arg); 222bbc605cdSLukas Czerner if (err) { 223bbc605cdSLukas Czerner ext4_msg(sb, KERN_ERR, "Failed to update primary " 224bbc605cdSLukas Czerner "superblock"); 225bbc605cdSLukas Czerner goto out_journal; 226bbc605cdSLukas Czerner } 227bbc605cdSLukas Czerner 228bbc605cdSLukas Czerner primary_grp = ext4_get_group_number(sb, sbi->s_sbh->b_blocknr); 229bbc605cdSLukas Czerner ngroups = ext4_get_groups_count(sb); 230bbc605cdSLukas Czerner 231bbc605cdSLukas Czerner /* 232bbc605cdSLukas Czerner * Update backup superblocks. We have to start from group 0 233bbc605cdSLukas Czerner * because it might not be where the primary superblock is 234bbc605cdSLukas Czerner * if the fs is mounted with -o sb=<backup_sb_block> 235bbc605cdSLukas Czerner */ 236bbc605cdSLukas Czerner i = 0; 237bbc605cdSLukas Czerner grp = 0; 238bbc605cdSLukas Czerner while (grp < ngroups) { 239bbc605cdSLukas Czerner /* Skip primary superblock */ 240bbc605cdSLukas Czerner if (grp == primary_grp) 241bbc605cdSLukas Czerner goto next_grp; 242bbc605cdSLukas Czerner 243bbc605cdSLukas Czerner ret = ext4_update_backup_sb(sb, handle, grp, func, arg); 244bbc605cdSLukas Czerner if (ret < 0) { 245bbc605cdSLukas Czerner /* Ignore bad checksum; try to update next sb */ 246bbc605cdSLukas Czerner if (ret == -EFSBADCRC) 247bbc605cdSLukas Czerner goto next_grp; 248bbc605cdSLukas Czerner err = ret; 249bbc605cdSLukas Czerner goto out_journal; 250bbc605cdSLukas Czerner } 251bbc605cdSLukas Czerner 252bbc605cdSLukas Czerner i += ret; 253bbc605cdSLukas Czerner if (handle && i > 1) { 254bbc605cdSLukas Czerner /* 255bbc605cdSLukas Czerner * We're only journalling primary superblock and 256bbc605cdSLukas Czerner * two backup superblocks; the rest is not 257bbc605cdSLukas Czerner * journalled. 258bbc605cdSLukas Czerner */ 259bbc605cdSLukas Czerner err = ext4_journal_stop(handle); 260bbc605cdSLukas Czerner if (err) 261bbc605cdSLukas Czerner goto out; 262bbc605cdSLukas Czerner handle = NULL; 263bbc605cdSLukas Czerner } 264bbc605cdSLukas Czerner next_grp: 265bbc605cdSLukas Czerner grp = ext4_list_backups(sb, &three, &five, &seven); 266bbc605cdSLukas Czerner } 267bbc605cdSLukas Czerner 268bbc605cdSLukas Czerner out_journal: 269bbc605cdSLukas Czerner if (handle) { 270bbc605cdSLukas Czerner ret = ext4_journal_stop(handle); 271bbc605cdSLukas Czerner if (ret && !err) 272bbc605cdSLukas Czerner err = ret; 273bbc605cdSLukas Czerner } 274bbc605cdSLukas Czerner out: 275bbc605cdSLukas Czerner clear_bit_unlock(EXT4_FLAGS_RESIZING, &sbi->s_ext4_flags); 276bbc605cdSLukas Czerner smp_mb__after_atomic(); 277bbc605cdSLukas Czerner return err ? err : 0; 278bbc605cdSLukas Czerner } 279bbc605cdSLukas Czerner 280919adbfeSTheodore Ts'o /* 281393d1d1dSDr. Tilmann Bubeck * Swap memory between @a and @b for @len bytes. 282393d1d1dSDr. Tilmann Bubeck * 283393d1d1dSDr. Tilmann Bubeck * @a: pointer to first memory area 284393d1d1dSDr. Tilmann Bubeck * @b: pointer to second memory area 285393d1d1dSDr. Tilmann Bubeck * @len: number of bytes to swap 286393d1d1dSDr. Tilmann Bubeck * 287393d1d1dSDr. Tilmann Bubeck */ 288393d1d1dSDr. Tilmann Bubeck static void memswap(void *a, void *b, size_t len) 289393d1d1dSDr. Tilmann Bubeck { 290393d1d1dSDr. Tilmann Bubeck unsigned char *ap, *bp; 291393d1d1dSDr. Tilmann Bubeck 292393d1d1dSDr. Tilmann Bubeck ap = (unsigned char *)a; 293393d1d1dSDr. Tilmann Bubeck bp = (unsigned char *)b; 294393d1d1dSDr. Tilmann Bubeck while (len-- > 0) { 2954b7e2db5SFabian Frederick swap(*ap, *bp); 296393d1d1dSDr. Tilmann Bubeck ap++; 297393d1d1dSDr. Tilmann Bubeck bp++; 298393d1d1dSDr. Tilmann Bubeck } 299393d1d1dSDr. Tilmann Bubeck } 300393d1d1dSDr. Tilmann Bubeck 301919adbfeSTheodore Ts'o /* 302393d1d1dSDr. Tilmann Bubeck * Swap i_data and associated attributes between @inode1 and @inode2. 303393d1d1dSDr. Tilmann Bubeck * This function is used for the primary swap between inode1 and inode2 304393d1d1dSDr. Tilmann Bubeck * and also to revert this primary swap in case of errors. 305393d1d1dSDr. Tilmann Bubeck * 306393d1d1dSDr. Tilmann Bubeck * Therefore you have to make sure, that calling this method twice 307393d1d1dSDr. Tilmann Bubeck * will revert all changes. 308393d1d1dSDr. Tilmann Bubeck * 309393d1d1dSDr. Tilmann Bubeck * @inode1: pointer to first inode 310393d1d1dSDr. Tilmann Bubeck * @inode2: pointer to second inode 311393d1d1dSDr. Tilmann Bubeck */ 312393d1d1dSDr. Tilmann Bubeck static void swap_inode_data(struct inode *inode1, struct inode *inode2) 313393d1d1dSDr. Tilmann Bubeck { 314393d1d1dSDr. Tilmann Bubeck loff_t isize; 315393d1d1dSDr. Tilmann Bubeck struct ext4_inode_info *ei1; 316393d1d1dSDr. Tilmann Bubeck struct ext4_inode_info *ei2; 317abdc644eSyangerkun unsigned long tmp; 318393d1d1dSDr. Tilmann Bubeck 319393d1d1dSDr. Tilmann Bubeck ei1 = EXT4_I(inode1); 320393d1d1dSDr. Tilmann Bubeck ei2 = EXT4_I(inode2); 321393d1d1dSDr. Tilmann Bubeck 3229c5d58fbSJeff Layton swap(inode1->i_version, inode2->i_version); 3239c5d58fbSJeff Layton swap(inode1->i_atime, inode2->i_atime); 3249c5d58fbSJeff Layton swap(inode1->i_mtime, inode2->i_mtime); 325393d1d1dSDr. Tilmann Bubeck 326393d1d1dSDr. Tilmann Bubeck memswap(ei1->i_data, ei2->i_data, sizeof(ei1->i_data)); 327abdc644eSyangerkun tmp = ei1->i_flags & EXT4_FL_SHOULD_SWAP; 328abdc644eSyangerkun ei1->i_flags = (ei2->i_flags & EXT4_FL_SHOULD_SWAP) | 329abdc644eSyangerkun (ei1->i_flags & ~EXT4_FL_SHOULD_SWAP); 330abdc644eSyangerkun ei2->i_flags = tmp | (ei2->i_flags & ~EXT4_FL_SHOULD_SWAP); 3319c5d58fbSJeff Layton swap(ei1->i_disksize, ei2->i_disksize); 332cde2d7a7STheodore Ts'o ext4_es_remove_extent(inode1, 0, EXT_MAX_BLOCKS); 333cde2d7a7STheodore Ts'o ext4_es_remove_extent(inode2, 0, EXT_MAX_BLOCKS); 334393d1d1dSDr. Tilmann Bubeck 335393d1d1dSDr. Tilmann Bubeck isize = i_size_read(inode1); 336393d1d1dSDr. Tilmann Bubeck i_size_write(inode1, i_size_read(inode2)); 337393d1d1dSDr. Tilmann Bubeck i_size_write(inode2, isize); 338393d1d1dSDr. Tilmann Bubeck } 339393d1d1dSDr. Tilmann Bubeck 3408016e29fSHarshad Shirwadkar void ext4_reset_inode_seed(struct inode *inode) 34118aded17STheodore Ts'o { 34218aded17STheodore Ts'o struct ext4_inode_info *ei = EXT4_I(inode); 34318aded17STheodore Ts'o struct ext4_sb_info *sbi = EXT4_SB(inode->i_sb); 34418aded17STheodore Ts'o __le32 inum = cpu_to_le32(inode->i_ino); 34518aded17STheodore Ts'o __le32 gen = cpu_to_le32(inode->i_generation); 34618aded17STheodore Ts'o __u32 csum; 34718aded17STheodore Ts'o 34818aded17STheodore Ts'o if (!ext4_has_metadata_csum(inode->i_sb)) 34918aded17STheodore Ts'o return; 35018aded17STheodore Ts'o 35118aded17STheodore Ts'o csum = ext4_chksum(sbi, sbi->s_csum_seed, (__u8 *)&inum, sizeof(inum)); 35218aded17STheodore Ts'o ei->i_csum_seed = ext4_chksum(sbi, csum, (__u8 *)&gen, sizeof(gen)); 35318aded17STheodore Ts'o } 35418aded17STheodore Ts'o 355919adbfeSTheodore Ts'o /* 356393d1d1dSDr. Tilmann Bubeck * Swap the information from the given @inode and the inode 357393d1d1dSDr. Tilmann Bubeck * EXT4_BOOT_LOADER_INO. It will basically swap i_data and all other 358393d1d1dSDr. Tilmann Bubeck * important fields of the inodes. 359393d1d1dSDr. Tilmann Bubeck * 360393d1d1dSDr. Tilmann Bubeck * @sb: the super block of the filesystem 36114f3db55SChristian Brauner * @mnt_userns: user namespace of the mount the inode was found from 362393d1d1dSDr. Tilmann Bubeck * @inode: the inode to swap with EXT4_BOOT_LOADER_INO 363393d1d1dSDr. Tilmann Bubeck * 364393d1d1dSDr. Tilmann Bubeck */ 365393d1d1dSDr. Tilmann Bubeck static long swap_inode_boot_loader(struct super_block *sb, 36614f3db55SChristian Brauner struct user_namespace *mnt_userns, 367393d1d1dSDr. Tilmann Bubeck struct inode *inode) 368393d1d1dSDr. Tilmann Bubeck { 369393d1d1dSDr. Tilmann Bubeck handle_t *handle; 370393d1d1dSDr. Tilmann Bubeck int err; 371393d1d1dSDr. Tilmann Bubeck struct inode *inode_bl; 372393d1d1dSDr. Tilmann Bubeck struct ext4_inode_info *ei_bl; 373aa507b5fSyangerkun qsize_t size, size_bl, diff; 374aa507b5fSyangerkun blkcnt_t blocks; 375aa507b5fSyangerkun unsigned short bytes; 376393d1d1dSDr. Tilmann Bubeck 37763b1e9bcSBaokun Li inode_bl = ext4_iget(sb, EXT4_BOOT_LOADER_INO, 37863b1e9bcSBaokun Li EXT4_IGET_SPECIAL | EXT4_IGET_BAD); 379d8558a29STheodore Ts'o if (IS_ERR(inode_bl)) 380d8558a29STheodore Ts'o return PTR_ERR(inode_bl); 381393d1d1dSDr. Tilmann Bubeck ei_bl = EXT4_I(inode_bl); 382393d1d1dSDr. Tilmann Bubeck 383393d1d1dSDr. Tilmann Bubeck /* Protect orig inodes against a truncate and make sure, 384393d1d1dSDr. Tilmann Bubeck * that only 1 swap_inode_boot_loader is running. */ 385375e289eSJ. Bruce Fields lock_two_nondirectories(inode, inode_bl); 386393d1d1dSDr. Tilmann Bubeck 38767a11611Syangerkun if (inode->i_nlink != 1 || !S_ISREG(inode->i_mode) || 38867a11611Syangerkun IS_SWAPFILE(inode) || IS_ENCRYPTED(inode) || 3896e589291STheodore Ts'o (EXT4_I(inode)->i_flags & EXT4_JOURNAL_DATA_FL) || 39067a11611Syangerkun ext4_has_inline_data(inode)) { 39167a11611Syangerkun err = -EINVAL; 39267a11611Syangerkun goto journal_err_out; 39367a11611Syangerkun } 39467a11611Syangerkun 39567a11611Syangerkun if (IS_RDONLY(inode) || IS_APPEND(inode) || IS_IMMUTABLE(inode) || 39614f3db55SChristian Brauner !inode_owner_or_capable(mnt_userns, inode) || 39721cb47beSChristian Brauner !capable(CAP_SYS_ADMIN)) { 39867a11611Syangerkun err = -EPERM; 39967a11611Syangerkun goto journal_err_out; 40067a11611Syangerkun } 40167a11611Syangerkun 402d4f5258eSJan Kara filemap_invalidate_lock(inode->i_mapping); 403a46c68a3Syangerkun err = filemap_write_and_wait(inode->i_mapping); 404a46c68a3Syangerkun if (err) 405a46c68a3Syangerkun goto err_out; 406a46c68a3Syangerkun 407a46c68a3Syangerkun err = filemap_write_and_wait(inode_bl->i_mapping); 408a46c68a3Syangerkun if (err) 409a46c68a3Syangerkun goto err_out; 410a46c68a3Syangerkun 411393d1d1dSDr. Tilmann Bubeck /* Wait for all existing dio workers */ 412393d1d1dSDr. Tilmann Bubeck inode_dio_wait(inode); 413393d1d1dSDr. Tilmann Bubeck inode_dio_wait(inode_bl); 414393d1d1dSDr. Tilmann Bubeck 41518aded17STheodore Ts'o truncate_inode_pages(&inode->i_data, 0); 41618aded17STheodore Ts'o truncate_inode_pages(&inode_bl->i_data, 0); 41718aded17STheodore Ts'o 418393d1d1dSDr. Tilmann Bubeck handle = ext4_journal_start(inode_bl, EXT4_HT_MOVE_EXTENTS, 2); 419393d1d1dSDr. Tilmann Bubeck if (IS_ERR(handle)) { 420393d1d1dSDr. Tilmann Bubeck err = -EINVAL; 421a46c68a3Syangerkun goto err_out; 422393d1d1dSDr. Tilmann Bubeck } 423e85c81baSXin Yin ext4_fc_mark_ineligible(sb, EXT4_FC_REASON_SWAP_BOOT, handle); 424393d1d1dSDr. Tilmann Bubeck 425393d1d1dSDr. Tilmann Bubeck /* Protect extent tree against block allocations via delalloc */ 426393d1d1dSDr. Tilmann Bubeck ext4_double_down_write_data_sem(inode, inode_bl); 427393d1d1dSDr. Tilmann Bubeck 428*991ed014SBaokun Li if (is_bad_inode(inode_bl) || !S_ISREG(inode_bl->i_mode)) { 429393d1d1dSDr. Tilmann Bubeck /* this inode has never been used as a BOOT_LOADER */ 430393d1d1dSDr. Tilmann Bubeck set_nlink(inode_bl, 1); 431393d1d1dSDr. Tilmann Bubeck i_uid_write(inode_bl, 0); 432393d1d1dSDr. Tilmann Bubeck i_gid_write(inode_bl, 0); 433393d1d1dSDr. Tilmann Bubeck inode_bl->i_flags = 0; 434393d1d1dSDr. Tilmann Bubeck ei_bl->i_flags = 0; 435ee73f9a5SJeff Layton inode_set_iversion(inode_bl, 1); 436393d1d1dSDr. Tilmann Bubeck i_size_write(inode_bl, 0); 437393d1d1dSDr. Tilmann Bubeck inode_bl->i_mode = S_IFREG; 438e2b911c5SDarrick J. Wong if (ext4_has_feature_extents(sb)) { 439393d1d1dSDr. Tilmann Bubeck ext4_set_inode_flag(inode_bl, EXT4_INODE_EXTENTS); 440393d1d1dSDr. Tilmann Bubeck ext4_ext_tree_init(handle, inode_bl); 441393d1d1dSDr. Tilmann Bubeck } else 442393d1d1dSDr. Tilmann Bubeck memset(ei_bl->i_data, 0, sizeof(ei_bl->i_data)); 443393d1d1dSDr. Tilmann Bubeck } 444393d1d1dSDr. Tilmann Bubeck 445aa507b5fSyangerkun err = dquot_initialize(inode); 446aa507b5fSyangerkun if (err) 447aa507b5fSyangerkun goto err_out1; 448aa507b5fSyangerkun 449aa507b5fSyangerkun size = (qsize_t)(inode->i_blocks) * (1 << 9) + inode->i_bytes; 450aa507b5fSyangerkun size_bl = (qsize_t)(inode_bl->i_blocks) * (1 << 9) + inode_bl->i_bytes; 451aa507b5fSyangerkun diff = size - size_bl; 452393d1d1dSDr. Tilmann Bubeck swap_inode_data(inode, inode_bl); 453393d1d1dSDr. Tilmann Bubeck 454eeca7ea1SDeepa Dinamani inode->i_ctime = inode_bl->i_ctime = current_time(inode); 455a642c2c0SJeff Layton inode_inc_iversion(inode); 456393d1d1dSDr. Tilmann Bubeck 457a251c17aSJason A. Donenfeld inode->i_generation = get_random_u32(); 458a251c17aSJason A. Donenfeld inode_bl->i_generation = get_random_u32(); 4598016e29fSHarshad Shirwadkar ext4_reset_inode_seed(inode); 4608016e29fSHarshad Shirwadkar ext4_reset_inode_seed(inode_bl); 461393d1d1dSDr. Tilmann Bubeck 46227bc446eSbrookxu ext4_discard_preallocations(inode, 0); 463393d1d1dSDr. Tilmann Bubeck 464393d1d1dSDr. Tilmann Bubeck err = ext4_mark_inode_dirty(handle, inode); 465393d1d1dSDr. Tilmann Bubeck if (err < 0) { 466aa507b5fSyangerkun /* No need to update quota information. */ 467393d1d1dSDr. Tilmann Bubeck ext4_warning(inode->i_sb, 468393d1d1dSDr. Tilmann Bubeck "couldn't mark inode #%lu dirty (err %d)", 469393d1d1dSDr. Tilmann Bubeck inode->i_ino, err); 470393d1d1dSDr. Tilmann Bubeck /* Revert all changes: */ 471393d1d1dSDr. Tilmann Bubeck swap_inode_data(inode, inode_bl); 47218aded17STheodore Ts'o ext4_mark_inode_dirty(handle, inode); 473aa507b5fSyangerkun goto err_out1; 474aa507b5fSyangerkun } 475aa507b5fSyangerkun 476aa507b5fSyangerkun blocks = inode_bl->i_blocks; 477aa507b5fSyangerkun bytes = inode_bl->i_bytes; 478aa507b5fSyangerkun inode_bl->i_blocks = inode->i_blocks; 479aa507b5fSyangerkun inode_bl->i_bytes = inode->i_bytes; 480393d1d1dSDr. Tilmann Bubeck err = ext4_mark_inode_dirty(handle, inode_bl); 481393d1d1dSDr. Tilmann Bubeck if (err < 0) { 482aa507b5fSyangerkun /* No need to update quota information. */ 483393d1d1dSDr. Tilmann Bubeck ext4_warning(inode_bl->i_sb, 484393d1d1dSDr. Tilmann Bubeck "couldn't mark inode #%lu dirty (err %d)", 485393d1d1dSDr. Tilmann Bubeck inode_bl->i_ino, err); 486aa507b5fSyangerkun goto revert; 487aa507b5fSyangerkun } 488aa507b5fSyangerkun 489aa507b5fSyangerkun /* Bootloader inode should not be counted into quota information. */ 490aa507b5fSyangerkun if (diff > 0) 491aa507b5fSyangerkun dquot_free_space(inode, diff); 492aa507b5fSyangerkun else 493aa507b5fSyangerkun err = dquot_alloc_space(inode, -1 * diff); 494aa507b5fSyangerkun 495aa507b5fSyangerkun if (err < 0) { 496aa507b5fSyangerkun revert: 497393d1d1dSDr. Tilmann Bubeck /* Revert all changes: */ 498aa507b5fSyangerkun inode_bl->i_blocks = blocks; 499aa507b5fSyangerkun inode_bl->i_bytes = bytes; 500393d1d1dSDr. Tilmann Bubeck swap_inode_data(inode, inode_bl); 501393d1d1dSDr. Tilmann Bubeck ext4_mark_inode_dirty(handle, inode); 50218aded17STheodore Ts'o ext4_mark_inode_dirty(handle, inode_bl); 503393d1d1dSDr. Tilmann Bubeck } 504aa507b5fSyangerkun 505aa507b5fSyangerkun err_out1: 506393d1d1dSDr. Tilmann Bubeck ext4_journal_stop(handle); 507393d1d1dSDr. Tilmann Bubeck ext4_double_up_write_data_sem(inode, inode_bl); 508393d1d1dSDr. Tilmann Bubeck 509a46c68a3Syangerkun err_out: 510d4f5258eSJan Kara filemap_invalidate_unlock(inode->i_mapping); 51130d29b11SZheng Liu journal_err_out: 512375e289eSJ. Bruce Fields unlock_two_nondirectories(inode, inode_bl); 513393d1d1dSDr. Tilmann Bubeck iput(inode_bl); 514393d1d1dSDr. Tilmann Bubeck return err; 515393d1d1dSDr. Tilmann Bubeck } 516393d1d1dSDr. Tilmann Bubeck 5172e538403SDarrick J. Wong /* 5182e538403SDarrick J. Wong * If immutable is set and we are not clearing it, we're not allowed to change 5192e538403SDarrick J. Wong * anything else in the inode. Don't error out if we're only trying to set 5202e538403SDarrick J. Wong * immutable on an immutable file. 5212e538403SDarrick J. Wong */ 5222e538403SDarrick J. Wong static int ext4_ioctl_check_immutable(struct inode *inode, __u32 new_projid, 5232e538403SDarrick J. Wong unsigned int flags) 5242e538403SDarrick J. Wong { 5252e538403SDarrick J. Wong struct ext4_inode_info *ei = EXT4_I(inode); 5262e538403SDarrick J. Wong unsigned int oldflags = ei->i_flags; 5272e538403SDarrick J. Wong 5282e538403SDarrick J. Wong if (!(oldflags & EXT4_IMMUTABLE_FL) || !(flags & EXT4_IMMUTABLE_FL)) 5292e538403SDarrick J. Wong return 0; 5302e538403SDarrick J. Wong 5312e538403SDarrick J. Wong if ((oldflags & ~EXT4_IMMUTABLE_FL) != (flags & ~EXT4_IMMUTABLE_FL)) 5322e538403SDarrick J. Wong return -EPERM; 5332e538403SDarrick J. Wong if (ext4_has_feature_project(inode->i_sb) && 5342e538403SDarrick J. Wong __kprojid_val(ei->i_projid) != new_projid) 5352e538403SDarrick J. Wong return -EPERM; 5362e538403SDarrick J. Wong 5372e538403SDarrick J. Wong return 0; 5382e538403SDarrick J. Wong } 5392e538403SDarrick J. Wong 540b383a73fSIra Weiny static void ext4_dax_dontcache(struct inode *inode, unsigned int flags) 541b383a73fSIra Weiny { 542b383a73fSIra Weiny struct ext4_inode_info *ei = EXT4_I(inode); 543b383a73fSIra Weiny 544b383a73fSIra Weiny if (S_ISDIR(inode->i_mode)) 545b383a73fSIra Weiny return; 546b383a73fSIra Weiny 547b383a73fSIra Weiny if (test_opt2(inode->i_sb, DAX_NEVER) || 548b383a73fSIra Weiny test_opt(inode->i_sb, DAX_ALWAYS)) 549b383a73fSIra Weiny return; 550b383a73fSIra Weiny 551b383a73fSIra Weiny if ((ei->i_flags ^ flags) & EXT4_DAX_FL) 552b383a73fSIra Weiny d_mark_dontcache(inode); 553b383a73fSIra Weiny } 554b383a73fSIra Weiny 555b383a73fSIra Weiny static bool dax_compatible(struct inode *inode, unsigned int oldflags, 556b383a73fSIra Weiny unsigned int flags) 557b383a73fSIra Weiny { 5584811d992STheodore Ts'o /* Allow the DAX flag to be changed on inline directories */ 5594811d992STheodore Ts'o if (S_ISDIR(inode->i_mode)) { 5604811d992STheodore Ts'o flags &= ~EXT4_INLINE_DATA_FL; 5614811d992STheodore Ts'o oldflags &= ~EXT4_INLINE_DATA_FL; 5624811d992STheodore Ts'o } 5634811d992STheodore Ts'o 564b383a73fSIra Weiny if (flags & EXT4_DAX_FL) { 565b383a73fSIra Weiny if ((oldflags & EXT4_DAX_MUT_EXCL) || 566b383a73fSIra Weiny ext4_test_inode_state(inode, 567b383a73fSIra Weiny EXT4_STATE_VERITY_IN_PROGRESS)) { 568b383a73fSIra Weiny return false; 569b383a73fSIra Weiny } 570b383a73fSIra Weiny } 571b383a73fSIra Weiny 572b383a73fSIra Weiny if ((flags & EXT4_DAX_MUT_EXCL) && (oldflags & EXT4_DAX_FL)) 573b383a73fSIra Weiny return false; 574b383a73fSIra Weiny 575b383a73fSIra Weiny return true; 576b383a73fSIra Weiny } 577b383a73fSIra Weiny 5789b7365fcSLi Xi static int ext4_ioctl_setflags(struct inode *inode, 5799b7365fcSLi Xi unsigned int flags) 580ac27a0ecSDave Kleikamp { 581617ba13bSMingming Cao struct ext4_inode_info *ei = EXT4_I(inode); 582ac27a0ecSDave Kleikamp handle_t *handle = NULL; 583fdde368eSAnton Protopopov int err = -EPERM, migrate = 0; 584617ba13bSMingming Cao struct ext4_iloc iloc; 58579906964STheodore Ts'o unsigned int oldflags, mask, i; 586b886ee3eSGabriel Krisman Bertazi struct super_block *sb = inode->i_sb; 587ac27a0ecSDave Kleikamp 588e47776a0SJan Kara /* Is it quota file? Do not allow user to mess with it */ 58902749a4cSTahsin Erdogan if (ext4_is_quota_file(inode)) 59042a74f20SDave Hansen goto flags_out; 59142a74f20SDave Hansen 592ac27a0ecSDave Kleikamp oldflags = ei->i_flags; 593ac27a0ecSDave Kleikamp /* 594ac27a0ecSDave Kleikamp * The JOURNAL_DATA flag can only be changed by 595ac27a0ecSDave Kleikamp * the relevant capability. 596ac27a0ecSDave Kleikamp */ 597fcebc794SIra Weiny if ((flags ^ oldflags) & (EXT4_JOURNAL_DATA_FL)) { 59842a74f20SDave Hansen if (!capable(CAP_SYS_RESOURCE)) 59942a74f20SDave Hansen goto flags_out; 600ac27a0ecSDave Kleikamp } 601b383a73fSIra Weiny 602b383a73fSIra Weiny if (!dax_compatible(inode, oldflags, flags)) { 603b383a73fSIra Weiny err = -EOPNOTSUPP; 604b383a73fSIra Weiny goto flags_out; 605b383a73fSIra Weiny } 606b383a73fSIra Weiny 607996bb9fdSTheodore Ts'o if ((flags ^ oldflags) & EXT4_EXTENTS_FL) 6084db46fc2SAneesh Kumar K.V migrate = 1; 609ac27a0ecSDave Kleikamp 610b886ee3eSGabriel Krisman Bertazi if ((flags ^ oldflags) & EXT4_CASEFOLD_FL) { 611b886ee3eSGabriel Krisman Bertazi if (!ext4_has_feature_casefold(sb)) { 612b886ee3eSGabriel Krisman Bertazi err = -EOPNOTSUPP; 613b886ee3eSGabriel Krisman Bertazi goto flags_out; 614b886ee3eSGabriel Krisman Bertazi } 615b886ee3eSGabriel Krisman Bertazi 616b886ee3eSGabriel Krisman Bertazi if (!S_ISDIR(inode->i_mode)) { 617b886ee3eSGabriel Krisman Bertazi err = -ENOTDIR; 618b886ee3eSGabriel Krisman Bertazi goto flags_out; 619b886ee3eSGabriel Krisman Bertazi } 620b886ee3eSGabriel Krisman Bertazi 621b886ee3eSGabriel Krisman Bertazi if (!ext4_empty_dir(inode)) { 622b886ee3eSGabriel Krisman Bertazi err = -ENOTEMPTY; 623b886ee3eSGabriel Krisman Bertazi goto flags_out; 624b886ee3eSGabriel Krisman Bertazi } 625b886ee3eSGabriel Krisman Bertazi } 626b886ee3eSGabriel Krisman Bertazi 6272e538403SDarrick J. Wong /* 6282e538403SDarrick J. Wong * Wait for all pending directio and then flush all the dirty pages 6292e538403SDarrick J. Wong * for this file. The flush marks all the pages readonly, so any 6302e538403SDarrick J. Wong * subsequent attempt to write to the file (particularly mmap pages) 6312e538403SDarrick J. Wong * will come through the filesystem and fail. 6322e538403SDarrick J. Wong */ 6332e538403SDarrick J. Wong if (S_ISREG(inode->i_mode) && !IS_IMMUTABLE(inode) && 6342e538403SDarrick J. Wong (flags & EXT4_IMMUTABLE_FL)) { 6352e538403SDarrick J. Wong inode_dio_wait(inode); 6362e538403SDarrick J. Wong err = filemap_write_and_wait(inode->i_mapping); 6372e538403SDarrick J. Wong if (err) 6382e538403SDarrick J. Wong goto flags_out; 6392e538403SDarrick J. Wong } 6402e538403SDarrick J. Wong 6419924a92aSTheodore Ts'o handle = ext4_journal_start(inode, EXT4_HT_INODE, 1); 642ac27a0ecSDave Kleikamp if (IS_ERR(handle)) { 64342a74f20SDave Hansen err = PTR_ERR(handle); 64442a74f20SDave Hansen goto flags_out; 645ac27a0ecSDave Kleikamp } 646ac27a0ecSDave Kleikamp if (IS_SYNC(inode)) 6470390131bSFrank Mayhar ext4_handle_sync(handle); 648617ba13bSMingming Cao err = ext4_reserve_inode_write(handle, inode, &iloc); 649ac27a0ecSDave Kleikamp if (err) 650ac27a0ecSDave Kleikamp goto flags_err; 651ac27a0ecSDave Kleikamp 652b383a73fSIra Weiny ext4_dax_dontcache(inode, flags); 653b383a73fSIra Weiny 65479906964STheodore Ts'o for (i = 0, mask = 1; i < 32; i++, mask <<= 1) { 65579906964STheodore Ts'o if (!(mask & EXT4_FL_USER_MODIFIABLE)) 65679906964STheodore Ts'o continue; 657f8011d93SJan Kara /* These flags get special treatment later */ 658f8011d93SJan Kara if (mask == EXT4_JOURNAL_DATA_FL || mask == EXT4_EXTENTS_FL) 659f8011d93SJan Kara continue; 66079906964STheodore Ts'o if (mask & flags) 66179906964STheodore Ts'o ext4_set_inode_flag(inode, i); 66279906964STheodore Ts'o else 66379906964STheodore Ts'o ext4_clear_inode_flag(inode, i); 66479906964STheodore Ts'o } 665ac27a0ecSDave Kleikamp 666043546e4SIra Weiny ext4_set_inode_flags(inode, false); 667043546e4SIra Weiny 668eeca7ea1SDeepa Dinamani inode->i_ctime = current_time(inode); 669a642c2c0SJeff Layton inode_inc_iversion(inode); 670ac27a0ecSDave Kleikamp 671617ba13bSMingming Cao err = ext4_mark_iloc_dirty(handle, inode, &iloc); 672ac27a0ecSDave Kleikamp flags_err: 673617ba13bSMingming Cao ext4_journal_stop(handle); 67442a74f20SDave Hansen if (err) 67542a74f20SDave Hansen goto flags_out; 676ac27a0ecSDave Kleikamp 677fcebc794SIra Weiny if ((flags ^ oldflags) & (EXT4_JOURNAL_DATA_FL)) { 678e9072d85SRoss Zwisler /* 679e9072d85SRoss Zwisler * Changes to the journaling mode can cause unsafe changes to 680ff694ab6SIra Weiny * S_DAX if the inode is DAX 681e9072d85SRoss Zwisler */ 682ff694ab6SIra Weiny if (IS_DAX(inode)) { 683e9072d85SRoss Zwisler err = -EBUSY; 684e9072d85SRoss Zwisler goto flags_out; 685e9072d85SRoss Zwisler } 686e9072d85SRoss Zwisler 687fcebc794SIra Weiny err = ext4_change_inode_journal_flag(inode, 688fcebc794SIra Weiny flags & EXT4_JOURNAL_DATA_FL); 6894db46fc2SAneesh Kumar K.V if (err) 6904db46fc2SAneesh Kumar K.V goto flags_out; 691e9072d85SRoss Zwisler } 692996bb9fdSTheodore Ts'o if (migrate) { 693996bb9fdSTheodore Ts'o if (flags & EXT4_EXTENTS_FL) 6944db46fc2SAneesh Kumar K.V err = ext4_ext_migrate(inode); 695996bb9fdSTheodore Ts'o else 696996bb9fdSTheodore Ts'o err = ext4_ind_migrate(inode); 697996bb9fdSTheodore Ts'o } 698996bb9fdSTheodore Ts'o 69942a74f20SDave Hansen flags_out: 7009b7365fcSLi Xi return err; 7019b7365fcSLi Xi } 7029b7365fcSLi Xi 7039b7365fcSLi Xi #ifdef CONFIG_QUOTA 7044db5c2e6SMiklos Szeredi static int ext4_ioctl_setproject(struct inode *inode, __u32 projid) 7059b7365fcSLi Xi { 7069b7365fcSLi Xi struct super_block *sb = inode->i_sb; 7079b7365fcSLi Xi struct ext4_inode_info *ei = EXT4_I(inode); 7089b7365fcSLi Xi int err, rc; 7099b7365fcSLi Xi handle_t *handle; 7109b7365fcSLi Xi kprojid_t kprojid; 7119b7365fcSLi Xi struct ext4_iloc iloc; 7129b7365fcSLi Xi struct ext4_inode *raw_inode; 713079788d0SWang Shilong struct dquot *transfer_to[MAXQUOTAS] = { }; 7149b7365fcSLi Xi 7150b7b7779SKaho Ng if (!ext4_has_feature_project(sb)) { 7169b7365fcSLi Xi if (projid != EXT4_DEF_PROJID) 7179b7365fcSLi Xi return -EOPNOTSUPP; 7189b7365fcSLi Xi else 7199b7365fcSLi Xi return 0; 7209b7365fcSLi Xi } 7219b7365fcSLi Xi 7229b7365fcSLi Xi if (EXT4_INODE_SIZE(sb) <= EXT4_GOOD_OLD_INODE_SIZE) 7239b7365fcSLi Xi return -EOPNOTSUPP; 7249b7365fcSLi Xi 7259b7365fcSLi Xi kprojid = make_kprojid(&init_user_ns, (projid_t)projid); 7269b7365fcSLi Xi 7279b7365fcSLi Xi if (projid_eq(kprojid, EXT4_I(inode)->i_projid)) 7289b7365fcSLi Xi return 0; 7299b7365fcSLi Xi 7309b7365fcSLi Xi err = -EPERM; 7319b7365fcSLi Xi /* Is it quota file? Do not allow user to mess with it */ 73202749a4cSTahsin Erdogan if (ext4_is_quota_file(inode)) 733dc7ac6c4SWang Shilong return err; 7349b7365fcSLi Xi 7359b7365fcSLi Xi err = ext4_get_inode_loc(inode, &iloc); 7369b7365fcSLi Xi if (err) 737dc7ac6c4SWang Shilong return err; 7389b7365fcSLi Xi 7399b7365fcSLi Xi raw_inode = ext4_raw_inode(&iloc); 7409b7365fcSLi Xi if (!EXT4_FITS_IN_INODE(raw_inode, ei, i_projid)) { 741c03b45b8SMiao Xie err = ext4_expand_extra_isize(inode, 742c03b45b8SMiao Xie EXT4_SB(sb)->s_want_extra_isize, 743c03b45b8SMiao Xie &iloc); 744c03b45b8SMiao Xie if (err) 745dc7ac6c4SWang Shilong return err; 746c03b45b8SMiao Xie } else { 7479b7365fcSLi Xi brelse(iloc.bh); 748c03b45b8SMiao Xie } 7499b7365fcSLi Xi 750182a79e0SWang Shilong err = dquot_initialize(inode); 751182a79e0SWang Shilong if (err) 752182a79e0SWang Shilong return err; 7539b7365fcSLi Xi 7549b7365fcSLi Xi handle = ext4_journal_start(inode, EXT4_HT_QUOTA, 7559b7365fcSLi Xi EXT4_QUOTA_INIT_BLOCKS(sb) + 7569b7365fcSLi Xi EXT4_QUOTA_DEL_BLOCKS(sb) + 3); 757dc7ac6c4SWang Shilong if (IS_ERR(handle)) 758dc7ac6c4SWang Shilong return PTR_ERR(handle); 7599b7365fcSLi Xi 7609b7365fcSLi Xi err = ext4_reserve_inode_write(handle, inode, &iloc); 7619b7365fcSLi Xi if (err) 7629b7365fcSLi Xi goto out_stop; 7639b7365fcSLi Xi 7649b7365fcSLi Xi transfer_to[PRJQUOTA] = dqget(sb, make_kqid_projid(kprojid)); 765ff0bc084SSeth Forshee if (!IS_ERR(transfer_to[PRJQUOTA])) { 7667a9ca53aSTahsin Erdogan 7677a9ca53aSTahsin Erdogan /* __dquot_transfer() calls back ext4_get_inode_usage() which 7687a9ca53aSTahsin Erdogan * counts xattr inode references. 7697a9ca53aSTahsin Erdogan */ 7707a9ca53aSTahsin Erdogan down_read(&EXT4_I(inode)->xattr_sem); 7719b7365fcSLi Xi err = __dquot_transfer(inode, transfer_to); 7727a9ca53aSTahsin Erdogan up_read(&EXT4_I(inode)->xattr_sem); 7739b7365fcSLi Xi dqput(transfer_to[PRJQUOTA]); 7749b7365fcSLi Xi if (err) 7759b7365fcSLi Xi goto out_dirty; 7769b7365fcSLi Xi } 777079788d0SWang Shilong 7789b7365fcSLi Xi EXT4_I(inode)->i_projid = kprojid; 779eeca7ea1SDeepa Dinamani inode->i_ctime = current_time(inode); 780a642c2c0SJeff Layton inode_inc_iversion(inode); 7819b7365fcSLi Xi out_dirty: 7829b7365fcSLi Xi rc = ext4_mark_iloc_dirty(handle, inode, &iloc); 7839b7365fcSLi Xi if (!err) 7849b7365fcSLi Xi err = rc; 7859b7365fcSLi Xi out_stop: 7869b7365fcSLi Xi ext4_journal_stop(handle); 7879b7365fcSLi Xi return err; 7889b7365fcSLi Xi } 7899b7365fcSLi Xi #else 7904db5c2e6SMiklos Szeredi static int ext4_ioctl_setproject(struct inode *inode, __u32 projid) 7919b7365fcSLi Xi { 7929b7365fcSLi Xi if (projid != EXT4_DEF_PROJID) 7939b7365fcSLi Xi return -EOPNOTSUPP; 7949b7365fcSLi Xi return 0; 7959b7365fcSLi Xi } 7969b7365fcSLi Xi #endif 7979b7365fcSLi Xi 7981a20a630SEric Biggers static int ext4_shutdown(struct super_block *sb, unsigned long arg) 799783d9485STheodore Ts'o { 800783d9485STheodore Ts'o struct ext4_sb_info *sbi = EXT4_SB(sb); 801783d9485STheodore Ts'o __u32 flags; 802783d9485STheodore Ts'o 803783d9485STheodore Ts'o if (!capable(CAP_SYS_ADMIN)) 804783d9485STheodore Ts'o return -EPERM; 805783d9485STheodore Ts'o 806783d9485STheodore Ts'o if (get_user(flags, (__u32 __user *)arg)) 807783d9485STheodore Ts'o return -EFAULT; 808783d9485STheodore Ts'o 809783d9485STheodore Ts'o if (flags > EXT4_GOING_FLAGS_NOLOGFLUSH) 810783d9485STheodore Ts'o return -EINVAL; 811783d9485STheodore Ts'o 812783d9485STheodore Ts'o if (ext4_forced_shutdown(sbi)) 813783d9485STheodore Ts'o return 0; 814783d9485STheodore Ts'o 815783d9485STheodore Ts'o ext4_msg(sb, KERN_ALERT, "shut down requested (%d)", flags); 816ccf0f32aSTheodore Ts'o trace_ext4_shutdown(sb, flags); 817783d9485STheodore Ts'o 818783d9485STheodore Ts'o switch (flags) { 819783d9485STheodore Ts'o case EXT4_GOING_FLAGS_DEFAULT: 820783d9485STheodore Ts'o freeze_bdev(sb->s_bdev); 821783d9485STheodore Ts'o set_bit(EXT4_FLAGS_SHUTDOWN, &sbi->s_ext4_flags); 822040f04bdSChristoph Hellwig thaw_bdev(sb->s_bdev); 823783d9485STheodore Ts'o break; 824783d9485STheodore Ts'o case EXT4_GOING_FLAGS_LOGFLUSH: 825783d9485STheodore Ts'o set_bit(EXT4_FLAGS_SHUTDOWN, &sbi->s_ext4_flags); 826783d9485STheodore Ts'o if (sbi->s_journal && !is_journal_aborted(sbi->s_journal)) { 827783d9485STheodore Ts'o (void) ext4_force_commit(sb); 828fb7c0244STheodore Ts'o jbd2_journal_abort(sbi->s_journal, -ESHUTDOWN); 829783d9485STheodore Ts'o } 830783d9485STheodore Ts'o break; 831783d9485STheodore Ts'o case EXT4_GOING_FLAGS_NOLOGFLUSH: 832783d9485STheodore Ts'o set_bit(EXT4_FLAGS_SHUTDOWN, &sbi->s_ext4_flags); 833a6d9946bSTheodore Ts'o if (sbi->s_journal && !is_journal_aborted(sbi->s_journal)) 834fb7c0244STheodore Ts'o jbd2_journal_abort(sbi->s_journal, -ESHUTDOWN); 835783d9485STheodore Ts'o break; 836783d9485STheodore Ts'o default: 837783d9485STheodore Ts'o return -EINVAL; 838783d9485STheodore Ts'o } 839783d9485STheodore Ts'o clear_opt(sb, DISCARD); 840783d9485STheodore Ts'o return 0; 841783d9485STheodore Ts'o } 842783d9485STheodore Ts'o 8430c9ec4beSDarrick J. Wong struct getfsmap_info { 8440c9ec4beSDarrick J. Wong struct super_block *gi_sb; 8450c9ec4beSDarrick J. Wong struct fsmap_head __user *gi_data; 8460c9ec4beSDarrick J. Wong unsigned int gi_idx; 8470c9ec4beSDarrick J. Wong __u32 gi_last_flags; 8480c9ec4beSDarrick J. Wong }; 8490c9ec4beSDarrick J. Wong 8500c9ec4beSDarrick J. Wong static int ext4_getfsmap_format(struct ext4_fsmap *xfm, void *priv) 8510c9ec4beSDarrick J. Wong { 8520c9ec4beSDarrick J. Wong struct getfsmap_info *info = priv; 8530c9ec4beSDarrick J. Wong struct fsmap fm; 8540c9ec4beSDarrick J. Wong 8550c9ec4beSDarrick J. Wong trace_ext4_getfsmap_mapping(info->gi_sb, xfm); 8560c9ec4beSDarrick J. Wong 8570c9ec4beSDarrick J. Wong info->gi_last_flags = xfm->fmr_flags; 8580c9ec4beSDarrick J. Wong ext4_fsmap_from_internal(info->gi_sb, &fm, xfm); 8590c9ec4beSDarrick J. Wong if (copy_to_user(&info->gi_data->fmh_recs[info->gi_idx++], &fm, 8600c9ec4beSDarrick J. Wong sizeof(struct fsmap))) 8610c9ec4beSDarrick J. Wong return -EFAULT; 8620c9ec4beSDarrick J. Wong 8630c9ec4beSDarrick J. Wong return 0; 8640c9ec4beSDarrick J. Wong } 8650c9ec4beSDarrick J. Wong 8660c9ec4beSDarrick J. Wong static int ext4_ioc_getfsmap(struct super_block *sb, 8670c9ec4beSDarrick J. Wong struct fsmap_head __user *arg) 8680c9ec4beSDarrick J. Wong { 8690ba33facSTheodore Ts'o struct getfsmap_info info = { NULL }; 8700c9ec4beSDarrick J. Wong struct ext4_fsmap_head xhead = {0}; 8710c9ec4beSDarrick J. Wong struct fsmap_head head; 8720c9ec4beSDarrick J. Wong bool aborted = false; 8730c9ec4beSDarrick J. Wong int error; 8740c9ec4beSDarrick J. Wong 8750c9ec4beSDarrick J. Wong if (copy_from_user(&head, arg, sizeof(struct fsmap_head))) 8760c9ec4beSDarrick J. Wong return -EFAULT; 8770c9ec4beSDarrick J. Wong if (memchr_inv(head.fmh_reserved, 0, sizeof(head.fmh_reserved)) || 8780c9ec4beSDarrick J. Wong memchr_inv(head.fmh_keys[0].fmr_reserved, 0, 8790c9ec4beSDarrick J. Wong sizeof(head.fmh_keys[0].fmr_reserved)) || 8800c9ec4beSDarrick J. Wong memchr_inv(head.fmh_keys[1].fmr_reserved, 0, 8810c9ec4beSDarrick J. Wong sizeof(head.fmh_keys[1].fmr_reserved))) 8820c9ec4beSDarrick J. Wong return -EINVAL; 8830c9ec4beSDarrick J. Wong /* 8840c9ec4beSDarrick J. Wong * ext4 doesn't report file extents at all, so the only valid 8850c9ec4beSDarrick J. Wong * file offsets are the magic ones (all zeroes or all ones). 8860c9ec4beSDarrick J. Wong */ 8870c9ec4beSDarrick J. Wong if (head.fmh_keys[0].fmr_offset || 8880c9ec4beSDarrick J. Wong (head.fmh_keys[1].fmr_offset != 0 && 8890c9ec4beSDarrick J. Wong head.fmh_keys[1].fmr_offset != -1ULL)) 8900c9ec4beSDarrick J. Wong return -EINVAL; 8910c9ec4beSDarrick J. Wong 8920c9ec4beSDarrick J. Wong xhead.fmh_iflags = head.fmh_iflags; 8930c9ec4beSDarrick J. Wong xhead.fmh_count = head.fmh_count; 8940c9ec4beSDarrick J. Wong ext4_fsmap_to_internal(sb, &xhead.fmh_keys[0], &head.fmh_keys[0]); 8950c9ec4beSDarrick J. Wong ext4_fsmap_to_internal(sb, &xhead.fmh_keys[1], &head.fmh_keys[1]); 8960c9ec4beSDarrick J. Wong 8970c9ec4beSDarrick J. Wong trace_ext4_getfsmap_low_key(sb, &xhead.fmh_keys[0]); 8980c9ec4beSDarrick J. Wong trace_ext4_getfsmap_high_key(sb, &xhead.fmh_keys[1]); 8990c9ec4beSDarrick J. Wong 9000c9ec4beSDarrick J. Wong info.gi_sb = sb; 9010c9ec4beSDarrick J. Wong info.gi_data = arg; 9020c9ec4beSDarrick J. Wong error = ext4_getfsmap(sb, &xhead, ext4_getfsmap_format, &info); 9031fc57ca5SJiapeng Chong if (error == EXT4_QUERY_RANGE_ABORT) 9040c9ec4beSDarrick J. Wong aborted = true; 9051fc57ca5SJiapeng Chong else if (error) 9060c9ec4beSDarrick J. Wong return error; 9070c9ec4beSDarrick J. Wong 9080c9ec4beSDarrick J. Wong /* If we didn't abort, set the "last" flag in the last fmx */ 9090c9ec4beSDarrick J. Wong if (!aborted && info.gi_idx) { 9100c9ec4beSDarrick J. Wong info.gi_last_flags |= FMR_OF_LAST; 9110c9ec4beSDarrick J. Wong if (copy_to_user(&info.gi_data->fmh_recs[info.gi_idx - 1].fmr_flags, 9120c9ec4beSDarrick J. Wong &info.gi_last_flags, 9130c9ec4beSDarrick J. Wong sizeof(info.gi_last_flags))) 9140c9ec4beSDarrick J. Wong return -EFAULT; 9150c9ec4beSDarrick J. Wong } 9160c9ec4beSDarrick J. Wong 9170c9ec4beSDarrick J. Wong /* copy back header */ 9180c9ec4beSDarrick J. Wong head.fmh_entries = xhead.fmh_entries; 9190c9ec4beSDarrick J. Wong head.fmh_oflags = xhead.fmh_oflags; 9200c9ec4beSDarrick J. Wong if (copy_to_user(arg, &head, sizeof(struct fsmap_head))) 9210c9ec4beSDarrick J. Wong return -EFAULT; 9220c9ec4beSDarrick J. Wong 9230c9ec4beSDarrick J. Wong return 0; 9240c9ec4beSDarrick J. Wong } 9250c9ec4beSDarrick J. Wong 926e145b35bSAl Viro static long ext4_ioctl_group_add(struct file *file, 927e145b35bSAl Viro struct ext4_new_group_data *input) 928e145b35bSAl Viro { 929e145b35bSAl Viro struct super_block *sb = file_inode(file)->i_sb; 930e145b35bSAl Viro int err, err2=0; 931e145b35bSAl Viro 932e145b35bSAl Viro err = ext4_resize_begin(sb); 933e145b35bSAl Viro if (err) 934e145b35bSAl Viro return err; 935e145b35bSAl Viro 9368813587aSTheodore Ts'o if (ext4_has_feature_bigalloc(sb)) { 9378813587aSTheodore Ts'o ext4_msg(sb, KERN_ERR, 9388813587aSTheodore Ts'o "Online resizing not supported with bigalloc"); 9398813587aSTheodore Ts'o err = -EOPNOTSUPP; 9408813587aSTheodore Ts'o goto group_add_out; 9418813587aSTheodore Ts'o } 9428813587aSTheodore Ts'o 943e145b35bSAl Viro err = mnt_want_write_file(file); 944e145b35bSAl Viro if (err) 945e145b35bSAl Viro goto group_add_out; 946e145b35bSAl Viro 947e145b35bSAl Viro err = ext4_group_add(sb, input); 948e145b35bSAl Viro if (EXT4_SB(sb)->s_journal) { 949e145b35bSAl Viro jbd2_journal_lock_updates(EXT4_SB(sb)->s_journal); 95001d5d965SLeah Rumancik err2 = jbd2_journal_flush(EXT4_SB(sb)->s_journal, 0); 951e145b35bSAl Viro jbd2_journal_unlock_updates(EXT4_SB(sb)->s_journal); 952e145b35bSAl Viro } 953e145b35bSAl Viro if (err == 0) 954e145b35bSAl Viro err = err2; 955e145b35bSAl Viro mnt_drop_write_file(file); 956e145b35bSAl Viro if (!err && ext4_has_group_desc_csum(sb) && 957e145b35bSAl Viro test_opt(sb, INIT_INODE_TABLE)) 958e145b35bSAl Viro err = ext4_register_li_request(sb, input->group); 959e145b35bSAl Viro group_add_out: 960827891a3STheodore Ts'o err2 = ext4_resize_end(sb, false); 961827891a3STheodore Ts'o if (err == 0) 962827891a3STheodore Ts'o err = err2; 963e145b35bSAl Viro return err; 964e145b35bSAl Viro } 965e145b35bSAl Viro 9664db5c2e6SMiklos Szeredi int ext4_fileattr_get(struct dentry *dentry, struct fileattr *fa) 967dc7ac6c4SWang Shilong { 9684db5c2e6SMiklos Szeredi struct inode *inode = d_inode(dentry); 9697b0e492eSDarrick J. Wong struct ext4_inode_info *ei = EXT4_I(inode); 9704db5c2e6SMiklos Szeredi u32 flags = ei->i_flags & EXT4_FL_USER_VISIBLE; 971dc7ac6c4SWang Shilong 9724db5c2e6SMiklos Szeredi if (S_ISREG(inode->i_mode)) 9734db5c2e6SMiklos Szeredi flags &= ~FS_PROJINHERIT_FL; 974dc7ac6c4SWang Shilong 9754db5c2e6SMiklos Szeredi fileattr_fill_flags(fa, flags); 9767b0e492eSDarrick J. Wong if (ext4_has_feature_project(inode->i_sb)) 9777b0e492eSDarrick J. Wong fa->fsx_projid = from_kprojid(&init_user_ns, ei->i_projid); 9784db5c2e6SMiklos Szeredi 9794db5c2e6SMiklos Szeredi return 0; 9804db5c2e6SMiklos Szeredi } 9814db5c2e6SMiklos Szeredi 9824db5c2e6SMiklos Szeredi int ext4_fileattr_set(struct user_namespace *mnt_userns, 9834db5c2e6SMiklos Szeredi struct dentry *dentry, struct fileattr *fa) 9844db5c2e6SMiklos Szeredi { 9854db5c2e6SMiklos Szeredi struct inode *inode = d_inode(dentry); 9864db5c2e6SMiklos Szeredi u32 flags = fa->flags; 9874db5c2e6SMiklos Szeredi int err = -EOPNOTSUPP; 9884db5c2e6SMiklos Szeredi 9894db5c2e6SMiklos Szeredi if (flags & ~EXT4_FL_USER_VISIBLE) 9904db5c2e6SMiklos Szeredi goto out; 9914db5c2e6SMiklos Szeredi 9924db5c2e6SMiklos Szeredi /* 9934db5c2e6SMiklos Szeredi * chattr(1) grabs flags via GETFLAGS, modifies the result and 9944db5c2e6SMiklos Szeredi * passes that to SETFLAGS. So we cannot easily make SETFLAGS 9954db5c2e6SMiklos Szeredi * more restrictive than just silently masking off visible but 9964db5c2e6SMiklos Szeredi * not settable flags as we always did. 9974db5c2e6SMiklos Szeredi */ 9984db5c2e6SMiklos Szeredi flags &= EXT4_FL_USER_MODIFIABLE; 9994db5c2e6SMiklos Szeredi if (ext4_mask_flags(inode->i_mode, flags) != flags) 10004db5c2e6SMiklos Szeredi goto out; 10014db5c2e6SMiklos Szeredi err = ext4_ioctl_check_immutable(inode, fa->fsx_projid, flags); 10024db5c2e6SMiklos Szeredi if (err) 10034db5c2e6SMiklos Szeredi goto out; 10044db5c2e6SMiklos Szeredi err = ext4_ioctl_setflags(inode, flags); 10054db5c2e6SMiklos Szeredi if (err) 10064db5c2e6SMiklos Szeredi goto out; 10074db5c2e6SMiklos Szeredi err = ext4_ioctl_setproject(inode, fa->fsx_projid); 10084db5c2e6SMiklos Szeredi out: 10094db5c2e6SMiklos Szeredi return err; 1010dc7ac6c4SWang Shilong } 1011dc7ac6c4SWang Shilong 1012bb5835edSTheodore Ts'o /* So that the fiemap access checks can't overflow on 32 bit machines. */ 1013bb5835edSTheodore Ts'o #define FIEMAP_MAX_EXTENTS (UINT_MAX / sizeof(struct fiemap_extent)) 1014bb5835edSTheodore Ts'o 1015bb5835edSTheodore Ts'o static int ext4_ioctl_get_es_cache(struct file *filp, unsigned long arg) 1016bb5835edSTheodore Ts'o { 1017bb5835edSTheodore Ts'o struct fiemap fiemap; 1018bb5835edSTheodore Ts'o struct fiemap __user *ufiemap = (struct fiemap __user *) arg; 1019bb5835edSTheodore Ts'o struct fiemap_extent_info fieinfo = { 0, }; 1020bb5835edSTheodore Ts'o struct inode *inode = file_inode(filp); 1021bb5835edSTheodore Ts'o int error; 1022bb5835edSTheodore Ts'o 1023bb5835edSTheodore Ts'o if (copy_from_user(&fiemap, ufiemap, sizeof(fiemap))) 1024bb5835edSTheodore Ts'o return -EFAULT; 1025bb5835edSTheodore Ts'o 1026bb5835edSTheodore Ts'o if (fiemap.fm_extent_count > FIEMAP_MAX_EXTENTS) 1027bb5835edSTheodore Ts'o return -EINVAL; 1028bb5835edSTheodore Ts'o 1029bb5835edSTheodore Ts'o fieinfo.fi_flags = fiemap.fm_flags; 1030bb5835edSTheodore Ts'o fieinfo.fi_extents_max = fiemap.fm_extent_count; 1031bb5835edSTheodore Ts'o fieinfo.fi_extents_start = ufiemap->fm_extents; 1032bb5835edSTheodore Ts'o 1033328e24aeSChristoph Hellwig error = ext4_get_es_cache(inode, &fieinfo, fiemap.fm_start, 1034328e24aeSChristoph Hellwig fiemap.fm_length); 1035bb5835edSTheodore Ts'o fiemap.fm_flags = fieinfo.fi_flags; 1036bb5835edSTheodore Ts'o fiemap.fm_mapped_extents = fieinfo.fi_extents_mapped; 1037bb5835edSTheodore Ts'o if (copy_to_user(ufiemap, &fiemap, sizeof(fiemap))) 1038bb5835edSTheodore Ts'o error = -EFAULT; 1039bb5835edSTheodore Ts'o 1040bb5835edSTheodore Ts'o return error; 1041bb5835edSTheodore Ts'o } 1042bb5835edSTheodore Ts'o 1043351a0a3fSLeah Rumancik static int ext4_ioctl_checkpoint(struct file *filp, unsigned long arg) 1044351a0a3fSLeah Rumancik { 1045351a0a3fSLeah Rumancik int err = 0; 1046351a0a3fSLeah Rumancik __u32 flags = 0; 1047351a0a3fSLeah Rumancik unsigned int flush_flags = 0; 1048351a0a3fSLeah Rumancik struct super_block *sb = file_inode(filp)->i_sb; 1049351a0a3fSLeah Rumancik 1050351a0a3fSLeah Rumancik if (copy_from_user(&flags, (__u32 __user *)arg, 1051351a0a3fSLeah Rumancik sizeof(__u32))) 1052351a0a3fSLeah Rumancik return -EFAULT; 1053351a0a3fSLeah Rumancik 1054351a0a3fSLeah Rumancik if (!capable(CAP_SYS_ADMIN)) 1055351a0a3fSLeah Rumancik return -EPERM; 1056351a0a3fSLeah Rumancik 1057351a0a3fSLeah Rumancik /* check for invalid bits set */ 1058351a0a3fSLeah Rumancik if ((flags & ~EXT4_IOC_CHECKPOINT_FLAG_VALID) || 1059351a0a3fSLeah Rumancik ((flags & JBD2_JOURNAL_FLUSH_DISCARD) && 1060351a0a3fSLeah Rumancik (flags & JBD2_JOURNAL_FLUSH_ZEROOUT))) 1061351a0a3fSLeah Rumancik return -EINVAL; 1062351a0a3fSLeah Rumancik 1063351a0a3fSLeah Rumancik if (!EXT4_SB(sb)->s_journal) 1064351a0a3fSLeah Rumancik return -ENODEV; 1065351a0a3fSLeah Rumancik 106670200574SChristoph Hellwig if ((flags & JBD2_JOURNAL_FLUSH_DISCARD) && 106770200574SChristoph Hellwig !bdev_max_discard_sectors(EXT4_SB(sb)->s_journal->j_dev)) 1068351a0a3fSLeah Rumancik return -EOPNOTSUPP; 1069351a0a3fSLeah Rumancik 1070351a0a3fSLeah Rumancik if (flags & EXT4_IOC_CHECKPOINT_FLAG_DRY_RUN) 1071351a0a3fSLeah Rumancik return 0; 1072351a0a3fSLeah Rumancik 1073351a0a3fSLeah Rumancik if (flags & EXT4_IOC_CHECKPOINT_FLAG_DISCARD) 1074351a0a3fSLeah Rumancik flush_flags |= JBD2_JOURNAL_FLUSH_DISCARD; 1075351a0a3fSLeah Rumancik 1076351a0a3fSLeah Rumancik if (flags & EXT4_IOC_CHECKPOINT_FLAG_ZEROOUT) { 1077351a0a3fSLeah Rumancik flush_flags |= JBD2_JOURNAL_FLUSH_ZEROOUT; 1078351a0a3fSLeah Rumancik pr_info_ratelimited("warning: checkpointing journal with EXT4_IOC_CHECKPOINT_FLAG_ZEROOUT can be slow"); 1079351a0a3fSLeah Rumancik } 1080351a0a3fSLeah Rumancik 1081351a0a3fSLeah Rumancik jbd2_journal_lock_updates(EXT4_SB(sb)->s_journal); 1082351a0a3fSLeah Rumancik err = jbd2_journal_flush(EXT4_SB(sb)->s_journal, flush_flags); 1083351a0a3fSLeah Rumancik jbd2_journal_unlock_updates(EXT4_SB(sb)->s_journal); 1084351a0a3fSLeah Rumancik 1085351a0a3fSLeah Rumancik return err; 1086351a0a3fSLeah Rumancik } 1087351a0a3fSLeah Rumancik 1088bbc605cdSLukas Czerner static int ext4_ioctl_setlabel(struct file *filp, const char __user *user_label) 1089bbc605cdSLukas Czerner { 1090bbc605cdSLukas Czerner size_t len; 1091bbc605cdSLukas Czerner int ret = 0; 1092bbc605cdSLukas Czerner char new_label[EXT4_LABEL_MAX + 1]; 1093bbc605cdSLukas Czerner struct super_block *sb = file_inode(filp)->i_sb; 1094bbc605cdSLukas Czerner 1095bbc605cdSLukas Czerner if (!capable(CAP_SYS_ADMIN)) 1096bbc605cdSLukas Czerner return -EPERM; 1097bbc605cdSLukas Czerner 1098bbc605cdSLukas Czerner /* 1099bbc605cdSLukas Czerner * Copy the maximum length allowed for ext4 label with one more to 1100bbc605cdSLukas Czerner * find the required terminating null byte in order to test the 1101bbc605cdSLukas Czerner * label length. The on disk label doesn't need to be null terminated. 1102bbc605cdSLukas Czerner */ 1103bbc605cdSLukas Czerner if (copy_from_user(new_label, user_label, EXT4_LABEL_MAX + 1)) 1104bbc605cdSLukas Czerner return -EFAULT; 1105bbc605cdSLukas Czerner 1106bbc605cdSLukas Czerner len = strnlen(new_label, EXT4_LABEL_MAX + 1); 1107bbc605cdSLukas Czerner if (len > EXT4_LABEL_MAX) 1108bbc605cdSLukas Czerner return -EINVAL; 1109bbc605cdSLukas Czerner 1110bbc605cdSLukas Czerner /* 1111bbc605cdSLukas Czerner * Clear the buffer after the new label 1112bbc605cdSLukas Czerner */ 1113bbc605cdSLukas Czerner memset(new_label + len, 0, EXT4_LABEL_MAX - len); 1114bbc605cdSLukas Czerner 1115bbc605cdSLukas Czerner ret = mnt_want_write_file(filp); 1116bbc605cdSLukas Czerner if (ret) 1117bbc605cdSLukas Czerner return ret; 1118bbc605cdSLukas Czerner 1119bbc605cdSLukas Czerner ret = ext4_update_superblocks_fn(sb, ext4_sb_setlabel, new_label); 1120bbc605cdSLukas Czerner 1121bbc605cdSLukas Czerner mnt_drop_write_file(filp); 1122bbc605cdSLukas Czerner return ret; 1123bbc605cdSLukas Czerner } 1124bbc605cdSLukas Czerner 1125bbc605cdSLukas Czerner static int ext4_ioctl_getlabel(struct ext4_sb_info *sbi, char __user *user_label) 1126bbc605cdSLukas Czerner { 1127bbc605cdSLukas Czerner char label[EXT4_LABEL_MAX + 1]; 1128bbc605cdSLukas Czerner 1129bbc605cdSLukas Czerner /* 1130bbc605cdSLukas Czerner * EXT4_LABEL_MAX must always be smaller than FSLABEL_MAX because 1131bbc605cdSLukas Czerner * FSLABEL_MAX must include terminating null byte, while s_volume_name 1132bbc605cdSLukas Czerner * does not have to. 1133bbc605cdSLukas Czerner */ 1134bbc605cdSLukas Czerner BUILD_BUG_ON(EXT4_LABEL_MAX >= FSLABEL_MAX); 1135bbc605cdSLukas Czerner 1136bbc605cdSLukas Czerner memset(label, 0, sizeof(label)); 1137bbc605cdSLukas Czerner lock_buffer(sbi->s_sbh); 1138bbc605cdSLukas Czerner strncpy(label, sbi->s_es->s_volume_name, EXT4_LABEL_MAX); 1139bbc605cdSLukas Czerner unlock_buffer(sbi->s_sbh); 1140bbc605cdSLukas Czerner 1141bbc605cdSLukas Czerner if (copy_to_user(user_label, label, sizeof(label))) 1142bbc605cdSLukas Czerner return -EFAULT; 1143bbc605cdSLukas Czerner return 0; 1144bbc605cdSLukas Czerner } 1145bbc605cdSLukas Czerner 1146d95efb14SJeremy Bongio static int ext4_ioctl_getuuid(struct ext4_sb_info *sbi, 1147d95efb14SJeremy Bongio struct fsuuid __user *ufsuuid) 1148d95efb14SJeremy Bongio { 1149d95efb14SJeremy Bongio struct fsuuid fsuuid; 1150d95efb14SJeremy Bongio __u8 uuid[UUID_SIZE]; 1151d95efb14SJeremy Bongio 1152d95efb14SJeremy Bongio if (copy_from_user(&fsuuid, ufsuuid, sizeof(fsuuid))) 1153d95efb14SJeremy Bongio return -EFAULT; 1154d95efb14SJeremy Bongio 1155d95efb14SJeremy Bongio if (fsuuid.fsu_len == 0) { 1156d95efb14SJeremy Bongio fsuuid.fsu_len = UUID_SIZE; 1157d95efb14SJeremy Bongio if (copy_to_user(ufsuuid, &fsuuid, sizeof(fsuuid.fsu_len))) 1158d95efb14SJeremy Bongio return -EFAULT; 1159d95efb14SJeremy Bongio return -EINVAL; 1160d95efb14SJeremy Bongio } 1161d95efb14SJeremy Bongio 1162d95efb14SJeremy Bongio if (fsuuid.fsu_len != UUID_SIZE || fsuuid.fsu_flags != 0) 1163d95efb14SJeremy Bongio return -EINVAL; 1164d95efb14SJeremy Bongio 1165d95efb14SJeremy Bongio lock_buffer(sbi->s_sbh); 1166d95efb14SJeremy Bongio memcpy(uuid, sbi->s_es->s_uuid, UUID_SIZE); 1167d95efb14SJeremy Bongio unlock_buffer(sbi->s_sbh); 1168d95efb14SJeremy Bongio 1169d95efb14SJeremy Bongio if (copy_to_user(&ufsuuid->fsu_uuid[0], uuid, UUID_SIZE)) 1170d95efb14SJeremy Bongio return -EFAULT; 1171d95efb14SJeremy Bongio return 0; 1172d95efb14SJeremy Bongio } 1173d95efb14SJeremy Bongio 1174d95efb14SJeremy Bongio static int ext4_ioctl_setuuid(struct file *filp, 1175d95efb14SJeremy Bongio const struct fsuuid __user *ufsuuid) 1176d95efb14SJeremy Bongio { 1177d95efb14SJeremy Bongio int ret = 0; 1178d95efb14SJeremy Bongio struct super_block *sb = file_inode(filp)->i_sb; 1179d95efb14SJeremy Bongio struct fsuuid fsuuid; 1180d95efb14SJeremy Bongio __u8 uuid[UUID_SIZE]; 1181d95efb14SJeremy Bongio 1182d95efb14SJeremy Bongio if (!capable(CAP_SYS_ADMIN)) 1183d95efb14SJeremy Bongio return -EPERM; 1184d95efb14SJeremy Bongio 1185d95efb14SJeremy Bongio /* 1186d95efb14SJeremy Bongio * If any checksums (group descriptors or metadata) are being used 1187d95efb14SJeremy Bongio * then the checksum seed feature is required to change the UUID. 1188d95efb14SJeremy Bongio */ 1189d95efb14SJeremy Bongio if (((ext4_has_feature_gdt_csum(sb) || ext4_has_metadata_csum(sb)) 1190d95efb14SJeremy Bongio && !ext4_has_feature_csum_seed(sb)) 1191d95efb14SJeremy Bongio || ext4_has_feature_stable_inodes(sb)) 1192d95efb14SJeremy Bongio return -EOPNOTSUPP; 1193d95efb14SJeremy Bongio 1194d95efb14SJeremy Bongio if (copy_from_user(&fsuuid, ufsuuid, sizeof(fsuuid))) 1195d95efb14SJeremy Bongio return -EFAULT; 1196d95efb14SJeremy Bongio 1197d95efb14SJeremy Bongio if (fsuuid.fsu_len != UUID_SIZE || fsuuid.fsu_flags != 0) 1198d95efb14SJeremy Bongio return -EINVAL; 1199d95efb14SJeremy Bongio 1200d95efb14SJeremy Bongio if (copy_from_user(uuid, &ufsuuid->fsu_uuid[0], UUID_SIZE)) 1201d95efb14SJeremy Bongio return -EFAULT; 1202d95efb14SJeremy Bongio 1203d95efb14SJeremy Bongio ret = mnt_want_write_file(filp); 1204d95efb14SJeremy Bongio if (ret) 1205d95efb14SJeremy Bongio return ret; 1206d95efb14SJeremy Bongio 1207d95efb14SJeremy Bongio ret = ext4_update_superblocks_fn(sb, ext4_sb_setuuid, &uuid); 1208d95efb14SJeremy Bongio mnt_drop_write_file(filp); 1209d95efb14SJeremy Bongio 1210d95efb14SJeremy Bongio return ret; 1211d95efb14SJeremy Bongio } 1212d95efb14SJeremy Bongio 1213aa75f4d3SHarshad Shirwadkar static long __ext4_ioctl(struct file *filp, unsigned int cmd, unsigned long arg) 12149b7365fcSLi Xi { 12159b7365fcSLi Xi struct inode *inode = file_inode(filp); 12169b7365fcSLi Xi struct super_block *sb = inode->i_sb; 121714f3db55SChristian Brauner struct user_namespace *mnt_userns = file_mnt_user_ns(filp); 12189b7365fcSLi Xi 12199b7365fcSLi Xi ext4_debug("cmd = %u, arg = %lu\n", cmd, arg); 12209b7365fcSLi Xi 12219b7365fcSLi Xi switch (cmd) { 12220c9ec4beSDarrick J. Wong case FS_IOC_GETFSMAP: 12230c9ec4beSDarrick J. Wong return ext4_ioc_getfsmap(sb, (void __user *)arg); 1224617ba13bSMingming Cao case EXT4_IOC_GETVERSION: 1225617ba13bSMingming Cao case EXT4_IOC_GETVERSION_OLD: 1226ac27a0ecSDave Kleikamp return put_user(inode->i_generation, (int __user *) arg); 1227617ba13bSMingming Cao case EXT4_IOC_SETVERSION: 1228617ba13bSMingming Cao case EXT4_IOC_SETVERSION_OLD: { 1229ac27a0ecSDave Kleikamp handle_t *handle; 1230617ba13bSMingming Cao struct ext4_iloc iloc; 1231ac27a0ecSDave Kleikamp __u32 generation; 1232ac27a0ecSDave Kleikamp int err; 1233ac27a0ecSDave Kleikamp 123414f3db55SChristian Brauner if (!inode_owner_or_capable(mnt_userns, inode)) 1235ac27a0ecSDave Kleikamp return -EPERM; 123642a74f20SDave Hansen 12379aa5d32bSDmitry Monakhov if (ext4_has_metadata_csum(inode->i_sb)) { 1238814525f4SDarrick J. Wong ext4_warning(sb, "Setting inode version is not " 1239814525f4SDarrick J. Wong "supported with metadata_csum enabled."); 1240814525f4SDarrick J. Wong return -ENOTTY; 1241814525f4SDarrick J. Wong } 1242814525f4SDarrick J. Wong 1243a561be71SAl Viro err = mnt_want_write_file(filp); 124442a74f20SDave Hansen if (err) 124542a74f20SDave Hansen return err; 124642a74f20SDave Hansen if (get_user(generation, (int __user *) arg)) { 124742a74f20SDave Hansen err = -EFAULT; 124842a74f20SDave Hansen goto setversion_out; 124942a74f20SDave Hansen } 1250ac27a0ecSDave Kleikamp 12515955102cSAl Viro inode_lock(inode); 12529924a92aSTheodore Ts'o handle = ext4_journal_start(inode, EXT4_HT_INODE, 1); 125342a74f20SDave Hansen if (IS_ERR(handle)) { 125442a74f20SDave Hansen err = PTR_ERR(handle); 12556c2155b9SDjalal Harouni goto unlock_out; 125642a74f20SDave Hansen } 1257617ba13bSMingming Cao err = ext4_reserve_inode_write(handle, inode, &iloc); 1258ac27a0ecSDave Kleikamp if (err == 0) { 1259eeca7ea1SDeepa Dinamani inode->i_ctime = current_time(inode); 1260a642c2c0SJeff Layton inode_inc_iversion(inode); 1261ac27a0ecSDave Kleikamp inode->i_generation = generation; 1262617ba13bSMingming Cao err = ext4_mark_iloc_dirty(handle, inode, &iloc); 1263ac27a0ecSDave Kleikamp } 1264617ba13bSMingming Cao ext4_journal_stop(handle); 12656c2155b9SDjalal Harouni 12666c2155b9SDjalal Harouni unlock_out: 12675955102cSAl Viro inode_unlock(inode); 126842a74f20SDave Hansen setversion_out: 12692a79f17eSAl Viro mnt_drop_write_file(filp); 1270ac27a0ecSDave Kleikamp return err; 1271ac27a0ecSDave Kleikamp } 1272617ba13bSMingming Cao case EXT4_IOC_GROUP_EXTEND: { 1273617ba13bSMingming Cao ext4_fsblk_t n_blocks_count; 1274ac046f1dSPeng Tao int err, err2=0; 1275ac27a0ecSDave Kleikamp 12768f82f840SYongqiang Yang err = ext4_resize_begin(sb); 12778f82f840SYongqiang Yang if (err) 12788f82f840SYongqiang Yang return err; 1279ac27a0ecSDave Kleikamp 1280014a1770SDjalal Harouni if (get_user(n_blocks_count, (__u32 __user *)arg)) { 1281014a1770SDjalal Harouni err = -EFAULT; 1282014a1770SDjalal Harouni goto group_extend_out; 1283014a1770SDjalal Harouni } 1284ac27a0ecSDave Kleikamp 12858813587aSTheodore Ts'o if (ext4_has_feature_bigalloc(sb)) { 12868813587aSTheodore Ts'o ext4_msg(sb, KERN_ERR, 12878813587aSTheodore Ts'o "Online resizing not supported with bigalloc"); 12888813587aSTheodore Ts'o err = -EOPNOTSUPP; 12898813587aSTheodore Ts'o goto group_extend_out; 12908813587aSTheodore Ts'o } 12918813587aSTheodore Ts'o 1292a561be71SAl Viro err = mnt_want_write_file(filp); 129342a74f20SDave Hansen if (err) 1294014a1770SDjalal Harouni goto group_extend_out; 129542a74f20SDave Hansen 1296617ba13bSMingming Cao err = ext4_group_extend(sb, EXT4_SB(sb)->s_es, n_blocks_count); 1297ac046f1dSPeng Tao if (EXT4_SB(sb)->s_journal) { 1298dab291afSMingming Cao jbd2_journal_lock_updates(EXT4_SB(sb)->s_journal); 129901d5d965SLeah Rumancik err2 = jbd2_journal_flush(EXT4_SB(sb)->s_journal, 0); 1300dab291afSMingming Cao jbd2_journal_unlock_updates(EXT4_SB(sb)->s_journal); 1301ac046f1dSPeng Tao } 13027ffe1ea8SHidehiro Kawai if (err == 0) 13037ffe1ea8SHidehiro Kawai err = err2; 13042a79f17eSAl Viro mnt_drop_write_file(filp); 1305014a1770SDjalal Harouni group_extend_out: 1306827891a3STheodore Ts'o err2 = ext4_resize_end(sb, false); 1307827891a3STheodore Ts'o if (err == 0) 1308827891a3STheodore Ts'o err = err2; 1309ac27a0ecSDave Kleikamp return err; 1310ac27a0ecSDave Kleikamp } 1311748de673SAkira Fujita 1312748de673SAkira Fujita case EXT4_IOC_MOVE_EXT: { 1313748de673SAkira Fujita struct move_extent me; 13142903ff01SAl Viro struct fd donor; 13152903ff01SAl Viro int err; 1316748de673SAkira Fujita 13174a58579bSAkira Fujita if (!(filp->f_mode & FMODE_READ) || 13184a58579bSAkira Fujita !(filp->f_mode & FMODE_WRITE)) 13194a58579bSAkira Fujita return -EBADF; 13204a58579bSAkira Fujita 1321748de673SAkira Fujita if (copy_from_user(&me, 1322748de673SAkira Fujita (struct move_extent __user *)arg, sizeof(me))) 1323748de673SAkira Fujita return -EFAULT; 13244a58579bSAkira Fujita me.moved_len = 0; 1325748de673SAkira Fujita 13262903ff01SAl Viro donor = fdget(me.donor_fd); 13272903ff01SAl Viro if (!donor.file) 1328748de673SAkira Fujita return -EBADF; 1329748de673SAkira Fujita 13302903ff01SAl Viro if (!(donor.file->f_mode & FMODE_WRITE)) { 13314a58579bSAkira Fujita err = -EBADF; 13324a58579bSAkira Fujita goto mext_out; 1333748de673SAkira Fujita } 1334748de673SAkira Fujita 1335e2b911c5SDarrick J. Wong if (ext4_has_feature_bigalloc(sb)) { 1336bab08ab9STheodore Ts'o ext4_msg(sb, KERN_ERR, 1337bab08ab9STheodore Ts'o "Online defrag not supported with bigalloc"); 1338399c9b86SAl Viro err = -EOPNOTSUPP; 1339399c9b86SAl Viro goto mext_out; 134073f34a5eSRoss Zwisler } else if (IS_DAX(inode)) { 134173f34a5eSRoss Zwisler ext4_msg(sb, KERN_ERR, 134273f34a5eSRoss Zwisler "Online defrag not supported with DAX"); 134373f34a5eSRoss Zwisler err = -EOPNOTSUPP; 134473f34a5eSRoss Zwisler goto mext_out; 1345bab08ab9STheodore Ts'o } 1346bab08ab9STheodore Ts'o 1347a561be71SAl Viro err = mnt_want_write_file(filp); 13484a58579bSAkira Fujita if (err) 13494a58579bSAkira Fujita goto mext_out; 13504a58579bSAkira Fujita 13512903ff01SAl Viro err = ext4_move_extents(filp, donor.file, me.orig_start, 1352748de673SAkira Fujita me.donor_start, me.len, &me.moved_len); 13532a79f17eSAl Viro mnt_drop_write_file(filp); 1354748de673SAkira Fujita 1355c437b273SAkira Fujita if (copy_to_user((struct move_extent __user *)arg, 1356c437b273SAkira Fujita &me, sizeof(me))) 13574a58579bSAkira Fujita err = -EFAULT; 13584a58579bSAkira Fujita mext_out: 13592903ff01SAl Viro fdput(donor); 1360748de673SAkira Fujita return err; 1361748de673SAkira Fujita } 1362748de673SAkira Fujita 1363617ba13bSMingming Cao case EXT4_IOC_GROUP_ADD: { 1364617ba13bSMingming Cao struct ext4_new_group_data input; 1365ac27a0ecSDave Kleikamp 1366617ba13bSMingming Cao if (copy_from_user(&input, (struct ext4_new_group_input __user *)arg, 1367e145b35bSAl Viro sizeof(input))) 1368e145b35bSAl Viro return -EFAULT; 1369ac27a0ecSDave Kleikamp 1370e145b35bSAl Viro return ext4_ioctl_group_add(filp, &input); 1371ac27a0ecSDave Kleikamp } 1372ac27a0ecSDave Kleikamp 1373c14c6fd5SAneesh Kumar K.V case EXT4_IOC_MIGRATE: 13742a43a878SAneesh Kumar K.V { 13752a43a878SAneesh Kumar K.V int err; 137614f3db55SChristian Brauner if (!inode_owner_or_capable(mnt_userns, inode)) 13772a43a878SAneesh Kumar K.V return -EACCES; 13782a43a878SAneesh Kumar K.V 1379a561be71SAl Viro err = mnt_want_write_file(filp); 13802a43a878SAneesh Kumar K.V if (err) 13812a43a878SAneesh Kumar K.V return err; 13822a43a878SAneesh Kumar K.V /* 13832a43a878SAneesh Kumar K.V * inode_mutex prevent write and truncate on the file. 13842a43a878SAneesh Kumar K.V * Read still goes through. We take i_data_sem in 13852a43a878SAneesh Kumar K.V * ext4_ext_swap_inode_data before we switch the 13862a43a878SAneesh Kumar K.V * inode format to prevent read. 13872a43a878SAneesh Kumar K.V */ 13885955102cSAl Viro inode_lock((inode)); 13892a43a878SAneesh Kumar K.V err = ext4_ext_migrate(inode); 13905955102cSAl Viro inode_unlock((inode)); 13912a79f17eSAl Viro mnt_drop_write_file(filp); 13922a43a878SAneesh Kumar K.V return err; 13932a43a878SAneesh Kumar K.V } 1394c14c6fd5SAneesh Kumar K.V 1395ccd2506bSTheodore Ts'o case EXT4_IOC_ALLOC_DA_BLKS: 1396ccd2506bSTheodore Ts'o { 1397ccd2506bSTheodore Ts'o int err; 139814f3db55SChristian Brauner if (!inode_owner_or_capable(mnt_userns, inode)) 1399ccd2506bSTheodore Ts'o return -EACCES; 1400ccd2506bSTheodore Ts'o 1401a561be71SAl Viro err = mnt_want_write_file(filp); 1402ccd2506bSTheodore Ts'o if (err) 1403ccd2506bSTheodore Ts'o return err; 1404ccd2506bSTheodore Ts'o err = ext4_alloc_da_blocks(inode); 14052a79f17eSAl Viro mnt_drop_write_file(filp); 1406ccd2506bSTheodore Ts'o return err; 1407ccd2506bSTheodore Ts'o } 1408ccd2506bSTheodore Ts'o 1409393d1d1dSDr. Tilmann Bubeck case EXT4_IOC_SWAP_BOOT: 14103e67cfadSDmitry Monakhov { 14113e67cfadSDmitry Monakhov int err; 1412393d1d1dSDr. Tilmann Bubeck if (!(filp->f_mode & FMODE_WRITE)) 1413393d1d1dSDr. Tilmann Bubeck return -EBADF; 14143e67cfadSDmitry Monakhov err = mnt_want_write_file(filp); 14153e67cfadSDmitry Monakhov if (err) 14163e67cfadSDmitry Monakhov return err; 141714f3db55SChristian Brauner err = swap_inode_boot_loader(sb, mnt_userns, inode); 14183e67cfadSDmitry Monakhov mnt_drop_write_file(filp); 14193e67cfadSDmitry Monakhov return err; 14203e67cfadSDmitry Monakhov } 1421393d1d1dSDr. Tilmann Bubeck 142219c5246dSYongqiang Yang case EXT4_IOC_RESIZE_FS: { 142319c5246dSYongqiang Yang ext4_fsblk_t n_blocks_count; 142419c5246dSYongqiang Yang int err = 0, err2 = 0; 14257f511862STheodore Ts'o ext4_group_t o_group = EXT4_SB(sb)->s_groups_count; 142619c5246dSYongqiang Yang 142719c5246dSYongqiang Yang if (copy_from_user(&n_blocks_count, (__u64 __user *)arg, 142819c5246dSYongqiang Yang sizeof(__u64))) { 142919c5246dSYongqiang Yang return -EFAULT; 143019c5246dSYongqiang Yang } 143119c5246dSYongqiang Yang 143219c5246dSYongqiang Yang err = ext4_resize_begin(sb); 143319c5246dSYongqiang Yang if (err) 143419c5246dSYongqiang Yang return err; 143519c5246dSYongqiang Yang 14368cae6f71SAl Viro err = mnt_want_write_file(filp); 143719c5246dSYongqiang Yang if (err) 143819c5246dSYongqiang Yang goto resizefs_out; 143919c5246dSYongqiang Yang 144019c5246dSYongqiang Yang err = ext4_resize_fs(sb, n_blocks_count); 144119c5246dSYongqiang Yang if (EXT4_SB(sb)->s_journal) { 1442e85c81baSXin Yin ext4_fc_mark_ineligible(sb, EXT4_FC_REASON_RESIZE, NULL); 144319c5246dSYongqiang Yang jbd2_journal_lock_updates(EXT4_SB(sb)->s_journal); 144401d5d965SLeah Rumancik err2 = jbd2_journal_flush(EXT4_SB(sb)->s_journal, 0); 144519c5246dSYongqiang Yang jbd2_journal_unlock_updates(EXT4_SB(sb)->s_journal); 144619c5246dSYongqiang Yang } 144719c5246dSYongqiang Yang if (err == 0) 144819c5246dSYongqiang Yang err = err2; 14498cae6f71SAl Viro mnt_drop_write_file(filp); 1450310a997fSKirill Tkhai if (!err && (o_group < EXT4_SB(sb)->s_groups_count) && 14517f511862STheodore Ts'o ext4_has_group_desc_csum(sb) && 14527f511862STheodore Ts'o test_opt(sb, INIT_INODE_TABLE)) 14537f511862STheodore Ts'o err = ext4_register_li_request(sb, o_group); 14547f511862STheodore Ts'o 145519c5246dSYongqiang Yang resizefs_out: 1456827891a3STheodore Ts'o err2 = ext4_resize_end(sb, true); 1457827891a3STheodore Ts'o if (err == 0) 1458827891a3STheodore Ts'o err = err2; 145919c5246dSYongqiang Yang return err; 146019c5246dSYongqiang Yang } 146119c5246dSYongqiang Yang 1462e681c047SLukas Czerner case FITRIM: 1463e681c047SLukas Czerner { 1464e681c047SLukas Czerner struct fstrim_range range; 1465e681c047SLukas Czerner int ret = 0; 1466e681c047SLukas Czerner 1467e681c047SLukas Czerner if (!capable(CAP_SYS_ADMIN)) 1468e681c047SLukas Czerner return -EPERM; 1469e681c047SLukas Czerner 147070200574SChristoph Hellwig if (!bdev_max_discard_sectors(sb->s_bdev)) 147141431792SLukas Czerner return -EOPNOTSUPP; 147241431792SLukas Czerner 147318915b58SDarrick J. Wong /* 147418915b58SDarrick J. Wong * We haven't replayed the journal, so we cannot use our 147518915b58SDarrick J. Wong * block-bitmap-guided storage zapping commands. 147618915b58SDarrick J. Wong */ 147718915b58SDarrick J. Wong if (test_opt(sb, NOLOAD) && ext4_has_feature_journal(sb)) 147818915b58SDarrick J. Wong return -EROFS; 147918915b58SDarrick J. Wong 1480e6705f7cSH Hartley Sweeten if (copy_from_user(&range, (struct fstrim_range __user *)arg, 1481e681c047SLukas Czerner sizeof(range))) 1482e681c047SLukas Czerner return -EFAULT; 1483e681c047SLukas Czerner 1484e681c047SLukas Czerner ret = ext4_trim_fs(sb, &range); 1485e681c047SLukas Czerner if (ret < 0) 1486e681c047SLukas Czerner return ret; 1487e681c047SLukas Czerner 1488e6705f7cSH Hartley Sweeten if (copy_to_user((struct fstrim_range __user *)arg, &range, 1489e681c047SLukas Czerner sizeof(range))) 1490e681c047SLukas Czerner return -EFAULT; 1491e681c047SLukas Czerner 1492e681c047SLukas Czerner return 0; 1493e681c047SLukas Czerner } 14947869a4a6STheodore Ts'o case EXT4_IOC_PRECACHE_EXTENTS: 14957869a4a6STheodore Ts'o return ext4_ext_precache(inode); 1496e681c047SLukas Czerner 1497cb29a02dSEric Biggers case FS_IOC_SET_ENCRYPTION_POLICY: 14989a200d07SRichard Weinberger if (!ext4_has_feature_encrypt(sb)) 14999a200d07SRichard Weinberger return -EOPNOTSUPP; 1500db717d8eSEric Biggers return fscrypt_ioctl_set_policy(filp, (const void __user *)arg); 15019a200d07SRichard Weinberger 150272f63f4aSRitesh Harjani case FS_IOC_GET_ENCRYPTION_PWSALT: 150372f63f4aSRitesh Harjani return ext4_ioctl_get_encryption_pwsalt(filp, (void __user *)arg); 15049bd8212fSMichael Halcrow 1505cb29a02dSEric Biggers case FS_IOC_GET_ENCRYPTION_POLICY: 15060642ea24SChao Yu if (!ext4_has_feature_encrypt(sb)) 15070642ea24SChao Yu return -EOPNOTSUPP; 1508db717d8eSEric Biggers return fscrypt_ioctl_get_policy(filp, (void __user *)arg); 15099bd8212fSMichael Halcrow 151029b3692eSEric Biggers case FS_IOC_GET_ENCRYPTION_POLICY_EX: 151129b3692eSEric Biggers if (!ext4_has_feature_encrypt(sb)) 151229b3692eSEric Biggers return -EOPNOTSUPP; 151329b3692eSEric Biggers return fscrypt_ioctl_get_policy_ex(filp, (void __user *)arg); 151429b3692eSEric Biggers 151529b3692eSEric Biggers case FS_IOC_ADD_ENCRYPTION_KEY: 151629b3692eSEric Biggers if (!ext4_has_feature_encrypt(sb)) 151729b3692eSEric Biggers return -EOPNOTSUPP; 151829b3692eSEric Biggers return fscrypt_ioctl_add_key(filp, (void __user *)arg); 151929b3692eSEric Biggers 152029b3692eSEric Biggers case FS_IOC_REMOVE_ENCRYPTION_KEY: 152129b3692eSEric Biggers if (!ext4_has_feature_encrypt(sb)) 152229b3692eSEric Biggers return -EOPNOTSUPP; 152329b3692eSEric Biggers return fscrypt_ioctl_remove_key(filp, (void __user *)arg); 152429b3692eSEric Biggers 152529b3692eSEric Biggers case FS_IOC_REMOVE_ENCRYPTION_KEY_ALL_USERS: 152629b3692eSEric Biggers if (!ext4_has_feature_encrypt(sb)) 152729b3692eSEric Biggers return -EOPNOTSUPP; 152829b3692eSEric Biggers return fscrypt_ioctl_remove_key_all_users(filp, 152929b3692eSEric Biggers (void __user *)arg); 153029b3692eSEric Biggers case FS_IOC_GET_ENCRYPTION_KEY_STATUS: 153129b3692eSEric Biggers if (!ext4_has_feature_encrypt(sb)) 153229b3692eSEric Biggers return -EOPNOTSUPP; 153329b3692eSEric Biggers return fscrypt_ioctl_get_key_status(filp, (void __user *)arg); 153429b3692eSEric Biggers 15357ec9f3b4SEric Biggers case FS_IOC_GET_ENCRYPTION_NONCE: 15367ec9f3b4SEric Biggers if (!ext4_has_feature_encrypt(sb)) 15377ec9f3b4SEric Biggers return -EOPNOTSUPP; 15387ec9f3b4SEric Biggers return fscrypt_ioctl_get_nonce(filp, (void __user *)arg); 15397ec9f3b4SEric Biggers 1540b0c013e2STheodore Ts'o case EXT4_IOC_CLEAR_ES_CACHE: 1541b0c013e2STheodore Ts'o { 154214f3db55SChristian Brauner if (!inode_owner_or_capable(mnt_userns, inode)) 1543b0c013e2STheodore Ts'o return -EACCES; 1544b0c013e2STheodore Ts'o ext4_clear_inode_es(inode); 1545b0c013e2STheodore Ts'o return 0; 1546b0c013e2STheodore Ts'o } 1547b0c013e2STheodore Ts'o 15481ad3ea6eSTheodore Ts'o case EXT4_IOC_GETSTATE: 15491ad3ea6eSTheodore Ts'o { 15501ad3ea6eSTheodore Ts'o __u32 state = 0; 15511ad3ea6eSTheodore Ts'o 15521ad3ea6eSTheodore Ts'o if (ext4_test_inode_state(inode, EXT4_STATE_EXT_PRECACHED)) 15531ad3ea6eSTheodore Ts'o state |= EXT4_STATE_FLAG_EXT_PRECACHED; 15541ad3ea6eSTheodore Ts'o if (ext4_test_inode_state(inode, EXT4_STATE_NEW)) 15551ad3ea6eSTheodore Ts'o state |= EXT4_STATE_FLAG_NEW; 15561ad3ea6eSTheodore Ts'o if (ext4_test_inode_state(inode, EXT4_STATE_NEWENTRY)) 15571ad3ea6eSTheodore Ts'o state |= EXT4_STATE_FLAG_NEWENTRY; 15581ad3ea6eSTheodore Ts'o if (ext4_test_inode_state(inode, EXT4_STATE_DA_ALLOC_CLOSE)) 15591ad3ea6eSTheodore Ts'o state |= EXT4_STATE_FLAG_DA_ALLOC_CLOSE; 15601ad3ea6eSTheodore Ts'o 15611ad3ea6eSTheodore Ts'o return put_user(state, (__u32 __user *) arg); 15621ad3ea6eSTheodore Ts'o } 15631ad3ea6eSTheodore Ts'o 1564bb5835edSTheodore Ts'o case EXT4_IOC_GET_ES_CACHE: 1565bb5835edSTheodore Ts'o return ext4_ioctl_get_es_cache(filp, arg); 1566bb5835edSTheodore Ts'o 1567e9be2ac7STheodore Ts'o case EXT4_IOC_SHUTDOWN: 1568e9be2ac7STheodore Ts'o return ext4_shutdown(sb, arg); 1569c93d8f88SEric Biggers 1570c93d8f88SEric Biggers case FS_IOC_ENABLE_VERITY: 1571c93d8f88SEric Biggers if (!ext4_has_feature_verity(sb)) 1572c93d8f88SEric Biggers return -EOPNOTSUPP; 1573c93d8f88SEric Biggers return fsverity_ioctl_enable(filp, (const void __user *)arg); 1574c93d8f88SEric Biggers 1575c93d8f88SEric Biggers case FS_IOC_MEASURE_VERITY: 1576c93d8f88SEric Biggers if (!ext4_has_feature_verity(sb)) 1577c93d8f88SEric Biggers return -EOPNOTSUPP; 1578c93d8f88SEric Biggers return fsverity_ioctl_measure(filp, (void __user *)arg); 1579c93d8f88SEric Biggers 1580e17fe657SEric Biggers case FS_IOC_READ_VERITY_METADATA: 1581e17fe657SEric Biggers if (!ext4_has_feature_verity(sb)) 1582e17fe657SEric Biggers return -EOPNOTSUPP; 1583e17fe657SEric Biggers return fsverity_ioctl_read_metadata(filp, 1584e17fe657SEric Biggers (const void __user *)arg); 1585e17fe657SEric Biggers 1586351a0a3fSLeah Rumancik case EXT4_IOC_CHECKPOINT: 1587351a0a3fSLeah Rumancik return ext4_ioctl_checkpoint(filp, arg); 1588351a0a3fSLeah Rumancik 1589bbc605cdSLukas Czerner case FS_IOC_GETFSLABEL: 1590bbc605cdSLukas Czerner return ext4_ioctl_getlabel(EXT4_SB(sb), (void __user *)arg); 1591bbc605cdSLukas Czerner 1592bbc605cdSLukas Czerner case FS_IOC_SETFSLABEL: 1593bbc605cdSLukas Czerner return ext4_ioctl_setlabel(filp, 1594bbc605cdSLukas Czerner (const void __user *)arg); 1595bbc605cdSLukas Czerner 1596d95efb14SJeremy Bongio case EXT4_IOC_GETFSUUID: 1597d95efb14SJeremy Bongio return ext4_ioctl_getuuid(EXT4_SB(sb), (void __user *)arg); 1598d95efb14SJeremy Bongio case EXT4_IOC_SETFSUUID: 1599d95efb14SJeremy Bongio return ext4_ioctl_setuuid(filp, (const void __user *)arg); 1600ac27a0ecSDave Kleikamp default: 1601ac27a0ecSDave Kleikamp return -ENOTTY; 1602ac27a0ecSDave Kleikamp } 1603ac27a0ecSDave Kleikamp } 1604ac27a0ecSDave Kleikamp 1605aa75f4d3SHarshad Shirwadkar long ext4_ioctl(struct file *filp, unsigned int cmd, unsigned long arg) 1606aa75f4d3SHarshad Shirwadkar { 16072729cfdcSHarshad Shirwadkar return __ext4_ioctl(filp, cmd, arg); 1608aa75f4d3SHarshad Shirwadkar } 1609aa75f4d3SHarshad Shirwadkar 1610ac27a0ecSDave Kleikamp #ifdef CONFIG_COMPAT 1611617ba13bSMingming Cao long ext4_compat_ioctl(struct file *file, unsigned int cmd, unsigned long arg) 1612ac27a0ecSDave Kleikamp { 1613ac27a0ecSDave Kleikamp /* These are just misnamed, they actually get/put from/to user an int */ 1614ac27a0ecSDave Kleikamp switch (cmd) { 1615617ba13bSMingming Cao case EXT4_IOC32_GETVERSION: 1616617ba13bSMingming Cao cmd = EXT4_IOC_GETVERSION; 1617ac27a0ecSDave Kleikamp break; 1618617ba13bSMingming Cao case EXT4_IOC32_SETVERSION: 1619617ba13bSMingming Cao cmd = EXT4_IOC_SETVERSION; 1620ac27a0ecSDave Kleikamp break; 1621617ba13bSMingming Cao case EXT4_IOC32_GROUP_EXTEND: 1622617ba13bSMingming Cao cmd = EXT4_IOC_GROUP_EXTEND; 1623ac27a0ecSDave Kleikamp break; 1624617ba13bSMingming Cao case EXT4_IOC32_GETVERSION_OLD: 1625617ba13bSMingming Cao cmd = EXT4_IOC_GETVERSION_OLD; 1626ac27a0ecSDave Kleikamp break; 1627617ba13bSMingming Cao case EXT4_IOC32_SETVERSION_OLD: 1628617ba13bSMingming Cao cmd = EXT4_IOC_SETVERSION_OLD; 1629ac27a0ecSDave Kleikamp break; 1630617ba13bSMingming Cao case EXT4_IOC32_GETRSVSZ: 1631617ba13bSMingming Cao cmd = EXT4_IOC_GETRSVSZ; 1632ac27a0ecSDave Kleikamp break; 1633617ba13bSMingming Cao case EXT4_IOC32_SETRSVSZ: 1634617ba13bSMingming Cao cmd = EXT4_IOC_SETRSVSZ; 1635ac27a0ecSDave Kleikamp break; 16364d92dc0fSBen Hutchings case EXT4_IOC32_GROUP_ADD: { 16374d92dc0fSBen Hutchings struct compat_ext4_new_group_input __user *uinput; 1638e145b35bSAl Viro struct ext4_new_group_data input; 16394d92dc0fSBen Hutchings int err; 16404d92dc0fSBen Hutchings 16414d92dc0fSBen Hutchings uinput = compat_ptr(arg); 16424d92dc0fSBen Hutchings err = get_user(input.group, &uinput->group); 16434d92dc0fSBen Hutchings err |= get_user(input.block_bitmap, &uinput->block_bitmap); 16444d92dc0fSBen Hutchings err |= get_user(input.inode_bitmap, &uinput->inode_bitmap); 16454d92dc0fSBen Hutchings err |= get_user(input.inode_table, &uinput->inode_table); 16464d92dc0fSBen Hutchings err |= get_user(input.blocks_count, &uinput->blocks_count); 16474d92dc0fSBen Hutchings err |= get_user(input.reserved_blocks, 16484d92dc0fSBen Hutchings &uinput->reserved_blocks); 16494d92dc0fSBen Hutchings if (err) 16504d92dc0fSBen Hutchings return -EFAULT; 1651e145b35bSAl Viro return ext4_ioctl_group_add(file, &input); 16524d92dc0fSBen Hutchings } 1653b684b2eeSChristian Borntraeger case EXT4_IOC_MOVE_EXT: 165419c5246dSYongqiang Yang case EXT4_IOC_RESIZE_FS: 1655314999dcSArnd Bergmann case FITRIM: 16567869a4a6STheodore Ts'o case EXT4_IOC_PRECACHE_EXTENTS: 1657cb29a02dSEric Biggers case FS_IOC_SET_ENCRYPTION_POLICY: 1658cb29a02dSEric Biggers case FS_IOC_GET_ENCRYPTION_PWSALT: 1659cb29a02dSEric Biggers case FS_IOC_GET_ENCRYPTION_POLICY: 166029b3692eSEric Biggers case FS_IOC_GET_ENCRYPTION_POLICY_EX: 166129b3692eSEric Biggers case FS_IOC_ADD_ENCRYPTION_KEY: 166229b3692eSEric Biggers case FS_IOC_REMOVE_ENCRYPTION_KEY: 166329b3692eSEric Biggers case FS_IOC_REMOVE_ENCRYPTION_KEY_ALL_USERS: 166429b3692eSEric Biggers case FS_IOC_GET_ENCRYPTION_KEY_STATUS: 16657ec9f3b4SEric Biggers case FS_IOC_GET_ENCRYPTION_NONCE: 1666e9be2ac7STheodore Ts'o case EXT4_IOC_SHUTDOWN: 16670c9ec4beSDarrick J. Wong case FS_IOC_GETFSMAP: 1668c93d8f88SEric Biggers case FS_IOC_ENABLE_VERITY: 1669c93d8f88SEric Biggers case FS_IOC_MEASURE_VERITY: 1670e17fe657SEric Biggers case FS_IOC_READ_VERITY_METADATA: 1671b0c013e2STheodore Ts'o case EXT4_IOC_CLEAR_ES_CACHE: 16721ad3ea6eSTheodore Ts'o case EXT4_IOC_GETSTATE: 1673bb5835edSTheodore Ts'o case EXT4_IOC_GET_ES_CACHE: 1674351a0a3fSLeah Rumancik case EXT4_IOC_CHECKPOINT: 1675bbc605cdSLukas Czerner case FS_IOC_GETFSLABEL: 1676bbc605cdSLukas Czerner case FS_IOC_SETFSLABEL: 1677d95efb14SJeremy Bongio case EXT4_IOC_GETFSUUID: 1678d95efb14SJeremy Bongio case EXT4_IOC_SETFSUUID: 1679b684b2eeSChristian Borntraeger break; 1680ac27a0ecSDave Kleikamp default: 1681ac27a0ecSDave Kleikamp return -ENOIOCTLCMD; 1682ac27a0ecSDave Kleikamp } 16835cdd7b2dSAndi Kleen return ext4_ioctl(file, cmd, (unsigned long) compat_ptr(arg)); 1684ac27a0ecSDave Kleikamp } 1685ac27a0ecSDave Kleikamp #endif 1686eb705421STheodore Ts'o 1687eb705421STheodore Ts'o static void set_overhead(struct ext4_super_block *es, const void *arg) 1688eb705421STheodore Ts'o { 1689eb705421STheodore Ts'o es->s_overhead_clusters = cpu_to_le32(*((unsigned long *) arg)); 1690eb705421STheodore Ts'o } 1691eb705421STheodore Ts'o 1692827891a3STheodore Ts'o int ext4_update_overhead(struct super_block *sb, bool force) 1693eb705421STheodore Ts'o { 1694eb705421STheodore Ts'o struct ext4_sb_info *sbi = EXT4_SB(sb); 1695eb705421STheodore Ts'o 1696827891a3STheodore Ts'o if (sb_rdonly(sb)) 1697eb705421STheodore Ts'o return 0; 1698827891a3STheodore Ts'o if (!force && 1699827891a3STheodore Ts'o (sbi->s_overhead == 0 || 1700827891a3STheodore Ts'o sbi->s_overhead == le32_to_cpu(sbi->s_es->s_overhead_clusters))) 1701827891a3STheodore Ts'o return 0; 1702eb705421STheodore Ts'o return ext4_update_superblocks_fn(sb, set_overhead, &sbi->s_overhead); 1703eb705421STheodore Ts'o } 1704