xref: /openbmc/linux/fs/jffs2/acl.c (revision 8d6ea587)
1652ecc20SKaiGai Kohei /*
2652ecc20SKaiGai Kohei  * JFFS2 -- Journalling Flash File System, Version 2.
3aa98d7cfSKaiGai Kohei  *
4c00c310eSDavid Woodhouse  * Copyright © 2006  NEC Corporation
5aa98d7cfSKaiGai Kohei  *
6652ecc20SKaiGai Kohei  * Created by KaiGai Kohei <kaigai@ak.jp.nec.com>
7652ecc20SKaiGai Kohei  *
8652ecc20SKaiGai Kohei  * For licensing information, see the file 'LICENCE' in this directory.
9652ecc20SKaiGai Kohei  *
10652ecc20SKaiGai Kohei  */
11c00c310eSDavid Woodhouse 
12aa98d7cfSKaiGai Kohei #include <linux/kernel.h>
13aa98d7cfSKaiGai Kohei #include <linux/slab.h>
14aa98d7cfSKaiGai Kohei #include <linux/fs.h>
15914e2637SAl Viro #include <linux/sched.h>
16aa98d7cfSKaiGai Kohei #include <linux/time.h>
17aa98d7cfSKaiGai Kohei #include <linux/crc32.h>
18aa98d7cfSKaiGai Kohei #include <linux/jffs2.h>
19aa98d7cfSKaiGai Kohei #include <linux/xattr.h>
20aa98d7cfSKaiGai Kohei #include <linux/posix_acl_xattr.h>
21aa98d7cfSKaiGai Kohei #include <linux/mtd/mtd.h>
22aa98d7cfSKaiGai Kohei #include "nodelist.h"
23aa98d7cfSKaiGai Kohei 
24aa98d7cfSKaiGai Kohei static size_t jffs2_acl_size(int count)
25aa98d7cfSKaiGai Kohei {
26aa98d7cfSKaiGai Kohei 	if (count <= 4) {
27de1f72faSKaiGai Kohei 		return sizeof(struct jffs2_acl_header)
28de1f72faSKaiGai Kohei 		       + count * sizeof(struct jffs2_acl_entry_short);
29aa98d7cfSKaiGai Kohei 	} else {
30de1f72faSKaiGai Kohei 		return sizeof(struct jffs2_acl_header)
31de1f72faSKaiGai Kohei 		       + 4 * sizeof(struct jffs2_acl_entry_short)
32de1f72faSKaiGai Kohei 		       + (count - 4) * sizeof(struct jffs2_acl_entry);
33aa98d7cfSKaiGai Kohei 	}
34aa98d7cfSKaiGai Kohei }
35aa98d7cfSKaiGai Kohei 
36aa98d7cfSKaiGai Kohei static int jffs2_acl_count(size_t size)
37aa98d7cfSKaiGai Kohei {
38aa98d7cfSKaiGai Kohei 	size_t s;
39aa98d7cfSKaiGai Kohei 
40de1f72faSKaiGai Kohei 	size -= sizeof(struct jffs2_acl_header);
41de1f72faSKaiGai Kohei 	s = size - 4 * sizeof(struct jffs2_acl_entry_short);
42aa98d7cfSKaiGai Kohei 	if (s < 0) {
43de1f72faSKaiGai Kohei 		if (size % sizeof(struct jffs2_acl_entry_short))
44aa98d7cfSKaiGai Kohei 			return -1;
45de1f72faSKaiGai Kohei 		return size / sizeof(struct jffs2_acl_entry_short);
46aa98d7cfSKaiGai Kohei 	} else {
47de1f72faSKaiGai Kohei 		if (s % sizeof(struct jffs2_acl_entry))
48aa98d7cfSKaiGai Kohei 			return -1;
49de1f72faSKaiGai Kohei 		return s / sizeof(struct jffs2_acl_entry) + 4;
50aa98d7cfSKaiGai Kohei 	}
51aa98d7cfSKaiGai Kohei }
52aa98d7cfSKaiGai Kohei 
53dea80134SKaiGai Kohei static struct posix_acl *jffs2_acl_from_medium(void *value, size_t size)
54aa98d7cfSKaiGai Kohei {
55dea80134SKaiGai Kohei 	void *end = value + size;
56dea80134SKaiGai Kohei 	struct jffs2_acl_header *header = value;
57dea80134SKaiGai Kohei 	struct jffs2_acl_entry *entry;
58aa98d7cfSKaiGai Kohei 	struct posix_acl *acl;
59aa98d7cfSKaiGai Kohei 	uint32_t ver;
60aa98d7cfSKaiGai Kohei 	int i, count;
61aa98d7cfSKaiGai Kohei 
62aa98d7cfSKaiGai Kohei 	if (!value)
63aa98d7cfSKaiGai Kohei 		return NULL;
64de1f72faSKaiGai Kohei 	if (size < sizeof(struct jffs2_acl_header))
65aa98d7cfSKaiGai Kohei 		return ERR_PTR(-EINVAL);
66dea80134SKaiGai Kohei 	ver = je32_to_cpu(header->a_version);
67aa98d7cfSKaiGai Kohei 	if (ver != JFFS2_ACL_VERSION) {
68aa98d7cfSKaiGai Kohei 		JFFS2_WARNING("Invalid ACL version. (=%u)\n", ver);
69aa98d7cfSKaiGai Kohei 		return ERR_PTR(-EINVAL);
70aa98d7cfSKaiGai Kohei 	}
71aa98d7cfSKaiGai Kohei 
72dea80134SKaiGai Kohei 	value += sizeof(struct jffs2_acl_header);
73aa98d7cfSKaiGai Kohei 	count = jffs2_acl_count(size);
74aa98d7cfSKaiGai Kohei 	if (count < 0)
75aa98d7cfSKaiGai Kohei 		return ERR_PTR(-EINVAL);
76aa98d7cfSKaiGai Kohei 	if (count == 0)
77aa98d7cfSKaiGai Kohei 		return NULL;
78aa98d7cfSKaiGai Kohei 
79aa98d7cfSKaiGai Kohei 	acl = posix_acl_alloc(count, GFP_KERNEL);
80aa98d7cfSKaiGai Kohei 	if (!acl)
81aa98d7cfSKaiGai Kohei 		return ERR_PTR(-ENOMEM);
82aa98d7cfSKaiGai Kohei 
83aa98d7cfSKaiGai Kohei 	for (i=0; i < count; i++) {
84dea80134SKaiGai Kohei 		entry = value;
85dea80134SKaiGai Kohei 		if (value + sizeof(struct jffs2_acl_entry_short) > end)
86aa98d7cfSKaiGai Kohei 			goto fail;
87aa98d7cfSKaiGai Kohei 		acl->a_entries[i].e_tag = je16_to_cpu(entry->e_tag);
88aa98d7cfSKaiGai Kohei 		acl->a_entries[i].e_perm = je16_to_cpu(entry->e_perm);
89aa98d7cfSKaiGai Kohei 		switch (acl->a_entries[i].e_tag) {
90aa98d7cfSKaiGai Kohei 			case ACL_USER_OBJ:
91aa98d7cfSKaiGai Kohei 			case ACL_GROUP_OBJ:
92aa98d7cfSKaiGai Kohei 			case ACL_MASK:
93aa98d7cfSKaiGai Kohei 			case ACL_OTHER:
94dea80134SKaiGai Kohei 				value += sizeof(struct jffs2_acl_entry_short);
95aa98d7cfSKaiGai Kohei 				acl->a_entries[i].e_id = ACL_UNDEFINED_ID;
96aa98d7cfSKaiGai Kohei 				break;
97aa98d7cfSKaiGai Kohei 
98aa98d7cfSKaiGai Kohei 			case ACL_USER:
99aa98d7cfSKaiGai Kohei 			case ACL_GROUP:
100dea80134SKaiGai Kohei 				value += sizeof(struct jffs2_acl_entry);
101dea80134SKaiGai Kohei 				if (value > end)
102aa98d7cfSKaiGai Kohei 					goto fail;
103aa98d7cfSKaiGai Kohei 				acl->a_entries[i].e_id = je32_to_cpu(entry->e_id);
104aa98d7cfSKaiGai Kohei 				break;
105aa98d7cfSKaiGai Kohei 
106aa98d7cfSKaiGai Kohei 			default:
107aa98d7cfSKaiGai Kohei 				goto fail;
108aa98d7cfSKaiGai Kohei 		}
109aa98d7cfSKaiGai Kohei 	}
110aa98d7cfSKaiGai Kohei 	if (value != end)
111aa98d7cfSKaiGai Kohei 		goto fail;
112aa98d7cfSKaiGai Kohei 	return acl;
113aa98d7cfSKaiGai Kohei  fail:
114aa98d7cfSKaiGai Kohei 	posix_acl_release(acl);
115aa98d7cfSKaiGai Kohei 	return ERR_PTR(-EINVAL);
116aa98d7cfSKaiGai Kohei }
117aa98d7cfSKaiGai Kohei 
118aa98d7cfSKaiGai Kohei static void *jffs2_acl_to_medium(const struct posix_acl *acl, size_t *size)
119aa98d7cfSKaiGai Kohei {
120dea80134SKaiGai Kohei 	struct jffs2_acl_header *header;
121dea80134SKaiGai Kohei 	struct jffs2_acl_entry *entry;
122dea80134SKaiGai Kohei 	void *e;
123aa98d7cfSKaiGai Kohei 	size_t i;
124aa98d7cfSKaiGai Kohei 
125aa98d7cfSKaiGai Kohei 	*size = jffs2_acl_size(acl->a_count);
126dea80134SKaiGai Kohei 	header = kmalloc(sizeof(*header) + acl->a_count * sizeof(*entry), GFP_KERNEL);
127dea80134SKaiGai Kohei 	if (!header)
128aa98d7cfSKaiGai Kohei 		return ERR_PTR(-ENOMEM);
129dea80134SKaiGai Kohei 	header->a_version = cpu_to_je32(JFFS2_ACL_VERSION);
130dea80134SKaiGai Kohei 	e = header + 1;
131aa98d7cfSKaiGai Kohei 	for (i=0; i < acl->a_count; i++) {
132dea80134SKaiGai Kohei 		entry = e;
133aa98d7cfSKaiGai Kohei 		entry->e_tag = cpu_to_je16(acl->a_entries[i].e_tag);
134aa98d7cfSKaiGai Kohei 		entry->e_perm = cpu_to_je16(acl->a_entries[i].e_perm);
135aa98d7cfSKaiGai Kohei 		switch(acl->a_entries[i].e_tag) {
136aa98d7cfSKaiGai Kohei 			case ACL_USER:
137aa98d7cfSKaiGai Kohei 			case ACL_GROUP:
138aa98d7cfSKaiGai Kohei 				entry->e_id = cpu_to_je32(acl->a_entries[i].e_id);
139de1f72faSKaiGai Kohei 				e += sizeof(struct jffs2_acl_entry);
140aa98d7cfSKaiGai Kohei 				break;
141aa98d7cfSKaiGai Kohei 
142aa98d7cfSKaiGai Kohei 			case ACL_USER_OBJ:
143aa98d7cfSKaiGai Kohei 			case ACL_GROUP_OBJ:
144aa98d7cfSKaiGai Kohei 			case ACL_MASK:
145aa98d7cfSKaiGai Kohei 			case ACL_OTHER:
146de1f72faSKaiGai Kohei 				e += sizeof(struct jffs2_acl_entry_short);
147aa98d7cfSKaiGai Kohei 				break;
148aa98d7cfSKaiGai Kohei 
149aa98d7cfSKaiGai Kohei 			default:
150aa98d7cfSKaiGai Kohei 				goto fail;
151aa98d7cfSKaiGai Kohei 		}
152aa98d7cfSKaiGai Kohei 	}
153dea80134SKaiGai Kohei 	return header;
154aa98d7cfSKaiGai Kohei  fail:
155dea80134SKaiGai Kohei 	kfree(header);
156aa98d7cfSKaiGai Kohei 	return ERR_PTR(-EINVAL);
157aa98d7cfSKaiGai Kohei }
158aa98d7cfSKaiGai Kohei 
159aa98d7cfSKaiGai Kohei static struct posix_acl *jffs2_iget_acl(struct inode *inode, struct posix_acl **i_acl)
160aa98d7cfSKaiGai Kohei {
161aa98d7cfSKaiGai Kohei 	struct posix_acl *acl = JFFS2_ACL_NOT_CACHED;
162aa98d7cfSKaiGai Kohei 
163aa98d7cfSKaiGai Kohei 	spin_lock(&inode->i_lock);
164aa98d7cfSKaiGai Kohei 	if (*i_acl != JFFS2_ACL_NOT_CACHED)
165aa98d7cfSKaiGai Kohei 		acl = posix_acl_dup(*i_acl);
166aa98d7cfSKaiGai Kohei 	spin_unlock(&inode->i_lock);
167aa98d7cfSKaiGai Kohei 	return acl;
168aa98d7cfSKaiGai Kohei }
169aa98d7cfSKaiGai Kohei 
170aa98d7cfSKaiGai Kohei static void jffs2_iset_acl(struct inode *inode, struct posix_acl **i_acl, struct posix_acl *acl)
171aa98d7cfSKaiGai Kohei {
172aa98d7cfSKaiGai Kohei 	spin_lock(&inode->i_lock);
173aa98d7cfSKaiGai Kohei 	if (*i_acl != JFFS2_ACL_NOT_CACHED)
174aa98d7cfSKaiGai Kohei 		posix_acl_release(*i_acl);
175aa98d7cfSKaiGai Kohei 	*i_acl = posix_acl_dup(acl);
176aa98d7cfSKaiGai Kohei 	spin_unlock(&inode->i_lock);
177aa98d7cfSKaiGai Kohei }
178aa98d7cfSKaiGai Kohei 
1799ed437c5SDavid Woodhouse struct posix_acl *jffs2_get_acl(struct inode *inode, int type)
180aa98d7cfSKaiGai Kohei {
181aa98d7cfSKaiGai Kohei 	struct jffs2_inode_info *f = JFFS2_INODE_INFO(inode);
182aa98d7cfSKaiGai Kohei 	struct posix_acl *acl;
183aa98d7cfSKaiGai Kohei 	char *value = NULL;
184aa98d7cfSKaiGai Kohei 	int rc, xprefix;
185aa98d7cfSKaiGai Kohei 
186aa98d7cfSKaiGai Kohei 	switch (type) {
187aa98d7cfSKaiGai Kohei 	case ACL_TYPE_ACCESS:
188aa98d7cfSKaiGai Kohei 		acl = jffs2_iget_acl(inode, &f->i_acl_access);
189aa98d7cfSKaiGai Kohei 		if (acl != JFFS2_ACL_NOT_CACHED)
190aa98d7cfSKaiGai Kohei 			return acl;
191aa98d7cfSKaiGai Kohei 		xprefix = JFFS2_XPREFIX_ACL_ACCESS;
192aa98d7cfSKaiGai Kohei 		break;
193aa98d7cfSKaiGai Kohei 	case ACL_TYPE_DEFAULT:
194aa98d7cfSKaiGai Kohei 		acl = jffs2_iget_acl(inode, &f->i_acl_default);
195aa98d7cfSKaiGai Kohei 		if (acl != JFFS2_ACL_NOT_CACHED)
196aa98d7cfSKaiGai Kohei 			return acl;
197aa98d7cfSKaiGai Kohei 		xprefix = JFFS2_XPREFIX_ACL_DEFAULT;
198aa98d7cfSKaiGai Kohei 		break;
199aa98d7cfSKaiGai Kohei 	default:
200aa98d7cfSKaiGai Kohei 		return ERR_PTR(-EINVAL);
201aa98d7cfSKaiGai Kohei 	}
202aa98d7cfSKaiGai Kohei 	rc = do_jffs2_getxattr(inode, xprefix, "", NULL, 0);
203aa98d7cfSKaiGai Kohei 	if (rc > 0) {
204aa98d7cfSKaiGai Kohei 		value = kmalloc(rc, GFP_KERNEL);
205aa98d7cfSKaiGai Kohei 		if (!value)
206aa98d7cfSKaiGai Kohei 			return ERR_PTR(-ENOMEM);
207aa98d7cfSKaiGai Kohei 		rc = do_jffs2_getxattr(inode, xprefix, "", value, rc);
208aa98d7cfSKaiGai Kohei 	}
209aa98d7cfSKaiGai Kohei 	if (rc > 0) {
210aa98d7cfSKaiGai Kohei 		acl = jffs2_acl_from_medium(value, rc);
211aa98d7cfSKaiGai Kohei 	} else if (rc == -ENODATA || rc == -ENOSYS) {
212aa98d7cfSKaiGai Kohei 		acl = NULL;
213aa98d7cfSKaiGai Kohei 	} else {
214aa98d7cfSKaiGai Kohei 		acl = ERR_PTR(rc);
215aa98d7cfSKaiGai Kohei 	}
216aa98d7cfSKaiGai Kohei 	if (value)
217aa98d7cfSKaiGai Kohei 		kfree(value);
218aa98d7cfSKaiGai Kohei 	if (!IS_ERR(acl)) {
219aa98d7cfSKaiGai Kohei 		switch (type) {
220aa98d7cfSKaiGai Kohei 		case ACL_TYPE_ACCESS:
221aa98d7cfSKaiGai Kohei 			jffs2_iset_acl(inode, &f->i_acl_access, acl);
222aa98d7cfSKaiGai Kohei 			break;
223aa98d7cfSKaiGai Kohei 		case ACL_TYPE_DEFAULT:
224aa98d7cfSKaiGai Kohei 			jffs2_iset_acl(inode, &f->i_acl_default, acl);
225aa98d7cfSKaiGai Kohei 			break;
226aa98d7cfSKaiGai Kohei 		}
227aa98d7cfSKaiGai Kohei 	}
228aa98d7cfSKaiGai Kohei 	return acl;
229aa98d7cfSKaiGai Kohei }
230aa98d7cfSKaiGai Kohei 
231cfc8dc6fSKaiGai Kohei static int __jffs2_set_acl(struct inode *inode, int xprefix, struct posix_acl *acl)
232cfc8dc6fSKaiGai Kohei {
233cfc8dc6fSKaiGai Kohei 	char *value = NULL;
234cfc8dc6fSKaiGai Kohei 	size_t size = 0;
235cfc8dc6fSKaiGai Kohei 	int rc;
236cfc8dc6fSKaiGai Kohei 
237cfc8dc6fSKaiGai Kohei 	if (acl) {
238cfc8dc6fSKaiGai Kohei 		value = jffs2_acl_to_medium(acl, &size);
239cfc8dc6fSKaiGai Kohei 		if (IS_ERR(value))
240cfc8dc6fSKaiGai Kohei 			return PTR_ERR(value);
241cfc8dc6fSKaiGai Kohei 	}
242cfc8dc6fSKaiGai Kohei 	rc = do_jffs2_setxattr(inode, xprefix, "", value, size, 0);
243cfc8dc6fSKaiGai Kohei 	if (!value && rc == -ENODATA)
244cfc8dc6fSKaiGai Kohei 		rc = 0;
245cfc8dc6fSKaiGai Kohei 	kfree(value);
246cfc8dc6fSKaiGai Kohei 
247cfc8dc6fSKaiGai Kohei 	return rc;
248cfc8dc6fSKaiGai Kohei }
249cfc8dc6fSKaiGai Kohei 
250aa98d7cfSKaiGai Kohei static int jffs2_set_acl(struct inode *inode, int type, struct posix_acl *acl)
251aa98d7cfSKaiGai Kohei {
252aa98d7cfSKaiGai Kohei 	struct jffs2_inode_info *f = JFFS2_INODE_INFO(inode);
253aa98d7cfSKaiGai Kohei 	int rc, xprefix;
254aa98d7cfSKaiGai Kohei 
255aa98d7cfSKaiGai Kohei 	if (S_ISLNK(inode->i_mode))
256aa98d7cfSKaiGai Kohei 		return -EOPNOTSUPP;
257aa98d7cfSKaiGai Kohei 
258aa98d7cfSKaiGai Kohei 	switch (type) {
259aa98d7cfSKaiGai Kohei 	case ACL_TYPE_ACCESS:
260aa98d7cfSKaiGai Kohei 		xprefix = JFFS2_XPREFIX_ACL_ACCESS;
261aa98d7cfSKaiGai Kohei 		if (acl) {
262aa98d7cfSKaiGai Kohei 			mode_t mode = inode->i_mode;
263aa98d7cfSKaiGai Kohei 			rc = posix_acl_equiv_mode(acl, &mode);
264aa98d7cfSKaiGai Kohei 			if (rc < 0)
265aa98d7cfSKaiGai Kohei 				return rc;
266aa98d7cfSKaiGai Kohei 			if (inode->i_mode != mode) {
2679ed437c5SDavid Woodhouse 				struct iattr attr;
2689ed437c5SDavid Woodhouse 
2699ed437c5SDavid Woodhouse 				attr.ia_valid = ATTR_MODE;
2709ed437c5SDavid Woodhouse 				attr.ia_mode = mode;
2719ed437c5SDavid Woodhouse 				rc = jffs2_do_setattr(inode, &attr);
2729ed437c5SDavid Woodhouse 				if (rc < 0)
2739ed437c5SDavid Woodhouse 					return rc;
274aa98d7cfSKaiGai Kohei 			}
275aa98d7cfSKaiGai Kohei 			if (rc == 0)
276aa98d7cfSKaiGai Kohei 				acl = NULL;
277aa98d7cfSKaiGai Kohei 		}
278aa98d7cfSKaiGai Kohei 		break;
279aa98d7cfSKaiGai Kohei 	case ACL_TYPE_DEFAULT:
280aa98d7cfSKaiGai Kohei 		xprefix = JFFS2_XPREFIX_ACL_DEFAULT;
281aa98d7cfSKaiGai Kohei 		if (!S_ISDIR(inode->i_mode))
282aa98d7cfSKaiGai Kohei 			return acl ? -EACCES : 0;
283aa98d7cfSKaiGai Kohei 		break;
284aa98d7cfSKaiGai Kohei 	default:
285aa98d7cfSKaiGai Kohei 		return -EINVAL;
286aa98d7cfSKaiGai Kohei 	}
287cfc8dc6fSKaiGai Kohei 	rc = __jffs2_set_acl(inode, xprefix, acl);
288aa98d7cfSKaiGai Kohei 	if (!rc) {
289aa98d7cfSKaiGai Kohei 		switch(type) {
290aa98d7cfSKaiGai Kohei 		case ACL_TYPE_ACCESS:
291aa98d7cfSKaiGai Kohei 			jffs2_iset_acl(inode, &f->i_acl_access, acl);
292aa98d7cfSKaiGai Kohei 			break;
293aa98d7cfSKaiGai Kohei 		case ACL_TYPE_DEFAULT:
294aa98d7cfSKaiGai Kohei 			jffs2_iset_acl(inode, &f->i_acl_default, acl);
295aa98d7cfSKaiGai Kohei 			break;
296aa98d7cfSKaiGai Kohei 		}
297aa98d7cfSKaiGai Kohei 	}
298aa98d7cfSKaiGai Kohei 	return rc;
299aa98d7cfSKaiGai Kohei }
300aa98d7cfSKaiGai Kohei 
301aa98d7cfSKaiGai Kohei static int jffs2_check_acl(struct inode *inode, int mask)
302aa98d7cfSKaiGai Kohei {
303aa98d7cfSKaiGai Kohei 	struct posix_acl *acl;
304aa98d7cfSKaiGai Kohei 	int rc;
305aa98d7cfSKaiGai Kohei 
306aa98d7cfSKaiGai Kohei 	acl = jffs2_get_acl(inode, ACL_TYPE_ACCESS);
307aa98d7cfSKaiGai Kohei 	if (IS_ERR(acl))
308aa98d7cfSKaiGai Kohei 		return PTR_ERR(acl);
309aa98d7cfSKaiGai Kohei 	if (acl) {
310aa98d7cfSKaiGai Kohei 		rc = posix_acl_permission(inode, acl, mask);
311aa98d7cfSKaiGai Kohei 		posix_acl_release(acl);
312aa98d7cfSKaiGai Kohei 		return rc;
313aa98d7cfSKaiGai Kohei 	}
314aa98d7cfSKaiGai Kohei 	return -EAGAIN;
315aa98d7cfSKaiGai Kohei }
316aa98d7cfSKaiGai Kohei 
317aa98d7cfSKaiGai Kohei int jffs2_permission(struct inode *inode, int mask, struct nameidata *nd)
318aa98d7cfSKaiGai Kohei {
319aa98d7cfSKaiGai Kohei 	return generic_permission(inode, mask, jffs2_check_acl);
320aa98d7cfSKaiGai Kohei }
321aa98d7cfSKaiGai Kohei 
322cfc8dc6fSKaiGai Kohei int jffs2_init_acl_pre(struct inode *dir_i, struct inode *inode, int *i_mode)
323aa98d7cfSKaiGai Kohei {
324aa98d7cfSKaiGai Kohei 	struct jffs2_inode_info *f = JFFS2_INODE_INFO(inode);
325cfc8dc6fSKaiGai Kohei 	struct posix_acl *acl, *clone;
326cfc8dc6fSKaiGai Kohei 	int rc;
327aa98d7cfSKaiGai Kohei 
328cfc8dc6fSKaiGai Kohei 	f->i_acl_default = NULL;
329cfc8dc6fSKaiGai Kohei 	f->i_acl_access = NULL;
3309ed437c5SDavid Woodhouse 
331cfc8dc6fSKaiGai Kohei 	if (S_ISLNK(*i_mode))
332cfc8dc6fSKaiGai Kohei 		return 0;	/* Symlink always has no-ACL */
333cfc8dc6fSKaiGai Kohei 
334cfc8dc6fSKaiGai Kohei 	acl = jffs2_get_acl(dir_i, ACL_TYPE_DEFAULT);
335cfc8dc6fSKaiGai Kohei 	if (IS_ERR(acl))
336cfc8dc6fSKaiGai Kohei 		return PTR_ERR(acl);
337cfc8dc6fSKaiGai Kohei 
338cfc8dc6fSKaiGai Kohei 	if (!acl) {
339cfc8dc6fSKaiGai Kohei 		*i_mode &= ~current->fs->umask;
340cfc8dc6fSKaiGai Kohei 	} else {
341cfc8dc6fSKaiGai Kohei 		if (S_ISDIR(*i_mode))
342cfc8dc6fSKaiGai Kohei 			jffs2_iset_acl(inode, &f->i_acl_default, acl);
343cfc8dc6fSKaiGai Kohei 
344aa98d7cfSKaiGai Kohei 		clone = posix_acl_clone(acl, GFP_KERNEL);
345aa98d7cfSKaiGai Kohei 		if (!clone)
346cfc8dc6fSKaiGai Kohei 			return -ENOMEM;
347cfc8dc6fSKaiGai Kohei 		rc = posix_acl_create_masq(clone, (mode_t *)i_mode);
348cfc8dc6fSKaiGai Kohei 		if (rc < 0)
349cfc8dc6fSKaiGai Kohei 			return rc;
350aa98d7cfSKaiGai Kohei 		if (rc > 0)
351cfc8dc6fSKaiGai Kohei 			jffs2_iset_acl(inode, &f->i_acl_access, clone);
352cfc8dc6fSKaiGai Kohei 
353aa98d7cfSKaiGai Kohei 		posix_acl_release(clone);
354aa98d7cfSKaiGai Kohei 	}
355cfc8dc6fSKaiGai Kohei 	return 0;
356cfc8dc6fSKaiGai Kohei }
357cfc8dc6fSKaiGai Kohei 
358cfc8dc6fSKaiGai Kohei int jffs2_init_acl_post(struct inode *inode)
359cfc8dc6fSKaiGai Kohei {
360cfc8dc6fSKaiGai Kohei 	struct jffs2_inode_info *f = JFFS2_INODE_INFO(inode);
361cfc8dc6fSKaiGai Kohei 	int rc;
362cfc8dc6fSKaiGai Kohei 
363cfc8dc6fSKaiGai Kohei 	if (f->i_acl_default) {
364cfc8dc6fSKaiGai Kohei 		rc = __jffs2_set_acl(inode, JFFS2_XPREFIX_ACL_DEFAULT, f->i_acl_default);
365cfc8dc6fSKaiGai Kohei 		if (rc)
366cfc8dc6fSKaiGai Kohei 			return rc;
367cfc8dc6fSKaiGai Kohei 	}
368cfc8dc6fSKaiGai Kohei 
369cfc8dc6fSKaiGai Kohei 	if (f->i_acl_access) {
370cfc8dc6fSKaiGai Kohei 		rc = __jffs2_set_acl(inode, JFFS2_XPREFIX_ACL_ACCESS, f->i_acl_access);
371cfc8dc6fSKaiGai Kohei 		if (rc)
372cfc8dc6fSKaiGai Kohei 			return rc;
373cfc8dc6fSKaiGai Kohei 	}
374cfc8dc6fSKaiGai Kohei 
3758d6ea587SDavid Woodhouse 	return 0;
376aa98d7cfSKaiGai Kohei }
377aa98d7cfSKaiGai Kohei 
378c7afb0f9SKaiGai Kohei void jffs2_clear_acl(struct jffs2_inode_info *f)
379aa98d7cfSKaiGai Kohei {
380aa98d7cfSKaiGai Kohei 	if (f->i_acl_access && f->i_acl_access != JFFS2_ACL_NOT_CACHED) {
381aa98d7cfSKaiGai Kohei 		posix_acl_release(f->i_acl_access);
382aa98d7cfSKaiGai Kohei 		f->i_acl_access = JFFS2_ACL_NOT_CACHED;
383aa98d7cfSKaiGai Kohei 	}
384aa98d7cfSKaiGai Kohei 	if (f->i_acl_default && f->i_acl_default != JFFS2_ACL_NOT_CACHED) {
385aa98d7cfSKaiGai Kohei 		posix_acl_release(f->i_acl_default);
386aa98d7cfSKaiGai Kohei 		f->i_acl_default = JFFS2_ACL_NOT_CACHED;
387aa98d7cfSKaiGai Kohei 	}
388aa98d7cfSKaiGai Kohei }
389aa98d7cfSKaiGai Kohei 
390aa98d7cfSKaiGai Kohei int jffs2_acl_chmod(struct inode *inode)
391aa98d7cfSKaiGai Kohei {
392aa98d7cfSKaiGai Kohei 	struct posix_acl *acl, *clone;
393aa98d7cfSKaiGai Kohei 	int rc;
394aa98d7cfSKaiGai Kohei 
395aa98d7cfSKaiGai Kohei 	if (S_ISLNK(inode->i_mode))
396aa98d7cfSKaiGai Kohei 		return -EOPNOTSUPP;
397aa98d7cfSKaiGai Kohei 	acl = jffs2_get_acl(inode, ACL_TYPE_ACCESS);
398aa98d7cfSKaiGai Kohei 	if (IS_ERR(acl) || !acl)
399aa98d7cfSKaiGai Kohei 		return PTR_ERR(acl);
400aa98d7cfSKaiGai Kohei 	clone = posix_acl_clone(acl, GFP_KERNEL);
401aa98d7cfSKaiGai Kohei 	posix_acl_release(acl);
402aa98d7cfSKaiGai Kohei 	if (!clone)
403aa98d7cfSKaiGai Kohei 		return -ENOMEM;
404aa98d7cfSKaiGai Kohei 	rc = posix_acl_chmod_masq(clone, inode->i_mode);
405aa98d7cfSKaiGai Kohei 	if (!rc)
406aa98d7cfSKaiGai Kohei 		rc = jffs2_set_acl(inode, ACL_TYPE_ACCESS, clone);
407aa98d7cfSKaiGai Kohei 	posix_acl_release(clone);
408aa98d7cfSKaiGai Kohei 	return rc;
409aa98d7cfSKaiGai Kohei }
410aa98d7cfSKaiGai Kohei 
411aa98d7cfSKaiGai Kohei static size_t jffs2_acl_access_listxattr(struct inode *inode, char *list, size_t list_size,
412aa98d7cfSKaiGai Kohei 					 const char *name, size_t name_len)
413aa98d7cfSKaiGai Kohei {
414aa98d7cfSKaiGai Kohei 	const int retlen = sizeof(POSIX_ACL_XATTR_ACCESS);
415aa98d7cfSKaiGai Kohei 
416aa98d7cfSKaiGai Kohei 	if (list && retlen <= list_size)
417aa98d7cfSKaiGai Kohei 		strcpy(list, POSIX_ACL_XATTR_ACCESS);
418aa98d7cfSKaiGai Kohei 	return retlen;
419aa98d7cfSKaiGai Kohei }
420aa98d7cfSKaiGai Kohei 
421aa98d7cfSKaiGai Kohei static size_t jffs2_acl_default_listxattr(struct inode *inode, char *list, size_t list_size,
422aa98d7cfSKaiGai Kohei 					  const char *name, size_t name_len)
423aa98d7cfSKaiGai Kohei {
424aa98d7cfSKaiGai Kohei 	const int retlen = sizeof(POSIX_ACL_XATTR_DEFAULT);
425aa98d7cfSKaiGai Kohei 
426aa98d7cfSKaiGai Kohei 	if (list && retlen <= list_size)
427aa98d7cfSKaiGai Kohei 		strcpy(list, POSIX_ACL_XATTR_DEFAULT);
428aa98d7cfSKaiGai Kohei 	return retlen;
429aa98d7cfSKaiGai Kohei }
430aa98d7cfSKaiGai Kohei 
431aa98d7cfSKaiGai Kohei static int jffs2_acl_getxattr(struct inode *inode, int type, void *buffer, size_t size)
432aa98d7cfSKaiGai Kohei {
433aa98d7cfSKaiGai Kohei 	struct posix_acl *acl;
434aa98d7cfSKaiGai Kohei 	int rc;
435aa98d7cfSKaiGai Kohei 
436aa98d7cfSKaiGai Kohei 	acl = jffs2_get_acl(inode, type);
437aa98d7cfSKaiGai Kohei 	if (IS_ERR(acl))
438aa98d7cfSKaiGai Kohei 		return PTR_ERR(acl);
439aa98d7cfSKaiGai Kohei 	if (!acl)
440aa98d7cfSKaiGai Kohei 		return -ENODATA;
441aa98d7cfSKaiGai Kohei 	rc = posix_acl_to_xattr(acl, buffer, size);
442aa98d7cfSKaiGai Kohei 	posix_acl_release(acl);
443aa98d7cfSKaiGai Kohei 
444aa98d7cfSKaiGai Kohei 	return rc;
445aa98d7cfSKaiGai Kohei }
446aa98d7cfSKaiGai Kohei 
447aa98d7cfSKaiGai Kohei static int jffs2_acl_access_getxattr(struct inode *inode, const char *name, void *buffer, size_t size)
448aa98d7cfSKaiGai Kohei {
449aa98d7cfSKaiGai Kohei 	if (name[0] != '\0')
450aa98d7cfSKaiGai Kohei 		return -EINVAL;
451aa98d7cfSKaiGai Kohei 	return jffs2_acl_getxattr(inode, ACL_TYPE_ACCESS, buffer, size);
452aa98d7cfSKaiGai Kohei }
453aa98d7cfSKaiGai Kohei 
454aa98d7cfSKaiGai Kohei static int jffs2_acl_default_getxattr(struct inode *inode, const char *name, void *buffer, size_t size)
455aa98d7cfSKaiGai Kohei {
456aa98d7cfSKaiGai Kohei 	if (name[0] != '\0')
457aa98d7cfSKaiGai Kohei 		return -EINVAL;
458aa98d7cfSKaiGai Kohei 	return jffs2_acl_getxattr(inode, ACL_TYPE_DEFAULT, buffer, size);
459aa98d7cfSKaiGai Kohei }
460aa98d7cfSKaiGai Kohei 
461aa98d7cfSKaiGai Kohei static int jffs2_acl_setxattr(struct inode *inode, int type, const void *value, size_t size)
462aa98d7cfSKaiGai Kohei {
463aa98d7cfSKaiGai Kohei 	struct posix_acl *acl;
464aa98d7cfSKaiGai Kohei 	int rc;
465aa98d7cfSKaiGai Kohei 
4663bd858abSSatyam Sharma 	if (!is_owner_or_cap(inode))
467aa98d7cfSKaiGai Kohei 		return -EPERM;
468aa98d7cfSKaiGai Kohei 
469aa98d7cfSKaiGai Kohei 	if (value) {
470aa98d7cfSKaiGai Kohei 		acl = posix_acl_from_xattr(value, size);
471aa98d7cfSKaiGai Kohei 		if (IS_ERR(acl))
472aa98d7cfSKaiGai Kohei 			return PTR_ERR(acl);
473aa98d7cfSKaiGai Kohei 		if (acl) {
474aa98d7cfSKaiGai Kohei 			rc = posix_acl_valid(acl);
475aa98d7cfSKaiGai Kohei 			if (rc)
476aa98d7cfSKaiGai Kohei 				goto out;
477aa98d7cfSKaiGai Kohei 		}
478aa98d7cfSKaiGai Kohei 	} else {
479aa98d7cfSKaiGai Kohei 		acl = NULL;
480aa98d7cfSKaiGai Kohei 	}
481aa98d7cfSKaiGai Kohei 	rc = jffs2_set_acl(inode, type, acl);
482aa98d7cfSKaiGai Kohei  out:
483aa98d7cfSKaiGai Kohei 	posix_acl_release(acl);
484aa98d7cfSKaiGai Kohei 	return rc;
485aa98d7cfSKaiGai Kohei }
486aa98d7cfSKaiGai Kohei 
487aa98d7cfSKaiGai Kohei static int jffs2_acl_access_setxattr(struct inode *inode, const char *name,
488aa98d7cfSKaiGai Kohei 				     const void *buffer, size_t size, int flags)
489aa98d7cfSKaiGai Kohei {
490aa98d7cfSKaiGai Kohei 	if (name[0] != '\0')
491aa98d7cfSKaiGai Kohei 		return -EINVAL;
492aa98d7cfSKaiGai Kohei 	return jffs2_acl_setxattr(inode, ACL_TYPE_ACCESS, buffer, size);
493aa98d7cfSKaiGai Kohei }
494aa98d7cfSKaiGai Kohei 
495aa98d7cfSKaiGai Kohei static int jffs2_acl_default_setxattr(struct inode *inode, const char *name,
496aa98d7cfSKaiGai Kohei 				      const void *buffer, size_t size, int flags)
497aa98d7cfSKaiGai Kohei {
498aa98d7cfSKaiGai Kohei 	if (name[0] != '\0')
499aa98d7cfSKaiGai Kohei 		return -EINVAL;
500aa98d7cfSKaiGai Kohei 	return jffs2_acl_setxattr(inode, ACL_TYPE_DEFAULT, buffer, size);
501aa98d7cfSKaiGai Kohei }
502aa98d7cfSKaiGai Kohei 
503aa98d7cfSKaiGai Kohei struct xattr_handler jffs2_acl_access_xattr_handler = {
504aa98d7cfSKaiGai Kohei 	.prefix	= POSIX_ACL_XATTR_ACCESS,
505aa98d7cfSKaiGai Kohei 	.list	= jffs2_acl_access_listxattr,
506aa98d7cfSKaiGai Kohei 	.get	= jffs2_acl_access_getxattr,
507aa98d7cfSKaiGai Kohei 	.set	= jffs2_acl_access_setxattr,
508aa98d7cfSKaiGai Kohei };
509aa98d7cfSKaiGai Kohei 
510aa98d7cfSKaiGai Kohei struct xattr_handler jffs2_acl_default_xattr_handler = {
511aa98d7cfSKaiGai Kohei 	.prefix	= POSIX_ACL_XATTR_DEFAULT,
512aa98d7cfSKaiGai Kohei 	.list	= jffs2_acl_default_listxattr,
513aa98d7cfSKaiGai Kohei 	.get	= jffs2_acl_default_getxattr,
514aa98d7cfSKaiGai Kohei 	.set	= jffs2_acl_default_setxattr,
515aa98d7cfSKaiGai Kohei };
516