xref: /openbmc/linux/fs/proc/proc_sysctl.c (revision 61d9b56a)
1 /*
2  * /proc/sys support
3  */
4 #include <linux/init.h>
5 #include <linux/sysctl.h>
6 #include <linux/poll.h>
7 #include <linux/proc_fs.h>
8 #include <linux/printk.h>
9 #include <linux/security.h>
10 #include <linux/sched.h>
11 #include <linux/cred.h>
12 #include <linux/namei.h>
13 #include <linux/mm.h>
14 #include <linux/module.h>
15 #include "internal.h"
16 
17 static const struct dentry_operations proc_sys_dentry_operations;
18 static const struct file_operations proc_sys_file_operations;
19 static const struct inode_operations proc_sys_inode_operations;
20 static const struct file_operations proc_sys_dir_file_operations;
21 static const struct inode_operations proc_sys_dir_operations;
22 
23 /* Support for permanently empty directories */
24 
25 struct ctl_table sysctl_mount_point[] = {
26 	{ }
27 };
28 
29 static bool is_empty_dir(struct ctl_table_header *head)
30 {
31 	return head->ctl_table[0].child == sysctl_mount_point;
32 }
33 
34 static void set_empty_dir(struct ctl_dir *dir)
35 {
36 	dir->header.ctl_table[0].child = sysctl_mount_point;
37 }
38 
39 static void clear_empty_dir(struct ctl_dir *dir)
40 
41 {
42 	dir->header.ctl_table[0].child = NULL;
43 }
44 
45 void proc_sys_poll_notify(struct ctl_table_poll *poll)
46 {
47 	if (!poll)
48 		return;
49 
50 	atomic_inc(&poll->event);
51 	wake_up_interruptible(&poll->wait);
52 }
53 
54 static struct ctl_table root_table[] = {
55 	{
56 		.procname = "",
57 		.mode = S_IFDIR|S_IRUGO|S_IXUGO,
58 	},
59 	{ }
60 };
61 static struct ctl_table_root sysctl_table_root = {
62 	.default_set.dir.header = {
63 		{{.count = 1,
64 		  .nreg = 1,
65 		  .ctl_table = root_table }},
66 		.ctl_table_arg = root_table,
67 		.root = &sysctl_table_root,
68 		.set = &sysctl_table_root.default_set,
69 	},
70 };
71 
72 static DEFINE_SPINLOCK(sysctl_lock);
73 
74 static void drop_sysctl_table(struct ctl_table_header *header);
75 static int sysctl_follow_link(struct ctl_table_header **phead,
76 	struct ctl_table **pentry);
77 static int insert_links(struct ctl_table_header *head);
78 static void put_links(struct ctl_table_header *header);
79 
80 static void sysctl_print_dir(struct ctl_dir *dir)
81 {
82 	if (dir->header.parent)
83 		sysctl_print_dir(dir->header.parent);
84 	pr_cont("%s/", dir->header.ctl_table[0].procname);
85 }
86 
87 static int namecmp(const char *name1, int len1, const char *name2, int len2)
88 {
89 	int minlen;
90 	int cmp;
91 
92 	minlen = len1;
93 	if (minlen > len2)
94 		minlen = len2;
95 
96 	cmp = memcmp(name1, name2, minlen);
97 	if (cmp == 0)
98 		cmp = len1 - len2;
99 	return cmp;
100 }
101 
102 /* Called under sysctl_lock */
103 static struct ctl_table *find_entry(struct ctl_table_header **phead,
104 	struct ctl_dir *dir, const char *name, int namelen)
105 {
106 	struct ctl_table_header *head;
107 	struct ctl_table *entry;
108 	struct rb_node *node = dir->root.rb_node;
109 
110 	while (node)
111 	{
112 		struct ctl_node *ctl_node;
113 		const char *procname;
114 		int cmp;
115 
116 		ctl_node = rb_entry(node, struct ctl_node, node);
117 		head = ctl_node->header;
118 		entry = &head->ctl_table[ctl_node - head->node];
119 		procname = entry->procname;
120 
121 		cmp = namecmp(name, namelen, procname, strlen(procname));
122 		if (cmp < 0)
123 			node = node->rb_left;
124 		else if (cmp > 0)
125 			node = node->rb_right;
126 		else {
127 			*phead = head;
128 			return entry;
129 		}
130 	}
131 	return NULL;
132 }
133 
134 static int insert_entry(struct ctl_table_header *head, struct ctl_table *entry)
135 {
136 	struct rb_node *node = &head->node[entry - head->ctl_table].node;
137 	struct rb_node **p = &head->parent->root.rb_node;
138 	struct rb_node *parent = NULL;
139 	const char *name = entry->procname;
140 	int namelen = strlen(name);
141 
142 	while (*p) {
143 		struct ctl_table_header *parent_head;
144 		struct ctl_table *parent_entry;
145 		struct ctl_node *parent_node;
146 		const char *parent_name;
147 		int cmp;
148 
149 		parent = *p;
150 		parent_node = rb_entry(parent, struct ctl_node, node);
151 		parent_head = parent_node->header;
152 		parent_entry = &parent_head->ctl_table[parent_node - parent_head->node];
153 		parent_name = parent_entry->procname;
154 
155 		cmp = namecmp(name, namelen, parent_name, strlen(parent_name));
156 		if (cmp < 0)
157 			p = &(*p)->rb_left;
158 		else if (cmp > 0)
159 			p = &(*p)->rb_right;
160 		else {
161 			pr_err("sysctl duplicate entry: ");
162 			sysctl_print_dir(head->parent);
163 			pr_cont("/%s\n", entry->procname);
164 			return -EEXIST;
165 		}
166 	}
167 
168 	rb_link_node(node, parent, p);
169 	rb_insert_color(node, &head->parent->root);
170 	return 0;
171 }
172 
173 static void erase_entry(struct ctl_table_header *head, struct ctl_table *entry)
174 {
175 	struct rb_node *node = &head->node[entry - head->ctl_table].node;
176 
177 	rb_erase(node, &head->parent->root);
178 }
179 
180 static void init_header(struct ctl_table_header *head,
181 	struct ctl_table_root *root, struct ctl_table_set *set,
182 	struct ctl_node *node, struct ctl_table *table)
183 {
184 	head->ctl_table = table;
185 	head->ctl_table_arg = table;
186 	head->used = 0;
187 	head->count = 1;
188 	head->nreg = 1;
189 	head->unregistering = NULL;
190 	head->root = root;
191 	head->set = set;
192 	head->parent = NULL;
193 	head->node = node;
194 	INIT_LIST_HEAD(&head->inodes);
195 	if (node) {
196 		struct ctl_table *entry;
197 		for (entry = table; entry->procname; entry++, node++)
198 			node->header = head;
199 	}
200 }
201 
202 static void erase_header(struct ctl_table_header *head)
203 {
204 	struct ctl_table *entry;
205 	for (entry = head->ctl_table; entry->procname; entry++)
206 		erase_entry(head, entry);
207 }
208 
209 static int insert_header(struct ctl_dir *dir, struct ctl_table_header *header)
210 {
211 	struct ctl_table *entry;
212 	int err;
213 
214 	/* Is this a permanently empty directory? */
215 	if (is_empty_dir(&dir->header))
216 		return -EROFS;
217 
218 	/* Am I creating a permanently empty directory? */
219 	if (header->ctl_table == sysctl_mount_point) {
220 		if (!RB_EMPTY_ROOT(&dir->root))
221 			return -EINVAL;
222 		set_empty_dir(dir);
223 	}
224 
225 	dir->header.nreg++;
226 	header->parent = dir;
227 	err = insert_links(header);
228 	if (err)
229 		goto fail_links;
230 	for (entry = header->ctl_table; entry->procname; entry++) {
231 		err = insert_entry(header, entry);
232 		if (err)
233 			goto fail;
234 	}
235 	return 0;
236 fail:
237 	erase_header(header);
238 	put_links(header);
239 fail_links:
240 	if (header->ctl_table == sysctl_mount_point)
241 		clear_empty_dir(dir);
242 	header->parent = NULL;
243 	drop_sysctl_table(&dir->header);
244 	return err;
245 }
246 
247 /* called under sysctl_lock */
248 static int use_table(struct ctl_table_header *p)
249 {
250 	if (unlikely(p->unregistering))
251 		return 0;
252 	p->used++;
253 	return 1;
254 }
255 
256 /* called under sysctl_lock */
257 static void unuse_table(struct ctl_table_header *p)
258 {
259 	if (!--p->used)
260 		if (unlikely(p->unregistering))
261 			complete(p->unregistering);
262 }
263 
264 /* called under sysctl_lock */
265 static void proc_sys_prune_dcache(struct ctl_table_header *head)
266 {
267 	struct inode *inode, *prev = NULL;
268 	struct proc_inode *ei;
269 
270 	rcu_read_lock();
271 	list_for_each_entry_rcu(ei, &head->inodes, sysctl_inodes) {
272 		inode = igrab(&ei->vfs_inode);
273 		if (inode) {
274 			rcu_read_unlock();
275 			iput(prev);
276 			prev = inode;
277 			d_prune_aliases(inode);
278 			rcu_read_lock();
279 		}
280 	}
281 	rcu_read_unlock();
282 	iput(prev);
283 }
284 
285 /* called under sysctl_lock, will reacquire if has to wait */
286 static void start_unregistering(struct ctl_table_header *p)
287 {
288 	/*
289 	 * if p->used is 0, nobody will ever touch that entry again;
290 	 * we'll eliminate all paths to it before dropping sysctl_lock
291 	 */
292 	if (unlikely(p->used)) {
293 		struct completion wait;
294 		init_completion(&wait);
295 		p->unregistering = &wait;
296 		spin_unlock(&sysctl_lock);
297 		wait_for_completion(&wait);
298 	} else {
299 		/* anything non-NULL; we'll never dereference it */
300 		p->unregistering = ERR_PTR(-EINVAL);
301 		spin_unlock(&sysctl_lock);
302 	}
303 	/*
304 	 * Prune dentries for unregistered sysctls: namespaced sysctls
305 	 * can have duplicate names and contaminate dcache very badly.
306 	 */
307 	proc_sys_prune_dcache(p);
308 	/*
309 	 * do not remove from the list until nobody holds it; walking the
310 	 * list in do_sysctl() relies on that.
311 	 */
312 	spin_lock(&sysctl_lock);
313 	erase_header(p);
314 }
315 
316 static struct ctl_table_header *sysctl_head_grab(struct ctl_table_header *head)
317 {
318 	BUG_ON(!head);
319 	spin_lock(&sysctl_lock);
320 	if (!use_table(head))
321 		head = ERR_PTR(-ENOENT);
322 	spin_unlock(&sysctl_lock);
323 	return head;
324 }
325 
326 static void sysctl_head_finish(struct ctl_table_header *head)
327 {
328 	if (!head)
329 		return;
330 	spin_lock(&sysctl_lock);
331 	unuse_table(head);
332 	spin_unlock(&sysctl_lock);
333 }
334 
335 static struct ctl_table_set *
336 lookup_header_set(struct ctl_table_root *root)
337 {
338 	struct ctl_table_set *set = &root->default_set;
339 	if (root->lookup)
340 		set = root->lookup(root);
341 	return set;
342 }
343 
344 static struct ctl_table *lookup_entry(struct ctl_table_header **phead,
345 				      struct ctl_dir *dir,
346 				      const char *name, int namelen)
347 {
348 	struct ctl_table_header *head;
349 	struct ctl_table *entry;
350 
351 	spin_lock(&sysctl_lock);
352 	entry = find_entry(&head, dir, name, namelen);
353 	if (entry && use_table(head))
354 		*phead = head;
355 	else
356 		entry = NULL;
357 	spin_unlock(&sysctl_lock);
358 	return entry;
359 }
360 
361 static struct ctl_node *first_usable_entry(struct rb_node *node)
362 {
363 	struct ctl_node *ctl_node;
364 
365 	for (;node; node = rb_next(node)) {
366 		ctl_node = rb_entry(node, struct ctl_node, node);
367 		if (use_table(ctl_node->header))
368 			return ctl_node;
369 	}
370 	return NULL;
371 }
372 
373 static void first_entry(struct ctl_dir *dir,
374 	struct ctl_table_header **phead, struct ctl_table **pentry)
375 {
376 	struct ctl_table_header *head = NULL;
377 	struct ctl_table *entry = NULL;
378 	struct ctl_node *ctl_node;
379 
380 	spin_lock(&sysctl_lock);
381 	ctl_node = first_usable_entry(rb_first(&dir->root));
382 	spin_unlock(&sysctl_lock);
383 	if (ctl_node) {
384 		head = ctl_node->header;
385 		entry = &head->ctl_table[ctl_node - head->node];
386 	}
387 	*phead = head;
388 	*pentry = entry;
389 }
390 
391 static void next_entry(struct ctl_table_header **phead, struct ctl_table **pentry)
392 {
393 	struct ctl_table_header *head = *phead;
394 	struct ctl_table *entry = *pentry;
395 	struct ctl_node *ctl_node = &head->node[entry - head->ctl_table];
396 
397 	spin_lock(&sysctl_lock);
398 	unuse_table(head);
399 
400 	ctl_node = first_usable_entry(rb_next(&ctl_node->node));
401 	spin_unlock(&sysctl_lock);
402 	head = NULL;
403 	if (ctl_node) {
404 		head = ctl_node->header;
405 		entry = &head->ctl_table[ctl_node - head->node];
406 	}
407 	*phead = head;
408 	*pentry = entry;
409 }
410 
411 /*
412  * sysctl_perm does NOT grant the superuser all rights automatically, because
413  * some sysctl variables are readonly even to root.
414  */
415 
416 static int test_perm(int mode, int op)
417 {
418 	if (uid_eq(current_euid(), GLOBAL_ROOT_UID))
419 		mode >>= 6;
420 	else if (in_egroup_p(GLOBAL_ROOT_GID))
421 		mode >>= 3;
422 	if ((op & ~mode & (MAY_READ|MAY_WRITE|MAY_EXEC)) == 0)
423 		return 0;
424 	return -EACCES;
425 }
426 
427 static int sysctl_perm(struct ctl_table_header *head, struct ctl_table *table, int op)
428 {
429 	struct ctl_table_root *root = head->root;
430 	int mode;
431 
432 	if (root->permissions)
433 		mode = root->permissions(head, table);
434 	else
435 		mode = table->mode;
436 
437 	return test_perm(mode, op);
438 }
439 
440 static struct inode *proc_sys_make_inode(struct super_block *sb,
441 		struct ctl_table_header *head, struct ctl_table *table)
442 {
443 	struct ctl_table_root *root = head->root;
444 	struct inode *inode;
445 	struct proc_inode *ei;
446 
447 	inode = new_inode(sb);
448 	if (!inode)
449 		goto out;
450 
451 	inode->i_ino = get_next_ino();
452 
453 	ei = PROC_I(inode);
454 
455 	spin_lock(&sysctl_lock);
456 	if (unlikely(head->unregistering)) {
457 		spin_unlock(&sysctl_lock);
458 		iput(inode);
459 		inode = NULL;
460 		goto out;
461 	}
462 	ei->sysctl = head;
463 	ei->sysctl_entry = table;
464 	list_add_rcu(&ei->sysctl_inodes, &head->inodes);
465 	head->count++;
466 	spin_unlock(&sysctl_lock);
467 
468 	inode->i_mtime = inode->i_atime = inode->i_ctime = current_time(inode);
469 	inode->i_mode = table->mode;
470 	if (!S_ISDIR(table->mode)) {
471 		inode->i_mode |= S_IFREG;
472 		inode->i_op = &proc_sys_inode_operations;
473 		inode->i_fop = &proc_sys_file_operations;
474 	} else {
475 		inode->i_mode |= S_IFDIR;
476 		inode->i_op = &proc_sys_dir_operations;
477 		inode->i_fop = &proc_sys_dir_file_operations;
478 		if (is_empty_dir(head))
479 			make_empty_dir_inode(inode);
480 	}
481 
482 	if (root->set_ownership)
483 		root->set_ownership(head, table, &inode->i_uid, &inode->i_gid);
484 
485 out:
486 	return inode;
487 }
488 
489 void proc_sys_evict_inode(struct inode *inode, struct ctl_table_header *head)
490 {
491 	spin_lock(&sysctl_lock);
492 	list_del_rcu(&PROC_I(inode)->sysctl_inodes);
493 	if (!--head->count)
494 		kfree_rcu(head, rcu);
495 	spin_unlock(&sysctl_lock);
496 }
497 
498 static struct ctl_table_header *grab_header(struct inode *inode)
499 {
500 	struct ctl_table_header *head = PROC_I(inode)->sysctl;
501 	if (!head)
502 		head = &sysctl_table_root.default_set.dir.header;
503 	return sysctl_head_grab(head);
504 }
505 
506 static struct dentry *proc_sys_lookup(struct inode *dir, struct dentry *dentry,
507 					unsigned int flags)
508 {
509 	struct ctl_table_header *head = grab_header(dir);
510 	struct ctl_table_header *h = NULL;
511 	const struct qstr *name = &dentry->d_name;
512 	struct ctl_table *p;
513 	struct inode *inode;
514 	struct dentry *err = ERR_PTR(-ENOENT);
515 	struct ctl_dir *ctl_dir;
516 	int ret;
517 
518 	if (IS_ERR(head))
519 		return ERR_CAST(head);
520 
521 	ctl_dir = container_of(head, struct ctl_dir, header);
522 
523 	p = lookup_entry(&h, ctl_dir, name->name, name->len);
524 	if (!p)
525 		goto out;
526 
527 	if (S_ISLNK(p->mode)) {
528 		ret = sysctl_follow_link(&h, &p);
529 		err = ERR_PTR(ret);
530 		if (ret)
531 			goto out;
532 	}
533 
534 	err = ERR_PTR(-ENOMEM);
535 	inode = proc_sys_make_inode(dir->i_sb, h ? h : head, p);
536 	if (!inode)
537 		goto out;
538 
539 	err = NULL;
540 	d_set_d_op(dentry, &proc_sys_dentry_operations);
541 	d_add(dentry, inode);
542 
543 out:
544 	if (h)
545 		sysctl_head_finish(h);
546 	sysctl_head_finish(head);
547 	return err;
548 }
549 
550 static ssize_t proc_sys_call_handler(struct file *filp, void __user *buf,
551 		size_t count, loff_t *ppos, int write)
552 {
553 	struct inode *inode = file_inode(filp);
554 	struct ctl_table_header *head = grab_header(inode);
555 	struct ctl_table *table = PROC_I(inode)->sysctl_entry;
556 	ssize_t error;
557 	size_t res;
558 
559 	if (IS_ERR(head))
560 		return PTR_ERR(head);
561 
562 	/*
563 	 * At this point we know that the sysctl was not unregistered
564 	 * and won't be until we finish.
565 	 */
566 	error = -EPERM;
567 	if (sysctl_perm(head, table, write ? MAY_WRITE : MAY_READ))
568 		goto out;
569 
570 	/* if that can happen at all, it should be -EINVAL, not -EISDIR */
571 	error = -EINVAL;
572 	if (!table->proc_handler)
573 		goto out;
574 
575 	/* careful: calling conventions are nasty here */
576 	res = count;
577 	error = table->proc_handler(table, write, buf, &res, ppos);
578 	if (!error)
579 		error = res;
580 out:
581 	sysctl_head_finish(head);
582 
583 	return error;
584 }
585 
586 static ssize_t proc_sys_read(struct file *filp, char __user *buf,
587 				size_t count, loff_t *ppos)
588 {
589 	return proc_sys_call_handler(filp, (void __user *)buf, count, ppos, 0);
590 }
591 
592 static ssize_t proc_sys_write(struct file *filp, const char __user *buf,
593 				size_t count, loff_t *ppos)
594 {
595 	return proc_sys_call_handler(filp, (void __user *)buf, count, ppos, 1);
596 }
597 
598 static int proc_sys_open(struct inode *inode, struct file *filp)
599 {
600 	struct ctl_table_header *head = grab_header(inode);
601 	struct ctl_table *table = PROC_I(inode)->sysctl_entry;
602 
603 	/* sysctl was unregistered */
604 	if (IS_ERR(head))
605 		return PTR_ERR(head);
606 
607 	if (table->poll)
608 		filp->private_data = proc_sys_poll_event(table->poll);
609 
610 	sysctl_head_finish(head);
611 
612 	return 0;
613 }
614 
615 static unsigned int proc_sys_poll(struct file *filp, poll_table *wait)
616 {
617 	struct inode *inode = file_inode(filp);
618 	struct ctl_table_header *head = grab_header(inode);
619 	struct ctl_table *table = PROC_I(inode)->sysctl_entry;
620 	unsigned int ret = DEFAULT_POLLMASK;
621 	unsigned long event;
622 
623 	/* sysctl was unregistered */
624 	if (IS_ERR(head))
625 		return POLLERR | POLLHUP;
626 
627 	if (!table->proc_handler)
628 		goto out;
629 
630 	if (!table->poll)
631 		goto out;
632 
633 	event = (unsigned long)filp->private_data;
634 	poll_wait(filp, &table->poll->wait, wait);
635 
636 	if (event != atomic_read(&table->poll->event)) {
637 		filp->private_data = proc_sys_poll_event(table->poll);
638 		ret = POLLIN | POLLRDNORM | POLLERR | POLLPRI;
639 	}
640 
641 out:
642 	sysctl_head_finish(head);
643 
644 	return ret;
645 }
646 
647 static bool proc_sys_fill_cache(struct file *file,
648 				struct dir_context *ctx,
649 				struct ctl_table_header *head,
650 				struct ctl_table *table)
651 {
652 	struct dentry *child, *dir = file->f_path.dentry;
653 	struct inode *inode;
654 	struct qstr qname;
655 	ino_t ino = 0;
656 	unsigned type = DT_UNKNOWN;
657 
658 	qname.name = table->procname;
659 	qname.len  = strlen(table->procname);
660 	qname.hash = full_name_hash(dir, qname.name, qname.len);
661 
662 	child = d_lookup(dir, &qname);
663 	if (!child) {
664 		DECLARE_WAIT_QUEUE_HEAD_ONSTACK(wq);
665 		child = d_alloc_parallel(dir, &qname, &wq);
666 		if (IS_ERR(child))
667 			return false;
668 		if (d_in_lookup(child)) {
669 			inode = proc_sys_make_inode(dir->d_sb, head, table);
670 			if (!inode) {
671 				d_lookup_done(child);
672 				dput(child);
673 				return false;
674 			}
675 			d_set_d_op(child, &proc_sys_dentry_operations);
676 			d_add(child, inode);
677 		}
678 	}
679 	inode = d_inode(child);
680 	ino  = inode->i_ino;
681 	type = inode->i_mode >> 12;
682 	dput(child);
683 	return dir_emit(ctx, qname.name, qname.len, ino, type);
684 }
685 
686 static bool proc_sys_link_fill_cache(struct file *file,
687 				    struct dir_context *ctx,
688 				    struct ctl_table_header *head,
689 				    struct ctl_table *table)
690 {
691 	bool ret = true;
692 	head = sysctl_head_grab(head);
693 
694 	if (S_ISLNK(table->mode)) {
695 		/* It is not an error if we can not follow the link ignore it */
696 		int err = sysctl_follow_link(&head, &table);
697 		if (err)
698 			goto out;
699 	}
700 
701 	ret = proc_sys_fill_cache(file, ctx, head, table);
702 out:
703 	sysctl_head_finish(head);
704 	return ret;
705 }
706 
707 static int scan(struct ctl_table_header *head, struct ctl_table *table,
708 		unsigned long *pos, struct file *file,
709 		struct dir_context *ctx)
710 {
711 	bool res;
712 
713 	if ((*pos)++ < ctx->pos)
714 		return true;
715 
716 	if (unlikely(S_ISLNK(table->mode)))
717 		res = proc_sys_link_fill_cache(file, ctx, head, table);
718 	else
719 		res = proc_sys_fill_cache(file, ctx, head, table);
720 
721 	if (res)
722 		ctx->pos = *pos;
723 
724 	return res;
725 }
726 
727 static int proc_sys_readdir(struct file *file, struct dir_context *ctx)
728 {
729 	struct ctl_table_header *head = grab_header(file_inode(file));
730 	struct ctl_table_header *h = NULL;
731 	struct ctl_table *entry;
732 	struct ctl_dir *ctl_dir;
733 	unsigned long pos;
734 
735 	if (IS_ERR(head))
736 		return PTR_ERR(head);
737 
738 	ctl_dir = container_of(head, struct ctl_dir, header);
739 
740 	if (!dir_emit_dots(file, ctx))
741 		goto out;
742 
743 	pos = 2;
744 
745 	for (first_entry(ctl_dir, &h, &entry); h; next_entry(&h, &entry)) {
746 		if (!scan(h, entry, &pos, file, ctx)) {
747 			sysctl_head_finish(h);
748 			break;
749 		}
750 	}
751 out:
752 	sysctl_head_finish(head);
753 	return 0;
754 }
755 
756 static int proc_sys_permission(struct inode *inode, int mask)
757 {
758 	/*
759 	 * sysctl entries that are not writeable,
760 	 * are _NOT_ writeable, capabilities or not.
761 	 */
762 	struct ctl_table_header *head;
763 	struct ctl_table *table;
764 	int error;
765 
766 	/* Executable files are not allowed under /proc/sys/ */
767 	if ((mask & MAY_EXEC) && S_ISREG(inode->i_mode))
768 		return -EACCES;
769 
770 	head = grab_header(inode);
771 	if (IS_ERR(head))
772 		return PTR_ERR(head);
773 
774 	table = PROC_I(inode)->sysctl_entry;
775 	if (!table) /* global root - r-xr-xr-x */
776 		error = mask & MAY_WRITE ? -EACCES : 0;
777 	else /* Use the permissions on the sysctl table entry */
778 		error = sysctl_perm(head, table, mask & ~MAY_NOT_BLOCK);
779 
780 	sysctl_head_finish(head);
781 	return error;
782 }
783 
784 static int proc_sys_setattr(struct dentry *dentry, struct iattr *attr)
785 {
786 	struct inode *inode = d_inode(dentry);
787 	int error;
788 
789 	if (attr->ia_valid & (ATTR_MODE | ATTR_UID | ATTR_GID))
790 		return -EPERM;
791 
792 	error = setattr_prepare(dentry, attr);
793 	if (error)
794 		return error;
795 
796 	setattr_copy(inode, attr);
797 	mark_inode_dirty(inode);
798 	return 0;
799 }
800 
801 static int proc_sys_getattr(const struct path *path, struct kstat *stat,
802 			    u32 request_mask, unsigned int query_flags)
803 {
804 	struct inode *inode = d_inode(path->dentry);
805 	struct ctl_table_header *head = grab_header(inode);
806 	struct ctl_table *table = PROC_I(inode)->sysctl_entry;
807 
808 	if (IS_ERR(head))
809 		return PTR_ERR(head);
810 
811 	generic_fillattr(inode, stat);
812 	if (table)
813 		stat->mode = (stat->mode & S_IFMT) | table->mode;
814 
815 	sysctl_head_finish(head);
816 	return 0;
817 }
818 
819 static const struct file_operations proc_sys_file_operations = {
820 	.open		= proc_sys_open,
821 	.poll		= proc_sys_poll,
822 	.read		= proc_sys_read,
823 	.write		= proc_sys_write,
824 	.llseek		= default_llseek,
825 };
826 
827 static const struct file_operations proc_sys_dir_file_operations = {
828 	.read		= generic_read_dir,
829 	.iterate_shared	= proc_sys_readdir,
830 	.llseek		= generic_file_llseek,
831 };
832 
833 static const struct inode_operations proc_sys_inode_operations = {
834 	.permission	= proc_sys_permission,
835 	.setattr	= proc_sys_setattr,
836 	.getattr	= proc_sys_getattr,
837 };
838 
839 static const struct inode_operations proc_sys_dir_operations = {
840 	.lookup		= proc_sys_lookup,
841 	.permission	= proc_sys_permission,
842 	.setattr	= proc_sys_setattr,
843 	.getattr	= proc_sys_getattr,
844 };
845 
846 static int proc_sys_revalidate(struct dentry *dentry, unsigned int flags)
847 {
848 	if (flags & LOOKUP_RCU)
849 		return -ECHILD;
850 	return !PROC_I(d_inode(dentry))->sysctl->unregistering;
851 }
852 
853 static int proc_sys_delete(const struct dentry *dentry)
854 {
855 	return !!PROC_I(d_inode(dentry))->sysctl->unregistering;
856 }
857 
858 static int sysctl_is_seen(struct ctl_table_header *p)
859 {
860 	struct ctl_table_set *set = p->set;
861 	int res;
862 	spin_lock(&sysctl_lock);
863 	if (p->unregistering)
864 		res = 0;
865 	else if (!set->is_seen)
866 		res = 1;
867 	else
868 		res = set->is_seen(set);
869 	spin_unlock(&sysctl_lock);
870 	return res;
871 }
872 
873 static int proc_sys_compare(const struct dentry *dentry,
874 		unsigned int len, const char *str, const struct qstr *name)
875 {
876 	struct ctl_table_header *head;
877 	struct inode *inode;
878 
879 	/* Although proc doesn't have negative dentries, rcu-walk means
880 	 * that inode here can be NULL */
881 	/* AV: can it, indeed? */
882 	inode = d_inode_rcu(dentry);
883 	if (!inode)
884 		return 1;
885 	if (name->len != len)
886 		return 1;
887 	if (memcmp(name->name, str, len))
888 		return 1;
889 	head = rcu_dereference(PROC_I(inode)->sysctl);
890 	return !head || !sysctl_is_seen(head);
891 }
892 
893 static const struct dentry_operations proc_sys_dentry_operations = {
894 	.d_revalidate	= proc_sys_revalidate,
895 	.d_delete	= proc_sys_delete,
896 	.d_compare	= proc_sys_compare,
897 };
898 
899 static struct ctl_dir *find_subdir(struct ctl_dir *dir,
900 				   const char *name, int namelen)
901 {
902 	struct ctl_table_header *head;
903 	struct ctl_table *entry;
904 
905 	entry = find_entry(&head, dir, name, namelen);
906 	if (!entry)
907 		return ERR_PTR(-ENOENT);
908 	if (!S_ISDIR(entry->mode))
909 		return ERR_PTR(-ENOTDIR);
910 	return container_of(head, struct ctl_dir, header);
911 }
912 
913 static struct ctl_dir *new_dir(struct ctl_table_set *set,
914 			       const char *name, int namelen)
915 {
916 	struct ctl_table *table;
917 	struct ctl_dir *new;
918 	struct ctl_node *node;
919 	char *new_name;
920 
921 	new = kzalloc(sizeof(*new) + sizeof(struct ctl_node) +
922 		      sizeof(struct ctl_table)*2 +  namelen + 1,
923 		      GFP_KERNEL);
924 	if (!new)
925 		return NULL;
926 
927 	node = (struct ctl_node *)(new + 1);
928 	table = (struct ctl_table *)(node + 1);
929 	new_name = (char *)(table + 2);
930 	memcpy(new_name, name, namelen);
931 	new_name[namelen] = '\0';
932 	table[0].procname = new_name;
933 	table[0].mode = S_IFDIR|S_IRUGO|S_IXUGO;
934 	init_header(&new->header, set->dir.header.root, set, node, table);
935 
936 	return new;
937 }
938 
939 /**
940  * get_subdir - find or create a subdir with the specified name.
941  * @dir:  Directory to create the subdirectory in
942  * @name: The name of the subdirectory to find or create
943  * @namelen: The length of name
944  *
945  * Takes a directory with an elevated reference count so we know that
946  * if we drop the lock the directory will not go away.  Upon success
947  * the reference is moved from @dir to the returned subdirectory.
948  * Upon error an error code is returned and the reference on @dir is
949  * simply dropped.
950  */
951 static struct ctl_dir *get_subdir(struct ctl_dir *dir,
952 				  const char *name, int namelen)
953 {
954 	struct ctl_table_set *set = dir->header.set;
955 	struct ctl_dir *subdir, *new = NULL;
956 	int err;
957 
958 	spin_lock(&sysctl_lock);
959 	subdir = find_subdir(dir, name, namelen);
960 	if (!IS_ERR(subdir))
961 		goto found;
962 	if (PTR_ERR(subdir) != -ENOENT)
963 		goto failed;
964 
965 	spin_unlock(&sysctl_lock);
966 	new = new_dir(set, name, namelen);
967 	spin_lock(&sysctl_lock);
968 	subdir = ERR_PTR(-ENOMEM);
969 	if (!new)
970 		goto failed;
971 
972 	/* Was the subdir added while we dropped the lock? */
973 	subdir = find_subdir(dir, name, namelen);
974 	if (!IS_ERR(subdir))
975 		goto found;
976 	if (PTR_ERR(subdir) != -ENOENT)
977 		goto failed;
978 
979 	/* Nope.  Use the our freshly made directory entry. */
980 	err = insert_header(dir, &new->header);
981 	subdir = ERR_PTR(err);
982 	if (err)
983 		goto failed;
984 	subdir = new;
985 found:
986 	subdir->header.nreg++;
987 failed:
988 	if (IS_ERR(subdir)) {
989 		pr_err("sysctl could not get directory: ");
990 		sysctl_print_dir(dir);
991 		pr_cont("/%*.*s %ld\n",
992 			namelen, namelen, name, PTR_ERR(subdir));
993 	}
994 	drop_sysctl_table(&dir->header);
995 	if (new)
996 		drop_sysctl_table(&new->header);
997 	spin_unlock(&sysctl_lock);
998 	return subdir;
999 }
1000 
1001 static struct ctl_dir *xlate_dir(struct ctl_table_set *set, struct ctl_dir *dir)
1002 {
1003 	struct ctl_dir *parent;
1004 	const char *procname;
1005 	if (!dir->header.parent)
1006 		return &set->dir;
1007 	parent = xlate_dir(set, dir->header.parent);
1008 	if (IS_ERR(parent))
1009 		return parent;
1010 	procname = dir->header.ctl_table[0].procname;
1011 	return find_subdir(parent, procname, strlen(procname));
1012 }
1013 
1014 static int sysctl_follow_link(struct ctl_table_header **phead,
1015 	struct ctl_table **pentry)
1016 {
1017 	struct ctl_table_header *head;
1018 	struct ctl_table_root *root;
1019 	struct ctl_table_set *set;
1020 	struct ctl_table *entry;
1021 	struct ctl_dir *dir;
1022 	int ret;
1023 
1024 	ret = 0;
1025 	spin_lock(&sysctl_lock);
1026 	root = (*pentry)->data;
1027 	set = lookup_header_set(root);
1028 	dir = xlate_dir(set, (*phead)->parent);
1029 	if (IS_ERR(dir))
1030 		ret = PTR_ERR(dir);
1031 	else {
1032 		const char *procname = (*pentry)->procname;
1033 		head = NULL;
1034 		entry = find_entry(&head, dir, procname, strlen(procname));
1035 		ret = -ENOENT;
1036 		if (entry && use_table(head)) {
1037 			unuse_table(*phead);
1038 			*phead = head;
1039 			*pentry = entry;
1040 			ret = 0;
1041 		}
1042 	}
1043 
1044 	spin_unlock(&sysctl_lock);
1045 	return ret;
1046 }
1047 
1048 static int sysctl_err(const char *path, struct ctl_table *table, char *fmt, ...)
1049 {
1050 	struct va_format vaf;
1051 	va_list args;
1052 
1053 	va_start(args, fmt);
1054 	vaf.fmt = fmt;
1055 	vaf.va = &args;
1056 
1057 	pr_err("sysctl table check failed: %s/%s %pV\n",
1058 	       path, table->procname, &vaf);
1059 
1060 	va_end(args);
1061 	return -EINVAL;
1062 }
1063 
1064 static int sysctl_check_table_array(const char *path, struct ctl_table *table)
1065 {
1066 	int err = 0;
1067 
1068 	if ((table->proc_handler == proc_douintvec) ||
1069 	    (table->proc_handler == proc_douintvec_minmax)) {
1070 		if (table->maxlen != sizeof(unsigned int))
1071 			err |= sysctl_err(path, table, "array now allowed");
1072 	}
1073 
1074 	return err;
1075 }
1076 
1077 static int sysctl_check_table(const char *path, struct ctl_table *table)
1078 {
1079 	int err = 0;
1080 	for (; table->procname; table++) {
1081 		if (table->child)
1082 			err |= sysctl_err(path, table, "Not a file");
1083 
1084 		if ((table->proc_handler == proc_dostring) ||
1085 		    (table->proc_handler == proc_dointvec) ||
1086 		    (table->proc_handler == proc_douintvec) ||
1087 		    (table->proc_handler == proc_douintvec_minmax) ||
1088 		    (table->proc_handler == proc_dointvec_minmax) ||
1089 		    (table->proc_handler == proc_dointvec_jiffies) ||
1090 		    (table->proc_handler == proc_dointvec_userhz_jiffies) ||
1091 		    (table->proc_handler == proc_dointvec_ms_jiffies) ||
1092 		    (table->proc_handler == proc_doulongvec_minmax) ||
1093 		    (table->proc_handler == proc_doulongvec_ms_jiffies_minmax)) {
1094 			if (!table->data)
1095 				err |= sysctl_err(path, table, "No data");
1096 			if (!table->maxlen)
1097 				err |= sysctl_err(path, table, "No maxlen");
1098 			else
1099 				err |= sysctl_check_table_array(path, table);
1100 		}
1101 		if (!table->proc_handler)
1102 			err |= sysctl_err(path, table, "No proc_handler");
1103 
1104 		if ((table->mode & (S_IRUGO|S_IWUGO)) != table->mode)
1105 			err |= sysctl_err(path, table, "bogus .mode 0%o",
1106 				table->mode);
1107 	}
1108 	return err;
1109 }
1110 
1111 static struct ctl_table_header *new_links(struct ctl_dir *dir, struct ctl_table *table,
1112 	struct ctl_table_root *link_root)
1113 {
1114 	struct ctl_table *link_table, *entry, *link;
1115 	struct ctl_table_header *links;
1116 	struct ctl_node *node;
1117 	char *link_name;
1118 	int nr_entries, name_bytes;
1119 
1120 	name_bytes = 0;
1121 	nr_entries = 0;
1122 	for (entry = table; entry->procname; entry++) {
1123 		nr_entries++;
1124 		name_bytes += strlen(entry->procname) + 1;
1125 	}
1126 
1127 	links = kzalloc(sizeof(struct ctl_table_header) +
1128 			sizeof(struct ctl_node)*nr_entries +
1129 			sizeof(struct ctl_table)*(nr_entries + 1) +
1130 			name_bytes,
1131 			GFP_KERNEL);
1132 
1133 	if (!links)
1134 		return NULL;
1135 
1136 	node = (struct ctl_node *)(links + 1);
1137 	link_table = (struct ctl_table *)(node + nr_entries);
1138 	link_name = (char *)&link_table[nr_entries + 1];
1139 
1140 	for (link = link_table, entry = table; entry->procname; link++, entry++) {
1141 		int len = strlen(entry->procname) + 1;
1142 		memcpy(link_name, entry->procname, len);
1143 		link->procname = link_name;
1144 		link->mode = S_IFLNK|S_IRWXUGO;
1145 		link->data = link_root;
1146 		link_name += len;
1147 	}
1148 	init_header(links, dir->header.root, dir->header.set, node, link_table);
1149 	links->nreg = nr_entries;
1150 
1151 	return links;
1152 }
1153 
1154 static bool get_links(struct ctl_dir *dir,
1155 	struct ctl_table *table, struct ctl_table_root *link_root)
1156 {
1157 	struct ctl_table_header *head;
1158 	struct ctl_table *entry, *link;
1159 
1160 	/* Are there links available for every entry in table? */
1161 	for (entry = table; entry->procname; entry++) {
1162 		const char *procname = entry->procname;
1163 		link = find_entry(&head, dir, procname, strlen(procname));
1164 		if (!link)
1165 			return false;
1166 		if (S_ISDIR(link->mode) && S_ISDIR(entry->mode))
1167 			continue;
1168 		if (S_ISLNK(link->mode) && (link->data == link_root))
1169 			continue;
1170 		return false;
1171 	}
1172 
1173 	/* The checks passed.  Increase the registration count on the links */
1174 	for (entry = table; entry->procname; entry++) {
1175 		const char *procname = entry->procname;
1176 		link = find_entry(&head, dir, procname, strlen(procname));
1177 		head->nreg++;
1178 	}
1179 	return true;
1180 }
1181 
1182 static int insert_links(struct ctl_table_header *head)
1183 {
1184 	struct ctl_table_set *root_set = &sysctl_table_root.default_set;
1185 	struct ctl_dir *core_parent = NULL;
1186 	struct ctl_table_header *links;
1187 	int err;
1188 
1189 	if (head->set == root_set)
1190 		return 0;
1191 
1192 	core_parent = xlate_dir(root_set, head->parent);
1193 	if (IS_ERR(core_parent))
1194 		return 0;
1195 
1196 	if (get_links(core_parent, head->ctl_table, head->root))
1197 		return 0;
1198 
1199 	core_parent->header.nreg++;
1200 	spin_unlock(&sysctl_lock);
1201 
1202 	links = new_links(core_parent, head->ctl_table, head->root);
1203 
1204 	spin_lock(&sysctl_lock);
1205 	err = -ENOMEM;
1206 	if (!links)
1207 		goto out;
1208 
1209 	err = 0;
1210 	if (get_links(core_parent, head->ctl_table, head->root)) {
1211 		kfree(links);
1212 		goto out;
1213 	}
1214 
1215 	err = insert_header(core_parent, links);
1216 	if (err)
1217 		kfree(links);
1218 out:
1219 	drop_sysctl_table(&core_parent->header);
1220 	return err;
1221 }
1222 
1223 /**
1224  * __register_sysctl_table - register a leaf sysctl table
1225  * @set: Sysctl tree to register on
1226  * @path: The path to the directory the sysctl table is in.
1227  * @table: the top-level table structure
1228  *
1229  * Register a sysctl table hierarchy. @table should be a filled in ctl_table
1230  * array. A completely 0 filled entry terminates the table.
1231  *
1232  * The members of the &struct ctl_table structure are used as follows:
1233  *
1234  * procname - the name of the sysctl file under /proc/sys. Set to %NULL to not
1235  *            enter a sysctl file
1236  *
1237  * data - a pointer to data for use by proc_handler
1238  *
1239  * maxlen - the maximum size in bytes of the data
1240  *
1241  * mode - the file permissions for the /proc/sys file
1242  *
1243  * child - must be %NULL.
1244  *
1245  * proc_handler - the text handler routine (described below)
1246  *
1247  * extra1, extra2 - extra pointers usable by the proc handler routines
1248  *
1249  * Leaf nodes in the sysctl tree will be represented by a single file
1250  * under /proc; non-leaf nodes will be represented by directories.
1251  *
1252  * There must be a proc_handler routine for any terminal nodes.
1253  * Several default handlers are available to cover common cases -
1254  *
1255  * proc_dostring(), proc_dointvec(), proc_dointvec_jiffies(),
1256  * proc_dointvec_userhz_jiffies(), proc_dointvec_minmax(),
1257  * proc_doulongvec_ms_jiffies_minmax(), proc_doulongvec_minmax()
1258  *
1259  * It is the handler's job to read the input buffer from user memory
1260  * and process it. The handler should return 0 on success.
1261  *
1262  * This routine returns %NULL on a failure to register, and a pointer
1263  * to the table header on success.
1264  */
1265 struct ctl_table_header *__register_sysctl_table(
1266 	struct ctl_table_set *set,
1267 	const char *path, struct ctl_table *table)
1268 {
1269 	struct ctl_table_root *root = set->dir.header.root;
1270 	struct ctl_table_header *header;
1271 	const char *name, *nextname;
1272 	struct ctl_dir *dir;
1273 	struct ctl_table *entry;
1274 	struct ctl_node *node;
1275 	int nr_entries = 0;
1276 
1277 	for (entry = table; entry->procname; entry++)
1278 		nr_entries++;
1279 
1280 	header = kzalloc(sizeof(struct ctl_table_header) +
1281 			 sizeof(struct ctl_node)*nr_entries, GFP_KERNEL);
1282 	if (!header)
1283 		return NULL;
1284 
1285 	node = (struct ctl_node *)(header + 1);
1286 	init_header(header, root, set, node, table);
1287 	if (sysctl_check_table(path, table))
1288 		goto fail;
1289 
1290 	spin_lock(&sysctl_lock);
1291 	dir = &set->dir;
1292 	/* Reference moved down the diretory tree get_subdir */
1293 	dir->header.nreg++;
1294 	spin_unlock(&sysctl_lock);
1295 
1296 	/* Find the directory for the ctl_table */
1297 	for (name = path; name; name = nextname) {
1298 		int namelen;
1299 		nextname = strchr(name, '/');
1300 		if (nextname) {
1301 			namelen = nextname - name;
1302 			nextname++;
1303 		} else {
1304 			namelen = strlen(name);
1305 		}
1306 		if (namelen == 0)
1307 			continue;
1308 
1309 		dir = get_subdir(dir, name, namelen);
1310 		if (IS_ERR(dir))
1311 			goto fail;
1312 	}
1313 
1314 	spin_lock(&sysctl_lock);
1315 	if (insert_header(dir, header))
1316 		goto fail_put_dir_locked;
1317 
1318 	drop_sysctl_table(&dir->header);
1319 	spin_unlock(&sysctl_lock);
1320 
1321 	return header;
1322 
1323 fail_put_dir_locked:
1324 	drop_sysctl_table(&dir->header);
1325 	spin_unlock(&sysctl_lock);
1326 fail:
1327 	kfree(header);
1328 	dump_stack();
1329 	return NULL;
1330 }
1331 
1332 /**
1333  * register_sysctl - register a sysctl table
1334  * @path: The path to the directory the sysctl table is in.
1335  * @table: the table structure
1336  *
1337  * Register a sysctl table. @table should be a filled in ctl_table
1338  * array. A completely 0 filled entry terminates the table.
1339  *
1340  * See __register_sysctl_table for more details.
1341  */
1342 struct ctl_table_header *register_sysctl(const char *path, struct ctl_table *table)
1343 {
1344 	return __register_sysctl_table(&sysctl_table_root.default_set,
1345 					path, table);
1346 }
1347 EXPORT_SYMBOL(register_sysctl);
1348 
1349 static char *append_path(const char *path, char *pos, const char *name)
1350 {
1351 	int namelen;
1352 	namelen = strlen(name);
1353 	if (((pos - path) + namelen + 2) >= PATH_MAX)
1354 		return NULL;
1355 	memcpy(pos, name, namelen);
1356 	pos[namelen] = '/';
1357 	pos[namelen + 1] = '\0';
1358 	pos += namelen + 1;
1359 	return pos;
1360 }
1361 
1362 static int count_subheaders(struct ctl_table *table)
1363 {
1364 	int has_files = 0;
1365 	int nr_subheaders = 0;
1366 	struct ctl_table *entry;
1367 
1368 	/* special case: no directory and empty directory */
1369 	if (!table || !table->procname)
1370 		return 1;
1371 
1372 	for (entry = table; entry->procname; entry++) {
1373 		if (entry->child)
1374 			nr_subheaders += count_subheaders(entry->child);
1375 		else
1376 			has_files = 1;
1377 	}
1378 	return nr_subheaders + has_files;
1379 }
1380 
1381 static int register_leaf_sysctl_tables(const char *path, char *pos,
1382 	struct ctl_table_header ***subheader, struct ctl_table_set *set,
1383 	struct ctl_table *table)
1384 {
1385 	struct ctl_table *ctl_table_arg = NULL;
1386 	struct ctl_table *entry, *files;
1387 	int nr_files = 0;
1388 	int nr_dirs = 0;
1389 	int err = -ENOMEM;
1390 
1391 	for (entry = table; entry->procname; entry++) {
1392 		if (entry->child)
1393 			nr_dirs++;
1394 		else
1395 			nr_files++;
1396 	}
1397 
1398 	files = table;
1399 	/* If there are mixed files and directories we need a new table */
1400 	if (nr_dirs && nr_files) {
1401 		struct ctl_table *new;
1402 		files = kzalloc(sizeof(struct ctl_table) * (nr_files + 1),
1403 				GFP_KERNEL);
1404 		if (!files)
1405 			goto out;
1406 
1407 		ctl_table_arg = files;
1408 		for (new = files, entry = table; entry->procname; entry++) {
1409 			if (entry->child)
1410 				continue;
1411 			*new = *entry;
1412 			new++;
1413 		}
1414 	}
1415 
1416 	/* Register everything except a directory full of subdirectories */
1417 	if (nr_files || !nr_dirs) {
1418 		struct ctl_table_header *header;
1419 		header = __register_sysctl_table(set, path, files);
1420 		if (!header) {
1421 			kfree(ctl_table_arg);
1422 			goto out;
1423 		}
1424 
1425 		/* Remember if we need to free the file table */
1426 		header->ctl_table_arg = ctl_table_arg;
1427 		**subheader = header;
1428 		(*subheader)++;
1429 	}
1430 
1431 	/* Recurse into the subdirectories. */
1432 	for (entry = table; entry->procname; entry++) {
1433 		char *child_pos;
1434 
1435 		if (!entry->child)
1436 			continue;
1437 
1438 		err = -ENAMETOOLONG;
1439 		child_pos = append_path(path, pos, entry->procname);
1440 		if (!child_pos)
1441 			goto out;
1442 
1443 		err = register_leaf_sysctl_tables(path, child_pos, subheader,
1444 						  set, entry->child);
1445 		pos[0] = '\0';
1446 		if (err)
1447 			goto out;
1448 	}
1449 	err = 0;
1450 out:
1451 	/* On failure our caller will unregister all registered subheaders */
1452 	return err;
1453 }
1454 
1455 /**
1456  * __register_sysctl_paths - register a sysctl table hierarchy
1457  * @set: Sysctl tree to register on
1458  * @path: The path to the directory the sysctl table is in.
1459  * @table: the top-level table structure
1460  *
1461  * Register a sysctl table hierarchy. @table should be a filled in ctl_table
1462  * array. A completely 0 filled entry terminates the table.
1463  *
1464  * See __register_sysctl_table for more details.
1465  */
1466 struct ctl_table_header *__register_sysctl_paths(
1467 	struct ctl_table_set *set,
1468 	const struct ctl_path *path, struct ctl_table *table)
1469 {
1470 	struct ctl_table *ctl_table_arg = table;
1471 	int nr_subheaders = count_subheaders(table);
1472 	struct ctl_table_header *header = NULL, **subheaders, **subheader;
1473 	const struct ctl_path *component;
1474 	char *new_path, *pos;
1475 
1476 	pos = new_path = kmalloc(PATH_MAX, GFP_KERNEL);
1477 	if (!new_path)
1478 		return NULL;
1479 
1480 	pos[0] = '\0';
1481 	for (component = path; component->procname; component++) {
1482 		pos = append_path(new_path, pos, component->procname);
1483 		if (!pos)
1484 			goto out;
1485 	}
1486 	while (table->procname && table->child && !table[1].procname) {
1487 		pos = append_path(new_path, pos, table->procname);
1488 		if (!pos)
1489 			goto out;
1490 		table = table->child;
1491 	}
1492 	if (nr_subheaders == 1) {
1493 		header = __register_sysctl_table(set, new_path, table);
1494 		if (header)
1495 			header->ctl_table_arg = ctl_table_arg;
1496 	} else {
1497 		header = kzalloc(sizeof(*header) +
1498 				 sizeof(*subheaders)*nr_subheaders, GFP_KERNEL);
1499 		if (!header)
1500 			goto out;
1501 
1502 		subheaders = (struct ctl_table_header **) (header + 1);
1503 		subheader = subheaders;
1504 		header->ctl_table_arg = ctl_table_arg;
1505 
1506 		if (register_leaf_sysctl_tables(new_path, pos, &subheader,
1507 						set, table))
1508 			goto err_register_leaves;
1509 	}
1510 
1511 out:
1512 	kfree(new_path);
1513 	return header;
1514 
1515 err_register_leaves:
1516 	while (subheader > subheaders) {
1517 		struct ctl_table_header *subh = *(--subheader);
1518 		struct ctl_table *table = subh->ctl_table_arg;
1519 		unregister_sysctl_table(subh);
1520 		kfree(table);
1521 	}
1522 	kfree(header);
1523 	header = NULL;
1524 	goto out;
1525 }
1526 
1527 /**
1528  * register_sysctl_table_path - register a sysctl table hierarchy
1529  * @path: The path to the directory the sysctl table is in.
1530  * @table: the top-level table structure
1531  *
1532  * Register a sysctl table hierarchy. @table should be a filled in ctl_table
1533  * array. A completely 0 filled entry terminates the table.
1534  *
1535  * See __register_sysctl_paths for more details.
1536  */
1537 struct ctl_table_header *register_sysctl_paths(const struct ctl_path *path,
1538 						struct ctl_table *table)
1539 {
1540 	return __register_sysctl_paths(&sysctl_table_root.default_set,
1541 					path, table);
1542 }
1543 EXPORT_SYMBOL(register_sysctl_paths);
1544 
1545 /**
1546  * register_sysctl_table - register a sysctl table hierarchy
1547  * @table: the top-level table structure
1548  *
1549  * Register a sysctl table hierarchy. @table should be a filled in ctl_table
1550  * array. A completely 0 filled entry terminates the table.
1551  *
1552  * See register_sysctl_paths for more details.
1553  */
1554 struct ctl_table_header *register_sysctl_table(struct ctl_table *table)
1555 {
1556 	static const struct ctl_path null_path[] = { {} };
1557 
1558 	return register_sysctl_paths(null_path, table);
1559 }
1560 EXPORT_SYMBOL(register_sysctl_table);
1561 
1562 static void put_links(struct ctl_table_header *header)
1563 {
1564 	struct ctl_table_set *root_set = &sysctl_table_root.default_set;
1565 	struct ctl_table_root *root = header->root;
1566 	struct ctl_dir *parent = header->parent;
1567 	struct ctl_dir *core_parent;
1568 	struct ctl_table *entry;
1569 
1570 	if (header->set == root_set)
1571 		return;
1572 
1573 	core_parent = xlate_dir(root_set, parent);
1574 	if (IS_ERR(core_parent))
1575 		return;
1576 
1577 	for (entry = header->ctl_table; entry->procname; entry++) {
1578 		struct ctl_table_header *link_head;
1579 		struct ctl_table *link;
1580 		const char *name = entry->procname;
1581 
1582 		link = find_entry(&link_head, core_parent, name, strlen(name));
1583 		if (link &&
1584 		    ((S_ISDIR(link->mode) && S_ISDIR(entry->mode)) ||
1585 		     (S_ISLNK(link->mode) && (link->data == root)))) {
1586 			drop_sysctl_table(link_head);
1587 		}
1588 		else {
1589 			pr_err("sysctl link missing during unregister: ");
1590 			sysctl_print_dir(parent);
1591 			pr_cont("/%s\n", name);
1592 		}
1593 	}
1594 }
1595 
1596 static void drop_sysctl_table(struct ctl_table_header *header)
1597 {
1598 	struct ctl_dir *parent = header->parent;
1599 
1600 	if (--header->nreg)
1601 		return;
1602 
1603 	put_links(header);
1604 	start_unregistering(header);
1605 	if (!--header->count)
1606 		kfree_rcu(header, rcu);
1607 
1608 	if (parent)
1609 		drop_sysctl_table(&parent->header);
1610 }
1611 
1612 /**
1613  * unregister_sysctl_table - unregister a sysctl table hierarchy
1614  * @header: the header returned from register_sysctl_table
1615  *
1616  * Unregisters the sysctl table and all children. proc entries may not
1617  * actually be removed until they are no longer used by anyone.
1618  */
1619 void unregister_sysctl_table(struct ctl_table_header * header)
1620 {
1621 	int nr_subheaders;
1622 	might_sleep();
1623 
1624 	if (header == NULL)
1625 		return;
1626 
1627 	nr_subheaders = count_subheaders(header->ctl_table_arg);
1628 	if (unlikely(nr_subheaders > 1)) {
1629 		struct ctl_table_header **subheaders;
1630 		int i;
1631 
1632 		subheaders = (struct ctl_table_header **)(header + 1);
1633 		for (i = nr_subheaders -1; i >= 0; i--) {
1634 			struct ctl_table_header *subh = subheaders[i];
1635 			struct ctl_table *table = subh->ctl_table_arg;
1636 			unregister_sysctl_table(subh);
1637 			kfree(table);
1638 		}
1639 		kfree(header);
1640 		return;
1641 	}
1642 
1643 	spin_lock(&sysctl_lock);
1644 	drop_sysctl_table(header);
1645 	spin_unlock(&sysctl_lock);
1646 }
1647 EXPORT_SYMBOL(unregister_sysctl_table);
1648 
1649 void setup_sysctl_set(struct ctl_table_set *set,
1650 	struct ctl_table_root *root,
1651 	int (*is_seen)(struct ctl_table_set *))
1652 {
1653 	memset(set, 0, sizeof(*set));
1654 	set->is_seen = is_seen;
1655 	init_header(&set->dir.header, root, set, NULL, root_table);
1656 }
1657 
1658 void retire_sysctl_set(struct ctl_table_set *set)
1659 {
1660 	WARN_ON(!RB_EMPTY_ROOT(&set->dir.root));
1661 }
1662 
1663 int __init proc_sys_init(void)
1664 {
1665 	struct proc_dir_entry *proc_sys_root;
1666 
1667 	proc_sys_root = proc_mkdir("sys", NULL);
1668 	proc_sys_root->proc_iops = &proc_sys_dir_operations;
1669 	proc_sys_root->proc_fops = &proc_sys_dir_file_operations;
1670 	proc_sys_root->nlink = 0;
1671 
1672 	return sysctl_init();
1673 }
1674