]>
Commit | Line | Data |
---|---|---|
b2441318 | 1 | // SPDX-License-Identifier: GPL-2.0 |
ac27a0ec | 2 | /* |
617ba13b | 3 | * linux/fs/ext4/ioctl.c |
ac27a0ec DK |
4 | * |
5 | * Copyright (C) 1993, 1994, 1995 | |
6 | * Remy Card (card@masi.ibp.fr) | |
7 | * Laboratoire MASI - Institut Blaise Pascal | |
8 | * Universite Pierre et Marie Curie (Paris VI) | |
9 | */ | |
10 | ||
11 | #include <linux/fs.h> | |
ac27a0ec | 12 | #include <linux/capability.h> |
ac27a0ec DK |
13 | #include <linux/time.h> |
14 | #include <linux/compat.h> | |
42a74f20 | 15 | #include <linux/mount.h> |
748de673 | 16 | #include <linux/file.h> |
9b7365fc | 17 | #include <linux/quotaops.h> |
23253068 | 18 | #include <linux/random.h> |
8da4b8c4 | 19 | #include <linux/uuid.h> |
7c0f6ba6 | 20 | #include <linux/uaccess.h> |
783d9485 | 21 | #include <linux/delay.h> |
ee73f9a5 | 22 | #include <linux/iversion.h> |
3dcf5451 CH |
23 | #include "ext4_jbd2.h" |
24 | #include "ext4.h" | |
0c9ec4be DW |
25 | #include <linux/fsmap.h> |
26 | #include "fsmap.h" | |
27 | #include <trace/events/ext4.h> | |
ac27a0ec | 28 | |
393d1d1d DTB |
29 | /** |
30 | * Swap memory between @a and @b for @len bytes. | |
31 | * | |
32 | * @a: pointer to first memory area | |
33 | * @b: pointer to second memory area | |
34 | * @len: number of bytes to swap | |
35 | * | |
36 | */ | |
37 | static void memswap(void *a, void *b, size_t len) | |
38 | { | |
39 | unsigned char *ap, *bp; | |
393d1d1d DTB |
40 | |
41 | ap = (unsigned char *)a; | |
42 | bp = (unsigned char *)b; | |
43 | while (len-- > 0) { | |
4b7e2db5 | 44 | swap(*ap, *bp); |
393d1d1d DTB |
45 | ap++; |
46 | bp++; | |
47 | } | |
48 | } | |
49 | ||
50 | /** | |
51 | * Swap i_data and associated attributes between @inode1 and @inode2. | |
52 | * This function is used for the primary swap between inode1 and inode2 | |
53 | * and also to revert this primary swap in case of errors. | |
54 | * | |
55 | * Therefore you have to make sure, that calling this method twice | |
56 | * will revert all changes. | |
57 | * | |
58 | * @inode1: pointer to first inode | |
59 | * @inode2: pointer to second inode | |
60 | */ | |
61 | static void swap_inode_data(struct inode *inode1, struct inode *inode2) | |
62 | { | |
63 | loff_t isize; | |
64 | struct ext4_inode_info *ei1; | |
65 | struct ext4_inode_info *ei2; | |
abdc644e | 66 | unsigned long tmp; |
393d1d1d DTB |
67 | |
68 | ei1 = EXT4_I(inode1); | |
69 | ei2 = EXT4_I(inode2); | |
70 | ||
9c5d58fb | 71 | swap(inode1->i_version, inode2->i_version); |
9c5d58fb JL |
72 | swap(inode1->i_atime, inode2->i_atime); |
73 | swap(inode1->i_mtime, inode2->i_mtime); | |
393d1d1d DTB |
74 | |
75 | memswap(ei1->i_data, ei2->i_data, sizeof(ei1->i_data)); | |
abdc644e | 76 | tmp = ei1->i_flags & EXT4_FL_SHOULD_SWAP; |
77 | ei1->i_flags = (ei2->i_flags & EXT4_FL_SHOULD_SWAP) | | |
78 | (ei1->i_flags & ~EXT4_FL_SHOULD_SWAP); | |
79 | ei2->i_flags = tmp | (ei2->i_flags & ~EXT4_FL_SHOULD_SWAP); | |
9c5d58fb | 80 | swap(ei1->i_disksize, ei2->i_disksize); |
cde2d7a7 TT |
81 | ext4_es_remove_extent(inode1, 0, EXT_MAX_BLOCKS); |
82 | ext4_es_remove_extent(inode2, 0, EXT_MAX_BLOCKS); | |
393d1d1d DTB |
83 | |
84 | isize = i_size_read(inode1); | |
85 | i_size_write(inode1, i_size_read(inode2)); | |
86 | i_size_write(inode2, isize); | |
87 | } | |
88 | ||
18aded17 TT |
89 | static void reset_inode_seed(struct inode *inode) |
90 | { | |
91 | struct ext4_inode_info *ei = EXT4_I(inode); | |
92 | struct ext4_sb_info *sbi = EXT4_SB(inode->i_sb); | |
93 | __le32 inum = cpu_to_le32(inode->i_ino); | |
94 | __le32 gen = cpu_to_le32(inode->i_generation); | |
95 | __u32 csum; | |
96 | ||
97 | if (!ext4_has_metadata_csum(inode->i_sb)) | |
98 | return; | |
99 | ||
100 | csum = ext4_chksum(sbi, sbi->s_csum_seed, (__u8 *)&inum, sizeof(inum)); | |
101 | ei->i_csum_seed = ext4_chksum(sbi, csum, (__u8 *)&gen, sizeof(gen)); | |
102 | } | |
103 | ||
393d1d1d DTB |
104 | /** |
105 | * Swap the information from the given @inode and the inode | |
106 | * EXT4_BOOT_LOADER_INO. It will basically swap i_data and all other | |
107 | * important fields of the inodes. | |
108 | * | |
109 | * @sb: the super block of the filesystem | |
110 | * @inode: the inode to swap with EXT4_BOOT_LOADER_INO | |
111 | * | |
112 | */ | |
113 | static long swap_inode_boot_loader(struct super_block *sb, | |
114 | struct inode *inode) | |
115 | { | |
116 | handle_t *handle; | |
117 | int err; | |
118 | struct inode *inode_bl; | |
393d1d1d | 119 | struct ext4_inode_info *ei_bl; |
aa507b5f | 120 | qsize_t size, size_bl, diff; |
121 | blkcnt_t blocks; | |
122 | unsigned short bytes; | |
393d1d1d | 123 | |
8a363970 | 124 | inode_bl = ext4_iget(sb, EXT4_BOOT_LOADER_INO, EXT4_IGET_SPECIAL); |
d8558a29 TT |
125 | if (IS_ERR(inode_bl)) |
126 | return PTR_ERR(inode_bl); | |
393d1d1d DTB |
127 | ei_bl = EXT4_I(inode_bl); |
128 | ||
393d1d1d DTB |
129 | /* Protect orig inodes against a truncate and make sure, |
130 | * that only 1 swap_inode_boot_loader is running. */ | |
375e289e | 131 | lock_two_nondirectories(inode, inode_bl); |
393d1d1d | 132 | |
67a11611 | 133 | if (inode->i_nlink != 1 || !S_ISREG(inode->i_mode) || |
134 | IS_SWAPFILE(inode) || IS_ENCRYPTED(inode) || | |
6e589291 | 135 | (EXT4_I(inode)->i_flags & EXT4_JOURNAL_DATA_FL) || |
67a11611 | 136 | ext4_has_inline_data(inode)) { |
137 | err = -EINVAL; | |
138 | goto journal_err_out; | |
139 | } | |
140 | ||
141 | if (IS_RDONLY(inode) || IS_APPEND(inode) || IS_IMMUTABLE(inode) || | |
142 | !inode_owner_or_capable(inode) || !capable(CAP_SYS_ADMIN)) { | |
143 | err = -EPERM; | |
144 | goto journal_err_out; | |
145 | } | |
146 | ||
a46c68a3 | 147 | down_write(&EXT4_I(inode)->i_mmap_sem); |
148 | err = filemap_write_and_wait(inode->i_mapping); | |
149 | if (err) | |
150 | goto err_out; | |
151 | ||
152 | err = filemap_write_and_wait(inode_bl->i_mapping); | |
153 | if (err) | |
154 | goto err_out; | |
155 | ||
393d1d1d | 156 | /* Wait for all existing dio workers */ |
393d1d1d DTB |
157 | inode_dio_wait(inode); |
158 | inode_dio_wait(inode_bl); | |
159 | ||
18aded17 TT |
160 | truncate_inode_pages(&inode->i_data, 0); |
161 | truncate_inode_pages(&inode_bl->i_data, 0); | |
162 | ||
393d1d1d DTB |
163 | handle = ext4_journal_start(inode_bl, EXT4_HT_MOVE_EXTENTS, 2); |
164 | if (IS_ERR(handle)) { | |
165 | err = -EINVAL; | |
a46c68a3 | 166 | goto err_out; |
393d1d1d DTB |
167 | } |
168 | ||
169 | /* Protect extent tree against block allocations via delalloc */ | |
170 | ext4_double_down_write_data_sem(inode, inode_bl); | |
171 | ||
172 | if (inode_bl->i_nlink == 0) { | |
173 | /* this inode has never been used as a BOOT_LOADER */ | |
174 | set_nlink(inode_bl, 1); | |
175 | i_uid_write(inode_bl, 0); | |
176 | i_gid_write(inode_bl, 0); | |
177 | inode_bl->i_flags = 0; | |
178 | ei_bl->i_flags = 0; | |
ee73f9a5 | 179 | inode_set_iversion(inode_bl, 1); |
393d1d1d DTB |
180 | i_size_write(inode_bl, 0); |
181 | inode_bl->i_mode = S_IFREG; | |
e2b911c5 | 182 | if (ext4_has_feature_extents(sb)) { |
393d1d1d DTB |
183 | ext4_set_inode_flag(inode_bl, EXT4_INODE_EXTENTS); |
184 | ext4_ext_tree_init(handle, inode_bl); | |
185 | } else | |
186 | memset(ei_bl->i_data, 0, sizeof(ei_bl->i_data)); | |
187 | } | |
188 | ||
aa507b5f | 189 | err = dquot_initialize(inode); |
190 | if (err) | |
191 | goto err_out1; | |
192 | ||
193 | size = (qsize_t)(inode->i_blocks) * (1 << 9) + inode->i_bytes; | |
194 | size_bl = (qsize_t)(inode_bl->i_blocks) * (1 << 9) + inode_bl->i_bytes; | |
195 | diff = size - size_bl; | |
393d1d1d DTB |
196 | swap_inode_data(inode, inode_bl); |
197 | ||
eeca7ea1 | 198 | inode->i_ctime = inode_bl->i_ctime = current_time(inode); |
393d1d1d | 199 | |
23253068 TT |
200 | inode->i_generation = prandom_u32(); |
201 | inode_bl->i_generation = prandom_u32(); | |
18aded17 TT |
202 | reset_inode_seed(inode); |
203 | reset_inode_seed(inode_bl); | |
393d1d1d DTB |
204 | |
205 | ext4_discard_preallocations(inode); | |
206 | ||
207 | err = ext4_mark_inode_dirty(handle, inode); | |
208 | if (err < 0) { | |
aa507b5f | 209 | /* No need to update quota information. */ |
393d1d1d DTB |
210 | ext4_warning(inode->i_sb, |
211 | "couldn't mark inode #%lu dirty (err %d)", | |
212 | inode->i_ino, err); | |
213 | /* Revert all changes: */ | |
214 | swap_inode_data(inode, inode_bl); | |
18aded17 | 215 | ext4_mark_inode_dirty(handle, inode); |
aa507b5f | 216 | goto err_out1; |
217 | } | |
218 | ||
219 | blocks = inode_bl->i_blocks; | |
220 | bytes = inode_bl->i_bytes; | |
221 | inode_bl->i_blocks = inode->i_blocks; | |
222 | inode_bl->i_bytes = inode->i_bytes; | |
223 | err = ext4_mark_inode_dirty(handle, inode_bl); | |
224 | if (err < 0) { | |
225 | /* No need to update quota information. */ | |
226 | ext4_warning(inode_bl->i_sb, | |
227 | "couldn't mark inode #%lu dirty (err %d)", | |
228 | inode_bl->i_ino, err); | |
229 | goto revert; | |
230 | } | |
231 | ||
232 | /* Bootloader inode should not be counted into quota information. */ | |
233 | if (diff > 0) | |
234 | dquot_free_space(inode, diff); | |
235 | else | |
236 | err = dquot_alloc_space(inode, -1 * diff); | |
237 | ||
238 | if (err < 0) { | |
239 | revert: | |
240 | /* Revert all changes: */ | |
241 | inode_bl->i_blocks = blocks; | |
242 | inode_bl->i_bytes = bytes; | |
243 | swap_inode_data(inode, inode_bl); | |
244 | ext4_mark_inode_dirty(handle, inode); | |
245 | ext4_mark_inode_dirty(handle, inode_bl); | |
393d1d1d | 246 | } |
aa507b5f | 247 | |
248 | err_out1: | |
393d1d1d | 249 | ext4_journal_stop(handle); |
393d1d1d DTB |
250 | ext4_double_up_write_data_sem(inode, inode_bl); |
251 | ||
a46c68a3 | 252 | err_out: |
253 | up_write(&EXT4_I(inode)->i_mmap_sem); | |
30d29b11 | 254 | journal_err_out: |
375e289e | 255 | unlock_two_nondirectories(inode, inode_bl); |
393d1d1d | 256 | iput(inode_bl); |
393d1d1d DTB |
257 | return err; |
258 | } | |
259 | ||
643fa961 | 260 | #ifdef CONFIG_FS_ENCRYPTION |
9bd8212f MH |
261 | static int uuid_is_zero(__u8 u[16]) |
262 | { | |
263 | int i; | |
264 | ||
265 | for (i = 0; i < 16; i++) | |
266 | if (u[i]) | |
267 | return 0; | |
268 | return 1; | |
269 | } | |
ba679017 | 270 | #endif |
9bd8212f | 271 | |
2e538403 DW |
272 | /* |
273 | * If immutable is set and we are not clearing it, we're not allowed to change | |
274 | * anything else in the inode. Don't error out if we're only trying to set | |
275 | * immutable on an immutable file. | |
276 | */ | |
277 | static int ext4_ioctl_check_immutable(struct inode *inode, __u32 new_projid, | |
278 | unsigned int flags) | |
279 | { | |
280 | struct ext4_inode_info *ei = EXT4_I(inode); | |
281 | unsigned int oldflags = ei->i_flags; | |
282 | ||
283 | if (!(oldflags & EXT4_IMMUTABLE_FL) || !(flags & EXT4_IMMUTABLE_FL)) | |
284 | return 0; | |
285 | ||
286 | if ((oldflags & ~EXT4_IMMUTABLE_FL) != (flags & ~EXT4_IMMUTABLE_FL)) | |
287 | return -EPERM; | |
288 | if (ext4_has_feature_project(inode->i_sb) && | |
289 | __kprojid_val(ei->i_projid) != new_projid) | |
290 | return -EPERM; | |
291 | ||
292 | return 0; | |
293 | } | |
294 | ||
9b7365fc LX |
295 | static int ext4_ioctl_setflags(struct inode *inode, |
296 | unsigned int flags) | |
297 | { | |
298 | struct ext4_inode_info *ei = EXT4_I(inode); | |
299 | handle_t *handle = NULL; | |
fdde368e | 300 | int err = -EPERM, migrate = 0; |
9b7365fc LX |
301 | struct ext4_iloc iloc; |
302 | unsigned int oldflags, mask, i; | |
303 | unsigned int jflag; | |
b886ee3e | 304 | struct super_block *sb = inode->i_sb; |
9b7365fc LX |
305 | |
306 | /* Is it quota file? Do not allow user to mess with it */ | |
02749a4c | 307 | if (ext4_is_quota_file(inode)) |
9b7365fc LX |
308 | goto flags_out; |
309 | ||
310 | oldflags = ei->i_flags; | |
311 | ||
312 | /* The JOURNAL_DATA flag is modifiable only by root */ | |
313 | jflag = flags & EXT4_JOURNAL_DATA_FL; | |
314 | ||
5aca2842 DW |
315 | err = vfs_ioc_setflags_prepare(inode, oldflags, flags); |
316 | if (err) | |
317 | goto flags_out; | |
9b7365fc LX |
318 | |
319 | /* | |
320 | * The JOURNAL_DATA flag can only be changed by | |
321 | * the relevant capability. | |
322 | */ | |
323 | if ((jflag ^ oldflags) & (EXT4_JOURNAL_DATA_FL)) { | |
324 | if (!capable(CAP_SYS_RESOURCE)) | |
325 | goto flags_out; | |
326 | } | |
327 | if ((flags ^ oldflags) & EXT4_EXTENTS_FL) | |
328 | migrate = 1; | |
329 | ||
b886ee3e GKB |
330 | if ((flags ^ oldflags) & EXT4_CASEFOLD_FL) { |
331 | if (!ext4_has_feature_casefold(sb)) { | |
332 | err = -EOPNOTSUPP; | |
333 | goto flags_out; | |
334 | } | |
335 | ||
336 | if (!S_ISDIR(inode->i_mode)) { | |
337 | err = -ENOTDIR; | |
338 | goto flags_out; | |
339 | } | |
340 | ||
341 | if (!ext4_empty_dir(inode)) { | |
342 | err = -ENOTEMPTY; | |
343 | goto flags_out; | |
344 | } | |
345 | } | |
346 | ||
2e538403 DW |
347 | /* |
348 | * Wait for all pending directio and then flush all the dirty pages | |
349 | * for this file. The flush marks all the pages readonly, so any | |
350 | * subsequent attempt to write to the file (particularly mmap pages) | |
351 | * will come through the filesystem and fail. | |
352 | */ | |
353 | if (S_ISREG(inode->i_mode) && !IS_IMMUTABLE(inode) && | |
354 | (flags & EXT4_IMMUTABLE_FL)) { | |
355 | inode_dio_wait(inode); | |
356 | err = filemap_write_and_wait(inode->i_mapping); | |
357 | if (err) | |
358 | goto flags_out; | |
359 | } | |
360 | ||
9b7365fc LX |
361 | handle = ext4_journal_start(inode, EXT4_HT_INODE, 1); |
362 | if (IS_ERR(handle)) { | |
363 | err = PTR_ERR(handle); | |
364 | goto flags_out; | |
365 | } | |
366 | if (IS_SYNC(inode)) | |
367 | ext4_handle_sync(handle); | |
368 | err = ext4_reserve_inode_write(handle, inode, &iloc); | |
369 | if (err) | |
370 | goto flags_err; | |
371 | ||
372 | for (i = 0, mask = 1; i < 32; i++, mask <<= 1) { | |
373 | if (!(mask & EXT4_FL_USER_MODIFIABLE)) | |
374 | continue; | |
f8011d93 JK |
375 | /* These flags get special treatment later */ |
376 | if (mask == EXT4_JOURNAL_DATA_FL || mask == EXT4_EXTENTS_FL) | |
377 | continue; | |
9b7365fc LX |
378 | if (mask & flags) |
379 | ext4_set_inode_flag(inode, i); | |
380 | else | |
381 | ext4_clear_inode_flag(inode, i); | |
382 | } | |
383 | ||
384 | ext4_set_inode_flags(inode); | |
eeca7ea1 | 385 | inode->i_ctime = current_time(inode); |
9b7365fc LX |
386 | |
387 | err = ext4_mark_iloc_dirty(handle, inode, &iloc); | |
388 | flags_err: | |
389 | ext4_journal_stop(handle); | |
390 | if (err) | |
391 | goto flags_out; | |
392 | ||
e9072d85 RZ |
393 | if ((jflag ^ oldflags) & (EXT4_JOURNAL_DATA_FL)) { |
394 | /* | |
395 | * Changes to the journaling mode can cause unsafe changes to | |
396 | * S_DAX if we are using the DAX mount option. | |
397 | */ | |
398 | if (test_opt(inode->i_sb, DAX)) { | |
399 | err = -EBUSY; | |
400 | goto flags_out; | |
401 | } | |
402 | ||
9b7365fc | 403 | err = ext4_change_inode_journal_flag(inode, jflag); |
e9072d85 RZ |
404 | if (err) |
405 | goto flags_out; | |
406 | } | |
9b7365fc LX |
407 | if (migrate) { |
408 | if (flags & EXT4_EXTENTS_FL) | |
409 | err = ext4_ext_migrate(inode); | |
410 | else | |
411 | err = ext4_ind_migrate(inode); | |
412 | } | |
413 | ||
414 | flags_out: | |
415 | return err; | |
416 | } | |
417 | ||
418 | #ifdef CONFIG_QUOTA | |
419 | static int ext4_ioctl_setproject(struct file *filp, __u32 projid) | |
420 | { | |
421 | struct inode *inode = file_inode(filp); | |
422 | struct super_block *sb = inode->i_sb; | |
423 | struct ext4_inode_info *ei = EXT4_I(inode); | |
424 | int err, rc; | |
425 | handle_t *handle; | |
426 | kprojid_t kprojid; | |
427 | struct ext4_iloc iloc; | |
428 | struct ext4_inode *raw_inode; | |
079788d0 | 429 | struct dquot *transfer_to[MAXQUOTAS] = { }; |
9b7365fc | 430 | |
0b7b7779 | 431 | if (!ext4_has_feature_project(sb)) { |
9b7365fc LX |
432 | if (projid != EXT4_DEF_PROJID) |
433 | return -EOPNOTSUPP; | |
434 | else | |
435 | return 0; | |
436 | } | |
437 | ||
438 | if (EXT4_INODE_SIZE(sb) <= EXT4_GOOD_OLD_INODE_SIZE) | |
439 | return -EOPNOTSUPP; | |
440 | ||
441 | kprojid = make_kprojid(&init_user_ns, (projid_t)projid); | |
442 | ||
443 | if (projid_eq(kprojid, EXT4_I(inode)->i_projid)) | |
444 | return 0; | |
445 | ||
9b7365fc | 446 | err = -EPERM; |
9b7365fc | 447 | /* Is it quota file? Do not allow user to mess with it */ |
02749a4c | 448 | if (ext4_is_quota_file(inode)) |
dc7ac6c4 | 449 | return err; |
9b7365fc LX |
450 | |
451 | err = ext4_get_inode_loc(inode, &iloc); | |
452 | if (err) | |
dc7ac6c4 | 453 | return err; |
9b7365fc LX |
454 | |
455 | raw_inode = ext4_raw_inode(&iloc); | |
456 | if (!EXT4_FITS_IN_INODE(raw_inode, ei, i_projid)) { | |
c03b45b8 MX |
457 | err = ext4_expand_extra_isize(inode, |
458 | EXT4_SB(sb)->s_want_extra_isize, | |
459 | &iloc); | |
460 | if (err) | |
dc7ac6c4 | 461 | return err; |
c03b45b8 | 462 | } else { |
9b7365fc | 463 | brelse(iloc.bh); |
9b7365fc | 464 | } |
9b7365fc | 465 | |
182a79e0 WS |
466 | err = dquot_initialize(inode); |
467 | if (err) | |
468 | return err; | |
9b7365fc LX |
469 | |
470 | handle = ext4_journal_start(inode, EXT4_HT_QUOTA, | |
471 | EXT4_QUOTA_INIT_BLOCKS(sb) + | |
472 | EXT4_QUOTA_DEL_BLOCKS(sb) + 3); | |
dc7ac6c4 WS |
473 | if (IS_ERR(handle)) |
474 | return PTR_ERR(handle); | |
9b7365fc LX |
475 | |
476 | err = ext4_reserve_inode_write(handle, inode, &iloc); | |
477 | if (err) | |
478 | goto out_stop; | |
479 | ||
079788d0 WS |
480 | transfer_to[PRJQUOTA] = dqget(sb, make_kqid_projid(kprojid)); |
481 | if (!IS_ERR(transfer_to[PRJQUOTA])) { | |
7a9ca53a TE |
482 | |
483 | /* __dquot_transfer() calls back ext4_get_inode_usage() which | |
484 | * counts xattr inode references. | |
485 | */ | |
486 | down_read(&EXT4_I(inode)->xattr_sem); | |
079788d0 | 487 | err = __dquot_transfer(inode, transfer_to); |
7a9ca53a | 488 | up_read(&EXT4_I(inode)->xattr_sem); |
079788d0 WS |
489 | dqput(transfer_to[PRJQUOTA]); |
490 | if (err) | |
491 | goto out_dirty; | |
9b7365fc | 492 | } |
079788d0 | 493 | |
9b7365fc | 494 | EXT4_I(inode)->i_projid = kprojid; |
eeca7ea1 | 495 | inode->i_ctime = current_time(inode); |
9b7365fc LX |
496 | out_dirty: |
497 | rc = ext4_mark_iloc_dirty(handle, inode, &iloc); | |
498 | if (!err) | |
499 | err = rc; | |
500 | out_stop: | |
501 | ext4_journal_stop(handle); | |
9b7365fc LX |
502 | return err; |
503 | } | |
504 | #else | |
505 | static int ext4_ioctl_setproject(struct file *filp, __u32 projid) | |
506 | { | |
507 | if (projid != EXT4_DEF_PROJID) | |
508 | return -EOPNOTSUPP; | |
509 | return 0; | |
510 | } | |
511 | #endif | |
512 | ||
513 | /* Transfer internal flags to xflags */ | |
514 | static inline __u32 ext4_iflags_to_xflags(unsigned long iflags) | |
515 | { | |
516 | __u32 xflags = 0; | |
517 | ||
518 | if (iflags & EXT4_SYNC_FL) | |
519 | xflags |= FS_XFLAG_SYNC; | |
520 | if (iflags & EXT4_IMMUTABLE_FL) | |
521 | xflags |= FS_XFLAG_IMMUTABLE; | |
522 | if (iflags & EXT4_APPEND_FL) | |
523 | xflags |= FS_XFLAG_APPEND; | |
524 | if (iflags & EXT4_NODUMP_FL) | |
525 | xflags |= FS_XFLAG_NODUMP; | |
526 | if (iflags & EXT4_NOATIME_FL) | |
527 | xflags |= FS_XFLAG_NOATIME; | |
528 | if (iflags & EXT4_PROJINHERIT_FL) | |
529 | xflags |= FS_XFLAG_PROJINHERIT; | |
530 | return xflags; | |
531 | } | |
532 | ||
d14e7683 JK |
533 | #define EXT4_SUPPORTED_FS_XFLAGS (FS_XFLAG_SYNC | FS_XFLAG_IMMUTABLE | \ |
534 | FS_XFLAG_APPEND | FS_XFLAG_NODUMP | \ | |
535 | FS_XFLAG_NOATIME | FS_XFLAG_PROJINHERIT) | |
536 | ||
9b7365fc LX |
537 | /* Transfer xflags flags to internal */ |
538 | static inline unsigned long ext4_xflags_to_iflags(__u32 xflags) | |
539 | { | |
540 | unsigned long iflags = 0; | |
541 | ||
542 | if (xflags & FS_XFLAG_SYNC) | |
543 | iflags |= EXT4_SYNC_FL; | |
544 | if (xflags & FS_XFLAG_IMMUTABLE) | |
545 | iflags |= EXT4_IMMUTABLE_FL; | |
546 | if (xflags & FS_XFLAG_APPEND) | |
547 | iflags |= EXT4_APPEND_FL; | |
548 | if (xflags & FS_XFLAG_NODUMP) | |
549 | iflags |= EXT4_NODUMP_FL; | |
550 | if (xflags & FS_XFLAG_NOATIME) | |
551 | iflags |= EXT4_NOATIME_FL; | |
552 | if (xflags & FS_XFLAG_PROJINHERIT) | |
553 | iflags |= EXT4_PROJINHERIT_FL; | |
554 | ||
555 | return iflags; | |
556 | } | |
557 | ||
1a20a630 | 558 | static int ext4_shutdown(struct super_block *sb, unsigned long arg) |
783d9485 TT |
559 | { |
560 | struct ext4_sb_info *sbi = EXT4_SB(sb); | |
561 | __u32 flags; | |
562 | ||
563 | if (!capable(CAP_SYS_ADMIN)) | |
564 | return -EPERM; | |
565 | ||
566 | if (get_user(flags, (__u32 __user *)arg)) | |
567 | return -EFAULT; | |
568 | ||
569 | if (flags > EXT4_GOING_FLAGS_NOLOGFLUSH) | |
570 | return -EINVAL; | |
571 | ||
572 | if (ext4_forced_shutdown(sbi)) | |
573 | return 0; | |
574 | ||
575 | ext4_msg(sb, KERN_ALERT, "shut down requested (%d)", flags); | |
ccf0f32a | 576 | trace_ext4_shutdown(sb, flags); |
783d9485 TT |
577 | |
578 | switch (flags) { | |
579 | case EXT4_GOING_FLAGS_DEFAULT: | |
580 | freeze_bdev(sb->s_bdev); | |
581 | set_bit(EXT4_FLAGS_SHUTDOWN, &sbi->s_ext4_flags); | |
582 | thaw_bdev(sb->s_bdev, sb); | |
583 | break; | |
584 | case EXT4_GOING_FLAGS_LOGFLUSH: | |
585 | set_bit(EXT4_FLAGS_SHUTDOWN, &sbi->s_ext4_flags); | |
586 | if (sbi->s_journal && !is_journal_aborted(sbi->s_journal)) { | |
587 | (void) ext4_force_commit(sb); | |
fb7c0244 | 588 | jbd2_journal_abort(sbi->s_journal, -ESHUTDOWN); |
783d9485 TT |
589 | } |
590 | break; | |
591 | case EXT4_GOING_FLAGS_NOLOGFLUSH: | |
592 | set_bit(EXT4_FLAGS_SHUTDOWN, &sbi->s_ext4_flags); | |
a6d9946b | 593 | if (sbi->s_journal && !is_journal_aborted(sbi->s_journal)) |
fb7c0244 | 594 | jbd2_journal_abort(sbi->s_journal, -ESHUTDOWN); |
783d9485 TT |
595 | break; |
596 | default: | |
597 | return -EINVAL; | |
598 | } | |
599 | clear_opt(sb, DISCARD); | |
600 | return 0; | |
601 | } | |
602 | ||
0c9ec4be DW |
603 | struct getfsmap_info { |
604 | struct super_block *gi_sb; | |
605 | struct fsmap_head __user *gi_data; | |
606 | unsigned int gi_idx; | |
607 | __u32 gi_last_flags; | |
608 | }; | |
609 | ||
610 | static int ext4_getfsmap_format(struct ext4_fsmap *xfm, void *priv) | |
611 | { | |
612 | struct getfsmap_info *info = priv; | |
613 | struct fsmap fm; | |
614 | ||
615 | trace_ext4_getfsmap_mapping(info->gi_sb, xfm); | |
616 | ||
617 | info->gi_last_flags = xfm->fmr_flags; | |
618 | ext4_fsmap_from_internal(info->gi_sb, &fm, xfm); | |
619 | if (copy_to_user(&info->gi_data->fmh_recs[info->gi_idx++], &fm, | |
620 | sizeof(struct fsmap))) | |
621 | return -EFAULT; | |
622 | ||
623 | return 0; | |
624 | } | |
625 | ||
626 | static int ext4_ioc_getfsmap(struct super_block *sb, | |
627 | struct fsmap_head __user *arg) | |
628 | { | |
0ba33fac | 629 | struct getfsmap_info info = { NULL }; |
0c9ec4be DW |
630 | struct ext4_fsmap_head xhead = {0}; |
631 | struct fsmap_head head; | |
632 | bool aborted = false; | |
633 | int error; | |
634 | ||
635 | if (copy_from_user(&head, arg, sizeof(struct fsmap_head))) | |
636 | return -EFAULT; | |
637 | if (memchr_inv(head.fmh_reserved, 0, sizeof(head.fmh_reserved)) || | |
638 | memchr_inv(head.fmh_keys[0].fmr_reserved, 0, | |
639 | sizeof(head.fmh_keys[0].fmr_reserved)) || | |
640 | memchr_inv(head.fmh_keys[1].fmr_reserved, 0, | |
641 | sizeof(head.fmh_keys[1].fmr_reserved))) | |
642 | return -EINVAL; | |
643 | /* | |
644 | * ext4 doesn't report file extents at all, so the only valid | |
645 | * file offsets are the magic ones (all zeroes or all ones). | |
646 | */ | |
647 | if (head.fmh_keys[0].fmr_offset || | |
648 | (head.fmh_keys[1].fmr_offset != 0 && | |
649 | head.fmh_keys[1].fmr_offset != -1ULL)) | |
650 | return -EINVAL; | |
651 | ||
652 | xhead.fmh_iflags = head.fmh_iflags; | |
653 | xhead.fmh_count = head.fmh_count; | |
654 | ext4_fsmap_to_internal(sb, &xhead.fmh_keys[0], &head.fmh_keys[0]); | |
655 | ext4_fsmap_to_internal(sb, &xhead.fmh_keys[1], &head.fmh_keys[1]); | |
656 | ||
657 | trace_ext4_getfsmap_low_key(sb, &xhead.fmh_keys[0]); | |
658 | trace_ext4_getfsmap_high_key(sb, &xhead.fmh_keys[1]); | |
659 | ||
660 | info.gi_sb = sb; | |
661 | info.gi_data = arg; | |
662 | error = ext4_getfsmap(sb, &xhead, ext4_getfsmap_format, &info); | |
663 | if (error == EXT4_QUERY_RANGE_ABORT) { | |
664 | error = 0; | |
665 | aborted = true; | |
666 | } else if (error) | |
667 | return error; | |
668 | ||
669 | /* If we didn't abort, set the "last" flag in the last fmx */ | |
670 | if (!aborted && info.gi_idx) { | |
671 | info.gi_last_flags |= FMR_OF_LAST; | |
672 | if (copy_to_user(&info.gi_data->fmh_recs[info.gi_idx - 1].fmr_flags, | |
673 | &info.gi_last_flags, | |
674 | sizeof(info.gi_last_flags))) | |
675 | return -EFAULT; | |
676 | } | |
677 | ||
678 | /* copy back header */ | |
679 | head.fmh_entries = xhead.fmh_entries; | |
680 | head.fmh_oflags = xhead.fmh_oflags; | |
681 | if (copy_to_user(arg, &head, sizeof(struct fsmap_head))) | |
682 | return -EFAULT; | |
683 | ||
684 | return 0; | |
685 | } | |
686 | ||
e145b35b AV |
687 | static long ext4_ioctl_group_add(struct file *file, |
688 | struct ext4_new_group_data *input) | |
689 | { | |
690 | struct super_block *sb = file_inode(file)->i_sb; | |
691 | int err, err2=0; | |
692 | ||
693 | err = ext4_resize_begin(sb); | |
694 | if (err) | |
695 | return err; | |
696 | ||
697 | if (ext4_has_feature_bigalloc(sb)) { | |
698 | ext4_msg(sb, KERN_ERR, | |
699 | "Online resizing not supported with bigalloc"); | |
700 | err = -EOPNOTSUPP; | |
701 | goto group_add_out; | |
702 | } | |
703 | ||
704 | err = mnt_want_write_file(file); | |
705 | if (err) | |
706 | goto group_add_out; | |
707 | ||
708 | err = ext4_group_add(sb, input); | |
709 | if (EXT4_SB(sb)->s_journal) { | |
710 | jbd2_journal_lock_updates(EXT4_SB(sb)->s_journal); | |
711 | err2 = jbd2_journal_flush(EXT4_SB(sb)->s_journal); | |
712 | jbd2_journal_unlock_updates(EXT4_SB(sb)->s_journal); | |
713 | } | |
714 | if (err == 0) | |
715 | err = err2; | |
716 | mnt_drop_write_file(file); | |
717 | if (!err && ext4_has_group_desc_csum(sb) && | |
718 | test_opt(sb, INIT_INODE_TABLE)) | |
719 | err = ext4_register_li_request(sb, input->group); | |
720 | group_add_out: | |
721 | ext4_resize_end(sb); | |
722 | return err; | |
723 | } | |
724 | ||
7b0e492e | 725 | static void ext4_fill_fsxattr(struct inode *inode, struct fsxattr *fa) |
dc7ac6c4 | 726 | { |
7b0e492e | 727 | struct ext4_inode_info *ei = EXT4_I(inode); |
dc7ac6c4 | 728 | |
7b0e492e DW |
729 | simple_fill_fsxattr(fa, ext4_iflags_to_xflags(ei->i_flags & |
730 | EXT4_FL_USER_VISIBLE)); | |
dc7ac6c4 | 731 | |
7b0e492e DW |
732 | if (ext4_has_feature_project(inode->i_sb)) |
733 | fa->fsx_projid = from_kprojid(&init_user_ns, ei->i_projid); | |
dc7ac6c4 WS |
734 | } |
735 | ||
bb5835ed TT |
736 | /* So that the fiemap access checks can't overflow on 32 bit machines. */ |
737 | #define FIEMAP_MAX_EXTENTS (UINT_MAX / sizeof(struct fiemap_extent)) | |
738 | ||
739 | static int ext4_ioctl_get_es_cache(struct file *filp, unsigned long arg) | |
740 | { | |
741 | struct fiemap fiemap; | |
742 | struct fiemap __user *ufiemap = (struct fiemap __user *) arg; | |
743 | struct fiemap_extent_info fieinfo = { 0, }; | |
744 | struct inode *inode = file_inode(filp); | |
bb5835ed TT |
745 | int error; |
746 | ||
747 | if (copy_from_user(&fiemap, ufiemap, sizeof(fiemap))) | |
748 | return -EFAULT; | |
749 | ||
750 | if (fiemap.fm_extent_count > FIEMAP_MAX_EXTENTS) | |
751 | return -EINVAL; | |
752 | ||
bb5835ed TT |
753 | fieinfo.fi_flags = fiemap.fm_flags; |
754 | fieinfo.fi_extents_max = fiemap.fm_extent_count; | |
755 | fieinfo.fi_extents_start = ufiemap->fm_extents; | |
756 | ||
757 | if (fiemap.fm_extent_count != 0 && | |
758 | !access_ok(fieinfo.fi_extents_start, | |
759 | fieinfo.fi_extents_max * sizeof(struct fiemap_extent))) | |
760 | return -EFAULT; | |
761 | ||
762 | if (fieinfo.fi_flags & FIEMAP_FLAG_SYNC) | |
763 | filemap_write_and_wait(inode->i_mapping); | |
764 | ||
959f7584 CH |
765 | error = ext4_get_es_cache(inode, &fieinfo, fiemap.fm_start, |
766 | fiemap.fm_length); | |
bb5835ed TT |
767 | fiemap.fm_flags = fieinfo.fi_flags; |
768 | fiemap.fm_mapped_extents = fieinfo.fi_extents_mapped; | |
769 | if (copy_to_user(ufiemap, &fiemap, sizeof(fiemap))) | |
770 | error = -EFAULT; | |
771 | ||
772 | return error; | |
773 | } | |
774 | ||
5cdd7b2d | 775 | long ext4_ioctl(struct file *filp, unsigned int cmd, unsigned long arg) |
ac27a0ec | 776 | { |
496ad9aa | 777 | struct inode *inode = file_inode(filp); |
bab08ab9 | 778 | struct super_block *sb = inode->i_sb; |
617ba13b | 779 | struct ext4_inode_info *ei = EXT4_I(inode); |
ac27a0ec | 780 | unsigned int flags; |
ac27a0ec | 781 | |
af5bc92d | 782 | ext4_debug("cmd = %u, arg = %lu\n", cmd, arg); |
ac27a0ec DK |
783 | |
784 | switch (cmd) { | |
0c9ec4be DW |
785 | case FS_IOC_GETFSMAP: |
786 | return ext4_ioc_getfsmap(sb, (void __user *)arg); | |
617ba13b MC |
787 | case EXT4_IOC_GETFLAGS: |
788 | flags = ei->i_flags & EXT4_FL_USER_VISIBLE; | |
7ddf79a1 WS |
789 | if (S_ISREG(inode->i_mode)) |
790 | flags &= ~EXT4_PROJINHERIT_FL; | |
ac27a0ec | 791 | return put_user(flags, (int __user *) arg); |
617ba13b | 792 | case EXT4_IOC_SETFLAGS: { |
9b7365fc | 793 | int err; |
ac27a0ec | 794 | |
2e149670 | 795 | if (!inode_owner_or_capable(inode)) |
ac27a0ec DK |
796 | return -EACCES; |
797 | ||
798 | if (get_user(flags, (int __user *) arg)) | |
799 | return -EFAULT; | |
800 | ||
d14e7683 JK |
801 | if (flags & ~EXT4_FL_USER_VISIBLE) |
802 | return -EOPNOTSUPP; | |
803 | /* | |
804 | * chattr(1) grabs flags via GETFLAGS, modifies the result and | |
805 | * passes that to SETFLAGS. So we cannot easily make SETFLAGS | |
806 | * more restrictive than just silently masking off visible but | |
807 | * not settable flags as we always did. | |
808 | */ | |
809 | flags &= EXT4_FL_USER_MODIFIABLE; | |
810 | if (ext4_mask_flags(inode->i_mode, flags) != flags) | |
811 | return -EOPNOTSUPP; | |
812 | ||
a561be71 | 813 | err = mnt_want_write_file(filp); |
42a74f20 DH |
814 | if (err) |
815 | return err; | |
816 | ||
5955102c | 817 | inode_lock(inode); |
2e538403 DW |
818 | err = ext4_ioctl_check_immutable(inode, |
819 | from_kprojid(&init_user_ns, ei->i_projid), | |
820 | flags); | |
821 | if (!err) | |
822 | err = ext4_ioctl_setflags(inode, flags); | |
5955102c | 823 | inode_unlock(inode); |
2a79f17e | 824 | mnt_drop_write_file(filp); |
ac27a0ec DK |
825 | return err; |
826 | } | |
617ba13b MC |
827 | case EXT4_IOC_GETVERSION: |
828 | case EXT4_IOC_GETVERSION_OLD: | |
ac27a0ec | 829 | return put_user(inode->i_generation, (int __user *) arg); |
617ba13b MC |
830 | case EXT4_IOC_SETVERSION: |
831 | case EXT4_IOC_SETVERSION_OLD: { | |
ac27a0ec | 832 | handle_t *handle; |
617ba13b | 833 | struct ext4_iloc iloc; |
ac27a0ec DK |
834 | __u32 generation; |
835 | int err; | |
836 | ||
2e149670 | 837 | if (!inode_owner_or_capable(inode)) |
ac27a0ec | 838 | return -EPERM; |
42a74f20 | 839 | |
9aa5d32b | 840 | if (ext4_has_metadata_csum(inode->i_sb)) { |
814525f4 DW |
841 | ext4_warning(sb, "Setting inode version is not " |
842 | "supported with metadata_csum enabled."); | |
843 | return -ENOTTY; | |
844 | } | |
845 | ||
a561be71 | 846 | err = mnt_want_write_file(filp); |
42a74f20 DH |
847 | if (err) |
848 | return err; | |
849 | if (get_user(generation, (int __user *) arg)) { | |
850 | err = -EFAULT; | |
851 | goto setversion_out; | |
852 | } | |
ac27a0ec | 853 | |
5955102c | 854 | inode_lock(inode); |
9924a92a | 855 | handle = ext4_journal_start(inode, EXT4_HT_INODE, 1); |
42a74f20 DH |
856 | if (IS_ERR(handle)) { |
857 | err = PTR_ERR(handle); | |
6c2155b9 | 858 | goto unlock_out; |
42a74f20 | 859 | } |
617ba13b | 860 | err = ext4_reserve_inode_write(handle, inode, &iloc); |
ac27a0ec | 861 | if (err == 0) { |
eeca7ea1 | 862 | inode->i_ctime = current_time(inode); |
ac27a0ec | 863 | inode->i_generation = generation; |
617ba13b | 864 | err = ext4_mark_iloc_dirty(handle, inode, &iloc); |
ac27a0ec | 865 | } |
617ba13b | 866 | ext4_journal_stop(handle); |
6c2155b9 DH |
867 | |
868 | unlock_out: | |
5955102c | 869 | inode_unlock(inode); |
42a74f20 | 870 | setversion_out: |
2a79f17e | 871 | mnt_drop_write_file(filp); |
ac27a0ec DK |
872 | return err; |
873 | } | |
617ba13b MC |
874 | case EXT4_IOC_GROUP_EXTEND: { |
875 | ext4_fsblk_t n_blocks_count; | |
ac046f1d | 876 | int err, err2=0; |
ac27a0ec | 877 | |
8f82f840 YY |
878 | err = ext4_resize_begin(sb); |
879 | if (err) | |
880 | return err; | |
ac27a0ec | 881 | |
014a1770 DH |
882 | if (get_user(n_blocks_count, (__u32 __user *)arg)) { |
883 | err = -EFAULT; | |
884 | goto group_extend_out; | |
885 | } | |
ac27a0ec | 886 | |
e2b911c5 | 887 | if (ext4_has_feature_bigalloc(sb)) { |
bab08ab9 TT |
888 | ext4_msg(sb, KERN_ERR, |
889 | "Online resizing not supported with bigalloc"); | |
014a1770 DH |
890 | err = -EOPNOTSUPP; |
891 | goto group_extend_out; | |
bab08ab9 TT |
892 | } |
893 | ||
a561be71 | 894 | err = mnt_want_write_file(filp); |
42a74f20 | 895 | if (err) |
014a1770 | 896 | goto group_extend_out; |
42a74f20 | 897 | |
617ba13b | 898 | err = ext4_group_extend(sb, EXT4_SB(sb)->s_es, n_blocks_count); |
ac046f1d PT |
899 | if (EXT4_SB(sb)->s_journal) { |
900 | jbd2_journal_lock_updates(EXT4_SB(sb)->s_journal); | |
901 | err2 = jbd2_journal_flush(EXT4_SB(sb)->s_journal); | |
902 | jbd2_journal_unlock_updates(EXT4_SB(sb)->s_journal); | |
903 | } | |
7ffe1ea8 HK |
904 | if (err == 0) |
905 | err = err2; | |
2a79f17e | 906 | mnt_drop_write_file(filp); |
014a1770 | 907 | group_extend_out: |
8f82f840 | 908 | ext4_resize_end(sb); |
ac27a0ec DK |
909 | return err; |
910 | } | |
748de673 AF |
911 | |
912 | case EXT4_IOC_MOVE_EXT: { | |
913 | struct move_extent me; | |
2903ff01 AV |
914 | struct fd donor; |
915 | int err; | |
748de673 | 916 | |
4a58579b AF |
917 | if (!(filp->f_mode & FMODE_READ) || |
918 | !(filp->f_mode & FMODE_WRITE)) | |
919 | return -EBADF; | |
920 | ||
748de673 AF |
921 | if (copy_from_user(&me, |
922 | (struct move_extent __user *)arg, sizeof(me))) | |
923 | return -EFAULT; | |
4a58579b | 924 | me.moved_len = 0; |
748de673 | 925 | |
2903ff01 AV |
926 | donor = fdget(me.donor_fd); |
927 | if (!donor.file) | |
748de673 AF |
928 | return -EBADF; |
929 | ||
2903ff01 | 930 | if (!(donor.file->f_mode & FMODE_WRITE)) { |
4a58579b AF |
931 | err = -EBADF; |
932 | goto mext_out; | |
748de673 AF |
933 | } |
934 | ||
e2b911c5 | 935 | if (ext4_has_feature_bigalloc(sb)) { |
bab08ab9 TT |
936 | ext4_msg(sb, KERN_ERR, |
937 | "Online defrag not supported with bigalloc"); | |
399c9b86 AV |
938 | err = -EOPNOTSUPP; |
939 | goto mext_out; | |
73f34a5e RZ |
940 | } else if (IS_DAX(inode)) { |
941 | ext4_msg(sb, KERN_ERR, | |
942 | "Online defrag not supported with DAX"); | |
943 | err = -EOPNOTSUPP; | |
944 | goto mext_out; | |
bab08ab9 TT |
945 | } |
946 | ||
a561be71 | 947 | err = mnt_want_write_file(filp); |
4a58579b AF |
948 | if (err) |
949 | goto mext_out; | |
950 | ||
2903ff01 | 951 | err = ext4_move_extents(filp, donor.file, me.orig_start, |
748de673 | 952 | me.donor_start, me.len, &me.moved_len); |
2a79f17e | 953 | mnt_drop_write_file(filp); |
748de673 | 954 | |
60e6679e | 955 | if (copy_to_user((struct move_extent __user *)arg, |
c437b273 | 956 | &me, sizeof(me))) |
4a58579b AF |
957 | err = -EFAULT; |
958 | mext_out: | |
2903ff01 | 959 | fdput(donor); |
748de673 AF |
960 | return err; |
961 | } | |
962 | ||
617ba13b MC |
963 | case EXT4_IOC_GROUP_ADD: { |
964 | struct ext4_new_group_data input; | |
ac27a0ec | 965 | |
617ba13b | 966 | if (copy_from_user(&input, (struct ext4_new_group_input __user *)arg, |
e145b35b AV |
967 | sizeof(input))) |
968 | return -EFAULT; | |
42a74f20 | 969 | |
e145b35b | 970 | return ext4_ioctl_group_add(filp, &input); |
ac27a0ec DK |
971 | } |
972 | ||
c14c6fd5 | 973 | case EXT4_IOC_MIGRATE: |
2a43a878 AK |
974 | { |
975 | int err; | |
2e149670 | 976 | if (!inode_owner_or_capable(inode)) |
2a43a878 AK |
977 | return -EACCES; |
978 | ||
a561be71 | 979 | err = mnt_want_write_file(filp); |
2a43a878 AK |
980 | if (err) |
981 | return err; | |
982 | /* | |
983 | * inode_mutex prevent write and truncate on the file. | |
984 | * Read still goes through. We take i_data_sem in | |
985 | * ext4_ext_swap_inode_data before we switch the | |
986 | * inode format to prevent read. | |
987 | */ | |
5955102c | 988 | inode_lock((inode)); |
2a43a878 | 989 | err = ext4_ext_migrate(inode); |
5955102c | 990 | inode_unlock((inode)); |
2a79f17e | 991 | mnt_drop_write_file(filp); |
2a43a878 AK |
992 | return err; |
993 | } | |
c14c6fd5 | 994 | |
ccd2506b TT |
995 | case EXT4_IOC_ALLOC_DA_BLKS: |
996 | { | |
997 | int err; | |
2e149670 | 998 | if (!inode_owner_or_capable(inode)) |
ccd2506b TT |
999 | return -EACCES; |
1000 | ||
a561be71 | 1001 | err = mnt_want_write_file(filp); |
ccd2506b TT |
1002 | if (err) |
1003 | return err; | |
1004 | err = ext4_alloc_da_blocks(inode); | |
2a79f17e | 1005 | mnt_drop_write_file(filp); |
ccd2506b TT |
1006 | return err; |
1007 | } | |
1008 | ||
393d1d1d | 1009 | case EXT4_IOC_SWAP_BOOT: |
3e67cfad DM |
1010 | { |
1011 | int err; | |
393d1d1d DTB |
1012 | if (!(filp->f_mode & FMODE_WRITE)) |
1013 | return -EBADF; | |
3e67cfad DM |
1014 | err = mnt_want_write_file(filp); |
1015 | if (err) | |
1016 | return err; | |
1017 | err = swap_inode_boot_loader(sb, inode); | |
1018 | mnt_drop_write_file(filp); | |
1019 | return err; | |
1020 | } | |
393d1d1d | 1021 | |
19c5246d YY |
1022 | case EXT4_IOC_RESIZE_FS: { |
1023 | ext4_fsblk_t n_blocks_count; | |
19c5246d | 1024 | int err = 0, err2 = 0; |
7f511862 | 1025 | ext4_group_t o_group = EXT4_SB(sb)->s_groups_count; |
19c5246d | 1026 | |
19c5246d YY |
1027 | if (copy_from_user(&n_blocks_count, (__u64 __user *)arg, |
1028 | sizeof(__u64))) { | |
1029 | return -EFAULT; | |
1030 | } | |
1031 | ||
19c5246d YY |
1032 | err = ext4_resize_begin(sb); |
1033 | if (err) | |
1034 | return err; | |
1035 | ||
8cae6f71 | 1036 | err = mnt_want_write_file(filp); |
19c5246d YY |
1037 | if (err) |
1038 | goto resizefs_out; | |
1039 | ||
1040 | err = ext4_resize_fs(sb, n_blocks_count); | |
1041 | if (EXT4_SB(sb)->s_journal) { | |
1042 | jbd2_journal_lock_updates(EXT4_SB(sb)->s_journal); | |
1043 | err2 = jbd2_journal_flush(EXT4_SB(sb)->s_journal); | |
1044 | jbd2_journal_unlock_updates(EXT4_SB(sb)->s_journal); | |
1045 | } | |
1046 | if (err == 0) | |
1047 | err = err2; | |
8cae6f71 | 1048 | mnt_drop_write_file(filp); |
310a997f | 1049 | if (!err && (o_group < EXT4_SB(sb)->s_groups_count) && |
7f511862 TT |
1050 | ext4_has_group_desc_csum(sb) && |
1051 | test_opt(sb, INIT_INODE_TABLE)) | |
1052 | err = ext4_register_li_request(sb, o_group); | |
1053 | ||
19c5246d YY |
1054 | resizefs_out: |
1055 | ext4_resize_end(sb); | |
1056 | return err; | |
1057 | } | |
1058 | ||
e681c047 LC |
1059 | case FITRIM: |
1060 | { | |
41431792 | 1061 | struct request_queue *q = bdev_get_queue(sb->s_bdev); |
e681c047 LC |
1062 | struct fstrim_range range; |
1063 | int ret = 0; | |
1064 | ||
1065 | if (!capable(CAP_SYS_ADMIN)) | |
1066 | return -EPERM; | |
1067 | ||
41431792 LC |
1068 | if (!blk_queue_discard(q)) |
1069 | return -EOPNOTSUPP; | |
1070 | ||
18915b58 DW |
1071 | /* |
1072 | * We haven't replayed the journal, so we cannot use our | |
1073 | * block-bitmap-guided storage zapping commands. | |
1074 | */ | |
1075 | if (test_opt(sb, NOLOAD) && ext4_has_feature_journal(sb)) | |
1076 | return -EROFS; | |
1077 | ||
e6705f7c | 1078 | if (copy_from_user(&range, (struct fstrim_range __user *)arg, |
e681c047 LC |
1079 | sizeof(range))) |
1080 | return -EFAULT; | |
1081 | ||
5c2ed62f LC |
1082 | range.minlen = max((unsigned int)range.minlen, |
1083 | q->limits.discard_granularity); | |
e681c047 LC |
1084 | ret = ext4_trim_fs(sb, &range); |
1085 | if (ret < 0) | |
1086 | return ret; | |
1087 | ||
e6705f7c | 1088 | if (copy_to_user((struct fstrim_range __user *)arg, &range, |
e681c047 LC |
1089 | sizeof(range))) |
1090 | return -EFAULT; | |
1091 | ||
1092 | return 0; | |
1093 | } | |
7869a4a6 TT |
1094 | case EXT4_IOC_PRECACHE_EXTENTS: |
1095 | return ext4_ext_precache(inode); | |
9bd8212f | 1096 | |
db717d8e | 1097 | case EXT4_IOC_SET_ENCRYPTION_POLICY: |
9a200d07 RW |
1098 | if (!ext4_has_feature_encrypt(sb)) |
1099 | return -EOPNOTSUPP; | |
db717d8e | 1100 | return fscrypt_ioctl_set_policy(filp, (const void __user *)arg); |
9a200d07 | 1101 | |
9bd8212f | 1102 | case EXT4_IOC_GET_ENCRYPTION_PWSALT: { |
643fa961 | 1103 | #ifdef CONFIG_FS_ENCRYPTION |
9bd8212f MH |
1104 | int err, err2; |
1105 | struct ext4_sb_info *sbi = EXT4_SB(sb); | |
1106 | handle_t *handle; | |
1107 | ||
35997d1c | 1108 | if (!ext4_has_feature_encrypt(sb)) |
9bd8212f MH |
1109 | return -EOPNOTSUPP; |
1110 | if (uuid_is_zero(sbi->s_es->s_encrypt_pw_salt)) { | |
1111 | err = mnt_want_write_file(filp); | |
1112 | if (err) | |
1113 | return err; | |
1114 | handle = ext4_journal_start_sb(sb, EXT4_HT_MISC, 1); | |
1115 | if (IS_ERR(handle)) { | |
1116 | err = PTR_ERR(handle); | |
1117 | goto pwsalt_err_exit; | |
1118 | } | |
1119 | err = ext4_journal_get_write_access(handle, sbi->s_sbh); | |
1120 | if (err) | |
1121 | goto pwsalt_err_journal; | |
1122 | generate_random_uuid(sbi->s_es->s_encrypt_pw_salt); | |
1123 | err = ext4_handle_dirty_metadata(handle, NULL, | |
1124 | sbi->s_sbh); | |
1125 | pwsalt_err_journal: | |
1126 | err2 = ext4_journal_stop(handle); | |
1127 | if (err2 && !err) | |
1128 | err = err2; | |
1129 | pwsalt_err_exit: | |
1130 | mnt_drop_write_file(filp); | |
1131 | if (err) | |
1132 | return err; | |
1133 | } | |
b4ab9e29 FF |
1134 | if (copy_to_user((void __user *) arg, |
1135 | sbi->s_es->s_encrypt_pw_salt, 16)) | |
9bd8212f MH |
1136 | return -EFAULT; |
1137 | return 0; | |
ba679017 EB |
1138 | #else |
1139 | return -EOPNOTSUPP; | |
1140 | #endif | |
9bd8212f | 1141 | } |
db717d8e | 1142 | case EXT4_IOC_GET_ENCRYPTION_POLICY: |
0642ea24 CY |
1143 | if (!ext4_has_feature_encrypt(sb)) |
1144 | return -EOPNOTSUPP; | |
db717d8e | 1145 | return fscrypt_ioctl_get_policy(filp, (void __user *)arg); |
9bd8212f | 1146 | |
29b3692e EB |
1147 | case FS_IOC_GET_ENCRYPTION_POLICY_EX: |
1148 | if (!ext4_has_feature_encrypt(sb)) | |
1149 | return -EOPNOTSUPP; | |
1150 | return fscrypt_ioctl_get_policy_ex(filp, (void __user *)arg); | |
1151 | ||
1152 | case FS_IOC_ADD_ENCRYPTION_KEY: | |
1153 | if (!ext4_has_feature_encrypt(sb)) | |
1154 | return -EOPNOTSUPP; | |
1155 | return fscrypt_ioctl_add_key(filp, (void __user *)arg); | |
1156 | ||
1157 | case FS_IOC_REMOVE_ENCRYPTION_KEY: | |
1158 | if (!ext4_has_feature_encrypt(sb)) | |
1159 | return -EOPNOTSUPP; | |
1160 | return fscrypt_ioctl_remove_key(filp, (void __user *)arg); | |
1161 | ||
1162 | case FS_IOC_REMOVE_ENCRYPTION_KEY_ALL_USERS: | |
1163 | if (!ext4_has_feature_encrypt(sb)) | |
1164 | return -EOPNOTSUPP; | |
1165 | return fscrypt_ioctl_remove_key_all_users(filp, | |
1166 | (void __user *)arg); | |
1167 | case FS_IOC_GET_ENCRYPTION_KEY_STATUS: | |
1168 | if (!ext4_has_feature_encrypt(sb)) | |
1169 | return -EOPNOTSUPP; | |
1170 | return fscrypt_ioctl_get_key_status(filp, (void __user *)arg); | |
1171 | ||
7ec9f3b4 EB |
1172 | case FS_IOC_GET_ENCRYPTION_NONCE: |
1173 | if (!ext4_has_feature_encrypt(sb)) | |
1174 | return -EOPNOTSUPP; | |
1175 | return fscrypt_ioctl_get_nonce(filp, (void __user *)arg); | |
1176 | ||
b0c013e2 TT |
1177 | case EXT4_IOC_CLEAR_ES_CACHE: |
1178 | { | |
1179 | if (!inode_owner_or_capable(inode)) | |
1180 | return -EACCES; | |
1181 | ext4_clear_inode_es(inode); | |
1182 | return 0; | |
1183 | } | |
1184 | ||
1ad3ea6e TT |
1185 | case EXT4_IOC_GETSTATE: |
1186 | { | |
1187 | __u32 state = 0; | |
1188 | ||
1189 | if (ext4_test_inode_state(inode, EXT4_STATE_EXT_PRECACHED)) | |
1190 | state |= EXT4_STATE_FLAG_EXT_PRECACHED; | |
1191 | if (ext4_test_inode_state(inode, EXT4_STATE_NEW)) | |
1192 | state |= EXT4_STATE_FLAG_NEW; | |
1193 | if (ext4_test_inode_state(inode, EXT4_STATE_NEWENTRY)) | |
1194 | state |= EXT4_STATE_FLAG_NEWENTRY; | |
1195 | if (ext4_test_inode_state(inode, EXT4_STATE_DA_ALLOC_CLOSE)) | |
1196 | state |= EXT4_STATE_FLAG_DA_ALLOC_CLOSE; | |
1197 | ||
1198 | return put_user(state, (__u32 __user *) arg); | |
1199 | } | |
1200 | ||
bb5835ed TT |
1201 | case EXT4_IOC_GET_ES_CACHE: |
1202 | return ext4_ioctl_get_es_cache(filp, arg); | |
1203 | ||
9b7365fc LX |
1204 | case EXT4_IOC_FSGETXATTR: |
1205 | { | |
1206 | struct fsxattr fa; | |
1207 | ||
7b0e492e | 1208 | ext4_fill_fsxattr(inode, &fa); |
9b7365fc LX |
1209 | |
1210 | if (copy_to_user((struct fsxattr __user *)arg, | |
1211 | &fa, sizeof(fa))) | |
1212 | return -EFAULT; | |
1213 | return 0; | |
1214 | } | |
1215 | case EXT4_IOC_FSSETXATTR: | |
1216 | { | |
7b0e492e | 1217 | struct fsxattr fa, old_fa; |
9b7365fc LX |
1218 | int err; |
1219 | ||
1220 | if (copy_from_user(&fa, (struct fsxattr __user *)arg, | |
1221 | sizeof(fa))) | |
1222 | return -EFAULT; | |
1223 | ||
1224 | /* Make sure caller has proper permission */ | |
1225 | if (!inode_owner_or_capable(inode)) | |
1226 | return -EACCES; | |
1227 | ||
d14e7683 JK |
1228 | if (fa.fsx_xflags & ~EXT4_SUPPORTED_FS_XFLAGS) |
1229 | return -EOPNOTSUPP; | |
1230 | ||
1231 | flags = ext4_xflags_to_iflags(fa.fsx_xflags); | |
1232 | if (ext4_mask_flags(inode->i_mode, flags) != flags) | |
1233 | return -EOPNOTSUPP; | |
1234 | ||
9b7365fc LX |
1235 | err = mnt_want_write_file(filp); |
1236 | if (err) | |
1237 | return err; | |
1238 | ||
5955102c | 1239 | inode_lock(inode); |
7b0e492e | 1240 | ext4_fill_fsxattr(inode, &old_fa); |
7b0e492e | 1241 | err = vfs_ioc_fssetxattr_check(inode, &old_fa, &fa); |
dc7ac6c4 WS |
1242 | if (err) |
1243 | goto out; | |
9b7365fc LX |
1244 | flags = (ei->i_flags & ~EXT4_FL_XFLAG_VISIBLE) | |
1245 | (flags & EXT4_FL_XFLAG_VISIBLE); | |
2e538403 DW |
1246 | err = ext4_ioctl_check_immutable(inode, fa.fsx_projid, flags); |
1247 | if (err) | |
1248 | goto out; | |
9b7365fc | 1249 | err = ext4_ioctl_setflags(inode, flags); |
9b7365fc | 1250 | if (err) |
dc7ac6c4 | 1251 | goto out; |
9b7365fc | 1252 | err = ext4_ioctl_setproject(filp, fa.fsx_projid); |
dc7ac6c4 WS |
1253 | out: |
1254 | inode_unlock(inode); | |
1255 | mnt_drop_write_file(filp); | |
1256 | return err; | |
9b7365fc | 1257 | } |
e9be2ac7 TT |
1258 | case EXT4_IOC_SHUTDOWN: |
1259 | return ext4_shutdown(sb, arg); | |
c93d8f88 EB |
1260 | |
1261 | case FS_IOC_ENABLE_VERITY: | |
1262 | if (!ext4_has_feature_verity(sb)) | |
1263 | return -EOPNOTSUPP; | |
1264 | return fsverity_ioctl_enable(filp, (const void __user *)arg); | |
1265 | ||
1266 | case FS_IOC_MEASURE_VERITY: | |
1267 | if (!ext4_has_feature_verity(sb)) | |
1268 | return -EOPNOTSUPP; | |
1269 | return fsverity_ioctl_measure(filp, (void __user *)arg); | |
1270 | ||
ac27a0ec DK |
1271 | default: |
1272 | return -ENOTTY; | |
1273 | } | |
1274 | } | |
1275 | ||
1276 | #ifdef CONFIG_COMPAT | |
617ba13b | 1277 | long ext4_compat_ioctl(struct file *file, unsigned int cmd, unsigned long arg) |
ac27a0ec | 1278 | { |
ac27a0ec DK |
1279 | /* These are just misnamed, they actually get/put from/to user an int */ |
1280 | switch (cmd) { | |
617ba13b MC |
1281 | case EXT4_IOC32_GETFLAGS: |
1282 | cmd = EXT4_IOC_GETFLAGS; | |
ac27a0ec | 1283 | break; |
617ba13b MC |
1284 | case EXT4_IOC32_SETFLAGS: |
1285 | cmd = EXT4_IOC_SETFLAGS; | |
ac27a0ec | 1286 | break; |
617ba13b MC |
1287 | case EXT4_IOC32_GETVERSION: |
1288 | cmd = EXT4_IOC_GETVERSION; | |
ac27a0ec | 1289 | break; |
617ba13b MC |
1290 | case EXT4_IOC32_SETVERSION: |
1291 | cmd = EXT4_IOC_SETVERSION; | |
ac27a0ec | 1292 | break; |
617ba13b MC |
1293 | case EXT4_IOC32_GROUP_EXTEND: |
1294 | cmd = EXT4_IOC_GROUP_EXTEND; | |
ac27a0ec | 1295 | break; |
617ba13b MC |
1296 | case EXT4_IOC32_GETVERSION_OLD: |
1297 | cmd = EXT4_IOC_GETVERSION_OLD; | |
ac27a0ec | 1298 | break; |
617ba13b MC |
1299 | case EXT4_IOC32_SETVERSION_OLD: |
1300 | cmd = EXT4_IOC_SETVERSION_OLD; | |
ac27a0ec | 1301 | break; |
617ba13b MC |
1302 | case EXT4_IOC32_GETRSVSZ: |
1303 | cmd = EXT4_IOC_GETRSVSZ; | |
ac27a0ec | 1304 | break; |
617ba13b MC |
1305 | case EXT4_IOC32_SETRSVSZ: |
1306 | cmd = EXT4_IOC_SETRSVSZ; | |
ac27a0ec | 1307 | break; |
4d92dc0f BH |
1308 | case EXT4_IOC32_GROUP_ADD: { |
1309 | struct compat_ext4_new_group_input __user *uinput; | |
e145b35b | 1310 | struct ext4_new_group_data input; |
4d92dc0f BH |
1311 | int err; |
1312 | ||
1313 | uinput = compat_ptr(arg); | |
1314 | err = get_user(input.group, &uinput->group); | |
1315 | err |= get_user(input.block_bitmap, &uinput->block_bitmap); | |
1316 | err |= get_user(input.inode_bitmap, &uinput->inode_bitmap); | |
1317 | err |= get_user(input.inode_table, &uinput->inode_table); | |
1318 | err |= get_user(input.blocks_count, &uinput->blocks_count); | |
1319 | err |= get_user(input.reserved_blocks, | |
1320 | &uinput->reserved_blocks); | |
1321 | if (err) | |
1322 | return -EFAULT; | |
e145b35b | 1323 | return ext4_ioctl_group_add(file, &input); |
4d92dc0f | 1324 | } |
b684b2ee | 1325 | case EXT4_IOC_MOVE_EXT: |
19c5246d | 1326 | case EXT4_IOC_RESIZE_FS: |
314999dc | 1327 | case FITRIM: |
7869a4a6 | 1328 | case EXT4_IOC_PRECACHE_EXTENTS: |
9bd8212f MH |
1329 | case EXT4_IOC_SET_ENCRYPTION_POLICY: |
1330 | case EXT4_IOC_GET_ENCRYPTION_PWSALT: | |
1331 | case EXT4_IOC_GET_ENCRYPTION_POLICY: | |
29b3692e EB |
1332 | case FS_IOC_GET_ENCRYPTION_POLICY_EX: |
1333 | case FS_IOC_ADD_ENCRYPTION_KEY: | |
1334 | case FS_IOC_REMOVE_ENCRYPTION_KEY: | |
1335 | case FS_IOC_REMOVE_ENCRYPTION_KEY_ALL_USERS: | |
1336 | case FS_IOC_GET_ENCRYPTION_KEY_STATUS: | |
7ec9f3b4 | 1337 | case FS_IOC_GET_ENCRYPTION_NONCE: |
e9be2ac7 | 1338 | case EXT4_IOC_SHUTDOWN: |
0c9ec4be | 1339 | case FS_IOC_GETFSMAP: |
c93d8f88 EB |
1340 | case FS_IOC_ENABLE_VERITY: |
1341 | case FS_IOC_MEASURE_VERITY: | |
b0c013e2 | 1342 | case EXT4_IOC_CLEAR_ES_CACHE: |
1ad3ea6e | 1343 | case EXT4_IOC_GETSTATE: |
bb5835ed | 1344 | case EXT4_IOC_GET_ES_CACHE: |
a54d8d34 MC |
1345 | case EXT4_IOC_FSGETXATTR: |
1346 | case EXT4_IOC_FSSETXATTR: | |
b684b2ee | 1347 | break; |
ac27a0ec DK |
1348 | default: |
1349 | return -ENOIOCTLCMD; | |
1350 | } | |
5cdd7b2d | 1351 | return ext4_ioctl(file, cmd, (unsigned long) compat_ptr(arg)); |
ac27a0ec DK |
1352 | } |
1353 | #endif |