1*4882a593Smuzhiyun // SPDX-License-Identifier: GPL-2.0
2*4882a593Smuzhiyun /*
3*4882a593Smuzhiyun * linux/fs/ext2/xattr.c
4*4882a593Smuzhiyun *
5*4882a593Smuzhiyun * Copyright (C) 2001-2003 Andreas Gruenbacher <agruen@suse.de>
6*4882a593Smuzhiyun *
7*4882a593Smuzhiyun * Fix by Harrison Xing <harrison@mountainviewdata.com>.
8*4882a593Smuzhiyun * Extended attributes for symlinks and special files added per
9*4882a593Smuzhiyun * suggestion of Luka Renko <luka.renko@hermes.si>.
10*4882a593Smuzhiyun * xattr consolidation Copyright (c) 2004 James Morris <jmorris@redhat.com>,
11*4882a593Smuzhiyun * Red Hat Inc.
12*4882a593Smuzhiyun *
13*4882a593Smuzhiyun */
14*4882a593Smuzhiyun
15*4882a593Smuzhiyun /*
16*4882a593Smuzhiyun * Extended attributes are stored on disk blocks allocated outside of
17*4882a593Smuzhiyun * any inode. The i_file_acl field is then made to point to this allocated
18*4882a593Smuzhiyun * block. If all extended attributes of an inode are identical, these
19*4882a593Smuzhiyun * inodes may share the same extended attribute block. Such situations
20*4882a593Smuzhiyun * are automatically detected by keeping a cache of recent attribute block
21*4882a593Smuzhiyun * numbers and hashes over the block's contents in memory.
22*4882a593Smuzhiyun *
23*4882a593Smuzhiyun *
24*4882a593Smuzhiyun * Extended attribute block layout:
25*4882a593Smuzhiyun *
26*4882a593Smuzhiyun * +------------------+
27*4882a593Smuzhiyun * | header |
28*4882a593Smuzhiyun * | entry 1 | |
29*4882a593Smuzhiyun * | entry 2 | | growing downwards
30*4882a593Smuzhiyun * | entry 3 | v
31*4882a593Smuzhiyun * | four null bytes |
32*4882a593Smuzhiyun * | . . . |
33*4882a593Smuzhiyun * | value 1 | ^
34*4882a593Smuzhiyun * | value 3 | | growing upwards
35*4882a593Smuzhiyun * | value 2 | |
36*4882a593Smuzhiyun * +------------------+
37*4882a593Smuzhiyun *
38*4882a593Smuzhiyun * The block header is followed by multiple entry descriptors. These entry
39*4882a593Smuzhiyun * descriptors are variable in size, and aligned to EXT2_XATTR_PAD
40*4882a593Smuzhiyun * byte boundaries. The entry descriptors are sorted by attribute name,
41*4882a593Smuzhiyun * so that two extended attribute blocks can be compared efficiently.
42*4882a593Smuzhiyun *
43*4882a593Smuzhiyun * Attribute values are aligned to the end of the block, stored in
44*4882a593Smuzhiyun * no specific order. They are also padded to EXT2_XATTR_PAD byte
45*4882a593Smuzhiyun * boundaries. No additional gaps are left between them.
46*4882a593Smuzhiyun *
47*4882a593Smuzhiyun * Locking strategy
48*4882a593Smuzhiyun * ----------------
49*4882a593Smuzhiyun * EXT2_I(inode)->i_file_acl is protected by EXT2_I(inode)->xattr_sem.
50*4882a593Smuzhiyun * EA blocks are only changed if they are exclusive to an inode, so
51*4882a593Smuzhiyun * holding xattr_sem also means that nothing but the EA block's reference
52*4882a593Smuzhiyun * count will change. Multiple writers to an EA block are synchronized
53*4882a593Smuzhiyun * by the bh lock. No more than a single bh lock is held at any time
54*4882a593Smuzhiyun * to avoid deadlocks.
55*4882a593Smuzhiyun */
56*4882a593Smuzhiyun
57*4882a593Smuzhiyun #include <linux/buffer_head.h>
58*4882a593Smuzhiyun #include <linux/init.h>
59*4882a593Smuzhiyun #include <linux/printk.h>
60*4882a593Smuzhiyun #include <linux/slab.h>
61*4882a593Smuzhiyun #include <linux/mbcache.h>
62*4882a593Smuzhiyun #include <linux/quotaops.h>
63*4882a593Smuzhiyun #include <linux/rwsem.h>
64*4882a593Smuzhiyun #include <linux/security.h>
65*4882a593Smuzhiyun #include "ext2.h"
66*4882a593Smuzhiyun #include "xattr.h"
67*4882a593Smuzhiyun #include "acl.h"
68*4882a593Smuzhiyun
69*4882a593Smuzhiyun #define HDR(bh) ((struct ext2_xattr_header *)((bh)->b_data))
70*4882a593Smuzhiyun #define ENTRY(ptr) ((struct ext2_xattr_entry *)(ptr))
71*4882a593Smuzhiyun #define FIRST_ENTRY(bh) ENTRY(HDR(bh)+1)
72*4882a593Smuzhiyun #define IS_LAST_ENTRY(entry) (*(__u32 *)(entry) == 0)
73*4882a593Smuzhiyun
74*4882a593Smuzhiyun #ifdef EXT2_XATTR_DEBUG
75*4882a593Smuzhiyun # define ea_idebug(inode, f...) do { \
76*4882a593Smuzhiyun printk(KERN_DEBUG "inode %s:%ld: ", \
77*4882a593Smuzhiyun inode->i_sb->s_id, inode->i_ino); \
78*4882a593Smuzhiyun printk(f); \
79*4882a593Smuzhiyun printk("\n"); \
80*4882a593Smuzhiyun } while (0)
81*4882a593Smuzhiyun # define ea_bdebug(bh, f...) do { \
82*4882a593Smuzhiyun printk(KERN_DEBUG "block %pg:%lu: ", \
83*4882a593Smuzhiyun bh->b_bdev, (unsigned long) bh->b_blocknr); \
84*4882a593Smuzhiyun printk(f); \
85*4882a593Smuzhiyun printk("\n"); \
86*4882a593Smuzhiyun } while (0)
87*4882a593Smuzhiyun #else
88*4882a593Smuzhiyun # define ea_idebug(inode, f...) no_printk(f)
89*4882a593Smuzhiyun # define ea_bdebug(bh, f...) no_printk(f)
90*4882a593Smuzhiyun #endif
91*4882a593Smuzhiyun
92*4882a593Smuzhiyun static int ext2_xattr_set2(struct inode *, struct buffer_head *,
93*4882a593Smuzhiyun struct ext2_xattr_header *);
94*4882a593Smuzhiyun
95*4882a593Smuzhiyun static int ext2_xattr_cache_insert(struct mb_cache *, struct buffer_head *);
96*4882a593Smuzhiyun static struct buffer_head *ext2_xattr_cache_find(struct inode *,
97*4882a593Smuzhiyun struct ext2_xattr_header *);
98*4882a593Smuzhiyun static void ext2_xattr_rehash(struct ext2_xattr_header *,
99*4882a593Smuzhiyun struct ext2_xattr_entry *);
100*4882a593Smuzhiyun
101*4882a593Smuzhiyun static const struct xattr_handler *ext2_xattr_handler_map[] = {
102*4882a593Smuzhiyun [EXT2_XATTR_INDEX_USER] = &ext2_xattr_user_handler,
103*4882a593Smuzhiyun #ifdef CONFIG_EXT2_FS_POSIX_ACL
104*4882a593Smuzhiyun [EXT2_XATTR_INDEX_POSIX_ACL_ACCESS] = &posix_acl_access_xattr_handler,
105*4882a593Smuzhiyun [EXT2_XATTR_INDEX_POSIX_ACL_DEFAULT] = &posix_acl_default_xattr_handler,
106*4882a593Smuzhiyun #endif
107*4882a593Smuzhiyun [EXT2_XATTR_INDEX_TRUSTED] = &ext2_xattr_trusted_handler,
108*4882a593Smuzhiyun #ifdef CONFIG_EXT2_FS_SECURITY
109*4882a593Smuzhiyun [EXT2_XATTR_INDEX_SECURITY] = &ext2_xattr_security_handler,
110*4882a593Smuzhiyun #endif
111*4882a593Smuzhiyun };
112*4882a593Smuzhiyun
113*4882a593Smuzhiyun const struct xattr_handler *ext2_xattr_handlers[] = {
114*4882a593Smuzhiyun &ext2_xattr_user_handler,
115*4882a593Smuzhiyun &ext2_xattr_trusted_handler,
116*4882a593Smuzhiyun #ifdef CONFIG_EXT2_FS_POSIX_ACL
117*4882a593Smuzhiyun &posix_acl_access_xattr_handler,
118*4882a593Smuzhiyun &posix_acl_default_xattr_handler,
119*4882a593Smuzhiyun #endif
120*4882a593Smuzhiyun #ifdef CONFIG_EXT2_FS_SECURITY
121*4882a593Smuzhiyun &ext2_xattr_security_handler,
122*4882a593Smuzhiyun #endif
123*4882a593Smuzhiyun NULL
124*4882a593Smuzhiyun };
125*4882a593Smuzhiyun
126*4882a593Smuzhiyun #define EA_BLOCK_CACHE(inode) (EXT2_SB(inode->i_sb)->s_ea_block_cache)
127*4882a593Smuzhiyun
128*4882a593Smuzhiyun static inline const struct xattr_handler *
ext2_xattr_handler(int name_index)129*4882a593Smuzhiyun ext2_xattr_handler(int name_index)
130*4882a593Smuzhiyun {
131*4882a593Smuzhiyun const struct xattr_handler *handler = NULL;
132*4882a593Smuzhiyun
133*4882a593Smuzhiyun if (name_index > 0 && name_index < ARRAY_SIZE(ext2_xattr_handler_map))
134*4882a593Smuzhiyun handler = ext2_xattr_handler_map[name_index];
135*4882a593Smuzhiyun return handler;
136*4882a593Smuzhiyun }
137*4882a593Smuzhiyun
138*4882a593Smuzhiyun static bool
ext2_xattr_header_valid(struct ext2_xattr_header * header)139*4882a593Smuzhiyun ext2_xattr_header_valid(struct ext2_xattr_header *header)
140*4882a593Smuzhiyun {
141*4882a593Smuzhiyun if (header->h_magic != cpu_to_le32(EXT2_XATTR_MAGIC) ||
142*4882a593Smuzhiyun header->h_blocks != cpu_to_le32(1))
143*4882a593Smuzhiyun return false;
144*4882a593Smuzhiyun
145*4882a593Smuzhiyun return true;
146*4882a593Smuzhiyun }
147*4882a593Smuzhiyun
148*4882a593Smuzhiyun static bool
ext2_xattr_entry_valid(struct ext2_xattr_entry * entry,char * end,size_t end_offs)149*4882a593Smuzhiyun ext2_xattr_entry_valid(struct ext2_xattr_entry *entry,
150*4882a593Smuzhiyun char *end, size_t end_offs)
151*4882a593Smuzhiyun {
152*4882a593Smuzhiyun struct ext2_xattr_entry *next;
153*4882a593Smuzhiyun size_t size;
154*4882a593Smuzhiyun
155*4882a593Smuzhiyun next = EXT2_XATTR_NEXT(entry);
156*4882a593Smuzhiyun if ((char *)next >= end)
157*4882a593Smuzhiyun return false;
158*4882a593Smuzhiyun
159*4882a593Smuzhiyun if (entry->e_value_block != 0)
160*4882a593Smuzhiyun return false;
161*4882a593Smuzhiyun
162*4882a593Smuzhiyun size = le32_to_cpu(entry->e_value_size);
163*4882a593Smuzhiyun if (size > end_offs ||
164*4882a593Smuzhiyun le16_to_cpu(entry->e_value_offs) + size > end_offs)
165*4882a593Smuzhiyun return false;
166*4882a593Smuzhiyun
167*4882a593Smuzhiyun return true;
168*4882a593Smuzhiyun }
169*4882a593Smuzhiyun
170*4882a593Smuzhiyun static int
ext2_xattr_cmp_entry(int name_index,size_t name_len,const char * name,struct ext2_xattr_entry * entry)171*4882a593Smuzhiyun ext2_xattr_cmp_entry(int name_index, size_t name_len, const char *name,
172*4882a593Smuzhiyun struct ext2_xattr_entry *entry)
173*4882a593Smuzhiyun {
174*4882a593Smuzhiyun int cmp;
175*4882a593Smuzhiyun
176*4882a593Smuzhiyun cmp = name_index - entry->e_name_index;
177*4882a593Smuzhiyun if (!cmp)
178*4882a593Smuzhiyun cmp = name_len - entry->e_name_len;
179*4882a593Smuzhiyun if (!cmp)
180*4882a593Smuzhiyun cmp = memcmp(name, entry->e_name, name_len);
181*4882a593Smuzhiyun
182*4882a593Smuzhiyun return cmp;
183*4882a593Smuzhiyun }
184*4882a593Smuzhiyun
185*4882a593Smuzhiyun /*
186*4882a593Smuzhiyun * ext2_xattr_get()
187*4882a593Smuzhiyun *
188*4882a593Smuzhiyun * Copy an extended attribute into the buffer
189*4882a593Smuzhiyun * provided, or compute the buffer size required.
190*4882a593Smuzhiyun * Buffer is NULL to compute the size of the buffer required.
191*4882a593Smuzhiyun *
192*4882a593Smuzhiyun * Returns a negative error number on failure, or the number of bytes
193*4882a593Smuzhiyun * used / required on success.
194*4882a593Smuzhiyun */
195*4882a593Smuzhiyun int
ext2_xattr_get(struct inode * inode,int name_index,const char * name,void * buffer,size_t buffer_size)196*4882a593Smuzhiyun ext2_xattr_get(struct inode *inode, int name_index, const char *name,
197*4882a593Smuzhiyun void *buffer, size_t buffer_size)
198*4882a593Smuzhiyun {
199*4882a593Smuzhiyun struct buffer_head *bh = NULL;
200*4882a593Smuzhiyun struct ext2_xattr_entry *entry;
201*4882a593Smuzhiyun size_t name_len, size;
202*4882a593Smuzhiyun char *end;
203*4882a593Smuzhiyun int error, not_found;
204*4882a593Smuzhiyun struct mb_cache *ea_block_cache = EA_BLOCK_CACHE(inode);
205*4882a593Smuzhiyun
206*4882a593Smuzhiyun ea_idebug(inode, "name=%d.%s, buffer=%p, buffer_size=%ld",
207*4882a593Smuzhiyun name_index, name, buffer, (long)buffer_size);
208*4882a593Smuzhiyun
209*4882a593Smuzhiyun if (name == NULL)
210*4882a593Smuzhiyun return -EINVAL;
211*4882a593Smuzhiyun name_len = strlen(name);
212*4882a593Smuzhiyun if (name_len > 255)
213*4882a593Smuzhiyun return -ERANGE;
214*4882a593Smuzhiyun
215*4882a593Smuzhiyun down_read(&EXT2_I(inode)->xattr_sem);
216*4882a593Smuzhiyun error = -ENODATA;
217*4882a593Smuzhiyun if (!EXT2_I(inode)->i_file_acl)
218*4882a593Smuzhiyun goto cleanup;
219*4882a593Smuzhiyun ea_idebug(inode, "reading block %d", EXT2_I(inode)->i_file_acl);
220*4882a593Smuzhiyun bh = sb_bread(inode->i_sb, EXT2_I(inode)->i_file_acl);
221*4882a593Smuzhiyun error = -EIO;
222*4882a593Smuzhiyun if (!bh)
223*4882a593Smuzhiyun goto cleanup;
224*4882a593Smuzhiyun ea_bdebug(bh, "b_count=%d, refcount=%d",
225*4882a593Smuzhiyun atomic_read(&(bh->b_count)), le32_to_cpu(HDR(bh)->h_refcount));
226*4882a593Smuzhiyun end = bh->b_data + bh->b_size;
227*4882a593Smuzhiyun if (!ext2_xattr_header_valid(HDR(bh))) {
228*4882a593Smuzhiyun bad_block:
229*4882a593Smuzhiyun ext2_error(inode->i_sb, "ext2_xattr_get",
230*4882a593Smuzhiyun "inode %ld: bad block %d", inode->i_ino,
231*4882a593Smuzhiyun EXT2_I(inode)->i_file_acl);
232*4882a593Smuzhiyun error = -EIO;
233*4882a593Smuzhiyun goto cleanup;
234*4882a593Smuzhiyun }
235*4882a593Smuzhiyun
236*4882a593Smuzhiyun /* find named attribute */
237*4882a593Smuzhiyun entry = FIRST_ENTRY(bh);
238*4882a593Smuzhiyun while (!IS_LAST_ENTRY(entry)) {
239*4882a593Smuzhiyun if (!ext2_xattr_entry_valid(entry, end,
240*4882a593Smuzhiyun inode->i_sb->s_blocksize))
241*4882a593Smuzhiyun goto bad_block;
242*4882a593Smuzhiyun
243*4882a593Smuzhiyun not_found = ext2_xattr_cmp_entry(name_index, name_len, name,
244*4882a593Smuzhiyun entry);
245*4882a593Smuzhiyun if (!not_found)
246*4882a593Smuzhiyun goto found;
247*4882a593Smuzhiyun if (not_found < 0)
248*4882a593Smuzhiyun break;
249*4882a593Smuzhiyun
250*4882a593Smuzhiyun entry = EXT2_XATTR_NEXT(entry);
251*4882a593Smuzhiyun }
252*4882a593Smuzhiyun if (ext2_xattr_cache_insert(ea_block_cache, bh))
253*4882a593Smuzhiyun ea_idebug(inode, "cache insert failed");
254*4882a593Smuzhiyun error = -ENODATA;
255*4882a593Smuzhiyun goto cleanup;
256*4882a593Smuzhiyun found:
257*4882a593Smuzhiyun size = le32_to_cpu(entry->e_value_size);
258*4882a593Smuzhiyun if (ext2_xattr_cache_insert(ea_block_cache, bh))
259*4882a593Smuzhiyun ea_idebug(inode, "cache insert failed");
260*4882a593Smuzhiyun if (buffer) {
261*4882a593Smuzhiyun error = -ERANGE;
262*4882a593Smuzhiyun if (size > buffer_size)
263*4882a593Smuzhiyun goto cleanup;
264*4882a593Smuzhiyun /* return value of attribute */
265*4882a593Smuzhiyun memcpy(buffer, bh->b_data + le16_to_cpu(entry->e_value_offs),
266*4882a593Smuzhiyun size);
267*4882a593Smuzhiyun }
268*4882a593Smuzhiyun error = size;
269*4882a593Smuzhiyun
270*4882a593Smuzhiyun cleanup:
271*4882a593Smuzhiyun brelse(bh);
272*4882a593Smuzhiyun up_read(&EXT2_I(inode)->xattr_sem);
273*4882a593Smuzhiyun
274*4882a593Smuzhiyun return error;
275*4882a593Smuzhiyun }
276*4882a593Smuzhiyun
277*4882a593Smuzhiyun /*
278*4882a593Smuzhiyun * ext2_xattr_list()
279*4882a593Smuzhiyun *
280*4882a593Smuzhiyun * Copy a list of attribute names into the buffer
281*4882a593Smuzhiyun * provided, or compute the buffer size required.
282*4882a593Smuzhiyun * Buffer is NULL to compute the size of the buffer required.
283*4882a593Smuzhiyun *
284*4882a593Smuzhiyun * Returns a negative error number on failure, or the number of bytes
285*4882a593Smuzhiyun * used / required on success.
286*4882a593Smuzhiyun */
287*4882a593Smuzhiyun static int
ext2_xattr_list(struct dentry * dentry,char * buffer,size_t buffer_size)288*4882a593Smuzhiyun ext2_xattr_list(struct dentry *dentry, char *buffer, size_t buffer_size)
289*4882a593Smuzhiyun {
290*4882a593Smuzhiyun struct inode *inode = d_inode(dentry);
291*4882a593Smuzhiyun struct buffer_head *bh = NULL;
292*4882a593Smuzhiyun struct ext2_xattr_entry *entry;
293*4882a593Smuzhiyun char *end;
294*4882a593Smuzhiyun size_t rest = buffer_size;
295*4882a593Smuzhiyun int error;
296*4882a593Smuzhiyun struct mb_cache *ea_block_cache = EA_BLOCK_CACHE(inode);
297*4882a593Smuzhiyun
298*4882a593Smuzhiyun ea_idebug(inode, "buffer=%p, buffer_size=%ld",
299*4882a593Smuzhiyun buffer, (long)buffer_size);
300*4882a593Smuzhiyun
301*4882a593Smuzhiyun down_read(&EXT2_I(inode)->xattr_sem);
302*4882a593Smuzhiyun error = 0;
303*4882a593Smuzhiyun if (!EXT2_I(inode)->i_file_acl)
304*4882a593Smuzhiyun goto cleanup;
305*4882a593Smuzhiyun ea_idebug(inode, "reading block %d", EXT2_I(inode)->i_file_acl);
306*4882a593Smuzhiyun bh = sb_bread(inode->i_sb, EXT2_I(inode)->i_file_acl);
307*4882a593Smuzhiyun error = -EIO;
308*4882a593Smuzhiyun if (!bh)
309*4882a593Smuzhiyun goto cleanup;
310*4882a593Smuzhiyun ea_bdebug(bh, "b_count=%d, refcount=%d",
311*4882a593Smuzhiyun atomic_read(&(bh->b_count)), le32_to_cpu(HDR(bh)->h_refcount));
312*4882a593Smuzhiyun end = bh->b_data + bh->b_size;
313*4882a593Smuzhiyun if (!ext2_xattr_header_valid(HDR(bh))) {
314*4882a593Smuzhiyun bad_block:
315*4882a593Smuzhiyun ext2_error(inode->i_sb, "ext2_xattr_list",
316*4882a593Smuzhiyun "inode %ld: bad block %d", inode->i_ino,
317*4882a593Smuzhiyun EXT2_I(inode)->i_file_acl);
318*4882a593Smuzhiyun error = -EIO;
319*4882a593Smuzhiyun goto cleanup;
320*4882a593Smuzhiyun }
321*4882a593Smuzhiyun
322*4882a593Smuzhiyun /* check the on-disk data structure */
323*4882a593Smuzhiyun entry = FIRST_ENTRY(bh);
324*4882a593Smuzhiyun while (!IS_LAST_ENTRY(entry)) {
325*4882a593Smuzhiyun if (!ext2_xattr_entry_valid(entry, end,
326*4882a593Smuzhiyun inode->i_sb->s_blocksize))
327*4882a593Smuzhiyun goto bad_block;
328*4882a593Smuzhiyun entry = EXT2_XATTR_NEXT(entry);
329*4882a593Smuzhiyun }
330*4882a593Smuzhiyun if (ext2_xattr_cache_insert(ea_block_cache, bh))
331*4882a593Smuzhiyun ea_idebug(inode, "cache insert failed");
332*4882a593Smuzhiyun
333*4882a593Smuzhiyun /* list the attribute names */
334*4882a593Smuzhiyun for (entry = FIRST_ENTRY(bh); !IS_LAST_ENTRY(entry);
335*4882a593Smuzhiyun entry = EXT2_XATTR_NEXT(entry)) {
336*4882a593Smuzhiyun const struct xattr_handler *handler =
337*4882a593Smuzhiyun ext2_xattr_handler(entry->e_name_index);
338*4882a593Smuzhiyun
339*4882a593Smuzhiyun if (handler && (!handler->list || handler->list(dentry))) {
340*4882a593Smuzhiyun const char *prefix = handler->prefix ?: handler->name;
341*4882a593Smuzhiyun size_t prefix_len = strlen(prefix);
342*4882a593Smuzhiyun size_t size = prefix_len + entry->e_name_len + 1;
343*4882a593Smuzhiyun
344*4882a593Smuzhiyun if (buffer) {
345*4882a593Smuzhiyun if (size > rest) {
346*4882a593Smuzhiyun error = -ERANGE;
347*4882a593Smuzhiyun goto cleanup;
348*4882a593Smuzhiyun }
349*4882a593Smuzhiyun memcpy(buffer, prefix, prefix_len);
350*4882a593Smuzhiyun buffer += prefix_len;
351*4882a593Smuzhiyun memcpy(buffer, entry->e_name, entry->e_name_len);
352*4882a593Smuzhiyun buffer += entry->e_name_len;
353*4882a593Smuzhiyun *buffer++ = 0;
354*4882a593Smuzhiyun }
355*4882a593Smuzhiyun rest -= size;
356*4882a593Smuzhiyun }
357*4882a593Smuzhiyun }
358*4882a593Smuzhiyun error = buffer_size - rest; /* total size */
359*4882a593Smuzhiyun
360*4882a593Smuzhiyun cleanup:
361*4882a593Smuzhiyun brelse(bh);
362*4882a593Smuzhiyun up_read(&EXT2_I(inode)->xattr_sem);
363*4882a593Smuzhiyun
364*4882a593Smuzhiyun return error;
365*4882a593Smuzhiyun }
366*4882a593Smuzhiyun
367*4882a593Smuzhiyun /*
368*4882a593Smuzhiyun * Inode operation listxattr()
369*4882a593Smuzhiyun *
370*4882a593Smuzhiyun * d_inode(dentry)->i_mutex: don't care
371*4882a593Smuzhiyun */
372*4882a593Smuzhiyun ssize_t
ext2_listxattr(struct dentry * dentry,char * buffer,size_t size)373*4882a593Smuzhiyun ext2_listxattr(struct dentry *dentry, char *buffer, size_t size)
374*4882a593Smuzhiyun {
375*4882a593Smuzhiyun return ext2_xattr_list(dentry, buffer, size);
376*4882a593Smuzhiyun }
377*4882a593Smuzhiyun
378*4882a593Smuzhiyun /*
379*4882a593Smuzhiyun * If the EXT2_FEATURE_COMPAT_EXT_ATTR feature of this file system is
380*4882a593Smuzhiyun * not set, set it.
381*4882a593Smuzhiyun */
ext2_xattr_update_super_block(struct super_block * sb)382*4882a593Smuzhiyun static void ext2_xattr_update_super_block(struct super_block *sb)
383*4882a593Smuzhiyun {
384*4882a593Smuzhiyun if (EXT2_HAS_COMPAT_FEATURE(sb, EXT2_FEATURE_COMPAT_EXT_ATTR))
385*4882a593Smuzhiyun return;
386*4882a593Smuzhiyun
387*4882a593Smuzhiyun spin_lock(&EXT2_SB(sb)->s_lock);
388*4882a593Smuzhiyun ext2_update_dynamic_rev(sb);
389*4882a593Smuzhiyun EXT2_SET_COMPAT_FEATURE(sb, EXT2_FEATURE_COMPAT_EXT_ATTR);
390*4882a593Smuzhiyun spin_unlock(&EXT2_SB(sb)->s_lock);
391*4882a593Smuzhiyun mark_buffer_dirty(EXT2_SB(sb)->s_sbh);
392*4882a593Smuzhiyun }
393*4882a593Smuzhiyun
394*4882a593Smuzhiyun /*
395*4882a593Smuzhiyun * ext2_xattr_set()
396*4882a593Smuzhiyun *
397*4882a593Smuzhiyun * Create, replace or remove an extended attribute for this inode. Value
398*4882a593Smuzhiyun * is NULL to remove an existing extended attribute, and non-NULL to
399*4882a593Smuzhiyun * either replace an existing extended attribute, or create a new extended
400*4882a593Smuzhiyun * attribute. The flags XATTR_REPLACE and XATTR_CREATE
401*4882a593Smuzhiyun * specify that an extended attribute must exist and must not exist
402*4882a593Smuzhiyun * previous to the call, respectively.
403*4882a593Smuzhiyun *
404*4882a593Smuzhiyun * Returns 0, or a negative error number on failure.
405*4882a593Smuzhiyun */
406*4882a593Smuzhiyun int
ext2_xattr_set(struct inode * inode,int name_index,const char * name,const void * value,size_t value_len,int flags)407*4882a593Smuzhiyun ext2_xattr_set(struct inode *inode, int name_index, const char *name,
408*4882a593Smuzhiyun const void *value, size_t value_len, int flags)
409*4882a593Smuzhiyun {
410*4882a593Smuzhiyun struct super_block *sb = inode->i_sb;
411*4882a593Smuzhiyun struct buffer_head *bh = NULL;
412*4882a593Smuzhiyun struct ext2_xattr_header *header = NULL;
413*4882a593Smuzhiyun struct ext2_xattr_entry *here = NULL, *last = NULL;
414*4882a593Smuzhiyun size_t name_len, free, min_offs = sb->s_blocksize;
415*4882a593Smuzhiyun int not_found = 1, error;
416*4882a593Smuzhiyun char *end;
417*4882a593Smuzhiyun
418*4882a593Smuzhiyun /*
419*4882a593Smuzhiyun * header -- Points either into bh, or to a temporarily
420*4882a593Smuzhiyun * allocated buffer.
421*4882a593Smuzhiyun * here -- The named entry found, or the place for inserting, within
422*4882a593Smuzhiyun * the block pointed to by header.
423*4882a593Smuzhiyun * last -- Points right after the last named entry within the block
424*4882a593Smuzhiyun * pointed to by header.
425*4882a593Smuzhiyun * min_offs -- The offset of the first value (values are aligned
426*4882a593Smuzhiyun * towards the end of the block).
427*4882a593Smuzhiyun * end -- Points right after the block pointed to by header.
428*4882a593Smuzhiyun */
429*4882a593Smuzhiyun
430*4882a593Smuzhiyun ea_idebug(inode, "name=%d.%s, value=%p, value_len=%ld",
431*4882a593Smuzhiyun name_index, name, value, (long)value_len);
432*4882a593Smuzhiyun
433*4882a593Smuzhiyun if (value == NULL)
434*4882a593Smuzhiyun value_len = 0;
435*4882a593Smuzhiyun if (name == NULL)
436*4882a593Smuzhiyun return -EINVAL;
437*4882a593Smuzhiyun name_len = strlen(name);
438*4882a593Smuzhiyun if (name_len > 255 || value_len > sb->s_blocksize)
439*4882a593Smuzhiyun return -ERANGE;
440*4882a593Smuzhiyun error = dquot_initialize(inode);
441*4882a593Smuzhiyun if (error)
442*4882a593Smuzhiyun return error;
443*4882a593Smuzhiyun down_write(&EXT2_I(inode)->xattr_sem);
444*4882a593Smuzhiyun if (EXT2_I(inode)->i_file_acl) {
445*4882a593Smuzhiyun /* The inode already has an extended attribute block. */
446*4882a593Smuzhiyun bh = sb_bread(sb, EXT2_I(inode)->i_file_acl);
447*4882a593Smuzhiyun error = -EIO;
448*4882a593Smuzhiyun if (!bh)
449*4882a593Smuzhiyun goto cleanup;
450*4882a593Smuzhiyun ea_bdebug(bh, "b_count=%d, refcount=%d",
451*4882a593Smuzhiyun atomic_read(&(bh->b_count)),
452*4882a593Smuzhiyun le32_to_cpu(HDR(bh)->h_refcount));
453*4882a593Smuzhiyun header = HDR(bh);
454*4882a593Smuzhiyun end = bh->b_data + bh->b_size;
455*4882a593Smuzhiyun if (!ext2_xattr_header_valid(header)) {
456*4882a593Smuzhiyun bad_block:
457*4882a593Smuzhiyun ext2_error(sb, "ext2_xattr_set",
458*4882a593Smuzhiyun "inode %ld: bad block %d", inode->i_ino,
459*4882a593Smuzhiyun EXT2_I(inode)->i_file_acl);
460*4882a593Smuzhiyun error = -EIO;
461*4882a593Smuzhiyun goto cleanup;
462*4882a593Smuzhiyun }
463*4882a593Smuzhiyun /*
464*4882a593Smuzhiyun * Find the named attribute. If not found, 'here' will point
465*4882a593Smuzhiyun * to entry where the new attribute should be inserted to
466*4882a593Smuzhiyun * maintain sorting.
467*4882a593Smuzhiyun */
468*4882a593Smuzhiyun last = FIRST_ENTRY(bh);
469*4882a593Smuzhiyun while (!IS_LAST_ENTRY(last)) {
470*4882a593Smuzhiyun if (!ext2_xattr_entry_valid(last, end, sb->s_blocksize))
471*4882a593Smuzhiyun goto bad_block;
472*4882a593Smuzhiyun if (last->e_value_size) {
473*4882a593Smuzhiyun size_t offs = le16_to_cpu(last->e_value_offs);
474*4882a593Smuzhiyun if (offs < min_offs)
475*4882a593Smuzhiyun min_offs = offs;
476*4882a593Smuzhiyun }
477*4882a593Smuzhiyun if (not_found > 0) {
478*4882a593Smuzhiyun not_found = ext2_xattr_cmp_entry(name_index,
479*4882a593Smuzhiyun name_len,
480*4882a593Smuzhiyun name, last);
481*4882a593Smuzhiyun if (not_found <= 0)
482*4882a593Smuzhiyun here = last;
483*4882a593Smuzhiyun }
484*4882a593Smuzhiyun last = EXT2_XATTR_NEXT(last);
485*4882a593Smuzhiyun }
486*4882a593Smuzhiyun if (not_found > 0)
487*4882a593Smuzhiyun here = last;
488*4882a593Smuzhiyun
489*4882a593Smuzhiyun /* Check whether we have enough space left. */
490*4882a593Smuzhiyun free = min_offs - ((char*)last - (char*)header) - sizeof(__u32);
491*4882a593Smuzhiyun } else {
492*4882a593Smuzhiyun /* We will use a new extended attribute block. */
493*4882a593Smuzhiyun free = sb->s_blocksize -
494*4882a593Smuzhiyun sizeof(struct ext2_xattr_header) - sizeof(__u32);
495*4882a593Smuzhiyun }
496*4882a593Smuzhiyun
497*4882a593Smuzhiyun if (not_found) {
498*4882a593Smuzhiyun /* Request to remove a nonexistent attribute? */
499*4882a593Smuzhiyun error = -ENODATA;
500*4882a593Smuzhiyun if (flags & XATTR_REPLACE)
501*4882a593Smuzhiyun goto cleanup;
502*4882a593Smuzhiyun error = 0;
503*4882a593Smuzhiyun if (value == NULL)
504*4882a593Smuzhiyun goto cleanup;
505*4882a593Smuzhiyun } else {
506*4882a593Smuzhiyun /* Request to create an existing attribute? */
507*4882a593Smuzhiyun error = -EEXIST;
508*4882a593Smuzhiyun if (flags & XATTR_CREATE)
509*4882a593Smuzhiyun goto cleanup;
510*4882a593Smuzhiyun free += EXT2_XATTR_SIZE(le32_to_cpu(here->e_value_size));
511*4882a593Smuzhiyun free += EXT2_XATTR_LEN(name_len);
512*4882a593Smuzhiyun }
513*4882a593Smuzhiyun error = -ENOSPC;
514*4882a593Smuzhiyun if (free < EXT2_XATTR_LEN(name_len) + EXT2_XATTR_SIZE(value_len))
515*4882a593Smuzhiyun goto cleanup;
516*4882a593Smuzhiyun
517*4882a593Smuzhiyun /* Here we know that we can set the new attribute. */
518*4882a593Smuzhiyun
519*4882a593Smuzhiyun if (header) {
520*4882a593Smuzhiyun /* assert(header == HDR(bh)); */
521*4882a593Smuzhiyun lock_buffer(bh);
522*4882a593Smuzhiyun if (header->h_refcount == cpu_to_le32(1)) {
523*4882a593Smuzhiyun __u32 hash = le32_to_cpu(header->h_hash);
524*4882a593Smuzhiyun
525*4882a593Smuzhiyun ea_bdebug(bh, "modifying in-place");
526*4882a593Smuzhiyun /*
527*4882a593Smuzhiyun * This must happen under buffer lock for
528*4882a593Smuzhiyun * ext2_xattr_set2() to reliably detect modified block
529*4882a593Smuzhiyun */
530*4882a593Smuzhiyun mb_cache_entry_delete(EA_BLOCK_CACHE(inode), hash,
531*4882a593Smuzhiyun bh->b_blocknr);
532*4882a593Smuzhiyun
533*4882a593Smuzhiyun /* keep the buffer locked while modifying it. */
534*4882a593Smuzhiyun } else {
535*4882a593Smuzhiyun int offset;
536*4882a593Smuzhiyun
537*4882a593Smuzhiyun unlock_buffer(bh);
538*4882a593Smuzhiyun ea_bdebug(bh, "cloning");
539*4882a593Smuzhiyun header = kmemdup(HDR(bh), bh->b_size, GFP_KERNEL);
540*4882a593Smuzhiyun error = -ENOMEM;
541*4882a593Smuzhiyun if (header == NULL)
542*4882a593Smuzhiyun goto cleanup;
543*4882a593Smuzhiyun header->h_refcount = cpu_to_le32(1);
544*4882a593Smuzhiyun
545*4882a593Smuzhiyun offset = (char *)here - bh->b_data;
546*4882a593Smuzhiyun here = ENTRY((char *)header + offset);
547*4882a593Smuzhiyun offset = (char *)last - bh->b_data;
548*4882a593Smuzhiyun last = ENTRY((char *)header + offset);
549*4882a593Smuzhiyun }
550*4882a593Smuzhiyun } else {
551*4882a593Smuzhiyun /* Allocate a buffer where we construct the new block. */
552*4882a593Smuzhiyun header = kzalloc(sb->s_blocksize, GFP_KERNEL);
553*4882a593Smuzhiyun error = -ENOMEM;
554*4882a593Smuzhiyun if (header == NULL)
555*4882a593Smuzhiyun goto cleanup;
556*4882a593Smuzhiyun end = (char *)header + sb->s_blocksize;
557*4882a593Smuzhiyun header->h_magic = cpu_to_le32(EXT2_XATTR_MAGIC);
558*4882a593Smuzhiyun header->h_blocks = header->h_refcount = cpu_to_le32(1);
559*4882a593Smuzhiyun last = here = ENTRY(header+1);
560*4882a593Smuzhiyun }
561*4882a593Smuzhiyun
562*4882a593Smuzhiyun /* Iff we are modifying the block in-place, bh is locked here. */
563*4882a593Smuzhiyun
564*4882a593Smuzhiyun if (not_found) {
565*4882a593Smuzhiyun /* Insert the new name. */
566*4882a593Smuzhiyun size_t size = EXT2_XATTR_LEN(name_len);
567*4882a593Smuzhiyun size_t rest = (char *)last - (char *)here;
568*4882a593Smuzhiyun memmove((char *)here + size, here, rest);
569*4882a593Smuzhiyun memset(here, 0, size);
570*4882a593Smuzhiyun here->e_name_index = name_index;
571*4882a593Smuzhiyun here->e_name_len = name_len;
572*4882a593Smuzhiyun memcpy(here->e_name, name, name_len);
573*4882a593Smuzhiyun } else {
574*4882a593Smuzhiyun if (here->e_value_size) {
575*4882a593Smuzhiyun char *first_val = (char *)header + min_offs;
576*4882a593Smuzhiyun size_t offs = le16_to_cpu(here->e_value_offs);
577*4882a593Smuzhiyun char *val = (char *)header + offs;
578*4882a593Smuzhiyun size_t size = EXT2_XATTR_SIZE(
579*4882a593Smuzhiyun le32_to_cpu(here->e_value_size));
580*4882a593Smuzhiyun
581*4882a593Smuzhiyun if (size == EXT2_XATTR_SIZE(value_len)) {
582*4882a593Smuzhiyun /* The old and the new value have the same
583*4882a593Smuzhiyun size. Just replace. */
584*4882a593Smuzhiyun here->e_value_size = cpu_to_le32(value_len);
585*4882a593Smuzhiyun memset(val + size - EXT2_XATTR_PAD, 0,
586*4882a593Smuzhiyun EXT2_XATTR_PAD); /* Clear pad bytes. */
587*4882a593Smuzhiyun memcpy(val, value, value_len);
588*4882a593Smuzhiyun goto skip_replace;
589*4882a593Smuzhiyun }
590*4882a593Smuzhiyun
591*4882a593Smuzhiyun /* Remove the old value. */
592*4882a593Smuzhiyun memmove(first_val + size, first_val, val - first_val);
593*4882a593Smuzhiyun memset(first_val, 0, size);
594*4882a593Smuzhiyun min_offs += size;
595*4882a593Smuzhiyun
596*4882a593Smuzhiyun /* Adjust all value offsets. */
597*4882a593Smuzhiyun last = ENTRY(header+1);
598*4882a593Smuzhiyun while (!IS_LAST_ENTRY(last)) {
599*4882a593Smuzhiyun size_t o = le16_to_cpu(last->e_value_offs);
600*4882a593Smuzhiyun if (o < offs)
601*4882a593Smuzhiyun last->e_value_offs =
602*4882a593Smuzhiyun cpu_to_le16(o + size);
603*4882a593Smuzhiyun last = EXT2_XATTR_NEXT(last);
604*4882a593Smuzhiyun }
605*4882a593Smuzhiyun
606*4882a593Smuzhiyun here->e_value_offs = 0;
607*4882a593Smuzhiyun }
608*4882a593Smuzhiyun if (value == NULL) {
609*4882a593Smuzhiyun /* Remove the old name. */
610*4882a593Smuzhiyun size_t size = EXT2_XATTR_LEN(name_len);
611*4882a593Smuzhiyun last = ENTRY((char *)last - size);
612*4882a593Smuzhiyun memmove(here, (char*)here + size,
613*4882a593Smuzhiyun (char*)last - (char*)here);
614*4882a593Smuzhiyun memset(last, 0, size);
615*4882a593Smuzhiyun }
616*4882a593Smuzhiyun }
617*4882a593Smuzhiyun
618*4882a593Smuzhiyun if (value != NULL) {
619*4882a593Smuzhiyun /* Insert the new value. */
620*4882a593Smuzhiyun here->e_value_size = cpu_to_le32(value_len);
621*4882a593Smuzhiyun if (value_len) {
622*4882a593Smuzhiyun size_t size = EXT2_XATTR_SIZE(value_len);
623*4882a593Smuzhiyun char *val = (char *)header + min_offs - size;
624*4882a593Smuzhiyun here->e_value_offs =
625*4882a593Smuzhiyun cpu_to_le16((char *)val - (char *)header);
626*4882a593Smuzhiyun memset(val + size - EXT2_XATTR_PAD, 0,
627*4882a593Smuzhiyun EXT2_XATTR_PAD); /* Clear the pad bytes. */
628*4882a593Smuzhiyun memcpy(val, value, value_len);
629*4882a593Smuzhiyun }
630*4882a593Smuzhiyun }
631*4882a593Smuzhiyun
632*4882a593Smuzhiyun skip_replace:
633*4882a593Smuzhiyun if (IS_LAST_ENTRY(ENTRY(header+1))) {
634*4882a593Smuzhiyun /* This block is now empty. */
635*4882a593Smuzhiyun if (bh && header == HDR(bh))
636*4882a593Smuzhiyun unlock_buffer(bh); /* we were modifying in-place. */
637*4882a593Smuzhiyun error = ext2_xattr_set2(inode, bh, NULL);
638*4882a593Smuzhiyun } else {
639*4882a593Smuzhiyun ext2_xattr_rehash(header, here);
640*4882a593Smuzhiyun if (bh && header == HDR(bh))
641*4882a593Smuzhiyun unlock_buffer(bh); /* we were modifying in-place. */
642*4882a593Smuzhiyun error = ext2_xattr_set2(inode, bh, header);
643*4882a593Smuzhiyun }
644*4882a593Smuzhiyun
645*4882a593Smuzhiyun cleanup:
646*4882a593Smuzhiyun if (!(bh && header == HDR(bh)))
647*4882a593Smuzhiyun kfree(header);
648*4882a593Smuzhiyun brelse(bh);
649*4882a593Smuzhiyun up_write(&EXT2_I(inode)->xattr_sem);
650*4882a593Smuzhiyun
651*4882a593Smuzhiyun return error;
652*4882a593Smuzhiyun }
653*4882a593Smuzhiyun
654*4882a593Smuzhiyun /*
655*4882a593Smuzhiyun * Second half of ext2_xattr_set(): Update the file system.
656*4882a593Smuzhiyun */
657*4882a593Smuzhiyun static int
ext2_xattr_set2(struct inode * inode,struct buffer_head * old_bh,struct ext2_xattr_header * header)658*4882a593Smuzhiyun ext2_xattr_set2(struct inode *inode, struct buffer_head *old_bh,
659*4882a593Smuzhiyun struct ext2_xattr_header *header)
660*4882a593Smuzhiyun {
661*4882a593Smuzhiyun struct super_block *sb = inode->i_sb;
662*4882a593Smuzhiyun struct buffer_head *new_bh = NULL;
663*4882a593Smuzhiyun int error;
664*4882a593Smuzhiyun struct mb_cache *ea_block_cache = EA_BLOCK_CACHE(inode);
665*4882a593Smuzhiyun
666*4882a593Smuzhiyun if (header) {
667*4882a593Smuzhiyun new_bh = ext2_xattr_cache_find(inode, header);
668*4882a593Smuzhiyun if (new_bh) {
669*4882a593Smuzhiyun /* We found an identical block in the cache. */
670*4882a593Smuzhiyun if (new_bh == old_bh) {
671*4882a593Smuzhiyun ea_bdebug(new_bh, "keeping this block");
672*4882a593Smuzhiyun } else {
673*4882a593Smuzhiyun /* The old block is released after updating
674*4882a593Smuzhiyun the inode. */
675*4882a593Smuzhiyun ea_bdebug(new_bh, "reusing block");
676*4882a593Smuzhiyun
677*4882a593Smuzhiyun error = dquot_alloc_block(inode, 1);
678*4882a593Smuzhiyun if (error) {
679*4882a593Smuzhiyun unlock_buffer(new_bh);
680*4882a593Smuzhiyun goto cleanup;
681*4882a593Smuzhiyun }
682*4882a593Smuzhiyun le32_add_cpu(&HDR(new_bh)->h_refcount, 1);
683*4882a593Smuzhiyun ea_bdebug(new_bh, "refcount now=%d",
684*4882a593Smuzhiyun le32_to_cpu(HDR(new_bh)->h_refcount));
685*4882a593Smuzhiyun }
686*4882a593Smuzhiyun unlock_buffer(new_bh);
687*4882a593Smuzhiyun } else if (old_bh && header == HDR(old_bh)) {
688*4882a593Smuzhiyun /* Keep this block. No need to lock the block as we
689*4882a593Smuzhiyun don't need to change the reference count. */
690*4882a593Smuzhiyun new_bh = old_bh;
691*4882a593Smuzhiyun get_bh(new_bh);
692*4882a593Smuzhiyun ext2_xattr_cache_insert(ea_block_cache, new_bh);
693*4882a593Smuzhiyun } else {
694*4882a593Smuzhiyun /* We need to allocate a new block */
695*4882a593Smuzhiyun ext2_fsblk_t goal = ext2_group_first_block_no(sb,
696*4882a593Smuzhiyun EXT2_I(inode)->i_block_group);
697*4882a593Smuzhiyun int block = ext2_new_block(inode, goal, &error);
698*4882a593Smuzhiyun if (error)
699*4882a593Smuzhiyun goto cleanup;
700*4882a593Smuzhiyun ea_idebug(inode, "creating block %d", block);
701*4882a593Smuzhiyun
702*4882a593Smuzhiyun new_bh = sb_getblk(sb, block);
703*4882a593Smuzhiyun if (unlikely(!new_bh)) {
704*4882a593Smuzhiyun ext2_free_blocks(inode, block, 1);
705*4882a593Smuzhiyun mark_inode_dirty(inode);
706*4882a593Smuzhiyun error = -ENOMEM;
707*4882a593Smuzhiyun goto cleanup;
708*4882a593Smuzhiyun }
709*4882a593Smuzhiyun lock_buffer(new_bh);
710*4882a593Smuzhiyun memcpy(new_bh->b_data, header, new_bh->b_size);
711*4882a593Smuzhiyun set_buffer_uptodate(new_bh);
712*4882a593Smuzhiyun unlock_buffer(new_bh);
713*4882a593Smuzhiyun ext2_xattr_cache_insert(ea_block_cache, new_bh);
714*4882a593Smuzhiyun
715*4882a593Smuzhiyun ext2_xattr_update_super_block(sb);
716*4882a593Smuzhiyun }
717*4882a593Smuzhiyun mark_buffer_dirty(new_bh);
718*4882a593Smuzhiyun if (IS_SYNC(inode)) {
719*4882a593Smuzhiyun sync_dirty_buffer(new_bh);
720*4882a593Smuzhiyun error = -EIO;
721*4882a593Smuzhiyun if (buffer_req(new_bh) && !buffer_uptodate(new_bh))
722*4882a593Smuzhiyun goto cleanup;
723*4882a593Smuzhiyun }
724*4882a593Smuzhiyun }
725*4882a593Smuzhiyun
726*4882a593Smuzhiyun /* Update the inode. */
727*4882a593Smuzhiyun EXT2_I(inode)->i_file_acl = new_bh ? new_bh->b_blocknr : 0;
728*4882a593Smuzhiyun inode->i_ctime = current_time(inode);
729*4882a593Smuzhiyun if (IS_SYNC(inode)) {
730*4882a593Smuzhiyun error = sync_inode_metadata(inode, 1);
731*4882a593Smuzhiyun /* In case sync failed due to ENOSPC the inode was actually
732*4882a593Smuzhiyun * written (only some dirty data were not) so we just proceed
733*4882a593Smuzhiyun * as if nothing happened and cleanup the unused block */
734*4882a593Smuzhiyun if (error && error != -ENOSPC) {
735*4882a593Smuzhiyun if (new_bh && new_bh != old_bh) {
736*4882a593Smuzhiyun dquot_free_block_nodirty(inode, 1);
737*4882a593Smuzhiyun mark_inode_dirty(inode);
738*4882a593Smuzhiyun }
739*4882a593Smuzhiyun goto cleanup;
740*4882a593Smuzhiyun }
741*4882a593Smuzhiyun } else
742*4882a593Smuzhiyun mark_inode_dirty(inode);
743*4882a593Smuzhiyun
744*4882a593Smuzhiyun error = 0;
745*4882a593Smuzhiyun if (old_bh && old_bh != new_bh) {
746*4882a593Smuzhiyun /*
747*4882a593Smuzhiyun * If there was an old block and we are no longer using it,
748*4882a593Smuzhiyun * release the old block.
749*4882a593Smuzhiyun */
750*4882a593Smuzhiyun lock_buffer(old_bh);
751*4882a593Smuzhiyun if (HDR(old_bh)->h_refcount == cpu_to_le32(1)) {
752*4882a593Smuzhiyun __u32 hash = le32_to_cpu(HDR(old_bh)->h_hash);
753*4882a593Smuzhiyun
754*4882a593Smuzhiyun /*
755*4882a593Smuzhiyun * This must happen under buffer lock for
756*4882a593Smuzhiyun * ext2_xattr_set2() to reliably detect freed block
757*4882a593Smuzhiyun */
758*4882a593Smuzhiyun mb_cache_entry_delete(ea_block_cache, hash,
759*4882a593Smuzhiyun old_bh->b_blocknr);
760*4882a593Smuzhiyun /* Free the old block. */
761*4882a593Smuzhiyun ea_bdebug(old_bh, "freeing");
762*4882a593Smuzhiyun ext2_free_blocks(inode, old_bh->b_blocknr, 1);
763*4882a593Smuzhiyun mark_inode_dirty(inode);
764*4882a593Smuzhiyun /* We let our caller release old_bh, so we
765*4882a593Smuzhiyun * need to duplicate the buffer before. */
766*4882a593Smuzhiyun get_bh(old_bh);
767*4882a593Smuzhiyun bforget(old_bh);
768*4882a593Smuzhiyun } else {
769*4882a593Smuzhiyun /* Decrement the refcount only. */
770*4882a593Smuzhiyun le32_add_cpu(&HDR(old_bh)->h_refcount, -1);
771*4882a593Smuzhiyun dquot_free_block_nodirty(inode, 1);
772*4882a593Smuzhiyun mark_inode_dirty(inode);
773*4882a593Smuzhiyun mark_buffer_dirty(old_bh);
774*4882a593Smuzhiyun ea_bdebug(old_bh, "refcount now=%d",
775*4882a593Smuzhiyun le32_to_cpu(HDR(old_bh)->h_refcount));
776*4882a593Smuzhiyun }
777*4882a593Smuzhiyun unlock_buffer(old_bh);
778*4882a593Smuzhiyun }
779*4882a593Smuzhiyun
780*4882a593Smuzhiyun cleanup:
781*4882a593Smuzhiyun brelse(new_bh);
782*4882a593Smuzhiyun
783*4882a593Smuzhiyun return error;
784*4882a593Smuzhiyun }
785*4882a593Smuzhiyun
786*4882a593Smuzhiyun /*
787*4882a593Smuzhiyun * ext2_xattr_delete_inode()
788*4882a593Smuzhiyun *
789*4882a593Smuzhiyun * Free extended attribute resources associated with this inode. This
790*4882a593Smuzhiyun * is called immediately before an inode is freed.
791*4882a593Smuzhiyun */
792*4882a593Smuzhiyun void
ext2_xattr_delete_inode(struct inode * inode)793*4882a593Smuzhiyun ext2_xattr_delete_inode(struct inode *inode)
794*4882a593Smuzhiyun {
795*4882a593Smuzhiyun struct buffer_head *bh = NULL;
796*4882a593Smuzhiyun struct ext2_sb_info *sbi = EXT2_SB(inode->i_sb);
797*4882a593Smuzhiyun
798*4882a593Smuzhiyun /*
799*4882a593Smuzhiyun * We are the only ones holding inode reference. The xattr_sem should
800*4882a593Smuzhiyun * better be unlocked! We could as well just not acquire xattr_sem at
801*4882a593Smuzhiyun * all but this makes the code more futureproof. OTOH we need trylock
802*4882a593Smuzhiyun * here to avoid false-positive warning from lockdep about reclaim
803*4882a593Smuzhiyun * circular dependency.
804*4882a593Smuzhiyun */
805*4882a593Smuzhiyun if (WARN_ON_ONCE(!down_write_trylock(&EXT2_I(inode)->xattr_sem)))
806*4882a593Smuzhiyun return;
807*4882a593Smuzhiyun if (!EXT2_I(inode)->i_file_acl)
808*4882a593Smuzhiyun goto cleanup;
809*4882a593Smuzhiyun
810*4882a593Smuzhiyun if (!ext2_data_block_valid(sbi, EXT2_I(inode)->i_file_acl, 1)) {
811*4882a593Smuzhiyun ext2_error(inode->i_sb, "ext2_xattr_delete_inode",
812*4882a593Smuzhiyun "inode %ld: xattr block %d is out of data blocks range",
813*4882a593Smuzhiyun inode->i_ino, EXT2_I(inode)->i_file_acl);
814*4882a593Smuzhiyun goto cleanup;
815*4882a593Smuzhiyun }
816*4882a593Smuzhiyun
817*4882a593Smuzhiyun bh = sb_bread(inode->i_sb, EXT2_I(inode)->i_file_acl);
818*4882a593Smuzhiyun if (!bh) {
819*4882a593Smuzhiyun ext2_error(inode->i_sb, "ext2_xattr_delete_inode",
820*4882a593Smuzhiyun "inode %ld: block %d read error", inode->i_ino,
821*4882a593Smuzhiyun EXT2_I(inode)->i_file_acl);
822*4882a593Smuzhiyun goto cleanup;
823*4882a593Smuzhiyun }
824*4882a593Smuzhiyun ea_bdebug(bh, "b_count=%d", atomic_read(&(bh->b_count)));
825*4882a593Smuzhiyun if (!ext2_xattr_header_valid(HDR(bh))) {
826*4882a593Smuzhiyun ext2_error(inode->i_sb, "ext2_xattr_delete_inode",
827*4882a593Smuzhiyun "inode %ld: bad block %d", inode->i_ino,
828*4882a593Smuzhiyun EXT2_I(inode)->i_file_acl);
829*4882a593Smuzhiyun goto cleanup;
830*4882a593Smuzhiyun }
831*4882a593Smuzhiyun lock_buffer(bh);
832*4882a593Smuzhiyun if (HDR(bh)->h_refcount == cpu_to_le32(1)) {
833*4882a593Smuzhiyun __u32 hash = le32_to_cpu(HDR(bh)->h_hash);
834*4882a593Smuzhiyun
835*4882a593Smuzhiyun /*
836*4882a593Smuzhiyun * This must happen under buffer lock for ext2_xattr_set2() to
837*4882a593Smuzhiyun * reliably detect freed block
838*4882a593Smuzhiyun */
839*4882a593Smuzhiyun mb_cache_entry_delete(EA_BLOCK_CACHE(inode), hash,
840*4882a593Smuzhiyun bh->b_blocknr);
841*4882a593Smuzhiyun ext2_free_blocks(inode, EXT2_I(inode)->i_file_acl, 1);
842*4882a593Smuzhiyun get_bh(bh);
843*4882a593Smuzhiyun bforget(bh);
844*4882a593Smuzhiyun unlock_buffer(bh);
845*4882a593Smuzhiyun } else {
846*4882a593Smuzhiyun le32_add_cpu(&HDR(bh)->h_refcount, -1);
847*4882a593Smuzhiyun ea_bdebug(bh, "refcount now=%d",
848*4882a593Smuzhiyun le32_to_cpu(HDR(bh)->h_refcount));
849*4882a593Smuzhiyun unlock_buffer(bh);
850*4882a593Smuzhiyun mark_buffer_dirty(bh);
851*4882a593Smuzhiyun if (IS_SYNC(inode))
852*4882a593Smuzhiyun sync_dirty_buffer(bh);
853*4882a593Smuzhiyun dquot_free_block_nodirty(inode, 1);
854*4882a593Smuzhiyun }
855*4882a593Smuzhiyun EXT2_I(inode)->i_file_acl = 0;
856*4882a593Smuzhiyun
857*4882a593Smuzhiyun cleanup:
858*4882a593Smuzhiyun brelse(bh);
859*4882a593Smuzhiyun up_write(&EXT2_I(inode)->xattr_sem);
860*4882a593Smuzhiyun }
861*4882a593Smuzhiyun
862*4882a593Smuzhiyun /*
863*4882a593Smuzhiyun * ext2_xattr_cache_insert()
864*4882a593Smuzhiyun *
865*4882a593Smuzhiyun * Create a new entry in the extended attribute cache, and insert
866*4882a593Smuzhiyun * it unless such an entry is already in the cache.
867*4882a593Smuzhiyun *
868*4882a593Smuzhiyun * Returns 0, or a negative error number on failure.
869*4882a593Smuzhiyun */
870*4882a593Smuzhiyun static int
ext2_xattr_cache_insert(struct mb_cache * cache,struct buffer_head * bh)871*4882a593Smuzhiyun ext2_xattr_cache_insert(struct mb_cache *cache, struct buffer_head *bh)
872*4882a593Smuzhiyun {
873*4882a593Smuzhiyun __u32 hash = le32_to_cpu(HDR(bh)->h_hash);
874*4882a593Smuzhiyun int error;
875*4882a593Smuzhiyun
876*4882a593Smuzhiyun error = mb_cache_entry_create(cache, GFP_NOFS, hash, bh->b_blocknr,
877*4882a593Smuzhiyun true);
878*4882a593Smuzhiyun if (error) {
879*4882a593Smuzhiyun if (error == -EBUSY) {
880*4882a593Smuzhiyun ea_bdebug(bh, "already in cache");
881*4882a593Smuzhiyun error = 0;
882*4882a593Smuzhiyun }
883*4882a593Smuzhiyun } else
884*4882a593Smuzhiyun ea_bdebug(bh, "inserting [%x]", (int)hash);
885*4882a593Smuzhiyun return error;
886*4882a593Smuzhiyun }
887*4882a593Smuzhiyun
888*4882a593Smuzhiyun /*
889*4882a593Smuzhiyun * ext2_xattr_cmp()
890*4882a593Smuzhiyun *
891*4882a593Smuzhiyun * Compare two extended attribute blocks for equality.
892*4882a593Smuzhiyun *
893*4882a593Smuzhiyun * Returns 0 if the blocks are equal, 1 if they differ, and
894*4882a593Smuzhiyun * a negative error number on errors.
895*4882a593Smuzhiyun */
896*4882a593Smuzhiyun static int
ext2_xattr_cmp(struct ext2_xattr_header * header1,struct ext2_xattr_header * header2)897*4882a593Smuzhiyun ext2_xattr_cmp(struct ext2_xattr_header *header1,
898*4882a593Smuzhiyun struct ext2_xattr_header *header2)
899*4882a593Smuzhiyun {
900*4882a593Smuzhiyun struct ext2_xattr_entry *entry1, *entry2;
901*4882a593Smuzhiyun
902*4882a593Smuzhiyun entry1 = ENTRY(header1+1);
903*4882a593Smuzhiyun entry2 = ENTRY(header2+1);
904*4882a593Smuzhiyun while (!IS_LAST_ENTRY(entry1)) {
905*4882a593Smuzhiyun if (IS_LAST_ENTRY(entry2))
906*4882a593Smuzhiyun return 1;
907*4882a593Smuzhiyun if (entry1->e_hash != entry2->e_hash ||
908*4882a593Smuzhiyun entry1->e_name_index != entry2->e_name_index ||
909*4882a593Smuzhiyun entry1->e_name_len != entry2->e_name_len ||
910*4882a593Smuzhiyun entry1->e_value_size != entry2->e_value_size ||
911*4882a593Smuzhiyun memcmp(entry1->e_name, entry2->e_name, entry1->e_name_len))
912*4882a593Smuzhiyun return 1;
913*4882a593Smuzhiyun if (entry1->e_value_block != 0 || entry2->e_value_block != 0)
914*4882a593Smuzhiyun return -EIO;
915*4882a593Smuzhiyun if (memcmp((char *)header1 + le16_to_cpu(entry1->e_value_offs),
916*4882a593Smuzhiyun (char *)header2 + le16_to_cpu(entry2->e_value_offs),
917*4882a593Smuzhiyun le32_to_cpu(entry1->e_value_size)))
918*4882a593Smuzhiyun return 1;
919*4882a593Smuzhiyun
920*4882a593Smuzhiyun entry1 = EXT2_XATTR_NEXT(entry1);
921*4882a593Smuzhiyun entry2 = EXT2_XATTR_NEXT(entry2);
922*4882a593Smuzhiyun }
923*4882a593Smuzhiyun if (!IS_LAST_ENTRY(entry2))
924*4882a593Smuzhiyun return 1;
925*4882a593Smuzhiyun return 0;
926*4882a593Smuzhiyun }
927*4882a593Smuzhiyun
928*4882a593Smuzhiyun /*
929*4882a593Smuzhiyun * ext2_xattr_cache_find()
930*4882a593Smuzhiyun *
931*4882a593Smuzhiyun * Find an identical extended attribute block.
932*4882a593Smuzhiyun *
933*4882a593Smuzhiyun * Returns a locked buffer head to the block found, or NULL if such
934*4882a593Smuzhiyun * a block was not found or an error occurred.
935*4882a593Smuzhiyun */
936*4882a593Smuzhiyun static struct buffer_head *
ext2_xattr_cache_find(struct inode * inode,struct ext2_xattr_header * header)937*4882a593Smuzhiyun ext2_xattr_cache_find(struct inode *inode, struct ext2_xattr_header *header)
938*4882a593Smuzhiyun {
939*4882a593Smuzhiyun __u32 hash = le32_to_cpu(header->h_hash);
940*4882a593Smuzhiyun struct mb_cache_entry *ce;
941*4882a593Smuzhiyun struct mb_cache *ea_block_cache = EA_BLOCK_CACHE(inode);
942*4882a593Smuzhiyun
943*4882a593Smuzhiyun if (!header->h_hash)
944*4882a593Smuzhiyun return NULL; /* never share */
945*4882a593Smuzhiyun ea_idebug(inode, "looking for cached blocks [%x]", (int)hash);
946*4882a593Smuzhiyun again:
947*4882a593Smuzhiyun ce = mb_cache_entry_find_first(ea_block_cache, hash);
948*4882a593Smuzhiyun while (ce) {
949*4882a593Smuzhiyun struct buffer_head *bh;
950*4882a593Smuzhiyun
951*4882a593Smuzhiyun bh = sb_bread(inode->i_sb, ce->e_value);
952*4882a593Smuzhiyun if (!bh) {
953*4882a593Smuzhiyun ext2_error(inode->i_sb, "ext2_xattr_cache_find",
954*4882a593Smuzhiyun "inode %ld: block %ld read error",
955*4882a593Smuzhiyun inode->i_ino, (unsigned long) ce->e_value);
956*4882a593Smuzhiyun } else {
957*4882a593Smuzhiyun lock_buffer(bh);
958*4882a593Smuzhiyun /*
959*4882a593Smuzhiyun * We have to be careful about races with freeing or
960*4882a593Smuzhiyun * rehashing of xattr block. Once we hold buffer lock
961*4882a593Smuzhiyun * xattr block's state is stable so we can check
962*4882a593Smuzhiyun * whether the block got freed / rehashed or not.
963*4882a593Smuzhiyun * Since we unhash mbcache entry under buffer lock when
964*4882a593Smuzhiyun * freeing / rehashing xattr block, checking whether
965*4882a593Smuzhiyun * entry is still hashed is reliable.
966*4882a593Smuzhiyun */
967*4882a593Smuzhiyun if (hlist_bl_unhashed(&ce->e_hash_list)) {
968*4882a593Smuzhiyun mb_cache_entry_put(ea_block_cache, ce);
969*4882a593Smuzhiyun unlock_buffer(bh);
970*4882a593Smuzhiyun brelse(bh);
971*4882a593Smuzhiyun goto again;
972*4882a593Smuzhiyun } else if (le32_to_cpu(HDR(bh)->h_refcount) >
973*4882a593Smuzhiyun EXT2_XATTR_REFCOUNT_MAX) {
974*4882a593Smuzhiyun ea_idebug(inode, "block %ld refcount %d>%d",
975*4882a593Smuzhiyun (unsigned long) ce->e_value,
976*4882a593Smuzhiyun le32_to_cpu(HDR(bh)->h_refcount),
977*4882a593Smuzhiyun EXT2_XATTR_REFCOUNT_MAX);
978*4882a593Smuzhiyun } else if (!ext2_xattr_cmp(header, HDR(bh))) {
979*4882a593Smuzhiyun ea_bdebug(bh, "b_count=%d",
980*4882a593Smuzhiyun atomic_read(&(bh->b_count)));
981*4882a593Smuzhiyun mb_cache_entry_touch(ea_block_cache, ce);
982*4882a593Smuzhiyun mb_cache_entry_put(ea_block_cache, ce);
983*4882a593Smuzhiyun return bh;
984*4882a593Smuzhiyun }
985*4882a593Smuzhiyun unlock_buffer(bh);
986*4882a593Smuzhiyun brelse(bh);
987*4882a593Smuzhiyun }
988*4882a593Smuzhiyun ce = mb_cache_entry_find_next(ea_block_cache, ce);
989*4882a593Smuzhiyun }
990*4882a593Smuzhiyun return NULL;
991*4882a593Smuzhiyun }
992*4882a593Smuzhiyun
993*4882a593Smuzhiyun #define NAME_HASH_SHIFT 5
994*4882a593Smuzhiyun #define VALUE_HASH_SHIFT 16
995*4882a593Smuzhiyun
996*4882a593Smuzhiyun /*
997*4882a593Smuzhiyun * ext2_xattr_hash_entry()
998*4882a593Smuzhiyun *
999*4882a593Smuzhiyun * Compute the hash of an extended attribute.
1000*4882a593Smuzhiyun */
ext2_xattr_hash_entry(struct ext2_xattr_header * header,struct ext2_xattr_entry * entry)1001*4882a593Smuzhiyun static inline void ext2_xattr_hash_entry(struct ext2_xattr_header *header,
1002*4882a593Smuzhiyun struct ext2_xattr_entry *entry)
1003*4882a593Smuzhiyun {
1004*4882a593Smuzhiyun __u32 hash = 0;
1005*4882a593Smuzhiyun char *name = entry->e_name;
1006*4882a593Smuzhiyun int n;
1007*4882a593Smuzhiyun
1008*4882a593Smuzhiyun for (n=0; n < entry->e_name_len; n++) {
1009*4882a593Smuzhiyun hash = (hash << NAME_HASH_SHIFT) ^
1010*4882a593Smuzhiyun (hash >> (8*sizeof(hash) - NAME_HASH_SHIFT)) ^
1011*4882a593Smuzhiyun *name++;
1012*4882a593Smuzhiyun }
1013*4882a593Smuzhiyun
1014*4882a593Smuzhiyun if (entry->e_value_block == 0 && entry->e_value_size != 0) {
1015*4882a593Smuzhiyun __le32 *value = (__le32 *)((char *)header +
1016*4882a593Smuzhiyun le16_to_cpu(entry->e_value_offs));
1017*4882a593Smuzhiyun for (n = (le32_to_cpu(entry->e_value_size) +
1018*4882a593Smuzhiyun EXT2_XATTR_ROUND) >> EXT2_XATTR_PAD_BITS; n; n--) {
1019*4882a593Smuzhiyun hash = (hash << VALUE_HASH_SHIFT) ^
1020*4882a593Smuzhiyun (hash >> (8*sizeof(hash) - VALUE_HASH_SHIFT)) ^
1021*4882a593Smuzhiyun le32_to_cpu(*value++);
1022*4882a593Smuzhiyun }
1023*4882a593Smuzhiyun }
1024*4882a593Smuzhiyun entry->e_hash = cpu_to_le32(hash);
1025*4882a593Smuzhiyun }
1026*4882a593Smuzhiyun
1027*4882a593Smuzhiyun #undef NAME_HASH_SHIFT
1028*4882a593Smuzhiyun #undef VALUE_HASH_SHIFT
1029*4882a593Smuzhiyun
1030*4882a593Smuzhiyun #define BLOCK_HASH_SHIFT 16
1031*4882a593Smuzhiyun
1032*4882a593Smuzhiyun /*
1033*4882a593Smuzhiyun * ext2_xattr_rehash()
1034*4882a593Smuzhiyun *
1035*4882a593Smuzhiyun * Re-compute the extended attribute hash value after an entry has changed.
1036*4882a593Smuzhiyun */
ext2_xattr_rehash(struct ext2_xattr_header * header,struct ext2_xattr_entry * entry)1037*4882a593Smuzhiyun static void ext2_xattr_rehash(struct ext2_xattr_header *header,
1038*4882a593Smuzhiyun struct ext2_xattr_entry *entry)
1039*4882a593Smuzhiyun {
1040*4882a593Smuzhiyun struct ext2_xattr_entry *here;
1041*4882a593Smuzhiyun __u32 hash = 0;
1042*4882a593Smuzhiyun
1043*4882a593Smuzhiyun ext2_xattr_hash_entry(header, entry);
1044*4882a593Smuzhiyun here = ENTRY(header+1);
1045*4882a593Smuzhiyun while (!IS_LAST_ENTRY(here)) {
1046*4882a593Smuzhiyun if (!here->e_hash) {
1047*4882a593Smuzhiyun /* Block is not shared if an entry's hash value == 0 */
1048*4882a593Smuzhiyun hash = 0;
1049*4882a593Smuzhiyun break;
1050*4882a593Smuzhiyun }
1051*4882a593Smuzhiyun hash = (hash << BLOCK_HASH_SHIFT) ^
1052*4882a593Smuzhiyun (hash >> (8*sizeof(hash) - BLOCK_HASH_SHIFT)) ^
1053*4882a593Smuzhiyun le32_to_cpu(here->e_hash);
1054*4882a593Smuzhiyun here = EXT2_XATTR_NEXT(here);
1055*4882a593Smuzhiyun }
1056*4882a593Smuzhiyun header->h_hash = cpu_to_le32(hash);
1057*4882a593Smuzhiyun }
1058*4882a593Smuzhiyun
1059*4882a593Smuzhiyun #undef BLOCK_HASH_SHIFT
1060*4882a593Smuzhiyun
1061*4882a593Smuzhiyun #define HASH_BUCKET_BITS 10
1062*4882a593Smuzhiyun
ext2_xattr_create_cache(void)1063*4882a593Smuzhiyun struct mb_cache *ext2_xattr_create_cache(void)
1064*4882a593Smuzhiyun {
1065*4882a593Smuzhiyun return mb_cache_create(HASH_BUCKET_BITS);
1066*4882a593Smuzhiyun }
1067*4882a593Smuzhiyun
ext2_xattr_destroy_cache(struct mb_cache * cache)1068*4882a593Smuzhiyun void ext2_xattr_destroy_cache(struct mb_cache *cache)
1069*4882a593Smuzhiyun {
1070*4882a593Smuzhiyun if (cache)
1071*4882a593Smuzhiyun mb_cache_destroy(cache);
1072*4882a593Smuzhiyun }
1073