xref: /OK3568_Linux_fs/kernel/fs/reiserfs/xattr_acl.c (revision 4882a59341e53eb6f0b4789bf948001014eff981)
1*4882a593Smuzhiyun // SPDX-License-Identifier: GPL-2.0
2*4882a593Smuzhiyun #include <linux/capability.h>
3*4882a593Smuzhiyun #include <linux/fs.h>
4*4882a593Smuzhiyun #include <linux/posix_acl.h>
5*4882a593Smuzhiyun #include "reiserfs.h"
6*4882a593Smuzhiyun #include <linux/errno.h>
7*4882a593Smuzhiyun #include <linux/pagemap.h>
8*4882a593Smuzhiyun #include <linux/xattr.h>
9*4882a593Smuzhiyun #include <linux/slab.h>
10*4882a593Smuzhiyun #include <linux/posix_acl_xattr.h>
11*4882a593Smuzhiyun #include "xattr.h"
12*4882a593Smuzhiyun #include "acl.h"
13*4882a593Smuzhiyun #include <linux/uaccess.h>
14*4882a593Smuzhiyun 
15*4882a593Smuzhiyun static int __reiserfs_set_acl(struct reiserfs_transaction_handle *th,
16*4882a593Smuzhiyun 			    struct inode *inode, int type,
17*4882a593Smuzhiyun 			    struct posix_acl *acl);
18*4882a593Smuzhiyun 
19*4882a593Smuzhiyun 
20*4882a593Smuzhiyun int
reiserfs_set_acl(struct inode * inode,struct posix_acl * acl,int type)21*4882a593Smuzhiyun reiserfs_set_acl(struct inode *inode, struct posix_acl *acl, int type)
22*4882a593Smuzhiyun {
23*4882a593Smuzhiyun 	int error, error2;
24*4882a593Smuzhiyun 	struct reiserfs_transaction_handle th;
25*4882a593Smuzhiyun 	size_t jcreate_blocks;
26*4882a593Smuzhiyun 	int size = acl ? posix_acl_xattr_size(acl->a_count) : 0;
27*4882a593Smuzhiyun 	int update_mode = 0;
28*4882a593Smuzhiyun 	umode_t mode = inode->i_mode;
29*4882a593Smuzhiyun 
30*4882a593Smuzhiyun 	/*
31*4882a593Smuzhiyun 	 * Pessimism: We can't assume that anything from the xattr root up
32*4882a593Smuzhiyun 	 * has been created.
33*4882a593Smuzhiyun 	 */
34*4882a593Smuzhiyun 
35*4882a593Smuzhiyun 	jcreate_blocks = reiserfs_xattr_jcreate_nblocks(inode) +
36*4882a593Smuzhiyun 			 reiserfs_xattr_nblocks(inode, size) * 2;
37*4882a593Smuzhiyun 
38*4882a593Smuzhiyun 	reiserfs_write_lock(inode->i_sb);
39*4882a593Smuzhiyun 	error = journal_begin(&th, inode->i_sb, jcreate_blocks);
40*4882a593Smuzhiyun 	reiserfs_write_unlock(inode->i_sb);
41*4882a593Smuzhiyun 	if (error == 0) {
42*4882a593Smuzhiyun 		if (type == ACL_TYPE_ACCESS && acl) {
43*4882a593Smuzhiyun 			error = posix_acl_update_mode(inode, &mode, &acl);
44*4882a593Smuzhiyun 			if (error)
45*4882a593Smuzhiyun 				goto unlock;
46*4882a593Smuzhiyun 			update_mode = 1;
47*4882a593Smuzhiyun 		}
48*4882a593Smuzhiyun 		error = __reiserfs_set_acl(&th, inode, type, acl);
49*4882a593Smuzhiyun 		if (!error && update_mode)
50*4882a593Smuzhiyun 			inode->i_mode = mode;
51*4882a593Smuzhiyun unlock:
52*4882a593Smuzhiyun 		reiserfs_write_lock(inode->i_sb);
53*4882a593Smuzhiyun 		error2 = journal_end(&th);
54*4882a593Smuzhiyun 		reiserfs_write_unlock(inode->i_sb);
55*4882a593Smuzhiyun 		if (error2)
56*4882a593Smuzhiyun 			error = error2;
57*4882a593Smuzhiyun 	}
58*4882a593Smuzhiyun 
59*4882a593Smuzhiyun 	return error;
60*4882a593Smuzhiyun }
61*4882a593Smuzhiyun 
62*4882a593Smuzhiyun /*
63*4882a593Smuzhiyun  * Convert from filesystem to in-memory representation.
64*4882a593Smuzhiyun  */
reiserfs_posix_acl_from_disk(const void * value,size_t size)65*4882a593Smuzhiyun static struct posix_acl *reiserfs_posix_acl_from_disk(const void *value, size_t size)
66*4882a593Smuzhiyun {
67*4882a593Smuzhiyun 	const char *end = (char *)value + size;
68*4882a593Smuzhiyun 	int n, count;
69*4882a593Smuzhiyun 	struct posix_acl *acl;
70*4882a593Smuzhiyun 
71*4882a593Smuzhiyun 	if (!value)
72*4882a593Smuzhiyun 		return NULL;
73*4882a593Smuzhiyun 	if (size < sizeof(reiserfs_acl_header))
74*4882a593Smuzhiyun 		return ERR_PTR(-EINVAL);
75*4882a593Smuzhiyun 	if (((reiserfs_acl_header *) value)->a_version !=
76*4882a593Smuzhiyun 	    cpu_to_le32(REISERFS_ACL_VERSION))
77*4882a593Smuzhiyun 		return ERR_PTR(-EINVAL);
78*4882a593Smuzhiyun 	value = (char *)value + sizeof(reiserfs_acl_header);
79*4882a593Smuzhiyun 	count = reiserfs_acl_count(size);
80*4882a593Smuzhiyun 	if (count < 0)
81*4882a593Smuzhiyun 		return ERR_PTR(-EINVAL);
82*4882a593Smuzhiyun 	if (count == 0)
83*4882a593Smuzhiyun 		return NULL;
84*4882a593Smuzhiyun 	acl = posix_acl_alloc(count, GFP_NOFS);
85*4882a593Smuzhiyun 	if (!acl)
86*4882a593Smuzhiyun 		return ERR_PTR(-ENOMEM);
87*4882a593Smuzhiyun 	for (n = 0; n < count; n++) {
88*4882a593Smuzhiyun 		reiserfs_acl_entry *entry = (reiserfs_acl_entry *) value;
89*4882a593Smuzhiyun 		if ((char *)value + sizeof(reiserfs_acl_entry_short) > end)
90*4882a593Smuzhiyun 			goto fail;
91*4882a593Smuzhiyun 		acl->a_entries[n].e_tag = le16_to_cpu(entry->e_tag);
92*4882a593Smuzhiyun 		acl->a_entries[n].e_perm = le16_to_cpu(entry->e_perm);
93*4882a593Smuzhiyun 		switch (acl->a_entries[n].e_tag) {
94*4882a593Smuzhiyun 		case ACL_USER_OBJ:
95*4882a593Smuzhiyun 		case ACL_GROUP_OBJ:
96*4882a593Smuzhiyun 		case ACL_MASK:
97*4882a593Smuzhiyun 		case ACL_OTHER:
98*4882a593Smuzhiyun 			value = (char *)value +
99*4882a593Smuzhiyun 			    sizeof(reiserfs_acl_entry_short);
100*4882a593Smuzhiyun 			break;
101*4882a593Smuzhiyun 
102*4882a593Smuzhiyun 		case ACL_USER:
103*4882a593Smuzhiyun 			value = (char *)value + sizeof(reiserfs_acl_entry);
104*4882a593Smuzhiyun 			if ((char *)value > end)
105*4882a593Smuzhiyun 				goto fail;
106*4882a593Smuzhiyun 			acl->a_entries[n].e_uid =
107*4882a593Smuzhiyun 				make_kuid(&init_user_ns,
108*4882a593Smuzhiyun 					  le32_to_cpu(entry->e_id));
109*4882a593Smuzhiyun 			break;
110*4882a593Smuzhiyun 		case ACL_GROUP:
111*4882a593Smuzhiyun 			value = (char *)value + sizeof(reiserfs_acl_entry);
112*4882a593Smuzhiyun 			if ((char *)value > end)
113*4882a593Smuzhiyun 				goto fail;
114*4882a593Smuzhiyun 			acl->a_entries[n].e_gid =
115*4882a593Smuzhiyun 				make_kgid(&init_user_ns,
116*4882a593Smuzhiyun 					  le32_to_cpu(entry->e_id));
117*4882a593Smuzhiyun 			break;
118*4882a593Smuzhiyun 
119*4882a593Smuzhiyun 		default:
120*4882a593Smuzhiyun 			goto fail;
121*4882a593Smuzhiyun 		}
122*4882a593Smuzhiyun 	}
123*4882a593Smuzhiyun 	if (value != end)
124*4882a593Smuzhiyun 		goto fail;
125*4882a593Smuzhiyun 	return acl;
126*4882a593Smuzhiyun 
127*4882a593Smuzhiyun fail:
128*4882a593Smuzhiyun 	posix_acl_release(acl);
129*4882a593Smuzhiyun 	return ERR_PTR(-EINVAL);
130*4882a593Smuzhiyun }
131*4882a593Smuzhiyun 
132*4882a593Smuzhiyun /*
133*4882a593Smuzhiyun  * Convert from in-memory to filesystem representation.
134*4882a593Smuzhiyun  */
reiserfs_posix_acl_to_disk(const struct posix_acl * acl,size_t * size)135*4882a593Smuzhiyun static void *reiserfs_posix_acl_to_disk(const struct posix_acl *acl, size_t * size)
136*4882a593Smuzhiyun {
137*4882a593Smuzhiyun 	reiserfs_acl_header *ext_acl;
138*4882a593Smuzhiyun 	char *e;
139*4882a593Smuzhiyun 	int n;
140*4882a593Smuzhiyun 
141*4882a593Smuzhiyun 	*size = reiserfs_acl_size(acl->a_count);
142*4882a593Smuzhiyun 	ext_acl = kmalloc(sizeof(reiserfs_acl_header) +
143*4882a593Smuzhiyun 						  acl->a_count *
144*4882a593Smuzhiyun 						  sizeof(reiserfs_acl_entry),
145*4882a593Smuzhiyun 						  GFP_NOFS);
146*4882a593Smuzhiyun 	if (!ext_acl)
147*4882a593Smuzhiyun 		return ERR_PTR(-ENOMEM);
148*4882a593Smuzhiyun 	ext_acl->a_version = cpu_to_le32(REISERFS_ACL_VERSION);
149*4882a593Smuzhiyun 	e = (char *)ext_acl + sizeof(reiserfs_acl_header);
150*4882a593Smuzhiyun 	for (n = 0; n < acl->a_count; n++) {
151*4882a593Smuzhiyun 		const struct posix_acl_entry *acl_e = &acl->a_entries[n];
152*4882a593Smuzhiyun 		reiserfs_acl_entry *entry = (reiserfs_acl_entry *) e;
153*4882a593Smuzhiyun 		entry->e_tag = cpu_to_le16(acl->a_entries[n].e_tag);
154*4882a593Smuzhiyun 		entry->e_perm = cpu_to_le16(acl->a_entries[n].e_perm);
155*4882a593Smuzhiyun 		switch (acl->a_entries[n].e_tag) {
156*4882a593Smuzhiyun 		case ACL_USER:
157*4882a593Smuzhiyun 			entry->e_id = cpu_to_le32(
158*4882a593Smuzhiyun 				from_kuid(&init_user_ns, acl_e->e_uid));
159*4882a593Smuzhiyun 			e += sizeof(reiserfs_acl_entry);
160*4882a593Smuzhiyun 			break;
161*4882a593Smuzhiyun 		case ACL_GROUP:
162*4882a593Smuzhiyun 			entry->e_id = cpu_to_le32(
163*4882a593Smuzhiyun 				from_kgid(&init_user_ns, acl_e->e_gid));
164*4882a593Smuzhiyun 			e += sizeof(reiserfs_acl_entry);
165*4882a593Smuzhiyun 			break;
166*4882a593Smuzhiyun 
167*4882a593Smuzhiyun 		case ACL_USER_OBJ:
168*4882a593Smuzhiyun 		case ACL_GROUP_OBJ:
169*4882a593Smuzhiyun 		case ACL_MASK:
170*4882a593Smuzhiyun 		case ACL_OTHER:
171*4882a593Smuzhiyun 			e += sizeof(reiserfs_acl_entry_short);
172*4882a593Smuzhiyun 			break;
173*4882a593Smuzhiyun 
174*4882a593Smuzhiyun 		default:
175*4882a593Smuzhiyun 			goto fail;
176*4882a593Smuzhiyun 		}
177*4882a593Smuzhiyun 	}
178*4882a593Smuzhiyun 	return (char *)ext_acl;
179*4882a593Smuzhiyun 
180*4882a593Smuzhiyun fail:
181*4882a593Smuzhiyun 	kfree(ext_acl);
182*4882a593Smuzhiyun 	return ERR_PTR(-EINVAL);
183*4882a593Smuzhiyun }
184*4882a593Smuzhiyun 
185*4882a593Smuzhiyun /*
186*4882a593Smuzhiyun  * Inode operation get_posix_acl().
187*4882a593Smuzhiyun  *
188*4882a593Smuzhiyun  * inode->i_mutex: down
189*4882a593Smuzhiyun  * BKL held [before 2.5.x]
190*4882a593Smuzhiyun  */
reiserfs_get_acl(struct inode * inode,int type)191*4882a593Smuzhiyun struct posix_acl *reiserfs_get_acl(struct inode *inode, int type)
192*4882a593Smuzhiyun {
193*4882a593Smuzhiyun 	char *name, *value;
194*4882a593Smuzhiyun 	struct posix_acl *acl;
195*4882a593Smuzhiyun 	int size;
196*4882a593Smuzhiyun 	int retval;
197*4882a593Smuzhiyun 
198*4882a593Smuzhiyun 	switch (type) {
199*4882a593Smuzhiyun 	case ACL_TYPE_ACCESS:
200*4882a593Smuzhiyun 		name = XATTR_NAME_POSIX_ACL_ACCESS;
201*4882a593Smuzhiyun 		break;
202*4882a593Smuzhiyun 	case ACL_TYPE_DEFAULT:
203*4882a593Smuzhiyun 		name = XATTR_NAME_POSIX_ACL_DEFAULT;
204*4882a593Smuzhiyun 		break;
205*4882a593Smuzhiyun 	default:
206*4882a593Smuzhiyun 		BUG();
207*4882a593Smuzhiyun 	}
208*4882a593Smuzhiyun 
209*4882a593Smuzhiyun 	size = reiserfs_xattr_get(inode, name, NULL, 0);
210*4882a593Smuzhiyun 	if (size < 0) {
211*4882a593Smuzhiyun 		if (size == -ENODATA || size == -ENOSYS)
212*4882a593Smuzhiyun 			return NULL;
213*4882a593Smuzhiyun 		return ERR_PTR(size);
214*4882a593Smuzhiyun 	}
215*4882a593Smuzhiyun 
216*4882a593Smuzhiyun 	value = kmalloc(size, GFP_NOFS);
217*4882a593Smuzhiyun 	if (!value)
218*4882a593Smuzhiyun 		return ERR_PTR(-ENOMEM);
219*4882a593Smuzhiyun 
220*4882a593Smuzhiyun 	retval = reiserfs_xattr_get(inode, name, value, size);
221*4882a593Smuzhiyun 	if (retval == -ENODATA || retval == -ENOSYS) {
222*4882a593Smuzhiyun 		/*
223*4882a593Smuzhiyun 		 * This shouldn't actually happen as it should have
224*4882a593Smuzhiyun 		 * been caught above.. but just in case
225*4882a593Smuzhiyun 		 */
226*4882a593Smuzhiyun 		acl = NULL;
227*4882a593Smuzhiyun 	} else if (retval < 0) {
228*4882a593Smuzhiyun 		acl = ERR_PTR(retval);
229*4882a593Smuzhiyun 	} else {
230*4882a593Smuzhiyun 		acl = reiserfs_posix_acl_from_disk(value, retval);
231*4882a593Smuzhiyun 	}
232*4882a593Smuzhiyun 
233*4882a593Smuzhiyun 	kfree(value);
234*4882a593Smuzhiyun 	return acl;
235*4882a593Smuzhiyun }
236*4882a593Smuzhiyun 
237*4882a593Smuzhiyun /*
238*4882a593Smuzhiyun  * Inode operation set_posix_acl().
239*4882a593Smuzhiyun  *
240*4882a593Smuzhiyun  * inode->i_mutex: down
241*4882a593Smuzhiyun  * BKL held [before 2.5.x]
242*4882a593Smuzhiyun  */
243*4882a593Smuzhiyun static int
__reiserfs_set_acl(struct reiserfs_transaction_handle * th,struct inode * inode,int type,struct posix_acl * acl)244*4882a593Smuzhiyun __reiserfs_set_acl(struct reiserfs_transaction_handle *th, struct inode *inode,
245*4882a593Smuzhiyun 		 int type, struct posix_acl *acl)
246*4882a593Smuzhiyun {
247*4882a593Smuzhiyun 	char *name;
248*4882a593Smuzhiyun 	void *value = NULL;
249*4882a593Smuzhiyun 	size_t size = 0;
250*4882a593Smuzhiyun 	int error;
251*4882a593Smuzhiyun 
252*4882a593Smuzhiyun 	switch (type) {
253*4882a593Smuzhiyun 	case ACL_TYPE_ACCESS:
254*4882a593Smuzhiyun 		name = XATTR_NAME_POSIX_ACL_ACCESS;
255*4882a593Smuzhiyun 		break;
256*4882a593Smuzhiyun 	case ACL_TYPE_DEFAULT:
257*4882a593Smuzhiyun 		name = XATTR_NAME_POSIX_ACL_DEFAULT;
258*4882a593Smuzhiyun 		if (!S_ISDIR(inode->i_mode))
259*4882a593Smuzhiyun 			return acl ? -EACCES : 0;
260*4882a593Smuzhiyun 		break;
261*4882a593Smuzhiyun 	default:
262*4882a593Smuzhiyun 		return -EINVAL;
263*4882a593Smuzhiyun 	}
264*4882a593Smuzhiyun 
265*4882a593Smuzhiyun 	if (acl) {
266*4882a593Smuzhiyun 		value = reiserfs_posix_acl_to_disk(acl, &size);
267*4882a593Smuzhiyun 		if (IS_ERR(value))
268*4882a593Smuzhiyun 			return (int)PTR_ERR(value);
269*4882a593Smuzhiyun 	}
270*4882a593Smuzhiyun 
271*4882a593Smuzhiyun 	error = reiserfs_xattr_set_handle(th, inode, name, value, size, 0);
272*4882a593Smuzhiyun 
273*4882a593Smuzhiyun 	/*
274*4882a593Smuzhiyun 	 * Ensure that the inode gets dirtied if we're only using
275*4882a593Smuzhiyun 	 * the mode bits and an old ACL didn't exist. We don't need
276*4882a593Smuzhiyun 	 * to check if the inode is hashed here since we won't get
277*4882a593Smuzhiyun 	 * called by reiserfs_inherit_default_acl().
278*4882a593Smuzhiyun 	 */
279*4882a593Smuzhiyun 	if (error == -ENODATA) {
280*4882a593Smuzhiyun 		error = 0;
281*4882a593Smuzhiyun 		if (type == ACL_TYPE_ACCESS) {
282*4882a593Smuzhiyun 			inode->i_ctime = current_time(inode);
283*4882a593Smuzhiyun 			mark_inode_dirty(inode);
284*4882a593Smuzhiyun 		}
285*4882a593Smuzhiyun 	}
286*4882a593Smuzhiyun 
287*4882a593Smuzhiyun 	kfree(value);
288*4882a593Smuzhiyun 
289*4882a593Smuzhiyun 	if (!error)
290*4882a593Smuzhiyun 		set_cached_acl(inode, type, acl);
291*4882a593Smuzhiyun 
292*4882a593Smuzhiyun 	return error;
293*4882a593Smuzhiyun }
294*4882a593Smuzhiyun 
295*4882a593Smuzhiyun /*
296*4882a593Smuzhiyun  * dir->i_mutex: locked,
297*4882a593Smuzhiyun  * inode is new and not released into the wild yet
298*4882a593Smuzhiyun  */
299*4882a593Smuzhiyun int
reiserfs_inherit_default_acl(struct reiserfs_transaction_handle * th,struct inode * dir,struct dentry * dentry,struct inode * inode)300*4882a593Smuzhiyun reiserfs_inherit_default_acl(struct reiserfs_transaction_handle *th,
301*4882a593Smuzhiyun 			     struct inode *dir, struct dentry *dentry,
302*4882a593Smuzhiyun 			     struct inode *inode)
303*4882a593Smuzhiyun {
304*4882a593Smuzhiyun 	struct posix_acl *default_acl, *acl;
305*4882a593Smuzhiyun 	int err = 0;
306*4882a593Smuzhiyun 
307*4882a593Smuzhiyun 	/* ACLs only get applied to files and directories */
308*4882a593Smuzhiyun 	if (S_ISLNK(inode->i_mode))
309*4882a593Smuzhiyun 		return 0;
310*4882a593Smuzhiyun 
311*4882a593Smuzhiyun 	/*
312*4882a593Smuzhiyun 	 * ACLs can only be used on "new" objects, so if it's an old object
313*4882a593Smuzhiyun 	 * there is nothing to inherit from
314*4882a593Smuzhiyun 	 */
315*4882a593Smuzhiyun 	if (get_inode_sd_version(dir) == STAT_DATA_V1)
316*4882a593Smuzhiyun 		goto apply_umask;
317*4882a593Smuzhiyun 
318*4882a593Smuzhiyun 	/*
319*4882a593Smuzhiyun 	 * Don't apply ACLs to objects in the .reiserfs_priv tree.. This
320*4882a593Smuzhiyun 	 * would be useless since permissions are ignored, and a pain because
321*4882a593Smuzhiyun 	 * it introduces locking cycles
322*4882a593Smuzhiyun 	 */
323*4882a593Smuzhiyun 	if (IS_PRIVATE(inode))
324*4882a593Smuzhiyun 		goto apply_umask;
325*4882a593Smuzhiyun 
326*4882a593Smuzhiyun 	err = posix_acl_create(dir, &inode->i_mode, &default_acl, &acl);
327*4882a593Smuzhiyun 	if (err)
328*4882a593Smuzhiyun 		return err;
329*4882a593Smuzhiyun 
330*4882a593Smuzhiyun 	if (default_acl) {
331*4882a593Smuzhiyun 		err = __reiserfs_set_acl(th, inode, ACL_TYPE_DEFAULT,
332*4882a593Smuzhiyun 					 default_acl);
333*4882a593Smuzhiyun 		posix_acl_release(default_acl);
334*4882a593Smuzhiyun 	}
335*4882a593Smuzhiyun 	if (acl) {
336*4882a593Smuzhiyun 		if (!err)
337*4882a593Smuzhiyun 			err = __reiserfs_set_acl(th, inode, ACL_TYPE_ACCESS,
338*4882a593Smuzhiyun 						 acl);
339*4882a593Smuzhiyun 		posix_acl_release(acl);
340*4882a593Smuzhiyun 	}
341*4882a593Smuzhiyun 
342*4882a593Smuzhiyun 	return err;
343*4882a593Smuzhiyun 
344*4882a593Smuzhiyun apply_umask:
345*4882a593Smuzhiyun 	/* no ACL, apply umask */
346*4882a593Smuzhiyun 	inode->i_mode &= ~current_umask();
347*4882a593Smuzhiyun 	return err;
348*4882a593Smuzhiyun }
349*4882a593Smuzhiyun 
350*4882a593Smuzhiyun /* This is used to cache the default acl before a new object is created.
351*4882a593Smuzhiyun  * The biggest reason for this is to get an idea of how many blocks will
352*4882a593Smuzhiyun  * actually be required for the create operation if we must inherit an ACL.
353*4882a593Smuzhiyun  * An ACL write can add up to 3 object creations and an additional file write
354*4882a593Smuzhiyun  * so we'd prefer not to reserve that many blocks in the journal if we can.
355*4882a593Smuzhiyun  * It also has the advantage of not loading the ACL with a transaction open,
356*4882a593Smuzhiyun  * this may seem silly, but if the owner of the directory is doing the
357*4882a593Smuzhiyun  * creation, the ACL may not be loaded since the permissions wouldn't require
358*4882a593Smuzhiyun  * it.
359*4882a593Smuzhiyun  * We return the number of blocks required for the transaction.
360*4882a593Smuzhiyun  */
reiserfs_cache_default_acl(struct inode * inode)361*4882a593Smuzhiyun int reiserfs_cache_default_acl(struct inode *inode)
362*4882a593Smuzhiyun {
363*4882a593Smuzhiyun 	struct posix_acl *acl;
364*4882a593Smuzhiyun 	int nblocks = 0;
365*4882a593Smuzhiyun 
366*4882a593Smuzhiyun 	if (IS_PRIVATE(inode))
367*4882a593Smuzhiyun 		return 0;
368*4882a593Smuzhiyun 
369*4882a593Smuzhiyun 	acl = get_acl(inode, ACL_TYPE_DEFAULT);
370*4882a593Smuzhiyun 
371*4882a593Smuzhiyun 	if (acl && !IS_ERR(acl)) {
372*4882a593Smuzhiyun 		int size = reiserfs_acl_size(acl->a_count);
373*4882a593Smuzhiyun 
374*4882a593Smuzhiyun 		/* Other xattrs can be created during inode creation. We don't
375*4882a593Smuzhiyun 		 * want to claim too many blocks, so we check to see if we
376*4882a593Smuzhiyun 		 * need to create the tree to the xattrs, and then we
377*4882a593Smuzhiyun 		 * just want two files. */
378*4882a593Smuzhiyun 		nblocks = reiserfs_xattr_jcreate_nblocks(inode);
379*4882a593Smuzhiyun 		nblocks += JOURNAL_BLOCKS_PER_OBJECT(inode->i_sb);
380*4882a593Smuzhiyun 
381*4882a593Smuzhiyun 		REISERFS_I(inode)->i_flags |= i_has_xattr_dir;
382*4882a593Smuzhiyun 
383*4882a593Smuzhiyun 		/* We need to account for writes + bitmaps for two files */
384*4882a593Smuzhiyun 		nblocks += reiserfs_xattr_nblocks(inode, size) * 4;
385*4882a593Smuzhiyun 		posix_acl_release(acl);
386*4882a593Smuzhiyun 	}
387*4882a593Smuzhiyun 
388*4882a593Smuzhiyun 	return nblocks;
389*4882a593Smuzhiyun }
390*4882a593Smuzhiyun 
391*4882a593Smuzhiyun /*
392*4882a593Smuzhiyun  * Called under i_mutex
393*4882a593Smuzhiyun  */
reiserfs_acl_chmod(struct inode * inode)394*4882a593Smuzhiyun int reiserfs_acl_chmod(struct inode *inode)
395*4882a593Smuzhiyun {
396*4882a593Smuzhiyun 	if (IS_PRIVATE(inode))
397*4882a593Smuzhiyun 		return 0;
398*4882a593Smuzhiyun 	if (get_inode_sd_version(inode) == STAT_DATA_V1 ||
399*4882a593Smuzhiyun 	    !reiserfs_posixacl(inode->i_sb))
400*4882a593Smuzhiyun 		return 0;
401*4882a593Smuzhiyun 
402*4882a593Smuzhiyun 	return posix_acl_chmod(inode, inode->i_mode);
403*4882a593Smuzhiyun }
404