xfs_qm_syscalls.c 25.3 KB
Newer Older
L
Linus Torvalds 已提交
1
/*
2 3
 * Copyright (c) 2000-2005 Silicon Graphics, Inc.
 * All Rights Reserved.
L
Linus Torvalds 已提交
4
 *
5 6
 * This program is free software; you can redistribute it and/or
 * modify it under the terms of the GNU General Public License as
L
Linus Torvalds 已提交
7 8
 * published by the Free Software Foundation.
 *
9 10 11 12
 * This program is distributed in the hope that it would be useful,
 * but WITHOUT ANY WARRANTY; without even the implied warranty of
 * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE.  See the
 * GNU General Public License for more details.
L
Linus Torvalds 已提交
13
 *
14 15 16
 * You should have received a copy of the GNU General Public License
 * along with this program; if not, write the Free Software Foundation,
 * Inc.,  51 Franklin St, Fifth Floor, Boston, MA  02110-1301  USA
L
Linus Torvalds 已提交
17
 */
18 19 20

#include <linux/capability.h>

L
Linus Torvalds 已提交
21 22
#include "xfs.h"
#include "xfs_fs.h"
23
#include "xfs_format.h"
24
#include "xfs_bit.h"
L
Linus Torvalds 已提交
25 26 27
#include "xfs_log.h"
#include "xfs_trans.h"
#include "xfs_sb.h"
28
#include "xfs_ag.h"
L
Linus Torvalds 已提交
29 30 31 32 33
#include "xfs_alloc.h"
#include "xfs_quota.h"
#include "xfs_mount.h"
#include "xfs_bmap_btree.h"
#include "xfs_inode.h"
34
#include "xfs_inode_item.h"
35
#include "xfs_itable.h"
L
Linus Torvalds 已提交
36 37 38 39 40 41
#include "xfs_bmap.h"
#include "xfs_rtalloc.h"
#include "xfs_error.h"
#include "xfs_attr.h"
#include "xfs_buf_item.h"
#include "xfs_qm.h"
C
Christoph Hellwig 已提交
42
#include "xfs_trace.h"
43
#include "xfs_icache.h"
L
Linus Torvalds 已提交
44 45 46 47 48 49 50 51 52 53 54 55 56 57 58

STATIC int	xfs_qm_log_quotaoff(xfs_mount_t *, xfs_qoff_logitem_t **, uint);
STATIC int	xfs_qm_log_quotaoff_end(xfs_mount_t *, xfs_qoff_logitem_t *,
					uint);
STATIC uint	xfs_qm_export_flags(uint);
STATIC uint	xfs_qm_export_qtype_flags(uint);

/*
 * Turn off quota accounting and/or enforcement for all udquots and/or
 * gdquots. Called only at unmount time.
 *
 * This assumes that there are no dquots of this file system cached
 * incore, and modifies the ondisk dquot directly. Therefore, for example,
 * it is an error to call this twice, without purging the cache.
 */
59
int
L
Linus Torvalds 已提交
60 61
xfs_qm_scall_quotaoff(
	xfs_mount_t		*mp,
62
	uint			flags)
L
Linus Torvalds 已提交
63
{
64
	struct xfs_quotainfo	*q = mp->m_quotainfo;
L
Linus Torvalds 已提交
65 66 67 68 69 70 71 72 73 74 75 76 77 78 79 80 81 82 83 84 85 86
	uint			dqtype;
	int			error;
	uint			inactivate_flags;
	xfs_qoff_logitem_t	*qoffstart;

	/*
	 * No file system can have quotas enabled on disk but not in core.
	 * Note that quota utilities (like quotaoff) _expect_
	 * errno == EEXIST here.
	 */
	if ((mp->m_qflags & flags) == 0)
		return XFS_ERROR(EEXIST);
	error = 0;

	flags &= (XFS_ALL_QUOTA_ACCT | XFS_ALL_QUOTA_ENFD);

	/*
	 * We don't want to deal with two quotaoffs messing up each other,
	 * so we're going to serialize it. quotaoff isn't exactly a performance
	 * critical thing.
	 * If quotaoff, then we must be dealing with the root filesystem.
	 */
87 88
	ASSERT(q);
	mutex_lock(&q->qi_quotaofflock);
L
Linus Torvalds 已提交
89 90 91 92 93 94 95

	/*
	 * If we're just turning off quota enforcement, change mp and go.
	 */
	if ((flags & XFS_ALL_QUOTA_ACCT) == 0) {
		mp->m_qflags &= ~(flags);

E
Eric Sandeen 已提交
96
		spin_lock(&mp->m_sb_lock);
L
Linus Torvalds 已提交
97
		mp->m_sb.sb_qflags = mp->m_qflags;
E
Eric Sandeen 已提交
98
		spin_unlock(&mp->m_sb_lock);
99
		mutex_unlock(&q->qi_quotaofflock);
L
Linus Torvalds 已提交
100 101 102 103 104 105 106 107 108 109 110 111 112 113 114 115 116 117 118 119

		/* XXX what to do if error ? Revert back to old vals incore ? */
		error = xfs_qm_write_sb_changes(mp, XFS_SB_QFLAGS);
		return (error);
	}

	dqtype = 0;
	inactivate_flags = 0;
	/*
	 * If accounting is off, we must turn enforcement off, clear the
	 * quota 'CHKD' certificate to make it known that we have to
	 * do a quotacheck the next time this quota is turned on.
	 */
	if (flags & XFS_UQUOTA_ACCT) {
		dqtype |= XFS_QMOPT_UQUOTA;
		flags |= (XFS_UQUOTA_CHKD | XFS_UQUOTA_ENFD);
		inactivate_flags |= XFS_UQUOTA_ACTIVE;
	}
	if (flags & XFS_GQUOTA_ACCT) {
		dqtype |= XFS_QMOPT_GQUOTA;
120
		flags |= (XFS_GQUOTA_CHKD | XFS_GQUOTA_ENFD);
L
Linus Torvalds 已提交
121
		inactivate_flags |= XFS_GQUOTA_ACTIVE;
122 123
	}
	if (flags & XFS_PQUOTA_ACCT) {
124
		dqtype |= XFS_QMOPT_PQUOTA;
125
		flags |= (XFS_PQUOTA_CHKD | XFS_PQUOTA_ENFD);
126
		inactivate_flags |= XFS_PQUOTA_ACTIVE;
L
Linus Torvalds 已提交
127 128 129 130 131 132
	}

	/*
	 * Nothing to do?  Don't complain. This happens when we're just
	 * turning off quota enforcement.
	 */
133 134
	if ((mp->m_qflags & flags) == 0)
		goto out_unlock;
L
Linus Torvalds 已提交
135 136 137

	/*
	 * Write the LI_QUOTAOFF log record, and do SB changes atomically,
138 139
	 * and synchronously. If we fail to write, we should abort the
	 * operation as it cannot be recovered safely if we crash.
L
Linus Torvalds 已提交
140
	 */
141 142
	error = xfs_qm_log_quotaoff(mp, &qoffstart, flags);
	if (error)
143
		goto out_unlock;
L
Linus Torvalds 已提交
144 145 146 147 148 149 150 151 152 153 154 155 156 157 158 159 160 161 162 163 164 165 166 167 168 169 170 171 172

	/*
	 * Next we clear the XFS_MOUNT_*DQ_ACTIVE bit(s) in the mount struct
	 * to take care of the race between dqget and quotaoff. We don't take
	 * any special locks to reset these bits. All processes need to check
	 * these bits *after* taking inode lock(s) to see if the particular
	 * quota type is in the process of being turned off. If *ACTIVE, it is
	 * guaranteed that all dquot structures and all quotainode ptrs will all
	 * stay valid as long as that inode is kept locked.
	 *
	 * There is no turning back after this.
	 */
	mp->m_qflags &= ~inactivate_flags;

	/*
	 * Give back all the dquot reference(s) held by inodes.
	 * Here we go thru every single incore inode in this file system, and
	 * do a dqrele on the i_udquot/i_gdquot that it may have.
	 * Essentially, as long as somebody has an inode locked, this guarantees
	 * that quotas will not be turned off. This is handy because in a
	 * transaction once we lock the inode(s) and check for quotaon, we can
	 * depend on the quota inodes (and other things) being valid as long as
	 * we keep the lock(s).
	 */
	xfs_qm_dqrele_all_inodes(mp, flags);

	/*
	 * Next we make the changes in the quota flag in the mount struct.
	 * This isn't protected by a particular lock directly, because we
L
Lucas De Marchi 已提交
173
	 * don't want to take a mrlock every time we depend on quotas being on.
L
Linus Torvalds 已提交
174
	 */
175
	mp->m_qflags &= ~flags;
L
Linus Torvalds 已提交
176 177 178

	/*
	 * Go through all the dquots of this file system and purge them,
179
	 * according to what was turned off.
L
Linus Torvalds 已提交
180
	 */
181
	xfs_qm_dqpurge_all(mp, dqtype);
L
Linus Torvalds 已提交
182 183 184 185 186 187 188 189 190 191 192 193

	/*
	 * Transactions that had started before ACTIVE state bit was cleared
	 * could have logged many dquots, so they'd have higher LSNs than
	 * the first QUOTAOFF log record does. If we happen to crash when
	 * the tail of the log has gone past the QUOTAOFF record, but
	 * before the last dquot modification, those dquots __will__
	 * recover, and that's not good.
	 *
	 * So, we have QUOTAOFF start and end logitems; the start
	 * logitem won't get overwritten until the end logitem appears...
	 */
194 195 196 197
	error = xfs_qm_log_quotaoff_end(mp, qoffstart, flags);
	if (error) {
		/* We're screwed now. Shutdown is the only option. */
		xfs_force_shutdown(mp, SHUTDOWN_CORRUPT_INCORE);
198
		goto out_unlock;
199
	}
L
Linus Torvalds 已提交
200 201

	/*
202
	 * If all quotas are completely turned off, close shop.
L
Linus Torvalds 已提交
203
	 */
204
	if (mp->m_qflags == 0) {
205
		mutex_unlock(&q->qi_quotaofflock);
L
Linus Torvalds 已提交
206 207 208 209 210
		xfs_qm_destroy_quotainfo(mp);
		return (0);
	}

	/*
211
	 * Release our quotainode references if we don't need them anymore.
L
Linus Torvalds 已提交
212
	 */
213 214 215
	if ((dqtype & XFS_QMOPT_UQUOTA) && q->qi_uquotaip) {
		IRELE(q->qi_uquotaip);
		q->qi_uquotaip = NULL;
L
Linus Torvalds 已提交
216
	}
217
	if ((dqtype & XFS_QMOPT_GQUOTA) && q->qi_gquotaip) {
218 219
		IRELE(q->qi_gquotaip);
		q->qi_gquotaip = NULL;
L
Linus Torvalds 已提交
220
	}
221 222 223 224
	if ((dqtype & XFS_QMOPT_PQUOTA) && q->qi_pquotaip) {
		IRELE(q->qi_pquotaip);
		q->qi_pquotaip = NULL;
	}
L
Linus Torvalds 已提交
225

226 227 228
out_unlock:
	mutex_unlock(&q->qi_quotaofflock);
	return error;
L
Linus Torvalds 已提交
229 230
}

231 232 233 234 235 236 237 238 239 240 241 242 243 244 245 246 247 248 249 250 251 252 253 254 255 256 257 258 259
STATIC int
xfs_qm_scall_trunc_qfile(
	struct xfs_mount	*mp,
	xfs_ino_t		ino)
{
	struct xfs_inode	*ip;
	struct xfs_trans	*tp;
	int			error;

	if (ino == NULLFSINO)
		return 0;

	error = xfs_iget(mp, NULL, ino, 0, 0, &ip);
	if (error)
		return error;

	xfs_ilock(ip, XFS_IOLOCK_EXCL);

	tp = xfs_trans_alloc(mp, XFS_TRANS_TRUNCATE_FILE);
	error = xfs_trans_reserve(tp, 0, XFS_ITRUNCATE_LOG_RES(mp), 0,
				  XFS_TRANS_PERM_LOG_RES,
				  XFS_ITRUNCATE_LOG_COUNT);
	if (error) {
		xfs_trans_cancel(tp, 0);
		xfs_iunlock(ip, XFS_IOLOCK_EXCL);
		goto out_put;
	}

	xfs_ilock(ip, XFS_ILOCK_EXCL);
260
	xfs_trans_ijoin(tp, ip, 0);
261

262 263 264 265
	ip->i_d.di_size = 0;
	xfs_trans_log_inode(tp, ip, XFS_ILOG_CORE);

	error = xfs_itruncate_extents(&tp, ip, XFS_DATA_FORK, 0);
266 267 268 269 270 271
	if (error) {
		xfs_trans_cancel(tp, XFS_TRANS_RELEASE_LOG_RES |
				     XFS_TRANS_ABORT);
		goto out_unlock;
	}

272 273
	ASSERT(ip->i_d.di_nextents == 0);

274
	xfs_trans_ichgtime(tp, ip, XFS_ICHGTIME_MOD | XFS_ICHGTIME_CHG);
275 276 277 278 279 280 281 282 283
	error = xfs_trans_commit(tp, XFS_TRANS_RELEASE_LOG_RES);

out_unlock:
	xfs_iunlock(ip, XFS_ILOCK_EXCL | XFS_IOLOCK_EXCL);
out_put:
	IRELE(ip);
	return error;
}

284
int
L
Linus Torvalds 已提交
285 286 287 288
xfs_qm_scall_trunc_qfiles(
	xfs_mount_t	*mp,
	uint		flags)
{
289
	int		error = 0, error2 = 0;
L
Linus Torvalds 已提交
290

291
	if (!xfs_sb_version_hasquota(&mp->m_sb) || flags == 0) {
292 293
		xfs_debug(mp, "%s: flags=%x m_qflags=%x\n",
			__func__, flags, mp->m_qflags);
L
Linus Torvalds 已提交
294 295 296
		return XFS_ERROR(EINVAL);
	}

297 298
	if (flags & XFS_DQ_USER)
		error = xfs_qm_scall_trunc_qfile(mp, mp->m_sb.sb_uquotino);
299
	if (flags & XFS_DQ_GROUP)
300
		error2 = xfs_qm_scall_trunc_qfile(mp, mp->m_sb.sb_gquotino);
301 302
	if (flags & XFS_DQ_PROJ)
		error2 = xfs_qm_scall_trunc_qfile(mp, mp->m_sb.sb_pquotino);
L
Linus Torvalds 已提交
303

304
	return error ? error : error2;
L
Linus Torvalds 已提交
305 306 307 308 309 310 311
}

/*
 * Switch on (a given) quota enforcement for a filesystem.  This takes
 * effect immediately.
 * (Switching on quota accounting must be done at mount time.)
 */
312
int
L
Linus Torvalds 已提交
313 314 315 316 317 318 319 320 321 322 323 324 325 326 327 328 329
xfs_qm_scall_quotaon(
	xfs_mount_t	*mp,
	uint		flags)
{
	int		error;
	uint		qf;
	__int64_t	sbflags;

	flags &= (XFS_ALL_QUOTA_ACCT | XFS_ALL_QUOTA_ENFD);
	/*
	 * Switching on quota accounting must be done at mount time.
	 */
	flags &= ~(XFS_ALL_QUOTA_ACCT);

	sbflags = 0;

	if (flags == 0) {
330 331
		xfs_debug(mp, "%s: zero flags, m_qflags=%x\n",
			__func__, mp->m_qflags);
L
Linus Torvalds 已提交
332 333 334 335 336 337 338 339 340 341 342 343
		return XFS_ERROR(EINVAL);
	}

	/* No fs can turn on quotas with a delayed effect */
	ASSERT((flags & XFS_ALL_QUOTA_ACCT) == 0);

	/*
	 * Can't enforce without accounting. We check the superblock
	 * qflags here instead of m_qflags because rootfs can have
	 * quota acct on ondisk without m_qflags' knowing.
	 */
	if (((flags & XFS_UQUOTA_ACCT) == 0 &&
344 345 346 347 348
	     (mp->m_sb.sb_qflags & XFS_UQUOTA_ACCT) == 0 &&
	     (flags & XFS_UQUOTA_ENFD)) ||
	    ((flags & XFS_GQUOTA_ACCT) == 0 &&
	     (mp->m_sb.sb_qflags & XFS_GQUOTA_ACCT) == 0 &&
	     (flags & XFS_GQUOTA_ENFD)) ||
349
	    ((flags & XFS_PQUOTA_ACCT) == 0 &&
350 351
	     (mp->m_sb.sb_qflags & XFS_PQUOTA_ACCT) == 0 &&
	     (flags & XFS_PQUOTA_ENFD))) {
352 353 354
		xfs_debug(mp,
			"%s: Can't enforce without acct, flags=%x sbflags=%x\n",
			__func__, flags, mp->m_sb.sb_qflags);
L
Linus Torvalds 已提交
355 356 357
		return XFS_ERROR(EINVAL);
	}
	/*
L
Lucas De Marchi 已提交
358
	 * If everything's up to-date incore, then don't waste time.
L
Linus Torvalds 已提交
359 360 361 362 363 364 365 366
	 */
	if ((mp->m_qflags & flags) == flags)
		return XFS_ERROR(EEXIST);

	/*
	 * Change sb_qflags on disk but not incore mp->qflags
	 * if this is the root filesystem.
	 */
E
Eric Sandeen 已提交
367
	spin_lock(&mp->m_sb_lock);
L
Linus Torvalds 已提交
368 369
	qf = mp->m_sb.sb_qflags;
	mp->m_sb.sb_qflags = qf | flags;
E
Eric Sandeen 已提交
370
	spin_unlock(&mp->m_sb_lock);
L
Linus Torvalds 已提交
371 372 373 374 375 376 377 378 379 380 381 382 383 384 385

	/*
	 * There's nothing to change if it's the same.
	 */
	if ((qf & flags) == flags && sbflags == 0)
		return XFS_ERROR(EEXIST);
	sbflags |= XFS_SB_QFLAGS;

	if ((error = xfs_qm_write_sb_changes(mp, sbflags)))
		return (error);
	/*
	 * If we aren't trying to switch on quota enforcement, we are done.
	 */
	if  (((mp->m_sb.sb_qflags & XFS_UQUOTA_ACCT) !=
	     (mp->m_qflags & XFS_UQUOTA_ACCT)) ||
386 387 388 389
	     ((mp->m_sb.sb_qflags & XFS_PQUOTA_ACCT) !=
	     (mp->m_qflags & XFS_PQUOTA_ACCT)) ||
	     ((mp->m_sb.sb_qflags & XFS_GQUOTA_ACCT) !=
	     (mp->m_qflags & XFS_GQUOTA_ACCT)) ||
L
Linus Torvalds 已提交
390 391 392 393 394 395 396 397 398
	    (flags & XFS_ALL_QUOTA_ENFD) == 0)
		return (0);

	if (! XFS_IS_QUOTA_RUNNING(mp))
		return XFS_ERROR(ESRCH);

	/*
	 * Switch on quota enforcement in core.
	 */
399
	mutex_lock(&mp->m_quotainfo->qi_quotaofflock);
L
Linus Torvalds 已提交
400
	mp->m_qflags |= (flags & XFS_ALL_QUOTA_ENFD);
401
	mutex_unlock(&mp->m_quotainfo->qi_quotaofflock);
L
Linus Torvalds 已提交
402 403 404 405 406 407 408 409

	return (0);
}


/*
 * Return quota status information, such as uquota-off, enforcements, etc.
 */
410
int
L
Linus Torvalds 已提交
411
xfs_qm_scall_getqstat(
412 413
	struct xfs_mount	*mp,
	struct fs_quota_stat	*out)
L
Linus Torvalds 已提交
414
{
415
	struct xfs_quotainfo	*q = mp->m_quotainfo;
416 417
	struct xfs_inode	*uip = NULL;
	struct xfs_inode	*gip = NULL;
418
	struct xfs_inode	*pip = NULL;
419 420
	bool                    tempuqip = false;
	bool                    tempgqip = false;
421
	bool                    temppqip = false;
L
Linus Torvalds 已提交
422 423 424 425

	memset(out, 0, sizeof(fs_quota_stat_t));

	out->qs_version = FS_QSTAT_VERSION;
426
	if (!xfs_sb_version_hasquota(&mp->m_sb)) {
L
Linus Torvalds 已提交
427 428 429 430
		out->qs_uquota.qfs_ino = NULLFSINO;
		out->qs_gquota.qfs_ino = NULLFSINO;
		return (0);
	}
431

L
Linus Torvalds 已提交
432 433 434
	out->qs_flags = (__uint16_t) xfs_qm_export_flags(mp->m_qflags &
							(XFS_ALL_QUOTA_ACCT|
							 XFS_ALL_QUOTA_ENFD));
435 436 437
	if (q) {
		uip = q->qi_uquotaip;
		gip = q->qi_gquotaip;
438
		pip = q->qi_pquotaip;
L
Linus Torvalds 已提交
439 440 441
	}
	if (!uip && mp->m_sb.sb_uquotino != NULLFSINO) {
		if (xfs_iget(mp, NULL, mp->m_sb.sb_uquotino,
442
					0, 0, &uip) == 0)
443
			tempuqip = true;
L
Linus Torvalds 已提交
444 445 446
	}
	if (!gip && mp->m_sb.sb_gquotino != NULLFSINO) {
		if (xfs_iget(mp, NULL, mp->m_sb.sb_gquotino,
447
					0, 0, &gip) == 0)
448
			tempgqip = true;
L
Linus Torvalds 已提交
449
	}
450 451 452 453 454 455 456 457 458 459 460 461 462
	/*
	 * Q_XGETQSTAT doesn't have room for both group and project quotas.
	 * So, allow the project quota values to be copied out only if
	 * there is no group quota information available.
	 */
	if (!gip) {
		if (!pip && mp->m_sb.sb_pquotino != NULLFSINO) {
			if (xfs_iget(mp, NULL, mp->m_sb.sb_pquotino,
						0, 0, &pip) == 0)
				temppqip = true;
		}
	} else
		pip = NULL;
L
Linus Torvalds 已提交
463
	if (uip) {
464
		out->qs_uquota.qfs_ino = mp->m_sb.sb_uquotino;
L
Linus Torvalds 已提交
465 466 467
		out->qs_uquota.qfs_nblks = uip->i_d.di_nblocks;
		out->qs_uquota.qfs_nextents = uip->i_d.di_nextents;
		if (tempuqip)
468
			IRELE(uip);
L
Linus Torvalds 已提交
469
	}
470

L
Linus Torvalds 已提交
471
	if (gip) {
472
		out->qs_gquota.qfs_ino = mp->m_sb.sb_gquotino;
L
Linus Torvalds 已提交
473 474 475
		out->qs_gquota.qfs_nblks = gip->i_d.di_nblocks;
		out->qs_gquota.qfs_nextents = gip->i_d.di_nextents;
		if (tempgqip)
476
			IRELE(gip);
L
Linus Torvalds 已提交
477
	}
478 479 480 481 482 483 484
	if (pip) {
		out->qs_gquota.qfs_ino = mp->m_sb.sb_gquotino;
		out->qs_gquota.qfs_nblks = pip->i_d.di_nblocks;
		out->qs_gquota.qfs_nextents = pip->i_d.di_nextents;
		if (temppqip)
			IRELE(pip);
	}
485 486 487 488 489 490 491
	if (q) {
		out->qs_incoredqs = q->qi_dquots;
		out->qs_btimelimit = q->qi_btimelimit;
		out->qs_itimelimit = q->qi_itimelimit;
		out->qs_rtbtimelimit = q->qi_rtbtimelimit;
		out->qs_bwarnlimit = q->qi_bwarnlimit;
		out->qs_iwarnlimit = q->qi_iwarnlimit;
L
Linus Torvalds 已提交
492
	}
493
	return 0;
L
Linus Torvalds 已提交
494 495
}

C
Christoph Hellwig 已提交
496 497 498
#define XFS_DQ_MASK \
	(FS_DQ_LIMIT_MASK | FS_DQ_TIMER_MASK | FS_DQ_WARNS_MASK)

L
Linus Torvalds 已提交
499 500 501
/*
 * Adjust quota limits, and start/stop timers accordingly.
 */
502
int
L
Linus Torvalds 已提交
503
xfs_qm_scall_setqlim(
504
	struct xfs_mount	*mp,
L
Linus Torvalds 已提交
505 506 507 508
	xfs_dqid_t		id,
	uint			type,
	fs_disk_quota_t		*newlim)
{
509
	struct xfs_quotainfo	*q = mp->m_quotainfo;
510 511 512
	struct xfs_disk_dquot	*ddq;
	struct xfs_dquot	*dqp;
	struct xfs_trans	*tp;
L
Linus Torvalds 已提交
513 514 515
	int			error;
	xfs_qcnt_t		hard, soft;

C
Christoph Hellwig 已提交
516 517 518 519
	if (newlim->d_fieldmask & ~XFS_DQ_MASK)
		return EINVAL;
	if ((newlim->d_fieldmask & XFS_DQ_MASK) == 0)
		return 0;
L
Linus Torvalds 已提交
520 521 522

	/*
	 * We don't want to race with a quotaoff so take the quotaoff lock.
523 524
	 * We don't hold an inode lock, so there's nothing else to stop
	 * a quotaoff from happening.
L
Linus Torvalds 已提交
525
	 */
526
	mutex_lock(&q->qi_quotaofflock);
L
Linus Torvalds 已提交
527 528

	/*
529 530 531 532 533
	 * Get the dquot (locked) before we start, as we need to do a
	 * transaction to allocate it if it doesn't exist. Once we have the
	 * dquot, unlock it so we can start the next transaction safely. We hold
	 * a reference to the dquot, so it's safe to do this unlock/lock without
	 * it being reclaimed in the mean time.
L
Linus Torvalds 已提交
534
	 */
535 536
	error = xfs_qm_dqget(mp, NULL, id, type, XFS_QMOPT_DQALLOC, &dqp);
	if (error) {
L
Linus Torvalds 已提交
537
		ASSERT(error != ENOENT);
538
		goto out_unlock;
L
Linus Torvalds 已提交
539
	}
540 541 542 543 544 545 546 547 548 549 550
	xfs_dqunlock(dqp);

	tp = xfs_trans_alloc(mp, XFS_TRANS_QM_SETQLIM);
	error = xfs_trans_reserve(tp, 0, XFS_QM_SETQLIM_LOG_RES(mp),
				  0, 0, XFS_DEFAULT_LOG_COUNT);
	if (error) {
		xfs_trans_cancel(tp, 0);
		goto out_rele;
	}

	xfs_dqlock(dqp);
L
Linus Torvalds 已提交
551 552 553 554 555 556 557 558
	xfs_trans_dqjoin(tp, dqp);
	ddq = &dqp->q_core;

	/*
	 * Make sure that hardlimits are >= soft limits before changing.
	 */
	hard = (newlim->d_fieldmask & FS_DQ_BHARD) ?
		(xfs_qcnt_t) XFS_BB_TO_FSB(mp, newlim->d_blk_hardlimit) :
559
			be64_to_cpu(ddq->d_blk_hardlimit);
L
Linus Torvalds 已提交
560 561
	soft = (newlim->d_fieldmask & FS_DQ_BSOFT) ?
		(xfs_qcnt_t) XFS_BB_TO_FSB(mp, newlim->d_blk_softlimit) :
562
			be64_to_cpu(ddq->d_blk_softlimit);
L
Linus Torvalds 已提交
563
	if (hard == 0 || hard >= soft) {
564 565
		ddq->d_blk_hardlimit = cpu_to_be64(hard);
		ddq->d_blk_softlimit = cpu_to_be64(soft);
566
		xfs_dquot_set_prealloc_limits(dqp);
L
Linus Torvalds 已提交
567
		if (id == 0) {
568 569
			q->qi_bhardlimit = hard;
			q->qi_bsoftlimit = soft;
L
Linus Torvalds 已提交
570 571
		}
	} else {
572
		xfs_debug(mp, "blkhard %Ld < blksoft %Ld\n", hard, soft);
L
Linus Torvalds 已提交
573 574 575
	}
	hard = (newlim->d_fieldmask & FS_DQ_RTBHARD) ?
		(xfs_qcnt_t) XFS_BB_TO_FSB(mp, newlim->d_rtb_hardlimit) :
576
			be64_to_cpu(ddq->d_rtb_hardlimit);
L
Linus Torvalds 已提交
577 578
	soft = (newlim->d_fieldmask & FS_DQ_RTBSOFT) ?
		(xfs_qcnt_t) XFS_BB_TO_FSB(mp, newlim->d_rtb_softlimit) :
579
			be64_to_cpu(ddq->d_rtb_softlimit);
L
Linus Torvalds 已提交
580
	if (hard == 0 || hard >= soft) {
581 582
		ddq->d_rtb_hardlimit = cpu_to_be64(hard);
		ddq->d_rtb_softlimit = cpu_to_be64(soft);
L
Linus Torvalds 已提交
583
		if (id == 0) {
584 585
			q->qi_rtbhardlimit = hard;
			q->qi_rtbsoftlimit = soft;
L
Linus Torvalds 已提交
586 587
		}
	} else {
588
		xfs_debug(mp, "rtbhard %Ld < rtbsoft %Ld\n", hard, soft);
L
Linus Torvalds 已提交
589 590 591 592
	}

	hard = (newlim->d_fieldmask & FS_DQ_IHARD) ?
		(xfs_qcnt_t) newlim->d_ino_hardlimit :
593
			be64_to_cpu(ddq->d_ino_hardlimit);
L
Linus Torvalds 已提交
594 595
	soft = (newlim->d_fieldmask & FS_DQ_ISOFT) ?
		(xfs_qcnt_t) newlim->d_ino_softlimit :
596
			be64_to_cpu(ddq->d_ino_softlimit);
L
Linus Torvalds 已提交
597
	if (hard == 0 || hard >= soft) {
598 599
		ddq->d_ino_hardlimit = cpu_to_be64(hard);
		ddq->d_ino_softlimit = cpu_to_be64(soft);
L
Linus Torvalds 已提交
600
		if (id == 0) {
601 602
			q->qi_ihardlimit = hard;
			q->qi_isoftlimit = soft;
L
Linus Torvalds 已提交
603 604
		}
	} else {
605
		xfs_debug(mp, "ihard %Ld < isoft %Ld\n", hard, soft);
L
Linus Torvalds 已提交
606 607
	}

608 609 610 611
	/*
	 * Update warnings counter(s) if requested
	 */
	if (newlim->d_fieldmask & FS_DQ_BWARNS)
612
		ddq->d_bwarns = cpu_to_be16(newlim->d_bwarns);
613
	if (newlim->d_fieldmask & FS_DQ_IWARNS)
614
		ddq->d_iwarns = cpu_to_be16(newlim->d_iwarns);
615
	if (newlim->d_fieldmask & FS_DQ_RTBWARNS)
616
		ddq->d_rtbwarns = cpu_to_be16(newlim->d_rtbwarns);
617

L
Linus Torvalds 已提交
618 619 620 621 622
	if (id == 0) {
		/*
		 * Timelimits for the super user set the relative time
		 * the other users can be over quota for this file system.
		 * If it is zero a default is used.  Ditto for the default
623 624
		 * soft and hard limit values (already done, above), and
		 * for warnings.
L
Linus Torvalds 已提交
625 626
		 */
		if (newlim->d_fieldmask & FS_DQ_BTIMER) {
627
			q->qi_btimelimit = newlim->d_btimer;
628
			ddq->d_btimer = cpu_to_be32(newlim->d_btimer);
L
Linus Torvalds 已提交
629 630
		}
		if (newlim->d_fieldmask & FS_DQ_ITIMER) {
631
			q->qi_itimelimit = newlim->d_itimer;
632
			ddq->d_itimer = cpu_to_be32(newlim->d_itimer);
L
Linus Torvalds 已提交
633 634
		}
		if (newlim->d_fieldmask & FS_DQ_RTBTIMER) {
635
			q->qi_rtbtimelimit = newlim->d_rtbtimer;
636
			ddq->d_rtbtimer = cpu_to_be32(newlim->d_rtbtimer);
L
Linus Torvalds 已提交
637
		}
638
		if (newlim->d_fieldmask & FS_DQ_BWARNS)
639
			q->qi_bwarnlimit = newlim->d_bwarns;
640
		if (newlim->d_fieldmask & FS_DQ_IWARNS)
641
			q->qi_iwarnlimit = newlim->d_iwarns;
642
		if (newlim->d_fieldmask & FS_DQ_RTBWARNS)
643
			q->qi_rtbwarnlimit = newlim->d_rtbwarns;
644
	} else {
L
Linus Torvalds 已提交
645 646 647 648 649 650 651 652 653 654 655 656
		/*
		 * If the user is now over quota, start the timelimit.
		 * The user will not be 'warned'.
		 * Note that we keep the timers ticking, whether enforcement
		 * is on or off. We don't really want to bother with iterating
		 * over all ondisk dquots and turning the timers on/off.
		 */
		xfs_qm_adjust_dqtimers(mp, ddq);
	}
	dqp->dq_flags |= XFS_DQ_DIRTY;
	xfs_trans_log_dquot(tp, dqp);

657
	error = xfs_trans_commit(tp, 0);
L
Linus Torvalds 已提交
658

659 660 661
out_rele:
	xfs_qm_dqrele(dqp);
out_unlock:
662
	mutex_unlock(&q->qi_quotaofflock);
663
	return error;
L
Linus Torvalds 已提交
664 665 666 667 668 669 670 671
}

STATIC int
xfs_qm_log_quotaoff_end(
	xfs_mount_t		*mp,
	xfs_qoff_logitem_t	*startqoff,
	uint			flags)
{
672
	xfs_trans_t		*tp;
L
Linus Torvalds 已提交
673
	int			error;
674
	xfs_qoff_logitem_t	*qoffi;
L
Linus Torvalds 已提交
675 676 677

	tp = xfs_trans_alloc(mp, XFS_TRANS_QM_QUOTAOFF_END);

678 679 680
	error = xfs_trans_reserve(tp, 0, XFS_QM_QUOTAOFF_END_LOG_RES(mp),
				  0, 0, XFS_DEFAULT_LOG_COUNT);
	if (error) {
L
Linus Torvalds 已提交
681 682 683 684 685 686 687 688 689 690 691 692 693 694
		xfs_trans_cancel(tp, 0);
		return (error);
	}

	qoffi = xfs_trans_get_qoff_item(tp, startqoff,
					flags & XFS_ALL_QUOTA_ACCT);
	xfs_trans_log_quotaoff_item(tp, qoffi);

	/*
	 * We have to make sure that the transaction is secure on disk before we
	 * return and actually stop quota accounting. So, make it synchronous.
	 * We don't care about quotoff's performance.
	 */
	xfs_trans_set_sync(tp);
695
	error = xfs_trans_commit(tp, 0);
L
Linus Torvalds 已提交
696 697 698 699 700 701 702 703 704 705 706 707 708 709 710 711
	return (error);
}


STATIC int
xfs_qm_log_quotaoff(
	xfs_mount_t	       *mp,
	xfs_qoff_logitem_t     **qoffstartp,
	uint		       flags)
{
	xfs_trans_t	       *tp;
	int			error;
	xfs_qoff_logitem_t     *qoffi=NULL;
	uint			oldsbqflag=0;

	tp = xfs_trans_alloc(mp, XFS_TRANS_QM_QUOTAOFF);
712 713 714
	error = xfs_trans_reserve(tp, 0, XFS_QM_QUOTAOFF_LOG_RES(mp),
				  0, 0, XFS_DEFAULT_LOG_COUNT);
	if (error)
L
Linus Torvalds 已提交
715 716 717 718 719
		goto error0;

	qoffi = xfs_trans_get_qoff_item(tp, NULL, flags & XFS_ALL_QUOTA_ACCT);
	xfs_trans_log_quotaoff_item(tp, qoffi);

E
Eric Sandeen 已提交
720
	spin_lock(&mp->m_sb_lock);
L
Linus Torvalds 已提交
721 722
	oldsbqflag = mp->m_sb.sb_qflags;
	mp->m_sb.sb_qflags = (mp->m_qflags & ~(flags)) & XFS_MOUNT_QUOTA_ALL;
E
Eric Sandeen 已提交
723
	spin_unlock(&mp->m_sb_lock);
L
Linus Torvalds 已提交
724 725 726 727 728 729 730 731 732

	xfs_mod_sb(tp, XFS_SB_QFLAGS);

	/*
	 * We have to make sure that the transaction is secure on disk before we
	 * return and actually stop quota accounting. So, make it synchronous.
	 * We don't care about quotoff's performance.
	 */
	xfs_trans_set_sync(tp);
733
	error = xfs_trans_commit(tp, 0);
L
Linus Torvalds 已提交
734 735 736 737 738 739 740 741

error0:
	if (error) {
		xfs_trans_cancel(tp, 0);
		/*
		 * No one else is modifying sb_qflags, so this is OK.
		 * We still hold the quotaofflock.
		 */
E
Eric Sandeen 已提交
742
		spin_lock(&mp->m_sb_lock);
L
Linus Torvalds 已提交
743
		mp->m_sb.sb_qflags = oldsbqflag;
E
Eric Sandeen 已提交
744
		spin_unlock(&mp->m_sb_lock);
L
Linus Torvalds 已提交
745 746 747 748 749 750
	}
	*qoffstartp = qoffi;
	return (error);
}


751 752 753 754 755
int
xfs_qm_scall_getquota(
	struct xfs_mount	*mp,
	xfs_dqid_t		id,
	uint			type,
L
Linus Torvalds 已提交
756 757
	struct fs_disk_quota	*dst)
{
758 759 760 761 762 763 764 765 766 767 768 769 770 771 772 773 774 775 776 777 778
	struct xfs_dquot	*dqp;
	int			error;

	/*
	 * Try to get the dquot. We don't want it allocated on disk, so
	 * we aren't passing the XFS_QMOPT_DOALLOC flag. If it doesn't
	 * exist, we'll get ENOENT back.
	 */
	error = xfs_qm_dqget(mp, NULL, id, type, 0, &dqp);
	if (error)
		return error;

	/*
	 * If everything's NULL, this dquot doesn't quite exist as far as
	 * our utility programs are concerned.
	 */
	if (XFS_IS_DQUOT_UNINITIALIZED(dqp)) {
		error = XFS_ERROR(ENOENT);
		goto out_put;
	}

L
Linus Torvalds 已提交
779
	memset(dst, 0, sizeof(*dst));
780 781 782
	dst->d_version = FS_DQUOT_VERSION;
	dst->d_flags = xfs_qm_export_qtype_flags(dqp->q_core.d_flags);
	dst->d_id = be32_to_cpu(dqp->q_core.d_id);
783
	dst->d_blk_hardlimit =
784
		XFS_FSB_TO_BB(mp, be64_to_cpu(dqp->q_core.d_blk_hardlimit));
785
	dst->d_blk_softlimit =
786 787 788
		XFS_FSB_TO_BB(mp, be64_to_cpu(dqp->q_core.d_blk_softlimit));
	dst->d_ino_hardlimit = be64_to_cpu(dqp->q_core.d_ino_hardlimit);
	dst->d_ino_softlimit = be64_to_cpu(dqp->q_core.d_ino_softlimit);
789 790
	dst->d_bcount = XFS_FSB_TO_BB(mp, dqp->q_res_bcount);
	dst->d_icount = dqp->q_res_icount;
791 792 793 794
	dst->d_btimer = be32_to_cpu(dqp->q_core.d_btimer);
	dst->d_itimer = be32_to_cpu(dqp->q_core.d_itimer);
	dst->d_iwarns = be16_to_cpu(dqp->q_core.d_iwarns);
	dst->d_bwarns = be16_to_cpu(dqp->q_core.d_bwarns);
795
	dst->d_rtb_hardlimit =
796
		XFS_FSB_TO_BB(mp, be64_to_cpu(dqp->q_core.d_rtb_hardlimit));
797
	dst->d_rtb_softlimit =
798
		XFS_FSB_TO_BB(mp, be64_to_cpu(dqp->q_core.d_rtb_softlimit));
799
	dst->d_rtbcount = XFS_FSB_TO_BB(mp, dqp->q_res_rtbcount);
800 801
	dst->d_rtbtimer = be32_to_cpu(dqp->q_core.d_rtbtimer);
	dst->d_rtbwarns = be16_to_cpu(dqp->q_core.d_rtbwarns);
L
Linus Torvalds 已提交
802 803 804

	/*
	 * Internally, we don't reset all the timers when quota enforcement
805
	 * gets turned off. No need to confuse the user level code,
L
Linus Torvalds 已提交
806 807
	 * so return zeroes in that case.
	 */
808 809 810 811 812 813
	if ((!XFS_IS_UQUOTA_ENFORCED(mp) &&
	     dqp->q_core.d_flags == XFS_DQ_USER) ||
	    (!XFS_IS_GQUOTA_ENFORCED(mp) &&
	     dqp->q_core.d_flags == XFS_DQ_GROUP) ||
	    (!XFS_IS_PQUOTA_ENFORCED(mp) &&
	     dqp->q_core.d_flags == XFS_DQ_PROJ)) {
L
Linus Torvalds 已提交
814 815 816 817 818 819
		dst->d_btimer = 0;
		dst->d_itimer = 0;
		dst->d_rtbtimer = 0;
	}

#ifdef DEBUG
820
	if (((XFS_IS_UQUOTA_ENFORCED(mp) && dst->d_flags == FS_USER_QUOTA) ||
821 822
	     (XFS_IS_GQUOTA_ENFORCED(mp) && dst->d_flags == FS_GROUP_QUOTA) ||
	     (XFS_IS_PQUOTA_ENFORCED(mp) && dst->d_flags == FS_PROJ_QUOTA)) &&
823
	    dst->d_id != 0) {
824
		if ((dst->d_bcount > dst->d_blk_softlimit) &&
L
Linus Torvalds 已提交
825 826 827
		    (dst->d_blk_softlimit > 0)) {
			ASSERT(dst->d_btimer != 0);
		}
828
		if ((dst->d_icount > dst->d_ino_softlimit) &&
L
Linus Torvalds 已提交
829 830 831 832 833
		    (dst->d_ino_softlimit > 0)) {
			ASSERT(dst->d_itimer != 0);
		}
	}
#endif
834 835 836
out_put:
	xfs_qm_dqput(dqp);
	return error;
L
Linus Torvalds 已提交
837 838 839 840 841 842 843
}

STATIC uint
xfs_qm_export_qtype_flags(
	uint flags)
{
	/*
844
	 * Can't be more than one, or none.
L
Linus Torvalds 已提交
845
	 */
846 847 848 849 850 851 852
	ASSERT((flags & (FS_PROJ_QUOTA | FS_USER_QUOTA)) !=
		(FS_PROJ_QUOTA | FS_USER_QUOTA));
	ASSERT((flags & (FS_PROJ_QUOTA | FS_GROUP_QUOTA)) !=
		(FS_PROJ_QUOTA | FS_GROUP_QUOTA));
	ASSERT((flags & (FS_USER_QUOTA | FS_GROUP_QUOTA)) !=
		(FS_USER_QUOTA | FS_GROUP_QUOTA));
	ASSERT((flags & (FS_PROJ_QUOTA|FS_USER_QUOTA|FS_GROUP_QUOTA)) != 0);
L
Linus Torvalds 已提交
853 854

	return (flags & XFS_DQ_USER) ?
855 856
		FS_USER_QUOTA : (flags & XFS_DQ_PROJ) ?
			FS_PROJ_QUOTA : FS_GROUP_QUOTA;
L
Linus Torvalds 已提交
857 858 859 860 861 862 863 864 865 866
}

STATIC uint
xfs_qm_export_flags(
	uint flags)
{
	uint uflags;

	uflags = 0;
	if (flags & XFS_UQUOTA_ACCT)
867
		uflags |= FS_QUOTA_UDQ_ACCT;
L
Linus Torvalds 已提交
868
	if (flags & XFS_GQUOTA_ACCT)
869
		uflags |= FS_QUOTA_GDQ_ACCT;
870 871
	if (flags & XFS_PQUOTA_ACCT)
		uflags |= FS_QUOTA_PDQ_ACCT;
L
Linus Torvalds 已提交
872
	if (flags & XFS_UQUOTA_ENFD)
873
		uflags |= FS_QUOTA_UDQ_ENFD;
874 875 876 877
	if (flags & XFS_GQUOTA_ENFD)
		uflags |= FS_QUOTA_GDQ_ENFD;
	if (flags & XFS_PQUOTA_ENFD)
		uflags |= FS_QUOTA_PDQ_ENFD;
L
Linus Torvalds 已提交
878 879 880 881
	return (uflags);
}


882 883 884 885
STATIC int
xfs_dqrele_inode(
	struct xfs_inode	*ip,
	struct xfs_perag	*pag,
886 887
	int			flags,
	void			*args)
L
Linus Torvalds 已提交
888
{
889
	/* skip quota inodes */
890
	if (ip == ip->i_mount->m_quotainfo->qi_uquotaip ||
891 892
	    ip == ip->i_mount->m_quotainfo->qi_gquotaip ||
	    ip == ip->i_mount->m_quotainfo->qi_pquotaip) {
893 894
		ASSERT(ip->i_udquot == NULL);
		ASSERT(ip->i_gdquot == NULL);
895
		ASSERT(ip->i_pdquot == NULL);
896 897
		return 0;
	}
898

899 900 901 902 903
	xfs_ilock(ip, XFS_ILOCK_EXCL);
	if ((flags & XFS_UQUOTA_ACCT) && ip->i_udquot) {
		xfs_qm_dqrele(ip->i_udquot);
		ip->i_udquot = NULL;
	}
904
	if ((flags & XFS_GQUOTA_ACCT) && ip->i_gdquot) {
905 906 907
		xfs_qm_dqrele(ip->i_gdquot);
		ip->i_gdquot = NULL;
	}
908 909 910 911
	if ((flags & XFS_PQUOTA_ACCT) && ip->i_pdquot) {
		xfs_qm_dqrele(ip->i_pdquot);
		ip->i_pdquot = NULL;
	}
C
Christoph Hellwig 已提交
912
	xfs_iunlock(ip, XFS_ILOCK_EXCL);
913
	return 0;
914 915
}

916

917 918
/*
 * Go thru all the inodes in the file system, releasing their dquots.
919
 *
920
 * Note that the mount structure gets modified to indicate that quotas are off
921
 * AFTER this, in the case of quotaoff.
922 923 924 925 926 927 928
 */
void
xfs_qm_dqrele_all_inodes(
	struct xfs_mount *mp,
	uint		 flags)
{
	ASSERT(mp->m_quotainfo);
929
	xfs_inode_ag_iterator(mp, xfs_dqrele_inode, flags, NULL);
L
Linus Torvalds 已提交
930
}