trans_fd.c 24.8 KB
Newer Older
1 2 3 4 5 6 7
/*
 * linux/fs/9p/trans_fd.c
 *
 * Fd transport layer.  Includes deprecated socket layer.
 *
 *  Copyright (C) 2006 by Russ Cox <rsc@swtch.com>
 *  Copyright (C) 2004-2005 by Latchesar Ionkov <lucho@ionkov.net>
8
 *  Copyright (C) 2004-2008 by Eric Van Hensbergen <ericvh@gmail.com>
9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27
 *  Copyright (C) 1997-2002 by Ron Minnich <rminnich@sarnoff.com>
 *
 *  This program is free software; you can redistribute it and/or modify
 *  it under the terms of the GNU General Public License version 2
 *  as published by the Free Software Foundation.
 *
 *  This program is distributed in the hope that it will be useful,
 *  but WITHOUT ANY WARRANTY; without even the implied warranty of
 *  MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE.  See the
 *  GNU General Public License for more details.
 *
 *  You should have received a copy of the GNU General Public License
 *  along with this program; if not, write to:
 *  Free Software Foundation
 *  51 Franklin Street, Fifth Floor
 *  Boston, MA  02111-1301  USA
 *
 */

28 29
#define pr_fmt(fmt) KBUILD_MODNAME ": " fmt

30 31 32 33
#include <linux/in.h>
#include <linux/module.h>
#include <linux/net.h>
#include <linux/ipv6.h>
34
#include <linux/kthread.h>
35 36 37 38 39 40 41
#include <linux/errno.h>
#include <linux/kernel.h>
#include <linux/un.h>
#include <linux/uaccess.h>
#include <linux/inet.h>
#include <linux/idr.h>
#include <linux/file.h>
E
Eric Van Hensbergen 已提交
42
#include <linux/parser.h>
43
#include <linux/slab.h>
44
#include <net/9p/9p.h>
45
#include <net/9p/client.h>
46 47
#include <net/9p/transport.h>

A
Al Viro 已提交
48 49
#include <linux/syscalls.h> /* killme */

50
#define P9_PORT 564
E
Eric Van Hensbergen 已提交
51
#define MAX_SOCK_BUF (64*1024)
52
#define MAXPOLLWADDR	2
E
Eric Van Hensbergen 已提交
53

E
Eric Van Hensbergen 已提交
54 55 56 57 58 59 60 61
/**
 * struct p9_fd_opts - per-transport options
 * @rfd: file descriptor for reading (trans=fd)
 * @wfd: file descriptor for writing (trans=fd)
 * @port: port to connect to (trans=tcp)
 *
 */

E
Eric Van Hensbergen 已提交
62 63 64 65
struct p9_fd_opts {
	int rfd;
	int wfd;
	u16 port;
66
	int privport;
E
Eric Van Hensbergen 已提交
67
};
68

E
Eric Van Hensbergen 已提交
69 70 71 72 73 74 75 76
/**
 * struct p9_trans_fd - transport state
 * @rd: reference to file to read from
 * @wr: reference of file to write to
 * @conn: connection state reference
 *
 */

77 78 79
struct p9_trans_fd {
	struct file *rd;
	struct file *wr;
80
	struct p9_conn *conn;
81 82
};

E
Eric Van Hensbergen 已提交
83 84 85 86
/*
  * Option Parsing (code inspired by NFS code)
  *  - a little lazy - parse all fd-transport options
  */
87

E
Eric Van Hensbergen 已提交
88 89
enum {
	/* Options that take integer arguments */
90
	Opt_port, Opt_rfdno, Opt_wfdno, Opt_err,
91 92
	/* Options that take no arguments */
	Opt_privport,
E
Eric Van Hensbergen 已提交
93
};
94

95
static const match_table_t tokens = {
E
Eric Van Hensbergen 已提交
96 97 98
	{Opt_port, "port=%u"},
	{Opt_rfdno, "rfdno=%u"},
	{Opt_wfdno, "wfdno=%u"},
99
	{Opt_privport, "privport"},
100
	{Opt_err, NULL},
E
Eric Van Hensbergen 已提交
101
};
102

103 104 105 106 107 108 109
enum {
	Rworksched = 1,		/* read work scheduled or running */
	Rpending = 2,		/* can read */
	Wworksched = 4,		/* write work scheduled or running */
	Wpending = 8,		/* can write */
};

T
Tejun Heo 已提交
110 111 112 113
struct p9_poll_wait {
	struct p9_conn *conn;
	wait_queue_t wait;
	wait_queue_head_t *wait_addr;
E
Eric Van Hensbergen 已提交
114 115 116 117 118
};

/**
 * struct p9_conn - fd mux connection state information
 * @mux_list: list link for mux to manage multiple connections (?)
119
 * @client: reference to client instance for this connection
E
Eric Van Hensbergen 已提交
120 121 122
 * @err: error state
 * @req_list: accounting for requests which have been sent
 * @unsent_req_list: accounting for requests that haven't been sent
123 124 125
 * @req: current request being processed (if any)
 * @tmp_buf: temporary buffer to read in header
 * @rsize: amount to read for current frame
E
Eric Van Hensbergen 已提交
126 127 128 129 130
 * @rpos: read position in current frame
 * @rbuf: current read buffer
 * @wpos: write position for current frame
 * @wsize: amount of data to write for current frame
 * @wbuf: current write buffer
A
Abhishek Kulkarni 已提交
131
 * @poll_pending_link: pending links to be polled per conn
E
Eric Van Hensbergen 已提交
132 133 134 135 136 137 138
 * @poll_wait: array of wait_q's for various worker threads
 * @pt: poll state
 * @rq: current read work
 * @wq: current write work
 * @wsched: ????
 *
 */
139 140 141

struct p9_conn {
	struct list_head mux_list;
142
	struct p9_client *client;
143 144 145
	int err;
	struct list_head req_list;
	struct list_head unsent_req_list;
146 147 148
	struct p9_req_t *req;
	char tmp_buf[7];
	int rsize;
149 150 151 152 153
	int rpos;
	char *rbuf;
	int wpos;
	int wsize;
	char *wbuf;
T
Tejun Heo 已提交
154 155
	struct list_head poll_pending_link;
	struct p9_poll_wait poll_wait[MAXPOLLWADDR];
156 157 158 159 160 161
	poll_table pt;
	struct work_struct rq;
	struct work_struct wq;
	unsigned long wsched;
};

162 163
static void p9_poll_workfn(struct work_struct *work);

T
Tejun Heo 已提交
164 165
static DEFINE_SPINLOCK(p9_poll_lock);
static LIST_HEAD(p9_poll_pending_list);
166
static DECLARE_WORK(p9_poll_work, p9_poll_workfn);
167

168 169 170
static unsigned int p9_ipport_resv_min = P9_DEF_MIN_RESVPORT;
static unsigned int p9_ipport_resv_max = P9_DEF_MAX_RESVPORT;

T
Tejun Heo 已提交
171
static void p9_mux_poll_stop(struct p9_conn *m)
172
{
T
Tejun Heo 已提交
173 174
	unsigned long flags;
	int i;
175

T
Tejun Heo 已提交
176 177
	for (i = 0; i < ARRAY_SIZE(m->poll_wait); i++) {
		struct p9_poll_wait *pwait = &m->poll_wait[i];
178

T
Tejun Heo 已提交
179 180 181
		if (pwait->wait_addr) {
			remove_wait_queue(pwait->wait_addr, &pwait->wait);
			pwait->wait_addr = NULL;
182 183 184
		}
	}

T
Tejun Heo 已提交
185 186 187
	spin_lock_irqsave(&p9_poll_lock, flags);
	list_del_init(&m->poll_pending_link);
	spin_unlock_irqrestore(&p9_poll_lock, flags);
188 189 190
}

/**
191 192 193
 * p9_conn_cancel - cancel all pending requests with error
 * @m: mux data
 * @err: error code
194 195
 *
 */
E
Eric Van Hensbergen 已提交
196

197
static void p9_conn_cancel(struct p9_conn *m, int err)
198
{
199
	struct p9_req_t *req, *rtmp;
200
	unsigned long flags;
201
	LIST_HEAD(cancel_list);
202

203
	p9_debug(P9_DEBUG_ERROR, "mux %p err %d\n", m, err);
204

205
	spin_lock_irqsave(&m->client->lock, flags);
206 207 208 209 210 211 212 213

	if (m->err) {
		spin_unlock_irqrestore(&m->client->lock, flags);
		return;
	}

	m->err = err;

214
	list_for_each_entry_safe(req, rtmp, &m->req_list, req_list) {
215 216 217
		req->status = REQ_STATUS_ERROR;
		if (!req->t_err)
			req->t_err = err;
218 219 220
		list_move(&req->req_list, &cancel_list);
	}
	list_for_each_entry_safe(req, rtmp, &m->unsent_req_list, req_list) {
221 222 223
		req->status = REQ_STATUS_ERROR;
		if (!req->t_err)
			req->t_err = err;
224
		list_move(&req->req_list, &cancel_list);
225
	}
226
	spin_unlock_irqrestore(&m->client->lock, flags);
227

228
	list_for_each_entry_safe(req, rtmp, &cancel_list, req_list) {
229
		p9_debug(P9_DEBUG_ERROR, "call back req %p\n", req);
230
		list_del(&req->req_list);
231
		p9_client_cb(m->client, req);
232 233 234
	}
}

235
static int
236
p9_fd_poll(struct p9_client *client, struct poll_table_struct *pt)
237
{
238 239
	int ret, n;
	struct p9_trans_fd *ts = NULL;
240

241 242
	if (client && client->status == Connected)
		ts = client->trans;
243

244 245
	if (!ts)
		return -EREMOTEIO;
246

247 248
	if (!ts->rd->f_op || !ts->rd->f_op->poll)
		return -EIO;
249

250 251
	if (!ts->wr->f_op || !ts->wr->f_op->poll)
		return -EIO;
T
Tejun Heo 已提交
252

253 254 255
	ret = ts->rd->f_op->poll(ts->rd, pt);
	if (ret < 0)
		return ret;
T
Tejun Heo 已提交
256

257 258 259 260 261 262 263 264
	if (ts->rd != ts->wr) {
		n = ts->wr->f_op->poll(ts->wr, pt);
		if (n < 0)
			return n;
		ret = (ret & ~POLLOUT) | (n & ~POLLIN);
	}

	return ret;
T
Tejun Heo 已提交
265 266
}

267
/**
268 269 270 271
 * p9_fd_read- read from a fd
 * @client: client instance
 * @v: buffer to receive data into
 * @len: size of receive buffer
E
Eric Van Hensbergen 已提交
272
 *
273
 */
E
Eric Van Hensbergen 已提交
274

275
static int p9_fd_read(struct p9_client *client, void *v, int len)
276
{
277 278
	int ret;
	struct p9_trans_fd *ts = NULL;
279

280 281
	if (client && client->status != Disconnected)
		ts = client->trans;
282

283 284
	if (!ts)
		return -EREMOTEIO;
285

286
	if (!(ts->rd->f_flags & O_NONBLOCK))
287
		p9_debug(P9_DEBUG_ERROR, "blocking read ...\n");
288

289 290 291 292
	ret = kernel_read(ts->rd, ts->rd->f_pos, v, len);
	if (ret <= 0 && ret != -ERESTARTSYS && ret != -EAGAIN)
		client->status = Disconnected;
	return ret;
293 294 295
}

/**
296 297
 * p9_read_work - called when there is some data to be read from a transport
 * @work: container of work to be done
E
Eric Van Hensbergen 已提交
298
 *
299
 */
E
Eric Van Hensbergen 已提交
300

301
static void p9_read_work(struct work_struct *work)
302
{
303 304 305 306
	int n, err;
	struct p9_conn *m;

	m = container_of(work, struct p9_conn, rq);
307 308 309 310

	if (m->err < 0)
		return;

311
	p9_debug(P9_DEBUG_TRANS, "start mux %p pos %d\n", m, m->rpos);
312

313 314
	if (!m->rbuf) {
		m->rbuf = m->tmp_buf;
315
		m->rpos = 0;
316
		m->rsize = 7; /* start by reading header */
317 318
	}

319
	clear_bit(Rpending, &m->wsched);
320 321
	p9_debug(P9_DEBUG_TRANS, "read mux %p pos %d size: %d = %d\n",
		 m, m->rpos, m->rsize, m->rsize-m->rpos);
322
	err = p9_fd_read(m->client, m->rbuf + m->rpos,
323
						m->rsize - m->rpos);
324
	p9_debug(P9_DEBUG_TRANS, "mux %p got %d bytes\n", m, err);
325
	if (err == -EAGAIN) {
S
Simon Derr 已提交
326
		goto end_clear;
327 328
	}

329 330 331 332
	if (err <= 0)
		goto error;

	m->rpos += err;
333 334 335

	if ((!m->req) && (m->rpos == m->rsize)) { /* header read in */
		u16 tag;
336
		p9_debug(P9_DEBUG_TRANS, "got new header\n");
337 338

		n = le32_to_cpu(*(__le32 *) m->rbuf); /* read packet size */
339
		if (n >= m->client->msize) {
340 341
			p9_debug(P9_DEBUG_ERROR,
				 "requested packet size too big: %d\n", n);
342 343 344 345
			err = -EIO;
			goto error;
		}

346
		tag = le16_to_cpu(*(__le16 *) (m->rbuf+5)); /* read tag */
347 348
		p9_debug(P9_DEBUG_TRANS,
			 "mux %p pkt: size: %d bytes tag: %d\n", m, n, tag);
349 350

		m->req = p9_tag_lookup(m->client, tag);
351 352
		if (!m->req || (m->req->status != REQ_STATUS_SENT &&
					m->req->status != REQ_STATUS_FLSH)) {
353 354
			p9_debug(P9_DEBUG_ERROR, "Unexpected packet tag %d\n",
				 tag);
355 356 357 358 359 360
			err = -EIO;
			goto error;
		}

		if (m->req->rc == NULL) {
			m->req->rc = kmalloc(sizeof(struct p9_fcall) +
361
						m->client->msize, GFP_NOFS);
362 363 364 365 366 367 368 369 370 371
			if (!m->req->rc) {
				m->req = NULL;
				err = -ENOMEM;
				goto error;
			}
		}
		m->rbuf = (char *)m->req->rc + sizeof(struct p9_fcall);
		memcpy(m->rbuf, m->tmp_buf, m->rsize);
		m->rsize = n;
	}
372

373 374
	/* not an else because some packets (like clunk) have no payload */
	if ((m->req) && (m->rpos == m->rsize)) { /* packet is read in */
375
		p9_debug(P9_DEBUG_TRANS, "got new packet\n");
376
		spin_lock(&m->client->lock);
377 378
		if (m->req->status != REQ_STATUS_ERROR)
			m->req->status = REQ_STATUS_RCVD;
379
		list_del(&m->req->req_list);
380
		spin_unlock(&m->client->lock);
381
		p9_client_cb(m->client, m->req);
382 383 384 385
		m->rbuf = NULL;
		m->rpos = 0;
		m->rsize = 0;
		m->req = NULL;
386 387
	}

S
Simon Derr 已提交
388 389 390
end_clear:
	clear_bit(Rworksched, &m->wsched);

391 392 393 394 395 396
	if (!list_empty(&m->req_list)) {
		if (test_and_clear_bit(Rpending, &m->wsched))
			n = POLLIN;
		else
			n = p9_fd_poll(m->client, NULL);

S
Simon Derr 已提交
397
		if ((n & POLLIN) && !test_and_set_bit(Rworksched, &m->wsched)) {
398
			p9_debug(P9_DEBUG_TRANS, "sched read work %p\n", m);
399
			schedule_work(&m->rq);
S
Simon Derr 已提交
400 401
		}
	}
402 403 404 405 406 407 408 409 410 411 412 413

	return;
error:
	p9_conn_cancel(m, err);
	clear_bit(Rworksched, &m->wsched);
}

/**
 * p9_fd_write - write to a socket
 * @client: client instance
 * @v: buffer to send data from
 * @len: size of send buffer
E
Eric Van Hensbergen 已提交
414
 *
415
 */
E
Eric Van Hensbergen 已提交
416

417
static int p9_fd_write(struct p9_client *client, void *v, int len)
418
{
419 420 421
	int ret;
	mm_segment_t oldfs;
	struct p9_trans_fd *ts = NULL;
422

423 424
	if (client && client->status != Disconnected)
		ts = client->trans;
425

426 427
	if (!ts)
		return -EREMOTEIO;
428

429
	if (!(ts->wr->f_flags & O_NONBLOCK))
430
		p9_debug(P9_DEBUG_ERROR, "blocking write ...\n");
T
Tejun Heo 已提交
431

432 433 434
	oldfs = get_fs();
	set_fs(get_ds());
	/* The cast to a user pointer is valid due to the set_fs() */
435
	ret = vfs_write(ts->wr, (__force void __user *)v, len, &ts->wr->f_pos);
436
	set_fs(oldfs);
T
Tejun Heo 已提交
437

438 439 440
	if (ret <= 0 && ret != -ERESTARTSYS && ret != -EAGAIN)
		client->status = Disconnected;
	return ret;
441 442 443 444
}

/**
 * p9_write_work - called when a transport can send some data
E
Eric Van Hensbergen 已提交
445 446
 * @work: container for work to be done
 *
447
 */
E
Eric Van Hensbergen 已提交
448

449 450 451 452
static void p9_write_work(struct work_struct *work)
{
	int n, err;
	struct p9_conn *m;
453
	struct p9_req_t *req;
454 455 456 457 458 459 460 461 462

	m = container_of(work, struct p9_conn, wq);

	if (m->err < 0) {
		clear_bit(Wworksched, &m->wsched);
		return;
	}

	if (!m->wsize) {
463
		spin_lock(&m->client->lock);
464 465
		if (list_empty(&m->unsent_req_list)) {
			clear_bit(Wworksched, &m->wsched);
466
			spin_unlock(&m->client->lock);
467 468 469
			return;
		}

470
		req = list_entry(m->unsent_req_list.next, struct p9_req_t,
471
			       req_list);
472
		req->status = REQ_STATUS_SENT;
473
		p9_debug(P9_DEBUG_TRANS, "move req %p\n", req);
474 475
		list_move_tail(&req->req_list, &m->req_list);

476 477
		m->wbuf = req->tc->sdata;
		m->wsize = req->tc->size;
478
		m->wpos = 0;
479
		spin_unlock(&m->client->lock);
480 481
	}

482 483
	p9_debug(P9_DEBUG_TRANS, "mux %p pos %d size %d\n",
		 m, m->wpos, m->wsize);
484
	clear_bit(Wpending, &m->wsched);
485
	err = p9_fd_write(m->client, m->wbuf + m->wpos, m->wsize - m->wpos);
486
	p9_debug(P9_DEBUG_TRANS, "mux %p sent %d bytes\n", m, err);
S
Simon Derr 已提交
487 488 489
	if (err == -EAGAIN)
		goto end_clear;

490 491 492 493 494 495 496 497 498 499 500 501

	if (err < 0)
		goto error;
	else if (err == 0) {
		err = -EREMOTEIO;
		goto error;
	}

	m->wpos += err;
	if (m->wpos == m->wsize)
		m->wpos = m->wsize = 0;

S
Simon Derr 已提交
502 503 504
end_clear:
	clear_bit(Wworksched, &m->wsched);

505
	if (m->wsize || !list_empty(&m->unsent_req_list)) {
506 507 508
		if (test_and_clear_bit(Wpending, &m->wsched))
			n = POLLOUT;
		else
509
			n = p9_fd_poll(m->client, NULL);
510

S
Simon Derr 已提交
511 512
		if ((n & POLLOUT) &&
		   !test_and_set_bit(Wworksched, &m->wsched)) {
513
			p9_debug(P9_DEBUG_TRANS, "sched write work %p\n", m);
514
			schedule_work(&m->wq);
S
Simon Derr 已提交
515 516
		}
	}
517 518 519 520 521 522 523 524

	return;

error:
	p9_conn_cancel(m, err);
	clear_bit(Wworksched, &m->wsched);
}

525
static int p9_pollwake(wait_queue_t *wait, unsigned int mode, int sync, void *key)
526
{
527 528 529 530
	struct p9_poll_wait *pwait =
		container_of(wait, struct p9_poll_wait, wait);
	struct p9_conn *m = pwait->conn;
	unsigned long flags;
531

532 533 534 535
	spin_lock_irqsave(&p9_poll_lock, flags);
	if (list_empty(&m->poll_pending_link))
		list_add_tail(&m->poll_pending_link, &p9_poll_pending_list);
	spin_unlock_irqrestore(&p9_poll_lock, flags);
536

537 538
	schedule_work(&p9_poll_work);
	return 1;
539 540 541
}

/**
542 543 544 545
 * p9_pollwait - add poll task to the wait queue
 * @filp: file pointer being polled
 * @wait_address: wait_q to block on
 * @p: poll state
E
Eric Van Hensbergen 已提交
546
 *
547
 * called by files poll operation to add v9fs-poll task to files wait queue
548
 */
E
Eric Van Hensbergen 已提交
549

550 551
static void
p9_pollwait(struct file *filp, wait_queue_head_t *wait_address, poll_table *p)
552
{
553 554 555
	struct p9_conn *m = container_of(p, struct p9_conn, pt);
	struct p9_poll_wait *pwait = NULL;
	int i;
556

557 558 559 560
	for (i = 0; i < ARRAY_SIZE(m->poll_wait); i++) {
		if (m->poll_wait[i].wait_addr == NULL) {
			pwait = &m->poll_wait[i];
			break;
561 562 563
		}
	}

564
	if (!pwait) {
565
		p9_debug(P9_DEBUG_ERROR, "not enough wait_address slots\n");
566 567 568
		return;
	}

569 570 571 572 573
	pwait->conn = m;
	pwait->wait_addr = wait_address;
	init_waitqueue_func_entry(&pwait->wait, p9_pollwake);
	add_wait_queue(wait_address, &pwait->wait);
}
574

575 576 577 578 579 580
/**
 * p9_conn_create - allocate and initialize the per-session mux data
 * @client: client instance
 *
 * Note: Creates the polling task if this is the first session.
 */
581

582 583
static struct p9_conn *p9_conn_create(struct p9_client *client)
{
584
	int n;
585
	struct p9_conn *m;
586

587
	p9_debug(P9_DEBUG_TRANS, "client %p msize %d\n", client, client->msize);
588 589 590
	m = kzalloc(sizeof(struct p9_conn), GFP_KERNEL);
	if (!m)
		return ERR_PTR(-ENOMEM);
591

592 593
	INIT_LIST_HEAD(&m->mux_list);
	m->client = client;
594

595 596 597 598 599 600
	INIT_LIST_HEAD(&m->req_list);
	INIT_LIST_HEAD(&m->unsent_req_list);
	INIT_WORK(&m->rq, p9_read_work);
	INIT_WORK(&m->wq, p9_write_work);
	INIT_LIST_HEAD(&m->poll_pending_link);
	init_poll_funcptr(&m->pt, p9_pollwait);
601

602 603
	n = p9_fd_poll(client, &m->pt);
	if (n & POLLIN) {
604
		p9_debug(P9_DEBUG_TRANS, "mux %p can read\n", m);
605 606
		set_bit(Rpending, &m->wsched);
	}
607

608
	if (n & POLLOUT) {
609
		p9_debug(P9_DEBUG_TRANS, "mux %p can write\n", m);
610 611 612 613 614
		set_bit(Wpending, &m->wsched);
	}

	return m;
}
615

616 617 618 619 620 621 622 623 624 625 626 627 628 629 630
/**
 * p9_poll_mux - polls a mux and schedules read or write works if necessary
 * @m: connection to poll
 *
 */

static void p9_poll_mux(struct p9_conn *m)
{
	int n;

	if (m->err < 0)
		return;

	n = p9_fd_poll(m->client, NULL);
	if (n < 0 || n & (POLLERR | POLLHUP | POLLNVAL)) {
631
		p9_debug(P9_DEBUG_TRANS, "error mux %p err %d\n", m, n);
632 633 634 635 636 637 638
		if (n >= 0)
			n = -ECONNRESET;
		p9_conn_cancel(m, n);
	}

	if (n & POLLIN) {
		set_bit(Rpending, &m->wsched);
639
		p9_debug(P9_DEBUG_TRANS, "mux %p can read\n", m);
640
		if (!test_and_set_bit(Rworksched, &m->wsched)) {
641
			p9_debug(P9_DEBUG_TRANS, "sched read work %p\n", m);
642
			schedule_work(&m->rq);
643 644
		}
	}
645

646 647
	if (n & POLLOUT) {
		set_bit(Wpending, &m->wsched);
648
		p9_debug(P9_DEBUG_TRANS, "mux %p can write\n", m);
649 650
		if ((m->wsize || !list_empty(&m->unsent_req_list)) &&
		    !test_and_set_bit(Wworksched, &m->wsched)) {
651
			p9_debug(P9_DEBUG_TRANS, "sched write work %p\n", m);
652
			schedule_work(&m->wq);
653 654
		}
	}
655 656 657
}

/**
658
 * p9_fd_request - send 9P request
659 660
 * The function can sleep until the request is scheduled for sending.
 * The function can be interrupted. Return from the function is not
661
 * a guarantee that the request is sent successfully.
662
 *
663 664
 * @client: client instance
 * @req: request to be sent
E
Eric Van Hensbergen 已提交
665
 *
666
 */
E
Eric Van Hensbergen 已提交
667

668
static int p9_fd_request(struct p9_client *client, struct p9_req_t *req)
669 670
{
	int n;
671 672
	struct p9_trans_fd *ts = client->trans;
	struct p9_conn *m = ts->conn;
673

674 675
	p9_debug(P9_DEBUG_TRANS, "mux %p task %p tcall %p id %d\n",
		 m, current, req->tc, req->tc->id);
676
	if (m->err < 0)
677
		return m->err;
678

679
	spin_lock(&client->lock);
680
	req->status = REQ_STATUS_UNSENT;
681
	list_add_tail(&req->req_list, &m->unsent_req_list);
682
	spin_unlock(&client->lock);
683 684 685 686

	if (test_and_clear_bit(Wpending, &m->wsched))
		n = POLLOUT;
	else
687
		n = p9_fd_poll(m->client, NULL);
688 689

	if (n & POLLOUT && !test_and_set_bit(Wworksched, &m->wsched))
690
		schedule_work(&m->wq);
691

692
	return 0;
693 694
}

695
static int p9_fd_cancel(struct p9_client *client, struct p9_req_t *req)
696
{
697
	int ret = 1;
698

699
	p9_debug(P9_DEBUG_TRANS, "client %p req %p\n", client, req);
700

701 702 703
	spin_lock(&client->lock);

	if (req->status == REQ_STATUS_UNSENT) {
704
		list_del(&req->req_list);
705
		req->status = REQ_STATUS_FLSHD;
706
		ret = 0;
707 708
	} else if (req->status == REQ_STATUS_SENT)
		req->status = REQ_STATUS_FLSH;
709

710 711 712
	spin_unlock(&client->lock);

	return ret;
713 714
}

E
Eric Van Hensbergen 已提交
715
/**
A
Abhishek Kulkarni 已提交
716 717 718
 * parse_opts - parse mount options into p9_fd_opts structure
 * @params: options string passed from mount
 * @opts: fd transport-specific structure to parse options into
E
Eric Van Hensbergen 已提交
719
 *
720
 * Returns 0 upon success, -ERRNO upon failure
E
Eric Van Hensbergen 已提交
721
 */
722

723
static int parse_opts(char *params, struct p9_fd_opts *opts)
724
{
E
Eric Van Hensbergen 已提交
725 726 727
	char *p;
	substring_t args[MAX_OPT_ARGS];
	int option;
E
Eric Van Hensbergen 已提交
728
	char *options, *tmp_options;
729

E
Eric Van Hensbergen 已提交
730 731 732
	opts->port = P9_PORT;
	opts->rfd = ~0;
	opts->wfd = ~0;
733

734 735 736
	if (!params)
		return 0;

E
Eric Van Hensbergen 已提交
737 738
	tmp_options = kstrdup(params, GFP_KERNEL);
	if (!tmp_options) {
739 740
		p9_debug(P9_DEBUG_ERROR,
			 "failed to allocate copy of option string\n");
741 742
		return -ENOMEM;
	}
E
Eric Van Hensbergen 已提交
743
	options = tmp_options;
744

E
Eric Van Hensbergen 已提交
745 746
	while ((p = strsep(&options, ",")) != NULL) {
		int token;
747
		int r;
E
Eric Van Hensbergen 已提交
748 749 750
		if (!*p)
			continue;
		token = match_token(p, tokens, args);
751
		if ((token != Opt_err) && (token != Opt_privport)) {
752 753
			r = match_int(&args[0], &option);
			if (r < 0) {
754 755
				p9_debug(P9_DEBUG_ERROR,
					 "integer field, but no integer?\n");
756 757
				continue;
			}
E
Eric Van Hensbergen 已提交
758 759 760 761 762 763 764 765 766 767 768
		}
		switch (token) {
		case Opt_port:
			opts->port = option;
			break;
		case Opt_rfdno:
			opts->rfd = option;
			break;
		case Opt_wfdno:
			opts->wfd = option;
			break;
769 770 771
		case Opt_privport:
			opts->privport = 1;
			break;
E
Eric Van Hensbergen 已提交
772 773 774
		default:
			continue;
		}
775
	}
E
Eric Van Hensbergen 已提交
776 777

	kfree(tmp_options);
778
	return 0;
779 780
}

781
static int p9_fd_open(struct p9_client *client, int rfd, int wfd)
782
{
E
Eric Van Hensbergen 已提交
783 784 785 786
	struct p9_trans_fd *ts = kmalloc(sizeof(struct p9_trans_fd),
					   GFP_KERNEL);
	if (!ts)
		return -ENOMEM;
787

E
Eric Van Hensbergen 已提交
788 789 790 791 792 793 794 795 796
	ts->rd = fget(rfd);
	ts->wr = fget(wfd);
	if (!ts->rd || !ts->wr) {
		if (ts->rd)
			fput(ts->rd);
		if (ts->wr)
			fput(ts->wr);
		kfree(ts);
		return -EIO;
797 798
	}

799 800
	client->trans = ts;
	client->status = Connected;
801

E
Eric Van Hensbergen 已提交
802
	return 0;
803 804
}

805
static int p9_socket_open(struct p9_client *client, struct socket *csocket)
806
{
A
Al Viro 已提交
807
	struct p9_trans_fd *p;
808 809
	struct file *file;
	int ret;
A
Al Viro 已提交
810 811 812 813

	p = kmalloc(sizeof(struct p9_trans_fd), GFP_KERNEL);
	if (!p)
		return -ENOMEM;
814 815

	csocket->sk->sk_allocation = GFP_NOIO;
816
	file = sock_alloc_file(csocket, 0, NULL);
817
	if (IS_ERR(file)) {
818 819
		pr_err("%s (%d): failed to map fd\n",
		       __func__, task_pid_nr(current));
A
Al Viro 已提交
820 821
		sock_release(csocket);
		kfree(p);
822
		return PTR_ERR(file);
823 824
	}

825 826
	get_file(file);
	p->wr = p->rd = file;
A
Al Viro 已提交
827 828 829 830 831 832 833 834 835 836 837
	client->trans = p;
	client->status = Connected;

	p->rd->f_flags |= O_NONBLOCK;

	p->conn = p9_conn_create(client);
	if (IS_ERR(p->conn)) {
		ret = PTR_ERR(p->conn);
		p->conn = NULL;
		kfree(p);
		sockfd_put(csocket);
838 839 840 841 842 843 844
		sockfd_put(csocket);
		return ret;
	}
	return 0;
}

/**
845 846
 * p9_mux_destroy - cancels all pending requests and frees mux resources
 * @m: mux to destroy
847 848
 *
 */
E
Eric Van Hensbergen 已提交
849

850
static void p9_conn_destroy(struct p9_conn *m)
851
{
852 853
	p9_debug(P9_DEBUG_TRANS, "mux %p prev %p next %p\n",
		 m, m->mux_list.prev, m->mux_list.next);
854

855 856 857
	p9_mux_poll_stop(m);
	cancel_work_sync(&m->rq);
	cancel_work_sync(&m->wq);
858

859
	p9_conn_cancel(m, -ECONNRESET);
860

861 862
	m->client = NULL;
	kfree(m);
863 864 865
}

/**
866 867
 * p9_fd_close - shutdown file descriptor transport
 * @client: client instance
868 869
 *
 */
E
Eric Van Hensbergen 已提交
870

871
static void p9_fd_close(struct p9_client *client)
872 873 874
{
	struct p9_trans_fd *ts;

875
	if (!client)
876 877
		return;

878
	ts = client->trans;
879 880 881
	if (!ts)
		return;

882 883
	client->status = Disconnected;

884 885
	p9_conn_destroy(ts->conn);

886 887 888 889
	if (ts->rd)
		fput(ts->rd);
	if (ts->wr)
		fput(ts->wr);
890

891 892 893
	kfree(ts);
}

894 895 896 897 898 899 900 901 902 903 904 905 906 907 908 909 910
/*
 * stolen from NFS - maybe should be made a generic function?
 */
static inline int valid_ipaddr4(const char *buf)
{
	int rc, count, in[4];

	rc = sscanf(buf, "%d.%d.%d.%d", &in[0], &in[1], &in[2], &in[3]);
	if (rc != 4)
		return -EINVAL;
	for (count = 0; count < 4; count++) {
		if (in[count] > 255)
			return -EINVAL;
	}
	return 0;
}

911 912 913 914 915 916 917 918 919 920 921 922 923 924 925 926 927 928
static int p9_bind_privport(struct socket *sock)
{
	struct sockaddr_in cl;
	int port, err = -EINVAL;

	memset(&cl, 0, sizeof(cl));
	cl.sin_family = AF_INET;
	cl.sin_addr.s_addr = INADDR_ANY;
	for (port = p9_ipport_resv_max; port >= p9_ipport_resv_min; port--) {
		cl.sin_port = htons((ushort)port);
		err = kernel_bind(sock, (struct sockaddr *)&cl, sizeof(cl));
		if (err != -EADDRINUSE)
			break;
	}
	return err;
}


929 930
static int
p9_fd_create_tcp(struct p9_client *client, const char *addr, char *args)
E
Eric Van Hensbergen 已提交
931 932 933 934 935 936
{
	int err;
	struct socket *csocket;
	struct sockaddr_in sin_server;
	struct p9_fd_opts opts;

937 938
	err = parse_opts(args, &opts);
	if (err < 0)
939
		return err;
E
Eric Van Hensbergen 已提交
940

941
	if (valid_ipaddr4(addr) < 0)
942
		return -EINVAL;
943

E
Eric Van Hensbergen 已提交
944 945 946 947 948
	csocket = NULL;

	sin_server.sin_family = AF_INET;
	sin_server.sin_addr.s_addr = in_aton(addr);
	sin_server.sin_port = htons(opts.port);
949 950
	err = __sock_create(read_pnet(&current->nsproxy->net_ns), PF_INET,
			    SOCK_STREAM, IPPROTO_TCP, &csocket, 1);
A
Al Viro 已提交
951
	if (err) {
952 953
		pr_err("%s (%d): problem creating socket\n",
		       __func__, task_pid_nr(current));
A
Al Viro 已提交
954
		return err;
E
Eric Van Hensbergen 已提交
955 956
	}

957 958 959 960 961 962 963 964 965 966
	if (opts.privport) {
		err = p9_bind_privport(csocket);
		if (err < 0) {
			pr_err("%s (%d): problem binding to privport\n",
			       __func__, task_pid_nr(current));
			sock_release(csocket);
			return err;
		}
	}

E
Eric Van Hensbergen 已提交
967 968 969 970
	err = csocket->ops->connect(csocket,
				    (struct sockaddr *)&sin_server,
				    sizeof(struct sockaddr_in), 0);
	if (err < 0) {
971 972
		pr_err("%s (%d): problem connecting socket to %s\n",
		       __func__, task_pid_nr(current), addr);
E
Eric Van Hensbergen 已提交
973
		sock_release(csocket);
A
Al Viro 已提交
974 975
		return err;
	}
E
Eric Van Hensbergen 已提交
976

A
Al Viro 已提交
977
	return p9_socket_open(client, csocket);
E
Eric Van Hensbergen 已提交
978 979
}

980 981
static int
p9_fd_create_unix(struct p9_client *client, const char *addr, char *args)
E
Eric Van Hensbergen 已提交
982 983 984 985 986 987 988
{
	int err;
	struct socket *csocket;
	struct sockaddr_un sun_server;

	csocket = NULL;

989
	if (strlen(addr) >= UNIX_PATH_MAX) {
990 991
		pr_err("%s (%d): address too long: %s\n",
		       __func__, task_pid_nr(current), addr);
A
Al Viro 已提交
992
		return -ENAMETOOLONG;
E
Eric Van Hensbergen 已提交
993 994 995 996
	}

	sun_server.sun_family = PF_UNIX;
	strcpy(sun_server.sun_path, addr);
997 998
	err = __sock_create(read_pnet(&current->nsproxy->net_ns), PF_UNIX,
			    SOCK_STREAM, 0, &csocket, 1);
A
Al Viro 已提交
999
	if (err < 0) {
1000 1001 1002
		pr_err("%s (%d): problem creating socket\n",
		       __func__, task_pid_nr(current));

A
Al Viro 已提交
1003 1004
		return err;
	}
E
Eric Van Hensbergen 已提交
1005 1006 1007
	err = csocket->ops->connect(csocket, (struct sockaddr *)&sun_server,
			sizeof(struct sockaddr_un) - 1, 0);
	if (err < 0) {
1008 1009
		pr_err("%s (%d): problem connecting socket: %s: %d\n",
		       __func__, task_pid_nr(current), addr, err);
E
Eric Van Hensbergen 已提交
1010
		sock_release(csocket);
A
Al Viro 已提交
1011 1012
		return err;
	}
E
Eric Van Hensbergen 已提交
1013

A
Al Viro 已提交
1014
	return p9_socket_open(client, csocket);
E
Eric Van Hensbergen 已提交
1015 1016
}

1017 1018
static int
p9_fd_create(struct p9_client *client, const char *addr, char *args)
E
Eric Van Hensbergen 已提交
1019 1020 1021
{
	int err;
	struct p9_fd_opts opts;
A
Al Viro 已提交
1022
	struct p9_trans_fd *p;
E
Eric Van Hensbergen 已提交
1023 1024 1025 1026

	parse_opts(args, &opts);

	if (opts.rfd == ~0 || opts.wfd == ~0) {
1027
		pr_err("Insufficient options for proto=fd\n");
1028
		return -ENOPROTOOPT;
E
Eric Van Hensbergen 已提交
1029 1030
	}

1031
	err = p9_fd_open(client, opts.rfd, opts.wfd);
E
Eric Van Hensbergen 已提交
1032
	if (err < 0)
A
Al Viro 已提交
1033
		return err;
E
Eric Van Hensbergen 已提交
1034

1035 1036
	p = (struct p9_trans_fd *) client->trans;
	p->conn = p9_conn_create(client);
1037 1038 1039
	if (IS_ERR(p->conn)) {
		err = PTR_ERR(p->conn);
		p->conn = NULL;
A
Al Viro 已提交
1040 1041 1042
		fput(p->rd);
		fput(p->wr);
		return err;
1043 1044
	}

1045
	return 0;
E
Eric Van Hensbergen 已提交
1046 1047 1048 1049 1050 1051
}

static struct p9_trans_module p9_tcp_trans = {
	.name = "tcp",
	.maxsize = MAX_SOCK_BUF,
	.def = 1,
1052 1053
	.create = p9_fd_create_tcp,
	.close = p9_fd_close,
1054 1055
	.request = p9_fd_request,
	.cancel = p9_fd_cancel,
1056
	.owner = THIS_MODULE,
E
Eric Van Hensbergen 已提交
1057 1058 1059 1060 1061 1062
};

static struct p9_trans_module p9_unix_trans = {
	.name = "unix",
	.maxsize = MAX_SOCK_BUF,
	.def = 0,
1063 1064
	.create = p9_fd_create_unix,
	.close = p9_fd_close,
1065 1066
	.request = p9_fd_request,
	.cancel = p9_fd_cancel,
1067
	.owner = THIS_MODULE,
E
Eric Van Hensbergen 已提交
1068 1069 1070 1071 1072 1073
};

static struct p9_trans_module p9_fd_trans = {
	.name = "fd",
	.maxsize = MAX_SOCK_BUF,
	.def = 0,
1074 1075
	.create = p9_fd_create,
	.close = p9_fd_close,
1076 1077
	.request = p9_fd_request,
	.cancel = p9_fd_cancel,
1078
	.owner = THIS_MODULE,
E
Eric Van Hensbergen 已提交
1079 1080
};

1081 1082 1083 1084 1085 1086 1087 1088 1089
/**
 * p9_poll_proc - poll worker thread
 * @a: thread state and arguments
 *
 * polls all v9fs transports for new events and queues the appropriate
 * work to the work queue
 *
 */

1090
static void p9_poll_workfn(struct work_struct *work)
1091 1092 1093
{
	unsigned long flags;

1094
	p9_debug(P9_DEBUG_TRANS, "start %p\n", current);
1095

1096 1097 1098 1099 1100 1101 1102 1103 1104 1105 1106 1107 1108 1109
	spin_lock_irqsave(&p9_poll_lock, flags);
	while (!list_empty(&p9_poll_pending_list)) {
		struct p9_conn *conn = list_first_entry(&p9_poll_pending_list,
							struct p9_conn,
							poll_pending_link);
		list_del_init(&conn->poll_pending_link);
		spin_unlock_irqrestore(&p9_poll_lock, flags);

		p9_poll_mux(conn);

		spin_lock_irqsave(&p9_poll_lock, flags);
	}
	spin_unlock_irqrestore(&p9_poll_lock, flags);

1110
	p9_debug(P9_DEBUG_TRANS, "finish\n");
1111 1112
}

1113
int p9_trans_fd_init(void)
E
Eric Van Hensbergen 已提交
1114 1115 1116 1117 1118
{
	v9fs_register_trans(&p9_tcp_trans);
	v9fs_register_trans(&p9_unix_trans);
	v9fs_register_trans(&p9_fd_trans);

1119
	return 0;
E
Eric Van Hensbergen 已提交
1120
}
1121 1122 1123

void p9_trans_fd_exit(void)
{
1124
	flush_work(&p9_poll_work);
1125 1126 1127 1128
	v9fs_unregister_trans(&p9_tcp_trans);
	v9fs_unregister_trans(&p9_unix_trans);
	v9fs_unregister_trans(&p9_fd_trans);
}