acl.c 4.6 KB
Newer Older
L
Linus Torvalds 已提交
1 2 3 4 5 6 7
/*
 *   Copyright (C) International Business Machines  Corp., 2002-2004
 *   Copyright (C) Andreas Gruenbacher, 2001
 *   Copyright (C) Linus Torvalds, 1991, 1992
 *
 *   This program is free software;  you can redistribute it and/or modify
 *   it under the terms of the GNU General Public License as published by
D
Dave Kleikamp 已提交
8
 *   the Free Software Foundation; either version 2 of the License, or
L
Linus Torvalds 已提交
9
 *   (at your option) any later version.
D
Dave Kleikamp 已提交
10
 *
L
Linus Torvalds 已提交
11 12 13 14 15 16
 *   This program is distributed in the hope that it will be useful,
 *   but WITHOUT ANY WARRANTY;  without even the implied warranty of
 *   MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE.  See
 *   the GNU General Public License for more details.
 *
 *   You should have received a copy of the GNU General Public License
D
Dave Kleikamp 已提交
17
 *   along with this program;  if not, write to the Free Software
L
Linus Torvalds 已提交
18 19 20 21
 *   Foundation, Inc., 59 Temple Place, Suite 330, Boston, MA 02111-1307 USA
 */

#include <linux/sched.h>
22
#include <linux/slab.h>
L
Linus Torvalds 已提交
23
#include <linux/fs.h>
24
#include <linux/posix_acl_xattr.h>
L
Linus Torvalds 已提交
25
#include "jfs_incore.h"
26
#include "jfs_txnmgr.h"
L
Linus Torvalds 已提交
27 28 29 30 31 32 33 34 35 36
#include "jfs_xattr.h"
#include "jfs_acl.h"

static struct posix_acl *jfs_get_acl(struct inode *inode, int type)
{
	struct posix_acl *acl;
	char *ea_name;
	int size;
	char *value = NULL;

37 38 39 40
	acl = get_cached_acl(inode, type);
	if (acl != ACL_NOT_CACHED)
		return acl;

L
Linus Torvalds 已提交
41 42
	switch(type) {
		case ACL_TYPE_ACCESS:
43
			ea_name = POSIX_ACL_XATTR_ACCESS;
L
Linus Torvalds 已提交
44 45
			break;
		case ACL_TYPE_DEFAULT:
46
			ea_name = POSIX_ACL_XATTR_DEFAULT;
L
Linus Torvalds 已提交
47 48 49 50 51 52 53 54 55 56 57 58 59 60 61
			break;
		default:
			return ERR_PTR(-EINVAL);
	}

	size = __jfs_getxattr(inode, ea_name, NULL, 0);

	if (size > 0) {
		value = kmalloc(size, GFP_KERNEL);
		if (!value)
			return ERR_PTR(-ENOMEM);
		size = __jfs_getxattr(inode, ea_name, value, size);
	}

	if (size < 0) {
62
		if (size == -ENODATA)
L
Linus Torvalds 已提交
63
			acl = NULL;
64
		else
L
Linus Torvalds 已提交
65 66 67 68
			acl = ERR_PTR(size);
	} else {
		acl = posix_acl_from_xattr(value, size);
	}
69
	kfree(value);
70
	if (!IS_ERR(acl))
71
		set_cached_acl(inode, type, acl);
L
Linus Torvalds 已提交
72 73 74
	return acl;
}

75 76
static int jfs_set_acl(tid_t tid, struct inode *inode, int type,
		       struct posix_acl *acl)
L
Linus Torvalds 已提交
77 78 79 80 81 82 83 84 85 86 87
{
	char *ea_name;
	int rc;
	int size = 0;
	char *value = NULL;

	if (S_ISLNK(inode->i_mode))
		return -EOPNOTSUPP;

	switch(type) {
		case ACL_TYPE_ACCESS:
88
			ea_name = POSIX_ACL_XATTR_ACCESS;
L
Linus Torvalds 已提交
89 90
			break;
		case ACL_TYPE_DEFAULT:
91
			ea_name = POSIX_ACL_XATTR_DEFAULT;
L
Linus Torvalds 已提交
92 93 94 95 96 97 98
			if (!S_ISDIR(inode->i_mode))
				return acl ? -EACCES : 0;
			break;
		default:
			return -EINVAL;
	}
	if (acl) {
99
		size = posix_acl_xattr_size(acl->a_count);
L
Linus Torvalds 已提交
100 101 102 103 104 105 106
		value = kmalloc(size, GFP_KERNEL);
		if (!value)
			return -ENOMEM;
		rc = posix_acl_to_xattr(acl, value, size);
		if (rc < 0)
			goto out;
	}
107
	rc = __jfs_setxattr(tid, inode, ea_name, value, size, 0);
L
Linus Torvalds 已提交
108
out:
109
	kfree(value);
L
Linus Torvalds 已提交
110

111 112 113
	if (!rc)
		set_cached_acl(inode, type, acl);

L
Linus Torvalds 已提交
114 115 116
	return rc;
}

117
int jfs_check_acl(struct inode *inode, int mask)
L
Linus Torvalds 已提交
118
{
119 120 121
	struct posix_acl *acl;

	acl = jfs_get_acl(inode, ACL_TYPE_ACCESS);
A
Al Viro 已提交
122 123 124 125
	if (IS_ERR(acl))
		return PTR_ERR(acl);
	if (acl) {
		int error = posix_acl_permission(inode, acl, mask);
L
Linus Torvalds 已提交
126
		posix_acl_release(acl);
A
Al Viro 已提交
127
		return error;
L
Linus Torvalds 已提交
128 129 130 131 132
	}

	return -EAGAIN;
}

133
int jfs_init_acl(tid_t tid, struct inode *inode, struct inode *dir)
L
Linus Torvalds 已提交
134 135 136 137 138 139 140 141 142 143 144 145 146 147 148
{
	struct posix_acl *acl = NULL;
	struct posix_acl *clone;
	mode_t mode;
	int rc = 0;

	if (S_ISLNK(inode->i_mode))
		return 0;

	acl = jfs_get_acl(dir, ACL_TYPE_DEFAULT);
	if (IS_ERR(acl))
		return PTR_ERR(acl);

	if (acl) {
		if (S_ISDIR(inode->i_mode)) {
149
			rc = jfs_set_acl(tid, inode, ACL_TYPE_DEFAULT, acl);
L
Linus Torvalds 已提交
150 151 152 153 154 155 156 157 158 159 160 161 162
			if (rc)
				goto cleanup;
		}
		clone = posix_acl_clone(acl, GFP_KERNEL);
		if (!clone) {
			rc = -ENOMEM;
			goto cleanup;
		}
		mode = inode->i_mode;
		rc = posix_acl_create_masq(clone, &mode);
		if (rc >= 0) {
			inode->i_mode = mode;
			if (rc > 0)
163 164
				rc = jfs_set_acl(tid, inode, ACL_TYPE_ACCESS,
						 clone);
L
Linus Torvalds 已提交
165 166 167 168 169
		}
		posix_acl_release(clone);
cleanup:
		posix_acl_release(acl);
	} else
A
Al Viro 已提交
170
		inode->i_mode &= ~current_umask();
D
Dave Kleikamp 已提交
171

172 173
	JFS_IP(inode)->mode2 = (JFS_IP(inode)->mode2 & 0xffff0000) |
			       inode->i_mode;
L
Linus Torvalds 已提交
174 175 176 177

	return rc;
}

178
int jfs_acl_chmod(struct inode *inode)
L
Linus Torvalds 已提交
179 180 181 182 183 184 185 186 187 188 189 190 191 192 193 194 195
{
	struct posix_acl *acl, *clone;
	int rc;

	if (S_ISLNK(inode->i_mode))
		return -EOPNOTSUPP;

	acl = jfs_get_acl(inode, ACL_TYPE_ACCESS);
	if (IS_ERR(acl) || !acl)
		return PTR_ERR(acl);

	clone = posix_acl_clone(acl, GFP_KERNEL);
	posix_acl_release(acl);
	if (!clone)
		return -ENOMEM;

	rc = posix_acl_chmod_masq(clone, inode->i_mode);
196 197
	if (!rc) {
		tid_t tid = txBegin(inode->i_sb, 0);
198
		mutex_lock(&JFS_IP(inode)->commit_mutex);
199 200 201 202
		rc = jfs_set_acl(tid, inode, ACL_TYPE_ACCESS, clone);
		if (!rc)
			rc = txCommit(tid, 1, &inode, 0);
		txEnd(tid);
203
		mutex_unlock(&JFS_IP(inode)->commit_mutex);
204
	}
L
Linus Torvalds 已提交
205 206 207 208

	posix_acl_release(clone);
	return rc;
}