inode.c 33.6 KB
Newer Older
M
Miklos Szeredi 已提交
1 2
/*
  FUSE: Filesystem in Userspace
M
Miklos Szeredi 已提交
3
  Copyright (C) 2001-2008  Miklos Szeredi <miklos@szeredi.hu>
M
Miklos Szeredi 已提交
4 5 6 7 8 9 10 11 12 13 14 15 16

  This program can be distributed under the terms of the GNU GPL.
  See the file COPYING.
*/

#include "fuse_i.h"

#include <linux/pagemap.h>
#include <linux/slab.h>
#include <linux/file.h>
#include <linux/seq_file.h>
#include <linux/init.h>
#include <linux/module.h>
17
#include <linux/moduleparam.h>
M
Miklos Szeredi 已提交
18 19
#include <linux/parser.h>
#include <linux/statfs.h>
20
#include <linux/random.h>
A
Alexey Dobriyan 已提交
21
#include <linux/sched.h>
M
Miklos Szeredi 已提交
22
#include <linux/exportfs.h>
S
Seth Forshee 已提交
23
#include <linux/posix_acl.h>
24
#include <linux/pid_namespace.h>
M
Miklos Szeredi 已提交
25 26 27 28 29

MODULE_AUTHOR("Miklos Szeredi <miklos@szeredi.hu>");
MODULE_DESCRIPTION("Filesystem in Userspace");
MODULE_LICENSE("GPL");

30
static struct kmem_cache *fuse_inode_cachep;
31 32
struct list_head fuse_conn_list;
DEFINE_MUTEX(fuse_mutex);
M
Miklos Szeredi 已提交
33

34
static int set_global_limit(const char *val, const struct kernel_param *kp);
35

36
unsigned max_user_bgreq;
37 38 39 40 41 42 43
module_param_call(max_user_bgreq, set_global_limit, param_get_uint,
		  &max_user_bgreq, 0644);
__MODULE_PARM_TYPE(max_user_bgreq, "uint");
MODULE_PARM_DESC(max_user_bgreq,
 "Global limit for the maximum number of backgrounded requests an "
 "unprivileged user can set");

44
unsigned max_user_congthresh;
45 46 47 48 49 50 51
module_param_call(max_user_congthresh, set_global_limit, param_get_uint,
		  &max_user_congthresh, 0644);
__MODULE_PARM_TYPE(max_user_congthresh, "uint");
MODULE_PARM_DESC(max_user_congthresh,
 "Global limit for the maximum congestion threshold an "
 "unprivileged user can set");

M
Miklos Szeredi 已提交
52 53
#define FUSE_SUPER_MAGIC 0x65735546

M
Miklos Szeredi 已提交
54 55
#define FUSE_DEFAULT_BLKSIZE 512

56 57 58 59 60 61
/** Maximum number of outstanding background requests */
#define FUSE_DEFAULT_MAX_BACKGROUND 12

/** Congestion starts at 75% of maximum */
#define FUSE_DEFAULT_CONGESTION_THRESHOLD (FUSE_DEFAULT_MAX_BACKGROUND * 3 / 4)

M
Miklos Szeredi 已提交
62 63 64
struct fuse_mount_data {
	int fd;
	unsigned rootmode;
65 66
	kuid_t user_id;
	kgid_t group_id;
M
Miklos Szeredi 已提交
67 68 69 70
	unsigned fd_present:1;
	unsigned rootmode_present:1;
	unsigned user_id_present:1;
	unsigned group_id_present:1;
M
Miklos Szeredi 已提交
71 72
	unsigned default_permissions:1;
	unsigned allow_other:1;
73
	unsigned max_read;
M
Miklos Szeredi 已提交
74
	unsigned blksize;
M
Miklos Szeredi 已提交
75 76
};

77
struct fuse_forget_link *fuse_alloc_forget(void)
78 79 80 81
{
	return kzalloc(sizeof(struct fuse_forget_link), GFP_KERNEL);
}

M
Miklos Szeredi 已提交
82 83 84 85
static struct inode *fuse_alloc_inode(struct super_block *sb)
{
	struct fuse_inode *fi;

Z
zhangliguang 已提交
86 87
	fi = kmem_cache_alloc(fuse_inode_cachep, GFP_KERNEL);
	if (!fi)
M
Miklos Szeredi 已提交
88 89
		return NULL;

M
Miklos Szeredi 已提交
90
	fi->i_time = 0;
91
	fi->inval_mask = 0;
M
Miklos Szeredi 已提交
92
	fi->nodeid = 0;
93
	fi->nlookup = 0;
94
	fi->attr_version = 0;
95
	fi->orig_ino = 0;
96
	fi->state = 0;
97
	mutex_init(&fi->mutex);
98
	spin_lock_init(&fi->lock);
99 100
	fi->forget = fuse_alloc_forget();
	if (!fi->forget) {
Z
zhangliguang 已提交
101
		kmem_cache_free(fuse_inode_cachep, fi);
102 103
		return NULL;
	}
M
Miklos Szeredi 已提交
104

Z
zhangliguang 已提交
105
	return &fi->inode;
M
Miklos Szeredi 已提交
106 107
}

N
Nick Piggin 已提交
108 109 110 111 112 113
static void fuse_i_callback(struct rcu_head *head)
{
	struct inode *inode = container_of(head, struct inode, i_rcu);
	kmem_cache_free(fuse_inode_cachep, inode);
}

M
Miklos Szeredi 已提交
114 115
static void fuse_destroy_inode(struct inode *inode)
{
116
	struct fuse_inode *fi = get_fuse_inode(inode);
117
	if (S_ISREG(inode->i_mode) && !is_bad_inode(inode)) {
118 119 120
		WARN_ON(!list_empty(&fi->write_files));
		WARN_ON(!list_empty(&fi->queued_writes));
	}
121
	mutex_destroy(&fi->mutex);
122
	kfree(fi->forget);
N
Nick Piggin 已提交
123
	call_rcu(&inode->i_rcu, fuse_i_callback);
M
Miklos Szeredi 已提交
124 125
}

126
static void fuse_evict_inode(struct inode *inode)
M
Miklos Szeredi 已提交
127
{
128
	truncate_inode_pages_final(&inode->i_data);
129
	clear_inode(inode);
130
	if (inode->i_sb->s_flags & SB_ACTIVE) {
M
Miklos Szeredi 已提交
131
		struct fuse_conn *fc = get_fuse_conn(inode);
132
		struct fuse_inode *fi = get_fuse_inode(inode);
133 134
		fuse_queue_forget(fc, fi->forget, fi->nodeid, fi->nlookup);
		fi->forget = NULL;
135
	}
M
Miklos Szeredi 已提交
136 137
}

138 139
static int fuse_remount_fs(struct super_block *sb, int *flags, char *data)
{
140
	sync_filesystem(sb);
141
	if (*flags & SB_MANDLOCK)
142 143 144 145 146
		return -EINVAL;

	return 0;
}

147 148 149 150 151 152 153 154 155 156 157 158
/*
 * ino_t is 32-bits on 32-bit arch. We have to squash the 64-bit value down
 * so that it will fit.
 */
static ino_t fuse_squash_ino(u64 ino64)
{
	ino_t ino = (ino_t) ino64;
	if (sizeof(ino_t) < sizeof(u64))
		ino ^= ino64 >> (sizeof(u64) - sizeof(ino_t)) * 8;
	return ino;
}

M
Miklos Szeredi 已提交
159 160
void fuse_change_attributes_common(struct inode *inode, struct fuse_attr *attr,
				   u64 attr_valid)
M
Miklos Szeredi 已提交
161
{
M
Miklos Szeredi 已提交
162
	struct fuse_conn *fc = get_fuse_conn(inode);
163
	struct fuse_inode *fi = get_fuse_inode(inode);
M
Miklos Szeredi 已提交
164

165 166
	lockdep_assert_held(&fi->lock);

167
	fi->attr_version = atomic64_inc_return(&fc->attr_version);
168
	fi->i_time = attr_valid;
169
	WRITE_ONCE(fi->inval_mask, 0);
170

171
	inode->i_ino     = fuse_squash_ino(attr->ino);
172
	inode->i_mode    = (inode->i_mode & S_IFMT) | (attr->mode & 07777);
M
Miklos Szeredi 已提交
173
	set_nlink(inode, attr->nlink);
174 175
	inode->i_uid     = make_kuid(fc->user_ns, attr->uid);
	inode->i_gid     = make_kgid(fc->user_ns, attr->gid);
M
Miklos Szeredi 已提交
176 177 178
	inode->i_blocks  = attr->blocks;
	inode->i_atime.tv_sec   = attr->atime;
	inode->i_atime.tv_nsec  = attr->atimensec;
M
Maxim Patlasov 已提交
179 180 181 182
	/* mtime from server may be stale due to local buffered write */
	if (!fc->writeback_cache || !S_ISREG(inode->i_mode)) {
		inode->i_mtime.tv_sec   = attr->mtime;
		inode->i_mtime.tv_nsec  = attr->mtimensec;
M
Maxim Patlasov 已提交
183 184
		inode->i_ctime.tv_sec   = attr->ctime;
		inode->i_ctime.tv_nsec  = attr->ctimensec;
M
Maxim Patlasov 已提交
185
	}
186

187 188 189 190 191
	if (attr->blksize != 0)
		inode->i_blkbits = ilog2(attr->blksize);
	else
		inode->i_blkbits = inode->i_sb->s_blocksize_bits;

192 193 194 195 196 197
	/*
	 * Don't set the sticky bit in i_mode, unless we want the VFS
	 * to check permissions.  This prevents failures due to the
	 * check in may_delete().
	 */
	fi->orig_i_mode = inode->i_mode;
M
Miklos Szeredi 已提交
198
	if (!fc->default_permissions)
199
		inode->i_mode &= ~S_ISVTX;
200 201

	fi->orig_ino = attr->ino;
M
Miklos Szeredi 已提交
202 203 204 205 206 207 208
}

void fuse_change_attributes(struct inode *inode, struct fuse_attr *attr,
			    u64 attr_valid, u64 attr_version)
{
	struct fuse_conn *fc = get_fuse_conn(inode);
	struct fuse_inode *fi = get_fuse_inode(inode);
P
Pavel Emelyanov 已提交
209
	bool is_wb = fc->writeback_cache;
M
Miklos Szeredi 已提交
210
	loff_t oldsize;
211
	struct timespec64 old_mtime;
M
Miklos Szeredi 已提交
212

213
	spin_lock(&fi->lock);
214 215
	if ((attr_version != 0 && fi->attr_version > attr_version) ||
	    test_bit(FUSE_I_SIZE_UNSTABLE, &fi->state)) {
216
		spin_unlock(&fi->lock);
M
Miklos Szeredi 已提交
217 218 219
		return;
	}

220
	old_mtime = inode->i_mtime;
M
Miklos Szeredi 已提交
221
	fuse_change_attributes_common(inode, attr, attr_valid);
222

223
	oldsize = inode->i_size;
P
Pavel Emelyanov 已提交
224 225 226 227 228 229 230
	/*
	 * In case of writeback_cache enabled, the cached writes beyond EOF
	 * extend local i_size without keeping userspace server in sync. So,
	 * attr->size coming from server can be stale. We cannot trust it.
	 */
	if (!is_wb || !S_ISREG(inode->i_mode))
		i_size_write(inode, attr->size);
231
	spin_unlock(&fi->lock);
232

P
Pavel Emelyanov 已提交
233
	if (!is_wb && S_ISREG(inode->i_mode)) {
234 235 236
		bool inval = false;

		if (oldsize != attr->size) {
237
			truncate_pagecache(inode, attr->size);
238 239
			if (!fc->explicit_inval_data)
				inval = true;
240
		} else if (fc->auto_inval_data) {
241
			struct timespec64 new_mtime = {
242 243 244 245 246 247 248 249
				.tv_sec = attr->mtime,
				.tv_nsec = attr->mtimensec,
			};

			/*
			 * Auto inval mode also checks and invalidates if mtime
			 * has changed.
			 */
250
			if (!timespec64_equal(&old_mtime, &new_mtime))
251 252 253 254 255
				inval = true;
		}

		if (inval)
			invalidate_inode_pages2(inode->i_mapping);
256
	}
M
Miklos Szeredi 已提交
257 258 259 260 261
}

static void fuse_init_inode(struct inode *inode, struct fuse_attr *attr)
{
	inode->i_mode = attr->mode & S_IFMT;
M
Miklos Szeredi 已提交
262
	inode->i_size = attr->size;
M
Maxim Patlasov 已提交
263 264
	inode->i_mtime.tv_sec  = attr->mtime;
	inode->i_mtime.tv_nsec = attr->mtimensec;
M
Maxim Patlasov 已提交
265 266
	inode->i_ctime.tv_sec  = attr->ctime;
	inode->i_ctime.tv_nsec = attr->ctimensec;
267 268
	if (S_ISREG(inode->i_mode)) {
		fuse_init_common(inode);
M
Miklos Szeredi 已提交
269
		fuse_init_file_inode(inode);
270 271 272 273 274 275 276 277 278
	} else if (S_ISDIR(inode->i_mode))
		fuse_init_dir(inode);
	else if (S_ISLNK(inode->i_mode))
		fuse_init_symlink(inode);
	else if (S_ISCHR(inode->i_mode) || S_ISBLK(inode->i_mode) ||
		 S_ISFIFO(inode->i_mode) || S_ISSOCK(inode->i_mode)) {
		fuse_init_common(inode);
		init_special_inode(inode, inode->i_mode,
				   new_decode_dev(attr->rdev));
279 280
	} else
		BUG();
M
Miklos Szeredi 已提交
281 282
}

J
John Muir 已提交
283
int fuse_inode_eq(struct inode *inode, void *_nodeidp)
M
Miklos Szeredi 已提交
284
{
M
Miklos Szeredi 已提交
285
	u64 nodeid = *(u64 *) _nodeidp;
M
Miklos Szeredi 已提交
286 287 288 289 290 291 292 293
	if (get_node_id(inode) == nodeid)
		return 1;
	else
		return 0;
}

static int fuse_inode_set(struct inode *inode, void *_nodeidp)
{
M
Miklos Szeredi 已提交
294
	u64 nodeid = *(u64 *) _nodeidp;
M
Miklos Szeredi 已提交
295 296 297 298
	get_fuse_inode(inode)->nodeid = nodeid;
	return 0;
}

M
Miklos Szeredi 已提交
299
struct inode *fuse_iget(struct super_block *sb, u64 nodeid,
300 301
			int generation, struct fuse_attr *attr,
			u64 attr_valid, u64 attr_version)
M
Miklos Szeredi 已提交
302 303
{
	struct inode *inode;
304
	struct fuse_inode *fi;
M
Miklos Szeredi 已提交
305 306 307 308 309 310 311 312
	struct fuse_conn *fc = get_fuse_conn_super(sb);

 retry:
	inode = iget5_locked(sb, nodeid, fuse_inode_eq, fuse_inode_set, &nodeid);
	if (!inode)
		return NULL;

	if ((inode->i_state & I_NEW)) {
M
Maxim Patlasov 已提交
313
		inode->i_flags |= S_NOATIME;
314
		if (!fc->writeback_cache || !S_ISREG(attr->mode))
M
Maxim Patlasov 已提交
315
			inode->i_flags |= S_NOCMTIME;
M
Miklos Szeredi 已提交
316 317 318 319 320 321 322 323 324 325
		inode->i_generation = generation;
		fuse_init_inode(inode, attr);
		unlock_new_inode(inode);
	} else if ((inode->i_mode ^ attr->mode) & S_IFMT) {
		/* Inode has changed type, any I/O on the old should fail */
		make_bad_inode(inode);
		iput(inode);
		goto retry;
	}

326
	fi = get_fuse_inode(inode);
327
	spin_lock(&fi->lock);
M
Miklos Szeredi 已提交
328
	fi->nlookup++;
329
	spin_unlock(&fi->lock);
330 331
	fuse_change_attributes(inode, attr, attr_valid, attr_version);

M
Miklos Szeredi 已提交
332 333 334
	return inode;
}

J
John Muir 已提交
335 336 337 338 339 340 341 342 343 344 345 346
int fuse_reverse_inval_inode(struct super_block *sb, u64 nodeid,
			     loff_t offset, loff_t len)
{
	struct inode *inode;
	pgoff_t pg_start;
	pgoff_t pg_end;

	inode = ilookup5(sb, nodeid, fuse_inode_eq, &nodeid);
	if (!inode)
		return -ENOENT;

	fuse_invalidate_attr(inode);
S
Seth Forshee 已提交
347
	forget_all_cached_acls(inode);
J
John Muir 已提交
348
	if (offset >= 0) {
349
		pg_start = offset >> PAGE_SHIFT;
J
John Muir 已提交
350 351 352
		if (len <= 0)
			pg_end = -1;
		else
353
			pg_end = (offset + len - 1) >> PAGE_SHIFT;
J
John Muir 已提交
354 355 356 357 358 359 360
		invalidate_inode_pages2_range(inode->i_mapping,
					      pg_start, pg_end);
	}
	iput(inode);
	return 0;
}

361
bool fuse_lock_inode(struct inode *inode)
362
{
363 364 365
	bool locked = false;

	if (!get_fuse_conn(inode)->parallel_dirops) {
366
		mutex_lock(&get_fuse_inode(inode)->mutex);
367 368 369 370
		locked = true;
	}

	return locked;
371 372
}

373
void fuse_unlock_inode(struct inode *inode, bool locked)
374
{
375
	if (locked)
376 377 378
		mutex_unlock(&get_fuse_inode(inode)->mutex);
}

379
static void fuse_umount_begin(struct super_block *sb)
380
{
M
Miklos Szeredi 已提交
381
	fuse_abort_conn(get_fuse_conn_super(sb));
382 383
}

384 385 386 387 388 389
static void fuse_send_destroy(struct fuse_conn *fc)
{
	struct fuse_req *req = fc->destroy_req;
	if (req && fc->conn_init) {
		fc->destroy_req = NULL;
		req->in.h.opcode = FUSE_DESTROY;
M
Miklos Szeredi 已提交
390 391
		__set_bit(FR_FORCE, &req->flags);
		__clear_bit(FR_BACKGROUND, &req->flags);
392
		fuse_request_send(fc, req);
393 394 395 396
		fuse_put_request(fc, req);
	}
}

397 398 399 400
static void fuse_put_super(struct super_block *sb)
{
	struct fuse_conn *fc = get_fuse_conn_super(sb);

M
Miklos Szeredi 已提交
401 402 403 404 405
	mutex_lock(&fuse_mutex);
	list_del(&fc->entry);
	fuse_ctl_remove_conn(fc);
	mutex_unlock(&fuse_mutex);

406
	fuse_conn_put(fc);
M
Miklos Szeredi 已提交
407 408
}

409 410 411 412
static void convert_fuse_statfs(struct kstatfs *stbuf, struct fuse_kstatfs *attr)
{
	stbuf->f_type    = FUSE_SUPER_MAGIC;
	stbuf->f_bsize   = attr->bsize;
413
	stbuf->f_frsize  = attr->frsize;
414 415 416 417 418 419 420 421 422
	stbuf->f_blocks  = attr->blocks;
	stbuf->f_bfree   = attr->bfree;
	stbuf->f_bavail  = attr->bavail;
	stbuf->f_files   = attr->files;
	stbuf->f_ffree   = attr->ffree;
	stbuf->f_namelen = attr->namelen;
	/* fsid is left zero */
}

423
static int fuse_statfs(struct dentry *dentry, struct kstatfs *buf)
424
{
425
	struct super_block *sb = dentry->d_sb;
426
	struct fuse_conn *fc = get_fuse_conn_super(sb);
427
	FUSE_ARGS(args);
428 429 430
	struct fuse_statfs_out outarg;
	int err;

431
	if (!fuse_allow_current_process(fc)) {
M
Miklos Szeredi 已提交
432 433 434 435
		buf->f_type = FUSE_SUPER_MAGIC;
		return 0;
	}

436
	memset(&outarg, 0, sizeof(outarg));
437 438
	args.in.numargs = 0;
	args.in.h.opcode = FUSE_STATFS;
439
	args.in.h.nodeid = get_node_id(d_inode(dentry));
440
	args.out.numargs = 1;
441
	args.out.args[0].size = sizeof(outarg);
442 443
	args.out.args[0].value = &outarg;
	err = fuse_simple_request(fc, &args);
444 445 446 447 448
	if (!err)
		convert_fuse_statfs(buf, &outarg.st);
	return err;
}

M
Miklos Szeredi 已提交
449 450 451 452
enum {
	OPT_FD,
	OPT_ROOTMODE,
	OPT_USER_ID,
453
	OPT_GROUP_ID,
M
Miklos Szeredi 已提交
454 455
	OPT_DEFAULT_PERMISSIONS,
	OPT_ALLOW_OTHER,
456
	OPT_MAX_READ,
M
Miklos Szeredi 已提交
457
	OPT_BLKSIZE,
M
Miklos Szeredi 已提交
458 459 460
	OPT_ERR
};

461
static const match_table_t tokens = {
M
Miklos Szeredi 已提交
462 463 464
	{OPT_FD,			"fd=%u"},
	{OPT_ROOTMODE,			"rootmode=%o"},
	{OPT_USER_ID,			"user_id=%u"},
465
	{OPT_GROUP_ID,			"group_id=%u"},
M
Miklos Szeredi 已提交
466 467
	{OPT_DEFAULT_PERMISSIONS,	"default_permissions"},
	{OPT_ALLOW_OTHER,		"allow_other"},
468
	{OPT_MAX_READ,			"max_read=%u"},
M
Miklos Szeredi 已提交
469
	{OPT_BLKSIZE,			"blksize=%u"},
M
Miklos Szeredi 已提交
470 471 472
	{OPT_ERR,			NULL}
};

473 474 475 476 477 478 479 480 481 482 483
static int fuse_match_uint(substring_t *s, unsigned int *res)
{
	int err = -ENOMEM;
	char *buf = match_strdup(s);
	if (buf) {
		err = kstrtouint(buf, 10, res);
		kfree(buf);
	}
	return err;
}

484 485
static int parse_fuse_opt(char *opt, struct fuse_mount_data *d, int is_bdev,
			  struct user_namespace *user_ns)
M
Miklos Szeredi 已提交
486 487 488
{
	char *p;
	memset(d, 0, sizeof(struct fuse_mount_data));
489
	d->max_read = ~0;
M
Miklos Szeredi 已提交
490
	d->blksize = FUSE_DEFAULT_BLKSIZE;
M
Miklos Szeredi 已提交
491 492 493 494

	while ((p = strsep(&opt, ",")) != NULL) {
		int token;
		int value;
495
		unsigned uv;
M
Miklos Szeredi 已提交
496 497 498 499 500 501 502 503 504 505
		substring_t args[MAX_OPT_ARGS];
		if (!*p)
			continue;

		token = match_token(p, tokens, args);
		switch (token) {
		case OPT_FD:
			if (match_int(&args[0], &value))
				return 0;
			d->fd = value;
506
			d->fd_present = 1;
M
Miklos Szeredi 已提交
507 508 509 510 511
			break;

		case OPT_ROOTMODE:
			if (match_octal(&args[0], &value))
				return 0;
512 513
			if (!fuse_valid_type(value))
				return 0;
M
Miklos Szeredi 已提交
514
			d->rootmode = value;
515
			d->rootmode_present = 1;
M
Miklos Szeredi 已提交
516 517 518
			break;

		case OPT_USER_ID:
519
			if (fuse_match_uint(&args[0], &uv))
M
Miklos Szeredi 已提交
520
				return 0;
521
			d->user_id = make_kuid(user_ns, uv);
522 523
			if (!uid_valid(d->user_id))
				return 0;
524
			d->user_id_present = 1;
M
Miklos Szeredi 已提交
525 526
			break;

527
		case OPT_GROUP_ID:
528
			if (fuse_match_uint(&args[0], &uv))
529
				return 0;
530
			d->group_id = make_kgid(user_ns, uv);
531 532
			if (!gid_valid(d->group_id))
				return 0;
533
			d->group_id_present = 1;
534 535
			break;

M
Miklos Szeredi 已提交
536
		case OPT_DEFAULT_PERMISSIONS:
M
Miklos Szeredi 已提交
537
			d->default_permissions = 1;
M
Miklos Szeredi 已提交
538 539 540
			break;

		case OPT_ALLOW_OTHER:
M
Miklos Szeredi 已提交
541
			d->allow_other = 1;
M
Miklos Szeredi 已提交
542 543
			break;

544 545 546 547 548 549
		case OPT_MAX_READ:
			if (match_int(&args[0], &value))
				return 0;
			d->max_read = value;
			break;

M
Miklos Szeredi 已提交
550 551 552 553 554 555
		case OPT_BLKSIZE:
			if (!is_bdev || match_int(&args[0], &value))
				return 0;
			d->blksize = value;
			break;

M
Miklos Szeredi 已提交
556 557 558 559
		default:
			return 0;
		}
	}
560 561 562

	if (!d->fd_present || !d->rootmode_present ||
	    !d->user_id_present || !d->group_id_present)
M
Miklos Szeredi 已提交
563 564 565 566 567
		return 0;

	return 1;
}

568
static int fuse_show_options(struct seq_file *m, struct dentry *root)
M
Miklos Szeredi 已提交
569
{
570 571
	struct super_block *sb = root->d_sb;
	struct fuse_conn *fc = get_fuse_conn_super(sb);
M
Miklos Szeredi 已提交
572

573 574
	seq_printf(m, ",user_id=%u", from_kuid_munged(fc->user_ns, fc->user_id));
	seq_printf(m, ",group_id=%u", from_kgid_munged(fc->user_ns, fc->group_id));
M
Miklos Szeredi 已提交
575
	if (fc->default_permissions)
M
Miklos Szeredi 已提交
576
		seq_puts(m, ",default_permissions");
M
Miklos Szeredi 已提交
577
	if (fc->allow_other)
M
Miklos Szeredi 已提交
578
		seq_puts(m, ",allow_other");
579 580
	if (fc->max_read != ~0)
		seq_printf(m, ",max_read=%u", fc->max_read);
581 582
	if (sb->s_bdev && sb->s_blocksize != FUSE_DEFAULT_BLKSIZE)
		seq_printf(m, ",blksize=%lu", sb->s_blocksize);
M
Miklos Szeredi 已提交
583 584 585
	return 0;
}

M
Miklos Szeredi 已提交
586 587 588 589 590 591 592
static void fuse_iqueue_init(struct fuse_iqueue *fiq)
{
	memset(fiq, 0, sizeof(struct fuse_iqueue));
	init_waitqueue_head(&fiq->waitq);
	INIT_LIST_HEAD(&fiq->pending);
	INIT_LIST_HEAD(&fiq->interrupts);
	fiq->forget_list_tail = &fiq->forget_list_head;
593
	fiq->connected = 1;
M
Miklos Szeredi 已提交
594 595
}

596 597
static void fuse_pqueue_init(struct fuse_pqueue *fpq)
{
598 599
	unsigned int i;

M
Miklos Szeredi 已提交
600
	spin_lock_init(&fpq->lock);
601 602
	for (i = 0; i < FUSE_PQ_HASH_SIZE; i++)
		INIT_LIST_HEAD(&fpq->processing[i]);
603
	INIT_LIST_HEAD(&fpq->io);
604
	fpq->connected = 1;
605 606
}

607
void fuse_conn_init(struct fuse_conn *fc, struct user_namespace *user_ns)
M
Miklos Szeredi 已提交
608
{
609 610
	memset(fc, 0, sizeof(*fc));
	spin_lock_init(&fc->lock);
K
Kirill Tkhai 已提交
611
	spin_lock_init(&fc->bg_lock);
J
John Muir 已提交
612
	init_rwsem(&fc->killsb);
613
	refcount_set(&fc->count, 1);
614
	atomic_set(&fc->dev_count, 1);
615 616
	init_waitqueue_head(&fc->blocked_waitq);
	init_waitqueue_head(&fc->reserved_req_waitq);
M
Miklos Szeredi 已提交
617
	fuse_iqueue_init(&fc->iq);
618 619
	INIT_LIST_HEAD(&fc->bg_queue);
	INIT_LIST_HEAD(&fc->entry);
620
	INIT_LIST_HEAD(&fc->devices);
621
	atomic_set(&fc->num_waiting, 0);
622 623
	fc->max_background = FUSE_DEFAULT_MAX_BACKGROUND;
	fc->congestion_threshold = FUSE_DEFAULT_CONGESTION_THRESHOLD;
M
Miklos Szeredi 已提交
624
	atomic64_set(&fc->khctr, 0);
625
	fc->polled_files = RB_ROOT;
626
	fc->blocked = 0;
M
Maxim Patlasov 已提交
627
	fc->initialized = 0;
628
	fc->connected = 1;
629
	atomic64_set(&fc->attr_version, 1);
630
	get_random_bytes(&fc->scramble_key, sizeof(fc->scramble_key));
631
	fc->pid_ns = get_pid_ns(task_active_pid_ns(current));
632
	fc->user_ns = get_user_ns(user_ns);
M
Miklos Szeredi 已提交
633
	fc->max_pages = FUSE_DEFAULT_MAX_PAGES_PER_REQ;
M
Miklos Szeredi 已提交
634
}
635
EXPORT_SYMBOL_GPL(fuse_conn_init);
M
Miklos Szeredi 已提交
636

637 638
void fuse_conn_put(struct fuse_conn *fc)
{
639
	if (refcount_dec_and_test(&fc->count)) {
640 641
		if (fc->destroy_req)
			fuse_request_free(fc->destroy_req);
642
		put_pid_ns(fc->pid_ns);
643
		put_user_ns(fc->user_ns);
T
Tejun Heo 已提交
644
		fc->release(fc);
645
	}
646
}
647
EXPORT_SYMBOL_GPL(fuse_conn_put);
648 649 650

struct fuse_conn *fuse_conn_get(struct fuse_conn *fc)
{
651
	refcount_inc(&fc->count);
652 653
	return fc;
}
654
EXPORT_SYMBOL_GPL(fuse_conn_get);
655

656
static struct inode *fuse_get_root_inode(struct super_block *sb, unsigned mode)
M
Miklos Szeredi 已提交
657 658 659 660 661 662
{
	struct fuse_attr attr;
	memset(&attr, 0, sizeof(attr));

	attr.mode = mode;
	attr.ino = FUSE_ROOT_ID;
663
	attr.nlink = 1;
664
	return fuse_iget(sb, 1, 0, &attr, 0, 0);
M
Miklos Szeredi 已提交
665 666
}

M
Miklos Szeredi 已提交
667
struct fuse_inode_handle {
M
Miklos Szeredi 已提交
668 669 670 671 672 673 674
	u64 nodeid;
	u32 generation;
};

static struct dentry *fuse_get_dentry(struct super_block *sb,
				      struct fuse_inode_handle *handle)
{
675
	struct fuse_conn *fc = get_fuse_conn_super(sb);
M
Miklos Szeredi 已提交
676 677 678 679 680 681 682 683
	struct inode *inode;
	struct dentry *entry;
	int err = -ESTALE;

	if (handle->nodeid == 0)
		goto out_err;

	inode = ilookup5(sb, handle->nodeid, fuse_inode_eq, &handle->nodeid);
684 685
	if (!inode) {
		struct fuse_entry_out outarg;
A
Al Viro 已提交
686
		const struct qstr name = QSTR_INIT(".", 1);
687 688 689 690 691 692 693 694 695 696 697 698 699 700 701 702

		if (!fc->export_support)
			goto out_err;

		err = fuse_lookup_name(sb, handle->nodeid, &name, &outarg,
				       &inode);
		if (err && err != -ENOENT)
			goto out_err;
		if (err || !inode) {
			err = -ESTALE;
			goto out_err;
		}
		err = -EIO;
		if (get_node_id(inode) != handle->nodeid)
			goto out_iput;
	}
M
Miklos Szeredi 已提交
703 704 705 706
	err = -ESTALE;
	if (inode->i_generation != handle->generation)
		goto out_iput;

707
	entry = d_obtain_alias(inode);
A
Al Viro 已提交
708
	if (!IS_ERR(entry) && get_node_id(inode) != FUSE_ROOT_ID)
M
Miklos Szeredi 已提交
709 710 711 712 713 714 715 716 717 718
		fuse_invalidate_entry_cache(entry);

	return entry;

 out_iput:
	iput(inode);
 out_err:
	return ERR_PTR(err);
}

A
Al Viro 已提交
719 720
static int fuse_encode_fh(struct inode *inode, u32 *fh, int *max_len,
			   struct inode *parent)
M
Miklos Szeredi 已提交
721
{
A
Al Viro 已提交
722
	int len = parent ? 6 : 3;
M
Miklos Szeredi 已提交
723 724 725
	u64 nodeid;
	u32 generation;

726 727
	if (*max_len < len) {
		*max_len = len;
728
		return  FILEID_INVALID;
729
	}
M
Miklos Szeredi 已提交
730 731 732 733 734 735 736 737

	nodeid = get_fuse_inode(inode)->nodeid;
	generation = inode->i_generation;

	fh[0] = (u32)(nodeid >> 32);
	fh[1] = (u32)(nodeid & 0xffffffff);
	fh[2] = generation;

A
Al Viro 已提交
738
	if (parent) {
M
Miklos Szeredi 已提交
739 740 741 742 743 744 745 746 747
		nodeid = get_fuse_inode(parent)->nodeid;
		generation = parent->i_generation;

		fh[3] = (u32)(nodeid >> 32);
		fh[4] = (u32)(nodeid & 0xffffffff);
		fh[5] = generation;
	}

	*max_len = len;
A
Al Viro 已提交
748
	return parent ? 0x82 : 0x81;
M
Miklos Szeredi 已提交
749 750 751 752 753 754 755 756 757 758 759 760 761 762 763 764 765 766 767 768 769 770 771 772 773 774 775 776 777 778
}

static struct dentry *fuse_fh_to_dentry(struct super_block *sb,
		struct fid *fid, int fh_len, int fh_type)
{
	struct fuse_inode_handle handle;

	if ((fh_type != 0x81 && fh_type != 0x82) || fh_len < 3)
		return NULL;

	handle.nodeid = (u64) fid->raw[0] << 32;
	handle.nodeid |= (u64) fid->raw[1];
	handle.generation = fid->raw[2];
	return fuse_get_dentry(sb, &handle);
}

static struct dentry *fuse_fh_to_parent(struct super_block *sb,
		struct fid *fid, int fh_len, int fh_type)
{
	struct fuse_inode_handle parent;

	if (fh_type != 0x82 || fh_len < 6)
		return NULL;

	parent.nodeid = (u64) fid->raw[3] << 32;
	parent.nodeid |= (u64) fid->raw[4];
	parent.generation = fid->raw[5];
	return fuse_get_dentry(sb, &parent);
}

779 780
static struct dentry *fuse_get_parent(struct dentry *child)
{
781
	struct inode *child_inode = d_inode(child);
782 783 784 785
	struct fuse_conn *fc = get_fuse_conn(child_inode);
	struct inode *inode;
	struct dentry *parent;
	struct fuse_entry_out outarg;
A
Al Viro 已提交
786
	const struct qstr name = QSTR_INIT("..", 2);
787 788 789 790 791 792 793
	int err;

	if (!fc->export_support)
		return ERR_PTR(-ESTALE);

	err = fuse_lookup_name(child_inode->i_sb, get_node_id(child_inode),
			       &name, &outarg, &inode);
794 795 796
	if (err) {
		if (err == -ENOENT)
			return ERR_PTR(-ESTALE);
797 798
		return ERR_PTR(err);
	}
799 800

	parent = d_obtain_alias(inode);
A
Al Viro 已提交
801
	if (!IS_ERR(parent) && get_node_id(inode) != FUSE_ROOT_ID)
802 803 804 805
		fuse_invalidate_entry_cache(parent);

	return parent;
}
M
Miklos Szeredi 已提交
806 807 808 809 810

static const struct export_operations fuse_export_operations = {
	.fh_to_dentry	= fuse_fh_to_dentry,
	.fh_to_parent	= fuse_fh_to_parent,
	.encode_fh	= fuse_encode_fh,
811
	.get_parent	= fuse_get_parent,
M
Miklos Szeredi 已提交
812 813
};

814
static const struct super_operations fuse_super_operations = {
M
Miklos Szeredi 已提交
815 816
	.alloc_inode    = fuse_alloc_inode,
	.destroy_inode  = fuse_destroy_inode,
817
	.evict_inode	= fuse_evict_inode,
M
Miklos Szeredi 已提交
818
	.write_inode	= fuse_write_inode,
M
Miklos Szeredi 已提交
819
	.drop_inode	= generic_delete_inode,
820
	.remount_fs	= fuse_remount_fs,
M
Miklos Szeredi 已提交
821
	.put_super	= fuse_put_super,
822
	.umount_begin	= fuse_umount_begin,
823
	.statfs		= fuse_statfs,
M
Miklos Szeredi 已提交
824 825 826
	.show_options	= fuse_show_options,
};

827 828 829
static void sanitize_global_limit(unsigned *limit)
{
	if (*limit == 0)
830
		*limit = ((totalram_pages() << PAGE_SHIFT) >> 13) /
831 832 833 834 835 836
			 sizeof(struct fuse_req);

	if (*limit >= 1 << 16)
		*limit = (1 << 16) - 1;
}

837
static int set_global_limit(const char *val, const struct kernel_param *kp)
838 839 840 841 842 843 844 845 846 847 848 849 850 851 852 853 854 855 856 857 858 859
{
	int rv;

	rv = param_set_uint(val, kp);
	if (rv)
		return rv;

	sanitize_global_limit((unsigned *)kp->arg);

	return 0;
}

static void process_init_limits(struct fuse_conn *fc, struct fuse_init_out *arg)
{
	int cap_sys_admin = capable(CAP_SYS_ADMIN);

	if (arg->minor < 13)
		return;

	sanitize_global_limit(&max_user_bgreq);
	sanitize_global_limit(&max_user_congthresh);

K
Kirill Tkhai 已提交
860
	spin_lock(&fc->bg_lock);
861 862 863 864 865 866 867 868 869 870 871 872 873
	if (arg->max_background) {
		fc->max_background = arg->max_background;

		if (!cap_sys_admin && fc->max_background > max_user_bgreq)
			fc->max_background = max_user_bgreq;
	}
	if (arg->congestion_threshold) {
		fc->congestion_threshold = arg->congestion_threshold;

		if (!cap_sys_admin &&
		    fc->congestion_threshold > max_user_congthresh)
			fc->congestion_threshold = max_user_congthresh;
	}
K
Kirill Tkhai 已提交
874
	spin_unlock(&fc->bg_lock);
875 876
}

877 878 879 880 881 882 883
static void process_init_reply(struct fuse_conn *fc, struct fuse_req *req)
{
	struct fuse_init_out *arg = &req->misc.init_out;

	if (req->out.h.error || arg->major != FUSE_KERNEL_VERSION)
		fc->conn_error = 1;
	else {
884 885
		unsigned long ra_pages;

886 887
		process_init_limits(fc, arg);

888
		if (arg->minor >= 6) {
889
			ra_pages = arg->max_readahead / PAGE_SIZE;
890 891
			if (arg->flags & FUSE_ASYNC_READ)
				fc->async_read = 1;
892 893
			if (!(arg->flags & FUSE_POSIX_LOCKS))
				fc->no_lock = 1;
M
Miklos Szeredi 已提交
894 895 896
			if (arg->minor >= 17) {
				if (!(arg->flags & FUSE_FLOCK_LOCKS))
					fc->no_flock = 1;
M
Miklos Szeredi 已提交
897 898 899
			} else {
				if (!(arg->flags & FUSE_POSIX_LOCKS))
					fc->no_flock = 1;
M
Miklos Szeredi 已提交
900
			}
901 902
			if (arg->flags & FUSE_ATOMIC_O_TRUNC)
				fc->atomic_o_trunc = 1;
903 904 905 906 907
			if (arg->minor >= 9) {
				/* LOOKUP has dependency on proto version */
				if (arg->flags & FUSE_EXPORT_SUPPORT)
					fc->export_support = 1;
			}
908 909
			if (arg->flags & FUSE_BIG_WRITES)
				fc->big_writes = 1;
910 911
			if (arg->flags & FUSE_DONT_MASK)
				fc->dont_mask = 1;
912 913
			if (arg->flags & FUSE_AUTO_INVAL_DATA)
				fc->auto_inval_data = 1;
914 915
			else if (arg->flags & FUSE_EXPLICIT_INVAL_DATA)
				fc->explicit_inval_data = 1;
916
			if (arg->flags & FUSE_DO_READDIRPLUS) {
917
				fc->do_readdirplus = 1;
918 919 920
				if (arg->flags & FUSE_READDIRPLUS_AUTO)
					fc->readdirplus_auto = 1;
			}
921 922
			if (arg->flags & FUSE_ASYNC_DIO)
				fc->async_dio = 1;
P
Pavel Emelyanov 已提交
923 924
			if (arg->flags & FUSE_WRITEBACK_CACHE)
				fc->writeback_cache = 1;
925 926
			if (arg->flags & FUSE_PARALLEL_DIROPS)
				fc->parallel_dirops = 1;
927 928
			if (arg->flags & FUSE_HANDLE_KILLPRIV)
				fc->handle_killpriv = 1;
929 930
			if (arg->time_gran && arg->time_gran <= 1000000000)
				fc->sb->s_time_gran = arg->time_gran;
S
Seth Forshee 已提交
931
			if ((arg->flags & FUSE_POSIX_ACL)) {
M
Miklos Szeredi 已提交
932
				fc->default_permissions = 1;
S
Seth Forshee 已提交
933 934 935
				fc->posix_acl = 1;
				fc->sb->s_xattr = fuse_acl_xattr_handlers;
			}
D
Dan Schatzberg 已提交
936 937
			if (arg->flags & FUSE_CACHE_SYMLINKS)
				fc->cache_symlinks = 1;
938 939
			if (arg->flags & FUSE_ABORT_ERROR)
				fc->abort_err = 1;
940 941 942 943 944
			if (arg->flags & FUSE_MAX_PAGES) {
				fc->max_pages =
					min_t(unsigned int, FUSE_MAX_MAX_PAGES,
					max_t(unsigned int, arg->max_pages, 1));
			}
945
		} else {
946
			ra_pages = fc->max_read / PAGE_SIZE;
947
			fc->no_lock = 1;
M
Miklos Szeredi 已提交
948
			fc->no_flock = 1;
949
		}
950

951 952
		fc->sb->s_bdi->ra_pages =
				min(fc->sb->s_bdi->ra_pages, ra_pages);
953 954
		fc->minor = arg->minor;
		fc->max_write = arg->minor < 5 ? 4096 : arg->max_write;
955
		fc->max_write = max_t(unsigned, 4096, fc->max_write);
956
		fc->conn_init = 1;
957
	}
958
	fuse_set_initialized(fc);
959
	wake_up_all(&fc->blocked_waitq);
960 961
}

962
static void fuse_send_init(struct fuse_conn *fc, struct fuse_req *req)
963 964
{
	struct fuse_init_in *arg = &req->misc.init_in;
M
Miklos Szeredi 已提交
965

966 967
	arg->major = FUSE_KERNEL_VERSION;
	arg->minor = FUSE_KERNEL_MINOR_VERSION;
968
	arg->max_readahead = fc->sb->s_bdi->ra_pages * PAGE_SIZE;
969
	arg->flags |= FUSE_ASYNC_READ | FUSE_POSIX_LOCKS | FUSE_ATOMIC_O_TRUNC |
M
Miklos Szeredi 已提交
970
		FUSE_EXPORT_SUPPORT | FUSE_BIG_WRITES | FUSE_DONT_MASK |
M
Miklos Szeredi 已提交
971
		FUSE_SPLICE_WRITE | FUSE_SPLICE_MOVE | FUSE_SPLICE_READ |
972
		FUSE_FLOCK_LOCKS | FUSE_HAS_IOCTL_DIR | FUSE_AUTO_INVAL_DATA |
P
Pavel Emelyanov 已提交
973
		FUSE_DO_READDIRPLUS | FUSE_READDIRPLUS_AUTO | FUSE_ASYNC_DIO |
974
		FUSE_WRITEBACK_CACHE | FUSE_NO_OPEN_SUPPORT |
975
		FUSE_PARALLEL_DIROPS | FUSE_HANDLE_KILLPRIV | FUSE_POSIX_ACL |
976
		FUSE_ABORT_ERROR | FUSE_MAX_PAGES | FUSE_CACHE_SYMLINKS |
977
		FUSE_NO_OPENDIR_SUPPORT | FUSE_EXPLICIT_INVAL_DATA;
978 979 980 981 982
	req->in.h.opcode = FUSE_INIT;
	req->in.numargs = 1;
	req->in.args[0].size = sizeof(*arg);
	req->in.args[0].value = arg;
	req->out.numargs = 1;
D
Daniel Mack 已提交
983
	/* Variable length argument used for backward compatibility
984 985 986 987 988 989
	   with interface version < 7.5.  Rest of init_out is zeroed
	   by do_get_request(), so a short reply is not a problem */
	req->out.argvar = 1;
	req->out.args[0].size = sizeof(struct fuse_init_out);
	req->out.args[0].value = &req->misc.init_out;
	req->end = process_init_reply;
990
	fuse_request_send_background(fc, req);
991 992
}

T
Tejun Heo 已提交
993 994
static void fuse_free_conn(struct fuse_conn *fc)
{
995
	WARN_ON(!list_empty(&fc->devices));
A
Al Viro 已提交
996
	kfree_rcu(fc, rcu);
T
Tejun Heo 已提交
997 998
}

999 1000 1001
static int fuse_bdi_init(struct fuse_conn *fc, struct super_block *sb)
{
	int err;
1002
	char *suffix = "";
1003

1004
	if (sb->s_bdev) {
1005
		suffix = "-fuseblk";
1006 1007 1008 1009 1010 1011 1012
		/*
		 * sb->s_bdi points to blkdev's bdi however we want to redirect
		 * it to our private bdi...
		 */
		bdi_put(sb->s_bdi);
		sb->s_bdi = &noop_backing_dev_info;
	}
1013 1014
	err = super_setup_bdi_name(sb, "%u:%u%s", MAJOR(fc->dev),
				   MINOR(fc->dev), suffix);
1015 1016 1017
	if (err)
		return err;

1018
	sb->s_bdi->ra_pages = VM_READAHEAD_PAGES;
1019 1020
	/* fuse does it's own writeback accounting */
	sb->s_bdi->capabilities = BDI_CAP_NO_ACCT_WB | BDI_CAP_STRICTLIMIT;
1021 1022 1023 1024 1025 1026 1027 1028 1029 1030 1031 1032 1033

	/*
	 * For a single fuse filesystem use max 1% of dirty +
	 * writeback threshold.
	 *
	 * This gives about 1M of write buffer for memory maps on a
	 * machine with 1G and 10% dirty_ratio, which should be more
	 * than enough.
	 *
	 * Privileged users can raise it by writing to
	 *
	 *    /sys/class/bdi/<bdi>/max_ratio
	 */
1034
	bdi_set_max_ratio(sb->s_bdi, 1);
1035 1036 1037 1038

	return 0;
}

1039 1040 1041
struct fuse_dev *fuse_dev_alloc(struct fuse_conn *fc)
{
	struct fuse_dev *fud;
1042
	struct list_head *pq;
1043 1044

	fud = kzalloc(sizeof(struct fuse_dev), GFP_KERNEL);
1045 1046
	if (!fud)
		return NULL;
1047

1048 1049 1050 1051
	pq = kcalloc(FUSE_PQ_HASH_SIZE, sizeof(struct list_head), GFP_KERNEL);
	if (!pq) {
		kfree(fud);
		return NULL;
1052 1053
	}

1054 1055 1056 1057 1058 1059 1060 1061
	fud->pq.processing = pq;
	fud->fc = fuse_conn_get(fc);
	fuse_pqueue_init(&fud->pq);

	spin_lock(&fc->lock);
	list_add_tail(&fud->entry, &fc->devices);
	spin_unlock(&fc->lock);

1062 1063 1064 1065 1066 1067 1068 1069 1070 1071 1072 1073 1074 1075 1076
	return fud;
}
EXPORT_SYMBOL_GPL(fuse_dev_alloc);

void fuse_dev_free(struct fuse_dev *fud)
{
	struct fuse_conn *fc = fud->fc;

	if (fc) {
		spin_lock(&fc->lock);
		list_del(&fud->entry);
		spin_unlock(&fc->lock);

		fuse_conn_put(fc);
	}
1077
	kfree(fud->pq.processing);
1078 1079 1080 1081
	kfree(fud);
}
EXPORT_SYMBOL_GPL(fuse_dev_free);

M
Miklos Szeredi 已提交
1082 1083
static int fuse_fill_super(struct super_block *sb, void *data, int silent)
{
1084
	struct fuse_dev *fud;
M
Miklos Szeredi 已提交
1085 1086 1087 1088
	struct fuse_conn *fc;
	struct inode *root;
	struct fuse_mount_data d;
	struct file *file;
1089
	struct dentry *root_dentry;
1090
	struct fuse_req *init_req;
M
Miklos Szeredi 已提交
1091
	int err;
M
Miklos Szeredi 已提交
1092
	int is_bdev = sb->s_bdev != NULL;
M
Miklos Szeredi 已提交
1093

1094
	err = -EINVAL;
1095
	if (sb->s_flags & SB_MANDLOCK)
1096
		goto err;
1097

1098
	sb->s_flags &= ~(SB_NOSEC | SB_I_VERSION);
A
Al Viro 已提交
1099

1100
	if (!parse_fuse_opt(data, &d, is_bdev, sb->s_user_ns))
1101
		goto err;
M
Miklos Szeredi 已提交
1102

M
Miklos Szeredi 已提交
1103
	if (is_bdev) {
1104
#ifdef CONFIG_BLOCK
1105
		err = -EINVAL;
M
Miklos Szeredi 已提交
1106
		if (!sb_set_blocksize(sb, d.blksize))
1107
			goto err;
1108
#endif
M
Miklos Szeredi 已提交
1109
	} else {
1110 1111
		sb->s_blocksize = PAGE_SIZE;
		sb->s_blocksize_bits = PAGE_SHIFT;
M
Miklos Szeredi 已提交
1112
	}
M
Miklos Szeredi 已提交
1113 1114
	sb->s_magic = FUSE_SUPER_MAGIC;
	sb->s_op = &fuse_super_operations;
S
Seth Forshee 已提交
1115
	sb->s_xattr = fuse_xattr_handlers;
M
Miklos Szeredi 已提交
1116
	sb->s_maxbytes = MAX_LFS_FILESIZE;
1117
	sb->s_time_gran = 1;
M
Miklos Szeredi 已提交
1118
	sb->s_export_op = &fuse_export_operations;
1119 1120 1121
	sb->s_iflags |= SB_I_IMA_UNVERIFIABLE_SIGNATURE;
	if (sb->s_user_ns != &init_user_ns)
		sb->s_iflags |= SB_I_UNTRUSTED_MOUNTER;
M
Miklos Szeredi 已提交
1122 1123

	file = fget(d.fd);
1124
	err = -EINVAL;
M
Miklos Szeredi 已提交
1125
	if (!file)
1126
		goto err;
M
Miklos Szeredi 已提交
1127

1128 1129 1130 1131 1132 1133
	/*
	 * Require mount to happen from the same user namespace which
	 * opened /dev/fuse to prevent potential attacks.
	 */
	if (file->f_op != &fuse_dev_operations ||
	    file->f_cred->user_ns != sb->s_user_ns)
1134
		goto err_fput;
M
Miklos Szeredi 已提交
1135

1136 1137 1138 1139 1140 1141 1142
	/*
	 * If we are not in the initial user namespace posix
	 * acls must be translated.
	 */
	if (sb->s_user_ns != &init_user_ns)
		sb->s_xattr = fuse_no_acl_xattr_handlers;

1143
	fc = kmalloc(sizeof(*fc), GFP_KERNEL);
1144 1145 1146
	err = -ENOMEM;
	if (!fc)
		goto err_fput;
M
Miklos Szeredi 已提交
1147

1148
	fuse_conn_init(fc, sb->s_user_ns);
1149
	fc->release = fuse_free_conn;
1150

1151 1152 1153 1154
	fud = fuse_dev_alloc(fc);
	if (!fud)
		goto err_put_conn;

1155
	fc->dev = sb->s_dev;
J
John Muir 已提交
1156
	fc->sb = sb;
1157 1158
	err = fuse_bdi_init(fc, sb);
	if (err)
1159
		goto err_dev_free;
1160

1161
	/* Handle umasking inside the fuse code */
1162
	if (sb->s_flags & SB_POSIXACL)
1163
		fc->dont_mask = 1;
1164
	sb->s_flags |= SB_POSIXACL;
1165

M
Miklos Szeredi 已提交
1166 1167
	fc->default_permissions = d.default_permissions;
	fc->allow_other = d.allow_other;
M
Miklos Szeredi 已提交
1168
	fc->user_id = d.user_id;
1169
	fc->group_id = d.group_id;
1170
	fc->max_read = max_t(unsigned, 4096, d.max_read);
M
Miklos Szeredi 已提交
1171

1172 1173 1174
	/* Used by get_root_inode() */
	sb->s_fs_info = fc;

M
Miklos Szeredi 已提交
1175
	err = -ENOMEM;
1176
	root = fuse_get_root_inode(sb, d.rootmode);
1177
	sb->s_d_op = &fuse_root_dentry_operations;
1178 1179
	root_dentry = d_make_root(root);
	if (!root_dentry)
1180
		goto err_dev_free;
1181
	/* Root dentry doesn't have .d_revalidate */
A
Al Viro 已提交
1182
	sb->s_d_op = &fuse_dentry_operations;
1183

1184
	init_req = fuse_request_alloc(0);
1185 1186
	if (!init_req)
		goto err_put_root;
M
Miklos Szeredi 已提交
1187
	__set_bit(FR_BACKGROUND, &init_req->flags);
1188

1189
	if (is_bdev) {
1190
		fc->destroy_req = fuse_request_alloc(0);
1191
		if (!fc->destroy_req)
J
Julia Lawall 已提交
1192
			goto err_free_init_req;
1193 1194
	}

1195
	mutex_lock(&fuse_mutex);
1196 1197
	err = -EINVAL;
	if (file->private_data)
1198
		goto err_unlock;
1199

1200 1201 1202 1203 1204
	err = fuse_ctl_add_conn(fc);
	if (err)
		goto err_unlock;

	list_add_tail(&fc->entry, &fuse_conn_list);
1205
	sb->s_root = root_dentry;
1206
	file->private_data = fud;
1207
	mutex_unlock(&fuse_mutex);
M
Miklos Szeredi 已提交
1208 1209 1210 1211 1212 1213
	/*
	 * atomic_dec_and_test() in fput() provides the necessary
	 * memory barrier for file->private_data to be visible on all
	 * CPUs after this
	 */
	fput(file);
1214

1215
	fuse_send_init(fc, init_req);
1216

M
Miklos Szeredi 已提交
1217 1218
	return 0;

1219 1220
 err_unlock:
	mutex_unlock(&fuse_mutex);
J
Julia Lawall 已提交
1221
 err_free_init_req:
1222
	fuse_request_free(init_req);
1223 1224
 err_put_root:
	dput(root_dentry);
1225 1226
 err_dev_free:
	fuse_dev_free(fud);
1227
 err_put_conn:
1228
	fuse_conn_put(fc);
1229
	sb->s_fs_info = NULL;
1230 1231 1232
 err_fput:
	fput(file);
 err:
M
Miklos Szeredi 已提交
1233 1234 1235
	return err;
}

A
Al Viro 已提交
1236
static struct dentry *fuse_mount(struct file_system_type *fs_type,
1237
		       int flags, const char *dev_name,
A
Al Viro 已提交
1238
		       void *raw_data)
M
Miklos Szeredi 已提交
1239
{
A
Al Viro 已提交
1240
	return mount_nodev(fs_type, flags, raw_data, fuse_fill_super);
M
Miklos Szeredi 已提交
1241 1242
}

1243
static void fuse_sb_destroy(struct super_block *sb)
J
John Muir 已提交
1244 1245 1246 1247
{
	struct fuse_conn *fc = get_fuse_conn_super(sb);

	if (fc) {
1248 1249
		fuse_send_destroy(fc);

M
Miklos Szeredi 已提交
1250
		fuse_abort_conn(fc);
1251 1252
		fuse_wait_aborted(fc);

J
John Muir 已提交
1253 1254 1255 1256
		down_write(&fc->killsb);
		fc->sb = NULL;
		up_write(&fc->killsb);
	}
1257
}
J
John Muir 已提交
1258

1259 1260 1261
static void fuse_kill_sb_anon(struct super_block *sb)
{
	fuse_sb_destroy(sb);
J
John Muir 已提交
1262 1263 1264
	kill_anon_super(sb);
}

1265 1266 1267
static struct file_system_type fuse_fs_type = {
	.owner		= THIS_MODULE,
	.name		= "fuse",
1268
	.fs_flags	= FS_HAS_SUBTYPE | FS_USERNS_MOUNT,
A
Al Viro 已提交
1269
	.mount		= fuse_mount,
J
John Muir 已提交
1270
	.kill_sb	= fuse_kill_sb_anon,
1271
};
1272
MODULE_ALIAS_FS("fuse");
1273 1274

#ifdef CONFIG_BLOCK
A
Al Viro 已提交
1275
static struct dentry *fuse_mount_blk(struct file_system_type *fs_type,
1276
			   int flags, const char *dev_name,
A
Al Viro 已提交
1277
			   void *raw_data)
1278
{
A
Al Viro 已提交
1279
	return mount_bdev(fs_type, flags, dev_name, raw_data, fuse_fill_super);
1280 1281
}

J
John Muir 已提交
1282 1283
static void fuse_kill_sb_blk(struct super_block *sb)
{
1284
	fuse_sb_destroy(sb);
J
John Muir 已提交
1285 1286 1287
	kill_block_super(sb);
}

1288 1289 1290
static struct file_system_type fuseblk_fs_type = {
	.owner		= THIS_MODULE,
	.name		= "fuseblk",
A
Al Viro 已提交
1291
	.mount		= fuse_mount_blk,
J
John Muir 已提交
1292
	.kill_sb	= fuse_kill_sb_blk,
A
Alexey Dobriyan 已提交
1293
	.fs_flags	= FS_REQUIRES_DEV | FS_HAS_SUBTYPE,
1294
};
1295
MODULE_ALIAS_FS("fuseblk");
1296

1297 1298 1299 1300 1301 1302 1303 1304 1305 1306 1307 1308 1309 1310 1311 1312 1313 1314 1315 1316
static inline int register_fuseblk(void)
{
	return register_filesystem(&fuseblk_fs_type);
}

static inline void unregister_fuseblk(void)
{
	unregister_filesystem(&fuseblk_fs_type);
}
#else
static inline int register_fuseblk(void)
{
	return 0;
}

static inline void unregister_fuseblk(void)
{
}
#endif

1317
static void fuse_inode_init_once(void *foo)
M
Miklos Szeredi 已提交
1318
{
M
Miklos Szeredi 已提交
1319
	struct inode *inode = foo;
M
Miklos Szeredi 已提交
1320

C
Christoph Lameter 已提交
1321
	inode_init_once(inode);
M
Miklos Szeredi 已提交
1322 1323 1324 1325 1326 1327
}

static int __init fuse_fs_init(void)
{
	int err;

1328
	fuse_inode_cachep = kmem_cache_create("fuse_inode",
1329 1330 1331
			sizeof(struct fuse_inode), 0,
			SLAB_HWCACHE_ALIGN|SLAB_ACCOUNT|SLAB_RECLAIM_ACCOUNT,
			fuse_inode_init_once);
1332 1333
	err = -ENOMEM;
	if (!fuse_inode_cachep)
1334 1335 1336 1337 1338 1339 1340 1341 1342
		goto out;

	err = register_fuseblk();
	if (err)
		goto out2;

	err = register_filesystem(&fuse_fs_type);
	if (err)
		goto out3;
1343 1344

	return 0;
M
Miklos Szeredi 已提交
1345

1346
 out3:
1347
	unregister_fuseblk();
1348 1349
 out2:
	kmem_cache_destroy(fuse_inode_cachep);
1350
 out:
M
Miklos Szeredi 已提交
1351 1352 1353 1354 1355 1356
	return err;
}

static void fuse_fs_cleanup(void)
{
	unregister_filesystem(&fuse_fs_type);
1357
	unregister_fuseblk();
1358 1359 1360 1361 1362 1363

	/*
	 * Make sure all delayed rcu free inodes are flushed before we
	 * destroy cache.
	 */
	rcu_barrier();
M
Miklos Szeredi 已提交
1364 1365 1366
	kmem_cache_destroy(fuse_inode_cachep);
}

1367 1368
static struct kobject *fuse_kobj;

1369 1370 1371 1372
static int fuse_sysfs_init(void)
{
	int err;

1373
	fuse_kobj = kobject_create_and_add("fuse", fs_kobj);
1374 1375
	if (!fuse_kobj) {
		err = -ENOMEM;
1376
		goto out_err;
1377
	}
1378

1379 1380
	err = sysfs_create_mount_point(fuse_kobj, "connections");
	if (err)
1381 1382 1383 1384 1385
		goto out_fuse_unregister;

	return 0;

 out_fuse_unregister:
1386
	kobject_put(fuse_kobj);
1387 1388 1389 1390 1391 1392
 out_err:
	return err;
}

static void fuse_sysfs_cleanup(void)
{
1393
	sysfs_remove_mount_point(fuse_kobj, "connections");
1394
	kobject_put(fuse_kobj);
1395 1396
}

M
Miklos Szeredi 已提交
1397 1398 1399 1400
static int __init fuse_init(void)
{
	int res;

K
Kirill Smelkov 已提交
1401 1402
	pr_info("init (API version %i.%i)\n",
		FUSE_KERNEL_VERSION, FUSE_KERNEL_MINOR_VERSION);
M
Miklos Szeredi 已提交
1403

1404
	INIT_LIST_HEAD(&fuse_conn_list);
M
Miklos Szeredi 已提交
1405 1406 1407 1408
	res = fuse_fs_init();
	if (res)
		goto err;

M
Miklos Szeredi 已提交
1409 1410 1411 1412
	res = fuse_dev_init();
	if (res)
		goto err_fs_cleanup;

1413 1414 1415 1416
	res = fuse_sysfs_init();
	if (res)
		goto err_dev_cleanup;

1417 1418 1419 1420
	res = fuse_ctl_init();
	if (res)
		goto err_sysfs_cleanup;

1421 1422 1423
	sanitize_global_limit(&max_user_bgreq);
	sanitize_global_limit(&max_user_congthresh);

M
Miklos Szeredi 已提交
1424 1425
	return 0;

1426 1427
 err_sysfs_cleanup:
	fuse_sysfs_cleanup();
1428 1429
 err_dev_cleanup:
	fuse_dev_cleanup();
M
Miklos Szeredi 已提交
1430 1431
 err_fs_cleanup:
	fuse_fs_cleanup();
M
Miklos Szeredi 已提交
1432 1433 1434 1435 1436 1437
 err:
	return res;
}

static void __exit fuse_exit(void)
{
K
Kirill Smelkov 已提交
1438
	pr_debug("exit\n");
M
Miklos Szeredi 已提交
1439

1440
	fuse_ctl_cleanup();
1441
	fuse_sysfs_cleanup();
M
Miklos Szeredi 已提交
1442
	fuse_fs_cleanup();
M
Miklos Szeredi 已提交
1443
	fuse_dev_cleanup();
M
Miklos Szeredi 已提交
1444 1445 1446 1447
}

module_init(fuse_init);
module_exit(fuse_exit);