super.c 36.5 KB
Newer Older
L
Linus Torvalds 已提交
1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17
/*
 *  linux/fs/super.c
 *
 *  Copyright (C) 1991, 1992  Linus Torvalds
 *
 *  super.c contains code to handle: - mount structures
 *                                   - super-block tables
 *                                   - filesystem drivers list
 *                                   - mount system call
 *                                   - umount system call
 *                                   - ustat system call
 *
 * GK 2/5/95  -  Changed to support mounting the root fs via NFS
 *
 *  Added kerneld support: Jacques Gelinas and Bjorn Ekwall
 *  Added change_root: Werner Almesberger & Hans Lermen, Feb '96
 *  Added options to /proc/mounts:
18
 *    Torbjörn Lindh (torbjorn.lindh@gopta.se), April 14, 1996.
L
Linus Torvalds 已提交
19 20 21 22
 *  Added devfs support: Richard Gooch <rgooch@atnf.csiro.au>, 13-JAN-1998
 *  Heavily rewritten for 'one fs - one tree' dcache architecture. AV, Mar 2000
 */

23
#include <linux/export.h>
L
Linus Torvalds 已提交
24 25 26 27 28 29
#include <linux/slab.h>
#include <linux/blkdev.h>
#include <linux/mount.h>
#include <linux/security.h>
#include <linux/writeback.h>		/* for the emergency remount stuff */
#include <linux/idr.h>
I
Ingo Molnar 已提交
30
#include <linux/mutex.h>
31
#include <linux/backing-dev.h>
32
#include <linux/rculist_bl.h>
33
#include <linux/cleancache.h>
A
Al Viro 已提交
34
#include <linux/fsnotify.h>
35
#include <linux/lockdep.h>
36
#include <linux/user_namespace.h>
37
#include "internal.h"
L
Linus Torvalds 已提交
38 39


A
Al Viro 已提交
40 41
static LIST_HEAD(super_blocks);
static DEFINE_SPINLOCK(sb_lock);
L
Linus Torvalds 已提交
42

43 44 45 46 47 48
static char *sb_writers_name[SB_FREEZE_LEVELS] = {
	"sb_writers",
	"sb_pagefaults",
	"sb_internal",
};

49 50 51 52 53 54 55
/*
 * One thing we have to be careful of with a per-sb shrinker is that we don't
 * drop the last active reference to the superblock from within the shrinker.
 * If that happens we could trigger unregistering the shrinker from within the
 * shrinker path and that leads to deadlock on the shrinker_rwsem. Hence we
 * take a passive reference to the superblock to avoid this from occurring.
 */
56 57
static unsigned long super_cache_scan(struct shrinker *shrink,
				      struct shrink_control *sc)
58 59
{
	struct super_block *sb;
60 61 62 63 64
	long	fs_objects = 0;
	long	total_objects;
	long	freed = 0;
	long	dentries;
	long	inodes;
65 66 67 68 69 70 71

	sb = container_of(shrink, struct super_block, s_shrink);

	/*
	 * Deadlock avoidance.  We may hold various FS locks, and we don't want
	 * to recurse into the FS that called us in clear_inode() and friends..
	 */
72 73
	if (!(sc->gfp_mask & __GFP_FS))
		return SHRINK_STOP;
74

75
	if (!trylock_super(sb))
76
		return SHRINK_STOP;
77

A
Al Viro 已提交
78
	if (sb->s_op->nr_cached_objects)
79
		fs_objects = sb->s_op->nr_cached_objects(sb, sc);
80

81 82
	inodes = list_lru_shrink_count(&sb->s_inode_lru, sc);
	dentries = list_lru_shrink_count(&sb->s_dentry_lru, sc);
83
	total_objects = dentries + inodes + fs_objects + 1;
84 85
	if (!total_objects)
		total_objects = 1;
86

87
	/* proportion the scan between the caches */
88
	dentries = mult_frac(sc->nr_to_scan, dentries, total_objects);
89
	inodes = mult_frac(sc->nr_to_scan, inodes, total_objects);
90
	fs_objects = mult_frac(sc->nr_to_scan, fs_objects, total_objects);
91

92 93 94
	/*
	 * prune the dcache first as the icache is pinned by it, then
	 * prune the icache, followed by the filesystem specific caches
95 96 97
	 *
	 * Ensure that we always scan at least one object - memcg kmem
	 * accounting uses this to fully empty the caches.
98
	 */
99
	sc->nr_to_scan = dentries + 1;
100
	freed = prune_dcache_sb(sb, sc);
101
	sc->nr_to_scan = inodes + 1;
102
	freed += prune_icache_sb(sb, sc);
103 104

	if (fs_objects) {
105
		sc->nr_to_scan = fs_objects + 1;
106
		freed += sb->s_op->free_cached_objects(sb, sc);
107 108
	}

109
	up_read(&sb->s_umount);
110 111 112 113 114 115 116 117 118 119 120
	return freed;
}

static unsigned long super_cache_count(struct shrinker *shrink,
				       struct shrink_control *sc)
{
	struct super_block *sb;
	long	total_objects = 0;

	sb = container_of(shrink, struct super_block, s_shrink);

121
	/*
122
	 * Don't call trylock_super as it is a potential
123 124 125
	 * scalability bottleneck. The counts could get updated
	 * between super_cache_count and super_cache_scan anyway.
	 * Call to super_cache_count with shrinker_rwsem held
126
	 * ensures the safety of call to list_lru_shrink_count() and
127 128
	 * s_op->nr_cached_objects().
	 */
129
	if (sb->s_op && sb->s_op->nr_cached_objects)
130
		total_objects = sb->s_op->nr_cached_objects(sb, sc);
131

132 133
	total_objects += list_lru_shrink_count(&sb->s_dentry_lru, sc);
	total_objects += list_lru_shrink_count(&sb->s_inode_lru, sc);
134

135
	total_objects = vfs_pressure_ratio(total_objects);
136
	return total_objects;
137 138
}

139 140 141 142 143 144 145
static void destroy_super_work(struct work_struct *work)
{
	struct super_block *s = container_of(work, struct super_block,
							destroy_work);
	int i;

	for (i = 0; i < SB_FREEZE_LEVELS; i++)
146
		percpu_free_rwsem(&s->s_writers.rw_sem[i]);
147 148 149 150 151 152 153 154 155 156
	kfree(s);
}

static void destroy_super_rcu(struct rcu_head *head)
{
	struct super_block *s = container_of(head, struct super_block, rcu);
	INIT_WORK(&s->destroy_work, destroy_super_work);
	schedule_work(&s->destroy_work);
}

157 158 159 160 161 162 163
/**
 *	destroy_super	-	frees a superblock
 *	@s: superblock to free
 *
 *	Frees a superblock.
 */
static void destroy_super(struct super_block *s)
164
{
165 166 167 168
	list_lru_destroy(&s->s_dentry_lru);
	list_lru_destroy(&s->s_inode_lru);
	security_sb_free(s);
	WARN_ON(!list_empty(&s->s_mounts));
169
	put_user_ns(s->s_user_ns);
170 171
	kfree(s->s_subtype);
	kfree(s->s_options);
172
	call_rcu(&s->rcu, destroy_super_rcu);
173 174
}

L
Linus Torvalds 已提交
175 176
/**
 *	alloc_super	-	create new superblock
177
 *	@type:	filesystem type superblock should belong to
D
David Howells 已提交
178
 *	@flags: the mount flags
179
 *	@user_ns: User namespace for the super_block
L
Linus Torvalds 已提交
180 181 182 183
 *
 *	Allocates and initializes a new &struct super_block.  alloc_super()
 *	returns a pointer new superblock or %NULL if allocation had failed.
 */
184 185
static struct super_block *alloc_super(struct file_system_type *type, int flags,
				       struct user_namespace *user_ns)
L
Linus Torvalds 已提交
186
{
187
	struct super_block *s = kzalloc(sizeof(struct super_block),  GFP_USER);
188
	static const struct super_operations default_op;
189 190 191 192
	int i;

	if (!s)
		return NULL;
L
Linus Torvalds 已提交
193

194
	INIT_LIST_HEAD(&s->s_mounts);
195
	s->s_user_ns = get_user_ns(user_ns);
196

197 198
	if (security_sb_alloc(s))
		goto fail;
199

200
	for (i = 0; i < SB_FREEZE_LEVELS; i++) {
201 202 203
		if (__percpu_init_rwsem(&s->s_writers.rw_sem[i],
					sb_writers_name[i],
					&type->s_writers_key[i]))
204
			goto fail;
L
Linus Torvalds 已提交
205
	}
206
	init_waitqueue_head(&s->s_writers.wait_unfrozen);
207
	s->s_bdi = &noop_backing_dev_info;
208 209 210
	s->s_flags = flags;
	INIT_HLIST_NODE(&s->s_instances);
	INIT_HLIST_BL_HEAD(&s->s_anon);
211
	mutex_init(&s->s_sync_lock);
212
	INIT_LIST_HEAD(&s->s_inodes);
213
	spin_lock_init(&s->s_inode_list_lock);
214

V
Vladimir Davydov 已提交
215
	if (list_lru_init_memcg(&s->s_dentry_lru))
216
		goto fail;
V
Vladimir Davydov 已提交
217
	if (list_lru_init_memcg(&s->s_inode_lru))
218 219 220 221 222 223 224 225 226 227 228 229 230 231 232 233 234 235 236 237 238 239 240 241 242 243 244 245 246
		goto fail;

	init_rwsem(&s->s_umount);
	lockdep_set_class(&s->s_umount, &type->s_umount_key);
	/*
	 * sget() can have s_umount recursion.
	 *
	 * When it cannot find a suitable sb, it allocates a new
	 * one (this one), and tries again to find a suitable old
	 * one.
	 *
	 * In case that succeeds, it will acquire the s_umount
	 * lock of the old one. Since these are clearly distrinct
	 * locks, and this object isn't exposed yet, there's no
	 * risk of deadlocks.
	 *
	 * Annotate this by putting this lock in a different
	 * subclass.
	 */
	down_write_nested(&s->s_umount, SINGLE_DEPTH_NESTING);
	s->s_count = 1;
	atomic_set(&s->s_active, 1);
	mutex_init(&s->s_vfs_rename_mutex);
	lockdep_set_class(&s->s_vfs_rename_mutex, &type->s_vfs_rename_key);
	mutex_init(&s->s_dquot.dqio_mutex);
	mutex_init(&s->s_dquot.dqonoff_mutex);
	s->s_maxbytes = MAX_NON_LFS;
	s->s_op = &default_op;
	s->s_time_gran = 1000000000;
247
	s->cleancache_poolid = CLEANCACHE_NO_POOL;
248 249 250 251 252

	s->s_shrink.seeks = DEFAULT_SEEKS;
	s->s_shrink.scan_objects = super_cache_scan;
	s->s_shrink.count_objects = super_cache_count;
	s->s_shrink.batch = 1024;
V
Vladimir Davydov 已提交
253
	s->s_shrink.flags = SHRINKER_NUMA_AWARE | SHRINKER_MEMCG_AWARE;
L
Linus Torvalds 已提交
254
	return s;
255

256 257 258
fail:
	destroy_super(s);
	return NULL;
L
Linus Torvalds 已提交
259 260 261 262 263
}

/* Superblock refcounting  */

/*
A
Al Viro 已提交
264
 * Drop a superblock's refcount.  The caller must hold sb_lock.
L
Linus Torvalds 已提交
265
 */
A
Al Viro 已提交
266
static void __put_super(struct super_block *sb)
L
Linus Torvalds 已提交
267 268
{
	if (!--sb->s_count) {
269
		list_del_init(&sb->s_list);
L
Linus Torvalds 已提交
270 271 272 273 274 275 276 277 278 279 280
		destroy_super(sb);
	}
}

/**
 *	put_super	-	drop a temporary reference to superblock
 *	@sb: superblock in question
 *
 *	Drops a temporary reference, frees superblock if there's no
 *	references left.
 */
A
Al Viro 已提交
281
static void put_super(struct super_block *sb)
L
Linus Torvalds 已提交
282 283 284 285 286 287 288 289
{
	spin_lock(&sb_lock);
	__put_super(sb);
	spin_unlock(&sb_lock);
}


/**
290
 *	deactivate_locked_super	-	drop an active reference to superblock
L
Linus Torvalds 已提交
291 292
 *	@s: superblock to deactivate
 *
293
 *	Drops an active reference to superblock, converting it into a temporary
294
 *	one if there is no other active references left.  In that case we
L
Linus Torvalds 已提交
295 296
 *	tell fs driver to shut it down and drop the temporary reference we
 *	had just acquired.
297 298
 *
 *	Caller holds exclusive lock on superblock; that lock is released.
L
Linus Torvalds 已提交
299
 */
300
void deactivate_locked_super(struct super_block *s)
L
Linus Torvalds 已提交
301 302
{
	struct file_system_type *fs = s->s_type;
A
Al Viro 已提交
303
	if (atomic_dec_and_test(&s->s_active)) {
304
		cleancache_invalidate_fs(s);
305
		unregister_shrinker(&s->s_shrink);
306
		fs->kill_sb(s);
G
Glauber Costa 已提交
307

308 309 310 311 312 313 314 315
		/*
		 * Since list_lru_destroy() may sleep, we cannot call it from
		 * put_super(), where we hold the sb_lock. Therefore we destroy
		 * the lru lists right now.
		 */
		list_lru_destroy(&s->s_dentry_lru);
		list_lru_destroy(&s->s_inode_lru);

L
Linus Torvalds 已提交
316 317
		put_filesystem(fs);
		put_super(s);
318 319
	} else {
		up_write(&s->s_umount);
L
Linus Torvalds 已提交
320 321 322
	}
}

323
EXPORT_SYMBOL(deactivate_locked_super);
L
Linus Torvalds 已提交
324

A
Al Viro 已提交
325
/**
326
 *	deactivate_super	-	drop an active reference to superblock
A
Al Viro 已提交
327 328
 *	@s: superblock to deactivate
 *
329 330 331
 *	Variant of deactivate_locked_super(), except that superblock is *not*
 *	locked by caller.  If we are going to drop the final active reference,
 *	lock will be acquired prior to that.
A
Al Viro 已提交
332
 */
333
void deactivate_super(struct super_block *s)
A
Al Viro 已提交
334
{
335 336 337
        if (!atomic_add_unless(&s->s_active, -1, 1)) {
		down_write(&s->s_umount);
		deactivate_locked_super(s);
A
Al Viro 已提交
338 339 340
	}
}

341
EXPORT_SYMBOL(deactivate_super);
A
Al Viro 已提交
342

L
Linus Torvalds 已提交
343 344 345 346 347 348 349 350 351
/**
 *	grab_super - acquire an active reference
 *	@s: reference we are trying to make active
 *
 *	Tries to acquire an active reference.  grab_super() is used when we
 * 	had just found a superblock in super_blocks or fs_type->fs_supers
 *	and want to turn it into a full-blown active reference.  grab_super()
 *	is called with sb_lock held and drops it.  Returns 1 in case of
 *	success, 0 if we had failed (superblock contents was already dead or
A
Al Viro 已提交
352 353 354
 *	dying when grab_super() had been called).  Note that this is only
 *	called for superblocks not in rundown mode (== ones still on ->fs_supers
 *	of their type), so increment of ->s_count is OK here.
L
Linus Torvalds 已提交
355
 */
356
static int grab_super(struct super_block *s) __releases(sb_lock)
L
Linus Torvalds 已提交
357 358 359 360
{
	s->s_count++;
	spin_unlock(&sb_lock);
	down_write(&s->s_umount);
A
Al Viro 已提交
361 362 363 364
	if ((s->s_flags & MS_BORN) && atomic_inc_not_zero(&s->s_active)) {
		put_super(s);
		return 1;
	}
L
Linus Torvalds 已提交
365 366 367 368 369
	up_write(&s->s_umount);
	put_super(s);
	return 0;
}

370
/*
371
 *	trylock_super - try to grab ->s_umount shared
W
Wanpeng Li 已提交
372
 *	@sb: reference we are trying to grab
373
 *
374
 *	Try to prevent fs shutdown.  This is used in places where we
375
 *	cannot take an active reference but we need to ensure that the
376 377 378 379 380 381 382 383 384 385
 *	filesystem is not shut down while we are working on it. It returns
 *	false if we cannot acquire s_umount or if we lose the race and
 *	filesystem already got into shutdown, and returns true with the s_umount
 *	lock held in read mode in case of success. On successful return,
 *	the caller must drop the s_umount lock when done.
 *
 *	Note that unlike get_super() et.al. this one does *not* bump ->s_count.
 *	The reason why it's safe is that we are OK with doing trylock instead
 *	of down_read().  There's a couple of places that are OK with that, but
 *	it's very much not a general-purpose interface.
386
 */
387
bool trylock_super(struct super_block *sb)
388 389
{
	if (down_read_trylock(&sb->s_umount)) {
390 391
		if (!hlist_unhashed(&sb->s_instances) &&
		    sb->s_root && (sb->s_flags & MS_BORN))
392 393 394 395 396 397 398
			return true;
		up_read(&sb->s_umount);
	}

	return false;
}

L
Linus Torvalds 已提交
399 400 401 402 403 404 405 406 407
/**
 *	generic_shutdown_super	-	common helper for ->kill_sb()
 *	@sb: superblock to kill
 *
 *	generic_shutdown_super() does all fs-independent work on superblock
 *	shutdown.  Typical ->kill_sb() should pick all fs-specific objects
 *	that need destruction out of superblock, call generic_shutdown_super()
 *	and release aforementioned objects.  Note: dentries and inodes _are_
 *	taken care of and do not need specific handling.
408 409 410 411
 *
 *	Upon calling this function, the filesystem may no longer alter or
 *	rearrange the set of dentries belonging to this super_block, nor may it
 *	change the attachments of dentries to inodes.
L
Linus Torvalds 已提交
412 413 414
 */
void generic_shutdown_super(struct super_block *sb)
{
415
	const struct super_operations *sop = sb->s_op;
L
Linus Torvalds 已提交
416

417 418
	if (sb->s_root) {
		shrink_dcache_for_umount(sb);
419
		sync_filesystem(sb);
L
Linus Torvalds 已提交
420
		sb->s_flags &= ~MS_ACTIVE;
421

422
		fsnotify_unmount_inodes(sb);
423
		cgroup_writeback_umount();
A
Al Viro 已提交
424 425

		evict_inodes(sb);
L
Linus Torvalds 已提交
426

427 428 429 430 431
		if (sb->s_dio_done_wq) {
			destroy_workqueue(sb->s_dio_done_wq);
			sb->s_dio_done_wq = NULL;
		}

L
Linus Torvalds 已提交
432 433 434
		if (sop->put_super)
			sop->put_super(sb);

A
Al Viro 已提交
435
		if (!list_empty(&sb->s_inodes)) {
436 437 438
			printk("VFS: Busy inodes after unmount of %s. "
			   "Self-destruct in 5 seconds.  Have a nice day...\n",
			   sb->s_id);
L
Linus Torvalds 已提交
439 440 441 442
		}
	}
	spin_lock(&sb_lock);
	/* should be initialized for __put_super_and_need_restart() */
A
Al Viro 已提交
443
	hlist_del_init(&sb->s_instances);
L
Linus Torvalds 已提交
444 445 446 447 448 449 450
	spin_unlock(&sb_lock);
	up_write(&sb->s_umount);
}

EXPORT_SYMBOL(generic_shutdown_super);

/**
451
 *	sget_userns -	find or create a superblock
L
Linus Torvalds 已提交
452 453 454
 *	@type:	filesystem type superblock should belong to
 *	@test:	comparison callback
 *	@set:	setup callback
D
David Howells 已提交
455
 *	@flags:	mount flags
456
 *	@user_ns: User namespace for the super_block
L
Linus Torvalds 已提交
457 458
 *	@data:	argument to each of them
 */
459
struct super_block *sget_userns(struct file_system_type *type,
L
Linus Torvalds 已提交
460 461
			int (*test)(struct super_block *,void *),
			int (*set)(struct super_block *,void *),
462
			int flags, struct user_namespace *user_ns,
L
Linus Torvalds 已提交
463 464 465
			void *data)
{
	struct super_block *s = NULL;
466
	struct super_block *old;
L
Linus Torvalds 已提交
467 468
	int err;

469 470 471 472
	if (!(flags & MS_KERNMOUNT) &&
	    !(type->fs_flags & FS_USERNS_MOUNT) &&
	    !capable(CAP_SYS_ADMIN))
		return ERR_PTR(-EPERM);
L
Linus Torvalds 已提交
473 474
retry:
	spin_lock(&sb_lock);
475
	if (test) {
476
		hlist_for_each_entry(old, &type->fs_supers, s_instances) {
477 478
			if (!test(old, data))
				continue;
479 480 481 482 483 484 485 486
			if (user_ns != old->s_user_ns) {
				spin_unlock(&sb_lock);
				if (s) {
					up_write(&s->s_umount);
					destroy_super(s);
				}
				return ERR_PTR(-EBUSY);
			}
487 488
			if (!grab_super(old))
				goto retry;
L
Li Zefan 已提交
489 490
			if (s) {
				up_write(&s->s_umount);
491
				destroy_super(s);
A
Al Viro 已提交
492
				s = NULL;
L
Li Zefan 已提交
493
			}
494 495
			return old;
		}
L
Linus Torvalds 已提交
496 497 498
	}
	if (!s) {
		spin_unlock(&sb_lock);
499
		s = alloc_super(type, flags, user_ns);
L
Linus Torvalds 已提交
500 501 502 503 504 505 506 507
		if (!s)
			return ERR_PTR(-ENOMEM);
		goto retry;
	}
		
	err = set(s, data);
	if (err) {
		spin_unlock(&sb_lock);
L
Li Zefan 已提交
508
		up_write(&s->s_umount);
L
Linus Torvalds 已提交
509 510 511 512 513 514
		destroy_super(s);
		return ERR_PTR(err);
	}
	s->s_type = type;
	strlcpy(s->s_id, type->name, sizeof(s->s_id));
	list_add_tail(&s->s_list, &super_blocks);
A
Al Viro 已提交
515
	hlist_add_head(&s->s_instances, &type->fs_supers);
L
Linus Torvalds 已提交
516 517
	spin_unlock(&sb_lock);
	get_filesystem(type);
518
	register_shrinker(&s->s_shrink);
L
Linus Torvalds 已提交
519 520 521
	return s;
}

522 523 524 525 526 527 528 529 530 531 532 533 534 535 536 537 538 539 540 541 542 543 544 545 546
EXPORT_SYMBOL(sget_userns);

/**
 *	sget	-	find or create a superblock
 *	@type:	  filesystem type superblock should belong to
 *	@test:	  comparison callback
 *	@set:	  setup callback
 *	@flags:	  mount flags
 *	@data:	  argument to each of them
 */
struct super_block *sget(struct file_system_type *type,
			int (*test)(struct super_block *,void *),
			int (*set)(struct super_block *,void *),
			int flags,
			void *data)
{
	struct user_namespace *user_ns = current_user_ns();

	/* Ensure the requestor has permissions over the target filesystem */
	if (!(flags & MS_KERNMOUNT) && !ns_capable(user_ns, CAP_SYS_ADMIN))
		return ERR_PTR(-EPERM);

	return sget_userns(type, test, set, flags, user_ns, data);
}

L
Linus Torvalds 已提交
547 548 549 550 551 552 553 554 555 556
EXPORT_SYMBOL(sget);

void drop_super(struct super_block *sb)
{
	up_read(&sb->s_umount);
	put_super(sb);
}

EXPORT_SYMBOL(drop_super);

A
Al Viro 已提交
557 558 559 560 561 562 563 564 565 566
/**
 *	iterate_supers - call function for all active superblocks
 *	@f: function to call
 *	@arg: argument to pass to it
 *
 *	Scans the superblock list and calls given function, passing it
 *	locked superblock and given argument.
 */
void iterate_supers(void (*f)(struct super_block *, void *), void *arg)
{
567
	struct super_block *sb, *p = NULL;
A
Al Viro 已提交
568 569

	spin_lock(&sb_lock);
570
	list_for_each_entry(sb, &super_blocks, s_list) {
A
Al Viro 已提交
571
		if (hlist_unhashed(&sb->s_instances))
A
Al Viro 已提交
572 573 574 575 576
			continue;
		sb->s_count++;
		spin_unlock(&sb_lock);

		down_read(&sb->s_umount);
A
Al Viro 已提交
577
		if (sb->s_root && (sb->s_flags & MS_BORN))
A
Al Viro 已提交
578 579 580 581
			f(sb, arg);
		up_read(&sb->s_umount);

		spin_lock(&sb_lock);
582 583 584
		if (p)
			__put_super(p);
		p = sb;
A
Al Viro 已提交
585
	}
586 587
	if (p)
		__put_super(p);
A
Al Viro 已提交
588 589 590
	spin_unlock(&sb_lock);
}

A
Al Viro 已提交
591 592 593 594 595 596 597 598 599 600 601 602 603 604 605
/**
 *	iterate_supers_type - call function for superblocks of given type
 *	@type: fs type
 *	@f: function to call
 *	@arg: argument to pass to it
 *
 *	Scans the superblock list and calls given function, passing it
 *	locked superblock and given argument.
 */
void iterate_supers_type(struct file_system_type *type,
	void (*f)(struct super_block *, void *), void *arg)
{
	struct super_block *sb, *p = NULL;

	spin_lock(&sb_lock);
606
	hlist_for_each_entry(sb, &type->fs_supers, s_instances) {
A
Al Viro 已提交
607 608 609 610
		sb->s_count++;
		spin_unlock(&sb_lock);

		down_read(&sb->s_umount);
A
Al Viro 已提交
611
		if (sb->s_root && (sb->s_flags & MS_BORN))
A
Al Viro 已提交
612 613 614 615 616 617 618 619 620 621 622 623 624 625 626
			f(sb, arg);
		up_read(&sb->s_umount);

		spin_lock(&sb_lock);
		if (p)
			__put_super(p);
		p = sb;
	}
	if (p)
		__put_super(p);
	spin_unlock(&sb_lock);
}

EXPORT_SYMBOL(iterate_supers_type);

L
Linus Torvalds 已提交
627 628 629 630 631 632 633 634
/**
 *	get_super - get the superblock of a device
 *	@bdev: device to get the superblock for
 *	
 *	Scans the superblock list and finds the superblock of the file system
 *	mounted on the device given. %NULL is returned if no match is found.
 */

635
struct super_block *get_super(struct block_device *bdev)
L
Linus Torvalds 已提交
636
{
637 638
	struct super_block *sb;

L
Linus Torvalds 已提交
639 640
	if (!bdev)
		return NULL;
641

L
Linus Torvalds 已提交
642
	spin_lock(&sb_lock);
643 644
rescan:
	list_for_each_entry(sb, &super_blocks, s_list) {
A
Al Viro 已提交
645
		if (hlist_unhashed(&sb->s_instances))
646
			continue;
647 648
		if (sb->s_bdev == bdev) {
			sb->s_count++;
L
Linus Torvalds 已提交
649
			spin_unlock(&sb_lock);
650
			down_read(&sb->s_umount);
651
			/* still alive? */
A
Al Viro 已提交
652
			if (sb->s_root && (sb->s_flags & MS_BORN))
653 654
				return sb;
			up_read(&sb->s_umount);
655
			/* nope, got unmounted */
656
			spin_lock(&sb_lock);
657 658
			__put_super(sb);
			goto rescan;
L
Linus Torvalds 已提交
659 660 661 662 663 664 665
		}
	}
	spin_unlock(&sb_lock);
	return NULL;
}

EXPORT_SYMBOL(get_super);
666

667 668 669 670 671 672 673 674 675 676 677 678 679
/**
 *	get_super_thawed - get thawed superblock of a device
 *	@bdev: device to get the superblock for
 *
 *	Scans the superblock list and finds the superblock of the file system
 *	mounted on the device. The superblock is returned once it is thawed
 *	(or immediately if it was not frozen). %NULL is returned if no match
 *	is found.
 */
struct super_block *get_super_thawed(struct block_device *bdev)
{
	while (1) {
		struct super_block *s = get_super(bdev);
680
		if (!s || s->s_writers.frozen == SB_UNFROZEN)
681 682
			return s;
		up_read(&s->s_umount);
683 684
		wait_event(s->s_writers.wait_unfrozen,
			   s->s_writers.frozen == SB_UNFROZEN);
685 686 687 688 689
		put_super(s);
	}
}
EXPORT_SYMBOL(get_super_thawed);

690 691 692 693 694 695
/**
 * get_active_super - get an active reference to the superblock of a device
 * @bdev: device to get the superblock for
 *
 * Scans the superblock list and finds the superblock of the file system
 * mounted on the device given.  Returns the superblock with an active
696
 * reference or %NULL if none was found.
697 698 699 700 701 702 703 704
 */
struct super_block *get_active_super(struct block_device *bdev)
{
	struct super_block *sb;

	if (!bdev)
		return NULL;

A
Al Viro 已提交
705
restart:
706 707
	spin_lock(&sb_lock);
	list_for_each_entry(sb, &super_blocks, s_list) {
A
Al Viro 已提交
708
		if (hlist_unhashed(&sb->s_instances))
709
			continue;
A
Al Viro 已提交
710
		if (sb->s_bdev == bdev) {
A
Al Viro 已提交
711
			if (!grab_super(sb))
A
Al Viro 已提交
712
				goto restart;
A
Al Viro 已提交
713 714
			up_write(&sb->s_umount);
			return sb;
A
Al Viro 已提交
715
		}
716 717 718 719
	}
	spin_unlock(&sb_lock);
	return NULL;
}
L
Linus Torvalds 已提交
720
 
721
struct super_block *user_get_super(dev_t dev)
L
Linus Torvalds 已提交
722
{
723
	struct super_block *sb;
L
Linus Torvalds 已提交
724 725

	spin_lock(&sb_lock);
726 727
rescan:
	list_for_each_entry(sb, &super_blocks, s_list) {
A
Al Viro 已提交
728
		if (hlist_unhashed(&sb->s_instances))
729
			continue;
730 731
		if (sb->s_dev ==  dev) {
			sb->s_count++;
L
Linus Torvalds 已提交
732
			spin_unlock(&sb_lock);
733
			down_read(&sb->s_umount);
734
			/* still alive? */
A
Al Viro 已提交
735
			if (sb->s_root && (sb->s_flags & MS_BORN))
736 737
				return sb;
			up_read(&sb->s_umount);
738
			/* nope, got unmounted */
739
			spin_lock(&sb_lock);
740 741
			__put_super(sb);
			goto rescan;
L
Linus Torvalds 已提交
742 743 744 745 746 747 748 749 750 751 752 753 754 755 756 757 758 759
		}
	}
	spin_unlock(&sb_lock);
	return NULL;
}

/**
 *	do_remount_sb - asks filesystem to change mount options.
 *	@sb:	superblock in question
 *	@flags:	numeric part of options
 *	@data:	the rest of options
 *      @force: whether or not to force the change
 *
 *	Alters the mount options of a mounted file system.
 */
int do_remount_sb(struct super_block *sb, int flags, void *data, int force)
{
	int retval;
760
	int remount_ro;
761

762
	if (sb->s_writers.frozen != SB_UNFROZEN)
763 764
		return -EBUSY;

765
#ifdef CONFIG_BLOCK
L
Linus Torvalds 已提交
766 767
	if (!(flags & MS_RDONLY) && bdev_read_only(sb->s_bdev))
		return -EACCES;
768
#endif
769

770 771
	remount_ro = (flags & MS_RDONLY) && !(sb->s_flags & MS_RDONLY);

772
	if (remount_ro) {
773
		if (!hlist_empty(&sb->s_pins)) {
774
			up_write(&sb->s_umount);
775
			group_pin_kill(&sb->s_pins);
776 777 778 779 780 781 782 783 784 785
			down_write(&sb->s_umount);
			if (!sb->s_root)
				return 0;
			if (sb->s_writers.frozen != SB_UNFROZEN)
				return -EBUSY;
			remount_ro = (flags & MS_RDONLY) && !(sb->s_flags & MS_RDONLY);
		}
	}
	shrink_dcache_sb(sb);

L
Linus Torvalds 已提交
786 787
	/* If we are remounting RDONLY and current sb is read/write,
	   make sure there are no rw files opened */
788
	if (remount_ro) {
789
		if (force) {
A
Al Viro 已提交
790 791
			sb->s_readonly_remount = 1;
			smp_wmb();
792 793 794 795 796
		} else {
			retval = sb_prepare_remount_readonly(sb);
			if (retval)
				return retval;
		}
L
Linus Torvalds 已提交
797 798 799 800
	}

	if (sb->s_op->remount_fs) {
		retval = sb->s_op->remount_fs(sb, &flags, data);
801 802
		if (retval) {
			if (!force)
803
				goto cancel_readonly;
804 805 806 807
			/* If forced remount, go ahead despite any errors */
			WARN(1, "forced remount of a %s fs returned %i\n",
			     sb->s_type->name, retval);
		}
L
Linus Torvalds 已提交
808 809
	}
	sb->s_flags = (sb->s_flags & ~MS_RMT_MASK) | (flags & MS_RMT_MASK);
810 811 812
	/* Needs to be ordered wrt mnt_is_readonly() */
	smp_wmb();
	sb->s_readonly_remount = 0;
813

814 815 816 817 818 819 820 821 822 823
	/*
	 * Some filesystems modify their metadata via some other path than the
	 * bdev buffer cache (eg. use a private mapping, or directories in
	 * pagecache, etc). Also file data modifications go via their own
	 * mappings. So If we try to mount readonly then copy the filesystem
	 * from bdev, we could get stale data, so invalidate it to give a best
	 * effort at coherency.
	 */
	if (remount_ro && sb->s_bdev)
		invalidate_bdev(sb->s_bdev);
L
Linus Torvalds 已提交
824
	return 0;
825 826 827 828

cancel_readonly:
	sb->s_readonly_remount = 0;
	return retval;
L
Linus Torvalds 已提交
829 830
}

831
static void do_emergency_remount(struct work_struct *work)
L
Linus Torvalds 已提交
832
{
833
	struct super_block *sb, *p = NULL;
L
Linus Torvalds 已提交
834 835

	spin_lock(&sb_lock);
836
	list_for_each_entry(sb, &super_blocks, s_list) {
A
Al Viro 已提交
837
		if (hlist_unhashed(&sb->s_instances))
838
			continue;
L
Linus Torvalds 已提交
839 840
		sb->s_count++;
		spin_unlock(&sb_lock);
841
		down_write(&sb->s_umount);
A
Al Viro 已提交
842 843
		if (sb->s_root && sb->s_bdev && (sb->s_flags & MS_BORN) &&
		    !(sb->s_flags & MS_RDONLY)) {
L
Linus Torvalds 已提交
844 845 846 847 848
			/*
			 * What lock protects sb->s_flags??
			 */
			do_remount_sb(sb, MS_RDONLY, NULL, 1);
		}
849
		up_write(&sb->s_umount);
L
Linus Torvalds 已提交
850
		spin_lock(&sb_lock);
851 852 853
		if (p)
			__put_super(p);
		p = sb;
L
Linus Torvalds 已提交
854
	}
855 856
	if (p)
		__put_super(p);
L
Linus Torvalds 已提交
857
	spin_unlock(&sb_lock);
858
	kfree(work);
L
Linus Torvalds 已提交
859 860 861 862 863
	printk("Emergency Remount complete\n");
}

void emergency_remount(void)
{
864 865 866 867 868 869 870
	struct work_struct *work;

	work = kmalloc(sizeof(*work), GFP_ATOMIC);
	if (work) {
		INIT_WORK(work, do_emergency_remount);
		schedule_work(work);
	}
L
Linus Torvalds 已提交
871 872 873 874 875 876 877
}

/*
 * Unnamed block devices are dummy devices used by virtual
 * filesystems which don't use real block-devices.  -- jrs
 */

878
static DEFINE_IDA(unnamed_dev_ida);
L
Linus Torvalds 已提交
879
static DEFINE_SPINLOCK(unnamed_dev_lock);/* protects the above */
880 881 882 883
/* Many userspace utilities consider an FSID of 0 invalid.
 * Always return at least 1 from get_anon_bdev.
 */
static int unnamed_dev_start = 1;
L
Linus Torvalds 已提交
884

885
int get_anon_bdev(dev_t *p)
L
Linus Torvalds 已提交
886 887 888 889 890
{
	int dev;
	int error;

 retry:
891
	if (ida_pre_get(&unnamed_dev_ida, GFP_ATOMIC) == 0)
L
Linus Torvalds 已提交
892 893
		return -ENOMEM;
	spin_lock(&unnamed_dev_lock);
894
	error = ida_get_new_above(&unnamed_dev_ida, unnamed_dev_start, &dev);
895 896
	if (!error)
		unnamed_dev_start = dev + 1;
L
Linus Torvalds 已提交
897 898 899 900 901 902 903
	spin_unlock(&unnamed_dev_lock);
	if (error == -EAGAIN)
		/* We raced and lost with another CPU. */
		goto retry;
	else if (error)
		return -EAGAIN;

904
	if (dev >= (1 << MINORBITS)) {
L
Linus Torvalds 已提交
905
		spin_lock(&unnamed_dev_lock);
906
		ida_remove(&unnamed_dev_ida, dev);
907 908
		if (unnamed_dev_start > dev)
			unnamed_dev_start = dev;
L
Linus Torvalds 已提交
909 910 911
		spin_unlock(&unnamed_dev_lock);
		return -EMFILE;
	}
912
	*p = MKDEV(0, dev & MINORMASK);
L
Linus Torvalds 已提交
913 914
	return 0;
}
915
EXPORT_SYMBOL(get_anon_bdev);
L
Linus Torvalds 已提交
916

917
void free_anon_bdev(dev_t dev)
L
Linus Torvalds 已提交
918
{
919
	int slot = MINOR(dev);
L
Linus Torvalds 已提交
920
	spin_lock(&unnamed_dev_lock);
921
	ida_remove(&unnamed_dev_ida, slot);
922 923
	if (slot < unnamed_dev_start)
		unnamed_dev_start = slot;
L
Linus Torvalds 已提交
924 925
	spin_unlock(&unnamed_dev_lock);
}
926 927 928 929
EXPORT_SYMBOL(free_anon_bdev);

int set_anon_super(struct super_block *s, void *data)
{
930
	return get_anon_bdev(&s->s_dev);
931 932 933 934 935 936 937 938 939 940
}

EXPORT_SYMBOL(set_anon_super);

void kill_anon_super(struct super_block *sb)
{
	dev_t dev = sb->s_dev;
	generic_shutdown_super(sb);
	free_anon_bdev(dev);
}
L
Linus Torvalds 已提交
941 942 943 944 945 946 947 948 949 950 951 952

EXPORT_SYMBOL(kill_anon_super);

void kill_litter_super(struct super_block *sb)
{
	if (sb->s_root)
		d_genocide(sb->s_root);
	kill_anon_super(sb);
}

EXPORT_SYMBOL(kill_litter_super);

953 954 955 956 957 958 959 960 961 962 963
static int ns_test_super(struct super_block *sb, void *data)
{
	return sb->s_fs_info == data;
}

static int ns_set_super(struct super_block *sb, void *data)
{
	sb->s_fs_info = data;
	return set_anon_super(sb, NULL);
}

964 965 966
struct dentry *mount_ns(struct file_system_type *fs_type,
	int flags, void *data, void *ns, struct user_namespace *user_ns,
	int (*fill_super)(struct super_block *, void *, int))
967 968 969
{
	struct super_block *sb;

970 971 972 973 974 975
	/* Don't allow mounting unless the caller has CAP_SYS_ADMIN
	 * over the namespace.
	 */
	if (!(flags & MS_KERNMOUNT) && !ns_capable(user_ns, CAP_SYS_ADMIN))
		return ERR_PTR(-EPERM);

976 977
	sb = sget_userns(fs_type, ns_test_super, ns_set_super, flags,
			 user_ns, ns);
978
	if (IS_ERR(sb))
A
Al Viro 已提交
979
		return ERR_CAST(sb);
980 981 982 983 984

	if (!sb->s_root) {
		int err;
		err = fill_super(sb, data, flags & MS_SILENT ? 1 : 0);
		if (err) {
A
Al Viro 已提交
985
			deactivate_locked_super(sb);
A
Al Viro 已提交
986
			return ERR_PTR(err);
987 988 989 990 991
		}

		sb->s_flags |= MS_ACTIVE;
	}

A
Al Viro 已提交
992
	return dget(sb->s_root);
993 994
}

A
Al Viro 已提交
995
EXPORT_SYMBOL(mount_ns);
996

997
#ifdef CONFIG_BLOCK
L
Linus Torvalds 已提交
998 999 1000 1001
static int set_bdev_super(struct super_block *s, void *data)
{
	s->s_bdev = data;
	s->s_dev = s->s_bdev->bd_dev;
J
Jens Axboe 已提交
1002 1003 1004 1005 1006 1007

	/*
	 * We set the bdi here to the queue backing, file systems can
	 * overwrite this in ->fill_super()
	 */
	s->s_bdi = &bdev_get_queue(s->s_bdev)->backing_dev_info;
L
Linus Torvalds 已提交
1008 1009 1010 1011 1012 1013 1014 1015
	return 0;
}

static int test_bdev_super(struct super_block *s, void *data)
{
	return (void *)s->s_bdev == data;
}

A
Al Viro 已提交
1016
struct dentry *mount_bdev(struct file_system_type *fs_type,
L
Linus Torvalds 已提交
1017
	int flags, const char *dev_name, void *data,
A
Al Viro 已提交
1018
	int (*fill_super)(struct super_block *, void *, int))
L
Linus Torvalds 已提交
1019 1020 1021
{
	struct block_device *bdev;
	struct super_block *s;
1022
	fmode_t mode = FMODE_READ | FMODE_EXCL;
L
Linus Torvalds 已提交
1023 1024
	int error = 0;

1025 1026 1027
	if (!(flags & MS_RDONLY))
		mode |= FMODE_WRITE;

1028
	bdev = blkdev_get_by_path(dev_name, mode, fs_type);
L
Linus Torvalds 已提交
1029
	if (IS_ERR(bdev))
A
Al Viro 已提交
1030
		return ERR_CAST(bdev);
L
Linus Torvalds 已提交
1031 1032 1033 1034 1035 1036

	/*
	 * once the super is inserted into the list by sget, s_umount
	 * will protect the lockfs code from trying to start a snapshot
	 * while we are mounting
	 */
1037 1038 1039 1040 1041 1042
	mutex_lock(&bdev->bd_fsfreeze_mutex);
	if (bdev->bd_fsfreeze_count > 0) {
		mutex_unlock(&bdev->bd_fsfreeze_mutex);
		error = -EBUSY;
		goto error_bdev;
	}
D
David Howells 已提交
1043 1044
	s = sget(fs_type, test_bdev_super, set_bdev_super, flags | MS_NOSEC,
		 bdev);
1045
	mutex_unlock(&bdev->bd_fsfreeze_mutex);
L
Linus Torvalds 已提交
1046
	if (IS_ERR(s))
1047
		goto error_s;
L
Linus Torvalds 已提交
1048 1049 1050

	if (s->s_root) {
		if ((flags ^ s->s_flags) & MS_RDONLY) {
A
Al Viro 已提交
1051
			deactivate_locked_super(s);
1052 1053
			error = -EBUSY;
			goto error_bdev;
L
Linus Torvalds 已提交
1054
		}
1055

1056 1057
		/*
		 * s_umount nests inside bd_mutex during
1058 1059 1060 1061
		 * __invalidate_device().  blkdev_put() acquires
		 * bd_mutex and can't be called under s_umount.  Drop
		 * s_umount temporarily.  This is safe as we're
		 * holding an active reference.
1062 1063
		 */
		up_write(&s->s_umount);
1064
		blkdev_put(bdev, mode);
1065
		down_write(&s->s_umount);
L
Linus Torvalds 已提交
1066
	} else {
1067
		s->s_mode = mode;
1068
		snprintf(s->s_id, sizeof(s->s_id), "%pg", bdev);
1069
		sb_set_blocksize(s, block_size(bdev));
1070
		error = fill_super(s, data, flags & MS_SILENT ? 1 : 0);
L
Linus Torvalds 已提交
1071
		if (error) {
A
Al Viro 已提交
1072
			deactivate_locked_super(s);
1073
			goto error;
1074
		}
1075 1076

		s->s_flags |= MS_ACTIVE;
1077
		bdev->bd_super = s;
L
Linus Torvalds 已提交
1078 1079
	}

A
Al Viro 已提交
1080
	return dget(s->s_root);
L
Linus Torvalds 已提交
1081

1082 1083 1084
error_s:
	error = PTR_ERR(s);
error_bdev:
1085
	blkdev_put(bdev, mode);
1086
error:
A
Al Viro 已提交
1087 1088 1089 1090
	return ERR_PTR(error);
}
EXPORT_SYMBOL(mount_bdev);

L
Linus Torvalds 已提交
1091 1092 1093
void kill_block_super(struct super_block *sb)
{
	struct block_device *bdev = sb->s_bdev;
1094
	fmode_t mode = sb->s_mode;
L
Linus Torvalds 已提交
1095

1096
	bdev->bd_super = NULL;
L
Linus Torvalds 已提交
1097 1098
	generic_shutdown_super(sb);
	sync_blockdev(bdev);
1099
	WARN_ON_ONCE(!(mode & FMODE_EXCL));
1100
	blkdev_put(bdev, mode | FMODE_EXCL);
L
Linus Torvalds 已提交
1101 1102 1103
}

EXPORT_SYMBOL(kill_block_super);
1104
#endif
L
Linus Torvalds 已提交
1105

A
Al Viro 已提交
1106
struct dentry *mount_nodev(struct file_system_type *fs_type,
L
Linus Torvalds 已提交
1107
	int flags, void *data,
A
Al Viro 已提交
1108
	int (*fill_super)(struct super_block *, void *, int))
L
Linus Torvalds 已提交
1109 1110
{
	int error;
D
David Howells 已提交
1111
	struct super_block *s = sget(fs_type, NULL, set_anon_super, flags, NULL);
L
Linus Torvalds 已提交
1112 1113

	if (IS_ERR(s))
A
Al Viro 已提交
1114
		return ERR_CAST(s);
L
Linus Torvalds 已提交
1115

1116
	error = fill_super(s, data, flags & MS_SILENT ? 1 : 0);
L
Linus Torvalds 已提交
1117
	if (error) {
A
Al Viro 已提交
1118
		deactivate_locked_super(s);
A
Al Viro 已提交
1119
		return ERR_PTR(error);
L
Linus Torvalds 已提交
1120 1121
	}
	s->s_flags |= MS_ACTIVE;
A
Al Viro 已提交
1122
	return dget(s->s_root);
L
Linus Torvalds 已提交
1123
}
A
Al Viro 已提交
1124 1125
EXPORT_SYMBOL(mount_nodev);

L
Linus Torvalds 已提交
1126 1127 1128 1129 1130
static int compare_single(struct super_block *s, void *p)
{
	return 1;
}

A
Al Viro 已提交
1131
struct dentry *mount_single(struct file_system_type *fs_type,
L
Linus Torvalds 已提交
1132
	int flags, void *data,
A
Al Viro 已提交
1133
	int (*fill_super)(struct super_block *, void *, int))
L
Linus Torvalds 已提交
1134 1135 1136 1137
{
	struct super_block *s;
	int error;

D
David Howells 已提交
1138
	s = sget(fs_type, compare_single, set_anon_super, flags, NULL);
L
Linus Torvalds 已提交
1139
	if (IS_ERR(s))
A
Al Viro 已提交
1140
		return ERR_CAST(s);
L
Linus Torvalds 已提交
1141
	if (!s->s_root) {
1142
		error = fill_super(s, data, flags & MS_SILENT ? 1 : 0);
L
Linus Torvalds 已提交
1143
		if (error) {
A
Al Viro 已提交
1144
			deactivate_locked_super(s);
A
Al Viro 已提交
1145
			return ERR_PTR(error);
L
Linus Torvalds 已提交
1146 1147
		}
		s->s_flags |= MS_ACTIVE;
1148 1149
	} else {
		do_remount_sb(s, flags, data, 0);
L
Linus Torvalds 已提交
1150
	}
A
Al Viro 已提交
1151 1152 1153 1154
	return dget(s->s_root);
}
EXPORT_SYMBOL(mount_single);

1155 1156
struct dentry *
mount_fs(struct file_system_type *type, int flags, const char *name, void *data)
L
Linus Torvalds 已提交
1157
{
A
Al Viro 已提交
1158
	struct dentry *root;
1159
	struct super_block *sb;
L
Linus Torvalds 已提交
1160
	char *secdata = NULL;
1161
	int error = -ENOMEM;
A
Al Viro 已提交
1162

1163
	if (data && !(type->fs_flags & FS_BINARY_MOUNTDATA)) {
L
Linus Torvalds 已提交
1164
		secdata = alloc_secdata();
1165
		if (!secdata)
1166
			goto out;
L
Linus Torvalds 已提交
1167

1168
		error = security_sb_copy_data(data, secdata);
1169
		if (error)
L
Linus Torvalds 已提交
1170 1171 1172
			goto out_free_secdata;
	}

A
Al Viro 已提交
1173 1174 1175 1176
	root = type->mount(type, flags, name, data);
	if (IS_ERR(root)) {
		error = PTR_ERR(root);
		goto out_free_secdata;
A
Al Viro 已提交
1177
	}
1178 1179 1180 1181
	sb = root->d_sb;
	BUG_ON(!sb);
	WARN_ON(!sb->s_bdi);
	sb->s_flags |= MS_BORN;
1182

1183
	error = security_sb_kern_mount(sb, flags, secdata);
J
Jörn Engel 已提交
1184 1185
	if (error)
		goto out_sb;
1186

1187 1188 1189 1190
	/*
	 * filesystems should never set s_maxbytes larger than MAX_LFS_FILESIZE
	 * but s_maxbytes was an unsigned long long for many releases. Throw
	 * this warning for a little while to try and catch filesystems that
1191
	 * violate this rule.
1192
	 */
1193 1194
	WARN((sb->s_maxbytes < 0), "%s set sb->s_maxbytes to "
		"negative value (%lld)\n", type->name, sb->s_maxbytes);
1195

1196
	up_write(&sb->s_umount);
1197
	free_secdata(secdata);
1198
	return root;
L
Linus Torvalds 已提交
1199
out_sb:
1200 1201
	dput(root);
	deactivate_locked_super(sb);
L
Linus Torvalds 已提交
1202 1203 1204
out_free_secdata:
	free_secdata(secdata);
out:
1205
	return ERR_PTR(error);
L
Linus Torvalds 已提交
1206 1207
}

1208 1209 1210 1211 1212 1213
/*
 * This is an internal function, please use sb_end_{write,pagefault,intwrite}
 * instead.
 */
void __sb_end_write(struct super_block *sb, int level)
{
1214
	percpu_up_read(sb->s_writers.rw_sem + level-1);
1215 1216 1217
}
EXPORT_SYMBOL(__sb_end_write);

1218 1219 1220 1221 1222 1223 1224
/*
 * This is an internal function, please use sb_start_{write,pagefault,intwrite}
 * instead.
 */
int __sb_start_write(struct super_block *sb, int level, bool wait)
{
	bool force_trylock = false;
1225
	int ret = 1;
1226 1227 1228 1229 1230 1231 1232 1233 1234 1235 1236 1237 1238 1239 1240

#ifdef CONFIG_LOCKDEP
	/*
	 * We want lockdep to tell us about possible deadlocks with freezing
	 * but it's it bit tricky to properly instrument it. Getting a freeze
	 * protection works as getting a read lock but there are subtle
	 * problems. XFS for example gets freeze protection on internal level
	 * twice in some cases, which is OK only because we already hold a
	 * freeze protection also on higher level. Due to these cases we have
	 * to use wait == F (trylock mode) which must not fail.
	 */
	if (wait) {
		int i;

		for (i = 0; i < level - 1; i++)
1241
			if (percpu_rwsem_is_held(sb->s_writers.rw_sem + i)) {
1242 1243 1244 1245 1246
				force_trylock = true;
				break;
			}
	}
#endif
1247 1248 1249 1250 1251
	if (wait && !force_trylock)
		percpu_down_read(sb->s_writers.rw_sem + level-1);
	else
		ret = percpu_down_read_trylock(sb->s_writers.rw_sem + level-1);

1252
	WARN_ON(force_trylock && !ret);
1253 1254
	return ret;
}
1255 1256 1257 1258 1259 1260 1261 1262
EXPORT_SYMBOL(__sb_start_write);

/**
 * sb_wait_write - wait until all writers to given file system finish
 * @sb: the super for which we wait
 * @level: type of writers we wait for (normal vs page fault)
 *
 * This function waits until there are no writers of given type to given file
1263
 * system.
1264 1265 1266
 */
static void sb_wait_write(struct super_block *sb, int level)
{
1267
	percpu_down_write(sb->s_writers.rw_sem + level-1);
1268
	/*
1269 1270 1271 1272 1273 1274 1275 1276
	 * We are going to return to userspace and forget about this lock, the
	 * ownership goes to the caller of thaw_super() which does unlock.
	 *
	 * FIXME: we should do this before return from freeze_super() after we
	 * called sync_filesystem(sb) and s_op->freeze_fs(sb), and thaw_super()
	 * should re-acquire these locks before s_op->unfreeze_fs(sb). However
	 * this leads to lockdep false-positives, so currently we do the early
	 * release right after acquire.
1277
	 */
1278 1279
	percpu_rwsem_release(sb->s_writers.rw_sem + level-1, 0, _THIS_IP_);
}
1280

1281 1282 1283
static void sb_freeze_unlock(struct super_block *sb)
{
	int level;
1284

1285 1286
	for (level = 0; level < SB_FREEZE_LEVELS; ++level)
		percpu_rwsem_acquire(sb->s_writers.rw_sem + level, 0, _THIS_IP_);
1287

1288 1289
	for (level = SB_FREEZE_LEVELS - 1; level >= 0; level--)
		percpu_up_write(sb->s_writers.rw_sem + level);
1290 1291
}

1292
/**
R
Randy Dunlap 已提交
1293 1294
 * freeze_super - lock the filesystem and force it into a consistent state
 * @sb: the super to lock
1295 1296 1297 1298
 *
 * Syncs the super to make sure the filesystem is consistent and calls the fs's
 * freeze_fs.  Subsequent calls to this without first thawing the fs will return
 * -EBUSY.
1299 1300 1301 1302 1303 1304 1305 1306 1307 1308 1309 1310 1311 1312 1313 1314 1315 1316 1317 1318 1319 1320 1321 1322 1323
 *
 * During this function, sb->s_writers.frozen goes through these values:
 *
 * SB_UNFROZEN: File system is normal, all writes progress as usual.
 *
 * SB_FREEZE_WRITE: The file system is in the process of being frozen.  New
 * writes should be blocked, though page faults are still allowed. We wait for
 * all writes to complete and then proceed to the next stage.
 *
 * SB_FREEZE_PAGEFAULT: Freezing continues. Now also page faults are blocked
 * but internal fs threads can still modify the filesystem (although they
 * should not dirty new pages or inodes), writeback can run etc. After waiting
 * for all running page faults we sync the filesystem which will clean all
 * dirty pages and inodes (no new dirty pages or inodes can be created when
 * sync is running).
 *
 * SB_FREEZE_FS: The file system is frozen. Now all internal sources of fs
 * modification are blocked (e.g. XFS preallocation truncation on inode
 * reclaim). This is usually implemented by blocking new transactions for
 * filesystems that have them and need this additional guard. After all
 * internal writers are finished we call ->freeze_fs() to finish filesystem
 * freezing. Then we transition to SB_FREEZE_COMPLETE state. This state is
 * mostly auxiliary for filesystems to verify they do not modify frozen fs.
 *
 * sb->s_writers.frozen is protected by sb->s_umount.
1324 1325 1326 1327 1328 1329 1330
 */
int freeze_super(struct super_block *sb)
{
	int ret;

	atomic_inc(&sb->s_active);
	down_write(&sb->s_umount);
1331
	if (sb->s_writers.frozen != SB_UNFROZEN) {
1332 1333 1334 1335
		deactivate_locked_super(sb);
		return -EBUSY;
	}

A
Al Viro 已提交
1336 1337 1338 1339 1340
	if (!(sb->s_flags & MS_BORN)) {
		up_write(&sb->s_umount);
		return 0;	/* sic - it's "nothing to do" */
	}

1341
	if (sb->s_flags & MS_RDONLY) {
1342 1343
		/* Nothing to do really... */
		sb->s_writers.frozen = SB_FREEZE_COMPLETE;
1344 1345 1346 1347
		up_write(&sb->s_umount);
		return 0;
	}

1348 1349 1350 1351
	sb->s_writers.frozen = SB_FREEZE_WRITE;
	/* Release s_umount to preserve sb_start_write -> s_umount ordering */
	up_write(&sb->s_umount);
	sb_wait_write(sb, SB_FREEZE_WRITE);
1352
	down_write(&sb->s_umount);
1353 1354 1355 1356 1357 1358

	/* Now we go and block page faults... */
	sb->s_writers.frozen = SB_FREEZE_PAGEFAULT;
	sb_wait_write(sb, SB_FREEZE_PAGEFAULT);

	/* All writers are done so after syncing there won't be dirty data */
1359 1360
	sync_filesystem(sb);

1361 1362 1363
	/* Now wait for internal filesystem counter */
	sb->s_writers.frozen = SB_FREEZE_FS;
	sb_wait_write(sb, SB_FREEZE_FS);
1364 1365 1366 1367 1368 1369

	if (sb->s_op->freeze_fs) {
		ret = sb->s_op->freeze_fs(sb);
		if (ret) {
			printk(KERN_ERR
				"VFS:Filesystem freeze failed\n");
1370
			sb->s_writers.frozen = SB_UNFROZEN;
1371
			sb_freeze_unlock(sb);
1372
			wake_up(&sb->s_writers.wait_unfrozen);
1373 1374 1375 1376
			deactivate_locked_super(sb);
			return ret;
		}
	}
1377 1378 1379 1380 1381
	/*
	 * This is just for debugging purposes so that fs can warn if it
	 * sees write activity when frozen is set to SB_FREEZE_COMPLETE.
	 */
	sb->s_writers.frozen = SB_FREEZE_COMPLETE;
1382 1383 1384 1385 1386 1387 1388 1389 1390 1391 1392 1393 1394 1395 1396 1397
	up_write(&sb->s_umount);
	return 0;
}
EXPORT_SYMBOL(freeze_super);

/**
 * thaw_super -- unlock filesystem
 * @sb: the super to thaw
 *
 * Unlocks the filesystem and marks it writeable again after freeze_super().
 */
int thaw_super(struct super_block *sb)
{
	int error;

	down_write(&sb->s_umount);
1398
	if (sb->s_writers.frozen == SB_UNFROZEN) {
1399 1400 1401 1402
		up_write(&sb->s_umount);
		return -EINVAL;
	}

1403 1404
	if (sb->s_flags & MS_RDONLY) {
		sb->s_writers.frozen = SB_UNFROZEN;
1405
		goto out;
1406
	}
1407 1408 1409 1410 1411 1412 1413 1414 1415 1416 1417

	if (sb->s_op->unfreeze_fs) {
		error = sb->s_op->unfreeze_fs(sb);
		if (error) {
			printk(KERN_ERR
				"VFS:Filesystem thaw failed\n");
			up_write(&sb->s_umount);
			return error;
		}
	}

1418
	sb->s_writers.frozen = SB_UNFROZEN;
1419 1420
	sb_freeze_unlock(sb);
out:
1421
	wake_up(&sb->s_writers.wait_unfrozen);
1422 1423 1424 1425
	deactivate_locked_super(sb);
	return 0;
}
EXPORT_SYMBOL(thaw_super);