inode.c 32.9 KB
Newer Older
M
Miklos Szeredi 已提交
1 2
/*
  FUSE: Filesystem in Userspace
M
Miklos Szeredi 已提交
3
  Copyright (C) 2001-2008  Miklos Szeredi <miklos@szeredi.hu>
M
Miklos Szeredi 已提交
4 5 6 7 8 9 10 11 12 13 14 15 16

  This program can be distributed under the terms of the GNU GPL.
  See the file COPYING.
*/

#include "fuse_i.h"

#include <linux/pagemap.h>
#include <linux/slab.h>
#include <linux/file.h>
#include <linux/seq_file.h>
#include <linux/init.h>
#include <linux/module.h>
17
#include <linux/moduleparam.h>
M
Miklos Szeredi 已提交
18 19
#include <linux/parser.h>
#include <linux/statfs.h>
20
#include <linux/random.h>
A
Alexey Dobriyan 已提交
21
#include <linux/sched.h>
M
Miklos Szeredi 已提交
22
#include <linux/exportfs.h>
S
Seth Forshee 已提交
23
#include <linux/posix_acl.h>
24
#include <linux/pid_namespace.h>
M
Miklos Szeredi 已提交
25 26 27 28 29

MODULE_AUTHOR("Miklos Szeredi <miklos@szeredi.hu>");
MODULE_DESCRIPTION("Filesystem in Userspace");
MODULE_LICENSE("GPL");

30
static struct kmem_cache *fuse_inode_cachep;
31 32
struct list_head fuse_conn_list;
DEFINE_MUTEX(fuse_mutex);
M
Miklos Szeredi 已提交
33

34
static int set_global_limit(const char *val, const struct kernel_param *kp);
35

36
unsigned max_user_bgreq;
37 38 39 40 41 42 43
module_param_call(max_user_bgreq, set_global_limit, param_get_uint,
		  &max_user_bgreq, 0644);
__MODULE_PARM_TYPE(max_user_bgreq, "uint");
MODULE_PARM_DESC(max_user_bgreq,
 "Global limit for the maximum number of backgrounded requests an "
 "unprivileged user can set");

44
unsigned max_user_congthresh;
45 46 47 48 49 50 51
module_param_call(max_user_congthresh, set_global_limit, param_get_uint,
		  &max_user_congthresh, 0644);
__MODULE_PARM_TYPE(max_user_congthresh, "uint");
MODULE_PARM_DESC(max_user_congthresh,
 "Global limit for the maximum congestion threshold an "
 "unprivileged user can set");

M
Miklos Szeredi 已提交
52 53
#define FUSE_SUPER_MAGIC 0x65735546

M
Miklos Szeredi 已提交
54 55
#define FUSE_DEFAULT_BLKSIZE 512

56 57 58 59 60 61
/** Maximum number of outstanding background requests */
#define FUSE_DEFAULT_MAX_BACKGROUND 12

/** Congestion starts at 75% of maximum */
#define FUSE_DEFAULT_CONGESTION_THRESHOLD (FUSE_DEFAULT_MAX_BACKGROUND * 3 / 4)

M
Miklos Szeredi 已提交
62 63 64
struct fuse_mount_data {
	int fd;
	unsigned rootmode;
65 66
	kuid_t user_id;
	kgid_t group_id;
M
Miklos Szeredi 已提交
67 68 69 70
	unsigned fd_present:1;
	unsigned rootmode_present:1;
	unsigned user_id_present:1;
	unsigned group_id_present:1;
M
Miklos Szeredi 已提交
71 72
	unsigned default_permissions:1;
	unsigned allow_other:1;
73
	unsigned max_read;
M
Miklos Szeredi 已提交
74
	unsigned blksize;
M
Miklos Szeredi 已提交
75 76
};

77
struct fuse_forget_link *fuse_alloc_forget(void)
78 79 80 81
{
	return kzalloc(sizeof(struct fuse_forget_link), GFP_KERNEL);
}

M
Miklos Szeredi 已提交
82 83 84 85 86
static struct inode *fuse_alloc_inode(struct super_block *sb)
{
	struct inode *inode;
	struct fuse_inode *fi;

87
	inode = kmem_cache_alloc(fuse_inode_cachep, GFP_KERNEL);
M
Miklos Szeredi 已提交
88 89 90 91
	if (!inode)
		return NULL;

	fi = get_fuse_inode(inode);
M
Miklos Szeredi 已提交
92
	fi->i_time = 0;
M
Miklos Szeredi 已提交
93
	fi->nodeid = 0;
94
	fi->nlookup = 0;
95
	fi->attr_version = 0;
M
Miklos Szeredi 已提交
96
	fi->writectr = 0;
97
	fi->orig_ino = 0;
98
	fi->state = 0;
99
	INIT_LIST_HEAD(&fi->write_files);
M
Miklos Szeredi 已提交
100 101 102
	INIT_LIST_HEAD(&fi->queued_writes);
	INIT_LIST_HEAD(&fi->writepages);
	init_waitqueue_head(&fi->page_waitq);
103
	mutex_init(&fi->mutex);
104 105
	fi->forget = fuse_alloc_forget();
	if (!fi->forget) {
106 107 108
		kmem_cache_free(fuse_inode_cachep, inode);
		return NULL;
	}
M
Miklos Szeredi 已提交
109 110 111 112

	return inode;
}

N
Nick Piggin 已提交
113 114 115 116 117 118
static void fuse_i_callback(struct rcu_head *head)
{
	struct inode *inode = container_of(head, struct inode, i_rcu);
	kmem_cache_free(fuse_inode_cachep, inode);
}

M
Miklos Szeredi 已提交
119 120
static void fuse_destroy_inode(struct inode *inode)
{
121
	struct fuse_inode *fi = get_fuse_inode(inode);
122
	BUG_ON(!list_empty(&fi->write_files));
M
Miklos Szeredi 已提交
123
	BUG_ON(!list_empty(&fi->queued_writes));
124
	mutex_destroy(&fi->mutex);
125
	kfree(fi->forget);
N
Nick Piggin 已提交
126
	call_rcu(&inode->i_rcu, fuse_i_callback);
M
Miklos Szeredi 已提交
127 128
}

129
static void fuse_evict_inode(struct inode *inode)
M
Miklos Szeredi 已提交
130
{
131
	truncate_inode_pages_final(&inode->i_data);
132
	clear_inode(inode);
133
	if (inode->i_sb->s_flags & SB_ACTIVE) {
M
Miklos Szeredi 已提交
134
		struct fuse_conn *fc = get_fuse_conn(inode);
135
		struct fuse_inode *fi = get_fuse_inode(inode);
136 137
		fuse_queue_forget(fc, fi->forget, fi->nodeid, fi->nlookup);
		fi->forget = NULL;
138
	}
M
Miklos Szeredi 已提交
139 140
}

141 142
static int fuse_remount_fs(struct super_block *sb, int *flags, char *data)
{
143
	sync_filesystem(sb);
144
	if (*flags & SB_MANDLOCK)
145 146 147 148 149
		return -EINVAL;

	return 0;
}

150 151 152 153 154 155 156 157 158 159 160 161
/*
 * ino_t is 32-bits on 32-bit arch. We have to squash the 64-bit value down
 * so that it will fit.
 */
static ino_t fuse_squash_ino(u64 ino64)
{
	ino_t ino = (ino_t) ino64;
	if (sizeof(ino_t) < sizeof(u64))
		ino ^= ino64 >> (sizeof(u64) - sizeof(ino_t)) * 8;
	return ino;
}

M
Miklos Szeredi 已提交
162 163
void fuse_change_attributes_common(struct inode *inode, struct fuse_attr *attr,
				   u64 attr_valid)
M
Miklos Szeredi 已提交
164
{
M
Miklos Szeredi 已提交
165
	struct fuse_conn *fc = get_fuse_conn(inode);
166
	struct fuse_inode *fi = get_fuse_inode(inode);
M
Miklos Szeredi 已提交
167

168 169 170
	fi->attr_version = ++fc->attr_version;
	fi->i_time = attr_valid;

171
	inode->i_ino     = fuse_squash_ino(attr->ino);
172
	inode->i_mode    = (inode->i_mode & S_IFMT) | (attr->mode & 07777);
M
Miklos Szeredi 已提交
173
	set_nlink(inode, attr->nlink);
174 175
	inode->i_uid     = make_kuid(fc->user_ns, attr->uid);
	inode->i_gid     = make_kgid(fc->user_ns, attr->gid);
M
Miklos Szeredi 已提交
176 177 178
	inode->i_blocks  = attr->blocks;
	inode->i_atime.tv_sec   = attr->atime;
	inode->i_atime.tv_nsec  = attr->atimensec;
M
Maxim Patlasov 已提交
179 180 181 182
	/* mtime from server may be stale due to local buffered write */
	if (!fc->writeback_cache || !S_ISREG(inode->i_mode)) {
		inode->i_mtime.tv_sec   = attr->mtime;
		inode->i_mtime.tv_nsec  = attr->mtimensec;
M
Maxim Patlasov 已提交
183 184
		inode->i_ctime.tv_sec   = attr->ctime;
		inode->i_ctime.tv_nsec  = attr->ctimensec;
M
Maxim Patlasov 已提交
185
	}
186

187 188 189 190 191
	if (attr->blksize != 0)
		inode->i_blkbits = ilog2(attr->blksize);
	else
		inode->i_blkbits = inode->i_sb->s_blocksize_bits;

192 193 194 195 196 197
	/*
	 * Don't set the sticky bit in i_mode, unless we want the VFS
	 * to check permissions.  This prevents failures due to the
	 * check in may_delete().
	 */
	fi->orig_i_mode = inode->i_mode;
M
Miklos Szeredi 已提交
198
	if (!fc->default_permissions)
199
		inode->i_mode &= ~S_ISVTX;
200 201

	fi->orig_ino = attr->ino;
M
Miklos Szeredi 已提交
202 203 204 205 206 207 208
}

void fuse_change_attributes(struct inode *inode, struct fuse_attr *attr,
			    u64 attr_valid, u64 attr_version)
{
	struct fuse_conn *fc = get_fuse_conn(inode);
	struct fuse_inode *fi = get_fuse_inode(inode);
P
Pavel Emelyanov 已提交
209
	bool is_wb = fc->writeback_cache;
M
Miklos Szeredi 已提交
210
	loff_t oldsize;
211
	struct timespec old_mtime;
M
Miklos Szeredi 已提交
212 213

	spin_lock(&fc->lock);
214 215
	if ((attr_version != 0 && fi->attr_version > attr_version) ||
	    test_bit(FUSE_I_SIZE_UNSTABLE, &fi->state)) {
M
Miklos Szeredi 已提交
216 217 218 219
		spin_unlock(&fc->lock);
		return;
	}

220
	old_mtime = timespec64_to_timespec(inode->i_mtime);
M
Miklos Szeredi 已提交
221
	fuse_change_attributes_common(inode, attr, attr_valid);
222

223
	oldsize = inode->i_size;
P
Pavel Emelyanov 已提交
224 225 226 227 228 229 230
	/*
	 * In case of writeback_cache enabled, the cached writes beyond EOF
	 * extend local i_size without keeping userspace server in sync. So,
	 * attr->size coming from server can be stale. We cannot trust it.
	 */
	if (!is_wb || !S_ISREG(inode->i_mode))
		i_size_write(inode, attr->size);
231 232
	spin_unlock(&fc->lock);

P
Pavel Emelyanov 已提交
233
	if (!is_wb && S_ISREG(inode->i_mode)) {
234 235 236
		bool inval = false;

		if (oldsize != attr->size) {
237
			truncate_pagecache(inode, attr->size);
238 239 240 241 242 243 244 245 246 247 248 249 250 251 252 253 254
			inval = true;
		} else if (fc->auto_inval_data) {
			struct timespec new_mtime = {
				.tv_sec = attr->mtime,
				.tv_nsec = attr->mtimensec,
			};

			/*
			 * Auto inval mode also checks and invalidates if mtime
			 * has changed.
			 */
			if (!timespec_equal(&old_mtime, &new_mtime))
				inval = true;
		}

		if (inval)
			invalidate_inode_pages2(inode->i_mapping);
255
	}
M
Miklos Szeredi 已提交
256 257 258 259 260
}

static void fuse_init_inode(struct inode *inode, struct fuse_attr *attr)
{
	inode->i_mode = attr->mode & S_IFMT;
M
Miklos Szeredi 已提交
261
	inode->i_size = attr->size;
M
Maxim Patlasov 已提交
262 263
	inode->i_mtime.tv_sec  = attr->mtime;
	inode->i_mtime.tv_nsec = attr->mtimensec;
M
Maxim Patlasov 已提交
264 265
	inode->i_ctime.tv_sec  = attr->ctime;
	inode->i_ctime.tv_nsec = attr->ctimensec;
266 267
	if (S_ISREG(inode->i_mode)) {
		fuse_init_common(inode);
M
Miklos Szeredi 已提交
268
		fuse_init_file_inode(inode);
269 270 271 272 273 274 275 276 277
	} else if (S_ISDIR(inode->i_mode))
		fuse_init_dir(inode);
	else if (S_ISLNK(inode->i_mode))
		fuse_init_symlink(inode);
	else if (S_ISCHR(inode->i_mode) || S_ISBLK(inode->i_mode) ||
		 S_ISFIFO(inode->i_mode) || S_ISSOCK(inode->i_mode)) {
		fuse_init_common(inode);
		init_special_inode(inode, inode->i_mode,
				   new_decode_dev(attr->rdev));
278 279
	} else
		BUG();
M
Miklos Szeredi 已提交
280 281
}

J
John Muir 已提交
282
int fuse_inode_eq(struct inode *inode, void *_nodeidp)
M
Miklos Szeredi 已提交
283
{
M
Miklos Szeredi 已提交
284
	u64 nodeid = *(u64 *) _nodeidp;
M
Miklos Szeredi 已提交
285 286 287 288 289 290 291 292
	if (get_node_id(inode) == nodeid)
		return 1;
	else
		return 0;
}

static int fuse_inode_set(struct inode *inode, void *_nodeidp)
{
M
Miklos Szeredi 已提交
293
	u64 nodeid = *(u64 *) _nodeidp;
M
Miklos Szeredi 已提交
294 295 296 297
	get_fuse_inode(inode)->nodeid = nodeid;
	return 0;
}

M
Miklos Szeredi 已提交
298
struct inode *fuse_iget(struct super_block *sb, u64 nodeid,
299 300
			int generation, struct fuse_attr *attr,
			u64 attr_valid, u64 attr_version)
M
Miklos Szeredi 已提交
301 302
{
	struct inode *inode;
303
	struct fuse_inode *fi;
M
Miklos Szeredi 已提交
304 305 306 307 308 309 310 311
	struct fuse_conn *fc = get_fuse_conn_super(sb);

 retry:
	inode = iget5_locked(sb, nodeid, fuse_inode_eq, fuse_inode_set, &nodeid);
	if (!inode)
		return NULL;

	if ((inode->i_state & I_NEW)) {
M
Maxim Patlasov 已提交
312
		inode->i_flags |= S_NOATIME;
313
		if (!fc->writeback_cache || !S_ISREG(attr->mode))
M
Maxim Patlasov 已提交
314
			inode->i_flags |= S_NOCMTIME;
M
Miklos Szeredi 已提交
315 316 317 318 319 320 321 322 323 324
		inode->i_generation = generation;
		fuse_init_inode(inode, attr);
		unlock_new_inode(inode);
	} else if ((inode->i_mode ^ attr->mode) & S_IFMT) {
		/* Inode has changed type, any I/O on the old should fail */
		make_bad_inode(inode);
		iput(inode);
		goto retry;
	}

325
	fi = get_fuse_inode(inode);
326
	spin_lock(&fc->lock);
M
Miklos Szeredi 已提交
327
	fi->nlookup++;
328
	spin_unlock(&fc->lock);
329 330
	fuse_change_attributes(inode, attr, attr_valid, attr_version);

M
Miklos Szeredi 已提交
331 332 333
	return inode;
}

J
John Muir 已提交
334 335 336 337 338 339 340 341 342 343 344 345
int fuse_reverse_inval_inode(struct super_block *sb, u64 nodeid,
			     loff_t offset, loff_t len)
{
	struct inode *inode;
	pgoff_t pg_start;
	pgoff_t pg_end;

	inode = ilookup5(sb, nodeid, fuse_inode_eq, &nodeid);
	if (!inode)
		return -ENOENT;

	fuse_invalidate_attr(inode);
S
Seth Forshee 已提交
346
	forget_all_cached_acls(inode);
J
John Muir 已提交
347
	if (offset >= 0) {
348
		pg_start = offset >> PAGE_SHIFT;
J
John Muir 已提交
349 350 351
		if (len <= 0)
			pg_end = -1;
		else
352
			pg_end = (offset + len - 1) >> PAGE_SHIFT;
J
John Muir 已提交
353 354 355 356 357 358 359
		invalidate_inode_pages2_range(inode->i_mapping,
					      pg_start, pg_end);
	}
	iput(inode);
	return 0;
}

360 361 362 363 364 365 366 367 368 369 370 371
void fuse_lock_inode(struct inode *inode)
{
	if (!get_fuse_conn(inode)->parallel_dirops)
		mutex_lock(&get_fuse_inode(inode)->mutex);
}

void fuse_unlock_inode(struct inode *inode)
{
	if (!get_fuse_conn(inode)->parallel_dirops)
		mutex_unlock(&get_fuse_inode(inode)->mutex);
}

372
static void fuse_umount_begin(struct super_block *sb)
373
{
374
	fuse_abort_conn(get_fuse_conn_super(sb), false);
375 376
}

377 378 379 380 381 382
static void fuse_send_destroy(struct fuse_conn *fc)
{
	struct fuse_req *req = fc->destroy_req;
	if (req && fc->conn_init) {
		fc->destroy_req = NULL;
		req->in.h.opcode = FUSE_DESTROY;
M
Miklos Szeredi 已提交
383 384
		__set_bit(FR_FORCE, &req->flags);
		__clear_bit(FR_BACKGROUND, &req->flags);
385
		fuse_request_send(fc, req);
386 387 388 389
		fuse_put_request(fc, req);
	}
}

390 391 392 393
static void fuse_put_super(struct super_block *sb)
{
	struct fuse_conn *fc = get_fuse_conn_super(sb);

M
Miklos Szeredi 已提交
394 395 396 397 398
	mutex_lock(&fuse_mutex);
	list_del(&fc->entry);
	fuse_ctl_remove_conn(fc);
	mutex_unlock(&fuse_mutex);

399
	fuse_conn_put(fc);
M
Miklos Szeredi 已提交
400 401
}

402 403 404 405
static void convert_fuse_statfs(struct kstatfs *stbuf, struct fuse_kstatfs *attr)
{
	stbuf->f_type    = FUSE_SUPER_MAGIC;
	stbuf->f_bsize   = attr->bsize;
406
	stbuf->f_frsize  = attr->frsize;
407 408 409 410 411 412 413 414 415
	stbuf->f_blocks  = attr->blocks;
	stbuf->f_bfree   = attr->bfree;
	stbuf->f_bavail  = attr->bavail;
	stbuf->f_files   = attr->files;
	stbuf->f_ffree   = attr->ffree;
	stbuf->f_namelen = attr->namelen;
	/* fsid is left zero */
}

416
static int fuse_statfs(struct dentry *dentry, struct kstatfs *buf)
417
{
418
	struct super_block *sb = dentry->d_sb;
419
	struct fuse_conn *fc = get_fuse_conn_super(sb);
420
	FUSE_ARGS(args);
421 422 423
	struct fuse_statfs_out outarg;
	int err;

424
	if (!fuse_allow_current_process(fc)) {
M
Miklos Szeredi 已提交
425 426 427 428
		buf->f_type = FUSE_SUPER_MAGIC;
		return 0;
	}

429
	memset(&outarg, 0, sizeof(outarg));
430 431
	args.in.numargs = 0;
	args.in.h.opcode = FUSE_STATFS;
432
	args.in.h.nodeid = get_node_id(d_inode(dentry));
433
	args.out.numargs = 1;
434
	args.out.args[0].size = sizeof(outarg);
435 436
	args.out.args[0].value = &outarg;
	err = fuse_simple_request(fc, &args);
437 438 439 440 441
	if (!err)
		convert_fuse_statfs(buf, &outarg.st);
	return err;
}

M
Miklos Szeredi 已提交
442 443 444 445
enum {
	OPT_FD,
	OPT_ROOTMODE,
	OPT_USER_ID,
446
	OPT_GROUP_ID,
M
Miklos Szeredi 已提交
447 448
	OPT_DEFAULT_PERMISSIONS,
	OPT_ALLOW_OTHER,
449
	OPT_MAX_READ,
M
Miklos Szeredi 已提交
450
	OPT_BLKSIZE,
M
Miklos Szeredi 已提交
451 452 453
	OPT_ERR
};

454
static const match_table_t tokens = {
M
Miklos Szeredi 已提交
455 456 457
	{OPT_FD,			"fd=%u"},
	{OPT_ROOTMODE,			"rootmode=%o"},
	{OPT_USER_ID,			"user_id=%u"},
458
	{OPT_GROUP_ID,			"group_id=%u"},
M
Miklos Szeredi 已提交
459 460
	{OPT_DEFAULT_PERMISSIONS,	"default_permissions"},
	{OPT_ALLOW_OTHER,		"allow_other"},
461
	{OPT_MAX_READ,			"max_read=%u"},
M
Miklos Szeredi 已提交
462
	{OPT_BLKSIZE,			"blksize=%u"},
M
Miklos Szeredi 已提交
463 464 465
	{OPT_ERR,			NULL}
};

466 467 468 469 470 471 472 473 474 475 476
static int fuse_match_uint(substring_t *s, unsigned int *res)
{
	int err = -ENOMEM;
	char *buf = match_strdup(s);
	if (buf) {
		err = kstrtouint(buf, 10, res);
		kfree(buf);
	}
	return err;
}

477 478
static int parse_fuse_opt(char *opt, struct fuse_mount_data *d, int is_bdev,
			  struct user_namespace *user_ns)
M
Miklos Szeredi 已提交
479 480 481
{
	char *p;
	memset(d, 0, sizeof(struct fuse_mount_data));
482
	d->max_read = ~0;
M
Miklos Szeredi 已提交
483
	d->blksize = FUSE_DEFAULT_BLKSIZE;
M
Miklos Szeredi 已提交
484 485 486 487

	while ((p = strsep(&opt, ",")) != NULL) {
		int token;
		int value;
488
		unsigned uv;
M
Miklos Szeredi 已提交
489 490 491 492 493 494 495 496 497 498
		substring_t args[MAX_OPT_ARGS];
		if (!*p)
			continue;

		token = match_token(p, tokens, args);
		switch (token) {
		case OPT_FD:
			if (match_int(&args[0], &value))
				return 0;
			d->fd = value;
499
			d->fd_present = 1;
M
Miklos Szeredi 已提交
500 501 502 503 504
			break;

		case OPT_ROOTMODE:
			if (match_octal(&args[0], &value))
				return 0;
505 506
			if (!fuse_valid_type(value))
				return 0;
M
Miklos Szeredi 已提交
507
			d->rootmode = value;
508
			d->rootmode_present = 1;
M
Miklos Szeredi 已提交
509 510 511
			break;

		case OPT_USER_ID:
512
			if (fuse_match_uint(&args[0], &uv))
M
Miklos Szeredi 已提交
513
				return 0;
514
			d->user_id = make_kuid(user_ns, uv);
515 516
			if (!uid_valid(d->user_id))
				return 0;
517
			d->user_id_present = 1;
M
Miklos Szeredi 已提交
518 519
			break;

520
		case OPT_GROUP_ID:
521
			if (fuse_match_uint(&args[0], &uv))
522
				return 0;
523
			d->group_id = make_kgid(user_ns, uv);
524 525
			if (!gid_valid(d->group_id))
				return 0;
526
			d->group_id_present = 1;
527 528
			break;

M
Miklos Szeredi 已提交
529
		case OPT_DEFAULT_PERMISSIONS:
M
Miklos Szeredi 已提交
530
			d->default_permissions = 1;
M
Miklos Szeredi 已提交
531 532 533
			break;

		case OPT_ALLOW_OTHER:
M
Miklos Szeredi 已提交
534
			d->allow_other = 1;
M
Miklos Szeredi 已提交
535 536
			break;

537 538 539 540 541 542
		case OPT_MAX_READ:
			if (match_int(&args[0], &value))
				return 0;
			d->max_read = value;
			break;

M
Miklos Szeredi 已提交
543 544 545 546 547 548
		case OPT_BLKSIZE:
			if (!is_bdev || match_int(&args[0], &value))
				return 0;
			d->blksize = value;
			break;

M
Miklos Szeredi 已提交
549 550 551 552
		default:
			return 0;
		}
	}
553 554 555

	if (!d->fd_present || !d->rootmode_present ||
	    !d->user_id_present || !d->group_id_present)
M
Miklos Szeredi 已提交
556 557 558 559 560
		return 0;

	return 1;
}

561
static int fuse_show_options(struct seq_file *m, struct dentry *root)
M
Miklos Szeredi 已提交
562
{
563 564
	struct super_block *sb = root->d_sb;
	struct fuse_conn *fc = get_fuse_conn_super(sb);
M
Miklos Szeredi 已提交
565

566 567
	seq_printf(m, ",user_id=%u", from_kuid_munged(fc->user_ns, fc->user_id));
	seq_printf(m, ",group_id=%u", from_kgid_munged(fc->user_ns, fc->group_id));
M
Miklos Szeredi 已提交
568
	if (fc->default_permissions)
M
Miklos Szeredi 已提交
569
		seq_puts(m, ",default_permissions");
M
Miklos Szeredi 已提交
570
	if (fc->allow_other)
M
Miklos Szeredi 已提交
571
		seq_puts(m, ",allow_other");
572 573
	if (fc->max_read != ~0)
		seq_printf(m, ",max_read=%u", fc->max_read);
574 575
	if (sb->s_bdev && sb->s_blocksize != FUSE_DEFAULT_BLKSIZE)
		seq_printf(m, ",blksize=%lu", sb->s_blocksize);
M
Miklos Szeredi 已提交
576 577 578
	return 0;
}

M
Miklos Szeredi 已提交
579 580 581 582 583 584 585
static void fuse_iqueue_init(struct fuse_iqueue *fiq)
{
	memset(fiq, 0, sizeof(struct fuse_iqueue));
	init_waitqueue_head(&fiq->waitq);
	INIT_LIST_HEAD(&fiq->pending);
	INIT_LIST_HEAD(&fiq->interrupts);
	fiq->forget_list_tail = &fiq->forget_list_head;
586
	fiq->connected = 1;
M
Miklos Szeredi 已提交
587 588
}

589 590 591
static void fuse_pqueue_init(struct fuse_pqueue *fpq)
{
	memset(fpq, 0, sizeof(struct fuse_pqueue));
M
Miklos Szeredi 已提交
592
	spin_lock_init(&fpq->lock);
593 594
	INIT_LIST_HEAD(&fpq->processing);
	INIT_LIST_HEAD(&fpq->io);
595
	fpq->connected = 1;
596 597
}

598
void fuse_conn_init(struct fuse_conn *fc, struct user_namespace *user_ns)
M
Miklos Szeredi 已提交
599
{
600 601
	memset(fc, 0, sizeof(*fc));
	spin_lock_init(&fc->lock);
J
John Muir 已提交
602
	init_rwsem(&fc->killsb);
603
	refcount_set(&fc->count, 1);
604
	atomic_set(&fc->dev_count, 1);
605 606
	init_waitqueue_head(&fc->blocked_waitq);
	init_waitqueue_head(&fc->reserved_req_waitq);
M
Miklos Szeredi 已提交
607
	fuse_iqueue_init(&fc->iq);
608 609
	INIT_LIST_HEAD(&fc->bg_queue);
	INIT_LIST_HEAD(&fc->entry);
610
	INIT_LIST_HEAD(&fc->devices);
611
	atomic_set(&fc->num_waiting, 0);
612 613
	fc->max_background = FUSE_DEFAULT_MAX_BACKGROUND;
	fc->congestion_threshold = FUSE_DEFAULT_CONGESTION_THRESHOLD;
614 615
	fc->khctr = 0;
	fc->polled_files = RB_ROOT;
616
	fc->blocked = 0;
M
Maxim Patlasov 已提交
617
	fc->initialized = 0;
618
	fc->connected = 1;
619 620
	fc->attr_version = 1;
	get_random_bytes(&fc->scramble_key, sizeof(fc->scramble_key));
621
	fc->pid_ns = get_pid_ns(task_active_pid_ns(current));
622
	fc->user_ns = get_user_ns(user_ns);
M
Miklos Szeredi 已提交
623
}
624
EXPORT_SYMBOL_GPL(fuse_conn_init);
M
Miklos Szeredi 已提交
625

626 627
void fuse_conn_put(struct fuse_conn *fc)
{
628
	if (refcount_dec_and_test(&fc->count)) {
629 630
		if (fc->destroy_req)
			fuse_request_free(fc->destroy_req);
631
		put_pid_ns(fc->pid_ns);
632
		put_user_ns(fc->user_ns);
T
Tejun Heo 已提交
633
		fc->release(fc);
634
	}
635
}
636
EXPORT_SYMBOL_GPL(fuse_conn_put);
637 638 639

struct fuse_conn *fuse_conn_get(struct fuse_conn *fc)
{
640
	refcount_inc(&fc->count);
641 642
	return fc;
}
643
EXPORT_SYMBOL_GPL(fuse_conn_get);
644

645
static struct inode *fuse_get_root_inode(struct super_block *sb, unsigned mode)
M
Miklos Szeredi 已提交
646 647 648 649 650 651
{
	struct fuse_attr attr;
	memset(&attr, 0, sizeof(attr));

	attr.mode = mode;
	attr.ino = FUSE_ROOT_ID;
652
	attr.nlink = 1;
653
	return fuse_iget(sb, 1, 0, &attr, 0, 0);
M
Miklos Szeredi 已提交
654 655
}

M
Miklos Szeredi 已提交
656
struct fuse_inode_handle {
M
Miklos Szeredi 已提交
657 658 659 660 661 662 663
	u64 nodeid;
	u32 generation;
};

static struct dentry *fuse_get_dentry(struct super_block *sb,
				      struct fuse_inode_handle *handle)
{
664
	struct fuse_conn *fc = get_fuse_conn_super(sb);
M
Miklos Szeredi 已提交
665 666 667 668 669 670 671 672
	struct inode *inode;
	struct dentry *entry;
	int err = -ESTALE;

	if (handle->nodeid == 0)
		goto out_err;

	inode = ilookup5(sb, handle->nodeid, fuse_inode_eq, &handle->nodeid);
673 674
	if (!inode) {
		struct fuse_entry_out outarg;
A
Al Viro 已提交
675
		const struct qstr name = QSTR_INIT(".", 1);
676 677 678 679 680 681 682 683 684 685 686 687 688 689 690 691

		if (!fc->export_support)
			goto out_err;

		err = fuse_lookup_name(sb, handle->nodeid, &name, &outarg,
				       &inode);
		if (err && err != -ENOENT)
			goto out_err;
		if (err || !inode) {
			err = -ESTALE;
			goto out_err;
		}
		err = -EIO;
		if (get_node_id(inode) != handle->nodeid)
			goto out_iput;
	}
M
Miklos Szeredi 已提交
692 693 694 695
	err = -ESTALE;
	if (inode->i_generation != handle->generation)
		goto out_iput;

696
	entry = d_obtain_alias(inode);
A
Al Viro 已提交
697
	if (!IS_ERR(entry) && get_node_id(inode) != FUSE_ROOT_ID)
M
Miklos Szeredi 已提交
698 699 700 701 702 703 704 705 706 707
		fuse_invalidate_entry_cache(entry);

	return entry;

 out_iput:
	iput(inode);
 out_err:
	return ERR_PTR(err);
}

A
Al Viro 已提交
708 709
static int fuse_encode_fh(struct inode *inode, u32 *fh, int *max_len,
			   struct inode *parent)
M
Miklos Szeredi 已提交
710
{
A
Al Viro 已提交
711
	int len = parent ? 6 : 3;
M
Miklos Szeredi 已提交
712 713 714
	u64 nodeid;
	u32 generation;

715 716
	if (*max_len < len) {
		*max_len = len;
717
		return  FILEID_INVALID;
718
	}
M
Miklos Szeredi 已提交
719 720 721 722 723 724 725 726

	nodeid = get_fuse_inode(inode)->nodeid;
	generation = inode->i_generation;

	fh[0] = (u32)(nodeid >> 32);
	fh[1] = (u32)(nodeid & 0xffffffff);
	fh[2] = generation;

A
Al Viro 已提交
727
	if (parent) {
M
Miklos Szeredi 已提交
728 729 730 731 732 733 734 735 736
		nodeid = get_fuse_inode(parent)->nodeid;
		generation = parent->i_generation;

		fh[3] = (u32)(nodeid >> 32);
		fh[4] = (u32)(nodeid & 0xffffffff);
		fh[5] = generation;
	}

	*max_len = len;
A
Al Viro 已提交
737
	return parent ? 0x82 : 0x81;
M
Miklos Szeredi 已提交
738 739 740 741 742 743 744 745 746 747 748 749 750 751 752 753 754 755 756 757 758 759 760 761 762 763 764 765 766 767
}

static struct dentry *fuse_fh_to_dentry(struct super_block *sb,
		struct fid *fid, int fh_len, int fh_type)
{
	struct fuse_inode_handle handle;

	if ((fh_type != 0x81 && fh_type != 0x82) || fh_len < 3)
		return NULL;

	handle.nodeid = (u64) fid->raw[0] << 32;
	handle.nodeid |= (u64) fid->raw[1];
	handle.generation = fid->raw[2];
	return fuse_get_dentry(sb, &handle);
}

static struct dentry *fuse_fh_to_parent(struct super_block *sb,
		struct fid *fid, int fh_len, int fh_type)
{
	struct fuse_inode_handle parent;

	if (fh_type != 0x82 || fh_len < 6)
		return NULL;

	parent.nodeid = (u64) fid->raw[3] << 32;
	parent.nodeid |= (u64) fid->raw[4];
	parent.generation = fid->raw[5];
	return fuse_get_dentry(sb, &parent);
}

768 769
static struct dentry *fuse_get_parent(struct dentry *child)
{
770
	struct inode *child_inode = d_inode(child);
771 772 773 774
	struct fuse_conn *fc = get_fuse_conn(child_inode);
	struct inode *inode;
	struct dentry *parent;
	struct fuse_entry_out outarg;
A
Al Viro 已提交
775
	const struct qstr name = QSTR_INIT("..", 2);
776 777 778 779 780 781 782
	int err;

	if (!fc->export_support)
		return ERR_PTR(-ESTALE);

	err = fuse_lookup_name(child_inode->i_sb, get_node_id(child_inode),
			       &name, &outarg, &inode);
783 784 785
	if (err) {
		if (err == -ENOENT)
			return ERR_PTR(-ESTALE);
786 787
		return ERR_PTR(err);
	}
788 789

	parent = d_obtain_alias(inode);
A
Al Viro 已提交
790
	if (!IS_ERR(parent) && get_node_id(inode) != FUSE_ROOT_ID)
791 792 793 794
		fuse_invalidate_entry_cache(parent);

	return parent;
}
M
Miklos Szeredi 已提交
795 796 797 798 799

static const struct export_operations fuse_export_operations = {
	.fh_to_dentry	= fuse_fh_to_dentry,
	.fh_to_parent	= fuse_fh_to_parent,
	.encode_fh	= fuse_encode_fh,
800
	.get_parent	= fuse_get_parent,
M
Miklos Szeredi 已提交
801 802
};

803
static const struct super_operations fuse_super_operations = {
M
Miklos Szeredi 已提交
804 805
	.alloc_inode    = fuse_alloc_inode,
	.destroy_inode  = fuse_destroy_inode,
806
	.evict_inode	= fuse_evict_inode,
M
Miklos Szeredi 已提交
807
	.write_inode	= fuse_write_inode,
M
Miklos Szeredi 已提交
808
	.drop_inode	= generic_delete_inode,
809
	.remount_fs	= fuse_remount_fs,
M
Miklos Szeredi 已提交
810
	.put_super	= fuse_put_super,
811
	.umount_begin	= fuse_umount_begin,
812
	.statfs		= fuse_statfs,
M
Miklos Szeredi 已提交
813 814 815
	.show_options	= fuse_show_options,
};

816 817 818
static void sanitize_global_limit(unsigned *limit)
{
	if (*limit == 0)
819
		*limit = ((totalram_pages << PAGE_SHIFT) >> 13) /
820 821 822 823 824 825
			 sizeof(struct fuse_req);

	if (*limit >= 1 << 16)
		*limit = (1 << 16) - 1;
}

826
static int set_global_limit(const char *val, const struct kernel_param *kp)
827 828 829 830 831 832 833 834 835 836 837 838 839 840 841 842 843 844 845 846 847 848 849 850 851 852 853 854 855 856 857 858 859 860 861 862 863
{
	int rv;

	rv = param_set_uint(val, kp);
	if (rv)
		return rv;

	sanitize_global_limit((unsigned *)kp->arg);

	return 0;
}

static void process_init_limits(struct fuse_conn *fc, struct fuse_init_out *arg)
{
	int cap_sys_admin = capable(CAP_SYS_ADMIN);

	if (arg->minor < 13)
		return;

	sanitize_global_limit(&max_user_bgreq);
	sanitize_global_limit(&max_user_congthresh);

	if (arg->max_background) {
		fc->max_background = arg->max_background;

		if (!cap_sys_admin && fc->max_background > max_user_bgreq)
			fc->max_background = max_user_bgreq;
	}
	if (arg->congestion_threshold) {
		fc->congestion_threshold = arg->congestion_threshold;

		if (!cap_sys_admin &&
		    fc->congestion_threshold > max_user_congthresh)
			fc->congestion_threshold = max_user_congthresh;
	}
}

864 865 866 867 868 869 870
static void process_init_reply(struct fuse_conn *fc, struct fuse_req *req)
{
	struct fuse_init_out *arg = &req->misc.init_out;

	if (req->out.h.error || arg->major != FUSE_KERNEL_VERSION)
		fc->conn_error = 1;
	else {
871 872
		unsigned long ra_pages;

873 874
		process_init_limits(fc, arg);

875
		if (arg->minor >= 6) {
876
			ra_pages = arg->max_readahead / PAGE_SIZE;
877 878
			if (arg->flags & FUSE_ASYNC_READ)
				fc->async_read = 1;
879 880
			if (!(arg->flags & FUSE_POSIX_LOCKS))
				fc->no_lock = 1;
M
Miklos Szeredi 已提交
881 882 883
			if (arg->minor >= 17) {
				if (!(arg->flags & FUSE_FLOCK_LOCKS))
					fc->no_flock = 1;
M
Miklos Szeredi 已提交
884 885 886
			} else {
				if (!(arg->flags & FUSE_POSIX_LOCKS))
					fc->no_flock = 1;
M
Miklos Szeredi 已提交
887
			}
888 889
			if (arg->flags & FUSE_ATOMIC_O_TRUNC)
				fc->atomic_o_trunc = 1;
890 891 892 893 894
			if (arg->minor >= 9) {
				/* LOOKUP has dependency on proto version */
				if (arg->flags & FUSE_EXPORT_SUPPORT)
					fc->export_support = 1;
			}
895 896
			if (arg->flags & FUSE_BIG_WRITES)
				fc->big_writes = 1;
897 898
			if (arg->flags & FUSE_DONT_MASK)
				fc->dont_mask = 1;
899 900
			if (arg->flags & FUSE_AUTO_INVAL_DATA)
				fc->auto_inval_data = 1;
901
			if (arg->flags & FUSE_DO_READDIRPLUS) {
902
				fc->do_readdirplus = 1;
903 904 905
				if (arg->flags & FUSE_READDIRPLUS_AUTO)
					fc->readdirplus_auto = 1;
			}
906 907
			if (arg->flags & FUSE_ASYNC_DIO)
				fc->async_dio = 1;
P
Pavel Emelyanov 已提交
908 909
			if (arg->flags & FUSE_WRITEBACK_CACHE)
				fc->writeback_cache = 1;
910 911
			if (arg->flags & FUSE_PARALLEL_DIROPS)
				fc->parallel_dirops = 1;
912 913
			if (arg->flags & FUSE_HANDLE_KILLPRIV)
				fc->handle_killpriv = 1;
914 915
			if (arg->time_gran && arg->time_gran <= 1000000000)
				fc->sb->s_time_gran = arg->time_gran;
S
Seth Forshee 已提交
916
			if ((arg->flags & FUSE_POSIX_ACL)) {
M
Miklos Szeredi 已提交
917
				fc->default_permissions = 1;
S
Seth Forshee 已提交
918 919 920
				fc->posix_acl = 1;
				fc->sb->s_xattr = fuse_acl_xattr_handlers;
			}
921 922
			if (arg->flags & FUSE_ABORT_ERROR)
				fc->abort_err = 1;
923
		} else {
924
			ra_pages = fc->max_read / PAGE_SIZE;
925
			fc->no_lock = 1;
M
Miklos Szeredi 已提交
926
			fc->no_flock = 1;
927
		}
928

929 930
		fc->sb->s_bdi->ra_pages =
				min(fc->sb->s_bdi->ra_pages, ra_pages);
931 932
		fc->minor = arg->minor;
		fc->max_write = arg->minor < 5 ? 4096 : arg->max_write;
933
		fc->max_write = max_t(unsigned, 4096, fc->max_write);
934
		fc->conn_init = 1;
935
	}
936
	fuse_set_initialized(fc);
937
	wake_up_all(&fc->blocked_waitq);
938 939
}

940
static void fuse_send_init(struct fuse_conn *fc, struct fuse_req *req)
941 942
{
	struct fuse_init_in *arg = &req->misc.init_in;
M
Miklos Szeredi 已提交
943

944 945
	arg->major = FUSE_KERNEL_VERSION;
	arg->minor = FUSE_KERNEL_MINOR_VERSION;
946
	arg->max_readahead = fc->sb->s_bdi->ra_pages * PAGE_SIZE;
947
	arg->flags |= FUSE_ASYNC_READ | FUSE_POSIX_LOCKS | FUSE_ATOMIC_O_TRUNC |
M
Miklos Szeredi 已提交
948
		FUSE_EXPORT_SUPPORT | FUSE_BIG_WRITES | FUSE_DONT_MASK |
M
Miklos Szeredi 已提交
949
		FUSE_SPLICE_WRITE | FUSE_SPLICE_MOVE | FUSE_SPLICE_READ |
950
		FUSE_FLOCK_LOCKS | FUSE_HAS_IOCTL_DIR | FUSE_AUTO_INVAL_DATA |
P
Pavel Emelyanov 已提交
951
		FUSE_DO_READDIRPLUS | FUSE_READDIRPLUS_AUTO | FUSE_ASYNC_DIO |
952
		FUSE_WRITEBACK_CACHE | FUSE_NO_OPEN_SUPPORT |
953 954
		FUSE_PARALLEL_DIROPS | FUSE_HANDLE_KILLPRIV | FUSE_POSIX_ACL |
		FUSE_ABORT_ERROR;
955 956 957 958 959
	req->in.h.opcode = FUSE_INIT;
	req->in.numargs = 1;
	req->in.args[0].size = sizeof(*arg);
	req->in.args[0].value = arg;
	req->out.numargs = 1;
D
Daniel Mack 已提交
960
	/* Variable length argument used for backward compatibility
961 962 963 964 965 966
	   with interface version < 7.5.  Rest of init_out is zeroed
	   by do_get_request(), so a short reply is not a problem */
	req->out.argvar = 1;
	req->out.args[0].size = sizeof(struct fuse_init_out);
	req->out.args[0].value = &req->misc.init_out;
	req->end = process_init_reply;
967
	fuse_request_send_background(fc, req);
968 969
}

T
Tejun Heo 已提交
970 971
static void fuse_free_conn(struct fuse_conn *fc)
{
972
	WARN_ON(!list_empty(&fc->devices));
A
Al Viro 已提交
973
	kfree_rcu(fc, rcu);
T
Tejun Heo 已提交
974 975
}

976 977 978
static int fuse_bdi_init(struct fuse_conn *fc, struct super_block *sb)
{
	int err;
979
	char *suffix = "";
980

981
	if (sb->s_bdev) {
982
		suffix = "-fuseblk";
983 984 985 986 987 988 989
		/*
		 * sb->s_bdi points to blkdev's bdi however we want to redirect
		 * it to our private bdi...
		 */
		bdi_put(sb->s_bdi);
		sb->s_bdi = &noop_backing_dev_info;
	}
990 991
	err = super_setup_bdi_name(sb, "%u:%u%s", MAJOR(fc->dev),
				   MINOR(fc->dev), suffix);
992 993 994
	if (err)
		return err;

995 996 997
	sb->s_bdi->ra_pages = (VM_MAX_READAHEAD * 1024) / PAGE_SIZE;
	/* fuse does it's own writeback accounting */
	sb->s_bdi->capabilities = BDI_CAP_NO_ACCT_WB | BDI_CAP_STRICTLIMIT;
998 999 1000 1001 1002 1003 1004 1005 1006 1007 1008 1009 1010

	/*
	 * For a single fuse filesystem use max 1% of dirty +
	 * writeback threshold.
	 *
	 * This gives about 1M of write buffer for memory maps on a
	 * machine with 1G and 10% dirty_ratio, which should be more
	 * than enough.
	 *
	 * Privileged users can raise it by writing to
	 *
	 *    /sys/class/bdi/<bdi>/max_ratio
	 */
1011
	bdi_set_max_ratio(sb->s_bdi, 1);
1012 1013 1014 1015

	return 0;
}

1016 1017 1018 1019 1020 1021 1022
struct fuse_dev *fuse_dev_alloc(struct fuse_conn *fc)
{
	struct fuse_dev *fud;

	fud = kzalloc(sizeof(struct fuse_dev), GFP_KERNEL);
	if (fud) {
		fud->fc = fuse_conn_get(fc);
1023
		fuse_pqueue_init(&fud->pq);
1024 1025 1026 1027 1028 1029 1030 1031 1032 1033 1034 1035 1036 1037 1038 1039 1040 1041 1042 1043 1044 1045 1046 1047 1048

		spin_lock(&fc->lock);
		list_add_tail(&fud->entry, &fc->devices);
		spin_unlock(&fc->lock);
	}

	return fud;
}
EXPORT_SYMBOL_GPL(fuse_dev_alloc);

void fuse_dev_free(struct fuse_dev *fud)
{
	struct fuse_conn *fc = fud->fc;

	if (fc) {
		spin_lock(&fc->lock);
		list_del(&fud->entry);
		spin_unlock(&fc->lock);

		fuse_conn_put(fc);
	}
	kfree(fud);
}
EXPORT_SYMBOL_GPL(fuse_dev_free);

M
Miklos Szeredi 已提交
1049 1050
static int fuse_fill_super(struct super_block *sb, void *data, int silent)
{
1051
	struct fuse_dev *fud;
M
Miklos Szeredi 已提交
1052 1053 1054 1055
	struct fuse_conn *fc;
	struct inode *root;
	struct fuse_mount_data d;
	struct file *file;
1056
	struct dentry *root_dentry;
1057
	struct fuse_req *init_req;
M
Miklos Szeredi 已提交
1058
	int err;
M
Miklos Szeredi 已提交
1059
	int is_bdev = sb->s_bdev != NULL;
M
Miklos Szeredi 已提交
1060

1061
	err = -EINVAL;
1062
	if (sb->s_flags & SB_MANDLOCK)
1063
		goto err;
1064

1065
	sb->s_flags &= ~(SB_NOSEC | SB_I_VERSION);
A
Al Viro 已提交
1066

1067
	if (!parse_fuse_opt(data, &d, is_bdev, sb->s_user_ns))
1068
		goto err;
M
Miklos Szeredi 已提交
1069

M
Miklos Szeredi 已提交
1070
	if (is_bdev) {
1071
#ifdef CONFIG_BLOCK
1072
		err = -EINVAL;
M
Miklos Szeredi 已提交
1073
		if (!sb_set_blocksize(sb, d.blksize))
1074
			goto err;
1075
#endif
M
Miklos Szeredi 已提交
1076
	} else {
1077 1078
		sb->s_blocksize = PAGE_SIZE;
		sb->s_blocksize_bits = PAGE_SHIFT;
M
Miklos Szeredi 已提交
1079
	}
M
Miklos Szeredi 已提交
1080 1081
	sb->s_magic = FUSE_SUPER_MAGIC;
	sb->s_op = &fuse_super_operations;
S
Seth Forshee 已提交
1082
	sb->s_xattr = fuse_xattr_handlers;
M
Miklos Szeredi 已提交
1083
	sb->s_maxbytes = MAX_LFS_FILESIZE;
1084
	sb->s_time_gran = 1;
M
Miklos Szeredi 已提交
1085
	sb->s_export_op = &fuse_export_operations;
1086 1087 1088
	sb->s_iflags |= SB_I_IMA_UNVERIFIABLE_SIGNATURE;
	if (sb->s_user_ns != &init_user_ns)
		sb->s_iflags |= SB_I_UNTRUSTED_MOUNTER;
M
Miklos Szeredi 已提交
1089 1090

	file = fget(d.fd);
1091
	err = -EINVAL;
M
Miklos Szeredi 已提交
1092
	if (!file)
1093
		goto err;
M
Miklos Szeredi 已提交
1094

1095 1096 1097 1098 1099 1100
	/*
	 * Require mount to happen from the same user namespace which
	 * opened /dev/fuse to prevent potential attacks.
	 */
	if (file->f_op != &fuse_dev_operations ||
	    file->f_cred->user_ns != sb->s_user_ns)
1101
		goto err_fput;
M
Miklos Szeredi 已提交
1102

1103 1104 1105 1106 1107 1108 1109
	/*
	 * If we are not in the initial user namespace posix
	 * acls must be translated.
	 */
	if (sb->s_user_ns != &init_user_ns)
		sb->s_xattr = fuse_no_acl_xattr_handlers;

1110
	fc = kmalloc(sizeof(*fc), GFP_KERNEL);
1111 1112 1113
	err = -ENOMEM;
	if (!fc)
		goto err_fput;
M
Miklos Szeredi 已提交
1114

1115
	fuse_conn_init(fc, sb->s_user_ns);
1116
	fc->release = fuse_free_conn;
1117

1118 1119 1120 1121
	fud = fuse_dev_alloc(fc);
	if (!fud)
		goto err_put_conn;

1122
	fc->dev = sb->s_dev;
J
John Muir 已提交
1123
	fc->sb = sb;
1124 1125
	err = fuse_bdi_init(fc, sb);
	if (err)
1126
		goto err_dev_free;
1127

1128
	/* Handle umasking inside the fuse code */
1129
	if (sb->s_flags & SB_POSIXACL)
1130
		fc->dont_mask = 1;
1131
	sb->s_flags |= SB_POSIXACL;
1132

M
Miklos Szeredi 已提交
1133 1134
	fc->default_permissions = d.default_permissions;
	fc->allow_other = d.allow_other;
M
Miklos Szeredi 已提交
1135
	fc->user_id = d.user_id;
1136
	fc->group_id = d.group_id;
1137
	fc->max_read = max_t(unsigned, 4096, d.max_read);
M
Miklos Szeredi 已提交
1138

1139 1140 1141
	/* Used by get_root_inode() */
	sb->s_fs_info = fc;

M
Miklos Szeredi 已提交
1142
	err = -ENOMEM;
1143
	root = fuse_get_root_inode(sb, d.rootmode);
1144
	sb->s_d_op = &fuse_root_dentry_operations;
1145 1146
	root_dentry = d_make_root(root);
	if (!root_dentry)
1147
		goto err_dev_free;
1148
	/* Root dentry doesn't have .d_revalidate */
A
Al Viro 已提交
1149
	sb->s_d_op = &fuse_dentry_operations;
1150

1151
	init_req = fuse_request_alloc(0);
1152 1153
	if (!init_req)
		goto err_put_root;
M
Miklos Szeredi 已提交
1154
	__set_bit(FR_BACKGROUND, &init_req->flags);
1155

1156
	if (is_bdev) {
1157
		fc->destroy_req = fuse_request_alloc(0);
1158
		if (!fc->destroy_req)
J
Julia Lawall 已提交
1159
			goto err_free_init_req;
1160 1161
	}

1162
	mutex_lock(&fuse_mutex);
1163 1164
	err = -EINVAL;
	if (file->private_data)
1165
		goto err_unlock;
1166

1167 1168 1169 1170 1171
	err = fuse_ctl_add_conn(fc);
	if (err)
		goto err_unlock;

	list_add_tail(&fc->entry, &fuse_conn_list);
1172
	sb->s_root = root_dentry;
1173
	file->private_data = fud;
1174
	mutex_unlock(&fuse_mutex);
M
Miklos Szeredi 已提交
1175 1176 1177 1178 1179 1180
	/*
	 * atomic_dec_and_test() in fput() provides the necessary
	 * memory barrier for file->private_data to be visible on all
	 * CPUs after this
	 */
	fput(file);
1181

1182
	fuse_send_init(fc, init_req);
1183

M
Miklos Szeredi 已提交
1184 1185
	return 0;

1186 1187
 err_unlock:
	mutex_unlock(&fuse_mutex);
J
Julia Lawall 已提交
1188
 err_free_init_req:
1189
	fuse_request_free(init_req);
1190 1191
 err_put_root:
	dput(root_dentry);
1192 1193
 err_dev_free:
	fuse_dev_free(fud);
1194
 err_put_conn:
1195
	fuse_conn_put(fc);
1196
	sb->s_fs_info = NULL;
1197 1198 1199
 err_fput:
	fput(file);
 err:
M
Miklos Szeredi 已提交
1200 1201 1202
	return err;
}

A
Al Viro 已提交
1203
static struct dentry *fuse_mount(struct file_system_type *fs_type,
1204
		       int flags, const char *dev_name,
A
Al Viro 已提交
1205
		       void *raw_data)
M
Miklos Szeredi 已提交
1206
{
A
Al Viro 已提交
1207
	return mount_nodev(fs_type, flags, raw_data, fuse_fill_super);
M
Miklos Szeredi 已提交
1208 1209
}

1210
static void fuse_sb_destroy(struct super_block *sb)
J
John Muir 已提交
1211 1212 1213 1214
{
	struct fuse_conn *fc = get_fuse_conn_super(sb);

	if (fc) {
1215 1216 1217 1218 1219
		fuse_send_destroy(fc);

		fuse_abort_conn(fc, false);
		fuse_wait_aborted(fc);

J
John Muir 已提交
1220 1221 1222 1223
		down_write(&fc->killsb);
		fc->sb = NULL;
		up_write(&fc->killsb);
	}
1224
}
J
John Muir 已提交
1225

1226 1227 1228
static void fuse_kill_sb_anon(struct super_block *sb)
{
	fuse_sb_destroy(sb);
J
John Muir 已提交
1229 1230 1231
	kill_anon_super(sb);
}

1232 1233 1234
static struct file_system_type fuse_fs_type = {
	.owner		= THIS_MODULE,
	.name		= "fuse",
1235
	.fs_flags	= FS_HAS_SUBTYPE | FS_USERNS_MOUNT,
A
Al Viro 已提交
1236
	.mount		= fuse_mount,
J
John Muir 已提交
1237
	.kill_sb	= fuse_kill_sb_anon,
1238
};
1239
MODULE_ALIAS_FS("fuse");
1240 1241

#ifdef CONFIG_BLOCK
A
Al Viro 已提交
1242
static struct dentry *fuse_mount_blk(struct file_system_type *fs_type,
1243
			   int flags, const char *dev_name,
A
Al Viro 已提交
1244
			   void *raw_data)
1245
{
A
Al Viro 已提交
1246
	return mount_bdev(fs_type, flags, dev_name, raw_data, fuse_fill_super);
1247 1248
}

J
John Muir 已提交
1249 1250
static void fuse_kill_sb_blk(struct super_block *sb)
{
1251
	fuse_sb_destroy(sb);
J
John Muir 已提交
1252 1253 1254
	kill_block_super(sb);
}

1255 1256 1257
static struct file_system_type fuseblk_fs_type = {
	.owner		= THIS_MODULE,
	.name		= "fuseblk",
A
Al Viro 已提交
1258
	.mount		= fuse_mount_blk,
J
John Muir 已提交
1259
	.kill_sb	= fuse_kill_sb_blk,
A
Alexey Dobriyan 已提交
1260
	.fs_flags	= FS_REQUIRES_DEV | FS_HAS_SUBTYPE,
1261
};
1262
MODULE_ALIAS_FS("fuseblk");
1263

1264 1265 1266 1267 1268 1269 1270 1271 1272 1273 1274 1275 1276 1277 1278 1279 1280 1281 1282 1283
static inline int register_fuseblk(void)
{
	return register_filesystem(&fuseblk_fs_type);
}

static inline void unregister_fuseblk(void)
{
	unregister_filesystem(&fuseblk_fs_type);
}
#else
static inline int register_fuseblk(void)
{
	return 0;
}

static inline void unregister_fuseblk(void)
{
}
#endif

1284
static void fuse_inode_init_once(void *foo)
M
Miklos Szeredi 已提交
1285
{
M
Miklos Szeredi 已提交
1286
	struct inode *inode = foo;
M
Miklos Szeredi 已提交
1287

C
Christoph Lameter 已提交
1288
	inode_init_once(inode);
M
Miklos Szeredi 已提交
1289 1290 1291 1292 1293 1294
}

static int __init fuse_fs_init(void)
{
	int err;

1295
	fuse_inode_cachep = kmem_cache_create("fuse_inode",
1296 1297 1298
			sizeof(struct fuse_inode), 0,
			SLAB_HWCACHE_ALIGN|SLAB_ACCOUNT|SLAB_RECLAIM_ACCOUNT,
			fuse_inode_init_once);
1299 1300
	err = -ENOMEM;
	if (!fuse_inode_cachep)
1301 1302 1303 1304 1305 1306 1307 1308 1309
		goto out;

	err = register_fuseblk();
	if (err)
		goto out2;

	err = register_filesystem(&fuse_fs_type);
	if (err)
		goto out3;
1310 1311

	return 0;
M
Miklos Szeredi 已提交
1312

1313
 out3:
1314
	unregister_fuseblk();
1315 1316
 out2:
	kmem_cache_destroy(fuse_inode_cachep);
1317
 out:
M
Miklos Szeredi 已提交
1318 1319 1320 1321 1322 1323
	return err;
}

static void fuse_fs_cleanup(void)
{
	unregister_filesystem(&fuse_fs_type);
1324
	unregister_fuseblk();
1325 1326 1327 1328 1329 1330

	/*
	 * Make sure all delayed rcu free inodes are flushed before we
	 * destroy cache.
	 */
	rcu_barrier();
M
Miklos Szeredi 已提交
1331 1332 1333
	kmem_cache_destroy(fuse_inode_cachep);
}

1334 1335
static struct kobject *fuse_kobj;

1336 1337 1338 1339
static int fuse_sysfs_init(void)
{
	int err;

1340
	fuse_kobj = kobject_create_and_add("fuse", fs_kobj);
1341 1342
	if (!fuse_kobj) {
		err = -ENOMEM;
1343
		goto out_err;
1344
	}
1345

1346 1347
	err = sysfs_create_mount_point(fuse_kobj, "connections");
	if (err)
1348 1349 1350 1351 1352
		goto out_fuse_unregister;

	return 0;

 out_fuse_unregister:
1353
	kobject_put(fuse_kobj);
1354 1355 1356 1357 1358 1359
 out_err:
	return err;
}

static void fuse_sysfs_cleanup(void)
{
1360
	sysfs_remove_mount_point(fuse_kobj, "connections");
1361
	kobject_put(fuse_kobj);
1362 1363
}

M
Miklos Szeredi 已提交
1364 1365 1366 1367
static int __init fuse_init(void)
{
	int res;

M
Miklos Szeredi 已提交
1368
	printk(KERN_INFO "fuse init (API version %i.%i)\n",
M
Miklos Szeredi 已提交
1369 1370
	       FUSE_KERNEL_VERSION, FUSE_KERNEL_MINOR_VERSION);

1371
	INIT_LIST_HEAD(&fuse_conn_list);
M
Miklos Szeredi 已提交
1372 1373 1374 1375
	res = fuse_fs_init();
	if (res)
		goto err;

M
Miklos Szeredi 已提交
1376 1377 1378 1379
	res = fuse_dev_init();
	if (res)
		goto err_fs_cleanup;

1380 1381 1382 1383
	res = fuse_sysfs_init();
	if (res)
		goto err_dev_cleanup;

1384 1385 1386 1387
	res = fuse_ctl_init();
	if (res)
		goto err_sysfs_cleanup;

1388 1389 1390
	sanitize_global_limit(&max_user_bgreq);
	sanitize_global_limit(&max_user_congthresh);

M
Miklos Szeredi 已提交
1391 1392
	return 0;

1393 1394
 err_sysfs_cleanup:
	fuse_sysfs_cleanup();
1395 1396
 err_dev_cleanup:
	fuse_dev_cleanup();
M
Miklos Szeredi 已提交
1397 1398
 err_fs_cleanup:
	fuse_fs_cleanup();
M
Miklos Szeredi 已提交
1399 1400 1401 1402 1403 1404 1405 1406
 err:
	return res;
}

static void __exit fuse_exit(void)
{
	printk(KERN_DEBUG "fuse exit\n");

1407
	fuse_ctl_cleanup();
1408
	fuse_sysfs_cleanup();
M
Miklos Szeredi 已提交
1409
	fuse_fs_cleanup();
M
Miklos Szeredi 已提交
1410
	fuse_dev_cleanup();
M
Miklos Szeredi 已提交
1411 1412 1413 1414
}

module_init(fuse_init);
module_exit(fuse_exit);