file_table.c 12.1 KB
Newer Older
L
Linus Torvalds 已提交
1 2 3 4 5 6 7 8 9 10
/*
 *  linux/fs/file_table.c
 *
 *  Copyright (C) 1991, 1992  Linus Torvalds
 *  Copyright (C) 1997 David S. Miller (davem@caip.rutgers.edu)
 */

#include <linux/string.h>
#include <linux/slab.h>
#include <linux/file.h>
A
Al Viro 已提交
11
#include <linux/fdtable.h>
L
Linus Torvalds 已提交
12 13 14 15 16
#include <linux/init.h>
#include <linux/module.h>
#include <linux/fs.h>
#include <linux/security.h>
#include <linux/eventpoll.h>
17
#include <linux/rcupdate.h>
L
Linus Torvalds 已提交
18
#include <linux/mount.h>
19
#include <linux/capability.h>
L
Linus Torvalds 已提交
20
#include <linux/cdev.h>
R
Robert Love 已提交
21
#include <linux/fsnotify.h>
D
Dipankar Sarma 已提交
22
#include <linux/sysctl.h>
N
Nick Piggin 已提交
23
#include <linux/lglock.h>
D
Dipankar Sarma 已提交
24
#include <linux/percpu_counter.h>
N
Nick Piggin 已提交
25
#include <linux/percpu.h>
26
#include <linux/ima.h>
D
Dipankar Sarma 已提交
27 28

#include <asm/atomic.h>
L
Linus Torvalds 已提交
29

30 31
#include "internal.h"

L
Linus Torvalds 已提交
32 33 34 35 36
/* sysctl tunables... */
struct files_stat_struct files_stat = {
	.max_files = NR_FILE
};

N
Nick Piggin 已提交
37 38
DECLARE_LGLOCK(files_lglock);
DEFINE_LGLOCK(files_lglock);
L
Linus Torvalds 已提交
39

40 41 42
/* SLAB cache for file structures */
static struct kmem_cache *filp_cachep __read_mostly;

D
Dipankar Sarma 已提交
43
static struct percpu_counter nr_files __cacheline_aligned_in_smp;
L
Linus Torvalds 已提交
44

D
Dipankar Sarma 已提交
45
static inline void file_free_rcu(struct rcu_head *head)
L
Linus Torvalds 已提交
46
{
D
David Howells 已提交
47 48 49
	struct file *f = container_of(head, struct file, f_u.fu_rcuhead);

	put_cred(f->f_cred);
D
Dipankar Sarma 已提交
50
	kmem_cache_free(filp_cachep, f);
L
Linus Torvalds 已提交
51 52
}

D
Dipankar Sarma 已提交
53
static inline void file_free(struct file *f)
L
Linus Torvalds 已提交
54
{
D
Dipankar Sarma 已提交
55
	percpu_counter_dec(&nr_files);
56
	file_check_state(f);
D
Dipankar Sarma 已提交
57
	call_rcu(&f->f_u.fu_rcuhead, file_free_rcu);
L
Linus Torvalds 已提交
58 59
}

D
Dipankar Sarma 已提交
60 61 62 63
/*
 * Return the total number of open files in the system
 */
static int get_nr_files(void)
L
Linus Torvalds 已提交
64
{
D
Dipankar Sarma 已提交
65
	return percpu_counter_read_positive(&nr_files);
L
Linus Torvalds 已提交
66 67
}

D
Dipankar Sarma 已提交
68 69 70 71
/*
 * Return the maximum number of open files in the system
 */
int get_max_files(void)
72
{
D
Dipankar Sarma 已提交
73
	return files_stat.max_files;
74
}
D
Dipankar Sarma 已提交
75 76 77 78 79 80
EXPORT_SYMBOL_GPL(get_max_files);

/*
 * Handle nr_files sysctl
 */
#if defined(CONFIG_SYSCTL) && defined(CONFIG_PROC_FS)
81
int proc_nr_files(ctl_table *table, int write,
D
Dipankar Sarma 已提交
82 83 84
                     void __user *buffer, size_t *lenp, loff_t *ppos)
{
	files_stat.nr_files = get_nr_files();
85
	return proc_dointvec(table, write, buffer, lenp, ppos);
D
Dipankar Sarma 已提交
86 87
}
#else
88
int proc_nr_files(ctl_table *table, int write,
D
Dipankar Sarma 已提交
89 90 91 92 93
                     void __user *buffer, size_t *lenp, loff_t *ppos)
{
	return -ENOSYS;
}
#endif
94

L
Linus Torvalds 已提交
95 96 97
/* Find an unused file structure and return a pointer to it.
 * Returns NULL, if there are no more free file structures or
 * we run out of memory.
D
Dave Hansen 已提交
98 99 100 101 102 103
 *
 * Be very careful using this.  You are responsible for
 * getting write access to any mount that you might assign
 * to this filp, if it is opened for write.  If this is not
 * done, you will imbalance int the mount's writer count
 * and a warning at __fput() time.
L
Linus Torvalds 已提交
104 105 106
 */
struct file *get_empty_filp(void)
{
107
	const struct cred *cred = current_cred();
108
	static int old_max;
L
Linus Torvalds 已提交
109 110 111 112 113
	struct file * f;

	/*
	 * Privileged users can go above max_files
	 */
D
Dipankar Sarma 已提交
114 115 116 117 118
	if (get_nr_files() >= files_stat.max_files && !capable(CAP_SYS_ADMIN)) {
		/*
		 * percpu_counters are inaccurate.  Do an expensive check before
		 * we go and fail.
		 */
P
Peter Zijlstra 已提交
119
		if (percpu_counter_sum_positive(&nr_files) >= files_stat.max_files)
D
Dipankar Sarma 已提交
120 121
			goto over;
	}
122

D
Denis Cheng 已提交
123
	f = kmem_cache_zalloc(filp_cachep, GFP_KERNEL);
124 125 126
	if (f == NULL)
		goto fail;

D
Dipankar Sarma 已提交
127
	percpu_counter_inc(&nr_files);
128 129
	if (security_file_alloc(f))
		goto fail_sec;
L
Linus Torvalds 已提交
130

131
	INIT_LIST_HEAD(&f->f_u.fu_list);
A
Al Viro 已提交
132
	atomic_long_set(&f->f_count, 1);
133
	rwlock_init(&f->f_owner.lock);
D
David Howells 已提交
134
	f->f_cred = get_cred(cred);
J
Jonathan Corbet 已提交
135
	spin_lock_init(&f->f_lock);
136
	eventpoll_init_file(f);
137 138 139 140
	/* f->f_version: 0 */
	return f;

over:
L
Linus Torvalds 已提交
141
	/* Ran out of filps - report that */
D
Dipankar Sarma 已提交
142
	if (get_nr_files() > old_max) {
L
Linus Torvalds 已提交
143
		printk(KERN_INFO "VFS: file-max limit %d reached\n",
D
Dipankar Sarma 已提交
144 145
					get_max_files());
		old_max = get_nr_files();
L
Linus Torvalds 已提交
146
	}
147 148 149 150
	goto fail;

fail_sec:
	file_free(f);
L
Linus Torvalds 已提交
151 152 153 154
fail:
	return NULL;
}

155 156 157 158 159 160 161 162 163 164 165 166 167 168 169
/**
 * alloc_file - allocate and initialize a 'struct file'
 * @mnt: the vfsmount on which the file will reside
 * @dentry: the dentry representing the new file
 * @mode: the mode with which the new file will be opened
 * @fop: the 'struct file_operations' for the new file
 *
 * Use this instead of get_empty_filp() to get a new
 * 'struct file'.  Do so because of the same initialization
 * pitfalls reasons listed for init_file().  This is a
 * preferred interface to using init_file().
 *
 * If all the callers of init_file() are eliminated, its
 * code should be moved into this function.
 */
170 171
struct file *alloc_file(struct path *path, fmode_t mode,
		const struct file_operations *fop)
172 173 174 175 176 177 178
{
	struct file *file;

	file = get_empty_filp();
	if (!file)
		return NULL;

179 180
	file->f_path = *path;
	file->f_mapping = path->dentry->d_inode->i_mapping;
181 182
	file->f_mode = mode;
	file->f_op = fop;
183 184 185 186 187 188 189

	/*
	 * These mounts don't really matter in practice
	 * for r/o bind mounts.  They aren't userspace-
	 * visible.  We do this for consistency, and so
	 * that we can do debugging checks at __fput()
	 */
190
	if ((mode & FMODE_WRITE) && !special_file(path->dentry->d_inode->i_mode)) {
191
		file_take_write(file);
192
		WARN_ON(mnt_clone_write(path->mnt));
193
	}
194
	ima_counts_get(file);
A
Al Viro 已提交
195
	return file;
196
}
R
Roland Dreier 已提交
197
EXPORT_SYMBOL(alloc_file);
198

199 200 201 202 203 204 205 206 207 208
/**
 * drop_file_write_access - give up ability to write to a file
 * @file: the file to which we will stop writing
 *
 * This is a central place which will give up the ability
 * to write to @file, along with access to write through
 * its vfsmount.
 */
void drop_file_write_access(struct file *file)
{
209
	struct vfsmount *mnt = file->f_path.mnt;
210 211 212 213
	struct dentry *dentry = file->f_path.dentry;
	struct inode *inode = dentry->d_inode;

	put_write_access(inode);
214 215 216 217 218 219 220

	if (special_file(inode->i_mode))
		return;
	if (file_check_writeable(file) != 0)
		return;
	mnt_drop_write(mnt);
	file_release_write(file);
221 222 223
}
EXPORT_SYMBOL_GPL(drop_file_write_access);

224
/* the real guts of fput() - releasing the last reference to file
L
Linus Torvalds 已提交
225
 */
226
static void __fput(struct file *file)
L
Linus Torvalds 已提交
227
{
228 229
	struct dentry *dentry = file->f_path.dentry;
	struct vfsmount *mnt = file->f_path.mnt;
L
Linus Torvalds 已提交
230 231 232
	struct inode *inode = dentry->d_inode;

	might_sleep();
R
Robert Love 已提交
233 234

	fsnotify_close(file);
L
Linus Torvalds 已提交
235 236 237 238 239 240 241
	/*
	 * The function eventpoll_release() should be the first called
	 * in the file cleanup chain.
	 */
	eventpoll_release(file);
	locks_remove_flock(file);

A
Al Viro 已提交
242 243 244 245
	if (unlikely(file->f_flags & FASYNC)) {
		if (file->f_op && file->f_op->fasync)
			file->f_op->fasync(-1, file, 0);
	}
L
Linus Torvalds 已提交
246 247 248
	if (file->f_op && file->f_op->release)
		file->f_op->release(inode, file);
	security_file_free(file);
A
Al Viro 已提交
249
	ima_file_free(file);
250
	if (unlikely(S_ISCHR(inode->i_mode) && inode->i_cdev != NULL))
L
Linus Torvalds 已提交
251 252
		cdev_put(inode->i_cdev);
	fops_put(file->f_op);
253
	put_pid(file->f_owner.pid);
N
Nick Piggin 已提交
254
	file_sb_list_del(file);
255 256
	if (file->f_mode & FMODE_WRITE)
		drop_file_write_access(file);
257 258
	file->f_path.dentry = NULL;
	file->f_path.mnt = NULL;
L
Linus Torvalds 已提交
259 260 261 262 263
	file_free(file);
	dput(dentry);
	mntput(mnt);
}

264 265 266 267 268 269 270 271
void fput(struct file *file)
{
	if (atomic_long_dec_and_test(&file->f_count))
		__fput(file);
}

EXPORT_SYMBOL(fput);

272
struct file *fget(unsigned int fd)
L
Linus Torvalds 已提交
273 274 275 276
{
	struct file *file;
	struct files_struct *files = current->files;

277
	rcu_read_lock();
L
Linus Torvalds 已提交
278
	file = fcheck_files(files, fd);
279
	if (file) {
A
Al Viro 已提交
280
		if (!atomic_long_inc_not_zero(&file->f_count)) {
281 282 283 284 285 286 287
			/* File object ref couldn't be taken */
			rcu_read_unlock();
			return NULL;
		}
	}
	rcu_read_unlock();

L
Linus Torvalds 已提交
288 289 290 291 292 293
	return file;
}

EXPORT_SYMBOL(fget);

/*
294 295 296 297 298 299 300 301 302 303 304 305 306 307
 * Lightweight file lookup - no refcnt increment if fd table isn't shared.
 *
 * You can use this instead of fget if you satisfy all of the following
 * conditions:
 * 1) You must call fput_light before exiting the syscall and returning control
 *    to userspace (i.e. you cannot remember the returned struct file * after
 *    returning to userspace).
 * 2) You must not call filp_close on the returned struct file * in between
 *    calls to fget_light and fput_light.
 * 3) You must not clone the current task in between the calls to fget_light
 *    and fput_light.
 *
 * The fput_needed flag returned by fget_light should be passed to the
 * corresponding fput_light.
L
Linus Torvalds 已提交
308
 */
309
struct file *fget_light(unsigned int fd, int *fput_needed)
L
Linus Torvalds 已提交
310 311 312 313 314 315 316 317
{
	struct file *file;
	struct files_struct *files = current->files;

	*fput_needed = 0;
	if (likely((atomic_read(&files->count) == 1))) {
		file = fcheck_files(files, fd);
	} else {
318
		rcu_read_lock();
L
Linus Torvalds 已提交
319 320
		file = fcheck_files(files, fd);
		if (file) {
A
Al Viro 已提交
321
			if (atomic_long_inc_not_zero(&file->f_count))
322 323 324 325
				*fput_needed = 1;
			else
				/* Didn't get the reference, someone's freed */
				file = NULL;
L
Linus Torvalds 已提交
326
		}
327
		rcu_read_unlock();
L
Linus Torvalds 已提交
328
	}
329

L
Linus Torvalds 已提交
330 331 332 333 334
	return file;
}

void put_filp(struct file *file)
{
A
Al Viro 已提交
335
	if (atomic_long_dec_and_test(&file->f_count)) {
L
Linus Torvalds 已提交
336
		security_file_free(file);
N
Nick Piggin 已提交
337
		file_sb_list_del(file);
L
Linus Torvalds 已提交
338 339 340 341
		file_free(file);
	}
}

N
Nick Piggin 已提交
342 343 344 345 346 347 348 349 350 351 352 353 354 355 356 357 358 359 360 361 362 363 364 365 366 367 368 369 370 371 372 373
static inline int file_list_cpu(struct file *file)
{
#ifdef CONFIG_SMP
	return file->f_sb_list_cpu;
#else
	return smp_processor_id();
#endif
}

/* helper for file_sb_list_add to reduce ifdefs */
static inline void __file_sb_list_add(struct file *file, struct super_block *sb)
{
	struct list_head *list;
#ifdef CONFIG_SMP
	int cpu;
	cpu = smp_processor_id();
	file->f_sb_list_cpu = cpu;
	list = per_cpu_ptr(sb->s_files, cpu);
#else
	list = &sb->s_files;
#endif
	list_add(&file->f_u.fu_list, list);
}

/**
 * file_sb_list_add - add a file to the sb's file list
 * @file: file to add
 * @sb: sb to add it to
 *
 * Use this function to associate a file with the superblock of the inode it
 * refers to.
 */
N
Nick Piggin 已提交
374
void file_sb_list_add(struct file *file, struct super_block *sb)
L
Linus Torvalds 已提交
375
{
N
Nick Piggin 已提交
376 377 378
	lg_local_lock(files_lglock);
	__file_sb_list_add(file, sb);
	lg_local_unlock(files_lglock);
L
Linus Torvalds 已提交
379 380
}

N
Nick Piggin 已提交
381 382 383 384 385 386 387
/**
 * file_sb_list_del - remove a file from the sb's file list
 * @file: file to remove
 * @sb: sb to remove it from
 *
 * Use this function to remove a file from its superblock.
 */
N
Nick Piggin 已提交
388
void file_sb_list_del(struct file *file)
L
Linus Torvalds 已提交
389
{
E
Eric Dumazet 已提交
390
	if (!list_empty(&file->f_u.fu_list)) {
N
Nick Piggin 已提交
391
		lg_local_lock_cpu(files_lglock, file_list_cpu(file));
E
Eric Dumazet 已提交
392
		list_del_init(&file->f_u.fu_list);
N
Nick Piggin 已提交
393
		lg_local_unlock_cpu(files_lglock, file_list_cpu(file));
L
Linus Torvalds 已提交
394 395 396
	}
}

N
Nick Piggin 已提交
397 398 399 400 401 402 403 404 405 406 407 408 409 410 411 412 413 414 415 416 417 418 419 420 421 422 423 424 425 426 427
#ifdef CONFIG_SMP

/*
 * These macros iterate all files on all CPUs for a given superblock.
 * files_lglock must be held globally.
 */
#define do_file_list_for_each_entry(__sb, __file)		\
{								\
	int i;							\
	for_each_possible_cpu(i) {				\
		struct list_head *list;				\
		list = per_cpu_ptr((__sb)->s_files, i);		\
		list_for_each_entry((__file), list, f_u.fu_list)

#define while_file_list_for_each_entry				\
	}							\
}

#else

#define do_file_list_for_each_entry(__sb, __file)		\
{								\
	struct list_head *list;					\
	list = &(sb)->s_files;					\
	list_for_each_entry((__file), list, f_u.fu_list)

#define while_file_list_for_each_entry				\
}

#endif

L
Linus Torvalds 已提交
428 429
int fs_may_remount_ro(struct super_block *sb)
{
430
	struct file *file;
L
Linus Torvalds 已提交
431
	/* Check that no files are currently opened for writing. */
N
Nick Piggin 已提交
432 433
	lg_global_lock(files_lglock);
	do_file_list_for_each_entry(sb, file) {
434
		struct inode *inode = file->f_path.dentry->d_inode;
L
Linus Torvalds 已提交
435 436 437 438 439 440 441 442

		/* File with pending delete? */
		if (inode->i_nlink == 0)
			goto too_bad;

		/* Writeable file? */
		if (S_ISREG(inode->i_mode) && (file->f_mode & FMODE_WRITE))
			goto too_bad;
N
Nick Piggin 已提交
443 444
	} while_file_list_for_each_entry;
	lg_global_unlock(files_lglock);
L
Linus Torvalds 已提交
445 446
	return 1; /* Tis' cool bro. */
too_bad:
N
Nick Piggin 已提交
447
	lg_global_unlock(files_lglock);
L
Linus Torvalds 已提交
448 449 450
	return 0;
}

451 452 453 454 455 456 457 458 459 460 461 462
/**
 *	mark_files_ro - mark all files read-only
 *	@sb: superblock in question
 *
 *	All files are marked read-only.  We don't care about pending
 *	delete files so this should be used in 'force' mode only.
 */
void mark_files_ro(struct super_block *sb)
{
	struct file *f;

retry:
N
Nick Piggin 已提交
463 464
	lg_global_lock(files_lglock);
	do_file_list_for_each_entry(sb, f) {
465 466 467 468 469 470 471
		struct vfsmount *mnt;
		if (!S_ISREG(f->f_path.dentry->d_inode->i_mode))
		       continue;
		if (!file_count(f))
			continue;
		if (!(f->f_mode & FMODE_WRITE))
			continue;
472
		spin_lock(&f->f_lock);
473
		f->f_mode &= ~FMODE_WRITE;
474
		spin_unlock(&f->f_lock);
475 476 477 478
		if (file_check_writeable(f) != 0)
			continue;
		file_release_write(f);
		mnt = mntget(f->f_path.mnt);
N
Nick Piggin 已提交
479
		/* This can sleep, so we can't hold the spinlock. */
N
Nick Piggin 已提交
480
		lg_global_unlock(files_lglock);
481 482 483
		mnt_drop_write(mnt);
		mntput(mnt);
		goto retry;
N
Nick Piggin 已提交
484 485
	} while_file_list_for_each_entry;
	lg_global_unlock(files_lglock);
486 487
}

L
Linus Torvalds 已提交
488 489 490
void __init files_init(unsigned long mempages)
{ 
	int n; 
491 492 493 494 495 496

	filp_cachep = kmem_cache_create("filp", sizeof(struct file), 0,
			SLAB_HWCACHE_ALIGN | SLAB_PANIC, NULL);

	/*
	 * One file with associated inode and dcache is very roughly 1K.
L
Linus Torvalds 已提交
497 498 499 500 501 502 503
	 * Per default don't use more than 10% of our memory for files. 
	 */ 

	n = (mempages * (PAGE_SIZE / 1024)) / 10;
	files_stat.max_files = n; 
	if (files_stat.max_files < NR_FILE)
		files_stat.max_files = NR_FILE;
504
	files_defer_init();
N
Nick Piggin 已提交
505
	lg_lock_init(files_lglock);
506
	percpu_counter_init(&nr_files, 0);
L
Linus Torvalds 已提交
507
}