ioctl.c 24.2 KB
Newer Older
1
/*
2
 * linux/fs/ext4/ioctl.c
3 4 5 6 7 8 9 10 11 12 13
 *
 * Copyright (C) 1993, 1994, 1995
 * Remy Card (card@masi.ibp.fr)
 * Laboratoire MASI - Institut Blaise Pascal
 * Universite Pierre et Marie Curie (Paris VI)
 */

#include <linux/fs.h>
#include <linux/capability.h>
#include <linux/time.h>
#include <linux/compat.h>
14
#include <linux/mount.h>
15
#include <linux/file.h>
16
#include <linux/quotaops.h>
17
#include <linux/uuid.h>
18
#include <linux/uaccess.h>
19
#include <linux/delay.h>
20 21
#include "ext4_jbd2.h"
#include "ext4.h"
22

23 24 25 26 27 28 29 30 31 32 33 34 35 36 37
/**
 * Swap memory between @a and @b for @len bytes.
 *
 * @a:          pointer to first memory area
 * @b:          pointer to second memory area
 * @len:        number of bytes to swap
 *
 */
static void memswap(void *a, void *b, size_t len)
{
	unsigned char *ap, *bp;

	ap = (unsigned char *)a;
	bp = (unsigned char *)b;
	while (len-- > 0) {
F
Fabian Frederick 已提交
38
		swap(*ap, *bp);
39 40 41 42 43 44 45 46 47 48 49 50 51 52 53 54 55 56 57 58 59 60 61 62 63 64 65 66 67 68 69 70 71 72 73 74 75
		ap++;
		bp++;
	}
}

/**
 * Swap i_data and associated attributes between @inode1 and @inode2.
 * This function is used for the primary swap between inode1 and inode2
 * and also to revert this primary swap in case of errors.
 *
 * Therefore you have to make sure, that calling this method twice
 * will revert all changes.
 *
 * @inode1:     pointer to first inode
 * @inode2:     pointer to second inode
 */
static void swap_inode_data(struct inode *inode1, struct inode *inode2)
{
	loff_t isize;
	struct ext4_inode_info *ei1;
	struct ext4_inode_info *ei2;

	ei1 = EXT4_I(inode1);
	ei2 = EXT4_I(inode2);

	memswap(&inode1->i_flags, &inode2->i_flags, sizeof(inode1->i_flags));
	memswap(&inode1->i_version, &inode2->i_version,
		  sizeof(inode1->i_version));
	memswap(&inode1->i_blocks, &inode2->i_blocks,
		  sizeof(inode1->i_blocks));
	memswap(&inode1->i_bytes, &inode2->i_bytes, sizeof(inode1->i_bytes));
	memswap(&inode1->i_atime, &inode2->i_atime, sizeof(inode1->i_atime));
	memswap(&inode1->i_mtime, &inode2->i_mtime, sizeof(inode1->i_mtime));

	memswap(ei1->i_data, ei2->i_data, sizeof(ei1->i_data));
	memswap(&ei1->i_flags, &ei2->i_flags, sizeof(ei1->i_flags));
	memswap(&ei1->i_disksize, &ei2->i_disksize, sizeof(ei1->i_disksize));
76 77
	ext4_es_remove_extent(inode1, 0, EXT_MAX_BLOCKS);
	ext4_es_remove_extent(inode2, 0, EXT_MAX_BLOCKS);
78 79 80 81 82 83 84 85 86 87 88 89 90 91 92 93 94 95 96 97 98 99

	isize = i_size_read(inode1);
	i_size_write(inode1, i_size_read(inode2));
	i_size_write(inode2, isize);
}

/**
 * Swap the information from the given @inode and the inode
 * EXT4_BOOT_LOADER_INO. It will basically swap i_data and all other
 * important fields of the inodes.
 *
 * @sb:         the super block of the filesystem
 * @inode:      the inode to swap with EXT4_BOOT_LOADER_INO
 *
 */
static long swap_inode_boot_loader(struct super_block *sb,
				struct inode *inode)
{
	handle_t *handle;
	int err;
	struct inode *inode_bl;
	struct ext4_inode_info *ei_bl;
100
	struct ext4_sb_info *sbi = EXT4_SB(sb);
101

102 103
	if (inode->i_nlink != 1 || !S_ISREG(inode->i_mode))
		return -EINVAL;
104

105 106
	if (!inode_owner_or_capable(inode) || !capable(CAP_SYS_ADMIN))
		return -EPERM;
107 108

	inode_bl = ext4_iget(sb, EXT4_BOOT_LOADER_INO);
109 110
	if (IS_ERR(inode_bl))
		return PTR_ERR(inode_bl);
111 112 113 114 115 116 117
	ei_bl = EXT4_I(inode_bl);

	filemap_flush(inode->i_mapping);
	filemap_flush(inode_bl->i_mapping);

	/* Protect orig inodes against a truncate and make sure,
	 * that only 1 swap_inode_boot_loader is running. */
118
	lock_two_nondirectories(inode, inode_bl);
119 120 121 122 123 124 125 126 127 128 129 130 131

	truncate_inode_pages(&inode->i_data, 0);
	truncate_inode_pages(&inode_bl->i_data, 0);

	/* Wait for all existing dio workers */
	ext4_inode_block_unlocked_dio(inode);
	ext4_inode_block_unlocked_dio(inode_bl);
	inode_dio_wait(inode);
	inode_dio_wait(inode_bl);

	handle = ext4_journal_start(inode_bl, EXT4_HT_MOVE_EXTENTS, 2);
	if (IS_ERR(handle)) {
		err = -EINVAL;
132
		goto journal_err_out;
133 134 135 136 137 138 139 140 141 142 143 144 145 146 147
	}

	/* Protect extent tree against block allocations via delalloc */
	ext4_double_down_write_data_sem(inode, inode_bl);

	if (inode_bl->i_nlink == 0) {
		/* this inode has never been used as a BOOT_LOADER */
		set_nlink(inode_bl, 1);
		i_uid_write(inode_bl, 0);
		i_gid_write(inode_bl, 0);
		inode_bl->i_flags = 0;
		ei_bl->i_flags = 0;
		inode_bl->i_version = 1;
		i_size_write(inode_bl, 0);
		inode_bl->i_mode = S_IFREG;
148
		if (ext4_has_feature_extents(sb)) {
149 150 151 152 153 154 155 156
			ext4_set_inode_flag(inode_bl, EXT4_INODE_EXTENTS);
			ext4_ext_tree_init(handle, inode_bl);
		} else
			memset(ei_bl->i_data, 0, sizeof(ei_bl->i_data));
	}

	swap_inode_data(inode, inode_bl);

157
	inode->i_ctime = inode_bl->i_ctime = current_time(inode);
158 159 160 161 162 163 164 165 166 167 168 169 170 171 172 173 174 175 176 177 178 179 180 181 182 183 184 185 186

	spin_lock(&sbi->s_next_gen_lock);
	inode->i_generation = sbi->s_next_generation++;
	inode_bl->i_generation = sbi->s_next_generation++;
	spin_unlock(&sbi->s_next_gen_lock);

	ext4_discard_preallocations(inode);

	err = ext4_mark_inode_dirty(handle, inode);
	if (err < 0) {
		ext4_warning(inode->i_sb,
			"couldn't mark inode #%lu dirty (err %d)",
			inode->i_ino, err);
		/* Revert all changes: */
		swap_inode_data(inode, inode_bl);
	} else {
		err = ext4_mark_inode_dirty(handle, inode_bl);
		if (err < 0) {
			ext4_warning(inode_bl->i_sb,
				"couldn't mark inode #%lu dirty (err %d)",
				inode_bl->i_ino, err);
			/* Revert all changes: */
			swap_inode_data(inode, inode_bl);
			ext4_mark_inode_dirty(handle, inode);
		}
	}
	ext4_journal_stop(handle);
	ext4_double_up_write_data_sem(inode, inode_bl);

187
journal_err_out:
188 189
	ext4_inode_resume_unlocked_dio(inode);
	ext4_inode_resume_unlocked_dio(inode_bl);
190
	unlock_two_nondirectories(inode, inode_bl);
191 192 193 194
	iput(inode_bl);
	return err;
}

195
#ifdef CONFIG_EXT4_FS_ENCRYPTION
196 197 198 199 200 201 202 203 204
static int uuid_is_zero(__u8 u[16])
{
	int	i;

	for (i = 0; i < 16; i++)
		if (u[i])
			return 0;
	return 1;
}
205
#endif
206

207 208 209 210 211
static int ext4_ioctl_setflags(struct inode *inode,
			       unsigned int flags)
{
	struct ext4_inode_info *ei = EXT4_I(inode);
	handle_t *handle = NULL;
212
	int err = -EPERM, migrate = 0;
213 214 215 216 217 218 219 220 221 222 223 224 225 226 227 228 229 230 231 232 233 234 235 236 237 238 239 240 241 242 243 244 245 246 247 248 249 250 251 252 253
	struct ext4_iloc iloc;
	unsigned int oldflags, mask, i;
	unsigned int jflag;

	/* Is it quota file? Do not allow user to mess with it */
	if (IS_NOQUOTA(inode))
		goto flags_out;

	oldflags = ei->i_flags;

	/* The JOURNAL_DATA flag is modifiable only by root */
	jflag = flags & EXT4_JOURNAL_DATA_FL;

	/*
	 * The IMMUTABLE and APPEND_ONLY flags can only be changed by
	 * the relevant capability.
	 *
	 * This test looks nicer. Thanks to Pauline Middelink
	 */
	if ((flags ^ oldflags) & (EXT4_APPEND_FL | EXT4_IMMUTABLE_FL)) {
		if (!capable(CAP_LINUX_IMMUTABLE))
			goto flags_out;
	}

	/*
	 * The JOURNAL_DATA flag can only be changed by
	 * the relevant capability.
	 */
	if ((jflag ^ oldflags) & (EXT4_JOURNAL_DATA_FL)) {
		if (!capable(CAP_SYS_RESOURCE))
			goto flags_out;
	}
	if ((flags ^ oldflags) & EXT4_EXTENTS_FL)
		migrate = 1;

	if (flags & EXT4_EOFBLOCKS_FL) {
		/* we don't support adding EOFBLOCKS flag */
		if (!(oldflags & EXT4_EOFBLOCKS_FL)) {
			err = -EOPNOTSUPP;
			goto flags_out;
		}
254 255 256 257 258
	} else if (oldflags & EXT4_EOFBLOCKS_FL) {
		err = ext4_truncate(inode);
		if (err)
			goto flags_out;
	}
259 260 261 262 263 264 265 266 267 268 269 270 271 272 273

	handle = ext4_journal_start(inode, EXT4_HT_INODE, 1);
	if (IS_ERR(handle)) {
		err = PTR_ERR(handle);
		goto flags_out;
	}
	if (IS_SYNC(inode))
		ext4_handle_sync(handle);
	err = ext4_reserve_inode_write(handle, inode, &iloc);
	if (err)
		goto flags_err;

	for (i = 0, mask = 1; i < 32; i++, mask <<= 1) {
		if (!(mask & EXT4_FL_USER_MODIFIABLE))
			continue;
274 275 276
		/* These flags get special treatment later */
		if (mask == EXT4_JOURNAL_DATA_FL || mask == EXT4_EXTENTS_FL)
			continue;
277 278 279 280 281 282 283
		if (mask & flags)
			ext4_set_inode_flag(inode, i);
		else
			ext4_clear_inode_flag(inode, i);
	}

	ext4_set_inode_flags(inode);
284
	inode->i_ctime = current_time(inode);
285 286 287 288 289 290 291 292 293 294 295 296 297 298 299 300 301 302 303 304 305 306 307 308 309 310 311 312 313 314 315 316 317

	err = ext4_mark_iloc_dirty(handle, inode, &iloc);
flags_err:
	ext4_journal_stop(handle);
	if (err)
		goto flags_out;

	if ((jflag ^ oldflags) & (EXT4_JOURNAL_DATA_FL))
		err = ext4_change_inode_journal_flag(inode, jflag);
	if (err)
		goto flags_out;
	if (migrate) {
		if (flags & EXT4_EXTENTS_FL)
			err = ext4_ext_migrate(inode);
		else
			err = ext4_ind_migrate(inode);
	}

flags_out:
	return err;
}

#ifdef CONFIG_QUOTA
static int ext4_ioctl_setproject(struct file *filp, __u32 projid)
{
	struct inode *inode = file_inode(filp);
	struct super_block *sb = inode->i_sb;
	struct ext4_inode_info *ei = EXT4_I(inode);
	int err, rc;
	handle_t *handle;
	kprojid_t kprojid;
	struct ext4_iloc iloc;
	struct ext4_inode *raw_inode;
318
	struct dquot *transfer_to[MAXQUOTAS] = { };
319

K
Kaho Ng 已提交
320
	if (!ext4_has_feature_project(sb)) {
321 322 323 324 325 326 327 328 329 330 331 332 333 334 335 336 337 338 339
		if (projid != EXT4_DEF_PROJID)
			return -EOPNOTSUPP;
		else
			return 0;
	}

	if (EXT4_INODE_SIZE(sb) <= EXT4_GOOD_OLD_INODE_SIZE)
		return -EOPNOTSUPP;

	kprojid = make_kprojid(&init_user_ns, (projid_t)projid);

	if (projid_eq(kprojid, EXT4_I(inode)->i_projid))
		return 0;

	err = mnt_want_write_file(filp);
	if (err)
		return err;

	err = -EPERM;
A
Al Viro 已提交
340
	inode_lock(inode);
341 342 343 344 345 346 347 348 349 350 351 352 353 354 355 356 357 358 359 360 361 362 363 364 365 366 367 368 369 370
	/* Is it quota file? Do not allow user to mess with it */
	if (IS_NOQUOTA(inode))
		goto out_unlock;

	err = ext4_get_inode_loc(inode, &iloc);
	if (err)
		goto out_unlock;

	raw_inode = ext4_raw_inode(&iloc);
	if (!EXT4_FITS_IN_INODE(raw_inode, ei, i_projid)) {
		err = -EOVERFLOW;
		brelse(iloc.bh);
		goto out_unlock;
	}
	brelse(iloc.bh);

	dquot_initialize(inode);

	handle = ext4_journal_start(inode, EXT4_HT_QUOTA,
		EXT4_QUOTA_INIT_BLOCKS(sb) +
		EXT4_QUOTA_DEL_BLOCKS(sb) + 3);
	if (IS_ERR(handle)) {
		err = PTR_ERR(handle);
		goto out_unlock;
	}

	err = ext4_reserve_inode_write(handle, inode, &iloc);
	if (err)
		goto out_stop;

371 372 373 374 375 376
	transfer_to[PRJQUOTA] = dqget(sb, make_kqid_projid(kprojid));
	if (!IS_ERR(transfer_to[PRJQUOTA])) {
		err = __dquot_transfer(inode, transfer_to);
		dqput(transfer_to[PRJQUOTA]);
		if (err)
			goto out_dirty;
377
	}
378

379
	EXT4_I(inode)->i_projid = kprojid;
380
	inode->i_ctime = current_time(inode);
381 382 383 384 385 386 387
out_dirty:
	rc = ext4_mark_iloc_dirty(handle, inode, &iloc);
	if (!err)
		err = rc;
out_stop:
	ext4_journal_stop(handle);
out_unlock:
A
Al Viro 已提交
388
	inode_unlock(inode);
389 390 391 392 393 394 395 396 397 398 399 400 401 402 403 404 405 406 407 408 409 410 411 412 413 414 415 416 417 418 419 420
	mnt_drop_write_file(filp);
	return err;
}
#else
static int ext4_ioctl_setproject(struct file *filp, __u32 projid)
{
	if (projid != EXT4_DEF_PROJID)
		return -EOPNOTSUPP;
	return 0;
}
#endif

/* Transfer internal flags to xflags */
static inline __u32 ext4_iflags_to_xflags(unsigned long iflags)
{
	__u32 xflags = 0;

	if (iflags & EXT4_SYNC_FL)
		xflags |= FS_XFLAG_SYNC;
	if (iflags & EXT4_IMMUTABLE_FL)
		xflags |= FS_XFLAG_IMMUTABLE;
	if (iflags & EXT4_APPEND_FL)
		xflags |= FS_XFLAG_APPEND;
	if (iflags & EXT4_NODUMP_FL)
		xflags |= FS_XFLAG_NODUMP;
	if (iflags & EXT4_NOATIME_FL)
		xflags |= FS_XFLAG_NOATIME;
	if (iflags & EXT4_PROJINHERIT_FL)
		xflags |= FS_XFLAG_PROJINHERIT;
	return xflags;
}

421 422 423 424
#define EXT4_SUPPORTED_FS_XFLAGS (FS_XFLAG_SYNC | FS_XFLAG_IMMUTABLE | \
				  FS_XFLAG_APPEND | FS_XFLAG_NODUMP | \
				  FS_XFLAG_NOATIME | FS_XFLAG_PROJINHERIT)

425 426 427 428 429 430 431 432 433 434 435 436 437 438 439 440 441 442 443 444 445
/* Transfer xflags flags to internal */
static inline unsigned long ext4_xflags_to_iflags(__u32 xflags)
{
	unsigned long iflags = 0;

	if (xflags & FS_XFLAG_SYNC)
		iflags |= EXT4_SYNC_FL;
	if (xflags & FS_XFLAG_IMMUTABLE)
		iflags |= EXT4_IMMUTABLE_FL;
	if (xflags & FS_XFLAG_APPEND)
		iflags |= EXT4_APPEND_FL;
	if (xflags & FS_XFLAG_NODUMP)
		iflags |= EXT4_NODUMP_FL;
	if (xflags & FS_XFLAG_NOATIME)
		iflags |= EXT4_NOATIME_FL;
	if (xflags & FS_XFLAG_PROJINHERIT)
		iflags |= EXT4_PROJINHERIT_FL;

	return iflags;
}

446
int ext4_shutdown(struct super_block *sb, unsigned long arg)
447 448 449 450 451 452 453 454 455 456 457 458 459 460 461 462 463 464 465 466 467 468 469 470 471 472 473 474 475 476 477 478 479 480 481 482 483 484 485 486 487 488 489 490 491
{
	struct ext4_sb_info *sbi = EXT4_SB(sb);
	__u32 flags;

	if (!capable(CAP_SYS_ADMIN))
		return -EPERM;

	if (get_user(flags, (__u32 __user *)arg))
		return -EFAULT;

	if (flags > EXT4_GOING_FLAGS_NOLOGFLUSH)
		return -EINVAL;

	if (ext4_forced_shutdown(sbi))
		return 0;

	ext4_msg(sb, KERN_ALERT, "shut down requested (%d)", flags);

	switch (flags) {
	case EXT4_GOING_FLAGS_DEFAULT:
		freeze_bdev(sb->s_bdev);
		set_bit(EXT4_FLAGS_SHUTDOWN, &sbi->s_ext4_flags);
		thaw_bdev(sb->s_bdev, sb);
		break;
	case EXT4_GOING_FLAGS_LOGFLUSH:
		set_bit(EXT4_FLAGS_SHUTDOWN, &sbi->s_ext4_flags);
		if (sbi->s_journal && !is_journal_aborted(sbi->s_journal)) {
			(void) ext4_force_commit(sb);
			jbd2_journal_abort(sbi->s_journal, 0);
		}
		break;
	case EXT4_GOING_FLAGS_NOLOGFLUSH:
		set_bit(EXT4_FLAGS_SHUTDOWN, &sbi->s_ext4_flags);
		if (sbi->s_journal && !is_journal_aborted(sbi->s_journal)) {
			msleep(100);
			jbd2_journal_abort(sbi->s_journal, 0);
		}
		break;
	default:
		return -EINVAL;
	}
	clear_opt(sb, DISCARD);
	return 0;
}

A
Andi Kleen 已提交
492
long ext4_ioctl(struct file *filp, unsigned int cmd, unsigned long arg)
493
{
A
Al Viro 已提交
494
	struct inode *inode = file_inode(filp);
495
	struct super_block *sb = inode->i_sb;
496
	struct ext4_inode_info *ei = EXT4_I(inode);
497 498
	unsigned int flags;

499
	ext4_debug("cmd = %u, arg = %lu\n", cmd, arg);
500 501

	switch (cmd) {
502 503
	case EXT4_IOC_GETFLAGS:
		flags = ei->i_flags & EXT4_FL_USER_VISIBLE;
504
		return put_user(flags, (int __user *) arg);
505
	case EXT4_IOC_SETFLAGS: {
506
		int err;
507

508
		if (!inode_owner_or_capable(inode))
509 510 511 512 513
			return -EACCES;

		if (get_user(flags, (int __user *) arg))
			return -EFAULT;

514 515 516 517 518 519 520 521 522 523 524 525
		if (flags & ~EXT4_FL_USER_VISIBLE)
			return -EOPNOTSUPP;
		/*
		 * chattr(1) grabs flags via GETFLAGS, modifies the result and
		 * passes that to SETFLAGS. So we cannot easily make SETFLAGS
		 * more restrictive than just silently masking off visible but
		 * not settable flags as we always did.
		 */
		flags &= EXT4_FL_USER_MODIFIABLE;
		if (ext4_mask_flags(inode->i_mode, flags) != flags)
			return -EOPNOTSUPP;

526
		err = mnt_want_write_file(filp);
527 528 529
		if (err)
			return err;

A
Al Viro 已提交
530
		inode_lock(inode);
531
		err = ext4_ioctl_setflags(inode, flags);
A
Al Viro 已提交
532
		inode_unlock(inode);
A
Al Viro 已提交
533
		mnt_drop_write_file(filp);
534 535
		return err;
	}
536 537
	case EXT4_IOC_GETVERSION:
	case EXT4_IOC_GETVERSION_OLD:
538
		return put_user(inode->i_generation, (int __user *) arg);
539 540
	case EXT4_IOC_SETVERSION:
	case EXT4_IOC_SETVERSION_OLD: {
541
		handle_t *handle;
542
		struct ext4_iloc iloc;
543 544 545
		__u32 generation;
		int err;

546
		if (!inode_owner_or_capable(inode))
547
			return -EPERM;
548

549
		if (ext4_has_metadata_csum(inode->i_sb)) {
550 551 552 553 554
			ext4_warning(sb, "Setting inode version is not "
				     "supported with metadata_csum enabled.");
			return -ENOTTY;
		}

555
		err = mnt_want_write_file(filp);
556 557 558 559 560 561
		if (err)
			return err;
		if (get_user(generation, (int __user *) arg)) {
			err = -EFAULT;
			goto setversion_out;
		}
562

A
Al Viro 已提交
563
		inode_lock(inode);
564
		handle = ext4_journal_start(inode, EXT4_HT_INODE, 1);
565 566
		if (IS_ERR(handle)) {
			err = PTR_ERR(handle);
567
			goto unlock_out;
568
		}
569
		err = ext4_reserve_inode_write(handle, inode, &iloc);
570
		if (err == 0) {
571
			inode->i_ctime = current_time(inode);
572
			inode->i_generation = generation;
573
			err = ext4_mark_iloc_dirty(handle, inode, &iloc);
574
		}
575
		ext4_journal_stop(handle);
576 577

unlock_out:
A
Al Viro 已提交
578
		inode_unlock(inode);
579
setversion_out:
A
Al Viro 已提交
580
		mnt_drop_write_file(filp);
581 582
		return err;
	}
583 584
	case EXT4_IOC_GROUP_EXTEND: {
		ext4_fsblk_t n_blocks_count;
585
		int err, err2=0;
586

587 588 589
		err = ext4_resize_begin(sb);
		if (err)
			return err;
590

591 592 593 594
		if (get_user(n_blocks_count, (__u32 __user *)arg)) {
			err = -EFAULT;
			goto group_extend_out;
		}
595

596
		if (ext4_has_feature_bigalloc(sb)) {
597 598
			ext4_msg(sb, KERN_ERR,
				 "Online resizing not supported with bigalloc");
599 600
			err = -EOPNOTSUPP;
			goto group_extend_out;
601 602
		}

603
		err = mnt_want_write_file(filp);
604
		if (err)
605
			goto group_extend_out;
606

607
		err = ext4_group_extend(sb, EXT4_SB(sb)->s_es, n_blocks_count);
608 609 610 611 612
		if (EXT4_SB(sb)->s_journal) {
			jbd2_journal_lock_updates(EXT4_SB(sb)->s_journal);
			err2 = jbd2_journal_flush(EXT4_SB(sb)->s_journal);
			jbd2_journal_unlock_updates(EXT4_SB(sb)->s_journal);
		}
613 614
		if (err == 0)
			err = err2;
A
Al Viro 已提交
615
		mnt_drop_write_file(filp);
616
group_extend_out:
617
		ext4_resize_end(sb);
618 619
		return err;
	}
620 621 622

	case EXT4_IOC_MOVE_EXT: {
		struct move_extent me;
623 624
		struct fd donor;
		int err;
625

626 627 628 629
		if (!(filp->f_mode & FMODE_READ) ||
		    !(filp->f_mode & FMODE_WRITE))
			return -EBADF;

630 631 632
		if (copy_from_user(&me,
			(struct move_extent __user *)arg, sizeof(me)))
			return -EFAULT;
633
		me.moved_len = 0;
634

635 636
		donor = fdget(me.donor_fd);
		if (!donor.file)
637 638
			return -EBADF;

639
		if (!(donor.file->f_mode & FMODE_WRITE)) {
640 641
			err = -EBADF;
			goto mext_out;
642 643
		}

644
		if (ext4_has_feature_bigalloc(sb)) {
645 646
			ext4_msg(sb, KERN_ERR,
				 "Online defrag not supported with bigalloc");
647 648
			err = -EOPNOTSUPP;
			goto mext_out;
649 650 651 652 653
		} else if (IS_DAX(inode)) {
			ext4_msg(sb, KERN_ERR,
				 "Online defrag not supported with DAX");
			err = -EOPNOTSUPP;
			goto mext_out;
654 655
		}

656
		err = mnt_want_write_file(filp);
657 658 659
		if (err)
			goto mext_out;

660
		err = ext4_move_extents(filp, donor.file, me.orig_start,
661
					me.donor_start, me.len, &me.moved_len);
A
Al Viro 已提交
662
		mnt_drop_write_file(filp);
663

664
		if (copy_to_user((struct move_extent __user *)arg,
665
				 &me, sizeof(me)))
666 667
			err = -EFAULT;
mext_out:
668
		fdput(donor);
669 670 671
		return err;
	}

672 673
	case EXT4_IOC_GROUP_ADD: {
		struct ext4_new_group_data input;
674
		int err, err2=0;
675

676 677 678
		err = ext4_resize_begin(sb);
		if (err)
			return err;
679

680
		if (copy_from_user(&input, (struct ext4_new_group_input __user *)arg,
681 682 683 684
				sizeof(input))) {
			err = -EFAULT;
			goto group_add_out;
		}
685

686
		if (ext4_has_feature_bigalloc(sb)) {
687 688
			ext4_msg(sb, KERN_ERR,
				 "Online resizing not supported with bigalloc");
689 690
			err = -EOPNOTSUPP;
			goto group_add_out;
691 692
		}

693
		err = mnt_want_write_file(filp);
694
		if (err)
695
			goto group_add_out;
696

697
		err = ext4_group_add(sb, &input);
698 699 700 701 702
		if (EXT4_SB(sb)->s_journal) {
			jbd2_journal_lock_updates(EXT4_SB(sb)->s_journal);
			err2 = jbd2_journal_flush(EXT4_SB(sb)->s_journal);
			jbd2_journal_unlock_updates(EXT4_SB(sb)->s_journal);
		}
703 704
		if (err == 0)
			err = err2;
A
Al Viro 已提交
705
		mnt_drop_write_file(filp);
706 707 708
		if (!err && ext4_has_group_desc_csum(sb) &&
		    test_opt(sb, INIT_INODE_TABLE))
			err = ext4_register_li_request(sb, input.group);
709
group_add_out:
710
		ext4_resize_end(sb);
711 712 713
		return err;
	}

714
	case EXT4_IOC_MIGRATE:
715 716
	{
		int err;
717
		if (!inode_owner_or_capable(inode))
718 719
			return -EACCES;

720
		err = mnt_want_write_file(filp);
721 722 723 724 725 726 727 728
		if (err)
			return err;
		/*
		 * inode_mutex prevent write and truncate on the file.
		 * Read still goes through. We take i_data_sem in
		 * ext4_ext_swap_inode_data before we switch the
		 * inode format to prevent read.
		 */
A
Al Viro 已提交
729
		inode_lock((inode));
730
		err = ext4_ext_migrate(inode);
A
Al Viro 已提交
731
		inode_unlock((inode));
A
Al Viro 已提交
732
		mnt_drop_write_file(filp);
733 734
		return err;
	}
735

736 737 738
	case EXT4_IOC_ALLOC_DA_BLKS:
	{
		int err;
739
		if (!inode_owner_or_capable(inode))
740 741
			return -EACCES;

742
		err = mnt_want_write_file(filp);
743 744 745
		if (err)
			return err;
		err = ext4_alloc_da_blocks(inode);
A
Al Viro 已提交
746
		mnt_drop_write_file(filp);
747 748 749
		return err;
	}

750
	case EXT4_IOC_SWAP_BOOT:
751 752
	{
		int err;
753 754
		if (!(filp->f_mode & FMODE_WRITE))
			return -EBADF;
755 756 757 758 759 760 761
		err = mnt_want_write_file(filp);
		if (err)
			return err;
		err = swap_inode_boot_loader(sb, inode);
		mnt_drop_write_file(filp);
		return err;
	}
762

763 764 765
	case EXT4_IOC_RESIZE_FS: {
		ext4_fsblk_t n_blocks_count;
		int err = 0, err2 = 0;
766
		ext4_group_t o_group = EXT4_SB(sb)->s_groups_count;
767

768
		if (ext4_has_feature_bigalloc(sb)) {
769 770 771 772 773 774 775 776 777 778 779 780 781 782
			ext4_msg(sb, KERN_ERR,
				 "Online resizing not (yet) supported with bigalloc");
			return -EOPNOTSUPP;
		}

		if (copy_from_user(&n_blocks_count, (__u64 __user *)arg,
				   sizeof(__u64))) {
			return -EFAULT;
		}

		err = ext4_resize_begin(sb);
		if (err)
			return err;

783
		err = mnt_want_write_file(filp);
784 785 786 787 788 789 790 791 792 793 794
		if (err)
			goto resizefs_out;

		err = ext4_resize_fs(sb, n_blocks_count);
		if (EXT4_SB(sb)->s_journal) {
			jbd2_journal_lock_updates(EXT4_SB(sb)->s_journal);
			err2 = jbd2_journal_flush(EXT4_SB(sb)->s_journal);
			jbd2_journal_unlock_updates(EXT4_SB(sb)->s_journal);
		}
		if (err == 0)
			err = err2;
795
		mnt_drop_write_file(filp);
796 797 798 799 800
		if (!err && (o_group > EXT4_SB(sb)->s_groups_count) &&
		    ext4_has_group_desc_csum(sb) &&
		    test_opt(sb, INIT_INODE_TABLE))
			err = ext4_register_li_request(sb, o_group);

801 802 803 804 805
resizefs_out:
		ext4_resize_end(sb);
		return err;
	}

806 807
	case FITRIM:
	{
808
		struct request_queue *q = bdev_get_queue(sb->s_bdev);
809 810 811 812 813 814
		struct fstrim_range range;
		int ret = 0;

		if (!capable(CAP_SYS_ADMIN))
			return -EPERM;

815 816 817
		if (!blk_queue_discard(q))
			return -EOPNOTSUPP;

818
		if (copy_from_user(&range, (struct fstrim_range __user *)arg,
819 820 821
		    sizeof(range)))
			return -EFAULT;

822 823
		range.minlen = max((unsigned int)range.minlen,
				   q->limits.discard_granularity);
824 825 826 827
		ret = ext4_trim_fs(sb, &range);
		if (ret < 0)
			return ret;

828
		if (copy_to_user((struct fstrim_range __user *)arg, &range,
829 830 831 832 833
		    sizeof(range)))
			return -EFAULT;

		return 0;
	}
834 835
	case EXT4_IOC_PRECACHE_EXTENTS:
		return ext4_ext_precache(inode);
836

837
	case EXT4_IOC_SET_ENCRYPTION_POLICY:
838 839
		if (!ext4_has_feature_encrypt(sb))
			return -EOPNOTSUPP;
840
		return fscrypt_ioctl_set_policy(filp, (const void __user *)arg);
841

842
	case EXT4_IOC_GET_ENCRYPTION_PWSALT: {
843
#ifdef CONFIG_EXT4_FS_ENCRYPTION
844 845 846 847
		int err, err2;
		struct ext4_sb_info *sbi = EXT4_SB(sb);
		handle_t *handle;

848
		if (!ext4_has_feature_encrypt(sb))
849 850 851 852 853 854 855 856 857 858 859 860 861 862 863 864 865 866 867 868 869 870 871 872 873
			return -EOPNOTSUPP;
		if (uuid_is_zero(sbi->s_es->s_encrypt_pw_salt)) {
			err = mnt_want_write_file(filp);
			if (err)
				return err;
			handle = ext4_journal_start_sb(sb, EXT4_HT_MISC, 1);
			if (IS_ERR(handle)) {
				err = PTR_ERR(handle);
				goto pwsalt_err_exit;
			}
			err = ext4_journal_get_write_access(handle, sbi->s_sbh);
			if (err)
				goto pwsalt_err_journal;
			generate_random_uuid(sbi->s_es->s_encrypt_pw_salt);
			err = ext4_handle_dirty_metadata(handle, NULL,
							 sbi->s_sbh);
		pwsalt_err_journal:
			err2 = ext4_journal_stop(handle);
			if (err2 && !err)
				err = err2;
		pwsalt_err_exit:
			mnt_drop_write_file(filp);
			if (err)
				return err;
		}
874 875
		if (copy_to_user((void __user *) arg,
				 sbi->s_es->s_encrypt_pw_salt, 16))
876 877
			return -EFAULT;
		return 0;
878 879 880
#else
		return -EOPNOTSUPP;
#endif
881
	}
882 883
	case EXT4_IOC_GET_ENCRYPTION_POLICY:
		return fscrypt_ioctl_get_policy(filp, (void __user *)arg);
884

885 886 887 888 889 890 891
	case EXT4_IOC_FSGETXATTR:
	{
		struct fsxattr fa;

		memset(&fa, 0, sizeof(struct fsxattr));
		fa.fsx_xflags = ext4_iflags_to_xflags(ei->i_flags & EXT4_FL_USER_VISIBLE);

K
Kaho Ng 已提交
892
		if (ext4_has_feature_project(inode->i_sb)) {
893 894 895 896 897 898 899 900 901 902 903 904 905 906 907 908 909 910 911 912 913 914
			fa.fsx_projid = (__u32)from_kprojid(&init_user_ns,
				EXT4_I(inode)->i_projid);
		}

		if (copy_to_user((struct fsxattr __user *)arg,
				 &fa, sizeof(fa)))
			return -EFAULT;
		return 0;
	}
	case EXT4_IOC_FSSETXATTR:
	{
		struct fsxattr fa;
		int err;

		if (copy_from_user(&fa, (struct fsxattr __user *)arg,
				   sizeof(fa)))
			return -EFAULT;

		/* Make sure caller has proper permission */
		if (!inode_owner_or_capable(inode))
			return -EACCES;

915 916 917 918 919 920 921
		if (fa.fsx_xflags & ~EXT4_SUPPORTED_FS_XFLAGS)
			return -EOPNOTSUPP;

		flags = ext4_xflags_to_iflags(fa.fsx_xflags);
		if (ext4_mask_flags(inode->i_mode, flags) != flags)
			return -EOPNOTSUPP;

922 923 924 925
		err = mnt_want_write_file(filp);
		if (err)
			return err;

A
Al Viro 已提交
926
		inode_lock(inode);
927 928 929
		flags = (ei->i_flags & ~EXT4_FL_XFLAG_VISIBLE) |
			 (flags & EXT4_FL_XFLAG_VISIBLE);
		err = ext4_ioctl_setflags(inode, flags);
A
Al Viro 已提交
930
		inode_unlock(inode);
931 932 933 934 935 936 937 938 939 940
		mnt_drop_write_file(filp);
		if (err)
			return err;

		err = ext4_ioctl_setproject(filp, fa.fsx_projid);
		if (err)
			return err;

		return 0;
	}
941 942
	case EXT4_IOC_SHUTDOWN:
		return ext4_shutdown(sb, arg);
943 944 945 946 947 948
	default:
		return -ENOTTY;
	}
}

#ifdef CONFIG_COMPAT
949
long ext4_compat_ioctl(struct file *file, unsigned int cmd, unsigned long arg)
950 951 952
{
	/* These are just misnamed, they actually get/put from/to user an int */
	switch (cmd) {
953 954
	case EXT4_IOC32_GETFLAGS:
		cmd = EXT4_IOC_GETFLAGS;
955
		break;
956 957
	case EXT4_IOC32_SETFLAGS:
		cmd = EXT4_IOC_SETFLAGS;
958
		break;
959 960
	case EXT4_IOC32_GETVERSION:
		cmd = EXT4_IOC_GETVERSION;
961
		break;
962 963
	case EXT4_IOC32_SETVERSION:
		cmd = EXT4_IOC_SETVERSION;
964
		break;
965 966
	case EXT4_IOC32_GROUP_EXTEND:
		cmd = EXT4_IOC_GROUP_EXTEND;
967
		break;
968 969
	case EXT4_IOC32_GETVERSION_OLD:
		cmd = EXT4_IOC_GETVERSION_OLD;
970
		break;
971 972
	case EXT4_IOC32_SETVERSION_OLD:
		cmd = EXT4_IOC_SETVERSION_OLD;
973
		break;
974 975
	case EXT4_IOC32_GETRSVSZ:
		cmd = EXT4_IOC_GETRSVSZ;
976
		break;
977 978
	case EXT4_IOC32_SETRSVSZ:
		cmd = EXT4_IOC_SETRSVSZ;
979
		break;
980 981 982 983 984 985 986 987 988 989 990 991 992 993 994 995 996 997 998 999 1000 1001 1002
	case EXT4_IOC32_GROUP_ADD: {
		struct compat_ext4_new_group_input __user *uinput;
		struct ext4_new_group_input input;
		mm_segment_t old_fs;
		int err;

		uinput = compat_ptr(arg);
		err = get_user(input.group, &uinput->group);
		err |= get_user(input.block_bitmap, &uinput->block_bitmap);
		err |= get_user(input.inode_bitmap, &uinput->inode_bitmap);
		err |= get_user(input.inode_table, &uinput->inode_table);
		err |= get_user(input.blocks_count, &uinput->blocks_count);
		err |= get_user(input.reserved_blocks,
				&uinput->reserved_blocks);
		if (err)
			return -EFAULT;
		old_fs = get_fs();
		set_fs(KERNEL_DS);
		err = ext4_ioctl(file, EXT4_IOC_GROUP_ADD,
				 (unsigned long) &input);
		set_fs(old_fs);
		return err;
	}
1003
	case EXT4_IOC_MOVE_EXT:
1004
	case EXT4_IOC_RESIZE_FS:
1005
	case EXT4_IOC_PRECACHE_EXTENTS:
1006 1007 1008
	case EXT4_IOC_SET_ENCRYPTION_POLICY:
	case EXT4_IOC_GET_ENCRYPTION_PWSALT:
	case EXT4_IOC_GET_ENCRYPTION_POLICY:
1009
	case EXT4_IOC_SHUTDOWN:
1010
		break;
1011 1012 1013
	default:
		return -ENOIOCTLCMD;
	}
A
Andi Kleen 已提交
1014
	return ext4_ioctl(file, cmd, (unsigned long) compat_ptr(arg));
1015 1016
}
#endif