file_table.c 12.4 KB
Newer Older
L
Linus Torvalds 已提交
1 2 3 4 5 6 7 8 9 10
/*
 *  linux/fs/file_table.c
 *
 *  Copyright (C) 1991, 1992  Linus Torvalds
 *  Copyright (C) 1997 David S. Miller (davem@caip.rutgers.edu)
 */

#include <linux/string.h>
#include <linux/slab.h>
#include <linux/file.h>
A
Al Viro 已提交
11
#include <linux/fdtable.h>
L
Linus Torvalds 已提交
12 13 14 15 16
#include <linux/init.h>
#include <linux/module.h>
#include <linux/fs.h>
#include <linux/security.h>
#include <linux/eventpoll.h>
17
#include <linux/rcupdate.h>
L
Linus Torvalds 已提交
18
#include <linux/mount.h>
19
#include <linux/capability.h>
L
Linus Torvalds 已提交
20
#include <linux/cdev.h>
R
Robert Love 已提交
21
#include <linux/fsnotify.h>
D
Dipankar Sarma 已提交
22
#include <linux/sysctl.h>
N
Nick Piggin 已提交
23
#include <linux/lglock.h>
D
Dipankar Sarma 已提交
24
#include <linux/percpu_counter.h>
N
Nick Piggin 已提交
25
#include <linux/percpu.h>
26
#include <linux/ima.h>
D
Dipankar Sarma 已提交
27

A
Arun Sharma 已提交
28
#include <linux/atomic.h>
L
Linus Torvalds 已提交
29

30 31
#include "internal.h"

L
Linus Torvalds 已提交
32 33 34 35 36
/* sysctl tunables... */
struct files_stat_struct files_stat = {
	.max_files = NR_FILE
};

N
Nick Piggin 已提交
37
DEFINE_LGLOCK(files_lglock);
L
Linus Torvalds 已提交
38

39 40 41
/* SLAB cache for file structures */
static struct kmem_cache *filp_cachep __read_mostly;

D
Dipankar Sarma 已提交
42
static struct percpu_counter nr_files __cacheline_aligned_in_smp;
L
Linus Torvalds 已提交
43

D
Dipankar Sarma 已提交
44
static inline void file_free_rcu(struct rcu_head *head)
L
Linus Torvalds 已提交
45
{
D
David Howells 已提交
46 47 48
	struct file *f = container_of(head, struct file, f_u.fu_rcuhead);

	put_cred(f->f_cred);
D
Dipankar Sarma 已提交
49
	kmem_cache_free(filp_cachep, f);
L
Linus Torvalds 已提交
50 51
}

D
Dipankar Sarma 已提交
52
static inline void file_free(struct file *f)
L
Linus Torvalds 已提交
53
{
D
Dipankar Sarma 已提交
54
	percpu_counter_dec(&nr_files);
55
	file_check_state(f);
D
Dipankar Sarma 已提交
56
	call_rcu(&f->f_u.fu_rcuhead, file_free_rcu);
L
Linus Torvalds 已提交
57 58
}

D
Dipankar Sarma 已提交
59 60 61
/*
 * Return the total number of open files in the system
 */
E
Eric Dumazet 已提交
62
static long get_nr_files(void)
L
Linus Torvalds 已提交
63
{
D
Dipankar Sarma 已提交
64
	return percpu_counter_read_positive(&nr_files);
L
Linus Torvalds 已提交
65 66
}

D
Dipankar Sarma 已提交
67 68 69
/*
 * Return the maximum number of open files in the system
 */
E
Eric Dumazet 已提交
70
unsigned long get_max_files(void)
71
{
D
Dipankar Sarma 已提交
72
	return files_stat.max_files;
73
}
D
Dipankar Sarma 已提交
74 75 76 77 78 79
EXPORT_SYMBOL_GPL(get_max_files);

/*
 * Handle nr_files sysctl
 */
#if defined(CONFIG_SYSCTL) && defined(CONFIG_PROC_FS)
80
int proc_nr_files(ctl_table *table, int write,
D
Dipankar Sarma 已提交
81 82 83
                     void __user *buffer, size_t *lenp, loff_t *ppos)
{
	files_stat.nr_files = get_nr_files();
E
Eric Dumazet 已提交
84
	return proc_doulongvec_minmax(table, write, buffer, lenp, ppos);
D
Dipankar Sarma 已提交
85 86
}
#else
87
int proc_nr_files(ctl_table *table, int write,
D
Dipankar Sarma 已提交
88 89 90 91 92
                     void __user *buffer, size_t *lenp, loff_t *ppos)
{
	return -ENOSYS;
}
#endif
93

L
Linus Torvalds 已提交
94 95 96
/* Find an unused file structure and return a pointer to it.
 * Returns NULL, if there are no more free file structures or
 * we run out of memory.
D
Dave Hansen 已提交
97 98 99 100 101 102
 *
 * Be very careful using this.  You are responsible for
 * getting write access to any mount that you might assign
 * to this filp, if it is opened for write.  If this is not
 * done, you will imbalance int the mount's writer count
 * and a warning at __fput() time.
L
Linus Torvalds 已提交
103 104 105
 */
struct file *get_empty_filp(void)
{
106
	const struct cred *cred = current_cred();
E
Eric Dumazet 已提交
107
	static long old_max;
L
Linus Torvalds 已提交
108 109 110 111 112
	struct file * f;

	/*
	 * Privileged users can go above max_files
	 */
D
Dipankar Sarma 已提交
113 114 115 116 117
	if (get_nr_files() >= files_stat.max_files && !capable(CAP_SYS_ADMIN)) {
		/*
		 * percpu_counters are inaccurate.  Do an expensive check before
		 * we go and fail.
		 */
P
Peter Zijlstra 已提交
118
		if (percpu_counter_sum_positive(&nr_files) >= files_stat.max_files)
D
Dipankar Sarma 已提交
119 120
			goto over;
	}
121

D
Denis Cheng 已提交
122
	f = kmem_cache_zalloc(filp_cachep, GFP_KERNEL);
123 124 125
	if (f == NULL)
		goto fail;

D
Dipankar Sarma 已提交
126
	percpu_counter_inc(&nr_files);
127
	f->f_cred = get_cred(cred);
128 129
	if (security_file_alloc(f))
		goto fail_sec;
L
Linus Torvalds 已提交
130

131
	INIT_LIST_HEAD(&f->f_u.fu_list);
A
Al Viro 已提交
132
	atomic_long_set(&f->f_count, 1);
133
	rwlock_init(&f->f_owner.lock);
J
Jonathan Corbet 已提交
134
	spin_lock_init(&f->f_lock);
135
	eventpoll_init_file(f);
136 137 138 139
	/* f->f_version: 0 */
	return f;

over:
L
Linus Torvalds 已提交
140
	/* Ran out of filps - report that */
D
Dipankar Sarma 已提交
141
	if (get_nr_files() > old_max) {
E
Eric Dumazet 已提交
142
		pr_info("VFS: file-max limit %lu reached\n", get_max_files());
D
Dipankar Sarma 已提交
143
		old_max = get_nr_files();
L
Linus Torvalds 已提交
144
	}
145 146 147 148
	goto fail;

fail_sec:
	file_free(f);
L
Linus Torvalds 已提交
149 150 151 152
fail:
	return NULL;
}

153 154 155 156 157 158 159 160 161 162 163 164 165 166 167
/**
 * alloc_file - allocate and initialize a 'struct file'
 * @mnt: the vfsmount on which the file will reside
 * @dentry: the dentry representing the new file
 * @mode: the mode with which the new file will be opened
 * @fop: the 'struct file_operations' for the new file
 *
 * Use this instead of get_empty_filp() to get a new
 * 'struct file'.  Do so because of the same initialization
 * pitfalls reasons listed for init_file().  This is a
 * preferred interface to using init_file().
 *
 * If all the callers of init_file() are eliminated, its
 * code should be moved into this function.
 */
168 169
struct file *alloc_file(struct path *path, fmode_t mode,
		const struct file_operations *fop)
170 171 172 173 174 175 176
{
	struct file *file;

	file = get_empty_filp();
	if (!file)
		return NULL;

177 178
	file->f_path = *path;
	file->f_mapping = path->dentry->d_inode->i_mapping;
179 180
	file->f_mode = mode;
	file->f_op = fop;
181 182 183 184 185 186 187

	/*
	 * These mounts don't really matter in practice
	 * for r/o bind mounts.  They aren't userspace-
	 * visible.  We do this for consistency, and so
	 * that we can do debugging checks at __fput()
	 */
188
	if ((mode & FMODE_WRITE) && !special_file(path->dentry->d_inode->i_mode)) {
189
		file_take_write(file);
190
		WARN_ON(mnt_clone_write(path->mnt));
191
	}
192 193
	if ((mode & (FMODE_READ | FMODE_WRITE)) == FMODE_READ)
		i_readcount_inc(path->dentry->d_inode);
A
Al Viro 已提交
194
	return file;
195
}
R
Roland Dreier 已提交
196
EXPORT_SYMBOL(alloc_file);
197

198 199 200 201 202 203 204 205
/**
 * drop_file_write_access - give up ability to write to a file
 * @file: the file to which we will stop writing
 *
 * This is a central place which will give up the ability
 * to write to @file, along with access to write through
 * its vfsmount.
 */
206
static void drop_file_write_access(struct file *file)
207
{
208
	struct vfsmount *mnt = file->f_path.mnt;
209 210 211 212
	struct dentry *dentry = file->f_path.dentry;
	struct inode *inode = dentry->d_inode;

	put_write_access(inode);
213 214 215 216 217 218 219

	if (special_file(inode->i_mode))
		return;
	if (file_check_writeable(file) != 0)
		return;
	mnt_drop_write(mnt);
	file_release_write(file);
220 221
}

222
/* the real guts of fput() - releasing the last reference to file
L
Linus Torvalds 已提交
223
 */
224
static void __fput(struct file *file)
L
Linus Torvalds 已提交
225
{
226 227
	struct dentry *dentry = file->f_path.dentry;
	struct vfsmount *mnt = file->f_path.mnt;
L
Linus Torvalds 已提交
228 229 230
	struct inode *inode = dentry->d_inode;

	might_sleep();
R
Robert Love 已提交
231 232

	fsnotify_close(file);
L
Linus Torvalds 已提交
233 234 235 236 237 238 239
	/*
	 * The function eventpoll_release() should be the first called
	 * in the file cleanup chain.
	 */
	eventpoll_release(file);
	locks_remove_flock(file);

A
Al Viro 已提交
240 241 242 243
	if (unlikely(file->f_flags & FASYNC)) {
		if (file->f_op && file->f_op->fasync)
			file->f_op->fasync(-1, file, 0);
	}
L
Linus Torvalds 已提交
244 245 246
	if (file->f_op && file->f_op->release)
		file->f_op->release(inode, file);
	security_file_free(file);
A
Al Viro 已提交
247
	ima_file_free(file);
248 249
	if (unlikely(S_ISCHR(inode->i_mode) && inode->i_cdev != NULL &&
		     !(file->f_mode & FMODE_PATH))) {
L
Linus Torvalds 已提交
250
		cdev_put(inode->i_cdev);
251
	}
L
Linus Torvalds 已提交
252
	fops_put(file->f_op);
253
	put_pid(file->f_owner.pid);
N
Nick Piggin 已提交
254
	file_sb_list_del(file);
255 256
	if ((file->f_mode & (FMODE_READ | FMODE_WRITE)) == FMODE_READ)
		i_readcount_dec(inode);
257 258
	if (file->f_mode & FMODE_WRITE)
		drop_file_write_access(file);
259 260
	file->f_path.dentry = NULL;
	file->f_path.mnt = NULL;
L
Linus Torvalds 已提交
261 262 263 264 265
	file_free(file);
	dput(dentry);
	mntput(mnt);
}

266 267 268 269 270 271 272 273
void fput(struct file *file)
{
	if (atomic_long_dec_and_test(&file->f_count))
		__fput(file);
}

EXPORT_SYMBOL(fput);

274
struct file *fget(unsigned int fd)
L
Linus Torvalds 已提交
275 276 277 278
{
	struct file *file;
	struct files_struct *files = current->files;

279
	rcu_read_lock();
L
Linus Torvalds 已提交
280
	file = fcheck_files(files, fd);
281
	if (file) {
282 283 284 285
		/* File object ref couldn't be taken */
		if (file->f_mode & FMODE_PATH ||
		    !atomic_long_inc_not_zero(&file->f_count))
			file = NULL;
286 287 288
	}
	rcu_read_unlock();

L
Linus Torvalds 已提交
289 290 291 292 293
	return file;
}

EXPORT_SYMBOL(fget);

294 295 296 297 298 299 300 301 302 303 304 305 306 307 308 309 310
struct file *fget_raw(unsigned int fd)
{
	struct file *file;
	struct files_struct *files = current->files;

	rcu_read_lock();
	file = fcheck_files(files, fd);
	if (file) {
		/* File object ref couldn't be taken */
		if (!atomic_long_inc_not_zero(&file->f_count))
			file = NULL;
	}
	rcu_read_unlock();

	return file;
}

311 312
EXPORT_SYMBOL(fget_raw);

L
Linus Torvalds 已提交
313
/*
314 315 316 317 318 319 320 321 322 323 324 325 326 327
 * Lightweight file lookup - no refcnt increment if fd table isn't shared.
 *
 * You can use this instead of fget if you satisfy all of the following
 * conditions:
 * 1) You must call fput_light before exiting the syscall and returning control
 *    to userspace (i.e. you cannot remember the returned struct file * after
 *    returning to userspace).
 * 2) You must not call filp_close on the returned struct file * in between
 *    calls to fget_light and fput_light.
 * 3) You must not clone the current task in between the calls to fget_light
 *    and fput_light.
 *
 * The fput_needed flag returned by fget_light should be passed to the
 * corresponding fput_light.
L
Linus Torvalds 已提交
328
 */
329
struct file *fget_light(unsigned int fd, int *fput_needed)
L
Linus Torvalds 已提交
330 331 332 333
{
	struct file *file;
	struct files_struct *files = current->files;

334 335 336 337 338 339 340 341 342 343 344 345 346 347 348 349 350 351 352 353 354 355 356 357 358 359 360
	*fput_needed = 0;
	if (atomic_read(&files->count) == 1) {
		file = fcheck_files(files, fd);
		if (file && (file->f_mode & FMODE_PATH))
			file = NULL;
	} else {
		rcu_read_lock();
		file = fcheck_files(files, fd);
		if (file) {
			if (!(file->f_mode & FMODE_PATH) &&
			    atomic_long_inc_not_zero(&file->f_count))
				*fput_needed = 1;
			else
				/* Didn't get the reference, someone's freed */
				file = NULL;
		}
		rcu_read_unlock();
	}

	return file;
}

struct file *fget_raw_light(unsigned int fd, int *fput_needed)
{
	struct file *file;
	struct files_struct *files = current->files;

L
Linus Torvalds 已提交
361
	*fput_needed = 0;
362
	if (atomic_read(&files->count) == 1) {
L
Linus Torvalds 已提交
363 364
		file = fcheck_files(files, fd);
	} else {
365
		rcu_read_lock();
L
Linus Torvalds 已提交
366 367
		file = fcheck_files(files, fd);
		if (file) {
A
Al Viro 已提交
368
			if (atomic_long_inc_not_zero(&file->f_count))
369 370 371 372
				*fput_needed = 1;
			else
				/* Didn't get the reference, someone's freed */
				file = NULL;
L
Linus Torvalds 已提交
373
		}
374
		rcu_read_unlock();
L
Linus Torvalds 已提交
375
	}
376

L
Linus Torvalds 已提交
377 378 379 380 381
	return file;
}

void put_filp(struct file *file)
{
A
Al Viro 已提交
382
	if (atomic_long_dec_and_test(&file->f_count)) {
L
Linus Torvalds 已提交
383
		security_file_free(file);
N
Nick Piggin 已提交
384
		file_sb_list_del(file);
L
Linus Torvalds 已提交
385 386 387 388
		file_free(file);
	}
}

N
Nick Piggin 已提交
389 390 391 392 393 394 395 396 397 398 399 400 401 402 403 404 405 406 407 408 409 410 411 412 413 414 415 416 417 418 419 420
static inline int file_list_cpu(struct file *file)
{
#ifdef CONFIG_SMP
	return file->f_sb_list_cpu;
#else
	return smp_processor_id();
#endif
}

/* helper for file_sb_list_add to reduce ifdefs */
static inline void __file_sb_list_add(struct file *file, struct super_block *sb)
{
	struct list_head *list;
#ifdef CONFIG_SMP
	int cpu;
	cpu = smp_processor_id();
	file->f_sb_list_cpu = cpu;
	list = per_cpu_ptr(sb->s_files, cpu);
#else
	list = &sb->s_files;
#endif
	list_add(&file->f_u.fu_list, list);
}

/**
 * file_sb_list_add - add a file to the sb's file list
 * @file: file to add
 * @sb: sb to add it to
 *
 * Use this function to associate a file with the superblock of the inode it
 * refers to.
 */
N
Nick Piggin 已提交
421
void file_sb_list_add(struct file *file, struct super_block *sb)
L
Linus Torvalds 已提交
422
{
A
Andi Kleen 已提交
423
	lg_local_lock(&files_lglock);
N
Nick Piggin 已提交
424
	__file_sb_list_add(file, sb);
A
Andi Kleen 已提交
425
	lg_local_unlock(&files_lglock);
L
Linus Torvalds 已提交
426 427
}

N
Nick Piggin 已提交
428 429 430 431 432 433 434
/**
 * file_sb_list_del - remove a file from the sb's file list
 * @file: file to remove
 * @sb: sb to remove it from
 *
 * Use this function to remove a file from its superblock.
 */
N
Nick Piggin 已提交
435
void file_sb_list_del(struct file *file)
L
Linus Torvalds 已提交
436
{
E
Eric Dumazet 已提交
437
	if (!list_empty(&file->f_u.fu_list)) {
A
Andi Kleen 已提交
438
		lg_local_lock_cpu(&files_lglock, file_list_cpu(file));
E
Eric Dumazet 已提交
439
		list_del_init(&file->f_u.fu_list);
A
Andi Kleen 已提交
440
		lg_local_unlock_cpu(&files_lglock, file_list_cpu(file));
L
Linus Torvalds 已提交
441 442 443
	}
}

N
Nick Piggin 已提交
444 445 446 447 448 449 450 451 452 453 454 455 456 457 458 459 460 461 462 463 464 465 466 467 468 469 470 471 472 473 474
#ifdef CONFIG_SMP

/*
 * These macros iterate all files on all CPUs for a given superblock.
 * files_lglock must be held globally.
 */
#define do_file_list_for_each_entry(__sb, __file)		\
{								\
	int i;							\
	for_each_possible_cpu(i) {				\
		struct list_head *list;				\
		list = per_cpu_ptr((__sb)->s_files, i);		\
		list_for_each_entry((__file), list, f_u.fu_list)

#define while_file_list_for_each_entry				\
	}							\
}

#else

#define do_file_list_for_each_entry(__sb, __file)		\
{								\
	struct list_head *list;					\
	list = &(sb)->s_files;					\
	list_for_each_entry((__file), list, f_u.fu_list)

#define while_file_list_for_each_entry				\
}

#endif

475 476 477 478 479 480 481 482 483 484 485
/**
 *	mark_files_ro - mark all files read-only
 *	@sb: superblock in question
 *
 *	All files are marked read-only.  We don't care about pending
 *	delete files so this should be used in 'force' mode only.
 */
void mark_files_ro(struct super_block *sb)
{
	struct file *f;

A
Andi Kleen 已提交
486
	lg_global_lock(&files_lglock);
N
Nick Piggin 已提交
487
	do_file_list_for_each_entry(sb, f) {
488 489 490 491 492 493
		if (!S_ISREG(f->f_path.dentry->d_inode->i_mode))
		       continue;
		if (!file_count(f))
			continue;
		if (!(f->f_mode & FMODE_WRITE))
			continue;
494
		spin_lock(&f->f_lock);
495
		f->f_mode &= ~FMODE_WRITE;
496
		spin_unlock(&f->f_lock);
497 498 499
		if (file_check_writeable(f) != 0)
			continue;
		file_release_write(f);
500
		mnt_drop_write_file(f);
N
Nick Piggin 已提交
501
	} while_file_list_for_each_entry;
A
Andi Kleen 已提交
502
	lg_global_unlock(&files_lglock);
503 504
}

L
Linus Torvalds 已提交
505 506
void __init files_init(unsigned long mempages)
{ 
E
Eric Dumazet 已提交
507
	unsigned long n;
508 509 510 511 512 513

	filp_cachep = kmem_cache_create("filp", sizeof(struct file), 0,
			SLAB_HWCACHE_ALIGN | SLAB_PANIC, NULL);

	/*
	 * One file with associated inode and dcache is very roughly 1K.
L
Linus Torvalds 已提交
514 515 516 517
	 * Per default don't use more than 10% of our memory for files. 
	 */ 

	n = (mempages * (PAGE_SIZE / 1024)) / 10;
E
Eric Dumazet 已提交
518
	files_stat.max_files = max_t(unsigned long, n, NR_FILE);
519
	files_defer_init();
A
Andi Kleen 已提交
520
	lg_lock_init(&files_lglock, "files_lglock");
521
	percpu_counter_init(&nr_files, 0);
L
Linus Torvalds 已提交
522
}