ioctl.c 24.3 KB
Newer Older
1
/*
2
 * linux/fs/ext4/ioctl.c
3 4 5 6 7 8 9 10 11 12 13
 *
 * Copyright (C) 1993, 1994, 1995
 * Remy Card (card@masi.ibp.fr)
 * Laboratoire MASI - Institut Blaise Pascal
 * Universite Pierre et Marie Curie (Paris VI)
 */

#include <linux/fs.h>
#include <linux/capability.h>
#include <linux/time.h>
#include <linux/compat.h>
14
#include <linux/mount.h>
15
#include <linux/file.h>
16
#include <linux/quotaops.h>
17
#include <linux/uuid.h>
18
#include <linux/uaccess.h>
19
#include <linux/delay.h>
20 21
#include "ext4_jbd2.h"
#include "ext4.h"
22

23 24 25 26 27 28 29 30 31 32 33 34 35 36 37
/**
 * Swap memory between @a and @b for @len bytes.
 *
 * @a:          pointer to first memory area
 * @b:          pointer to second memory area
 * @len:        number of bytes to swap
 *
 */
static void memswap(void *a, void *b, size_t len)
{
	unsigned char *ap, *bp;

	ap = (unsigned char *)a;
	bp = (unsigned char *)b;
	while (len-- > 0) {
F
Fabian Frederick 已提交
38
		swap(*ap, *bp);
39 40 41 42 43 44 45 46 47 48 49 50 51 52 53 54 55 56 57 58 59 60 61 62 63 64 65 66 67 68 69 70 71 72 73 74 75
		ap++;
		bp++;
	}
}

/**
 * Swap i_data and associated attributes between @inode1 and @inode2.
 * This function is used for the primary swap between inode1 and inode2
 * and also to revert this primary swap in case of errors.
 *
 * Therefore you have to make sure, that calling this method twice
 * will revert all changes.
 *
 * @inode1:     pointer to first inode
 * @inode2:     pointer to second inode
 */
static void swap_inode_data(struct inode *inode1, struct inode *inode2)
{
	loff_t isize;
	struct ext4_inode_info *ei1;
	struct ext4_inode_info *ei2;

	ei1 = EXT4_I(inode1);
	ei2 = EXT4_I(inode2);

	memswap(&inode1->i_flags, &inode2->i_flags, sizeof(inode1->i_flags));
	memswap(&inode1->i_version, &inode2->i_version,
		  sizeof(inode1->i_version));
	memswap(&inode1->i_blocks, &inode2->i_blocks,
		  sizeof(inode1->i_blocks));
	memswap(&inode1->i_bytes, &inode2->i_bytes, sizeof(inode1->i_bytes));
	memswap(&inode1->i_atime, &inode2->i_atime, sizeof(inode1->i_atime));
	memswap(&inode1->i_mtime, &inode2->i_mtime, sizeof(inode1->i_mtime));

	memswap(ei1->i_data, ei2->i_data, sizeof(ei1->i_data));
	memswap(&ei1->i_flags, &ei2->i_flags, sizeof(ei1->i_flags));
	memswap(&ei1->i_disksize, &ei2->i_disksize, sizeof(ei1->i_disksize));
76 77
	ext4_es_remove_extent(inode1, 0, EXT_MAX_BLOCKS);
	ext4_es_remove_extent(inode2, 0, EXT_MAX_BLOCKS);
78 79 80 81 82 83 84 85 86 87 88 89 90 91 92 93 94 95 96 97 98 99

	isize = i_size_read(inode1);
	i_size_write(inode1, i_size_read(inode2));
	i_size_write(inode2, isize);
}

/**
 * Swap the information from the given @inode and the inode
 * EXT4_BOOT_LOADER_INO. It will basically swap i_data and all other
 * important fields of the inodes.
 *
 * @sb:         the super block of the filesystem
 * @inode:      the inode to swap with EXT4_BOOT_LOADER_INO
 *
 */
static long swap_inode_boot_loader(struct super_block *sb,
				struct inode *inode)
{
	handle_t *handle;
	int err;
	struct inode *inode_bl;
	struct ext4_inode_info *ei_bl;
100
	struct ext4_sb_info *sbi = EXT4_SB(sb);
101

102 103
	if (inode->i_nlink != 1 || !S_ISREG(inode->i_mode))
		return -EINVAL;
104

105 106
	if (!inode_owner_or_capable(inode) || !capable(CAP_SYS_ADMIN))
		return -EPERM;
107 108

	inode_bl = ext4_iget(sb, EXT4_BOOT_LOADER_INO);
109 110
	if (IS_ERR(inode_bl))
		return PTR_ERR(inode_bl);
111 112 113 114 115 116 117
	ei_bl = EXT4_I(inode_bl);

	filemap_flush(inode->i_mapping);
	filemap_flush(inode_bl->i_mapping);

	/* Protect orig inodes against a truncate and make sure,
	 * that only 1 swap_inode_boot_loader is running. */
118
	lock_two_nondirectories(inode, inode_bl);
119 120 121 122 123 124 125 126 127 128 129 130 131

	truncate_inode_pages(&inode->i_data, 0);
	truncate_inode_pages(&inode_bl->i_data, 0);

	/* Wait for all existing dio workers */
	ext4_inode_block_unlocked_dio(inode);
	ext4_inode_block_unlocked_dio(inode_bl);
	inode_dio_wait(inode);
	inode_dio_wait(inode_bl);

	handle = ext4_journal_start(inode_bl, EXT4_HT_MOVE_EXTENTS, 2);
	if (IS_ERR(handle)) {
		err = -EINVAL;
132
		goto journal_err_out;
133 134 135 136 137 138 139 140 141 142 143 144 145 146 147
	}

	/* Protect extent tree against block allocations via delalloc */
	ext4_double_down_write_data_sem(inode, inode_bl);

	if (inode_bl->i_nlink == 0) {
		/* this inode has never been used as a BOOT_LOADER */
		set_nlink(inode_bl, 1);
		i_uid_write(inode_bl, 0);
		i_gid_write(inode_bl, 0);
		inode_bl->i_flags = 0;
		ei_bl->i_flags = 0;
		inode_bl->i_version = 1;
		i_size_write(inode_bl, 0);
		inode_bl->i_mode = S_IFREG;
148
		if (ext4_has_feature_extents(sb)) {
149 150 151 152 153 154 155 156
			ext4_set_inode_flag(inode_bl, EXT4_INODE_EXTENTS);
			ext4_ext_tree_init(handle, inode_bl);
		} else
			memset(ei_bl->i_data, 0, sizeof(ei_bl->i_data));
	}

	swap_inode_data(inode, inode_bl);

157
	inode->i_ctime = inode_bl->i_ctime = current_time(inode);
158 159 160 161 162 163 164 165 166 167 168 169 170 171 172 173 174 175 176 177 178 179 180 181 182 183 184 185 186

	spin_lock(&sbi->s_next_gen_lock);
	inode->i_generation = sbi->s_next_generation++;
	inode_bl->i_generation = sbi->s_next_generation++;
	spin_unlock(&sbi->s_next_gen_lock);

	ext4_discard_preallocations(inode);

	err = ext4_mark_inode_dirty(handle, inode);
	if (err < 0) {
		ext4_warning(inode->i_sb,
			"couldn't mark inode #%lu dirty (err %d)",
			inode->i_ino, err);
		/* Revert all changes: */
		swap_inode_data(inode, inode_bl);
	} else {
		err = ext4_mark_inode_dirty(handle, inode_bl);
		if (err < 0) {
			ext4_warning(inode_bl->i_sb,
				"couldn't mark inode #%lu dirty (err %d)",
				inode_bl->i_ino, err);
			/* Revert all changes: */
			swap_inode_data(inode, inode_bl);
			ext4_mark_inode_dirty(handle, inode);
		}
	}
	ext4_journal_stop(handle);
	ext4_double_up_write_data_sem(inode, inode_bl);

187
journal_err_out:
188 189
	ext4_inode_resume_unlocked_dio(inode);
	ext4_inode_resume_unlocked_dio(inode_bl);
190
	unlock_two_nondirectories(inode, inode_bl);
191 192 193 194
	iput(inode_bl);
	return err;
}

195
#ifdef CONFIG_EXT4_FS_ENCRYPTION
196 197 198 199 200 201 202 203 204
static int uuid_is_zero(__u8 u[16])
{
	int	i;

	for (i = 0; i < 16; i++)
		if (u[i])
			return 0;
	return 1;
}
205
#endif
206

207 208 209 210 211
static int ext4_ioctl_setflags(struct inode *inode,
			       unsigned int flags)
{
	struct ext4_inode_info *ei = EXT4_I(inode);
	handle_t *handle = NULL;
212
	int err = -EPERM, migrate = 0;
213 214 215 216 217 218 219 220 221 222 223 224 225 226 227 228 229 230 231 232 233 234 235 236 237 238 239 240 241 242 243 244 245 246 247 248 249 250 251 252 253
	struct ext4_iloc iloc;
	unsigned int oldflags, mask, i;
	unsigned int jflag;

	/* Is it quota file? Do not allow user to mess with it */
	if (IS_NOQUOTA(inode))
		goto flags_out;

	oldflags = ei->i_flags;

	/* The JOURNAL_DATA flag is modifiable only by root */
	jflag = flags & EXT4_JOURNAL_DATA_FL;

	/*
	 * The IMMUTABLE and APPEND_ONLY flags can only be changed by
	 * the relevant capability.
	 *
	 * This test looks nicer. Thanks to Pauline Middelink
	 */
	if ((flags ^ oldflags) & (EXT4_APPEND_FL | EXT4_IMMUTABLE_FL)) {
		if (!capable(CAP_LINUX_IMMUTABLE))
			goto flags_out;
	}

	/*
	 * The JOURNAL_DATA flag can only be changed by
	 * the relevant capability.
	 */
	if ((jflag ^ oldflags) & (EXT4_JOURNAL_DATA_FL)) {
		if (!capable(CAP_SYS_RESOURCE))
			goto flags_out;
	}
	if ((flags ^ oldflags) & EXT4_EXTENTS_FL)
		migrate = 1;

	if (flags & EXT4_EOFBLOCKS_FL) {
		/* we don't support adding EOFBLOCKS flag */
		if (!(oldflags & EXT4_EOFBLOCKS_FL)) {
			err = -EOPNOTSUPP;
			goto flags_out;
		}
254 255 256 257 258
	} else if (oldflags & EXT4_EOFBLOCKS_FL) {
		err = ext4_truncate(inode);
		if (err)
			goto flags_out;
	}
259 260 261 262 263 264 265 266 267 268 269 270 271 272 273

	handle = ext4_journal_start(inode, EXT4_HT_INODE, 1);
	if (IS_ERR(handle)) {
		err = PTR_ERR(handle);
		goto flags_out;
	}
	if (IS_SYNC(inode))
		ext4_handle_sync(handle);
	err = ext4_reserve_inode_write(handle, inode, &iloc);
	if (err)
		goto flags_err;

	for (i = 0, mask = 1; i < 32; i++, mask <<= 1) {
		if (!(mask & EXT4_FL_USER_MODIFIABLE))
			continue;
274 275 276
		/* These flags get special treatment later */
		if (mask == EXT4_JOURNAL_DATA_FL || mask == EXT4_EXTENTS_FL)
			continue;
277 278 279 280 281 282 283
		if (mask & flags)
			ext4_set_inode_flag(inode, i);
		else
			ext4_clear_inode_flag(inode, i);
	}

	ext4_set_inode_flags(inode);
284
	inode->i_ctime = current_time(inode);
285 286 287 288 289 290 291 292 293 294 295 296 297 298 299 300 301 302 303 304 305 306 307 308 309 310 311 312 313 314 315 316 317

	err = ext4_mark_iloc_dirty(handle, inode, &iloc);
flags_err:
	ext4_journal_stop(handle);
	if (err)
		goto flags_out;

	if ((jflag ^ oldflags) & (EXT4_JOURNAL_DATA_FL))
		err = ext4_change_inode_journal_flag(inode, jflag);
	if (err)
		goto flags_out;
	if (migrate) {
		if (flags & EXT4_EXTENTS_FL)
			err = ext4_ext_migrate(inode);
		else
			err = ext4_ind_migrate(inode);
	}

flags_out:
	return err;
}

#ifdef CONFIG_QUOTA
static int ext4_ioctl_setproject(struct file *filp, __u32 projid)
{
	struct inode *inode = file_inode(filp);
	struct super_block *sb = inode->i_sb;
	struct ext4_inode_info *ei = EXT4_I(inode);
	int err, rc;
	handle_t *handle;
	kprojid_t kprojid;
	struct ext4_iloc iloc;
	struct ext4_inode *raw_inode;
318
	struct dquot *transfer_to[MAXQUOTAS] = { };
319

K
Kaho Ng 已提交
320
	if (!ext4_has_feature_project(sb)) {
321 322 323 324 325 326 327 328 329 330 331 332 333 334 335 336 337 338 339
		if (projid != EXT4_DEF_PROJID)
			return -EOPNOTSUPP;
		else
			return 0;
	}

	if (EXT4_INODE_SIZE(sb) <= EXT4_GOOD_OLD_INODE_SIZE)
		return -EOPNOTSUPP;

	kprojid = make_kprojid(&init_user_ns, (projid_t)projid);

	if (projid_eq(kprojid, EXT4_I(inode)->i_projid))
		return 0;

	err = mnt_want_write_file(filp);
	if (err)
		return err;

	err = -EPERM;
A
Al Viro 已提交
340
	inode_lock(inode);
341 342 343 344 345 346 347 348 349 350 351 352 353 354 355 356 357 358 359 360 361 362 363 364 365 366 367 368 369 370
	/* Is it quota file? Do not allow user to mess with it */
	if (IS_NOQUOTA(inode))
		goto out_unlock;

	err = ext4_get_inode_loc(inode, &iloc);
	if (err)
		goto out_unlock;

	raw_inode = ext4_raw_inode(&iloc);
	if (!EXT4_FITS_IN_INODE(raw_inode, ei, i_projid)) {
		err = -EOVERFLOW;
		brelse(iloc.bh);
		goto out_unlock;
	}
	brelse(iloc.bh);

	dquot_initialize(inode);

	handle = ext4_journal_start(inode, EXT4_HT_QUOTA,
		EXT4_QUOTA_INIT_BLOCKS(sb) +
		EXT4_QUOTA_DEL_BLOCKS(sb) + 3);
	if (IS_ERR(handle)) {
		err = PTR_ERR(handle);
		goto out_unlock;
	}

	err = ext4_reserve_inode_write(handle, inode, &iloc);
	if (err)
		goto out_stop;

371 372 373 374 375 376
	transfer_to[PRJQUOTA] = dqget(sb, make_kqid_projid(kprojid));
	if (!IS_ERR(transfer_to[PRJQUOTA])) {
		err = __dquot_transfer(inode, transfer_to);
		dqput(transfer_to[PRJQUOTA]);
		if (err)
			goto out_dirty;
377
	}
378

379
	EXT4_I(inode)->i_projid = kprojid;
380
	inode->i_ctime = current_time(inode);
381 382 383 384 385 386 387
out_dirty:
	rc = ext4_mark_iloc_dirty(handle, inode, &iloc);
	if (!err)
		err = rc;
out_stop:
	ext4_journal_stop(handle);
out_unlock:
A
Al Viro 已提交
388
	inode_unlock(inode);
389 390 391 392 393 394 395 396 397 398 399 400 401 402 403 404 405 406 407 408 409 410 411 412 413 414 415 416 417 418 419 420
	mnt_drop_write_file(filp);
	return err;
}
#else
static int ext4_ioctl_setproject(struct file *filp, __u32 projid)
{
	if (projid != EXT4_DEF_PROJID)
		return -EOPNOTSUPP;
	return 0;
}
#endif

/* Transfer internal flags to xflags */
static inline __u32 ext4_iflags_to_xflags(unsigned long iflags)
{
	__u32 xflags = 0;

	if (iflags & EXT4_SYNC_FL)
		xflags |= FS_XFLAG_SYNC;
	if (iflags & EXT4_IMMUTABLE_FL)
		xflags |= FS_XFLAG_IMMUTABLE;
	if (iflags & EXT4_APPEND_FL)
		xflags |= FS_XFLAG_APPEND;
	if (iflags & EXT4_NODUMP_FL)
		xflags |= FS_XFLAG_NODUMP;
	if (iflags & EXT4_NOATIME_FL)
		xflags |= FS_XFLAG_NOATIME;
	if (iflags & EXT4_PROJINHERIT_FL)
		xflags |= FS_XFLAG_PROJINHERIT;
	return xflags;
}

421 422 423 424
#define EXT4_SUPPORTED_FS_XFLAGS (FS_XFLAG_SYNC | FS_XFLAG_IMMUTABLE | \
				  FS_XFLAG_APPEND | FS_XFLAG_NODUMP | \
				  FS_XFLAG_NOATIME | FS_XFLAG_PROJINHERIT)

425 426 427 428 429 430 431 432 433 434 435 436 437 438 439 440 441 442 443 444 445
/* Transfer xflags flags to internal */
static inline unsigned long ext4_xflags_to_iflags(__u32 xflags)
{
	unsigned long iflags = 0;

	if (xflags & FS_XFLAG_SYNC)
		iflags |= EXT4_SYNC_FL;
	if (xflags & FS_XFLAG_IMMUTABLE)
		iflags |= EXT4_IMMUTABLE_FL;
	if (xflags & FS_XFLAG_APPEND)
		iflags |= EXT4_APPEND_FL;
	if (xflags & FS_XFLAG_NODUMP)
		iflags |= EXT4_NODUMP_FL;
	if (xflags & FS_XFLAG_NOATIME)
		iflags |= EXT4_NOATIME_FL;
	if (xflags & FS_XFLAG_PROJINHERIT)
		iflags |= EXT4_PROJINHERIT_FL;

	return iflags;
}

446
int ext4_shutdown(struct super_block *sb, unsigned long arg)
447 448 449 450 451 452 453 454 455 456 457 458 459 460 461 462 463 464 465 466 467 468 469 470 471 472 473 474 475 476 477 478 479 480 481 482 483 484 485 486 487 488 489 490 491
{
	struct ext4_sb_info *sbi = EXT4_SB(sb);
	__u32 flags;

	if (!capable(CAP_SYS_ADMIN))
		return -EPERM;

	if (get_user(flags, (__u32 __user *)arg))
		return -EFAULT;

	if (flags > EXT4_GOING_FLAGS_NOLOGFLUSH)
		return -EINVAL;

	if (ext4_forced_shutdown(sbi))
		return 0;

	ext4_msg(sb, KERN_ALERT, "shut down requested (%d)", flags);

	switch (flags) {
	case EXT4_GOING_FLAGS_DEFAULT:
		freeze_bdev(sb->s_bdev);
		set_bit(EXT4_FLAGS_SHUTDOWN, &sbi->s_ext4_flags);
		thaw_bdev(sb->s_bdev, sb);
		break;
	case EXT4_GOING_FLAGS_LOGFLUSH:
		set_bit(EXT4_FLAGS_SHUTDOWN, &sbi->s_ext4_flags);
		if (sbi->s_journal && !is_journal_aborted(sbi->s_journal)) {
			(void) ext4_force_commit(sb);
			jbd2_journal_abort(sbi->s_journal, 0);
		}
		break;
	case EXT4_GOING_FLAGS_NOLOGFLUSH:
		set_bit(EXT4_FLAGS_SHUTDOWN, &sbi->s_ext4_flags);
		if (sbi->s_journal && !is_journal_aborted(sbi->s_journal)) {
			msleep(100);
			jbd2_journal_abort(sbi->s_journal, 0);
		}
		break;
	default:
		return -EINVAL;
	}
	clear_opt(sb, DISCARD);
	return 0;
}

A
Andi Kleen 已提交
492
long ext4_ioctl(struct file *filp, unsigned int cmd, unsigned long arg)
493
{
A
Al Viro 已提交
494
	struct inode *inode = file_inode(filp);
495
	struct super_block *sb = inode->i_sb;
496
	struct ext4_inode_info *ei = EXT4_I(inode);
497 498
	unsigned int flags;

499
	ext4_debug("cmd = %u, arg = %lu\n", cmd, arg);
500 501

	switch (cmd) {
502
	case EXT4_IOC_GETFLAGS:
503
		ext4_get_inode_flags(ei);
504
		flags = ei->i_flags & EXT4_FL_USER_VISIBLE;
505
		return put_user(flags, (int __user *) arg);
506
	case EXT4_IOC_SETFLAGS: {
507
		int err;
508

509
		if (!inode_owner_or_capable(inode))
510 511 512 513 514
			return -EACCES;

		if (get_user(flags, (int __user *) arg))
			return -EFAULT;

515 516 517 518 519 520 521 522 523 524 525 526
		if (flags & ~EXT4_FL_USER_VISIBLE)
			return -EOPNOTSUPP;
		/*
		 * chattr(1) grabs flags via GETFLAGS, modifies the result and
		 * passes that to SETFLAGS. So we cannot easily make SETFLAGS
		 * more restrictive than just silently masking off visible but
		 * not settable flags as we always did.
		 */
		flags &= EXT4_FL_USER_MODIFIABLE;
		if (ext4_mask_flags(inode->i_mode, flags) != flags)
			return -EOPNOTSUPP;

527
		err = mnt_want_write_file(filp);
528 529 530
		if (err)
			return err;

A
Al Viro 已提交
531
		inode_lock(inode);
532
		err = ext4_ioctl_setflags(inode, flags);
A
Al Viro 已提交
533
		inode_unlock(inode);
A
Al Viro 已提交
534
		mnt_drop_write_file(filp);
535 536
		return err;
	}
537 538
	case EXT4_IOC_GETVERSION:
	case EXT4_IOC_GETVERSION_OLD:
539
		return put_user(inode->i_generation, (int __user *) arg);
540 541
	case EXT4_IOC_SETVERSION:
	case EXT4_IOC_SETVERSION_OLD: {
542
		handle_t *handle;
543
		struct ext4_iloc iloc;
544 545 546
		__u32 generation;
		int err;

547
		if (!inode_owner_or_capable(inode))
548
			return -EPERM;
549

550
		if (ext4_has_metadata_csum(inode->i_sb)) {
551 552 553 554 555
			ext4_warning(sb, "Setting inode version is not "
				     "supported with metadata_csum enabled.");
			return -ENOTTY;
		}

556
		err = mnt_want_write_file(filp);
557 558 559 560 561 562
		if (err)
			return err;
		if (get_user(generation, (int __user *) arg)) {
			err = -EFAULT;
			goto setversion_out;
		}
563

A
Al Viro 已提交
564
		inode_lock(inode);
565
		handle = ext4_journal_start(inode, EXT4_HT_INODE, 1);
566 567
		if (IS_ERR(handle)) {
			err = PTR_ERR(handle);
568
			goto unlock_out;
569
		}
570
		err = ext4_reserve_inode_write(handle, inode, &iloc);
571
		if (err == 0) {
572
			inode->i_ctime = current_time(inode);
573
			inode->i_generation = generation;
574
			err = ext4_mark_iloc_dirty(handle, inode, &iloc);
575
		}
576
		ext4_journal_stop(handle);
577 578

unlock_out:
A
Al Viro 已提交
579
		inode_unlock(inode);
580
setversion_out:
A
Al Viro 已提交
581
		mnt_drop_write_file(filp);
582 583
		return err;
	}
584 585
	case EXT4_IOC_GROUP_EXTEND: {
		ext4_fsblk_t n_blocks_count;
586
		int err, err2=0;
587

588 589 590
		err = ext4_resize_begin(sb);
		if (err)
			return err;
591

592 593 594 595
		if (get_user(n_blocks_count, (__u32 __user *)arg)) {
			err = -EFAULT;
			goto group_extend_out;
		}
596

597
		if (ext4_has_feature_bigalloc(sb)) {
598 599
			ext4_msg(sb, KERN_ERR,
				 "Online resizing not supported with bigalloc");
600 601
			err = -EOPNOTSUPP;
			goto group_extend_out;
602 603
		}

604
		err = mnt_want_write_file(filp);
605
		if (err)
606
			goto group_extend_out;
607

608
		err = ext4_group_extend(sb, EXT4_SB(sb)->s_es, n_blocks_count);
609 610 611 612 613
		if (EXT4_SB(sb)->s_journal) {
			jbd2_journal_lock_updates(EXT4_SB(sb)->s_journal);
			err2 = jbd2_journal_flush(EXT4_SB(sb)->s_journal);
			jbd2_journal_unlock_updates(EXT4_SB(sb)->s_journal);
		}
614 615
		if (err == 0)
			err = err2;
A
Al Viro 已提交
616
		mnt_drop_write_file(filp);
617
group_extend_out:
618
		ext4_resize_end(sb);
619 620
		return err;
	}
621 622 623

	case EXT4_IOC_MOVE_EXT: {
		struct move_extent me;
624 625
		struct fd donor;
		int err;
626

627 628 629 630
		if (!(filp->f_mode & FMODE_READ) ||
		    !(filp->f_mode & FMODE_WRITE))
			return -EBADF;

631 632 633
		if (copy_from_user(&me,
			(struct move_extent __user *)arg, sizeof(me)))
			return -EFAULT;
634
		me.moved_len = 0;
635

636 637
		donor = fdget(me.donor_fd);
		if (!donor.file)
638 639
			return -EBADF;

640
		if (!(donor.file->f_mode & FMODE_WRITE)) {
641 642
			err = -EBADF;
			goto mext_out;
643 644
		}

645
		if (ext4_has_feature_bigalloc(sb)) {
646 647
			ext4_msg(sb, KERN_ERR,
				 "Online defrag not supported with bigalloc");
648 649
			err = -EOPNOTSUPP;
			goto mext_out;
650 651 652 653 654
		} else if (IS_DAX(inode)) {
			ext4_msg(sb, KERN_ERR,
				 "Online defrag not supported with DAX");
			err = -EOPNOTSUPP;
			goto mext_out;
655 656
		}

657
		err = mnt_want_write_file(filp);
658 659 660
		if (err)
			goto mext_out;

661
		err = ext4_move_extents(filp, donor.file, me.orig_start,
662
					me.donor_start, me.len, &me.moved_len);
A
Al Viro 已提交
663
		mnt_drop_write_file(filp);
664

665
		if (copy_to_user((struct move_extent __user *)arg,
666
				 &me, sizeof(me)))
667 668
			err = -EFAULT;
mext_out:
669
		fdput(donor);
670 671 672
		return err;
	}

673 674
	case EXT4_IOC_GROUP_ADD: {
		struct ext4_new_group_data input;
675
		int err, err2=0;
676

677 678 679
		err = ext4_resize_begin(sb);
		if (err)
			return err;
680

681
		if (copy_from_user(&input, (struct ext4_new_group_input __user *)arg,
682 683 684 685
				sizeof(input))) {
			err = -EFAULT;
			goto group_add_out;
		}
686

687
		if (ext4_has_feature_bigalloc(sb)) {
688 689
			ext4_msg(sb, KERN_ERR,
				 "Online resizing not supported with bigalloc");
690 691
			err = -EOPNOTSUPP;
			goto group_add_out;
692 693
		}

694
		err = mnt_want_write_file(filp);
695
		if (err)
696
			goto group_add_out;
697

698
		err = ext4_group_add(sb, &input);
699 700 701 702 703
		if (EXT4_SB(sb)->s_journal) {
			jbd2_journal_lock_updates(EXT4_SB(sb)->s_journal);
			err2 = jbd2_journal_flush(EXT4_SB(sb)->s_journal);
			jbd2_journal_unlock_updates(EXT4_SB(sb)->s_journal);
		}
704 705
		if (err == 0)
			err = err2;
A
Al Viro 已提交
706
		mnt_drop_write_file(filp);
707 708 709
		if (!err && ext4_has_group_desc_csum(sb) &&
		    test_opt(sb, INIT_INODE_TABLE))
			err = ext4_register_li_request(sb, input.group);
710
group_add_out:
711
		ext4_resize_end(sb);
712 713 714
		return err;
	}

715
	case EXT4_IOC_MIGRATE:
716 717
	{
		int err;
718
		if (!inode_owner_or_capable(inode))
719 720
			return -EACCES;

721
		err = mnt_want_write_file(filp);
722 723 724 725 726 727 728 729
		if (err)
			return err;
		/*
		 * inode_mutex prevent write and truncate on the file.
		 * Read still goes through. We take i_data_sem in
		 * ext4_ext_swap_inode_data before we switch the
		 * inode format to prevent read.
		 */
A
Al Viro 已提交
730
		inode_lock((inode));
731
		err = ext4_ext_migrate(inode);
A
Al Viro 已提交
732
		inode_unlock((inode));
A
Al Viro 已提交
733
		mnt_drop_write_file(filp);
734 735
		return err;
	}
736

737 738 739
	case EXT4_IOC_ALLOC_DA_BLKS:
	{
		int err;
740
		if (!inode_owner_or_capable(inode))
741 742
			return -EACCES;

743
		err = mnt_want_write_file(filp);
744 745 746
		if (err)
			return err;
		err = ext4_alloc_da_blocks(inode);
A
Al Viro 已提交
747
		mnt_drop_write_file(filp);
748 749 750
		return err;
	}

751
	case EXT4_IOC_SWAP_BOOT:
752 753
	{
		int err;
754 755
		if (!(filp->f_mode & FMODE_WRITE))
			return -EBADF;
756 757 758 759 760 761 762
		err = mnt_want_write_file(filp);
		if (err)
			return err;
		err = swap_inode_boot_loader(sb, inode);
		mnt_drop_write_file(filp);
		return err;
	}
763

764 765 766
	case EXT4_IOC_RESIZE_FS: {
		ext4_fsblk_t n_blocks_count;
		int err = 0, err2 = 0;
767
		ext4_group_t o_group = EXT4_SB(sb)->s_groups_count;
768

769
		if (ext4_has_feature_bigalloc(sb)) {
770 771 772 773 774 775 776 777 778 779 780 781 782 783
			ext4_msg(sb, KERN_ERR,
				 "Online resizing not (yet) supported with bigalloc");
			return -EOPNOTSUPP;
		}

		if (copy_from_user(&n_blocks_count, (__u64 __user *)arg,
				   sizeof(__u64))) {
			return -EFAULT;
		}

		err = ext4_resize_begin(sb);
		if (err)
			return err;

784
		err = mnt_want_write_file(filp);
785 786 787 788 789 790 791 792 793 794 795
		if (err)
			goto resizefs_out;

		err = ext4_resize_fs(sb, n_blocks_count);
		if (EXT4_SB(sb)->s_journal) {
			jbd2_journal_lock_updates(EXT4_SB(sb)->s_journal);
			err2 = jbd2_journal_flush(EXT4_SB(sb)->s_journal);
			jbd2_journal_unlock_updates(EXT4_SB(sb)->s_journal);
		}
		if (err == 0)
			err = err2;
796
		mnt_drop_write_file(filp);
797 798 799 800 801
		if (!err && (o_group > EXT4_SB(sb)->s_groups_count) &&
		    ext4_has_group_desc_csum(sb) &&
		    test_opt(sb, INIT_INODE_TABLE))
			err = ext4_register_li_request(sb, o_group);

802 803 804 805 806
resizefs_out:
		ext4_resize_end(sb);
		return err;
	}

807 808
	case FITRIM:
	{
809
		struct request_queue *q = bdev_get_queue(sb->s_bdev);
810 811 812 813 814 815
		struct fstrim_range range;
		int ret = 0;

		if (!capable(CAP_SYS_ADMIN))
			return -EPERM;

816 817 818
		if (!blk_queue_discard(q))
			return -EOPNOTSUPP;

819
		if (copy_from_user(&range, (struct fstrim_range __user *)arg,
820 821 822
		    sizeof(range)))
			return -EFAULT;

823 824
		range.minlen = max((unsigned int)range.minlen,
				   q->limits.discard_granularity);
825 826 827 828
		ret = ext4_trim_fs(sb, &range);
		if (ret < 0)
			return ret;

829
		if (copy_to_user((struct fstrim_range __user *)arg, &range,
830 831 832 833 834
		    sizeof(range)))
			return -EFAULT;

		return 0;
	}
835 836
	case EXT4_IOC_PRECACHE_EXTENTS:
		return ext4_ext_precache(inode);
837

838
	case EXT4_IOC_SET_ENCRYPTION_POLICY:
839 840
		if (!ext4_has_feature_encrypt(sb))
			return -EOPNOTSUPP;
841
		return fscrypt_ioctl_set_policy(filp, (const void __user *)arg);
842

843
	case EXT4_IOC_GET_ENCRYPTION_PWSALT: {
844
#ifdef CONFIG_EXT4_FS_ENCRYPTION
845 846 847 848
		int err, err2;
		struct ext4_sb_info *sbi = EXT4_SB(sb);
		handle_t *handle;

849
		if (!ext4_has_feature_encrypt(sb))
850 851 852 853 854 855 856 857 858 859 860 861 862 863 864 865 866 867 868 869 870 871 872 873 874
			return -EOPNOTSUPP;
		if (uuid_is_zero(sbi->s_es->s_encrypt_pw_salt)) {
			err = mnt_want_write_file(filp);
			if (err)
				return err;
			handle = ext4_journal_start_sb(sb, EXT4_HT_MISC, 1);
			if (IS_ERR(handle)) {
				err = PTR_ERR(handle);
				goto pwsalt_err_exit;
			}
			err = ext4_journal_get_write_access(handle, sbi->s_sbh);
			if (err)
				goto pwsalt_err_journal;
			generate_random_uuid(sbi->s_es->s_encrypt_pw_salt);
			err = ext4_handle_dirty_metadata(handle, NULL,
							 sbi->s_sbh);
		pwsalt_err_journal:
			err2 = ext4_journal_stop(handle);
			if (err2 && !err)
				err = err2;
		pwsalt_err_exit:
			mnt_drop_write_file(filp);
			if (err)
				return err;
		}
875 876
		if (copy_to_user((void __user *) arg,
				 sbi->s_es->s_encrypt_pw_salt, 16))
877 878
			return -EFAULT;
		return 0;
879 880 881
#else
		return -EOPNOTSUPP;
#endif
882
	}
883 884
	case EXT4_IOC_GET_ENCRYPTION_POLICY:
		return fscrypt_ioctl_get_policy(filp, (void __user *)arg);
885

886 887 888 889 890 891 892 893
	case EXT4_IOC_FSGETXATTR:
	{
		struct fsxattr fa;

		memset(&fa, 0, sizeof(struct fsxattr));
		ext4_get_inode_flags(ei);
		fa.fsx_xflags = ext4_iflags_to_xflags(ei->i_flags & EXT4_FL_USER_VISIBLE);

K
Kaho Ng 已提交
894
		if (ext4_has_feature_project(inode->i_sb)) {
895 896 897 898 899 900 901 902 903 904 905 906 907 908 909 910 911 912 913 914 915 916
			fa.fsx_projid = (__u32)from_kprojid(&init_user_ns,
				EXT4_I(inode)->i_projid);
		}

		if (copy_to_user((struct fsxattr __user *)arg,
				 &fa, sizeof(fa)))
			return -EFAULT;
		return 0;
	}
	case EXT4_IOC_FSSETXATTR:
	{
		struct fsxattr fa;
		int err;

		if (copy_from_user(&fa, (struct fsxattr __user *)arg,
				   sizeof(fa)))
			return -EFAULT;

		/* Make sure caller has proper permission */
		if (!inode_owner_or_capable(inode))
			return -EACCES;

917 918 919 920 921 922 923
		if (fa.fsx_xflags & ~EXT4_SUPPORTED_FS_XFLAGS)
			return -EOPNOTSUPP;

		flags = ext4_xflags_to_iflags(fa.fsx_xflags);
		if (ext4_mask_flags(inode->i_mode, flags) != flags)
			return -EOPNOTSUPP;

924 925 926 927
		err = mnt_want_write_file(filp);
		if (err)
			return err;

A
Al Viro 已提交
928
		inode_lock(inode);
929 930 931
		flags = (ei->i_flags & ~EXT4_FL_XFLAG_VISIBLE) |
			 (flags & EXT4_FL_XFLAG_VISIBLE);
		err = ext4_ioctl_setflags(inode, flags);
A
Al Viro 已提交
932
		inode_unlock(inode);
933 934 935 936 937 938 939 940 941 942
		mnt_drop_write_file(filp);
		if (err)
			return err;

		err = ext4_ioctl_setproject(filp, fa.fsx_projid);
		if (err)
			return err;

		return 0;
	}
943 944
	case EXT4_IOC_SHUTDOWN:
		return ext4_shutdown(sb, arg);
945 946 947 948 949 950
	default:
		return -ENOTTY;
	}
}

#ifdef CONFIG_COMPAT
951
long ext4_compat_ioctl(struct file *file, unsigned int cmd, unsigned long arg)
952 953 954
{
	/* These are just misnamed, they actually get/put from/to user an int */
	switch (cmd) {
955 956
	case EXT4_IOC32_GETFLAGS:
		cmd = EXT4_IOC_GETFLAGS;
957
		break;
958 959
	case EXT4_IOC32_SETFLAGS:
		cmd = EXT4_IOC_SETFLAGS;
960
		break;
961 962
	case EXT4_IOC32_GETVERSION:
		cmd = EXT4_IOC_GETVERSION;
963
		break;
964 965
	case EXT4_IOC32_SETVERSION:
		cmd = EXT4_IOC_SETVERSION;
966
		break;
967 968
	case EXT4_IOC32_GROUP_EXTEND:
		cmd = EXT4_IOC_GROUP_EXTEND;
969
		break;
970 971
	case EXT4_IOC32_GETVERSION_OLD:
		cmd = EXT4_IOC_GETVERSION_OLD;
972
		break;
973 974
	case EXT4_IOC32_SETVERSION_OLD:
		cmd = EXT4_IOC_SETVERSION_OLD;
975
		break;
976 977
	case EXT4_IOC32_GETRSVSZ:
		cmd = EXT4_IOC_GETRSVSZ;
978
		break;
979 980
	case EXT4_IOC32_SETRSVSZ:
		cmd = EXT4_IOC_SETRSVSZ;
981
		break;
982 983 984 985 986 987 988 989 990 991 992 993 994 995 996 997 998 999 1000 1001 1002 1003 1004
	case EXT4_IOC32_GROUP_ADD: {
		struct compat_ext4_new_group_input __user *uinput;
		struct ext4_new_group_input input;
		mm_segment_t old_fs;
		int err;

		uinput = compat_ptr(arg);
		err = get_user(input.group, &uinput->group);
		err |= get_user(input.block_bitmap, &uinput->block_bitmap);
		err |= get_user(input.inode_bitmap, &uinput->inode_bitmap);
		err |= get_user(input.inode_table, &uinput->inode_table);
		err |= get_user(input.blocks_count, &uinput->blocks_count);
		err |= get_user(input.reserved_blocks,
				&uinput->reserved_blocks);
		if (err)
			return -EFAULT;
		old_fs = get_fs();
		set_fs(KERNEL_DS);
		err = ext4_ioctl(file, EXT4_IOC_GROUP_ADD,
				 (unsigned long) &input);
		set_fs(old_fs);
		return err;
	}
1005
	case EXT4_IOC_MOVE_EXT:
1006
	case EXT4_IOC_RESIZE_FS:
1007
	case EXT4_IOC_PRECACHE_EXTENTS:
1008 1009 1010
	case EXT4_IOC_SET_ENCRYPTION_POLICY:
	case EXT4_IOC_GET_ENCRYPTION_PWSALT:
	case EXT4_IOC_GET_ENCRYPTION_POLICY:
1011
	case EXT4_IOC_SHUTDOWN:
1012
		break;
1013 1014 1015
	default:
		return -ENOIOCTLCMD;
	}
A
Andi Kleen 已提交
1016
	return ext4_ioctl(file, cmd, (unsigned long) compat_ptr(arg));
1017 1018
}
#endif