dquot.c 78.7 KB
Newer Older
L
Linus Torvalds 已提交
1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46 47 48 49 50 51 52 53 54 55 56 57 58 59 60 61 62 63 64 65 66 67 68 69 70 71 72 73
/*
 * Implementation of the diskquota system for the LINUX operating system. QUOTA
 * is implemented using the BSD system call interface as the means of
 * communication with the user level. This file contains the generic routines
 * called by the different filesystems on allocation of an inode or block.
 * These routines take care of the administration needed to have a consistent
 * diskquota tracking system. The ideas of both user and group quotas are based
 * on the Melbourne quota system as used on BSD derived systems. The internal
 * implementation is based on one of the several variants of the LINUX
 * inode-subsystem with added complexity of the diskquota system.
 * 
 * Author:	Marco van Wieringen <mvw@planets.elm.net>
 *
 * Fixes:   Dmitry Gorodchanin <pgmdsg@ibi.com>, 11 Feb 96
 *
 *		Revised list management to avoid races
 *		-- Bill Hawes, <whawes@star.net>, 9/98
 *
 *		Fixed races in dquot_transfer(), dqget() and dquot_alloc_...().
 *		As the consequence the locking was moved from dquot_decr_...(),
 *		dquot_incr_...() to calling functions.
 *		invalidate_dquots() now writes modified dquots.
 *		Serialized quota_off() and quota_on() for mount point.
 *		Fixed a few bugs in grow_dquots().
 *		Fixed deadlock in write_dquot() - we no longer account quotas on
 *		quota files
 *		remove_dquot_ref() moved to inode.c - it now traverses through inodes
 *		add_dquot_ref() restarts after blocking
 *		Added check for bogus uid and fixed check for group in quotactl.
 *		Jan Kara, <jack@suse.cz>, sponsored by SuSE CR, 10-11/99
 *
 *		Used struct list_head instead of own list struct
 *		Invalidation of referenced dquots is no longer possible
 *		Improved free_dquots list management
 *		Quota and i_blocks are now updated in one place to avoid races
 *		Warnings are now delayed so we won't block in critical section
 *		Write updated not to require dquot lock
 *		Jan Kara, <jack@suse.cz>, 9/2000
 *
 *		Added dynamic quota structure allocation
 *		Jan Kara <jack@suse.cz> 12/2000
 *
 *		Rewritten quota interface. Implemented new quota format and
 *		formats registering.
 *		Jan Kara, <jack@suse.cz>, 2001,2002
 *
 *		New SMP locking.
 *		Jan Kara, <jack@suse.cz>, 10/2002
 *
 *		Added journalled quota support, fix lock inversion problems
 *		Jan Kara, <jack@suse.cz>, 2003,2004
 *
 * (C) Copyright 1994 - 1997 Marco van Wieringen 
 */

#include <linux/errno.h>
#include <linux/kernel.h>
#include <linux/fs.h>
#include <linux/mount.h>
#include <linux/mm.h>
#include <linux/time.h>
#include <linux/types.h>
#include <linux/string.h>
#include <linux/fcntl.h>
#include <linux/stat.h>
#include <linux/tty.h>
#include <linux/file.h>
#include <linux/slab.h>
#include <linux/sysctl.h>
#include <linux/init.h>
#include <linux/module.h>
#include <linux/proc_fs.h>
#include <linux/security.h>
A
Al Viro 已提交
74
#include <linux/sched.h>
L
Linus Torvalds 已提交
75 76
#include <linux/kmod.h>
#include <linux/namei.h>
77
#include <linux/capability.h>
A
Adrian Bunk 已提交
78
#include <linux/quotaops.h>
79
#include "../internal.h" /* ugh */
L
Linus Torvalds 已提交
80

81
#include <linux/uaccess.h>
L
Linus Torvalds 已提交
82 83

/*
J
Jan Kara 已提交
84
 * There are three quota SMP locks. dq_list_lock protects all lists with quotas
85
 * and quota formats.
J
Jan Kara 已提交
86 87
 * dq_data_lock protects data from dq_dqb and also mem_dqinfo structures and
 * also guards consistency of dquot->dq_dqb with inode->i_blocks, i_bytes.
L
Linus Torvalds 已提交
88
 * i_blocks and i_bytes updates itself are guarded by i_lock acquired directly
J
Jan Kara 已提交
89 90 91
 * in inode_add_bytes() and inode_sub_bytes(). dq_state_lock protects
 * modifications of quota state (on quotaon and quotaoff) and readers who care
 * about latest values take it as well.
L
Linus Torvalds 已提交
92
 *
J
Jan Kara 已提交
93 94
 * The spinlock ordering is hence: dq_data_lock > dq_list_lock > i_lock,
 *   dq_list_lock > dq_state_lock
L
Linus Torvalds 已提交
95 96 97 98
 *
 * Note that some things (eg. sb pointer, type, id) doesn't change during
 * the life of the dquot structure and so needn't to be protected by a lock
 *
N
Niu Yawei 已提交
99 100 101 102 103 104
 * Operation accessing dquots via inode pointers are protected by dquot_srcu.
 * Operation of reading pointer needs srcu_read_lock(&dquot_srcu), and
 * synchronize_srcu(&dquot_srcu) is called after clearing pointers from
 * inode and before dropping dquot references to avoid use of dquots after
 * they are freed. dq_data_lock is used to serialize the pointer setting and
 * clearing operations.
J
Jan Kara 已提交
105 106
 * Special care needs to be taken about S_NOQUOTA inode flag (marking that
 * inode is a quota file). Functions adding pointers from inode to dquots have
N
Niu Yawei 已提交
107 108
 * to check this flag under dq_data_lock and then (if S_NOQUOTA is not set) they
 * have to do all pointer modifications before dropping dq_data_lock. This makes
J
Jan Kara 已提交
109 110
 * sure they cannot race with quotaon which first sets S_NOQUOTA flag and
 * then drops all pointers to dquots from an inode.
L
Linus Torvalds 已提交
111
 *
I
Ingo Molnar 已提交
112
 * Each dquot has its dq_lock mutex. Locked dquots might not be referenced
L
Linus Torvalds 已提交
113 114 115 116 117 118 119 120 121
 * from inodes (dquot_alloc_space() and such don't check the dq_lock).
 * Currently dquot is locked only when it is being read to memory (or space for
 * it is being allocated) on the first dqget() and when it is being released on
 * the last dqput(). The allocation and release oparations are serialized by
 * the dq_lock and by checking the use count in dquot_release().  Write
 * operations on dquots don't hold dq_lock as they copy data under dq_data_lock
 * spinlock to internal buffers before writing.
 *
 * Lock ordering (including related VFS locks) is the following:
N
Niu Yawei 已提交
122
 *   dqonoff_mutex > i_mutex > journal_lock > dquot->dq_lock > dqio_mutex
123
 * dqonoff_mutex > i_mutex comes from dquot_quota_sync, dquot_enable, etc.
L
Linus Torvalds 已提交
124 125
 */

126 127 128
static __cacheline_aligned_in_smp DEFINE_SPINLOCK(dq_list_lock);
static __cacheline_aligned_in_smp DEFINE_SPINLOCK(dq_state_lock);
__cacheline_aligned_in_smp DEFINE_SPINLOCK(dq_data_lock);
129
EXPORT_SYMBOL(dq_data_lock);
N
Niu Yawei 已提交
130
DEFINE_STATIC_SRCU(dquot_srcu);
L
Linus Torvalds 已提交
131

132
void __quota_error(struct super_block *sb, const char *func,
133
		   const char *fmt, ...)
134 135
{
	if (printk_ratelimit()) {
136 137 138
		va_list args;
		struct va_format vaf;

139
		va_start(args, fmt);
140 141 142 143 144 145 146

		vaf.fmt = fmt;
		vaf.va = &args;

		printk(KERN_ERR "Quota error (device %s): %s: %pV\n",
		       sb->s_id, func, &vaf);

147 148 149 150 151
		va_end(args);
	}
}
EXPORT_SYMBOL(__quota_error);

152
#if defined(CONFIG_QUOTA_DEBUG) || defined(CONFIG_PRINT_QUOTA_WARNING)
L
Linus Torvalds 已提交
153
static char *quotatypes[] = INITQFNAMES;
154
#endif
L
Linus Torvalds 已提交
155 156 157 158
static struct quota_format_type *quota_formats;	/* List of registered formats */
static struct quota_module_name module_names[] = INIT_QUOTA_MODULE_NAMES;

/* SLAB cache for dquot structures */
159
static struct kmem_cache *dquot_cachep;
L
Linus Torvalds 已提交
160 161 162 163 164 165 166 167 168

int register_quota_format(struct quota_format_type *fmt)
{
	spin_lock(&dq_list_lock);
	fmt->qf_next = quota_formats;
	quota_formats = fmt;
	spin_unlock(&dq_list_lock);
	return 0;
}
169
EXPORT_SYMBOL(register_quota_format);
L
Linus Torvalds 已提交
170 171 172 173 174 175

void unregister_quota_format(struct quota_format_type *fmt)
{
	struct quota_format_type **actqf;

	spin_lock(&dq_list_lock);
J
Jan Kara 已提交
176 177 178
	for (actqf = &quota_formats; *actqf && *actqf != fmt;
	     actqf = &(*actqf)->qf_next)
		;
L
Linus Torvalds 已提交
179 180 181 182
	if (*actqf)
		*actqf = (*actqf)->qf_next;
	spin_unlock(&dq_list_lock);
}
183
EXPORT_SYMBOL(unregister_quota_format);
L
Linus Torvalds 已提交
184 185 186 187 188 189

static struct quota_format_type *find_quota_format(int id)
{
	struct quota_format_type *actqf;

	spin_lock(&dq_list_lock);
J
Jan Kara 已提交
190 191 192
	for (actqf = quota_formats; actqf && actqf->qf_fmt_id != id;
	     actqf = actqf->qf_next)
		;
L
Linus Torvalds 已提交
193 194 195 196 197
	if (!actqf || !try_module_get(actqf->qf_owner)) {
		int qm;

		spin_unlock(&dq_list_lock);
		
J
Jan Kara 已提交
198 199 200 201 202
		for (qm = 0; module_names[qm].qm_fmt_id &&
			     module_names[qm].qm_fmt_id != id; qm++)
			;
		if (!module_names[qm].qm_fmt_id ||
		    request_module(module_names[qm].qm_mod_name))
L
Linus Torvalds 已提交
203 204 205
			return NULL;

		spin_lock(&dq_list_lock);
J
Jan Kara 已提交
206 207 208
		for (actqf = quota_formats; actqf && actqf->qf_fmt_id != id;
		     actqf = actqf->qf_next)
			;
L
Linus Torvalds 已提交
209 210 211 212 213 214 215 216 217 218 219 220 221 222 223 224 225 226 227 228 229 230 231 232 233 234 235 236 237 238 239 240 241 242 243 244 245 246
		if (actqf && !try_module_get(actqf->qf_owner))
			actqf = NULL;
	}
	spin_unlock(&dq_list_lock);
	return actqf;
}

static void put_quota_format(struct quota_format_type *fmt)
{
	module_put(fmt->qf_owner);
}

/*
 * Dquot List Management:
 * The quota code uses three lists for dquot management: the inuse_list,
 * free_dquots, and dquot_hash[] array. A single dquot structure may be
 * on all three lists, depending on its current state.
 *
 * All dquots are placed to the end of inuse_list when first created, and this
 * list is used for invalidate operation, which must look at every dquot.
 *
 * Unused dquots (dq_count == 0) are added to the free_dquots list when freed,
 * and this list is searched whenever we need an available dquot.  Dquots are
 * removed from the list as soon as they are used again, and
 * dqstats.free_dquots gives the number of dquots on the list. When
 * dquot is invalidated it's completely released from memory.
 *
 * Dquots with a specific identity (device, type and id) are placed on
 * one of the dquot_hash[] hash chains. The provides an efficient search
 * mechanism to locate a specific dquot.
 */

static LIST_HEAD(inuse_list);
static LIST_HEAD(free_dquots);
static unsigned int dq_hash_bits, dq_hash_mask;
static struct hlist_head *dquot_hash;

struct dqstats dqstats;
247
EXPORT_SYMBOL(dqstats);
L
Linus Torvalds 已提交
248

249
static qsize_t inode_get_rsv_space(struct inode *inode);
250
static int __dquot_initialize(struct inode *inode, int type);
251

L
Linus Torvalds 已提交
252
static inline unsigned int
E
Eric W. Biederman 已提交
253
hashfn(const struct super_block *sb, struct kqid qid)
L
Linus Torvalds 已提交
254
{
E
Eric W. Biederman 已提交
255 256
	unsigned int id = from_kqid(&init_user_ns, qid);
	int type = qid.type;
L
Linus Torvalds 已提交
257 258 259 260 261 262 263 264 265 266 267
	unsigned long tmp;

	tmp = (((unsigned long)sb>>L1_CACHE_SHIFT) ^ id) * (MAXQUOTAS - type);
	return (tmp + (tmp >> dq_hash_bits)) & dq_hash_mask;
}

/*
 * Following list functions expect dq_list_lock to be held
 */
static inline void insert_dquot_hash(struct dquot *dquot)
{
J
Jan Kara 已提交
268
	struct hlist_head *head;
E
Eric W. Biederman 已提交
269
	head = dquot_hash + hashfn(dquot->dq_sb, dquot->dq_id);
L
Linus Torvalds 已提交
270 271 272 273 274 275 276 277
	hlist_add_head(&dquot->dq_hash, head);
}

static inline void remove_dquot_hash(struct dquot *dquot)
{
	hlist_del_init(&dquot->dq_hash);
}

J
Jan Kara 已提交
278
static struct dquot *find_dquot(unsigned int hashent, struct super_block *sb,
E
Eric W. Biederman 已提交
279
				struct kqid qid)
L
Linus Torvalds 已提交
280 281 282 283 284 285
{
	struct hlist_node *node;
	struct dquot *dquot;

	hlist_for_each (node, dquot_hash+hashent) {
		dquot = hlist_entry(node, struct dquot, dq_hash);
286
		if (dquot->dq_sb == sb && qid_eq(dquot->dq_id, qid))
L
Linus Torvalds 已提交
287 288
			return dquot;
	}
J
Jan Kara 已提交
289
	return NULL;
L
Linus Torvalds 已提交
290 291 292 293 294
}

/* Add a dquot to the tail of the free list */
static inline void put_dquot_last(struct dquot *dquot)
{
295
	list_add_tail(&dquot->dq_free, &free_dquots);
296
	dqstats_inc(DQST_FREE_DQUOTS);
L
Linus Torvalds 已提交
297 298 299 300 301 302 303
}

static inline void remove_free_dquot(struct dquot *dquot)
{
	if (list_empty(&dquot->dq_free))
		return;
	list_del_init(&dquot->dq_free);
304
	dqstats_dec(DQST_FREE_DQUOTS);
L
Linus Torvalds 已提交
305 306 307 308 309 310
}

static inline void put_inuse(struct dquot *dquot)
{
	/* We add to the back of inuse list so we don't have to restart
	 * when traversing this list and we block */
311
	list_add_tail(&dquot->dq_inuse, &inuse_list);
312
	dqstats_inc(DQST_ALLOC_DQUOTS);
L
Linus Torvalds 已提交
313 314 315 316
}

static inline void remove_inuse(struct dquot *dquot)
{
317
	dqstats_dec(DQST_ALLOC_DQUOTS);
L
Linus Torvalds 已提交
318 319 320 321 322 323 324 325
	list_del(&dquot->dq_inuse);
}
/*
 * End of list functions needing dq_list_lock
 */

static void wait_on_dquot(struct dquot *dquot)
{
I
Ingo Molnar 已提交
326 327
	mutex_lock(&dquot->dq_lock);
	mutex_unlock(&dquot->dq_lock);
L
Linus Torvalds 已提交
328 329
}

J
Jan Kara 已提交
330 331 332 333 334 335 336 337 338
static inline int dquot_dirty(struct dquot *dquot)
{
	return test_bit(DQ_MOD_B, &dquot->dq_flags);
}

static inline int mark_dquot_dirty(struct dquot *dquot)
{
	return dquot->dq_sb->dq_op->mark_dirty(dquot);
}
L
Linus Torvalds 已提交
339

340
/* Mark dquot dirty in atomic manner, and return it's old dirty flag state */
L
Linus Torvalds 已提交
341 342
int dquot_mark_dquot_dirty(struct dquot *dquot)
{
343 344 345 346 347 348
	int ret = 1;

	/* If quota is dirty already, we don't have to acquire dq_list_lock */
	if (test_bit(DQ_MOD_B, &dquot->dq_flags))
		return 1;

L
Linus Torvalds 已提交
349
	spin_lock(&dq_list_lock);
350
	if (!test_and_set_bit(DQ_MOD_B, &dquot->dq_flags)) {
L
Linus Torvalds 已提交
351
		list_add(&dquot->dq_dirty, &sb_dqopt(dquot->dq_sb)->
352
				info[dquot->dq_id.type].dqi_dirty_list);
353 354
		ret = 0;
	}
L
Linus Torvalds 已提交
355
	spin_unlock(&dq_list_lock);
356
	return ret;
L
Linus Torvalds 已提交
357
}
358
EXPORT_SYMBOL(dquot_mark_dquot_dirty);
L
Linus Torvalds 已提交
359

360 361 362 363 364 365 366 367 368 369 370 371 372 373 374 375 376 377 378 379 380 381 382 383
/* Dirtify all the dquots - this can block when journalling */
static inline int mark_all_dquot_dirty(struct dquot * const *dquot)
{
	int ret, err, cnt;

	ret = err = 0;
	for (cnt = 0; cnt < MAXQUOTAS; cnt++) {
		if (dquot[cnt])
			/* Even in case of error we have to continue */
			ret = mark_dquot_dirty(dquot[cnt]);
		if (!err)
			err = ret;
	}
	return err;
}

static inline void dqput_all(struct dquot **dquot)
{
	unsigned int cnt;

	for (cnt = 0; cnt < MAXQUOTAS; cnt++)
		dqput(dquot[cnt]);
}

L
Linus Torvalds 已提交
384 385 386 387 388 389 390 391 392 393 394 395 396 397 398 399 400 401 402 403 404 405 406 407
/* This function needs dq_list_lock */
static inline int clear_dquot_dirty(struct dquot *dquot)
{
	if (!test_and_clear_bit(DQ_MOD_B, &dquot->dq_flags))
		return 0;
	list_del_init(&dquot->dq_dirty);
	return 1;
}

void mark_info_dirty(struct super_block *sb, int type)
{
	set_bit(DQF_INFO_DIRTY_B, &sb_dqopt(sb)->info[type].dqi_flags);
}
EXPORT_SYMBOL(mark_info_dirty);

/*
 *	Read dquot from disk and alloc space for it
 */

int dquot_acquire(struct dquot *dquot)
{
	int ret = 0, ret2 = 0;
	struct quota_info *dqopt = sb_dqopt(dquot->dq_sb);

I
Ingo Molnar 已提交
408 409
	mutex_lock(&dquot->dq_lock);
	mutex_lock(&dqopt->dqio_mutex);
L
Linus Torvalds 已提交
410
	if (!test_bit(DQ_READ_B, &dquot->dq_flags))
411
		ret = dqopt->ops[dquot->dq_id.type]->read_dqblk(dquot);
L
Linus Torvalds 已提交
412 413
	if (ret < 0)
		goto out_iolock;
414 415
	/* Make sure flags update is visible after dquot has been filled */
	smp_mb__before_atomic();
L
Linus Torvalds 已提交
416 417 418
	set_bit(DQ_READ_B, &dquot->dq_flags);
	/* Instantiate dquot if needed */
	if (!test_bit(DQ_ACTIVE_B, &dquot->dq_flags) && !dquot->dq_off) {
419
		ret = dqopt->ops[dquot->dq_id.type]->commit_dqblk(dquot);
L
Linus Torvalds 已提交
420
		/* Write the info if needed */
421 422 423
		if (info_dirty(&dqopt->info[dquot->dq_id.type])) {
			ret2 = dqopt->ops[dquot->dq_id.type]->write_file_info(
					dquot->dq_sb, dquot->dq_id.type);
J
Jan Kara 已提交
424
		}
L
Linus Torvalds 已提交
425 426 427 428 429 430 431
		if (ret < 0)
			goto out_iolock;
		if (ret2 < 0) {
			ret = ret2;
			goto out_iolock;
		}
	}
432 433 434 435 436
	/*
	 * Make sure flags update is visible after on-disk struct has been
	 * allocated. Paired with smp_rmb() in dqget().
	 */
	smp_mb__before_atomic();
L
Linus Torvalds 已提交
437 438
	set_bit(DQ_ACTIVE_B, &dquot->dq_flags);
out_iolock:
I
Ingo Molnar 已提交
439 440
	mutex_unlock(&dqopt->dqio_mutex);
	mutex_unlock(&dquot->dq_lock);
L
Linus Torvalds 已提交
441 442
	return ret;
}
443
EXPORT_SYMBOL(dquot_acquire);
L
Linus Torvalds 已提交
444 445 446 447 448 449

/*
 *	Write dquot to disk
 */
int dquot_commit(struct dquot *dquot)
{
450
	int ret = 0;
L
Linus Torvalds 已提交
451 452
	struct quota_info *dqopt = sb_dqopt(dquot->dq_sb);

I
Ingo Molnar 已提交
453
	mutex_lock(&dqopt->dqio_mutex);
L
Linus Torvalds 已提交
454 455 456 457 458 459 460 461
	spin_lock(&dq_list_lock);
	if (!clear_dquot_dirty(dquot)) {
		spin_unlock(&dq_list_lock);
		goto out_sem;
	}
	spin_unlock(&dq_list_lock);
	/* Inactive dquot can be only if there was error during read/init
	 * => we have better not writing it */
462
	if (test_bit(DQ_ACTIVE_B, &dquot->dq_flags))
463
		ret = dqopt->ops[dquot->dq_id.type]->commit_dqblk(dquot);
464 465
	else
		ret = -EIO;
L
Linus Torvalds 已提交
466
out_sem:
I
Ingo Molnar 已提交
467
	mutex_unlock(&dqopt->dqio_mutex);
L
Linus Torvalds 已提交
468 469
	return ret;
}
470
EXPORT_SYMBOL(dquot_commit);
L
Linus Torvalds 已提交
471 472 473 474 475 476 477 478 479

/*
 *	Release dquot
 */
int dquot_release(struct dquot *dquot)
{
	int ret = 0, ret2 = 0;
	struct quota_info *dqopt = sb_dqopt(dquot->dq_sb);

I
Ingo Molnar 已提交
480
	mutex_lock(&dquot->dq_lock);
L
Linus Torvalds 已提交
481 482 483
	/* Check whether we are not racing with some other dqget() */
	if (atomic_read(&dquot->dq_count) > 1)
		goto out_dqlock;
I
Ingo Molnar 已提交
484
	mutex_lock(&dqopt->dqio_mutex);
485 486
	if (dqopt->ops[dquot->dq_id.type]->release_dqblk) {
		ret = dqopt->ops[dquot->dq_id.type]->release_dqblk(dquot);
L
Linus Torvalds 已提交
487
		/* Write the info */
488 489 490
		if (info_dirty(&dqopt->info[dquot->dq_id.type])) {
			ret2 = dqopt->ops[dquot->dq_id.type]->write_file_info(
						dquot->dq_sb, dquot->dq_id.type);
J
Jan Kara 已提交
491
		}
L
Linus Torvalds 已提交
492 493 494 495
		if (ret >= 0)
			ret = ret2;
	}
	clear_bit(DQ_ACTIVE_B, &dquot->dq_flags);
I
Ingo Molnar 已提交
496
	mutex_unlock(&dqopt->dqio_mutex);
L
Linus Torvalds 已提交
497
out_dqlock:
I
Ingo Molnar 已提交
498
	mutex_unlock(&dquot->dq_lock);
L
Linus Torvalds 已提交
499 500
	return ret;
}
501
EXPORT_SYMBOL(dquot_release);
L
Linus Torvalds 已提交
502

503
void dquot_destroy(struct dquot *dquot)
504 505 506
{
	kmem_cache_free(dquot_cachep, dquot);
}
507
EXPORT_SYMBOL(dquot_destroy);
508 509 510 511 512 513

static inline void do_destroy_dquot(struct dquot *dquot)
{
	dquot->dq_sb->dq_op->destroy_dquot(dquot);
}

L
Linus Torvalds 已提交
514 515
/* Invalidate all dquots on the list. Note that this function is called after
 * quota is disabled and pointers from inodes removed so there cannot be new
516 517
 * quota users. There can still be some users of quotas due to inodes being
 * just deleted or pruned by prune_icache() (those are not attached to any
J
Jan Kara 已提交
518
 * list) or parallel quotactl call. We have to wait for such users.
519
 */
L
Linus Torvalds 已提交
520 521
static void invalidate_dquots(struct super_block *sb, int type)
{
522
	struct dquot *dquot, *tmp;
L
Linus Torvalds 已提交
523

524
restart:
L
Linus Torvalds 已提交
525
	spin_lock(&dq_list_lock);
526
	list_for_each_entry_safe(dquot, tmp, &inuse_list, dq_inuse) {
L
Linus Torvalds 已提交
527 528
		if (dquot->dq_sb != sb)
			continue;
529
		if (dquot->dq_id.type != type)
L
Linus Torvalds 已提交
530
			continue;
531 532 533 534
		/* Wait for dquot users */
		if (atomic_read(&dquot->dq_count)) {
			DEFINE_WAIT(wait);

535
			dqgrab(dquot);
536 537 538 539 540 541 542 543 544 545 546 547 548 549 550 551 552 553 554 555 556 557 558
			prepare_to_wait(&dquot->dq_wait_unused, &wait,
					TASK_UNINTERRUPTIBLE);
			spin_unlock(&dq_list_lock);
			/* Once dqput() wakes us up, we know it's time to free
			 * the dquot.
			 * IMPORTANT: we rely on the fact that there is always
			 * at most one process waiting for dquot to free.
			 * Otherwise dq_count would be > 1 and we would never
			 * wake up.
			 */
			if (atomic_read(&dquot->dq_count) > 1)
				schedule();
			finish_wait(&dquot->dq_wait_unused, &wait);
			dqput(dquot);
			/* At this moment dquot() need not exist (it could be
			 * reclaimed by prune_dqcache(). Hence we must
			 * restart. */
			goto restart;
		}
		/*
		 * Quota now has no users and it has been written on last
		 * dqput()
		 */
L
Linus Torvalds 已提交
559 560 561
		remove_dquot_hash(dquot);
		remove_free_dquot(dquot);
		remove_inuse(dquot);
562
		do_destroy_dquot(dquot);
L
Linus Torvalds 已提交
563 564 565 566
	}
	spin_unlock(&dq_list_lock);
}

567 568 569 570 571 572 573 574 575 576 577 578 579 580 581 582 583 584
/* Call callback for every active dquot on given filesystem */
int dquot_scan_active(struct super_block *sb,
		      int (*fn)(struct dquot *dquot, unsigned long priv),
		      unsigned long priv)
{
	struct dquot *dquot, *old_dquot = NULL;
	int ret = 0;

	mutex_lock(&sb_dqopt(sb)->dqonoff_mutex);
	spin_lock(&dq_list_lock);
	list_for_each_entry(dquot, &inuse_list, dq_inuse) {
		if (!test_bit(DQ_ACTIVE_B, &dquot->dq_flags))
			continue;
		if (dquot->dq_sb != sb)
			continue;
		/* Now we have active dquot so we can just increase use count */
		atomic_inc(&dquot->dq_count);
		spin_unlock(&dq_list_lock);
585
		dqstats_inc(DQST_LOOKUPS);
586 587
		dqput(old_dquot);
		old_dquot = dquot;
588 589 590 591 592 593 594 595 596 597 598
		/*
		 * ->release_dquot() can be racing with us. Our reference
		 * protects us from new calls to it so just wait for any
		 * outstanding call and recheck the DQ_ACTIVE_B after that.
		 */
		wait_on_dquot(dquot);
		if (test_bit(DQ_ACTIVE_B, &dquot->dq_flags)) {
			ret = fn(dquot, priv);
			if (ret < 0)
				goto out;
		}
599 600 601 602 603 604 605 606 607 608
		spin_lock(&dq_list_lock);
		/* We are safe to continue now because our dquot could not
		 * be moved out of the inuse list while we hold the reference */
	}
	spin_unlock(&dq_list_lock);
out:
	dqput(old_dquot);
	mutex_unlock(&sb_dqopt(sb)->dqonoff_mutex);
	return ret;
}
609
EXPORT_SYMBOL(dquot_scan_active);
610

611 612
/* Write all dquot structures to quota files */
int dquot_writeback_dquots(struct super_block *sb, int type)
L
Linus Torvalds 已提交
613 614 615 616 617
{
	struct list_head *dirty;
	struct dquot *dquot;
	struct quota_info *dqopt = sb_dqopt(sb);
	int cnt;
618
	int err, ret = 0;
L
Linus Torvalds 已提交
619

I
Ingo Molnar 已提交
620
	mutex_lock(&dqopt->dqonoff_mutex);
L
Linus Torvalds 已提交
621 622 623
	for (cnt = 0; cnt < MAXQUOTAS; cnt++) {
		if (type != -1 && cnt != type)
			continue;
624
		if (!sb_has_quota_active(sb, cnt))
L
Linus Torvalds 已提交
625 626 627 628
			continue;
		spin_lock(&dq_list_lock);
		dirty = &dqopt->info[cnt].dqi_dirty_list;
		while (!list_empty(dirty)) {
J
Jan Kara 已提交
629 630
			dquot = list_first_entry(dirty, struct dquot,
						 dq_dirty);
L
Linus Torvalds 已提交
631 632 633 634 635 636 637 638
			/* Dirty and inactive can be only bad dquot... */
			if (!test_bit(DQ_ACTIVE_B, &dquot->dq_flags)) {
				clear_dquot_dirty(dquot);
				continue;
			}
			/* Now we have active dquot from which someone is
 			 * holding reference so we can safely just increase
			 * use count */
639
			dqgrab(dquot);
L
Linus Torvalds 已提交
640
			spin_unlock(&dq_list_lock);
641
			dqstats_inc(DQST_LOOKUPS);
642 643
			err = sb->dq_op->write_dquot(dquot);
			if (!ret && err)
644
				ret = err;
L
Linus Torvalds 已提交
645 646 647 648 649 650 651
			dqput(dquot);
			spin_lock(&dq_list_lock);
		}
		spin_unlock(&dq_list_lock);
	}

	for (cnt = 0; cnt < MAXQUOTAS; cnt++)
652 653
		if ((cnt == type || type == -1) && sb_has_quota_active(sb, cnt)
		    && info_dirty(&dqopt->info[cnt]))
L
Linus Torvalds 已提交
654
			sb->dq_op->write_info(sb, cnt);
655
	dqstats_inc(DQST_SYNCS);
I
Ingo Molnar 已提交
656
	mutex_unlock(&dqopt->dqonoff_mutex);
L
Linus Torvalds 已提交
657

658 659 660 661 662 663 664 665 666 667 668 669 670 671 672
	return ret;
}
EXPORT_SYMBOL(dquot_writeback_dquots);

/* Write all dquot structures to disk and make them visible from userspace */
int dquot_quota_sync(struct super_block *sb, int type)
{
	struct quota_info *dqopt = sb_dqopt(sb);
	int cnt;
	int ret;

	ret = dquot_writeback_dquots(sb, type);
	if (ret)
		return ret;
	if (dqopt->flags & DQUOT_QUOTA_SYS_FILE)
673 674 675 676 677 678 679 680 681 682 683 684 685
		return 0;

	/* This is not very clever (and fast) but currently I don't know about
	 * any other simple way of getting quota data to disk and we must get
	 * them there for userspace to be visible... */
	if (sb->s_op->sync_fs)
		sb->s_op->sync_fs(sb, 1);
	sync_blockdev(sb->s_bdev);

	/*
	 * Now when everything is written we can discard the pagecache so
	 * that userspace sees the changes.
	 */
686
	mutex_lock(&dqopt->dqonoff_mutex);
687 688 689 690 691
	for (cnt = 0; cnt < MAXQUOTAS; cnt++) {
		if (type != -1 && cnt != type)
			continue;
		if (!sb_has_quota_active(sb, cnt))
			continue;
A
Al Viro 已提交
692
		inode_lock(dqopt->files[cnt]);
693
		truncate_inode_pages(&dqopt->files[cnt]->i_data, 0);
A
Al Viro 已提交
694
		inode_unlock(dqopt->files[cnt]);
695
	}
696
	mutex_unlock(&dqopt->dqonoff_mutex);
697

L
Linus Torvalds 已提交
698 699
	return 0;
}
700
EXPORT_SYMBOL(dquot_quota_sync);
L
Linus Torvalds 已提交
701

702 703
static unsigned long
dqcache_shrink_scan(struct shrinker *shrink, struct shrink_control *sc)
L
Linus Torvalds 已提交
704 705 706
{
	struct list_head *head;
	struct dquot *dquot;
707
	unsigned long freed = 0;
L
Linus Torvalds 已提交
708

709
	spin_lock(&dq_list_lock);
L
Linus Torvalds 已提交
710
	head = free_dquots.prev;
711
	while (head != &free_dquots && sc->nr_to_scan) {
L
Linus Torvalds 已提交
712 713 714 715
		dquot = list_entry(head, struct dquot, dq_free);
		remove_dquot_hash(dquot);
		remove_free_dquot(dquot);
		remove_inuse(dquot);
716
		do_destroy_dquot(dquot);
717 718
		sc->nr_to_scan--;
		freed++;
L
Linus Torvalds 已提交
719 720
		head = free_dquots.prev;
	}
721
	spin_unlock(&dq_list_lock);
722
	return freed;
L
Linus Torvalds 已提交
723 724
}

725 726
static unsigned long
dqcache_shrink_count(struct shrinker *shrink, struct shrink_control *sc)
L
Linus Torvalds 已提交
727
{
728 729
	return vfs_pressure_ratio(
	percpu_counter_read_positive(&dqstats.counter[DQST_FREE_DQUOTS]));
L
Linus Torvalds 已提交
730 731
}

732
static struct shrinker dqcache_shrinker = {
733 734
	.count_objects = dqcache_shrink_count,
	.scan_objects = dqcache_shrink_scan,
735 736 737
	.seeks = DEFAULT_SEEKS,
};

L
Linus Torvalds 已提交
738 739 740
/*
 * Put reference to dquot
 */
741
void dqput(struct dquot *dquot)
L
Linus Torvalds 已提交
742
{
743 744
	int ret;

L
Linus Torvalds 已提交
745 746
	if (!dquot)
		return;
747
#ifdef CONFIG_QUOTA_DEBUG
L
Linus Torvalds 已提交
748
	if (!atomic_read(&dquot->dq_count)) {
749
		quota_error(dquot->dq_sb, "trying to free free dquot of %s %d",
750 751
			    quotatypes[dquot->dq_id.type],
			    from_kqid(&init_user_ns, dquot->dq_id));
L
Linus Torvalds 已提交
752 753 754
		BUG();
	}
#endif
755
	dqstats_inc(DQST_DROPS);
L
Linus Torvalds 已提交
756 757 758 759 760
we_slept:
	spin_lock(&dq_list_lock);
	if (atomic_read(&dquot->dq_count) > 1) {
		/* We have more than one user... nothing to do */
		atomic_dec(&dquot->dq_count);
761
		/* Releasing dquot during quotaoff phase? */
762
		if (!sb_has_quota_active(dquot->dq_sb, dquot->dq_id.type) &&
763 764
		    atomic_read(&dquot->dq_count) == 1)
			wake_up(&dquot->dq_wait_unused);
L
Linus Torvalds 已提交
765 766 767 768 769 770 771
		spin_unlock(&dq_list_lock);
		return;
	}
	/* Need to release dquot? */
	if (test_bit(DQ_ACTIVE_B, &dquot->dq_flags) && dquot_dirty(dquot)) {
		spin_unlock(&dq_list_lock);
		/* Commit dquot before releasing */
772 773
		ret = dquot->dq_sb->dq_op->write_dquot(dquot);
		if (ret < 0) {
774 775 776
			quota_error(dquot->dq_sb, "Can't write quota structure"
				    " (error %d). Quota may get out of sync!",
				    ret);
777 778 779 780 781 782 783 784
			/*
			 * We clear dirty bit anyway, so that we avoid
			 * infinite loop here
			 */
			spin_lock(&dq_list_lock);
			clear_dquot_dirty(dquot);
			spin_unlock(&dq_list_lock);
		}
L
Linus Torvalds 已提交
785 786 787 788 789 790 791 792 793 794
		goto we_slept;
	}
	/* Clear flag in case dquot was inactive (something bad happened) */
	clear_dquot_dirty(dquot);
	if (test_bit(DQ_ACTIVE_B, &dquot->dq_flags)) {
		spin_unlock(&dq_list_lock);
		dquot->dq_sb->dq_op->release_dquot(dquot);
		goto we_slept;
	}
	atomic_dec(&dquot->dq_count);
795
#ifdef CONFIG_QUOTA_DEBUG
L
Linus Torvalds 已提交
796
	/* sanity check */
797
	BUG_ON(!list_empty(&dquot->dq_free));
L
Linus Torvalds 已提交
798 799 800 801
#endif
	put_dquot_last(dquot);
	spin_unlock(&dq_list_lock);
}
802
EXPORT_SYMBOL(dqput);
L
Linus Torvalds 已提交
803

804
struct dquot *dquot_alloc(struct super_block *sb, int type)
805 806 807
{
	return kmem_cache_zalloc(dquot_cachep, GFP_NOFS);
}
808
EXPORT_SYMBOL(dquot_alloc);
809

L
Linus Torvalds 已提交
810 811 812 813
static struct dquot *get_empty_dquot(struct super_block *sb, int type)
{
	struct dquot *dquot;

814
	dquot = sb->dq_op->alloc_dquot(sb, type);
L
Linus Torvalds 已提交
815
	if(!dquot)
J
Jan Kara 已提交
816
		return NULL;
L
Linus Torvalds 已提交
817

I
Ingo Molnar 已提交
818
	mutex_init(&dquot->dq_lock);
L
Linus Torvalds 已提交
819 820 821 822
	INIT_LIST_HEAD(&dquot->dq_free);
	INIT_LIST_HEAD(&dquot->dq_inuse);
	INIT_HLIST_NODE(&dquot->dq_hash);
	INIT_LIST_HEAD(&dquot->dq_dirty);
823
	init_waitqueue_head(&dquot->dq_wait_unused);
L
Linus Torvalds 已提交
824
	dquot->dq_sb = sb;
E
Eric W. Biederman 已提交
825
	dquot->dq_id = make_kqid_invalid(type);
L
Linus Torvalds 已提交
826 827 828 829 830 831 832
	atomic_set(&dquot->dq_count, 1);

	return dquot;
}

/*
 * Get reference to dquot
J
Jan Kara 已提交
833 834 835 836 837
 *
 * Locking is slightly tricky here. We are guarded from parallel quotaoff()
 * destroying our dquot by:
 *   a) checking for quota flags under dq_list_lock and
 *   b) getting a reference to dquot before we release dq_list_lock
L
Linus Torvalds 已提交
838
 */
839
struct dquot *dqget(struct super_block *sb, struct kqid qid)
L
Linus Torvalds 已提交
840
{
E
Eric W. Biederman 已提交
841
	unsigned int hashent = hashfn(sb, qid);
842
	struct dquot *dquot, *empty = NULL;
L
Linus Torvalds 已提交
843

844 845 846
	if (!qid_has_mapping(sb->s_user_ns, qid))
		return ERR_PTR(-EINVAL);

E
Eric W. Biederman 已提交
847
        if (!sb_has_quota_active(sb, qid.type))
848
		return ERR_PTR(-ESRCH);
L
Linus Torvalds 已提交
849 850
we_slept:
	spin_lock(&dq_list_lock);
J
Jan Kara 已提交
851
	spin_lock(&dq_state_lock);
E
Eric W. Biederman 已提交
852
	if (!sb_has_quota_active(sb, qid.type)) {
J
Jan Kara 已提交
853 854
		spin_unlock(&dq_state_lock);
		spin_unlock(&dq_list_lock);
855
		dquot = ERR_PTR(-ESRCH);
J
Jan Kara 已提交
856 857 858 859
		goto out;
	}
	spin_unlock(&dq_state_lock);

E
Eric W. Biederman 已提交
860
	dquot = find_dquot(hashent, sb, qid);
J
Jan Kara 已提交
861 862
	if (!dquot) {
		if (!empty) {
L
Linus Torvalds 已提交
863
			spin_unlock(&dq_list_lock);
E
Eric W. Biederman 已提交
864
			empty = get_empty_dquot(sb, qid.type);
J
Jan Kara 已提交
865
			if (!empty)
L
Linus Torvalds 已提交
866 867 868 869
				schedule();	/* Try to wait for a moment... */
			goto we_slept;
		}
		dquot = empty;
J
Jan Kara 已提交
870
		empty = NULL;
871
		dquot->dq_id = qid;
L
Linus Torvalds 已提交
872 873 874 875 876
		/* all dquots go on the inuse_list */
		put_inuse(dquot);
		/* hash it first so it can be found */
		insert_dquot_hash(dquot);
		spin_unlock(&dq_list_lock);
877
		dqstats_inc(DQST_LOOKUPS);
L
Linus Torvalds 已提交
878 879 880 881 882
	} else {
		if (!atomic_read(&dquot->dq_count))
			remove_free_dquot(dquot);
		atomic_inc(&dquot->dq_count);
		spin_unlock(&dq_list_lock);
883 884
		dqstats_inc(DQST_CACHE_HITS);
		dqstats_inc(DQST_LOOKUPS);
L
Linus Torvalds 已提交
885
	}
J
Jan Kara 已提交
886 887
	/* Wait for dq_lock - after this we know that either dquot_release() is
	 * already finished or it will be canceled due to dq_count > 1 test */
L
Linus Torvalds 已提交
888
	wait_on_dquot(dquot);
J
Jan Kara 已提交
889
	/* Read the dquot / allocate space in quota file */
890 891 892 893 894 895 896 897 898
	if (!test_bit(DQ_ACTIVE_B, &dquot->dq_flags)) {
		int err;

		err = sb->dq_op->acquire_dquot(dquot);
		if (err < 0) {
			dqput(dquot);
			dquot = ERR_PTR(err);
			goto out;
		}
L
Linus Torvalds 已提交
899
	}
900 901 902 903 904
	/*
	 * Make sure following reads see filled structure - paired with
	 * smp_mb__before_atomic() in dquot_acquire().
	 */
	smp_rmb();
905
#ifdef CONFIG_QUOTA_DEBUG
906
	BUG_ON(!dquot->dq_sb);	/* Has somebody invalidated entry under us? */
L
Linus Torvalds 已提交
907
#endif
J
Jan Kara 已提交
908 909 910
out:
	if (empty)
		do_destroy_dquot(empty);
L
Linus Torvalds 已提交
911 912 913

	return dquot;
}
914
EXPORT_SYMBOL(dqget);
L
Linus Torvalds 已提交
915

916 917 918 919 920
static inline struct dquot **i_dquot(struct inode *inode)
{
	return inode->i_sb->s_op->get_dquots(inode);
}

L
Linus Torvalds 已提交
921 922
static int dqinit_needed(struct inode *inode, int type)
{
923
	struct dquot * const *dquots;
L
Linus Torvalds 已提交
924 925 926 927
	int cnt;

	if (IS_NOQUOTA(inode))
		return 0;
928 929

	dquots = i_dquot(inode);
L
Linus Torvalds 已提交
930
	if (type != -1)
931
		return !dquots[type];
L
Linus Torvalds 已提交
932
	for (cnt = 0; cnt < MAXQUOTAS; cnt++)
933
		if (!dquots[cnt])
L
Linus Torvalds 已提交
934 935 936 937
			return 1;
	return 0;
}

I
Ingo Molnar 已提交
938
/* This routine is guarded by dqonoff_mutex mutex */
L
Linus Torvalds 已提交
939 940
static void add_dquot_ref(struct super_block *sb, int type)
{
941
	struct inode *inode, *old_inode = NULL;
942
#ifdef CONFIG_QUOTA_DEBUG
943
	int reserved = 0;
944
#endif
L
Linus Torvalds 已提交
945

946
	spin_lock(&sb->s_inode_list_lock);
947
	list_for_each_entry(inode, &sb->s_inodes, i_sb_list) {
948 949 950 951 952
		spin_lock(&inode->i_lock);
		if ((inode->i_state & (I_FREEING|I_WILL_FREE|I_NEW)) ||
		    !atomic_read(&inode->i_writecount) ||
		    !dqinit_needed(inode, type)) {
			spin_unlock(&inode->i_lock);
N
Nick Piggin 已提交
953
			continue;
954
		}
955
		__iget(inode);
956
		spin_unlock(&inode->i_lock);
957
		spin_unlock(&sb->s_inode_list_lock);
958

959 960 961 962
#ifdef CONFIG_QUOTA_DEBUG
		if (unlikely(inode_get_rsv_space(inode) > 0))
			reserved = 1;
#endif
963
		iput(old_inode);
964
		__dquot_initialize(inode, type);
965 966 967 968

		/*
		 * We hold a reference to 'inode' so it couldn't have been
		 * removed from s_inodes list while we dropped the
969
		 * s_inode_list_lock. We cannot iput the inode now as we can be
970
		 * holding the last reference and we cannot iput it under
971
		 * s_inode_list_lock. So we keep the reference and iput it
972 973
		 * later.
		 */
974
		old_inode = inode;
975
		spin_lock(&sb->s_inode_list_lock);
L
Linus Torvalds 已提交
976
	}
977
	spin_unlock(&sb->s_inode_list_lock);
978
	iput(old_inode);
979

980
#ifdef CONFIG_QUOTA_DEBUG
981
	if (reserved) {
982 983 984
		quota_error(sb, "Writes happened before quota was turned on "
			"thus quota information is probably inconsistent. "
			"Please run quotacheck(8)");
985
	}
986
#endif
L
Linus Torvalds 已提交
987 988
}

J
Jan Kara 已提交
989 990
/*
 * Remove references to dquots from inode and add dquot to list for freeing
L
Lucas De Marchi 已提交
991
 * if we have the last reference to dquot
J
Jan Kara 已提交
992
 */
993 994
static void remove_inode_dquot_ref(struct inode *inode, int type,
				   struct list_head *tofree_head)
L
Linus Torvalds 已提交
995
{
996 997
	struct dquot **dquots = i_dquot(inode);
	struct dquot *dquot = dquots[type];
L
Linus Torvalds 已提交
998

999 1000 1001
	if (!dquot)
		return;

1002
	dquots[type] = NULL;
1003 1004 1005 1006 1007 1008 1009 1010 1011 1012 1013 1014 1015 1016
	if (list_empty(&dquot->dq_free)) {
		/*
		 * The inode still has reference to dquot so it can't be in the
		 * free list
		 */
		spin_lock(&dq_list_lock);
		list_add(&dquot->dq_free, tofree_head);
		spin_unlock(&dq_list_lock);
	} else {
		/*
		 * Dquot is already in a list to put so we won't drop the last
		 * reference here.
		 */
		dqput(dquot);
L
Linus Torvalds 已提交
1017 1018 1019
	}
}

J
Jan Kara 已提交
1020 1021 1022 1023 1024
/*
 * Free list of dquots
 * Dquots are removed from inodes and no new references can be got so we are
 * the only ones holding reference
 */
L
Linus Torvalds 已提交
1025 1026 1027 1028 1029 1030 1031 1032 1033
static void put_dquot_list(struct list_head *tofree_head)
{
	struct list_head *act_head;
	struct dquot *dquot;

	act_head = tofree_head->next;
	while (act_head != tofree_head) {
		dquot = list_entry(act_head, struct dquot, dq_free);
		act_head = act_head->next;
J
Jan Kara 已提交
1034 1035
		/* Remove dquot from the list so we won't have problems... */
		list_del_init(&dquot->dq_free);
L
Linus Torvalds 已提交
1036 1037 1038 1039
		dqput(dquot);
	}
}

1040 1041 1042 1043
static void remove_dquot_ref(struct super_block *sb, int type,
		struct list_head *tofree_head)
{
	struct inode *inode;
1044
	int reserved = 0;
1045

1046
	spin_lock(&sb->s_inode_list_lock);
1047
	list_for_each_entry(inode, &sb->s_inodes, i_sb_list) {
N
Nick Piggin 已提交
1048 1049 1050 1051
		/*
		 *  We have to scan also I_NEW inodes because they can already
		 *  have quota pointer initialized. Luckily, we need to touch
		 *  only quota pointers and these have separate locking
N
Niu Yawei 已提交
1052
		 *  (dq_data_lock).
N
Nick Piggin 已提交
1053
		 */
N
Niu Yawei 已提交
1054
		spin_lock(&dq_data_lock);
1055 1056 1057
		if (!IS_NOQUOTA(inode)) {
			if (unlikely(inode_get_rsv_space(inode) > 0))
				reserved = 1;
1058
			remove_inode_dquot_ref(inode, type, tofree_head);
1059
		}
N
Niu Yawei 已提交
1060
		spin_unlock(&dq_data_lock);
1061
	}
1062
	spin_unlock(&sb->s_inode_list_lock);
1063 1064 1065 1066 1067 1068 1069
#ifdef CONFIG_QUOTA_DEBUG
	if (reserved) {
		printk(KERN_WARNING "VFS (%s): Writes happened after quota"
			" was disabled thus quota information is probably "
			"inconsistent. Please run quotacheck(8).\n", sb->s_id);
	}
#endif
1070 1071
}

L
Linus Torvalds 已提交
1072 1073 1074 1075 1076
/* Gather all references from inodes and drop them */
static void drop_dquot_ref(struct super_block *sb, int type)
{
	LIST_HEAD(tofree_head);

1077 1078
	if (sb->dq_op) {
		remove_dquot_ref(sb, type, &tofree_head);
N
Niu Yawei 已提交
1079
		synchronize_srcu(&dquot_srcu);
1080 1081
		put_dquot_list(&tofree_head);
	}
L
Linus Torvalds 已提交
1082 1083
}

1084
static inline void dquot_incr_inodes(struct dquot *dquot, qsize_t number)
L
Linus Torvalds 已提交
1085 1086 1087 1088 1089 1090 1091 1092 1093
{
	dquot->dq_dqb.dqb_curinodes += number;
}

static inline void dquot_incr_space(struct dquot *dquot, qsize_t number)
{
	dquot->dq_dqb.dqb_curspace += number;
}

1094 1095 1096 1097 1098
static inline void dquot_resv_space(struct dquot *dquot, qsize_t number)
{
	dquot->dq_dqb.dqb_rsvspace += number;
}

1099 1100 1101
/*
 * Claim reserved quota space
 */
1102
static void dquot_claim_reserved_space(struct dquot *dquot, qsize_t number)
1103
{
1104 1105 1106 1107
	if (dquot->dq_dqb.dqb_rsvspace < number) {
		WARN_ON_ONCE(1);
		number = dquot->dq_dqb.dqb_rsvspace;
	}
1108 1109 1110 1111
	dquot->dq_dqb.dqb_curspace += number;
	dquot->dq_dqb.dqb_rsvspace -= number;
}

1112 1113 1114 1115 1116 1117 1118 1119
static void dquot_reclaim_reserved_space(struct dquot *dquot, qsize_t number)
{
	if (WARN_ON_ONCE(dquot->dq_dqb.dqb_curspace < number))
		number = dquot->dq_dqb.dqb_curspace;
	dquot->dq_dqb.dqb_rsvspace += number;
	dquot->dq_dqb.dqb_curspace -= number;
}

1120 1121 1122
static inline
void dquot_free_reserved_space(struct dquot *dquot, qsize_t number)
{
1123 1124 1125 1126 1127 1128
	if (dquot->dq_dqb.dqb_rsvspace >= number)
		dquot->dq_dqb.dqb_rsvspace -= number;
	else {
		WARN_ON_ONCE(1);
		dquot->dq_dqb.dqb_rsvspace = 0;
	}
1129 1130
}

J
Jan Kara 已提交
1131
static void dquot_decr_inodes(struct dquot *dquot, qsize_t number)
L
Linus Torvalds 已提交
1132
{
1133 1134
	if (sb_dqopt(dquot->dq_sb)->flags & DQUOT_NEGATIVE_USAGE ||
	    dquot->dq_dqb.dqb_curinodes >= number)
L
Linus Torvalds 已提交
1135 1136 1137 1138 1139 1140 1141 1142
		dquot->dq_dqb.dqb_curinodes -= number;
	else
		dquot->dq_dqb.dqb_curinodes = 0;
	if (dquot->dq_dqb.dqb_curinodes <= dquot->dq_dqb.dqb_isoftlimit)
		dquot->dq_dqb.dqb_itime = (time_t) 0;
	clear_bit(DQ_INODES_B, &dquot->dq_flags);
}

J
Jan Kara 已提交
1143
static void dquot_decr_space(struct dquot *dquot, qsize_t number)
L
Linus Torvalds 已提交
1144
{
1145 1146
	if (sb_dqopt(dquot->dq_sb)->flags & DQUOT_NEGATIVE_USAGE ||
	    dquot->dq_dqb.dqb_curspace >= number)
L
Linus Torvalds 已提交
1147 1148 1149
		dquot->dq_dqb.dqb_curspace -= number;
	else
		dquot->dq_dqb.dqb_curspace = 0;
1150
	if (dquot->dq_dqb.dqb_curspace <= dquot->dq_dqb.dqb_bsoftlimit)
L
Linus Torvalds 已提交
1151 1152 1153 1154
		dquot->dq_dqb.dqb_btime = (time_t) 0;
	clear_bit(DQ_BLKS_B, &dquot->dq_flags);
}

1155 1156
struct dquot_warn {
	struct super_block *w_sb;
1157
	struct kqid w_dq_id;
1158 1159 1160
	short w_type;
};

1161 1162 1163 1164 1165 1166 1167 1168 1169 1170 1171 1172
static int warning_issued(struct dquot *dquot, const int warntype)
{
	int flag = (warntype == QUOTA_NL_BHARDWARN ||
		warntype == QUOTA_NL_BSOFTLONGWARN) ? DQ_BLKS_B :
		((warntype == QUOTA_NL_IHARDWARN ||
		warntype == QUOTA_NL_ISOFTLONGWARN) ? DQ_INODES_B : 0);

	if (!flag)
		return 0;
	return test_and_set_bit(flag, &dquot->dq_flags);
}

J
Jan Kara 已提交
1173
#ifdef CONFIG_PRINT_QUOTA_WARNING
L
Linus Torvalds 已提交
1174 1175
static int flag_print_warnings = 1;

1176
static int need_print_warning(struct dquot_warn *warn)
L
Linus Torvalds 已提交
1177 1178 1179 1180
{
	if (!flag_print_warnings)
		return 0;

1181
	switch (warn->w_dq_id.type) {
L
Linus Torvalds 已提交
1182
		case USRQUOTA:
E
Eric W. Biederman 已提交
1183
			return uid_eq(current_fsuid(), warn->w_dq_id.uid);
L
Linus Torvalds 已提交
1184
		case GRPQUOTA:
1185
			return in_group_p(warn->w_dq_id.gid);
1186 1187
		case PRJQUOTA:
			return 1;
L
Linus Torvalds 已提交
1188 1189 1190 1191 1192
	}
	return 0;
}

/* Print warning to user which exceeded quota */
1193
static void print_warning(struct dquot_warn *warn)
L
Linus Torvalds 已提交
1194 1195
{
	char *msg = NULL;
1196
	struct tty_struct *tty;
1197
	int warntype = warn->w_type;
L
Linus Torvalds 已提交
1198

1199 1200 1201
	if (warntype == QUOTA_NL_IHARDBELOW ||
	    warntype == QUOTA_NL_ISOFTBELOW ||
	    warntype == QUOTA_NL_BHARDBELOW ||
1202
	    warntype == QUOTA_NL_BSOFTBELOW || !need_print_warning(warn))
L
Linus Torvalds 已提交
1203 1204
		return;

1205 1206
	tty = get_current_tty();
	if (!tty)
A
Alan Cox 已提交
1207
		return;
1208
	tty_write_message(tty, warn->w_sb->s_id);
J
Jan Kara 已提交
1209
	if (warntype == QUOTA_NL_ISOFTWARN || warntype == QUOTA_NL_BSOFTWARN)
1210
		tty_write_message(tty, ": warning, ");
L
Linus Torvalds 已提交
1211
	else
1212
		tty_write_message(tty, ": write failed, ");
1213
	tty_write_message(tty, quotatypes[warn->w_dq_id.type]);
L
Linus Torvalds 已提交
1214
	switch (warntype) {
J
Jan Kara 已提交
1215
		case QUOTA_NL_IHARDWARN:
L
Linus Torvalds 已提交
1216 1217
			msg = " file limit reached.\r\n";
			break;
J
Jan Kara 已提交
1218
		case QUOTA_NL_ISOFTLONGWARN:
L
Linus Torvalds 已提交
1219 1220
			msg = " file quota exceeded too long.\r\n";
			break;
J
Jan Kara 已提交
1221
		case QUOTA_NL_ISOFTWARN:
L
Linus Torvalds 已提交
1222 1223
			msg = " file quota exceeded.\r\n";
			break;
J
Jan Kara 已提交
1224
		case QUOTA_NL_BHARDWARN:
L
Linus Torvalds 已提交
1225 1226
			msg = " block limit reached.\r\n";
			break;
J
Jan Kara 已提交
1227
		case QUOTA_NL_BSOFTLONGWARN:
L
Linus Torvalds 已提交
1228 1229
			msg = " block quota exceeded too long.\r\n";
			break;
J
Jan Kara 已提交
1230
		case QUOTA_NL_BSOFTWARN:
L
Linus Torvalds 已提交
1231 1232 1233
			msg = " block quota exceeded.\r\n";
			break;
	}
1234
	tty_write_message(tty, msg);
A
Alan Cox 已提交
1235
	tty_kref_put(tty);
L
Linus Torvalds 已提交
1236
}
J
Jan Kara 已提交
1237 1238
#endif

1239 1240 1241 1242 1243 1244 1245 1246 1247 1248
static void prepare_warning(struct dquot_warn *warn, struct dquot *dquot,
			    int warntype)
{
	if (warning_issued(dquot, warntype))
		return;
	warn->w_type = warntype;
	warn->w_sb = dquot->dq_sb;
	warn->w_dq_id = dquot->dq_id;
}

1249 1250 1251
/*
 * Write warnings to the console and send warning messages over netlink.
 *
1252
 * Note that this function can call into tty and networking code.
1253
 */
1254
static void flush_warnings(struct dquot_warn *warn)
L
Linus Torvalds 已提交
1255 1256 1257
{
	int i;

S
Steven Whitehouse 已提交
1258
	for (i = 0; i < MAXQUOTAS; i++) {
1259 1260
		if (warn[i].w_type == QUOTA_NL_NOWARN)
			continue;
J
Jan Kara 已提交
1261
#ifdef CONFIG_PRINT_QUOTA_WARNING
1262
		print_warning(&warn[i]);
J
Jan Kara 已提交
1263
#endif
1264
		quota_send_warning(warn[i].w_dq_id,
1265
				   warn[i].w_sb->s_dev, warn[i].w_type);
S
Steven Whitehouse 已提交
1266
	}
L
Linus Torvalds 已提交
1267 1268
}

J
Jan Kara 已提交
1269
static int ignore_hardlimit(struct dquot *dquot)
L
Linus Torvalds 已提交
1270
{
1271
	struct mem_dqinfo *info = &sb_dqopt(dquot->dq_sb)->info[dquot->dq_id.type];
L
Linus Torvalds 已提交
1272 1273

	return capable(CAP_SYS_RESOURCE) &&
J
Jan Kara 已提交
1274
	       (info->dqi_format->qf_fmt_id != QFMT_VFS_OLD ||
J
Jan Kara 已提交
1275
		!(info->dqi_flags & DQF_ROOT_SQUASH));
L
Linus Torvalds 已提交
1276 1277 1278
}

/* needs dq_data_lock */
1279 1280
static int check_idq(struct dquot *dquot, qsize_t inodes,
		     struct dquot_warn *warn)
L
Linus Torvalds 已提交
1281
{
J
Jan Kara 已提交
1282 1283
	qsize_t newinodes = dquot->dq_dqb.dqb_curinodes + inodes;

1284
	if (!sb_has_quota_limits_enabled(dquot->dq_sb, dquot->dq_id.type) ||
1285
	    test_bit(DQ_FAKE_B, &dquot->dq_flags))
1286
		return 0;
L
Linus Torvalds 已提交
1287 1288

	if (dquot->dq_dqb.dqb_ihardlimit &&
J
Jan Kara 已提交
1289
	    newinodes > dquot->dq_dqb.dqb_ihardlimit &&
L
Linus Torvalds 已提交
1290
            !ignore_hardlimit(dquot)) {
1291
		prepare_warning(warn, dquot, QUOTA_NL_IHARDWARN);
1292
		return -EDQUOT;
L
Linus Torvalds 已提交
1293 1294 1295
	}

	if (dquot->dq_dqb.dqb_isoftlimit &&
J
Jan Kara 已提交
1296 1297 1298
	    newinodes > dquot->dq_dqb.dqb_isoftlimit &&
	    dquot->dq_dqb.dqb_itime &&
	    get_seconds() >= dquot->dq_dqb.dqb_itime &&
L
Linus Torvalds 已提交
1299
            !ignore_hardlimit(dquot)) {
1300
		prepare_warning(warn, dquot, QUOTA_NL_ISOFTLONGWARN);
1301
		return -EDQUOT;
L
Linus Torvalds 已提交
1302 1303 1304
	}

	if (dquot->dq_dqb.dqb_isoftlimit &&
J
Jan Kara 已提交
1305
	    newinodes > dquot->dq_dqb.dqb_isoftlimit &&
L
Linus Torvalds 已提交
1306
	    dquot->dq_dqb.dqb_itime == 0) {
1307
		prepare_warning(warn, dquot, QUOTA_NL_ISOFTWARN);
J
Jan Kara 已提交
1308
		dquot->dq_dqb.dqb_itime = get_seconds() +
1309
		    sb_dqopt(dquot->dq_sb)->info[dquot->dq_id.type].dqi_igrace;
L
Linus Torvalds 已提交
1310 1311
	}

1312
	return 0;
L
Linus Torvalds 已提交
1313 1314 1315
}

/* needs dq_data_lock */
1316 1317
static int check_bdq(struct dquot *dquot, qsize_t space, int prealloc,
		     struct dquot_warn *warn)
L
Linus Torvalds 已提交
1318
{
1319
	qsize_t tspace;
J
Jan Kara 已提交
1320
	struct super_block *sb = dquot->dq_sb;
1321

1322
	if (!sb_has_quota_limits_enabled(sb, dquot->dq_id.type) ||
1323
	    test_bit(DQ_FAKE_B, &dquot->dq_flags))
1324
		return 0;
L
Linus Torvalds 已提交
1325

1326 1327 1328
	tspace = dquot->dq_dqb.dqb_curspace + dquot->dq_dqb.dqb_rsvspace
		+ space;

L
Linus Torvalds 已提交
1329
	if (dquot->dq_dqb.dqb_bhardlimit &&
1330
	    tspace > dquot->dq_dqb.dqb_bhardlimit &&
L
Linus Torvalds 已提交
1331 1332
            !ignore_hardlimit(dquot)) {
		if (!prealloc)
1333
			prepare_warning(warn, dquot, QUOTA_NL_BHARDWARN);
1334
		return -EDQUOT;
L
Linus Torvalds 已提交
1335 1336 1337
	}

	if (dquot->dq_dqb.dqb_bsoftlimit &&
1338
	    tspace > dquot->dq_dqb.dqb_bsoftlimit &&
J
Jan Kara 已提交
1339 1340
	    dquot->dq_dqb.dqb_btime &&
	    get_seconds() >= dquot->dq_dqb.dqb_btime &&
L
Linus Torvalds 已提交
1341 1342
            !ignore_hardlimit(dquot)) {
		if (!prealloc)
1343
			prepare_warning(warn, dquot, QUOTA_NL_BSOFTLONGWARN);
1344
		return -EDQUOT;
L
Linus Torvalds 已提交
1345 1346 1347
	}

	if (dquot->dq_dqb.dqb_bsoftlimit &&
1348
	    tspace > dquot->dq_dqb.dqb_bsoftlimit &&
L
Linus Torvalds 已提交
1349 1350
	    dquot->dq_dqb.dqb_btime == 0) {
		if (!prealloc) {
1351
			prepare_warning(warn, dquot, QUOTA_NL_BSOFTWARN);
J
Jan Kara 已提交
1352
			dquot->dq_dqb.dqb_btime = get_seconds() +
1353
			    sb_dqopt(sb)->info[dquot->dq_id.type].dqi_bgrace;
L
Linus Torvalds 已提交
1354 1355 1356 1357 1358 1359
		}
		else
			/*
			 * We don't allow preallocation to exceed softlimit so exceeding will
			 * be always printed
			 */
1360
			return -EDQUOT;
L
Linus Torvalds 已提交
1361 1362
	}

1363
	return 0;
L
Linus Torvalds 已提交
1364 1365
}

1366
static int info_idq_free(struct dquot *dquot, qsize_t inodes)
1367
{
J
Jan Kara 已提交
1368 1369
	qsize_t newinodes;

1370
	if (test_bit(DQ_FAKE_B, &dquot->dq_flags) ||
1371
	    dquot->dq_dqb.dqb_curinodes <= dquot->dq_dqb.dqb_isoftlimit ||
1372
	    !sb_has_quota_limits_enabled(dquot->dq_sb, dquot->dq_id.type))
1373 1374
		return QUOTA_NL_NOWARN;

J
Jan Kara 已提交
1375 1376
	newinodes = dquot->dq_dqb.dqb_curinodes - inodes;
	if (newinodes <= dquot->dq_dqb.dqb_isoftlimit)
1377 1378
		return QUOTA_NL_ISOFTBELOW;
	if (dquot->dq_dqb.dqb_curinodes >= dquot->dq_dqb.dqb_ihardlimit &&
J
Jan Kara 已提交
1379
	    newinodes < dquot->dq_dqb.dqb_ihardlimit)
1380 1381 1382 1383 1384 1385 1386
		return QUOTA_NL_IHARDBELOW;
	return QUOTA_NL_NOWARN;
}

static int info_bdq_free(struct dquot *dquot, qsize_t space)
{
	if (test_bit(DQ_FAKE_B, &dquot->dq_flags) ||
1387
	    dquot->dq_dqb.dqb_curspace <= dquot->dq_dqb.dqb_bsoftlimit)
1388 1389
		return QUOTA_NL_NOWARN;

1390
	if (dquot->dq_dqb.dqb_curspace - space <= dquot->dq_dqb.dqb_bsoftlimit)
1391
		return QUOTA_NL_BSOFTBELOW;
1392 1393
	if (dquot->dq_dqb.dqb_curspace >= dquot->dq_dqb.dqb_bhardlimit &&
	    dquot->dq_dqb.dqb_curspace - space < dquot->dq_dqb.dqb_bhardlimit)
1394 1395 1396
		return QUOTA_NL_BHARDBELOW;
	return QUOTA_NL_NOWARN;
}
1397

1398 1399 1400 1401 1402 1403 1404 1405 1406
static int dquot_active(const struct inode *inode)
{
	struct super_block *sb = inode->i_sb;

	if (IS_NOQUOTA(inode))
		return 0;
	return sb_any_quota_loaded(sb) & ~sb_any_quota_suspended(sb);
}

L
Linus Torvalds 已提交
1407
/*
1408 1409 1410 1411
 * Initialize quota pointers in inode
 *
 * It is better to call this function outside of any transaction as it
 * might need a lot of space in journal for dquot structure allocation.
L
Linus Torvalds 已提交
1412
 */
1413
static int __dquot_initialize(struct inode *inode, int type)
L
Linus Torvalds 已提交
1414
{
1415
	int cnt, init_needed = 0;
1416
	struct dquot **dquots, *got[MAXQUOTAS] = {};
J
Jan Kara 已提交
1417
	struct super_block *sb = inode->i_sb;
1418
	qsize_t rsv;
1419
	int ret = 0;
L
Linus Torvalds 已提交
1420

1421
	if (!dquot_active(inode))
1422
		return 0;
J
Jan Kara 已提交
1423

1424 1425
	dquots = i_dquot(inode);

J
Jan Kara 已提交
1426 1427
	/* First get references to structures we might need. */
	for (cnt = 0; cnt < MAXQUOTAS; cnt++) {
1428
		struct kqid qid;
1429 1430
		kprojid_t projid;
		int rc;
1431
		struct dquot *dquot;
1432

J
Jan Kara 已提交
1433 1434
		if (type != -1 && cnt != type)
			continue;
1435 1436 1437 1438 1439
		/*
		 * The i_dquot should have been initialized in most cases,
		 * we check it without locking here to avoid unnecessary
		 * dqget()/dqput() calls.
		 */
1440
		if (dquots[cnt])
1441
			continue;
1442 1443 1444 1445

		if (!sb_has_quota_active(sb, cnt))
			continue;

1446 1447
		init_needed = 1;

J
Jan Kara 已提交
1448 1449
		switch (cnt) {
		case USRQUOTA:
1450
			qid = make_kqid_uid(inode->i_uid);
J
Jan Kara 已提交
1451 1452
			break;
		case GRPQUOTA:
1453
			qid = make_kqid_gid(inode->i_gid);
J
Jan Kara 已提交
1454
			break;
1455 1456 1457 1458 1459 1460
		case PRJQUOTA:
			rc = inode->i_sb->dq_op->get_projid(inode, &projid);
			if (rc)
				continue;
			qid = make_kqid_projid(projid);
			break;
J
Jan Kara 已提交
1461
		}
1462 1463 1464 1465 1466 1467 1468 1469 1470 1471
		dquot = dqget(sb, qid);
		if (IS_ERR(dquot)) {
			/* We raced with somebody turning quotas off... */
			if (PTR_ERR(dquot) != -ESRCH) {
				ret = PTR_ERR(dquot);
				goto out_put;
			}
			dquot = NULL;
		}
		got[cnt] = dquot;
J
Jan Kara 已提交
1472 1473
	}

1474 1475
	/* All required i_dquot has been initialized */
	if (!init_needed)
1476
		return 0;
1477

N
Niu Yawei 已提交
1478
	spin_lock(&dq_data_lock);
L
Linus Torvalds 已提交
1479
	if (IS_NOQUOTA(inode))
1480
		goto out_lock;
L
Linus Torvalds 已提交
1481 1482 1483
	for (cnt = 0; cnt < MAXQUOTAS; cnt++) {
		if (type != -1 && cnt != type)
			continue;
J
Jan Kara 已提交
1484 1485 1486
		/* Avoid races with quotaoff() */
		if (!sb_has_quota_active(sb, cnt))
			continue;
1487 1488 1489
		/* We could race with quotaon or dqget() could have failed */
		if (!got[cnt])
			continue;
1490 1491
		if (!dquots[cnt]) {
			dquots[cnt] = got[cnt];
J
Jan Kara 已提交
1492
			got[cnt] = NULL;
1493 1494 1495 1496 1497
			/*
			 * Make quota reservation system happy if someone
			 * did a write before quota was turned on
			 */
			rsv = inode_get_rsv_space(inode);
N
Niu Yawei 已提交
1498
			if (unlikely(rsv))
1499
				dquot_resv_space(dquots[cnt], rsv);
L
Linus Torvalds 已提交
1500 1501
		}
	}
1502
out_lock:
N
Niu Yawei 已提交
1503
	spin_unlock(&dq_data_lock);
1504
out_put:
J
Jan Kara 已提交
1505
	/* Drop unused references */
1506
	dqput_all(got);
1507 1508

	return ret;
1509 1510
}

1511
int dquot_initialize(struct inode *inode)
1512
{
1513
	return __dquot_initialize(inode, -1);
L
Linus Torvalds 已提交
1514
}
1515
EXPORT_SYMBOL(dquot_initialize);
L
Linus Torvalds 已提交
1516 1517

/*
N
Niu Yawei 已提交
1518 1519 1520 1521 1522 1523
 * Release all quotas referenced by inode.
 *
 * This function only be called on inode free or converting
 * a file to quota file, no other users for the i_dquot in
 * both cases, so we needn't call synchronize_srcu() after
 * clearing i_dquot.
L
Linus Torvalds 已提交
1524
 */
1525
static void __dquot_drop(struct inode *inode)
L
Linus Torvalds 已提交
1526 1527
{
	int cnt;
1528
	struct dquot **dquots = i_dquot(inode);
J
Jan Kara 已提交
1529
	struct dquot *put[MAXQUOTAS];
L
Linus Torvalds 已提交
1530

N
Niu Yawei 已提交
1531
	spin_lock(&dq_data_lock);
L
Linus Torvalds 已提交
1532
	for (cnt = 0; cnt < MAXQUOTAS; cnt++) {
1533 1534
		put[cnt] = dquots[cnt];
		dquots[cnt] = NULL;
L
Linus Torvalds 已提交
1535
	}
N
Niu Yawei 已提交
1536
	spin_unlock(&dq_data_lock);
1537
	dqput_all(put);
L
Linus Torvalds 已提交
1538 1539
}

1540 1541
void dquot_drop(struct inode *inode)
{
1542
	struct dquot * const *dquots;
1543 1544 1545 1546 1547 1548 1549 1550 1551 1552 1553 1554
	int cnt;

	if (IS_NOQUOTA(inode))
		return;

	/*
	 * Test before calling to rule out calls from proc and such
	 * where we are not allowed to block. Note that this is
	 * actually reliable test even without the lock - the caller
	 * must assure that nobody can come after the DQUOT_DROP and
	 * add quota pointers back anyway.
	 */
1555
	dquots = i_dquot(inode);
1556
	for (cnt = 0; cnt < MAXQUOTAS; cnt++) {
1557
		if (dquots[cnt])
1558 1559 1560 1561 1562 1563 1564
			break;
	}

	if (cnt < MAXQUOTAS)
		__dquot_drop(inode);
}
EXPORT_SYMBOL(dquot_drop);
1565

1566 1567 1568 1569 1570 1571 1572 1573 1574 1575 1576 1577
/*
 * inode_reserved_space is managed internally by quota, and protected by
 * i_lock similar to i_blocks+i_bytes.
 */
static qsize_t *inode_reserved_space(struct inode * inode)
{
	/* Filesystem must explicitly define it's own method in order to use
	 * quota reservation interface */
	BUG_ON(!inode->i_sb->dq_op->get_reserved_space);
	return inode->i_sb->dq_op->get_reserved_space(inode);
}

1578
void inode_add_rsv_space(struct inode *inode, qsize_t number)
1579 1580 1581 1582 1583
{
	spin_lock(&inode->i_lock);
	*inode_reserved_space(inode) += number;
	spin_unlock(&inode->i_lock);
}
1584
EXPORT_SYMBOL(inode_add_rsv_space);
1585

1586
void inode_claim_rsv_space(struct inode *inode, qsize_t number)
1587 1588 1589 1590 1591 1592
{
	spin_lock(&inode->i_lock);
	*inode_reserved_space(inode) -= number;
	__inode_add_bytes(inode, number);
	spin_unlock(&inode->i_lock);
}
1593
EXPORT_SYMBOL(inode_claim_rsv_space);
1594

1595 1596 1597 1598 1599 1600 1601 1602 1603
void inode_reclaim_rsv_space(struct inode *inode, qsize_t number)
{
	spin_lock(&inode->i_lock);
	*inode_reserved_space(inode) += number;
	__inode_sub_bytes(inode, number);
	spin_unlock(&inode->i_lock);
}
EXPORT_SYMBOL(inode_reclaim_rsv_space);

1604
void inode_sub_rsv_space(struct inode *inode, qsize_t number)
1605 1606 1607 1608 1609
{
	spin_lock(&inode->i_lock);
	*inode_reserved_space(inode) -= number;
	spin_unlock(&inode->i_lock);
}
1610
EXPORT_SYMBOL(inode_sub_rsv_space);
1611 1612 1613 1614

static qsize_t inode_get_rsv_space(struct inode *inode)
{
	qsize_t ret;
1615 1616 1617

	if (!inode->i_sb->dq_op->get_reserved_space)
		return 0;
1618 1619 1620 1621 1622 1623 1624 1625 1626 1627 1628 1629 1630 1631 1632 1633 1634 1635 1636 1637 1638 1639 1640
	spin_lock(&inode->i_lock);
	ret = *inode_reserved_space(inode);
	spin_unlock(&inode->i_lock);
	return ret;
}

static void inode_incr_space(struct inode *inode, qsize_t number,
				int reserve)
{
	if (reserve)
		inode_add_rsv_space(inode, number);
	else
		inode_add_bytes(inode, number);
}

static void inode_decr_space(struct inode *inode, qsize_t number, int reserve)
{
	if (reserve)
		inode_sub_rsv_space(inode, number);
	else
		inode_sub_bytes(inode, number);
}

L
Linus Torvalds 已提交
1641
/*
1642 1643 1644 1645 1646 1647 1648
 * This functions updates i_blocks+i_bytes fields and quota information
 * (together with appropriate checks).
 *
 * NOTE: We absolutely rely on the fact that caller dirties the inode
 * (usually helpers in quotaops.h care about this) and holds a handle for
 * the current transaction so that dquot write and inode write go into the
 * same transaction.
L
Linus Torvalds 已提交
1649 1650 1651 1652 1653
 */

/*
 * This operation can block, but only after everything is updated
 */
1654
int __dquot_alloc_space(struct inode *inode, qsize_t number, int flags)
L
Linus Torvalds 已提交
1655
{
N
Niu Yawei 已提交
1656
	int cnt, ret = 0, index;
1657
	struct dquot_warn warn[MAXQUOTAS];
1658
	int reserve = flags & DQUOT_SPACE_RESERVE;
1659
	struct dquot **dquots;
L
Linus Torvalds 已提交
1660

1661
	if (!dquot_active(inode)) {
1662 1663 1664 1665
		inode_incr_space(inode, number, reserve);
		goto out;
	}

L
Linus Torvalds 已提交
1666
	for (cnt = 0; cnt < MAXQUOTAS; cnt++)
1667
		warn[cnt].w_type = QUOTA_NL_NOWARN;
L
Linus Torvalds 已提交
1668

1669
	dquots = i_dquot(inode);
N
Niu Yawei 已提交
1670
	index = srcu_read_lock(&dquot_srcu);
L
Linus Torvalds 已提交
1671 1672
	spin_lock(&dq_data_lock);
	for (cnt = 0; cnt < MAXQUOTAS; cnt++) {
1673
		if (!dquots[cnt])
L
Linus Torvalds 已提交
1674
			continue;
1675 1676 1677
		ret = check_bdq(dquots[cnt], number,
				!(flags & DQUOT_SPACE_WARN), &warn[cnt]);
		if (ret && !(flags & DQUOT_SPACE_NOFAIL)) {
1678 1679
			spin_unlock(&dq_data_lock);
			goto out_flush_warn;
1680
		}
L
Linus Torvalds 已提交
1681 1682
	}
	for (cnt = 0; cnt < MAXQUOTAS; cnt++) {
1683
		if (!dquots[cnt])
L
Linus Torvalds 已提交
1684
			continue;
1685
		if (reserve)
1686
			dquot_resv_space(dquots[cnt], number);
1687
		else
1688
			dquot_incr_space(dquots[cnt], number);
L
Linus Torvalds 已提交
1689
	}
1690
	inode_incr_space(inode, number, reserve);
L
Linus Torvalds 已提交
1691
	spin_unlock(&dq_data_lock);
1692

1693 1694
	if (reserve)
		goto out_flush_warn;
1695
	mark_all_dquot_dirty(dquots);
1696
out_flush_warn:
N
Niu Yawei 已提交
1697
	srcu_read_unlock(&dquot_srcu, index);
1698
	flush_warnings(warn);
1699 1700 1701
out:
	return ret;
}
1702
EXPORT_SYMBOL(__dquot_alloc_space);
L
Linus Torvalds 已提交
1703 1704 1705 1706

/*
 * This operation can block, but only after everything is updated
 */
1707
int dquot_alloc_inode(struct inode *inode)
L
Linus Torvalds 已提交
1708
{
N
Niu Yawei 已提交
1709
	int cnt, ret = 0, index;
1710
	struct dquot_warn warn[MAXQUOTAS];
1711
	struct dquot * const *dquots;
L
Linus Torvalds 已提交
1712

1713
	if (!dquot_active(inode))
1714
		return 0;
L
Linus Torvalds 已提交
1715
	for (cnt = 0; cnt < MAXQUOTAS; cnt++)
1716
		warn[cnt].w_type = QUOTA_NL_NOWARN;
N
Niu Yawei 已提交
1717

1718
	dquots = i_dquot(inode);
N
Niu Yawei 已提交
1719
	index = srcu_read_lock(&dquot_srcu);
L
Linus Torvalds 已提交
1720 1721
	spin_lock(&dq_data_lock);
	for (cnt = 0; cnt < MAXQUOTAS; cnt++) {
1722
		if (!dquots[cnt])
L
Linus Torvalds 已提交
1723
			continue;
1724
		ret = check_idq(dquots[cnt], 1, &warn[cnt]);
1725
		if (ret)
L
Linus Torvalds 已提交
1726 1727 1728 1729
			goto warn_put_all;
	}

	for (cnt = 0; cnt < MAXQUOTAS; cnt++) {
1730
		if (!dquots[cnt])
L
Linus Torvalds 已提交
1731
			continue;
1732
		dquot_incr_inodes(dquots[cnt], 1);
L
Linus Torvalds 已提交
1733
	}
1734

L
Linus Torvalds 已提交
1735 1736
warn_put_all:
	spin_unlock(&dq_data_lock);
1737
	if (ret == 0)
1738
		mark_all_dquot_dirty(dquots);
N
Niu Yawei 已提交
1739
	srcu_read_unlock(&dquot_srcu, index);
1740
	flush_warnings(warn);
L
Linus Torvalds 已提交
1741 1742
	return ret;
}
1743
EXPORT_SYMBOL(dquot_alloc_inode);
L
Linus Torvalds 已提交
1744

1745 1746 1747 1748
/*
 * Convert in-memory reserved quotas to real consumed quotas
 */
int dquot_claim_space_nodirty(struct inode *inode, qsize_t number)
1749
{
1750
	struct dquot **dquots;
N
Niu Yawei 已提交
1751
	int cnt, index;
1752

1753
	if (!dquot_active(inode)) {
1754
		inode_claim_rsv_space(inode, number);
1755
		return 0;
1756 1757
	}

1758
	dquots = i_dquot(inode);
N
Niu Yawei 已提交
1759
	index = srcu_read_lock(&dquot_srcu);
1760 1761 1762
	spin_lock(&dq_data_lock);
	/* Claim reserved quotas to allocated quotas */
	for (cnt = 0; cnt < MAXQUOTAS; cnt++) {
1763 1764
		if (dquots[cnt])
			dquot_claim_reserved_space(dquots[cnt], number);
1765 1766
	}
	/* Update inode bytes */
1767
	inode_claim_rsv_space(inode, number);
1768
	spin_unlock(&dq_data_lock);
1769
	mark_all_dquot_dirty(dquots);
N
Niu Yawei 已提交
1770
	srcu_read_unlock(&dquot_srcu, index);
1771
	return 0;
1772
}
1773
EXPORT_SYMBOL(dquot_claim_space_nodirty);
1774

1775 1776 1777 1778 1779
/*
 * Convert allocated space back to in-memory reserved quotas
 */
void dquot_reclaim_space_nodirty(struct inode *inode, qsize_t number)
{
1780
	struct dquot **dquots;
N
Niu Yawei 已提交
1781
	int cnt, index;
1782 1783 1784 1785 1786 1787

	if (!dquot_active(inode)) {
		inode_reclaim_rsv_space(inode, number);
		return;
	}

1788
	dquots = i_dquot(inode);
N
Niu Yawei 已提交
1789
	index = srcu_read_lock(&dquot_srcu);
1790 1791 1792
	spin_lock(&dq_data_lock);
	/* Claim reserved quotas to allocated quotas */
	for (cnt = 0; cnt < MAXQUOTAS; cnt++) {
1793 1794
		if (dquots[cnt])
			dquot_reclaim_reserved_space(dquots[cnt], number);
1795 1796 1797 1798
	}
	/* Update inode bytes */
	inode_reclaim_rsv_space(inode, number);
	spin_unlock(&dq_data_lock);
1799
	mark_all_dquot_dirty(dquots);
N
Niu Yawei 已提交
1800
	srcu_read_unlock(&dquot_srcu, index);
1801 1802 1803 1804
	return;
}
EXPORT_SYMBOL(dquot_reclaim_space_nodirty);

L
Linus Torvalds 已提交
1805 1806 1807
/*
 * This operation can block, but only after everything is updated
 */
1808
void __dquot_free_space(struct inode *inode, qsize_t number, int flags)
L
Linus Torvalds 已提交
1809 1810
{
	unsigned int cnt;
1811
	struct dquot_warn warn[MAXQUOTAS];
1812
	struct dquot **dquots;
N
Niu Yawei 已提交
1813
	int reserve = flags & DQUOT_SPACE_RESERVE, index;
L
Linus Torvalds 已提交
1814

1815
	if (!dquot_active(inode)) {
1816
		inode_decr_space(inode, number, reserve);
1817
		return;
L
Linus Torvalds 已提交
1818
	}
1819

1820
	dquots = i_dquot(inode);
N
Niu Yawei 已提交
1821
	index = srcu_read_lock(&dquot_srcu);
L
Linus Torvalds 已提交
1822 1823
	spin_lock(&dq_data_lock);
	for (cnt = 0; cnt < MAXQUOTAS; cnt++) {
1824 1825 1826 1827
		int wtype;

		warn[cnt].w_type = QUOTA_NL_NOWARN;
		if (!dquots[cnt])
L
Linus Torvalds 已提交
1828
			continue;
1829 1830 1831
		wtype = info_bdq_free(dquots[cnt], number);
		if (wtype != QUOTA_NL_NOWARN)
			prepare_warning(&warn[cnt], dquots[cnt], wtype);
1832
		if (reserve)
1833
			dquot_free_reserved_space(dquots[cnt], number);
1834
		else
1835
			dquot_decr_space(dquots[cnt], number);
L
Linus Torvalds 已提交
1836
	}
1837
	inode_decr_space(inode, number, reserve);
L
Linus Torvalds 已提交
1838
	spin_unlock(&dq_data_lock);
1839 1840 1841

	if (reserve)
		goto out_unlock;
1842
	mark_all_dquot_dirty(dquots);
1843
out_unlock:
N
Niu Yawei 已提交
1844
	srcu_read_unlock(&dquot_srcu, index);
1845
	flush_warnings(warn);
1846
}
1847
EXPORT_SYMBOL(__dquot_free_space);
1848

L
Linus Torvalds 已提交
1849 1850 1851
/*
 * This operation can block, but only after everything is updated
 */
1852
void dquot_free_inode(struct inode *inode)
L
Linus Torvalds 已提交
1853 1854
{
	unsigned int cnt;
1855
	struct dquot_warn warn[MAXQUOTAS];
1856
	struct dquot * const *dquots;
N
Niu Yawei 已提交
1857
	int index;
L
Linus Torvalds 已提交
1858

1859
	if (!dquot_active(inode))
1860
		return;
1861

1862
	dquots = i_dquot(inode);
N
Niu Yawei 已提交
1863
	index = srcu_read_lock(&dquot_srcu);
L
Linus Torvalds 已提交
1864 1865
	spin_lock(&dq_data_lock);
	for (cnt = 0; cnt < MAXQUOTAS; cnt++) {
1866 1867 1868 1869
		int wtype;

		warn[cnt].w_type = QUOTA_NL_NOWARN;
		if (!dquots[cnt])
L
Linus Torvalds 已提交
1870
			continue;
1871 1872 1873 1874
		wtype = info_idq_free(dquots[cnt], 1);
		if (wtype != QUOTA_NL_NOWARN)
			prepare_warning(&warn[cnt], dquots[cnt], wtype);
		dquot_decr_inodes(dquots[cnt], 1);
L
Linus Torvalds 已提交
1875 1876
	}
	spin_unlock(&dq_data_lock);
1877
	mark_all_dquot_dirty(dquots);
N
Niu Yawei 已提交
1878
	srcu_read_unlock(&dquot_srcu, index);
1879
	flush_warnings(warn);
L
Linus Torvalds 已提交
1880
}
1881
EXPORT_SYMBOL(dquot_free_inode);
L
Linus Torvalds 已提交
1882 1883 1884

/*
 * Transfer the number of inode and blocks from one diskquota to an other.
1885 1886 1887
 * On success, dquot references in transfer_to are consumed and references
 * to original dquots that need to be released are placed there. On failure,
 * references are kept untouched.
L
Linus Torvalds 已提交
1888 1889 1890
 *
 * This operation can block, but only after everything is updated
 * A transaction must be started when entering this function.
1891
 *
N
Niu Yawei 已提交
1892 1893
 * We are holding reference on transfer_from & transfer_to, no need to
 * protect them by srcu_read_lock().
L
Linus Torvalds 已提交
1894
 */
1895
int __dquot_transfer(struct inode *inode, struct dquot **transfer_to)
L
Linus Torvalds 已提交
1896
{
1897 1898
	qsize_t space, cur_space;
	qsize_t rsv_space = 0;
1899
	struct dquot *transfer_from[MAXQUOTAS] = {};
1900
	int cnt, ret = 0;
1901
	char is_valid[MAXQUOTAS] = {};
1902 1903 1904
	struct dquot_warn warn_to[MAXQUOTAS];
	struct dquot_warn warn_from_inodes[MAXQUOTAS];
	struct dquot_warn warn_from_space[MAXQUOTAS];
L
Linus Torvalds 已提交
1905 1906

	if (IS_NOQUOTA(inode))
1907
		return 0;
J
Jan Kara 已提交
1908
	/* Initialize the arrays */
1909 1910 1911 1912 1913
	for (cnt = 0; cnt < MAXQUOTAS; cnt++) {
		warn_to[cnt].w_type = QUOTA_NL_NOWARN;
		warn_from_inodes[cnt].w_type = QUOTA_NL_NOWARN;
		warn_from_space[cnt].w_type = QUOTA_NL_NOWARN;
	}
N
Niu Yawei 已提交
1914 1915

	spin_lock(&dq_data_lock);
J
Jan Kara 已提交
1916
	if (IS_NOQUOTA(inode)) {	/* File without quota accounting? */
N
Niu Yawei 已提交
1917
		spin_unlock(&dq_data_lock);
1918
		return 0;
J
Jan Kara 已提交
1919
	}
1920
	cur_space = inode_get_bytes(inode);
1921
	rsv_space = inode_get_rsv_space(inode);
1922
	space = cur_space + rsv_space;
L
Linus Torvalds 已提交
1923 1924
	/* Build the transfer_from list and check the limits */
	for (cnt = 0; cnt < MAXQUOTAS; cnt++) {
1925 1926 1927
		/*
		 * Skip changes for same uid or gid or for turned off quota-type.
		 */
J
Jan Kara 已提交
1928
		if (!transfer_to[cnt])
L
Linus Torvalds 已提交
1929
			continue;
1930 1931 1932 1933
		/* Avoid races with quotaoff() */
		if (!sb_has_quota_active(inode->i_sb, cnt))
			continue;
		is_valid[cnt] = 1;
1934
		transfer_from[cnt] = i_dquot(inode)[cnt];
1935
		ret = check_idq(transfer_to[cnt], 1, &warn_to[cnt]);
1936 1937
		if (ret)
			goto over_quota;
1938
		ret = check_bdq(transfer_to[cnt], space, 0, &warn_to[cnt]);
1939
		if (ret)
J
Jan Kara 已提交
1940
			goto over_quota;
L
Linus Torvalds 已提交
1941 1942 1943 1944 1945 1946
	}

	/*
	 * Finally perform the needed transfer from transfer_from to transfer_to
	 */
	for (cnt = 0; cnt < MAXQUOTAS; cnt++) {
1947
		if (!is_valid[cnt])
L
Linus Torvalds 已提交
1948 1949 1950
			continue;
		/* Due to IO error we might not have transfer_from[] structure */
		if (transfer_from[cnt]) {
1951 1952 1953 1954 1955 1956 1957 1958 1959
			int wtype;
			wtype = info_idq_free(transfer_from[cnt], 1);
			if (wtype != QUOTA_NL_NOWARN)
				prepare_warning(&warn_from_inodes[cnt],
						transfer_from[cnt], wtype);
			wtype = info_bdq_free(transfer_from[cnt], space);
			if (wtype != QUOTA_NL_NOWARN)
				prepare_warning(&warn_from_space[cnt],
						transfer_from[cnt], wtype);
L
Linus Torvalds 已提交
1960
			dquot_decr_inodes(transfer_from[cnt], 1);
1961 1962 1963
			dquot_decr_space(transfer_from[cnt], cur_space);
			dquot_free_reserved_space(transfer_from[cnt],
						  rsv_space);
L
Linus Torvalds 已提交
1964 1965 1966
		}

		dquot_incr_inodes(transfer_to[cnt], 1);
1967 1968
		dquot_incr_space(transfer_to[cnt], cur_space);
		dquot_resv_space(transfer_to[cnt], rsv_space);
L
Linus Torvalds 已提交
1969

1970
		i_dquot(inode)[cnt] = transfer_to[cnt];
L
Linus Torvalds 已提交
1971 1972
	}
	spin_unlock(&dq_data_lock);
J
Jan Kara 已提交
1973

1974 1975
	mark_all_dquot_dirty(transfer_from);
	mark_all_dquot_dirty(transfer_to);
1976 1977 1978
	flush_warnings(warn_to);
	flush_warnings(warn_from_inodes);
	flush_warnings(warn_from_space);
1979
	/* Pass back references to put */
1980
	for (cnt = 0; cnt < MAXQUOTAS; cnt++)
1981 1982
		if (is_valid[cnt])
			transfer_to[cnt] = transfer_from[cnt];
1983
	return 0;
J
Jan Kara 已提交
1984 1985
over_quota:
	spin_unlock(&dq_data_lock);
1986
	flush_warnings(warn_to);
1987
	return ret;
L
Linus Torvalds 已提交
1988
}
1989
EXPORT_SYMBOL(__dquot_transfer);
L
Linus Torvalds 已提交
1990

1991 1992 1993
/* Wrapper for transferring ownership of an inode for uid/gid only
 * Called from FSXXX_setattr()
 */
1994
int dquot_transfer(struct inode *inode, struct iattr *iattr)
1995
{
1996
	struct dquot *transfer_to[MAXQUOTAS] = {};
1997
	struct dquot *dquot;
1998 1999
	struct super_block *sb = inode->i_sb;
	int ret;
2000

2001
	if (!dquot_active(inode))
2002
		return 0;
2003

2004 2005 2006 2007 2008 2009 2010 2011 2012 2013 2014 2015 2016 2017 2018 2019 2020 2021 2022 2023 2024 2025
	if (iattr->ia_valid & ATTR_UID && !uid_eq(iattr->ia_uid, inode->i_uid)){
		dquot = dqget(sb, make_kqid_uid(iattr->ia_uid));
		if (IS_ERR(dquot)) {
			if (PTR_ERR(dquot) != -ESRCH) {
				ret = PTR_ERR(dquot);
				goto out_put;
			}
			dquot = NULL;
		}
		transfer_to[USRQUOTA] = dquot;
	}
	if (iattr->ia_valid & ATTR_GID && !gid_eq(iattr->ia_gid, inode->i_gid)){
		dquot = dqget(sb, make_kqid_gid(iattr->ia_gid));
		if (IS_ERR(dquot)) {
			if (PTR_ERR(dquot) != -ESRCH) {
				ret = PTR_ERR(dquot);
				goto out_put;
			}
			dquot = NULL;
		}
		transfer_to[GRPQUOTA] = dquot;
	}
2026
	ret = __dquot_transfer(inode, transfer_to);
2027
out_put:
2028 2029
	dqput_all(transfer_to);
	return ret;
2030
}
2031
EXPORT_SYMBOL(dquot_transfer);
2032

L
Linus Torvalds 已提交
2033 2034 2035 2036 2037 2038 2039 2040
/*
 * Write info of quota file to disk
 */
int dquot_commit_info(struct super_block *sb, int type)
{
	int ret;
	struct quota_info *dqopt = sb_dqopt(sb);

I
Ingo Molnar 已提交
2041
	mutex_lock(&dqopt->dqio_mutex);
L
Linus Torvalds 已提交
2042
	ret = dqopt->ops[type]->write_file_info(sb, type);
I
Ingo Molnar 已提交
2043
	mutex_unlock(&dqopt->dqio_mutex);
L
Linus Torvalds 已提交
2044 2045
	return ret;
}
2046
EXPORT_SYMBOL(dquot_commit_info);
L
Linus Torvalds 已提交
2047

2048 2049 2050 2051 2052
int dquot_get_next_id(struct super_block *sb, struct kqid *qid)
{
	struct quota_info *dqopt = sb_dqopt(sb);
	int err;

2053 2054 2055 2056 2057 2058 2059 2060 2061
	mutex_lock(&dqopt->dqonoff_mutex);
	if (!sb_has_quota_active(sb, qid->type)) {
		err = -ESRCH;
		goto out;
	}
	if (!dqopt->ops[qid->type]->get_next_id) {
		err = -ENOSYS;
		goto out;
	}
2062 2063 2064
	mutex_lock(&dqopt->dqio_mutex);
	err = dqopt->ops[qid->type]->get_next_id(sb, qid);
	mutex_unlock(&dqopt->dqio_mutex);
2065 2066
out:
	mutex_unlock(&dqopt->dqonoff_mutex);
2067 2068 2069 2070 2071

	return err;
}
EXPORT_SYMBOL(dquot_get_next_id);

L
Linus Torvalds 已提交
2072 2073 2074
/*
 * Definitions of diskquota operations.
 */
2075
const struct dquot_operations dquot_operations = {
L
Linus Torvalds 已提交
2076 2077 2078 2079
	.write_dquot	= dquot_commit,
	.acquire_dquot	= dquot_acquire,
	.release_dquot	= dquot_release,
	.mark_dirty	= dquot_mark_dquot_dirty,
2080 2081 2082
	.write_info	= dquot_commit_info,
	.alloc_dquot	= dquot_alloc,
	.destroy_dquot	= dquot_destroy,
2083
	.get_next_id	= dquot_get_next_id,
L
Linus Torvalds 已提交
2084
};
2085
EXPORT_SYMBOL(dquot_operations);
L
Linus Torvalds 已提交
2086

2087 2088 2089 2090 2091 2092 2093 2094 2095
/*
 * Generic helper for ->open on filesystems supporting disk quotas.
 */
int dquot_file_open(struct inode *inode, struct file *file)
{
	int error;

	error = generic_file_open(inode, file);
	if (!error && (file->f_mode & FMODE_WRITE))
2096
		dquot_initialize(inode);
2097 2098 2099 2100
	return error;
}
EXPORT_SYMBOL(dquot_file_open);

L
Linus Torvalds 已提交
2101 2102 2103
/*
 * Turn quota off on a device. type == -1 ==> quotaoff for all types (umount)
 */
2104
int dquot_disable(struct super_block *sb, int type, unsigned int flags)
L
Linus Torvalds 已提交
2105
{
2106
	int cnt, ret = 0;
L
Linus Torvalds 已提交
2107 2108 2109
	struct quota_info *dqopt = sb_dqopt(sb);
	struct inode *toputinode[MAXQUOTAS];

2110 2111 2112 2113 2114 2115 2116
	/* Cannot turn off usage accounting without turning off limits, or
	 * suspend quotas and simultaneously turn quotas off. */
	if ((flags & DQUOT_USAGE_ENABLED && !(flags & DQUOT_LIMITS_ENABLED))
	    || (flags & DQUOT_SUSPENDED && flags & (DQUOT_LIMITS_ENABLED |
	    DQUOT_USAGE_ENABLED)))
		return -EINVAL;

L
Linus Torvalds 已提交
2117
	/* We need to serialize quota_off() for device */
I
Ingo Molnar 已提交
2118
	mutex_lock(&dqopt->dqonoff_mutex);
2119 2120 2121 2122 2123 2124

	/*
	 * Skip everything if there's nothing to do. We have to do this because
	 * sometimes we are called when fill_super() failed and calling
	 * sync_fs() in such cases does no good.
	 */
2125
	if (!sb_any_quota_loaded(sb)) {
2126 2127 2128
		mutex_unlock(&dqopt->dqonoff_mutex);
		return 0;
	}
L
Linus Torvalds 已提交
2129 2130 2131 2132
	for (cnt = 0; cnt < MAXQUOTAS; cnt++) {
		toputinode[cnt] = NULL;
		if (type != -1 && cnt != type)
			continue;
2133
		if (!sb_has_quota_loaded(sb, cnt))
2134
			continue;
2135 2136

		if (flags & DQUOT_SUSPENDED) {
J
Jan Kara 已提交
2137
			spin_lock(&dq_state_lock);
2138 2139
			dqopt->flags |=
				dquot_state_flag(DQUOT_SUSPENDED, cnt);
J
Jan Kara 已提交
2140
			spin_unlock(&dq_state_lock);
2141
		} else {
J
Jan Kara 已提交
2142
			spin_lock(&dq_state_lock);
2143 2144 2145 2146 2147 2148
			dqopt->flags &= ~dquot_state_flag(flags, cnt);
			/* Turning off suspended quotas? */
			if (!sb_has_quota_loaded(sb, cnt) &&
			    sb_has_quota_suspended(sb, cnt)) {
				dqopt->flags &=	~dquot_state_flag(
							DQUOT_SUSPENDED, cnt);
J
Jan Kara 已提交
2149
				spin_unlock(&dq_state_lock);
2150 2151 2152 2153
				iput(dqopt->files[cnt]);
				dqopt->files[cnt] = NULL;
				continue;
			}
J
Jan Kara 已提交
2154
			spin_unlock(&dq_state_lock);
2155
		}
2156 2157 2158

		/* We still have to keep quota loaded? */
		if (sb_has_quota_loaded(sb, cnt) && !(flags & DQUOT_SUSPENDED))
L
Linus Torvalds 已提交
2159 2160 2161 2162 2163 2164
			continue;

		/* Note: these are blocking operations */
		drop_dquot_ref(sb, cnt);
		invalidate_dquots(sb, cnt);
		/*
J
Jan Kara 已提交
2165 2166
		 * Now all dquots should be invalidated, all writes done so we
		 * should be only users of the info. No locks needed.
L
Linus Torvalds 已提交
2167 2168 2169 2170 2171 2172 2173 2174
		 */
		if (info_dirty(&dqopt->info[cnt]))
			sb->dq_op->write_info(sb, cnt);
		if (dqopt->ops[cnt]->free_file_info)
			dqopt->ops[cnt]->free_file_info(sb, cnt);
		put_quota_format(dqopt->info[cnt].dqi_format);

		toputinode[cnt] = dqopt->files[cnt];
2175
		if (!sb_has_quota_loaded(sb, cnt))
2176
			dqopt->files[cnt] = NULL;
L
Linus Torvalds 已提交
2177 2178 2179 2180 2181
		dqopt->info[cnt].dqi_flags = 0;
		dqopt->info[cnt].dqi_igrace = 0;
		dqopt->info[cnt].dqi_bgrace = 0;
		dqopt->ops[cnt] = NULL;
	}
I
Ingo Molnar 已提交
2182
	mutex_unlock(&dqopt->dqonoff_mutex);
2183 2184 2185 2186 2187

	/* Skip syncing and setting flags if quota files are hidden */
	if (dqopt->flags & DQUOT_QUOTA_SYS_FILE)
		goto put_inodes;

L
Linus Torvalds 已提交
2188
	/* Sync the superblock so that buffers with quota data are written to
2189
	 * disk (and so userspace sees correct data afterwards). */
L
Linus Torvalds 已提交
2190 2191 2192 2193 2194 2195 2196 2197 2198 2199
	if (sb->s_op->sync_fs)
		sb->s_op->sync_fs(sb, 1);
	sync_blockdev(sb->s_bdev);
	/* Now the quota files are just ordinary files and we can set the
	 * inode flags back. Moreover we discard the pagecache so that
	 * userspace sees the writes we did bypassing the pagecache. We
	 * must also discard the blockdev buffers so that we see the
	 * changes done by userspace on the next quotaon() */
	for (cnt = 0; cnt < MAXQUOTAS; cnt++)
		if (toputinode[cnt]) {
I
Ingo Molnar 已提交
2200
			mutex_lock(&dqopt->dqonoff_mutex);
L
Linus Torvalds 已提交
2201 2202
			/* If quota was reenabled in the meantime, we have
			 * nothing to do */
2203
			if (!sb_has_quota_loaded(sb, cnt)) {
A
Al Viro 已提交
2204
				inode_lock(toputinode[cnt]);
L
Linus Torvalds 已提交
2205 2206
				toputinode[cnt]->i_flags &= ~(S_IMMUTABLE |
				  S_NOATIME | S_NOQUOTA);
J
Jan Kara 已提交
2207 2208
				truncate_inode_pages(&toputinode[cnt]->i_data,
						     0);
A
Al Viro 已提交
2209
				inode_unlock(toputinode[cnt]);
2210
				mark_inode_dirty_sync(toputinode[cnt]);
L
Linus Torvalds 已提交
2211
			}
I
Ingo Molnar 已提交
2212
			mutex_unlock(&dqopt->dqonoff_mutex);
2213 2214 2215 2216 2217 2218
		}
	if (sb->s_bdev)
		invalidate_bdev(sb->s_bdev);
put_inodes:
	for (cnt = 0; cnt < MAXQUOTAS; cnt++)
		if (toputinode[cnt]) {
2219
			/* On remount RO, we keep the inode pointer so that we
2220 2221 2222 2223 2224 2225 2226
			 * can reenable quota on the subsequent remount RW. We
			 * have to check 'flags' variable and not use sb_has_
			 * function because another quotaon / quotaoff could
			 * change global state before we got here. We refuse
			 * to suspend quotas when there is pending delete on
			 * the quota file... */
			if (!(flags & DQUOT_SUSPENDED))
2227 2228 2229
				iput(toputinode[cnt]);
			else if (!toputinode[cnt]->i_nlink)
				ret = -EBUSY;
L
Linus Torvalds 已提交
2230
		}
2231
	return ret;
L
Linus Torvalds 已提交
2232
}
2233
EXPORT_SYMBOL(dquot_disable);
L
Linus Torvalds 已提交
2234

2235
int dquot_quota_off(struct super_block *sb, int type)
2236
{
2237 2238
	return dquot_disable(sb, type,
			     DQUOT_USAGE_ENABLED | DQUOT_LIMITS_ENABLED);
2239
}
2240
EXPORT_SYMBOL(dquot_quota_off);
2241

L
Linus Torvalds 已提交
2242 2243 2244 2245
/*
 *	Turn quotas on on a device
 */

2246 2247 2248 2249 2250 2251
/*
 * Helper function to turn quotas on when we already have the inode of
 * quota file and no quota information is loaded.
 */
static int vfs_load_quota_inode(struct inode *inode, int type, int format_id,
	unsigned int flags)
L
Linus Torvalds 已提交
2252 2253 2254 2255 2256 2257 2258 2259 2260 2261 2262 2263 2264 2265 2266 2267 2268
{
	struct quota_format_type *fmt = find_quota_format(format_id);
	struct super_block *sb = inode->i_sb;
	struct quota_info *dqopt = sb_dqopt(sb);
	int error;
	int oldflags = -1;

	if (!fmt)
		return -ESRCH;
	if (!S_ISREG(inode->i_mode)) {
		error = -EACCES;
		goto out_fmt;
	}
	if (IS_RDONLY(inode)) {
		error = -EROFS;
		goto out_fmt;
	}
2269 2270
	if (!sb->s_op->quota_write || !sb->s_op->quota_read ||
	    (type == PRJQUOTA && sb->dq_op->get_projid == NULL)) {
L
Linus Torvalds 已提交
2271 2272 2273
		error = -EINVAL;
		goto out_fmt;
	}
2274 2275 2276 2277 2278
	/* Usage always has to be set... */
	if (!(flags & DQUOT_USAGE_ENABLED)) {
		error = -EINVAL;
		goto out_fmt;
	}
L
Linus Torvalds 已提交
2279

2280
	if (!(dqopt->flags & DQUOT_QUOTA_SYS_FILE)) {
2281 2282 2283 2284 2285 2286 2287
		/* As we bypass the pagecache we must now flush all the
		 * dirty data and invalidate caches so that kernel sees
		 * changes from userspace. It is not enough to just flush
		 * the quota file since if blocksize < pagesize, invalidation
		 * of the cache could fail because of other unrelated dirty
		 * data */
		sync_filesystem(sb);
2288 2289
		invalidate_bdev(sb->s_bdev);
	}
I
Ingo Molnar 已提交
2290
	mutex_lock(&dqopt->dqonoff_mutex);
2291
	if (sb_has_quota_loaded(sb, type)) {
L
Linus Torvalds 已提交
2292 2293 2294
		error = -EBUSY;
		goto out_lock;
	}
2295 2296 2297 2298 2299

	if (!(dqopt->flags & DQUOT_QUOTA_SYS_FILE)) {
		/* We don't want quota and atime on quota files (deadlocks
		 * possible) Also nobody should write to the file - we use
		 * special IO operations which ignore the immutable bit. */
A
Al Viro 已提交
2300
		inode_lock(inode);
J
Jan Kara 已提交
2301 2302
		oldflags = inode->i_flags & (S_NOATIME | S_IMMUTABLE |
					     S_NOQUOTA);
2303
		inode->i_flags |= S_NOQUOTA | S_NOATIME | S_IMMUTABLE;
A
Al Viro 已提交
2304
		inode_unlock(inode);
J
Jan Kara 已提交
2305 2306 2307 2308
		/*
		 * When S_NOQUOTA is set, remove dquot references as no more
		 * references can be added
		 */
2309
		__dquot_drop(inode);
2310
	}
L
Linus Torvalds 已提交
2311 2312 2313 2314 2315 2316 2317 2318 2319 2320 2321

	error = -EIO;
	dqopt->files[type] = igrab(inode);
	if (!dqopt->files[type])
		goto out_lock;
	error = -EINVAL;
	if (!fmt->qf_ops->check_quota_file(sb, type))
		goto out_file_init;

	dqopt->ops[type] = fmt->qf_ops;
	dqopt->info[type].dqi_format = fmt;
2322
	dqopt->info[type].dqi_fmt_id = format_id;
L
Linus Torvalds 已提交
2323
	INIT_LIST_HEAD(&dqopt->info[type].dqi_dirty_list);
I
Ingo Molnar 已提交
2324
	mutex_lock(&dqopt->dqio_mutex);
J
Jan Kara 已提交
2325 2326
	error = dqopt->ops[type]->read_file_info(sb, type);
	if (error < 0) {
I
Ingo Molnar 已提交
2327
		mutex_unlock(&dqopt->dqio_mutex);
L
Linus Torvalds 已提交
2328 2329
		goto out_file_init;
	}
2330 2331
	if (dqopt->flags & DQUOT_QUOTA_SYS_FILE)
		dqopt->info[type].dqi_flags |= DQF_SYS_FILE;
I
Ingo Molnar 已提交
2332
	mutex_unlock(&dqopt->dqio_mutex);
J
Jan Kara 已提交
2333
	spin_lock(&dq_state_lock);
2334
	dqopt->flags |= dquot_state_flag(flags, type);
J
Jan Kara 已提交
2335
	spin_unlock(&dq_state_lock);
L
Linus Torvalds 已提交
2336 2337

	add_dquot_ref(sb, type);
I
Ingo Molnar 已提交
2338
	mutex_unlock(&dqopt->dqonoff_mutex);
L
Linus Torvalds 已提交
2339 2340 2341 2342 2343 2344 2345 2346

	return 0;

out_file_init:
	dqopt->files[type] = NULL;
	iput(inode);
out_lock:
	if (oldflags != -1) {
A
Al Viro 已提交
2347
		inode_lock(inode);
L
Linus Torvalds 已提交
2348 2349 2350 2351
		/* Set the flags back (in the case of accidental quotaon()
		 * on a wrong file we don't want to mess up the flags) */
		inode->i_flags &= ~(S_NOATIME | S_NOQUOTA | S_IMMUTABLE);
		inode->i_flags |= oldflags;
A
Al Viro 已提交
2352
		inode_unlock(inode);
L
Linus Torvalds 已提交
2353
	}
2354
	mutex_unlock(&dqopt->dqonoff_mutex);
L
Linus Torvalds 已提交
2355 2356 2357 2358 2359 2360
out_fmt:
	put_quota_format(fmt);

	return error; 
}

2361
/* Reenable quotas on remount RW */
2362
int dquot_resume(struct super_block *sb, int type)
2363 2364 2365
{
	struct quota_info *dqopt = sb_dqopt(sb);
	struct inode *inode;
2366
	int ret = 0, cnt;
2367
	unsigned int flags;
2368

2369 2370 2371 2372 2373 2374 2375 2376 2377 2378 2379 2380 2381 2382 2383 2384 2385
	for (cnt = 0; cnt < MAXQUOTAS; cnt++) {
		if (type != -1 && cnt != type)
			continue;

		mutex_lock(&dqopt->dqonoff_mutex);
		if (!sb_has_quota_suspended(sb, cnt)) {
			mutex_unlock(&dqopt->dqonoff_mutex);
			continue;
		}
		inode = dqopt->files[cnt];
		dqopt->files[cnt] = NULL;
		spin_lock(&dq_state_lock);
		flags = dqopt->flags & dquot_state_flag(DQUOT_USAGE_ENABLED |
							DQUOT_LIMITS_ENABLED,
							cnt);
		dqopt->flags &= ~dquot_state_flag(DQUOT_STATE_FLAGS, cnt);
		spin_unlock(&dq_state_lock);
2386 2387
		mutex_unlock(&dqopt->dqonoff_mutex);

2388 2389 2390 2391 2392
		flags = dquot_generic_flag(flags, cnt);
		ret = vfs_load_quota_inode(inode, cnt,
				dqopt->info[cnt].dqi_fmt_id, flags);
		iput(inode);
	}
2393 2394 2395

	return ret;
}
2396
EXPORT_SYMBOL(dquot_resume);
2397

2398 2399
int dquot_quota_on(struct super_block *sb, int type, int format_id,
		   struct path *path)
2400 2401 2402 2403 2404
{
	int error = security_quota_on(path->dentry);
	if (error)
		return error;
	/* Quota file not on the same filesystem? */
2405
	if (path->dentry->d_sb != sb)
2406 2407
		error = -EXDEV;
	else
2408
		error = vfs_load_quota_inode(d_inode(path->dentry), type,
2409 2410
					     format_id, DQUOT_USAGE_ENABLED |
					     DQUOT_LIMITS_ENABLED);
2411 2412
	return error;
}
2413
EXPORT_SYMBOL(dquot_quota_on);
L
Linus Torvalds 已提交
2414

2415 2416 2417 2418
/*
 * More powerful function for turning on quotas allowing setting
 * of individual quota flags
 */
2419 2420
int dquot_enable(struct inode *inode, int type, int format_id,
		 unsigned int flags)
2421 2422 2423 2424 2425 2426
{
	int ret = 0;
	struct super_block *sb = inode->i_sb;
	struct quota_info *dqopt = sb_dqopt(sb);

	/* Just unsuspend quotas? */
2427 2428
	BUG_ON(flags & DQUOT_SUSPENDED);

2429 2430 2431 2432 2433 2434 2435 2436 2437 2438 2439 2440 2441 2442 2443 2444 2445 2446 2447 2448
	if (!flags)
		return 0;
	/* Just updating flags needed? */
	if (sb_has_quota_loaded(sb, type)) {
		mutex_lock(&dqopt->dqonoff_mutex);
		/* Now do a reliable test... */
		if (!sb_has_quota_loaded(sb, type)) {
			mutex_unlock(&dqopt->dqonoff_mutex);
			goto load_quota;
		}
		if (flags & DQUOT_USAGE_ENABLED &&
		    sb_has_quota_usage_enabled(sb, type)) {
			ret = -EBUSY;
			goto out_lock;
		}
		if (flags & DQUOT_LIMITS_ENABLED &&
		    sb_has_quota_limits_enabled(sb, type)) {
			ret = -EBUSY;
			goto out_lock;
		}
J
Jan Kara 已提交
2449
		spin_lock(&dq_state_lock);
2450
		sb_dqopt(sb)->flags |= dquot_state_flag(flags, type);
J
Jan Kara 已提交
2451
		spin_unlock(&dq_state_lock);
2452 2453 2454 2455 2456 2457 2458 2459
out_lock:
		mutex_unlock(&dqopt->dqonoff_mutex);
		return ret;
	}

load_quota:
	return vfs_load_quota_inode(inode, type, format_id, flags);
}
2460
EXPORT_SYMBOL(dquot_enable);
2461

L
Linus Torvalds 已提交
2462 2463 2464 2465
/*
 * This function is used when filesystem needs to initialize quotas
 * during mount time.
 */
2466
int dquot_quota_on_mount(struct super_block *sb, char *qf_name,
2467
		int format_id, int type)
L
Linus Torvalds 已提交
2468
{
2469
	struct dentry *dentry;
L
Linus Torvalds 已提交
2470 2471
	int error;

A
Al Viro 已提交
2472
	dentry = lookup_one_len_unlocked(qf_name, sb->s_root, strlen(qf_name));
2473 2474 2475
	if (IS_ERR(dentry))
		return PTR_ERR(dentry);

2476
	if (d_really_is_negative(dentry)) {
J
Jan Kara 已提交
2477 2478 2479 2480
		error = -ENOENT;
		goto out;
	}

L
Linus Torvalds 已提交
2481
	error = security_quota_on(dentry);
2482
	if (!error)
2483
		error = vfs_load_quota_inode(d_inode(dentry), type, format_id,
2484
				DQUOT_USAGE_ENABLED | DQUOT_LIMITS_ENABLED);
2485

J
Jan Kara 已提交
2486
out:
2487 2488
	dput(dentry);
	return error;
L
Linus Torvalds 已提交
2489
}
2490
EXPORT_SYMBOL(dquot_quota_on_mount);
2491

2492 2493 2494 2495 2496 2497 2498 2499 2500 2501 2502 2503 2504 2505 2506 2507 2508 2509 2510 2511 2512 2513 2514 2515 2516 2517 2518 2519 2520 2521 2522 2523 2524 2525 2526 2527 2528 2529 2530 2531 2532 2533 2534 2535 2536 2537 2538 2539 2540 2541 2542 2543 2544 2545 2546 2547 2548 2549 2550 2551 2552 2553 2554 2555 2556 2557 2558 2559 2560 2561 2562 2563 2564 2565 2566 2567 2568 2569 2570 2571
static int dquot_quota_enable(struct super_block *sb, unsigned int flags)
{
	int ret;
	int type;
	struct quota_info *dqopt = sb_dqopt(sb);

	if (!(dqopt->flags & DQUOT_QUOTA_SYS_FILE))
		return -ENOSYS;
	/* Accounting cannot be turned on while fs is mounted */
	flags &= ~(FS_QUOTA_UDQ_ACCT | FS_QUOTA_GDQ_ACCT | FS_QUOTA_PDQ_ACCT);
	if (!flags)
		return -EINVAL;
	for (type = 0; type < MAXQUOTAS; type++) {
		if (!(flags & qtype_enforce_flag(type)))
			continue;
		/* Can't enforce without accounting */
		if (!sb_has_quota_usage_enabled(sb, type))
			return -EINVAL;
		ret = dquot_enable(dqopt->files[type], type,
				   dqopt->info[type].dqi_fmt_id,
				   DQUOT_LIMITS_ENABLED);
		if (ret < 0)
			goto out_err;
	}
	return 0;
out_err:
	/* Backout enforcement enablement we already did */
	for (type--; type >= 0; type--)  {
		if (flags & qtype_enforce_flag(type))
			dquot_disable(sb, type, DQUOT_LIMITS_ENABLED);
	}
	/* Error code translation for better compatibility with XFS */
	if (ret == -EBUSY)
		ret = -EEXIST;
	return ret;
}

static int dquot_quota_disable(struct super_block *sb, unsigned int flags)
{
	int ret;
	int type;
	struct quota_info *dqopt = sb_dqopt(sb);

	if (!(dqopt->flags & DQUOT_QUOTA_SYS_FILE))
		return -ENOSYS;
	/*
	 * We don't support turning off accounting via quotactl. In principle
	 * quota infrastructure can do this but filesystems don't expect
	 * userspace to be able to do it.
	 */
	if (flags &
		  (FS_QUOTA_UDQ_ACCT | FS_QUOTA_GDQ_ACCT | FS_QUOTA_PDQ_ACCT))
		return -EOPNOTSUPP;

	/* Filter out limits not enabled */
	for (type = 0; type < MAXQUOTAS; type++)
		if (!sb_has_quota_limits_enabled(sb, type))
			flags &= ~qtype_enforce_flag(type);
	/* Nothing left? */
	if (!flags)
		return -EEXIST;
	for (type = 0; type < MAXQUOTAS; type++) {
		if (flags & qtype_enforce_flag(type)) {
			ret = dquot_disable(sb, type, DQUOT_LIMITS_ENABLED);
			if (ret < 0)
				goto out_err;
		}
	}
	return 0;
out_err:
	/* Backout enforcement disabling we already did */
	for (type--; type >= 0; type--)  {
		if (flags & qtype_enforce_flag(type))
			dquot_enable(dqopt->files[type], type,
				     dqopt->info[type].dqi_fmt_id,
				     DQUOT_LIMITS_ENABLED);
	}
	return ret;
}

L
Linus Torvalds 已提交
2572
/* Generic routine for getting common part of quota structure */
2573
static void do_get_dqblk(struct dquot *dquot, struct qc_dqblk *di)
L
Linus Torvalds 已提交
2574 2575 2576
{
	struct mem_dqblk *dm = &dquot->dq_dqb;

C
Christoph Hellwig 已提交
2577
	memset(di, 0, sizeof(*di));
L
Linus Torvalds 已提交
2578
	spin_lock(&dq_data_lock);
2579 2580
	di->d_spc_hardlimit = dm->dqb_bhardlimit;
	di->d_spc_softlimit = dm->dqb_bsoftlimit;
C
Christoph Hellwig 已提交
2581 2582
	di->d_ino_hardlimit = dm->dqb_ihardlimit;
	di->d_ino_softlimit = dm->dqb_isoftlimit;
2583 2584 2585 2586
	di->d_space = dm->dqb_curspace + dm->dqb_rsvspace;
	di->d_ino_count = dm->dqb_curinodes;
	di->d_spc_timer = dm->dqb_btime;
	di->d_ino_timer = dm->dqb_itime;
L
Linus Torvalds 已提交
2587 2588 2589
	spin_unlock(&dq_data_lock);
}

E
Eric W. Biederman 已提交
2590
int dquot_get_dqblk(struct super_block *sb, struct kqid qid,
2591
		    struct qc_dqblk *di)
L
Linus Torvalds 已提交
2592 2593 2594
{
	struct dquot *dquot;

2595
	dquot = dqget(sb, qid);
2596 2597
	if (IS_ERR(dquot))
		return PTR_ERR(dquot);
L
Linus Torvalds 已提交
2598 2599
	do_get_dqblk(dquot, di);
	dqput(dquot);
J
Jan Kara 已提交
2600

L
Linus Torvalds 已提交
2601 2602
	return 0;
}
2603
EXPORT_SYMBOL(dquot_get_dqblk);
L
Linus Torvalds 已提交
2604

2605 2606 2607 2608 2609 2610 2611 2612 2613 2614 2615 2616 2617 2618 2619 2620 2621 2622 2623 2624 2625
int dquot_get_next_dqblk(struct super_block *sb, struct kqid *qid,
			 struct qc_dqblk *di)
{
	struct dquot *dquot;
	int err;

	if (!sb->dq_op->get_next_id)
		return -ENOSYS;
	err = sb->dq_op->get_next_id(sb, qid);
	if (err < 0)
		return err;
	dquot = dqget(sb, *qid);
	if (IS_ERR(dquot))
		return PTR_ERR(dquot);
	do_get_dqblk(dquot, di);
	dqput(dquot);

	return 0;
}
EXPORT_SYMBOL(dquot_get_next_dqblk);

2626 2627 2628 2629
#define VFS_QC_MASK \
	(QC_SPACE | QC_SPC_SOFT | QC_SPC_HARD | \
	 QC_INO_COUNT | QC_INO_SOFT | QC_INO_HARD | \
	 QC_SPC_TIMER | QC_INO_TIMER)
C
Christoph Hellwig 已提交
2630

L
Linus Torvalds 已提交
2631
/* Generic routine for setting common part of quota structure */
2632
static int do_set_dqblk(struct dquot *dquot, struct qc_dqblk *di)
L
Linus Torvalds 已提交
2633 2634 2635
{
	struct mem_dqblk *dm = &dquot->dq_dqb;
	int check_blim = 0, check_ilim = 0;
2636
	struct mem_dqinfo *dqi = &sb_dqopt(dquot->dq_sb)->info[dquot->dq_id.type];
2637

2638
	if (di->d_fieldmask & ~VFS_QC_MASK)
C
Christoph Hellwig 已提交
2639 2640
		return -EINVAL;

2641
	if (((di->d_fieldmask & QC_SPC_SOFT) &&
2642
	     di->d_spc_softlimit > dqi->dqi_max_spc_limit) ||
2643
	    ((di->d_fieldmask & QC_SPC_HARD) &&
2644
	     di->d_spc_hardlimit > dqi->dqi_max_spc_limit) ||
2645
	    ((di->d_fieldmask & QC_INO_SOFT) &&
2646
	     (di->d_ino_softlimit > dqi->dqi_max_ino_limit)) ||
2647
	    ((di->d_fieldmask & QC_INO_HARD) &&
2648
	     (di->d_ino_hardlimit > dqi->dqi_max_ino_limit)))
2649
		return -ERANGE;
L
Linus Torvalds 已提交
2650 2651

	spin_lock(&dq_data_lock);
2652 2653
	if (di->d_fieldmask & QC_SPACE) {
		dm->dqb_curspace = di->d_space - dm->dqb_rsvspace;
L
Linus Torvalds 已提交
2654
		check_blim = 1;
2655
		set_bit(DQ_LASTSET_B + QIF_SPACE_B, &dquot->dq_flags);
L
Linus Torvalds 已提交
2656
	}
C
Christoph Hellwig 已提交
2657

2658 2659 2660 2661 2662
	if (di->d_fieldmask & QC_SPC_SOFT)
		dm->dqb_bsoftlimit = di->d_spc_softlimit;
	if (di->d_fieldmask & QC_SPC_HARD)
		dm->dqb_bhardlimit = di->d_spc_hardlimit;
	if (di->d_fieldmask & (QC_SPC_SOFT | QC_SPC_HARD)) {
L
Linus Torvalds 已提交
2663
		check_blim = 1;
2664
		set_bit(DQ_LASTSET_B + QIF_BLIMITS_B, &dquot->dq_flags);
L
Linus Torvalds 已提交
2665
	}
C
Christoph Hellwig 已提交
2666

2667 2668
	if (di->d_fieldmask & QC_INO_COUNT) {
		dm->dqb_curinodes = di->d_ino_count;
L
Linus Torvalds 已提交
2669
		check_ilim = 1;
2670
		set_bit(DQ_LASTSET_B + QIF_INODES_B, &dquot->dq_flags);
L
Linus Torvalds 已提交
2671
	}
C
Christoph Hellwig 已提交
2672

2673
	if (di->d_fieldmask & QC_INO_SOFT)
C
Christoph Hellwig 已提交
2674
		dm->dqb_isoftlimit = di->d_ino_softlimit;
2675
	if (di->d_fieldmask & QC_INO_HARD)
C
Christoph Hellwig 已提交
2676
		dm->dqb_ihardlimit = di->d_ino_hardlimit;
2677
	if (di->d_fieldmask & (QC_INO_SOFT | QC_INO_HARD)) {
L
Linus Torvalds 已提交
2678
		check_ilim = 1;
2679
		set_bit(DQ_LASTSET_B + QIF_ILIMITS_B, &dquot->dq_flags);
L
Linus Torvalds 已提交
2680
	}
C
Christoph Hellwig 已提交
2681

2682 2683
	if (di->d_fieldmask & QC_SPC_TIMER) {
		dm->dqb_btime = di->d_spc_timer;
2684
		check_blim = 1;
2685
		set_bit(DQ_LASTSET_B + QIF_BTIME_B, &dquot->dq_flags);
2686
	}
C
Christoph Hellwig 已提交
2687

2688 2689
	if (di->d_fieldmask & QC_INO_TIMER) {
		dm->dqb_itime = di->d_ino_timer;
2690
		check_ilim = 1;
2691
		set_bit(DQ_LASTSET_B + QIF_ITIME_B, &dquot->dq_flags);
2692
	}
L
Linus Torvalds 已提交
2693 2694

	if (check_blim) {
J
Jan Kara 已提交
2695 2696
		if (!dm->dqb_bsoftlimit ||
		    dm->dqb_curspace < dm->dqb_bsoftlimit) {
L
Linus Torvalds 已提交
2697 2698
			dm->dqb_btime = 0;
			clear_bit(DQ_BLKS_B, &dquot->dq_flags);
2699
		} else if (!(di->d_fieldmask & QC_SPC_TIMER))
J
Jan Kara 已提交
2700
			/* Set grace only if user hasn't provided his own... */
2701
			dm->dqb_btime = get_seconds() + dqi->dqi_bgrace;
L
Linus Torvalds 已提交
2702 2703
	}
	if (check_ilim) {
J
Jan Kara 已提交
2704 2705
		if (!dm->dqb_isoftlimit ||
		    dm->dqb_curinodes < dm->dqb_isoftlimit) {
L
Linus Torvalds 已提交
2706 2707
			dm->dqb_itime = 0;
			clear_bit(DQ_INODES_B, &dquot->dq_flags);
2708
		} else if (!(di->d_fieldmask & QC_INO_TIMER))
J
Jan Kara 已提交
2709
			/* Set grace only if user hasn't provided his own... */
2710
			dm->dqb_itime = get_seconds() + dqi->dqi_igrace;
L
Linus Torvalds 已提交
2711
	}
J
Jan Kara 已提交
2712 2713
	if (dm->dqb_bhardlimit || dm->dqb_bsoftlimit || dm->dqb_ihardlimit ||
	    dm->dqb_isoftlimit)
L
Linus Torvalds 已提交
2714 2715 2716 2717 2718
		clear_bit(DQ_FAKE_B, &dquot->dq_flags);
	else
		set_bit(DQ_FAKE_B, &dquot->dq_flags);
	spin_unlock(&dq_data_lock);
	mark_dquot_dirty(dquot);
2719 2720

	return 0;
L
Linus Torvalds 已提交
2721 2722
}

E
Eric W. Biederman 已提交
2723
int dquot_set_dqblk(struct super_block *sb, struct kqid qid,
2724
		  struct qc_dqblk *di)
L
Linus Torvalds 已提交
2725 2726
{
	struct dquot *dquot;
2727
	int rc;
L
Linus Torvalds 已提交
2728

2729
	dquot = dqget(sb, qid);
2730 2731
	if (IS_ERR(dquot)) {
		rc = PTR_ERR(dquot);
2732
		goto out;
L
Linus Torvalds 已提交
2733
	}
2734
	rc = do_set_dqblk(dquot, di);
L
Linus Torvalds 已提交
2735
	dqput(dquot);
2736
out:
2737
	return rc;
L
Linus Torvalds 已提交
2738
}
2739
EXPORT_SYMBOL(dquot_set_dqblk);
L
Linus Torvalds 已提交
2740 2741

/* Generic routine for getting common part of quota file information */
2742
int dquot_get_state(struct super_block *sb, struct qc_state *state)
L
Linus Torvalds 已提交
2743 2744
{
	struct mem_dqinfo *mi;
2745 2746 2747
	struct qc_type_state *tstate;
	struct quota_info *dqopt = sb_dqopt(sb);
	int type;
L
Linus Torvalds 已提交
2748
  
I
Ingo Molnar 已提交
2749
	mutex_lock(&sb_dqopt(sb)->dqonoff_mutex);
2750 2751 2752 2753 2754 2755 2756 2757 2758 2759 2760 2761 2762 2763 2764 2765 2766 2767 2768 2769
	memset(state, 0, sizeof(*state));
	for (type = 0; type < MAXQUOTAS; type++) {
		if (!sb_has_quota_active(sb, type))
			continue;
		tstate = state->s_state + type;
		mi = sb_dqopt(sb)->info + type;
		tstate->flags = QCI_ACCT_ENABLED;
		spin_lock(&dq_data_lock);
		if (mi->dqi_flags & DQF_SYS_FILE)
			tstate->flags |= QCI_SYSFILE;
		if (mi->dqi_flags & DQF_ROOT_SQUASH)
			tstate->flags |= QCI_ROOT_SQUASH;
		if (sb_has_quota_limits_enabled(sb, type))
			tstate->flags |= QCI_LIMITS_ENFORCED;
		tstate->spc_timelimit = mi->dqi_bgrace;
		tstate->ino_timelimit = mi->dqi_igrace;
		tstate->ino = dqopt->files[type]->i_ino;
		tstate->blocks = dqopt->files[type]->i_blocks;
		tstate->nextents = 1;	/* We don't know... */
		spin_unlock(&dq_data_lock);
L
Linus Torvalds 已提交
2770
	}
I
Ingo Molnar 已提交
2771
	mutex_unlock(&sb_dqopt(sb)->dqonoff_mutex);
L
Linus Torvalds 已提交
2772 2773
	return 0;
}
2774
EXPORT_SYMBOL(dquot_get_state);
L
Linus Torvalds 已提交
2775 2776

/* Generic routine for setting common part of quota file information */
2777
int dquot_set_dqinfo(struct super_block *sb, int type, struct qc_info *ii)
L
Linus Torvalds 已提交
2778 2779
{
	struct mem_dqinfo *mi;
2780
	int err = 0;
L
Linus Torvalds 已提交
2781

2782 2783 2784
	if ((ii->i_fieldmask & QC_WARNS_MASK) ||
	    (ii->i_fieldmask & QC_RT_SPC_TIMER))
		return -EINVAL;
I
Ingo Molnar 已提交
2785
	mutex_lock(&sb_dqopt(sb)->dqonoff_mutex);
2786 2787 2788
	if (!sb_has_quota_active(sb, type)) {
		err = -ESRCH;
		goto out;
L
Linus Torvalds 已提交
2789 2790
	}
	mi = sb_dqopt(sb)->info + type;
2791 2792
	if (ii->i_fieldmask & QC_FLAGS) {
		if ((ii->i_flags & QCI_ROOT_SQUASH &&
2793 2794 2795 2796 2797
		     mi->dqi_format->qf_fmt_id != QFMT_VFS_OLD)) {
			err = -EINVAL;
			goto out;
		}
	}
L
Linus Torvalds 已提交
2798
	spin_lock(&dq_data_lock);
2799 2800 2801 2802 2803 2804 2805 2806 2807 2808
	if (ii->i_fieldmask & QC_SPC_TIMER)
		mi->dqi_bgrace = ii->i_spc_timelimit;
	if (ii->i_fieldmask & QC_INO_TIMER)
		mi->dqi_igrace = ii->i_ino_timelimit;
	if (ii->i_fieldmask & QC_FLAGS) {
		if (ii->i_flags & QCI_ROOT_SQUASH)
			mi->dqi_flags |= DQF_ROOT_SQUASH;
		else
			mi->dqi_flags &= ~DQF_ROOT_SQUASH;
	}
L
Linus Torvalds 已提交
2809 2810 2811 2812
	spin_unlock(&dq_data_lock);
	mark_info_dirty(sb, type);
	/* Force write to disk */
	sb->dq_op->write_info(sb, type);
2813
out:
I
Ingo Molnar 已提交
2814
	mutex_unlock(&sb_dqopt(sb)->dqonoff_mutex);
2815
	return err;
L
Linus Torvalds 已提交
2816
}
2817
EXPORT_SYMBOL(dquot_set_dqinfo);
L
Linus Torvalds 已提交
2818

2819 2820 2821 2822
const struct quotactl_ops dquot_quotactl_ops = {
	.quota_on	= dquot_quota_on,
	.quota_off	= dquot_quota_off,
	.quota_sync	= dquot_quota_sync,
2823
	.get_state	= dquot_get_state,
2824 2825
	.set_info	= dquot_set_dqinfo,
	.get_dqblk	= dquot_get_dqblk,
2826
	.get_nextdqblk	= dquot_get_next_dqblk,
2827
	.set_dqblk	= dquot_set_dqblk
L
Linus Torvalds 已提交
2828
};
2829
EXPORT_SYMBOL(dquot_quotactl_ops);
2830

2831 2832 2833 2834
const struct quotactl_ops dquot_quotactl_sysfile_ops = {
	.quota_enable	= dquot_quota_enable,
	.quota_disable	= dquot_quota_disable,
	.quota_sync	= dquot_quota_sync,
2835
	.get_state	= dquot_get_state,
2836 2837
	.set_info	= dquot_set_dqinfo,
	.get_dqblk	= dquot_get_dqblk,
2838
	.get_nextdqblk	= dquot_get_next_dqblk,
2839 2840 2841 2842
	.set_dqblk	= dquot_set_dqblk
};
EXPORT_SYMBOL(dquot_quotactl_sysfile_ops);

2843 2844 2845 2846
static int do_proc_dqstats(struct ctl_table *table, int write,
		     void __user *buffer, size_t *lenp, loff_t *ppos)
{
	unsigned int type = (int *)table->data - dqstats.stat;
2847 2848 2849 2850

	/* Update global table */
	dqstats.stat[type] =
			percpu_counter_sum_positive(&dqstats.counter[type]);
2851 2852 2853
	return proc_dointvec(table, write, buffer, lenp, ppos);
}

2854
static struct ctl_table fs_dqstats_table[] = {
L
Linus Torvalds 已提交
2855 2856
	{
		.procname	= "lookups",
2857
		.data		= &dqstats.stat[DQST_LOOKUPS],
L
Linus Torvalds 已提交
2858 2859
		.maxlen		= sizeof(int),
		.mode		= 0444,
2860
		.proc_handler	= do_proc_dqstats,
L
Linus Torvalds 已提交
2861 2862 2863
	},
	{
		.procname	= "drops",
2864
		.data		= &dqstats.stat[DQST_DROPS],
L
Linus Torvalds 已提交
2865 2866
		.maxlen		= sizeof(int),
		.mode		= 0444,
2867
		.proc_handler	= do_proc_dqstats,
L
Linus Torvalds 已提交
2868 2869 2870
	},
	{
		.procname	= "reads",
2871
		.data		= &dqstats.stat[DQST_READS],
L
Linus Torvalds 已提交
2872 2873
		.maxlen		= sizeof(int),
		.mode		= 0444,
2874
		.proc_handler	= do_proc_dqstats,
L
Linus Torvalds 已提交
2875 2876 2877
	},
	{
		.procname	= "writes",
2878
		.data		= &dqstats.stat[DQST_WRITES],
L
Linus Torvalds 已提交
2879 2880
		.maxlen		= sizeof(int),
		.mode		= 0444,
2881
		.proc_handler	= do_proc_dqstats,
L
Linus Torvalds 已提交
2882 2883 2884
	},
	{
		.procname	= "cache_hits",
2885
		.data		= &dqstats.stat[DQST_CACHE_HITS],
L
Linus Torvalds 已提交
2886 2887
		.maxlen		= sizeof(int),
		.mode		= 0444,
2888
		.proc_handler	= do_proc_dqstats,
L
Linus Torvalds 已提交
2889 2890 2891
	},
	{
		.procname	= "allocated_dquots",
2892
		.data		= &dqstats.stat[DQST_ALLOC_DQUOTS],
L
Linus Torvalds 已提交
2893 2894
		.maxlen		= sizeof(int),
		.mode		= 0444,
2895
		.proc_handler	= do_proc_dqstats,
L
Linus Torvalds 已提交
2896 2897 2898
	},
	{
		.procname	= "free_dquots",
2899
		.data		= &dqstats.stat[DQST_FREE_DQUOTS],
L
Linus Torvalds 已提交
2900 2901
		.maxlen		= sizeof(int),
		.mode		= 0444,
2902
		.proc_handler	= do_proc_dqstats,
L
Linus Torvalds 已提交
2903 2904 2905
	},
	{
		.procname	= "syncs",
2906
		.data		= &dqstats.stat[DQST_SYNCS],
L
Linus Torvalds 已提交
2907 2908
		.maxlen		= sizeof(int),
		.mode		= 0444,
2909
		.proc_handler	= do_proc_dqstats,
L
Linus Torvalds 已提交
2910
	},
J
Jan Kara 已提交
2911
#ifdef CONFIG_PRINT_QUOTA_WARNING
L
Linus Torvalds 已提交
2912 2913 2914 2915 2916
	{
		.procname	= "warnings",
		.data		= &flag_print_warnings,
		.maxlen		= sizeof(int),
		.mode		= 0644,
2917
		.proc_handler	= proc_dointvec,
L
Linus Torvalds 已提交
2918
	},
J
Jan Kara 已提交
2919
#endif
2920
	{ },
L
Linus Torvalds 已提交
2921 2922
};

2923
static struct ctl_table fs_table[] = {
L
Linus Torvalds 已提交
2924 2925 2926 2927 2928
	{
		.procname	= "quota",
		.mode		= 0555,
		.child		= fs_dqstats_table,
	},
2929
	{ },
L
Linus Torvalds 已提交
2930 2931
};

2932
static struct ctl_table sys_table[] = {
L
Linus Torvalds 已提交
2933 2934 2935 2936 2937
	{
		.procname	= "fs",
		.mode		= 0555,
		.child		= fs_table,
	},
2938
	{ },
L
Linus Torvalds 已提交
2939 2940 2941 2942
};

static int __init dquot_init(void)
{
2943
	int i, ret;
L
Linus Torvalds 已提交
2944 2945 2946 2947
	unsigned long nr_hash, order;

	printk(KERN_NOTICE "VFS: Disk quotas %s\n", __DQUOT_VERSION__);

2948
	register_sysctl_table(sys_table);
L
Linus Torvalds 已提交
2949

2950
	dquot_cachep = kmem_cache_create("dquot",
L
Linus Torvalds 已提交
2951
			sizeof(struct dquot), sizeof(unsigned long) * 4,
2952 2953
			(SLAB_HWCACHE_ALIGN|SLAB_RECLAIM_ACCOUNT|
				SLAB_MEM_SPREAD|SLAB_PANIC),
2954
			NULL);
L
Linus Torvalds 已提交
2955 2956 2957 2958 2959 2960

	order = 0;
	dquot_hash = (struct hlist_head *)__get_free_pages(GFP_ATOMIC, order);
	if (!dquot_hash)
		panic("Cannot create dquot hash table");

2961
	for (i = 0; i < _DQST_DQSTAT_LAST; i++) {
2962
		ret = percpu_counter_init(&dqstats.counter[i], 0, GFP_KERNEL);
2963 2964 2965
		if (ret)
			panic("Cannot create dquot stat counters");
	}
2966

L
Linus Torvalds 已提交
2967 2968 2969 2970 2971 2972 2973 2974 2975 2976 2977 2978 2979
	/* Find power-of-two hlist_heads which can fit into allocation */
	nr_hash = (1UL << order) * PAGE_SIZE / sizeof(struct hlist_head);
	dq_hash_bits = 0;
	do {
		dq_hash_bits++;
	} while (nr_hash >> dq_hash_bits);
	dq_hash_bits--;

	nr_hash = 1UL << dq_hash_bits;
	dq_hash_mask = nr_hash - 1;
	for (i = 0; i < nr_hash; i++)
		INIT_HLIST_HEAD(dquot_hash + i);

A
Anton Blanchard 已提交
2980 2981
	pr_info("VFS: Dquot-cache hash table entries: %ld (order %ld,"
		" %ld bytes)\n", nr_hash, order, (PAGE_SIZE << order));
L
Linus Torvalds 已提交
2982

2983
	register_shrinker(&dqcache_shrinker);
L
Linus Torvalds 已提交
2984 2985 2986

	return 0;
}
2987
fs_initcall(dquot_init);