dquot.c 77.8 KB
Newer Older
L
Linus Torvalds 已提交
1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46 47 48 49 50 51 52 53 54 55 56 57 58 59 60 61 62 63 64 65 66 67 68 69 70 71 72 73
/*
 * Implementation of the diskquota system for the LINUX operating system. QUOTA
 * is implemented using the BSD system call interface as the means of
 * communication with the user level. This file contains the generic routines
 * called by the different filesystems on allocation of an inode or block.
 * These routines take care of the administration needed to have a consistent
 * diskquota tracking system. The ideas of both user and group quotas are based
 * on the Melbourne quota system as used on BSD derived systems. The internal
 * implementation is based on one of the several variants of the LINUX
 * inode-subsystem with added complexity of the diskquota system.
 * 
 * Author:	Marco van Wieringen <mvw@planets.elm.net>
 *
 * Fixes:   Dmitry Gorodchanin <pgmdsg@ibi.com>, 11 Feb 96
 *
 *		Revised list management to avoid races
 *		-- Bill Hawes, <whawes@star.net>, 9/98
 *
 *		Fixed races in dquot_transfer(), dqget() and dquot_alloc_...().
 *		As the consequence the locking was moved from dquot_decr_...(),
 *		dquot_incr_...() to calling functions.
 *		invalidate_dquots() now writes modified dquots.
 *		Serialized quota_off() and quota_on() for mount point.
 *		Fixed a few bugs in grow_dquots().
 *		Fixed deadlock in write_dquot() - we no longer account quotas on
 *		quota files
 *		remove_dquot_ref() moved to inode.c - it now traverses through inodes
 *		add_dquot_ref() restarts after blocking
 *		Added check for bogus uid and fixed check for group in quotactl.
 *		Jan Kara, <jack@suse.cz>, sponsored by SuSE CR, 10-11/99
 *
 *		Used struct list_head instead of own list struct
 *		Invalidation of referenced dquots is no longer possible
 *		Improved free_dquots list management
 *		Quota and i_blocks are now updated in one place to avoid races
 *		Warnings are now delayed so we won't block in critical section
 *		Write updated not to require dquot lock
 *		Jan Kara, <jack@suse.cz>, 9/2000
 *
 *		Added dynamic quota structure allocation
 *		Jan Kara <jack@suse.cz> 12/2000
 *
 *		Rewritten quota interface. Implemented new quota format and
 *		formats registering.
 *		Jan Kara, <jack@suse.cz>, 2001,2002
 *
 *		New SMP locking.
 *		Jan Kara, <jack@suse.cz>, 10/2002
 *
 *		Added journalled quota support, fix lock inversion problems
 *		Jan Kara, <jack@suse.cz>, 2003,2004
 *
 * (C) Copyright 1994 - 1997 Marco van Wieringen 
 */

#include <linux/errno.h>
#include <linux/kernel.h>
#include <linux/fs.h>
#include <linux/mount.h>
#include <linux/mm.h>
#include <linux/time.h>
#include <linux/types.h>
#include <linux/string.h>
#include <linux/fcntl.h>
#include <linux/stat.h>
#include <linux/tty.h>
#include <linux/file.h>
#include <linux/slab.h>
#include <linux/sysctl.h>
#include <linux/init.h>
#include <linux/module.h>
#include <linux/proc_fs.h>
#include <linux/security.h>
A
Al Viro 已提交
74
#include <linux/sched.h>
75
#include <linux/cred.h>
L
Linus Torvalds 已提交
76 77
#include <linux/kmod.h>
#include <linux/namei.h>
78
#include <linux/capability.h>
A
Adrian Bunk 已提交
79
#include <linux/quotaops.h>
80
#include "../internal.h" /* ugh */
L
Linus Torvalds 已提交
81

82
#include <linux/uaccess.h>
L
Linus Torvalds 已提交
83 84

/*
J
Jan Kara 已提交
85
 * There are three quota SMP locks. dq_list_lock protects all lists with quotas
86
 * and quota formats.
J
Jan Kara 已提交
87 88
 * dq_data_lock protects data from dq_dqb and also mem_dqinfo structures and
 * also guards consistency of dquot->dq_dqb with inode->i_blocks, i_bytes.
L
Linus Torvalds 已提交
89
 * i_blocks and i_bytes updates itself are guarded by i_lock acquired directly
J
Jan Kara 已提交
90 91 92
 * in inode_add_bytes() and inode_sub_bytes(). dq_state_lock protects
 * modifications of quota state (on quotaon and quotaoff) and readers who care
 * about latest values take it as well.
L
Linus Torvalds 已提交
93
 *
J
Jan Kara 已提交
94 95
 * The spinlock ordering is hence: dq_data_lock > dq_list_lock > i_lock,
 *   dq_list_lock > dq_state_lock
L
Linus Torvalds 已提交
96 97 98 99
 *
 * Note that some things (eg. sb pointer, type, id) doesn't change during
 * the life of the dquot structure and so needn't to be protected by a lock
 *
N
Niu Yawei 已提交
100 101 102 103 104 105
 * Operation accessing dquots via inode pointers are protected by dquot_srcu.
 * Operation of reading pointer needs srcu_read_lock(&dquot_srcu), and
 * synchronize_srcu(&dquot_srcu) is called after clearing pointers from
 * inode and before dropping dquot references to avoid use of dquots after
 * they are freed. dq_data_lock is used to serialize the pointer setting and
 * clearing operations.
J
Jan Kara 已提交
106 107
 * Special care needs to be taken about S_NOQUOTA inode flag (marking that
 * inode is a quota file). Functions adding pointers from inode to dquots have
N
Niu Yawei 已提交
108 109
 * to check this flag under dq_data_lock and then (if S_NOQUOTA is not set) they
 * have to do all pointer modifications before dropping dq_data_lock. This makes
J
Jan Kara 已提交
110 111
 * sure they cannot race with quotaon which first sets S_NOQUOTA flag and
 * then drops all pointers to dquots from an inode.
L
Linus Torvalds 已提交
112
 *
I
Ingo Molnar 已提交
113
 * Each dquot has its dq_lock mutex. Locked dquots might not be referenced
L
Linus Torvalds 已提交
114 115 116 117 118 119 120 121 122
 * from inodes (dquot_alloc_space() and such don't check the dq_lock).
 * Currently dquot is locked only when it is being read to memory (or space for
 * it is being allocated) on the first dqget() and when it is being released on
 * the last dqput(). The allocation and release oparations are serialized by
 * the dq_lock and by checking the use count in dquot_release().  Write
 * operations on dquots don't hold dq_lock as they copy data under dq_data_lock
 * spinlock to internal buffers before writing.
 *
 * Lock ordering (including related VFS locks) is the following:
J
Jan Kara 已提交
123
 *   s_umount > i_mutex > journal_lock > dquot->dq_lock > dqio_sem
L
Linus Torvalds 已提交
124 125
 */

126 127 128
static __cacheline_aligned_in_smp DEFINE_SPINLOCK(dq_list_lock);
static __cacheline_aligned_in_smp DEFINE_SPINLOCK(dq_state_lock);
__cacheline_aligned_in_smp DEFINE_SPINLOCK(dq_data_lock);
129
EXPORT_SYMBOL(dq_data_lock);
N
Niu Yawei 已提交
130
DEFINE_STATIC_SRCU(dquot_srcu);
L
Linus Torvalds 已提交
131

132
void __quota_error(struct super_block *sb, const char *func,
133
		   const char *fmt, ...)
134 135
{
	if (printk_ratelimit()) {
136 137 138
		va_list args;
		struct va_format vaf;

139
		va_start(args, fmt);
140 141 142 143 144 145 146

		vaf.fmt = fmt;
		vaf.va = &args;

		printk(KERN_ERR "Quota error (device %s): %s: %pV\n",
		       sb->s_id, func, &vaf);

147 148 149 150 151
		va_end(args);
	}
}
EXPORT_SYMBOL(__quota_error);

152
#if defined(CONFIG_QUOTA_DEBUG) || defined(CONFIG_PRINT_QUOTA_WARNING)
L
Linus Torvalds 已提交
153
static char *quotatypes[] = INITQFNAMES;
154
#endif
L
Linus Torvalds 已提交
155 156 157 158
static struct quota_format_type *quota_formats;	/* List of registered formats */
static struct quota_module_name module_names[] = INIT_QUOTA_MODULE_NAMES;

/* SLAB cache for dquot structures */
159
static struct kmem_cache *dquot_cachep;
L
Linus Torvalds 已提交
160 161 162 163 164 165 166 167 168

int register_quota_format(struct quota_format_type *fmt)
{
	spin_lock(&dq_list_lock);
	fmt->qf_next = quota_formats;
	quota_formats = fmt;
	spin_unlock(&dq_list_lock);
	return 0;
}
169
EXPORT_SYMBOL(register_quota_format);
L
Linus Torvalds 已提交
170 171 172 173 174 175

void unregister_quota_format(struct quota_format_type *fmt)
{
	struct quota_format_type **actqf;

	spin_lock(&dq_list_lock);
J
Jan Kara 已提交
176 177 178
	for (actqf = &quota_formats; *actqf && *actqf != fmt;
	     actqf = &(*actqf)->qf_next)
		;
L
Linus Torvalds 已提交
179 180 181 182
	if (*actqf)
		*actqf = (*actqf)->qf_next;
	spin_unlock(&dq_list_lock);
}
183
EXPORT_SYMBOL(unregister_quota_format);
L
Linus Torvalds 已提交
184 185 186 187 188 189

static struct quota_format_type *find_quota_format(int id)
{
	struct quota_format_type *actqf;

	spin_lock(&dq_list_lock);
J
Jan Kara 已提交
190 191 192
	for (actqf = quota_formats; actqf && actqf->qf_fmt_id != id;
	     actqf = actqf->qf_next)
		;
L
Linus Torvalds 已提交
193 194 195 196 197
	if (!actqf || !try_module_get(actqf->qf_owner)) {
		int qm;

		spin_unlock(&dq_list_lock);
		
J
Jan Kara 已提交
198 199 200 201 202
		for (qm = 0; module_names[qm].qm_fmt_id &&
			     module_names[qm].qm_fmt_id != id; qm++)
			;
		if (!module_names[qm].qm_fmt_id ||
		    request_module(module_names[qm].qm_mod_name))
L
Linus Torvalds 已提交
203 204 205
			return NULL;

		spin_lock(&dq_list_lock);
J
Jan Kara 已提交
206 207 208
		for (actqf = quota_formats; actqf && actqf->qf_fmt_id != id;
		     actqf = actqf->qf_next)
			;
L
Linus Torvalds 已提交
209 210 211 212 213 214 215 216 217 218 219 220 221 222 223 224 225 226 227 228 229 230 231 232 233 234 235 236 237 238 239 240 241 242 243 244 245 246
		if (actqf && !try_module_get(actqf->qf_owner))
			actqf = NULL;
	}
	spin_unlock(&dq_list_lock);
	return actqf;
}

static void put_quota_format(struct quota_format_type *fmt)
{
	module_put(fmt->qf_owner);
}

/*
 * Dquot List Management:
 * The quota code uses three lists for dquot management: the inuse_list,
 * free_dquots, and dquot_hash[] array. A single dquot structure may be
 * on all three lists, depending on its current state.
 *
 * All dquots are placed to the end of inuse_list when first created, and this
 * list is used for invalidate operation, which must look at every dquot.
 *
 * Unused dquots (dq_count == 0) are added to the free_dquots list when freed,
 * and this list is searched whenever we need an available dquot.  Dquots are
 * removed from the list as soon as they are used again, and
 * dqstats.free_dquots gives the number of dquots on the list. When
 * dquot is invalidated it's completely released from memory.
 *
 * Dquots with a specific identity (device, type and id) are placed on
 * one of the dquot_hash[] hash chains. The provides an efficient search
 * mechanism to locate a specific dquot.
 */

static LIST_HEAD(inuse_list);
static LIST_HEAD(free_dquots);
static unsigned int dq_hash_bits, dq_hash_mask;
static struct hlist_head *dquot_hash;

struct dqstats dqstats;
247
EXPORT_SYMBOL(dqstats);
L
Linus Torvalds 已提交
248

249
static qsize_t inode_get_rsv_space(struct inode *inode);
250
static int __dquot_initialize(struct inode *inode, int type);
251

L
Linus Torvalds 已提交
252
static inline unsigned int
E
Eric W. Biederman 已提交
253
hashfn(const struct super_block *sb, struct kqid qid)
L
Linus Torvalds 已提交
254
{
E
Eric W. Biederman 已提交
255 256
	unsigned int id = from_kqid(&init_user_ns, qid);
	int type = qid.type;
L
Linus Torvalds 已提交
257 258 259 260 261 262 263 264 265 266 267
	unsigned long tmp;

	tmp = (((unsigned long)sb>>L1_CACHE_SHIFT) ^ id) * (MAXQUOTAS - type);
	return (tmp + (tmp >> dq_hash_bits)) & dq_hash_mask;
}

/*
 * Following list functions expect dq_list_lock to be held
 */
static inline void insert_dquot_hash(struct dquot *dquot)
{
J
Jan Kara 已提交
268
	struct hlist_head *head;
E
Eric W. Biederman 已提交
269
	head = dquot_hash + hashfn(dquot->dq_sb, dquot->dq_id);
L
Linus Torvalds 已提交
270 271 272 273 274 275 276 277
	hlist_add_head(&dquot->dq_hash, head);
}

static inline void remove_dquot_hash(struct dquot *dquot)
{
	hlist_del_init(&dquot->dq_hash);
}

J
Jan Kara 已提交
278
static struct dquot *find_dquot(unsigned int hashent, struct super_block *sb,
E
Eric W. Biederman 已提交
279
				struct kqid qid)
L
Linus Torvalds 已提交
280 281 282 283 284 285
{
	struct hlist_node *node;
	struct dquot *dquot;

	hlist_for_each (node, dquot_hash+hashent) {
		dquot = hlist_entry(node, struct dquot, dq_hash);
286
		if (dquot->dq_sb == sb && qid_eq(dquot->dq_id, qid))
L
Linus Torvalds 已提交
287 288
			return dquot;
	}
J
Jan Kara 已提交
289
	return NULL;
L
Linus Torvalds 已提交
290 291 292 293 294
}

/* Add a dquot to the tail of the free list */
static inline void put_dquot_last(struct dquot *dquot)
{
295
	list_add_tail(&dquot->dq_free, &free_dquots);
296
	dqstats_inc(DQST_FREE_DQUOTS);
L
Linus Torvalds 已提交
297 298 299 300 301 302 303
}

static inline void remove_free_dquot(struct dquot *dquot)
{
	if (list_empty(&dquot->dq_free))
		return;
	list_del_init(&dquot->dq_free);
304
	dqstats_dec(DQST_FREE_DQUOTS);
L
Linus Torvalds 已提交
305 306 307 308 309 310
}

static inline void put_inuse(struct dquot *dquot)
{
	/* We add to the back of inuse list so we don't have to restart
	 * when traversing this list and we block */
311
	list_add_tail(&dquot->dq_inuse, &inuse_list);
312
	dqstats_inc(DQST_ALLOC_DQUOTS);
L
Linus Torvalds 已提交
313 314 315 316
}

static inline void remove_inuse(struct dquot *dquot)
{
317
	dqstats_dec(DQST_ALLOC_DQUOTS);
L
Linus Torvalds 已提交
318 319 320 321 322 323 324 325
	list_del(&dquot->dq_inuse);
}
/*
 * End of list functions needing dq_list_lock
 */

static void wait_on_dquot(struct dquot *dquot)
{
I
Ingo Molnar 已提交
326 327
	mutex_lock(&dquot->dq_lock);
	mutex_unlock(&dquot->dq_lock);
L
Linus Torvalds 已提交
328 329
}

J
Jan Kara 已提交
330 331 332 333 334 335 336 337 338
static inline int dquot_dirty(struct dquot *dquot)
{
	return test_bit(DQ_MOD_B, &dquot->dq_flags);
}

static inline int mark_dquot_dirty(struct dquot *dquot)
{
	return dquot->dq_sb->dq_op->mark_dirty(dquot);
}
L
Linus Torvalds 已提交
339

340
/* Mark dquot dirty in atomic manner, and return it's old dirty flag state */
L
Linus Torvalds 已提交
341 342
int dquot_mark_dquot_dirty(struct dquot *dquot)
{
343 344 345 346 347 348
	int ret = 1;

	/* If quota is dirty already, we don't have to acquire dq_list_lock */
	if (test_bit(DQ_MOD_B, &dquot->dq_flags))
		return 1;

L
Linus Torvalds 已提交
349
	spin_lock(&dq_list_lock);
350
	if (!test_and_set_bit(DQ_MOD_B, &dquot->dq_flags)) {
L
Linus Torvalds 已提交
351
		list_add(&dquot->dq_dirty, &sb_dqopt(dquot->dq_sb)->
352
				info[dquot->dq_id.type].dqi_dirty_list);
353 354
		ret = 0;
	}
L
Linus Torvalds 已提交
355
	spin_unlock(&dq_list_lock);
356
	return ret;
L
Linus Torvalds 已提交
357
}
358
EXPORT_SYMBOL(dquot_mark_dquot_dirty);
L
Linus Torvalds 已提交
359

360 361 362 363 364 365 366 367 368 369 370 371 372 373 374 375 376 377 378 379 380 381 382 383
/* Dirtify all the dquots - this can block when journalling */
static inline int mark_all_dquot_dirty(struct dquot * const *dquot)
{
	int ret, err, cnt;

	ret = err = 0;
	for (cnt = 0; cnt < MAXQUOTAS; cnt++) {
		if (dquot[cnt])
			/* Even in case of error we have to continue */
			ret = mark_dquot_dirty(dquot[cnt]);
		if (!err)
			err = ret;
	}
	return err;
}

static inline void dqput_all(struct dquot **dquot)
{
	unsigned int cnt;

	for (cnt = 0; cnt < MAXQUOTAS; cnt++)
		dqput(dquot[cnt]);
}

L
Linus Torvalds 已提交
384 385 386 387 388 389 390 391 392 393 394 395 396 397 398 399 400 401 402 403 404 405 406 407
/* This function needs dq_list_lock */
static inline int clear_dquot_dirty(struct dquot *dquot)
{
	if (!test_and_clear_bit(DQ_MOD_B, &dquot->dq_flags))
		return 0;
	list_del_init(&dquot->dq_dirty);
	return 1;
}

void mark_info_dirty(struct super_block *sb, int type)
{
	set_bit(DQF_INFO_DIRTY_B, &sb_dqopt(sb)->info[type].dqi_flags);
}
EXPORT_SYMBOL(mark_info_dirty);

/*
 *	Read dquot from disk and alloc space for it
 */

int dquot_acquire(struct dquot *dquot)
{
	int ret = 0, ret2 = 0;
	struct quota_info *dqopt = sb_dqopt(dquot->dq_sb);

I
Ingo Molnar 已提交
408
	mutex_lock(&dquot->dq_lock);
409 410
	if (!test_bit(DQ_READ_B, &dquot->dq_flags)) {
		down_read(&dqopt->dqio_sem);
411
		ret = dqopt->ops[dquot->dq_id.type]->read_dqblk(dquot);
412 413
		up_read(&dqopt->dqio_sem);
	}
L
Linus Torvalds 已提交
414 415
	if (ret < 0)
		goto out_iolock;
416 417
	/* Make sure flags update is visible after dquot has been filled */
	smp_mb__before_atomic();
L
Linus Torvalds 已提交
418 419 420
	set_bit(DQ_READ_B, &dquot->dq_flags);
	/* Instantiate dquot if needed */
	if (!test_bit(DQ_ACTIVE_B, &dquot->dq_flags) && !dquot->dq_off) {
421
		down_write(&dqopt->dqio_sem);
422
		ret = dqopt->ops[dquot->dq_id.type]->commit_dqblk(dquot);
L
Linus Torvalds 已提交
423
		/* Write the info if needed */
424 425 426
		if (info_dirty(&dqopt->info[dquot->dq_id.type])) {
			ret2 = dqopt->ops[dquot->dq_id.type]->write_file_info(
					dquot->dq_sb, dquot->dq_id.type);
J
Jan Kara 已提交
427
		}
428
		up_write(&dqopt->dqio_sem);
L
Linus Torvalds 已提交
429 430 431 432 433 434 435
		if (ret < 0)
			goto out_iolock;
		if (ret2 < 0) {
			ret = ret2;
			goto out_iolock;
		}
	}
436 437 438 439 440
	/*
	 * Make sure flags update is visible after on-disk struct has been
	 * allocated. Paired with smp_rmb() in dqget().
	 */
	smp_mb__before_atomic();
L
Linus Torvalds 已提交
441 442
	set_bit(DQ_ACTIVE_B, &dquot->dq_flags);
out_iolock:
I
Ingo Molnar 已提交
443
	mutex_unlock(&dquot->dq_lock);
L
Linus Torvalds 已提交
444 445
	return ret;
}
446
EXPORT_SYMBOL(dquot_acquire);
L
Linus Torvalds 已提交
447 448 449 450 451 452

/*
 *	Write dquot to disk
 */
int dquot_commit(struct dquot *dquot)
{
453
	int ret = 0;
L
Linus Torvalds 已提交
454 455
	struct quota_info *dqopt = sb_dqopt(dquot->dq_sb);

J
Jan Kara 已提交
456
	down_write(&dqopt->dqio_sem);
L
Linus Torvalds 已提交
457 458 459 460 461 462 463 464
	spin_lock(&dq_list_lock);
	if (!clear_dquot_dirty(dquot)) {
		spin_unlock(&dq_list_lock);
		goto out_sem;
	}
	spin_unlock(&dq_list_lock);
	/* Inactive dquot can be only if there was error during read/init
	 * => we have better not writing it */
465
	if (test_bit(DQ_ACTIVE_B, &dquot->dq_flags))
466
		ret = dqopt->ops[dquot->dq_id.type]->commit_dqblk(dquot);
467 468
	else
		ret = -EIO;
L
Linus Torvalds 已提交
469
out_sem:
J
Jan Kara 已提交
470
	up_write(&dqopt->dqio_sem);
L
Linus Torvalds 已提交
471 472
	return ret;
}
473
EXPORT_SYMBOL(dquot_commit);
L
Linus Torvalds 已提交
474 475 476 477 478 479 480 481 482

/*
 *	Release dquot
 */
int dquot_release(struct dquot *dquot)
{
	int ret = 0, ret2 = 0;
	struct quota_info *dqopt = sb_dqopt(dquot->dq_sb);

I
Ingo Molnar 已提交
483
	mutex_lock(&dquot->dq_lock);
L
Linus Torvalds 已提交
484 485 486
	/* Check whether we are not racing with some other dqget() */
	if (atomic_read(&dquot->dq_count) > 1)
		goto out_dqlock;
J
Jan Kara 已提交
487
	down_write(&dqopt->dqio_sem);
488 489
	if (dqopt->ops[dquot->dq_id.type]->release_dqblk) {
		ret = dqopt->ops[dquot->dq_id.type]->release_dqblk(dquot);
L
Linus Torvalds 已提交
490
		/* Write the info */
491 492 493
		if (info_dirty(&dqopt->info[dquot->dq_id.type])) {
			ret2 = dqopt->ops[dquot->dq_id.type]->write_file_info(
						dquot->dq_sb, dquot->dq_id.type);
J
Jan Kara 已提交
494
		}
L
Linus Torvalds 已提交
495 496 497 498
		if (ret >= 0)
			ret = ret2;
	}
	clear_bit(DQ_ACTIVE_B, &dquot->dq_flags);
J
Jan Kara 已提交
499
	up_write(&dqopt->dqio_sem);
L
Linus Torvalds 已提交
500
out_dqlock:
I
Ingo Molnar 已提交
501
	mutex_unlock(&dquot->dq_lock);
L
Linus Torvalds 已提交
502 503
	return ret;
}
504
EXPORT_SYMBOL(dquot_release);
L
Linus Torvalds 已提交
505

506
void dquot_destroy(struct dquot *dquot)
507 508 509
{
	kmem_cache_free(dquot_cachep, dquot);
}
510
EXPORT_SYMBOL(dquot_destroy);
511 512 513 514 515 516

static inline void do_destroy_dquot(struct dquot *dquot)
{
	dquot->dq_sb->dq_op->destroy_dquot(dquot);
}

L
Linus Torvalds 已提交
517 518
/* Invalidate all dquots on the list. Note that this function is called after
 * quota is disabled and pointers from inodes removed so there cannot be new
519 520
 * quota users. There can still be some users of quotas due to inodes being
 * just deleted or pruned by prune_icache() (those are not attached to any
J
Jan Kara 已提交
521
 * list) or parallel quotactl call. We have to wait for such users.
522
 */
L
Linus Torvalds 已提交
523 524
static void invalidate_dquots(struct super_block *sb, int type)
{
525
	struct dquot *dquot, *tmp;
L
Linus Torvalds 已提交
526

527
restart:
L
Linus Torvalds 已提交
528
	spin_lock(&dq_list_lock);
529
	list_for_each_entry_safe(dquot, tmp, &inuse_list, dq_inuse) {
L
Linus Torvalds 已提交
530 531
		if (dquot->dq_sb != sb)
			continue;
532
		if (dquot->dq_id.type != type)
L
Linus Torvalds 已提交
533
			continue;
534 535 536 537
		/* Wait for dquot users */
		if (atomic_read(&dquot->dq_count)) {
			DEFINE_WAIT(wait);

538
			dqgrab(dquot);
539 540 541 542 543 544 545 546 547 548 549 550 551 552 553 554 555 556 557 558 559 560 561
			prepare_to_wait(&dquot->dq_wait_unused, &wait,
					TASK_UNINTERRUPTIBLE);
			spin_unlock(&dq_list_lock);
			/* Once dqput() wakes us up, we know it's time to free
			 * the dquot.
			 * IMPORTANT: we rely on the fact that there is always
			 * at most one process waiting for dquot to free.
			 * Otherwise dq_count would be > 1 and we would never
			 * wake up.
			 */
			if (atomic_read(&dquot->dq_count) > 1)
				schedule();
			finish_wait(&dquot->dq_wait_unused, &wait);
			dqput(dquot);
			/* At this moment dquot() need not exist (it could be
			 * reclaimed by prune_dqcache(). Hence we must
			 * restart. */
			goto restart;
		}
		/*
		 * Quota now has no users and it has been written on last
		 * dqput()
		 */
L
Linus Torvalds 已提交
562 563 564
		remove_dquot_hash(dquot);
		remove_free_dquot(dquot);
		remove_inuse(dquot);
565
		do_destroy_dquot(dquot);
L
Linus Torvalds 已提交
566 567 568 569
	}
	spin_unlock(&dq_list_lock);
}

570 571 572 573 574 575 576 577
/* Call callback for every active dquot on given filesystem */
int dquot_scan_active(struct super_block *sb,
		      int (*fn)(struct dquot *dquot, unsigned long priv),
		      unsigned long priv)
{
	struct dquot *dquot, *old_dquot = NULL;
	int ret = 0;

578 579
	WARN_ON_ONCE(!rwsem_is_locked(&sb->s_umount));

580 581 582 583 584 585 586 587 588
	spin_lock(&dq_list_lock);
	list_for_each_entry(dquot, &inuse_list, dq_inuse) {
		if (!test_bit(DQ_ACTIVE_B, &dquot->dq_flags))
			continue;
		if (dquot->dq_sb != sb)
			continue;
		/* Now we have active dquot so we can just increase use count */
		atomic_inc(&dquot->dq_count);
		spin_unlock(&dq_list_lock);
589
		dqstats_inc(DQST_LOOKUPS);
590 591
		dqput(old_dquot);
		old_dquot = dquot;
592 593 594 595 596 597 598 599 600 601 602
		/*
		 * ->release_dquot() can be racing with us. Our reference
		 * protects us from new calls to it so just wait for any
		 * outstanding call and recheck the DQ_ACTIVE_B after that.
		 */
		wait_on_dquot(dquot);
		if (test_bit(DQ_ACTIVE_B, &dquot->dq_flags)) {
			ret = fn(dquot, priv);
			if (ret < 0)
				goto out;
		}
603 604 605 606 607 608 609 610 611
		spin_lock(&dq_list_lock);
		/* We are safe to continue now because our dquot could not
		 * be moved out of the inuse list while we hold the reference */
	}
	spin_unlock(&dq_list_lock);
out:
	dqput(old_dquot);
	return ret;
}
612
EXPORT_SYMBOL(dquot_scan_active);
613

614 615
/* Write all dquot structures to quota files */
int dquot_writeback_dquots(struct super_block *sb, int type)
L
Linus Torvalds 已提交
616 617 618 619 620
{
	struct list_head *dirty;
	struct dquot *dquot;
	struct quota_info *dqopt = sb_dqopt(sb);
	int cnt;
621
	int err, ret = 0;
L
Linus Torvalds 已提交
622

623 624
	WARN_ON_ONCE(!rwsem_is_locked(&sb->s_umount));

L
Linus Torvalds 已提交
625 626 627
	for (cnt = 0; cnt < MAXQUOTAS; cnt++) {
		if (type != -1 && cnt != type)
			continue;
628
		if (!sb_has_quota_active(sb, cnt))
L
Linus Torvalds 已提交
629 630 631 632
			continue;
		spin_lock(&dq_list_lock);
		dirty = &dqopt->info[cnt].dqi_dirty_list;
		while (!list_empty(dirty)) {
J
Jan Kara 已提交
633 634
			dquot = list_first_entry(dirty, struct dquot,
						 dq_dirty);
L
Linus Torvalds 已提交
635 636 637 638 639 640 641 642
			/* Dirty and inactive can be only bad dquot... */
			if (!test_bit(DQ_ACTIVE_B, &dquot->dq_flags)) {
				clear_dquot_dirty(dquot);
				continue;
			}
			/* Now we have active dquot from which someone is
 			 * holding reference so we can safely just increase
			 * use count */
643
			dqgrab(dquot);
L
Linus Torvalds 已提交
644
			spin_unlock(&dq_list_lock);
645
			dqstats_inc(DQST_LOOKUPS);
646 647
			err = sb->dq_op->write_dquot(dquot);
			if (!ret && err)
648
				ret = err;
L
Linus Torvalds 已提交
649 650 651 652 653 654 655
			dqput(dquot);
			spin_lock(&dq_list_lock);
		}
		spin_unlock(&dq_list_lock);
	}

	for (cnt = 0; cnt < MAXQUOTAS; cnt++)
656 657
		if ((cnt == type || type == -1) && sb_has_quota_active(sb, cnt)
		    && info_dirty(&dqopt->info[cnt]))
L
Linus Torvalds 已提交
658
			sb->dq_op->write_info(sb, cnt);
659
	dqstats_inc(DQST_SYNCS);
L
Linus Torvalds 已提交
660

661 662 663 664 665 666 667 668 669 670 671 672 673 674 675
	return ret;
}
EXPORT_SYMBOL(dquot_writeback_dquots);

/* Write all dquot structures to disk and make them visible from userspace */
int dquot_quota_sync(struct super_block *sb, int type)
{
	struct quota_info *dqopt = sb_dqopt(sb);
	int cnt;
	int ret;

	ret = dquot_writeback_dquots(sb, type);
	if (ret)
		return ret;
	if (dqopt->flags & DQUOT_QUOTA_SYS_FILE)
676 677 678 679 680 681 682 683 684 685 686 687 688 689 690 691 692 693
		return 0;

	/* This is not very clever (and fast) but currently I don't know about
	 * any other simple way of getting quota data to disk and we must get
	 * them there for userspace to be visible... */
	if (sb->s_op->sync_fs)
		sb->s_op->sync_fs(sb, 1);
	sync_blockdev(sb->s_bdev);

	/*
	 * Now when everything is written we can discard the pagecache so
	 * that userspace sees the changes.
	 */
	for (cnt = 0; cnt < MAXQUOTAS; cnt++) {
		if (type != -1 && cnt != type)
			continue;
		if (!sb_has_quota_active(sb, cnt))
			continue;
A
Al Viro 已提交
694
		inode_lock(dqopt->files[cnt]);
695
		truncate_inode_pages(&dqopt->files[cnt]->i_data, 0);
A
Al Viro 已提交
696
		inode_unlock(dqopt->files[cnt]);
697 698
	}

L
Linus Torvalds 已提交
699 700
	return 0;
}
701
EXPORT_SYMBOL(dquot_quota_sync);
L
Linus Torvalds 已提交
702

703 704
static unsigned long
dqcache_shrink_scan(struct shrinker *shrink, struct shrink_control *sc)
L
Linus Torvalds 已提交
705 706 707
{
	struct list_head *head;
	struct dquot *dquot;
708
	unsigned long freed = 0;
L
Linus Torvalds 已提交
709

710
	spin_lock(&dq_list_lock);
L
Linus Torvalds 已提交
711
	head = free_dquots.prev;
712
	while (head != &free_dquots && sc->nr_to_scan) {
L
Linus Torvalds 已提交
713 714 715 716
		dquot = list_entry(head, struct dquot, dq_free);
		remove_dquot_hash(dquot);
		remove_free_dquot(dquot);
		remove_inuse(dquot);
717
		do_destroy_dquot(dquot);
718 719
		sc->nr_to_scan--;
		freed++;
L
Linus Torvalds 已提交
720 721
		head = free_dquots.prev;
	}
722
	spin_unlock(&dq_list_lock);
723
	return freed;
L
Linus Torvalds 已提交
724 725
}

726 727
static unsigned long
dqcache_shrink_count(struct shrinker *shrink, struct shrink_control *sc)
L
Linus Torvalds 已提交
728
{
729 730
	return vfs_pressure_ratio(
	percpu_counter_read_positive(&dqstats.counter[DQST_FREE_DQUOTS]));
L
Linus Torvalds 已提交
731 732
}

733
static struct shrinker dqcache_shrinker = {
734 735
	.count_objects = dqcache_shrink_count,
	.scan_objects = dqcache_shrink_scan,
736 737 738
	.seeks = DEFAULT_SEEKS,
};

L
Linus Torvalds 已提交
739 740 741
/*
 * Put reference to dquot
 */
742
void dqput(struct dquot *dquot)
L
Linus Torvalds 已提交
743
{
744 745
	int ret;

L
Linus Torvalds 已提交
746 747
	if (!dquot)
		return;
748
#ifdef CONFIG_QUOTA_DEBUG
L
Linus Torvalds 已提交
749
	if (!atomic_read(&dquot->dq_count)) {
750
		quota_error(dquot->dq_sb, "trying to free free dquot of %s %d",
751 752
			    quotatypes[dquot->dq_id.type],
			    from_kqid(&init_user_ns, dquot->dq_id));
L
Linus Torvalds 已提交
753 754 755
		BUG();
	}
#endif
756
	dqstats_inc(DQST_DROPS);
L
Linus Torvalds 已提交
757 758 759 760 761
we_slept:
	spin_lock(&dq_list_lock);
	if (atomic_read(&dquot->dq_count) > 1) {
		/* We have more than one user... nothing to do */
		atomic_dec(&dquot->dq_count);
762
		/* Releasing dquot during quotaoff phase? */
763
		if (!sb_has_quota_active(dquot->dq_sb, dquot->dq_id.type) &&
764 765
		    atomic_read(&dquot->dq_count) == 1)
			wake_up(&dquot->dq_wait_unused);
L
Linus Torvalds 已提交
766 767 768 769 770 771 772
		spin_unlock(&dq_list_lock);
		return;
	}
	/* Need to release dquot? */
	if (test_bit(DQ_ACTIVE_B, &dquot->dq_flags) && dquot_dirty(dquot)) {
		spin_unlock(&dq_list_lock);
		/* Commit dquot before releasing */
773 774
		ret = dquot->dq_sb->dq_op->write_dquot(dquot);
		if (ret < 0) {
775 776 777
			quota_error(dquot->dq_sb, "Can't write quota structure"
				    " (error %d). Quota may get out of sync!",
				    ret);
778 779 780 781 782 783 784 785
			/*
			 * We clear dirty bit anyway, so that we avoid
			 * infinite loop here
			 */
			spin_lock(&dq_list_lock);
			clear_dquot_dirty(dquot);
			spin_unlock(&dq_list_lock);
		}
L
Linus Torvalds 已提交
786 787 788 789 790 791 792 793 794 795
		goto we_slept;
	}
	/* Clear flag in case dquot was inactive (something bad happened) */
	clear_dquot_dirty(dquot);
	if (test_bit(DQ_ACTIVE_B, &dquot->dq_flags)) {
		spin_unlock(&dq_list_lock);
		dquot->dq_sb->dq_op->release_dquot(dquot);
		goto we_slept;
	}
	atomic_dec(&dquot->dq_count);
796
#ifdef CONFIG_QUOTA_DEBUG
L
Linus Torvalds 已提交
797
	/* sanity check */
798
	BUG_ON(!list_empty(&dquot->dq_free));
L
Linus Torvalds 已提交
799 800 801 802
#endif
	put_dquot_last(dquot);
	spin_unlock(&dq_list_lock);
}
803
EXPORT_SYMBOL(dqput);
L
Linus Torvalds 已提交
804

805
struct dquot *dquot_alloc(struct super_block *sb, int type)
806 807 808
{
	return kmem_cache_zalloc(dquot_cachep, GFP_NOFS);
}
809
EXPORT_SYMBOL(dquot_alloc);
810

L
Linus Torvalds 已提交
811 812 813 814
static struct dquot *get_empty_dquot(struct super_block *sb, int type)
{
	struct dquot *dquot;

815
	dquot = sb->dq_op->alloc_dquot(sb, type);
L
Linus Torvalds 已提交
816
	if(!dquot)
J
Jan Kara 已提交
817
		return NULL;
L
Linus Torvalds 已提交
818

I
Ingo Molnar 已提交
819
	mutex_init(&dquot->dq_lock);
L
Linus Torvalds 已提交
820 821 822 823
	INIT_LIST_HEAD(&dquot->dq_free);
	INIT_LIST_HEAD(&dquot->dq_inuse);
	INIT_HLIST_NODE(&dquot->dq_hash);
	INIT_LIST_HEAD(&dquot->dq_dirty);
824
	init_waitqueue_head(&dquot->dq_wait_unused);
L
Linus Torvalds 已提交
825
	dquot->dq_sb = sb;
E
Eric W. Biederman 已提交
826
	dquot->dq_id = make_kqid_invalid(type);
L
Linus Torvalds 已提交
827 828 829 830 831 832 833
	atomic_set(&dquot->dq_count, 1);

	return dquot;
}

/*
 * Get reference to dquot
J
Jan Kara 已提交
834 835 836 837 838
 *
 * Locking is slightly tricky here. We are guarded from parallel quotaoff()
 * destroying our dquot by:
 *   a) checking for quota flags under dq_list_lock and
 *   b) getting a reference to dquot before we release dq_list_lock
L
Linus Torvalds 已提交
839
 */
840
struct dquot *dqget(struct super_block *sb, struct kqid qid)
L
Linus Torvalds 已提交
841
{
E
Eric W. Biederman 已提交
842
	unsigned int hashent = hashfn(sb, qid);
843
	struct dquot *dquot, *empty = NULL;
L
Linus Torvalds 已提交
844

845 846 847
	if (!qid_has_mapping(sb->s_user_ns, qid))
		return ERR_PTR(-EINVAL);

E
Eric W. Biederman 已提交
848
        if (!sb_has_quota_active(sb, qid.type))
849
		return ERR_PTR(-ESRCH);
L
Linus Torvalds 已提交
850 851
we_slept:
	spin_lock(&dq_list_lock);
J
Jan Kara 已提交
852
	spin_lock(&dq_state_lock);
E
Eric W. Biederman 已提交
853
	if (!sb_has_quota_active(sb, qid.type)) {
J
Jan Kara 已提交
854 855
		spin_unlock(&dq_state_lock);
		spin_unlock(&dq_list_lock);
856
		dquot = ERR_PTR(-ESRCH);
J
Jan Kara 已提交
857 858 859 860
		goto out;
	}
	spin_unlock(&dq_state_lock);

E
Eric W. Biederman 已提交
861
	dquot = find_dquot(hashent, sb, qid);
J
Jan Kara 已提交
862 863
	if (!dquot) {
		if (!empty) {
L
Linus Torvalds 已提交
864
			spin_unlock(&dq_list_lock);
E
Eric W. Biederman 已提交
865
			empty = get_empty_dquot(sb, qid.type);
J
Jan Kara 已提交
866
			if (!empty)
L
Linus Torvalds 已提交
867 868 869 870
				schedule();	/* Try to wait for a moment... */
			goto we_slept;
		}
		dquot = empty;
J
Jan Kara 已提交
871
		empty = NULL;
872
		dquot->dq_id = qid;
L
Linus Torvalds 已提交
873 874 875 876 877
		/* all dquots go on the inuse_list */
		put_inuse(dquot);
		/* hash it first so it can be found */
		insert_dquot_hash(dquot);
		spin_unlock(&dq_list_lock);
878
		dqstats_inc(DQST_LOOKUPS);
L
Linus Torvalds 已提交
879 880 881 882 883
	} else {
		if (!atomic_read(&dquot->dq_count))
			remove_free_dquot(dquot);
		atomic_inc(&dquot->dq_count);
		spin_unlock(&dq_list_lock);
884 885
		dqstats_inc(DQST_CACHE_HITS);
		dqstats_inc(DQST_LOOKUPS);
L
Linus Torvalds 已提交
886
	}
J
Jan Kara 已提交
887 888
	/* Wait for dq_lock - after this we know that either dquot_release() is
	 * already finished or it will be canceled due to dq_count > 1 test */
L
Linus Torvalds 已提交
889
	wait_on_dquot(dquot);
J
Jan Kara 已提交
890
	/* Read the dquot / allocate space in quota file */
891 892 893 894 895 896 897 898 899
	if (!test_bit(DQ_ACTIVE_B, &dquot->dq_flags)) {
		int err;

		err = sb->dq_op->acquire_dquot(dquot);
		if (err < 0) {
			dqput(dquot);
			dquot = ERR_PTR(err);
			goto out;
		}
L
Linus Torvalds 已提交
900
	}
901 902 903 904 905
	/*
	 * Make sure following reads see filled structure - paired with
	 * smp_mb__before_atomic() in dquot_acquire().
	 */
	smp_rmb();
906
#ifdef CONFIG_QUOTA_DEBUG
907
	BUG_ON(!dquot->dq_sb);	/* Has somebody invalidated entry under us? */
L
Linus Torvalds 已提交
908
#endif
J
Jan Kara 已提交
909 910 911
out:
	if (empty)
		do_destroy_dquot(empty);
L
Linus Torvalds 已提交
912 913 914

	return dquot;
}
915
EXPORT_SYMBOL(dqget);
L
Linus Torvalds 已提交
916

917 918 919 920 921
static inline struct dquot **i_dquot(struct inode *inode)
{
	return inode->i_sb->s_op->get_dquots(inode);
}

L
Linus Torvalds 已提交
922 923
static int dqinit_needed(struct inode *inode, int type)
{
924
	struct dquot * const *dquots;
L
Linus Torvalds 已提交
925 926 927 928
	int cnt;

	if (IS_NOQUOTA(inode))
		return 0;
929 930

	dquots = i_dquot(inode);
L
Linus Torvalds 已提交
931
	if (type != -1)
932
		return !dquots[type];
L
Linus Torvalds 已提交
933
	for (cnt = 0; cnt < MAXQUOTAS; cnt++)
934
		if (!dquots[cnt])
L
Linus Torvalds 已提交
935 936 937 938
			return 1;
	return 0;
}

J
Jan Kara 已提交
939
/* This routine is guarded by s_umount semaphore */
L
Linus Torvalds 已提交
940 941
static void add_dquot_ref(struct super_block *sb, int type)
{
942
	struct inode *inode, *old_inode = NULL;
943
#ifdef CONFIG_QUOTA_DEBUG
944
	int reserved = 0;
945
#endif
L
Linus Torvalds 已提交
946

947
	spin_lock(&sb->s_inode_list_lock);
948
	list_for_each_entry(inode, &sb->s_inodes, i_sb_list) {
949 950 951 952 953
		spin_lock(&inode->i_lock);
		if ((inode->i_state & (I_FREEING|I_WILL_FREE|I_NEW)) ||
		    !atomic_read(&inode->i_writecount) ||
		    !dqinit_needed(inode, type)) {
			spin_unlock(&inode->i_lock);
N
Nick Piggin 已提交
954
			continue;
955
		}
956
		__iget(inode);
957
		spin_unlock(&inode->i_lock);
958
		spin_unlock(&sb->s_inode_list_lock);
959

960 961 962 963
#ifdef CONFIG_QUOTA_DEBUG
		if (unlikely(inode_get_rsv_space(inode) > 0))
			reserved = 1;
#endif
964
		iput(old_inode);
965
		__dquot_initialize(inode, type);
966 967 968 969

		/*
		 * We hold a reference to 'inode' so it couldn't have been
		 * removed from s_inodes list while we dropped the
970
		 * s_inode_list_lock. We cannot iput the inode now as we can be
971
		 * holding the last reference and we cannot iput it under
972
		 * s_inode_list_lock. So we keep the reference and iput it
973 974
		 * later.
		 */
975
		old_inode = inode;
976
		spin_lock(&sb->s_inode_list_lock);
L
Linus Torvalds 已提交
977
	}
978
	spin_unlock(&sb->s_inode_list_lock);
979
	iput(old_inode);
980

981
#ifdef CONFIG_QUOTA_DEBUG
982
	if (reserved) {
983 984 985
		quota_error(sb, "Writes happened before quota was turned on "
			"thus quota information is probably inconsistent. "
			"Please run quotacheck(8)");
986
	}
987
#endif
L
Linus Torvalds 已提交
988 989
}

J
Jan Kara 已提交
990 991
/*
 * Remove references to dquots from inode and add dquot to list for freeing
L
Lucas De Marchi 已提交
992
 * if we have the last reference to dquot
J
Jan Kara 已提交
993
 */
994 995
static void remove_inode_dquot_ref(struct inode *inode, int type,
				   struct list_head *tofree_head)
L
Linus Torvalds 已提交
996
{
997 998
	struct dquot **dquots = i_dquot(inode);
	struct dquot *dquot = dquots[type];
L
Linus Torvalds 已提交
999

1000 1001 1002
	if (!dquot)
		return;

1003
	dquots[type] = NULL;
1004 1005 1006 1007 1008 1009 1010 1011 1012 1013 1014 1015 1016 1017
	if (list_empty(&dquot->dq_free)) {
		/*
		 * The inode still has reference to dquot so it can't be in the
		 * free list
		 */
		spin_lock(&dq_list_lock);
		list_add(&dquot->dq_free, tofree_head);
		spin_unlock(&dq_list_lock);
	} else {
		/*
		 * Dquot is already in a list to put so we won't drop the last
		 * reference here.
		 */
		dqput(dquot);
L
Linus Torvalds 已提交
1018 1019 1020
	}
}

J
Jan Kara 已提交
1021 1022 1023 1024 1025
/*
 * Free list of dquots
 * Dquots are removed from inodes and no new references can be got so we are
 * the only ones holding reference
 */
L
Linus Torvalds 已提交
1026 1027 1028 1029 1030 1031 1032 1033 1034
static void put_dquot_list(struct list_head *tofree_head)
{
	struct list_head *act_head;
	struct dquot *dquot;

	act_head = tofree_head->next;
	while (act_head != tofree_head) {
		dquot = list_entry(act_head, struct dquot, dq_free);
		act_head = act_head->next;
J
Jan Kara 已提交
1035 1036
		/* Remove dquot from the list so we won't have problems... */
		list_del_init(&dquot->dq_free);
L
Linus Torvalds 已提交
1037 1038 1039 1040
		dqput(dquot);
	}
}

1041 1042 1043 1044
static void remove_dquot_ref(struct super_block *sb, int type,
		struct list_head *tofree_head)
{
	struct inode *inode;
1045
	int reserved = 0;
1046

1047
	spin_lock(&sb->s_inode_list_lock);
1048
	list_for_each_entry(inode, &sb->s_inodes, i_sb_list) {
N
Nick Piggin 已提交
1049 1050 1051 1052
		/*
		 *  We have to scan also I_NEW inodes because they can already
		 *  have quota pointer initialized. Luckily, we need to touch
		 *  only quota pointers and these have separate locking
N
Niu Yawei 已提交
1053
		 *  (dq_data_lock).
N
Nick Piggin 已提交
1054
		 */
N
Niu Yawei 已提交
1055
		spin_lock(&dq_data_lock);
1056 1057 1058
		if (!IS_NOQUOTA(inode)) {
			if (unlikely(inode_get_rsv_space(inode) > 0))
				reserved = 1;
1059
			remove_inode_dquot_ref(inode, type, tofree_head);
1060
		}
N
Niu Yawei 已提交
1061
		spin_unlock(&dq_data_lock);
1062
	}
1063
	spin_unlock(&sb->s_inode_list_lock);
1064 1065 1066 1067 1068 1069 1070
#ifdef CONFIG_QUOTA_DEBUG
	if (reserved) {
		printk(KERN_WARNING "VFS (%s): Writes happened after quota"
			" was disabled thus quota information is probably "
			"inconsistent. Please run quotacheck(8).\n", sb->s_id);
	}
#endif
1071 1072
}

L
Linus Torvalds 已提交
1073 1074 1075 1076 1077
/* Gather all references from inodes and drop them */
static void drop_dquot_ref(struct super_block *sb, int type)
{
	LIST_HEAD(tofree_head);

1078 1079
	if (sb->dq_op) {
		remove_dquot_ref(sb, type, &tofree_head);
N
Niu Yawei 已提交
1080
		synchronize_srcu(&dquot_srcu);
1081 1082
		put_dquot_list(&tofree_head);
	}
L
Linus Torvalds 已提交
1083 1084
}

1085
static inline void dquot_incr_inodes(struct dquot *dquot, qsize_t number)
L
Linus Torvalds 已提交
1086 1087 1088 1089 1090 1091 1092 1093 1094
{
	dquot->dq_dqb.dqb_curinodes += number;
}

static inline void dquot_incr_space(struct dquot *dquot, qsize_t number)
{
	dquot->dq_dqb.dqb_curspace += number;
}

1095 1096 1097 1098 1099
static inline void dquot_resv_space(struct dquot *dquot, qsize_t number)
{
	dquot->dq_dqb.dqb_rsvspace += number;
}

1100 1101 1102
/*
 * Claim reserved quota space
 */
1103
static void dquot_claim_reserved_space(struct dquot *dquot, qsize_t number)
1104
{
1105 1106 1107 1108
	if (dquot->dq_dqb.dqb_rsvspace < number) {
		WARN_ON_ONCE(1);
		number = dquot->dq_dqb.dqb_rsvspace;
	}
1109 1110 1111 1112
	dquot->dq_dqb.dqb_curspace += number;
	dquot->dq_dqb.dqb_rsvspace -= number;
}

1113 1114 1115 1116 1117 1118 1119 1120
static void dquot_reclaim_reserved_space(struct dquot *dquot, qsize_t number)
{
	if (WARN_ON_ONCE(dquot->dq_dqb.dqb_curspace < number))
		number = dquot->dq_dqb.dqb_curspace;
	dquot->dq_dqb.dqb_rsvspace += number;
	dquot->dq_dqb.dqb_curspace -= number;
}

1121 1122 1123
static inline
void dquot_free_reserved_space(struct dquot *dquot, qsize_t number)
{
1124 1125 1126 1127 1128 1129
	if (dquot->dq_dqb.dqb_rsvspace >= number)
		dquot->dq_dqb.dqb_rsvspace -= number;
	else {
		WARN_ON_ONCE(1);
		dquot->dq_dqb.dqb_rsvspace = 0;
	}
1130 1131
}

J
Jan Kara 已提交
1132
static void dquot_decr_inodes(struct dquot *dquot, qsize_t number)
L
Linus Torvalds 已提交
1133
{
1134 1135
	if (sb_dqopt(dquot->dq_sb)->flags & DQUOT_NEGATIVE_USAGE ||
	    dquot->dq_dqb.dqb_curinodes >= number)
L
Linus Torvalds 已提交
1136 1137 1138 1139
		dquot->dq_dqb.dqb_curinodes -= number;
	else
		dquot->dq_dqb.dqb_curinodes = 0;
	if (dquot->dq_dqb.dqb_curinodes <= dquot->dq_dqb.dqb_isoftlimit)
A
Arnd Bergmann 已提交
1140
		dquot->dq_dqb.dqb_itime = (time64_t) 0;
L
Linus Torvalds 已提交
1141 1142 1143
	clear_bit(DQ_INODES_B, &dquot->dq_flags);
}

J
Jan Kara 已提交
1144
static void dquot_decr_space(struct dquot *dquot, qsize_t number)
L
Linus Torvalds 已提交
1145
{
1146 1147
	if (sb_dqopt(dquot->dq_sb)->flags & DQUOT_NEGATIVE_USAGE ||
	    dquot->dq_dqb.dqb_curspace >= number)
L
Linus Torvalds 已提交
1148 1149 1150
		dquot->dq_dqb.dqb_curspace -= number;
	else
		dquot->dq_dqb.dqb_curspace = 0;
1151
	if (dquot->dq_dqb.dqb_curspace <= dquot->dq_dqb.dqb_bsoftlimit)
A
Arnd Bergmann 已提交
1152
		dquot->dq_dqb.dqb_btime = (time64_t) 0;
L
Linus Torvalds 已提交
1153 1154 1155
	clear_bit(DQ_BLKS_B, &dquot->dq_flags);
}

1156 1157
struct dquot_warn {
	struct super_block *w_sb;
1158
	struct kqid w_dq_id;
1159 1160 1161
	short w_type;
};

1162 1163 1164 1165 1166 1167 1168 1169 1170 1171 1172 1173
static int warning_issued(struct dquot *dquot, const int warntype)
{
	int flag = (warntype == QUOTA_NL_BHARDWARN ||
		warntype == QUOTA_NL_BSOFTLONGWARN) ? DQ_BLKS_B :
		((warntype == QUOTA_NL_IHARDWARN ||
		warntype == QUOTA_NL_ISOFTLONGWARN) ? DQ_INODES_B : 0);

	if (!flag)
		return 0;
	return test_and_set_bit(flag, &dquot->dq_flags);
}

J
Jan Kara 已提交
1174
#ifdef CONFIG_PRINT_QUOTA_WARNING
L
Linus Torvalds 已提交
1175 1176
static int flag_print_warnings = 1;

1177
static int need_print_warning(struct dquot_warn *warn)
L
Linus Torvalds 已提交
1178 1179 1180 1181
{
	if (!flag_print_warnings)
		return 0;

1182
	switch (warn->w_dq_id.type) {
L
Linus Torvalds 已提交
1183
		case USRQUOTA:
E
Eric W. Biederman 已提交
1184
			return uid_eq(current_fsuid(), warn->w_dq_id.uid);
L
Linus Torvalds 已提交
1185
		case GRPQUOTA:
1186
			return in_group_p(warn->w_dq_id.gid);
1187 1188
		case PRJQUOTA:
			return 1;
L
Linus Torvalds 已提交
1189 1190 1191 1192 1193
	}
	return 0;
}

/* Print warning to user which exceeded quota */
1194
static void print_warning(struct dquot_warn *warn)
L
Linus Torvalds 已提交
1195 1196
{
	char *msg = NULL;
1197
	struct tty_struct *tty;
1198
	int warntype = warn->w_type;
L
Linus Torvalds 已提交
1199

1200 1201 1202
	if (warntype == QUOTA_NL_IHARDBELOW ||
	    warntype == QUOTA_NL_ISOFTBELOW ||
	    warntype == QUOTA_NL_BHARDBELOW ||
1203
	    warntype == QUOTA_NL_BSOFTBELOW || !need_print_warning(warn))
L
Linus Torvalds 已提交
1204 1205
		return;

1206 1207
	tty = get_current_tty();
	if (!tty)
A
Alan Cox 已提交
1208
		return;
1209
	tty_write_message(tty, warn->w_sb->s_id);
J
Jan Kara 已提交
1210
	if (warntype == QUOTA_NL_ISOFTWARN || warntype == QUOTA_NL_BSOFTWARN)
1211
		tty_write_message(tty, ": warning, ");
L
Linus Torvalds 已提交
1212
	else
1213
		tty_write_message(tty, ": write failed, ");
1214
	tty_write_message(tty, quotatypes[warn->w_dq_id.type]);
L
Linus Torvalds 已提交
1215
	switch (warntype) {
J
Jan Kara 已提交
1216
		case QUOTA_NL_IHARDWARN:
L
Linus Torvalds 已提交
1217 1218
			msg = " file limit reached.\r\n";
			break;
J
Jan Kara 已提交
1219
		case QUOTA_NL_ISOFTLONGWARN:
L
Linus Torvalds 已提交
1220 1221
			msg = " file quota exceeded too long.\r\n";
			break;
J
Jan Kara 已提交
1222
		case QUOTA_NL_ISOFTWARN:
L
Linus Torvalds 已提交
1223 1224
			msg = " file quota exceeded.\r\n";
			break;
J
Jan Kara 已提交
1225
		case QUOTA_NL_BHARDWARN:
L
Linus Torvalds 已提交
1226 1227
			msg = " block limit reached.\r\n";
			break;
J
Jan Kara 已提交
1228
		case QUOTA_NL_BSOFTLONGWARN:
L
Linus Torvalds 已提交
1229 1230
			msg = " block quota exceeded too long.\r\n";
			break;
J
Jan Kara 已提交
1231
		case QUOTA_NL_BSOFTWARN:
L
Linus Torvalds 已提交
1232 1233 1234
			msg = " block quota exceeded.\r\n";
			break;
	}
1235
	tty_write_message(tty, msg);
A
Alan Cox 已提交
1236
	tty_kref_put(tty);
L
Linus Torvalds 已提交
1237
}
J
Jan Kara 已提交
1238 1239
#endif

1240 1241 1242 1243 1244 1245 1246 1247 1248 1249
static void prepare_warning(struct dquot_warn *warn, struct dquot *dquot,
			    int warntype)
{
	if (warning_issued(dquot, warntype))
		return;
	warn->w_type = warntype;
	warn->w_sb = dquot->dq_sb;
	warn->w_dq_id = dquot->dq_id;
}

1250 1251 1252
/*
 * Write warnings to the console and send warning messages over netlink.
 *
1253
 * Note that this function can call into tty and networking code.
1254
 */
1255
static void flush_warnings(struct dquot_warn *warn)
L
Linus Torvalds 已提交
1256 1257 1258
{
	int i;

S
Steven Whitehouse 已提交
1259
	for (i = 0; i < MAXQUOTAS; i++) {
1260 1261
		if (warn[i].w_type == QUOTA_NL_NOWARN)
			continue;
J
Jan Kara 已提交
1262
#ifdef CONFIG_PRINT_QUOTA_WARNING
1263
		print_warning(&warn[i]);
J
Jan Kara 已提交
1264
#endif
1265
		quota_send_warning(warn[i].w_dq_id,
1266
				   warn[i].w_sb->s_dev, warn[i].w_type);
S
Steven Whitehouse 已提交
1267
	}
L
Linus Torvalds 已提交
1268 1269
}

J
Jan Kara 已提交
1270
static int ignore_hardlimit(struct dquot *dquot)
L
Linus Torvalds 已提交
1271
{
1272
	struct mem_dqinfo *info = &sb_dqopt(dquot->dq_sb)->info[dquot->dq_id.type];
L
Linus Torvalds 已提交
1273 1274

	return capable(CAP_SYS_RESOURCE) &&
J
Jan Kara 已提交
1275
	       (info->dqi_format->qf_fmt_id != QFMT_VFS_OLD ||
J
Jan Kara 已提交
1276
		!(info->dqi_flags & DQF_ROOT_SQUASH));
L
Linus Torvalds 已提交
1277 1278 1279
}

/* needs dq_data_lock */
1280 1281
static int check_idq(struct dquot *dquot, qsize_t inodes,
		     struct dquot_warn *warn)
L
Linus Torvalds 已提交
1282
{
J
Jan Kara 已提交
1283 1284
	qsize_t newinodes = dquot->dq_dqb.dqb_curinodes + inodes;

1285
	if (!sb_has_quota_limits_enabled(dquot->dq_sb, dquot->dq_id.type) ||
1286
	    test_bit(DQ_FAKE_B, &dquot->dq_flags))
1287
		return 0;
L
Linus Torvalds 已提交
1288 1289

	if (dquot->dq_dqb.dqb_ihardlimit &&
J
Jan Kara 已提交
1290
	    newinodes > dquot->dq_dqb.dqb_ihardlimit &&
L
Linus Torvalds 已提交
1291
            !ignore_hardlimit(dquot)) {
1292
		prepare_warning(warn, dquot, QUOTA_NL_IHARDWARN);
1293
		return -EDQUOT;
L
Linus Torvalds 已提交
1294 1295 1296
	}

	if (dquot->dq_dqb.dqb_isoftlimit &&
J
Jan Kara 已提交
1297 1298
	    newinodes > dquot->dq_dqb.dqb_isoftlimit &&
	    dquot->dq_dqb.dqb_itime &&
A
Arnd Bergmann 已提交
1299
	    ktime_get_real_seconds() >= dquot->dq_dqb.dqb_itime &&
L
Linus Torvalds 已提交
1300
            !ignore_hardlimit(dquot)) {
1301
		prepare_warning(warn, dquot, QUOTA_NL_ISOFTLONGWARN);
1302
		return -EDQUOT;
L
Linus Torvalds 已提交
1303 1304 1305
	}

	if (dquot->dq_dqb.dqb_isoftlimit &&
J
Jan Kara 已提交
1306
	    newinodes > dquot->dq_dqb.dqb_isoftlimit &&
L
Linus Torvalds 已提交
1307
	    dquot->dq_dqb.dqb_itime == 0) {
1308
		prepare_warning(warn, dquot, QUOTA_NL_ISOFTWARN);
A
Arnd Bergmann 已提交
1309
		dquot->dq_dqb.dqb_itime = ktime_get_real_seconds() +
1310
		    sb_dqopt(dquot->dq_sb)->info[dquot->dq_id.type].dqi_igrace;
L
Linus Torvalds 已提交
1311 1312
	}

1313
	return 0;
L
Linus Torvalds 已提交
1314 1315 1316
}

/* needs dq_data_lock */
1317 1318
static int check_bdq(struct dquot *dquot, qsize_t space, int prealloc,
		     struct dquot_warn *warn)
L
Linus Torvalds 已提交
1319
{
1320
	qsize_t tspace;
J
Jan Kara 已提交
1321
	struct super_block *sb = dquot->dq_sb;
1322

1323
	if (!sb_has_quota_limits_enabled(sb, dquot->dq_id.type) ||
1324
	    test_bit(DQ_FAKE_B, &dquot->dq_flags))
1325
		return 0;
L
Linus Torvalds 已提交
1326

1327 1328 1329
	tspace = dquot->dq_dqb.dqb_curspace + dquot->dq_dqb.dqb_rsvspace
		+ space;

L
Linus Torvalds 已提交
1330
	if (dquot->dq_dqb.dqb_bhardlimit &&
1331
	    tspace > dquot->dq_dqb.dqb_bhardlimit &&
L
Linus Torvalds 已提交
1332 1333
            !ignore_hardlimit(dquot)) {
		if (!prealloc)
1334
			prepare_warning(warn, dquot, QUOTA_NL_BHARDWARN);
1335
		return -EDQUOT;
L
Linus Torvalds 已提交
1336 1337 1338
	}

	if (dquot->dq_dqb.dqb_bsoftlimit &&
1339
	    tspace > dquot->dq_dqb.dqb_bsoftlimit &&
J
Jan Kara 已提交
1340
	    dquot->dq_dqb.dqb_btime &&
A
Arnd Bergmann 已提交
1341
	    ktime_get_real_seconds() >= dquot->dq_dqb.dqb_btime &&
L
Linus Torvalds 已提交
1342 1343
            !ignore_hardlimit(dquot)) {
		if (!prealloc)
1344
			prepare_warning(warn, dquot, QUOTA_NL_BSOFTLONGWARN);
1345
		return -EDQUOT;
L
Linus Torvalds 已提交
1346 1347 1348
	}

	if (dquot->dq_dqb.dqb_bsoftlimit &&
1349
	    tspace > dquot->dq_dqb.dqb_bsoftlimit &&
L
Linus Torvalds 已提交
1350 1351
	    dquot->dq_dqb.dqb_btime == 0) {
		if (!prealloc) {
1352
			prepare_warning(warn, dquot, QUOTA_NL_BSOFTWARN);
A
Arnd Bergmann 已提交
1353
			dquot->dq_dqb.dqb_btime = ktime_get_real_seconds() +
1354
			    sb_dqopt(sb)->info[dquot->dq_id.type].dqi_bgrace;
L
Linus Torvalds 已提交
1355 1356 1357 1358 1359 1360
		}
		else
			/*
			 * We don't allow preallocation to exceed softlimit so exceeding will
			 * be always printed
			 */
1361
			return -EDQUOT;
L
Linus Torvalds 已提交
1362 1363
	}

1364
	return 0;
L
Linus Torvalds 已提交
1365 1366
}

1367
static int info_idq_free(struct dquot *dquot, qsize_t inodes)
1368
{
J
Jan Kara 已提交
1369 1370
	qsize_t newinodes;

1371
	if (test_bit(DQ_FAKE_B, &dquot->dq_flags) ||
1372
	    dquot->dq_dqb.dqb_curinodes <= dquot->dq_dqb.dqb_isoftlimit ||
1373
	    !sb_has_quota_limits_enabled(dquot->dq_sb, dquot->dq_id.type))
1374 1375
		return QUOTA_NL_NOWARN;

J
Jan Kara 已提交
1376 1377
	newinodes = dquot->dq_dqb.dqb_curinodes - inodes;
	if (newinodes <= dquot->dq_dqb.dqb_isoftlimit)
1378 1379
		return QUOTA_NL_ISOFTBELOW;
	if (dquot->dq_dqb.dqb_curinodes >= dquot->dq_dqb.dqb_ihardlimit &&
J
Jan Kara 已提交
1380
	    newinodes < dquot->dq_dqb.dqb_ihardlimit)
1381 1382 1383 1384 1385 1386 1387
		return QUOTA_NL_IHARDBELOW;
	return QUOTA_NL_NOWARN;
}

static int info_bdq_free(struct dquot *dquot, qsize_t space)
{
	if (test_bit(DQ_FAKE_B, &dquot->dq_flags) ||
1388
	    dquot->dq_dqb.dqb_curspace <= dquot->dq_dqb.dqb_bsoftlimit)
1389 1390
		return QUOTA_NL_NOWARN;

1391
	if (dquot->dq_dqb.dqb_curspace - space <= dquot->dq_dqb.dqb_bsoftlimit)
1392
		return QUOTA_NL_BSOFTBELOW;
1393 1394
	if (dquot->dq_dqb.dqb_curspace >= dquot->dq_dqb.dqb_bhardlimit &&
	    dquot->dq_dqb.dqb_curspace - space < dquot->dq_dqb.dqb_bhardlimit)
1395 1396 1397
		return QUOTA_NL_BHARDBELOW;
	return QUOTA_NL_NOWARN;
}
1398

1399 1400 1401 1402 1403 1404 1405 1406 1407
static int dquot_active(const struct inode *inode)
{
	struct super_block *sb = inode->i_sb;

	if (IS_NOQUOTA(inode))
		return 0;
	return sb_any_quota_loaded(sb) & ~sb_any_quota_suspended(sb);
}

L
Linus Torvalds 已提交
1408
/*
1409 1410 1411 1412
 * Initialize quota pointers in inode
 *
 * It is better to call this function outside of any transaction as it
 * might need a lot of space in journal for dquot structure allocation.
L
Linus Torvalds 已提交
1413
 */
1414
static int __dquot_initialize(struct inode *inode, int type)
L
Linus Torvalds 已提交
1415
{
1416
	int cnt, init_needed = 0;
1417
	struct dquot **dquots, *got[MAXQUOTAS] = {};
J
Jan Kara 已提交
1418
	struct super_block *sb = inode->i_sb;
1419
	qsize_t rsv;
1420
	int ret = 0;
L
Linus Torvalds 已提交
1421

1422
	if (!dquot_active(inode))
1423
		return 0;
J
Jan Kara 已提交
1424

1425 1426
	dquots = i_dquot(inode);

J
Jan Kara 已提交
1427 1428
	/* First get references to structures we might need. */
	for (cnt = 0; cnt < MAXQUOTAS; cnt++) {
1429
		struct kqid qid;
1430 1431
		kprojid_t projid;
		int rc;
1432
		struct dquot *dquot;
1433

J
Jan Kara 已提交
1434 1435
		if (type != -1 && cnt != type)
			continue;
1436 1437 1438 1439 1440
		/*
		 * The i_dquot should have been initialized in most cases,
		 * we check it without locking here to avoid unnecessary
		 * dqget()/dqput() calls.
		 */
1441
		if (dquots[cnt])
1442
			continue;
1443 1444 1445 1446

		if (!sb_has_quota_active(sb, cnt))
			continue;

1447 1448
		init_needed = 1;

J
Jan Kara 已提交
1449 1450
		switch (cnt) {
		case USRQUOTA:
1451
			qid = make_kqid_uid(inode->i_uid);
J
Jan Kara 已提交
1452 1453
			break;
		case GRPQUOTA:
1454
			qid = make_kqid_gid(inode->i_gid);
J
Jan Kara 已提交
1455
			break;
1456 1457 1458 1459 1460 1461
		case PRJQUOTA:
			rc = inode->i_sb->dq_op->get_projid(inode, &projid);
			if (rc)
				continue;
			qid = make_kqid_projid(projid);
			break;
J
Jan Kara 已提交
1462
		}
1463 1464 1465 1466 1467 1468 1469 1470 1471 1472
		dquot = dqget(sb, qid);
		if (IS_ERR(dquot)) {
			/* We raced with somebody turning quotas off... */
			if (PTR_ERR(dquot) != -ESRCH) {
				ret = PTR_ERR(dquot);
				goto out_put;
			}
			dquot = NULL;
		}
		got[cnt] = dquot;
J
Jan Kara 已提交
1473 1474
	}

1475 1476
	/* All required i_dquot has been initialized */
	if (!init_needed)
1477
		return 0;
1478

N
Niu Yawei 已提交
1479
	spin_lock(&dq_data_lock);
L
Linus Torvalds 已提交
1480
	if (IS_NOQUOTA(inode))
1481
		goto out_lock;
L
Linus Torvalds 已提交
1482 1483 1484
	for (cnt = 0; cnt < MAXQUOTAS; cnt++) {
		if (type != -1 && cnt != type)
			continue;
J
Jan Kara 已提交
1485 1486 1487
		/* Avoid races with quotaoff() */
		if (!sb_has_quota_active(sb, cnt))
			continue;
1488 1489 1490
		/* We could race with quotaon or dqget() could have failed */
		if (!got[cnt])
			continue;
1491 1492
		if (!dquots[cnt]) {
			dquots[cnt] = got[cnt];
J
Jan Kara 已提交
1493
			got[cnt] = NULL;
1494 1495 1496 1497 1498
			/*
			 * Make quota reservation system happy if someone
			 * did a write before quota was turned on
			 */
			rsv = inode_get_rsv_space(inode);
N
Niu Yawei 已提交
1499
			if (unlikely(rsv))
1500
				dquot_resv_space(dquots[cnt], rsv);
L
Linus Torvalds 已提交
1501 1502
		}
	}
1503
out_lock:
N
Niu Yawei 已提交
1504
	spin_unlock(&dq_data_lock);
1505
out_put:
J
Jan Kara 已提交
1506
	/* Drop unused references */
1507
	dqput_all(got);
1508 1509

	return ret;
1510 1511
}

1512
int dquot_initialize(struct inode *inode)
1513
{
1514
	return __dquot_initialize(inode, -1);
L
Linus Torvalds 已提交
1515
}
1516
EXPORT_SYMBOL(dquot_initialize);
L
Linus Torvalds 已提交
1517

1518 1519 1520 1521 1522 1523 1524 1525 1526 1527 1528 1529 1530 1531 1532 1533
bool dquot_initialize_needed(struct inode *inode)
{
	struct dquot **dquots;
	int i;

	if (!dquot_active(inode))
		return false;

	dquots = i_dquot(inode);
	for (i = 0; i < MAXQUOTAS; i++)
		if (!dquots[i] && sb_has_quota_active(inode->i_sb, i))
			return true;
	return false;
}
EXPORT_SYMBOL(dquot_initialize_needed);

L
Linus Torvalds 已提交
1534
/*
N
Niu Yawei 已提交
1535 1536 1537 1538 1539 1540
 * Release all quotas referenced by inode.
 *
 * This function only be called on inode free or converting
 * a file to quota file, no other users for the i_dquot in
 * both cases, so we needn't call synchronize_srcu() after
 * clearing i_dquot.
L
Linus Torvalds 已提交
1541
 */
1542
static void __dquot_drop(struct inode *inode)
L
Linus Torvalds 已提交
1543 1544
{
	int cnt;
1545
	struct dquot **dquots = i_dquot(inode);
J
Jan Kara 已提交
1546
	struct dquot *put[MAXQUOTAS];
L
Linus Torvalds 已提交
1547

N
Niu Yawei 已提交
1548
	spin_lock(&dq_data_lock);
L
Linus Torvalds 已提交
1549
	for (cnt = 0; cnt < MAXQUOTAS; cnt++) {
1550 1551
		put[cnt] = dquots[cnt];
		dquots[cnt] = NULL;
L
Linus Torvalds 已提交
1552
	}
N
Niu Yawei 已提交
1553
	spin_unlock(&dq_data_lock);
1554
	dqput_all(put);
L
Linus Torvalds 已提交
1555 1556
}

1557 1558
void dquot_drop(struct inode *inode)
{
1559
	struct dquot * const *dquots;
1560 1561 1562 1563 1564 1565 1566 1567 1568 1569 1570 1571
	int cnt;

	if (IS_NOQUOTA(inode))
		return;

	/*
	 * Test before calling to rule out calls from proc and such
	 * where we are not allowed to block. Note that this is
	 * actually reliable test even without the lock - the caller
	 * must assure that nobody can come after the DQUOT_DROP and
	 * add quota pointers back anyway.
	 */
1572
	dquots = i_dquot(inode);
1573
	for (cnt = 0; cnt < MAXQUOTAS; cnt++) {
1574
		if (dquots[cnt])
1575 1576 1577 1578 1579 1580 1581
			break;
	}

	if (cnt < MAXQUOTAS)
		__dquot_drop(inode);
}
EXPORT_SYMBOL(dquot_drop);
1582

1583 1584 1585 1586 1587 1588 1589 1590 1591 1592 1593 1594
/*
 * inode_reserved_space is managed internally by quota, and protected by
 * i_lock similar to i_blocks+i_bytes.
 */
static qsize_t *inode_reserved_space(struct inode * inode)
{
	/* Filesystem must explicitly define it's own method in order to use
	 * quota reservation interface */
	BUG_ON(!inode->i_sb->dq_op->get_reserved_space);
	return inode->i_sb->dq_op->get_reserved_space(inode);
}

1595
void inode_add_rsv_space(struct inode *inode, qsize_t number)
1596 1597 1598 1599 1600
{
	spin_lock(&inode->i_lock);
	*inode_reserved_space(inode) += number;
	spin_unlock(&inode->i_lock);
}
1601
EXPORT_SYMBOL(inode_add_rsv_space);
1602

1603
void inode_claim_rsv_space(struct inode *inode, qsize_t number)
1604 1605 1606 1607 1608 1609
{
	spin_lock(&inode->i_lock);
	*inode_reserved_space(inode) -= number;
	__inode_add_bytes(inode, number);
	spin_unlock(&inode->i_lock);
}
1610
EXPORT_SYMBOL(inode_claim_rsv_space);
1611

1612 1613 1614 1615 1616 1617 1618 1619 1620
void inode_reclaim_rsv_space(struct inode *inode, qsize_t number)
{
	spin_lock(&inode->i_lock);
	*inode_reserved_space(inode) += number;
	__inode_sub_bytes(inode, number);
	spin_unlock(&inode->i_lock);
}
EXPORT_SYMBOL(inode_reclaim_rsv_space);

1621
void inode_sub_rsv_space(struct inode *inode, qsize_t number)
1622 1623 1624 1625 1626
{
	spin_lock(&inode->i_lock);
	*inode_reserved_space(inode) -= number;
	spin_unlock(&inode->i_lock);
}
1627
EXPORT_SYMBOL(inode_sub_rsv_space);
1628 1629 1630 1631

static qsize_t inode_get_rsv_space(struct inode *inode)
{
	qsize_t ret;
1632 1633 1634

	if (!inode->i_sb->dq_op->get_reserved_space)
		return 0;
1635 1636 1637 1638 1639 1640 1641 1642 1643 1644 1645 1646 1647 1648 1649 1650 1651 1652 1653 1654 1655 1656 1657
	spin_lock(&inode->i_lock);
	ret = *inode_reserved_space(inode);
	spin_unlock(&inode->i_lock);
	return ret;
}

static void inode_incr_space(struct inode *inode, qsize_t number,
				int reserve)
{
	if (reserve)
		inode_add_rsv_space(inode, number);
	else
		inode_add_bytes(inode, number);
}

static void inode_decr_space(struct inode *inode, qsize_t number, int reserve)
{
	if (reserve)
		inode_sub_rsv_space(inode, number);
	else
		inode_sub_bytes(inode, number);
}

L
Linus Torvalds 已提交
1658
/*
1659 1660 1661 1662 1663 1664 1665
 * This functions updates i_blocks+i_bytes fields and quota information
 * (together with appropriate checks).
 *
 * NOTE: We absolutely rely on the fact that caller dirties the inode
 * (usually helpers in quotaops.h care about this) and holds a handle for
 * the current transaction so that dquot write and inode write go into the
 * same transaction.
L
Linus Torvalds 已提交
1666 1667 1668 1669 1670
 */

/*
 * This operation can block, but only after everything is updated
 */
1671
int __dquot_alloc_space(struct inode *inode, qsize_t number, int flags)
L
Linus Torvalds 已提交
1672
{
N
Niu Yawei 已提交
1673
	int cnt, ret = 0, index;
1674
	struct dquot_warn warn[MAXQUOTAS];
1675
	int reserve = flags & DQUOT_SPACE_RESERVE;
1676
	struct dquot **dquots;
L
Linus Torvalds 已提交
1677

1678
	if (!dquot_active(inode)) {
1679 1680 1681 1682
		inode_incr_space(inode, number, reserve);
		goto out;
	}

L
Linus Torvalds 已提交
1683
	for (cnt = 0; cnt < MAXQUOTAS; cnt++)
1684
		warn[cnt].w_type = QUOTA_NL_NOWARN;
L
Linus Torvalds 已提交
1685

1686
	dquots = i_dquot(inode);
N
Niu Yawei 已提交
1687
	index = srcu_read_lock(&dquot_srcu);
L
Linus Torvalds 已提交
1688 1689
	spin_lock(&dq_data_lock);
	for (cnt = 0; cnt < MAXQUOTAS; cnt++) {
1690
		if (!dquots[cnt])
L
Linus Torvalds 已提交
1691
			continue;
1692 1693 1694
		ret = check_bdq(dquots[cnt], number,
				!(flags & DQUOT_SPACE_WARN), &warn[cnt]);
		if (ret && !(flags & DQUOT_SPACE_NOFAIL)) {
1695 1696
			spin_unlock(&dq_data_lock);
			goto out_flush_warn;
1697
		}
L
Linus Torvalds 已提交
1698 1699
	}
	for (cnt = 0; cnt < MAXQUOTAS; cnt++) {
1700
		if (!dquots[cnt])
L
Linus Torvalds 已提交
1701
			continue;
1702
		if (reserve)
1703
			dquot_resv_space(dquots[cnt], number);
1704
		else
1705
			dquot_incr_space(dquots[cnt], number);
L
Linus Torvalds 已提交
1706
	}
1707
	inode_incr_space(inode, number, reserve);
L
Linus Torvalds 已提交
1708
	spin_unlock(&dq_data_lock);
1709

1710 1711
	if (reserve)
		goto out_flush_warn;
1712
	mark_all_dquot_dirty(dquots);
1713
out_flush_warn:
N
Niu Yawei 已提交
1714
	srcu_read_unlock(&dquot_srcu, index);
1715
	flush_warnings(warn);
1716 1717 1718
out:
	return ret;
}
1719
EXPORT_SYMBOL(__dquot_alloc_space);
L
Linus Torvalds 已提交
1720 1721 1722 1723

/*
 * This operation can block, but only after everything is updated
 */
1724
int dquot_alloc_inode(struct inode *inode)
L
Linus Torvalds 已提交
1725
{
N
Niu Yawei 已提交
1726
	int cnt, ret = 0, index;
1727
	struct dquot_warn warn[MAXQUOTAS];
1728
	struct dquot * const *dquots;
L
Linus Torvalds 已提交
1729

1730
	if (!dquot_active(inode))
1731
		return 0;
L
Linus Torvalds 已提交
1732
	for (cnt = 0; cnt < MAXQUOTAS; cnt++)
1733
		warn[cnt].w_type = QUOTA_NL_NOWARN;
N
Niu Yawei 已提交
1734

1735
	dquots = i_dquot(inode);
N
Niu Yawei 已提交
1736
	index = srcu_read_lock(&dquot_srcu);
L
Linus Torvalds 已提交
1737 1738
	spin_lock(&dq_data_lock);
	for (cnt = 0; cnt < MAXQUOTAS; cnt++) {
1739
		if (!dquots[cnt])
L
Linus Torvalds 已提交
1740
			continue;
1741
		ret = check_idq(dquots[cnt], 1, &warn[cnt]);
1742
		if (ret)
L
Linus Torvalds 已提交
1743 1744 1745 1746
			goto warn_put_all;
	}

	for (cnt = 0; cnt < MAXQUOTAS; cnt++) {
1747
		if (!dquots[cnt])
L
Linus Torvalds 已提交
1748
			continue;
1749
		dquot_incr_inodes(dquots[cnt], 1);
L
Linus Torvalds 已提交
1750
	}
1751

L
Linus Torvalds 已提交
1752 1753
warn_put_all:
	spin_unlock(&dq_data_lock);
1754
	if (ret == 0)
1755
		mark_all_dquot_dirty(dquots);
N
Niu Yawei 已提交
1756
	srcu_read_unlock(&dquot_srcu, index);
1757
	flush_warnings(warn);
L
Linus Torvalds 已提交
1758 1759
	return ret;
}
1760
EXPORT_SYMBOL(dquot_alloc_inode);
L
Linus Torvalds 已提交
1761

1762 1763 1764 1765
/*
 * Convert in-memory reserved quotas to real consumed quotas
 */
int dquot_claim_space_nodirty(struct inode *inode, qsize_t number)
1766
{
1767
	struct dquot **dquots;
N
Niu Yawei 已提交
1768
	int cnt, index;
1769

1770
	if (!dquot_active(inode)) {
1771
		inode_claim_rsv_space(inode, number);
1772
		return 0;
1773 1774
	}

1775
	dquots = i_dquot(inode);
N
Niu Yawei 已提交
1776
	index = srcu_read_lock(&dquot_srcu);
1777 1778 1779
	spin_lock(&dq_data_lock);
	/* Claim reserved quotas to allocated quotas */
	for (cnt = 0; cnt < MAXQUOTAS; cnt++) {
1780 1781
		if (dquots[cnt])
			dquot_claim_reserved_space(dquots[cnt], number);
1782 1783
	}
	/* Update inode bytes */
1784
	inode_claim_rsv_space(inode, number);
1785
	spin_unlock(&dq_data_lock);
1786
	mark_all_dquot_dirty(dquots);
N
Niu Yawei 已提交
1787
	srcu_read_unlock(&dquot_srcu, index);
1788
	return 0;
1789
}
1790
EXPORT_SYMBOL(dquot_claim_space_nodirty);
1791

1792 1793 1794 1795 1796
/*
 * Convert allocated space back to in-memory reserved quotas
 */
void dquot_reclaim_space_nodirty(struct inode *inode, qsize_t number)
{
1797
	struct dquot **dquots;
N
Niu Yawei 已提交
1798
	int cnt, index;
1799 1800 1801 1802 1803 1804

	if (!dquot_active(inode)) {
		inode_reclaim_rsv_space(inode, number);
		return;
	}

1805
	dquots = i_dquot(inode);
N
Niu Yawei 已提交
1806
	index = srcu_read_lock(&dquot_srcu);
1807 1808 1809
	spin_lock(&dq_data_lock);
	/* Claim reserved quotas to allocated quotas */
	for (cnt = 0; cnt < MAXQUOTAS; cnt++) {
1810 1811
		if (dquots[cnt])
			dquot_reclaim_reserved_space(dquots[cnt], number);
1812 1813 1814 1815
	}
	/* Update inode bytes */
	inode_reclaim_rsv_space(inode, number);
	spin_unlock(&dq_data_lock);
1816
	mark_all_dquot_dirty(dquots);
N
Niu Yawei 已提交
1817
	srcu_read_unlock(&dquot_srcu, index);
1818 1819 1820 1821
	return;
}
EXPORT_SYMBOL(dquot_reclaim_space_nodirty);

L
Linus Torvalds 已提交
1822 1823 1824
/*
 * This operation can block, but only after everything is updated
 */
1825
void __dquot_free_space(struct inode *inode, qsize_t number, int flags)
L
Linus Torvalds 已提交
1826 1827
{
	unsigned int cnt;
1828
	struct dquot_warn warn[MAXQUOTAS];
1829
	struct dquot **dquots;
N
Niu Yawei 已提交
1830
	int reserve = flags & DQUOT_SPACE_RESERVE, index;
L
Linus Torvalds 已提交
1831

1832
	if (!dquot_active(inode)) {
1833
		inode_decr_space(inode, number, reserve);
1834
		return;
L
Linus Torvalds 已提交
1835
	}
1836

1837
	dquots = i_dquot(inode);
N
Niu Yawei 已提交
1838
	index = srcu_read_lock(&dquot_srcu);
L
Linus Torvalds 已提交
1839 1840
	spin_lock(&dq_data_lock);
	for (cnt = 0; cnt < MAXQUOTAS; cnt++) {
1841 1842 1843 1844
		int wtype;

		warn[cnt].w_type = QUOTA_NL_NOWARN;
		if (!dquots[cnt])
L
Linus Torvalds 已提交
1845
			continue;
1846 1847 1848
		wtype = info_bdq_free(dquots[cnt], number);
		if (wtype != QUOTA_NL_NOWARN)
			prepare_warning(&warn[cnt], dquots[cnt], wtype);
1849
		if (reserve)
1850
			dquot_free_reserved_space(dquots[cnt], number);
1851
		else
1852
			dquot_decr_space(dquots[cnt], number);
L
Linus Torvalds 已提交
1853
	}
1854
	inode_decr_space(inode, number, reserve);
L
Linus Torvalds 已提交
1855
	spin_unlock(&dq_data_lock);
1856 1857 1858

	if (reserve)
		goto out_unlock;
1859
	mark_all_dquot_dirty(dquots);
1860
out_unlock:
N
Niu Yawei 已提交
1861
	srcu_read_unlock(&dquot_srcu, index);
1862
	flush_warnings(warn);
1863
}
1864
EXPORT_SYMBOL(__dquot_free_space);
1865

L
Linus Torvalds 已提交
1866 1867 1868
/*
 * This operation can block, but only after everything is updated
 */
1869
void dquot_free_inode(struct inode *inode)
L
Linus Torvalds 已提交
1870 1871
{
	unsigned int cnt;
1872
	struct dquot_warn warn[MAXQUOTAS];
1873
	struct dquot * const *dquots;
N
Niu Yawei 已提交
1874
	int index;
L
Linus Torvalds 已提交
1875

1876
	if (!dquot_active(inode))
1877
		return;
1878

1879
	dquots = i_dquot(inode);
N
Niu Yawei 已提交
1880
	index = srcu_read_lock(&dquot_srcu);
L
Linus Torvalds 已提交
1881 1882
	spin_lock(&dq_data_lock);
	for (cnt = 0; cnt < MAXQUOTAS; cnt++) {
1883 1884 1885 1886
		int wtype;

		warn[cnt].w_type = QUOTA_NL_NOWARN;
		if (!dquots[cnt])
L
Linus Torvalds 已提交
1887
			continue;
1888 1889 1890 1891
		wtype = info_idq_free(dquots[cnt], 1);
		if (wtype != QUOTA_NL_NOWARN)
			prepare_warning(&warn[cnt], dquots[cnt], wtype);
		dquot_decr_inodes(dquots[cnt], 1);
L
Linus Torvalds 已提交
1892 1893
	}
	spin_unlock(&dq_data_lock);
1894
	mark_all_dquot_dirty(dquots);
N
Niu Yawei 已提交
1895
	srcu_read_unlock(&dquot_srcu, index);
1896
	flush_warnings(warn);
L
Linus Torvalds 已提交
1897
}
1898
EXPORT_SYMBOL(dquot_free_inode);
L
Linus Torvalds 已提交
1899 1900 1901

/*
 * Transfer the number of inode and blocks from one diskquota to an other.
1902 1903 1904
 * On success, dquot references in transfer_to are consumed and references
 * to original dquots that need to be released are placed there. On failure,
 * references are kept untouched.
L
Linus Torvalds 已提交
1905 1906 1907
 *
 * This operation can block, but only after everything is updated
 * A transaction must be started when entering this function.
1908
 *
N
Niu Yawei 已提交
1909 1910
 * We are holding reference on transfer_from & transfer_to, no need to
 * protect them by srcu_read_lock().
L
Linus Torvalds 已提交
1911
 */
1912
int __dquot_transfer(struct inode *inode, struct dquot **transfer_to)
L
Linus Torvalds 已提交
1913
{
1914 1915
	qsize_t space, cur_space;
	qsize_t rsv_space = 0;
1916
	qsize_t inode_usage = 1;
1917
	struct dquot *transfer_from[MAXQUOTAS] = {};
1918
	int cnt, ret = 0;
1919
	char is_valid[MAXQUOTAS] = {};
1920 1921 1922
	struct dquot_warn warn_to[MAXQUOTAS];
	struct dquot_warn warn_from_inodes[MAXQUOTAS];
	struct dquot_warn warn_from_space[MAXQUOTAS];
L
Linus Torvalds 已提交
1923 1924

	if (IS_NOQUOTA(inode))
1925
		return 0;
1926 1927 1928 1929 1930 1931 1932

	if (inode->i_sb->dq_op->get_inode_usage) {
		ret = inode->i_sb->dq_op->get_inode_usage(inode, &inode_usage);
		if (ret)
			return ret;
	}

J
Jan Kara 已提交
1933
	/* Initialize the arrays */
1934 1935 1936 1937 1938
	for (cnt = 0; cnt < MAXQUOTAS; cnt++) {
		warn_to[cnt].w_type = QUOTA_NL_NOWARN;
		warn_from_inodes[cnt].w_type = QUOTA_NL_NOWARN;
		warn_from_space[cnt].w_type = QUOTA_NL_NOWARN;
	}
N
Niu Yawei 已提交
1939 1940

	spin_lock(&dq_data_lock);
J
Jan Kara 已提交
1941
	if (IS_NOQUOTA(inode)) {	/* File without quota accounting? */
N
Niu Yawei 已提交
1942
		spin_unlock(&dq_data_lock);
1943
		return 0;
J
Jan Kara 已提交
1944
	}
1945
	cur_space = inode_get_bytes(inode);
1946
	rsv_space = inode_get_rsv_space(inode);
1947
	space = cur_space + rsv_space;
L
Linus Torvalds 已提交
1948 1949
	/* Build the transfer_from list and check the limits */
	for (cnt = 0; cnt < MAXQUOTAS; cnt++) {
1950 1951 1952
		/*
		 * Skip changes for same uid or gid or for turned off quota-type.
		 */
J
Jan Kara 已提交
1953
		if (!transfer_to[cnt])
L
Linus Torvalds 已提交
1954
			continue;
1955 1956 1957 1958
		/* Avoid races with quotaoff() */
		if (!sb_has_quota_active(inode->i_sb, cnt))
			continue;
		is_valid[cnt] = 1;
1959
		transfer_from[cnt] = i_dquot(inode)[cnt];
1960
		ret = check_idq(transfer_to[cnt], inode_usage, &warn_to[cnt]);
1961 1962
		if (ret)
			goto over_quota;
1963
		ret = check_bdq(transfer_to[cnt], space, 0, &warn_to[cnt]);
1964
		if (ret)
J
Jan Kara 已提交
1965
			goto over_quota;
L
Linus Torvalds 已提交
1966 1967 1968 1969 1970 1971
	}

	/*
	 * Finally perform the needed transfer from transfer_from to transfer_to
	 */
	for (cnt = 0; cnt < MAXQUOTAS; cnt++) {
1972
		if (!is_valid[cnt])
L
Linus Torvalds 已提交
1973 1974 1975
			continue;
		/* Due to IO error we might not have transfer_from[] structure */
		if (transfer_from[cnt]) {
1976
			int wtype;
1977
			wtype = info_idq_free(transfer_from[cnt], inode_usage);
1978 1979 1980 1981 1982 1983 1984
			if (wtype != QUOTA_NL_NOWARN)
				prepare_warning(&warn_from_inodes[cnt],
						transfer_from[cnt], wtype);
			wtype = info_bdq_free(transfer_from[cnt], space);
			if (wtype != QUOTA_NL_NOWARN)
				prepare_warning(&warn_from_space[cnt],
						transfer_from[cnt], wtype);
1985
			dquot_decr_inodes(transfer_from[cnt], inode_usage);
1986 1987 1988
			dquot_decr_space(transfer_from[cnt], cur_space);
			dquot_free_reserved_space(transfer_from[cnt],
						  rsv_space);
L
Linus Torvalds 已提交
1989 1990
		}

1991
		dquot_incr_inodes(transfer_to[cnt], inode_usage);
1992 1993
		dquot_incr_space(transfer_to[cnt], cur_space);
		dquot_resv_space(transfer_to[cnt], rsv_space);
L
Linus Torvalds 已提交
1994

1995
		i_dquot(inode)[cnt] = transfer_to[cnt];
L
Linus Torvalds 已提交
1996 1997
	}
	spin_unlock(&dq_data_lock);
J
Jan Kara 已提交
1998

1999 2000
	mark_all_dquot_dirty(transfer_from);
	mark_all_dquot_dirty(transfer_to);
2001 2002 2003
	flush_warnings(warn_to);
	flush_warnings(warn_from_inodes);
	flush_warnings(warn_from_space);
2004
	/* Pass back references to put */
2005
	for (cnt = 0; cnt < MAXQUOTAS; cnt++)
2006 2007
		if (is_valid[cnt])
			transfer_to[cnt] = transfer_from[cnt];
2008
	return 0;
J
Jan Kara 已提交
2009 2010
over_quota:
	spin_unlock(&dq_data_lock);
2011
	flush_warnings(warn_to);
2012
	return ret;
L
Linus Torvalds 已提交
2013
}
2014
EXPORT_SYMBOL(__dquot_transfer);
L
Linus Torvalds 已提交
2015

2016 2017 2018
/* Wrapper for transferring ownership of an inode for uid/gid only
 * Called from FSXXX_setattr()
 */
2019
int dquot_transfer(struct inode *inode, struct iattr *iattr)
2020
{
2021
	struct dquot *transfer_to[MAXQUOTAS] = {};
2022
	struct dquot *dquot;
2023 2024
	struct super_block *sb = inode->i_sb;
	int ret;
2025

2026
	if (!dquot_active(inode))
2027
		return 0;
2028

2029 2030 2031 2032 2033 2034 2035 2036 2037 2038 2039 2040 2041 2042 2043 2044 2045 2046 2047 2048 2049 2050
	if (iattr->ia_valid & ATTR_UID && !uid_eq(iattr->ia_uid, inode->i_uid)){
		dquot = dqget(sb, make_kqid_uid(iattr->ia_uid));
		if (IS_ERR(dquot)) {
			if (PTR_ERR(dquot) != -ESRCH) {
				ret = PTR_ERR(dquot);
				goto out_put;
			}
			dquot = NULL;
		}
		transfer_to[USRQUOTA] = dquot;
	}
	if (iattr->ia_valid & ATTR_GID && !gid_eq(iattr->ia_gid, inode->i_gid)){
		dquot = dqget(sb, make_kqid_gid(iattr->ia_gid));
		if (IS_ERR(dquot)) {
			if (PTR_ERR(dquot) != -ESRCH) {
				ret = PTR_ERR(dquot);
				goto out_put;
			}
			dquot = NULL;
		}
		transfer_to[GRPQUOTA] = dquot;
	}
2051
	ret = __dquot_transfer(inode, transfer_to);
2052
out_put:
2053 2054
	dqput_all(transfer_to);
	return ret;
2055
}
2056
EXPORT_SYMBOL(dquot_transfer);
2057

L
Linus Torvalds 已提交
2058 2059 2060 2061 2062 2063 2064 2065
/*
 * Write info of quota file to disk
 */
int dquot_commit_info(struct super_block *sb, int type)
{
	int ret;
	struct quota_info *dqopt = sb_dqopt(sb);

J
Jan Kara 已提交
2066
	down_write(&dqopt->dqio_sem);
L
Linus Torvalds 已提交
2067
	ret = dqopt->ops[type]->write_file_info(sb, type);
J
Jan Kara 已提交
2068
	up_write(&dqopt->dqio_sem);
L
Linus Torvalds 已提交
2069 2070
	return ret;
}
2071
EXPORT_SYMBOL(dquot_commit_info);
L
Linus Torvalds 已提交
2072

2073 2074 2075 2076 2077
int dquot_get_next_id(struct super_block *sb, struct kqid *qid)
{
	struct quota_info *dqopt = sb_dqopt(sb);
	int err;

2078 2079 2080 2081
	if (!sb_has_quota_active(sb, qid->type))
		return -ESRCH;
	if (!dqopt->ops[qid->type]->get_next_id)
		return -ENOSYS;
2082
	down_read(&dqopt->dqio_sem);
2083
	err = dqopt->ops[qid->type]->get_next_id(sb, qid);
2084
	up_read(&dqopt->dqio_sem);
2085 2086 2087 2088
	return err;
}
EXPORT_SYMBOL(dquot_get_next_id);

L
Linus Torvalds 已提交
2089 2090 2091
/*
 * Definitions of diskquota operations.
 */
2092
const struct dquot_operations dquot_operations = {
L
Linus Torvalds 已提交
2093 2094 2095 2096
	.write_dquot	= dquot_commit,
	.acquire_dquot	= dquot_acquire,
	.release_dquot	= dquot_release,
	.mark_dirty	= dquot_mark_dquot_dirty,
2097 2098 2099
	.write_info	= dquot_commit_info,
	.alloc_dquot	= dquot_alloc,
	.destroy_dquot	= dquot_destroy,
2100
	.get_next_id	= dquot_get_next_id,
L
Linus Torvalds 已提交
2101
};
2102
EXPORT_SYMBOL(dquot_operations);
L
Linus Torvalds 已提交
2103

2104 2105 2106 2107 2108 2109 2110 2111 2112
/*
 * Generic helper for ->open on filesystems supporting disk quotas.
 */
int dquot_file_open(struct inode *inode, struct file *file)
{
	int error;

	error = generic_file_open(inode, file);
	if (!error && (file->f_mode & FMODE_WRITE))
2113
		dquot_initialize(inode);
2114 2115 2116 2117
	return error;
}
EXPORT_SYMBOL(dquot_file_open);

L
Linus Torvalds 已提交
2118 2119 2120
/*
 * Turn quota off on a device. type == -1 ==> quotaoff for all types (umount)
 */
2121
int dquot_disable(struct super_block *sb, int type, unsigned int flags)
L
Linus Torvalds 已提交
2122
{
2123
	int cnt, ret = 0;
L
Linus Torvalds 已提交
2124 2125 2126
	struct quota_info *dqopt = sb_dqopt(sb);
	struct inode *toputinode[MAXQUOTAS];

2127 2128 2129 2130
	/* s_umount should be held in exclusive mode */
	if (WARN_ON_ONCE(down_read_trylock(&sb->s_umount)))
		up_read(&sb->s_umount);

2131 2132 2133 2134 2135 2136 2137
	/* Cannot turn off usage accounting without turning off limits, or
	 * suspend quotas and simultaneously turn quotas off. */
	if ((flags & DQUOT_USAGE_ENABLED && !(flags & DQUOT_LIMITS_ENABLED))
	    || (flags & DQUOT_SUSPENDED && flags & (DQUOT_LIMITS_ENABLED |
	    DQUOT_USAGE_ENABLED)))
		return -EINVAL;

2138 2139 2140 2141 2142
	/*
	 * Skip everything if there's nothing to do. We have to do this because
	 * sometimes we are called when fill_super() failed and calling
	 * sync_fs() in such cases does no good.
	 */
J
Jan Kara 已提交
2143
	if (!sb_any_quota_loaded(sb))
2144
		return 0;
J
Jan Kara 已提交
2145

L
Linus Torvalds 已提交
2146 2147 2148 2149
	for (cnt = 0; cnt < MAXQUOTAS; cnt++) {
		toputinode[cnt] = NULL;
		if (type != -1 && cnt != type)
			continue;
2150
		if (!sb_has_quota_loaded(sb, cnt))
2151
			continue;
2152 2153

		if (flags & DQUOT_SUSPENDED) {
J
Jan Kara 已提交
2154
			spin_lock(&dq_state_lock);
2155 2156
			dqopt->flags |=
				dquot_state_flag(DQUOT_SUSPENDED, cnt);
J
Jan Kara 已提交
2157
			spin_unlock(&dq_state_lock);
2158
		} else {
J
Jan Kara 已提交
2159
			spin_lock(&dq_state_lock);
2160 2161 2162 2163 2164 2165
			dqopt->flags &= ~dquot_state_flag(flags, cnt);
			/* Turning off suspended quotas? */
			if (!sb_has_quota_loaded(sb, cnt) &&
			    sb_has_quota_suspended(sb, cnt)) {
				dqopt->flags &=	~dquot_state_flag(
							DQUOT_SUSPENDED, cnt);
J
Jan Kara 已提交
2166
				spin_unlock(&dq_state_lock);
2167 2168 2169 2170
				iput(dqopt->files[cnt]);
				dqopt->files[cnt] = NULL;
				continue;
			}
J
Jan Kara 已提交
2171
			spin_unlock(&dq_state_lock);
2172
		}
2173 2174 2175

		/* We still have to keep quota loaded? */
		if (sb_has_quota_loaded(sb, cnt) && !(flags & DQUOT_SUSPENDED))
L
Linus Torvalds 已提交
2176 2177 2178 2179 2180 2181
			continue;

		/* Note: these are blocking operations */
		drop_dquot_ref(sb, cnt);
		invalidate_dquots(sb, cnt);
		/*
J
Jan Kara 已提交
2182 2183
		 * Now all dquots should be invalidated, all writes done so we
		 * should be only users of the info. No locks needed.
L
Linus Torvalds 已提交
2184 2185 2186 2187 2188 2189 2190 2191
		 */
		if (info_dirty(&dqopt->info[cnt]))
			sb->dq_op->write_info(sb, cnt);
		if (dqopt->ops[cnt]->free_file_info)
			dqopt->ops[cnt]->free_file_info(sb, cnt);
		put_quota_format(dqopt->info[cnt].dqi_format);

		toputinode[cnt] = dqopt->files[cnt];
2192
		if (!sb_has_quota_loaded(sb, cnt))
2193
			dqopt->files[cnt] = NULL;
L
Linus Torvalds 已提交
2194 2195 2196 2197 2198
		dqopt->info[cnt].dqi_flags = 0;
		dqopt->info[cnt].dqi_igrace = 0;
		dqopt->info[cnt].dqi_bgrace = 0;
		dqopt->ops[cnt] = NULL;
	}
2199 2200 2201 2202 2203

	/* Skip syncing and setting flags if quota files are hidden */
	if (dqopt->flags & DQUOT_QUOTA_SYS_FILE)
		goto put_inodes;

L
Linus Torvalds 已提交
2204
	/* Sync the superblock so that buffers with quota data are written to
2205
	 * disk (and so userspace sees correct data afterwards). */
L
Linus Torvalds 已提交
2206 2207 2208 2209 2210 2211 2212 2213 2214
	if (sb->s_op->sync_fs)
		sb->s_op->sync_fs(sb, 1);
	sync_blockdev(sb->s_bdev);
	/* Now the quota files are just ordinary files and we can set the
	 * inode flags back. Moreover we discard the pagecache so that
	 * userspace sees the writes we did bypassing the pagecache. We
	 * must also discard the blockdev buffers so that we see the
	 * changes done by userspace on the next quotaon() */
	for (cnt = 0; cnt < MAXQUOTAS; cnt++)
2215 2216
		/* This can happen when suspending quotas on remount-ro... */
		if (toputinode[cnt] && !sb_has_quota_loaded(sb, cnt)) {
J
Jan Kara 已提交
2217
			inode_lock(toputinode[cnt]);
2218
			toputinode[cnt]->i_flags &= ~S_NOQUOTA;
J
Jan Kara 已提交
2219 2220 2221
			truncate_inode_pages(&toputinode[cnt]->i_data, 0);
			inode_unlock(toputinode[cnt]);
			mark_inode_dirty_sync(toputinode[cnt]);
2222 2223 2224 2225 2226 2227
		}
	if (sb->s_bdev)
		invalidate_bdev(sb->s_bdev);
put_inodes:
	for (cnt = 0; cnt < MAXQUOTAS; cnt++)
		if (toputinode[cnt]) {
2228
			/* On remount RO, we keep the inode pointer so that we
2229 2230 2231 2232 2233 2234 2235
			 * can reenable quota on the subsequent remount RW. We
			 * have to check 'flags' variable and not use sb_has_
			 * function because another quotaon / quotaoff could
			 * change global state before we got here. We refuse
			 * to suspend quotas when there is pending delete on
			 * the quota file... */
			if (!(flags & DQUOT_SUSPENDED))
2236 2237 2238
				iput(toputinode[cnt]);
			else if (!toputinode[cnt]->i_nlink)
				ret = -EBUSY;
L
Linus Torvalds 已提交
2239
		}
2240
	return ret;
L
Linus Torvalds 已提交
2241
}
2242
EXPORT_SYMBOL(dquot_disable);
L
Linus Torvalds 已提交
2243

2244
int dquot_quota_off(struct super_block *sb, int type)
2245
{
2246 2247
	return dquot_disable(sb, type,
			     DQUOT_USAGE_ENABLED | DQUOT_LIMITS_ENABLED);
2248
}
2249
EXPORT_SYMBOL(dquot_quota_off);
2250

L
Linus Torvalds 已提交
2251 2252 2253 2254
/*
 *	Turn quotas on on a device
 */

2255 2256 2257 2258 2259 2260
/*
 * Helper function to turn quotas on when we already have the inode of
 * quota file and no quota information is loaded.
 */
static int vfs_load_quota_inode(struct inode *inode, int type, int format_id,
	unsigned int flags)
L
Linus Torvalds 已提交
2261 2262 2263 2264 2265 2266 2267 2268 2269 2270 2271 2272 2273 2274 2275 2276
{
	struct quota_format_type *fmt = find_quota_format(format_id);
	struct super_block *sb = inode->i_sb;
	struct quota_info *dqopt = sb_dqopt(sb);
	int error;

	if (!fmt)
		return -ESRCH;
	if (!S_ISREG(inode->i_mode)) {
		error = -EACCES;
		goto out_fmt;
	}
	if (IS_RDONLY(inode)) {
		error = -EROFS;
		goto out_fmt;
	}
2277 2278
	if (!sb->s_op->quota_write || !sb->s_op->quota_read ||
	    (type == PRJQUOTA && sb->dq_op->get_projid == NULL)) {
L
Linus Torvalds 已提交
2279 2280 2281
		error = -EINVAL;
		goto out_fmt;
	}
2282 2283 2284 2285 2286
	/* Filesystems outside of init_user_ns not yet supported */
	if (sb->s_user_ns != &init_user_ns) {
		error = -EINVAL;
		goto out_fmt;
	}
2287 2288 2289 2290 2291
	/* Usage always has to be set... */
	if (!(flags & DQUOT_USAGE_ENABLED)) {
		error = -EINVAL;
		goto out_fmt;
	}
J
Jan Kara 已提交
2292 2293 2294 2295
	if (sb_has_quota_loaded(sb, type)) {
		error = -EBUSY;
		goto out_fmt;
	}
L
Linus Torvalds 已提交
2296

2297
	if (!(dqopt->flags & DQUOT_QUOTA_SYS_FILE)) {
2298 2299 2300 2301 2302 2303 2304
		/* As we bypass the pagecache we must now flush all the
		 * dirty data and invalidate caches so that kernel sees
		 * changes from userspace. It is not enough to just flush
		 * the quota file since if blocksize < pagesize, invalidation
		 * of the cache could fail because of other unrelated dirty
		 * data */
		sync_filesystem(sb);
2305 2306 2307 2308 2309 2310 2311
		invalidate_bdev(sb->s_bdev);
	}

	if (!(dqopt->flags & DQUOT_QUOTA_SYS_FILE)) {
		/* We don't want quota and atime on quota files (deadlocks
		 * possible) Also nobody should write to the file - we use
		 * special IO operations which ignore the immutable bit. */
A
Al Viro 已提交
2312
		inode_lock(inode);
2313
		inode->i_flags |= S_NOQUOTA;
A
Al Viro 已提交
2314
		inode_unlock(inode);
J
Jan Kara 已提交
2315 2316 2317 2318
		/*
		 * When S_NOQUOTA is set, remove dquot references as no more
		 * references can be added
		 */
2319
		__dquot_drop(inode);
2320
	}
L
Linus Torvalds 已提交
2321 2322 2323 2324

	error = -EIO;
	dqopt->files[type] = igrab(inode);
	if (!dqopt->files[type])
J
Jan Kara 已提交
2325
		goto out_file_flags;
L
Linus Torvalds 已提交
2326 2327 2328 2329 2330 2331
	error = -EINVAL;
	if (!fmt->qf_ops->check_quota_file(sb, type))
		goto out_file_init;

	dqopt->ops[type] = fmt->qf_ops;
	dqopt->info[type].dqi_format = fmt;
2332
	dqopt->info[type].dqi_fmt_id = format_id;
L
Linus Torvalds 已提交
2333
	INIT_LIST_HEAD(&dqopt->info[type].dqi_dirty_list);
2334
	down_read(&dqopt->dqio_sem);
J
Jan Kara 已提交
2335 2336
	error = dqopt->ops[type]->read_file_info(sb, type);
	if (error < 0) {
2337
		up_read(&dqopt->dqio_sem);
L
Linus Torvalds 已提交
2338 2339
		goto out_file_init;
	}
2340 2341
	if (dqopt->flags & DQUOT_QUOTA_SYS_FILE)
		dqopt->info[type].dqi_flags |= DQF_SYS_FILE;
2342
	up_read(&dqopt->dqio_sem);
J
Jan Kara 已提交
2343
	spin_lock(&dq_state_lock);
2344
	dqopt->flags |= dquot_state_flag(flags, type);
J
Jan Kara 已提交
2345
	spin_unlock(&dq_state_lock);
L
Linus Torvalds 已提交
2346 2347 2348 2349 2350 2351 2352 2353

	add_dquot_ref(sb, type);

	return 0;

out_file_init:
	dqopt->files[type] = NULL;
	iput(inode);
J
Jan Kara 已提交
2354
out_file_flags:
2355 2356 2357
	inode_lock(inode);
	inode->i_flags &= ~S_NOQUOTA;
	inode_unlock(inode);
L
Linus Torvalds 已提交
2358 2359 2360 2361 2362 2363
out_fmt:
	put_quota_format(fmt);

	return error; 
}

2364
/* Reenable quotas on remount RW */
2365
int dquot_resume(struct super_block *sb, int type)
2366 2367 2368
{
	struct quota_info *dqopt = sb_dqopt(sb);
	struct inode *inode;
2369
	int ret = 0, cnt;
2370
	unsigned int flags;
2371

2372 2373 2374 2375
	/* s_umount should be held in exclusive mode */
	if (WARN_ON_ONCE(down_read_trylock(&sb->s_umount)))
		up_read(&sb->s_umount);

2376 2377 2378
	for (cnt = 0; cnt < MAXQUOTAS; cnt++) {
		if (type != -1 && cnt != type)
			continue;
J
Jan Kara 已提交
2379
		if (!sb_has_quota_suspended(sb, cnt))
2380
			continue;
J
Jan Kara 已提交
2381

2382 2383 2384 2385 2386 2387 2388 2389
		inode = dqopt->files[cnt];
		dqopt->files[cnt] = NULL;
		spin_lock(&dq_state_lock);
		flags = dqopt->flags & dquot_state_flag(DQUOT_USAGE_ENABLED |
							DQUOT_LIMITS_ENABLED,
							cnt);
		dqopt->flags &= ~dquot_state_flag(DQUOT_STATE_FLAGS, cnt);
		spin_unlock(&dq_state_lock);
2390

2391 2392 2393 2394 2395
		flags = dquot_generic_flag(flags, cnt);
		ret = vfs_load_quota_inode(inode, cnt,
				dqopt->info[cnt].dqi_fmt_id, flags);
		iput(inode);
	}
2396 2397 2398

	return ret;
}
2399
EXPORT_SYMBOL(dquot_resume);
2400

2401
int dquot_quota_on(struct super_block *sb, int type, int format_id,
A
Al Viro 已提交
2402
		   const struct path *path)
2403 2404 2405 2406 2407
{
	int error = security_quota_on(path->dentry);
	if (error)
		return error;
	/* Quota file not on the same filesystem? */
2408
	if (path->dentry->d_sb != sb)
2409 2410
		error = -EXDEV;
	else
2411
		error = vfs_load_quota_inode(d_inode(path->dentry), type,
2412 2413
					     format_id, DQUOT_USAGE_ENABLED |
					     DQUOT_LIMITS_ENABLED);
2414 2415
	return error;
}
2416
EXPORT_SYMBOL(dquot_quota_on);
L
Linus Torvalds 已提交
2417

2418 2419 2420 2421
/*
 * More powerful function for turning on quotas allowing setting
 * of individual quota flags
 */
2422 2423
int dquot_enable(struct inode *inode, int type, int format_id,
		 unsigned int flags)
2424 2425 2426 2427
{
	struct super_block *sb = inode->i_sb;

	/* Just unsuspend quotas? */
2428
	BUG_ON(flags & DQUOT_SUSPENDED);
2429 2430 2431
	/* s_umount should be held in exclusive mode */
	if (WARN_ON_ONCE(down_read_trylock(&sb->s_umount)))
		up_read(&sb->s_umount);
2432

2433 2434 2435 2436 2437
	if (!flags)
		return 0;
	/* Just updating flags needed? */
	if (sb_has_quota_loaded(sb, type)) {
		if (flags & DQUOT_USAGE_ENABLED &&
J
Jan Kara 已提交
2438 2439
		    sb_has_quota_usage_enabled(sb, type))
			return -EBUSY;
2440
		if (flags & DQUOT_LIMITS_ENABLED &&
J
Jan Kara 已提交
2441 2442
		    sb_has_quota_limits_enabled(sb, type))
			return -EBUSY;
J
Jan Kara 已提交
2443
		spin_lock(&dq_state_lock);
2444
		sb_dqopt(sb)->flags |= dquot_state_flag(flags, type);
J
Jan Kara 已提交
2445
		spin_unlock(&dq_state_lock);
J
Jan Kara 已提交
2446
		return 0;
2447 2448 2449 2450
	}

	return vfs_load_quota_inode(inode, type, format_id, flags);
}
2451
EXPORT_SYMBOL(dquot_enable);
2452

L
Linus Torvalds 已提交
2453 2454 2455 2456
/*
 * This function is used when filesystem needs to initialize quotas
 * during mount time.
 */
2457
int dquot_quota_on_mount(struct super_block *sb, char *qf_name,
2458
		int format_id, int type)
L
Linus Torvalds 已提交
2459
{
2460
	struct dentry *dentry;
L
Linus Torvalds 已提交
2461 2462
	int error;

A
Al Viro 已提交
2463
	dentry = lookup_one_len_unlocked(qf_name, sb->s_root, strlen(qf_name));
2464 2465 2466
	if (IS_ERR(dentry))
		return PTR_ERR(dentry);

2467
	if (d_really_is_negative(dentry)) {
J
Jan Kara 已提交
2468 2469 2470 2471
		error = -ENOENT;
		goto out;
	}

L
Linus Torvalds 已提交
2472
	error = security_quota_on(dentry);
2473
	if (!error)
2474
		error = vfs_load_quota_inode(d_inode(dentry), type, format_id,
2475
				DQUOT_USAGE_ENABLED | DQUOT_LIMITS_ENABLED);
2476

J
Jan Kara 已提交
2477
out:
2478 2479
	dput(dentry);
	return error;
L
Linus Torvalds 已提交
2480
}
2481
EXPORT_SYMBOL(dquot_quota_on_mount);
2482

2483 2484 2485 2486 2487 2488 2489 2490 2491 2492 2493 2494 2495 2496 2497 2498 2499 2500 2501 2502 2503 2504 2505 2506 2507 2508 2509 2510 2511 2512 2513 2514 2515 2516 2517 2518 2519 2520 2521 2522 2523 2524 2525 2526 2527 2528 2529 2530 2531 2532 2533 2534 2535 2536 2537 2538 2539 2540 2541 2542 2543 2544 2545 2546 2547 2548 2549 2550 2551 2552 2553 2554 2555 2556 2557 2558 2559 2560 2561 2562
static int dquot_quota_enable(struct super_block *sb, unsigned int flags)
{
	int ret;
	int type;
	struct quota_info *dqopt = sb_dqopt(sb);

	if (!(dqopt->flags & DQUOT_QUOTA_SYS_FILE))
		return -ENOSYS;
	/* Accounting cannot be turned on while fs is mounted */
	flags &= ~(FS_QUOTA_UDQ_ACCT | FS_QUOTA_GDQ_ACCT | FS_QUOTA_PDQ_ACCT);
	if (!flags)
		return -EINVAL;
	for (type = 0; type < MAXQUOTAS; type++) {
		if (!(flags & qtype_enforce_flag(type)))
			continue;
		/* Can't enforce without accounting */
		if (!sb_has_quota_usage_enabled(sb, type))
			return -EINVAL;
		ret = dquot_enable(dqopt->files[type], type,
				   dqopt->info[type].dqi_fmt_id,
				   DQUOT_LIMITS_ENABLED);
		if (ret < 0)
			goto out_err;
	}
	return 0;
out_err:
	/* Backout enforcement enablement we already did */
	for (type--; type >= 0; type--)  {
		if (flags & qtype_enforce_flag(type))
			dquot_disable(sb, type, DQUOT_LIMITS_ENABLED);
	}
	/* Error code translation for better compatibility with XFS */
	if (ret == -EBUSY)
		ret = -EEXIST;
	return ret;
}

static int dquot_quota_disable(struct super_block *sb, unsigned int flags)
{
	int ret;
	int type;
	struct quota_info *dqopt = sb_dqopt(sb);

	if (!(dqopt->flags & DQUOT_QUOTA_SYS_FILE))
		return -ENOSYS;
	/*
	 * We don't support turning off accounting via quotactl. In principle
	 * quota infrastructure can do this but filesystems don't expect
	 * userspace to be able to do it.
	 */
	if (flags &
		  (FS_QUOTA_UDQ_ACCT | FS_QUOTA_GDQ_ACCT | FS_QUOTA_PDQ_ACCT))
		return -EOPNOTSUPP;

	/* Filter out limits not enabled */
	for (type = 0; type < MAXQUOTAS; type++)
		if (!sb_has_quota_limits_enabled(sb, type))
			flags &= ~qtype_enforce_flag(type);
	/* Nothing left? */
	if (!flags)
		return -EEXIST;
	for (type = 0; type < MAXQUOTAS; type++) {
		if (flags & qtype_enforce_flag(type)) {
			ret = dquot_disable(sb, type, DQUOT_LIMITS_ENABLED);
			if (ret < 0)
				goto out_err;
		}
	}
	return 0;
out_err:
	/* Backout enforcement disabling we already did */
	for (type--; type >= 0; type--)  {
		if (flags & qtype_enforce_flag(type))
			dquot_enable(dqopt->files[type], type,
				     dqopt->info[type].dqi_fmt_id,
				     DQUOT_LIMITS_ENABLED);
	}
	return ret;
}

L
Linus Torvalds 已提交
2563
/* Generic routine for getting common part of quota structure */
2564
static void do_get_dqblk(struct dquot *dquot, struct qc_dqblk *di)
L
Linus Torvalds 已提交
2565 2566 2567
{
	struct mem_dqblk *dm = &dquot->dq_dqb;

C
Christoph Hellwig 已提交
2568
	memset(di, 0, sizeof(*di));
L
Linus Torvalds 已提交
2569
	spin_lock(&dq_data_lock);
2570 2571
	di->d_spc_hardlimit = dm->dqb_bhardlimit;
	di->d_spc_softlimit = dm->dqb_bsoftlimit;
C
Christoph Hellwig 已提交
2572 2573
	di->d_ino_hardlimit = dm->dqb_ihardlimit;
	di->d_ino_softlimit = dm->dqb_isoftlimit;
2574 2575 2576 2577
	di->d_space = dm->dqb_curspace + dm->dqb_rsvspace;
	di->d_ino_count = dm->dqb_curinodes;
	di->d_spc_timer = dm->dqb_btime;
	di->d_ino_timer = dm->dqb_itime;
L
Linus Torvalds 已提交
2578 2579 2580
	spin_unlock(&dq_data_lock);
}

E
Eric W. Biederman 已提交
2581
int dquot_get_dqblk(struct super_block *sb, struct kqid qid,
2582
		    struct qc_dqblk *di)
L
Linus Torvalds 已提交
2583 2584 2585
{
	struct dquot *dquot;

2586
	dquot = dqget(sb, qid);
2587 2588
	if (IS_ERR(dquot))
		return PTR_ERR(dquot);
L
Linus Torvalds 已提交
2589 2590
	do_get_dqblk(dquot, di);
	dqput(dquot);
J
Jan Kara 已提交
2591

L
Linus Torvalds 已提交
2592 2593
	return 0;
}
2594
EXPORT_SYMBOL(dquot_get_dqblk);
L
Linus Torvalds 已提交
2595

2596 2597 2598 2599 2600 2601 2602 2603 2604 2605 2606 2607 2608 2609 2610 2611 2612 2613 2614 2615 2616
int dquot_get_next_dqblk(struct super_block *sb, struct kqid *qid,
			 struct qc_dqblk *di)
{
	struct dquot *dquot;
	int err;

	if (!sb->dq_op->get_next_id)
		return -ENOSYS;
	err = sb->dq_op->get_next_id(sb, qid);
	if (err < 0)
		return err;
	dquot = dqget(sb, *qid);
	if (IS_ERR(dquot))
		return PTR_ERR(dquot);
	do_get_dqblk(dquot, di);
	dqput(dquot);

	return 0;
}
EXPORT_SYMBOL(dquot_get_next_dqblk);

2617 2618 2619 2620
#define VFS_QC_MASK \
	(QC_SPACE | QC_SPC_SOFT | QC_SPC_HARD | \
	 QC_INO_COUNT | QC_INO_SOFT | QC_INO_HARD | \
	 QC_SPC_TIMER | QC_INO_TIMER)
C
Christoph Hellwig 已提交
2621

L
Linus Torvalds 已提交
2622
/* Generic routine for setting common part of quota structure */
2623
static int do_set_dqblk(struct dquot *dquot, struct qc_dqblk *di)
L
Linus Torvalds 已提交
2624 2625 2626
{
	struct mem_dqblk *dm = &dquot->dq_dqb;
	int check_blim = 0, check_ilim = 0;
2627
	struct mem_dqinfo *dqi = &sb_dqopt(dquot->dq_sb)->info[dquot->dq_id.type];
2628

2629
	if (di->d_fieldmask & ~VFS_QC_MASK)
C
Christoph Hellwig 已提交
2630 2631
		return -EINVAL;

2632
	if (((di->d_fieldmask & QC_SPC_SOFT) &&
2633
	     di->d_spc_softlimit > dqi->dqi_max_spc_limit) ||
2634
	    ((di->d_fieldmask & QC_SPC_HARD) &&
2635
	     di->d_spc_hardlimit > dqi->dqi_max_spc_limit) ||
2636
	    ((di->d_fieldmask & QC_INO_SOFT) &&
2637
	     (di->d_ino_softlimit > dqi->dqi_max_ino_limit)) ||
2638
	    ((di->d_fieldmask & QC_INO_HARD) &&
2639
	     (di->d_ino_hardlimit > dqi->dqi_max_ino_limit)))
2640
		return -ERANGE;
L
Linus Torvalds 已提交
2641 2642

	spin_lock(&dq_data_lock);
2643 2644
	if (di->d_fieldmask & QC_SPACE) {
		dm->dqb_curspace = di->d_space - dm->dqb_rsvspace;
L
Linus Torvalds 已提交
2645
		check_blim = 1;
2646
		set_bit(DQ_LASTSET_B + QIF_SPACE_B, &dquot->dq_flags);
L
Linus Torvalds 已提交
2647
	}
C
Christoph Hellwig 已提交
2648

2649 2650 2651 2652 2653
	if (di->d_fieldmask & QC_SPC_SOFT)
		dm->dqb_bsoftlimit = di->d_spc_softlimit;
	if (di->d_fieldmask & QC_SPC_HARD)
		dm->dqb_bhardlimit = di->d_spc_hardlimit;
	if (di->d_fieldmask & (QC_SPC_SOFT | QC_SPC_HARD)) {
L
Linus Torvalds 已提交
2654
		check_blim = 1;
2655
		set_bit(DQ_LASTSET_B + QIF_BLIMITS_B, &dquot->dq_flags);
L
Linus Torvalds 已提交
2656
	}
C
Christoph Hellwig 已提交
2657

2658 2659
	if (di->d_fieldmask & QC_INO_COUNT) {
		dm->dqb_curinodes = di->d_ino_count;
L
Linus Torvalds 已提交
2660
		check_ilim = 1;
2661
		set_bit(DQ_LASTSET_B + QIF_INODES_B, &dquot->dq_flags);
L
Linus Torvalds 已提交
2662
	}
C
Christoph Hellwig 已提交
2663

2664
	if (di->d_fieldmask & QC_INO_SOFT)
C
Christoph Hellwig 已提交
2665
		dm->dqb_isoftlimit = di->d_ino_softlimit;
2666
	if (di->d_fieldmask & QC_INO_HARD)
C
Christoph Hellwig 已提交
2667
		dm->dqb_ihardlimit = di->d_ino_hardlimit;
2668
	if (di->d_fieldmask & (QC_INO_SOFT | QC_INO_HARD)) {
L
Linus Torvalds 已提交
2669
		check_ilim = 1;
2670
		set_bit(DQ_LASTSET_B + QIF_ILIMITS_B, &dquot->dq_flags);
L
Linus Torvalds 已提交
2671
	}
C
Christoph Hellwig 已提交
2672

2673 2674
	if (di->d_fieldmask & QC_SPC_TIMER) {
		dm->dqb_btime = di->d_spc_timer;
2675
		check_blim = 1;
2676
		set_bit(DQ_LASTSET_B + QIF_BTIME_B, &dquot->dq_flags);
2677
	}
C
Christoph Hellwig 已提交
2678

2679 2680
	if (di->d_fieldmask & QC_INO_TIMER) {
		dm->dqb_itime = di->d_ino_timer;
2681
		check_ilim = 1;
2682
		set_bit(DQ_LASTSET_B + QIF_ITIME_B, &dquot->dq_flags);
2683
	}
L
Linus Torvalds 已提交
2684 2685

	if (check_blim) {
J
Jan Kara 已提交
2686 2687
		if (!dm->dqb_bsoftlimit ||
		    dm->dqb_curspace < dm->dqb_bsoftlimit) {
L
Linus Torvalds 已提交
2688 2689
			dm->dqb_btime = 0;
			clear_bit(DQ_BLKS_B, &dquot->dq_flags);
2690
		} else if (!(di->d_fieldmask & QC_SPC_TIMER))
J
Jan Kara 已提交
2691
			/* Set grace only if user hasn't provided his own... */
A
Arnd Bergmann 已提交
2692
			dm->dqb_btime = ktime_get_real_seconds() + dqi->dqi_bgrace;
L
Linus Torvalds 已提交
2693 2694
	}
	if (check_ilim) {
J
Jan Kara 已提交
2695 2696
		if (!dm->dqb_isoftlimit ||
		    dm->dqb_curinodes < dm->dqb_isoftlimit) {
L
Linus Torvalds 已提交
2697 2698
			dm->dqb_itime = 0;
			clear_bit(DQ_INODES_B, &dquot->dq_flags);
2699
		} else if (!(di->d_fieldmask & QC_INO_TIMER))
J
Jan Kara 已提交
2700
			/* Set grace only if user hasn't provided his own... */
A
Arnd Bergmann 已提交
2701
			dm->dqb_itime = ktime_get_real_seconds() + dqi->dqi_igrace;
L
Linus Torvalds 已提交
2702
	}
J
Jan Kara 已提交
2703 2704
	if (dm->dqb_bhardlimit || dm->dqb_bsoftlimit || dm->dqb_ihardlimit ||
	    dm->dqb_isoftlimit)
L
Linus Torvalds 已提交
2705 2706 2707 2708 2709
		clear_bit(DQ_FAKE_B, &dquot->dq_flags);
	else
		set_bit(DQ_FAKE_B, &dquot->dq_flags);
	spin_unlock(&dq_data_lock);
	mark_dquot_dirty(dquot);
2710 2711

	return 0;
L
Linus Torvalds 已提交
2712 2713
}

E
Eric W. Biederman 已提交
2714
int dquot_set_dqblk(struct super_block *sb, struct kqid qid,
2715
		  struct qc_dqblk *di)
L
Linus Torvalds 已提交
2716 2717
{
	struct dquot *dquot;
2718
	int rc;
L
Linus Torvalds 已提交
2719

2720
	dquot = dqget(sb, qid);
2721 2722
	if (IS_ERR(dquot)) {
		rc = PTR_ERR(dquot);
2723
		goto out;
L
Linus Torvalds 已提交
2724
	}
2725
	rc = do_set_dqblk(dquot, di);
L
Linus Torvalds 已提交
2726
	dqput(dquot);
2727
out:
2728
	return rc;
L
Linus Torvalds 已提交
2729
}
2730
EXPORT_SYMBOL(dquot_set_dqblk);
L
Linus Torvalds 已提交
2731 2732

/* Generic routine for getting common part of quota file information */
2733
int dquot_get_state(struct super_block *sb, struct qc_state *state)
L
Linus Torvalds 已提交
2734 2735
{
	struct mem_dqinfo *mi;
2736 2737 2738
	struct qc_type_state *tstate;
	struct quota_info *dqopt = sb_dqopt(sb);
	int type;
L
Linus Torvalds 已提交
2739
  
2740 2741 2742 2743 2744 2745 2746 2747 2748 2749 2750 2751 2752 2753 2754 2755 2756 2757 2758 2759
	memset(state, 0, sizeof(*state));
	for (type = 0; type < MAXQUOTAS; type++) {
		if (!sb_has_quota_active(sb, type))
			continue;
		tstate = state->s_state + type;
		mi = sb_dqopt(sb)->info + type;
		tstate->flags = QCI_ACCT_ENABLED;
		spin_lock(&dq_data_lock);
		if (mi->dqi_flags & DQF_SYS_FILE)
			tstate->flags |= QCI_SYSFILE;
		if (mi->dqi_flags & DQF_ROOT_SQUASH)
			tstate->flags |= QCI_ROOT_SQUASH;
		if (sb_has_quota_limits_enabled(sb, type))
			tstate->flags |= QCI_LIMITS_ENFORCED;
		tstate->spc_timelimit = mi->dqi_bgrace;
		tstate->ino_timelimit = mi->dqi_igrace;
		tstate->ino = dqopt->files[type]->i_ino;
		tstate->blocks = dqopt->files[type]->i_blocks;
		tstate->nextents = 1;	/* We don't know... */
		spin_unlock(&dq_data_lock);
L
Linus Torvalds 已提交
2760 2761 2762
	}
	return 0;
}
2763
EXPORT_SYMBOL(dquot_get_state);
L
Linus Torvalds 已提交
2764 2765

/* Generic routine for setting common part of quota file information */
2766
int dquot_set_dqinfo(struct super_block *sb, int type, struct qc_info *ii)
L
Linus Torvalds 已提交
2767 2768
{
	struct mem_dqinfo *mi;
2769
	int err = 0;
L
Linus Torvalds 已提交
2770

2771 2772 2773
	if ((ii->i_fieldmask & QC_WARNS_MASK) ||
	    (ii->i_fieldmask & QC_RT_SPC_TIMER))
		return -EINVAL;
2774 2775
	if (!sb_has_quota_active(sb, type))
		return -ESRCH;
L
Linus Torvalds 已提交
2776
	mi = sb_dqopt(sb)->info + type;
2777 2778
	if (ii->i_fieldmask & QC_FLAGS) {
		if ((ii->i_flags & QCI_ROOT_SQUASH &&
2779 2780
		     mi->dqi_format->qf_fmt_id != QFMT_VFS_OLD))
			return -EINVAL;
2781
	}
L
Linus Torvalds 已提交
2782
	spin_lock(&dq_data_lock);
2783 2784 2785 2786 2787 2788 2789 2790 2791 2792
	if (ii->i_fieldmask & QC_SPC_TIMER)
		mi->dqi_bgrace = ii->i_spc_timelimit;
	if (ii->i_fieldmask & QC_INO_TIMER)
		mi->dqi_igrace = ii->i_ino_timelimit;
	if (ii->i_fieldmask & QC_FLAGS) {
		if (ii->i_flags & QCI_ROOT_SQUASH)
			mi->dqi_flags |= DQF_ROOT_SQUASH;
		else
			mi->dqi_flags &= ~DQF_ROOT_SQUASH;
	}
L
Linus Torvalds 已提交
2793 2794 2795 2796
	spin_unlock(&dq_data_lock);
	mark_info_dirty(sb, type);
	/* Force write to disk */
	sb->dq_op->write_info(sb, type);
2797
	return err;
L
Linus Torvalds 已提交
2798
}
2799
EXPORT_SYMBOL(dquot_set_dqinfo);
L
Linus Torvalds 已提交
2800

2801 2802 2803 2804
const struct quotactl_ops dquot_quotactl_sysfile_ops = {
	.quota_enable	= dquot_quota_enable,
	.quota_disable	= dquot_quota_disable,
	.quota_sync	= dquot_quota_sync,
2805
	.get_state	= dquot_get_state,
2806 2807
	.set_info	= dquot_set_dqinfo,
	.get_dqblk	= dquot_get_dqblk,
2808
	.get_nextdqblk	= dquot_get_next_dqblk,
2809 2810 2811 2812
	.set_dqblk	= dquot_set_dqblk
};
EXPORT_SYMBOL(dquot_quotactl_sysfile_ops);

2813 2814 2815 2816
static int do_proc_dqstats(struct ctl_table *table, int write,
		     void __user *buffer, size_t *lenp, loff_t *ppos)
{
	unsigned int type = (int *)table->data - dqstats.stat;
2817 2818 2819 2820

	/* Update global table */
	dqstats.stat[type] =
			percpu_counter_sum_positive(&dqstats.counter[type]);
2821 2822 2823
	return proc_dointvec(table, write, buffer, lenp, ppos);
}

2824
static struct ctl_table fs_dqstats_table[] = {
L
Linus Torvalds 已提交
2825 2826
	{
		.procname	= "lookups",
2827
		.data		= &dqstats.stat[DQST_LOOKUPS],
L
Linus Torvalds 已提交
2828 2829
		.maxlen		= sizeof(int),
		.mode		= 0444,
2830
		.proc_handler	= do_proc_dqstats,
L
Linus Torvalds 已提交
2831 2832 2833
	},
	{
		.procname	= "drops",
2834
		.data		= &dqstats.stat[DQST_DROPS],
L
Linus Torvalds 已提交
2835 2836
		.maxlen		= sizeof(int),
		.mode		= 0444,
2837
		.proc_handler	= do_proc_dqstats,
L
Linus Torvalds 已提交
2838 2839 2840
	},
	{
		.procname	= "reads",
2841
		.data		= &dqstats.stat[DQST_READS],
L
Linus Torvalds 已提交
2842 2843
		.maxlen		= sizeof(int),
		.mode		= 0444,
2844
		.proc_handler	= do_proc_dqstats,
L
Linus Torvalds 已提交
2845 2846 2847
	},
	{
		.procname	= "writes",
2848
		.data		= &dqstats.stat[DQST_WRITES],
L
Linus Torvalds 已提交
2849 2850
		.maxlen		= sizeof(int),
		.mode		= 0444,
2851
		.proc_handler	= do_proc_dqstats,
L
Linus Torvalds 已提交
2852 2853 2854
	},
	{
		.procname	= "cache_hits",
2855
		.data		= &dqstats.stat[DQST_CACHE_HITS],
L
Linus Torvalds 已提交
2856 2857
		.maxlen		= sizeof(int),
		.mode		= 0444,
2858
		.proc_handler	= do_proc_dqstats,
L
Linus Torvalds 已提交
2859 2860 2861
	},
	{
		.procname	= "allocated_dquots",
2862
		.data		= &dqstats.stat[DQST_ALLOC_DQUOTS],
L
Linus Torvalds 已提交
2863 2864
		.maxlen		= sizeof(int),
		.mode		= 0444,
2865
		.proc_handler	= do_proc_dqstats,
L
Linus Torvalds 已提交
2866 2867 2868
	},
	{
		.procname	= "free_dquots",
2869
		.data		= &dqstats.stat[DQST_FREE_DQUOTS],
L
Linus Torvalds 已提交
2870 2871
		.maxlen		= sizeof(int),
		.mode		= 0444,
2872
		.proc_handler	= do_proc_dqstats,
L
Linus Torvalds 已提交
2873 2874 2875
	},
	{
		.procname	= "syncs",
2876
		.data		= &dqstats.stat[DQST_SYNCS],
L
Linus Torvalds 已提交
2877 2878
		.maxlen		= sizeof(int),
		.mode		= 0444,
2879
		.proc_handler	= do_proc_dqstats,
L
Linus Torvalds 已提交
2880
	},
J
Jan Kara 已提交
2881
#ifdef CONFIG_PRINT_QUOTA_WARNING
L
Linus Torvalds 已提交
2882 2883 2884 2885 2886
	{
		.procname	= "warnings",
		.data		= &flag_print_warnings,
		.maxlen		= sizeof(int),
		.mode		= 0644,
2887
		.proc_handler	= proc_dointvec,
L
Linus Torvalds 已提交
2888
	},
J
Jan Kara 已提交
2889
#endif
2890
	{ },
L
Linus Torvalds 已提交
2891 2892
};

2893
static struct ctl_table fs_table[] = {
L
Linus Torvalds 已提交
2894 2895 2896 2897 2898
	{
		.procname	= "quota",
		.mode		= 0555,
		.child		= fs_dqstats_table,
	},
2899
	{ },
L
Linus Torvalds 已提交
2900 2901
};

2902
static struct ctl_table sys_table[] = {
L
Linus Torvalds 已提交
2903 2904 2905 2906 2907
	{
		.procname	= "fs",
		.mode		= 0555,
		.child		= fs_table,
	},
2908
	{ },
L
Linus Torvalds 已提交
2909 2910 2911 2912
};

static int __init dquot_init(void)
{
2913
	int i, ret;
L
Linus Torvalds 已提交
2914 2915 2916 2917
	unsigned long nr_hash, order;

	printk(KERN_NOTICE "VFS: Disk quotas %s\n", __DQUOT_VERSION__);

2918
	register_sysctl_table(sys_table);
L
Linus Torvalds 已提交
2919

2920
	dquot_cachep = kmem_cache_create("dquot",
L
Linus Torvalds 已提交
2921
			sizeof(struct dquot), sizeof(unsigned long) * 4,
2922 2923
			(SLAB_HWCACHE_ALIGN|SLAB_RECLAIM_ACCOUNT|
				SLAB_MEM_SPREAD|SLAB_PANIC),
2924
			NULL);
L
Linus Torvalds 已提交
2925 2926 2927 2928 2929 2930

	order = 0;
	dquot_hash = (struct hlist_head *)__get_free_pages(GFP_ATOMIC, order);
	if (!dquot_hash)
		panic("Cannot create dquot hash table");

2931
	for (i = 0; i < _DQST_DQSTAT_LAST; i++) {
2932
		ret = percpu_counter_init(&dqstats.counter[i], 0, GFP_KERNEL);
2933 2934 2935
		if (ret)
			panic("Cannot create dquot stat counters");
	}
2936

L
Linus Torvalds 已提交
2937 2938 2939 2940 2941 2942 2943 2944 2945 2946 2947 2948 2949
	/* Find power-of-two hlist_heads which can fit into allocation */
	nr_hash = (1UL << order) * PAGE_SIZE / sizeof(struct hlist_head);
	dq_hash_bits = 0;
	do {
		dq_hash_bits++;
	} while (nr_hash >> dq_hash_bits);
	dq_hash_bits--;

	nr_hash = 1UL << dq_hash_bits;
	dq_hash_mask = nr_hash - 1;
	for (i = 0; i < nr_hash; i++)
		INIT_HLIST_HEAD(dquot_hash + i);

A
Anton Blanchard 已提交
2950 2951
	pr_info("VFS: Dquot-cache hash table entries: %ld (order %ld,"
		" %ld bytes)\n", nr_hash, order, (PAGE_SIZE << order));
L
Linus Torvalds 已提交
2952

2953
	register_shrinker(&dqcache_shrinker);
L
Linus Torvalds 已提交
2954 2955 2956

	return 0;
}
2957
fs_initcall(dquot_init);