dquot.c 77.6 KB
Newer Older
L
Linus Torvalds 已提交
1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46 47 48 49 50 51 52 53 54 55 56 57 58 59 60 61 62 63 64 65 66 67 68 69 70 71 72 73
/*
 * Implementation of the diskquota system for the LINUX operating system. QUOTA
 * is implemented using the BSD system call interface as the means of
 * communication with the user level. This file contains the generic routines
 * called by the different filesystems on allocation of an inode or block.
 * These routines take care of the administration needed to have a consistent
 * diskquota tracking system. The ideas of both user and group quotas are based
 * on the Melbourne quota system as used on BSD derived systems. The internal
 * implementation is based on one of the several variants of the LINUX
 * inode-subsystem with added complexity of the diskquota system.
 * 
 * Author:	Marco van Wieringen <mvw@planets.elm.net>
 *
 * Fixes:   Dmitry Gorodchanin <pgmdsg@ibi.com>, 11 Feb 96
 *
 *		Revised list management to avoid races
 *		-- Bill Hawes, <whawes@star.net>, 9/98
 *
 *		Fixed races in dquot_transfer(), dqget() and dquot_alloc_...().
 *		As the consequence the locking was moved from dquot_decr_...(),
 *		dquot_incr_...() to calling functions.
 *		invalidate_dquots() now writes modified dquots.
 *		Serialized quota_off() and quota_on() for mount point.
 *		Fixed a few bugs in grow_dquots().
 *		Fixed deadlock in write_dquot() - we no longer account quotas on
 *		quota files
 *		remove_dquot_ref() moved to inode.c - it now traverses through inodes
 *		add_dquot_ref() restarts after blocking
 *		Added check for bogus uid and fixed check for group in quotactl.
 *		Jan Kara, <jack@suse.cz>, sponsored by SuSE CR, 10-11/99
 *
 *		Used struct list_head instead of own list struct
 *		Invalidation of referenced dquots is no longer possible
 *		Improved free_dquots list management
 *		Quota and i_blocks are now updated in one place to avoid races
 *		Warnings are now delayed so we won't block in critical section
 *		Write updated not to require dquot lock
 *		Jan Kara, <jack@suse.cz>, 9/2000
 *
 *		Added dynamic quota structure allocation
 *		Jan Kara <jack@suse.cz> 12/2000
 *
 *		Rewritten quota interface. Implemented new quota format and
 *		formats registering.
 *		Jan Kara, <jack@suse.cz>, 2001,2002
 *
 *		New SMP locking.
 *		Jan Kara, <jack@suse.cz>, 10/2002
 *
 *		Added journalled quota support, fix lock inversion problems
 *		Jan Kara, <jack@suse.cz>, 2003,2004
 *
 * (C) Copyright 1994 - 1997 Marco van Wieringen 
 */

#include <linux/errno.h>
#include <linux/kernel.h>
#include <linux/fs.h>
#include <linux/mount.h>
#include <linux/mm.h>
#include <linux/time.h>
#include <linux/types.h>
#include <linux/string.h>
#include <linux/fcntl.h>
#include <linux/stat.h>
#include <linux/tty.h>
#include <linux/file.h>
#include <linux/slab.h>
#include <linux/sysctl.h>
#include <linux/init.h>
#include <linux/module.h>
#include <linux/proc_fs.h>
#include <linux/security.h>
A
Al Viro 已提交
74
#include <linux/sched.h>
75
#include <linux/cred.h>
L
Linus Torvalds 已提交
76 77
#include <linux/kmod.h>
#include <linux/namei.h>
78
#include <linux/capability.h>
A
Adrian Bunk 已提交
79
#include <linux/quotaops.h>
80
#include "../internal.h" /* ugh */
L
Linus Torvalds 已提交
81

82
#include <linux/uaccess.h>
L
Linus Torvalds 已提交
83 84

/*
J
Jan Kara 已提交
85
 * There are three quota SMP locks. dq_list_lock protects all lists with quotas
86
 * and quota formats.
J
Jan Kara 已提交
87 88
 * dq_data_lock protects data from dq_dqb and also mem_dqinfo structures and
 * also guards consistency of dquot->dq_dqb with inode->i_blocks, i_bytes.
L
Linus Torvalds 已提交
89
 * i_blocks and i_bytes updates itself are guarded by i_lock acquired directly
J
Jan Kara 已提交
90 91 92
 * in inode_add_bytes() and inode_sub_bytes(). dq_state_lock protects
 * modifications of quota state (on quotaon and quotaoff) and readers who care
 * about latest values take it as well.
L
Linus Torvalds 已提交
93
 *
J
Jan Kara 已提交
94 95
 * The spinlock ordering is hence: dq_data_lock > dq_list_lock > i_lock,
 *   dq_list_lock > dq_state_lock
L
Linus Torvalds 已提交
96 97 98 99
 *
 * Note that some things (eg. sb pointer, type, id) doesn't change during
 * the life of the dquot structure and so needn't to be protected by a lock
 *
N
Niu Yawei 已提交
100 101 102 103 104 105
 * Operation accessing dquots via inode pointers are protected by dquot_srcu.
 * Operation of reading pointer needs srcu_read_lock(&dquot_srcu), and
 * synchronize_srcu(&dquot_srcu) is called after clearing pointers from
 * inode and before dropping dquot references to avoid use of dquots after
 * they are freed. dq_data_lock is used to serialize the pointer setting and
 * clearing operations.
J
Jan Kara 已提交
106 107
 * Special care needs to be taken about S_NOQUOTA inode flag (marking that
 * inode is a quota file). Functions adding pointers from inode to dquots have
N
Niu Yawei 已提交
108 109
 * to check this flag under dq_data_lock and then (if S_NOQUOTA is not set) they
 * have to do all pointer modifications before dropping dq_data_lock. This makes
J
Jan Kara 已提交
110 111
 * sure they cannot race with quotaon which first sets S_NOQUOTA flag and
 * then drops all pointers to dquots from an inode.
L
Linus Torvalds 已提交
112
 *
113 114 115 116 117
 * Each dquot has its dq_lock mutex.  Dquot is locked when it is being read to
 * memory (or space for it is being allocated) on the first dqget(), when it is
 * being written out, and when it is being released on the last dqput(). The
 * allocation and release operations are serialized by the dq_lock and by
 * checking the use count in dquot_release().
L
Linus Torvalds 已提交
118 119
 *
 * Lock ordering (including related VFS locks) is the following:
J
Jan Kara 已提交
120
 *   s_umount > i_mutex > journal_lock > dquot->dq_lock > dqio_sem
L
Linus Torvalds 已提交
121 122
 */

123 124 125
static __cacheline_aligned_in_smp DEFINE_SPINLOCK(dq_list_lock);
static __cacheline_aligned_in_smp DEFINE_SPINLOCK(dq_state_lock);
__cacheline_aligned_in_smp DEFINE_SPINLOCK(dq_data_lock);
126
EXPORT_SYMBOL(dq_data_lock);
N
Niu Yawei 已提交
127
DEFINE_STATIC_SRCU(dquot_srcu);
L
Linus Torvalds 已提交
128

129
void __quota_error(struct super_block *sb, const char *func,
130
		   const char *fmt, ...)
131 132
{
	if (printk_ratelimit()) {
133 134 135
		va_list args;
		struct va_format vaf;

136
		va_start(args, fmt);
137 138 139 140 141 142 143

		vaf.fmt = fmt;
		vaf.va = &args;

		printk(KERN_ERR "Quota error (device %s): %s: %pV\n",
		       sb->s_id, func, &vaf);

144 145 146 147 148
		va_end(args);
	}
}
EXPORT_SYMBOL(__quota_error);

149
#if defined(CONFIG_QUOTA_DEBUG) || defined(CONFIG_PRINT_QUOTA_WARNING)
L
Linus Torvalds 已提交
150
static char *quotatypes[] = INITQFNAMES;
151
#endif
L
Linus Torvalds 已提交
152 153 154 155
static struct quota_format_type *quota_formats;	/* List of registered formats */
static struct quota_module_name module_names[] = INIT_QUOTA_MODULE_NAMES;

/* SLAB cache for dquot structures */
156
static struct kmem_cache *dquot_cachep;
L
Linus Torvalds 已提交
157 158 159 160 161 162 163 164 165

int register_quota_format(struct quota_format_type *fmt)
{
	spin_lock(&dq_list_lock);
	fmt->qf_next = quota_formats;
	quota_formats = fmt;
	spin_unlock(&dq_list_lock);
	return 0;
}
166
EXPORT_SYMBOL(register_quota_format);
L
Linus Torvalds 已提交
167 168 169 170 171 172

void unregister_quota_format(struct quota_format_type *fmt)
{
	struct quota_format_type **actqf;

	spin_lock(&dq_list_lock);
J
Jan Kara 已提交
173 174 175
	for (actqf = &quota_formats; *actqf && *actqf != fmt;
	     actqf = &(*actqf)->qf_next)
		;
L
Linus Torvalds 已提交
176 177 178 179
	if (*actqf)
		*actqf = (*actqf)->qf_next;
	spin_unlock(&dq_list_lock);
}
180
EXPORT_SYMBOL(unregister_quota_format);
L
Linus Torvalds 已提交
181 182 183 184 185 186

static struct quota_format_type *find_quota_format(int id)
{
	struct quota_format_type *actqf;

	spin_lock(&dq_list_lock);
J
Jan Kara 已提交
187 188 189
	for (actqf = quota_formats; actqf && actqf->qf_fmt_id != id;
	     actqf = actqf->qf_next)
		;
L
Linus Torvalds 已提交
190 191 192 193 194
	if (!actqf || !try_module_get(actqf->qf_owner)) {
		int qm;

		spin_unlock(&dq_list_lock);
		
J
Jan Kara 已提交
195 196 197 198 199
		for (qm = 0; module_names[qm].qm_fmt_id &&
			     module_names[qm].qm_fmt_id != id; qm++)
			;
		if (!module_names[qm].qm_fmt_id ||
		    request_module(module_names[qm].qm_mod_name))
L
Linus Torvalds 已提交
200 201 202
			return NULL;

		spin_lock(&dq_list_lock);
J
Jan Kara 已提交
203 204 205
		for (actqf = quota_formats; actqf && actqf->qf_fmt_id != id;
		     actqf = actqf->qf_next)
			;
L
Linus Torvalds 已提交
206 207 208 209 210 211 212 213 214 215 216 217 218 219 220 221 222 223 224 225 226 227 228 229 230 231 232 233 234 235 236 237 238 239 240 241 242 243
		if (actqf && !try_module_get(actqf->qf_owner))
			actqf = NULL;
	}
	spin_unlock(&dq_list_lock);
	return actqf;
}

static void put_quota_format(struct quota_format_type *fmt)
{
	module_put(fmt->qf_owner);
}

/*
 * Dquot List Management:
 * The quota code uses three lists for dquot management: the inuse_list,
 * free_dquots, and dquot_hash[] array. A single dquot structure may be
 * on all three lists, depending on its current state.
 *
 * All dquots are placed to the end of inuse_list when first created, and this
 * list is used for invalidate operation, which must look at every dquot.
 *
 * Unused dquots (dq_count == 0) are added to the free_dquots list when freed,
 * and this list is searched whenever we need an available dquot.  Dquots are
 * removed from the list as soon as they are used again, and
 * dqstats.free_dquots gives the number of dquots on the list. When
 * dquot is invalidated it's completely released from memory.
 *
 * Dquots with a specific identity (device, type and id) are placed on
 * one of the dquot_hash[] hash chains. The provides an efficient search
 * mechanism to locate a specific dquot.
 */

static LIST_HEAD(inuse_list);
static LIST_HEAD(free_dquots);
static unsigned int dq_hash_bits, dq_hash_mask;
static struct hlist_head *dquot_hash;

struct dqstats dqstats;
244
EXPORT_SYMBOL(dqstats);
L
Linus Torvalds 已提交
245

246
static qsize_t inode_get_rsv_space(struct inode *inode);
247
static int __dquot_initialize(struct inode *inode, int type);
248

L
Linus Torvalds 已提交
249
static inline unsigned int
E
Eric W. Biederman 已提交
250
hashfn(const struct super_block *sb, struct kqid qid)
L
Linus Torvalds 已提交
251
{
E
Eric W. Biederman 已提交
252 253
	unsigned int id = from_kqid(&init_user_ns, qid);
	int type = qid.type;
L
Linus Torvalds 已提交
254 255 256 257 258 259 260 261 262 263 264
	unsigned long tmp;

	tmp = (((unsigned long)sb>>L1_CACHE_SHIFT) ^ id) * (MAXQUOTAS - type);
	return (tmp + (tmp >> dq_hash_bits)) & dq_hash_mask;
}

/*
 * Following list functions expect dq_list_lock to be held
 */
static inline void insert_dquot_hash(struct dquot *dquot)
{
J
Jan Kara 已提交
265
	struct hlist_head *head;
E
Eric W. Biederman 已提交
266
	head = dquot_hash + hashfn(dquot->dq_sb, dquot->dq_id);
L
Linus Torvalds 已提交
267 268 269 270 271 272 273 274
	hlist_add_head(&dquot->dq_hash, head);
}

static inline void remove_dquot_hash(struct dquot *dquot)
{
	hlist_del_init(&dquot->dq_hash);
}

J
Jan Kara 已提交
275
static struct dquot *find_dquot(unsigned int hashent, struct super_block *sb,
E
Eric W. Biederman 已提交
276
				struct kqid qid)
L
Linus Torvalds 已提交
277 278 279 280 281 282
{
	struct hlist_node *node;
	struct dquot *dquot;

	hlist_for_each (node, dquot_hash+hashent) {
		dquot = hlist_entry(node, struct dquot, dq_hash);
283
		if (dquot->dq_sb == sb && qid_eq(dquot->dq_id, qid))
L
Linus Torvalds 已提交
284 285
			return dquot;
	}
J
Jan Kara 已提交
286
	return NULL;
L
Linus Torvalds 已提交
287 288 289 290 291
}

/* Add a dquot to the tail of the free list */
static inline void put_dquot_last(struct dquot *dquot)
{
292
	list_add_tail(&dquot->dq_free, &free_dquots);
293
	dqstats_inc(DQST_FREE_DQUOTS);
L
Linus Torvalds 已提交
294 295 296 297 298 299 300
}

static inline void remove_free_dquot(struct dquot *dquot)
{
	if (list_empty(&dquot->dq_free))
		return;
	list_del_init(&dquot->dq_free);
301
	dqstats_dec(DQST_FREE_DQUOTS);
L
Linus Torvalds 已提交
302 303 304 305 306 307
}

static inline void put_inuse(struct dquot *dquot)
{
	/* We add to the back of inuse list so we don't have to restart
	 * when traversing this list and we block */
308
	list_add_tail(&dquot->dq_inuse, &inuse_list);
309
	dqstats_inc(DQST_ALLOC_DQUOTS);
L
Linus Torvalds 已提交
310 311 312 313
}

static inline void remove_inuse(struct dquot *dquot)
{
314
	dqstats_dec(DQST_ALLOC_DQUOTS);
L
Linus Torvalds 已提交
315 316 317 318 319 320 321 322
	list_del(&dquot->dq_inuse);
}
/*
 * End of list functions needing dq_list_lock
 */

static void wait_on_dquot(struct dquot *dquot)
{
I
Ingo Molnar 已提交
323 324
	mutex_lock(&dquot->dq_lock);
	mutex_unlock(&dquot->dq_lock);
L
Linus Torvalds 已提交
325 326
}

J
Jan Kara 已提交
327 328 329 330 331 332 333 334 335
static inline int dquot_dirty(struct dquot *dquot)
{
	return test_bit(DQ_MOD_B, &dquot->dq_flags);
}

static inline int mark_dquot_dirty(struct dquot *dquot)
{
	return dquot->dq_sb->dq_op->mark_dirty(dquot);
}
L
Linus Torvalds 已提交
336

337
/* Mark dquot dirty in atomic manner, and return it's old dirty flag state */
L
Linus Torvalds 已提交
338 339
int dquot_mark_dquot_dirty(struct dquot *dquot)
{
340 341 342 343 344 345
	int ret = 1;

	/* If quota is dirty already, we don't have to acquire dq_list_lock */
	if (test_bit(DQ_MOD_B, &dquot->dq_flags))
		return 1;

L
Linus Torvalds 已提交
346
	spin_lock(&dq_list_lock);
347
	if (!test_and_set_bit(DQ_MOD_B, &dquot->dq_flags)) {
L
Linus Torvalds 已提交
348
		list_add(&dquot->dq_dirty, &sb_dqopt(dquot->dq_sb)->
349
				info[dquot->dq_id.type].dqi_dirty_list);
350 351
		ret = 0;
	}
L
Linus Torvalds 已提交
352
	spin_unlock(&dq_list_lock);
353
	return ret;
L
Linus Torvalds 已提交
354
}
355
EXPORT_SYMBOL(dquot_mark_dquot_dirty);
L
Linus Torvalds 已提交
356

357 358 359 360 361 362 363 364 365 366 367 368 369 370 371 372 373 374 375 376 377 378 379 380
/* Dirtify all the dquots - this can block when journalling */
static inline int mark_all_dquot_dirty(struct dquot * const *dquot)
{
	int ret, err, cnt;

	ret = err = 0;
	for (cnt = 0; cnt < MAXQUOTAS; cnt++) {
		if (dquot[cnt])
			/* Even in case of error we have to continue */
			ret = mark_dquot_dirty(dquot[cnt]);
		if (!err)
			err = ret;
	}
	return err;
}

static inline void dqput_all(struct dquot **dquot)
{
	unsigned int cnt;

	for (cnt = 0; cnt < MAXQUOTAS; cnt++)
		dqput(dquot[cnt]);
}

L
Linus Torvalds 已提交
381 382 383 384 385 386 387 388 389 390 391 392 393 394 395 396 397 398 399 400 401 402 403 404
/* This function needs dq_list_lock */
static inline int clear_dquot_dirty(struct dquot *dquot)
{
	if (!test_and_clear_bit(DQ_MOD_B, &dquot->dq_flags))
		return 0;
	list_del_init(&dquot->dq_dirty);
	return 1;
}

void mark_info_dirty(struct super_block *sb, int type)
{
	set_bit(DQF_INFO_DIRTY_B, &sb_dqopt(sb)->info[type].dqi_flags);
}
EXPORT_SYMBOL(mark_info_dirty);

/*
 *	Read dquot from disk and alloc space for it
 */

int dquot_acquire(struct dquot *dquot)
{
	int ret = 0, ret2 = 0;
	struct quota_info *dqopt = sb_dqopt(dquot->dq_sb);

I
Ingo Molnar 已提交
405
	mutex_lock(&dquot->dq_lock);
406
	if (!test_bit(DQ_READ_B, &dquot->dq_flags))
407
		ret = dqopt->ops[dquot->dq_id.type]->read_dqblk(dquot);
L
Linus Torvalds 已提交
408 409
	if (ret < 0)
		goto out_iolock;
410 411
	/* Make sure flags update is visible after dquot has been filled */
	smp_mb__before_atomic();
L
Linus Torvalds 已提交
412 413 414
	set_bit(DQ_READ_B, &dquot->dq_flags);
	/* Instantiate dquot if needed */
	if (!test_bit(DQ_ACTIVE_B, &dquot->dq_flags) && !dquot->dq_off) {
415
		down_write(&dqopt->dqio_sem);
416
		ret = dqopt->ops[dquot->dq_id.type]->commit_dqblk(dquot);
L
Linus Torvalds 已提交
417
		/* Write the info if needed */
418 419 420
		if (info_dirty(&dqopt->info[dquot->dq_id.type])) {
			ret2 = dqopt->ops[dquot->dq_id.type]->write_file_info(
					dquot->dq_sb, dquot->dq_id.type);
J
Jan Kara 已提交
421
		}
422
		up_write(&dqopt->dqio_sem);
L
Linus Torvalds 已提交
423 424 425 426 427 428 429
		if (ret < 0)
			goto out_iolock;
		if (ret2 < 0) {
			ret = ret2;
			goto out_iolock;
		}
	}
430 431 432 433 434
	/*
	 * Make sure flags update is visible after on-disk struct has been
	 * allocated. Paired with smp_rmb() in dqget().
	 */
	smp_mb__before_atomic();
L
Linus Torvalds 已提交
435 436
	set_bit(DQ_ACTIVE_B, &dquot->dq_flags);
out_iolock:
I
Ingo Molnar 已提交
437
	mutex_unlock(&dquot->dq_lock);
L
Linus Torvalds 已提交
438 439
	return ret;
}
440
EXPORT_SYMBOL(dquot_acquire);
L
Linus Torvalds 已提交
441 442 443 444 445 446

/*
 *	Write dquot to disk
 */
int dquot_commit(struct dquot *dquot)
{
447
	int ret = 0;
L
Linus Torvalds 已提交
448 449
	struct quota_info *dqopt = sb_dqopt(dquot->dq_sb);

450
	mutex_lock(&dquot->dq_lock);
L
Linus Torvalds 已提交
451 452 453
	spin_lock(&dq_list_lock);
	if (!clear_dquot_dirty(dquot)) {
		spin_unlock(&dq_list_lock);
454
		goto out_lock;
L
Linus Torvalds 已提交
455 456 457 458
	}
	spin_unlock(&dq_list_lock);
	/* Inactive dquot can be only if there was error during read/init
	 * => we have better not writing it */
459 460
	if (test_bit(DQ_ACTIVE_B, &dquot->dq_flags)) {
		down_write(&dqopt->dqio_sem);
461
		ret = dqopt->ops[dquot->dq_id.type]->commit_dqblk(dquot);
462 463
		up_write(&dqopt->dqio_sem);
	} else {
464
		ret = -EIO;
465 466 467
	}
out_lock:
	mutex_unlock(&dquot->dq_lock);
L
Linus Torvalds 已提交
468 469
	return ret;
}
470
EXPORT_SYMBOL(dquot_commit);
L
Linus Torvalds 已提交
471 472 473 474 475 476 477 478 479

/*
 *	Release dquot
 */
int dquot_release(struct dquot *dquot)
{
	int ret = 0, ret2 = 0;
	struct quota_info *dqopt = sb_dqopt(dquot->dq_sb);

I
Ingo Molnar 已提交
480
	mutex_lock(&dquot->dq_lock);
L
Linus Torvalds 已提交
481 482 483
	/* Check whether we are not racing with some other dqget() */
	if (atomic_read(&dquot->dq_count) > 1)
		goto out_dqlock;
J
Jan Kara 已提交
484
	down_write(&dqopt->dqio_sem);
485 486
	if (dqopt->ops[dquot->dq_id.type]->release_dqblk) {
		ret = dqopt->ops[dquot->dq_id.type]->release_dqblk(dquot);
L
Linus Torvalds 已提交
487
		/* Write the info */
488 489 490
		if (info_dirty(&dqopt->info[dquot->dq_id.type])) {
			ret2 = dqopt->ops[dquot->dq_id.type]->write_file_info(
						dquot->dq_sb, dquot->dq_id.type);
J
Jan Kara 已提交
491
		}
L
Linus Torvalds 已提交
492 493 494 495
		if (ret >= 0)
			ret = ret2;
	}
	clear_bit(DQ_ACTIVE_B, &dquot->dq_flags);
J
Jan Kara 已提交
496
	up_write(&dqopt->dqio_sem);
L
Linus Torvalds 已提交
497
out_dqlock:
I
Ingo Molnar 已提交
498
	mutex_unlock(&dquot->dq_lock);
L
Linus Torvalds 已提交
499 500
	return ret;
}
501
EXPORT_SYMBOL(dquot_release);
L
Linus Torvalds 已提交
502

503
void dquot_destroy(struct dquot *dquot)
504 505 506
{
	kmem_cache_free(dquot_cachep, dquot);
}
507
EXPORT_SYMBOL(dquot_destroy);
508 509 510 511 512 513

static inline void do_destroy_dquot(struct dquot *dquot)
{
	dquot->dq_sb->dq_op->destroy_dquot(dquot);
}

L
Linus Torvalds 已提交
514 515
/* Invalidate all dquots on the list. Note that this function is called after
 * quota is disabled and pointers from inodes removed so there cannot be new
516 517
 * quota users. There can still be some users of quotas due to inodes being
 * just deleted or pruned by prune_icache() (those are not attached to any
J
Jan Kara 已提交
518
 * list) or parallel quotactl call. We have to wait for such users.
519
 */
L
Linus Torvalds 已提交
520 521
static void invalidate_dquots(struct super_block *sb, int type)
{
522
	struct dquot *dquot, *tmp;
L
Linus Torvalds 已提交
523

524
restart:
L
Linus Torvalds 已提交
525
	spin_lock(&dq_list_lock);
526
	list_for_each_entry_safe(dquot, tmp, &inuse_list, dq_inuse) {
L
Linus Torvalds 已提交
527 528
		if (dquot->dq_sb != sb)
			continue;
529
		if (dquot->dq_id.type != type)
L
Linus Torvalds 已提交
530
			continue;
531 532 533 534
		/* Wait for dquot users */
		if (atomic_read(&dquot->dq_count)) {
			DEFINE_WAIT(wait);

535
			dqgrab(dquot);
536 537 538 539 540 541 542 543 544 545 546 547 548 549 550 551 552 553 554 555 556 557 558
			prepare_to_wait(&dquot->dq_wait_unused, &wait,
					TASK_UNINTERRUPTIBLE);
			spin_unlock(&dq_list_lock);
			/* Once dqput() wakes us up, we know it's time to free
			 * the dquot.
			 * IMPORTANT: we rely on the fact that there is always
			 * at most one process waiting for dquot to free.
			 * Otherwise dq_count would be > 1 and we would never
			 * wake up.
			 */
			if (atomic_read(&dquot->dq_count) > 1)
				schedule();
			finish_wait(&dquot->dq_wait_unused, &wait);
			dqput(dquot);
			/* At this moment dquot() need not exist (it could be
			 * reclaimed by prune_dqcache(). Hence we must
			 * restart. */
			goto restart;
		}
		/*
		 * Quota now has no users and it has been written on last
		 * dqput()
		 */
L
Linus Torvalds 已提交
559 560 561
		remove_dquot_hash(dquot);
		remove_free_dquot(dquot);
		remove_inuse(dquot);
562
		do_destroy_dquot(dquot);
L
Linus Torvalds 已提交
563 564 565 566
	}
	spin_unlock(&dq_list_lock);
}

567 568 569 570 571 572 573 574
/* Call callback for every active dquot on given filesystem */
int dquot_scan_active(struct super_block *sb,
		      int (*fn)(struct dquot *dquot, unsigned long priv),
		      unsigned long priv)
{
	struct dquot *dquot, *old_dquot = NULL;
	int ret = 0;

575 576
	WARN_ON_ONCE(!rwsem_is_locked(&sb->s_umount));

577 578 579 580 581 582 583 584 585
	spin_lock(&dq_list_lock);
	list_for_each_entry(dquot, &inuse_list, dq_inuse) {
		if (!test_bit(DQ_ACTIVE_B, &dquot->dq_flags))
			continue;
		if (dquot->dq_sb != sb)
			continue;
		/* Now we have active dquot so we can just increase use count */
		atomic_inc(&dquot->dq_count);
		spin_unlock(&dq_list_lock);
586
		dqstats_inc(DQST_LOOKUPS);
587 588
		dqput(old_dquot);
		old_dquot = dquot;
589 590 591 592 593 594 595 596 597 598 599
		/*
		 * ->release_dquot() can be racing with us. Our reference
		 * protects us from new calls to it so just wait for any
		 * outstanding call and recheck the DQ_ACTIVE_B after that.
		 */
		wait_on_dquot(dquot);
		if (test_bit(DQ_ACTIVE_B, &dquot->dq_flags)) {
			ret = fn(dquot, priv);
			if (ret < 0)
				goto out;
		}
600 601 602 603 604 605 606 607 608
		spin_lock(&dq_list_lock);
		/* We are safe to continue now because our dquot could not
		 * be moved out of the inuse list while we hold the reference */
	}
	spin_unlock(&dq_list_lock);
out:
	dqput(old_dquot);
	return ret;
}
609
EXPORT_SYMBOL(dquot_scan_active);
610

611 612
/* Write all dquot structures to quota files */
int dquot_writeback_dquots(struct super_block *sb, int type)
L
Linus Torvalds 已提交
613 614 615 616 617
{
	struct list_head *dirty;
	struct dquot *dquot;
	struct quota_info *dqopt = sb_dqopt(sb);
	int cnt;
618
	int err, ret = 0;
L
Linus Torvalds 已提交
619

620 621
	WARN_ON_ONCE(!rwsem_is_locked(&sb->s_umount));

L
Linus Torvalds 已提交
622 623 624
	for (cnt = 0; cnt < MAXQUOTAS; cnt++) {
		if (type != -1 && cnt != type)
			continue;
625
		if (!sb_has_quota_active(sb, cnt))
L
Linus Torvalds 已提交
626 627 628 629
			continue;
		spin_lock(&dq_list_lock);
		dirty = &dqopt->info[cnt].dqi_dirty_list;
		while (!list_empty(dirty)) {
J
Jan Kara 已提交
630 631
			dquot = list_first_entry(dirty, struct dquot,
						 dq_dirty);
L
Linus Torvalds 已提交
632 633 634 635 636 637 638 639
			/* Dirty and inactive can be only bad dquot... */
			if (!test_bit(DQ_ACTIVE_B, &dquot->dq_flags)) {
				clear_dquot_dirty(dquot);
				continue;
			}
			/* Now we have active dquot from which someone is
 			 * holding reference so we can safely just increase
			 * use count */
640
			dqgrab(dquot);
L
Linus Torvalds 已提交
641
			spin_unlock(&dq_list_lock);
642
			dqstats_inc(DQST_LOOKUPS);
643 644
			err = sb->dq_op->write_dquot(dquot);
			if (!ret && err)
645
				ret = err;
L
Linus Torvalds 已提交
646 647 648 649 650 651 652
			dqput(dquot);
			spin_lock(&dq_list_lock);
		}
		spin_unlock(&dq_list_lock);
	}

	for (cnt = 0; cnt < MAXQUOTAS; cnt++)
653 654
		if ((cnt == type || type == -1) && sb_has_quota_active(sb, cnt)
		    && info_dirty(&dqopt->info[cnt]))
L
Linus Torvalds 已提交
655
			sb->dq_op->write_info(sb, cnt);
656
	dqstats_inc(DQST_SYNCS);
L
Linus Torvalds 已提交
657

658 659 660 661 662 663 664 665 666 667 668 669 670 671 672
	return ret;
}
EXPORT_SYMBOL(dquot_writeback_dquots);

/* Write all dquot structures to disk and make them visible from userspace */
int dquot_quota_sync(struct super_block *sb, int type)
{
	struct quota_info *dqopt = sb_dqopt(sb);
	int cnt;
	int ret;

	ret = dquot_writeback_dquots(sb, type);
	if (ret)
		return ret;
	if (dqopt->flags & DQUOT_QUOTA_SYS_FILE)
673 674 675 676 677 678 679 680 681 682 683 684 685 686 687 688 689 690
		return 0;

	/* This is not very clever (and fast) but currently I don't know about
	 * any other simple way of getting quota data to disk and we must get
	 * them there for userspace to be visible... */
	if (sb->s_op->sync_fs)
		sb->s_op->sync_fs(sb, 1);
	sync_blockdev(sb->s_bdev);

	/*
	 * Now when everything is written we can discard the pagecache so
	 * that userspace sees the changes.
	 */
	for (cnt = 0; cnt < MAXQUOTAS; cnt++) {
		if (type != -1 && cnt != type)
			continue;
		if (!sb_has_quota_active(sb, cnt))
			continue;
A
Al Viro 已提交
691
		inode_lock(dqopt->files[cnt]);
692
		truncate_inode_pages(&dqopt->files[cnt]->i_data, 0);
A
Al Viro 已提交
693
		inode_unlock(dqopt->files[cnt]);
694 695
	}

L
Linus Torvalds 已提交
696 697
	return 0;
}
698
EXPORT_SYMBOL(dquot_quota_sync);
L
Linus Torvalds 已提交
699

700 701
static unsigned long
dqcache_shrink_scan(struct shrinker *shrink, struct shrink_control *sc)
L
Linus Torvalds 已提交
702 703 704
{
	struct list_head *head;
	struct dquot *dquot;
705
	unsigned long freed = 0;
L
Linus Torvalds 已提交
706

707
	spin_lock(&dq_list_lock);
L
Linus Torvalds 已提交
708
	head = free_dquots.prev;
709
	while (head != &free_dquots && sc->nr_to_scan) {
L
Linus Torvalds 已提交
710 711 712 713
		dquot = list_entry(head, struct dquot, dq_free);
		remove_dquot_hash(dquot);
		remove_free_dquot(dquot);
		remove_inuse(dquot);
714
		do_destroy_dquot(dquot);
715 716
		sc->nr_to_scan--;
		freed++;
L
Linus Torvalds 已提交
717 718
		head = free_dquots.prev;
	}
719
	spin_unlock(&dq_list_lock);
720
	return freed;
L
Linus Torvalds 已提交
721 722
}

723 724
static unsigned long
dqcache_shrink_count(struct shrinker *shrink, struct shrink_control *sc)
L
Linus Torvalds 已提交
725
{
726 727
	return vfs_pressure_ratio(
	percpu_counter_read_positive(&dqstats.counter[DQST_FREE_DQUOTS]));
L
Linus Torvalds 已提交
728 729
}

730
static struct shrinker dqcache_shrinker = {
731 732
	.count_objects = dqcache_shrink_count,
	.scan_objects = dqcache_shrink_scan,
733 734 735
	.seeks = DEFAULT_SEEKS,
};

L
Linus Torvalds 已提交
736 737 738
/*
 * Put reference to dquot
 */
739
void dqput(struct dquot *dquot)
L
Linus Torvalds 已提交
740
{
741 742
	int ret;

L
Linus Torvalds 已提交
743 744
	if (!dquot)
		return;
745
#ifdef CONFIG_QUOTA_DEBUG
L
Linus Torvalds 已提交
746
	if (!atomic_read(&dquot->dq_count)) {
747
		quota_error(dquot->dq_sb, "trying to free free dquot of %s %d",
748 749
			    quotatypes[dquot->dq_id.type],
			    from_kqid(&init_user_ns, dquot->dq_id));
L
Linus Torvalds 已提交
750 751 752
		BUG();
	}
#endif
753
	dqstats_inc(DQST_DROPS);
L
Linus Torvalds 已提交
754 755 756 757 758
we_slept:
	spin_lock(&dq_list_lock);
	if (atomic_read(&dquot->dq_count) > 1) {
		/* We have more than one user... nothing to do */
		atomic_dec(&dquot->dq_count);
759
		/* Releasing dquot during quotaoff phase? */
760
		if (!sb_has_quota_active(dquot->dq_sb, dquot->dq_id.type) &&
761 762
		    atomic_read(&dquot->dq_count) == 1)
			wake_up(&dquot->dq_wait_unused);
L
Linus Torvalds 已提交
763 764 765 766 767 768 769
		spin_unlock(&dq_list_lock);
		return;
	}
	/* Need to release dquot? */
	if (test_bit(DQ_ACTIVE_B, &dquot->dq_flags) && dquot_dirty(dquot)) {
		spin_unlock(&dq_list_lock);
		/* Commit dquot before releasing */
770 771
		ret = dquot->dq_sb->dq_op->write_dquot(dquot);
		if (ret < 0) {
772 773 774
			quota_error(dquot->dq_sb, "Can't write quota structure"
				    " (error %d). Quota may get out of sync!",
				    ret);
775 776 777 778 779 780 781 782
			/*
			 * We clear dirty bit anyway, so that we avoid
			 * infinite loop here
			 */
			spin_lock(&dq_list_lock);
			clear_dquot_dirty(dquot);
			spin_unlock(&dq_list_lock);
		}
L
Linus Torvalds 已提交
783 784 785 786 787 788 789 790 791 792
		goto we_slept;
	}
	/* Clear flag in case dquot was inactive (something bad happened) */
	clear_dquot_dirty(dquot);
	if (test_bit(DQ_ACTIVE_B, &dquot->dq_flags)) {
		spin_unlock(&dq_list_lock);
		dquot->dq_sb->dq_op->release_dquot(dquot);
		goto we_slept;
	}
	atomic_dec(&dquot->dq_count);
793
#ifdef CONFIG_QUOTA_DEBUG
L
Linus Torvalds 已提交
794
	/* sanity check */
795
	BUG_ON(!list_empty(&dquot->dq_free));
L
Linus Torvalds 已提交
796 797 798 799
#endif
	put_dquot_last(dquot);
	spin_unlock(&dq_list_lock);
}
800
EXPORT_SYMBOL(dqput);
L
Linus Torvalds 已提交
801

802
struct dquot *dquot_alloc(struct super_block *sb, int type)
803 804 805
{
	return kmem_cache_zalloc(dquot_cachep, GFP_NOFS);
}
806
EXPORT_SYMBOL(dquot_alloc);
807

L
Linus Torvalds 已提交
808 809 810 811
static struct dquot *get_empty_dquot(struct super_block *sb, int type)
{
	struct dquot *dquot;

812
	dquot = sb->dq_op->alloc_dquot(sb, type);
L
Linus Torvalds 已提交
813
	if(!dquot)
J
Jan Kara 已提交
814
		return NULL;
L
Linus Torvalds 已提交
815

I
Ingo Molnar 已提交
816
	mutex_init(&dquot->dq_lock);
L
Linus Torvalds 已提交
817 818 819 820
	INIT_LIST_HEAD(&dquot->dq_free);
	INIT_LIST_HEAD(&dquot->dq_inuse);
	INIT_HLIST_NODE(&dquot->dq_hash);
	INIT_LIST_HEAD(&dquot->dq_dirty);
821
	init_waitqueue_head(&dquot->dq_wait_unused);
L
Linus Torvalds 已提交
822
	dquot->dq_sb = sb;
E
Eric W. Biederman 已提交
823
	dquot->dq_id = make_kqid_invalid(type);
L
Linus Torvalds 已提交
824 825 826 827 828 829 830
	atomic_set(&dquot->dq_count, 1);

	return dquot;
}

/*
 * Get reference to dquot
J
Jan Kara 已提交
831 832 833 834 835
 *
 * Locking is slightly tricky here. We are guarded from parallel quotaoff()
 * destroying our dquot by:
 *   a) checking for quota flags under dq_list_lock and
 *   b) getting a reference to dquot before we release dq_list_lock
L
Linus Torvalds 已提交
836
 */
837
struct dquot *dqget(struct super_block *sb, struct kqid qid)
L
Linus Torvalds 已提交
838
{
E
Eric W. Biederman 已提交
839
	unsigned int hashent = hashfn(sb, qid);
840
	struct dquot *dquot, *empty = NULL;
L
Linus Torvalds 已提交
841

842 843 844
	if (!qid_has_mapping(sb->s_user_ns, qid))
		return ERR_PTR(-EINVAL);

E
Eric W. Biederman 已提交
845
        if (!sb_has_quota_active(sb, qid.type))
846
		return ERR_PTR(-ESRCH);
L
Linus Torvalds 已提交
847 848
we_slept:
	spin_lock(&dq_list_lock);
J
Jan Kara 已提交
849
	spin_lock(&dq_state_lock);
E
Eric W. Biederman 已提交
850
	if (!sb_has_quota_active(sb, qid.type)) {
J
Jan Kara 已提交
851 852
		spin_unlock(&dq_state_lock);
		spin_unlock(&dq_list_lock);
853
		dquot = ERR_PTR(-ESRCH);
J
Jan Kara 已提交
854 855 856 857
		goto out;
	}
	spin_unlock(&dq_state_lock);

E
Eric W. Biederman 已提交
858
	dquot = find_dquot(hashent, sb, qid);
J
Jan Kara 已提交
859 860
	if (!dquot) {
		if (!empty) {
L
Linus Torvalds 已提交
861
			spin_unlock(&dq_list_lock);
E
Eric W. Biederman 已提交
862
			empty = get_empty_dquot(sb, qid.type);
J
Jan Kara 已提交
863
			if (!empty)
L
Linus Torvalds 已提交
864 865 866 867
				schedule();	/* Try to wait for a moment... */
			goto we_slept;
		}
		dquot = empty;
J
Jan Kara 已提交
868
		empty = NULL;
869
		dquot->dq_id = qid;
L
Linus Torvalds 已提交
870 871 872 873 874
		/* all dquots go on the inuse_list */
		put_inuse(dquot);
		/* hash it first so it can be found */
		insert_dquot_hash(dquot);
		spin_unlock(&dq_list_lock);
875
		dqstats_inc(DQST_LOOKUPS);
L
Linus Torvalds 已提交
876 877 878 879 880
	} else {
		if (!atomic_read(&dquot->dq_count))
			remove_free_dquot(dquot);
		atomic_inc(&dquot->dq_count);
		spin_unlock(&dq_list_lock);
881 882
		dqstats_inc(DQST_CACHE_HITS);
		dqstats_inc(DQST_LOOKUPS);
L
Linus Torvalds 已提交
883
	}
J
Jan Kara 已提交
884 885
	/* Wait for dq_lock - after this we know that either dquot_release() is
	 * already finished or it will be canceled due to dq_count > 1 test */
L
Linus Torvalds 已提交
886
	wait_on_dquot(dquot);
J
Jan Kara 已提交
887
	/* Read the dquot / allocate space in quota file */
888 889 890 891 892 893 894 895 896
	if (!test_bit(DQ_ACTIVE_B, &dquot->dq_flags)) {
		int err;

		err = sb->dq_op->acquire_dquot(dquot);
		if (err < 0) {
			dqput(dquot);
			dquot = ERR_PTR(err);
			goto out;
		}
L
Linus Torvalds 已提交
897
	}
898 899 900 901 902
	/*
	 * Make sure following reads see filled structure - paired with
	 * smp_mb__before_atomic() in dquot_acquire().
	 */
	smp_rmb();
903
#ifdef CONFIG_QUOTA_DEBUG
904
	BUG_ON(!dquot->dq_sb);	/* Has somebody invalidated entry under us? */
L
Linus Torvalds 已提交
905
#endif
J
Jan Kara 已提交
906 907 908
out:
	if (empty)
		do_destroy_dquot(empty);
L
Linus Torvalds 已提交
909 910 911

	return dquot;
}
912
EXPORT_SYMBOL(dqget);
L
Linus Torvalds 已提交
913

914 915 916 917 918
static inline struct dquot **i_dquot(struct inode *inode)
{
	return inode->i_sb->s_op->get_dquots(inode);
}

L
Linus Torvalds 已提交
919 920
static int dqinit_needed(struct inode *inode, int type)
{
921
	struct dquot * const *dquots;
L
Linus Torvalds 已提交
922 923 924 925
	int cnt;

	if (IS_NOQUOTA(inode))
		return 0;
926 927

	dquots = i_dquot(inode);
L
Linus Torvalds 已提交
928
	if (type != -1)
929
		return !dquots[type];
L
Linus Torvalds 已提交
930
	for (cnt = 0; cnt < MAXQUOTAS; cnt++)
931
		if (!dquots[cnt])
L
Linus Torvalds 已提交
932 933 934 935
			return 1;
	return 0;
}

J
Jan Kara 已提交
936
/* This routine is guarded by s_umount semaphore */
L
Linus Torvalds 已提交
937 938
static void add_dquot_ref(struct super_block *sb, int type)
{
939
	struct inode *inode, *old_inode = NULL;
940
#ifdef CONFIG_QUOTA_DEBUG
941
	int reserved = 0;
942
#endif
L
Linus Torvalds 已提交
943

944
	spin_lock(&sb->s_inode_list_lock);
945
	list_for_each_entry(inode, &sb->s_inodes, i_sb_list) {
946 947 948 949 950
		spin_lock(&inode->i_lock);
		if ((inode->i_state & (I_FREEING|I_WILL_FREE|I_NEW)) ||
		    !atomic_read(&inode->i_writecount) ||
		    !dqinit_needed(inode, type)) {
			spin_unlock(&inode->i_lock);
N
Nick Piggin 已提交
951
			continue;
952
		}
953
		__iget(inode);
954
		spin_unlock(&inode->i_lock);
955
		spin_unlock(&sb->s_inode_list_lock);
956

957 958 959 960
#ifdef CONFIG_QUOTA_DEBUG
		if (unlikely(inode_get_rsv_space(inode) > 0))
			reserved = 1;
#endif
961
		iput(old_inode);
962
		__dquot_initialize(inode, type);
963 964 965 966

		/*
		 * We hold a reference to 'inode' so it couldn't have been
		 * removed from s_inodes list while we dropped the
967
		 * s_inode_list_lock. We cannot iput the inode now as we can be
968
		 * holding the last reference and we cannot iput it under
969
		 * s_inode_list_lock. So we keep the reference and iput it
970 971
		 * later.
		 */
972
		old_inode = inode;
973
		spin_lock(&sb->s_inode_list_lock);
L
Linus Torvalds 已提交
974
	}
975
	spin_unlock(&sb->s_inode_list_lock);
976
	iput(old_inode);
977

978
#ifdef CONFIG_QUOTA_DEBUG
979
	if (reserved) {
980 981 982
		quota_error(sb, "Writes happened before quota was turned on "
			"thus quota information is probably inconsistent. "
			"Please run quotacheck(8)");
983
	}
984
#endif
L
Linus Torvalds 已提交
985 986
}

J
Jan Kara 已提交
987 988
/*
 * Remove references to dquots from inode and add dquot to list for freeing
L
Lucas De Marchi 已提交
989
 * if we have the last reference to dquot
J
Jan Kara 已提交
990
 */
991 992
static void remove_inode_dquot_ref(struct inode *inode, int type,
				   struct list_head *tofree_head)
L
Linus Torvalds 已提交
993
{
994 995
	struct dquot **dquots = i_dquot(inode);
	struct dquot *dquot = dquots[type];
L
Linus Torvalds 已提交
996

997 998 999
	if (!dquot)
		return;

1000
	dquots[type] = NULL;
1001 1002 1003 1004 1005 1006 1007 1008 1009 1010 1011 1012 1013 1014
	if (list_empty(&dquot->dq_free)) {
		/*
		 * The inode still has reference to dquot so it can't be in the
		 * free list
		 */
		spin_lock(&dq_list_lock);
		list_add(&dquot->dq_free, tofree_head);
		spin_unlock(&dq_list_lock);
	} else {
		/*
		 * Dquot is already in a list to put so we won't drop the last
		 * reference here.
		 */
		dqput(dquot);
L
Linus Torvalds 已提交
1015 1016 1017
	}
}

J
Jan Kara 已提交
1018 1019 1020 1021 1022
/*
 * Free list of dquots
 * Dquots are removed from inodes and no new references can be got so we are
 * the only ones holding reference
 */
L
Linus Torvalds 已提交
1023 1024 1025 1026 1027 1028 1029 1030 1031
static void put_dquot_list(struct list_head *tofree_head)
{
	struct list_head *act_head;
	struct dquot *dquot;

	act_head = tofree_head->next;
	while (act_head != tofree_head) {
		dquot = list_entry(act_head, struct dquot, dq_free);
		act_head = act_head->next;
J
Jan Kara 已提交
1032 1033
		/* Remove dquot from the list so we won't have problems... */
		list_del_init(&dquot->dq_free);
L
Linus Torvalds 已提交
1034 1035 1036 1037
		dqput(dquot);
	}
}

1038 1039 1040 1041
static void remove_dquot_ref(struct super_block *sb, int type,
		struct list_head *tofree_head)
{
	struct inode *inode;
1042
	int reserved = 0;
1043

1044
	spin_lock(&sb->s_inode_list_lock);
1045
	list_for_each_entry(inode, &sb->s_inodes, i_sb_list) {
N
Nick Piggin 已提交
1046 1047 1048 1049
		/*
		 *  We have to scan also I_NEW inodes because they can already
		 *  have quota pointer initialized. Luckily, we need to touch
		 *  only quota pointers and these have separate locking
N
Niu Yawei 已提交
1050
		 *  (dq_data_lock).
N
Nick Piggin 已提交
1051
		 */
N
Niu Yawei 已提交
1052
		spin_lock(&dq_data_lock);
1053 1054 1055
		if (!IS_NOQUOTA(inode)) {
			if (unlikely(inode_get_rsv_space(inode) > 0))
				reserved = 1;
1056
			remove_inode_dquot_ref(inode, type, tofree_head);
1057
		}
N
Niu Yawei 已提交
1058
		spin_unlock(&dq_data_lock);
1059
	}
1060
	spin_unlock(&sb->s_inode_list_lock);
1061 1062 1063 1064 1065 1066 1067
#ifdef CONFIG_QUOTA_DEBUG
	if (reserved) {
		printk(KERN_WARNING "VFS (%s): Writes happened after quota"
			" was disabled thus quota information is probably "
			"inconsistent. Please run quotacheck(8).\n", sb->s_id);
	}
#endif
1068 1069
}

L
Linus Torvalds 已提交
1070 1071 1072 1073 1074
/* Gather all references from inodes and drop them */
static void drop_dquot_ref(struct super_block *sb, int type)
{
	LIST_HEAD(tofree_head);

1075 1076
	if (sb->dq_op) {
		remove_dquot_ref(sb, type, &tofree_head);
N
Niu Yawei 已提交
1077
		synchronize_srcu(&dquot_srcu);
1078 1079
		put_dquot_list(&tofree_head);
	}
L
Linus Torvalds 已提交
1080 1081
}

1082
static inline void dquot_incr_inodes(struct dquot *dquot, qsize_t number)
L
Linus Torvalds 已提交
1083 1084 1085 1086 1087 1088 1089 1090 1091
{
	dquot->dq_dqb.dqb_curinodes += number;
}

static inline void dquot_incr_space(struct dquot *dquot, qsize_t number)
{
	dquot->dq_dqb.dqb_curspace += number;
}

1092 1093 1094 1095 1096
static inline void dquot_resv_space(struct dquot *dquot, qsize_t number)
{
	dquot->dq_dqb.dqb_rsvspace += number;
}

1097 1098 1099
/*
 * Claim reserved quota space
 */
1100
static void dquot_claim_reserved_space(struct dquot *dquot, qsize_t number)
1101
{
1102 1103 1104 1105
	if (dquot->dq_dqb.dqb_rsvspace < number) {
		WARN_ON_ONCE(1);
		number = dquot->dq_dqb.dqb_rsvspace;
	}
1106 1107 1108 1109
	dquot->dq_dqb.dqb_curspace += number;
	dquot->dq_dqb.dqb_rsvspace -= number;
}

1110 1111 1112 1113 1114 1115 1116 1117
static void dquot_reclaim_reserved_space(struct dquot *dquot, qsize_t number)
{
	if (WARN_ON_ONCE(dquot->dq_dqb.dqb_curspace < number))
		number = dquot->dq_dqb.dqb_curspace;
	dquot->dq_dqb.dqb_rsvspace += number;
	dquot->dq_dqb.dqb_curspace -= number;
}

1118 1119 1120
static inline
void dquot_free_reserved_space(struct dquot *dquot, qsize_t number)
{
1121 1122 1123 1124 1125 1126
	if (dquot->dq_dqb.dqb_rsvspace >= number)
		dquot->dq_dqb.dqb_rsvspace -= number;
	else {
		WARN_ON_ONCE(1);
		dquot->dq_dqb.dqb_rsvspace = 0;
	}
1127 1128
}

J
Jan Kara 已提交
1129
static void dquot_decr_inodes(struct dquot *dquot, qsize_t number)
L
Linus Torvalds 已提交
1130
{
1131 1132
	if (sb_dqopt(dquot->dq_sb)->flags & DQUOT_NEGATIVE_USAGE ||
	    dquot->dq_dqb.dqb_curinodes >= number)
L
Linus Torvalds 已提交
1133 1134 1135 1136
		dquot->dq_dqb.dqb_curinodes -= number;
	else
		dquot->dq_dqb.dqb_curinodes = 0;
	if (dquot->dq_dqb.dqb_curinodes <= dquot->dq_dqb.dqb_isoftlimit)
A
Arnd Bergmann 已提交
1137
		dquot->dq_dqb.dqb_itime = (time64_t) 0;
L
Linus Torvalds 已提交
1138 1139 1140
	clear_bit(DQ_INODES_B, &dquot->dq_flags);
}

J
Jan Kara 已提交
1141
static void dquot_decr_space(struct dquot *dquot, qsize_t number)
L
Linus Torvalds 已提交
1142
{
1143 1144
	if (sb_dqopt(dquot->dq_sb)->flags & DQUOT_NEGATIVE_USAGE ||
	    dquot->dq_dqb.dqb_curspace >= number)
L
Linus Torvalds 已提交
1145 1146 1147
		dquot->dq_dqb.dqb_curspace -= number;
	else
		dquot->dq_dqb.dqb_curspace = 0;
1148
	if (dquot->dq_dqb.dqb_curspace <= dquot->dq_dqb.dqb_bsoftlimit)
A
Arnd Bergmann 已提交
1149
		dquot->dq_dqb.dqb_btime = (time64_t) 0;
L
Linus Torvalds 已提交
1150 1151 1152
	clear_bit(DQ_BLKS_B, &dquot->dq_flags);
}

1153 1154
struct dquot_warn {
	struct super_block *w_sb;
1155
	struct kqid w_dq_id;
1156 1157 1158
	short w_type;
};

1159 1160 1161 1162 1163 1164 1165 1166 1167 1168 1169 1170
static int warning_issued(struct dquot *dquot, const int warntype)
{
	int flag = (warntype == QUOTA_NL_BHARDWARN ||
		warntype == QUOTA_NL_BSOFTLONGWARN) ? DQ_BLKS_B :
		((warntype == QUOTA_NL_IHARDWARN ||
		warntype == QUOTA_NL_ISOFTLONGWARN) ? DQ_INODES_B : 0);

	if (!flag)
		return 0;
	return test_and_set_bit(flag, &dquot->dq_flags);
}

J
Jan Kara 已提交
1171
#ifdef CONFIG_PRINT_QUOTA_WARNING
L
Linus Torvalds 已提交
1172 1173
static int flag_print_warnings = 1;

1174
static int need_print_warning(struct dquot_warn *warn)
L
Linus Torvalds 已提交
1175 1176 1177 1178
{
	if (!flag_print_warnings)
		return 0;

1179
	switch (warn->w_dq_id.type) {
L
Linus Torvalds 已提交
1180
		case USRQUOTA:
E
Eric W. Biederman 已提交
1181
			return uid_eq(current_fsuid(), warn->w_dq_id.uid);
L
Linus Torvalds 已提交
1182
		case GRPQUOTA:
1183
			return in_group_p(warn->w_dq_id.gid);
1184 1185
		case PRJQUOTA:
			return 1;
L
Linus Torvalds 已提交
1186 1187 1188 1189 1190
	}
	return 0;
}

/* Print warning to user which exceeded quota */
1191
static void print_warning(struct dquot_warn *warn)
L
Linus Torvalds 已提交
1192 1193
{
	char *msg = NULL;
1194
	struct tty_struct *tty;
1195
	int warntype = warn->w_type;
L
Linus Torvalds 已提交
1196

1197 1198 1199
	if (warntype == QUOTA_NL_IHARDBELOW ||
	    warntype == QUOTA_NL_ISOFTBELOW ||
	    warntype == QUOTA_NL_BHARDBELOW ||
1200
	    warntype == QUOTA_NL_BSOFTBELOW || !need_print_warning(warn))
L
Linus Torvalds 已提交
1201 1202
		return;

1203 1204
	tty = get_current_tty();
	if (!tty)
A
Alan Cox 已提交
1205
		return;
1206
	tty_write_message(tty, warn->w_sb->s_id);
J
Jan Kara 已提交
1207
	if (warntype == QUOTA_NL_ISOFTWARN || warntype == QUOTA_NL_BSOFTWARN)
1208
		tty_write_message(tty, ": warning, ");
L
Linus Torvalds 已提交
1209
	else
1210
		tty_write_message(tty, ": write failed, ");
1211
	tty_write_message(tty, quotatypes[warn->w_dq_id.type]);
L
Linus Torvalds 已提交
1212
	switch (warntype) {
J
Jan Kara 已提交
1213
		case QUOTA_NL_IHARDWARN:
L
Linus Torvalds 已提交
1214 1215
			msg = " file limit reached.\r\n";
			break;
J
Jan Kara 已提交
1216
		case QUOTA_NL_ISOFTLONGWARN:
L
Linus Torvalds 已提交
1217 1218
			msg = " file quota exceeded too long.\r\n";
			break;
J
Jan Kara 已提交
1219
		case QUOTA_NL_ISOFTWARN:
L
Linus Torvalds 已提交
1220 1221
			msg = " file quota exceeded.\r\n";
			break;
J
Jan Kara 已提交
1222
		case QUOTA_NL_BHARDWARN:
L
Linus Torvalds 已提交
1223 1224
			msg = " block limit reached.\r\n";
			break;
J
Jan Kara 已提交
1225
		case QUOTA_NL_BSOFTLONGWARN:
L
Linus Torvalds 已提交
1226 1227
			msg = " block quota exceeded too long.\r\n";
			break;
J
Jan Kara 已提交
1228
		case QUOTA_NL_BSOFTWARN:
L
Linus Torvalds 已提交
1229 1230 1231
			msg = " block quota exceeded.\r\n";
			break;
	}
1232
	tty_write_message(tty, msg);
A
Alan Cox 已提交
1233
	tty_kref_put(tty);
L
Linus Torvalds 已提交
1234
}
J
Jan Kara 已提交
1235 1236
#endif

1237 1238 1239 1240 1241 1242 1243 1244 1245 1246
static void prepare_warning(struct dquot_warn *warn, struct dquot *dquot,
			    int warntype)
{
	if (warning_issued(dquot, warntype))
		return;
	warn->w_type = warntype;
	warn->w_sb = dquot->dq_sb;
	warn->w_dq_id = dquot->dq_id;
}

1247 1248 1249
/*
 * Write warnings to the console and send warning messages over netlink.
 *
1250
 * Note that this function can call into tty and networking code.
1251
 */
1252
static void flush_warnings(struct dquot_warn *warn)
L
Linus Torvalds 已提交
1253 1254 1255
{
	int i;

S
Steven Whitehouse 已提交
1256
	for (i = 0; i < MAXQUOTAS; i++) {
1257 1258
		if (warn[i].w_type == QUOTA_NL_NOWARN)
			continue;
J
Jan Kara 已提交
1259
#ifdef CONFIG_PRINT_QUOTA_WARNING
1260
		print_warning(&warn[i]);
J
Jan Kara 已提交
1261
#endif
1262
		quota_send_warning(warn[i].w_dq_id,
1263
				   warn[i].w_sb->s_dev, warn[i].w_type);
S
Steven Whitehouse 已提交
1264
	}
L
Linus Torvalds 已提交
1265 1266
}

J
Jan Kara 已提交
1267
static int ignore_hardlimit(struct dquot *dquot)
L
Linus Torvalds 已提交
1268
{
1269
	struct mem_dqinfo *info = &sb_dqopt(dquot->dq_sb)->info[dquot->dq_id.type];
L
Linus Torvalds 已提交
1270 1271

	return capable(CAP_SYS_RESOURCE) &&
J
Jan Kara 已提交
1272
	       (info->dqi_format->qf_fmt_id != QFMT_VFS_OLD ||
J
Jan Kara 已提交
1273
		!(info->dqi_flags & DQF_ROOT_SQUASH));
L
Linus Torvalds 已提交
1274 1275 1276
}

/* needs dq_data_lock */
1277 1278
static int check_idq(struct dquot *dquot, qsize_t inodes,
		     struct dquot_warn *warn)
L
Linus Torvalds 已提交
1279
{
J
Jan Kara 已提交
1280 1281
	qsize_t newinodes = dquot->dq_dqb.dqb_curinodes + inodes;

1282
	if (!sb_has_quota_limits_enabled(dquot->dq_sb, dquot->dq_id.type) ||
1283
	    test_bit(DQ_FAKE_B, &dquot->dq_flags))
1284
		return 0;
L
Linus Torvalds 已提交
1285 1286

	if (dquot->dq_dqb.dqb_ihardlimit &&
J
Jan Kara 已提交
1287
	    newinodes > dquot->dq_dqb.dqb_ihardlimit &&
L
Linus Torvalds 已提交
1288
            !ignore_hardlimit(dquot)) {
1289
		prepare_warning(warn, dquot, QUOTA_NL_IHARDWARN);
1290
		return -EDQUOT;
L
Linus Torvalds 已提交
1291 1292 1293
	}

	if (dquot->dq_dqb.dqb_isoftlimit &&
J
Jan Kara 已提交
1294 1295
	    newinodes > dquot->dq_dqb.dqb_isoftlimit &&
	    dquot->dq_dqb.dqb_itime &&
A
Arnd Bergmann 已提交
1296
	    ktime_get_real_seconds() >= dquot->dq_dqb.dqb_itime &&
L
Linus Torvalds 已提交
1297
            !ignore_hardlimit(dquot)) {
1298
		prepare_warning(warn, dquot, QUOTA_NL_ISOFTLONGWARN);
1299
		return -EDQUOT;
L
Linus Torvalds 已提交
1300 1301 1302
	}

	if (dquot->dq_dqb.dqb_isoftlimit &&
J
Jan Kara 已提交
1303
	    newinodes > dquot->dq_dqb.dqb_isoftlimit &&
L
Linus Torvalds 已提交
1304
	    dquot->dq_dqb.dqb_itime == 0) {
1305
		prepare_warning(warn, dquot, QUOTA_NL_ISOFTWARN);
A
Arnd Bergmann 已提交
1306
		dquot->dq_dqb.dqb_itime = ktime_get_real_seconds() +
1307
		    sb_dqopt(dquot->dq_sb)->info[dquot->dq_id.type].dqi_igrace;
L
Linus Torvalds 已提交
1308 1309
	}

1310
	return 0;
L
Linus Torvalds 已提交
1311 1312 1313
}

/* needs dq_data_lock */
1314 1315
static int check_bdq(struct dquot *dquot, qsize_t space, int prealloc,
		     struct dquot_warn *warn)
L
Linus Torvalds 已提交
1316
{
1317
	qsize_t tspace;
J
Jan Kara 已提交
1318
	struct super_block *sb = dquot->dq_sb;
1319

1320
	if (!sb_has_quota_limits_enabled(sb, dquot->dq_id.type) ||
1321
	    test_bit(DQ_FAKE_B, &dquot->dq_flags))
1322
		return 0;
L
Linus Torvalds 已提交
1323

1324 1325 1326
	tspace = dquot->dq_dqb.dqb_curspace + dquot->dq_dqb.dqb_rsvspace
		+ space;

L
Linus Torvalds 已提交
1327
	if (dquot->dq_dqb.dqb_bhardlimit &&
1328
	    tspace > dquot->dq_dqb.dqb_bhardlimit &&
L
Linus Torvalds 已提交
1329 1330
            !ignore_hardlimit(dquot)) {
		if (!prealloc)
1331
			prepare_warning(warn, dquot, QUOTA_NL_BHARDWARN);
1332
		return -EDQUOT;
L
Linus Torvalds 已提交
1333 1334 1335
	}

	if (dquot->dq_dqb.dqb_bsoftlimit &&
1336
	    tspace > dquot->dq_dqb.dqb_bsoftlimit &&
J
Jan Kara 已提交
1337
	    dquot->dq_dqb.dqb_btime &&
A
Arnd Bergmann 已提交
1338
	    ktime_get_real_seconds() >= dquot->dq_dqb.dqb_btime &&
L
Linus Torvalds 已提交
1339 1340
            !ignore_hardlimit(dquot)) {
		if (!prealloc)
1341
			prepare_warning(warn, dquot, QUOTA_NL_BSOFTLONGWARN);
1342
		return -EDQUOT;
L
Linus Torvalds 已提交
1343 1344 1345
	}

	if (dquot->dq_dqb.dqb_bsoftlimit &&
1346
	    tspace > dquot->dq_dqb.dqb_bsoftlimit &&
L
Linus Torvalds 已提交
1347 1348
	    dquot->dq_dqb.dqb_btime == 0) {
		if (!prealloc) {
1349
			prepare_warning(warn, dquot, QUOTA_NL_BSOFTWARN);
A
Arnd Bergmann 已提交
1350
			dquot->dq_dqb.dqb_btime = ktime_get_real_seconds() +
1351
			    sb_dqopt(sb)->info[dquot->dq_id.type].dqi_bgrace;
L
Linus Torvalds 已提交
1352 1353 1354 1355 1356 1357
		}
		else
			/*
			 * We don't allow preallocation to exceed softlimit so exceeding will
			 * be always printed
			 */
1358
			return -EDQUOT;
L
Linus Torvalds 已提交
1359 1360
	}

1361
	return 0;
L
Linus Torvalds 已提交
1362 1363
}

1364
static int info_idq_free(struct dquot *dquot, qsize_t inodes)
1365
{
J
Jan Kara 已提交
1366 1367
	qsize_t newinodes;

1368
	if (test_bit(DQ_FAKE_B, &dquot->dq_flags) ||
1369
	    dquot->dq_dqb.dqb_curinodes <= dquot->dq_dqb.dqb_isoftlimit ||
1370
	    !sb_has_quota_limits_enabled(dquot->dq_sb, dquot->dq_id.type))
1371 1372
		return QUOTA_NL_NOWARN;

J
Jan Kara 已提交
1373 1374
	newinodes = dquot->dq_dqb.dqb_curinodes - inodes;
	if (newinodes <= dquot->dq_dqb.dqb_isoftlimit)
1375 1376
		return QUOTA_NL_ISOFTBELOW;
	if (dquot->dq_dqb.dqb_curinodes >= dquot->dq_dqb.dqb_ihardlimit &&
J
Jan Kara 已提交
1377
	    newinodes < dquot->dq_dqb.dqb_ihardlimit)
1378 1379 1380 1381 1382 1383 1384
		return QUOTA_NL_IHARDBELOW;
	return QUOTA_NL_NOWARN;
}

static int info_bdq_free(struct dquot *dquot, qsize_t space)
{
	if (test_bit(DQ_FAKE_B, &dquot->dq_flags) ||
1385
	    dquot->dq_dqb.dqb_curspace <= dquot->dq_dqb.dqb_bsoftlimit)
1386 1387
		return QUOTA_NL_NOWARN;

1388
	if (dquot->dq_dqb.dqb_curspace - space <= dquot->dq_dqb.dqb_bsoftlimit)
1389
		return QUOTA_NL_BSOFTBELOW;
1390 1391
	if (dquot->dq_dqb.dqb_curspace >= dquot->dq_dqb.dqb_bhardlimit &&
	    dquot->dq_dqb.dqb_curspace - space < dquot->dq_dqb.dqb_bhardlimit)
1392 1393 1394
		return QUOTA_NL_BHARDBELOW;
	return QUOTA_NL_NOWARN;
}
1395

1396 1397 1398 1399 1400 1401 1402 1403 1404
static int dquot_active(const struct inode *inode)
{
	struct super_block *sb = inode->i_sb;

	if (IS_NOQUOTA(inode))
		return 0;
	return sb_any_quota_loaded(sb) & ~sb_any_quota_suspended(sb);
}

L
Linus Torvalds 已提交
1405
/*
1406 1407 1408 1409
 * Initialize quota pointers in inode
 *
 * It is better to call this function outside of any transaction as it
 * might need a lot of space in journal for dquot structure allocation.
L
Linus Torvalds 已提交
1410
 */
1411
static int __dquot_initialize(struct inode *inode, int type)
L
Linus Torvalds 已提交
1412
{
1413
	int cnt, init_needed = 0;
1414
	struct dquot **dquots, *got[MAXQUOTAS] = {};
J
Jan Kara 已提交
1415
	struct super_block *sb = inode->i_sb;
1416
	qsize_t rsv;
1417
	int ret = 0;
L
Linus Torvalds 已提交
1418

1419
	if (!dquot_active(inode))
1420
		return 0;
J
Jan Kara 已提交
1421

1422 1423
	dquots = i_dquot(inode);

J
Jan Kara 已提交
1424 1425
	/* First get references to structures we might need. */
	for (cnt = 0; cnt < MAXQUOTAS; cnt++) {
1426
		struct kqid qid;
1427 1428
		kprojid_t projid;
		int rc;
1429
		struct dquot *dquot;
1430

J
Jan Kara 已提交
1431 1432
		if (type != -1 && cnt != type)
			continue;
1433 1434 1435 1436 1437
		/*
		 * The i_dquot should have been initialized in most cases,
		 * we check it without locking here to avoid unnecessary
		 * dqget()/dqput() calls.
		 */
1438
		if (dquots[cnt])
1439
			continue;
1440 1441 1442 1443

		if (!sb_has_quota_active(sb, cnt))
			continue;

1444 1445
		init_needed = 1;

J
Jan Kara 已提交
1446 1447
		switch (cnt) {
		case USRQUOTA:
1448
			qid = make_kqid_uid(inode->i_uid);
J
Jan Kara 已提交
1449 1450
			break;
		case GRPQUOTA:
1451
			qid = make_kqid_gid(inode->i_gid);
J
Jan Kara 已提交
1452
			break;
1453 1454 1455 1456 1457 1458
		case PRJQUOTA:
			rc = inode->i_sb->dq_op->get_projid(inode, &projid);
			if (rc)
				continue;
			qid = make_kqid_projid(projid);
			break;
J
Jan Kara 已提交
1459
		}
1460 1461 1462 1463 1464 1465 1466 1467 1468 1469
		dquot = dqget(sb, qid);
		if (IS_ERR(dquot)) {
			/* We raced with somebody turning quotas off... */
			if (PTR_ERR(dquot) != -ESRCH) {
				ret = PTR_ERR(dquot);
				goto out_put;
			}
			dquot = NULL;
		}
		got[cnt] = dquot;
J
Jan Kara 已提交
1470 1471
	}

1472 1473
	/* All required i_dquot has been initialized */
	if (!init_needed)
1474
		return 0;
1475

N
Niu Yawei 已提交
1476
	spin_lock(&dq_data_lock);
L
Linus Torvalds 已提交
1477
	if (IS_NOQUOTA(inode))
1478
		goto out_lock;
L
Linus Torvalds 已提交
1479 1480 1481
	for (cnt = 0; cnt < MAXQUOTAS; cnt++) {
		if (type != -1 && cnt != type)
			continue;
J
Jan Kara 已提交
1482 1483 1484
		/* Avoid races with quotaoff() */
		if (!sb_has_quota_active(sb, cnt))
			continue;
1485 1486 1487
		/* We could race with quotaon or dqget() could have failed */
		if (!got[cnt])
			continue;
1488 1489
		if (!dquots[cnt]) {
			dquots[cnt] = got[cnt];
J
Jan Kara 已提交
1490
			got[cnt] = NULL;
1491 1492 1493 1494 1495
			/*
			 * Make quota reservation system happy if someone
			 * did a write before quota was turned on
			 */
			rsv = inode_get_rsv_space(inode);
N
Niu Yawei 已提交
1496
			if (unlikely(rsv))
1497
				dquot_resv_space(dquots[cnt], rsv);
L
Linus Torvalds 已提交
1498 1499
		}
	}
1500
out_lock:
N
Niu Yawei 已提交
1501
	spin_unlock(&dq_data_lock);
1502
out_put:
J
Jan Kara 已提交
1503
	/* Drop unused references */
1504
	dqput_all(got);
1505 1506

	return ret;
1507 1508
}

1509
int dquot_initialize(struct inode *inode)
1510
{
1511
	return __dquot_initialize(inode, -1);
L
Linus Torvalds 已提交
1512
}
1513
EXPORT_SYMBOL(dquot_initialize);
L
Linus Torvalds 已提交
1514

1515 1516 1517 1518 1519 1520 1521 1522 1523 1524 1525 1526 1527 1528 1529 1530
bool dquot_initialize_needed(struct inode *inode)
{
	struct dquot **dquots;
	int i;

	if (!dquot_active(inode))
		return false;

	dquots = i_dquot(inode);
	for (i = 0; i < MAXQUOTAS; i++)
		if (!dquots[i] && sb_has_quota_active(inode->i_sb, i))
			return true;
	return false;
}
EXPORT_SYMBOL(dquot_initialize_needed);

L
Linus Torvalds 已提交
1531
/*
N
Niu Yawei 已提交
1532 1533 1534 1535 1536 1537
 * Release all quotas referenced by inode.
 *
 * This function only be called on inode free or converting
 * a file to quota file, no other users for the i_dquot in
 * both cases, so we needn't call synchronize_srcu() after
 * clearing i_dquot.
L
Linus Torvalds 已提交
1538
 */
1539
static void __dquot_drop(struct inode *inode)
L
Linus Torvalds 已提交
1540 1541
{
	int cnt;
1542
	struct dquot **dquots = i_dquot(inode);
J
Jan Kara 已提交
1543
	struct dquot *put[MAXQUOTAS];
L
Linus Torvalds 已提交
1544

N
Niu Yawei 已提交
1545
	spin_lock(&dq_data_lock);
L
Linus Torvalds 已提交
1546
	for (cnt = 0; cnt < MAXQUOTAS; cnt++) {
1547 1548
		put[cnt] = dquots[cnt];
		dquots[cnt] = NULL;
L
Linus Torvalds 已提交
1549
	}
N
Niu Yawei 已提交
1550
	spin_unlock(&dq_data_lock);
1551
	dqput_all(put);
L
Linus Torvalds 已提交
1552 1553
}

1554 1555
void dquot_drop(struct inode *inode)
{
1556
	struct dquot * const *dquots;
1557 1558 1559 1560 1561 1562 1563 1564 1565 1566 1567 1568
	int cnt;

	if (IS_NOQUOTA(inode))
		return;

	/*
	 * Test before calling to rule out calls from proc and such
	 * where we are not allowed to block. Note that this is
	 * actually reliable test even without the lock - the caller
	 * must assure that nobody can come after the DQUOT_DROP and
	 * add quota pointers back anyway.
	 */
1569
	dquots = i_dquot(inode);
1570
	for (cnt = 0; cnt < MAXQUOTAS; cnt++) {
1571
		if (dquots[cnt])
1572 1573 1574 1575 1576 1577 1578
			break;
	}

	if (cnt < MAXQUOTAS)
		__dquot_drop(inode);
}
EXPORT_SYMBOL(dquot_drop);
1579

1580 1581 1582 1583 1584 1585 1586 1587 1588 1589 1590 1591
/*
 * inode_reserved_space is managed internally by quota, and protected by
 * i_lock similar to i_blocks+i_bytes.
 */
static qsize_t *inode_reserved_space(struct inode * inode)
{
	/* Filesystem must explicitly define it's own method in order to use
	 * quota reservation interface */
	BUG_ON(!inode->i_sb->dq_op->get_reserved_space);
	return inode->i_sb->dq_op->get_reserved_space(inode);
}

1592
void inode_add_rsv_space(struct inode *inode, qsize_t number)
1593 1594 1595 1596 1597
{
	spin_lock(&inode->i_lock);
	*inode_reserved_space(inode) += number;
	spin_unlock(&inode->i_lock);
}
1598
EXPORT_SYMBOL(inode_add_rsv_space);
1599

1600
void inode_claim_rsv_space(struct inode *inode, qsize_t number)
1601 1602 1603 1604 1605 1606
{
	spin_lock(&inode->i_lock);
	*inode_reserved_space(inode) -= number;
	__inode_add_bytes(inode, number);
	spin_unlock(&inode->i_lock);
}
1607
EXPORT_SYMBOL(inode_claim_rsv_space);
1608

1609 1610 1611 1612 1613 1614 1615 1616 1617
void inode_reclaim_rsv_space(struct inode *inode, qsize_t number)
{
	spin_lock(&inode->i_lock);
	*inode_reserved_space(inode) += number;
	__inode_sub_bytes(inode, number);
	spin_unlock(&inode->i_lock);
}
EXPORT_SYMBOL(inode_reclaim_rsv_space);

1618
void inode_sub_rsv_space(struct inode *inode, qsize_t number)
1619 1620 1621 1622 1623
{
	spin_lock(&inode->i_lock);
	*inode_reserved_space(inode) -= number;
	spin_unlock(&inode->i_lock);
}
1624
EXPORT_SYMBOL(inode_sub_rsv_space);
1625 1626 1627 1628

static qsize_t inode_get_rsv_space(struct inode *inode)
{
	qsize_t ret;
1629 1630 1631

	if (!inode->i_sb->dq_op->get_reserved_space)
		return 0;
1632 1633 1634 1635 1636 1637 1638 1639 1640 1641 1642 1643 1644 1645 1646 1647 1648 1649 1650 1651 1652 1653 1654
	spin_lock(&inode->i_lock);
	ret = *inode_reserved_space(inode);
	spin_unlock(&inode->i_lock);
	return ret;
}

static void inode_incr_space(struct inode *inode, qsize_t number,
				int reserve)
{
	if (reserve)
		inode_add_rsv_space(inode, number);
	else
		inode_add_bytes(inode, number);
}

static void inode_decr_space(struct inode *inode, qsize_t number, int reserve)
{
	if (reserve)
		inode_sub_rsv_space(inode, number);
	else
		inode_sub_bytes(inode, number);
}

L
Linus Torvalds 已提交
1655
/*
1656 1657 1658 1659 1660 1661 1662
 * This functions updates i_blocks+i_bytes fields and quota information
 * (together with appropriate checks).
 *
 * NOTE: We absolutely rely on the fact that caller dirties the inode
 * (usually helpers in quotaops.h care about this) and holds a handle for
 * the current transaction so that dquot write and inode write go into the
 * same transaction.
L
Linus Torvalds 已提交
1663 1664 1665 1666 1667
 */

/*
 * This operation can block, but only after everything is updated
 */
1668
int __dquot_alloc_space(struct inode *inode, qsize_t number, int flags)
L
Linus Torvalds 已提交
1669
{
N
Niu Yawei 已提交
1670
	int cnt, ret = 0, index;
1671
	struct dquot_warn warn[MAXQUOTAS];
1672
	int reserve = flags & DQUOT_SPACE_RESERVE;
1673
	struct dquot **dquots;
L
Linus Torvalds 已提交
1674

1675
	if (!dquot_active(inode)) {
1676 1677 1678 1679
		inode_incr_space(inode, number, reserve);
		goto out;
	}

L
Linus Torvalds 已提交
1680
	for (cnt = 0; cnt < MAXQUOTAS; cnt++)
1681
		warn[cnt].w_type = QUOTA_NL_NOWARN;
L
Linus Torvalds 已提交
1682

1683
	dquots = i_dquot(inode);
N
Niu Yawei 已提交
1684
	index = srcu_read_lock(&dquot_srcu);
L
Linus Torvalds 已提交
1685 1686
	spin_lock(&dq_data_lock);
	for (cnt = 0; cnt < MAXQUOTAS; cnt++) {
1687
		if (!dquots[cnt])
L
Linus Torvalds 已提交
1688
			continue;
1689 1690 1691
		ret = check_bdq(dquots[cnt], number,
				!(flags & DQUOT_SPACE_WARN), &warn[cnt]);
		if (ret && !(flags & DQUOT_SPACE_NOFAIL)) {
1692 1693
			spin_unlock(&dq_data_lock);
			goto out_flush_warn;
1694
		}
L
Linus Torvalds 已提交
1695 1696
	}
	for (cnt = 0; cnt < MAXQUOTAS; cnt++) {
1697
		if (!dquots[cnt])
L
Linus Torvalds 已提交
1698
			continue;
1699
		if (reserve)
1700
			dquot_resv_space(dquots[cnt], number);
1701
		else
1702
			dquot_incr_space(dquots[cnt], number);
L
Linus Torvalds 已提交
1703
	}
1704
	inode_incr_space(inode, number, reserve);
L
Linus Torvalds 已提交
1705
	spin_unlock(&dq_data_lock);
1706

1707 1708
	if (reserve)
		goto out_flush_warn;
1709
	mark_all_dquot_dirty(dquots);
1710
out_flush_warn:
N
Niu Yawei 已提交
1711
	srcu_read_unlock(&dquot_srcu, index);
1712
	flush_warnings(warn);
1713 1714 1715
out:
	return ret;
}
1716
EXPORT_SYMBOL(__dquot_alloc_space);
L
Linus Torvalds 已提交
1717 1718 1719 1720

/*
 * This operation can block, but only after everything is updated
 */
1721
int dquot_alloc_inode(struct inode *inode)
L
Linus Torvalds 已提交
1722
{
N
Niu Yawei 已提交
1723
	int cnt, ret = 0, index;
1724
	struct dquot_warn warn[MAXQUOTAS];
1725
	struct dquot * const *dquots;
L
Linus Torvalds 已提交
1726

1727
	if (!dquot_active(inode))
1728
		return 0;
L
Linus Torvalds 已提交
1729
	for (cnt = 0; cnt < MAXQUOTAS; cnt++)
1730
		warn[cnt].w_type = QUOTA_NL_NOWARN;
N
Niu Yawei 已提交
1731

1732
	dquots = i_dquot(inode);
N
Niu Yawei 已提交
1733
	index = srcu_read_lock(&dquot_srcu);
L
Linus Torvalds 已提交
1734 1735
	spin_lock(&dq_data_lock);
	for (cnt = 0; cnt < MAXQUOTAS; cnt++) {
1736
		if (!dquots[cnt])
L
Linus Torvalds 已提交
1737
			continue;
1738
		ret = check_idq(dquots[cnt], 1, &warn[cnt]);
1739
		if (ret)
L
Linus Torvalds 已提交
1740 1741 1742 1743
			goto warn_put_all;
	}

	for (cnt = 0; cnt < MAXQUOTAS; cnt++) {
1744
		if (!dquots[cnt])
L
Linus Torvalds 已提交
1745
			continue;
1746
		dquot_incr_inodes(dquots[cnt], 1);
L
Linus Torvalds 已提交
1747
	}
1748

L
Linus Torvalds 已提交
1749 1750
warn_put_all:
	spin_unlock(&dq_data_lock);
1751
	if (ret == 0)
1752
		mark_all_dquot_dirty(dquots);
N
Niu Yawei 已提交
1753
	srcu_read_unlock(&dquot_srcu, index);
1754
	flush_warnings(warn);
L
Linus Torvalds 已提交
1755 1756
	return ret;
}
1757
EXPORT_SYMBOL(dquot_alloc_inode);
L
Linus Torvalds 已提交
1758

1759 1760 1761 1762
/*
 * Convert in-memory reserved quotas to real consumed quotas
 */
int dquot_claim_space_nodirty(struct inode *inode, qsize_t number)
1763
{
1764
	struct dquot **dquots;
N
Niu Yawei 已提交
1765
	int cnt, index;
1766

1767
	if (!dquot_active(inode)) {
1768
		inode_claim_rsv_space(inode, number);
1769
		return 0;
1770 1771
	}

1772
	dquots = i_dquot(inode);
N
Niu Yawei 已提交
1773
	index = srcu_read_lock(&dquot_srcu);
1774 1775 1776
	spin_lock(&dq_data_lock);
	/* Claim reserved quotas to allocated quotas */
	for (cnt = 0; cnt < MAXQUOTAS; cnt++) {
1777 1778
		if (dquots[cnt])
			dquot_claim_reserved_space(dquots[cnt], number);
1779 1780
	}
	/* Update inode bytes */
1781
	inode_claim_rsv_space(inode, number);
1782
	spin_unlock(&dq_data_lock);
1783
	mark_all_dquot_dirty(dquots);
N
Niu Yawei 已提交
1784
	srcu_read_unlock(&dquot_srcu, index);
1785
	return 0;
1786
}
1787
EXPORT_SYMBOL(dquot_claim_space_nodirty);
1788

1789 1790 1791 1792 1793
/*
 * Convert allocated space back to in-memory reserved quotas
 */
void dquot_reclaim_space_nodirty(struct inode *inode, qsize_t number)
{
1794
	struct dquot **dquots;
N
Niu Yawei 已提交
1795
	int cnt, index;
1796 1797 1798 1799 1800 1801

	if (!dquot_active(inode)) {
		inode_reclaim_rsv_space(inode, number);
		return;
	}

1802
	dquots = i_dquot(inode);
N
Niu Yawei 已提交
1803
	index = srcu_read_lock(&dquot_srcu);
1804 1805 1806
	spin_lock(&dq_data_lock);
	/* Claim reserved quotas to allocated quotas */
	for (cnt = 0; cnt < MAXQUOTAS; cnt++) {
1807 1808
		if (dquots[cnt])
			dquot_reclaim_reserved_space(dquots[cnt], number);
1809 1810 1811 1812
	}
	/* Update inode bytes */
	inode_reclaim_rsv_space(inode, number);
	spin_unlock(&dq_data_lock);
1813
	mark_all_dquot_dirty(dquots);
N
Niu Yawei 已提交
1814
	srcu_read_unlock(&dquot_srcu, index);
1815 1816 1817 1818
	return;
}
EXPORT_SYMBOL(dquot_reclaim_space_nodirty);

L
Linus Torvalds 已提交
1819 1820 1821
/*
 * This operation can block, but only after everything is updated
 */
1822
void __dquot_free_space(struct inode *inode, qsize_t number, int flags)
L
Linus Torvalds 已提交
1823 1824
{
	unsigned int cnt;
1825
	struct dquot_warn warn[MAXQUOTAS];
1826
	struct dquot **dquots;
N
Niu Yawei 已提交
1827
	int reserve = flags & DQUOT_SPACE_RESERVE, index;
L
Linus Torvalds 已提交
1828

1829
	if (!dquot_active(inode)) {
1830
		inode_decr_space(inode, number, reserve);
1831
		return;
L
Linus Torvalds 已提交
1832
	}
1833

1834
	dquots = i_dquot(inode);
N
Niu Yawei 已提交
1835
	index = srcu_read_lock(&dquot_srcu);
L
Linus Torvalds 已提交
1836 1837
	spin_lock(&dq_data_lock);
	for (cnt = 0; cnt < MAXQUOTAS; cnt++) {
1838 1839 1840 1841
		int wtype;

		warn[cnt].w_type = QUOTA_NL_NOWARN;
		if (!dquots[cnt])
L
Linus Torvalds 已提交
1842
			continue;
1843 1844 1845
		wtype = info_bdq_free(dquots[cnt], number);
		if (wtype != QUOTA_NL_NOWARN)
			prepare_warning(&warn[cnt], dquots[cnt], wtype);
1846
		if (reserve)
1847
			dquot_free_reserved_space(dquots[cnt], number);
1848
		else
1849
			dquot_decr_space(dquots[cnt], number);
L
Linus Torvalds 已提交
1850
	}
1851
	inode_decr_space(inode, number, reserve);
L
Linus Torvalds 已提交
1852
	spin_unlock(&dq_data_lock);
1853 1854 1855

	if (reserve)
		goto out_unlock;
1856
	mark_all_dquot_dirty(dquots);
1857
out_unlock:
N
Niu Yawei 已提交
1858
	srcu_read_unlock(&dquot_srcu, index);
1859
	flush_warnings(warn);
1860
}
1861
EXPORT_SYMBOL(__dquot_free_space);
1862

L
Linus Torvalds 已提交
1863 1864 1865
/*
 * This operation can block, but only after everything is updated
 */
1866
void dquot_free_inode(struct inode *inode)
L
Linus Torvalds 已提交
1867 1868
{
	unsigned int cnt;
1869
	struct dquot_warn warn[MAXQUOTAS];
1870
	struct dquot * const *dquots;
N
Niu Yawei 已提交
1871
	int index;
L
Linus Torvalds 已提交
1872

1873
	if (!dquot_active(inode))
1874
		return;
1875

1876
	dquots = i_dquot(inode);
N
Niu Yawei 已提交
1877
	index = srcu_read_lock(&dquot_srcu);
L
Linus Torvalds 已提交
1878 1879
	spin_lock(&dq_data_lock);
	for (cnt = 0; cnt < MAXQUOTAS; cnt++) {
1880 1881 1882 1883
		int wtype;

		warn[cnt].w_type = QUOTA_NL_NOWARN;
		if (!dquots[cnt])
L
Linus Torvalds 已提交
1884
			continue;
1885 1886 1887 1888
		wtype = info_idq_free(dquots[cnt], 1);
		if (wtype != QUOTA_NL_NOWARN)
			prepare_warning(&warn[cnt], dquots[cnt], wtype);
		dquot_decr_inodes(dquots[cnt], 1);
L
Linus Torvalds 已提交
1889 1890
	}
	spin_unlock(&dq_data_lock);
1891
	mark_all_dquot_dirty(dquots);
N
Niu Yawei 已提交
1892
	srcu_read_unlock(&dquot_srcu, index);
1893
	flush_warnings(warn);
L
Linus Torvalds 已提交
1894
}
1895
EXPORT_SYMBOL(dquot_free_inode);
L
Linus Torvalds 已提交
1896 1897 1898

/*
 * Transfer the number of inode and blocks from one diskquota to an other.
1899 1900 1901
 * On success, dquot references in transfer_to are consumed and references
 * to original dquots that need to be released are placed there. On failure,
 * references are kept untouched.
L
Linus Torvalds 已提交
1902 1903 1904
 *
 * This operation can block, but only after everything is updated
 * A transaction must be started when entering this function.
1905
 *
N
Niu Yawei 已提交
1906 1907
 * We are holding reference on transfer_from & transfer_to, no need to
 * protect them by srcu_read_lock().
L
Linus Torvalds 已提交
1908
 */
1909
int __dquot_transfer(struct inode *inode, struct dquot **transfer_to)
L
Linus Torvalds 已提交
1910
{
1911 1912
	qsize_t space, cur_space;
	qsize_t rsv_space = 0;
1913
	qsize_t inode_usage = 1;
1914
	struct dquot *transfer_from[MAXQUOTAS] = {};
1915
	int cnt, ret = 0;
1916
	char is_valid[MAXQUOTAS] = {};
1917 1918 1919
	struct dquot_warn warn_to[MAXQUOTAS];
	struct dquot_warn warn_from_inodes[MAXQUOTAS];
	struct dquot_warn warn_from_space[MAXQUOTAS];
L
Linus Torvalds 已提交
1920 1921

	if (IS_NOQUOTA(inode))
1922
		return 0;
1923 1924 1925 1926 1927 1928 1929

	if (inode->i_sb->dq_op->get_inode_usage) {
		ret = inode->i_sb->dq_op->get_inode_usage(inode, &inode_usage);
		if (ret)
			return ret;
	}

J
Jan Kara 已提交
1930
	/* Initialize the arrays */
1931 1932 1933 1934 1935
	for (cnt = 0; cnt < MAXQUOTAS; cnt++) {
		warn_to[cnt].w_type = QUOTA_NL_NOWARN;
		warn_from_inodes[cnt].w_type = QUOTA_NL_NOWARN;
		warn_from_space[cnt].w_type = QUOTA_NL_NOWARN;
	}
N
Niu Yawei 已提交
1936 1937

	spin_lock(&dq_data_lock);
J
Jan Kara 已提交
1938
	if (IS_NOQUOTA(inode)) {	/* File without quota accounting? */
N
Niu Yawei 已提交
1939
		spin_unlock(&dq_data_lock);
1940
		return 0;
J
Jan Kara 已提交
1941
	}
1942
	cur_space = inode_get_bytes(inode);
1943
	rsv_space = inode_get_rsv_space(inode);
1944
	space = cur_space + rsv_space;
L
Linus Torvalds 已提交
1945 1946
	/* Build the transfer_from list and check the limits */
	for (cnt = 0; cnt < MAXQUOTAS; cnt++) {
1947 1948 1949
		/*
		 * Skip changes for same uid or gid or for turned off quota-type.
		 */
J
Jan Kara 已提交
1950
		if (!transfer_to[cnt])
L
Linus Torvalds 已提交
1951
			continue;
1952 1953 1954 1955
		/* Avoid races with quotaoff() */
		if (!sb_has_quota_active(inode->i_sb, cnt))
			continue;
		is_valid[cnt] = 1;
1956
		transfer_from[cnt] = i_dquot(inode)[cnt];
1957
		ret = check_idq(transfer_to[cnt], inode_usage, &warn_to[cnt]);
1958 1959
		if (ret)
			goto over_quota;
1960
		ret = check_bdq(transfer_to[cnt], space, 0, &warn_to[cnt]);
1961
		if (ret)
J
Jan Kara 已提交
1962
			goto over_quota;
L
Linus Torvalds 已提交
1963 1964 1965 1966 1967 1968
	}

	/*
	 * Finally perform the needed transfer from transfer_from to transfer_to
	 */
	for (cnt = 0; cnt < MAXQUOTAS; cnt++) {
1969
		if (!is_valid[cnt])
L
Linus Torvalds 已提交
1970 1971 1972
			continue;
		/* Due to IO error we might not have transfer_from[] structure */
		if (transfer_from[cnt]) {
1973
			int wtype;
1974
			wtype = info_idq_free(transfer_from[cnt], inode_usage);
1975 1976 1977 1978 1979 1980 1981
			if (wtype != QUOTA_NL_NOWARN)
				prepare_warning(&warn_from_inodes[cnt],
						transfer_from[cnt], wtype);
			wtype = info_bdq_free(transfer_from[cnt], space);
			if (wtype != QUOTA_NL_NOWARN)
				prepare_warning(&warn_from_space[cnt],
						transfer_from[cnt], wtype);
1982
			dquot_decr_inodes(transfer_from[cnt], inode_usage);
1983 1984 1985
			dquot_decr_space(transfer_from[cnt], cur_space);
			dquot_free_reserved_space(transfer_from[cnt],
						  rsv_space);
L
Linus Torvalds 已提交
1986 1987
		}

1988
		dquot_incr_inodes(transfer_to[cnt], inode_usage);
1989 1990
		dquot_incr_space(transfer_to[cnt], cur_space);
		dquot_resv_space(transfer_to[cnt], rsv_space);
L
Linus Torvalds 已提交
1991

1992
		i_dquot(inode)[cnt] = transfer_to[cnt];
L
Linus Torvalds 已提交
1993 1994
	}
	spin_unlock(&dq_data_lock);
J
Jan Kara 已提交
1995

1996 1997
	mark_all_dquot_dirty(transfer_from);
	mark_all_dquot_dirty(transfer_to);
1998 1999 2000
	flush_warnings(warn_to);
	flush_warnings(warn_from_inodes);
	flush_warnings(warn_from_space);
2001
	/* Pass back references to put */
2002
	for (cnt = 0; cnt < MAXQUOTAS; cnt++)
2003 2004
		if (is_valid[cnt])
			transfer_to[cnt] = transfer_from[cnt];
2005
	return 0;
J
Jan Kara 已提交
2006 2007
over_quota:
	spin_unlock(&dq_data_lock);
2008
	flush_warnings(warn_to);
2009
	return ret;
L
Linus Torvalds 已提交
2010
}
2011
EXPORT_SYMBOL(__dquot_transfer);
L
Linus Torvalds 已提交
2012

2013 2014 2015
/* Wrapper for transferring ownership of an inode for uid/gid only
 * Called from FSXXX_setattr()
 */
2016
int dquot_transfer(struct inode *inode, struct iattr *iattr)
2017
{
2018
	struct dquot *transfer_to[MAXQUOTAS] = {};
2019
	struct dquot *dquot;
2020 2021
	struct super_block *sb = inode->i_sb;
	int ret;
2022

2023
	if (!dquot_active(inode))
2024
		return 0;
2025

2026 2027 2028 2029 2030 2031 2032 2033 2034 2035 2036 2037 2038 2039 2040 2041 2042 2043 2044 2045 2046 2047
	if (iattr->ia_valid & ATTR_UID && !uid_eq(iattr->ia_uid, inode->i_uid)){
		dquot = dqget(sb, make_kqid_uid(iattr->ia_uid));
		if (IS_ERR(dquot)) {
			if (PTR_ERR(dquot) != -ESRCH) {
				ret = PTR_ERR(dquot);
				goto out_put;
			}
			dquot = NULL;
		}
		transfer_to[USRQUOTA] = dquot;
	}
	if (iattr->ia_valid & ATTR_GID && !gid_eq(iattr->ia_gid, inode->i_gid)){
		dquot = dqget(sb, make_kqid_gid(iattr->ia_gid));
		if (IS_ERR(dquot)) {
			if (PTR_ERR(dquot) != -ESRCH) {
				ret = PTR_ERR(dquot);
				goto out_put;
			}
			dquot = NULL;
		}
		transfer_to[GRPQUOTA] = dquot;
	}
2048
	ret = __dquot_transfer(inode, transfer_to);
2049
out_put:
2050 2051
	dqput_all(transfer_to);
	return ret;
2052
}
2053
EXPORT_SYMBOL(dquot_transfer);
2054

L
Linus Torvalds 已提交
2055 2056 2057 2058 2059 2060 2061 2062
/*
 * Write info of quota file to disk
 */
int dquot_commit_info(struct super_block *sb, int type)
{
	int ret;
	struct quota_info *dqopt = sb_dqopt(sb);

J
Jan Kara 已提交
2063
	down_write(&dqopt->dqio_sem);
L
Linus Torvalds 已提交
2064
	ret = dqopt->ops[type]->write_file_info(sb, type);
J
Jan Kara 已提交
2065
	up_write(&dqopt->dqio_sem);
L
Linus Torvalds 已提交
2066 2067
	return ret;
}
2068
EXPORT_SYMBOL(dquot_commit_info);
L
Linus Torvalds 已提交
2069

2070 2071 2072 2073 2074
int dquot_get_next_id(struct super_block *sb, struct kqid *qid)
{
	struct quota_info *dqopt = sb_dqopt(sb);
	int err;

2075 2076 2077 2078
	if (!sb_has_quota_active(sb, qid->type))
		return -ESRCH;
	if (!dqopt->ops[qid->type]->get_next_id)
		return -ENOSYS;
2079
	down_read(&dqopt->dqio_sem);
2080
	err = dqopt->ops[qid->type]->get_next_id(sb, qid);
2081
	up_read(&dqopt->dqio_sem);
2082 2083 2084 2085
	return err;
}
EXPORT_SYMBOL(dquot_get_next_id);

L
Linus Torvalds 已提交
2086 2087 2088
/*
 * Definitions of diskquota operations.
 */
2089
const struct dquot_operations dquot_operations = {
L
Linus Torvalds 已提交
2090 2091 2092 2093
	.write_dquot	= dquot_commit,
	.acquire_dquot	= dquot_acquire,
	.release_dquot	= dquot_release,
	.mark_dirty	= dquot_mark_dquot_dirty,
2094 2095 2096
	.write_info	= dquot_commit_info,
	.alloc_dquot	= dquot_alloc,
	.destroy_dquot	= dquot_destroy,
2097
	.get_next_id	= dquot_get_next_id,
L
Linus Torvalds 已提交
2098
};
2099
EXPORT_SYMBOL(dquot_operations);
L
Linus Torvalds 已提交
2100

2101 2102 2103 2104 2105 2106 2107 2108 2109
/*
 * Generic helper for ->open on filesystems supporting disk quotas.
 */
int dquot_file_open(struct inode *inode, struct file *file)
{
	int error;

	error = generic_file_open(inode, file);
	if (!error && (file->f_mode & FMODE_WRITE))
2110
		dquot_initialize(inode);
2111 2112 2113 2114
	return error;
}
EXPORT_SYMBOL(dquot_file_open);

L
Linus Torvalds 已提交
2115 2116 2117
/*
 * Turn quota off on a device. type == -1 ==> quotaoff for all types (umount)
 */
2118
int dquot_disable(struct super_block *sb, int type, unsigned int flags)
L
Linus Torvalds 已提交
2119
{
2120
	int cnt, ret = 0;
L
Linus Torvalds 已提交
2121 2122 2123
	struct quota_info *dqopt = sb_dqopt(sb);
	struct inode *toputinode[MAXQUOTAS];

2124 2125 2126 2127
	/* s_umount should be held in exclusive mode */
	if (WARN_ON_ONCE(down_read_trylock(&sb->s_umount)))
		up_read(&sb->s_umount);

2128 2129 2130 2131 2132 2133 2134
	/* Cannot turn off usage accounting without turning off limits, or
	 * suspend quotas and simultaneously turn quotas off. */
	if ((flags & DQUOT_USAGE_ENABLED && !(flags & DQUOT_LIMITS_ENABLED))
	    || (flags & DQUOT_SUSPENDED && flags & (DQUOT_LIMITS_ENABLED |
	    DQUOT_USAGE_ENABLED)))
		return -EINVAL;

2135 2136 2137 2138 2139
	/*
	 * Skip everything if there's nothing to do. We have to do this because
	 * sometimes we are called when fill_super() failed and calling
	 * sync_fs() in such cases does no good.
	 */
J
Jan Kara 已提交
2140
	if (!sb_any_quota_loaded(sb))
2141
		return 0;
J
Jan Kara 已提交
2142

L
Linus Torvalds 已提交
2143 2144 2145 2146
	for (cnt = 0; cnt < MAXQUOTAS; cnt++) {
		toputinode[cnt] = NULL;
		if (type != -1 && cnt != type)
			continue;
2147
		if (!sb_has_quota_loaded(sb, cnt))
2148
			continue;
2149 2150

		if (flags & DQUOT_SUSPENDED) {
J
Jan Kara 已提交
2151
			spin_lock(&dq_state_lock);
2152 2153
			dqopt->flags |=
				dquot_state_flag(DQUOT_SUSPENDED, cnt);
J
Jan Kara 已提交
2154
			spin_unlock(&dq_state_lock);
2155
		} else {
J
Jan Kara 已提交
2156
			spin_lock(&dq_state_lock);
2157 2158 2159 2160 2161 2162
			dqopt->flags &= ~dquot_state_flag(flags, cnt);
			/* Turning off suspended quotas? */
			if (!sb_has_quota_loaded(sb, cnt) &&
			    sb_has_quota_suspended(sb, cnt)) {
				dqopt->flags &=	~dquot_state_flag(
							DQUOT_SUSPENDED, cnt);
J
Jan Kara 已提交
2163
				spin_unlock(&dq_state_lock);
2164 2165 2166 2167
				iput(dqopt->files[cnt]);
				dqopt->files[cnt] = NULL;
				continue;
			}
J
Jan Kara 已提交
2168
			spin_unlock(&dq_state_lock);
2169
		}
2170 2171 2172

		/* We still have to keep quota loaded? */
		if (sb_has_quota_loaded(sb, cnt) && !(flags & DQUOT_SUSPENDED))
L
Linus Torvalds 已提交
2173 2174 2175 2176 2177 2178
			continue;

		/* Note: these are blocking operations */
		drop_dquot_ref(sb, cnt);
		invalidate_dquots(sb, cnt);
		/*
J
Jan Kara 已提交
2179 2180
		 * Now all dquots should be invalidated, all writes done so we
		 * should be only users of the info. No locks needed.
L
Linus Torvalds 已提交
2181 2182 2183 2184 2185 2186 2187 2188
		 */
		if (info_dirty(&dqopt->info[cnt]))
			sb->dq_op->write_info(sb, cnt);
		if (dqopt->ops[cnt]->free_file_info)
			dqopt->ops[cnt]->free_file_info(sb, cnt);
		put_quota_format(dqopt->info[cnt].dqi_format);

		toputinode[cnt] = dqopt->files[cnt];
2189
		if (!sb_has_quota_loaded(sb, cnt))
2190
			dqopt->files[cnt] = NULL;
L
Linus Torvalds 已提交
2191 2192 2193 2194 2195
		dqopt->info[cnt].dqi_flags = 0;
		dqopt->info[cnt].dqi_igrace = 0;
		dqopt->info[cnt].dqi_bgrace = 0;
		dqopt->ops[cnt] = NULL;
	}
2196 2197 2198 2199 2200

	/* Skip syncing and setting flags if quota files are hidden */
	if (dqopt->flags & DQUOT_QUOTA_SYS_FILE)
		goto put_inodes;

L
Linus Torvalds 已提交
2201
	/* Sync the superblock so that buffers with quota data are written to
2202
	 * disk (and so userspace sees correct data afterwards). */
L
Linus Torvalds 已提交
2203 2204 2205 2206 2207 2208 2209 2210 2211
	if (sb->s_op->sync_fs)
		sb->s_op->sync_fs(sb, 1);
	sync_blockdev(sb->s_bdev);
	/* Now the quota files are just ordinary files and we can set the
	 * inode flags back. Moreover we discard the pagecache so that
	 * userspace sees the writes we did bypassing the pagecache. We
	 * must also discard the blockdev buffers so that we see the
	 * changes done by userspace on the next quotaon() */
	for (cnt = 0; cnt < MAXQUOTAS; cnt++)
2212 2213
		/* This can happen when suspending quotas on remount-ro... */
		if (toputinode[cnt] && !sb_has_quota_loaded(sb, cnt)) {
J
Jan Kara 已提交
2214
			inode_lock(toputinode[cnt]);
2215
			toputinode[cnt]->i_flags &= ~S_NOQUOTA;
J
Jan Kara 已提交
2216 2217 2218
			truncate_inode_pages(&toputinode[cnt]->i_data, 0);
			inode_unlock(toputinode[cnt]);
			mark_inode_dirty_sync(toputinode[cnt]);
2219 2220 2221 2222 2223 2224
		}
	if (sb->s_bdev)
		invalidate_bdev(sb->s_bdev);
put_inodes:
	for (cnt = 0; cnt < MAXQUOTAS; cnt++)
		if (toputinode[cnt]) {
2225
			/* On remount RO, we keep the inode pointer so that we
2226 2227 2228 2229 2230 2231 2232
			 * can reenable quota on the subsequent remount RW. We
			 * have to check 'flags' variable and not use sb_has_
			 * function because another quotaon / quotaoff could
			 * change global state before we got here. We refuse
			 * to suspend quotas when there is pending delete on
			 * the quota file... */
			if (!(flags & DQUOT_SUSPENDED))
2233 2234 2235
				iput(toputinode[cnt]);
			else if (!toputinode[cnt]->i_nlink)
				ret = -EBUSY;
L
Linus Torvalds 已提交
2236
		}
2237
	return ret;
L
Linus Torvalds 已提交
2238
}
2239
EXPORT_SYMBOL(dquot_disable);
L
Linus Torvalds 已提交
2240

2241
int dquot_quota_off(struct super_block *sb, int type)
2242
{
2243 2244
	return dquot_disable(sb, type,
			     DQUOT_USAGE_ENABLED | DQUOT_LIMITS_ENABLED);
2245
}
2246
EXPORT_SYMBOL(dquot_quota_off);
2247

L
Linus Torvalds 已提交
2248 2249 2250 2251
/*
 *	Turn quotas on on a device
 */

2252 2253 2254 2255 2256 2257
/*
 * Helper function to turn quotas on when we already have the inode of
 * quota file and no quota information is loaded.
 */
static int vfs_load_quota_inode(struct inode *inode, int type, int format_id,
	unsigned int flags)
L
Linus Torvalds 已提交
2258 2259 2260 2261 2262 2263 2264 2265 2266 2267 2268 2269 2270 2271 2272 2273
{
	struct quota_format_type *fmt = find_quota_format(format_id);
	struct super_block *sb = inode->i_sb;
	struct quota_info *dqopt = sb_dqopt(sb);
	int error;

	if (!fmt)
		return -ESRCH;
	if (!S_ISREG(inode->i_mode)) {
		error = -EACCES;
		goto out_fmt;
	}
	if (IS_RDONLY(inode)) {
		error = -EROFS;
		goto out_fmt;
	}
2274 2275
	if (!sb->s_op->quota_write || !sb->s_op->quota_read ||
	    (type == PRJQUOTA && sb->dq_op->get_projid == NULL)) {
L
Linus Torvalds 已提交
2276 2277 2278
		error = -EINVAL;
		goto out_fmt;
	}
2279 2280 2281 2282 2283
	/* Filesystems outside of init_user_ns not yet supported */
	if (sb->s_user_ns != &init_user_ns) {
		error = -EINVAL;
		goto out_fmt;
	}
2284 2285 2286 2287 2288
	/* Usage always has to be set... */
	if (!(flags & DQUOT_USAGE_ENABLED)) {
		error = -EINVAL;
		goto out_fmt;
	}
J
Jan Kara 已提交
2289 2290 2291 2292
	if (sb_has_quota_loaded(sb, type)) {
		error = -EBUSY;
		goto out_fmt;
	}
L
Linus Torvalds 已提交
2293

2294
	if (!(dqopt->flags & DQUOT_QUOTA_SYS_FILE)) {
2295 2296 2297 2298 2299 2300 2301
		/* As we bypass the pagecache we must now flush all the
		 * dirty data and invalidate caches so that kernel sees
		 * changes from userspace. It is not enough to just flush
		 * the quota file since if blocksize < pagesize, invalidation
		 * of the cache could fail because of other unrelated dirty
		 * data */
		sync_filesystem(sb);
2302 2303 2304 2305 2306 2307 2308
		invalidate_bdev(sb->s_bdev);
	}

	if (!(dqopt->flags & DQUOT_QUOTA_SYS_FILE)) {
		/* We don't want quota and atime on quota files (deadlocks
		 * possible) Also nobody should write to the file - we use
		 * special IO operations which ignore the immutable bit. */
A
Al Viro 已提交
2309
		inode_lock(inode);
2310
		inode->i_flags |= S_NOQUOTA;
A
Al Viro 已提交
2311
		inode_unlock(inode);
J
Jan Kara 已提交
2312 2313 2314 2315
		/*
		 * When S_NOQUOTA is set, remove dquot references as no more
		 * references can be added
		 */
2316
		__dquot_drop(inode);
2317
	}
L
Linus Torvalds 已提交
2318 2319 2320 2321

	error = -EIO;
	dqopt->files[type] = igrab(inode);
	if (!dqopt->files[type])
J
Jan Kara 已提交
2322
		goto out_file_flags;
L
Linus Torvalds 已提交
2323 2324 2325 2326 2327 2328
	error = -EINVAL;
	if (!fmt->qf_ops->check_quota_file(sb, type))
		goto out_file_init;

	dqopt->ops[type] = fmt->qf_ops;
	dqopt->info[type].dqi_format = fmt;
2329
	dqopt->info[type].dqi_fmt_id = format_id;
L
Linus Torvalds 已提交
2330
	INIT_LIST_HEAD(&dqopt->info[type].dqi_dirty_list);
2331
	down_read(&dqopt->dqio_sem);
J
Jan Kara 已提交
2332 2333
	error = dqopt->ops[type]->read_file_info(sb, type);
	if (error < 0) {
2334
		up_read(&dqopt->dqio_sem);
L
Linus Torvalds 已提交
2335 2336
		goto out_file_init;
	}
2337 2338
	if (dqopt->flags & DQUOT_QUOTA_SYS_FILE)
		dqopt->info[type].dqi_flags |= DQF_SYS_FILE;
2339
	up_read(&dqopt->dqio_sem);
J
Jan Kara 已提交
2340
	spin_lock(&dq_state_lock);
2341
	dqopt->flags |= dquot_state_flag(flags, type);
J
Jan Kara 已提交
2342
	spin_unlock(&dq_state_lock);
L
Linus Torvalds 已提交
2343 2344 2345 2346 2347 2348 2349 2350

	add_dquot_ref(sb, type);

	return 0;

out_file_init:
	dqopt->files[type] = NULL;
	iput(inode);
J
Jan Kara 已提交
2351
out_file_flags:
2352 2353 2354
	inode_lock(inode);
	inode->i_flags &= ~S_NOQUOTA;
	inode_unlock(inode);
L
Linus Torvalds 已提交
2355 2356 2357 2358 2359 2360
out_fmt:
	put_quota_format(fmt);

	return error; 
}

2361
/* Reenable quotas on remount RW */
2362
int dquot_resume(struct super_block *sb, int type)
2363 2364 2365
{
	struct quota_info *dqopt = sb_dqopt(sb);
	struct inode *inode;
2366
	int ret = 0, cnt;
2367
	unsigned int flags;
2368

2369 2370 2371 2372
	/* s_umount should be held in exclusive mode */
	if (WARN_ON_ONCE(down_read_trylock(&sb->s_umount)))
		up_read(&sb->s_umount);

2373 2374 2375
	for (cnt = 0; cnt < MAXQUOTAS; cnt++) {
		if (type != -1 && cnt != type)
			continue;
J
Jan Kara 已提交
2376
		if (!sb_has_quota_suspended(sb, cnt))
2377
			continue;
J
Jan Kara 已提交
2378

2379 2380 2381 2382 2383 2384 2385 2386
		inode = dqopt->files[cnt];
		dqopt->files[cnt] = NULL;
		spin_lock(&dq_state_lock);
		flags = dqopt->flags & dquot_state_flag(DQUOT_USAGE_ENABLED |
							DQUOT_LIMITS_ENABLED,
							cnt);
		dqopt->flags &= ~dquot_state_flag(DQUOT_STATE_FLAGS, cnt);
		spin_unlock(&dq_state_lock);
2387

2388 2389 2390 2391 2392
		flags = dquot_generic_flag(flags, cnt);
		ret = vfs_load_quota_inode(inode, cnt,
				dqopt->info[cnt].dqi_fmt_id, flags);
		iput(inode);
	}
2393 2394 2395

	return ret;
}
2396
EXPORT_SYMBOL(dquot_resume);
2397

2398
int dquot_quota_on(struct super_block *sb, int type, int format_id,
A
Al Viro 已提交
2399
		   const struct path *path)
2400 2401 2402 2403 2404
{
	int error = security_quota_on(path->dentry);
	if (error)
		return error;
	/* Quota file not on the same filesystem? */
2405
	if (path->dentry->d_sb != sb)
2406 2407
		error = -EXDEV;
	else
2408
		error = vfs_load_quota_inode(d_inode(path->dentry), type,
2409 2410
					     format_id, DQUOT_USAGE_ENABLED |
					     DQUOT_LIMITS_ENABLED);
2411 2412
	return error;
}
2413
EXPORT_SYMBOL(dquot_quota_on);
L
Linus Torvalds 已提交
2414

2415 2416 2417 2418
/*
 * More powerful function for turning on quotas allowing setting
 * of individual quota flags
 */
2419 2420
int dquot_enable(struct inode *inode, int type, int format_id,
		 unsigned int flags)
2421 2422 2423 2424
{
	struct super_block *sb = inode->i_sb;

	/* Just unsuspend quotas? */
2425
	BUG_ON(flags & DQUOT_SUSPENDED);
2426 2427 2428
	/* s_umount should be held in exclusive mode */
	if (WARN_ON_ONCE(down_read_trylock(&sb->s_umount)))
		up_read(&sb->s_umount);
2429

2430 2431 2432 2433 2434
	if (!flags)
		return 0;
	/* Just updating flags needed? */
	if (sb_has_quota_loaded(sb, type)) {
		if (flags & DQUOT_USAGE_ENABLED &&
J
Jan Kara 已提交
2435 2436
		    sb_has_quota_usage_enabled(sb, type))
			return -EBUSY;
2437
		if (flags & DQUOT_LIMITS_ENABLED &&
J
Jan Kara 已提交
2438 2439
		    sb_has_quota_limits_enabled(sb, type))
			return -EBUSY;
J
Jan Kara 已提交
2440
		spin_lock(&dq_state_lock);
2441
		sb_dqopt(sb)->flags |= dquot_state_flag(flags, type);
J
Jan Kara 已提交
2442
		spin_unlock(&dq_state_lock);
J
Jan Kara 已提交
2443
		return 0;
2444 2445 2446 2447
	}

	return vfs_load_quota_inode(inode, type, format_id, flags);
}
2448
EXPORT_SYMBOL(dquot_enable);
2449

L
Linus Torvalds 已提交
2450 2451 2452 2453
/*
 * This function is used when filesystem needs to initialize quotas
 * during mount time.
 */
2454
int dquot_quota_on_mount(struct super_block *sb, char *qf_name,
2455
		int format_id, int type)
L
Linus Torvalds 已提交
2456
{
2457
	struct dentry *dentry;
L
Linus Torvalds 已提交
2458 2459
	int error;

A
Al Viro 已提交
2460
	dentry = lookup_one_len_unlocked(qf_name, sb->s_root, strlen(qf_name));
2461 2462 2463
	if (IS_ERR(dentry))
		return PTR_ERR(dentry);

2464
	if (d_really_is_negative(dentry)) {
J
Jan Kara 已提交
2465 2466 2467 2468
		error = -ENOENT;
		goto out;
	}

L
Linus Torvalds 已提交
2469
	error = security_quota_on(dentry);
2470
	if (!error)
2471
		error = vfs_load_quota_inode(d_inode(dentry), type, format_id,
2472
				DQUOT_USAGE_ENABLED | DQUOT_LIMITS_ENABLED);
2473

J
Jan Kara 已提交
2474
out:
2475 2476
	dput(dentry);
	return error;
L
Linus Torvalds 已提交
2477
}
2478
EXPORT_SYMBOL(dquot_quota_on_mount);
2479

2480 2481 2482 2483 2484 2485 2486 2487 2488 2489 2490 2491 2492 2493 2494 2495 2496 2497 2498 2499 2500 2501 2502 2503 2504 2505 2506 2507 2508 2509 2510 2511 2512 2513 2514 2515 2516 2517 2518 2519 2520 2521 2522 2523 2524 2525 2526 2527 2528 2529 2530 2531 2532 2533 2534 2535 2536 2537 2538 2539 2540 2541 2542 2543 2544 2545 2546 2547 2548 2549 2550 2551 2552 2553 2554 2555 2556 2557 2558 2559
static int dquot_quota_enable(struct super_block *sb, unsigned int flags)
{
	int ret;
	int type;
	struct quota_info *dqopt = sb_dqopt(sb);

	if (!(dqopt->flags & DQUOT_QUOTA_SYS_FILE))
		return -ENOSYS;
	/* Accounting cannot be turned on while fs is mounted */
	flags &= ~(FS_QUOTA_UDQ_ACCT | FS_QUOTA_GDQ_ACCT | FS_QUOTA_PDQ_ACCT);
	if (!flags)
		return -EINVAL;
	for (type = 0; type < MAXQUOTAS; type++) {
		if (!(flags & qtype_enforce_flag(type)))
			continue;
		/* Can't enforce without accounting */
		if (!sb_has_quota_usage_enabled(sb, type))
			return -EINVAL;
		ret = dquot_enable(dqopt->files[type], type,
				   dqopt->info[type].dqi_fmt_id,
				   DQUOT_LIMITS_ENABLED);
		if (ret < 0)
			goto out_err;
	}
	return 0;
out_err:
	/* Backout enforcement enablement we already did */
	for (type--; type >= 0; type--)  {
		if (flags & qtype_enforce_flag(type))
			dquot_disable(sb, type, DQUOT_LIMITS_ENABLED);
	}
	/* Error code translation for better compatibility with XFS */
	if (ret == -EBUSY)
		ret = -EEXIST;
	return ret;
}

static int dquot_quota_disable(struct super_block *sb, unsigned int flags)
{
	int ret;
	int type;
	struct quota_info *dqopt = sb_dqopt(sb);

	if (!(dqopt->flags & DQUOT_QUOTA_SYS_FILE))
		return -ENOSYS;
	/*
	 * We don't support turning off accounting via quotactl. In principle
	 * quota infrastructure can do this but filesystems don't expect
	 * userspace to be able to do it.
	 */
	if (flags &
		  (FS_QUOTA_UDQ_ACCT | FS_QUOTA_GDQ_ACCT | FS_QUOTA_PDQ_ACCT))
		return -EOPNOTSUPP;

	/* Filter out limits not enabled */
	for (type = 0; type < MAXQUOTAS; type++)
		if (!sb_has_quota_limits_enabled(sb, type))
			flags &= ~qtype_enforce_flag(type);
	/* Nothing left? */
	if (!flags)
		return -EEXIST;
	for (type = 0; type < MAXQUOTAS; type++) {
		if (flags & qtype_enforce_flag(type)) {
			ret = dquot_disable(sb, type, DQUOT_LIMITS_ENABLED);
			if (ret < 0)
				goto out_err;
		}
	}
	return 0;
out_err:
	/* Backout enforcement disabling we already did */
	for (type--; type >= 0; type--)  {
		if (flags & qtype_enforce_flag(type))
			dquot_enable(dqopt->files[type], type,
				     dqopt->info[type].dqi_fmt_id,
				     DQUOT_LIMITS_ENABLED);
	}
	return ret;
}

L
Linus Torvalds 已提交
2560
/* Generic routine for getting common part of quota structure */
2561
static void do_get_dqblk(struct dquot *dquot, struct qc_dqblk *di)
L
Linus Torvalds 已提交
2562 2563 2564
{
	struct mem_dqblk *dm = &dquot->dq_dqb;

C
Christoph Hellwig 已提交
2565
	memset(di, 0, sizeof(*di));
L
Linus Torvalds 已提交
2566
	spin_lock(&dq_data_lock);
2567 2568
	di->d_spc_hardlimit = dm->dqb_bhardlimit;
	di->d_spc_softlimit = dm->dqb_bsoftlimit;
C
Christoph Hellwig 已提交
2569 2570
	di->d_ino_hardlimit = dm->dqb_ihardlimit;
	di->d_ino_softlimit = dm->dqb_isoftlimit;
2571 2572 2573 2574
	di->d_space = dm->dqb_curspace + dm->dqb_rsvspace;
	di->d_ino_count = dm->dqb_curinodes;
	di->d_spc_timer = dm->dqb_btime;
	di->d_ino_timer = dm->dqb_itime;
L
Linus Torvalds 已提交
2575 2576 2577
	spin_unlock(&dq_data_lock);
}

E
Eric W. Biederman 已提交
2578
int dquot_get_dqblk(struct super_block *sb, struct kqid qid,
2579
		    struct qc_dqblk *di)
L
Linus Torvalds 已提交
2580 2581 2582
{
	struct dquot *dquot;

2583
	dquot = dqget(sb, qid);
2584 2585
	if (IS_ERR(dquot))
		return PTR_ERR(dquot);
L
Linus Torvalds 已提交
2586 2587
	do_get_dqblk(dquot, di);
	dqput(dquot);
J
Jan Kara 已提交
2588

L
Linus Torvalds 已提交
2589 2590
	return 0;
}
2591
EXPORT_SYMBOL(dquot_get_dqblk);
L
Linus Torvalds 已提交
2592

2593 2594 2595 2596 2597 2598 2599 2600 2601 2602 2603 2604 2605 2606 2607 2608 2609 2610 2611 2612 2613
int dquot_get_next_dqblk(struct super_block *sb, struct kqid *qid,
			 struct qc_dqblk *di)
{
	struct dquot *dquot;
	int err;

	if (!sb->dq_op->get_next_id)
		return -ENOSYS;
	err = sb->dq_op->get_next_id(sb, qid);
	if (err < 0)
		return err;
	dquot = dqget(sb, *qid);
	if (IS_ERR(dquot))
		return PTR_ERR(dquot);
	do_get_dqblk(dquot, di);
	dqput(dquot);

	return 0;
}
EXPORT_SYMBOL(dquot_get_next_dqblk);

2614 2615 2616 2617
#define VFS_QC_MASK \
	(QC_SPACE | QC_SPC_SOFT | QC_SPC_HARD | \
	 QC_INO_COUNT | QC_INO_SOFT | QC_INO_HARD | \
	 QC_SPC_TIMER | QC_INO_TIMER)
C
Christoph Hellwig 已提交
2618

L
Linus Torvalds 已提交
2619
/* Generic routine for setting common part of quota structure */
2620
static int do_set_dqblk(struct dquot *dquot, struct qc_dqblk *di)
L
Linus Torvalds 已提交
2621 2622 2623
{
	struct mem_dqblk *dm = &dquot->dq_dqb;
	int check_blim = 0, check_ilim = 0;
2624
	struct mem_dqinfo *dqi = &sb_dqopt(dquot->dq_sb)->info[dquot->dq_id.type];
2625

2626
	if (di->d_fieldmask & ~VFS_QC_MASK)
C
Christoph Hellwig 已提交
2627 2628
		return -EINVAL;

2629
	if (((di->d_fieldmask & QC_SPC_SOFT) &&
2630
	     di->d_spc_softlimit > dqi->dqi_max_spc_limit) ||
2631
	    ((di->d_fieldmask & QC_SPC_HARD) &&
2632
	     di->d_spc_hardlimit > dqi->dqi_max_spc_limit) ||
2633
	    ((di->d_fieldmask & QC_INO_SOFT) &&
2634
	     (di->d_ino_softlimit > dqi->dqi_max_ino_limit)) ||
2635
	    ((di->d_fieldmask & QC_INO_HARD) &&
2636
	     (di->d_ino_hardlimit > dqi->dqi_max_ino_limit)))
2637
		return -ERANGE;
L
Linus Torvalds 已提交
2638 2639

	spin_lock(&dq_data_lock);
2640 2641
	if (di->d_fieldmask & QC_SPACE) {
		dm->dqb_curspace = di->d_space - dm->dqb_rsvspace;
L
Linus Torvalds 已提交
2642
		check_blim = 1;
2643
		set_bit(DQ_LASTSET_B + QIF_SPACE_B, &dquot->dq_flags);
L
Linus Torvalds 已提交
2644
	}
C
Christoph Hellwig 已提交
2645

2646 2647 2648 2649 2650
	if (di->d_fieldmask & QC_SPC_SOFT)
		dm->dqb_bsoftlimit = di->d_spc_softlimit;
	if (di->d_fieldmask & QC_SPC_HARD)
		dm->dqb_bhardlimit = di->d_spc_hardlimit;
	if (di->d_fieldmask & (QC_SPC_SOFT | QC_SPC_HARD)) {
L
Linus Torvalds 已提交
2651
		check_blim = 1;
2652
		set_bit(DQ_LASTSET_B + QIF_BLIMITS_B, &dquot->dq_flags);
L
Linus Torvalds 已提交
2653
	}
C
Christoph Hellwig 已提交
2654

2655 2656
	if (di->d_fieldmask & QC_INO_COUNT) {
		dm->dqb_curinodes = di->d_ino_count;
L
Linus Torvalds 已提交
2657
		check_ilim = 1;
2658
		set_bit(DQ_LASTSET_B + QIF_INODES_B, &dquot->dq_flags);
L
Linus Torvalds 已提交
2659
	}
C
Christoph Hellwig 已提交
2660

2661
	if (di->d_fieldmask & QC_INO_SOFT)
C
Christoph Hellwig 已提交
2662
		dm->dqb_isoftlimit = di->d_ino_softlimit;
2663
	if (di->d_fieldmask & QC_INO_HARD)
C
Christoph Hellwig 已提交
2664
		dm->dqb_ihardlimit = di->d_ino_hardlimit;
2665
	if (di->d_fieldmask & (QC_INO_SOFT | QC_INO_HARD)) {
L
Linus Torvalds 已提交
2666
		check_ilim = 1;
2667
		set_bit(DQ_LASTSET_B + QIF_ILIMITS_B, &dquot->dq_flags);
L
Linus Torvalds 已提交
2668
	}
C
Christoph Hellwig 已提交
2669

2670 2671
	if (di->d_fieldmask & QC_SPC_TIMER) {
		dm->dqb_btime = di->d_spc_timer;
2672
		check_blim = 1;
2673
		set_bit(DQ_LASTSET_B + QIF_BTIME_B, &dquot->dq_flags);
2674
	}
C
Christoph Hellwig 已提交
2675

2676 2677
	if (di->d_fieldmask & QC_INO_TIMER) {
		dm->dqb_itime = di->d_ino_timer;
2678
		check_ilim = 1;
2679
		set_bit(DQ_LASTSET_B + QIF_ITIME_B, &dquot->dq_flags);
2680
	}
L
Linus Torvalds 已提交
2681 2682

	if (check_blim) {
J
Jan Kara 已提交
2683 2684
		if (!dm->dqb_bsoftlimit ||
		    dm->dqb_curspace < dm->dqb_bsoftlimit) {
L
Linus Torvalds 已提交
2685 2686
			dm->dqb_btime = 0;
			clear_bit(DQ_BLKS_B, &dquot->dq_flags);
2687
		} else if (!(di->d_fieldmask & QC_SPC_TIMER))
J
Jan Kara 已提交
2688
			/* Set grace only if user hasn't provided his own... */
A
Arnd Bergmann 已提交
2689
			dm->dqb_btime = ktime_get_real_seconds() + dqi->dqi_bgrace;
L
Linus Torvalds 已提交
2690 2691
	}
	if (check_ilim) {
J
Jan Kara 已提交
2692 2693
		if (!dm->dqb_isoftlimit ||
		    dm->dqb_curinodes < dm->dqb_isoftlimit) {
L
Linus Torvalds 已提交
2694 2695
			dm->dqb_itime = 0;
			clear_bit(DQ_INODES_B, &dquot->dq_flags);
2696
		} else if (!(di->d_fieldmask & QC_INO_TIMER))
J
Jan Kara 已提交
2697
			/* Set grace only if user hasn't provided his own... */
A
Arnd Bergmann 已提交
2698
			dm->dqb_itime = ktime_get_real_seconds() + dqi->dqi_igrace;
L
Linus Torvalds 已提交
2699
	}
J
Jan Kara 已提交
2700 2701
	if (dm->dqb_bhardlimit || dm->dqb_bsoftlimit || dm->dqb_ihardlimit ||
	    dm->dqb_isoftlimit)
L
Linus Torvalds 已提交
2702 2703 2704 2705 2706
		clear_bit(DQ_FAKE_B, &dquot->dq_flags);
	else
		set_bit(DQ_FAKE_B, &dquot->dq_flags);
	spin_unlock(&dq_data_lock);
	mark_dquot_dirty(dquot);
2707 2708

	return 0;
L
Linus Torvalds 已提交
2709 2710
}

E
Eric W. Biederman 已提交
2711
int dquot_set_dqblk(struct super_block *sb, struct kqid qid,
2712
		  struct qc_dqblk *di)
L
Linus Torvalds 已提交
2713 2714
{
	struct dquot *dquot;
2715
	int rc;
L
Linus Torvalds 已提交
2716

2717
	dquot = dqget(sb, qid);
2718 2719
	if (IS_ERR(dquot)) {
		rc = PTR_ERR(dquot);
2720
		goto out;
L
Linus Torvalds 已提交
2721
	}
2722
	rc = do_set_dqblk(dquot, di);
L
Linus Torvalds 已提交
2723
	dqput(dquot);
2724
out:
2725
	return rc;
L
Linus Torvalds 已提交
2726
}
2727
EXPORT_SYMBOL(dquot_set_dqblk);
L
Linus Torvalds 已提交
2728 2729

/* Generic routine for getting common part of quota file information */
2730
int dquot_get_state(struct super_block *sb, struct qc_state *state)
L
Linus Torvalds 已提交
2731 2732
{
	struct mem_dqinfo *mi;
2733 2734 2735
	struct qc_type_state *tstate;
	struct quota_info *dqopt = sb_dqopt(sb);
	int type;
L
Linus Torvalds 已提交
2736
  
2737 2738 2739 2740 2741 2742 2743 2744 2745 2746 2747 2748 2749 2750 2751 2752 2753 2754 2755 2756
	memset(state, 0, sizeof(*state));
	for (type = 0; type < MAXQUOTAS; type++) {
		if (!sb_has_quota_active(sb, type))
			continue;
		tstate = state->s_state + type;
		mi = sb_dqopt(sb)->info + type;
		tstate->flags = QCI_ACCT_ENABLED;
		spin_lock(&dq_data_lock);
		if (mi->dqi_flags & DQF_SYS_FILE)
			tstate->flags |= QCI_SYSFILE;
		if (mi->dqi_flags & DQF_ROOT_SQUASH)
			tstate->flags |= QCI_ROOT_SQUASH;
		if (sb_has_quota_limits_enabled(sb, type))
			tstate->flags |= QCI_LIMITS_ENFORCED;
		tstate->spc_timelimit = mi->dqi_bgrace;
		tstate->ino_timelimit = mi->dqi_igrace;
		tstate->ino = dqopt->files[type]->i_ino;
		tstate->blocks = dqopt->files[type]->i_blocks;
		tstate->nextents = 1;	/* We don't know... */
		spin_unlock(&dq_data_lock);
L
Linus Torvalds 已提交
2757 2758 2759
	}
	return 0;
}
2760
EXPORT_SYMBOL(dquot_get_state);
L
Linus Torvalds 已提交
2761 2762

/* Generic routine for setting common part of quota file information */
2763
int dquot_set_dqinfo(struct super_block *sb, int type, struct qc_info *ii)
L
Linus Torvalds 已提交
2764 2765
{
	struct mem_dqinfo *mi;
2766
	int err = 0;
L
Linus Torvalds 已提交
2767

2768 2769 2770
	if ((ii->i_fieldmask & QC_WARNS_MASK) ||
	    (ii->i_fieldmask & QC_RT_SPC_TIMER))
		return -EINVAL;
2771 2772
	if (!sb_has_quota_active(sb, type))
		return -ESRCH;
L
Linus Torvalds 已提交
2773
	mi = sb_dqopt(sb)->info + type;
2774 2775
	if (ii->i_fieldmask & QC_FLAGS) {
		if ((ii->i_flags & QCI_ROOT_SQUASH &&
2776 2777
		     mi->dqi_format->qf_fmt_id != QFMT_VFS_OLD))
			return -EINVAL;
2778
	}
L
Linus Torvalds 已提交
2779
	spin_lock(&dq_data_lock);
2780 2781 2782 2783 2784 2785 2786 2787 2788 2789
	if (ii->i_fieldmask & QC_SPC_TIMER)
		mi->dqi_bgrace = ii->i_spc_timelimit;
	if (ii->i_fieldmask & QC_INO_TIMER)
		mi->dqi_igrace = ii->i_ino_timelimit;
	if (ii->i_fieldmask & QC_FLAGS) {
		if (ii->i_flags & QCI_ROOT_SQUASH)
			mi->dqi_flags |= DQF_ROOT_SQUASH;
		else
			mi->dqi_flags &= ~DQF_ROOT_SQUASH;
	}
L
Linus Torvalds 已提交
2790 2791 2792 2793
	spin_unlock(&dq_data_lock);
	mark_info_dirty(sb, type);
	/* Force write to disk */
	sb->dq_op->write_info(sb, type);
2794
	return err;
L
Linus Torvalds 已提交
2795
}
2796
EXPORT_SYMBOL(dquot_set_dqinfo);
L
Linus Torvalds 已提交
2797

2798 2799 2800 2801
const struct quotactl_ops dquot_quotactl_sysfile_ops = {
	.quota_enable	= dquot_quota_enable,
	.quota_disable	= dquot_quota_disable,
	.quota_sync	= dquot_quota_sync,
2802
	.get_state	= dquot_get_state,
2803 2804
	.set_info	= dquot_set_dqinfo,
	.get_dqblk	= dquot_get_dqblk,
2805
	.get_nextdqblk	= dquot_get_next_dqblk,
2806 2807 2808 2809
	.set_dqblk	= dquot_set_dqblk
};
EXPORT_SYMBOL(dquot_quotactl_sysfile_ops);

2810 2811 2812 2813
static int do_proc_dqstats(struct ctl_table *table, int write,
		     void __user *buffer, size_t *lenp, loff_t *ppos)
{
	unsigned int type = (int *)table->data - dqstats.stat;
2814 2815 2816 2817

	/* Update global table */
	dqstats.stat[type] =
			percpu_counter_sum_positive(&dqstats.counter[type]);
2818 2819 2820
	return proc_dointvec(table, write, buffer, lenp, ppos);
}

2821
static struct ctl_table fs_dqstats_table[] = {
L
Linus Torvalds 已提交
2822 2823
	{
		.procname	= "lookups",
2824
		.data		= &dqstats.stat[DQST_LOOKUPS],
L
Linus Torvalds 已提交
2825 2826
		.maxlen		= sizeof(int),
		.mode		= 0444,
2827
		.proc_handler	= do_proc_dqstats,
L
Linus Torvalds 已提交
2828 2829 2830
	},
	{
		.procname	= "drops",
2831
		.data		= &dqstats.stat[DQST_DROPS],
L
Linus Torvalds 已提交
2832 2833
		.maxlen		= sizeof(int),
		.mode		= 0444,
2834
		.proc_handler	= do_proc_dqstats,
L
Linus Torvalds 已提交
2835 2836 2837
	},
	{
		.procname	= "reads",
2838
		.data		= &dqstats.stat[DQST_READS],
L
Linus Torvalds 已提交
2839 2840
		.maxlen		= sizeof(int),
		.mode		= 0444,
2841
		.proc_handler	= do_proc_dqstats,
L
Linus Torvalds 已提交
2842 2843 2844
	},
	{
		.procname	= "writes",
2845
		.data		= &dqstats.stat[DQST_WRITES],
L
Linus Torvalds 已提交
2846 2847
		.maxlen		= sizeof(int),
		.mode		= 0444,
2848
		.proc_handler	= do_proc_dqstats,
L
Linus Torvalds 已提交
2849 2850 2851
	},
	{
		.procname	= "cache_hits",
2852
		.data		= &dqstats.stat[DQST_CACHE_HITS],
L
Linus Torvalds 已提交
2853 2854
		.maxlen		= sizeof(int),
		.mode		= 0444,
2855
		.proc_handler	= do_proc_dqstats,
L
Linus Torvalds 已提交
2856 2857 2858
	},
	{
		.procname	= "allocated_dquots",
2859
		.data		= &dqstats.stat[DQST_ALLOC_DQUOTS],
L
Linus Torvalds 已提交
2860 2861
		.maxlen		= sizeof(int),
		.mode		= 0444,
2862
		.proc_handler	= do_proc_dqstats,
L
Linus Torvalds 已提交
2863 2864 2865
	},
	{
		.procname	= "free_dquots",
2866
		.data		= &dqstats.stat[DQST_FREE_DQUOTS],
L
Linus Torvalds 已提交
2867 2868
		.maxlen		= sizeof(int),
		.mode		= 0444,
2869
		.proc_handler	= do_proc_dqstats,
L
Linus Torvalds 已提交
2870 2871 2872
	},
	{
		.procname	= "syncs",
2873
		.data		= &dqstats.stat[DQST_SYNCS],
L
Linus Torvalds 已提交
2874 2875
		.maxlen		= sizeof(int),
		.mode		= 0444,
2876
		.proc_handler	= do_proc_dqstats,
L
Linus Torvalds 已提交
2877
	},
J
Jan Kara 已提交
2878
#ifdef CONFIG_PRINT_QUOTA_WARNING
L
Linus Torvalds 已提交
2879 2880 2881 2882 2883
	{
		.procname	= "warnings",
		.data		= &flag_print_warnings,
		.maxlen		= sizeof(int),
		.mode		= 0644,
2884
		.proc_handler	= proc_dointvec,
L
Linus Torvalds 已提交
2885
	},
J
Jan Kara 已提交
2886
#endif
2887
	{ },
L
Linus Torvalds 已提交
2888 2889
};

2890
static struct ctl_table fs_table[] = {
L
Linus Torvalds 已提交
2891 2892 2893 2894 2895
	{
		.procname	= "quota",
		.mode		= 0555,
		.child		= fs_dqstats_table,
	},
2896
	{ },
L
Linus Torvalds 已提交
2897 2898
};

2899
static struct ctl_table sys_table[] = {
L
Linus Torvalds 已提交
2900 2901 2902 2903 2904
	{
		.procname	= "fs",
		.mode		= 0555,
		.child		= fs_table,
	},
2905
	{ },
L
Linus Torvalds 已提交
2906 2907 2908 2909
};

static int __init dquot_init(void)
{
2910
	int i, ret;
L
Linus Torvalds 已提交
2911 2912 2913 2914
	unsigned long nr_hash, order;

	printk(KERN_NOTICE "VFS: Disk quotas %s\n", __DQUOT_VERSION__);

2915
	register_sysctl_table(sys_table);
L
Linus Torvalds 已提交
2916

2917
	dquot_cachep = kmem_cache_create("dquot",
L
Linus Torvalds 已提交
2918
			sizeof(struct dquot), sizeof(unsigned long) * 4,
2919 2920
			(SLAB_HWCACHE_ALIGN|SLAB_RECLAIM_ACCOUNT|
				SLAB_MEM_SPREAD|SLAB_PANIC),
2921
			NULL);
L
Linus Torvalds 已提交
2922 2923 2924 2925 2926 2927

	order = 0;
	dquot_hash = (struct hlist_head *)__get_free_pages(GFP_ATOMIC, order);
	if (!dquot_hash)
		panic("Cannot create dquot hash table");

2928
	for (i = 0; i < _DQST_DQSTAT_LAST; i++) {
2929
		ret = percpu_counter_init(&dqstats.counter[i], 0, GFP_KERNEL);
2930 2931 2932
		if (ret)
			panic("Cannot create dquot stat counters");
	}
2933

L
Linus Torvalds 已提交
2934 2935 2936 2937 2938 2939 2940 2941 2942 2943 2944 2945 2946
	/* Find power-of-two hlist_heads which can fit into allocation */
	nr_hash = (1UL << order) * PAGE_SIZE / sizeof(struct hlist_head);
	dq_hash_bits = 0;
	do {
		dq_hash_bits++;
	} while (nr_hash >> dq_hash_bits);
	dq_hash_bits--;

	nr_hash = 1UL << dq_hash_bits;
	dq_hash_mask = nr_hash - 1;
	for (i = 0; i < nr_hash; i++)
		INIT_HLIST_HEAD(dquot_hash + i);

A
Anton Blanchard 已提交
2947 2948
	pr_info("VFS: Dquot-cache hash table entries: %ld (order %ld,"
		" %ld bytes)\n", nr_hash, order, (PAGE_SIZE << order));
L
Linus Torvalds 已提交
2949

2950
	register_shrinker(&dqcache_shrinker);
L
Linus Torvalds 已提交
2951 2952 2953

	return 0;
}
2954
fs_initcall(dquot_init);