nfs4recover.c 9.4 KB
Newer Older
N
NeilBrown 已提交
1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33
/*
*  Copyright (c) 2004 The Regents of the University of Michigan.
*  All rights reserved.
*
*  Andy Adamson <andros@citi.umich.edu>
*
*  Redistribution and use in source and binary forms, with or without
*  modification, are permitted provided that the following conditions
*  are met:
*
*  1. Redistributions of source code must retain the above copyright
*     notice, this list of conditions and the following disclaimer.
*  2. Redistributions in binary form must reproduce the above copyright
*     notice, this list of conditions and the following disclaimer in the
*     documentation and/or other materials provided with the distribution.
*  3. Neither the name of the University nor the names of its
*     contributors may be used to endorse or promote products derived
*     from this software without specific prior written permission.
*
*  THIS SOFTWARE IS PROVIDED ``AS IS'' AND ANY EXPRESS OR IMPLIED
*  WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE IMPLIED WARRANTIES OF
*  MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE ARE
*  DISCLAIMED. IN NO EVENT SHALL THE REGENTS OR CONTRIBUTORS BE LIABLE
*  FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR
*  CONSEQUENTIAL DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF
*  SUBSTITUTE GOODS OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR
*  BUSINESS INTERRUPTION) HOWEVER CAUSED AND ON ANY THEORY OF
*  LIABILITY, WHETHER IN CONTRACT, STRICT LIABILITY, OR TORT (INCLUDING
*  NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY OUT OF THE USE OF THIS
*  SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF SUCH DAMAGE.
*
*/

34 35
#include <linux/file.h>
#include <linux/namei.h>
N
NeilBrown 已提交
36
#include <linux/crypto.h>
A
Alexey Dobriyan 已提交
37
#include <linux/sched.h>
38 39 40

#include "nfsd.h"
#include "state.h"
41
#include "vfs.h"
N
NeilBrown 已提交
42 43 44

#define NFSDDBG_FACILITY                NFSDDBG_PROC

45
/* Globals */
A
Al Viro 已提交
46
static struct path rec_dir;
47 48
static int rec_dir_init = 0;

D
David Howells 已提交
49 50
static int
nfs4_save_creds(const struct cred **original_creds)
51
{
D
David Howells 已提交
52 53 54 55 56 57 58 59 60 61 62
	struct cred *new;

	new = prepare_creds();
	if (!new)
		return -ENOMEM;

	new->fsuid = 0;
	new->fsgid = 0;
	*original_creds = override_creds(new);
	put_cred(new);
	return 0;
63 64 65
}

static void
D
David Howells 已提交
66
nfs4_reset_creds(const struct cred *original)
67
{
D
David Howells 已提交
68
	revert_creds(original);
69 70
}

N
NeilBrown 已提交
71 72 73 74 75 76 77 78 79 80 81 82 83 84
static void
md5_to_hex(char *out, char *md5)
{
	int i;

	for (i=0; i<16; i++) {
		unsigned char c = md5[i];

		*out++ = '0' + ((c&0xf0)>>4) + (c>=0xa0)*('a'-'9'-1);
		*out++ = '0' + (c&0x0f) + ((c&0x0f)>=0x0a)*('a'-'9'-1);
	}
	*out = '\0';
}

85
__be32
N
NeilBrown 已提交
86 87 88
nfs4_make_rec_clidname(char *dname, struct xdr_netobj *clname)
{
	struct xdr_netobj cksum;
89
	struct hash_desc desc;
J
Jens Axboe 已提交
90
	struct scatterlist sg;
91
	__be32 status = nfserr_resource;
N
NeilBrown 已提交
92 93 94

	dprintk("NFSD: nfs4_make_rec_clidname for %.*s\n",
			clname->len, clname->data);
95 96 97 98 99
	desc.flags = CRYPTO_TFM_REQ_MAY_SLEEP;
	desc.tfm = crypto_alloc_hash("md5", 0, CRYPTO_ALG_ASYNC);
	if (IS_ERR(desc.tfm))
		goto out_no_tfm;
	cksum.len = crypto_hash_digestsize(desc.tfm);
N
NeilBrown 已提交
100 101 102 103
	cksum.data = kmalloc(cksum.len, GFP_KERNEL);
	if (cksum.data == NULL)
 		goto out;

J
Jens Axboe 已提交
104
	sg_init_one(&sg, clname->data, clname->len);
N
NeilBrown 已提交
105

J
Jens Axboe 已提交
106
	if (crypto_hash_digest(&desc, &sg, sg.length, cksum.data))
107
		goto out;
N
NeilBrown 已提交
108 109 110 111 112

	md5_to_hex(dname, cksum.data);

	status = nfs_ok;
out:
113
	kfree(cksum.data);
114 115
	crypto_free_hash(desc.tfm);
out_no_tfm:
N
NeilBrown 已提交
116 117
	return status;
}
118

119 120
static void
nfsd4_sync_rec_dir(void)
121
{
A
Al Viro 已提交
122 123 124
	mutex_lock(&rec_dir.dentry->d_inode->i_mutex);
	nfsd_sync_dir(rec_dir.dentry);
	mutex_unlock(&rec_dir.dentry->d_inode->i_mutex);
125 126 127 128 129
}

int
nfsd4_create_clid_dir(struct nfs4_client *clp)
{
D
David Howells 已提交
130
	const struct cred *original_cred;
131 132 133 134 135 136 137 138 139
	char *dname = clp->cl_recdir;
	struct dentry *dentry;
	int status;

	dprintk("NFSD: nfsd4_create_clid_dir for \"%s\"\n", dname);

	if (!rec_dir_init || clp->cl_firststate)
		return 0;

D
David Howells 已提交
140 141 142
	status = nfs4_save_creds(&original_cred);
	if (status < 0)
		return status;
143 144

	/* lock the parent */
A
Al Viro 已提交
145
	mutex_lock(&rec_dir.dentry->d_inode->i_mutex);
146

A
Al Viro 已提交
147
	dentry = lookup_one_len(dname, rec_dir.dentry, HEXDIR_LEN-1);
148 149 150 151 152 153 154 155 156
	if (IS_ERR(dentry)) {
		status = PTR_ERR(dentry);
		goto out_unlock;
	}
	status = -EEXIST;
	if (dentry->d_inode) {
		dprintk("NFSD: nfsd4_create_clid_dir: DIRECTORY EXISTS\n");
		goto out_put;
	}
A
Al Viro 已提交
157
	status = mnt_want_write(rec_dir.mnt);
158 159
	if (status)
		goto out_put;
A
Al Viro 已提交
160 161
	status = vfs_mkdir(rec_dir.dentry->d_inode, dentry, S_IRWXU);
	mnt_drop_write(rec_dir.mnt);
162 163 164
out_put:
	dput(dentry);
out_unlock:
A
Al Viro 已提交
165
	mutex_unlock(&rec_dir.dentry->d_inode->i_mutex);
166 167
	if (status == 0) {
		clp->cl_firststate = 1;
168
		nfsd4_sync_rec_dir();
169
	}
D
David Howells 已提交
170
	nfs4_reset_creds(original_cred);
171 172 173 174
	dprintk("NFSD: nfsd4_create_clid_dir returns %d\n", status);
	return status;
}

175 176
typedef int (recdir_func)(struct dentry *, struct dentry *);

177 178
struct name_list {
	char name[HEXDIR_LEN];
179 180 181 182
	struct list_head list;
};

static int
183
nfsd4_build_namelist(void *arg, const char *name, int namlen,
184
		loff_t offset, u64 ino, unsigned int d_type)
185
{
186 187
	struct list_head *names = arg;
	struct name_list *entry;
188

189
	if (namlen != HEXDIR_LEN - 1)
190
		return 0;
191 192
	entry = kmalloc(sizeof(struct name_list), GFP_KERNEL);
	if (entry == NULL)
193
		return -ENOMEM;
194 195 196
	memcpy(entry->name, name, HEXDIR_LEN - 1);
	entry->name[HEXDIR_LEN - 1] = '\0';
	list_add(&entry->list, names);
197 198 199 200 201 202
	return 0;
}

static int
nfsd4_list_rec_dir(struct dentry *dir, recdir_func *f)
{
D
David Howells 已提交
203
	const struct cred *original_cred;
204
	struct file *filp;
205 206 207
	LIST_HEAD(names);
	struct name_list *entry;
	struct dentry *dentry;
208 209 210 211 212
	int status;

	if (!rec_dir_init)
		return 0;

D
David Howells 已提交
213 214 215
	status = nfs4_save_creds(&original_cred);
	if (status < 0)
		return status;
216

217 218
	filp = dentry_open(dget(dir), mntget(rec_dir.mnt), O_RDONLY,
			   current_cred());
219 220 221
	status = PTR_ERR(filp);
	if (IS_ERR(filp))
		goto out;
222
	status = vfs_readdir(filp, nfsd4_build_namelist, &names);
223
	fput(filp);
J
J. Bruce Fields 已提交
224
	mutex_lock_nested(&dir->d_inode->i_mutex, I_MUTEX_PARENT);
225 226 227 228 229 230
	while (!list_empty(&names)) {
		entry = list_entry(names.next, struct name_list, list);

		dentry = lookup_one_len(entry->name, dir, HEXDIR_LEN-1);
		if (IS_ERR(dentry)) {
			status = PTR_ERR(dentry);
231
			break;
232 233 234
		}
		status = f(dir, dentry);
		dput(dentry);
235
		if (status)
236
			break;
237 238
		list_del(&entry->list);
		kfree(entry);
239
	}
240
	mutex_unlock(&dir->d_inode->i_mutex);
241
out:
242 243 244 245
	while (!list_empty(&names)) {
		entry = list_entry(names.next, struct name_list, list);
		list_del(&entry->list);
		kfree(entry);
246
	}
D
David Howells 已提交
247
	nfs4_reset_creds(original_cred);
248 249 250
	return status;
}

251 252 253 254 255 256 257 258
static int
nfsd4_unlink_clid_dir(char *name, int namlen)
{
	struct dentry *dentry;
	int status;

	dprintk("NFSD: nfsd4_unlink_clid_dir. name %.*s\n", namlen, name);

J
J. Bruce Fields 已提交
259
	mutex_lock_nested(&rec_dir.dentry->d_inode->i_mutex, I_MUTEX_PARENT);
A
Al Viro 已提交
260
	dentry = lookup_one_len(name, rec_dir.dentry, namlen);
261 262
	if (IS_ERR(dentry)) {
		status = PTR_ERR(dentry);
263
		goto out_unlock;
264 265 266 267
	}
	status = -ENOENT;
	if (!dentry->d_inode)
		goto out;
268
	status = vfs_rmdir(rec_dir.dentry->d_inode, dentry);
269 270
out:
	dput(dentry);
271 272
out_unlock:
	mutex_unlock(&rec_dir.dentry->d_inode->i_mutex);
273 274 275 276 277 278
	return status;
}

void
nfsd4_remove_clid_dir(struct nfs4_client *clp)
{
D
David Howells 已提交
279
	const struct cred *original_cred;
280 281 282 283 284
	int status;

	if (!rec_dir_init || !clp->cl_firststate)
		return;

A
Al Viro 已提交
285
	status = mnt_want_write(rec_dir.mnt);
286 287
	if (status)
		goto out;
288
	clp->cl_firststate = 0;
D
David Howells 已提交
289 290 291 292 293

	status = nfs4_save_creds(&original_cred);
	if (status < 0)
		goto out;

294
	status = nfsd4_unlink_clid_dir(clp->cl_recdir, HEXDIR_LEN-1);
D
David Howells 已提交
295
	nfs4_reset_creds(original_cred);
296
	if (status == 0)
297
		nfsd4_sync_rec_dir();
A
Al Viro 已提交
298
	mnt_drop_write(rec_dir.mnt);
299
out:
300 301 302 303 304 305 306 307 308 309 310
	if (status)
		printk("NFSD: Failed to remove expired client state directory"
				" %.*s\n", HEXDIR_LEN, clp->cl_recdir);
	return;
}

static int
purge_old(struct dentry *parent, struct dentry *child)
{
	int status;

311 312
	/* note: we currently use this path only for minorversion 0 */
	if (nfs4_has_reclaimed_state(child->d_name.name, false))
313
		return 0;
314

315
	status = vfs_rmdir(parent->d_inode, child);
316 317 318 319
	if (status)
		printk("failed to remove client recovery directory %s\n",
				child->d_name.name);
	/* Keep trying, success or failure: */
320
	return 0;
321 322 323 324 325 326 327 328
}

void
nfsd4_recdir_purge_old(void) {
	int status;

	if (!rec_dir_init)
		return;
A
Al Viro 已提交
329
	status = mnt_want_write(rec_dir.mnt);
330 331
	if (status)
		goto out;
A
Al Viro 已提交
332
	status = nfsd4_list_rec_dir(rec_dir.dentry, purge_old);
333
	if (status == 0)
334
		nfsd4_sync_rec_dir();
A
Al Viro 已提交
335
	mnt_drop_write(rec_dir.mnt);
336
out:
337 338
	if (status)
		printk("nfsd4: failed to purge old clients from recovery"
A
Al Viro 已提交
339
			" directory %s\n", rec_dir.dentry->d_name.name);
340 341
}

342 343 344 345 346 347 348
static int
load_recdir(struct dentry *parent, struct dentry *child)
{
	if (child->d_name.len != HEXDIR_LEN - 1) {
		printk("nfsd4: illegal name %s in recovery directory\n",
				child->d_name.name);
		/* Keep trying; maybe the others are OK: */
349
		return 0;
350 351
	}
	nfs4_client_to_reclaim(child->d_name.name);
352
	return 0;
353 354 355 356 357 358
}

int
nfsd4_recdir_load(void) {
	int status;

A
Al Viro 已提交
359
	status = nfsd4_list_rec_dir(rec_dir.dentry, load_recdir);
360 361
	if (status)
		printk("nfsd4: failed loading clients from recovery"
A
Al Viro 已提交
362
			" directory %s\n", rec_dir.dentry->d_name.name);
363 364 365 366 367 368 369 370 371 372
	return status;
}

/*
 * Hold reference to the recovery directory.
 */

void
nfsd4_init_recdir(char *rec_dirname)
{
D
David Howells 已提交
373 374
	const struct cred *original_cred;
	int status;
375 376 377 378 379 380

	printk("NFSD: Using %s as the NFSv4 state recovery directory\n",
			rec_dirname);

	BUG_ON(rec_dir_init);

D
David Howells 已提交
381 382 383 384 385 386 387
	status = nfs4_save_creds(&original_cred);
	if (status < 0) {
		printk("NFSD: Unable to change credentials to find recovery"
		       " directory: error %d\n",
		       status);
		return;
	}
388

A
Al Viro 已提交
389
	status = kern_path(rec_dirname, LOOKUP_FOLLOW | LOOKUP_DIRECTORY,
390 391 392
			&rec_dir);
	if (status)
		printk("NFSD: unable to find recovery directory %s\n",
393 394 395 396
				rec_dirname);

	if (!status)
		rec_dir_init = 1;
D
David Howells 已提交
397
	nfs4_reset_creds(original_cred);
398 399 400 401 402 403 404 405
}

void
nfsd4_shutdown_recdir(void)
{
	if (!rec_dir_init)
		return;
	rec_dir_init = 0;
A
Al Viro 已提交
406
	path_put(&rec_dir);
407
}