acl.c 6.8 KB
Newer Older
J
Josef Bacik 已提交
1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22
/*
 * Copyright (C) 2007 Red Hat.  All rights reserved.
 *
 * This program is free software; you can redistribute it and/or
 * modify it under the terms of the GNU General Public
 * License v2 as published by the Free Software Foundation.
 *
 * This program is distributed in the hope that it will be useful,
 * but WITHOUT ANY WARRANTY; without even the implied warranty of
 * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE.  See the GNU
 * General Public License for more details.
 *
 * You should have received a copy of the GNU General Public
 * License along with this program; if not, write to the
 * Free Software Foundation, Inc., 59 Temple Place - Suite 330,
 * Boston, MA 021110-1307, USA.
 */

#include <linux/fs.h>
#include <linux/string.h>
#include <linux/xattr.h>
#include <linux/posix_acl_xattr.h>
J
Josef Bacik 已提交
23
#include <linux/posix_acl.h>
24
#include <linux/sched.h>
25
#include <linux/slab.h>
J
Josef Bacik 已提交
26

J
Josef Bacik 已提交
27
#include "ctree.h"
J
Josef Bacik 已提交
28
#include "btrfs_inode.h"
J
Josef Bacik 已提交
29
#include "xattr.h"
J
Josef Bacik 已提交
30

C
Chris Mason 已提交
31
#ifdef CONFIG_BTRFS_FS_POSIX_ACL
32

J
Josef Bacik 已提交
33 34
static struct posix_acl *btrfs_get_acl(struct inode *inode, int type)
{
35 36
	int size;
	const char *name;
J
Josef Bacik 已提交
37
	char *value = NULL;
38 39
	struct posix_acl *acl;

40 41 42
	if (!IS_POSIXACL(inode))
		return NULL;

43 44 45
	acl = get_cached_acl(inode, type);
	if (acl != ACL_NOT_CACHED)
		return acl;
J
Josef Bacik 已提交
46 47 48

	switch (type) {
	case ACL_TYPE_ACCESS:
49
		name = POSIX_ACL_XATTR_ACCESS;
J
Josef Bacik 已提交
50 51
		break;
	case ACL_TYPE_DEFAULT:
52
		name = POSIX_ACL_XATTR_DEFAULT;
J
Josef Bacik 已提交
53 54
		break;
	default:
55
		BUG();
J
Josef Bacik 已提交
56 57
	}

58
	size = __btrfs_getxattr(inode, name, "", 0);
J
Josef Bacik 已提交
59 60 61 62
	if (size > 0) {
		value = kzalloc(size, GFP_NOFS);
		if (!value)
			return ERR_PTR(-ENOMEM);
63
		size = __btrfs_getxattr(inode, name, value, size);
J
Josef Bacik 已提交
64 65
		if (size > 0) {
			acl = posix_acl_from_xattr(value, size);
J
Jesper Juhl 已提交
66 67
			if (IS_ERR(acl)) {
				kfree(value);
68
				return acl;
J
Jesper Juhl 已提交
69
			}
70
			set_cached_acl(inode, type, acl);
J
Josef Bacik 已提交
71 72
		}
		kfree(value);
C
Chris Mason 已提交
73 74
	} else if (size == -ENOENT || size == -ENODATA || size == 0) {
		/* FIXME, who returns -ENOENT?  I think nobody */
J
Josef Bacik 已提交
75
		acl = NULL;
76
		set_cached_acl(inode, type, acl);
C
Chris Mason 已提交
77 78
	} else {
		acl = ERR_PTR(-EIO);
J
Josef Bacik 已提交
79 80 81 82 83
	}

	return acl;
}

84 85
static int btrfs_xattr_acl_get(struct dentry *dentry, const char *name,
		void *value, size_t size, int type)
J
Josef Bacik 已提交
86 87 88 89
{
	struct posix_acl *acl;
	int ret = 0;

90 91 92
	if (!IS_POSIXACL(dentry->d_inode))
		return -EOPNOTSUPP;

93
	acl = btrfs_get_acl(dentry->d_inode, type);
J
Josef Bacik 已提交
94 95 96 97 98 99 100 101 102 103 104 105 106 107

	if (IS_ERR(acl))
		return PTR_ERR(acl);
	if (acl == NULL)
		return -ENODATA;
	ret = posix_acl_to_xattr(acl, value, size);
	posix_acl_release(acl);

	return ret;
}

/*
 * Needs to be called with fs_mutex held
 */
108 109
static int btrfs_set_acl(struct btrfs_trans_handle *trans,
			 struct inode *inode, struct posix_acl *acl, int type)
J
Josef Bacik 已提交
110
{
111 112
	int ret, size = 0;
	const char *name;
J
Josef Bacik 已提交
113 114 115 116 117 118 119 120 121 122 123 124 125
	char *value = NULL;
	mode_t mode;

	if (acl) {
		ret = posix_acl_valid(acl);
		if (ret < 0)
			return ret;
		ret = 0;
	}

	switch (type) {
	case ACL_TYPE_ACCESS:
		mode = inode->i_mode;
126
		name = POSIX_ACL_XATTR_ACCESS;
127 128 129 130 131 132 133
		if (acl) {
			ret = posix_acl_equiv_mode(acl, &mode);
			if (ret < 0)
				return ret;
			inode->i_mode = mode;
		}
		ret = 0;
J
Josef Bacik 已提交
134 135 136 137
		break;
	case ACL_TYPE_DEFAULT:
		if (!S_ISDIR(inode->i_mode))
			return acl ? -EINVAL : 0;
138
		name = POSIX_ACL_XATTR_DEFAULT;
J
Josef Bacik 已提交
139 140 141 142 143 144 145 146 147 148 149 150 151 152 153 154 155 156
		break;
	default:
		return -EINVAL;
	}

	if (acl) {
		size = posix_acl_xattr_size(acl->a_count);
		value = kmalloc(size, GFP_NOFS);
		if (!value) {
			ret = -ENOMEM;
			goto out;
		}

		ret = posix_acl_to_xattr(acl, value, size);
		if (ret < 0)
			goto out;
	}

157
	ret = __btrfs_setxattr(trans, inode, name, value, size, 0);
J
Josef Bacik 已提交
158
out:
C
Chris Mason 已提交
159
	kfree(value);
J
Josef Bacik 已提交
160 161

	if (!ret)
162
		set_cached_acl(inode, type, acl);
J
Josef Bacik 已提交
163 164 165

	return ret;
}
Y
Yan 已提交
166

167 168
static int btrfs_xattr_acl_set(struct dentry *dentry, const char *name,
		const void *value, size_t size, int flags, int type)
Y
Yan 已提交
169
{
170
	int ret;
J
Josef Bacik 已提交
171
	struct posix_acl *acl = NULL;
J
Josef Bacik 已提交
172

173
	if (!inode_owner_or_capable(dentry->d_inode))
174 175
		return -EPERM;

176 177 178
	if (!IS_POSIXACL(dentry->d_inode))
		return -EOPNOTSUPP;

Y
Yan 已提交
179 180
	if (value) {
		acl = posix_acl_from_xattr(value, size);
181 182 183
		if (IS_ERR(acl))
			return PTR_ERR(acl);

184 185 186 187
		if (acl) {
			ret = posix_acl_valid(acl);
			if (ret)
				goto out;
Y
Yan 已提交
188 189
		}
	}
190

191
	ret = btrfs_set_acl(NULL, dentry->d_inode, acl, type);
192
out:
J
Josef Bacik 已提交
193 194 195
	posix_acl_release(acl);

	return ret;
Y
Yan 已提交
196
}
J
Josef Bacik 已提交
197

198
int btrfs_check_acl(struct inode *inode, int mask, unsigned int flags)
J
Josef Bacik 已提交
199 200 201
{
	int error = -EAGAIN;

202 203 204
	if (flags & IPERM_FLAG_RCU) {
		if (!negative_cached_acl(inode, ACL_TYPE_ACCESS))
			error = -ECHILD;
J
Josef Bacik 已提交
205

206 207 208 209 210 211 212 213 214
	} else {
		struct posix_acl *acl;
		acl = btrfs_get_acl(inode, ACL_TYPE_ACCESS);
		if (IS_ERR(acl))
			return PTR_ERR(acl);
		if (acl) {
			error = posix_acl_permission(inode, acl, mask);
			posix_acl_release(acl);
		}
J
Josef Bacik 已提交
215 216 217 218 219 220 221 222 223 224
	}

	return error;
}

/*
 * btrfs_init_acl is already generally called under fs_mutex, so the locking
 * stuff has been fixed to work with that.  If the locking stuff changes, we
 * need to re-evaluate the acl locking stuff.
 */
225 226
int btrfs_init_acl(struct btrfs_trans_handle *trans,
		   struct inode *inode, struct inode *dir)
J
Josef Bacik 已提交
227 228 229 230 231 232 233 234 235 236 237 238 239 240 241 242
{
	struct posix_acl *acl = NULL;
	int ret = 0;

	/* this happens with subvols */
	if (!dir)
		return 0;

	if (!S_ISLNK(inode->i_mode)) {
		if (IS_POSIXACL(dir)) {
			acl = btrfs_get_acl(dir, ACL_TYPE_DEFAULT);
			if (IS_ERR(acl))
				return PTR_ERR(acl);
		}

		if (!acl)
A
Al Viro 已提交
243
			inode->i_mode &= ~current_umask();
J
Josef Bacik 已提交
244 245 246 247 248 249 250
	}

	if (IS_POSIXACL(dir) && acl) {
		struct posix_acl *clone;
		mode_t mode;

		if (S_ISDIR(inode->i_mode)) {
251 252
			ret = btrfs_set_acl(trans, inode, acl,
					    ACL_TYPE_DEFAULT);
J
Josef Bacik 已提交
253 254 255 256 257 258 259 260 261 262 263 264 265 266
			if (ret)
				goto failed;
		}
		clone = posix_acl_clone(acl, GFP_NOFS);
		ret = -ENOMEM;
		if (!clone)
			goto failed;

		mode = inode->i_mode;
		ret = posix_acl_create_masq(clone, &mode);
		if (ret >= 0) {
			inode->i_mode = mode;
			if (ret > 0) {
				/* we need an acl */
267
				ret = btrfs_set_acl(trans, inode, clone,
J
Josef Bacik 已提交
268 269 270
						    ACL_TYPE_ACCESS);
			}
		}
271
		posix_acl_release(clone);
J
Josef Bacik 已提交
272 273 274 275 276 277 278 279 280 281 282 283 284 285 286 287 288 289 290 291 292 293 294 295 296 297 298 299 300
	}
failed:
	posix_acl_release(acl);

	return ret;
}

int btrfs_acl_chmod(struct inode *inode)
{
	struct posix_acl *acl, *clone;
	int ret = 0;

	if (S_ISLNK(inode->i_mode))
		return -EOPNOTSUPP;

	if (!IS_POSIXACL(inode))
		return 0;

	acl = btrfs_get_acl(inode, ACL_TYPE_ACCESS);
	if (IS_ERR(acl) || !acl)
		return PTR_ERR(acl);

	clone = posix_acl_clone(acl, GFP_KERNEL);
	posix_acl_release(acl);
	if (!clone)
		return -ENOMEM;

	ret = posix_acl_chmod_masq(clone, inode->i_mode);
	if (!ret)
301
		ret = btrfs_set_acl(NULL, inode, clone, ACL_TYPE_ACCESS);
J
Josef Bacik 已提交
302 303 304 305

	posix_acl_release(clone);

	return ret;
J
Josef Bacik 已提交
306
}
J
Josef Bacik 已提交
307

308
const struct xattr_handler btrfs_xattr_acl_default_handler = {
J
Josef Bacik 已提交
309
	.prefix = POSIX_ACL_XATTR_DEFAULT,
310 311 312
	.flags	= ACL_TYPE_DEFAULT,
	.get	= btrfs_xattr_acl_get,
	.set	= btrfs_xattr_acl_set,
J
Josef Bacik 已提交
313 314
};

315
const struct xattr_handler btrfs_xattr_acl_access_handler = {
J
Josef Bacik 已提交
316
	.prefix = POSIX_ACL_XATTR_ACCESS,
317 318 319
	.flags	= ACL_TYPE_ACCESS,
	.get	= btrfs_xattr_acl_get,
	.set	= btrfs_xattr_acl_set,
J
Josef Bacik 已提交
320
};
321

C
Chris Mason 已提交
322
#else /* CONFIG_BTRFS_FS_POSIX_ACL */
323 324 325 326 327 328

int btrfs_acl_chmod(struct inode *inode)
{
	return 0;
}

329 330
int btrfs_init_acl(struct btrfs_trans_handle *trans,
		   struct inode *inode, struct inode *dir)
331 332 333 334
{
	return 0;
}

C
Chris Mason 已提交
335
#endif /* CONFIG_BTRFS_FS_POSIX_ACL */