nfsfh.c 15 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440441442443444445446447448449450451452453454455456457458459460461462463464465466467468469470471472473474475476477478479480481482483484485486487488489490491492493494495496497498499500501502503504505506507508509510511512513514515516517518519520521522523524525526527528529530531532533534535536537538539540541542543544545546547548549550551552553554555556557558559560561562563564565566567568569570571572573574575576577578579580581582583584585586587588589590591592593594595596597598599600601602603604605606607608609610611
  1. /*
  2. * linux/fs/nfsd/nfsfh.c
  3. *
  4. * NFS server file handle treatment.
  5. *
  6. * Copyright (C) 1995, 1996 Olaf Kirch <okir@monad.swb.de>
  7. * Portions Copyright (C) 1999 G. Allen Morris III <gam3@acm.org>
  8. * Extensive rewrite by Neil Brown <neilb@cse.unsw.edu.au> Southern-Spring 1999
  9. * ... and again Southern-Winter 2001 to support export_operations
  10. */
  11. #include <linux/slab.h>
  12. #include <linux/fs.h>
  13. #include <linux/unistd.h>
  14. #include <linux/string.h>
  15. #include <linux/stat.h>
  16. #include <linux/dcache.h>
  17. #include <linux/exportfs.h>
  18. #include <linux/mount.h>
  19. #include <linux/sunrpc/clnt.h>
  20. #include <linux/sunrpc/svc.h>
  21. #include <linux/sunrpc/svcauth_gss.h>
  22. #include <linux/nfsd/nfsd.h>
  23. #include "auth.h"
  24. #define NFSDDBG_FACILITY NFSDDBG_FH
  25. static int nfsd_nr_verified;
  26. static int nfsd_nr_put;
  27. /*
  28. * our acceptability function.
  29. * if NOSUBTREECHECK, accept anything
  30. * if not, require that we can walk up to exp->ex_dentry
  31. * doing some checks on the 'x' bits
  32. */
  33. static int nfsd_acceptable(void *expv, struct dentry *dentry)
  34. {
  35. struct svc_export *exp = expv;
  36. int rv;
  37. struct dentry *tdentry;
  38. struct dentry *parent;
  39. if (exp->ex_flags & NFSEXP_NOSUBTREECHECK)
  40. return 1;
  41. tdentry = dget(dentry);
  42. while (tdentry != exp->ex_path.dentry && !IS_ROOT(tdentry)) {
  43. /* make sure parents give x permission to user */
  44. int err;
  45. parent = dget_parent(tdentry);
  46. err = permission(parent->d_inode, MAY_EXEC, NULL);
  47. if (err < 0) {
  48. dput(parent);
  49. break;
  50. }
  51. dput(tdentry);
  52. tdentry = parent;
  53. }
  54. if (tdentry != exp->ex_path.dentry)
  55. dprintk("nfsd_acceptable failed at %p %s\n", tdentry, tdentry->d_name.name);
  56. rv = (tdentry == exp->ex_path.dentry);
  57. dput(tdentry);
  58. return rv;
  59. }
  60. /* Type check. The correct error return for type mismatches does not seem to be
  61. * generally agreed upon. SunOS seems to use EISDIR if file isn't S_IFREG; a
  62. * comment in the NFSv3 spec says this is incorrect (implementation notes for
  63. * the write call).
  64. */
  65. static inline __be32
  66. nfsd_mode_check(struct svc_rqst *rqstp, umode_t mode, int type)
  67. {
  68. /* Type can be negative when creating hardlinks - not to a dir */
  69. if (type > 0 && (mode & S_IFMT) != type) {
  70. if (rqstp->rq_vers == 4 && (mode & S_IFMT) == S_IFLNK)
  71. return nfserr_symlink;
  72. else if (type == S_IFDIR)
  73. return nfserr_notdir;
  74. else if ((mode & S_IFMT) == S_IFDIR)
  75. return nfserr_isdir;
  76. else
  77. return nfserr_inval;
  78. }
  79. if (type < 0 && (mode & S_IFMT) == -type) {
  80. if (rqstp->rq_vers == 4 && (mode & S_IFMT) == S_IFLNK)
  81. return nfserr_symlink;
  82. else if (type == -S_IFDIR)
  83. return nfserr_isdir;
  84. else
  85. return nfserr_notdir;
  86. }
  87. return 0;
  88. }
  89. static __be32 nfsd_setuser_and_check_port(struct svc_rqst *rqstp,
  90. struct svc_export *exp)
  91. {
  92. /* Check if the request originated from a secure port. */
  93. if (!rqstp->rq_secure && EX_SECURE(exp)) {
  94. RPC_IFDEBUG(char buf[RPC_MAX_ADDRBUFLEN]);
  95. dprintk(KERN_WARNING
  96. "nfsd: request from insecure port %s!\n",
  97. svc_print_addr(rqstp, buf, sizeof(buf)));
  98. return nfserr_perm;
  99. }
  100. /* Set user creds for this exportpoint */
  101. return nfserrno(nfsd_setuser(rqstp, exp));
  102. }
  103. /*
  104. * Use the given filehandle to look up the corresponding export and
  105. * dentry. On success, the results are used to set fh_export and
  106. * fh_dentry.
  107. */
  108. static __be32 nfsd_set_fh_dentry(struct svc_rqst *rqstp, struct svc_fh *fhp)
  109. {
  110. struct knfsd_fh *fh = &fhp->fh_handle;
  111. struct fid *fid = NULL, sfid;
  112. struct svc_export *exp;
  113. struct dentry *dentry;
  114. int fileid_type;
  115. int data_left = fh->fh_size/4;
  116. __be32 error;
  117. error = nfserr_stale;
  118. if (rqstp->rq_vers > 2)
  119. error = nfserr_badhandle;
  120. if (rqstp->rq_vers == 4 && fh->fh_size == 0)
  121. return nfserr_nofilehandle;
  122. if (fh->fh_version == 1) {
  123. int len;
  124. if (--data_left < 0)
  125. return error;
  126. if (fh->fh_auth_type != 0)
  127. return error;
  128. len = key_len(fh->fh_fsid_type) / 4;
  129. if (len == 0)
  130. return error;
  131. if (fh->fh_fsid_type == FSID_MAJOR_MINOR) {
  132. /* deprecated, convert to type 3 */
  133. len = key_len(FSID_ENCODE_DEV)/4;
  134. fh->fh_fsid_type = FSID_ENCODE_DEV;
  135. fh->fh_fsid[0] = new_encode_dev(MKDEV(ntohl(fh->fh_fsid[0]), ntohl(fh->fh_fsid[1])));
  136. fh->fh_fsid[1] = fh->fh_fsid[2];
  137. }
  138. data_left -= len;
  139. if (data_left < 0)
  140. return error;
  141. exp = rqst_exp_find(rqstp, fh->fh_fsid_type, fh->fh_auth);
  142. fid = (struct fid *)(fh->fh_auth + len);
  143. } else {
  144. __u32 tfh[2];
  145. dev_t xdev;
  146. ino_t xino;
  147. if (fh->fh_size != NFS_FHSIZE)
  148. return error;
  149. /* assume old filehandle format */
  150. xdev = old_decode_dev(fh->ofh_xdev);
  151. xino = u32_to_ino_t(fh->ofh_xino);
  152. mk_fsid(FSID_DEV, tfh, xdev, xino, 0, NULL);
  153. exp = rqst_exp_find(rqstp, FSID_DEV, tfh);
  154. }
  155. error = nfserr_stale;
  156. if (PTR_ERR(exp) == -ENOENT)
  157. return error;
  158. if (IS_ERR(exp))
  159. return nfserrno(PTR_ERR(exp));
  160. error = nfsd_setuser_and_check_port(rqstp, exp);
  161. if (error)
  162. goto out;
  163. /*
  164. * Look up the dentry using the NFS file handle.
  165. */
  166. error = nfserr_stale;
  167. if (rqstp->rq_vers > 2)
  168. error = nfserr_badhandle;
  169. if (fh->fh_version != 1) {
  170. sfid.i32.ino = fh->ofh_ino;
  171. sfid.i32.gen = fh->ofh_generation;
  172. sfid.i32.parent_ino = fh->ofh_dirino;
  173. fid = &sfid;
  174. data_left = 3;
  175. if (fh->ofh_dirino == 0)
  176. fileid_type = FILEID_INO32_GEN;
  177. else
  178. fileid_type = FILEID_INO32_GEN_PARENT;
  179. } else
  180. fileid_type = fh->fh_fileid_type;
  181. if (fileid_type == FILEID_ROOT)
  182. dentry = dget(exp->ex_path.dentry);
  183. else {
  184. dentry = exportfs_decode_fh(exp->ex_path.mnt, fid,
  185. data_left, fileid_type,
  186. nfsd_acceptable, exp);
  187. }
  188. if (dentry == NULL)
  189. goto out;
  190. if (IS_ERR(dentry)) {
  191. if (PTR_ERR(dentry) != -EINVAL)
  192. error = nfserrno(PTR_ERR(dentry));
  193. goto out;
  194. }
  195. if (S_ISDIR(dentry->d_inode->i_mode) &&
  196. (dentry->d_flags & DCACHE_DISCONNECTED)) {
  197. printk("nfsd: find_fh_dentry returned a DISCONNECTED directory: %s/%s\n",
  198. dentry->d_parent->d_name.name, dentry->d_name.name);
  199. }
  200. fhp->fh_dentry = dentry;
  201. fhp->fh_export = exp;
  202. nfsd_nr_verified++;
  203. return 0;
  204. out:
  205. exp_put(exp);
  206. return error;
  207. }
  208. /*
  209. * Perform sanity checks on the dentry in a client's file handle.
  210. *
  211. * Note that the file handle dentry may need to be freed even after
  212. * an error return.
  213. *
  214. * This is only called at the start of an nfsproc call, so fhp points to
  215. * a svc_fh which is all 0 except for the over-the-wire file handle.
  216. */
  217. __be32
  218. fh_verify(struct svc_rqst *rqstp, struct svc_fh *fhp, int type, int access)
  219. {
  220. struct svc_export *exp;
  221. struct dentry *dentry;
  222. __be32 error;
  223. dprintk("nfsd: fh_verify(%s)\n", SVCFH_fmt(fhp));
  224. if (!fhp->fh_dentry) {
  225. error = nfsd_set_fh_dentry(rqstp, fhp);
  226. if (error)
  227. goto out;
  228. dentry = fhp->fh_dentry;
  229. exp = fhp->fh_export;
  230. } else {
  231. /*
  232. * just rechecking permissions
  233. * (e.g. nfsproc_create calls fh_verify, then nfsd_create
  234. * does as well)
  235. */
  236. dprintk("nfsd: fh_verify - just checking\n");
  237. dentry = fhp->fh_dentry;
  238. exp = fhp->fh_export;
  239. /*
  240. * Set user creds for this exportpoint; necessary even
  241. * in the "just checking" case because this may be a
  242. * filehandle that was created by fh_compose, and that
  243. * is about to be used in another nfsv4 compound
  244. * operation.
  245. */
  246. error = nfsd_setuser_and_check_port(rqstp, exp);
  247. if (error)
  248. goto out;
  249. }
  250. error = nfsd_mode_check(rqstp, dentry->d_inode->i_mode, type);
  251. if (error)
  252. goto out;
  253. if (!(access & MAY_LOCK)) {
  254. /*
  255. * pseudoflavor restrictions are not enforced on NLM,
  256. * which clients virtually always use auth_sys for,
  257. * even while using RPCSEC_GSS for NFS.
  258. */
  259. error = check_nfsd_access(exp, rqstp);
  260. if (error)
  261. goto out;
  262. }
  263. /* Finally, check access permissions. */
  264. error = nfsd_permission(rqstp, exp, dentry, access);
  265. if (error) {
  266. dprintk("fh_verify: %s/%s permission failure, "
  267. "acc=%x, error=%d\n",
  268. dentry->d_parent->d_name.name,
  269. dentry->d_name.name,
  270. access, ntohl(error));
  271. }
  272. out:
  273. if (error == nfserr_stale)
  274. nfsdstats.fh_stale++;
  275. return error;
  276. }
  277. /*
  278. * Compose a file handle for an NFS reply.
  279. *
  280. * Note that when first composed, the dentry may not yet have
  281. * an inode. In this case a call to fh_update should be made
  282. * before the fh goes out on the wire ...
  283. */
  284. static void _fh_update(struct svc_fh *fhp, struct svc_export *exp,
  285. struct dentry *dentry)
  286. {
  287. if (dentry != exp->ex_path.dentry) {
  288. struct fid *fid = (struct fid *)
  289. (fhp->fh_handle.fh_auth + fhp->fh_handle.fh_size/4 - 1);
  290. int maxsize = (fhp->fh_maxsize - fhp->fh_handle.fh_size)/4;
  291. int subtreecheck = !(exp->ex_flags & NFSEXP_NOSUBTREECHECK);
  292. fhp->fh_handle.fh_fileid_type =
  293. exportfs_encode_fh(dentry, fid, &maxsize, subtreecheck);
  294. fhp->fh_handle.fh_size += maxsize * 4;
  295. } else {
  296. fhp->fh_handle.fh_fileid_type = FILEID_ROOT;
  297. }
  298. }
  299. /*
  300. * for composing old style file handles
  301. */
  302. static inline void _fh_update_old(struct dentry *dentry,
  303. struct svc_export *exp,
  304. struct knfsd_fh *fh)
  305. {
  306. fh->ofh_ino = ino_t_to_u32(dentry->d_inode->i_ino);
  307. fh->ofh_generation = dentry->d_inode->i_generation;
  308. if (S_ISDIR(dentry->d_inode->i_mode) ||
  309. (exp->ex_flags & NFSEXP_NOSUBTREECHECK))
  310. fh->ofh_dirino = 0;
  311. }
  312. __be32
  313. fh_compose(struct svc_fh *fhp, struct svc_export *exp, struct dentry *dentry,
  314. struct svc_fh *ref_fh)
  315. {
  316. /* ref_fh is a reference file handle.
  317. * if it is non-null and for the same filesystem, then we should compose
  318. * a filehandle which is of the same version, where possible.
  319. * Currently, that means that if ref_fh->fh_handle.fh_version == 0xca
  320. * Then create a 32byte filehandle using nfs_fhbase_old
  321. *
  322. */
  323. u8 version;
  324. u8 fsid_type = 0;
  325. struct inode * inode = dentry->d_inode;
  326. struct dentry *parent = dentry->d_parent;
  327. __u32 *datap;
  328. dev_t ex_dev = exp->ex_path.dentry->d_inode->i_sb->s_dev;
  329. int root_export = (exp->ex_path.dentry == exp->ex_path.dentry->d_sb->s_root);
  330. dprintk("nfsd: fh_compose(exp %02x:%02x/%ld %s/%s, ino=%ld)\n",
  331. MAJOR(ex_dev), MINOR(ex_dev),
  332. (long) exp->ex_path.dentry->d_inode->i_ino,
  333. parent->d_name.name, dentry->d_name.name,
  334. (inode ? inode->i_ino : 0));
  335. /* Choose filehandle version and fsid type based on
  336. * the reference filehandle (if it is in the same export)
  337. * or the export options.
  338. */
  339. retry:
  340. version = 1;
  341. if (ref_fh && ref_fh->fh_export == exp) {
  342. version = ref_fh->fh_handle.fh_version;
  343. fsid_type = ref_fh->fh_handle.fh_fsid_type;
  344. if (ref_fh == fhp)
  345. fh_put(ref_fh);
  346. ref_fh = NULL;
  347. switch (version) {
  348. case 0xca:
  349. fsid_type = FSID_DEV;
  350. break;
  351. case 1:
  352. break;
  353. default:
  354. goto retry;
  355. }
  356. /* Need to check that this type works for this
  357. * export point. As the fsid -> filesystem mapping
  358. * was guided by user-space, there is no guarantee
  359. * that the filesystem actually supports that fsid
  360. * type. If it doesn't we loop around again without
  361. * ref_fh set.
  362. */
  363. switch(fsid_type) {
  364. case FSID_DEV:
  365. if (!old_valid_dev(ex_dev))
  366. goto retry;
  367. /* FALL THROUGH */
  368. case FSID_MAJOR_MINOR:
  369. case FSID_ENCODE_DEV:
  370. if (!(exp->ex_path.dentry->d_inode->i_sb->s_type->fs_flags
  371. & FS_REQUIRES_DEV))
  372. goto retry;
  373. break;
  374. case FSID_NUM:
  375. if (! (exp->ex_flags & NFSEXP_FSID))
  376. goto retry;
  377. break;
  378. case FSID_UUID8:
  379. case FSID_UUID16:
  380. if (!root_export)
  381. goto retry;
  382. /* fall through */
  383. case FSID_UUID4_INUM:
  384. case FSID_UUID16_INUM:
  385. if (exp->ex_uuid == NULL)
  386. goto retry;
  387. break;
  388. }
  389. } else if (exp->ex_uuid) {
  390. if (fhp->fh_maxsize >= 64) {
  391. if (root_export)
  392. fsid_type = FSID_UUID16;
  393. else
  394. fsid_type = FSID_UUID16_INUM;
  395. } else {
  396. if (root_export)
  397. fsid_type = FSID_UUID8;
  398. else
  399. fsid_type = FSID_UUID4_INUM;
  400. }
  401. } else if (exp->ex_flags & NFSEXP_FSID)
  402. fsid_type = FSID_NUM;
  403. else if (!old_valid_dev(ex_dev))
  404. /* for newer device numbers, we must use a newer fsid format */
  405. fsid_type = FSID_ENCODE_DEV;
  406. else
  407. fsid_type = FSID_DEV;
  408. if (ref_fh == fhp)
  409. fh_put(ref_fh);
  410. if (fhp->fh_locked || fhp->fh_dentry) {
  411. printk(KERN_ERR "fh_compose: fh %s/%s not initialized!\n",
  412. parent->d_name.name, dentry->d_name.name);
  413. }
  414. if (fhp->fh_maxsize < NFS_FHSIZE)
  415. printk(KERN_ERR "fh_compose: called with maxsize %d! %s/%s\n",
  416. fhp->fh_maxsize,
  417. parent->d_name.name, dentry->d_name.name);
  418. fhp->fh_dentry = dget(dentry); /* our internal copy */
  419. fhp->fh_export = exp;
  420. cache_get(&exp->h);
  421. if (version == 0xca) {
  422. /* old style filehandle please */
  423. memset(&fhp->fh_handle.fh_base, 0, NFS_FHSIZE);
  424. fhp->fh_handle.fh_size = NFS_FHSIZE;
  425. fhp->fh_handle.ofh_dcookie = 0xfeebbaca;
  426. fhp->fh_handle.ofh_dev = old_encode_dev(ex_dev);
  427. fhp->fh_handle.ofh_xdev = fhp->fh_handle.ofh_dev;
  428. fhp->fh_handle.ofh_xino =
  429. ino_t_to_u32(exp->ex_path.dentry->d_inode->i_ino);
  430. fhp->fh_handle.ofh_dirino = ino_t_to_u32(parent_ino(dentry));
  431. if (inode)
  432. _fh_update_old(dentry, exp, &fhp->fh_handle);
  433. } else {
  434. int len;
  435. fhp->fh_handle.fh_version = 1;
  436. fhp->fh_handle.fh_auth_type = 0;
  437. datap = fhp->fh_handle.fh_auth+0;
  438. fhp->fh_handle.fh_fsid_type = fsid_type;
  439. mk_fsid(fsid_type, datap, ex_dev,
  440. exp->ex_path.dentry->d_inode->i_ino,
  441. exp->ex_fsid, exp->ex_uuid);
  442. len = key_len(fsid_type);
  443. datap += len/4;
  444. fhp->fh_handle.fh_size = 4 + len;
  445. if (inode)
  446. _fh_update(fhp, exp, dentry);
  447. if (fhp->fh_handle.fh_fileid_type == 255)
  448. return nfserr_opnotsupp;
  449. }
  450. nfsd_nr_verified++;
  451. return 0;
  452. }
  453. /*
  454. * Update file handle information after changing a dentry.
  455. * This is only called by nfsd_create, nfsd_create_v3 and nfsd_proc_create
  456. */
  457. __be32
  458. fh_update(struct svc_fh *fhp)
  459. {
  460. struct dentry *dentry;
  461. if (!fhp->fh_dentry)
  462. goto out_bad;
  463. dentry = fhp->fh_dentry;
  464. if (!dentry->d_inode)
  465. goto out_negative;
  466. if (fhp->fh_handle.fh_version != 1) {
  467. _fh_update_old(dentry, fhp->fh_export, &fhp->fh_handle);
  468. } else {
  469. if (fhp->fh_handle.fh_fileid_type != FILEID_ROOT)
  470. goto out;
  471. _fh_update(fhp, fhp->fh_export, dentry);
  472. if (fhp->fh_handle.fh_fileid_type == 255)
  473. return nfserr_opnotsupp;
  474. }
  475. out:
  476. return 0;
  477. out_bad:
  478. printk(KERN_ERR "fh_update: fh not verified!\n");
  479. goto out;
  480. out_negative:
  481. printk(KERN_ERR "fh_update: %s/%s still negative!\n",
  482. dentry->d_parent->d_name.name, dentry->d_name.name);
  483. goto out;
  484. }
  485. /*
  486. * Release a file handle.
  487. */
  488. void
  489. fh_put(struct svc_fh *fhp)
  490. {
  491. struct dentry * dentry = fhp->fh_dentry;
  492. struct svc_export * exp = fhp->fh_export;
  493. if (dentry) {
  494. fh_unlock(fhp);
  495. fhp->fh_dentry = NULL;
  496. dput(dentry);
  497. #ifdef CONFIG_NFSD_V3
  498. fhp->fh_pre_saved = 0;
  499. fhp->fh_post_saved = 0;
  500. #endif
  501. nfsd_nr_put++;
  502. }
  503. if (exp) {
  504. cache_put(&exp->h, &svc_export_cache);
  505. fhp->fh_export = NULL;
  506. }
  507. return;
  508. }
  509. /*
  510. * Shorthand for dprintk()'s
  511. */
  512. char * SVCFH_fmt(struct svc_fh *fhp)
  513. {
  514. struct knfsd_fh *fh = &fhp->fh_handle;
  515. static char buf[80];
  516. sprintf(buf, "%d: %08x %08x %08x %08x %08x %08x",
  517. fh->fh_size,
  518. fh->fh_base.fh_pad[0],
  519. fh->fh_base.fh_pad[1],
  520. fh->fh_base.fh_pad[2],
  521. fh->fh_base.fh_pad[3],
  522. fh->fh_base.fh_pad[4],
  523. fh->fh_base.fh_pad[5]);
  524. return buf;
  525. }
  526. enum fsid_source fsid_source(struct svc_fh *fhp)
  527. {
  528. if (fhp->fh_handle.fh_version != 1)
  529. return FSIDSOURCE_DEV;
  530. switch(fhp->fh_handle.fh_fsid_type) {
  531. case FSID_DEV:
  532. case FSID_ENCODE_DEV:
  533. case FSID_MAJOR_MINOR:
  534. if (fhp->fh_export->ex_path.dentry->d_inode->i_sb->s_type->fs_flags
  535. & FS_REQUIRES_DEV)
  536. return FSIDSOURCE_DEV;
  537. break;
  538. case FSID_NUM:
  539. if (fhp->fh_export->ex_flags & NFSEXP_FSID)
  540. return FSIDSOURCE_FSID;
  541. break;
  542. default:
  543. break;
  544. }
  545. /* either a UUID type filehandle, or the filehandle doesn't
  546. * match the export.
  547. */
  548. if (fhp->fh_export->ex_flags & NFSEXP_FSID)
  549. return FSIDSOURCE_FSID;
  550. if (fhp->fh_export->ex_uuid)
  551. return FSIDSOURCE_UUID;
  552. return FSIDSOURCE_DEV;
  553. }