callback.c 9.5 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389
  1. /*
  2. * linux/fs/nfs/callback.c
  3. *
  4. * Copyright (C) 2004 Trond Myklebust
  5. *
  6. * NFSv4 callback handling
  7. */
  8. #include <linux/completion.h>
  9. #include <linux/ip.h>
  10. #include <linux/module.h>
  11. #include <linux/smp_lock.h>
  12. #include <linux/sunrpc/svc.h>
  13. #include <linux/sunrpc/svcsock.h>
  14. #include <linux/nfs_fs.h>
  15. #include <linux/mutex.h>
  16. #include <linux/freezer.h>
  17. #include <linux/kthread.h>
  18. #include <linux/sunrpc/svcauth_gss.h>
  19. #if defined(CONFIG_NFS_V4_1)
  20. #include <linux/sunrpc/bc_xprt.h>
  21. #endif
  22. #include <net/inet_sock.h>
  23. #include "nfs4_fs.h"
  24. #include "callback.h"
  25. #include "internal.h"
  26. #define NFSDBG_FACILITY NFSDBG_CALLBACK
  27. struct nfs_callback_data {
  28. unsigned int users;
  29. struct svc_serv *serv;
  30. struct svc_rqst *rqst;
  31. struct task_struct *task;
  32. };
  33. static struct nfs_callback_data nfs_callback_info;
  34. static DEFINE_MUTEX(nfs_callback_mutex);
  35. static struct svc_program nfs4_callback_program;
  36. unsigned int nfs_callback_set_tcpport;
  37. unsigned short nfs_callback_tcpport;
  38. unsigned short nfs_callback_tcpport6;
  39. static const int nfs_set_port_min = 0;
  40. static const int nfs_set_port_max = 65535;
  41. static int param_set_port(const char *val, struct kernel_param *kp)
  42. {
  43. char *endp;
  44. int num = simple_strtol(val, &endp, 0);
  45. if (endp == val || *endp || num < nfs_set_port_min || num > nfs_set_port_max)
  46. return -EINVAL;
  47. *((int *)kp->arg) = num;
  48. return 0;
  49. }
  50. module_param_call(callback_tcpport, param_set_port, param_get_int,
  51. &nfs_callback_set_tcpport, 0644);
  52. /*
  53. * This is the callback kernel thread.
  54. */
  55. static int
  56. nfs4_callback_svc(void *vrqstp)
  57. {
  58. int err, preverr = 0;
  59. struct svc_rqst *rqstp = vrqstp;
  60. set_freezable();
  61. /*
  62. * FIXME: do we really need to run this under the BKL? If so, please
  63. * add a comment about what it's intended to protect.
  64. */
  65. lock_kernel();
  66. while (!kthread_should_stop()) {
  67. /*
  68. * Listen for a request on the socket
  69. */
  70. err = svc_recv(rqstp, MAX_SCHEDULE_TIMEOUT);
  71. if (err == -EAGAIN || err == -EINTR) {
  72. preverr = err;
  73. continue;
  74. }
  75. if (err < 0) {
  76. if (err != preverr) {
  77. printk(KERN_WARNING "%s: unexpected error "
  78. "from svc_recv (%d)\n", __func__, err);
  79. preverr = err;
  80. }
  81. schedule_timeout_uninterruptible(HZ);
  82. continue;
  83. }
  84. preverr = err;
  85. svc_process(rqstp);
  86. }
  87. unlock_kernel();
  88. return 0;
  89. }
  90. /*
  91. * Prepare to bring up the NFSv4 callback service
  92. */
  93. struct svc_rqst *
  94. nfs4_callback_up(struct svc_serv *serv)
  95. {
  96. int ret;
  97. ret = svc_create_xprt(serv, "tcp", PF_INET,
  98. nfs_callback_set_tcpport, SVC_SOCK_ANONYMOUS);
  99. if (ret <= 0)
  100. goto out_err;
  101. nfs_callback_tcpport = ret;
  102. dprintk("NFS: Callback listener port = %u (af %u)\n",
  103. nfs_callback_tcpport, PF_INET);
  104. #if defined(CONFIG_IPV6) || defined(CONFIG_IPV6_MODULE)
  105. ret = svc_create_xprt(serv, "tcp", PF_INET6,
  106. nfs_callback_set_tcpport, SVC_SOCK_ANONYMOUS);
  107. if (ret > 0) {
  108. nfs_callback_tcpport6 = ret;
  109. dprintk("NFS: Callback listener port = %u (af %u)\n",
  110. nfs_callback_tcpport6, PF_INET6);
  111. } else if (ret != -EAFNOSUPPORT)
  112. goto out_err;
  113. #endif /* defined(CONFIG_IPV6) || defined(CONFIG_IPV6_MODULE) */
  114. return svc_prepare_thread(serv, &serv->sv_pools[0]);
  115. out_err:
  116. if (ret == 0)
  117. ret = -ENOMEM;
  118. return ERR_PTR(ret);
  119. }
  120. #if defined(CONFIG_NFS_V4_1)
  121. /*
  122. * The callback service for NFSv4.1 callbacks
  123. */
  124. static int
  125. nfs41_callback_svc(void *vrqstp)
  126. {
  127. struct svc_rqst *rqstp = vrqstp;
  128. struct svc_serv *serv = rqstp->rq_server;
  129. struct rpc_rqst *req;
  130. int error;
  131. DEFINE_WAIT(wq);
  132. set_freezable();
  133. /*
  134. * FIXME: do we really need to run this under the BKL? If so, please
  135. * add a comment about what it's intended to protect.
  136. */
  137. lock_kernel();
  138. while (!kthread_should_stop()) {
  139. prepare_to_wait(&serv->sv_cb_waitq, &wq, TASK_INTERRUPTIBLE);
  140. spin_lock_bh(&serv->sv_cb_lock);
  141. if (!list_empty(&serv->sv_cb_list)) {
  142. req = list_first_entry(&serv->sv_cb_list,
  143. struct rpc_rqst, rq_bc_list);
  144. list_del(&req->rq_bc_list);
  145. spin_unlock_bh(&serv->sv_cb_lock);
  146. dprintk("Invoking bc_svc_process()\n");
  147. error = bc_svc_process(serv, req, rqstp);
  148. dprintk("bc_svc_process() returned w/ error code= %d\n",
  149. error);
  150. } else {
  151. spin_unlock_bh(&serv->sv_cb_lock);
  152. schedule();
  153. }
  154. finish_wait(&serv->sv_cb_waitq, &wq);
  155. }
  156. unlock_kernel();
  157. nfs_callback_info.task = NULL;
  158. svc_exit_thread(rqstp);
  159. return 0;
  160. }
  161. /*
  162. * Bring up the NFSv4.1 callback service
  163. */
  164. struct svc_rqst *
  165. nfs41_callback_up(struct svc_serv *serv, struct rpc_xprt *xprt)
  166. {
  167. /*
  168. * Save the svc_serv in the transport so that it can
  169. * be referenced when the session backchannel is initialized
  170. */
  171. xprt->bc_serv = serv;
  172. INIT_LIST_HEAD(&serv->sv_cb_list);
  173. spin_lock_init(&serv->sv_cb_lock);
  174. init_waitqueue_head(&serv->sv_cb_waitq);
  175. return svc_prepare_thread(serv, &serv->sv_pools[0]);
  176. }
  177. static inline int nfs_minorversion_callback_svc_setup(u32 minorversion,
  178. struct svc_serv *serv, struct rpc_xprt *xprt,
  179. struct svc_rqst **rqstpp, int (**callback_svc)(void *vrqstp))
  180. {
  181. if (minorversion) {
  182. *rqstpp = nfs41_callback_up(serv, xprt);
  183. *callback_svc = nfs41_callback_svc;
  184. }
  185. return minorversion;
  186. }
  187. static inline void nfs_callback_bc_serv(u32 minorversion, struct rpc_xprt *xprt,
  188. struct nfs_callback_data *cb_info)
  189. {
  190. if (minorversion)
  191. xprt->bc_serv = cb_info->serv;
  192. }
  193. #else
  194. static inline int nfs_minorversion_callback_svc_setup(u32 minorversion,
  195. struct svc_serv *serv, struct rpc_xprt *xprt,
  196. struct svc_rqst **rqstpp, int (**callback_svc)(void *vrqstp))
  197. {
  198. return 0;
  199. }
  200. static inline void nfs_callback_bc_serv(u32 minorversion, struct rpc_xprt *xprt,
  201. struct nfs_callback_data *cb_info)
  202. {
  203. }
  204. #endif /* CONFIG_NFS_V4_1 */
  205. /*
  206. * Bring up the callback thread if it is not already up.
  207. */
  208. int nfs_callback_up(u32 minorversion, struct rpc_xprt *xprt)
  209. {
  210. struct svc_serv *serv = NULL;
  211. struct svc_rqst *rqstp;
  212. int (*callback_svc)(void *vrqstp);
  213. char svc_name[12];
  214. int ret = 0;
  215. int minorversion_setup;
  216. mutex_lock(&nfs_callback_mutex);
  217. if (nfs_callback_info.users++ || nfs_callback_info.task != NULL) {
  218. nfs_callback_bc_serv(minorversion, xprt, &nfs_callback_info);
  219. goto out;
  220. }
  221. serv = svc_create(&nfs4_callback_program, NFS4_CALLBACK_BUFSIZE, NULL);
  222. if (!serv) {
  223. ret = -ENOMEM;
  224. goto out_err;
  225. }
  226. minorversion_setup = nfs_minorversion_callback_svc_setup(minorversion,
  227. serv, xprt, &rqstp, &callback_svc);
  228. if (!minorversion_setup) {
  229. /* v4.0 callback setup */
  230. rqstp = nfs4_callback_up(serv);
  231. callback_svc = nfs4_callback_svc;
  232. }
  233. if (IS_ERR(rqstp)) {
  234. ret = PTR_ERR(rqstp);
  235. goto out_err;
  236. }
  237. svc_sock_update_bufs(serv);
  238. sprintf(svc_name, "nfsv4.%u-svc", minorversion);
  239. nfs_callback_info.serv = serv;
  240. nfs_callback_info.rqst = rqstp;
  241. nfs_callback_info.task = kthread_run(callback_svc,
  242. nfs_callback_info.rqst,
  243. svc_name);
  244. if (IS_ERR(nfs_callback_info.task)) {
  245. ret = PTR_ERR(nfs_callback_info.task);
  246. svc_exit_thread(nfs_callback_info.rqst);
  247. nfs_callback_info.serv = NULL;
  248. nfs_callback_info.rqst = NULL;
  249. nfs_callback_info.task = NULL;
  250. goto out_err;
  251. }
  252. out:
  253. /*
  254. * svc_create creates the svc_serv with sv_nrthreads == 1, and then
  255. * svc_prepare_thread increments that. So we need to call svc_destroy
  256. * on both success and failure so that the refcount is 1 when the
  257. * thread exits.
  258. */
  259. if (serv)
  260. svc_destroy(serv);
  261. mutex_unlock(&nfs_callback_mutex);
  262. return ret;
  263. out_err:
  264. dprintk("NFS: Couldn't create callback socket or server thread; "
  265. "err = %d\n", ret);
  266. nfs_callback_info.users--;
  267. goto out;
  268. }
  269. /*
  270. * Kill the callback thread if it's no longer being used.
  271. */
  272. void nfs_callback_down(void)
  273. {
  274. mutex_lock(&nfs_callback_mutex);
  275. nfs_callback_info.users--;
  276. if (nfs_callback_info.users == 0 && nfs_callback_info.task != NULL) {
  277. kthread_stop(nfs_callback_info.task);
  278. svc_exit_thread(nfs_callback_info.rqst);
  279. nfs_callback_info.serv = NULL;
  280. nfs_callback_info.rqst = NULL;
  281. nfs_callback_info.task = NULL;
  282. }
  283. mutex_unlock(&nfs_callback_mutex);
  284. }
  285. static int check_gss_callback_principal(struct nfs_client *clp,
  286. struct svc_rqst *rqstp)
  287. {
  288. struct rpc_clnt *r = clp->cl_rpcclient;
  289. char *p = svc_gss_principal(rqstp);
  290. /*
  291. * It might just be a normal user principal, in which case
  292. * userspace won't bother to tell us the name at all.
  293. */
  294. if (p == NULL)
  295. return SVC_DENIED;
  296. /* Expect a GSS_C_NT_HOSTBASED_NAME like "nfs@serverhostname" */
  297. if (memcmp(p, "nfs@", 4) != 0)
  298. return SVC_DENIED;
  299. p += 4;
  300. if (strcmp(p, r->cl_server) != 0)
  301. return SVC_DENIED;
  302. return SVC_OK;
  303. }
  304. static int nfs_callback_authenticate(struct svc_rqst *rqstp)
  305. {
  306. struct nfs_client *clp;
  307. RPC_IFDEBUG(char buf[RPC_MAX_ADDRBUFLEN]);
  308. int ret = SVC_OK;
  309. /* Don't talk to strangers */
  310. clp = nfs_find_client(svc_addr(rqstp), 4);
  311. if (clp == NULL)
  312. return SVC_DROP;
  313. dprintk("%s: %s NFSv4 callback!\n", __func__,
  314. svc_print_addr(rqstp, buf, sizeof(buf)));
  315. switch (rqstp->rq_authop->flavour) {
  316. case RPC_AUTH_NULL:
  317. if (rqstp->rq_proc != CB_NULL)
  318. ret = SVC_DENIED;
  319. break;
  320. case RPC_AUTH_UNIX:
  321. break;
  322. case RPC_AUTH_GSS:
  323. ret = check_gss_callback_principal(clp, rqstp);
  324. break;
  325. default:
  326. ret = SVC_DENIED;
  327. }
  328. nfs_put_client(clp);
  329. return ret;
  330. }
  331. /*
  332. * Define NFS4 callback program
  333. */
  334. static struct svc_version *nfs4_callback_version[] = {
  335. [1] = &nfs4_callback_version1,
  336. };
  337. static struct svc_stat nfs4_callback_stats;
  338. static struct svc_program nfs4_callback_program = {
  339. .pg_prog = NFS4_CALLBACK, /* RPC service number */
  340. .pg_nvers = ARRAY_SIZE(nfs4_callback_version), /* Number of entries */
  341. .pg_vers = nfs4_callback_version, /* version table */
  342. .pg_name = "NFSv4 callback", /* service name */
  343. .pg_class = "nfs", /* authentication class */
  344. .pg_stats = &nfs4_callback_stats,
  345. .pg_authenticate = nfs_callback_authenticate,
  346. };