/kern_2.6.32/fs/fuse/file.c

http://omnia2droid.googlecode.com/ · C · 2028 lines · 1523 code · 313 blank · 192 comment · 221 complexity · 146fd382e4ccbaaa1d394c422cbe67f7 MD5 · raw file

  1. /*
  2. FUSE: Filesystem in Userspace
  3. Copyright (C) 2001-2008 Miklos Szeredi <miklos@szeredi.hu>
  4. This program can be distributed under the terms of the GNU GPL.
  5. See the file COPYING.
  6. */
  7. #include "fuse_i.h"
  8. #include <linux/pagemap.h>
  9. #include <linux/slab.h>
  10. #include <linux/kernel.h>
  11. #include <linux/sched.h>
  12. #include <linux/module.h>
  13. static const struct file_operations fuse_direct_io_file_operations;
  14. static int fuse_send_open(struct fuse_conn *fc, u64 nodeid, struct file *file,
  15. int opcode, struct fuse_open_out *outargp)
  16. {
  17. struct fuse_open_in inarg;
  18. struct fuse_req *req;
  19. int err;
  20. req = fuse_get_req(fc);
  21. if (IS_ERR(req))
  22. return PTR_ERR(req);
  23. memset(&inarg, 0, sizeof(inarg));
  24. inarg.flags = file->f_flags & ~(O_CREAT | O_EXCL | O_NOCTTY);
  25. if (!fc->atomic_o_trunc)
  26. inarg.flags &= ~O_TRUNC;
  27. req->in.h.opcode = opcode;
  28. req->in.h.nodeid = nodeid;
  29. req->in.numargs = 1;
  30. req->in.args[0].size = sizeof(inarg);
  31. req->in.args[0].value = &inarg;
  32. req->out.numargs = 1;
  33. req->out.args[0].size = sizeof(*outargp);
  34. req->out.args[0].value = outargp;
  35. fuse_request_send(fc, req);
  36. err = req->out.h.error;
  37. fuse_put_request(fc, req);
  38. return err;
  39. }
  40. struct fuse_file *fuse_file_alloc(struct fuse_conn *fc)
  41. {
  42. struct fuse_file *ff;
  43. ff = kmalloc(sizeof(struct fuse_file), GFP_KERNEL);
  44. if (unlikely(!ff))
  45. return NULL;
  46. ff->fc = fc;
  47. ff->reserved_req = fuse_request_alloc();
  48. if (unlikely(!ff->reserved_req)) {
  49. kfree(ff);
  50. return NULL;
  51. }
  52. INIT_LIST_HEAD(&ff->write_entry);
  53. atomic_set(&ff->count, 0);
  54. RB_CLEAR_NODE(&ff->polled_node);
  55. init_waitqueue_head(&ff->poll_wait);
  56. spin_lock(&fc->lock);
  57. ff->kh = ++fc->khctr;
  58. spin_unlock(&fc->lock);
  59. return ff;
  60. }
  61. void fuse_file_free(struct fuse_file *ff)
  62. {
  63. fuse_request_free(ff->reserved_req);
  64. kfree(ff);
  65. }
  66. struct fuse_file *fuse_file_get(struct fuse_file *ff)
  67. {
  68. atomic_inc(&ff->count);
  69. return ff;
  70. }
  71. static void fuse_release_end(struct fuse_conn *fc, struct fuse_req *req)
  72. {
  73. path_put(&req->misc.release.path);
  74. }
  75. static void fuse_file_put(struct fuse_file *ff)
  76. {
  77. if (atomic_dec_and_test(&ff->count)) {
  78. struct fuse_req *req = ff->reserved_req;
  79. req->end = fuse_release_end;
  80. fuse_request_send_background(ff->fc, req);
  81. kfree(ff);
  82. }
  83. }
  84. int fuse_do_open(struct fuse_conn *fc, u64 nodeid, struct file *file,
  85. bool isdir)
  86. {
  87. struct fuse_open_out outarg;
  88. struct fuse_file *ff;
  89. int err;
  90. int opcode = isdir ? FUSE_OPENDIR : FUSE_OPEN;
  91. ff = fuse_file_alloc(fc);
  92. if (!ff)
  93. return -ENOMEM;
  94. err = fuse_send_open(fc, nodeid, file, opcode, &outarg);
  95. if (err) {
  96. fuse_file_free(ff);
  97. return err;
  98. }
  99. if (isdir)
  100. outarg.open_flags &= ~FOPEN_DIRECT_IO;
  101. ff->fh = outarg.fh;
  102. ff->nodeid = nodeid;
  103. ff->open_flags = outarg.open_flags;
  104. file->private_data = fuse_file_get(ff);
  105. return 0;
  106. }
  107. EXPORT_SYMBOL_GPL(fuse_do_open);
  108. void fuse_finish_open(struct inode *inode, struct file *file)
  109. {
  110. struct fuse_file *ff = file->private_data;
  111. if (ff->open_flags & FOPEN_DIRECT_IO)
  112. file->f_op = &fuse_direct_io_file_operations;
  113. if (!(ff->open_flags & FOPEN_KEEP_CACHE))
  114. invalidate_inode_pages2(inode->i_mapping);
  115. if (ff->open_flags & FOPEN_NONSEEKABLE)
  116. nonseekable_open(inode, file);
  117. }
  118. int fuse_open_common(struct inode *inode, struct file *file, bool isdir)
  119. {
  120. struct fuse_conn *fc = get_fuse_conn(inode);
  121. int err;
  122. /* VFS checks this, but only _after_ ->open() */
  123. if (file->f_flags & O_DIRECT)
  124. return -EINVAL;
  125. err = generic_file_open(inode, file);
  126. if (err)
  127. return err;
  128. err = fuse_do_open(fc, get_node_id(inode), file, isdir);
  129. if (err)
  130. return err;
  131. fuse_finish_open(inode, file);
  132. return 0;
  133. }
  134. static void fuse_prepare_release(struct fuse_file *ff, int flags, int opcode)
  135. {
  136. struct fuse_conn *fc = ff->fc;
  137. struct fuse_req *req = ff->reserved_req;
  138. struct fuse_release_in *inarg = &req->misc.release.in;
  139. spin_lock(&fc->lock);
  140. list_del(&ff->write_entry);
  141. if (!RB_EMPTY_NODE(&ff->polled_node))
  142. rb_erase(&ff->polled_node, &fc->polled_files);
  143. spin_unlock(&fc->lock);
  144. wake_up_interruptible_sync(&ff->poll_wait);
  145. inarg->fh = ff->fh;
  146. inarg->flags = flags;
  147. req->in.h.opcode = opcode;
  148. req->in.h.nodeid = ff->nodeid;
  149. req->in.numargs = 1;
  150. req->in.args[0].size = sizeof(struct fuse_release_in);
  151. req->in.args[0].value = inarg;
  152. }
  153. void fuse_release_common(struct file *file, int opcode)
  154. {
  155. struct fuse_file *ff;
  156. struct fuse_req *req;
  157. ff = file->private_data;
  158. if (unlikely(!ff))
  159. return;
  160. req = ff->reserved_req;
  161. fuse_prepare_release(ff, file->f_flags, opcode);
  162. /* Hold vfsmount and dentry until release is finished */
  163. path_get(&file->f_path);
  164. req->misc.release.path = file->f_path;
  165. /*
  166. * Normally this will send the RELEASE request, however if
  167. * some asynchronous READ or WRITE requests are outstanding,
  168. * the sending will be delayed.
  169. */
  170. fuse_file_put(ff);
  171. }
  172. static int fuse_open(struct inode *inode, struct file *file)
  173. {
  174. return fuse_open_common(inode, file, false);
  175. }
  176. static int fuse_release(struct inode *inode, struct file *file)
  177. {
  178. fuse_release_common(file, FUSE_RELEASE);
  179. /* return value is ignored by VFS */
  180. return 0;
  181. }
  182. void fuse_sync_release(struct fuse_file *ff, int flags)
  183. {
  184. WARN_ON(atomic_read(&ff->count) > 1);
  185. fuse_prepare_release(ff, flags, FUSE_RELEASE);
  186. ff->reserved_req->force = 1;
  187. fuse_request_send(ff->fc, ff->reserved_req);
  188. fuse_put_request(ff->fc, ff->reserved_req);
  189. kfree(ff);
  190. }
  191. EXPORT_SYMBOL_GPL(fuse_sync_release);
  192. /*
  193. * Scramble the ID space with XTEA, so that the value of the files_struct
  194. * pointer is not exposed to userspace.
  195. */
  196. u64 fuse_lock_owner_id(struct fuse_conn *fc, fl_owner_t id)
  197. {
  198. u32 *k = fc->scramble_key;
  199. u64 v = (unsigned long) id;
  200. u32 v0 = v;
  201. u32 v1 = v >> 32;
  202. u32 sum = 0;
  203. int i;
  204. for (i = 0; i < 32; i++) {
  205. v0 += ((v1 << 4 ^ v1 >> 5) + v1) ^ (sum + k[sum & 3]);
  206. sum += 0x9E3779B9;
  207. v1 += ((v0 << 4 ^ v0 >> 5) + v0) ^ (sum + k[sum>>11 & 3]);
  208. }
  209. return (u64) v0 + ((u64) v1 << 32);
  210. }
  211. /*
  212. * Check if page is under writeback
  213. *
  214. * This is currently done by walking the list of writepage requests
  215. * for the inode, which can be pretty inefficient.
  216. */
  217. static bool fuse_page_is_writeback(struct inode *inode, pgoff_t index)
  218. {
  219. struct fuse_conn *fc = get_fuse_conn(inode);
  220. struct fuse_inode *fi = get_fuse_inode(inode);
  221. struct fuse_req *req;
  222. bool found = false;
  223. spin_lock(&fc->lock);
  224. list_for_each_entry(req, &fi->writepages, writepages_entry) {
  225. pgoff_t curr_index;
  226. BUG_ON(req->inode != inode);
  227. curr_index = req->misc.write.in.offset >> PAGE_CACHE_SHIFT;
  228. if (curr_index == index) {
  229. found = true;
  230. break;
  231. }
  232. }
  233. spin_unlock(&fc->lock);
  234. return found;
  235. }
  236. /*
  237. * Wait for page writeback to be completed.
  238. *
  239. * Since fuse doesn't rely on the VM writeback tracking, this has to
  240. * use some other means.
  241. */
  242. static int fuse_wait_on_page_writeback(struct inode *inode, pgoff_t index)
  243. {
  244. struct fuse_inode *fi = get_fuse_inode(inode);
  245. wait_event(fi->page_waitq, !fuse_page_is_writeback(inode, index));
  246. return 0;
  247. }
  248. static int fuse_flush(struct file *file, fl_owner_t id)
  249. {
  250. struct inode *inode = file->f_path.dentry->d_inode;
  251. struct fuse_conn *fc = get_fuse_conn(inode);
  252. struct fuse_file *ff = file->private_data;
  253. struct fuse_req *req;
  254. struct fuse_flush_in inarg;
  255. int err;
  256. if (is_bad_inode(inode))
  257. return -EIO;
  258. if (fc->no_flush)
  259. return 0;
  260. req = fuse_get_req_nofail(fc, file);
  261. memset(&inarg, 0, sizeof(inarg));
  262. inarg.fh = ff->fh;
  263. inarg.lock_owner = fuse_lock_owner_id(fc, id);
  264. req->in.h.opcode = FUSE_FLUSH;
  265. req->in.h.nodeid = get_node_id(inode);
  266. req->in.numargs = 1;
  267. req->in.args[0].size = sizeof(inarg);
  268. req->in.args[0].value = &inarg;
  269. req->force = 1;
  270. fuse_request_send(fc, req);
  271. err = req->out.h.error;
  272. fuse_put_request(fc, req);
  273. if (err == -ENOSYS) {
  274. fc->no_flush = 1;
  275. err = 0;
  276. }
  277. return err;
  278. }
  279. /*
  280. * Wait for all pending writepages on the inode to finish.
  281. *
  282. * This is currently done by blocking further writes with FUSE_NOWRITE
  283. * and waiting for all sent writes to complete.
  284. *
  285. * This must be called under i_mutex, otherwise the FUSE_NOWRITE usage
  286. * could conflict with truncation.
  287. */
  288. static void fuse_sync_writes(struct inode *inode)
  289. {
  290. fuse_set_nowrite(inode);
  291. fuse_release_nowrite(inode);
  292. }
  293. int fuse_fsync_common(struct file *file, struct dentry *de, int datasync,
  294. int isdir)
  295. {
  296. struct inode *inode = de->d_inode;
  297. struct fuse_conn *fc = get_fuse_conn(inode);
  298. struct fuse_file *ff = file->private_data;
  299. struct fuse_req *req;
  300. struct fuse_fsync_in inarg;
  301. int err;
  302. if (is_bad_inode(inode))
  303. return -EIO;
  304. if ((!isdir && fc->no_fsync) || (isdir && fc->no_fsyncdir))
  305. return 0;
  306. /*
  307. * Start writeback against all dirty pages of the inode, then
  308. * wait for all outstanding writes, before sending the FSYNC
  309. * request.
  310. */
  311. err = write_inode_now(inode, 0);
  312. if (err)
  313. return err;
  314. fuse_sync_writes(inode);
  315. req = fuse_get_req(fc);
  316. if (IS_ERR(req))
  317. return PTR_ERR(req);
  318. memset(&inarg, 0, sizeof(inarg));
  319. inarg.fh = ff->fh;
  320. inarg.fsync_flags = datasync ? 1 : 0;
  321. req->in.h.opcode = isdir ? FUSE_FSYNCDIR : FUSE_FSYNC;
  322. req->in.h.nodeid = get_node_id(inode);
  323. req->in.numargs = 1;
  324. req->in.args[0].size = sizeof(inarg);
  325. req->in.args[0].value = &inarg;
  326. fuse_request_send(fc, req);
  327. err = req->out.h.error;
  328. fuse_put_request(fc, req);
  329. if (err == -ENOSYS) {
  330. if (isdir)
  331. fc->no_fsyncdir = 1;
  332. else
  333. fc->no_fsync = 1;
  334. err = 0;
  335. }
  336. return err;
  337. }
  338. static int fuse_fsync(struct file *file, struct dentry *de, int datasync)
  339. {
  340. return fuse_fsync_common(file, de, datasync, 0);
  341. }
  342. void fuse_read_fill(struct fuse_req *req, struct file *file, loff_t pos,
  343. size_t count, int opcode)
  344. {
  345. struct fuse_read_in *inarg = &req->misc.read.in;
  346. struct fuse_file *ff = file->private_data;
  347. inarg->fh = ff->fh;
  348. inarg->offset = pos;
  349. inarg->size = count;
  350. inarg->flags = file->f_flags;
  351. req->in.h.opcode = opcode;
  352. req->in.h.nodeid = ff->nodeid;
  353. req->in.numargs = 1;
  354. req->in.args[0].size = sizeof(struct fuse_read_in);
  355. req->in.args[0].value = inarg;
  356. req->out.argvar = 1;
  357. req->out.numargs = 1;
  358. req->out.args[0].size = count;
  359. }
  360. static size_t fuse_send_read(struct fuse_req *req, struct file *file,
  361. loff_t pos, size_t count, fl_owner_t owner)
  362. {
  363. struct fuse_file *ff = file->private_data;
  364. struct fuse_conn *fc = ff->fc;
  365. fuse_read_fill(req, file, pos, count, FUSE_READ);
  366. if (owner != NULL) {
  367. struct fuse_read_in *inarg = &req->misc.read.in;
  368. inarg->read_flags |= FUSE_READ_LOCKOWNER;
  369. inarg->lock_owner = fuse_lock_owner_id(fc, owner);
  370. }
  371. fuse_request_send(fc, req);
  372. return req->out.args[0].size;
  373. }
  374. static void fuse_read_update_size(struct inode *inode, loff_t size,
  375. u64 attr_ver)
  376. {
  377. struct fuse_conn *fc = get_fuse_conn(inode);
  378. struct fuse_inode *fi = get_fuse_inode(inode);
  379. spin_lock(&fc->lock);
  380. if (attr_ver == fi->attr_version && size < inode->i_size) {
  381. fi->attr_version = ++fc->attr_version;
  382. i_size_write(inode, size);
  383. }
  384. spin_unlock(&fc->lock);
  385. }
  386. static int fuse_readpage(struct file *file, struct page *page)
  387. {
  388. struct inode *inode = page->mapping->host;
  389. struct fuse_conn *fc = get_fuse_conn(inode);
  390. struct fuse_req *req;
  391. size_t num_read;
  392. loff_t pos = page_offset(page);
  393. size_t count = PAGE_CACHE_SIZE;
  394. u64 attr_ver;
  395. int err;
  396. err = -EIO;
  397. if (is_bad_inode(inode))
  398. goto out;
  399. /*
  400. * Page writeback can extend beyond the liftime of the
  401. * page-cache page, so make sure we read a properly synced
  402. * page.
  403. */
  404. fuse_wait_on_page_writeback(inode, page->index);
  405. req = fuse_get_req(fc);
  406. err = PTR_ERR(req);
  407. if (IS_ERR(req))
  408. goto out;
  409. attr_ver = fuse_get_attr_version(fc);
  410. req->out.page_zeroing = 1;
  411. req->out.argpages = 1;
  412. req->num_pages = 1;
  413. req->pages[0] = page;
  414. num_read = fuse_send_read(req, file, pos, count, NULL);
  415. err = req->out.h.error;
  416. fuse_put_request(fc, req);
  417. if (!err) {
  418. /*
  419. * Short read means EOF. If file size is larger, truncate it
  420. */
  421. if (num_read < count)
  422. fuse_read_update_size(inode, pos + num_read, attr_ver);
  423. SetPageUptodate(page);
  424. }
  425. fuse_invalidate_attr(inode); /* atime changed */
  426. out:
  427. unlock_page(page);
  428. return err;
  429. }
  430. static void fuse_readpages_end(struct fuse_conn *fc, struct fuse_req *req)
  431. {
  432. int i;
  433. size_t count = req->misc.read.in.size;
  434. size_t num_read = req->out.args[0].size;
  435. struct inode *inode = req->pages[0]->mapping->host;
  436. /*
  437. * Short read means EOF. If file size is larger, truncate it
  438. */
  439. if (!req->out.h.error && num_read < count) {
  440. loff_t pos = page_offset(req->pages[0]) + num_read;
  441. fuse_read_update_size(inode, pos, req->misc.read.attr_ver);
  442. }
  443. fuse_invalidate_attr(inode); /* atime changed */
  444. for (i = 0; i < req->num_pages; i++) {
  445. struct page *page = req->pages[i];
  446. if (!req->out.h.error)
  447. SetPageUptodate(page);
  448. else
  449. SetPageError(page);
  450. unlock_page(page);
  451. }
  452. if (req->ff)
  453. fuse_file_put(req->ff);
  454. }
  455. static void fuse_send_readpages(struct fuse_req *req, struct file *file)
  456. {
  457. struct fuse_file *ff = file->private_data;
  458. struct fuse_conn *fc = ff->fc;
  459. loff_t pos = page_offset(req->pages[0]);
  460. size_t count = req->num_pages << PAGE_CACHE_SHIFT;
  461. req->out.argpages = 1;
  462. req->out.page_zeroing = 1;
  463. fuse_read_fill(req, file, pos, count, FUSE_READ);
  464. req->misc.read.attr_ver = fuse_get_attr_version(fc);
  465. if (fc->async_read) {
  466. req->ff = fuse_file_get(ff);
  467. req->end = fuse_readpages_end;
  468. fuse_request_send_background(fc, req);
  469. } else {
  470. fuse_request_send(fc, req);
  471. fuse_readpages_end(fc, req);
  472. fuse_put_request(fc, req);
  473. }
  474. }
  475. struct fuse_fill_data {
  476. struct fuse_req *req;
  477. struct file *file;
  478. struct inode *inode;
  479. };
  480. static int fuse_readpages_fill(void *_data, struct page *page)
  481. {
  482. struct fuse_fill_data *data = _data;
  483. struct fuse_req *req = data->req;
  484. struct inode *inode = data->inode;
  485. struct fuse_conn *fc = get_fuse_conn(inode);
  486. fuse_wait_on_page_writeback(inode, page->index);
  487. if (req->num_pages &&
  488. (req->num_pages == FUSE_MAX_PAGES_PER_REQ ||
  489. (req->num_pages + 1) * PAGE_CACHE_SIZE > fc->max_read ||
  490. req->pages[req->num_pages - 1]->index + 1 != page->index)) {
  491. fuse_send_readpages(req, data->file);
  492. data->req = req = fuse_get_req(fc);
  493. if (IS_ERR(req)) {
  494. unlock_page(page);
  495. return PTR_ERR(req);
  496. }
  497. }
  498. req->pages[req->num_pages] = page;
  499. req->num_pages++;
  500. return 0;
  501. }
  502. static int fuse_readpages(struct file *file, struct address_space *mapping,
  503. struct list_head *pages, unsigned nr_pages)
  504. {
  505. struct inode *inode = mapping->host;
  506. struct fuse_conn *fc = get_fuse_conn(inode);
  507. struct fuse_fill_data data;
  508. int err;
  509. err = -EIO;
  510. if (is_bad_inode(inode))
  511. goto out;
  512. data.file = file;
  513. data.inode = inode;
  514. data.req = fuse_get_req(fc);
  515. err = PTR_ERR(data.req);
  516. if (IS_ERR(data.req))
  517. goto out;
  518. err = read_cache_pages(mapping, pages, fuse_readpages_fill, &data);
  519. if (!err) {
  520. if (data.req->num_pages)
  521. fuse_send_readpages(data.req, file);
  522. else
  523. fuse_put_request(fc, data.req);
  524. }
  525. out:
  526. return err;
  527. }
  528. static ssize_t fuse_file_aio_read(struct kiocb *iocb, const struct iovec *iov,
  529. unsigned long nr_segs, loff_t pos)
  530. {
  531. struct inode *inode = iocb->ki_filp->f_mapping->host;
  532. if (pos + iov_length(iov, nr_segs) > i_size_read(inode)) {
  533. int err;
  534. /*
  535. * If trying to read past EOF, make sure the i_size
  536. * attribute is up-to-date.
  537. */
  538. err = fuse_update_attributes(inode, NULL, iocb->ki_filp, NULL);
  539. if (err)
  540. return err;
  541. }
  542. return generic_file_aio_read(iocb, iov, nr_segs, pos);
  543. }
  544. static void fuse_write_fill(struct fuse_req *req, struct fuse_file *ff,
  545. loff_t pos, size_t count)
  546. {
  547. struct fuse_write_in *inarg = &req->misc.write.in;
  548. struct fuse_write_out *outarg = &req->misc.write.out;
  549. inarg->fh = ff->fh;
  550. inarg->offset = pos;
  551. inarg->size = count;
  552. req->in.h.opcode = FUSE_WRITE;
  553. req->in.h.nodeid = ff->nodeid;
  554. req->in.numargs = 2;
  555. if (ff->fc->minor < 9)
  556. req->in.args[0].size = FUSE_COMPAT_WRITE_IN_SIZE;
  557. else
  558. req->in.args[0].size = sizeof(struct fuse_write_in);
  559. req->in.args[0].value = inarg;
  560. req->in.args[1].size = count;
  561. req->out.numargs = 1;
  562. req->out.args[0].size = sizeof(struct fuse_write_out);
  563. req->out.args[0].value = outarg;
  564. }
  565. static size_t fuse_send_write(struct fuse_req *req, struct file *file,
  566. loff_t pos, size_t count, fl_owner_t owner)
  567. {
  568. struct fuse_file *ff = file->private_data;
  569. struct fuse_conn *fc = ff->fc;
  570. struct fuse_write_in *inarg = &req->misc.write.in;
  571. fuse_write_fill(req, ff, pos, count);
  572. inarg->flags = file->f_flags;
  573. if (owner != NULL) {
  574. inarg->write_flags |= FUSE_WRITE_LOCKOWNER;
  575. inarg->lock_owner = fuse_lock_owner_id(fc, owner);
  576. }
  577. fuse_request_send(fc, req);
  578. return req->misc.write.out.size;
  579. }
  580. static int fuse_write_begin(struct file *file, struct address_space *mapping,
  581. loff_t pos, unsigned len, unsigned flags,
  582. struct page **pagep, void **fsdata)
  583. {
  584. pgoff_t index = pos >> PAGE_CACHE_SHIFT;
  585. *pagep = grab_cache_page_write_begin(mapping, index, flags);
  586. if (!*pagep)
  587. return -ENOMEM;
  588. return 0;
  589. }
  590. static void fuse_write_update_size(struct inode *inode, loff_t pos)
  591. {
  592. struct fuse_conn *fc = get_fuse_conn(inode);
  593. struct fuse_inode *fi = get_fuse_inode(inode);
  594. spin_lock(&fc->lock);
  595. fi->attr_version = ++fc->attr_version;
  596. if (pos > inode->i_size)
  597. i_size_write(inode, pos);
  598. spin_unlock(&fc->lock);
  599. }
  600. static int fuse_buffered_write(struct file *file, struct inode *inode,
  601. loff_t pos, unsigned count, struct page *page)
  602. {
  603. int err;
  604. size_t nres;
  605. struct fuse_conn *fc = get_fuse_conn(inode);
  606. unsigned offset = pos & (PAGE_CACHE_SIZE - 1);
  607. struct fuse_req *req;
  608. if (is_bad_inode(inode))
  609. return -EIO;
  610. /*
  611. * Make sure writepages on the same page are not mixed up with
  612. * plain writes.
  613. */
  614. fuse_wait_on_page_writeback(inode, page->index);
  615. req = fuse_get_req(fc);
  616. if (IS_ERR(req))
  617. return PTR_ERR(req);
  618. req->in.argpages = 1;
  619. req->num_pages = 1;
  620. req->pages[0] = page;
  621. req->page_offset = offset;
  622. nres = fuse_send_write(req, file, pos, count, NULL);
  623. err = req->out.h.error;
  624. fuse_put_request(fc, req);
  625. if (!err && !nres)
  626. err = -EIO;
  627. if (!err) {
  628. pos += nres;
  629. fuse_write_update_size(inode, pos);
  630. if (count == PAGE_CACHE_SIZE)
  631. SetPageUptodate(page);
  632. }
  633. fuse_invalidate_attr(inode);
  634. return err ? err : nres;
  635. }
  636. static int fuse_write_end(struct file *file, struct address_space *mapping,
  637. loff_t pos, unsigned len, unsigned copied,
  638. struct page *page, void *fsdata)
  639. {
  640. struct inode *inode = mapping->host;
  641. int res = 0;
  642. if (copied)
  643. res = fuse_buffered_write(file, inode, pos, copied, page);
  644. unlock_page(page);
  645. page_cache_release(page);
  646. return res;
  647. }
  648. static size_t fuse_send_write_pages(struct fuse_req *req, struct file *file,
  649. struct inode *inode, loff_t pos,
  650. size_t count)
  651. {
  652. size_t res;
  653. unsigned offset;
  654. unsigned i;
  655. for (i = 0; i < req->num_pages; i++)
  656. fuse_wait_on_page_writeback(inode, req->pages[i]->index);
  657. res = fuse_send_write(req, file, pos, count, NULL);
  658. offset = req->page_offset;
  659. count = res;
  660. for (i = 0; i < req->num_pages; i++) {
  661. struct page *page = req->pages[i];
  662. if (!req->out.h.error && !offset && count >= PAGE_CACHE_SIZE)
  663. SetPageUptodate(page);
  664. if (count > PAGE_CACHE_SIZE - offset)
  665. count -= PAGE_CACHE_SIZE - offset;
  666. else
  667. count = 0;
  668. offset = 0;
  669. unlock_page(page);
  670. page_cache_release(page);
  671. }
  672. return res;
  673. }
  674. static ssize_t fuse_fill_write_pages(struct fuse_req *req,
  675. struct address_space *mapping,
  676. struct iov_iter *ii, loff_t pos)
  677. {
  678. struct fuse_conn *fc = get_fuse_conn(mapping->host);
  679. unsigned offset = pos & (PAGE_CACHE_SIZE - 1);
  680. size_t count = 0;
  681. int err;
  682. req->in.argpages = 1;
  683. req->page_offset = offset;
  684. do {
  685. size_t tmp;
  686. struct page *page;
  687. pgoff_t index = pos >> PAGE_CACHE_SHIFT;
  688. size_t bytes = min_t(size_t, PAGE_CACHE_SIZE - offset,
  689. iov_iter_count(ii));
  690. bytes = min_t(size_t, bytes, fc->max_write - count);
  691. again:
  692. err = -EFAULT;
  693. if (iov_iter_fault_in_readable(ii, bytes))
  694. break;
  695. err = -ENOMEM;
  696. page = grab_cache_page_write_begin(mapping, index, 0);
  697. if (!page)
  698. break;
  699. if (mapping_writably_mapped(mapping))
  700. flush_dcache_page(page);
  701. pagefault_disable();
  702. tmp = iov_iter_copy_from_user_atomic(page, ii, offset, bytes);
  703. pagefault_enable();
  704. flush_dcache_page(page);
  705. if (!tmp) {
  706. unlock_page(page);
  707. page_cache_release(page);
  708. bytes = min(bytes, iov_iter_single_seg_count(ii));
  709. goto again;
  710. }
  711. err = 0;
  712. req->pages[req->num_pages] = page;
  713. req->num_pages++;
  714. iov_iter_advance(ii, tmp);
  715. count += tmp;
  716. pos += tmp;
  717. offset += tmp;
  718. if (offset == PAGE_CACHE_SIZE)
  719. offset = 0;
  720. if (!fc->big_writes)
  721. break;
  722. } while (iov_iter_count(ii) && count < fc->max_write &&
  723. req->num_pages < FUSE_MAX_PAGES_PER_REQ && offset == 0);
  724. return count > 0 ? count : err;
  725. }
  726. static ssize_t fuse_perform_write(struct file *file,
  727. struct address_space *mapping,
  728. struct iov_iter *ii, loff_t pos)
  729. {
  730. struct inode *inode = mapping->host;
  731. struct fuse_conn *fc = get_fuse_conn(inode);
  732. int err = 0;
  733. ssize_t res = 0;
  734. if (is_bad_inode(inode))
  735. return -EIO;
  736. do {
  737. struct fuse_req *req;
  738. ssize_t count;
  739. req = fuse_get_req(fc);
  740. if (IS_ERR(req)) {
  741. err = PTR_ERR(req);
  742. break;
  743. }
  744. count = fuse_fill_write_pages(req, mapping, ii, pos);
  745. if (count <= 0) {
  746. err = count;
  747. } else {
  748. size_t num_written;
  749. num_written = fuse_send_write_pages(req, file, inode,
  750. pos, count);
  751. err = req->out.h.error;
  752. if (!err) {
  753. res += num_written;
  754. pos += num_written;
  755. /* break out of the loop on short write */
  756. if (num_written != count)
  757. err = -EIO;
  758. }
  759. }
  760. fuse_put_request(fc, req);
  761. } while (!err && iov_iter_count(ii));
  762. if (res > 0)
  763. fuse_write_update_size(inode, pos);
  764. fuse_invalidate_attr(inode);
  765. return res > 0 ? res : err;
  766. }
  767. static ssize_t fuse_file_aio_write(struct kiocb *iocb, const struct iovec *iov,
  768. unsigned long nr_segs, loff_t pos)
  769. {
  770. struct file *file = iocb->ki_filp;
  771. struct address_space *mapping = file->f_mapping;
  772. size_t count = 0;
  773. ssize_t written = 0;
  774. struct inode *inode = mapping->host;
  775. ssize_t err;
  776. struct iov_iter i;
  777. WARN_ON(iocb->ki_pos != pos);
  778. err = generic_segment_checks(iov, &nr_segs, &count, VERIFY_READ);
  779. if (err)
  780. return err;
  781. mutex_lock(&inode->i_mutex);
  782. vfs_check_frozen(inode->i_sb, SB_FREEZE_WRITE);
  783. /* We can write back this queue in page reclaim */
  784. current->backing_dev_info = mapping->backing_dev_info;
  785. err = generic_write_checks(file, &pos, &count, S_ISBLK(inode->i_mode));
  786. if (err)
  787. goto out;
  788. if (count == 0)
  789. goto out;
  790. err = file_remove_suid(file);
  791. if (err)
  792. goto out;
  793. file_update_time(file);
  794. iov_iter_init(&i, iov, nr_segs, count, 0);
  795. written = fuse_perform_write(file, mapping, &i, pos);
  796. if (written >= 0)
  797. iocb->ki_pos = pos + written;
  798. out:
  799. current->backing_dev_info = NULL;
  800. mutex_unlock(&inode->i_mutex);
  801. return written ? written : err;
  802. }
  803. static void fuse_release_user_pages(struct fuse_req *req, int write)
  804. {
  805. unsigned i;
  806. for (i = 0; i < req->num_pages; i++) {
  807. struct page *page = req->pages[i];
  808. if (write)
  809. set_page_dirty_lock(page);
  810. put_page(page);
  811. }
  812. }
  813. static int fuse_get_user_pages(struct fuse_req *req, const char __user *buf,
  814. size_t *nbytesp, int write)
  815. {
  816. size_t nbytes = *nbytesp;
  817. unsigned long user_addr = (unsigned long) buf;
  818. unsigned offset = user_addr & ~PAGE_MASK;
  819. int npages;
  820. /* Special case for kernel I/O: can copy directly into the buffer */
  821. if (segment_eq(get_fs(), KERNEL_DS)) {
  822. if (write)
  823. req->in.args[1].value = (void *) user_addr;
  824. else
  825. req->out.args[0].value = (void *) user_addr;
  826. return 0;
  827. }
  828. nbytes = min_t(size_t, nbytes, FUSE_MAX_PAGES_PER_REQ << PAGE_SHIFT);
  829. npages = (nbytes + offset + PAGE_SIZE - 1) >> PAGE_SHIFT;
  830. npages = clamp(npages, 1, FUSE_MAX_PAGES_PER_REQ);
  831. down_read(&current->mm->mmap_sem);
  832. npages = get_user_pages(current, current->mm, user_addr, npages, !write,
  833. 0, req->pages, NULL);
  834. up_read(&current->mm->mmap_sem);
  835. if (npages < 0)
  836. return npages;
  837. req->num_pages = npages;
  838. req->page_offset = offset;
  839. if (write)
  840. req->in.argpages = 1;
  841. else
  842. req->out.argpages = 1;
  843. nbytes = (req->num_pages << PAGE_SHIFT) - req->page_offset;
  844. *nbytesp = min(*nbytesp, nbytes);
  845. return 0;
  846. }
  847. ssize_t fuse_direct_io(struct file *file, const char __user *buf,
  848. size_t count, loff_t *ppos, int write)
  849. {
  850. struct fuse_file *ff = file->private_data;
  851. struct fuse_conn *fc = ff->fc;
  852. size_t nmax = write ? fc->max_write : fc->max_read;
  853. loff_t pos = *ppos;
  854. ssize_t res = 0;
  855. struct fuse_req *req;
  856. req = fuse_get_req(fc);
  857. if (IS_ERR(req))
  858. return PTR_ERR(req);
  859. while (count) {
  860. size_t nres;
  861. fl_owner_t owner = current->files;
  862. size_t nbytes = min(count, nmax);
  863. int err = fuse_get_user_pages(req, buf, &nbytes, write);
  864. if (err) {
  865. res = err;
  866. break;
  867. }
  868. if (write)
  869. nres = fuse_send_write(req, file, pos, nbytes, owner);
  870. else
  871. nres = fuse_send_read(req, file, pos, nbytes, owner);
  872. fuse_release_user_pages(req, !write);
  873. if (req->out.h.error) {
  874. if (!res)
  875. res = req->out.h.error;
  876. break;
  877. } else if (nres > nbytes) {
  878. res = -EIO;
  879. break;
  880. }
  881. count -= nres;
  882. res += nres;
  883. pos += nres;
  884. buf += nres;
  885. if (nres != nbytes)
  886. break;
  887. if (count) {
  888. fuse_put_request(fc, req);
  889. req = fuse_get_req(fc);
  890. if (IS_ERR(req))
  891. break;
  892. }
  893. }
  894. if (!IS_ERR(req))
  895. fuse_put_request(fc, req);
  896. if (res > 0)
  897. *ppos = pos;
  898. return res;
  899. }
  900. EXPORT_SYMBOL_GPL(fuse_direct_io);
  901. static ssize_t fuse_direct_read(struct file *file, char __user *buf,
  902. size_t count, loff_t *ppos)
  903. {
  904. ssize_t res;
  905. struct inode *inode = file->f_path.dentry->d_inode;
  906. if (is_bad_inode(inode))
  907. return -EIO;
  908. res = fuse_direct_io(file, buf, count, ppos, 0);
  909. fuse_invalidate_attr(inode);
  910. return res;
  911. }
  912. static ssize_t fuse_direct_write(struct file *file, const char __user *buf,
  913. size_t count, loff_t *ppos)
  914. {
  915. struct inode *inode = file->f_path.dentry->d_inode;
  916. ssize_t res;
  917. if (is_bad_inode(inode))
  918. return -EIO;
  919. /* Don't allow parallel writes to the same file */
  920. mutex_lock(&inode->i_mutex);
  921. res = generic_write_checks(file, ppos, &count, 0);
  922. if (!res) {
  923. res = fuse_direct_io(file, buf, count, ppos, 1);
  924. if (res > 0)
  925. fuse_write_update_size(inode, *ppos);
  926. }
  927. mutex_unlock(&inode->i_mutex);
  928. fuse_invalidate_attr(inode);
  929. return res;
  930. }
  931. static void fuse_writepage_free(struct fuse_conn *fc, struct fuse_req *req)
  932. {
  933. __free_page(req->pages[0]);
  934. fuse_file_put(req->ff);
  935. }
  936. static void fuse_writepage_finish(struct fuse_conn *fc, struct fuse_req *req)
  937. {
  938. struct inode *inode = req->inode;
  939. struct fuse_inode *fi = get_fuse_inode(inode);
  940. struct backing_dev_info *bdi = inode->i_mapping->backing_dev_info;
  941. list_del(&req->writepages_entry);
  942. dec_bdi_stat(bdi, BDI_WRITEBACK);
  943. dec_zone_page_state(req->pages[0], NR_WRITEBACK_TEMP);
  944. bdi_writeout_inc(bdi);
  945. wake_up(&fi->page_waitq);
  946. }
  947. /* Called under fc->lock, may release and reacquire it */
  948. static void fuse_send_writepage(struct fuse_conn *fc, struct fuse_req *req)
  949. __releases(&fc->lock)
  950. __acquires(&fc->lock)
  951. {
  952. struct fuse_inode *fi = get_fuse_inode(req->inode);
  953. loff_t size = i_size_read(req->inode);
  954. struct fuse_write_in *inarg = &req->misc.write.in;
  955. if (!fc->connected)
  956. goto out_free;
  957. if (inarg->offset + PAGE_CACHE_SIZE <= size) {
  958. inarg->size = PAGE_CACHE_SIZE;
  959. } else if (inarg->offset < size) {
  960. inarg->size = size & (PAGE_CACHE_SIZE - 1);
  961. } else {
  962. /* Got truncated off completely */
  963. goto out_free;
  964. }
  965. req->in.args[1].size = inarg->size;
  966. fi->writectr++;
  967. fuse_request_send_background_locked(fc, req);
  968. return;
  969. out_free:
  970. fuse_writepage_finish(fc, req);
  971. spin_unlock(&fc->lock);
  972. fuse_writepage_free(fc, req);
  973. fuse_put_request(fc, req);
  974. spin_lock(&fc->lock);
  975. }
  976. /*
  977. * If fi->writectr is positive (no truncate or fsync going on) send
  978. * all queued writepage requests.
  979. *
  980. * Called with fc->lock
  981. */
  982. void fuse_flush_writepages(struct inode *inode)
  983. __releases(&fc->lock)
  984. __acquires(&fc->lock)
  985. {
  986. struct fuse_conn *fc = get_fuse_conn(inode);
  987. struct fuse_inode *fi = get_fuse_inode(inode);
  988. struct fuse_req *req;
  989. while (fi->writectr >= 0 && !list_empty(&fi->queued_writes)) {
  990. req = list_entry(fi->queued_writes.next, struct fuse_req, list);
  991. list_del_init(&req->list);
  992. fuse_send_writepage(fc, req);
  993. }
  994. }
  995. static void fuse_writepage_end(struct fuse_conn *fc, struct fuse_req *req)
  996. {
  997. struct inode *inode = req->inode;
  998. struct fuse_inode *fi = get_fuse_inode(inode);
  999. mapping_set_error(inode->i_mapping, req->out.h.error);
  1000. spin_lock(&fc->lock);
  1001. fi->writectr--;
  1002. fuse_writepage_finish(fc, req);
  1003. spin_unlock(&fc->lock);
  1004. fuse_writepage_free(fc, req);
  1005. }
  1006. static int fuse_writepage_locked(struct page *page)
  1007. {
  1008. struct address_space *mapping = page->mapping;
  1009. struct inode *inode = mapping->host;
  1010. struct fuse_conn *fc = get_fuse_conn(inode);
  1011. struct fuse_inode *fi = get_fuse_inode(inode);
  1012. struct fuse_req *req;
  1013. struct fuse_file *ff;
  1014. struct page *tmp_page;
  1015. set_page_writeback(page);
  1016. req = fuse_request_alloc_nofs();
  1017. if (!req)
  1018. goto err;
  1019. tmp_page = alloc_page(GFP_NOFS | __GFP_HIGHMEM);
  1020. if (!tmp_page)
  1021. goto err_free;
  1022. spin_lock(&fc->lock);
  1023. BUG_ON(list_empty(&fi->write_files));
  1024. ff = list_entry(fi->write_files.next, struct fuse_file, write_entry);
  1025. req->ff = fuse_file_get(ff);
  1026. spin_unlock(&fc->lock);
  1027. fuse_write_fill(req, ff, page_offset(page), 0);
  1028. copy_highpage(tmp_page, page);
  1029. req->misc.write.in.write_flags |= FUSE_WRITE_CACHE;
  1030. req->in.argpages = 1;
  1031. req->num_pages = 1;
  1032. req->pages[0] = tmp_page;
  1033. req->page_offset = 0;
  1034. req->end = fuse_writepage_end;
  1035. req->inode = inode;
  1036. inc_bdi_stat(mapping->backing_dev_info, BDI_WRITEBACK);
  1037. inc_zone_page_state(tmp_page, NR_WRITEBACK_TEMP);
  1038. end_page_writeback(page);
  1039. spin_lock(&fc->lock);
  1040. list_add(&req->writepages_entry, &fi->writepages);
  1041. list_add_tail(&req->list, &fi->queued_writes);
  1042. fuse_flush_writepages(inode);
  1043. spin_unlock(&fc->lock);
  1044. return 0;
  1045. err_free:
  1046. fuse_request_free(req);
  1047. err:
  1048. end_page_writeback(page);
  1049. return -ENOMEM;
  1050. }
  1051. static int fuse_writepage(struct page *page, struct writeback_control *wbc)
  1052. {
  1053. int err;
  1054. err = fuse_writepage_locked(page);
  1055. unlock_page(page);
  1056. return err;
  1057. }
  1058. static int fuse_launder_page(struct page *page)
  1059. {
  1060. int err = 0;
  1061. if (clear_page_dirty_for_io(page)) {
  1062. struct inode *inode = page->mapping->host;
  1063. err = fuse_writepage_locked(page);
  1064. if (!err)
  1065. fuse_wait_on_page_writeback(inode, page->index);
  1066. }
  1067. return err;
  1068. }
  1069. /*
  1070. * Write back dirty pages now, because there may not be any suitable
  1071. * open files later
  1072. */
  1073. static void fuse_vma_close(struct vm_area_struct *vma)
  1074. {
  1075. filemap_write_and_wait(vma->vm_file->f_mapping);
  1076. }
  1077. /*
  1078. * Wait for writeback against this page to complete before allowing it
  1079. * to be marked dirty again, and hence written back again, possibly
  1080. * before the previous writepage completed.
  1081. *
  1082. * Block here, instead of in ->writepage(), so that the userspace fs
  1083. * can only block processes actually operating on the filesystem.
  1084. *
  1085. * Otherwise unprivileged userspace fs would be able to block
  1086. * unrelated:
  1087. *
  1088. * - page migration
  1089. * - sync(2)
  1090. * - try_to_free_pages() with order > PAGE_ALLOC_COSTLY_ORDER
  1091. */
  1092. static int fuse_page_mkwrite(struct vm_area_struct *vma, struct vm_fault *vmf)
  1093. {
  1094. struct page *page = vmf->page;
  1095. /*
  1096. * Don't use page->mapping as it may become NULL from a
  1097. * concurrent truncate.
  1098. */
  1099. struct inode *inode = vma->vm_file->f_mapping->host;
  1100. fuse_wait_on_page_writeback(inode, page->index);
  1101. return 0;
  1102. }
  1103. static const struct vm_operations_struct fuse_file_vm_ops = {
  1104. .close = fuse_vma_close,
  1105. .fault = filemap_fault,
  1106. .page_mkwrite = fuse_page_mkwrite,
  1107. };
  1108. static int fuse_file_mmap(struct file *file, struct vm_area_struct *vma)
  1109. {
  1110. if ((vma->vm_flags & VM_SHARED) && (vma->vm_flags & VM_MAYWRITE)) {
  1111. struct inode *inode = file->f_dentry->d_inode;
  1112. struct fuse_conn *fc = get_fuse_conn(inode);
  1113. struct fuse_inode *fi = get_fuse_inode(inode);
  1114. struct fuse_file *ff = file->private_data;
  1115. /*
  1116. * file may be written through mmap, so chain it onto the
  1117. * inodes's write_file list
  1118. */
  1119. spin_lock(&fc->lock);
  1120. if (list_empty(&ff->write_entry))
  1121. list_add(&ff->write_entry, &fi->write_files);
  1122. spin_unlock(&fc->lock);
  1123. }
  1124. file_accessed(file);
  1125. vma->vm_ops = &fuse_file_vm_ops;
  1126. return 0;
  1127. }
  1128. static int fuse_direct_mmap(struct file *file, struct vm_area_struct *vma)
  1129. {
  1130. /* Can't provide the coherency needed for MAP_SHARED */
  1131. if (vma->vm_flags & VM_MAYSHARE)
  1132. return -ENODEV;
  1133. invalidate_inode_pages2(file->f_mapping);
  1134. return generic_file_mmap(file, vma);
  1135. }
  1136. static int convert_fuse_file_lock(const struct fuse_file_lock *ffl,
  1137. struct file_lock *fl)
  1138. {
  1139. switch (ffl->type) {
  1140. case F_UNLCK:
  1141. break;
  1142. case F_RDLCK:
  1143. case F_WRLCK:
  1144. if (ffl->start > OFFSET_MAX || ffl->end > OFFSET_MAX ||
  1145. ffl->end < ffl->start)
  1146. return -EIO;
  1147. fl->fl_start = ffl->start;
  1148. fl->fl_end = ffl->end;
  1149. fl->fl_pid = ffl->pid;
  1150. break;
  1151. default:
  1152. return -EIO;
  1153. }
  1154. fl->fl_type = ffl->type;
  1155. return 0;
  1156. }
  1157. static void fuse_lk_fill(struct fuse_req *req, struct file *file,
  1158. const struct file_lock *fl, int opcode, pid_t pid,
  1159. int flock)
  1160. {
  1161. struct inode *inode = file->f_path.dentry->d_inode;
  1162. struct fuse_conn *fc = get_fuse_conn(inode);
  1163. struct fuse_file *ff = file->private_data;
  1164. struct fuse_lk_in *arg = &req->misc.lk_in;
  1165. arg->fh = ff->fh;
  1166. arg->owner = fuse_lock_owner_id(fc, fl->fl_owner);
  1167. arg->lk.start = fl->fl_start;
  1168. arg->lk.end = fl->fl_end;
  1169. arg->lk.type = fl->fl_type;
  1170. arg->lk.pid = pid;
  1171. if (flock)
  1172. arg->lk_flags |= FUSE_LK_FLOCK;
  1173. req->in.h.opcode = opcode;
  1174. req->in.h.nodeid = get_node_id(inode);
  1175. req->in.numargs = 1;
  1176. req->in.args[0].size = sizeof(*arg);
  1177. req->in.args[0].value = arg;
  1178. }
  1179. static int fuse_getlk(struct file *file, struct file_lock *fl)
  1180. {
  1181. struct inode *inode = file->f_path.dentry->d_inode;
  1182. struct fuse_conn *fc = get_fuse_conn(inode);
  1183. struct fuse_req *req;
  1184. struct fuse_lk_out outarg;
  1185. int err;
  1186. req = fuse_get_req(fc);
  1187. if (IS_ERR(req))
  1188. return PTR_ERR(req);
  1189. fuse_lk_fill(req, file, fl, FUSE_GETLK, 0, 0);
  1190. req->out.numargs = 1;
  1191. req->out.args[0].size = sizeof(outarg);
  1192. req->out.args[0].value = &outarg;
  1193. fuse_request_send(fc, req);
  1194. err = req->out.h.error;
  1195. fuse_put_request(fc, req);
  1196. if (!err)
  1197. err = convert_fuse_file_lock(&outarg.lk, fl);
  1198. return err;
  1199. }
  1200. static int fuse_setlk(struct file *file, struct file_lock *fl, int flock)
  1201. {
  1202. struct inode *inode = file->f_path.dentry->d_inode;
  1203. struct fuse_conn *fc = get_fuse_conn(inode);
  1204. struct fuse_req *req;
  1205. int opcode = (fl->fl_flags & FL_SLEEP) ? FUSE_SETLKW : FUSE_SETLK;
  1206. pid_t pid = fl->fl_type != F_UNLCK ? current->tgid : 0;
  1207. int err;
  1208. if (fl->fl_lmops && fl->fl_lmops->fl_grant) {
  1209. /* NLM needs asynchronous locks, which we don't support yet */
  1210. return -ENOLCK;
  1211. }
  1212. /* Unlock on close is handled by the flush method */
  1213. if (fl->fl_flags & FL_CLOSE)
  1214. return 0;
  1215. req = fuse_get_req(fc);
  1216. if (IS_ERR(req))
  1217. return PTR_ERR(req);
  1218. fuse_lk_fill(req, file, fl, opcode, pid, flock);
  1219. fuse_request_send(fc, req);
  1220. err = req->out.h.error;
  1221. /* locking is restartable */
  1222. if (err == -EINTR)
  1223. err = -ERESTARTSYS;
  1224. fuse_put_request(fc, req);
  1225. return err;
  1226. }
  1227. static int fuse_file_lock(struct file *file, int cmd, struct file_lock *fl)
  1228. {
  1229. struct inode *inode = file->f_path.dentry->d_inode;
  1230. struct fuse_conn *fc = get_fuse_conn(inode);
  1231. int err;
  1232. if (cmd == F_CANCELLK) {
  1233. err = 0;
  1234. } else if (cmd == F_GETLK) {
  1235. if (fc->no_lock) {
  1236. posix_test_lock(file, fl);
  1237. err = 0;
  1238. } else
  1239. err = fuse_getlk(file, fl);
  1240. } else {
  1241. if (fc->no_lock)
  1242. err = posix_lock_file(file, fl, NULL);
  1243. else
  1244. err = fuse_setlk(file, fl, 0);
  1245. }
  1246. return err;
  1247. }
  1248. static int fuse_file_flock(struct file *file, int cmd, struct file_lock *fl)
  1249. {
  1250. struct inode *inode = file->f_path.dentry->d_inode;
  1251. struct fuse_conn *fc = get_fuse_conn(inode);
  1252. int err;
  1253. if (fc->no_lock) {
  1254. err = flock_lock_file_wait(file, fl);
  1255. } else {
  1256. /* emulate flock with POSIX locks */
  1257. fl->fl_owner = (fl_owner_t) file;
  1258. err = fuse_setlk(file, fl, 1);
  1259. }
  1260. return err;
  1261. }
  1262. static sector_t fuse_bmap(struct address_space *mapping, sector_t block)
  1263. {
  1264. struct inode *inode = mapping->host;
  1265. struct fuse_conn *fc = get_fuse_conn(inode);
  1266. struct fuse_req *req;
  1267. struct fuse_bmap_in inarg;
  1268. struct fuse_bmap_out outarg;
  1269. int err;
  1270. if (!inode->i_sb->s_bdev || fc->no_bmap)
  1271. return 0;
  1272. req = fuse_get_req(fc);
  1273. if (IS_ERR(req))
  1274. return 0;
  1275. memset(&inarg, 0, sizeof(inarg));
  1276. inarg.block = block;
  1277. inarg.blocksize = inode->i_sb->s_blocksize;
  1278. req->in.h.opcode = FUSE_BMAP;
  1279. req->in.h.nodeid = get_node_id(inode);
  1280. req->in.numargs = 1;
  1281. req->in.args[0].size = sizeof(inarg);
  1282. req->in.args[0].value = &inarg;
  1283. req->out.numargs = 1;
  1284. req->out.args[0].size = sizeof(outarg);
  1285. req->out.args[0].value = &outarg;
  1286. fuse_request_send(fc, req);
  1287. err = req->out.h.error;
  1288. fuse_put_request(fc, req);
  1289. if (err == -ENOSYS)
  1290. fc->no_bmap = 1;
  1291. return err ? 0 : outarg.block;
  1292. }
  1293. static loff_t fuse_file_llseek(struct file *file, loff_t offset, int origin)
  1294. {
  1295. loff_t retval;
  1296. struct inode *inode = file->f_path.dentry->d_inode;
  1297. mutex_lock(&inode->i_mutex);
  1298. switch (origin) {
  1299. case SEEK_END:
  1300. retval = fuse_update_attributes(inode, NULL, file, NULL);
  1301. if (retval)
  1302. goto exit;
  1303. offset += i_size_read(inode);
  1304. break;
  1305. case SEEK_CUR:
  1306. offset += file->f_pos;
  1307. }
  1308. retval = -EINVAL;
  1309. if (offset >= 0 && offset <= inode->i_sb->s_maxbytes) {
  1310. if (offset != file->f_pos) {
  1311. file->f_pos = offset;
  1312. file->f_version = 0;
  1313. }
  1314. retval = offset;
  1315. }
  1316. exit:
  1317. mutex_unlock(&inode->i_mutex);
  1318. return retval;
  1319. }
  1320. static int fuse_ioctl_copy_user(struct page **pages, struct iovec *iov,
  1321. unsigned int nr_segs, size_t bytes, bool to_user)
  1322. {
  1323. struct iov_iter ii;
  1324. int page_idx = 0;
  1325. if (!bytes)
  1326. return 0;
  1327. iov_iter_init(&ii, iov, nr_segs, bytes, 0);
  1328. while (iov_iter_count(&ii)) {
  1329. struct page *page = pages[page_idx++];
  1330. size_t todo = min_t(size_t, PAGE_SIZE, iov_iter_count(&ii));
  1331. void *kaddr, *map;
  1332. kaddr = map = kmap(page);
  1333. while (todo) {
  1334. char __user *uaddr = ii.iov->iov_base + ii.iov_offset;
  1335. size_t iov_len = ii.iov->iov_len - ii.iov_offset;
  1336. size_t copy = min(todo, iov_len);
  1337. size_t left;
  1338. if (!to_user)
  1339. left = copy_from_user(kaddr, uaddr, copy);
  1340. else
  1341. left = copy_to_user(uaddr, kaddr, copy);
  1342. if (unlikely(left))
  1343. return -EFAULT;
  1344. iov_iter_advance(&ii, copy);
  1345. todo -= copy;
  1346. kaddr += copy;
  1347. }
  1348. kunmap(page);
  1349. }
  1350. return 0;
  1351. }
  1352. /*
  1353. * For ioctls, there is no generic way to determine how much memory
  1354. * needs to be read and/or written. Furthermore, ioctls are allowed
  1355. * to dereference the passed pointer, so the parameter requires deep
  1356. * copying but FUSE has no idea whatsoever about what to copy in or
  1357. * out.
  1358. *
  1359. * This is solved by allowing FUSE server to retry ioctl with
  1360. * necessary in/out iovecs. Let's assume the ioctl implementation
  1361. * needs to read in the following structure.
  1362. *
  1363. * struct a {
  1364. * char *buf;
  1365. * size_t buflen;
  1366. * }
  1367. *
  1368. * On the first callout to FUSE server, inarg->in_size and
  1369. * inarg->out_size will be NULL; then, the server completes the ioctl
  1370. * with FUSE_IOCTL_RETRY set in out->flags, out->in_iovs set to 1 and
  1371. * the actual iov array to
  1372. *
  1373. * { { .iov_base = inarg.arg, .iov_len = sizeof(struct a) } }
  1374. *
  1375. * which tells FUSE to copy in the requested area and retry the ioctl.
  1376. * On the second round, the server has access to the structure and
  1377. * from that it can tell what to look for next, so on the invocation,
  1378. * it sets FUSE_IOCTL_RETRY, out->in_iovs to 2 and iov array to
  1379. *
  1380. * { { .iov_base = inarg.arg, .iov_len = sizeof(struct a) },
  1381. * { .iov_base = a.buf, .iov_len = a.buflen } }
  1382. *
  1383. * FUSE will copy both struct a and the pointed buffer from the
  1384. * process doing the ioctl and retry ioctl with both struct a and the
  1385. * buffer.
  1386. *
  1387. * This time, FUSE server has everything it needs and completes ioctl
  1388. * without FUSE_IOCTL_RETRY which finishes the ioctl call.
  1389. *
  1390. * Copying data out works the same way.
  1391. *
  1392. * Note that if FUSE_IOCTL_UNRESTRICTED is clear, the kernel
  1393. * automatically initializes in and out iovs by decoding @cmd with
  1394. * _IOC_* macros and the server is not allowed to request RETRY. This
  1395. * limits ioctl data transfers to well-formed ioctls and is the forced
  1396. * behavior for all FUSE servers.
  1397. */
  1398. long fuse_do_ioctl(struct file *file, unsigned int cmd, unsigned long arg,
  1399. unsigned int flags)
  1400. {
  1401. struct fuse_file *ff = file->private_data;
  1402. struct fuse_conn *fc = ff->fc;
  1403. struct fuse_ioctl_in inarg = {
  1404. .fh = ff->fh,
  1405. .cmd = cmd,
  1406. .arg = arg,
  1407. .flags = flags
  1408. };
  1409. struct fuse_ioctl_out outarg;
  1410. struct fuse_req *req = NULL;
  1411. struct page **pages = NULL;
  1412. struct page *iov_page = NULL;
  1413. struct iovec *in_iov = NULL, *out_iov = NULL;
  1414. unsigned int in_iovs = 0, out_iovs = 0, num_pages = 0, max_pages;
  1415. size_t in_size, out_size, transferred;
  1416. int err;
  1417. /* assume all the iovs returned by client always fits in a page */
  1418. BUILD_BUG_ON(sizeof(struct iovec) * FUSE_IOCTL_MAX_IOV > PAGE_SIZE);
  1419. err = -ENOMEM;
  1420. pages = kzalloc(sizeof(pages[0]) * FUSE_MAX_PAGES_PER_REQ, GFP_KERNEL);
  1421. iov_page = alloc_page(GFP_KERNEL);
  1422. if (!pages || !iov_page)
  1423. goto out;
  1424. /*
  1425. * If restricted, initialize IO parameters as encoded in @cmd.
  1426. * RETRY from server is not allowed.
  1427. */
  1428. if (!(flags & FUSE_IOCTL_UNRESTRICTED)) {
  1429. struct iovec *iov = page_address(iov_page);
  1430. iov->iov_base = (void __user *)arg;
  1431. iov->iov_len = _IOC_SIZE(cmd);
  1432. if (_IOC_DIR(cmd) & _IOC_WRITE) {
  1433. in_iov = iov;
  1434. in_iovs = 1;
  1435. }
  1436. if (_IOC_DIR(cmd) & _IOC_READ) {
  1437. out_iov = iov;
  1438. out_iovs = 1;
  1439. }
  1440. }
  1441. retry:
  1442. inarg.in_size = in_size = iov_length(in_iov, in_iovs);
  1443. inarg.out_size = out_size = iov_length(out_iov, out_iovs);
  1444. /*
  1445. * Out data can be used either for actual out data or iovs,
  1446. * make sure there always is at least one page.
  1447. */
  1448. out_size = max_t(size_t, out_size, PAGE_SIZE);
  1449. max_pages = DIV_ROUND_UP(max(in_size, out_size), PAGE_SIZE);
  1450. /* make sure there are enough buffer pages and init request with them */
  1451. err = -ENOMEM;
  1452. if (max_pages > FUSE_MAX_PAGES_PER_REQ)
  1453. goto out;
  1454. while (num_pages < max_pages) {
  1455. pages[num_pages] = alloc_page(GFP_KERNEL | __GFP_HIGHMEM);
  1456. if (!pages[num_pages])
  1457. goto out;
  1458. num_pages++;
  1459. }
  1460. req = fuse_get_req(fc);
  1461. if (IS_ERR(req)) {
  1462. err = PTR_ERR(req);
  1463. req = NULL;
  1464. goto out;
  1465. }
  1466. memcpy(req->pages, pages, sizeof(req->pages[0]) * num_pages);
  1467. req->num_pages = num_pages;
  1468. /* okay, let's send it to the client */
  1469. req->in.h.opcode = FUSE_IOCTL;
  1470. req->in.h.nodeid = ff->nodeid;
  1471. req->in.numargs = 1;
  1472. req->in.args[0].size = sizeof(inarg);
  1473. req->in.args[0].value = &inarg;
  1474. if (in_size) {
  1475. req->in.numargs++;
  1476. req->in.args[1].size = in_size;
  1477. req->in.argpages = 1;
  1478. err = fuse_ioctl_copy_user(pages, in_iov, in_iovs, in_size,
  1479. false);
  1480. if (err)
  1481. goto out;
  1482. }
  1483. req->out.numargs = 2;
  1484. req->out.args[0].size = sizeof(outarg);
  1485. req->out.args[0].value = &outarg;
  1486. req->out.args[1].size = out_size;
  1487. req->out.argpages = 1;
  1488. req->out.argvar = 1;
  1489. fuse_request_send(fc, req);
  1490. err = req->out.h.error;
  1491. transferred = req->out.args[1].size;
  1492. fuse_put_request(fc, req);
  1493. req = NULL;
  1494. if (err)
  1495. goto out;
  1496. /* did it ask for retry? */
  1497. if (outarg.flags & FUSE_IOCTL_RETRY) {
  1498. char *vaddr;
  1499. /* no retry if in restricted mode */
  1500. err = -EIO;
  1501. if (!(flags & FUSE_IOCTL_UNRESTRICTED))
  1502. goto out;
  1503. in_iovs = outarg.in_iovs;
  1504. out_iovs = outarg.out_iovs;
  1505. /*
  1506. * Make sure things are in boundary, separate checks
  1507. * are to protect against overflow.
  1508. */
  1509. err = -ENOMEM;
  1510. if (in_iovs > FUSE_IOCTL_MAX_IOV ||
  1511. out_iovs > FUSE_IOCTL_MAX_IOV ||
  1512. in_iovs + out_iovs > FUSE_IOCTL_MAX_IOV)
  1513. goto out;
  1514. err = -EIO;
  1515. if ((in_iovs + out_iovs) * sizeof(struct iovec) != transferred)
  1516. goto out;
  1517. /* okay, copy in iovs and retry */
  1518. vaddr = kmap_atomic(pages[0], KM_USER0);
  1519. memcpy(page_address(iov_page), vaddr, transferred);
  1520. kunmap_atomic(vaddr, KM_USER0);
  1521. in_iov = page_address(iov_page);
  1522. out_iov = in_iov + in_iovs;
  1523. goto retry;
  1524. }
  1525. err = -EIO;
  1526. if (transferred > inarg.out_size)
  1527. goto out;
  1528. err = fuse_ioctl_copy_user(pages, out_iov, out_iovs, transferred, true);
  1529. out:
  1530. if (req)
  1531. fuse_put_request(fc, req);
  1532. if (iov_page)
  1533. __free_page(iov_page);
  1534. while (num_pages)
  1535. __free_page(pages[--num_pages]);
  1536. kfree(pages);
  1537. return err ? err : outarg.result;
  1538. }
  1539. EXPORT_SYMBOL_GPL(fuse_do_ioctl);
  1540. static long fuse_file_ioctl_common(struct file *file, unsigned int cmd,
  1541. unsigned long arg, unsigned int flags)
  1542. {
  1543. struct inode *inode = file->f_dentry->d_inode;
  1544. struct fuse_conn *fc = get_fuse_conn(inode);
  1545. if (!fuse_allow_task(fc, current))
  1546. return -EACCES;
  1547. if (is_bad_inode(inode))
  1548. return -EIO;
  1549. return fuse_do_ioctl(file, cmd, arg, flags);
  1550. }
  1551. static long fuse_file_ioctl(struct file *file, unsigned int cmd,
  1552. unsigned long arg)
  1553. {
  1554. return fuse_file_ioctl_common(file, cmd, arg, 0);
  1555. }
  1556. static long fuse_file_compat_ioctl(struct file *file, unsigned int cmd,
  1557. unsigned long arg)
  1558. {
  1559. return fuse_file_ioctl_common(file, cmd, arg, FUSE_IOCTL_COMPAT);
  1560. }
  1561. /*
  1562. * All files which have been polled are linked to RB tree
  1563. * fuse_conn->polled_files which is indexed by kh. Walk the tree and
  1564. * find the matching one.
  1565. */
  1566. static struct rb_node **fuse_find_polled_node(struct fuse_conn *fc, u64 kh,
  1567. struct rb_node **parent_out)
  1568. {
  1569. struct rb_node **link = &fc->polled_files.rb_node;
  1570. struct rb_node *last = NULL;
  1571. while (*link) {
  1572. struct fuse_file *ff;
  1573. last = *link;
  1574. ff = rb_entry(last, struct fuse_file, polled_node);
  1575. if (kh < ff->kh)
  1576. link = &last->rb_left;
  1577. else if (kh > ff->kh)
  1578. link = &last->rb_right;
  1579. else
  1580. return link;
  1581. }
  1582. if (parent_out)
  1583. *parent_out = last;
  1584. return link;
  1585. }
  1586. /*
  1587. * The file is about to be polled. Make sure it's on the polled_files
  1588. * RB tree. Note that files once added to the polled_files tree are
  1589. * not removed before the file is released. This is because a file
  1590. * polled once is likely to be polled again.
  1591. */
  1592. static void fuse_register_polled_file(struct fuse_conn *fc,
  1593. struct fuse_file *ff)
  1594. {
  1595. spin_lock(&fc->lock);
  1596. if (RB_EMPTY_NODE(&ff->polled_node)) {
  1597. struct rb_node **link, *parent;
  1598. link = fuse_find_polled_node(fc, ff->kh, &parent);
  1599. BUG_ON(*link);
  1600. rb_link_node(&ff->polled_node, parent, link);
  1601. rb_insert_color(&ff->polled_node, &fc->polled_files);
  1602. }
  1603. spin_unlock(&fc->lock);
  1604. }
  1605. unsigned fuse_file_poll(struct file *file, poll_table *wait)
  1606. {
  1607. struct fuse_file *ff = file->private_data;
  1608. struct fuse_conn *fc = ff->fc;
  1609. struct fuse_poll_in inarg = { .fh = ff->fh, .kh = ff->kh };
  1610. struct fuse_poll_out outarg;
  1611. struct fuse_req *req;
  1612. int err;
  1613. if (fc->no_poll)
  1614. return DEFAULT_POLLMASK;
  1615. poll_wait(file, &ff->poll_wait, wait);
  1616. /*
  1617. * Ask for notification iff there's someone waiting for it.
  1618. * The client may ignore the flag and always notify.
  1619. */
  1620. if (waitqueue_active(&ff->poll_wait)) {
  1621. inarg.flags |= FUSE_POLL_SCHEDULE_NOTIFY;
  1622. fuse_register_polled_file(fc, ff);
  1623. }
  1624. req = fuse_get_req(fc);
  1625. if (IS_ERR(req))
  1626. return POLLERR;
  1627. req->in.h.opcode = FUSE_POLL;
  1628. req->in.h.nodeid = ff->nodeid;
  1629. req->in.numargs = 1;
  1630. req->in.args[0].size = sizeof(inarg);
  1631. req->in.args[0].value = &inarg;
  1632. req->out.numargs = 1;
  1633. req->out.args[0].size = sizeof(outarg);
  1634. req->out.args[0].value = &outarg;
  1635. fuse_request_send(fc, req);
  1636. err = req->out.h.error;
  1637. fuse_put_request(fc, req);
  1638. if (!err)
  1639. return outarg.revents;
  1640. if (err == -ENOSYS) {
  1641. fc->no_poll = 1;
  1642. return DEFAULT_POLLMASK;
  1643. }
  1644. return POLLERR;
  1645. }
  1646. EXPORT_SYMBOL_GPL(fuse_file_poll);
  1647. /*
  1648. * This is called from fuse_handle_notify() on FUSE_NOTIFY_POLL and
  1649. * wakes up the poll waiters.
  1650. */
  1651. int fuse_notify_poll_wakeup(struct fuse_conn *fc,
  1652. struct fuse_notify_poll_wakeup_out *outarg)
  1653. {
  1654. u64 kh = outarg->kh;
  1655. struct rb_node **link;
  1656. spin_lock(&fc->lock);
  1657. link = fuse_find_polled_node(fc, kh, NULL);
  1658. if (*link) {
  1659. struct fuse_file *ff;
  1660. ff = rb_entry(*link, struct fuse_file, polled_node);
  1661. wake_up_interruptible_sync(&ff->poll_wait);
  1662. }
  1663. spin_unlock(&fc->lock);
  1664. return 0;
  1665. }
  1666. static const struct file_operations fuse_file_operations = {
  1667. .llseek = fuse_file_llseek,
  1668. .read = do_sync_read,
  1669. .aio_read = fuse_file_aio_read,
  1670. .write = do_sync_write,
  1671. .aio_write = fuse_file_aio_write,
  1672. .mmap = fuse_file_mmap,
  1673. .open = fuse_open,
  1674. .flush = fuse_flush,
  1675. .release = fuse_release,
  1676. .fsync = fuse_fsync,
  1677. .lock = fuse_file_lock,
  1678. .flock = fuse_file_flock,
  1679. .splice_read = generic_file_splice_read,
  1680. .unlocked_ioctl = fuse_file_ioctl,
  1681. .compat_ioctl = fuse_file_compat_ioctl,
  1682. .poll = fuse_file_poll,
  1683. };
  1684. static const struct file_operations fuse_direct_io_file_operations = {
  1685. .llseek = fuse_file_llseek,
  1686. .read = fuse_direct_read,
  1687. .write = fuse_direct_write,
  1688. .mmap = fuse_direct_mmap,
  1689. .open = fuse_open,
  1690. .flush = fuse_flush,
  1691. .release = fuse_release,
  1692. .fsync = fuse_fsync,
  1693. .lock = fuse_file_lock,
  1694. .flock = fuse_file_flock,
  1695. .unlocked_ioctl = fuse_file_ioctl,
  1696. .compat_ioctl = fuse_file_compat_ioctl,
  1697. .poll = fuse_file_poll,
  1698. /* no splice_read */
  1699. };
  1700. static const struct address_space_operations fuse_file_aops = {
  1701. .readpage = fuse_readpage,
  1702. .writepage = fuse_writepage,
  1703. .launder_page = fuse_launder_page,
  1704. .write_begin = fuse_write_begin,
  1705. .write_end = fuse_write_end,
  1706. .readpages = fuse_readpages,
  1707. .set_page_dirty = __set_page_dirty_nobuffers,
  1708. .bmap = fuse_bmap,
  1709. };
  1710. void fuse_init_file_inode(struct inode *inode)
  1711. {
  1712. inode->i_fop = &fuse_file_operations;
  1713. inode->i_data.a_ops = &fuse_file_aops;
  1714. }