vfs_lookup.c revision 1.52 1 1.52 yamt /* $NetBSD: vfs_lookup.c,v 1.52 2003/12/06 14:16:11 yamt Exp $ */
2 1.13 cgd
3 1.10 cgd /*
4 1.12 mycroft * Copyright (c) 1982, 1986, 1989, 1993
5 1.12 mycroft * The Regents of the University of California. All rights reserved.
6 1.10 cgd * (c) UNIX System Laboratories, Inc.
7 1.10 cgd * All or some portions of this file are derived from material licensed
8 1.10 cgd * to the University of California by American Telephone and Telegraph
9 1.10 cgd * Co. or Unix System Laboratories, Inc. and are reproduced herein with
10 1.10 cgd * the permission of UNIX System Laboratories, Inc.
11 1.10 cgd *
12 1.10 cgd * Redistribution and use in source and binary forms, with or without
13 1.10 cgd * modification, are permitted provided that the following conditions
14 1.10 cgd * are met:
15 1.10 cgd * 1. Redistributions of source code must retain the above copyright
16 1.10 cgd * notice, this list of conditions and the following disclaimer.
17 1.10 cgd * 2. Redistributions in binary form must reproduce the above copyright
18 1.10 cgd * notice, this list of conditions and the following disclaimer in the
19 1.10 cgd * documentation and/or other materials provided with the distribution.
20 1.49 agc * 3. Neither the name of the University nor the names of its contributors
21 1.10 cgd * may be used to endorse or promote products derived from this software
22 1.10 cgd * without specific prior written permission.
23 1.10 cgd *
24 1.10 cgd * THIS SOFTWARE IS PROVIDED BY THE REGENTS AND CONTRIBUTORS ``AS IS'' AND
25 1.10 cgd * ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE
26 1.10 cgd * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE
27 1.10 cgd * ARE DISCLAIMED. IN NO EVENT SHALL THE REGENTS OR CONTRIBUTORS BE LIABLE
28 1.10 cgd * FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL
29 1.10 cgd * DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS
30 1.10 cgd * OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION)
31 1.10 cgd * HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT
32 1.10 cgd * LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY
33 1.10 cgd * OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF
34 1.10 cgd * SUCH DAMAGE.
35 1.10 cgd *
36 1.26 fvdl * @(#)vfs_lookup.c 8.10 (Berkeley) 5/27/95
37 1.10 cgd */
38 1.38 lukem
39 1.38 lukem #include <sys/cdefs.h>
40 1.52 yamt __KERNEL_RCSID(0, "$NetBSD: vfs_lookup.c,v 1.52 2003/12/06 14:16:11 yamt Exp $");
41 1.27 thorpej
42 1.27 thorpej #include "opt_ktrace.h"
43 1.50 cb #include "opt_systrace.h"
44 1.10 cgd
45 1.10 cgd #include <sys/param.h>
46 1.15 cgd #include <sys/systm.h>
47 1.10 cgd #include <sys/syslimits.h>
48 1.10 cgd #include <sys/time.h>
49 1.10 cgd #include <sys/namei.h>
50 1.10 cgd #include <sys/vnode.h>
51 1.10 cgd #include <sys/mount.h>
52 1.10 cgd #include <sys/errno.h>
53 1.39 lukem #include <sys/filedesc.h>
54 1.39 lukem #include <sys/hash.h>
55 1.10 cgd #include <sys/malloc.h>
56 1.10 cgd #include <sys/proc.h>
57 1.40 wrstuden #include <sys/syslog.h>
58 1.12 mycroft
59 1.10 cgd #ifdef KTRACE
60 1.10 cgd #include <sys/ktrace.h>
61 1.10 cgd #endif
62 1.50 cb #ifdef SYSTRACE
63 1.50 cb #include <sys/systrace.h>
64 1.50 cb #endif
65 1.16 christos
66 1.35 thorpej struct pool pnbuf_pool; /* pathname buffer pool */
67 1.37 thorpej struct pool_cache pnbuf_cache; /* pathname buffer cache */
68 1.44 thorpej
69 1.44 thorpej MALLOC_DEFINE(M_NAMEI, "namei", "namei path buffer");
70 1.35 thorpej
71 1.10 cgd /*
72 1.10 cgd * Convert a pathname into a pointer to a locked inode.
73 1.10 cgd *
74 1.10 cgd * The FOLLOW flag is set when symbolic links are to be followed
75 1.10 cgd * when they occur at the end of the name translation process.
76 1.10 cgd * Symbolic links are always followed for all other pathname
77 1.10 cgd * components other than the last.
78 1.10 cgd *
79 1.10 cgd * The segflg defines whether the name is to be copied from user
80 1.10 cgd * space or kernel space.
81 1.10 cgd *
82 1.10 cgd * Overall outline of namei:
83 1.10 cgd *
84 1.10 cgd * copy in name
85 1.10 cgd * get starting directory
86 1.10 cgd * while (!done && !error) {
87 1.10 cgd * call lookup to search path.
88 1.10 cgd * if symbolic link, massage name in buffer and continue
89 1.10 cgd * }
90 1.10 cgd */
91 1.12 mycroft int
92 1.12 mycroft namei(ndp)
93 1.33 augustss struct nameidata *ndp;
94 1.10 cgd {
95 1.30 thorpej struct cwdinfo *cwdi; /* pointer to cwd state */
96 1.33 augustss char *cp; /* pointer into pathname argument */
97 1.33 augustss struct vnode *dp; /* the directory we are searching */
98 1.10 cgd struct iovec aiov; /* uio for reading symbolic links */
99 1.10 cgd struct uio auio;
100 1.23 mycroft int error, linklen;
101 1.12 mycroft struct componentname *cnp = &ndp->ni_cnd;
102 1.10 cgd
103 1.12 mycroft #ifdef DIAGNOSTIC
104 1.48 fvdl if (!cnp->cn_cred || !cnp->cn_proc)
105 1.12 mycroft panic ("namei: bad cred/proc");
106 1.12 mycroft if (cnp->cn_nameiop & (~OPMASK))
107 1.12 mycroft panic ("namei: nameiop contaminated with flags");
108 1.12 mycroft if (cnp->cn_flags & OPMASK)
109 1.12 mycroft panic ("namei: flags contaminated with nameiops");
110 1.12 mycroft #endif
111 1.48 fvdl cwdi = cnp->cn_proc->p_cwdi;
112 1.10 cgd
113 1.10 cgd /*
114 1.10 cgd * Get a buffer for the name to be translated, and copy the
115 1.10 cgd * name into the buffer.
116 1.10 cgd */
117 1.12 mycroft if ((cnp->cn_flags & HASBUF) == 0)
118 1.35 thorpej cnp->cn_pnbuf = PNBUF_GET();
119 1.10 cgd if (ndp->ni_segflg == UIO_SYSSPACE)
120 1.12 mycroft error = copystr(ndp->ni_dirp, cnp->cn_pnbuf,
121 1.10 cgd MAXPATHLEN, &ndp->ni_pathlen);
122 1.10 cgd else
123 1.12 mycroft error = copyinstr(ndp->ni_dirp, cnp->cn_pnbuf,
124 1.10 cgd MAXPATHLEN, &ndp->ni_pathlen);
125 1.21 kleink
126 1.21 kleink /*
127 1.21 kleink * POSIX.1 requirement: "" is not a valid file name.
128 1.21 kleink */
129 1.21 kleink if (!error && ndp->ni_pathlen == 1)
130 1.21 kleink error = ENOENT;
131 1.21 kleink
132 1.10 cgd if (error) {
133 1.35 thorpej PNBUF_PUT(cnp->cn_pnbuf);
134 1.10 cgd ndp->ni_vp = NULL;
135 1.10 cgd return (error);
136 1.10 cgd }
137 1.10 cgd ndp->ni_loopcnt = 0;
138 1.21 kleink
139 1.10 cgd #ifdef KTRACE
140 1.48 fvdl if (KTRPOINT(cnp->cn_proc, KTR_NAMEI))
141 1.48 fvdl ktrnamei(cnp->cn_proc, cnp->cn_pnbuf);
142 1.50 cb #endif
143 1.50 cb #ifdef SYSTRACE
144 1.50 cb if (ISSET(cnp->cn_proc->p_flag, P_SYSTRACE))
145 1.50 cb systrace_namei(ndp);
146 1.10 cgd #endif
147 1.10 cgd
148 1.10 cgd /*
149 1.10 cgd * Get starting point for the translation.
150 1.10 cgd */
151 1.30 thorpej if ((ndp->ni_rootdir = cwdi->cwdi_rdir) == NULL)
152 1.11 cgd ndp->ni_rootdir = rootvnode;
153 1.23 mycroft /*
154 1.23 mycroft * Check if starting from root directory or current directory.
155 1.23 mycroft */
156 1.23 mycroft if (cnp->cn_pnbuf[0] == '/') {
157 1.23 mycroft dp = ndp->ni_rootdir;
158 1.23 mycroft VREF(dp);
159 1.23 mycroft } else {
160 1.30 thorpej dp = cwdi->cwdi_cdir;
161 1.23 mycroft VREF(dp);
162 1.23 mycroft }
163 1.10 cgd for (;;) {
164 1.45 erh if (!dp->v_mount)
165 1.45 erh {
166 1.45 erh /* Give up if the directory is no longer mounted */
167 1.45 erh PNBUF_PUT(cnp->cn_pnbuf);
168 1.45 erh return (ENOENT);
169 1.45 erh }
170 1.12 mycroft cnp->cn_nameptr = cnp->cn_pnbuf;
171 1.10 cgd ndp->ni_startdir = dp;
172 1.16 christos if ((error = lookup(ndp)) != 0) {
173 1.35 thorpej PNBUF_PUT(cnp->cn_pnbuf);
174 1.10 cgd return (error);
175 1.10 cgd }
176 1.10 cgd /*
177 1.10 cgd * Check for symbolic link
178 1.10 cgd */
179 1.12 mycroft if ((cnp->cn_flags & ISSYMLINK) == 0) {
180 1.12 mycroft if ((cnp->cn_flags & (SAVENAME | SAVESTART)) == 0)
181 1.35 thorpej PNBUF_PUT(cnp->cn_pnbuf);
182 1.10 cgd else
183 1.12 mycroft cnp->cn_flags |= HASBUF;
184 1.10 cgd return (0);
185 1.10 cgd }
186 1.29 wrstuden if ((cnp->cn_flags & LOCKPARENT) && (cnp->cn_flags & ISLASTCN))
187 1.26 fvdl VOP_UNLOCK(ndp->ni_dvp, 0);
188 1.10 cgd if (ndp->ni_loopcnt++ >= MAXSYMLINKS) {
189 1.10 cgd error = ELOOP;
190 1.10 cgd break;
191 1.10 cgd }
192 1.25 enami if (ndp->ni_vp->v_mount->mnt_flag & MNT_SYMPERM) {
193 1.25 enami error = VOP_ACCESS(ndp->ni_vp, VEXEC, cnp->cn_cred,
194 1.48 fvdl cnp->cn_proc);
195 1.25 enami if (error != 0)
196 1.25 enami break;
197 1.25 enami }
198 1.10 cgd if (ndp->ni_pathlen > 1)
199 1.35 thorpej cp = PNBUF_GET();
200 1.10 cgd else
201 1.12 mycroft cp = cnp->cn_pnbuf;
202 1.10 cgd aiov.iov_base = cp;
203 1.10 cgd aiov.iov_len = MAXPATHLEN;
204 1.10 cgd auio.uio_iov = &aiov;
205 1.10 cgd auio.uio_iovcnt = 1;
206 1.10 cgd auio.uio_offset = 0;
207 1.10 cgd auio.uio_rw = UIO_READ;
208 1.10 cgd auio.uio_segflg = UIO_SYSSPACE;
209 1.48 fvdl auio.uio_procp = (struct proc *)0;
210 1.10 cgd auio.uio_resid = MAXPATHLEN;
211 1.16 christos error = VOP_READLINK(ndp->ni_vp, &auio, cnp->cn_cred);
212 1.16 christos if (error) {
213 1.23 mycroft badlink:
214 1.10 cgd if (ndp->ni_pathlen > 1)
215 1.35 thorpej PNBUF_PUT(cp);
216 1.10 cgd break;
217 1.10 cgd }
218 1.10 cgd linklen = MAXPATHLEN - auio.uio_resid;
219 1.23 mycroft if (linklen == 0) {
220 1.23 mycroft error = ENOENT;
221 1.23 mycroft goto badlink;
222 1.23 mycroft }
223 1.10 cgd if (linklen + ndp->ni_pathlen >= MAXPATHLEN) {
224 1.10 cgd error = ENAMETOOLONG;
225 1.23 mycroft goto badlink;
226 1.10 cgd }
227 1.10 cgd if (ndp->ni_pathlen > 1) {
228 1.28 perry memcpy(cp + linklen, ndp->ni_next, ndp->ni_pathlen);
229 1.35 thorpej PNBUF_PUT(cnp->cn_pnbuf);
230 1.12 mycroft cnp->cn_pnbuf = cp;
231 1.10 cgd } else
232 1.12 mycroft cnp->cn_pnbuf[linklen] = '\0';
233 1.10 cgd ndp->ni_pathlen += linklen;
234 1.10 cgd vput(ndp->ni_vp);
235 1.10 cgd dp = ndp->ni_dvp;
236 1.23 mycroft /*
237 1.23 mycroft * Check if root directory should replace current directory.
238 1.23 mycroft */
239 1.23 mycroft if (cnp->cn_pnbuf[0] == '/') {
240 1.23 mycroft vrele(dp);
241 1.23 mycroft dp = ndp->ni_rootdir;
242 1.23 mycroft VREF(dp);
243 1.23 mycroft }
244 1.10 cgd }
245 1.35 thorpej PNBUF_PUT(cnp->cn_pnbuf);
246 1.10 cgd vrele(ndp->ni_dvp);
247 1.10 cgd vput(ndp->ni_vp);
248 1.10 cgd ndp->ni_vp = NULL;
249 1.10 cgd return (error);
250 1.10 cgd }
251 1.10 cgd
252 1.10 cgd /*
253 1.39 lukem * Determine the namei hash (for cn_hash) for name.
254 1.39 lukem * If *ep != NULL, hash from name to ep-1.
255 1.39 lukem * If *ep == NULL, hash from name until the first NUL or '/', and
256 1.39 lukem * return the location of this termination character in *ep.
257 1.39 lukem *
258 1.39 lukem * This function returns an equivalent hash to the MI hash32_strn().
259 1.39 lukem * The latter isn't used because in the *ep == NULL case, determining
260 1.39 lukem * the length of the string to the first NUL or `/' and then calling
261 1.39 lukem * hash32_strn() involves unnecessary double-handling of the data.
262 1.39 lukem */
263 1.39 lukem uint32_t
264 1.39 lukem namei_hash(const char *name, const char **ep)
265 1.39 lukem {
266 1.39 lukem uint32_t hash;
267 1.39 lukem
268 1.39 lukem hash = HASH32_STR_INIT;
269 1.39 lukem if (*ep != NULL) {
270 1.39 lukem for (; name < *ep; name++)
271 1.39 lukem hash = hash * 33 + *(uint8_t *)name;
272 1.39 lukem } else {
273 1.39 lukem for (; *name != '\0' && *name != '/'; name++)
274 1.39 lukem hash = hash * 33 + *(uint8_t *)name;
275 1.39 lukem *ep = name;
276 1.39 lukem }
277 1.39 lukem return (hash + (hash >> 5));
278 1.39 lukem }
279 1.39 lukem
280 1.39 lukem /*
281 1.10 cgd * Search a pathname.
282 1.10 cgd * This is a very central and rather complicated routine.
283 1.10 cgd *
284 1.10 cgd * The pathname is pointed to by ni_ptr and is of length ni_pathlen.
285 1.10 cgd * The starting directory is taken from ni_startdir. The pathname is
286 1.10 cgd * descended until done, or a symbolic link is encountered. The variable
287 1.10 cgd * ni_more is clear if the path is completed; it is set to one if a
288 1.10 cgd * symbolic link needing interpretation is encountered.
289 1.10 cgd *
290 1.10 cgd * The flag argument is LOOKUP, CREATE, RENAME, or DELETE depending on
291 1.10 cgd * whether the name is to be looked up, created, renamed, or deleted.
292 1.10 cgd * When CREATE, RENAME, or DELETE is specified, information usable in
293 1.10 cgd * creating, renaming, or deleting a directory entry may be calculated.
294 1.10 cgd * If flag has LOCKPARENT or'ed into it, the parent directory is returned
295 1.10 cgd * locked. If flag has WANTPARENT or'ed into it, the parent directory is
296 1.10 cgd * returned unlocked. Otherwise the parent directory is not returned. If
297 1.10 cgd * the target of the pathname exists and LOCKLEAF is or'ed into the flag
298 1.10 cgd * the target is returned locked, otherwise it is returned unlocked.
299 1.10 cgd * When creating or renaming and LOCKPARENT is specified, the target may not
300 1.10 cgd * be ".". When deleting and LOCKPARENT is specified, the target may be ".".
301 1.10 cgd *
302 1.10 cgd * Overall outline of lookup:
303 1.10 cgd *
304 1.10 cgd * dirloop:
305 1.10 cgd * identify next component of name at ndp->ni_ptr
306 1.10 cgd * handle degenerate case where name is null string
307 1.10 cgd * if .. and crossing mount points and on mounted filesys, find parent
308 1.10 cgd * call VOP_LOOKUP routine for next component name
309 1.10 cgd * directory vnode returned in ni_dvp, unlocked unless LOCKPARENT set
310 1.10 cgd * component vnode returned in ni_vp (if it exists), locked.
311 1.10 cgd * if result vnode is mounted on and crossing mount points,
312 1.10 cgd * find mounted on vnode
313 1.10 cgd * if more components of name, do next level at dirloop
314 1.10 cgd * return the answer in ni_vp, locked if LOCKLEAF set
315 1.10 cgd * if LOCKPARENT set, return locked parent in ni_dvp
316 1.10 cgd * if WANTPARENT set, return unlocked parent in ni_dvp
317 1.10 cgd */
318 1.12 mycroft int
319 1.12 mycroft lookup(ndp)
320 1.33 augustss struct nameidata *ndp;
321 1.10 cgd {
322 1.33 augustss const char *cp; /* pointer into pathname argument */
323 1.33 augustss struct vnode *dp = 0; /* the directory we are searching */
324 1.10 cgd struct vnode *tdp; /* saved dp */
325 1.10 cgd struct mount *mp; /* mount table entry */
326 1.10 cgd int docache; /* == 0 do not cache last component */
327 1.10 cgd int wantparent; /* 1 => wantparent or lockparent flag */
328 1.12 mycroft int rdonly; /* lookup read-only flag bit */
329 1.10 cgd int error = 0;
330 1.23 mycroft int slashes;
331 1.32 wrstuden int dpunlocked = 0; /* dp has already been unlocked */
332 1.12 mycroft struct componentname *cnp = &ndp->ni_cnd;
333 1.10 cgd
334 1.10 cgd /*
335 1.10 cgd * Setup: break out flag bits into variables.
336 1.10 cgd */
337 1.12 mycroft wantparent = cnp->cn_flags & (LOCKPARENT | WANTPARENT);
338 1.12 mycroft docache = (cnp->cn_flags & NOCACHE) ^ NOCACHE;
339 1.12 mycroft if (cnp->cn_nameiop == DELETE ||
340 1.12 mycroft (wantparent && cnp->cn_nameiop != CREATE))
341 1.10 cgd docache = 0;
342 1.12 mycroft rdonly = cnp->cn_flags & RDONLY;
343 1.10 cgd ndp->ni_dvp = NULL;
344 1.12 mycroft cnp->cn_flags &= ~ISSYMLINK;
345 1.10 cgd dp = ndp->ni_startdir;
346 1.10 cgd ndp->ni_startdir = NULLVP;
347 1.26 fvdl vn_lock(dp, LK_EXCLUSIVE | LK_RETRY);
348 1.10 cgd
349 1.23 mycroft /*
350 1.23 mycroft * If we have a leading string of slashes, remove them, and just make
351 1.23 mycroft * sure the current node is a directory.
352 1.23 mycroft */
353 1.23 mycroft cp = cnp->cn_nameptr;
354 1.23 mycroft if (*cp == '/') {
355 1.23 mycroft do {
356 1.23 mycroft cp++;
357 1.23 mycroft } while (*cp == '/');
358 1.23 mycroft ndp->ni_pathlen -= cp - cnp->cn_nameptr;
359 1.23 mycroft cnp->cn_nameptr = cp;
360 1.23 mycroft
361 1.23 mycroft if (dp->v_type != VDIR) {
362 1.23 mycroft error = ENOTDIR;
363 1.23 mycroft goto bad;
364 1.23 mycroft }
365 1.23 mycroft
366 1.23 mycroft /*
367 1.23 mycroft * If we've exhausted the path name, then just return the
368 1.23 mycroft * current node. If the caller requested the parent node (i.e.
369 1.23 mycroft * it's a CREATE, DELETE, or RENAME), and we don't have one
370 1.23 mycroft * (because this is the root directory), then we must fail.
371 1.23 mycroft */
372 1.23 mycroft if (cnp->cn_nameptr[0] == '\0') {
373 1.23 mycroft if (ndp->ni_dvp == NULL && wantparent) {
374 1.23 mycroft error = EISDIR;
375 1.23 mycroft goto bad;
376 1.23 mycroft }
377 1.23 mycroft ndp->ni_vp = dp;
378 1.23 mycroft cnp->cn_flags |= ISLASTCN;
379 1.23 mycroft goto terminal;
380 1.23 mycroft }
381 1.23 mycroft }
382 1.23 mycroft
383 1.10 cgd dirloop:
384 1.10 cgd /*
385 1.10 cgd * Search a new directory.
386 1.10 cgd *
387 1.12 mycroft * The cn_hash value is for use by vfs_cache.
388 1.10 cgd * The last component of the filename is left accessible via
389 1.12 mycroft * cnp->cn_nameptr for callers that need the name. Callers needing
390 1.10 cgd * the name set the SAVENAME flag. When done, they assume
391 1.10 cgd * responsibility for freeing the pathname buffer.
392 1.10 cgd */
393 1.12 mycroft cnp->cn_consume = 0;
394 1.39 lukem cp = NULL;
395 1.39 lukem cnp->cn_hash = namei_hash(cnp->cn_nameptr, &cp);
396 1.12 mycroft cnp->cn_namelen = cp - cnp->cn_nameptr;
397 1.12 mycroft if (cnp->cn_namelen > NAME_MAX) {
398 1.10 cgd error = ENAMETOOLONG;
399 1.10 cgd goto bad;
400 1.10 cgd }
401 1.10 cgd #ifdef NAMEI_DIAGNOSTIC
402 1.10 cgd { char c = *cp;
403 1.41 soren *(char *)cp = '\0';
404 1.19 christos printf("{%s}: ", cnp->cn_nameptr);
405 1.41 soren *(char *)cp = c; }
406 1.52 yamt #endif /* NAMEI_DIAGNOSTIC */
407 1.12 mycroft ndp->ni_pathlen -= cnp->cn_namelen;
408 1.10 cgd ndp->ni_next = cp;
409 1.23 mycroft /*
410 1.23 mycroft * If this component is followed by a slash, then move the pointer to
411 1.23 mycroft * the next component forward, and remember that this component must be
412 1.23 mycroft * a directory.
413 1.23 mycroft */
414 1.23 mycroft if (*cp == '/') {
415 1.23 mycroft do {
416 1.23 mycroft cp++;
417 1.23 mycroft } while (*cp == '/');
418 1.23 mycroft slashes = cp - ndp->ni_next;
419 1.23 mycroft ndp->ni_pathlen -= slashes;
420 1.23 mycroft ndp->ni_next = cp;
421 1.23 mycroft cnp->cn_flags |= REQUIREDIR;
422 1.23 mycroft } else {
423 1.23 mycroft slashes = 0;
424 1.23 mycroft cnp->cn_flags &= ~REQUIREDIR;
425 1.23 mycroft }
426 1.23 mycroft /*
427 1.23 mycroft * We do special processing on the last component, whether or not it's
428 1.23 mycroft * a directory. Cache all intervening lookups, but not the final one.
429 1.23 mycroft */
430 1.23 mycroft if (*cp == '\0') {
431 1.23 mycroft if (docache)
432 1.23 mycroft cnp->cn_flags |= MAKEENTRY;
433 1.23 mycroft else
434 1.23 mycroft cnp->cn_flags &= ~MAKEENTRY;
435 1.23 mycroft cnp->cn_flags |= ISLASTCN;
436 1.23 mycroft } else {
437 1.23 mycroft cnp->cn_flags |= MAKEENTRY;
438 1.23 mycroft cnp->cn_flags &= ~ISLASTCN;
439 1.23 mycroft }
440 1.12 mycroft if (cnp->cn_namelen == 2 &&
441 1.12 mycroft cnp->cn_nameptr[1] == '.' && cnp->cn_nameptr[0] == '.')
442 1.12 mycroft cnp->cn_flags |= ISDOTDOT;
443 1.12 mycroft else
444 1.12 mycroft cnp->cn_flags &= ~ISDOTDOT;
445 1.10 cgd
446 1.10 cgd /*
447 1.10 cgd * Handle "..": two special cases.
448 1.10 cgd * 1. If at root directory (e.g. after chroot)
449 1.12 mycroft * or at absolute root directory
450 1.10 cgd * then ignore it so can't get out.
451 1.40 wrstuden * 1a. If we have somehow gotten out of a jail, warn
452 1.40 wrstuden * and also ignore it so we can't get farther out.
453 1.10 cgd * 2. If this vnode is the root of a mounted
454 1.10 cgd * filesystem, then replace it with the
455 1.10 cgd * vnode which was mounted on so we take the
456 1.10 cgd * .. in the other file system.
457 1.10 cgd */
458 1.12 mycroft if (cnp->cn_flags & ISDOTDOT) {
459 1.10 cgd for (;;) {
460 1.12 mycroft if (dp == ndp->ni_rootdir || dp == rootvnode) {
461 1.10 cgd ndp->ni_dvp = dp;
462 1.10 cgd ndp->ni_vp = dp;
463 1.10 cgd VREF(dp);
464 1.10 cgd goto nextname;
465 1.40 wrstuden }
466 1.40 wrstuden if (ndp->ni_rootdir != rootvnode) {
467 1.40 wrstuden int retval;
468 1.40 wrstuden VOP_UNLOCK(dp, 0);
469 1.48 fvdl retval = vn_isunder(dp, ndp->ni_rootdir,
470 1.48 fvdl cnp->cn_proc);
471 1.40 wrstuden vn_lock(dp, LK_EXCLUSIVE | LK_RETRY);
472 1.40 wrstuden if (!retval) {
473 1.40 wrstuden /* Oops! We got out of jail! */
474 1.40 wrstuden log(LOG_WARNING,
475 1.40 wrstuden "chrooted pid %d uid %d (%s) "
476 1.40 wrstuden "detected outside of its chroot\n",
477 1.48 fvdl cnp->cn_proc->p_pid,
478 1.48 fvdl cnp->cn_proc->p_ucred->cr_uid,
479 1.48 fvdl cnp->cn_proc->p_comm);
480 1.40 wrstuden /* Put us at the jail root. */
481 1.40 wrstuden vput(dp);
482 1.40 wrstuden dp = ndp->ni_rootdir;
483 1.40 wrstuden ndp->ni_dvp = dp;
484 1.40 wrstuden ndp->ni_vp = dp;
485 1.40 wrstuden VREF(dp);
486 1.40 wrstuden VREF(dp);
487 1.40 wrstuden vn_lock(dp, LK_EXCLUSIVE | LK_RETRY);
488 1.40 wrstuden goto nextname;
489 1.40 wrstuden }
490 1.10 cgd }
491 1.10 cgd if ((dp->v_flag & VROOT) == 0 ||
492 1.12 mycroft (cnp->cn_flags & NOCROSSMOUNT))
493 1.10 cgd break;
494 1.10 cgd tdp = dp;
495 1.10 cgd dp = dp->v_mount->mnt_vnodecovered;
496 1.10 cgd vput(tdp);
497 1.10 cgd VREF(dp);
498 1.26 fvdl vn_lock(dp, LK_EXCLUSIVE | LK_RETRY);
499 1.10 cgd }
500 1.10 cgd }
501 1.10 cgd
502 1.10 cgd /*
503 1.10 cgd * We now have a segment name to search for, and a directory to search.
504 1.10 cgd */
505 1.12 mycroft unionlookup:
506 1.12 mycroft ndp->ni_dvp = dp;
507 1.26 fvdl ndp->ni_vp = NULL;
508 1.31 wrstuden cnp->cn_flags &= ~PDIRUNLOCK;
509 1.16 christos if ((error = VOP_LOOKUP(dp, &ndp->ni_vp, cnp)) != 0) {
510 1.10 cgd #ifdef DIAGNOSTIC
511 1.10 cgd if (ndp->ni_vp != NULL)
512 1.43 christos panic("leaf `%s' should be empty", cnp->cn_nameptr);
513 1.52 yamt #endif /* DIAGNOSTIC */
514 1.10 cgd #ifdef NAMEI_DIAGNOSTIC
515 1.19 christos printf("not found\n");
516 1.52 yamt #endif /* NAMEI_DIAGNOSTIC */
517 1.12 mycroft if ((error == ENOENT) &&
518 1.10 cgd (dp->v_flag & VROOT) &&
519 1.10 cgd (dp->v_mount->mnt_flag & MNT_UNION)) {
520 1.10 cgd tdp = dp;
521 1.10 cgd dp = dp->v_mount->mnt_vnodecovered;
522 1.31 wrstuden if (cnp->cn_flags & PDIRUNLOCK)
523 1.31 wrstuden vrele(tdp);
524 1.31 wrstuden else
525 1.31 wrstuden vput(tdp);
526 1.10 cgd VREF(dp);
527 1.26 fvdl vn_lock(dp, LK_EXCLUSIVE | LK_RETRY);
528 1.12 mycroft goto unionlookup;
529 1.10 cgd }
530 1.12 mycroft
531 1.10 cgd if (error != EJUSTRETURN)
532 1.10 cgd goto bad;
533 1.10 cgd /*
534 1.23 mycroft * If this was not the last component, or there were trailing
535 1.51 christos * slashes, and we are not going to create a directory,
536 1.51 christos * then the name must exist.
537 1.23 mycroft */
538 1.51 christos if ((cnp->cn_flags & (REQUIREDIR | CREATEDIR)) == REQUIREDIR) {
539 1.23 mycroft error = ENOENT;
540 1.23 mycroft goto bad;
541 1.23 mycroft }
542 1.23 mycroft /*
543 1.10 cgd * If creating and at end of pathname, then can consider
544 1.10 cgd * allowing file to be created.
545 1.10 cgd */
546 1.26 fvdl if (rdonly) {
547 1.10 cgd error = EROFS;
548 1.10 cgd goto bad;
549 1.10 cgd }
550 1.10 cgd /*
551 1.10 cgd * We return with ni_vp NULL to indicate that the entry
552 1.10 cgd * doesn't currently exist, leaving a pointer to the
553 1.10 cgd * (possibly locked) directory inode in ndp->ni_dvp.
554 1.10 cgd */
555 1.12 mycroft if (cnp->cn_flags & SAVESTART) {
556 1.10 cgd ndp->ni_startdir = ndp->ni_dvp;
557 1.10 cgd VREF(ndp->ni_startdir);
558 1.10 cgd }
559 1.10 cgd return (0);
560 1.10 cgd }
561 1.10 cgd #ifdef NAMEI_DIAGNOSTIC
562 1.19 christos printf("found\n");
563 1.52 yamt #endif /* NAMEI_DIAGNOSTIC */
564 1.10 cgd
565 1.12 mycroft /*
566 1.23 mycroft * Take into account any additional components consumed by the
567 1.23 mycroft * underlying filesystem. This will include any trailing slashes after
568 1.23 mycroft * the last component consumed.
569 1.12 mycroft */
570 1.12 mycroft if (cnp->cn_consume > 0) {
571 1.23 mycroft ndp->ni_pathlen -= cnp->cn_consume - slashes;
572 1.23 mycroft ndp->ni_next += cnp->cn_consume - slashes;
573 1.12 mycroft cnp->cn_consume = 0;
574 1.23 mycroft if (ndp->ni_next[0] == '\0')
575 1.23 mycroft cnp->cn_flags |= ISLASTCN;
576 1.12 mycroft }
577 1.12 mycroft
578 1.10 cgd dp = ndp->ni_vp;
579 1.10 cgd /*
580 1.10 cgd * Check to see if the vnode has been mounted on;
581 1.10 cgd * if so find the root of the mounted file system.
582 1.10 cgd */
583 1.10 cgd while (dp->v_type == VDIR && (mp = dp->v_mountedhere) &&
584 1.12 mycroft (cnp->cn_flags & NOCROSSMOUNT) == 0) {
585 1.26 fvdl if (vfs_busy(mp, 0, 0))
586 1.12 mycroft continue;
587 1.32 wrstuden VOP_UNLOCK(dp, 0);
588 1.47 thorpej error = VFS_ROOT(mp, &tdp);
589 1.26 fvdl vfs_unbusy(mp);
590 1.32 wrstuden if (error) {
591 1.32 wrstuden dpunlocked = 1;
592 1.10 cgd goto bad2;
593 1.32 wrstuden }
594 1.32 wrstuden vrele(dp);
595 1.10 cgd ndp->ni_vp = dp = tdp;
596 1.14 mycroft }
597 1.14 mycroft
598 1.14 mycroft /*
599 1.23 mycroft * Check for symbolic link. Back up over any slashes that we skipped,
600 1.23 mycroft * as we will need them again.
601 1.14 mycroft */
602 1.23 mycroft if ((dp->v_type == VLNK) && (cnp->cn_flags & (FOLLOW|REQUIREDIR))) {
603 1.23 mycroft ndp->ni_pathlen += slashes;
604 1.23 mycroft ndp->ni_next -= slashes;
605 1.14 mycroft cnp->cn_flags |= ISSYMLINK;
606 1.14 mycroft return (0);
607 1.10 cgd }
608 1.10 cgd
609 1.23 mycroft /*
610 1.23 mycroft * Check for directory, if the component was followed by a series of
611 1.23 mycroft * slashes.
612 1.23 mycroft */
613 1.23 mycroft if ((dp->v_type != VDIR) && (cnp->cn_flags & REQUIREDIR)) {
614 1.23 mycroft error = ENOTDIR;
615 1.23 mycroft goto bad2;
616 1.23 mycroft }
617 1.23 mycroft
618 1.10 cgd nextname:
619 1.10 cgd /*
620 1.23 mycroft * Not a symbolic link. If this was not the last component, then
621 1.23 mycroft * continue at the next component, else return.
622 1.10 cgd */
623 1.23 mycroft if (!(cnp->cn_flags & ISLASTCN)) {
624 1.12 mycroft cnp->cn_nameptr = ndp->ni_next;
625 1.10 cgd vrele(ndp->ni_dvp);
626 1.10 cgd goto dirloop;
627 1.10 cgd }
628 1.23 mycroft
629 1.23 mycroft terminal:
630 1.10 cgd /*
631 1.26 fvdl * Disallow directory write attempts on read-only file systems.
632 1.10 cgd */
633 1.26 fvdl if (rdonly &&
634 1.26 fvdl (cnp->cn_nameiop == DELETE || cnp->cn_nameiop == RENAME)) {
635 1.10 cgd /*
636 1.10 cgd * Disallow directory write attempts on read-only
637 1.10 cgd * file systems.
638 1.10 cgd */
639 1.26 fvdl error = EROFS;
640 1.26 fvdl goto bad2;
641 1.10 cgd }
642 1.23 mycroft if (ndp->ni_dvp != NULL) {
643 1.23 mycroft if (cnp->cn_flags & SAVESTART) {
644 1.23 mycroft ndp->ni_startdir = ndp->ni_dvp;
645 1.23 mycroft VREF(ndp->ni_startdir);
646 1.23 mycroft }
647 1.23 mycroft if (!wantparent)
648 1.23 mycroft vrele(ndp->ni_dvp);
649 1.10 cgd }
650 1.12 mycroft if ((cnp->cn_flags & LOCKLEAF) == 0)
651 1.26 fvdl VOP_UNLOCK(dp, 0);
652 1.10 cgd return (0);
653 1.10 cgd
654 1.10 cgd bad2:
655 1.31 wrstuden if ((cnp->cn_flags & LOCKPARENT) && (cnp->cn_flags & ISLASTCN) &&
656 1.31 wrstuden ((cnp->cn_flags & PDIRUNLOCK) == 0))
657 1.26 fvdl VOP_UNLOCK(ndp->ni_dvp, 0);
658 1.10 cgd vrele(ndp->ni_dvp);
659 1.10 cgd bad:
660 1.32 wrstuden if (dpunlocked)
661 1.32 wrstuden vrele(dp);
662 1.32 wrstuden else
663 1.32 wrstuden vput(dp);
664 1.10 cgd ndp->ni_vp = NULL;
665 1.12 mycroft return (error);
666 1.12 mycroft }
667 1.12 mycroft
668 1.12 mycroft /*
669 1.12 mycroft * Reacquire a path name component.
670 1.12 mycroft */
671 1.12 mycroft int
672 1.12 mycroft relookup(dvp, vpp, cnp)
673 1.12 mycroft struct vnode *dvp, **vpp;
674 1.12 mycroft struct componentname *cnp;
675 1.12 mycroft {
676 1.26 fvdl struct vnode *dp = 0; /* the directory we are searching */
677 1.12 mycroft int wantparent; /* 1 => wantparent or lockparent flag */
678 1.12 mycroft int rdonly; /* lookup read-only flag bit */
679 1.12 mycroft int error = 0;
680 1.52 yamt #ifdef DEBUG
681 1.12 mycroft int newhash; /* DEBUG: check name hash */
682 1.41 soren const char *cp; /* DEBUG: check name ptr/len */
683 1.52 yamt #endif /* DEBUG */
684 1.12 mycroft
685 1.12 mycroft /*
686 1.12 mycroft * Setup: break out flag bits into variables.
687 1.12 mycroft */
688 1.12 mycroft wantparent = cnp->cn_flags & (LOCKPARENT|WANTPARENT);
689 1.12 mycroft rdonly = cnp->cn_flags & RDONLY;
690 1.12 mycroft cnp->cn_flags &= ~ISSYMLINK;
691 1.12 mycroft dp = dvp;
692 1.26 fvdl vn_lock(dp, LK_EXCLUSIVE | LK_RETRY);
693 1.12 mycroft
694 1.12 mycroft /* dirloop: */
695 1.12 mycroft /*
696 1.12 mycroft * Search a new directory.
697 1.12 mycroft *
698 1.12 mycroft * The cn_hash value is for use by vfs_cache.
699 1.12 mycroft * The last component of the filename is left accessible via
700 1.12 mycroft * cnp->cn_nameptr for callers that need the name. Callers needing
701 1.12 mycroft * the name set the SAVENAME flag. When done, they assume
702 1.12 mycroft * responsibility for freeing the pathname buffer.
703 1.12 mycroft */
704 1.52 yamt #ifdef DEBUG
705 1.39 lukem cp = NULL;
706 1.39 lukem newhash = namei_hash(cnp->cn_nameptr, &cp);
707 1.12 mycroft if (newhash != cnp->cn_hash)
708 1.12 mycroft panic("relookup: bad hash");
709 1.12 mycroft if (cnp->cn_namelen != cp - cnp->cn_nameptr)
710 1.12 mycroft panic ("relookup: bad len");
711 1.12 mycroft if (*cp != 0)
712 1.12 mycroft panic("relookup: not last component");
713 1.52 yamt #endif /* DEBUG */
714 1.52 yamt #ifdef NAMEI_DIAGNOSTIC
715 1.19 christos printf("{%s}: ", cnp->cn_nameptr);
716 1.52 yamt #endif /* NAMEI_DIAGNOSTIC */
717 1.12 mycroft
718 1.12 mycroft /*
719 1.12 mycroft * Check for degenerate name (e.g. / or "")
720 1.12 mycroft * which is a way of talking about a directory,
721 1.12 mycroft * e.g. like "/." or ".".
722 1.12 mycroft */
723 1.23 mycroft if (cnp->cn_nameptr[0] == '\0')
724 1.23 mycroft panic("relookup: null name");
725 1.12 mycroft
726 1.12 mycroft if (cnp->cn_flags & ISDOTDOT)
727 1.12 mycroft panic ("relookup: lookup on dot-dot");
728 1.12 mycroft
729 1.12 mycroft /*
730 1.12 mycroft * We now have a segment name to search for, and a directory to search.
731 1.12 mycroft */
732 1.16 christos if ((error = VOP_LOOKUP(dp, vpp, cnp)) != 0) {
733 1.12 mycroft #ifdef DIAGNOSTIC
734 1.12 mycroft if (*vpp != NULL)
735 1.43 christos panic("leaf `%s' should be empty", cnp->cn_nameptr);
736 1.12 mycroft #endif
737 1.12 mycroft if (error != EJUSTRETURN)
738 1.12 mycroft goto bad;
739 1.12 mycroft /*
740 1.12 mycroft * If creating and at end of pathname, then can consider
741 1.12 mycroft * allowing file to be created.
742 1.12 mycroft */
743 1.26 fvdl if (rdonly) {
744 1.12 mycroft error = EROFS;
745 1.12 mycroft goto bad;
746 1.12 mycroft }
747 1.12 mycroft /* ASSERT(dvp == ndp->ni_startdir) */
748 1.12 mycroft if (cnp->cn_flags & SAVESTART)
749 1.12 mycroft VREF(dvp);
750 1.12 mycroft /*
751 1.12 mycroft * We return with ni_vp NULL to indicate that the entry
752 1.12 mycroft * doesn't currently exist, leaving a pointer to the
753 1.12 mycroft * (possibly locked) directory inode in ndp->ni_dvp.
754 1.12 mycroft */
755 1.12 mycroft return (0);
756 1.12 mycroft }
757 1.12 mycroft dp = *vpp;
758 1.12 mycroft
759 1.12 mycroft #ifdef DIAGNOSTIC
760 1.12 mycroft /*
761 1.12 mycroft * Check for symbolic link
762 1.12 mycroft */
763 1.12 mycroft if (dp->v_type == VLNK && (cnp->cn_flags & FOLLOW))
764 1.12 mycroft panic ("relookup: symlink found.\n");
765 1.12 mycroft #endif
766 1.12 mycroft
767 1.12 mycroft /*
768 1.12 mycroft * Check for read-only file systems.
769 1.12 mycroft */
770 1.26 fvdl if (rdonly &&
771 1.26 fvdl (cnp->cn_nameiop == DELETE || cnp->cn_nameiop == RENAME)) {
772 1.26 fvdl error = EROFS;
773 1.26 fvdl goto bad2;
774 1.12 mycroft }
775 1.12 mycroft /* ASSERT(dvp == ndp->ni_startdir) */
776 1.12 mycroft if (cnp->cn_flags & SAVESTART)
777 1.12 mycroft VREF(dvp);
778 1.12 mycroft if (!wantparent)
779 1.12 mycroft vrele(dvp);
780 1.12 mycroft if ((cnp->cn_flags & LOCKLEAF) == 0)
781 1.26 fvdl VOP_UNLOCK(dp, 0);
782 1.12 mycroft return (0);
783 1.12 mycroft
784 1.12 mycroft bad2:
785 1.12 mycroft if ((cnp->cn_flags & LOCKPARENT) && (cnp->cn_flags & ISLASTCN))
786 1.26 fvdl VOP_UNLOCK(dvp, 0);
787 1.12 mycroft vrele(dvp);
788 1.12 mycroft bad:
789 1.12 mycroft vput(dp);
790 1.12 mycroft *vpp = NULL;
791 1.10 cgd return (error);
792 1.10 cgd }
793