vfs_lookup.c revision 1.60 1 1.60 thorpej /* $NetBSD: vfs_lookup.c,v 1.60 2005/06/05 23:47:48 thorpej Exp $ */
2 1.13 cgd
3 1.10 cgd /*
4 1.12 mycroft * Copyright (c) 1982, 1986, 1989, 1993
5 1.12 mycroft * The Regents of the University of California. All rights reserved.
6 1.10 cgd * (c) UNIX System Laboratories, Inc.
7 1.10 cgd * All or some portions of this file are derived from material licensed
8 1.10 cgd * to the University of California by American Telephone and Telegraph
9 1.10 cgd * Co. or Unix System Laboratories, Inc. and are reproduced herein with
10 1.10 cgd * the permission of UNIX System Laboratories, Inc.
11 1.10 cgd *
12 1.10 cgd * Redistribution and use in source and binary forms, with or without
13 1.10 cgd * modification, are permitted provided that the following conditions
14 1.10 cgd * are met:
15 1.10 cgd * 1. Redistributions of source code must retain the above copyright
16 1.10 cgd * notice, this list of conditions and the following disclaimer.
17 1.10 cgd * 2. Redistributions in binary form must reproduce the above copyright
18 1.10 cgd * notice, this list of conditions and the following disclaimer in the
19 1.10 cgd * documentation and/or other materials provided with the distribution.
20 1.49 agc * 3. Neither the name of the University nor the names of its contributors
21 1.10 cgd * may be used to endorse or promote products derived from this software
22 1.10 cgd * without specific prior written permission.
23 1.10 cgd *
24 1.10 cgd * THIS SOFTWARE IS PROVIDED BY THE REGENTS AND CONTRIBUTORS ``AS IS'' AND
25 1.10 cgd * ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE
26 1.10 cgd * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE
27 1.10 cgd * ARE DISCLAIMED. IN NO EVENT SHALL THE REGENTS OR CONTRIBUTORS BE LIABLE
28 1.10 cgd * FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL
29 1.10 cgd * DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS
30 1.10 cgd * OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION)
31 1.10 cgd * HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT
32 1.10 cgd * LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY
33 1.10 cgd * OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF
34 1.10 cgd * SUCH DAMAGE.
35 1.10 cgd *
36 1.26 fvdl * @(#)vfs_lookup.c 8.10 (Berkeley) 5/27/95
37 1.10 cgd */
38 1.38 lukem
39 1.38 lukem #include <sys/cdefs.h>
40 1.60 thorpej __KERNEL_RCSID(0, "$NetBSD: vfs_lookup.c,v 1.60 2005/06/05 23:47:48 thorpej Exp $");
41 1.27 thorpej
42 1.27 thorpej #include "opt_ktrace.h"
43 1.50 cb #include "opt_systrace.h"
44 1.10 cgd
45 1.10 cgd #include <sys/param.h>
46 1.15 cgd #include <sys/systm.h>
47 1.10 cgd #include <sys/syslimits.h>
48 1.10 cgd #include <sys/time.h>
49 1.10 cgd #include <sys/namei.h>
50 1.10 cgd #include <sys/vnode.h>
51 1.10 cgd #include <sys/mount.h>
52 1.10 cgd #include <sys/errno.h>
53 1.39 lukem #include <sys/filedesc.h>
54 1.39 lukem #include <sys/hash.h>
55 1.10 cgd #include <sys/malloc.h>
56 1.10 cgd #include <sys/proc.h>
57 1.40 wrstuden #include <sys/syslog.h>
58 1.12 mycroft
59 1.10 cgd #ifdef KTRACE
60 1.10 cgd #include <sys/ktrace.h>
61 1.10 cgd #endif
62 1.50 cb #ifdef SYSTRACE
63 1.50 cb #include <sys/systrace.h>
64 1.50 cb #endif
65 1.16 christos
66 1.35 thorpej struct pool pnbuf_pool; /* pathname buffer pool */
67 1.37 thorpej struct pool_cache pnbuf_cache; /* pathname buffer cache */
68 1.44 thorpej
69 1.44 thorpej MALLOC_DEFINE(M_NAMEI, "namei", "namei path buffer");
70 1.35 thorpej
71 1.10 cgd /*
72 1.10 cgd * Convert a pathname into a pointer to a locked inode.
73 1.10 cgd *
74 1.10 cgd * The FOLLOW flag is set when symbolic links are to be followed
75 1.10 cgd * when they occur at the end of the name translation process.
76 1.10 cgd * Symbolic links are always followed for all other pathname
77 1.10 cgd * components other than the last.
78 1.10 cgd *
79 1.10 cgd * The segflg defines whether the name is to be copied from user
80 1.10 cgd * space or kernel space.
81 1.10 cgd *
82 1.10 cgd * Overall outline of namei:
83 1.10 cgd *
84 1.10 cgd * copy in name
85 1.10 cgd * get starting directory
86 1.10 cgd * while (!done && !error) {
87 1.10 cgd * call lookup to search path.
88 1.10 cgd * if symbolic link, massage name in buffer and continue
89 1.10 cgd * }
90 1.10 cgd */
91 1.12 mycroft int
92 1.60 thorpej namei(struct nameidata *ndp)
93 1.10 cgd {
94 1.30 thorpej struct cwdinfo *cwdi; /* pointer to cwd state */
95 1.33 augustss char *cp; /* pointer into pathname argument */
96 1.33 augustss struct vnode *dp; /* the directory we are searching */
97 1.10 cgd struct iovec aiov; /* uio for reading symbolic links */
98 1.10 cgd struct uio auio;
99 1.23 mycroft int error, linklen;
100 1.12 mycroft struct componentname *cnp = &ndp->ni_cnd;
101 1.10 cgd
102 1.12 mycroft #ifdef DIAGNOSTIC
103 1.48 fvdl if (!cnp->cn_cred || !cnp->cn_proc)
104 1.58 christos panic("namei: bad cred/proc");
105 1.12 mycroft if (cnp->cn_nameiop & (~OPMASK))
106 1.58 christos panic("namei: nameiop contaminated with flags");
107 1.12 mycroft if (cnp->cn_flags & OPMASK)
108 1.58 christos panic("namei: flags contaminated with nameiops");
109 1.12 mycroft #endif
110 1.48 fvdl cwdi = cnp->cn_proc->p_cwdi;
111 1.10 cgd
112 1.10 cgd /*
113 1.10 cgd * Get a buffer for the name to be translated, and copy the
114 1.10 cgd * name into the buffer.
115 1.10 cgd */
116 1.12 mycroft if ((cnp->cn_flags & HASBUF) == 0)
117 1.35 thorpej cnp->cn_pnbuf = PNBUF_GET();
118 1.10 cgd if (ndp->ni_segflg == UIO_SYSSPACE)
119 1.12 mycroft error = copystr(ndp->ni_dirp, cnp->cn_pnbuf,
120 1.10 cgd MAXPATHLEN, &ndp->ni_pathlen);
121 1.10 cgd else
122 1.12 mycroft error = copyinstr(ndp->ni_dirp, cnp->cn_pnbuf,
123 1.10 cgd MAXPATHLEN, &ndp->ni_pathlen);
124 1.21 kleink
125 1.21 kleink /*
126 1.21 kleink * POSIX.1 requirement: "" is not a valid file name.
127 1.56 perry */
128 1.21 kleink if (!error && ndp->ni_pathlen == 1)
129 1.21 kleink error = ENOENT;
130 1.21 kleink
131 1.10 cgd if (error) {
132 1.35 thorpej PNBUF_PUT(cnp->cn_pnbuf);
133 1.10 cgd ndp->ni_vp = NULL;
134 1.10 cgd return (error);
135 1.10 cgd }
136 1.10 cgd ndp->ni_loopcnt = 0;
137 1.21 kleink
138 1.10 cgd #ifdef KTRACE
139 1.48 fvdl if (KTRPOINT(cnp->cn_proc, KTR_NAMEI))
140 1.48 fvdl ktrnamei(cnp->cn_proc, cnp->cn_pnbuf);
141 1.50 cb #endif
142 1.50 cb #ifdef SYSTRACE
143 1.50 cb if (ISSET(cnp->cn_proc->p_flag, P_SYSTRACE))
144 1.50 cb systrace_namei(ndp);
145 1.10 cgd #endif
146 1.10 cgd
147 1.10 cgd /*
148 1.10 cgd * Get starting point for the translation.
149 1.10 cgd */
150 1.30 thorpej if ((ndp->ni_rootdir = cwdi->cwdi_rdir) == NULL)
151 1.11 cgd ndp->ni_rootdir = rootvnode;
152 1.23 mycroft /*
153 1.23 mycroft * Check if starting from root directory or current directory.
154 1.23 mycroft */
155 1.23 mycroft if (cnp->cn_pnbuf[0] == '/') {
156 1.23 mycroft dp = ndp->ni_rootdir;
157 1.23 mycroft VREF(dp);
158 1.23 mycroft } else {
159 1.30 thorpej dp = cwdi->cwdi_cdir;
160 1.23 mycroft VREF(dp);
161 1.23 mycroft }
162 1.10 cgd for (;;) {
163 1.45 erh if (!dp->v_mount)
164 1.45 erh {
165 1.45 erh /* Give up if the directory is no longer mounted */
166 1.45 erh PNBUF_PUT(cnp->cn_pnbuf);
167 1.45 erh return (ENOENT);
168 1.45 erh }
169 1.12 mycroft cnp->cn_nameptr = cnp->cn_pnbuf;
170 1.10 cgd ndp->ni_startdir = dp;
171 1.16 christos if ((error = lookup(ndp)) != 0) {
172 1.35 thorpej PNBUF_PUT(cnp->cn_pnbuf);
173 1.10 cgd return (error);
174 1.10 cgd }
175 1.10 cgd /*
176 1.10 cgd * Check for symbolic link
177 1.10 cgd */
178 1.12 mycroft if ((cnp->cn_flags & ISSYMLINK) == 0) {
179 1.12 mycroft if ((cnp->cn_flags & (SAVENAME | SAVESTART)) == 0)
180 1.35 thorpej PNBUF_PUT(cnp->cn_pnbuf);
181 1.10 cgd else
182 1.12 mycroft cnp->cn_flags |= HASBUF;
183 1.10 cgd return (0);
184 1.10 cgd }
185 1.29 wrstuden if ((cnp->cn_flags & LOCKPARENT) && (cnp->cn_flags & ISLASTCN))
186 1.26 fvdl VOP_UNLOCK(ndp->ni_dvp, 0);
187 1.10 cgd if (ndp->ni_loopcnt++ >= MAXSYMLINKS) {
188 1.10 cgd error = ELOOP;
189 1.10 cgd break;
190 1.10 cgd }
191 1.25 enami if (ndp->ni_vp->v_mount->mnt_flag & MNT_SYMPERM) {
192 1.25 enami error = VOP_ACCESS(ndp->ni_vp, VEXEC, cnp->cn_cred,
193 1.48 fvdl cnp->cn_proc);
194 1.25 enami if (error != 0)
195 1.25 enami break;
196 1.25 enami }
197 1.10 cgd if (ndp->ni_pathlen > 1)
198 1.35 thorpej cp = PNBUF_GET();
199 1.10 cgd else
200 1.12 mycroft cp = cnp->cn_pnbuf;
201 1.10 cgd aiov.iov_base = cp;
202 1.10 cgd aiov.iov_len = MAXPATHLEN;
203 1.10 cgd auio.uio_iov = &aiov;
204 1.10 cgd auio.uio_iovcnt = 1;
205 1.10 cgd auio.uio_offset = 0;
206 1.10 cgd auio.uio_rw = UIO_READ;
207 1.10 cgd auio.uio_segflg = UIO_SYSSPACE;
208 1.55 skrll auio.uio_procp = NULL;
209 1.10 cgd auio.uio_resid = MAXPATHLEN;
210 1.16 christos error = VOP_READLINK(ndp->ni_vp, &auio, cnp->cn_cred);
211 1.16 christos if (error) {
212 1.23 mycroft badlink:
213 1.10 cgd if (ndp->ni_pathlen > 1)
214 1.35 thorpej PNBUF_PUT(cp);
215 1.10 cgd break;
216 1.10 cgd }
217 1.10 cgd linklen = MAXPATHLEN - auio.uio_resid;
218 1.23 mycroft if (linklen == 0) {
219 1.23 mycroft error = ENOENT;
220 1.23 mycroft goto badlink;
221 1.23 mycroft }
222 1.10 cgd if (linklen + ndp->ni_pathlen >= MAXPATHLEN) {
223 1.10 cgd error = ENAMETOOLONG;
224 1.23 mycroft goto badlink;
225 1.10 cgd }
226 1.10 cgd if (ndp->ni_pathlen > 1) {
227 1.28 perry memcpy(cp + linklen, ndp->ni_next, ndp->ni_pathlen);
228 1.35 thorpej PNBUF_PUT(cnp->cn_pnbuf);
229 1.12 mycroft cnp->cn_pnbuf = cp;
230 1.10 cgd } else
231 1.12 mycroft cnp->cn_pnbuf[linklen] = '\0';
232 1.10 cgd ndp->ni_pathlen += linklen;
233 1.10 cgd vput(ndp->ni_vp);
234 1.10 cgd dp = ndp->ni_dvp;
235 1.23 mycroft /*
236 1.23 mycroft * Check if root directory should replace current directory.
237 1.23 mycroft */
238 1.23 mycroft if (cnp->cn_pnbuf[0] == '/') {
239 1.23 mycroft vrele(dp);
240 1.23 mycroft dp = ndp->ni_rootdir;
241 1.23 mycroft VREF(dp);
242 1.23 mycroft }
243 1.10 cgd }
244 1.35 thorpej PNBUF_PUT(cnp->cn_pnbuf);
245 1.10 cgd vrele(ndp->ni_dvp);
246 1.10 cgd vput(ndp->ni_vp);
247 1.10 cgd ndp->ni_vp = NULL;
248 1.10 cgd return (error);
249 1.10 cgd }
250 1.10 cgd
251 1.10 cgd /*
252 1.39 lukem * Determine the namei hash (for cn_hash) for name.
253 1.39 lukem * If *ep != NULL, hash from name to ep-1.
254 1.39 lukem * If *ep == NULL, hash from name until the first NUL or '/', and
255 1.39 lukem * return the location of this termination character in *ep.
256 1.39 lukem *
257 1.39 lukem * This function returns an equivalent hash to the MI hash32_strn().
258 1.39 lukem * The latter isn't used because in the *ep == NULL case, determining
259 1.39 lukem * the length of the string to the first NUL or `/' and then calling
260 1.39 lukem * hash32_strn() involves unnecessary double-handling of the data.
261 1.39 lukem */
262 1.39 lukem uint32_t
263 1.39 lukem namei_hash(const char *name, const char **ep)
264 1.39 lukem {
265 1.39 lukem uint32_t hash;
266 1.39 lukem
267 1.39 lukem hash = HASH32_STR_INIT;
268 1.39 lukem if (*ep != NULL) {
269 1.39 lukem for (; name < *ep; name++)
270 1.59 christos hash = hash * 33 + *(const uint8_t *)name;
271 1.39 lukem } else {
272 1.39 lukem for (; *name != '\0' && *name != '/'; name++)
273 1.59 christos hash = hash * 33 + *(const uint8_t *)name;
274 1.39 lukem *ep = name;
275 1.39 lukem }
276 1.39 lukem return (hash + (hash >> 5));
277 1.39 lukem }
278 1.39 lukem
279 1.39 lukem /*
280 1.10 cgd * Search a pathname.
281 1.10 cgd * This is a very central and rather complicated routine.
282 1.10 cgd *
283 1.10 cgd * The pathname is pointed to by ni_ptr and is of length ni_pathlen.
284 1.10 cgd * The starting directory is taken from ni_startdir. The pathname is
285 1.10 cgd * descended until done, or a symbolic link is encountered. The variable
286 1.10 cgd * ni_more is clear if the path is completed; it is set to one if a
287 1.10 cgd * symbolic link needing interpretation is encountered.
288 1.10 cgd *
289 1.10 cgd * The flag argument is LOOKUP, CREATE, RENAME, or DELETE depending on
290 1.10 cgd * whether the name is to be looked up, created, renamed, or deleted.
291 1.10 cgd * When CREATE, RENAME, or DELETE is specified, information usable in
292 1.10 cgd * creating, renaming, or deleting a directory entry may be calculated.
293 1.10 cgd * If flag has LOCKPARENT or'ed into it, the parent directory is returned
294 1.10 cgd * locked. If flag has WANTPARENT or'ed into it, the parent directory is
295 1.10 cgd * returned unlocked. Otherwise the parent directory is not returned. If
296 1.10 cgd * the target of the pathname exists and LOCKLEAF is or'ed into the flag
297 1.10 cgd * the target is returned locked, otherwise it is returned unlocked.
298 1.10 cgd * When creating or renaming and LOCKPARENT is specified, the target may not
299 1.10 cgd * be ".". When deleting and LOCKPARENT is specified, the target may be ".".
300 1.56 perry *
301 1.10 cgd * Overall outline of lookup:
302 1.10 cgd *
303 1.10 cgd * dirloop:
304 1.10 cgd * identify next component of name at ndp->ni_ptr
305 1.10 cgd * handle degenerate case where name is null string
306 1.10 cgd * if .. and crossing mount points and on mounted filesys, find parent
307 1.10 cgd * call VOP_LOOKUP routine for next component name
308 1.10 cgd * directory vnode returned in ni_dvp, unlocked unless LOCKPARENT set
309 1.10 cgd * component vnode returned in ni_vp (if it exists), locked.
310 1.10 cgd * if result vnode is mounted on and crossing mount points,
311 1.10 cgd * find mounted on vnode
312 1.10 cgd * if more components of name, do next level at dirloop
313 1.10 cgd * return the answer in ni_vp, locked if LOCKLEAF set
314 1.10 cgd * if LOCKPARENT set, return locked parent in ni_dvp
315 1.10 cgd * if WANTPARENT set, return unlocked parent in ni_dvp
316 1.10 cgd */
317 1.12 mycroft int
318 1.60 thorpej lookup(struct nameidata *ndp)
319 1.10 cgd {
320 1.33 augustss const char *cp; /* pointer into pathname argument */
321 1.33 augustss struct vnode *dp = 0; /* the directory we are searching */
322 1.10 cgd struct vnode *tdp; /* saved dp */
323 1.10 cgd struct mount *mp; /* mount table entry */
324 1.10 cgd int docache; /* == 0 do not cache last component */
325 1.10 cgd int wantparent; /* 1 => wantparent or lockparent flag */
326 1.12 mycroft int rdonly; /* lookup read-only flag bit */
327 1.10 cgd int error = 0;
328 1.23 mycroft int slashes;
329 1.32 wrstuden int dpunlocked = 0; /* dp has already been unlocked */
330 1.12 mycroft struct componentname *cnp = &ndp->ni_cnd;
331 1.10 cgd
332 1.10 cgd /*
333 1.10 cgd * Setup: break out flag bits into variables.
334 1.10 cgd */
335 1.12 mycroft wantparent = cnp->cn_flags & (LOCKPARENT | WANTPARENT);
336 1.12 mycroft docache = (cnp->cn_flags & NOCACHE) ^ NOCACHE;
337 1.12 mycroft if (cnp->cn_nameiop == DELETE ||
338 1.12 mycroft (wantparent && cnp->cn_nameiop != CREATE))
339 1.10 cgd docache = 0;
340 1.12 mycroft rdonly = cnp->cn_flags & RDONLY;
341 1.10 cgd ndp->ni_dvp = NULL;
342 1.12 mycroft cnp->cn_flags &= ~ISSYMLINK;
343 1.10 cgd dp = ndp->ni_startdir;
344 1.10 cgd ndp->ni_startdir = NULLVP;
345 1.26 fvdl vn_lock(dp, LK_EXCLUSIVE | LK_RETRY);
346 1.10 cgd
347 1.23 mycroft /*
348 1.23 mycroft * If we have a leading string of slashes, remove them, and just make
349 1.23 mycroft * sure the current node is a directory.
350 1.23 mycroft */
351 1.23 mycroft cp = cnp->cn_nameptr;
352 1.23 mycroft if (*cp == '/') {
353 1.23 mycroft do {
354 1.23 mycroft cp++;
355 1.23 mycroft } while (*cp == '/');
356 1.23 mycroft ndp->ni_pathlen -= cp - cnp->cn_nameptr;
357 1.23 mycroft cnp->cn_nameptr = cp;
358 1.23 mycroft
359 1.23 mycroft if (dp->v_type != VDIR) {
360 1.23 mycroft error = ENOTDIR;
361 1.23 mycroft goto bad;
362 1.23 mycroft }
363 1.23 mycroft
364 1.23 mycroft /*
365 1.23 mycroft * If we've exhausted the path name, then just return the
366 1.23 mycroft * current node. If the caller requested the parent node (i.e.
367 1.23 mycroft * it's a CREATE, DELETE, or RENAME), and we don't have one
368 1.23 mycroft * (because this is the root directory), then we must fail.
369 1.23 mycroft */
370 1.23 mycroft if (cnp->cn_nameptr[0] == '\0') {
371 1.23 mycroft if (ndp->ni_dvp == NULL && wantparent) {
372 1.23 mycroft error = EISDIR;
373 1.23 mycroft goto bad;
374 1.23 mycroft }
375 1.23 mycroft ndp->ni_vp = dp;
376 1.23 mycroft cnp->cn_flags |= ISLASTCN;
377 1.23 mycroft goto terminal;
378 1.23 mycroft }
379 1.23 mycroft }
380 1.23 mycroft
381 1.10 cgd dirloop:
382 1.10 cgd /*
383 1.10 cgd * Search a new directory.
384 1.10 cgd *
385 1.12 mycroft * The cn_hash value is for use by vfs_cache.
386 1.10 cgd * The last component of the filename is left accessible via
387 1.12 mycroft * cnp->cn_nameptr for callers that need the name. Callers needing
388 1.10 cgd * the name set the SAVENAME flag. When done, they assume
389 1.10 cgd * responsibility for freeing the pathname buffer.
390 1.10 cgd */
391 1.12 mycroft cnp->cn_consume = 0;
392 1.39 lukem cp = NULL;
393 1.39 lukem cnp->cn_hash = namei_hash(cnp->cn_nameptr, &cp);
394 1.12 mycroft cnp->cn_namelen = cp - cnp->cn_nameptr;
395 1.12 mycroft if (cnp->cn_namelen > NAME_MAX) {
396 1.10 cgd error = ENAMETOOLONG;
397 1.10 cgd goto bad;
398 1.10 cgd }
399 1.10 cgd #ifdef NAMEI_DIAGNOSTIC
400 1.10 cgd { char c = *cp;
401 1.41 soren *(char *)cp = '\0';
402 1.19 christos printf("{%s}: ", cnp->cn_nameptr);
403 1.41 soren *(char *)cp = c; }
404 1.52 yamt #endif /* NAMEI_DIAGNOSTIC */
405 1.12 mycroft ndp->ni_pathlen -= cnp->cn_namelen;
406 1.10 cgd ndp->ni_next = cp;
407 1.23 mycroft /*
408 1.23 mycroft * If this component is followed by a slash, then move the pointer to
409 1.23 mycroft * the next component forward, and remember that this component must be
410 1.23 mycroft * a directory.
411 1.23 mycroft */
412 1.23 mycroft if (*cp == '/') {
413 1.23 mycroft do {
414 1.23 mycroft cp++;
415 1.23 mycroft } while (*cp == '/');
416 1.23 mycroft slashes = cp - ndp->ni_next;
417 1.23 mycroft ndp->ni_pathlen -= slashes;
418 1.23 mycroft ndp->ni_next = cp;
419 1.23 mycroft cnp->cn_flags |= REQUIREDIR;
420 1.23 mycroft } else {
421 1.23 mycroft slashes = 0;
422 1.23 mycroft cnp->cn_flags &= ~REQUIREDIR;
423 1.23 mycroft }
424 1.23 mycroft /*
425 1.23 mycroft * We do special processing on the last component, whether or not it's
426 1.23 mycroft * a directory. Cache all intervening lookups, but not the final one.
427 1.23 mycroft */
428 1.23 mycroft if (*cp == '\0') {
429 1.23 mycroft if (docache)
430 1.23 mycroft cnp->cn_flags |= MAKEENTRY;
431 1.23 mycroft else
432 1.23 mycroft cnp->cn_flags &= ~MAKEENTRY;
433 1.23 mycroft cnp->cn_flags |= ISLASTCN;
434 1.23 mycroft } else {
435 1.23 mycroft cnp->cn_flags |= MAKEENTRY;
436 1.23 mycroft cnp->cn_flags &= ~ISLASTCN;
437 1.23 mycroft }
438 1.12 mycroft if (cnp->cn_namelen == 2 &&
439 1.12 mycroft cnp->cn_nameptr[1] == '.' && cnp->cn_nameptr[0] == '.')
440 1.12 mycroft cnp->cn_flags |= ISDOTDOT;
441 1.12 mycroft else
442 1.12 mycroft cnp->cn_flags &= ~ISDOTDOT;
443 1.10 cgd
444 1.10 cgd /*
445 1.10 cgd * Handle "..": two special cases.
446 1.10 cgd * 1. If at root directory (e.g. after chroot)
447 1.12 mycroft * or at absolute root directory
448 1.10 cgd * then ignore it so can't get out.
449 1.40 wrstuden * 1a. If we have somehow gotten out of a jail, warn
450 1.40 wrstuden * and also ignore it so we can't get farther out.
451 1.10 cgd * 2. If this vnode is the root of a mounted
452 1.10 cgd * filesystem, then replace it with the
453 1.10 cgd * vnode which was mounted on so we take the
454 1.10 cgd * .. in the other file system.
455 1.10 cgd */
456 1.12 mycroft if (cnp->cn_flags & ISDOTDOT) {
457 1.10 cgd for (;;) {
458 1.12 mycroft if (dp == ndp->ni_rootdir || dp == rootvnode) {
459 1.10 cgd ndp->ni_dvp = dp;
460 1.10 cgd ndp->ni_vp = dp;
461 1.10 cgd VREF(dp);
462 1.10 cgd goto nextname;
463 1.40 wrstuden }
464 1.40 wrstuden if (ndp->ni_rootdir != rootvnode) {
465 1.40 wrstuden int retval;
466 1.40 wrstuden VOP_UNLOCK(dp, 0);
467 1.48 fvdl retval = vn_isunder(dp, ndp->ni_rootdir,
468 1.48 fvdl cnp->cn_proc);
469 1.40 wrstuden vn_lock(dp, LK_EXCLUSIVE | LK_RETRY);
470 1.40 wrstuden if (!retval) {
471 1.40 wrstuden /* Oops! We got out of jail! */
472 1.40 wrstuden log(LOG_WARNING,
473 1.40 wrstuden "chrooted pid %d uid %d (%s) "
474 1.40 wrstuden "detected outside of its chroot\n",
475 1.48 fvdl cnp->cn_proc->p_pid,
476 1.48 fvdl cnp->cn_proc->p_ucred->cr_uid,
477 1.48 fvdl cnp->cn_proc->p_comm);
478 1.40 wrstuden /* Put us at the jail root. */
479 1.40 wrstuden vput(dp);
480 1.40 wrstuden dp = ndp->ni_rootdir;
481 1.40 wrstuden ndp->ni_dvp = dp;
482 1.40 wrstuden ndp->ni_vp = dp;
483 1.40 wrstuden VREF(dp);
484 1.40 wrstuden VREF(dp);
485 1.40 wrstuden vn_lock(dp, LK_EXCLUSIVE | LK_RETRY);
486 1.40 wrstuden goto nextname;
487 1.40 wrstuden }
488 1.10 cgd }
489 1.10 cgd if ((dp->v_flag & VROOT) == 0 ||
490 1.12 mycroft (cnp->cn_flags & NOCROSSMOUNT))
491 1.10 cgd break;
492 1.10 cgd tdp = dp;
493 1.10 cgd dp = dp->v_mount->mnt_vnodecovered;
494 1.10 cgd vput(tdp);
495 1.10 cgd VREF(dp);
496 1.26 fvdl vn_lock(dp, LK_EXCLUSIVE | LK_RETRY);
497 1.10 cgd }
498 1.10 cgd }
499 1.10 cgd
500 1.10 cgd /*
501 1.10 cgd * We now have a segment name to search for, and a directory to search.
502 1.10 cgd */
503 1.12 mycroft unionlookup:
504 1.12 mycroft ndp->ni_dvp = dp;
505 1.26 fvdl ndp->ni_vp = NULL;
506 1.31 wrstuden cnp->cn_flags &= ~PDIRUNLOCK;
507 1.16 christos if ((error = VOP_LOOKUP(dp, &ndp->ni_vp, cnp)) != 0) {
508 1.10 cgd #ifdef DIAGNOSTIC
509 1.10 cgd if (ndp->ni_vp != NULL)
510 1.43 christos panic("leaf `%s' should be empty", cnp->cn_nameptr);
511 1.52 yamt #endif /* DIAGNOSTIC */
512 1.10 cgd #ifdef NAMEI_DIAGNOSTIC
513 1.19 christos printf("not found\n");
514 1.52 yamt #endif /* NAMEI_DIAGNOSTIC */
515 1.12 mycroft if ((error == ENOENT) &&
516 1.10 cgd (dp->v_flag & VROOT) &&
517 1.10 cgd (dp->v_mount->mnt_flag & MNT_UNION)) {
518 1.10 cgd tdp = dp;
519 1.10 cgd dp = dp->v_mount->mnt_vnodecovered;
520 1.31 wrstuden if (cnp->cn_flags & PDIRUNLOCK)
521 1.31 wrstuden vrele(tdp);
522 1.31 wrstuden else
523 1.31 wrstuden vput(tdp);
524 1.10 cgd VREF(dp);
525 1.26 fvdl vn_lock(dp, LK_EXCLUSIVE | LK_RETRY);
526 1.12 mycroft goto unionlookup;
527 1.10 cgd }
528 1.12 mycroft
529 1.57 wrstuden if (cnp->cn_flags & PDIRUNLOCK)
530 1.57 wrstuden dpunlocked = 1;
531 1.57 wrstuden
532 1.10 cgd if (error != EJUSTRETURN)
533 1.10 cgd goto bad;
534 1.10 cgd /*
535 1.23 mycroft * If this was not the last component, or there were trailing
536 1.51 christos * slashes, and we are not going to create a directory,
537 1.51 christos * then the name must exist.
538 1.23 mycroft */
539 1.51 christos if ((cnp->cn_flags & (REQUIREDIR | CREATEDIR)) == REQUIREDIR) {
540 1.23 mycroft error = ENOENT;
541 1.23 mycroft goto bad;
542 1.23 mycroft }
543 1.23 mycroft /*
544 1.10 cgd * If creating and at end of pathname, then can consider
545 1.10 cgd * allowing file to be created.
546 1.10 cgd */
547 1.26 fvdl if (rdonly) {
548 1.10 cgd error = EROFS;
549 1.10 cgd goto bad;
550 1.10 cgd }
551 1.10 cgd /*
552 1.10 cgd * We return with ni_vp NULL to indicate that the entry
553 1.10 cgd * doesn't currently exist, leaving a pointer to the
554 1.10 cgd * (possibly locked) directory inode in ndp->ni_dvp.
555 1.10 cgd */
556 1.12 mycroft if (cnp->cn_flags & SAVESTART) {
557 1.10 cgd ndp->ni_startdir = ndp->ni_dvp;
558 1.10 cgd VREF(ndp->ni_startdir);
559 1.10 cgd }
560 1.10 cgd return (0);
561 1.10 cgd }
562 1.10 cgd #ifdef NAMEI_DIAGNOSTIC
563 1.19 christos printf("found\n");
564 1.52 yamt #endif /* NAMEI_DIAGNOSTIC */
565 1.10 cgd
566 1.12 mycroft /*
567 1.23 mycroft * Take into account any additional components consumed by the
568 1.23 mycroft * underlying filesystem. This will include any trailing slashes after
569 1.23 mycroft * the last component consumed.
570 1.12 mycroft */
571 1.12 mycroft if (cnp->cn_consume > 0) {
572 1.23 mycroft ndp->ni_pathlen -= cnp->cn_consume - slashes;
573 1.23 mycroft ndp->ni_next += cnp->cn_consume - slashes;
574 1.12 mycroft cnp->cn_consume = 0;
575 1.23 mycroft if (ndp->ni_next[0] == '\0')
576 1.23 mycroft cnp->cn_flags |= ISLASTCN;
577 1.12 mycroft }
578 1.12 mycroft
579 1.10 cgd dp = ndp->ni_vp;
580 1.10 cgd /*
581 1.10 cgd * Check to see if the vnode has been mounted on;
582 1.10 cgd * if so find the root of the mounted file system.
583 1.10 cgd */
584 1.10 cgd while (dp->v_type == VDIR && (mp = dp->v_mountedhere) &&
585 1.12 mycroft (cnp->cn_flags & NOCROSSMOUNT) == 0) {
586 1.26 fvdl if (vfs_busy(mp, 0, 0))
587 1.12 mycroft continue;
588 1.32 wrstuden VOP_UNLOCK(dp, 0);
589 1.47 thorpej error = VFS_ROOT(mp, &tdp);
590 1.26 fvdl vfs_unbusy(mp);
591 1.32 wrstuden if (error) {
592 1.32 wrstuden dpunlocked = 1;
593 1.10 cgd goto bad2;
594 1.32 wrstuden }
595 1.32 wrstuden vrele(dp);
596 1.10 cgd ndp->ni_vp = dp = tdp;
597 1.14 mycroft }
598 1.14 mycroft
599 1.14 mycroft /*
600 1.23 mycroft * Check for symbolic link. Back up over any slashes that we skipped,
601 1.23 mycroft * as we will need them again.
602 1.14 mycroft */
603 1.23 mycroft if ((dp->v_type == VLNK) && (cnp->cn_flags & (FOLLOW|REQUIREDIR))) {
604 1.23 mycroft ndp->ni_pathlen += slashes;
605 1.23 mycroft ndp->ni_next -= slashes;
606 1.14 mycroft cnp->cn_flags |= ISSYMLINK;
607 1.14 mycroft return (0);
608 1.10 cgd }
609 1.10 cgd
610 1.23 mycroft /*
611 1.23 mycroft * Check for directory, if the component was followed by a series of
612 1.23 mycroft * slashes.
613 1.23 mycroft */
614 1.23 mycroft if ((dp->v_type != VDIR) && (cnp->cn_flags & REQUIREDIR)) {
615 1.23 mycroft error = ENOTDIR;
616 1.23 mycroft goto bad2;
617 1.23 mycroft }
618 1.23 mycroft
619 1.10 cgd nextname:
620 1.10 cgd /*
621 1.23 mycroft * Not a symbolic link. If this was not the last component, then
622 1.23 mycroft * continue at the next component, else return.
623 1.10 cgd */
624 1.23 mycroft if (!(cnp->cn_flags & ISLASTCN)) {
625 1.12 mycroft cnp->cn_nameptr = ndp->ni_next;
626 1.10 cgd vrele(ndp->ni_dvp);
627 1.10 cgd goto dirloop;
628 1.10 cgd }
629 1.23 mycroft
630 1.23 mycroft terminal:
631 1.10 cgd /*
632 1.26 fvdl * Disallow directory write attempts on read-only file systems.
633 1.10 cgd */
634 1.26 fvdl if (rdonly &&
635 1.26 fvdl (cnp->cn_nameiop == DELETE || cnp->cn_nameiop == RENAME)) {
636 1.10 cgd /*
637 1.10 cgd * Disallow directory write attempts on read-only
638 1.10 cgd * file systems.
639 1.10 cgd */
640 1.26 fvdl error = EROFS;
641 1.26 fvdl goto bad2;
642 1.10 cgd }
643 1.23 mycroft if (ndp->ni_dvp != NULL) {
644 1.23 mycroft if (cnp->cn_flags & SAVESTART) {
645 1.23 mycroft ndp->ni_startdir = ndp->ni_dvp;
646 1.23 mycroft VREF(ndp->ni_startdir);
647 1.23 mycroft }
648 1.23 mycroft if (!wantparent)
649 1.23 mycroft vrele(ndp->ni_dvp);
650 1.10 cgd }
651 1.12 mycroft if ((cnp->cn_flags & LOCKLEAF) == 0)
652 1.26 fvdl VOP_UNLOCK(dp, 0);
653 1.10 cgd return (0);
654 1.10 cgd
655 1.10 cgd bad2:
656 1.31 wrstuden if ((cnp->cn_flags & LOCKPARENT) && (cnp->cn_flags & ISLASTCN) &&
657 1.31 wrstuden ((cnp->cn_flags & PDIRUNLOCK) == 0))
658 1.26 fvdl VOP_UNLOCK(ndp->ni_dvp, 0);
659 1.10 cgd vrele(ndp->ni_dvp);
660 1.10 cgd bad:
661 1.32 wrstuden if (dpunlocked)
662 1.32 wrstuden vrele(dp);
663 1.32 wrstuden else
664 1.32 wrstuden vput(dp);
665 1.10 cgd ndp->ni_vp = NULL;
666 1.12 mycroft return (error);
667 1.12 mycroft }
668 1.12 mycroft
669 1.12 mycroft /*
670 1.12 mycroft * Reacquire a path name component.
671 1.12 mycroft */
672 1.12 mycroft int
673 1.60 thorpej relookup(struct vnode *dvp, struct vnode **vpp, struct componentname *cnp)
674 1.12 mycroft {
675 1.26 fvdl struct vnode *dp = 0; /* the directory we are searching */
676 1.12 mycroft int wantparent; /* 1 => wantparent or lockparent flag */
677 1.12 mycroft int rdonly; /* lookup read-only flag bit */
678 1.12 mycroft int error = 0;
679 1.52 yamt #ifdef DEBUG
680 1.54 hannken u_long newhash; /* DEBUG: check name hash */
681 1.41 soren const char *cp; /* DEBUG: check name ptr/len */
682 1.52 yamt #endif /* DEBUG */
683 1.12 mycroft
684 1.12 mycroft /*
685 1.12 mycroft * Setup: break out flag bits into variables.
686 1.12 mycroft */
687 1.12 mycroft wantparent = cnp->cn_flags & (LOCKPARENT|WANTPARENT);
688 1.12 mycroft rdonly = cnp->cn_flags & RDONLY;
689 1.12 mycroft cnp->cn_flags &= ~ISSYMLINK;
690 1.12 mycroft dp = dvp;
691 1.26 fvdl vn_lock(dp, LK_EXCLUSIVE | LK_RETRY);
692 1.12 mycroft
693 1.12 mycroft /* dirloop: */
694 1.12 mycroft /*
695 1.12 mycroft * Search a new directory.
696 1.12 mycroft *
697 1.12 mycroft * The cn_hash value is for use by vfs_cache.
698 1.12 mycroft * The last component of the filename is left accessible via
699 1.12 mycroft * cnp->cn_nameptr for callers that need the name. Callers needing
700 1.12 mycroft * the name set the SAVENAME flag. When done, they assume
701 1.12 mycroft * responsibility for freeing the pathname buffer.
702 1.12 mycroft */
703 1.52 yamt #ifdef DEBUG
704 1.39 lukem cp = NULL;
705 1.39 lukem newhash = namei_hash(cnp->cn_nameptr, &cp);
706 1.12 mycroft if (newhash != cnp->cn_hash)
707 1.12 mycroft panic("relookup: bad hash");
708 1.12 mycroft if (cnp->cn_namelen != cp - cnp->cn_nameptr)
709 1.58 christos panic("relookup: bad len");
710 1.53 yamt while (*cp == '/')
711 1.53 yamt cp++;
712 1.12 mycroft if (*cp != 0)
713 1.12 mycroft panic("relookup: not last component");
714 1.52 yamt #endif /* DEBUG */
715 1.52 yamt #ifdef NAMEI_DIAGNOSTIC
716 1.19 christos printf("{%s}: ", cnp->cn_nameptr);
717 1.52 yamt #endif /* NAMEI_DIAGNOSTIC */
718 1.12 mycroft
719 1.12 mycroft /*
720 1.12 mycroft * Check for degenerate name (e.g. / or "")
721 1.12 mycroft * which is a way of talking about a directory,
722 1.12 mycroft * e.g. like "/." or ".".
723 1.12 mycroft */
724 1.23 mycroft if (cnp->cn_nameptr[0] == '\0')
725 1.23 mycroft panic("relookup: null name");
726 1.12 mycroft
727 1.12 mycroft if (cnp->cn_flags & ISDOTDOT)
728 1.58 christos panic("relookup: lookup on dot-dot");
729 1.12 mycroft
730 1.12 mycroft /*
731 1.12 mycroft * We now have a segment name to search for, and a directory to search.
732 1.12 mycroft */
733 1.16 christos if ((error = VOP_LOOKUP(dp, vpp, cnp)) != 0) {
734 1.12 mycroft #ifdef DIAGNOSTIC
735 1.12 mycroft if (*vpp != NULL)
736 1.43 christos panic("leaf `%s' should be empty", cnp->cn_nameptr);
737 1.12 mycroft #endif
738 1.12 mycroft if (error != EJUSTRETURN)
739 1.12 mycroft goto bad;
740 1.12 mycroft /*
741 1.12 mycroft * If creating and at end of pathname, then can consider
742 1.12 mycroft * allowing file to be created.
743 1.12 mycroft */
744 1.26 fvdl if (rdonly) {
745 1.12 mycroft error = EROFS;
746 1.12 mycroft goto bad;
747 1.12 mycroft }
748 1.12 mycroft /* ASSERT(dvp == ndp->ni_startdir) */
749 1.12 mycroft if (cnp->cn_flags & SAVESTART)
750 1.12 mycroft VREF(dvp);
751 1.12 mycroft /*
752 1.12 mycroft * We return with ni_vp NULL to indicate that the entry
753 1.12 mycroft * doesn't currently exist, leaving a pointer to the
754 1.12 mycroft * (possibly locked) directory inode in ndp->ni_dvp.
755 1.12 mycroft */
756 1.12 mycroft return (0);
757 1.12 mycroft }
758 1.12 mycroft dp = *vpp;
759 1.12 mycroft
760 1.12 mycroft #ifdef DIAGNOSTIC
761 1.12 mycroft /*
762 1.12 mycroft * Check for symbolic link
763 1.12 mycroft */
764 1.12 mycroft if (dp->v_type == VLNK && (cnp->cn_flags & FOLLOW))
765 1.58 christos panic("relookup: symlink found");
766 1.12 mycroft #endif
767 1.12 mycroft
768 1.12 mycroft /*
769 1.12 mycroft * Check for read-only file systems.
770 1.12 mycroft */
771 1.26 fvdl if (rdonly &&
772 1.26 fvdl (cnp->cn_nameiop == DELETE || cnp->cn_nameiop == RENAME)) {
773 1.26 fvdl error = EROFS;
774 1.26 fvdl goto bad2;
775 1.12 mycroft }
776 1.12 mycroft /* ASSERT(dvp == ndp->ni_startdir) */
777 1.12 mycroft if (cnp->cn_flags & SAVESTART)
778 1.12 mycroft VREF(dvp);
779 1.12 mycroft if (!wantparent)
780 1.12 mycroft vrele(dvp);
781 1.12 mycroft if ((cnp->cn_flags & LOCKLEAF) == 0)
782 1.26 fvdl VOP_UNLOCK(dp, 0);
783 1.12 mycroft return (0);
784 1.12 mycroft
785 1.12 mycroft bad2:
786 1.12 mycroft if ((cnp->cn_flags & LOCKPARENT) && (cnp->cn_flags & ISLASTCN))
787 1.26 fvdl VOP_UNLOCK(dvp, 0);
788 1.12 mycroft vrele(dvp);
789 1.12 mycroft bad:
790 1.12 mycroft vput(dp);
791 1.12 mycroft *vpp = NULL;
792 1.10 cgd return (error);
793 1.10 cgd }
794