vfs_syscalls.c revision 1.401 1 1.401 pooka /* $NetBSD: vfs_syscalls.c,v 1.401 2009/12/23 01:09:24 pooka Exp $ */
2 1.345 ad
3 1.345 ad /*-
4 1.390 ad * Copyright (c) 2008, 2009 The NetBSD Foundation, Inc.
5 1.345 ad * All rights reserved.
6 1.345 ad *
7 1.390 ad * This code is derived from software contributed to The NetBSD Foundation
8 1.390 ad * by Andrew Doran.
9 1.390 ad *
10 1.345 ad * Redistribution and use in source and binary forms, with or without
11 1.345 ad * modification, are permitted provided that the following conditions
12 1.345 ad * are met:
13 1.345 ad * 1. Redistributions of source code must retain the above copyright
14 1.345 ad * notice, this list of conditions and the following disclaimer.
15 1.345 ad * 2. Redistributions in binary form must reproduce the above copyright
16 1.345 ad * notice, this list of conditions and the following disclaimer in the
17 1.345 ad * documentation and/or other materials provided with the distribution.
18 1.345 ad *
19 1.345 ad * THIS SOFTWARE IS PROVIDED BY THE NETBSD FOUNDATION, INC. AND CONTRIBUTORS
20 1.345 ad * ``AS IS'' AND ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED
21 1.345 ad * TO, THE IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR
22 1.345 ad * PURPOSE ARE DISCLAIMED. IN NO EVENT SHALL THE FOUNDATION OR CONTRIBUTORS
23 1.345 ad * BE LIABLE FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR
24 1.345 ad * CONSEQUENTIAL DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF
25 1.345 ad * SUBSTITUTE GOODS OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS
26 1.345 ad * INTERRUPTION) HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN
27 1.345 ad * CONTRACT, STRICT LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE)
28 1.345 ad * ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE
29 1.345 ad * POSSIBILITY OF SUCH DAMAGE.
30 1.345 ad */
31 1.31 cgd
32 1.31 cgd /*
33 1.31 cgd * Copyright (c) 1989, 1993
34 1.31 cgd * The Regents of the University of California. All rights reserved.
35 1.31 cgd * (c) UNIX System Laboratories, Inc.
36 1.31 cgd * All or some portions of this file are derived from material licensed
37 1.31 cgd * to the University of California by American Telephone and Telegraph
38 1.31 cgd * Co. or Unix System Laboratories, Inc. and are reproduced herein with
39 1.31 cgd * the permission of UNIX System Laboratories, Inc.
40 1.31 cgd *
41 1.31 cgd * Redistribution and use in source and binary forms, with or without
42 1.31 cgd * modification, are permitted provided that the following conditions
43 1.31 cgd * are met:
44 1.31 cgd * 1. Redistributions of source code must retain the above copyright
45 1.31 cgd * notice, this list of conditions and the following disclaimer.
46 1.31 cgd * 2. Redistributions in binary form must reproduce the above copyright
47 1.31 cgd * notice, this list of conditions and the following disclaimer in the
48 1.31 cgd * documentation and/or other materials provided with the distribution.
49 1.191 agc * 3. Neither the name of the University nor the names of its contributors
50 1.31 cgd * may be used to endorse or promote products derived from this software
51 1.31 cgd * without specific prior written permission.
52 1.31 cgd *
53 1.31 cgd * THIS SOFTWARE IS PROVIDED BY THE REGENTS AND CONTRIBUTORS ``AS IS'' AND
54 1.31 cgd * ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE
55 1.31 cgd * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE
56 1.31 cgd * ARE DISCLAIMED. IN NO EVENT SHALL THE REGENTS OR CONTRIBUTORS BE LIABLE
57 1.31 cgd * FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL
58 1.31 cgd * DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS
59 1.31 cgd * OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION)
60 1.31 cgd * HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT
61 1.31 cgd * LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY
62 1.31 cgd * OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF
63 1.31 cgd * SUCH DAMAGE.
64 1.31 cgd *
65 1.113 fvdl * @(#)vfs_syscalls.c 8.42 (Berkeley) 7/31/95
66 1.31 cgd */
67 1.173 lukem
68 1.173 lukem #include <sys/cdefs.h>
69 1.401 pooka __KERNEL_RCSID(0, "$NetBSD: vfs_syscalls.c,v 1.401 2009/12/23 01:09:24 pooka Exp $");
70 1.111 mrg
71 1.378 ad #ifdef _KERNEL_OPT
72 1.258 elad #include "opt_fileassoc.h"
73 1.261 dogcow #include "veriexec.h"
74 1.378 ad #endif
75 1.31 cgd
76 1.31 cgd #include <sys/param.h>
77 1.31 cgd #include <sys/systm.h>
78 1.31 cgd #include <sys/namei.h>
79 1.31 cgd #include <sys/filedesc.h>
80 1.31 cgd #include <sys/kernel.h>
81 1.31 cgd #include <sys/file.h>
82 1.31 cgd #include <sys/stat.h>
83 1.31 cgd #include <sys/vnode.h>
84 1.31 cgd #include <sys/mount.h>
85 1.31 cgd #include <sys/proc.h>
86 1.31 cgd #include <sys/uio.h>
87 1.248 yamt #include <sys/kmem.h>
88 1.31 cgd #include <sys/dirent.h>
89 1.172 simonb #include <sys/sysctl.h>
90 1.35 cgd #include <sys/syscallargs.h>
91 1.306 dsl #include <sys/vfs_syscalls.h>
92 1.192 drochner #include <sys/ktrace.h>
93 1.251 elad #ifdef FILEASSOC
94 1.251 elad #include <sys/fileassoc.h>
95 1.251 elad #endif /* FILEASSOC */
96 1.219 blymn #include <sys/verified_exec.h>
97 1.242 elad #include <sys/kauth.h>
98 1.346 ad #include <sys/atomic.h>
99 1.360 ad #include <sys/module.h>
100 1.380 pooka #include <sys/buf.h>
101 1.35 cgd
102 1.148 fvdl #include <miscfs/genfs/genfs.h>
103 1.148 fvdl #include <miscfs/syncfs/syncfs.h>
104 1.342 ad #include <miscfs/specfs/specdev.h>
105 1.181 thorpej
106 1.232 jmmv #include <nfs/rpcv2.h>
107 1.232 jmmv #include <nfs/nfsproto.h>
108 1.232 jmmv #include <nfs/nfs.h>
109 1.232 jmmv #include <nfs/nfs_var.h>
110 1.232 jmmv
111 1.181 thorpej MALLOC_DEFINE(M_MOUNT, "mount", "vfs mount struct");
112 1.110 mrg
113 1.234 christos static int change_flags(struct vnode *, u_long, struct lwp *);
114 1.234 christos static int change_mode(struct vnode *, int, struct lwp *l);
115 1.234 christos static int change_owner(struct vnode *, uid_t, gid_t, struct lwp *, int);
116 1.63 christos
117 1.205 junyoung void checkdirs(struct vnode *);
118 1.31 cgd
119 1.31 cgd /*
120 1.31 cgd * Virtual File System System Calls
121 1.31 cgd */
122 1.31 cgd
123 1.31 cgd /*
124 1.31 cgd * Mount a file system.
125 1.31 cgd */
126 1.99 thorpej
127 1.99 thorpej /*
128 1.99 thorpej * This table is used to maintain compatibility with 4.3BSD
129 1.378 ad * and NetBSD 0.9 mount syscalls - and possibly other systems.
130 1.378 ad * Note, the order is important!
131 1.124 thorpej *
132 1.167 jdolecek * Do not modify this table. It should only contain filesystems
133 1.167 jdolecek * supported by NetBSD 0.9 and 4.3BSD.
134 1.99 thorpej */
135 1.167 jdolecek const char * const mountcompatnames[] = {
136 1.99 thorpej NULL, /* 0 = MOUNT_NONE */
137 1.167 jdolecek MOUNT_FFS, /* 1 = MOUNT_UFS */
138 1.99 thorpej MOUNT_NFS, /* 2 */
139 1.99 thorpej MOUNT_MFS, /* 3 */
140 1.99 thorpej MOUNT_MSDOS, /* 4 */
141 1.167 jdolecek MOUNT_CD9660, /* 5 = MOUNT_ISOFS */
142 1.167 jdolecek MOUNT_FDESC, /* 6 */
143 1.167 jdolecek MOUNT_KERNFS, /* 7 */
144 1.167 jdolecek NULL, /* 8 = MOUNT_DEVFS */
145 1.167 jdolecek MOUNT_AFS, /* 9 */
146 1.99 thorpej };
147 1.113 fvdl const int nmountcompatnames = sizeof(mountcompatnames) /
148 1.99 thorpej sizeof(mountcompatnames[0]);
149 1.99 thorpej
150 1.285 elad static int
151 1.283 elad mount_update(struct lwp *l, struct vnode *vp, const char *path, int flags,
152 1.324 pooka void *data, size_t *data_len)
153 1.56 thorpej {
154 1.113 fvdl struct mount *mp;
155 1.283 elad int error = 0, saved_flags;
156 1.283 elad
157 1.283 elad mp = vp->v_mount;
158 1.283 elad saved_flags = mp->mnt_flag;
159 1.283 elad
160 1.329 ad /* We can operate only on VV_ROOT nodes. */
161 1.329 ad if ((vp->v_vflag & VV_ROOT) == 0) {
162 1.329 ad error = EINVAL;
163 1.329 ad goto out;
164 1.329 ad }
165 1.31 cgd
166 1.218 yamt /*
167 1.283 elad * We only allow the filesystem to be reloaded if it
168 1.373 ad * is currently mounted read-only. Additionally, we
169 1.373 ad * prevent read-write to read-only downgrades.
170 1.283 elad */
171 1.373 ad if ((flags & (MNT_RELOAD | MNT_RDONLY)) != 0 &&
172 1.373 ad (mp->mnt_flag & MNT_RDONLY) == 0) {
173 1.329 ad error = EOPNOTSUPP; /* Needs translation */
174 1.329 ad goto out;
175 1.329 ad }
176 1.292 elad
177 1.292 elad error = kauth_authorize_system(l->l_cred, KAUTH_SYSTEM_MOUNT,
178 1.292 elad KAUTH_REQ_SYSTEM_MOUNT_UPDATE, mp, KAUTH_ARG(flags), data);
179 1.292 elad if (error)
180 1.329 ad goto out;
181 1.292 elad
182 1.358 ad if (vfs_busy(mp, NULL)) {
183 1.329 ad error = EPERM;
184 1.329 ad goto out;
185 1.329 ad }
186 1.283 elad
187 1.358 ad mutex_enter(&mp->mnt_updating);
188 1.358 ad
189 1.286 yamt mp->mnt_flag &= ~MNT_OP_FLAGS;
190 1.286 yamt mp->mnt_flag |= flags & (MNT_RELOAD | MNT_FORCE | MNT_UPDATE);
191 1.286 yamt
192 1.283 elad /*
193 1.283 elad * Set the mount level flags.
194 1.283 elad */
195 1.283 elad if (flags & MNT_RDONLY)
196 1.283 elad mp->mnt_flag |= MNT_RDONLY;
197 1.283 elad else if (mp->mnt_flag & MNT_RDONLY)
198 1.283 elad mp->mnt_iflag |= IMNT_WANTRDWR;
199 1.283 elad mp->mnt_flag &=
200 1.283 elad ~(MNT_NOSUID | MNT_NOEXEC | MNT_NODEV |
201 1.283 elad MNT_SYNCHRONOUS | MNT_UNION | MNT_ASYNC | MNT_NOCOREDUMP |
202 1.370 simonb MNT_NOATIME | MNT_NODEVMTIME | MNT_SYMPERM | MNT_SOFTDEP |
203 1.370 simonb MNT_LOG);
204 1.283 elad mp->mnt_flag |= flags &
205 1.283 elad (MNT_NOSUID | MNT_NOEXEC | MNT_NODEV |
206 1.283 elad MNT_SYNCHRONOUS | MNT_UNION | MNT_ASYNC | MNT_NOCOREDUMP |
207 1.283 elad MNT_NOATIME | MNT_NODEVMTIME | MNT_SYMPERM | MNT_SOFTDEP |
208 1.370 simonb MNT_LOG | MNT_IGNORE);
209 1.283 elad
210 1.332 pooka error = VFS_MOUNT(mp, path, data, data_len);
211 1.283 elad
212 1.320 dsl if (error && data != NULL) {
213 1.283 elad int error2;
214 1.283 elad
215 1.378 ad /*
216 1.378 ad * Update failed; let's try and see if it was an
217 1.379 ad * export request. For compat with 3.0 and earlier.
218 1.378 ad */
219 1.381 ad error2 = vfs_hooks_reexport(mp, path, data);
220 1.283 elad
221 1.381 ad /*
222 1.381 ad * Only update error code if the export request was
223 1.283 elad * understood but some problem occurred while
224 1.381 ad * processing it.
225 1.381 ad */
226 1.283 elad if (error2 != EJUSTRETURN)
227 1.283 elad error = error2;
228 1.283 elad }
229 1.381 ad
230 1.283 elad if (mp->mnt_iflag & IMNT_WANTRDWR)
231 1.283 elad mp->mnt_flag &= ~MNT_RDONLY;
232 1.283 elad if (error)
233 1.283 elad mp->mnt_flag = saved_flags;
234 1.286 yamt mp->mnt_flag &= ~MNT_OP_FLAGS;
235 1.286 yamt mp->mnt_iflag &= ~IMNT_WANTRDWR;
236 1.283 elad if ((mp->mnt_flag & (MNT_RDONLY | MNT_ASYNC)) == 0) {
237 1.283 elad if (mp->mnt_syncer == NULL)
238 1.283 elad error = vfs_allocate_syncvnode(mp);
239 1.125 tls } else {
240 1.283 elad if (mp->mnt_syncer != NULL)
241 1.283 elad vfs_deallocate_syncvnode(mp);
242 1.283 elad }
243 1.358 ad mutex_exit(&mp->mnt_updating);
244 1.354 ad vfs_unbusy(mp, false, NULL);
245 1.283 elad
246 1.329 ad out:
247 1.283 elad return (error);
248 1.283 elad }
249 1.283 elad
250 1.285 elad static int
251 1.320 dsl mount_get_vfsops(const char *fstype, struct vfsops **vfsops)
252 1.283 elad {
253 1.322 christos char fstypename[sizeof(((struct statvfs *)NULL)->f_fstypename)];
254 1.283 elad int error;
255 1.283 elad
256 1.320 dsl /* Copy file-system type from userspace. */
257 1.322 christos error = copyinstr(fstype, fstypename, sizeof(fstypename), NULL);
258 1.63 christos if (error) {
259 1.54 cgd /*
260 1.227 jmmv * Historically, filesystem types were identified by numbers.
261 1.54 cgd * If we get an integer for the filesystem type instead of a
262 1.54 cgd * string, we check to see if it matches one of the historic
263 1.54 cgd * filesystem types.
264 1.205 junyoung */
265 1.283 elad u_long fsindex = (u_long)fstype;
266 1.99 thorpej if (fsindex >= nmountcompatnames ||
267 1.320 dsl mountcompatnames[fsindex] == NULL)
268 1.320 dsl return ENODEV;
269 1.331 pooka strlcpy(fstypename, mountcompatnames[fsindex],
270 1.331 pooka sizeof(fstypename));
271 1.31 cgd }
272 1.283 elad
273 1.378 ad /* Accept `ufs' as an alias for `ffs', for compatibility. */
274 1.320 dsl if (strcmp(fstypename, "ufs") == 0)
275 1.320 dsl fstypename[0] = 'f';
276 1.285 elad
277 1.360 ad if ((*vfsops = vfs_getopsbyname(fstypename)) != NULL)
278 1.360 ad return 0;
279 1.360 ad
280 1.360 ad /* If we can autoload a vfs module, try again */
281 1.376 ad mutex_enter(&module_lock);
282 1.400 martin (void)module_autoload(fstypename, MODULE_CLASS_VFS);
283 1.376 ad mutex_exit(&module_lock);
284 1.360 ad
285 1.360 ad if ((*vfsops = vfs_getopsbyname(fstypename)) != NULL)
286 1.360 ad return 0;
287 1.360 ad
288 1.360 ad return ENODEV;
289 1.320 dsl }
290 1.320 dsl
291 1.320 dsl static int
292 1.320 dsl mount_domount(struct lwp *l, struct vnode **vpp, struct vfsops *vfsops,
293 1.337 ad const char *path, int flags, void *data, size_t *data_len, u_int recurse)
294 1.320 dsl {
295 1.366 simonb struct mount *mp;
296 1.320 dsl struct vnode *vp = *vpp;
297 1.320 dsl struct vattr va;
298 1.320 dsl int error;
299 1.320 dsl
300 1.320 dsl error = kauth_authorize_system(l->l_cred, KAUTH_SYSTEM_MOUNT,
301 1.320 dsl KAUTH_REQ_SYSTEM_MOUNT_NEW, vp, KAUTH_ARG(flags), data);
302 1.320 dsl if (error)
303 1.320 dsl return error;
304 1.320 dsl
305 1.320 dsl /* Can't make a non-dir a mount-point (from here anyway). */
306 1.320 dsl if (vp->v_type != VDIR)
307 1.320 dsl return ENOTDIR;
308 1.320 dsl
309 1.320 dsl /*
310 1.320 dsl * If the user is not root, ensure that they own the directory
311 1.320 dsl * onto which we are attempting to mount.
312 1.320 dsl */
313 1.332 pooka if ((error = VOP_GETATTR(vp, &va, l->l_cred)) != 0 ||
314 1.320 dsl (va.va_uid != kauth_cred_geteuid(l->l_cred) &&
315 1.320 dsl (error = kauth_authorize_generic(l->l_cred,
316 1.320 dsl KAUTH_GENERIC_ISSUSER, NULL)) != 0)) {
317 1.320 dsl return error;
318 1.283 elad }
319 1.283 elad
320 1.320 dsl if (flags & MNT_EXPORTED)
321 1.320 dsl return EINVAL;
322 1.320 dsl
323 1.320 dsl if ((error = vinvalbuf(vp, V_SAVE, l->l_cred, l, 0, 0)) != 0)
324 1.320 dsl return error;
325 1.320 dsl
326 1.283 elad /*
327 1.283 elad * Check if a file-system is not already mounted on this vnode.
328 1.283 elad */
329 1.320 dsl if (vp->v_mountedhere != NULL)
330 1.320 dsl return EBUSY;
331 1.283 elad
332 1.393 dyoung if ((mp = vfs_mountalloc(vfsops, vp)) == NULL)
333 1.345 ad return ENOMEM;
334 1.283 elad
335 1.257 ad mp->mnt_stat.f_owner = kauth_cred_geteuid(l->l_cred);
336 1.195 thorpej
337 1.195 thorpej /*
338 1.195 thorpej * The underlying file system may refuse the mount for
339 1.198 thorpej * various reasons. Allow the user to force it to happen.
340 1.286 yamt *
341 1.284 elad * Set the mount level flags.
342 1.284 elad */
343 1.286 yamt mp->mnt_flag = flags &
344 1.286 yamt (MNT_FORCE | MNT_NOSUID | MNT_NOEXEC | MNT_NODEV |
345 1.284 elad MNT_SYNCHRONOUS | MNT_UNION | MNT_ASYNC | MNT_NOCOREDUMP |
346 1.284 elad MNT_NOATIME | MNT_NODEVMTIME | MNT_SYMPERM | MNT_SOFTDEP |
347 1.370 simonb MNT_LOG | MNT_IGNORE | MNT_RDONLY);
348 1.284 elad
349 1.393 dyoung mutex_enter(&mp->mnt_updating);
350 1.332 pooka error = VFS_MOUNT(mp, path, data, data_len);
351 1.286 yamt mp->mnt_flag &= ~MNT_OP_FLAGS;
352 1.232 jmmv
353 1.31 cgd /*
354 1.31 cgd * Put the new filesystem on the mount list after root.
355 1.31 cgd */
356 1.31 cgd cache_purge(vp);
357 1.320 dsl if (error != 0) {
358 1.283 elad vp->v_mountedhere = NULL;
359 1.358 ad mutex_exit(&mp->mnt_updating);
360 1.354 ad vfs_unbusy(mp, false, NULL);
361 1.358 ad vfs_destroy(mp);
362 1.320 dsl return error;
363 1.31 cgd }
364 1.283 elad
365 1.320 dsl mp->mnt_iflag &= ~IMNT_WANTRDWR;
366 1.345 ad mutex_enter(&mountlist_lock);
367 1.320 dsl vp->v_mountedhere = mp;
368 1.320 dsl CIRCLEQ_INSERT_TAIL(&mountlist, mp, mnt_list);
369 1.329 ad mutex_exit(&mountlist_lock);
370 1.337 ad vn_restorerecurse(vp, recurse);
371 1.320 dsl VOP_UNLOCK(vp, 0);
372 1.320 dsl checkdirs(vp);
373 1.320 dsl if ((mp->mnt_flag & (MNT_RDONLY | MNT_ASYNC)) == 0)
374 1.320 dsl error = vfs_allocate_syncvnode(mp);
375 1.347 ad /* Hold an additional reference to the mount across VFS_START(). */
376 1.358 ad mutex_exit(&mp->mnt_updating);
377 1.354 ad vfs_unbusy(mp, true, NULL);
378 1.332 pooka (void) VFS_STATVFS(mp, &mp->mnt_stat);
379 1.332 pooka error = VFS_START(mp, 0);
380 1.372 ad if (error)
381 1.320 dsl vrele(vp);
382 1.347 ad /* Drop reference held for VFS_START(). */
383 1.358 ad vfs_destroy(mp);
384 1.320 dsl *vpp = NULL;
385 1.320 dsl return error;
386 1.283 elad }
387 1.283 elad
388 1.283 elad static int
389 1.283 elad mount_getargs(struct lwp *l, struct vnode *vp, const char *path, int flags,
390 1.324 pooka void *data, size_t *data_len)
391 1.283 elad {
392 1.283 elad struct mount *mp;
393 1.283 elad int error;
394 1.283 elad
395 1.289 elad /* If MNT_GETARGS is specified, it should be the only flag. */
396 1.320 dsl if (flags & ~MNT_GETARGS)
397 1.320 dsl return EINVAL;
398 1.289 elad
399 1.283 elad mp = vp->v_mount;
400 1.283 elad
401 1.292 elad /* XXX: probably some notion of "can see" here if we want isolation. */
402 1.292 elad error = kauth_authorize_system(l->l_cred, KAUTH_SYSTEM_MOUNT,
403 1.292 elad KAUTH_REQ_SYSTEM_MOUNT_GET, mp, data, NULL);
404 1.292 elad if (error)
405 1.320 dsl return error;
406 1.292 elad
407 1.329 ad if ((vp->v_vflag & VV_ROOT) == 0)
408 1.320 dsl return EINVAL;
409 1.283 elad
410 1.358 ad if (vfs_busy(mp, NULL))
411 1.320 dsl return EPERM;
412 1.283 elad
413 1.358 ad mutex_enter(&mp->mnt_updating);
414 1.286 yamt mp->mnt_flag &= ~MNT_OP_FLAGS;
415 1.286 yamt mp->mnt_flag |= MNT_GETARGS;
416 1.332 pooka error = VFS_MOUNT(mp, path, data, data_len);
417 1.286 yamt mp->mnt_flag &= ~MNT_OP_FLAGS;
418 1.358 ad mutex_exit(&mp->mnt_updating);
419 1.283 elad
420 1.354 ad vfs_unbusy(mp, false, NULL);
421 1.283 elad return (error);
422 1.283 elad }
423 1.283 elad
424 1.321 dsl int
425 1.335 dsl sys___mount50(struct lwp *l, const struct sys___mount50_args *uap, register_t *retval)
426 1.321 dsl {
427 1.335 dsl /* {
428 1.321 dsl syscallarg(const char *) type;
429 1.321 dsl syscallarg(const char *) path;
430 1.321 dsl syscallarg(int) flags;
431 1.321 dsl syscallarg(void *) data;
432 1.321 dsl syscallarg(size_t) data_len;
433 1.335 dsl } */
434 1.321 dsl
435 1.321 dsl return do_sys_mount(l, NULL, SCARG(uap, type), SCARG(uap, path),
436 1.321 dsl SCARG(uap, flags), SCARG(uap, data), UIO_USERSPACE,
437 1.321 dsl SCARG(uap, data_len), retval);
438 1.321 dsl }
439 1.320 dsl
440 1.320 dsl int
441 1.320 dsl do_sys_mount(struct lwp *l, struct vfsops *vfsops, const char *type,
442 1.320 dsl const char *path, int flags, void *data, enum uio_seg data_seg,
443 1.320 dsl size_t data_len, register_t *retval)
444 1.320 dsl {
445 1.283 elad struct vnode *vp;
446 1.320 dsl void *data_buf = data;
447 1.337 ad u_int recurse;
448 1.283 elad int error;
449 1.283 elad
450 1.283 elad /*
451 1.283 elad * Get vnode to be covered
452 1.283 elad */
453 1.395 dholland error = namei_simple_user(path, NSM_FOLLOW_TRYEMULROOT, &vp);
454 1.395 dholland if (error != 0)
455 1.283 elad return (error);
456 1.283 elad
457 1.283 elad /*
458 1.283 elad * A lookup in VFS_MOUNT might result in an attempt to
459 1.283 elad * lock this vnode again, so make the lock recursive.
460 1.283 elad */
461 1.320 dsl if (vfsops == NULL) {
462 1.361 ad if (flags & (MNT_GETARGS | MNT_UPDATE)) {
463 1.361 ad vn_lock(vp, LK_EXCLUSIVE | LK_RETRY);
464 1.361 ad recurse = vn_setrecurse(vp);
465 1.320 dsl vfsops = vp->v_mount->mnt_op;
466 1.361 ad } else {
467 1.320 dsl /* 'type' is userspace */
468 1.320 dsl error = mount_get_vfsops(type, &vfsops);
469 1.361 ad vn_lock(vp, LK_EXCLUSIVE | LK_RETRY);
470 1.361 ad recurse = vn_setrecurse(vp);
471 1.320 dsl if (error != 0)
472 1.320 dsl goto done;
473 1.320 dsl }
474 1.361 ad } else {
475 1.361 ad vn_lock(vp, LK_EXCLUSIVE | LK_RETRY);
476 1.361 ad recurse = vn_setrecurse(vp);
477 1.320 dsl }
478 1.320 dsl
479 1.320 dsl if (data != NULL && data_seg == UIO_USERSPACE) {
480 1.320 dsl if (data_len == 0) {
481 1.320 dsl /* No length supplied, use default for filesystem */
482 1.320 dsl data_len = vfsops->vfs_min_mount_data;
483 1.320 dsl if (data_len > VFS_MAX_MOUNT_DATA) {
484 1.320 dsl error = EINVAL;
485 1.320 dsl goto done;
486 1.320 dsl }
487 1.378 ad /*
488 1.378 ad * Hopefully a longer buffer won't make copyin() fail.
489 1.378 ad * For compatibility with 3.0 and earlier.
490 1.378 ad */
491 1.320 dsl if (flags & MNT_UPDATE
492 1.320 dsl && data_len < sizeof (struct mnt_export_args30))
493 1.320 dsl data_len = sizeof (struct mnt_export_args30);
494 1.320 dsl }
495 1.384 yamt data_buf = kmem_alloc(data_len, KM_SLEEP);
496 1.283 elad
497 1.320 dsl /* NFS needs the buffer even for mnt_getargs .... */
498 1.320 dsl error = copyin(data, data_buf, data_len);
499 1.320 dsl if (error != 0)
500 1.320 dsl goto done;
501 1.320 dsl }
502 1.320 dsl
503 1.320 dsl if (flags & MNT_GETARGS) {
504 1.320 dsl if (data_len == 0) {
505 1.320 dsl error = EINVAL;
506 1.320 dsl goto done;
507 1.320 dsl }
508 1.324 pooka error = mount_getargs(l, vp, path, flags, data_buf, &data_len);
509 1.320 dsl if (error != 0)
510 1.320 dsl goto done;
511 1.320 dsl if (data_seg == UIO_USERSPACE)
512 1.320 dsl error = copyout(data_buf, data, data_len);
513 1.320 dsl *retval = data_len;
514 1.320 dsl } else if (flags & MNT_UPDATE) {
515 1.324 pooka error = mount_update(l, vp, path, flags, data_buf, &data_len);
516 1.283 elad } else {
517 1.283 elad /* Locking is handled internally in mount_domount(). */
518 1.320 dsl error = mount_domount(l, &vp, vfsops, path, flags, data_buf,
519 1.337 ad &data_len, recurse);
520 1.283 elad }
521 1.283 elad
522 1.320 dsl done:
523 1.337 ad if (vp != NULL) {
524 1.337 ad vn_restorerecurse(vp, recurse);
525 1.337 ad vput(vp);
526 1.337 ad }
527 1.320 dsl if (data_buf != data)
528 1.384 yamt kmem_free(data_buf, data_len);
529 1.31 cgd return (error);
530 1.31 cgd }
531 1.31 cgd
532 1.31 cgd /*
533 1.43 mycroft * Scan all active processes to see if any of them have a current
534 1.43 mycroft * or root directory onto which the new filesystem has just been
535 1.43 mycroft * mounted. If so, replace them with the new mount point.
536 1.43 mycroft */
537 1.63 christos void
538 1.221 thorpej checkdirs(struct vnode *olddp)
539 1.43 mycroft {
540 1.134 thorpej struct cwdinfo *cwdi;
541 1.355 ad struct vnode *newdp, *rele1, *rele2;
542 1.43 mycroft struct proc *p;
543 1.355 ad bool retry;
544 1.43 mycroft
545 1.43 mycroft if (olddp->v_usecount == 1)
546 1.43 mycroft return;
547 1.189 thorpej if (VFS_ROOT(olddp->v_mountedhere, &newdp))
548 1.43 mycroft panic("mount: lost mount");
549 1.355 ad
550 1.355 ad do {
551 1.355 ad retry = false;
552 1.355 ad mutex_enter(proc_lock);
553 1.355 ad PROCLIST_FOREACH(p, &allproc) {
554 1.355 ad if ((p->p_flag & PK_MARKER) != 0)
555 1.355 ad continue;
556 1.355 ad if ((cwdi = p->p_cwdi) == NULL)
557 1.355 ad continue;
558 1.355 ad /*
559 1.355 ad * Can't change to the old directory any more,
560 1.355 ad * so even if we see a stale value it's not a
561 1.355 ad * problem.
562 1.355 ad */
563 1.355 ad if (cwdi->cwdi_cdir != olddp &&
564 1.355 ad cwdi->cwdi_rdir != olddp)
565 1.355 ad continue;
566 1.355 ad retry = true;
567 1.355 ad rele1 = NULL;
568 1.355 ad rele2 = NULL;
569 1.355 ad atomic_inc_uint(&cwdi->cwdi_refcnt);
570 1.355 ad mutex_exit(proc_lock);
571 1.355 ad rw_enter(&cwdi->cwdi_lock, RW_WRITER);
572 1.355 ad if (cwdi->cwdi_cdir == olddp) {
573 1.355 ad rele1 = cwdi->cwdi_cdir;
574 1.355 ad VREF(newdp);
575 1.355 ad cwdi->cwdi_cdir = newdp;
576 1.355 ad }
577 1.355 ad if (cwdi->cwdi_rdir == olddp) {
578 1.355 ad rele2 = cwdi->cwdi_rdir;
579 1.355 ad VREF(newdp);
580 1.355 ad cwdi->cwdi_rdir = newdp;
581 1.355 ad }
582 1.355 ad rw_exit(&cwdi->cwdi_lock);
583 1.355 ad cwdfree(cwdi);
584 1.355 ad if (rele1 != NULL)
585 1.355 ad vrele(rele1);
586 1.355 ad if (rele2 != NULL)
587 1.355 ad vrele(rele2);
588 1.355 ad mutex_enter(proc_lock);
589 1.355 ad break;
590 1.43 mycroft }
591 1.355 ad mutex_exit(proc_lock);
592 1.355 ad } while (retry);
593 1.355 ad
594 1.43 mycroft if (rootvnode == olddp) {
595 1.43 mycroft vrele(rootvnode);
596 1.43 mycroft VREF(newdp);
597 1.43 mycroft rootvnode = newdp;
598 1.43 mycroft }
599 1.43 mycroft vput(newdp);
600 1.43 mycroft }
601 1.43 mycroft
602 1.43 mycroft /*
603 1.31 cgd * Unmount a file system.
604 1.31 cgd *
605 1.31 cgd * Note: unmount takes a path to the vnode mounted on as argument,
606 1.31 cgd * not special file (as before).
607 1.31 cgd */
608 1.31 cgd /* ARGSUSED */
609 1.63 christos int
610 1.335 dsl sys_unmount(struct lwp *l, const struct sys_unmount_args *uap, register_t *retval)
611 1.56 thorpej {
612 1.335 dsl /* {
613 1.74 cgd syscallarg(const char *) path;
614 1.35 cgd syscallarg(int) flags;
615 1.335 dsl } */
616 1.155 augustss struct vnode *vp;
617 1.31 cgd struct mount *mp;
618 1.31 cgd int error;
619 1.31 cgd struct nameidata nd;
620 1.31 cgd
621 1.310 dsl NDINIT(&nd, LOOKUP, FOLLOW | LOCKLEAF | TRYEMULROOT, UIO_USERSPACE,
622 1.334 pooka SCARG(uap, path));
623 1.63 christos if ((error = namei(&nd)) != 0)
624 1.31 cgd return (error);
625 1.31 cgd vp = nd.ni_vp;
626 1.43 mycroft mp = vp->v_mount;
627 1.358 ad atomic_inc_uint(&mp->mnt_refcnt);
628 1.345 ad VOP_UNLOCK(vp, 0);
629 1.31 cgd
630 1.295 elad error = kauth_authorize_system(l->l_cred, KAUTH_SYSTEM_MOUNT,
631 1.295 elad KAUTH_REQ_SYSTEM_MOUNT_UNMOUNT, mp, NULL, NULL);
632 1.295 elad if (error) {
633 1.345 ad vrele(vp);
634 1.358 ad vfs_destroy(mp);
635 1.31 cgd return (error);
636 1.31 cgd }
637 1.31 cgd
638 1.31 cgd /*
639 1.47 mycroft * Don't allow unmounting the root file system.
640 1.47 mycroft */
641 1.47 mycroft if (mp->mnt_flag & MNT_ROOTFS) {
642 1.345 ad vrele(vp);
643 1.358 ad vfs_destroy(mp);
644 1.47 mycroft return (EINVAL);
645 1.47 mycroft }
646 1.47 mycroft
647 1.47 mycroft /*
648 1.31 cgd * Must be the root of the filesystem
649 1.31 cgd */
650 1.329 ad if ((vp->v_vflag & VV_ROOT) == 0) {
651 1.345 ad vrele(vp);
652 1.358 ad vfs_destroy(mp);
653 1.31 cgd return (EINVAL);
654 1.31 cgd }
655 1.78 fvdl
656 1.359 ad vrele(vp);
657 1.358 ad error = dounmount(mp, SCARG(uap, flags), l);
658 1.374 ad vfs_destroy(mp);
659 1.358 ad return error;
660 1.31 cgd }
661 1.31 cgd
662 1.31 cgd /*
663 1.358 ad * Do the actual file system unmount. File system is assumed to have
664 1.358 ad * been locked by the caller.
665 1.358 ad *
666 1.375 wiz * => Caller hold reference to the mount, explicitly for dounmount().
667 1.31 cgd */
668 1.63 christos int
669 1.234 christos dounmount(struct mount *mp, int flags, struct lwp *l)
670 1.31 cgd {
671 1.31 cgd struct vnode *coveredvp;
672 1.31 cgd int error;
673 1.140 sommerfe int async;
674 1.162 fvdl int used_syncer;
675 1.31 cgd
676 1.256 elad #if NVERIEXEC > 0
677 1.279 elad error = veriexec_unmountchk(mp);
678 1.279 elad if (error)
679 1.279 elad return (error);
680 1.256 elad #endif /* NVERIEXEC > 0 */
681 1.251 elad
682 1.358 ad /*
683 1.358 ad * XXX Freeze syncer. Must do this before locking the
684 1.358 ad * mount point. See dounmount() for details.
685 1.358 ad */
686 1.358 ad mutex_enter(&syncer_mutex);
687 1.358 ad rw_enter(&mp->mnt_unmounting, RW_WRITER);
688 1.358 ad if ((mp->mnt_iflag & IMNT_GONE) != 0) {
689 1.358 ad rw_exit(&mp->mnt_unmounting);
690 1.358 ad mutex_exit(&syncer_mutex);
691 1.358 ad return ENOENT;
692 1.358 ad }
693 1.358 ad
694 1.162 fvdl used_syncer = (mp->mnt_syncer != NULL);
695 1.162 fvdl
696 1.148 fvdl /*
697 1.165 thorpej * XXX Syncer must be frozen when we get here. This should really
698 1.390 ad * be done on a per-mountpoint basis, but the syncer doesn't work
699 1.390 ad * like that.
700 1.165 thorpej *
701 1.300 ad * The caller of dounmount() must acquire syncer_mutex because
702 1.300 ad * the syncer itself acquires locks in syncer_mutex -> vfs_busy
703 1.165 thorpej * order, and we must preserve that order to avoid deadlock.
704 1.165 thorpej *
705 1.165 thorpej * So, if the file system did not use the syncer, now is
706 1.300 ad * the time to release the syncer_mutex.
707 1.148 fvdl */
708 1.165 thorpej if (used_syncer == 0)
709 1.300 ad mutex_exit(&syncer_mutex);
710 1.148 fvdl
711 1.196 dbj mp->mnt_iflag |= IMNT_UNMOUNT;
712 1.141 sommerfe async = mp->mnt_flag & MNT_ASYNC;
713 1.151 mycroft mp->mnt_flag &= ~MNT_ASYNC;
714 1.31 cgd cache_purgevfs(mp); /* remove cache entries for this file sys */
715 1.160 mycroft if (mp->mnt_syncer != NULL)
716 1.160 mycroft vfs_deallocate_syncvnode(mp);
717 1.209 hannken error = 0;
718 1.209 hannken if ((mp->mnt_flag & MNT_RDONLY) == 0) {
719 1.371 hannken error = VFS_SYNC(mp, MNT_WAIT, l->l_cred);
720 1.209 hannken }
721 1.342 ad vfs_scrubvnlist(mp);
722 1.209 hannken if (error == 0 || (flags & MNT_FORCE))
723 1.332 pooka error = VFS_UNMOUNT(mp, flags);
724 1.31 cgd if (error) {
725 1.151 mycroft if ((mp->mnt_flag & (MNT_RDONLY | MNT_ASYNC)) == 0)
726 1.148 fvdl (void) vfs_allocate_syncvnode(mp);
727 1.196 dbj mp->mnt_iflag &= ~IMNT_UNMOUNT;
728 1.140 sommerfe mp->mnt_flag |= async;
729 1.358 ad rw_exit(&mp->mnt_unmounting);
730 1.162 fvdl if (used_syncer)
731 1.300 ad mutex_exit(&syncer_mutex);
732 1.142 sommerfe return (error);
733 1.113 fvdl }
734 1.338 ad vfs_scrubvnlist(mp);
735 1.358 ad mutex_enter(&mountlist_lock);
736 1.297 hannken if ((coveredvp = mp->mnt_vnodecovered) != NULLVP)
737 1.113 fvdl coveredvp->v_mountedhere = NULL;
738 1.358 ad CIRCLEQ_REMOVE(&mountlist, mp, mnt_list);
739 1.358 ad mp->mnt_iflag |= IMNT_GONE;
740 1.358 ad mutex_exit(&mountlist_lock);
741 1.273 reinoud if (TAILQ_FIRST(&mp->mnt_vnodelist) != NULL)
742 1.113 fvdl panic("unmount: dangling vnode");
743 1.162 fvdl if (used_syncer)
744 1.300 ad mutex_exit(&syncer_mutex);
745 1.231 jmmv vfs_hooks_unmount(mp);
746 1.358 ad rw_exit(&mp->mnt_unmounting);
747 1.374 ad vfs_destroy(mp); /* reference from mount() */
748 1.345 ad if (coveredvp != NULLVP)
749 1.345 ad vrele(coveredvp);
750 1.113 fvdl return (0);
751 1.31 cgd }
752 1.31 cgd
753 1.31 cgd /*
754 1.31 cgd * Sync each mounted filesystem.
755 1.31 cgd */
756 1.31 cgd #ifdef DEBUG
757 1.31 cgd int syncprt = 0;
758 1.31 cgd struct ctldebug debug0 = { "syncprt", &syncprt };
759 1.31 cgd #endif
760 1.31 cgd
761 1.31 cgd /* ARGSUSED */
762 1.63 christos int
763 1.335 dsl sys_sync(struct lwp *l, const void *v, register_t *retval)
764 1.31 cgd {
765 1.155 augustss struct mount *mp, *nmp;
766 1.31 cgd int asyncflag;
767 1.257 ad
768 1.257 ad if (l == NULL)
769 1.257 ad l = &lwp0;
770 1.31 cgd
771 1.329 ad mutex_enter(&mountlist_lock);
772 1.353 ad for (mp = CIRCLEQ_FIRST(&mountlist); mp != (void *)&mountlist;
773 1.353 ad mp = nmp) {
774 1.358 ad if (vfs_busy(mp, &nmp)) {
775 1.113 fvdl continue;
776 1.113 fvdl }
777 1.358 ad mutex_enter(&mp->mnt_updating);
778 1.307 hannken if ((mp->mnt_flag & MNT_RDONLY) == 0) {
779 1.31 cgd asyncflag = mp->mnt_flag & MNT_ASYNC;
780 1.31 cgd mp->mnt_flag &= ~MNT_ASYNC;
781 1.332 pooka VFS_SYNC(mp, MNT_NOWAIT, l->l_cred);
782 1.31 cgd if (asyncflag)
783 1.113 fvdl mp->mnt_flag |= MNT_ASYNC;
784 1.31 cgd }
785 1.358 ad mutex_exit(&mp->mnt_updating);
786 1.354 ad vfs_unbusy(mp, false, &nmp);
787 1.31 cgd }
788 1.329 ad mutex_exit(&mountlist_lock);
789 1.31 cgd #ifdef DEBUG
790 1.31 cgd if (syncprt)
791 1.31 cgd vfs_bufstats();
792 1.31 cgd #endif /* DEBUG */
793 1.31 cgd return (0);
794 1.31 cgd }
795 1.31 cgd
796 1.31 cgd /*
797 1.31 cgd * Change filesystem quotas.
798 1.31 cgd */
799 1.31 cgd /* ARGSUSED */
800 1.63 christos int
801 1.335 dsl sys_quotactl(struct lwp *l, const struct sys_quotactl_args *uap, register_t *retval)
802 1.56 thorpej {
803 1.335 dsl /* {
804 1.74 cgd syscallarg(const char *) path;
805 1.35 cgd syscallarg(int) cmd;
806 1.35 cgd syscallarg(int) uid;
807 1.272 christos syscallarg(void *) arg;
808 1.335 dsl } */
809 1.155 augustss struct mount *mp;
810 1.31 cgd int error;
811 1.395 dholland struct vnode *vp;
812 1.31 cgd
813 1.395 dholland error = namei_simple_user(SCARG(uap, path),
814 1.395 dholland NSM_FOLLOW_TRYEMULROOT, &vp);
815 1.395 dholland if (error != 0)
816 1.31 cgd return (error);
817 1.395 dholland mp = vp->v_mount;
818 1.197 hannken error = VFS_QUOTACTL(mp, SCARG(uap, cmd), SCARG(uap, uid),
819 1.332 pooka SCARG(uap, arg));
820 1.395 dholland vrele(vp);
821 1.197 hannken return (error);
822 1.31 cgd }
823 1.31 cgd
824 1.206 christos int
825 1.234 christos dostatvfs(struct mount *mp, struct statvfs *sp, struct lwp *l, int flags,
826 1.185 christos int root)
827 1.185 christos {
828 1.234 christos struct cwdinfo *cwdi = l->l_proc->p_cwdi;
829 1.185 christos int error = 0;
830 1.185 christos
831 1.185 christos /*
832 1.185 christos * If MNT_NOWAIT or MNT_LAZY is specified, do not
833 1.204 dbj * refresh the fsstat cache. MNT_WAIT or MNT_LAZY
834 1.185 christos * overrides MNT_NOWAIT.
835 1.185 christos */
836 1.185 christos if (flags == MNT_NOWAIT || flags == MNT_LAZY ||
837 1.185 christos (flags != MNT_WAIT && flags != 0)) {
838 1.185 christos memcpy(sp, &mp->mnt_stat, sizeof(*sp));
839 1.185 christos goto done;
840 1.185 christos }
841 1.205 junyoung
842 1.211 jdolecek /* Get the filesystem stats now */
843 1.211 jdolecek memset(sp, 0, sizeof(*sp));
844 1.332 pooka if ((error = VFS_STATVFS(mp, sp)) != 0) {
845 1.185 christos return error;
846 1.185 christos }
847 1.185 christos
848 1.185 christos if (cwdi->cwdi_rdir == NULL)
849 1.185 christos (void)memcpy(&mp->mnt_stat, sp, sizeof(mp->mnt_stat));
850 1.185 christos done:
851 1.185 christos if (cwdi->cwdi_rdir != NULL) {
852 1.185 christos size_t len;
853 1.185 christos char *bp;
854 1.364 christos char c;
855 1.236 yamt char *path = PNBUF_GET();
856 1.185 christos
857 1.185 christos bp = path + MAXPATHLEN;
858 1.185 christos *--bp = '\0';
859 1.328 ad rw_enter(&cwdi->cwdi_lock, RW_READER);
860 1.185 christos error = getcwd_common(cwdi->cwdi_rdir, rootvnode, &bp, path,
861 1.234 christos MAXPATHLEN / 2, 0, l);
862 1.328 ad rw_exit(&cwdi->cwdi_lock);
863 1.185 christos if (error) {
864 1.236 yamt PNBUF_PUT(path);
865 1.185 christos return error;
866 1.185 christos }
867 1.185 christos len = strlen(bp);
868 1.387 christos if (len != 1) {
869 1.387 christos /*
870 1.387 christos * for mount points that are below our root, we can see
871 1.387 christos * them, so we fix up the pathname and return them. The
872 1.387 christos * rest we cannot see, so we don't allow viewing the
873 1.387 christos * data.
874 1.387 christos */
875 1.387 christos if (strncmp(bp, sp->f_mntonname, len) == 0 &&
876 1.387 christos ((c = sp->f_mntonname[len]) == '/' || c == '\0')) {
877 1.387 christos (void)strlcpy(sp->f_mntonname,
878 1.388 enami c == '\0' ? "/" : &sp->f_mntonname[len],
879 1.187 itojun sizeof(sp->f_mntonname));
880 1.387 christos } else {
881 1.387 christos if (root)
882 1.387 christos (void)strlcpy(sp->f_mntonname, "/",
883 1.387 christos sizeof(sp->f_mntonname));
884 1.387 christos else
885 1.387 christos error = EPERM;
886 1.387 christos }
887 1.185 christos }
888 1.236 yamt PNBUF_PUT(path);
889 1.185 christos }
890 1.206 christos sp->f_flag = mp->mnt_flag & MNT_VISFLAGMASK;
891 1.185 christos return error;
892 1.185 christos }
893 1.185 christos
894 1.31 cgd /*
895 1.311 dsl * Get filesystem statistics by path.
896 1.31 cgd */
897 1.311 dsl int
898 1.311 dsl do_sys_pstatvfs(struct lwp *l, const char *path, int flags, struct statvfs *sb)
899 1.311 dsl {
900 1.311 dsl struct mount *mp;
901 1.311 dsl int error;
902 1.395 dholland struct vnode *vp;
903 1.311 dsl
904 1.395 dholland error = namei_simple_user(path, NSM_FOLLOW_TRYEMULROOT, &vp);
905 1.395 dholland if (error != 0)
906 1.311 dsl return error;
907 1.395 dholland mp = vp->v_mount;
908 1.311 dsl error = dostatvfs(mp, sb, l, flags, 1);
909 1.395 dholland vrele(vp);
910 1.311 dsl return error;
911 1.311 dsl }
912 1.311 dsl
913 1.31 cgd /* ARGSUSED */
914 1.63 christos int
915 1.335 dsl sys_statvfs1(struct lwp *l, const struct sys_statvfs1_args *uap, register_t *retval)
916 1.56 thorpej {
917 1.335 dsl /* {
918 1.74 cgd syscallarg(const char *) path;
919 1.206 christos syscallarg(struct statvfs *) buf;
920 1.206 christos syscallarg(int) flags;
921 1.335 dsl } */
922 1.241 yamt struct statvfs *sb;
923 1.31 cgd int error;
924 1.31 cgd
925 1.241 yamt sb = STATVFSBUF_GET();
926 1.311 dsl error = do_sys_pstatvfs(l, SCARG(uap, path), SCARG(uap, flags), sb);
927 1.311 dsl if (error == 0)
928 1.241 yamt error = copyout(sb, SCARG(uap, buf), sizeof(*sb));
929 1.241 yamt STATVFSBUF_PUT(sb);
930 1.241 yamt return error;
931 1.31 cgd }
932 1.31 cgd
933 1.31 cgd /*
934 1.311 dsl * Get filesystem statistics by fd.
935 1.31 cgd */
936 1.311 dsl int
937 1.311 dsl do_sys_fstatvfs(struct lwp *l, int fd, int flags, struct statvfs *sb)
938 1.311 dsl {
939 1.346 ad file_t *fp;
940 1.311 dsl struct mount *mp;
941 1.311 dsl int error;
942 1.311 dsl
943 1.346 ad /* fd_getvnode() will use the descriptor for us */
944 1.346 ad if ((error = fd_getvnode(fd, &fp)) != 0)
945 1.311 dsl return (error);
946 1.311 dsl mp = ((struct vnode *)fp->f_data)->v_mount;
947 1.346 ad error = dostatvfs(mp, sb, curlwp, flags, 1);
948 1.346 ad fd_putfile(fd);
949 1.311 dsl return error;
950 1.311 dsl }
951 1.311 dsl
952 1.31 cgd /* ARGSUSED */
953 1.63 christos int
954 1.335 dsl sys_fstatvfs1(struct lwp *l, const struct sys_fstatvfs1_args *uap, register_t *retval)
955 1.56 thorpej {
956 1.335 dsl /* {
957 1.35 cgd syscallarg(int) fd;
958 1.206 christos syscallarg(struct statvfs *) buf;
959 1.206 christos syscallarg(int) flags;
960 1.335 dsl } */
961 1.241 yamt struct statvfs *sb;
962 1.31 cgd int error;
963 1.31 cgd
964 1.241 yamt sb = STATVFSBUF_GET();
965 1.311 dsl error = do_sys_fstatvfs(l, SCARG(uap, fd), SCARG(uap, flags), sb);
966 1.316 dsl if (error == 0)
967 1.311 dsl error = copyout(sb, SCARG(uap, buf), sizeof(*sb));
968 1.241 yamt STATVFSBUF_PUT(sb);
969 1.185 christos return error;
970 1.31 cgd }
971 1.31 cgd
972 1.185 christos
973 1.31 cgd /*
974 1.31 cgd * Get statistics on all filesystems.
975 1.31 cgd */
976 1.63 christos int
977 1.311 dsl do_sys_getvfsstat(struct lwp *l, void *sfsp, size_t bufsize, int flags,
978 1.311 dsl int (*copyfn)(const void *, void *, size_t), size_t entry_sz,
979 1.311 dsl register_t *retval)
980 1.56 thorpej {
981 1.185 christos int root = 0;
982 1.179 thorpej struct proc *p = l->l_proc;
983 1.155 augustss struct mount *mp, *nmp;
984 1.241 yamt struct statvfs *sb;
985 1.206 christos size_t count, maxcount;
986 1.206 christos int error = 0;
987 1.31 cgd
988 1.241 yamt sb = STATVFSBUF_GET();
989 1.311 dsl maxcount = bufsize / entry_sz;
990 1.329 ad mutex_enter(&mountlist_lock);
991 1.113 fvdl count = 0;
992 1.176 matt for (mp = CIRCLEQ_FIRST(&mountlist); mp != (void *)&mountlist;
993 1.176 matt mp = nmp) {
994 1.358 ad if (vfs_busy(mp, &nmp)) {
995 1.113 fvdl continue;
996 1.113 fvdl }
997 1.113 fvdl if (sfsp && count < maxcount) {
998 1.311 dsl error = dostatvfs(mp, sb, l, flags, 0);
999 1.185 christos if (error) {
1000 1.354 ad vfs_unbusy(mp, false, &nmp);
1001 1.365 christos error = 0;
1002 1.31 cgd continue;
1003 1.113 fvdl }
1004 1.311 dsl error = copyfn(sb, sfsp, entry_sz);
1005 1.133 mycroft if (error) {
1006 1.354 ad vfs_unbusy(mp, false, NULL);
1007 1.241 yamt goto out;
1008 1.133 mycroft }
1009 1.311 dsl sfsp = (char *)sfsp + entry_sz;
1010 1.241 yamt root |= strcmp(sb->f_mntonname, "/") == 0;
1011 1.31 cgd }
1012 1.31 cgd count++;
1013 1.354 ad vfs_unbusy(mp, false, &nmp);
1014 1.31 cgd }
1015 1.358 ad mutex_exit(&mountlist_lock);
1016 1.331 pooka
1017 1.185 christos if (root == 0 && p->p_cwdi->cwdi_rdir) {
1018 1.185 christos /*
1019 1.185 christos * fake a root entry
1020 1.185 christos */
1021 1.331 pooka error = dostatvfs(p->p_cwdi->cwdi_rdir->v_mount,
1022 1.331 pooka sb, l, flags, 1);
1023 1.311 dsl if (error != 0)
1024 1.241 yamt goto out;
1025 1.365 christos if (sfsp) {
1026 1.311 dsl error = copyfn(sb, sfsp, entry_sz);
1027 1.365 christos if (error != 0)
1028 1.365 christos goto out;
1029 1.365 christos }
1030 1.185 christos count++;
1031 1.185 christos }
1032 1.31 cgd if (sfsp && count > maxcount)
1033 1.31 cgd *retval = maxcount;
1034 1.31 cgd else
1035 1.31 cgd *retval = count;
1036 1.241 yamt out:
1037 1.241 yamt STATVFSBUF_PUT(sb);
1038 1.185 christos return error;
1039 1.31 cgd }
1040 1.31 cgd
1041 1.311 dsl int
1042 1.335 dsl sys_getvfsstat(struct lwp *l, const struct sys_getvfsstat_args *uap, register_t *retval)
1043 1.311 dsl {
1044 1.335 dsl /* {
1045 1.311 dsl syscallarg(struct statvfs *) buf;
1046 1.311 dsl syscallarg(size_t) bufsize;
1047 1.311 dsl syscallarg(int) flags;
1048 1.335 dsl } */
1049 1.311 dsl
1050 1.311 dsl return do_sys_getvfsstat(l, SCARG(uap, buf), SCARG(uap, bufsize),
1051 1.311 dsl SCARG(uap, flags), copyout, sizeof (struct statvfs), retval);
1052 1.311 dsl }
1053 1.311 dsl
1054 1.31 cgd /*
1055 1.31 cgd * Change current working directory to a given file descriptor.
1056 1.31 cgd */
1057 1.31 cgd /* ARGSUSED */
1058 1.63 christos int
1059 1.335 dsl sys_fchdir(struct lwp *l, const struct sys_fchdir_args *uap, register_t *retval)
1060 1.56 thorpej {
1061 1.335 dsl /* {
1062 1.35 cgd syscallarg(int) fd;
1063 1.335 dsl } */
1064 1.179 thorpej struct proc *p = l->l_proc;
1065 1.328 ad struct cwdinfo *cwdi;
1066 1.43 mycroft struct vnode *vp, *tdp;
1067 1.43 mycroft struct mount *mp;
1068 1.346 ad file_t *fp;
1069 1.346 ad int error, fd;
1070 1.31 cgd
1071 1.346 ad /* fd_getvnode() will use the descriptor for us */
1072 1.346 ad fd = SCARG(uap, fd);
1073 1.346 ad if ((error = fd_getvnode(fd, &fp)) != 0)
1074 1.31 cgd return (error);
1075 1.346 ad vp = fp->f_data;
1076 1.131 sommerfe
1077 1.43 mycroft VREF(vp);
1078 1.113 fvdl vn_lock(vp, LK_EXCLUSIVE | LK_RETRY);
1079 1.31 cgd if (vp->v_type != VDIR)
1080 1.31 cgd error = ENOTDIR;
1081 1.31 cgd else
1082 1.332 pooka error = VOP_ACCESS(vp, VEXEC, l->l_cred);
1083 1.303 pooka if (error) {
1084 1.303 pooka vput(vp);
1085 1.303 pooka goto out;
1086 1.303 pooka }
1087 1.304 pooka while ((mp = vp->v_mountedhere) != NULL) {
1088 1.358 ad error = vfs_busy(mp, NULL);
1089 1.298 chs vput(vp);
1090 1.357 xtraeme if (error != 0)
1091 1.356 ad goto out;
1092 1.189 thorpej error = VFS_ROOT(mp, &tdp);
1093 1.354 ad vfs_unbusy(mp, false, NULL);
1094 1.113 fvdl if (error)
1095 1.303 pooka goto out;
1096 1.43 mycroft vp = tdp;
1097 1.43 mycroft }
1098 1.113 fvdl VOP_UNLOCK(vp, 0);
1099 1.131 sommerfe
1100 1.131 sommerfe /*
1101 1.131 sommerfe * Disallow changing to a directory not under the process's
1102 1.131 sommerfe * current root directory (if there is one).
1103 1.131 sommerfe */
1104 1.328 ad cwdi = p->p_cwdi;
1105 1.328 ad rw_enter(&cwdi->cwdi_lock, RW_WRITER);
1106 1.234 christos if (cwdi->cwdi_rdir && !vn_isunder(vp, NULL, l)) {
1107 1.131 sommerfe vrele(vp);
1108 1.135 thorpej error = EPERM; /* operation not permitted */
1109 1.328 ad } else {
1110 1.328 ad vrele(cwdi->cwdi_cdir);
1111 1.328 ad cwdi->cwdi_cdir = vp;
1112 1.131 sommerfe }
1113 1.328 ad rw_exit(&cwdi->cwdi_lock);
1114 1.205 junyoung
1115 1.135 thorpej out:
1116 1.346 ad fd_putfile(fd);
1117 1.135 thorpej return (error);
1118 1.31 cgd }
1119 1.31 cgd
1120 1.31 cgd /*
1121 1.221 thorpej * Change this process's notion of the root directory to a given file
1122 1.221 thorpej * descriptor.
1123 1.131 sommerfe */
1124 1.131 sommerfe int
1125 1.335 dsl sys_fchroot(struct lwp *l, const struct sys_fchroot_args *uap, register_t *retval)
1126 1.131 sommerfe {
1127 1.179 thorpej struct proc *p = l->l_proc;
1128 1.131 sommerfe struct vnode *vp;
1129 1.346 ad file_t *fp;
1130 1.346 ad int error, fd = SCARG(uap, fd);
1131 1.131 sommerfe
1132 1.268 elad if ((error = kauth_authorize_system(l->l_cred, KAUTH_SYSTEM_CHROOT,
1133 1.268 elad KAUTH_REQ_SYSTEM_CHROOT_FCHROOT, NULL, NULL, NULL)) != 0)
1134 1.131 sommerfe return error;
1135 1.346 ad /* fd_getvnode() will use the descriptor for us */
1136 1.397 bad if ((error = fd_getvnode(fd, &fp)) != 0)
1137 1.131 sommerfe return error;
1138 1.346 ad vp = fp->f_data;
1139 1.131 sommerfe vn_lock(vp, LK_EXCLUSIVE | LK_RETRY);
1140 1.131 sommerfe if (vp->v_type != VDIR)
1141 1.131 sommerfe error = ENOTDIR;
1142 1.131 sommerfe else
1143 1.332 pooka error = VOP_ACCESS(vp, VEXEC, l->l_cred);
1144 1.131 sommerfe VOP_UNLOCK(vp, 0);
1145 1.131 sommerfe if (error)
1146 1.135 thorpej goto out;
1147 1.131 sommerfe VREF(vp);
1148 1.131 sommerfe
1149 1.397 bad change_root(p->p_cwdi, vp, l);
1150 1.328 ad
1151 1.135 thorpej out:
1152 1.346 ad fd_putfile(fd);
1153 1.135 thorpej return (error);
1154 1.131 sommerfe }
1155 1.131 sommerfe
1156 1.131 sommerfe /*
1157 1.31 cgd * Change current working directory (``.'').
1158 1.31 cgd */
1159 1.31 cgd /* ARGSUSED */
1160 1.63 christos int
1161 1.335 dsl sys_chdir(struct lwp *l, const struct sys_chdir_args *uap, register_t *retval)
1162 1.56 thorpej {
1163 1.335 dsl /* {
1164 1.74 cgd syscallarg(const char *) path;
1165 1.335 dsl } */
1166 1.179 thorpej struct proc *p = l->l_proc;
1167 1.328 ad struct cwdinfo *cwdi;
1168 1.31 cgd int error;
1169 1.397 bad struct vnode *vp;
1170 1.31 cgd
1171 1.397 bad if ((error = chdir_lookup(SCARG(uap, path), UIO_USERSPACE,
1172 1.397 bad &vp, l)) != 0)
1173 1.31 cgd return (error);
1174 1.328 ad cwdi = p->p_cwdi;
1175 1.328 ad rw_enter(&cwdi->cwdi_lock, RW_WRITER);
1176 1.134 thorpej vrele(cwdi->cwdi_cdir);
1177 1.397 bad cwdi->cwdi_cdir = vp;
1178 1.328 ad rw_exit(&cwdi->cwdi_lock);
1179 1.31 cgd return (0);
1180 1.31 cgd }
1181 1.31 cgd
1182 1.31 cgd /*
1183 1.31 cgd * Change notion of root (``/'') directory.
1184 1.31 cgd */
1185 1.31 cgd /* ARGSUSED */
1186 1.63 christos int
1187 1.335 dsl sys_chroot(struct lwp *l, const struct sys_chroot_args *uap, register_t *retval)
1188 1.56 thorpej {
1189 1.335 dsl /* {
1190 1.74 cgd syscallarg(const char *) path;
1191 1.335 dsl } */
1192 1.179 thorpej struct proc *p = l->l_proc;
1193 1.397 bad int error;
1194 1.131 sommerfe struct vnode *vp;
1195 1.31 cgd
1196 1.268 elad if ((error = kauth_authorize_system(l->l_cred, KAUTH_SYSTEM_CHROOT,
1197 1.268 elad KAUTH_REQ_SYSTEM_CHROOT_CHROOT, NULL, NULL, NULL)) != 0)
1198 1.31 cgd return (error);
1199 1.397 bad if ((error = chdir_lookup(SCARG(uap, path), UIO_USERSPACE,
1200 1.397 bad &vp, l)) != 0)
1201 1.31 cgd return (error);
1202 1.328 ad
1203 1.397 bad change_root(p->p_cwdi, vp, l);
1204 1.397 bad
1205 1.397 bad return (0);
1206 1.397 bad }
1207 1.397 bad
1208 1.397 bad /*
1209 1.397 bad * Common routine for chroot and fchroot.
1210 1.398 bad * NB: callers need to properly authorize the change root operation.
1211 1.397 bad */
1212 1.397 bad void
1213 1.397 bad change_root(struct cwdinfo *cwdi, struct vnode *vp, struct lwp *l)
1214 1.397 bad {
1215 1.397 bad
1216 1.328 ad rw_enter(&cwdi->cwdi_lock, RW_WRITER);
1217 1.134 thorpej if (cwdi->cwdi_rdir != NULL)
1218 1.134 thorpej vrele(cwdi->cwdi_rdir);
1219 1.134 thorpej cwdi->cwdi_rdir = vp;
1220 1.131 sommerfe
1221 1.131 sommerfe /*
1222 1.131 sommerfe * Prevent escaping from chroot by putting the root under
1223 1.131 sommerfe * the working directory. Silently chdir to / if we aren't
1224 1.131 sommerfe * already there.
1225 1.131 sommerfe */
1226 1.234 christos if (!vn_isunder(cwdi->cwdi_cdir, vp, l)) {
1227 1.131 sommerfe /*
1228 1.131 sommerfe * XXX would be more failsafe to change directory to a
1229 1.131 sommerfe * deadfs node here instead
1230 1.131 sommerfe */
1231 1.134 thorpej vrele(cwdi->cwdi_cdir);
1232 1.131 sommerfe VREF(vp);
1233 1.134 thorpej cwdi->cwdi_cdir = vp;
1234 1.131 sommerfe }
1235 1.328 ad rw_exit(&cwdi->cwdi_lock);
1236 1.31 cgd }
1237 1.31 cgd
1238 1.31 cgd /*
1239 1.31 cgd * Common routine for chroot and chdir.
1240 1.31 cgd */
1241 1.397 bad int
1242 1.397 bad chdir_lookup(const char *path, int where, struct vnode **vpp, struct lwp *l)
1243 1.31 cgd {
1244 1.397 bad struct nameidata nd;
1245 1.31 cgd int error;
1246 1.31 cgd
1247 1.397 bad NDINIT(&nd, LOOKUP, FOLLOW | LOCKLEAF | TRYEMULROOT, where,
1248 1.397 bad path);
1249 1.397 bad if ((error = namei(&nd)) != 0)
1250 1.31 cgd return (error);
1251 1.397 bad *vpp = nd.ni_vp;
1252 1.397 bad if ((*vpp)->v_type != VDIR)
1253 1.31 cgd error = ENOTDIR;
1254 1.31 cgd else
1255 1.397 bad error = VOP_ACCESS(*vpp, VEXEC, l->l_cred);
1256 1.205 junyoung
1257 1.31 cgd if (error)
1258 1.397 bad vput(*vpp);
1259 1.113 fvdl else
1260 1.397 bad VOP_UNLOCK(*vpp, 0);
1261 1.31 cgd return (error);
1262 1.31 cgd }
1263 1.31 cgd
1264 1.31 cgd /*
1265 1.31 cgd * Check permissions, allocate an open file structure,
1266 1.31 cgd * and call the device open routine if any.
1267 1.31 cgd */
1268 1.63 christos int
1269 1.335 dsl sys_open(struct lwp *l, const struct sys_open_args *uap, register_t *retval)
1270 1.56 thorpej {
1271 1.335 dsl /* {
1272 1.74 cgd syscallarg(const char *) path;
1273 1.35 cgd syscallarg(int) flags;
1274 1.35 cgd syscallarg(int) mode;
1275 1.335 dsl } */
1276 1.179 thorpej struct proc *p = l->l_proc;
1277 1.134 thorpej struct cwdinfo *cwdi = p->p_cwdi;
1278 1.346 ad file_t *fp;
1279 1.135 thorpej struct vnode *vp;
1280 1.31 cgd int flags, cmode;
1281 1.31 cgd int type, indx, error;
1282 1.31 cgd struct flock lf;
1283 1.31 cgd struct nameidata nd;
1284 1.31 cgd
1285 1.104 mycroft flags = FFLAGS(SCARG(uap, flags));
1286 1.104 mycroft if ((flags & (FREAD | FWRITE)) == 0)
1287 1.104 mycroft return (EINVAL);
1288 1.346 ad if ((error = fd_allocfile(&fp, &indx)) != 0)
1289 1.31 cgd return (error);
1290 1.328 ad /* We're going to read cwdi->cwdi_cmask unlocked here. */
1291 1.134 thorpej cmode = ((SCARG(uap, mode) &~ cwdi->cwdi_cmask) & ALLPERMS) &~ S_ISTXT;
1292 1.331 pooka NDINIT(&nd, LOOKUP, FOLLOW | TRYEMULROOT, UIO_USERSPACE,
1293 1.334 pooka SCARG(uap, path));
1294 1.194 jdolecek l->l_dupfd = -indx - 1; /* XXX check for fdopen */
1295 1.63 christos if ((error = vn_open(&nd, flags, cmode)) != 0) {
1296 1.346 ad fd_abort(p, fp, indx);
1297 1.213 christos if ((error == EDUPFD || error == EMOVEFD) &&
1298 1.194 jdolecek l->l_dupfd >= 0 && /* XXX from fdopen */
1299 1.45 mycroft (error =
1300 1.346 ad fd_dupopen(l->l_dupfd, &indx, flags, error)) == 0) {
1301 1.45 mycroft *retval = indx;
1302 1.45 mycroft return (0);
1303 1.45 mycroft }
1304 1.45 mycroft if (error == ERESTART)
1305 1.44 mycroft error = EINTR;
1306 1.31 cgd return (error);
1307 1.31 cgd }
1308 1.331 pooka
1309 1.194 jdolecek l->l_dupfd = 0;
1310 1.31 cgd vp = nd.ni_vp;
1311 1.31 cgd fp->f_flag = flags & FMASK;
1312 1.31 cgd fp->f_type = DTYPE_VNODE;
1313 1.31 cgd fp->f_ops = &vnops;
1314 1.184 dsl fp->f_data = vp;
1315 1.31 cgd if (flags & (O_EXLOCK | O_SHLOCK)) {
1316 1.31 cgd lf.l_whence = SEEK_SET;
1317 1.31 cgd lf.l_start = 0;
1318 1.31 cgd lf.l_len = 0;
1319 1.31 cgd if (flags & O_EXLOCK)
1320 1.31 cgd lf.l_type = F_WRLCK;
1321 1.31 cgd else
1322 1.31 cgd lf.l_type = F_RDLCK;
1323 1.31 cgd type = F_FLOCK;
1324 1.31 cgd if ((flags & FNONBLOCK) == 0)
1325 1.31 cgd type |= F_WAIT;
1326 1.113 fvdl VOP_UNLOCK(vp, 0);
1327 1.184 dsl error = VOP_ADVLOCK(vp, fp, F_SETLK, &lf, type);
1328 1.63 christos if (error) {
1329 1.346 ad (void) vn_close(vp, fp->f_flag, fp->f_cred);
1330 1.346 ad fd_abort(p, fp, indx);
1331 1.31 cgd return (error);
1332 1.31 cgd }
1333 1.113 fvdl vn_lock(vp, LK_EXCLUSIVE | LK_RETRY);
1334 1.346 ad atomic_or_uint(&fp->f_flag, FHASLOCK);
1335 1.31 cgd }
1336 1.113 fvdl VOP_UNLOCK(vp, 0);
1337 1.31 cgd *retval = indx;
1338 1.346 ad fd_affix(p, fp, indx);
1339 1.31 cgd return (0);
1340 1.137 wrstuden }
1341 1.137 wrstuden
1342 1.249 yamt static void
1343 1.249 yamt vfs__fhfree(fhandle_t *fhp)
1344 1.249 yamt {
1345 1.249 yamt size_t fhsize;
1346 1.249 yamt
1347 1.249 yamt if (fhp == NULL) {
1348 1.249 yamt return;
1349 1.249 yamt }
1350 1.249 yamt fhsize = FHANDLE_SIZE(fhp);
1351 1.249 yamt kmem_free(fhp, fhsize);
1352 1.249 yamt }
1353 1.249 yamt
1354 1.137 wrstuden /*
1355 1.243 yamt * vfs_composefh: compose a filehandle.
1356 1.243 yamt */
1357 1.243 yamt
1358 1.243 yamt int
1359 1.244 martin vfs_composefh(struct vnode *vp, fhandle_t *fhp, size_t *fh_size)
1360 1.243 yamt {
1361 1.243 yamt struct mount *mp;
1362 1.250 yamt struct fid *fidp;
1363 1.243 yamt int error;
1364 1.250 yamt size_t needfhsize;
1365 1.250 yamt size_t fidsize;
1366 1.243 yamt
1367 1.243 yamt mp = vp->v_mount;
1368 1.250 yamt fidp = NULL;
1369 1.252 martin if (*fh_size < FHANDLE_SIZE_MIN) {
1370 1.250 yamt fidsize = 0;
1371 1.244 martin } else {
1372 1.250 yamt fidsize = *fh_size - offsetof(fhandle_t, fh_fid);
1373 1.250 yamt if (fhp != NULL) {
1374 1.250 yamt memset(fhp, 0, *fh_size);
1375 1.250 yamt fhp->fh_fsid = mp->mnt_stat.f_fsidx;
1376 1.250 yamt fidp = &fhp->fh_fid;
1377 1.250 yamt }
1378 1.244 martin }
1379 1.250 yamt error = VFS_VPTOFH(vp, fidp, &fidsize);
1380 1.250 yamt needfhsize = FHANDLE_SIZE_FROM_FILEID_SIZE(fidsize);
1381 1.250 yamt if (error == 0 && *fh_size < needfhsize) {
1382 1.250 yamt error = E2BIG;
1383 1.250 yamt }
1384 1.250 yamt *fh_size = needfhsize;
1385 1.243 yamt return error;
1386 1.243 yamt }
1387 1.243 yamt
1388 1.249 yamt int
1389 1.249 yamt vfs_composefh_alloc(struct vnode *vp, fhandle_t **fhpp)
1390 1.249 yamt {
1391 1.249 yamt struct mount *mp;
1392 1.249 yamt fhandle_t *fhp;
1393 1.249 yamt size_t fhsize;
1394 1.249 yamt size_t fidsize;
1395 1.249 yamt int error;
1396 1.249 yamt
1397 1.249 yamt *fhpp = NULL;
1398 1.249 yamt mp = vp->v_mount;
1399 1.255 christos fidsize = 0;
1400 1.249 yamt error = VFS_VPTOFH(vp, NULL, &fidsize);
1401 1.249 yamt KASSERT(error != 0);
1402 1.249 yamt if (error != E2BIG) {
1403 1.249 yamt goto out;
1404 1.249 yamt }
1405 1.250 yamt fhsize = FHANDLE_SIZE_FROM_FILEID_SIZE(fidsize);
1406 1.249 yamt fhp = kmem_zalloc(fhsize, KM_SLEEP);
1407 1.249 yamt if (fhp == NULL) {
1408 1.249 yamt error = ENOMEM;
1409 1.249 yamt goto out;
1410 1.249 yamt }
1411 1.249 yamt fhp->fh_fsid = mp->mnt_stat.f_fsidx;
1412 1.249 yamt error = VFS_VPTOFH(vp, &fhp->fh_fid, &fidsize);
1413 1.249 yamt if (error == 0) {
1414 1.249 yamt KASSERT((FHANDLE_SIZE(fhp) == fhsize &&
1415 1.249 yamt FHANDLE_FILEID(fhp)->fid_len == fidsize));
1416 1.249 yamt *fhpp = fhp;
1417 1.249 yamt } else {
1418 1.249 yamt kmem_free(fhp, fhsize);
1419 1.249 yamt }
1420 1.249 yamt out:
1421 1.249 yamt return error;
1422 1.249 yamt }
1423 1.249 yamt
1424 1.249 yamt void
1425 1.249 yamt vfs_composefh_free(fhandle_t *fhp)
1426 1.249 yamt {
1427 1.249 yamt
1428 1.249 yamt vfs__fhfree(fhp);
1429 1.249 yamt }
1430 1.249 yamt
1431 1.243 yamt /*
1432 1.248 yamt * vfs_fhtovp: lookup a vnode by a filehandle.
1433 1.248 yamt */
1434 1.248 yamt
1435 1.248 yamt int
1436 1.248 yamt vfs_fhtovp(fhandle_t *fhp, struct vnode **vpp)
1437 1.248 yamt {
1438 1.248 yamt struct mount *mp;
1439 1.248 yamt int error;
1440 1.248 yamt
1441 1.248 yamt *vpp = NULL;
1442 1.248 yamt mp = vfs_getvfs(FHANDLE_FSID(fhp));
1443 1.248 yamt if (mp == NULL) {
1444 1.248 yamt error = ESTALE;
1445 1.248 yamt goto out;
1446 1.248 yamt }
1447 1.248 yamt if (mp->mnt_op->vfs_fhtovp == NULL) {
1448 1.248 yamt error = EOPNOTSUPP;
1449 1.248 yamt goto out;
1450 1.248 yamt }
1451 1.248 yamt error = VFS_FHTOVP(mp, FHANDLE_FILEID(fhp), vpp);
1452 1.248 yamt out:
1453 1.248 yamt return error;
1454 1.248 yamt }
1455 1.248 yamt
1456 1.248 yamt /*
1457 1.265 yamt * vfs_copyinfh_alloc: allocate and copyin a filehandle, given
1458 1.263 martin * the needed size.
1459 1.263 martin */
1460 1.263 martin
1461 1.263 martin int
1462 1.265 yamt vfs_copyinfh_alloc(const void *ufhp, size_t fhsize, fhandle_t **fhpp)
1463 1.263 martin {
1464 1.263 martin fhandle_t *fhp;
1465 1.263 martin int error;
1466 1.263 martin
1467 1.263 martin *fhpp = NULL;
1468 1.250 yamt if (fhsize > FHANDLE_SIZE_MAX) {
1469 1.250 yamt return EINVAL;
1470 1.250 yamt }
1471 1.265 yamt if (fhsize < FHANDLE_SIZE_MIN) {
1472 1.265 yamt return EINVAL;
1473 1.265 yamt }
1474 1.267 yamt again:
1475 1.248 yamt fhp = kmem_alloc(fhsize, KM_SLEEP);
1476 1.248 yamt if (fhp == NULL) {
1477 1.248 yamt return ENOMEM;
1478 1.248 yamt }
1479 1.248 yamt error = copyin(ufhp, fhp, fhsize);
1480 1.248 yamt if (error == 0) {
1481 1.265 yamt /* XXX this check shouldn't be here */
1482 1.265 yamt if (FHANDLE_SIZE(fhp) == fhsize) {
1483 1.263 martin *fhpp = fhp;
1484 1.263 martin return 0;
1485 1.267 yamt } else if (fhsize == NFSX_V2FH && FHANDLE_SIZE(fhp) < fhsize) {
1486 1.267 yamt /*
1487 1.267 yamt * a kludge for nfsv2 padded handles.
1488 1.267 yamt */
1489 1.267 yamt size_t sz;
1490 1.267 yamt
1491 1.267 yamt sz = FHANDLE_SIZE(fhp);
1492 1.267 yamt kmem_free(fhp, fhsize);
1493 1.267 yamt fhsize = sz;
1494 1.267 yamt goto again;
1495 1.264 yamt } else {
1496 1.265 yamt /*
1497 1.265 yamt * userland told us wrong size.
1498 1.265 yamt */
1499 1.263 martin error = EINVAL;
1500 1.264 yamt }
1501 1.248 yamt }
1502 1.263 martin kmem_free(fhp, fhsize);
1503 1.248 yamt return error;
1504 1.248 yamt }
1505 1.248 yamt
1506 1.248 yamt void
1507 1.248 yamt vfs_copyinfh_free(fhandle_t *fhp)
1508 1.248 yamt {
1509 1.248 yamt
1510 1.249 yamt vfs__fhfree(fhp);
1511 1.248 yamt }
1512 1.248 yamt
1513 1.248 yamt /*
1514 1.137 wrstuden * Get file handle system call
1515 1.137 wrstuden */
1516 1.137 wrstuden int
1517 1.335 dsl sys___getfh30(struct lwp *l, const struct sys___getfh30_args *uap, register_t *retval)
1518 1.137 wrstuden {
1519 1.335 dsl /* {
1520 1.137 wrstuden syscallarg(char *) fname;
1521 1.137 wrstuden syscallarg(fhandle_t *) fhp;
1522 1.244 martin syscallarg(size_t *) fh_size;
1523 1.335 dsl } */
1524 1.155 augustss struct vnode *vp;
1525 1.244 martin fhandle_t *fh;
1526 1.137 wrstuden int error;
1527 1.137 wrstuden struct nameidata nd;
1528 1.244 martin size_t sz;
1529 1.249 yamt size_t usz;
1530 1.137 wrstuden
1531 1.137 wrstuden /*
1532 1.137 wrstuden * Must be super user
1533 1.137 wrstuden */
1534 1.268 elad error = kauth_authorize_system(l->l_cred, KAUTH_SYSTEM_FILEHANDLE,
1535 1.268 elad 0, NULL, NULL, NULL);
1536 1.137 wrstuden if (error)
1537 1.137 wrstuden return (error);
1538 1.310 dsl NDINIT(&nd, LOOKUP, FOLLOW | LOCKLEAF | TRYEMULROOT, UIO_USERSPACE,
1539 1.334 pooka SCARG(uap, fname));
1540 1.137 wrstuden error = namei(&nd);
1541 1.137 wrstuden if (error)
1542 1.137 wrstuden return (error);
1543 1.137 wrstuden vp = nd.ni_vp;
1544 1.249 yamt error = vfs_composefh_alloc(vp, &fh);
1545 1.247 yamt vput(vp);
1546 1.249 yamt if (error != 0) {
1547 1.249 yamt goto out;
1548 1.249 yamt }
1549 1.249 yamt error = copyin(SCARG(uap, fh_size), &usz, sizeof(size_t));
1550 1.249 yamt if (error != 0) {
1551 1.249 yamt goto out;
1552 1.249 yamt }
1553 1.249 yamt sz = FHANDLE_SIZE(fh);
1554 1.249 yamt error = copyout(&sz, SCARG(uap, fh_size), sizeof(size_t));
1555 1.249 yamt if (error != 0) {
1556 1.249 yamt goto out;
1557 1.244 martin }
1558 1.249 yamt if (usz >= sz) {
1559 1.249 yamt error = copyout(fh, SCARG(uap, fhp), sz);
1560 1.249 yamt } else {
1561 1.249 yamt error = E2BIG;
1562 1.244 martin }
1563 1.249 yamt out:
1564 1.249 yamt vfs_composefh_free(fh);
1565 1.137 wrstuden return (error);
1566 1.137 wrstuden }
1567 1.137 wrstuden
1568 1.137 wrstuden /*
1569 1.137 wrstuden * Open a file given a file handle.
1570 1.137 wrstuden *
1571 1.137 wrstuden * Check permissions, allocate an open file structure,
1572 1.137 wrstuden * and call the device open routine if any.
1573 1.137 wrstuden */
1574 1.265 yamt
1575 1.137 wrstuden int
1576 1.265 yamt dofhopen(struct lwp *l, const void *ufhp, size_t fhsize, int oflags,
1577 1.265 yamt register_t *retval)
1578 1.137 wrstuden {
1579 1.346 ad file_t *fp;
1580 1.139 wrstuden struct vnode *vp = NULL;
1581 1.257 ad kauth_cred_t cred = l->l_cred;
1582 1.346 ad file_t *nfp;
1583 1.137 wrstuden int type, indx, error=0;
1584 1.137 wrstuden struct flock lf;
1585 1.137 wrstuden struct vattr va;
1586 1.248 yamt fhandle_t *fh;
1587 1.265 yamt int flags;
1588 1.346 ad proc_t *p;
1589 1.346 ad
1590 1.346 ad p = curproc;
1591 1.137 wrstuden
1592 1.137 wrstuden /*
1593 1.137 wrstuden * Must be super user
1594 1.137 wrstuden */
1595 1.269 elad if ((error = kauth_authorize_system(l->l_cred, KAUTH_SYSTEM_FILEHANDLE,
1596 1.270 elad 0, NULL, NULL, NULL)))
1597 1.137 wrstuden return (error);
1598 1.137 wrstuden
1599 1.265 yamt flags = FFLAGS(oflags);
1600 1.137 wrstuden if ((flags & (FREAD | FWRITE)) == 0)
1601 1.137 wrstuden return (EINVAL);
1602 1.137 wrstuden if ((flags & O_CREAT))
1603 1.137 wrstuden return (EINVAL);
1604 1.346 ad if ((error = fd_allocfile(&nfp, &indx)) != 0)
1605 1.137 wrstuden return (error);
1606 1.137 wrstuden fp = nfp;
1607 1.265 yamt error = vfs_copyinfh_alloc(ufhp, fhsize, &fh);
1608 1.248 yamt if (error != 0) {
1609 1.139 wrstuden goto bad;
1610 1.139 wrstuden }
1611 1.248 yamt error = vfs_fhtovp(fh, &vp);
1612 1.248 yamt if (error != 0) {
1613 1.139 wrstuden goto bad;
1614 1.139 wrstuden }
1615 1.137 wrstuden
1616 1.137 wrstuden /* Now do an effective vn_open */
1617 1.137 wrstuden
1618 1.137 wrstuden if (vp->v_type == VSOCK) {
1619 1.137 wrstuden error = EOPNOTSUPP;
1620 1.137 wrstuden goto bad;
1621 1.137 wrstuden }
1622 1.333 yamt error = vn_openchk(vp, cred, flags);
1623 1.333 yamt if (error != 0)
1624 1.333 yamt goto bad;
1625 1.137 wrstuden if (flags & O_TRUNC) {
1626 1.137 wrstuden VOP_UNLOCK(vp, 0); /* XXX */
1627 1.137 wrstuden vn_lock(vp, LK_EXCLUSIVE | LK_RETRY); /* XXX */
1628 1.137 wrstuden VATTR_NULL(&va);
1629 1.137 wrstuden va.va_size = 0;
1630 1.332 pooka error = VOP_SETATTR(vp, &va, cred);
1631 1.197 hannken if (error)
1632 1.137 wrstuden goto bad;
1633 1.137 wrstuden }
1634 1.332 pooka if ((error = VOP_OPEN(vp, flags, cred)) != 0)
1635 1.137 wrstuden goto bad;
1636 1.346 ad if (flags & FWRITE) {
1637 1.346 ad mutex_enter(&vp->v_interlock);
1638 1.137 wrstuden vp->v_writecount++;
1639 1.346 ad mutex_exit(&vp->v_interlock);
1640 1.346 ad }
1641 1.137 wrstuden
1642 1.137 wrstuden /* done with modified vn_open, now finish what sys_open does. */
1643 1.137 wrstuden
1644 1.137 wrstuden fp->f_flag = flags & FMASK;
1645 1.137 wrstuden fp->f_type = DTYPE_VNODE;
1646 1.137 wrstuden fp->f_ops = &vnops;
1647 1.184 dsl fp->f_data = vp;
1648 1.137 wrstuden if (flags & (O_EXLOCK | O_SHLOCK)) {
1649 1.137 wrstuden lf.l_whence = SEEK_SET;
1650 1.137 wrstuden lf.l_start = 0;
1651 1.137 wrstuden lf.l_len = 0;
1652 1.137 wrstuden if (flags & O_EXLOCK)
1653 1.137 wrstuden lf.l_type = F_WRLCK;
1654 1.137 wrstuden else
1655 1.137 wrstuden lf.l_type = F_RDLCK;
1656 1.137 wrstuden type = F_FLOCK;
1657 1.137 wrstuden if ((flags & FNONBLOCK) == 0)
1658 1.137 wrstuden type |= F_WAIT;
1659 1.137 wrstuden VOP_UNLOCK(vp, 0);
1660 1.184 dsl error = VOP_ADVLOCK(vp, fp, F_SETLK, &lf, type);
1661 1.137 wrstuden if (error) {
1662 1.346 ad (void) vn_close(vp, fp->f_flag, fp->f_cred);
1663 1.346 ad fd_abort(p, fp, indx);
1664 1.137 wrstuden return (error);
1665 1.137 wrstuden }
1666 1.137 wrstuden vn_lock(vp, LK_EXCLUSIVE | LK_RETRY);
1667 1.346 ad atomic_or_uint(&fp->f_flag, FHASLOCK);
1668 1.137 wrstuden }
1669 1.137 wrstuden VOP_UNLOCK(vp, 0);
1670 1.137 wrstuden *retval = indx;
1671 1.346 ad fd_affix(p, fp, indx);
1672 1.248 yamt vfs_copyinfh_free(fh);
1673 1.137 wrstuden return (0);
1674 1.139 wrstuden
1675 1.137 wrstuden bad:
1676 1.346 ad fd_abort(p, fp, indx);
1677 1.139 wrstuden if (vp != NULL)
1678 1.139 wrstuden vput(vp);
1679 1.248 yamt vfs_copyinfh_free(fh);
1680 1.137 wrstuden return (error);
1681 1.137 wrstuden }
1682 1.137 wrstuden
1683 1.137 wrstuden int
1684 1.335 dsl sys___fhopen40(struct lwp *l, const struct sys___fhopen40_args *uap, register_t *retval)
1685 1.137 wrstuden {
1686 1.335 dsl /* {
1687 1.263 martin syscallarg(const void *) fhp;
1688 1.263 martin syscallarg(size_t) fh_size;
1689 1.265 yamt syscallarg(int) flags;
1690 1.335 dsl } */
1691 1.265 yamt
1692 1.265 yamt return dofhopen(l, SCARG(uap, fhp), SCARG(uap, fh_size),
1693 1.265 yamt SCARG(uap, flags), retval);
1694 1.265 yamt }
1695 1.265 yamt
1696 1.306 dsl int
1697 1.306 dsl do_fhstat(struct lwp *l, const void *ufhp, size_t fhsize, struct stat *sb)
1698 1.306 dsl {
1699 1.137 wrstuden int error;
1700 1.248 yamt fhandle_t *fh;
1701 1.137 wrstuden struct vnode *vp;
1702 1.137 wrstuden
1703 1.137 wrstuden /*
1704 1.137 wrstuden * Must be super user
1705 1.137 wrstuden */
1706 1.268 elad if ((error = kauth_authorize_system(l->l_cred, KAUTH_SYSTEM_FILEHANDLE,
1707 1.270 elad 0, NULL, NULL, NULL)))
1708 1.137 wrstuden return (error);
1709 1.137 wrstuden
1710 1.265 yamt error = vfs_copyinfh_alloc(ufhp, fhsize, &fh);
1711 1.306 dsl if (error != 0)
1712 1.306 dsl return error;
1713 1.306 dsl
1714 1.248 yamt error = vfs_fhtovp(fh, &vp);
1715 1.306 dsl vfs_copyinfh_free(fh);
1716 1.306 dsl if (error != 0)
1717 1.306 dsl return error;
1718 1.306 dsl
1719 1.346 ad error = vn_stat(vp, sb);
1720 1.137 wrstuden vput(vp);
1721 1.248 yamt return error;
1722 1.137 wrstuden }
1723 1.137 wrstuden
1724 1.265 yamt
1725 1.137 wrstuden /* ARGSUSED */
1726 1.137 wrstuden int
1727 1.383 christos sys___fhstat50(struct lwp *l, const struct sys___fhstat50_args *uap, register_t *retval)
1728 1.137 wrstuden {
1729 1.335 dsl /* {
1730 1.265 yamt syscallarg(const void *) fhp;
1731 1.263 martin syscallarg(size_t) fh_size;
1732 1.265 yamt syscallarg(struct stat *) sb;
1733 1.335 dsl } */
1734 1.306 dsl struct stat sb;
1735 1.306 dsl int error;
1736 1.265 yamt
1737 1.306 dsl error = do_fhstat(l, SCARG(uap, fhp), SCARG(uap, fh_size), &sb);
1738 1.306 dsl if (error)
1739 1.306 dsl return error;
1740 1.306 dsl return copyout(&sb, SCARG(uap, sb), sizeof(sb));
1741 1.265 yamt }
1742 1.265 yamt
1743 1.306 dsl int
1744 1.306 dsl do_fhstatvfs(struct lwp *l, const void *ufhp, size_t fhsize, struct statvfs *sb,
1745 1.306 dsl int flags)
1746 1.306 dsl {
1747 1.248 yamt fhandle_t *fh;
1748 1.137 wrstuden struct mount *mp;
1749 1.137 wrstuden struct vnode *vp;
1750 1.137 wrstuden int error;
1751 1.137 wrstuden
1752 1.137 wrstuden /*
1753 1.137 wrstuden * Must be super user
1754 1.137 wrstuden */
1755 1.268 elad if ((error = kauth_authorize_system(l->l_cred, KAUTH_SYSTEM_FILEHANDLE,
1756 1.270 elad 0, NULL, NULL, NULL)))
1757 1.206 christos return error;
1758 1.137 wrstuden
1759 1.265 yamt error = vfs_copyinfh_alloc(ufhp, fhsize, &fh);
1760 1.306 dsl if (error != 0)
1761 1.306 dsl return error;
1762 1.306 dsl
1763 1.248 yamt error = vfs_fhtovp(fh, &vp);
1764 1.306 dsl vfs_copyinfh_free(fh);
1765 1.306 dsl if (error != 0)
1766 1.306 dsl return error;
1767 1.306 dsl
1768 1.137 wrstuden mp = vp->v_mount;
1769 1.306 dsl error = dostatvfs(mp, sb, l, flags, 1);
1770 1.137 wrstuden vput(vp);
1771 1.241 yamt return error;
1772 1.31 cgd }
1773 1.31 cgd
1774 1.265 yamt /* ARGSUSED */
1775 1.265 yamt int
1776 1.335 dsl sys___fhstatvfs140(struct lwp *l, const struct sys___fhstatvfs140_args *uap, register_t *retval)
1777 1.265 yamt {
1778 1.335 dsl /* {
1779 1.266 yamt syscallarg(const void *) fhp;
1780 1.265 yamt syscallarg(size_t) fh_size;
1781 1.265 yamt syscallarg(struct statvfs *) buf;
1782 1.265 yamt syscallarg(int) flags;
1783 1.335 dsl } */
1784 1.306 dsl struct statvfs *sb = STATVFSBUF_GET();
1785 1.306 dsl int error;
1786 1.265 yamt
1787 1.306 dsl error = do_fhstatvfs(l, SCARG(uap, fhp), SCARG(uap, fh_size), sb,
1788 1.306 dsl SCARG(uap, flags));
1789 1.306 dsl if (error == 0)
1790 1.306 dsl error = copyout(sb, SCARG(uap, buf), sizeof(*sb));
1791 1.306 dsl STATVFSBUF_PUT(sb);
1792 1.306 dsl return error;
1793 1.265 yamt }
1794 1.265 yamt
1795 1.31 cgd /*
1796 1.31 cgd * Create a special file.
1797 1.31 cgd */
1798 1.31 cgd /* ARGSUSED */
1799 1.63 christos int
1800 1.383 christos sys___mknod50(struct lwp *l, const struct sys___mknod50_args *uap,
1801 1.383 christos register_t *retval)
1802 1.56 thorpej {
1803 1.335 dsl /* {
1804 1.74 cgd syscallarg(const char *) path;
1805 1.383 christos syscallarg(mode_t) mode;
1806 1.383 christos syscallarg(dev_t) dev;
1807 1.335 dsl } */
1808 1.383 christos return do_sys_mknod(l, SCARG(uap, path), SCARG(uap, mode),
1809 1.399 haad SCARG(uap, dev), retval, UIO_USERSPACE);
1810 1.383 christos }
1811 1.383 christos
1812 1.383 christos int
1813 1.383 christos do_sys_mknod(struct lwp *l, const char *pathname, mode_t mode, dev_t dev,
1814 1.399 haad register_t *retval, enum uio_seg seg)
1815 1.383 christos {
1816 1.179 thorpej struct proc *p = l->l_proc;
1817 1.155 augustss struct vnode *vp;
1818 1.31 cgd struct vattr vattr;
1819 1.301 pooka int error, optype;
1820 1.315 christos struct nameidata nd;
1821 1.314 christos char *path;
1822 1.315 christos const char *cpath;
1823 1.31 cgd
1824 1.268 elad if ((error = kauth_authorize_system(l->l_cred, KAUTH_SYSTEM_MKNOD,
1825 1.268 elad 0, NULL, NULL, NULL)) != 0)
1826 1.31 cgd return (error);
1827 1.301 pooka
1828 1.301 pooka optype = VOP_MKNOD_DESCOFFSET;
1829 1.315 christos
1830 1.383 christos VERIEXEC_PATH_GET(pathname, seg, cpath, path);
1831 1.334 pooka NDINIT(&nd, CREATE, LOCKPARENT | TRYEMULROOT, seg, cpath);
1832 1.315 christos
1833 1.63 christos if ((error = namei(&nd)) != 0)
1834 1.314 christos goto out;
1835 1.31 cgd vp = nd.ni_vp;
1836 1.43 mycroft if (vp != NULL)
1837 1.31 cgd error = EEXIST;
1838 1.43 mycroft else {
1839 1.43 mycroft VATTR_NULL(&vattr);
1840 1.328 ad /* We will read cwdi->cwdi_cmask unlocked. */
1841 1.383 christos vattr.va_mode = (mode & ALLPERMS) &~ p->p_cwdi->cwdi_cmask;
1842 1.383 christos vattr.va_rdev = dev;
1843 1.43 mycroft
1844 1.383 christos switch (mode & S_IFMT) {
1845 1.43 mycroft case S_IFMT: /* used by badsect to flag bad sectors */
1846 1.43 mycroft vattr.va_type = VBAD;
1847 1.43 mycroft break;
1848 1.43 mycroft case S_IFCHR:
1849 1.43 mycroft vattr.va_type = VCHR;
1850 1.43 mycroft break;
1851 1.43 mycroft case S_IFBLK:
1852 1.43 mycroft vattr.va_type = VBLK;
1853 1.43 mycroft break;
1854 1.43 mycroft case S_IFWHT:
1855 1.301 pooka optype = VOP_WHITEOUT_DESCOFFSET;
1856 1.301 pooka break;
1857 1.301 pooka case S_IFREG:
1858 1.314 christos #if NVERIEXEC > 0
1859 1.314 christos error = veriexec_openchk(l, nd.ni_vp, nd.ni_dirp,
1860 1.314 christos O_CREAT);
1861 1.314 christos #endif /* NVERIEXEC > 0 */
1862 1.301 pooka vattr.va_type = VREG;
1863 1.302 pooka vattr.va_rdev = VNOVAL;
1864 1.301 pooka optype = VOP_CREATE_DESCOFFSET;
1865 1.43 mycroft break;
1866 1.43 mycroft default:
1867 1.43 mycroft error = EINVAL;
1868 1.43 mycroft break;
1869 1.43 mycroft }
1870 1.31 cgd }
1871 1.43 mycroft if (!error) {
1872 1.301 pooka switch (optype) {
1873 1.301 pooka case VOP_WHITEOUT_DESCOFFSET:
1874 1.43 mycroft error = VOP_WHITEOUT(nd.ni_dvp, &nd.ni_cnd, CREATE);
1875 1.43 mycroft if (error)
1876 1.43 mycroft VOP_ABORTOP(nd.ni_dvp, &nd.ni_cnd);
1877 1.43 mycroft vput(nd.ni_dvp);
1878 1.301 pooka break;
1879 1.301 pooka
1880 1.301 pooka case VOP_MKNOD_DESCOFFSET:
1881 1.43 mycroft error = VOP_MKNOD(nd.ni_dvp, &nd.ni_vp,
1882 1.43 mycroft &nd.ni_cnd, &vattr);
1883 1.168 assar if (error == 0)
1884 1.168 assar vput(nd.ni_vp);
1885 1.301 pooka break;
1886 1.301 pooka
1887 1.301 pooka case VOP_CREATE_DESCOFFSET:
1888 1.301 pooka error = VOP_CREATE(nd.ni_dvp, &nd.ni_vp,
1889 1.301 pooka &nd.ni_cnd, &vattr);
1890 1.301 pooka if (error == 0)
1891 1.301 pooka vput(nd.ni_vp);
1892 1.301 pooka break;
1893 1.43 mycroft }
1894 1.43 mycroft } else {
1895 1.43 mycroft VOP_ABORTOP(nd.ni_dvp, &nd.ni_cnd);
1896 1.43 mycroft if (nd.ni_dvp == vp)
1897 1.43 mycroft vrele(nd.ni_dvp);
1898 1.43 mycroft else
1899 1.43 mycroft vput(nd.ni_dvp);
1900 1.43 mycroft if (vp)
1901 1.43 mycroft vrele(vp);
1902 1.31 cgd }
1903 1.314 christos out:
1904 1.315 christos VERIEXEC_PATH_PUT(path);
1905 1.31 cgd return (error);
1906 1.31 cgd }
1907 1.31 cgd
1908 1.31 cgd /*
1909 1.31 cgd * Create a named pipe.
1910 1.31 cgd */
1911 1.31 cgd /* ARGSUSED */
1912 1.63 christos int
1913 1.335 dsl sys_mkfifo(struct lwp *l, const struct sys_mkfifo_args *uap, register_t *retval)
1914 1.56 thorpej {
1915 1.335 dsl /* {
1916 1.74 cgd syscallarg(const char *) path;
1917 1.35 cgd syscallarg(int) mode;
1918 1.335 dsl } */
1919 1.179 thorpej struct proc *p = l->l_proc;
1920 1.31 cgd struct vattr vattr;
1921 1.31 cgd int error;
1922 1.31 cgd struct nameidata nd;
1923 1.31 cgd
1924 1.334 pooka NDINIT(&nd, CREATE, LOCKPARENT | TRYEMULROOT, UIO_USERSPACE,
1925 1.334 pooka SCARG(uap, path));
1926 1.63 christos if ((error = namei(&nd)) != 0)
1927 1.31 cgd return (error);
1928 1.31 cgd if (nd.ni_vp != NULL) {
1929 1.31 cgd VOP_ABORTOP(nd.ni_dvp, &nd.ni_cnd);
1930 1.31 cgd if (nd.ni_dvp == nd.ni_vp)
1931 1.31 cgd vrele(nd.ni_dvp);
1932 1.31 cgd else
1933 1.31 cgd vput(nd.ni_dvp);
1934 1.31 cgd vrele(nd.ni_vp);
1935 1.31 cgd return (EEXIST);
1936 1.31 cgd }
1937 1.31 cgd VATTR_NULL(&vattr);
1938 1.31 cgd vattr.va_type = VFIFO;
1939 1.328 ad /* We will read cwdi->cwdi_cmask unlocked. */
1940 1.134 thorpej vattr.va_mode = (SCARG(uap, mode) & ALLPERMS) &~ p->p_cwdi->cwdi_cmask;
1941 1.168 assar error = VOP_MKNOD(nd.ni_dvp, &nd.ni_vp, &nd.ni_cnd, &vattr);
1942 1.168 assar if (error == 0)
1943 1.168 assar vput(nd.ni_vp);
1944 1.168 assar return (error);
1945 1.31 cgd }
1946 1.31 cgd
1947 1.31 cgd /*
1948 1.31 cgd * Make a hard file link.
1949 1.31 cgd */
1950 1.31 cgd /* ARGSUSED */
1951 1.63 christos int
1952 1.335 dsl sys_link(struct lwp *l, const struct sys_link_args *uap, register_t *retval)
1953 1.56 thorpej {
1954 1.335 dsl /* {
1955 1.74 cgd syscallarg(const char *) path;
1956 1.74 cgd syscallarg(const char *) link;
1957 1.335 dsl } */
1958 1.155 augustss struct vnode *vp;
1959 1.31 cgd struct nameidata nd;
1960 1.31 cgd int error;
1961 1.31 cgd
1962 1.395 dholland error = namei_simple_user(SCARG(uap, path),
1963 1.395 dholland NSM_FOLLOW_TRYEMULROOT, &vp);
1964 1.395 dholland if (error != 0)
1965 1.31 cgd return (error);
1966 1.331 pooka NDINIT(&nd, CREATE, LOCKPARENT | TRYEMULROOT, UIO_USERSPACE,
1967 1.334 pooka SCARG(uap, link));
1968 1.66 mycroft if ((error = namei(&nd)) != 0)
1969 1.66 mycroft goto out;
1970 1.66 mycroft if (nd.ni_vp) {
1971 1.66 mycroft VOP_ABORTOP(nd.ni_dvp, &nd.ni_cnd);
1972 1.66 mycroft if (nd.ni_dvp == nd.ni_vp)
1973 1.66 mycroft vrele(nd.ni_dvp);
1974 1.66 mycroft else
1975 1.66 mycroft vput(nd.ni_dvp);
1976 1.66 mycroft vrele(nd.ni_vp);
1977 1.66 mycroft error = EEXIST;
1978 1.66 mycroft goto out;
1979 1.31 cgd }
1980 1.66 mycroft error = VOP_LINK(nd.ni_dvp, vp, &nd.ni_cnd);
1981 1.66 mycroft out:
1982 1.31 cgd vrele(vp);
1983 1.31 cgd return (error);
1984 1.31 cgd }
1985 1.31 cgd
1986 1.31 cgd /*
1987 1.31 cgd * Make a symbolic link.
1988 1.31 cgd */
1989 1.31 cgd /* ARGSUSED */
1990 1.63 christos int
1991 1.335 dsl sys_symlink(struct lwp *l, const struct sys_symlink_args *uap, register_t *retval)
1992 1.56 thorpej {
1993 1.335 dsl /* {
1994 1.74 cgd syscallarg(const char *) path;
1995 1.74 cgd syscallarg(const char *) link;
1996 1.335 dsl } */
1997 1.179 thorpej struct proc *p = l->l_proc;
1998 1.31 cgd struct vattr vattr;
1999 1.31 cgd char *path;
2000 1.31 cgd int error;
2001 1.31 cgd struct nameidata nd;
2002 1.31 cgd
2003 1.161 thorpej path = PNBUF_GET();
2004 1.63 christos error = copyinstr(SCARG(uap, path), path, MAXPATHLEN, NULL);
2005 1.63 christos if (error)
2006 1.43 mycroft goto out;
2007 1.331 pooka NDINIT(&nd, CREATE, LOCKPARENT | TRYEMULROOT, UIO_USERSPACE,
2008 1.334 pooka SCARG(uap, link));
2009 1.63 christos if ((error = namei(&nd)) != 0)
2010 1.43 mycroft goto out;
2011 1.31 cgd if (nd.ni_vp) {
2012 1.31 cgd VOP_ABORTOP(nd.ni_dvp, &nd.ni_cnd);
2013 1.31 cgd if (nd.ni_dvp == nd.ni_vp)
2014 1.31 cgd vrele(nd.ni_dvp);
2015 1.31 cgd else
2016 1.31 cgd vput(nd.ni_dvp);
2017 1.31 cgd vrele(nd.ni_vp);
2018 1.31 cgd error = EEXIST;
2019 1.43 mycroft goto out;
2020 1.31 cgd }
2021 1.31 cgd VATTR_NULL(&vattr);
2022 1.230 jmmv vattr.va_type = VLNK;
2023 1.328 ad /* We will read cwdi->cwdi_cmask unlocked. */
2024 1.134 thorpej vattr.va_mode = ACCESSPERMS &~ p->p_cwdi->cwdi_cmask;
2025 1.31 cgd error = VOP_SYMLINK(nd.ni_dvp, &nd.ni_vp, &nd.ni_cnd, &vattr, path);
2026 1.168 assar if (error == 0)
2027 1.168 assar vput(nd.ni_vp);
2028 1.43 mycroft out:
2029 1.161 thorpej PNBUF_PUT(path);
2030 1.31 cgd return (error);
2031 1.31 cgd }
2032 1.31 cgd
2033 1.31 cgd /*
2034 1.43 mycroft * Delete a whiteout from the filesystem.
2035 1.43 mycroft */
2036 1.43 mycroft /* ARGSUSED */
2037 1.63 christos int
2038 1.335 dsl sys_undelete(struct lwp *l, const struct sys_undelete_args *uap, register_t *retval)
2039 1.56 thorpej {
2040 1.335 dsl /* {
2041 1.74 cgd syscallarg(const char *) path;
2042 1.335 dsl } */
2043 1.43 mycroft int error;
2044 1.43 mycroft struct nameidata nd;
2045 1.43 mycroft
2046 1.331 pooka NDINIT(&nd, DELETE, LOCKPARENT | DOWHITEOUT | TRYEMULROOT,
2047 1.334 pooka UIO_USERSPACE, SCARG(uap, path));
2048 1.43 mycroft error = namei(&nd);
2049 1.43 mycroft if (error)
2050 1.43 mycroft return (error);
2051 1.43 mycroft
2052 1.43 mycroft if (nd.ni_vp != NULLVP || !(nd.ni_cnd.cn_flags & ISWHITEOUT)) {
2053 1.43 mycroft VOP_ABORTOP(nd.ni_dvp, &nd.ni_cnd);
2054 1.43 mycroft if (nd.ni_dvp == nd.ni_vp)
2055 1.43 mycroft vrele(nd.ni_dvp);
2056 1.43 mycroft else
2057 1.43 mycroft vput(nd.ni_dvp);
2058 1.43 mycroft if (nd.ni_vp)
2059 1.43 mycroft vrele(nd.ni_vp);
2060 1.43 mycroft return (EEXIST);
2061 1.43 mycroft }
2062 1.63 christos if ((error = VOP_WHITEOUT(nd.ni_dvp, &nd.ni_cnd, DELETE)) != 0)
2063 1.43 mycroft VOP_ABORTOP(nd.ni_dvp, &nd.ni_cnd);
2064 1.43 mycroft vput(nd.ni_dvp);
2065 1.43 mycroft return (error);
2066 1.43 mycroft }
2067 1.43 mycroft
2068 1.43 mycroft /*
2069 1.31 cgd * Delete a name from the filesystem.
2070 1.31 cgd */
2071 1.31 cgd /* ARGSUSED */
2072 1.63 christos int
2073 1.335 dsl sys_unlink(struct lwp *l, const struct sys_unlink_args *uap, register_t *retval)
2074 1.56 thorpej {
2075 1.335 dsl /* {
2076 1.74 cgd syscallarg(const char *) path;
2077 1.335 dsl } */
2078 1.336 ad
2079 1.336 ad return do_sys_unlink(SCARG(uap, path), UIO_USERSPACE);
2080 1.336 ad }
2081 1.336 ad
2082 1.336 ad int
2083 1.336 ad do_sys_unlink(const char *arg, enum uio_seg seg)
2084 1.336 ad {
2085 1.155 augustss struct vnode *vp;
2086 1.31 cgd int error;
2087 1.31 cgd struct nameidata nd;
2088 1.315 christos char *path;
2089 1.315 christos const char *cpath;
2090 1.31 cgd
2091 1.336 ad VERIEXEC_PATH_GET(arg, seg, cpath, path);
2092 1.334 pooka NDINIT(&nd, DELETE, LOCKPARENT | LOCKLEAF | TRYEMULROOT, seg, cpath);
2093 1.313 elad
2094 1.63 christos if ((error = namei(&nd)) != 0)
2095 1.313 elad goto out;
2096 1.31 cgd vp = nd.ni_vp;
2097 1.31 cgd
2098 1.66 mycroft /*
2099 1.66 mycroft * The root of a mounted filesystem cannot be deleted.
2100 1.66 mycroft */
2101 1.329 ad if (vp->v_vflag & VV_ROOT) {
2102 1.43 mycroft VOP_ABORTOP(nd.ni_dvp, &nd.ni_cnd);
2103 1.43 mycroft if (nd.ni_dvp == vp)
2104 1.43 mycroft vrele(nd.ni_dvp);
2105 1.43 mycroft else
2106 1.43 mycroft vput(nd.ni_dvp);
2107 1.66 mycroft vput(vp);
2108 1.66 mycroft error = EBUSY;
2109 1.66 mycroft goto out;
2110 1.31 cgd }
2111 1.219 blymn
2112 1.256 elad #if NVERIEXEC > 0
2113 1.222 elad /* Handle remove requests for veriexec entries. */
2114 1.336 ad if ((error = veriexec_removechk(curlwp, nd.ni_vp, nd.ni_dirp)) != 0) {
2115 1.219 blymn VOP_ABORTOP(nd.ni_dvp, &nd.ni_cnd);
2116 1.219 blymn if (nd.ni_dvp == vp)
2117 1.219 blymn vrele(nd.ni_dvp);
2118 1.219 blymn else
2119 1.219 blymn vput(nd.ni_dvp);
2120 1.219 blymn vput(vp);
2121 1.219 blymn goto out;
2122 1.219 blymn }
2123 1.256 elad #endif /* NVERIEXEC > 0 */
2124 1.256 elad
2125 1.253 elad #ifdef FILEASSOC
2126 1.278 elad (void)fileassoc_file_delete(vp);
2127 1.253 elad #endif /* FILEASSOC */
2128 1.66 mycroft error = VOP_REMOVE(nd.ni_dvp, nd.ni_vp, &nd.ni_cnd);
2129 1.66 mycroft out:
2130 1.315 christos VERIEXEC_PATH_PUT(path);
2131 1.31 cgd return (error);
2132 1.31 cgd }
2133 1.31 cgd
2134 1.31 cgd /*
2135 1.31 cgd * Reposition read/write file offset.
2136 1.31 cgd */
2137 1.63 christos int
2138 1.335 dsl sys_lseek(struct lwp *l, const struct sys_lseek_args *uap, register_t *retval)
2139 1.56 thorpej {
2140 1.335 dsl /* {
2141 1.35 cgd syscallarg(int) fd;
2142 1.35 cgd syscallarg(int) pad;
2143 1.35 cgd syscallarg(off_t) offset;
2144 1.35 cgd syscallarg(int) whence;
2145 1.335 dsl } */
2146 1.257 ad kauth_cred_t cred = l->l_cred;
2147 1.346 ad file_t *fp;
2148 1.84 kleink struct vnode *vp;
2149 1.31 cgd struct vattr vattr;
2150 1.155 augustss off_t newoff;
2151 1.346 ad int error, fd;
2152 1.346 ad
2153 1.346 ad fd = SCARG(uap, fd);
2154 1.31 cgd
2155 1.346 ad if ((fp = fd_getfile(fd)) == NULL)
2156 1.31 cgd return (EBADF);
2157 1.84 kleink
2158 1.346 ad vp = fp->f_data;
2159 1.135 thorpej if (fp->f_type != DTYPE_VNODE || vp->v_type == VFIFO) {
2160 1.135 thorpej error = ESPIPE;
2161 1.135 thorpej goto out;
2162 1.135 thorpej }
2163 1.84 kleink
2164 1.35 cgd switch (SCARG(uap, whence)) {
2165 1.92 kleink case SEEK_CUR:
2166 1.84 kleink newoff = fp->f_offset + SCARG(uap, offset);
2167 1.31 cgd break;
2168 1.92 kleink case SEEK_END:
2169 1.332 pooka error = VOP_GETATTR(vp, &vattr, cred);
2170 1.328 ad if (error) {
2171 1.135 thorpej goto out;
2172 1.328 ad }
2173 1.84 kleink newoff = SCARG(uap, offset) + vattr.va_size;
2174 1.31 cgd break;
2175 1.92 kleink case SEEK_SET:
2176 1.84 kleink newoff = SCARG(uap, offset);
2177 1.31 cgd break;
2178 1.31 cgd default:
2179 1.135 thorpej error = EINVAL;
2180 1.135 thorpej goto out;
2181 1.31 cgd }
2182 1.328 ad if ((error = VOP_SEEK(vp, fp->f_offset, newoff, cred)) == 0) {
2183 1.328 ad *(off_t *)retval = fp->f_offset = newoff;
2184 1.328 ad }
2185 1.135 thorpej out:
2186 1.346 ad fd_putfile(fd);
2187 1.135 thorpej return (error);
2188 1.120 thorpej }
2189 1.120 thorpej
2190 1.120 thorpej /*
2191 1.120 thorpej * Positional read system call.
2192 1.120 thorpej */
2193 1.120 thorpej int
2194 1.335 dsl sys_pread(struct lwp *l, const struct sys_pread_args *uap, register_t *retval)
2195 1.120 thorpej {
2196 1.335 dsl /* {
2197 1.120 thorpej syscallarg(int) fd;
2198 1.120 thorpej syscallarg(void *) buf;
2199 1.120 thorpej syscallarg(size_t) nbyte;
2200 1.120 thorpej syscallarg(off_t) offset;
2201 1.335 dsl } */
2202 1.346 ad file_t *fp;
2203 1.120 thorpej struct vnode *vp;
2204 1.120 thorpej off_t offset;
2205 1.120 thorpej int error, fd = SCARG(uap, fd);
2206 1.120 thorpej
2207 1.346 ad if ((fp = fd_getfile(fd)) == NULL)
2208 1.166 thorpej return (EBADF);
2209 1.166 thorpej
2210 1.183 pk if ((fp->f_flag & FREAD) == 0) {
2211 1.346 ad fd_putfile(fd);
2212 1.120 thorpej return (EBADF);
2213 1.183 pk }
2214 1.120 thorpej
2215 1.346 ad vp = fp->f_data;
2216 1.135 thorpej if (fp->f_type != DTYPE_VNODE || vp->v_type == VFIFO) {
2217 1.135 thorpej error = ESPIPE;
2218 1.135 thorpej goto out;
2219 1.135 thorpej }
2220 1.120 thorpej
2221 1.120 thorpej offset = SCARG(uap, offset);
2222 1.120 thorpej
2223 1.120 thorpej /*
2224 1.120 thorpej * XXX This works because no file systems actually
2225 1.120 thorpej * XXX take any action on the seek operation.
2226 1.120 thorpej */
2227 1.120 thorpej if ((error = VOP_SEEK(vp, fp->f_offset, offset, fp->f_cred)) != 0)
2228 1.135 thorpej goto out;
2229 1.120 thorpej
2230 1.135 thorpej /* dofileread() will unuse the descriptor for us */
2231 1.328 ad return (dofileread(fd, fp, SCARG(uap, buf), SCARG(uap, nbyte),
2232 1.120 thorpej &offset, 0, retval));
2233 1.135 thorpej
2234 1.135 thorpej out:
2235 1.346 ad fd_putfile(fd);
2236 1.135 thorpej return (error);
2237 1.120 thorpej }
2238 1.120 thorpej
2239 1.120 thorpej /*
2240 1.120 thorpej * Positional scatter read system call.
2241 1.120 thorpej */
2242 1.120 thorpej int
2243 1.335 dsl sys_preadv(struct lwp *l, const struct sys_preadv_args *uap, register_t *retval)
2244 1.120 thorpej {
2245 1.335 dsl /* {
2246 1.120 thorpej syscallarg(int) fd;
2247 1.120 thorpej syscallarg(const struct iovec *) iovp;
2248 1.120 thorpej syscallarg(int) iovcnt;
2249 1.120 thorpej syscallarg(off_t) offset;
2250 1.335 dsl } */
2251 1.335 dsl off_t offset = SCARG(uap, offset);
2252 1.120 thorpej
2253 1.328 ad return do_filereadv(SCARG(uap, fd), SCARG(uap, iovp),
2254 1.335 dsl SCARG(uap, iovcnt), &offset, 0, retval);
2255 1.120 thorpej }
2256 1.120 thorpej
2257 1.120 thorpej /*
2258 1.120 thorpej * Positional write system call.
2259 1.120 thorpej */
2260 1.120 thorpej int
2261 1.335 dsl sys_pwrite(struct lwp *l, const struct sys_pwrite_args *uap, register_t *retval)
2262 1.120 thorpej {
2263 1.335 dsl /* {
2264 1.120 thorpej syscallarg(int) fd;
2265 1.120 thorpej syscallarg(const void *) buf;
2266 1.120 thorpej syscallarg(size_t) nbyte;
2267 1.120 thorpej syscallarg(off_t) offset;
2268 1.335 dsl } */
2269 1.346 ad file_t *fp;
2270 1.120 thorpej struct vnode *vp;
2271 1.120 thorpej off_t offset;
2272 1.120 thorpej int error, fd = SCARG(uap, fd);
2273 1.120 thorpej
2274 1.346 ad if ((fp = fd_getfile(fd)) == NULL)
2275 1.166 thorpej return (EBADF);
2276 1.166 thorpej
2277 1.183 pk if ((fp->f_flag & FWRITE) == 0) {
2278 1.346 ad fd_putfile(fd);
2279 1.120 thorpej return (EBADF);
2280 1.183 pk }
2281 1.120 thorpej
2282 1.346 ad vp = fp->f_data;
2283 1.135 thorpej if (fp->f_type != DTYPE_VNODE || vp->v_type == VFIFO) {
2284 1.135 thorpej error = ESPIPE;
2285 1.135 thorpej goto out;
2286 1.135 thorpej }
2287 1.120 thorpej
2288 1.120 thorpej offset = SCARG(uap, offset);
2289 1.120 thorpej
2290 1.120 thorpej /*
2291 1.120 thorpej * XXX This works because no file systems actually
2292 1.120 thorpej * XXX take any action on the seek operation.
2293 1.120 thorpej */
2294 1.120 thorpej if ((error = VOP_SEEK(vp, fp->f_offset, offset, fp->f_cred)) != 0)
2295 1.135 thorpej goto out;
2296 1.120 thorpej
2297 1.135 thorpej /* dofilewrite() will unuse the descriptor for us */
2298 1.328 ad return (dofilewrite(fd, fp, SCARG(uap, buf), SCARG(uap, nbyte),
2299 1.120 thorpej &offset, 0, retval));
2300 1.135 thorpej
2301 1.135 thorpej out:
2302 1.346 ad fd_putfile(fd);
2303 1.135 thorpej return (error);
2304 1.120 thorpej }
2305 1.120 thorpej
2306 1.120 thorpej /*
2307 1.120 thorpej * Positional gather write system call.
2308 1.120 thorpej */
2309 1.120 thorpej int
2310 1.335 dsl sys_pwritev(struct lwp *l, const struct sys_pwritev_args *uap, register_t *retval)
2311 1.120 thorpej {
2312 1.335 dsl /* {
2313 1.120 thorpej syscallarg(int) fd;
2314 1.120 thorpej syscallarg(const struct iovec *) iovp;
2315 1.120 thorpej syscallarg(int) iovcnt;
2316 1.120 thorpej syscallarg(off_t) offset;
2317 1.335 dsl } */
2318 1.335 dsl off_t offset = SCARG(uap, offset);
2319 1.120 thorpej
2320 1.328 ad return do_filewritev(SCARG(uap, fd), SCARG(uap, iovp),
2321 1.335 dsl SCARG(uap, iovcnt), &offset, 0, retval);
2322 1.31 cgd }
2323 1.31 cgd
2324 1.31 cgd /*
2325 1.31 cgd * Check access permissions.
2326 1.31 cgd */
2327 1.63 christos int
2328 1.335 dsl sys_access(struct lwp *l, const struct sys_access_args *uap, register_t *retval)
2329 1.56 thorpej {
2330 1.335 dsl /* {
2331 1.74 cgd syscallarg(const char *) path;
2332 1.35 cgd syscallarg(int) flags;
2333 1.335 dsl } */
2334 1.242 elad kauth_cred_t cred;
2335 1.155 augustss struct vnode *vp;
2336 1.169 christos int error, flags;
2337 1.31 cgd struct nameidata nd;
2338 1.31 cgd
2339 1.257 ad cred = kauth_cred_dup(l->l_cred);
2340 1.257 ad kauth_cred_seteuid(cred, kauth_cred_getuid(l->l_cred));
2341 1.257 ad kauth_cred_setegid(cred, kauth_cred_getgid(l->l_cred));
2342 1.310 dsl NDINIT(&nd, LOOKUP, FOLLOW | LOCKLEAF | TRYEMULROOT, UIO_USERSPACE,
2343 1.334 pooka SCARG(uap, path));
2344 1.169 christos /* Override default credentials */
2345 1.169 christos nd.ni_cnd.cn_cred = cred;
2346 1.63 christos if ((error = namei(&nd)) != 0)
2347 1.169 christos goto out;
2348 1.31 cgd vp = nd.ni_vp;
2349 1.31 cgd
2350 1.31 cgd /* Flags == 0 means only check for existence. */
2351 1.35 cgd if (SCARG(uap, flags)) {
2352 1.31 cgd flags = 0;
2353 1.35 cgd if (SCARG(uap, flags) & R_OK)
2354 1.31 cgd flags |= VREAD;
2355 1.35 cgd if (SCARG(uap, flags) & W_OK)
2356 1.31 cgd flags |= VWRITE;
2357 1.89 mycroft if (SCARG(uap, flags) & X_OK)
2358 1.89 mycroft flags |= VEXEC;
2359 1.138 is
2360 1.332 pooka error = VOP_ACCESS(vp, flags, cred);
2361 1.138 is if (!error && (flags & VWRITE))
2362 1.138 is error = vn_writechk(vp);
2363 1.31 cgd }
2364 1.31 cgd vput(vp);
2365 1.169 christos out:
2366 1.242 elad kauth_cred_free(cred);
2367 1.31 cgd return (error);
2368 1.31 cgd }
2369 1.31 cgd
2370 1.31 cgd /*
2371 1.306 dsl * Common code for all sys_stat functions, including compat versions.
2372 1.306 dsl */
2373 1.306 dsl int
2374 1.346 ad do_sys_stat(const char *path, unsigned int nd_flags, struct stat *sb)
2375 1.306 dsl {
2376 1.306 dsl int error;
2377 1.306 dsl struct nameidata nd;
2378 1.306 dsl
2379 1.331 pooka NDINIT(&nd, LOOKUP, nd_flags | LOCKLEAF | TRYEMULROOT,
2380 1.334 pooka UIO_USERSPACE, path);
2381 1.306 dsl error = namei(&nd);
2382 1.306 dsl if (error != 0)
2383 1.306 dsl return error;
2384 1.346 ad error = vn_stat(nd.ni_vp, sb);
2385 1.306 dsl vput(nd.ni_vp);
2386 1.306 dsl return error;
2387 1.306 dsl }
2388 1.306 dsl
2389 1.306 dsl /*
2390 1.31 cgd * Get file status; this version follows links.
2391 1.31 cgd */
2392 1.31 cgd /* ARGSUSED */
2393 1.63 christos int
2394 1.383 christos sys___stat50(struct lwp *l, const struct sys___stat50_args *uap, register_t *retval)
2395 1.56 thorpej {
2396 1.335 dsl /* {
2397 1.74 cgd syscallarg(const char *) path;
2398 1.35 cgd syscallarg(struct stat *) ub;
2399 1.335 dsl } */
2400 1.31 cgd struct stat sb;
2401 1.31 cgd int error;
2402 1.31 cgd
2403 1.346 ad error = do_sys_stat(SCARG(uap, path), FOLLOW, &sb);
2404 1.31 cgd if (error)
2405 1.306 dsl return error;
2406 1.306 dsl return copyout(&sb, SCARG(uap, ub), sizeof(sb));
2407 1.31 cgd }
2408 1.31 cgd
2409 1.31 cgd /*
2410 1.31 cgd * Get file status; this version does not follow links.
2411 1.31 cgd */
2412 1.31 cgd /* ARGSUSED */
2413 1.63 christos int
2414 1.383 christos sys___lstat50(struct lwp *l, const struct sys___lstat50_args *uap, register_t *retval)
2415 1.56 thorpej {
2416 1.335 dsl /* {
2417 1.74 cgd syscallarg(const char *) path;
2418 1.35 cgd syscallarg(struct stat *) ub;
2419 1.335 dsl } */
2420 1.65 mycroft struct stat sb;
2421 1.31 cgd int error;
2422 1.31 cgd
2423 1.346 ad error = do_sys_stat(SCARG(uap, path), NOFOLLOW, &sb);
2424 1.64 jtc if (error)
2425 1.306 dsl return error;
2426 1.306 dsl return copyout(&sb, SCARG(uap, ub), sizeof(sb));
2427 1.31 cgd }
2428 1.31 cgd
2429 1.31 cgd /*
2430 1.31 cgd * Get configurable pathname variables.
2431 1.31 cgd */
2432 1.31 cgd /* ARGSUSED */
2433 1.63 christos int
2434 1.335 dsl sys_pathconf(struct lwp *l, const struct sys_pathconf_args *uap, register_t *retval)
2435 1.56 thorpej {
2436 1.335 dsl /* {
2437 1.74 cgd syscallarg(const char *) path;
2438 1.35 cgd syscallarg(int) name;
2439 1.335 dsl } */
2440 1.31 cgd int error;
2441 1.31 cgd struct nameidata nd;
2442 1.31 cgd
2443 1.310 dsl NDINIT(&nd, LOOKUP, FOLLOW | LOCKLEAF | TRYEMULROOT, UIO_USERSPACE,
2444 1.334 pooka SCARG(uap, path));
2445 1.63 christos if ((error = namei(&nd)) != 0)
2446 1.31 cgd return (error);
2447 1.35 cgd error = VOP_PATHCONF(nd.ni_vp, SCARG(uap, name), retval);
2448 1.31 cgd vput(nd.ni_vp);
2449 1.31 cgd return (error);
2450 1.31 cgd }
2451 1.31 cgd
2452 1.31 cgd /*
2453 1.31 cgd * Return target name of a symbolic link.
2454 1.31 cgd */
2455 1.31 cgd /* ARGSUSED */
2456 1.63 christos int
2457 1.335 dsl sys_readlink(struct lwp *l, const struct sys_readlink_args *uap, register_t *retval)
2458 1.56 thorpej {
2459 1.335 dsl /* {
2460 1.74 cgd syscallarg(const char *) path;
2461 1.35 cgd syscallarg(char *) buf;
2462 1.115 kleink syscallarg(size_t) count;
2463 1.335 dsl } */
2464 1.155 augustss struct vnode *vp;
2465 1.31 cgd struct iovec aiov;
2466 1.31 cgd struct uio auio;
2467 1.31 cgd int error;
2468 1.31 cgd struct nameidata nd;
2469 1.31 cgd
2470 1.310 dsl NDINIT(&nd, LOOKUP, NOFOLLOW | LOCKLEAF | TRYEMULROOT, UIO_USERSPACE,
2471 1.334 pooka SCARG(uap, path));
2472 1.63 christos if ((error = namei(&nd)) != 0)
2473 1.31 cgd return (error);
2474 1.31 cgd vp = nd.ni_vp;
2475 1.31 cgd if (vp->v_type != VLNK)
2476 1.31 cgd error = EINVAL;
2477 1.106 enami else if (!(vp->v_mount->mnt_flag & MNT_SYMPERM) ||
2478 1.332 pooka (error = VOP_ACCESS(vp, VREAD, l->l_cred)) == 0) {
2479 1.35 cgd aiov.iov_base = SCARG(uap, buf);
2480 1.35 cgd aiov.iov_len = SCARG(uap, count);
2481 1.31 cgd auio.uio_iov = &aiov;
2482 1.31 cgd auio.uio_iovcnt = 1;
2483 1.31 cgd auio.uio_offset = 0;
2484 1.31 cgd auio.uio_rw = UIO_READ;
2485 1.238 yamt KASSERT(l == curlwp);
2486 1.238 yamt auio.uio_vmspace = l->l_proc->p_vmspace;
2487 1.35 cgd auio.uio_resid = SCARG(uap, count);
2488 1.257 ad error = VOP_READLINK(vp, &auio, l->l_cred);
2489 1.31 cgd }
2490 1.31 cgd vput(vp);
2491 1.35 cgd *retval = SCARG(uap, count) - auio.uio_resid;
2492 1.31 cgd return (error);
2493 1.31 cgd }
2494 1.31 cgd
2495 1.31 cgd /*
2496 1.31 cgd * Change flags of a file given a path name.
2497 1.31 cgd */
2498 1.31 cgd /* ARGSUSED */
2499 1.63 christos int
2500 1.335 dsl sys_chflags(struct lwp *l, const struct sys_chflags_args *uap, register_t *retval)
2501 1.56 thorpej {
2502 1.335 dsl /* {
2503 1.74 cgd syscallarg(const char *) path;
2504 1.74 cgd syscallarg(u_long) flags;
2505 1.335 dsl } */
2506 1.155 augustss struct vnode *vp;
2507 1.31 cgd int error;
2508 1.31 cgd
2509 1.395 dholland error = namei_simple_user(SCARG(uap, path),
2510 1.395 dholland NSM_FOLLOW_TRYEMULROOT, &vp);
2511 1.395 dholland if (error != 0)
2512 1.31 cgd return (error);
2513 1.234 christos error = change_flags(vp, SCARG(uap, flags), l);
2514 1.31 cgd vput(vp);
2515 1.31 cgd return (error);
2516 1.31 cgd }
2517 1.31 cgd
2518 1.31 cgd /*
2519 1.31 cgd * Change flags of a file given a file descriptor.
2520 1.31 cgd */
2521 1.31 cgd /* ARGSUSED */
2522 1.63 christos int
2523 1.335 dsl sys_fchflags(struct lwp *l, const struct sys_fchflags_args *uap, register_t *retval)
2524 1.56 thorpej {
2525 1.335 dsl /* {
2526 1.35 cgd syscallarg(int) fd;
2527 1.74 cgd syscallarg(u_long) flags;
2528 1.335 dsl } */
2529 1.31 cgd struct vnode *vp;
2530 1.346 ad file_t *fp;
2531 1.31 cgd int error;
2532 1.31 cgd
2533 1.346 ad /* fd_getvnode() will use the descriptor for us */
2534 1.346 ad if ((error = fd_getvnode(SCARG(uap, fd), &fp)) != 0)
2535 1.31 cgd return (error);
2536 1.346 ad vp = fp->f_data;
2537 1.234 christos error = change_flags(vp, SCARG(uap, flags), l);
2538 1.113 fvdl VOP_UNLOCK(vp, 0);
2539 1.346 ad fd_putfile(SCARG(uap, fd));
2540 1.156 mrg return (error);
2541 1.156 mrg }
2542 1.156 mrg
2543 1.156 mrg /*
2544 1.163 enami * Change flags of a file given a path name; this version does
2545 1.156 mrg * not follow links.
2546 1.156 mrg */
2547 1.156 mrg int
2548 1.335 dsl sys_lchflags(struct lwp *l, const struct sys_lchflags_args *uap, register_t *retval)
2549 1.156 mrg {
2550 1.335 dsl /* {
2551 1.156 mrg syscallarg(const char *) path;
2552 1.156 mrg syscallarg(u_long) flags;
2553 1.335 dsl } */
2554 1.163 enami struct vnode *vp;
2555 1.156 mrg int error;
2556 1.156 mrg
2557 1.395 dholland error = namei_simple_user(SCARG(uap, path),
2558 1.395 dholland NSM_NOFOLLOW_TRYEMULROOT, &vp);
2559 1.395 dholland if (error != 0)
2560 1.156 mrg return (error);
2561 1.234 christos error = change_flags(vp, SCARG(uap, flags), l);
2562 1.163 enami vput(vp);
2563 1.163 enami return (error);
2564 1.163 enami }
2565 1.163 enami
2566 1.163 enami /*
2567 1.163 enami * Common routine to change flags of a file.
2568 1.163 enami */
2569 1.163 enami int
2570 1.234 christos change_flags(struct vnode *vp, u_long flags, struct lwp *l)
2571 1.163 enami {
2572 1.163 enami struct vattr vattr;
2573 1.163 enami int error;
2574 1.163 enami
2575 1.156 mrg vn_lock(vp, LK_EXCLUSIVE | LK_RETRY);
2576 1.163 enami /*
2577 1.163 enami * Non-superusers cannot change the flags on devices, even if they
2578 1.163 enami * own them.
2579 1.163 enami */
2580 1.294 elad if (kauth_authorize_generic(l->l_cred, KAUTH_GENERIC_ISSUSER, NULL)) {
2581 1.332 pooka if ((error = VOP_GETATTR(vp, &vattr, l->l_cred)) != 0)
2582 1.156 mrg goto out;
2583 1.156 mrg if (vattr.va_type == VCHR || vattr.va_type == VBLK) {
2584 1.156 mrg error = EINVAL;
2585 1.156 mrg goto out;
2586 1.156 mrg }
2587 1.156 mrg }
2588 1.156 mrg VATTR_NULL(&vattr);
2589 1.163 enami vattr.va_flags = flags;
2590 1.332 pooka error = VOP_SETATTR(vp, &vattr, l->l_cred);
2591 1.156 mrg out:
2592 1.31 cgd return (error);
2593 1.31 cgd }
2594 1.31 cgd
2595 1.31 cgd /*
2596 1.98 enami * Change mode of a file given path name; this version follows links.
2597 1.31 cgd */
2598 1.31 cgd /* ARGSUSED */
2599 1.63 christos int
2600 1.335 dsl sys_chmod(struct lwp *l, const struct sys_chmod_args *uap, register_t *retval)
2601 1.56 thorpej {
2602 1.335 dsl /* {
2603 1.74 cgd syscallarg(const char *) path;
2604 1.35 cgd syscallarg(int) mode;
2605 1.335 dsl } */
2606 1.31 cgd int error;
2607 1.395 dholland struct vnode *vp;
2608 1.31 cgd
2609 1.395 dholland error = namei_simple_user(SCARG(uap, path),
2610 1.395 dholland NSM_FOLLOW_TRYEMULROOT, &vp);
2611 1.395 dholland if (error != 0)
2612 1.31 cgd return (error);
2613 1.97 enami
2614 1.395 dholland error = change_mode(vp, SCARG(uap, mode), l);
2615 1.97 enami
2616 1.395 dholland vrele(vp);
2617 1.31 cgd return (error);
2618 1.31 cgd }
2619 1.31 cgd
2620 1.31 cgd /*
2621 1.31 cgd * Change mode of a file given a file descriptor.
2622 1.31 cgd */
2623 1.31 cgd /* ARGSUSED */
2624 1.63 christos int
2625 1.335 dsl sys_fchmod(struct lwp *l, const struct sys_fchmod_args *uap, register_t *retval)
2626 1.56 thorpej {
2627 1.335 dsl /* {
2628 1.35 cgd syscallarg(int) fd;
2629 1.35 cgd syscallarg(int) mode;
2630 1.335 dsl } */
2631 1.346 ad file_t *fp;
2632 1.31 cgd int error;
2633 1.31 cgd
2634 1.346 ad /* fd_getvnode() will use the descriptor for us */
2635 1.346 ad if ((error = fd_getvnode(SCARG(uap, fd), &fp)) != 0)
2636 1.31 cgd return (error);
2637 1.346 ad error = change_mode(fp->f_data, SCARG(uap, mode), l);
2638 1.346 ad fd_putfile(SCARG(uap, fd));
2639 1.135 thorpej return (error);
2640 1.97 enami }
2641 1.97 enami
2642 1.97 enami /*
2643 1.98 enami * Change mode of a file given path name; this version does not follow links.
2644 1.98 enami */
2645 1.98 enami /* ARGSUSED */
2646 1.98 enami int
2647 1.335 dsl sys_lchmod(struct lwp *l, const struct sys_lchmod_args *uap, register_t *retval)
2648 1.98 enami {
2649 1.335 dsl /* {
2650 1.98 enami syscallarg(const char *) path;
2651 1.98 enami syscallarg(int) mode;
2652 1.335 dsl } */
2653 1.98 enami int error;
2654 1.395 dholland struct vnode *vp;
2655 1.98 enami
2656 1.395 dholland error = namei_simple_user(SCARG(uap, path),
2657 1.395 dholland NSM_NOFOLLOW_TRYEMULROOT, &vp);
2658 1.395 dholland if (error != 0)
2659 1.98 enami return (error);
2660 1.98 enami
2661 1.395 dholland error = change_mode(vp, SCARG(uap, mode), l);
2662 1.98 enami
2663 1.395 dholland vrele(vp);
2664 1.98 enami return (error);
2665 1.98 enami }
2666 1.98 enami
2667 1.98 enami /*
2668 1.97 enami * Common routine to set mode given a vnode.
2669 1.97 enami */
2670 1.97 enami static int
2671 1.234 christos change_mode(struct vnode *vp, int mode, struct lwp *l)
2672 1.97 enami {
2673 1.97 enami struct vattr vattr;
2674 1.97 enami int error;
2675 1.97 enami
2676 1.113 fvdl vn_lock(vp, LK_EXCLUSIVE | LK_RETRY);
2677 1.113 fvdl VATTR_NULL(&vattr);
2678 1.113 fvdl vattr.va_mode = mode & ALLPERMS;
2679 1.332 pooka error = VOP_SETATTR(vp, &vattr, l->l_cred);
2680 1.113 fvdl VOP_UNLOCK(vp, 0);
2681 1.31 cgd return (error);
2682 1.31 cgd }
2683 1.31 cgd
2684 1.31 cgd /*
2685 1.98 enami * Set ownership given a path name; this version follows links.
2686 1.31 cgd */
2687 1.31 cgd /* ARGSUSED */
2688 1.63 christos int
2689 1.335 dsl sys_chown(struct lwp *l, const struct sys_chown_args *uap, register_t *retval)
2690 1.56 thorpej {
2691 1.335 dsl /* {
2692 1.74 cgd syscallarg(const char *) path;
2693 1.74 cgd syscallarg(uid_t) uid;
2694 1.74 cgd syscallarg(gid_t) gid;
2695 1.335 dsl } */
2696 1.31 cgd int error;
2697 1.395 dholland struct vnode *vp;
2698 1.31 cgd
2699 1.395 dholland error = namei_simple_user(SCARG(uap, path),
2700 1.395 dholland NSM_FOLLOW_TRYEMULROOT, &vp);
2701 1.395 dholland if (error != 0)
2702 1.31 cgd return (error);
2703 1.86 kleink
2704 1.395 dholland error = change_owner(vp, SCARG(uap, uid), SCARG(uap, gid), l, 0);
2705 1.112 kleink
2706 1.395 dholland vrele(vp);
2707 1.112 kleink return (error);
2708 1.112 kleink }
2709 1.112 kleink
2710 1.112 kleink /*
2711 1.112 kleink * Set ownership given a path name; this version follows links.
2712 1.112 kleink * Provides POSIX semantics.
2713 1.112 kleink */
2714 1.112 kleink /* ARGSUSED */
2715 1.112 kleink int
2716 1.335 dsl sys___posix_chown(struct lwp *l, const struct sys___posix_chown_args *uap, register_t *retval)
2717 1.112 kleink {
2718 1.335 dsl /* {
2719 1.112 kleink syscallarg(const char *) path;
2720 1.112 kleink syscallarg(uid_t) uid;
2721 1.112 kleink syscallarg(gid_t) gid;
2722 1.335 dsl } */
2723 1.112 kleink int error;
2724 1.395 dholland struct vnode *vp;
2725 1.112 kleink
2726 1.395 dholland error = namei_simple_user(SCARG(uap, path),
2727 1.395 dholland NSM_FOLLOW_TRYEMULROOT, &vp);
2728 1.395 dholland if (error != 0)
2729 1.112 kleink return (error);
2730 1.112 kleink
2731 1.395 dholland error = change_owner(vp, SCARG(uap, uid), SCARG(uap, gid), l, 1);
2732 1.86 kleink
2733 1.395 dholland vrele(vp);
2734 1.31 cgd return (error);
2735 1.31 cgd }
2736 1.31 cgd
2737 1.31 cgd /*
2738 1.31 cgd * Set ownership given a file descriptor.
2739 1.31 cgd */
2740 1.31 cgd /* ARGSUSED */
2741 1.63 christos int
2742 1.335 dsl sys_fchown(struct lwp *l, const struct sys_fchown_args *uap, register_t *retval)
2743 1.56 thorpej {
2744 1.335 dsl /* {
2745 1.35 cgd syscallarg(int) fd;
2746 1.74 cgd syscallarg(uid_t) uid;
2747 1.74 cgd syscallarg(gid_t) gid;
2748 1.335 dsl } */
2749 1.71 mycroft int error;
2750 1.346 ad file_t *fp;
2751 1.31 cgd
2752 1.346 ad /* fd_getvnode() will use the descriptor for us */
2753 1.346 ad if ((error = fd_getvnode(SCARG(uap, fd), &fp)) != 0)
2754 1.31 cgd return (error);
2755 1.346 ad error = change_owner(fp->f_data, SCARG(uap, uid), SCARG(uap, gid),
2756 1.346 ad l, 0);
2757 1.346 ad fd_putfile(SCARG(uap, fd));
2758 1.135 thorpej return (error);
2759 1.112 kleink }
2760 1.112 kleink
2761 1.112 kleink /*
2762 1.112 kleink * Set ownership given a file descriptor, providing POSIX/XPG semantics.
2763 1.112 kleink */
2764 1.112 kleink /* ARGSUSED */
2765 1.112 kleink int
2766 1.335 dsl sys___posix_fchown(struct lwp *l, const struct sys___posix_fchown_args *uap, register_t *retval)
2767 1.112 kleink {
2768 1.335 dsl /* {
2769 1.112 kleink syscallarg(int) fd;
2770 1.112 kleink syscallarg(uid_t) uid;
2771 1.112 kleink syscallarg(gid_t) gid;
2772 1.335 dsl } */
2773 1.112 kleink int error;
2774 1.346 ad file_t *fp;
2775 1.112 kleink
2776 1.346 ad /* fd_getvnode() will use the descriptor for us */
2777 1.346 ad if ((error = fd_getvnode(SCARG(uap, fd), &fp)) != 0)
2778 1.112 kleink return (error);
2779 1.346 ad error = change_owner(fp->f_data, SCARG(uap, uid), SCARG(uap, gid),
2780 1.346 ad l, 1);
2781 1.346 ad fd_putfile(SCARG(uap, fd));
2782 1.135 thorpej return (error);
2783 1.86 kleink }
2784 1.86 kleink
2785 1.86 kleink /*
2786 1.98 enami * Set ownership given a path name; this version does not follow links.
2787 1.98 enami */
2788 1.98 enami /* ARGSUSED */
2789 1.98 enami int
2790 1.335 dsl sys_lchown(struct lwp *l, const struct sys_lchown_args *uap, register_t *retval)
2791 1.98 enami {
2792 1.335 dsl /* {
2793 1.98 enami syscallarg(const char *) path;
2794 1.98 enami syscallarg(uid_t) uid;
2795 1.98 enami syscallarg(gid_t) gid;
2796 1.335 dsl } */
2797 1.98 enami int error;
2798 1.395 dholland struct vnode *vp;
2799 1.98 enami
2800 1.395 dholland error = namei_simple_user(SCARG(uap, path),
2801 1.395 dholland NSM_NOFOLLOW_TRYEMULROOT, &vp);
2802 1.395 dholland if (error != 0)
2803 1.98 enami return (error);
2804 1.98 enami
2805 1.395 dholland error = change_owner(vp, SCARG(uap, uid), SCARG(uap, gid), l, 0);
2806 1.112 kleink
2807 1.395 dholland vrele(vp);
2808 1.112 kleink return (error);
2809 1.112 kleink }
2810 1.112 kleink
2811 1.112 kleink /*
2812 1.112 kleink * Set ownership given a path name; this version does not follow links.
2813 1.112 kleink * Provides POSIX/XPG semantics.
2814 1.112 kleink */
2815 1.112 kleink /* ARGSUSED */
2816 1.112 kleink int
2817 1.335 dsl sys___posix_lchown(struct lwp *l, const struct sys___posix_lchown_args *uap, register_t *retval)
2818 1.112 kleink {
2819 1.335 dsl /* {
2820 1.112 kleink syscallarg(const char *) path;
2821 1.112 kleink syscallarg(uid_t) uid;
2822 1.112 kleink syscallarg(gid_t) gid;
2823 1.335 dsl } */
2824 1.112 kleink int error;
2825 1.395 dholland struct vnode *vp;
2826 1.112 kleink
2827 1.395 dholland error = namei_simple_user(SCARG(uap, path),
2828 1.395 dholland NSM_NOFOLLOW_TRYEMULROOT, &vp);
2829 1.395 dholland if (error != 0)
2830 1.112 kleink return (error);
2831 1.112 kleink
2832 1.395 dholland error = change_owner(vp, SCARG(uap, uid), SCARG(uap, gid), l, 1);
2833 1.98 enami
2834 1.395 dholland vrele(vp);
2835 1.98 enami return (error);
2836 1.98 enami }
2837 1.98 enami
2838 1.98 enami /*
2839 1.205 junyoung * Common routine to set ownership given a vnode.
2840 1.86 kleink */
2841 1.86 kleink static int
2842 1.234 christos change_owner(struct vnode *vp, uid_t uid, gid_t gid, struct lwp *l,
2843 1.221 thorpej int posix_semantics)
2844 1.86 kleink {
2845 1.86 kleink struct vattr vattr;
2846 1.112 kleink mode_t newmode;
2847 1.86 kleink int error;
2848 1.86 kleink
2849 1.113 fvdl vn_lock(vp, LK_EXCLUSIVE | LK_RETRY);
2850 1.332 pooka if ((error = VOP_GETATTR(vp, &vattr, l->l_cred)) != 0)
2851 1.86 kleink goto out;
2852 1.86 kleink
2853 1.175 thorpej #define CHANGED(x) ((int)(x) != -1)
2854 1.112 kleink newmode = vattr.va_mode;
2855 1.112 kleink if (posix_semantics) {
2856 1.112 kleink /*
2857 1.114 kleink * POSIX/XPG semantics: if the caller is not the super-user,
2858 1.114 kleink * clear set-user-id and set-group-id bits. Both POSIX and
2859 1.114 kleink * the XPG consider the behaviour for calls by the super-user
2860 1.114 kleink * implementation-defined; we leave the set-user-id and set-
2861 1.114 kleink * group-id settings intact in that case.
2862 1.112 kleink */
2863 1.257 ad if (kauth_authorize_generic(l->l_cred, KAUTH_GENERIC_ISSUSER,
2864 1.242 elad NULL) != 0)
2865 1.112 kleink newmode &= ~(S_ISUID | S_ISGID);
2866 1.112 kleink } else {
2867 1.112 kleink /*
2868 1.112 kleink * NetBSD semantics: when changing owner and/or group,
2869 1.112 kleink * clear the respective bit(s).
2870 1.112 kleink */
2871 1.112 kleink if (CHANGED(uid))
2872 1.112 kleink newmode &= ~S_ISUID;
2873 1.112 kleink if (CHANGED(gid))
2874 1.112 kleink newmode &= ~S_ISGID;
2875 1.112 kleink }
2876 1.112 kleink /* Update va_mode iff altered. */
2877 1.112 kleink if (vattr.va_mode == newmode)
2878 1.112 kleink newmode = VNOVAL;
2879 1.205 junyoung
2880 1.86 kleink VATTR_NULL(&vattr);
2881 1.175 thorpej vattr.va_uid = CHANGED(uid) ? uid : (uid_t)VNOVAL;
2882 1.175 thorpej vattr.va_gid = CHANGED(gid) ? gid : (gid_t)VNOVAL;
2883 1.86 kleink vattr.va_mode = newmode;
2884 1.332 pooka error = VOP_SETATTR(vp, &vattr, l->l_cred);
2885 1.112 kleink #undef CHANGED
2886 1.205 junyoung
2887 1.86 kleink out:
2888 1.113 fvdl VOP_UNLOCK(vp, 0);
2889 1.31 cgd return (error);
2890 1.31 cgd }
2891 1.31 cgd
2892 1.31 cgd /*
2893 1.98 enami * Set the access and modification times given a path name; this
2894 1.98 enami * version follows links.
2895 1.31 cgd */
2896 1.31 cgd /* ARGSUSED */
2897 1.63 christos int
2898 1.383 christos sys___utimes50(struct lwp *l, const struct sys___utimes50_args *uap,
2899 1.383 christos register_t *retval)
2900 1.56 thorpej {
2901 1.335 dsl /* {
2902 1.74 cgd syscallarg(const char *) path;
2903 1.74 cgd syscallarg(const struct timeval *) tptr;
2904 1.335 dsl } */
2905 1.31 cgd
2906 1.312 dsl return do_sys_utimes(l, NULL, SCARG(uap, path), FOLLOW,
2907 1.346 ad SCARG(uap, tptr), UIO_USERSPACE);
2908 1.71 mycroft }
2909 1.71 mycroft
2910 1.71 mycroft /*
2911 1.71 mycroft * Set the access and modification times given a file descriptor.
2912 1.71 mycroft */
2913 1.71 mycroft /* ARGSUSED */
2914 1.71 mycroft int
2915 1.383 christos sys___futimes50(struct lwp *l, const struct sys___futimes50_args *uap,
2916 1.383 christos register_t *retval)
2917 1.71 mycroft {
2918 1.335 dsl /* {
2919 1.71 mycroft syscallarg(int) fd;
2920 1.74 cgd syscallarg(const struct timeval *) tptr;
2921 1.335 dsl } */
2922 1.71 mycroft int error;
2923 1.346 ad file_t *fp;
2924 1.71 mycroft
2925 1.346 ad /* fd_getvnode() will use the descriptor for us */
2926 1.346 ad if ((error = fd_getvnode(SCARG(uap, fd), &fp)) != 0)
2927 1.96 enami return (error);
2928 1.346 ad error = do_sys_utimes(l, fp->f_data, NULL, 0, SCARG(uap, tptr),
2929 1.346 ad UIO_USERSPACE);
2930 1.346 ad fd_putfile(SCARG(uap, fd));
2931 1.135 thorpej return (error);
2932 1.98 enami }
2933 1.98 enami
2934 1.98 enami /*
2935 1.98 enami * Set the access and modification times given a path name; this
2936 1.98 enami * version does not follow links.
2937 1.98 enami */
2938 1.98 enami int
2939 1.383 christos sys___lutimes50(struct lwp *l, const struct sys___lutimes50_args *uap,
2940 1.383 christos register_t *retval)
2941 1.98 enami {
2942 1.335 dsl /* {
2943 1.98 enami syscallarg(const char *) path;
2944 1.98 enami syscallarg(const struct timeval *) tptr;
2945 1.335 dsl } */
2946 1.98 enami
2947 1.312 dsl return do_sys_utimes(l, NULL, SCARG(uap, path), NOFOLLOW,
2948 1.346 ad SCARG(uap, tptr), UIO_USERSPACE);
2949 1.97 enami }
2950 1.97 enami
2951 1.97 enami /*
2952 1.97 enami * Common routine to set access and modification times given a vnode.
2953 1.97 enami */
2954 1.312 dsl int
2955 1.312 dsl do_sys_utimes(struct lwp *l, struct vnode *vp, const char *path, int flag,
2956 1.312 dsl const struct timeval *tptr, enum uio_seg seg)
2957 1.97 enami {
2958 1.97 enami struct vattr vattr;
2959 1.395 dholland int error, dorele = 0;
2960 1.395 dholland namei_simple_flags_t sflags;
2961 1.395 dholland
2962 1.367 christos bool vanull, setbirthtime;
2963 1.367 christos struct timespec ts[2];
2964 1.97 enami
2965 1.395 dholland /*
2966 1.395 dholland * I have checked all callers and they pass either FOLLOW,
2967 1.395 dholland * NOFOLLOW, or 0 (when they don't pass a path), and NOFOLLOW
2968 1.395 dholland * is 0. More to the point, they don't pass anything else.
2969 1.395 dholland * Let's keep it that way at least until the namei interfaces
2970 1.395 dholland * are fully sanitized.
2971 1.395 dholland */
2972 1.395 dholland KASSERT(flag == NOFOLLOW || flag == FOLLOW);
2973 1.395 dholland sflags = (flag == FOLLOW) ?
2974 1.395 dholland NSM_FOLLOW_TRYEMULROOT : NSM_NOFOLLOW_TRYEMULROOT;
2975 1.395 dholland
2976 1.97 enami if (tptr == NULL) {
2977 1.367 christos vanull = true;
2978 1.367 christos nanotime(&ts[0]);
2979 1.367 christos ts[1] = ts[0];
2980 1.71 mycroft } else {
2981 1.233 yamt struct timeval tv[2];
2982 1.233 yamt
2983 1.367 christos vanull = false;
2984 1.312 dsl if (seg != UIO_SYSSPACE) {
2985 1.383 christos error = copyin(tptr, tv, sizeof (tv));
2986 1.312 dsl if (error != 0)
2987 1.312 dsl return error;
2988 1.312 dsl tptr = tv;
2989 1.312 dsl }
2990 1.367 christos TIMEVAL_TO_TIMESPEC(&tptr[0], &ts[0]);
2991 1.367 christos TIMEVAL_TO_TIMESPEC(&tptr[1], &ts[1]);
2992 1.71 mycroft }
2993 1.312 dsl
2994 1.312 dsl if (vp == NULL) {
2995 1.395 dholland /* note: SEG describes TPTR, not PATH; PATH is always user */
2996 1.395 dholland error = namei_simple_user(path, sflags, &vp);
2997 1.395 dholland if (error != 0)
2998 1.367 christos return error;
2999 1.395 dholland dorele = 1;
3000 1.395 dholland }
3001 1.312 dsl
3002 1.113 fvdl vn_lock(vp, LK_EXCLUSIVE | LK_RETRY);
3003 1.367 christos setbirthtime = (VOP_GETATTR(vp, &vattr, l->l_cred) == 0 &&
3004 1.367 christos timespeccmp(&ts[1], &vattr.va_birthtime, <));
3005 1.367 christos VATTR_NULL(&vattr);
3006 1.368 christos vattr.va_atime = ts[0];
3007 1.368 christos vattr.va_mtime = ts[1];
3008 1.367 christos if (setbirthtime)
3009 1.367 christos vattr.va_birthtime = ts[1];
3010 1.367 christos if (vanull)
3011 1.392 yamt vattr.va_vaflags |= VA_UTIMES_NULL;
3012 1.332 pooka error = VOP_SETATTR(vp, &vattr, l->l_cred);
3013 1.113 fvdl VOP_UNLOCK(vp, 0);
3014 1.312 dsl
3015 1.395 dholland if (dorele != 0)
3016 1.395 dholland vrele(vp);
3017 1.312 dsl
3018 1.367 christos return error;
3019 1.31 cgd }
3020 1.31 cgd
3021 1.31 cgd /*
3022 1.31 cgd * Truncate a file given its path name.
3023 1.31 cgd */
3024 1.31 cgd /* ARGSUSED */
3025 1.63 christos int
3026 1.335 dsl sys_truncate(struct lwp *l, const struct sys_truncate_args *uap, register_t *retval)
3027 1.56 thorpej {
3028 1.335 dsl /* {
3029 1.74 cgd syscallarg(const char *) path;
3030 1.35 cgd syscallarg(int) pad;
3031 1.35 cgd syscallarg(off_t) length;
3032 1.335 dsl } */
3033 1.155 augustss struct vnode *vp;
3034 1.31 cgd struct vattr vattr;
3035 1.31 cgd int error;
3036 1.31 cgd
3037 1.395 dholland error = namei_simple_user(SCARG(uap, path),
3038 1.395 dholland NSM_FOLLOW_TRYEMULROOT, &vp);
3039 1.395 dholland if (error != 0)
3040 1.31 cgd return (error);
3041 1.113 fvdl vn_lock(vp, LK_EXCLUSIVE | LK_RETRY);
3042 1.31 cgd if (vp->v_type == VDIR)
3043 1.31 cgd error = EISDIR;
3044 1.31 cgd else if ((error = vn_writechk(vp)) == 0 &&
3045 1.332 pooka (error = VOP_ACCESS(vp, VWRITE, l->l_cred)) == 0) {
3046 1.31 cgd VATTR_NULL(&vattr);
3047 1.35 cgd vattr.va_size = SCARG(uap, length);
3048 1.332 pooka error = VOP_SETATTR(vp, &vattr, l->l_cred);
3049 1.31 cgd }
3050 1.31 cgd vput(vp);
3051 1.31 cgd return (error);
3052 1.31 cgd }
3053 1.31 cgd
3054 1.31 cgd /*
3055 1.31 cgd * Truncate a file given a file descriptor.
3056 1.31 cgd */
3057 1.31 cgd /* ARGSUSED */
3058 1.63 christos int
3059 1.335 dsl sys_ftruncate(struct lwp *l, const struct sys_ftruncate_args *uap, register_t *retval)
3060 1.56 thorpej {
3061 1.335 dsl /* {
3062 1.35 cgd syscallarg(int) fd;
3063 1.35 cgd syscallarg(int) pad;
3064 1.35 cgd syscallarg(off_t) length;
3065 1.335 dsl } */
3066 1.31 cgd struct vattr vattr;
3067 1.31 cgd struct vnode *vp;
3068 1.346 ad file_t *fp;
3069 1.31 cgd int error;
3070 1.31 cgd
3071 1.346 ad /* fd_getvnode() will use the descriptor for us */
3072 1.346 ad if ((error = fd_getvnode(SCARG(uap, fd), &fp)) != 0)
3073 1.31 cgd return (error);
3074 1.135 thorpej if ((fp->f_flag & FWRITE) == 0) {
3075 1.135 thorpej error = EINVAL;
3076 1.135 thorpej goto out;
3077 1.135 thorpej }
3078 1.346 ad vp = fp->f_data;
3079 1.113 fvdl vn_lock(vp, LK_EXCLUSIVE | LK_RETRY);
3080 1.31 cgd if (vp->v_type == VDIR)
3081 1.31 cgd error = EISDIR;
3082 1.31 cgd else if ((error = vn_writechk(vp)) == 0) {
3083 1.31 cgd VATTR_NULL(&vattr);
3084 1.35 cgd vattr.va_size = SCARG(uap, length);
3085 1.332 pooka error = VOP_SETATTR(vp, &vattr, fp->f_cred);
3086 1.31 cgd }
3087 1.113 fvdl VOP_UNLOCK(vp, 0);
3088 1.135 thorpej out:
3089 1.346 ad fd_putfile(SCARG(uap, fd));
3090 1.31 cgd return (error);
3091 1.31 cgd }
3092 1.31 cgd
3093 1.31 cgd /*
3094 1.31 cgd * Sync an open file.
3095 1.31 cgd */
3096 1.31 cgd /* ARGSUSED */
3097 1.63 christos int
3098 1.335 dsl sys_fsync(struct lwp *l, const struct sys_fsync_args *uap, register_t *retval)
3099 1.56 thorpej {
3100 1.335 dsl /* {
3101 1.35 cgd syscallarg(int) fd;
3102 1.335 dsl } */
3103 1.155 augustss struct vnode *vp;
3104 1.346 ad file_t *fp;
3105 1.31 cgd int error;
3106 1.31 cgd
3107 1.346 ad /* fd_getvnode() will use the descriptor for us */
3108 1.346 ad if ((error = fd_getvnode(SCARG(uap, fd), &fp)) != 0)
3109 1.31 cgd return (error);
3110 1.346 ad vp = fp->f_data;
3111 1.113 fvdl vn_lock(vp, LK_EXCLUSIVE | LK_RETRY);
3112 1.332 pooka error = VOP_FSYNC(vp, fp->f_cred, FSYNC_WAIT, 0, 0);
3113 1.113 fvdl VOP_UNLOCK(vp, 0);
3114 1.346 ad fd_putfile(SCARG(uap, fd));
3115 1.201 thorpej return (error);
3116 1.201 thorpej }
3117 1.201 thorpej
3118 1.201 thorpej /*
3119 1.201 thorpej * Sync a range of file data. API modeled after that found in AIX.
3120 1.201 thorpej *
3121 1.201 thorpej * FDATASYNC indicates that we need only save enough metadata to be able
3122 1.201 thorpej * to re-read the written data. Note we duplicate AIX's requirement that
3123 1.201 thorpej * the file be open for writing.
3124 1.201 thorpej */
3125 1.201 thorpej /* ARGSUSED */
3126 1.201 thorpej int
3127 1.335 dsl sys_fsync_range(struct lwp *l, const struct sys_fsync_range_args *uap, register_t *retval)
3128 1.201 thorpej {
3129 1.335 dsl /* {
3130 1.201 thorpej syscallarg(int) fd;
3131 1.201 thorpej syscallarg(int) flags;
3132 1.201 thorpej syscallarg(off_t) start;
3133 1.225 cube syscallarg(off_t) length;
3134 1.335 dsl } */
3135 1.201 thorpej struct vnode *vp;
3136 1.346 ad file_t *fp;
3137 1.201 thorpej int flags, nflags;
3138 1.201 thorpej off_t s, e, len;
3139 1.201 thorpej int error;
3140 1.201 thorpej
3141 1.346 ad /* fd_getvnode() will use the descriptor for us */
3142 1.346 ad if ((error = fd_getvnode(SCARG(uap, fd), &fp)) != 0)
3143 1.201 thorpej return (error);
3144 1.201 thorpej
3145 1.201 thorpej if ((fp->f_flag & FWRITE) == 0) {
3146 1.293 wrstuden error = EBADF;
3147 1.293 wrstuden goto out;
3148 1.201 thorpej }
3149 1.201 thorpej
3150 1.201 thorpej flags = SCARG(uap, flags);
3151 1.201 thorpej if (((flags & (FDATASYNC | FFILESYNC)) == 0) ||
3152 1.201 thorpej ((~flags & (FDATASYNC | FFILESYNC)) == 0)) {
3153 1.293 wrstuden error = EINVAL;
3154 1.293 wrstuden goto out;
3155 1.201 thorpej }
3156 1.201 thorpej /* Now set up the flags for value(s) to pass to VOP_FSYNC() */
3157 1.201 thorpej if (flags & FDATASYNC)
3158 1.201 thorpej nflags = FSYNC_DATAONLY | FSYNC_WAIT;
3159 1.201 thorpej else
3160 1.201 thorpej nflags = FSYNC_WAIT;
3161 1.216 wrstuden if (flags & FDISKSYNC)
3162 1.216 wrstuden nflags |= FSYNC_CACHE;
3163 1.201 thorpej
3164 1.201 thorpej len = SCARG(uap, length);
3165 1.201 thorpej /* If length == 0, we do the whole file, and s = l = 0 will do that */
3166 1.201 thorpej if (len) {
3167 1.201 thorpej s = SCARG(uap, start);
3168 1.201 thorpej e = s + len;
3169 1.201 thorpej if (e < s) {
3170 1.293 wrstuden error = EINVAL;
3171 1.293 wrstuden goto out;
3172 1.201 thorpej }
3173 1.201 thorpej } else {
3174 1.201 thorpej e = 0;
3175 1.201 thorpej s = 0;
3176 1.201 thorpej }
3177 1.201 thorpej
3178 1.346 ad vp = fp->f_data;
3179 1.201 thorpej vn_lock(vp, LK_EXCLUSIVE | LK_RETRY);
3180 1.332 pooka error = VOP_FSYNC(vp, fp->f_cred, nflags, s, e);
3181 1.201 thorpej VOP_UNLOCK(vp, 0);
3182 1.293 wrstuden out:
3183 1.346 ad fd_putfile(SCARG(uap, fd));
3184 1.31 cgd return (error);
3185 1.31 cgd }
3186 1.31 cgd
3187 1.31 cgd /*
3188 1.117 kleink * Sync the data of an open file.
3189 1.117 kleink */
3190 1.117 kleink /* ARGSUSED */
3191 1.117 kleink int
3192 1.335 dsl sys_fdatasync(struct lwp *l, const struct sys_fdatasync_args *uap, register_t *retval)
3193 1.117 kleink {
3194 1.335 dsl /* {
3195 1.117 kleink syscallarg(int) fd;
3196 1.335 dsl } */
3197 1.117 kleink struct vnode *vp;
3198 1.346 ad file_t *fp;
3199 1.117 kleink int error;
3200 1.117 kleink
3201 1.346 ad /* fd_getvnode() will use the descriptor for us */
3202 1.346 ad if ((error = fd_getvnode(SCARG(uap, fd), &fp)) != 0)
3203 1.117 kleink return (error);
3204 1.199 kleink if ((fp->f_flag & FWRITE) == 0) {
3205 1.346 ad fd_putfile(SCARG(uap, fd));
3206 1.199 kleink return (EBADF);
3207 1.199 kleink }
3208 1.346 ad vp = fp->f_data;
3209 1.117 kleink vn_lock(vp, LK_EXCLUSIVE | LK_RETRY);
3210 1.332 pooka error = VOP_FSYNC(vp, fp->f_cred, FSYNC_WAIT|FSYNC_DATAONLY, 0, 0);
3211 1.117 kleink VOP_UNLOCK(vp, 0);
3212 1.346 ad fd_putfile(SCARG(uap, fd));
3213 1.117 kleink return (error);
3214 1.117 kleink }
3215 1.117 kleink
3216 1.117 kleink /*
3217 1.90 kleink * Rename files, (standard) BSD semantics frontend.
3218 1.31 cgd */
3219 1.31 cgd /* ARGSUSED */
3220 1.63 christos int
3221 1.335 dsl sys_rename(struct lwp *l, const struct sys_rename_args *uap, register_t *retval)
3222 1.56 thorpej {
3223 1.335 dsl /* {
3224 1.74 cgd syscallarg(const char *) from;
3225 1.74 cgd syscallarg(const char *) to;
3226 1.335 dsl } */
3227 1.90 kleink
3228 1.336 ad return (do_sys_rename(SCARG(uap, from), SCARG(uap, to), UIO_USERSPACE, 0));
3229 1.90 kleink }
3230 1.90 kleink
3231 1.90 kleink /*
3232 1.90 kleink * Rename files, POSIX semantics frontend.
3233 1.90 kleink */
3234 1.90 kleink /* ARGSUSED */
3235 1.90 kleink int
3236 1.335 dsl sys___posix_rename(struct lwp *l, const struct sys___posix_rename_args *uap, register_t *retval)
3237 1.90 kleink {
3238 1.335 dsl /* {
3239 1.90 kleink syscallarg(const char *) from;
3240 1.90 kleink syscallarg(const char *) to;
3241 1.335 dsl } */
3242 1.90 kleink
3243 1.336 ad return (do_sys_rename(SCARG(uap, from), SCARG(uap, to), UIO_USERSPACE, 1));
3244 1.90 kleink }
3245 1.90 kleink
3246 1.90 kleink /*
3247 1.90 kleink * Rename files. Source and destination must either both be directories,
3248 1.90 kleink * or both not be directories. If target is a directory, it must be empty.
3249 1.90 kleink * If `from' and `to' refer to the same object, the value of the `retain'
3250 1.90 kleink * argument is used to determine whether `from' will be
3251 1.90 kleink *
3252 1.90 kleink * (retain == 0) deleted unless `from' and `to' refer to the same
3253 1.90 kleink * object in the file system's name space (BSD).
3254 1.90 kleink * (retain == 1) always retained (POSIX).
3255 1.90 kleink */
3256 1.336 ad int
3257 1.336 ad do_sys_rename(const char *from, const char *to, enum uio_seg seg, int retain)
3258 1.90 kleink {
3259 1.155 augustss struct vnode *tvp, *fvp, *tdvp;
3260 1.31 cgd struct nameidata fromnd, tond;
3261 1.344 dholland struct mount *fs;
3262 1.336 ad struct lwp *l = curlwp;
3263 1.234 christos struct proc *p;
3264 1.344 dholland uint32_t saveflag;
3265 1.31 cgd int error;
3266 1.31 cgd
3267 1.401 pooka NDINIT(&fromnd, DELETE, LOCKPARENT | SAVESTART | TRYEMULROOT | INRENAME,
3268 1.336 ad seg, from);
3269 1.63 christos if ((error = namei(&fromnd)) != 0)
3270 1.31 cgd return (error);
3271 1.291 pooka if (fromnd.ni_dvp != fromnd.ni_vp)
3272 1.291 pooka VOP_UNLOCK(fromnd.ni_dvp, 0);
3273 1.31 cgd fvp = fromnd.ni_vp;
3274 1.344 dholland
3275 1.344 dholland fs = fvp->v_mount;
3276 1.344 dholland error = VFS_RENAMELOCK_ENTER(fs);
3277 1.344 dholland if (error) {
3278 1.344 dholland VOP_ABORTOP(fromnd.ni_dvp, &fromnd.ni_cnd);
3279 1.344 dholland vrele(fromnd.ni_dvp);
3280 1.344 dholland vrele(fvp);
3281 1.344 dholland goto out1;
3282 1.344 dholland }
3283 1.344 dholland
3284 1.344 dholland /*
3285 1.344 dholland * close, partially, yet another race - ideally we should only
3286 1.344 dholland * go as far as getting fromnd.ni_dvp before getting the per-fs
3287 1.344 dholland * lock, and then continue to get fromnd.ni_vp, but we can't do
3288 1.344 dholland * that with namei as it stands.
3289 1.344 dholland *
3290 1.344 dholland * This still won't prevent rmdir from nuking fromnd.ni_vp
3291 1.344 dholland * under us. The real fix is to get the locks in the right
3292 1.344 dholland * order and do the lookups in the right places, but that's a
3293 1.344 dholland * major rototill.
3294 1.344 dholland *
3295 1.344 dholland * Preserve the SAVESTART in cn_flags, because who knows what
3296 1.344 dholland * might happen if we don't.
3297 1.344 dholland *
3298 1.344 dholland * Note: this logic (as well as this whole function) is cloned
3299 1.344 dholland * in nfs_serv.c. Proceed accordingly.
3300 1.344 dholland */
3301 1.344 dholland vrele(fvp);
3302 1.348 dholland if ((fromnd.ni_cnd.cn_namelen == 1 &&
3303 1.348 dholland fromnd.ni_cnd.cn_nameptr[0] == '.') ||
3304 1.348 dholland (fromnd.ni_cnd.cn_namelen == 2 &&
3305 1.348 dholland fromnd.ni_cnd.cn_nameptr[0] == '.' &&
3306 1.348 dholland fromnd.ni_cnd.cn_nameptr[1] == '.')) {
3307 1.348 dholland error = EINVAL;
3308 1.348 dholland VFS_RENAMELOCK_EXIT(fs);
3309 1.348 dholland VOP_ABORTOP(fromnd.ni_dvp, &fromnd.ni_cnd);
3310 1.348 dholland vrele(fromnd.ni_dvp);
3311 1.348 dholland goto out1;
3312 1.348 dholland }
3313 1.344 dholland saveflag = fromnd.ni_cnd.cn_flags & SAVESTART;
3314 1.344 dholland fromnd.ni_cnd.cn_flags &= ~SAVESTART;
3315 1.344 dholland vn_lock(fromnd.ni_dvp, LK_EXCLUSIVE | LK_RETRY);
3316 1.344 dholland error = relookup(fromnd.ni_dvp, &fromnd.ni_vp, &fromnd.ni_cnd);
3317 1.344 dholland fromnd.ni_cnd.cn_flags |= saveflag;
3318 1.344 dholland if (error) {
3319 1.344 dholland VOP_UNLOCK(fromnd.ni_dvp, 0);
3320 1.344 dholland VFS_RENAMELOCK_EXIT(fs);
3321 1.344 dholland VOP_ABORTOP(fromnd.ni_dvp, &fromnd.ni_cnd);
3322 1.344 dholland vrele(fromnd.ni_dvp);
3323 1.344 dholland goto out1;
3324 1.344 dholland }
3325 1.344 dholland VOP_UNLOCK(fromnd.ni_vp, 0);
3326 1.344 dholland if (fromnd.ni_dvp != fromnd.ni_vp)
3327 1.344 dholland VOP_UNLOCK(fromnd.ni_dvp, 0);
3328 1.344 dholland fvp = fromnd.ni_vp;
3329 1.344 dholland
3330 1.331 pooka NDINIT(&tond, RENAME,
3331 1.331 pooka LOCKPARENT | LOCKLEAF | NOCACHE | SAVESTART | TRYEMULROOT
3332 1.401 pooka | INRENAME | (fvp->v_type == VDIR ? CREATEDIR : 0),
3333 1.336 ad seg, to);
3334 1.63 christos if ((error = namei(&tond)) != 0) {
3335 1.344 dholland VFS_RENAMELOCK_EXIT(fs);
3336 1.31 cgd VOP_ABORTOP(fromnd.ni_dvp, &fromnd.ni_cnd);
3337 1.31 cgd vrele(fromnd.ni_dvp);
3338 1.31 cgd vrele(fvp);
3339 1.31 cgd goto out1;
3340 1.31 cgd }
3341 1.31 cgd tdvp = tond.ni_dvp;
3342 1.31 cgd tvp = tond.ni_vp;
3343 1.90 kleink
3344 1.31 cgd if (tvp != NULL) {
3345 1.31 cgd if (fvp->v_type == VDIR && tvp->v_type != VDIR) {
3346 1.31 cgd error = ENOTDIR;
3347 1.31 cgd goto out;
3348 1.31 cgd } else if (fvp->v_type != VDIR && tvp->v_type == VDIR) {
3349 1.31 cgd error = EISDIR;
3350 1.31 cgd goto out;
3351 1.31 cgd }
3352 1.31 cgd }
3353 1.90 kleink
3354 1.31 cgd if (fvp == tdvp)
3355 1.31 cgd error = EINVAL;
3356 1.90 kleink
3357 1.82 kleink /*
3358 1.90 kleink * Source and destination refer to the same object.
3359 1.82 kleink */
3360 1.90 kleink if (fvp == tvp) {
3361 1.90 kleink if (retain)
3362 1.90 kleink error = -1;
3363 1.90 kleink else if (fromnd.ni_dvp == tdvp &&
3364 1.90 kleink fromnd.ni_cnd.cn_namelen == tond.ni_cnd.cn_namelen &&
3365 1.123 perry !memcmp(fromnd.ni_cnd.cn_nameptr,
3366 1.90 kleink tond.ni_cnd.cn_nameptr,
3367 1.90 kleink fromnd.ni_cnd.cn_namelen))
3368 1.82 kleink error = -1;
3369 1.90 kleink }
3370 1.90 kleink
3371 1.256 elad #if NVERIEXEC > 0
3372 1.282 elad if (!error) {
3373 1.313 elad char *f1, *f2;
3374 1.384 yamt size_t f1_len;
3375 1.384 yamt size_t f2_len;
3376 1.313 elad
3377 1.384 yamt f1_len = fromnd.ni_cnd.cn_namelen + 1;
3378 1.384 yamt f1 = kmem_alloc(f1_len, KM_SLEEP);
3379 1.384 yamt strlcpy(f1, fromnd.ni_cnd.cn_nameptr, f1_len);
3380 1.384 yamt
3381 1.384 yamt f2_len = tond.ni_cnd.cn_namelen + 1;
3382 1.384 yamt f2 = kmem_alloc(f2_len, KM_SLEEP);
3383 1.384 yamt strlcpy(f2, tond.ni_cnd.cn_nameptr, f2_len);
3384 1.282 elad
3385 1.315 christos error = veriexec_renamechk(l, fvp, f1, tvp, f2);
3386 1.282 elad
3387 1.384 yamt kmem_free(f1, f1_len);
3388 1.384 yamt kmem_free(f2, f2_len);
3389 1.282 elad }
3390 1.256 elad #endif /* NVERIEXEC > 0 */
3391 1.229 elad
3392 1.31 cgd out:
3393 1.234 christos p = l->l_proc;
3394 1.31 cgd if (!error) {
3395 1.31 cgd error = VOP_RENAME(fromnd.ni_dvp, fromnd.ni_vp, &fromnd.ni_cnd,
3396 1.31 cgd tond.ni_dvp, tond.ni_vp, &tond.ni_cnd);
3397 1.344 dholland VFS_RENAMELOCK_EXIT(fs);
3398 1.31 cgd } else {
3399 1.31 cgd VOP_ABORTOP(tond.ni_dvp, &tond.ni_cnd);
3400 1.31 cgd if (tdvp == tvp)
3401 1.31 cgd vrele(tdvp);
3402 1.31 cgd else
3403 1.31 cgd vput(tdvp);
3404 1.31 cgd if (tvp)
3405 1.31 cgd vput(tvp);
3406 1.344 dholland VFS_RENAMELOCK_EXIT(fs);
3407 1.31 cgd VOP_ABORTOP(fromnd.ni_dvp, &fromnd.ni_cnd);
3408 1.31 cgd vrele(fromnd.ni_dvp);
3409 1.31 cgd vrele(fvp);
3410 1.31 cgd }
3411 1.31 cgd vrele(tond.ni_startdir);
3412 1.161 thorpej PNBUF_PUT(tond.ni_cnd.cn_pnbuf);
3413 1.31 cgd out1:
3414 1.31 cgd if (fromnd.ni_startdir)
3415 1.31 cgd vrele(fromnd.ni_startdir);
3416 1.161 thorpej PNBUF_PUT(fromnd.ni_cnd.cn_pnbuf);
3417 1.80 kleink return (error == -1 ? 0 : error);
3418 1.31 cgd }
3419 1.31 cgd
3420 1.31 cgd /*
3421 1.31 cgd * Make a directory file.
3422 1.31 cgd */
3423 1.31 cgd /* ARGSUSED */
3424 1.63 christos int
3425 1.335 dsl sys_mkdir(struct lwp *l, const struct sys_mkdir_args *uap, register_t *retval)
3426 1.56 thorpej {
3427 1.335 dsl /* {
3428 1.74 cgd syscallarg(const char *) path;
3429 1.35 cgd syscallarg(int) mode;
3430 1.335 dsl } */
3431 1.396 pooka
3432 1.399 haad return do_sys_mkdir(SCARG(uap, path), SCARG(uap, mode), UIO_USERSPACE);
3433 1.396 pooka }
3434 1.396 pooka
3435 1.396 pooka int
3436 1.399 haad do_sys_mkdir(const char *path, mode_t mode, enum uio_seg seg)
3437 1.396 pooka {
3438 1.396 pooka struct proc *p = curlwp->l_proc;
3439 1.155 augustss struct vnode *vp;
3440 1.31 cgd struct vattr vattr;
3441 1.31 cgd int error;
3442 1.31 cgd struct nameidata nd;
3443 1.31 cgd
3444 1.396 pooka NDINIT(&nd, CREATE, LOCKPARENT | CREATEDIR | TRYEMULROOT,
3445 1.399 haad seg, path);
3446 1.63 christos if ((error = namei(&nd)) != 0)
3447 1.31 cgd return (error);
3448 1.31 cgd vp = nd.ni_vp;
3449 1.31 cgd if (vp != NULL) {
3450 1.31 cgd VOP_ABORTOP(nd.ni_dvp, &nd.ni_cnd);
3451 1.31 cgd if (nd.ni_dvp == vp)
3452 1.31 cgd vrele(nd.ni_dvp);
3453 1.31 cgd else
3454 1.31 cgd vput(nd.ni_dvp);
3455 1.31 cgd vrele(vp);
3456 1.31 cgd return (EEXIST);
3457 1.31 cgd }
3458 1.31 cgd VATTR_NULL(&vattr);
3459 1.31 cgd vattr.va_type = VDIR;
3460 1.328 ad /* We will read cwdi->cwdi_cmask unlocked. */
3461 1.396 pooka vattr.va_mode = (mode & ACCESSPERMS) &~ p->p_cwdi->cwdi_cmask;
3462 1.31 cgd error = VOP_MKDIR(nd.ni_dvp, &nd.ni_vp, &nd.ni_cnd, &vattr);
3463 1.31 cgd if (!error)
3464 1.31 cgd vput(nd.ni_vp);
3465 1.31 cgd return (error);
3466 1.31 cgd }
3467 1.31 cgd
3468 1.31 cgd /*
3469 1.31 cgd * Remove a directory file.
3470 1.31 cgd */
3471 1.31 cgd /* ARGSUSED */
3472 1.63 christos int
3473 1.335 dsl sys_rmdir(struct lwp *l, const struct sys_rmdir_args *uap, register_t *retval)
3474 1.56 thorpej {
3475 1.335 dsl /* {
3476 1.74 cgd syscallarg(const char *) path;
3477 1.335 dsl } */
3478 1.155 augustss struct vnode *vp;
3479 1.31 cgd int error;
3480 1.31 cgd struct nameidata nd;
3481 1.31 cgd
3482 1.310 dsl NDINIT(&nd, DELETE, LOCKPARENT | LOCKLEAF | TRYEMULROOT, UIO_USERSPACE,
3483 1.334 pooka SCARG(uap, path));
3484 1.63 christos if ((error = namei(&nd)) != 0)
3485 1.31 cgd return (error);
3486 1.31 cgd vp = nd.ni_vp;
3487 1.31 cgd if (vp->v_type != VDIR) {
3488 1.31 cgd error = ENOTDIR;
3489 1.31 cgd goto out;
3490 1.31 cgd }
3491 1.31 cgd /*
3492 1.31 cgd * No rmdir "." please.
3493 1.31 cgd */
3494 1.31 cgd if (nd.ni_dvp == vp) {
3495 1.31 cgd error = EINVAL;
3496 1.31 cgd goto out;
3497 1.31 cgd }
3498 1.31 cgd /*
3499 1.31 cgd * The root of a mounted filesystem cannot be deleted.
3500 1.31 cgd */
3501 1.350 joerg if ((vp->v_vflag & VV_ROOT) != 0 || vp->v_mountedhere != NULL) {
3502 1.31 cgd error = EBUSY;
3503 1.197 hannken goto out;
3504 1.197 hannken }
3505 1.197 hannken error = VOP_RMDIR(nd.ni_dvp, nd.ni_vp, &nd.ni_cnd);
3506 1.197 hannken return (error);
3507 1.197 hannken
3508 1.197 hannken out:
3509 1.197 hannken VOP_ABORTOP(nd.ni_dvp, &nd.ni_cnd);
3510 1.197 hannken if (nd.ni_dvp == vp)
3511 1.197 hannken vrele(nd.ni_dvp);
3512 1.197 hannken else
3513 1.197 hannken vput(nd.ni_dvp);
3514 1.197 hannken vput(vp);
3515 1.31 cgd return (error);
3516 1.31 cgd }
3517 1.31 cgd
3518 1.31 cgd /*
3519 1.31 cgd * Read a block of directory entries in a file system independent format.
3520 1.31 cgd */
3521 1.63 christos int
3522 1.335 dsl sys___getdents30(struct lwp *l, const struct sys___getdents30_args *uap, register_t *retval)
3523 1.56 thorpej {
3524 1.335 dsl /* {
3525 1.35 cgd syscallarg(int) fd;
3526 1.35 cgd syscallarg(char *) buf;
3527 1.101 fvdl syscallarg(size_t) count;
3528 1.335 dsl } */
3529 1.346 ad file_t *fp;
3530 1.101 fvdl int error, done;
3531 1.31 cgd
3532 1.346 ad /* fd_getvnode() will use the descriptor for us */
3533 1.346 ad if ((error = fd_getvnode(SCARG(uap, fd), &fp)) != 0)
3534 1.31 cgd return (error);
3535 1.135 thorpej if ((fp->f_flag & FREAD) == 0) {
3536 1.135 thorpej error = EBADF;
3537 1.135 thorpej goto out;
3538 1.135 thorpej }
3539 1.101 fvdl error = vn_readdir(fp, SCARG(uap, buf), UIO_USERSPACE,
3540 1.234 christos SCARG(uap, count), &done, l, 0, 0);
3541 1.325 ad ktrgenio(SCARG(uap, fd), UIO_READ, SCARG(uap, buf), done, error);
3542 1.101 fvdl *retval = done;
3543 1.135 thorpej out:
3544 1.346 ad fd_putfile(SCARG(uap, fd));
3545 1.31 cgd return (error);
3546 1.31 cgd }
3547 1.31 cgd
3548 1.31 cgd /*
3549 1.31 cgd * Set the mode mask for creation of filesystem nodes.
3550 1.31 cgd */
3551 1.56 thorpej int
3552 1.335 dsl sys_umask(struct lwp *l, const struct sys_umask_args *uap, register_t *retval)
3553 1.56 thorpej {
3554 1.335 dsl /* {
3555 1.103 mycroft syscallarg(mode_t) newmask;
3556 1.335 dsl } */
3557 1.179 thorpej struct proc *p = l->l_proc;
3558 1.134 thorpej struct cwdinfo *cwdi;
3559 1.31 cgd
3560 1.328 ad /*
3561 1.328 ad * cwdi->cwdi_cmask will be read unlocked elsewhere. What's
3562 1.328 ad * important is that we serialize changes to the mask. The
3563 1.328 ad * rw_exit() will issue a write memory barrier on our behalf,
3564 1.328 ad * and force the changes out to other CPUs (as it must use an
3565 1.328 ad * atomic operation, draining the local CPU's store buffers).
3566 1.328 ad */
3567 1.134 thorpej cwdi = p->p_cwdi;
3568 1.328 ad rw_enter(&cwdi->cwdi_lock, RW_WRITER);
3569 1.134 thorpej *retval = cwdi->cwdi_cmask;
3570 1.134 thorpej cwdi->cwdi_cmask = SCARG(uap, newmask) & ALLPERMS;
3571 1.328 ad rw_exit(&cwdi->cwdi_lock);
3572 1.328 ad
3573 1.31 cgd return (0);
3574 1.31 cgd }
3575 1.31 cgd
3576 1.340 elad int
3577 1.340 elad dorevoke(struct vnode *vp, kauth_cred_t cred)
3578 1.340 elad {
3579 1.340 elad struct vattr vattr;
3580 1.340 elad int error;
3581 1.340 elad
3582 1.340 elad if ((error = VOP_GETATTR(vp, &vattr, cred)) != 0)
3583 1.342 ad return error;
3584 1.385 enami if (kauth_cred_geteuid(cred) == vattr.va_uid ||
3585 1.340 elad (error = kauth_authorize_generic(cred,
3586 1.342 ad KAUTH_GENERIC_ISSUSER, NULL)) == 0)
3587 1.340 elad VOP_REVOKE(vp, REVOKEALL);
3588 1.340 elad return (error);
3589 1.340 elad }
3590 1.340 elad
3591 1.31 cgd /*
3592 1.31 cgd * Void all references to file by ripping underlying filesystem
3593 1.31 cgd * away from vnode.
3594 1.31 cgd */
3595 1.31 cgd /* ARGSUSED */
3596 1.63 christos int
3597 1.335 dsl sys_revoke(struct lwp *l, const struct sys_revoke_args *uap, register_t *retval)
3598 1.56 thorpej {
3599 1.335 dsl /* {
3600 1.74 cgd syscallarg(const char *) path;
3601 1.335 dsl } */
3602 1.155 augustss struct vnode *vp;
3603 1.31 cgd int error;
3604 1.31 cgd
3605 1.395 dholland error = namei_simple_user(SCARG(uap, path),
3606 1.395 dholland NSM_FOLLOW_TRYEMULROOT, &vp);
3607 1.395 dholland if (error != 0)
3608 1.31 cgd return (error);
3609 1.340 elad error = dorevoke(vp, l->l_cred);
3610 1.31 cgd vrele(vp);
3611 1.31 cgd return (error);
3612 1.31 cgd }
3613