Loading...
1/*
2 * Copyright (C) 2008 Christoph Hellwig.
3 * Portions Copyright (C) 2000-2008 Silicon Graphics, Inc.
4 *
5 * This program is free software; you can redistribute it and/or
6 * modify it under the terms of the GNU General Public License as
7 * published by the Free Software Foundation.
8 *
9 * This program is distributed in the hope that it would be useful,
10 * but WITHOUT ANY WARRANTY; without even the implied warranty of
11 * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
12 * GNU General Public License for more details.
13 *
14 * You should have received a copy of the GNU General Public License
15 * along with this program; if not, write the Free Software Foundation,
16 * Inc., 51 Franklin St, Fifth Floor, Boston, MA 02110-1301 USA
17 */
18
19#include "xfs.h"
20#include "xfs_format.h"
21#include "xfs_log_format.h"
22#include "xfs_trans_resv.h"
23#include "xfs_mount.h"
24#include "xfs_da_format.h"
25#include "xfs_inode.h"
26#include "xfs_attr.h"
27#include "xfs_attr_leaf.h"
28#include "xfs_acl.h"
29
30#include <linux/posix_acl_xattr.h>
31#include <linux/xattr.h>
32
33
34static int
35xfs_xattr_get(const struct xattr_handler *handler, struct dentry *unused,
36 struct inode *inode, const char *name, void *value, size_t size)
37{
38 int xflags = handler->flags;
39 struct xfs_inode *ip = XFS_I(inode);
40 int error, asize = size;
41
42 /* Convert Linux syscall to XFS internal ATTR flags */
43 if (!size) {
44 xflags |= ATTR_KERNOVAL;
45 value = NULL;
46 }
47
48 error = xfs_attr_get(ip, (unsigned char *)name, value, &asize, xflags);
49 if (error)
50 return error;
51 return asize;
52}
53
54void
55xfs_forget_acl(
56 struct inode *inode,
57 const char *name,
58 int xflags)
59{
60 /*
61 * Invalidate any cached ACLs if the user has bypassed the ACL
62 * interface. We don't validate the content whatsoever so it is caller
63 * responsibility to provide data in valid format and ensure i_mode is
64 * consistent.
65 */
66 if (xflags & ATTR_ROOT) {
67#ifdef CONFIG_XFS_POSIX_ACL
68 if (!strcmp(name, SGI_ACL_FILE))
69 forget_cached_acl(inode, ACL_TYPE_ACCESS);
70 else if (!strcmp(name, SGI_ACL_DEFAULT))
71 forget_cached_acl(inode, ACL_TYPE_DEFAULT);
72#endif
73 }
74}
75
76static int
77xfs_xattr_set(const struct xattr_handler *handler, struct dentry *unused,
78 struct inode *inode, const char *name, const void *value,
79 size_t size, int flags)
80{
81 int xflags = handler->flags;
82 struct xfs_inode *ip = XFS_I(inode);
83 int error;
84
85 /* Convert Linux syscall to XFS internal ATTR flags */
86 if (flags & XATTR_CREATE)
87 xflags |= ATTR_CREATE;
88 if (flags & XATTR_REPLACE)
89 xflags |= ATTR_REPLACE;
90
91 if (!value)
92 return xfs_attr_remove(ip, (unsigned char *)name, xflags);
93 error = xfs_attr_set(ip, (unsigned char *)name,
94 (void *)value, size, xflags);
95 if (!error)
96 xfs_forget_acl(inode, name, xflags);
97
98 return error;
99}
100
101static const struct xattr_handler xfs_xattr_user_handler = {
102 .prefix = XATTR_USER_PREFIX,
103 .flags = 0, /* no flags implies user namespace */
104 .get = xfs_xattr_get,
105 .set = xfs_xattr_set,
106};
107
108static const struct xattr_handler xfs_xattr_trusted_handler = {
109 .prefix = XATTR_TRUSTED_PREFIX,
110 .flags = ATTR_ROOT,
111 .get = xfs_xattr_get,
112 .set = xfs_xattr_set,
113};
114
115static const struct xattr_handler xfs_xattr_security_handler = {
116 .prefix = XATTR_SECURITY_PREFIX,
117 .flags = ATTR_SECURE,
118 .get = xfs_xattr_get,
119 .set = xfs_xattr_set,
120};
121
122const struct xattr_handler *xfs_xattr_handlers[] = {
123 &xfs_xattr_user_handler,
124 &xfs_xattr_trusted_handler,
125 &xfs_xattr_security_handler,
126#ifdef CONFIG_XFS_POSIX_ACL
127 &posix_acl_access_xattr_handler,
128 &posix_acl_default_xattr_handler,
129#endif
130 NULL
131};
132
133static void
134__xfs_xattr_put_listent(
135 struct xfs_attr_list_context *context,
136 char *prefix,
137 int prefix_len,
138 unsigned char *name,
139 int namelen)
140{
141 char *offset;
142 int arraytop;
143
144 if (!context->alist)
145 goto compute_size;
146
147 arraytop = context->count + prefix_len + namelen + 1;
148 if (arraytop > context->firstu) {
149 context->count = -1; /* insufficient space */
150 context->seen_enough = 1;
151 return;
152 }
153 offset = (char *)context->alist + context->count;
154 strncpy(offset, prefix, prefix_len);
155 offset += prefix_len;
156 strncpy(offset, (char *)name, namelen); /* real name */
157 offset += namelen;
158 *offset = '\0';
159
160compute_size:
161 context->count += prefix_len + namelen + 1;
162 return;
163}
164
165static void
166xfs_xattr_put_listent(
167 struct xfs_attr_list_context *context,
168 int flags,
169 unsigned char *name,
170 int namelen,
171 int valuelen)
172{
173 char *prefix;
174 int prefix_len;
175
176 ASSERT(context->count >= 0);
177
178 if (flags & XFS_ATTR_ROOT) {
179#ifdef CONFIG_XFS_POSIX_ACL
180 if (namelen == SGI_ACL_FILE_SIZE &&
181 strncmp(name, SGI_ACL_FILE,
182 SGI_ACL_FILE_SIZE) == 0) {
183 __xfs_xattr_put_listent(
184 context, XATTR_SYSTEM_PREFIX,
185 XATTR_SYSTEM_PREFIX_LEN,
186 XATTR_POSIX_ACL_ACCESS,
187 strlen(XATTR_POSIX_ACL_ACCESS));
188 } else if (namelen == SGI_ACL_DEFAULT_SIZE &&
189 strncmp(name, SGI_ACL_DEFAULT,
190 SGI_ACL_DEFAULT_SIZE) == 0) {
191 __xfs_xattr_put_listent(
192 context, XATTR_SYSTEM_PREFIX,
193 XATTR_SYSTEM_PREFIX_LEN,
194 XATTR_POSIX_ACL_DEFAULT,
195 strlen(XATTR_POSIX_ACL_DEFAULT));
196 }
197#endif
198
199 /*
200 * Only show root namespace entries if we are actually allowed to
201 * see them.
202 */
203 if (!capable(CAP_SYS_ADMIN))
204 return;
205
206 prefix = XATTR_TRUSTED_PREFIX;
207 prefix_len = XATTR_TRUSTED_PREFIX_LEN;
208 } else if (flags & XFS_ATTR_SECURE) {
209 prefix = XATTR_SECURITY_PREFIX;
210 prefix_len = XATTR_SECURITY_PREFIX_LEN;
211 } else {
212 prefix = XATTR_USER_PREFIX;
213 prefix_len = XATTR_USER_PREFIX_LEN;
214 }
215
216 __xfs_xattr_put_listent(context, prefix, prefix_len, name,
217 namelen);
218 return;
219}
220
221ssize_t
222xfs_vn_listxattr(
223 struct dentry *dentry,
224 char *data,
225 size_t size)
226{
227 struct xfs_attr_list_context context;
228 struct attrlist_cursor_kern cursor = { 0 };
229 struct inode *inode = d_inode(dentry);
230 int error;
231
232 /*
233 * First read the regular on-disk attributes.
234 */
235 memset(&context, 0, sizeof(context));
236 context.dp = XFS_I(inode);
237 context.cursor = &cursor;
238 context.resynch = 1;
239 context.alist = size ? data : NULL;
240 context.bufsize = size;
241 context.firstu = context.bufsize;
242 context.put_listent = xfs_xattr_put_listent;
243
244 error = xfs_attr_list_int(&context);
245 if (error)
246 return error;
247 if (context.count < 0)
248 return -ERANGE;
249
250 return context.count;
251}
1// SPDX-License-Identifier: GPL-2.0
2/*
3 * Copyright (C) 2008 Christoph Hellwig.
4 * Portions Copyright (C) 2000-2008 Silicon Graphics, Inc.
5 */
6
7#include "xfs.h"
8#include "xfs_shared.h"
9#include "xfs_format.h"
10#include "xfs_log_format.h"
11#include "xfs_da_format.h"
12#include "xfs_trans_resv.h"
13#include "xfs_mount.h"
14#include "xfs_inode.h"
15#include "xfs_attr.h"
16#include "xfs_acl.h"
17#include "xfs_da_btree.h"
18
19#include <linux/posix_acl_xattr.h>
20
21
22static int
23xfs_xattr_get(const struct xattr_handler *handler, struct dentry *unused,
24 struct inode *inode, const char *name, void *value, size_t size)
25{
26 struct xfs_da_args args = {
27 .dp = XFS_I(inode),
28 .attr_filter = handler->flags,
29 .name = name,
30 .namelen = strlen(name),
31 .value = value,
32 .valuelen = size,
33 };
34 int error;
35
36 error = xfs_attr_get(&args);
37 if (error)
38 return error;
39 return args.valuelen;
40}
41
42static int
43xfs_xattr_set(const struct xattr_handler *handler,
44 struct user_namespace *mnt_userns, struct dentry *unused,
45 struct inode *inode, const char *name, const void *value,
46 size_t size, int flags)
47{
48 struct xfs_da_args args = {
49 .dp = XFS_I(inode),
50 .attr_filter = handler->flags,
51 .attr_flags = flags,
52 .name = name,
53 .namelen = strlen(name),
54 .value = (void *)value,
55 .valuelen = size,
56 };
57 int error;
58
59 error = xfs_attr_set(&args);
60 if (!error && (handler->flags & XFS_ATTR_ROOT))
61 xfs_forget_acl(inode, name);
62 return error;
63}
64
65static const struct xattr_handler xfs_xattr_user_handler = {
66 .prefix = XATTR_USER_PREFIX,
67 .flags = 0, /* no flags implies user namespace */
68 .get = xfs_xattr_get,
69 .set = xfs_xattr_set,
70};
71
72static const struct xattr_handler xfs_xattr_trusted_handler = {
73 .prefix = XATTR_TRUSTED_PREFIX,
74 .flags = XFS_ATTR_ROOT,
75 .get = xfs_xattr_get,
76 .set = xfs_xattr_set,
77};
78
79static const struct xattr_handler xfs_xattr_security_handler = {
80 .prefix = XATTR_SECURITY_PREFIX,
81 .flags = XFS_ATTR_SECURE,
82 .get = xfs_xattr_get,
83 .set = xfs_xattr_set,
84};
85
86const struct xattr_handler *xfs_xattr_handlers[] = {
87 &xfs_xattr_user_handler,
88 &xfs_xattr_trusted_handler,
89 &xfs_xattr_security_handler,
90#ifdef CONFIG_XFS_POSIX_ACL
91 &posix_acl_access_xattr_handler,
92 &posix_acl_default_xattr_handler,
93#endif
94 NULL
95};
96
97static void
98__xfs_xattr_put_listent(
99 struct xfs_attr_list_context *context,
100 char *prefix,
101 int prefix_len,
102 unsigned char *name,
103 int namelen)
104{
105 char *offset;
106 int arraytop;
107
108 if (context->count < 0 || context->seen_enough)
109 return;
110
111 if (!context->buffer)
112 goto compute_size;
113
114 arraytop = context->count + prefix_len + namelen + 1;
115 if (arraytop > context->firstu) {
116 context->count = -1; /* insufficient space */
117 context->seen_enough = 1;
118 return;
119 }
120 offset = context->buffer + context->count;
121 strncpy(offset, prefix, prefix_len);
122 offset += prefix_len;
123 strncpy(offset, (char *)name, namelen); /* real name */
124 offset += namelen;
125 *offset = '\0';
126
127compute_size:
128 context->count += prefix_len + namelen + 1;
129 return;
130}
131
132static void
133xfs_xattr_put_listent(
134 struct xfs_attr_list_context *context,
135 int flags,
136 unsigned char *name,
137 int namelen,
138 int valuelen)
139{
140 char *prefix;
141 int prefix_len;
142
143 ASSERT(context->count >= 0);
144
145 if (flags & XFS_ATTR_ROOT) {
146#ifdef CONFIG_XFS_POSIX_ACL
147 if (namelen == SGI_ACL_FILE_SIZE &&
148 strncmp(name, SGI_ACL_FILE,
149 SGI_ACL_FILE_SIZE) == 0) {
150 __xfs_xattr_put_listent(
151 context, XATTR_SYSTEM_PREFIX,
152 XATTR_SYSTEM_PREFIX_LEN,
153 XATTR_POSIX_ACL_ACCESS,
154 strlen(XATTR_POSIX_ACL_ACCESS));
155 } else if (namelen == SGI_ACL_DEFAULT_SIZE &&
156 strncmp(name, SGI_ACL_DEFAULT,
157 SGI_ACL_DEFAULT_SIZE) == 0) {
158 __xfs_xattr_put_listent(
159 context, XATTR_SYSTEM_PREFIX,
160 XATTR_SYSTEM_PREFIX_LEN,
161 XATTR_POSIX_ACL_DEFAULT,
162 strlen(XATTR_POSIX_ACL_DEFAULT));
163 }
164#endif
165
166 /*
167 * Only show root namespace entries if we are actually allowed to
168 * see them.
169 */
170 if (!capable(CAP_SYS_ADMIN))
171 return;
172
173 prefix = XATTR_TRUSTED_PREFIX;
174 prefix_len = XATTR_TRUSTED_PREFIX_LEN;
175 } else if (flags & XFS_ATTR_SECURE) {
176 prefix = XATTR_SECURITY_PREFIX;
177 prefix_len = XATTR_SECURITY_PREFIX_LEN;
178 } else {
179 prefix = XATTR_USER_PREFIX;
180 prefix_len = XATTR_USER_PREFIX_LEN;
181 }
182
183 __xfs_xattr_put_listent(context, prefix, prefix_len, name,
184 namelen);
185 return;
186}
187
188ssize_t
189xfs_vn_listxattr(
190 struct dentry *dentry,
191 char *data,
192 size_t size)
193{
194 struct xfs_attr_list_context context;
195 struct inode *inode = d_inode(dentry);
196 int error;
197
198 /*
199 * First read the regular on-disk attributes.
200 */
201 memset(&context, 0, sizeof(context));
202 context.dp = XFS_I(inode);
203 context.resynch = 1;
204 context.buffer = size ? data : NULL;
205 context.bufsize = size;
206 context.firstu = context.bufsize;
207 context.put_listent = xfs_xattr_put_listent;
208
209 error = xfs_attr_list(&context);
210 if (error)
211 return error;
212 if (context.count < 0)
213 return -ERANGE;
214
215 return context.count;
216}