4 * DO NOT ALTER OR REMOVE COPYRIGHT NOTICES OR THIS FILE HEADER.
6 * This program is free software; you can redistribute it and/or modify
7 * it under the terms of the GNU General Public License version 2 only,
8 * as published by the Free Software Foundation.
10 * This program is distributed in the hope that it will be useful, but
11 * WITHOUT ANY WARRANTY; without even the implied warranty of
12 * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the GNU
13 * General Public License version 2 for more details (a copy is included
14 * in the LICENSE file that accompanied this code).
16 * You should have received a copy of the GNU General Public License
17 * version 2 along with this program; If not, see
18 * http://www.sun.com/software/products/lustre/docs/GPLv2.pdf
20 * Please contact Sun Microsystems, Inc., 4150 Network Circle, Santa Clara,
21 * CA 95054 USA or visit www.sun.com if you need additional information or
27 * Copyright (c) 2007, 2010, Oracle and/or its affiliates. All rights reserved.
28 * Use is subject to license terms.
30 * Copyright (c) 2011, 2013, Intel Corporation.
33 * This file is part of Lustre, http://www.lustre.org/
34 * Lustre is a trademark of Sun Microsystems, Inc.
36 * lustre/mdt/mdt_xattr.c
38 * Lustre Metadata Target (mdt) extended attributes management.
40 * Author: Peter Braam <braam@clusterfs.com>
41 * Author: Andreas Dilger <adilger@clusterfs.com>
42 * Author: Phil Schwan <phil@clusterfs.com>
43 * Author: Huang Hua <huanghua@clusterfs.com>
46 #define DEBUG_SUBSYSTEM S_MDS
48 #include <lustre_acl.h>
49 #include "mdt_internal.h"
52 /* return EADATA length to the caller. negative value means error */
53 static int mdt_getxattr_pack_reply(struct mdt_thread_info * info)
55 struct req_capsule *pill = info->mti_pill ;
56 struct ptlrpc_request *req = mdt_info_req(info);
59 static const char user_string[] = "user.";
63 if (OBD_FAIL_CHECK(OBD_FAIL_MDS_GETXATTR_PACK))
66 valid = info->mti_body->mbo_valid & (OBD_MD_FLXATTR | OBD_MD_FLXATTRLS);
68 /* Determine how many bytes we need */
69 if (valid == OBD_MD_FLXATTR) {
70 xattr_name = req_capsule_client_get(pill, &RMF_NAME);
74 if (!(exp_connect_flags(req->rq_export) & OBD_CONNECT_XATTR) &&
75 !strncmp(xattr_name, user_string, sizeof(user_string) - 1))
78 size = mo_xattr_get(info->mti_env,
79 mdt_object_child(info->mti_object),
80 &LU_BUF_NULL, xattr_name);
81 } else if (valid == OBD_MD_FLXATTRLS) {
82 size = mo_xattr_list(info->mti_env,
83 mdt_object_child(info->mti_object),
85 } else if (valid == OBD_MD_FLXATTRALL) {
86 /* N.B. eadatasize = 0 is not valid for FLXATTRALL */
87 /* We could calculate accurate sizes, but this would
88 * introduce a lot of overhead, let's do it later... */
89 size = info->mti_body->mbo_eadatasize;
90 req_capsule_set_size(pill, &RMF_EAVALS, RCL_SERVER, size);
91 req_capsule_set_size(pill, &RMF_EAVALS_LENS, RCL_SERVER, size);
93 CDEBUG(D_INFO, "Valid bits: "LPX64"\n",
94 info->mti_body->mbo_valid);
98 if (size == -ENODATA) {
100 } else if (size < 0) {
101 CERROR("Error geting EA size: %d\n", size);
105 req_capsule_set_size(pill, &RMF_EADATA, RCL_SERVER,
106 info->mti_body->mbo_eadatasize == 0 ? 0 : size);
107 rc = req_capsule_server_pack(pill);
117 mdt_getxattr_one(struct mdt_thread_info *info,
118 char *xattr_name, struct md_object *next,
119 struct lu_buf *buf, struct mdt_export_data *med,
122 __u32 remote = exp_connect_rmtclient(info->mti_exp);
123 int flags = CFS_IC_NOTHING, rc;
127 CDEBUG(D_INODE, "getxattr %s\n", xattr_name);
129 rc = mo_xattr_get(info->mti_env, next, buf, xattr_name);
133 if (info->mti_body->mbo_valid &
134 (OBD_MD_FLRMTLSETFACL | OBD_MD_FLRMTLGETFACL))
136 else if (info->mti_body->mbo_valid & OBD_MD_FLRMTRGETFACL)
137 flags = CFS_IC_MAPPED;
139 if (rc > 0 && flags != CFS_IC_NOTHING) {
142 if (unlikely(!remote))
143 GOTO(out, rc = -EINVAL);
145 rc1 = lustre_posix_acl_xattr_id2client(uc,
147 (posix_acl_xattr_header *)(buf->lb_buf),
149 if (unlikely(rc1 < 0))
157 static int mdt_getxattr_all(struct mdt_thread_info *info,
158 struct mdt_body *reqbody, struct mdt_body *repbody,
159 struct lu_buf *buf, struct md_object *next)
161 const struct lu_env *env = info->mti_env;
162 struct ptlrpc_request *req = mdt_info_req(info);
163 struct mdt_export_data *med = mdt_req2med(req);
164 struct lu_ucred *uc = mdt_ucred(info);
165 char *v, *b, *eadatahead, *eadatatail;
167 int eadatasize, eavallen = 0, eavallens = 0, rc;
172 * The format of the pill is the following:
173 * EADATA: attr1\0attr2\0...attrn\0
174 * EAVALS: val1val2...valn
175 * EAVALS_LENS: 4,4,...4
178 eadatahead = buf->lb_buf;
180 /* Fill out EADATA first */
181 eadatasize = mo_xattr_list(env, next, buf);
183 GOTO(out, rc = eadatasize);
185 eadatatail = eadatahead + eadatasize;
187 v = req_capsule_server_get(info->mti_pill, &RMF_EAVALS);
188 sizes = req_capsule_server_get(info->mti_pill, &RMF_EAVALS_LENS);
190 /* Fill out EAVALS and EAVALS_LENS */
191 for (b = eadatahead; b < eadatatail; b += strlen(b) + 1, v += rc) {
193 buf->lb_len = reqbody->mbo_eadatasize - eavallen;
194 rc = mdt_getxattr_one(info, b, next, buf, med, uc);
198 sizes[eavallens] = rc;
203 repbody->mbo_aclsize = eavallen;
204 repbody->mbo_max_mdsize = eavallens;
206 req_capsule_shrink(info->mti_pill, &RMF_EAVALS, eavallen, RCL_SERVER);
207 req_capsule_shrink(info->mti_pill, &RMF_EAVALS_LENS,
208 eavallens * sizeof(__u32), RCL_SERVER);
209 req_capsule_shrink(info->mti_pill, &RMF_EADATA, eadatasize, RCL_SERVER);
211 GOTO(out, rc = eadatasize);
216 int mdt_getxattr(struct mdt_thread_info *info)
218 struct ptlrpc_request *req = mdt_info_req(info);
219 struct mdt_export_data *med = mdt_req2med(req);
220 struct lu_ucred *uc = lu_ucred(info->mti_env);
221 struct mdt_body *reqbody;
222 struct mdt_body *repbody = NULL;
223 struct md_object *next;
225 __u32 remote = exp_connect_rmtclient(info->mti_exp);
231 LASSERT(info->mti_object != NULL);
232 LASSERT(lu_object_assert_exists(&info->mti_object->mot_obj));
234 CDEBUG(D_INODE, "getxattr "DFID"\n", PFID(&info->mti_body->mbo_fid1));
236 reqbody = req_capsule_client_get(info->mti_pill, &RMF_MDT_BODY);
238 RETURN(err_serious(-EFAULT));
240 rc = mdt_init_ucred(info, reqbody);
242 RETURN(err_serious(rc));
244 next = mdt_object_child(info->mti_object);
246 if (info->mti_body->mbo_valid & OBD_MD_FLRMTRGETFACL) {
247 if (unlikely(!remote))
248 GOTO(out, rc = err_serious(-EINVAL));
250 perm = mdt_identity_get_perm(uc->uc_identity, remote,
252 if (!(perm & CFS_RMTACL_PERM))
253 GOTO(out, rc = err_serious(-EPERM));
255 rc = mo_permission(info->mti_env, NULL, next, NULL,
258 GOTO(out, rc = err_serious(rc));
261 easize = mdt_getxattr_pack_reply(info);
263 GOTO(out, rc = err_serious(easize));
265 repbody = req_capsule_server_get(info->mti_pill, &RMF_MDT_BODY);
266 LASSERT(repbody != NULL);
268 /* No need further getxattr. */
269 if (easize == 0 || reqbody->mbo_eadatasize == 0)
270 GOTO(out, rc = easize);
272 buf = &info->mti_buf;
273 buf->lb_buf = req_capsule_server_get(info->mti_pill, &RMF_EADATA);
274 buf->lb_len = easize;
276 valid = info->mti_body->mbo_valid & (OBD_MD_FLXATTR | OBD_MD_FLXATTRLS);
278 if (valid == OBD_MD_FLXATTR) {
279 char *xattr_name = req_capsule_client_get(info->mti_pill,
281 rc = mdt_getxattr_one(info, xattr_name, next, buf, med, uc);
282 } else if (valid == OBD_MD_FLXATTRLS) {
283 CDEBUG(D_INODE, "listxattr\n");
285 rc = mo_xattr_list(info->mti_env, next, buf);
287 CDEBUG(D_INFO, "listxattr failed: %d\n", rc);
288 } else if (valid == OBD_MD_FLXATTRALL) {
289 rc = mdt_getxattr_all(info, reqbody, repbody,
297 mdt_counter_incr(req, LPROC_MDT_GETXATTR);
298 repbody->mbo_eadatasize = rc;
301 mdt_exit_ucred(info);
305 static int mdt_rmtlsetfacl(struct mdt_thread_info *info,
306 struct md_object *next,
307 const char *xattr_name,
308 ext_acl_xattr_header *header,
309 posix_acl_xattr_header **out)
311 struct ptlrpc_request *req = mdt_info_req(info);
312 struct mdt_export_data *med = mdt_req2med(req);
313 struct lu_ucred *uc = mdt_ucred(info);
314 struct lu_buf *buf = &info->mti_buf;
318 rc = lustre_ext_acl_xattr_id2server(uc, med->med_idmap, header);
322 rc = mo_xattr_get(info->mti_env, next, &LU_BUF_NULL, xattr_name);
329 if (buf->lb_len > 0) {
330 OBD_ALLOC_LARGE(buf->lb_buf, buf->lb_len);
331 if (unlikely(buf->lb_buf == NULL))
334 rc = mo_xattr_get(info->mti_env, next, buf, xattr_name);
336 CERROR("getxattr failed: %d\n", rc);
342 rc = lustre_acl_xattr_merge2posix((posix_acl_xattr_header *)(buf->lb_buf),
343 buf->lb_len, header, out);
347 if (rc <= 0 && buf->lb_buf != NULL)
348 OBD_FREE_LARGE(buf->lb_buf, buf->lb_len);
352 int mdt_reint_setxattr(struct mdt_thread_info *info,
353 struct mdt_lock_handle *unused)
355 struct ptlrpc_request *req = mdt_info_req(info);
356 struct lu_ucred *uc = lu_ucred(info->mti_env);
357 struct mdt_lock_handle *lh;
358 const struct lu_env *env = info->mti_env;
359 struct lu_buf *buf = &info->mti_buf;
360 struct mdt_reint_record *rr = &info->mti_rr;
361 struct md_attr *ma = &info->mti_attr;
362 struct lu_attr *attr = &info->mti_attr.ma_attr;
363 struct mdt_object *obj;
364 struct md_object *child;
365 __u64 valid = attr->la_valid;
366 const char *xattr_name = rr->rr_name.ln_name;
367 int xattr_len = rr->rr_eadatalen;
370 posix_acl_xattr_header *new_xattr = NULL;
371 __u32 remote = exp_connect_rmtclient(info->mti_exp);
375 CDEBUG(D_INODE, "setxattr for "DFID"\n", PFID(rr->rr_fid1));
377 if (info->mti_dlm_req)
378 ldlm_request_cancel(req, info->mti_dlm_req, 0);
380 if (OBD_FAIL_CHECK(OBD_FAIL_MDS_SETXATTR))
381 RETURN(err_serious(-ENOMEM));
383 CDEBUG(D_INODE, "%s xattr %s\n",
384 valid & OBD_MD_FLXATTR ? "set" : "remove", xattr_name);
386 rc = mdt_init_ucred_reint(info);
390 if (valid & OBD_MD_FLRMTRSETFACL) {
391 if (unlikely(!remote))
392 GOTO(out, rc = err_serious(-EINVAL));
394 perm = mdt_identity_get_perm(uc->uc_identity, remote,
396 if (!(perm & CFS_RMTACL_PERM))
397 GOTO(out, rc = err_serious(-EPERM));
400 if (strncmp(xattr_name, XATTR_USER_PREFIX,
401 sizeof(XATTR_USER_PREFIX) - 1) == 0) {
402 if (!(exp_connect_flags(req->rq_export) & OBD_CONNECT_XATTR))
403 GOTO(out, rc = -EOPNOTSUPP);
404 } else if (strncmp(xattr_name, XATTR_TRUSTED_PREFIX,
405 sizeof(XATTR_TRUSTED_PREFIX) - 1) == 0) {
407 if (!md_capable(mdt_ucred(info), CFS_CAP_SYS_ADMIN))
408 GOTO(out, rc = -EPERM);
410 if (strcmp(xattr_name, XATTR_NAME_LOV) == 0 ||
411 strcmp(xattr_name, XATTR_NAME_LMA) == 0 ||
412 strcmp(xattr_name, XATTR_NAME_LMV) == 0 ||
413 strcmp(xattr_name, XATTR_NAME_LINK) == 0 ||
414 strcmp(xattr_name, XATTR_NAME_FID) == 0 ||
415 strcmp(xattr_name, XATTR_NAME_VERSION) == 0 ||
416 strcmp(xattr_name, XATTR_NAME_SOM) == 0 ||
417 strcmp(xattr_name, XATTR_NAME_HSM) == 0 ||
418 strcmp(xattr_name, XATTR_NAME_LFSCK_NAMESPACE) == 0)
420 } else if ((valid & OBD_MD_FLXATTR) &&
421 (strcmp(xattr_name, XATTR_NAME_ACL_ACCESS) == 0 ||
422 strcmp(xattr_name, XATTR_NAME_ACL_DEFAULT) == 0)) {
423 /* currently lustre limit acl access size */
424 if (xattr_len > LUSTRE_POSIX_ACL_MAX_SIZE)
425 GOTO(out, rc = -ERANGE);
428 lockpart = MDS_INODELOCK_UPDATE;
429 /* Revoke all clients' lookup lock, since the access
430 * permissions for this inode is changed when ACL_ACCESS is
431 * set. This isn't needed for ACL_DEFAULT, since that does
432 * not change the access permissions of this inode, nor any
433 * other existing inodes. It is setting the ACLs inherited
434 * by new directories/files at create time. */
435 /* We need revoke both LOOKUP|PERM lock here, see mdt_attr_set. */
436 if (!strcmp(xattr_name, XATTR_NAME_ACL_ACCESS))
437 lockpart |= MDS_INODELOCK_PERM | MDS_INODELOCK_LOOKUP;
438 /* We need to take the lock on behalf of old clients so that newer
439 * clients flush their xattr caches */
441 lockpart |= MDS_INODELOCK_XATTR;
443 lh = &info->mti_lh[MDT_LH_PARENT];
444 /* ACLs were sent to clients under LCK_CR locks, so taking LCK_EX
446 mdt_lock_reg_init(lh, LCK_EX);
447 obj = mdt_object_find_lock(info, rr->rr_fid1, lh, lockpart);
449 GOTO(out, rc = PTR_ERR(obj));
451 tgt_vbr_obj_set(env, mdt_obj2dt(obj));
452 rc = mdt_version_get_check_save(info, obj, 0);
454 GOTO(out_unlock, rc);
456 if (unlikely(!(valid & OBD_MD_FLCTIME))) {
457 /* This isn't strictly an error, but all current clients
458 * should set OBD_MD_FLCTIME when setting attributes. */
459 CWARN("%s: client miss to set OBD_MD_FLCTIME when "
460 "setxattr %s: [object "DFID"] [valid "LPU64"]\n",
461 mdt_obd_name(info->mti_mdt), xattr_name,
462 PFID(rr->rr_fid1), valid);
463 attr->la_ctime = cfs_time_current_sec();
465 attr->la_valid = LA_CTIME;
466 child = mdt_object_child(obj);
467 if (valid & OBD_MD_FLXATTR) {
468 char *xattr = (void *)rr->rr_eadata;
473 if (valid & OBD_MD_FLRMTLSETFACL) {
474 if (unlikely(!remote))
475 GOTO(out_unlock, rc = -EINVAL);
477 xattr_len = mdt_rmtlsetfacl(info, child,
479 (ext_acl_xattr_header *)xattr,
482 GOTO(out_unlock, rc = xattr_len);
484 xattr = (char *)new_xattr;
487 if (attr->la_flags & XATTR_REPLACE)
488 flags |= LU_XATTR_REPLACE;
490 if (attr->la_flags & XATTR_CREATE)
491 flags |= LU_XATTR_CREATE;
493 mdt_fail_write(env, info->mti_mdt->mdt_bottom,
494 OBD_FAIL_MDS_SETXATTR_WRITE);
497 buf->lb_len = xattr_len;
498 rc = mo_xattr_set(env, child, buf, xattr_name, flags);
499 /* update ctime after xattr changed */
501 ma->ma_attr_flags |= MDS_PERM_BYPASS;
502 mo_attr_set(env, child, ma);
505 } else if (valid & OBD_MD_FLXATTRRM) {
506 rc = mo_xattr_del(env, child, xattr_name);
507 /* update ctime after xattr changed */
509 ma->ma_attr_flags |= MDS_PERM_BYPASS;
510 mo_attr_set(env, child, ma);
513 CDEBUG(D_INFO, "valid bits: "LPX64"\n", valid);
517 mdt_counter_incr(req, LPROC_MDT_SETXATTR);
521 mdt_object_unlock_put(info, obj, lh, rc);
522 if (unlikely(new_xattr != NULL))
523 lustre_posix_acl_xattr_free(new_xattr, xattr_len);
525 mdt_exit_ucred(info);